dir.c 21 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928
  1. /*
  2. *
  3. * Copyright (C) 2011 Novell Inc.
  4. *
  5. * This program is free software; you can redistribute it and/or modify it
  6. * under the terms of the GNU General Public License version 2 as published by
  7. * the Free Software Foundation.
  8. */
  9. #include <linux/fs.h>
  10. #include <linux/namei.h>
  11. #include <linux/xattr.h>
  12. #include <linux/security.h>
  13. #include <linux/cred.h>
  14. #include "overlayfs.h"
  15. void ovl_cleanup(struct inode *wdir, struct dentry *wdentry)
  16. {
  17. int err;
  18. dget(wdentry);
  19. if (d_is_dir(wdentry))
  20. err = ovl_do_rmdir(wdir, wdentry);
  21. else
  22. err = ovl_do_unlink(wdir, wdentry);
  23. dput(wdentry);
  24. if (err) {
  25. pr_err("overlayfs: cleanup of '%pd2' failed (%i)\n",
  26. wdentry, err);
  27. }
  28. }
  29. struct dentry *ovl_lookup_temp(struct dentry *workdir, struct dentry *dentry)
  30. {
  31. struct dentry *temp;
  32. char name[20];
  33. snprintf(name, sizeof(name), "#%lx", (unsigned long) dentry);
  34. temp = lookup_one_len(name, workdir, strlen(name));
  35. if (!IS_ERR(temp) && temp->d_inode) {
  36. pr_err("overlayfs: workdir/%s already exists\n", name);
  37. dput(temp);
  38. temp = ERR_PTR(-EIO);
  39. }
  40. return temp;
  41. }
  42. /* caller holds i_mutex on workdir */
  43. static struct dentry *ovl_whiteout(struct dentry *workdir,
  44. struct dentry *dentry)
  45. {
  46. int err;
  47. struct dentry *whiteout;
  48. struct inode *wdir = workdir->d_inode;
  49. whiteout = ovl_lookup_temp(workdir, dentry);
  50. if (IS_ERR(whiteout))
  51. return whiteout;
  52. err = ovl_do_whiteout(wdir, whiteout);
  53. if (err) {
  54. dput(whiteout);
  55. whiteout = ERR_PTR(err);
  56. }
  57. return whiteout;
  58. }
  59. int ovl_create_real(struct inode *dir, struct dentry *newdentry,
  60. struct kstat *stat, const char *link,
  61. struct dentry *hardlink, bool debug)
  62. {
  63. int err;
  64. if (newdentry->d_inode)
  65. return -ESTALE;
  66. if (hardlink) {
  67. err = ovl_do_link(hardlink, dir, newdentry, debug);
  68. } else {
  69. switch (stat->mode & S_IFMT) {
  70. case S_IFREG:
  71. err = ovl_do_create(dir, newdentry, stat->mode, debug);
  72. break;
  73. case S_IFDIR:
  74. err = ovl_do_mkdir(dir, newdentry, stat->mode, debug);
  75. break;
  76. case S_IFCHR:
  77. case S_IFBLK:
  78. case S_IFIFO:
  79. case S_IFSOCK:
  80. err = ovl_do_mknod(dir, newdentry,
  81. stat->mode, stat->rdev, debug);
  82. break;
  83. case S_IFLNK:
  84. err = ovl_do_symlink(dir, newdentry, link, debug);
  85. break;
  86. default:
  87. err = -EPERM;
  88. }
  89. }
  90. if (!err && WARN_ON(!newdentry->d_inode)) {
  91. /*
  92. * Not quite sure if non-instantiated dentry is legal or not.
  93. * VFS doesn't seem to care so check and warn here.
