diff options
author | Lachlan McIlroy <lachlan@redback.melbourne.sgi.com> | 2008-05-19 01:09:05 -0400 |
---|---|---|
committer | Lachlan McIlroy <lachlan@redback.melbourne.sgi.com> | 2008-05-19 01:09:05 -0400 |
commit | c203e45f069af47ca7623e4dcd8c00bfba2722e4 (patch) | |
tree | 4563115b6565dcfd97015c1c9366fb3d07cabf19 /fs/ecryptfs/miscdev.c | |
parent | a94477da38e0b261a7ecea71f4c95a3bcd5be69c (diff) | |
parent | b8291ad07a7f3b5b990900f0001198ac23ba893e (diff) |
Merge git://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux-2.6 into for-linus
Diffstat (limited to 'fs/ecryptfs/miscdev.c')
-rw-r--r-- | fs/ecryptfs/miscdev.c | 600 |
1 files changed, 600 insertions, 0 deletions
diff --git a/fs/ecryptfs/miscdev.c b/fs/ecryptfs/miscdev.c new file mode 100644 index 000000000000..6560da1a58ce --- /dev/null +++ b/fs/ecryptfs/miscdev.c | |||
@@ -0,0 +1,600 @@ | |||
1 | /** | ||
2 | * eCryptfs: Linux filesystem encryption layer | ||
3 | * | ||
4 | * Copyright (C) 2008 International Business Machines Corp. | ||
5 | * Author(s): Michael A. Halcrow <mhalcrow@us.ibm.com> | ||
6 | * | ||
7 | * This program is free software; you can redistribute it and/or | ||
8 | * modify it under the terms of the GNU General Public License version | ||
9 | * 2 as published by the Free Software Foundation. | ||
10 | * | ||
11 | * This program is distributed in the hope that it will be useful, but | ||
12 | * WITHOUT ANY WARRANTY; without even the implied warranty of | ||
13 | * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU | ||
14 | * General Public License for more details. | ||
15 | * | ||
16 | * You should have received a copy of the GNU General Public License | ||
17 | * along with this program; if not, write to the Free Software | ||
18 | * Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA | ||
19 | * 02111-1307, USA. | ||
20 | */ | ||
21 | |||
22 | #include <linux/fs.h> | ||
23 | #include <linux/hash.h> | ||
24 | #include <linux/random.h> | ||
25 | #include <linux/miscdevice.h> | ||
26 | #include <linux/poll.h> | ||
27 | #include <linux/wait.h> | ||
28 | #include <linux/module.h> | ||
29 | #include "ecryptfs_kernel.h" | ||
30 | |||
31 | static atomic_t ecryptfs_num_miscdev_opens; | ||
32 | |||
33 | /** | ||
34 | * ecryptfs_miscdev_poll | ||
35 | * @file: dev file (ignored) | ||
36 | * @pt: dev poll table (ignored) | ||
37 | * | ||
38 | * Returns the poll mask | ||
39 | */ | ||
40 | static unsigned int | ||
41 | ecryptfs_miscdev_poll(struct file *file, poll_table *pt) | ||
42 | { | ||
43 | struct ecryptfs_daemon *daemon; | ||
44 | unsigned int mask = 0; | ||
45 | int rc; | ||
46 | |||
47 | mutex_lock(&ecryptfs_daemon_hash_mux); | ||
48 | /* TODO: Just use file->private_data? */ | ||
49 | rc = ecryptfs_find_daemon_by_euid(&daemon, current->euid, | ||
50 | current->nsproxy->user_ns); | ||
51 | BUG_ON(rc || !daemon); | ||
52 | mutex_lock(&daemon->mux); | ||
53 | mutex_unlock(&ecryptfs_daemon_hash_mux); | ||
54 | if (daemon->flags & ECRYPTFS_DAEMON_ZOMBIE) { | ||
