blob: f2513fb8c391d5bdd39eaeef08987165e1ac2006 [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * fs/cifs/transport.c
3 *
Steve Frenchad7a2922008-02-07 23:25:02 +00004 * Copyright (C) International Business Machines Corp., 2002,2008
Linus Torvalds1da177e2005-04-16 15:20:36 -07005 * Author(s): Steve French (sfrench@us.ibm.com)
Steve French14a441a2b2006-07-16 04:32:51 +00006 * Jeremy Allison (jra@samba.org) 2006.
Steve French79a58d12007-07-06 22:44:50 +00007 *
Linus Torvalds1da177e2005-04-16 15:20:36 -07008 * This library is free software; you can redistribute it and/or modify
9 * it under the terms of the GNU Lesser General Public License as published
10 * by the Free Software Foundation; either version 2.1 of the License, or
11 * (at your option) any later version.
12 *
13 * This library is distributed in the hope that it will be useful,
14 * but WITHOUT ANY WARRANTY; without even the implied warranty of
15 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See
16 * the GNU Lesser General Public License for more details.
17 *
18 * You should have received a copy of the GNU Lesser General Public License
19 * along with this library; if not, write to the Free Software
Steve French79a58d12007-07-06 22:44:50 +000020 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
Linus Torvalds1da177e2005-04-16 15:20:36 -070021 */
22
23#include <linux/fs.h>
24#include <linux/list.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090025#include <linux/gfp.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070026#include <linux/wait.h>
27#include <linux/net.h>
28#include <linux/delay.h>
29#include <asm/uaccess.h>
30#include <asm/processor.h>
31#include <linux/mempool.h>
32#include "cifspdu.h"
33#include "cifsglob.h"
34#include "cifsproto.h"
35#include "cifs_debug.h"
Steve French50c2f752007-07-13 00:33:32 +000036
Linus Torvalds1da177e2005-04-16 15:20:36 -070037extern mempool_t *cifs_mid_poolp;
Linus Torvalds1da177e2005-04-16 15:20:36 -070038
Jeff Layton2b84a36c2011-01-11 07:24:21 -050039static void
40wake_up_task(struct mid_q_entry *mid)
41{
42 wake_up_process(mid->callback_data);
43}
44
Jeff Laytona6827c12011-01-11 07:24:21 -050045struct mid_q_entry *
Jeff Layton24b9b062008-12-01 07:09:34 -050046AllocMidQEntry(const struct smb_hdr *smb_buffer, struct TCP_Server_Info *server)
Linus Torvalds1da177e2005-04-16 15:20:36 -070047{
48 struct mid_q_entry *temp;
49
Jeff Layton24b9b062008-12-01 07:09:34 -050050 if (server == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +000051 cERROR(1, "Null TCP session in AllocMidQEntry");
Linus Torvalds1da177e2005-04-16 15:20:36 -070052 return NULL;
53 }
Steve French50c2f752007-07-13 00:33:32 +000054
Pekka Enberg232087c2008-09-15 13:22:54 +030055 temp = mempool_alloc(cifs_mid_poolp, GFP_NOFS);
Linus Torvalds1da177e2005-04-16 15:20:36 -070056 if (temp == NULL)
57 return temp;
58 else {
Steve French26f57362007-08-30 22:09:15 +000059 memset(temp, 0, sizeof(struct mid_q_entry));
Linus Torvalds1da177e2005-04-16 15:20:36 -070060 temp->mid = smb_buffer->Mid; /* always LE */
61 temp->pid = current->pid;
62 temp->command = smb_buffer->Command;
Joe Perchesb6b38f72010-04-21 03:50:45 +000063 cFYI(1, "For smb_command %d", temp->command);
Steve French1047abc2005-10-11 19:58:06 -070064 /* do_gettimeofday(&temp->when_sent);*/ /* easier to use jiffies */
65 /* when mid allocated can be before when sent */
66 temp->when_alloc = jiffies;
Jeff Layton2b84a36c2011-01-11 07:24:21 -050067
68 /*
69 * The default is for the mid to be synchronous, so the
70 * default callback just wakes up the current task.
71 */
72 temp->callback = wake_up_task;
73 temp->callback_data = current;
Linus Torvalds1da177e2005-04-16 15:20:36 -070074 }
75
Linus Torvalds1da177e2005-04-16 15:20:36 -070076 atomic_inc(&midCount);
77 temp->midState = MID_REQUEST_ALLOCATED;
Linus Torvalds1da177e2005-04-16 15:20:36 -070078 return temp;
79}
80
Jeff Layton766fdbb2011-01-11 07:24:21 -050081void
Linus Torvalds1da177e2005-04-16 15:20:36 -070082DeleteMidQEntry(struct mid_q_entry *midEntry)
83{
Steve French1047abc2005-10-11 19:58:06 -070084#ifdef CONFIG_CIFS_STATS2
85 unsigned long now;
86#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -070087 midEntry->midState = MID_FREE;
Jeff Layton80975312011-01-11 07:24:02 -050088 atomic_dec(&midCount);
Steve French79a58d12007-07-06 22:44:50 +000089 if (midEntry->largeBuf)
Steve Frenchb8643e12005-04-28 22:41:07 -070090 cifs_buf_release(midEntry->resp_buf);
91 else
92 cifs_small_buf_release(midEntry->resp_buf);
Steve French1047abc2005-10-11 19:58:06 -070093#ifdef CONFIG_CIFS_STATS2
94 now = jiffies;
95 /* commands taking longer than one second are indications that
96 something is wrong, unless it is quite a slow link or server */
Steve French79a58d12007-07-06 22:44:50 +000097 if ((now - midEntry->when_alloc) > HZ) {
98 if ((cifsFYI & CIFS_TIMER) &&
Steve French1047abc2005-10-11 19:58:06 -070099 (midEntry->command != SMB_COM_LOCKING_ANDX)) {
100 printk(KERN_DEBUG " CIFS slow rsp: cmd %d mid %d",
101 midEntry->command, midEntry->mid);
102 printk(" A: 0x%lx S: 0x%lx R: 0x%lx\n",
103 now - midEntry->when_alloc,
104 now - midEntry->when_sent,
105 now - midEntry->when_received);
106 }
107 }
108#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -0700109 mempool_free(midEntry, cifs_mid_poolp);
110}
111
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500112static void
113delete_mid(struct mid_q_entry *mid)
114{
115 spin_lock(&GlobalMid_Lock);
116 list_del(&mid->qhead);
117 spin_unlock(&GlobalMid_Lock);
118
119 DeleteMidQEntry(mid);
120}
121
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500122static int
Jeff Layton0496e022008-12-30 12:39:16 -0500123smb_sendv(struct TCP_Server_Info *server, struct kvec *iov, int n_vec)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700124{
125 int rc = 0;
126 int i = 0;
127 struct msghdr smb_msg;
Steve French3e844692005-10-03 13:37:24 -0700128 struct smb_hdr *smb_buffer = iov[0].iov_base;
129 unsigned int len = iov[0].iov_len;
130 unsigned int total_len;
131 int first_vec = 0;
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000132 unsigned int smb_buf_length = be32_to_cpu(smb_buffer->smb_buf_length);
Steve Frenchedf1ae42008-10-29 00:47:57 +0000133 struct socket *ssocket = server->ssocket;