  94. */
  95. err = -ENOENT;
  96. }
  97. return err;
  98. }
  99. static int ovl_set_opaque(struct dentry *upperdentry)
  100. {
  101. return ovl_do_setxattr(upperdentry, OVL_XATTR_OPAQUE, "y", 1, 0);
  102. }
  103. static void ovl_remove_opaque(struct dentry *upperdentry)
  104. {
  105. int err;
  106. err = ovl_do_removexattr(upperdentry, OVL_XATTR_OPAQUE);
  107. if (err) {
  108. pr_warn("overlayfs: failed to remove opaque from '%s' (%i)\n",
  109. upperdentry->d_name.name, err);
  110. }
  111. }
  112. static int ovl_dir_getattr(struct vfsmount *mnt, struct dentry *dentry,
  113. struct kstat *stat)
  114. {
  115. int err;
  116. enum ovl_path_type type;
  117. struct path realpath;
  118. type = ovl_path_real(dentry, &realpath);
  119. err = vfs_getattr(&realpath, stat);
  120. if (err)
  121. return err;
  122. stat->dev = dentry->d_sb->s_dev;
  123. stat->ino = dentry->d_inode->i_ino;
  124. /*
  125. * It's probably not worth it to count subdirs to get the
  126. * correct link count. nlink=1 seems to pacify 'find' and
  127. * other utilities.
  128. */
  129. if (OVL_TYPE_MERGE(type))
  130. stat->nlink = 1;
  131. return 0;
  132. }
  133. static int ovl_create_upper(struct dentry *dentry, struct inode *inode,
  134. struct kstat *stat, const char *link,
  135. struct dentry *hardlink)
  136. {
  137. struct dentry *upperdir = ovl_dentry_upper(dentry->d_parent);
  138. struct inode *udir = upperdir->d_inode;
  139. struct dentry *newdentry;
  140. int err;
  141. mutex_lock_nested(&udir->i_mutex, I_MUTEX_PARENT);
  142. newdentry = lookup_one_len(dentry->d_name.name, upperdir,
  143. dentry->d_name.len);
  144. err = PTR_ERR(newdentry);
  145. if (IS_ERR(newdentry))
  146. goto out_unlock;
  147. err = ovl_create_real(udir, newdentry, stat, link, hardlink, false);
  148. if (err)
  149. goto out_dput;
  150. ovl_dentry_version_inc(dentry->d_parent);
  151. ovl_dentry_update(dentry, newdentry);
  152. ovl_copyattr(newdentry->d_inode, inode);
  153. d_instantiate(dentry, inode);
  154. newdentry = NULL;
  155. out_dput:
  156. dput(newdentry);
  157. out_unlock:
  158. mutex_unlock(&udir->i_mutex);
  159. return err;
  160. }
  161. static int ovl_lock_rename_workdir(struct dentry *workdir,
  162. struct dentry *upperdir)
  163. {
  164. /* Workdir should not be the same as upperdir */
  165. if (workdir == upperdir)
  166. goto err;
  167. /* Workdir should not be subdir of upperdir and vice versa */
  168. if (lock_rename(workdir, upperdir) != NULL)
  169. goto err_unlock;
  170. return 0;
  171. err_unlock:
  172. unlock_rename(workdir, upperdir);
  173. err:
  174. pr_err("overlayfs: failed to lock workdir+upperdir\n");
  175. return -EIO;
  176. }
  177. static struct dentry *ovl_clear_empty(struct dentry *dentry,
  178. struct list_head *list)
  179. {
  180. struct dentry *workdir = ovl_workdir(dentry);
  181. struct inode *wdir = workdir->d_inode;
  182. struct dentry *upperdir = ovl_dentry_upper(dentry->d_parent);
  183. struct inode *udir = upperdir->d_inode;
  184. struct path upperpath;
  185. struct dentry *upper;
  186. struct dentry *opaquedir;
  187. struct kstat stat;
  188. int err;
  189. err = ovl_lock_rename_workdir(workdir, upperdir);
  190. if (err)
  191. goto out;
  192. ovl_path_upper(dentry, &upperpath);
