blob: c2ed0f57a66cb97b76cefe3bd40510bcbf2d5d7b [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * fs/cifs/connect.c
3 *
Steve French366781c2008-01-25 10:12:41 +00004 * Copyright (C) International Business Machines Corp., 2002,2008
Linus Torvalds1da177e2005-04-16 15:20:36 -07005 * Author(s): Steve French (sfrench@us.ibm.com)
6 *
7 * This library is free software; you can redistribute it and/or modify
8 * it under the terms of the GNU Lesser General Public License as published
9 * by the Free Software Foundation; either version 2.1 of the License, or
10 * (at your option) any later version.
11 *
12 * This library is distributed in the hope that it will be useful,
13 * but WITHOUT ANY WARRANTY; without even the implied warranty of
14 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See
15 * the GNU Lesser General Public License for more details.
16 *
17 * You should have received a copy of the GNU Lesser General Public License
18 * along with this library; if not, write to the Free Software
Steve Frenchfb8c4b12007-07-10 01:16:18 +000019 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
Linus Torvalds1da177e2005-04-16 15:20:36 -070020 */
21#include <linux/fs.h>
22#include <linux/net.h>
23#include <linux/string.h>
24#include <linux/list.h>
25#include <linux/wait.h>
26#include <linux/ipv6.h>
27#include <linux/pagemap.h>
28#include <linux/ctype.h>
29#include <linux/utsname.h>
30#include <linux/mempool.h>
Steve Frenchb8643e12005-04-28 22:41:07 -070031#include <linux/delay.h>
Steve Frenchf1914012005-08-18 09:37:34 -070032#include <linux/completion.h>
Igor Mammedovaaf737a2007-04-03 19:16:43 +000033#include <linux/kthread.h>
Steve French0ae0efa2005-10-10 10:57:19 -070034#include <linux/pagevec.h>
Nigel Cunningham7dfb7102006-12-06 20:34:23 -080035#include <linux/freezer.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070036#include <asm/uaccess.h>
37#include <asm/processor.h>
38#include "cifspdu.h"
39#include "cifsglob.h"
40#include "cifsproto.h"
41#include "cifs_unicode.h"
42#include "cifs_debug.h"
43#include "cifs_fs_sb.h"
44#include "ntlmssp.h"
45#include "nterr.h"
46#include "rfc1002pdu.h"
Steve Frencha2653eb2005-11-10 15:33:38 -080047#include "cn_cifs.h"
Linus Torvalds1da177e2005-04-16 15:20:36 -070048
49#define CIFS_PORT 445
50#define RFC1001_PORT 139
51
Linus Torvalds1da177e2005-04-16 15:20:36 -070052extern void SMBNTencrypt(unsigned char *passwd, unsigned char *c8,
53 unsigned char *p24);
54
55extern mempool_t *cifs_req_poolp;
56
57struct smb_vol {
58 char *username;
59 char *password;
60 char *domainname;
61 char *UNC;
62 char *UNCip;
Steve French95b1cb92008-05-15 16:44:38 +000063 char *in6_addr; /* ipv6 address as human readable form of in6_addr */
Linus Torvalds1da177e2005-04-16 15:20:36 -070064 char *iocharset; /* local code page for mapping to and from Unicode */
65 char source_rfc1001_name[16]; /* netbios name of client */
Steve Frencha10faeb22005-08-22 21:38:31 -070066 char target_rfc1001_name[16]; /* netbios name of server for Win9x/ME */
Linus Torvalds1da177e2005-04-16 15:20:36 -070067 uid_t linux_uid;
68 gid_t linux_gid;
69 mode_t file_mode;
70 mode_t dir_mode;
Steve French189acaa2006-06-23 02:33:48 +000071 unsigned secFlg;
Steve French4b18f2a2008-04-29 00:06:05 +000072 bool rw:1;
73 bool retry:1;
74 bool intr:1;
75 bool setuids:1;
76 bool override_uid:1;
77 bool override_gid:1;
Jeff Laytond0a9c072008-05-12 22:23:49 +000078 bool dynperm:1;
Steve French4b18f2a2008-04-29 00:06:05 +000079 bool noperm:1;
80 bool no_psx_acl:1; /* set if posix acl support should be disabled */
81 bool cifs_acl:1;
82 bool no_xattr:1; /* set if xattr (EA) support should be disabled*/
83 bool server_ino:1; /* use inode numbers from server ie UniqueId */
84 bool direct_io:1;
Steve French95b1cb92008-05-15 16:44:38 +000085 bool remap:1; /* set to remap seven reserved chars in filenames */
86 bool posix_paths:1; /* unset to not ask for posix pathnames. */
Steve French4b18f2a2008-04-29 00:06:05 +000087 bool no_linux_ext:1;
88 bool sfu_emul:1;
Steve French95b1cb92008-05-15 16:44:38 +000089 bool nullauth:1; /* attempt to authenticate with null user */
90 bool nocase:1; /* request case insensitive filenames */
91 bool nobrl:1; /* disable sending byte range locks to srv */
92 bool seal:1; /* request transport encryption on share */
Steve French84210e92008-10-23 04:42:37 +000093 bool nodfs:1; /* Do not request DFS, even if available */
94 bool local_lease:1; /* check leases only on local system, not remote */
Steve Frenchedf1ae42008-10-29 00:47:57 +000095 bool noblocksnd:1;
96 bool noautotune:1;
Linus Torvalds1da177e2005-04-16 15:20:36 -070097 unsigned int rsize;
98 unsigned int wsize;
99 unsigned int sockopt;
100 unsigned short int port;
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000101 char *prepath;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700102};
103
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000104static int ipv4_connect(struct sockaddr_in *psin_server,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700105 struct socket **csocket,
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000106 char *netb_name,
Steve Frenchedf1ae42008-10-29 00:47:57 +0000107 char *server_netb_name,
108 bool noblocksnd,
109 bool nosndbuf); /* ipv6 never set sndbuf size */
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000110static int ipv6_connect(struct sockaddr_in6 *psin_server,
Steve Frenchedf1ae42008-10-29 00:47:57 +0000111 struct socket **csocket, bool noblocksnd);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700112
113
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000114 /*
Linus Torvalds1da177e2005-04-16 15:20:36 -0700115 * cifs tcp session reconnection
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000116 *
Linus Torvalds1da177e2005-04-16 15:20:36 -0700117 * mark tcp session as reconnecting so temporarily locked
118 * mark all smb sessions as reconnecting for tcp session
119 * reconnect tcp session
120 * wake up waiters on reconnection? - (not needed currently)
121 */
122
Steve French2cd646a2006-09-28 19:43:08 +0000123static int
Linus Torvalds1da177e2005-04-16 15:20:36 -0700124cifs_reconnect(struct TCP_Server_Info *server)
125{
126 int rc = 0;
Jeff Laytonf1987b42008-11-15 11:12:47 -0500127 struct list_head *tmp, *tmp2;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700128 struct cifsSesInfo *ses;
129 struct cifsTconInfo *tcon;
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000130 struct mid_q_entry *mid_entry;
Steve French50c2f752007-07-13 00:33:32 +0000131
Linus Torvalds1da177e2005-04-16 15:20:36 -0700132 spin_lock(&GlobalMid_Lock);
Jeff Layton469ee612008-10-16 18:46:39 +0000133 if (server->tcpStatus == CifsExiting) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000134 /* the demux thread will exit normally
Linus Torvalds1da177e2005-04-16 15:20:36 -0700135 next time through the loop */
136 spin_unlock(&GlobalMid_Lock);
137 return rc;
138 } else
139 server->tcpStatus = CifsNeedReconnect;
140 spin_unlock(&GlobalMid_Lock);
141 server->maxBuf = 0;
142
Steve Frenche4eb2952005-04-28 22:41:09 -0700143 cFYI(1, ("Reconnecting tcp session"));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700144
145 /* before reconnecting the tcp session, mark the smb session (uid)
146 and the tid bad so they are not used until reconnected */
Jeff Layton14fbf502008-11-14 13:53:46 -0500147 read_lock(&cifs_tcp_ses_lock);
148 list_for_each(tmp, &server->smb_ses_list) {
149 ses = list_entry(tmp, struct cifsSesInfo, smb_ses_list);
150 ses->need_reconnect = true;
151 ses->ipc_tid = 0;
Jeff Laytonf1987b42008-11-15 11:12:47 -0500152 list_for_each(tmp2, &ses->tcon_list) {
153 tcon = list_entry(tmp2, struct cifsTconInfo, tcon_list);
154 tcon->need_reconnect = true;
155 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700156 }
Jeff Layton14fbf502008-11-14 13:53:46 -0500157 read_unlock(&cifs_tcp_ses_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700158 /* do not want to be sending data on a socket we are freeing */
Jeff Layton72ca5452008-12-01 07:09:36 -0500159 mutex_lock(&server->srv_mutex);
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000160 if (server->ssocket) {
Steve French467a8f82007-06-27 22:41:32 +0000161 cFYI(1, ("State: 0x%x Flags: 0x%lx", server->ssocket->state,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700162 server->ssocket->flags));
Trond Myklebust91cf45f2007-11-12 18:10:39 -0800163 kernel_sock_shutdown(server->ssocket, SHUT_WR);
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000164 cFYI(1, ("Post shutdown state: 0x%x Flags: 0x%lx",
Steve French467a8f82007-06-27 22:41:32 +0000165 server->ssocket->state,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700166 server->ssocket->flags));
167 sock_release(server->ssocket);
168 server->ssocket = NULL;
169 }
170
171 spin_lock(&GlobalMid_Lock);
172 list_for_each(tmp, &server->pending_mid_q) {
173 mid_entry = list_entry(tmp, struct
174 mid_q_entry,
175 qhead);
Steve Frenchad8b15f2008-08-08 21:10:16 +0000176 if (mid_entry->midState == MID_REQUEST_SUBMITTED) {
Steve French09d1db52005-04-28 22:41:08 -0700177 /* Mark other intransit requests as needing
178 retry so we do not immediately mark the
179 session bad again (ie after we reconnect
180 below) as they timeout too */
Steve Frenchad8b15f2008-08-08 21:10:16 +0000181 mid_entry->midState = MID_RETRY_NEEDED;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700182 }
183 }
184 spin_unlock(&GlobalMid_Lock);
Jeff Layton72ca5452008-12-01 07:09:36 -0500185 mutex_unlock(&server->srv_mutex);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700186
Jeff Layton469ee612008-10-16 18:46:39 +0000187 while ((server->tcpStatus != CifsExiting) &&
188 (server->tcpStatus != CifsGood)) {
Steve French6c3d8902006-07-31 22:46:20 +0000189 try_to_freeze();
Steve French3ec332e2008-11-14 03:35:10 +0000190 if (server->addr.sockAddr6.sin6_family == AF_INET6) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000191 rc = ipv6_connect(&server->addr.sockAddr6,
Steve Frenchedf1ae42008-10-29 00:47:57 +0000192 &server->ssocket, server->noautotune);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700193 } else {
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000194 rc = ipv4_connect(&server->addr.sockAddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700195 &server->ssocket,
Steve Frencha10faeb22005-08-22 21:38:31 -0700196 server->workstation_RFC1001_name,
Steve Frenchedf1ae42008-10-29 00:47:57 +0000197 server->server_RFC1001_name,
198 server->noblocksnd, server->noautotune);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700199 }
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000200 if (rc) {
201 cFYI(1, ("reconnect error %d", rc));
Steve French0cb766a2005-04-28 22:41:11 -0700202 msleep(3000);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700203 } else {
204 atomic_inc(&tcpSesReconnectCount);
205 spin_lock(&GlobalMid_Lock);
Jeff Layton469ee612008-10-16 18:46:39 +0000206 if (server->tcpStatus != CifsExiting)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700207 server->tcpStatus = CifsGood;
Steve Frenchad009ac2005-04-28 22:41:05 -0700208 server->sequence_number = 0;
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000209 spin_unlock(&GlobalMid_Lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700210 /* atomic_set(&server->inFlight,0);*/
211 wake_up(&server->response_q);
212 }
213 }
214 return rc;
215}
216
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000217/*
Steve Frenche4eb2952005-04-28 22:41:09 -0700218 return codes:
219 0 not a transact2, or all data present
220 >0 transact2 with that much data missing
221 -EINVAL = invalid transact2
222
223 */
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000224static int check2ndT2(struct smb_hdr *pSMB, unsigned int maxBufSize)
Steve Frenche4eb2952005-04-28 22:41:09 -0700225{
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000226 struct smb_t2_rsp *pSMBt;
227 int total_data_size;
Steve Frenche4eb2952005-04-28 22:41:09 -0700228 int data_in_this_rsp;
229 int remaining;
230
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000231 if (pSMB->Command != SMB_COM_TRANSACTION2)
Steve Frenche4eb2952005-04-28 22:41:09 -0700232 return 0;
233
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000234 /* check for plausible wct, bcc and t2 data and parm sizes */
235 /* check for parm and data offset going beyond end of smb */
236 if (pSMB->WordCount != 10) { /* coalesce_t2 depends on this */
Steve French467a8f82007-06-27 22:41:32 +0000237 cFYI(1, ("invalid transact2 word count"));
Steve Frenche4eb2952005-04-28 22:41:09 -0700238 return -EINVAL;
239 }
240
241 pSMBt = (struct smb_t2_rsp *)pSMB;
242
243 total_data_size = le16_to_cpu(pSMBt->t2_rsp.TotalDataCount);
244 data_in_this_rsp = le16_to_cpu(pSMBt->t2_rsp.DataCount);
245
246 remaining = total_data_size - data_in_this_rsp;
247
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000248 if (remaining == 0)
Steve Frenche4eb2952005-04-28 22:41:09 -0700249 return 0;
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000250 else if (remaining < 0) {
Steve French467a8f82007-06-27 22:41:32 +0000251 cFYI(1, ("total data %d smaller than data in frame %d",
Steve Frenche4eb2952005-04-28 22:41:09 -0700252 total_data_size, data_in_this_rsp));
253 return -EINVAL;
254 } else {
Steve French467a8f82007-06-27 22:41:32 +0000255 cFYI(1, ("missing %d bytes from transact2, check next response",
Steve Frenche4eb2952005-04-28 22:41:09 -0700256 remaining));
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000257 if (total_data_size > maxBufSize) {
258 cERROR(1, ("TotalDataSize %d is over maximum buffer %d",
259 total_data_size, maxBufSize));
260 return -EINVAL;
Steve Frenche4eb2952005-04-28 22:41:09 -0700261 }
262 return remaining;
263 }
264}
265
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000266static int coalesce_t2(struct smb_hdr *psecond, struct smb_hdr *pTargetSMB)
Steve Frenche4eb2952005-04-28 22:41:09 -0700267{
268 struct smb_t2_rsp *pSMB2 = (struct smb_t2_rsp *)psecond;
269 struct smb_t2_rsp *pSMBt = (struct smb_t2_rsp *)pTargetSMB;
270 int total_data_size;
271 int total_in_buf;
272 int remaining;
273 int total_in_buf2;
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000274 char *data_area_of_target;
275 char *data_area_of_buf2;
Steve Frenche4eb2952005-04-28 22:41:09 -0700276 __u16 byte_count;
277
278 total_data_size = le16_to_cpu(pSMBt->t2_rsp.TotalDataCount);
279
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000280 if (total_data_size != le16_to_cpu(pSMB2->t2_rsp.TotalDataCount)) {
Steve French63135e02007-07-17 17:34:02 +0000281 cFYI(1, ("total data size of primary and secondary t2 differ"));
Steve Frenche4eb2952005-04-28 22:41:09 -0700282 }
283
284 total_in_buf = le16_to_cpu(pSMBt->t2_rsp.DataCount);
285
286 remaining = total_data_size - total_in_buf;
Steve French50c2f752007-07-13 00:33:32 +0000287
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000288 if (remaining < 0)
Steve Frenche4eb2952005-04-28 22:41:09 -0700289 return -EINVAL;
290
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000291 if (remaining == 0) /* nothing to do, ignore */
Steve Frenche4eb2952005-04-28 22:41:09 -0700292 return 0;
Steve French50c2f752007-07-13 00:33:32 +0000293
Steve Frenche4eb2952005-04-28 22:41:09 -0700294 total_in_buf2 = le16_to_cpu(pSMB2->t2_rsp.DataCount);
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000295 if (remaining < total_in_buf2) {
Steve French467a8f82007-06-27 22:41:32 +0000296 cFYI(1, ("transact2 2nd response contains too much data"));
Steve Frenche4eb2952005-04-28 22:41:09 -0700297 }
298
299 /* find end of first SMB data area */
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000300 data_area_of_target = (char *)&pSMBt->hdr.Protocol +
Steve Frenche4eb2952005-04-28 22:41:09 -0700301 le16_to_cpu(pSMBt->t2_rsp.DataOffset);
302 /* validate target area */
303
304 data_area_of_buf2 = (char *) &pSMB2->hdr.Protocol +
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000305 le16_to_cpu(pSMB2->t2_rsp.DataOffset);
Steve Frenche4eb2952005-04-28 22:41:09 -0700306
307 data_area_of_target += total_in_buf;
308
309 /* copy second buffer into end of first buffer */
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000310 memcpy(data_area_of_target, data_area_of_buf2, total_in_buf2);
Steve Frenche4eb2952005-04-28 22:41:09 -0700311 total_in_buf += total_in_buf2;
312 pSMBt->t2_rsp.DataCount = cpu_to_le16(total_in_buf);
313 byte_count = le16_to_cpu(BCC_LE(pTargetSMB));
314 byte_count += total_in_buf2;
315 BCC_LE(pTargetSMB) = cpu_to_le16(byte_count);
316
Steve French70ca7342005-09-22 16:32:06 -0700317 byte_count = pTargetSMB->smb_buf_length;
Steve Frenche4eb2952005-04-28 22:41:09 -0700318 byte_count += total_in_buf2;
319
320 /* BB also add check that we are not beyond maximum buffer size */
Steve French50c2f752007-07-13 00:33:32 +0000321
Steve French70ca7342005-09-22 16:32:06 -0700322 pTargetSMB->smb_buf_length = byte_count;
Steve Frenche4eb2952005-04-28 22:41:09 -0700323
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000324 if (remaining == total_in_buf2) {
Steve French467a8f82007-06-27 22:41:32 +0000325 cFYI(1, ("found the last secondary response"));
Steve Frenche4eb2952005-04-28 22:41:09 -0700326 return 0; /* we are done */
327 } else /* more responses to go */
328 return 1;
329
330}
331
Linus Torvalds1da177e2005-04-16 15:20:36 -0700332static int
333cifs_demultiplex_thread(struct TCP_Server_Info *server)
334{
335 int length;
336 unsigned int pdu_length, total_read;
337 struct smb_hdr *smb_buffer = NULL;
Steve Frenchb8643e12005-04-28 22:41:07 -0700338 struct smb_hdr *bigbuf = NULL;
339 struct smb_hdr *smallbuf = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700340 struct msghdr smb_msg;
341 struct kvec iov;
342 struct socket *csocket = server->ssocket;
343 struct list_head *tmp;
344 struct cifsSesInfo *ses;
345 struct task_struct *task_to_wake = NULL;
346 struct mid_q_entry *mid_entry;
Steve French70ca7342005-09-22 16:32:06 -0700347 char temp;
Steve French4b18f2a2008-04-29 00:06:05 +0000348 bool isLargeBuf = false;
349 bool isMultiRsp;
Steve Frenche4eb2952005-04-28 22:41:09 -0700350 int reconnect;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700351
Linus Torvalds1da177e2005-04-16 15:20:36 -0700352 current->flags |= PF_MEMALLOC;
Pavel Emelyanovba25f9d2007-10-18 23:40:40 -0700353 cFYI(1, ("Demultiplex PID: %d", task_pid_nr(current)));
Jeff Layton93d0ec82008-08-02 08:00:48 -0400354
355 length = atomic_inc_return(&tcpSesAllocCount);
356 if (length > 1)
Steve French26f57362007-08-30 22:09:15 +0000357 mempool_resize(cifs_req_poolp, length + cifs_min_rcv,
358 GFP_KERNEL);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700359
Rafael J. Wysocki83144182007-07-17 04:03:35 -0700360 set_freezable();
Jeff Layton469ee612008-10-16 18:46:39 +0000361 while (server->tcpStatus != CifsExiting) {
Steve Frenchede13272005-08-30 20:10:14 -0700362 if (try_to_freeze())
363 continue;
Steve Frenchb8643e12005-04-28 22:41:07 -0700364 if (bigbuf == NULL) {
365 bigbuf = cifs_buf_get();
Pavel Machek0fd1ffe2006-06-13 21:31:39 +0000366 if (!bigbuf) {
367 cERROR(1, ("No memory for large SMB response"));
Steve Frenchb8643e12005-04-28 22:41:07 -0700368 msleep(3000);
369 /* retry will check if exiting */
370 continue;
371 }
Pavel Machek0fd1ffe2006-06-13 21:31:39 +0000372 } else if (isLargeBuf) {
373 /* we are reusing a dirty large buf, clear its start */
Steve French26f57362007-08-30 22:09:15 +0000374 memset(bigbuf, 0, sizeof(struct smb_hdr));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700375 }
Steve Frenchb8643e12005-04-28 22:41:07 -0700376
377 if (smallbuf == NULL) {
378 smallbuf = cifs_small_buf_get();
Pavel Machek0fd1ffe2006-06-13 21:31:39 +0000379 if (!smallbuf) {
380 cERROR(1, ("No memory for SMB response"));
Steve Frenchb8643e12005-04-28 22:41:07 -0700381 msleep(1000);
382 /* retry will check if exiting */
383 continue;
384 }
385 /* beginning of smb buffer is cleared in our buf_get */
386 } else /* if existing small buf clear beginning */
Steve French26f57362007-08-30 22:09:15 +0000387 memset(smallbuf, 0, sizeof(struct smb_hdr));
Steve Frenchb8643e12005-04-28 22:41:07 -0700388
Steve French4b18f2a2008-04-29 00:06:05 +0000389 isLargeBuf = false;
390 isMultiRsp = false;
Steve Frenchb8643e12005-04-28 22:41:07 -0700391 smb_buffer = smallbuf;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700392 iov.iov_base = smb_buffer;
393 iov.iov_len = 4;
394 smb_msg.msg_control = NULL;
395 smb_msg.msg_controllen = 0;
Steve Frenchf01d5e12007-08-30 21:13:31 +0000396 pdu_length = 4; /* enough to get RFC1001 header */
397incomplete_rcv:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700398 length =
399 kernel_recvmsg(csocket, &smb_msg,
Steve Frenchf01d5e12007-08-30 21:13:31 +0000400 &iov, 1, pdu_length, 0 /* BB other flags? */);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700401
Jeff Layton469ee612008-10-16 18:46:39 +0000402 if (server->tcpStatus == CifsExiting) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700403 break;
404 } else if (server->tcpStatus == CifsNeedReconnect) {
Pavel Machek0fd1ffe2006-06-13 21:31:39 +0000405 cFYI(1, ("Reconnect after server stopped responding"));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700406 cifs_reconnect(server);
Pavel Machek0fd1ffe2006-06-13 21:31:39 +0000407 cFYI(1, ("call to reconnect done"));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700408 csocket = server->ssocket;
409 continue;
410 } else if ((length == -ERESTARTSYS) || (length == -EAGAIN)) {
Steve Frenchb8643e12005-04-28 22:41:07 -0700411 msleep(1); /* minimum sleep to prevent looping
Linus Torvalds1da177e2005-04-16 15:20:36 -0700412 allowing socket to clear and app threads to set
413 tcpStatus CifsNeedReconnect if server hung */
Steve Frenchc527c8a2008-11-03 20:46:21 +0000414 if (pdu_length < 4) {
415 iov.iov_base = (4 - pdu_length) +
416 (char *)smb_buffer;
417 iov.iov_len = pdu_length;
418 smb_msg.msg_control = NULL;
419 smb_msg.msg_controllen = 0;
Steve Frenchc18c7322007-10-17 18:01:11 +0000420 goto incomplete_rcv;
Steve Frenchc527c8a2008-11-03 20:46:21 +0000421 } else
Steve Frenchc18c7322007-10-17 18:01:11 +0000422 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700423 } else if (length <= 0) {
Pavel Machek0fd1ffe2006-06-13 21:31:39 +0000424 if (server->tcpStatus == CifsNew) {
425 cFYI(1, ("tcp session abend after SMBnegprot"));
Steve French09d1db52005-04-28 22:41:08 -0700426 /* some servers kill the TCP session rather than
427 returning an SMB negprot error, in which
428 case reconnecting here is not going to help,
429 and so simply return error to mount */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700430 break;
431 }
Pavel Machek0fd1ffe2006-06-13 21:31:39 +0000432 if (!try_to_freeze() && (length == -EINTR)) {
Steve French467a8f82007-06-27 22:41:32 +0000433 cFYI(1, ("cifsd thread killed"));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700434 break;
435 }
Steve French467a8f82007-06-27 22:41:32 +0000436 cFYI(1, ("Reconnect after unexpected peek error %d",
Steve French57337e42005-04-28 22:41:10 -0700437 length));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700438 cifs_reconnect(server);
439 csocket = server->ssocket;
440 wake_up(&server->response_q);
441 continue;
Petr Tesarik2a974682007-11-20 02:24:08 +0000442 } else if (length < pdu_length) {
443 cFYI(1, ("requested %d bytes but only got %d bytes",
444 pdu_length, length));
Steve Frenchf01d5e12007-08-30 21:13:31 +0000445 pdu_length -= length;
Steve Frenchf01d5e12007-08-30 21:13:31 +0000446 msleep(1);
447 goto incomplete_rcv;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700448 }
Steve French67010fb2005-04-28 22:41:09 -0700449
Steve French70ca7342005-09-22 16:32:06 -0700450 /* The right amount was read from socket - 4 bytes */
451 /* so we can now interpret the length field */
Steve French46810cb2005-04-28 22:41:09 -0700452
Steve French70ca7342005-09-22 16:32:06 -0700453 /* the first byte big endian of the length field,
454 is actually not part of the length but the type
455 with the most common, zero, as regular data */
456 temp = *((char *) smb_buffer);
457
