1 // SPDX-License-Identifier: GPL-2.0-or-later
4 * Copyright (C) 2018 Samsung Electronics Co., Ltd.
7 #include <linux/kernel.h>
9 #include <linux/filelock.h>
10 #include <linux/uaccess.h>
11 #include <linux/backing-dev.h>
12 #include <linux/writeback.h>
13 #include <linux/xattr.h>
14 #include <linux/falloc.h>
15 #include <linux/fsnotify.h>
16 #include <linux/dcache.h>
17 #include <linux/slab.h>
18 #include <linux/vmalloc.h>
19 #include <linux/sched/xacct.h>
20 #include <linux/crc32c.h>
22 #include "../internal.h" /* for vfs_path_lookup */
26 #include "connection.h"
28 #include "vfs_cache.h"
34 #include "smb_common.h"
35 #include "mgmt/share_config.h"
36 #include "mgmt/tree_connect.h"
37 #include "mgmt/user_session.h"
38 #include "mgmt/user_config.h"
40 static char *extract_last_component(char *path)
42 char *p = strrchr(path, '/');
44 if (p && p[1] != '\0') {
53 static void ksmbd_vfs_inherit_owner(struct ksmbd_work *work,
54 struct inode *parent_inode,
57 if (!test_share_config_flag(work->tcon->share_conf,
58 KSMBD_SHARE_FLAG_INHERIT_OWNER))
61 i_uid_write(inode, i_uid_read(parent_inode));
65 * ksmbd_vfs_lock_parent() - lock parent dentry if it is stable
67 * the parent dentry got by dget_parent or @parent could be
68 * unstable, we try to lock a parent inode and lookup the
71 * the reference count of @parent isn't incremented.
73 int ksmbd_vfs_lock_parent(struct mnt_idmap *idmap, struct dentry *parent,
76 struct dentry *dentry;
79 inode_lock_nested(d_inode(parent), I_MUTEX_PARENT);
80 dentry = lookup_one(idmap, child->d_name.name, parent,
83 ret = PTR_ERR(dentry);
87 if (dentry != child) {
96 inode_unlock(d_inode(parent));
100 int ksmbd_vfs_may_delete(struct mnt_idmap *idmap,
101 struct dentry *dentry)
103 struct dentry *parent;
106 parent = dget_parent(dentry);
107 ret = ksmbd_vfs_lock_parent(idmap, parent, dentry);
113 ret = inode_permission(idmap, d_inode(parent),
114 MAY_EXEC | MAY_WRITE);
116 inode_unlock(d_inode(parent));
121 int ksmbd_vfs_query_maximal_access(struct mnt_idmap *idmap,
122 struct dentry *dentry, __le32 *daccess)
124 struct dentry *parent;
127 *daccess = cpu_to_le32(FILE_READ_ATTRIBUTES | READ_CONTROL);
129 if (!inode_permission(idmap, d_inode(dentry), MAY_OPEN | MAY_WRITE))
130 *daccess |= cpu_to_le32(WRITE_DAC | WRITE_OWNER | SYNCHRONIZE |
131 FILE_WRITE_DATA | FILE_APPEND_DATA |
132 FILE_WRITE_EA | FILE_WRITE_ATTRIBUTES |
135 if (!inode_permission(idmap, d_inode(dentry), MAY_OPEN | MAY_READ))
136 *daccess |= FILE_READ_DATA_LE | FILE_READ_EA_LE;
138 if (!inode_permission(idmap, d_inode(dentry), MAY_OPEN | MAY_EXEC))
139 *daccess |= FILE_EXECUTE_LE;
141 parent = dget_parent(dentry);
142 ret = ksmbd_vfs_lock_parent(idmap, parent, dentry);
148 if (!inode_permission(idmap, d_inode(parent), MAY_EXEC | MAY_WRITE))
149 *daccess |= FILE_DELETE_LE;
151 inode_unlock(d_inode(parent));
157 * ksmbd_vfs_create() - vfs helper for smb create file
159 * @name: file name that is relative to share
160 * @mode: file create mode
162 * Return: 0 on success, otherwise error
164 int ksmbd_vfs_create(struct ksmbd_work *work, const char *name, umode_t mode)
167 struct dentry *dentry;
170 dentry = ksmbd_vfs_kern_path_create(work, name,
171 LOOKUP_NO_SYMLINKS, &path);
172 if (IS_ERR(dentry)) {
173 err = PTR_ERR(dentry);
175 pr_err("path create failed for %s, err %d\n",
181 err = vfs_create(mnt_idmap(path.mnt), d_inode(path.dentry),
184 ksmbd_vfs_inherit_owner(work, d_inode(path.dentry),
187 pr_err("File(%s): creation failed (err:%d)\n", name, err);
189 done_path_create(&path, dentry);
194 * ksmbd_vfs_mkdir() - vfs helper for smb create directory
196 * @name: directory name that is relative to share
197 * @mode: directory create mode
199 * Return: 0 on success, otherwise error
201 int ksmbd_vfs_mkdir(struct ksmbd_work *work, const char *name, umode_t mode)
203 struct mnt_idmap *idmap;
205 struct dentry *dentry;
208 dentry = ksmbd_vfs_kern_path_create(work, name,
209 LOOKUP_NO_SYMLINKS | LOOKUP_DIRECTORY,
211 if (IS_ERR(dentry)) {
212 err = PTR_ERR(dentry);
214 ksmbd_debug(VFS, "path create failed for %s, err %d\n",
219 idmap = mnt_idmap(path.mnt);
221 err = vfs_mkdir(idmap, d_inode(path.dentry), dentry, mode);
224 } else if (d_unhashed(dentry)) {
227 d = lookup_one(idmap, dentry->d_name.name, dentry->d_parent,
233 if (unlikely(d_is_negative(d))) {
239 ksmbd_vfs_inherit_owner(work, d_inode(path.dentry), d_inode(d));
243 done_path_create(&path, dentry);
245 pr_err("mkdir(%s): creation failed (err:%d)\n", name, err);
249 static ssize_t ksmbd_vfs_getcasexattr(struct mnt_idmap *idmap,
250 struct dentry *dentry, char *attr_name,
251 int attr_name_len, char **attr_value)
253 char *name, *xattr_list = NULL;
254 ssize_t value_len = -ENOENT, xattr_list_len;
