]>
Commit | Line | Data |
---|---|---|
e9be9d5e MS |
1 | /* |
2 | * | |
3 | * Copyright (C) 2011 Novell Inc. | |
4 | * | |
5 | * This program is free software; you can redistribute it and/or modify it | |
6 | * under the terms of the GNU General Public License version 2 as published by | |
7 | * the Free Software Foundation. | |
8 | */ | |
9 | ||
10 | #include <linux/fs.h> | |
11 | #include <linux/namei.h> | |
cf9a6784 | 12 | #include <linux/pagemap.h> |
e9be9d5e MS |
13 | #include <linux/xattr.h> |
14 | #include <linux/security.h> | |
15 | #include <linux/mount.h> | |
16 | #include <linux/slab.h> | |
17 | #include <linux/parser.h> | |
18 | #include <linux/module.h> | |
19 | #include <linux/sched.h> | |
cc259639 | 20 | #include <linux/statfs.h> |
f45827e8 | 21 | #include <linux/seq_file.h> |
d837a49b | 22 | #include <linux/posix_acl_xattr.h> |
e9be9d5e MS |
23 | #include "overlayfs.h" |
24 | ||
25 | MODULE_AUTHOR("Miklos Szeredi <[email protected]>"); | |
26 | MODULE_DESCRIPTION("Overlay filesystem"); | |
27 | MODULE_LICENSE("GPL"); | |
28 | ||
f45827e8 EZ |
29 | struct ovl_config { |
30 | char *lowerdir; | |
31 | char *upperdir; | |
32 | char *workdir; | |
8d3095f4 | 33 | bool default_permissions; |
f45827e8 EZ |
34 | }; |
35 | ||
e9be9d5e MS |
36 | /* private information held for overlayfs's superblock */ |
37 | struct ovl_fs { | |
38 | struct vfsmount *upper_mnt; | |
dd662667 MS |
39 | unsigned numlower; |
40 | struct vfsmount **lower_mnt; | |
e9be9d5e | 41 | struct dentry *workdir; |
cc259639 | 42 | long lower_namelen; |
f45827e8 EZ |
43 | /* pathnames of lower and upper dirs, for show_options */ |
44 | struct ovl_config config; | |
3fe6e52f AM |
45 | /* creds of process who forced instantiation of super block */ |
46 | const struct cred *creator_cred; | |
e9be9d5e MS |
47 | }; |
48 | ||
49 | struct ovl_dir_cache; | |
50 | ||
51 | /* private information held for every overlayfs dentry */ | |
52 | struct ovl_entry { | |
53 | struct dentry *__upperdentry; | |
e9be9d5e MS |
54 | struct ovl_dir_cache *cache; |
55 | union { | |
56 | struct { | |
57 | u64 version; | |
58 | bool opaque; | |
59 | }; | |
60 | struct rcu_head rcu; | |
61 | }; | |
dd662667 MS |
62 | unsigned numlower; |
63 | struct path lowerstack[]; | |
e9be9d5e MS |
64 | }; |
65 | ||
a78d9f0d MS |
66 | #define OVL_MAX_STACK 500 |
67 | ||
dd662667 MS |
68 | static struct dentry *__ovl_dentry_lower(struct ovl_entry *oe) |
69 | { | |
70 | return oe->numlower ? oe->lowerstack[0].dentry : NULL; | |
71 | } | |
e9be9d5e MS |
72 | |
73 | enum ovl_path_type ovl_path_type(struct dentry *dentry) | |
74 | { | |
75 | struct ovl_entry *oe = dentry->d_fsdata; | |
1afaba1e | 76 | enum ovl_path_type type = 0; |
e9be9d5e MS |
77 | |
78 | if (oe->__upperdentry) { | |
1afaba1e MS |
79 | type = __OVL_PATH_UPPER; |
80 | ||
45d11738 KK |
81 | /* |
82 | * Non-dir dentry can hold lower dentry from previous | |
83 | * location. Its purity depends only on opaque flag. | |
84 | */ | |
85 | if (oe->numlower && S_ISDIR(dentry->d_inode->i_mode)) | |
86 | type |= __OVL_PATH_MERGE; | |
87 | else if (!oe->opaque) | |
1afaba1e | 88 | type |= __OVL_PATH_PURE; |
9d7459d8 MS |
89 | } else { |
90 | if (oe->numlower > 1) | |
91 | type |= __OVL_PATH_MERGE; | |
e9be9d5e | 92 | } |
1afaba1e | 93 | return type; |
e9be9d5e MS |
94 | } |
95 | ||
96 | static struct dentry *ovl_upperdentry_dereference(struct ovl_entry *oe) | |
97 | { | |
71d50928 | 98 | return lockless_dereference(oe->__upperdentry); |
e9be9d5e MS |
99 | } |
100 | ||
101 | void ovl_path_upper(struct dentry *dentry, struct path *path) | |
102 | { | |
103 | struct ovl_fs *ofs = dentry->d_sb->s_fs_info; | |
104 | struct ovl_entry *oe = dentry->d_fsdata; | |
105 | ||
106 | path->mnt = ofs->upper_mnt; | |
107 | path->dentry = ovl_upperdentry_dereference(oe); | |
108 | } | |
109 | ||
110 | enum ovl_path_type ovl_path_real(struct dentry *dentry, struct path *path) | |
111 | { | |
e9be9d5e MS |
112 | enum ovl_path_type type = ovl_path_type(dentry); |
113 | ||
1afaba1e | 114 | if (!OVL_TYPE_UPPER(type)) |
e9be9d5e MS |
115 | ovl_path_lower(dentry, path); |
116 | else | |
117 | ovl_path_upper(dentry, path); | |
118 | ||
119 | return type; | |
120 | } | |
121 | ||
122 | struct dentry *ovl_dentry_upper(struct dentry *dentry) | |
123 | { | |
124 | struct ovl_entry *oe = dentry->d_fsdata; | |
125 | ||
126 | return ovl_upperdentry_dereference(oe); | |
127 | } | |
128 | ||
129 | struct dentry *ovl_dentry_lower(struct dentry *dentry) | |
130 | { | |
131 | struct ovl_entry *oe = dentry->d_fsdata; | |
132 | ||
dd662667 | 133 | return __ovl_dentry_lower(oe); |
e9be9d5e MS |
134 | } |
135 | ||
136 | struct dentry *ovl_dentry_real(struct dentry *dentry) | |
137 | { | |
138 | struct ovl_entry *oe = dentry->d_fsdata; | |
139 | struct dentry *realdentry; | |
140 | ||
141 | realdentry = ovl_upperdentry_dereference(oe); | |
142 | if (!realdentry) | |
dd662667 | 143 | realdentry = __ovl_dentry_lower(oe); |
e9be9d5e MS |
144 | |
145 | return realdentry; | |
146 | } | |
147 | ||
39b681f8 MS |
148 | static void ovl_inode_init(struct inode *inode, struct inode *realinode, |
149 | bool is_upper) | |
e9be9d5e | 150 | { |
39b681f8 MS |
151 | WRITE_ONCE(inode->i_private, (unsigned long) realinode | |
152 | (is_upper ? OVL_ISUPPER_MASK : 0)); | |
39a25b2b VG |
153 | } |
154 | ||
8d3095f4 MS |
155 | struct vfsmount *ovl_entry_mnt_real(struct ovl_entry *oe, struct inode *inode, |
156 | bool is_upper) | |
157 | { | |
158 | if (is_upper) { | |
159 | struct ovl_fs *ofs = inode->i_sb->s_fs_info; | |
160 | ||
161 | return ofs->upper_mnt; | |
162 | } else { | |
163 | return oe->numlower ? oe->lowerstack[0].mnt : NULL; | |
164 | } | |
165 | } | |
166 | ||
e9be9d5e MS |
167 | struct ovl_dir_cache *ovl_dir_cache(struct dentry *dentry) |
168 | { | |
169 | struct ovl_entry *oe = dentry->d_fsdata; | |
170 | ||
171 | return oe->cache; | |
172 | } | |
173 | ||
174 | void ovl_set_dir_cache(struct dentry *dentry, struct ovl_dir_cache *cache) | |
175 | { | |
176 | struct ovl_entry *oe = dentry->d_fsdata; | |
177 | ||
178 | oe->cache = cache; | |
179 | } | |