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000458 /* Note that FC 1001 length is big endian on the wire,
Steve French70ca7342005-09-22 16:32:06 -0700459 but we convert it here so it is always manipulated
460 as host byte order */
Harvey Harrison5ca33c62008-07-23 17:45:58 -0700461 pdu_length = be32_to_cpu((__force __be32)smb_buffer->smb_buf_length);
Steve French70ca7342005-09-22 16:32:06 -0700462 smb_buffer->smb_buf_length = pdu_length;
Steve French46810cb2005-04-28 22:41:09 -0700463
Steve French467a8f82007-06-27 22:41:32 +0000464 cFYI(1, ("rfc1002 length 0x%x", pdu_length+4));
Steve French70ca7342005-09-22 16:32:06 -0700465
466 if (temp == (char) RFC1002_SESSION_KEEP_ALIVE) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000467 continue;
Steve French70ca7342005-09-22 16:32:06 -0700468 } else if (temp == (char)RFC1002_POSITIVE_SESSION_RESPONSE) {
Steve French467a8f82007-06-27 22:41:32 +0000469 cFYI(1, ("Good RFC 1002 session rsp"));
Steve Frenche4eb2952005-04-28 22:41:09 -0700470 continue;
Steve French70ca7342005-09-22 16:32:06 -0700471 } else if (temp == (char)RFC1002_NEGATIVE_SESSION_RESPONSE) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000472 /* we get this from Windows 98 instead of
Steve French46810cb2005-04-28 22:41:09 -0700473 an error on SMB negprot response */
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000474 cFYI(1, ("Negative RFC1002 Session Response Error 0x%x)",
Steve French70ca7342005-09-22 16:32:06 -0700475 pdu_length));
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000476 if (server->tcpStatus == CifsNew) {
477 /* if nack on negprot (rather than
Steve French46810cb2005-04-28 22:41:09 -0700478 ret of smb negprot error) reconnecting
479 not going to help, ret error to mount */
480 break;
481 } else {
482 /* give server a second to
483 clean up before reconnect attempt */
484 msleep(1000);
485 /* always try 445 first on reconnect
486 since we get NACK on some if we ever
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000487 connected to port 139 (the NACK is
Steve French46810cb2005-04-28 22:41:09 -0700488 since we do not begin with RFC1001
489 session initialize frame) */
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000490 server->addr.sockAddr.sin_port =
Steve French46810cb2005-04-28 22:41:09 -0700491 htons(CIFS_PORT);
492 cifs_reconnect(server);
493 csocket = server->ssocket;
494 wake_up(&server->response_q);
495 continue;
496 }
Steve French70ca7342005-09-22 16:32:06 -0700497 } else if (temp != (char) 0) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000498 cERROR(1, ("Unknown RFC 1002 frame"));
Steve French70ca7342005-09-22 16:32:06 -0700499 cifs_dump_mem(" Received Data: ", (char *)smb_buffer,
500 length);
Steve French46810cb2005-04-28 22:41:09 -0700501 cifs_reconnect(server);
502 csocket = server->ssocket;
503 continue;
Steve Frenche4eb2952005-04-28 22:41:09 -0700504 }
505
506 /* else we have an SMB response */
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000507 if ((pdu_length > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE - 4) ||
Steve French26f57362007-08-30 22:09:15 +0000508 (pdu_length < sizeof(struct smb_hdr) - 1 - 4)) {
Steve Frenche4eb2952005-04-28 22:41:09 -0700509 cERROR(1, ("Invalid size SMB length %d pdu_length %d",
Steve French46810cb2005-04-28 22:41:09 -0700510 length, pdu_length+4));
Steve Frenche4eb2952005-04-28 22:41:09 -0700511 cifs_reconnect(server);
512 csocket = server->ssocket;
513 wake_up(&server->response_q);
514 continue;
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000515 }
Steve Frenche4eb2952005-04-28 22:41:09 -0700516
517 /* else length ok */
518 reconnect = 0;
519
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000520 if (pdu_length > MAX_CIFS_SMALL_BUFFER_SIZE - 4) {
Steve French4b18f2a2008-04-29 00:06:05 +0000521 isLargeBuf = true;
Steve Frenche4eb2952005-04-28 22:41:09 -0700522 memcpy(bigbuf, smallbuf, 4);
523 smb_buffer = bigbuf;
524 }
525 length = 0;
526 iov.iov_base = 4 + (char *)smb_buffer;
527 iov.iov_len = pdu_length;
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000528 for (total_read = 0; total_read < pdu_length;
Steve Frenche4eb2952005-04-28 22:41:09 -0700529 total_read += length) {
530 length = kernel_recvmsg(csocket, &smb_msg, &iov, 1,
531 pdu_length - total_read, 0);
Jeff Layton469ee612008-10-16 18:46:39 +0000532 if ((server->tcpStatus == CifsExiting) ||
Steve Frenche4eb2952005-04-28 22:41:09 -0700533 (length == -EINTR)) {
534 /* then will exit */
535 reconnect = 2;
536 break;
537 } else if (server->tcpStatus == CifsNeedReconnect) {
Steve French46810cb2005-04-28 22:41:09 -0700538 cifs_reconnect(server);
539 csocket = server->ssocket;
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000540 /* Reconnect wakes up rspns q */
Steve Frenche4eb2952005-04-28 22:41:09 -0700541 /* Now we will reread sock */
542 reconnect = 1;
543 break;
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000544 } else if ((length == -ERESTARTSYS) ||
Steve Frenche4eb2952005-04-28 22:41:09 -0700545 (length == -EAGAIN)) {
546 msleep(1); /* minimum sleep to prevent looping,
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000547 allowing socket to clear and app
Steve Frenche4eb2952005-04-28 22:41:09 -0700548 threads to set tcpStatus
549 CifsNeedReconnect if server hung*/
Steve Frenchc18c7322007-10-17 18:01:11 +0000550 length = 0;
Steve French46810cb2005-04-28 22:41:09 -0700551 continue;
Steve Frenche4eb2952005-04-28 22:41:09 -0700552 } else if (length <= 0) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000553 cERROR(1, ("Received no data, expecting %d",
Steve Frenche4eb2952005-04-28 22:41:09 -0700554 pdu_length - total_read));
555 cifs_reconnect(server);
556 csocket = server->ssocket;
557 reconnect = 1;
558 break;
Steve French46810cb2005-04-28 22:41:09 -0700559 }
560 }
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000561 if (reconnect == 2)
Steve Frenche4eb2952005-04-28 22:41:09 -0700562 break;
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000563 else if (reconnect == 1)
Steve Frenche4eb2952005-04-28 22:41:09 -0700564 continue;
565
566 length += 4; /* account for rfc1002 hdr */
Steve French50c2f752007-07-13 00:33:32 +0000567
Steve Frenche4eb2952005-04-28 22:41:09 -0700568
569 dump_smb(smb_buffer, length);
Steve French184ed212006-02-24 06:15:11 +0000570 if (checkSMB(smb_buffer, smb_buffer->Mid, total_read+4)) {
Steve Frenchb387eae2005-10-10 14:21:15 -0700571 cifs_dump_mem("Bad SMB: ", smb_buffer, 48);
Steve Frenche4eb2952005-04-28 22:41:09 -0700572 continue;
573 }
574
575
576 task_to_wake = NULL;
577 spin_lock(&GlobalMid_Lock);
578 list_for_each(tmp, &server->pending_mid_q) {
579 mid_entry = list_entry(tmp, struct mid_q_entry, qhead);
580
Steve French50c2f752007-07-13 00:33:32 +0000581 if ((mid_entry->mid == smb_buffer->Mid) &&
Steve Frenche4eb2952005-04-28 22:41:09 -0700582 (mid_entry->midState == MID_REQUEST_SUBMITTED) &&
583 (mid_entry->command == smb_buffer->Command)) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000584 if (check2ndT2(smb_buffer,server->maxBuf) > 0) {
Steve Frenche4eb2952005-04-28 22:41:09 -0700585 /* We have a multipart transact2 resp */
Steve French4b18f2a2008-04-29 00:06:05 +0000586 isMultiRsp = true;
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000587 if (mid_entry->resp_buf) {
Steve Frenche4eb2952005-04-28 22:41:09 -0700588 /* merge response - fix up 1st*/
Steve French50c2f752007-07-13 00:33:32 +0000589 if (coalesce_t2(smb_buffer,
Steve Frenche4eb2952005-04-28 22:41:09 -0700590 mid_entry->resp_buf)) {
Steve French4b18f2a2008-04-29 00:06:05 +0000591 mid_entry->multiRsp =
592 true;
Steve Frenche4eb2952005-04-28 22:41:09 -0700593 break;
594 } else {
595 /* all parts received */
Steve French4b18f2a2008-04-29 00:06:05 +0000596 mid_entry->multiEnd =
597 true;
Steve French50c2f752007-07-13 00:33:32 +0000598 goto multi_t2_fnd;
Steve Frenche4eb2952005-04-28 22:41:09 -0700599 }
600 } else {
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000601 if (!isLargeBuf) {
Steve Frenche4eb2952005-04-28 22:41:09 -0700602 cERROR(1,("1st trans2 resp needs bigbuf"));
603 /* BB maybe we can fix this up, switch
Steve French50c2f752007-07-13 00:33:32 +0000604 to already allocated large buffer? */
Steve Frenche4eb2952005-04-28 22:41:09 -0700605 } else {
Steve Frenchcd634992005-04-28 22:41:10 -0700606 /* Have first buffer */
Steve Frenche4eb2952005-04-28 22:41:09 -0700607 mid_entry->resp_buf =
608 smb_buffer;
Steve French4b18f2a2008-04-29 00:06:05 +0000609 mid_entry->largeBuf =
610 true;
Steve Frenche4eb2952005-04-28 22:41:09 -0700611 bigbuf = NULL;
612 }
613 }
614 break;
Steve French50c2f752007-07-13 00:33:32 +0000615 }
Steve Frenche4eb2952005-04-28 22:41:09 -0700616 mid_entry->resp_buf = smb_buffer;
Steve French4b18f2a2008-04-29 00:06:05 +0000617 mid_entry->largeBuf = isLargeBuf;
Steve Frenche4eb2952005-04-28 22:41:09 -0700618multi_t2_fnd:
619 task_to_wake = mid_entry->tsk;
620 mid_entry->midState = MID_RESPONSE_RECEIVED;
Steve French1047abc2005-10-11 19:58:06 -0700621#ifdef CONFIG_CIFS_STATS2
622 mid_entry->when_received = jiffies;
623#endif
Steve French3a5ff612006-07-14 22:37:11 +0000624 /* so we do not time out requests to server
625 which is still responding (since server could
626 be busy but not dead) */
627 server->lstrp = jiffies;
Steve Frenche4eb2952005-04-28 22:41:09 -0700628 break;
629 }
630 }
631 spin_unlock(&GlobalMid_Lock);
632 if (task_to_wake) {
Steve Frenchcd634992005-04-28 22:41:10 -0700633 /* Was previous buf put in mpx struct for multi-rsp? */
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000634 if (!isMultiRsp) {
Steve Frenchcd634992005-04-28 22:41:10 -0700635 /* smb buffer will be freed by user thread */
Steve French26f57362007-08-30 22:09:15 +0000636 if (isLargeBuf)
Steve Frenchcd634992005-04-28 22:41:10 -0700637 bigbuf = NULL;
Steve French26f57362007-08-30 22:09:15 +0000638 else
Steve Frenchcd634992005-04-28 22:41:10 -0700639 smallbuf = NULL;
640 }
Steve Frenche4eb2952005-04-28 22:41:09 -0700641 wake_up_process(task_to_wake);
Steve French4b18f2a2008-04-29 00:06:05 +0000642 } else if (!is_valid_oplock_break(smb_buffer, server) &&
643 !isMultiRsp) {
Steve French50c2f752007-07-13 00:33:32 +0000644 cERROR(1, ("No task to wake, unknown frame received! "
645 "NumMids %d", midCount.counter));
646 cifs_dump_mem("Received Data is: ", (char *)smb_buffer,
Steve French70ca7342005-09-22 16:32:06 -0700647 sizeof(struct smb_hdr));
Steve French39798772006-05-31 22:40:51 +0000648#ifdef CONFIG_CIFS_DEBUG2
649 cifs_dump_detail(smb_buffer);
650 cifs_dump_mids(server);
651#endif /* CIFS_DEBUG2 */
Steve French50c2f752007-07-13 00:33:32 +0000652
Steve Frenche4eb2952005-04-28 22:41:09 -0700653 }
654 } /* end while !EXITING */
655
Jeff Laytone7ddee92008-11-14 13:44:38 -0500656 /* take it off the list, if it's not already */
657 write_lock(&cifs_tcp_ses_lock);
658 list_del_init(&server->tcp_ses_list);
659 write_unlock(&cifs_tcp_ses_lock);
660
Linus Torvalds1da177e2005-04-16 15:20:36 -0700661 spin_lock(&GlobalMid_Lock);
662 server->tcpStatus = CifsExiting;
Steve Frenche691b9d2008-05-11 15:53:33 +0000663 spin_unlock(&GlobalMid_Lock);
Steve Frenchdbdbb872008-06-10 21:21:56 +0000664 wake_up_all(&server->response_q);
Steve Frenche691b9d2008-05-11 15:53:33 +0000665
Steve French31ca3bc2005-04-28 22:41:11 -0700666 /* check if we have blocked requests that need to free */
667 /* Note that cifs_max_pending is normally 50, but
668 can be set at module install time to as little as two */
Steve Frenche691b9d2008-05-11 15:53:33 +0000669 spin_lock(&GlobalMid_Lock);
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000670 if (atomic_read(&server->inFlight) >= cifs_max_pending)
Steve French31ca3bc2005-04-28 22:41:11 -0700671 atomic_set(&server->inFlight, cifs_max_pending - 1);
672 /* We do not want to set the max_pending too low or we
673 could end up with the counter going negative */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700674 spin_unlock(&GlobalMid_Lock);
Steve French50c2f752007-07-13 00:33:32 +0000675 /* Although there should not be any requests blocked on
Linus Torvalds1da177e2005-04-16 15:20:36 -0700676 this queue it can not hurt to be paranoid and try to wake up requests
Steve French09d1db52005-04-28 22:41:08 -0700677 that may haven been blocked when more than 50 at time were on the wire
Linus Torvalds1da177e2005-04-16 15:20:36 -0700678 to the same server - they now will see the session is in exit state
679 and get out of SendReceive. */
680 wake_up_all(&server->request_q);
681 /* give those requests time to exit */
Steve Frenchb8643e12005-04-28 22:41:07 -0700682 msleep(125);
Steve French50c2f752007-07-13 00:33:32 +0000683
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000684 if (server->ssocket) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700685 sock_release(csocket);
686 server->ssocket = NULL;
687 }
Steve Frenchb8643e12005-04-28 22:41:07 -0700688 /* buffer usuallly freed in free_mid - need to free it here on exit */
Mariusz Kozlowskia8a11d32007-10-03 16:41:24 +0000689 cifs_buf_release(bigbuf);
690 if (smallbuf) /* no sense logging a debug message if NULL */
Steve Frenchb8643e12005-04-28 22:41:07 -0700691 cifs_small_buf_release(smallbuf);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700692
Jeff Layton14fbf502008-11-14 13:53:46 -0500693 /*
694 * BB: we shouldn't have to do any of this. It shouldn't be
695 * possible to exit from the thread with active SMB sessions
696 */
697 read_lock(&cifs_tcp_ses_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700698 if (list_empty(&server->pending_mid_q)) {
Steve French09d1db52005-04-28 22:41:08 -0700699 /* loop through server session structures attached to this and
700 mark them dead */
Jeff Layton14fbf502008-11-14 13:53:46 -0500701 list_for_each(tmp, &server->smb_ses_list) {
702 ses = list_entry(tmp, struct cifsSesInfo,
703 smb_ses_list);
704 ses->status = CifsExiting;
705 ses->server = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700706 }
Jeff Layton14fbf502008-11-14 13:53:46 -0500707 read_unlock(&cifs_tcp_ses_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700708 } else {
Steve French31ca3bc2005-04-28 22:41:11 -0700709 /* although we can not zero the server struct pointer yet,
710 since there are active requests which may depnd on them,
711 mark the corresponding SMB sessions as exiting too */
Jeff Layton14fbf502008-11-14 13:53:46 -0500712 list_for_each(tmp, &server->smb_ses_list) {
Steve French31ca3bc2005-04-28 22:41:11 -0700713 ses = list_entry(tmp, struct cifsSesInfo,
Jeff Layton14fbf502008-11-14 13:53:46 -0500714 smb_ses_list);
715 ses->status = CifsExiting;
Steve French31ca3bc2005-04-28 22:41:11 -0700716 }
717
Linus Torvalds1da177e2005-04-16 15:20:36 -0700718 spin_lock(&GlobalMid_Lock);
719 list_for_each(tmp, &server->pending_mid_q) {
720 mid_entry = list_entry(tmp, struct mid_q_entry, qhead);
721 if (mid_entry->midState == MID_REQUEST_SUBMITTED) {
Steve French50c2f752007-07-13 00:33:32 +0000722 cFYI(1, ("Clearing Mid 0x%x - waking up ",
723 mid_entry->mid));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700724 task_to_wake = mid_entry->tsk;
Steve French26f57362007-08-30 22:09:15 +0000725 if (task_to_wake)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700726 wake_up_process(task_to_wake);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700727 }
728 }
729 spin_unlock(&GlobalMid_Lock);
Jeff Layton14fbf502008-11-14 13:53:46 -0500730 read_unlock(&cifs_tcp_ses_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700731 /* 1/8th of sec is more than enough time for them to exit */
Steve Frenchb8643e12005-04-28 22:41:07 -0700732 msleep(125);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700733 }
734
Steve Frenchf1914012005-08-18 09:37:34 -0700735 if (!list_empty(&server->pending_mid_q)) {
Steve French50c2f752007-07-13 00:33:32 +0000736 /* mpx threads have not exited yet give them
Linus Torvalds1da177e2005-04-16 15:20:36 -0700737 at least the smb send timeout time for long ops */
Steve French31ca3bc2005-04-28 22:41:11 -0700738 /* due to delays on oplock break requests, we need
739 to wait at least 45 seconds before giving up
740 on a request getting a response and going ahead
741 and killing cifsd */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700742 cFYI(1, ("Wait for exit from demultiplex thread"));
Steve French31ca3bc2005-04-28 22:41:11 -0700743 msleep(46000);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700744 /* if threads still have not exited they are probably never
745 coming home not much else we can do but free the memory */
746 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700747
Steve French31ca3bc2005-04-28 22:41:11 -0700748 /* last chance to mark ses pointers invalid
749 if there are any pointing to this (e.g
Steve French50c2f752007-07-13 00:33:32 +0000750 if a crazy root user tried to kill cifsd
Steve French31ca3bc2005-04-28 22:41:11 -0700751 kernel thread explicitly this might happen) */
Jeff Layton14fbf502008-11-14 13:53:46 -0500752 /* BB: This shouldn't be necessary, see above */
753 read_lock(&cifs_tcp_ses_lock);
754 list_for_each(tmp, &server->smb_ses_list) {
755 ses = list_entry(tmp, struct cifsSesInfo, smb_ses_list);
756 ses->server = NULL;
Steve French31ca3bc2005-04-28 22:41:11 -0700757 }
Jeff Layton14fbf502008-11-14 13:53:46 -0500758 read_unlock(&cifs_tcp_ses_lock);
Steve French31ca3bc2005-04-28 22:41:11 -0700759
Jeff Laytonc359cf32007-11-16 22:22:06 +0000760 kfree(server->hostname);
Jeff Laytonb1c8d2b2008-10-22 13:57:07 -0400761 task_to_wake = xchg(&server->tsk, NULL);
Steve French31ca3bc2005-04-28 22:41:11 -0700762 kfree(server);
Jeff Layton93d0ec82008-08-02 08:00:48 -0400763
764 length = atomic_dec_return(&tcpSesAllocCount);
Steve French26f57362007-08-30 22:09:15 +0000765 if (length > 0)
766 mempool_resize(cifs_req_poolp, length + cifs_min_rcv,
767 GFP_KERNEL);
Steve French50c2f752007-07-13 00:33:32 +0000768
Jeff Laytonb1c8d2b2008-10-22 13:57:07 -0400769 /* if server->tsk was NULL then wait for a signal before exiting */
770 if (!task_to_wake) {
771 set_current_state(TASK_INTERRUPTIBLE);
772 while (!signal_pending(current)) {
773 schedule();
774 set_current_state(TASK_INTERRUPTIBLE);
775 }
776 set_current_state(TASK_RUNNING);
777 }
778
Jeff Layton0468a2c2008-12-01 07:09:35 -0500779 module_put_and_exit(0);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700780}
781
Jeff Laytonc359cf32007-11-16 22:22:06 +0000782/* extract the host portion of the UNC string */
783static char *
784extract_hostname(const char *unc)
785{
786 const char *src;
787 char *dst, *delim;
788 unsigned int len;
789
790 /* skip double chars at beginning of string */
791 /* BB: check validity of these bytes? */
792 src = unc + 2;
793
794 /* delimiter between hostname and sharename is always '\\' now */
795 delim = strchr(src, '\\');
796 if (!delim)
797 return ERR_PTR(-EINVAL);
798
799 len = delim - src;
800 dst = kmalloc((len + 1), GFP_KERNEL);
801 if (dst == NULL)
802 return ERR_PTR(-ENOMEM);
803
804 memcpy(dst, src, len);
805 dst[len] = '\0';
806
807 return dst;
808}
809
Linus Torvalds1da177e2005-04-16 15:20:36 -0700810static int
Steve French50c2f752007-07-13 00:33:32 +0000811cifs_parse_mount_options(char *options, const char *devname,
812 struct smb_vol *vol)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700813{
814 char *value;
815 char *data;
816 unsigned int temp_len, i, j;
817 char separator[2];
818
819 separator[0] = ',';
Steve French50c2f752007-07-13 00:33:32 +0000820 separator[1] = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700821
Linus Torvalds12e36b22006-10-13 08:09:29 -0700822 if (Local_System_Name[0] != 0)
Steve French50c2f752007-07-13 00:33:32 +0000823 memcpy(vol->source_rfc1001_name, Local_System_Name, 15);
Steve French2cd646a2006-09-28 19:43:08 +0000824 else {
Linus Torvalds12e36b22006-10-13 08:09:29 -0700825 char *nodename = utsname()->nodename;
Steve French50c2f752007-07-13 00:33:32 +0000826 int n = strnlen(nodename, 15);
827 memset(vol->source_rfc1001_name, 0x20, 15);
828 for (i = 0; i < n; i++) {
Steve French2cd646a2006-09-28 19:43:08 +0000829 /* does not have to be perfect mapping since field is
830 informational, only used for servers that do not support
831 port 445 and it can be overridden at mount time */
Linus Torvalds12e36b22006-10-13 08:09:29 -0700832 vol->source_rfc1001_name[i] = toupper(nodename[i]);
Steve French2cd646a2006-09-28 19:43:08 +0000833 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700834 }
835 vol->source_rfc1001_name[15] = 0;
Steve Frencha10faeb22005-08-22 21:38:31 -0700836 /* null target name indicates to use *SMBSERVR default called name
837 if we end up sending RFC1001 session initialize */
838 vol->target_rfc1001_name[0] = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700839 vol->linux_uid = current->uid; /* current->euid instead? */
840 vol->linux_gid = current->gid;
841 vol->dir_mode = S_IRWXUGO;
842 /* 2767 perms indicate mandatory locking support */
Steve French7505e052007-11-01 18:03:01 +0000843 vol->file_mode = (S_IRWXUGO | S_ISGID) & (~S_IXGRP);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700844
845 /* vol->retry default is 0 (i.e. "soft" limited retry not hard retry) */
Steve French4b18f2a2008-04-29 00:06:05 +0000846 vol->rw = true;
Jeremy Allisonac670552005-06-22 17:26:35 -0700847 /* default is always to request posix paths. */
848 vol->posix_paths = 1;
849
Linus Torvalds1da177e2005-04-16 15:20:36 -0700850 if (!options)
851 return 1;
852
Steve French50c2f752007-07-13 00:33:32 +0000853 if (strncmp(options, "sep=", 4) == 0) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000854 if (options[4] != 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700855 separator[0] = options[4];
856 options += 5;
857 } else {
Steve French467a8f82007-06-27 22:41:32 +0000858 cFYI(1, ("Null separator not allowed"));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700859 }
860 }
Steve French50c2f752007-07-13 00:33:32 +0000861
Linus Torvalds1da177e2005-04-16 15:20:36 -0700862 while ((data = strsep(&options, separator)) != NULL) {
863 if (!*data)
864 continue;
865 if ((value = strchr(data, '=')) != NULL)
866 *value++ = '\0';
867
Steve French50c2f752007-07-13 00:33:32 +0000868 /* Have to parse this before we parse for "user" */
869 if (strnicmp(data, "user_xattr", 10) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700870 vol->no_xattr = 0;
Steve French50c2f752007-07-13 00:33:32 +0000871 } else if (strnicmp(data, "nouser_xattr", 12) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700872 vol->no_xattr = 1;
873 } else if (strnicmp(data, "user", 4) == 0) {
Steve French4b952a92006-10-30 21:46:13 +0000874 if (!value) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700875 printk(KERN_WARNING
876 "CIFS: invalid or missing username\n");
877 return 1; /* needs_arg; */
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000878 } else if (!*value) {
Steve French4b952a92006-10-30 21:46:13 +0000879 /* null user, ie anonymous, authentication */
880 vol->nullauth = 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700881 }
882 if (strnlen(value, 200) < 200) {
883 vol->username = value;
884 } else {
885 printk(KERN_WARNING "CIFS: username too long\n");
886 return 1;
887 }
888 } else if (strnicmp(data, "pass", 4) == 0) {
889 if (!value) {
890 vol->password = NULL;
891 continue;
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000892 } else if (value[0] == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700893 /* check if string begins with double comma
894 since that would mean the password really
895 does start with a comma, and would not
896 indicate an empty string */
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000897 if (value[1] != separator[0]) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700898 vol->password = NULL;
899 continue;
900 }
901 }
902 temp_len = strlen(value);
903 /* removed password length check, NTLM passwords
904 can be arbitrarily long */
905
Steve French50c2f752007-07-13 00:33:32 +0000906 /* if comma in password, the string will be
Linus Torvalds1da177e2005-04-16 15:20:36 -0700907 prematurely null terminated. Commas in password are
908 specified across the cifs mount interface by a double
909 comma ie ,, and a comma used as in other cases ie ','
