2005-04-17 05:20:36 +07:00
|
|
|
/*
|
|
|
|
* fs/cifs/misc.c
|
|
|
|
*
|
2008-02-08 06:25:02 +07:00
|
|
|
* Copyright (C) International Business Machines Corp., 2002,2008
|
2005-04-17 05:20:36 +07:00
|
|
|
* Author(s): Steve French (sfrench@us.ibm.com)
|
|
|
|
*
|
|
|
|
* This library is free software; you can redistribute it and/or modify
|
|
|
|
* it under the terms of the GNU Lesser General Public License as published
|
|
|
|
* by the Free Software Foundation; either version 2.1 of the License, or
|
|
|
|
* (at your option) any later version.
|
|
|
|
*
|
|
|
|
* This library is distributed in the hope that it will be useful,
|
|
|
|
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See
|
|
|
|
* the GNU Lesser General Public License for more details.
|
|
|
|
*
|
|
|
|
* You should have received a copy of the GNU Lesser General Public License
|
|
|
|
* along with this library; if not, write to the Free Software
|
2007-07-10 08:16:18 +07:00
|
|
|
* Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
|
2005-04-17 05:20:36 +07:00
|
|
|
*/
|
|
|
|
|
|
|
|
#include <linux/slab.h>
|
|
|
|
#include <linux/ctype.h>
|
|
|
|
#include <linux/mempool.h>
|
|
|
|
#include "cifspdu.h"
|
|
|
|
#include "cifsglob.h"
|
|
|
|
#include "cifsproto.h"
|
|
|
|
#include "cifs_debug.h"
|
|
|
|
#include "smberr.h"
|
|
|
|
#include "nterr.h"
|
2005-04-29 12:41:06 +07:00
|
|
|
#include "cifs_unicode.h"
|
2005-04-17 05:20:36 +07:00
|
|
|
|
|
|
|
extern mempool_t *cifs_sm_req_poolp;
|
|
|
|
extern mempool_t *cifs_req_poolp;
|
|
|
|
|
2007-07-10 08:16:18 +07:00
|
|
|
/* The xid serves as a useful identifier for each incoming vfs request,
|
|
|
|
in a similar way to the mid which is useful to track each sent smb,
|
|
|
|
and CurrentXid can also provide a running counter (although it
|
|
|
|
will eventually wrap past zero) of the total vfs operations handled
|
2005-04-17 05:20:36 +07:00
|
|
|
since the cifs fs was mounted */
|
|
|
|
|
|
|
|
unsigned int
|
|
|
|
_GetXid(void)
|
|
|
|
{
|
|
|
|
unsigned int xid;
|
|
|
|
|
|
|
|
spin_lock(&GlobalMid_Lock);
|
|
|
|
GlobalTotalActiveXid++;
|
2007-07-13 07:33:32 +07:00
|
|
|
|
|
|
|
/* keep high water mark for number of simultaneous ops in filesystem */
|
2005-04-17 05:20:36 +07:00
|
|
|
if (GlobalTotalActiveXid > GlobalMaxActiveXid)
|
2007-07-13 07:33:32 +07:00
|
|
|
GlobalMaxActiveXid = GlobalTotalActiveXid;
|
2007-07-08 02:25:05 +07:00
|
|
|
if (GlobalTotalActiveXid > 65000)
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "warning: more than 65000 requests active");
|
2005-04-17 05:20:36 +07:00
|
|
|
xid = GlobalCurrentXid++;
|
|
|
|
spin_unlock(&GlobalMid_Lock);
|
|
|
|
return xid;
|
|
|
|
}
|
|
|
|
|
|
|
|
void
|
|
|
|
_FreeXid(unsigned int xid)
|
|
|
|
{
|
|
|
|
spin_lock(&GlobalMid_Lock);
|
2007-07-08 02:25:05 +07:00
|
|
|
/* if (GlobalTotalActiveXid == 0)
|
2005-04-17 05:20:36 +07:00
|
|
|
BUG(); */
|
|
|
|
GlobalTotalActiveXid--;
|
|
|
|
spin_unlock(&GlobalMid_Lock);
|
|
|
|
}
|
|
|
|
|
2011-05-27 11:34:02 +07:00
|
|
|
struct cifs_ses *
|
2005-04-17 05:20:36 +07:00
|
|
|
sesInfoAlloc(void)
|
|
|
|
{
|
2011-05-27 11:34:02 +07:00
|
|
|
struct cifs_ses *ret_buf;
|
2005-04-17 05:20:36 +07:00
|
|
|
|
2011-05-27 11:34:02 +07:00
|
|
|
ret_buf = kzalloc(sizeof(struct cifs_ses), GFP_KERNEL);
|
2005-04-17 05:20:36 +07:00
|
|
|
if (ret_buf) {
|
|
|
|
atomic_inc(&sesInfoAllocCount);
|
|
|
|
ret_buf->status = CifsNew;
|
2008-11-15 01:53:46 +07:00
|
|
|
++ret_buf->ses_count;
|
|
|
|
INIT_LIST_HEAD(&ret_buf->smb_ses_list);
|
2008-11-15 23:12:47 +07:00
|
|
|
INIT_LIST_HEAD(&ret_buf->tcon_list);
|
2010-02-25 12:36:46 +07:00
|
|
|
mutex_init(&ret_buf->session_mutex);
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
|
|
|
return ret_buf;
|
|
|
|
}
|
|
|
|
|
|
|
|
void
|
2011-05-27 11:34:02 +07:00
|
|
|
sesInfoFree(struct cifs_ses *buf_to_free)
|
2005-04-17 05:20:36 +07:00
|
|
|
{
|
|
|
|
if (buf_to_free == NULL) {
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "Null buffer passed to sesInfoFree");
|
2005-04-17 05:20:36 +07:00
|
|
|
return;
|
|
|
|
}
|
|
|
|
|
|
|
|
atomic_dec(&sesInfoAllocCount);
|
2005-11-07 16:01:34 +07:00
