Thomas Gleixner | d2912cb | 2019-06-04 10:11:33 +0200 | [diff] [blame] | 1 | // SPDX-License-Identifier: GPL-2.0-only |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2 | /* |
| 3 | * |
| 4 | * Copyright (C) 2011 Novell Inc. |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 5 | */ |
| 6 | |
Ingo Molnar | 5b825c3 | 2017-02-02 17:54:15 +0100 | [diff] [blame] | 7 | #include <uapi/linux/magic.h> |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 8 | #include <linux/fs.h> |
| 9 | #include <linux/namei.h> |
| 10 | #include <linux/xattr.h> |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 11 | #include <linux/mount.h> |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 12 | #include <linux/parser.h> |
| 13 | #include <linux/module.h> |
Andy Whitcroft | cc25963 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 14 | #include <linux/statfs.h> |
Erez Zadok | f45827e8 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 15 | #include <linux/seq_file.h> |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 16 | #include <linux/posix_acl_xattr.h> |
Amir Goldstein | e487d88 | 2017-11-07 13:55:04 +0200 | [diff] [blame] | 17 | #include <linux/exportfs.h> |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 18 | #include "overlayfs.h" |
| 19 | |
| 20 | MODULE_AUTHOR("Miklos Szeredi <miklos@szeredi.hu>"); |
| 21 | MODULE_DESCRIPTION("Overlay filesystem"); |
| 22 | MODULE_LICENSE("GPL"); |
| 23 | |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 24 | |
| 25 | struct ovl_dir_cache; |
| 26 | |
Miklos Szeredi | a78d9f0 | 2014-12-13 00:59:52 +0100 | [diff] [blame] | 27 | #define OVL_MAX_STACK 500 |
| 28 | |
Miklos Szeredi | 688ea0e | 2016-12-16 11:02:57 +0100 | [diff] [blame] | 29 | static bool ovl_redirect_dir_def = IS_ENABLED(CONFIG_OVERLAY_FS_REDIRECT_DIR); |
| 30 | module_param_named(redirect_dir, ovl_redirect_dir_def, bool, 0644); |
Nicolas Schier | 253e748 | 2019-06-17 09:39:00 +0200 | [diff] [blame] | 31 | MODULE_PARM_DESC(redirect_dir, |
Miklos Szeredi | 688ea0e | 2016-12-16 11:02:57 +0100 | [diff] [blame] | 32 | "Default to on or off for the redirect_dir feature"); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 33 | |
Miklos Szeredi | 438c84c | 2017-12-11 11:28:10 +0100 | [diff] [blame] | 34 | static bool ovl_redirect_always_follow = |
| 35 | IS_ENABLED(CONFIG_OVERLAY_FS_REDIRECT_ALWAYS_FOLLOW); |
| 36 | module_param_named(redirect_always_follow, ovl_redirect_always_follow, |
| 37 | bool, 0644); |
Nicolas Schier | 253e748 | 2019-06-17 09:39:00 +0200 | [diff] [blame] | 38 | MODULE_PARM_DESC(redirect_always_follow, |
Miklos Szeredi | 438c84c | 2017-12-11 11:28:10 +0100 | [diff] [blame] | 39 | "Follow redirects even if redirect_dir feature is turned off"); |
| 40 | |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 41 | static bool ovl_index_def = IS_ENABLED(CONFIG_OVERLAY_FS_INDEX); |
| 42 | module_param_named(index, ovl_index_def, bool, 0644); |
Nicolas Schier | 253e748 | 2019-06-17 09:39:00 +0200 | [diff] [blame] | 43 | MODULE_PARM_DESC(index, |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 44 | "Default to on or off for the inodes index feature"); |
| 45 | |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 46 | static bool ovl_nfs_export_def = IS_ENABLED(CONFIG_OVERLAY_FS_NFS_EXPORT); |
| 47 | module_param_named(nfs_export, ovl_nfs_export_def, bool, 0644); |
Nicolas Schier | 253e748 | 2019-06-17 09:39:00 +0200 | [diff] [blame] | 48 | MODULE_PARM_DESC(nfs_export, |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 49 | "Default to on or off for the NFS export feature"); |
| 50 | |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 51 | static bool ovl_xino_auto_def = IS_ENABLED(CONFIG_OVERLAY_FS_XINO_AUTO); |
| 52 | module_param_named(xino_auto, ovl_xino_auto_def, bool, 0644); |
Nicolas Schier | 253e748 | 2019-06-17 09:39:00 +0200 | [diff] [blame] | 53 | MODULE_PARM_DESC(xino_auto, |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 54 | "Auto enable xino feature"); |
| 55 | |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 56 | static void ovl_entry_stack_free(struct ovl_entry *oe) |
| 57 | { |
| 58 | unsigned int i; |
| 59 | |
| 60 | for (i = 0; i < oe->numlower; i++) |
| 61 | dput(oe->lowerstack[i].dentry); |
| 62 | } |
| 63 | |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 64 | static bool ovl_metacopy_def = IS_ENABLED(CONFIG_OVERLAY_FS_METACOPY); |
| 65 | module_param_named(metacopy, ovl_metacopy_def, bool, 0644); |
Nicolas Schier | 253e748 | 2019-06-17 09:39:00 +0200 | [diff] [blame] | 66 | MODULE_PARM_DESC(metacopy, |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 67 | "Default to on or off for the metadata only copy up feature"); |
| 68 | |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 69 | static void ovl_dentry_release(struct dentry *dentry) |
| 70 | { |
| 71 | struct ovl_entry *oe = dentry->d_fsdata; |
| 72 | |
| 73 | if (oe) { |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 74 | ovl_entry_stack_free(oe); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 75 | kfree_rcu(oe, rcu); |
| 76 | } |
| 77 | } |
| 78 | |
Miklos Szeredi | 2d90267 | 2016-06-30 08:53:27 +0200 | [diff] [blame] | 79 | static struct dentry *ovl_d_real(struct dentry *dentry, |
Miklos Szeredi | fb16043 | 2018-07-18 15:44:44 +0200 | [diff] [blame] | 80 | const struct inode *inode) |
Miklos Szeredi | d101a12 | 2016-03-26 16:14:37 -0400 | [diff] [blame] | 81 | { |
Miklos Szeredi | cef4cbf | 2020-11-12 11:31:55 +0100 | [diff] [blame] | 82 | struct dentry *real = NULL, *lower; |
Miklos Szeredi | d101a12 | 2016-03-26 16:14:37 -0400 | [diff] [blame] | 83 | |
Miklos Szeredi | e8c985b | 2018-07-18 15:44:41 +0200 | [diff] [blame] | 84 | /* It's an overlay file */ |
| 85 | if (inode && d_inode(dentry) == inode) |
| 86 | return dentry; |
| 87 | |
Miklos Szeredi | ca4c8a3 | 2016-12-16 11:02:55 +0100 | [diff] [blame] | 88 | if (!d_is_reg(dentry)) { |
Miklos Szeredi | d101a12 | 2016-03-26 16:14:37 -0400 | [diff] [blame] | 89 | if (!inode || inode == d_inode(dentry)) |
| 90 | return dentry; |
| 91 | goto bug; |
| 92 | } |
| 93 | |
| 94 | real = ovl_dentry_upper(dentry); |
Vivek Goyal | 2c3d735 | 2018-05-11 11:49:31 -0400 | [diff] [blame] | 95 | if (real && (inode == d_inode(real))) |
Miklos Szeredi | d101a12 | 2016-03-26 16:14:37 -0400 | [diff] [blame] | 96 | return real; |
| 97 | |
Vivek Goyal | 2c3d735 | 2018-05-11 11:49:31 -0400 | [diff] [blame] | 98 | if (real && !inode && ovl_has_upperdata(d_inode(dentry))) |
| 99 | return real; |
| 100 | |
Miklos Szeredi | cef4cbf | 2020-11-12 11:31:55 +0100 | [diff] [blame] | 101 | lower = ovl_dentry_lowerdata(dentry); |
| 102 | if (!lower) |
Miklos Szeredi | d101a12 | 2016-03-26 16:14:37 -0400 | [diff] [blame] | 103 | goto bug; |
Miklos Szeredi | cef4cbf | 2020-11-12 11:31:55 +0100 | [diff] [blame] | 104 | real = lower; |
Miklos Szeredi | d101a12 | 2016-03-26 16:14:37 -0400 | [diff] [blame] | 105 | |
Miklos Szeredi | c4fcfc1 | 2016-11-29 10:20:24 +0100 | [diff] [blame] | 106 | /* Handle recursion */ |
Miklos Szeredi | fb16043 | 2018-07-18 15:44:44 +0200 | [diff] [blame] | 107 | real = d_real(real, inode); |
Miklos Szeredi | c4fcfc1 | 2016-11-29 10:20:24 +0100 | [diff] [blame] | 108 | |
Miklos Szeredi | d101a12 | 2016-03-26 16:14:37 -0400 | [diff] [blame] | 109 | if (!inode || inode == d_inode(real)) |
| 110 | return real; |
Miklos Szeredi | d101a12 | 2016-03-26 16:14:37 -0400 | [diff] [blame] | 111 | bug: |
Miklos Szeredi | cef4cbf | 2020-11-12 11:31:55 +0100 | [diff] [blame] | 112 | WARN(1, "%s(%pd4, %s:%lu): real dentry (%p/%lu) not found\n", |
| 113 | __func__, dentry, inode ? inode->i_sb->s_id : "NULL", |
| 114 | inode ? inode->i_ino : 0, real, |
| 115 | real && d_inode(real) ? d_inode(real)->i_ino : 0); |
Miklos Szeredi | d101a12 | 2016-03-26 16:14:37 -0400 | [diff] [blame] | 116 | return dentry; |
| 117 | } |
| 118 | |
Miklos Szeredi | 3bb7df9 | 2020-03-17 15:04:22 +0100 | [diff] [blame] | 119 | static int ovl_revalidate_real(struct dentry *d, unsigned int flags, bool weak) |
| 120 | { |
| 121 | int ret = 1; |
| 122 | |
| 123 | if (weak) { |
| 124 | if (d->d_flags & DCACHE_OP_WEAK_REVALIDATE) |
| 125 | ret = d->d_op->d_weak_revalidate(d, flags); |
| 126 | } else if (d->d_flags & DCACHE_OP_REVALIDATE) { |
| 127 | ret = d->d_op->d_revalidate(d, flags); |
| 128 | if (!ret) { |
| 129 | if (!(flags & LOOKUP_RCU)) |
| 130 | d_invalidate(d); |
| 131 | ret = -ESTALE; |
| 132 | } |
| 133 | } |
| 134 | return ret; |
| 135 | } |
| 136 | |
| 137 | static int ovl_dentry_revalidate_common(struct dentry *dentry, |
| 138 | unsigned int flags, bool weak) |
Miklos Szeredi | 7c03b5d | 2015-06-22 13:53:48 +0200 | [diff] [blame] | 139 | { |
| 140 | struct ovl_entry *oe = dentry->d_fsdata; |
Miklos Szeredi | bccece1 | 2020-03-17 15:04:22 +0100 | [diff] [blame] | 141 | struct dentry *upper; |
Miklos Szeredi | 7c03b5d | 2015-06-22 13:53:48 +0200 | [diff] [blame] | 142 | unsigned int i; |
| 143 | int ret = 1; |
| 144 | |
Miklos Szeredi | bccece1 | 2020-03-17 15:04:22 +0100 | [diff] [blame] | 145 | upper = ovl_dentry_upper(dentry); |
| 146 | if (upper) |
| 147 | ret = ovl_revalidate_real(upper, flags, weak); |
| 148 | |
Miklos Szeredi | 3bb7df9 | 2020-03-17 15:04:22 +0100 | [diff] [blame] | 149 | for (i = 0; ret > 0 && i < oe->numlower; i++) { |
| 150 | ret = ovl_revalidate_real(oe->lowerstack[i].dentry, flags, |
| 151 | weak); |
Miklos Szeredi | 7c03b5d | 2015-06-22 13:53:48 +0200 | [diff] [blame] | 152 | } |
Miklos Szeredi | 3bb7df9 | 2020-03-17 15:04:22 +0100 | [diff] [blame] | 153 | return ret; |
| 154 | } |
| 155 | |
| 156 | static int ovl_dentry_revalidate(struct dentry *dentry, unsigned int flags) |
| 157 | { |
| 158 | return ovl_dentry_revalidate_common(dentry, flags, false); |
Miklos Szeredi | 7c03b5d | 2015-06-22 13:53:48 +0200 | [diff] [blame] | 159 | } |
| 160 | |
| 161 | static int ovl_dentry_weak_revalidate(struct dentry *dentry, unsigned int flags) |
| 162 | { |
Miklos Szeredi | 3bb7df9 | 2020-03-17 15:04:22 +0100 | [diff] [blame] | 163 | return ovl_dentry_revalidate_common(dentry, flags, true); |
Miklos Szeredi | 7c03b5d | 2015-06-22 13:53:48 +0200 | [diff] [blame] | 164 | } |
| 165 | |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 166 | static const struct dentry_operations ovl_dentry_operations = { |
| 167 | .d_release = ovl_dentry_release, |
Miklos Szeredi | d101a12 | 2016-03-26 16:14:37 -0400 | [diff] [blame] | 168 | .d_real = ovl_d_real, |
Miklos Szeredi | 7c03b5d | 2015-06-22 13:53:48 +0200 | [diff] [blame] | 169 | .d_revalidate = ovl_dentry_revalidate, |
| 170 | .d_weak_revalidate = ovl_dentry_weak_revalidate, |
| 171 | }; |
| 172 | |
Amir Goldstein | 13cf199 | 2017-06-12 09:54:40 +0300 | [diff] [blame] | 173 | static struct kmem_cache *ovl_inode_cachep; |
| 174 | |
| 175 | static struct inode *ovl_alloc_inode(struct super_block *sb) |
| 176 | { |
| 177 | struct ovl_inode *oi = kmem_cache_alloc(ovl_inode_cachep, GFP_KERNEL); |
| 178 | |
Hirofumi Nakagawa | b3885bd | 2017-09-26 03:09:53 +0900 | [diff] [blame] | 179 | if (!oi) |
| 180 | return NULL; |
| 181 | |
Miklos Szeredi | 04a01ac | 2017-07-04 22:03:16 +0200 | [diff] [blame] | 182 | oi->cache = NULL; |
Miklos Szeredi | cf31c46 | 2017-07-04 22:03:16 +0200 | [diff] [blame] | 183 | oi->redirect = NULL; |
Miklos Szeredi | 04a01ac | 2017-07-04 22:03:16 +0200 | [diff] [blame] | 184 | oi->version = 0; |
Miklos Szeredi | 13c7207 | 2017-07-04 22:03:16 +0200 | [diff] [blame] | 185 | oi->flags = 0; |
Miklos Szeredi | 09d8b58 | 2017-07-04 22:03:16 +0200 | [diff] [blame] | 186 | oi->__upperdentry = NULL; |
Miklos Szeredi | 25b7713 | 2017-07-04 22:03:16 +0200 | [diff] [blame] | 187 | oi->lower = NULL; |
Vivek Goyal | 2664bd0 | 2018-05-11 11:49:30 -0400 | [diff] [blame] | 188 | oi->lowerdata = NULL; |
Amir Goldstein | a015daf | 2017-06-21 15:28:51 +0300 | [diff] [blame] | 189 | mutex_init(&oi->lock); |
Miklos Szeredi | 25b7713 | 2017-07-04 22:03:16 +0200 | [diff] [blame] | 190 | |
Amir Goldstein | 13cf199 | 2017-06-12 09:54:40 +0300 | [diff] [blame] | 191 | return &oi->vfs_inode; |
| 192 | } |
| 193 | |
Al Viro | 0b269de | 2019-04-15 22:52:17 -0400 | [diff] [blame] | 194 | static void ovl_free_inode(struct inode *inode) |
Amir Goldstein | 13cf199 | 2017-06-12 09:54:40 +0300 | [diff] [blame] | 195 | { |
Al Viro | 0b269de | 2019-04-15 22:52:17 -0400 | [diff] [blame] | 196 | struct ovl_inode *oi = OVL_I(inode); |
Amir Goldstein | 13cf199 | 2017-06-12 09:54:40 +0300 | [diff] [blame] | 197 | |
Al Viro | 0b269de | 2019-04-15 22:52:17 -0400 | [diff] [blame] | 198 | kfree(oi->redirect); |
| 199 | mutex_destroy(&oi->lock); |
| 200 | kmem_cache_free(ovl_inode_cachep, oi); |
Amir Goldstein | 13cf199 | 2017-06-12 09:54:40 +0300 | [diff] [blame] | 201 | } |
| 202 | |
| 203 | static void ovl_destroy_inode(struct inode *inode) |
| 204 | { |
Miklos Szeredi | 09d8b58 | 2017-07-04 22:03:16 +0200 | [diff] [blame] | 205 | struct ovl_inode *oi = OVL_I(inode); |
| 206 | |
| 207 | dput(oi->__upperdentry); |
Amir Goldstein | 31747ed | 2018-01-14 18:35:40 +0200 | [diff] [blame] | 208 | iput(oi->lower); |
Vivek Goyal | 2664bd0 | 2018-05-11 11:49:30 -0400 | [diff] [blame] | 209 | if (S_ISDIR(inode->i_mode)) |
| 210 | ovl_dir_cache_free(inode); |
| 211 | else |
| 212 | iput(oi->lowerdata); |
Amir Goldstein | 13cf199 | 2017-06-12 09:54:40 +0300 | [diff] [blame] | 213 | } |
| 214 | |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 215 | static void ovl_free_fs(struct ovl_fs *ofs) |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 216 | { |
Miklos Szeredi | df820f8 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 217 | struct vfsmount **mounts; |
Miklos Szeredi | dd66266 | 2014-12-13 00:59:43 +0100 | [diff] [blame] | 218 | unsigned i; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 219 | |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 220 | iput(ofs->workbasedir_trap); |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 221 | iput(ofs->indexdir_trap); |
| 222 | iput(ofs->workdir_trap); |
Chengguang Xu | c21c839 | 2020-04-24 10:55:17 +0800 | [diff] [blame] | 223 | dput(ofs->whiteout); |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 224 | dput(ofs->indexdir); |
| 225 | dput(ofs->workdir); |
| 226 | if (ofs->workdir_locked) |
| 227 | ovl_inuse_unlock(ofs->workbasedir); |
| 228 | dput(ofs->workbasedir); |
| 229 | if (ofs->upperdir_locked) |
Miklos Szeredi | 08f4c7c | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 230 | ovl_inuse_unlock(ovl_upper_mnt(ofs)->mnt_root); |
Miklos Szeredi | df820f8 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 231 | |
| 232 | /* Hack! Reuse ofs->layers as a vfsmount array before freeing it */ |
| 233 | mounts = (struct vfsmount **) ofs->layers; |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 234 | for (i = 0; i < ofs->numlayer; i++) { |
Amir Goldstein | 94375f9 | 2019-11-15 14:12:40 +0200 | [diff] [blame] | 235 | iput(ofs->layers[i].trap); |
Miklos Szeredi | df820f8 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 236 | mounts[i] = ofs->layers[i].mnt; |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 237 | } |
Miklos Szeredi | df820f8 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 238 | kern_unmount_array(mounts, ofs->numlayer); |
Amir Goldstein | 94375f9 | 2019-11-15 14:12:40 +0200 | [diff] [blame] | 239 | kfree(ofs->layers); |
Amir Goldstein | b7bf990 | 2020-01-14 22:17:25 +0200 | [diff] [blame] | 240 | for (i = 0; i < ofs->numfs; i++) |
Amir Goldstein | 07f1e59 | 2020-01-14 21:59:22 +0200 | [diff] [blame] | 241 | free_anon_bdev(ofs->fs[i].pseudo_dev); |
| 242 | kfree(ofs->fs); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 243 | |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 244 | kfree(ofs->config.lowerdir); |
| 245 | kfree(ofs->config.upperdir); |
| 246 | kfree(ofs->config.workdir); |
Miklos Szeredi | 438c84c | 2017-12-11 11:28:10 +0100 | [diff] [blame] | 247 | kfree(ofs->config.redirect_mode); |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 248 | if (ofs->creator_cred) |
| 249 | put_cred(ofs->creator_cred); |
| 250 | kfree(ofs); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 251 | } |
| 252 | |
Miklos Szeredi | a9075cd | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 253 | static void ovl_put_super(struct super_block *sb) |
| 254 | { |
| 255 | struct ovl_fs *ofs = sb->s_fs_info; |