180 | ||
181 | void ovl_path_lower(struct dentry *dentry, struct path *path) | |
182 | { | |
e9be9d5e MS |
183 | struct ovl_entry *oe = dentry->d_fsdata; |
184 | ||
dd662667 | 185 | *path = oe->numlower ? oe->lowerstack[0] : (struct path) { NULL, NULL }; |
e9be9d5e MS |
186 | } |
187 | ||
188 | int ovl_want_write(struct dentry *dentry) | |
189 | { | |
190 | struct ovl_fs *ofs = dentry->d_sb->s_fs_info; | |
191 | return mnt_want_write(ofs->upper_mnt); | |
192 | } | |
193 | ||
194 | void ovl_drop_write(struct dentry *dentry) | |
195 | { | |
196 | struct ovl_fs *ofs = dentry->d_sb->s_fs_info; | |
197 | mnt_drop_write(ofs->upper_mnt); | |
198 | } | |
199 | ||
200 | struct dentry *ovl_workdir(struct dentry *dentry) | |
201 | { | |
202 | struct ovl_fs *ofs = dentry->d_sb->s_fs_info; | |
203 | return ofs->workdir; | |
204 | } | |
205 | ||
206 | bool ovl_dentry_is_opaque(struct dentry *dentry) | |
207 | { | |
208 | struct ovl_entry *oe = dentry->d_fsdata; | |
209 | return oe->opaque; | |
210 | } | |
211 | ||
212 | void ovl_dentry_set_opaque(struct dentry *dentry, bool opaque) | |
213 | { | |
214 | struct ovl_entry *oe = dentry->d_fsdata; | |
215 | oe->opaque = opaque; | |
216 | } | |
217 | ||
218 | void ovl_dentry_update(struct dentry *dentry, struct dentry *upperdentry) | |
219 | { | |
220 | struct ovl_entry *oe = dentry->d_fsdata; | |
221 | ||
5955102c | 222 | WARN_ON(!inode_is_locked(upperdentry->d_parent->d_inode)); |
e9be9d5e | 223 | WARN_ON(oe->__upperdentry); |
e9be9d5e MS |
224 | /* |
225 | * Make sure upperdentry is consistent before making it visible to | |
226 | * ovl_upperdentry_dereference(). | |
227 | */ | |
228 | smp_wmb(); | |
229 | oe->__upperdentry = upperdentry; | |
230 | } | |
231 | ||
39b681f8 MS |
232 | void ovl_inode_update(struct inode *inode, struct inode *upperinode) |
233 | { | |
234 | WARN_ON(!upperinode); | |
51f7e52d | 235 | WARN_ON(!inode_unhashed(inode)); |
39b681f8 MS |
236 | WRITE_ONCE(inode->i_private, |
237 | (unsigned long) upperinode | OVL_ISUPPER_MASK); | |
51f7e52d MS |
238 | if (!S_ISDIR(upperinode->i_mode)) |
239 | __insert_inode_hash(inode, (unsigned long) upperinode); | |
39b681f8 MS |
240 | } |
241 | ||
e9be9d5e MS |
242 | void ovl_dentry_version_inc(struct dentry *dentry) |
243 | { | |
244 | struct ovl_entry *oe = dentry->d_fsdata; | |
245 | ||
5955102c | 246 | WARN_ON(!inode_is_locked(dentry->d_inode)); |
e9be9d5e MS |
247 | oe->version++; |
248 | } | |
249 | ||
250 | u64 ovl_dentry_version_get(struct dentry *dentry) | |
251 | { | |
252 | struct ovl_entry *oe = dentry->d_fsdata; | |
253 | ||
5955102c | 254 | WARN_ON(!inode_is_locked(dentry->d_inode)); |
e9be9d5e MS |
255 | return oe->version; |
256 | } | |
257 | ||
258 | bool ovl_is_whiteout(struct dentry *dentry) | |
259 | { | |
260 | struct inode *inode = dentry->d_inode; | |
261 | ||
262 | return inode && IS_WHITEOUT(inode); | |
263 | } | |
264 | ||
3fe6e52f AM |
265 | const struct cred *ovl_override_creds(struct super_block *sb) |
266 | { | |
267 | struct ovl_fs *ofs = sb->s_fs_info; | |
268 | ||
269 | return override_creds(ofs->creator_cred); | |
270 | } | |
271 | ||
e9be9d5e MS |
272 | static bool ovl_is_opaquedir(struct dentry *dentry) |
273 | { | |
274 | int res; | |
275 | char val; | |
e9be9d5e | 276 | |
2b6bc7f4 | 277 | if (!d_is_dir(dentry)) |
e9be9d5e MS |
278 | return false; |
279 | ||
2b6bc7f4 | 280 | res = vfs_getxattr(dentry, OVL_XATTR_OPAQUE, &val, 1); |
e9be9d5e MS |
281 | if (res == 1 && val == 'y') |
282 | return true; | |
283 | ||
284 | return false; | |
285 | } | |
286 | ||
287 | static void ovl_dentry_release(struct dentry *dentry) | |
288 | { | |
289 | struct ovl_entry *oe = dentry->d_fsdata; | |
290 | ||
291 | if (oe) { | |
dd662667 MS |
292 | unsigned int i; |
293 | ||
e9be9d5e | 294 | dput(oe->__upperdentry); |
dd662667 MS |
295 | for (i = 0; i < oe->numlower; i++) |
296 | dput(oe->lowerstack[i].dentry); | |
e9be9d5e MS |
297 | kfree_rcu(oe, rcu); |
298 | } | |
299 | } | |
300 | ||
2d902671 MS |
301 | static struct dentry *ovl_d_real(struct dentry *dentry, |
302 | const struct inode *inode, | |
303 | unsigned int open_flags) | |
d101a125 MS |
304 | { |
305 | struct dentry *real; | |
306 | ||
307 | if (d_is_dir(dentry)) { | |
308 | if (!inode || inode == d_inode(dentry)) | |
309 | return dentry; | |
310 | goto bug; | |
311 | } | |
312 | ||
2d902671 MS |
313 | if (d_is_negative(dentry)) |
314 | return dentry; | |
315 | ||
316 | if (open_flags) { | |
317 | int err = ovl_open_maybe_copy_up(dentry, open_flags); | |
318 | ||
319 | if (err) | |
320 | return ERR_PTR(err); | |
321 | } | |
322 | ||
d101a125 MS |
323 | real = ovl_dentry_upper(dentry); |
324 | if (real && (!inode || inode == d_inode(real))) | |
325 | return real; | |
326 | ||
327 | real = ovl_dentry_lower(dentry); | |
328 | if (!real) | |
329 | goto bug; | |
330 | ||
c4fcfc16 MS |
331 | /* Handle recursion */ |
332 | real = d_real(real, inode, open_flags); | |
333 | ||
d101a125 MS |
334 | if (!inode || inode == d_inode(real)) |
335 | return real; | |
d101a125 | 336 | bug: |
656189d2 | 337 | WARN(1, "ovl_d_real(%pd4, %s:%lu): real dentry not found\n", dentry, |
d101a125 MS |
338 | inode ? inode->i_sb->s_id : "NULL", inode ? inode->i_ino : 0); |
339 | return dentry; | |
340 | } | |
341 | ||
7c03b5d4 MS |
342 | static int ovl_dentry_revalidate(struct dentry *dentry, unsigned int flags) |
343 | { | |
344 | struct ovl_entry *oe = dentry->d_fsdata; | |
345 | unsigned int i; | |
346 | int ret = 1; | |
347 | ||
348 | for (i = 0; i < oe->numlower; i++) { | |
349 | struct dentry *d = oe->lowerstack[i].dentry; | |
350 | ||
351 | if (d->d_flags & DCACHE_OP_REVALIDATE) { | |
352 | ret = d->d_op->d_revalidate(d, flags); | |
353 | if (ret < 0) | |
354 | return ret; | |
355 | if (!ret) { | |
356 | if (!(flags & LOOKUP_RCU)) | |
357 | d_invalidate(d); | |
358 | return -ESTALE; | |
359 | } | |
360 | } | |
361 | } | |
362 | return 1; | |
363 | } | |
364 | ||
365 | static int ovl_dentry_weak_revalidate(struct dentry *dentry, unsigned int flags) | |
366 | { | |
367 | struct ovl_entry *oe = dentry->d_fsdata; | |