|
|
|
kfree(buf_to_free->serverOS);
|
|
|
|
kfree(buf_to_free->serverDomain);
|
|
|
|
kfree(buf_to_free->serverNOS);
|
2008-12-06 08:41:21 +07:00
|
|
|
if (buf_to_free->password) {
|
|
|
|
memset(buf_to_free->password, 0, strlen(buf_to_free->password));
|
|
|
|
kfree(buf_to_free->password);
|
|
|
|
}
|
2011-02-25 14:11:56 +07:00
|
|
|
kfree(buf_to_free->user_name);
|
2006-06-01 05:40:51 +07:00
|
|
|
kfree(buf_to_free->domainName);
|
2005-04-17 05:20:36 +07:00
|
|
|
kfree(buf_to_free);
|
|
|
|
}
|
|
|
|
|
2011-05-27 11:34:02 +07:00
|
|
|
struct cifs_tcon *
|
2005-04-17 05:20:36 +07:00
|
|
|
tconInfoAlloc(void)
|
|
|
|
{
|
2011-05-27 11:34:02 +07:00
|
|
|
struct cifs_tcon *ret_buf;
|
|
|
|
ret_buf = kzalloc(sizeof(struct cifs_tcon), GFP_KERNEL);
|
2005-04-17 05:20:36 +07:00
|
|
|
if (ret_buf) {
|
|
|
|
atomic_inc(&tconInfoAllocCount);
|
|
|
|
ret_buf->tidStatus = CifsNew;
|
2008-11-15 23:12:47 +07:00
|
|
|
++ret_buf->tc_count;
|
2005-04-17 05:20:36 +07:00
|
|
|
INIT_LIST_HEAD(&ret_buf->openFileList);
|
2008-11-15 23:12:47 +07:00
|
|
|
INIT_LIST_HEAD(&ret_buf->tcon_list);
|
2005-04-17 05:20:36 +07:00
|
|
|
#ifdef CONFIG_CIFS_STATS
|
|
|
|
spin_lock_init(&ret_buf->stat_lock);
|
|
|
|
#endif
|
|
|
|
}
|
|
|
|
return ret_buf;
|
|
|
|
}
|
|
|
|
|
|
|
|
void
|
2011-05-27 11:34:02 +07:00
|
|
|
tconInfoFree(struct cifs_tcon *buf_to_free)
|
2005-04-17 05:20:36 +07:00
|
|
|
{
|
|
|
|
if (buf_to_free == NULL) {
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "Null buffer passed to tconInfoFree");
|
2005-04-17 05:20:36 +07:00
|
|
|
return;
|
|
|
|
}
|
|
|
|
atomic_dec(&tconInfoAllocCount);
|
2005-11-07 16:01:34 +07:00
|
|
|
kfree(buf_to_free->nativeFileSystem);
|
2008-12-06 08:41:21 +07:00
|
|
|
if (buf_to_free->password) {
|
|
|
|
memset(buf_to_free->password, 0, strlen(buf_to_free->password));
|
|
|
|
kfree(buf_to_free->password);
|
|
|
|
}
|
2005-04-17 05:20:36 +07:00
|
|
|
kfree(buf_to_free);
|
|
|
|
}
|
|
|
|
|
|
|
|
struct smb_hdr *
|
|
|
|
cifs_buf_get(void)
|
|
|
|
{
|
|
|
|
struct smb_hdr *ret_buf = NULL;
|
|
|
|
|
2007-07-10 08:16:18 +07:00
|
|
|
/* We could use negotiated size instead of max_msgsize -
|
|
|
|
but it may be more efficient to always alloc same size
|
|
|
|
albeit slightly larger than necessary and maxbuffersize
|
2005-04-17 05:20:36 +07:00
|
|
|
defaults to this and can not be bigger */
|
2008-09-15 17:22:54 +07:00
|
|
|
ret_buf = mempool_alloc(cifs_req_poolp, GFP_NOFS);
|
2005-04-17 05:20:36 +07:00
|
|
|
|
|
|
|
/* clear the first few header bytes */
|
|
|
|
/* for most paths, more is cleared in header_assemble */
|
|
|
|
if (ret_buf) {
|
|
|
|
memset(ret_buf, 0, sizeof(struct smb_hdr) + 3);
|
|
|
|
atomic_inc(&bufAllocCount);
|
2005-12-04 04:58:57 +07:00
|
|
|
#ifdef CONFIG_CIFS_STATS2
|
|
|
|
atomic_inc(&totBufAllocCount);
|
|
|
|
#endif /* CONFIG_CIFS_STATS2 */
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
|
|
|
|
|
|
|
return ret_buf;
|
|
|
|
}
|
|
|
|
|
|
|
|
void
|
|
|
|
cifs_buf_release(void *buf_to_free)
|
|
|
|
{
|
|
|
|
if (buf_to_free == NULL) {
|
2010-04-21 10:50:45 +07:00
|
|
|
/* cFYI(1, "Null buffer passed to cifs_buf_release");*/
|
2005-04-17 05:20:36 +07:00
|
|
|
return;
|
|
|
|
}
|
2007-07-10 08:16:18 +07:00
|
|
|
mempool_free(buf_to_free, cifs_req_poolp);
|
2005-04-17 05:20:36 +07:00
|
|
|
|
|
|
|
atomic_dec(&bufAllocCount);
|
|
|
|
return;
|
|
|
|
}
|
|
|
|
|
|
|
|
struct smb_hdr *
|
|
|
|
cifs_small_buf_get(void)
|
|
|
|
{
|
|
|
|
struct smb_hdr *ret_buf = NULL;
|
|
|
|
|
2007-07-10 08:16:18 +07:00
|
|
|
/* We could use negotiated size instead of max_msgsize -
|
|
|
|
but it may be more efficient to always alloc same size
|
|
|
|
albeit slightly larger than necessary and maxbuffersize
|
2005-04-17 05:20:36 +07:00
|
|
|
defaults to this and can not be bigger */
|
2008-09-15 17:22:54 +07:00
|
|
|
ret_buf = mempool_alloc(cifs_sm_req_poolp, GFP_NOFS);
|
2005-04-17 05:20:36 +07:00
|
|
|
if (ret_buf) {
|
|
|
|
/* No need to clear memory here, cleared in header assemble */
|
|
|
|
/* memset(ret_buf, 0, sizeof(struct smb_hdr) + 27);*/
|
|
|
|
atomic_inc(&smBufAllocCount);
|
2005-12-04 04:58:57 +07:00
|
|
|
