overlayfs.h 29.8 KB
Newer Older
1
/* SPDX-License-Identifier: GPL-2.0-only */
Miklos Szeredi's avatar
Miklos Szeredi committed
2 3 4 5 6 7
/*
 *
 * Copyright (C) 2011 Novell Inc.
 */

#include <linux/kernel.h>
8
#include <linux/uuid.h>
9
#include <linux/fs.h>
10
#include <linux/fsverity.h>
11
#include <linux/namei.h>
12 13
#include <linux/posix_acl.h>
#include <linux/posix_acl_xattr.h>
14
#include "ovl_entry.h"
Miklos Szeredi's avatar
Miklos Szeredi committed
15

16 17 18
#undef pr_fmt
#define pr_fmt(fmt) "overlayfs: " fmt

Miklos Szeredi's avatar
Miklos Szeredi committed
19
enum ovl_path_type {
Miklos Szeredi's avatar
Miklos Szeredi committed
20 21
	__OVL_PATH_UPPER	= (1 << 0),
	__OVL_PATH_MERGE	= (1 << 1),
22
	__OVL_PATH_ORIGIN	= (1 << 2),
Miklos Szeredi's avatar
Miklos Szeredi committed
23 24
};

25 26
#define OVL_TYPE_UPPER(type)	((type) & __OVL_PATH_UPPER)
#define OVL_TYPE_MERGE(type)	((type) & __OVL_PATH_MERGE)
27
#define OVL_TYPE_ORIGIN(type)	((type) & __OVL_PATH_ORIGIN)
28

Miklos Szeredi's avatar
Miklos Szeredi committed
29 30
#define OVL_XATTR_NAMESPACE "overlay."
#define OVL_XATTR_TRUSTED_PREFIX XATTR_TRUSTED_PREFIX OVL_XATTR_NAMESPACE
31
#define OVL_XATTR_TRUSTED_PREFIX_LEN (sizeof(OVL_XATTR_TRUSTED_PREFIX) - 1)
Miklos Szeredi's avatar
Miklos Szeredi committed
32
#define OVL_XATTR_USER_PREFIX XATTR_USER_PREFIX OVL_XATTR_NAMESPACE
33
#define OVL_XATTR_USER_PREFIX_LEN (sizeof(OVL_XATTR_USER_PREFIX) - 1)
34

35 36 37 38 39 40 41
#define OVL_XATTR_ESCAPE_PREFIX OVL_XATTR_NAMESPACE
#define OVL_XATTR_ESCAPE_PREFIX_LEN (sizeof(OVL_XATTR_ESCAPE_PREFIX) - 1)
#define OVL_XATTR_ESCAPE_TRUSTED_PREFIX OVL_XATTR_TRUSTED_PREFIX OVL_XATTR_ESCAPE_PREFIX
#define OVL_XATTR_ESCAPE_TRUSTED_PREFIX_LEN (sizeof(OVL_XATTR_ESCAPE_TRUSTED_PREFIX) - 1)
#define OVL_XATTR_ESCAPE_USER_PREFIX OVL_XATTR_USER_PREFIX OVL_XATTR_ESCAPE_PREFIX
#define OVL_XATTR_ESCAPE_USER_PREFIX_LEN (sizeof(OVL_XATTR_ESCAPE_USER_PREFIX) - 1)

42 43 44 45 46 47 48
enum ovl_xattr {
	OVL_XATTR_OPAQUE,
	OVL_XATTR_REDIRECT,
	OVL_XATTR_ORIGIN,
	OVL_XATTR_IMPURE,
	OVL_XATTR_NLINK,
	OVL_XATTR_UPPER,
49
	OVL_XATTR_UUID,
50
	OVL_XATTR_METACOPY,
51
	OVL_XATTR_PROTATTR,
52
	OVL_XATTR_XWHITEOUT,
53
};
54

55
enum ovl_inode_flag {
56
	/* Pure upper dir that may contain non pure upper entries */
57
	OVL_IMPURE,
58 59
	/* Non-merge dir that may contain whiteout entries */
	OVL_WHITEOUTS,
60
	OVL_INDEX,
61
	OVL_UPPERDATA,
62 63
	/* Inode number will remain constant over copy up. */
	OVL_CONST_INO,
64 65
	OVL_HAS_DIGEST,
	OVL_VERIFIED_DIGEST,
66 67
};

68 69 70
enum ovl_entry_flag {
	OVL_E_UPPER_ALIAS,
	OVL_E_OPAQUE,
71
	OVL_E_CONNECTED,
72 73
	/* Lower stack may contain xwhiteout entries */
	OVL_E_XWHITEOUTS,
74 75
};

76 77 78 79 80 81 82
enum {
	OVL_REDIRECT_OFF,	/* "off" mode is never used. In effect	*/
	OVL_REDIRECT_FOLLOW,	/* ...it translates to either "follow"	*/
	OVL_REDIRECT_NOFOLLOW,	/* ...or "nofollow".			*/
	OVL_REDIRECT_ON,
};

83 84 85
enum {
	OVL_UUID_OFF,
	OVL_UUID_NULL,
86
	OVL_UUID_AUTO,
87 88 89
	OVL_UUID_ON,
};

90 91 92 93 94 95
enum {
	OVL_XINO_OFF,
	OVL_XINO_AUTO,
	OVL_XINO_ON,
};

96 97 98 99 100 101
enum {
	OVL_VERITY_OFF,
	OVL_VERITY_ON,
	OVL_VERITY_REQUIRE,
};

102 103 104 105 106 107 108 109 110 111 112 113
/*
 * The tuple (fh,uuid) is a universal unique identifier for a copy up origin,
 * where:
 * origin.fh	- exported file handle of the lower file
 * origin.uuid	- uuid of the lower filesystem
 */
#define OVL_FH_VERSION	0
#define OVL_FH_MAGIC	0xfb

/* CPU byte order required for fid decoding:  */
#define OVL_FH_FLAG_BIG_ENDIAN	(1 << 0)
#define OVL_FH_FLAG_ANY_ENDIAN	(1 << 1)
114 115
/* Is the real inode encoded in fid an upper inode? */
#define OVL_FH_FLAG_PATH_UPPER	(1 << 2)
116

