blob: b8c5e2eb43d0866d59d293afafc72873867a0e93 [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * fs/cifs/transport.c
3 *
Steve Frenchad7a2922008-02-07 23:25:02 +00004 * Copyright (C) International Business Machines Corp., 2002,2008
Linus Torvalds1da177e2005-04-16 15:20:36 -07005 * Author(s): Steve French (sfrench@us.ibm.com)
Steve French14a441a2b2006-07-16 04:32:51 +00006 * Jeremy Allison (jra@samba.org) 2006.
Steve French79a58d12007-07-06 22:44:50 +00007 *
Linus Torvalds1da177e2005-04-16 15:20:36 -07008 * This library is free software; you can redistribute it and/or modify
9 * it under the terms of the GNU Lesser General Public License as published
10 * by the Free Software Foundation; either version 2.1 of the License, or
11 * (at your option) any later version.
12 *
13 * This library is distributed in the hope that it will be useful,
14 * but WITHOUT ANY WARRANTY; without even the implied warranty of
15 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See
16 * the GNU Lesser General Public License for more details.
17 *
18 * You should have received a copy of the GNU Lesser General Public License
19 * along with this library; if not, write to the Free Software
Steve French79a58d12007-07-06 22:44:50 +000020 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
Linus Torvalds1da177e2005-04-16 15:20:36 -070021 */
22
23#include <linux/fs.h>
24#include <linux/list.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090025#include <linux/gfp.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070026#include <linux/wait.h>
27#include <linux/net.h>
28#include <linux/delay.h>
29#include <asm/uaccess.h>
30#include <asm/processor.h>
31#include <linux/mempool.h>
32#include "cifspdu.h"
33#include "cifsglob.h"
34#include "cifsproto.h"
35#include "cifs_debug.h"
Steve French50c2f752007-07-13 00:33:32 +000036
Linus Torvalds1da177e2005-04-16 15:20:36 -070037extern mempool_t *cifs_mid_poolp;
Linus Torvalds1da177e2005-04-16 15:20:36 -070038
Jeff Layton2b84a36c2011-01-11 07:24:21 -050039static void
40wake_up_task(struct mid_q_entry *mid)
41{
42 wake_up_process(mid->callback_data);
43}
44
Jeff Laytona6827c12011-01-11 07:24:21 -050045struct mid_q_entry *
Jeff Layton24b9b062008-12-01 07:09:34 -050046AllocMidQEntry(const struct smb_hdr *smb_buffer, struct TCP_Server_Info *server)
Linus Torvalds1da177e2005-04-16 15:20:36 -070047{
48 struct mid_q_entry *temp;
49
Jeff Layton24b9b062008-12-01 07:09:34 -050050 if (server == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +000051 cERROR(1, "Null TCP session in AllocMidQEntry");
Linus Torvalds1da177e2005-04-16 15:20:36 -070052 return NULL;
53 }
Steve French50c2f752007-07-13 00:33:32 +000054
Pekka Enberg232087c2008-09-15 13:22:54 +030055 temp = mempool_alloc(cifs_mid_poolp, GFP_NOFS);
Linus Torvalds1da177e2005-04-16 15:20:36 -070056 if (temp == NULL)
57 return temp;
58 else {
Steve French26f57362007-08-30 22:09:15 +000059 memset(temp, 0, sizeof(struct mid_q_entry));
Linus Torvalds1da177e2005-04-16 15:20:36 -070060 temp->mid = smb_buffer->Mid; /* always LE */
61 temp->pid = current->pid;
62 temp->command = smb_buffer->Command;
Joe Perchesb6b38f72010-04-21 03:50:45 +000063 cFYI(1, "For smb_command %d", temp->command);
Steve French1047abc2005-10-11 19:58:06 -070064 /* do_gettimeofday(&temp->when_sent);*/ /* easier to use jiffies */
65 /* when mid allocated can be before when sent */
66 temp->when_alloc = jiffies;
Jeff Layton2b84a36c2011-01-11 07:24:21 -050067
68 /*
69 * The default is for the mid to be synchronous, so the
70 * default callback just wakes up the current task.
71 */
72 temp->callback = wake_up_task;
73 temp->callback_data = current;
Linus Torvalds1da177e2005-04-16 15:20:36 -070074 }
75
Linus Torvalds1da177e2005-04-16 15:20:36 -070076 atomic_inc(&midCount);
77 temp->midState = MID_REQUEST_ALLOCATED;
Linus Torvalds1da177e2005-04-16 15:20:36 -070078 return temp;
79}
80
Jeff Layton766fdbb2011-01-11 07:24:21 -050081void
Linus Torvalds1da177e2005-04-16 15:20:36 -070082DeleteMidQEntry(struct mid_q_entry *midEntry)
83{
Steve French1047abc2005-10-11 19:58:06 -070084#ifdef CONFIG_CIFS_STATS2
85 unsigned long now;
86#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -070087 midEntry->midState = MID_FREE;
Jeff Layton80975312011-01-11 07:24:02 -050088 atomic_dec(&midCount);
Steve French79a58d12007-07-06 22:44:50 +000089 if (midEntry->largeBuf)
Steve Frenchb8643e12005-04-28 22:41:07 -070090 cifs_buf_release(midEntry->resp_buf);
91 else
92 cifs_small_buf_release(midEntry->resp_buf);
Steve French1047abc2005-10-11 19:58:06 -070093#ifdef CONFIG_CIFS_STATS2
94 now = jiffies;
95 /* commands taking longer than one second are indications that
96 something is wrong, unless it is quite a slow link or server */
Steve French79a58d12007-07-06 22:44:50 +000097 if ((now - midEntry->when_alloc) > HZ) {
98 if ((cifsFYI & CIFS_TIMER) &&
Steve French1047abc2005-10-11 19:58:06 -070099 (midEntry->command != SMB_COM_LOCKING_ANDX)) {
100 printk(KERN_DEBUG " CIFS slow rsp: cmd %d mid %d",
101 midEntry->command, midEntry->mid);
102 printk(" A: 0x%lx S: 0x%lx R: 0x%lx\n",
103 now - midEntry->when_alloc,
104 now - midEntry->when_sent,
105 now - midEntry->when_received);
106 }
107 }
108#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -0700109 mempool_free(midEntry, cifs_mid_poolp);
110}
111
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500112static void
113delete_mid(struct mid_q_entry *mid)
114{
115 spin_lock(&GlobalMid_Lock);
116 list_del(&mid->qhead);
117 spin_unlock(&GlobalMid_Lock);
118
119 DeleteMidQEntry(mid);
120}
121
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500122static int
Jeff Layton0496e022008-12-30 12:39:16 -0500123smb_sendv(struct TCP_Server_Info *server, struct kvec *iov, int n_vec)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700124{
125 int rc = 0;
126 int i = 0;
127 struct msghdr smb_msg;
Steve French3e844692005-10-03 13:37:24 -0700128 struct smb_hdr *smb_buffer = iov[0].iov_base;
129 unsigned int len = iov[0].iov_len;
130 unsigned int total_len;
131 int first_vec = 0;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000132 unsigned int smb_buf_length = smb_buffer->smb_buf_length;
Steve Frenchedf1ae42008-10-29 00:47:57 +0000133 struct socket *ssocket = server->ssocket;
