xref: /freebsd/sys/fs/fuse/fuse_ipc.c (revision 3d070fdc76030f23eb3be8bf2ffa9614100cf5ea)
151369649SPedro F. Giffuni /*-
251369649SPedro F. Giffuni  * SPDX-License-Identifier: BSD-3-Clause
351369649SPedro F. Giffuni  *
45fe58019SAttilio Rao  * Copyright (c) 2007-2009 Google Inc. and Amit Singh
55fe58019SAttilio Rao  * All rights reserved.
65fe58019SAttilio Rao  *
75fe58019SAttilio Rao  * Redistribution and use in source and binary forms, with or without
85fe58019SAttilio Rao  * modification, are permitted provided that the following conditions are
95fe58019SAttilio Rao  * met:
105fe58019SAttilio Rao  *
115fe58019SAttilio Rao  * * Redistributions of source code must retain the above copyright
125fe58019SAttilio Rao  *   notice, this list of conditions and the following disclaimer.
135fe58019SAttilio Rao  * * Redistributions in binary form must reproduce the above
145fe58019SAttilio Rao  *   copyright notice, this list of conditions and the following disclaimer
155fe58019SAttilio Rao  *   in the documentation and/or other materials provided with the
165fe58019SAttilio Rao  *   distribution.
175fe58019SAttilio Rao  * * Neither the name of Google Inc. nor the names of its
185fe58019SAttilio Rao  *   contributors may be used to endorse or promote products derived from
195fe58019SAttilio Rao  *   this software without specific prior written permission.
205fe58019SAttilio Rao  *
215fe58019SAttilio Rao  * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
225fe58019SAttilio Rao  * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
235fe58019SAttilio Rao  * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR
245fe58019SAttilio Rao  * A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT
255fe58019SAttilio Rao  * OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
265fe58019SAttilio Rao  * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
275fe58019SAttilio Rao  * LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
285fe58019SAttilio Rao  * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
295fe58019SAttilio Rao  * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
305fe58019SAttilio Rao  * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE
315fe58019SAttilio Rao  * OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
325fe58019SAttilio Rao  *
335fe58019SAttilio Rao  * Copyright (C) 2005 Csaba Henk.
345fe58019SAttilio Rao  * All rights reserved.
355fe58019SAttilio Rao  *
365fe58019SAttilio Rao  * Redistribution and use in source and binary forms, with or without
375fe58019SAttilio Rao  * modification, are permitted provided that the following conditions
385fe58019SAttilio Rao  * are met:
395fe58019SAttilio Rao  * 1. Redistributions of source code must retain the above copyright
405fe58019SAttilio Rao  *    notice, this list of conditions and the following disclaimer.
415fe58019SAttilio Rao  * 2. Redistributions in binary form must reproduce the above copyright
425fe58019SAttilio Rao  *    notice, this list of conditions and the following disclaimer in the
435fe58019SAttilio Rao  *    documentation and/or other materials provided with the distribution.
445fe58019SAttilio Rao  *
455fe58019SAttilio Rao  * THIS SOFTWARE IS PROVIDED BY AUTHOR AND CONTRIBUTORS ``AS IS'' AND
465fe58019SAttilio Rao  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
475fe58019SAttilio Rao  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
485fe58019SAttilio Rao  * ARE DISCLAIMED.  IN NO EVENT SHALL AUTHOR OR CONTRIBUTORS BE LIABLE
495fe58019SAttilio Rao  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
505fe58019SAttilio Rao  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
515fe58019SAttilio Rao  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
525fe58019SAttilio Rao  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
535fe58019SAttilio Rao  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
545fe58019SAttilio Rao  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
555fe58019SAttilio Rao  * SUCH DAMAGE.
565fe58019SAttilio Rao  */
575fe58019SAttilio Rao 
585fe58019SAttilio Rao #include <sys/cdefs.h>
595fe58019SAttilio Rao __FBSDID("$FreeBSD$");
605fe58019SAttilio Rao 
61cf169498SAlan Somers #include <sys/param.h>
625fe58019SAttilio Rao #include <sys/module.h>
635fe58019SAttilio Rao #include <sys/systm.h>
645fe58019SAttilio Rao #include <sys/errno.h>
655fe58019SAttilio Rao #include <sys/kernel.h>
665fe58019SAttilio Rao #include <sys/conf.h>
675fe58019SAttilio Rao #include <sys/uio.h>
685fe58019SAttilio Rao #include <sys/malloc.h>
695fe58019SAttilio Rao #include <sys/queue.h>
705fe58019SAttilio Rao #include <sys/lock.h>
715fe58019SAttilio Rao #include <sys/sx.h>
725fe58019SAttilio Rao #include <sys/mutex.h>
735fe58019SAttilio Rao #include <sys/proc.h>
745fe58019SAttilio Rao #include <sys/mount.h>
75cf169498SAlan Somers #include <sys/sdt.h>
765fe58019SAttilio Rao #include <sys/vnode.h>
775fe58019SAttilio Rao #include <sys/signalvar.h>
785fe58019SAttilio Rao #include <sys/syscallsubr.h>
795fe58019SAttilio Rao #include <sys/sysctl.h>
805fe58019SAttilio Rao #include <vm/uma.h>
815fe58019SAttilio Rao 
825fe58019SAttilio Rao #include "fuse.h"
835fe58019SAttilio Rao #include "fuse_node.h"
845fe58019SAttilio Rao #include "fuse_ipc.h"
855fe58019SAttilio Rao #include "fuse_internal.h"
865fe58019SAttilio Rao 
87cf169498SAlan Somers SDT_PROVIDER_DECLARE(fuse);
88cf169498SAlan Somers /*
89cf169498SAlan Somers  * Fuse trace probe:
90cf169498SAlan Somers  * arg0: verbosity.  Higher numbers give more verbose messages
91cf169498SAlan Somers  * arg1: Textual message
92cf169498SAlan Somers  */
93cf169498SAlan Somers SDT_PROBE_DEFINE2(fuse, , ipc, trace, "int", "char*");
945fe58019SAttilio Rao 
95723c7768SAlan Somers static void fdisp_make_pid(struct fuse_dispatcher *fdip, enum fuse_opcode op,
96723c7768SAlan Somers     struct fuse_data *data, uint64_t nid, pid_t pid, struct ucred *cred);
9712292a99SAlan Somers static void fiov_clear(struct fuse_iov *fiov);
98*3d070fdcSAlan Somers static void fuse_interrupt_send(struct fuse_ticket *otick, int err);
995fe58019SAttilio Rao static struct fuse_ticket *fticket_alloc(struct fuse_data *data);
1005fe58019SAttilio Rao static void fticket_refresh(struct fuse_ticket *ftick);
1015fe58019SAttilio Rao static void fticket_destroy(struct fuse_ticket *ftick);
1025fe58019SAttilio Rao static int fticket_wait_answer(struct fuse_ticket *ftick);
10302295cafSConrad Meyer static inline int
1045fe58019SAttilio Rao fticket_aw_pull_uio(struct fuse_ticket *ftick,
