Whamcloud - gitweb
LU-12600 tgt: shortio size should be unsigned
[fs/lustre-release.git] / lustre / target / tgt_handler.c
1 /*
2  * GPL HEADER START
3  *
4  * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
5  *
6  * This program is free software; you can redistribute it and/or modify
7  * it under the terms of the GNU General Public License version 2 only,
8  * as published by the Free Software Foundation.
9  *
10  * This program is distributed in the hope that it will be useful, but
11  * WITHOUT ANY WARRANTY; without even the implied warranty of
12  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
13  * General Public License version 2 for more details (a copy is included
14  * in the LICENSE file that accompanied this code).
15  *
16  * You should have received a copy of the GNU General Public License
17  * version 2 along with this program; if not, write to the
18  * Free Software Foundation, Inc., 59 Temple Place - Suite 330,
19  * Boston, MA 021110-1307, USA
20  *
21  * GPL HEADER END
22  */
23 /*
24  * Copyright (c) 2013, 2017, Intel Corporation.
25  */
26 /*
27  * lustre/target/tgt_handler.c
28  *
29  * Lustre Unified Target request handler code
30  *
31  * Author: Brian Behlendorf <behlendorf1@llnl.gov>
32  * Author: Mikhail Pershin <mike.pershin@intel.com>
33  */
34
35 #define DEBUG_SUBSYSTEM S_CLASS
36
37 #include <linux/user_namespace.h>
38 #ifdef HAVE_UIDGID_HEADER
39 # include <linux/uidgid.h>
40 #endif
41
42 #include <obd.h>
43 #include <obd_class.h>
44 #include <obd_cksum.h>
45 #include <lustre_lfsck.h>
46 #include <lustre_nodemap.h>
47 #include <lustre_acl.h>
48
49 #include "tgt_internal.h"
50
51 char *tgt_name(struct lu_target *tgt)
52 {
53         LASSERT(tgt->lut_obd != NULL);
54         return tgt->lut_obd->obd_name;
55 }
56 EXPORT_SYMBOL(tgt_name);
57
58 /*
59  * Generic code handling requests that have struct mdt_body passed in:
60  *
61  *  - extract mdt_body from request and save it in @tsi, if present;
62  *
63  *  - create lu_object, corresponding to the fid in mdt_body, and save it in
64  *  @tsi;
65  *
66  *  - if HAS_BODY flag is set for this request type check whether object
67  *  actually exists on storage (lu_object_exists()).
68  *
69  */
70 static int tgt_mdt_body_unpack(struct tgt_session_info *tsi, __u32 flags)
71 {
72         const struct mdt_body   *body;
73         struct lu_object        *obj;
74         struct req_capsule      *pill = tsi->tsi_pill;
75         int                      rc;
76
77         ENTRY;
78
79         body = req_capsule_client_get(pill, &RMF_MDT_BODY);
80         if (body == NULL)
81                 RETURN(-EFAULT);
82
83         tsi->tsi_mdt_body = body;
84
85         if (!(body->mbo_valid & OBD_MD_FLID))
86                 RETURN(0);
87
88         /* mdc_pack_body() doesn't check if fid is zero and set OBD_ML_FID
89          * in any case in pre-2.5 clients. Fix that here if needed */
90         if (unlikely(fid_is_zero(&body->mbo_fid1)))
91                 RETURN(0);
92
93         if (!fid_is_sane(&body->mbo_fid1)) {
94                 CERROR("%s: invalid FID: "DFID"\n", tgt_name(tsi->tsi_tgt),
95                        PFID(&body->mbo_fid1));
96                 RETURN(-EINVAL);
97         }
98
99         obj = lu_object_find(tsi->tsi_env,
100                              &tsi->tsi_tgt->lut_bottom->dd_lu_dev,
101                              &body->mbo_fid1, NULL);
102         if (!IS_ERR(obj)) {
103                 if ((flags & HAS_BODY) && !lu_object_exists(obj)) {
104                         lu_object_put(tsi->tsi_env, obj);
105                         rc = -ENOENT;
106                 } else {
107                         tsi->tsi_corpus = obj;
108                         rc = 0;
109                 }
110         } else {
111                 rc = PTR_ERR(obj);
112         }
113
114         tsi->tsi_fid = body->mbo_fid1;
115
116         RETURN(rc);
117 }
118
119 /**
120  * Validate oa from client.
121  * If the request comes from 2.0 clients, currently only RSVD seq and IDIF
122  * req are valid.
123  *    a. objects in Single MDT FS  seq = FID_SEQ_OST_MDT0, oi_id != 0
124  *    b. Echo objects(seq = 2), old echo client still use oi_id/oi_seq to
125  *       pack ost_id. Because non-zero oi_seq will make it diffcult to tell
126  *       whether this is oi_fid or real ostid. So it will check
127  *       OBD_CONNECT_FID, then convert the ostid to FID for old client.
128  *    c. Old FID-disable osc will send IDIF.
129  *    d. new FID-enable osc/osp will send normal FID.
130  *
131  * And also oi_id/f_oid should always start from 1. oi_id/f_oid = 0 will
132  * be used for LAST_ID file, and only being accessed inside OST now.
133  */
134 int tgt_validate_obdo(struct tgt_session_info *tsi, struct obdo *oa)
135 {
136         struct ost_id   *oi     = &oa->o_oi;
137         u64              seq    = ostid_seq(oi);
138         u64              id     = ostid_id(oi);
139         int              rc;
140         ENTRY;
141
142         if (unlikely(!(exp_connect_flags(tsi->tsi_exp) & OBD_CONNECT_FID) &&
143                      fid_seq_is_echo(seq))) {
144                 /* Sigh 2.[123] client still sends echo req with oi_id = 0
145                  * during create, and we will reset this to 1, since this
146                  * oi_id is basically useless in the following create process,
147                  * but oi_id == 0 will make it difficult to tell whether it is
148                  * real FID or ost_id. */
149                 oi->oi_fid.f_seq = FID_SEQ_ECHO;
150                 oi->oi_fid.f_oid = id ?: 1;
151                 oi->oi_fid.f_ver = 0;
152         } else {
153                 struct tgt_thread_info *tti = tgt_th_info(tsi->tsi_env);
154
155                 if (unlikely((oa->o_valid & OBD_MD_FLID) && id == 0))
156                         GOTO(out, rc = -EPROTO);
157
158                 /* Note: this check might be forced in 2.5 or 2.6, i.e.
159                  * all of the requests are required to setup FLGROUP */
160                 if (unlikely(!(oa->o_valid & OBD_MD_FLGROUP))) {
161                         ostid_set_seq_mdt0(oi);
162                         oa->o_valid |= OBD_MD_FLGROUP;
163                         seq = ostid_seq(oi);
164                 }
165
166                 if (unlikely(!(fid_seq_is_idif(seq) || fid_seq_is_mdt0(seq) ||
167                                fid_seq_is_norm(seq) || fid_seq_is_echo(seq))))
168                         GOTO(out, rc = -EPROTO);
169
170                 rc = ostid_to_fid(&tti->tti_fid1, oi,
171                                   tsi->tsi_tgt->lut_lsd.lsd_osd_index);
172                 if (unlikely(rc != 0))
173                         GOTO(out, rc);
174
175                 oi->oi_fid = tti->tti_fid1;
176         }
177
178         RETURN(0);
179
180 out:
181         CERROR("%s: client %s sent bad object "DOSTID": rc = %d\n",
182                tgt_name(tsi->tsi_tgt), obd_export_nid2str(tsi->tsi_exp),
183                seq, id, rc);
184         return rc;
185 }
186 EXPORT_SYMBOL(tgt_validate_obdo);
187
188 static int tgt_io_data_unpack(struct tgt_session_info *tsi, struct ost_id *oi)
189 {
190         unsigned                 max_brw;
191         struct niobuf_remote    *rnb;
192         struct obd_ioobj        *ioo;
193         int                      obj_count;
194
195         ENTRY;
196
197         ioo = req_capsule_client_get(tsi->tsi_pill, &RMF_OBD_IOOBJ);
198         if (ioo == NULL)
199                 RETURN(-EPROTO);
200
201         rnb = req_capsule_client_get(tsi->tsi_pill, &RMF_NIOBUF_REMOTE);
202         if (rnb == NULL)
203                 RETURN(-EPROTO);
204
205         max_brw = ioobj_max_brw_get(ioo);
206         if (unlikely((max_brw & (max_brw - 1)) != 0)) {
207                 CERROR("%s: client %s sent bad ioobj max %u for "DOSTID
208                        ": rc = %d\n", tgt_name(tsi->tsi_tgt),
209                        obd_export_nid2str(tsi->tsi_exp), max_brw,
210                        POSTID(oi), -EPROTO);
211                 RETURN(-EPROTO);
212         }
213         ioo->ioo_oid = *oi;
214
215         obj_count = req_capsule_get_size(tsi->tsi_pill, &RMF_OBD_IOOBJ,
216                                         RCL_CLIENT) / sizeof(*ioo);
217         if (obj_count == 0) {
218                 CERROR("%s: short ioobj\n", tgt_name(tsi->tsi_tgt));
219                 RETURN(-EPROTO);
220         } else if (obj_count > 1) {
221                 CERROR("%s: too many ioobjs (%d)\n", tgt_name(tsi->tsi_tgt),
222                        obj_count);
223                 RETURN(-EPROTO);
224         }
225
226         if (ioo->ioo_bufcnt == 0) {
227                 CERROR("%s: ioo has zero bufcnt\n", tgt_name(tsi->tsi_tgt));
228                 RETURN(-EPROTO);
229         }
230
231         if (ioo->ioo_bufcnt > PTLRPC_MAX_BRW_PAGES) {
232                 DEBUG_REQ(D_RPCTRACE, tgt_ses_req(tsi),
233                           "bulk has too many pages (%d)",
234                           ioo->ioo_bufcnt);
235                 RETURN(-EPROTO);
236         }
237
238         RETURN(0);
239 }
240
241 static int tgt_ost_body_unpack(struct tgt_session_info *tsi, __u32 flags)
242 {
243         struct ost_body         *body;
244         struct req_capsule      *pill = tsi->tsi_pill;
245         struct lu_nodemap       *nodemap;
246         int                      rc;
247
248         ENTRY;
249
250         body = req_capsule_client_get(pill, &RMF_OST_BODY);
251         if (body == NULL)
252                 RETURN(-EFAULT);
253
254         rc = tgt_validate_obdo(tsi, &body->oa);
255         if (rc)
256                 RETURN(rc);
257
258         nodemap = nodemap_get_from_exp(tsi->tsi_exp);
259         if (IS_ERR(nodemap))
260                 RETURN(PTR_ERR(nodemap));
261
262         body->oa.o_uid = nodemap_map_id(nodemap, NODEMAP_UID,
263                                         NODEMAP_CLIENT_TO_FS,
264                                         body->oa.o_uid);
265         body->oa.o_gid = nodemap_map_id(nodemap, NODEMAP_GID,
266                                         NODEMAP_CLIENT_TO_FS,
267                                         body->oa.o_gid);
268         nodemap_putref(nodemap);
269
270         tsi->tsi_ost_body = body;
271         tsi->tsi_fid = body->oa.o_oi.oi_fid;
272
273         if (req_capsule_has_field(pill, &RMF_OBD_IOOBJ, RCL_CLIENT)) {
274                 rc = tgt_io_data_unpack(tsi, &body->oa.o_oi);
275                 if (rc < 0)
276                         RETURN(rc);
277         }
278
279         if (!(body->oa.o_valid & OBD_MD_FLID)) {
280                 if (flags & HAS_BODY) {
281                         CERROR("%s: OBD_MD_FLID flag is not set in ost_body but OID/FID is mandatory with HAS_BODY\n",
282                                tgt_name(tsi->tsi_tgt));
283                         RETURN(-EPROTO);
284                 } else {
285                         RETURN(0);
286                 }
287         }
288
289         ost_fid_build_resid(&tsi->tsi_fid, &tsi->tsi_resid);
290
291         /*
292          * OST doesn't get object in advance for further use to prevent
293          * situations with nested object_find which is potential deadlock.
294          */
295         tsi->tsi_corpus = NULL;
296         RETURN(rc);
297 }
298
299 /*
300  * Do necessary preprocessing according to handler ->th_flags.
301  */
302 static int tgt_request_preprocess(struct tgt_session_info *tsi,
303                                   struct tgt_handler *h,
304                                   struct ptlrpc_request *req)
305 {
306         struct req_capsule      *pill = tsi->tsi_pill;
307         __u32                    flags = h->th_flags;
308         int                      rc = 0;
309
310         ENTRY;
311
312         if (tsi->tsi_preprocessed)
313                 RETURN(0);
314
315         LASSERT(h->th_act != NULL);
316         LASSERT(h->th_opc == lustre_msg_get_opc(req->rq_reqmsg));
317         LASSERT(current->journal_info == NULL);
318
319         LASSERT(ergo(flags & (HAS_BODY | HAS_REPLY),
320                      h->th_fmt != NULL));
321         if (h->th_fmt != NULL) {
322                 req_capsule_set(pill, h->th_fmt);
323                 if (req_capsule_has_field(pill, &RMF_MDT_BODY, RCL_CLIENT)) {
324                         rc = tgt_mdt_body_unpack(tsi, flags);
325                         if (rc < 0)
326                                 RETURN(rc);
327                 } else if (req_capsule_has_field(pill, &RMF_OST_BODY,
328                                                  RCL_CLIENT)) {
329                         rc = tgt_ost_body_unpack(tsi, flags);
330                         if (rc < 0)
331                                 RETURN(rc);
332                 }
333         }
334
335         if (flags & IS_MUTABLE && tgt_conn_flags(tsi) & OBD_CONNECT_RDONLY)
336                 RETURN(-EROFS);
337
338         if (flags & HAS_KEY) {
339                 struct ldlm_request *dlm_req;
340
341                 LASSERT(h->th_fmt != NULL);
342
343                 dlm_req = req_capsule_client_get(pill, &RMF_DLM_REQ);
344                 if (dlm_req != NULL) {
345                         union ldlm_wire_policy_data *policy =
346                                         &dlm_req->lock_desc.l_policy_data;
347
348                         if (unlikely(dlm_req->lock_desc.l_resource.lr_type ==
349                                      LDLM_IBITS &&
350                                      (policy->l_inodebits.bits |
351                                       policy->l_inodebits.try_bits) == 0)) {
352                                 /*
353                                  * Lock without inodebits makes no sense and
354                                  * will oops later in ldlm. If client miss to
355                                  * set such bits, do not trigger ASSERTION.
356                                  *
357                                  * For liblustre flock case, it maybe zero.
358                                  */
359                                 rc = -EPROTO;
360                         } else {
361                                 tsi->tsi_dlm_req = dlm_req;
362                         }
363                 } else {
364                         rc = -EFAULT;
365                 }
366         }
367         tsi->tsi_preprocessed = 1;
368         RETURN(rc);
369 }
370
371 /*
372  * Invoke handler for this request opc. Also do necessary preprocessing
373  * (according to handler ->th_flags), and post-processing (setting of
374  * ->last_{xid,committed}).