#ifdef CONFIG_CIFS_STATS2
|
|
|
|
atomic_inc(&totSmBufAllocCount);
|
|
|
|
#endif /* CONFIG_CIFS_STATS2 */
|
|
|
|
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
|
|
|
return ret_buf;
|
|
|
|
}
|
|
|
|
|
|
|
|
void
|
|
|
|
cifs_small_buf_release(void *buf_to_free)
|
|
|
|
{
|
|
|
|
|
|
|
|
if (buf_to_free == NULL) {
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "Null buffer passed to cifs_small_buf_release");
|
2005-04-17 05:20:36 +07:00
|
|
|
return;
|
|
|
|
}
|
2007-07-10 08:16:18 +07:00
|
|
|
mempool_free(buf_to_free, cifs_sm_req_poolp);
|
2005-04-17 05:20:36 +07:00
|
|
|
|
|
|
|
atomic_dec(&smBufAllocCount);
|
|
|
|
return;
|
|
|
|
}
|
|
|
|
|
2007-07-10 08:16:18 +07:00
|
|
|
/*
|
2005-08-18 02:38:22 +07:00
|
|
|
Find a free multiplex id (SMB mid). Otherwise there could be
|
|
|
|
mid collisions which might cause problems, demultiplexing the
|
|
|
|
wrong response to this request. Multiplex ids could collide if
|
|
|
|
one of a series requests takes much longer than the others, or
|
|
|
|
if a very large number of long lived requests (byte range
|
|
|
|
locks or FindNotify requests) are pending. No more than
|
2007-07-10 08:16:18 +07:00
|
|
|
64K-1 requests can be outstanding at one time. If no
|
2005-08-18 02:38:22 +07:00
|
|
|
mids are available, return zero. A future optimization
|
|
|
|
could make the combination of mids and uid the key we use
|
2007-07-10 08:16:18 +07:00
|
|
|
to demultiplex on (rather than mid alone).
|
2005-08-18 02:38:22 +07:00
|
|
|
In addition to the above check, the cifs demultiplex
|
|
|
|
code already used the command code as a secondary
|
|
|
|
check of the frame and if signing is negotiated the
|
|
|
|
response would be discarded if the mid were the same
|
|
|
|
but the signature was wrong. Since the mid is not put in the
|
|
|
|
pending queue until later (when it is about to be dispatched)
|
2007-07-10 08:16:18 +07:00
|
|
|
we do have to limit the number of outstanding requests
|
2005-08-18 02:38:22 +07:00
|
|
|
to somewhat less than 64K-1 although it is hard to imagine
|
|
|
|
so many threads being in the vfs at one time.
|
|
|
|
*/
|
|
|
|
__u16 GetNextMid(struct TCP_Server_Info *server)
|
|
|
|
{
|
|
|
|
__u16 mid = 0;
|
|
|
|
__u16 last_mid;
|
2011-01-29 19:02:28 +07:00
|
|
|
bool collision;
|
2005-08-18 02:38:22 +07:00
|
|
|
|
|
|
|
spin_lock(&GlobalMid_Lock);
|
|
|
|
last_mid = server->CurrentMid; /* we do not want to loop forever */
|
|
|
|
server->CurrentMid++;
|
|
|
|
/* This nested loop looks more expensive than it is.
|
2007-07-10 08:16:18 +07:00
|
|
|
In practice the list of pending requests is short,
|
2005-08-18 02:38:22 +07:00
|
|
|
fewer than 50, and the mids are likely to be unique
|
|
|
|
on the first pass through the loop unless some request
|
|
|
|
takes longer than the 64 thousand requests before it
|
|
|
|
(and it would also have to have been a request that
|
|
|
|
did not time out) */
|
2007-07-10 08:16:18 +07:00
|
|
|
while (server->CurrentMid != last_mid) {
|
2005-08-18 02:38:22 +07:00
|
|
|
struct mid_q_entry *mid_entry;
|
2011-01-29 19:02:28 +07:00
|
|
|
unsigned int num_mids;
|
2005-08-18 02:38:22 +07:00
|
|
|
|
2011-01-29 19:02:28 +07:00
|
|
|
collision = false;
|
2007-07-08 02:25:05 +07:00
|
|
|
if (server->CurrentMid == 0)
|
2005-08-18 02:38:22 +07:00
|
|
|
server->CurrentMid++;
|
|
|
|
|
2011-01-29 19:02:28 +07:00
|
|
|
num_mids = 0;
|
|
|
|
list_for_each_entry(mid_entry, &server->pending_mid_q, qhead) {
|
|
|
|
++num_mids;
|
|
|
|
if (mid_entry->mid == server->CurrentMid &&
|
|
|
|
mid_entry->midState == MID_REQUEST_SUBMITTED) {
|
2005-08-18 02:38:22 +07:00
|
|
|
/* This mid is in use, try a different one */
|
2011-01-29 19:02:28 +07:00
|
|
|
collision = true;
|
2005-08-18 02:38:22 +07:00
|
|
|
break;
|
|
|
|
}
|
|
|
|
}
|
2011-01-29 19:02:28 +07:00
|
|
|
|
|
|
|
/*
|
|
|
|
* if we have more than 32k mids in the list, then something
|
|
|
|
* is very wrong. Possibly a local user is trying to DoS the
|
|
|
|
* box by issuing long-running calls and SIGKILL'ing them. If
|
|
|
|
* we get to 2^16 mids then we're in big trouble as this
|
|
|
|
* function could loop forever.