1055fe58019SAttilio Rao     struct uio *uio);
1065fe58019SAttilio Rao 
1075fe58019SAttilio Rao static int fuse_body_audit(struct fuse_ticket *ftick, size_t blen);
1085fe58019SAttilio Rao 
1095fe58019SAttilio Rao static fuse_handler_t fuse_standard_handler;
1105fe58019SAttilio Rao 
111123af6ecSAlan Somers SYSCTL_NODE(_vfs, OID_AUTO, fusefs, CTLFLAG_RW, 0, "FUSE tunables");
112123af6ecSAlan Somers SYSCTL_STRING(_vfs_fusefs, OID_AUTO, version, CTLFLAG_RD,
1135fe58019SAttilio Rao     FUSE_FREEBSD_VERSION, 0, "fuse-freebsd version");
1145fe58019SAttilio Rao static int fuse_ticket_count = 0;
1155fe58019SAttilio Rao 
116123af6ecSAlan Somers SYSCTL_INT(_vfs_fusefs, OID_AUTO, ticket_count, CTLFLAG_RW,
1175fe58019SAttilio Rao     &fuse_ticket_count, 0, "number of allocated tickets");
1185fe58019SAttilio Rao static long fuse_iov_permanent_bufsize = 1 << 19;
1195fe58019SAttilio Rao 
120123af6ecSAlan Somers SYSCTL_LONG(_vfs_fusefs, OID_AUTO, iov_permanent_bufsize, CTLFLAG_RW,
1215fe58019SAttilio Rao     &fuse_iov_permanent_bufsize, 0,
1225fe58019SAttilio Rao     "limit for permanently stored buffer size for fuse_iovs");
1235fe58019SAttilio Rao static int fuse_iov_credit = 16;
1245fe58019SAttilio Rao 
125123af6ecSAlan Somers SYSCTL_INT(_vfs_fusefs, OID_AUTO, iov_credit, CTLFLAG_RW,
1265fe58019SAttilio Rao     &fuse_iov_credit, 0,
1275fe58019SAttilio Rao     "how many times is an oversized fuse_iov tolerated");
1285fe58019SAttilio Rao 
1295fe58019SAttilio Rao MALLOC_DEFINE(M_FUSEMSG, "fuse_msgbuf", "fuse message buffer");
1305fe58019SAttilio Rao static uma_zone_t ticket_zone;
1315fe58019SAttilio Rao 
132723c7768SAlan Somers /*
133723c7768SAlan Somers  * TODO: figure out how to timeout INTERRUPT requests, because the daemon may
134723c7768SAlan Somers  * leagally never respond
135723c7768SAlan Somers  *
136723c7768SAlan Somers  * TODO: remove an INTERRUPT request if the daemon responds to the original
137723c7768SAlan Somers  */
138723c7768SAlan Somers static int
139723c7768SAlan Somers fuse_interrupt_callback(struct fuse_ticket *tick, struct uio *uio)
1405fe58019SAttilio Rao {
141a1542146SAlan Somers 	struct fuse_ticket *otick, *x_tick;
142a1542146SAlan Somers 	struct fuse_interrupt_in *fii;
143a1542146SAlan Somers 	struct fuse_data *data;
144a1542146SAlan Somers 	data = tick->tk_data;
145a1542146SAlan Somers 	bool found = false;
146a1542146SAlan Somers 
147a1542146SAlan Somers 	fii = (struct fuse_interrupt_in*)((char*)tick->tk_ms_fiov.base +
148a1542146SAlan Somers 		sizeof(struct fuse_in_header));
149a1542146SAlan Somers 
150a1542146SAlan Somers 	fuse_lck_mtx_lock(data->aw_mtx);
151a1542146SAlan Somers 	TAILQ_FOREACH_SAFE(otick, &data->aw_head, tk_aw_link, x_tick) {
152a1542146SAlan Somers 		if (otick->tk_unique == fii->unique) {
153a1542146SAlan Somers 			found = true;
154a1542146SAlan Somers 			break;
155a1542146SAlan Somers 		}
156a1542146SAlan Somers 	}
157a1542146SAlan Somers 	fuse_lck_mtx_unlock(data->aw_mtx);
158a1542146SAlan Somers 
159a1542146SAlan Somers 	if (!found) {
160a1542146SAlan Somers 		/* Original is already complete.  Just return */
161a1542146SAlan Somers 		return 0;
162a1542146SAlan Somers 	}
163a1542146SAlan Somers 
164a1542146SAlan Somers 	/* Clear the original ticket's interrupt association */
165a1542146SAlan Somers 	otick->irq_unique = 0;
166a1542146SAlan Somers 
167723c7768SAlan Somers 	if (tick->tk_aw_ohead.error == EAGAIN) {
168723c7768SAlan Somers 		/*
169723c7768SAlan Somers 		 * There are two reasons we might get this:
170723c7768SAlan Somers 		 * 1) the daemon received the INTERRUPT request before the
171723c7768SAlan Somers 		 *    original, or
172723c7768SAlan Somers 		 * 2) the daemon received the INTERRUPT request after it
173723c7768SAlan Somers 		 *    completed the original request.
174723c7768SAlan Somers 		 * In the first case we should re-send the INTERRUPT.  In the
175723c7768SAlan Somers 		 * second, we should ignore it.
176723c7768SAlan Somers 		 */
177723c7768SAlan Somers 		/* Resend */
178*3d070fdcSAlan Somers 		fuse_interrupt_send(otick, EINTR);
179723c7768SAlan Somers 		return 0;
180723c7768SAlan Somers 	} else {
181723c7768SAlan Somers 		/* Illegal FUSE_INTERRUPT response */
182723c7768SAlan Somers 		return EINVAL;
183723c7768SAlan Somers 	}
1845fe58019SAttilio Rao }
1855fe58019SAttilio Rao 
186*3d070fdcSAlan Somers /* Interrupt the operation otick.  Return err as its error code */
187723c7768SAlan Somers void
188*3d070fdcSAlan Somers fuse_interrupt_send(struct fuse_ticket *otick, int err)
1895fe58019SAttilio Rao {
190723c7768SAlan Somers 	struct fuse_dispatcher fdi;
191723c7768SAlan Somers 	struct fuse_interrupt_in *fii;
192723c7768SAlan Somers 	struct fuse_in_header *ftick_hdr;
193723c7768SAlan Somers 	struct fuse_data *data = otick->tk_data;
194*3d070fdcSAlan Somers 	struct fuse_ticket *tick, *xtick;
195723c7768SAlan Somers 	struct ucred reused_creds;
1965fe58019SAttilio Rao 
197a1542146SAlan Somers 	if (otick->irq_unique == 0) {
198*3d070fdcSAlan Somers 		/*
199*3d070fdcSAlan Somers 		 * If the daemon hasn't yet received otick, then we can answer
200*3d070fdcSAlan Somers 		 * it ourselves and return.
201*3d070fdcSAlan Somers 		 */
202*3d070fdcSAlan Somers 		fuse_lck_mtx_lock(data->ms_mtx);
203*3d070fdcSAlan Somers 		STAILQ_FOREACH_SAFE(tick, &otick->tk_data->ms_head, tk_ms_link,
204*3d070fdcSAlan Somers 			xtick) {
205*3d070fdcSAlan Somers 			if (tick == otick) {
206*3d070fdcSAlan Somers 				STAILQ_REMOVE(&otick->tk_data->ms_head, tick,
207*3d070fdcSAlan Somers 					fuse_ticket, tk_ms_link);
208*3d070fdcSAlan Somers 				otick->tk_ms_link.stqe_next = NULL;
209*3d070fdcSAlan Somers 				fuse_lck_mtx_unlock(data->ms_mtx);
210*3d070fdcSAlan Somers 
211*3d070fdcSAlan Somers 				fuse_lck_mtx_lock(otick->tk_aw_mtx);
212*3d070fdcSAlan Somers 				if (!fticket_answered(otick)) {
213*3d070fdcSAlan Somers 					fticket_set_answered(otick);
214*3d070fdcSAlan Somers 					otick->tk_aw_errno = err;
215*3d070fdcSAlan Somers 					wakeup(otick);
216*3d070fdcSAlan Somers 				}
217*3d070fdcSAlan Somers 				fuse_lck_mtx_unlock(otick->tk_aw_mtx);
218*3d070fdcSAlan Somers 
219*3d070fdcSAlan Somers 				fuse_ticket_drop(tick);
220*3d070fdcSAlan Somers 				return;
221*3d070fdcSAlan Somers 			}
222*3d070fdcSAlan Somers 		}
223*3d070fdcSAlan Somers 		fuse_lck_mtx_unlock(data->ms_mtx);
224*3d070fdcSAlan Somers 
225*3d070fdcSAlan Somers 		/*
226*3d070fdcSAlan Somers 		 * If the fuse daemon has already received otick, then we must
227*3d070fdcSAlan Somers 		 * send FUSE_INTERRUPT.