256 xattr_list_len = ksmbd_vfs_listxattr(dentry, &xattr_list);
257 if (xattr_list_len <= 0)
260 for (name = xattr_list; name - xattr_list < xattr_list_len;
261 name += strlen(name) + 1) {
262 ksmbd_debug(VFS, "%s, len %zd\n", name, strlen(name));
263 if (strncasecmp(attr_name, name, attr_name_len))
266 value_len = ksmbd_vfs_getxattr(idmap,
271 pr_err("failed to get xattr in file\n");
280 static int ksmbd_vfs_stream_read(struct ksmbd_file *fp, char *buf, loff_t *pos,
284 char *stream_buf = NULL;
286 ksmbd_debug(VFS, "read stream data pos : %llu, count : %zd\n",
289 v_len = ksmbd_vfs_getcasexattr(file_mnt_idmap(fp->filp),
290 fp->filp->f_path.dentry,
302 if (v_len - *pos < count)
303 count = v_len - *pos;
305 memcpy(buf, &stream_buf[*pos], count);
313 * check_lock_range() - vfs helper for smb byte range file locking
314 * @filp: the file to apply the lock to
315 * @start: lock start byte offset
316 * @end: lock end byte offset
317 * @type: byte range type read/write
319 * Return: 0 on success, otherwise error
321 static int check_lock_range(struct file *filp, loff_t start, loff_t end,
324 struct file_lock *flock;
325 struct file_lock_context *ctx = locks_inode_context(file_inode(filp));
328 if (!ctx || list_empty_careful(&ctx->flc_posix))
331 spin_lock(&ctx->flc_lock);
332 list_for_each_entry(flock, &ctx->flc_posix, fl_list) {
333 /* check conflict locks */
334 if (flock->fl_end >= start && end >= flock->fl_start) {
335 if (flock->fl_type == F_RDLCK) {
337 pr_err("not allow write by shared lock\n");
341 } else if (flock->fl_type == F_WRLCK) {
342 /* check owner in lock */
343 if (flock->fl_file != filp) {
345 pr_err("not allow rw access by exclusive lock from other opens\n");
352 spin_unlock(&ctx->flc_lock);
357 * ksmbd_vfs_read() - vfs helper for smb file read
359 * @fid: file id of open file
360 * @count: read byte count
363 * Return: number of read bytes on success, otherwise error
365 int ksmbd_vfs_read(struct ksmbd_work *work, struct ksmbd_file *fp, size_t count,
368 struct file *filp = fp->filp;
370 char *rbuf = work->aux_payload_buf;
371 struct inode *inode = file_inode(filp);
373 if (S_ISDIR(inode->i_mode))
376 if (unlikely(count == 0))
379 if (work->conn->connection_type) {
380 if (!(fp->daccess & (FILE_READ_DATA_LE | FILE_EXECUTE_LE))) {
381 pr_err("no right to read(%pD)\n", fp->filp);
386 if (ksmbd_stream_fd(fp))
387 return ksmbd_vfs_stream_read(fp, rbuf, pos, count);
389 if (!work->tcon->posix_extensions) {
392 ret = check_lock_range(filp, *pos, *pos + count - 1, READ);
394 pr_err("unable to read due to lock\n");
399 nbytes = kernel_read(filp, rbuf, count, pos);
401 pr_err("smb read failed, err = %zd\n", nbytes);
409 static int ksmbd_vfs_stream_write(struct ksmbd_file *fp, char *buf, loff_t *pos,
412 char *stream_buf = NULL, *wbuf;
413 struct mnt_idmap *idmap = file_mnt_idmap(fp->filp);
417 ksmbd_debug(VFS, "write stream data pos : %llu, count : %zd\n",
421 if (size > XATTR_SIZE_MAX) {
422 size = XATTR_SIZE_MAX;
423 count = (*pos + count) - XATTR_SIZE_MAX;
426 v_len = ksmbd_vfs_getcasexattr(idmap,
427 fp->filp->f_path.dentry,
431 if ((int)v_len < 0) {
432 pr_err("not found stream in xattr : %zd\n", v_len);
438 wbuf = kvmalloc(size, GFP_KERNEL | __GFP_ZERO);
445 memcpy(wbuf, stream_buf, v_len);
450 memcpy(&stream_buf[*pos], buf, count);
452 err = ksmbd_vfs_setxattr(idmap,
453 fp->filp->f_path.dentry,
461 fp->filp->f_pos = *pos;
469 * ksmbd_vfs_write() - vfs helper for smb file write
471 * @fid: file id of open file
472 * @buf: buf containing data for writing
473 * @count: read byte count
475 * @sync: fsync after write
476 * @written: number of bytes written
478 * Return: 0 on success, otherwise error
480 int ksmbd_vfs_write(struct ksmbd_work *work, struct ksmbd_file *fp,
481 char *buf, size_t count, loff_t *pos, bool sync,
485 loff_t offset = *pos;
488 if (work->conn->connection_type) {
489 if (!(fp->daccess & FILE_WRITE_DATA_LE)) {
490 pr_err("no right to write(%pD)\n", fp->filp);
498 if (ksmbd_stream_fd(fp)) {
499 err = ksmbd_vfs_stream_write(fp, buf, pos, count);
505 if (!work->tcon->posix_extensions) {
506 err = check_lock_range(filp, *pos, *pos + count - 1, WRITE);
508 pr_err("unable to write due to lock\n");
514 /* Do we need to break any of a levelII oplock? */
515 smb_break_all_levII_oplock(work, fp, 1);
517 err = kernel_write(filp, buf, count, pos);
519 ksmbd_debug(VFS, "smb write failed, err = %d\n", err);
527 err = vfs_fsync_range(filp, offset, offset + *written, 0);
529 pr_err("fsync failed for filename = %pD, err = %d\n",
538 * ksmbd_vfs_getattr() - vfs helper for smb getattr
540 * @fid: file id of open file
541 * @attrs: inode attributes
543 * Return: 0 on success, otherwise error
545 int ksmbd_vfs_getattr(const struct path *path, struct kstat *stat)