Steve French50c2f752007-07-13 00:33:32 +0000134
Steve French79a58d12007-07-06 22:44:50 +0000135 if (ssocket == NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700136 return -ENOTSOCK; /* BB eventually add reconnect code here */
Steve French3e844692005-10-03 13:37:24 -0700137
Pavel Shilovskya9f1b852010-12-13 19:08:35 +0300138 smb_msg.msg_name = (struct sockaddr *) &server->dstaddr;
Steve French26f57362007-08-30 22:09:15 +0000139 smb_msg.msg_namelen = sizeof(struct sockaddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700140 smb_msg.msg_control = NULL;
141 smb_msg.msg_controllen = 0;
Jeff Layton0496e022008-12-30 12:39:16 -0500142 if (server->noblocksnd)
Steve Frenchedf1ae42008-10-29 00:47:57 +0000143 smb_msg.msg_flags = MSG_DONTWAIT + MSG_NOSIGNAL;
144 else
145 smb_msg.msg_flags = MSG_NOSIGNAL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700146
Steve French3e844692005-10-03 13:37:24 -0700147 total_len = 0;
148 for (i = 0; i < n_vec; i++)
149 total_len += iov[i].iov_len;
150
Joe Perchesb6b38f72010-04-21 03:50:45 +0000151 cFYI(1, "Sending smb: total_len %d", total_len);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700152 dump_smb(smb_buffer, len);
153
Shirish Pargaonkar17680352008-07-29 21:26:13 +0000154 i = 0;
Steve French3e844692005-10-03 13:37:24 -0700155 while (total_len) {
156 rc = kernel_sendmsg(ssocket, &smb_msg, &iov[first_vec],
157 n_vec - first_vec, total_len);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700158 if ((rc == -ENOSPC) || (rc == -EAGAIN)) {
159 i++;
Steve Frenchda505c32009-01-19 03:49:35 +0000160 /* if blocking send we try 3 times, since each can block
161 for 5 seconds. For nonblocking we have to try more
162 but wait increasing amounts of time allowing time for
163 socket to clear. The overall time we wait in either
164 case to send on the socket is about 15 seconds.
165 Similarly we wait for 15 seconds for
166 a response from the server in SendReceive[2]
167 for the server to send a response back for
168 most types of requests (except SMB Write
169 past end of file which can be slow, and
170 blocking lock operations). NFS waits slightly longer
171 than CIFS, but this can make it take longer for
172 nonresponsive servers to be detected and 15 seconds
173 is more than enough time for modern networks to
174 send a packet. In most cases if we fail to send
175 after the retries we will kill the socket and
176 reconnect which may clear the network problem.
177 */
178 if ((i >= 14) || (!server->noblocksnd && (i > 2))) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000179 cERROR(1, "sends on sock %p stuck for 15 seconds",
180 ssocket);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700181 rc = -EAGAIN;
182 break;
183 }
Steve French68058e72005-10-10 10:34:22 -0700184 msleep(1 << i);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700185 continue;
186 }
Steve French79a58d12007-07-06 22:44:50 +0000187 if (rc < 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700188 break;
Steve French3e844692005-10-03 13:37:24 -0700189
Steve French61de8002008-10-30 20:15:22 +0000190 if (rc == total_len) {
191 total_len = 0;
192 break;
193 } else if (rc > total_len) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000194 cERROR(1, "sent %d requested %d", rc, total_len);
Steve French3e844692005-10-03 13:37:24 -0700195 break;
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500196 }
Steve French79a58d12007-07-06 22:44:50 +0000197 if (rc == 0) {
Steve French3e844692005-10-03 13:37:24 -0700198 /* should never happen, letting socket clear before
199 retrying is our only obvious option here */
Joe Perchesb6b38f72010-04-21 03:50:45 +0000200 cERROR(1, "tcp sent no data");
Steve French3e844692005-10-03 13:37:24 -0700201 msleep(500);
202 continue;
203 }
204 total_len -= rc;
Steve French68058e72005-10-10 10:34:22 -0700205 /* the line below resets i */
Steve French3e844692005-10-03 13:37:24 -0700206 for (i = first_vec; i < n_vec; i++) {
207 if (iov[i].iov_len) {
208 if (rc > iov[i].iov_len) {
209 rc -= iov[i].iov_len;
210 iov[i].iov_len = 0;
211 } else {
212 iov[i].iov_base += rc;
213 iov[i].iov_len -= rc;
214 first_vec = i;
215 break;
216 }
217 }
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500218 }
Steve French5e1253b2005-10-10 14:06:37 -0700219 i = 0; /* in case we get ENOSPC on the next send */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700220 }
221
Steve Frenchedf1ae42008-10-29 00:47:57 +0000222 if ((total_len > 0) && (total_len != smb_buf_length + 4)) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000223 cFYI(1, "partial send (%d remaining), terminating session",
224 total_len);
Steve Frenchedf1ae42008-10-29 00:47:57 +0000225 /* If we have only sent part of an SMB then the next SMB
226 could be taken as the remainder of this one. We need
227 to kill the socket so the server throws away the partial
228 SMB */
229 server->tcpStatus = CifsNeedReconnect;
230 }
231
Jeff Laytond804d412011-01-28 15:05:43 -0500232 if (rc < 0 && rc != -EINTR)
Joe Perchesb6b38f72010-04-21 03:50:45 +0000233 cERROR(1, "Error %d sending data on socket to server", rc);
Jeff Laytond804d412011-01-28 15:05:43 -0500234 else
Linus Torvalds1da177e2005-04-16 15:20:36 -0700235 rc = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700236
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000237 /* Don't want to modify the buffer as a
238 side effect of this call. */
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000239 smb_buffer->smb_buf_length = cpu_to_be32(smb_buf_length);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000240
Linus Torvalds1da177e2005-04-16 15:20:36 -0700241 return rc;
242}
243
Jeff Layton0496e022008-12-30 12:39:16 -0500244int
245smb_send(struct TCP_Server_Info *server, struct smb_hdr *smb_buffer,
246 unsigned int smb_buf_length)
247{
248 struct kvec iov;
249
250 iov.iov_base = smb_buffer;
251 iov.iov_len = smb_buf_length + 4;
252
253 return smb_sendv(server, &iov, 1);
254}
255
Jeff Laytonc5797a92011-01-11 07:24:01 -0500256static int wait_for_free_request(struct TCP_Server_Info *server,
257 const int long_op)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000258{
Steve French133672e2007-11-13 22:41:37 +0000259 if (long_op == CIFS_ASYNC_OP) {
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000260 /* oplock breaks must not be held up */
