xref: /titanic_54/usr/src/uts/common/fs/xattr.c (revision 7a286c471efbab8562f7655a82931904703fffe0)
1da6c28aaSamw /*
2da6c28aaSamw  * CDDL HEADER START
3da6c28aaSamw  *
4da6c28aaSamw  * The contents of this file are subject to the terms of the
5da6c28aaSamw  * Common Development and Distribution License (the "License").
6da6c28aaSamw  * You may not use this file except in compliance with the License.
7da6c28aaSamw  *
8da6c28aaSamw  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
9da6c28aaSamw  * or http://www.opensolaris.org/os/licensing.
10da6c28aaSamw  * See the License for the specific language governing permissions
11da6c28aaSamw  * and limitations under the License.
12da6c28aaSamw  *
13da6c28aaSamw  * When distributing Covered Code, include this CDDL HEADER in each
14da6c28aaSamw  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
15da6c28aaSamw  * If applicable, add the following below this CDDL HEADER, with the
16da6c28aaSamw  * fields enclosed by brackets "[]" replaced with your own identifying
17da6c28aaSamw  * information: Portions Copyright [yyyy] [name of copyright owner]
18da6c28aaSamw  *
19da6c28aaSamw  * CDDL HEADER END
20da6c28aaSamw  */
21da6c28aaSamw /*
22e802abbdSTim Haley  * Copyright 2009 Sun Microsystems, Inc.  All rights reserved.
23da6c28aaSamw  * Use is subject to license terms.
24da6c28aaSamw  */
25da6c28aaSamw 
26da6c28aaSamw #include <sys/param.h>
27da6c28aaSamw #include <sys/isa_defs.h>
28da6c28aaSamw #include <sys/types.h>
29da6c28aaSamw #include <sys/sysmacros.h>
30da6c28aaSamw #include <sys/cred.h>
31da6c28aaSamw #include <sys/systm.h>
32da6c28aaSamw #include <sys/errno.h>
33da6c28aaSamw #include <sys/fcntl.h>
34da6c28aaSamw #include <sys/pathname.h>
35da6c28aaSamw #include <sys/stat.h>
36da6c28aaSamw #include <sys/vfs.h>
37da6c28aaSamw #include <sys/acl.h>
38da6c28aaSamw #include <sys/file.h>
39da6c28aaSamw #include <sys/sunddi.h>
40da6c28aaSamw #include <sys/debug.h>
41da6c28aaSamw #include <sys/cmn_err.h>
42da6c28aaSamw #include <sys/vnode.h>
43da6c28aaSamw #include <sys/mode.h>
44da6c28aaSamw #include <sys/nvpair.h>
45da6c28aaSamw #include <sys/attr.h>
46da6c28aaSamw #include <sys/gfs.h>
47da6c28aaSamw #include <sys/mutex.h>
48da6c28aaSamw #include <fs/fs_subr.h>
49da6c28aaSamw #include <sys/kidmap.h>
50da6c28aaSamw 
51da6c28aaSamw typedef struct {
52da6c28aaSamw 	gfs_file_t	gfs_private;
53da6c28aaSamw 	xattr_view_t	xattr_view;
54da6c28aaSamw } xattr_file_t;
55da6c28aaSamw 
56da6c28aaSamw /* ARGSUSED */
57da6c28aaSamw static int
58da6c28aaSamw xattr_file_open(vnode_t **vpp, int flags, cred_t *cr, caller_context_t *ct)
59da6c28aaSamw {
60da6c28aaSamw 	xattr_file_t *np = (*vpp)->v_data;
61da6c28aaSamw 
62da6c28aaSamw 	if ((np->xattr_view == XATTR_VIEW_READONLY) && (flags & FWRITE))
63da6c28aaSamw 		return (EACCES);
64da6c28aaSamw 
65da6c28aaSamw 	return (0);
66da6c28aaSamw }
67da6c28aaSamw 
68da6c28aaSamw /* ARGSUSED */
69da6c28aaSamw static int
70da6c28aaSamw xattr_file_access(vnode_t *vp, int mode, int flags, cred_t *cr,
71da6c28aaSamw     caller_context_t *ct)
72da6c28aaSamw {
73da6c28aaSamw 	xattr_file_t *np = vp->v_data;
74da6c28aaSamw 
75da6c28aaSamw 	if ((np->xattr_view == XATTR_VIEW_READONLY) && (mode & VWRITE))
76da6c28aaSamw 		return (EACCES);
77da6c28aaSamw 
78da6c28aaSamw 	return (0);
79da6c28aaSamw }
80da6c28aaSamw 
81da6c28aaSamw /* ARGSUSED */
82da6c28aaSamw static int
83da6c28aaSamw xattr_file_close(vnode_t *vp, int flags, int count, offset_t off,
84da6c28aaSamw     cred_t *cr, caller_context_t *ct)
85da6c28aaSamw {
86da6c28aaSamw 	cleanlocks(vp, ddi_get_pid(), 0);
87da6c28aaSamw 	cleanshares(vp, ddi_get_pid());
88da6c28aaSamw 	return (0);
89da6c28aaSamw }
90da6c28aaSamw 
91da6c28aaSamw static int
92da6c28aaSamw xattr_common_fid(vnode_t *vp, fid_t *fidp, caller_context_t *ct)
93da6c28aaSamw {
94da6c28aaSamw 	xattr_fid_t	*xfidp;
95da6c28aaSamw 	vnode_t		*pvp, *savevp;
96da6c28aaSamw 	int		error;
97da6c28aaSamw 	uint16_t	orig_len;
98da6c28aaSamw 
99da6c28aaSamw 	if (fidp->fid_len < XATTR_FIDSZ) {
100da6c28aaSamw 		fidp->fid_len = XATTR_FIDSZ;
101da6c28aaSamw 		return (ENOSPC);
102da6c28aaSamw 	}
103da6c28aaSamw 
104da6c28aaSamw 	savevp = pvp = gfs_file_parent(vp);
105da6c28aaSamw 	mutex_enter(&savevp->v_lock);
106da6c28aaSamw 	if (pvp->v_flag & V_XATTRDIR) {
107da6c28aaSamw 		pvp = gfs_file_parent(pvp);
108da6c28aaSamw 	}
109da6c28aaSamw 	mutex_exit(&savevp->v_lock);
110da6c28aaSamw 
111da6c28aaSamw 	xfidp = (xattr_fid_t *)fidp;
112da6c28aaSamw 	orig_len = fidp->fid_len;
113da6c28aaSamw 	fidp->fid_len = sizeof (xfidp->parent_fid);
114da6c28aaSamw 
115da6c28aaSamw 	error = VOP_FID(pvp, fidp, ct);
116da6c28aaSamw 	if (error) {
117da6c28aaSamw 		fidp->fid_len = orig_len;
118da6c28aaSamw 		return (error);
119da6c28aaSamw 	}
120da6c28aaSamw 
121da6c28aaSamw 	xfidp->parent_len = fidp->fid_len;
122da6c28aaSamw 	fidp->fid_len = XATTR_FIDSZ;
123da6c28aaSamw 	xfidp->dir_offset = gfs_file_inode(vp);
124da6c28aaSamw 
125da6c28aaSamw 	return (0);
126da6c28aaSamw }
127da6c28aaSamw 
128da6c28aaSamw /* ARGSUSED */
129da6c28aaSamw static int
130da6c28aaSamw xattr_fill_nvlist(vnode_t *vp, xattr_view_t xattr_view, nvlist_t *nvlp,
131da6c28aaSamw     cred_t *cr, caller_context_t *ct)
132da6c28aaSamw {
133da6c28aaSamw 	int error;
134da6c28aaSamw 	f_attr_t attr;
135da6c28aaSamw 	uint64_t fsid;
136da6c28aaSamw 	xvattr_t xvattr;
137da6c28aaSamw 	xoptattr_t *xoap;	/* Pointer to optional attributes */
138da6c28aaSamw 	vnode_t *ppvp;
139da6c28aaSamw 	const char *domain;
140da6c28aaSamw 	uint32_t rid;
141da6c28aaSamw 
142da6c28aaSamw 	xva_init(&xvattr);
143da6c28aaSamw 
144da6c28aaSamw 	if ((xoap = xva_getxoptattr(&xvattr)) == NULL)
145da6c28aaSamw 		return (EINVAL);
146da6c28aaSamw 
147da6c28aaSamw 	/*
148da6c28aaSamw 	 * For detecting ephemeral uid/gid
149da6c28aaSamw 	 */
150da6c28aaSamw 	xvattr.xva_vattr.va_mask |= (AT_UID|AT_GID);
151da6c28aaSamw 
152da6c28aaSamw 	/*
153da6c28aaSamw 	 * We need to access the real fs object.
154da6c28aaSamw 	 * vp points to a GFS file; ppvp points to the real object.
155da6c28aaSamw 	 */
156da6c28aaSamw 	ppvp = gfs_file_parent(gfs_file_parent(vp));
157da6c28aaSamw 
158da6c28aaSamw 	/*
159da6c28aaSamw 	 * Iterate through the attrs associated with this view
160da6c28aaSamw 	 */
161da6c28aaSamw 
162da6c28aaSamw 	for (attr = 0; attr < F_ATTR_ALL; attr++) {
163da6c28aaSamw 		if (xattr_view != attr_to_xattr_view(attr)) {
164da6c28aaSamw 			continue;
165da6c28aaSamw 		}
166da6c28aaSamw 
167da6c28aaSamw 		switch (attr) {
168da6c28aaSamw 		case F_SYSTEM:
169da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_SYSTEM);
170da6c28aaSamw 			break;
171da6c28aaSamw 		case F_READONLY:
172da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_READONLY);
173da6c28aaSamw 			break;
174da6c28aaSamw 		case F_HIDDEN:
175da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_HIDDEN);
176da6c28aaSamw 			break;
177da6c28aaSamw 		case F_ARCHIVE:
178da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_ARCHIVE);
179da6c28aaSamw 			break;
180da6c28aaSamw 		case F_IMMUTABLE:
181da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_IMMUTABLE);
182da6c28aaSamw 			break;
183da6c28aaSamw 		case F_APPENDONLY:
184da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_APPENDONLY);
185da6c28aaSamw 			break;
186da6c28aaSamw 		case F_NOUNLINK:
187da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_NOUNLINK);
188da6c28aaSamw 			break;
189da6c28aaSamw 		case F_OPAQUE:
190da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_OPAQUE);
191da6c28aaSamw 			break;
192da6c28aaSamw 		case F_NODUMP:
193da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_NODUMP);
194da6c28aaSamw 			break;
195da6c28aaSamw 		case F_AV_QUARANTINED:
196da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_AV_QUARANTINED);
197da6c28aaSamw 			break;
198da6c28aaSamw 		case F_AV_MODIFIED:
199da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_AV_MODIFIED);
200da6c28aaSamw 			break;
201da6c28aaSamw 		case F_AV_SCANSTAMP:
202da6c28aaSamw 			if (ppvp->v_type == VREG)
203da6c28aaSamw 				XVA_SET_REQ(&xvattr, XAT_AV_SCANSTAMP);
204da6c28aaSamw 			break;
205da6c28aaSamw 		case F_CRTIME:
206da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_CREATETIME);
207da6c28aaSamw 			break;
208da6c28aaSamw 		case F_FSID:
209da6c28aaSamw 			fsid = (((uint64_t)vp->v_vfsp->vfs_fsid.val[0] << 32) |
210da6c28aaSamw 			    (uint64_t)(vp->v_vfsp->vfs_fsid.val[1] &
211da6c28aaSamw 			    0xffffffff));
212da6c28aaSamw 			VERIFY(nvlist_add_uint64(nvlp, attr_to_name(attr),
213da6c28aaSamw 			    fsid) == 0);
214da6c28aaSamw 			break;
215*7a286c47SDai Ngo 		case F_REPARSE:
216*7a286c47SDai Ngo 			XVA_SET_REQ(&xvattr, XAT_REPARSE);
217*7a286c47SDai Ngo 			break;
218da6c28aaSamw 		default:
219da6c28aaSamw 			break;
220da6c28aaSamw 		}
221da6c28aaSamw 	}
222da6c28aaSamw 
223da6c28aaSamw 	error = VOP_GETATTR(ppvp, &xvattr.xva_vattr, 0, cr, ct);
224da6c28aaSamw 	if (error)
225da6c28aaSamw 		return (error);
226da6c28aaSamw 
227da6c28aaSamw 	/*
228da6c28aaSamw 	 * Process all the optional attributes together here.  Notice that
229da6c28aaSamw 	 * xoap was set when the optional attribute bits were set above.