910 as a parameter delimiter/separator is single and due
911 to the strsep above is temporarily zeroed. */
912
913 /* NB: password legally can have multiple commas and
914 the only illegal character in a password is null */
915
Steve French50c2f752007-07-13 00:33:32 +0000916 if ((value[temp_len] == 0) &&
Steve French09d1db52005-04-28 22:41:08 -0700917 (value[temp_len+1] == separator[0])) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700918 /* reinsert comma */
919 value[temp_len] = separator[0];
Steve French50c2f752007-07-13 00:33:32 +0000920 temp_len += 2; /* move after second comma */
921 while (value[temp_len] != 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700922 if (value[temp_len] == separator[0]) {
Steve French50c2f752007-07-13 00:33:32 +0000923 if (value[temp_len+1] ==
Steve French09d1db52005-04-28 22:41:08 -0700924 separator[0]) {
925 /* skip second comma */
926 temp_len++;
Steve French50c2f752007-07-13 00:33:32 +0000927 } else {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700928 /* single comma indicating start
929 of next parm */
930 break;
931 }
932 }
933 temp_len++;
934 }
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000935 if (value[temp_len] == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700936 options = NULL;
937 } else {
938 value[temp_len] = 0;
939 /* point option to start of next parm */
940 options = value + temp_len + 1;
941 }
Steve French50c2f752007-07-13 00:33:32 +0000942 /* go from value to value + temp_len condensing
Linus Torvalds1da177e2005-04-16 15:20:36 -0700943 double commas to singles. Note that this ends up
944 allocating a few bytes too many, which is ok */
Pekka Enberge915fc42005-09-06 15:18:35 -0700945 vol->password = kzalloc(temp_len, GFP_KERNEL);
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000946 if (vol->password == NULL) {
Steve French50c2f752007-07-13 00:33:32 +0000947 printk(KERN_WARNING "CIFS: no memory "
948 "for password\n");
Steve French433dc242005-04-28 22:41:08 -0700949 return 1;
950 }
Steve French50c2f752007-07-13 00:33:32 +0000951 for (i = 0, j = 0; i < temp_len; i++, j++) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700952 vol->password[j] = value[i];
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000953 if (value[i] == separator[0]
Steve French09d1db52005-04-28 22:41:08 -0700954 && value[i+1] == separator[0]) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700955 /* skip second comma */
956 i++;
957 }
958 }
959 vol->password[j] = 0;
960 } else {
Pekka Enberge915fc42005-09-06 15:18:35 -0700961 vol->password = kzalloc(temp_len+1, GFP_KERNEL);
Steve Frenchfb8c4b12007-07-10 01:16:18 +0000962 if (vol->password == NULL) {
Steve French50c2f752007-07-13 00:33:32 +0000963 printk(KERN_WARNING "CIFS: no memory "
964 "for password\n");
Steve French433dc242005-04-28 22:41:08 -0700965 return 1;
966 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700967 strcpy(vol->password, value);
968 }
969 } else if (strnicmp(data, "ip", 2) == 0) {
970 if (!value || !*value) {
971 vol->UNCip = NULL;
972 } else if (strnlen(value, 35) < 35) {
973 vol->UNCip = value;
974 } else {
Steve French50c2f752007-07-13 00:33:32 +0000975 printk(KERN_WARNING "CIFS: ip address "
976 "too long\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700977 return 1;
978 }
Steve French50c2f752007-07-13 00:33:32 +0000979 } else if (strnicmp(data, "sec", 3) == 0) {
980 if (!value || !*value) {
981 cERROR(1, ("no security value specified"));
982 continue;
983 } else if (strnicmp(value, "krb5i", 5) == 0) {
984 vol->secFlg |= CIFSSEC_MAY_KRB5 |
Steve French189acaa2006-06-23 02:33:48 +0000985 CIFSSEC_MUST_SIGN;
Steve Frenchbf820672005-12-01 22:32:42 -0800986 } else if (strnicmp(value, "krb5p", 5) == 0) {
Steve French50c2f752007-07-13 00:33:32 +0000987 /* vol->secFlg |= CIFSSEC_MUST_SEAL |
988 CIFSSEC_MAY_KRB5; */
989 cERROR(1, ("Krb5 cifs privacy not supported"));
Steve Frenchbf820672005-12-01 22:32:42 -0800990 return 1;
991 } else if (strnicmp(value, "krb5", 4) == 0) {
Steve French750d1152006-06-27 06:28:30 +0000992 vol->secFlg |= CIFSSEC_MAY_KRB5;
Steve Frenchbf820672005-12-01 22:32:42 -0800993 } else if (strnicmp(value, "ntlmv2i", 7) == 0) {
Steve French750d1152006-06-27 06:28:30 +0000994 vol->secFlg |= CIFSSEC_MAY_NTLMV2 |
Steve French189acaa2006-06-23 02:33:48 +0000995 CIFSSEC_MUST_SIGN;
Steve Frenchbf820672005-12-01 22:32:42 -0800996 } else if (strnicmp(value, "ntlmv2", 6) == 0) {
Steve French750d1152006-06-27 06:28:30 +0000997 vol->secFlg |= CIFSSEC_MAY_NTLMV2;
Steve Frenchbf820672005-12-01 22:32:42 -0800998 } else if (strnicmp(value, "ntlmi", 5) == 0) {
Steve French750d1152006-06-27 06:28:30 +0000999 vol->secFlg |= CIFSSEC_MAY_NTLM |
Steve French189acaa2006-06-23 02:33:48 +00001000 CIFSSEC_MUST_SIGN;
Steve Frenchbf820672005-12-01 22:32:42 -08001001 } else if (strnicmp(value, "ntlm", 4) == 0) {
1002 /* ntlm is default so can be turned off too */
Steve French750d1152006-06-27 06:28:30 +00001003 vol->secFlg |= CIFSSEC_MAY_NTLM;
Steve Frenchbf820672005-12-01 22:32:42 -08001004 } else if (strnicmp(value, "nontlm", 6) == 0) {
Steve French189acaa2006-06-23 02:33:48 +00001005 /* BB is there a better way to do this? */
Steve French750d1152006-06-27 06:28:30 +00001006 vol->secFlg |= CIFSSEC_MAY_NTLMV2;
Steve French189acaa2006-06-23 02:33:48 +00001007#ifdef CONFIG_CIFS_WEAK_PW_HASH
1008 } else if (strnicmp(value, "lanman", 6) == 0) {
Steve French50c2f752007-07-13 00:33:32 +00001009 vol->secFlg |= CIFSSEC_MAY_LANMAN;
Steve French189acaa2006-06-23 02:33:48 +00001010#endif
Steve Frenchbf820672005-12-01 22:32:42 -08001011 } else if (strnicmp(value, "none", 4) == 0) {
Steve French189acaa2006-06-23 02:33:48 +00001012 vol->nullauth = 1;
Steve French50c2f752007-07-13 00:33:32 +00001013 } else {
1014 cERROR(1, ("bad security option: %s", value));
1015 return 1;
1016 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001017 } else if ((strnicmp(data, "unc", 3) == 0)
1018 || (strnicmp(data, "target", 6) == 0)
1019 || (strnicmp(data, "path", 4) == 0)) {
1020 if (!value || !*value) {
Steve French50c2f752007-07-13 00:33:32 +00001021 printk(KERN_WARNING "CIFS: invalid path to "
1022 "network resource\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001023 return 1; /* needs_arg; */
1024 }
1025 if ((temp_len = strnlen(value, 300)) < 300) {
Steve French50c2f752007-07-13 00:33:32 +00001026 vol->UNC = kmalloc(temp_len+1, GFP_KERNEL);
Steve French4523cc32007-04-30 20:13:06 +00001027 if (vol->UNC == NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001028 return 1;
Steve French50c2f752007-07-13 00:33:32 +00001029 strcpy(vol->UNC, value);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001030 if (strncmp(vol->UNC, "//", 2) == 0) {
1031 vol->UNC[0] = '\\';
1032 vol->UNC[1] = '\\';
Steve French50c2f752007-07-13 00:33:32 +00001033 } else if (strncmp(vol->UNC, "\\\\", 2) != 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001034 printk(KERN_WARNING
Steve French50c2f752007-07-13 00:33:32 +00001035 "CIFS: UNC Path does not begin "
1036 "with // or \\\\ \n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001037 return 1;
1038 }
1039 } else {
1040 printk(KERN_WARNING "CIFS: UNC name too long\n");
1041 return 1;
1042 }
1043 } else if ((strnicmp(data, "domain", 3) == 0)
1044 || (strnicmp(data, "workgroup", 5) == 0)) {
1045 if (!value || !*value) {
1046 printk(KERN_WARNING "CIFS: invalid domain name\n");
1047 return 1; /* needs_arg; */
1048 }
1049 /* BB are there cases in which a comma can be valid in
1050 a domain name and need special handling? */
Steve French39798772006-05-31 22:40:51 +00001051 if (strnlen(value, 256) < 256) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001052 vol->domainname = value;
1053 cFYI(1, ("Domain name set"));
1054 } else {
Steve French50c2f752007-07-13 00:33:32 +00001055 printk(KERN_WARNING "CIFS: domain name too "
1056 "long\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001057 return 1;
1058 }
Steve French50c2f752007-07-13 00:33:32 +00001059 } else if (strnicmp(data, "prefixpath", 10) == 0) {
1060 if (!value || !*value) {
1061 printk(KERN_WARNING
1062 "CIFS: invalid path prefix\n");
1063 return 1; /* needs_argument */
1064 }
1065 if ((temp_len = strnlen(value, 1024)) < 1024) {
Steve French4523cc32007-04-30 20:13:06 +00001066 if (value[0] != '/')
Steve French2fe87f02006-09-21 07:02:52 +00001067 temp_len++; /* missing leading slash */
Steve French50c2f752007-07-13 00:33:32 +00001068 vol->prepath = kmalloc(temp_len+1, GFP_KERNEL);
1069 if (vol->prepath == NULL)
1070 return 1;
Steve French4523cc32007-04-30 20:13:06 +00001071 if (value[0] != '/') {
Steve French2fe87f02006-09-21 07:02:52 +00001072 vol->prepath[0] = '/';
Steve French50c2f752007-07-13 00:33:32 +00001073 strcpy(vol->prepath+1, value);
Steve French2fe87f02006-09-21 07:02:52 +00001074 } else
Steve French50c2f752007-07-13 00:33:32 +00001075 strcpy(vol->prepath, value);
1076 cFYI(1, ("prefix path %s", vol->prepath));
1077 } else {
1078 printk(KERN_WARNING "CIFS: prefix too long\n");
1079 return 1;
1080 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001081 } else if (strnicmp(data, "iocharset", 9) == 0) {
1082 if (!value || !*value) {
Steve French63135e02007-07-17 17:34:02 +00001083 printk(KERN_WARNING "CIFS: invalid iocharset "
1084 "specified\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001085 return 1; /* needs_arg; */
1086 }
1087 if (strnlen(value, 65) < 65) {
Steve French50c2f752007-07-13 00:33:32 +00001088 if (strnicmp(value, "default", 7))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001089 vol->iocharset = value;
Steve French50c2f752007-07-13 00:33:32 +00001090 /* if iocharset not set then load_nls_default
1091 is used by caller */
1092 cFYI(1, ("iocharset set to %s", value));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001093 } else {
Steve French63135e02007-07-17 17:34:02 +00001094 printk(KERN_WARNING "CIFS: iocharset name "
1095 "too long.\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001096 return 1;
1097 }
1098 } else if (strnicmp(data, "uid", 3) == 0) {
1099 if (value && *value) {
1100 vol->linux_uid =
1101 simple_strtoul(value, &value, 0);
Steve French4523cc32007-04-30 20:13:06 +00001102 vol->override_uid = 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001103 }
1104 } else if (strnicmp(data, "gid", 3) == 0) {
1105 if (value && *value) {
1106 vol->linux_gid =
1107 simple_strtoul(value, &value, 0);
Steve French4523cc32007-04-30 20:13:06 +00001108 vol->override_gid = 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001109 }
1110 } else if (strnicmp(data, "file_mode", 4) == 0) {
1111 if (value && *value) {
1112 vol->file_mode =
1113 simple_strtoul(value, &value, 0);
1114 }
1115 } else if (strnicmp(data, "dir_mode", 4) == 0) {
1116 if (value && *value) {
1117 vol->dir_mode =
1118 simple_strtoul(value, &value, 0);
1119 }
1120 } else if (strnicmp(data, "dirmode", 4) == 0) {
1121 if (value && *value) {
1122 vol->dir_mode =
1123 simple_strtoul(value, &value, 0);
1124 }
1125 } else if (strnicmp(data, "port", 4) == 0) {
1126 if (value && *value) {
1127 vol->port =
1128 simple_strtoul(value, &value, 0);
1129 }
1130 } else if (strnicmp(data, "rsize", 5) == 0) {
1131 if (value && *value) {
1132 vol->rsize =
1133 simple_strtoul(value, &value, 0);
1134 }
1135 } else if (strnicmp(data, "wsize", 5) == 0) {
1136 if (value && *value) {
1137 vol->wsize =
1138 simple_strtoul(value, &value, 0);
1139 }
1140 } else if (strnicmp(data, "sockopt", 5) == 0) {
1141 if (value && *value) {
1142 vol->sockopt =
1143 simple_strtoul(value, &value, 0);
1144 }
1145 } else if (strnicmp(data, "netbiosname", 4) == 0) {
1146 if (!value || !*value || (*value == ' ')) {
Steve French63135e02007-07-17 17:34:02 +00001147 cFYI(1, ("invalid (empty) netbiosname"));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001148 } else {
Steve French50c2f752007-07-13 00:33:32 +00001149 memset(vol->source_rfc1001_name, 0x20, 15);
1150 for (i = 0; i < 15; i++) {
1151 /* BB are there cases in which a comma can be
Linus Torvalds1da177e2005-04-16 15:20:36 -07001152 valid in this workstation netbios name (and need
1153 special handling)? */
1154
1155 /* We do not uppercase netbiosname for user */
Steve French50c2f752007-07-13 00:33:32 +00001156 if (value[i] == 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001157 break;
Steve French50c2f752007-07-13 00:33:32 +00001158 else
1159 vol->source_rfc1001_name[i] =
1160 value[i];
Linus Torvalds1da177e2005-04-16 15:20:36 -07001161 }
1162 /* The string has 16th byte zero still from
1163 set at top of the function */
Steve French50c2f752007-07-13 00:33:32 +00001164 if ((i == 15) && (value[i] != 0))
1165 printk(KERN_WARNING "CIFS: netbiosname"
1166 " longer than 15 truncated.\n");
Steve Frencha10faeb22005-08-22 21:38:31 -07001167 }
1168 } else if (strnicmp(data, "servern", 7) == 0) {
1169 /* servernetbiosname specified override *SMBSERVER */
1170 if (!value || !*value || (*value == ' ')) {
Steve French467a8f82007-06-27 22:41:32 +00001171 cFYI(1, ("empty server netbiosname specified"));
Steve Frencha10faeb22005-08-22 21:38:31 -07001172 } else {
1173 /* last byte, type, is 0x20 for servr type */
Steve French50c2f752007-07-13 00:33:32 +00001174 memset(vol->target_rfc1001_name, 0x20, 16);
Steve Frencha10faeb22005-08-22 21:38:31 -07001175
Steve French50c2f752007-07-13 00:33:32 +00001176 for (i = 0; i < 15; i++) {
Steve Frencha10faeb22005-08-22 21:38:31 -07001177 /* BB are there cases in which a comma can be
Steve French50c2f752007-07-13 00:33:32 +00001178 valid in this workstation netbios name
1179 (and need special handling)? */
Steve Frencha10faeb22005-08-22 21:38:31 -07001180
Steve French50c2f752007-07-13 00:33:32 +00001181 /* user or mount helper must uppercase
1182 the netbiosname */
1183 if (value[i] == 0)
Steve Frencha10faeb22005-08-22 21:38:31 -07001184 break;
1185 else
Steve French50c2f752007-07-13 00:33:32 +00001186 vol->target_rfc1001_name[i] =
1187 value[i];
Steve Frencha10faeb22005-08-22 21:38:31 -07001188 }
1189 /* The string has 16th byte zero still from
1190 set at top of the function */
Steve French50c2f752007-07-13 00:33:32 +00001191 if ((i == 15) && (value[i] != 0))
1192 printk(KERN_WARNING "CIFS: server net"
1193 "biosname longer than 15 truncated.\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001194 }
1195 } else if (strnicmp(data, "credentials", 4) == 0) {
1196 /* ignore */
1197 } else if (strnicmp(data, "version", 3) == 0) {
1198 /* ignore */
Steve French50c2f752007-07-13 00:33:32 +00001199 } else if (strnicmp(data, "guest", 5) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001200 /* ignore */
1201 } else if (strnicmp(data, "rw", 2) == 0) {
Steve French4b18f2a2008-04-29 00:06:05 +00001202 vol->rw = true;
Steve Frenchedf1ae42008-10-29 00:47:57 +00001203 } else if (strnicmp(data, "noblocksend", 11) == 0) {
1204 vol->noblocksnd = 1;
1205 } else if (strnicmp(data, "noautotune", 10) == 0) {
1206 vol->noautotune = 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001207 } else if ((strnicmp(data, "suid", 4) == 0) ||
1208 (strnicmp(data, "nosuid", 6) == 0) ||
1209 (strnicmp(data, "exec", 4) == 0) ||
1210 (strnicmp(data, "noexec", 6) == 0) ||
1211 (strnicmp(data, "nodev", 5) == 0) ||
1212 (strnicmp(data, "noauto", 6) == 0) ||
1213 (strnicmp(data, "dev", 3) == 0)) {
1214 /* The mount tool or mount.cifs helper (if present)
Steve French50c2f752007-07-13 00:33:32 +00001215 uses these opts to set flags, and the flags are read
1216 by the kernel vfs layer before we get here (ie
1217 before read super) so there is no point trying to
1218 parse these options again and set anything and it
1219 is ok to just ignore them */
Linus Torvalds1da177e2005-04-16 15:20:36 -07001220 continue;
1221 } else if (strnicmp(data, "ro", 2) == 0) {
Steve French4b18f2a2008-04-29 00:06:05 +00001222 vol->rw = false;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001223 } else if (strnicmp(data, "hard", 4) == 0) {
1224 vol->retry = 1;
1225 } else if (strnicmp(data, "soft", 4) == 0) {
1226 vol->retry = 0;
1227 } else if (strnicmp(data, "perm", 4) == 0) {
1228 vol->noperm = 0;
1229 } else if (strnicmp(data, "noperm", 6) == 0) {
1230 vol->noperm = 1;
Steve French6a0b4822005-04-28 22:41:05 -07001231 } else if (strnicmp(data, "mapchars", 8) == 0) {
1232 vol->remap = 1;
1233 } else if (strnicmp(data, "nomapchars", 10) == 0) {
1234 vol->remap = 0;
Steve French50c2f752007-07-13 00:33:32 +00001235 } else if (strnicmp(data, "sfu", 3) == 0) {
1236 vol->sfu_emul = 1;
1237 } else if (strnicmp(data, "nosfu", 5) == 0) {
1238 vol->sfu_emul = 0;
Steve French2c1b8612008-10-16 18:35:21 +00001239 } else if (strnicmp(data, "nodfs", 5) == 0) {
1240 vol->nodfs = 1;
Jeremy Allisonac670552005-06-22 17:26:35 -07001241 } else if (strnicmp(data, "posixpaths", 10) == 0) {
1242 vol->posix_paths = 1;
1243 } else if (strnicmp(data, "noposixpaths", 12) == 0) {
1244 vol->posix_paths = 0;
Steve Frenchc18c8422007-07-18 23:21:09 +00001245 } else if (strnicmp(data, "nounix", 6) == 0) {
1246 vol->no_linux_ext = 1;
1247 } else if (strnicmp(data, "nolinux", 7) == 0) {
1248 vol->no_linux_ext = 1;
Steve French50c2f752007-07-13 00:33:32 +00001249 } else if ((strnicmp(data, "nocase", 6) == 0) ||
Steve Frencha10faeb22005-08-22 21:38:31 -07001250 (strnicmp(data, "ignorecase", 10) == 0)) {
Steve French50c2f752007-07-13 00:33:32 +00001251 vol->nocase = 1;
Steve Frenchc46fa8a2005-08-18 20:49:57 -07001252 } else if (strnicmp(data, "brl", 3) == 0) {
1253 vol->nobrl = 0;
Steve French50c2f752007-07-13 00:33:32 +00001254 } else if ((strnicmp(data, "nobrl", 5) == 0) ||
Steve French1c955182005-08-30 20:58:07 -07001255 (strnicmp(data, "nolock", 6) == 0)) {
Steve Frenchc46fa8a2005-08-18 20:49:57 -07001256 vol->nobrl = 1;
Steve Frenchd3485d32005-08-19 11:04:29 -07001257 /* turn off mandatory locking in mode
1258 if remote locking is turned off since the
1259 local vfs will do advisory */
Steve French50c2f752007-07-13 00:33:32 +00001260 if (vol->file_mode ==
1261 (S_IALLUGO & ~(S_ISUID | S_IXGRP)))
Steve Frenchd3485d32005-08-19 11:04:29 -07001262 vol->file_mode = S_IALLUGO;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001263 } else if (strnicmp(data, "setuids", 7) == 0) {
1264 vol->setuids = 1;
1265 } else if (strnicmp(data, "nosetuids", 9) == 0) {
1266 vol->setuids = 0;
Jeff Laytond0a9c072008-05-12 22:23:49 +00001267 } else if (strnicmp(data, "dynperm", 7) == 0) {
1268 vol->dynperm = true;
1269 } else if (strnicmp(data, "nodynperm", 9) == 0) {
1270 vol->dynperm = false;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001271 } else if (strnicmp(data, "nohard", 6) == 0) {
1272 vol->retry = 0;
1273 } else if (strnicmp(data, "nosoft", 6) == 0) {
1274 vol->retry = 1;
1275 } else if (strnicmp(data, "nointr", 6) == 0) {
1276 vol->intr = 0;
1277 } else if (strnicmp(data, "intr", 4) == 0) {
1278 vol->intr = 1;
Steve French50c2f752007-07-13 00:33:32 +00001279 } else if (strnicmp(data, "serverino", 7) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001280 vol->server_ino = 1;
Steve French50c2f752007-07-13 00:33:32 +00001281 } else if (strnicmp(data, "noserverino", 9) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001282 vol->server_ino = 0;
Steve French50c2f752007-07-13 00:33:32 +00001283 } else if (strnicmp(data, "cifsacl", 7) == 0) {
Steve French0a4b92c2006-01-12 15:44:21 -08001284 vol->cifs_acl = 1;
1285 } else if (strnicmp(data, "nocifsacl", 9) == 0) {
1286 vol->cifs_acl = 0;
Steve French50c2f752007-07-13 00:33:32 +00001287 } else if (strnicmp(data, "acl", 3) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001288 vol->no_psx_acl = 0;
Steve French50c2f752007-07-13 00:33:32 +00001289 } else if (strnicmp(data, "noacl", 5) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001290 vol->no_psx_acl = 1;
Steve French84210e92008-10-23 04:42:37 +00001291#ifdef CONFIG_CIFS_EXPERIMENTAL
1292 } else if (strnicmp(data, "locallease", 6) == 0) {
1293 vol->local_lease = 1;
1294#endif
Steve French50c2f752007-07-13 00:33:32 +00001295 } else if (strnicmp(data, "sign", 4) == 0) {
Steve French750d1152006-06-27 06:28:30 +00001296 vol->secFlg |= CIFSSEC_MUST_SIGN;
Steve French95b1cb92008-05-15 16:44:38 +00001297 } else if (strnicmp(data, "seal", 4) == 0) {
1298 /* we do not do the following in secFlags because seal
1299 is a per tree connection (mount) not a per socket
1300 or per-smb connection option in the protocol */
1301 /* vol->secFlg |= CIFSSEC_MUST_SEAL; */
1302 vol->seal = 1;
Steve French50c2f752007-07-13 00:33:32 +00001303 } else if (strnicmp(data, "direct", 6) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001304 vol->direct_io = 1;
Steve French50c2f752007-07-13 00:33:32 +00001305 } else if (strnicmp(data, "forcedirectio", 13) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001306 vol->direct_io = 1;
Steve French50c2f752007-07-13 00:33:32 +00001307 } else if (strnicmp(data, "in6_addr", 8) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001308 if (!value || !*value) {
1309 vol->in6_addr = NULL;
1310 } else if (strnlen(value, 49) == 48) {
1311 vol->in6_addr = value;
1312 } else {
Steve French50c2f752007-07-13 00:33:32 +00001313 printk(KERN_WARNING "CIFS: ip v6 address not "
1314 "48 characters long\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001315 return 1;
1316 }
1317 } else if (strnicmp(data, "noac", 4) == 0) {
Steve French50c2f752007-07-13 00:33:32 +00001318 printk(KERN_WARNING "CIFS: Mount option noac not "
1319 "supported. Instead set "
1320 "/proc/fs/cifs/LookupCacheEnabled to 0\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001321 } else
Steve French50c2f752007-07-13 00:33:32 +00001322 printk(KERN_WARNING "CIFS: Unknown mount option %s\n",
1323 data);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001324 }
1325 if (vol->UNC == NULL) {
Steve French4523cc32007-04-30 20:13:06 +00001326 if (devname == NULL) {
Steve French50c2f752007-07-13 00:33:32 +00001327 printk(KERN_WARNING "CIFS: Missing UNC name for mount "
1328 "target\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001329 return 1;
1330 }
1331 if ((temp_len = strnlen(devname, 300)) < 300) {
Steve French50c2f752007-07-13 00:33:32 +00001332 vol->UNC = kmalloc(temp_len+1, GFP_KERNEL);
Steve French4523cc32007-04-30 20:13:06 +00001333 if (vol->UNC == NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001334 return 1;
Steve French50c2f752007-07-13 00:33:32 +00001335 strcpy(vol->UNC, devname);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001336 if (strncmp(vol->UNC, "//", 2) == 0) {
1337 vol->UNC[0] = '\\';
1338 vol->UNC[1] = '\\';
1339 } else if (strncmp(vol->UNC, "\\\\", 2) != 0) {
Steve French50c2f752007-07-13 00:33:32 +00001340 printk(KERN_WARNING "CIFS: UNC Path does not "
1341 "begin with // or \\\\ \n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001342 return 1;
1343 }
Igor Mammedov7c5e6282008-05-08 20:48:42 +00001344 value = strpbrk(vol->UNC+2, "/\\");
1345 if (value)
1346 *value = '\\';
Linus Torvalds1da177e2005-04-16 15:20:36 -07001347 } else {
1348 printk(KERN_WARNING "CIFS: UNC name too long\n");
1349 return 1;
1350 }
1351 }
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001352 if (vol->UNCip == NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001353 vol->UNCip = &vol->UNC[2];
1354
1355 return 0;
1356}
1357
Jeff Laytone7ddee92008-11-14 13:44:38 -05001358static struct TCP_Server_Info *
1359cifs_find_tcp_session(struct sockaddr *addr)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001360{
1361 struct list_head *tmp;
Jeff Laytone7ddee92008-11-14 13:44:38 -05001362 struct TCP_Server_Info *server;
1363 struct sockaddr_in *addr4 = (struct sockaddr_in *) addr;
1364 struct sockaddr_in6 *addr6 = (struct sockaddr_in6 *) addr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001365
Jeff Laytone7ddee92008-11-14 13:44:38 -05001366 write_lock(&cifs_tcp_ses_lock);
1367 list_for_each(tmp, &cifs_tcp_ses_list) {
1368 server = list_entry(tmp, struct TCP_Server_Info,
1369 tcp_ses_list);
Jeff Laytone7ddee92008-11-14 13:44:38 -05001370 /*
1371 * the demux thread can exit on its own while still in CifsNew
1372 * so don't accept any sockets in that state. Since the
1373 * tcpStatus never changes back to CifsNew it's safe to check
1374 * for this without a lock.
