2 * Quota code necessary even when VFS quota support is not compiled
3 * into the kernel. The interesting stuff is over in dquot.c, here
4 * we have symbols for initial quotactl(2) handling, the sysctl(2)
5 * variables, etc - things needed even when quota support disabled.
9 #include <linux/namei.h>
10 #include <linux/slab.h>
11 #include <asm/current.h>
12 #include <asm/uaccess.h>
13 #include <linux/kernel.h>
14 #include <linux/smp_lock.h>
15 #include <linux/security.h>
16 #include <linux/syscalls.h>
17 #include <linux/buffer_head.h>
18 #include <linux/capability.h>
19 #include <linux/quotaops.h>
21 /* Check validity of generic quotactl commands */
22 static int generic_quotactl_valid(struct super_block *sb, int type, int cmd, qid_t id)
24 if (type >= MAXQUOTAS)
26 if (!sb && cmd != Q_SYNC)
28 /* Is operation supported? */
29 if (sb && !sb->s_qcop)
36 if (!sb->s_qcop->quota_on)
40 if (!sb->s_qcop->quota_off)
44 if (!sb->s_qcop->set_info)
48 if (!sb->s_qcop->get_info)
52 if (!sb->s_qcop->set_dqblk)
56 if (!sb->s_qcop->get_dqblk)
60 if (sb && !sb->s_qcop->quota_sync)
67 /* Is quota turned on for commands which need it? */
75 /* This is just informative test so we are satisfied without a lock */
76 if (!sb_has_quota_enabled(sb, type))
80 /* Check privileges */
81 if (cmd == Q_GETQUOTA) {
82 if (((type == USRQUOTA && current->euid != id) ||
83 (type == GRPQUOTA && !in_egroup_p(id))) &&
84 !capable(CAP_SYS_ADMIN))
87 else if (cmd != Q_GETFMT && cmd != Q_SYNC && cmd != Q_GETINFO)
88 if (!capable(CAP_SYS_ADMIN))
94 /* Check validity of XFS Quota Manager commands */
95 static int xqm_quotactl_valid(struct super_block *sb, int type, int cmd, qid_t id)
97 if (type >= XQM_MAXQUOTAS)
108 if (!sb->s_qcop->set_xstate)
112 if (!sb->s_qcop->get_xstate)
116 if (!sb->s_qcop->set_xquota)
120 if (!sb->s_qcop->get_xquota)
124 if (!sb->s_qcop->quota_sync)
131 /* Check privileges */
132 if (cmd == Q_XGETQUOTA) {
133 if (((type == XQM_USRQUOTA && current->euid != id) ||
134 (type == XQM_GRPQUOTA && !in_egroup_p(id))) &&
135 !capable(CAP_SYS_ADMIN))
137 } else if (cmd != Q_XGETQSTAT && cmd != Q_XQUOTASYNC) {
138 if (!capable(CAP_SYS_ADMIN))
145 static int check_quotactl_valid(struct super_block *sb, int type, int cmd, qid_t id)
149 if (XQM_COMMAND(cmd))
150 error = xqm_quotactl_valid(sb, type, cmd, id);
152 error = generic_quotactl_valid(sb, type, cmd, id);
154 error = security_quotactl(cmd, type, id, sb);
158 static void quota_sync_sb(struct super_block *sb, int type)
161 struct inode *discard[MAXQUOTAS];
163 sb->s_qcop->quota_sync(sb, type);
164 /* This is not very clever (and fast) but currently I don't know about
165 * any other simple way of getting quota data to disk and we must get
166 * them there for userspace to be visible... */
167 if (sb->s_op->sync_fs)
168 sb->s_op->sync_fs(sb, 1);
169 sync_blockdev(sb->s_bdev);
171 /* Now when everything is written we can discard the pagecache so
172 * that userspace sees the changes. We need i_mutex and so we could
173 * not do it inside dqonoff_mutex. Moreover we need to be carefull
174 * about races with quotaoff() (that is the reason why we have own
175 * reference to inode). */
176 mutex_lock(&sb_dqopt(sb)->dqonoff_mutex);
177 for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
179 if (type != -1 && cnt != type)
181 if (!sb_has_quota_enabled(sb, cnt))