117 118
#define OVL_FH_FLAG_ALL (OVL_FH_FLAG_BIG_ENDIAN | OVL_FH_FLAG_ANY_ENDIAN | \
			 OVL_FH_FLAG_PATH_UPPER)
119 120 121 122 123 124 125 126 127

#if defined(__LITTLE_ENDIAN)
#define OVL_FH_FLAG_CPU_ENDIAN 0
#elif defined(__BIG_ENDIAN)
#define OVL_FH_FLAG_CPU_ENDIAN OVL_FH_FLAG_BIG_ENDIAN
#else
#error Endianness not defined
#endif

128 129 130 131
/* The type used to be returned by overlay exportfs for misaligned fid */
#define OVL_FILEID_V0	0xfb
/* The type returned by overlay exportfs for 32bit aligned fid */
#define OVL_FILEID_V1	0xf8
132

133 134
/* On-disk format for "origin" file handle */
struct ovl_fb {
135 136 137 138 139
	u8 version;	/* 0 */
	u8 magic;	/* 0xfb */
	u8 len;		/* size of this header + size of fid */
	u8 flags;	/* OVL_FH_FLAG_* */
	u8 type;	/* fid_type of fid */
140
	uuid_t uuid;	/* uuid of filesystem */
141
	u32 fid[];	/* file identifier should be 32bit aligned in-memory */
142
} __packed;
Miklos Szeredi's avatar
Miklos Szeredi committed
143

144 145 146 147 148
/* In-memory and on-wire format for overlay file handle */
struct ovl_fh {
	u8 padding[3];	/* make sure fb.fid is 32bit aligned */
	union {
		struct ovl_fb fb;
149
		DECLARE_FLEX_ARRAY(u8, buf);
150 151 152 153 154 155 156 157
	};
} __packed;

#define OVL_FH_WIRE_OFFSET	offsetof(struct ovl_fh, fb)
#define OVL_FH_LEN(fh)		(OVL_FH_WIRE_OFFSET + (fh)->fb.len)
#define OVL_FH_FID_OFFSET	(OVL_FH_WIRE_OFFSET + \
				 offsetof(struct ovl_fb, fid))

158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177
/* On-disk format for "metacopy" xattr (if non-zero size) */
struct ovl_metacopy {
	u8 version;	/* 0 */
	u8 len;         /* size of this header + used digest bytes */
	u8 flags;
	u8 digest_algo;	/* FS_VERITY_HASH_ALG_* constant, 0 for no digest */
	u8 digest[FS_VERITY_MAX_DIGEST_SIZE];  /* Only the used part on disk */
} __packed;

#define OVL_METACOPY_MAX_SIZE (sizeof(struct ovl_metacopy))
#define OVL_METACOPY_MIN_SIZE (OVL_METACOPY_MAX_SIZE - FS_VERITY_MAX_DIGEST_SIZE)
#define OVL_METACOPY_INIT { 0, OVL_METACOPY_MIN_SIZE }

static inline int ovl_metadata_digest_size(const struct ovl_metacopy *metacopy)
{
	if (metacopy->len < OVL_METACOPY_MIN_SIZE)
		return 0;
	return (int)metacopy->len - OVL_METACOPY_MIN_SIZE;
}

Miklos Szeredi's avatar
Miklos Szeredi committed
178 179 180
/* No atime modification on underlying */
#define OVL_OPEN_FLAGS (O_NOATIME)

Miklos Szeredi's avatar
Miklos Szeredi committed
181
extern const char *const ovl_xattr_table[][2];
182 183
static inline const char *ovl_xattr(struct ovl_fs *ofs, enum ovl_xattr ox)
{
Miklos Szeredi's avatar
Miklos Szeredi committed
184
	return ovl_xattr_table[ox][ofs->config.userxattr];
185 186
}

187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202
/*
 * When changing ownership of an upper object map the intended ownership
 * according to the upper layer's idmapping. When an upper mount idmaps files
 * that are stored on-disk as owned by id 1001 to id 1000 this means stat on
 * this object will report it as being owned by id 1000 when calling stat via
 * the upper mount.
 * In order to change ownership of an object so stat reports id 1000 when
 * called on an idmapped upper mount the value written to disk - i.e., the
 * value stored in ia_*id - must 1001. The mount mapping helper will thus take
 * care to map 1000 to 1001.
 * The mnt idmapping helpers are nops if the upper layer isn't idmapped.
 */
static inline int ovl_do_notify_change(struct ovl_fs *ofs,
				       struct dentry *upperdentry,
				       struct iattr *attr)
{
203
	return notify_change(ovl_upper_mnt_idmap(ofs), upperdentry, attr, NULL);
204 205
}

206 207
static inline int ovl_do_rmdir(struct ovl_fs *ofs,
			       struct inode *dir, struct dentry *dentry)
Miklos Szeredi's avatar
Miklos Szeredi committed
208
{
209
	int err = vfs_rmdir(ovl_upper_mnt_idmap(ofs), dir, dentry);
210

Miklos Szeredi's avatar
Miklos Szeredi committed
211 212 213 214
	pr_debug("rmdir(%pd2) = %i\n", dentry, err);
	return err;
}

215 216
static inline int ovl_do_unlink(struct ovl_fs *ofs, struct inode *dir,
				struct dentry *dentry)
Miklos Szeredi's avatar
Miklos Szeredi committed
217
{
218
	int err = vfs_unlink(ovl_upper_mnt_idmap(ofs), dir, dentry, NULL);
219

Miklos Szeredi's avatar
Miklos Szeredi committed
220 221 222 223
	pr_debug("unlink(%pd2) = %i\n", dentry, err);
	return err;
}

224 225
static inline int ovl_do_link(struct ovl_fs *ofs, struct dentry *old_dentry,
			      struct inode *dir, struct dentry *new_dentry)
Miklos Szeredi's avatar
Miklos Szeredi committed
226
{
227 228
	int err = vfs_link(old_dentry, ovl_upper_mnt_idmap(ofs), dir,
			   new_dentry, NULL);
229 230

	pr_debug("link(%pd2, %pd2) = %i\n", old_dentry, new_dentry, err);
Miklos Szeredi's avatar
Miklos Szeredi committed
231 232 233
	return err;
}

