Commit | Line | Data |
---|---|---|
1da177e4 | 1 | /* |
4ce3121f NS |
2 | * Copyright (c) 2000-2005 Silicon Graphics, Inc. |
3 | * All Rights Reserved. | |
1da177e4 | 4 | * |
4ce3121f NS |
5 | * This program is free software; you can redistribute it and/or |
6 | * modify it under the terms of the GNU General Public License as | |
1da177e4 LT |
7 | * published by the Free Software Foundation. |
8 | * | |
4ce3121f NS |
9 | * This program is distributed in the hope that it would be useful, |
10 | * but WITHOUT ANY WARRANTY; without even the implied warranty of | |
11 | * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the | |
12 | * GNU General Public License for more details. | |
1da177e4 | 13 | * |
4ce3121f NS |
14 | * You should have received a copy of the GNU General Public License |
15 | * along with this program; if not, write the Free Software Foundation, | |
16 | * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA | |
1da177e4 | 17 | */ |
16f7e0fe RD |
18 | |
19 | #include <linux/capability.h> | |
20 | ||
1da177e4 LT |
21 | #include "xfs.h" |
22 | #include "xfs_fs.h" | |
70a9883c | 23 | #include "xfs_shared.h" |
239880ef DC |
24 | #include "xfs_format.h" |
25 | #include "xfs_log_format.h" | |
26 | #include "xfs_trans_resv.h" | |
a844f451 | 27 | #include "xfs_bit.h" |
1da177e4 | 28 | #include "xfs_sb.h" |
1da177e4 | 29 | #include "xfs_mount.h" |
1da177e4 | 30 | #include "xfs_inode.h" |
239880ef | 31 | #include "xfs_trans.h" |
1da177e4 | 32 | #include "xfs_error.h" |
a4fbe6ab | 33 | #include "xfs_quota.h" |
1da177e4 | 34 | #include "xfs_qm.h" |
0b1b213f | 35 | #include "xfs_trace.h" |
6d8b79cf | 36 | #include "xfs_icache.h" |
1da177e4 | 37 | |
1da177e4 LT |
38 | STATIC int xfs_qm_log_quotaoff(xfs_mount_t *, xfs_qoff_logitem_t **, uint); |
39 | STATIC int xfs_qm_log_quotaoff_end(xfs_mount_t *, xfs_qoff_logitem_t *, | |
40 | uint); | |
1da177e4 | 41 | |
1da177e4 LT |
42 | /* |
43 | * Turn off quota accounting and/or enforcement for all udquots and/or | |
44 | * gdquots. Called only at unmount time. | |
45 | * | |
46 | * This assumes that there are no dquots of this file system cached | |
47 | * incore, and modifies the ondisk dquot directly. Therefore, for example, | |
48 | * it is an error to call this twice, without purging the cache. | |
49 | */ | |
fcafb71b | 50 | int |
1da177e4 LT |
51 | xfs_qm_scall_quotaoff( |
52 | xfs_mount_t *mp, | |
fcafb71b | 53 | uint flags) |
1da177e4 | 54 | { |
8a7b8a89 | 55 | struct xfs_quotainfo *q = mp->m_quotainfo; |
1da177e4 | 56 | uint dqtype; |
1da177e4 LT |
57 | int error; |
58 | uint inactivate_flags; | |
59 | xfs_qoff_logitem_t *qoffstart; | |
1da177e4 | 60 | |
1da177e4 LT |
61 | /* |
62 | * No file system can have quotas enabled on disk but not in core. | |
63 | * Note that quota utilities (like quotaoff) _expect_ | |
2451337d | 64 | * errno == -EEXIST here. |
1da177e4 LT |
65 | */ |
66 | if ((mp->m_qflags & flags) == 0) | |
2451337d | 67 | return -EEXIST; |
1da177e4 LT |
68 | error = 0; |
69 | ||
70 | flags &= (XFS_ALL_QUOTA_ACCT | XFS_ALL_QUOTA_ENFD); | |
71 | ||
72 | /* | |
73 | * We don't want to deal with two quotaoffs messing up each other, | |
74 | * so we're going to serialize it. quotaoff isn't exactly a performance | |
75 | * critical thing. | |
76 | * If quotaoff, then we must be dealing with the root filesystem. | |
77 | */ | |
8a7b8a89 CH |
78 | ASSERT(q); |
79 | mutex_lock(&q->qi_quotaofflock); | |
1da177e4 LT |
80 | |
81 | /* | |
82 | * If we're just turning off quota enforcement, change mp and go. | |
83 | */ | |
84 | if ((flags & XFS_ALL_QUOTA_ACCT) == 0) { | |
85 | mp->m_qflags &= ~(flags); | |
86 | ||
3685c2a1 | 87 | spin_lock(&mp->m_sb_lock); |