375  */
376 static int tgt_handle_request0(struct tgt_session_info *tsi,
377                                struct tgt_handler *h,
378                                struct ptlrpc_request *req)
379 {
380         int      serious = 0;
381         int      rc;
382         __u32    opc = lustre_msg_get_opc(req->rq_reqmsg);
383
384         ENTRY;
385
386
387         /* When dealing with sec context requests, no export is associated yet,
388          * because these requests are sent before *_CONNECT requests.
389          * A NULL req->rq_export means the normal *_common_slice handlers will
390          * not be called, because there is no reference to the target.
391          * So deal with them by hand and jump directly to target_send_reply().
392          */
393         switch (opc) {
394         case SEC_CTX_INIT:
395         case SEC_CTX_INIT_CONT:
396         case SEC_CTX_FINI:
397                 CFS_FAIL_TIMEOUT(OBD_FAIL_SEC_CTX_HDL_PAUSE, cfs_fail_val);
398                 GOTO(out, rc = 0);
399         }
400
401         /*
402          * Checking for various OBD_FAIL_$PREF_$OPC_NET codes. _Do_ not try
403          * to put same checks into handlers like mdt_close(), mdt_reint(),
404          * etc., without talking to mdt authors first. Checking same thing
405          * there again is useless and returning 0 error without packing reply
406          * is buggy! Handlers either pack reply or return error.
407          *
408          * We return 0 here and do not send any reply in order to emulate
409          * network failure. Do not send any reply in case any of NET related
410          * fail_id has occured.
411          */
412         if (OBD_FAIL_CHECK_ORSET(h->th_fail_id, OBD_FAIL_ONCE))
413                 RETURN(0);
414         if (unlikely(lustre_msg_get_opc(req->rq_reqmsg) == MDS_REINT &&
415                      OBD_FAIL_CHECK(OBD_FAIL_MDS_REINT_MULTI_NET)))
416                 RETURN(0);
417
418         rc = tgt_request_preprocess(tsi, h, req);
419         /* pack reply if reply format is fixed */
420         if (rc == 0 && h->th_flags & HAS_REPLY) {
421                 /* Pack reply */
422                 if (req_capsule_has_field(tsi->tsi_pill, &RMF_MDT_MD,
423                                           RCL_SERVER))
424                         req_capsule_set_size(tsi->tsi_pill, &RMF_MDT_MD,
425                                              RCL_SERVER,
426                                              tsi->tsi_mdt_body->mbo_eadatasize);
427                 if (req_capsule_has_field(tsi->tsi_pill, &RMF_LOGCOOKIES,
428                                           RCL_SERVER))
429                         req_capsule_set_size(tsi->tsi_pill, &RMF_LOGCOOKIES,
430                                              RCL_SERVER, 0);
431                 if (req_capsule_has_field(tsi->tsi_pill, &RMF_ACL, RCL_SERVER))
432                         req_capsule_set_size(tsi->tsi_pill,
433                                              &RMF_ACL, RCL_SERVER,
434                                              LUSTRE_POSIX_ACL_MAX_SIZE_OLD);
435
436                 if (req_capsule_has_field(tsi->tsi_pill, &RMF_SHORT_IO,
437                                           RCL_SERVER)) {
438                         struct niobuf_remote *remote_nb =
439                                 req_capsule_client_get(tsi->tsi_pill,
440                                                        &RMF_NIOBUF_REMOTE);
441                         struct ost_body *body = tsi->tsi_ost_body;
442
443                         req_capsule_set_size(tsi->tsi_pill, &RMF_SHORT_IO,
444                                          RCL_SERVER,
445                                          (body->oa.o_flags & OBD_FL_SHORT_IO) ?
446                                          remote_nb[0].rnb_len : 0);
447                 }
448
449                 rc = req_capsule_server_pack(tsi->tsi_pill);
450         }
451
452         if (likely(rc == 0)) {
453                 /*
454                  * Process request, there can be two types of rc:
455                  * 1) errors with msg unpack/pack, other failures outside the
456                  * operation itself. This is counted as serious errors;
457                  * 2) errors during fs operation, should be placed in rq_status
458                  * only
459                  */
460                 rc = h->th_act(tsi);
461                 if (!is_serious(rc) &&
462                     !req->rq_no_reply && req->rq_reply_state == NULL) {
463                         DEBUG_REQ(D_ERROR, req, "%s \"handler\" %s did not "
464                                   "pack reply and returned 0 error\n",
465                                   tgt_name(tsi->tsi_tgt), h->th_name);
466                         LBUG();
467                 }
468                 serious = is_serious(rc);
469                 rc = clear_serious(rc);
470         } else {
471                 serious = 1;
472         }
473
474         req->rq_status = rc;
475
476         /*
477          * ELDLM_* codes which > 0 should be in rq_status only as well as
478          * all non-serious errors.
479          */
480         if (rc > 0 || !serious)
481                 rc = 0;
482
483         LASSERT(current->journal_info == NULL);
484
485         if (likely(rc == 0 && req->rq_export))
486                 target_committed_to_req(req);
487
488 out:
489         target_send_reply(req, rc, tsi->tsi_reply_fail_id);
490         RETURN(0);
491 }
492
493 static int tgt_filter_recovery_request(struct ptlrpc_request *req,
494                                        struct obd_device *obd, int *process)
495 {
496         switch (lustre_msg_get_opc(req->rq_reqmsg)) {
497         case MDS_DISCONNECT:
498         case OST_DISCONNECT:
499         case OBD_IDX_READ:
500                 *process = 1;
501                 RETURN(0);
502         case MDS_CLOSE:
503         case MDS_SYNC: /* used in unmounting */
504         case OBD_PING:
505         case MDS_REINT:
506         case OUT_UPDATE:
507         case SEQ_QUERY:
508         case FLD_QUERY:
509         case FLD_READ:
510         case LDLM_ENQUEUE:
511         case OST_CREATE:
512         case OST_DESTROY:
513         case OST_PUNCH:
514         case OST_SETATTR:
515         case OST_SYNC:
516         case OST_WRITE:
517         case MDS_HSM_PROGRESS:
518         case MDS_HSM_STATE_SET:
519         case MDS_HSM_REQUEST:
520                 *process = target_queue_recovery_request(req, obd);
521                 RETURN(0);
522
523         default:
524                 DEBUG_REQ(D_ERROR, req, "not permitted during recovery");
525                 *process = -EAGAIN;
526                 RETURN(0);
527         }
528 }
529
530 /*
531  * Handle recovery. Return:
532  *        +1: continue request processing;
533  *       -ve: abort immediately with the given error code;
534  *         0: send reply with error code in req->rq_status;
535  */
536 static int tgt_handle_recovery(struct ptlrpc_request *req, int reply_fail_id)
537 {
538         ENTRY;
539
540         switch (lustre_msg_get_opc(req->rq_reqmsg)) {
541         case MDS_CONNECT:
542         case OST_CONNECT:
543         case MGS_CONNECT:
544         case SEC_CTX_INIT:
545         case SEC_CTX_INIT_CONT:
546         case SEC_CTX_FINI:
547                 RETURN(+1);
548         }
549
550         if (!req->rq_export->exp_obd->obd_replayable)
551                 RETURN(+1);
552
553         /* sanity check: if the xid matches, the request must be marked as a
554          * resent or replayed */
555         if (req_can_reconstruct(req, NULL)) {
556                 if (!(lustre_msg_get_flags(req->rq_reqmsg) &
557                       (MSG_RESENT | MSG_REPLAY))) {
558                         DEBUG_REQ(D_WARNING, req, "rq_xid %llu matches "
559                                   "saved xid, expected REPLAY or RESENT flag "
560                                   "(%x)", req->rq_xid,
561                                   lustre_msg_get_flags(req->rq_reqmsg));
562                         req->rq_status = -ENOTCONN;
563                         RETURN(-ENOTCONN);
564                 }
565         }
566         /* else: note the opposite is not always true; a RESENT req after a
567          * failover will usually not match the last_xid, since it was likely
568          * never committed. A REPLAYed request will almost never match the
569          * last xid, however it could for a committed, but still retained,
570          * open. */
571
572         /* Check for aborted recovery... */
573         if (unlikely(req->rq_export->exp_obd->obd_recovering)) {
574                 int rc;
575                 int should_process;
576
577                 DEBUG_REQ(D_INFO, req, "Got new replay");
578                 rc = tgt_filter_recovery_request(req, req->rq_export->exp_obd,
579                                                  &should_process);
580                 if (rc != 0 || !should_process)
581                         RETURN(rc);
582                 else if (should_process < 0) {
583                         req->rq_status = should_process;
584                         rc = ptlrpc_error(req);
585                         RETURN(rc);
586                 }
587         }
588         RETURN(+1);
589 }
590
591 /* Initial check for request, it is validation mostly */
592 static struct tgt_handler *tgt_handler_find_check(struct ptlrpc_request *req)
593 {
594         struct tgt_handler      *h;
595         struct tgt_opc_slice    *s;
596         struct lu_target        *tgt;
597         __u32                    opc = lustre_msg_get_opc(req->rq_reqmsg);
598
599         ENTRY;
600
601         tgt = class_exp2tgt(req->rq_export);
602         if (unlikely(tgt == NULL)) {
603                 DEBUG_REQ(D_ERROR, req, "%s: No target for connected export\n",
604                           class_exp2obd(req->rq_export)->obd_name);
605                 RETURN(ERR_PTR(-EINVAL));
606         }
607
608         for (s = tgt->lut_slice; s->tos_hs != NULL; s++)
609                 if (s->tos_opc_start <= opc && opc < s->tos_opc_end)
610                         break;
611
612         /* opcode was not found in slice */
613         if (unlikely(s->tos_hs == NULL)) {
614                 CERROR("%s: no handlers for opcode 0x%x\n", tgt_name(tgt),
615                        opc);
616                 RETURN(ERR_PTR(-ENOTSUPP));
617         }
618
619         LASSERT(opc >= s->tos_opc_start && opc < s->tos_opc_end);
620         h = s->tos_hs + (opc - s->tos_opc_start);
621         if (unlikely(h->th_opc == 0)) {
622                 CERROR("%s: unsupported opcode 0x%x\n", tgt_name(tgt), opc);
623                 RETURN(ERR_PTR(-ENOTSUPP));
624         }
625
626         RETURN(h);
627 }
628
629 static int process_req_last_xid(struct ptlrpc_request *req)
630 {
631         __u64   last_xid;
632         ENTRY;
633
634         /* check request's xid is consistent with export's last_xid */
635         last_xid = lustre_msg_get_last_xid(req->rq_reqmsg);
636         if (last_xid > req->rq_export->exp_last_xid)
637                 req->rq_export->exp_last_xid = last_xid;
638
639         if (req->rq_xid == 0 ||
640             (req->rq_xid <= req->rq_export->exp_last_xid)) {
641                 DEBUG_REQ(D_ERROR, req, "Unexpected xid %llx vs. "
642                           "last_xid %llx\n", req->rq_xid,
643                           req->rq_export->exp_last_xid);
644                 /* Some request is allowed to be sent during replay,
645                  * such as OUT update requests, FLD requests, so it
646                  * is possible that replay requests has smaller XID
647                  * than the exp_last_xid.
648                  *
649                  * Some non-replay requests may have smaller XID as
650                  * well:
651                  *
652                  * - Client send a no_resend RPC, like statfs;
653                  * - The RPC timedout (or some other error) on client,
654                  *   then it's removed from the unreplied list;
655                  * - Client send some other request to bump the
656                  *   exp_last_xid on server;
657                  * - The former RPC got chance to be processed;
658                  */
659                 if (!(lustre_msg_get_flags(req->rq_reqmsg) & MSG_REPLAY))
660                         RETURN(-EPROTO);
661         }
662
663         /* The "last_xid" is the minimum xid among unreplied requests,
664          * if the request is from the previous connection, its xid can
665          * still be larger than "exp_last_xid", then the above check of
666          * xid is not enough to determine whether the request is delayed.