|
|
|
|
*
|
|
|
|
* Go ahead and assign out the mid in this situation, but force
|
|
|
|
* an eventual reconnect to clean out the pending_mid_q.
|
|
|
|
*/
|
|
|
|
if (num_mids > 32768)
|
|
|
|
server->tcpStatus = CifsNeedReconnect;
|
|
|
|
|
|
|
|
if (!collision) {
|
2005-08-18 02:38:22 +07:00
|
|
|
mid = server->CurrentMid;
|
|
|
|
break;
|
|
|
|
}
|
|
|
|
server->CurrentMid++;
|
|
|
|
}
|
|
|
|
spin_unlock(&GlobalMid_Lock);
|
|
|
|
return mid;
|
|
|
|
}
|
|
|
|
|
|
|
|
/* NB: MID can not be set if treeCon not passed in, in that
|
|
|
|
case it is responsbility of caller to set the mid */
|
2005-04-17 05:20:36 +07:00
|
|
|
void
|
|
|
|
header_assemble(struct smb_hdr *buffer, char smb_command /* command */ ,
|
2011-05-27 11:34:02 +07:00
|
|
|
const struct cifs_tcon *treeCon, int word_count
|
2005-04-17 05:20:36 +07:00
|
|
|
/* length of fixed section (word count) in two byte units */)
|
|
|
|
{
|
2007-07-10 08:16:18 +07:00
|
|
|
struct list_head *temp_item;
|
2011-05-27 11:34:02 +07:00
|
|
|
struct cifs_ses *ses;
|
2005-04-17 05:20:36 +07:00
|
|
|
char *temp = (char *) buffer;
|
|
|
|
|
2007-07-10 08:16:18 +07:00
|
|
|
memset(temp, 0, 256); /* bigger than MAX_CIFS_HDR_SIZE */
|
2005-04-17 05:20:36 +07:00
|
|
|
|
2011-04-29 12:40:20 +07:00
|
|
|
buffer->smb_buf_length = cpu_to_be32(
|
2007-10-26 04:17:17 +07:00
|
|
|
(2 * word_count) + sizeof(struct smb_hdr) -
|
2005-04-17 05:20:36 +07:00
|
|
|
4 /* RFC 1001 length field does not count */ +
|
2011-04-29 12:40:20 +07:00
|
|
|
2 /* for bcc field itself */) ;
|
2005-04-17 05:20:36 +07:00
|
|
|
|
|
|
|
buffer->Protocol[0] = 0xFF;
|
|
|
|
buffer->Protocol[1] = 'S';
|
|
|
|
buffer->Protocol[2] = 'M';
|
|
|
|
buffer->Protocol[3] = 'B';
|
|
|
|
buffer->Command = smb_command;
|
|
|
|
buffer->Flags = 0x00; /* case sensitive */
|
|
|
|
buffer->Flags2 = SMBFLG2_KNOWS_LONG_NAMES;
|
|
|
|
buffer->Pid = cpu_to_le16((__u16)current->tgid);
|
|
|
|
buffer->PidHigh = cpu_to_le16((__u16)(current->tgid >> 16));
|
|
|
|
if (treeCon) {
|
|
|
|
buffer->Tid = treeCon->tid;
|
|
|
|
if (treeCon->ses) {
|
|
|
|
if (treeCon->ses->capabilities & CAP_UNICODE)
|
|
|
|
buffer->Flags2 |= SMBFLG2_UNICODE;
|
2008-02-08 06:25:02 +07:00
|
|
|
if (treeCon->ses->capabilities & CAP_STATUS32)
|
2005-04-17 05:20:36 +07:00
|
|
|
buffer->Flags2 |= SMBFLG2_ERR_STATUS;
|
2008-02-08 06:25:02 +07:00
|
|
|
|
2005-08-18 02:38:22 +07:00
|
|
|
/* Uid is not converted */
|
|
|
|
buffer->Uid = treeCon->ses->Suid;
|
|
|
|
buffer->Mid = GetNextMid(treeCon->ses->server);
|
2007-07-08 02:25:05 +07:00
|
|
|
if (multiuser_mount != 0) {
|
2005-04-17 05:20:36 +07:00
|
|
|
/* For the multiuser case, there are few obvious technically */
|
|
|
|
/* possible mechanisms to match the local linux user (uid) */
|
|
|
|
/* to a valid remote smb user (smb_uid): */
|
|
|
|
/* 1) Query Winbind (or other local pam/nss daemon */
|
|
|
|
/* for userid/password/logon_domain or credential */
|
|
|
|
/* 2) Query Winbind for uid to sid to username mapping */
|
|
|
|
/* and see if we have a matching password for existing*/
|
|
|
|
/* session for that user perhas getting password by */
|
|
|
|
/* adding a new pam_cifs module that stores passwords */
|
|
|
|
/* so that the cifs vfs can get at that for all logged*/
|
|
|
|
/* on users */
|
|
|
|
/* 3) (Which is the mechanism we have chosen) */
|
|
|
|
/* Search through sessions to the same server for a */
|
|
|
|
/* a match on the uid that was passed in on mount */
|
|
|
|
/* with the current processes uid (or euid?) and use */
|
|
|
|
/* that smb uid. If no existing smb session for */
|
|
|
|
/* that uid found, use the default smb session ie */
|
|
|
|
/* the smb session for the volume mounted which is */
|
|
|
|
/* the same as would be used if the multiuser mount */
|
|
|
|
/* flag were disabled. */
|
|
|
|
|
|
|
|
/* BB Add support for establishing new tCon and SMB Session */
|
2007-07-10 08:16:18 +07:00
|
|
|
/* with userid/password pairs found on the smb session */
|
2005-04-17 05:20:36 +07:00
|
|
|
/* for other target tcp/ip addresses BB */
