1 // SPDX-License-Identifier: GPL-2.0
5 #include <linux/init.h>
6 #include <linux/sysctl.h>
7 #include <linux/poll.h>
8 #include <linux/proc_fs.h>
9 #include <linux/printk.h>
10 #include <linux/security.h>
11 #include <linux/sched.h>
12 #include <linux/cred.h>
13 #include <linux/namei.h>
15 #include <linux/module.h>
16 #include <linux/bpf-cgroup.h>
19 static const struct dentry_operations proc_sys_dentry_operations
;
20 static const struct file_operations proc_sys_file_operations
;
21 static const struct inode_operations proc_sys_inode_operations
;
22 static const struct file_operations proc_sys_dir_file_operations
;
23 static const struct inode_operations proc_sys_dir_operations
;
25 /* shared constants to be used in various sysctls */
26 const int sysctl_vals
[] = { 0, 1, INT_MAX
};
27 EXPORT_SYMBOL(sysctl_vals
);
29 /* Support for permanently empty directories */
31 struct ctl_table sysctl_mount_point
[] = {
35 static bool is_empty_dir(struct ctl_table_header
*head
)
37 return head
->ctl_table
[0].child
== sysctl_mount_point
;
40 static void set_empty_dir(struct ctl_dir
*dir
)
42 dir
->header
.ctl_table
[0].child
= sysctl_mount_point
;
45 static void clear_empty_dir(struct ctl_dir
*dir
)
48 dir
->header
.ctl_table
[0].child
= NULL
;
51 void proc_sys_poll_notify(struct ctl_table_poll
*poll
)
56 atomic_inc(&poll
->event
);
57 wake_up_interruptible(&poll
->wait
);
60 static struct ctl_table root_table
[] = {
63 .mode
= S_IFDIR
|S_IRUGO
|S_IXUGO
,
67 static struct ctl_table_root sysctl_table_root
= {
68 .default_set
.dir
.header
= {
71 .ctl_table
= root_table
}},
72 .ctl_table_arg
= root_table
,
73 .root
= &sysctl_table_root
,
74 .set
= &sysctl_table_root
.default_set
,
78 static DEFINE_SPINLOCK(sysctl_lock
);
80 static void drop_sysctl_table(struct ctl_table_header
*header
);
81 static int sysctl_follow_link(struct ctl_table_header
**phead
,
82 struct ctl_table
**pentry
);
83 static int insert_links(struct ctl_table_header
*head
);
84 static void put_links(struct ctl_table_header
*header
);
86 static void sysctl_print_dir(struct ctl_dir
*dir
)
88 if (dir
->header
.parent
)
89 sysctl_print_dir(dir
->header
.parent
);
90 pr_cont("%s/", dir
->header
.ctl_table
[0].procname
);
93 static int namecmp(const char *name1
, int len1
, const char *name2
, int len2
)
102 cmp
= memcmp(name1
, name2
, minlen
);
108 /* Called under sysctl_lock */
109 static struct ctl_table
*find_entry(struct ctl_table_header
**phead
,
110 struct ctl_dir
*dir
, const char *name
, int namelen
)
112 struct ctl_table_header
*head
;
113 struct ctl_table
*entry
;
114 struct rb_node
*node
= dir
->root
.rb_node
;
118 struct ctl_node
*ctl_node
;
119 const char *procname
;
122 ctl_node
= rb_entry(node
, struct ctl_node
, node
);
123 head
= ctl_node
->header
;
124 entry
= &head
->ctl_table
[ctl_node
- head
->node
];
125 procname
= entry
->procname
;
127 cmp
= namecmp(name
, namelen
, procname
, strlen(procname
));
129 node
= node
->rb_left
;
131 node
= node
->rb_right
;
140 static int insert_entry(struct ctl_table_header
*head
, struct ctl_table
*entry
)
142 struct rb_node
*node
= &head
->node
[entry
- head
->ctl_table
].node
;
143 struct rb_node
**p
= &head
->parent
->root
.rb_node
;
144 struct rb_node
*parent
= NULL
;
145 const char *name
= entry
->procname
;
146 int namelen
= strlen(name
);
149 struct ctl_table_header
*parent_head
;
150 struct ctl_table
*parent_entry
;
151 struct ctl_node
*parent_node
;
152 const char *parent_name
;
156 parent_node
= rb_entry(parent
, struct ctl_node
, node
);
157 parent_head
= parent_node
->header
;
158 parent_entry
= &parent_head
->ctl_table
[parent_node
- parent_head
->node
];
159 parent_name
= parent_entry
->procname
;
161 cmp
= namecmp(name
, namelen
, parent_name
, strlen(parent_name
));
167 pr_err("sysctl duplicate entry: ");
168 sysctl_print_dir(head
->parent
);
169 pr_cont("/%s\n", entry
->procname
);
174 rb_link_node(node
, parent
, p
);
175 rb_insert_color(node
, &head
->parent
->root
);
179 static void erase_entry(struct ctl_table_header
*head
, struct ctl_table
*entry
)
181 struct rb_node
*node
= &head
->node
[entry
- head
->ctl_table
].node
;
183 rb_erase(node
, &head
->parent
->root
);
186 static void init_header(struct ctl_table_header
*head
,
187 struct ctl_table_root
*root
, struct ctl_table_set
*set
,
188 struct ctl_node
*node
, struct ctl_table
*table
)
190 head
->ctl_table
= table
;
191 head
->ctl_table_arg
= table
;
195 head
->unregistering
= NULL
;