1375 */
1376 if (server->tcpStatus == CifsNew)
Cyrill Gorcunov1b20d672008-05-09 18:17:21 +00001377 continue;
Steve French50c2f752007-07-13 00:33:32 +00001378
Jeff Laytone7ddee92008-11-14 13:44:38 -05001379 if (addr->sa_family == AF_INET &&
1380 (addr4->sin_addr.s_addr !=
1381 server->addr.sockAddr.sin_addr.s_addr))
1382 continue;
1383 else if (addr->sa_family == AF_INET6 &&
1384 memcmp(&server->addr.sockAddr6.sin6_addr,
1385 &addr6->sin6_addr, sizeof(addr6->sin6_addr)))
1386 continue;
Steve French50c2f752007-07-13 00:33:32 +00001387
Jeff Laytone7ddee92008-11-14 13:44:38 -05001388 ++server->srv_count;
1389 write_unlock(&cifs_tcp_ses_lock);
Steve Frenchd82c2df2008-11-15 00:07:26 +00001390 cFYI(1, ("Existing tcp session with server found"));
Jeff Laytone7ddee92008-11-14 13:44:38 -05001391 return server;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001392 }
Jeff Laytone7ddee92008-11-14 13:44:38 -05001393 write_unlock(&cifs_tcp_ses_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001394 return NULL;
1395}
1396
Jeff Layton14fbf502008-11-14 13:53:46 -05001397static void
Jeff Laytone7ddee92008-11-14 13:44:38 -05001398cifs_put_tcp_session(struct TCP_Server_Info *server)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001399{
Jeff Laytone7ddee92008-11-14 13:44:38 -05001400 struct task_struct *task;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001401
Jeff Laytone7ddee92008-11-14 13:44:38 -05001402 write_lock(&cifs_tcp_ses_lock);
1403 if (--server->srv_count > 0) {
1404 write_unlock(&cifs_tcp_ses_lock);
1405 return;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001406 }
Steve Frenchdea570e02008-05-06 22:05:51 +00001407
Jeff Laytone7ddee92008-11-14 13:44:38 -05001408 list_del_init(&server->tcp_ses_list);
1409 write_unlock(&cifs_tcp_ses_lock);
1410
1411 spin_lock(&GlobalMid_Lock);
1412 server->tcpStatus = CifsExiting;
1413 spin_unlock(&GlobalMid_Lock);
1414
1415 task = xchg(&server->tsk, NULL);
1416 if (task)
1417 force_sig(SIGKILL, task);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001418}
1419
Jeff Layton63c038c2008-12-01 18:41:46 -05001420static struct TCP_Server_Info *
1421cifs_get_tcp_session(struct smb_vol *volume_info)
1422{
1423 struct TCP_Server_Info *tcp_ses = NULL;
1424 struct sockaddr addr;
1425 struct sockaddr_in *sin_server = (struct sockaddr_in *) &addr;
1426 struct sockaddr_in6 *sin_server6 = (struct sockaddr_in6 *) &addr;
1427 int rc;
1428
1429 memset(&addr, 0, sizeof(struct sockaddr));
1430
1431 if (volume_info->UNCip && volume_info->UNC) {
1432 rc = cifs_inet_pton(AF_INET, volume_info->UNCip,
1433 &sin_server->sin_addr.s_addr);
1434
1435 if (rc <= 0) {
1436 /* not ipv4 address, try ipv6 */
1437 rc = cifs_inet_pton(AF_INET6, volume_info->UNCip,
1438 &sin_server6->sin6_addr.in6_u);
1439 if (rc > 0)
1440 addr.sa_family = AF_INET6;
1441 } else {
1442 addr.sa_family = AF_INET;
1443 }
1444
1445 if (rc <= 0) {
1446 /* we failed translating address */
1447 rc = -EINVAL;
1448 goto out_err;
1449 }
1450
1451 cFYI(1, ("UNC: %s ip: %s", volume_info->UNC,
1452 volume_info->UNCip));
1453 } else if (volume_info->UNCip) {
1454 /* BB using ip addr as tcp_ses name to connect to the
1455 DFS root below */
1456 cERROR(1, ("Connecting to DFS root not implemented yet"));
1457 rc = -EINVAL;
1458 goto out_err;
1459 } else /* which tcp_sess DFS root would we conect to */ {
1460 cERROR(1,
1461 ("CIFS mount error: No UNC path (e.g. -o "
1462 "unc=//192.168.1.100/public) specified"));
1463 rc = -EINVAL;
1464 goto out_err;
1465 }
1466
1467 /* see if we already have a matching tcp_ses */
1468 tcp_ses = cifs_find_tcp_session(&addr);
1469 if (tcp_ses)
1470 return tcp_ses;
1471
1472 tcp_ses = kzalloc(sizeof(struct TCP_Server_Info), GFP_KERNEL);
1473 if (!tcp_ses) {
1474 rc = -ENOMEM;
1475 goto out_err;
1476 }
1477
1478 tcp_ses->hostname = extract_hostname(volume_info->UNC);
1479 if (IS_ERR(tcp_ses->hostname)) {
1480 rc = PTR_ERR(tcp_ses->hostname);
1481 goto out_err;
1482 }
1483
1484 tcp_ses->noblocksnd = volume_info->noblocksnd;
1485 tcp_ses->noautotune = volume_info->noautotune;
1486 atomic_set(&tcp_ses->inFlight, 0);
1487 init_waitqueue_head(&tcp_ses->response_q);
1488 init_waitqueue_head(&tcp_ses->request_q);
1489 INIT_LIST_HEAD(&tcp_ses->pending_mid_q);
1490 mutex_init(&tcp_ses->srv_mutex);
1491 memcpy(tcp_ses->workstation_RFC1001_name,
1492 volume_info->source_rfc1001_name, RFC1001_NAME_LEN_WITH_NULL);
1493 memcpy(tcp_ses->server_RFC1001_name,
1494 volume_info->target_rfc1001_name, RFC1001_NAME_LEN_WITH_NULL);
1495 tcp_ses->sequence_number = 0;
1496 INIT_LIST_HEAD(&tcp_ses->tcp_ses_list);
1497 INIT_LIST_HEAD(&tcp_ses->smb_ses_list);
1498
1499 /*
1500 * at this point we are the only ones with the pointer
1501 * to the struct since the kernel thread not created yet
1502 * no need to spinlock this init of tcpStatus or srv_count
1503 */
1504 tcp_ses->tcpStatus = CifsNew;
1505 ++tcp_ses->srv_count;
1506
1507 if (addr.sa_family == AF_INET6) {
1508 cFYI(1, ("attempting ipv6 connect"));
1509 /* BB should we allow ipv6 on port 139? */
1510 /* other OS never observed in Wild doing 139 with v6 */
1511 memcpy(&tcp_ses->addr.sockAddr6, sin_server6,
1512 sizeof(struct sockaddr_in6));
1513 sin_server6->sin6_port = htons(volume_info->port);
1514 rc = ipv6_connect(sin_server6, &tcp_ses->ssocket,
1515 volume_info->noblocksnd);
1516 } else {
1517 memcpy(&tcp_ses->addr.sockAddr, sin_server,
1518 sizeof(struct sockaddr_in));
1519 sin_server->sin_port = htons(volume_info->port);
1520 rc = ipv4_connect(sin_server, &tcp_ses->ssocket,
1521 volume_info->source_rfc1001_name,
1522 volume_info->target_rfc1001_name,
1523 volume_info->noblocksnd,
1524 volume_info->noautotune);
1525 }
1526 if (rc < 0) {
1527 cERROR(1, ("Error connecting to socket. Aborting operation"));
1528 goto out_err;
1529 }
1530
1531 /*
1532 * since we're in a cifs function already, we know that
1533 * this will succeed. No need for try_module_get().
1534 */
1535 __module_get(THIS_MODULE);
1536 tcp_ses->tsk = kthread_run((void *)(void *)cifs_demultiplex_thread,
1537 tcp_ses, "cifsd");
1538 if (IS_ERR(tcp_ses->tsk)) {
1539 rc = PTR_ERR(tcp_ses->tsk);
1540 cERROR(1, ("error %d create cifsd thread", rc));
1541 module_put(THIS_MODULE);
1542 goto out_err;
1543 }
1544
1545 /* thread spawned, put it on the list */
1546 write_lock(&cifs_tcp_ses_lock);
1547 list_add(&tcp_ses->tcp_ses_list, &cifs_tcp_ses_list);
1548 write_unlock(&cifs_tcp_ses_lock);
1549
1550 return tcp_ses;
1551
1552out_err:
1553 if (tcp_ses) {
1554 kfree(tcp_ses->hostname);
1555 if (tcp_ses->ssocket)
1556 sock_release(tcp_ses->ssocket);
1557 kfree(tcp_ses);
1558 }
1559 return ERR_PTR(rc);
1560}
1561
Jeff Layton14fbf502008-11-14 13:53:46 -05001562static struct cifsSesInfo *
1563cifs_find_smb_ses(struct TCP_Server_Info *server, char *username)
1564{
1565 struct list_head *tmp;
1566 struct cifsSesInfo *ses;
1567
1568 write_lock(&cifs_tcp_ses_lock);
1569 list_for_each(tmp, &server->smb_ses_list) {
1570 ses = list_entry(tmp, struct cifsSesInfo, smb_ses_list);
1571 if (strncmp(ses->userName, username, MAX_USERNAME_SIZE))
1572 continue;
1573
1574 ++ses->ses_count;
1575 write_unlock(&cifs_tcp_ses_lock);
1576 return ses;
1577 }
1578 write_unlock(&cifs_tcp_ses_lock);
1579 return NULL;
1580}
1581
1582static void
1583cifs_put_smb_ses(struct cifsSesInfo *ses)
1584{
1585 int xid;
1586 struct TCP_Server_Info *server = ses->server;
1587
1588 write_lock(&cifs_tcp_ses_lock);
1589 if (--ses->ses_count > 0) {
1590 write_unlock(&cifs_tcp_ses_lock);
1591 return;
1592 }
1593
1594 list_del_init(&ses->smb_ses_list);
1595 write_unlock(&cifs_tcp_ses_lock);
1596
1597 if (ses->status == CifsGood) {
1598 xid = GetXid();
1599 CIFSSMBLogoff(xid, ses);
1600 _FreeXid(xid);
1601 }
1602 sesInfoFree(ses);
1603 cifs_put_tcp_session(server);
1604}
1605
Jeff Laytonf1987b42008-11-15 11:12:47 -05001606static struct cifsTconInfo *
1607cifs_find_tcon(struct cifsSesInfo *ses, const char *unc)
1608{
1609 struct list_head *tmp;
1610 struct cifsTconInfo *tcon;
1611
1612 write_lock(&cifs_tcp_ses_lock);
1613 list_for_each(tmp, &ses->tcon_list) {
1614 tcon = list_entry(tmp, struct cifsTconInfo, tcon_list);
1615 if (tcon->tidStatus == CifsExiting)
1616 continue;
1617 if (strncmp(tcon->treeName, unc, MAX_TREE_SIZE))
1618 continue;
1619
1620 ++tcon->tc_count;
1621 write_unlock(&cifs_tcp_ses_lock);
1622 return tcon;
1623 }
1624 write_unlock(&cifs_tcp_ses_lock);
1625 return NULL;
1626}
1627
1628static void
1629cifs_put_tcon(struct cifsTconInfo *tcon)
1630{
1631 int xid;
1632 struct cifsSesInfo *ses = tcon->ses;
1633
1634 write_lock(&cifs_tcp_ses_lock);
1635 if (--tcon->tc_count > 0) {
1636 write_unlock(&cifs_tcp_ses_lock);
1637 return;
1638 }
1639
1640 list_del_init(&tcon->tcon_list);
1641 write_unlock(&cifs_tcp_ses_lock);
1642
1643 xid = GetXid();
1644 CIFSSMBTDis(xid, tcon);
1645 _FreeXid(xid);
1646
1647 DeleteTconOplockQEntries(tcon);
1648 tconInfoFree(tcon);
1649 cifs_put_smb_ses(ses);
1650}
1651
Linus Torvalds1da177e2005-04-16 15:20:36 -07001652int
Steve French50c2f752007-07-13 00:33:32 +00001653get_dfs_path(int xid, struct cifsSesInfo *pSesInfo, const char *old_path,
1654 const struct nls_table *nls_codepage, unsigned int *pnum_referrals,
Steve French366781c2008-01-25 10:12:41 +00001655 struct dfs_info3_param **preferrals, int remap)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001656{
1657 char *temp_unc;
1658 int rc = 0;
1659
1660 *pnum_referrals = 0;
Steve French366781c2008-01-25 10:12:41 +00001661 *preferrals = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001662
1663 if (pSesInfo->ipc_tid == 0) {
1664 temp_unc = kmalloc(2 /* for slashes */ +
Steve French50c2f752007-07-13 00:33:32 +00001665 strnlen(pSesInfo->serverName,
1666 SERVER_NAME_LEN_WITH_NULL * 2)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001667 + 1 + 4 /* slash IPC$ */ + 2,
1668 GFP_KERNEL);
1669 if (temp_unc == NULL)
1670 return -ENOMEM;
1671 temp_unc[0] = '\\';
1672 temp_unc[1] = '\\';
1673 strcpy(temp_unc + 2, pSesInfo->serverName);
1674 strcpy(temp_unc + 2 + strlen(pSesInfo->serverName), "\\IPC$");
1675 rc = CIFSTCon(xid, pSesInfo, temp_unc, NULL, nls_codepage);
1676 cFYI(1,
Steve French50c2f752007-07-13 00:33:32 +00001677 ("CIFS Tcon rc = %d ipc_tid = %d", rc, pSesInfo->ipc_tid));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001678 kfree(temp_unc);
1679 }
1680 if (rc == 0)
Steve Frenchc2cf07d2008-05-15 06:20:02 +00001681 rc = CIFSGetDFSRefer(xid, pSesInfo, old_path, preferrals,
Steve French737b7582005-04-28 22:41:06 -07001682 pnum_referrals, nls_codepage, remap);
Steve French366781c2008-01-25 10:12:41 +00001683 /* BB map targetUNCs to dfs_info3 structures, here or
1684 in CIFSGetDFSRefer BB */
Linus Torvalds1da177e2005-04-16 15:20:36 -07001685
1686 return rc;
1687}
1688
Jeff Layton09e50d52008-07-23 10:11:19 -04001689#ifdef CONFIG_DEBUG_LOCK_ALLOC
1690static struct lock_class_key cifs_key[2];
1691static struct lock_class_key cifs_slock_key[2];
1692
1693static inline void
1694cifs_reclassify_socket4(struct socket *sock)
1695{
1696 struct sock *sk = sock->sk;
1697 BUG_ON(sock_owned_by_user(sk));
1698 sock_lock_init_class_and_name(sk, "slock-AF_INET-CIFS",
1699 &cifs_slock_key[0], "sk_lock-AF_INET-CIFS", &cifs_key[0]);
1700}
1701
1702static inline void
1703cifs_reclassify_socket6(struct socket *sock)
1704{
1705 struct sock *sk = sock->sk;
1706 BUG_ON(sock_owned_by_user(sk));
1707 sock_lock_init_class_and_name(sk, "slock-AF_INET6-CIFS",
1708 &cifs_slock_key[1], "sk_lock-AF_INET6-CIFS", &cifs_key[1]);
1709}
1710#else
1711static inline void
1712cifs_reclassify_socket4(struct socket *sock)
1713{
1714}
1715
1716static inline void
1717cifs_reclassify_socket6(struct socket *sock)
1718{
1719}
1720#endif
1721
Linus Torvalds1da177e2005-04-16 15:20:36 -07001722/* See RFC1001 section 14 on representation of Netbios names */
Steve French50c2f752007-07-13 00:33:32 +00001723static void rfc1002mangle(char *target, char *source, unsigned int length)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001724{
Steve French50c2f752007-07-13 00:33:32 +00001725 unsigned int i, j;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001726
Steve French50c2f752007-07-13 00:33:32 +00001727 for (i = 0, j = 0; i < (length); i++) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001728 /* mask a nibble at a time and encode */
1729 target[j] = 'A' + (0x0F & (source[i] >> 4));
1730 target[j+1] = 'A' + (0x0F & source[i]);
Steve French50c2f752007-07-13 00:33:32 +00001731 j += 2;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001732 }
1733
1734}
1735
1736
1737static int
Steve French50c2f752007-07-13 00:33:32 +00001738ipv4_connect(struct sockaddr_in *psin_server, struct socket **csocket,
Steve Frenchedf1ae42008-10-29 00:47:57 +00001739 char *netbios_name, char *target_name,
1740 bool noblocksnd, bool noautotune)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001741{
1742 int rc = 0;
1743 int connected = 0;
1744 __be16 orig_port = 0;
1745
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001746 if (*csocket == NULL) {
Steve French50c2f752007-07-13 00:33:32 +00001747 rc = sock_create_kern(PF_INET, SOCK_STREAM,
1748 IPPROTO_TCP, csocket);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001749 if (rc < 0) {
Steve French50c2f752007-07-13 00:33:32 +00001750 cERROR(1, ("Error %d creating socket", rc));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001751 *csocket = NULL;
1752 return rc;
1753 } else {
1754 /* BB other socket options to set KEEPALIVE, NODELAY? */
Steve French467a8f82007-06-27 22:41:32 +00001755 cFYI(1, ("Socket created"));
Steve French50c2f752007-07-13 00:33:32 +00001756 (*csocket)->sk->sk_allocation = GFP_NOFS;
Jeff Layton09e50d52008-07-23 10:11:19 -04001757 cifs_reclassify_socket4(*csocket);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001758 }
1759 }
1760
1761 psin_server->sin_family = AF_INET;
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001762 if (psin_server->sin_port) { /* user overrode default port */
Linus Torvalds1da177e2005-04-16 15:20:36 -07001763 rc = (*csocket)->ops->connect(*csocket,
1764 (struct sockaddr *) psin_server,
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00001765 sizeof(struct sockaddr_in), 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001766 if (rc >= 0)
1767 connected = 1;
Steve French50c2f752007-07-13 00:33:32 +00001768 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001769
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001770 if (!connected) {
Steve French50c2f752007-07-13 00:33:32 +00001771 /* save original port so we can retry user specified port
Linus Torvalds1da177e2005-04-16 15:20:36 -07001772 later if fall back ports fail this time */
1773 orig_port = psin_server->sin_port;
1774
1775 /* do not retry on the same port we just failed on */
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001776 if (psin_server->sin_port != htons(CIFS_PORT)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001777 psin_server->sin_port = htons(CIFS_PORT);
1778
1779 rc = (*csocket)->ops->connect(*csocket,
1780 (struct sockaddr *) psin_server,
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00001781 sizeof(struct sockaddr_in), 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001782 if (rc >= 0)
1783 connected = 1;
1784 }
1785 }
1786 if (!connected) {
1787 psin_server->sin_port = htons(RFC1001_PORT);
1788 rc = (*csocket)->ops->connect(*csocket, (struct sockaddr *)
Steve French50c2f752007-07-13 00:33:32 +00001789 psin_server,
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00001790 sizeof(struct sockaddr_in), 0);
Steve French50c2f752007-07-13 00:33:32 +00001791 if (rc >= 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001792 connected = 1;
1793 }
1794
1795 /* give up here - unless we want to retry on different
1796 protocol families some day */
1797 if (!connected) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001798 if (orig_port)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001799 psin_server->sin_port = orig_port;
Steve French50c2f752007-07-13 00:33:32 +00001800 cFYI(1, ("Error %d connecting to server via ipv4", rc));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001801 sock_release(*csocket);
1802 *csocket = NULL;
1803 return rc;
1804 }
Steve French50c2f752007-07-13 00:33:32 +00001805 /* Eventually check for other socket options to change from
1806 the default. sock_setsockopt not used because it expects
Linus Torvalds1da177e2005-04-16 15:20:36 -07001807 user space buffer */
Steve French50c2f752007-07-13 00:33:32 +00001808 cFYI(1, ("sndbuf %d rcvbuf %d rcvtimeo 0x%lx",
1809 (*csocket)->sk->sk_sndbuf,
Steve Frenchb387eae2005-10-10 14:21:15 -07001810 (*csocket)->sk->sk_rcvbuf, (*csocket)->sk->sk_rcvtimeo));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001811 (*csocket)->sk->sk_rcvtimeo = 7 * HZ;
Steve Frenchedf1ae42008-10-29 00:47:57 +00001812 if (!noblocksnd)
1813 (*csocket)->sk->sk_sndtimeo = 3 * HZ;
1814
Steve Frenchb387eae2005-10-10 14:21:15 -07001815 /* make the bufsizes depend on wsize/rsize and max requests */
Steve Frenchedf1ae42008-10-29 00:47:57 +00001816 if (noautotune) {
1817 if ((*csocket)->sk->sk_sndbuf < (200 * 1024))
1818 (*csocket)->sk->sk_sndbuf = 200 * 1024;
1819 if ((*csocket)->sk->sk_rcvbuf < (140 * 1024))
1820 (*csocket)->sk->sk_rcvbuf = 140 * 1024;
1821 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001822
1823 /* send RFC1001 sessinit */
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001824 if (psin_server->sin_port == htons(RFC1001_PORT)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001825 /* some servers require RFC1001 sessinit before sending
Steve French50c2f752007-07-13 00:33:32 +00001826 negprot - BB check reconnection in case where second
Linus Torvalds1da177e2005-04-16 15:20:36 -07001827 sessinit is sent but no second negprot */
Steve French50c2f752007-07-13 00:33:32 +00001828 struct rfc1002_session_packet *ses_init_buf;
1829 struct smb_hdr *smb_buf;
1830 ses_init_buf = kzalloc(sizeof(struct rfc1002_session_packet),
1831 GFP_KERNEL);
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001832 if (ses_init_buf) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001833 ses_init_buf->trailer.session_req.called_len = 32;
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001834 if (target_name && (target_name[0] != 0)) {
Jeff Layton8ecaf672008-12-01 15:23:50 -05001835 rfc1002mangle(ses_init_buf->trailer.
1836 session_req.called_name,
1837 target_name,
1838 RFC1001_NAME_LEN_WITH_NULL);
Steve Frencha10faeb22005-08-22 21:38:31 -07001839 } else {
Jeff Layton8ecaf672008-12-01 15:23:50 -05001840 rfc1002mangle(ses_init_buf->trailer.
1841 session_req.called_name,
1842 DEFAULT_CIFS_CALLED_NAME,
1843 RFC1001_NAME_LEN_WITH_NULL);
Steve Frencha10faeb22005-08-22 21:38:31 -07001844 }
1845
Linus Torvalds1da177e2005-04-16 15:20:36 -07001846 ses_init_buf->trailer.session_req.calling_len = 32;
1847 /* calling name ends in null (byte 16) from old smb
1848 convention. */
Steve French50c2f752007-07-13 00:33:32 +00001849 if (netbios_name && (netbios_name[0] != 0)) {
Jeff Layton8ecaf672008-12-01 15:23:50 -05001850 rfc1002mangle(ses_init_buf->trailer.
1851 session_req.calling_name,
1852 netbios_name,
1853 RFC1001_NAME_LEN_WITH_NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001854 } else {
Jeff Layton8ecaf672008-12-01 15:23:50 -05001855 rfc1002mangle(ses_init_buf->trailer.
1856 session_req.calling_name,
1857 "LINUX_CIFS_CLNT",
1858 RFC1001_NAME_LEN_WITH_NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001859 }
1860 ses_init_buf->trailer.session_req.scope1 = 0;
1861 ses_init_buf->trailer.session_req.scope2 = 0;
1862 smb_buf = (struct smb_hdr *)ses_init_buf;
1863 /* sizeof RFC1002_SESSION_REQUEST with no scope */
1864 smb_buf->smb_buf_length = 0x81000044;
1865 rc = smb_send(*csocket, smb_buf, 0x44,
Steve Frenchedf1ae42008-10-29 00:47:57 +00001866 (struct sockaddr *)psin_server, noblocksnd);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001867 kfree(ses_init_buf);
Steve French50c2f752007-07-13 00:33:32 +00001868 msleep(1); /* RFC1001 layer in at least one server
Steve French083d3a22006-03-03 09:53:36 +00001869 requires very short break before negprot
1870 presumably because not expecting negprot
1871 to follow so fast. This is a simple
Steve French50c2f752007-07-13 00:33:32 +00001872 solution that works without
Steve French083d3a22006-03-03 09:53:36 +00001873 complicating the code and causes no
1874 significant slowing down on mount
1875 for everyone else */
Linus Torvalds1da177e2005-04-16 15:20:36 -07001876 }
Steve French50c2f752007-07-13 00:33:32 +00001877 /* else the negprot may still work without this
Linus Torvalds1da177e2005-04-16 15:20:36 -07001878 even though malloc failed */
Steve French50c2f752007-07-13 00:33:32 +00001879
Linus Torvalds1da177e2005-04-16 15:20:36 -07001880 }
Steve French50c2f752007-07-13 00:33:32 +00001881
Linus Torvalds1da177e2005-04-16 15:20:36 -07001882 return rc;
1883}
1884
1885static int
Steve Frenchedf1ae42008-10-29 00:47:57 +00001886ipv6_connect(struct sockaddr_in6 *psin_server, struct socket **csocket,
1887 bool noblocksnd)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001888{
1889 int rc = 0;
1890 int connected = 0;
1891 __be16 orig_port = 0;
1892
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001893 if (*csocket == NULL) {
Steve French50c2f752007-07-13 00:33:32 +00001894 rc = sock_create_kern(PF_INET6, SOCK_STREAM,
1895 IPPROTO_TCP, csocket);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001896 if (rc < 0) {
Steve French50c2f752007-07-13 00:33:32 +00001897 cERROR(1, ("Error %d creating ipv6 socket", rc));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001898 *csocket = NULL;
1899 return rc;
1900 } else {
1901 /* BB other socket options to set KEEPALIVE, NODELAY? */
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001902 cFYI(1, ("ipv6 Socket created"));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001903 (*csocket)->sk->sk_allocation = GFP_NOFS;
Jeff Layton09e50d52008-07-23 10:11:19 -04001904 cifs_reclassify_socket6(*csocket);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001905 }
1906 }
1907
1908 psin_server->sin6_family = AF_INET6;
1909
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001910 if (psin_server->sin6_port) { /* user overrode default port */
Linus Torvalds1da177e2005-04-16 15:20:36 -07001911 rc = (*csocket)->ops->connect(*csocket,
1912 (struct sockaddr *) psin_server,
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00001913 sizeof(struct sockaddr_in6), 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001914 if (rc >= 0)
1915 connected = 1;
Steve French50c2f752007-07-13 00:33:32 +00001916 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001917
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001918 if (!connected) {
Steve French50c2f752007-07-13 00:33:32 +00001919 /* save original port so we can retry user specified port
Linus Torvalds1da177e2005-04-16 15:20:36 -07001920 later if fall back ports fail this time */
1921
1922 orig_port = psin_server->sin6_port;
1923 /* do not retry on the same port we just failed on */
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001924 if (psin_server->sin6_port != htons(CIFS_PORT)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001925 psin_server->sin6_port = htons(CIFS_PORT);
1926
1927 rc = (*csocket)->ops->connect(*csocket,
1928 (struct sockaddr *) psin_server,
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00001929 sizeof(struct sockaddr_in6), 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001930 if (rc >= 0)
1931 connected = 1;
1932 }
1933 }
1934 if (!connected) {
1935 psin_server->sin6_port = htons(RFC1001_PORT);
1936 rc = (*csocket)->ops->connect(*csocket, (struct sockaddr *)
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00001937 psin_server, sizeof(struct sockaddr_in6), 0);
Steve French50c2f752007-07-13 00:33:32 +00001938 if (rc >= 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001939 connected = 1;
1940 }
1941
1942 /* give up here - unless we want to retry on different
1943 protocol families some day */
1944 if (!connected) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001945 if (orig_port)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001946 psin_server->sin6_port = orig_port;
Steve French50c2f752007-07-13 00:33:32 +00001947 cFYI(1, ("Error %d connecting to server via ipv6", rc));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001948 sock_release(*csocket);
1949 *csocket = NULL;
1950 return rc;
1951 }
Steve French50c2f752007-07-13 00:33:32 +00001952 /* Eventually check for other socket options to change from
1953 the default. sock_setsockopt not used because it expects
Linus Torvalds1da177e2005-04-16 15:20:36 -07001954 user space buffer */
1955 (*csocket)->sk->sk_rcvtimeo = 7 * HZ;
Steve Frenchedf1ae42008-10-29 00:47:57 +00001956 if (!noblocksnd)
1957 (*csocket)->sk->sk_sndtimeo = 3 * HZ;
1958
Steve French50c2f752007-07-13 00:33:32 +00001959
Linus Torvalds1da177e2005-04-16 15:20:36 -07001960 return rc;
1961}
1962
Steve French50c2f752007-07-13 00:33:32 +00001963void reset_cifs_unix_caps(int xid, struct cifsTconInfo *tcon,
1964 struct super_block *sb, struct smb_vol *vol_info)
Steve French8af18972007-02-14 04:42:51 +00001965{
1966 /* if we are reconnecting then should we check to see if
1967 * any requested capabilities changed locally e.g. via
1968 * remount but we can not do much about it here
1969 * if they have (even if we could detect it by the following)
1970 * Perhaps we could add a backpointer to array of sb from tcon
1971 * or if we change to make all sb to same share the same
1972 * sb as NFS - then we only have one backpointer to sb.
