dir.c 21 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952
  1. /*
  2. *
  3. * Copyright (C) 2011 Novell Inc.
  4. *
  5. * This program is free software; you can redistribute it and/or modify it
  6. * under the terms of the GNU General Public License version 2 as published by
  7. * the Free Software Foundation.
  8. */
  9. #include <linux/fs.h>
  10. #include <linux/namei.h>
  11. #include <linux/xattr.h>
  12. #include <linux/security.h>
  13. #include <linux/cred.h>
  14. #include "overlayfs.h"
  15. void ovl_cleanup(struct inode *wdir, struct dentry *wdentry)
  16. {
  17. int err;
  18. dget(wdentry);
  19. if (d_is_dir(wdentry))
  20. err = ovl_do_rmdir(wdir, wdentry);
  21. else
  22. err = ovl_do_unlink(wdir, wdentry);
  23. dput(wdentry);
  24. if (err) {
  25. pr_err("overlayfs: cleanup of '%pd2' failed (%i)\n",
  26. wdentry, err);
  27. }
  28. }
  29. struct dentry *ovl_lookup_temp(struct dentry *workdir, struct dentry *dentry)
  30. {
  31. struct dentry *temp;
  32. char name[20];
  33. snprintf(name, sizeof(name), "#%lx", (unsigned long) dentry);
  34. temp = lookup_one_len(name, workdir, strlen(name));
  35. if (!IS_ERR(temp) && temp->d_inode) {
  36. pr_err("overlayfs: workdir/%s already exists\n", name);
  37. dput(temp);
  38. temp = ERR_PTR(-EIO);
  39. }
  40. return temp;
  41. }
  42. /* caller holds i_mutex on workdir */
  43. static struct dentry *ovl_whiteout(struct dentry *workdir,
  44. struct dentry *dentry)
  45. {
  46. int err;
  47. struct dentry *whiteout;
  48. struct inode *wdir = workdir->d_inode;
  49. whiteout = ovl_lookup_temp(workdir, dentry);
  50. if (IS_ERR(whiteout))
  51. return whiteout;
  52. err = ovl_do_whiteout(wdir, whiteout);
  53. if (err) {
  54. dput(whiteout);
  55. whiteout = ERR_PTR(err);
  56. }
  57. return whiteout;
  58. }
  59. int ovl_create_real(struct inode *dir, struct dentry *newdentry,
  60. struct kstat *stat, const char *link,
  61. struct dentry *hardlink, bool debug)
  62. {
  63. int err;
  64. if (newdentry->d_inode)
  65. return -ESTALE;
  66. if (hardlink) {
  67. err = ovl_do_link(hardlink, dir, newdentry, debug);
  68. } else {
  69. switch (stat->mode & S_IFMT) {
  70. case S_IFREG:
  71. err = ovl_do_create(dir, newdentry, stat->mode, debug);
  72. break;
  73. case S_IFDIR:
  74. err = ovl_do_mkdir(dir, newdentry, stat->mode, debug);
  75. break;
  76. case S_IFCHR:
  77. case S_IFBLK:
  78. case S_IFIFO:
  79. case S_IFSOCK:
  80. err = ovl_do_mknod(dir, newdentry,
  81. stat->mode, stat->rdev, debug);
  82. break;
  83. case S_IFLNK:
  84. err = ovl_do_symlink(dir, newdentry, link, debug);
  85. break;
  86. default:
  87. err = -EPERM;
  88. }
  89. }
  90. if (!err && WARN_ON(!newdentry->d_inode)) {
  91. /*
  92. * Not quite sure if non-instantiated dentry is legal or not.
  93. * VFS doesn't seem to care so check and warn here.