55 | printk(KERN_WARNING "%s: Attempt to poll on zombified " | ||
56 | "daemon\n", __func__); | ||
57 | goto out_unlock_daemon; | ||
58 | } | ||
59 | if (daemon->flags & ECRYPTFS_DAEMON_IN_READ) | ||
60 | goto out_unlock_daemon; | ||
61 | if (daemon->flags & ECRYPTFS_DAEMON_IN_POLL) | ||
62 | goto out_unlock_daemon; | ||
63 | daemon->flags |= ECRYPTFS_DAEMON_IN_POLL; | ||
64 | mutex_unlock(&daemon->mux); | ||
65 | poll_wait(file, &daemon->wait, pt); | ||
66 | mutex_lock(&daemon->mux); | ||
67 | if (!list_empty(&daemon->msg_ctx_out_queue)) | ||
68 | mask |= POLLIN | POLLRDNORM; | ||
69 | out_unlock_daemon: | ||
70 | daemon->flags &= ~ECRYPTFS_DAEMON_IN_POLL; | ||
71 | mutex_unlock(&daemon->mux); | ||
72 | return mask; | ||
73 | } | ||
74 | |||
75 | /** | ||
76 | * ecryptfs_miscdev_open | ||
77 | * @inode: inode of miscdev handle (ignored) | ||
78 | * @file: file for miscdev handle (ignored) | ||
79 | * | ||
80 | * Returns zero on success; non-zero otherwise | ||
81 | */ | ||
82 | static int | ||
83 | ecryptfs_miscdev_open(struct inode *inode, struct file *file) | ||
84 | { | ||
85 | struct ecryptfs_daemon *daemon = NULL; | ||
86 | int rc; | ||
87 | |||
88 | mutex_lock(&ecryptfs_daemon_hash_mux); | ||
89 | rc = try_module_get(THIS_MODULE); | ||
90 | if (rc == 0) { | ||
91 | rc = -EIO; | ||
92 | printk(KERN_ERR "%s: Error attempting to increment module use " | ||
93 | "count; rc = [%d]\n", __func__, rc); | ||
94 | goto out_unlock_daemon_list; | ||
95 | } | ||
96 | rc = ecryptfs_find_daemon_by_euid(&daemon, current->euid, | ||
97 | current->nsproxy->user_ns); | ||
98 | if (rc || !daemon) { | ||
99 | rc = ecryptfs_spawn_daemon(&daemon, current->euid, | ||
100 | current->nsproxy->user_ns, | ||
101 | task_pid(current)); | ||
102 | if (rc) { | ||
103 | printk(KERN_ERR "%s: Error attempting to spawn daemon; " | ||
104 | "rc = [%d]\n", __func__, rc); | ||
105 | goto out_module_put_unlock_daemon_list; | ||
106 | } | ||
107 | } | ||
108 | mutex_lock(&daemon->mux); | ||
109 | if (daemon->pid != task_pid(current)) { | ||
110 | rc = -EINVAL; | ||
111 | printk(KERN_ERR "%s: pid [0x%p] has registered with euid [%d], " | ||
112 | "but pid [0x%p] has attempted to open the handle " | ||
113 | "instead\n", __func__, daemon->pid, daemon->euid, | ||
114 | task_pid(current)); | ||
115 | goto out_unlock_daemon; | ||
116 | } | ||
117 | if (daemon->flags & ECRYPTFS_DAEMON_MISCDEV_OPEN) { | ||
118 | rc = -EBUSY; | ||
119 | printk(KERN_ERR "%s: Miscellaneous device handle may only be " | ||
120 | "opened once per daemon; pid [0x%p] already has this " | ||
121 | "handle open\n", __func__, daemon->pid); | ||
122 | goto out_unlock_daemon; | ||
123 | } | ||
124 | daemon->flags |= ECRYPTFS_DAEMON_MISCDEV_OPEN; | ||
125 | atomic_inc(&ecryptfs_num_miscdev_opens); | ||
126 | out_unlock_daemon: | ||
127 | mutex_unlock(&daemon->mux); | ||
128 | out_module_put_unlock_daemon_list: | ||
129 | if (rc) | ||
130 | module_put(THIS_MODULE); | ||
131 | out_unlock_daemon_list: | ||
132 | mutex_unlock(&ecryptfs_daemon_hash_mux); | ||