|
2008-11-14 06:38:47 +07:00
|
|
|
if (current_fsuid() != treeCon->ses->linux_uid) {
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "Multiuser mode and UID "
|
|
|
|
"did not match tcon uid");
|
2010-10-19 00:59:37 +07:00
|
|
|
spin_lock(&cifs_tcp_ses_lock);
|
2008-11-15 01:53:46 +07:00
|
|
|
list_for_each(temp_item, &treeCon->ses->server->smb_ses_list) {
|
2011-05-27 11:34:02 +07:00
|
|
|
ses = list_entry(temp_item, struct cifs_ses, smb_ses_list);
|
2008-11-14 06:38:47 +07:00
|
|
|
if (ses->linux_uid == current_fsuid()) {
|
2007-07-08 02:25:05 +07:00
|
|
|
if (ses->server == treeCon->ses->server) {
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "found matching uid substitute right smb_uid");
|
2005-04-17 05:20:36 +07:00
|
|
|
buffer->Uid = ses->Suid;
|
|
|
|
break;
|
|
|
|
} else {
|
2007-07-10 08:16:18 +07:00
|
|
|
/* BB eventually call cifs_setup_session here */
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "local UID found but no smb sess with this server exists");
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
2010-10-19 00:59:37 +07:00
|
|
|
spin_unlock(&cifs_tcp_ses_lock);
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
|
|
|
if (treeCon->Flags & SMB_SHARE_IS_IN_DFS)
|
|
|
|
buffer->Flags2 |= SMBFLG2_DFS;
|
2005-08-20 01:04:29 +07:00
|
|
|
if (treeCon->nocase)
|
|
|
|
buffer->Flags |= SMBFLG_CASELESS;
|
2007-07-08 02:25:05 +07:00
|
|
|
if ((treeCon->ses) && (treeCon->ses->server))
|
2011-05-27 11:34:02 +07:00
|
|
|
if (treeCon->ses->server->sec_mode &
|
2005-04-17 05:20:36 +07:00
|
|
|
(SECMODE_SIGN_REQUIRED | SECMODE_SIGN_ENABLED))
|
|
|
|
buffer->Flags2 |= SMBFLG2_SECURITY_SIGNATURE;
|
|
|
|
}
|
|
|
|
|
|
|
|
/* endian conversion of flags is now done just before sending */
|
|
|
|
buffer->WordCount = (char) word_count;
|
|
|
|
return;
|
|
|
|
}
|
|
|
|
|
2006-09-29 02:43:08 +07:00
|
|
|
static int
|
2011-01-29 03:05:42 +07:00
|
|
|
check_smb_hdr(struct smb_hdr *smb, __u16 mid)
|
2005-04-17 05:20:36 +07:00
|
|
|
{
|
2011-01-29 03:05:42 +07:00
|
|
|
/* does it have the right SMB "signature" ? */
|
|
|
|
if (*(__le32 *) smb->Protocol != cpu_to_le32(0x424d53ff)) {
|
|
|
|
cERROR(1, "Bad protocol string signature header 0x%x",
|
|
|
|
*(unsigned int *)smb->Protocol);
|
|
|
|
return 1;
|
|
|
|
}
|
|
|
|
|
|
|
|
/* Make sure that message ids match */
|
|
|
|
if (mid != smb->Mid) {
|
|
|
|
cERROR(1, "Mids do not match. received=%u expected=%u",
|
|
|
|
smb->Mid, mid);
|
|
|
|
return 1;
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
2011-01-29 03:05:42 +07:00
|
|
|
|
|
|
|
/* if it's a response then accept */
|
|
|
|
if (smb->Flags & SMBFLG_RESPONSE)
|
|
|
|
return 0;
|
|
|
|
|
|
|
|
/* only one valid case where server sends us request */
|
|
|
|
if (smb->Command == SMB_COM_LOCKING_ANDX)
|
|
|
|
return 0;
|
|
|
|
|
|
|
|
cERROR(1, "Server sent request, not response. mid=%u", smb->Mid);
|
2005-04-17 05:20:36 +07:00
|
|
|
return 1;
|
|
|
|
}
|
|
|
|
|
|
|
|
int
|
2006-10-13 00:49:24 +07:00
|
|
|
checkSMB(struct smb_hdr *smb, __u16 mid, unsigned int length)
|
2005-04-17 05:20:36 +07:00
|
|
|
{
|
2011-04-29 12:40:20 +07:00
|
|
|
__u32 len = be32_to_cpu(smb->smb_buf_length);
|
2005-10-11 01:48:26 +07:00
|
|
|
__u32 clc_len; /* calculated length */
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(0, "checkSMB Length: 0x%x, smb_buf_length: 0x%x", length, len);
|
2006-10-13 00:49:24 +07:00
|
|
|
|
2007-10-26 04:17:17 +07:00
|
|
|
if (length < 2 + sizeof(struct smb_hdr)) {
|
|
|
|
if ((length >= sizeof(struct smb_hdr) - 1)
|
2005-04-17 05:20:36 +07:00
|
|
|
&& (smb->Status.CifsError != 0)) {
|
2006-10-13 00:49:24 +07:00
|
|
|
smb->WordCount = 0;
|
|
|
|
/* some error cases do not return wct and bcc */
|
|
|
|
return 0;
|
2007-07-10 08:16:18 +07:00
|
|
|
} else if ((length == sizeof(struct smb_hdr) + 1) &&
|
2006-10-13 00:49:24 +07:00
|
|
|
(smb->WordCount == 0)) {
|
2007-07-10 08:16:18 +07:00
|
|
|
char *tmp = (char *)smb;
|
2006-10-13 00:49:24 +07:00
|
|
|
/* Need to work around a bug in two servers here */
|
|
|
|
