Andreas Gruenbacher | 33d3dff | 2009-12-17 21:24:29 -0500 | [diff] [blame] | 1 | #include <linux/fanotify.h> |
Eric Paris | ff0b16a | 2009-12-17 21:24:25 -0500 | [diff] [blame] | 2 | #include <linux/fdtable.h> |
| 3 | #include <linux/fsnotify_backend.h> |
| 4 | #include <linux/init.h> |
Eric Paris | 9e66e42 | 2009-12-17 21:24:34 -0500 | [diff] [blame] | 5 | #include <linux/jiffies.h> |
Eric Paris | ff0b16a | 2009-12-17 21:24:25 -0500 | [diff] [blame] | 6 | #include <linux/kernel.h> /* UINT_MAX */ |
Eric Paris | 1c52906 | 2009-12-17 21:24:28 -0500 | [diff] [blame] | 7 | #include <linux/mount.h> |
Eric Paris | 9e66e42 | 2009-12-17 21:24:34 -0500 | [diff] [blame] | 8 | #include <linux/sched.h> |
Eric Paris | ff0b16a | 2009-12-17 21:24:25 -0500 | [diff] [blame] | 9 | #include <linux/types.h> |
Eric Paris | 9e66e42 | 2009-12-17 21:24:34 -0500 | [diff] [blame] | 10 | #include <linux/wait.h> |
Eric Paris | ff0b16a | 2009-12-17 21:24:25 -0500 | [diff] [blame] | 11 | |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 12 | #include "fanotify.h" |
Eric Paris | 767cd46c | 2009-12-17 21:24:25 -0500 | [diff] [blame] | 13 | |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 14 | static bool should_merge(struct fsnotify_event *old_fsn, |
| 15 | struct fsnotify_event *new_fsn) |
| 16 | { |
| 17 | struct fanotify_event_info *old, *new; |
| 18 | |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 19 | pr_debug("%s: old=%p new=%p\n", __func__, old_fsn, new_fsn); |
| 20 | old = FANOTIFY_E(old_fsn); |
| 21 | new = FANOTIFY_E(new_fsn); |
| 22 | |
| 23 | if (old_fsn->inode == new_fsn->inode && old->tgid == new->tgid && |
| 24 | old->path.mnt == new->path.mnt && |
| 25 | old->path.dentry == new->path.dentry) |
| 26 | return true; |
Eric Paris | 767cd46c | 2009-12-17 21:24:25 -0500 | [diff] [blame] | 27 | return false; |
| 28 | } |
| 29 | |
Eric Paris | f70ab54 | 2010-07-28 10:18:37 -0400 | [diff] [blame] | 30 | /* and the list better be locked by something too! */ |
Jan Kara | 83c0e1b | 2014-01-28 18:53:22 +0100 | [diff] [blame] | 31 | static int fanotify_merge(struct list_head *list, struct fsnotify_event *event) |
Eric Paris | 767cd46c | 2009-12-17 21:24:25 -0500 | [diff] [blame] | 32 | { |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 33 | struct fsnotify_event *test_event; |
| 34 | bool do_merge = false; |
Eric Paris | 767cd46c | 2009-12-17 21:24:25 -0500 | [diff] [blame] | 35 | |
| 36 | pr_debug("%s: list=%p event=%p\n", __func__, list, event); |
| 37 | |
Jan Kara | 13116df | 2014-01-28 18:29:24 +0100 | [diff] [blame] | 38 | #ifdef CONFIG_FANOTIFY_ACCESS_PERMISSIONS |
| 39 | /* |
| 40 | * Don't merge a permission event with any other event so that we know |
| 41 | * the event structure we have created in fanotify_handle_event() is the |
| 42 | * one we should check for permission response. |
| 43 | */ |
