blob: fbc5aace54b18dab347af2f624d0686ca8986c9d [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * fs/cifs/transport.c
3 *
Steve Frenchad7a2922008-02-07 23:25:02 +00004 * Copyright (C) International Business Machines Corp., 2002,2008
Linus Torvalds1da177e2005-04-16 15:20:36 -07005 * Author(s): Steve French (sfrench@us.ibm.com)
Steve French14a441a2b2006-07-16 04:32:51 +00006 * Jeremy Allison (jra@samba.org) 2006.
Steve French79a58d12007-07-06 22:44:50 +00007 *
Linus Torvalds1da177e2005-04-16 15:20:36 -07008 * This library is free software; you can redistribute it and/or modify
9 * it under the terms of the GNU Lesser General Public License as published
10 * by the Free Software Foundation; either version 2.1 of the License, or
11 * (at your option) any later version.
12 *
13 * This library is distributed in the hope that it will be useful,
14 * but WITHOUT ANY WARRANTY; without even the implied warranty of
15 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See
16 * the GNU Lesser General Public License for more details.
17 *
18 * You should have received a copy of the GNU Lesser General Public License
19 * along with this library; if not, write to the Free Software
Steve French79a58d12007-07-06 22:44:50 +000020 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
Linus Torvalds1da177e2005-04-16 15:20:36 -070021 */
22
23#include <linux/fs.h>
24#include <linux/list.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090025#include <linux/gfp.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070026#include <linux/wait.h>
27#include <linux/net.h>
28#include <linux/delay.h>
29#include <asm/uaccess.h>
30#include <asm/processor.h>
31#include <linux/mempool.h>
32#include "cifspdu.h"
33#include "cifsglob.h"
34#include "cifsproto.h"
35#include "cifs_debug.h"
Steve French50c2f752007-07-13 00:33:32 +000036
Linus Torvalds1da177e2005-04-16 15:20:36 -070037extern mempool_t *cifs_mid_poolp;
Linus Torvalds1da177e2005-04-16 15:20:36 -070038
Jeff Layton2b84a36c2011-01-11 07:24:21 -050039static void
40wake_up_task(struct mid_q_entry *mid)
41{
42 wake_up_process(mid->callback_data);
43}
44
Jeff Laytona6827c12011-01-11 07:24:21 -050045struct mid_q_entry *
Jeff Layton24b9b062008-12-01 07:09:34 -050046AllocMidQEntry(const struct smb_hdr *smb_buffer, struct TCP_Server_Info *server)
Linus Torvalds1da177e2005-04-16 15:20:36 -070047{
48 struct mid_q_entry *temp;
49
Jeff Layton24b9b062008-12-01 07:09:34 -050050 if (server == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +000051 cERROR(1, "Null TCP session in AllocMidQEntry");
Linus Torvalds1da177e2005-04-16 15:20:36 -070052 return NULL;
53 }
Steve French50c2f752007-07-13 00:33:32 +000054
Pekka Enberg232087c2008-09-15 13:22:54 +030055 temp = mempool_alloc(cifs_mid_poolp, GFP_NOFS);
Linus Torvalds1da177e2005-04-16 15:20:36 -070056 if (temp == NULL)
57 return temp;
58 else {
Steve French26f57362007-08-30 22:09:15 +000059 memset(temp, 0, sizeof(struct mid_q_entry));
Linus Torvalds1da177e2005-04-16 15:20:36 -070060 temp->mid = smb_buffer->Mid; /* always LE */
61 temp->pid = current->pid;
62 temp->command = smb_buffer->Command;
Joe Perchesb6b38f72010-04-21 03:50:45 +000063 cFYI(1, "For smb_command %d", temp->command);
Steve French1047abc2005-10-11 19:58:06 -070064 /* do_gettimeofday(&temp->when_sent);*/ /* easier to use jiffies */
65 /* when mid allocated can be before when sent */
66 temp->when_alloc = jiffies;
Jeff Layton2b84a36c2011-01-11 07:24:21 -050067
68 /*
69 * The default is for the mid to be synchronous, so the
70 * default callback just wakes up the current task.
71 */
72 temp->callback = wake_up_task;
73 temp->callback_data = current;
Linus Torvalds1da177e2005-04-16 15:20:36 -070074 }
75
Linus Torvalds1da177e2005-04-16 15:20:36 -070076 atomic_inc(&midCount);
77 temp->midState = MID_REQUEST_ALLOCATED;
Linus Torvalds1da177e2005-04-16 15:20:36 -070078 return temp;
79}
80
Jeff Layton766fdbb2011-01-11 07:24:21 -050081void
Linus Torvalds1da177e2005-04-16 15:20:36 -070082DeleteMidQEntry(struct mid_q_entry *midEntry)
83{
Steve French1047abc2005-10-11 19:58:06 -070084#ifdef CONFIG_CIFS_STATS2
85 unsigned long now;
86#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -070087 midEntry->midState = MID_FREE;
Jeff Layton80975312011-01-11 07:24:02 -050088 atomic_dec(&midCount);
Steve French79a58d12007-07-06 22:44:50 +000089 if (midEntry->largeBuf)
Steve Frenchb8643e12005-04-28 22:41:07 -070090 cifs_buf_release(midEntry->resp_buf);
91 else
92 cifs_small_buf_release(midEntry->resp_buf);
Steve French1047abc2005-10-11 19:58:06 -070093#ifdef CONFIG_CIFS_STATS2
94 now = jiffies;
95 /* commands taking longer than one second are indications that
96 something is wrong, unless it is quite a slow link or server */
Steve French79a58d12007-07-06 22:44:50 +000097 if ((now - midEntry->when_alloc) > HZ) {
98 if ((cifsFYI & CIFS_TIMER) &&
Steve French1047abc2005-10-11 19:58:06 -070099 (midEntry->command != SMB_COM_LOCKING_ANDX)) {
100 printk(KERN_DEBUG " CIFS slow rsp: cmd %d mid %d",
101 midEntry->command, midEntry->mid);
102 printk(" A: 0x%lx S: 0x%lx R: 0x%lx\n",
103 now - midEntry->when_alloc,
104 now - midEntry->when_sent,
105 now - midEntry->when_received);
106 }
107 }
108#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -0700109 mempool_free(midEntry, cifs_mid_poolp);
110}
111
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500112static void
113delete_mid(struct mid_q_entry *mid)
114{
115 spin_lock(&GlobalMid_Lock);
116 list_del(&mid->qhead);
117 spin_unlock(&GlobalMid_Lock);
118
119 DeleteMidQEntry(mid);
120}
121
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500122static int
Jeff Layton0496e022008-12-30 12:39:16 -0500123smb_sendv(struct TCP_Server_Info *server, struct kvec *iov, int n_vec)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700124{
125 int rc = 0;
126 int i = 0;
127 struct msghdr smb_msg;
Steve French3e844692005-10-03 13:37:24 -0700128 struct smb_hdr *smb_buffer = iov[0].iov_base;
129 unsigned int len = iov[0].iov_len;
130 unsigned int total_len;
131 int first_vec = 0;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000132 unsigned int smb_buf_length = smb_buffer->smb_buf_length;
Steve Frenchedf1ae42008-10-29 00:47:57 +0000133 struct socket *ssocket = server->ssocket;
Steve French50c2f752007-07-13 00:33:32 +0000134