200 INIT_HLIST_HEAD(&head
->inodes
);
202 struct ctl_table
*entry
;
203 for (entry
= table
; entry
->procname
; entry
++, node
++)
208 static void erase_header(struct ctl_table_header
*head
)
210 struct ctl_table
*entry
;
211 for (entry
= head
->ctl_table
; entry
->procname
; entry
++)
212 erase_entry(head
, entry
);
215 static int insert_header(struct ctl_dir
*dir
, struct ctl_table_header
*header
)
217 struct ctl_table
*entry
;
220 /* Is this a permanently empty directory? */
221 if (is_empty_dir(&dir
->header
))
224 /* Am I creating a permanently empty directory? */
225 if (header
->ctl_table
== sysctl_mount_point
) {
226 if (!RB_EMPTY_ROOT(&dir
->root
))
232 header
->parent
= dir
;
233 err
= insert_links(header
);
236 for (entry
= header
->ctl_table
; entry
->procname
; entry
++) {
237 err
= insert_entry(header
, entry
);
243 erase_header(header
);
246 if (header
->ctl_table
== sysctl_mount_point
)
247 clear_empty_dir(dir
);
248 header
->parent
= NULL
;
249 drop_sysctl_table(&dir
->header
);
253 /* called under sysctl_lock */
254 static int use_table(struct ctl_table_header
*p
)
256 if (unlikely(p
->unregistering
))
262 /* called under sysctl_lock */
263 static void unuse_table(struct ctl_table_header
*p
)
266 if (unlikely(p
->unregistering
))
267 complete(p
->unregistering
);
270 static void proc_sys_invalidate_dcache(struct ctl_table_header
*head
)
272 proc_invalidate_siblings_dcache(&head
->inodes
, &sysctl_lock
);
275 /* called under sysctl_lock, will reacquire if has to wait */
276 static void start_unregistering(struct ctl_table_header
*p
)
279 * if p->used is 0, nobody will ever touch that entry again;
280 * we'll eliminate all paths to it before dropping sysctl_lock
282 if (unlikely(p
->used
)) {
283 struct completion wait
;
284 init_completion(&wait
);
285 p
->unregistering
= &wait
;
286 spin_unlock(&sysctl_lock
);
287 wait_for_completion(&wait
);
289 /* anything non-NULL; we'll never dereference it */
290 p
->unregistering
= ERR_PTR(-EINVAL
);
291 spin_unlock(&sysctl_lock
);
294 * Invalidate dentries for unregistered sysctls: namespaced sysctls
295 * can have duplicate names and contaminate dcache very badly.
297 proc_sys_invalidate_dcache(p
);
299 * do not remove from the list until nobody holds it; walking the
300 * list in do_sysctl() relies on that.
302 spin_lock(&sysctl_lock
);
306 static struct ctl_table_header
*sysctl_head_grab(struct ctl_table_header
*head
)
309 spin_lock(&sysctl_lock
);
310 if (!use_table(head
))
311 head
= ERR_PTR(-ENOENT
);
312 spin_unlock(&sysctl_lock
);
316 static void sysctl_head_finish(struct ctl_table_header
*head
)
320 spin_lock(&sysctl_lock
);
322 spin_unlock(&sysctl_lock
);
325 static struct ctl_table_set
*
326 lookup_header_set(struct ctl_table_root
*root
)
328 struct ctl_table_set
*set
= &root
->default_set
;
330 set
= root
->lookup(root
);
334 static struct ctl_table
*lookup_entry(struct ctl_table_header
**phead
,
336 const char *name
, int namelen
)
338 struct ctl_table_header
*head
;
339 struct ctl_table
*entry
;
341 spin_lock(&sysctl_lock
);
342 entry
= find_entry(&head
, dir
, name
, namelen
);
343 if (entry
&& use_table(head
))
347 spin_unlock(&sysctl_lock
);
351 static struct ctl_node
*first_usable_entry(struct rb_node
*node
)
353 struct ctl_node
*ctl_node
;
355 for (;node
; node
= rb_next(node
)) {
356 ctl_node
= rb_entry(node
, struct ctl_node
, node
);
357 if (use_table(ctl_node
->header
))
363 static void first_entry(struct ctl_dir
*dir
,
364 struct ctl_table_header
**phead
, struct ctl_table
**pentry
)
366 struct ctl_table_header
*head
= NULL
;
367 struct ctl_table
*entry
= NULL
;
368 struct ctl_node
*ctl_node
;
370 spin_lock(&sysctl_lock
);
371 ctl_node
= first_usable_entry(rb_first(&dir
->root
));
372 spin_unlock(&sysctl_lock
);
374 head
= ctl_node
->header
;
375 entry
= &head
->ctl_table
[ctl_node
- head
->node
];
381 static void next_entry(struct ctl_table_header
**phead
, struct ctl_table
**pentry
)
383 struct ctl_table_header
*head
= *phead
;
384 struct ctl_table
*entry
= *pentry
;
385 struct ctl_node
*ctl_node
= &head
->node
[entry
- head
->ctl_table
];
387 spin_lock(&sysctl_lock
);
390 ctl_node
= first_usable_entry(rb_next(&ctl_node
->node
));
391 spin_unlock(&sysctl_lock
);
394 head
= ctl_node
->header
;
395 entry
= &head
->ctl_table
[ctl_node
- head
->node
];
402 * sysctl_perm does NOT grant the superuser all rights automatically, because
403 * some sysctl variables are readonly even to root.