230da6c28aaSamw 	 */
231da6c28aaSamw 	if ((xvattr.xva_vattr.va_mask & AT_XVATTR) && xoap) {
232da6c28aaSamw 		if (XVA_ISSET_RTN(&xvattr, XAT_READONLY)) {
233da6c28aaSamw 			VERIFY(nvlist_add_boolean_value(nvlp,
234da6c28aaSamw 			    attr_to_name(F_READONLY),
235da6c28aaSamw 			    xoap->xoa_readonly) == 0);
236da6c28aaSamw 		}
237da6c28aaSamw 		if (XVA_ISSET_RTN(&xvattr, XAT_HIDDEN)) {
238da6c28aaSamw 			VERIFY(nvlist_add_boolean_value(nvlp,
239da6c28aaSamw 			    attr_to_name(F_HIDDEN),
240da6c28aaSamw 			    xoap->xoa_hidden) == 0);
241da6c28aaSamw 		}
242da6c28aaSamw 		if (XVA_ISSET_RTN(&xvattr, XAT_SYSTEM)) {
243da6c28aaSamw 			VERIFY(nvlist_add_boolean_value(nvlp,
244da6c28aaSamw 			    attr_to_name(F_SYSTEM),
245da6c28aaSamw 			    xoap->xoa_system) == 0);
246da6c28aaSamw 		}
247da6c28aaSamw 		if (XVA_ISSET_RTN(&xvattr, XAT_ARCHIVE)) {
248da6c28aaSamw 			VERIFY(nvlist_add_boolean_value(nvlp,
249da6c28aaSamw 			    attr_to_name(F_ARCHIVE),
250da6c28aaSamw 			    xoap->xoa_archive) == 0);
251da6c28aaSamw 		}
252da6c28aaSamw 		if (XVA_ISSET_RTN(&xvattr, XAT_IMMUTABLE)) {
253da6c28aaSamw 			VERIFY(nvlist_add_boolean_value(nvlp,
254da6c28aaSamw 			    attr_to_name(F_IMMUTABLE),
255da6c28aaSamw 			    xoap->xoa_immutable) == 0);
256da6c28aaSamw 		}
257da6c28aaSamw 		if (XVA_ISSET_RTN(&xvattr, XAT_NOUNLINK)) {
258da6c28aaSamw 			VERIFY(nvlist_add_boolean_value(nvlp,
259da6c28aaSamw 			    attr_to_name(F_NOUNLINK),
260da6c28aaSamw 			    xoap->xoa_nounlink) == 0);
261da6c28aaSamw 		}
262da6c28aaSamw 		if (XVA_ISSET_RTN(&xvattr, XAT_APPENDONLY)) {
263da6c28aaSamw 			VERIFY(nvlist_add_boolean_value(nvlp,
264da6c28aaSamw 			    attr_to_name(F_APPENDONLY),
265da6c28aaSamw 			    xoap->xoa_appendonly) == 0);
266da6c28aaSamw 		}
267da6c28aaSamw 		if (XVA_ISSET_RTN(&xvattr, XAT_NODUMP)) {
268da6c28aaSamw 			VERIFY(nvlist_add_boolean_value(nvlp,
269da6c28aaSamw 			    attr_to_name(F_NODUMP),
270da6c28aaSamw 			    xoap->xoa_nodump) == 0);
271da6c28aaSamw 		}
272da6c28aaSamw 		if (XVA_ISSET_RTN(&xvattr, XAT_OPAQUE)) {
273da6c28aaSamw 			VERIFY(nvlist_add_boolean_value(nvlp,
274da6c28aaSamw 			    attr_to_name(F_OPAQUE),
275da6c28aaSamw 			    xoap->xoa_opaque) == 0);
276da6c28aaSamw 		}
277da6c28aaSamw 		if (XVA_ISSET_RTN(&xvattr, XAT_AV_QUARANTINED)) {
278da6c28aaSamw 			VERIFY(nvlist_add_boolean_value(nvlp,
279da6c28aaSamw 			    attr_to_name(F_AV_QUARANTINED),
280da6c28aaSamw 			    xoap->xoa_av_quarantined) == 0);
281da6c28aaSamw 		}
282da6c28aaSamw 		if (XVA_ISSET_RTN(&xvattr, XAT_AV_MODIFIED)) {
283da6c28aaSamw 			VERIFY(nvlist_add_boolean_value(nvlp,
284da6c28aaSamw 			    attr_to_name(F_AV_MODIFIED),
285da6c28aaSamw 			    xoap->xoa_av_modified) == 0);
286da6c28aaSamw 		}
287da6c28aaSamw 		if (XVA_ISSET_RTN(&xvattr, XAT_AV_SCANSTAMP)) {
288da6c28aaSamw 			VERIFY(nvlist_add_uint8_array(nvlp,
289da6c28aaSamw 			    attr_to_name(F_AV_SCANSTAMP),
290da6c28aaSamw 			    xoap->xoa_av_scanstamp,
291da6c28aaSamw 			    sizeof (xoap->xoa_av_scanstamp)) == 0);
292da6c28aaSamw 		}
293da6c28aaSamw 		if (XVA_ISSET_RTN(&xvattr, XAT_CREATETIME)) {
294da6c28aaSamw 			VERIFY(nvlist_add_uint64_array(nvlp,
295da6c28aaSamw 			    attr_to_name(F_CRTIME),
296da6c28aaSamw 			    (uint64_t *)&(xoap->xoa_createtime),
297da6c28aaSamw 			    sizeof (xoap->xoa_createtime) /
298da6c28aaSamw 			    sizeof (uint64_t)) == 0);
299da6c28aaSamw 		}
300*7a286c47SDai Ngo 		if (XVA_ISSET_RTN(&xvattr, XAT_REPARSE)) {
301*7a286c47SDai Ngo 			VERIFY(nvlist_add_boolean_value(nvlp,
302*7a286c47SDai Ngo 			    attr_to_name(F_REPARSE),
303*7a286c47SDai Ngo 			    xoap->xoa_reparse) == 0);
304*7a286c47SDai Ngo 		}
305da6c28aaSamw 	}
306da6c28aaSamw 	/*
307da6c28aaSamw 	 * Check for optional ownersid/groupsid
308da6c28aaSamw 	 */
309da6c28aaSamw 
310da6c28aaSamw 	if (xvattr.xva_vattr.va_uid > MAXUID) {
311da6c28aaSamw 		nvlist_t *nvl_sid;
312da6c28aaSamw 
313da6c28aaSamw 		if (nvlist_alloc(&nvl_sid, NV_UNIQUE_NAME, KM_SLEEP))
314da6c28aaSamw 			return (ENOMEM);
315da6c28aaSamw 
316bda89588Sjp151216 		if (kidmap_getsidbyuid(crgetzone(cr), xvattr.xva_vattr.va_uid,
317da6c28aaSamw 		    &domain, &rid) == 0) {
318da6c28aaSamw 			VERIFY(nvlist_add_string(nvl_sid,
319da6c28aaSamw 			    SID_DOMAIN, domain) == 0);
320da6c28aaSamw 			VERIFY(nvlist_add_uint32(nvl_sid, SID_RID, rid) == 0);
321da6c28aaSamw 			VERIFY(nvlist_add_nvlist(nvlp, attr_to_name(F_OWNERSID),
322da6c28aaSamw 			    nvl_sid) == 0);
323da6c28aaSamw 		}
324da6c28aaSamw 		nvlist_free(nvl_sid);
325da6c28aaSamw 	}
326da6c28aaSamw 	if (xvattr.xva_vattr.va_gid > MAXUID) {
327da6c28aaSamw 		nvlist_t *nvl_sid;
328da6c28aaSamw 
329da6c28aaSamw 		if (nvlist_alloc(&nvl_sid, NV_UNIQUE_NAME, KM_SLEEP))
330da6c28aaSamw 			return (ENOMEM);
331da6c28aaSamw 
332bda89588Sjp151216 		if (kidmap_getsidbygid(crgetzone(cr), xvattr.xva_vattr.va_gid,
333da6c28aaSamw 		    &domain, &rid) == 0) {
334da6c28aaSamw 			VERIFY(nvlist_add_string(nvl_sid,
335da6c28aaSamw 			    SID_DOMAIN, domain) == 0);
336da6c28aaSamw 			VERIFY(nvlist_add_uint32(nvl_sid, SID_RID, rid) == 0);
337da6c28aaSamw 			VERIFY(nvlist_add_nvlist(nvlp, attr_to_name(F_GROUPSID),
338da6c28aaSamw 			    nvl_sid) == 0);
339da6c28aaSamw 		}
340da6c28aaSamw 		nvlist_free(nvl_sid);
341da6c28aaSamw 	}
342da6c28aaSamw 
343da6c28aaSamw 	return (0);
344da6c28aaSamw }
345da6c28aaSamw 
346da6c28aaSamw /*
347da6c28aaSamw  * The size of a sysattr file is the size of the nvlist that will be
348da6c28aaSamw  * returned by xattr_file_read().  A call to xattr_file_write() could
349da6c28aaSamw  * change the size of that nvlist.  That size is not stored persistently
350da6c28aaSamw  * so xattr_fill_nvlist() calls VOP_GETATTR so that it can be calculated.