Steve French79a58d12007-07-06 22:44:50 +0000135 if (ssocket == NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700136 return -ENOTSOCK; /* BB eventually add reconnect code here */
Steve French3e844692005-10-03 13:37:24 -0700137
Pavel Shilovskya9f1b852010-12-13 19:08:35 +0300138 smb_msg.msg_name = (struct sockaddr *) &server->dstaddr;
Steve French26f57362007-08-30 22:09:15 +0000139 smb_msg.msg_namelen = sizeof(struct sockaddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700140 smb_msg.msg_control = NULL;
141 smb_msg.msg_controllen = 0;
Jeff Layton0496e022008-12-30 12:39:16 -0500142 if (server->noblocksnd)
Steve Frenchedf1ae42008-10-29 00:47:57 +0000143 smb_msg.msg_flags = MSG_DONTWAIT + MSG_NOSIGNAL;
144 else
145 smb_msg.msg_flags = MSG_NOSIGNAL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700146
147 /* smb header is converted in header_assemble. bcc and rest of SMB word
Steve French79a58d12007-07-06 22:44:50 +0000148 area, and byte area if necessary, is converted to littleendian in
149 cifssmb.c and RFC1001 len is converted to bigendian in smb_send
Linus Torvalds1da177e2005-04-16 15:20:36 -0700150 Flags2 is converted in SendReceive */
151
Steve French3e844692005-10-03 13:37:24 -0700152
153 total_len = 0;
154 for (i = 0; i < n_vec; i++)
155 total_len += iov[i].iov_len;
156
Linus Torvalds1da177e2005-04-16 15:20:36 -0700157 smb_buffer->smb_buf_length = cpu_to_be32(smb_buffer->smb_buf_length);
Joe Perchesb6b38f72010-04-21 03:50:45 +0000158 cFYI(1, "Sending smb: total_len %d", total_len);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700159 dump_smb(smb_buffer, len);
160
Shirish Pargaonkar17680352008-07-29 21:26:13 +0000161 i = 0;
Steve French3e844692005-10-03 13:37:24 -0700162 while (total_len) {
163 rc = kernel_sendmsg(ssocket, &smb_msg, &iov[first_vec],
164 n_vec - first_vec, total_len);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700165 if ((rc == -ENOSPC) || (rc == -EAGAIN)) {
166 i++;
Steve Frenchda505c32009-01-19 03:49:35 +0000167 /* if blocking send we try 3 times, since each can block
168 for 5 seconds. For nonblocking we have to try more
169 but wait increasing amounts of time allowing time for
170 socket to clear. The overall time we wait in either
171 case to send on the socket is about 15 seconds.
172 Similarly we wait for 15 seconds for
173 a response from the server in SendReceive[2]
174 for the server to send a response back for
175 most types of requests (except SMB Write
176 past end of file which can be slow, and
177 blocking lock operations). NFS waits slightly longer
178 than CIFS, but this can make it take longer for
179 nonresponsive servers to be detected and 15 seconds
180 is more than enough time for modern networks to
181 send a packet. In most cases if we fail to send
182 after the retries we will kill the socket and
183 reconnect which may clear the network problem.
184 */
185 if ((i >= 14) || (!server->noblocksnd && (i > 2))) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000186 cERROR(1, "sends on sock %p stuck for 15 seconds",
187 ssocket);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700188 rc = -EAGAIN;
189 break;
190 }
Steve French68058e72005-10-10 10:34:22 -0700191 msleep(1 << i);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700192 continue;
193 }
Steve French79a58d12007-07-06 22:44:50 +0000194 if (rc < 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700195 break;
Steve French3e844692005-10-03 13:37:24 -0700196
Steve French61de8002008-10-30 20:15:22 +0000197 if (rc == total_len) {
198 total_len = 0;
199 break;
200 } else if (rc > total_len) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000201 cERROR(1, "sent %d requested %d", rc, total_len);
Steve French3e844692005-10-03 13:37:24 -0700202 break;
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500203 }
Steve French79a58d12007-07-06 22:44:50 +0000204 if (rc == 0) {
Steve French3e844692005-10-03 13:37:24 -0700205 /* should never happen, letting socket clear before
206 retrying is our only obvious option here */
Joe Perchesb6b38f72010-04-21 03:50:45 +0000207 cERROR(1, "tcp sent no data");
Steve French3e844692005-10-03 13:37:24 -0700208 msleep(500);
209 continue;
210 }
211 total_len -= rc;
Steve French68058e72005-10-10 10:34:22 -0700212 /* the line below resets i */
Steve French3e844692005-10-03 13:37:24 -0700213 for (i = first_vec; i < n_vec; i++) {
214 if (iov[i].iov_len) {
215 if (rc > iov[i].iov_len) {
216 rc -= iov[i].iov_len;
217 iov[i].iov_len = 0;
218 } else {
219 iov[i].iov_base += rc;
220 iov[i].iov_len -= rc;
221 first_vec = i;
222 break;
223 }
224 }
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500225 }
Steve French5e1253b2005-10-10 14:06:37 -0700226 i = 0; /* in case we get ENOSPC on the next send */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700227 }
228
Steve Frenchedf1ae42008-10-29 00:47:57 +0000229 if ((total_len > 0) && (total_len != smb_buf_length + 4)) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000230 cFYI(1, "partial send (%d remaining), terminating session",
231 total_len);
Steve Frenchedf1ae42008-10-29 00:47:57 +0000232 /* If we have only sent part of an SMB then the next SMB
233 could be taken as the remainder of this one. We need
234 to kill the socket so the server throws away the partial
235 SMB */
236 server->tcpStatus = CifsNeedReconnect;
237 }
238
Jeff Laytond804d412011-01-28 15:05:43 -0500239 if (rc < 0 && rc != -EINTR)
Joe Perchesb6b38f72010-04-21 03:50:45 +0000240 cERROR(1, "Error %d sending data on socket to server", rc);
Jeff Laytond804d412011-01-28 15:05:43 -0500241 else
Linus Torvalds1da177e2005-04-16 15:20:36 -0700242 rc = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700243
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000244 /* Don't want to modify the buffer as a
245 side effect of this call. */
246 smb_buffer->smb_buf_length = smb_buf_length;
247
Linus Torvalds1da177e2005-04-16 15:20:36 -0700248 return rc;
249}
250
Jeff Layton0496e022008-12-30 12:39:16 -0500251int
252smb_send(struct TCP_Server_Info *server, struct smb_hdr *smb_buffer,
253 unsigned int smb_buf_length)
254{
255 struct kvec iov;
256
257 iov.iov_base = smb_buffer;
258 iov.iov_len = smb_buf_length + 4;
259
260 return smb_sendv(server, &iov, 1);
261}
262
Jeff Laytonc5797a92011-01-11 07:24:01 -0500263static int wait_for_free_request(struct TCP_Server_Info *server,
264 const int long_op)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000265{