234 235
static inline int ovl_do_create(struct ovl_fs *ofs,
				struct inode *dir, struct dentry *dentry,
236
				umode_t mode)
Miklos Szeredi's avatar
Miklos Szeredi committed
237
{
238
	int err = vfs_create(ovl_upper_mnt_idmap(ofs), dir, dentry, mode, true);
239 240

	pr_debug("create(%pd2, 0%o) = %i\n", dentry, mode, err);
Miklos Szeredi's avatar
Miklos Szeredi committed
241 242 243
	return err;
}

244 245
static inline int ovl_do_mkdir(struct ovl_fs *ofs,
			       struct inode *dir, struct dentry *dentry,
246
			       umode_t mode)
Miklos Szeredi's avatar
Miklos Szeredi committed
247
{
248
	int err = vfs_mkdir(ovl_upper_mnt_idmap(ofs), dir, dentry, mode);
249
	pr_debug("mkdir(%pd2, 0%o) = %i\n", dentry, mode, err);
Miklos Szeredi's avatar
Miklos Szeredi committed
250 251 252
	return err;
}

253 254
static inline int ovl_do_mknod(struct ovl_fs *ofs,
			       struct inode *dir, struct dentry *dentry,
255
			       umode_t mode, dev_t dev)
Miklos Szeredi's avatar
Miklos Szeredi committed
256
{
257
	int err = vfs_mknod(ovl_upper_mnt_idmap(ofs), dir, dentry, mode, dev);
258 259

	pr_debug("mknod(%pd2, 0%o, 0%o) = %i\n", dentry, mode, dev, err);
Miklos Szeredi's avatar
Miklos Szeredi committed
260 261 262
	return err;
}

263 264
static inline int ovl_do_symlink(struct ovl_fs *ofs,
				 struct inode *dir, struct dentry *dentry,
265
				 const char *oldname)
Miklos Szeredi's avatar
Miklos Szeredi committed
266
{
267
	int err = vfs_symlink(ovl_upper_mnt_idmap(ofs), dir, dentry, oldname);
268 269

	pr_debug("symlink(\"%s\", %pd2) = %i\n", oldname, dentry, err);
Miklos Szeredi's avatar
Miklos Szeredi committed
270 271 272
	return err;
}

Al Viro's avatar
Al Viro committed
273
static inline ssize_t ovl_do_getxattr(const struct path *path, const char *name,
274
				      void *value, size_t size)
275
{
276 277 278 279
	int err, len;

	WARN_ON(path->dentry->d_sb != path->mnt->mnt_sb);

280
	err = vfs_getxattr(mnt_idmap(path->mnt), path->dentry,
281 282
			       name, value, size);
	len = (value && err > 0) ? err : 0;
283 284

	pr_debug("getxattr(%pd2, \"%s\", \"%*pE\", %zu, 0) = %i\n",
285
		 path->dentry, name, min(len, 48), value, size, err);
286
	return err;
287 288
}

289 290 291 292 293 294 295 296 297 298 299 300 301 302
static inline ssize_t ovl_getxattr_upper(struct ovl_fs *ofs,
					 struct dentry *upperdentry,
					 enum ovl_xattr ox, void *value,
					 size_t size)
{
	struct path upperpath = {
		.dentry = upperdentry,
		.mnt = ovl_upper_mnt(ofs),
	};

	return ovl_do_getxattr(&upperpath, ovl_xattr(ofs, ox), value, size);
}

static inline ssize_t ovl_path_getxattr(struct ovl_fs *ofs,
Al Viro's avatar
Al Viro committed
303
					 const struct path *path,
304 305
					 enum ovl_xattr ox, void *value,
					 size_t size)
306
{
307
	return ovl_do_getxattr(path, ovl_xattr(ofs, ox), value, size);
308 309
}

310
static inline int ovl_do_setxattr(struct ovl_fs *ofs, struct dentry *dentry,
311 312
				  const char *name, const void *value,
				  size_t size, int flags)
Miklos Szeredi's avatar
Miklos Szeredi committed
313
{
314
	int err = vfs_setxattr(ovl_upper_mnt_idmap(ofs), dentry, name,
315
			       value, size, flags);
316 317 318

	pr_debug("setxattr(%pd2, \"%s\", \"%*pE\", %zu, %d) = %i\n",
		 dentry, name, min((int)size, 48), value, size, flags, err);
Miklos Szeredi's avatar
Miklos Szeredi committed
319 320 321
	return err;
}

322 323 324 325 326 327 328
static inline int ovl_setxattr(struct ovl_fs *ofs, struct dentry *dentry,
			       enum ovl_xattr ox, const void *value,
			       size_t size)
{
	return ovl_do_setxattr(ofs, dentry, ovl_xattr(ofs, ox), value, size, 0);
}

329
static inline int ovl_do_removexattr(struct ovl_fs *ofs, struct dentry *dentry,
330
				     const char *name)
Miklos Szeredi's avatar
Miklos Szeredi committed
331
{
332
	int err = vfs_removexattr(ovl_upper_mnt_idmap(ofs), dentry, name);
Miklos Szeredi's avatar
Miklos Szeredi committed
333 334 335 336
	pr_debug("removexattr(%pd2, \"%s\") = %i\n", dentry, name, err);
	return err;
}

337 338 339 340 341 342
static inline int ovl_removexattr(struct ovl_fs *ofs, struct dentry *dentry,
				  enum ovl_xattr ox)
{
	return ovl_do_removexattr(ofs, dentry, ovl_xattr(ofs, ox));
}

343 344 345
static inline int ovl_do_set_acl(struct ovl_fs *ofs, struct dentry *dentry,
				 const char *acl_name, struct posix_acl *acl)
{
346
	return vfs_set_acl(ovl_upper_mnt_idmap(ofs), dentry, acl_name, acl);
347 348 349 350 351
}

static inline int ovl_do_remove_acl(struct ovl_fs *ofs, struct dentry *dentry,
				    const char *acl_name)
{
352
	return vfs_remove_acl(ovl_upper_mnt_idmap(ofs), dentry, acl_name);
353 354
}