1973 * What if we wanted to mount the server share twice once with
1974 * and once without posixacls or posix paths? */
1975 __u64 saved_cap = le64_to_cpu(tcon->fsUnixInfo.Capability);
Steve French50c2f752007-07-13 00:33:32 +00001976
Steve Frenchc18c8422007-07-18 23:21:09 +00001977 if (vol_info && vol_info->no_linux_ext) {
1978 tcon->fsUnixInfo.Capability = 0;
1979 tcon->unix_ext = 0; /* Unix Extensions disabled */
1980 cFYI(1, ("Linux protocol extensions disabled"));
1981 return;
1982 } else if (vol_info)
1983 tcon->unix_ext = 1; /* Unix Extensions supported */
1984
1985 if (tcon->unix_ext == 0) {
1986 cFYI(1, ("Unix extensions disabled so not set on reconnect"));
1987 return;
1988 }
Steve French50c2f752007-07-13 00:33:32 +00001989
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001990 if (!CIFSSMBQFSUnixInfo(xid, tcon)) {
Steve French8af18972007-02-14 04:42:51 +00001991 __u64 cap = le64_to_cpu(tcon->fsUnixInfo.Capability);
Steve French50c2f752007-07-13 00:33:32 +00001992
Steve French8af18972007-02-14 04:42:51 +00001993 /* check for reconnect case in which we do not
1994 want to change the mount behavior if we can avoid it */
Steve Frenchfb8c4b12007-07-10 01:16:18 +00001995 if (vol_info == NULL) {
Steve French50c2f752007-07-13 00:33:32 +00001996 /* turn off POSIX ACL and PATHNAMES if not set
Steve French8af18972007-02-14 04:42:51 +00001997 originally at mount time */
1998 if ((saved_cap & CIFS_UNIX_POSIX_ACL_CAP) == 0)
1999 cap &= ~CIFS_UNIX_POSIX_ACL_CAP;
Igor Mammedov11b6d642008-02-15 19:06:04 +00002000 if ((saved_cap & CIFS_UNIX_POSIX_PATHNAMES_CAP) == 0) {
2001 if (cap & CIFS_UNIX_POSIX_PATHNAMES_CAP)
2002 cERROR(1, ("POSIXPATH support change"));
Steve French8af18972007-02-14 04:42:51 +00002003 cap &= ~CIFS_UNIX_POSIX_PATHNAMES_CAP;
Igor Mammedov11b6d642008-02-15 19:06:04 +00002004 } else if ((cap & CIFS_UNIX_POSIX_PATHNAMES_CAP) == 0) {
2005 cERROR(1, ("possible reconnect error"));
2006 cERROR(1,
2007 ("server disabled POSIX path support"));
2008 }
Steve French8af18972007-02-14 04:42:51 +00002009 }
Steve French50c2f752007-07-13 00:33:32 +00002010
Steve French8af18972007-02-14 04:42:51 +00002011 cap &= CIFS_UNIX_CAP_MASK;
Steve French75865f8c2007-06-24 18:30:48 +00002012 if (vol_info && vol_info->no_psx_acl)
Steve French8af18972007-02-14 04:42:51 +00002013 cap &= ~CIFS_UNIX_POSIX_ACL_CAP;
Steve French75865f8c2007-06-24 18:30:48 +00002014 else if (CIFS_UNIX_POSIX_ACL_CAP & cap) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002015 cFYI(1, ("negotiated posix acl support"));
2016 if (sb)
Steve French8af18972007-02-14 04:42:51 +00002017 sb->s_flags |= MS_POSIXACL;
2018 }
2019
Steve French75865f8c2007-06-24 18:30:48 +00002020 if (vol_info && vol_info->posix_paths == 0)
Steve French8af18972007-02-14 04:42:51 +00002021 cap &= ~CIFS_UNIX_POSIX_PATHNAMES_CAP;
Steve French75865f8c2007-06-24 18:30:48 +00002022 else if (cap & CIFS_UNIX_POSIX_PATHNAMES_CAP) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002023 cFYI(1, ("negotiate posix pathnames"));
Steve French75865f8c2007-06-24 18:30:48 +00002024 if (sb)
Steve French50c2f752007-07-13 00:33:32 +00002025 CIFS_SB(sb)->mnt_cifs_flags |=
Steve French8af18972007-02-14 04:42:51 +00002026 CIFS_MOUNT_POSIX_PATHS;
2027 }
Steve French50c2f752007-07-13 00:33:32 +00002028
Steve French984acfe2007-04-26 16:42:50 +00002029 /* We might be setting the path sep back to a different
2030 form if we are reconnecting and the server switched its
Steve French50c2f752007-07-13 00:33:32 +00002031 posix path capability for this share */
Steve French75865f8c2007-06-24 18:30:48 +00002032 if (sb && (CIFS_SB(sb)->prepathlen > 0))
Steve French984acfe2007-04-26 16:42:50 +00002033 CIFS_SB(sb)->prepath[0] = CIFS_DIR_SEP(CIFS_SB(sb));
Steve French75865f8c2007-06-24 18:30:48 +00002034
2035 if (sb && (CIFS_SB(sb)->rsize > 127 * 1024)) {
2036 if ((cap & CIFS_UNIX_LARGE_READ_CAP) == 0) {
2037 CIFS_SB(sb)->rsize = 127 * 1024;
Steve French90c81e02008-02-12 20:32:36 +00002038 cFYI(DBG2,
2039 ("larger reads not supported by srv"));
Steve French75865f8c2007-06-24 18:30:48 +00002040 }
2041 }
Steve French50c2f752007-07-13 00:33:32 +00002042
2043
2044 cFYI(1, ("Negotiate caps 0x%x", (int)cap));
Steve French8af18972007-02-14 04:42:51 +00002045#ifdef CONFIG_CIFS_DEBUG2
Steve French75865f8c2007-06-24 18:30:48 +00002046 if (cap & CIFS_UNIX_FCNTL_CAP)
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002047 cFYI(1, ("FCNTL cap"));
Steve French75865f8c2007-06-24 18:30:48 +00002048 if (cap & CIFS_UNIX_EXTATTR_CAP)
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002049 cFYI(1, ("EXTATTR cap"));
Steve French75865f8c2007-06-24 18:30:48 +00002050 if (cap & CIFS_UNIX_POSIX_PATHNAMES_CAP)
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002051 cFYI(1, ("POSIX path cap"));
Steve French75865f8c2007-06-24 18:30:48 +00002052 if (cap & CIFS_UNIX_XATTR_CAP)
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002053 cFYI(1, ("XATTR cap"));
Steve French75865f8c2007-06-24 18:30:48 +00002054 if (cap & CIFS_UNIX_POSIX_ACL_CAP)
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002055 cFYI(1, ("POSIX ACL cap"));
Steve French75865f8c2007-06-24 18:30:48 +00002056 if (cap & CIFS_UNIX_LARGE_READ_CAP)
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002057 cFYI(1, ("very large read cap"));
Steve French75865f8c2007-06-24 18:30:48 +00002058 if (cap & CIFS_UNIX_LARGE_WRITE_CAP)
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002059 cFYI(1, ("very large write cap"));
Steve French8af18972007-02-14 04:42:51 +00002060#endif /* CIFS_DEBUG2 */
2061 if (CIFSSMBSetFSUnixInfo(xid, tcon, cap)) {
Steve French442aa312007-09-24 20:25:46 +00002062 if (vol_info == NULL) {
Steve French5a44b312007-09-20 15:16:24 +00002063 cFYI(1, ("resetting capabilities failed"));
Steve French442aa312007-09-24 20:25:46 +00002064 } else
Steve French5a44b312007-09-20 15:16:24 +00002065 cERROR(1, ("Negotiating Unix capabilities "
2066 "with the server failed. Consider "
2067 "mounting with the Unix Extensions\n"
2068 "disabled, if problems are found, "
2069 "by specifying the nounix mount "
Steve French2224f4e2007-09-20 15:37:29 +00002070 "option."));
Steve French5a44b312007-09-20 15:16:24 +00002071
Steve French8af18972007-02-14 04:42:51 +00002072 }
2073 }
2074}
2075
Steve French03a143c2008-02-14 06:38:30 +00002076static void
2077convert_delimiter(char *path, char delim)
2078{
2079 int i;
Steve Frenchc2d68ea2008-02-15 19:20:18 +00002080 char old_delim;
Steve French03a143c2008-02-14 06:38:30 +00002081
2082 if (path == NULL)
2083 return;
2084
Steve French582d21e2008-05-13 04:54:12 +00002085 if (delim == '/')
Steve Frenchc2d68ea2008-02-15 19:20:18 +00002086 old_delim = '\\';
2087 else
2088 old_delim = '/';
2089
Steve French03a143c2008-02-14 06:38:30 +00002090 for (i = 0; path[i] != '\0'; i++) {
Steve Frenchc2d68ea2008-02-15 19:20:18 +00002091 if (path[i] == old_delim)
Steve French03a143c2008-02-14 06:38:30 +00002092 path[i] = delim;
2093 }
2094}
2095
Steve French3b795212008-11-13 19:45:32 +00002096static void setup_cifs_sb(struct smb_vol *pvolume_info,
2097 struct cifs_sb_info *cifs_sb)
2098{
2099 if (pvolume_info->rsize > CIFSMaxBufSize) {
2100 cERROR(1, ("rsize %d too large, using MaxBufSize",
2101 pvolume_info->rsize));
2102 cifs_sb->rsize = CIFSMaxBufSize;
2103 } else if ((pvolume_info->rsize) &&
2104 (pvolume_info->rsize <= CIFSMaxBufSize))
2105 cifs_sb->rsize = pvolume_info->rsize;
2106 else /* default */
2107 cifs_sb->rsize = CIFSMaxBufSize;
2108
2109 if (pvolume_info->wsize > PAGEVEC_SIZE * PAGE_CACHE_SIZE) {
2110 cERROR(1, ("wsize %d too large, using 4096 instead",
2111 pvolume_info->wsize));
2112 cifs_sb->wsize = 4096;
2113 } else if (pvolume_info->wsize)
2114 cifs_sb->wsize = pvolume_info->wsize;
2115 else
2116 cifs_sb->wsize = min_t(const int,
2117 PAGEVEC_SIZE * PAGE_CACHE_SIZE,
2118 127*1024);
2119 /* old default of CIFSMaxBufSize was too small now
2120 that SMB Write2 can send multiple pages in kvec.
2121 RFC1001 does not describe what happens when frame
2122 bigger than 128K is sent so use that as max in
2123 conjunction with 52K kvec constraint on arch with 4K
2124 page size */
2125
2126 if (cifs_sb->rsize < 2048) {
2127 cifs_sb->rsize = 2048;
2128 /* Windows ME may prefer this */
2129 cFYI(1, ("readsize set to minimum: 2048"));
2130 }
2131 /* calculate prepath */
2132 cifs_sb->prepath = pvolume_info->prepath;
2133 if (cifs_sb->prepath) {
2134 cifs_sb->prepathlen = strlen(cifs_sb->prepath);
2135 /* we can not convert the / to \ in the path
2136 separators in the prefixpath yet because we do not
2137 know (until reset_cifs_unix_caps is called later)
2138 whether POSIX PATH CAP is available. We normalize
2139 the / to \ after reset_cifs_unix_caps is called */
2140 pvolume_info->prepath = NULL;
2141 } else
2142 cifs_sb->prepathlen = 0;
2143 cifs_sb->mnt_uid = pvolume_info->linux_uid;
2144 cifs_sb->mnt_gid = pvolume_info->linux_gid;
2145 cifs_sb->mnt_file_mode = pvolume_info->file_mode;
2146 cifs_sb->mnt_dir_mode = pvolume_info->dir_mode;
2147 cFYI(1, ("file mode: 0x%x dir mode: 0x%x",
2148 cifs_sb->mnt_file_mode, cifs_sb->mnt_dir_mode));
2149
2150 if (pvolume_info->noperm)
2151 cifs_sb->mnt_cifs_flags |= CIFS_MOUNT_NO_PERM;
2152 if (pvolume_info->setuids)
2153 cifs_sb->mnt_cifs_flags |= CIFS_MOUNT_SET_UID;
2154 if (pvolume_info->server_ino)
2155 cifs_sb->mnt_cifs_flags |= CIFS_MOUNT_SERVER_INUM;
2156 if (pvolume_info->remap)
2157 cifs_sb->mnt_cifs_flags |= CIFS_MOUNT_MAP_SPECIAL_CHR;
2158 if (pvolume_info->no_xattr)
2159 cifs_sb->mnt_cifs_flags |= CIFS_MOUNT_NO_XATTR;
2160 if (pvolume_info->sfu_emul)
2161 cifs_sb->mnt_cifs_flags |= CIFS_MOUNT_UNX_EMUL;
2162 if (pvolume_info->nobrl)
2163 cifs_sb->mnt_cifs_flags |= CIFS_MOUNT_NO_BRL;
2164 if (pvolume_info->cifs_acl)
2165 cifs_sb->mnt_cifs_flags |= CIFS_MOUNT_CIFS_ACL;
2166 if (pvolume_info->override_uid)
2167 cifs_sb->mnt_cifs_flags |= CIFS_MOUNT_OVERR_UID;
2168 if (pvolume_info->override_gid)
2169 cifs_sb->mnt_cifs_flags |= CIFS_MOUNT_OVERR_GID;
2170 if (pvolume_info->dynperm)
2171 cifs_sb->mnt_cifs_flags |= CIFS_MOUNT_DYNPERM;
2172 if (pvolume_info->direct_io) {
2173 cFYI(1, ("mounting share using direct i/o"));
2174 cifs_sb->mnt_cifs_flags |= CIFS_MOUNT_DIRECT_IO;
2175 }
2176
2177 if ((pvolume_info->cifs_acl) && (pvolume_info->dynperm))
2178 cERROR(1, ("mount option dynperm ignored if cifsacl "
2179 "mount option supported"));
2180}
2181
Linus Torvalds1da177e2005-04-16 15:20:36 -07002182int
2183cifs_mount(struct super_block *sb, struct cifs_sb_info *cifs_sb,
2184 char *mount_data, const char *devname)
2185{
2186 int rc = 0;
2187 int xid;
Jeff Layton7586b762008-12-01 18:41:49 -05002188 struct smb_vol *volume_info;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002189 struct cifsSesInfo *pSesInfo = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002190 struct cifsTconInfo *tcon = NULL;
2191 struct TCP_Server_Info *srvTcp = NULL;
2192
2193 xid = GetXid();
2194
Jeff Layton7586b762008-12-01 18:41:49 -05002195 volume_info = kzalloc(sizeof(struct smb_vol), GFP_KERNEL);
2196 if (!volume_info) {
2197 rc = -ENOMEM;
2198 goto out;
2199 }
Steve French50c2f752007-07-13 00:33:32 +00002200
Jeff Layton7586b762008-12-01 18:41:49 -05002201 if (cifs_parse_mount_options(mount_data, devname, volume_info)) {
Jeff Layton70fe7dc2007-11-16 22:21:07 +00002202 rc = -EINVAL;
2203 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002204 }
2205
Jeff Layton7586b762008-12-01 18:41:49 -05002206 if (volume_info->nullauth) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002207 cFYI(1, ("null user"));
Jeff Layton7586b762008-12-01 18:41:49 -05002208 volume_info->username = "";
2209 } else if (volume_info->username) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002210 /* BB fixme parse for domain name here */
Jeff Layton7586b762008-12-01 18:41:49 -05002211 cFYI(1, ("Username: %s", volume_info->username));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002212 } else {
Steve Frenchbf820672005-12-01 22:32:42 -08002213 cifserror("No username specified");
Steve French50c2f752007-07-13 00:33:32 +00002214 /* In userspace mount helper we can get user name from alternate
2215 locations such as env variables and files on disk */
Jeff Layton70fe7dc2007-11-16 22:21:07 +00002216 rc = -EINVAL;
2217 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002218 }
2219
Linus Torvalds1da177e2005-04-16 15:20:36 -07002220
2221 /* this is needed for ASCII cp to Unicode converts */
Jeff Layton7586b762008-12-01 18:41:49 -05002222 if (volume_info->iocharset == NULL) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002223 cifs_sb->local_nls = load_nls_default();
2224 /* load_nls_default can not return null */
2225 } else {
Jeff Layton7586b762008-12-01 18:41:49 -05002226 cifs_sb->local_nls = load_nls(volume_info->iocharset);
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002227 if (cifs_sb->local_nls == NULL) {
Steve French50c2f752007-07-13 00:33:32 +00002228 cERROR(1, ("CIFS mount error: iocharset %s not found",
Jeff Layton7586b762008-12-01 18:41:49 -05002229 volume_info->iocharset));
Jeff Layton70fe7dc2007-11-16 22:21:07 +00002230 rc = -ELIBACC;
2231 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002232 }
2233 }
2234
Jeff Layton63c038c2008-12-01 18:41:46 -05002235 /* get a reference to a tcp session */
Jeff Layton7586b762008-12-01 18:41:49 -05002236 srvTcp = cifs_get_tcp_session(volume_info);
Jeff Layton63c038c2008-12-01 18:41:46 -05002237 if (IS_ERR(srvTcp)) {
2238 rc = PTR_ERR(srvTcp);
2239 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002240 }
2241
Jeff Layton7586b762008-12-01 18:41:49 -05002242 pSesInfo = cifs_find_smb_ses(srvTcp, volume_info->username);
Jeff Layton14fbf502008-11-14 13:53:46 -05002243 if (pSesInfo) {
Jeff Layton1d9a8852007-12-31 01:37:11 +00002244 cFYI(1, ("Existing smb sess found (status=%d)",
2245 pSesInfo->status));
Jeff Layton14fbf502008-11-14 13:53:46 -05002246 /*
2247 * The existing SMB session already has a reference to srvTcp,
2248 * so we can put back the extra one we got before
2249 */
2250 cifs_put_tcp_session(srvTcp);
2251
Steve French88e7d702008-01-03 17:37:09 +00002252 down(&pSesInfo->sesSem);
Steve French3b795212008-11-13 19:45:32 +00002253 if (pSesInfo->need_reconnect) {
Jeff Layton1d9a8852007-12-31 01:37:11 +00002254 cFYI(1, ("Session needs reconnect"));
Jeff Layton1d9a8852007-12-31 01:37:11 +00002255 rc = cifs_setup_session(xid, pSesInfo,
2256 cifs_sb->local_nls);
Jeff Layton1d9a8852007-12-31 01:37:11 +00002257 }
Steve French88e7d702008-01-03 17:37:09 +00002258 up(&pSesInfo->sesSem);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002259 } else if (!rc) {
Steve Frenchbf820672005-12-01 22:32:42 -08002260 cFYI(1, ("Existing smb sess not found"));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002261 pSesInfo = sesInfoAlloc();
Jeff Layton14fbf502008-11-14 13:53:46 -05002262 if (pSesInfo == NULL) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002263 rc = -ENOMEM;
Jeff Layton14fbf502008-11-14 13:53:46 -05002264 goto mount_fail_check;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002265 }
2266
Jeff Layton14fbf502008-11-14 13:53:46 -05002267 /* new SMB session uses our srvTcp ref */
2268 pSesInfo->server = srvTcp;
Jeff Layton63c038c2008-12-01 18:41:46 -05002269 if (srvTcp->addr.sockAddr6.sin6_family == AF_INET6)
Jeff Layton8ecaf672008-12-01 15:23:50 -05002270 sprintf(pSesInfo->serverName, NIP6_FMT,
Jeff Layton63c038c2008-12-01 18:41:46 -05002271 NIP6(srvTcp->addr.sockAddr6.sin6_addr));
Jeff Layton8ecaf672008-12-01 15:23:50 -05002272 else
2273 sprintf(pSesInfo->serverName, NIPQUAD_FMT,
Jeff Layton63c038c2008-12-01 18:41:46 -05002274 NIPQUAD(srvTcp->addr.sockAddr.sin_addr.s_addr));
Jeff Layton14fbf502008-11-14 13:53:46 -05002275
2276 write_lock(&cifs_tcp_ses_lock);
2277 list_add(&pSesInfo->smb_ses_list, &srvTcp->smb_ses_list);
2278 write_unlock(&cifs_tcp_ses_lock);
2279
Jeff Layton7586b762008-12-01 18:41:49 -05002280 /* volume_info->password freed at unmount */
2281 if (volume_info->password) {
2282 pSesInfo->password = volume_info->password;
Jeff Layton14fbf502008-11-14 13:53:46 -05002283 /* set to NULL to prevent freeing on exit */
Jeff Layton7586b762008-12-01 18:41:49 -05002284 volume_info->password = NULL;
Jeff Layton70fe7dc2007-11-16 22:21:07 +00002285 }
Jeff Layton7586b762008-12-01 18:41:49 -05002286 if (volume_info->username)
2287 strncpy(pSesInfo->userName, volume_info->username,
Jeff Layton14fbf502008-11-14 13:53:46 -05002288 MAX_USERNAME_SIZE);
Jeff Layton7586b762008-12-01 18:41:49 -05002289 if (volume_info->domainname) {
2290 int len = strlen(volume_info->domainname);
Jeff Layton14fbf502008-11-14 13:53:46 -05002291 pSesInfo->domainName = kmalloc(len + 1, GFP_KERNEL);
2292 if (pSesInfo->domainName)
2293 strcpy(pSesInfo->domainName,
Jeff Layton7586b762008-12-01 18:41:49 -05002294 volume_info->domainname);
Jeff Layton14fbf502008-11-14 13:53:46 -05002295 }
Jeff Layton7586b762008-12-01 18:41:49 -05002296 pSesInfo->linux_uid = volume_info->linux_uid;
2297 pSesInfo->overrideSecFlg = volume_info->secFlg;
Jeff Layton14fbf502008-11-14 13:53:46 -05002298 down(&pSesInfo->sesSem);
2299
2300 /* BB FIXME need to pass vol->secFlgs BB */
2301 rc = cifs_setup_session(xid, pSesInfo,
2302 cifs_sb->local_nls);
2303 up(&pSesInfo->sesSem);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002304 }
Steve French50c2f752007-07-13 00:33:32 +00002305
Linus Torvalds1da177e2005-04-16 15:20:36 -07002306 /* search for existing tcon to this server share */
2307 if (!rc) {
Jeff Layton7586b762008-12-01 18:41:49 -05002308 setup_cifs_sb(volume_info, cifs_sb);
Steve French27adb442008-05-23 19:43:29 +00002309
Jeff Layton7586b762008-12-01 18:41:49 -05002310 tcon = cifs_find_tcon(pSesInfo, volume_info->UNC);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002311 if (tcon) {
Steve Frenchbf820672005-12-01 22:32:42 -08002312 cFYI(1, ("Found match on UNC path"));
Jeff Laytonf1987b42008-11-15 11:12:47 -05002313 /* existing tcon already has a reference */
2314 cifs_put_smb_ses(pSesInfo);
Jeff Layton7586b762008-12-01 18:41:49 -05002315 if (tcon->seal != volume_info->seal)
Steve Frenchab3f9922008-11-17 16:03:00 +00002316 cERROR(1, ("transport encryption setting "
2317 "conflicts with existing tid"));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002318 } else {
2319 tcon = tconInfoAlloc();
Steve French3b795212008-11-13 19:45:32 +00002320 if (tcon == NULL) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002321 rc = -ENOMEM;
Steve French3b795212008-11-13 19:45:32 +00002322 goto mount_fail_check;
2323 }
Steve Frenchab3f9922008-11-17 16:03:00 +00002324 tcon->ses = pSesInfo;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002325
Steve French3b795212008-11-13 19:45:32 +00002326 /* check for null share name ie connect to dfs root */
Jeff Layton7586b762008-12-01 18:41:49 -05002327 if ((strchr(volume_info->UNC + 3, '\\') == NULL)
2328 && (strchr(volume_info->UNC + 3, '/') == NULL)) {
Steve French3b795212008-11-13 19:45:32 +00002329 /* rc = connect_to_dfs_path(...) */
2330 cFYI(1, ("DFS root not supported"));
2331 rc = -ENODEV;
2332 goto mount_fail_check;
2333 } else {
2334 /* BB Do we need to wrap sesSem around
2335 * this TCon call and Unix SetFS as
2336 * we do on SessSetup and reconnect? */
Jeff Layton7586b762008-12-01 18:41:49 -05002337 rc = CIFSTCon(xid, pSesInfo, volume_info->UNC,
Steve French3b795212008-11-13 19:45:32 +00002338 tcon, cifs_sb->local_nls);
2339 cFYI(1, ("CIFS Tcon rc = %d", rc));
Jeff Layton7586b762008-12-01 18:41:49 -05002340 if (volume_info->nodfs) {
Steve French3b795212008-11-13 19:45:32 +00002341 tcon->Flags &= ~SMB_SHARE_IS_IN_DFS;
2342 cFYI(1, ("DFS disabled (%d)",
2343 tcon->Flags));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002344 }
2345 }
Jeff Layton14fbf502008-11-14 13:53:46 -05002346 if (rc)
Steve French3b795212008-11-13 19:45:32 +00002347 goto mount_fail_check;
Jeff Layton7586b762008-12-01 18:41:49 -05002348 tcon->seal = volume_info->seal;
Jeff Laytonf1987b42008-11-15 11:12:47 -05002349 write_lock(&cifs_tcp_ses_lock);
2350 list_add(&tcon->tcon_list, &pSesInfo->tcon_list);
2351 write_unlock(&cifs_tcp_ses_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002352 }
Steve French3b795212008-11-13 19:45:32 +00002353
2354 /* we can have only one retry value for a connection
2355 to a share so for resources mounted more than once
2356 to the same server share the last value passed in
2357 for the retry flag is used */
Jeff Layton7586b762008-12-01 18:41:49 -05002358 tcon->retry = volume_info->retry;
2359 tcon->nocase = volume_info->nocase;
2360 tcon->local_lease = volume_info->local_lease;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002361 }
Steve French4523cc32007-04-30 20:13:06 +00002362 if (pSesInfo) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002363 if (pSesInfo->capabilities & CAP_LARGE_FILES) {
2364 sb->s_maxbytes = (u64) 1 << 63;
2365 } else
2366 sb->s_maxbytes = (u64) 1 << 31; /* 2 GB */
2367 }
2368
Steve French8af18972007-02-14 04:42:51 +00002369 /* BB FIXME fix time_gran to be larger for LANMAN sessions */
Linus Torvalds1da177e2005-04-16 15:20:36 -07002370 sb->s_time_gran = 100;
2371
Steve French3b795212008-11-13 19:45:32 +00002372mount_fail_check:
Jeff Layton14fbf502008-11-14 13:53:46 -05002373 /* on error free sesinfo and tcon struct if needed */
Linus Torvalds1da177e2005-04-16 15:20:36 -07002374 if (rc) {
Jeff Laytone7ddee92008-11-14 13:44:38 -05002375 /* If find_unc succeeded then rc == 0 so we can not end */
2376 /* up accidently freeing someone elses tcon struct */
2377 if (tcon)
Jeff Laytonf1987b42008-11-15 11:12:47 -05002378 cifs_put_tcon(tcon);
2379 else if (pSesInfo)
Jeff Layton14fbf502008-11-14 13:53:46 -05002380 cifs_put_smb_ses(pSesInfo);
2381 else
2382 cifs_put_tcp_session(srvTcp);
Steve Frenchd82c2df2008-11-15 00:07:26 +00002383 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002384 }
Steve Frenchd82c2df2008-11-15 00:07:26 +00002385 cifs_sb->tcon = tcon;
Steve Frenchd82c2df2008-11-15 00:07:26 +00002386
2387 /* do not care if following two calls succeed - informational */
2388 if (!tcon->ipc) {
2389 CIFSSMBQFSDeviceInfo(xid, tcon);
2390 CIFSSMBQFSAttributeInfo(xid, tcon);
2391 }
2392
2393 /* tell server which Unix caps we support */
2394 if (tcon->ses->capabilities & CAP_UNIX)
2395 /* reset of caps checks mount to see if unix extensions
2396 disabled for just this mount */
Jeff Layton7586b762008-12-01 18:41:49 -05002397 reset_cifs_unix_caps(xid, tcon, sb, volume_info);
Steve Frenchd82c2df2008-11-15 00:07:26 +00002398 else
2399 tcon->unix_ext = 0; /* server does not support them */
2400
2401 /* convert forward to back slashes in prepath here if needed */
2402 if ((cifs_sb->mnt_cifs_flags & CIFS_MOUNT_POSIX_PATHS) == 0)
2403 convert_delimiter(cifs_sb->prepath, CIFS_DIR_SEP(cifs_sb));
2404
2405 if ((tcon->unix_ext == 0) && (cifs_sb->rsize > (1024 * 127))) {