228*3d070fdcSAlan Somers 		 */
229723c7768SAlan Somers 		ftick_hdr = fticket_in_header(otick);
230723c7768SAlan Somers 		reused_creds.cr_uid = ftick_hdr->uid;
231723c7768SAlan Somers 		reused_creds.cr_rgid = ftick_hdr->gid;
232723c7768SAlan Somers 		fdisp_init(&fdi, sizeof(*fii));
233723c7768SAlan Somers 		fdisp_make_pid(&fdi, FUSE_INTERRUPT, data, ftick_hdr->nodeid,
234723c7768SAlan Somers 			ftick_hdr->pid, &reused_creds);
235723c7768SAlan Somers 
236723c7768SAlan Somers 		fii = fdi.indata;
237723c7768SAlan Somers 		fii->unique = otick->tk_unique;
238723c7768SAlan Somers 		fuse_insert_callback(fdi.tick, fuse_interrupt_callback);
239723c7768SAlan Somers 
240a1542146SAlan Somers 		otick->irq_unique = fdi.tick->tk_unique;
241723c7768SAlan Somers 		fuse_insert_message(fdi.tick);
242723c7768SAlan Somers 		fdisp_destroy(&fdi);
243a1542146SAlan Somers 	} else {
244a1542146SAlan Somers 		/* This ticket has already been interrupted */
245a1542146SAlan Somers 	}
2465fe58019SAttilio Rao }
2475fe58019SAttilio Rao 
2485fe58019SAttilio Rao void
2495fe58019SAttilio Rao fiov_init(struct fuse_iov *fiov, size_t size)
2505fe58019SAttilio Rao {
2515fe58019SAttilio Rao 	uint32_t msize = FU_AT_LEAST(size);
2525fe58019SAttilio Rao 
2535fe58019SAttilio Rao 	fiov->len = 0;
2545fe58019SAttilio Rao 
2555fe58019SAttilio Rao 	fiov->base = malloc(msize, M_FUSEMSG, M_WAITOK | M_ZERO);
2565fe58019SAttilio Rao 
2575fe58019SAttilio Rao 	fiov->allocated_size = msize;
2585fe58019SAttilio Rao 	fiov->credit = fuse_iov_credit;
2595fe58019SAttilio Rao }
2605fe58019SAttilio Rao 
2615fe58019SAttilio Rao void
2625fe58019SAttilio Rao fiov_teardown(struct fuse_iov *fiov)
2635fe58019SAttilio Rao {
2645fe58019SAttilio Rao 	MPASS(fiov->base != NULL);
2655fe58019SAttilio Rao 	free(fiov->base, M_FUSEMSG);
2665fe58019SAttilio Rao }
2675fe58019SAttilio Rao 
2685fe58019SAttilio Rao void
2695fe58019SAttilio Rao fiov_adjust(struct fuse_iov *fiov, size_t size)
2705fe58019SAttilio Rao {
2715fe58019SAttilio Rao 	if (fiov->allocated_size < size ||
2725fe58019SAttilio Rao 	    (fuse_iov_permanent_bufsize >= 0 &&
2735fe58019SAttilio Rao 	    fiov->allocated_size - size > fuse_iov_permanent_bufsize &&
2745fe58019SAttilio Rao 	    --fiov->credit < 0)) {
2755fe58019SAttilio Rao 
2765fe58019SAttilio Rao 		fiov->base = realloc(fiov->base, FU_AT_LEAST(size), M_FUSEMSG,
2775fe58019SAttilio Rao 		    M_WAITOK | M_ZERO);
2785fe58019SAttilio Rao 		if (!fiov->base) {
2795fe58019SAttilio Rao 			panic("FUSE: realloc failed");
2805fe58019SAttilio Rao 		}
2815fe58019SAttilio Rao 		fiov->allocated_size = FU_AT_LEAST(size);
2825fe58019SAttilio Rao 		fiov->credit = fuse_iov_credit;
2838d013becSAlan Somers 		/* Clear data buffer after reallocation */
2848d013becSAlan Somers 		bzero(fiov->base, size);
2858d013becSAlan Somers 	} else if (size > fiov->len) {
2868d013becSAlan Somers 		/* Clear newly extended portion of data buffer */
2878d013becSAlan Somers 		bzero((char*)fiov->base + fiov->len, size - fiov->len);
2885fe58019SAttilio Rao 	}
2895fe58019SAttilio Rao 	fiov->len = size;
2905fe58019SAttilio Rao }
2915fe58019SAttilio Rao 
29212292a99SAlan Somers /* Clear the fiov's data buffer */
29312292a99SAlan Somers static void
29412292a99SAlan Somers fiov_clear(struct fuse_iov *fiov)
29512292a99SAlan Somers {
29612292a99SAlan Somers 	bzero(fiov->base, fiov->len);
29712292a99SAlan Somers }
29812292a99SAlan Somers 
29912292a99SAlan Somers /* Resize the fiov if needed, and clear it's buffer */
3005fe58019SAttilio Rao void
3015fe58019SAttilio Rao fiov_refresh(struct fuse_iov *fiov)
3025fe58019SAttilio Rao {
3035fe58019SAttilio Rao 	fiov_adjust(fiov, 0);
3045fe58019SAttilio Rao }
3055fe58019SAttilio Rao 
3065fe58019SAttilio Rao static int
3075fe58019SAttilio Rao fticket_ctor(void *mem, int size, void *arg, int flags)
3085fe58019SAttilio Rao {
3095fe58019SAttilio Rao 	struct fuse_ticket *ftick = mem;
3105fe58019SAttilio Rao 	struct fuse_data *data = arg;
3115fe58019SAttilio Rao 
3125fe58019SAttilio Rao 	FUSE_ASSERT_MS_DONE(ftick);
3135fe58019SAttilio Rao 	FUSE_ASSERT_AW_DONE(ftick);
3145fe58019SAttilio Rao 
3155fe58019SAttilio Rao 	ftick->tk_data = data;
3165fe58019SAttilio Rao 
3175fe58019SAttilio Rao 	if (ftick->tk_unique != 0)
3185fe58019SAttilio Rao 		fticket_refresh(ftick);
3195fe58019SAttilio Rao 
3205fe58019SAttilio Rao 	/* May be truncated to 32 bits */
3215fe58019SAttilio Rao 	ftick->tk_unique = atomic_fetchadd_long(&data->ticketer, 1);
3225fe58019SAttilio Rao 	if (ftick->tk_unique == 0)
3235fe58019SAttilio Rao 		ftick->tk_unique = atomic_fetchadd_long(&data->ticketer, 1);
3245fe58019SAttilio Rao 
325a1542146SAlan Somers 	ftick->irq_unique = 0;
326a1542146SAlan Somers 
3275fe58019SAttilio Rao 	refcount_init(&ftick->tk_refcount, 1);
3285fe58019SAttilio Rao 	atomic_add_acq_int(&fuse_ticket_count, 1);
3295fe58019SAttilio Rao 
3305fe58019SAttilio Rao 	return 0;
3315fe58019SAttilio Rao }
3325fe58019SAttilio Rao 
3335fe58019SAttilio Rao static void
3345fe58019SAttilio Rao fticket_dtor(void *mem, int size, void *arg)
3355fe58019SAttilio Rao {
336f220ef0bSAlan Somers #ifdef INVARIANTS
3375fe58019SAttilio Rao 	struct fuse_ticket *ftick = mem;
338f220ef0bSAlan Somers #endif
3395fe58019SAttilio Rao 
3405fe58019SAttilio Rao 	FUSE_ASSERT_MS_DONE(ftick);
3415fe58019SAttilio Rao 	FUSE_ASSERT_AW_DONE(ftick);
3425fe58019SAttilio Rao 
3435fe58019SAttilio Rao 	atomic_subtract_acq_int(&fuse_ticket_count, 1);
3445fe58019SAttilio Rao }
3455fe58019SAttilio Rao 
3465fe58019SAttilio Rao static int
3475fe58019SAttilio Rao fticket_init(void *mem, int size, int flags)
3485fe58019SAttilio Rao {
3495fe58019SAttilio Rao 	struct fuse_ticket *ftick = mem;
3505fe58019SAttilio Rao 
3515fe58019SAttilio Rao 	bzero(ftick, sizeof(struct fuse_ticket));
3525fe58019SAttilio Rao 
3535fe58019SAttilio Rao 	fiov_init(&ftick->tk_ms_fiov, sizeof(struct fuse_in_header));
3545fe58019SAttilio Rao 	ftick->tk_ms_type = FT_M_FIOV;
3555fe58019SAttilio Rao 
3565fe58019SAttilio Rao 	mtx_init(&ftick->tk_aw_mtx, "fuse answer delivery mutex", NULL, MTX_DEF);
3575fe58019SAttilio Rao 	fiov_init(&ftick->tk_aw_fiov, 0);
3585fe58019SAttilio Rao 	ftick->tk_aw_type = FT_A_FIOV;
3595fe58019SAttilio Rao 
3605fe58019SAttilio Rao 	return 0;
3615fe58019SAttilio Rao }
3625fe58019SAttilio Rao 
3635fe58019SAttilio Rao static void
3645fe58019SAttilio Rao fticket_fini(void *mem, int size)