183 discard[cnt] = igrab(sb_dqopt(sb)->files[cnt]);
185 mutex_unlock(&sb_dqopt(sb)->dqonoff_mutex);
186 for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
188 mutex_lock(&discard[cnt]->i_mutex);
189 truncate_inode_pages(&discard[cnt]->i_data, 0);
190 mutex_unlock(&discard[cnt]->i_mutex);
196 void sync_dquots(struct super_block *sb, int type)
201 if (sb->s_qcop->quota_sync)
202 quota_sync_sb(sb, type);
208 list_for_each_entry(sb, &super_blocks, s_list) {
209 /* This test just improves performance so it needn't be reliable... */
210 for (cnt = 0, dirty = 0; cnt < MAXQUOTAS; cnt++)
211 if ((type == cnt || type == -1) && sb_has_quota_enabled(sb, cnt)
212 && info_any_dirty(&sb_dqopt(sb)->info[cnt]))
217 spin_unlock(&sb_lock);
218 down_read(&sb->s_umount);
219 if (sb->s_root && sb->s_qcop->quota_sync)
220 quota_sync_sb(sb, type);
221 up_read(&sb->s_umount);
223 if (__put_super_and_need_restart(sb))
226 spin_unlock(&sb_lock);
229 /* Copy parameters and call proper function */
230 static int do_quotactl(struct super_block *sb, int type, int cmd, qid_t id, void __user *addr)
238 if (IS_ERR(pathname = getname(addr)))
239 return PTR_ERR(pathname);
240 ret = sb->s_qcop->quota_on(sb, type, id, pathname);
245 return sb->s_qcop->quota_off(sb, type);
250 down_read(&sb_dqopt(sb)->dqptr_sem);
251 if (!sb_has_quota_enabled(sb, type)) {
252 up_read(&sb_dqopt(sb)->dqptr_sem);
255 fmt = sb_dqopt(sb)->info[type].dqi_format->qf_fmt_id;
256 up_read(&sb_dqopt(sb)->dqptr_sem);
257 if (copy_to_user(addr, &fmt, sizeof(fmt)))
262 struct if_dqinfo info;
264 if ((ret = sb->s_qcop->get_info(sb, type, &info)))
266 if (copy_to_user(addr, &info, sizeof(info)))
271 struct if_dqinfo info;
273 if (copy_from_user(&info, addr, sizeof(info)))
275 return sb->s_qcop->set_info(sb, type, &info);
280 if ((ret = sb->s_qcop->get_dqblk(sb, type, id, &idq)))
282 if (copy_to_user(addr, &idq, sizeof(idq)))
289 if (copy_from_user(&idq, addr, sizeof(idq)))
291 return sb->s_qcop->set_dqblk(sb, type, id, &idq);
294 sync_dquots(sb, type);
302 if (copy_from_user(&flags, addr, sizeof(flags)))
304 return sb->s_qcop->set_xstate(sb, flags, cmd);
307 struct fs_quota_stat fqs;
309 if ((ret = sb->s_qcop->get_xstate(sb, &fqs)))
311 if (copy_to_user(addr, &fqs, sizeof(fqs)))
316 struct fs_disk_quota fdq;
318 if (copy_from_user(&fdq, addr, sizeof(fdq)))
320 return sb->s_qcop->set_xquota(sb, type, id, &fdq);
323 struct fs_disk_quota fdq;
325 if ((ret = sb->s_qcop->get_xquota(sb, type, id, &fdq)))
327 if (copy_to_user(addr, &fdq, sizeof(fdq)))
332 return sb->s_qcop->quota_sync(sb, type);
333 /* We never reach here unless validity check is broken */
341 * This is the system call interface. This communicates with
342 * the user-level programs. Currently this only supports diskquota
343 * calls. Maybe we need to add the process quotas etc. in the future,
344 * but we probably should use rlimits for that.
346 asmlinkage long sys_quotactl(unsigned int cmd, const char __user *special, qid_t id, void __user *addr)
349 struct super_block *sb = NULL;
350 struct block_device *bdev;
354 cmds = cmd >> SUBCMDSHIFT;
355 type = cmd & SUBCMDMASK;
357 if (cmds != Q_SYNC || special) {
358 tmp = getname(special);
361 bdev = lookup_bdev(tmp);
364 return PTR_ERR(bdev);
365 sb = get_super(bdev);
371 ret = check_quotactl_valid(sb, type, cmds, id);
373 ret = do_quotactl(sb, type, cmds, id, addr);