  94. */
  95. err = -ENOENT;
  96. }
  97. return err;
  98. }
  99. static int ovl_set_opaque(struct dentry *upperdentry)
  100. {
  101. return ovl_do_setxattr(upperdentry, OVL_XATTR_OPAQUE, "y", 1, 0);
  102. }
  103. static void ovl_remove_opaque(struct dentry *upperdentry)
  104. {
  105. int err;
  106. err = ovl_do_removexattr(upperdentry, OVL_XATTR_OPAQUE);
  107. if (err) {
  108. pr_warn("overlayfs: failed to remove opaque from '%s' (%i)\n",
  109. upperdentry->d_name.name, err);
  110. }
  111. }
  112. static int ovl_dir_getattr(struct vfsmount *mnt, struct dentry *dentry,
  113. struct kstat *stat)
  114. {
  115. int err;
  116. enum ovl_path_type type;
  117. struct path realpath;
  118. type = ovl_path_real(dentry, &realpath);
  119. err = vfs_getattr(&realpath, stat);
  120. if (err)
  121. return err;
  122. stat->dev = dentry->d_sb->s_dev;
  123. stat->ino = dentry->d_inode->i_ino;
  124. /*
  125. * It's probably not worth it to count subdirs to get the
  126. * correct link count. nlink=1 seems to pacify 'find' and
  127. * other utilities.
  128. */
  129. if (OVL_TYPE_MERGE(type))
  130. stat->nlink = 1;
  131. return 0;
  132. }
  133. static int ovl_create_upper(struct dentry *dentry, struct inode *inode,
  134. struct kstat *stat, const char *link,
  135. struct dentry *hardlink)
  136. {
  137. struct dentry *upperdir = ovl_dentry_upper(dentry->d_parent);
  138. struct inode *udir = upperdir->d_inode;
  139. struct dentry *newdentry;
  140. int err;
  141. mutex_lock_nested(&udir->i_mutex, I_MUTEX_PARENT);
  142. newdentry = lookup_one_len(dentry->d_name.name, upperdir,
  143. dentry->d_name.len);
  144. err = PTR_ERR(newdentry);
  145. if (IS_ERR(newdentry))
  146. goto out_unlock;
  147. err = ovl_create_real(udir, newdentry, stat, link, hardlink, false);
  148. if (err)
  149. goto out_dput;
  150. ovl_dentry_version_inc(dentry->d_parent);
  151. ovl_dentry_update(dentry, newdentry);
  152. ovl_copyattr(newdentry->d_inode, inode);
  153. d_instantiate(dentry, inode);
  154. newdentry = NULL;
  155. out_dput:
  156. dput(newdentry);
  157. out_unlock:
  158. mutex_unlock(&udir->i_mutex);
  159. return err;
  160. }
  161. static int ovl_lock_rename_workdir(struct dentry *workdir,
  162. struct dentry *upperdir)
  163. {
  164. /* Workdir should not be the same as upperdir */
  165. if (workdir == upperdir)
  166. goto err;
  167. /* Workdir should not be subdir of upperdir and vice versa */
  168. if (lock_rename(workdir, upperdir) != NULL)
  169. goto err_unlock;
  170. return 0;
  171. err_unlock:
  172. unlock_rename(workdir, upperdir);
  173. err:
  174. pr_err("overlayfs: failed to lock workdir+upperdir\n");
  175. return -EIO;
  176. }
  177. static struct dentry *ovl_clear_empty(struct dentry *dentry,
  178. struct list_head *list)
  179. {
  180. struct dentry *workdir = ovl_workdir(dentry);
  181. struct inode *wdir = workdir->d_inode;
  182. struct dentry *upperdir = ovl_dentry_upper(dentry->d_parent);
  183. struct inode *udir = upperdir->d_inode;
  184. struct path upperpath;
  185. struct dentry *upper;
  186. struct dentry *opaquedir;
  187. struct kstat stat;
  188. int err;
  189. if (WARN_ON(!workdir))
  190. return ERR_PTR(-EROFS);
  191. err = ovl_lock_rename_workdir(workdir, upperdir);
  192. if (err)
  193. goto out;
  194. ovl_path_upper(dentry, &upperpath);
  195. err = vfs_getattr(&upperpath, &stat);
  196. if (err)
