ext4: remove unneeded file_remove_suid() from ext4_ioctl()
[pandora-kernel.git] / fs / ext4 / ioctl.c
1 /*
2  * linux/fs/ext4/ioctl.c
3  *
4  * Copyright (C) 1993, 1994, 1995
5  * Remy Card (card@masi.ibp.fr)
6  * Laboratoire MASI - Institut Blaise Pascal
7  * Universite Pierre et Marie Curie (Paris VI)
8  */
9
10 #include <linux/fs.h>
11 #include <linux/jbd2.h>
12 #include <linux/capability.h>
13 #include <linux/time.h>
14 #include <linux/compat.h>
15 #include <linux/mount.h>
16 #include <linux/file.h>
17 #include <asm/uaccess.h>
18 #include "ext4_jbd2.h"
19 #include "ext4.h"
20
21 long ext4_ioctl(struct file *filp, unsigned int cmd, unsigned long arg)
22 {
23         struct inode *inode = filp->f_dentry->d_inode;
24         struct super_block *sb = inode->i_sb;
25         struct ext4_inode_info *ei = EXT4_I(inode);
26         unsigned int flags;
27
28         ext4_debug("cmd = %u, arg = %lu\n", cmd, arg);
29
30         switch (cmd) {
31         case EXT4_IOC_GETFLAGS:
32                 ext4_get_inode_flags(ei);
33                 flags = ei->i_flags & EXT4_FL_USER_VISIBLE;
34                 return put_user(flags, (int __user *) arg);
35         case EXT4_IOC_SETFLAGS: {
36                 handle_t *handle = NULL;
37                 int err, migrate = 0;
38                 struct ext4_iloc iloc;
39                 unsigned int oldflags;
40                 unsigned int jflag;
41
42                 if (!inode_owner_or_capable(inode))
43                         return -EACCES;
44
45                 if (get_user(flags, (int __user *) arg))
46                         return -EFAULT;
47
48                 err = mnt_want_write(filp->f_path.mnt);
49                 if (err)
50                         return err;
51
52                 flags = ext4_mask_flags(inode->i_mode, flags);
53
54                 err = -EPERM;
55                 mutex_lock(&inode->i_mutex);
56                 /* Is it quota file? Do not allow user to mess with it */
57                 if (IS_NOQUOTA(inode))
58                         goto flags_out;
59
60                 oldflags = ei->i_flags;
61
62                 /* The JOURNAL_DATA flag is modifiable only by root */
63                 jflag = flags & EXT4_JOURNAL_DATA_FL;
64
65                 /*
66                  * The IMMUTABLE and APPEND_ONLY flags can only be changed by
67                  * the relevant capability.
68                  *
69                  * This test looks nicer. Thanks to Pauline Middelink
70                  */
71                 if ((flags ^ oldflags) & (EXT4_APPEND_FL | EXT4_IMMUTABLE_FL)) {
72                         if (!capable(CAP_LINUX_IMMUTABLE))
73                                 goto flags_out;
74                 }
75
76                 /*
77                  * The JOURNAL_DATA flag can only be changed by
78                  * the relevant capability.