133 | return rc; | ||
134 | } | ||
135 | |||
136 | /** | ||
137 | * ecryptfs_miscdev_release | ||
138 | * @inode: inode of fs/ecryptfs/euid handle (ignored) | ||
139 | * @file: file for fs/ecryptfs/euid handle (ignored) | ||
140 | * | ||
141 | * This keeps the daemon registered until the daemon sends another | ||
142 | * ioctl to fs/ecryptfs/ctl or until the kernel module unregisters. | ||
143 | * | ||
144 | * Returns zero on success; non-zero otherwise | ||
145 | */ | ||
146 | static int | ||
147 | ecryptfs_miscdev_release(struct inode *inode, struct file *file) | ||
148 | { | ||
149 | struct ecryptfs_daemon *daemon = NULL; | ||
150 | int rc; | ||
151 | |||
152 | mutex_lock(&ecryptfs_daemon_hash_mux); | ||
153 | rc = ecryptfs_find_daemon_by_euid(&daemon, current->euid, | ||
154 | current->nsproxy->user_ns); | ||
155 | BUG_ON(rc || !daemon); | ||
156 | mutex_lock(&daemon->mux); | ||
157 | BUG_ON(daemon->pid != task_pid(current)); | ||
158 | BUG_ON(!(daemon->flags & ECRYPTFS_DAEMON_MISCDEV_OPEN)); | ||
159 | daemon->flags &= ~ECRYPTFS_DAEMON_MISCDEV_OPEN; | ||
160 | atomic_dec(&ecryptfs_num_miscdev_opens); | ||
161 | mutex_unlock(&daemon->mux); | ||
162 | rc = ecryptfs_exorcise_daemon(daemon); | ||
163 | if (rc) { | ||
164 | printk(KERN_CRIT "%s: Fatal error whilst attempting to " | ||
165 | "shut down daemon; rc = [%d]. Please report this " | ||
166 | "bug.\n", __func__, rc); | ||
167 | BUG(); | ||
168 | } | ||
169 | module_put(THIS_MODULE); | ||
170 | mutex_unlock(&ecryptfs_daemon_hash_mux); | ||
171 | return rc; | ||
172 | } | ||
173 | |||
174 | /** | ||
175 | * ecryptfs_send_miscdev | ||
176 | * @data: Data to send to daemon; may be NULL | ||
177 | * @data_size: Amount of data to send to daemon | ||
178 | * @msg_ctx: Message context, which is used to handle the reply. If | ||
179 | * this is NULL, then we do not expect a reply. | ||
180 | * @msg_type: Type of message | ||
181 | * @msg_flags: Flags for message | ||
182 | * @daemon: eCryptfs daemon object | ||
183 | * | ||
184 | * Add msg_ctx to queue and then, if it exists, notify the blocked | ||
185 | * miscdevess about the data being available. Must be called with | ||
186 | * ecryptfs_daemon_hash_mux held. | ||
187 | * | ||
188 | * Returns zero on success; non-zero otherwise | ||
189 | */ | ||
190 | int ecryptfs_send_miscdev(char *data, size_t data_size, | ||
191 | struct ecryptfs_msg_ctx *msg_ctx, u8 msg_type, | ||
192 | u16 msg_flags, struct ecryptfs_daemon *daemon) | ||
193 | { | ||
194 | int rc = 0; | ||
195 | |||
196 | mutex_lock(&msg_ctx->mux); | ||
197 | if (data) { | ||
198 | msg_ctx->msg = kmalloc((sizeof(*msg_ctx->msg) + data_size), | ||
199 | GFP_KERNEL); | ||
200 | if (!msg_ctx->msg) { | ||
201 | rc = -ENOMEM; | ||
202 | printk(KERN_ERR "%s: Out of memory whilst attempting " | ||
203 | "to kmalloc(%Zd, GFP_KERNEL)\n", __func__, | ||
204 | (sizeof(*msg_ctx->msg) + data_size)); | ||
205 | goto out_unlock; | ||
206 | } | ||
207 | } else | ||
208 | msg_ctx->msg = NULL; | ||