  197. goto out_unlock;
  198. err = -ESTALE;
  199. if (!S_ISDIR(stat.mode))
  200. goto out_unlock;
  201. upper = upperpath.dentry;
  202. if (upper->d_parent->d_inode != udir)
  203. goto out_unlock;
  204. opaquedir = ovl_lookup_temp(workdir, dentry);
  205. err = PTR_ERR(opaquedir);
  206. if (IS_ERR(opaquedir))
  207. goto out_unlock;
  208. err = ovl_create_real(wdir, opaquedir, &stat, NULL, NULL, true);
  209. if (err)
  210. goto out_dput;
  211. err = ovl_copy_xattr(upper, opaquedir);
  212. if (err)
  213. goto out_cleanup;
  214. err = ovl_set_opaque(opaquedir);
  215. if (err)
  216. goto out_cleanup;
  217. mutex_lock(&opaquedir->d_inode->i_mutex);
  218. err = ovl_set_attr(opaquedir, &stat);
  219. mutex_unlock(&opaquedir->d_inode->i_mutex);
  220. if (err)
  221. goto out_cleanup;
  222. err = ovl_do_rename(wdir, opaquedir, udir, upper, RENAME_EXCHANGE);
  223. if (err)
  224. goto out_cleanup;
  225. ovl_cleanup_whiteouts(upper, list);
  226. ovl_cleanup(wdir, upper);
  227. unlock_rename(workdir, upperdir);
  228. /* dentry's upper doesn't match now, get rid of it */
  229. d_drop(dentry);
  230. return opaquedir;
  231. out_cleanup:
  232. ovl_cleanup(wdir, opaquedir);
  233. out_dput:
  234. dput(opaquedir);
  235. out_unlock:
  236. unlock_rename(workdir, upperdir);
  237. out:
  238. return ERR_PTR(err);
  239. }
  240. static struct dentry *ovl_check_empty_and_clear(struct dentry *dentry)
  241. {
  242. int err;
  243. struct dentry *ret = NULL;
  244. LIST_HEAD(list);
  245. err = ovl_check_empty_dir(dentry, &list);
  246. if (err)
  247. ret = ERR_PTR(err);
  248. else {
  249. /*
  250. * If no upperdentry then skip clearing whiteouts.
  251. *
  252. * Can race with copy-up, since we don't hold the upperdir
  253. * mutex. Doesn't matter, since copy-up can't create a
  254. * non-empty directory from an empty one.
  255. */
  256. if (ovl_dentry_upper(dentry))
  257. ret = ovl_clear_empty(dentry, &list);
  258. }
  259. ovl_cache_free(&list);
  260. return ret;
  261. }
  262. static int ovl_create_over_whiteout(struct dentry *dentry, struct inode *inode,
  263. struct kstat *stat, const char *link,
  264. struct dentry *hardlink)
  265. {
  266. struct dentry *workdir = ovl_workdir(dentry);
  267. struct inode *wdir = workdir->d_inode;
  268. struct dentry *upperdir = ovl_dentry_upper(dentry->d_parent);
  269. struct inode *udir = upperdir->d_inode;
  270. struct dentry *upper;
  271. struct dentry *newdentry;
  272. int err;
  273. if (WARN_ON(!workdir))
  274. return -EROFS;
  275. err = ovl_lock_rename_workdir(workdir, upperdir);
  276. if (err)
  277. goto out;
  278. newdentry = ovl_lookup_temp(workdir, dentry);
  279. err = PTR_ERR(newdentry);
  280. if (IS_ERR(newdentry))
  281. goto out_unlock;
  282. upper = lookup_one_len(dentry->d_name.name, upperdir,
  283. dentry->d_name.len);
  284. err = PTR_ERR(upper);
  285. if (IS_ERR(upper))
  286. goto out_dput;
  287. err = ovl_create_real(wdir, newdentry, stat, link, hardlink, true);
  288. if (err)
  289. goto out_dput2;
  290. if (S_ISDIR(stat->mode)) {
  291. err = ovl_set_opaque(newdentry);
  292. if (err)
  293. goto out_cleanup;
  294. err = ovl_do_rename(wdir, newdentry, udir, upper,
  295. RENAME_EXCHANGE);
  296. if (err)
  297. goto out_cleanup;
  298. ovl_cleanup(wdir, upper);
  299. } else {
  300. err = ovl_do_rename(wdir, newdentry, udir, upper, 0);
  301. if (err)
  302. goto out_cleanup;