| 44 | if (event->mask & FAN_ALL_PERM_EVENTS) |
Jan Kara | 83c0e1b | 2014-01-28 18:53:22 +0100 | [diff] [blame] | 45 | return 0; |
Jan Kara | 13116df | 2014-01-28 18:29:24 +0100 | [diff] [blame] | 46 | #endif |
| 47 | |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 48 | list_for_each_entry_reverse(test_event, list, list) { |
| 49 | if (should_merge(test_event, event)) { |
| 50 | do_merge = true; |
Eric Paris | a12a7dd | 2009-12-17 21:24:25 -0500 | [diff] [blame] | 51 | break; |
| 52 | } |
| 53 | } |
Eric Paris | f70ab54 | 2010-07-28 10:18:37 -0400 | [diff] [blame] | 54 | |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 55 | if (!do_merge) |
Jan Kara | 83c0e1b | 2014-01-28 18:53:22 +0100 | [diff] [blame] | 56 | return 0; |
Eric Paris | f70ab54 | 2010-07-28 10:18:37 -0400 | [diff] [blame] | 57 | |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 58 | test_event->mask |= event->mask; |
Jan Kara | 83c0e1b | 2014-01-28 18:53:22 +0100 | [diff] [blame] | 59 | return 1; |
Eric Paris | 767cd46c | 2009-12-17 21:24:25 -0500 | [diff] [blame] | 60 | } |
| 61 | |
Eric Paris | 9e66e42 | 2009-12-17 21:24:34 -0500 | [diff] [blame] | 62 | #ifdef CONFIG_FANOTIFY_ACCESS_PERMISSIONS |
Jan Kara | f083441 | 2014-04-03 14:46:33 -0700 | [diff] [blame] | 63 | static int fanotify_get_response(struct fsnotify_group *group, |
| 64 | struct fanotify_perm_event_info *event) |
Eric Paris | 9e66e42 | 2009-12-17 21:24:34 -0500 | [diff] [blame] | 65 | { |
| 66 | int ret; |
| 67 | |
| 68 | pr_debug("%s: group=%p event=%p\n", __func__, group, event); |
| 69 | |
Lino Sanfilippo | 09e5f14 | 2010-11-19 10:58:07 +0100 | [diff] [blame] | 70 | wait_event(group->fanotify_data.access_waitq, event->response || |
| 71 | atomic_read(&group->fanotify_data.bypass_perm)); |
| 72 | |
| 73 | if (!event->response) /* bypass_perm set */ |
| 74 | return 0; |
Eric Paris | 9e66e42 | 2009-12-17 21:24:34 -0500 | [diff] [blame] | 75 | |
| 76 | /* userspace responded, convert to something usable */ |
Eric Paris | 9e66e42 | 2009-12-17 21:24:34 -0500 | [diff] [blame] | 77 | switch (event->response) { |
| 78 | case FAN_ALLOW: |
| 79 | ret = 0; |
| 80 | break; |
| 81 | case FAN_DENY: |
| 82 | default: |
| 83 | ret = -EPERM; |
| 84 | } |
| 85 | event->response = 0; |
Eric Paris | 9e66e42 | 2009-12-17 21:24:34 -0500 | [diff] [blame] | 86 | |
Eric Paris | b2d8790 | 2009-12-17 21:24:34 -0500 | [diff] [blame] | 87 | pr_debug("%s: group=%p event=%p about to return ret=%d\n", __func__, |
| 88 | group, event, ret); |
| 89 | |
Eric Paris | 9e66e42 | 2009-12-17 21:24:34 -0500 | [diff] [blame] | 90 | return ret; |
| 91 | } |
| 92 | #endif |
| 93 | |
Jan Kara | 83c4c4b | 2014-01-21 15:48:15 -0800 | [diff] [blame] | 94 | static bool fanotify_should_send_event(struct fsnotify_mark *inode_mark, |
Eric Paris | 1968f5e | 2010-07-28 10:18:39 -0400 | [diff] [blame] | 95 | struct fsnotify_mark *vfsmnt_mark, |
