]>
Commit | Line | Data |
---|---|---|
f0c8bd16 | 1 | /* |
f0c8bd16 AG |
2 | * (C) 2005 Andreas Gruenbacher <[email protected]> |
3 | * | |
4 | * This file is released under the GPL. | |
1c7c474c CH |
5 | * |
6 | * Generic ACL support for in-memory filesystems. | |
f0c8bd16 AG |
7 | */ |
8 | ||
9 | #include <linux/sched.h> | |
5a0e3ad6 | 10 | #include <linux/gfp.h> |
f0c8bd16 AG |
11 | #include <linux/fs.h> |
12 | #include <linux/generic_acl.h> | |
1c7c474c CH |
13 | #include <linux/posix_acl.h> |
14 | #include <linux/posix_acl_xattr.h> | |
f0c8bd16 | 15 | |
1c7c474c CH |
16 | |
17 | static size_t | |
18 | generic_acl_list(struct dentry *dentry, char *list, size_t list_size, | |
19 | const char *name, size_t name_len, int type) | |
f0c8bd16 AG |
20 | { |
21 | struct posix_acl *acl; | |
1c7c474c | 22 | const char *xname; |
f0c8bd16 AG |
23 | size_t size; |
24 | ||
1c7c474c | 25 | acl = get_cached_acl(dentry->d_inode, type); |
f0c8bd16 AG |
26 | if (!acl) |
27 | return 0; | |
28 | posix_acl_release(acl); | |
29 | ||
1c7c474c CH |
30 | switch (type) { |
31 | case ACL_TYPE_ACCESS: | |
32 | xname = POSIX_ACL_XATTR_ACCESS; | |
33 | break; | |
34 | case ACL_TYPE_DEFAULT: | |
35 | xname = POSIX_ACL_XATTR_DEFAULT; | |
36 | break; | |
37 | default: | |
38 | return 0; | |
f0c8bd16 | 39 | } |
1c7c474c | 40 | size = strlen(xname) + 1; |
f0c8bd16 | 41 | if (list && size <= list_size) |
1c7c474c | 42 | memcpy(list, xname, size); |
f0c8bd16 AG |
43 | return size; |
44 | } | |
45 | ||
1c7c474c CH |
46 | static int |
47 | generic_acl_get(struct dentry *dentry, const char *name, void *buffer, | |
48 | size_t size, int type) | |
f0c8bd16 AG |
49 | { |
50 | struct posix_acl *acl; | |
51 | int error; | |
52 | ||
1c7c474c CH |
53 | if (strcmp(name, "") != 0) |
54 | return -EINVAL; | |
55 | ||
56 | acl = get_cached_acl(dentry->d_inode, type); | |
f0c8bd16 AG |
57 | if (!acl) |
58 | return -ENODATA; | |
59 | error = posix_acl_to_xattr(acl, buffer, size); | |
60 | posix_acl_release(acl); | |
61 | ||
62 | return error; | |
63 | } | |
64 | ||
1c7c474c CH |
65 | static int |
66 | generic_acl_set(struct dentry *dentry, const char *name, const void *value, | |
67 | size_t size, int flags, int type) | |
f0c8bd16 | 68 | { |
1c7c474c | 69 | struct inode *inode = dentry->d_inode; |
f0c8bd16 AG |
70 | struct posix_acl *acl = NULL; |
71 | int error; | |
72 | ||
1c7c474c CH |
73 | if (strcmp(name, "") != 0) |
74 | return -EINVAL; | |
f0c8bd16 AG |
75 | if (S_ISLNK(inode->i_mode)) |
76 | return -EOPNOTSUPP; | |
2e149670 | 77 | if (!inode_owner_or_capable(inode)) |
f0c8bd16 AG |
78 | return -EPERM; |
79 | if (value) { | |
80 | acl = posix_acl_from_xattr(value, size); | |
81 | if (IS_ERR(acl)) | |
82 | return PTR_ERR(acl); | |
83 | } | |
84 | if (acl) { | |
f0c8bd16 AG |
85 | error = posix_acl_valid(acl); |
86 | if (error) | |
87 | goto failed; | |
1c7c474c CH |
88 | switch (type) { |
89 | case ACL_TYPE_ACCESS: | |
d6952123 | 90 | error = posix_acl_equiv_mode(acl, &inode->i_mode); |
1c7c474c CH |
91 | if (error < 0) |
92 | goto failed; | |
dad5eb6d | 93 | inode->i_ctime = CURRENT_TIME; |