3655fe58019SAttilio Rao {
3665fe58019SAttilio Rao 	struct fuse_ticket *ftick = mem;
3675fe58019SAttilio Rao 
3685fe58019SAttilio Rao 	fiov_teardown(&ftick->tk_ms_fiov);
3695fe58019SAttilio Rao 	fiov_teardown(&ftick->tk_aw_fiov);
3705fe58019SAttilio Rao 	mtx_destroy(&ftick->tk_aw_mtx);
3715fe58019SAttilio Rao }
3725fe58019SAttilio Rao 
37302295cafSConrad Meyer static inline struct fuse_ticket *
3745fe58019SAttilio Rao fticket_alloc(struct fuse_data *data)
3755fe58019SAttilio Rao {
3765fe58019SAttilio Rao 	return uma_zalloc_arg(ticket_zone, data, M_WAITOK);
3775fe58019SAttilio Rao }
3785fe58019SAttilio Rao 
37902295cafSConrad Meyer static inline void
3805fe58019SAttilio Rao fticket_destroy(struct fuse_ticket *ftick)
3815fe58019SAttilio Rao {
3825fe58019SAttilio Rao 	return uma_zfree(ticket_zone, ftick);
3835fe58019SAttilio Rao }
3845fe58019SAttilio Rao 
38502295cafSConrad Meyer static inline
3865fe58019SAttilio Rao void
3875fe58019SAttilio Rao fticket_refresh(struct fuse_ticket *ftick)
3885fe58019SAttilio Rao {
3895fe58019SAttilio Rao 	FUSE_ASSERT_MS_DONE(ftick);
3905fe58019SAttilio Rao 	FUSE_ASSERT_AW_DONE(ftick);
3915fe58019SAttilio Rao 
3925fe58019SAttilio Rao 	fiov_refresh(&ftick->tk_ms_fiov);
3935fe58019SAttilio Rao 	ftick->tk_ms_bufdata = NULL;
3945fe58019SAttilio Rao 	ftick->tk_ms_bufsize = 0;
3955fe58019SAttilio Rao 	ftick->tk_ms_type = FT_M_FIOV;
3965fe58019SAttilio Rao 
3975fe58019SAttilio Rao 	bzero(&ftick->tk_aw_ohead, sizeof(struct fuse_out_header));
3985fe58019SAttilio Rao 
3995fe58019SAttilio Rao 	fiov_refresh(&ftick->tk_aw_fiov);
4005fe58019SAttilio Rao 	ftick->tk_aw_errno = 0;
4015fe58019SAttilio Rao 	ftick->tk_aw_bufdata = NULL;
4025fe58019SAttilio Rao 	ftick->tk_aw_bufsize = 0;
4035fe58019SAttilio Rao 	ftick->tk_aw_type = FT_A_FIOV;
4045fe58019SAttilio Rao 
4055fe58019SAttilio Rao 	ftick->tk_flag = 0;
4065fe58019SAttilio Rao }
4075fe58019SAttilio Rao 
40812292a99SAlan Somers /* Prepar the ticket to be reused, but don't clear its data buffers */
40912292a99SAlan Somers static inline void
41012292a99SAlan Somers fticket_reset(struct fuse_ticket *ftick)
41112292a99SAlan Somers {
41212292a99SAlan Somers 	FUSE_ASSERT_MS_DONE(ftick);
41312292a99SAlan Somers 	FUSE_ASSERT_AW_DONE(ftick);
41412292a99SAlan Somers 
41512292a99SAlan Somers 	ftick->tk_ms_bufdata = NULL;
41612292a99SAlan Somers 	ftick->tk_ms_bufsize = 0;
41712292a99SAlan Somers 	ftick->tk_ms_type = FT_M_FIOV;
41812292a99SAlan Somers 
41912292a99SAlan Somers 	bzero(&ftick->tk_aw_ohead, sizeof(struct fuse_out_header));
42012292a99SAlan Somers 
42112292a99SAlan Somers 	ftick->tk_aw_errno = 0;
42212292a99SAlan Somers 	ftick->tk_aw_bufdata = NULL;
42312292a99SAlan Somers 	ftick->tk_aw_bufsize = 0;
42412292a99SAlan Somers 	ftick->tk_aw_type = FT_A_FIOV;
42512292a99SAlan Somers 
42612292a99SAlan Somers 	ftick->tk_flag = 0;
42712292a99SAlan Somers }
42812292a99SAlan Somers 
4295fe58019SAttilio Rao static int
4305fe58019SAttilio Rao fticket_wait_answer(struct fuse_ticket *ftick)
4315fe58019SAttilio Rao {
432723c7768SAlan Somers 	struct thread *td = curthread;
433723c7768SAlan Somers 	sigset_t blockedset, oldset;
4345fe58019SAttilio Rao 	int err = 0;
4355fe58019SAttilio Rao 	struct fuse_data *data;
436*3d070fdcSAlan Somers 	SIGEMPTYSET(blockedset);
437*3d070fdcSAlan Somers 
438*3d070fdcSAlan Somers 	kern_sigprocmask(td, SIG_BLOCK, NULL, &oldset, 0);
4395fe58019SAttilio Rao 
440c02ccc7eSAlan Somers 	fuse_lck_mtx_lock(ftick->tk_aw_mtx);
441c02ccc7eSAlan Somers 
442723c7768SAlan Somers retry:
4435fe58019SAttilio Rao 	if (fticket_answered(ftick)) {
4445fe58019SAttilio Rao 		goto out;
4455fe58019SAttilio Rao 	}
4465fe58019SAttilio Rao 	data = ftick->tk_data;
4475fe58019SAttilio Rao 
4485fe58019SAttilio Rao 	if (fdata_get_dead(data)) {
4495fe58019SAttilio Rao 		err = ENOTCONN;
4505fe58019SAttilio Rao 		fticket_set_answered(ftick);
4515fe58019SAttilio Rao 		goto out;
4525fe58019SAttilio Rao 	}
453*3d070fdcSAlan Somers 	kern_sigprocmask(td, SIG_BLOCK, &blockedset, NULL, 0);
4545fe58019SAttilio Rao 	err = msleep(ftick, &ftick->tk_aw_mtx, PCATCH, "fu_ans",
4555fe58019SAttilio Rao 	    data->daemon_timeout * hz);
456723c7768SAlan Somers 	kern_sigprocmask(td, SIG_SETMASK, &oldset, NULL, 0);
457723c7768SAlan Somers 	if (err == EWOULDBLOCK) {
458723c7768SAlan Somers 		SDT_PROBE2(fuse, , ipc, trace, 3,
459723c7768SAlan Somers 			"fticket_wait_answer: EWOULDBLOCK");
4605fe58019SAttilio Rao #ifdef XXXIP				/* die conditionally */
4615fe58019SAttilio Rao 		if (!fdata_get_dead(data)) {
4625fe58019SAttilio Rao 			fdata_set_dead(data);
4635fe58019SAttilio Rao 		}
4645fe58019SAttilio Rao #endif
4655fe58019SAttilio Rao 		err = ETIMEDOUT;
4665fe58019SAttilio Rao 		fticket_set_answered(ftick);
467723c7768SAlan Somers 	} else if ((err == EINTR || err == ERESTART)) {
468723c7768SAlan Somers 		/*
469723c7768SAlan Somers 		 * Whether we get EINTR or ERESTART depends on whether
470723c7768SAlan Somers 		 * SA_RESTART was set by sigaction(2).
471723c7768SAlan Somers 		 *
472723c7768SAlan Somers 		 * Try to interrupt the operation and wait for an EINTR response
473723c7768SAlan Somers 		 * to the original operation.  If the file system does not
474723c7768SAlan Somers 		 * support FUSE_INTERRUPT, then we'll just wait for it to
475723c7768SAlan Somers 		 * complete like normal.  If it does support FUSE_INTERRUPT,
476723c7768SAlan Somers 		 * then it will either respond EINTR to the original operation,
477723c7768SAlan Somers 		 * or EAGAIN to the interrupt.
478723c7768SAlan Somers 		 */
479723c7768SAlan Somers 		int sig;
480723c7768SAlan Somers 
481723c7768SAlan Somers 		SDT_PROBE2(fuse, , ipc, trace, 4,
482723c7768SAlan Somers 			"fticket_wait_answer: interrupt");
483723c7768SAlan Somers 		fuse_lck_mtx_unlock(ftick->tk_aw_mtx);
484*3d070fdcSAlan Somers 		fuse_interrupt_send(ftick, err);
485723c7768SAlan Somers 
486723c7768SAlan Somers 		PROC_LOCK(td->td_proc);
487723c7768SAlan Somers 		mtx_lock(&td->td_proc->p_sigacts->ps_mtx);
488723c7768SAlan Somers 		sig = cursig(td);
489723c7768SAlan Somers 		mtx_unlock(&td->td_proc->p_sigacts->ps_mtx);
490723c7768SAlan Somers 		PROC_UNLOCK(td->td_proc);
491*3d070fdcSAlan Somers 
492*3d070fdcSAlan Somers 		fuse_lck_mtx_lock(ftick->tk_aw_mtx);
493a1542146SAlan Somers 		if (!sig_isfatal(td->td_proc, sig)) {
494a1542146SAlan Somers 			/*