355 356 357
static inline int ovl_do_rename(struct ovl_fs *ofs, struct inode *olddir,
				struct dentry *olddentry, struct inode *newdir,
				struct dentry *newdentry, unsigned int flags)
Miklos Szeredi's avatar
Miklos Szeredi committed
358 359
{
	int err;
360
	struct renamedata rd = {
361
		.old_mnt_idmap	= ovl_upper_mnt_idmap(ofs),
362 363
		.old_dir 	= olddir,
		.old_dentry 	= olddentry,
364
		.new_mnt_idmap	= ovl_upper_mnt_idmap(ofs),
365 366 367 368
		.new_dir 	= newdir,
		.new_dentry 	= newdentry,
		.flags 		= flags,
	};
Miklos Szeredi's avatar
Miklos Szeredi committed
369

370
	pr_debug("rename(%pd2, %pd2, 0x%x)\n", olddentry, newdentry, flags);
371
	err = vfs_rename(&rd);
Miklos Szeredi's avatar
Miklos Szeredi committed
372
	if (err) {
373
		pr_debug("...rename(%pd2, %pd2, ...) = %i\n",
Miklos Szeredi's avatar
Miklos Szeredi committed
374 375 376 377 378
			 olddentry, newdentry, err);
	}
	return err;
}

379 380
static inline int ovl_do_whiteout(struct ovl_fs *ofs,
				  struct inode *dir, struct dentry *dentry)
Miklos Szeredi's avatar
Miklos Szeredi committed
381
{
382
	int err = vfs_whiteout(ovl_upper_mnt_idmap(ofs), dir, dentry);
Miklos Szeredi's avatar
Miklos Szeredi committed
383 384 385 386
	pr_debug("whiteout(%pd2) = %i\n", dentry, err);
	return err;
}

387 388
static inline struct file *ovl_do_tmpfile(struct ovl_fs *ofs,
					  struct dentry *dentry, umode_t mode)
389
{
390
	struct path path = { .mnt = ovl_upper_mnt(ofs), .dentry = dentry };
391 392 393
	struct file *file = kernel_tmpfile_open(ovl_upper_mnt_idmap(ofs), &path,
						mode, O_LARGEFILE | O_WRONLY,
						current_cred());
394
	int err = PTR_ERR_OR_ZERO(file);
395 396

	pr_debug("tmpfile(%pd2, 0%o) = %i\n", dentry, mode, err);
397
	return file;
398 399
}

400 401 402 403
static inline struct dentry *ovl_lookup_upper(struct ovl_fs *ofs,
					      const char *name,
					      struct dentry *base, int len)
{
404
	return lookup_one(ovl_upper_mnt_idmap(ofs), name, base, len);
405 406
}

407 408 409 410 411 412 413 414
static inline bool ovl_open_flags_need_copy_up(int flags)
{
	if (!flags)
		return false;

	return ((OPEN_FMODE(flags) & FMODE_WRITE) || (flags & O_TRUNC));
}

415 416 417 418 419 420 421 422
static inline int ovl_do_getattr(const struct path *path, struct kstat *stat,
				 u32 request_mask, unsigned int flags)
{
	if (flags & AT_GETATTR_NOSEC)
		return vfs_getattr_nosec(path, stat, request_mask, flags);
	return vfs_getattr(path, stat, request_mask, flags);
}

Miklos Szeredi's avatar
Miklos Szeredi committed
423
/* util.c */
424 425 426 427
int ovl_get_write_access(struct dentry *dentry);
void ovl_put_write_access(struct dentry *dentry);
void ovl_start_write(struct dentry *dentry);
void ovl_end_write(struct dentry *dentry);
Miklos Szeredi's avatar
Miklos Szeredi committed
428 429 430 431
int ovl_want_write(struct dentry *dentry);
void ovl_drop_write(struct dentry *dentry);
struct dentry *ovl_workdir(struct dentry *dentry);
const struct cred *ovl_override_creds(struct super_block *sb);
432 433 434 435 436 437

static inline const struct cred *ovl_creds(struct super_block *sb)
{
	return OVL_FS(sb)->creator_cred;
}