  303. }
  304. ovl_dentry_version_inc(dentry->d_parent);
  305. ovl_dentry_update(dentry, newdentry);
  306. ovl_copyattr(newdentry->d_inode, inode);
  307. d_instantiate(dentry, inode);
  308. newdentry = NULL;
  309. out_dput2:
  310. dput(upper);
  311. out_dput:
  312. dput(newdentry);
  313. out_unlock:
  314. unlock_rename(workdir, upperdir);
  315. out:
  316. return err;
  317. out_cleanup:
  318. ovl_cleanup(wdir, newdentry);
  319. goto out_dput2;
  320. }
  321. static int ovl_create_or_link(struct dentry *dentry, int mode, dev_t rdev,
  322. const char *link, struct dentry *hardlink)
  323. {
  324. int err;
  325. struct inode *inode;
  326. struct kstat stat = {
  327. .mode = mode,
  328. .rdev = rdev,
  329. };
  330. err = -ENOMEM;
  331. inode = ovl_new_inode(dentry->d_sb, mode, dentry->d_fsdata);
  332. if (!inode)
  333. goto out;
  334. err = ovl_copy_up(dentry->d_parent);
  335. if (err)
  336. goto out_iput;
  337. if (!ovl_dentry_is_opaque(dentry)) {
  338. err = ovl_create_upper(dentry, inode, &stat, link, hardlink);
  339. } else {
  340. const struct cred *old_cred;
  341. struct cred *override_cred;
  342. err = -ENOMEM;
  343. override_cred = prepare_creds();
  344. if (!override_cred)
  345. goto out_iput;
  346. /*
  347. * CAP_SYS_ADMIN for setting opaque xattr
  348. * CAP_DAC_OVERRIDE for create in workdir, rename
  349. * CAP_FOWNER for removing whiteout from sticky dir
  350. */
  351. cap_raise(override_cred->cap_effective, CAP_SYS_ADMIN);
  352. cap_raise(override_cred->cap_effective, CAP_DAC_OVERRIDE);
  353. cap_raise(override_cred->cap_effective, CAP_FOWNER);
  354. old_cred = override_creds(override_cred);
  355. err = ovl_create_over_whiteout(dentry, inode, &stat, link,
  356. hardlink);
  357. revert_creds(old_cred);
  358. put_cred(override_cred);
  359. }
  360. if (!err)
  361. inode = NULL;
  362. out_iput:
  363. iput(inode);
  364. out:
  365. return err;
  366. }
  367. static int ovl_create_object(struct dentry *dentry, int mode, dev_t rdev,
  368. const char *link)
  369. {
  370. int err;
  371. err = ovl_want_write(dentry);
  372. if (!err) {
  373. err = ovl_create_or_link(dentry, mode, rdev, link, NULL);
  374. ovl_drop_write(dentry);
  375. }
  376. return err;
  377. }
  378. static int ovl_create(struct inode *dir, struct dentry *dentry, umode_t mode,
  379. bool excl)
  380. {
  381. return ovl_create_object(dentry, (mode & 07777) | S_IFREG, 0, NULL);
  382. }
  383. static int ovl_mkdir(struct inode *dir, struct dentry *dentry, umode_t mode)
  384. {
  385. return ovl_create_object(dentry, (mode & 07777) | S_IFDIR, 0, NULL);
  386. }
  387. static int ovl_mknod(struct inode *dir, struct dentry *dentry, umode_t mode,
  388. dev_t rdev)
  389. {
  390. /* Don't allow creation of "whiteout" on overlay */
  391. if (S_ISCHR(mode) && rdev == WHITEOUT_DEV)
  392. return -EPERM;
  393. return ovl_create_object(dentry, mode, rdev, NULL);
  394. }
  395. static int ovl_symlink(struct inode *dir, struct dentry *dentry,
  396. const char *link)
  397. {
  398. return ovl_create_object(dentry, S_IFLNK, 0, link);
  399. }
  400. static int ovl_link(struct dentry *old, struct inode *newdir,
  401. struct dentry *new)
  402. {
  403. int err;
  404. struct dentry *upper;
  405. err = ovl_want_write(old);
  406. if (err)
  407. goto out;
  408. err = ovl_copy_up(old);
  409. if (err)
  410. goto out_drop_write;
  411. upper = ovl_dentry_upper(old);