667          *
668          * For example, if some replay request was delayed and caused
669          * timeout at client and the replay is restarted, the delayed
670          * replay request will have the larger xid than "exp_last_xid"
671          */
672         if (req->rq_export->exp_conn_cnt >
673             lustre_msg_get_conn_cnt(req->rq_reqmsg))
674                 RETURN(-ESTALE);
675
676         /* try to release in-memory reply data */
677         if (tgt_is_multimodrpcs_client(req->rq_export)) {
678                 tgt_handle_received_xid(req->rq_export,
679                                 lustre_msg_get_last_xid(req->rq_reqmsg));
680                 if (!(lustre_msg_get_flags(req->rq_reqmsg) &
681                       (MSG_RESENT | MSG_REPLAY)))
682                         tgt_handle_tag(req->rq_export,
683                                        lustre_msg_get_tag(req->rq_reqmsg));
684         }
685         RETURN(0);
686 }
687
688 int tgt_request_handle(struct ptlrpc_request *req)
689 {
690         struct tgt_session_info *tsi = tgt_ses_info(req->rq_svc_thread->t_env);
691
692         struct lustre_msg       *msg = req->rq_reqmsg;
693         struct tgt_handler      *h;
694         struct lu_target        *tgt;
695         int                      request_fail_id = 0;
696         __u32                    opc = lustre_msg_get_opc(msg);
697         struct obd_device       *obd;
698         int                      rc;
699         bool                     is_connect = false;
700         ENTRY;
701
702         if (unlikely(OBD_FAIL_CHECK(OBD_FAIL_TGT_RECOVERY_REQ_RACE))) {
703                 if (cfs_fail_val == 0 &&
704                     lustre_msg_get_opc(msg) != OBD_PING &&
705                     lustre_msg_get_flags(msg) & MSG_REQ_REPLAY_DONE) {
706                         struct l_wait_info lwi =  { 0 };
707
708                         cfs_fail_val = 1;
709                         cfs_race_state = 0;
710                         l_wait_event(cfs_race_waitq, (cfs_race_state == 1),
711                                      &lwi);
712                 }
713         }
714
715         /* Refill the context, to make sure all thread keys are allocated */
716         lu_env_refill(req->rq_svc_thread->t_env);
717
718         req_capsule_init(&req->rq_pill, req, RCL_SERVER);
719         tsi->tsi_pill = &req->rq_pill;
720         tsi->tsi_env = req->rq_svc_thread->t_env;
721
722         /* if request has export then get handlers slice from corresponding
723          * target, otherwise that should be connect operation */
724         if (opc == MDS_CONNECT || opc == OST_CONNECT ||
725             opc == MGS_CONNECT) {
726                 is_connect = true;
727                 req_capsule_set(&req->rq_pill, &RQF_CONNECT);
728                 rc = target_handle_connect(req);
729                 if (rc != 0) {
730                         rc = ptlrpc_error(req);
731                         GOTO(out, rc);
732                 }
733                 /* recovery-small test 18c asks to drop connect reply */
734                 if (unlikely(opc == OST_CONNECT &&
735                              OBD_FAIL_CHECK(OBD_FAIL_OST_CONNECT_NET2)))
736                         GOTO(out, rc = 0);
737         }
738
739         if (unlikely(!class_connected_export(req->rq_export))) {
740                 if (opc == SEC_CTX_INIT || opc == SEC_CTX_INIT_CONT ||
741                     opc == SEC_CTX_FINI) {
742                         /* sec context initialization has to be handled
743                          * by hand in tgt_handle_request0() */
744                         tsi->tsi_reply_fail_id = OBD_FAIL_SEC_CTX_INIT_NET;
745                         h = NULL;
746                         GOTO(handle_recov, rc = 0);
747                 }
748                 CDEBUG(D_HA, "operation %d on unconnected OST from %s\n",
749                        opc, libcfs_id2str(req->rq_peer));
750                 req->rq_status = -ENOTCONN;
751                 rc = ptlrpc_error(req);
752                 GOTO(out, rc);
753         }
754
755         tsi->tsi_tgt = tgt = class_exp2tgt(req->rq_export);
756         tsi->tsi_exp = req->rq_export;
757         if (exp_connect_flags(req->rq_export) & OBD_CONNECT_JOBSTATS)
758                 tsi->tsi_jobid = lustre_msg_get_jobid(req->rq_reqmsg);
759         else
760                 tsi->tsi_jobid = NULL;
761
762         if (tgt == NULL) {
763                 DEBUG_REQ(D_ERROR, req, "%s: No target for connected export\n",
764                           class_exp2obd(req->rq_export)->obd_name);
765                 req->rq_status = -EINVAL;
766                 rc = ptlrpc_error(req);
767                 GOTO(out, rc);
768         }
769
770         /* Skip last_xid processing for the recovery thread, otherwise, the
771          * last_xid on same request could be processed twice: first time when
772          * processing the incoming request, second time when the request is
773          * being processed by recovery thread. */
774         obd = class_exp2obd(req->rq_export);
775         if (is_connect) {
776                 /* reset the exp_last_xid on each connection. */
777                 req->rq_export->exp_last_xid = 0;
778         } else if (obd->obd_recovery_data.trd_processing_task !=
779                    current_pid()) {
780                 rc = process_req_last_xid(req);
781                 if (rc) {
782                         req->rq_status = rc;
783                         rc = ptlrpc_error(req);
784                         GOTO(out, rc);
785                 }
786         }
787
788         request_fail_id = tgt->lut_request_fail_id;
789         tsi->tsi_reply_fail_id = tgt->lut_reply_fail_id;
790
791         h = tgt_handler_find_check(req);
792         if (IS_ERR(h)) {
793                 req->rq_status = PTR_ERR(h);
794                 rc = ptlrpc_error(req);
795                 GOTO(out, rc);
796         }
797
798         LASSERTF(h->th_opc == opc, "opcode mismatch %d != %d\n",
799                  h->th_opc, opc);
800
801         if ((cfs_fail_val == 0 || cfs_fail_val == opc) &&
802              CFS_FAIL_CHECK_ORSET(request_fail_id, CFS_FAIL_ONCE))
803                 GOTO(out, rc = 0);
804
805         rc = lustre_msg_check_version(msg, h->th_version);
806         if (unlikely(rc)) {
807                 DEBUG_REQ(D_ERROR, req, "%s: drop mal-formed request, version"
808                           " %08x, expecting %08x\n", tgt_name(tgt),
809                           lustre_msg_get_version(msg), h->th_version);
810                 req->rq_status = -EINVAL;
811                 rc = ptlrpc_error(req);
812                 GOTO(out, rc);
813         }
814
815 handle_recov:
816         rc = tgt_handle_recovery(req, tsi->tsi_reply_fail_id);
817         if (likely(rc == 1)) {
818                 rc = tgt_handle_request0(tsi, h, req);
819                 if (rc)
820                         GOTO(out, rc);
821         }
822         EXIT;
823 out:
824         req_capsule_fini(tsi->tsi_pill);
825         if (tsi->tsi_corpus != NULL) {
826                 lu_object_put(tsi->tsi_env, tsi->tsi_corpus);
827                 tsi->tsi_corpus = NULL;
828         }
829         return rc;
830 }
831 EXPORT_SYMBOL(tgt_request_handle);
832
833 /** Assign high priority operations to the request if needed. */
834 int tgt_hpreq_handler(struct ptlrpc_request *req)
835 {
836         struct tgt_session_info *tsi = tgt_ses_info(req->rq_svc_thread->t_env);
837         struct tgt_handler      *h;
838         int                      rc;
839
840         ENTRY;
841
842         if (req->rq_export == NULL)
843                 RETURN(0);
844
845         req_capsule_init(&req->rq_pill, req, RCL_SERVER);
846         tsi->tsi_pill = &req->rq_pill;
847         tsi->tsi_env = req->rq_svc_thread->t_env;
848         tsi->tsi_tgt = class_exp2tgt(req->rq_export);
849         tsi->tsi_exp = req->rq_export;
850
851         h = tgt_handler_find_check(req);
852         if (IS_ERR(h)) {
853                 rc = PTR_ERR(h);
854                 RETURN(rc);
855         }
856
857         rc = tgt_request_preprocess(tsi, h, req);
858         if (unlikely(rc != 0))
859                 RETURN(rc);
860
861         if (h->th_hp != NULL)
862                 h->th_hp(tsi);
863         RETURN(0);
864 }
865 EXPORT_SYMBOL(tgt_hpreq_handler);
866
867 void tgt_counter_incr(struct obd_export *exp, int opcode)
868 {
869         lprocfs_counter_incr(exp->exp_obd->obd_stats, opcode);
870         if (exp->exp_nid_stats && exp->exp_nid_stats->nid_stats != NULL)
871                 lprocfs_counter_incr(exp->exp_nid_stats->nid_stats, opcode);
872 }
873 EXPORT_SYMBOL(tgt_counter_incr);
874
875 /*
876  * Unified target generic handlers.
877  */
878
879 int tgt_connect_check_sptlrpc(struct ptlrpc_request *req, struct obd_export *exp)
880 {
881         struct lu_target        *tgt = class_exp2tgt(exp);
882         struct sptlrpc_flavor    flvr;
883         int                      rc = 0;
884
885         LASSERT(tgt);
886         LASSERT(tgt->lut_obd);
887         LASSERT(tgt->lut_slice);
888
889         /* always allow ECHO client */
890         if (unlikely(strcmp(exp->exp_obd->obd_type->typ_name,
891                             LUSTRE_ECHO_NAME) == 0)) {
892                 exp->exp_flvr.sf_rpc = SPTLRPC_FLVR_ANY;
893                 return 0;
894         }
895
896         if (exp->exp_flvr.sf_rpc == SPTLRPC_FLVR_INVALID) {
897                 read_lock(&tgt->lut_sptlrpc_lock);
898                 sptlrpc_target_choose_flavor(&tgt->lut_sptlrpc_rset,
899                                              req->rq_sp_from,
900                                              req->rq_peer.nid,
901                                              &flvr);
902                 read_unlock(&tgt->lut_sptlrpc_lock);
903
904                 spin_lock(&exp->exp_lock);
905                 exp->exp_sp_peer = req->rq_sp_from;
906                 exp->exp_flvr = flvr;
907
908                 /* when on mgs, if no restriction is set, or if client
909                  * is loopback, allow any flavor */
910                 if ((strcmp(exp->exp_obd->obd_type->typ_name,
911                            LUSTRE_MGS_NAME) == 0) &&
912                      (exp->exp_flvr.sf_rpc == SPTLRPC_FLVR_NULL ||
913                       LNET_NETTYP(LNET_NIDNET(exp->exp_connection->c_peer.nid))
914                       == LOLND))
915                         exp->exp_flvr.sf_rpc = SPTLRPC_FLVR_ANY;
916
917                 if (exp->exp_flvr.sf_rpc != SPTLRPC_FLVR_ANY &&
918                     exp->exp_flvr.sf_rpc != req->rq_flvr.sf_rpc) {
919                         CERROR("%s: unauthorized rpc flavor %x from %s, "
920                                "expect %x\n", tgt_name(tgt),
921                                req->rq_flvr.sf_rpc,
922                                libcfs_nid2str(req->rq_peer.nid),
923                                exp->exp_flvr.sf_rpc);
924                         rc = -EACCES;
925                 }
926                 spin_unlock(&exp->exp_lock);
927         } else {
928                 if (exp->exp_sp_peer != req->rq_sp_from) {
929                         CERROR("%s: RPC source %s doesn't match %s\n",
930                                tgt_name(tgt),
931                                sptlrpc_part2name(req->rq_sp_from),
932                                sptlrpc_part2name(exp->exp_sp_peer));
933                         rc = -EACCES;
934                 } else {
935                         rc = sptlrpc_target_export_check(exp, req);
936                 }
937         }
938
939         return rc;
940 }
941
942 int tgt_adapt_sptlrpc_conf(struct lu_target *tgt)
943 {
944         struct sptlrpc_rule_set  tmp_rset;
945         int                      rc;
946
947         if (unlikely(tgt == NULL)) {
948                 CERROR("No target passed");
949                 return -EINVAL;
950         }
951
952         sptlrpc_rule_set_init(&tmp_rset);
953         rc = sptlrpc_conf_target_get_rules(tgt->lut_obd, &tmp_rset);
954         if (rc) {
955                 CERROR("%s: failed get sptlrpc rules: rc = %d\n",
956                        tgt_name(tgt), rc);
957                 return rc;
958         }
959
960         sptlrpc_target_update_exp_flavor(tgt->lut_obd, &tmp_rset);
961
962         write_lock(&tgt->lut_sptlrpc_lock);
963         sptlrpc_rule_set_free(&tgt->lut_sptlrpc_rset);
964         tgt->lut_sptlrpc_rset = tmp_rset;
965         write_unlock(&tgt->lut_sptlrpc_lock);
966
967         return 0;
968 }
969 EXPORT_SYMBOL(tgt_adapt_sptlrpc_conf);
970
971 int tgt_connect(struct tgt_session_info *tsi)
972 {
973         struct ptlrpc_request   *req = tgt_ses_req(tsi);
974         struct obd_connect_data *reply;
975         int                      rc;
976
977         ENTRY;
978
979         /* XXX: better to call this check right after getting new export but
980          * before last_rcvd slot allocation to avoid server load upon insecure
981          * connects. This is to be fixed after unifiyng all targets.
982          */
983         rc = tgt_connect_check_sptlrpc(req, tsi->tsi_exp);
984         if (rc)
985                 GOTO(out, rc);
986
987         /* To avoid exposing partially initialized connection flags, changes up
988          * to this point have been staged in reply->ocd_connect_flags. Now that
989          * connection handling has completed successfully, atomically update
990          * the connect flags in the shared export data structure. LU-1623 */
991         reply = req_capsule_server_get(tsi->tsi_pill, &RMF_CONNECT_DATA);
992         spin_lock(&tsi->tsi_exp->exp_lock);
993         *exp_connect_flags_ptr(tsi->tsi_exp) = reply->ocd_connect_flags;
994         if (reply->ocd_connect_flags & OBD_CONNECT_FLAGS2)
995                 *exp_connect_flags2_ptr(tsi->tsi_exp) =
996                         reply->ocd_connect_flags2;
997         tsi->tsi_exp->exp_connect_data.ocd_brw_size = reply->ocd_brw_size;
998         spin_unlock(&tsi->tsi_exp->exp_lock);
999
1000         if (strcmp(tsi->tsi_exp->exp_obd->obd_type->typ_name,
1001                    LUSTRE_MDT_NAME) == 0) {
1002                 rc = req_check_sepol(tsi->tsi_pill);
1003                 if (rc)
1004                         GOTO(out, rc);
1005         }
1006
1007         RETURN(0);
1008 out:
1009         obd_disconnect(class_export_get(tsi->tsi_exp));
1010         return rc;
1011 }
1012 EXPORT_SYMBOL(tgt_connect);
1013
1014 int tgt_disconnect(struct tgt_session_info *tsi)
1015 {
1016         int rc;
1017
1018         ENTRY;
1019
1020         OBD_FAIL_TIMEOUT(OBD_FAIL_OST_DISCONNECT_DELAY, cfs_fail_val);
1021
1022         rc = target_handle_disconnect(tgt_ses_req(tsi));
1023         if (rc)
1024                 RETURN(err_serious(rc));
1025
1026         RETURN(rc);
1027 }
1028 EXPORT_SYMBOL(tgt_disconnect);
1029
1030 /*
1031  * Unified target OBD handlers
1032  */
1033 int tgt_obd_ping(struct tgt_session_info *tsi)
1034 {
1035         int rc;
1036
1037         ENTRY;
1038
1039         /* The target-specific part of OBD_PING request handling.
1040          * It controls Filter Modification Data (FMD) expiration each time
1041          * PING is received.