/* First, check if the part of bcc they sent was zero */
|
|
|
|
if (tmp[sizeof(struct smb_hdr)] == 0) {
|
|
|
|
/* some servers return only half of bcc
|
|
|
|
* on simple responses (wct, bcc both zero)
|
|
|
|
* in particular have seen this on
|
|
|
|
* ulogoffX and FindClose. This leaves
|
|
|
|
* one byte of bcc potentially unitialized
|
|
|
|
*/
|
|
|
|
/* zero rest of bcc */
|
|
|
|
tmp[sizeof(struct smb_hdr)+1] = 0;
|
2006-03-02 07:07:08 +07:00
|
|
|
return 0;
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
2010-04-21 10:50:45 +07:00
|
|
|
cERROR(1, "rcvd invalid byte count (bcc)");
|
2006-10-13 00:49:24 +07:00
|
|
|
} else {
|
2010-04-21 10:50:45 +07:00
|
|
|
cERROR(1, "Length less than smb header size");
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
2006-10-13 00:49:24 +07:00
|
|
|
return 1;
|
|
|
|
}
|
|
|
|
if (len > CIFSMaxBufSize + MAX_CIFS_HDR_SIZE - 4) {
|
2010-04-21 10:50:45 +07:00
|
|
|
cERROR(1, "smb length greater than MaxBufSize, mid=%d",
|
|
|
|
smb->Mid);
|
2005-04-17 05:20:36 +07:00
|
|
|
return 1;
|
|
|
|
}
|
|
|
|
|
2011-01-29 03:05:42 +07:00
|
|
|
if (check_smb_hdr(smb, mid))
|
2005-04-17 05:20:36 +07:00
|
|
|
return 1;
|
2011-05-04 19:05:26 +07:00
|
|
|
clc_len = smbCalcSize(smb);
|
2006-02-24 13:15:11 +07:00
|
|
|
|
2007-07-08 02:25:05 +07:00
|
|
|
if (4 + len != length) {
|
2010-04-21 10:50:45 +07:00
|
|
|
cERROR(1, "Length read does not match RFC1001 length %d",
|
|
|
|
len);
|
2006-02-24 13:15:11 +07:00
|
|
|
return 1;
|
|
|
|
}
|
|
|
|
|
|
|
|
if (4 + len != clc_len) {
|
|
|
|
/* check if bcc wrapped around for large read responses */
|
2007-07-08 02:25:05 +07:00
|
|
|
if ((len > 64 * 1024) && (len > clc_len)) {
|
2006-02-24 13:15:11 +07:00
|
|
|
/* check if lengths match mod 64K */
|
2007-07-08 02:25:05 +07:00
|
|
|
if (((4 + len) & 0xFFFF) == (clc_len & 0xFFFF))
|
2007-07-10 08:16:18 +07:00
|
|
|
return 0; /* bcc wrapped */
|
2006-02-24 13:15:11 +07:00
|
|
|
}
|
2011-01-31 21:14:17 +07:00
|
|
|
cFYI(1, "Calculated size %u vs length %u mismatch for mid=%u",
|
2010-04-21 10:50:45 +07:00
|
|
|
clc_len, 4 + len, smb->Mid);
|
2011-01-31 21:14:17 +07:00
|
|
|
|
|
|
|
if (4 + len < clc_len) {
|
|
|
|
cERROR(1, "RFC1001 size %u smaller than SMB for mid=%u",
|
2010-04-21 10:50:45 +07:00
|
|
|
len, smb->Mid);
|
2005-10-11 01:48:26 +07:00
|
|
|
return 1;
|
2011-01-31 21:14:17 +07:00
|
|
|
} else if (len > clc_len + 512) {
|
|
|
|
/*
|
|
|
|
* Some servers (Windows XP in particular) send more
|
|
|
|
* data than the lengths in the SMB packet would
|
|
|
|
* indicate on certain calls (byte range locks and
|
|
|
|
* trans2 find first calls in particular). While the
|
|
|
|
* client can handle such a frame by ignoring the
|
|
|
|
* trailing data, we choose limit the amount of extra
|
|
|
|
* data to 512 bytes.
|
|
|
|
*/
|
|
|
|
cERROR(1, "RFC1001 size %u more than 512 bytes larger "
|
|
|
|
"than SMB for mid=%u", len, smb->Mid);
|
|
|
|
return 1;
|
2006-03-02 07:07:08 +07:00
|
|
|
}
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
2005-09-22 12:05:57 +07:00
|
|
|
return 0;
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
2008-04-29 07:06:05 +07:00
|
|
|
|
|
|
|
bool
|
2006-03-03 17:43:49 +07:00
|
|
|
is_valid_oplock_break(struct smb_hdr *buf, struct TCP_Server_Info *srv)
|
2007-07-10 08:16:18 +07:00
|
|
|
{
|
|
|
|
struct smb_com_lock_req *pSMB = (struct smb_com_lock_req *)buf;
|
2008-11-15 23:12:47 +07:00
|
|
|
struct list_head *tmp, *tmp1, *tmp2;
|
2011-05-27 11:34:02 +07:00
|
|
|
struct cifs_ses *ses;
|
|
|
|
struct cifs_tcon *tcon;
|
2008-11-15 23:12:47 +07:00
|
|
|
struct cifsInodeInfo *pCifsInode;
|
2005-04-17 05:20:36 +07:00
|
|
|
struct cifsFileInfo *netfile;
|
|
|
|
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "Checking for oplock break or dnotify response");
|
2007-07-08 02:25:05 +07:00
|
|
|
if ((pSMB->hdr.Command == SMB_COM_NT_TRANSACT) &&
|
2005-04-17 05:20:36 +07:00
|
|
|
(pSMB->hdr.Flags & SMBFLG_RESPONSE)) {
|
2007-07-10 08:16:18 +07:00
|
|
|
struct smb_com_transaction_change_notify_rsp *pSMBr =
|