| 256 | |
| 257 | ovl_free_fs(ofs); |
| 258 | } |
| 259 | |
Chengguang Xu | e8d4bfe | 2017-11-29 10:01:32 +0800 | [diff] [blame] | 260 | /* Sync real dirty inodes in upper filesystem (if it exists) */ |
Amir Goldstein | e593b2b | 2017-01-23 14:32:21 +0200 | [diff] [blame] | 261 | static int ovl_sync_fs(struct super_block *sb, int wait) |
| 262 | { |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 263 | struct ovl_fs *ofs = sb->s_fs_info; |
Amir Goldstein | e593b2b | 2017-01-23 14:32:21 +0200 | [diff] [blame] | 264 | struct super_block *upper_sb; |
| 265 | int ret; |
| 266 | |
Sargun Dhillon | 335d3fc | 2021-01-07 16:10:43 -0800 | [diff] [blame] | 267 | ret = ovl_sync_status(ofs); |
| 268 | /* |
| 269 | * We have to always set the err, because the return value isn't |
| 270 | * checked in syncfs, and instead indirectly return an error via |
| 271 | * the sb's writeback errseq, which VFS inspects after this call. |
| 272 | */ |
| 273 | if (ret < 0) { |
| 274 | errseq_set(&sb->s_wb_err, -EIO); |
| 275 | return -EIO; |
| 276 | } |
Chengguang Xu | e8d4bfe | 2017-11-29 10:01:32 +0800 | [diff] [blame] | 277 | |
Sargun Dhillon | 335d3fc | 2021-01-07 16:10:43 -0800 | [diff] [blame] | 278 | if (!ret) |
| 279 | return ret; |
| 280 | |
Chengguang Xu | e8d4bfe | 2017-11-29 10:01:32 +0800 | [diff] [blame] | 281 | /* |
Konstantin Khlebnikov | 32b1924b2 | 2020-04-09 11:29:47 +0300 | [diff] [blame] | 282 | * Not called for sync(2) call or an emergency sync (SB_I_SKIP_SYNC). |
| 283 | * All the super blocks will be iterated, including upper_sb. |
Chengguang Xu | e8d4bfe | 2017-11-29 10:01:32 +0800 | [diff] [blame] | 284 | * |
| 285 | * If this is a syncfs(2) call, then we do need to call |
| 286 | * sync_filesystem() on upper_sb, but enough if we do it when being |
| 287 | * called with wait == 1. |
| 288 | */ |
| 289 | if (!wait) |
Amir Goldstein | e593b2b | 2017-01-23 14:32:21 +0200 | [diff] [blame] | 290 | return 0; |
| 291 | |
Miklos Szeredi | 08f4c7c | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 292 | upper_sb = ovl_upper_mnt(ofs)->mnt_sb; |
Chengguang Xu | e8d4bfe | 2017-11-29 10:01:32 +0800 | [diff] [blame] | 293 | |
Amir Goldstein | e593b2b | 2017-01-23 14:32:21 +0200 | [diff] [blame] | 294 | down_read(&upper_sb->s_umount); |
Chengguang Xu | e8d4bfe | 2017-11-29 10:01:32 +0800 | [diff] [blame] | 295 | ret = sync_filesystem(upper_sb); |
Amir Goldstein | e593b2b | 2017-01-23 14:32:21 +0200 | [diff] [blame] | 296 | up_read(&upper_sb->s_umount); |
Chengguang Xu | e8d4bfe | 2017-11-29 10:01:32 +0800 | [diff] [blame] | 297 | |
Amir Goldstein | e593b2b | 2017-01-23 14:32:21 +0200 | [diff] [blame] | 298 | return ret; |
| 299 | } |
| 300 | |
Andy Whitcroft | cc25963 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 301 | /** |
| 302 | * ovl_statfs |
| 303 | * @sb: The overlayfs super block |
| 304 | * @buf: The struct kstatfs to fill in with stats |
| 305 | * |
| 306 | * Get the filesystem statistics. As writes always target the upper layer |
Miklos Szeredi | 4ebc581 | 2014-12-13 00:59:46 +0100 | [diff] [blame] | 307 | * filesystem pass the statfs to the upper filesystem (if it exists) |
Andy Whitcroft | cc25963 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 308 | */ |
| 309 | static int ovl_statfs(struct dentry *dentry, struct kstatfs *buf) |
| 310 | { |
| 311 | struct ovl_fs *ofs = dentry->d_sb->s_fs_info; |
| 312 | struct dentry *root_dentry = dentry->d_sb->s_root; |
| 313 | struct path path; |
| 314 | int err; |
| 315 | |
Miklos Szeredi | 4ebc581 | 2014-12-13 00:59:46 +0100 | [diff] [blame] | 316 | ovl_path_real(root_dentry, &path); |
Andy Whitcroft | cc25963 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 317 | |
| 318 | err = vfs_statfs(&path, buf); |
| 319 | if (!err) { |
Miklos Szeredi | 6b2d5fe | 2016-12-16 11:02:56 +0100 | [diff] [blame] | 320 | buf->f_namelen = ofs->namelen; |
Andy Whitcroft | cc25963 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 321 | buf->f_type = OVERLAYFS_SUPER_MAGIC; |
| 322 | } |
| 323 | |
| 324 | return err; |
| 325 | } |
| 326 | |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 327 | /* Will this overlay be forced to mount/remount ro? */ |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 328 | static bool ovl_force_readonly(struct ovl_fs *ofs) |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 329 | { |
Miklos Szeredi | 08f4c7c | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 330 | return (!ovl_upper_mnt(ofs) || !ofs->workdir); |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 331 | } |
| 332 | |
Miklos Szeredi | 438c84c | 2017-12-11 11:28:10 +0100 | [diff] [blame] | 333 | static const char *ovl_redirect_mode_def(void) |
| 334 | { |
| 335 | return ovl_redirect_dir_def ? "on" : "off"; |
| 336 | } |
| 337 | |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 338 | static const char * const ovl_xino_str[] = { |
| 339 | "off", |
| 340 | "auto", |
| 341 | "on", |
| 342 | }; |
| 343 | |
| 344 | static inline int ovl_xino_def(void) |
| 345 | { |
| 346 | return ovl_xino_auto_def ? OVL_XINO_AUTO : OVL_XINO_OFF; |
| 347 | } |
| 348 | |
Erez Zadok | f45827e8 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 349 | /** |
| 350 | * ovl_show_options |
| 351 | * |
| 352 | * Prints the mount options for a given superblock. |
| 353 | * Returns zero; does not fail. |
| 354 | */ |
| 355 | static int ovl_show_options(struct seq_file *m, struct dentry *dentry) |
| 356 | { |
| 357 | struct super_block *sb = dentry->d_sb; |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 358 | struct ovl_fs *ofs = sb->s_fs_info; |
Erez Zadok | f45827e8 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 359 | |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 360 | seq_show_option(m, "lowerdir", ofs->config.lowerdir); |
| 361 | if (ofs->config.upperdir) { |
| 362 | seq_show_option(m, "upperdir", ofs->config.upperdir); |
| 363 | seq_show_option(m, "workdir", ofs->config.workdir); |
Miklos Szeredi | 53a08cb | 2014-12-13 00:59:51 +0100 | [diff] [blame] | 364 | } |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 365 | if (ofs->config.default_permissions) |
Miklos Szeredi | 8d3095f | 2015-10-12 17:11:44 +0200 | [diff] [blame] | 366 | seq_puts(m, ",default_permissions"); |
Miklos Szeredi | 438c84c | 2017-12-11 11:28:10 +0100 | [diff] [blame] | 367 | if (strcmp(ofs->config.redirect_mode, ovl_redirect_mode_def()) != 0) |
| 368 | seq_printf(m, ",redirect_dir=%s", ofs->config.redirect_mode); |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 369 | if (ofs->config.index != ovl_index_def) |
Miklos Szeredi | 438c84c | 2017-12-11 11:28:10 +0100 | [diff] [blame] | 370 | seq_printf(m, ",index=%s", ofs->config.index ? "on" : "off"); |
Pavel Tikhomirov | 5830fb6 | 2020-10-13 17:59:54 +0300 | [diff] [blame] | 371 | if (!ofs->config.uuid) |
| 372 | seq_puts(m, ",uuid=off"); |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 373 | if (ofs->config.nfs_export != ovl_nfs_export_def) |
| 374 | seq_printf(m, ",nfs_export=%s", ofs->config.nfs_export ? |
| 375 | "on" : "off"); |
Amir Goldstein | 0f831ec | 2019-11-16 18:14:41 +0200 | [diff] [blame] | 376 | if (ofs->config.xino != ovl_xino_def() && !ovl_same_fs(sb)) |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 377 | seq_printf(m, ",xino=%s", ovl_xino_str[ofs->config.xino]); |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 378 | if (ofs->config.metacopy != ovl_metacopy_def) |
| 379 | seq_printf(m, ",metacopy=%s", |
| 380 | ofs->config.metacopy ? "on" : "off"); |
Vivek Goyal | c86243b0 | 2020-08-31 14:15:29 -0400 | [diff] [blame] | 381 | if (ofs->config.ovl_volatile) |
| 382 | seq_puts(m, ",volatile"); |
Erez Zadok | f45827e8 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 383 | return 0; |
| 384 | } |
| 385 | |
Seunghun Lee | 3cdf6fe | 2015-01-03 02:26:49 +0900 | [diff] [blame] | 386 | static int ovl_remount(struct super_block *sb, int *flags, char *data) |
| 387 | { |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 388 | struct ovl_fs *ofs = sb->s_fs_info; |
Chengguang Xu | 399c109 | 2020-04-22 12:28:43 +0800 | [diff] [blame] | 389 | struct super_block *upper_sb; |
| 390 | int ret = 0; |
Seunghun Lee | 3cdf6fe | 2015-01-03 02:26:49 +0900 | [diff] [blame] | 391 | |
Linus Torvalds | 1751e8a | 2017-11-27 13:05:09 -0800 | [diff] [blame] | 392 | if (!(*flags & SB_RDONLY) && ovl_force_readonly(ofs)) |
Seunghun Lee | 3cdf6fe | 2015-01-03 02:26:49 +0900 | [diff] [blame] | 393 | return -EROFS; |
| 394 | |
Chengguang Xu | 399c109 | 2020-04-22 12:28:43 +0800 | [diff] [blame] | 395 | if (*flags & SB_RDONLY && !sb_rdonly(sb)) { |
Miklos Szeredi | 08f4c7c | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 396 | upper_sb = ovl_upper_mnt(ofs)->mnt_sb; |
Vivek Goyal | c86243b0 | 2020-08-31 14:15:29 -0400 | [diff] [blame] | 397 | if (ovl_should_sync(ofs)) { |
| 398 | down_read(&upper_sb->s_umount); |
| 399 | ret = sync_filesystem(upper_sb); |
| 400 | up_read(&upper_sb->s_umount); |
| 401 | } |
Chengguang Xu | 399c109 | 2020-04-22 12:28:43 +0800 | [diff] [blame] | 402 | } |
| 403 | |
| 404 | return ret; |
Seunghun Lee | 3cdf6fe | 2015-01-03 02:26:49 +0900 | [diff] [blame] | 405 | } |
| 406 | |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 407 | static const struct super_operations ovl_super_operations = { |
Amir Goldstein | 13cf199 | 2017-06-12 09:54:40 +0300 | [diff] [blame] | 408 | .alloc_inode = ovl_alloc_inode, |
Al Viro | 0b269de | 2019-04-15 22:52:17 -0400 | [diff] [blame] | 409 | .free_inode = ovl_free_inode, |
Amir Goldstein | 13cf199 | 2017-06-12 09:54:40 +0300 | [diff] [blame] | 410 | .destroy_inode = ovl_destroy_inode, |
| 411 | .drop_inode = generic_delete_inode, |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 412 | .put_super = ovl_put_super, |
Amir Goldstein | e593b2b | 2017-01-23 14:32:21 +0200 | [diff] [blame] | 413 | .sync_fs = ovl_sync_fs, |
Andy Whitcroft | cc25963 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 414 | .statfs = ovl_statfs, |
Erez Zadok | f45827e8 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 415 | .show_options = ovl_show_options, |
Seunghun Lee | 3cdf6fe | 2015-01-03 02:26:49 +0900 | [diff] [blame] | 416 | .remount_fs = ovl_remount, |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 417 | }; |
| 418 | |
| 419 | enum { |
| 420 | OPT_LOWERDIR, |
| 421 | OPT_UPPERDIR, |
| 422 | OPT_WORKDIR, |
Miklos Szeredi | 8d3095f | 2015-10-12 17:11:44 +0200 | [diff] [blame] | 423 | OPT_DEFAULT_PERMISSIONS, |
Miklos Szeredi | 438c84c | 2017-12-11 11:28:10 +0100 | [diff] [blame] | 424 | OPT_REDIRECT_DIR, |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 425 | OPT_INDEX_ON, |
| 426 | OPT_INDEX_OFF, |
Pavel Tikhomirov | 5830fb6 | 2020-10-13 17:59:54 +0300 | [diff] [blame] | 427 | OPT_UUID_ON, |
| 428 | OPT_UUID_OFF, |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 429 | OPT_NFS_EXPORT_ON, |
Miklos Szeredi | 2d2f2d7 | 2020-12-14 15:26:14 +0100 | [diff] [blame] | 430 | OPT_USERXATTR, |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 431 | OPT_NFS_EXPORT_OFF, |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 432 | OPT_XINO_ON, |
| 433 | OPT_XINO_OFF, |
| 434 | OPT_XINO_AUTO, |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 435 | OPT_METACOPY_ON, |
| 436 | OPT_METACOPY_OFF, |
Vivek Goyal | c86243b0 | 2020-08-31 14:15:29 -0400 | [diff] [blame] | 437 | OPT_VOLATILE, |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 438 | OPT_ERR, |
| 439 | }; |
| 440 | |
| 441 | static const match_table_t ovl_tokens = { |
| 442 | {OPT_LOWERDIR, "lowerdir=%s"}, |
| 443 | {OPT_UPPERDIR, "upperdir=%s"}, |
| 444 | {OPT_WORKDIR, "workdir=%s"}, |
Miklos Szeredi | 8d3095f | 2015-10-12 17:11:44 +0200 | [diff] [blame] | 445 | {OPT_DEFAULT_PERMISSIONS, "default_permissions"}, |
Miklos Szeredi | 438c84c | 2017-12-11 11:28:10 +0100 | [diff] [blame] | 446 | {OPT_REDIRECT_DIR, "redirect_dir=%s"}, |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 447 | {OPT_INDEX_ON, "index=on"}, |
| 448 | {OPT_INDEX_OFF, "index=off"}, |
Miklos Szeredi | 2d2f2d7 | 2020-12-14 15:26:14 +0100 | [diff] [blame] | 449 | {OPT_USERXATTR, "userxattr"}, |
Pavel Tikhomirov | 5830fb6 | 2020-10-13 17:59:54 +0300 | [diff] [blame] | 450 | {OPT_UUID_ON, "uuid=on"}, |
| 451 | {OPT_UUID_OFF, "uuid=off"}, |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 452 | {OPT_NFS_EXPORT_ON, "nfs_export=on"}, |
| 453 | {OPT_NFS_EXPORT_OFF, "nfs_export=off"}, |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 454 | {OPT_XINO_ON, "xino=on"}, |
| 455 | {OPT_XINO_OFF, "xino=off"}, |
| 456 | {OPT_XINO_AUTO, "xino=auto"}, |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 457 | {OPT_METACOPY_ON, "metacopy=on"}, |
| 458 | {OPT_METACOPY_OFF, "metacopy=off"}, |
Vivek Goyal | c86243b0 | 2020-08-31 14:15:29 -0400 | [diff] [blame] | 459 | {OPT_VOLATILE, "volatile"}, |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 460 | {OPT_ERR, NULL} |
| 461 | }; |
| 462 | |
Miklos Szeredi | 91c7794 | 2014-11-20 16:40:00 +0100 | [diff] [blame] | 463 | static char *ovl_next_opt(char **s) |
| 464 | { |
| 465 | char *sbegin = *s; |
| 466 | char *p; |
| 467 | |
| 468 | if (sbegin == NULL) |
| 469 | return NULL; |
| 470 | |
| 471 | for (p = sbegin; *p; p++) { |
| 472 | if (*p == '\\') { |
| 473 | p++; |
| 474 | if (!*p) |
| 475 | break; |
| 476 | } else if (*p == ',') { |
| 477 | *p = '\0'; |
| 478 | *s = p + 1; |
| 479 | return sbegin; |
| 480 | } |
| 481 | } |
| 482 | *s = NULL; |
| 483 | return sbegin; |
| 484 | } |
| 485 | |
Miklos Szeredi | 438c84c | 2017-12-11 11:28:10 +0100 | [diff] [blame] | 486 | static int ovl_parse_redirect_mode(struct ovl_config *config, const char *mode) |
| 487 | { |
| 488 | if (strcmp(mode, "on") == 0) { |
| 489 | config->redirect_dir = true; |
| 490 | /* |
| 491 | * Does not make sense to have redirect creation without |
| 492 | * redirect following. |
| 493 | */ |
| 494 | config->redirect_follow = true; |
| 495 | } else if (strcmp(mode, "follow") == 0) { |
| 496 | config->redirect_follow = true; |
| 497 | } else if (strcmp(mode, "off") == 0) { |
| 498 | if (ovl_redirect_always_follow) |
| 499 | config->redirect_follow = true; |
| 500 | } else if (strcmp(mode, "nofollow") != 0) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 501 | pr_err("bad mount option \"redirect_dir=%s\"\n", |
Miklos Szeredi | 438c84c | 2017-12-11 11:28:10 +0100 | [diff] [blame] | 502 | mode); |
| 503 | return -EINVAL; |
| 504 | } |
| 505 | |
| 506 | return 0; |
| 507 | } |
| 508 | |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 509 | static int ovl_parse_opt(char *opt, struct ovl_config *config) |
| 510 | { |
| 511 | char *p; |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 512 | int err; |
Miklos Szeredi | d47748e | 2018-11-01 21:31:39 +0100 | [diff] [blame] | 513 | bool metacopy_opt = false, redirect_opt = false; |
Amir Goldstein | b0def88 | 2020-04-09 18:58:34 +0300 | [diff] [blame] | 514 | bool nfs_export_opt = false, index_opt = false; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 515 | |
Miklos Szeredi | 438c84c | 2017-12-11 11:28:10 +0100 | [diff] [blame] | 516 | config->redirect_mode = kstrdup(ovl_redirect_mode_def(), GFP_KERNEL); |
| 517 | if (!config->redirect_mode) |
| 518 | return -ENOMEM; |
| 519 | |
Miklos Szeredi | 91c7794 | 2014-11-20 16:40:00 +0100 | [diff] [blame] | 520 | while ((p = ovl_next_opt(&opt)) != NULL) { |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 521 | int token; |
| 522 | substring_t args[MAX_OPT_ARGS]; |
| 523 | |
| 524 | if (!*p) |
| 525 | continue; |
| 526 | |
| 527 | token = match_token(p, ovl_tokens, args); |
| 528 | switch (token) { |
| 529 | case OPT_UPPERDIR: |
| 530 | kfree(config->upperdir); |
| 531 | config->upperdir = match_strdup(&args[0]); |
| 532 | if (!config->upperdir) |
| 533 | return -ENOMEM; |
| 534 | break; |
| 535 | |
| 536 | case OPT_LOWERDIR: |
| 537 | kfree(config->lowerdir); |
| 538 | config->lowerdir = match_strdup(&args[0]); |
| 539 | if (!config->lowerdir) |
| 540 | return -ENOMEM; |
| 541 | break; |
| 542 | |
| 543 | case OPT_WORKDIR: |
| 544 | kfree(config->workdir); |
| 545 | config->workdir = match_strdup(&args[0]); |
| 546 | if (!config->workdir) |
| 547 | return -ENOMEM; |
| 548 | break; |
| 549 | |
Miklos Szeredi | 8d3095f | 2015-10-12 17:11:44 +0200 | [diff] [blame] | 550 | case OPT_DEFAULT_PERMISSIONS: |