1042          *
1043          * Valid only for replayable targets, e.g. MDT and OFD
1044          */
1045         if (tsi->tsi_exp->exp_obd->obd_replayable)
1046                 tgt_fmd_expire(tsi->tsi_exp);
1047
1048         rc = req_capsule_server_pack(tsi->tsi_pill);
1049         if (rc)
1050                 RETURN(err_serious(rc));
1051
1052         RETURN(rc);
1053 }
1054 EXPORT_SYMBOL(tgt_obd_ping);
1055
1056 int tgt_obd_log_cancel(struct tgt_session_info *tsi)
1057 {
1058         return err_serious(-EOPNOTSUPP);
1059 }
1060
1061 int tgt_send_buffer(struct tgt_session_info *tsi, struct lu_rdbuf *rdbuf)
1062 {
1063         struct tgt_thread_info  *tti = tgt_th_info(tsi->tsi_env);
1064         struct ptlrpc_request   *req = tgt_ses_req(tsi);
1065         struct obd_export       *exp = req->rq_export;
1066         struct ptlrpc_bulk_desc *desc;
1067         struct l_wait_info      *lwi = &tti->tti_u.update.tti_wait_info;
1068         int                      i;
1069         int                      rc;
1070
1071         ENTRY;
1072
1073         desc = ptlrpc_prep_bulk_exp(req, rdbuf->rb_nbufs, 1,
1074                                   PTLRPC_BULK_PUT_SOURCE | PTLRPC_BULK_BUF_KVEC,
1075                                     MDS_BULK_PORTAL, &ptlrpc_bulk_kvec_ops);
1076         if (desc == NULL)
1077                 RETURN(-ENOMEM);
1078
1079         for (i = 0; i < rdbuf->rb_nbufs; i++)
1080                 desc->bd_frag_ops->add_iov_frag(desc,
1081                                         rdbuf->rb_bufs[i].lb_buf,
1082                                         rdbuf->rb_bufs[i].lb_len);
1083
1084         rc = target_bulk_io(exp, desc, lwi);
1085         ptlrpc_free_bulk(desc);
1086         RETURN(rc);
1087 }
1088 EXPORT_SYMBOL(tgt_send_buffer);
1089
1090 int tgt_sendpage(struct tgt_session_info *tsi, struct lu_rdpg *rdpg, int nob)
1091 {
1092         struct tgt_thread_info  *tti = tgt_th_info(tsi->tsi_env);
1093         struct ptlrpc_request   *req = tgt_ses_req(tsi);
1094         struct obd_export       *exp = req->rq_export;
1095         struct ptlrpc_bulk_desc *desc;
1096         struct l_wait_info      *lwi = &tti->tti_u.rdpg.tti_wait_info;
1097         int                      tmpcount;
1098         int                      tmpsize;
1099         int                      i;
1100         int                      rc;
1101
1102         ENTRY;
1103
1104         desc = ptlrpc_prep_bulk_exp(req, rdpg->rp_npages, 1,
1105                                     PTLRPC_BULK_PUT_SOURCE |
1106                                         PTLRPC_BULK_BUF_KIOV,
1107                                     MDS_BULK_PORTAL,
1108                                     &ptlrpc_bulk_kiov_pin_ops);
1109         if (desc == NULL)
1110                 RETURN(-ENOMEM);
1111
1112         if (!(exp_connect_flags(exp) & OBD_CONNECT_BRW_SIZE))
1113                 /* old client requires reply size in it's PAGE_SIZE,
1114                  * which is rdpg->rp_count */
1115                 nob = rdpg->rp_count;
1116
1117         for (i = 0, tmpcount = nob; i < rdpg->rp_npages && tmpcount > 0;
1118              i++, tmpcount -= tmpsize) {
1119                 tmpsize = min_t(int, tmpcount, PAGE_SIZE);
1120                 desc->bd_frag_ops->add_kiov_frag(desc, rdpg->rp_pages[i], 0,
1121                                                  tmpsize);
1122         }
1123
1124         LASSERT(desc->bd_nob == nob);
1125         rc = target_bulk_io(exp, desc, lwi);
1126         ptlrpc_free_bulk(desc);
1127         RETURN(rc);
1128 }
1129 EXPORT_SYMBOL(tgt_sendpage);
1130
1131 /*
1132  * OBD_IDX_READ handler
1133  */
1134 static int tgt_obd_idx_read(struct tgt_session_info *tsi)
1135 {
1136         struct tgt_thread_info  *tti = tgt_th_info(tsi->tsi_env);
1137         struct lu_rdpg          *rdpg = &tti->tti_u.rdpg.tti_rdpg;
1138         struct idx_info         *req_ii, *rep_ii;
1139         int                      rc, i;
1140
1141         ENTRY;
1142
1143         memset(rdpg, 0, sizeof(*rdpg));
1144         req_capsule_set(tsi->tsi_pill, &RQF_OBD_IDX_READ);
1145
1146         /* extract idx_info buffer from request & reply */
1147         req_ii = req_capsule_client_get(tsi->tsi_pill, &RMF_IDX_INFO);
1148         if (req_ii == NULL || req_ii->ii_magic != IDX_INFO_MAGIC)
1149                 RETURN(err_serious(-EPROTO));
1150
1151         rc = req_capsule_server_pack(tsi->tsi_pill);
1152         if (rc)
1153                 RETURN(err_serious(rc));
1154
1155         rep_ii = req_capsule_server_get(tsi->tsi_pill, &RMF_IDX_INFO);
1156         if (rep_ii == NULL)
1157                 RETURN(err_serious(-EFAULT));
1158         rep_ii->ii_magic = IDX_INFO_MAGIC;
1159
1160         /* extract hash to start with */
1161         rdpg->rp_hash = req_ii->ii_hash_start;
1162
1163         /* extract requested attributes */
1164         rdpg->rp_attrs = req_ii->ii_attrs;
1165
1166         /* check that fid packed in request is valid and supported */
1167         if (!fid_is_sane(&req_ii->ii_fid))
1168                 RETURN(-EINVAL);
1169         rep_ii->ii_fid = req_ii->ii_fid;
1170
1171         /* copy flags */
1172         rep_ii->ii_flags = req_ii->ii_flags;
1173
1174         /* compute number of pages to allocate, ii_count is the number of 4KB
1175          * containers */
1176         if (req_ii->ii_count <= 0)
1177                 GOTO(out, rc = -EFAULT);
1178         rdpg->rp_count = min_t(unsigned int, req_ii->ii_count << LU_PAGE_SHIFT,
1179                                exp_max_brw_size(tsi->tsi_exp));
1180         rdpg->rp_npages = (rdpg->rp_count + PAGE_SIZE - 1) >> PAGE_SHIFT;
1181
1182         /* allocate pages to store the containers */
1183         OBD_ALLOC(rdpg->rp_pages, rdpg->rp_npages * sizeof(rdpg->rp_pages[0]));
1184         if (rdpg->rp_pages == NULL)
1185                 GOTO(out, rc = -ENOMEM);
1186         for (i = 0; i < rdpg->rp_npages; i++) {
1187                 rdpg->rp_pages[i] = alloc_page(GFP_NOFS);
1188                 if (rdpg->rp_pages[i] == NULL)
1189                         GOTO(out, rc = -ENOMEM);
1190         }
1191
1192         /* populate pages with key/record pairs */
1193         rc = dt_index_read(tsi->tsi_env, tsi->tsi_tgt->lut_bottom, rep_ii, rdpg);
1194         if (rc < 0)
1195                 GOTO(out, rc);
1196
1197         LASSERTF(rc <= rdpg->rp_count, "dt_index_read() returned more than "
1198                  "asked %d > %d\n", rc, rdpg->rp_count);
1199
1200         /* send pages to client */
1201         rc = tgt_sendpage(tsi, rdpg, rc);
1202         if (rc)
1203                 GOTO(out, rc);
1204         EXIT;
1205 out:
1206         if (rdpg->rp_pages) {
1207                 for (i = 0; i < rdpg->rp_npages; i++)
1208                         if (rdpg->rp_pages[i])
1209                                 __free_page(rdpg->rp_pages[i]);
1210                 OBD_FREE(rdpg->rp_pages,
1211                          rdpg->rp_npages * sizeof(rdpg->rp_pages[0]));
1212         }
1213         return rc;
1214 }
1215
1216 struct tgt_handler tgt_obd_handlers[] = {
1217 TGT_OBD_HDL    (0,      OBD_PING,               tgt_obd_ping),
1218 TGT_OBD_HDL    (0,      OBD_IDX_READ,           tgt_obd_idx_read)
1219 };
1220 EXPORT_SYMBOL(tgt_obd_handlers);
1221
1222 int tgt_sync(const struct lu_env *env, struct lu_target *tgt,
1223              struct dt_object *obj, __u64 start, __u64 end)
1224 {
1225         int rc = 0;
1226
1227         ENTRY;
1228
1229         /* if no objid is specified, it means "sync whole filesystem" */
1230         if (obj == NULL) {
1231                 rc = dt_sync(env, tgt->lut_bottom);
1232         } else if (dt_version_get(env, obj) >
1233                    tgt->lut_obd->obd_last_committed) {
1234                 rc = dt_object_sync(env, obj, start, end);
1235         }
1236         atomic_inc(&tgt->lut_sync_count);
1237
1238         RETURN(rc);
1239 }
1240 EXPORT_SYMBOL(tgt_sync);
1241 /*
1242  * Unified target DLM handlers.
1243  */
1244
1245 /**
1246  * Unified target BAST
1247  *
1248  * Ensure data and metadata are synced to disk when lock is canceled if Sync on
1249  * Cancel (SOC) is enabled. If it's extent lock, normally sync obj is enough,
1250  * but if it's cross-MDT lock, because remote object version is not set, a
1251  * filesystem sync is needed.
1252  *
1253  * \param lock server side lock
1254  * \param desc lock desc
1255  * \param data ldlm_cb_set_arg
1256  * \param flag  indicates whether this cancelling or blocking callback
1257  * \retval      0 on success
1258  * \retval      negative number on error
1259  */
1260 static int tgt_blocking_ast(struct ldlm_lock *lock, struct ldlm_lock_desc *desc,
1261                             void *data, int flag)
1262 {
1263         struct lu_env            env;
1264         struct lu_target        *tgt;
1265         struct dt_object        *obj = NULL;
1266         struct lu_fid            fid;
1267         int                      rc = 0;
1268
1269         ENTRY;
1270
1271         tgt = class_exp2tgt(lock->l_export);
1272
1273         if (unlikely(tgt == NULL)) {
1274                 CDEBUG(D_ERROR, "%s: No target for connected export\n",
1275                        class_exp2obd(lock->l_export)->obd_name);
1276                 RETURN(-EINVAL);
1277         }
1278
1279         if (flag == LDLM_CB_CANCELING &&
1280             (lock->l_granted_mode & (LCK_EX | LCK_PW | LCK_GROUP)) &&
1281             (tgt->lut_sync_lock_cancel == ALWAYS_SYNC_ON_CANCEL ||
1282              (tgt->lut_sync_lock_cancel == BLOCKING_SYNC_ON_CANCEL &&
1283               ldlm_is_cbpending(lock))) &&
1284             ((exp_connect_flags(lock->l_export) & OBD_CONNECT_MDS_MDS) ||
1285              lock->l_resource->lr_type == LDLM_EXTENT)) {
1286                 __u64 start = 0;
1287                 __u64 end = OBD_OBJECT_EOF;
1288
1289                 rc = lu_env_init(&env, LCT_DT_THREAD);
1290                 if (unlikely(rc != 0))
1291                         GOTO(err, rc);
1292
1293                 ost_fid_from_resid(&fid, &lock->l_resource->lr_name,
1294                                    tgt->lut_lsd.lsd_osd_index);
1295
1296                 if (lock->l_resource->lr_type == LDLM_EXTENT) {
1297                         obj = dt_locate(&env, tgt->lut_bottom, &fid);
1298                         if (IS_ERR(obj))
1299                                 GOTO(err_env, rc = PTR_ERR(obj));
1300
1301                         if (!dt_object_exists(obj))
1302                                 GOTO(err_put, rc = -ENOENT);
1303
1304                         start = lock->l_policy_data.l_extent.start;
1305                         end = lock->l_policy_data.l_extent.end;
1306                 }
1307
1308                 rc = tgt_sync(&env, tgt, obj, start, end);
1309                 if (rc < 0) {
1310                         CERROR("%s: syncing "DFID" (%llu-%llu) on lock "
1311                                "cancel: rc = %d\n",
1312                                tgt_name(tgt), PFID(&fid),
1313                                lock->l_policy_data.l_extent.start,
1314                                lock->l_policy_data.l_extent.end, rc);
1315                 }
1316 err_put:
1317                 if (obj != NULL)
1318                         dt_object_put(&env, obj);
1319 err_env:
1320                 lu_env_fini(&env);
1321         }
1322 err:
1323         rc = ldlm_server_blocking_ast(lock, desc, data, flag);
1324         RETURN(rc);
1325 }
1326
1327 static struct ldlm_callback_suite tgt_dlm_cbs = {
1328         .lcs_completion = ldlm_server_completion_ast,
1329         .lcs_blocking   = tgt_blocking_ast,
1330         .lcs_glimpse    = ldlm_server_glimpse_ast
1331 };
1332
1333 int tgt_enqueue(struct tgt_session_info *tsi)
1334 {
1335         struct ptlrpc_request *req = tgt_ses_req(tsi);
1336         int rc;
1337
1338         ENTRY;
1339         /*
1340          * tsi->tsi_dlm_req was already swapped and (if necessary) converted,
1341          * tsi->tsi_dlm_cbs was set by the *_req_handle() function.
1342          */
1343         LASSERT(tsi->tsi_dlm_req != NULL);
1344         rc = ldlm_handle_enqueue0(tsi->tsi_exp->exp_obd->obd_namespace, req,
1345                                   tsi->tsi_dlm_req, &tgt_dlm_cbs);
1346         if (rc)
1347                 RETURN(err_serious(rc));
1348
1349         switch (LUT_FAIL_CLASS(tsi->tsi_reply_fail_id)) {
1350         case LUT_FAIL_MDT:
1351                 tsi->tsi_reply_fail_id = OBD_FAIL_MDS_LDLM_REPLY_NET;
1352                 break;
1353         case LUT_FAIL_OST:
1354                 tsi->tsi_reply_fail_id = OBD_FAIL_OST_LDLM_REPLY_NET;
1355                 break;
1356         case LUT_FAIL_MGT:
1357                 tsi->tsi_reply_fail_id = OBD_FAIL_MGS_LDLM_REPLY_NET;
1358                 break;
1359         default:
1360                 tsi->tsi_reply_fail_id = OBD_FAIL_LDLM_REPLY;
1361                 break;
1362         }
1363         RETURN(req->rq_status);
1364 }
1365 EXPORT_SYMBOL(tgt_enqueue);
1366
1367 int tgt_convert(struct tgt_session_info *tsi)
1368 {
1369         struct ptlrpc_request *req = tgt_ses_req(tsi);
1370         int rc;
1371
1372         ENTRY;
1373         LASSERT(tsi->tsi_dlm_req);
1374         rc = ldlm_handle_convert0(req, tsi->tsi_dlm_req);
1375         if (rc)
1376                 RETURN(err_serious(rc));
1377
1378         RETURN(req->rq_status);
1379 }
1380
1381 int tgt_bl_callback(struct tgt_session_info *tsi)
1382 {
1383         return err_serious(-EOPNOTSUPP);
1384 }
1385
1386 int tgt_cp_callback(struct tgt_session_info *tsi)
1387 {
1388         return err_serious(-EOPNOTSUPP);
1389 }
1390
1391 /* generic LDLM target handler */
1392 struct tgt_handler tgt_dlm_handlers[] = {
1393 TGT_DLM_HDL(HAS_KEY, LDLM_ENQUEUE, tgt_enqueue),
1394 TGT_DLM_HDL(HAS_KEY, LDLM_CONVERT, tgt_convert),
1395 TGT_DLM_HDL_VAR(0, LDLM_BL_CALLBACK, tgt_bl_callback),
1396 TGT_DLM_HDL_VAR(0, LDLM_CP_CALLBACK, tgt_cp_callback)
1397 };
1398 EXPORT_SYMBOL(tgt_dlm_handlers);
1399
1400 /*
1401  * Unified target LLOG handlers.