  412. err = ovl_create_or_link(new, upper->d_inode->i_mode, 0, NULL, upper);
  413. out_drop_write:
  414. ovl_drop_write(old);
  415. out:
  416. return err;
  417. }
  418. static int ovl_remove_and_whiteout(struct dentry *dentry, bool is_dir)
  419. {
  420. struct dentry *workdir = ovl_workdir(dentry);
  421. struct inode *wdir = workdir->d_inode;
  422. struct dentry *upperdir = ovl_dentry_upper(dentry->d_parent);
  423. struct inode *udir = upperdir->d_inode;
  424. struct dentry *whiteout;
  425. struct dentry *upper;
  426. struct dentry *opaquedir = NULL;
  427. int err;
  428. if (WARN_ON(!workdir))
  429. return -EROFS;
  430. if (is_dir) {
  431. if (OVL_TYPE_MERGE_OR_LOWER(ovl_path_type(dentry))) {
  432. opaquedir = ovl_check_empty_and_clear(dentry);
  433. err = PTR_ERR(opaquedir);
  434. if (IS_ERR(opaquedir))
  435. goto out;
  436. } else {
  437. LIST_HEAD(list);
  438. /*
  439. * When removing an empty opaque directory, then it
  440. * makes no sense to replace it with an exact replica of
  441. * itself. But emptiness still needs to be checked.
  442. */
  443. err = ovl_check_empty_dir(dentry, &list);
  444. ovl_cache_free(&list);
  445. if (err)
  446. goto out;
  447. }
  448. }
  449. err = ovl_lock_rename_workdir(workdir, upperdir);
  450. if (err)
  451. goto out_dput;
  452. whiteout = ovl_whiteout(workdir, dentry);
  453. err = PTR_ERR(whiteout);
  454. if (IS_ERR(whiteout))
  455. goto out_unlock;
  456. upper = ovl_dentry_upper(dentry);
  457. if (!upper) {
  458. upper = lookup_one_len(dentry->d_name.name, upperdir,
  459. dentry->d_name.len);
  460. err = PTR_ERR(upper);
  461. if (IS_ERR(upper))
  462. goto kill_whiteout;
  463. err = ovl_do_rename(wdir, whiteout, udir, upper, 0);
  464. dput(upper);
  465. if (err)
  466. goto kill_whiteout;
  467. } else {
  468. int flags = 0;
  469. if (opaquedir)
  470. upper = opaquedir;
  471. err = -ESTALE;
  472. if (upper->d_parent != upperdir)
  473. goto kill_whiteout;
  474. if (is_dir)
  475. flags |= RENAME_EXCHANGE;
  476. err = ovl_do_rename(wdir, whiteout, udir, upper, flags);
  477. if (err)
  478. goto kill_whiteout;
  479. if (is_dir)
  480. ovl_cleanup(wdir, upper);
  481. }
  482. ovl_dentry_version_inc(dentry->d_parent);
  483. out_d_drop:
  484. d_drop(dentry);
  485. dput(whiteout);
  486. out_unlock:
  487. unlock_rename(workdir, upperdir);
  488. out_dput:
  489. dput(opaquedir);
  490. out:
  491. return err;
  492. kill_whiteout:
  493. ovl_cleanup(wdir, whiteout);
  494. goto out_d_drop;
  495. }
  496. static int ovl_remove_upper(struct dentry *dentry, bool is_dir)
  497. {
  498. struct dentry *upperdir = ovl_dentry_upper(dentry->d_parent);
  499. struct inode *dir = upperdir->d_inode;
  500. struct dentry *upper = ovl_dentry_upper(dentry);
  501. int err;
  502. mutex_lock_nested(&dir->i_mutex, I_MUTEX_PARENT);
  503. err = -ESTALE;
  504. if (upper->d_parent == upperdir) {
  505. /* Don't let d_delete() think it can reset d_inode */
  506. dget(upper);
  507. if (is_dir)
  508. err = vfs_rmdir(dir, upper);
  509. else
  510. err = vfs_unlink(dir, upper, NULL);
  511. dput(upper);
  512. ovl_dentry_version_inc(dentry->d_parent);
  513. }
  514. /*
  515. * Keeping this dentry hashed would mean having to release
  516. * upperpath/lowerpath, which could only be done if we are the
  517. * sole user of this dentry. Too tricky... Just unhash for
  518. * now.