495a1542146SAlan Somers 			 * Block the just-delivered signal while we wait for an
496a1542146SAlan Somers 			 * interrupt response
497a1542146SAlan Somers 			 */
498723c7768SAlan Somers 			SIGADDSET(blockedset, sig);
499723c7768SAlan Somers 			goto retry;
500a1542146SAlan Somers 		} else {
501a1542146SAlan Somers 			/* Return immediately for fatal signals */
502a1542146SAlan Somers 		}
503723c7768SAlan Somers 	} else if (err) {
504723c7768SAlan Somers 		SDT_PROBE2(fuse, , ipc, trace, 6,
505723c7768SAlan Somers 			"fticket_wait_answer: other error");
506723c7768SAlan Somers 	} else {
507723c7768SAlan Somers 		SDT_PROBE2(fuse, , ipc, trace, 7, "fticket_wait_answer: OK");
5085fe58019SAttilio Rao 	}
5095fe58019SAttilio Rao out:
5105fe58019SAttilio Rao 	if (!(err || fticket_answered(ftick))) {
511cf169498SAlan Somers 		SDT_PROBE2(fuse, , ipc, trace, 1,
512cf169498SAlan Somers 			"FUSE: requester was woken up but still no answer");
5135fe58019SAttilio Rao 		err = ENXIO;
5145fe58019SAttilio Rao 	}
5155fe58019SAttilio Rao 	fuse_lck_mtx_unlock(ftick->tk_aw_mtx);
5165fe58019SAttilio Rao 
5175fe58019SAttilio Rao 	return err;
5185fe58019SAttilio Rao }
5195fe58019SAttilio Rao 
52002295cafSConrad Meyer static	inline
5215fe58019SAttilio Rao int
5225fe58019SAttilio Rao fticket_aw_pull_uio(struct fuse_ticket *ftick, struct uio *uio)
5235fe58019SAttilio Rao {
5245fe58019SAttilio Rao 	int err = 0;
5255fe58019SAttilio Rao 	size_t len = uio_resid(uio);
5265fe58019SAttilio Rao 
5275fe58019SAttilio Rao 	if (len) {
5285fe58019SAttilio Rao 		switch (ftick->tk_aw_type) {
5295fe58019SAttilio Rao 		case FT_A_FIOV:
5305fe58019SAttilio Rao 			fiov_adjust(fticket_resp(ftick), len);
5315fe58019SAttilio Rao 			err = uiomove(fticket_resp(ftick)->base, len, uio);
5325fe58019SAttilio Rao 			break;
5335fe58019SAttilio Rao 
5345fe58019SAttilio Rao 		case FT_A_BUF:
5355fe58019SAttilio Rao 			ftick->tk_aw_bufsize = len;
5365fe58019SAttilio Rao 			err = uiomove(ftick->tk_aw_bufdata, len, uio);
5375fe58019SAttilio Rao 			break;
5385fe58019SAttilio Rao 
5395fe58019SAttilio Rao 		default:
5405fe58019SAttilio Rao 			panic("FUSE: unknown answer type for ticket %p", ftick);
5415fe58019SAttilio Rao 		}
5425fe58019SAttilio Rao 	}
5435fe58019SAttilio Rao 	return err;
5445fe58019SAttilio Rao }
5455fe58019SAttilio Rao 
5465fe58019SAttilio Rao int
5475fe58019SAttilio Rao fticket_pull(struct fuse_ticket *ftick, struct uio *uio)
5485fe58019SAttilio Rao {
5495fe58019SAttilio Rao 	int err = 0;
5505fe58019SAttilio Rao 
5515fe58019SAttilio Rao 	if (ftick->tk_aw_ohead.error) {
5525fe58019SAttilio Rao 		return 0;
5535fe58019SAttilio Rao 	}
5545fe58019SAttilio Rao 	err = fuse_body_audit(ftick, uio_resid(uio));
5555fe58019SAttilio Rao 	if (!err) {
5565fe58019SAttilio Rao 		err = fticket_aw_pull_uio(ftick, uio);
5575fe58019SAttilio Rao 	}
5585fe58019SAttilio Rao 	return err;
5595fe58019SAttilio Rao }
5605fe58019SAttilio Rao 
5615fe58019SAttilio Rao struct fuse_data *
5625fe58019SAttilio Rao fdata_alloc(struct cdev *fdev, struct ucred *cred)
5635fe58019SAttilio Rao {
5645fe58019SAttilio Rao 	struct fuse_data *data;
5655fe58019SAttilio Rao 
5665fe58019SAttilio Rao 	data = malloc(sizeof(struct fuse_data), M_FUSEMSG, M_WAITOK | M_ZERO);
5675fe58019SAttilio Rao 
5685fe58019SAttilio Rao 	data->fdev = fdev;
5695fe58019SAttilio Rao 	mtx_init(&data->ms_mtx, "fuse message list mutex", NULL, MTX_DEF);
5705fe58019SAttilio Rao 	STAILQ_INIT(&data->ms_head);
5715fe58019SAttilio Rao 	mtx_init(&data->aw_mtx, "fuse answer list mutex", NULL, MTX_DEF);
5725fe58019SAttilio Rao 	TAILQ_INIT(&data->aw_head);
5735fe58019SAttilio Rao 	data->daemoncred = crhold(cred);
5745fe58019SAttilio Rao 	data->daemon_timeout = FUSE_DEFAULT_DAEMON_TIMEOUT;
5755fe58019SAttilio Rao 	sx_init(&data->rename_lock, "fuse rename lock");
5765fe58019SAttilio Rao 	data->ref = 1;
5775fe58019SAttilio Rao 
5785fe58019SAttilio Rao 	return data;
5795fe58019SAttilio Rao }
5805fe58019SAttilio Rao 
5815fe58019SAttilio Rao void
5825fe58019SAttilio Rao fdata_trydestroy(struct fuse_data *data)
5835fe58019SAttilio Rao {
5845fe58019SAttilio Rao 	data->ref--;
5855fe58019SAttilio Rao 	MPASS(data->ref >= 0);
5865fe58019SAttilio Rao 	if (data->ref != 0)
5875fe58019SAttilio Rao 		return;
5885fe58019SAttilio Rao 
5895fe58019SAttilio Rao 	/* Driving off stage all that stuff thrown at device... */
5905fe58019SAttilio Rao 	mtx_destroy(&data->ms_mtx);
5915fe58019SAttilio Rao 	mtx_destroy(&data->aw_mtx);
5925fe58019SAttilio Rao 	sx_destroy(&data->rename_lock);
5935fe58019SAttilio Rao 
5945fe58019SAttilio Rao 	crfree(data->daemoncred);
5955fe58019SAttilio Rao 
5965fe58019SAttilio Rao 	free(data, M_FUSEMSG);
5975fe58019SAttilio Rao }
5985fe58019SAttilio Rao 
5995fe58019SAttilio Rao void
6005fe58019SAttilio Rao fdata_set_dead(struct fuse_data *data)
6015fe58019SAttilio Rao {
6025fe58019SAttilio Rao 	FUSE_LOCK();
6035fe58019SAttilio Rao 	if (fdata_get_dead(data)) {
6045fe58019SAttilio Rao 		FUSE_UNLOCK();
6055fe58019SAttilio Rao 		return;
6065fe58019SAttilio Rao 	}
6075fe58019SAttilio Rao 	fuse_lck_mtx_lock(data->ms_mtx);
6085fe58019SAttilio Rao 	data->dataflags |= FSESS_DEAD;
6095fe58019SAttilio Rao 	wakeup_one(data);
6105fe58019SAttilio Rao 	selwakeuppri(&data->ks_rsel, PZERO + 1);
6115fe58019SAttilio Rao 	wakeup(&data->ticketer);
6125fe58019SAttilio Rao 	fuse_lck_mtx_unlock(data->ms_mtx);
6135fe58019SAttilio Rao 	FUSE_UNLOCK();
6145fe58019SAttilio Rao }
6155fe58019SAttilio Rao 
6165fe58019SAttilio Rao struct fuse_ticket *
6175fe58019SAttilio Rao fuse_ticket_fetch(struct fuse_data *data)
6185fe58019SAttilio Rao {
6195fe58019SAttilio Rao 	int err = 0;
6205fe58019SAttilio Rao 	struct fuse_ticket *ftick;
6215fe58019SAttilio Rao 
6225fe58019SAttilio Rao 	ftick = fticket_alloc(data);
6235fe58019SAttilio Rao 
6245fe58019SAttilio Rao 	if (!(data->dataflags & FSESS_INITED)) {
6255fe58019SAttilio Rao 		/* Sleep until get answer for INIT messsage */
6265fe58019SAttilio Rao 		FUSE_LOCK();
6275fe58019SAttilio Rao 		if (!(data->dataflags & FSESS_INITED) && data->ticketer > 2) {
6285fe58019SAttilio Rao 			err = msleep(&data->ticketer, &fuse_mtx, PCATCH | PDROP,
6295fe58019SAttilio Rao 			    "fu_ini", 0);
6305fe58019SAttilio Rao 			if (err)
6315fe58019SAttilio Rao 				fdata_set_dead(data);
6325fe58019SAttilio Rao 		} else
6335fe58019SAttilio Rao 			FUSE_UNLOCK();
6345fe58019SAttilio Rao 	}
6355fe58019SAttilio Rao 	return ftick;