  193. err = vfs_getattr(&upperpath, &stat);
  194. if (err)
  195. goto out_unlock;
  196. err = -ESTALE;
  197. if (!S_ISDIR(stat.mode))
  198. goto out_unlock;
  199. upper = upperpath.dentry;
  200. if (upper->d_parent->d_inode != udir)
  201. goto out_unlock;
  202. opaquedir = ovl_lookup_temp(workdir, dentry);
  203. err = PTR_ERR(opaquedir);
  204. if (IS_ERR(opaquedir))
  205. goto out_unlock;
  206. err = ovl_create_real(wdir, opaquedir, &stat, NULL, NULL, true);
  207. if (err)
  208. goto out_dput;
  209. err = ovl_copy_xattr(upper, opaquedir);
  210. if (err)
  211. goto out_cleanup;
  212. err = ovl_set_opaque(opaquedir);
  213. if (err)
  214. goto out_cleanup;
  215. mutex_lock(&opaquedir->d_inode->i_mutex);
  216. err = ovl_set_attr(opaquedir, &stat);
  217. mutex_unlock(&opaquedir->d_inode->i_mutex);
  218. if (err)
  219. goto out_cleanup;
  220. err = ovl_do_rename(wdir, opaquedir, udir, upper, RENAME_EXCHANGE);
  221. if (err)
  222. goto out_cleanup;
  223. ovl_cleanup_whiteouts(upper, list);
  224. ovl_cleanup(wdir, upper);
  225. unlock_rename(workdir, upperdir);
  226. /* dentry's upper doesn't match now, get rid of it */
  227. d_drop(dentry);
  228. return opaquedir;
  229. out_cleanup:
  230. ovl_cleanup(wdir, opaquedir);
  231. out_dput:
  232. dput(opaquedir);
  233. out_unlock:
  234. unlock_rename(workdir, upperdir);
  235. out:
  236. return ERR_PTR(err);
  237. }
  238. static struct dentry *ovl_check_empty_and_clear(struct dentry *dentry)
  239. {
  240. int err;
  241. struct dentry *ret = NULL;
  242. LIST_HEAD(list);
  243. err = ovl_check_empty_dir(dentry, &list);
  244. if (err)
  245. ret = ERR_PTR(err);
  246. else {
  247. /*
  248. * If no upperdentry then skip clearing whiteouts.
  249. *
  250. * Can race with copy-up, since we don't hold the upperdir
  251. * mutex. Doesn't matter, since copy-up can't create a
  252. * non-empty directory from an empty one.
  253. */
  254. if (ovl_dentry_upper(dentry))
  255. ret = ovl_clear_empty(dentry, &list);
  256. }
  257. ovl_cache_free(&list);
  258. return ret;
  259. }
  260. static int ovl_create_over_whiteout(struct dentry *dentry, struct inode *inode,
  261. struct kstat *stat, const char *link,
  262. struct dentry *hardlink)
  263. {
  264. struct dentry *workdir = ovl_workdir(dentry);
  265. struct inode *wdir = workdir->d_inode;
  266. struct dentry *upperdir = ovl_dentry_upper(dentry->d_parent);
  267. struct inode *udir = upperdir->d_inode;
  268. struct dentry *upper;
  269. struct dentry *newdentry;
  270. int err;
  271. err = ovl_lock_rename_workdir(workdir, upperdir);
  272. if (err)
  273. goto out;
  274. newdentry = ovl_lookup_temp(workdir, dentry);
  275. err = PTR_ERR(newdentry);
  276. if (IS_ERR(newdentry))
  277. goto out_unlock;
  278. upper = lookup_one_len(dentry->d_name.name, upperdir,
  279. dentry->d_name.len);
  280. err = PTR_ERR(upper);
  281. if (IS_ERR(upper))
  282. goto out_dput;
  283. err = ovl_create_real(wdir, newdentry, stat, link, hardlink, true);
  284. if (err)
  285. goto out_dput2;
  286. if (S_ISDIR(stat->mode)) {
  287. err = ovl_set_opaque(newdentry);
  288. if (err)
  289. goto out_cleanup;
  290. err = ovl_do_rename(wdir, newdentry, udir, upper,
  291. RENAME_EXCHANGE);
  292. if (err)
  293. goto out_cleanup;