Steve French133672e2007-11-13 22:41:37 +0000266 if (long_op == CIFS_ASYNC_OP) {
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000267 /* oplock breaks must not be held up */
Jeff Laytonc5797a92011-01-11 07:24:01 -0500268 atomic_inc(&server->inFlight);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000269 return 0;
270 }
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000271
Volker Lendecke27a97a62008-12-08 20:59:39 +0000272 spin_lock(&GlobalMid_Lock);
273 while (1) {
Jeff Laytonc5797a92011-01-11 07:24:01 -0500274 if (atomic_read(&server->inFlight) >= cifs_max_pending) {
Volker Lendecke27a97a62008-12-08 20:59:39 +0000275 spin_unlock(&GlobalMid_Lock);
276#ifdef CONFIG_CIFS_STATS2
Jeff Laytonc5797a92011-01-11 07:24:01 -0500277 atomic_inc(&server->num_waiters);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000278#endif
Jeff Laytonc5797a92011-01-11 07:24:01 -0500279 wait_event(server->request_q,
280 atomic_read(&server->inFlight)
Volker Lendecke27a97a62008-12-08 20:59:39 +0000281 < cifs_max_pending);
282#ifdef CONFIG_CIFS_STATS2
Jeff Laytonc5797a92011-01-11 07:24:01 -0500283 atomic_dec(&server->num_waiters);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000284#endif
285 spin_lock(&GlobalMid_Lock);
286 } else {
Jeff Laytonc5797a92011-01-11 07:24:01 -0500287 if (server->tcpStatus == CifsExiting) {
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000288 spin_unlock(&GlobalMid_Lock);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000289 return -ENOENT;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000290 }
Volker Lendecke27a97a62008-12-08 20:59:39 +0000291
292 /* can not count locking commands against total
293 as they are allowed to block on server */
294
295 /* update # of requests on the wire to server */
296 if (long_op != CIFS_BLOCKING_OP)
Jeff Laytonc5797a92011-01-11 07:24:01 -0500297 atomic_inc(&server->inFlight);
Volker Lendecke27a97a62008-12-08 20:59:39 +0000298 spin_unlock(&GlobalMid_Lock);
299 break;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000300 }
301 }
302 return 0;
303}
304
305static int allocate_mid(struct cifsSesInfo *ses, struct smb_hdr *in_buf,
306 struct mid_q_entry **ppmidQ)
307{
308 if (ses->server->tcpStatus == CifsExiting) {
309 return -ENOENT;
Volker Lendecke8fbbd362008-12-06 13:12:34 +0100310 }
311
312 if (ses->server->tcpStatus == CifsNeedReconnect) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000313 cFYI(1, "tcp session dead - return to caller to retry");
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000314 return -EAGAIN;
Volker Lendecke8fbbd362008-12-06 13:12:34 +0100315 }
316
317 if (ses->status != CifsGood) {
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000318 /* check if SMB session is bad because we are setting it up */
Steve French79a58d12007-07-06 22:44:50 +0000319 if ((in_buf->Command != SMB_COM_SESSION_SETUP_ANDX) &&
Steve Frenchad7a2922008-02-07 23:25:02 +0000320 (in_buf->Command != SMB_COM_NEGOTIATE))
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000321 return -EAGAIN;
Steve Frenchad7a2922008-02-07 23:25:02 +0000322 /* else ok - we are setting up session */
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000323 }
Jeff Layton24b9b062008-12-01 07:09:34 -0500324 *ppmidQ = AllocMidQEntry(in_buf, ses->server);
Steve French26f57362007-08-30 22:09:15 +0000325 if (*ppmidQ == NULL)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000326 return -ENOMEM;
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500327 spin_lock(&GlobalMid_Lock);
328 list_add_tail(&(*ppmidQ)->qhead, &ses->server->pending_mid_q);
329 spin_unlock(&GlobalMid_Lock);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000330 return 0;
331}
332
Jeff Layton0ade6402011-01-11 07:24:02 -0500333static int
334wait_for_response(struct TCP_Server_Info *server, struct mid_q_entry *midQ)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000335{
Jeff Layton0ade6402011-01-11 07:24:02 -0500336 int error;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000337
Jeff Layton0ade6402011-01-11 07:24:02 -0500338 error = wait_event_killable(server->response_q,
339 midQ->midState != MID_REQUEST_SUBMITTED);
340 if (error < 0)
341 return -ERESTARTSYS;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000342
Jeff Layton0ade6402011-01-11 07:24:02 -0500343 return 0;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000344}
345
Steve French133672e2007-11-13 22:41:37 +0000346
347/*
Jeff Laytona6827c12011-01-11 07:24:21 -0500348 * Send a SMB request and set the callback function in the mid to handle
349 * the result. Caller is responsible for dealing with timeouts.
350 */
351int
352cifs_call_async(struct TCP_Server_Info *server, struct smb_hdr *in_buf,
353 mid_callback_t *callback, void *cbdata)
354{
355 int rc;
356 struct mid_q_entry *mid;
357
358 rc = wait_for_free_request(server, CIFS_ASYNC_OP);
359 if (rc)
360 return rc;
361
Jeff Laytone3f0dad2011-02-04 07:21:26 -0500362 /* enable signing if server requires it */
363 if (server->secMode & (SECMODE_SIGN_REQUIRED | SECMODE_SIGN_ENABLED))
364 in_buf->Flags2 |= SMBFLG2_SECURITY_SIGNATURE;
365
Jeff Laytona6827c12011-01-11 07:24:21 -0500366 mutex_lock(&server->srv_mutex);
367 mid = AllocMidQEntry(in_buf, server);
368 if (mid == NULL) {
369 mutex_unlock(&server->srv_mutex);
370 return -ENOMEM;
371 }
372
373 /* put it on the pending_mid_q */
374 spin_lock(&GlobalMid_Lock);
375 list_add_tail(&mid->qhead, &server->pending_mid_q);
376 spin_unlock(&GlobalMid_Lock);
377
378 rc = cifs_sign_smb(in_buf, server, &mid->sequence_number);
379 if (rc) {
380 mutex_unlock(&server->srv_mutex);
381 goto out_err;
382 }
383
384 mid->callback = callback;
385 mid->callback_data = cbdata;
386 mid->midState = MID_REQUEST_SUBMITTED;
387#ifdef CONFIG_CIFS_STATS2
388 atomic_inc(&server->inSend);
389#endif
390 rc = smb_send(server, in_buf, in_buf->smb_buf_length);
391#ifdef CONFIG_CIFS_STATS2
392 atomic_dec(&server->inSend);
393 mid->when_sent = jiffies;
394#endif
395 mutex_unlock(&server->srv_mutex);
396 if (rc)
397 goto out_err;
398
399 return rc;
400out_err:
401 delete_mid(mid);
402 atomic_dec(&server->inFlight);
403 wake_up(&server->request_q);
404 return rc;
405}
406
407/*
Steve French133672e2007-11-13 22:41:37 +0000408 *
409 * Send an SMB Request. No response info (other than return code)
410 * needs to be parsed.