| 551 | config->default_permissions = true; |
| 552 | break; |
| 553 | |
Miklos Szeredi | 438c84c | 2017-12-11 11:28:10 +0100 | [diff] [blame] | 554 | case OPT_REDIRECT_DIR: |
| 555 | kfree(config->redirect_mode); |
| 556 | config->redirect_mode = match_strdup(&args[0]); |
| 557 | if (!config->redirect_mode) |
| 558 | return -ENOMEM; |
Miklos Szeredi | d47748e | 2018-11-01 21:31:39 +0100 | [diff] [blame] | 559 | redirect_opt = true; |
Miklos Szeredi | a6c6065 | 2016-12-16 11:02:56 +0100 | [diff] [blame] | 560 | break; |
| 561 | |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 562 | case OPT_INDEX_ON: |
| 563 | config->index = true; |
Amir Goldstein | b0def88 | 2020-04-09 18:58:34 +0300 | [diff] [blame] | 564 | index_opt = true; |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 565 | break; |
| 566 | |
| 567 | case OPT_INDEX_OFF: |
| 568 | config->index = false; |
Amir Goldstein | b0def88 | 2020-04-09 18:58:34 +0300 | [diff] [blame] | 569 | index_opt = true; |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 570 | break; |
| 571 | |
Pavel Tikhomirov | 5830fb6 | 2020-10-13 17:59:54 +0300 | [diff] [blame] | 572 | case OPT_UUID_ON: |
| 573 | config->uuid = true; |
| 574 | break; |
| 575 | |
| 576 | case OPT_UUID_OFF: |
| 577 | config->uuid = false; |
| 578 | break; |
| 579 | |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 580 | case OPT_NFS_EXPORT_ON: |
| 581 | config->nfs_export = true; |
Amir Goldstein | b0def88 | 2020-04-09 18:58:34 +0300 | [diff] [blame] | 582 | nfs_export_opt = true; |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 583 | break; |
| 584 | |
| 585 | case OPT_NFS_EXPORT_OFF: |
| 586 | config->nfs_export = false; |
Amir Goldstein | b0def88 | 2020-04-09 18:58:34 +0300 | [diff] [blame] | 587 | nfs_export_opt = true; |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 588 | break; |
| 589 | |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 590 | case OPT_XINO_ON: |
| 591 | config->xino = OVL_XINO_ON; |
| 592 | break; |
| 593 | |
| 594 | case OPT_XINO_OFF: |
| 595 | config->xino = OVL_XINO_OFF; |
| 596 | break; |
| 597 | |
| 598 | case OPT_XINO_AUTO: |
| 599 | config->xino = OVL_XINO_AUTO; |
| 600 | break; |
| 601 | |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 602 | case OPT_METACOPY_ON: |
| 603 | config->metacopy = true; |
Miklos Szeredi | d47748e | 2018-11-01 21:31:39 +0100 | [diff] [blame] | 604 | metacopy_opt = true; |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 605 | break; |
| 606 | |
| 607 | case OPT_METACOPY_OFF: |
| 608 | config->metacopy = false; |
Amir Goldstein | b0def88 | 2020-04-09 18:58:34 +0300 | [diff] [blame] | 609 | metacopy_opt = true; |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 610 | break; |
| 611 | |
Vivek Goyal | c86243b0 | 2020-08-31 14:15:29 -0400 | [diff] [blame] | 612 | case OPT_VOLATILE: |
| 613 | config->ovl_volatile = true; |
| 614 | break; |
| 615 | |
Miklos Szeredi | 2d2f2d7 | 2020-12-14 15:26:14 +0100 | [diff] [blame] | 616 | case OPT_USERXATTR: |
| 617 | config->userxattr = true; |
| 618 | break; |
| 619 | |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 620 | default: |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 621 | pr_err("unrecognized mount option \"%s\" or missing value\n", |
| 622 | p); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 623 | return -EINVAL; |
| 624 | } |
| 625 | } |
hujianyang | 71cbad7 | 2015-01-15 13:20:57 +0800 | [diff] [blame] | 626 | |
Amir Goldstein | f0e1266e | 2020-07-13 17:19:44 +0300 | [diff] [blame] | 627 | /* Workdir/index are useless in non-upper mount */ |
| 628 | if (!config->upperdir) { |
| 629 | if (config->workdir) { |
| 630 | pr_info("option \"workdir=%s\" is useless in a non-upper mount, ignore\n", |
| 631 | config->workdir); |
| 632 | kfree(config->workdir); |
| 633 | config->workdir = NULL; |
| 634 | } |
| 635 | if (config->index && index_opt) { |
| 636 | pr_info("option \"index=on\" is useless in a non-upper mount, ignore\n"); |
| 637 | index_opt = false; |
| 638 | } |
| 639 | config->index = false; |
hujianyang | 71cbad7 | 2015-01-15 13:20:57 +0800 | [diff] [blame] | 640 | } |
| 641 | |
Vivek Goyal | c86243b0 | 2020-08-31 14:15:29 -0400 | [diff] [blame] | 642 | if (!config->upperdir && config->ovl_volatile) { |
| 643 | pr_info("option \"volatile\" is meaningless in a non-upper mount, ignoring it.\n"); |
| 644 | config->ovl_volatile = false; |
| 645 | } |
| 646 | |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 647 | err = ovl_parse_redirect_mode(config, config->redirect_mode); |
| 648 | if (err) |
| 649 | return err; |
| 650 | |
Miklos Szeredi | d47748e | 2018-11-01 21:31:39 +0100 | [diff] [blame] | 651 | /* |
| 652 | * This is to make the logic below simpler. It doesn't make any other |
| 653 | * difference, since config->redirect_dir is only used for upper. |
| 654 | */ |
| 655 | if (!config->upperdir && config->redirect_follow) |
| 656 | config->redirect_dir = true; |
| 657 | |
| 658 | /* Resolve metacopy -> redirect_dir dependency */ |
| 659 | if (config->metacopy && !config->redirect_dir) { |
| 660 | if (metacopy_opt && redirect_opt) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 661 | pr_err("conflicting options: metacopy=on,redirect_dir=%s\n", |
Miklos Szeredi | d47748e | 2018-11-01 21:31:39 +0100 | [diff] [blame] | 662 | config->redirect_mode); |
| 663 | return -EINVAL; |
| 664 | } |
| 665 | if (redirect_opt) { |
| 666 | /* |
| 667 | * There was an explicit redirect_dir=... that resulted |
| 668 | * in this conflict. |
| 669 | */ |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 670 | pr_info("disabling metacopy due to redirect_dir=%s\n", |
Miklos Szeredi | d47748e | 2018-11-01 21:31:39 +0100 | [diff] [blame] | 671 | config->redirect_mode); |
| 672 | config->metacopy = false; |
| 673 | } else { |
| 674 | /* Automatically enable redirect otherwise. */ |
| 675 | config->redirect_follow = config->redirect_dir = true; |
| 676 | } |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 677 | } |
| 678 | |
Amir Goldstein | b0def88 | 2020-04-09 18:58:34 +0300 | [diff] [blame] | 679 | /* Resolve nfs_export -> index dependency */ |
| 680 | if (config->nfs_export && !config->index) { |
Amir Goldstein | f0e1266e | 2020-07-13 17:19:44 +0300 | [diff] [blame] | 681 | if (!config->upperdir && config->redirect_follow) { |
| 682 | pr_info("NFS export requires \"redirect_dir=nofollow\" on non-upper mount, falling back to nfs_export=off.\n"); |
| 683 | config->nfs_export = false; |
| 684 | } else if (nfs_export_opt && index_opt) { |
Amir Goldstein | b0def88 | 2020-04-09 18:58:34 +0300 | [diff] [blame] | 685 | pr_err("conflicting options: nfs_export=on,index=off\n"); |
| 686 | return -EINVAL; |
Amir Goldstein | f0e1266e | 2020-07-13 17:19:44 +0300 | [diff] [blame] | 687 | } else if (index_opt) { |
Amir Goldstein | b0def88 | 2020-04-09 18:58:34 +0300 | [diff] [blame] | 688 | /* |
| 689 | * There was an explicit index=off that resulted |
| 690 | * in this conflict. |
| 691 | */ |
| 692 | pr_info("disabling nfs_export due to index=off\n"); |
| 693 | config->nfs_export = false; |
| 694 | } else { |
| 695 | /* Automatically enable index otherwise. */ |
| 696 | config->index = true; |
| 697 | } |
| 698 | } |
| 699 | |
| 700 | /* Resolve nfs_export -> !metacopy dependency */ |
| 701 | if (config->nfs_export && config->metacopy) { |
| 702 | if (nfs_export_opt && metacopy_opt) { |
| 703 | pr_err("conflicting options: nfs_export=on,metacopy=on\n"); |
| 704 | return -EINVAL; |
| 705 | } |
| 706 | if (metacopy_opt) { |
| 707 | /* |
| 708 | * There was an explicit metacopy=on that resulted |
| 709 | * in this conflict. |
| 710 | */ |
| 711 | pr_info("disabling nfs_export due to metacopy=on\n"); |
| 712 | config->nfs_export = false; |
| 713 | } else { |
| 714 | /* |
| 715 | * There was an explicit nfs_export=on that resulted |
| 716 | * in this conflict. |
| 717 | */ |
| 718 | pr_info("disabling metacopy due to nfs_export=on\n"); |
| 719 | config->metacopy = false; |
| 720 | } |
| 721 | } |
| 722 | |
Miklos Szeredi | 2d2f2d7 | 2020-12-14 15:26:14 +0100 | [diff] [blame] | 723 | |
| 724 | /* Resolve userxattr -> !redirect && !metacopy dependency */ |
| 725 | if (config->userxattr) { |
| 726 | if (config->redirect_follow && redirect_opt) { |
| 727 | pr_err("conflicting options: userxattr,redirect_dir=%s\n", |
| 728 | config->redirect_mode); |
| 729 | return -EINVAL; |
| 730 | } |
| 731 | if (config->metacopy && metacopy_opt) { |
| 732 | pr_err("conflicting options: userxattr,metacopy=on\n"); |
| 733 | return -EINVAL; |
| 734 | } |
| 735 | /* |
| 736 | * Silently disable default setting of redirect and metacopy. |
| 737 | * This shall be the default in the future as well: these |
| 738 | * options must be explicitly enabled if used together with |
| 739 | * userxattr. |
| 740 | */ |
| 741 | config->redirect_dir = config->redirect_follow = false; |
| 742 | config->metacopy = false; |
| 743 | } |
| 744 | |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 745 | return 0; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 746 | } |
| 747 | |
| 748 | #define OVL_WORKDIR_NAME "work" |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 749 | #define OVL_INDEXDIR_NAME "index" |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 750 | |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 751 | static struct dentry *ovl_workdir_create(struct ovl_fs *ofs, |
Amir Goldstein | 6b8aa12 | 2017-06-21 15:28:35 +0300 | [diff] [blame] | 752 | const char *name, bool persist) |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 753 | { |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 754 | struct inode *dir = ofs->workbasedir->d_inode; |
Miklos Szeredi | 08f4c7c | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 755 | struct vfsmount *mnt = ovl_upper_mnt(ofs); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 756 | struct dentry *work; |
| 757 | int err; |
| 758 | bool retried = false; |
| 759 | |
Al Viro | 5955102 | 2016-01-22 15:40:57 -0500 | [diff] [blame] | 760 | inode_lock_nested(dir, I_MUTEX_PARENT); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 761 | retry: |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 762 | work = lookup_one_len(name, ofs->workbasedir, strlen(name)); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 763 | |
| 764 | if (!IS_ERR(work)) { |
Miklos Szeredi | c11b9fd | 2016-09-01 11:11:59 +0200 | [diff] [blame] | 765 | struct iattr attr = { |
| 766 | .ia_valid = ATTR_MODE, |
Al Viro | 32a3d84 | 2016-12-04 17:33:17 +0000 | [diff] [blame] | 767 | .ia_mode = S_IFDIR | 0, |
Miklos Szeredi | c11b9fd | 2016-09-01 11:11:59 +0200 | [diff] [blame] | 768 | }; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 769 | |
| 770 | if (work->d_inode) { |
| 771 | err = -EEXIST; |
| 772 | if (retried) |
| 773 | goto out_dput; |
| 774 | |
Amir Goldstein | 6b8aa12 | 2017-06-21 15:28:35 +0300 | [diff] [blame] | 775 | if (persist) |
| 776 | goto out_unlock; |
| 777 | |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 778 | retried = true; |
Amir Goldstein | 235ce9e | 2020-08-30 23:28:03 +0300 | [diff] [blame] | 779 | err = ovl_workdir_cleanup(dir, mnt, work, 0); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 780 | dput(work); |
Amir Goldstein | 235ce9e | 2020-08-30 23:28:03 +0300 | [diff] [blame] | 781 | if (err == -EINVAL) { |
| 782 | work = ERR_PTR(err); |
| 783 | goto out_unlock; |
| 784 | } |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 785 | goto retry; |
| 786 | } |
| 787 | |
Miklos Szeredi | 95a1c81 | 2018-05-16 17:51:25 +0300 | [diff] [blame] | 788 | work = ovl_create_real(dir, work, OVL_CATTR(attr.ia_mode)); |
| 789 | err = PTR_ERR(work); |
| 790 | if (IS_ERR(work)) |
| 791 | goto out_err; |
Miklos Szeredi | c11b9fd | 2016-09-01 11:11:59 +0200 | [diff] [blame] | 792 | |
Miklos Szeredi | cb348ed | 2016-10-04 14:40:44 +0200 | [diff] [blame] | 793 | /* |
| 794 | * Try to remove POSIX ACL xattrs from workdir. We are good if: |
| 795 | * |
| 796 | * a) success (there was a POSIX ACL xattr and was removed) |
| 797 | * b) -ENODATA (there was no POSIX ACL xattr) |
| 798 | * c) -EOPNOTSUPP (POSIX ACL xattrs are not supported) |
| 799 | * |
| 800 | * There are various other error values that could effectively |
| 801 | * mean that the xattr doesn't exist (e.g. -ERANGE is returned |
| 802 | * if the xattr name is too long), but the set of filesystems |
| 803 | * allowed as upper are limited to "normal" ones, where checking |
| 804 | * for the above two errors is sufficient. |
| 805 | */ |
Tycho Andersen | c7c7a1a1 | 2021-01-21 14:19:28 +0100 | [diff] [blame] | 806 | err = vfs_removexattr(&init_user_ns, work, |
| 807 | XATTR_NAME_POSIX_ACL_DEFAULT); |
Miklos Szeredi | e1ff3dd | 2016-09-05 13:55:20 +0200 | [diff] [blame] | 808 | if (err && err != -ENODATA && err != -EOPNOTSUPP) |
Miklos Szeredi | c11b9fd | 2016-09-01 11:11:59 +0200 | [diff] [blame] | 809 | goto out_dput; |
| 810 | |
Tycho Andersen | c7c7a1a1 | 2021-01-21 14:19:28 +0100 | [diff] [blame] | 811 | err = vfs_removexattr(&init_user_ns, work, |
| 812 | XATTR_NAME_POSIX_ACL_ACCESS); |
Miklos Szeredi | e1ff3dd | 2016-09-05 13:55:20 +0200 | [diff] [blame] | 813 | if (err && err != -ENODATA && err != -EOPNOTSUPP) |
Miklos Szeredi | c11b9fd | 2016-09-01 11:11:59 +0200 | [diff] [blame] | 814 | goto out_dput; |
| 815 | |
| 816 | /* Clear any inherited mode bits */ |
| 817 | inode_lock(work->d_inode); |
Christian Brauner | 2f221d6 | 2021-01-21 14:19:26 +0100 | [diff] [blame] | 818 | err = notify_change(&init_user_ns, work, &attr, NULL); |
Miklos Szeredi | c11b9fd | 2016-09-01 11:11:59 +0200 | [diff] [blame] | 819 | inode_unlock(work->d_inode); |
| 820 | if (err) |
| 821 | goto out_dput; |
Amir Goldstein | 6b8aa12 | 2017-06-21 15:28:35 +0300 | [diff] [blame] | 822 | } else { |
| 823 | err = PTR_ERR(work); |
| 824 | goto out_err; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 825 | } |
| 826 | out_unlock: |
youngjun | 2068cf7 | 2020-06-07 02:04:06 -0700 | [diff] [blame] | 827 | inode_unlock(dir); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 828 | return work; |
| 829 | |
| 830 | out_dput: |
| 831 | dput(work); |
Amir Goldstein | 6b8aa12 | 2017-06-21 15:28:35 +0300 | [diff] [blame] | 832 | out_err: |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 833 | pr_warn("failed to create directory %s/%s (errno: %i); mounting read-only\n", |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 834 | ofs->config.workdir, name, -err); |
Amir Goldstein | 6b8aa12 | 2017-06-21 15:28:35 +0300 | [diff] [blame] | 835 | work = NULL; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 836 | goto out_unlock; |
| 837 | } |
| 838 | |
Miklos Szeredi | 91c7794 | 2014-11-20 16:40:00 +0100 | [diff] [blame] | 839 | static void ovl_unescape(char *s) |
| 840 | { |
| 841 | char *d = s; |
| 842 | |
| 843 | for (;; s++, d++) { |
| 844 | if (*s == '\\') |
| 845 | s++; |
| 846 | *d = *s; |
| 847 | if (!*s) |
| 848 | break; |
| 849 | } |
| 850 | } |
| 851 | |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 852 | static int ovl_mount_dir_noesc(const char *name, struct path *path) |
| 853 | { |
Miklos Szeredi | a78d9f0 | 2014-12-13 00:59:52 +0100 | [diff] [blame] | 854 | int err = -EINVAL; |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 855 | |
Miklos Szeredi | a78d9f0 | 2014-12-13 00:59:52 +0100 | [diff] [blame] | 856 | if (!*name) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 857 | pr_err("empty lowerdir\n"); |
Miklos Szeredi | a78d9f0 | 2014-12-13 00:59:52 +0100 | [diff] [blame] | 858 | goto out; |
| 859 | } |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 860 | err = kern_path(name, LOOKUP_FOLLOW, path); |
| 861 | if (err) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 862 | pr_err("failed to resolve '%s': %i\n", name, err); |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 863 | goto out; |
| 864 | } |
| 865 | err = -EINVAL; |
Miklos Szeredi | 7c03b5d | 2015-06-22 13:53:48 +0200 | [diff] [blame] | 866 | if (ovl_dentry_weird(path->dentry)) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 867 | pr_err("filesystem on '%s' not supported\n", name); |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 868 | goto out_put; |
| 869 | } |
Christian Brauner | 029a52a | 2021-01-21 14:19:47 +0100 | [diff] [blame] | 870 | if (mnt_user_ns(path->mnt) != &init_user_ns) { |