549 err = vfs_getattr(path, stat, STATX_BTIME, AT_STATX_SYNC_AS_STAT);
551 pr_err("getattr failed, err %d\n", err);
556 * ksmbd_vfs_fsync() - vfs helper for smb fsync
558 * @fid: file id of open file
560 * Return: 0 on success, otherwise error
562 int ksmbd_vfs_fsync(struct ksmbd_work *work, u64 fid, u64 p_id)
564 struct ksmbd_file *fp;
567 fp = ksmbd_lookup_fd_slow(work, fid, p_id);
569 pr_err("failed to get filp for fid %llu\n", fid);
572 err = vfs_fsync(fp->filp, 0);
574 pr_err("smb fsync failed, err = %d\n", err);
575 ksmbd_fd_put(work, fp);
580 * ksmbd_vfs_remove_file() - vfs helper for smb rmdir or unlink
581 * @name: directory or file name that is relative to share
583 * Return: 0 on success, otherwise error
585 int ksmbd_vfs_remove_file(struct ksmbd_work *work, char *name)
587 struct mnt_idmap *idmap;
589 struct dentry *parent;
592 if (ksmbd_override_fsids(work))
595 err = ksmbd_vfs_kern_path(work, name, LOOKUP_NO_SYMLINKS, &path, false);
597 ksmbd_debug(VFS, "can't get %s, err %d\n", name, err);
598 ksmbd_revert_fsids(work);
602 idmap = mnt_idmap(path.mnt);
603 parent = dget_parent(path.dentry);
604 err = ksmbd_vfs_lock_parent(idmap, parent, path.dentry);
608 ksmbd_revert_fsids(work);
612 if (!d_inode(path.dentry)->i_nlink) {
617 if (S_ISDIR(d_inode(path.dentry)->i_mode)) {
618 err = vfs_rmdir(idmap, d_inode(parent), path.dentry);
619 if (err && err != -ENOTEMPTY)
620 ksmbd_debug(VFS, "%s: rmdir failed, err %d\n", name,
623 err = vfs_unlink(idmap, d_inode(parent), path.dentry, NULL);
625 ksmbd_debug(VFS, "%s: unlink failed, err %d\n", name,
630 inode_unlock(d_inode(parent));
633 ksmbd_revert_fsids(work);
638 * ksmbd_vfs_link() - vfs helper for creating smb hardlink
639 * @oldname: source file name
640 * @newname: hardlink name that is relative to share
642 * Return: 0 on success, otherwise error
644 int ksmbd_vfs_link(struct ksmbd_work *work, const char *oldname,
647 struct path oldpath, newpath;
648 struct dentry *dentry;
651 if (ksmbd_override_fsids(work))
654 err = kern_path(oldname, LOOKUP_NO_SYMLINKS, &oldpath);
656 pr_err("cannot get linux path for %s, err = %d\n",
661 dentry = ksmbd_vfs_kern_path_create(work, newname,
662 LOOKUP_NO_SYMLINKS | LOOKUP_REVAL,
664 if (IS_ERR(dentry)) {
665 err = PTR_ERR(dentry);
666 pr_err("path create err for %s, err %d\n", newname, err);
671 if (oldpath.mnt != newpath.mnt) {
672 pr_err("vfs_link failed err %d\n", err);
676 err = vfs_link(oldpath.dentry, mnt_idmap(newpath.mnt),
677 d_inode(newpath.dentry),
680 ksmbd_debug(VFS, "vfs_link failed err %d\n", err);
683 done_path_create(&newpath, dentry);
687 ksmbd_revert_fsids(work);
691 static int ksmbd_validate_entry_in_use(struct dentry *src_dent)
693 struct dentry *dst_dent;
695 spin_lock(&src_dent->d_lock);
696 list_for_each_entry(dst_dent, &src_dent->d_subdirs, d_child) {
697 struct ksmbd_file *child_fp;
699 if (d_really_is_negative(dst_dent))
702 child_fp = ksmbd_lookup_fd_inode(d_inode(dst_dent));
704 spin_unlock(&src_dent->d_lock);
705 ksmbd_debug(VFS, "Forbid rename, sub file/dir is in use\n");
709 spin_unlock(&src_dent->d_lock);
714 static int __ksmbd_vfs_rename(struct ksmbd_work *work,
715 struct mnt_idmap *src_idmap,
716 struct dentry *src_dent_parent,
717 struct dentry *src_dent,
718 struct mnt_idmap *dst_idmap,
719 struct dentry *dst_dent_parent,
720 struct dentry *trap_dent,
723 struct dentry *dst_dent;
726 if (!work->tcon->posix_extensions) {
727 err = ksmbd_validate_entry_in_use(src_dent);
732 if (d_really_is_negative(src_dent_parent))
734 if (d_really_is_negative(dst_dent_parent))
736 if (d_really_is_negative(src_dent))
738 if (src_dent == trap_dent)
741 if (ksmbd_override_fsids(work))
744 dst_dent = lookup_one(dst_idmap, dst_name,
745 dst_dent_parent, strlen(dst_name));
746 err = PTR_ERR(dst_dent);
747 if (IS_ERR(dst_dent)) {
748 pr_err("lookup failed %s [%d]\n", dst_name, err);
753 if (dst_dent != trap_dent && !d_really_is_positive(dst_dent)) {
754 struct renamedata rd = {
755 .old_mnt_idmap = src_idmap,
756 .old_dir = d_inode(src_dent_parent),
757 .old_dentry = src_dent,
758 .new_mnt_idmap = dst_idmap,
759 .new_dir = d_inode(dst_dent_parent),
760 .new_dentry = dst_dent,
762 err = vfs_rename(&rd);
765 pr_err("vfs_rename failed err %d\n", err);
769 ksmbd_revert_fsids(work);
773 int ksmbd_vfs_fp_rename(struct ksmbd_work *work, struct ksmbd_file *fp,
776 struct mnt_idmap *idmap;
777 struct path dst_path;
778 struct dentry *src_dent_parent, *dst_dent_parent;
779 struct dentry *src_dent, *trap_dent, *src_child;
783 dst_name = extract_last_component(newname);
789 src_dent_parent = dget_parent(fp->filp->f_path.dentry);
790 src_dent = fp->filp->f_path.dentry;
792 err = ksmbd_vfs_kern_path(work, newname,
793 LOOKUP_NO_SYMLINKS | LOOKUP_DIRECTORY,