209 | msg_ctx->msg->index = msg_ctx->index; | ||
210 | msg_ctx->msg->data_len = data_size; | ||
211 | msg_ctx->type = msg_type; | ||
212 | if (data) { | ||
213 | memcpy(msg_ctx->msg->data, data, data_size); | ||
214 | msg_ctx->msg_size = (sizeof(*msg_ctx->msg) + data_size); | ||
215 | } else | ||
216 | msg_ctx->msg_size = 0; | ||
217 | mutex_lock(&daemon->mux); | ||
218 | list_add_tail(&msg_ctx->daemon_out_list, &daemon->msg_ctx_out_queue); | ||
219 | daemon->num_queued_msg_ctx++; | ||
220 | wake_up_interruptible(&daemon->wait); | ||
221 | mutex_unlock(&daemon->mux); | ||
222 | out_unlock: | ||
223 | mutex_unlock(&msg_ctx->mux); | ||
224 | return rc; | ||
225 | } | ||
226 | |||
227 | /** | ||
228 | * ecryptfs_miscdev_read - format and send message from queue | ||
229 | * @file: fs/ecryptfs/euid miscdevfs handle (ignored) | ||
230 | * @buf: User buffer into which to copy the next message on the daemon queue | ||
231 | * @count: Amount of space available in @buf | ||
232 | * @ppos: Offset in file (ignored) | ||
233 | * | ||
234 | * Pulls the most recent message from the daemon queue, formats it for | ||
235 | * being sent via a miscdevfs handle, and copies it into @buf | ||
236 | * | ||
237 | * Returns the number of bytes copied into the user buffer | ||
238 | */ | ||
239 | static ssize_t | ||
240 | ecryptfs_miscdev_read(struct file *file, char __user *buf, size_t count, | ||
241 | loff_t *ppos) | ||
242 | { | ||
243 | struct ecryptfs_daemon *daemon; | ||
244 | struct ecryptfs_msg_ctx *msg_ctx; | ||
245 | size_t packet_length_size; | ||
246 | u32 counter_nbo; | ||
247 | char packet_length[3]; | ||
248 | size_t i; | ||
249 | size_t total_length; | ||
250 | int rc; | ||
251 | |||
252 | mutex_lock(&ecryptfs_daemon_hash_mux); | ||
253 | /* TODO: Just use file->private_data? */ | ||
254 | rc = ecryptfs_find_daemon_by_euid(&daemon, current->euid, | ||
255 | current->nsproxy->user_ns); | ||
256 | BUG_ON(rc || !daemon); | ||
257 | mutex_lock(&daemon->mux); | ||
258 | if (daemon->flags & ECRYPTFS_DAEMON_ZOMBIE) { | ||
259 | rc = 0; | ||
260 | mutex_unlock(&ecryptfs_daemon_hash_mux); | ||
261 | printk(KERN_WARNING "%s: Attempt to read from zombified " | ||
262 | "daemon\n", __func__); | ||
263 | goto out_unlock_daemon; | ||
264 | } | ||
265 | if (daemon->flags & ECRYPTFS_DAEMON_IN_READ) { | ||
266 | rc = 0; | ||
267 | mutex_unlock(&ecryptfs_daemon_hash_mux); | ||
268 | goto out_unlock_daemon; | ||
269 | } | ||
270 | /* This daemon will not go away so long as this flag is set */ | ||
271 | daemon->flags |= ECRYPTFS_DAEMON_IN_READ; | ||
272 | mutex_unlock(&ecryptfs_daemon_hash_mux); | ||
273 | check_list: | ||
274 | if (list_empty(&daemon->msg_ctx_out_queue)) { | ||
275 | mutex_unlock(&daemon->mux); | ||
276 | rc = wait_event_interruptible( | ||
277 | daemon->wait, !list_empty(&daemon->msg_ctx_out_queue)); | ||
278 | mutex_lock(&daemon->mux); | ||
279 | if (rc < 0) { | ||
280 | rc = 0; | ||
281 | goto out_unlock_daemon; | ||
282 | } | ||
283 | } | ||
284 | if (daemon->flags & ECRYPTFS_DAEMON_ZOMBIE) { | ||