406 static int test_perm(int mode
, int op
)
408 if (uid_eq(current_euid(), GLOBAL_ROOT_UID
))
410 else if (in_egroup_p(GLOBAL_ROOT_GID
))
412 if ((op
& ~mode
& (MAY_READ
|MAY_WRITE
|MAY_EXEC
)) == 0)
417 static int sysctl_perm(struct ctl_table_header
*head
, struct ctl_table
*table
, int op
)
419 struct ctl_table_root
*root
= head
->root
;
422 if (root
->permissions
)
423 mode
= root
->permissions(head
, table
);
427 return test_perm(mode
, op
);
430 static struct inode
*proc_sys_make_inode(struct super_block
*sb
,
431 struct ctl_table_header
*head
, struct ctl_table
*table
)
433 struct ctl_table_root
*root
= head
->root
;
435 struct proc_inode
*ei
;
437 inode
= new_inode(sb
);
439 return ERR_PTR(-ENOMEM
);
441 inode
->i_ino
= get_next_ino();
445 spin_lock(&sysctl_lock
);
446 if (unlikely(head
->unregistering
)) {
447 spin_unlock(&sysctl_lock
);
449 return ERR_PTR(-ENOENT
);
452 ei
->sysctl_entry
= table
;
453 hlist_add_head_rcu(&ei
->sibling_inodes
, &head
->inodes
);
455 spin_unlock(&sysctl_lock
);
457 inode
->i_mtime
= inode
->i_atime
= inode
->i_ctime
= current_time(inode
);
458 inode
->i_mode
= table
->mode
;
459 if (!S_ISDIR(table
->mode
)) {
460 inode
->i_mode
|= S_IFREG
;
461 inode
->i_op
= &proc_sys_inode_operations
;
462 inode
->i_fop
= &proc_sys_file_operations
;
464 inode
->i_mode
|= S_IFDIR
;
465 inode
->i_op
= &proc_sys_dir_operations
;
466 inode
->i_fop
= &proc_sys_dir_file_operations
;
467 if (is_empty_dir(head
))
468 make_empty_dir_inode(inode
);
471 if (root
->set_ownership
)
472 root
->set_ownership(head
, table
, &inode
->i_uid
, &inode
->i_gid
);
474 inode
->i_uid
= GLOBAL_ROOT_UID
;
475 inode
->i_gid
= GLOBAL_ROOT_GID
;
481 void proc_sys_evict_inode(struct inode
*inode
, struct ctl_table_header
*head
)
483 spin_lock(&sysctl_lock
);
484 hlist_del_init_rcu(&PROC_I(inode
)->sibling_inodes
);
486 kfree_rcu(head
, rcu
);
487 spin_unlock(&sysctl_lock
);
490 static struct ctl_table_header
*grab_header(struct inode
*inode
)
492 struct ctl_table_header
*head
= PROC_I(inode
)->sysctl
;
494 head
= &sysctl_table_root
.default_set
.dir
.header
;
495 return sysctl_head_grab(head
);
498 static struct dentry
*proc_sys_lookup(struct inode
*dir
, struct dentry
*dentry
,
501 struct ctl_table_header
*head
= grab_header(dir
);
502 struct ctl_table_header
*h
= NULL
;
503 const struct qstr
*name
= &dentry
->d_name
;
506 struct dentry
*err
= ERR_PTR(-ENOENT
);
507 struct ctl_dir
*ctl_dir
;
511 return ERR_CAST(head
);
513 ctl_dir
= container_of(head
, struct ctl_dir
, header
);
515 p
= lookup_entry(&h
, ctl_dir
, name
->name
, name
->len
);
519 if (S_ISLNK(p
->mode
)) {
520 ret
= sysctl_follow_link(&h
, &p
);
526 inode
= proc_sys_make_inode(dir
->i_sb
, h
? h
: head
, p
);
528 err
= ERR_CAST(inode
);
532 d_set_d_op(dentry
, &proc_sys_dentry_operations
);
533 err
= d_splice_alias(inode
, dentry
);
537 sysctl_head_finish(h
);
538 sysctl_head_finish(head
);
542 static ssize_t
proc_sys_call_handler(struct file
*filp
, void __user
*buf
,
543 size_t count
, loff_t
*ppos
, int write
)
545 struct inode
*inode
= file_inode(filp
);
546 struct ctl_table_header
*head
= grab_header(inode
);
547 struct ctl_table
*table
= PROC_I(inode
)->sysctl_entry
;
548 void *new_buf
= NULL
;
552 return PTR_ERR(head
);
555 * At this point we know that the sysctl was not unregistered
556 * and won't be until we finish.
559 if (sysctl_perm(head
, table
, write
? MAY_WRITE
: MAY_READ
))
562 /* if that can happen at all, it should be -EINVAL, not -EISDIR */
564 if (!table
->proc_handler
)
567 error
= BPF_CGROUP_RUN_PROG_SYSCTL(head
, table
, write
, buf
, &count
,
572 /* careful: calling conventions are nasty here */
578 error
= table
->proc_handler(table
, write
, (void __user
*)new_buf
,
583 error
= table
->proc_handler(table
, write
, buf
, &count
, ppos
);
589 sysctl_head_finish(head
);
594 static ssize_t
proc_sys_read(struct file
*filp
, char __user
*buf
,
595 size_t count
, loff_t
*ppos
)
597 return proc_sys_call_handler(filp
, (void __user
*)buf
, count
, ppos
, 0);
600 static ssize_t
proc_sys_write(struct file
*filp
, const char __user
*buf
,
601 size_t count
, loff_t
*ppos
)
603 return proc_sys_call_handler(filp
, (void __user
*)buf
, count
, ppos
, 1);
606 static int proc_sys_open(struct inode
*inode
, struct file
*filp
)
608 struct ctl_table_header
*head
= grab_header(inode
);
609 struct ctl_table
*table
= PROC_I(inode
)->sysctl_entry
;
611 /* sysctl was unregistered */
613 return PTR_ERR(head
);
616 filp
->private_data
= proc_sys_poll_event(table
->poll
);
618 sysctl_head_finish(head
);
623 static __poll_t
proc_sys_poll(struct file
*filp
, poll_table
*wait
)
625 struct inode
*inode
= file_inode(filp
);
626 struct ctl_table_header
*head
= grab_header(inode
);
627 struct ctl_table
*table
= PROC_I(inode
)->sysctl_entry
;
628 __poll_t ret
= DEFAULT_POLLMASK
;