| 871 | pr_err("idmapped layers are currently not supported\n"); |
| 872 | goto out_put; |
| 873 | } |
Miklos Szeredi | 2b8c30e | 2016-12-16 11:02:56 +0100 | [diff] [blame] | 874 | if (!d_is_dir(path->dentry)) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 875 | pr_err("'%s' not a directory\n", name); |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 876 | goto out_put; |
| 877 | } |
| 878 | return 0; |
| 879 | |
| 880 | out_put: |
Miklos Szeredi | 8aafcb5 | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 881 | path_put_init(path); |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 882 | out: |
| 883 | return err; |
| 884 | } |
| 885 | |
| 886 | static int ovl_mount_dir(const char *name, struct path *path) |
| 887 | { |
| 888 | int err = -ENOMEM; |
| 889 | char *tmp = kstrdup(name, GFP_KERNEL); |
| 890 | |
| 891 | if (tmp) { |
| 892 | ovl_unescape(tmp); |
| 893 | err = ovl_mount_dir_noesc(tmp, path); |
Miklos Szeredi | 7c03b5d | 2015-06-22 13:53:48 +0200 | [diff] [blame] | 894 | |
Miklos Szeredi | bccece1 | 2020-03-17 15:04:22 +0100 | [diff] [blame] | 895 | if (!err && path->dentry->d_flags & DCACHE_OP_REAL) { |
Miklos Szeredi | 7925dad | 2020-03-17 15:04:22 +0100 | [diff] [blame] | 896 | pr_err("filesystem on '%s' not supported as upperdir\n", |
| 897 | tmp); |
| 898 | path_put_init(path); |
| 899 | err = -EINVAL; |
| 900 | } |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 901 | kfree(tmp); |
| 902 | } |
| 903 | return err; |
| 904 | } |
| 905 | |
Miklos Szeredi | 6b2d5fe | 2016-12-16 11:02:56 +0100 | [diff] [blame] | 906 | static int ovl_check_namelen(struct path *path, struct ovl_fs *ofs, |
| 907 | const char *name) |
| 908 | { |
| 909 | struct kstatfs statfs; |
| 910 | int err = vfs_statfs(path, &statfs); |
| 911 | |
| 912 | if (err) |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 913 | pr_err("statfs failed on '%s'\n", name); |
Miklos Szeredi | 6b2d5fe | 2016-12-16 11:02:56 +0100 | [diff] [blame] | 914 | else |
| 915 | ofs->namelen = max(ofs->namelen, statfs.f_namelen); |
| 916 | |
| 917 | return err; |
| 918 | } |
| 919 | |
| 920 | static int ovl_lower_dir(const char *name, struct path *path, |
Miklos Szeredi | f428884 | 2020-03-17 15:04:22 +0100 | [diff] [blame] | 921 | struct ovl_fs *ofs, int *stack_depth) |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 922 | { |
Amir Goldstein | e487d88 | 2017-11-07 13:55:04 +0200 | [diff] [blame] | 923 | int fh_type; |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 924 | int err; |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 925 | |
Miklos Szeredi | a78d9f0 | 2014-12-13 00:59:52 +0100 | [diff] [blame] | 926 | err = ovl_mount_dir_noesc(name, path); |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 927 | if (err) |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 928 | return err; |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 929 | |
Miklos Szeredi | 6b2d5fe | 2016-12-16 11:02:56 +0100 | [diff] [blame] | 930 | err = ovl_check_namelen(path, ofs, name); |
| 931 | if (err) |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 932 | return err; |
Miklos Szeredi | 6b2d5fe | 2016-12-16 11:02:56 +0100 | [diff] [blame] | 933 | |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 934 | *stack_depth = max(*stack_depth, path->mnt->mnt_sb->s_stack_depth); |
| 935 | |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 936 | /* |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 937 | * The inodes index feature and NFS export need to encode and decode |
| 938 | * file handles, so they require that all layers support them. |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 939 | */ |
Amir Goldstein | e487d88 | 2017-11-07 13:55:04 +0200 | [diff] [blame] | 940 | fh_type = ovl_can_decode_fh(path->dentry->d_sb); |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 941 | if ((ofs->config.nfs_export || |
Amir Goldstein | e487d88 | 2017-11-07 13:55:04 +0200 | [diff] [blame] | 942 | (ofs->config.index && ofs->config.upperdir)) && !fh_type) { |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 943 | ofs->config.index = false; |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 944 | ofs->config.nfs_export = false; |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 945 | pr_warn("fs on '%s' does not support file handles, falling back to index=off,nfs_export=off.\n", |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 946 | name); |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 947 | } |
Amir Goldstein | b0e0f69 | 2021-03-09 18:26:54 +0200 | [diff] [blame] | 948 | /* |
| 949 | * Decoding origin file handle is required for persistent st_ino. |
| 950 | * Without persistent st_ino, xino=auto falls back to xino=off. |
| 951 | */ |
| 952 | if (ofs->config.xino == OVL_XINO_AUTO && |
| 953 | ofs->config.upperdir && !fh_type) { |
| 954 | ofs->config.xino = OVL_XINO_OFF; |
| 955 | pr_warn("fs on '%s' does not support file handles, falling back to xino=off.\n", |
| 956 | name); |
| 957 | } |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 958 | |
Amir Goldstein | e487d88 | 2017-11-07 13:55:04 +0200 | [diff] [blame] | 959 | /* Check if lower fs has 32bit inode numbers */ |
| 960 | if (fh_type != FILEID_INO32_GEN) |
Amir Goldstein | 0f831ec | 2019-11-16 18:14:41 +0200 | [diff] [blame] | 961 | ofs->xino_mode = -1; |
Amir Goldstein | e487d88 | 2017-11-07 13:55:04 +0200 | [diff] [blame] | 962 | |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 963 | return 0; |
Miklos Szeredi | ab50882 | 2014-12-13 00:59:49 +0100 | [diff] [blame] | 964 | } |
| 965 | |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 966 | /* Workdir should not be subdir of upperdir and vice versa */ |
| 967 | static bool ovl_workdir_ok(struct dentry *workdir, struct dentry *upperdir) |
| 968 | { |
| 969 | bool ok = false; |
| 970 | |
| 971 | if (workdir != upperdir) { |
| 972 | ok = (lock_rename(workdir, upperdir) == NULL); |
| 973 | unlock_rename(workdir, upperdir); |
| 974 | } |
| 975 | return ok; |
| 976 | } |
| 977 | |
Miklos Szeredi | a78d9f0 | 2014-12-13 00:59:52 +0100 | [diff] [blame] | 978 | static unsigned int ovl_split_lowerdirs(char *str) |
| 979 | { |
| 980 | unsigned int ctr = 1; |
| 981 | char *s, *d; |
| 982 | |
| 983 | for (s = d = str;; s++, d++) { |
| 984 | if (*s == '\\') { |
| 985 | s++; |
| 986 | } else if (*s == ':') { |
| 987 | *d = '\0'; |
| 988 | ctr++; |
| 989 | continue; |
| 990 | } |
| 991 | *d = *s; |
| 992 | if (!*s) |
| 993 | break; |
| 994 | } |
| 995 | return ctr; |
| 996 | } |
| 997 | |
Andreas Gruenbacher | 0c97be2 | 2016-08-22 16:36:49 +0200 | [diff] [blame] | 998 | static int __maybe_unused |
Andreas Gruenbacher | 0eb45fc | 2016-08-22 17:52:55 +0200 | [diff] [blame] | 999 | ovl_posix_acl_xattr_get(const struct xattr_handler *handler, |
| 1000 | struct dentry *dentry, struct inode *inode, |
| 1001 | const char *name, void *buffer, size_t size) |
| 1002 | { |
Miklos Szeredi | 1d88f18 | 2017-07-20 11:08:21 +0200 | [diff] [blame] | 1003 | return ovl_xattr_get(dentry, inode, handler->name, buffer, size); |
Andreas Gruenbacher | 0eb45fc | 2016-08-22 17:52:55 +0200 | [diff] [blame] | 1004 | } |
| 1005 | |
| 1006 | static int __maybe_unused |
Andreas Gruenbacher | 0c97be2 | 2016-08-22 16:36:49 +0200 | [diff] [blame] | 1007 | ovl_posix_acl_xattr_set(const struct xattr_handler *handler, |
Christian Brauner | e65ce2a | 2021-01-21 14:19:27 +0100 | [diff] [blame] | 1008 | struct user_namespace *mnt_userns, |
Andreas Gruenbacher | 0c97be2 | 2016-08-22 16:36:49 +0200 | [diff] [blame] | 1009 | struct dentry *dentry, struct inode *inode, |
| 1010 | const char *name, const void *value, |
| 1011 | size_t size, int flags) |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1012 | { |
| 1013 | struct dentry *workdir = ovl_workdir(dentry); |
Miklos Szeredi | 09d8b58 | 2017-07-04 22:03:16 +0200 | [diff] [blame] | 1014 | struct inode *realinode = ovl_inode_real(inode); |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1015 | struct posix_acl *acl = NULL; |
| 1016 | int err; |
| 1017 | |
| 1018 | /* Check that everything is OK before copy-up */ |
| 1019 | if (value) { |
| 1020 | acl = posix_acl_from_xattr(&init_user_ns, value, size); |
| 1021 | if (IS_ERR(acl)) |
| 1022 | return PTR_ERR(acl); |
| 1023 | } |
| 1024 | err = -EOPNOTSUPP; |
| 1025 | if (!IS_POSIXACL(d_inode(workdir))) |
| 1026 | goto out_acl_release; |
| 1027 | if (!realinode->i_op->set_acl) |
| 1028 | goto out_acl_release; |
| 1029 | if (handler->flags == ACL_TYPE_DEFAULT && !S_ISDIR(inode->i_mode)) { |
| 1030 | err = acl ? -EACCES : 0; |
| 1031 | goto out_acl_release; |
| 1032 | } |
| 1033 | err = -EPERM; |
Christian Brauner | 21cb47b | 2021-01-21 14:19:25 +0100 | [diff] [blame] | 1034 | if (!inode_owner_or_capable(&init_user_ns, inode)) |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1035 | goto out_acl_release; |
| 1036 | |
| 1037 | posix_acl_release(acl); |
| 1038 | |
Miklos Szeredi | fd3220d | 2016-10-31 14:42:14 +0100 | [diff] [blame] | 1039 | /* |
| 1040 | * Check if sgid bit needs to be cleared (actual setacl operation will |
| 1041 | * be done with mounter's capabilities and so that won't do it for us). |
| 1042 | */ |
| 1043 | if (unlikely(inode->i_mode & S_ISGID) && |
| 1044 | handler->flags == ACL_TYPE_ACCESS && |
| 1045 | !in_group_p(inode->i_gid) && |
Christian Brauner | 0558c1b | 2021-01-21 14:19:23 +0100 | [diff] [blame] | 1046 | !capable_wrt_inode_uidgid(&init_user_ns, inode, CAP_FSETID)) { |
Miklos Szeredi | fd3220d | 2016-10-31 14:42:14 +0100 | [diff] [blame] | 1047 | struct iattr iattr = { .ia_valid = ATTR_KILL_SGID }; |
| 1048 | |
Christian Brauner | 549c729 | 2021-01-21 14:19:43 +0100 | [diff] [blame] | 1049 | err = ovl_setattr(&init_user_ns, dentry, &iattr); |
Miklos Szeredi | fd3220d | 2016-10-31 14:42:14 +0100 | [diff] [blame] | 1050 | if (err) |
| 1051 | return err; |
| 1052 | } |
| 1053 | |
Miklos Szeredi | 1d88f18 | 2017-07-20 11:08:21 +0200 | [diff] [blame] | 1054 | err = ovl_xattr_set(dentry, inode, handler->name, value, size, flags); |
Miklos Szeredi | ce31513 | 2016-09-01 11:12:00 +0200 | [diff] [blame] | 1055 | if (!err) |
Miklos Szeredi | 09d8b58 | 2017-07-04 22:03:16 +0200 | [diff] [blame] | 1056 | ovl_copyattr(ovl_inode_real(inode), inode); |
Miklos Szeredi | ce31513 | 2016-09-01 11:12:00 +0200 | [diff] [blame] | 1057 | |
| 1058 | return err; |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1059 | |
| 1060 | out_acl_release: |
| 1061 | posix_acl_release(acl); |
| 1062 | return err; |
| 1063 | } |
| 1064 | |
Andreas Gruenbacher | 0eb45fc | 2016-08-22 17:52:55 +0200 | [diff] [blame] | 1065 | static int ovl_own_xattr_get(const struct xattr_handler *handler, |
| 1066 | struct dentry *dentry, struct inode *inode, |
| 1067 | const char *name, void *buffer, size_t size) |
| 1068 | { |
Amir Goldstein | 48fab5d | 2016-11-16 11:22:39 +0200 | [diff] [blame] | 1069 | return -EOPNOTSUPP; |
Andreas Gruenbacher | 0eb45fc | 2016-08-22 17:52:55 +0200 | [diff] [blame] | 1070 | } |
| 1071 | |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1072 | static int ovl_own_xattr_set(const struct xattr_handler *handler, |
Christian Brauner | e65ce2a | 2021-01-21 14:19:27 +0100 | [diff] [blame] | 1073 | struct user_namespace *mnt_userns, |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1074 | struct dentry *dentry, struct inode *inode, |
| 1075 | const char *name, const void *value, |
| 1076 | size_t size, int flags) |
| 1077 | { |
Amir Goldstein | 48fab5d | 2016-11-16 11:22:39 +0200 | [diff] [blame] | 1078 | return -EOPNOTSUPP; |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1079 | } |
| 1080 | |
Andreas Gruenbacher | 0eb45fc | 2016-08-22 17:52:55 +0200 | [diff] [blame] | 1081 | static int ovl_other_xattr_get(const struct xattr_handler *handler, |
| 1082 | struct dentry *dentry, struct inode *inode, |
| 1083 | const char *name, void *buffer, size_t size) |
| 1084 | { |
Miklos Szeredi | 1d88f18 | 2017-07-20 11:08:21 +0200 | [diff] [blame] | 1085 | return ovl_xattr_get(dentry, inode, name, buffer, size); |
Andreas Gruenbacher | 0eb45fc | 2016-08-22 17:52:55 +0200 | [diff] [blame] | 1086 | } |
| 1087 | |
Andreas Gruenbacher | 0e585cc | 2016-08-22 17:22:11 +0200 | [diff] [blame] | 1088 | static int ovl_other_xattr_set(const struct xattr_handler *handler, |
Christian Brauner | e65ce2a | 2021-01-21 14:19:27 +0100 | [diff] [blame] | 1089 | struct user_namespace *mnt_userns, |
Andreas Gruenbacher | 0e585cc | 2016-08-22 17:22:11 +0200 | [diff] [blame] | 1090 | struct dentry *dentry, struct inode *inode, |
| 1091 | const char *name, const void *value, |
| 1092 | size_t size, int flags) |
| 1093 | { |
Miklos Szeredi | 1d88f18 | 2017-07-20 11:08:21 +0200 | [diff] [blame] | 1094 | return ovl_xattr_set(dentry, inode, name, value, size, flags); |
Andreas Gruenbacher | 0e585cc | 2016-08-22 17:22:11 +0200 | [diff] [blame] | 1095 | } |
| 1096 | |
Andreas Gruenbacher | 0c97be2 | 2016-08-22 16:36:49 +0200 | [diff] [blame] | 1097 | static const struct xattr_handler __maybe_unused |
| 1098 | ovl_posix_acl_access_xattr_handler = { |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1099 | .name = XATTR_NAME_POSIX_ACL_ACCESS, |
| 1100 | .flags = ACL_TYPE_ACCESS, |
Andreas Gruenbacher | 0eb45fc | 2016-08-22 17:52:55 +0200 | [diff] [blame] | 1101 | .get = ovl_posix_acl_xattr_get, |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1102 | .set = ovl_posix_acl_xattr_set, |
| 1103 | }; |
| 1104 | |
Andreas Gruenbacher | 0c97be2 | 2016-08-22 16:36:49 +0200 | [diff] [blame] | 1105 | static const struct xattr_handler __maybe_unused |
| 1106 | ovl_posix_acl_default_xattr_handler = { |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1107 | .name = XATTR_NAME_POSIX_ACL_DEFAULT, |
| 1108 | .flags = ACL_TYPE_DEFAULT, |
Andreas Gruenbacher | 0eb45fc | 2016-08-22 17:52:55 +0200 | [diff] [blame] | 1109 | .get = ovl_posix_acl_xattr_get, |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1110 | .set = ovl_posix_acl_xattr_set, |
| 1111 | }; |
| 1112 | |
Miklos Szeredi | 2d2f2d7 | 2020-12-14 15:26:14 +0100 | [diff] [blame] | 1113 | static const struct xattr_handler ovl_own_trusted_xattr_handler = { |
| 1114 | .prefix = OVL_XATTR_TRUSTED_PREFIX, |
| 1115 | .get = ovl_own_xattr_get, |
| 1116 | .set = ovl_own_xattr_set, |
| 1117 | }; |
| 1118 | |
| 1119 | static const struct xattr_handler ovl_own_user_xattr_handler = { |
| 1120 | .prefix = OVL_XATTR_USER_PREFIX, |
Andreas Gruenbacher | 0eb45fc | 2016-08-22 17:52:55 +0200 | [diff] [blame] | 1121 | .get = ovl_own_xattr_get, |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1122 | .set = ovl_own_xattr_set, |
| 1123 | }; |
| 1124 | |
| 1125 | static const struct xattr_handler ovl_other_xattr_handler = { |
| 1126 | .prefix = "", /* catch all */ |
Andreas Gruenbacher | 0eb45fc | 2016-08-22 17:52:55 +0200 | [diff] [blame] | 1127 | .get = ovl_other_xattr_get, |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1128 | .set = ovl_other_xattr_set, |
| 1129 | }; |
| 1130 | |
Miklos Szeredi | 2d2f2d7 | 2020-12-14 15:26:14 +0100 | [diff] [blame] | 1131 | static const struct xattr_handler *ovl_trusted_xattr_handlers[] = { |
Andreas Gruenbacher | 0c97be2 | 2016-08-22 16:36:49 +0200 | [diff] [blame] | 1132 | #ifdef CONFIG_FS_POSIX_ACL |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1133 | &ovl_posix_acl_access_xattr_handler, |
| 1134 | &ovl_posix_acl_default_xattr_handler, |
Andreas Gruenbacher | 0c97be2 | 2016-08-22 16:36:49 +0200 | [diff] [blame] | 1135 | #endif |
Miklos Szeredi | 2d2f2d7 | 2020-12-14 15:26:14 +0100 | [diff] [blame] | 1136 | &ovl_own_trusted_xattr_handler, |
| 1137 | &ovl_other_xattr_handler, |
| 1138 | NULL |
| 1139 | }; |
| 1140 | |
| 1141 | static const struct xattr_handler *ovl_user_xattr_handlers[] = { |
| 1142 | #ifdef CONFIG_FS_POSIX_ACL |
| 1143 | &ovl_posix_acl_access_xattr_handler, |
| 1144 | &ovl_posix_acl_default_xattr_handler, |
| 1145 | #endif |
| 1146 | &ovl_own_user_xattr_handler, |
Miklos Szeredi | d837a49 | 2016-07-29 12:05:24 +0200 | [diff] [blame] | 1147 | &ovl_other_xattr_handler, |
| 1148 | NULL |
| 1149 | }; |
| 1150 | |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1151 | static int ovl_setup_trap(struct super_block *sb, struct dentry *dir, |
| 1152 | struct inode **ptrap, const char *name) |