411 *
412 * flags indicate the type of request buffer and how long to wait
413 * and whether to log NT STATUS code (error) before mapping it to POSIX error
414 *
415 */
416int
417SendReceiveNoRsp(const unsigned int xid, struct cifsSesInfo *ses,
418 struct smb_hdr *in_buf, int flags)
419{
420 int rc;
421 struct kvec iov[1];
422 int resp_buf_type;
423
424 iov[0].iov_base = (char *)in_buf;
425 iov[0].iov_len = in_buf->smb_buf_length + 4;
426 flags |= CIFS_NO_RESP;
427 rc = SendReceive2(xid, ses, iov, 1, &resp_buf_type, flags);
Joe Perchesb6b38f72010-04-21 03:50:45 +0000428 cFYI(DBG2, "SendRcvNoRsp flags %d rc %d", flags, rc);
Steve French90c81e02008-02-12 20:32:36 +0000429
Steve French133672e2007-11-13 22:41:37 +0000430 return rc;
431}
432
Jeff Layton053d5032011-01-11 07:24:02 -0500433static int
434sync_mid_result(struct mid_q_entry *mid, struct TCP_Server_Info *server)
435{
436 int rc = 0;
437
Jeff Layton74dd92a2011-01-11 07:24:02 -0500438 cFYI(1, "%s: cmd=%d mid=%d state=%d", __func__, mid->command,
439 mid->mid, mid->midState);
Jeff Layton053d5032011-01-11 07:24:02 -0500440
Jeff Layton74dd92a2011-01-11 07:24:02 -0500441 spin_lock(&GlobalMid_Lock);
Jeff Layton2b84a36c2011-01-11 07:24:21 -0500442 /* ensure that it's no longer on the pending_mid_q */
443 list_del_init(&mid->qhead);
444
Jeff Layton74dd92a2011-01-11 07:24:02 -0500445 switch (mid->midState) {
446 case MID_RESPONSE_RECEIVED:
Jeff Layton053d5032011-01-11 07:24:02 -0500447 spin_unlock(&GlobalMid_Lock);
448 return rc;
Jeff Layton74dd92a2011-01-11 07:24:02 -0500449 case MID_REQUEST_SUBMITTED:
450 /* socket is going down, reject all calls */
451 if (server->tcpStatus == CifsExiting) {
452 cERROR(1, "%s: canceling mid=%d cmd=0x%x state=%d",
453 __func__, mid->mid, mid->command, mid->midState);
Jeff Layton053d5032011-01-11 07:24:02 -0500454 rc = -EHOSTDOWN;
Jeff Layton74dd92a2011-01-11 07:24:02 -0500455 break;
Jeff Layton053d5032011-01-11 07:24:02 -0500456 }
Jeff Layton74dd92a2011-01-11 07:24:02 -0500457 case MID_RETRY_NEEDED:
458 rc = -EAGAIN;
459 break;
460 default:
461 cERROR(1, "%s: invalid mid state mid=%d state=%d", __func__,
462 mid->mid, mid->midState);
463 rc = -EIO;
Jeff Layton053d5032011-01-11 07:24:02 -0500464 }
465 spin_unlock(&GlobalMid_Lock);
466
Jeff Layton2b84a36c2011-01-11 07:24:21 -0500467 DeleteMidQEntry(mid);
Jeff Layton053d5032011-01-11 07:24:02 -0500468 return rc;
469}
470
Jeff Layton76dcc262011-01-11 07:24:24 -0500471/*
472 * An NT cancel request header looks just like the original request except:
473 *
474 * The Command is SMB_COM_NT_CANCEL
475 * The WordCount is zeroed out
476 * The ByteCount is zeroed out
477 *
478 * This function mangles an existing request buffer into a
479 * SMB_COM_NT_CANCEL request and then sends it.
480 */
481static int
482send_nt_cancel(struct TCP_Server_Info *server, struct smb_hdr *in_buf,
483 struct mid_q_entry *mid)
484{
485 int rc = 0;
486
487 /* -4 for RFC1001 length and +2 for BCC field */
488 in_buf->smb_buf_length = sizeof(struct smb_hdr) - 4 + 2;
489 in_buf->Command = SMB_COM_NT_CANCEL;
490 in_buf->WordCount = 0;
Jeff Layton690c5222011-01-20 13:36:51 -0500491 put_bcc_le(0, in_buf);
Jeff Layton76dcc262011-01-11 07:24:24 -0500492
493 mutex_lock(&server->srv_mutex);
494 rc = cifs_sign_smb(in_buf, server, &mid->sequence_number);
495 if (rc) {
496 mutex_unlock(&server->srv_mutex);
497 return rc;
498 }
499 rc = smb_send(server, in_buf, in_buf->smb_buf_length);
500 mutex_unlock(&server->srv_mutex);
501
502 cFYI(1, "issued NT_CANCEL for mid %u, rc = %d",
503 in_buf->Mid, rc);
504
505 return rc;
506}
507
Linus Torvalds1da177e2005-04-16 15:20:36 -0700508int
Steve French79a58d12007-07-06 22:44:50 +0000509SendReceive2(const unsigned int xid, struct cifsSesInfo *ses,
510 struct kvec *iov, int n_vec, int *pRespBufType /* ret */,
Steve French133672e2007-11-13 22:41:37 +0000511 const int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700512{
513 int rc = 0;
Steve French133672e2007-11-13 22:41:37 +0000514 int long_op;
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500515 unsigned int receive_len;
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500516 struct mid_q_entry *midQ;
Steve French3e844692005-10-03 13:37:24 -0700517 struct smb_hdr *in_buf = iov[0].iov_base;
Steve French50c2f752007-07-13 00:33:32 +0000518
Steve French133672e2007-11-13 22:41:37 +0000519 long_op = flags & CIFS_TIMEOUT_MASK;
520
Steve Frenchec637e32005-12-12 20:53:18 -0800521 *pRespBufType = CIFS_NO_BUFFER; /* no response buf yet */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700522
Steve French4b8f9302006-02-26 16:41:18 +0000523 if ((ses == NULL) || (ses->server == NULL)) {
524 cifs_small_buf_release(in_buf);
Joe Perchesb6b38f72010-04-21 03:50:45 +0000525 cERROR(1, "Null session");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700526 return -EIO;
527 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700528
Steve French79a58d12007-07-06 22:44:50 +0000529 if (ses->server->tcpStatus == CifsExiting) {
Steve French4b8f9302006-02-26 16:41:18 +0000530 cifs_small_buf_release(in_buf);
Steve French31ca3bc2005-04-28 22:41:11 -0700531 return -ENOENT;
Steve French4b8f9302006-02-26 16:41:18 +0000532 }
Steve French31ca3bc2005-04-28 22:41:11 -0700533
Steve French79a58d12007-07-06 22:44:50 +0000534 /* Ensure that we do not send more than 50 overlapping requests
Linus Torvalds1da177e2005-04-16 15:20:36 -0700535 to the same server. We may make this configurable later or
536 use ses->maxReq */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700537
Jeff Laytonc5797a92011-01-11 07:24:01 -0500538 rc = wait_for_free_request(ses->server, long_op);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000539 if (rc) {
540 cifs_small_buf_release(in_buf);
541 return rc;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700542 }
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000543
Steve French79a58d12007-07-06 22:44:50 +0000544 /* make sure that we sign in the same order that we send on this socket