Jeff Laytonc5797a92011-01-11 07:24:01 -0500261 atomic_inc(&server->inFlight);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000262 return 0;
263 }
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000264
Volker Lendecke27a97a62008-12-08 20:59:39 +0000265 spin_lock(&GlobalMid_Lock);
266 while (1) {
Jeff Laytonc5797a92011-01-11 07:24:01 -0500267 if (atomic_read(&server->inFlight) >= cifs_max_pending) {
Volker Lendecke27a97a62008-12-08 20:59:39 +0000268 spin_unlock(&GlobalMid_Lock);
269#ifdef CONFIG_CIFS_STATS2
Jeff Laytonc5797a92011-01-11 07:24:01 -0500270 atomic_inc(&server->num_waiters);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000271#endif
Jeff Laytonc5797a92011-01-11 07:24:01 -0500272 wait_event(server->request_q,
273 atomic_read(&server->inFlight)
Volker Lendecke27a97a62008-12-08 20:59:39 +0000274 < cifs_max_pending);
275#ifdef CONFIG_CIFS_STATS2
Jeff Laytonc5797a92011-01-11 07:24:01 -0500276 atomic_dec(&server->num_waiters);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000277#endif
278 spin_lock(&GlobalMid_Lock);
279 } else {
Jeff Laytonc5797a92011-01-11 07:24:01 -0500280 if (server->tcpStatus == CifsExiting) {
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000281 spin_unlock(&GlobalMid_Lock);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000282 return -ENOENT;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000283 }
Volker Lendecke27a97a62008-12-08 20:59:39 +0000284
285 /* can not count locking commands against total
286 as they are allowed to block on server */
287
288 /* update # of requests on the wire to server */
289 if (long_op != CIFS_BLOCKING_OP)
Jeff Laytonc5797a92011-01-11 07:24:01 -0500290 atomic_inc(&server->inFlight);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000291 spin_unlock(&GlobalMid_Lock);
292 break;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000293 }
294 }
295 return 0;
296}
297
298static int allocate_mid(struct cifsSesInfo *ses, struct smb_hdr *in_buf,
299 struct mid_q_entry **ppmidQ)
300{
301 if (ses->server->tcpStatus == CifsExiting) {
302 return -ENOENT;
Volker Lendecke8fbbd362008-12-06 13:12:34 +0100303 }
304
305 if (ses->server->tcpStatus == CifsNeedReconnect) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000306 cFYI(1, "tcp session dead - return to caller to retry");
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000307 return -EAGAIN;
Volker Lendecke8fbbd362008-12-06 13:12:34 +0100308 }
309
310 if (ses->status != CifsGood) {
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000311 /* check if SMB session is bad because we are setting it up */
Steve French79a58d12007-07-06 22:44:50 +0000312 if ((in_buf->Command != SMB_COM_SESSION_SETUP_ANDX) &&
Steve Frenchad7a2922008-02-07 23:25:02 +0000313 (in_buf->Command != SMB_COM_NEGOTIATE))
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000314 return -EAGAIN;
Steve Frenchad7a2922008-02-07 23:25:02 +0000315 /* else ok - we are setting up session */
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000316 }
Jeff Layton24b9b062008-12-01 07:09:34 -0500317 *ppmidQ = AllocMidQEntry(in_buf, ses->server);
Steve French26f57362007-08-30 22:09:15 +0000318 if (*ppmidQ == NULL)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000319 return -ENOMEM;
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500320 spin_lock(&GlobalMid_Lock);
321 list_add_tail(&(*ppmidQ)->qhead, &ses->server->pending_mid_q);
322 spin_unlock(&GlobalMid_Lock);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000323 return 0;
324}
325
Jeff Layton0ade6402011-01-11 07:24:02 -0500326static int
327wait_for_response(struct TCP_Server_Info *server, struct mid_q_entry *midQ)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000328{
Jeff Layton0ade6402011-01-11 07:24:02 -0500329 int error;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000330
Jeff Layton0ade6402011-01-11 07:24:02 -0500331 error = wait_event_killable(server->response_q,
332 midQ->midState != MID_REQUEST_SUBMITTED);
333 if (error < 0)
334 return -ERESTARTSYS;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000335
Jeff Layton0ade6402011-01-11 07:24:02 -0500336 return 0;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000337}
338
Steve French133672e2007-11-13 22:41:37 +0000339
340/*
Jeff Laytona6827c12011-01-11 07:24:21 -0500341 * Send a SMB request and set the callback function in the mid to handle
342 * the result. Caller is responsible for dealing with timeouts.
343 */
344int
345cifs_call_async(struct TCP_Server_Info *server, struct smb_hdr *in_buf,
346 mid_callback_t *callback, void *cbdata)
347{
348 int rc;
349 struct mid_q_entry *mid;
350
351 rc = wait_for_free_request(server, CIFS_ASYNC_OP);
352 if (rc)
353 return rc;
354
Jeff Laytone3f0dad2011-02-04 07:21:26 -0500355 /* enable signing if server requires it */
356 if (server->secMode & (SECMODE_SIGN_REQUIRED | SECMODE_SIGN_ENABLED))
357 in_buf->Flags2 |= SMBFLG2_SECURITY_SIGNATURE;
358
Jeff Laytona6827c12011-01-11 07:24:21 -0500359 mutex_lock(&server->srv_mutex);
360 mid = AllocMidQEntry(in_buf, server);
361 if (mid == NULL) {
362 mutex_unlock(&server->srv_mutex);
363 return -ENOMEM;
364 }
365
366 /* put it on the pending_mid_q */
367 spin_lock(&GlobalMid_Lock);
368 list_add_tail(&mid->qhead, &server->pending_mid_q);
369 spin_unlock(&GlobalMid_Lock);
370
371 rc = cifs_sign_smb(in_buf, server, &mid->sequence_number);
372 if (rc) {
373 mutex_unlock(&server->srv_mutex);
374 goto out_err;
375 }
376
377 mid->callback = callback;
378 mid->callback_data = cbdata;
379 mid->midState = MID_REQUEST_SUBMITTED;
380#ifdef CONFIG_CIFS_STATS2
381 atomic_inc(&server->inSend);
382#endif
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000383 rc = smb_send(server, in_buf, be32_to_cpu(in_buf->smb_buf_length));
Jeff Laytona6827c12011-01-11 07:24:21 -0500384#ifdef CONFIG_CIFS_STATS2
385 atomic_dec(&server->inSend);
386 mid->when_sent = jiffies;
387#endif
388 mutex_unlock(&server->srv_mutex);
389 if (rc)
390 goto out_err;
391
392 return rc;
393out_err:
394 delete_mid(mid);
395 atomic_dec(&server->inFlight);
396 wake_up(&server->request_q);
397 return rc;
398}
399
400/*
Steve French133672e2007-11-13 22:41:37 +0000401 *
402 * Send an SMB Request. No response info (other than return code)
403 * needs to be parsed.
