1 #include <linux/fanotify.h>
2 #include <linux/fdtable.h>
3 #include <linux/fsnotify_backend.h>
4 #include <linux/init.h>
5 #include <linux/jiffies.h>
6 #include <linux/kernel.h> /* UINT_MAX */
7 #include <linux/mount.h>
8 #include <linux/sched.h>
9 #include <linux/sched/user.h>
10 #include <linux/types.h>
11 #include <linux/wait.h>
15 static bool should_merge(struct fsnotify_event
*old_fsn
,
16 struct fsnotify_event
*new_fsn
)
18 struct fanotify_event_info
*old
, *new;
20 pr_debug("%s: old=%p new=%p\n", __func__
, old_fsn
, new_fsn
);
21 old
= FANOTIFY_E(old_fsn
);
22 new = FANOTIFY_E(new_fsn
);
24 if (old_fsn
->inode
== new_fsn
->inode
&& old
->tgid
== new->tgid
&&
25 old
->path
.mnt
== new->path
.mnt
&&
26 old
->path
.dentry
== new->path
.dentry
)
31 /* and the list better be locked by something too! */
32 static int fanotify_merge(struct list_head
*list
, struct fsnotify_event
*event
)
34 struct fsnotify_event
*test_event
;
36 pr_debug("%s: list=%p event=%p\n", __func__
, list
, event
);
38 #ifdef CONFIG_FANOTIFY_ACCESS_PERMISSIONS
40 * Don't merge a permission event with any other event so that we know
41 * the event structure we have created in fanotify_handle_event() is the
42 * one we should check for permission response.
44 if (event
->mask
& FAN_ALL_PERM_EVENTS
)
48 list_for_each_entry_reverse(test_event
, list
, list
) {
49 if (should_merge(test_event
, event
)) {
50 test_event
->mask
|= event
->mask
;
58 #ifdef CONFIG_FANOTIFY_ACCESS_PERMISSIONS
59 static int fanotify_get_response(struct fsnotify_group
*group
,
60 struct fanotify_perm_event_info
*event
,
61 struct fsnotify_iter_info
*iter_info
)
65 pr_debug("%s: group=%p event=%p\n", __func__
, group
, event
);
68 * fsnotify_prepare_user_wait() fails if we race with mark deletion.
69 * Just let the operation pass in that case.
71 if (!fsnotify_prepare_user_wait(iter_info
)) {
72 event
->response
= FAN_ALLOW
;
76 wait_event(group
->fanotify_data
.access_waitq
, event
->response
);
78 fsnotify_finish_user_wait(iter_info
);
80 /* userspace responded, convert to something usable */
81 switch (event
->response
) {
91 pr_debug("%s: group=%p event=%p about to return ret=%d\n", __func__
,
98 static bool fanotify_should_send_event(struct fsnotify_mark
*inode_mark
,
99 struct fsnotify_mark
*vfsmnt_mark
,
101 const void *data
, int data_type
)
103 __u32 marks_mask
, marks_ignored_mask
;
104 const struct path
*path
= data
;
106 pr_debug("%s: inode_mark=%p vfsmnt_mark=%p mask=%x data=%p"
107 " data_type=%d\n", __func__
, inode_mark
, vfsmnt_mark
,
108 event_mask
, data
, data_type
);
110 /* if we don't have enough info to send an event to userspace say no */
111 if (data_type
!= FSNOTIFY_EVENT_PATH
)
114 /* sorry, fanotify only gives a damn about files and dirs */
115 if (!d_is_reg(path
->dentry
) &&
116 !d_can_lookup(path
->dentry
))
119 if (inode_mark
&& vfsmnt_mark
) {
120 marks_mask
= (vfsmnt_mark
->mask
| inode_mark
->mask
);
121 marks_ignored_mask
= (vfsmnt_mark
->ignored_mask
| inode_mark
->ignored_mask
);
122 } else if (inode_mark
) {
124 * if the event is for a child and this inode doesn't care about
125 * events on the child, don't send it!