Jan Kara | 83c4c4b | 2014-01-21 15:48:15 -0800 | [diff] [blame] | 96 | u32 event_mask, |
| 97 | void *data, int data_type) |
Eric Paris | 1c52906 | 2009-12-17 21:24:28 -0500 | [diff] [blame] | 98 | { |
Eric Paris | 1968f5e | 2010-07-28 10:18:39 -0400 | [diff] [blame] | 99 | __u32 marks_mask, marks_ignored_mask; |
Eric Paris | e1c048b | 2010-10-28 17:21:58 -0400 | [diff] [blame] | 100 | struct path *path = data; |
Eric Paris | 1968f5e | 2010-07-28 10:18:39 -0400 | [diff] [blame] | 101 | |
Jan Kara | 83c4c4b | 2014-01-21 15:48:15 -0800 | [diff] [blame] | 102 | pr_debug("%s: inode_mark=%p vfsmnt_mark=%p mask=%x data=%p" |
| 103 | " data_type=%d\n", __func__, inode_mark, vfsmnt_mark, |
| 104 | event_mask, data, data_type); |
Eric Paris | 1968f5e | 2010-07-28 10:18:39 -0400 | [diff] [blame] | 105 | |
Eric Paris | 1c52906 | 2009-12-17 21:24:28 -0500 | [diff] [blame] | 106 | /* if we don't have enough info to send an event to userspace say no */ |
Linus Torvalds | 2069601 | 2010-08-12 14:23:04 -0700 | [diff] [blame] | 107 | if (data_type != FSNOTIFY_EVENT_PATH) |
Eric Paris | 1c52906 | 2009-12-17 21:24:28 -0500 | [diff] [blame] | 108 | return false; |
| 109 | |
Eric Paris | e1c048b | 2010-10-28 17:21:58 -0400 | [diff] [blame] | 110 | /* sorry, fanotify only gives a damn about files and dirs */ |
| 111 | if (!S_ISREG(path->dentry->d_inode->i_mode) && |
| 112 | !S_ISDIR(path->dentry->d_inode->i_mode)) |
| 113 | return false; |
| 114 | |
Eric Paris | 1968f5e | 2010-07-28 10:18:39 -0400 | [diff] [blame] | 115 | if (inode_mark && vfsmnt_mark) { |
| 116 | marks_mask = (vfsmnt_mark->mask | inode_mark->mask); |
| 117 | marks_ignored_mask = (vfsmnt_mark->ignored_mask | inode_mark->ignored_mask); |
| 118 | } else if (inode_mark) { |
| 119 | /* |
| 120 | * if the event is for a child and this inode doesn't care about |
| 121 | * events on the child, don't send it! |
| 122 | */ |
| 123 | if ((event_mask & FS_EVENT_ON_CHILD) && |
| 124 | !(inode_mark->mask & FS_EVENT_ON_CHILD)) |
| 125 | return false; |
| 126 | marks_mask = inode_mark->mask; |
| 127 | marks_ignored_mask = inode_mark->ignored_mask; |
| 128 | } else if (vfsmnt_mark) { |
| 129 | marks_mask = vfsmnt_mark->mask; |
| 130 | marks_ignored_mask = vfsmnt_mark->ignored_mask; |
| 131 | } else { |
| 132 | BUG(); |
| 133 | } |
| 134 | |
Eric Paris | 8fcd652 | 2010-10-28 17:21:59 -0400 | [diff] [blame] | 135 | if (S_ISDIR(path->dentry->d_inode->i_mode) && |
| 136 | (marks_ignored_mask & FS_ISDIR)) |
| 137 | return false; |
| 138 | |
Eric Paris | 1968f5e | 2010-07-28 10:18:39 -0400 | [diff] [blame] | 139 | if (event_mask & marks_mask & ~marks_ignored_mask) |
| 140 | return true; |
| 141 | |
| 142 | return false; |
Eric Paris | 1c52906 | 2009-12-17 21:24:28 -0500 | [diff] [blame] | 143 | } |
| 144 | |