796 ksmbd_debug(VFS, "Cannot get path for %s [%d]\n", newname, err);
799 dst_dent_parent = dst_path.dentry;
801 trap_dent = lock_rename(src_dent_parent, dst_dent_parent);
803 dget(dst_dent_parent);
804 idmap = file_mnt_idmap(fp->filp);
805 src_child = lookup_one(idmap, src_dent->d_name.name, src_dent_parent,
806 src_dent->d_name.len);
807 if (IS_ERR(src_child)) {
808 err = PTR_ERR(src_child);
812 if (src_child != src_dent) {
819 err = __ksmbd_vfs_rename(work,
823 mnt_idmap(dst_path.mnt),
829 dput(dst_dent_parent);
830 unlock_rename(src_dent_parent, dst_dent_parent);
833 dput(src_dent_parent);
838 * ksmbd_vfs_truncate() - vfs helper for smb file truncate
840 * @fid: file id of old file
841 * @size: truncate to given size
843 * Return: 0 on success, otherwise error
845 int ksmbd_vfs_truncate(struct ksmbd_work *work,
846 struct ksmbd_file *fp, loff_t size)
853 /* Do we need to break any of a levelII oplock? */
854 smb_break_all_levII_oplock(work, fp, 1);
856 if (!work->tcon->posix_extensions) {
857 struct inode *inode = file_inode(filp);
859 if (size < inode->i_size) {
860 err = check_lock_range(filp, size,
861 inode->i_size - 1, WRITE);
863 err = check_lock_range(filp, inode->i_size,
868 pr_err("failed due to lock\n");
873 err = vfs_truncate(&filp->f_path, size);
875 pr_err("truncate failed, err %d\n", err);
880 * ksmbd_vfs_listxattr() - vfs helper for smb list extended attributes
881 * @dentry: dentry of file for listing xattrs
882 * @list: destination buffer
883 * @size: destination buffer length
885 * Return: xattr list length on success, otherwise error
887 ssize_t ksmbd_vfs_listxattr(struct dentry *dentry, char **list)
892 size = vfs_listxattr(dentry, NULL, 0);
896 vlist = kvmalloc(size, GFP_KERNEL | __GFP_ZERO);
901 size = vfs_listxattr(dentry, vlist, size);
903 ksmbd_debug(VFS, "listxattr failed\n");
911 static ssize_t ksmbd_vfs_xattr_len(struct mnt_idmap *idmap,
912 struct dentry *dentry, char *xattr_name)
914 return vfs_getxattr(idmap, dentry, xattr_name, NULL, 0);
918 * ksmbd_vfs_getxattr() - vfs helper for smb get extended attributes value
920 * @dentry: dentry of file for getting xattrs
921 * @xattr_name: name of xattr name to query
922 * @xattr_buf: destination buffer xattr value
924 * Return: read xattr value length on success, otherwise error
926 ssize_t ksmbd_vfs_getxattr(struct mnt_idmap *idmap,
927 struct dentry *dentry,
928 char *xattr_name, char **xattr_buf)
934 xattr_len = ksmbd_vfs_xattr_len(idmap, dentry, xattr_name);
938 buf = kmalloc(xattr_len + 1, GFP_KERNEL);
942 xattr_len = vfs_getxattr(idmap, dentry, xattr_name,
943 (void *)buf, xattr_len);
952 * ksmbd_vfs_setxattr() - vfs helper for smb set extended attributes value
953 * @idmap: idmap of the relevant mount
954 * @dentry: dentry to set XATTR at
955 * @attr_name: xattr name for setxattr
956 * @attr_value: xattr value to set
957 * @attr_size: size of xattr value
958 * @flags: destination buffer length
960 * Return: 0 on success, otherwise error
962 int ksmbd_vfs_setxattr(struct mnt_idmap *idmap,
963 struct dentry *dentry, const char *attr_name,
964 void *attr_value, size_t attr_size, int flags)
968 err = vfs_setxattr(idmap,
975 ksmbd_debug(VFS, "setxattr failed, err %d\n", err);
980 * ksmbd_vfs_set_fadvise() - convert smb IO caching options to linux options
981 * @filp: file pointer for IO
982 * @options: smb IO options
984 void ksmbd_vfs_set_fadvise(struct file *filp, __le32 option)
986 struct address_space *mapping;
988 mapping = filp->f_mapping;
990 if (!option || !mapping)
993 if (option & FILE_WRITE_THROUGH_LE) {
994 filp->f_flags |= O_SYNC;
995 } else if (option & FILE_SEQUENTIAL_ONLY_LE) {
996 filp->f_ra.ra_pages = inode_to_bdi(mapping->host)->ra_pages * 2;
997 spin_lock(&filp->f_lock);
998 filp->f_mode &= ~FMODE_RANDOM;
999 spin_unlock(&filp->f_lock);
1000 } else if (option & FILE_RANDOM_ACCESS_LE) {
1001 spin_lock(&filp->f_lock);
1002 filp->f_mode |= FMODE_RANDOM;
1003 spin_unlock(&filp->f_lock);
1007 int ksmbd_vfs_zero_data(struct ksmbd_work *work, struct ksmbd_file *fp,
1008 loff_t off, loff_t len)
1010 smb_break_all_levII_oplock(work, fp, 1);
1011 if (fp->f_ci->m_fattr & FILE_ATTRIBUTE_SPARSE_FILE_LE)
1012 return vfs_fallocate(fp->filp,
1013 FALLOC_FL_PUNCH_HOLE | FALLOC_FL_KEEP_SIZE,
1016 return vfs_fallocate(fp->filp,
1017 FALLOC_FL_ZERO_RANGE | FALLOC_FL_KEEP_SIZE,
1021 int ksmbd_vfs_fqar_lseek(struct ksmbd_file *fp, loff_t start, loff_t length,
1022 struct file_allocated_range_buffer *ranges,
1023 unsigned int in_count, unsigned int *out_count)
1025 struct file *f = fp->filp;
1026 struct inode *inode = file_inode(fp->filp);
1027 loff_t maxbytes = (u64)inode->i_sb->s_maxbytes, end;
1028 loff_t extent_start, extent_end;
1031 if (start > maxbytes)
1038 * Shrink request scope to what the fs can actually handle.