127 if ((event_mask
& FS_EVENT_ON_CHILD
) &&
128 !(inode_mark
->mask
& FS_EVENT_ON_CHILD
))
130 marks_mask
= inode_mark
->mask
;
131 marks_ignored_mask
= inode_mark
->ignored_mask
;
132 } else if (vfsmnt_mark
) {
133 marks_mask
= vfsmnt_mark
->mask
;
134 marks_ignored_mask
= vfsmnt_mark
->ignored_mask
;
139 if (d_is_dir(path
->dentry
) &&
140 !(marks_mask
& FS_ISDIR
& ~marks_ignored_mask
))
143 if (event_mask
& FAN_ALL_OUTGOING_EVENTS
& marks_mask
&
150 struct fanotify_event_info
*fanotify_alloc_event(struct inode
*inode
, u32 mask
,
151 const struct path
*path
)
153 struct fanotify_event_info
*event
;
155 #ifdef CONFIG_FANOTIFY_ACCESS_PERMISSIONS
156 if (mask
& FAN_ALL_PERM_EVENTS
) {
157 struct fanotify_perm_event_info
*pevent
;
159 pevent
= kmem_cache_alloc(fanotify_perm_event_cachep
,
163 event
= &pevent
->fae
;
164 pevent
->response
= 0;
168 event
= kmem_cache_alloc(fanotify_event_cachep
, GFP_KERNEL
);
172 fsnotify_init_event(&event
->fse
, inode
, mask
);
173 event
->tgid
= get_pid(task_tgid(current
));
176 path_get(&event
->path
);
178 event
->path
.mnt
= NULL
;
179 event
->path
.dentry
= NULL
;
184 static int fanotify_handle_event(struct fsnotify_group
*group
,
186 struct fsnotify_mark
*inode_mark
,
187 struct fsnotify_mark
*fanotify_mark
,
188 u32 mask
, const void *data
, int data_type
,
189 const unsigned char *file_name
, u32 cookie
,
190 struct fsnotify_iter_info
*iter_info
)
193 struct fanotify_event_info
*event
;
194 struct fsnotify_event
*fsn_event
;
196 BUILD_BUG_ON(FAN_ACCESS
!= FS_ACCESS
);
197 BUILD_BUG_ON(FAN_MODIFY
!= FS_MODIFY
);
198 BUILD_BUG_ON(FAN_CLOSE_NOWRITE
!= FS_CLOSE_NOWRITE
);
199 BUILD_BUG_ON(FAN_CLOSE_WRITE
!= FS_CLOSE_WRITE
);
200 BUILD_BUG_ON(FAN_OPEN
!= FS_OPEN
);
201 BUILD_BUG_ON(FAN_EVENT_ON_CHILD
!= FS_EVENT_ON_CHILD
);
202 BUILD_BUG_ON(FAN_Q_OVERFLOW
!= FS_Q_OVERFLOW
);
203 BUILD_BUG_ON(FAN_OPEN_PERM
!= FS_OPEN_PERM
);
204 BUILD_BUG_ON(FAN_ACCESS_PERM
!= FS_ACCESS_PERM
);
205 BUILD_BUG_ON(FAN_ONDIR
!= FS_ISDIR
);
207 if (!fanotify_should_send_event(inode_mark
, fanotify_mark
, mask
, data
,
211 pr_debug("%s: group=%p inode=%p mask=%x\n", __func__
, group
, inode
,
214 event
= fanotify_alloc_event(inode
, mask
, data
);
215 if (unlikely(!event
))
218 fsn_event
= &event
->fse
;
219 ret
= fsnotify_add_event(group
, fsn_event
, fanotify_merge
);
221 /* Permission events shouldn't be merged */
222 BUG_ON(ret
== 1 && mask
& FAN_ALL_PERM_EVENTS
);
223 /* Our event wasn't used in the end. Free it. */
224 fsnotify_destroy_event(group
, fsn_event
);
229 #ifdef CONFIG_FANOTIFY_ACCESS_PERMISSIONS
230 if (mask
& FAN_ALL_PERM_EVENTS
) {
231 ret
= fanotify_get_response(group
, FANOTIFY_PE(fsn_event
),
233 fsnotify_destroy_event(group
, fsn_event
);
239 static void fanotify_free_group_priv(struct fsnotify_group
*group
)
241 struct user_struct
*user
;
243 user
= group
->fanotify_data
.user
;
244 atomic_dec(&user
->fanotify_listeners
);
248 static void fanotify_free_event(struct fsnotify_event
*fsn_event
)
250 struct fanotify_event_info
*event
;
252 event
= FANOTIFY_E(fsn_event
);
253 path_put(&event
->path
);
254 put_pid(event
->tgid
);
255 #ifdef CONFIG_FANOTIFY_ACCESS_PERMISSIONS
256 if (fsn_event
->mask
& FAN_ALL_PERM_EVENTS
) {
257 kmem_cache_free(fanotify_perm_event_cachep
,
258 FANOTIFY_PE(fsn_event
));
262 kmem_cache_free(fanotify_event_cachep
, event
);
265 static void fanotify_free_mark(struct fsnotify_mark
*fsn_mark
)
267 kmem_cache_free(fanotify_mark_cache
, fsn_mark
);
270 const struct fsnotify_ops fanotify_fsnotify_ops
= {
271 .handle_event
= fanotify_handle_event
,
272 .free_group_priv
= fanotify_free_group_priv
,
273 .free_event
= fanotify_free_event
,
274 .free_mark
= fanotify_free_mark
,