1402  */
1403 int tgt_llog_open(struct tgt_session_info *tsi)
1404 {
1405         int rc;
1406
1407         ENTRY;
1408
1409         rc = llog_origin_handle_open(tgt_ses_req(tsi));
1410
1411         RETURN(rc);
1412 }
1413 EXPORT_SYMBOL(tgt_llog_open);
1414
1415 int tgt_llog_read_header(struct tgt_session_info *tsi)
1416 {
1417         int rc;
1418
1419         ENTRY;
1420
1421         rc = llog_origin_handle_read_header(tgt_ses_req(tsi));
1422
1423         RETURN(rc);
1424 }
1425 EXPORT_SYMBOL(tgt_llog_read_header);
1426
1427 int tgt_llog_next_block(struct tgt_session_info *tsi)
1428 {
1429         int rc;
1430
1431         ENTRY;
1432
1433         rc = llog_origin_handle_next_block(tgt_ses_req(tsi));
1434
1435         RETURN(rc);
1436 }
1437 EXPORT_SYMBOL(tgt_llog_next_block);
1438
1439 int tgt_llog_prev_block(struct tgt_session_info *tsi)
1440 {
1441         int rc;
1442
1443         ENTRY;
1444
1445         rc = llog_origin_handle_prev_block(tgt_ses_req(tsi));
1446
1447         RETURN(rc);
1448 }
1449 EXPORT_SYMBOL(tgt_llog_prev_block);
1450
1451 /* generic llog target handler */
1452 struct tgt_handler tgt_llog_handlers[] = {
1453 TGT_LLOG_HDL    (0,     LLOG_ORIGIN_HANDLE_CREATE,      tgt_llog_open),
1454 TGT_LLOG_HDL    (0,     LLOG_ORIGIN_HANDLE_NEXT_BLOCK,  tgt_llog_next_block),
1455 TGT_LLOG_HDL    (0,     LLOG_ORIGIN_HANDLE_READ_HEADER, tgt_llog_read_header),
1456 TGT_LLOG_HDL    (0,     LLOG_ORIGIN_HANDLE_PREV_BLOCK,  tgt_llog_prev_block),
1457 };
1458 EXPORT_SYMBOL(tgt_llog_handlers);
1459
1460 /*
1461  * sec context handlers
1462  */
1463 /* XXX: Implement based on mdt_sec_ctx_handle()? */
1464 static int tgt_sec_ctx_handle(struct tgt_session_info *tsi)
1465 {
1466         return 0;
1467 }
1468
1469 struct tgt_handler tgt_sec_ctx_handlers[] = {
1470 TGT_SEC_HDL_VAR(0,      SEC_CTX_INIT,           tgt_sec_ctx_handle),
1471 TGT_SEC_HDL_VAR(0,      SEC_CTX_INIT_CONT,      tgt_sec_ctx_handle),
1472 TGT_SEC_HDL_VAR(0,      SEC_CTX_FINI,           tgt_sec_ctx_handle),
1473 };
1474 EXPORT_SYMBOL(tgt_sec_ctx_handlers);
1475
1476 int (*tgt_lfsck_in_notify_local)(const struct lu_env *env,
1477                                  struct dt_device *key,
1478                                  struct lfsck_req_local *lrl,
1479                                  struct thandle *th) = NULL;
1480
1481 void tgt_register_lfsck_in_notify_local(int (*notify)(const struct lu_env *,
1482                                                       struct dt_device *,
1483                                                       struct lfsck_req_local *,
1484                                                       struct thandle *))
1485 {
1486         tgt_lfsck_in_notify_local = notify;
1487 }
1488 EXPORT_SYMBOL(tgt_register_lfsck_in_notify_local);
1489
1490 int (*tgt_lfsck_in_notify)(const struct lu_env *env,
1491                            struct dt_device *key,
1492                            struct lfsck_request *lr) = NULL;
1493
1494 void tgt_register_lfsck_in_notify(int (*notify)(const struct lu_env *,
1495                                                 struct dt_device *,
1496                                                 struct lfsck_request *))
1497 {
1498         tgt_lfsck_in_notify = notify;
1499 }
1500 EXPORT_SYMBOL(tgt_register_lfsck_in_notify);
1501
1502 static int (*tgt_lfsck_query)(const struct lu_env *env,
1503                               struct dt_device *key,
1504                               struct lfsck_request *req,
1505                               struct lfsck_reply *rep,
1506                               struct lfsck_query *que) = NULL;
1507
1508 void tgt_register_lfsck_query(int (*query)(const struct lu_env *,
1509                                            struct dt_device *,
1510                                            struct lfsck_request *,
1511                                            struct lfsck_reply *,
1512                                            struct lfsck_query *))
1513 {
1514         tgt_lfsck_query = query;
1515 }
1516 EXPORT_SYMBOL(tgt_register_lfsck_query);
1517
1518 /* LFSCK request handlers */
1519 static int tgt_handle_lfsck_notify(struct tgt_session_info *tsi)
1520 {
1521         const struct lu_env     *env = tsi->tsi_env;
1522         struct dt_device        *key = tsi->tsi_tgt->lut_bottom;
1523         struct lfsck_request    *lr;
1524         int                      rc;
1525         ENTRY;
1526
1527         lr = req_capsule_client_get(tsi->tsi_pill, &RMF_LFSCK_REQUEST);
1528         if (lr == NULL)
1529                 RETURN(-EPROTO);
1530
1531         rc = tgt_lfsck_in_notify(env, key, lr);
1532
1533         RETURN(rc);
1534 }
1535
1536 static int tgt_handle_lfsck_query(struct tgt_session_info *tsi)
1537 {
1538         struct lfsck_request    *request;
1539         struct lfsck_reply      *reply;
1540         int                      rc;
1541         ENTRY;
1542
1543         request = req_capsule_client_get(tsi->tsi_pill, &RMF_LFSCK_REQUEST);
1544         if (request == NULL)
1545                 RETURN(-EPROTO);
1546
1547         reply = req_capsule_server_get(tsi->tsi_pill, &RMF_LFSCK_REPLY);
1548         if (reply == NULL)
1549                 RETURN(-ENOMEM);
1550
1551         rc = tgt_lfsck_query(tsi->tsi_env, tsi->tsi_tgt->lut_bottom,
1552                              request, reply, NULL);
1553
1554         RETURN(rc < 0 ? rc : 0);
1555 }
1556
1557 struct tgt_handler tgt_lfsck_handlers[] = {
1558 TGT_LFSCK_HDL(HAS_REPLY,        LFSCK_NOTIFY,   tgt_handle_lfsck_notify),
1559 TGT_LFSCK_HDL(HAS_REPLY,        LFSCK_QUERY,    tgt_handle_lfsck_query),
1560 };
1561 EXPORT_SYMBOL(tgt_lfsck_handlers);
1562
1563 /*
1564  * initialize per-thread page pool (bug 5137).
1565  */
1566 int tgt_io_thread_init(struct ptlrpc_thread *thread)
1567 {
1568         struct tgt_thread_big_cache *tbc;
1569
1570         ENTRY;
1571
1572         LASSERT(thread != NULL);
1573         LASSERT(thread->t_data == NULL);
1574
1575         OBD_ALLOC_LARGE(tbc, sizeof(*tbc));
1576         if (tbc == NULL)
1577                 RETURN(-ENOMEM);
1578         thread->t_data = tbc;
1579         RETURN(0);
1580 }
1581 EXPORT_SYMBOL(tgt_io_thread_init);
1582
1583 /*
1584  * free per-thread pool created by tgt_thread_init().
1585  */
1586 void tgt_io_thread_done(struct ptlrpc_thread *thread)
1587 {
1588         struct tgt_thread_big_cache *tbc;
1589
1590         ENTRY;
1591
1592         LASSERT(thread != NULL);
1593
1594         /*
1595          * be prepared to handle partially-initialized pools (because this is
1596          * called from ost_io_thread_init() for cleanup.
1597          */
1598         tbc = thread->t_data;
1599         if (tbc != NULL) {
1600                 OBD_FREE_LARGE(tbc, sizeof(*tbc));
1601                 thread->t_data = NULL;
1602         }
1603         EXIT;
1604 }
1605 EXPORT_SYMBOL(tgt_io_thread_done);
1606
1607 /**
1608  * Helper function for getting Data-on-MDT file server DLM lock
1609  * if asked by client.
1610  */
1611 int tgt_mdt_data_lock(struct ldlm_namespace *ns, struct ldlm_res_id *res_id,
1612                       struct lustre_handle *lh, int mode, __u64 *flags)
1613 {
1614         union ldlm_policy_data policy = {
1615                 .l_inodebits.bits = MDS_INODELOCK_DOM,
1616         };
1617         int rc;
1618
1619         ENTRY;
1620
1621         LASSERT(lh != NULL);
1622         LASSERT(ns != NULL);
1623         LASSERT(!lustre_handle_is_used(lh));
1624
1625         rc = ldlm_cli_enqueue_local(NULL, ns, res_id, LDLM_IBITS, &policy, mode,
1626                                     flags, ldlm_blocking_ast,
1627                                     ldlm_completion_ast, ldlm_glimpse_ast,
1628                                     NULL, 0, LVB_T_NONE, NULL, lh);
1629
1630         RETURN(rc == ELDLM_OK ? 0 : -EIO);
1631 }
1632 EXPORT_SYMBOL(tgt_mdt_data_lock);
1633
1634 void tgt_mdt_data_unlock(struct lustre_handle *lh, enum ldlm_mode mode)
1635 {
1636         LASSERT(lustre_handle_is_used(lh));
1637         ldlm_lock_decref(lh, mode);
1638 }
1639 EXPORT_SYMBOL(tgt_mdt_data_unlock);
1640
1641 /**
1642  * Helper function for getting server side [start, start+count] DLM lock
1643  * if asked by client.
1644  */
1645 int tgt_extent_lock(const struct lu_env *env, struct ldlm_namespace *ns,
1646                     struct ldlm_res_id *res_id, __u64 start, __u64 end,
1647                     struct lustre_handle *lh, int mode, __u64 *flags)
1648 {
1649         union ldlm_policy_data policy;
1650         int rc;
1651
1652         ENTRY;
1653
1654         LASSERT(lh != NULL);
1655         LASSERT(ns != NULL);
1656         LASSERT(!lustre_handle_is_used(lh));
1657
1658         policy.l_extent.gid = 0;
1659         policy.l_extent.start = start & PAGE_MASK;
1660
1661         /*
1662          * If ->o_blocks is EOF it means "lock till the end of the file".
1663          * Otherwise, it's size of an extent or hole being punched (in bytes).
1664          */
1665         if (end == OBD_OBJECT_EOF || end < start)
1666                 policy.l_extent.end = OBD_OBJECT_EOF;
1667         else
1668                 policy.l_extent.end = end | ~PAGE_MASK;
1669
1670         rc = ldlm_cli_enqueue_local(env, ns, res_id, LDLM_EXTENT, &policy,
1671                                     mode, flags, ldlm_blocking_ast,
1672                                     ldlm_completion_ast, ldlm_glimpse_ast,
1673                                     NULL, 0, LVB_T_NONE, NULL, lh);
1674         RETURN(rc == ELDLM_OK ? 0 : -EIO);
1675 }
1676 EXPORT_SYMBOL(tgt_extent_lock);
1677
1678 void tgt_extent_unlock(struct lustre_handle *lh, enum ldlm_mode mode)
1679 {
1680         LASSERT(lustre_handle_is_used(lh));
1681         ldlm_lock_decref(lh, mode);
1682 }
1683 EXPORT_SYMBOL(tgt_extent_unlock);
1684
1685 static int tgt_brw_lock(const struct lu_env *env, struct obd_export *exp,
1686                         struct ldlm_res_id *res_id, struct obd_ioobj *obj,
1687                         struct niobuf_remote *nb, struct lustre_handle *lh,
1688                         enum ldlm_mode mode)
1689 {
1690         struct ldlm_namespace   *ns = exp->exp_obd->obd_namespace;
1691         __u64                    flags = 0;
1692         int                      nrbufs = obj->ioo_bufcnt;
1693         int                      i;
1694         int                      rc;
1695
1696         ENTRY;
1697
1698         LASSERT(mode == LCK_PR || mode == LCK_PW);
1699         LASSERT(!lustre_handle_is_used(lh));
1700
1701         if (ns->ns_obd->obd_recovering)
1702                 RETURN(0);
1703
1704         if (nrbufs == 0 || !(nb[0].rnb_flags & OBD_BRW_SRVLOCK))
1705                 RETURN(0);
1706
1707         for (i = 1; i < nrbufs; i++)
1708                 if (!(nb[i].rnb_flags & OBD_BRW_SRVLOCK))
1709                         RETURN(-EFAULT);
1710
1711         /* MDT IO for data-on-mdt */
1712         if (exp->exp_connect_data.ocd_connect_flags & OBD_CONNECT_IBITS)
1713                 rc = tgt_mdt_data_lock(ns, res_id, lh, mode, &flags);
1714         else
1715                 rc = tgt_extent_lock(env, ns, res_id, nb[0].rnb_offset,
1716                                      nb[nrbufs - 1].rnb_offset +
1717                                      nb[nrbufs - 1].rnb_len - 1,
1718                                      lh, mode, &flags);
1719         RETURN(rc);
1720 }
1721
1722 static void tgt_brw_unlock(struct obd_ioobj *obj, struct niobuf_remote *niob,
1723                            struct lustre_handle *lh, enum ldlm_mode mode)
1724 {
1725         ENTRY;
1726
1727         LASSERT(mode == LCK_PR || mode == LCK_PW);
1728         LASSERT((obj->ioo_bufcnt > 0 &&
1729                  (niob[0].rnb_flags & OBD_BRW_SRVLOCK)) ==
1730                 lustre_handle_is_used(lh));
1731
1732         if (lustre_handle_is_used(lh))
1733                 tgt_extent_unlock(lh, mode);
1734         EXIT;
1735 }
1736 static int tgt_checksum_niobuf(struct lu_target *tgt,
1737                                  struct niobuf_local *local_nb, int npages,
1738                                  int opc, enum cksum_types cksum_type,
1739                                  __u32 *cksum)
1740 {
1741         struct ahash_request           *req;
1742         unsigned int                    bufsize;
1743         int                             i, err;
1744         unsigned char                   cfs_alg = cksum_obd2cfs(cksum_type);
1745
1746         req = cfs_crypto_hash_init(cfs_alg, NULL, 0);
1747         if (IS_ERR(req)) {
1748                 CERROR("%s: unable to initialize checksum hash %s\n",
1749                        tgt_name(tgt), cfs_crypto_hash_name(cfs_alg));
1750                 return PTR_ERR(req);
1751         }
1752
1753         CDEBUG(D_INFO, "Checksum for algo %s\n", cfs_crypto_hash_name(cfs_alg));
1754         for (i = 0; i < npages; i++) {
1755                 /* corrupt the data before we compute the checksum, to
1756                  * simulate a client->OST data error */
1757                 if (i == 0 && opc == OST_WRITE &&
1758                     OBD_FAIL_CHECK(OBD_FAIL_OST_CHECKSUM_RECEIVE)) {
1759                         int off = local_nb[i].lnb_page_offset & ~PAGE_MASK;
1760                         int len = local_nb[i].lnb_len;
1761                         struct page *np = tgt_page_to_corrupt;
1762
1763                         if (np) {
1764                                 char *ptr = ll_kmap_atomic(local_nb[i].lnb_page,
1765                                                         KM_USER0);
1766                                 char *ptr2 = page_address(np);
1767
1768                                 memcpy(ptr2 + off, ptr + off, len);
1769                                 memcpy(ptr2 + off, "bad3", min(4, len));
1770                                 ll_kunmap_atomic(ptr, KM_USER0);
1771
1772                                 /* LU-8376 to preserve original index for
1773                                  * display in dump_all_bulk_pages() */
1774                                 np->index = i;
1775
1776                                 cfs_crypto_hash_update_page(req, np, off,
1777                                                             len);
1778                                 continue;
1779                         } else {
1780                                 CERROR("%s: can't alloc page for corruption\n",
1781                                        tgt_name(tgt));
1782                         }
1783                 }
1784                 cfs_crypto_hash_update_page(req, local_nb[i].lnb_page,
1785                                   local_nb[i].lnb_page_offset & ~PAGE_MASK,
1786                                   local_nb[i].lnb_len);
1787
1788                  /* corrupt the data after we compute the checksum, to
1789                  * simulate an OST->client data error */
1790                 if (i == 0 && opc == OST_READ &&
1791                     OBD_FAIL_CHECK(OBD_FAIL_OST_CHECKSUM_SEND)) {
1792                         int off = local_nb[i].lnb_page_offset & ~PAGE_MASK;
1793                         int len = local_nb[i].lnb_len;
1794                         struct page *np = tgt_page_to_corrupt;
1795
1796                         if (np) {
1797                                 char *ptr = ll_kmap_atomic(local_nb[i].lnb_page,
1798                                                         KM_USER0);
1799                                 char *ptr2 = page_address(np);
1800
1801                                 memcpy(ptr2 + off, ptr + off, len);
1802                                 memcpy(ptr2 + off, "bad4", min(4, len));
1803                                 ll_kunmap_atomic(ptr, KM_USER0);
1804
1805                                 /* LU-8376 to preserve original index for
1806                                  * display in dump_all_bulk_pages() */
1807                                 np->index = i;
1808
1809                                 cfs_crypto_hash_update_page(req, np, off,
1810                                                             len);
1811                                 continue;
1812                         } else {
1813                                 CERROR("%s: can't alloc page for corruption\n",
1814                                        tgt_name(tgt));
1815                         }
1816                 }
1817         }
1818
1819         bufsize = sizeof(*cksum);
1820         err = cfs_crypto_hash_final(req, (unsigned char *)cksum, &bufsize);
1821
1822         return 0;
1823 }
1824
1825 char dbgcksum_file_name[PATH_MAX];
1826
1827 static void dump_all_bulk_pages(struct obdo *oa, int count,
1828                                 struct niobuf_local *local_nb,
1829                                 __u32 server_cksum, __u32 client_cksum)
1830 {
1831         struct file *filp;
1832         int rc, i;
1833         unsigned int len;
1834         char *buf;
1835
1836         /* will only keep dump of pages on first error for the same range in
1837          * file/fid, not during the resends/retries. */
1838         snprintf(dbgcksum_file_name, sizeof(dbgcksum_file_name),
1839                  "%s-checksum_dump-ost-"DFID":[%llu-%llu]-%x-%x",
1840                  (strncmp(libcfs_debug_file_path_arr, "NONE", 4) != 0 ?