  519. */
  520. d_drop(dentry);
  521. mutex_unlock(&dir->i_mutex);
  522. return err;
  523. }
  524. static inline int ovl_check_sticky(struct dentry *dentry)
  525. {
  526. struct inode *dir = ovl_dentry_real(dentry->d_parent)->d_inode;
  527. struct inode *inode = ovl_dentry_real(dentry)->d_inode;
  528. if (check_sticky(dir, inode))
  529. return -EPERM;
  530. return 0;
  531. }
  532. static int ovl_do_remove(struct dentry *dentry, bool is_dir)
  533. {
  534. enum ovl_path_type type;
  535. int err;
  536. err = ovl_check_sticky(dentry);
  537. if (err)
  538. goto out;
  539. err = ovl_want_write(dentry);
  540. if (err)
  541. goto out;
  542. err = ovl_copy_up(dentry->d_parent);
  543. if (err)
  544. goto out_drop_write;
  545. type = ovl_path_type(dentry);
  546. if (OVL_TYPE_PURE_UPPER(type)) {
  547. err = ovl_remove_upper(dentry, is_dir);
  548. } else {
  549. const struct cred *old_cred;
  550. struct cred *override_cred;
  551. err = -ENOMEM;
  552. override_cred = prepare_creds();
  553. if (!override_cred)
  554. goto out_drop_write;
  555. /*
  556. * CAP_SYS_ADMIN for setting xattr on whiteout, opaque dir
  557. * CAP_DAC_OVERRIDE for create in workdir, rename
  558. * CAP_FOWNER for removing whiteout from sticky dir
  559. * CAP_FSETID for chmod of opaque dir
  560. * CAP_CHOWN for chown of opaque dir
  561. */
  562. cap_raise(override_cred->cap_effective, CAP_SYS_ADMIN);
  563. cap_raise(override_cred->cap_effective, CAP_DAC_OVERRIDE);
  564. cap_raise(override_cred->cap_effective, CAP_FOWNER);
  565. cap_raise(override_cred->cap_effective, CAP_FSETID);
  566. cap_raise(override_cred->cap_effective, CAP_CHOWN);
  567. old_cred = override_creds(override_cred);
  568. err = ovl_remove_and_whiteout(dentry, is_dir);
  569. revert_creds(old_cred);
  570. put_cred(override_cred);
  571. }
  572. out_drop_write:
  573. ovl_drop_write(dentry);
  574. out:
  575. return err;
  576. }
  577. static int ovl_unlink(struct inode *dir, struct dentry *dentry)
  578. {
  579. return ovl_do_remove(dentry, false);
  580. }
  581. static int ovl_rmdir(struct inode *dir, struct dentry *dentry)
  582. {
  583. return ovl_do_remove(dentry, true);
  584. }
  585. static int ovl_rename2(struct inode *olddir, struct dentry *old,
  586. struct inode *newdir, struct dentry *new,
  587. unsigned int flags)
  588. {
  589. int err;
  590. enum ovl_path_type old_type;
  591. enum ovl_path_type new_type;
  592. struct dentry *old_upperdir;
  593. struct dentry *new_upperdir;
  594. struct dentry *olddentry;
  595. struct dentry *newdentry;
  596. struct dentry *trap;
  597. bool old_opaque;
  598. bool new_opaque;
  599. bool new_create = false;
  600. bool cleanup_whiteout = false;
  601. bool overwrite = !(flags & RENAME_EXCHANGE);
  602. bool is_dir = d_is_dir(old);
  603. bool new_is_dir = false;
  604. struct dentry *opaquedir = NULL;
  605. const struct cred *old_cred = NULL;
  606. struct cred *override_cred = NULL;
  607. err = -EINVAL;
  608. if (flags & ~(RENAME_EXCHANGE | RENAME_NOREPLACE))
  609. goto out;
  610. flags &= ~RENAME_NOREPLACE;