6365fe58019SAttilio Rao }
6375fe58019SAttilio Rao 
6385fe58019SAttilio Rao int
6395fe58019SAttilio Rao fuse_ticket_drop(struct fuse_ticket *ftick)
6405fe58019SAttilio Rao {
6415fe58019SAttilio Rao 	int die;
6425fe58019SAttilio Rao 
6435fe58019SAttilio Rao 	die = refcount_release(&ftick->tk_refcount);
6445fe58019SAttilio Rao 	if (die)
6455fe58019SAttilio Rao 		fticket_destroy(ftick);
6465fe58019SAttilio Rao 
6475fe58019SAttilio Rao 	return die;
6485fe58019SAttilio Rao }
6495fe58019SAttilio Rao 
6505fe58019SAttilio Rao void
6515fe58019SAttilio Rao fuse_insert_callback(struct fuse_ticket *ftick, fuse_handler_t * handler)
6525fe58019SAttilio Rao {
6535fe58019SAttilio Rao 	if (fdata_get_dead(ftick->tk_data)) {
6545fe58019SAttilio Rao 		return;
6555fe58019SAttilio Rao 	}
6565fe58019SAttilio Rao 	ftick->tk_aw_handler = handler;
6575fe58019SAttilio Rao 
6585fe58019SAttilio Rao 	fuse_lck_mtx_lock(ftick->tk_data->aw_mtx);
6595fe58019SAttilio Rao 	fuse_aw_push(ftick);
6605fe58019SAttilio Rao 	fuse_lck_mtx_unlock(ftick->tk_data->aw_mtx);
6615fe58019SAttilio Rao }
6625fe58019SAttilio Rao 
6635fe58019SAttilio Rao void
6645fe58019SAttilio Rao fuse_insert_message(struct fuse_ticket *ftick)
6655fe58019SAttilio Rao {
6665fe58019SAttilio Rao 	if (ftick->tk_flag & FT_DIRTY) {
6675fe58019SAttilio Rao 		panic("FUSE: ticket reused without being refreshed");
6685fe58019SAttilio Rao 	}
6695fe58019SAttilio Rao 	ftick->tk_flag |= FT_DIRTY;
6705fe58019SAttilio Rao 
6715fe58019SAttilio Rao 	if (fdata_get_dead(ftick->tk_data)) {
6725fe58019SAttilio Rao 		return;
6735fe58019SAttilio Rao 	}
6745fe58019SAttilio Rao 	fuse_lck_mtx_lock(ftick->tk_data->ms_mtx);
6755fe58019SAttilio Rao 	fuse_ms_push(ftick);
6765fe58019SAttilio Rao 	wakeup_one(ftick->tk_data);
6775fe58019SAttilio Rao 	selwakeuppri(&ftick->tk_data->ks_rsel, PZERO + 1);
6785fe58019SAttilio Rao 	fuse_lck_mtx_unlock(ftick->tk_data->ms_mtx);
6795fe58019SAttilio Rao }
6805fe58019SAttilio Rao 
6815fe58019SAttilio Rao static int
6825fe58019SAttilio Rao fuse_body_audit(struct fuse_ticket *ftick, size_t blen)
6835fe58019SAttilio Rao {
6845fe58019SAttilio Rao 	int err = 0;
6855fe58019SAttilio Rao 	enum fuse_opcode opcode;
6865fe58019SAttilio Rao 
6875fe58019SAttilio Rao 	opcode = fticket_opcode(ftick);
6885fe58019SAttilio Rao 
6895fe58019SAttilio Rao 	switch (opcode) {
6905fe58019SAttilio Rao 	case FUSE_LOOKUP:
6915fe58019SAttilio Rao 		err = (blen == sizeof(struct fuse_entry_out)) ? 0 : EINVAL;
6925fe58019SAttilio Rao 		break;
6935fe58019SAttilio Rao 
6945fe58019SAttilio Rao 	case FUSE_FORGET:
6955fe58019SAttilio Rao 		panic("FUSE: a handler has been intalled for FUSE_FORGET");
6965fe58019SAttilio Rao 		break;
6975fe58019SAttilio Rao 
6985fe58019SAttilio Rao 	case FUSE_GETATTR:
6995fe58019SAttilio Rao 		err = (blen == sizeof(struct fuse_attr_out)) ? 0 : EINVAL;
7005fe58019SAttilio Rao 		break;
7015fe58019SAttilio Rao 
7025fe58019SAttilio Rao 	case FUSE_SETATTR:
7035fe58019SAttilio Rao 		err = (blen == sizeof(struct fuse_attr_out)) ? 0 : EINVAL;
7045fe58019SAttilio Rao 		break;
7055fe58019SAttilio Rao 
7065fe58019SAttilio Rao 	case FUSE_READLINK:
7075fe58019SAttilio Rao 		err = (PAGE_SIZE >= blen) ? 0 : EINVAL;
7085fe58019SAttilio Rao 		break;
7095fe58019SAttilio Rao 
7105fe58019SAttilio Rao 	case FUSE_SYMLINK:
7115fe58019SAttilio Rao 		err = (blen == sizeof(struct fuse_entry_out)) ? 0 : EINVAL;
7125fe58019SAttilio Rao 		break;
7135fe58019SAttilio Rao 
7145fe58019SAttilio Rao 	case FUSE_MKNOD:
7155fe58019SAttilio Rao 		err = (blen == sizeof(struct fuse_entry_out)) ? 0 : EINVAL;
7165fe58019SAttilio Rao 		break;
7175fe58019SAttilio Rao 
7185fe58019SAttilio Rao 	case FUSE_MKDIR:
7195fe58019SAttilio Rao 		err = (blen == sizeof(struct fuse_entry_out)) ? 0 : EINVAL;
7205fe58019SAttilio Rao 		break;
7215fe58019SAttilio Rao 
7225fe58019SAttilio Rao 	case FUSE_UNLINK:
7235fe58019SAttilio Rao 		err = (blen == 0) ? 0 : EINVAL;
7245fe58019SAttilio Rao 		break;
7255fe58019SAttilio Rao 
7265fe58019SAttilio Rao 	case FUSE_RMDIR:
7275fe58019SAttilio Rao 		err = (blen == 0) ? 0 : EINVAL;
7285fe58019SAttilio Rao 		break;
7295fe58019SAttilio Rao 
7305fe58019SAttilio Rao 	case FUSE_RENAME:
7315fe58019SAttilio Rao 		err = (blen == 0) ? 0 : EINVAL;
7325fe58019SAttilio Rao 		break;
7335fe58019SAttilio Rao 
7345fe58019SAttilio Rao 	case FUSE_LINK:
7355fe58019SAttilio Rao 		err = (blen == sizeof(struct fuse_entry_out)) ? 0 : EINVAL;
7365fe58019SAttilio Rao 		break;
7375fe58019SAttilio Rao 
7385fe58019SAttilio Rao 	case FUSE_OPEN:
7395fe58019SAttilio Rao 		err = (blen == sizeof(struct fuse_open_out)) ? 0 : EINVAL;
7405fe58019SAttilio Rao 		break;
7415fe58019SAttilio Rao 
7425fe58019SAttilio Rao 	case FUSE_READ:
7435fe58019SAttilio Rao 		err = (((struct fuse_read_in *)(
7445fe58019SAttilio Rao 		    (char *)ftick->tk_ms_fiov.base +
7455fe58019SAttilio Rao 		    sizeof(struct fuse_in_header)
7465fe58019SAttilio Rao 		    ))->size >= blen) ? 0 : EINVAL;
7475fe58019SAttilio Rao 		break;
7485fe58019SAttilio Rao 
7495fe58019SAttilio Rao 	case FUSE_WRITE:
7505fe58019SAttilio Rao 		err = (blen == sizeof(struct fuse_write_out)) ? 0 : EINVAL;
7515fe58019SAttilio Rao 		break;
7525fe58019SAttilio Rao 
7535fe58019SAttilio Rao 	case FUSE_STATFS:
7545fe58019SAttilio Rao 		if (fuse_libabi_geq(ftick->tk_data, 7, 4)) {
7555fe58019SAttilio Rao 			err = (blen == sizeof(struct fuse_statfs_out)) ?
7565fe58019SAttilio Rao 			  0 : EINVAL;
7575fe58019SAttilio Rao 		} else {
7585fe58019SAttilio Rao 			err = (blen == FUSE_COMPAT_STATFS_SIZE) ? 0 : EINVAL;
7595fe58019SAttilio Rao 		}
7605fe58019SAttilio Rao 		break;
7615fe58019SAttilio Rao 
7625fe58019SAttilio Rao 	case FUSE_RELEASE:
7635fe58019SAttilio Rao 		err = (blen == 0) ? 0 : EINVAL;
7645fe58019SAttilio Rao 		break;
7655fe58019SAttilio Rao 
7665fe58019SAttilio Rao 	case FUSE_FSYNC:
7675fe58019SAttilio Rao 		err = (blen == 0) ? 0 : EINVAL;
7685fe58019SAttilio Rao 		break;
7695fe58019SAttilio Rao 
7705fe58019SAttilio Rao 	case FUSE_SETXATTR:
77104660064SFedor Uporov 		err = (blen == 0) ? 0 : EINVAL;
7725fe58019SAttilio Rao 		break;
7735fe58019SAttilio Rao 
7745fe58019SAttilio Rao 	case FUSE_GETXATTR:
7755fe58019SAttilio Rao 	case FUSE_LISTXATTR:
77604660064SFedor Uporov 		/*
77704660064SFedor Uporov 		 * These can have varying response lengths, and 0 length
77804660064SFedor Uporov 		 * isn't necessarily invalid.