351da6c28aaSamw  */
352da6c28aaSamw static int
353da6c28aaSamw xattr_file_size(vnode_t *vp, xattr_view_t xattr_view, size_t *size,
354da6c28aaSamw     cred_t *cr, caller_context_t *ct)
355da6c28aaSamw {
356da6c28aaSamw 	nvlist_t *nvl;
357da6c28aaSamw 
358da6c28aaSamw 	if (nvlist_alloc(&nvl, NV_UNIQUE_NAME, KM_SLEEP)) {
359da6c28aaSamw 		return (ENOMEM);
360da6c28aaSamw 	}
361da6c28aaSamw 
362da6c28aaSamw 	if (xattr_fill_nvlist(vp, xattr_view, nvl, cr, ct)) {
363da6c28aaSamw 		nvlist_free(nvl);
364da6c28aaSamw 		return (EFAULT);
365da6c28aaSamw 	}
366da6c28aaSamw 
367da6c28aaSamw 	VERIFY(nvlist_size(nvl, size, NV_ENCODE_XDR) == 0);
368da6c28aaSamw 	nvlist_free(nvl);
369da6c28aaSamw 	return (0);
370da6c28aaSamw }
371da6c28aaSamw 
372da6c28aaSamw /* ARGSUSED */
373da6c28aaSamw static int
374da6c28aaSamw xattr_file_getattr(vnode_t *vp, vattr_t *vap, int flags, cred_t *cr,
375da6c28aaSamw     caller_context_t *ct)
376da6c28aaSamw {
377da6c28aaSamw 	xattr_file_t *np = vp->v_data;
378da6c28aaSamw 	timestruc_t now;
379da6c28aaSamw 	size_t size;
380da6c28aaSamw 	int error;
381da6c28aaSamw 	vnode_t *pvp;
382da6c28aaSamw 	vattr_t pvattr;
383da6c28aaSamw 
384da6c28aaSamw 	vap->va_type = VREG;
385da6c28aaSamw 	vap->va_mode = MAKEIMODE(vap->va_type,
386da6c28aaSamw 	    (np->xattr_view == XATTR_VIEW_READONLY ? 0444 : 0644));
387da6c28aaSamw 	vap->va_nodeid = gfs_file_inode(vp);
388da6c28aaSamw 	vap->va_nlink = 1;
389da6c28aaSamw 	pvp = gfs_file_parent(vp);
390da6c28aaSamw 	(void) memset(&pvattr, 0, sizeof (pvattr));
391da6c28aaSamw 	pvattr.va_mask = AT_CTIME|AT_MTIME;
392da6c28aaSamw 	error = VOP_GETATTR(pvp, &pvattr, flags, cr, ct);
393da6c28aaSamw 	if (error) {
394da6c28aaSamw 		return (error);
395da6c28aaSamw 	}
396da6c28aaSamw 	vap->va_ctime = pvattr.va_ctime;
397da6c28aaSamw 	vap->va_mtime = pvattr.va_mtime;
398da6c28aaSamw 	gethrestime(&now);
399da6c28aaSamw 	vap->va_atime = now;
400da6c28aaSamw 	vap->va_uid = 0;
401da6c28aaSamw 	vap->va_gid = 0;
402da6c28aaSamw 	vap->va_rdev = 0;
403da6c28aaSamw 	vap->va_blksize = DEV_BSIZE;
404da6c28aaSamw 	vap->va_seq = 0;
405da6c28aaSamw 	vap->va_fsid = vp->v_vfsp->vfs_dev;
406da6c28aaSamw 	error = xattr_file_size(vp, np->xattr_view, &size, cr, ct);
407da6c28aaSamw 	vap->va_size = size;
408da6c28aaSamw 	vap->va_nblocks = howmany(vap->va_size, vap->va_blksize);
409da6c28aaSamw 	return (error);
410da6c28aaSamw }
411da6c28aaSamw 
412da6c28aaSamw /* ARGSUSED */
413da6c28aaSamw static int
414da6c28aaSamw xattr_file_read(vnode_t *vp, uio_t *uiop, int ioflag, cred_t *cr,
415da6c28aaSamw     caller_context_t *ct)
416da6c28aaSamw {
417da6c28aaSamw 	xattr_file_t *np = vp->v_data;
418da6c28aaSamw 	xattr_view_t xattr_view = np->xattr_view;
419da6c28aaSamw 	char *buf;
420da6c28aaSamw 	size_t filesize;
421da6c28aaSamw 	nvlist_t *nvl;
422da6c28aaSamw 	int error;
423da6c28aaSamw 
424da6c28aaSamw 	/*
425da6c28aaSamw 	 * Validate file offset and fasttrack empty reads
426da6c28aaSamw 	 */
427da6c28aaSamw 	if (uiop->uio_loffset < (offset_t)0)
428da6c28aaSamw 		return (EINVAL);
429da6c28aaSamw 
430da6c28aaSamw 	if (uiop->uio_resid == 0)
431da6c28aaSamw 		return (0);
432da6c28aaSamw 
433da6c28aaSamw 	if (nvlist_alloc(&nvl, NV_UNIQUE_NAME, KM_SLEEP))
434da6c28aaSamw 		return (ENOMEM);
435da6c28aaSamw 
436da6c28aaSamw 	if (xattr_fill_nvlist(vp, xattr_view, nvl, cr, ct)) {
437da6c28aaSamw 		nvlist_free(nvl);
438da6c28aaSamw 		return (EFAULT);
439da6c28aaSamw 	}
440da6c28aaSamw 
441da6c28aaSamw 	VERIFY(nvlist_size(nvl, &filesize, NV_ENCODE_XDR) == 0);
442da6c28aaSamw 
443da6c28aaSamw 	if (uiop->uio_loffset >= filesize) {
444da6c28aaSamw 		nvlist_free(nvl);
445da6c28aaSamw 		return (0);
446da6c28aaSamw 	}
447da6c28aaSamw 
448da6c28aaSamw 	buf = kmem_alloc(filesize, KM_SLEEP);
449da6c28aaSamw 	VERIFY(nvlist_pack(nvl, &buf, &filesize, NV_ENCODE_XDR,
450da6c28aaSamw 	    KM_SLEEP) == 0);
451da6c28aaSamw 
452da6c28aaSamw 	error = uiomove((caddr_t)buf, filesize, UIO_READ, uiop);
453da6c28aaSamw 	kmem_free(buf, filesize);
454da6c28aaSamw 	nvlist_free(nvl);
455da6c28aaSamw 	return (error);
456da6c28aaSamw }
457da6c28aaSamw 
458da6c28aaSamw /* ARGSUSED */
459da6c28aaSamw static int
460da6c28aaSamw xattr_file_write(vnode_t *vp, uio_t *uiop, int ioflag, cred_t *cr,
461da6c28aaSamw     caller_context_t *ct)
462da6c28aaSamw {
463da6c28aaSamw 	int error = 0;
464da6c28aaSamw 	char *buf;
465da6c28aaSamw 	char *domain;
466da6c28aaSamw 	uint32_t rid;
467da6c28aaSamw 	ssize_t size = uiop->uio_resid;
468da6c28aaSamw 	nvlist_t *nvp;
469da6c28aaSamw 	nvpair_t *pair = NULL;
470da6c28aaSamw 	vnode_t *ppvp;
471da6c28aaSamw 	xvattr_t xvattr;
472da6c28aaSamw 	xoptattr_t *xoap = NULL;	/* Pointer to optional attributes */
473da6c28aaSamw 
4749660e5cbSJanice Chang 	if (vfs_has_feature(vp->v_vfsp, VFSFT_XVATTR) == 0)
4759660e5cbSJanice Chang 		return (EINVAL);
4769660e5cbSJanice Chang 
477da6c28aaSamw 	/*
478da6c28aaSamw 	 * Validate file offset and size.
479da6c28aaSamw 	 */
480da6c28aaSamw 	if (uiop->uio_loffset < (offset_t)0)
481da6c28aaSamw 		return (EINVAL);
482da6c28aaSamw 
483da6c28aaSamw 	if (size == 0)
484da6c28aaSamw 		return (EINVAL);
485da6c28aaSamw 
486da6c28aaSamw 	xva_init(&xvattr);
487da6c28aaSamw 
488da6c28aaSamw 	if ((xoap = xva_getxoptattr(&xvattr)) == NULL) {
489da6c28aaSamw 		return (EINVAL);
490da6c28aaSamw 	}
491da6c28aaSamw 
492da6c28aaSamw 	/*
493da6c28aaSamw 	 * Copy and unpack the nvlist
494da6c28aaSamw 	 */
495da6c28aaSamw 	buf = kmem_alloc(size, KM_SLEEP);
496da6c28aaSamw 	if (uiomove((caddr_t)buf, size, UIO_WRITE, uiop)) {
497da6c28aaSamw 		return (EFAULT);
498da6c28aaSamw 	}
499da6c28aaSamw 
500da6c28aaSamw 	if (nvlist_unpack(buf, size, &nvp, KM_SLEEP) != 0) {
501da6c28aaSamw 		kmem_free(buf, size);
502da6c28aaSamw 		uiop->uio_resid = size;
503da6c28aaSamw 		return (EINVAL);
504da6c28aaSamw 	}
505da6c28aaSamw 	kmem_free(buf, size);
506da6c28aaSamw 
507da6c28aaSamw 	/*
508da6c28aaSamw 	 * Fasttrack empty writes (nvlist with no nvpairs)
509da6c28aaSamw 	 */
510da6c28aaSamw 	if (nvlist_next_nvpair(nvp, NULL) == 0)
511da6c28aaSamw 		return (0);
512da6c28aaSamw 
513da6c28aaSamw 	ppvp = gfs_file_parent(gfs_file_parent(vp));
514da6c28aaSamw 
515da6c28aaSamw 	while (pair = nvlist_next_nvpair(nvp, pair)) {
516da6c28aaSamw 		data_type_t type;
517da6c28aaSamw 		f_attr_t attr;
518da6c28aaSamw 		boolean_t value;
519da6c28aaSamw 		uint64_t *time, *times;
520da6c28aaSamw 		uint_t elem, nelems;
521da6c28aaSamw 		nvlist_t *nvp_sid;
522da6c28aaSamw 		uint8_t *scanstamp;
523da6c28aaSamw 
524da6c28aaSamw 		/*
525da6c28aaSamw 		 * Validate the name and type of each attribute.
526da6c28aaSamw 		 * Log any unknown names and continue.  This will
527da6c28aaSamw 		 * help if additional attributes are added later.
528da6c28aaSamw 		 */
529da6c28aaSamw 		type = nvpair_type(pair);
530da6c28aaSamw 		if ((attr = name_to_attr(nvpair_name(pair))) == F_ATTR_INVAL) {
531da6c28aaSamw 			cmn_err(CE_WARN, "Unknown attribute %s",
532da6c28aaSamw 			    nvpair_name(pair));
533da6c28aaSamw 			continue;
534da6c28aaSamw 		}
535da6c28aaSamw 
536da6c28aaSamw 		/*
537da6c28aaSamw 		 * Verify nvlist type matches required type and view is OK
538da6c28aaSamw 		 */
539da6c28aaSamw 
540da6c28aaSamw 		if (type != attr_to_data_type(attr) ||
541da6c28aaSamw 		    (attr_to_xattr_view(attr) == XATTR_VIEW_READONLY)) {
542da6c28aaSamw 			nvlist_free(nvp);
543da6c28aaSamw 			return (EINVAL);
544da6c28aaSamw 		}
545da6c28aaSamw 
546da6c28aaSamw 		/*
547da6c28aaSamw 		 * For OWNERSID/GROUPSID make sure the target
548da6c28aaSamw 		 * file system support ephemeral ID's
549da6c28aaSamw 		 */
550da6c28aaSamw 		if ((attr == F_OWNERSID || attr == F_GROUPSID) &&
551da6c28aaSamw 		    (!(vp->v_vfsp->vfs_flag & VFS_XID))) {
552da6c28aaSamw 			nvlist_free(nvp);
553da6c28aaSamw 			return (EINVAL);
554da6c28aaSamw 		}
555da6c28aaSamw 
556da6c28aaSamw 		/*
557da6c28aaSamw 		 * Retrieve data from nvpair
558da6c28aaSamw 		 */
559da6c28aaSamw 		switch (type) {
560da6c28aaSamw 		case DATA_TYPE_BOOLEAN_VALUE:
561da6c28aaSamw 			if (nvpair_value_boolean_value(pair, &value)) {
562da6c28aaSamw 				nvlist_free(nvp);
563da6c28aaSamw 				return (EINVAL);
564da6c28aaSamw 			}
565da6c28aaSamw 			break;
566da6c28aaSamw 		case DATA_TYPE_UINT64_ARRAY:
567da6c28aaSamw 			if (nvpair_value_uint64_array(pair, &times, &nelems)) {
568da6c28aaSamw 				nvlist_free(nvp);
569da6c28aaSamw 				return (EINVAL);
570da6c28aaSamw 			}
571da6c28aaSamw 			break;
572da6c28aaSamw 		case DATA_TYPE_NVLIST:
573da6c28aaSamw 			if (nvpair_value_nvlist(pair, &nvp_sid)) {
574da6c28aaSamw 				nvlist_free(nvp);
575da6c28aaSamw 				return (EINVAL);
576da6c28aaSamw 			}
577da6c28aaSamw 			break;
578da6c28aaSamw 		case DATA_TYPE_UINT8_ARRAY:
579da6c28aaSamw 			if (nvpair_value_uint8_array(pair,
580da6c28aaSamw 			    &scanstamp, &nelems)) {
581da6c28aaSamw 				nvlist_free(nvp);
582da6c28aaSamw 				return (EINVAL);
583da6c28aaSamw 			}
584da6c28aaSamw 			break;
585da6c28aaSamw 		default:
586da6c28aaSamw 			nvlist_free(nvp);
587da6c28aaSamw 			return (EINVAL);
588da6c28aaSamw 		}
589da6c28aaSamw 
590da6c28aaSamw 		switch (attr) {
591da6c28aaSamw 		/*
592da6c28aaSamw 		 * If we have several similar optional attributes to
593da6c28aaSamw 		 * process then we should do it all together here so that
594da6c28aaSamw 		 * xoap and the requested bitmap can be set in one place.