Linus Torvalds1da177e2005-04-16 15:20:36 -0700545 and avoid races inside tcp sendmsg code that could cause corruption
546 of smb data */
547
Jeff Layton72ca5452008-12-01 07:09:36 -0500548 mutex_lock(&ses->server->srv_mutex);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700549
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000550 rc = allocate_mid(ses, in_buf, &midQ);
551 if (rc) {
Jeff Layton72ca5452008-12-01 07:09:36 -0500552 mutex_unlock(&ses->server->srv_mutex);
Steve French4b8f9302006-02-26 16:41:18 +0000553 cifs_small_buf_release(in_buf);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000554 /* Update # of requests on wire to server */
Steve French79a58d12007-07-06 22:44:50 +0000555 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000556 wake_up(&ses->server->request_q);
557 return rc;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700558 }
Steve French79a58d12007-07-06 22:44:50 +0000559 rc = cifs_sign_smb2(iov, n_vec, ses->server, &midQ->sequence_number);
Volker Lendecke829049c2008-12-06 16:00:53 +0100560 if (rc) {
561 mutex_unlock(&ses->server->srv_mutex);
562 cifs_small_buf_release(in_buf);
563 goto out;
564 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700565
566 midQ->midState = MID_REQUEST_SUBMITTED;
Steve French131afd0b2005-10-07 09:51:05 -0700567#ifdef CONFIG_CIFS_STATS2
568 atomic_inc(&ses->server->inSend);
569#endif
Jeff Layton0496e022008-12-30 12:39:16 -0500570 rc = smb_sendv(ses->server, iov, n_vec);
Steve French131afd0b2005-10-07 09:51:05 -0700571#ifdef CONFIG_CIFS_STATS2
572 atomic_dec(&ses->server->inSend);
Steve French1047abc2005-10-11 19:58:06 -0700573 midQ->when_sent = jiffies;
Steve French131afd0b2005-10-07 09:51:05 -0700574#endif
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000575
Jeff Layton72ca5452008-12-01 07:09:36 -0500576 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000577
Jeff Layton2db7c582011-01-28 07:08:28 -0500578 if (rc < 0) {
579 cifs_small_buf_release(in_buf);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000580 goto out;
Jeff Layton2db7c582011-01-28 07:08:28 -0500581 }
Steve French4b8f9302006-02-26 16:41:18 +0000582
Jeff Layton2db7c582011-01-28 07:08:28 -0500583 if (long_op == CIFS_ASYNC_OP) {
584 cifs_small_buf_release(in_buf);
Steve French133672e2007-11-13 22:41:37 +0000585 goto out;
Jeff Layton2db7c582011-01-28 07:08:28 -0500586 }
Jeff Layton0ade6402011-01-11 07:24:02 -0500587
588 rc = wait_for_response(ses->server, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500589 if (rc != 0) {
Jeff Layton2db7c582011-01-28 07:08:28 -0500590 send_nt_cancel(ses->server, in_buf, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500591 spin_lock(&GlobalMid_Lock);
592 if (midQ->midState == MID_REQUEST_SUBMITTED) {
593 midQ->callback = DeleteMidQEntry;
594 spin_unlock(&GlobalMid_Lock);
Jeff Layton2db7c582011-01-28 07:08:28 -0500595 cifs_small_buf_release(in_buf);
Jeff Layton1be912d2011-01-28 07:08:28 -0500596 atomic_dec(&ses->server->inFlight);
597 wake_up(&ses->server->request_q);
598 return rc;
599 }
600 spin_unlock(&GlobalMid_Lock);
601 }
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500602
Jeff Layton2db7c582011-01-28 07:08:28 -0500603 cifs_small_buf_release(in_buf);
604
Jeff Layton053d5032011-01-11 07:24:02 -0500605 rc = sync_mid_result(midQ, ses->server);
606 if (rc != 0) {
Steve French79a58d12007-07-06 22:44:50 +0000607 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000608 wake_up(&ses->server->request_q);
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500609 return rc;
610 }
Steve French50c2f752007-07-13 00:33:32 +0000611
Volker Lendecke8e4f2e82008-12-06 16:22:15 +0100612 receive_len = midQ->resp_buf->smb_buf_length;
613
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500614 if (receive_len > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000615 cERROR(1, "Frame too large received. Length: %d Xid: %d",
616 receive_len, xid);
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500617 rc = -EIO;
Steve French2b2bdfb2008-12-11 17:26:54 +0000618 goto out;
619 }
Steve French84afc292005-12-02 13:32:45 -0800620
Steve French2b2bdfb2008-12-11 17:26:54 +0000621 /* rcvd frame is ok */
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500622
Steve French2b2bdfb2008-12-11 17:26:54 +0000623 if (midQ->resp_buf &&
624 (midQ->midState == MID_RESPONSE_RECEIVED)) {
625
626 iov[0].iov_base = (char *)midQ->resp_buf;
627 if (midQ->largeBuf)
628 *pRespBufType = CIFS_LARGE_BUFFER;
629 else
630 *pRespBufType = CIFS_SMALL_BUFFER;
631 iov[0].iov_len = receive_len + 4;
632
633 dump_smb(midQ->resp_buf, 80);
634 /* convert the length into a more usable form */
635 if ((receive_len > 24) &&
636 (ses->server->secMode & (SECMODE_SIGN_REQUIRED |
637 SECMODE_SIGN_ENABLED))) {
638 rc = cifs_verify_signature(midQ->resp_buf,
Shirish Pargaonkar21e73392010-10-21 06:42:55 -0500639 ses->server,
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500640 midQ->sequence_number+1);
Steve French2b2bdfb2008-12-11 17:26:54 +0000641 if (rc) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000642 cERROR(1, "Unexpected SMB signature");
Steve French2b2bdfb2008-12-11 17:26:54 +0000643 /* BB FIXME add code to kill session */
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500644 }
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500645 }
Steve French2b2bdfb2008-12-11 17:26:54 +0000646
647 /* BB special case reconnect tid and uid here? */
648 rc = map_smb_to_linux_error(midQ->resp_buf,
649 flags & CIFS_LOG_ERROR);
650
651 /* convert ByteCount if necessary */
652 if (receive_len >= sizeof(struct smb_hdr) - 4
653 /* do not count RFC1001 header */ +
654 (2 * midQ->resp_buf->WordCount) + 2 /* bcc */ )
Jeff Layton690c5222011-01-20 13:36:51 -0500655 put_bcc(get_bcc_le(midQ->resp_buf), midQ->resp_buf);
Steve French2b2bdfb2008-12-11 17:26:54 +0000656 if ((flags & CIFS_NO_RESP) == 0)
657 midQ->resp_buf = NULL; /* mark it so buf will
658 not be freed by