  294. ovl_cleanup(wdir, upper);
  295. } else {
  296. err = ovl_do_rename(wdir, newdentry, udir, upper, 0);
  297. if (err)
  298. goto out_cleanup;
  299. }
  300. ovl_dentry_version_inc(dentry->d_parent);
  301. ovl_dentry_update(dentry, newdentry);
  302. ovl_copyattr(newdentry->d_inode, inode);
  303. d_instantiate(dentry, inode);
  304. newdentry = NULL;
  305. out_dput2:
  306. dput(upper);
  307. out_dput:
  308. dput(newdentry);
  309. out_unlock:
  310. unlock_rename(workdir, upperdir);
  311. out:
  312. return err;
  313. out_cleanup:
  314. ovl_cleanup(wdir, newdentry);
  315. goto out_dput2;
  316. }
  317. static int ovl_create_or_link(struct dentry *dentry, int mode, dev_t rdev,
  318. const char *link, struct dentry *hardlink)
  319. {
  320. int err;
  321. struct inode *inode;
  322. struct kstat stat = {
  323. .mode = mode,
  324. .rdev = rdev,
  325. };
  326. err = -ENOMEM;
  327. inode = ovl_new_inode(dentry->d_sb, mode, dentry->d_fsdata);
  328. if (!inode)
  329. goto out;
  330. err = ovl_copy_up(dentry->d_parent);
  331. if (err)
  332. goto out_iput;
  333. if (!ovl_dentry_is_opaque(dentry)) {
  334. err = ovl_create_upper(dentry, inode, &stat, link, hardlink);
  335. } else {
  336. const struct cred *old_cred;
  337. struct cred *override_cred;
  338. err = -ENOMEM;
  339. override_cred = prepare_creds();
  340. if (!override_cred)
  341. goto out_iput;
  342. /*
  343. * CAP_SYS_ADMIN for setting opaque xattr
  344. * CAP_DAC_OVERRIDE for create in workdir, rename
  345. * CAP_FOWNER for removing whiteout from sticky dir
  346. */
  347. cap_raise(override_cred->cap_effective, CAP_SYS_ADMIN);
  348. cap_raise(override_cred->cap_effective, CAP_DAC_OVERRIDE);
  349. cap_raise(override_cred->cap_effective, CAP_FOWNER);
  350. old_cred = override_creds(override_cred);
  351. err = ovl_create_over_whiteout(dentry, inode, &stat, link,
  352. hardlink);
  353. revert_creds(old_cred);
  354. put_cred(override_cred);
  355. }
  356. if (!err)
  357. inode = NULL;
  358. out_iput:
  359. iput(inode);
  360. out:
  361. return err;
  362. }
  363. static int ovl_create_object(struct dentry *dentry, int mode, dev_t rdev,
  364. const char *link)
  365. {
  366. int err;
  367. err = ovl_want_write(dentry);
  368. if (!err) {
  369. err = ovl_create_or_link(dentry, mode, rdev, link, NULL);
  370. ovl_drop_write(dentry);
  371. }
  372. return err;
  373. }
  374. static int ovl_create(struct inode *dir, struct dentry *dentry, umode_t mode,
  375. bool excl)
  376. {
  377. return ovl_create_object(dentry, (mode & 07777) | S_IFREG, 0, NULL);
  378. }
  379. static int ovl_mkdir(struct inode *dir, struct dentry *dentry, umode_t mode)
  380. {
  381. return ovl_create_object(dentry, (mode & 07777) | S_IFDIR, 0, NULL);
  382. }
  383. static int ovl_mknod(struct inode *dir, struct dentry *dentry, umode_t mode,
  384. dev_t rdev)
  385. {
  386. /* Don't allow creation of "whiteout" on overlay */
  387. if (S_ISCHR(mode) && rdev == WHITEOUT_DEV)
  388. return -EPERM;
  389. return ovl_create_object(dentry, mode, rdev, NULL);
  390. }
  391. static int ovl_symlink(struct inode *dir, struct dentry *dentry,
  392. const char *link)
  393. {
  394. return ovl_create_object(dentry, S_IFLNK, 0, link);
  395. }