1841                   libcfs_debug_file_path_arr :
1842                   LIBCFS_DEBUG_FILE_PATH_DEFAULT),
1843                  oa->o_valid & OBD_MD_FLFID ? oa->o_parent_seq : (__u64)0,
1844                  oa->o_valid & OBD_MD_FLFID ? oa->o_parent_oid : 0,
1845                  oa->o_valid & OBD_MD_FLFID ? oa->o_parent_ver : 0,
1846                  local_nb[0].lnb_file_offset,
1847                  local_nb[count-1].lnb_file_offset +
1848                  local_nb[count-1].lnb_len - 1, client_cksum, server_cksum);
1849         filp = filp_open(dbgcksum_file_name,
1850                          O_CREAT | O_EXCL | O_WRONLY | O_LARGEFILE, 0600);
1851         if (IS_ERR(filp)) {
1852                 rc = PTR_ERR(filp);
1853                 if (rc == -EEXIST)
1854                         CDEBUG(D_INFO, "%s: can't open to dump pages with "
1855                                "checksum error: rc = %d\n", dbgcksum_file_name,
1856                                rc);
1857                 else
1858                         CERROR("%s: can't open to dump pages with checksum "
1859                                "error: rc = %d\n", dbgcksum_file_name, rc);
1860                 return;
1861         }
1862
1863         for (i = 0; i < count; i++) {
1864                 len = local_nb[i].lnb_len;
1865                 buf = kmap(local_nb[i].lnb_page);
1866                 while (len != 0) {
1867                         rc = cfs_kernel_write(filp, buf, len, &filp->f_pos);
1868                         if (rc < 0) {
1869                                 CERROR("%s: wanted to write %u but got %d "
1870                                        "error\n", dbgcksum_file_name, len, rc);
1871                                 break;
1872                         }
1873                         len -= rc;
1874                         buf += rc;
1875                         CDEBUG(D_INFO, "%s: wrote %d bytes\n",
1876                                dbgcksum_file_name, rc);
1877                 }
1878                 kunmap(local_nb[i].lnb_page);
1879         }
1880
1881         rc = vfs_fsync_range(filp, 0, LLONG_MAX, 1);
1882         if (rc)
1883                 CERROR("%s: sync returns %d\n", dbgcksum_file_name, rc);
1884         filp_close(filp, NULL);
1885         return;
1886 }
1887
1888 static int check_read_checksum(struct niobuf_local *local_nb, int npages,
1889                                struct obd_export *exp, struct obdo *oa,
1890                                const struct lnet_process_id *peer,
1891                                __u32 client_cksum, __u32 server_cksum,
1892                                enum cksum_types server_cksum_type)
1893 {
1894         char *msg;
1895         enum cksum_types cksum_type;
1896         loff_t start, end;
1897
1898         /* unlikely to happen and only if resend does not occur due to cksum
1899          * control failure on Client */
1900         if (unlikely(server_cksum == client_cksum)) {
1901                 CDEBUG(D_PAGE, "checksum %x confirmed upon retry\n",
1902                        client_cksum);
1903                 return 0;
1904         }
1905
1906         if (exp->exp_obd->obd_checksum_dump)
1907                 dump_all_bulk_pages(oa, npages, local_nb, server_cksum,
1908                                     client_cksum);
1909
1910         cksum_type = obd_cksum_type_unpack(oa->o_valid & OBD_MD_FLFLAGS ?
1911                                            oa->o_flags : 0);
1912
1913         if (cksum_type != server_cksum_type)
1914                 msg = "the server may have not used the checksum type specified"
1915                       " in the original request - likely a protocol problem";
1916         else
1917                 msg = "should have changed on the client or in transit";
1918
1919         start = local_nb[0].lnb_file_offset;
1920         end = local_nb[npages-1].lnb_file_offset +
1921                                         local_nb[npages-1].lnb_len - 1;
1922
1923         LCONSOLE_ERROR_MSG(0x132, "%s: BAD READ CHECKSUM: %s: from %s inode "
1924                 DFID " object "DOSTID" extent [%llu-%llu], client returned csum"
1925                 " %x (type %x), server csum %x (type %x)\n",
1926                 exp->exp_obd->obd_name,
1927                 msg, libcfs_nid2str(peer->nid),
1928                 oa->o_valid & OBD_MD_FLFID ? oa->o_parent_seq : 0ULL,
1929                 oa->o_valid & OBD_MD_FLFID ? oa->o_parent_oid : 0,
1930                 oa->o_valid & OBD_MD_FLFID ? oa->o_parent_ver : 0,
1931                 POSTID(&oa->o_oi),
1932                 start, end, client_cksum, cksum_type, server_cksum,
1933                 server_cksum_type);
1934
1935         return 1;
1936 }
1937
1938 static int tgt_pages2shortio(struct niobuf_local *local, int npages,
1939                              unsigned char *buf, int size)
1940 {
1941         int     i, off, len, copied = size;
1942         char    *ptr;
1943
1944         for (i = 0; i < npages; i++) {
1945                 off = local[i].lnb_page_offset & ~PAGE_MASK;
1946                 len = local[i].lnb_len;
1947
1948                 CDEBUG(D_PAGE, "index %d offset = %d len = %d left = %d\n",
1949                        i, off, len, size);
1950                 if (len > size)
1951                         return -EINVAL;
1952
1953                 ptr = ll_kmap_atomic(local[i].lnb_page, KM_USER0);
1954                 memcpy(buf + off, ptr, len);
1955                 ll_kunmap_atomic(ptr, KM_USER0);
1956                 buf += len;
1957                 size -= len;
1958         }
1959         return copied - size;
1960 }
1961
1962 static int tgt_checksum_niobuf_t10pi(struct lu_target *tgt,
1963                                      struct niobuf_local *local_nb,
1964                                      int npages, int opc,
1965                                      obd_dif_csum_fn *fn,
1966                                      int sector_size,
1967                                      u32 *check_sum)
1968 {
1969         enum cksum_types t10_cksum_type = tgt->lut_dt_conf.ddp_t10_cksum_type;
1970         unsigned char cfs_alg = cksum_obd2cfs(OBD_CKSUM_T10_TOP);
1971         const char *obd_name = tgt->lut_obd->obd_name;
1972         struct ahash_request *req;
1973         unsigned int bufsize;
1974         unsigned char *buffer;
1975         struct page *__page;
1976         __u16 *guard_start;
1977         int guard_number;
1978         int used_number = 0;
1979         __u32 cksum;
1980         int rc = 0;
1981         int used;
1982         int i;
1983
1984         __page = alloc_page(GFP_KERNEL);
1985         if (__page == NULL)
1986                 return -ENOMEM;
1987
1988         req = cfs_crypto_hash_init(cfs_alg, NULL, 0);
1989         if (IS_ERR(req)) {
1990                 CERROR("%s: unable to initialize checksum hash %s\n",
1991                        tgt_name(tgt), cfs_crypto_hash_name(cfs_alg));
1992                 return PTR_ERR(req);
1993         }
1994
1995         buffer = kmap(__page);
1996         guard_start = (__u16 *)buffer;
1997         guard_number = PAGE_SIZE / sizeof(*guard_start);
1998         for (i = 0; i < npages; i++) {
1999                 /* corrupt the data before we compute the checksum, to
2000                  * simulate a client->OST data error */
2001                 if (i == 0 && opc == OST_WRITE &&
2002                     OBD_FAIL_CHECK(OBD_FAIL_OST_CHECKSUM_RECEIVE)) {
2003                         int off = local_nb[i].lnb_page_offset & ~PAGE_MASK;
2004                         int len = local_nb[i].lnb_len;
2005                         struct page *np = tgt_page_to_corrupt;
2006
2007                         if (np) {
2008                                 char *ptr = ll_kmap_atomic(local_nb[i].lnb_page,
2009                                                         KM_USER0);
2010                                 char *ptr2 = page_address(np);
2011
2012                                 memcpy(ptr2 + off, ptr + off, len);
2013                                 memcpy(ptr2 + off, "bad3", min(4, len));
2014                                 ll_kunmap_atomic(ptr, KM_USER0);
2015
2016                                 /* LU-8376 to preserve original index for
2017                                  * display in dump_all_bulk_pages() */
2018                                 np->index = i;
2019
2020                                 cfs_crypto_hash_update_page(req, np, off,
2021                                                             len);
2022                                 continue;
2023                         } else {
2024                                 CERROR("%s: can't alloc page for corruption\n",
2025                                        tgt_name(tgt));
2026                         }
2027                 }
2028
2029                 /*
2030                  * The left guard number should be able to hold checksums of a
2031                  * whole page
2032                  */
2033                 if (t10_cksum_type && opc == OST_READ &&
2034                     local_nb[i].lnb_guard_disk) {
2035                         used = DIV_ROUND_UP(local_nb[i].lnb_len, sector_size);
2036                         if (used > (guard_number - used_number)) {
2037                                 rc = -E2BIG;
2038                                 break;
2039                         }
2040                         memcpy(guard_start + used_number,
2041                                local_nb[i].lnb_guards,
2042                                used * sizeof(*local_nb[i].lnb_guards));
2043                 } else {
2044                         rc = obd_page_dif_generate_buffer(obd_name,
2045                                 local_nb[i].lnb_page,
2046                                 local_nb[i].lnb_page_offset & ~PAGE_MASK,
2047                                 local_nb[i].lnb_len, guard_start + used_number,
2048                                 guard_number - used_number, &used, sector_size,
2049                                 fn);
2050                         if (rc)
2051                                 break;
2052                 }
2053
2054                 LASSERT(used <= MAX_GUARD_NUMBER);
2055                 /*
2056                  * If disk support T10PI checksum, copy guards to local_nb.
2057                  * If the write is partial page, do not use the guards for bio
2058                  * submission since the data might not be full-sector. The bio
2059                  * guards will be generated later based on the full sectors. If
2060                  * the sector size is 512B rather than 4 KB, or the page size
2061                  * is larger than 4KB, this might drop some useful guards for
2062                  * partial page write, but it will only add minimal extra time
2063                  * of checksum calculation.
2064                  */
2065                 if (t10_cksum_type && opc == OST_WRITE &&
2066                     local_nb[i].lnb_len == PAGE_SIZE) {
2067                         local_nb[i].lnb_guard_rpc = 1;
2068                         memcpy(local_nb[i].lnb_guards,
2069                                guard_start + used_number,
2070                                used * sizeof(*local_nb[i].lnb_guards));
2071                 }
2072
2073                 used_number += used;
2074                 if (used_number == guard_number) {
2075                         cfs_crypto_hash_update_page(req, __page, 0,
2076                                 used_number * sizeof(*guard_start));
2077                         used_number = 0;
2078                 }
2079
2080                  /* corrupt the data after we compute the checksum, to
2081                  * simulate an OST->client data error */
2082                 if (unlikely(i == 0 && opc == OST_READ &&
2083                              OBD_FAIL_CHECK(OBD_FAIL_OST_CHECKSUM_SEND))) {
2084                         int off = local_nb[i].lnb_page_offset & ~PAGE_MASK;
2085                         int len = local_nb[i].lnb_len;
2086                         struct page *np = tgt_page_to_corrupt;
2087
2088                         if (np) {
2089                                 char *ptr = ll_kmap_atomic(local_nb[i].lnb_page,
2090                                                         KM_USER0);
2091                                 char *ptr2 = page_address(np);
2092
2093                                 memcpy(ptr2 + off, ptr + off, len);
2094                                 memcpy(ptr2 + off, "bad4", min(4, len));
2095                                 ll_kunmap_atomic(ptr, KM_USER0);
2096
2097                                 /* LU-8376 to preserve original index for
2098                                  * display in dump_all_bulk_pages() */
2099                                 np->index = i;
2100
2101                                 cfs_crypto_hash_update_page(req, np, off,
2102                                                             len);
2103                                 continue;
2104                         } else {
2105                                 CERROR("%s: can't alloc page for corruption\n",
2106                                        tgt_name(tgt));
2107                         }
2108                 }
2109         }
2110         kunmap(__page);
2111         if (rc)
2112                 GOTO(out, rc);
2113
2114         if (used_number != 0)
2115                 cfs_crypto_hash_update_page(req, __page, 0,
2116                         used_number * sizeof(*guard_start));
2117
2118         bufsize = sizeof(cksum);
2119         rc = cfs_crypto_hash_final(req, (unsigned char *)&cksum, &bufsize);
2120
2121         if (rc == 0)
2122                 *check_sum = cksum;
2123 out:
2124         __free_page(__page);
2125         return rc;
2126 }
2127
2128 static int tgt_checksum_niobuf_rw(struct lu_target *tgt,
2129                                   enum cksum_types cksum_type,
2130                                   struct niobuf_local *local_nb,
2131                                   int npages, int opc, u32 *check_sum)
2132 {
2133         obd_dif_csum_fn *fn = NULL;
2134         int sector_size = 0;
2135         int rc;
2136
2137         ENTRY;
2138         obd_t10_cksum2dif(cksum_type, &fn, &sector_size);
2139
2140         if (fn)
2141                 rc = tgt_checksum_niobuf_t10pi(tgt, local_nb, npages,
2142                                                opc, fn, sector_size,
2143                                                check_sum);
2144         else
2145                 rc = tgt_checksum_niobuf(tgt, local_nb, npages, opc,
2146                                          cksum_type, check_sum);
2147         RETURN(rc);
2148 }
2149
2150 int tgt_brw_read(struct tgt_session_info *tsi)
2151 {
2152         struct ptlrpc_request   *req = tgt_ses_req(tsi);
2153         struct ptlrpc_bulk_desc *desc = NULL;
2154         struct obd_export       *exp = tsi->tsi_exp;
2155         struct niobuf_remote    *remote_nb;
2156         struct niobuf_local     *local_nb;
2157         struct obd_ioobj        *ioo;
2158         struct ost_body         *body, *repbody;
2159         struct l_wait_info       lwi;
2160         struct lustre_handle     lockh = { 0 };
2161         int                      npages, nob = 0, rc, i, no_reply = 0,
2162                                  npages_read;
2163         struct tgt_thread_big_cache *tbc = req->rq_svc_thread->t_data;
2164         const char *obd_name = exp->exp_obd->obd_name;
2165
2166         ENTRY;
2167
2168         if (ptlrpc_req2svc(req)->srv_req_portal != OST_IO_PORTAL &&
2169             ptlrpc_req2svc(req)->srv_req_portal != MDS_IO_PORTAL) {
2170                 CERROR("%s: deny read request from %s to portal %u\n",
2171                        tgt_name(tsi->tsi_tgt),
2172                        obd_export_nid2str(req->rq_export),
2173                        ptlrpc_req2svc(req)->srv_req_portal);
2174                 RETURN(-EPROTO);
2175         }
2176
2177         req->rq_bulk_read = 1;
2178
2179         if (OBD_FAIL_CHECK(OBD_FAIL_OST_BRW_READ_BULK))