368 | unsigned int i; | |
369 | int ret = 1; | |
370 | ||
371 | for (i = 0; i < oe->numlower; i++) { | |
372 | struct dentry *d = oe->lowerstack[i].dentry; | |
373 | ||
374 | if (d->d_flags & DCACHE_OP_WEAK_REVALIDATE) { | |
375 | ret = d->d_op->d_weak_revalidate(d, flags); | |
376 | if (ret <= 0) | |
377 | break; | |
378 | } | |
379 | } | |
380 | return ret; | |
381 | } | |
382 | ||
e9be9d5e MS |
383 | static const struct dentry_operations ovl_dentry_operations = { |
384 | .d_release = ovl_dentry_release, | |
d101a125 | 385 | .d_real = ovl_d_real, |
e9be9d5e MS |
386 | }; |
387 | ||
7c03b5d4 MS |
388 | static const struct dentry_operations ovl_reval_dentry_operations = { |
389 | .d_release = ovl_dentry_release, | |
d101a125 | 390 | .d_real = ovl_d_real, |
7c03b5d4 MS |
391 | .d_revalidate = ovl_dentry_revalidate, |
392 | .d_weak_revalidate = ovl_dentry_weak_revalidate, | |
393 | }; | |
394 | ||
dd662667 | 395 | static struct ovl_entry *ovl_alloc_entry(unsigned int numlower) |
e9be9d5e | 396 | { |
dd662667 MS |
397 | size_t size = offsetof(struct ovl_entry, lowerstack[numlower]); |
398 | struct ovl_entry *oe = kzalloc(size, GFP_KERNEL); | |
399 | ||
400 | if (oe) | |
401 | oe->numlower = numlower; | |
402 | ||
403 | return oe; | |
e9be9d5e MS |
404 | } |
405 | ||
7c03b5d4 MS |
406 | static bool ovl_dentry_remote(struct dentry *dentry) |
407 | { | |
408 | return dentry->d_flags & | |
76bc8e28 MS |
409 | (DCACHE_OP_REVALIDATE | DCACHE_OP_WEAK_REVALIDATE | |
410 | DCACHE_OP_REAL); | |
7c03b5d4 MS |
411 | } |
412 | ||
413 | static bool ovl_dentry_weird(struct dentry *dentry) | |
414 | { | |
415 | return dentry->d_flags & (DCACHE_NEED_AUTOMOUNT | | |
416 | DCACHE_MANAGE_TRANSIT | | |
417 | DCACHE_OP_HASH | | |
418 | DCACHE_OP_COMPARE); | |
419 | } | |
420 | ||
2b6bc7f4 | 421 | static inline struct dentry *ovl_lookup_real(struct dentry *dir, |
29c42e80 | 422 | const struct qstr *name) |
e9be9d5e MS |
423 | { |
424 | struct dentry *dentry; | |
425 | ||
c1b2cc1a | 426 | dentry = lookup_one_len_unlocked(name->name, dir, name->len); |
e9be9d5e MS |
427 | |
428 | if (IS_ERR(dentry)) { | |
429 | if (PTR_ERR(dentry) == -ENOENT) | |
430 | dentry = NULL; | |
431 | } else if (!dentry->d_inode) { | |
432 | dput(dentry); | |
433 | dentry = NULL; | |
7c03b5d4 | 434 | } else if (ovl_dentry_weird(dentry)) { |
a6f15d9a | 435 | dput(dentry); |
7c03b5d4 | 436 | /* Don't support traversing automounts and other weirdness */ |
a6f15d9a | 437 | dentry = ERR_PTR(-EREMOTE); |
e9be9d5e MS |
438 | } |
439 | return dentry; | |
440 | } | |
441 | ||
5ef88da5 MS |
442 | /* |
443 | * Returns next layer in stack starting from top. | |
444 | * Returns -1 if this is the last layer. | |
445 | */ | |
446 | int ovl_path_next(int idx, struct dentry *dentry, struct path *path) | |
447 | { | |
448 | struct ovl_entry *oe = dentry->d_fsdata; | |
449 | ||
450 | BUG_ON(idx < 0); | |
451 | if (idx == 0) { | |
452 | ovl_path_upper(dentry, path); | |
453 | if (path->dentry) | |
454 | return oe->numlower ? 1 : -1; | |
455 | idx++; | |
456 | } | |
457 | BUG_ON(idx > oe->numlower); | |
458 | *path = oe->lowerstack[idx - 1]; | |
459 | ||
460 | return (idx < oe->numlower) ? idx + 1 : -1; | |
461 | } | |
462 | ||
e9be9d5e MS |
463 | struct dentry *ovl_lookup(struct inode *dir, struct dentry *dentry, |
464 | unsigned int flags) | |
465 | { | |
466 | struct ovl_entry *oe; | |
2b6bc7f4 | 467 | const struct cred *old_cred; |
3d3c6b89 MS |
468 | struct ovl_entry *poe = dentry->d_parent->d_fsdata; |
469 | struct path *stack = NULL; | |
470 | struct dentry *upperdir, *upperdentry = NULL; | |
471 | unsigned int ctr = 0; | |
e9be9d5e | 472 | struct inode *inode = NULL; |
3d3c6b89 MS |
473 | bool upperopaque = false; |
474 | struct dentry *this, *prev = NULL; | |
475 | unsigned int i; | |
e9be9d5e MS |
476 | int err; |
477 | ||
2b6bc7f4 | 478 | old_cred = ovl_override_creds(dentry->d_sb); |
3d3c6b89 | 479 | upperdir = ovl_upperdentry_dereference(poe); |
e9be9d5e | 480 | if (upperdir) { |
2b6bc7f4 | 481 | this = ovl_lookup_real(upperdir, &dentry->d_name); |
3d3c6b89 MS |
482 | err = PTR_ERR(this); |
483 | if (IS_ERR(this)) | |
484 | goto out; | |
485 | ||
3e01cee3 | 486 | if (this) { |
7c03b5d4 MS |
487 | if (unlikely(ovl_dentry_remote(this))) { |
488 | dput(this); | |
489 | err = -EREMOTE; | |
490 | goto out; | |
491 | } | |
3d3c6b89 MS |
492 | if (ovl_is_whiteout(this)) { |
493 | dput(this); | |
494 | this = NULL; | |
495 | upperopaque = true; | |
3e01cee3 | 496 | } else if (poe->numlower && ovl_is_opaquedir(this)) { |
3d3c6b89 | 497 | upperopaque = true; |
e9be9d5e MS |
498 | } |
499 | } | |
3d3c6b89 | 500 | upperdentry = prev = this; |
e9be9d5e | 501 | } |
3d3c6b89 MS |
502 | |
503 | if (!upperopaque && poe->numlower) { | |
504 | err = -ENOMEM; | |
505 | stack = kcalloc(poe->numlower, sizeof(struct path), GFP_KERNEL); | |
506 | if (!stack) | |
507 | goto out_put_upper; | |
e9be9d5e MS |
508 | } |
509 | ||
3d3c6b89 MS |
510 | for (i = 0; !upperopaque && i < poe->numlower; i++) { |
511 | bool opaque = false; | |
512 | struct path lowerpath = poe->lowerstack[i]; | |
513 | ||
2b6bc7f4 | 514 | this = ovl_lookup_real(lowerpath.dentry, &dentry->d_name); |
3d3c6b89 | 515 | err = PTR_ERR(this); |
09e10322 MS |
516 | if (IS_ERR(this)) { |
517 | /* | |
518 | * If it's positive, then treat ENAMETOOLONG as ENOENT. | |
519 | */ | |
520 | if (err == -ENAMETOOLONG && (upperdentry || ctr)) | |
521 | continue; | |
3d3c6b89 | 522 | goto out_put; |
09e10322 | 523 | } |
3d3c6b89 MS |
524 | if (!this) |
525 | continue; | |
3e01cee3 MS |
526 | if (ovl_is_whiteout(this)) { |
527 | dput(this); | |
528 | break; | |
529 | } | |
3d3c6b89 | 530 | /* |
3e01cee3 MS |
531 | * Only makes sense to check opaque dir if this is not the |
532 | * lowermost layer. | |
3d3c6b89 | 533 | */ |
3e01cee3 MS |
534 | if (i < poe->numlower - 1 && ovl_is_opaquedir(this)) |
535 | opaque = true; | |
a425c037 | 536 | |
537 | if (prev && (!S_ISDIR(prev->d_inode->i_mode) || | |
538 | !S_ISDIR(this->d_inode->i_mode))) { | |
539 | /* | |
540 | * FIXME: check for upper-opaqueness maybe better done | |