  396. static int ovl_link(struct dentry *old, struct inode *newdir,
  397. struct dentry *new)
  398. {
  399. int err;
  400. struct dentry *upper;
  401. err = ovl_want_write(old);
  402. if (err)
  403. goto out;
  404. err = ovl_copy_up(old);
  405. if (err)
  406. goto out_drop_write;
  407. upper = ovl_dentry_upper(old);
  408. err = ovl_create_or_link(new, upper->d_inode->i_mode, 0, NULL, upper);
  409. out_drop_write:
  410. ovl_drop_write(old);
  411. out:
  412. return err;
  413. }
  414. static int ovl_remove_and_whiteout(struct dentry *dentry, bool is_dir)
  415. {
  416. struct dentry *workdir = ovl_workdir(dentry);
  417. struct inode *wdir = workdir->d_inode;
  418. struct dentry *upperdir = ovl_dentry_upper(dentry->d_parent);
  419. struct inode *udir = upperdir->d_inode;
  420. struct dentry *whiteout;
  421. struct dentry *upper;
  422. struct dentry *opaquedir = NULL;
  423. int err;
  424. if (is_dir && OVL_TYPE_MERGE_OR_LOWER(ovl_path_type(dentry))) {
  425. opaquedir = ovl_check_empty_and_clear(dentry);
  426. err = PTR_ERR(opaquedir);
  427. if (IS_ERR(opaquedir))
  428. goto out;
  429. }
  430. err = ovl_lock_rename_workdir(workdir, upperdir);
  431. if (err)
  432. goto out_dput;
  433. whiteout = ovl_whiteout(workdir, dentry);
  434. err = PTR_ERR(whiteout);
  435. if (IS_ERR(whiteout))
  436. goto out_unlock;
  437. upper = ovl_dentry_upper(dentry);
  438. if (!upper) {
  439. upper = lookup_one_len(dentry->d_name.name, upperdir,
  440. dentry->d_name.len);
  441. err = PTR_ERR(upper);
  442. if (IS_ERR(upper))
  443. goto kill_whiteout;
  444. err = ovl_do_rename(wdir, whiteout, udir, upper, 0);
  445. dput(upper);
  446. if (err)
  447. goto kill_whiteout;
  448. } else {
  449. int flags = 0;
  450. if (opaquedir)
  451. upper = opaquedir;
  452. err = -ESTALE;
  453. if (upper->d_parent != upperdir)
  454. goto kill_whiteout;
  455. if (is_dir)
  456. flags |= RENAME_EXCHANGE;
  457. err = ovl_do_rename(wdir, whiteout, udir, upper, flags);
  458. if (err)
  459. goto kill_whiteout;
  460. if (is_dir)
  461. ovl_cleanup(wdir, upper);
  462. }
  463. ovl_dentry_version_inc(dentry->d_parent);
  464. out_d_drop:
  465. d_drop(dentry);
  466. dput(whiteout);
  467. out_unlock:
  468. unlock_rename(workdir, upperdir);
  469. out_dput:
  470. dput(opaquedir);
  471. out:
  472. return err;
  473. kill_whiteout:
  474. ovl_cleanup(wdir, whiteout);
  475. goto out_d_drop;
  476. }
  477. static int ovl_remove_upper(struct dentry *dentry, bool is_dir)
  478. {
  479. struct dentry *upperdir = ovl_dentry_upper(dentry->d_parent);
  480. struct inode *dir = upperdir->d_inode;
  481. struct dentry *upper = ovl_dentry_upper(dentry);
  482. int err;
  483. mutex_lock_nested(&dir->i_mutex, I_MUTEX_PARENT);
  484. err = -ESTALE;
  485. if (upper->d_parent == upperdir) {
  486. /* Don't let d_delete() think it can reset d_inode */
  487. dget(upper);
  488. if (is_dir)
  489. err = vfs_rmdir(dir, upper);
  490. else
  491. err = vfs_unlink(dir, upper, NULL);
  492. dput(upper);
  493. ovl_dentry_version_inc(dentry->d_parent);
  494. }
  495. /*
  496. * Keeping this dentry hashed would mean having to release
  497. * upperpath/lowerpath, which could only be done if we are the
  498. * sole user of this dentry. Too tricky... Just unhash for
  499. * now.