595da6c28aaSamw 		 */
596da6c28aaSamw 		case F_READONLY:
597da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_READONLY);
598da6c28aaSamw 			xoap->xoa_readonly = value;
599da6c28aaSamw 			break;
600da6c28aaSamw 		case F_HIDDEN:
601da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_HIDDEN);
602da6c28aaSamw 			xoap->xoa_hidden = value;
603da6c28aaSamw 			break;
604da6c28aaSamw 		case F_SYSTEM:
605da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_SYSTEM);
606da6c28aaSamw 			xoap->xoa_system = value;
607da6c28aaSamw 			break;
608da6c28aaSamw 		case F_ARCHIVE:
609da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_ARCHIVE);
610da6c28aaSamw 			xoap->xoa_archive = value;
611da6c28aaSamw 			break;
612da6c28aaSamw 		case F_IMMUTABLE:
613da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_IMMUTABLE);
614da6c28aaSamw 			xoap->xoa_immutable = value;
615da6c28aaSamw 			break;
616da6c28aaSamw 		case F_NOUNLINK:
617da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_NOUNLINK);
618da6c28aaSamw 			xoap->xoa_nounlink = value;
619da6c28aaSamw 			break;
620da6c28aaSamw 		case F_APPENDONLY:
621da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_APPENDONLY);
622da6c28aaSamw 			xoap->xoa_appendonly = value;
623da6c28aaSamw 			break;
624da6c28aaSamw 		case F_NODUMP:
625da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_NODUMP);
626da6c28aaSamw 			xoap->xoa_nodump = value;
627da6c28aaSamw 			break;
628da6c28aaSamw 		case F_AV_QUARANTINED:
629da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_AV_QUARANTINED);
630da6c28aaSamw 			xoap->xoa_av_quarantined = value;
631da6c28aaSamw 			break;
632da6c28aaSamw 		case F_AV_MODIFIED:
633da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_AV_MODIFIED);
634da6c28aaSamw 			xoap->xoa_av_modified = value;
635da6c28aaSamw 			break;
636da6c28aaSamw 		case F_CRTIME:
637da6c28aaSamw 			XVA_SET_REQ(&xvattr, XAT_CREATETIME);
638da6c28aaSamw 			time = (uint64_t *)&(xoap->xoa_createtime);
639da6c28aaSamw 			for (elem = 0; elem < nelems; elem++)
640da6c28aaSamw 				*time++ = times[elem];
641da6c28aaSamw 			break;
642da6c28aaSamw 		case F_OWNERSID:
643da6c28aaSamw 		case F_GROUPSID:
644da6c28aaSamw 			if (nvlist_lookup_string(nvp_sid, SID_DOMAIN,
645da6c28aaSamw 			    &domain) || nvlist_lookup_uint32(nvp_sid, SID_RID,
646da6c28aaSamw 			    &rid)) {
647da6c28aaSamw 				nvlist_free(nvp);
648da6c28aaSamw 				return (EINVAL);
649da6c28aaSamw 			}
650da6c28aaSamw 
651da6c28aaSamw 			/*
652da6c28aaSamw 			 * Now map domain+rid to ephemeral id's
653da6c28aaSamw 			 *
654da6c28aaSamw 			 * If mapping fails, then the uid/gid will
655da6c28aaSamw 			 * be set to UID_NOBODY by Winchester.
656da6c28aaSamw 			 */
657da6c28aaSamw 
658da6c28aaSamw 			if (attr == F_OWNERSID) {
659bda89588Sjp151216 				(void) kidmap_getuidbysid(crgetzone(cr), domain,
660bda89588Sjp151216 				    rid, &xvattr.xva_vattr.va_uid);
661da6c28aaSamw 				xvattr.xva_vattr.va_mask |= AT_UID;
662da6c28aaSamw 			} else {
663bda89588Sjp151216 				(void) kidmap_getgidbysid(crgetzone(cr), domain,
664bda89588Sjp151216 				    rid, &xvattr.xva_vattr.va_gid);
665da6c28aaSamw 				xvattr.xva_vattr.va_mask |= AT_GID;
666da6c28aaSamw 			}
667da6c28aaSamw 			break;
668da6c28aaSamw 		case F_AV_SCANSTAMP:
669da6c28aaSamw 			if (ppvp->v_type == VREG) {
670da6c28aaSamw 				XVA_SET_REQ(&xvattr, XAT_AV_SCANSTAMP);
671da6c28aaSamw 				(void) memcpy(xoap->xoa_av_scanstamp,
672da6c28aaSamw 				    scanstamp, nelems);
673da6c28aaSamw 			} else {
674da6c28aaSamw 				nvlist_free(nvp);
675da6c28aaSamw 				return (EINVAL);
676da6c28aaSamw 			}
677da6c28aaSamw 			break;
678*7a286c47SDai Ngo 		case F_REPARSE:
679*7a286c47SDai Ngo 			XVA_SET_REQ(&xvattr, XAT_REPARSE);
680*7a286c47SDai Ngo 			xoap->xoa_reparse = value;
681*7a286c47SDai Ngo 			break;
682da6c28aaSamw 		default:
683da6c28aaSamw 			break;
684da6c28aaSamw 		}
685da6c28aaSamw 	}
686da6c28aaSamw 
687da6c28aaSamw 	ppvp = gfs_file_parent(gfs_file_parent(vp));
688da6c28aaSamw 	error = VOP_SETATTR(ppvp, &xvattr.xva_vattr, 0, cr, ct);
689da6c28aaSamw 	if (error)
690da6c28aaSamw 		uiop->uio_resid = size;
691da6c28aaSamw 
692da6c28aaSamw 	nvlist_free(nvp);
693da6c28aaSamw 	return (error);
694da6c28aaSamw }
695da6c28aaSamw 
696da6c28aaSamw static int
697da6c28aaSamw xattr_file_pathconf(vnode_t *vp, int cmd, ulong_t *valp, cred_t *cr,
698da6c28aaSamw     caller_context_t *ct)
699da6c28aaSamw {
700da6c28aaSamw 	switch (cmd) {
701da6c28aaSamw 	case _PC_XATTR_EXISTS:
702da6c28aaSamw 	case _PC_SATTR_ENABLED:
703da6c28aaSamw 	case _PC_SATTR_EXISTS:
704da6c28aaSamw 		*valp = 0;
705da6c28aaSamw 		return (0);
706da6c28aaSamw 	default:
707da6c28aaSamw 		return (fs_pathconf(vp, cmd, valp, cr, ct));
708da6c28aaSamw 	}
709da6c28aaSamw }
710da6c28aaSamw 
711da6c28aaSamw vnodeops_t *xattr_file_ops;
712da6c28aaSamw 
713da6c28aaSamw static const fs_operation_def_t xattr_file_tops[] = {
714da6c28aaSamw 	{ VOPNAME_OPEN,		{ .vop_open = xattr_file_open }		},
715da6c28aaSamw 	{ VOPNAME_CLOSE,	{ .vop_close = xattr_file_close }	},
716da6c28aaSamw 	{ VOPNAME_READ,		{ .vop_read = xattr_file_read }		},
717da6c28aaSamw 	{ VOPNAME_WRITE,	{ .vop_write = xattr_file_write }	},
718da6c28aaSamw 	{ VOPNAME_IOCTL,	{ .error = fs_ioctl }			},
719da6c28aaSamw 	{ VOPNAME_GETATTR,	{ .vop_getattr = xattr_file_getattr }	},
720da6c28aaSamw 	{ VOPNAME_ACCESS,	{ .vop_access = xattr_file_access }	},
721da6c28aaSamw 	{ VOPNAME_READDIR,	{ .error = fs_notdir }			},
722da6c28aaSamw 	{ VOPNAME_SEEK,		{ .vop_seek = fs_seek }			},
723da6c28aaSamw 	{ VOPNAME_INACTIVE,	{ .vop_inactive = gfs_vop_inactive }	},
724da6c28aaSamw 	{ VOPNAME_FID,		{ .vop_fid = xattr_common_fid }		},
725da6c28aaSamw 	{ VOPNAME_PATHCONF,	{ .vop_pathconf = xattr_file_pathconf }	},
726da6c28aaSamw 	{ VOPNAME_PUTPAGE,	{ .error = fs_putpage }			},
727da6c28aaSamw 	{ VOPNAME_FSYNC,	{ .error = fs_fsync }			},
728da6c28aaSamw 	{ NULL }
729da6c28aaSamw };
730da6c28aaSamw 
731da6c28aaSamw vnode_t *
732da6c28aaSamw xattr_mkfile(vnode_t *pvp, xattr_view_t xattr_view)
733da6c28aaSamw {
734da6c28aaSamw 	vnode_t *vp;
735da6c28aaSamw 	xattr_file_t *np;
736da6c28aaSamw 
737da6c28aaSamw 	vp = gfs_file_create(sizeof (xattr_file_t), pvp, xattr_file_ops);
738da6c28aaSamw 	np = vp->v_data;
739da6c28aaSamw 	np->xattr_view = xattr_view;
740da6c28aaSamw 	vp->v_flag |= V_SYSATTR;
741da6c28aaSamw 	return (vp);
742da6c28aaSamw }
743da6c28aaSamw 
744da6c28aaSamw vnode_t *
745da6c28aaSamw xattr_mkfile_ro(vnode_t *pvp)
746da6c28aaSamw {
747da6c28aaSamw 	return (xattr_mkfile(pvp, XATTR_VIEW_READONLY));
748da6c28aaSamw }
749da6c28aaSamw 
750da6c28aaSamw vnode_t *
751da6c28aaSamw xattr_mkfile_rw(vnode_t *pvp)
752da6c28aaSamw {
753da6c28aaSamw 	return (xattr_mkfile(pvp, XATTR_VIEW_READWRITE));
754da6c28aaSamw }
755da6c28aaSamw 
756da6c28aaSamw vnodeops_t *xattr_dir_ops;
757da6c28aaSamw 
758da6c28aaSamw static gfs_dirent_t xattr_dirents[] = {
759da6c28aaSamw 	{ VIEW_READONLY, xattr_mkfile_ro, GFS_CACHE_VNODE, },
760da6c28aaSamw 	{ VIEW_READWRITE, xattr_mkfile_rw, GFS_CACHE_VNODE, },
761da6c28aaSamw 	{ NULL },
762da6c28aaSamw };
763da6c28aaSamw 
764da6c28aaSamw #define	XATTRDIR_NENTS	((sizeof (xattr_dirents) / sizeof (gfs_dirent_t)) - 1)
765da6c28aaSamw 
766da6c28aaSamw static int
767da6c28aaSamw is_sattr_name(char *s)
768da6c28aaSamw {
769da6c28aaSamw 	int i;
770da6c28aaSamw 
771da6c28aaSamw 	for (i = 0; i < XATTRDIR_NENTS; ++i) {
772da6c28aaSamw 		if (strcmp(s, xattr_dirents[i].gfse_name) == 0) {
773da6c28aaSamw 			return (1);
774da6c28aaSamw 		}
775da6c28aaSamw 	}
776da6c28aaSamw 	return (0);
777da6c28aaSamw }
778da6c28aaSamw 
779b38f0970Sck153898 /*
780b38f0970Sck153898  * Given the name of an extended attribute file, determine if there is a
781b38f0970Sck153898  * normalization conflict with a sysattr view name.