79                  */
80                 if ((jflag ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) {
81                         if (!capable(CAP_SYS_RESOURCE))
82                                 goto flags_out;
83                 }
84                 if (oldflags & EXT4_EXTENTS_FL) {
85                         /* We don't support clearning extent flags */
86                         if (!(flags & EXT4_EXTENTS_FL)) {
87                                 err = -EOPNOTSUPP;
88                                 goto flags_out;
89                         }
90                 } else if (flags & EXT4_EXTENTS_FL) {
91                         /* migrate the file */
92                         migrate = 1;
93                         flags &= ~EXT4_EXTENTS_FL;
94                 }
95
96                 if (flags & EXT4_EOFBLOCKS_FL) {
97                         /* we don't support adding EOFBLOCKS flag */
98                         if (!(oldflags & EXT4_EOFBLOCKS_FL)) {
99                                 err = -EOPNOTSUPP;
100                                 goto flags_out;
101                         }
102                 } else if (oldflags & EXT4_EOFBLOCKS_FL)
103                         ext4_truncate(inode);
104
105                 handle = ext4_journal_start(inode, 1);
106                 if (IS_ERR(handle)) {
107                         err = PTR_ERR(handle);
108                         goto flags_out;
109                 }
110                 if (IS_SYNC(inode))
111                         ext4_handle_sync(handle);
112                 err = ext4_reserve_inode_write(handle, inode, &iloc);
113                 if (err)
114                         goto flags_err;
115
116                 flags = flags & EXT4_FL_USER_MODIFIABLE;
117                 flags |= oldflags & ~EXT4_FL_USER_MODIFIABLE;
118                 ei->i_flags = flags;
119
120                 ext4_set_inode_flags(inode);
121                 inode->i_ctime = ext4_current_time(inode);
122
123                 err = ext4_mark_iloc_dirty(handle, inode, &iloc);
124 flags_err:
125                 ext4_journal_stop(handle);
126                 if (err)
127                         goto flags_out;
128
129                 if ((jflag ^ oldflags) & (EXT4_JOURNAL_DATA_FL))
130                         err = ext4_change_inode_journal_flag(inode, jflag);
131                 if (err)
132                         goto flags_out;
133                 if (migrate)
134                         err = ext4_ext_migrate(inode);
135 flags_out:
136                 mutex_unlock(&inode->i_mutex);
137                 mnt_drop_write(filp->f_path.mnt);
138                 return err;
139         }
140         case EXT4_IOC_GETVERSION:
141         case EXT4_IOC_GETVERSION_OLD:
142                 return put_user(inode->i_generation, (int __user *) arg);
143         case EXT4_IOC_SETVERSION:
144         case EXT4_IOC_SETVERSION_OLD: {
145                 handle_t *handle;
146                 struct ext4_iloc iloc;
147                 __u32 generation;
148                 int err;
149
150                 if (!inode_owner_or_capable(inode))
151                         return -EPERM;
152
153                 err = mnt_want_write(filp->f_path.mnt);
154                 if (err)
155                         return err;
156                 if (get_user(generation, (int __user *) arg)) {
157                         err = -EFAULT;
158                         goto setversion_out;
159                 }
160
161                 handle = ext4_journal_start(inode, 1);
162                 if (IS_ERR(handle)) {
163                         err = PTR_ERR(handle);
164                         goto setversion_out;
165                 }
166                 err = ext4_reserve_inode_write(handle, inode, &iloc);
167                 if (err == 0) {
168                         inode->i_ctime = ext4_current_time(inode);
169                         inode->i_generation = generation;
170                         err = ext4_mark_iloc_dirty(handle, inode, &iloc);
171                 }
172                 ext4_journal_stop(handle);
173 setversion_out:
174                 mnt_drop_write(filp->f_path.mnt);
175                 return err;
176         }
177         case EXT4_IOC_GROUP_EXTEND: {
178                 ext4_fsblk_t n_blocks_count;
179                 int err, err2=0;
180
181                 err = ext4_resize_begin(sb);
182                 if (err)
183                         return err;
184
185                 if (get_user(n_blocks_count, (__u32 __user *)arg))
186                         return -EFAULT;
187
188                 if (EXT4_HAS_RO_COMPAT_FEATURE(sb,
189                                EXT4_FEATURE_RO_COMPAT_BIGALLOC)) {
190                         ext4_msg(sb, KERN_ERR,