631 /* sysctl was unregistered */
633 return EPOLLERR
| EPOLLHUP
;
635 if (!table
->proc_handler
)
641 event
= (unsigned long)filp
->private_data
;
642 poll_wait(filp
, &table
->poll
->wait
, wait
);
644 if (event
!= atomic_read(&table
->poll
->event
)) {
645 filp
->private_data
= proc_sys_poll_event(table
->poll
);
646 ret
= EPOLLIN
| EPOLLRDNORM
| EPOLLERR
| EPOLLPRI
;
650 sysctl_head_finish(head
);
655 static bool proc_sys_fill_cache(struct file
*file
,
656 struct dir_context
*ctx
,
657 struct ctl_table_header
*head
,
658 struct ctl_table
*table
)
660 struct dentry
*child
, *dir
= file
->f_path
.dentry
;
664 unsigned type
= DT_UNKNOWN
;
666 qname
.name
= table
->procname
;
667 qname
.len
= strlen(table
->procname
);
668 qname
.hash
= full_name_hash(dir
, qname
.name
, qname
.len
);
670 child
= d_lookup(dir
, &qname
);
672 DECLARE_WAIT_QUEUE_HEAD_ONSTACK(wq
);
673 child
= d_alloc_parallel(dir
, &qname
, &wq
);
676 if (d_in_lookup(child
)) {
678 inode
= proc_sys_make_inode(dir
->d_sb
, head
, table
);
680 d_lookup_done(child
);
684 d_set_d_op(child
, &proc_sys_dentry_operations
);
685 res
= d_splice_alias(inode
, child
);
686 d_lookup_done(child
);
697 inode
= d_inode(child
);
699 type
= inode
->i_mode
>> 12;
701 return dir_emit(ctx
, qname
.name
, qname
.len
, ino
, type
);
704 static bool proc_sys_link_fill_cache(struct file
*file
,
705 struct dir_context
*ctx
,
706 struct ctl_table_header
*head
,
707 struct ctl_table
*table
)
711 head
= sysctl_head_grab(head
);
715 /* It is not an error if we can not follow the link ignore it */
716 if (sysctl_follow_link(&head
, &table
))
719 ret
= proc_sys_fill_cache(file
, ctx
, head
, table
);
721 sysctl_head_finish(head
);
725 static int scan(struct ctl_table_header
*head
, struct ctl_table
*table
,
726 unsigned long *pos
, struct file
*file
,
727 struct dir_context
*ctx
)
731 if ((*pos
)++ < ctx
->pos
)
734 if (unlikely(S_ISLNK(table
->mode
)))
735 res
= proc_sys_link_fill_cache(file
, ctx
, head
, table
);
737 res
= proc_sys_fill_cache(file
, ctx
, head
, table
);
745 static int proc_sys_readdir(struct file
*file
, struct dir_context
*ctx
)
747 struct ctl_table_header
*head
= grab_header(file_inode(file
));
748 struct ctl_table_header
*h
= NULL
;
749 struct ctl_table
*entry
;
750 struct ctl_dir
*ctl_dir
;
754 return PTR_ERR(head
);
756 ctl_dir
= container_of(head
, struct ctl_dir
, header
);
758 if (!dir_emit_dots(file
, ctx
))
763 for (first_entry(ctl_dir
, &h
, &entry
); h
; next_entry(&h
, &entry
)) {
764 if (!scan(h
, entry
, &pos
, file
, ctx
)) {
765 sysctl_head_finish(h
);
770 sysctl_head_finish(head
);
774 static int proc_sys_permission(struct inode
*inode
, int mask
)
777 * sysctl entries that are not writeable,
778 * are _NOT_ writeable, capabilities or not.
780 struct ctl_table_header
*head
;
781 struct ctl_table
*table
;
784 /* Executable files are not allowed under /proc/sys/ */
785 if ((mask
& MAY_EXEC
) && S_ISREG(inode
->i_mode
))
788 head
= grab_header(inode
);
790 return PTR_ERR(head
);
792 table
= PROC_I(inode
)->sysctl_entry
;
793 if (!table
) /* global root - r-xr-xr-x */
794 error
= mask
& MAY_WRITE
? -EACCES
: 0;
795 else /* Use the permissions on the sysctl table entry */
796 error
= sysctl_perm(head
, table
, mask
& ~MAY_NOT_BLOCK
);
798 sysctl_head_finish(head
);
802 static int proc_sys_setattr(struct dentry
*dentry
, struct iattr
*attr
)
804 struct inode
*inode
= d_inode(dentry
);
807 if (attr
->ia_valid
& (ATTR_MODE
| ATTR_UID
| ATTR_GID
))
810 error
= setattr_prepare(dentry
, attr
);
814 setattr_copy(inode
, attr
);
815 mark_inode_dirty(inode
);
819 static int proc_sys_getattr(const struct path
*path
, struct kstat
*stat
,
820 u32 request_mask
, unsigned int query_flags
)
822 struct inode
*inode
= d_inode(path
->dentry
);
823 struct ctl_table_header
*head
= grab_header(inode
);
824 struct ctl_table
*table
= PROC_I(inode
)->sysctl_entry
;
827 return PTR_ERR(head
);
829 generic_fillattr(inode
, stat
);
831 stat
->mode
= (stat
->mode
& S_IFMT
) | table
->mode
;
833 sysctl_head_finish(head
);
837 static const struct file_operations proc_sys_file_operations
= {
838 .open
= proc_sys_open
,
839 .poll
= proc_sys_poll
,
840 .read
= proc_sys_read
,
841 .write
= proc_sys_write
,
842 .llseek
= default_llseek
,
845 static const struct file_operations proc_sys_dir_file_operations
= {
846 .read
= generic_read_dir
,
847 .iterate_shared
= proc_sys_readdir
,
848 .llseek
= generic_file_llseek
,
851 static const struct inode_operations proc_sys_inode_operations
= {
852 .permission
= proc_sys_permission
,
853 .setattr
= proc_sys_setattr
,
854 .getattr
= proc_sys_getattr
,
857 static const struct inode_operations proc_sys_dir_operations
= {
858 .lookup
= proc_sys_lookup
,
859 .permission
= proc_sys_permission
,
860 .setattr
= proc_sys_setattr
,
861 .getattr
= proc_sys_getattr
,