438
int ovl_can_decode_fh(struct super_block *sb);
439
struct dentry *ovl_indexdir(struct super_block *sb);
440 441
bool ovl_index_all(struct super_block *sb);
bool ovl_verify_lower(struct super_block *sb);
442 443 444 445
struct ovl_path *ovl_stack_alloc(unsigned int n);
void ovl_stack_cpy(struct ovl_path *dst, struct ovl_path *src, unsigned int n);
void ovl_stack_put(struct ovl_path *stack, unsigned int n);
void ovl_stack_free(struct ovl_path *stack, unsigned int n);
Miklos Szeredi's avatar
Miklos Szeredi committed
446
struct ovl_entry *ovl_alloc_entry(unsigned int numlower);
447
void ovl_free_entry(struct ovl_entry *oe);
Miklos Szeredi's avatar
Miklos Szeredi committed
448
bool ovl_dentry_remote(struct dentry *dentry);
449
void ovl_dentry_update_reval(struct dentry *dentry, struct dentry *realdentry);
450 451
void ovl_dentry_init_reval(struct dentry *dentry, struct dentry *upperdentry,
			   struct ovl_entry *oe);
452
void ovl_dentry_init_flags(struct dentry *dentry, struct dentry *upperdentry,
453
			   struct ovl_entry *oe, unsigned int mask);
Miklos Szeredi's avatar
Miklos Szeredi committed
454
bool ovl_dentry_weird(struct dentry *dentry);
Miklos Szeredi's avatar
Miklos Szeredi committed
455 456 457
enum ovl_path_type ovl_path_type(struct dentry *dentry);
void ovl_path_upper(struct dentry *dentry, struct path *path);
void ovl_path_lower(struct dentry *dentry, struct path *path);
458
void ovl_path_lowerdata(struct dentry *dentry, struct path *path);
459
struct inode *ovl_i_path_real(struct inode *inode, struct path *path);
Miklos Szeredi's avatar
Miklos Szeredi committed
460
enum ovl_path_type ovl_path_real(struct dentry *dentry, struct path *path);
461
enum ovl_path_type ovl_path_realdata(struct dentry *dentry, struct path *path);
Miklos Szeredi's avatar
Miklos Szeredi committed
462 463
struct dentry *ovl_dentry_upper(struct dentry *dentry);
struct dentry *ovl_dentry_lower(struct dentry *dentry);
464
struct dentry *ovl_dentry_lowerdata(struct dentry *dentry);
465
int ovl_dentry_set_lowerdata(struct dentry *dentry, struct ovl_path *datapath);
466
const struct ovl_layer *ovl_i_layer_lower(struct inode *inode);
Miklos Szeredi's avatar
Miklos Szeredi committed
467
const struct ovl_layer *ovl_layer_lower(struct dentry *dentry);
Miklos Szeredi's avatar
Miklos Szeredi committed
468
struct dentry *ovl_dentry_real(struct dentry *dentry);
469
struct dentry *ovl_i_dentry_upper(struct inode *inode);
470 471
struct inode *ovl_inode_upper(struct inode *inode);
struct inode *ovl_inode_lower(struct inode *inode);
472
struct inode *ovl_inode_lowerdata(struct inode *inode);
473
struct inode *ovl_inode_real(struct inode *inode);
474
struct inode *ovl_inode_realdata(struct inode *inode);
475
const char *ovl_lowerdata_redirect(struct inode *inode);
476 477
struct ovl_dir_cache *ovl_dir_cache(struct inode *inode);
void ovl_set_dir_cache(struct inode *inode, struct ovl_dir_cache *cache);
478 479 480
void ovl_dentry_set_flag(unsigned long flag, struct dentry *dentry);
void ovl_dentry_clear_flag(unsigned long flag, struct dentry *dentry);
bool ovl_dentry_test_flag(unsigned long flag, struct dentry *dentry);
Miklos Szeredi's avatar
Miklos Szeredi committed
481
bool ovl_dentry_is_opaque(struct dentry *dentry);
482
bool ovl_dentry_is_whiteout(struct dentry *dentry);
Miklos Szeredi's avatar
Miklos Szeredi committed
483
void ovl_dentry_set_opaque(struct dentry *dentry);
484 485 486 487
bool ovl_dentry_has_xwhiteouts(struct dentry *dentry);
void ovl_dentry_set_xwhiteouts(struct dentry *dentry);
void ovl_layer_set_xwhiteouts(struct ovl_fs *ofs,
			      const struct ovl_layer *layer);
488 489
bool ovl_dentry_has_upper_alias(struct dentry *dentry);
void ovl_dentry_set_upper_alias(struct dentry *dentry);
490 491 492 493
bool ovl_dentry_needs_data_copy_up(struct dentry *dentry, int flags);
bool ovl_dentry_needs_data_copy_up_locked(struct dentry *dentry, int flags);
bool ovl_has_upperdata(struct inode *inode);
void ovl_set_upperdata(struct inode *inode);
494 495
const char *ovl_dentry_get_redirect(struct dentry *dentry);
void ovl_dentry_set_redirect(struct dentry *dentry, const char *redirect);
496
void ovl_inode_update(struct inode *inode, struct dentry *upperdentry);
Miklos Szeredi's avatar
Miklos Szeredi committed
497
void ovl_dir_modified(struct dentry *dentry, bool impurity);
498
u64 ovl_inode_version_get(struct inode *inode);
Miklos Szeredi's avatar
Miklos Szeredi committed
499
bool ovl_is_whiteout(struct dentry *dentry);
500
bool ovl_path_is_whiteout(struct ovl_fs *ofs, const struct path *path);
Al Viro's avatar
Al Viro committed
501
struct file *ovl_path_open(const struct path *path, int flags);
502
int ovl_copy_up_start(struct dentry *dentry, int flags);
503
void ovl_copy_up_end(struct dentry *dentry);
504
bool ovl_already_copied_up(struct dentry *dentry, int flags);
505 506
char ovl_get_dir_xattr_val(struct ovl_fs *ofs, const struct path *path,
			   enum ovl_xattr ox);
Al Viro's avatar
Al Viro committed
507
bool ovl_path_check_origin_xattr(struct ovl_fs *ofs, const struct path *path);
508
bool ovl_path_check_xwhiteout_xattr(struct ovl_fs *ofs, const struct path *path);
509 510
bool ovl_init_uuid_xattr(struct super_block *sb, struct ovl_fs *ofs,
			 const struct path *upperpath);
511

512 513 514 515 516 517 518 519 520 521
static inline bool ovl_upper_is_whiteout(struct ovl_fs *ofs,
					 struct dentry *upperdentry)
{
	struct path upperpath = {
		.dentry = upperdentry,
		.mnt = ovl_upper_mnt(ofs),
	};
	return ovl_path_is_whiteout(ofs, &upperpath);
}

522 523 524 525 526 527 528 529 530 531
static inline bool ovl_check_origin_xattr(struct ovl_fs *ofs,
					  struct dentry *upperdentry)
{
	struct path upperpath = {
		.dentry = upperdentry,
		.mnt = ovl_upper_mnt(ofs),
	};
	return ovl_path_check_origin_xattr(ofs, &upperpath);
}

532
int ovl_check_setxattr(struct ovl_fs *ofs, struct dentry *upperdentry,
533
		       enum ovl_xattr ox, const void *value, size_t size,
534 535
		       int xerr);
int ovl_set_impure(struct dentry *dentry, struct dentry *upperdentry);
536 537
bool ovl_inuse_trylock(struct dentry *dentry);
void ovl_inuse_unlock(struct dentry *dentry);
538
bool ovl_is_inuse(struct dentry *dentry);
539
bool ovl_need_index(struct dentry *dentry);
540 541
int ovl_nlink_start(struct dentry *dentry);
void ovl_nlink_end(struct dentry *dentry);
542
int ovl_lock_rename_workdir(struct dentry *workdir, struct dentry *upperdir);
543 544
int ovl_check_metacopy_xattr(struct ovl_fs *ofs, const struct path *path,
			     struct ovl_metacopy *data);
545 546
int ovl_set_metacopy_xattr(struct ovl_fs *ofs, struct dentry *d,
			   struct ovl_metacopy *metacopy);
547
bool ovl_is_metacopy_dentry(struct dentry *dentry);
Al Viro's avatar
Al Viro committed
548
char *ovl_get_redirect_xattr(struct ovl_fs *ofs, const struct path *path, int padding);
549
int ovl_ensure_verity_loaded(struct path *path);
550 551 552 553 554
int ovl_get_verity_xattr(struct ovl_fs *ofs, const struct path *path,
			 u8 *digest_buf, int *buf_length);
int ovl_validate_verity(struct ovl_fs *ofs,
			struct path *metapath,
			struct path *datapath);
555 556
int ovl_get_verity_digest(struct ovl_fs *ofs, struct path *src,
			  struct ovl_metacopy *metacopy);
557
int ovl_sync_status(struct ovl_fs *ofs);
558