782b38f0970Sck153898  */
783b38f0970Sck153898 int
784b38f0970Sck153898 xattr_sysattr_casechk(char *s)
785b38f0970Sck153898 {
786b38f0970Sck153898 	int i;
787b38f0970Sck153898 
788b38f0970Sck153898 	for (i = 0; i < XATTRDIR_NENTS; ++i) {
789b38f0970Sck153898 		if (strcasecmp(s, xattr_dirents[i].gfse_name) == 0)
790b38f0970Sck153898 			return (1);
791b38f0970Sck153898 	}
792b38f0970Sck153898 	return (0);
793b38f0970Sck153898 }
794b38f0970Sck153898 
795da6c28aaSamw static int
796da6c28aaSamw xattr_copy(vnode_t *sdvp, char *snm, vnode_t *tdvp, char *tnm,
797da6c28aaSamw     cred_t *cr, caller_context_t *ct)
798da6c28aaSamw {
799da6c28aaSamw 	xvattr_t xvattr;
800da6c28aaSamw 	vnode_t *pdvp;
801da6c28aaSamw 	int error;
802da6c28aaSamw 
803da6c28aaSamw 	/*
804da6c28aaSamw 	 * Only copy system attrs if the views are the same
805da6c28aaSamw 	 */
806da6c28aaSamw 	if (strcmp(snm, tnm) != 0)
807da6c28aaSamw 		return (EINVAL);
808da6c28aaSamw 
809da6c28aaSamw 	xva_init(&xvattr);
810da6c28aaSamw 
811da6c28aaSamw 	XVA_SET_REQ(&xvattr, XAT_SYSTEM);
812da6c28aaSamw 	XVA_SET_REQ(&xvattr, XAT_READONLY);
813da6c28aaSamw 	XVA_SET_REQ(&xvattr, XAT_HIDDEN);
814da6c28aaSamw 	XVA_SET_REQ(&xvattr, XAT_ARCHIVE);
815da6c28aaSamw 	XVA_SET_REQ(&xvattr, XAT_APPENDONLY);
816da6c28aaSamw 	XVA_SET_REQ(&xvattr, XAT_NOUNLINK);
817da6c28aaSamw 	XVA_SET_REQ(&xvattr, XAT_IMMUTABLE);
818da6c28aaSamw 	XVA_SET_REQ(&xvattr, XAT_NODUMP);
819da6c28aaSamw 	XVA_SET_REQ(&xvattr, XAT_AV_MODIFIED);
820da6c28aaSamw 	XVA_SET_REQ(&xvattr, XAT_AV_QUARANTINED);
821da6c28aaSamw 	XVA_SET_REQ(&xvattr, XAT_CREATETIME);
822*7a286c47SDai Ngo 	XVA_SET_REQ(&xvattr, XAT_REPARSE);
823da6c28aaSamw 
824da6c28aaSamw 	pdvp = gfs_file_parent(sdvp);
825da6c28aaSamw 	error = VOP_GETATTR(pdvp, &xvattr.xva_vattr, 0, cr, ct);
826da6c28aaSamw 	if (error)
827da6c28aaSamw 		return (error);
828da6c28aaSamw 
829da6c28aaSamw 	pdvp = gfs_file_parent(tdvp);
830da6c28aaSamw 	error = VOP_SETATTR(pdvp, &xvattr.xva_vattr, 0, cr, ct);
831da6c28aaSamw 	return (error);
832da6c28aaSamw }
833da6c28aaSamw 
834da6c28aaSamw static int
835da6c28aaSamw xattr_dir_realdir(vnode_t *dvp, vnode_t **realdvp, int lookup_flags,
836da6c28aaSamw     cred_t *cr, caller_context_t *ct)
837da6c28aaSamw {
838da6c28aaSamw 	vnode_t *pvp;
839da6c28aaSamw 	int error;
840da6c28aaSamw 	struct pathname pn;
841da6c28aaSamw 	char *startnm = "";
842da6c28aaSamw 
843da6c28aaSamw 	*realdvp = NULL;
844da6c28aaSamw 
845da6c28aaSamw 	pvp = gfs_file_parent(dvp);
846da6c28aaSamw 
847da6c28aaSamw 	error = pn_get(startnm, UIO_SYSSPACE, &pn);
848da6c28aaSamw 	if (error) {
849da6c28aaSamw 		VN_RELE(pvp);
850da6c28aaSamw 		return (error);
851da6c28aaSamw 	}
852da6c28aaSamw 
853da6c28aaSamw 	/*
854da6c28aaSamw 	 * Set the LOOKUP_HAVE_SYSATTR_DIR flag so that we don't get into an
855da6c28aaSamw 	 * infinite loop with fop_lookup calling back to xattr_dir_lookup.
856da6c28aaSamw 	 */
857da6c28aaSamw 	lookup_flags |= LOOKUP_HAVE_SYSATTR_DIR;
858da6c28aaSamw 	error = VOP_LOOKUP(pvp, startnm, realdvp, &pn, lookup_flags,
859da6c28aaSamw 	    rootvp, cr, ct, NULL, NULL);
860da6c28aaSamw 	pn_free(&pn);
861da6c28aaSamw 
862da6c28aaSamw 	return (error);
863da6c28aaSamw }
864da6c28aaSamw 
865da6c28aaSamw /* ARGSUSED */
866da6c28aaSamw static int
867da6c28aaSamw xattr_dir_open(vnode_t **vpp, int flags, cred_t *cr, caller_context_t *ct)
868da6c28aaSamw {
869da6c28aaSamw 	if (flags & FWRITE) {
870da6c28aaSamw 		return (EACCES);
871da6c28aaSamw 	}
872da6c28aaSamw 
873da6c28aaSamw 	return (0);
874da6c28aaSamw }
875da6c28aaSamw 
876da6c28aaSamw /* ARGSUSED */
877da6c28aaSamw static int
878da6c28aaSamw xattr_dir_close(vnode_t *vpp, int flags, int count, offset_t off, cred_t *cr,
879da6c28aaSamw     caller_context_t *ct)
880da6c28aaSamw {
881da6c28aaSamw 	return (0);
882da6c28aaSamw }
883da6c28aaSamw 
88400ba712dSGarima Tripathi /*
88500ba712dSGarima Tripathi  * Retrieve the attributes on an xattr directory.  If there is a "real"
88600ba712dSGarima Tripathi  * xattr directory, use that.  Otherwise, get the attributes (represented
88700ba712dSGarima Tripathi  * by PARENT_ATTRMASK) from the "parent" node and fill in the rest.  Note
88800ba712dSGarima Tripathi  * that VOP_GETATTR() could turn off bits in the va_mask.
88900ba712dSGarima Tripathi  */
89000ba712dSGarima Tripathi 
89100ba712dSGarima Tripathi #define	PARENT_ATTRMASK	(AT_UID|AT_GID|AT_RDEV|AT_CTIME|AT_MTIME)
89200ba712dSGarima Tripathi 
893da6c28aaSamw /* ARGSUSED */
894da6c28aaSamw static int
895da6c28aaSamw xattr_dir_getattr(vnode_t *vp, vattr_t *vap, int flags, cred_t *cr,
896da6c28aaSamw     caller_context_t *ct)
897da6c28aaSamw {
898da6c28aaSamw 	timestruc_t now;
899da6c28aaSamw 	vnode_t *pvp;
900da6c28aaSamw 	int error;
901da6c28aaSamw 
902da6c28aaSamw 	error = xattr_dir_realdir(vp, &pvp, LOOKUP_XATTR, cr, ct);
903da6c28aaSamw 	if (error == 0) {
904da6c28aaSamw 		error = VOP_GETATTR(pvp, vap, 0, cr, ct);
905da6c28aaSamw 		VN_RELE(pvp);
906da6c28aaSamw 		if (error) {
907da6c28aaSamw 			return (error);
908da6c28aaSamw 		}
909da6c28aaSamw 		vap->va_nlink += XATTRDIR_NENTS;
910da6c28aaSamw 		vap->va_size += XATTRDIR_NENTS;
911da6c28aaSamw 		return (0);
912da6c28aaSamw 	}
913da6c28aaSamw 
914da6c28aaSamw 	/*
915da6c28aaSamw 	 * There is no real xattr directory.  Cobble together
91600ba712dSGarima Tripathi 	 * an entry using info from the parent object (if needed)
91700ba712dSGarima Tripathi 	 * plus information common to all xattrs.
918da6c28aaSamw 	 */
91900ba712dSGarima Tripathi 	if (vap->va_mask & PARENT_ATTRMASK) {
92000ba712dSGarima Tripathi 		vattr_t pvattr;
92100ba712dSGarima Tripathi 		uint_t  off_bits;
92200ba712dSGarima Tripathi 
923da6c28aaSamw 		pvp = gfs_file_parent(vp);
924da6c28aaSamw 		(void) memset(&pvattr, 0, sizeof (pvattr));
92500ba712dSGarima Tripathi 		pvattr.va_mask = PARENT_ATTRMASK;
926da6c28aaSamw 		error = VOP_GETATTR(pvp, &pvattr, 0, cr, ct);
927da6c28aaSamw 		if (error) {
928da6c28aaSamw 			return (error);
929da6c28aaSamw 		}
93000ba712dSGarima Tripathi 
93100ba712dSGarima Tripathi 		/*
93200ba712dSGarima Tripathi 		 * VOP_GETATTR() might have turned off some bits in
93300ba712dSGarima Tripathi 		 * pvattr.va_mask.  This means that the underlying
93400ba712dSGarima Tripathi 		 * file system couldn't process those attributes.
93500ba712dSGarima Tripathi 		 * We need to make sure those bits get turned off
93600ba712dSGarima Tripathi 		 * in the vattr_t structure that gets passed back
93700ba712dSGarima Tripathi 		 * to the caller.  Figure out which bits were turned
93800ba712dSGarima Tripathi 		 * off (if any) then set pvattr.va_mask before it
93900ba712dSGarima Tripathi 		 * gets copied to the vattr_t that the caller sees.
94000ba712dSGarima Tripathi 		 */
94100ba712dSGarima Tripathi 		off_bits = (pvattr.va_mask ^ PARENT_ATTRMASK) & PARENT_ATTRMASK;
94200ba712dSGarima Tripathi 		pvattr.va_mask = vap->va_mask & ~off_bits;
943da6c28aaSamw 		*vap = pvattr;
94400ba712dSGarima Tripathi 	}
94500ba712dSGarima Tripathi 
946da6c28aaSamw 	vap->va_type = VDIR;
947da6c28aaSamw 	vap->va_mode = MAKEIMODE(vap->va_type, S_ISVTX | 0777);
948da6c28aaSamw 	vap->va_fsid = vp->v_vfsp->vfs_dev;
949da6c28aaSamw 	vap->va_nodeid = gfs_file_inode(vp);
950da6c28aaSamw 	vap->va_nlink = XATTRDIR_NENTS+2;
951da6c28aaSamw 	vap->va_size = vap->va_nlink;
952da6c28aaSamw 	gethrestime(&now);
953da6c28aaSamw 	vap->va_atime = now;
954da6c28aaSamw 	vap->va_blksize = 0;
955da6c28aaSamw 	vap->va_nblocks = 0;
956da6c28aaSamw 	vap->va_seq = 0;
957da6c28aaSamw 	return (0);
958da6c28aaSamw }
959da6c28aaSamw 
960da6c28aaSamw static int
961da6c28aaSamw xattr_dir_setattr(vnode_t *vp, vattr_t *vap, int flags, cred_t *cr,
962da6c28aaSamw     caller_context_t *ct)
963da6c28aaSamw {
964da6c28aaSamw 	vnode_t *realvp;
965da6c28aaSamw 	int error;
966da6c28aaSamw 
967da6c28aaSamw 	/*
968da6c28aaSamw 	 * If there is a real xattr directory, do the setattr there.
969da6c28aaSamw 	 * Otherwise, just return success.  The GFS directory is transient,
970da6c28aaSamw 	 * and any setattr changes can disappear anyway.