| 1153 | { |
| 1154 | struct inode *trap; |
| 1155 | int err; |
| 1156 | |
| 1157 | trap = ovl_get_trap_inode(sb, dir); |
Arnd Bergmann | 1dac6f5b | 2019-06-17 14:39:29 +0200 | [diff] [blame] | 1158 | err = PTR_ERR_OR_ZERO(trap); |
| 1159 | if (err) { |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1160 | if (err == -ELOOP) |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1161 | pr_err("conflicting %s path\n", name); |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1162 | return err; |
| 1163 | } |
| 1164 | |
| 1165 | *ptrap = trap; |
| 1166 | return 0; |
| 1167 | } |
| 1168 | |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1169 | /* |
| 1170 | * Determine how we treat concurrent use of upperdir/workdir based on the |
| 1171 | * index feature. This is papering over mount leaks of container runtimes, |
| 1172 | * for example, an old overlay mount is leaked and now its upperdir is |
| 1173 | * attempted to be used as a lower layer in a new overlay mount. |
| 1174 | */ |
| 1175 | static int ovl_report_in_use(struct ovl_fs *ofs, const char *name) |
| 1176 | { |
| 1177 | if (ofs->config.index) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1178 | pr_err("%s is in-use as upperdir/workdir of another mount, mount with '-o index=off' to override exclusive upperdir protection.\n", |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1179 | name); |
| 1180 | return -EBUSY; |
| 1181 | } else { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1182 | pr_warn("%s is in-use as upperdir/workdir of another mount, accessing files from both mounts will result in undefined behavior.\n", |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1183 | name); |
| 1184 | return 0; |
| 1185 | } |
| 1186 | } |
| 1187 | |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1188 | static int ovl_get_upper(struct super_block *sb, struct ovl_fs *ofs, |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1189 | struct ovl_layer *upper_layer, struct path *upperpath) |
Miklos Szeredi | 6ee8acf | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1190 | { |
Miklos Szeredi | 5064975 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1191 | struct vfsmount *upper_mnt; |
Miklos Szeredi | 6ee8acf | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1192 | int err; |
| 1193 | |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 1194 | err = ovl_mount_dir(ofs->config.upperdir, upperpath); |
Miklos Szeredi | 6ee8acf | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1195 | if (err) |
| 1196 | goto out; |
| 1197 | |
Amir Goldstein | e21a6c5 | 2021-04-08 14:30:20 +0300 | [diff] [blame] | 1198 | /* Upperdir path should not be r/o */ |
| 1199 | if (__mnt_is_readonly(upperpath->mnt)) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1200 | pr_err("upper fs is r/o, try multi-lower layers mount\n"); |
Miklos Szeredi | 6ee8acf | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1201 | err = -EINVAL; |
| 1202 | goto out; |
| 1203 | } |
| 1204 | |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 1205 | err = ovl_check_namelen(upperpath, ofs, ofs->config.upperdir); |
Miklos Szeredi | 6ee8acf | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1206 | if (err) |
| 1207 | goto out; |
| 1208 | |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1209 | err = ovl_setup_trap(sb, upperpath->dentry, &upper_layer->trap, |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1210 | "upperdir"); |
| 1211 | if (err) |
| 1212 | goto out; |
| 1213 | |
Miklos Szeredi | 5064975 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1214 | upper_mnt = clone_private_mount(upperpath); |
| 1215 | err = PTR_ERR(upper_mnt); |
| 1216 | if (IS_ERR(upper_mnt)) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1217 | pr_err("failed to clone upperpath\n"); |
Miklos Szeredi | 5064975 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1218 | goto out; |
| 1219 | } |
| 1220 | |
| 1221 | /* Don't inherit atime flags */ |
| 1222 | upper_mnt->mnt_flags &= ~(MNT_NOATIME | MNT_NODIRATIME | MNT_RELATIME); |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1223 | upper_layer->mnt = upper_mnt; |
| 1224 | upper_layer->idx = 0; |
| 1225 | upper_layer->fsid = 0; |
Miklos Szeredi | 8c25741 | 2018-09-10 11:43:29 +0200 | [diff] [blame] | 1226 | |
Jeffle Xu | 654255f | 2020-04-23 19:06:55 +0800 | [diff] [blame] | 1227 | /* |
| 1228 | * Inherit SB_NOSEC flag from upperdir. |
| 1229 | * |
| 1230 | * This optimization changes behavior when a security related attribute |
| 1231 | * (suid/sgid/security.*) is changed on an underlying layer. This is |
| 1232 | * okay because we don't yet have guarantees in that case, but it will |
| 1233 | * need careful treatment once we want to honour changes to underlying |
| 1234 | * filesystems. |
| 1235 | */ |
| 1236 | if (upper_mnt->mnt_sb->s_flags & SB_NOSEC) |
| 1237 | sb->s_flags |= SB_NOSEC; |
| 1238 | |
Miklos Szeredi | 08f4c7c | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1239 | if (ovl_inuse_trylock(ovl_upper_mnt(ofs)->mnt_root)) { |
Miklos Szeredi | 8c25741 | 2018-09-10 11:43:29 +0200 | [diff] [blame] | 1240 | ofs->upperdir_locked = true; |
Miklos Szeredi | 8c25741 | 2018-09-10 11:43:29 +0200 | [diff] [blame] | 1241 | } else { |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1242 | err = ovl_report_in_use(ofs, "upperdir"); |
| 1243 | if (err) |
| 1244 | goto out; |
Miklos Szeredi | 8c25741 | 2018-09-10 11:43:29 +0200 | [diff] [blame] | 1245 | } |
| 1246 | |
Miklos Szeredi | 6ee8acf | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1247 | err = 0; |
| 1248 | out: |
| 1249 | return err; |
| 1250 | } |
| 1251 | |
Amir Goldstein | cad218a | 2020-02-20 09:00:19 +0200 | [diff] [blame] | 1252 | /* |
| 1253 | * Returns 1 if RENAME_WHITEOUT is supported, 0 if not supported and |
| 1254 | * negative values if error is encountered. |
| 1255 | */ |
| 1256 | static int ovl_check_rename_whiteout(struct dentry *workdir) |
| 1257 | { |
| 1258 | struct inode *dir = d_inode(workdir); |
| 1259 | struct dentry *temp; |
| 1260 | struct dentry *dest; |
| 1261 | struct dentry *whiteout; |
| 1262 | struct name_snapshot name; |
| 1263 | int err; |
| 1264 | |
| 1265 | inode_lock_nested(dir, I_MUTEX_PARENT); |
| 1266 | |
| 1267 | temp = ovl_create_temp(workdir, OVL_CATTR(S_IFREG | 0)); |
| 1268 | err = PTR_ERR(temp); |
| 1269 | if (IS_ERR(temp)) |
| 1270 | goto out_unlock; |
| 1271 | |
| 1272 | dest = ovl_lookup_temp(workdir); |
| 1273 | err = PTR_ERR(dest); |
| 1274 | if (IS_ERR(dest)) { |
| 1275 | dput(temp); |
| 1276 | goto out_unlock; |
| 1277 | } |
| 1278 | |
| 1279 | /* Name is inline and stable - using snapshot as a copy helper */ |
| 1280 | take_dentry_name_snapshot(&name, temp); |
| 1281 | err = ovl_do_rename(dir, temp, dir, dest, RENAME_WHITEOUT); |
| 1282 | if (err) { |
| 1283 | if (err == -EINVAL) |
| 1284 | err = 0; |
| 1285 | goto cleanup_temp; |
| 1286 | } |
| 1287 | |
| 1288 | whiteout = lookup_one_len(name.name.name, workdir, name.name.len); |
| 1289 | err = PTR_ERR(whiteout); |
| 1290 | if (IS_ERR(whiteout)) |
| 1291 | goto cleanup_temp; |
| 1292 | |
| 1293 | err = ovl_is_whiteout(whiteout); |
| 1294 | |
| 1295 | /* Best effort cleanup of whiteout and temp file */ |
| 1296 | if (err) |
| 1297 | ovl_cleanup(dir, whiteout); |
| 1298 | dput(whiteout); |
| 1299 | |
| 1300 | cleanup_temp: |
| 1301 | ovl_cleanup(dir, temp); |
| 1302 | release_dentry_name_snapshot(&name); |
| 1303 | dput(temp); |
| 1304 | dput(dest); |
| 1305 | |
| 1306 | out_unlock: |
| 1307 | inode_unlock(dir); |
| 1308 | |
| 1309 | return err; |
| 1310 | } |
| 1311 | |
Vivek Goyal | c86243b0 | 2020-08-31 14:15:29 -0400 | [diff] [blame] | 1312 | static struct dentry *ovl_lookup_or_create(struct dentry *parent, |
| 1313 | const char *name, umode_t mode) |
| 1314 | { |
| 1315 | size_t len = strlen(name); |
| 1316 | struct dentry *child; |
| 1317 | |
| 1318 | inode_lock_nested(parent->d_inode, I_MUTEX_PARENT); |
| 1319 | child = lookup_one_len(name, parent, len); |
| 1320 | if (!IS_ERR(child) && !child->d_inode) |
| 1321 | child = ovl_create_real(parent->d_inode, child, |
| 1322 | OVL_CATTR(mode)); |
| 1323 | inode_unlock(parent->d_inode); |
| 1324 | dput(parent); |
| 1325 | |
| 1326 | return child; |
| 1327 | } |
| 1328 | |
| 1329 | /* |
| 1330 | * Creates $workdir/work/incompat/volatile/dirty file if it is not already |
| 1331 | * present. |
| 1332 | */ |
| 1333 | static int ovl_create_volatile_dirty(struct ovl_fs *ofs) |
| 1334 | { |
| 1335 | unsigned int ctr; |
| 1336 | struct dentry *d = dget(ofs->workbasedir); |
| 1337 | static const char *const volatile_path[] = { |
| 1338 | OVL_WORKDIR_NAME, "incompat", "volatile", "dirty" |
| 1339 | }; |
| 1340 | const char *const *name = volatile_path; |
| 1341 | |
| 1342 | for (ctr = ARRAY_SIZE(volatile_path); ctr; ctr--, name++) { |
| 1343 | d = ovl_lookup_or_create(d, *name, ctr > 1 ? S_IFDIR : S_IFREG); |
| 1344 | if (IS_ERR(d)) |
| 1345 | return PTR_ERR(d); |
| 1346 | } |
| 1347 | dput(d); |
| 1348 | return 0; |
| 1349 | } |
| 1350 | |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1351 | static int ovl_make_workdir(struct super_block *sb, struct ovl_fs *ofs, |
| 1352 | struct path *workpath) |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1353 | { |
Miklos Szeredi | 08f4c7c | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1354 | struct vfsmount *mnt = ovl_upper_mnt(ofs); |
Amir Goldstein | 235ce9e | 2020-08-30 23:28:03 +0300 | [diff] [blame] | 1355 | struct dentry *temp, *workdir; |
Amir Goldstein | d80172c | 2020-02-20 09:03:08 +0200 | [diff] [blame] | 1356 | bool rename_whiteout; |
| 1357 | bool d_type; |
Amir Goldstein | e487d88 | 2017-11-07 13:55:04 +0200 | [diff] [blame] | 1358 | int fh_type; |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1359 | int err; |
| 1360 | |
Amir Goldstein | 2ba9d57 | 2018-01-03 18:54:41 +0200 | [diff] [blame] | 1361 | err = mnt_want_write(mnt); |
| 1362 | if (err) |
| 1363 | return err; |
| 1364 | |
Amir Goldstein | 235ce9e | 2020-08-30 23:28:03 +0300 | [diff] [blame] | 1365 | workdir = ovl_workdir_create(ofs, OVL_WORKDIR_NAME, false); |
| 1366 | err = PTR_ERR(workdir); |
| 1367 | if (IS_ERR_OR_NULL(workdir)) |
Amir Goldstein | 2ba9d57 | 2018-01-03 18:54:41 +0200 | [diff] [blame] | 1368 | goto out; |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1369 | |
Amir Goldstein | 235ce9e | 2020-08-30 23:28:03 +0300 | [diff] [blame] | 1370 | ofs->workdir = workdir; |
| 1371 | |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1372 | err = ovl_setup_trap(sb, ofs->workdir, &ofs->workdir_trap, "workdir"); |
| 1373 | if (err) |
| 1374 | goto out; |
| 1375 | |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1376 | /* |
| 1377 | * Upper should support d_type, else whiteouts are visible. Given |
| 1378 | * workdir and upper are on same fs, we can do iterate_dir() on |
| 1379 | * workdir. This check requires successful creation of workdir in |
| 1380 | * previous step. |
| 1381 | */ |
| 1382 | err = ovl_check_d_type_supported(workpath); |
| 1383 | if (err < 0) |
Amir Goldstein | 2ba9d57 | 2018-01-03 18:54:41 +0200 | [diff] [blame] | 1384 | goto out; |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1385 | |
Amir Goldstein | d80172c | 2020-02-20 09:03:08 +0200 | [diff] [blame] | 1386 | d_type = err; |
| 1387 | if (!d_type) |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1388 | pr_warn("upper fs needs to support d_type.\n"); |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1389 | |
| 1390 | /* Check if upper/work fs supports O_TMPFILE */ |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 1391 | temp = ovl_do_tmpfile(ofs->workdir, S_IFREG | 0); |
| 1392 | ofs->tmpfile = !IS_ERR(temp); |
| 1393 | if (ofs->tmpfile) |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1394 | dput(temp); |
| 1395 | else |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1396 | pr_warn("upper fs does not support tmpfile.\n"); |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1397 | |
Amir Goldstein | cad218a | 2020-02-20 09:00:19 +0200 | [diff] [blame] | 1398 | |
| 1399 | /* Check if upper/work fs supports RENAME_WHITEOUT */ |
| 1400 | err = ovl_check_rename_whiteout(ofs->workdir); |
| 1401 | if (err < 0) |
| 1402 | goto out; |
| 1403 | |
Amir Goldstein | d80172c | 2020-02-20 09:03:08 +0200 | [diff] [blame] | 1404 | rename_whiteout = err; |
| 1405 | if (!rename_whiteout) |
Amir Goldstein | cad218a | 2020-02-20 09:00:19 +0200 | [diff] [blame] | 1406 | pr_warn("upper fs does not support RENAME_WHITEOUT.\n"); |
| 1407 | |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1408 | /* |
Miklos Szeredi | 2d2f2d7 | 2020-12-14 15:26:14 +0100 | [diff] [blame] | 1409 | * Check if upper/work fs supports (trusted|user).overlay.* xattr |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1410 | */ |
Miklos Szeredi | 610afc0 | 2020-09-02 10:58:49 +0200 | [diff] [blame] | 1411 | err = ovl_do_setxattr(ofs, ofs->workdir, OVL_XATTR_OPAQUE, "0", 1); |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1412 | if (err) { |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 1413 | ofs->noxattr = true; |
Amir Goldstein | b0e0f69 | 2021-03-09 18:26:54 +0200 | [diff] [blame] | 1414 | if (ofs->config.index || ofs->config.metacopy) { |
| 1415 | ofs->config.index = false; |
| 1416 | ofs->config.metacopy = false; |
| 1417 | pr_warn("upper fs does not support xattr, falling back to index=off,metacopy=off.\n"); |
| 1418 | } |
| 1419 | /* |
| 1420 | * xattr support is required for persistent st_ino. |
| 1421 | * Without persistent st_ino, xino=auto falls back to xino=off. |
| 1422 | */ |
| 1423 | if (ofs->config.xino == OVL_XINO_AUTO) { |
| 1424 | ofs->config.xino = OVL_XINO_OFF; |
| 1425 | pr_warn("upper fs does not support xattr, falling back to xino=off.\n"); |
| 1426 | } |
Amir Goldstein | 2ba9d57 | 2018-01-03 18:54:41 +0200 | [diff] [blame] | 1427 | err = 0; |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1428 | } else { |
Miklos Szeredi | 610afc0 | 2020-09-02 10:58:49 +0200 | [diff] [blame] | 1429 | ovl_do_removexattr(ofs, ofs->workdir, OVL_XATTR_OPAQUE); |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1430 | } |
| 1431 | |
Amir Goldstein | d80172c | 2020-02-20 09:03:08 +0200 | [diff] [blame] | 1432 | /* |
| 1433 | * We allowed sub-optimal upper fs configuration and don't want to break |
| 1434 | * users over kernel upgrade, but we never allowed remote upper fs, so |
| 1435 | * we can enforce strict requirements for remote upper fs. |
| 1436 | */ |
| 1437 | if (ovl_dentry_remote(ofs->workdir) && |
| 1438 | (!d_type || !rename_whiteout || ofs->noxattr)) { |
| 1439 | pr_err("upper fs missing required features.\n"); |
| 1440 | err = -EINVAL; |
| 1441 | goto out; |
| 1442 | } |
| 1443 | |
Vivek Goyal | c86243b0 | 2020-08-31 14:15:29 -0400 | [diff] [blame] | 1444 | /* |
| 1445 | * For volatile mount, create a incompat/volatile/dirty file to keep |
| 1446 | * track of it. |
| 1447 | */ |
| 1448 | if (ofs->config.ovl_volatile) { |
| 1449 | err = ovl_create_volatile_dirty(ofs); |
| 1450 | if (err < 0) { |
| 1451 | pr_err("Failed to create volatile/dirty file.\n"); |
| 1452 | goto out; |
| 1453 | } |
| 1454 | } |
| 1455 | |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1456 | /* Check if upper/work fs supports file handles */ |
Amir Goldstein | e487d88 | 2017-11-07 13:55:04 +0200 | [diff] [blame] | 1457 | fh_type = ovl_can_decode_fh(ofs->workdir->d_sb); |
| 1458 | if (ofs->config.index && !fh_type) { |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 1459 | ofs->config.index = false; |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1460 | pr_warn("upper fs does not support file handles, falling back to index=off.\n"); |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1461 | } |
| 1462 | |
Amir Goldstein | e487d88 | 2017-11-07 13:55:04 +0200 | [diff] [blame] | 1463 | /* Check if upper fs has 32bit inode numbers */ |
| 1464 | if (fh_type != FILEID_INO32_GEN) |
Amir Goldstein | 0f831ec | 2019-11-16 18:14:41 +0200 | [diff] [blame] | 1465 | ofs->xino_mode = -1; |
Amir Goldstein | e487d88 | 2017-11-07 13:55:04 +0200 | [diff] [blame] | 1466 | |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 1467 | /* NFS export of r/w mount depends on index */ |