191                                  "Online resizing not supported with bigalloc");
192                         return -EOPNOTSUPP;
193                 }
194
195                 err = mnt_want_write(filp->f_path.mnt);
196                 if (err)
197                         return err;
198
199                 err = ext4_group_extend(sb, EXT4_SB(sb)->s_es, n_blocks_count);
200                 if (EXT4_SB(sb)->s_journal) {
201                         jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
202                         err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
203                         jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
204                 }
205                 if (err == 0)
206                         err = err2;
207                 mnt_drop_write(filp->f_path.mnt);
208                 ext4_resize_end(sb);
209
210                 return err;
211         }
212
213         case EXT4_IOC_MOVE_EXT: {
214                 struct move_extent me;
215                 struct file *donor_filp;
216                 int err;
217
218                 if (!(filp->f_mode & FMODE_READ) ||
219                     !(filp->f_mode & FMODE_WRITE))
220                         return -EBADF;
221
222                 if (copy_from_user(&me,
223                         (struct move_extent __user *)arg, sizeof(me)))
224                         return -EFAULT;
225                 me.moved_len = 0;
226
227                 donor_filp = fget(me.donor_fd);
228                 if (!donor_filp)
229                         return -EBADF;
230
231                 if (!(donor_filp->f_mode & FMODE_WRITE)) {
232                         err = -EBADF;
233                         goto mext_out;
234                 }
235
236                 if (EXT4_HAS_RO_COMPAT_FEATURE(sb,
237                                EXT4_FEATURE_RO_COMPAT_BIGALLOC)) {
238                         ext4_msg(sb, KERN_ERR,
239                                  "Online defrag not supported with bigalloc");
240                         return -EOPNOTSUPP;
241                 }
242
243                 err = mnt_want_write(filp->f_path.mnt);
244                 if (err)
245                         goto mext_out;
246
247                 err = ext4_move_extents(filp, donor_filp, me.orig_start,
248                                         me.donor_start, me.len, &me.moved_len);
249                 mnt_drop_write(filp->f_path.mnt);
250
251                 if (copy_to_user((struct move_extent __user *)arg,
252                                  &me, sizeof(me)))
253                         err = -EFAULT;
254 mext_out:
255                 fput(donor_filp);
256                 return err;
257         }
258
259         case EXT4_IOC_GROUP_ADD: {
260                 struct ext4_new_group_data input;
261                 int err, err2=0;
262
263                 err = ext4_resize_begin(sb);
264                 if (err)
265                         return err;
266
267                 if (copy_from_user(&input, (struct ext4_new_group_input __user *)arg,
268                                 sizeof(input)))
269                         return -EFAULT;
270
271                 if (EXT4_HAS_RO_COMPAT_FEATURE(sb,
272                                EXT4_FEATURE_RO_COMPAT_BIGALLOC)) {
273                         ext4_msg(sb, KERN_ERR,
274                                  "Online resizing not supported with bigalloc");
275                         return -EOPNOTSUPP;
276                 }
277
278                 err = mnt_want_write(filp->f_path.mnt);
279                 if (err)
280                         return err;
281
282                 err = ext4_group_add(sb, &input);
283                 if (EXT4_SB(sb)->s_journal) {
284                         jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
285                         err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
286                         jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
287                 }
288                 if (err == 0)
289                         err = err2;
290                 mnt_drop_write(filp->f_path.mnt);
291                 ext4_resize_end(sb);
292
293                 return err;
294         }
295
296         case EXT4_IOC_MIGRATE:
297         {
298                 int err;
299                 if (!inode_owner_or_capable(inode))
300                         return -EACCES;
301
302                 err = mnt_want_write(filp->f_path.mnt);
303                 if (err)
304                         return err;
305                 /*
306                  * inode_mutex prevent write and truncate on the file.
307                  * Read still goes through. We take i_data_sem in
308                  * ext4_ext_swap_inode_data before we switch the
309                  * inode format to prevent read.