541 | * in remove code. | |
542 | */ | |
3d3c6b89 MS |
543 | if (prev == upperdentry) |
544 | upperopaque = true; | |
545 | dput(this); | |
546 | break; | |
547 | } | |
a425c037 | 548 | /* |
549 | * If this is a non-directory then stop here. | |
550 | */ | |
551 | if (!S_ISDIR(this->d_inode->i_mode)) | |
552 | opaque = true; | |
553 | ||
3d3c6b89 MS |
554 | stack[ctr].dentry = this; |
555 | stack[ctr].mnt = lowerpath.mnt; | |
556 | ctr++; | |
557 | prev = this; | |
558 | if (opaque) | |
559 | break; | |
e9be9d5e MS |
560 | } |
561 | ||
3d3c6b89 MS |
562 | oe = ovl_alloc_entry(ctr); |
563 | err = -ENOMEM; | |
564 | if (!oe) | |
565 | goto out_put; | |
566 | ||
567 | if (upperdentry || ctr) { | |
e9be9d5e | 568 | struct dentry *realdentry; |
39b681f8 | 569 | struct inode *realinode; |
e9be9d5e | 570 | |
3d3c6b89 | 571 | realdentry = upperdentry ? upperdentry : stack[0].dentry; |
39b681f8 | 572 | realinode = d_inode(realdentry); |
3d3c6b89 | 573 | |
e9be9d5e | 574 | err = -ENOMEM; |
51f7e52d MS |
575 | if (upperdentry && !d_is_dir(upperdentry)) { |
576 | inode = ovl_get_inode(dentry->d_sb, realinode); | |
577 | } else { | |
578 | inode = ovl_new_inode(dentry->d_sb, realinode->i_mode); | |
579 | if (inode) | |
580 | ovl_inode_init(inode, realinode, !!upperdentry); | |
581 | } | |
e9be9d5e | 582 | if (!inode) |
3d3c6b89 | 583 | goto out_free_oe; |
e9be9d5e MS |
584 | ovl_copyattr(realdentry->d_inode, inode); |
585 | } | |
586 | ||
2b6bc7f4 | 587 | revert_creds(old_cred); |
3d3c6b89 | 588 | oe->opaque = upperopaque; |
e9be9d5e | 589 | oe->__upperdentry = upperdentry; |
3d3c6b89 MS |
590 | memcpy(oe->lowerstack, stack, sizeof(struct path) * ctr); |
591 | kfree(stack); | |
e9be9d5e MS |
592 | dentry->d_fsdata = oe; |
593 | d_add(dentry, inode); | |
594 | ||
595 | return NULL; | |
596 | ||
3d3c6b89 | 597 | out_free_oe: |
e9be9d5e | 598 | kfree(oe); |
3d3c6b89 MS |
599 | out_put: |
600 | for (i = 0; i < ctr; i++) | |
601 | dput(stack[i].dentry); | |
602 | kfree(stack); | |
603 | out_put_upper: | |
604 | dput(upperdentry); | |
e9be9d5e | 605 | out: |
2b6bc7f4 | 606 | revert_creds(old_cred); |
e9be9d5e MS |
607 | return ERR_PTR(err); |
608 | } | |
609 | ||
610 | struct file *ovl_path_open(struct path *path, int flags) | |
611 | { | |
d719e8f2 | 612 | return dentry_open(path, flags | O_NOATIME, current_cred()); |
e9be9d5e MS |
613 | } |
614 | ||
615 | static void ovl_put_super(struct super_block *sb) | |
616 | { | |
617 | struct ovl_fs *ufs = sb->s_fs_info; | |
dd662667 | 618 | unsigned i; |
e9be9d5e MS |
619 | |
620 | dput(ufs->workdir); | |
621 | mntput(ufs->upper_mnt); | |
dd662667 MS |
622 | for (i = 0; i < ufs->numlower; i++) |
623 | mntput(ufs->lower_mnt[i]); | |
5ffdbe8b | 624 | kfree(ufs->lower_mnt); |
e9be9d5e | 625 | |
f45827e8 EZ |
626 | kfree(ufs->config.lowerdir); |
627 | kfree(ufs->config.upperdir); | |
628 | kfree(ufs->config.workdir); | |
3fe6e52f | 629 | put_cred(ufs->creator_cred); |
e9be9d5e MS |
630 | kfree(ufs); |
631 | } | |
632 | ||
cc259639 AW |
633 | /** |
634 | * ovl_statfs | |
635 | * @sb: The overlayfs super block | |
636 | * @buf: The struct kstatfs to fill in with stats | |
637 | * | |
638 | * Get the filesystem statistics. As writes always target the upper layer | |
4ebc5818 | 639 | * filesystem pass the statfs to the upper filesystem (if it exists) |
cc259639 AW |
640 | */ |
641 | static int ovl_statfs(struct dentry *dentry, struct kstatfs *buf) | |
642 | { | |
643 | struct ovl_fs *ofs = dentry->d_sb->s_fs_info; | |
644 | struct dentry *root_dentry = dentry->d_sb->s_root; | |
645 | struct path path; | |
646 | int err; | |
647 | ||
4ebc5818 | 648 | ovl_path_real(root_dentry, &path); |
cc259639 AW |
649 | |
650 | err = vfs_statfs(&path, buf); | |
651 | if (!err) { | |
652 | buf->f_namelen = max(buf->f_namelen, ofs->lower_namelen); | |
653 | buf->f_type = OVERLAYFS_SUPER_MAGIC; | |
654 | } | |
655 | ||
656 | return err; | |
657 | } | |
658 | ||
f45827e8 EZ |
659 | /** |
660 | * ovl_show_options | |
661 | * | |
662 | * Prints the mount options for a given superblock. | |
663 | * Returns zero; does not fail. | |
664 | */ | |
665 | static int ovl_show_options(struct seq_file *m, struct dentry *dentry) | |
666 | { | |
667 | struct super_block *sb = dentry->d_sb; | |
668 | struct ovl_fs *ufs = sb->s_fs_info; | |
669 | ||
a068acf2 | 670 | seq_show_option(m, "lowerdir", ufs->config.lowerdir); |
53a08cb9 | 671 | if (ufs->config.upperdir) { |
a068acf2 KC |
672 | seq_show_option(m, "upperdir", ufs->config.upperdir); |
673 | seq_show_option(m, "workdir", ufs->config.workdir); | |
53a08cb9 | 674 | } |
8d3095f4 MS |
675 | if (ufs->config.default_permissions) |
676 | seq_puts(m, ",default_permissions"); | |
f45827e8 EZ |
677 | return 0; |
678 | } | |
679 | ||
3cdf6fe9 SL |
680 | static int ovl_remount(struct super_block *sb, int *flags, char *data) |
681 | { | |
682 | struct ovl_fs *ufs = sb->s_fs_info; | |
683 | ||
cc6f67bc | 684 | if (!(*flags & MS_RDONLY) && (!ufs->upper_mnt || !ufs->workdir)) |
3cdf6fe9 SL |
685 | return -EROFS; |
686 | ||
687 | return 0; | |
688 | } | |
689 | ||
e9be9d5e MS |
690 | static const struct super_operations ovl_super_operations = { |
691 | .put_super = ovl_put_super, | |
cc259639 | 692 | .statfs = ovl_statfs, |
f45827e8 | 693 | .show_options = ovl_show_options, |
3cdf6fe9 | 694 | .remount_fs = ovl_remount, |
eead4f2d | 695 | .drop_inode = generic_delete_inode, |
e9be9d5e MS |
696 | }; |
697 | ||
698 | enum { | |
699 | OPT_LOWERDIR, | |
700 | OPT_UPPERDIR, | |
701 | OPT_WORKDIR, | |
8d3095f4 | 702 | OPT_DEFAULT_PERMISSIONS, |
e9be9d5e MS |
703 | OPT_ERR, |
704 | }; | |
705 | ||
706 | static const match_table_t ovl_tokens = { | |
707 | {OPT_LOWERDIR, "lowerdir=%s"}, | |
708 | {OPT_UPPERDIR, "upperdir=%s"}, | |
709 | {OPT_WORKDIR, "workdir=%s"}, | |
8d3095f4 | 710 | {OPT_DEFAULT_PERMISSIONS, "default_permissions"}, |
e9be9d5e MS |
711 | {OPT_ERR, NULL} |
712 | }; | |
713 | ||
91c77947 MS |
714 | static char *ovl_next_opt(char **s) |
715 | { | |
716 | char *sbegin = *s; | |
717 | char *p; | |
718 | ||
719 | if (sbegin == NULL) | |
720 | return NULL; | |