Steve French50c2f752007-07-13 00:33:32 +0000134
Steve French79a58d12007-07-06 22:44:50 +0000135 if (ssocket == NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700136 return -ENOTSOCK; /* BB eventually add reconnect code here */
Steve French3e844692005-10-03 13:37:24 -0700137
Pavel Shilovskya9f1b852010-12-13 19:08:35 +0300138 smb_msg.msg_name = (struct sockaddr *) &server->dstaddr;
Steve French26f57362007-08-30 22:09:15 +0000139 smb_msg.msg_namelen = sizeof(struct sockaddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700140 smb_msg.msg_control = NULL;
141 smb_msg.msg_controllen = 0;
Jeff Layton0496e022008-12-30 12:39:16 -0500142 if (server->noblocksnd)
Steve Frenchedf1ae42008-10-29 00:47:57 +0000143 smb_msg.msg_flags = MSG_DONTWAIT + MSG_NOSIGNAL;
144 else
145 smb_msg.msg_flags = MSG_NOSIGNAL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700146
147 /* smb header is converted in header_assemble. bcc and rest of SMB word
Steve French79a58d12007-07-06 22:44:50 +0000148 area, and byte area if necessary, is converted to littleendian in
149 cifssmb.c and RFC1001 len is converted to bigendian in smb_send
Linus Torvalds1da177e2005-04-16 15:20:36 -0700150 Flags2 is converted in SendReceive */
151
Steve French3e844692005-10-03 13:37:24 -0700152
153 total_len = 0;
154 for (i = 0; i < n_vec; i++)
155 total_len += iov[i].iov_len;
156
Linus Torvalds1da177e2005-04-16 15:20:36 -0700157 smb_buffer->smb_buf_length = cpu_to_be32(smb_buffer->smb_buf_length);
Joe Perchesb6b38f72010-04-21 03:50:45 +0000158 cFYI(1, "Sending smb: total_len %d", total_len);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700159 dump_smb(smb_buffer, len);
160
Shirish Pargaonkar17680352008-07-29 21:26:13 +0000161 i = 0;
Steve French3e844692005-10-03 13:37:24 -0700162 while (total_len) {
163 rc = kernel_sendmsg(ssocket, &smb_msg, &iov[first_vec],
164 n_vec - first_vec, total_len);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700165 if ((rc == -ENOSPC) || (rc == -EAGAIN)) {
166 i++;
Steve Frenchda505c32009-01-19 03:49:35 +0000167 /* if blocking send we try 3 times, since each can block
168 for 5 seconds. For nonblocking we have to try more
169 but wait increasing amounts of time allowing time for
170 socket to clear. The overall time we wait in either
171 case to send on the socket is about 15 seconds.
172 Similarly we wait for 15 seconds for
173 a response from the server in SendReceive[2]
174 for the server to send a response back for
175 most types of requests (except SMB Write
176 past end of file which can be slow, and
177 blocking lock operations). NFS waits slightly longer
178 than CIFS, but this can make it take longer for
179 nonresponsive servers to be detected and 15 seconds
180 is more than enough time for modern networks to
181 send a packet. In most cases if we fail to send
182 after the retries we will kill the socket and
183 reconnect which may clear the network problem.
184 */
185 if ((i >= 14) || (!server->noblocksnd && (i > 2))) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000186 cERROR(1, "sends on sock %p stuck for 15 seconds",
187 ssocket);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700188 rc = -EAGAIN;
189 break;
190 }
Steve French68058e72005-10-10 10:34:22 -0700191 msleep(1 << i);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700192 continue;
193 }
Steve French79a58d12007-07-06 22:44:50 +0000194 if (rc < 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700195 break;
Steve French3e844692005-10-03 13:37:24 -0700196
Steve French61de8002008-10-30 20:15:22 +0000197 if (rc == total_len) {
198 total_len = 0;
199 break;
200 } else if (rc > total_len) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000201 cERROR(1, "sent %d requested %d", rc, total_len);
Steve French3e844692005-10-03 13:37:24 -0700202 break;
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500203 }
Steve French79a58d12007-07-06 22:44:50 +0000204 if (rc == 0) {
Steve French3e844692005-10-03 13:37:24 -0700205 /* should never happen, letting socket clear before
206 retrying is our only obvious option here */
Joe Perchesb6b38f72010-04-21 03:50:45 +0000207 cERROR(1, "tcp sent no data");
Steve French3e844692005-10-03 13:37:24 -0700208 msleep(500);
209 continue;
210 }
211 total_len -= rc;
Steve French68058e72005-10-10 10:34:22 -0700212 /* the line below resets i */
Steve French3e844692005-10-03 13:37:24 -0700213 for (i = first_vec; i < n_vec; i++) {
214 if (iov[i].iov_len) {
215 if (rc > iov[i].iov_len) {
216 rc -= iov[i].iov_len;
217 iov[i].iov_len = 0;
218 } else {
219 iov[i].iov_base += rc;
220 iov[i].iov_len -= rc;
221 first_vec = i;
222 break;
223 }
224 }
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500225 }
Steve French5e1253b2005-10-10 14:06:37 -0700226 i = 0; /* in case we get ENOSPC on the next send */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700227 }
228
Steve Frenchedf1ae42008-10-29 00:47:57 +0000229 if ((total_len > 0) && (total_len != smb_buf_length + 4)) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000230 cFYI(1, "partial send (%d remaining), terminating session",
231 total_len);
Steve Frenchedf1ae42008-10-29 00:47:57 +0000232 /* If we have only sent part of an SMB then the next SMB
233 could be taken as the remainder of this one. We need
234 to kill the socket so the server throws away the partial
235 SMB */
236 server->tcpStatus = CifsNeedReconnect;
237 }
238
Jeff Laytond804d412011-01-28 15:05:43 -0500239 if (rc < 0 && rc != -EINTR)
Joe Perchesb6b38f72010-04-21 03:50:45 +0000240 cERROR(1, "Error %d sending data on socket to server", rc);
Jeff Laytond804d412011-01-28 15:05:43 -0500241 else
Linus Torvalds1da177e2005-04-16 15:20:36 -0700242 rc = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700243
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000244 /* Don't want to modify the buffer as a
245 side effect of this call. */
246 smb_buffer->smb_buf_length = smb_buf_length;
247
Linus Torvalds1da177e2005-04-16 15:20:36 -0700248 return rc;
249}
250
Jeff Layton0496e022008-12-30 12:39:16 -0500251int
252smb_send(struct TCP_Server_Info *server, struct smb_hdr *smb_buffer,
253 unsigned int smb_buf_length)
254{
255 struct kvec iov;
256
257 iov.iov_base = smb_buffer;
258 iov.iov_len = smb_buf_length + 4;
259
260 return smb_sendv(server, &iov, 1);