404 *
405 * flags indicate the type of request buffer and how long to wait
406 * and whether to log NT STATUS code (error) before mapping it to POSIX error
407 *
408 */
409int
410SendReceiveNoRsp(const unsigned int xid, struct cifsSesInfo *ses,
411 struct smb_hdr *in_buf, int flags)
412{
413 int rc;
414 struct kvec iov[1];
415 int resp_buf_type;
416
417 iov[0].iov_base = (char *)in_buf;
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000418 iov[0].iov_len = be32_to_cpu(in_buf->smb_buf_length) + 4;
Steve French133672e2007-11-13 22:41:37 +0000419 flags |= CIFS_NO_RESP;
420 rc = SendReceive2(xid, ses, iov, 1, &resp_buf_type, flags);
Joe Perchesb6b38f72010-04-21 03:50:45 +0000421 cFYI(DBG2, "SendRcvNoRsp flags %d rc %d", flags, rc);
Steve French90c81e02008-02-12 20:32:36 +0000422
Steve French133672e2007-11-13 22:41:37 +0000423 return rc;
424}
425
Jeff Layton053d5032011-01-11 07:24:02 -0500426static int
427sync_mid_result(struct mid_q_entry *mid, struct TCP_Server_Info *server)
428{
429 int rc = 0;
430
Jeff Layton74dd92a2011-01-11 07:24:02 -0500431 cFYI(1, "%s: cmd=%d mid=%d state=%d", __func__, mid->command,
432 mid->mid, mid->midState);
Jeff Layton053d5032011-01-11 07:24:02 -0500433
Jeff Layton74dd92a2011-01-11 07:24:02 -0500434 spin_lock(&GlobalMid_Lock);
Jeff Layton2b84a36c2011-01-11 07:24:21 -0500435 /* ensure that it's no longer on the pending_mid_q */
436 list_del_init(&mid->qhead);
437
Jeff Layton74dd92a2011-01-11 07:24:02 -0500438 switch (mid->midState) {
439 case MID_RESPONSE_RECEIVED:
Jeff Layton053d5032011-01-11 07:24:02 -0500440 spin_unlock(&GlobalMid_Lock);
441 return rc;
Jeff Layton74dd92a2011-01-11 07:24:02 -0500442 case MID_REQUEST_SUBMITTED:
443 /* socket is going down, reject all calls */
444 if (server->tcpStatus == CifsExiting) {
445 cERROR(1, "%s: canceling mid=%d cmd=0x%x state=%d",
446 __func__, mid->mid, mid->command, mid->midState);
Jeff Layton053d5032011-01-11 07:24:02 -0500447 rc = -EHOSTDOWN;
Jeff Layton74dd92a2011-01-11 07:24:02 -0500448 break;
Jeff Layton053d5032011-01-11 07:24:02 -0500449 }
Jeff Layton74dd92a2011-01-11 07:24:02 -0500450 case MID_RETRY_NEEDED:
451 rc = -EAGAIN;
452 break;
Jeff Layton71823ba2011-02-10 08:03:50 -0500453 case MID_RESPONSE_MALFORMED:
454 rc = -EIO;
455 break;
Jeff Layton74dd92a2011-01-11 07:24:02 -0500456 default:
457 cERROR(1, "%s: invalid mid state mid=%d state=%d", __func__,
458 mid->mid, mid->midState);
459 rc = -EIO;
Jeff Layton053d5032011-01-11 07:24:02 -0500460 }
461 spin_unlock(&GlobalMid_Lock);
462
Jeff Layton2b84a36c2011-01-11 07:24:21 -0500463 DeleteMidQEntry(mid);
Jeff Layton053d5032011-01-11 07:24:02 -0500464 return rc;
465}
466
Jeff Layton76dcc262011-01-11 07:24:24 -0500467/*
468 * An NT cancel request header looks just like the original request except:
469 *
470 * The Command is SMB_COM_NT_CANCEL
471 * The WordCount is zeroed out
472 * The ByteCount is zeroed out
473 *
474 * This function mangles an existing request buffer into a
475 * SMB_COM_NT_CANCEL request and then sends it.