  500. */
  501. d_drop(dentry);
  502. mutex_unlock(&dir->i_mutex);
  503. return err;
  504. }
  505. static inline int ovl_check_sticky(struct dentry *dentry)
  506. {
  507. struct inode *dir = ovl_dentry_real(dentry->d_parent)->d_inode;
  508. struct inode *inode = ovl_dentry_real(dentry)->d_inode;
  509. if (check_sticky(dir, inode))
  510. return -EPERM;
  511. return 0;
  512. }
  513. static int ovl_do_remove(struct dentry *dentry, bool is_dir)
  514. {
  515. enum ovl_path_type type;
  516. int err;
  517. err = ovl_check_sticky(dentry);
  518. if (err)
  519. goto out;
  520. err = ovl_want_write(dentry);
  521. if (err)
  522. goto out;
  523. err = ovl_copy_up(dentry->d_parent);
  524. if (err)
  525. goto out_drop_write;
  526. type = ovl_path_type(dentry);
  527. if (OVL_TYPE_PURE_UPPER(type)) {
  528. err = ovl_remove_upper(dentry, is_dir);
  529. } else {
  530. const struct cred *old_cred;
  531. struct cred *override_cred;
  532. err = -ENOMEM;
  533. override_cred = prepare_creds();
  534. if (!override_cred)
  535. goto out_drop_write;
  536. /*
  537. * CAP_SYS_ADMIN for setting xattr on whiteout, opaque dir
  538. * CAP_DAC_OVERRIDE for create in workdir, rename
  539. * CAP_FOWNER for removing whiteout from sticky dir
  540. * CAP_FSETID for chmod of opaque dir
  541. * CAP_CHOWN for chown of opaque dir
  542. */
  543. cap_raise(override_cred->cap_effective, CAP_SYS_ADMIN);
  544. cap_raise(override_cred->cap_effective, CAP_DAC_OVERRIDE);
  545. cap_raise(override_cred->cap_effective, CAP_FOWNER);
  546. cap_raise(override_cred->cap_effective, CAP_FSETID);
  547. cap_raise(override_cred->cap_effective, CAP_CHOWN);
  548. old_cred = override_creds(override_cred);
  549. err = ovl_remove_and_whiteout(dentry, is_dir);
  550. revert_creds(old_cred);
  551. put_cred(override_cred);
  552. }
  553. out_drop_write:
  554. ovl_drop_write(dentry);
  555. out:
  556. return err;
  557. }
  558. static int ovl_unlink(struct inode *dir, struct dentry *dentry)
  559. {
  560. return ovl_do_remove(dentry, false);
  561. }
  562. static int ovl_rmdir(struct inode *dir, struct dentry *dentry)
  563. {
  564. return ovl_do_remove(dentry, true);
  565. }
  566. static int ovl_rename2(struct inode *olddir, struct dentry *old,
  567. struct inode *newdir, struct dentry *new,
  568. unsigned int flags)
  569. {
  570. int err;
  571. enum ovl_path_type old_type;
  572. enum ovl_path_type new_type;
  573. struct dentry *old_upperdir;
  574. struct dentry *new_upperdir;
  575. struct dentry *olddentry;
  576. struct dentry *newdentry;
  577. struct dentry *trap;
  578. bool old_opaque;
  579. bool new_opaque;
  580. bool new_create = false;
  581. bool cleanup_whiteout = false;
  582. bool overwrite = !(flags & RENAME_EXCHANGE);
  583. bool is_dir = d_is_dir(old);
  584. bool new_is_dir = false;
  585. struct dentry *opaquedir = NULL;
  586. const struct cred *old_cred = NULL;
  587. struct cred *override_cred = NULL;
  588. err = -EINVAL;
  589. if (flags & ~(RENAME_EXCHANGE | RENAME_NOREPLACE))
  590. goto out;
  591. flags &= ~RENAME_NOREPLACE;