261}
262
Jeff Laytonc5797a92011-01-11 07:24:01 -0500263static int wait_for_free_request(struct TCP_Server_Info *server,
264 const int long_op)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000265{
Steve French133672e2007-11-13 22:41:37 +0000266 if (long_op == CIFS_ASYNC_OP) {
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000267 /* oplock breaks must not be held up */
Jeff Laytonc5797a92011-01-11 07:24:01 -0500268 atomic_inc(&server->inFlight);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000269 return 0;
270 }
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000271
Volker Lendecke27a97a62008-12-08 20:59:39 +0000272 spin_lock(&GlobalMid_Lock);
273 while (1) {
Jeff Laytonc5797a92011-01-11 07:24:01 -0500274 if (atomic_read(&server->inFlight) >= cifs_max_pending) {
Volker Lendecke27a97a62008-12-08 20:59:39 +0000275 spin_unlock(&GlobalMid_Lock);
276#ifdef CONFIG_CIFS_STATS2
Jeff Laytonc5797a92011-01-11 07:24:01 -0500277 atomic_inc(&server->num_waiters);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000278#endif
Jeff Laytonc5797a92011-01-11 07:24:01 -0500279 wait_event(server->request_q,
280 atomic_read(&server->inFlight)
Volker Lendecke27a97a62008-12-08 20:59:39 +0000281 < cifs_max_pending);
282#ifdef CONFIG_CIFS_STATS2
Jeff Laytonc5797a92011-01-11 07:24:01 -0500283 atomic_dec(&server->num_waiters);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000284#endif
285 spin_lock(&GlobalMid_Lock);
286 } else {
Jeff Laytonc5797a92011-01-11 07:24:01 -0500287 if (server->tcpStatus == CifsExiting) {
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000288 spin_unlock(&GlobalMid_Lock);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000289 return -ENOENT;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000290 }
Volker Lendecke27a97a62008-12-08 20:59:39 +0000291
292 /* can not count locking commands against total
293 as they are allowed to block on server */
294
295 /* update # of requests on the wire to server */
296 if (long_op != CIFS_BLOCKING_OP)
Jeff Laytonc5797a92011-01-11 07:24:01 -0500297 atomic_inc(&server->inFlight);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000298 spin_unlock(&GlobalMid_Lock);
299 break;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000300 }
301 }
302 return 0;
303}
304
305static int allocate_mid(struct cifsSesInfo *ses, struct smb_hdr *in_buf,
306 struct mid_q_entry **ppmidQ)
307{
308 if (ses->server->tcpStatus == CifsExiting) {
309 return -ENOENT;
Volker Lendecke8fbbd362008-12-06 13:12:34 +0100310 }
311
312 if (ses->server->tcpStatus == CifsNeedReconnect) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000313 cFYI(1, "tcp session dead - return to caller to retry");
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000314 return -EAGAIN;
Volker Lendecke8fbbd362008-12-06 13:12:34 +0100315 }
316
317 if (ses->status != CifsGood) {
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000318 /* check if SMB session is bad because we are setting it up */
Steve French79a58d12007-07-06 22:44:50 +0000319 if ((in_buf->Command != SMB_COM_SESSION_SETUP_ANDX) &&
Steve Frenchad7a2922008-02-07 23:25:02 +0000320 (in_buf->Command != SMB_COM_NEGOTIATE))
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000321 return -EAGAIN;
Steve Frenchad7a2922008-02-07 23:25:02 +0000322 /* else ok - we are setting up session */
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000323 }
Jeff Layton24b9b062008-12-01 07:09:34 -0500324 *ppmidQ = AllocMidQEntry(in_buf, ses->server);
Steve French26f57362007-08-30 22:09:15 +0000325 if (*ppmidQ == NULL)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000326 return -ENOMEM;
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500327 spin_lock(&GlobalMid_Lock);
328 list_add_tail(&(*ppmidQ)->qhead, &ses->server->pending_mid_q);
329 spin_unlock(&GlobalMid_Lock);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000330 return 0;
331}
332
Jeff Layton0ade6402011-01-11 07:24:02 -0500333static int
334wait_for_response(struct TCP_Server_Info *server, struct mid_q_entry *midQ)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000335{
Jeff Layton0ade6402011-01-11 07:24:02 -0500336 int error;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000337
Jeff Layton0ade6402011-01-11 07:24:02 -0500338 error = wait_event_killable(server->response_q,
339 midQ->midState != MID_REQUEST_SUBMITTED);
340 if (error < 0)
341 return -ERESTARTSYS;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000342
Jeff Layton0ade6402011-01-11 07:24:02 -0500343 return 0;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000344}
345
Steve French133672e2007-11-13 22:41:37 +0000346
347/*
Jeff Laytona6827c12011-01-11 07:24:21 -0500348 * Send a SMB request and set the callback function in the mid to handle
349 * the result. Caller is responsible for dealing with timeouts.
350 */
351int
352cifs_call_async(struct TCP_Server_Info *server, struct smb_hdr *in_buf,
353 mid_callback_t *callback, void *cbdata)
354{
355 int rc;
356 struct mid_q_entry *mid;
357
358 rc = wait_for_free_request(server, CIFS_ASYNC_OP);
359 if (rc)
360 return rc;
361
362 mutex_lock(&server->srv_mutex);
363 mid = AllocMidQEntry(in_buf, server);
364 if (mid == NULL) {
365 mutex_unlock(&server->srv_mutex);
366 return -ENOMEM;
367 }
368
369 /* put it on the pending_mid_q */
370 spin_lock(&GlobalMid_Lock);
371 list_add_tail(&mid->qhead, &server->pending_mid_q);
372 spin_unlock(&GlobalMid_Lock);
373
374 rc = cifs_sign_smb(in_buf, server, &mid->sequence_number);
375 if (rc) {
376 mutex_unlock(&server->srv_mutex);
377 goto out_err;
378 }
379
380 mid->callback = callback;
381 mid->callback_data = cbdata;
382 mid->midState = MID_REQUEST_SUBMITTED;
383#ifdef CONFIG_CIFS_STATS2
384 atomic_inc(&server->inSend);
385#endif
386 rc = smb_send(server, in_buf, in_buf->smb_buf_length);
387#ifdef CONFIG_CIFS_STATS2
388 atomic_dec(&server->inSend);
389 mid->when_sent = jiffies;
390#endif
391 mutex_unlock(&server->srv_mutex);
392 if (rc)
393 goto out_err;
394
395 return rc;
396out_err:
397 delete_mid(mid);
398 atomic_dec(&server->inFlight);
399 wake_up(&server->request_q);
400 return rc;
401}
402
403/*
Steve French133672e2007-11-13 22:41:37 +0000404 *
405 * Send an SMB Request. No response info (other than return code)
406 * needs to be parsed.