864 static int proc_sys_revalidate(struct dentry
*dentry
, unsigned int flags
)
866 if (flags
& LOOKUP_RCU
)
868 return !PROC_I(d_inode(dentry
))->sysctl
->unregistering
;
871 static int proc_sys_delete(const struct dentry
*dentry
)
873 return !!PROC_I(d_inode(dentry
))->sysctl
->unregistering
;
876 static int sysctl_is_seen(struct ctl_table_header
*p
)
878 struct ctl_table_set
*set
= p
->set
;
880 spin_lock(&sysctl_lock
);
881 if (p
->unregistering
)
883 else if (!set
->is_seen
)
886 res
= set
->is_seen(set
);
887 spin_unlock(&sysctl_lock
);
891 static int proc_sys_compare(const struct dentry
*dentry
,
892 unsigned int len
, const char *str
, const struct qstr
*name
)
894 struct ctl_table_header
*head
;
897 /* Although proc doesn't have negative dentries, rcu-walk means
898 * that inode here can be NULL */
899 /* AV: can it, indeed? */
900 inode
= d_inode_rcu(dentry
);
903 if (name
->len
!= len
)
905 if (memcmp(name
->name
, str
, len
))
907 head
= rcu_dereference(PROC_I(inode
)->sysctl
);
908 return !head
|| !sysctl_is_seen(head
);
911 static const struct dentry_operations proc_sys_dentry_operations
= {
912 .d_revalidate
= proc_sys_revalidate
,
913 .d_delete
= proc_sys_delete
,
914 .d_compare
= proc_sys_compare
,
917 static struct ctl_dir
*find_subdir(struct ctl_dir
*dir
,
918 const char *name
, int namelen
)
920 struct ctl_table_header
*head
;
921 struct ctl_table
*entry
;
923 entry
= find_entry(&head
, dir
, name
, namelen
);
925 return ERR_PTR(-ENOENT
);
926 if (!S_ISDIR(entry
->mode
))
927 return ERR_PTR(-ENOTDIR
);
928 return container_of(head
, struct ctl_dir
, header
);
931 static struct ctl_dir
*new_dir(struct ctl_table_set
*set
,
932 const char *name
, int namelen
)
934 struct ctl_table
*table
;
936 struct ctl_node
*node
;
939 new = kzalloc(sizeof(*new) + sizeof(struct ctl_node
) +
940 sizeof(struct ctl_table
)*2 + namelen
+ 1,
945 node
= (struct ctl_node
*)(new + 1);
946 table
= (struct ctl_table
*)(node
+ 1);
947 new_name
= (char *)(table
+ 2);
948 memcpy(new_name
, name
, namelen
);
949 new_name
[namelen
] = '\0';
950 table
[0].procname
= new_name
;
951 table
[0].mode
= S_IFDIR
|S_IRUGO
|S_IXUGO
;
952 init_header(&new->header
, set
->dir
.header
.root
, set
, node
, table
);
958 * get_subdir - find or create a subdir with the specified name.
959 * @dir: Directory to create the subdirectory in
960 * @name: The name of the subdirectory to find or create
961 * @namelen: The length of name
963 * Takes a directory with an elevated reference count so we know that
964 * if we drop the lock the directory will not go away. Upon success
965 * the reference is moved from @dir to the returned subdirectory.
966 * Upon error an error code is returned and the reference on @dir is
969 static struct ctl_dir
*get_subdir(struct ctl_dir
*dir
,
970 const char *name
, int namelen
)
972 struct ctl_table_set
*set
= dir
->header
.set
;
973 struct ctl_dir
*subdir
, *new = NULL
;
976 spin_lock(&sysctl_lock
);
977 subdir
= find_subdir(dir
, name
, namelen
);
980 if (PTR_ERR(subdir
) != -ENOENT
)
983 spin_unlock(&sysctl_lock
);
984 new = new_dir(set
, name
, namelen
);
985 spin_lock(&sysctl_lock
);
986 subdir
= ERR_PTR(-ENOMEM
);
990 /* Was the subdir added while we dropped the lock? */
991 subdir
= find_subdir(dir
, name
, namelen
);
994 if (PTR_ERR(subdir
) != -ENOENT
)
997 /* Nope. Use the our freshly made directory entry. */
998 err
= insert_header(dir
, &new->header
);
999 subdir
= ERR_PTR(err
);
1004 subdir
->header
.nreg
++;
1006 if (IS_ERR(subdir
)) {
1007 pr_err("sysctl could not get directory: ");
1008 sysctl_print_dir(dir
);
1009 pr_cont("/%*.*s %ld\n",
1010 namelen
, namelen
, name
, PTR_ERR(subdir
));
1012 drop_sysctl_table(&dir
->header
);
1014 drop_sysctl_table(&new->header
);
1015 spin_unlock(&sysctl_lock
);
1019 static struct ctl_dir
*xlate_dir(struct ctl_table_set
*set
, struct ctl_dir
*dir
)
1021 struct ctl_dir
*parent
;
1022 const char *procname
;
1023 if (!dir
->header
.parent
)
1025 parent
= xlate_dir(set
, dir
->header
.parent
);
1028 procname
= dir
->header
.ctl_table
[0].procname
;
1029 return find_subdir(parent
, procname
, strlen(procname
));
1032 static int sysctl_follow_link(struct ctl_table_header
**phead
,
1033 struct ctl_table
**pentry
)
1035 struct ctl_table_header
*head
;
1036 struct ctl_table_root
*root
;
1037 struct ctl_table_set
*set
;
1038 struct ctl_table
*entry
;
1039 struct ctl_dir
*dir
;
1043 spin_lock(&sysctl_lock
);
1044 root
= (*pentry
)->data
;
1045 set
= lookup_header_set(root
);
1046 dir
= xlate_dir(set
, (*phead
)->parent
);
1050 const char *procname
= (*pentry
)->procname
;
1052 entry
= find_entry(&head
, dir
, procname
, strlen(procname
));
1054 if (entry
&& use_table(head
)) {
1055 unuse_table(*phead
);
1062 spin_unlock(&sysctl_lock
);
1066 static int sysctl_err(const char *path
, struct ctl_table
*table
, char *fmt
, ...)