2005-04-17 05:20:36 +07:00
|
|
|
(struct smb_com_transaction_change_notify_rsp *)buf;
|
2007-07-10 08:16:18 +07:00
|
|
|
struct file_notify_information *pnotify;
|
2005-04-17 05:20:36 +07:00
|
|
|
__u32 data_offset = 0;
|
2011-05-04 19:05:26 +07:00
|
|
|
if (get_bcc(buf) > sizeof(struct file_notify_information)) {
|
2005-04-17 05:20:36 +07:00
|
|
|
data_offset = le32_to_cpu(pSMBr->DataOffset);
|
|
|
|
|
2006-06-01 05:40:51 +07:00
|
|
|
pnotify = (struct file_notify_information *)
|
|
|
|
((char *)&pSMBr->hdr.Protocol + data_offset);
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "dnotify on %s Action: 0x%x",
|
|
|
|
pnotify->FileName, pnotify->Action);
|
2007-07-10 08:16:18 +07:00
|
|
|
/* cifs_dump_mem("Rcvd notify Data: ",buf,
|
2006-06-01 05:40:51 +07:00
|
|
|
sizeof(struct smb_hdr)+60); */
|
2008-04-29 07:06:05 +07:00
|
|
|
return true;
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
2007-07-08 02:25:05 +07:00
|
|
|
if (pSMBr->hdr.Status.CifsError) {
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "notify err 0x%d",
|
|
|
|
pSMBr->hdr.Status.CifsError);
|
2008-04-29 07:06:05 +07:00
|
|
|
return true;
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
2008-04-29 07:06:05 +07:00
|
|
|
return false;
|
2007-07-10 08:16:18 +07:00
|
|
|
}
|
2007-07-08 02:25:05 +07:00
|
|
|
if (pSMB->hdr.Command != SMB_COM_LOCKING_ANDX)
|
2008-04-29 07:06:05 +07:00
|
|
|
return false;
|
2007-07-08 02:25:05 +07:00
|
|
|
if (pSMB->hdr.Flags & SMBFLG_RESPONSE) {
|
2005-04-17 05:20:36 +07:00
|
|
|
/* no sense logging error on invalid handle on oplock
|
|
|
|
break - harmless race between close request and oplock
|
|
|
|
break response is expected from time to time writing out
|
|
|
|
large dirty files cached on the client */
|
2007-07-10 08:16:18 +07:00
|
|
|
if ((NT_STATUS_INVALID_HANDLE) ==
|
|
|
|
le32_to_cpu(pSMB->hdr.Status.CifsError)) {
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "invalid handle on oplock break");
|
2008-04-29 07:06:05 +07:00
|
|
|
return true;
|
2007-07-10 08:16:18 +07:00
|
|
|
} else if (ERRbadfid ==
|
2005-04-17 05:20:36 +07:00
|
|
|
le16_to_cpu(pSMB->hdr.Status.DosError.Error)) {
|
2008-04-29 07:06:05 +07:00
|
|
|
return true;
|
2005-04-17 05:20:36 +07:00
|
|
|
} else {
|
2008-04-29 07:06:05 +07:00
|
|
|
return false; /* on valid oplock brk we get "request" */
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
|
|
|
}
|
2007-07-08 02:25:05 +07:00
|
|
|
if (pSMB->hdr.WordCount != 8)
|
2008-04-29 07:06:05 +07:00
|
|
|
return false;
|
2005-04-17 05:20:36 +07:00
|
|
|
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "oplock type 0x%d level 0x%d",
|
|
|
|
pSMB->LockType, pSMB->OplockLevel);
|
2007-07-08 02:25:05 +07:00
|
|
|
if (!(pSMB->LockType & LOCKING_ANDX_OPLOCK_RELEASE))
|
2008-04-29 07:06:05 +07:00
|
|
|
return false;
|
2005-04-17 05:20:36 +07:00
|
|
|
|
|
|
|
/* look up tcon based on tid & uid */
|
2010-10-19 00:59:37 +07:00
|
|
|
spin_lock(&cifs_tcp_ses_lock);
|
2008-11-15 23:12:47 +07:00
|
|
|
list_for_each(tmp, &srv->smb_ses_list) {
|
2011-05-27 11:34:02 +07:00
|
|
|
ses = list_entry(tmp, struct cifs_ses, smb_ses_list);
|
2008-11-15 23:12:47 +07:00
|
|
|
list_for_each(tmp1, &ses->tcon_list) {
|
2011-05-27 11:34:02 +07:00
|
|
|
tcon = list_entry(tmp1, struct cifs_tcon, tcon_list);
|
2008-11-15 23:12:47 +07:00
|
|
|
if (tcon->tid != buf->Tid)
|
|
|
|
continue;
|
|
|
|
|
2005-08-25 03:59:35 +07:00
|
|
|
cifs_stats_inc(&tcon->num_oplock_brks);
|
2010-10-16 02:34:03 +07:00
|
|
|
spin_lock(&cifs_file_list_lock);
|
2008-11-15 23:12:47 +07:00
|
|
|
list_for_each(tmp2, &tcon->openFileList) {
|
|
|
|
netfile = list_entry(tmp2, struct cifsFileInfo,
|
2005-04-29 12:41:10 +07:00
|
|
|
tlist);
|
2008-11-15 23:12:47 +07:00
|
|
|
if (pSMB->Fid != netfile->netfid)
|
|
|
|
continue;
|
|
|
|
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "file id match, oplock break");
|
2010-10-12 02:07:18 +07:00
|
|
|
pCifsInode = CIFS_I(netfile->dentry->d_inode);
|
2010-07-21 03:09:02 +07:00
|
|
|
|
2010-11-03 14:58:57 +07:00
|
|
|
cifs_set_oplock_level(pCifsInode,