407 *
408 * flags indicate the type of request buffer and how long to wait
409 * and whether to log NT STATUS code (error) before mapping it to POSIX error
410 *
411 */
412int
413SendReceiveNoRsp(const unsigned int xid, struct cifsSesInfo *ses,
414 struct smb_hdr *in_buf, int flags)
415{
416 int rc;
417 struct kvec iov[1];
418 int resp_buf_type;
419
420 iov[0].iov_base = (char *)in_buf;
421 iov[0].iov_len = in_buf->smb_buf_length + 4;
422 flags |= CIFS_NO_RESP;
423 rc = SendReceive2(xid, ses, iov, 1, &resp_buf_type, flags);
Joe Perchesb6b38f72010-04-21 03:50:45 +0000424 cFYI(DBG2, "SendRcvNoRsp flags %d rc %d", flags, rc);
Steve French90c81e02008-02-12 20:32:36 +0000425
Steve French133672e2007-11-13 22:41:37 +0000426 return rc;
427}
428
Jeff Layton053d5032011-01-11 07:24:02 -0500429static int
430sync_mid_result(struct mid_q_entry *mid, struct TCP_Server_Info *server)
431{
432 int rc = 0;
433
Jeff Layton74dd92a2011-01-11 07:24:02 -0500434 cFYI(1, "%s: cmd=%d mid=%d state=%d", __func__, mid->command,
435 mid->mid, mid->midState);
Jeff Layton053d5032011-01-11 07:24:02 -0500436
Jeff Layton74dd92a2011-01-11 07:24:02 -0500437 spin_lock(&GlobalMid_Lock);
Jeff Layton2b84a36c2011-01-11 07:24:21 -0500438 /* ensure that it's no longer on the pending_mid_q */
439 list_del_init(&mid->qhead);
440
Jeff Layton74dd92a2011-01-11 07:24:02 -0500441 switch (mid->midState) {
442 case MID_RESPONSE_RECEIVED:
Jeff Layton053d5032011-01-11 07:24:02 -0500443 spin_unlock(&GlobalMid_Lock);
444 return rc;
Jeff Layton74dd92a2011-01-11 07:24:02 -0500445 case MID_REQUEST_SUBMITTED:
446 /* socket is going down, reject all calls */
447 if (server->tcpStatus == CifsExiting) {
448 cERROR(1, "%s: canceling mid=%d cmd=0x%x state=%d",
449 __func__, mid->mid, mid->command, mid->midState);
Jeff Layton053d5032011-01-11 07:24:02 -0500450 rc = -EHOSTDOWN;
Jeff Layton74dd92a2011-01-11 07:24:02 -0500451 break;
Jeff Layton053d5032011-01-11 07:24:02 -0500452 }
Jeff Layton74dd92a2011-01-11 07:24:02 -0500453 case MID_RETRY_NEEDED:
454 rc = -EAGAIN;
455 break;
456 default:
457 cERROR(1, "%s: invalid mid state mid=%d state=%d", __func__,
458 mid->mid, mid->midState);
459 rc = -EIO;
Jeff Layton053d5032011-01-11 07:24:02 -0500460 }
461 spin_unlock(&GlobalMid_Lock);
462
Jeff Layton2b84a36c2011-01-11 07:24:21 -0500463 DeleteMidQEntry(mid);
Jeff Layton053d5032011-01-11 07:24:02 -0500464 return rc;
465}
466
Jeff Layton76dcc262011-01-11 07:24:24 -0500467/*
468 * An NT cancel request header looks just like the original request except:
469 *
470 * The Command is SMB_COM_NT_CANCEL
471 * The WordCount is zeroed out
472 * The ByteCount is zeroed out
473 *
474 * This function mangles an existing request buffer into a
475 * SMB_COM_NT_CANCEL request and then sends it.
476 */
477static int
478send_nt_cancel(struct TCP_Server_Info *server, struct smb_hdr *in_buf,
479 struct mid_q_entry *mid)
480{
481 int rc = 0;
482
483 /* -4 for RFC1001 length and +2 for BCC field */
484 in_buf->smb_buf_length = sizeof(struct smb_hdr) - 4 + 2;
485 in_buf->Command = SMB_COM_NT_CANCEL;
486 in_buf->WordCount = 0;
Jeff Layton690c5222011-01-20 13:36:51 -0500487 put_bcc_le(0, in_buf);
Jeff Layton76dcc262011-01-11 07:24:24 -0500488
489 mutex_lock(&server->srv_mutex);
490 rc = cifs_sign_smb(in_buf, server, &mid->sequence_number);
491 if (rc) {
492 mutex_unlock(&server->srv_mutex);
493 return rc;
494 }
495 rc = smb_send(server, in_buf, in_buf->smb_buf_length);
496 mutex_unlock(&server->srv_mutex);
497
498 cFYI(1, "issued NT_CANCEL for mid %u, rc = %d",
499 in_buf->Mid, rc);
500
501 return rc;
502}
503
Linus Torvalds1da177e2005-04-16 15:20:36 -0700504int
Steve French79a58d12007-07-06 22:44:50 +0000505SendReceive2(const unsigned int xid, struct cifsSesInfo *ses,
506 struct kvec *iov, int n_vec, int *pRespBufType /* ret */,
Steve French133672e2007-11-13 22:41:37 +0000507 const int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700508{
509 int rc = 0;
Steve French133672e2007-11-13 22:41:37 +0000510 int long_op;
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500511 unsigned int receive_len;
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500512 struct mid_q_entry *midQ;
Steve French3e844692005-10-03 13:37:24 -0700513 struct smb_hdr *in_buf = iov[0].iov_base;
Steve French50c2f752007-07-13 00:33:32 +0000514
Steve French133672e2007-11-13 22:41:37 +0000515 long_op = flags & CIFS_TIMEOUT_MASK;
516
Steve Frenchec637e32005-12-12 20:53:18 -0800517 *pRespBufType = CIFS_NO_BUFFER; /* no response buf yet */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700518
Steve French4b8f9302006-02-26 16:41:18 +0000519 if ((ses == NULL) || (ses->server == NULL)) {
520 cifs_small_buf_release(in_buf);
Joe Perchesb6b38f72010-04-21 03:50:45 +0000521 cERROR(1, "Null session");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700522 return -EIO;
523 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700524
Steve French79a58d12007-07-06 22:44:50 +0000525 if (ses->server->tcpStatus == CifsExiting) {
Steve French4b8f9302006-02-26 16:41:18 +0000526 cifs_small_buf_release(in_buf);
Steve French31ca3bc2005-04-28 22:41:11 -0700527 return -ENOENT;
Steve French4b8f9302006-02-26 16:41:18 +0000528 }
Steve French31ca3bc2005-04-28 22:41:11 -0700529
Steve French79a58d12007-07-06 22:44:50 +0000530 /* Ensure that we do not send more than 50 overlapping requests
Linus Torvalds1da177e2005-04-16 15:20:36 -0700531 to the same server. We may make this configurable later or
532 use ses->maxReq */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700533
Jeff Laytonc5797a92011-01-11 07:24:01 -0500534 rc = wait_for_free_request(ses->server, long_op);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000535 if (rc) {
536 cifs_small_buf_release(in_buf);
537 return rc;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700538 }
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000539
Steve French79a58d12007-07-06 22:44:50 +0000540 /* make sure that we sign in the same order that we send on this socket