285 | rc = 0; | ||
286 | goto out_unlock_daemon; | ||
287 | } | ||
288 | if (list_empty(&daemon->msg_ctx_out_queue)) { | ||
289 | /* Something else jumped in since the | ||
290 | * wait_event_interruptable() and removed the | ||
291 | * message from the queue; try again */ | ||
292 | goto check_list; | ||
293 | } | ||
294 | BUG_ON(current->euid != daemon->euid); | ||
295 | BUG_ON(current->nsproxy->user_ns != daemon->user_ns); | ||
296 | BUG_ON(task_pid(current) != daemon->pid); | ||
297 | msg_ctx = list_first_entry(&daemon->msg_ctx_out_queue, | ||
298 | struct ecryptfs_msg_ctx, daemon_out_list); | ||
299 | BUG_ON(!msg_ctx); | ||
300 | mutex_lock(&msg_ctx->mux); | ||
301 | if (msg_ctx->msg) { | ||
302 | rc = ecryptfs_write_packet_length(packet_length, | ||
303 | msg_ctx->msg_size, | ||
304 | &packet_length_size); | ||
305 | if (rc) { | ||
306 | rc = 0; | ||
307 | printk(KERN_WARNING "%s: Error writing packet length; " | ||
308 | "rc = [%d]\n", __func__, rc); | ||
309 | goto out_unlock_msg_ctx; | ||
310 | } | ||
311 | } else { | ||
312 | packet_length_size = 0; | ||
313 | msg_ctx->msg_size = 0; | ||
314 | } | ||
315 | /* miscdevfs packet format: | ||
316 | * Octet 0: Type | ||
317 | * Octets 1-4: network byte order msg_ctx->counter | ||
318 | * Octets 5-N0: Size of struct ecryptfs_message to follow | ||
319 | * Octets N0-N1: struct ecryptfs_message (including data) | ||
320 | * | ||
321 | * Octets 5-N1 not written if the packet type does not | ||
322 | * include a message */ | ||
323 | total_length = (1 + 4 + packet_length_size + msg_ctx->msg_size); | ||
324 | if (count < total_length) { | ||
325 | rc = 0; | ||
326 | printk(KERN_WARNING "%s: Only given user buffer of " | ||
327 | "size [%Zd], but we need [%Zd] to read the " | ||
328 | "pending message\n", __func__, count, total_length); | ||
329 | goto out_unlock_msg_ctx; | ||
330 | } | ||
331 | i = 0; | ||
332 | buf[i++] = msg_ctx->type; | ||
333 | counter_nbo = cpu_to_be32(msg_ctx->counter); | ||
334 | memcpy(&buf[i], (char *)&counter_nbo, 4); | ||
335 | i += 4; | ||
336 | if (msg_ctx->msg) { | ||
337 | memcpy(&buf[i], packet_length, packet_length_size); | ||
338 | i += packet_length_size; | ||
339 | rc = copy_to_user(&buf[i], msg_ctx->msg, msg_ctx->msg_size); | ||
340 | if (rc) { | ||
341 | printk(KERN_ERR "%s: copy_to_user returned error " | ||
342 | "[%d]\n", __func__, rc); | ||
343 | goto out_unlock_msg_ctx; | ||
344 | } | ||
345 | i += msg_ctx->msg_size; | ||
346 | } | ||
347 | rc = i; | ||
348 | list_del(&msg_ctx->daemon_out_list); | ||
349 | kfree(msg_ctx->msg); | ||
350 | msg_ctx->msg = NULL; | ||
351 | /* We do not expect a reply from the userspace daemon for any | ||
352 | * message type other than ECRYPTFS_MSG_REQUEST */ | ||
353 | if (msg_ctx->type != ECRYPTFS_MSG_REQUEST) | ||
354 | ecryptfs_msg_ctx_alloc_to_free(msg_ctx); | ||
355 | out_unlock_msg_ctx: | ||
356 | mutex_unlock(&msg_ctx->mux); | ||
357 | out_unlock_daemon: | ||
358 | daemon->flags &= ~ECRYPTFS_DAEMON_IN_READ; | ||