2406 cifs_sb->rsize = 1024 * 127;
2407 cFYI(DBG2, ("no very large read support, rsize now 127K"));
2408 }
2409 if (!(tcon->ses->capabilities & CAP_LARGE_WRITE_X))
2410 cifs_sb->wsize = min(cifs_sb->wsize,
2411 (tcon->ses->server->maxBuf - MAX_CIFS_HDR_SIZE));
2412 if (!(tcon->ses->capabilities & CAP_LARGE_READ_X))
2413 cifs_sb->rsize = min(cifs_sb->rsize,
2414 (tcon->ses->server->maxBuf - MAX_CIFS_HDR_SIZE));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002415
Jeff Layton7586b762008-12-01 18:41:49 -05002416 /* volume_info->password is freed above when existing session found
Linus Torvalds1da177e2005-04-16 15:20:36 -07002417 (in which case it is not needed anymore) but when new sesion is created
2418 the password ptr is put in the new session structure (in which case the
2419 password will be freed at unmount time) */
Jeff Layton70fe7dc2007-11-16 22:21:07 +00002420out:
2421 /* zero out password before freeing */
Jeff Layton7586b762008-12-01 18:41:49 -05002422 if (volume_info) {
2423 if (volume_info->password != NULL) {
2424 memset(volume_info->password, 0,
2425 strlen(volume_info->password));
2426 kfree(volume_info->password);
2427 }
2428 kfree(volume_info->UNC);
2429 kfree(volume_info->prepath);
2430 kfree(volume_info);
Jeff Layton70fe7dc2007-11-16 22:21:07 +00002431 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002432 FreeXid(xid);
2433 return rc;
2434}
2435
2436static int
2437CIFSSessSetup(unsigned int xid, struct cifsSesInfo *ses,
Steve French7c7b25b2006-06-01 19:20:10 +00002438 char session_key[CIFS_SESS_KEY_SIZE],
Linus Torvalds1da177e2005-04-16 15:20:36 -07002439 const struct nls_table *nls_codepage)
2440{
2441 struct smb_hdr *smb_buffer;
2442 struct smb_hdr *smb_buffer_response;
2443 SESSION_SETUP_ANDX *pSMB;
2444 SESSION_SETUP_ANDX *pSMBr;
2445 char *bcc_ptr;
2446 char *user;
2447 char *domain;
2448 int rc = 0;
2449 int remaining_words = 0;
2450 int bytes_returned = 0;
2451 int len;
2452 __u32 capabilities;
2453 __u16 count;
2454
Steve Frencheeac8042006-01-13 21:34:58 -08002455 cFYI(1, ("In sesssetup"));
Steve French4523cc32007-04-30 20:13:06 +00002456 if (ses == NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002457 return -EINVAL;
2458 user = ses->userName;
2459 domain = ses->domainName;
2460 smb_buffer = cifs_buf_get();
Steve French582d21e2008-05-13 04:54:12 +00002461
2462 if (smb_buffer == NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002463 return -ENOMEM;
Steve French582d21e2008-05-13 04:54:12 +00002464
Linus Torvalds1da177e2005-04-16 15:20:36 -07002465 smb_buffer_response = smb_buffer;
2466 pSMBr = pSMB = (SESSION_SETUP_ANDX *) smb_buffer;
2467
2468 /* send SMBsessionSetup here */
2469 header_assemble(smb_buffer, SMB_COM_SESSION_SETUP_ANDX,
2470 NULL /* no tCon exists yet */ , 13 /* wct */ );
2471
Steve French1982c342005-08-17 12:38:22 -07002472 smb_buffer->Mid = GetNextMid(ses->server);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002473 pSMB->req_no_secext.AndXCommand = 0xFF;
2474 pSMB->req_no_secext.MaxBufferSize = cpu_to_le16(ses->server->maxBuf);
2475 pSMB->req_no_secext.MaxMpxCount = cpu_to_le16(ses->server->maxReq);
2476
Steve French50c2f752007-07-13 00:33:32 +00002477 if (ses->server->secMode &
2478 (SECMODE_SIGN_REQUIRED | SECMODE_SIGN_ENABLED))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002479 smb_buffer->Flags2 |= SMBFLG2_SECURITY_SIGNATURE;
2480
2481 capabilities = CAP_LARGE_FILES | CAP_NT_SMBS | CAP_LEVEL_II_OPLOCKS |
2482 CAP_LARGE_WRITE_X | CAP_LARGE_READ_X;
2483 if (ses->capabilities & CAP_UNICODE) {
2484 smb_buffer->Flags2 |= SMBFLG2_UNICODE;
2485 capabilities |= CAP_UNICODE;
2486 }
2487 if (ses->capabilities & CAP_STATUS32) {
2488 smb_buffer->Flags2 |= SMBFLG2_ERR_STATUS;
2489 capabilities |= CAP_STATUS32;
2490 }
2491 if (ses->capabilities & CAP_DFS) {
2492 smb_buffer->Flags2 |= SMBFLG2_DFS;
2493 capabilities |= CAP_DFS;
2494 }
2495 pSMB->req_no_secext.Capabilities = cpu_to_le32(capabilities);
2496
Steve French50c2f752007-07-13 00:33:32 +00002497 pSMB->req_no_secext.CaseInsensitivePasswordLength =
Steve French7c7b25b2006-06-01 19:20:10 +00002498 cpu_to_le16(CIFS_SESS_KEY_SIZE);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002499
2500 pSMB->req_no_secext.CaseSensitivePasswordLength =
Steve French7c7b25b2006-06-01 19:20:10 +00002501 cpu_to_le16(CIFS_SESS_KEY_SIZE);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002502 bcc_ptr = pByteArea(smb_buffer);
Steve French7c7b25b2006-06-01 19:20:10 +00002503 memcpy(bcc_ptr, (char *) session_key, CIFS_SESS_KEY_SIZE);
2504 bcc_ptr += CIFS_SESS_KEY_SIZE;
2505 memcpy(bcc_ptr, (char *) session_key, CIFS_SESS_KEY_SIZE);
2506 bcc_ptr += CIFS_SESS_KEY_SIZE;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002507
2508 if (ses->capabilities & CAP_UNICODE) {
2509 if ((long) bcc_ptr % 2) { /* must be word aligned for Unicode */
2510 *bcc_ptr = 0;
2511 bcc_ptr++;
2512 }
Steve French4523cc32007-04-30 20:13:06 +00002513 if (user == NULL)
Steve French39798772006-05-31 22:40:51 +00002514 bytes_returned = 0; /* skip null user */
Steve French50c2f752007-07-13 00:33:32 +00002515 else
Linus Torvalds1da177e2005-04-16 15:20:36 -07002516 bytes_returned =
Steve French50c2f752007-07-13 00:33:32 +00002517 cifs_strtoUCS((__le16 *) bcc_ptr, user, 100,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002518 nls_codepage);
2519 /* convert number of 16 bit words to bytes */
2520 bcc_ptr += 2 * bytes_returned;
2521 bcc_ptr += 2; /* trailing null */
2522 if (domain == NULL)
2523 bytes_returned =
Steve Frenche89dc922005-11-11 15:18:19 -08002524 cifs_strtoUCS((__le16 *) bcc_ptr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002525 "CIFS_LINUX_DOM", 32, nls_codepage);
2526 else
2527 bytes_returned =
Steve Frenche89dc922005-11-11 15:18:19 -08002528 cifs_strtoUCS((__le16 *) bcc_ptr, domain, 64,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002529 nls_codepage);
2530 bcc_ptr += 2 * bytes_returned;
2531 bcc_ptr += 2;
2532 bytes_returned =
Steve Frenche89dc922005-11-11 15:18:19 -08002533 cifs_strtoUCS((__le16 *) bcc_ptr, "Linux version ",
Linus Torvalds1da177e2005-04-16 15:20:36 -07002534 32, nls_codepage);
2535 bcc_ptr += 2 * bytes_returned;
2536 bytes_returned =
Serge E. Hallyne9ff3992006-10-02 02:18:11 -07002537 cifs_strtoUCS((__le16 *) bcc_ptr, utsname()->release,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002538 32, nls_codepage);
2539 bcc_ptr += 2 * bytes_returned;
2540 bcc_ptr += 2;
2541 bytes_returned =
Steve Frenche89dc922005-11-11 15:18:19 -08002542 cifs_strtoUCS((__le16 *) bcc_ptr, CIFS_NETWORK_OPSYS,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002543 64, nls_codepage);
2544 bcc_ptr += 2 * bytes_returned;
2545 bcc_ptr += 2;
2546 } else {
Steve French50c2f752007-07-13 00:33:32 +00002547 if (user != NULL) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002548 strncpy(bcc_ptr, user, 200);
2549 bcc_ptr += strnlen(user, 200);
2550 }
2551 *bcc_ptr = 0;
2552 bcc_ptr++;
2553 if (domain == NULL) {
2554 strcpy(bcc_ptr, "CIFS_LINUX_DOM");
2555 bcc_ptr += strlen("CIFS_LINUX_DOM") + 1;
2556 } else {
2557 strncpy(bcc_ptr, domain, 64);
2558 bcc_ptr += strnlen(domain, 64);
2559 *bcc_ptr = 0;
2560 bcc_ptr++;
2561 }
2562 strcpy(bcc_ptr, "Linux version ");
2563 bcc_ptr += strlen("Linux version ");
Serge E. Hallyne9ff3992006-10-02 02:18:11 -07002564 strcpy(bcc_ptr, utsname()->release);
2565 bcc_ptr += strlen(utsname()->release) + 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002566 strcpy(bcc_ptr, CIFS_NETWORK_OPSYS);
2567 bcc_ptr += strlen(CIFS_NETWORK_OPSYS) + 1;
2568 }
2569 count = (long) bcc_ptr - (long) pByteArea(smb_buffer);
2570 smb_buffer->smb_buf_length += count;
2571 pSMB->req_no_secext.ByteCount = cpu_to_le16(count);
2572
2573 rc = SendReceive(xid, ses, smb_buffer, smb_buffer_response,
Steve French133672e2007-11-13 22:41:37 +00002574 &bytes_returned, CIFS_LONG_OP);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002575 if (rc) {
2576/* rc = map_smb_to_linux_error(smb_buffer_response); now done in SendReceive */
2577 } else if ((smb_buffer_response->WordCount == 3)
2578 || (smb_buffer_response->WordCount == 4)) {
2579 __u16 action = le16_to_cpu(pSMBr->resp.Action);
2580 __u16 blob_len = le16_to_cpu(pSMBr->resp.SecurityBlobLength);
2581 if (action & GUEST_LOGIN)
Steve French50c2f752007-07-13 00:33:32 +00002582 cFYI(1, (" Guest login")); /* BB mark SesInfo struct? */
2583 ses->Suid = smb_buffer_response->Uid; /* UID left in wire format
2584 (little endian) */
Linus Torvalds1da177e2005-04-16 15:20:36 -07002585 cFYI(1, ("UID = %d ", ses->Suid));
Steve French50c2f752007-07-13 00:33:32 +00002586 /* response can have either 3 or 4 word count - Samba sends 3 */
2587 bcc_ptr = pByteArea(smb_buffer_response);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002588 if ((pSMBr->resp.hdr.WordCount == 3)
2589 || ((pSMBr->resp.hdr.WordCount == 4)
2590 && (blob_len < pSMBr->resp.ByteCount))) {
2591 if (pSMBr->resp.hdr.WordCount == 4)
2592 bcc_ptr += blob_len;
2593
2594 if (smb_buffer->Flags2 & SMBFLG2_UNICODE) {
2595 if ((long) (bcc_ptr) % 2) {
2596 remaining_words =
Steve French50c2f752007-07-13 00:33:32 +00002597 (BCC(smb_buffer_response) - 1) / 2;
2598 /* Unicode strings must be word
2599 aligned */
2600 bcc_ptr++;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002601 } else {
2602 remaining_words =
2603 BCC(smb_buffer_response) / 2;
2604 }
2605 len =
2606 UniStrnlen((wchar_t *) bcc_ptr,
2607 remaining_words - 1);
2608/* We look for obvious messed up bcc or strings in response so we do not go off
2609 the end since (at least) WIN2K and Windows XP have a major bug in not null
2610 terminating last Unicode string in response */
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002611 if (ses->serverOS)
Steve Frencha424f8b2006-05-30 18:06:04 +00002612 kfree(ses->serverOS);
Steve French50c2f752007-07-13 00:33:32 +00002613 ses->serverOS = kzalloc(2 * (len + 1),
2614 GFP_KERNEL);
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002615 if (ses->serverOS == NULL)
Steve French433dc242005-04-28 22:41:08 -07002616 goto sesssetup_nomem;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002617 cifs_strfromUCS_le(ses->serverOS,
Steve French50c2f752007-07-13 00:33:32 +00002618 (__le16 *)bcc_ptr,
2619 len, nls_codepage);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002620 bcc_ptr += 2 * (len + 1);
2621 remaining_words -= len + 1;
2622 ses->serverOS[2 * len] = 0;
2623 ses->serverOS[1 + (2 * len)] = 0;
2624 if (remaining_words > 0) {
2625 len = UniStrnlen((wchar_t *)bcc_ptr,
2626 remaining_words-1);
Steve Frenchcd49b492006-06-26 04:22:36 +00002627 kfree(ses->serverNOS);
Steve French50c2f752007-07-13 00:33:32 +00002628 ses->serverNOS = kzalloc(2 * (len + 1),
2629 GFP_KERNEL);
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002630 if (ses->serverNOS == NULL)
Steve French433dc242005-04-28 22:41:08 -07002631 goto sesssetup_nomem;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002632 cifs_strfromUCS_le(ses->serverNOS,
Steve French50c2f752007-07-13 00:33:32 +00002633 (__le16 *)bcc_ptr,
2634 len, nls_codepage);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002635 bcc_ptr += 2 * (len + 1);
2636 ses->serverNOS[2 * len] = 0;
2637 ses->serverNOS[1 + (2 * len)] = 0;
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002638 if (strncmp(ses->serverNOS,
Steve French50c2f752007-07-13 00:33:32 +00002639 "NT LAN Manager 4", 16) == 0) {
Steve French467a8f82007-06-27 22:41:32 +00002640 cFYI(1, ("NT4 server"));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002641 ses->flags |= CIFS_SES_NT4;
2642 }
2643 remaining_words -= len + 1;
2644 if (remaining_words > 0) {
Steve French433dc242005-04-28 22:41:08 -07002645 len = UniStrnlen((wchar_t *) bcc_ptr, remaining_words);
Steve French50c2f752007-07-13 00:33:32 +00002646 /* last string is not always null terminated
2647 (for e.g. for Windows XP & 2000) */
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002648 if (ses->serverDomain)
Steve Frencha424f8b2006-05-30 18:06:04 +00002649 kfree(ses->serverDomain);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002650 ses->serverDomain =
Steve French50c2f752007-07-13 00:33:32 +00002651 kzalloc(2*(len+1),
2652 GFP_KERNEL);
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002653 if (ses->serverDomain == NULL)
Steve French433dc242005-04-28 22:41:08 -07002654 goto sesssetup_nomem;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002655 cifs_strfromUCS_le(ses->serverDomain,
Steve French50c2f752007-07-13 00:33:32 +00002656 (__le16 *)bcc_ptr,
2657 len, nls_codepage);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002658 bcc_ptr += 2 * (len + 1);
2659 ses->serverDomain[2*len] = 0;
2660 ses->serverDomain[1+(2*len)] = 0;
Steve French50c2f752007-07-13 00:33:32 +00002661 } else { /* else no more room so create
2662 dummy domain string */
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002663 if (ses->serverDomain)
Steve Frencha424f8b2006-05-30 18:06:04 +00002664 kfree(ses->serverDomain);
Steve French50c2f752007-07-13 00:33:32 +00002665 ses->serverDomain =
Pekka Enberge915fc42005-09-06 15:18:35 -07002666 kzalloc(2, GFP_KERNEL);
Steve Frencha424f8b2006-05-30 18:06:04 +00002667 }
Steve French50c2f752007-07-13 00:33:32 +00002668 } else { /* no room so create dummy domain
2669 and NOS string */
2670
Steve French433dc242005-04-28 22:41:08 -07002671 /* if these kcallocs fail not much we
2672 can do, but better to not fail the
2673 sesssetup itself */
Steve Frenchcd49b492006-06-26 04:22:36 +00002674 kfree(ses->serverDomain);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002675 ses->serverDomain =
Pekka Enberge915fc42005-09-06 15:18:35 -07002676 kzalloc(2, GFP_KERNEL);
Steve Frenchcd49b492006-06-26 04:22:36 +00002677 kfree(ses->serverNOS);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002678 ses->serverNOS =
Pekka Enberge915fc42005-09-06 15:18:35 -07002679 kzalloc(2, GFP_KERNEL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002680 }
2681 } else { /* ASCII */
2682 len = strnlen(bcc_ptr, 1024);
2683 if (((long) bcc_ptr + len) - (long)
2684 pByteArea(smb_buffer_response)
2685 <= BCC(smb_buffer_response)) {
Steve Frenchcd49b492006-06-26 04:22:36 +00002686 kfree(ses->serverOS);
Steve French50c2f752007-07-13 00:33:32 +00002687 ses->serverOS = kzalloc(len + 1,
2688 GFP_KERNEL);
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002689 if (ses->serverOS == NULL)
Steve French433dc242005-04-28 22:41:08 -07002690 goto sesssetup_nomem;
Steve French50c2f752007-07-13 00:33:32 +00002691 strncpy(ses->serverOS, bcc_ptr, len);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002692
2693 bcc_ptr += len;
Steve French50c2f752007-07-13 00:33:32 +00002694 /* null terminate the string */
2695 bcc_ptr[0] = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002696 bcc_ptr++;
2697
2698 len = strnlen(bcc_ptr, 1024);
Steve Frenchcd49b492006-06-26 04:22:36 +00002699 kfree(ses->serverNOS);
Steve French50c2f752007-07-13 00:33:32 +00002700 ses->serverNOS = kzalloc(len + 1,
2701 GFP_KERNEL);
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002702 if (ses->serverNOS == NULL)
Steve French433dc242005-04-28 22:41:08 -07002703 goto sesssetup_nomem;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002704 strncpy(ses->serverNOS, bcc_ptr, len);
2705 bcc_ptr += len;
2706 bcc_ptr[0] = 0;
2707 bcc_ptr++;
2708
2709 len = strnlen(bcc_ptr, 1024);
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002710 if (ses->serverDomain)
Steve Frencha424f8b2006-05-30 18:06:04 +00002711 kfree(ses->serverDomain);
Steve French50c2f752007-07-13 00:33:32 +00002712 ses->serverDomain = kzalloc(len + 1,
2713 GFP_KERNEL);
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002714 if (ses->serverDomain == NULL)
Steve French433dc242005-04-28 22:41:08 -07002715 goto sesssetup_nomem;
Steve French50c2f752007-07-13 00:33:32 +00002716 strncpy(ses->serverDomain, bcc_ptr,
2717 len);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002718 bcc_ptr += len;
2719 bcc_ptr[0] = 0;
2720 bcc_ptr++;
2721 } else
2722 cFYI(1,
Steve French50c2f752007-07-13 00:33:32 +00002723 ("Variable field of length %d "
2724 "extends beyond end of smb ",
Linus Torvalds1da177e2005-04-16 15:20:36 -07002725 len));
2726 }
2727 } else {
2728 cERROR(1,
Steve French50c2f752007-07-13 00:33:32 +00002729 (" Security Blob Length extends beyond "
2730 "end of SMB"));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002731 }
2732 } else {
2733 cERROR(1,
2734 (" Invalid Word count %d: ",
2735 smb_buffer_response->WordCount));
2736 rc = -EIO;
2737 }
Steve French433dc242005-04-28 22:41:08 -07002738sesssetup_nomem: /* do not return an error on nomem for the info strings,
2739 since that could make reconnection harder, and
2740 reconnection might be needed to free memory */
Mariusz Kozlowskia8a11d32007-10-03 16:41:24 +00002741 cifs_buf_release(smb_buffer);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002742
2743 return rc;
2744}
2745
2746static int
Linus Torvalds1da177e2005-04-16 15:20:36 -07002747CIFSNTLMSSPNegotiateSessSetup(unsigned int xid,
Steve French4b18f2a2008-04-29 00:06:05 +00002748 struct cifsSesInfo *ses, bool *pNTLMv2_flag,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002749 const struct nls_table *nls_codepage)
2750{
2751 struct smb_hdr *smb_buffer;
2752 struct smb_hdr *smb_buffer_response;
2753 SESSION_SETUP_ANDX *pSMB;
2754 SESSION_SETUP_ANDX *pSMBr;
2755 char *bcc_ptr;
2756 char *domain;
2757 int rc = 0;
2758 int remaining_words = 0;
2759 int bytes_returned = 0;
2760 int len;
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00002761 int SecurityBlobLength = sizeof(NEGOTIATE_MESSAGE);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002762 PNEGOTIATE_MESSAGE SecurityBlob;
2763 PCHALLENGE_MESSAGE SecurityBlob2;
2764 __u32 negotiate_flags, capabilities;
2765 __u16 count;
2766
Steve French12b3b8f2006-02-09 21:12:47 +00002767 cFYI(1, ("In NTLMSSP sesssetup (negotiate)"));
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002768 if (ses == NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002769 return -EINVAL;
2770 domain = ses->domainName;
Steve French4b18f2a2008-04-29 00:06:05 +00002771 *pNTLMv2_flag = false;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002772 smb_buffer = cifs_buf_get();
2773 if (smb_buffer == NULL) {
2774 return -ENOMEM;
2775 }
2776 smb_buffer_response = smb_buffer;
2777 pSMB = (SESSION_SETUP_ANDX *) smb_buffer;
2778 pSMBr = (SESSION_SETUP_ANDX *) smb_buffer_response;
2779
2780 /* send SMBsessionSetup here */
2781 header_assemble(smb_buffer, SMB_COM_SESSION_SETUP_ANDX,
2782 NULL /* no tCon exists yet */ , 12 /* wct */ );
Steve French1982c342005-08-17 12:38:22 -07002783
2784 smb_buffer->Mid = GetNextMid(ses->server);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002785 pSMB->req.hdr.Flags2 |= SMBFLG2_EXT_SEC;
2786 pSMB->req.hdr.Flags |= (SMBFLG_CASELESS | SMBFLG_CANONICAL_PATH_FORMAT);
2787
2788 pSMB->req.AndXCommand = 0xFF;
2789 pSMB->req.MaxBufferSize = cpu_to_le16(ses->server->maxBuf);
2790 pSMB->req.MaxMpxCount = cpu_to_le16(ses->server->maxReq);
2791
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002792 if (ses->server->secMode & (SECMODE_SIGN_REQUIRED | SECMODE_SIGN_ENABLED))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002793 smb_buffer->Flags2 |= SMBFLG2_SECURITY_SIGNATURE;
2794
2795 capabilities = CAP_LARGE_FILES | CAP_NT_SMBS | CAP_LEVEL_II_OPLOCKS |
2796 CAP_EXTENDED_SECURITY;
2797 if (ses->capabilities & CAP_UNICODE) {
2798 smb_buffer->Flags2 |= SMBFLG2_UNICODE;
2799 capabilities |= CAP_UNICODE;
2800 }
2801 if (ses->capabilities & CAP_STATUS32) {
2802 smb_buffer->Flags2 |= SMBFLG2_ERR_STATUS;
2803 capabilities |= CAP_STATUS32;
2804 }
2805 if (ses->capabilities & CAP_DFS) {
2806 smb_buffer->Flags2 |= SMBFLG2_DFS;
2807 capabilities |= CAP_DFS;
2808 }
2809 pSMB->req.Capabilities = cpu_to_le32(capabilities);
2810
2811 bcc_ptr = (char *) &pSMB->req.SecurityBlob;
2812 SecurityBlob = (PNEGOTIATE_MESSAGE) bcc_ptr;
2813 strncpy(SecurityBlob->Signature, NTLMSSP_SIGNATURE, 8);
2814 SecurityBlob->MessageType = NtLmNegotiate;
2815 negotiate_flags =
2816 NTLMSSP_NEGOTIATE_UNICODE | NTLMSSP_NEGOTIATE_OEM |
Steve French12b3b8f2006-02-09 21:12:47 +00002817 NTLMSSP_REQUEST_TARGET | NTLMSSP_NEGOTIATE_NTLM |
2818 NTLMSSP_NEGOTIATE_56 |
Linus Torvalds1da177e2005-04-16 15:20:36 -07002819 /* NTLMSSP_NEGOTIATE_ALWAYS_SIGN | */ NTLMSSP_NEGOTIATE_128;
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002820 if (sign_CIFS_PDUs)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002821 negotiate_flags |= NTLMSSP_NEGOTIATE_SIGN;
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002822/* if (ntlmv2_support)
Steve French39798772006-05-31 22:40:51 +00002823 negotiate_flags |= NTLMSSP_NEGOTIATE_NTLMV2;*/
Linus Torvalds1da177e2005-04-16 15:20:36 -07002824 /* setup pointers to domain name and workstation name */
2825 bcc_ptr += SecurityBlobLength;
2826
2827 SecurityBlob->WorkstationName.Buffer = 0;
2828 SecurityBlob->WorkstationName.Length = 0;
2829 SecurityBlob->WorkstationName.MaximumLength = 0;
2830
Steve French12b3b8f2006-02-09 21:12:47 +00002831 /* Domain not sent on first Sesssetup in NTLMSSP, instead it is sent
2832 along with username on auth request (ie the response to challenge) */
2833 SecurityBlob->DomainName.Buffer = 0;
2834 SecurityBlob->DomainName.Length = 0;
2835 SecurityBlob->DomainName.MaximumLength = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002836 if (ses->capabilities & CAP_UNICODE) {
2837 if ((long) bcc_ptr % 2) {
2838 *bcc_ptr = 0;
2839 bcc_ptr++;
2840 }
2841
2842 bytes_returned =
Steve Frenche89dc922005-11-11 15:18:19 -08002843 cifs_strtoUCS((__le16 *) bcc_ptr, "Linux version ",
Linus Torvalds1da177e2005-04-16 15:20:36 -07002844 32, nls_codepage);
2845 bcc_ptr += 2 * bytes_returned;
2846 bytes_returned =
Serge E. Hallyne9ff3992006-10-02 02:18:11 -07002847 cifs_strtoUCS((__le16 *) bcc_ptr, utsname()->release, 32,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002848 nls_codepage);
2849 bcc_ptr += 2 * bytes_returned;
2850 bcc_ptr += 2; /* null terminate Linux version */
2851 bytes_returned =
Steve Frenche89dc922005-11-11 15:18:19 -08002852 cifs_strtoUCS((__le16 *) bcc_ptr, CIFS_NETWORK_OPSYS,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002853 64, nls_codepage);
2854 bcc_ptr += 2 * bytes_returned;
2855 *(bcc_ptr + 1) = 0;
2856 *(bcc_ptr + 2) = 0;
2857 bcc_ptr += 2; /* null terminate network opsys string */
2858 *(bcc_ptr + 1) = 0;
2859 *(bcc_ptr + 2) = 0;
2860 bcc_ptr += 2; /* null domain */
2861 } else { /* ASCII */
2862 strcpy(bcc_ptr, "Linux version ");
2863 bcc_ptr += strlen("Linux version ");
Serge E. Hallyne9ff3992006-10-02 02:18:11 -07002864 strcpy(bcc_ptr, utsname()->release);
2865 bcc_ptr += strlen(utsname()->release) + 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002866 strcpy(bcc_ptr, CIFS_NETWORK_OPSYS);