Linus Torvalds1da177e2005-04-16 15:20:36 -0700541 and avoid races inside tcp sendmsg code that could cause corruption
542 of smb data */
543
Jeff Layton72ca5452008-12-01 07:09:36 -0500544 mutex_lock(&ses->server->srv_mutex);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700545
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000546 rc = allocate_mid(ses, in_buf, &midQ);
547 if (rc) {
Jeff Layton72ca5452008-12-01 07:09:36 -0500548 mutex_unlock(&ses->server->srv_mutex);
Steve French4b8f9302006-02-26 16:41:18 +0000549 cifs_small_buf_release(in_buf);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000550 /* Update # of requests on wire to server */
Steve French79a58d12007-07-06 22:44:50 +0000551 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000552 wake_up(&ses->server->request_q);
553 return rc;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700554 }
Steve French79a58d12007-07-06 22:44:50 +0000555 rc = cifs_sign_smb2(iov, n_vec, ses->server, &midQ->sequence_number);
Volker Lendecke829049c2008-12-06 16:00:53 +0100556 if (rc) {
557 mutex_unlock(&ses->server->srv_mutex);
558 cifs_small_buf_release(in_buf);
559 goto out;
560 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700561
562 midQ->midState = MID_REQUEST_SUBMITTED;
Steve French131afd0b2005-10-07 09:51:05 -0700563#ifdef CONFIG_CIFS_STATS2
564 atomic_inc(&ses->server->inSend);
565#endif
Jeff Layton0496e022008-12-30 12:39:16 -0500566 rc = smb_sendv(ses->server, iov, n_vec);
Steve French131afd0b2005-10-07 09:51:05 -0700567#ifdef CONFIG_CIFS_STATS2
568 atomic_dec(&ses->server->inSend);
Steve French1047abc2005-10-11 19:58:06 -0700569 midQ->when_sent = jiffies;
Steve French131afd0b2005-10-07 09:51:05 -0700570#endif
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000571
Jeff Layton72ca5452008-12-01 07:09:36 -0500572 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000573
Jeff Layton2db7c582011-01-28 07:08:28 -0500574 if (rc < 0) {
575 cifs_small_buf_release(in_buf);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000576 goto out;
Jeff Layton2db7c582011-01-28 07:08:28 -0500577 }
Steve French4b8f9302006-02-26 16:41:18 +0000578
Jeff Layton2db7c582011-01-28 07:08:28 -0500579 if (long_op == CIFS_ASYNC_OP) {
580 cifs_small_buf_release(in_buf);
Steve French133672e2007-11-13 22:41:37 +0000581 goto out;
Jeff Layton2db7c582011-01-28 07:08:28 -0500582 }
Jeff Layton0ade6402011-01-11 07:24:02 -0500583
584 rc = wait_for_response(ses->server, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500585 if (rc != 0) {
Jeff Layton2db7c582011-01-28 07:08:28 -0500586 send_nt_cancel(ses->server, in_buf, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500587 spin_lock(&GlobalMid_Lock);
588 if (midQ->midState == MID_REQUEST_SUBMITTED) {
589 midQ->callback = DeleteMidQEntry;
590 spin_unlock(&GlobalMid_Lock);
Jeff Layton2db7c582011-01-28 07:08:28 -0500591 cifs_small_buf_release(in_buf);
Jeff Layton1be912d2011-01-28 07:08:28 -0500592 atomic_dec(&ses->server->inFlight);
593 wake_up(&ses->server->request_q);
594 return rc;
595 }
596 spin_unlock(&GlobalMid_Lock);
597 }
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500598
Jeff Layton2db7c582011-01-28 07:08:28 -0500599 cifs_small_buf_release(in_buf);
600
Jeff Layton053d5032011-01-11 07:24:02 -0500601 rc = sync_mid_result(midQ, ses->server);
602 if (rc != 0) {
Steve French79a58d12007-07-06 22:44:50 +0000603 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000604 wake_up(&ses->server->request_q);
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500605 return rc;
606 }
Steve French50c2f752007-07-13 00:33:32 +0000607
Volker Lendecke8e4f2e82008-12-06 16:22:15 +0100608 receive_len = midQ->resp_buf->smb_buf_length;
609
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500610 if (receive_len > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000611 cERROR(1, "Frame too large received. Length: %d Xid: %d",
612 receive_len, xid);
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500613 rc = -EIO;
Steve French2b2bdfb2008-12-11 17:26:54 +0000614 goto out;
615 }
Steve French84afc292005-12-02 13:32:45 -0800616
Steve French2b2bdfb2008-12-11 17:26:54 +0000617 /* rcvd frame is ok */
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500618
Steve French2b2bdfb2008-12-11 17:26:54 +0000619 if (midQ->resp_buf &&
620 (midQ->midState == MID_RESPONSE_RECEIVED)) {
621
622 iov[0].iov_base = (char *)midQ->resp_buf;
623 if (midQ->largeBuf)
624 *pRespBufType = CIFS_LARGE_BUFFER;
625 else
626 *pRespBufType = CIFS_SMALL_BUFFER;
627 iov[0].iov_len = receive_len + 4;
628
629 dump_smb(midQ->resp_buf, 80);
630 /* convert the length into a more usable form */
631 if ((receive_len > 24) &&
632 (ses->server->secMode & (SECMODE_SIGN_REQUIRED |
633 SECMODE_SIGN_ENABLED))) {
634 rc = cifs_verify_signature(midQ->resp_buf,
Shirish Pargaonkar21e73392010-10-21 06:42:55 -0500635 ses->server,
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500636 midQ->sequence_number+1);
Steve French2b2bdfb2008-12-11 17:26:54 +0000637 if (rc) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000638 cERROR(1, "Unexpected SMB signature");
Steve French2b2bdfb2008-12-11 17:26:54 +0000639 /* BB FIXME add code to kill session */
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500640 }
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500641 }
Steve French2b2bdfb2008-12-11 17:26:54 +0000642
643 /* BB special case reconnect tid and uid here? */
644 rc = map_smb_to_linux_error(midQ->resp_buf,
645 flags & CIFS_LOG_ERROR);
646
647 /* convert ByteCount if necessary */
648 if (receive_len >= sizeof(struct smb_hdr) - 4
649 /* do not count RFC1001 header */ +
650 (2 * midQ->resp_buf->WordCount) + 2 /* bcc */ )
Jeff Layton690c5222011-01-20 13:36:51 -0500651 put_bcc(get_bcc_le(midQ->resp_buf), midQ->resp_buf);
Steve French2b2bdfb2008-12-11 17:26:54 +0000652 if ((flags & CIFS_NO_RESP) == 0)
653 midQ->resp_buf = NULL; /* mark it so buf will
654 not be freed by