359 | mutex_unlock(&daemon->mux); | ||
360 | return rc; | ||
361 | } | ||
362 | |||
363 | /** | ||
364 | * ecryptfs_miscdev_helo | ||
365 | * @euid: effective user id of miscdevess sending helo packet | ||
366 | * @user_ns: The namespace in which @euid applies | ||
367 | * @pid: miscdevess id of miscdevess sending helo packet | ||
368 | * | ||
369 | * Returns zero on success; non-zero otherwise | ||
370 | */ | ||
371 | static int ecryptfs_miscdev_helo(uid_t euid, struct user_namespace *user_ns, | ||
372 | struct pid *pid) | ||
373 | { | ||
374 | int rc; | ||
375 | |||
376 | rc = ecryptfs_process_helo(ECRYPTFS_TRANSPORT_MISCDEV, euid, user_ns, | ||
377 | pid); | ||
378 | if (rc) | ||
379 | printk(KERN_WARNING "Error processing HELO; rc = [%d]\n", rc); | ||
380 | return rc; | ||
381 | } | ||
382 | |||
383 | /** | ||
384 | * ecryptfs_miscdev_quit | ||
385 | * @euid: effective user id of miscdevess sending quit packet | ||
386 | * @user_ns: The namespace in which @euid applies | ||
387 | * @pid: miscdevess id of miscdevess sending quit packet | ||
388 | * | ||
389 | * Returns zero on success; non-zero otherwise | ||
390 | */ | ||
391 | static int ecryptfs_miscdev_quit(uid_t euid, struct user_namespace *user_ns, | ||
392 | struct pid *pid) | ||
393 | { | ||
394 | int rc; | ||
395 | |||
396 | rc = ecryptfs_process_quit(euid, user_ns, pid); | ||
397 | if (rc) | ||
398 | printk(KERN_WARNING | ||
399 | "Error processing QUIT message; rc = [%d]\n", rc); | ||
400 | return rc; | ||
401 | } | ||
402 | |||
403 | /** | ||
404 | * ecryptfs_miscdev_response - miscdevess response to message previously sent to daemon | ||
405 | * @data: Bytes comprising struct ecryptfs_message | ||
406 | * @data_size: sizeof(struct ecryptfs_message) + data len | ||
407 | * @euid: Effective user id of miscdevess sending the miscdev response | ||
408 | * @user_ns: The namespace in which @euid applies | ||
409 | * @pid: Miscdevess id of miscdevess sending the miscdev response | ||
410 | * @seq: Sequence number for miscdev response packet | ||
411 | * | ||
412 | * Returns zero on success; non-zero otherwise | ||
413 | */ | ||
414 | static int ecryptfs_miscdev_response(char *data, size_t data_size, | ||
415 | uid_t euid, struct user_namespace *user_ns, | ||
416 | struct pid *pid, u32 seq) | ||
417 | { | ||
418 | struct ecryptfs_message *msg = (struct ecryptfs_message *)data; | ||
419 | int rc; | ||
420 | |||
421 | if ((sizeof(*msg) + msg->data_len) != data_size) { | ||
422 | printk(KERN_WARNING "%s: (sizeof(*msg) + msg->data_len) = " | ||
423 | "[%Zd]; data_size = [%Zd]. Invalid packet.\n", __func__, | ||
424 | (sizeof(*msg) + msg->data_len), data_size); | ||
425 | rc = -EINVAL; | ||
426 | goto out; | ||
427 | } | ||
428 | rc = ecryptfs_process_response(msg, euid, user_ns, pid, seq); | ||
429 | if (rc) | ||
430 | printk(KERN_ERR | ||
431 | "Error processing response message; rc = [%d]\n", rc); | ||
432 | out: | ||
433 | return rc; | ||
434 | } | ||
435 | |||
436 | /** | ||
437 | * ecryptfs_miscdev_write - handle write to daemon miscdev handle | ||