1040 if (length > maxbytes || (maxbytes - length) < start)
1041 length = maxbytes - start;
1043 if (start + length > inode->i_size)
1044 length = inode->i_size - start;
1047 end = start + length;
1048 while (start < end && *out_count < in_count) {
1049 extent_start = vfs_llseek(f, start, SEEK_DATA);
1050 if (extent_start < 0) {
1051 if (extent_start != -ENXIO)
1052 ret = (int)extent_start;
1056 if (extent_start >= end)
1059 extent_end = vfs_llseek(f, extent_start, SEEK_HOLE);
1060 if (extent_end < 0) {
1061 if (extent_end != -ENXIO)
1062 ret = (int)extent_end;
1064 } else if (extent_start >= extent_end) {
1068 ranges[*out_count].file_offset = cpu_to_le64(extent_start);
1069 ranges[(*out_count)++].length =
1070 cpu_to_le64(min(extent_end, end) - extent_start);
1078 int ksmbd_vfs_remove_xattr(struct mnt_idmap *idmap,
1079 struct dentry *dentry, char *attr_name)
1081 return vfs_removexattr(idmap, dentry, attr_name);
1084 int ksmbd_vfs_unlink(struct mnt_idmap *idmap,
1085 struct dentry *dir, struct dentry *dentry)
1089 err = ksmbd_vfs_lock_parent(idmap, dir, dentry);
1094 if (S_ISDIR(d_inode(dentry)->i_mode))
1095 err = vfs_rmdir(idmap, d_inode(dir), dentry);
1097 err = vfs_unlink(idmap, d_inode(dir), dentry, NULL);
1100 inode_unlock(d_inode(dir));
1102 ksmbd_debug(VFS, "failed to delete, err %d\n", err);
1107 static bool __dir_empty(struct dir_context *ctx, const char *name, int namlen,
1108 loff_t offset, u64 ino, unsigned int d_type)
1110 struct ksmbd_readdir_data *buf;
1112 buf = container_of(ctx, struct ksmbd_readdir_data, ctx);
1113 buf->dirent_count++;
1115 return buf->dirent_count <= 2;
1119 * ksmbd_vfs_empty_dir() - check for empty directory
1120 * @fp: ksmbd file pointer
1122 * Return: true if directory empty, otherwise false
1124 int ksmbd_vfs_empty_dir(struct ksmbd_file *fp)
1127 struct ksmbd_readdir_data readdir_data;
1129 memset(&readdir_data, 0, sizeof(struct ksmbd_readdir_data));
1131 set_ctx_actor(&readdir_data.ctx, __dir_empty);
1132 readdir_data.dirent_count = 0;
1134 err = iterate_dir(fp->filp, &readdir_data.ctx);
1135 if (readdir_data.dirent_count > 2)
1142 static bool __caseless_lookup(struct dir_context *ctx, const char *name,
1143 int namlen, loff_t offset, u64 ino,
1144 unsigned int d_type)
1146 struct ksmbd_readdir_data *buf;
1149 buf = container_of(ctx, struct ksmbd_readdir_data, ctx);
1151 if (buf->used != namlen)
1153 if (IS_ENABLED(CONFIG_UNICODE) && buf->um) {
1154 const struct qstr q_buf = {.name = buf->private,
1156 const struct qstr q_name = {.name = name,
1159 cmp = utf8_strncasecmp(buf->um, &q_buf, &q_name);
1162 cmp = strncasecmp((char *)buf->private, name, namlen);
1164 memcpy((char *)buf->private, name, namlen);
1165 buf->dirent_count = 1;
1172 * ksmbd_vfs_lookup_in_dir() - lookup a file in a directory
1174 * @name: filename to lookup
1175 * @namelen: filename length
1177 * Return: 0 on success, otherwise error
1179 static int ksmbd_vfs_lookup_in_dir(const struct path *dir, char *name,
1180 size_t namelen, struct unicode_map *um)
1184 int flags = O_RDONLY | O_LARGEFILE;
1185 struct ksmbd_readdir_data readdir_data = {
1186 .ctx.actor = __caseless_lookup,
1193 dfilp = dentry_open(dir, flags, current_cred());
1195 return PTR_ERR(dfilp);
1197 ret = iterate_dir(dfilp, &readdir_data.ctx);
1198 if (readdir_data.dirent_count > 0)
1205 * ksmbd_vfs_kern_path() - lookup a file and get path info
1206 * @name: file path that is relative to share
1207 * @flags: lookup flags
1208 * @path: if lookup succeed, return path info
1209 * @caseless: caseless filename lookup
1211 * Return: 0 on success, otherwise error
1213 int ksmbd_vfs_kern_path(struct ksmbd_work *work, char *name,
1214 unsigned int flags, struct path *path, bool caseless)
1216 struct ksmbd_share_config *share_conf = work->tcon->share_conf;
1219 flags |= LOOKUP_BENEATH;
1220 err = vfs_path_lookup(share_conf->vfs_path.dentry,
1221 share_conf->vfs_path.mnt,
1231 size_t path_len, remain_len;
1233 filepath = kstrdup(name, GFP_KERNEL);
1237 path_len = strlen(filepath);
1238 remain_len = path_len;
1240 parent = share_conf->vfs_path;
1243 while (d_can_lookup(parent.dentry)) {
1244 char *filename = filepath + path_len - remain_len;
1245 char *next = strchrnul(filename, '/');
1246 size_t filename_len = next - filename;
1247 bool is_last = !next[0];
1249 if (filename_len == 0)
1252 err = ksmbd_vfs_lookup_in_dir(&parent, filename,
1261 err = vfs_path_lookup(share_conf->vfs_path.dentry,
1262 share_conf->vfs_path.mnt,
1274 remain_len -= filename_len + 1;
1285 struct dentry *ksmbd_vfs_kern_path_create(struct ksmbd_work *work,
1291 struct dentry *dent;