| 1468 | if (ofs->config.nfs_export && !ofs->config.index) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1469 | pr_warn("NFS export requires \"index=on\", falling back to nfs_export=off.\n"); |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 1470 | ofs->config.nfs_export = false; |
| 1471 | } |
Amir Goldstein | 2ba9d57 | 2018-01-03 18:54:41 +0200 | [diff] [blame] | 1472 | out: |
| 1473 | mnt_drop_write(mnt); |
| 1474 | return err; |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1475 | } |
| 1476 | |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1477 | static int ovl_get_workdir(struct super_block *sb, struct ovl_fs *ofs, |
| 1478 | struct path *upperpath) |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1479 | { |
| 1480 | int err; |
Miklos Szeredi | bca44b5 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1481 | struct path workpath = { }; |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1482 | |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 1483 | err = ovl_mount_dir(ofs->config.workdir, &workpath); |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1484 | if (err) |
| 1485 | goto out; |
| 1486 | |
| 1487 | err = -EINVAL; |
Miklos Szeredi | bca44b5 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1488 | if (upperpath->mnt != workpath.mnt) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1489 | pr_err("workdir and upperdir must reside under the same mount\n"); |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1490 | goto out; |
| 1491 | } |
Miklos Szeredi | bca44b5 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1492 | if (!ovl_workdir_ok(workpath.dentry, upperpath->dentry)) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1493 | pr_err("workdir and upperdir must be separate subtrees\n"); |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1494 | goto out; |
| 1495 | } |
| 1496 | |
Miklos Szeredi | 8c25741 | 2018-09-10 11:43:29 +0200 | [diff] [blame] | 1497 | ofs->workbasedir = dget(workpath.dentry); |
| 1498 | |
Miklos Szeredi | 8c25741 | 2018-09-10 11:43:29 +0200 | [diff] [blame] | 1499 | if (ovl_inuse_trylock(ofs->workbasedir)) { |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 1500 | ofs->workdir_locked = true; |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1501 | } else { |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1502 | err = ovl_report_in_use(ofs, "workdir"); |
| 1503 | if (err) |
| 1504 | goto out; |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1505 | } |
| 1506 | |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1507 | err = ovl_setup_trap(sb, ofs->workbasedir, &ofs->workbasedir_trap, |
| 1508 | "workdir"); |
| 1509 | if (err) |
| 1510 | goto out; |
| 1511 | |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1512 | err = ovl_make_workdir(sb, ofs, &workpath); |
Miklos Szeredi | bca44b5 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1513 | |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1514 | out: |
Miklos Szeredi | bca44b5 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1515 | path_put(&workpath); |
| 1516 | |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1517 | return err; |
| 1518 | } |
| 1519 | |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1520 | static int ovl_get_indexdir(struct super_block *sb, struct ovl_fs *ofs, |
| 1521 | struct ovl_entry *oe, struct path *upperpath) |
Miklos Szeredi | f7e3a7d | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1522 | { |
Miklos Szeredi | 08f4c7c | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1523 | struct vfsmount *mnt = ovl_upper_mnt(ofs); |
Amir Goldstein | 235ce9e | 2020-08-30 23:28:03 +0300 | [diff] [blame] | 1524 | struct dentry *indexdir; |
Miklos Szeredi | f7e3a7d | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1525 | int err; |
| 1526 | |
Amir Goldstein | 2ba9d57 | 2018-01-03 18:54:41 +0200 | [diff] [blame] | 1527 | err = mnt_want_write(mnt); |
| 1528 | if (err) |
| 1529 | return err; |
| 1530 | |
Miklos Szeredi | f7e3a7d | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1531 | /* Verify lower root is upper root origin */ |
Miklos Szeredi | 610afc0 | 2020-09-02 10:58:49 +0200 | [diff] [blame] | 1532 | err = ovl_verify_origin(ofs, upperpath->dentry, |
| 1533 | oe->lowerstack[0].dentry, true); |
Miklos Szeredi | f7e3a7d | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1534 | if (err) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1535 | pr_err("failed to verify upper root origin\n"); |
Miklos Szeredi | f7e3a7d | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1536 | goto out; |
| 1537 | } |
| 1538 | |
Amir Goldstein | 470c156 | 2020-07-13 17:19:43 +0300 | [diff] [blame] | 1539 | /* index dir will act also as workdir */ |
| 1540 | iput(ofs->workdir_trap); |
| 1541 | ofs->workdir_trap = NULL; |
| 1542 | dput(ofs->workdir); |
| 1543 | ofs->workdir = NULL; |
Amir Goldstein | 235ce9e | 2020-08-30 23:28:03 +0300 | [diff] [blame] | 1544 | indexdir = ovl_workdir_create(ofs, OVL_INDEXDIR_NAME, true); |
| 1545 | if (IS_ERR(indexdir)) { |
| 1546 | err = PTR_ERR(indexdir); |
| 1547 | } else if (indexdir) { |
| 1548 | ofs->indexdir = indexdir; |
| 1549 | ofs->workdir = dget(indexdir); |
Amir Goldstein | 2039636 | 2020-06-21 09:37:59 +0300 | [diff] [blame] | 1550 | |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1551 | err = ovl_setup_trap(sb, ofs->indexdir, &ofs->indexdir_trap, |
| 1552 | "indexdir"); |
| 1553 | if (err) |
| 1554 | goto out; |
| 1555 | |
Amir Goldstein | ad1d615 | 2018-01-11 10:47:03 +0200 | [diff] [blame] | 1556 | /* |
| 1557 | * Verify upper root is exclusively associated with index dir. |
Miklos Szeredi | 2d2f2d7 | 2020-12-14 15:26:14 +0100 | [diff] [blame] | 1558 | * Older kernels stored upper fh in ".overlay.origin" |
Amir Goldstein | ad1d615 | 2018-01-11 10:47:03 +0200 | [diff] [blame] | 1559 | * xattr. If that xattr exists, verify that it is a match to |
| 1560 | * upper dir file handle. In any case, verify or set xattr |
Miklos Szeredi | 2d2f2d7 | 2020-12-14 15:26:14 +0100 | [diff] [blame] | 1561 | * ".overlay.upper" to indicate that index may have |
Amir Goldstein | ad1d615 | 2018-01-11 10:47:03 +0200 | [diff] [blame] | 1562 | * directory entries. |
| 1563 | */ |
Miklos Szeredi | 610afc0 | 2020-09-02 10:58:49 +0200 | [diff] [blame] | 1564 | if (ovl_check_origin_xattr(ofs, ofs->indexdir)) { |
| 1565 | err = ovl_verify_set_fh(ofs, ofs->indexdir, |
| 1566 | OVL_XATTR_ORIGIN, |
Amir Goldstein | ad1d615 | 2018-01-11 10:47:03 +0200 | [diff] [blame] | 1567 | upperpath->dentry, true, false); |
| 1568 | if (err) |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1569 | pr_err("failed to verify index dir 'origin' xattr\n"); |
Amir Goldstein | ad1d615 | 2018-01-11 10:47:03 +0200 | [diff] [blame] | 1570 | } |
Miklos Szeredi | 610afc0 | 2020-09-02 10:58:49 +0200 | [diff] [blame] | 1571 | err = ovl_verify_upper(ofs, ofs->indexdir, upperpath->dentry, |
| 1572 | true); |
Miklos Szeredi | f7e3a7d | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1573 | if (err) |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1574 | pr_err("failed to verify index dir 'upper' xattr\n"); |
Miklos Szeredi | f7e3a7d | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1575 | |
| 1576 | /* Cleanup bad/stale/orphan index entries */ |
| 1577 | if (!err) |
Amir Goldstein | 1eff1a1 | 2017-12-12 22:40:46 +0200 | [diff] [blame] | 1578 | err = ovl_indexdir_cleanup(ofs); |
Miklos Szeredi | f7e3a7d | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1579 | } |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 1580 | if (err || !ofs->indexdir) |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1581 | pr_warn("try deleting index dir or mounting with '-o index=off' to disable inodes index.\n"); |
Miklos Szeredi | f7e3a7d | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1582 | |
| 1583 | out: |
Amir Goldstein | 2ba9d57 | 2018-01-03 18:54:41 +0200 | [diff] [blame] | 1584 | mnt_drop_write(mnt); |
Miklos Szeredi | f7e3a7d | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1585 | return err; |
| 1586 | } |
| 1587 | |
Amir Goldstein | 9df085f | 2018-09-03 09:12:09 +0300 | [diff] [blame] | 1588 | static bool ovl_lower_uuid_ok(struct ovl_fs *ofs, const uuid_t *uuid) |
Amir Goldstein | 5148626 | 2018-03-28 20:22:41 +0300 | [diff] [blame] | 1589 | { |
| 1590 | unsigned int i; |
Amir Goldstein | 9df085f | 2018-09-03 09:12:09 +0300 | [diff] [blame] | 1591 | |
Miklos Szeredi | 08f4c7c | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1592 | if (!ofs->config.nfs_export && !ovl_upper_mnt(ofs)) |
Amir Goldstein | 9df085f | 2018-09-03 09:12:09 +0300 | [diff] [blame] | 1593 | return true; |
| 1594 | |
Amir Goldstein | a888db3 | 2020-07-08 16:16:13 +0300 | [diff] [blame] | 1595 | /* |
| 1596 | * We allow using single lower with null uuid for index and nfs_export |
| 1597 | * for example to support those features with single lower squashfs. |
| 1598 | * To avoid regressions in setups of overlay with re-formatted lower |
| 1599 | * squashfs, do not allow decoding origin with lower null uuid unless |
| 1600 | * user opted-in to one of the new features that require following the |
| 1601 | * lower inode of non-dir upper. |
| 1602 | */ |
Amir Goldstein | b0e0f69 | 2021-03-09 18:26:54 +0200 | [diff] [blame] | 1603 | if (!ofs->config.index && !ofs->config.metacopy && |
| 1604 | ofs->config.xino != OVL_XINO_ON && |
Amir Goldstein | a888db3 | 2020-07-08 16:16:13 +0300 | [diff] [blame] | 1605 | uuid_is_null(uuid)) |
| 1606 | return false; |
| 1607 | |
Amir Goldstein | 1b81ddd | 2019-11-16 18:52:20 +0200 | [diff] [blame] | 1608 | for (i = 0; i < ofs->numfs; i++) { |
Amir Goldstein | 9df085f | 2018-09-03 09:12:09 +0300 | [diff] [blame] | 1609 | /* |
| 1610 | * We use uuid to associate an overlay lower file handle with a |
| 1611 | * lower layer, so we can accept lower fs with null uuid as long |
| 1612 | * as all lower layers with null uuid are on the same fs. |
Amir Goldstein | 7e63c87 | 2019-11-14 22:28:41 +0200 | [diff] [blame] | 1613 | * if we detect multiple lower fs with the same uuid, we |
| 1614 | * disable lower file handle decoding on all of them. |
Amir Goldstein | 9df085f | 2018-09-03 09:12:09 +0300 | [diff] [blame] | 1615 | */ |
Amir Goldstein | 1b81ddd | 2019-11-16 18:52:20 +0200 | [diff] [blame] | 1616 | if (ofs->fs[i].is_lower && |
| 1617 | uuid_equal(&ofs->fs[i].sb->s_uuid, uuid)) { |
Amir Goldstein | 07f1e59 | 2020-01-14 21:59:22 +0200 | [diff] [blame] | 1618 | ofs->fs[i].bad_uuid = true; |
Amir Goldstein | 9df085f | 2018-09-03 09:12:09 +0300 | [diff] [blame] | 1619 | return false; |
Amir Goldstein | 7e63c87 | 2019-11-14 22:28:41 +0200 | [diff] [blame] | 1620 | } |
Amir Goldstein | 9df085f | 2018-09-03 09:12:09 +0300 | [diff] [blame] | 1621 | } |
| 1622 | return true; |
| 1623 | } |
| 1624 | |
| 1625 | /* Get a unique fsid for the layer */ |
| 1626 | static int ovl_get_fsid(struct ovl_fs *ofs, const struct path *path) |
| 1627 | { |
| 1628 | struct super_block *sb = path->mnt->mnt_sb; |
| 1629 | unsigned int i; |
Amir Goldstein | 5148626 | 2018-03-28 20:22:41 +0300 | [diff] [blame] | 1630 | dev_t dev; |
| 1631 | int err; |
Amir Goldstein | 7e63c87 | 2019-11-14 22:28:41 +0200 | [diff] [blame] | 1632 | bool bad_uuid = false; |
Amir Goldstein | b0e0f69 | 2021-03-09 18:26:54 +0200 | [diff] [blame] | 1633 | bool warn = false; |
Amir Goldstein | 5148626 | 2018-03-28 20:22:41 +0300 | [diff] [blame] | 1634 | |
Amir Goldstein | 07f1e59 | 2020-01-14 21:59:22 +0200 | [diff] [blame] | 1635 | for (i = 0; i < ofs->numfs; i++) { |
| 1636 | if (ofs->fs[i].sb == sb) |
| 1637 | return i; |
Amir Goldstein | 5148626 | 2018-03-28 20:22:41 +0300 | [diff] [blame] | 1638 | } |
| 1639 | |
Amir Goldstein | 9df085f | 2018-09-03 09:12:09 +0300 | [diff] [blame] | 1640 | if (!ovl_lower_uuid_ok(ofs, &sb->s_uuid)) { |
Amir Goldstein | 7e63c87 | 2019-11-14 22:28:41 +0200 | [diff] [blame] | 1641 | bad_uuid = true; |
Amir Goldstein | b0e0f69 | 2021-03-09 18:26:54 +0200 | [diff] [blame] | 1642 | if (ofs->config.xino == OVL_XINO_AUTO) { |
| 1643 | ofs->config.xino = OVL_XINO_OFF; |
| 1644 | warn = true; |
| 1645 | } |
Amir Goldstein | 7e63c87 | 2019-11-14 22:28:41 +0200 | [diff] [blame] | 1646 | if (ofs->config.index || ofs->config.nfs_export) { |
| 1647 | ofs->config.index = false; |
| 1648 | ofs->config.nfs_export = false; |
Amir Goldstein | b0e0f69 | 2021-03-09 18:26:54 +0200 | [diff] [blame] | 1649 | warn = true; |
| 1650 | } |
| 1651 | if (warn) { |
| 1652 | pr_warn("%s uuid detected in lower fs '%pd2', falling back to xino=%s,index=off,nfs_export=off.\n", |
Amir Goldstein | 7e63c87 | 2019-11-14 22:28:41 +0200 | [diff] [blame] | 1653 | uuid_is_null(&sb->s_uuid) ? "null" : |
| 1654 | "conflicting", |
Amir Goldstein | b0e0f69 | 2021-03-09 18:26:54 +0200 | [diff] [blame] | 1655 | path->dentry, ovl_xino_str[ofs->config.xino]); |
Amir Goldstein | 7e63c87 | 2019-11-14 22:28:41 +0200 | [diff] [blame] | 1656 | } |
Amir Goldstein | 9df085f | 2018-09-03 09:12:09 +0300 | [diff] [blame] | 1657 | } |
| 1658 | |
Amir Goldstein | 5148626 | 2018-03-28 20:22:41 +0300 | [diff] [blame] | 1659 | err = get_anon_bdev(&dev); |
| 1660 | if (err) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1661 | pr_err("failed to get anonymous bdev for lowerpath\n"); |
Amir Goldstein | 5148626 | 2018-03-28 20:22:41 +0300 | [diff] [blame] | 1662 | return err; |
| 1663 | } |
| 1664 | |
Amir Goldstein | 07f1e59 | 2020-01-14 21:59:22 +0200 | [diff] [blame] | 1665 | ofs->fs[ofs->numfs].sb = sb; |
| 1666 | ofs->fs[ofs->numfs].pseudo_dev = dev; |
| 1667 | ofs->fs[ofs->numfs].bad_uuid = bad_uuid; |
Amir Goldstein | 5148626 | 2018-03-28 20:22:41 +0300 | [diff] [blame] | 1668 | |
Amir Goldstein | 07f1e59 | 2020-01-14 21:59:22 +0200 | [diff] [blame] | 1669 | return ofs->numfs++; |
Amir Goldstein | 5148626 | 2018-03-28 20:22:41 +0300 | [diff] [blame] | 1670 | } |
| 1671 | |
Amir Goldstein | 94375f9 | 2019-11-15 14:12:40 +0200 | [diff] [blame] | 1672 | static int ovl_get_layers(struct super_block *sb, struct ovl_fs *ofs, |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1673 | struct path *stack, unsigned int numlower, |
| 1674 | struct ovl_layer *layers) |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1675 | { |
| 1676 | int err; |
| 1677 | unsigned int i; |
| 1678 | |
| 1679 | err = -ENOMEM; |
Amir Goldstein | 07f1e59 | 2020-01-14 21:59:22 +0200 | [diff] [blame] | 1680 | ofs->fs = kcalloc(numlower + 1, sizeof(struct ovl_sb), GFP_KERNEL); |
| 1681 | if (ofs->fs == NULL) |
Amir Goldstein | 5148626 | 2018-03-28 20:22:41 +0300 | [diff] [blame] | 1682 | goto out; |
| 1683 | |
Amir Goldstein | 07f1e59 | 2020-01-14 21:59:22 +0200 | [diff] [blame] | 1684 | /* idx/fsid 0 are reserved for upper fs even with lower only overlay */ |
| 1685 | ofs->numfs++; |
| 1686 | |
Amir Goldstein | 07f1e59 | 2020-01-14 21:59:22 +0200 | [diff] [blame] | 1687 | /* |
Amir Goldstein | b7bf990 | 2020-01-14 22:17:25 +0200 | [diff] [blame] | 1688 | * All lower layers that share the same fs as upper layer, use the same |
| 1689 | * pseudo_dev as upper layer. Allocate fs[0].pseudo_dev even for lower |
| 1690 | * only overlay to simplify ovl_fs_free(). |
Amir Goldstein | 1b81ddd | 2019-11-16 18:52:20 +0200 | [diff] [blame] | 1691 | * is_lower will be set if upper fs is shared with a lower layer. |
Amir Goldstein | 07f1e59 | 2020-01-14 21:59:22 +0200 | [diff] [blame] | 1692 | */ |
Amir Goldstein | b7bf990 | 2020-01-14 22:17:25 +0200 | [diff] [blame] | 1693 | err = get_anon_bdev(&ofs->fs[0].pseudo_dev); |
| 1694 | if (err) { |
| 1695 | pr_err("failed to get anonymous bdev for upper fs\n"); |
| 1696 | goto out; |
| 1697 | } |
| 1698 | |
Miklos Szeredi | 08f4c7c | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1699 | if (ovl_upper_mnt(ofs)) { |
| 1700 | ofs->fs[0].sb = ovl_upper_mnt(ofs)->mnt_sb; |
Amir Goldstein | 1b81ddd | 2019-11-16 18:52:20 +0200 | [diff] [blame] | 1701 | ofs->fs[0].is_lower = false; |
Amir Goldstein | 07f1e59 | 2020-01-14 21:59:22 +0200 | [diff] [blame] | 1702 | } |
| 1703 | |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1704 | for (i = 0; i < numlower; i++) { |
| 1705 | struct vfsmount *mnt; |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1706 | struct inode *trap; |
Amir Goldstein | 5148626 | 2018-03-28 20:22:41 +0300 | [diff] [blame] | 1707 | int fsid; |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1708 | |