438 | * @file: File for misc dev handle (ignored) | ||
439 | * @buf: Buffer containing user data | ||
440 | * @count: Amount of data in @buf | ||
441 | * @ppos: Pointer to offset in file (ignored) | ||
442 | * | ||
443 | * miscdevfs packet format: | ||
444 | * Octet 0: Type | ||
445 | * Octets 1-4: network byte order msg_ctx->counter (0's for non-response) | ||
446 | * Octets 5-N0: Size of struct ecryptfs_message to follow | ||
447 | * Octets N0-N1: struct ecryptfs_message (including data) | ||
448 | * | ||
449 | * Returns the number of bytes read from @buf | ||
450 | */ | ||
451 | static ssize_t | ||
452 | ecryptfs_miscdev_write(struct file *file, const char __user *buf, | ||
453 | size_t count, loff_t *ppos) | ||
454 | { | ||
455 | u32 counter_nbo, seq; | ||
456 | size_t packet_size, packet_size_length, i; | ||
457 | ssize_t sz = 0; | ||
458 | char *data; | ||
459 | int rc; | ||
460 | |||
461 | if (count == 0) | ||
462 | goto out; | ||
463 | data = kmalloc(count, GFP_KERNEL); | ||
464 | if (!data) { | ||
465 | printk(KERN_ERR "%s: Out of memory whilst attempting to " | ||
466 | "kmalloc([%Zd], GFP_KERNEL)\n", __func__, count); | ||
467 | goto out; | ||
468 | } | ||
469 | rc = copy_from_user(data, buf, count); | ||
470 | if (rc) { | ||
471 | printk(KERN_ERR "%s: copy_from_user returned error [%d]\n", | ||
472 | __func__, rc); | ||
473 | goto out_free; | ||
474 | } | ||
475 | sz = count; | ||
476 | i = 0; | ||
477 | switch (data[i++]) { | ||
478 | case ECRYPTFS_MSG_RESPONSE: | ||
479 | if (count < (1 + 4 + 1 + sizeof(struct ecryptfs_message))) { | ||
480 | printk(KERN_WARNING "%s: Minimum acceptable packet " | ||
481 | "size is [%Zd], but amount of data written is " | ||
482 | "only [%Zd]. Discarding response packet.\n", | ||
483 | __func__, | ||
484 | (1 + 4 + 1 + sizeof(struct ecryptfs_message)), | ||
485 | count); | ||
486 | goto out_free; | ||
487 | } | ||
488 | memcpy((char *)&counter_nbo, &data[i], 4); | ||
489 | seq = be32_to_cpu(counter_nbo); | ||
490 | i += 4; | ||
491 | rc = ecryptfs_parse_packet_length(&data[i], &packet_size, | ||
492 | &packet_size_length); | ||
493 | if (rc) { | ||
494 | printk(KERN_WARNING "%s: Error parsing packet length; " | ||
495 | "rc = [%d]\n", __func__, rc); | ||
496 | goto out_free; | ||
497 | } | ||
498 | i += packet_size_length; | ||
499 | if ((1 + 4 + packet_size_length + packet_size) != count) { | ||
500 | printk(KERN_WARNING "%s: (1 + packet_size_length([%Zd])" | ||
501 | " + packet_size([%Zd]))([%Zd]) != " | ||
502 | "count([%Zd]). Invalid packet format.\n", | ||
503 | __func__, packet_size_length, packet_size, | ||
504 | (1 + packet_size_length + packet_size), count); | ||
505 | goto out_free; | ||
506 | } | ||
507 | rc = ecryptfs_miscdev_response(&data[i], packet_size, | ||
508 | current->euid, | ||
509 | current->nsproxy->user_ns, | ||
510 | task_pid(current), seq); | ||
511 | if (rc) | ||
512 | printk(KERN_WARNING "%s: Failed to deliver miscdev " | ||