559 560 561 562 563 564 565 566 567 568 569 570 571 572 573
static inline void ovl_set_flag(unsigned long flag, struct inode *inode)
{
	set_bit(flag, &OVL_I(inode)->flags);
}

static inline void ovl_clear_flag(unsigned long flag, struct inode *inode)
{
	clear_bit(flag, &OVL_I(inode)->flags);
}

static inline bool ovl_test_flag(unsigned long flag, struct inode *inode)
{
	return test_bit(flag, &OVL_I(inode)->flags);
}

574
static inline bool ovl_is_impuredir(struct super_block *sb,
575
				    struct dentry *upperdentry)
576
{
577 578 579 580 581 582
	struct ovl_fs *ofs = OVL_FS(sb);
	struct path upperpath = {
		.dentry = upperdentry,
		.mnt = ovl_upper_mnt(ofs),
	};

583 584 585 586 587 588 589
	return ovl_get_dir_xattr_val(ofs, &upperpath, OVL_XATTR_IMPURE) == 'y';
}

static inline char ovl_get_opaquedir_val(struct ovl_fs *ofs,
					 const struct path *path)
{
	return ovl_get_dir_xattr_val(ofs, path, OVL_XATTR_OPAQUE);
590 591
}

592 593 594 595 596 597 598 599 600 601
static inline bool ovl_redirect_follow(struct ovl_fs *ofs)
{
	return ofs->config.redirect_mode != OVL_REDIRECT_NOFOLLOW;
}

static inline bool ovl_redirect_dir(struct ovl_fs *ofs)
{
	return ofs->config.redirect_mode == OVL_REDIRECT_ON;
}

602 603 604 605 606 607 608
static inline bool ovl_origin_uuid(struct ovl_fs *ofs)
{
	return ofs->config.uuid != OVL_UUID_OFF;
}

static inline bool ovl_has_fsid(struct ovl_fs *ofs)
{
609 610
	return ofs->config.uuid == OVL_UUID_ON ||
	       ofs->config.uuid == OVL_UUID_AUTO;
611 612
}

613 614 615 616 617
/*
 * With xino=auto, we do best effort to keep all inodes on same st_dev and
 * d_ino consistent with st_ino.
 * With xino=on, we do the same effort but we warn if we failed.
 */
618
static inline bool ovl_xino_warn(struct ovl_fs *ofs)
619
{
620
	return ofs->config.xino == OVL_XINO_ON;
621 622
}

623 624 625 626 627 628 629 630
/*
 * To avoid regressions in existing setups with overlay lower offline changes,
 * we allow lower changes only if none of the new features are used.
 */
static inline bool ovl_allow_offline_changes(struct ovl_fs *ofs)
{
	return (!ofs->config.index && !ofs->config.metacopy &&
		!ovl_redirect_dir(ofs) && !ovl_xino_warn(ofs));
631 632
}

633
/* All layers on same fs? */
634
static inline bool ovl_same_fs(struct ovl_fs *ofs)
635
{
636
	return ofs->xino_mode == 0;
637
}
638

639
/* All overlay inodes have same st_dev? */
640
static inline bool ovl_same_dev(struct ovl_fs *ofs)
641
{
642
	return ofs->xino_mode >= 0;
643 644
}

645
static inline unsigned int ovl_xino_bits(struct ovl_fs *ofs)
646
{
647
	return ovl_same_dev(ofs) ? ofs->xino_mode : 0;
648 649
}

650 651 652 653 654 655
static inline void ovl_inode_lock(struct inode *inode)
{
	mutex_lock(&OVL_I(inode)->lock);
}

static inline int ovl_inode_lock_interruptible(struct inode *inode)
656 657 658 659 660 661 662 663 664
{
	return mutex_lock_interruptible(&OVL_I(inode)->lock);
}

static inline void ovl_inode_unlock(struct inode *inode)
{
	mutex_unlock(&OVL_I(inode)->lock);
}

Miklos Szeredi's avatar
Miklos Szeredi committed
665

Miklos Szeredi's avatar
Miklos Szeredi committed
666
/* namei.c */
667 668 669 670
int ovl_check_fb_len(struct ovl_fb *fb, int fb_len);

static inline int ovl_check_fh_len(struct ovl_fh *fh, int fh_len)
{
671 672 673
	if (fh_len < sizeof(struct ovl_fh))
		return -EINVAL;

674 675 676
	return ovl_check_fb_len(&fh->fb, fh_len - OVL_FH_WIRE_OFFSET);
}

677 678
struct dentry *ovl_decode_real_fh(struct ovl_fs *ofs, struct ovl_fh *fh,
				  struct vfsmount *mnt, bool connected);
679
int ovl_check_origin_fh(struct ovl_fs *ofs, struct ovl_fh *fh, bool connected,
680
			struct dentry *upperdentry, struct ovl_path **stackp);
681
int ovl_verify_set_fh(struct ovl_fs *ofs, struct dentry *dentry,
682 683 684 685 686
		      enum ovl_xattr ox, const struct ovl_fh *fh,
		      bool is_upper, bool set);
int ovl_verify_origin_xattr(struct ovl_fs *ofs, struct dentry *dentry,
			    enum ovl_xattr ox, struct dentry *real,
			    bool is_upper, bool set);
687 688
struct dentry *ovl_index_upper(struct ovl_fs *ofs, struct dentry *index,
			       bool connected);
689
int ovl_verify_index(struct ovl_fs *ofs, struct dentry *index);
690
int ovl_get_index_name_fh(const struct ovl_fh *fh, struct qstr *name);
691 692
int ovl_get_index_name(struct ovl_fs *ofs, struct dentry *origin,
		       struct qstr *name);
693
struct dentry *ovl_get_index_fh(struct ovl_fs *ofs, struct ovl_fh *fh);
694 695
struct dentry *ovl_lookup_index(struct ovl_fs *ofs, struct dentry *upper,
				struct dentry *origin, bool verify);
696 697
int ovl_path_next(int idx, struct dentry *dentry, struct path *path,
		  const struct ovl_layer **layer);
698
int ovl_verify_lowerdata(struct dentry *dentry);
699 700
struct dentry *ovl_lookup(struct inode *dir, struct dentry *dentry,
			  unsigned int flags);
Miklos Szeredi's avatar
Miklos Szeredi committed
701
bool ovl_lower_positive(struct dentry *dentry);
Miklos Szeredi's avatar
Miklos Szeredi committed
702