1068 struct va_format vaf
;
1071 va_start(args
, fmt
);
1075 pr_err("sysctl table check failed: %s/%s %pV\n",
1076 path
, table
->procname
, &vaf
);
1082 static int sysctl_check_table_array(const char *path
, struct ctl_table
*table
)
1086 if ((table
->proc_handler
== proc_douintvec
) ||
1087 (table
->proc_handler
== proc_douintvec_minmax
)) {
1088 if (table
->maxlen
!= sizeof(unsigned int))
1089 err
|= sysctl_err(path
, table
, "array not allowed");
1095 static int sysctl_check_table(const char *path
, struct ctl_table
*table
)
1098 for (; table
->procname
; table
++) {
1100 err
|= sysctl_err(path
, table
, "Not a file");
1102 if ((table
->proc_handler
== proc_dostring
) ||
1103 (table
->proc_handler
== proc_dointvec
) ||
1104 (table
->proc_handler
== proc_douintvec
) ||
1105 (table
->proc_handler
== proc_douintvec_minmax
) ||
1106 (table
->proc_handler
== proc_dointvec_minmax
) ||
1107 (table
->proc_handler
== proc_dointvec_jiffies
) ||
1108 (table
->proc_handler
== proc_dointvec_userhz_jiffies
) ||
1109 (table
->proc_handler
== proc_dointvec_ms_jiffies
) ||
1110 (table
->proc_handler
== proc_doulongvec_minmax
) ||
1111 (table
->proc_handler
== proc_doulongvec_ms_jiffies_minmax
)) {
1113 err
|= sysctl_err(path
, table
, "No data");
1115 err
|= sysctl_err(path
, table
, "No maxlen");
1117 err
|= sysctl_check_table_array(path
, table
);
1119 if (!table
->proc_handler
)
1120 err
|= sysctl_err(path
, table
, "No proc_handler");
1122 if ((table
->mode
& (S_IRUGO
|S_IWUGO
)) != table
->mode
)
1123 err
|= sysctl_err(path
, table
, "bogus .mode 0%o",
1129 static struct ctl_table_header
*new_links(struct ctl_dir
*dir
, struct ctl_table
*table
,
1130 struct ctl_table_root
*link_root
)
1132 struct ctl_table
*link_table
, *entry
, *link
;
1133 struct ctl_table_header
*links
;
1134 struct ctl_node
*node
;
1136 int nr_entries
, name_bytes
;
1140 for (entry
= table
; entry
->procname
; entry
++) {
1142 name_bytes
+= strlen(entry
->procname
) + 1;
1145 links
= kzalloc(sizeof(struct ctl_table_header
) +
1146 sizeof(struct ctl_node
)*nr_entries
+
1147 sizeof(struct ctl_table
)*(nr_entries
+ 1) +
1154 node
= (struct ctl_node
*)(links
+ 1);
1155 link_table
= (struct ctl_table
*)(node
+ nr_entries
);
1156 link_name
= (char *)&link_table
[nr_entries
+ 1];
1158 for (link
= link_table
, entry
= table
; entry
->procname
; link
++, entry
++) {
1159 int len
= strlen(entry
->procname
) + 1;
1160 memcpy(link_name
, entry
->procname
, len
);
1161 link
->procname
= link_name
;
1162 link
->mode
= S_IFLNK
|S_IRWXUGO
;
1163 link
->data
= link_root
;
1166 init_header(links
, dir
->header
.root
, dir
->header
.set
, node
, link_table
);
1167 links
->nreg
= nr_entries
;
1172 static bool get_links(struct ctl_dir
*dir
,
1173 struct ctl_table
*table
, struct ctl_table_root
*link_root
)
1175 struct ctl_table_header
*head
;
1176 struct ctl_table
*entry
, *link
;
1178 /* Are there links available for every entry in table? */
1179 for (entry
= table
; entry
->procname
; entry
++) {
1180 const char *procname
= entry
->procname
;
1181 link
= find_entry(&head
, dir
, procname
, strlen(procname
));
1184 if (S_ISDIR(link
->mode
) && S_ISDIR(entry
->mode
))
1186 if (S_ISLNK(link
->mode
) && (link
->data
== link_root
))
1191 /* The checks passed. Increase the registration count on the links */
1192 for (entry
= table
; entry
->procname
; entry
++) {
1193 const char *procname
= entry
->procname
;
1194 link
= find_entry(&head
, dir
, procname
, strlen(procname
));
1200 static int insert_links(struct ctl_table_header
*head
)
1202 struct ctl_table_set
*root_set
= &sysctl_table_root
.default_set
;
1203 struct ctl_dir
*core_parent
= NULL
;
1204 struct ctl_table_header
*links
;
1207 if (head
->set
== root_set
)
1210 core_parent
= xlate_dir(root_set
, head
->parent
);
1211 if (IS_ERR(core_parent
))
1214 if (get_links(core_parent
, head
->ctl_table
, head
->root
))
1217 core_parent
->header
.nreg
++;
1218 spin_unlock(&sysctl_lock
);
1220 links
= new_links(core_parent
, head
->ctl_table
, head
->root
);
1222 spin_lock(&sysctl_lock
);
1228 if (get_links(core_parent
, head
->ctl_table
, head
->root
)) {
1233 err
= insert_header(core_parent
, links
);
1237 drop_sysctl_table(&core_parent
->header
);
1242 * __register_sysctl_table - register a leaf sysctl table
1243 * @set: Sysctl tree to register on
1244 * @path: The path to the directory the sysctl table is in.
1245 * @table: the top-level table structure
1247 * Register a sysctl table hierarchy. @table should be a filled in ctl_table
1248 * array. A completely 0 filled entry terminates the table.
1250 * The members of the &struct ctl_table structure are used as follows:
1252 * procname - the name of the sysctl file under /proc/sys. Set to %NULL to not
1253 * enter a sysctl file
1255 * data - a pointer to data for use by proc_handler
1257 * maxlen - the maximum size in bytes of the data
1259 * mode - the file permissions for the /proc/sys file
1261 * child - must be %NULL.
1263 * proc_handler - the text handler routine (described below)
1265 * extra1, extra2 - extra pointers usable by the proc handler routines
1267 * Leaf nodes in the sysctl tree will be represented by a single file
1268 * under /proc; non-leaf nodes will be represented by directories.
1270 * There must be a proc_handler routine for any terminal nodes.