513 | "response to requesting operation; rc = [%d]\n", | ||
514 | __func__, rc); | ||
515 | break; | ||
516 | case ECRYPTFS_MSG_HELO: | ||
517 | rc = ecryptfs_miscdev_helo(current->euid, | ||
518 | current->nsproxy->user_ns, | ||
519 | task_pid(current)); | ||
520 | if (rc) { | ||
521 | printk(KERN_ERR "%s: Error attempting to process " | ||
522 | "helo from pid [0x%p]; rc = [%d]\n", __func__, | ||
523 | task_pid(current), rc); | ||
524 | goto out_free; | ||
525 | } | ||
526 | break; | ||
527 | case ECRYPTFS_MSG_QUIT: | ||
528 | rc = ecryptfs_miscdev_quit(current->euid, | ||
529 | current->nsproxy->user_ns, | ||
530 | task_pid(current)); | ||
531 | if (rc) { | ||
532 | printk(KERN_ERR "%s: Error attempting to process " | ||
533 | "quit from pid [0x%p]; rc = [%d]\n", __func__, | ||
534 | task_pid(current), rc); | ||
535 | goto out_free; | ||
536 | } | ||
537 | break; | ||
538 | default: | ||
539 | ecryptfs_printk(KERN_WARNING, "Dropping miscdev " | ||
540 | "message of unrecognized type [%d]\n", | ||
541 | data[0]); | ||
542 | break; | ||
543 | } | ||
544 | out_free: | ||
545 | kfree(data); | ||
546 | out: | ||
547 | return sz; | ||
548 | } | ||
549 | |||
550 | |||
551 | static const struct file_operations ecryptfs_miscdev_fops = { | ||
552 | .open = ecryptfs_miscdev_open, | ||
553 | .poll = ecryptfs_miscdev_poll, | ||
554 | .read = ecryptfs_miscdev_read, | ||
555 | .write = ecryptfs_miscdev_write, | ||
556 | .release = ecryptfs_miscdev_release, | ||
557 | }; | ||
558 | |||
559 | static struct miscdevice ecryptfs_miscdev = { | ||
560 | .minor = MISC_DYNAMIC_MINOR, | ||
561 | .name = "ecryptfs", | ||
562 | .fops = &ecryptfs_miscdev_fops | ||
563 | }; | ||
564 | |||
565 | /** | ||
566 | * ecryptfs_init_ecryptfs_miscdev | ||
567 | * | ||
568 | * Messages sent to the userspace daemon from the kernel are placed on | ||
569 | * a queue associated with the daemon. The next read against the | ||
570 | * miscdev handle by that daemon will return the oldest message placed | ||
571 | * on the message queue for the daemon. | ||
572 | * | ||
573 | * Returns zero on success; non-zero otherwise | ||
574 | */ | ||
575 | int ecryptfs_init_ecryptfs_miscdev(void) | ||
576 | { | ||
577 | int rc; | ||
578 | |||
579 | atomic_set(&ecryptfs_num_miscdev_opens, 0); | ||
580 | mutex_lock(&ecryptfs_daemon_hash_mux); | ||
581 | rc = misc_register(&ecryptfs_miscdev); | ||
582 | if (rc) | ||
583 | printk(KERN_ERR "%s: Failed to register miscellaneous device " | ||
584 | "for communications with userspace daemons; rc = [%d]\n", | ||
585 | __func__, rc); | ||
586 | mutex_unlock(&ecryptfs_daemon_hash_mux); | ||
587 | return rc; | ||
588 | } | ||
589 | |||
590 | /** | ||
591 | * ecryptfs_destroy_ecryptfs_miscdev | ||
592 | * | ||
593 | * All of the daemons must be exorcised prior to calling this | ||
594 | * function. | ||
595 | */ | ||
596 | void ecryptfs_destroy_ecryptfs_miscdev(void) | ||
597 | { | ||
598 | BUG_ON(atomic_read(&ecryptfs_num_miscdev_opens) != 0); | ||
599 | misc_deregister(&ecryptfs_miscdev); | ||
600 | } | ||