703 704 705 706 707 708
static inline int ovl_verify_origin_fh(struct ovl_fs *ofs, struct dentry *upper,
				       const struct ovl_fh *fh, bool set)
{
	return ovl_verify_set_fh(ofs, upper, OVL_XATTR_ORIGIN, fh, false, set);
}

709
static inline int ovl_verify_origin(struct ovl_fs *ofs, struct dentry *upper,
710 711
				    struct dentry *origin, bool set)
{
712 713
	return ovl_verify_origin_xattr(ofs, upper, OVL_XATTR_ORIGIN, origin,
				       false, set);
714 715
}

716 717
static inline int ovl_verify_upper(struct ovl_fs *ofs, struct dentry *index,
				   struct dentry *upper, bool set)
718
{
719 720
	return ovl_verify_origin_xattr(ofs, index, OVL_XATTR_UPPER, upper,
				       true, set);
721 722
}

Miklos Szeredi's avatar
Miklos Szeredi committed
723 724
/* readdir.c */
extern const struct file_operations ovl_dir_operations;
725
struct file *ovl_dir_real_file(const struct file *file, bool want_upper);
Miklos Szeredi's avatar
Miklos Szeredi committed
726
int ovl_check_empty_dir(struct dentry *dentry, struct list_head *list);
727 728
void ovl_cleanup_whiteouts(struct ovl_fs *ofs, struct dentry *upper,
			   struct list_head *list);
Miklos Szeredi's avatar
Miklos Szeredi committed
729
void ovl_cache_free(struct list_head *list);
730
void ovl_dir_cache_free(struct inode *inode);
Al Viro's avatar
Al Viro committed
731
int ovl_check_d_type_supported(const struct path *realpath);
732 733
int ovl_workdir_cleanup(struct ovl_fs *ofs, struct inode *dir,
			struct vfsmount *mnt, struct dentry *dentry, int level);
734
int ovl_indexdir_cleanup(struct ovl_fs *ofs);
Miklos Szeredi's avatar
Miklos Szeredi committed
735

736 737 738 739 740 741 742
/*
 * Can we iterate real dir directly?
 *
 * Non-merge dir may contain whiteouts from a time it was a merge upper, before
 * lower dir was removed under it and possibly before it was rotated from upper
 * to lower layer.
 */
743
static inline bool ovl_dir_is_real(struct inode *dir)
744
{
745
	return !ovl_test_flag(OVL_WHITEOUTS, dir);
746 747
}

Miklos Szeredi's avatar
Miklos Szeredi committed
748
/* inode.c */
749 750
int ovl_set_nlink_upper(struct dentry *dentry);
int ovl_set_nlink_lower(struct dentry *dentry);
751
unsigned int ovl_get_nlink(struct ovl_fs *ofs, struct dentry *lowerdentry,
752 753
			   struct dentry *upperdentry,
			   unsigned int fallback);
754
int ovl_permission(struct mnt_idmap *idmap, struct inode *inode,
755
		   int mask);
756 757

#ifdef CONFIG_FS_POSIX_ACL
758
struct posix_acl *do_ovl_get_acl(struct mnt_idmap *idmap,
759 760 761 762 763
				 struct inode *inode, int type,
				 bool rcu, bool noperm);
static inline struct posix_acl *ovl_get_inode_acl(struct inode *inode, int type,
						  bool rcu)
{
764
	return do_ovl_get_acl(&nop_mnt_idmap, inode, type, rcu, true);
765
}
766
static inline struct posix_acl *ovl_get_acl(struct mnt_idmap *idmap,
767 768
					    struct dentry *dentry, int type)
{
769
	return do_ovl_get_acl(idmap, d_inode(dentry), type, false, false);
770
}
771
int ovl_set_acl(struct mnt_idmap *idmap, struct dentry *dentry,
772
		struct posix_acl *acl, int type);
Christian Brauner's avatar
Christian Brauner committed
773 774
struct posix_acl *ovl_get_acl_path(const struct path *path,
				   const char *acl_name, bool noperm);
775
#else
776 777
#define ovl_get_inode_acl	NULL
#define ovl_get_acl		NULL
778
#define ovl_set_acl		NULL
Christian Brauner's avatar
Christian Brauner committed
779 780 781 782 783 784
static inline struct posix_acl *ovl_get_acl_path(const struct path *path,
						 const char *acl_name,
						 bool noperm)
{
	return NULL;
}
785 786
#endif

787
int ovl_update_time(struct inode *inode, int flags);
788
bool ovl_is_private_xattr(struct super_block *sb, const char *name);
Miklos Szeredi's avatar
Miklos Szeredi committed
789

790
struct ovl_inode_params {
791
	struct inode *newinode;
792
	struct dentry *upperdentry;
793
	struct ovl_entry *oe;
Miklos Szeredi's avatar
Miklos Szeredi committed
794
	bool index;
795
	char *redirect;
796
	char *lowerdata_redirect;
797
};
798 799
void ovl_inode_init(struct inode *inode, struct ovl_inode_params *oip,
		    unsigned long ino, int fsid);
800
struct inode *ovl_new_inode(struct super_block *sb, umode_t mode, dev_t rdev);
801 802
struct inode *ovl_lookup_inode(struct super_block *sb, struct dentry *real,
			       bool is_upper);
803 804
bool ovl_lookup_trap_inode(struct super_block *sb, struct dentry *dir);
struct inode *ovl_get_trap_inode(struct super_block *sb, struct dentry *dir);
805 806
struct inode *ovl_get_inode(struct super_block *sb,
			    struct ovl_inode_params *oip);
807
void ovl_copyattr(struct inode *to);
Miklos Szeredi's avatar
Miklos Szeredi committed
808