1c7c474c CH |
94 | if (error == 0) { |
95 | posix_acl_release(acl); | |
96 | acl = NULL; | |
97 | } | |
98 | break; | |
99 | case ACL_TYPE_DEFAULT: | |
100 | if (!S_ISDIR(inode->i_mode)) { | |
101 | error = -EINVAL; | |
102 | goto failed; | |
103 | } | |
104 | break; | |
f0c8bd16 AG |
105 | } |
106 | } | |
1c7c474c | 107 | set_cached_acl(inode, type, acl); |
f0c8bd16 AG |
108 | error = 0; |
109 | failed: | |
110 | posix_acl_release(acl); | |
111 | return error; | |
112 | } | |
113 | ||
114 | /** | |
115 | * generic_acl_init - Take care of acl inheritance at @inode create time | |
f0c8bd16 AG |
116 | * |
117 | * Files created inside a directory with a default ACL inherit the | |
118 | * directory's default ACL. | |
119 | */ | |
120 | int | |
1c7c474c | 121 | generic_acl_init(struct inode *inode, struct inode *dir) |
f0c8bd16 AG |
122 | { |
123 | struct posix_acl *acl = NULL; | |
f0c8bd16 AG |
124 | int error; |
125 | ||
f0c8bd16 | 126 | if (!S_ISLNK(inode->i_mode)) |
1c7c474c | 127 | acl = get_cached_acl(dir, ACL_TYPE_DEFAULT); |
f0c8bd16 | 128 | if (acl) { |
95203bef AV |
129 | if (S_ISDIR(inode->i_mode)) |
130 | set_cached_acl(inode, ACL_TYPE_DEFAULT, acl); | |
d3fb6120 | 131 | error = posix_acl_create(&acl, GFP_KERNEL, &inode->i_mode); |
826cae2f AV |
132 | if (error < 0) |
133 | return error; | |
826cae2f AV |
134 | if (error > 0) |
135 | set_cached_acl(inode, ACL_TYPE_ACCESS, acl); | |
d3fb6120 AV |
136 | } else { |
137 | inode->i_mode &= ~current_umask(); | |
f0c8bd16 AG |
138 | } |
139 | error = 0; | |
140 | ||
f0c8bd16 AG |
141 | posix_acl_release(acl); |
142 | return error; | |
143 | } | |
144 | ||
145 | /** | |
146 | * generic_acl_chmod - change the access acl of @inode upon chmod() | |
f0c8bd16 AG |
147 | * |
148 | * A chmod also changes the permissions of the owner, group/mask, and | |
149 | * other ACL entries. | |
150 | */ | |
151 | int | |
1c7c474c | 152 | generic_acl_chmod(struct inode *inode) |
f0c8bd16 | 153 | { |
bc26ab5f | 154 | struct posix_acl *acl; |
f0c8bd16 AG |
155 | int error = 0; |
156 | ||
157 | if (S_ISLNK(inode->i_mode)) | |
158 | return -EOPNOTSUPP; | |
1c7c474c | 159 | acl = get_cached_acl(inode, ACL_TYPE_ACCESS); |
f0c8bd16 | 160 | if (acl) { |
bc26ab5f AV |
161 | error = posix_acl_chmod(&acl, GFP_KERNEL, inode->i_mode); |
162 | if (error) | |
163 | return error; | |
164 | set_cached_acl(inode, ACL_TYPE_ACCESS, acl); | |
f0c8bd16 | 165 | posix_acl_release(acl); |
f0c8bd16 AG |
166 | } |
167 | return error; | |
168 | } | |
1c7c474c | 169 | |
bb435453 | 170 | const struct xattr_handler generic_acl_access_handler = { |
1c7c474c CH |
171 | .prefix = POSIX_ACL_XATTR_ACCESS, |
172 | .flags = ACL_TYPE_ACCESS, | |
173 | .list = generic_acl_list, | |
174 | .get = generic_acl_get, | |
175 | .set = generic_acl_set, | |
176 | }; | |
177 | ||
bb435453 | 178 | const struct xattr_handler generic_acl_default_handler = { |
1c7c474c CH |
179 | .prefix = POSIX_ACL_XATTR_DEFAULT, |
180 | .flags = ACL_TYPE_DEFAULT, | |
181 | .list = generic_acl_list, | |
182 | .get = generic_acl_get, | |
183 | .set = generic_acl_set, | |
184 | }; |