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500659 delete_mid */
Steve French2b2bdfb2008-12-11 17:26:54 +0000660 } else {
661 rc = -EIO;
Joe Perchesb6b38f72010-04-21 03:50:45 +0000662 cFYI(1, "Bad MID state?");
Steve Frenchd6e04ae2005-06-13 13:24:43 -0500663 }
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000664
665out:
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500666 delete_mid(midQ);
Steve French79a58d12007-07-06 22:44:50 +0000667 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000668 wake_up(&ses->server->request_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700669
670 return rc;
671}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700672
673int
674SendReceive(const unsigned int xid, struct cifsSesInfo *ses,
675 struct smb_hdr *in_buf, struct smb_hdr *out_buf,
676 int *pbytes_returned, const int long_op)
677{
678 int rc = 0;
679 unsigned int receive_len;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700680 struct mid_q_entry *midQ;
681
682 if (ses == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000683 cERROR(1, "Null smb session");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700684 return -EIO;
685 }
Steve French79a58d12007-07-06 22:44:50 +0000686 if (ses->server == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000687 cERROR(1, "Null tcp session");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700688 return -EIO;
689 }
690
Steve French79a58d12007-07-06 22:44:50 +0000691 if (ses->server->tcpStatus == CifsExiting)
Steve French31ca3bc2005-04-28 22:41:11 -0700692 return -ENOENT;
693
Steve French79a58d12007-07-06 22:44:50 +0000694 /* Ensure that we do not send more than 50 overlapping requests
Linus Torvalds1da177e2005-04-16 15:20:36 -0700695 to the same server. We may make this configurable later or
696 use ses->maxReq */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700697
Volker Lendecke6d9c6d52008-12-08 20:50:24 +0000698 if (in_buf->smb_buf_length > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE - 4) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000699 cERROR(1, "Illegal length, greater than maximum frame, %d",
700 in_buf->smb_buf_length);
Volker Lendecke6d9c6d52008-12-08 20:50:24 +0000701 return -EIO;
702 }
703
Jeff Laytonc5797a92011-01-11 07:24:01 -0500704 rc = wait_for_free_request(ses->server, long_op);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000705 if (rc)
706 return rc;
707
Steve French79a58d12007-07-06 22:44:50 +0000708 /* make sure that we sign in the same order that we send on this socket
Linus Torvalds1da177e2005-04-16 15:20:36 -0700709 and avoid races inside tcp sendmsg code that could cause corruption
710 of smb data */
711
Jeff Layton72ca5452008-12-01 07:09:36 -0500712 mutex_lock(&ses->server->srv_mutex);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700713
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000714 rc = allocate_mid(ses, in_buf, &midQ);
715 if (rc) {
Jeff Layton72ca5452008-12-01 07:09:36 -0500716 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000717 /* Update # of requests on wire to server */
Steve French79a58d12007-07-06 22:44:50 +0000718 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000719 wake_up(&ses->server->request_q);
720 return rc;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700721 }
722
Steve Frenchad009ac2005-04-28 22:41:05 -0700723 rc = cifs_sign_smb(in_buf, ses->server, &midQ->sequence_number);
Volker Lendecke829049c2008-12-06 16:00:53 +0100724 if (rc) {
725 mutex_unlock(&ses->server->srv_mutex);
726 goto out;
727 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700728
729 midQ->midState = MID_REQUEST_SUBMITTED;
Steve French131afd0b2005-10-07 09:51:05 -0700730#ifdef CONFIG_CIFS_STATS2
731 atomic_inc(&ses->server->inSend);
732#endif
Jeff Layton0496e022008-12-30 12:39:16 -0500733 rc = smb_send(ses->server, in_buf, in_buf->smb_buf_length);
Steve French131afd0b2005-10-07 09:51:05 -0700734#ifdef CONFIG_CIFS_STATS2
735 atomic_dec(&ses->server->inSend);
Steve French1047abc2005-10-11 19:58:06 -0700736 midQ->when_sent = jiffies;
Steve French131afd0b2005-10-07 09:51:05 -0700737#endif
Jeff Layton72ca5452008-12-01 07:09:36 -0500738 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000739
Steve French79a58d12007-07-06 22:44:50 +0000740 if (rc < 0)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000741 goto out;
742
Jeff Layton0ade6402011-01-11 07:24:02 -0500743 if (long_op == CIFS_ASYNC_OP)
Steve French133672e2007-11-13 22:41:37 +0000744 goto out;
Jeff Layton0ade6402011-01-11 07:24:02 -0500745
746 rc = wait_for_response(ses->server, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500747 if (rc != 0) {
Jeff Layton2db7c582011-01-28 07:08:28 -0500748 send_nt_cancel(ses->server, in_buf, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500749 spin_lock(&GlobalMid_Lock);
750 if (midQ->midState == MID_REQUEST_SUBMITTED) {
751 /* no longer considered to be "in-flight" */
752 midQ->callback = DeleteMidQEntry;
753 spin_unlock(&GlobalMid_Lock);
754 atomic_dec(&ses->server->inFlight);
755 wake_up(&ses->server->request_q);
756 return rc;
757 }
758 spin_unlock(&GlobalMid_Lock);
759 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700760
Jeff Layton053d5032011-01-11 07:24:02 -0500761 rc = sync_mid_result(midQ, ses->server);
762 if (rc != 0) {
Steve French79a58d12007-07-06 22:44:50 +0000763 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000764 wake_up(&ses->server->request_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700765 return rc;
766 }
Steve French50c2f752007-07-13 00:33:32 +0000767
Volker Lendecke8e4f2e82008-12-06 16:22:15 +0100768 receive_len = midQ->resp_buf->smb_buf_length;
769
Linus Torvalds1da177e2005-04-16 15:20:36 -0700770 if (receive_len > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000771 cERROR(1, "Frame too large received. Length: %d Xid: %d",
772 receive_len, xid);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700773 rc = -EIO;
Steve French2b2bdfb2008-12-11 17:26:54 +0000774 goto out;