  611. err = ovl_check_sticky(old);
  612. if (err)
  613. goto out;
  614. /* Don't copy up directory trees */
  615. old_type = ovl_path_type(old);
  616. err = -EXDEV;
  617. if (OVL_TYPE_MERGE_OR_LOWER(old_type) && is_dir)
  618. goto out;
  619. if (new->d_inode) {
  620. err = ovl_check_sticky(new);
  621. if (err)
  622. goto out;
  623. if (d_is_dir(new))
  624. new_is_dir = true;
  625. new_type = ovl_path_type(new);
  626. err = -EXDEV;
  627. if (!overwrite && OVL_TYPE_MERGE_OR_LOWER(new_type) && new_is_dir)
  628. goto out;
  629. err = 0;
  630. if (!OVL_TYPE_UPPER(new_type) && !OVL_TYPE_UPPER(old_type)) {
  631. if (ovl_dentry_lower(old)->d_inode ==
  632. ovl_dentry_lower(new)->d_inode)
  633. goto out;
  634. }
  635. if (OVL_TYPE_UPPER(new_type) && OVL_TYPE_UPPER(old_type)) {
  636. if (ovl_dentry_upper(old)->d_inode ==
  637. ovl_dentry_upper(new)->d_inode)
  638. goto out;
  639. }
  640. } else {
  641. if (ovl_dentry_is_opaque(new))
  642. new_type = __OVL_PATH_UPPER;
  643. else
  644. new_type = __OVL_PATH_UPPER | __OVL_PATH_PURE;
  645. }
  646. err = ovl_want_write(old);
  647. if (err)
  648. goto out;
  649. err = ovl_copy_up(old);
  650. if (err)
  651. goto out_drop_write;
  652. err = ovl_copy_up(new->d_parent);
  653. if (err)
  654. goto out_drop_write;
  655. if (!overwrite) {
  656. err = ovl_copy_up(new);
  657. if (err)
  658. goto out_drop_write;
  659. }
  660. old_opaque = !OVL_TYPE_PURE_UPPER(old_type);
  661. new_opaque = !OVL_TYPE_PURE_UPPER(new_type);
  662. if (old_opaque || new_opaque) {
  663. err = -ENOMEM;
  664. override_cred = prepare_creds();
  665. if (!override_cred)
  666. goto out_drop_write;
  667. /*
  668. * CAP_SYS_ADMIN for setting xattr on whiteout, opaque dir
  669. * CAP_DAC_OVERRIDE for create in workdir
  670. * CAP_FOWNER for removing whiteout from sticky dir
  671. * CAP_FSETID for chmod of opaque dir
  672. * CAP_CHOWN for chown of opaque dir
  673. */
  674. cap_raise(override_cred->cap_effective, CAP_SYS_ADMIN);
  675. cap_raise(override_cred->cap_effective, CAP_DAC_OVERRIDE);
  676. cap_raise(override_cred->cap_effective, CAP_FOWNER);
  677. cap_raise(override_cred->cap_effective, CAP_FSETID);
  678. cap_raise(override_cred->cap_effective, CAP_CHOWN);
  679. old_cred = override_creds(override_cred);
  680. }
  681. if (overwrite && OVL_TYPE_MERGE_OR_LOWER(new_type) && new_is_dir) {
  682. opaquedir = ovl_check_empty_and_clear(new);
  683. err = PTR_ERR(opaquedir);
  684. if (IS_ERR(opaquedir)) {
  685. opaquedir = NULL;
  686. goto out_revert_creds;
  687. }
  688. }
  689. if (overwrite) {
  690. if (old_opaque) {
  691. if (new->d_inode || !new_opaque) {
  692. /* Whiteout source */
  693. flags |= RENAME_WHITEOUT;
  694. } else {
  695. /* Switch whiteouts */
  696. flags |= RENAME_EXCHANGE;
  697. }
  698. } else if (is_dir && !new->d_inode && new_opaque) {
  699. flags |= RENAME_EXCHANGE;
  700. cleanup_whiteout = true;
  701. }
  702. }
  703. old_upperdir = ovl_dentry_upper(old->d_parent);
  704. new_upperdir = ovl_dentry_upper(new->d_parent);
  705. trap = lock_rename(new_upperdir, old_upperdir);