809 810
/* vfs inode flags copied from real to ovl inode */
#define OVL_COPY_I_FLAGS_MASK	(S_SYNC | S_NOATIME | S_APPEND | S_IMMUTABLE)
811 812
/* vfs inode flags read from overlay.protattr xattr to ovl inode */
#define OVL_PROT_I_FLAGS_MASK	(S_APPEND | S_IMMUTABLE)
813 814 815

/*
 * fileattr flags copied from lower to upper inode on copy up.
816 817
 * We cannot copy up immutable/append-only flags, because that would prevent
 * linking temp inode to upper dir, so we store them in xattr instead.
818 819 820
 */
#define OVL_COPY_FS_FLAGS_MASK	(FS_SYNC_FL | FS_NOATIME_FL)
#define OVL_COPY_FSX_FLAGS_MASK	(FS_XFLAG_SYNC | FS_XFLAG_NOATIME)
821 822 823 824 825 826
#define OVL_PROT_FS_FLAGS_MASK  (FS_APPEND_FL | FS_IMMUTABLE_FL)
#define OVL_PROT_FSX_FLAGS_MASK (FS_XFLAG_APPEND | FS_XFLAG_IMMUTABLE)

void ovl_check_protattr(struct inode *inode, struct dentry *upper);
int ovl_set_protattr(struct inode *inode, struct dentry *upper,
		      struct fileattr *fa);
827

Miklos Szeredi's avatar
Miklos Szeredi committed
828 829
static inline void ovl_copyflags(struct inode *from, struct inode *to)
{
830
	unsigned int mask = OVL_COPY_I_FLAGS_MASK;
Miklos Szeredi's avatar
Miklos Szeredi committed
831 832 833 834

	inode_set_flags(to, from->i_flags & mask, mask);
}

Miklos Szeredi's avatar
Miklos Szeredi committed
835 836
/* dir.c */
extern const struct inode_operations ovl_dir_inode_operations;
837
int ovl_cleanup_and_whiteout(struct ovl_fs *ofs, struct inode *dir,
838
			     struct dentry *dentry);
839
struct ovl_cattr {
Al Viro's avatar
Al Viro committed
840 841 842
	dev_t rdev;
	umode_t mode;
	const char *link;
843
	struct dentry *hardlink;
Al Viro's avatar
Al Viro committed
844
};
845 846 847

#define OVL_CATTR(m) (&(struct ovl_cattr) { .mode = (m) })

848 849 850 851 852 853 854 855
int ovl_mkdir_real(struct ovl_fs *ofs, struct inode *dir,
		   struct dentry **newdentry, umode_t mode);
struct dentry *ovl_create_real(struct ovl_fs *ofs,
			       struct inode *dir, struct dentry *newdentry,
			       struct ovl_cattr *attr);
int ovl_cleanup(struct ovl_fs *ofs, struct inode *dir, struct dentry *dentry);
struct dentry *ovl_lookup_temp(struct ovl_fs *ofs, struct dentry *workdir);
struct dentry *ovl_create_temp(struct ovl_fs *ofs, struct dentry *workdir,
856
			       struct ovl_cattr *attr);
Miklos Szeredi's avatar
Miklos Szeredi committed
857

Miklos Szeredi's avatar
Miklos Szeredi committed
858 859
/* file.c */
extern const struct file_operations ovl_file_operations;
Al Viro's avatar
Al Viro committed
860 861
int ovl_real_fileattr_get(const struct path *realpath, struct fileattr *fa);
int ovl_real_fileattr_set(const struct path *realpath, struct fileattr *fa);
Miklos Szeredi's avatar
Miklos Szeredi committed
862
int ovl_fileattr_get(struct dentry *dentry, struct fileattr *fa);
863
int ovl_fileattr_set(struct mnt_idmap *idmap,
Miklos Szeredi's avatar
Miklos Szeredi committed
864
		     struct dentry *dentry, struct fileattr *fa);
Miklos Szeredi's avatar
Miklos Szeredi committed
865

Miklos Szeredi's avatar
Miklos Szeredi committed
866 867
/* copy_up.c */
int ovl_copy_up(struct dentry *dentry);
868
int ovl_copy_up_with_data(struct dentry *dentry);
869
int ovl_maybe_copy_up(struct dentry *dentry, int flags);
Al Viro's avatar
Al Viro committed
870
int ovl_copy_xattr(struct super_block *sb, const struct path *path, struct dentry *new);
871
int ovl_set_attr(struct ovl_fs *ofs, struct dentry *upper, struct kstat *stat);
872 873
struct ovl_fh *ovl_encode_real_fh(struct ovl_fs *ofs, struct dentry *real,
				  bool is_upper);
874 875 876
struct ovl_fh *ovl_get_origin_fh(struct ovl_fs *ofs, struct dentry *origin);
int ovl_set_origin_fh(struct ovl_fs *ofs, const struct ovl_fh *fh,
		      struct dentry *upper);
877 878 879

/* export.c */
extern const struct export_operations ovl_export_operations;
880
extern const struct export_operations ovl_export_fid_operations;
881 882 883 884 885 886 887 888 889

/* super.c */
int ovl_fill_super(struct super_block *sb, struct fs_context *fc);

/* Will this overlay be forced to mount/remount ro? */
static inline bool ovl_force_readonly(struct ovl_fs *ofs)
{
	return (!ovl_upper_mnt(ofs) || !ofs->workdir);
}
890 891 892 893 894 895 896 897 898

/* xattr.c */

const struct xattr_handler * const *ovl_xattr_handlers(struct ovl_fs *ofs);
int ovl_setattr(struct mnt_idmap *idmap, struct dentry *dentry,
		struct iattr *attr);
int ovl_getattr(struct mnt_idmap *idmap, const struct path *path,
		struct kstat *stat, u32 request_mask, unsigned int flags);
ssize_t ovl_listxattr(struct dentry *dentry, char *list, size_t size);