4 * Copyright (c) International Business Machines Corp., 2003, 2007
5 * Author(s): Steve French (sfrench@us.ibm.com)
7 * This library is free software; you can redistribute it and/or modify
8 * it under the terms of the GNU Lesser General Public License as published
9 * by the Free Software Foundation; either version 2.1 of the License, or
10 * (at your option) any later version.
12 * This library is distributed in the hope that it will be useful,
13 * but WITHOUT ANY WARRANTY; without even the implied warranty of
14 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See
15 * the GNU Lesser General Public License for more details.
17 * You should have received a copy of the GNU Lesser General Public License
18 * along with this library; if not, write to the Free Software
19 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
23 #include <linux/posix_acl_xattr.h>
24 #include <linux/slab.h>
25 #include <linux/xattr.h>
29 #include "cifsproto.h"
30 #include "cifs_debug.h"
31 #include "cifs_fs_sb.h"
32 #include "cifs_unicode.h"
34 #define MAX_EA_VALUE_SIZE 65535
35 #define CIFS_XATTR_CIFS_ACL "system.cifs_acl"
36 #define CIFS_XATTR_ATTRIB "cifs.dosattrib" /* full name: user.cifs.dosattrib */
37 #define CIFS_XATTR_CREATETIME "cifs.creationtime" /* user.cifs.creationtime */
39 * Although these three are just aliases for the above, need to move away from
40 * confusing users and using the 20+ year old term 'cifs' when it is no longer
41 * secure, replaced by SMB2 (then even more highly secure SMB3) many years ago
43 #define SMB3_XATTR_CIFS_ACL "system.smb3_acl"
44 #define SMB3_XATTR_ATTRIB "smb3.dosattrib" /* full name: user.smb3.dosattrib */
45 #define SMB3_XATTR_CREATETIME "smb3.creationtime" /* user.smb3.creationtime */
46 /* BB need to add server (Samba e.g) support for security and trusted prefix */
48 enum { XATTR_USER
, XATTR_CIFS_ACL
, XATTR_ACL_ACCESS
, XATTR_ACL_DEFAULT
};
50 static int cifs_xattr_set(const struct xattr_handler
*handler
,
51 struct dentry
*dentry
, struct inode
*inode
,
52 const char *name
, const void *value
,
53 size_t size
, int flags
)
57 struct super_block
*sb
= dentry
->d_sb
;
58 struct cifs_sb_info
*cifs_sb
= CIFS_SB(sb
);
59 struct tcon_link
*tlink
;
60 struct cifs_tcon
*pTcon
;
63 tlink
= cifs_sb_tlink(cifs_sb
);
65 return PTR_ERR(tlink
);
66 pTcon
= tlink_tcon(tlink
);
70 full_path
= build_path_from_dentry(dentry
);
71 if (full_path
== NULL
) {
75 /* return dos attributes as pseudo xattr */
76 /* return alt name if available as pseudo attr */
78 /* if proc/fs/cifs/streamstoxattr is set then
79 search server for EAs or streams to
81 if (size
> MAX_EA_VALUE_SIZE
) {
82 cifs_dbg(FYI
, "size of EA value too large\n");
87 switch (handler
->flags
) {
89 if (cifs_sb
->mnt_cifs_flags
& CIFS_MOUNT_NO_XATTR
)
92 if (pTcon
->ses
->server
->ops
->set_EA
)
93 rc
= pTcon
->ses
->server
->ops
->set_EA(xid
, pTcon
,
94 full_path
, name
, value
, (__u16
)size
,
95 cifs_sb
->local_nls
, cifs_sb
);
98 case XATTR_CIFS_ACL
: {
99 #ifdef CONFIG_CIFS_ACL
100 struct cifs_ntsd
*pacl
;
104 pacl
= kmalloc(size
, GFP_KERNEL
);
108 memcpy(pacl
, value
, size
);
110 pTcon
->ses
->server
->ops
->set_acl
)
111 rc
= pTcon
->ses
->server
->ops
->set_acl(pacl
,
113 full_path