476 */
477static int
478send_nt_cancel(struct TCP_Server_Info *server, struct smb_hdr *in_buf,
479 struct mid_q_entry *mid)
480{
481 int rc = 0;
482
483 /* -4 for RFC1001 length and +2 for BCC field */
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000484 in_buf->smb_buf_length = cpu_to_be32(sizeof(struct smb_hdr) - 4 + 2);
Jeff Layton76dcc262011-01-11 07:24:24 -0500485 in_buf->Command = SMB_COM_NT_CANCEL;
486 in_buf->WordCount = 0;
Jeff Layton820a8032011-05-04 08:05:26 -0400487 put_bcc(0, in_buf);
Jeff Layton76dcc262011-01-11 07:24:24 -0500488
489 mutex_lock(&server->srv_mutex);
490 rc = cifs_sign_smb(in_buf, server, &mid->sequence_number);
491 if (rc) {
492 mutex_unlock(&server->srv_mutex);
493 return rc;
494 }
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000495 rc = smb_send(server, in_buf, be32_to_cpu(in_buf->smb_buf_length));
Jeff Layton76dcc262011-01-11 07:24:24 -0500496 mutex_unlock(&server->srv_mutex);
497
498 cFYI(1, "issued NT_CANCEL for mid %u, rc = %d",
499 in_buf->Mid, rc);
500
501 return rc;
502}
503
Linus Torvalds1da177e2005-04-16 15:20:36 -0700504int
Steve French79a58d12007-07-06 22:44:50 +0000505SendReceive2(const unsigned int xid, struct cifsSesInfo *ses,
506 struct kvec *iov, int n_vec, int *pRespBufType /* ret */,
Steve French133672e2007-11-13 22:41:37 +0000507 const int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700508{
509 int rc = 0;
Steve French133672e2007-11-13 22:41:37 +0000510 int long_op;
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500511 unsigned int receive_len;
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500512 struct mid_q_entry *midQ;
Steve French3e844692005-10-03 13:37:24 -0700513 struct smb_hdr *in_buf = iov[0].iov_base;
Steve French50c2f752007-07-13 00:33:32 +0000514
Steve French133672e2007-11-13 22:41:37 +0000515 long_op = flags & CIFS_TIMEOUT_MASK;
516
Steve Frenchec637e32005-12-12 20:53:18 -0800517 *pRespBufType = CIFS_NO_BUFFER; /* no response buf yet */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700518
Steve French4b8f9302006-02-26 16:41:18 +0000519 if ((ses == NULL) || (ses->server == NULL)) {
520 cifs_small_buf_release(in_buf);
Joe Perchesb6b38f72010-04-21 03:50:45 +0000521 cERROR(1, "Null session");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700522 return -EIO;
523 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700524
Steve French79a58d12007-07-06 22:44:50 +0000525 if (ses->server->tcpStatus == CifsExiting) {
Steve French4b8f9302006-02-26 16:41:18 +0000526 cifs_small_buf_release(in_buf);
Steve French31ca3bc2005-04-28 22:41:11 -0700527 return -ENOENT;
Steve French4b8f9302006-02-26 16:41:18 +0000528 }
Steve French31ca3bc2005-04-28 22:41:11 -0700529
Steve French79a58d12007-07-06 22:44:50 +0000530 /* Ensure that we do not send more than 50 overlapping requests
Linus Torvalds1da177e2005-04-16 15:20:36 -0700531 to the same server. We may make this configurable later or
532 use ses->maxReq */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700533
Jeff Laytonc5797a92011-01-11 07:24:01 -0500534 rc = wait_for_free_request(ses->server, long_op);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000535 if (rc) {
536 cifs_small_buf_release(in_buf);
537 return rc;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700538 }
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000539
Steve French79a58d12007-07-06 22:44:50 +0000540 /* make sure that we sign in the same order that we send on this socket
Linus Torvalds1da177e2005-04-16 15:20:36 -0700541 and avoid races inside tcp sendmsg code that could cause corruption
542 of smb data */
543
Jeff Layton72ca5452008-12-01 07:09:36 -0500544 mutex_lock(&ses->server->srv_mutex);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700545
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000546 rc = allocate_mid(ses, in_buf, &midQ);
547 if (rc) {
Jeff Layton72ca5452008-12-01 07:09:36 -0500548 mutex_unlock(&ses->server->srv_mutex);
Steve French4b8f9302006-02-26 16:41:18 +0000549 cifs_small_buf_release(in_buf);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000550 /* Update # of requests on wire to server */
Steve French79a58d12007-07-06 22:44:50 +0000551 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000552 wake_up(&ses->server->request_q);
553 return rc;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700554 }
Steve French79a58d12007-07-06 22:44:50 +0000555 rc = cifs_sign_smb2(iov, n_vec, ses->server, &midQ->sequence_number);
Volker Lendecke829049c2008-12-06 16:00:53 +0100556 if (rc) {
557 mutex_unlock(&ses->server->srv_mutex);
558 cifs_small_buf_release(in_buf);
559 goto out;
560 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700561
562 midQ->midState = MID_REQUEST_SUBMITTED;
Steve French131afd0b2005-10-07 09:51:05 -0700563#ifdef CONFIG_CIFS_STATS2
564 atomic_inc(&ses->server->inSend);
565#endif
Jeff Layton0496e022008-12-30 12:39:16 -0500566 rc = smb_sendv(ses->server, iov, n_vec);
Steve French131afd0b2005-10-07 09:51:05 -0700567#ifdef CONFIG_CIFS_STATS2
568 atomic_dec(&ses->server->inSend);
Steve French1047abc2005-10-11 19:58:06 -0700569 midQ->when_sent = jiffies;
Steve French131afd0b2005-10-07 09:51:05 -0700570#endif
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000571
Jeff Layton72ca5452008-12-01 07:09:36 -0500572 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000573
Jeff Layton2db7c582011-01-28 07:08:28 -0500574 if (rc < 0) {
575 cifs_small_buf_release(in_buf);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000576 goto out;
Jeff Layton2db7c582011-01-28 07:08:28 -0500577 }
Steve French4b8f9302006-02-26 16:41:18 +0000578
Jeff Layton2db7c582011-01-28 07:08:28 -0500579 if (long_op == CIFS_ASYNC_OP) {
580 cifs_small_buf_release(in_buf);
Steve French133672e2007-11-13 22:41:37 +0000581 goto out;
Jeff Layton2db7c582011-01-28 07:08:28 -0500582 }
Jeff Layton0ade6402011-01-11 07:24:02 -0500583
584 rc = wait_for_response(ses->server, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500585 if (rc != 0) {
Jeff Layton2db7c582011-01-28 07:08:28 -0500586 send_nt_cancel(ses->server, in_buf, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500587 spin_lock(&GlobalMid_Lock);
588 if (midQ->midState == MID_REQUEST_SUBMITTED) {
589 midQ->callback = DeleteMidQEntry;
590 spin_unlock(&GlobalMid_Lock);
Jeff Layton2db7c582011-01-28 07:08:28 -0500591 cifs_small_buf_release(in_buf);
Jeff Layton1be912d2011-01-28 07:08:28 -0500592 atomic_dec(&ses->server->inFlight);
593 wake_up(&ses->server->request_q);
594 return rc;
595 }
596 spin_unlock(&GlobalMid_Lock);
597 }
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500598
Jeff Layton2db7c582011-01-28 07:08:28 -0500599 cifs_small_buf_release(in_buf);
600
Jeff Layton053d5032011-01-11 07:24:02 -0500601 rc = sync_mid_result(midQ, ses->server);
602 if (rc != 0) {