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500655 delete_mid */
Steve French2b2bdfb2008-12-11 17:26:54 +0000656 } else {
657 rc = -EIO;
Joe Perchesb6b38f72010-04-21 03:50:45 +0000658 cFYI(1, "Bad MID state?");
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500659 }
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000660
661out:
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500662 delete_mid(midQ);
Steve French79a58d12007-07-06 22:44:50 +0000663 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000664 wake_up(&ses->server->request_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700665
666 return rc;
667}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700668
669int
670SendReceive(const unsigned int xid, struct cifsSesInfo *ses,
671 struct smb_hdr *in_buf, struct smb_hdr *out_buf,
672 int *pbytes_returned, const int long_op)
673{
674 int rc = 0;
675 unsigned int receive_len;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700676 struct mid_q_entry *midQ;
677
678 if (ses == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000679 cERROR(1, "Null smb session");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700680 return -EIO;
681 }
Steve French79a58d12007-07-06 22:44:50 +0000682 if (ses->server == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000683 cERROR(1, "Null tcp session");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700684 return -EIO;
685 }
686
Steve French79a58d12007-07-06 22:44:50 +0000687 if (ses->server->tcpStatus == CifsExiting)
Steve French31ca3bc2005-04-28 22:41:11 -0700688 return -ENOENT;
689
Steve French79a58d12007-07-06 22:44:50 +0000690 /* Ensure that we do not send more than 50 overlapping requests
Linus Torvalds1da177e2005-04-16 15:20:36 -0700691 to the same server. We may make this configurable later or
692 use ses->maxReq */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700693
Volker Lendecke6d9c6d52008-12-08 20:50:24 +0000694 if (in_buf->smb_buf_length > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE - 4) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000695 cERROR(1, "Illegal length, greater than maximum frame, %d",
696 in_buf->smb_buf_length);
Volker Lendecke6d9c6d52008-12-08 20:50:24 +0000697 return -EIO;
698 }
699
Jeff Laytonc5797a92011-01-11 07:24:01 -0500700 rc = wait_for_free_request(ses->server, long_op);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000701 if (rc)
702 return rc;
703
Steve French79a58d12007-07-06 22:44:50 +0000704 /* make sure that we sign in the same order that we send on this socket
Linus Torvalds1da177e2005-04-16 15:20:36 -0700705 and avoid races inside tcp sendmsg code that could cause corruption
706 of smb data */
707
Jeff Layton72ca5452008-12-01 07:09:36 -0500708 mutex_lock(&ses->server->srv_mutex);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700709
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000710 rc = allocate_mid(ses, in_buf, &midQ);
711 if (rc) {
Jeff Layton72ca5452008-12-01 07:09:36 -0500712 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000713 /* Update # of requests on wire to server */
Steve French79a58d12007-07-06 22:44:50 +0000714 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000715 wake_up(&ses->server->request_q);
716 return rc;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700717 }
718
Steve Frenchad009ac2005-04-28 22:41:05 -0700719 rc = cifs_sign_smb(in_buf, ses->server, &midQ->sequence_number);
Volker Lendecke829049c2008-12-06 16:00:53 +0100720 if (rc) {
721 mutex_unlock(&ses->server->srv_mutex);
722 goto out;
723 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700724
725 midQ->midState = MID_REQUEST_SUBMITTED;
Steve French131afd0b2005-10-07 09:51:05 -0700726#ifdef CONFIG_CIFS_STATS2
727 atomic_inc(&ses->server->inSend);
728#endif
Jeff Layton0496e022008-12-30 12:39:16 -0500729 rc = smb_send(ses->server, in_buf, in_buf->smb_buf_length);
Steve French131afd0b2005-10-07 09:51:05 -0700730#ifdef CONFIG_CIFS_STATS2
731 atomic_dec(&ses->server->inSend);
Steve French1047abc2005-10-11 19:58:06 -0700732 midQ->when_sent = jiffies;
Steve French131afd0b2005-10-07 09:51:05 -0700733#endif
Jeff Layton72ca5452008-12-01 07:09:36 -0500734 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000735
Steve French79a58d12007-07-06 22:44:50 +0000736 if (rc < 0)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000737 goto out;
738
Jeff Layton0ade6402011-01-11 07:24:02 -0500739 if (long_op == CIFS_ASYNC_OP)
Steve French133672e2007-11-13 22:41:37 +0000740 goto out;
Jeff Layton0ade6402011-01-11 07:24:02 -0500741
742 rc = wait_for_response(ses->server, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500743 if (rc != 0) {
Jeff Layton2db7c582011-01-28 07:08:28 -0500744 send_nt_cancel(ses->server, in_buf, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500745 spin_lock(&GlobalMid_Lock);
746 if (midQ->midState == MID_REQUEST_SUBMITTED) {
747 /* no longer considered to be "in-flight" */
748 midQ->callback = DeleteMidQEntry;
749 spin_unlock(&GlobalMid_Lock);
750 atomic_dec(&ses->server->inFlight);
751 wake_up(&ses->server->request_q);
752 return rc;
753 }
754 spin_unlock(&GlobalMid_Lock);
755 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700756
Jeff Layton053d5032011-01-11 07:24:02 -0500757 rc = sync_mid_result(midQ, ses->server);
758 if (rc != 0) {
Steve French79a58d12007-07-06 22:44:50 +0000759 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000760 wake_up(&ses->server->request_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700761 return rc;
762 }
Steve French50c2f752007-07-13 00:33:32 +0000763
Volker Lendecke8e4f2e82008-12-06 16:22:15 +0100764 receive_len = midQ->resp_buf->smb_buf_length;
765
Linus Torvalds1da177e2005-04-16 15:20:36 -0700766 if (receive_len > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000767 cERROR(1, "Frame too large received. Length: %d Xid: %d",
768 receive_len, xid);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700769 rc = -EIO;