1271 * Several default handlers are available to cover common cases -
1273 * proc_dostring(), proc_dointvec(), proc_dointvec_jiffies(),
1274 * proc_dointvec_userhz_jiffies(), proc_dointvec_minmax(),
1275 * proc_doulongvec_ms_jiffies_minmax(), proc_doulongvec_minmax()
1277 * It is the handler's job to read the input buffer from user memory
1278 * and process it. The handler should return 0 on success.
1280 * This routine returns %NULL on a failure to register, and a pointer
1281 * to the table header on success.
1283 struct ctl_table_header
*__register_sysctl_table(
1284 struct ctl_table_set
*set
,
1285 const char *path
, struct ctl_table
*table
)
1287 struct ctl_table_root
*root
= set
->dir
.header
.root
;
1288 struct ctl_table_header
*header
;
1289 const char *name
, *nextname
;
1290 struct ctl_dir
*dir
;
1291 struct ctl_table
*entry
;
1292 struct ctl_node
*node
;
1295 for (entry
= table
; entry
->procname
; entry
++)
1298 header
= kzalloc(sizeof(struct ctl_table_header
) +
1299 sizeof(struct ctl_node
)*nr_entries
, GFP_KERNEL
);
1303 node
= (struct ctl_node
*)(header
+ 1);
1304 init_header(header
, root
, set
, node
, table
);
1305 if (sysctl_check_table(path
, table
))
1308 spin_lock(&sysctl_lock
);
1310 /* Reference moved down the diretory tree get_subdir */
1312 spin_unlock(&sysctl_lock
);
1314 /* Find the directory for the ctl_table */
1315 for (name
= path
; name
; name
= nextname
) {
1317 nextname
= strchr(name
, '/');
1319 namelen
= nextname
- name
;
1322 namelen
= strlen(name
);
1327 dir
= get_subdir(dir
, name
, namelen
);
1332 spin_lock(&sysctl_lock
);
1333 if (insert_header(dir
, header
))
1334 goto fail_put_dir_locked
;
1336 drop_sysctl_table(&dir
->header
);
1337 spin_unlock(&sysctl_lock
);
1341 fail_put_dir_locked
:
1342 drop_sysctl_table(&dir
->header
);
1343 spin_unlock(&sysctl_lock
);
1351 * register_sysctl - register a sysctl table
1352 * @path: The path to the directory the sysctl table is in.
1353 * @table: the table structure
1355 * Register a sysctl table. @table should be a filled in ctl_table
1356 * array. A completely 0 filled entry terminates the table.
1358 * See __register_sysctl_table for more details.
1360 struct ctl_table_header
*register_sysctl(const char *path
, struct ctl_table
*table
)
1362 return __register_sysctl_table(&sysctl_table_root
.default_set
,
1365 EXPORT_SYMBOL(register_sysctl
);
1367 static char *append_path(const char *path
, char *pos
, const char *name
)
1370 namelen
= strlen(name
);
1371 if (((pos
- path
) + namelen
+ 2) >= PATH_MAX
)
1373 memcpy(pos
, name
, namelen
);
1375 pos
[namelen
+ 1] = '\0';
1380 static int count_subheaders(struct ctl_table
*table
)
1383 int nr_subheaders
= 0;
1384 struct ctl_table
*entry
;
1386 /* special case: no directory and empty directory */
1387 if (!table
|| !table
->procname
)
1390 for (entry
= table
; entry
->procname
; entry
++) {
1392 nr_subheaders
+= count_subheaders(entry
->child
);
1396 return nr_subheaders
+ has_files
;
1399 static int register_leaf_sysctl_tables(const char *path
, char *pos
,
1400 struct ctl_table_header
***subheader
, struct ctl_table_set
*set
,
1401 struct ctl_table
*table
)
1403 struct ctl_table
*ctl_table_arg
= NULL
;
1404 struct ctl_table
*entry
, *files
;
1409 for (entry
= table
; entry
->procname
; entry
++) {
1417 /* If there are mixed files and directories we need a new table */
1418 if (nr_dirs
&& nr_files
) {
1419 struct ctl_table
*new;
1420 files
= kcalloc(nr_files
+ 1, sizeof(struct ctl_table
),
1425 ctl_table_arg
= files
;
1426 for (new = files
, entry
= table
; entry
->procname
; entry
++) {
1434 /* Register everything except a directory full of subdirectories */
1435 if (nr_files
|| !nr_dirs
) {
1436 struct ctl_table_header
*header
;
1437 header
= __register_sysctl_table(set
, path
, files
);
1439 kfree(ctl_table_arg
);
1443 /* Remember if we need to free the file table */
1444 header
->ctl_table_arg
= ctl_table_arg
;
1445 **subheader
= header
;
1449 /* Recurse into the subdirectories. */
1450 for (entry
= table
; entry
->procname
; entry
++) {
1456 err
= -ENAMETOOLONG
;
1457 child_pos
= append_path(path
, pos
, entry
->procname
);
1461 err
= register_leaf_sysctl_tables(path
, child_pos
, subheader
,
1469 /* On failure our caller will unregister all registered subheaders */
1474 * __register_sysctl_paths - register a sysctl table hierarchy
1475 * @set: Sysctl tree to register on
1476 * @path: The path to the directory the sysctl table is in.
1477 * @table: the top-level table structure
1479 * Register a sysctl table hierarchy. @table should be a filled in ctl_table
1480 * array. A completely 0 filled entry terminates the table.
1482 * See __register_sysctl_table for more details.