1293 abs_name = convert_to_unix_name(work->tcon->share_conf, name);
1295 return ERR_PTR(-ENOMEM);
1297 dent = kern_path_create(AT_FDCWD, abs_name, path, flags);
1302 int ksmbd_vfs_remove_acl_xattrs(struct mnt_idmap *idmap,
1303 struct dentry *dentry)
1305 char *name, *xattr_list = NULL;
1306 ssize_t xattr_list_len;
1309 xattr_list_len = ksmbd_vfs_listxattr(dentry, &xattr_list);
1310 if (xattr_list_len < 0) {
1312 } else if (!xattr_list_len) {
1313 ksmbd_debug(SMB, "empty xattr in the file\n");
1317 for (name = xattr_list; name - xattr_list < xattr_list_len;
1318 name += strlen(name) + 1) {
1319 ksmbd_debug(SMB, "%s, len %zd\n", name, strlen(name));
1321 if (!strncmp(name, XATTR_NAME_POSIX_ACL_ACCESS,
1322 sizeof(XATTR_NAME_POSIX_ACL_ACCESS) - 1) ||
1323 !strncmp(name, XATTR_NAME_POSIX_ACL_DEFAULT,
1324 sizeof(XATTR_NAME_POSIX_ACL_DEFAULT) - 1)) {
1325 err = vfs_remove_acl(idmap, dentry, name);
1328 "remove acl xattr failed : %s\n", name);
1336 int ksmbd_vfs_remove_sd_xattrs(struct mnt_idmap *idmap,
1337 struct dentry *dentry)
1339 char *name, *xattr_list = NULL;
1340 ssize_t xattr_list_len;
1343 xattr_list_len = ksmbd_vfs_listxattr(dentry, &xattr_list);
1344 if (xattr_list_len < 0) {
1346 } else if (!xattr_list_len) {
1347 ksmbd_debug(SMB, "empty xattr in the file\n");
1351 for (name = xattr_list; name - xattr_list < xattr_list_len;
1352 name += strlen(name) + 1) {
1353 ksmbd_debug(SMB, "%s, len %zd\n", name, strlen(name));
1355 if (!strncmp(name, XATTR_NAME_SD, XATTR_NAME_SD_LEN)) {
1356 err = ksmbd_vfs_remove_xattr(idmap, dentry, name);
1358 ksmbd_debug(SMB, "remove xattr failed : %s\n", name);
1366 static struct xattr_smb_acl *ksmbd_vfs_make_xattr_posix_acl(struct mnt_idmap *idmap,
1367 struct inode *inode,
1370 struct xattr_smb_acl *smb_acl = NULL;
1371 struct posix_acl *posix_acls;
1372 struct posix_acl_entry *pa_entry;
1373 struct xattr_acl_entry *xa_entry;
1376 if (!IS_ENABLED(CONFIG_FS_POSIX_ACL))
1379 posix_acls = get_inode_acl(inode, acl_type);
1383 smb_acl = kzalloc(sizeof(struct xattr_smb_acl) +
1384 sizeof(struct xattr_acl_entry) * posix_acls->a_count,
1389 smb_acl->count = posix_acls->a_count;
1390 pa_entry = posix_acls->a_entries;
1391 xa_entry = smb_acl->entries;
1392 for (i = 0; i < posix_acls->a_count; i++, pa_entry++, xa_entry++) {
1393 switch (pa_entry->e_tag) {
1395 xa_entry->type = SMB_ACL_USER;
1396 xa_entry->uid = posix_acl_uid_translate(idmap, pa_entry);
1399 xa_entry->type = SMB_ACL_USER_OBJ;
1402 xa_entry->type = SMB_ACL_GROUP;
1403 xa_entry->gid = posix_acl_gid_translate(idmap, pa_entry);
1406 xa_entry->type = SMB_ACL_GROUP_OBJ;
1409 xa_entry->type = SMB_ACL_OTHER;
1412 xa_entry->type = SMB_ACL_MASK;
1415 pr_err("unknown type : 0x%x\n", pa_entry->e_tag);
1419 if (pa_entry->e_perm & ACL_READ)
1420 xa_entry->perm |= SMB_ACL_READ;
1421 if (pa_entry->e_perm & ACL_WRITE)
1422 xa_entry->perm |= SMB_ACL_WRITE;
1423 if (pa_entry->e_perm & ACL_EXECUTE)
1424 xa_entry->perm |= SMB_ACL_EXECUTE;
1427 posix_acl_release(posix_acls);
1431 int ksmbd_vfs_set_sd_xattr(struct ksmbd_conn *conn,
1432 struct mnt_idmap *idmap,
1433 struct dentry *dentry,
1434 struct smb_ntsd *pntsd, int len)
1437 struct ndr sd_ndr = {0}, acl_ndr = {0};
1438 struct xattr_ntacl acl = {0};
1439 struct xattr_smb_acl *smb_acl, *def_smb_acl = NULL;
1440 struct inode *inode = d_inode(dentry);
1443 acl.hash_type = XATTR_SD_HASH_TYPE_SHA256;
1444 acl.current_time = ksmbd_UnixTimeToNT(current_time(inode));
1446 memcpy(acl.desc, "posix_acl", 9);
1450 cpu_to_le32(le32_to_cpu(pntsd->osidoffset) + NDR_NTSD_OFFSETOF);
1452 cpu_to_le32(le32_to_cpu(pntsd->gsidoffset) + NDR_NTSD_OFFSETOF);
1454 cpu_to_le32(le32_to_cpu(pntsd->dacloffset) + NDR_NTSD_OFFSETOF);
1456 acl.sd_buf = (char *)pntsd;
1459 rc = ksmbd_gen_sd_hash(conn, acl.sd_buf, acl.sd_size, acl.hash);
1461 pr_err("failed to generate hash for ndr acl\n");
1465 smb_acl = ksmbd_vfs_make_xattr_posix_acl(idmap, inode,
1467 if (S_ISDIR(inode->i_mode))
1468 def_smb_acl = ksmbd_vfs_make_xattr_posix_acl(idmap, inode,
1471 rc = ndr_encode_posix_acl(&acl_ndr, idmap, inode,
1472 smb_acl, def_smb_acl);
1474 pr_err("failed to encode ndr to posix acl\n");
1478 rc = ksmbd_gen_sd_hash(conn, acl_ndr.data, acl_ndr.offset,
1479 acl.posix_acl_hash);
1481 pr_err("failed to generate hash for ndr acl\n");
1485 rc = ndr_encode_v4_ntacl(&sd_ndr, &acl);
1487 pr_err("failed to encode ndr to posix acl\n");
1491 rc = ksmbd_vfs_setxattr(idmap, dentry,
1492 XATTR_NAME_SD, sd_ndr.data,
1495 pr_err("Failed to store XATTR ntacl :%d\n", rc);
1499 kfree(acl_ndr.data);
1505 int ksmbd_vfs_get_sd_xattr(struct ksmbd_conn *conn,
1506 struct mnt_idmap *idmap,