  592. err = ovl_check_sticky(old);
  593. if (err)
  594. goto out;
  595. /* Don't copy up directory trees */
  596. old_type = ovl_path_type(old);
  597. err = -EXDEV;
  598. if (OVL_TYPE_MERGE_OR_LOWER(old_type) && is_dir)
  599. goto out;
  600. if (new->d_inode) {
  601. err = ovl_check_sticky(new);
  602. if (err)
  603. goto out;
  604. if (d_is_dir(new))
  605. new_is_dir = true;
  606. new_type = ovl_path_type(new);
  607. err = -EXDEV;
  608. if (!overwrite && OVL_TYPE_MERGE_OR_LOWER(new_type) && new_is_dir)
  609. goto out;
  610. err = 0;
  611. if (!OVL_TYPE_UPPER(new_type) && !OVL_TYPE_UPPER(old_type)) {
  612. if (ovl_dentry_lower(old)->d_inode ==
  613. ovl_dentry_lower(new)->d_inode)
  614. goto out;
  615. }
  616. if (OVL_TYPE_UPPER(new_type) && OVL_TYPE_UPPER(old_type)) {
  617. if (ovl_dentry_upper(old)->d_inode ==
  618. ovl_dentry_upper(new)->d_inode)
  619. goto out;
  620. }
  621. } else {
  622. if (ovl_dentry_is_opaque(new))
  623. new_type = __OVL_PATH_UPPER;
  624. else
  625. new_type = __OVL_PATH_UPPER | __OVL_PATH_PURE;
  626. }
  627. err = ovl_want_write(old);
  628. if (err)
  629. goto out;
  630. err = ovl_copy_up(old);
  631. if (err)
  632. goto out_drop_write;
  633. err = ovl_copy_up(new->d_parent);
  634. if (err)
  635. goto out_drop_write;
  636. if (!overwrite) {
  637. err = ovl_copy_up(new);
  638. if (err)
  639. goto out_drop_write;
  640. }
  641. old_opaque = !OVL_TYPE_PURE_UPPER(old_type);
  642. new_opaque = !OVL_TYPE_PURE_UPPER(new_type);
  643. if (old_opaque || new_opaque) {
  644. err = -ENOMEM;
  645. override_cred = prepare_creds();
  646. if (!override_cred)
  647. goto out_drop_write;
  648. /*
  649. * CAP_SYS_ADMIN for setting xattr on whiteout, opaque dir
  650. * CAP_DAC_OVERRIDE for create in workdir
  651. * CAP_FOWNER for removing whiteout from sticky dir
  652. * CAP_FSETID for chmod of opaque dir
  653. * CAP_CHOWN for chown of opaque dir
  654. */
  655. cap_raise(override_cred->cap_effective, CAP_SYS_ADMIN);
  656. cap_raise(override_cred->cap_effective, CAP_DAC_OVERRIDE);
  657. cap_raise(override_cred->cap_effective, CAP_FOWNER);
  658. cap_raise(override_cred->cap_effective, CAP_FSETID);
  659. cap_raise(override_cred->cap_effective, CAP_CHOWN);
  660. old_cred = override_creds(override_cred);
  661. }
  662. if (overwrite && OVL_TYPE_MERGE_OR_LOWER(new_type) && new_is_dir) {
  663. opaquedir = ovl_check_empty_and_clear(new);
  664. err = PTR_ERR(opaquedir);
  665. if (IS_ERR(opaquedir)) {
  666. opaquedir = NULL;
  667. goto out_revert_creds;
  668. }
  669. }
  670. if (overwrite) {
  671. if (old_opaque) {
  672. if (new->d_inode || !new_opaque) {
  673. /* Whiteout source */
  674. flags |= RENAME_WHITEOUT;
  675. } else {
  676. /* Switch whiteouts */
  677. flags |= RENAME_EXCHANGE;
  678. }
  679. } else if (is_dir && !new->d_inode && new_opaque) {
  680. flags |= RENAME_EXCHANGE;
  681. cleanup_whiteout = true;
  682. }
  683. }
  684. old_upperdir = ovl_dentry_upper(old->d_parent);
  685. new_upperdir = ovl_dentry_upper(new->d_parent);
  686. trap = lock_rename(new_upperdir, old_upperdir);