Steve French2b2bdfb2008-12-11 17:26:54 +0000770 goto out;
771 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700772
Steve French2b2bdfb2008-12-11 17:26:54 +0000773 /* rcvd frame is ok */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700774
Steve French2b2bdfb2008-12-11 17:26:54 +0000775 if (midQ->resp_buf && out_buf
776 && (midQ->midState == MID_RESPONSE_RECEIVED)) {
777 out_buf->smb_buf_length = receive_len;
778 memcpy((char *)out_buf + 4,
779 (char *)midQ->resp_buf + 4,
780 receive_len);
781
782 dump_smb(out_buf, 92);
783 /* convert the length into a more usable form */
784 if ((receive_len > 24) &&
785 (ses->server->secMode & (SECMODE_SIGN_REQUIRED |
786 SECMODE_SIGN_ENABLED))) {
787 rc = cifs_verify_signature(out_buf,
Shirish Pargaonkar21e73392010-10-21 06:42:55 -0500788 ses->server,
Steve Frenchad009ac2005-04-28 22:41:05 -0700789 midQ->sequence_number+1);
Steve French2b2bdfb2008-12-11 17:26:54 +0000790 if (rc) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000791 cERROR(1, "Unexpected SMB signature");
Steve French2b2bdfb2008-12-11 17:26:54 +0000792 /* BB FIXME add code to kill session */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700793 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700794 }
Steve French2b2bdfb2008-12-11 17:26:54 +0000795
796 *pbytes_returned = out_buf->smb_buf_length;
797
798 /* BB special case reconnect tid and uid here? */
799 rc = map_smb_to_linux_error(out_buf, 0 /* no log */ );
800
801 /* convert ByteCount if necessary */
802 if (receive_len >= sizeof(struct smb_hdr) - 4
803 /* do not count RFC1001 header */ +
804 (2 * out_buf->WordCount) + 2 /* bcc */ )
Jeff Layton690c5222011-01-20 13:36:51 -0500805 put_bcc(get_bcc_le(midQ->resp_buf), midQ->resp_buf);
Steve French2b2bdfb2008-12-11 17:26:54 +0000806 } else {
807 rc = -EIO;
Joe Perchesb6b38f72010-04-21 03:50:45 +0000808 cERROR(1, "Bad MID state?");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700809 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700810
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000811out:
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500812 delete_mid(midQ);
Steve French79a58d12007-07-06 22:44:50 +0000813 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000814 wake_up(&ses->server->request_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700815
816 return rc;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000817}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700818
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000819/* We send a LOCKINGX_CANCEL_LOCK to cause the Windows
820 blocking lock to return. */
821
822static int
823send_lock_cancel(const unsigned int xid, struct cifsTconInfo *tcon,
824 struct smb_hdr *in_buf,
825 struct smb_hdr *out_buf)
826{
827 int bytes_returned;
828 struct cifsSesInfo *ses = tcon->ses;
829 LOCK_REQ *pSMB = (LOCK_REQ *)in_buf;
830
831 /* We just modify the current in_buf to change
832 the type of lock from LOCKING_ANDX_SHARED_LOCK
833 or LOCKING_ANDX_EXCLUSIVE_LOCK to
834 LOCKING_ANDX_CANCEL_LOCK. */
835
836 pSMB->LockType = LOCKING_ANDX_CANCEL_LOCK|LOCKING_ANDX_LARGE_FILES;
837 pSMB->Timeout = 0;
838 pSMB->hdr.Mid = GetNextMid(ses->server);
839
840 return SendReceive(xid, ses, in_buf, out_buf,
Jeff Layton77499812011-01-11 07:24:23 -0500841 &bytes_returned, 0);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000842}
843
844int
845SendReceiveBlockingLock(const unsigned int xid, struct cifsTconInfo *tcon,
846 struct smb_hdr *in_buf, struct smb_hdr *out_buf,
847 int *pbytes_returned)
848{
849 int rc = 0;
850 int rstart = 0;
851 unsigned int receive_len;
852 struct mid_q_entry *midQ;
853 struct cifsSesInfo *ses;
854
855 if (tcon == NULL || tcon->ses == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000856 cERROR(1, "Null smb session");
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000857 return -EIO;
858 }
859 ses = tcon->ses;
860
Steve French79a58d12007-07-06 22:44:50 +0000861 if (ses->server == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000862 cERROR(1, "Null tcp session");
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000863 return -EIO;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700864 }
865
Steve French79a58d12007-07-06 22:44:50 +0000866 if (ses->server->tcpStatus == CifsExiting)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000867 return -ENOENT;
868
Steve French79a58d12007-07-06 22:44:50 +0000869 /* Ensure that we do not send more than 50 overlapping requests
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000870 to the same server. We may make this configurable later or
871 use ses->maxReq */
872
Volker Lendecke6d9c6d52008-12-08 20:50:24 +0000873 if (in_buf->smb_buf_length > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE - 4) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000874 cERROR(1, "Illegal length, greater than maximum frame, %d",
875 in_buf->smb_buf_length);
Volker Lendecke6d9c6d52008-12-08 20:50:24 +0000876 return -EIO;
877 }
878
Jeff Laytonc5797a92011-01-11 07:24:01 -0500879 rc = wait_for_free_request(ses->server, CIFS_BLOCKING_OP);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000880 if (rc)
881 return rc;
882
Steve French79a58d12007-07-06 22:44:50 +0000883 /* make sure that we sign in the same order that we send on this socket
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000884 and avoid races inside tcp sendmsg code that could cause corruption
885 of smb data */
886
Jeff Layton72ca5452008-12-01 07:09:36 -0500887 mutex_lock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000888
889 rc = allocate_mid(ses, in_buf, &midQ);
890 if (rc) {
Jeff Layton72ca5452008-12-01 07:09:36 -0500891 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000892 return rc;
893 }
894
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000895 rc = cifs_sign_smb(in_buf, ses->server, &midQ->sequence_number);
Volker Lendecke829049c2008-12-06 16:00:53 +0100896 if (rc) {