1507 struct dentry *dentry,
1508 struct smb_ntsd **pntsd)
1512 struct inode *inode = d_inode(dentry);
1513 struct ndr acl_ndr = {0};
1514 struct xattr_ntacl acl;
1515 struct xattr_smb_acl *smb_acl = NULL, *def_smb_acl = NULL;
1516 __u8 cmp_hash[XATTR_SD_HASH_SIZE] = {0};
1518 rc = ksmbd_vfs_getxattr(idmap, dentry, XATTR_NAME_SD, &n.data);
1523 rc = ndr_decode_v4_ntacl(&n, &acl);
1527 smb_acl = ksmbd_vfs_make_xattr_posix_acl(idmap, inode,
1529 if (S_ISDIR(inode->i_mode))
1530 def_smb_acl = ksmbd_vfs_make_xattr_posix_acl(idmap, inode,
1533 rc = ndr_encode_posix_acl(&acl_ndr, idmap, inode, smb_acl,
1536 pr_err("failed to encode ndr to posix acl\n");
1540 rc = ksmbd_gen_sd_hash(conn, acl_ndr.data, acl_ndr.offset, cmp_hash);
1542 pr_err("failed to generate hash for ndr acl\n");
1546 if (memcmp(cmp_hash, acl.posix_acl_hash, XATTR_SD_HASH_SIZE)) {
1547 pr_err("hash value diff\n");
1552 *pntsd = acl.sd_buf;
1553 if (acl.sd_size < sizeof(struct smb_ntsd)) {
1554 pr_err("sd size is invalid\n");
1558 (*pntsd)->osidoffset = cpu_to_le32(le32_to_cpu((*pntsd)->osidoffset) -
1560 (*pntsd)->gsidoffset = cpu_to_le32(le32_to_cpu((*pntsd)->gsidoffset) -
1562 (*pntsd)->dacloffset = cpu_to_le32(le32_to_cpu((*pntsd)->dacloffset) -
1567 kfree(acl_ndr.data);
1580 int ksmbd_vfs_set_dos_attrib_xattr(struct mnt_idmap *idmap,
1581 struct dentry *dentry,
1582 struct xattr_dos_attrib *da)
1587 err = ndr_encode_dos_attr(&n, da);
1591 err = ksmbd_vfs_setxattr(idmap, dentry, XATTR_NAME_DOS_ATTRIBUTE,
1592 (void *)n.data, n.offset, 0);
1594 ksmbd_debug(SMB, "failed to store dos attribute in xattr\n");
1600 int ksmbd_vfs_get_dos_attrib_xattr(struct mnt_idmap *idmap,
1601 struct dentry *dentry,
1602 struct xattr_dos_attrib *da)
1607 err = ksmbd_vfs_getxattr(idmap, dentry, XATTR_NAME_DOS_ATTRIBUTE,
1611 if (ndr_decode_dos_attr(&n, da))
1615 ksmbd_debug(SMB, "failed to load dos attribute in xattr\n");
1622 * ksmbd_vfs_init_kstat() - convert unix stat information to smb stat format
1623 * @p: destination buffer
1624 * @ksmbd_kstat: ksmbd kstat wrapper
1626 void *ksmbd_vfs_init_kstat(char **p, struct ksmbd_kstat *ksmbd_kstat)
1628 struct file_directory_info *info = (struct file_directory_info *)(*p);
1629 struct kstat *kstat = ksmbd_kstat->kstat;
1632 info->FileIndex = 0;
1633 info->CreationTime = cpu_to_le64(ksmbd_kstat->create_time);
1634 time = ksmbd_UnixTimeToNT(kstat->atime);
1635 info->LastAccessTime = cpu_to_le64(time);
1636 time = ksmbd_UnixTimeToNT(kstat->mtime);
1637 info->LastWriteTime = cpu_to_le64(time);
1638 time = ksmbd_UnixTimeToNT(kstat->ctime);
1639 info->ChangeTime = cpu_to_le64(time);
1641 if (ksmbd_kstat->file_attributes & FILE_ATTRIBUTE_DIRECTORY_LE) {
1642 info->EndOfFile = 0;
1643 info->AllocationSize = 0;
1645 info->EndOfFile = cpu_to_le64(kstat->size);
1646 info->AllocationSize = cpu_to_le64(kstat->blocks << 9);
1648 info->ExtFileAttributes = ksmbd_kstat->file_attributes;
1653 int ksmbd_vfs_fill_dentry_attrs(struct ksmbd_work *work,
1654 struct mnt_idmap *idmap,
1655 struct dentry *dentry,
1656 struct ksmbd_kstat *ksmbd_kstat)
1661 generic_fillattr(idmap, d_inode(dentry), ksmbd_kstat->kstat);
1663 time = ksmbd_UnixTimeToNT(ksmbd_kstat->kstat->ctime);
1664 ksmbd_kstat->create_time = time;
1667 * set default value for the case that store dos attributes is not yes
1668 * or that acl is disable in server's filesystem and the config is yes.
1670 if (S_ISDIR(ksmbd_kstat->kstat->mode))
1671 ksmbd_kstat->file_attributes = FILE_ATTRIBUTE_DIRECTORY_LE;
1673 ksmbd_kstat->file_attributes = FILE_ATTRIBUTE_ARCHIVE_LE;
1675 if (test_share_config_flag(work->tcon->share_conf,
1676 KSMBD_SHARE_FLAG_STORE_DOS_ATTRS)) {
1677 struct xattr_dos_attrib da;
1679 rc = ksmbd_vfs_get_dos_attrib_xattr(idmap, dentry, &da);
1681 ksmbd_kstat->file_attributes = cpu_to_le32(da.attr);
1682 ksmbd_kstat->create_time = da.create_time;
1684 ksmbd_debug(VFS, "fail to load dos attribute.\n");
1691 ssize_t ksmbd_vfs_casexattr_len(struct mnt_idmap *idmap,
1692 struct dentry *dentry, char *attr_name,
1695 char *name, *xattr_list = NULL;
1696 ssize_t value_len = -ENOENT, xattr_list_len;
1698 xattr_list_len = ksmbd_vfs_listxattr(dentry, &xattr_list);
1699 if (xattr_list_len <= 0)
1702 for (name = xattr_list; name - xattr_list < xattr_list_len;
1703 name += strlen(name) + 1) {
1704 ksmbd_debug(VFS, "%s, len %zd\n", name, strlen(name));
1705 if (strncasecmp(attr_name, name, attr_name_len))
1708 value_len = ksmbd_vfs_xattr_len(idmap, dentry, name);
1717 int ksmbd_vfs_xattr_stream_name(char *stream_name, char **xattr_stream_name,
1718 size_t *xattr_stream_name_size, int s_type)