721 | ||
722 | for (p = sbegin; *p; p++) { | |
723 | if (*p == '\\') { | |
724 | p++; | |
725 | if (!*p) | |
726 | break; | |
727 | } else if (*p == ',') { | |
728 | *p = '\0'; | |
729 | *s = p + 1; | |
730 | return sbegin; | |
731 | } | |
732 | } | |
733 | *s = NULL; | |
734 | return sbegin; | |
735 | } | |
736 | ||
e9be9d5e MS |
737 | static int ovl_parse_opt(char *opt, struct ovl_config *config) |
738 | { | |
739 | char *p; | |
740 | ||
91c77947 | 741 | while ((p = ovl_next_opt(&opt)) != NULL) { |
e9be9d5e MS |
742 | int token; |
743 | substring_t args[MAX_OPT_ARGS]; | |
744 | ||
745 | if (!*p) | |
746 | continue; | |
747 | ||
748 | token = match_token(p, ovl_tokens, args); | |
749 | switch (token) { | |
750 | case OPT_UPPERDIR: | |
751 | kfree(config->upperdir); | |
752 | config->upperdir = match_strdup(&args[0]); | |
753 | if (!config->upperdir) | |
754 | return -ENOMEM; | |
755 | break; | |
756 | ||
757 | case OPT_LOWERDIR: | |
758 | kfree(config->lowerdir); | |
759 | config->lowerdir = match_strdup(&args[0]); | |
760 | if (!config->lowerdir) | |
761 | return -ENOMEM; | |
762 | break; | |
763 | ||
764 | case OPT_WORKDIR: | |
765 | kfree(config->workdir); | |
766 | config->workdir = match_strdup(&args[0]); | |
767 | if (!config->workdir) | |
768 | return -ENOMEM; | |
769 | break; | |
770 | ||
8d3095f4 MS |
771 | case OPT_DEFAULT_PERMISSIONS: |
772 | config->default_permissions = true; | |
773 | break; | |
774 | ||
e9be9d5e | 775 | default: |
bead55ef | 776 | pr_err("overlayfs: unrecognized mount option \"%s\" or missing value\n", p); |
e9be9d5e MS |
777 | return -EINVAL; |
778 | } | |
779 | } | |
71cbad7e | 780 | |
781 | /* Workdir is useless in non-upper mount */ | |
782 | if (!config->upperdir && config->workdir) { | |
783 | pr_info("overlayfs: option \"workdir=%s\" is useless in a non-upper mount, ignore\n", | |
784 | config->workdir); | |
785 | kfree(config->workdir); | |
786 | config->workdir = NULL; | |
787 | } | |
788 | ||
e9be9d5e MS |
789 | return 0; |
790 | } | |
791 | ||
792 | #define OVL_WORKDIR_NAME "work" | |
793 | ||
794 | static struct dentry *ovl_workdir_create(struct vfsmount *mnt, | |
795 | struct dentry *dentry) | |
796 | { | |
797 | struct inode *dir = dentry->d_inode; | |
798 | struct dentry *work; | |
799 | int err; | |
800 | bool retried = false; | |
801 | ||
802 | err = mnt_want_write(mnt); | |
803 | if (err) | |
804 | return ERR_PTR(err); | |
805 | ||
5955102c | 806 | inode_lock_nested(dir, I_MUTEX_PARENT); |
e9be9d5e MS |
807 | retry: |
808 | work = lookup_one_len(OVL_WORKDIR_NAME, dentry, | |
809 | strlen(OVL_WORKDIR_NAME)); | |
810 | ||
811 | if (!IS_ERR(work)) { | |
812 | struct kstat stat = { | |
813 | .mode = S_IFDIR | 0, | |
814 | }; | |
c11b9fdd MS |
815 | struct iattr attr = { |
816 | .ia_valid = ATTR_MODE, | |
817 | .ia_mode = stat.mode, | |
818 | }; | |
e9be9d5e MS |
819 | |
820 | if (work->d_inode) { | |
821 | err = -EEXIST; | |
822 | if (retried) | |
823 | goto out_dput; | |
824 | ||
825 | retried = true; | |
eea2fb48 | 826 | ovl_workdir_cleanup(dir, mnt, work, 0); |
e9be9d5e MS |
827 | dput(work); |
828 | goto retry; | |
829 | } | |
830 | ||
831 | err = ovl_create_real(dir, work, &stat, NULL, NULL, true); | |
832 | if (err) | |
833 | goto out_dput; | |
c11b9fdd | 834 | |
cb348edb MS |
835 | /* |
836 | * Try to remove POSIX ACL xattrs from workdir. We are good if: | |
837 | * | |
838 | * a) success (there was a POSIX ACL xattr and was removed) | |
839 | * b) -ENODATA (there was no POSIX ACL xattr) | |
840 | * c) -EOPNOTSUPP (POSIX ACL xattrs are not supported) | |
841 | * | |
842 | * There are various other error values that could effectively | |
843 | * mean that the xattr doesn't exist (e.g. -ERANGE is returned | |
844 | * if the xattr name is too long), but the set of filesystems | |
845 | * allowed as upper are limited to "normal" ones, where checking | |
846 | * for the above two errors is sufficient. | |
847 | */ | |
c11b9fdd | 848 | err = vfs_removexattr(work, XATTR_NAME_POSIX_ACL_DEFAULT); |
e1ff3dd1 | 849 | if (err && err != -ENODATA && err != -EOPNOTSUPP) |
c11b9fdd MS |
850 | goto out_dput; |
851 | ||
852 | err = vfs_removexattr(work, XATTR_NAME_POSIX_ACL_ACCESS); | |
e1ff3dd1 | 853 | if (err && err != -ENODATA && err != -EOPNOTSUPP) |
c11b9fdd MS |
854 | goto out_dput; |
855 | ||
856 | /* Clear any inherited mode bits */ | |
857 | inode_lock(work->d_inode); | |
858 | err = notify_change(work, &attr, NULL); | |
859 | inode_unlock(work->d_inode); | |
860 | if (err) | |
861 | goto out_dput; | |
e9be9d5e MS |
862 | } |
863 | out_unlock: | |
5955102c | 864 | inode_unlock(dir); |
e9be9d5e MS |
865 | mnt_drop_write(mnt); |
866 | ||
867 | return work; | |
868 | ||
869 | out_dput: | |
870 | dput(work); | |
871 | work = ERR_PTR(err); | |
872 | goto out_unlock; | |
873 | } | |
874 | ||
91c77947 MS |
875 | static void ovl_unescape(char *s) |
876 | { | |
877 | char *d = s; | |
878 | ||
879 | for (;; s++, d++) { | |
880 | if (*s == '\\') | |
881 | s++; | |
882 | *d = *s; | |
883 | if (!*s) | |
884 | break; | |
885 | } | |
886 | } | |
887 | ||
ab508822 MS |
888 | static int ovl_mount_dir_noesc(const char *name, struct path *path) |
889 | { | |
a78d9f0d | 890 | int err = -EINVAL; |
ab508822 | 891 | |
a78d9f0d MS |
892 | if (!*name) { |
893 | pr_err("overlayfs: empty lowerdir\n"); | |
894 | goto out; | |
895 | } | |
ab508822 MS |
896 | err = kern_path(name, LOOKUP_FOLLOW, path); |
897 | if (err) { | |
898 | pr_err("overlayfs: failed to resolve '%s': %i\n", name, err); | |
899 | goto out; | |
900 | } | |
901 | err = -EINVAL; | |
7c03b5d4 | 902 | if (ovl_dentry_weird(path->dentry)) { |
ab508822 MS |
903 | pr_err("overlayfs: filesystem on '%s' not supported\n", name); |
904 | goto out_put; | |
905 | } | |
906 | if (!S_ISDIR(path->dentry->d_inode->i_mode)) { | |
907 | pr_err("overlayfs: '%s' not a directory\n", name); | |
908 | goto out_put; | |
909 | } | |
910 | return 0; | |
911 | ||
912 | out_put: | |
913 | path_put(path); | |
914 | out: | |
915 | return err; | |
916 | } | |
917 | ||
918 | static int ovl_mount_dir(const char *name, struct path *path) | |