|
2011-01-18 00:15:44 +07:00
|
|
|
pSMB->OplockLevel ? OPLOCK_READ : 0);
|
2011-07-26 23:20:17 +07:00
|
|
|
queue_work(system_nrt_wq,
|
|
|
|
&netfile->oplock_break);
|
2010-07-21 03:09:02 +07:00
|
|
|
netfile->oplock_break_cancelled = false;
|
|
|
|
|
2010-10-16 02:34:03 +07:00
|
|
|
spin_unlock(&cifs_file_list_lock);
|
2010-10-19 00:59:37 +07:00
|
|
|
spin_unlock(&cifs_tcp_ses_lock);
|
2008-11-15 23:12:47 +07:00
|
|
|
return true;
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
2010-10-16 02:34:03 +07:00
|
|
|
spin_unlock(&cifs_file_list_lock);
|
2010-10-19 00:59:37 +07:00
|
|
|
spin_unlock(&cifs_tcp_ses_lock);
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "No matching file for oplock break");
|
2008-04-29 07:06:05 +07:00
|
|
|
return true;
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
|
|
|
}
|
2010-10-19 00:59:37 +07:00
|
|
|
spin_unlock(&cifs_tcp_ses_lock);
|
2010-04-21 10:50:45 +07:00
|
|
|
cFYI(1, "Can not process oplock break for non-existent connection");
|
2008-04-29 07:06:05 +07:00
|
|
|
return true;
|
2005-04-17 05:20:36 +07:00
|
|
|
}
|
|
|
|
|
|
|
|
void
|
|
|
|
dump_smb(struct smb_hdr *smb_buf, int smb_buf_length)
|
|
|
|
{
|
|
|
|
int i, j;
|
|
|
|
char debug_line[17];
|
|
|
|
unsigned char *buffer;
|
|
|
|
|
|
|
|
if (traceSMB == 0)
|
|
|
|
return;
|
|
|
|
|
|
|
|
buffer = (unsigned char *) smb_buf;
|
|
|
|
for (i = 0, j = 0; i < smb_buf_length; i++, j++) {
|
2008-02-08 06:25:02 +07:00
|
|
|
if (i % 8 == 0) {
|
|
|
|
/* have reached the beginning of line */
|
2005-04-17 05:20:36 +07:00
|
|
|
printk(KERN_DEBUG "| ");
|
|
|
|
j = 0;
|
|
|
|
}
|
|
|
|
printk("%0#4x ", buffer[i]);
|
|
|
|
debug_line[2 * j] = ' ';
|
|
|
|
if (isprint(buffer[i]))
|
|
|
|
debug_line[1 + (2 * j)] = buffer[i];
|
|
|
|
else
|
|
|
|
debug_line[1 + (2 * j)] = '_';
|
|
|
|
|
2008-02-08 06:25:02 +07:00
|
|
|
if (i % 8 == 7) {
|
|
|
|
/* reached end of line, time to print ascii */
|
2005-04-17 05:20:36 +07:00
|
|
|
debug_line[16] = 0;
|
|
|
|
printk(" | %s\n", debug_line);
|
|
|
|
}
|
|
|
|
}
|
|
|
|
for (; j < 8; j++) {
|
|
|
|
printk(" ");
|
|
|
|
debug_line[2 * j] = ' ';
|
|
|
|
debug_line[1 + (2 * j)] = ' ';
|
|
|
|
}
|
2008-02-08 06:25:02 +07:00
|
|
|
printk(" | %s\n", debug_line);
|
2005-04-17 05:20:36 +07:00
|
|
|
return;
|
|
|
|
}
|
2005-04-29 12:41:05 +07:00
|
|
|
|
2009-11-07 02:18:29 +07:00
|
|
|
void
|
|
|
|
cifs_autodisable_serverino(struct cifs_sb_info *cifs_sb)
|
|
|
|
{
|
|
|
|
if (cifs_sb->mnt_cifs_flags & CIFS_MOUNT_SERVER_INUM) {
|
2009-11-16 13:33:16 +07:00
|
|
|
cifs_sb->mnt_cifs_flags &= ~CIFS_MOUNT_SERVER_INUM;
|
2010-04-21 10:50:45 +07:00
|
|
|
cERROR(1, "Autodisabling the use of server inode numbers on "
|
2009-11-07 02:18:29 +07:00
|
|
|
"%s. This server doesn't seem to support them "
|
|
|
|
"properly. Hardlinks will not be recognized on this "
|
|
|
|
"mount. Consider mounting with the \"noserverino\" "
|
|
|
|
"option to silence this message.",
|
2010-09-21 06:01:35 +07:00
|
|
|
cifs_sb_master_tcon(cifs_sb)->treeName);
|
2009-11-07 02:18:29 +07:00
|
|
|
}
|
|
|
|
}
|
2010-11-02 16:00:42 +07:00
|
|
|
|
2010-11-03 14:58:57 +07:00
|
|
|
void cifs_set_oplock_level(struct cifsInodeInfo *cinode, __u32 oplock)
|
2010-11-02 16:00:42 +07:00
|
|
|
{
|
2010-11-03 14:58:57 +07:00
|
|
|
oplock &= 0xF;
|
2010-11-02 16:00:42 +07:00
|
|
|
|
2010-11-03 14:58:57 +07:00
|
|
|
if (oplock == OPLOCK_EXCLUSIVE) {
|
2010-11-02 16:00:42 +07:00
|
|
|
cinode->clientCanCacheAll = true;
|
|
|
|
cinode->clientCanCacheRead = true;
|
2010-11-03 14:58:57 +07:00
|
|
|
cFYI(1, "Exclusive Oplock granted on inode %p",
|
|
|
|
&cinode->vfs_inode);
|
|
|
|
} else if (oplock == OPLOCK_READ) {
|
2010-11-02 16:00:42 +07:00
|
|
|
cinode->clientCanCacheAll = false;
|
|
|
|
cinode->clientCanCacheRead = true;
|
2010-11-03 14:58:57 +07:00
|
|
|
cFYI(1, "Level II Oplock granted on inode %p",
|
|
|
|
&cinode->vfs_inode);
|
2010-11-02 16:00:42 +07:00
|
|
|
} else {
|
|
|
|
cinode->clientCanCacheAll = false;
|
|
|
|
cinode->clientCanCacheRead = false;
|
|
|
|
}
|
|
|
|
}
|