Steve French79a58d12007-07-06 22:44:50 +0000603 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000604 wake_up(&ses->server->request_q);
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500605 return rc;
606 }
Steve French50c2f752007-07-13 00:33:32 +0000607
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000608 receive_len = be32_to_cpu(midQ->resp_buf->smb_buf_length);
Volker Lendecke8e4f2e82008-12-06 16:22:15 +0100609
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500610 if (receive_len > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000611 cERROR(1, "Frame too large received. Length: %d Xid: %d",
612 receive_len, xid);
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500613 rc = -EIO;
Steve French2b2bdfb2008-12-11 17:26:54 +0000614 goto out;
615 }
Steve French84afc292005-12-02 13:32:45 -0800616
Steve French2b2bdfb2008-12-11 17:26:54 +0000617 /* rcvd frame is ok */
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500618
Steve French2b2bdfb2008-12-11 17:26:54 +0000619 if (midQ->resp_buf &&
620 (midQ->midState == MID_RESPONSE_RECEIVED)) {
621
622 iov[0].iov_base = (char *)midQ->resp_buf;
623 if (midQ->largeBuf)
624 *pRespBufType = CIFS_LARGE_BUFFER;
625 else
626 *pRespBufType = CIFS_SMALL_BUFFER;
627 iov[0].iov_len = receive_len + 4;
628
629 dump_smb(midQ->resp_buf, 80);
630 /* convert the length into a more usable form */
631 if ((receive_len > 24) &&
632 (ses->server->secMode & (SECMODE_SIGN_REQUIRED |
633 SECMODE_SIGN_ENABLED))) {
634 rc = cifs_verify_signature(midQ->resp_buf,
Shirish Pargaonkar21e73392010-10-21 06:42:55 -0500635 ses->server,
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500636 midQ->sequence_number+1);
Steve French2b2bdfb2008-12-11 17:26:54 +0000637 if (rc) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000638 cERROR(1, "Unexpected SMB signature");
Steve French2b2bdfb2008-12-11 17:26:54 +0000639 /* BB FIXME add code to kill session */
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500640 }
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500641 }
Steve French2b2bdfb2008-12-11 17:26:54 +0000642
643 /* BB special case reconnect tid and uid here? */
644 rc = map_smb_to_linux_error(midQ->resp_buf,
645 flags & CIFS_LOG_ERROR);
646
Steve French2b2bdfb2008-12-11 17:26:54 +0000647 if ((flags & CIFS_NO_RESP) == 0)
648 midQ->resp_buf = NULL; /* mark it so buf will
649 not be freed by
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500650 delete_mid */
Steve French2b2bdfb2008-12-11 17:26:54 +0000651 } else {
652 rc = -EIO;
Joe Perchesb6b38f72010-04-21 03:50:45 +0000653 cFYI(1, "Bad MID state?");
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500654 }
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000655
656out:
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500657 delete_mid(midQ);
Steve French79a58d12007-07-06 22:44:50 +0000658 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000659 wake_up(&ses->server->request_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700660
661 return rc;
662}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700663
664int
665SendReceive(const unsigned int xid, struct cifsSesInfo *ses,
666 struct smb_hdr *in_buf, struct smb_hdr *out_buf,
667 int *pbytes_returned, const int long_op)
668{
669 int rc = 0;
670 unsigned int receive_len;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700671 struct mid_q_entry *midQ;
672
673 if (ses == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000674 cERROR(1, "Null smb session");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700675 return -EIO;
676 }
Steve French79a58d12007-07-06 22:44:50 +0000677 if (ses->server == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000678 cERROR(1, "Null tcp session");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700679 return -EIO;
680 }
681
Steve French79a58d12007-07-06 22:44:50 +0000682 if (ses->server->tcpStatus == CifsExiting)
Steve French31ca3bc2005-04-28 22:41:11 -0700683 return -ENOENT;
684
Steve French79a58d12007-07-06 22:44:50 +0000685 /* Ensure that we do not send more than 50 overlapping requests
Linus Torvalds1da177e2005-04-16 15:20:36 -0700686 to the same server. We may make this configurable later or
687 use ses->maxReq */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700688
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000689 if (be32_to_cpu(in_buf->smb_buf_length) > CIFSMaxBufSize +
690 MAX_CIFS_HDR_SIZE - 4) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000691 cERROR(1, "Illegal length, greater than maximum frame, %d",
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000692 be32_to_cpu(in_buf->smb_buf_length));
Volker Lendecke6d9c6d52008-12-08 20:50:24 +0000693 return -EIO;
694 }
695
Jeff Laytonc5797a92011-01-11 07:24:01 -0500696 rc = wait_for_free_request(ses->server, long_op);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000697 if (rc)
698 return rc;
699
Steve French79a58d12007-07-06 22:44:50 +0000700 /* make sure that we sign in the same order that we send on this socket
Linus Torvalds1da177e2005-04-16 15:20:36 -0700701 and avoid races inside tcp sendmsg code that could cause corruption
702 of smb data */
703
Jeff Layton72ca5452008-12-01 07:09:36 -0500704 mutex_lock(&ses->server->srv_mutex);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700705
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000706 rc = allocate_mid(ses, in_buf, &midQ);
707 if (rc) {
Jeff Layton72ca5452008-12-01 07:09:36 -0500708 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000709 /* Update # of requests on wire to server */
Steve French79a58d12007-07-06 22:44:50 +0000710 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000711 wake_up(&ses->server->request_q);
712 return rc;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700713 }
714
Steve Frenchad009ac2005-04-28 22:41:05 -0700715 rc = cifs_sign_smb(in_buf, ses->server, &midQ->sequence_number);
Volker Lendecke829049c2008-12-06 16:00:53 +0100716 if (rc) {
717 mutex_unlock(&ses->server->srv_mutex);
718 goto out;
719 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700720
721 midQ->midState = MID_REQUEST_SUBMITTED;
Steve French131afd0b2005-10-07 09:51:05 -0700722#ifdef CONFIG_CIFS_STATS2
723 atomic_inc(&ses->server->inSend);
724#endif
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000725 rc = smb_send(ses->server, in_buf, be32_to_cpu(in_buf->smb_buf_length));
Steve French131afd0b2005-10-07 09:51:05 -0700726#ifdef CONFIG_CIFS_STATS2
727 atomic_dec(&ses->server->inSend);
Steve French1047abc2005-10-11 19:58:06 -0700728 midQ->when_sent = jiffies;
Steve French131afd0b2005-10-07 09:51:05 -0700729#endif
Jeff Layton72ca5452008-12-01 07:09:36 -0500730 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000731