1da177e4 | 88 | mp->m_sb.sb_qflags = mp->m_qflags; |
3685c2a1 | 89 | spin_unlock(&mp->m_sb_lock); |
8a7b8a89 | 90 | mutex_unlock(&q->qi_quotaofflock); |
1da177e4 LT |
91 | |
92 | /* XXX what to do if error ? Revert back to old vals incore ? */ | |
61e63ecb | 93 | return xfs_sync_sb(mp, false); |
1da177e4 LT |
94 | } |
95 | ||
96 | dqtype = 0; | |
97 | inactivate_flags = 0; | |
98 | /* | |
99 | * If accounting is off, we must turn enforcement off, clear the | |
100 | * quota 'CHKD' certificate to make it known that we have to | |
101 | * do a quotacheck the next time this quota is turned on. | |
102 | */ | |
103 | if (flags & XFS_UQUOTA_ACCT) { | |
104 | dqtype |= XFS_QMOPT_UQUOTA; | |
105 | flags |= (XFS_UQUOTA_CHKD | XFS_UQUOTA_ENFD); | |
106 | inactivate_flags |= XFS_UQUOTA_ACTIVE; | |
107 | } | |
108 | if (flags & XFS_GQUOTA_ACCT) { | |
109 | dqtype |= XFS_QMOPT_GQUOTA; | |
83e782e1 | 110 | flags |= (XFS_GQUOTA_CHKD | XFS_GQUOTA_ENFD); |
1da177e4 | 111 | inactivate_flags |= XFS_GQUOTA_ACTIVE; |
92f8ff73 CS |
112 | } |
113 | if (flags & XFS_PQUOTA_ACCT) { | |
c8ad20ff | 114 | dqtype |= XFS_QMOPT_PQUOTA; |
83e782e1 | 115 | flags |= (XFS_PQUOTA_CHKD | XFS_PQUOTA_ENFD); |
c8ad20ff | 116 | inactivate_flags |= XFS_PQUOTA_ACTIVE; |
1da177e4 LT |
117 | } |
118 | ||
119 | /* | |
120 | * Nothing to do? Don't complain. This happens when we're just | |
121 | * turning off quota enforcement. | |
122 | */ | |
8a7b8a89 CH |
123 | if ((mp->m_qflags & flags) == 0) |
124 | goto out_unlock; | |
1da177e4 LT |
125 | |
126 | /* | |
127 | * Write the LI_QUOTAOFF log record, and do SB changes atomically, | |
cb6edc26 DC |
128 | * and synchronously. If we fail to write, we should abort the |
129 | * operation as it cannot be recovered safely if we crash. | |
1da177e4 | 130 | */ |
cb6edc26 DC |
131 | error = xfs_qm_log_quotaoff(mp, &qoffstart, flags); |
132 | if (error) | |
8a7b8a89 | 133 | goto out_unlock; |
1da177e4 LT |
134 | |
135 | /* | |
136 | * Next we clear the XFS_MOUNT_*DQ_ACTIVE bit(s) in the mount struct | |
137 | * to take care of the race between dqget and quotaoff. We don't take | |
138 | * any special locks to reset these bits. All processes need to check | |
139 | * these bits *after* taking inode lock(s) to see if the particular | |
140 | * quota type is in the process of being turned off. If *ACTIVE, it is | |
141 | * guaranteed that all dquot structures and all quotainode ptrs will all | |
142 | * stay valid as long as that inode is kept locked. | |
143 | * | |
144 | * There is no turning back after this. | |
145 | */ | |
146 | mp->m_qflags &= ~inactivate_flags; | |
147 | ||
148 | /* | |
149 | * Give back all the dquot reference(s) held by inodes. | |
150 | * Here we go thru every single incore inode in this file system, and | |
151 | * do a dqrele on the i_udquot/i_gdquot that it may have. | |
152 | * Essentially, as long as somebody has an inode locked, this guarantees | |
153 | * that quotas will not be turned off. This is handy because in a | |
154 | * transaction once we lock the inode(s) and check for quotaon, we can | |
155 | * depend on the quota inodes (and other things) being valid as long as | |
156 | * we keep the lock(s). | |
157 | */ | |
158 | xfs_qm_dqrele_all_inodes(mp, flags); | |
159 | ||
160 | /* | |
161 | * Next we make the changes in the quota flag in the mount struct. | |
162 | * This isn't protected by a particular lock directly, because we | |
25985edc | 163 | * don't want to take a mrlock every time we depend on quotas being on. |
1da177e4 | 164 | */ |
b84a3a96 | 165 | mp->m_qflags &= ~flags; |
1da177e4 LT |
166 | |
167 | /* | |
168 | * Go through all the dquots of this file system and purge them, | |