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500897 delete_mid(midQ);
Volker Lendecke829049c2008-12-06 16:00:53 +0100898 mutex_unlock(&ses->server->srv_mutex);
899 return rc;
900 }
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000901
902 midQ->midState = MID_REQUEST_SUBMITTED;
903#ifdef CONFIG_CIFS_STATS2
904 atomic_inc(&ses->server->inSend);
905#endif
Jeff Layton0496e022008-12-30 12:39:16 -0500906 rc = smb_send(ses->server, in_buf, in_buf->smb_buf_length);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000907#ifdef CONFIG_CIFS_STATS2
908 atomic_dec(&ses->server->inSend);
909 midQ->when_sent = jiffies;
910#endif
Jeff Layton72ca5452008-12-01 07:09:36 -0500911 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000912
Steve French79a58d12007-07-06 22:44:50 +0000913 if (rc < 0) {
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500914 delete_mid(midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000915 return rc;
916 }
917
918 /* Wait for a reply - allow signals to interrupt. */
919 rc = wait_event_interruptible(ses->server->response_q,
Steve French79a58d12007-07-06 22:44:50 +0000920 (!(midQ->midState == MID_REQUEST_SUBMITTED)) ||
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000921 ((ses->server->tcpStatus != CifsGood) &&
922 (ses->server->tcpStatus != CifsNew)));
923
924 /* Were we interrupted by a signal ? */
925 if ((rc == -ERESTARTSYS) &&
926 (midQ->midState == MID_REQUEST_SUBMITTED) &&
927 ((ses->server->tcpStatus == CifsGood) ||
928 (ses->server->tcpStatus == CifsNew))) {
929
930 if (in_buf->Command == SMB_COM_TRANSACTION2) {
931 /* POSIX lock. We send a NT_CANCEL SMB to cause the
932 blocking lock to return. */
Jeff Layton76dcc262011-01-11 07:24:24 -0500933 rc = send_nt_cancel(ses->server, in_buf, midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000934 if (rc) {
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500935 delete_mid(midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000936 return rc;
937 }
938 } else {
939 /* Windows lock. We send a LOCKINGX_CANCEL_LOCK
940 to cause the blocking lock to return. */
941
942 rc = send_lock_cancel(xid, tcon, in_buf, out_buf);
943
944 /* If we get -ENOLCK back the lock may have
945 already been removed. Don't exit in this case. */
946 if (rc && rc != -ENOLCK) {
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500947 delete_mid(midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000948 return rc;
949 }
950 }
951
Jeff Layton1be912d2011-01-28 07:08:28 -0500952 rc = wait_for_response(ses->server, midQ);
953 if (rc) {
Jeff Layton2db7c582011-01-28 07:08:28 -0500954 send_nt_cancel(ses->server, in_buf, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500955 spin_lock(&GlobalMid_Lock);
956 if (midQ->midState == MID_REQUEST_SUBMITTED) {
957 /* no longer considered to be "in-flight" */
958 midQ->callback = DeleteMidQEntry;
959 spin_unlock(&GlobalMid_Lock);
960 return rc;
961 }
962 spin_unlock(&GlobalMid_Lock);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000963 }
Jeff Layton1be912d2011-01-28 07:08:28 -0500964
965 /* We got the response - restart system call. */
966 rstart = 1;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000967 }
968
Jeff Layton053d5032011-01-11 07:24:02 -0500969 rc = sync_mid_result(midQ, ses->server);
970 if (rc != 0)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000971 return rc;
Steve French50c2f752007-07-13 00:33:32 +0000972
Jeff Layton053d5032011-01-11 07:24:02 -0500973 receive_len = midQ->resp_buf->smb_buf_length;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000974 if (receive_len > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000975 cERROR(1, "Frame too large received. Length: %d Xid: %d",
976 receive_len, xid);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000977 rc = -EIO;
Volker Lendecke17c8bfe2008-12-06 16:38:19 +0100978 goto out;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000979 }
Volker Lendecke17c8bfe2008-12-06 16:38:19 +0100980
981 /* rcvd frame is ok */
982
Volker Lendeckeac6a3ef2008-12-06 16:40:40 +0100983 if ((out_buf == NULL) || (midQ->midState != MID_RESPONSE_RECEIVED)) {
Volker Lendecke17c8bfe2008-12-06 16:38:19 +0100984 rc = -EIO;
Joe Perchesb6b38f72010-04-21 03:50:45 +0000985 cERROR(1, "Bad MID state?");
Volker Lendecke698e96a2008-12-06 16:39:31 +0100986 goto out;
Volker Lendecke17c8bfe2008-12-06 16:38:19 +0100987 }
988
Volker Lendecke698e96a2008-12-06 16:39:31 +0100989 out_buf->smb_buf_length = receive_len;
990 memcpy((char *)out_buf + 4,
991 (char *)midQ->resp_buf + 4,
992 receive_len);
993
994 dump_smb(out_buf, 92);
995 /* convert the length into a more usable form */
996 if ((receive_len > 24) &&
997 (ses->server->secMode & (SECMODE_SIGN_REQUIRED |
998 SECMODE_SIGN_ENABLED))) {
999 rc = cifs_verify_signature(out_buf,
Shirish Pargaonkar21e73392010-10-21 06:42:55 -05001000 ses->server,
Volker Lendecke698e96a2008-12-06 16:39:31 +01001001 midQ->sequence_number+1);
1002 if (rc) {
Joe Perchesb6b38f72010-04-21 03:50:45 +00001003 cERROR(1, "Unexpected SMB signature");
Volker Lendecke698e96a2008-12-06 16:39:31 +01001004 /* BB FIXME add code to kill session */
1005 }
1006 }
1007
1008 *pbytes_returned = out_buf->smb_buf_length;
1009
1010 /* BB special case reconnect tid and uid here? */
1011 rc = map_smb_to_linux_error(out_buf, 0 /* no log */ );
1012
1013 /* convert ByteCount if necessary */
1014 if (receive_len >= sizeof(struct smb_hdr) - 4
1015 /* do not count RFC1001 header */ +
1016 (2 * out_buf->WordCount) + 2 /* bcc */ )
Jeff Layton690c5222011-01-20 13:36:51 -05001017 put_bcc(get_bcc_le(out_buf), out_buf);
Volker Lendecke698e96a2008-12-06 16:39:31 +01001018
Volker Lendecke17c8bfe2008-12-06 16:38:19 +01001019out:
Jeff Laytonddc8cf82011-01-11 07:24:02 -05001020 delete_mid(midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +00001021 if (rstart && rc == -EACCES)
1022 return -ERESTARTSYS;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001023 return rc;
1024}