775 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700776
Steve French2b2bdfb2008-12-11 17:26:54 +0000777 /* rcvd frame is ok */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700778
Steve French2b2bdfb2008-12-11 17:26:54 +0000779 if (midQ->resp_buf && out_buf
780 && (midQ->midState == MID_RESPONSE_RECEIVED)) {
781 out_buf->smb_buf_length = receive_len;
782 memcpy((char *)out_buf + 4,
783 (char *)midQ->resp_buf + 4,
784 receive_len);
785
786 dump_smb(out_buf, 92);
787 /* convert the length into a more usable form */
788 if ((receive_len > 24) &&
789 (ses->server->secMode & (SECMODE_SIGN_REQUIRED |
790 SECMODE_SIGN_ENABLED))) {
791 rc = cifs_verify_signature(out_buf,
Shirish Pargaonkar21e73392010-10-21 06:42:55 -0500792 ses->server,
Steve Frenchad009ac2005-04-28 22:41:05 -0700793 midQ->sequence_number+1);
Steve French2b2bdfb2008-12-11 17:26:54 +0000794 if (rc) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000795 cERROR(1, "Unexpected SMB signature");
Steve French2b2bdfb2008-12-11 17:26:54 +0000796 /* BB FIXME add code to kill session */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700797 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700798 }
Steve French2b2bdfb2008-12-11 17:26:54 +0000799
800 *pbytes_returned = out_buf->smb_buf_length;
801
802 /* BB special case reconnect tid and uid here? */
803 rc = map_smb_to_linux_error(out_buf, 0 /* no log */ );
804
805 /* convert ByteCount if necessary */
806 if (receive_len >= sizeof(struct smb_hdr) - 4
807 /* do not count RFC1001 header */ +
808 (2 * out_buf->WordCount) + 2 /* bcc */ )
Jeff Layton690c5222011-01-20 13:36:51 -0500809 put_bcc(get_bcc_le(midQ->resp_buf), midQ->resp_buf);
Steve French2b2bdfb2008-12-11 17:26:54 +0000810 } else {
811 rc = -EIO;
Joe Perchesb6b38f72010-04-21 03:50:45 +0000812 cERROR(1, "Bad MID state?");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700813 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700814
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000815out:
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500816 delete_mid(midQ);
Steve French79a58d12007-07-06 22:44:50 +0000817 atomic_dec(&ses->server->inFlight);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000818 wake_up(&ses->server->request_q);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700819
820 return rc;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000821}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700822
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000823/* We send a LOCKINGX_CANCEL_LOCK to cause the Windows
824 blocking lock to return. */
825
826static int
827send_lock_cancel(const unsigned int xid, struct cifsTconInfo *tcon,
828 struct smb_hdr *in_buf,
829 struct smb_hdr *out_buf)
830{
831 int bytes_returned;
832 struct cifsSesInfo *ses = tcon->ses;
833 LOCK_REQ *pSMB = (LOCK_REQ *)in_buf;
834
835 /* We just modify the current in_buf to change
836 the type of lock from LOCKING_ANDX_SHARED_LOCK
837 or LOCKING_ANDX_EXCLUSIVE_LOCK to
838 LOCKING_ANDX_CANCEL_LOCK. */
839
840 pSMB->LockType = LOCKING_ANDX_CANCEL_LOCK|LOCKING_ANDX_LARGE_FILES;
841 pSMB->Timeout = 0;
842 pSMB->hdr.Mid = GetNextMid(ses->server);
843
844 return SendReceive(xid, ses, in_buf, out_buf,
Jeff Layton77499812011-01-11 07:24:23 -0500845 &bytes_returned, 0);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000846}
847
848int
849SendReceiveBlockingLock(const unsigned int xid, struct cifsTconInfo *tcon,
850 struct smb_hdr *in_buf, struct smb_hdr *out_buf,
851 int *pbytes_returned)
852{
853 int rc = 0;
854 int rstart = 0;
855 unsigned int receive_len;
856 struct mid_q_entry *midQ;
857 struct cifsSesInfo *ses;
858
859 if (tcon == NULL || tcon->ses == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000860 cERROR(1, "Null smb session");
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000861 return -EIO;
862 }
863 ses = tcon->ses;
864
Steve French79a58d12007-07-06 22:44:50 +0000865 if (ses->server == NULL) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000866 cERROR(1, "Null tcp session");
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000867 return -EIO;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700868 }
869
Steve French79a58d12007-07-06 22:44:50 +0000870 if (ses->server->tcpStatus == CifsExiting)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000871 return -ENOENT;
872
Steve French79a58d12007-07-06 22:44:50 +0000873 /* Ensure that we do not send more than 50 overlapping requests
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000874 to the same server. We may make this configurable later or
875 use ses->maxReq */
876
Volker Lendecke6d9c6d52008-12-08 20:50:24 +0000877 if (in_buf->smb_buf_length > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE - 4) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000878 cERROR(1, "Illegal length, greater than maximum frame, %d",
879 in_buf->smb_buf_length);
Volker Lendecke6d9c6d52008-12-08 20:50:24 +0000880 return -EIO;
881 }
882
Jeff Laytonc5797a92011-01-11 07:24:01 -0500883 rc = wait_for_free_request(ses->server, CIFS_BLOCKING_OP);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000884 if (rc)
885 return rc;
886
Steve French79a58d12007-07-06 22:44:50 +0000887 /* make sure that we sign in the same order that we send on this socket
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000888 and avoid races inside tcp sendmsg code that could cause corruption
889 of smb data */
890
Jeff Layton72ca5452008-12-01 07:09:36 -0500891 mutex_lock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000892
893 rc = allocate_mid(ses, in_buf, &midQ);
894 if (rc) {
Jeff Layton72ca5452008-12-01 07:09:36 -0500895 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000896 return rc;
897 }
898
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000899 rc = cifs_sign_smb(in_buf, ses->server, &midQ->sequence_number);
Volker Lendecke829049c2008-12-06 16:00:53 +0100900 if (rc) {