, CIFS_ACL_DACL
);
116 if (rc
== 0) /* force revalidate of the inode */
117 CIFS_I(inode
)->time
= 0;
120 #endif /* CONFIG_CIFS_ACL */
124 case XATTR_ACL_ACCESS
:
125 #ifdef CONFIG_CIFS_POSIX
128 if (sb
->s_flags
& SB_POSIXACL
)
129 rc
= CIFSSMBSetPosixACL(xid
, pTcon
, full_path
,
130 value
, (const int)size
,
131 ACL_TYPE_ACCESS
, cifs_sb
->local_nls
,
132 cifs_remap(cifs_sb
));
133 #endif /* CONFIG_CIFS_POSIX */
136 case XATTR_ACL_DEFAULT
:
137 #ifdef CONFIG_CIFS_POSIX
140 if (sb
->s_flags
& SB_POSIXACL
)
141 rc
= CIFSSMBSetPosixACL(xid
, pTcon
, full_path
,
142 value
, (const int)size
,
143 ACL_TYPE_DEFAULT
, cifs_sb
->local_nls
,
144 cifs_remap(cifs_sb
));
145 #endif /* CONFIG_CIFS_POSIX */
152 cifs_put_tlink(tlink
);
156 static int cifs_attrib_get(struct dentry
*dentry
,
157 struct inode
*inode
, void *value
,
163 rc
= cifs_revalidate_dentry_attr(dentry
);
168 if ((value
== NULL
) || (size
== 0))
169 return sizeof(__u32
);
170 else if (size
< sizeof(__u32
))
173 /* return dos attributes as pseudo xattr */
174 pattribute
= (__u32
*)value
;
175 *pattribute
= CIFS_I(inode
)->cifsAttrs
;
177 return sizeof(__u32
);
180 static int cifs_creation_time_get(struct dentry
*dentry
, struct inode
*inode
,
181 void *value
, size_t size
)
186 rc
= cifs_revalidate_dentry_attr(dentry
);
190 if ((value
== NULL
) || (size
== 0))
191 return sizeof(__u64
);
192 else if (size
< sizeof(__u64
))
195 /* return dos attributes as pseudo xattr */
196 pcreatetime
= (__u64
*)value
;
197 *pcreatetime
= CIFS_I(inode
)->createtime
;
198 return sizeof(__u64
);
202 static int cifs_xattr_get(const struct xattr_handler
*handler
,
203 struct dentry
*dentry
, struct inode
*inode
,
204 const char *name
, void *value
, size_t size
)
206 ssize_t rc
= -EOPNOTSUPP
;
208 struct super_block
*sb
= dentry
->d_sb
;
209 struct cifs_sb_info
*cifs_sb
= CIFS_SB(sb
);
210 struct tcon_link
*tlink
;
211 struct cifs_tcon
*pTcon
;
214 tlink
= cifs_sb_tlink(cifs_sb
);
216 return PTR_ERR(tlink
);
217 pTcon
= tlink_tcon(tlink
);
221 full_path
= build_path_from_dentry(dentry
);
222 if (full_path
== NULL
) {
227 /* return alt name if available as pseudo attr */
228 switch (handler
->flags
) {
230 cifs_dbg(FYI
, "%s:querying user xattr %s\n", __func__
, name
);
231 if ((strcmp(name
, CIFS_XATTR_ATTRIB
) == 0) ||
232 (strcmp(name
, SMB3_XATTR_ATTRIB
) == 0)) {
233 rc
= cifs_attrib_get(dentry
, inode
, value
, size
);
235 } else if ((strcmp(name
, CIFS_XATTR_CREATETIME
) == 0) ||
236 (strcmp(name
, SMB3_XATTR_CREATETIME
) == 0)) {
237 rc
= cifs_creation_time_get(dentry
, inode
, value
, size
);
241 if (cifs_sb
->mnt_cifs_flags
& CIFS_MOUNT_NO_XATTR
)
244 if (pTcon
->ses
->server
->ops
->query_all_EAs
)
245 rc
= pTcon
->ses
->server
->ops
->query_all_EAs(xid
, pTcon
,
246 full_path
, name
, value
, size
, cifs_sb
);
249 case XATTR_CIFS_ACL
: {
250 #ifdef CONFIG_CIFS_ACL
252 struct cifs_ntsd
*pacl
;
254 if (pTcon
->ses
->server
->ops
->get_acl
== NULL
)
255 goto out
; /* rc already EOPNOTSUPP */
257 pacl
= pTcon
->ses
->server
->ops
->get_acl(cifs_sb
,
258 inode
, full_path
, &acllen
);
261 cifs_dbg(VFS
, "%s: error %zd getting sec desc\n",
268 memcpy(value
, pacl
, acllen
);
273 #endif /* CONFIG_CIFS_ACL */
277 case XATTR_ACL_ACCESS
:
278 #ifdef CONFIG_CIFS_POSIX
279 if (sb
->s_flags
& SB_POSIXACL
)
280 rc
= CIFSSMBGetPosixACL(xid
, pTcon
, full_path
,
281 value
, size
, ACL_TYPE_ACCESS
,
283 cifs_remap(cifs_sb
));
284 #endif /* CONFIG_CIFS_POSIX */
287 case XATTR_ACL_DEFAULT
:
288 #ifdef CONFIG_CIFS_POSIX
289 if (sb
->s_flags
& SB_POSIXACL
)
290 rc
= CIFSSMBGetPosixACL(xid
, pTcon
, full_path
,
291 value
, size
, ACL_TYPE_DEFAULT
,
293 cifs_remap(cifs_sb
));
294 #endif /* CONFIG_CIFS_POSIX */
298 /* We could add an additional check for streams ie
299 if proc/fs/cifs/streamstoxattr is set then
300 search server for EAs or streams to
309 cifs_put_tlink(tlink
);
313 ssize_t
cifs_listxattr(struct dentry
*direntry
, char *data
, size_t buf_size
)
315 ssize_t rc
= -EOPNOTSUPP
;
317 struct cifs_sb_info
*cifs_sb
= CIFS_SB(direntry
->d_sb
);
318 struct tcon_link
*tlink
;
319 struct cifs_tcon
*pTcon
;
322 if (cifs_sb
->mnt_cifs_flags
& CIFS_MOUNT_NO_XATTR
)
325 tlink
= cifs_sb_tlink(cifs_sb
);
327 return PTR_ERR(tlink
);
328 pTcon
= tlink_tcon(tlink
);
332 full_path
= build_path_from_dentry(direntry
);
333 if (full_path
== NULL
) {
337 /* return dos attributes as pseudo xattr */
338 /* return alt name if available as pseudo attr */
340 /* if proc/fs/cifs/streamstoxattr is set then
341 search server for EAs or streams to
344 if (pTcon
->ses
->server
->ops
->query_all_EAs
)
345 rc
= pTcon
->ses
->server
->ops
->query_all_EAs(xid
, pTcon
,
346 full_path
, NULL
, data
, buf_size
, cifs_sb
);
350 cifs_put_tlink(tlink
);
354 static const struct xattr_handler cifs_user_xattr_handler
= {
355 .prefix
= XATTR_USER_PREFIX
,
357 .get
= cifs_xattr_get
,
358 .set
= cifs_xattr_set
,
361 /* os2.* attributes are treated like user.* attributes */
362 static const struct xattr_handler cifs_os2_xattr_handler
= {
363 .prefix
= XATTR_OS2_PREFIX
,
365 .get
= cifs_xattr_get
,
366 .set
= cifs_xattr_set
,
369 static const struct xattr_handler cifs_cifs_acl_xattr_handler
= {
370 .name
= CIFS_XATTR_CIFS_ACL
,
371 .flags
= XATTR_CIFS_ACL
,
372 .get
= cifs_xattr_get
,
373 .set
= cifs_xattr_set
,
377 * Although this is just an alias for the above, need to move away from
378 * confusing users and using the 20 year old term 'cifs' when it is no
379 * longer secure and was replaced by SMB2/SMB3 a long time ago, and
380 * SMB3 and later are highly secure.
382 static const struct xattr_handler smb3_acl_xattr_handler
= {
383 .name
= SMB3_XATTR_CIFS_ACL
,
384 .flags
= XATTR_CIFS_ACL
,
385 .get
= cifs_xattr_get
,
386 .set
= cifs_xattr_set
,
389 static const struct xattr_handler cifs_posix_acl_access_xattr_handler
= {
390 .name
= XATTR_NAME_POSIX_ACL_ACCESS
,
391 .flags
= XATTR_ACL_ACCESS
,
392 .get
= cifs_xattr_get
,
393 .set
= cifs_xattr_set
,
396 static const struct xattr_handler cifs_posix_acl_default_xattr_handler
= {
397 .name
= XATTR_NAME_POSIX_ACL_DEFAULT
,
398 .flags
= XATTR_ACL_DEFAULT
,
399 .get
= cifs_xattr_get
,
400 .set
= cifs_xattr_set
,
403 const struct xattr_handler
*cifs_xattr_handlers
[] = {
404 &cifs_user_xattr_handler
,
405 &cifs_os2_xattr_handler
,
406 &cifs_cifs_acl_xattr_handler
,
407 &smb3_acl_xattr_handler
, /* alias for above since avoiding "cifs" */
408 &cifs_posix_acl_access_xattr_handler
,
409 &cifs_posix_acl_default_xattr_handler
,