  687. olddentry = ovl_dentry_upper(old);
  688. newdentry = ovl_dentry_upper(new);
  689. if (newdentry) {
  690. if (opaquedir) {
  691. newdentry = opaquedir;
  692. opaquedir = NULL;
  693. } else {
  694. dget(newdentry);
  695. }
  696. } else {
  697. new_create = true;
  698. newdentry = lookup_one_len(new->d_name.name, new_upperdir,
  699. new->d_name.len);
  700. err = PTR_ERR(newdentry);
  701. if (IS_ERR(newdentry))
  702. goto out_unlock;
  703. }
  704. err = -ESTALE;
  705. if (olddentry->d_parent != old_upperdir)
  706. goto out_dput;
  707. if (newdentry->d_parent != new_upperdir)
  708. goto out_dput;
  709. if (olddentry == trap)
  710. goto out_dput;
  711. if (newdentry == trap)
  712. goto out_dput;
  713. if (is_dir && !old_opaque && new_opaque) {
  714. err = ovl_set_opaque(olddentry);
  715. if (err)
  716. goto out_dput;
  717. }
  718. if (!overwrite && new_is_dir && old_opaque && !new_opaque) {
  719. err = ovl_set_opaque(newdentry);
  720. if (err)
  721. goto out_dput;
  722. }
  723. if (old_opaque || new_opaque) {
  724. err = ovl_do_rename(old_upperdir->d_inode, olddentry,
  725. new_upperdir->d_inode, newdentry,
  726. flags);
  727. } else {
  728. /* No debug for the plain case */
  729. BUG_ON(flags & ~RENAME_EXCHANGE);
  730. err = vfs_rename(old_upperdir->d_inode, olddentry,
  731. new_upperdir->d_inode, newdentry,
  732. NULL, flags);
  733. }
  734. if (err) {
  735. if (is_dir && !old_opaque && new_opaque)
  736. ovl_remove_opaque(olddentry);
  737. if (!overwrite && new_is_dir && old_opaque && !new_opaque)
  738. ovl_remove_opaque(newdentry);
  739. goto out_dput;
  740. }
  741. if (is_dir && old_opaque && !new_opaque)
  742. ovl_remove_opaque(olddentry);
  743. if (!overwrite && new_is_dir && !old_opaque && new_opaque)
  744. ovl_remove_opaque(newdentry);
  745. if (old_opaque != new_opaque) {
  746. ovl_dentry_set_opaque(old, new_opaque);
  747. if (!overwrite)
  748. ovl_dentry_set_opaque(new, old_opaque);
  749. }
  750. if (cleanup_whiteout)
  751. ovl_cleanup(old_upperdir->d_inode, newdentry);
  752. ovl_dentry_version_inc(old->d_parent);
  753. ovl_dentry_version_inc(new->d_parent);
  754. out_dput:
  755. dput(newdentry);
  756. out_unlock:
  757. unlock_rename(new_upperdir, old_upperdir);
  758. out_revert_creds:
  759. if (old_opaque || new_opaque) {
  760. revert_creds(old_cred);
  761. put_cred(override_cred);
  762. }
  763. out_drop_write:
  764. ovl_drop_write(old);
  765. out:
  766. dput(opaquedir);
  767. return err;
  768. }
  769. const struct inode_operations ovl_dir_inode_operations = {
  770. .lookup = ovl_lookup,
  771. .mkdir = ovl_mkdir,
  772. .symlink = ovl_symlink,
  773. .unlink = ovl_unlink,
  774. .rmdir = ovl_rmdir,
  775. .rename2 = ovl_rename2,
  776. .link = ovl_link,
  777. .setattr = ovl_setattr,
  778. .create = ovl_create,
  779. .mknod = ovl_mknod,
  780. .permission = ovl_permission,
  781. .getattr = ovl_dir_getattr,
  782. .setxattr = ovl_setxattr,
  783. .getxattr = ovl_getxattr,
  784. .listxattr = ovl_listxattr,
  785. .removexattr = ovl_removexattr,
  786. };