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500901 delete_mid(midQ);
Volker Lendecke829049c2008-12-06 16:00:53 +0100902 mutex_unlock(&ses->server->srv_mutex);
903 return rc;
904 }
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000905
906 midQ->midState = MID_REQUEST_SUBMITTED;
907#ifdef CONFIG_CIFS_STATS2
908 atomic_inc(&ses->server->inSend);
909#endif
Jeff Layton0496e022008-12-30 12:39:16 -0500910 rc = smb_send(ses->server, in_buf, in_buf->smb_buf_length);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000911#ifdef CONFIG_CIFS_STATS2
912 atomic_dec(&ses->server->inSend);
913 midQ->when_sent = jiffies;
914#endif
Jeff Layton72ca5452008-12-01 07:09:36 -0500915 mutex_unlock(&ses->server->srv_mutex);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000916
Steve French79a58d12007-07-06 22:44:50 +0000917 if (rc < 0) {
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500918 delete_mid(midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000919 return rc;
920 }
921
922 /* Wait for a reply - allow signals to interrupt. */
923 rc = wait_event_interruptible(ses->server->response_q,
Steve French79a58d12007-07-06 22:44:50 +0000924 (!(midQ->midState == MID_REQUEST_SUBMITTED)) ||
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000925 ((ses->server->tcpStatus != CifsGood) &&
926 (ses->server->tcpStatus != CifsNew)));
927
928 /* Were we interrupted by a signal ? */
929 if ((rc == -ERESTARTSYS) &&
930 (midQ->midState == MID_REQUEST_SUBMITTED) &&
931 ((ses->server->tcpStatus == CifsGood) ||
932 (ses->server->tcpStatus == CifsNew))) {
933
934 if (in_buf->Command == SMB_COM_TRANSACTION2) {
935 /* POSIX lock. We send a NT_CANCEL SMB to cause the
936 blocking lock to return. */
Jeff Layton76dcc262011-01-11 07:24:24 -0500937 rc = send_nt_cancel(ses->server, in_buf, midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000938 if (rc) {
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500939 delete_mid(midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000940 return rc;
941 }
942 } else {
943 /* Windows lock. We send a LOCKINGX_CANCEL_LOCK
944 to cause the blocking lock to return. */
945
946 rc = send_lock_cancel(xid, tcon, in_buf, out_buf);
947
948 /* If we get -ENOLCK back the lock may have
949 already been removed. Don't exit in this case. */
950 if (rc && rc != -ENOLCK) {
Jeff Laytonddc8cf82011-01-11 07:24:02 -0500951 delete_mid(midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000952 return rc;
953 }
954 }
955
Jeff Layton1be912d2011-01-28 07:08:28 -0500956 rc = wait_for_response(ses->server, midQ);
957 if (rc) {
Jeff Layton2db7c582011-01-28 07:08:28 -0500958 send_nt_cancel(ses->server, in_buf, midQ);
Jeff Layton1be912d2011-01-28 07:08:28 -0500959 spin_lock(&GlobalMid_Lock);
960 if (midQ->midState == MID_REQUEST_SUBMITTED) {
961 /* no longer considered to be "in-flight" */
962 midQ->callback = DeleteMidQEntry;
963 spin_unlock(&GlobalMid_Lock);
964 return rc;
965 }
966 spin_unlock(&GlobalMid_Lock);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000967 }
Jeff Layton1be912d2011-01-28 07:08:28 -0500968
969 /* We got the response - restart system call. */
970 rstart = 1;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000971 }
972
Jeff Layton053d5032011-01-11 07:24:02 -0500973 rc = sync_mid_result(midQ, ses->server);
974 if (rc != 0)
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000975 return rc;
Steve French50c2f752007-07-13 00:33:32 +0000976
Jeff Layton053d5032011-01-11 07:24:02 -0500977 receive_len = midQ->resp_buf->smb_buf_length;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000978 if (receive_len > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE) {
Joe Perchesb6b38f72010-04-21 03:50:45 +0000979 cERROR(1, "Frame too large received. Length: %d Xid: %d",
980 receive_len, xid);
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000981 rc = -EIO;
Volker Lendecke17c8bfe2008-12-06 16:38:19 +0100982 goto out;
Jeremy Allison7ee1af72006-08-02 21:56:33 +0000983 }
Volker Lendecke17c8bfe2008-12-06 16:38:19 +0100984
985 /* rcvd frame is ok */
986
Volker Lendeckeac6a3ef2008-12-06 16:40:40 +0100987 if ((out_buf == NULL) || (midQ->midState != MID_RESPONSE_RECEIVED)) {
Volker Lendecke17c8bfe2008-12-06 16:38:19 +0100988 rc = -EIO;
Joe Perchesb6b38f72010-04-21 03:50:45 +0000989 cERROR(1, "Bad MID state?");
Volker Lendecke698e96a2008-12-06 16:39:31 +0100990 goto out;
Volker Lendecke17c8bfe2008-12-06 16:38:19 +0100991 }
992
Volker Lendecke698e96a2008-12-06 16:39:31 +0100993 out_buf->smb_buf_length = receive_len;
994 memcpy((char *)out_buf + 4,
995 (char *)midQ->resp_buf + 4,
996 receive_len);
997
998 dump_smb(out_buf, 92);
999 /* convert the length into a more usable form */
1000 if ((receive_len > 24) &&
1001 (ses->server->secMode & (SECMODE_SIGN_REQUIRED |
1002 SECMODE_SIGN_ENABLED))) {
1003 rc = cifs_verify_signature(out_buf,
Shirish Pargaonkar21e73392010-10-21 06:42:55 -05001004 ses->server,
Volker Lendecke698e96a2008-12-06 16:39:31 +01001005 midQ->sequence_number+1);
1006 if (rc) {
Joe Perchesb6b38f72010-04-21 03:50:45 +00001007 cERROR(1, "Unexpected SMB signature");
Volker Lendecke698e96a2008-12-06 16:39:31 +01001008 /* BB FIXME add code to kill session */
1009 }
1010 }
1011
1012 *pbytes_returned = out_buf->smb_buf_length;
1013
1014 /* BB special case reconnect tid and uid here? */
1015 rc = map_smb_to_linux_error(out_buf, 0 /* no log */ );
1016
1017 /* convert ByteCount if necessary */
1018 if (receive_len >= sizeof(struct smb_hdr) - 4
1019 /* do not count RFC1001 header */ +
1020 (2 * out_buf->WordCount) + 2 /* bcc */ )
Jeff Layton690c5222011-01-20 13:36:51 -05001021 put_bcc(get_bcc_le(out_buf), out_buf);
Volker Lendecke698e96a2008-12-06 16:39:31 +01001022
Volker Lendecke17c8bfe2008-12-06 16:38:19 +01001023out:
Jeff Laytonddc8cf82011-01-11 07:24:02 -05001024 delete_mid(midQ);
Jeremy Allison7ee1af72006-08-02 21:56:33 +00001025 if (rstart && rc == -EACCES)
1026 return -ERESTARTSYS;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001027 return rc;
1028}