971da6c28aaSamw 	 */
972da6c28aaSamw 	error = xattr_dir_realdir(vp, &realvp, LOOKUP_XATTR, cr, ct);
973da6c28aaSamw 	if (error == 0) {
974da6c28aaSamw 		error = VOP_SETATTR(realvp, vap, flags, cr, ct);
975da6c28aaSamw 		VN_RELE(realvp);
976da6c28aaSamw 	}
977da6c28aaSamw 	if (error == ENOENT) {
978da6c28aaSamw 		error = 0;
979da6c28aaSamw 	}
980da6c28aaSamw 	return (error);
981da6c28aaSamw }
982da6c28aaSamw 
983da6c28aaSamw /* ARGSUSED */
984da6c28aaSamw static int
985da6c28aaSamw xattr_dir_access(vnode_t *vp, int mode, int flags, cred_t *cr,
986da6c28aaSamw     caller_context_t *ct)
987da6c28aaSamw {
988da6c28aaSamw 	int error;
989da6c28aaSamw 	vnode_t *realvp = NULL;
990da6c28aaSamw 
991da6c28aaSamw 	if (mode & VWRITE) {
992da6c28aaSamw 		return (EACCES);
993da6c28aaSamw 	}
994da6c28aaSamw 
995da6c28aaSamw 	error = xattr_dir_realdir(vp, &realvp, LOOKUP_XATTR, cr, ct);
996da6c28aaSamw 
997da6c28aaSamw 	if (realvp)
998da6c28aaSamw 		VN_RELE(realvp);
999da6c28aaSamw 
1000da6c28aaSamw 	/*
1001da6c28aaSamw 	 * No real xattr dir isn't an error
1002da6c28aaSamw 	 * an error of EINVAL indicates attributes on attributes
1003da6c28aaSamw 	 * are not supported.  In that case just allow access to the
1004da6c28aaSamw 	 * transient directory.
1005da6c28aaSamw 	 */
1006da6c28aaSamw 	return ((error == ENOENT || error == EINVAL) ? 0 : error);
1007da6c28aaSamw }
1008da6c28aaSamw 
1009da6c28aaSamw static int
1010da6c28aaSamw xattr_dir_create(vnode_t *dvp, char *name, vattr_t *vap, vcexcl_t excl,
1011da6c28aaSamw     int mode, vnode_t **vpp, cred_t *cr, int flag, caller_context_t *ct,
1012da6c28aaSamw     vsecattr_t *vsecp)
1013da6c28aaSamw {
1014da6c28aaSamw 	vnode_t *pvp;
1015da6c28aaSamw 	int error;
1016da6c28aaSamw 
1017da6c28aaSamw 	*vpp = NULL;
1018da6c28aaSamw 
1019da6c28aaSamw 	/*
1020da6c28aaSamw 	 * Don't allow creation of extended attributes with sysattr names.
1021da6c28aaSamw 	 */
1022da6c28aaSamw 	if (is_sattr_name(name)) {
1023ab04eb8eStimh 		return (gfs_dir_lookup(dvp, name, vpp, cr, 0, NULL, NULL));
1024da6c28aaSamw 	}
1025da6c28aaSamw 
1026da6c28aaSamw 	error = xattr_dir_realdir(dvp, &pvp, LOOKUP_XATTR|CREATE_XATTR_DIR,
1027da6c28aaSamw 	    cr, ct);
1028da6c28aaSamw 	if (error == 0) {
1029da6c28aaSamw 		error = VOP_CREATE(pvp, name, vap, excl, mode, vpp, cr, flag,
1030da6c28aaSamw 		    ct, vsecp);
1031da6c28aaSamw 		VN_RELE(pvp);
1032da6c28aaSamw 	}
1033da6c28aaSamw 	return (error);
1034da6c28aaSamw }
1035da6c28aaSamw 
1036da6c28aaSamw static int
1037da6c28aaSamw xattr_dir_remove(vnode_t *dvp, char *name, cred_t *cr, caller_context_t *ct,
1038da6c28aaSamw     int flags)
1039da6c28aaSamw {
1040da6c28aaSamw 	vnode_t *pvp;
1041da6c28aaSamw 	int error;
1042da6c28aaSamw 
1043da6c28aaSamw 	if (is_sattr_name(name)) {
1044da6c28aaSamw 		return (EACCES);
1045da6c28aaSamw 	}
1046da6c28aaSamw 
1047da6c28aaSamw 	error = xattr_dir_realdir(dvp, &pvp, LOOKUP_XATTR, cr, ct);
1048da6c28aaSamw 	if (error == 0) {
1049da6c28aaSamw 		error = VOP_REMOVE(pvp, name, cr, ct, flags);
1050da6c28aaSamw 		VN_RELE(pvp);
1051da6c28aaSamw 	}
1052da6c28aaSamw 	return (error);
1053da6c28aaSamw }
1054da6c28aaSamw 
1055da6c28aaSamw static int
1056da6c28aaSamw xattr_dir_link(vnode_t *tdvp, vnode_t *svp, char *name, cred_t *cr,
1057da6c28aaSamw     caller_context_t *ct, int flags)
1058da6c28aaSamw {
1059da6c28aaSamw 	vnode_t *pvp;
1060da6c28aaSamw 	int error;
1061da6c28aaSamw 
1062da6c28aaSamw 	if (svp->v_flag & V_SYSATTR) {
1063da6c28aaSamw 		return (EINVAL);
1064da6c28aaSamw 	}
1065da6c28aaSamw 
1066da6c28aaSamw 	error = xattr_dir_realdir(tdvp, &pvp, LOOKUP_XATTR, cr, ct);
1067da6c28aaSamw 	if (error == 0) {
1068da6c28aaSamw 		error = VOP_LINK(pvp, svp, name, cr, ct, flags);
1069da6c28aaSamw 		VN_RELE(pvp);
1070da6c28aaSamw 	}
1071da6c28aaSamw 	return (error);
1072da6c28aaSamw }
1073da6c28aaSamw 
1074da6c28aaSamw static int
1075da6c28aaSamw xattr_dir_rename(vnode_t *sdvp, char *snm, vnode_t *tdvp, char *tnm,
1076da6c28aaSamw     cred_t *cr, caller_context_t *ct, int flags)
1077da6c28aaSamw {
1078da6c28aaSamw 	vnode_t *spvp, *tpvp;
1079da6c28aaSamw 	int error;
1080da6c28aaSamw 	int held_tgt;
1081da6c28aaSamw 
1082da6c28aaSamw 	if (is_sattr_name(snm) || is_sattr_name(tnm))
1083da6c28aaSamw 		return (xattr_copy(sdvp, snm, tdvp, tnm, cr, ct));
1084da6c28aaSamw 	/*
1085da6c28aaSamw 	 * We know that sdvp is a GFS dir, or we wouldn't be here.
1086da6c28aaSamw 	 * Get the real unnamed directory.
1087da6c28aaSamw 	 */
1088da6c28aaSamw 	error = xattr_dir_realdir(sdvp, &spvp, LOOKUP_XATTR, cr, ct);
1089da6c28aaSamw 	if (error) {
1090da6c28aaSamw 		return (error);
1091da6c28aaSamw 	}
1092da6c28aaSamw 
1093da6c28aaSamw 	if (sdvp == tdvp) {
1094da6c28aaSamw 		/*
1095da6c28aaSamw 		 * If the source and target are the same GFS directory, the
1096da6c28aaSamw 		 * underlying unnamed source and target dir will be the same.
1097da6c28aaSamw 		 */
1098da6c28aaSamw 		tpvp = spvp;
1099da6c28aaSamw 		VN_HOLD(tpvp);
1100da6c28aaSamw 		held_tgt = 1;
1101da6c28aaSamw 	} else if (tdvp->v_flag & V_SYSATTR) {
1102da6c28aaSamw 		/*
1103da6c28aaSamw 		 * If the target dir is a different GFS directory,
1104da6c28aaSamw 		 * find its underlying unnamed dir.
1105da6c28aaSamw 		 */
1106da6c28aaSamw 		error = xattr_dir_realdir(tdvp, &tpvp, LOOKUP_XATTR, cr, ct);
1107da6c28aaSamw 		if (error) {
1108da6c28aaSamw 			VN_RELE(spvp);
1109da6c28aaSamw 			return (error);
1110da6c28aaSamw 		}
1111da6c28aaSamw 		held_tgt = 1;
1112da6c28aaSamw 	} else {
1113da6c28aaSamw 		/*
1114da6c28aaSamw 		 * Target dir is outside of GFS, pass it on through.
1115da6c28aaSamw 		 */
1116da6c28aaSamw 		tpvp = tdvp;
1117da6c28aaSamw 		held_tgt = 0;
1118da6c28aaSamw 	}
1119da6c28aaSamw 
1120da6c28aaSamw 	error = VOP_RENAME(spvp, snm, tpvp, tnm, cr, ct, flags);
1121da6c28aaSamw 
1122da6c28aaSamw 	if (held_tgt) {
1123da6c28aaSamw 		VN_RELE(tpvp);
1124da6c28aaSamw 	}
1125da6c28aaSamw 	VN_RELE(spvp);
1126da6c28aaSamw 
1127da6c28aaSamw 	return (error);
1128da6c28aaSamw }
1129da6c28aaSamw 
1130b38f0970Sck153898 /*
1131b38f0970Sck153898  * readdir_xattr_casecmp: given a system attribute name, see if there
1132b38f0970Sck153898  * is a real xattr with the same normalized name.
1133b38f0970Sck153898  */
1134b38f0970Sck153898 static int
1135b38f0970Sck153898 readdir_xattr_casecmp(vnode_t *dvp, char *nm, cred_t *cr, caller_context_t *ct,
1136b38f0970Sck153898     int *eflags)
1137b38f0970Sck153898 {
1138b38f0970Sck153898 	int error;
1139b38f0970Sck153898 	vnode_t *vp;
1140b38f0970Sck153898 	struct pathname pn;
1141b38f0970Sck153898 
1142b38f0970Sck153898 	*eflags = 0;
1143b38f0970Sck153898 
1144b38f0970Sck153898 	error = pn_get(nm, UIO_SYSSPACE, &pn);
1145b38f0970Sck153898 	if (error == 0) {
1146ab04eb8eStimh 		error = VOP_LOOKUP(dvp, nm, &vp, &pn,
1147ab04eb8eStimh 		    FIGNORECASE, rootvp, cr, ct, NULL, NULL);
1148b38f0970Sck153898 		if (error == 0) {
1149b38f0970Sck153898 			*eflags = ED_CASE_CONFLICT;
1150b38f0970Sck153898 			VN_RELE(vp);
1151b38f0970Sck153898 		} else if (error == ENOENT) {
1152b38f0970Sck153898 			error = 0;
1153b38f0970Sck153898 		}
1154b38f0970Sck153898 		pn_free(&pn);
1155b38f0970Sck153898 	}
1156b38f0970Sck153898 
1157b38f0970Sck153898 	return (error);
1158b38f0970Sck153898 }
1159b38f0970Sck153898 
1160da6c28aaSamw static int
1161da6c28aaSamw xattr_dir_readdir(vnode_t *dvp, uio_t *uiop, cred_t *cr, int *eofp,
1162da6c28aaSamw     caller_context_t *ct, int flags)
1163da6c28aaSamw {
1164da6c28aaSamw 	vnode_t *pvp;
1165da6c28aaSamw 	int error;
1166f5f5959bSck153898 	int local_eof;
1167da6c28aaSamw 	int reset_off = 0;
1168da6c28aaSamw 	int has_xattrs = 0;
1169da6c28aaSamw 
1170da6c28aaSamw 	if (eofp == NULL) {
1171da6c28aaSamw 		eofp = &local_eof;
1172da6c28aaSamw 	}
1173f5f5959bSck153898 	*eofp = 0;
1174da6c28aaSamw 
1175da6c28aaSamw 	/*
1176da6c28aaSamw 	 * See if there is a real extended attribute directory.