2867 bcc_ptr += strlen(CIFS_NETWORK_OPSYS) + 1;
2868 bcc_ptr++; /* empty domain field */
2869 *bcc_ptr = 0;
2870 }
2871 SecurityBlob->NegotiateFlags = cpu_to_le32(negotiate_flags);
2872 pSMB->req.SecurityBlobLength = cpu_to_le16(SecurityBlobLength);
2873 count = (long) bcc_ptr - (long) pByteArea(smb_buffer);
2874 smb_buffer->smb_buf_length += count;
2875 pSMB->req.ByteCount = cpu_to_le16(count);
2876
2877 rc = SendReceive(xid, ses, smb_buffer, smb_buffer_response,
Steve French133672e2007-11-13 22:41:37 +00002878 &bytes_returned, CIFS_LONG_OP);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002879
2880 if (smb_buffer_response->Status.CifsError ==
2881 cpu_to_le32(NT_STATUS_MORE_PROCESSING_REQUIRED))
2882 rc = 0;
2883
2884 if (rc) {
2885/* rc = map_smb_to_linux_error(smb_buffer_response); *//* done in SendReceive now */
2886 } else if ((smb_buffer_response->WordCount == 3)
2887 || (smb_buffer_response->WordCount == 4)) {
2888 __u16 action = le16_to_cpu(pSMBr->resp.Action);
2889 __u16 blob_len = le16_to_cpu(pSMBr->resp.SecurityBlobLength);
2890
2891 if (action & GUEST_LOGIN)
Steve French50c2f752007-07-13 00:33:32 +00002892 cFYI(1, (" Guest login"));
2893 /* Do we want to set anything in SesInfo struct when guest login? */
Linus Torvalds1da177e2005-04-16 15:20:36 -07002894
Steve French50c2f752007-07-13 00:33:32 +00002895 bcc_ptr = pByteArea(smb_buffer_response);
2896 /* response can have either 3 or 4 word count - Samba sends 3 */
Linus Torvalds1da177e2005-04-16 15:20:36 -07002897
2898 SecurityBlob2 = (PCHALLENGE_MESSAGE) bcc_ptr;
2899 if (SecurityBlob2->MessageType != NtLmChallenge) {
2900 cFYI(1,
2901 ("Unexpected NTLMSSP message type received %d",
2902 SecurityBlob2->MessageType));
2903 } else if (ses) {
Steve French50c2f752007-07-13 00:33:32 +00002904 ses->Suid = smb_buffer_response->Uid; /* UID left in le format */
Steve French12b3b8f2006-02-09 21:12:47 +00002905 cFYI(1, ("UID = %d", ses->Suid));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002906 if ((pSMBr->resp.hdr.WordCount == 3)
2907 || ((pSMBr->resp.hdr.WordCount == 4)
2908 && (blob_len <
2909 pSMBr->resp.ByteCount))) {
2910
2911 if (pSMBr->resp.hdr.WordCount == 4) {
2912 bcc_ptr += blob_len;
Steve French12b3b8f2006-02-09 21:12:47 +00002913 cFYI(1, ("Security Blob Length %d",
Linus Torvalds1da177e2005-04-16 15:20:36 -07002914 blob_len));
2915 }
2916
Steve French12b3b8f2006-02-09 21:12:47 +00002917 cFYI(1, ("NTLMSSP Challenge rcvd"));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002918
2919 memcpy(ses->server->cryptKey,
2920 SecurityBlob2->Challenge,
2921 CIFS_CRYPTO_KEY_SIZE);
Steve French50c2f752007-07-13 00:33:32 +00002922 if (SecurityBlob2->NegotiateFlags &
Steve French12b3b8f2006-02-09 21:12:47 +00002923 cpu_to_le32(NTLMSSP_NEGOTIATE_NTLMV2))
Steve French4b18f2a2008-04-29 00:06:05 +00002924 *pNTLMv2_flag = true;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002925
Steve French50c2f752007-07-13 00:33:32 +00002926 if ((SecurityBlob2->NegotiateFlags &
2927 cpu_to_le32(NTLMSSP_NEGOTIATE_ALWAYS_SIGN))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002928 || (sign_CIFS_PDUs > 1))
Steve French50c2f752007-07-13 00:33:32 +00002929 ses->server->secMode |=
2930 SECMODE_SIGN_REQUIRED;
2931 if ((SecurityBlob2->NegotiateFlags &
Linus Torvalds1da177e2005-04-16 15:20:36 -07002932 cpu_to_le32(NTLMSSP_NEGOTIATE_SIGN)) && (sign_CIFS_PDUs))
Steve French50c2f752007-07-13 00:33:32 +00002933 ses->server->secMode |=
Linus Torvalds1da177e2005-04-16 15:20:36 -07002934 SECMODE_SIGN_ENABLED;
2935
2936 if (smb_buffer->Flags2 & SMBFLG2_UNICODE) {
2937 if ((long) (bcc_ptr) % 2) {
2938 remaining_words =
2939 (BCC(smb_buffer_response)
2940 - 1) / 2;
Steve French50c2f752007-07-13 00:33:32 +00002941 /* Must word align unicode strings */
2942 bcc_ptr++;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002943 } else {
2944 remaining_words =
2945 BCC
2946 (smb_buffer_response) / 2;
2947 }
2948 len =
2949 UniStrnlen((wchar_t *) bcc_ptr,
2950 remaining_words - 1);
2951/* We look for obvious messed up bcc or strings in response so we do not go off
2952 the end since (at least) WIN2K and Windows XP have a major bug in not null
2953 terminating last Unicode string in response */
Steve Frenchfb8c4b12007-07-10 01:16:18 +00002954 if (ses->serverOS)
Steve Frencha424f8b2006-05-30 18:06:04 +00002955 kfree(ses->serverOS);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002956 ses->serverOS =
Pekka Enberge915fc42005-09-06 15:18:35 -07002957 kzalloc(2 * (len + 1), GFP_KERNEL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002958 cifs_strfromUCS_le(ses->serverOS,
Steve Frenche89dc922005-11-11 15:18:19 -08002959 (__le16 *)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002960 bcc_ptr, len,
2961 nls_codepage);
2962 bcc_ptr += 2 * (len + 1);
2963 remaining_words -= len + 1;
2964 ses->serverOS[2 * len] = 0;
2965 ses->serverOS[1 + (2 * len)] = 0;
2966 if (remaining_words > 0) {
2967 len = UniStrnlen((wchar_t *)
2968 bcc_ptr,
2969 remaining_words
2970 - 1);
Steve Frenchcd49b492006-06-26 04:22:36 +00002971 kfree(ses->serverNOS);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002972 ses->serverNOS =
Pekka Enberge915fc42005-09-06 15:18:35 -07002973 kzalloc(2 * (len + 1),
Linus Torvalds1da177e2005-04-16 15:20:36 -07002974 GFP_KERNEL);
2975 cifs_strfromUCS_le(ses->
2976 serverNOS,
Steve Frenche89dc922005-11-11 15:18:19 -08002977 (__le16 *)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002978 bcc_ptr,
2979 len,
2980 nls_codepage);
2981 bcc_ptr += 2 * (len + 1);
2982 ses->serverNOS[2 * len] = 0;
2983 ses->serverNOS[1 +
2984 (2 * len)] = 0;
2985 remaining_words -= len + 1;
2986 if (remaining_words > 0) {
Steve French50c2f752007-07-13 00:33:32 +00002987 len = UniStrnlen((wchar_t *) bcc_ptr, remaining_words);
2988 /* last string not always null terminated
2989 (for e.g. for Windows XP & 2000) */
Steve Frenchcd49b492006-06-26 04:22:36 +00002990 kfree(ses->serverDomain);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002991 ses->serverDomain =
Pekka Enberge915fc42005-09-06 15:18:35 -07002992 kzalloc(2 *
Linus Torvalds1da177e2005-04-16 15:20:36 -07002993 (len +
2994 1),
2995 GFP_KERNEL);
2996 cifs_strfromUCS_le
Steve Frenche89dc922005-11-11 15:18:19 -08002997 (ses->serverDomain,
2998 (__le16 *)bcc_ptr,
2999 len, nls_codepage);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003000 bcc_ptr +=
3001 2 * (len + 1);
Steve Frenche89dc922005-11-11 15:18:19 -08003002 ses->serverDomain[2*len]
Linus Torvalds1da177e2005-04-16 15:20:36 -07003003 = 0;
Steve Frenche89dc922005-11-11 15:18:19 -08003004 ses->serverDomain
3005 [1 + (2 * len)]
Linus Torvalds1da177e2005-04-16 15:20:36 -07003006 = 0;
3007 } /* else no more room so create dummy domain string */
Steve Frencha424f8b2006-05-30 18:06:04 +00003008 else {
Steve Frenchcd49b492006-06-26 04:22:36 +00003009 kfree(ses->serverDomain);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003010 ses->serverDomain =
Pekka Enberge915fc42005-09-06 15:18:35 -07003011 kzalloc(2,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003012 GFP_KERNEL);
Steve Frencha424f8b2006-05-30 18:06:04 +00003013 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003014 } else { /* no room so create dummy domain and NOS string */
Steve Frenchcd49b492006-06-26 04:22:36 +00003015 kfree(ses->serverDomain);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003016 ses->serverDomain =
Pekka Enberge915fc42005-09-06 15:18:35 -07003017 kzalloc(2, GFP_KERNEL);
Steve Frenchcd49b492006-06-26 04:22:36 +00003018 kfree(ses->serverNOS);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003019 ses->serverNOS =
Pekka Enberge915fc42005-09-06 15:18:35 -07003020 kzalloc(2, GFP_KERNEL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003021 }
3022 } else { /* ASCII */
3023 len = strnlen(bcc_ptr, 1024);
3024 if (((long) bcc_ptr + len) - (long)
3025 pByteArea(smb_buffer_response)
3026 <= BCC(smb_buffer_response)) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003027 if (ses->serverOS)
Steve Frencha424f8b2006-05-30 18:06:04 +00003028 kfree(ses->serverOS);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003029 ses->serverOS =
Pekka Enberge915fc42005-09-06 15:18:35 -07003030 kzalloc(len + 1,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003031 GFP_KERNEL);
3032 strncpy(ses->serverOS,
3033 bcc_ptr, len);
3034
3035 bcc_ptr += len;
3036 bcc_ptr[0] = 0; /* null terminate string */
3037 bcc_ptr++;
3038
3039 len = strnlen(bcc_ptr, 1024);
Steve Frenchcd49b492006-06-26 04:22:36 +00003040 kfree(ses->serverNOS);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003041 ses->serverNOS =
Pekka Enberge915fc42005-09-06 15:18:35 -07003042 kzalloc(len + 1,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003043 GFP_KERNEL);
3044 strncpy(ses->serverNOS, bcc_ptr, len);
3045 bcc_ptr += len;
3046 bcc_ptr[0] = 0;
3047 bcc_ptr++;
3048
3049 len = strnlen(bcc_ptr, 1024);
Steve Frenchcd49b492006-06-26 04:22:36 +00003050 kfree(ses->serverDomain);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003051 ses->serverDomain =
Pekka Enberge915fc42005-09-06 15:18:35 -07003052 kzalloc(len + 1,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003053 GFP_KERNEL);
Steve French50c2f752007-07-13 00:33:32 +00003054 strncpy(ses->serverDomain,
3055 bcc_ptr, len);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003056 bcc_ptr += len;
3057 bcc_ptr[0] = 0;
3058 bcc_ptr++;
3059 } else
3060 cFYI(1,
Steve French63135e02007-07-17 17:34:02 +00003061 ("field of length %d "
3062 "extends beyond end of smb",
Linus Torvalds1da177e2005-04-16 15:20:36 -07003063 len));
3064 }
3065 } else {
Steve French50c2f752007-07-13 00:33:32 +00003066 cERROR(1, ("Security Blob Length extends beyond"
3067 " end of SMB"));
Linus Torvalds1da177e2005-04-16 15:20:36 -07003068 }
3069 } else {
3070 cERROR(1, ("No session structure passed in."));
3071 }
3072 } else {
3073 cERROR(1,
Steve French5815449d2006-02-14 01:36:20 +00003074 (" Invalid Word count %d:",
Linus Torvalds1da177e2005-04-16 15:20:36 -07003075 smb_buffer_response->WordCount));
3076 rc = -EIO;
3077 }
3078
Mariusz Kozlowskia8a11d32007-10-03 16:41:24 +00003079 cifs_buf_release(smb_buffer);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003080
3081 return rc;
3082}
3083static int
3084CIFSNTLMSSPAuthSessSetup(unsigned int xid, struct cifsSesInfo *ses,
Steve French4b18f2a2008-04-29 00:06:05 +00003085 char *ntlm_session_key, bool ntlmv2_flag,
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00003086 const struct nls_table *nls_codepage)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003087{
3088 struct smb_hdr *smb_buffer;
3089 struct smb_hdr *smb_buffer_response;
3090 SESSION_SETUP_ANDX *pSMB;
3091 SESSION_SETUP_ANDX *pSMBr;
3092 char *bcc_ptr;
3093 char *user;
3094 char *domain;
3095 int rc = 0;
3096 int remaining_words = 0;
3097 int bytes_returned = 0;
3098 int len;
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00003099 int SecurityBlobLength = sizeof(AUTHENTICATE_MESSAGE);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003100 PAUTHENTICATE_MESSAGE SecurityBlob;
3101 __u32 negotiate_flags, capabilities;
3102 __u16 count;
3103
3104 cFYI(1, ("In NTLMSSPSessSetup (Authenticate)"));
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003105 if (ses == NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003106 return -EINVAL;
3107 user = ses->userName;
3108 domain = ses->domainName;
3109 smb_buffer = cifs_buf_get();
3110 if (smb_buffer == NULL) {
3111 return -ENOMEM;
3112 }
3113 smb_buffer_response = smb_buffer;
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00003114 pSMB = (SESSION_SETUP_ANDX *)smb_buffer;
3115 pSMBr = (SESSION_SETUP_ANDX *)smb_buffer_response;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003116
3117 /* send SMBsessionSetup here */
3118 header_assemble(smb_buffer, SMB_COM_SESSION_SETUP_ANDX,
3119 NULL /* no tCon exists yet */ , 12 /* wct */ );
Steve French1982c342005-08-17 12:38:22 -07003120
3121 smb_buffer->Mid = GetNextMid(ses->server);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003122 pSMB->req.hdr.Flags |= (SMBFLG_CASELESS | SMBFLG_CANONICAL_PATH_FORMAT);
3123 pSMB->req.hdr.Flags2 |= SMBFLG2_EXT_SEC;
3124 pSMB->req.AndXCommand = 0xFF;
3125 pSMB->req.MaxBufferSize = cpu_to_le16(ses->server->maxBuf);
3126 pSMB->req.MaxMpxCount = cpu_to_le16(ses->server->maxReq);
3127
3128 pSMB->req.hdr.Uid = ses->Suid;
3129
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003130 if (ses->server->secMode & (SECMODE_SIGN_REQUIRED | SECMODE_SIGN_ENABLED))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003131 smb_buffer->Flags2 |= SMBFLG2_SECURITY_SIGNATURE;
3132
3133 capabilities = CAP_LARGE_FILES | CAP_NT_SMBS | CAP_LEVEL_II_OPLOCKS |
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00003134 CAP_EXTENDED_SECURITY;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003135 if (ses->capabilities & CAP_UNICODE) {
3136 smb_buffer->Flags2 |= SMBFLG2_UNICODE;
3137 capabilities |= CAP_UNICODE;
3138 }
3139 if (ses->capabilities & CAP_STATUS32) {
3140 smb_buffer->Flags2 |= SMBFLG2_ERR_STATUS;
3141 capabilities |= CAP_STATUS32;
3142 }
3143 if (ses->capabilities & CAP_DFS) {
3144 smb_buffer->Flags2 |= SMBFLG2_DFS;
3145 capabilities |= CAP_DFS;
3146 }
3147 pSMB->req.Capabilities = cpu_to_le32(capabilities);
3148
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00003149 bcc_ptr = (char *)&pSMB->req.SecurityBlob;
3150 SecurityBlob = (PAUTHENTICATE_MESSAGE)bcc_ptr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003151 strncpy(SecurityBlob->Signature, NTLMSSP_SIGNATURE, 8);
3152 SecurityBlob->MessageType = NtLmAuthenticate;
3153 bcc_ptr += SecurityBlobLength;
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00003154 negotiate_flags = NTLMSSP_NEGOTIATE_UNICODE | NTLMSSP_REQUEST_TARGET |
3155 NTLMSSP_NEGOTIATE_NTLM | NTLMSSP_NEGOTIATE_TARGET_INFO |
3156 0x80000000 | NTLMSSP_NEGOTIATE_128;
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003157 if (sign_CIFS_PDUs)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003158 negotiate_flags |= /* NTLMSSP_NEGOTIATE_ALWAYS_SIGN |*/ NTLMSSP_NEGOTIATE_SIGN;
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003159 if (ntlmv2_flag)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003160 negotiate_flags |= NTLMSSP_NEGOTIATE_NTLMV2;
3161
3162/* setup pointers to domain name and workstation name */
3163
3164 SecurityBlob->WorkstationName.Buffer = 0;
3165 SecurityBlob->WorkstationName.Length = 0;
3166 SecurityBlob->WorkstationName.MaximumLength = 0;
3167 SecurityBlob->SessionKey.Length = 0;
3168 SecurityBlob->SessionKey.MaximumLength = 0;
3169 SecurityBlob->SessionKey.Buffer = 0;
3170
3171 SecurityBlob->LmChallengeResponse.Length = 0;
3172 SecurityBlob->LmChallengeResponse.MaximumLength = 0;
3173 SecurityBlob->LmChallengeResponse.Buffer = 0;
3174
3175 SecurityBlob->NtChallengeResponse.Length =
Steve French7c7b25b2006-06-01 19:20:10 +00003176 cpu_to_le16(CIFS_SESS_KEY_SIZE);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003177 SecurityBlob->NtChallengeResponse.MaximumLength =
Steve French7c7b25b2006-06-01 19:20:10 +00003178 cpu_to_le16(CIFS_SESS_KEY_SIZE);
3179 memcpy(bcc_ptr, ntlm_session_key, CIFS_SESS_KEY_SIZE);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003180 SecurityBlob->NtChallengeResponse.Buffer =
3181 cpu_to_le32(SecurityBlobLength);
Steve French7c7b25b2006-06-01 19:20:10 +00003182 SecurityBlobLength += CIFS_SESS_KEY_SIZE;
3183 bcc_ptr += CIFS_SESS_KEY_SIZE;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003184
3185 if (ses->capabilities & CAP_UNICODE) {
3186 if (domain == NULL) {
3187 SecurityBlob->DomainName.Buffer = 0;
3188 SecurityBlob->DomainName.Length = 0;
3189 SecurityBlob->DomainName.MaximumLength = 0;
3190 } else {
Steve French77159b42007-08-31 01:10:17 +00003191 __u16 ln = cifs_strtoUCS((__le16 *) bcc_ptr, domain, 64,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003192 nls_codepage);
Steve French77159b42007-08-31 01:10:17 +00003193 ln *= 2;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003194 SecurityBlob->DomainName.MaximumLength =
Steve French77159b42007-08-31 01:10:17 +00003195 cpu_to_le16(ln);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003196 SecurityBlob->DomainName.Buffer =
3197 cpu_to_le32(SecurityBlobLength);
Steve French77159b42007-08-31 01:10:17 +00003198 bcc_ptr += ln;
3199 SecurityBlobLength += ln;
3200 SecurityBlob->DomainName.Length = cpu_to_le16(ln);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003201 }
3202 if (user == NULL) {
3203 SecurityBlob->UserName.Buffer = 0;
3204 SecurityBlob->UserName.Length = 0;
3205 SecurityBlob->UserName.MaximumLength = 0;
3206 } else {
Steve French77159b42007-08-31 01:10:17 +00003207 __u16 ln = cifs_strtoUCS((__le16 *) bcc_ptr, user, 64,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003208 nls_codepage);
Steve French77159b42007-08-31 01:10:17 +00003209 ln *= 2;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003210 SecurityBlob->UserName.MaximumLength =
Steve French77159b42007-08-31 01:10:17 +00003211 cpu_to_le16(ln);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003212 SecurityBlob->UserName.Buffer =
3213 cpu_to_le32(SecurityBlobLength);
Steve French77159b42007-08-31 01:10:17 +00003214 bcc_ptr += ln;
3215 SecurityBlobLength += ln;
3216 SecurityBlob->UserName.Length = cpu_to_le16(ln);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003217 }
3218
Steve French63135e02007-07-17 17:34:02 +00003219 /* SecurityBlob->WorkstationName.Length =
3220 cifs_strtoUCS((__le16 *) bcc_ptr, "AMACHINE",64, nls_codepage);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003221 SecurityBlob->WorkstationName.Length *= 2;
Steve French63135e02007-07-17 17:34:02 +00003222 SecurityBlob->WorkstationName.MaximumLength =
3223 cpu_to_le16(SecurityBlob->WorkstationName.Length);
3224 SecurityBlob->WorkstationName.Buffer =
3225 cpu_to_le32(SecurityBlobLength);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003226 bcc_ptr += SecurityBlob->WorkstationName.Length;
3227 SecurityBlobLength += SecurityBlob->WorkstationName.Length;
Steve French63135e02007-07-17 17:34:02 +00003228 SecurityBlob->WorkstationName.Length =
3229 cpu_to_le16(SecurityBlob->WorkstationName.Length); */
Linus Torvalds1da177e2005-04-16 15:20:36 -07003230
3231 if ((long) bcc_ptr % 2) {
3232 *bcc_ptr = 0;
3233 bcc_ptr++;
3234 }
3235 bytes_returned =
Steve Frenche89dc922005-11-11 15:18:19 -08003236 cifs_strtoUCS((__le16 *) bcc_ptr, "Linux version ",
Linus Torvalds1da177e2005-04-16 15:20:36 -07003237 32, nls_codepage);
3238 bcc_ptr += 2 * bytes_returned;
3239 bytes_returned =
Serge E. Hallyne9ff3992006-10-02 02:18:11 -07003240 cifs_strtoUCS((__le16 *) bcc_ptr, utsname()->release, 32,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003241 nls_codepage);
3242 bcc_ptr += 2 * bytes_returned;
3243 bcc_ptr += 2; /* null term version string */
3244 bytes_returned =
Steve Frenche89dc922005-11-11 15:18:19 -08003245 cifs_strtoUCS((__le16 *) bcc_ptr, CIFS_NETWORK_OPSYS,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003246 64, nls_codepage);
3247 bcc_ptr += 2 * bytes_returned;
3248 *(bcc_ptr + 1) = 0;
3249 *(bcc_ptr + 2) = 0;
3250 bcc_ptr += 2; /* null terminate network opsys string */
3251 *(bcc_ptr + 1) = 0;
3252 *(bcc_ptr + 2) = 0;
3253 bcc_ptr += 2; /* null domain */
3254 } else { /* ASCII */
3255 if (domain == NULL) {
3256 SecurityBlob->DomainName.Buffer = 0;
3257 SecurityBlob->DomainName.Length = 0;
3258 SecurityBlob->DomainName.MaximumLength = 0;
3259 } else {
Steve French77159b42007-08-31 01:10:17 +00003260 __u16 ln;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003261 negotiate_flags |= NTLMSSP_NEGOTIATE_DOMAIN_SUPPLIED;
3262 strncpy(bcc_ptr, domain, 63);
Steve French77159b42007-08-31 01:10:17 +00003263 ln = strnlen(domain, 64);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003264 SecurityBlob->DomainName.MaximumLength =
Steve French77159b42007-08-31 01:10:17 +00003265 cpu_to_le16(ln);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003266 SecurityBlob->DomainName.Buffer =
3267 cpu_to_le32(SecurityBlobLength);
Steve French77159b42007-08-31 01:10:17 +00003268 bcc_ptr += ln;
3269 SecurityBlobLength += ln;
3270 SecurityBlob->DomainName.Length = cpu_to_le16(ln);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003271 }
3272 if (user == NULL) {
3273 SecurityBlob->UserName.Buffer = 0;
3274 SecurityBlob->UserName.Length = 0;
3275 SecurityBlob->UserName.MaximumLength = 0;
3276 } else {
Steve French77159b42007-08-31 01:10:17 +00003277 __u16 ln;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003278 strncpy(bcc_ptr, user, 63);
Steve French77159b42007-08-31 01:10:17 +00003279 ln = strnlen(user, 64);
3280 SecurityBlob->UserName.MaximumLength = cpu_to_le16(ln);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003281 SecurityBlob->UserName.Buffer =
Steve French77159b42007-08-31 01:10:17 +00003282 cpu_to_le32(SecurityBlobLength);
3283 bcc_ptr += ln;
3284 SecurityBlobLength += ln;
3285 SecurityBlob->UserName.Length = cpu_to_le16(ln);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003286 }
3287 /* BB fill in our workstation name if known BB */
3288
3289 strcpy(bcc_ptr, "Linux version ");
3290 bcc_ptr += strlen("Linux version ");
Serge E. Hallyne9ff3992006-10-02 02:18:11 -07003291 strcpy(bcc_ptr, utsname()->release);
3292 bcc_ptr += strlen(utsname()->release) + 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003293 strcpy(bcc_ptr, CIFS_NETWORK_OPSYS);
3294 bcc_ptr += strlen(CIFS_NETWORK_OPSYS) + 1;
3295 bcc_ptr++; /* null domain */
3296 *bcc_ptr = 0;
3297 }
3298 SecurityBlob->NegotiateFlags = cpu_to_le32(negotiate_flags);
3299 pSMB->req.SecurityBlobLength = cpu_to_le16(SecurityBlobLength);
3300 count = (long) bcc_ptr - (long) pByteArea(smb_buffer);
3301 smb_buffer->smb_buf_length += count;
3302 pSMB->req.ByteCount = cpu_to_le16(count);
3303
3304 rc = SendReceive(xid, ses, smb_buffer, smb_buffer_response,
Steve French133672e2007-11-13 22:41:37 +00003305 &bytes_returned, CIFS_LONG_OP);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003306 if (rc) {
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00003307/* rc = map_smb_to_linux_error(smb_buffer_response) done in SendReceive now */
3308 } else if ((smb_buffer_response->WordCount == 3) ||
3309 (smb_buffer_response->WordCount == 4)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003310 __u16 action = le16_to_cpu(pSMBr->resp.Action);
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00003311 __u16 blob_len = le16_to_cpu(pSMBr->resp.SecurityBlobLength);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003312 if (action & GUEST_LOGIN)
Steve French50c2f752007-07-13 00:33:32 +00003313 cFYI(1, (" Guest login")); /* BB Should we set anything
3314 in SesInfo struct ? */
3315/* if (SecurityBlob2->MessageType != NtLm??) {
3316 cFYI("Unexpected message type on auth response is %d"));