Steve French79a58d12007-07-06 22:44:50 +0000732 if (rc < 0)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000733 goto out;
734
Jeff Layton0ade6402011-01-11 07:24:02 -0500735 if (long_op == CIFS_ASYNC_OP)
Steve French133672e2007-11-13 22:41:37 +0000736 goto out;
Jeff Layton0ade6402011-01-11 07:24:02 -0500737
738 rc = wait_for_response(ses->server, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500739 if (rc != 0) {
Jeff Layton2db7c582011-01-28 07:08:28 -0500740 send_nt_cancel(ses->server, in_buf, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500741 spin_lock(&GlobalMid_Lock);
742 if (midQ->midState == MID_REQUEST_SUBMITTED) {
743 /* no longer considered to be "in-flight" */
744 midQ->callback = DeleteMidQEntry;
745 spin_unlock(&GlobalMid_Lock);
746 atomic_dec(&ses->server->inFlight);
747 wake_up(&ses->server->request_q);
748 return rc;
749 }
750 spin_unlock(&GlobalMid_Lock);
751 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700752
Jeff Layton053d5032011-01-11 07:24:02 -0500753 rc = sync_mid_result(midQ, ses->server);
754 if (rc != 0) {
Steve French79a58d12007-07-06 22:44:50 +0000755 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000756 wake_up(&ses->server->request_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700757 return rc;
758 }
Steve French50c2f752007-07-13 00:33:32 +0000759
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000760 receive_len = be32_to_cpu(midQ->resp_buf->smb_buf_length);
Volker Lendecke8e4f2e82008-12-06 16:22:15 +0100761
Linus Torvalds1da177e2005-04-16 15:20:36 -0700762 if (receive_len > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000763 cERROR(1, "Frame too large received. Length: %d Xid: %d",
764 receive_len, xid);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700765 rc = -EIO;
Steve French2b2bdfb2008-12-11 17:26:54 +0000766 goto out;
767 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700768
Steve French2b2bdfb2008-12-11 17:26:54 +0000769 /* rcvd frame is ok */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700770
Steve French2b2bdfb2008-12-11 17:26:54 +0000771 if (midQ->resp_buf && out_buf
772 && (midQ->midState == MID_RESPONSE_RECEIVED)) {
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000773 out_buf->smb_buf_length = cpu_to_be32(receive_len);
Steve French2b2bdfb2008-12-11 17:26:54 +0000774 memcpy((char *)out_buf + 4,
775 (char *)midQ->resp_buf + 4,
776 receive_len);
777
778 dump_smb(out_buf, 92);
779 /* convert the length into a more usable form */
780 if ((receive_len > 24) &&
781 (ses->server->secMode & (SECMODE_SIGN_REQUIRED |
782 SECMODE_SIGN_ENABLED))) {
783 rc = cifs_verify_signature(out_buf,
Shirish Pargaonkar21e73392010-10-21 06:42:55 -0500784 ses->server,
Steve Frenchad009ac2005-04-28 22:41:05 -0700785 midQ->sequence_number+1);
Steve French2b2bdfb2008-12-11 17:26:54 +0000786 if (rc) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000787 cERROR(1, "Unexpected SMB signature");
Steve French2b2bdfb2008-12-11 17:26:54 +0000788 /* BB FIXME add code to kill session */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700789 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700790 }
Steve French2b2bdfb2008-12-11 17:26:54 +0000791
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000792 *pbytes_returned = be32_to_cpu(out_buf->smb_buf_length);
Steve French2b2bdfb2008-12-11 17:26:54 +0000793
794 /* BB special case reconnect tid and uid here? */
795 rc = map_smb_to_linux_error(out_buf, 0 /* no log */ );
Steve French2b2bdfb2008-12-11 17:26:54 +0000796 } else {
797 rc = -EIO;
Joe Perchesb6b38f72010-04-21 03:50:45 +0000798 cERROR(1, "Bad MID state?");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700799 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700800
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000801out:
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500802 delete_mid(midQ);
Steve French79a58d12007-07-06 22:44:50 +0000803 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000804 wake_up(&ses->server->request_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700805
806 return rc;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000807}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700808
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000809/* We send a LOCKINGX_CANCEL_LOCK to cause the Windows
810 blocking lock to return. */
811
812static int
813send_lock_cancel(const unsigned int xid, struct cifsTconInfo *tcon,
814 struct smb_hdr *in_buf,
815 struct smb_hdr *out_buf)
816{
817 int bytes_returned;
818 struct cifsSesInfo *ses = tcon->ses;
819 LOCK_REQ *pSMB = (LOCK_REQ *)in_buf;
820
821 /* We just modify the current in_buf to change
822 the type of lock from LOCKING_ANDX_SHARED_LOCK
823 or LOCKING_ANDX_EXCLUSIVE_LOCK to
824 LOCKING_ANDX_CANCEL_LOCK. */
825
826 pSMB->LockType = LOCKING_ANDX_CANCEL_LOCK|LOCKING_ANDX_LARGE_FILES;
827 pSMB->Timeout = 0;
828 pSMB->hdr.Mid = GetNextMid(ses->server);
829
830 return SendReceive(xid, ses, in_buf, out_buf,
Jeff Layton77499812011-01-11 07:24:23 -0500831 &bytes_returned, 0);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000832}
833
834int
835SendReceiveBlockingLock(const unsigned int xid, struct cifsTconInfo *tcon,
836 struct smb_hdr *in_buf, struct smb_hdr *out_buf,
837 int *pbytes_returned)
838{
839 int rc = 0;
840 int rstart = 0;
841 unsigned int receive_len;
842 struct mid_q_entry *midQ;
843 struct cifsSesInfo *ses;
844
845 if (tcon == NULL || tcon->ses == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000846 cERROR(1, "Null smb session");
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000847 return -EIO;
848 }
849 ses = tcon->ses;
850
Steve French79a58d12007-07-06 22:44:50 +0000851 if (ses->server == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000852 cERROR(1, "Null tcp session");
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000853 return -EIO;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700854 }
855
Steve French79a58d12007-07-06 22:44:50 +0000856 if (ses->server->tcpStatus == CifsExiting)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000857 return -ENOENT;
858
Steve French79a58d12007-07-06 22:44:50 +0000859 /* Ensure that we do not send more than 50 overlapping requests
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000860 to the same server. We may make this configurable later or
861 use ses->maxReq */
862
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000863 if (be32_to_cpu(in_buf->smb_buf_length) > CIFSMaxBufSize +
864 MAX_CIFS_HDR_SIZE - 4) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000865 cERROR(1, "Illegal length, greater than maximum frame, %d",
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000866 be32_to_cpu(in_buf->smb_buf_length));
Volker Lendecke6d9c6d52008-12-08 20:50:24 +0000867 return -EIO;
868 }
869