2180                 RETURN(-EIO);
2181
2182         OBD_FAIL_TIMEOUT(OBD_FAIL_OST_BRW_PAUSE_BULK, cfs_fail_val > 0 ?
2183                          cfs_fail_val : (obd_timeout + 1) / 4);
2184
2185         /* Check if there is eviction in progress, and if so, wait for it to
2186          * finish */
2187         if (unlikely(atomic_read(&exp->exp_obd->obd_evict_inprogress))) {
2188                 /* We do not care how long it takes */
2189                 lwi = LWI_INTR(NULL, NULL);
2190                 rc = l_wait_event(exp->exp_obd->obd_evict_inprogress_waitq,
2191                          !atomic_read(&exp->exp_obd->obd_evict_inprogress),
2192                          &lwi);
2193         }
2194
2195         /* There must be big cache in current thread to process this request
2196          * if it is NULL then something went wrong and it wasn't allocated,
2197          * report -ENOMEM in that case */
2198         if (tbc == NULL)
2199                 RETURN(-ENOMEM);
2200
2201         body = tsi->tsi_ost_body;
2202         LASSERT(body != NULL);
2203
2204         ioo = req_capsule_client_get(tsi->tsi_pill, &RMF_OBD_IOOBJ);
2205         LASSERT(ioo != NULL); /* must exists after tgt_ost_body_unpack */
2206
2207         remote_nb = req_capsule_client_get(&req->rq_pill, &RMF_NIOBUF_REMOTE);
2208         LASSERT(remote_nb != NULL); /* must exists after tgt_ost_body_unpack */
2209
2210         local_nb = tbc->local;
2211
2212         rc = tgt_brw_lock(tsi->tsi_env, exp, &tsi->tsi_resid, ioo, remote_nb,
2213                           &lockh, LCK_PR);
2214         if (rc != 0)
2215                 RETURN(rc);
2216
2217         /*
2218          * If getting the lock took more time than
2219          * client was willing to wait, drop it. b=11330
2220          */
2221         if (ktime_get_real_seconds() > req->rq_deadline ||
2222             OBD_FAIL_CHECK(OBD_FAIL_OST_DROP_REQ)) {
2223                 no_reply = 1;
2224                 CERROR("Dropping timed-out read from %s because locking object " DOSTID " took %lld seconds (limit was %lld).\n",
2225                        libcfs_id2str(req->rq_peer), POSTID(&ioo->ioo_oid),
2226                        ktime_get_real_seconds() - req->rq_arrival_time.tv_sec,
2227                        req->rq_deadline - req->rq_arrival_time.tv_sec);
2228                 GOTO(out_lock, rc = -ETIMEDOUT);
2229         }
2230
2231         repbody = req_capsule_server_get(&req->rq_pill, &RMF_OST_BODY);
2232         repbody->oa = body->oa;
2233
2234         npages = PTLRPC_MAX_BRW_PAGES;
2235         rc = obd_preprw(tsi->tsi_env, OBD_BRW_READ, exp, &repbody->oa, 1,
2236                         ioo, remote_nb, &npages, local_nb);
2237         if (rc != 0)
2238                 GOTO(out_lock, rc);
2239
2240         if (body->oa.o_flags & OBD_FL_SHORT_IO) {
2241                 desc = NULL;
2242         } else {
2243                 desc = ptlrpc_prep_bulk_exp(req, npages, ioobj_max_brw_get(ioo),
2244                                             PTLRPC_BULK_PUT_SOURCE |
2245                                                 PTLRPC_BULK_BUF_KIOV,
2246                                             OST_BULK_PORTAL,
2247                                             &ptlrpc_bulk_kiov_nopin_ops);
2248                 if (desc == NULL)
2249                         GOTO(out_commitrw, rc = -ENOMEM);
2250         }
2251
2252         nob = 0;
2253         npages_read = npages;
2254         for (i = 0; i < npages; i++) {
2255                 int page_rc = local_nb[i].lnb_rc;
2256
2257                 if (page_rc < 0) {
2258                         rc = page_rc;
2259                         npages_read = i;
2260                         break;
2261                 }
2262
2263                 nob += page_rc;
2264                 if (page_rc != 0 && desc != NULL) { /* some data! */
2265                         LASSERT(local_nb[i].lnb_page != NULL);
2266                         desc->bd_frag_ops->add_kiov_frag
2267                           (desc, local_nb[i].lnb_page,
2268                            local_nb[i].lnb_page_offset & ~PAGE_MASK,
2269                            page_rc);
2270                 }
2271
2272                 if (page_rc != local_nb[i].lnb_len) { /* short read */
2273                         local_nb[i].lnb_len = page_rc;
2274                         npages_read = i + (page_rc != 0 ? 1 : 0);
2275                         /* All subsequent pages should be 0 */
2276                         while (++i < npages)
2277                                 LASSERT(local_nb[i].lnb_rc == 0);
2278                         break;
2279                 }
2280         }
2281         if (OBD_FAIL_CHECK(OBD_FAIL_OST_READ_SIZE) &&
2282             nob != cfs_fail_val)
2283                 rc = -E2BIG;
2284
2285         if (body->oa.o_valid & OBD_MD_FLCKSUM) {
2286                 u32 flag = body->oa.o_valid & OBD_MD_FLFLAGS ?
2287                            body->oa.o_flags : 0;
2288                 enum cksum_types cksum_type = obd_cksum_type_unpack(flag);
2289
2290                 repbody->oa.o_flags = obd_cksum_type_pack(obd_name,
2291                                                           cksum_type);
2292                 repbody->oa.o_valid = OBD_MD_FLCKSUM | OBD_MD_FLFLAGS;
2293
2294                 rc = tgt_checksum_niobuf_rw(tsi->tsi_tgt, cksum_type,
2295                                             local_nb, npages_read, OST_READ,
2296                                             &repbody->oa.o_cksum);
2297                 if (rc < 0)
2298                         GOTO(out_commitrw, rc);
2299                 CDEBUG(D_PAGE, "checksum at read origin: %x\n",
2300                        repbody->oa.o_cksum);
2301
2302                 /* if a resend it could be for a cksum error, so check Server
2303                  * cksum with returned Client cksum (this should even cover
2304                  * zero-cksum case) */
2305                 if ((body->oa.o_valid & OBD_MD_FLFLAGS) &&
2306                     (body->oa.o_flags & OBD_FL_RECOV_RESEND))
2307                         check_read_checksum(local_nb, npages_read, exp,
2308                                             &body->oa, &req->rq_peer,
2309                                             body->oa.o_cksum,
2310                                             repbody->oa.o_cksum, cksum_type);
2311         } else {
2312                 repbody->oa.o_valid = 0;
2313         }
2314         /* We're finishing using body->oa as an input variable */
2315
2316         /* Check if client was evicted while we were doing i/o before touching
2317          * network */
2318         if (rc == 0) {
2319                 if (body->oa.o_flags & OBD_FL_SHORT_IO) {
2320                         unsigned char *short_io_buf;
2321                         int short_io_size;
2322
2323                         short_io_buf = req_capsule_server_get(&req->rq_pill,
2324                                                               &RMF_SHORT_IO);
2325                         short_io_size = req_capsule_get_size(&req->rq_pill,
2326                                                              &RMF_SHORT_IO,
2327                                                              RCL_SERVER);
2328                         rc = tgt_pages2shortio(local_nb, npages_read,
2329                                                short_io_buf, short_io_size);
2330                         if (rc >= 0)
2331                                 req_capsule_shrink(&req->rq_pill,
2332                                                    &RMF_SHORT_IO, rc,
2333                                                    RCL_SERVER);
2334                         rc = rc > 0 ? 0 : rc;
2335                 } else if (!CFS_FAIL_PRECHECK(OBD_FAIL_PTLRPC_CLIENT_BULK_CB2)) {
2336                         rc = target_bulk_io(exp, desc, &lwi);
2337                 }
2338                 no_reply = rc != 0;
2339         } else {
2340                 if (body->oa.o_flags & OBD_FL_SHORT_IO)
2341                         req_capsule_shrink(&req->rq_pill, &RMF_SHORT_IO, 0,
2342                                            RCL_SERVER);
2343         }
2344
2345 out_commitrw:
2346         /* Must commit after prep above in all cases */
2347         rc = obd_commitrw(tsi->tsi_env, OBD_BRW_READ, exp, &repbody->oa, 1, ioo,
2348                           remote_nb, npages, local_nb, rc);
2349 out_lock:
2350         tgt_brw_unlock(ioo, remote_nb, &lockh, LCK_PR);
2351
2352         if (desc && !CFS_FAIL_PRECHECK(OBD_FAIL_PTLRPC_CLIENT_BULK_CB2))
2353                 ptlrpc_free_bulk(desc);
2354
2355         LASSERT(rc <= 0);
2356         if (rc == 0) {
2357                 rc = nob;
2358                 ptlrpc_lprocfs_brw(req, nob);
2359         } else if (no_reply) {
2360                 req->rq_no_reply = 1;
2361                 /* reply out callback would free */
2362                 ptlrpc_req_drop_rs(req);
2363                 LCONSOLE_WARN("%s: Bulk IO read error with %s (at %s), "
2364                               "client will retry: rc %d\n",
2365                               obd_name,
2366                               obd_uuid2str(&exp->exp_client_uuid),
2367                               obd_export_nid2str(exp), rc);
2368         }
2369         /* send a bulk after reply to simulate a network delay or reordering
2370          * by a router - Note that !desc implies short io, so there is no bulk
2371          * to reorder. */
2372         if (unlikely(CFS_FAIL_PRECHECK(OBD_FAIL_PTLRPC_CLIENT_BULK_CB2)) &&
2373             desc) {
2374                 wait_queue_head_t        waitq;
2375                 struct l_wait_info       lwi1;
2376
2377                 CDEBUG(D_INFO, "reorder BULK\n");
2378                 init_waitqueue_head(&waitq);
2379
2380                 lwi1 = LWI_TIMEOUT_INTR(cfs_time_seconds(3), NULL, NULL, NULL);
2381                 l_wait_event(waitq, 0, &lwi1);
2382                 target_bulk_io(exp, desc, &lwi);
2383                 ptlrpc_free_bulk(desc);
2384         }
2385
2386         RETURN(rc);
2387 }
2388 EXPORT_SYMBOL(tgt_brw_read);
2389
2390 static int tgt_shortio2pages(struct niobuf_local *local, int npages,
2391                              unsigned char *buf, unsigned int size)
2392 {
2393         int     i, off, len;
2394         char    *ptr;
2395
2396         for (i = 0; i < npages; i++) {
2397                 off = local[i].lnb_page_offset & ~PAGE_MASK;
2398                 len = local[i].lnb_len;
2399
2400                 if (len == 0)
2401                         continue;
2402
2403                 CDEBUG(D_PAGE, "index %d offset = %d len = %d left = %d\n",
2404                        i, off, len, size);
2405                 ptr = ll_kmap_atomic(local[i].lnb_page, KM_USER0);
2406                 if (ptr == NULL)
2407                         return -EINVAL;
2408                 memcpy(ptr + off, buf, len < size ? len : size);
2409                 ll_kunmap_atomic(ptr, KM_USER0);
2410                 buf += len;
2411                 size -= len;
2412         }
2413         return 0;
2414 }
2415
2416 static void tgt_warn_on_cksum(struct ptlrpc_request *req,
2417                               struct ptlrpc_bulk_desc *desc,
2418                               struct niobuf_local *local_nb, int npages,
2419                               u32 client_cksum, u32 server_cksum,
2420                               bool mmap)
2421 {
2422         struct obd_export *exp = req->rq_export;
2423         struct ost_body *body;
2424         char *router = "";
2425         char *via = "";
2426
2427         body = req_capsule_client_get(&req->rq_pill, &RMF_OST_BODY);
2428         LASSERT(body != NULL);
2429
2430         if (desc && req->rq_peer.nid != desc->bd_sender) {
2431                 via = " via ";
2432                 router = libcfs_nid2str(desc->bd_sender);
2433         }
2434
2435         if (exp->exp_obd->obd_checksum_dump)
2436                 dump_all_bulk_pages(&body->oa, npages, local_nb, server_cksum,
2437                                     client_cksum);
2438
2439         if (mmap) {
2440                 CDEBUG_LIMIT(D_INFO, "client csum %x, server csum %x\n",
2441                              client_cksum, server_cksum);
2442                 return;
2443         }
2444
2445         LCONSOLE_ERROR_MSG(0x168, "%s: BAD WRITE CHECKSUM: from %s%s%s inode "
2446                            DFID" object "DOSTID" extent [%llu-%llu"
2447                            "]: client csum %x, server csum %x\n",
2448                            exp->exp_obd->obd_name, libcfs_id2str(req->rq_peer),
2449                            via, router,
2450                            body->oa.o_valid & OBD_MD_FLFID ?
2451                            body->oa.o_parent_seq : (__u64)0,
2452                            body->oa.o_valid & OBD_MD_FLFID ?
2453                            body->oa.o_parent_oid : 0,
2454                            body->oa.o_valid & OBD_MD_FLFID ?