1484 struct ctl_table_header
*__register_sysctl_paths(
1485 struct ctl_table_set
*set
,
1486 const struct ctl_path
*path
, struct ctl_table
*table
)
1488 struct ctl_table
*ctl_table_arg
= table
;
1489 int nr_subheaders
= count_subheaders(table
);
1490 struct ctl_table_header
*header
= NULL
, **subheaders
, **subheader
;
1491 const struct ctl_path
*component
;
1492 char *new_path
, *pos
;
1494 pos
= new_path
= kmalloc(PATH_MAX
, GFP_KERNEL
);
1499 for (component
= path
; component
->procname
; component
++) {
1500 pos
= append_path(new_path
, pos
, component
->procname
);
1504 while (table
->procname
&& table
->child
&& !table
[1].procname
) {
1505 pos
= append_path(new_path
, pos
, table
->procname
);
1508 table
= table
->child
;
1510 if (nr_subheaders
== 1) {
1511 header
= __register_sysctl_table(set
, new_path
, table
);
1513 header
->ctl_table_arg
= ctl_table_arg
;
1515 header
= kzalloc(sizeof(*header
) +
1516 sizeof(*subheaders
)*nr_subheaders
, GFP_KERNEL
);
1520 subheaders
= (struct ctl_table_header
**) (header
+ 1);
1521 subheader
= subheaders
;
1522 header
->ctl_table_arg
= ctl_table_arg
;
1524 if (register_leaf_sysctl_tables(new_path
, pos
, &subheader
,
1526 goto err_register_leaves
;
1533 err_register_leaves
:
1534 while (subheader
> subheaders
) {
1535 struct ctl_table_header
*subh
= *(--subheader
);
1536 struct ctl_table
*table
= subh
->ctl_table_arg
;
1537 unregister_sysctl_table(subh
);
1546 * register_sysctl_table_path - register a sysctl table hierarchy
1547 * @path: The path to the directory the sysctl table is in.
1548 * @table: the top-level table structure
1550 * Register a sysctl table hierarchy. @table should be a filled in ctl_table
1551 * array. A completely 0 filled entry terminates the table.
1553 * See __register_sysctl_paths for more details.
1555 struct ctl_table_header
*register_sysctl_paths(const struct ctl_path
*path
,
1556 struct ctl_table
*table
)
1558 return __register_sysctl_paths(&sysctl_table_root
.default_set
,
1561 EXPORT_SYMBOL(register_sysctl_paths
);
1564 * register_sysctl_table - register a sysctl table hierarchy
1565 * @table: the top-level table structure
1567 * Register a sysctl table hierarchy. @table should be a filled in ctl_table
1568 * array. A completely 0 filled entry terminates the table.
1570 * See register_sysctl_paths for more details.
1572 struct ctl_table_header
*register_sysctl_table(struct ctl_table
*table
)
1574 static const struct ctl_path null_path
[] = { {} };
1576 return register_sysctl_paths(null_path
, table
);
1578 EXPORT_SYMBOL(register_sysctl_table
);
1580 static void put_links(struct ctl_table_header
*header
)
1582 struct ctl_table_set
*root_set
= &sysctl_table_root
.default_set
;
1583 struct ctl_table_root
*root
= header
->root
;
1584 struct ctl_dir
*parent
= header
->parent
;
1585 struct ctl_dir
*core_parent
;
1586 struct ctl_table
*entry
;
1588 if (header
->set
== root_set
)
1591 core_parent
= xlate_dir(root_set
, parent
);
1592 if (IS_ERR(core_parent
))
1595 for (entry
= header
->ctl_table
; entry
->procname
; entry
++) {
1596 struct ctl_table_header
*link_head
;
1597 struct ctl_table
*link
;
1598 const char *name
= entry
->procname
;
1600 link
= find_entry(&link_head
, core_parent
, name
, strlen(name
));
1602 ((S_ISDIR(link
->mode
) && S_ISDIR(entry
->mode
)) ||
1603 (S_ISLNK(link
->mode
) && (link
->data
== root
)))) {
1604 drop_sysctl_table(link_head
);
1607 pr_err("sysctl link missing during unregister: ");
1608 sysctl_print_dir(parent
);
1609 pr_cont("/%s\n", name
);
1614 static void drop_sysctl_table(struct ctl_table_header
*header
)
1616 struct ctl_dir
*parent
= header
->parent
;
1623 start_unregistering(header
);
1626 if (!--header
->count
)
1627 kfree_rcu(header
, rcu
);
1630 drop_sysctl_table(&parent
->header
);
1634 * unregister_sysctl_table - unregister a sysctl table hierarchy
1635 * @header: the header returned from register_sysctl_table
1637 * Unregisters the sysctl table and all children. proc entries may not
1638 * actually be removed until they are no longer used by anyone.
1640 void unregister_sysctl_table(struct ctl_table_header
* header
)
1648 nr_subheaders
= count_subheaders(header
->ctl_table_arg
);
1649 if (unlikely(nr_subheaders
> 1)) {
1650 struct ctl_table_header
**subheaders
;
1653 subheaders
= (struct ctl_table_header
**)(header
+ 1);
1654 for (i
= nr_subheaders
-1; i
>= 0; i
--) {
1655 struct ctl_table_header
*subh
= subheaders
[i
];
1656 struct ctl_table
*table
= subh
->ctl_table_arg
;
1657 unregister_sysctl_table(subh
);
1664 spin_lock(&sysctl_lock
);
1665 drop_sysctl_table(header
);
1666 spin_unlock(&sysctl_lock
);
1668 EXPORT_SYMBOL(unregister_sysctl_table
);
1670 void setup_sysctl_set(struct ctl_table_set
*set
,
1671 struct ctl_table_root
*root
,
1672 int (*is_seen
)(struct ctl_table_set
*))
1674 memset(set
, 0, sizeof(*set
));
1675 set
->is_seen
= is_seen
;
1676 init_header(&set
->dir
.header
, root
, set
, NULL
, root_table
);
1679 void retire_sysctl_set(struct ctl_table_set
*set
)
1681 WARN_ON(!RB_EMPTY_ROOT(&set
->dir
.root
));
1684 int __init
proc_sys_init(void)
1686 struct proc_dir_entry
*proc_sys_root
;
1688 proc_sys_root
= proc_mkdir("sys", NULL
);
1689 proc_sys_root
->proc_iops
= &proc_sys_dir_operations
;
1690 proc_sys_root
->proc_dir_ops
= &proc_sys_dir_file_operations
;
1691 proc_sys_root
->nlink
= 0;
1693 return sysctl_init();