77904660064SFedor Uporov 		 */
78004660064SFedor Uporov 		err = 0;
7815fe58019SAttilio Rao 		break;
7825fe58019SAttilio Rao 
7835fe58019SAttilio Rao 	case FUSE_REMOVEXATTR:
78404660064SFedor Uporov 		err = (blen == 0) ? 0 : EINVAL;
7855fe58019SAttilio Rao 		break;
7865fe58019SAttilio Rao 
7875fe58019SAttilio Rao 	case FUSE_FLUSH:
7885fe58019SAttilio Rao 		err = (blen == 0) ? 0 : EINVAL;
7895fe58019SAttilio Rao 		break;
7905fe58019SAttilio Rao 
7915fe58019SAttilio Rao 	case FUSE_INIT:
7925fe58019SAttilio Rao 		if (blen == sizeof(struct fuse_init_out) || blen == 8) {
7935fe58019SAttilio Rao 			err = 0;
7945fe58019SAttilio Rao 		} else {
7955fe58019SAttilio Rao 			err = EINVAL;
7965fe58019SAttilio Rao 		}
7975fe58019SAttilio Rao 		break;
7985fe58019SAttilio Rao 
7995fe58019SAttilio Rao 	case FUSE_OPENDIR:
8005fe58019SAttilio Rao 		err = (blen == sizeof(struct fuse_open_out)) ? 0 : EINVAL;
8015fe58019SAttilio Rao 		break;
8025fe58019SAttilio Rao 
8035fe58019SAttilio Rao 	case FUSE_READDIR:
8045fe58019SAttilio Rao 		err = (((struct fuse_read_in *)(
8055fe58019SAttilio Rao 		    (char *)ftick->tk_ms_fiov.base +
8065fe58019SAttilio Rao 		    sizeof(struct fuse_in_header)
8075fe58019SAttilio Rao 		    ))->size >= blen) ? 0 : EINVAL;
8085fe58019SAttilio Rao 		break;
8095fe58019SAttilio Rao 
8105fe58019SAttilio Rao 	case FUSE_RELEASEDIR:
8115fe58019SAttilio Rao 		err = (blen == 0) ? 0 : EINVAL;
8125fe58019SAttilio Rao 		break;
8135fe58019SAttilio Rao 
8145fe58019SAttilio Rao 	case FUSE_FSYNCDIR:
8155fe58019SAttilio Rao 		err = (blen == 0) ? 0 : EINVAL;
8165fe58019SAttilio Rao 		break;
8175fe58019SAttilio Rao 
8185fe58019SAttilio Rao 	case FUSE_GETLK:
819f067b609SAlan Somers 		err = (blen == sizeof(struct fuse_lk_out)) ? 0 : EINVAL;
8205fe58019SAttilio Rao 		break;
8215fe58019SAttilio Rao 
8225fe58019SAttilio Rao 	case FUSE_SETLK:
823f067b609SAlan Somers 		err = (blen == 0) ? 0 : EINVAL;
8245fe58019SAttilio Rao 		break;
8255fe58019SAttilio Rao 
8265fe58019SAttilio Rao 	case FUSE_SETLKW:
827f067b609SAlan Somers 		err = (blen == 0) ? 0 : EINVAL;
8285fe58019SAttilio Rao 		break;
8295fe58019SAttilio Rao 
8305fe58019SAttilio Rao 	case FUSE_ACCESS:
8315fe58019SAttilio Rao 		err = (blen == 0) ? 0 : EINVAL;
8325fe58019SAttilio Rao 		break;
8335fe58019SAttilio Rao 
8345fe58019SAttilio Rao 	case FUSE_CREATE:
8355fe58019SAttilio Rao 		err = (blen == sizeof(struct fuse_entry_out) +
8365fe58019SAttilio Rao 		    sizeof(struct fuse_open_out)) ? 0 : EINVAL;
8375fe58019SAttilio Rao 		break;
8385fe58019SAttilio Rao 
8395fe58019SAttilio Rao 	case FUSE_DESTROY:
8405fe58019SAttilio Rao 		err = (blen == 0) ? 0 : EINVAL;
8415fe58019SAttilio Rao 		break;
8425fe58019SAttilio Rao 
8435fe58019SAttilio Rao 	default:
8445fe58019SAttilio Rao 		panic("FUSE: opcodes out of sync (%d)\n", opcode);
8455fe58019SAttilio Rao 	}
8465fe58019SAttilio Rao 
8475fe58019SAttilio Rao 	return err;
8485fe58019SAttilio Rao }
8495fe58019SAttilio Rao 
85002295cafSConrad Meyer static inline void
85102295cafSConrad Meyer fuse_setup_ihead(struct fuse_in_header *ihead, struct fuse_ticket *ftick,
85202295cafSConrad Meyer     uint64_t nid, enum fuse_opcode op, size_t blen, pid_t pid,
8535fe58019SAttilio Rao     struct ucred *cred)
8545fe58019SAttilio Rao {
8555fe58019SAttilio Rao 	ihead->len = sizeof(*ihead) + blen;
8565fe58019SAttilio Rao 	ihead->unique = ftick->tk_unique;
8575fe58019SAttilio Rao 	ihead->nodeid = nid;
8585fe58019SAttilio Rao 	ihead->opcode = op;
8595fe58019SAttilio Rao 
8605fe58019SAttilio Rao 	ihead->pid = pid;
8615fe58019SAttilio Rao 	ihead->uid = cred->cr_uid;
8625fe58019SAttilio Rao 	ihead->gid = cred->cr_rgid;
8635fe58019SAttilio Rao }
8645fe58019SAttilio Rao 
8655fe58019SAttilio Rao /*
8665fe58019SAttilio Rao  * fuse_standard_handler just pulls indata and wakes up pretender.
8675fe58019SAttilio Rao  * Doesn't try to interpret data, that's left for the pretender.
8685fe58019SAttilio Rao  * Though might do a basic size verification before the pull-in takes place
8695fe58019SAttilio Rao  */
8705fe58019SAttilio Rao 
8715fe58019SAttilio Rao static int
8725fe58019SAttilio Rao fuse_standard_handler(struct fuse_ticket *ftick, struct uio *uio)
8735fe58019SAttilio Rao {
8745fe58019SAttilio Rao 	int err = 0;
8755fe58019SAttilio Rao 
8765fe58019SAttilio Rao 	err = fticket_pull(ftick, uio);
8775fe58019SAttilio Rao 
8785fe58019SAttilio Rao 	fuse_lck_mtx_lock(ftick->tk_aw_mtx);
8795fe58019SAttilio Rao 
8805fe58019SAttilio Rao 	if (!fticket_answered(ftick)) {
8815fe58019SAttilio Rao 		fticket_set_answered(ftick);
8825fe58019SAttilio Rao 		ftick->tk_aw_errno = err;
8835fe58019SAttilio Rao 		wakeup(ftick);
8845fe58019SAttilio Rao 	}
8855fe58019SAttilio Rao 	fuse_lck_mtx_unlock(ftick->tk_aw_mtx);
8865fe58019SAttilio Rao 
8875fe58019SAttilio Rao 	return err;
8885fe58019SAttilio Rao }
8895fe58019SAttilio Rao 
89012292a99SAlan Somers /*
89112292a99SAlan Somers  * Reinitialize a dispatcher from a pid and node id, without resizing or
89212292a99SAlan Somers  * clearing its data buffers
89312292a99SAlan Somers  */
89412292a99SAlan Somers static void
89512292a99SAlan Somers fdisp_refresh_pid(struct fuse_dispatcher *fdip, enum fuse_opcode op,
89612292a99SAlan Somers     struct mount *mp, uint64_t nid, pid_t pid, struct ucred *cred)
89712292a99SAlan Somers {
89812292a99SAlan Somers 	MPASS(fdip->tick);
8998d013becSAlan Somers 	MPASS2(sizeof(fdip->finh) + fdip->iosize <= fdip->tick->tk_ms_fiov.len,
9008d013becSAlan Somers 		"Must use fdisp_make_pid to increase the size of the fiov");
90112292a99SAlan Somers 	fticket_reset(fdip->tick);
90212292a99SAlan Somers 
90312292a99SAlan Somers 	FUSE_DIMALLOC(&fdip->tick->tk_ms_fiov, fdip->finh,
90412292a99SAlan Somers 	    fdip->indata, fdip->iosize);
90512292a99SAlan Somers 
90612292a99SAlan Somers 	fuse_setup_ihead(fdip->finh, fdip->tick, nid, op, fdip->iosize, pid,
90712292a99SAlan Somers 		cred);
90812292a99SAlan Somers }
90912292a99SAlan Somers 
91012292a99SAlan Somers /* Initialize a dispatcher from a pid and node id */
91112292a99SAlan Somers static void
91202295cafSConrad Meyer fdisp_make_pid(struct fuse_dispatcher *fdip, enum fuse_opcode op,
913723c7768SAlan Somers     struct fuse_data *data, uint64_t nid, pid_t pid, struct ucred *cred)
9145fe58019SAttilio Rao {
9155fe58019SAttilio Rao 	if (fdip->tick) {
9165fe58019SAttilio Rao 		fticket_refresh(fdip->tick);
9175fe58019SAttilio Rao 	} else {
9185fe58019SAttilio Rao 		fdip->tick = fuse_ticket_fetch(data);
9195fe58019SAttilio Rao 	}
9205fe58019SAttilio Rao 
9218d013becSAlan Somers 	/* FUSE_DIMALLOC will bzero the fiovs when it enlarges them */