Jeff Laytonc5797a92011-01-11 07:24:01 -0500870 rc = wait_for_free_request(ses->server, CIFS_BLOCKING_OP);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000871 if (rc)
872 return rc;
873
Steve French79a58d12007-07-06 22:44:50 +0000874 /* make sure that we sign in the same order that we send on this socket
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000875 and avoid races inside tcp sendmsg code that could cause corruption
876 of smb data */
877
Jeff Layton72ca5452008-12-01 07:09:36 -0500878 mutex_lock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000879
880 rc = allocate_mid(ses, in_buf, &midQ);
881 if (rc) {
Jeff Layton72ca5452008-12-01 07:09:36 -0500882 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000883 return rc;
884 }
885
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000886 rc = cifs_sign_smb(in_buf, ses->server, &midQ->sequence_number);
Volker Lendecke829049c2008-12-06 16:00:53 +0100887 if (rc) {
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500888 delete_mid(midQ);
Volker Lendecke829049c2008-12-06 16:00:53 +0100889 mutex_unlock(&ses->server->srv_mutex);
890 return rc;
891 }
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000892
893 midQ->midState = MID_REQUEST_SUBMITTED;
894#ifdef CONFIG_CIFS_STATS2
895 atomic_inc(&ses->server->inSend);
896#endif
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000897 rc = smb_send(ses->server, in_buf, be32_to_cpu(in_buf->smb_buf_length));
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000898#ifdef CONFIG_CIFS_STATS2
899 atomic_dec(&ses->server->inSend);
900 midQ->when_sent = jiffies;
901#endif
Jeff Layton72ca5452008-12-01 07:09:36 -0500902 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000903
Steve French79a58d12007-07-06 22:44:50 +0000904 if (rc < 0) {
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500905 delete_mid(midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000906 return rc;
907 }
908
909 /* Wait for a reply - allow signals to interrupt. */
910 rc = wait_event_interruptible(ses->server->response_q,
Steve French79a58d12007-07-06 22:44:50 +0000911 (!(midQ->midState == MID_REQUEST_SUBMITTED)) ||
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000912 ((ses->server->tcpStatus != CifsGood) &&
913 (ses->server->tcpStatus != CifsNew)));
914
915 /* Were we interrupted by a signal ? */
916 if ((rc == -ERESTARTSYS) &&
917 (midQ->midState == MID_REQUEST_SUBMITTED) &&
918 ((ses->server->tcpStatus == CifsGood) ||
919 (ses->server->tcpStatus == CifsNew))) {
920
921 if (in_buf->Command == SMB_COM_TRANSACTION2) {
922 /* POSIX lock. We send a NT_CANCEL SMB to cause the
923 blocking lock to return. */
Jeff Layton76dcc262011-01-11 07:24:24 -0500924 rc = send_nt_cancel(ses->server, in_buf, midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000925 if (rc) {
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500926 delete_mid(midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000927 return rc;
928 }
929 } else {
930 /* Windows lock. We send a LOCKINGX_CANCEL_LOCK
931 to cause the blocking lock to return. */
932
933 rc = send_lock_cancel(xid, tcon, in_buf, out_buf);
934
935 /* If we get -ENOLCK back the lock may have
936 already been removed. Don't exit in this case. */
937 if (rc && rc != -ENOLCK) {
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500938 delete_mid(midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000939 return rc;
940 }
941 }
942
Jeff Layton1be912d2011-01-28 07:08:28 -0500943 rc = wait_for_response(ses->server, midQ);
944 if (rc) {
Jeff Layton2db7c582011-01-28 07:08:28 -0500945 send_nt_cancel(ses->server, in_buf, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500946 spin_lock(&GlobalMid_Lock);
947 if (midQ->midState == MID_REQUEST_SUBMITTED) {
948 /* no longer considered to be "in-flight" */
949 midQ->callback = DeleteMidQEntry;
950 spin_unlock(&GlobalMid_Lock);
951 return rc;
952 }
953 spin_unlock(&GlobalMid_Lock);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000954 }
Jeff Layton1be912d2011-01-28 07:08:28 -0500955
956 /* We got the response - restart system call. */
957 rstart = 1;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000958 }
959
Jeff Layton053d5032011-01-11 07:24:02 -0500960 rc = sync_mid_result(midQ, ses->server);
961 if (rc != 0)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000962 return rc;
Steve French50c2f752007-07-13 00:33:32 +0000963
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000964 receive_len = be32_to_cpu(midQ->resp_buf->smb_buf_length);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000965 if (receive_len > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000966 cERROR(1, "Frame too large received. Length: %d Xid: %d",
967 receive_len, xid);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000968 rc = -EIO;
Volker Lendecke17c8bfe2008-12-06 16:38:19 +0100969 goto out;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000970 }
Volker Lendecke17c8bfe2008-12-06 16:38:19 +0100971
972 /* rcvd frame is ok */
973
Volker Lendeckeac6a3ef2008-12-06 16:40:40 +0100974 if ((out_buf == NULL) || (midQ->midState != MID_RESPONSE_RECEIVED)) {
Volker Lendecke17c8bfe2008-12-06 16:38:19 +0100975 rc = -EIO;
Joe Perchesb6b38f72010-04-21 03:50:45 +0000976 cERROR(1, "Bad MID state?");
Volker Lendecke698e96a2008-12-06 16:39:31 +0100977 goto out;
Volker Lendecke17c8bfe2008-12-06 16:38:19 +0100978 }
979
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000980 out_buf->smb_buf_length = cpu_to_be32(receive_len);
Volker Lendecke698e96a2008-12-06 16:39:31 +0100981 memcpy((char *)out_buf + 4,
982 (char *)midQ->resp_buf + 4,
983 receive_len);
984
985 dump_smb(out_buf, 92);
986 /* convert the length into a more usable form */
987 if ((receive_len > 24) &&
988 (ses->server->secMode & (SECMODE_SIGN_REQUIRED |
989 SECMODE_SIGN_ENABLED))) {
990 rc = cifs_verify_signature(out_buf,
Shirish Pargaonkar21e73392010-10-21 06:42:55 -0500991 ses->server,
Volker Lendecke698e96a2008-12-06 16:39:31 +0100992 midQ->sequence_number+1);
993 if (rc) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000994 cERROR(1, "Unexpected SMB signature");
Volker Lendecke698e96a2008-12-06 16:39:31 +0100995 /* BB FIXME add code to kill session */
996 }
997 }
998
Steve Frenchbe8e3b02011-04-29 05:40:20 +0000999 *pbytes_returned = be32_to_cpu(out_buf->smb_buf_length);
Volker Lendecke698e96a2008-12-06 16:39:31 +01001000
1001 /* BB special case reconnect tid and uid here? */
1002 rc = map_smb_to_linux_error(out_buf, 0 /* no log */ );
1003
Volker Lendecke17c8bfe2008-12-06 16:38:19 +01001004out:
Jeff Laytonddc8cf82011-01-11 07:24:02 -05001005 delete_mid(midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +00001006 if (rstart && rc == -EACCES)
1007 return -ERESTARTSYS;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001008 return rc;
1009}