1722 if (s_type == DIR_STREAM)
1723 type = ":$INDEX_ALLOCATION";
1727 buf = kasprintf(GFP_KERNEL, "%s%s%s",
1728 XATTR_NAME_STREAM, stream_name, type);
1732 *xattr_stream_name = buf;
1733 *xattr_stream_name_size = strlen(buf) + 1;
1738 int ksmbd_vfs_copy_file_ranges(struct ksmbd_work *work,
1739 struct ksmbd_file *src_fp,
1740 struct ksmbd_file *dst_fp,
1741 struct srv_copychunk *chunks,
1742 unsigned int chunk_count,
1743 unsigned int *chunk_count_written,
1744 unsigned int *chunk_size_written,
1745 loff_t *total_size_written)
1748 loff_t src_off, dst_off, src_file_size;
1752 *chunk_count_written = 0;
1753 *chunk_size_written = 0;
1754 *total_size_written = 0;
1756 if (!(src_fp->daccess & (FILE_READ_DATA_LE | FILE_EXECUTE_LE))) {
1757 pr_err("no right to read(%pD)\n", src_fp->filp);
1760 if (!(dst_fp->daccess & (FILE_WRITE_DATA_LE | FILE_APPEND_DATA_LE))) {
1761 pr_err("no right to write(%pD)\n", dst_fp->filp);
1765 if (ksmbd_stream_fd(src_fp) || ksmbd_stream_fd(dst_fp))
1768 smb_break_all_levII_oplock(work, dst_fp, 1);
1770 if (!work->tcon->posix_extensions) {
1771 for (i = 0; i < chunk_count; i++) {
1772 src_off = le64_to_cpu(chunks[i].SourceOffset);
1773 dst_off = le64_to_cpu(chunks[i].TargetOffset);
1774 len = le32_to_cpu(chunks[i].Length);
1776 if (check_lock_range(src_fp->filp, src_off,
1777 src_off + len - 1, READ))
1779 if (check_lock_range(dst_fp->filp, dst_off,
1780 dst_off + len - 1, WRITE))
1785 src_file_size = i_size_read(file_inode(src_fp->filp));
1787 for (i = 0; i < chunk_count; i++) {
1788 src_off = le64_to_cpu(chunks[i].SourceOffset);
1789 dst_off = le64_to_cpu(chunks[i].TargetOffset);
1790 len = le32_to_cpu(chunks[i].Length);
1792 if (src_off + len > src_file_size)
1795 ret = vfs_copy_file_range(src_fp->filp, src_off,
1796 dst_fp->filp, dst_off, len, 0);
1797 if (ret == -EOPNOTSUPP || ret == -EXDEV)
1798 ret = vfs_copy_file_range(src_fp->filp, src_off,
1799 dst_fp->filp, dst_off, len,
1804 *chunk_count_written += 1;
1805 *total_size_written += ret;
1810 void ksmbd_vfs_posix_lock_wait(struct file_lock *flock)
1812 wait_event(flock->fl_wait, !flock->fl_blocker);
1815 int ksmbd_vfs_posix_lock_wait_timeout(struct file_lock *flock, long timeout)
1817 return wait_event_interruptible_timeout(flock->fl_wait,
1822 void ksmbd_vfs_posix_lock_unblock(struct file_lock *flock)
1824 locks_delete_block(flock);
1827 int ksmbd_vfs_set_init_posix_acl(struct mnt_idmap *idmap,
1828 struct dentry *dentry)
1830 struct posix_acl_state acl_state;
1831 struct posix_acl *acls;
1832 struct inode *inode = d_inode(dentry);
1835 if (!IS_ENABLED(CONFIG_FS_POSIX_ACL))
1838 ksmbd_debug(SMB, "Set posix acls\n");
1839 rc = init_acl_state(&acl_state, 1);
1843 /* Set default owner group */
1844 acl_state.owner.allow = (inode->i_mode & 0700) >> 6;
1845 acl_state.group.allow = (inode->i_mode & 0070) >> 3;
1846 acl_state.other.allow = inode->i_mode & 0007;
1847 acl_state.users->aces[acl_state.users->n].uid = inode->i_uid;
1848 acl_state.users->aces[acl_state.users->n++].perms.allow =
1849 acl_state.owner.allow;
1850 acl_state.groups->aces[acl_state.groups->n].gid = inode->i_gid;
1851 acl_state.groups->aces[acl_state.groups->n++].perms.allow =
1852 acl_state.group.allow;
1853 acl_state.mask.allow = 0x07;
1855 acls = posix_acl_alloc(6, GFP_KERNEL);
1857 free_acl_state(&acl_state);
1860 posix_state_to_acl(&acl_state, acls->a_entries);
1861 rc = set_posix_acl(idmap, dentry, ACL_TYPE_ACCESS, acls);
1863 ksmbd_debug(SMB, "Set posix acl(ACL_TYPE_ACCESS) failed, rc : %d\n",
1865 else if (S_ISDIR(inode->i_mode)) {
1866 posix_state_to_acl(&acl_state, acls->a_entries);
1867 rc = set_posix_acl(idmap, dentry, ACL_TYPE_DEFAULT, acls);
1869 ksmbd_debug(SMB, "Set posix acl(ACL_TYPE_DEFAULT) failed, rc : %d\n",
1872 free_acl_state(&acl_state);
1873 posix_acl_release(acls);
1877 int ksmbd_vfs_inherit_posix_acl(struct mnt_idmap *idmap,
1878 struct dentry *dentry, struct inode *parent_inode)
1880 struct posix_acl *acls;
1881 struct posix_acl_entry *pace;
1882 struct inode *inode = d_inode(dentry);
1885 if (!IS_ENABLED(CONFIG_FS_POSIX_ACL))
1888 acls = get_inode_acl(parent_inode, ACL_TYPE_DEFAULT);
1891 pace = acls->a_entries;
1893 for (i = 0; i < acls->a_count; i++, pace++) {
1894 if (pace->e_tag == ACL_MASK) {
1895 pace->e_perm = 0x07;
1900 rc = set_posix_acl(idmap, dentry, ACL_TYPE_ACCESS, acls);
1902 ksmbd_debug(SMB, "Set posix acl(ACL_TYPE_ACCESS) failed, rc : %d\n",
1904 if (S_ISDIR(inode->i_mode)) {
1905 rc = set_posix_acl(idmap, dentry, ACL_TYPE_DEFAULT,
1908 ksmbd_debug(SMB, "Set posix acl(ACL_TYPE_DEFAULT) failed, rc : %d\n",
1911 posix_acl_release(acls);