919 | { | |
920 | int err = -ENOMEM; | |
921 | char *tmp = kstrdup(name, GFP_KERNEL); | |
922 | ||
923 | if (tmp) { | |
924 | ovl_unescape(tmp); | |
925 | err = ovl_mount_dir_noesc(tmp, path); | |
7c03b5d4 MS |
926 | |
927 | if (!err) | |
928 | if (ovl_dentry_remote(path->dentry)) { | |
929 | pr_err("overlayfs: filesystem on '%s' not supported as upperdir\n", | |
930 | tmp); | |
931 | path_put(path); | |
932 | err = -EINVAL; | |
933 | } | |
ab508822 MS |
934 | kfree(tmp); |
935 | } | |
936 | return err; | |
937 | } | |
938 | ||
939 | static int ovl_lower_dir(const char *name, struct path *path, long *namelen, | |
7c03b5d4 | 940 | int *stack_depth, bool *remote) |
ab508822 MS |
941 | { |
942 | int err; | |
943 | struct kstatfs statfs; | |
944 | ||
a78d9f0d | 945 | err = ovl_mount_dir_noesc(name, path); |
ab508822 MS |
946 | if (err) |
947 | goto out; | |
948 | ||
949 | err = vfs_statfs(path, &statfs); | |
950 | if (err) { | |
951 | pr_err("overlayfs: statfs failed on '%s'\n", name); | |
952 | goto out_put; | |
953 | } | |
954 | *namelen = max(*namelen, statfs.f_namelen); | |
955 | *stack_depth = max(*stack_depth, path->mnt->mnt_sb->s_stack_depth); | |
956 | ||
7c03b5d4 MS |
957 | if (ovl_dentry_remote(path->dentry)) |
958 | *remote = true; | |
959 | ||
ab508822 MS |
960 | return 0; |
961 | ||
962 | out_put: | |
963 | path_put(path); | |
964 | out: | |
965 | return err; | |
966 | } | |
967 | ||
e9be9d5e MS |
968 | /* Workdir should not be subdir of upperdir and vice versa */ |
969 | static bool ovl_workdir_ok(struct dentry *workdir, struct dentry *upperdir) | |
970 | { | |
971 | bool ok = false; | |
972 | ||
973 | if (workdir != upperdir) { | |
974 | ok = (lock_rename(workdir, upperdir) == NULL); | |
975 | unlock_rename(workdir, upperdir); | |
976 | } | |
977 | return ok; | |
978 | } | |
979 | ||
a78d9f0d MS |
980 | static unsigned int ovl_split_lowerdirs(char *str) |
981 | { | |
982 | unsigned int ctr = 1; | |
983 | char *s, *d; | |
984 | ||
985 | for (s = d = str;; s++, d++) { | |
986 | if (*s == '\\') { | |
987 | s++; | |
988 | } else if (*s == ':') { | |
989 | *d = '\0'; | |
990 | ctr++; | |
991 | continue; | |
992 | } | |
993 | *d = *s; | |
994 | if (!*s) | |
995 | break; | |
996 | } | |
997 | return ctr; | |
998 | } | |
999 | ||
0eb45fc3 AG |
1000 | static int __maybe_unused |
1001 | ovl_posix_acl_xattr_get(const struct xattr_handler *handler, | |
1002 | struct dentry *dentry, struct inode *inode, | |
1003 | const char *name, void *buffer, size_t size) | |
1004 | { | |
1005 | return ovl_xattr_get(dentry, handler->name, buffer, size); | |
1006 | } | |
1007 | ||
0c97be22 AG |
1008 | static int __maybe_unused |
1009 | ovl_posix_acl_xattr_set(const struct xattr_handler *handler, | |
1010 | struct dentry *dentry, struct inode *inode, | |
1011 | const char *name, const void *value, | |
1012 | size_t size, int flags) | |
d837a49b MS |
1013 | { |
1014 | struct dentry *workdir = ovl_workdir(dentry); | |
1015 | struct inode *realinode = ovl_inode_real(inode, NULL); | |
1016 | struct posix_acl *acl = NULL; | |
1017 | int err; | |
1018 | ||
1019 | /* Check that everything is OK before copy-up */ | |
1020 | if (value) { | |
1021 | acl = posix_acl_from_xattr(&init_user_ns, value, size); | |
1022 | if (IS_ERR(acl)) | |
1023 | return PTR_ERR(acl); | |
1024 | } | |
1025 | err = -EOPNOTSUPP; | |
1026 | if (!IS_POSIXACL(d_inode(workdir))) | |
1027 | goto out_acl_release; | |
1028 | if (!realinode->i_op->set_acl) | |
1029 | goto out_acl_release; | |
1030 | if (handler->flags == ACL_TYPE_DEFAULT && !S_ISDIR(inode->i_mode)) { | |
1031 | err = acl ? -EACCES : 0; | |
1032 | goto out_acl_release; | |
1033 | } | |
1034 | err = -EPERM; | |
1035 | if (!inode_owner_or_capable(inode)) | |
1036 | goto out_acl_release; | |
1037 | ||
1038 | posix_acl_release(acl); | |
1039 | ||
fd3220d3 MS |
1040 | /* |
1041 | * Check if sgid bit needs to be cleared (actual setacl operation will | |
1042 | * be done with mounter's capabilities and so that won't do it for us). | |
1043 | */ | |
1044 | if (unlikely(inode->i_mode & S_ISGID) && | |
1045 | handler->flags == ACL_TYPE_ACCESS && | |
1046 | !in_group_p(inode->i_gid) && | |
1047 | !capable_wrt_inode_uidgid(inode, CAP_FSETID)) { | |
1048 | struct iattr iattr = { .ia_valid = ATTR_KILL_SGID }; | |
1049 | ||
1050 | err = ovl_setattr(dentry, &iattr); | |
1051 | if (err) | |
1052 | return err; | |
1053 | } | |
1054 | ||
ce31513a MS |
1055 | err = ovl_xattr_set(dentry, handler->name, value, size, flags); |
1056 | if (!err) | |
1057 | ovl_copyattr(ovl_inode_real(inode, NULL), inode); | |
1058 | ||
1059 | return err; | |
d837a49b MS |
1060 | |
1061 | out_acl_release: | |
1062 | posix_acl_release(acl); | |
1063 | return err; | |
1064 | } | |
1065 | ||
0eb45fc3 AG |
1066 | static int ovl_own_xattr_get(const struct xattr_handler *handler, |
1067 | struct dentry *dentry, struct inode *inode, | |
1068 | const char *name, void *buffer, size_t size) | |
1069 | { | |
1070 | return -EPERM; | |
1071 | } | |
1072 | ||
d837a49b MS |
1073 | static int ovl_own_xattr_set(const struct xattr_handler *handler, |
1074 | struct dentry *dentry, struct inode *inode, | |
1075 | const char *name, const void *value, | |
1076 | size_t size, int flags) | |
1077 | { | |
1078 | return -EPERM; | |
1079 | } | |
1080 | ||
0eb45fc3 AG |
1081 | static int ovl_other_xattr_get(const struct xattr_handler *handler, |
1082 | struct dentry *dentry, struct inode *inode, | |
1083 | const char *name, void *buffer, size_t size) | |
1084 | { | |
1085 | return ovl_xattr_get(dentry, name, buffer, size); | |
1086 | } | |
1087 | ||
0e585ccc AG |
1088 | static int ovl_other_xattr_set(const struct xattr_handler *handler, |
1089 | struct dentry *dentry, struct inode *inode, | |
1090 | const char *name, const void *value, | |
1091 | size_t size, int flags) | |
1092 | { | |
1093 | return ovl_xattr_set(dentry, name, value, size, flags); | |
1094 | } | |
1095 | ||
0c97be22 AG |
1096 | static const struct xattr_handler __maybe_unused |
1097 | ovl_posix_acl_access_xattr_handler = { | |
d837a49b MS |
1098 | .name = XATTR_NAME_POSIX_ACL_ACCESS, |