Jan Kara | f083441 | 2014-04-03 14:46:33 -0700 | [diff] [blame] | 145 | struct fanotify_event_info *fanotify_alloc_event(struct inode *inode, u32 mask, |
| 146 | struct path *path) |
| 147 | { |
| 148 | struct fanotify_event_info *event; |
| 149 | |
| 150 | #ifdef CONFIG_FANOTIFY_ACCESS_PERMISSIONS |
| 151 | if (mask & FAN_ALL_PERM_EVENTS) { |
| 152 | struct fanotify_perm_event_info *pevent; |
| 153 | |
| 154 | pevent = kmem_cache_alloc(fanotify_perm_event_cachep, |
| 155 | GFP_KERNEL); |
| 156 | if (!pevent) |
| 157 | return NULL; |
| 158 | event = &pevent->fae; |
| 159 | pevent->response = 0; |
| 160 | goto init; |
| 161 | } |
| 162 | #endif |
| 163 | event = kmem_cache_alloc(fanotify_event_cachep, GFP_KERNEL); |
| 164 | if (!event) |
| 165 | return NULL; |
| 166 | init: __maybe_unused |
| 167 | fsnotify_init_event(&event->fse, inode, mask); |
| 168 | event->tgid = get_pid(task_tgid(current)); |
| 169 | if (path) { |
| 170 | event->path = *path; |
| 171 | path_get(&event->path); |
| 172 | } else { |
| 173 | event->path.mnt = NULL; |
| 174 | event->path.dentry = NULL; |
| 175 | } |
| 176 | return event; |
| 177 | } |
| 178 | |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 179 | static int fanotify_handle_event(struct fsnotify_group *group, |
| 180 | struct inode *inode, |
| 181 | struct fsnotify_mark *inode_mark, |
| 182 | struct fsnotify_mark *fanotify_mark, |
| 183 | u32 mask, void *data, int data_type, |
Jan Kara | 45a22f4 | 2014-02-17 13:09:50 +0100 | [diff] [blame] | 184 | const unsigned char *file_name, u32 cookie) |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 185 | { |
| 186 | int ret = 0; |
| 187 | struct fanotify_event_info *event; |
| 188 | struct fsnotify_event *fsn_event; |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 189 | |
| 190 | BUILD_BUG_ON(FAN_ACCESS != FS_ACCESS); |
| 191 | BUILD_BUG_ON(FAN_MODIFY != FS_MODIFY); |
| 192 | BUILD_BUG_ON(FAN_CLOSE_NOWRITE != FS_CLOSE_NOWRITE); |
| 193 | BUILD_BUG_ON(FAN_CLOSE_WRITE != FS_CLOSE_WRITE); |
| 194 | BUILD_BUG_ON(FAN_OPEN != FS_OPEN); |
| 195 | BUILD_BUG_ON(FAN_EVENT_ON_CHILD != FS_EVENT_ON_CHILD); |
| 196 | BUILD_BUG_ON(FAN_Q_OVERFLOW != FS_Q_OVERFLOW); |
| 197 | BUILD_BUG_ON(FAN_OPEN_PERM != FS_OPEN_PERM); |
| 198 | BUILD_BUG_ON(FAN_ACCESS_PERM != FS_ACCESS_PERM); |
| 199 | BUILD_BUG_ON(FAN_ONDIR != FS_ISDIR); |
| 200 | |
Jan Kara | 83c4c4b | 2014-01-21 15:48:15 -0800 | [diff] [blame] | 201 | if (!fanotify_should_send_event(inode_mark, fanotify_mark, mask, data, |
| 202 | data_type)) |
| 203 | return 0; |
| 204 | |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 205 | pr_debug("%s: group=%p inode=%p mask=%x\n", __func__, group, inode, |
| 206 | mask); |
| 207 | |
Jan Kara | f083441 | 2014-04-03 14:46:33 -0700 | [diff] [blame] | 208 | event = fanotify_alloc_event(inode, mask, data); |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 209 | if (unlikely(!event)) |
| 210 | return -ENOMEM; |