3317 } */
3318
Linus Torvalds1da177e2005-04-16 15:20:36 -07003319 if (ses) {
3320 cFYI(1,
Steve French50c2f752007-07-13 00:33:32 +00003321 ("Check challenge UID %d vs auth response UID %d",
Linus Torvalds1da177e2005-04-16 15:20:36 -07003322 ses->Suid, smb_buffer_response->Uid));
Steve French50c2f752007-07-13 00:33:32 +00003323 /* UID left in wire format */
3324 ses->Suid = smb_buffer_response->Uid;
3325 bcc_ptr = pByteArea(smb_buffer_response);
3326 /* response can have either 3 or 4 word count - Samba sends 3 */
Linus Torvalds1da177e2005-04-16 15:20:36 -07003327 if ((pSMBr->resp.hdr.WordCount == 3)
3328 || ((pSMBr->resp.hdr.WordCount == 4)
3329 && (blob_len <
3330 pSMBr->resp.ByteCount))) {
3331 if (pSMBr->resp.hdr.WordCount == 4) {
3332 bcc_ptr +=
3333 blob_len;
3334 cFYI(1,
3335 ("Security Blob Length %d ",
3336 blob_len));
3337 }
3338
3339 cFYI(1,
3340 ("NTLMSSP response to Authenticate "));
3341
3342 if (smb_buffer->Flags2 & SMBFLG2_UNICODE) {
3343 if ((long) (bcc_ptr) % 2) {
3344 remaining_words =
3345 (BCC(smb_buffer_response)
3346 - 1) / 2;
3347 bcc_ptr++; /* Unicode strings must be word aligned */
3348 } else {
3349 remaining_words = BCC(smb_buffer_response) / 2;
3350 }
Steve French77159b42007-08-31 01:10:17 +00003351 len = UniStrnlen((wchar_t *) bcc_ptr,
3352 remaining_words - 1);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003353/* We look for obvious messed up bcc or strings in response so we do not go off
3354 the end since (at least) WIN2K and Windows XP have a major bug in not null
3355 terminating last Unicode string in response */
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003356 if (ses->serverOS)
Steve French08775832006-05-30 18:08:26 +00003357 kfree(ses->serverOS);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003358 ses->serverOS =
Pekka Enberge915fc42005-09-06 15:18:35 -07003359 kzalloc(2 * (len + 1), GFP_KERNEL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003360 cifs_strfromUCS_le(ses->serverOS,
Steve Frenche89dc922005-11-11 15:18:19 -08003361 (__le16 *)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003362 bcc_ptr, len,
3363 nls_codepage);
3364 bcc_ptr += 2 * (len + 1);
3365 remaining_words -= len + 1;
3366 ses->serverOS[2 * len] = 0;
3367 ses->serverOS[1 + (2 * len)] = 0;
3368 if (remaining_words > 0) {
3369 len = UniStrnlen((wchar_t *)
3370 bcc_ptr,
3371 remaining_words
3372 - 1);
Steve Frenchcd49b492006-06-26 04:22:36 +00003373 kfree(ses->serverNOS);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003374 ses->serverNOS =
Pekka Enberge915fc42005-09-06 15:18:35 -07003375 kzalloc(2 * (len + 1),
Linus Torvalds1da177e2005-04-16 15:20:36 -07003376 GFP_KERNEL);
3377 cifs_strfromUCS_le(ses->
3378 serverNOS,
Steve Frenche89dc922005-11-11 15:18:19 -08003379 (__le16 *)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003380 bcc_ptr,
3381 len,
3382 nls_codepage);
3383 bcc_ptr += 2 * (len + 1);
3384 ses->serverNOS[2 * len] = 0;
3385 ses->serverNOS[1+(2*len)] = 0;
3386 remaining_words -= len + 1;
3387 if (remaining_words > 0) {
Steve French50c2f752007-07-13 00:33:32 +00003388 len = UniStrnlen((wchar_t *) bcc_ptr, remaining_words);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003389 /* last string not always null terminated (e.g. for Windows XP & 2000) */
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003390 if (ses->serverDomain)
Steve Frencha424f8b2006-05-30 18:06:04 +00003391 kfree(ses->serverDomain);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003392 ses->serverDomain =
Pekka Enberge915fc42005-09-06 15:18:35 -07003393 kzalloc(2 *
Linus Torvalds1da177e2005-04-16 15:20:36 -07003394 (len +
3395 1),
3396 GFP_KERNEL);
3397 cifs_strfromUCS_le
3398 (ses->
3399 serverDomain,
Steve Frenche89dc922005-11-11 15:18:19 -08003400 (__le16 *)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003401 bcc_ptr, len,
3402 nls_codepage);
3403 bcc_ptr +=
3404 2 * (len + 1);
3405 ses->
3406 serverDomain[2
3407 * len]
3408 = 0;
3409 ses->
3410 serverDomain[1
3411 +
3412 (2
3413 *
3414 len)]
3415 = 0;
3416 } /* else no more room so create dummy domain string */
Steve Frencha424f8b2006-05-30 18:06:04 +00003417 else {
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003418 if (ses->serverDomain)
Steve Frencha424f8b2006-05-30 18:06:04 +00003419 kfree(ses->serverDomain);
Pekka Enberge915fc42005-09-06 15:18:35 -07003420 ses->serverDomain = kzalloc(2,GFP_KERNEL);
Steve Frencha424f8b2006-05-30 18:06:04 +00003421 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003422 } else { /* no room so create dummy domain and NOS string */
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003423 if (ses->serverDomain)
Steve Frencha424f8b2006-05-30 18:06:04 +00003424 kfree(ses->serverDomain);
Pekka Enberge915fc42005-09-06 15:18:35 -07003425 ses->serverDomain = kzalloc(2, GFP_KERNEL);
Steve Frenchcd49b492006-06-26 04:22:36 +00003426 kfree(ses->serverNOS);
Pekka Enberge915fc42005-09-06 15:18:35 -07003427 ses->serverNOS = kzalloc(2, GFP_KERNEL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003428 }
3429 } else { /* ASCII */
3430 len = strnlen(bcc_ptr, 1024);
Steve French50c2f752007-07-13 00:33:32 +00003431 if (((long) bcc_ptr + len) -
3432 (long) pByteArea(smb_buffer_response)
Steve French63135e02007-07-17 17:34:02 +00003433 <= BCC(smb_buffer_response)) {
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003434 if (ses->serverOS)
Steve Frencha424f8b2006-05-30 18:06:04 +00003435 kfree(ses->serverOS);
Steve French77159b42007-08-31 01:10:17 +00003436 ses->serverOS = kzalloc(len + 1, GFP_KERNEL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003437 strncpy(ses->serverOS,bcc_ptr, len);
3438
3439 bcc_ptr += len;
3440 bcc_ptr[0] = 0; /* null terminate the string */
3441 bcc_ptr++;
3442
3443 len = strnlen(bcc_ptr, 1024);
Steve Frenchcd49b492006-06-26 04:22:36 +00003444 kfree(ses->serverNOS);
Steve French50c2f752007-07-13 00:33:32 +00003445 ses->serverNOS = kzalloc(len+1,
3446 GFP_KERNEL);
Steve French63135e02007-07-17 17:34:02 +00003447 strncpy(ses->serverNOS,
3448 bcc_ptr, len);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003449 bcc_ptr += len;
3450 bcc_ptr[0] = 0;
3451 bcc_ptr++;
3452
3453 len = strnlen(bcc_ptr, 1024);
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003454 if (ses->serverDomain)
Steve Frencha424f8b2006-05-30 18:06:04 +00003455 kfree(ses->serverDomain);
Steve French63135e02007-07-17 17:34:02 +00003456 ses->serverDomain =
3457 kzalloc(len+1,
3458 GFP_KERNEL);
3459 strncpy(ses->serverDomain,
3460 bcc_ptr, len);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003461 bcc_ptr += len;
3462 bcc_ptr[0] = 0;
3463 bcc_ptr++;
3464 } else
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00003465 cFYI(1, ("field of length %d "
Steve French63135e02007-07-17 17:34:02 +00003466 "extends beyond end of smb ",
Linus Torvalds1da177e2005-04-16 15:20:36 -07003467 len));
3468 }
3469 } else {
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00003470 cERROR(1, ("Security Blob extends beyond end "
Steve French63135e02007-07-17 17:34:02 +00003471 "of SMB"));
Linus Torvalds1da177e2005-04-16 15:20:36 -07003472 }
3473 } else {
3474 cERROR(1, ("No session structure passed in."));
3475 }
3476 } else {
Cyrill Gorcunov6345a3a2007-10-16 17:57:55 +00003477 cERROR(1, ("Invalid Word count %d: ",
Linus Torvalds1da177e2005-04-16 15:20:36 -07003478 smb_buffer_response->WordCount));
3479 rc = -EIO;
3480 }
3481
Mariusz Kozlowskia8a11d32007-10-03 16:41:24 +00003482 cifs_buf_release(smb_buffer);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003483
3484 return rc;
3485}
3486
3487int
3488CIFSTCon(unsigned int xid, struct cifsSesInfo *ses,
3489 const char *tree, struct cifsTconInfo *tcon,
3490 const struct nls_table *nls_codepage)
3491{
3492 struct smb_hdr *smb_buffer;
3493 struct smb_hdr *smb_buffer_response;
3494 TCONX_REQ *pSMB;
3495 TCONX_RSP *pSMBr;
3496 unsigned char *bcc_ptr;
3497 int rc = 0;
3498 int length;
3499 __u16 count;
3500
3501 if (ses == NULL)
3502 return -EIO;
3503
3504 smb_buffer = cifs_buf_get();
3505 if (smb_buffer == NULL) {
3506 return -ENOMEM;
3507 }
3508 smb_buffer_response = smb_buffer;
3509
3510 header_assemble(smb_buffer, SMB_COM_TREE_CONNECT_ANDX,
3511 NULL /*no tid */ , 4 /*wct */ );
Steve French1982c342005-08-17 12:38:22 -07003512
3513 smb_buffer->Mid = GetNextMid(ses->server);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003514 smb_buffer->Uid = ses->Suid;
3515 pSMB = (TCONX_REQ *) smb_buffer;
3516 pSMBr = (TCONX_RSP *) smb_buffer_response;
3517
3518 pSMB->AndXCommand = 0xFF;
3519 pSMB->Flags = cpu_to_le16(TCON_EXTENDED_SECINFO);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003520 bcc_ptr = &pSMB->Password[0];
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003521 if ((ses->server->secMode) & SECMODE_USER) {
Steve Frencheeac8042006-01-13 21:34:58 -08003522 pSMB->PasswordLength = cpu_to_le16(1); /* minimum */
Steve French7c7b25b2006-06-01 19:20:10 +00003523 *bcc_ptr = 0; /* password is null byte */
Steve Frencheeac8042006-01-13 21:34:58 -08003524 bcc_ptr++; /* skip password */
Steve French7c7b25b2006-06-01 19:20:10 +00003525 /* already aligned so no need to do it below */
Steve Frencheeac8042006-01-13 21:34:58 -08003526 } else {
Steve French7c7b25b2006-06-01 19:20:10 +00003527 pSMB->PasswordLength = cpu_to_le16(CIFS_SESS_KEY_SIZE);
Steve Frencheeac8042006-01-13 21:34:58 -08003528 /* BB FIXME add code to fail this if NTLMv2 or Kerberos
3529 specified as required (when that support is added to
3530 the vfs in the future) as only NTLM or the much
Steve French7c7b25b2006-06-01 19:20:10 +00003531 weaker LANMAN (which we do not send by default) is accepted
Steve Frencheeac8042006-01-13 21:34:58 -08003532 by Samba (not sure whether other servers allow
3533 NTLMv2 password here) */
Steve French7c7b25b2006-06-01 19:20:10 +00003534#ifdef CONFIG_CIFS_WEAK_PW_HASH
Steve French50c2f752007-07-13 00:33:32 +00003535 if ((extended_security & CIFSSEC_MAY_LANMAN) &&
Steve French7c7b25b2006-06-01 19:20:10 +00003536 (ses->server->secType == LANMAN))
3537 calc_lanman_hash(ses, bcc_ptr);
3538 else
3539#endif /* CIFS_WEAK_PW_HASH */
Steve Frencheeac8042006-01-13 21:34:58 -08003540 SMBNTencrypt(ses->password,
3541 ses->server->cryptKey,
3542 bcc_ptr);
3543
Steve French7c7b25b2006-06-01 19:20:10 +00003544 bcc_ptr += CIFS_SESS_KEY_SIZE;
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003545 if (ses->capabilities & CAP_UNICODE) {
Steve French7c7b25b2006-06-01 19:20:10 +00003546 /* must align unicode strings */
3547 *bcc_ptr = 0; /* null byte password */
3548 bcc_ptr++;
3549 }
Steve Frencheeac8042006-01-13 21:34:58 -08003550 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003551
Steve French50c2f752007-07-13 00:33:32 +00003552 if (ses->server->secMode &
Steve Frencha878fb22006-05-30 18:04:19 +00003553 (SECMODE_SIGN_REQUIRED | SECMODE_SIGN_ENABLED))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003554 smb_buffer->Flags2 |= SMBFLG2_SECURITY_SIGNATURE;
3555
3556 if (ses->capabilities & CAP_STATUS32) {
3557 smb_buffer->Flags2 |= SMBFLG2_ERR_STATUS;
3558 }
3559 if (ses->capabilities & CAP_DFS) {
3560 smb_buffer->Flags2 |= SMBFLG2_DFS;
3561 }
3562 if (ses->capabilities & CAP_UNICODE) {
3563 smb_buffer->Flags2 |= SMBFLG2_UNICODE;
3564 length =
Steve French50c2f752007-07-13 00:33:32 +00003565 cifs_strtoUCS((__le16 *) bcc_ptr, tree,
3566 6 /* max utf8 char length in bytes */ *
Steve Frencha878fb22006-05-30 18:04:19 +00003567 (/* server len*/ + 256 /* share len */), nls_codepage);
3568 bcc_ptr += 2 * length; /* convert num 16 bit words to bytes */
Linus Torvalds1da177e2005-04-16 15:20:36 -07003569 bcc_ptr += 2; /* skip trailing null */
3570 } else { /* ASCII */
Linus Torvalds1da177e2005-04-16 15:20:36 -07003571 strcpy(bcc_ptr, tree);
3572 bcc_ptr += strlen(tree) + 1;
3573 }
3574 strcpy(bcc_ptr, "?????");
3575 bcc_ptr += strlen("?????");
3576 bcc_ptr += 1;
3577 count = bcc_ptr - &pSMB->Password[0];
3578 pSMB->hdr.smb_buf_length += count;
3579 pSMB->ByteCount = cpu_to_le16(count);
3580
Steve French133672e2007-11-13 22:41:37 +00003581 rc = SendReceive(xid, ses, smb_buffer, smb_buffer_response, &length,
3582 CIFS_STD_OP);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003583
3584 /* if (rc) rc = map_smb_to_linux_error(smb_buffer_response); */
3585 /* above now done in SendReceive */
3586 if ((rc == 0) && (tcon != NULL)) {
3587 tcon->tidStatus = CifsGood;
Steve French3b795212008-11-13 19:45:32 +00003588 tcon->need_reconnect = false;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003589 tcon->tid = smb_buffer_response->Tid;
3590 bcc_ptr = pByteArea(smb_buffer_response);
3591 length = strnlen(bcc_ptr, BCC(smb_buffer_response) - 2);
Steve French50c2f752007-07-13 00:33:32 +00003592 /* skip service field (NB: this field is always ASCII) */
Steve French7f8ed422007-09-28 22:28:55 +00003593 if (length == 3) {
3594 if ((bcc_ptr[0] == 'I') && (bcc_ptr[1] == 'P') &&
3595 (bcc_ptr[2] == 'C')) {
3596 cFYI(1, ("IPC connection"));
3597 tcon->ipc = 1;
3598 }
3599 } else if (length == 2) {
3600 if ((bcc_ptr[0] == 'A') && (bcc_ptr[1] == ':')) {
3601 /* the most common case */
3602 cFYI(1, ("disk share connection"));
3603 }
3604 }
Steve French50c2f752007-07-13 00:33:32 +00003605 bcc_ptr += length + 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003606 strncpy(tcon->treeName, tree, MAX_TREE_SIZE);
3607 if (smb_buffer->Flags2 & SMBFLG2_UNICODE) {
3608 length = UniStrnlen((wchar_t *) bcc_ptr, 512);
3609 if ((bcc_ptr + (2 * length)) -
3610 pByteArea(smb_buffer_response) <=
3611 BCC(smb_buffer_response)) {
Jesper Juhlf99d49a2005-11-07 01:01:34 -08003612 kfree(tcon->nativeFileSystem);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003613 tcon->nativeFileSystem =
Pekka Enberge915fc42005-09-06 15:18:35 -07003614 kzalloc(length + 2, GFP_KERNEL);
Steve French88f370a2007-09-15 03:01:17 +00003615 if (tcon->nativeFileSystem)
3616 cifs_strfromUCS_le(
3617 tcon->nativeFileSystem,
3618 (__le16 *) bcc_ptr,
3619 length, nls_codepage);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003620 bcc_ptr += 2 * length;
3621 bcc_ptr[0] = 0; /* null terminate the string */
3622 bcc_ptr[1] = 0;
3623 bcc_ptr += 2;
3624 }
Steve French50c2f752007-07-13 00:33:32 +00003625 /* else do not bother copying these information fields*/
Linus Torvalds1da177e2005-04-16 15:20:36 -07003626 } else {
3627 length = strnlen(bcc_ptr, 1024);
3628 if ((bcc_ptr + length) -
3629 pByteArea(smb_buffer_response) <=
3630 BCC(smb_buffer_response)) {
Jesper Juhlf99d49a2005-11-07 01:01:34 -08003631 kfree(tcon->nativeFileSystem);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003632 tcon->nativeFileSystem =
Pekka Enberge915fc42005-09-06 15:18:35 -07003633 kzalloc(length + 1, GFP_KERNEL);
Steve French88f370a2007-09-15 03:01:17 +00003634 if (tcon->nativeFileSystem)
3635 strncpy(tcon->nativeFileSystem, bcc_ptr,
3636 length);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003637 }
Steve French50c2f752007-07-13 00:33:32 +00003638 /* else do not bother copying these information fields*/
Linus Torvalds1da177e2005-04-16 15:20:36 -07003639 }
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003640 if ((smb_buffer_response->WordCount == 3) ||
Steve French1a4e15a2006-10-12 21:33:51 +00003641 (smb_buffer_response->WordCount == 7))
3642 /* field is in same location */
Steve French39798772006-05-31 22:40:51 +00003643 tcon->Flags = le16_to_cpu(pSMBr->OptionalSupport);
3644 else
3645 tcon->Flags = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003646 cFYI(1, ("Tcon flags: 0x%x ", tcon->Flags));
3647 } else if ((rc == 0) && tcon == NULL) {
Steve French50c2f752007-07-13 00:33:32 +00003648 /* all we need to save for IPC$ connection */
Linus Torvalds1da177e2005-04-16 15:20:36 -07003649 ses->ipc_tid = smb_buffer_response->Tid;
3650 }
3651
Mariusz Kozlowskia8a11d32007-10-03 16:41:24 +00003652 cifs_buf_release(smb_buffer);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003653 return rc;
3654}
3655
3656int
3657cifs_umount(struct super_block *sb, struct cifs_sb_info *cifs_sb)
3658{
3659 int rc = 0;
Steve French50c2f752007-07-13 00:33:32 +00003660 char *tmp;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003661
Jeff Laytonf1987b42008-11-15 11:12:47 -05003662 if (cifs_sb->tcon)
3663 cifs_put_tcon(cifs_sb->tcon);
Steve French50c2f752007-07-13 00:33:32 +00003664
Linus Torvalds1da177e2005-04-16 15:20:36 -07003665 cifs_sb->tcon = NULL;
Steve French2fe87f02006-09-21 07:02:52 +00003666 tmp = cifs_sb->prepath;
3667 cifs_sb->prepathlen = 0;
3668 cifs_sb->prepath = NULL;
3669 kfree(tmp);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003670
Steve French88e7d702008-01-03 17:37:09 +00003671 return rc;
Steve French50c2f752007-07-13 00:33:32 +00003672}
Linus Torvalds1da177e2005-04-16 15:20:36 -07003673
3674int cifs_setup_session(unsigned int xid, struct cifsSesInfo *pSesInfo,
Steve French50c2f752007-07-13 00:33:32 +00003675 struct nls_table *nls_info)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003676{
3677 int rc = 0;
Steve French7c7b25b2006-06-01 19:20:10 +00003678 char ntlm_session_key[CIFS_SESS_KEY_SIZE];
Steve French4b18f2a2008-04-29 00:06:05 +00003679 bool ntlmv2_flag = false;
Steve Frenchad009ac2005-04-28 22:41:05 -07003680 int first_time = 0;
Jeff Laytoncb7691b2008-08-18 15:41:05 -04003681 struct TCP_Server_Info *server = pSesInfo->server;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003682
3683 /* what if server changes its buffer size after dropping the session? */
Jeff Laytoncb7691b2008-08-18 15:41:05 -04003684 if (server->maxBuf == 0) /* no need to send on reconnect */ {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003685 rc = CIFSSMBNegotiate(xid, pSesInfo);
Jeff Laytoncb7691b2008-08-18 15:41:05 -04003686 if (rc == -EAGAIN) {
3687 /* retry only once on 1st time connection */
Linus Torvalds1da177e2005-04-16 15:20:36 -07003688 rc = CIFSSMBNegotiate(xid, pSesInfo);
Steve French50c2f752007-07-13 00:33:32 +00003689 if (rc == -EAGAIN)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003690 rc = -EHOSTDOWN;
3691 }
Steve Frenchfb8c4b12007-07-10 01:16:18 +00003692 if (rc == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003693 spin_lock(&GlobalMid_Lock);
Jeff Laytoncb7691b2008-08-18 15:41:05 -04003694 if (server->tcpStatus != CifsExiting)
3695 server->tcpStatus = CifsGood;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003696 else
3697 rc = -EHOSTDOWN;
3698 spin_unlock(&GlobalMid_Lock);
3699
3700 }
Steve Frenchad009ac2005-04-28 22:41:05 -07003701 first_time = 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003702 }
Steve French26b994f2008-08-06 05:11:33 +00003703
3704 if (rc)
3705 goto ss_err_exit;
3706
3707 pSesInfo->flags = 0;
Jeff Laytoncb7691b2008-08-18 15:41:05 -04003708 pSesInfo->capabilities = server->capabilities;
Steve French26b994f2008-08-06 05:11:33 +00003709 if (linuxExtEnabled == 0)
3710 pSesInfo->capabilities &= (~CAP_UNIX);
Steve Frenchad009ac2005-04-28 22:41:05 -07003711 /* pSesInfo->sequence_number = 0;*/
Steve French26b994f2008-08-06 05:11:33 +00003712 cFYI(1, ("Security Mode: 0x%x Capabilities: 0x%x TimeAdjust: %d",
Jeff Laytoncb7691b2008-08-18 15:41:05 -04003713 server->secMode, server->capabilities, server->timeAdj));
3714
Steve French26b994f2008-08-06 05:11:33 +00003715 if (experimEnabled < 2)
3716 rc = CIFS_SessSetup(xid, pSesInfo, first_time, nls_info);
3717 else if (extended_security
3718 && (pSesInfo->capabilities & CAP_EXTENDED_SECURITY)
Jeff Laytoncb7691b2008-08-18 15:41:05 -04003719 && (server->secType == NTLMSSP)) {
Steve French26b994f2008-08-06 05:11:33 +00003720 rc = -EOPNOTSUPP;
3721 } else if (extended_security
3722 && (pSesInfo->capabilities & CAP_EXTENDED_SECURITY)
Jeff Laytoncb7691b2008-08-18 15:41:05 -04003723 && (server->secType == RawNTLMSSP)) {
Steve French26b994f2008-08-06 05:11:33 +00003724 cFYI(1, ("NTLMSSP sesssetup"));
3725 rc = CIFSNTLMSSPNegotiateSessSetup(xid, pSesInfo, &ntlmv2_flag,
3726 nls_info);
3727 if (!rc) {
3728 if (ntlmv2_flag) {
3729 char *v2_response;
3730 cFYI(1, ("more secure NTLM ver2 hash"));
3731 if (CalcNTLMv2_partial_mac_key(pSesInfo,
3732 nls_info)) {
3733 rc = -ENOMEM;
3734 goto ss_err_exit;
3735 } else
3736 v2_response = kmalloc(16 + 64 /* blob*/,
3737 GFP_KERNEL);
3738 if (v2_response) {
3739 CalcNTLMv2_response(pSesInfo,
3740 v2_response);
3741 /* if (first_time)
3742 cifs_calculate_ntlmv2_mac_key */
3743 kfree(v2_response);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003744 /* BB Put dummy sig in SessSetup PDU? */
Linus Torvalds1da177e2005-04-16 15:20:36 -07003745 } else {
Steve French26b994f2008-08-06 05:11:33 +00003746 rc = -ENOMEM;
3747 goto ss_err_exit;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003748 }
Steve French26b994f2008-08-06 05:11:33 +00003749
3750 } else {
3751 SMBNTencrypt(pSesInfo->password,
Jeff Laytoncb7691b2008-08-18 15:41:05 -04003752 server->cryptKey,
Steve French26b994f2008-08-06 05:11:33 +00003753 ntlm_session_key);
3754
3755 if (first_time)
3756 cifs_calculate_mac_key(
Jeff Laytoncb7691b2008-08-18 15:41:05 -04003757 &server->mac_signing_key,
Steve French26b994f2008-08-06 05:11:33 +00003758 ntlm_session_key,
3759 pSesInfo->password);
3760 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003761 /* for better security the weaker lanman hash not sent
3762 in AuthSessSetup so we no longer calculate it */
3763
Steve French26b994f2008-08-06 05:11:33 +00003764 rc = CIFSNTLMSSPAuthSessSetup(xid, pSesInfo,
3765 ntlm_session_key,
3766 ntlmv2_flag,
3767 nls_info);
3768 }
3769 } else { /* old style NTLM 0.12 session setup */
Jeff Laytoncb7691b2008-08-18 15:41:05 -04003770 SMBNTencrypt(pSesInfo->password, server->cryptKey,
Steve French26b994f2008-08-06 05:11:33 +00003771 ntlm_session_key);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003772
Steve French26b994f2008-08-06 05:11:33 +00003773 if (first_time)
Jeff Laytoncb7691b2008-08-18 15:41:05 -04003774 cifs_calculate_mac_key(&server->mac_signing_key,
3775 ntlm_session_key,
3776 pSesInfo->password);
Steve Frenchad009ac2005-04-28 22:41:05 -07003777
Steve French26b994f2008-08-06 05:11:33 +00003778 rc = CIFSSessSetup(xid, pSesInfo, ntlm_session_key, nls_info);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003779 }
Steve French26b994f2008-08-06 05:11:33 +00003780 if (rc) {
3781 cERROR(1, ("Send error in SessSetup = %d", rc));
3782 } else {
3783 cFYI(1, ("CIFS Session Established successfully"));
Jeff Layton469ee612008-10-16 18:46:39 +00003784 spin_lock(&GlobalMid_Lock);
Steve French26b994f2008-08-06 05:11:33 +00003785 pSesInfo->status = CifsGood;
Steve French3b795212008-11-13 19:45:32 +00003786 pSesInfo->need_reconnect = false;
Jeff Layton469ee612008-10-16 18:46:39 +00003787 spin_unlock(&GlobalMid_Lock);
Steve French26b994f2008-08-06 05:11:33 +00003788 }
3789
Linus Torvalds1da177e2005-04-16 15:20:36 -07003790ss_err_exit:
3791 return rc;
3792}
3793