Amir Goldstein | 9df085f | 2018-09-03 09:12:09 +0300 | [diff] [blame] | 1709 | err = fsid = ovl_get_fsid(ofs, &stack[i]); |
Amir Goldstein | 5148626 | 2018-03-28 20:22:41 +0300 | [diff] [blame] | 1710 | if (err < 0) |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1711 | goto out; |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1712 | |
youngjun | 24f1400 | 2020-06-16 17:30:43 +0900 | [diff] [blame] | 1713 | /* |
| 1714 | * Check if lower root conflicts with this overlay layers before |
| 1715 | * checking if it is in-use as upperdir/workdir of "another" |
| 1716 | * mount, because we do not bother to check in ovl_is_inuse() if |
| 1717 | * the upperdir/workdir is in fact in-use by our |
| 1718 | * upperdir/workdir. |
| 1719 | */ |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1720 | err = ovl_setup_trap(sb, stack[i].dentry, &trap, "lowerdir"); |
| 1721 | if (err) |
| 1722 | goto out; |
| 1723 | |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1724 | if (ovl_is_inuse(stack[i].dentry)) { |
| 1725 | err = ovl_report_in_use(ofs, "lowerdir"); |
youngjun | 24f1400 | 2020-06-16 17:30:43 +0900 | [diff] [blame] | 1726 | if (err) { |
| 1727 | iput(trap); |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1728 | goto out; |
youngjun | 24f1400 | 2020-06-16 17:30:43 +0900 | [diff] [blame] | 1729 | } |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1730 | } |
| 1731 | |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1732 | mnt = clone_private_mount(&stack[i]); |
| 1733 | err = PTR_ERR(mnt); |
| 1734 | if (IS_ERR(mnt)) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1735 | pr_err("failed to clone lowerpath\n"); |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1736 | iput(trap); |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1737 | goto out; |
| 1738 | } |
Amir Goldstein | 5148626 | 2018-03-28 20:22:41 +0300 | [diff] [blame] | 1739 | |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1740 | /* |
| 1741 | * Make lower layers R/O. That way fchmod/fchown on lower file |
| 1742 | * will fail instead of modifying lower fs. |
| 1743 | */ |
| 1744 | mnt->mnt_flags |= MNT_READONLY | MNT_NOATIME; |
| 1745 | |
Miklos Szeredi | 1346416 | 2020-01-24 09:46:45 +0100 | [diff] [blame] | 1746 | layers[ofs->numlayer].trap = trap; |
| 1747 | layers[ofs->numlayer].mnt = mnt; |
| 1748 | layers[ofs->numlayer].idx = ofs->numlayer; |
| 1749 | layers[ofs->numlayer].fsid = fsid; |
| 1750 | layers[ofs->numlayer].fs = &ofs->fs[fsid]; |
Amir Goldstein | 94375f9 | 2019-11-15 14:12:40 +0200 | [diff] [blame] | 1751 | ofs->numlayer++; |
Amir Goldstein | 1b81ddd | 2019-11-16 18:52:20 +0200 | [diff] [blame] | 1752 | ofs->fs[fsid].is_lower = true; |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1753 | } |
Amir Goldstein | e487d88 | 2017-11-07 13:55:04 +0200 | [diff] [blame] | 1754 | |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 1755 | /* |
| 1756 | * When all layers on same fs, overlay can use real inode numbers. |
Amir Goldstein | 926e94d | 2020-02-21 16:34:45 +0200 | [diff] [blame] | 1757 | * With mount option "xino=<on|auto>", mounter declares that there are |
| 1758 | * enough free high bits in underlying fs to hold the unique fsid. |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 1759 | * If overlayfs does encounter underlying inodes using the high xino |
| 1760 | * bits reserved for fsid, it emits a warning and uses the original |
Amir Goldstein | dfe51d4 | 2020-02-21 16:34:44 +0200 | [diff] [blame] | 1761 | * inode number or a non persistent inode number allocated from a |
| 1762 | * dedicated range. |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 1763 | */ |
Miklos Szeredi | 08f4c7c | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1764 | if (ofs->numfs - !ovl_upper_mnt(ofs) == 1) { |
Amir Goldstein | 0f831ec | 2019-11-16 18:14:41 +0200 | [diff] [blame] | 1765 | if (ofs->config.xino == OVL_XINO_ON) |
| 1766 | pr_info("\"xino=on\" is useless with all layers on same fs, ignore.\n"); |
| 1767 | ofs->xino_mode = 0; |
Amir Goldstein | 53afcd3 | 2020-02-21 16:34:42 +0200 | [diff] [blame] | 1768 | } else if (ofs->config.xino == OVL_XINO_OFF) { |
| 1769 | ofs->xino_mode = -1; |
Amir Goldstein | 926e94d | 2020-02-21 16:34:45 +0200 | [diff] [blame] | 1770 | } else if (ofs->xino_mode < 0) { |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 1771 | /* |
Amir Goldstein | 07f1e59 | 2020-01-14 21:59:22 +0200 | [diff] [blame] | 1772 | * This is a roundup of number of bits needed for encoding |
Amir Goldstein | dfe51d4 | 2020-02-21 16:34:44 +0200 | [diff] [blame] | 1773 | * fsid, where fsid 0 is reserved for upper fs (even with |
| 1774 | * lower only overlay) +1 extra bit is reserved for the non |
| 1775 | * persistent inode number range that is used for resolving |
| 1776 | * xino lower bits overflow. |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 1777 | */ |
Amir Goldstein | dfe51d4 | 2020-02-21 16:34:44 +0200 | [diff] [blame] | 1778 | BUILD_BUG_ON(ilog2(OVL_MAX_STACK) > 30); |
| 1779 | ofs->xino_mode = ilog2(ofs->numfs - 1) + 2; |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 1780 | } |
| 1781 | |
Amir Goldstein | 0f831ec | 2019-11-16 18:14:41 +0200 | [diff] [blame] | 1782 | if (ofs->xino_mode > 0) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1783 | pr_info("\"xino\" feature enabled using %d upper inode bits.\n", |
Amir Goldstein | 0f831ec | 2019-11-16 18:14:41 +0200 | [diff] [blame] | 1784 | ofs->xino_mode); |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 1785 | } |
Amir Goldstein | e487d88 | 2017-11-07 13:55:04 +0200 | [diff] [blame] | 1786 | |
Miklos Szeredi | 520d7c8 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1787 | err = 0; |
| 1788 | out: |
| 1789 | return err; |
| 1790 | } |
| 1791 | |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1792 | static struct ovl_entry *ovl_get_lowerstack(struct super_block *sb, |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1793 | const char *lower, unsigned int numlower, |
| 1794 | struct ovl_fs *ofs, struct ovl_layer *layers) |
Miklos Szeredi | 53dbb0b | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1795 | { |
| 1796 | int err; |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1797 | struct path *stack = NULL; |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1798 | unsigned int i; |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1799 | struct ovl_entry *oe; |
Miklos Szeredi | 53dbb0b | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1800 | |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1801 | if (!ofs->config.upperdir && numlower == 1) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1802 | pr_err("at least 2 lowerdir are needed while upperdir nonexistent\n"); |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1803 | return ERR_PTR(-EINVAL); |
Miklos Szeredi | 53dbb0b | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1804 | } |
| 1805 | |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1806 | stack = kcalloc(numlower, sizeof(struct path), GFP_KERNEL); |
Miklos Szeredi | 53dbb0b | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1807 | if (!stack) |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1808 | return ERR_PTR(-ENOMEM); |
Miklos Szeredi | 53dbb0b | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1809 | |
| 1810 | err = -EINVAL; |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1811 | for (i = 0; i < numlower; i++) { |
| 1812 | err = ovl_lower_dir(lower, &stack[i], ofs, &sb->s_stack_depth); |
Miklos Szeredi | 53dbb0b | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1813 | if (err) |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1814 | goto out_err; |
Miklos Szeredi | 53dbb0b | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1815 | |
| 1816 | lower = strchr(lower, '\0') + 1; |
| 1817 | } |
| 1818 | |
| 1819 | err = -EINVAL; |
| 1820 | sb->s_stack_depth++; |
| 1821 | if (sb->s_stack_depth > FILESYSTEM_MAX_STACK_DEPTH) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1822 | pr_err("maximum fs stacking depth exceeded\n"); |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1823 | goto out_err; |
Miklos Szeredi | 53dbb0b | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1824 | } |
| 1825 | |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1826 | err = ovl_get_layers(sb, ofs, stack, numlower, layers); |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1827 | if (err) |
| 1828 | goto out_err; |
| 1829 | |
| 1830 | err = -ENOMEM; |
| 1831 | oe = ovl_alloc_entry(numlower); |
| 1832 | if (!oe) |
| 1833 | goto out_err; |
| 1834 | |
| 1835 | for (i = 0; i < numlower; i++) { |
| 1836 | oe->lowerstack[i].dentry = dget(stack[i].dentry); |
Amir Goldstein | 94375f9 | 2019-11-15 14:12:40 +0200 | [diff] [blame] | 1837 | oe->lowerstack[i].layer = &ofs->layers[i+1]; |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1838 | } |
Miklos Szeredi | 53dbb0b | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1839 | |
Miklos Szeredi | 53dbb0b | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1840 | out: |
Miklos Szeredi | 53dbb0b | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1841 | for (i = 0; i < numlower; i++) |
| 1842 | path_put(&stack[i]); |
| 1843 | kfree(stack); |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1844 | |
| 1845 | return oe; |
| 1846 | |
| 1847 | out_err: |
| 1848 | oe = ERR_PTR(err); |
Miklos Szeredi | 53dbb0b | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 1849 | goto out; |
| 1850 | } |
| 1851 | |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1852 | /* |
| 1853 | * Check if this layer root is a descendant of: |
| 1854 | * - another layer of this overlayfs instance |
| 1855 | * - upper/work dir of any overlayfs instance |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1856 | */ |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1857 | static int ovl_check_layer(struct super_block *sb, struct ovl_fs *ofs, |
| 1858 | struct dentry *dentry, const char *name) |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1859 | { |
Miklos Szeredi | 9179c21d | 2019-06-18 15:06:16 +0200 | [diff] [blame] | 1860 | struct dentry *next = dentry, *parent; |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1861 | int err = 0; |
| 1862 | |
Miklos Szeredi | 9179c21d | 2019-06-18 15:06:16 +0200 | [diff] [blame] | 1863 | if (!dentry) |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1864 | return 0; |
| 1865 | |
Miklos Szeredi | 9179c21d | 2019-06-18 15:06:16 +0200 | [diff] [blame] | 1866 | parent = dget_parent(next); |
| 1867 | |
| 1868 | /* Walk back ancestors to root (inclusive) looking for traps */ |
| 1869 | while (!err && parent != next) { |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1870 | if (ovl_lookup_trap_inode(sb, parent)) { |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1871 | err = -ELOOP; |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 1872 | pr_err("overlapping %s path\n", name); |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1873 | } else if (ovl_is_inuse(parent)) { |
| 1874 | err = ovl_report_in_use(ofs, name); |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1875 | } |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1876 | next = parent; |
Miklos Szeredi | 9179c21d | 2019-06-18 15:06:16 +0200 | [diff] [blame] | 1877 | parent = dget_parent(next); |
| 1878 | dput(next); |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1879 | } |
| 1880 | |
Miklos Szeredi | 9179c21d | 2019-06-18 15:06:16 +0200 | [diff] [blame] | 1881 | dput(parent); |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1882 | |
| 1883 | return err; |
| 1884 | } |
| 1885 | |
| 1886 | /* |
| 1887 | * Check if any of the layers or work dirs overlap. |
| 1888 | */ |
| 1889 | static int ovl_check_overlapping_layers(struct super_block *sb, |
| 1890 | struct ovl_fs *ofs) |
| 1891 | { |
| 1892 | int i, err; |
| 1893 | |
Miklos Szeredi | 08f4c7c | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1894 | if (ovl_upper_mnt(ofs)) { |
| 1895 | err = ovl_check_layer(sb, ofs, ovl_upper_mnt(ofs)->mnt_root, |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1896 | "upperdir"); |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1897 | if (err) |
| 1898 | return err; |
| 1899 | |
| 1900 | /* |
| 1901 | * Checking workbasedir avoids hitting ovl_is_inuse(parent) of |
| 1902 | * this instance and covers overlapping work and index dirs, |
| 1903 | * unless work or index dir have been moved since created inside |
| 1904 | * workbasedir. In that case, we already have their traps in |
| 1905 | * inode cache and we will catch that case on lookup. |
| 1906 | */ |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1907 | err = ovl_check_layer(sb, ofs, ofs->workbasedir, "workdir"); |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1908 | if (err) |
| 1909 | return err; |
| 1910 | } |
| 1911 | |
Amir Goldstein | 94375f9 | 2019-11-15 14:12:40 +0200 | [diff] [blame] | 1912 | for (i = 1; i < ofs->numlayer; i++) { |
Amir Goldstein | 0be0bfd | 2019-07-12 15:24:34 +0300 | [diff] [blame] | 1913 | err = ovl_check_layer(sb, ofs, |
Amir Goldstein | 94375f9 | 2019-11-15 14:12:40 +0200 | [diff] [blame] | 1914 | ofs->layers[i].mnt->mnt_root, |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 1915 | "lowerdir"); |
| 1916 | if (err) |
| 1917 | return err; |
| 1918 | } |
| 1919 | |
| 1920 | return 0; |
| 1921 | } |
| 1922 | |
Amir Goldstein | 2effc5c | 2019-11-19 17:49:17 +0200 | [diff] [blame] | 1923 | static struct dentry *ovl_get_root(struct super_block *sb, |
| 1924 | struct dentry *upperdentry, |
| 1925 | struct ovl_entry *oe) |
| 1926 | { |
| 1927 | struct dentry *root; |
Amir Goldstein | 62c832e | 2019-11-19 15:31:46 +0200 | [diff] [blame] | 1928 | struct ovl_path *lowerpath = &oe->lowerstack[0]; |
| 1929 | unsigned long ino = d_inode(lowerpath->dentry)->i_ino; |
| 1930 | int fsid = lowerpath->layer->fsid; |
| 1931 | struct ovl_inode_params oip = { |
| 1932 | .upperdentry = upperdentry, |
| 1933 | .lowerpath = lowerpath, |
| 1934 | }; |
Amir Goldstein | 2effc5c | 2019-11-19 17:49:17 +0200 | [diff] [blame] | 1935 | |
| 1936 | root = d_make_root(ovl_new_inode(sb, S_IFDIR, 0)); |
| 1937 | if (!root) |
| 1938 | return NULL; |
| 1939 | |
| 1940 | root->d_fsdata = oe; |
| 1941 | |
| 1942 | if (upperdentry) { |
Amir Goldstein | 62c832e | 2019-11-19 15:31:46 +0200 | [diff] [blame] | 1943 | /* Root inode uses upper st_ino/i_ino */ |
| 1944 | ino = d_inode(upperdentry)->i_ino; |
| 1945 | fsid = 0; |
Amir Goldstein | 2effc5c | 2019-11-19 17:49:17 +0200 | [diff] [blame] | 1946 | ovl_dentry_set_upper_alias(root); |
Miklos Szeredi | 610afc0 | 2020-09-02 10:58:49 +0200 | [diff] [blame] | 1947 | if (ovl_is_impuredir(sb, upperdentry)) |
Amir Goldstein | 2effc5c | 2019-11-19 17:49:17 +0200 | [diff] [blame] | 1948 | ovl_set_flag(OVL_IMPURE, d_inode(root)); |
| 1949 | } |
| 1950 | |
| 1951 | /* Root is always merge -> can have whiteouts */ |
| 1952 | ovl_set_flag(OVL_WHITEOUTS, d_inode(root)); |
| 1953 | ovl_dentry_set_flag(OVL_E_CONNECTED, root); |
| 1954 | ovl_set_upperdata(d_inode(root)); |
Amir Goldstein | 62c832e | 2019-11-19 15:31:46 +0200 | [diff] [blame] | 1955 | ovl_inode_init(d_inode(root), &oip, ino, fsid); |
Miklos Szeredi | f428884 | 2020-03-17 15:04:22 +0100 | [diff] [blame] | 1956 | ovl_dentry_update_reval(root, upperdentry, DCACHE_OP_WEAK_REVALIDATE); |
Amir Goldstein | 2effc5c | 2019-11-19 17:49:17 +0200 | [diff] [blame] | 1957 | |
| 1958 | return root; |
| 1959 | } |
| 1960 | |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 1961 | static int ovl_fill_super(struct super_block *sb, void *data, int silent) |
| 1962 | { |
Kees Cook | 33006cd | 2017-03-29 14:02:19 -0700 | [diff] [blame] | 1963 | struct path upperpath = { }; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 1964 | struct dentry *root_dentry; |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1965 | struct ovl_entry *oe; |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 1966 | struct ovl_fs *ofs; |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1967 | struct ovl_layer *layers; |
Konstantin Khlebnikov | 51f8f3c | 2017-01-10 21:30:21 +0300 | [diff] [blame] | 1968 | struct cred *cred; |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 1969 | char *splitlower = NULL; |