1099 | .flags = ACL_TYPE_ACCESS, | |
0eb45fc3 | 1100 | .get = ovl_posix_acl_xattr_get, |
d837a49b MS |
1101 | .set = ovl_posix_acl_xattr_set, |
1102 | }; | |
1103 | ||
0c97be22 AG |
1104 | static const struct xattr_handler __maybe_unused |
1105 | ovl_posix_acl_default_xattr_handler = { | |
d837a49b MS |
1106 | .name = XATTR_NAME_POSIX_ACL_DEFAULT, |
1107 | .flags = ACL_TYPE_DEFAULT, | |
0eb45fc3 | 1108 | .get = ovl_posix_acl_xattr_get, |
d837a49b MS |
1109 | .set = ovl_posix_acl_xattr_set, |
1110 | }; | |
1111 | ||
1112 | static const struct xattr_handler ovl_own_xattr_handler = { | |
1113 | .prefix = OVL_XATTR_PREFIX, | |
0eb45fc3 | 1114 | .get = ovl_own_xattr_get, |
d837a49b MS |
1115 | .set = ovl_own_xattr_set, |
1116 | }; | |
1117 | ||
1118 | static const struct xattr_handler ovl_other_xattr_handler = { | |
1119 | .prefix = "", /* catch all */ | |
0eb45fc3 | 1120 | .get = ovl_other_xattr_get, |
d837a49b MS |
1121 | .set = ovl_other_xattr_set, |
1122 | }; | |
1123 | ||
1124 | static const struct xattr_handler *ovl_xattr_handlers[] = { | |
0c97be22 | 1125 | #ifdef CONFIG_FS_POSIX_ACL |
d837a49b MS |
1126 | &ovl_posix_acl_access_xattr_handler, |
1127 | &ovl_posix_acl_default_xattr_handler, | |
0c97be22 | 1128 | #endif |
d837a49b MS |
1129 | &ovl_own_xattr_handler, |
1130 | &ovl_other_xattr_handler, | |
1131 | NULL | |
1132 | }; | |
1133 | ||
e9be9d5e MS |
1134 | static int ovl_fill_super(struct super_block *sb, void *data, int silent) |
1135 | { | |
53a08cb9 MS |
1136 | struct path upperpath = { NULL, NULL }; |
1137 | struct path workpath = { NULL, NULL }; | |
e9be9d5e | 1138 | struct dentry *root_dentry; |
39b681f8 | 1139 | struct inode *realinode; |
e9be9d5e MS |
1140 | struct ovl_entry *oe; |
1141 | struct ovl_fs *ufs; | |
a78d9f0d MS |
1142 | struct path *stack = NULL; |
1143 | char *lowertmp; | |
1144 | char *lower; | |
1145 | unsigned int numlower; | |
1146 | unsigned int stacklen = 0; | |
dd662667 | 1147 | unsigned int i; |
7c03b5d4 | 1148 | bool remote = false; |
e9be9d5e MS |
1149 | int err; |
1150 | ||
f45827e8 EZ |
1151 | err = -ENOMEM; |
1152 | ufs = kzalloc(sizeof(struct ovl_fs), GFP_KERNEL); | |
1153 | if (!ufs) | |
e9be9d5e MS |
1154 | goto out; |
1155 | ||
f45827e8 EZ |
1156 | err = ovl_parse_opt((char *) data, &ufs->config); |
1157 | if (err) | |
1158 | goto out_free_config; | |
1159 | ||
e9be9d5e | 1160 | err = -EINVAL; |
53a08cb9 | 1161 | if (!ufs->config.lowerdir) { |
07f2af7b KK |
1162 | if (!silent) |
1163 | pr_err("overlayfs: missing 'lowerdir'\n"); | |
e9be9d5e MS |
1164 | goto out_free_config; |
1165 | } | |
1166 | ||
53a08cb9 | 1167 | sb->s_stack_depth = 0; |
cf9a6784 | 1168 | sb->s_maxbytes = MAX_LFS_FILESIZE; |
53a08cb9 | 1169 | if (ufs->config.upperdir) { |
53a08cb9 MS |
1170 | if (!ufs->config.workdir) { |
1171 | pr_err("overlayfs: missing 'workdir'\n"); | |
1172 | goto out_free_config; | |
1173 | } | |
e9be9d5e | 1174 | |
53a08cb9 MS |
1175 | err = ovl_mount_dir(ufs->config.upperdir, &upperpath); |
1176 | if (err) | |
1177 | goto out_free_config; | |
e9be9d5e | 1178 | |
71cbad7e | 1179 | /* Upper fs should not be r/o */ |
1180 | if (upperpath.mnt->mnt_sb->s_flags & MS_RDONLY) { | |
1181 | pr_err("overlayfs: upper fs is r/o, try multi-lower layers mount\n"); | |
1182 | err = -EINVAL; | |
1183 | goto out_put_upperpath; | |
1184 | } | |
1185 | ||
53a08cb9 MS |
1186 | err = ovl_mount_dir(ufs->config.workdir, &workpath); |
1187 | if (err) | |
1188 | goto out_put_upperpath; | |
1189 | ||
2f83fd8c | 1190 | err = -EINVAL; |
53a08cb9 MS |
1191 | if (upperpath.mnt != workpath.mnt) { |
1192 | pr_err("overlayfs: workdir and upperdir must reside under the same mount\n"); | |
1193 | goto out_put_workpath; | |
1194 | } | |
1195 | if (!ovl_workdir_ok(workpath.dentry, upperpath.dentry)) { | |
1196 | pr_err("overlayfs: workdir and upperdir must be separate subtrees\n"); | |
1197 | goto out_put_workpath; | |
1198 | } | |
1199 | sb->s_stack_depth = upperpath.mnt->mnt_sb->s_stack_depth; | |
cc259639 | 1200 | } |
a78d9f0d MS |
1201 | err = -ENOMEM; |
1202 | lowertmp = kstrdup(ufs->config.lowerdir, GFP_KERNEL); | |
1203 | if (!lowertmp) | |
ab508822 | 1204 | goto out_put_workpath; |
69c433ed | 1205 | |
a78d9f0d MS |
1206 | err = -EINVAL; |
1207 | stacklen = ovl_split_lowerdirs(lowertmp); | |
6be4506e | 1208 | if (stacklen > OVL_MAX_STACK) { |
fd36570a | 1209 | pr_err("overlayfs: too many lower directories, limit is %d\n", |
6be4506e | 1210 | OVL_MAX_STACK); |
a78d9f0d | 1211 | goto out_free_lowertmp; |
6be4506e | 1212 | } else if (!ufs->config.upperdir && stacklen == 1) { |
1213 | pr_err("overlayfs: at least 2 lowerdir are needed while upperdir nonexistent\n"); | |
1214 | goto out_free_lowertmp; | |
1215 | } | |
a78d9f0d MS |
1216 | |
1217 | stack = kcalloc(stacklen, sizeof(struct path), GFP_KERNEL); | |
1218 | if (!stack) | |
1219 | goto out_free_lowertmp; | |
1220 | ||
1221 | lower = lowertmp; | |
1222 | for (numlower = 0; numlower < stacklen; numlower++) { | |
1223 | err = ovl_lower_dir(lower, &stack[numlower], | |
7c03b5d4 MS |
1224 | &ufs->lower_namelen, &sb->s_stack_depth, |
1225 | &remote); | |
a78d9f0d MS |
1226 | if (err) |
1227 | goto out_put_lowerpath; | |
1228 | ||
1229 | lower = strchr(lower, '\0') + 1; | |
1230 | } | |
1231 | ||
69c433ed | 1232 | err = -EINVAL; |
ab508822 | 1233 | sb->s_stack_depth++; |
69c433ed MS |
1234 | if (sb->s_stack_depth > FILESYSTEM_MAX_STACK_DEPTH) { |
1235 | pr_err("overlayfs: maximum fs stacking depth exceeded\n"); | |
3b7a9a24 | 1236 | goto out_put_lowerpath; |
69c433ed MS |
1237 | } |
1238 | ||
53a08cb9 MS |
1239 | if (ufs->config.upperdir) { |
1240 | ufs->upper_mnt = clone_private_mount(&upperpath); | |
1241 | err = PTR_ERR(ufs->upper_mnt); | |
1242 | if (IS_ERR(ufs->upper_mnt)) { | |
1243 | pr_err("overlayfs: failed to clone upperpath\n"); | |
1244 | goto out_put_lowerpath; | |
1245 | } | |
d719e8f2 MS |
1246 | /* Don't inherit atime flags */ |
1247 | ufs->upper_mnt->mnt_flags &= ~(MNT_NOATIME | MNT_NODIRATIME | MNT_RELATIME); | |
1248 | ||
1249 | sb->s_time_gran = ufs->upper_mnt->mnt_sb->s_time_gran; | |