2455                            body->oa.o_parent_ver : 0,
2456                            POSTID(&body->oa.o_oi),
2457                            local_nb[0].lnb_file_offset,
2458                            local_nb[npages-1].lnb_file_offset +
2459                            local_nb[npages - 1].lnb_len - 1,
2460                            client_cksum, server_cksum);
2461 }
2462
2463 int tgt_brw_write(struct tgt_session_info *tsi)
2464 {
2465         struct ptlrpc_request   *req = tgt_ses_req(tsi);
2466         struct ptlrpc_bulk_desc *desc = NULL;
2467         struct obd_export       *exp = req->rq_export;
2468         struct niobuf_remote    *remote_nb;
2469         struct niobuf_local     *local_nb;
2470         struct obd_ioobj        *ioo;
2471         struct ost_body         *body, *repbody;
2472         struct l_wait_info       lwi;
2473         struct lustre_handle     lockh = {0};
2474         __u32                   *rcs;
2475         int                      objcount, niocount, npages;
2476         int                      rc, i, j;
2477         enum cksum_types cksum_type = OBD_CKSUM_CRC32;
2478         bool                     no_reply = false, mmap;
2479         struct tgt_thread_big_cache *tbc = req->rq_svc_thread->t_data;
2480         bool wait_sync = false;
2481         const char *obd_name = exp->exp_obd->obd_name;
2482
2483         ENTRY;
2484
2485         if (ptlrpc_req2svc(req)->srv_req_portal != OST_IO_PORTAL &&
2486             ptlrpc_req2svc(req)->srv_req_portal != MDS_IO_PORTAL) {
2487                 CERROR("%s: deny write request from %s to portal %u\n",
2488                        tgt_name(tsi->tsi_tgt),
2489                        obd_export_nid2str(req->rq_export),
2490                        ptlrpc_req2svc(req)->srv_req_portal);
2491                 RETURN(err_serious(-EPROTO));
2492         }
2493
2494         if (OBD_FAIL_CHECK(OBD_FAIL_OST_ENOSPC))
2495                 RETURN(err_serious(-ENOSPC));
2496         if (OBD_FAIL_TIMEOUT(OBD_FAIL_OST_EROFS, 1))
2497                 RETURN(err_serious(-EROFS));
2498
2499         req->rq_bulk_write = 1;
2500
2501         if (OBD_FAIL_CHECK(OBD_FAIL_OST_BRW_WRITE_BULK))
2502                 RETURN(err_serious(-EIO));
2503         if (OBD_FAIL_CHECK(OBD_FAIL_OST_BRW_WRITE_BULK2))
2504                 RETURN(err_serious(-EFAULT));
2505
2506         /* pause before transaction has been started */
2507         CFS_FAIL_TIMEOUT(OBD_FAIL_OST_BRW_PAUSE_BULK, cfs_fail_val > 0 ?
2508                          cfs_fail_val : (obd_timeout + 1) / 4);
2509
2510         /* There must be big cache in current thread to process this request
2511          * if it is NULL then something went wrong and it wasn't allocated,
2512          * report -ENOMEM in that case */
2513         if (tbc == NULL)
2514                 RETURN(-ENOMEM);
2515
2516         body = tsi->tsi_ost_body;
2517         LASSERT(body != NULL);
2518
2519         ioo = req_capsule_client_get(&req->rq_pill, &RMF_OBD_IOOBJ);
2520         LASSERT(ioo != NULL); /* must exists after tgt_ost_body_unpack */
2521
2522         objcount = req_capsule_get_size(&req->rq_pill, &RMF_OBD_IOOBJ,
2523                                         RCL_CLIENT) / sizeof(*ioo);
2524
2525         for (niocount = i = 0; i < objcount; i++)
2526                 niocount += ioo[i].ioo_bufcnt;
2527
2528         remote_nb = req_capsule_client_get(&req->rq_pill, &RMF_NIOBUF_REMOTE);
2529         LASSERT(remote_nb != NULL); /* must exists after tgt_ost_body_unpack */
2530         if (niocount != req_capsule_get_size(&req->rq_pill,
2531                                              &RMF_NIOBUF_REMOTE, RCL_CLIENT) /
2532                         sizeof(*remote_nb))
2533                 RETURN(err_serious(-EPROTO));
2534
2535         if ((remote_nb[0].rnb_flags & OBD_BRW_MEMALLOC) &&
2536             ptlrpc_connection_is_local(exp->exp_connection))
2537                 memory_pressure_set();
2538
2539         req_capsule_set_size(&req->rq_pill, &RMF_RCS, RCL_SERVER,
2540                              niocount * sizeof(*rcs));
2541         rc = req_capsule_server_pack(&req->rq_pill);
2542         if (rc != 0)
2543                 GOTO(out, rc = err_serious(rc));
2544
2545         CFS_FAIL_TIMEOUT(OBD_FAIL_OST_BRW_PAUSE_PACK, cfs_fail_val);
2546         rcs = req_capsule_server_get(&req->rq_pill, &RMF_RCS);
2547
2548         local_nb = tbc->local;
2549
2550         rc = tgt_brw_lock(tsi->tsi_env, exp, &tsi->tsi_resid, ioo, remote_nb,
2551                           &lockh, LCK_PW);
2552         if (rc != 0)
2553                 GOTO(out, rc);
2554
2555         /*
2556          * If getting the lock took more time than
2557          * client was willing to wait, drop it. b=11330
2558          */
2559         if (ktime_get_real_seconds() > req->rq_deadline ||
2560             OBD_FAIL_CHECK(OBD_FAIL_OST_DROP_REQ)) {
2561                 no_reply = true;
2562                 CERROR("%s: Dropping timed-out write from %s because locking object " DOSTID " took %lld seconds (limit was %lld).\n",
2563                        tgt_name(tsi->tsi_tgt), libcfs_id2str(req->rq_peer),
2564                        POSTID(&ioo->ioo_oid),
2565                        ktime_get_real_seconds() - req->rq_arrival_time.tv_sec,
2566                        req->rq_deadline - req->rq_arrival_time.tv_sec);
2567                 GOTO(out_lock, rc = -ETIMEDOUT);
2568         }
2569
2570         /* Because we already sync grant info with client when reconnect,
2571          * grant info will be cleared for resent req, then fed_grant and
2572          * total_grant will not be modified in following preprw_write */
2573         if (lustre_msg_get_flags(req->rq_reqmsg) & (MSG_RESENT | MSG_REPLAY)) {
2574                 DEBUG_REQ(D_CACHE, req, "clear resent/replay req grant info");
2575                 body->oa.o_valid &= ~OBD_MD_FLGRANT;
2576         }
2577
2578         repbody = req_capsule_server_get(&req->rq_pill, &RMF_OST_BODY);
2579         if (repbody == NULL)
2580                 GOTO(out_lock, rc = -ENOMEM);
2581         repbody->oa = body->oa;
2582
2583         npages = PTLRPC_MAX_BRW_PAGES;
2584         rc = obd_preprw(tsi->tsi_env, OBD_BRW_WRITE, exp, &repbody->oa,
2585                         objcount, ioo, remote_nb, &npages, local_nb);
2586         if (rc < 0)
2587                 GOTO(out_lock, rc);
2588         if (body->oa.o_flags & OBD_FL_SHORT_IO) {
2589                 unsigned int short_io_size;
2590                 unsigned char *short_io_buf;
2591
2592                 short_io_size = req_capsule_get_size(&req->rq_pill,
2593                                                      &RMF_SHORT_IO,
2594                                                      RCL_CLIENT);
2595                 short_io_buf = req_capsule_client_get(&req->rq_pill,
2596                                                       &RMF_SHORT_IO);
2597                 CDEBUG(D_INFO, "Client use short io for data transfer,"
2598                                " size = %d\n", short_io_size);
2599
2600                 /* Copy short io buf to pages */
2601                 rc = tgt_shortio2pages(local_nb, npages, short_io_buf,
2602                                        short_io_size);
2603                 desc = NULL;
2604         } else {
2605                 desc = ptlrpc_prep_bulk_exp(req, npages, ioobj_max_brw_get(ioo),
2606                                             PTLRPC_BULK_GET_SINK |
2607                                             PTLRPC_BULK_BUF_KIOV,
2608                                             OST_BULK_PORTAL,
2609                                             &ptlrpc_bulk_kiov_nopin_ops);
2610                 if (desc == NULL)
2611                         GOTO(skip_transfer, rc = -ENOMEM);
2612
2613                 /* NB Having prepped, we must commit... */
2614                 for (i = 0; i < npages; i++)
2615                         desc->bd_frag_ops->add_kiov_frag(desc,
2616                                         local_nb[i].lnb_page,
2617                                         local_nb[i].lnb_page_offset & ~PAGE_MASK,
2618                                         local_nb[i].lnb_len);
2619
2620                 rc = sptlrpc_svc_prep_bulk(req, desc);
2621                 if (rc != 0)
2622                         GOTO(skip_transfer, rc);
2623
2624                 rc = target_bulk_io(exp, desc, &lwi);
2625         }
2626
2627         no_reply = rc != 0;
2628
2629 skip_transfer:
2630         if (body->oa.o_valid & OBD_MD_FLCKSUM && rc == 0) {
2631                 static int cksum_counter;
2632
2633                 if (body->oa.o_valid & OBD_MD_FLFLAGS)
2634                         cksum_type = obd_cksum_type_unpack(body->oa.o_flags);
2635
2636                 repbody->oa.o_valid |= OBD_MD_FLCKSUM | OBD_MD_FLFLAGS;
2637                 repbody->oa.o_flags &= ~OBD_FL_CKSUM_ALL;
2638                 repbody->oa.o_flags |= obd_cksum_type_pack(obd_name,
2639                                                            cksum_type);
2640
2641                 rc = tgt_checksum_niobuf_rw(tsi->tsi_tgt, cksum_type,
2642                                             local_nb, npages, OST_WRITE,
2643                                             &repbody->oa.o_cksum);
2644                 if (rc < 0)
2645                         GOTO(out_commitrw, rc);
2646
2647                 cksum_counter++;
2648
2649                 if (unlikely(body->oa.o_cksum != repbody->oa.o_cksum)) {
2650                         mmap = (body->oa.o_valid & OBD_MD_FLFLAGS &&
2651                                 body->oa.o_flags & OBD_FL_MMAP);
2652
2653                         tgt_warn_on_cksum(req, desc, local_nb, npages,
2654                                           body->oa.o_cksum,
2655                                           repbody->oa.o_cksum, mmap);
2656                         cksum_counter = 0;
2657                 } else if ((cksum_counter & (-cksum_counter)) ==
2658                            cksum_counter) {
2659                         CDEBUG(D_INFO, "Checksum %u from %s OK: %x\n",
2660                                cksum_counter, libcfs_id2str(req->rq_peer),
2661                                repbody->oa.o_cksum);
2662                 }
2663         }
2664
2665 out_commitrw:
2666         /* Must commit after prep above in all cases */
2667         rc = obd_commitrw(tsi->tsi_env, OBD_BRW_WRITE, exp, &repbody->oa,
2668                           objcount, ioo, remote_nb, npages, local_nb, rc);
2669         if (rc == -ENOTCONN)
2670                 /* quota acquire process has been given up because
2671                  * either the client has been evicted or the client
2672                  * has timed out the request already */
2673                 no_reply = true;
2674
2675         for (i = 0; i < niocount; i++) {
2676                 if (!(local_nb[i].lnb_flags & OBD_BRW_ASYNC)) {
2677                         wait_sync = true;
2678                         break;
2679                 }
2680         }
2681         /*
2682          * Disable sending mtime back to the client. If the client locked the
2683          * whole object, then it has already updated the mtime on its side,
2684          * otherwise it will have to glimpse anyway (see bug 21489, comment 32)
2685          */
2686         repbody->oa.o_valid &= ~(OBD_MD_FLMTIME | OBD_MD_FLATIME);
2687
2688         if (rc == 0) {
2689                 int nob = 0;
2690
2691                 /* set per-requested niobuf return codes */
2692                 for (i = j = 0; i < niocount; i++) {
2693                         int len = remote_nb[i].rnb_len;
2694
2695                         nob += len;
2696                         rcs[i] = 0;
2697                         do {
2698                                 LASSERT(j < npages);
2699                                 if (local_nb[j].lnb_rc < 0)
2700                                         rcs[i] = local_nb[j].lnb_rc;
2701                                 len -= local_nb[j].lnb_len;
2702                                 j++;
2703                         } while (len > 0);
2704                         LASSERT(len == 0);
2705                 }
2706                 LASSERT(j == npages);
2707                 ptlrpc_lprocfs_brw(req, nob);
2708         }
2709 out_lock:
2710         tgt_brw_unlock(ioo, remote_nb, &lockh, LCK_PW);
2711         if (desc)
2712                 ptlrpc_free_bulk(desc);
2713 out:
2714         if (unlikely(no_reply || (exp->exp_obd->obd_no_transno && wait_sync))) {
2715                 req->rq_no_reply = 1;
2716                 /* reply out callback would free */
2717                 ptlrpc_req_drop_rs(req);
2718                 if (!exp->exp_obd->obd_no_transno)
2719                         LCONSOLE_WARN("%s: Bulk IO write error with %s (at %s),"
2720                                       " client will retry: rc = %d\n",
2721                                       obd_name,
2722                                       obd_uuid2str(&exp->exp_client_uuid),
2723                                       obd_export_nid2str(exp), rc);
2724         }
2725         memory_pressure_clr();
2726         RETURN(rc);
2727 }
2728 EXPORT_SYMBOL(tgt_brw_write);
2729
2730 /* Check if request can be reconstructed from saved reply data
2731  * A copy of the reply data is returned in @trd if the pointer is not NULL
2732  */
2733 bool req_can_reconstruct(struct ptlrpc_request *req,
2734                          struct tg_reply_data *trd)
2735 {
2736         struct tg_export_data *ted = &req->rq_export->exp_target_data;
2737         struct lsd_client_data *lcd = ted->ted_lcd;
2738         bool found;
2739
2740         if (tgt_is_multimodrpcs_client(req->rq_export))
2741                 return tgt_lookup_reply(req, trd);
2742
2743         mutex_lock(&ted->ted_lcd_lock);
2744         found = req->rq_xid == lcd->lcd_last_xid ||
2745                 req->rq_xid == lcd->lcd_last_close_xid;
2746
2747         if (found && trd != NULL) {
2748                 if (lustre_msg_get_opc(req->rq_reqmsg) == MDS_CLOSE) {
2749                         trd->trd_reply.lrd_xid = lcd->lcd_last_close_xid;
2750                         trd->trd_reply.lrd_transno =
2751                                                 lcd->lcd_last_close_transno;
2752                         trd->trd_reply.lrd_result = lcd->lcd_last_close_result;
2753                 } else {
2754                         trd->trd_reply.lrd_xid = lcd->lcd_last_xid;
2755                         trd->trd_reply.lrd_transno = lcd->lcd_last_transno;
2756                         trd->trd_reply.lrd_result = lcd->lcd_last_result;
2757                         trd->trd_reply.lrd_data = lcd->lcd_last_data;
2758                         trd->trd_pre_versions[0] = lcd->lcd_pre_versions[0];
2759                         trd->trd_pre_versions[1] = lcd->lcd_pre_versions[1];
2760                         trd->trd_pre_versions[2] = lcd->lcd_pre_versions[2];
2761                         trd->trd_pre_versions[3] = lcd->lcd_pre_versions[3];
2762                 }
2763         }
2764         mutex_unlock(&ted->ted_lcd_lock);
2765
2766         return found;
2767 }
2768 EXPORT_SYMBOL(req_can_reconstruct);
2769