9225fe58019SAttilio Rao 	FUSE_DIMALLOC(&fdip->tick->tk_ms_fiov, fdip->finh,
9235fe58019SAttilio Rao 	    fdip->indata, fdip->iosize);
9245fe58019SAttilio Rao 
9255fe58019SAttilio Rao 	fuse_setup_ihead(fdip->finh, fdip->tick, nid, op, fdip->iosize, pid, cred);
9265fe58019SAttilio Rao }
9275fe58019SAttilio Rao 
9285fe58019SAttilio Rao void
92902295cafSConrad Meyer fdisp_make(struct fuse_dispatcher *fdip, enum fuse_opcode op, struct mount *mp,
93002295cafSConrad Meyer     uint64_t nid, struct thread *td, struct ucred *cred)
9315fe58019SAttilio Rao {
932723c7768SAlan Somers 	struct fuse_data *data = fuse_get_mpdata(mp);
9335fe58019SAttilio Rao 	RECTIFY_TDCR(td, cred);
9345fe58019SAttilio Rao 
935723c7768SAlan Somers 	return fdisp_make_pid(fdip, op, data, nid, td->td_proc->p_pid, cred);
9365fe58019SAttilio Rao }
9375fe58019SAttilio Rao 
9385fe58019SAttilio Rao void
93902295cafSConrad Meyer fdisp_make_vp(struct fuse_dispatcher *fdip, enum fuse_opcode op,
94002295cafSConrad Meyer     struct vnode *vp, struct thread *td, struct ucred *cred)
9415fe58019SAttilio Rao {
942723c7768SAlan Somers 	struct mount *mp = vnode_mount(vp);
943723c7768SAlan Somers 	struct fuse_data *data = fuse_get_mpdata(mp);
944723c7768SAlan Somers 
9455fe58019SAttilio Rao 	RECTIFY_TDCR(td, cred);
946723c7768SAlan Somers 	return fdisp_make_pid(fdip, op, data, VTOI(vp),
9475fe58019SAttilio Rao 	    td->td_proc->p_pid, cred);
9485fe58019SAttilio Rao }
9495fe58019SAttilio Rao 
95012292a99SAlan Somers /* Refresh a fuse_dispatcher so it can be reused, but don't zero its data */
95112292a99SAlan Somers void
95212292a99SAlan Somers fdisp_refresh_vp(struct fuse_dispatcher *fdip, enum fuse_opcode op,
95312292a99SAlan Somers     struct vnode *vp, struct thread *td, struct ucred *cred)
95412292a99SAlan Somers {
95512292a99SAlan Somers 	RECTIFY_TDCR(td, cred);
95612292a99SAlan Somers 	return fdisp_refresh_pid(fdip, op, vnode_mount(vp), VTOI(vp),
95712292a99SAlan Somers 	    td->td_proc->p_pid, cred);
95812292a99SAlan Somers }
95912292a99SAlan Somers 
96012292a99SAlan Somers void
96112292a99SAlan Somers fdisp_refresh(struct fuse_dispatcher *fdip)
96212292a99SAlan Somers {
96312292a99SAlan Somers 	fticket_refresh(fdip->tick);
96412292a99SAlan Somers }
96512292a99SAlan Somers 
966cf169498SAlan Somers SDT_PROBE_DEFINE2(fuse, , ipc, fdisp_wait_answ_error, "char*", "int");
967cf169498SAlan Somers 
9685fe58019SAttilio Rao int
9695fe58019SAttilio Rao fdisp_wait_answ(struct fuse_dispatcher *fdip)
9705fe58019SAttilio Rao {
9715fe58019SAttilio Rao 	int err = 0;
9725fe58019SAttilio Rao 
9735fe58019SAttilio Rao 	fdip->answ_stat = 0;
9745fe58019SAttilio Rao 	fuse_insert_callback(fdip->tick, fuse_standard_handler);
9755fe58019SAttilio Rao 	fuse_insert_message(fdip->tick);
9765fe58019SAttilio Rao 
9775fe58019SAttilio Rao 	if ((err = fticket_wait_answer(fdip->tick))) {
9785fe58019SAttilio Rao 		fuse_lck_mtx_lock(fdip->tick->tk_aw_mtx);
9795fe58019SAttilio Rao 
9805fe58019SAttilio Rao 		if (fticket_answered(fdip->tick)) {
9815fe58019SAttilio Rao 			/*
9825fe58019SAttilio Rao 	                 * Just between noticing the interrupt and getting here,
9835fe58019SAttilio Rao 	                 * the standard handler has completed his job.
9845fe58019SAttilio Rao 	                 * So we drop the ticket and exit as usual.
9855fe58019SAttilio Rao 	                 */
986cf169498SAlan Somers 			SDT_PROBE2(fuse, , ipc, fdisp_wait_answ_error,
987cf169498SAlan Somers 				"IPC: interrupted, already answered", err);
9885fe58019SAttilio Rao 			fuse_lck_mtx_unlock(fdip->tick->tk_aw_mtx);
9895fe58019SAttilio Rao 			goto out;
9905fe58019SAttilio Rao 		} else {
9915fe58019SAttilio Rao 			/*
9925fe58019SAttilio Rao 	                 * So we were faster than the standard handler.
9935fe58019SAttilio Rao 	                 * Then by setting the answered flag we get *him*
9945fe58019SAttilio Rao 	                 * to drop the ticket.
9955fe58019SAttilio Rao 	                 */
996cf169498SAlan Somers 			SDT_PROBE2(fuse, , ipc, fdisp_wait_answ_error,
997cf169498SAlan Somers 				"IPC: interrupted, setting to answered", err);
9985fe58019SAttilio Rao 			fticket_set_answered(fdip->tick);
9995fe58019SAttilio Rao 			fuse_lck_mtx_unlock(fdip->tick->tk_aw_mtx);
10005fe58019SAttilio Rao 			return err;
10015fe58019SAttilio Rao 		}
10025fe58019SAttilio Rao 	}
10035fe58019SAttilio Rao 
10045fe58019SAttilio Rao 	if (fdip->tick->tk_aw_errno) {
1005cf169498SAlan Somers 		SDT_PROBE2(fuse, , ipc, fdisp_wait_answ_error,
1006cf169498SAlan Somers 			"IPC: explicit EIO-ing", fdip->tick->tk_aw_errno);
10075fe58019SAttilio Rao 		err = EIO;
10085fe58019SAttilio Rao 		goto out;
10095fe58019SAttilio Rao 	}
10105fe58019SAttilio Rao 	if ((err = fdip->tick->tk_aw_ohead.error)) {
1011cf169498SAlan Somers 		SDT_PROBE2(fuse, , ipc, fdisp_wait_answ_error,
1012cf169498SAlan Somers 			"IPC: setting status", fdip->tick->tk_aw_ohead.error);
10135fe58019SAttilio Rao 		/*
10145fe58019SAttilio Rao 	         * This means a "proper" fuse syscall error.
10155fe58019SAttilio Rao 	         * We record this value so the caller will
10165fe58019SAttilio Rao 	         * be able to know it's not a boring messaging
10175fe58019SAttilio Rao 	         * failure, if she wishes so (and if not, she can
10185fe58019SAttilio Rao 	         * just simply propagate the return value of this routine).
10195fe58019SAttilio Rao 	         * [XXX Maybe a bitflag would do the job too,
10205fe58019SAttilio Rao 	         * if other flags needed, this will be converted thusly.]
10215fe58019SAttilio Rao 	         */
10225fe58019SAttilio Rao 		fdip->answ_stat = err;
10235fe58019SAttilio Rao 		goto out;
10245fe58019SAttilio Rao 	}
10255fe58019SAttilio Rao 	fdip->answ = fticket_resp(fdip->tick)->base;
10265fe58019SAttilio Rao 	fdip->iosize = fticket_resp(fdip->tick)->len;
10275fe58019SAttilio Rao 
10285fe58019SAttilio Rao 	return 0;
10295fe58019SAttilio Rao 
10305fe58019SAttilio Rao out:
10315fe58019SAttilio Rao 	return err;
10325fe58019SAttilio Rao }
10335fe58019SAttilio Rao 
10345fe58019SAttilio Rao void
10355fe58019SAttilio Rao fuse_ipc_init(void)
10365fe58019SAttilio Rao {
10375fe58019SAttilio Rao 	ticket_zone = uma_zcreate("fuse_ticket", sizeof(struct fuse_ticket),
10385fe58019SAttilio Rao 	    fticket_ctor, fticket_dtor, fticket_init, fticket_fini,
10395fe58019SAttilio Rao 	    UMA_ALIGN_PTR, 0);
10405fe58019SAttilio Rao }
10415fe58019SAttilio Rao 
10425fe58019SAttilio Rao void
10435fe58019SAttilio Rao fuse_ipc_destroy(void)
10445fe58019SAttilio Rao {
10455fe58019SAttilio Rao 	uma_zdestroy(ticket_zone);
10465fe58019SAttilio Rao }
1047