3b7a9a24 | 1250 | |
53a08cb9 MS |
1251 | ufs->workdir = ovl_workdir_create(ufs->upper_mnt, workpath.dentry); |
1252 | err = PTR_ERR(ufs->workdir); | |
1253 | if (IS_ERR(ufs->workdir)) { | |
cc6f67bc MS |
1254 | pr_warn("overlayfs: failed to create directory %s/%s (errno: %i); mounting read-only\n", |
1255 | ufs->config.workdir, OVL_WORKDIR_NAME, -err); | |
1256 | sb->s_flags |= MS_RDONLY; | |
1257 | ufs->workdir = NULL; | |
53a08cb9 | 1258 | } |
45aebeaf VG |
1259 | |
1260 | /* | |
1261 | * Upper should support d_type, else whiteouts are visible. | |
1262 | * Given workdir and upper are on same fs, we can do | |
21765194 VG |
1263 | * iterate_dir() on workdir. This check requires successful |
1264 | * creation of workdir in previous step. | |
45aebeaf | 1265 | */ |
21765194 VG |
1266 | if (ufs->workdir) { |
1267 | err = ovl_check_d_type_supported(&workpath); | |
1268 | if (err < 0) | |
1269 | goto out_put_workdir; | |
45aebeaf | 1270 | |
e7c0b599 VG |
1271 | /* |
1272 | * We allowed this configuration and don't want to | |
1273 | * break users over kernel upgrade. So warn instead | |
1274 | * of erroring out. | |
1275 | */ | |
1276 | if (!err) | |
1277 | pr_warn("overlayfs: upper fs needs to support d_type.\n"); | |
45aebeaf | 1278 | } |
e9be9d5e MS |
1279 | } |
1280 | ||
2f83fd8c | 1281 | err = -ENOMEM; |
a78d9f0d | 1282 | ufs->lower_mnt = kcalloc(numlower, sizeof(struct vfsmount *), GFP_KERNEL); |
dd662667 | 1283 | if (ufs->lower_mnt == NULL) |
3b7a9a24 | 1284 | goto out_put_workdir; |
a78d9f0d MS |
1285 | for (i = 0; i < numlower; i++) { |
1286 | struct vfsmount *mnt = clone_private_mount(&stack[i]); | |
dd662667 | 1287 | |
2f83fd8c | 1288 | err = PTR_ERR(mnt); |
a78d9f0d MS |
1289 | if (IS_ERR(mnt)) { |
1290 | pr_err("overlayfs: failed to clone lowerpath\n"); | |
1291 | goto out_put_lower_mnt; | |
1292 | } | |
1293 | /* | |
1294 | * Make lower_mnt R/O. That way fchmod/fchown on lower file | |
1295 | * will fail instead of modifying lower fs. | |
1296 | */ | |
d719e8f2 | 1297 | mnt->mnt_flags |= MNT_READONLY | MNT_NOATIME; |
dd662667 | 1298 | |
a78d9f0d MS |
1299 | ufs->lower_mnt[ufs->numlower] = mnt; |
1300 | ufs->numlower++; | |
1301 | } | |
e9be9d5e | 1302 | |
71cbad7e | 1303 | /* If the upper fs is nonexistent, we mark overlayfs r/o too */ |
1304 | if (!ufs->upper_mnt) | |
e9be9d5e MS |
1305 | sb->s_flags |= MS_RDONLY; |
1306 | ||
7c03b5d4 MS |
1307 | if (remote) |
1308 | sb->s_d_op = &ovl_reval_dentry_operations; | |
1309 | else | |
1310 | sb->s_d_op = &ovl_dentry_operations; | |
e9be9d5e | 1311 | |
3fe6e52f AM |
1312 | ufs->creator_cred = prepare_creds(); |
1313 | if (!ufs->creator_cred) | |
1314 | goto out_put_lower_mnt; | |
1315 | ||
e9be9d5e | 1316 | err = -ENOMEM; |
a78d9f0d | 1317 | oe = ovl_alloc_entry(numlower); |
3b7a9a24 | 1318 | if (!oe) |
3fe6e52f | 1319 | goto out_put_cred; |
e9be9d5e | 1320 | |
655042cc VG |
1321 | sb->s_magic = OVERLAYFS_SUPER_MAGIC; |
1322 | sb->s_op = &ovl_super_operations; | |
1323 | sb->s_xattr = ovl_xattr_handlers; | |
1324 | sb->s_fs_info = ufs; | |
1325 | sb->s_flags |= MS_POSIXACL | MS_NOREMOTELOCK; | |
1326 | ||
39b681f8 | 1327 | root_dentry = d_make_root(ovl_new_inode(sb, S_IFDIR)); |
e9be9d5e | 1328 | if (!root_dentry) |
3b7a9a24 | 1329 | goto out_free_oe; |
e9be9d5e MS |
1330 | |
1331 | mntput(upperpath.mnt); | |
a78d9f0d MS |
1332 | for (i = 0; i < numlower; i++) |
1333 | mntput(stack[i].mnt); | |
e9be9d5e | 1334 | path_put(&workpath); |
a78d9f0d | 1335 | kfree(lowertmp); |
e9be9d5e MS |
1336 | |
1337 | oe->__upperdentry = upperpath.dentry; | |
a78d9f0d MS |
1338 | for (i = 0; i < numlower; i++) { |
1339 | oe->lowerstack[i].dentry = stack[i].dentry; | |
1340 | oe->lowerstack[i].mnt = ufs->lower_mnt[i]; | |
1341 | } | |
0f95502a | 1342 | kfree(stack); |
e9be9d5e MS |
1343 | |
1344 | root_dentry->d_fsdata = oe; | |
1345 | ||
39b681f8 MS |
1346 | realinode = d_inode(ovl_dentry_real(root_dentry)); |
1347 | ovl_inode_init(d_inode(root_dentry), realinode, !!upperpath.dentry); | |
1348 | ovl_copyattr(realinode, d_inode(root_dentry)); | |
ed06e069 | 1349 | |
e9be9d5e | 1350 | sb->s_root = root_dentry; |
e9be9d5e MS |
1351 | |
1352 | return 0; | |
1353 | ||
3b7a9a24 MS |
1354 | out_free_oe: |
1355 | kfree(oe); | |
3fe6e52f AM |
1356 | out_put_cred: |
1357 | put_cred(ufs->creator_cred); | |
e9be9d5e | 1358 | out_put_lower_mnt: |
dd662667 MS |
1359 | for (i = 0; i < ufs->numlower; i++) |
1360 | mntput(ufs->lower_mnt[i]); | |
1361 | kfree(ufs->lower_mnt); | |
3b7a9a24 MS |
1362 | out_put_workdir: |
1363 | dput(ufs->workdir); | |
e9be9d5e | 1364 | mntput(ufs->upper_mnt); |
e9be9d5e | 1365 | out_put_lowerpath: |
a78d9f0d MS |
1366 | for (i = 0; i < numlower; i++) |
1367 | path_put(&stack[i]); | |
1368 | kfree(stack); | |
1369 | out_free_lowertmp: | |
1370 | kfree(lowertmp); | |
3b7a9a24 MS |
1371 | out_put_workpath: |
1372 | path_put(&workpath); | |
e9be9d5e MS |
1373 | out_put_upperpath: |
1374 | path_put(&upperpath); | |
e9be9d5e | 1375 | out_free_config: |
f45827e8 EZ |
1376 | kfree(ufs->config.lowerdir); |
1377 | kfree(ufs->config.upperdir); | |
1378 | kfree(ufs->config.workdir); | |
1379 | kfree(ufs); | |
e9be9d5e MS |
1380 | out: |
1381 | return err; | |
1382 | } | |
1383 | ||
1384 | static struct dentry *ovl_mount(struct file_system_type *fs_type, int flags, | |
1385 | const char *dev_name, void *raw_data) | |
1386 | { | |
1387 | return mount_nodev(fs_type, flags, raw_data, ovl_fill_super); | |
1388 | } | |
1389 | ||
1390 | static struct file_system_type ovl_fs_type = { | |
1391 | .owner = THIS_MODULE, | |
ef94b186 | 1392 | .name = "overlay", |
e9be9d5e MS |
1393 | .mount = ovl_mount, |
1394 | .kill_sb = kill_anon_super, | |
1395 | }; | |
ef94b186 | 1396 | MODULE_ALIAS_FS("overlay"); |
e9be9d5e MS |
1397 | |
1398 | static int __init ovl_init(void) | |
1399 | { | |
1400 | return register_filesystem(&ovl_fs_type); | |
1401 | } | |
1402 | ||
1403 | static void __exit ovl_exit(void) | |
1404 | { | |
1405 | unregister_filesystem(&ovl_fs_type); | |
1406 | } | |
1407 | ||
1408 | module_init(ovl_init); | |
1409 | module_exit(ovl_exit); |