  706. olddentry = ovl_dentry_upper(old);
  707. newdentry = ovl_dentry_upper(new);
  708. if (newdentry) {
  709. if (opaquedir) {
  710. newdentry = opaquedir;
  711. opaquedir = NULL;
  712. } else {
  713. dget(newdentry);
  714. }
  715. } else {
  716. new_create = true;
  717. newdentry = lookup_one_len(new->d_name.name, new_upperdir,
  718. new->d_name.len);
  719. err = PTR_ERR(newdentry);
  720. if (IS_ERR(newdentry))
  721. goto out_unlock;
  722. }
  723. err = -ESTALE;
  724. if (olddentry->d_parent != old_upperdir)
  725. goto out_dput;
  726. if (newdentry->d_parent != new_upperdir)
  727. goto out_dput;
  728. if (olddentry == trap)
  729. goto out_dput;
  730. if (newdentry == trap)
  731. goto out_dput;
  732. if (is_dir && !old_opaque && new_opaque) {
  733. err = ovl_set_opaque(olddentry);
  734. if (err)
  735. goto out_dput;
  736. }
  737. if (!overwrite && new_is_dir && old_opaque && !new_opaque) {
  738. err = ovl_set_opaque(newdentry);
  739. if (err)
  740. goto out_dput;
  741. }
  742. if (old_opaque || new_opaque) {
  743. err = ovl_do_rename(old_upperdir->d_inode, olddentry,
  744. new_upperdir->d_inode, newdentry,
  745. flags);
  746. } else {
  747. /* No debug for the plain case */
  748. BUG_ON(flags & ~RENAME_EXCHANGE);
  749. err = vfs_rename(old_upperdir->d_inode, olddentry,
  750. new_upperdir->d_inode, newdentry,
  751. NULL, flags);
  752. }
  753. if (err) {
  754. if (is_dir && !old_opaque && new_opaque)
  755. ovl_remove_opaque(olddentry);
  756. if (!overwrite && new_is_dir && old_opaque && !new_opaque)
  757. ovl_remove_opaque(newdentry);
  758. goto out_dput;
  759. }
  760. if (is_dir && old_opaque && !new_opaque)
  761. ovl_remove_opaque(olddentry);
  762. if (!overwrite && new_is_dir && !old_opaque && new_opaque)
  763. ovl_remove_opaque(newdentry);
  764. if (old_opaque != new_opaque) {
  765. ovl_dentry_set_opaque(old, new_opaque);
  766. if (!overwrite)
  767. ovl_dentry_set_opaque(new, old_opaque);
  768. }
  769. if (cleanup_whiteout)
  770. ovl_cleanup(old_upperdir->d_inode, newdentry);
  771. ovl_dentry_version_inc(old->d_parent);
  772. ovl_dentry_version_inc(new->d_parent);
  773. out_dput:
  774. dput(newdentry);
  775. out_unlock:
  776. unlock_rename(new_upperdir, old_upperdir);
  777. out_revert_creds:
  778. if (old_opaque || new_opaque) {
  779. revert_creds(old_cred);
  780. put_cred(override_cred);
  781. }
  782. out_drop_write:
  783. ovl_drop_write(old);
  784. out:
  785. dput(opaquedir);
  786. return err;
  787. }
  788. const struct inode_operations ovl_dir_inode_operations = {
  789. .lookup = ovl_lookup,
  790. .mkdir = ovl_mkdir,
  791. .symlink = ovl_symlink,
  792. .unlink = ovl_unlink,
  793. .rmdir = ovl_rmdir,
  794. .rename2 = ovl_rename2,
  795. .link = ovl_link,
  796. .setattr = ovl_setattr,
  797. .create = ovl_create,
  798. .mknod = ovl_mknod,
  799. .permission = ovl_permission,
  800. .getattr = ovl_dir_getattr,
  801. .setxattr = ovl_setxattr,
  802. .getxattr = ovl_getxattr,
  803. .listxattr = ovl_listxattr,
  804. .removexattr = ovl_removexattr,
  805. };