| 211 | |
| 212 | fsn_event = &event->fse; |
Jan Kara | 8ba8fa91 | 2014-08-06 16:03:26 -0700 | [diff] [blame^] | 213 | ret = fsnotify_add_event(group, fsn_event, fanotify_merge); |
Jan Kara | 83c0e1b | 2014-01-28 18:53:22 +0100 | [diff] [blame] | 214 | if (ret) { |
Jan Kara | 482ef06 | 2014-02-21 19:07:54 +0100 | [diff] [blame] | 215 | /* Permission events shouldn't be merged */ |
| 216 | BUG_ON(ret == 1 && mask & FAN_ALL_PERM_EVENTS); |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 217 | /* Our event wasn't used in the end. Free it. */ |
| 218 | fsnotify_destroy_event(group, fsn_event); |
Jan Kara | 482ef06 | 2014-02-21 19:07:54 +0100 | [diff] [blame] | 219 | |
| 220 | return 0; |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 221 | } |
| 222 | |
| 223 | #ifdef CONFIG_FANOTIFY_ACCESS_PERMISSIONS |
Jan Kara | 8581679 | 2014-01-28 21:38:06 +0100 | [diff] [blame] | 224 | if (mask & FAN_ALL_PERM_EVENTS) { |
Jan Kara | f083441 | 2014-04-03 14:46:33 -0700 | [diff] [blame] | 225 | ret = fanotify_get_response(group, FANOTIFY_PE(fsn_event)); |
Jan Kara | 8581679 | 2014-01-28 21:38:06 +0100 | [diff] [blame] | 226 | fsnotify_destroy_event(group, fsn_event); |
| 227 | } |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 228 | #endif |
| 229 | return ret; |
| 230 | } |
| 231 | |
Eric Paris | 4afeff8 | 2010-10-28 17:21:58 -0400 | [diff] [blame] | 232 | static void fanotify_free_group_priv(struct fsnotify_group *group) |
| 233 | { |
| 234 | struct user_struct *user; |
| 235 | |
| 236 | user = group->fanotify_data.user; |
| 237 | atomic_dec(&user->fanotify_listeners); |
| 238 | free_uid(user); |
| 239 | } |
| 240 | |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 241 | static void fanotify_free_event(struct fsnotify_event *fsn_event) |
| 242 | { |
| 243 | struct fanotify_event_info *event; |
| 244 | |
| 245 | event = FANOTIFY_E(fsn_event); |
| 246 | path_put(&event->path); |
| 247 | put_pid(event->tgid); |
Jan Kara | f083441 | 2014-04-03 14:46:33 -0700 | [diff] [blame] | 248 | #ifdef CONFIG_FANOTIFY_ACCESS_PERMISSIONS |
| 249 | if (fsn_event->mask & FAN_ALL_PERM_EVENTS) { |
| 250 | kmem_cache_free(fanotify_perm_event_cachep, |
| 251 | FANOTIFY_PE(fsn_event)); |
| 252 | return; |
| 253 | } |
| 254 | #endif |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 255 | kmem_cache_free(fanotify_event_cachep, event); |
| 256 | } |
| 257 | |
Eric Paris | ff0b16a | 2009-12-17 21:24:25 -0500 | [diff] [blame] | 258 | const struct fsnotify_ops fanotify_fsnotify_ops = { |
| 259 | .handle_event = fanotify_handle_event, |
Eric Paris | 4afeff8 | 2010-10-28 17:21:58 -0400 | [diff] [blame] | 260 | .free_group_priv = fanotify_free_group_priv, |
Jan Kara | 7053aee | 2014-01-21 15:48:14 -0800 | [diff] [blame] | 261 | .free_event = fanotify_free_event, |
Eric Paris | ff0b16a | 2009-12-17 21:24:25 -0500 | [diff] [blame] | 262 | }; |