1177da6c28aaSamw 	 */
1178da6c28aaSamw 	error = xattr_dir_realdir(dvp, &pvp, LOOKUP_XATTR, cr, ct);
1179da6c28aaSamw 	if (error == 0) {
1180da6c28aaSamw 		has_xattrs = 1;
1181da6c28aaSamw 	}
1182da6c28aaSamw 
1183da6c28aaSamw 	/*
1184da6c28aaSamw 	 * Start by reading up the static entries.
1185da6c28aaSamw 	 */
1186da6c28aaSamw 	if (uiop->uio_loffset == 0) {
1187b38f0970Sck153898 		ino64_t pino, ino;
1188b38f0970Sck153898 		offset_t off;
1189b38f0970Sck153898 		gfs_dir_t *dp = dvp->v_data;
1190b38f0970Sck153898 		gfs_readdir_state_t gstate;
1191b38f0970Sck153898 
1192da6c28aaSamw 		if (has_xattrs) {
1193da6c28aaSamw 			/*
1194da6c28aaSamw 			 * If there is a real xattr dir, skip . and ..
1195da6c28aaSamw 			 * in the GFS dir.  We'll pick them up below
1196da6c28aaSamw 			 * when we call into the underlying fs.
1197da6c28aaSamw 			 */
1198da6c28aaSamw 			uiop->uio_loffset = GFS_STATIC_ENTRY_OFFSET;
1199da6c28aaSamw 		}
1200b38f0970Sck153898 		error = gfs_get_parent_ino(dvp, cr, ct, &pino, &ino);
1201b38f0970Sck153898 		if (error == 0) {
1202b38f0970Sck153898 			error = gfs_readdir_init(&gstate, dp->gfsd_maxlen, 1,
1203b38f0970Sck153898 			    uiop, pino, ino, flags);
1204da6c28aaSamw 		}
1205b38f0970Sck153898 		if (error) {
1206b38f0970Sck153898 			if (has_xattrs)
1207b38f0970Sck153898 				VN_RELE(pvp);
1208da6c28aaSamw 			return (error);
1209da6c28aaSamw 		}
1210b38f0970Sck153898 
1211b38f0970Sck153898 		while ((error = gfs_readdir_pred(&gstate, uiop, &off)) == 0 &&
1212b38f0970Sck153898 		    !*eofp) {
1213b38f0970Sck153898 			if (off >= 0 && off < dp->gfsd_nstatic) {
1214ab04eb8eStimh 				int eflags;
1215b38f0970Sck153898 
1216b38f0970Sck153898 				/*
1217b38f0970Sck153898 				 * Check to see if this sysattr set name has a
1218b38f0970Sck153898 				 * case-insensitive conflict with a real xattr
1219b38f0970Sck153898 				 * name.
1220b38f0970Sck153898 				 */
1221ab04eb8eStimh 				eflags = 0;
1222b38f0970Sck153898 				if ((flags & V_RDDIR_ENTFLAGS) && has_xattrs) {
1223b38f0970Sck153898 					error = readdir_xattr_casecmp(pvp,
1224b38f0970Sck153898 					    dp->gfsd_static[off].gfse_name,
1225b38f0970Sck153898 					    cr, ct, &eflags);
1226b38f0970Sck153898 					if (error)
1227b38f0970Sck153898 						break;
1228b38f0970Sck153898 				}
1229b38f0970Sck153898 				ino = dp->gfsd_inode(dvp, off);
1230b38f0970Sck153898 
1231b38f0970Sck153898 				error = gfs_readdir_emit(&gstate, uiop, off,
1232b38f0970Sck153898 				    ino, dp->gfsd_static[off].gfse_name,
1233b38f0970Sck153898 				    eflags);
1234b38f0970Sck153898 				if (error)
1235b38f0970Sck153898 					break;
1236b38f0970Sck153898 			} else {
1237b38f0970Sck153898 				*eofp = 1;
1238b38f0970Sck153898 			}
1239b38f0970Sck153898 		}
1240b38f0970Sck153898 
1241b38f0970Sck153898 		error = gfs_readdir_fini(&gstate, error, eofp, *eofp);
1242b38f0970Sck153898 		if (error) {
1243b38f0970Sck153898 			if (has_xattrs)
1244b38f0970Sck153898 				VN_RELE(pvp);
1245b38f0970Sck153898 			return (error);
1246b38f0970Sck153898 		}
1247b38f0970Sck153898 
1248da6c28aaSamw 		/*
1249da6c28aaSamw 		 * We must read all of the static entries in the first
1250da6c28aaSamw 		 * call.  Otherwise we won't know if uio_loffset in a
1251da6c28aaSamw 		 * subsequent call refers to the static entries or to those
1252da6c28aaSamw 		 * in an underlying fs.
1253da6c28aaSamw 		 */
1254e802abbdSTim Haley 		if (*eofp == 0)
1255e802abbdSTim Haley 			return (EINVAL);
1256da6c28aaSamw 		reset_off = 1;
1257da6c28aaSamw 	}
1258da6c28aaSamw 
1259da6c28aaSamw 	if (!has_xattrs) {
1260da6c28aaSamw 		*eofp = 1;
1261da6c28aaSamw 		return (0);
1262da6c28aaSamw 	}
1263da6c28aaSamw 
1264da6c28aaSamw 	*eofp = 0;
1265da6c28aaSamw 	if (reset_off) {
1266da6c28aaSamw 		uiop->uio_loffset = 0;
1267da6c28aaSamw 	}
1268da6c28aaSamw 	(void) VOP_RWLOCK(pvp, V_WRITELOCK_FALSE, NULL);
1269da6c28aaSamw 	error = VOP_READDIR(pvp, uiop, cr, eofp, ct, flags);
1270da6c28aaSamw 	VOP_RWUNLOCK(pvp, V_WRITELOCK_FALSE, NULL);
1271da6c28aaSamw 	VN_RELE(pvp);
1272da6c28aaSamw 
1273da6c28aaSamw 	return (error);
1274da6c28aaSamw }
1275da6c28aaSamw 
1276da6c28aaSamw /* ARGSUSED */
1277da6c28aaSamw static void
1278da6c28aaSamw xattr_dir_inactive(vnode_t *vp, cred_t *cr, caller_context_t *ct)
1279da6c28aaSamw {
1280da6c28aaSamw 	gfs_file_t *fp;
1281da6c28aaSamw 
1282da6c28aaSamw 	fp = gfs_dir_inactive(vp);
1283da6c28aaSamw 	if (fp != NULL) {
1284da6c28aaSamw 		kmem_free(fp, fp->gfs_size);
1285da6c28aaSamw 	}
1286da6c28aaSamw }
1287da6c28aaSamw 
1288da6c28aaSamw static int
1289da6c28aaSamw xattr_dir_pathconf(vnode_t *vp, int cmd, ulong_t *valp, cred_t *cr,
1290da6c28aaSamw     caller_context_t *ct)
1291da6c28aaSamw {
1292da6c28aaSamw 	switch (cmd) {
1293da6c28aaSamw 	case _PC_XATTR_EXISTS:
1294da6c28aaSamw 	case _PC_SATTR_ENABLED:
1295da6c28aaSamw 	case _PC_SATTR_EXISTS:
1296da6c28aaSamw 		*valp = 0;
1297da6c28aaSamw 		return (0);
1298da6c28aaSamw 	default:
1299da6c28aaSamw 		return (fs_pathconf(vp, cmd, valp, cr, ct));
1300da6c28aaSamw 	}
1301da6c28aaSamw }
1302da6c28aaSamw 
1303da6c28aaSamw static const fs_operation_def_t xattr_dir_tops[] = {
1304da6c28aaSamw 	{ VOPNAME_OPEN,		{ .vop_open = xattr_dir_open }		},
1305da6c28aaSamw 	{ VOPNAME_CLOSE,	{ .vop_close = xattr_dir_close }	},
1306da6c28aaSamw 	{ VOPNAME_IOCTL,	{ .error = fs_inval }			},
1307da6c28aaSamw 	{ VOPNAME_GETATTR,	{ .vop_getattr = xattr_dir_getattr }	},
1308da6c28aaSamw 	{ VOPNAME_SETATTR,	{ .vop_setattr = xattr_dir_setattr }	},
1309da6c28aaSamw 	{ VOPNAME_ACCESS,	{ .vop_access = xattr_dir_access }	},
1310da6c28aaSamw 	{ VOPNAME_READDIR,	{ .vop_readdir = xattr_dir_readdir }	},
1311da6c28aaSamw 	{ VOPNAME_LOOKUP,	{ .vop_lookup = gfs_vop_lookup }	},
1312da6c28aaSamw 	{ VOPNAME_CREATE,	{ .vop_create = xattr_dir_create }	},
1313da6c28aaSamw 	{ VOPNAME_REMOVE,	{ .vop_remove = xattr_dir_remove }	},
1314da6c28aaSamw 	{ VOPNAME_LINK,		{ .vop_link = xattr_dir_link }		},
1315da6c28aaSamw 	{ VOPNAME_RENAME,	{ .vop_rename = xattr_dir_rename }	},
1316da6c28aaSamw 	{ VOPNAME_MKDIR,	{ .error = fs_inval }			},
1317da6c28aaSamw 	{ VOPNAME_SEEK,		{ .vop_seek = fs_seek }			},
1318da6c28aaSamw 	{ VOPNAME_INACTIVE,	{ .vop_inactive = xattr_dir_inactive }	},
1319da6c28aaSamw 	{ VOPNAME_FID,		{ .vop_fid = xattr_common_fid }		},
1320da6c28aaSamw 	{ VOPNAME_PATHCONF,	{ .vop_pathconf = xattr_dir_pathconf }	},
1321da6c28aaSamw 	{ NULL, NULL }
1322da6c28aaSamw };
1323da6c28aaSamw 
1324da6c28aaSamw static gfs_opsvec_t xattr_opsvec[] = {
1325da6c28aaSamw 	{ "xattr dir", xattr_dir_tops, &xattr_dir_ops },
1326da6c28aaSamw 	{ "system attributes", xattr_file_tops, &xattr_file_ops },
1327da6c28aaSamw 	{ NULL, NULL, NULL }
1328da6c28aaSamw };
1329da6c28aaSamw 
1330da6c28aaSamw static int
1331da6c28aaSamw xattr_lookup_cb(vnode_t *vp, const char *nm, vnode_t **vpp, ino64_t *inop,
1332ab04eb8eStimh     cred_t *cr, int flags, int *deflags, pathname_t *rpnp)
1333da6c28aaSamw {
1334da6c28aaSamw 	vnode_t *pvp;
1335da6c28aaSamw 	struct pathname pn;
1336da6c28aaSamw 	int error;
1337da6c28aaSamw 
1338da6c28aaSamw 	*vpp = NULL;
1339da6c28aaSamw 	*inop = 0;
1340da6c28aaSamw 
1341da6c28aaSamw 	error = xattr_dir_realdir(vp, &pvp, LOOKUP_XATTR|CREATE_XATTR_DIR,
1342da6c28aaSamw 	    cr, NULL);
1343da6c28aaSamw 
1344da6c28aaSamw 	/*
1345da6c28aaSamw 	 * Return ENOENT for EACCES requests during lookup.  Once an
1346da6c28aaSamw 	 * attribute create is attempted EACCES will be returned.
1347da6c28aaSamw 	 */
1348da6c28aaSamw 	if (error) {
1349da6c28aaSamw 		if (error == EACCES)
1350da6c28aaSamw 			return (ENOENT);
1351da6c28aaSamw 		return (error);
1352da6c28aaSamw 	}
1353da6c28aaSamw 
1354da6c28aaSamw 	error = pn_get((char *)nm, UIO_SYSSPACE, &pn);
1355da6c28aaSamw 	if (error == 0) {
1356ab04eb8eStimh 		error = VOP_LOOKUP(pvp, (char *)nm, vpp, &pn, flags, rootvp,
1357ab04eb8eStimh 		    cr, NULL, deflags, rpnp);
1358da6c28aaSamw 		pn_free(&pn);
1359da6c28aaSamw 	}
1360da6c28aaSamw 	VN_RELE(pvp);
1361da6c28aaSamw 
1362da6c28aaSamw 	return (error);
1363da6c28aaSamw }
1364da6c28aaSamw 
1365da6c28aaSamw /* ARGSUSED */
1366da6c28aaSamw static ino64_t
1367da6c28aaSamw xattrdir_do_ino(vnode_t *vp, int index)
1368da6c28aaSamw {
1369da6c28aaSamw 	/*
1370da6c28aaSamw 	 * We use index 0 for the directory fid.  Start
1371da6c28aaSamw 	 * the file numbering at 1.