| 1970 | unsigned int numlower; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 1971 | int err; |
| 1972 | |
Miklos Szeredi | 9efb069 | 2021-01-28 10:22:48 +0100 | [diff] [blame] | 1973 | err = -EIO; |
| 1974 | if (WARN_ON(sb->s_user_ns != current_user_ns())) |
| 1975 | goto out; |
| 1976 | |
Miklos Szeredi | f428884 | 2020-03-17 15:04:22 +0100 | [diff] [blame] | 1977 | sb->s_d_op = &ovl_dentry_operations; |
| 1978 | |
Erez Zadok | f45827e8 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 1979 | err = -ENOMEM; |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 1980 | ofs = kzalloc(sizeof(struct ovl_fs), GFP_KERNEL); |
| 1981 | if (!ofs) |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 1982 | goto out; |
| 1983 | |
Chengguang Xu | d7b49b1 | 2021-03-01 14:19:30 +0800 | [diff] [blame^] | 1984 | err = -ENOMEM; |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 1985 | ofs->creator_cred = cred = prepare_creds(); |
Miklos Szeredi | c6fe625 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1986 | if (!cred) |
| 1987 | goto out_err; |
| 1988 | |
Chengguang Xu | c21c839 | 2020-04-24 10:55:17 +0800 | [diff] [blame] | 1989 | /* Is there a reason anyone would want not to share whiteouts? */ |
| 1990 | ofs->share_whiteout = true; |
| 1991 | |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 1992 | ofs->config.index = ovl_index_def; |
Pavel Tikhomirov | 5830fb6 | 2020-10-13 17:59:54 +0300 | [diff] [blame] | 1993 | ofs->config.uuid = true; |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 1994 | ofs->config.nfs_export = ovl_nfs_export_def; |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 1995 | ofs->config.xino = ovl_xino_def(); |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 1996 | ofs->config.metacopy = ovl_metacopy_def; |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 1997 | err = ovl_parse_opt((char *) data, &ofs->config); |
Erez Zadok | f45827e8 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 1998 | if (err) |
Miklos Szeredi | a9075cd | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 1999 | goto out_err; |
Erez Zadok | f45827e8 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2000 | |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2001 | err = -EINVAL; |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 2002 | if (!ofs->config.lowerdir) { |
Konstantin Khlebnikov | 07f2af7 | 2015-06-29 20:18:56 +0300 | [diff] [blame] | 2003 | if (!silent) |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 2004 | pr_err("missing 'lowerdir'\n"); |
Miklos Szeredi | a9075cd | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 2005 | goto out_err; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2006 | } |
| 2007 | |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 2008 | err = -ENOMEM; |
| 2009 | splitlower = kstrdup(ofs->config.lowerdir, GFP_KERNEL); |
| 2010 | if (!splitlower) |
| 2011 | goto out_err; |
| 2012 | |
Chengguang Xu | d7b49b1 | 2021-03-01 14:19:30 +0800 | [diff] [blame^] | 2013 | err = -EINVAL; |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 2014 | numlower = ovl_split_lowerdirs(splitlower); |
| 2015 | if (numlower > OVL_MAX_STACK) { |
| 2016 | pr_err("too many lower directories, limit is %d\n", |
| 2017 | OVL_MAX_STACK); |
| 2018 | goto out_err; |
| 2019 | } |
| 2020 | |
Chengguang Xu | d7b49b1 | 2021-03-01 14:19:30 +0800 | [diff] [blame^] | 2021 | err = -ENOMEM; |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 2022 | layers = kcalloc(numlower + 1, sizeof(struct ovl_layer), GFP_KERNEL); |
| 2023 | if (!layers) |
| 2024 | goto out_err; |
| 2025 | |
| 2026 | ofs->layers = layers; |
| 2027 | /* Layer 0 is reserved for upper even if there's no upper */ |
| 2028 | ofs->numlayer = 1; |
| 2029 | |
Miklos Szeredi | 53a08cb | 2014-12-13 00:59:51 +0100 | [diff] [blame] | 2030 | sb->s_stack_depth = 0; |
Miklos Szeredi | cf9a678 | 2015-12-11 16:30:49 +0100 | [diff] [blame] | 2031 | sb->s_maxbytes = MAX_LFS_FILESIZE; |
Amir Goldstein | 4d314f7 | 2020-02-21 16:34:43 +0200 | [diff] [blame] | 2032 | atomic_long_set(&ofs->last_ino, 1); |
Amir Goldstein | e487d88 | 2017-11-07 13:55:04 +0200 | [diff] [blame] | 2033 | /* Assume underlaying fs uses 32bit inodes unless proven otherwise */ |
Amir Goldstein | 53afcd3 | 2020-02-21 16:34:42 +0200 | [diff] [blame] | 2034 | if (ofs->config.xino != OVL_XINO_OFF) { |
Amir Goldstein | 0f831ec | 2019-11-16 18:14:41 +0200 | [diff] [blame] | 2035 | ofs->xino_mode = BITS_PER_LONG - 32; |
Amir Goldstein | 53afcd3 | 2020-02-21 16:34:42 +0200 | [diff] [blame] | 2036 | if (!ofs->xino_mode) { |
| 2037 | pr_warn("xino not supported on 32bit kernel, falling back to xino=off.\n"); |
| 2038 | ofs->config.xino = OVL_XINO_OFF; |
| 2039 | } |
| 2040 | } |
Amir Goldstein | 795939a | 2018-03-29 09:08:18 +0300 | [diff] [blame] | 2041 | |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 2042 | /* alloc/destroy_inode needed for setting up traps in inode cache */ |
| 2043 | sb->s_op = &ovl_super_operations; |
| 2044 | |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 2045 | if (ofs->config.upperdir) { |
Sargun Dhillon | 335d3fc | 2021-01-07 16:10:43 -0800 | [diff] [blame] | 2046 | struct super_block *upper_sb; |
| 2047 | |
Chengguang Xu | d7b49b1 | 2021-03-01 14:19:30 +0800 | [diff] [blame^] | 2048 | err = -EINVAL; |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 2049 | if (!ofs->config.workdir) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 2050 | pr_err("missing 'workdir'\n"); |
Miklos Szeredi | a9075cd | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 2051 | goto out_err; |
Miklos Szeredi | 53a08cb | 2014-12-13 00:59:51 +0100 | [diff] [blame] | 2052 | } |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2053 | |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 2054 | err = ovl_get_upper(sb, ofs, &layers[0], &upperpath); |
Miklos Szeredi | 21a3b31 | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 2055 | if (err) |
Miklos Szeredi | a9075cd | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 2056 | goto out_err; |
Miklos Szeredi | d719e8f | 2016-07-29 12:05:23 +0200 | [diff] [blame] | 2057 | |
Sargun Dhillon | 335d3fc | 2021-01-07 16:10:43 -0800 | [diff] [blame] | 2058 | upper_sb = ovl_upper_mnt(ofs)->mnt_sb; |
| 2059 | if (!ovl_should_sync(ofs)) { |
| 2060 | ofs->errseq = errseq_sample(&upper_sb->s_wb_err); |
| 2061 | if (errseq_check(&upper_sb->s_wb_err, ofs->errseq)) { |
| 2062 | err = -EIO; |
| 2063 | pr_err("Cannot mount volatile when upperdir has an unseen error. Sync upperdir fs to clear state.\n"); |
| 2064 | goto out_err; |
| 2065 | } |
| 2066 | } |
| 2067 | |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 2068 | err = ovl_get_workdir(sb, ofs, &upperpath); |
Miklos Szeredi | 8ed61dc | 2017-11-09 10:23:28 +0100 | [diff] [blame] | 2069 | if (err) |
Miklos Szeredi | a9075cd | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 2070 | goto out_err; |
Miklos Szeredi | c6fe625 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 2071 | |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 2072 | if (!ofs->workdir) |
Linus Torvalds | 1751e8a | 2017-11-27 13:05:09 -0800 | [diff] [blame] | 2073 | sb->s_flags |= SB_RDONLY; |
Miklos Szeredi | 6e88256 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 2074 | |
Sargun Dhillon | 335d3fc | 2021-01-07 16:10:43 -0800 | [diff] [blame] | 2075 | sb->s_stack_depth = upper_sb->s_stack_depth; |
| 2076 | sb->s_time_gran = upper_sb->s_time_gran; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2077 | } |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 2078 | oe = ovl_get_lowerstack(sb, splitlower, numlower, ofs, layers); |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 2079 | err = PTR_ERR(oe); |
| 2080 | if (IS_ERR(oe)) |
Miklos Szeredi | a9075cd | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 2081 | goto out_err; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2082 | |
hujianyang | 71cbad7 | 2015-01-15 13:20:57 +0800 | [diff] [blame] | 2083 | /* If the upper fs is nonexistent, we mark overlayfs r/o too */ |
Miklos Szeredi | 08f4c7c | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 2084 | if (!ovl_upper_mnt(ofs)) |
Linus Torvalds | 1751e8a | 2017-11-27 13:05:09 -0800 | [diff] [blame] | 2085 | sb->s_flags |= SB_RDONLY; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2086 | |
Pavel Tikhomirov | 5830fb6 | 2020-10-13 17:59:54 +0300 | [diff] [blame] | 2087 | if (!ofs->config.uuid && ofs->numfs > 1) { |
| 2088 | pr_warn("The uuid=off requires a single fs for lower and upper, falling back to uuid=on.\n"); |
| 2089 | ofs->config.uuid = true; |
| 2090 | } |
| 2091 | |
Amir Goldstein | 470c156 | 2020-07-13 17:19:43 +0300 | [diff] [blame] | 2092 | if (!ovl_force_readonly(ofs) && ofs->config.index) { |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 2093 | err = ovl_get_indexdir(sb, ofs, oe, &upperpath); |
Amir Goldstein | 54fb347 | 2017-06-21 15:28:38 +0300 | [diff] [blame] | 2094 | if (err) |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 2095 | goto out_free_oe; |
Miklos Szeredi | 6e88256 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 2096 | |
Amir Goldstein | 972d009 | 2017-09-19 12:14:18 +0300 | [diff] [blame] | 2097 | /* Force r/o mount with no index dir */ |
Amir Goldstein | 2039636 | 2020-06-21 09:37:59 +0300 | [diff] [blame] | 2098 | if (!ofs->indexdir) |
Linus Torvalds | 1751e8a | 2017-11-27 13:05:09 -0800 | [diff] [blame] | 2099 | sb->s_flags |= SB_RDONLY; |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 2100 | } |
| 2101 | |
Amir Goldstein | 146d62e | 2019-04-18 17:42:08 +0300 | [diff] [blame] | 2102 | err = ovl_check_overlapping_layers(sb, ofs); |
| 2103 | if (err) |
| 2104 | goto out_free_oe; |
| 2105 | |
Amir Goldstein | 972d009 | 2017-09-19 12:14:18 +0300 | [diff] [blame] | 2106 | /* Show index=off in /proc/mounts for forced r/o mount */ |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 2107 | if (!ofs->indexdir) { |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 2108 | ofs->config.index = false; |
Miklos Szeredi | 08f4c7c | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 2109 | if (ovl_upper_mnt(ofs) && ofs->config.nfs_export) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 2110 | pr_warn("NFS export requires an index dir, falling back to nfs_export=off.\n"); |
Amir Goldstein | f168f10 | 2018-01-19 11:26:53 +0200 | [diff] [blame] | 2111 | ofs->config.nfs_export = false; |
| 2112 | } |
| 2113 | } |
Amir Goldstein | 02bcd15 | 2017-06-21 15:28:36 +0300 | [diff] [blame] | 2114 | |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 2115 | if (ofs->config.metacopy && ofs->config.nfs_export) { |
lijiazi | 1bd0a3a | 2019-12-16 19:12:32 +0800 | [diff] [blame] | 2116 | pr_warn("NFS export is not supported with metadata only copy up, falling back to nfs_export=off.\n"); |
Vivek Goyal | d579104 | 2018-05-11 11:49:27 -0400 | [diff] [blame] | 2117 | ofs->config.nfs_export = false; |
| 2118 | } |
| 2119 | |
Amir Goldstein | 8383f17 | 2017-10-02 11:31:42 +0300 | [diff] [blame] | 2120 | if (ofs->config.nfs_export) |
| 2121 | sb->s_export_op = &ovl_export_operations; |
| 2122 | |
Konstantin Khlebnikov | 51f8f3c | 2017-01-10 21:30:21 +0300 | [diff] [blame] | 2123 | /* Never override disk quota limits or use reserved space */ |
| 2124 | cap_lower(cred->cap_effective, CAP_SYS_RESOURCE); |
| 2125 | |
Vivek Goyal | 655042c | 2016-10-14 03:03:36 +0200 | [diff] [blame] | 2126 | sb->s_magic = OVERLAYFS_SUPER_MAGIC; |
Miklos Szeredi | 2d2f2d7 | 2020-12-14 15:26:14 +0100 | [diff] [blame] | 2127 | sb->s_xattr = ofs->config.userxattr ? ovl_user_xattr_handlers : |
| 2128 | ovl_trusted_xattr_handlers; |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 2129 | sb->s_fs_info = ofs; |
Miklos Szeredi | de2a4a5 | 2018-07-18 15:44:43 +0200 | [diff] [blame] | 2130 | sb->s_flags |= SB_POSIXACL; |
Konstantin Khlebnikov | 32b1924b2 | 2020-04-09 11:29:47 +0300 | [diff] [blame] | 2131 | sb->s_iflags |= SB_I_SKIP_SYNC; |
Vivek Goyal | 655042c | 2016-10-14 03:03:36 +0200 | [diff] [blame] | 2132 | |
Miklos Szeredi | c6fe625 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 2133 | err = -ENOMEM; |
Amir Goldstein | 2effc5c | 2019-11-19 17:49:17 +0200 | [diff] [blame] | 2134 | root_dentry = ovl_get_root(sb, upperpath.dentry, oe); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2135 | if (!root_dentry) |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 2136 | goto out_free_oe; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2137 | |
| 2138 | mntput(upperpath.mnt); |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 2139 | kfree(splitlower); |
Miklos Szeredi | ed06e06 | 2015-12-09 16:11:59 +0100 | [diff] [blame] | 2140 | |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2141 | sb->s_root = root_dentry; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2142 | |
| 2143 | return 0; |
| 2144 | |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 2145 | out_free_oe: |
| 2146 | ovl_entry_stack_free(oe); |
Chandan Rajendra | b934363 | 2017-07-24 01:57:54 -0500 | [diff] [blame] | 2147 | kfree(oe); |
Miklos Szeredi | 4155c10 | 2017-11-10 09:39:15 +0100 | [diff] [blame] | 2148 | out_err: |
Miklos Szeredi | b8e42a6 | 2020-06-04 10:48:19 +0200 | [diff] [blame] | 2149 | kfree(splitlower); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2150 | path_put(&upperpath); |
Miklos Szeredi | ad20448 | 2017-11-10 09:39:16 +0100 | [diff] [blame] | 2151 | ovl_free_fs(ofs); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2152 | out: |
| 2153 | return err; |
| 2154 | } |
| 2155 | |
| 2156 | static struct dentry *ovl_mount(struct file_system_type *fs_type, int flags, |
| 2157 | const char *dev_name, void *raw_data) |
| 2158 | { |
| 2159 | return mount_nodev(fs_type, flags, raw_data, ovl_fill_super); |
| 2160 | } |
| 2161 | |
| 2162 | static struct file_system_type ovl_fs_type = { |
| 2163 | .owner = THIS_MODULE, |
Miklos Szeredi | ef94b18 | 2014-11-20 16:39:59 +0100 | [diff] [blame] | 2164 | .name = "overlay", |
Miklos Szeredi | 459c7c5 | 2020-12-14 15:26:14 +0100 | [diff] [blame] | 2165 | .fs_flags = FS_USERNS_MOUNT, |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2166 | .mount = ovl_mount, |
| 2167 | .kill_sb = kill_anon_super, |
| 2168 | }; |
Miklos Szeredi | ef94b18 | 2014-11-20 16:39:59 +0100 | [diff] [blame] | 2169 | MODULE_ALIAS_FS("overlay"); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2170 | |
Amir Goldstein | 13cf199 | 2017-06-12 09:54:40 +0300 | [diff] [blame] | 2171 | static void ovl_inode_init_once(void *foo) |
| 2172 | { |
| 2173 | struct ovl_inode *oi = foo; |
| 2174 | |
| 2175 | inode_init_once(&oi->vfs_inode); |
| 2176 | } |
| 2177 | |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2178 | static int __init ovl_init(void) |
| 2179 | { |
Amir Goldstein | 13cf199 | 2017-06-12 09:54:40 +0300 | [diff] [blame] | 2180 | int err; |
| 2181 | |
| 2182 | ovl_inode_cachep = kmem_cache_create("ovl_inode", |
| 2183 | sizeof(struct ovl_inode), 0, |
| 2184 | (SLAB_RECLAIM_ACCOUNT| |
| 2185 | SLAB_MEM_SPREAD|SLAB_ACCOUNT), |
| 2186 | ovl_inode_init_once); |
| 2187 | if (ovl_inode_cachep == NULL) |
| 2188 | return -ENOMEM; |
| 2189 | |
Jiufei Xue | 2406a30 | 2019-11-20 17:45:26 +0800 | [diff] [blame] | 2190 | err = ovl_aio_request_cache_init(); |
| 2191 | if (!err) { |
| 2192 | err = register_filesystem(&ovl_fs_type); |
| 2193 | if (!err) |
| 2194 | return 0; |
| 2195 | |
| 2196 | ovl_aio_request_cache_destroy(); |
| 2197 | } |
| 2198 | kmem_cache_destroy(ovl_inode_cachep); |
Amir Goldstein | 13cf199 | 2017-06-12 09:54:40 +0300 | [diff] [blame] | 2199 | |
| 2200 | return err; |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2201 | } |
| 2202 | |
| 2203 | static void __exit ovl_exit(void) |
| 2204 | { |
| 2205 | unregister_filesystem(&ovl_fs_type); |
Amir Goldstein | 13cf199 | 2017-06-12 09:54:40 +0300 | [diff] [blame] | 2206 | |
| 2207 | /* |
| 2208 | * Make sure all delayed rcu free inodes are flushed before we |
| 2209 | * destroy cache. |
| 2210 | */ |
| 2211 | rcu_barrier(); |
| 2212 | kmem_cache_destroy(ovl_inode_cachep); |
Jiufei Xue | 2406a30 | 2019-11-20 17:45:26 +0800 | [diff] [blame] | 2213 | ovl_aio_request_cache_destroy(); |
Miklos Szeredi | e9be9d5 | 2014-10-24 00:14:38 +0200 | [diff] [blame] | 2214 | } |
| 2215 | |
| 2216 | module_init(ovl_init); |
| 2217 | module_exit(ovl_exit); |