310                  */
311                 mutex_lock(&(inode->i_mutex));
312                 err = ext4_ext_migrate(inode);
313                 mutex_unlock(&(inode->i_mutex));
314                 mnt_drop_write(filp->f_path.mnt);
315                 return err;
316         }
317
318         case EXT4_IOC_ALLOC_DA_BLKS:
319         {
320                 int err;
321                 if (!inode_owner_or_capable(inode))
322                         return -EACCES;
323
324                 err = mnt_want_write(filp->f_path.mnt);
325                 if (err)
326                         return err;
327                 err = ext4_alloc_da_blocks(inode);
328                 mnt_drop_write(filp->f_path.mnt);
329                 return err;
330         }
331
332         case FITRIM:
333         {
334                 struct request_queue *q = bdev_get_queue(sb->s_bdev);
335                 struct fstrim_range range;
336                 int ret = 0;
337
338                 if (!capable(CAP_SYS_ADMIN))
339                         return -EPERM;
340
341                 if (!blk_queue_discard(q))
342                         return -EOPNOTSUPP;
343
344                 if (EXT4_HAS_RO_COMPAT_FEATURE(sb,
345                                EXT4_FEATURE_RO_COMPAT_BIGALLOC)) {
346                         ext4_msg(sb, KERN_ERR,
347                                  "FITRIM not supported with bigalloc");
348                         return -EOPNOTSUPP;
349                 }
350
351                 if (copy_from_user(&range, (struct fstrim_range __user *)arg,
352                     sizeof(range)))
353                         return -EFAULT;
354
355                 range.minlen = max((unsigned int)range.minlen,
356                                    q->limits.discard_granularity);
357                 ret = ext4_trim_fs(sb, &range);
358                 if (ret < 0)
359                         return ret;
360
361                 if (copy_to_user((struct fstrim_range __user *)arg, &range,
362                     sizeof(range)))
363                         return -EFAULT;
364
365                 return 0;
366         }
367
368         default:
369                 return -ENOTTY;
370         }
371 }
372
373 #ifdef CONFIG_COMPAT
374 long ext4_compat_ioctl(struct file *file, unsigned int cmd, unsigned long arg)
375 {
376         /* These are just misnamed, they actually get/put from/to user an int */
377         switch (cmd) {
378         case EXT4_IOC32_GETFLAGS:
379                 cmd = EXT4_IOC_GETFLAGS;
380                 break;
381         case EXT4_IOC32_SETFLAGS:
382                 cmd = EXT4_IOC_SETFLAGS;
383                 break;
384         case EXT4_IOC32_GETVERSION:
385                 cmd = EXT4_IOC_GETVERSION;
386                 break;
387         case EXT4_IOC32_SETVERSION:
388                 cmd = EXT4_IOC_SETVERSION;
389                 break;
390         case EXT4_IOC32_GROUP_EXTEND:
391                 cmd = EXT4_IOC_GROUP_EXTEND;
392                 break;
393         case EXT4_IOC32_GETVERSION_OLD:
394                 cmd = EXT4_IOC_GETVERSION_OLD;
395                 break;
396         case EXT4_IOC32_SETVERSION_OLD:
397                 cmd = EXT4_IOC_SETVERSION_OLD;
398                 break;
399         case EXT4_IOC32_GETRSVSZ:
400                 cmd = EXT4_IOC_GETRSVSZ;
401                 break;
402         case EXT4_IOC32_SETRSVSZ:
403                 cmd = EXT4_IOC_SETRSVSZ;
404                 break;
405         case EXT4_IOC32_GROUP_ADD: {
406                 struct compat_ext4_new_group_input __user *uinput;
407                 struct ext4_new_group_input input;
408                 mm_segment_t old_fs;
409                 int err;
410
411                 uinput = compat_ptr(arg);
412                 err = get_user(input.group, &uinput->group);
413                 err |= get_user(input.block_bitmap, &uinput->block_bitmap);
414                 err |= get_user(input.inode_bitmap, &uinput->inode_bitmap);
415                 err |= get_user(input.inode_table, &uinput->inode_table);
416                 err |= get_user(input.blocks_count, &uinput->blocks_count);
417                 err |= get_user(input.reserved_blocks,
418                                 &uinput->reserved_blocks);
419                 if (err)
420                         return -EFAULT;
421                 old_fs = get_fs();
422                 set_fs(KERNEL_DS);
423                 err = ext4_ioctl(file, EXT4_IOC_GROUP_ADD,
424                                  (unsigned long) &input);
425                 set_fs(old_fs);
426                 return err;
427         }
428         case EXT4_IOC_MOVE_EXT:
429         case FITRIM:
430                 break;
431         default:
432                 return -ENOIOCTLCMD;
433         }
434         return ext4_ioctl(file, cmd, (unsigned long) compat_ptr(arg));
435 }
436 #endif