1372da6c28aaSamw 	 */
1373da6c28aaSamw 	return ((ino64_t)index+1);
1374da6c28aaSamw }
1375da6c28aaSamw 
1376da6c28aaSamw void
1377da6c28aaSamw xattr_init(void)
1378da6c28aaSamw {
1379da6c28aaSamw 	VERIFY(gfs_make_opsvec(xattr_opsvec) == 0);
1380da6c28aaSamw }
1381da6c28aaSamw 
1382da6c28aaSamw int
1383da6c28aaSamw xattr_dir_lookup(vnode_t *dvp, vnode_t **vpp, int flags, cred_t *cr)
1384da6c28aaSamw {
1385da6c28aaSamw 	int error = 0;
1386da6c28aaSamw 
1387da6c28aaSamw 	*vpp = NULL;
1388da6c28aaSamw 
1389da6c28aaSamw 	if (dvp->v_type != VDIR && dvp->v_type != VREG)
1390da6c28aaSamw 		return (EINVAL);
1391da6c28aaSamw 
1392da6c28aaSamw 	mutex_enter(&dvp->v_lock);
1393da6c28aaSamw 
1394da6c28aaSamw 	/*
1395da6c28aaSamw 	 * If we're already in sysattr space, don't allow creation
1396da6c28aaSamw 	 * of another level of sysattrs.
1397da6c28aaSamw 	 */
1398da6c28aaSamw 	if (dvp->v_flag & V_SYSATTR) {
1399da6c28aaSamw 		mutex_exit(&dvp->v_lock);
1400da6c28aaSamw 		return (EINVAL);
1401da6c28aaSamw 	}
1402da6c28aaSamw 
1403da6c28aaSamw 	if (dvp->v_xattrdir != NULL) {
1404da6c28aaSamw 		*vpp = dvp->v_xattrdir;
1405da6c28aaSamw 		VN_HOLD(*vpp);
1406da6c28aaSamw 	} else {
1407da6c28aaSamw 		ulong_t val;
1408da6c28aaSamw 		int xattrs_allowed = dvp->v_vfsp->vfs_flag & VFS_XATTR;
1409da6c28aaSamw 		int sysattrs_allowed = 1;
1410da6c28aaSamw 
1411da6c28aaSamw 		/*
1412da6c28aaSamw 		 * We have to drop the lock on dvp.  gfs_dir_create will
1413da6c28aaSamw 		 * grab it for a VN_HOLD.
1414da6c28aaSamw 		 */
1415da6c28aaSamw 		mutex_exit(&dvp->v_lock);
1416da6c28aaSamw 
1417da6c28aaSamw 		/*
1418da6c28aaSamw 		 * If dvp allows xattr creation, but not sysattr
1419da6c28aaSamw 		 * creation, return the real xattr dir vp. We can't
1420da6c28aaSamw 		 * use the vfs feature mask here because _PC_SATTR_ENABLED
1421da6c28aaSamw 		 * has vnode-level granularity (e.g. .zfs).
1422da6c28aaSamw 		 */
1423da6c28aaSamw 		error = VOP_PATHCONF(dvp, _PC_SATTR_ENABLED, &val, cr, NULL);
1424da6c28aaSamw 		if (error != 0 || val == 0)
1425da6c28aaSamw 			sysattrs_allowed = 0;
1426da6c28aaSamw 
1427da6c28aaSamw 		if (!xattrs_allowed && !sysattrs_allowed)
1428da6c28aaSamw 			return (EINVAL);
1429da6c28aaSamw 
1430da6c28aaSamw 		if (!sysattrs_allowed) {
1431da6c28aaSamw 			struct pathname pn;
1432da6c28aaSamw 			char *nm = "";
1433da6c28aaSamw 
1434da6c28aaSamw 			error = pn_get(nm, UIO_SYSSPACE, &pn);
1435da6c28aaSamw 			if (error)
1436da6c28aaSamw 				return (error);
1437da6c28aaSamw 			error = VOP_LOOKUP(dvp, nm, vpp, &pn,
1438da6c28aaSamw 			    flags|LOOKUP_HAVE_SYSATTR_DIR, rootvp, cr, NULL,
1439da6c28aaSamw 			    NULL, NULL);
1440da6c28aaSamw 			pn_free(&pn);
1441da6c28aaSamw 			return (error);
1442da6c28aaSamw 		}
1443da6c28aaSamw 
1444da6c28aaSamw 		/*
1445da6c28aaSamw 		 * Note that we act as if we were given CREATE_XATTR_DIR,
1446da6c28aaSamw 		 * but only for creation of the GFS directory.
1447da6c28aaSamw 		 */
1448da6c28aaSamw 		*vpp = gfs_dir_create(
1449da6c28aaSamw 		    sizeof (gfs_dir_t), dvp, xattr_dir_ops, xattr_dirents,
1450da6c28aaSamw 		    xattrdir_do_ino, MAXNAMELEN, NULL, xattr_lookup_cb);
1451da6c28aaSamw 		mutex_enter(&dvp->v_lock);
1452da6c28aaSamw 		if (dvp->v_xattrdir != NULL) {
1453da6c28aaSamw 			/*
1454da6c28aaSamw 			 * We lost the race to create the xattr dir.
1455da6c28aaSamw 			 * Destroy this one, use the winner.  We can't
1456da6c28aaSamw 			 * just call VN_RELE(*vpp), because the vnode
1457da6c28aaSamw 			 * is only partially initialized.
1458da6c28aaSamw 			 */
1459da6c28aaSamw 			gfs_dir_t *dp = (*vpp)->v_data;
1460da6c28aaSamw 
1461da6c28aaSamw 			ASSERT((*vpp)->v_count == 1);
1462da6c28aaSamw 			vn_free(*vpp);
1463da6c28aaSamw 
1464da6c28aaSamw 			mutex_destroy(&dp->gfsd_lock);
1465da6c28aaSamw 			kmem_free(dp->gfsd_static,
1466da6c28aaSamw 			    dp->gfsd_nstatic * sizeof (gfs_dirent_t));
1467da6c28aaSamw 			kmem_free(dp, dp->gfsd_file.gfs_size);
1468da6c28aaSamw 
1469da6c28aaSamw 			/*
1470da6c28aaSamw 			 * There is an implied VN_HOLD(dvp) here.  We should
1471da6c28aaSamw 			 * be doing a VN_RELE(dvp) to clean up the reference
1472da6c28aaSamw 			 * from *vpp, and then a VN_HOLD(dvp) for the new
1473da6c28aaSamw 			 * reference.  Instead, we just leave the count alone.
1474da6c28aaSamw 			 */
1475da6c28aaSamw 
1476da6c28aaSamw 			*vpp = dvp->v_xattrdir;
1477da6c28aaSamw 			VN_HOLD(*vpp);
1478da6c28aaSamw 		} else {
1479da6c28aaSamw 			(*vpp)->v_flag |= (V_XATTRDIR|V_SYSATTR);
1480da6c28aaSamw 			dvp->v_xattrdir = *vpp;
1481da6c28aaSamw 		}
1482da6c28aaSamw 	}
1483da6c28aaSamw 	mutex_exit(&dvp->v_lock);
1484da6c28aaSamw 
1485da6c28aaSamw 	return (error);
1486da6c28aaSamw }
1487da6c28aaSamw 
1488da6c28aaSamw int
1489da6c28aaSamw xattr_dir_vget(vfs_t *vfsp, vnode_t **vpp, fid_t *fidp)
1490da6c28aaSamw {
1491da6c28aaSamw 	int error;
1492da6c28aaSamw 	vnode_t *pvp, *dvp;
1493da6c28aaSamw 	xattr_fid_t *xfidp;
1494da6c28aaSamw 	struct pathname pn;
1495da6c28aaSamw 	char *nm;
1496da6c28aaSamw 	uint16_t orig_len;
1497da6c28aaSamw 
1498da6c28aaSamw 	*vpp = NULL;
1499da6c28aaSamw 
1500da6c28aaSamw 	if (fidp->fid_len < XATTR_FIDSZ)
1501da6c28aaSamw 		return (EINVAL);
1502da6c28aaSamw 
1503da6c28aaSamw 	xfidp = (xattr_fid_t *)fidp;
1504da6c28aaSamw 	orig_len = fidp->fid_len;
1505da6c28aaSamw 	fidp->fid_len = xfidp->parent_len;
1506da6c28aaSamw 
1507da6c28aaSamw 	error = VFS_VGET(vfsp, &pvp, fidp);
1508da6c28aaSamw 	fidp->fid_len = orig_len;
1509da6c28aaSamw 	if (error)
1510da6c28aaSamw 		return (error);
1511da6c28aaSamw 
1512da6c28aaSamw 	/*
1513da6c28aaSamw 	 * Start by getting the GFS sysattr directory.	We might need
1514da6c28aaSamw 	 * to recreate it during the VOP_LOOKUP.
1515da6c28aaSamw 	 */
1516da6c28aaSamw 	nm = "";
1517da6c28aaSamw 	error = pn_get(nm, UIO_SYSSPACE, &pn);
1518da6c28aaSamw 	if (error) {
1519da6c28aaSamw 		VN_RELE(pvp);
1520da6c28aaSamw 		return (EINVAL);
1521da6c28aaSamw 	}
1522da6c28aaSamw 
1523da6c28aaSamw 	error = VOP_LOOKUP(pvp, nm, &dvp, &pn, LOOKUP_XATTR|CREATE_XATTR_DIR,
1524da6c28aaSamw 	    rootvp, CRED(), NULL, NULL, NULL);
1525da6c28aaSamw 	pn_free(&pn);
1526da6c28aaSamw 	VN_RELE(pvp);
1527da6c28aaSamw 	if (error)
1528da6c28aaSamw 		return (error);
1529da6c28aaSamw 
1530da6c28aaSamw 	if (xfidp->dir_offset == 0) {
1531da6c28aaSamw 		/*
1532da6c28aaSamw 		 * If we were looking for the directory, we're done.
1533da6c28aaSamw 		 */
1534da6c28aaSamw 		*vpp = dvp;
1535da6c28aaSamw 		return (0);
1536da6c28aaSamw 	}
1537da6c28aaSamw 
1538da6c28aaSamw 	if (xfidp->dir_offset > XATTRDIR_NENTS) {
1539da6c28aaSamw 		VN_RELE(dvp);
1540da6c28aaSamw 		return (EINVAL);
1541da6c28aaSamw 	}
1542da6c28aaSamw 
1543da6c28aaSamw 	nm = xattr_dirents[xfidp->dir_offset - 1].gfse_name;
1544da6c28aaSamw 
1545da6c28aaSamw 	error = pn_get(nm, UIO_SYSSPACE, &pn);
1546da6c28aaSamw 	if (error) {
1547da6c28aaSamw 		VN_RELE(dvp);
1548da6c28aaSamw 		return (EINVAL);
1549da6c28aaSamw 	}
1550da6c28aaSamw 
1551da6c28aaSamw 	error = VOP_LOOKUP(dvp, nm, vpp, &pn, 0, rootvp, CRED(), NULL,
1552da6c28aaSamw 	    NULL, NULL);
1553da6c28aaSamw 
1554da6c28aaSamw 	pn_free(&pn);
1555da6c28aaSamw 	VN_RELE(dvp);
1556da6c28aaSamw 
1557da6c28aaSamw 	return (error);
1558da6c28aaSamw }
1559