b84a3a96 | 169 | * according to what was turned off. |
1da177e4 | 170 | */ |
b84a3a96 | 171 | xfs_qm_dqpurge_all(mp, dqtype); |
1da177e4 LT |
172 | |
173 | /* | |
174 | * Transactions that had started before ACTIVE state bit was cleared | |
175 | * could have logged many dquots, so they'd have higher LSNs than | |
176 | * the first QUOTAOFF log record does. If we happen to crash when | |
177 | * the tail of the log has gone past the QUOTAOFF record, but | |
178 | * before the last dquot modification, those dquots __will__ | |
179 | * recover, and that's not good. | |
180 | * | |
181 | * So, we have QUOTAOFF start and end logitems; the start | |
182 | * logitem won't get overwritten until the end logitem appears... | |
183 | */ | |
cb6edc26 DC |
184 | error = xfs_qm_log_quotaoff_end(mp, qoffstart, flags); |
185 | if (error) { | |
186 | /* We're screwed now. Shutdown is the only option. */ | |
187 | xfs_force_shutdown(mp, SHUTDOWN_CORRUPT_INCORE); | |
8a7b8a89 | 188 | goto out_unlock; |
cb6edc26 | 189 | } |
1da177e4 LT |
190 | |
191 | /* | |
c31ad439 | 192 | * If all quotas are completely turned off, close shop. |
1da177e4 | 193 | */ |
c31ad439 | 194 | if (mp->m_qflags == 0) { |
8a7b8a89 | 195 | mutex_unlock(&q->qi_quotaofflock); |
1da177e4 | 196 | xfs_qm_destroy_quotainfo(mp); |
d99831ff | 197 | return 0; |
1da177e4 LT |
198 | } |
199 | ||
200 | /* | |
8a7b8a89 | 201 | * Release our quotainode references if we don't need them anymore. |
1da177e4 | 202 | */ |
8a7b8a89 CH |
203 | if ((dqtype & XFS_QMOPT_UQUOTA) && q->qi_uquotaip) { |
204 | IRELE(q->qi_uquotaip); | |
205 | q->qi_uquotaip = NULL; | |
1da177e4 | 206 | } |
92f8ff73 | 207 | if ((dqtype & XFS_QMOPT_GQUOTA) && q->qi_gquotaip) { |
8a7b8a89 CH |
208 | IRELE(q->qi_gquotaip); |
209 | q->qi_gquotaip = NULL; | |
1da177e4 | 210 | } |
92f8ff73 CS |
211 | if ((dqtype & XFS_QMOPT_PQUOTA) && q->qi_pquotaip) { |
212 | IRELE(q->qi_pquotaip); | |
213 | q->qi_pquotaip = NULL; | |
214 | } | |
1da177e4 | 215 | |
8a7b8a89 CH |
216 | out_unlock: |
217 | mutex_unlock(&q->qi_quotaofflock); | |
218 | return error; | |
1da177e4 LT |
219 | } |
220 | ||
5d18898b CH |
221 | STATIC int |
222 | xfs_qm_scall_trunc_qfile( | |
223 | struct xfs_mount *mp, | |
224 | xfs_ino_t ino) | |
225 | { | |
226 | struct xfs_inode *ip; | |
227 | struct xfs_trans *tp; | |
228 | int error; | |
229 | ||
230 | if (ino == NULLFSINO) | |
231 | return 0; | |
232 | ||
233 | error = xfs_iget(mp, NULL, ino, 0, 0, &ip); | |
234 | if (error) | |
235 | return error; | |
236 | ||
237 | xfs_ilock(ip, XFS_IOLOCK_EXCL); | |
238 | ||
239 | tp = xfs_trans_alloc(mp, XFS_TRANS_TRUNCATE_FILE); | |
3d3c8b52 | 240 | error = xfs_trans_reserve(tp, &M_RES(mp)->tr_itruncate, 0, 0); |
5d18898b | 241 | if (error) { |
4906e215 | 242 | xfs_trans_cancel(tp); |
5d18898b CH |
243 | xfs_iunlock(ip, XFS_IOLOCK_EXCL); |
244 | goto out_put; | |
245 | } | |
246 | ||
247 | xfs_ilock(ip, XFS_ILOCK_EXCL); | |
ddc3415a | 248 | xfs_trans_ijoin(tp, ip, 0); |
5d18898b | 249 | |
673e8e59 | 250 | ip->i_d.di_size = 0; |
673e8e59 CH |
251 | xfs_trans_log_inode(tp, ip, XFS_ILOG_CORE); |
252 | ||
253 | error = xfs_itruncate_extents(&tp, ip, XFS_DATA_FORK, 0); | |
5d18898b | 254 | if (error) { |
4906e215 | 255 | xfs_trans_cancel(tp); |
5d18898b CH |
256 | goto out_unlock; |
257 | } | |
258 | ||
673e8e59 CH |
259 | ASSERT(ip->i_d.di_nextents == 0); |
260 | ||
dcd79a14 | 261 | xfs_trans_ichgtime(tp, ip, XFS_ICHGTIME_MOD | XFS_ICHGTIME_CHG); |
70393313 | 262 | error = xfs_trans_commit(tp); |
5d18898b CH |
263 | |
264 | out_unlock: | |
265 | xfs_iunlock(ip, XFS_ILOCK_EXCL | XFS_IOLOCK_EXCL); | |
266 | out_put: | |
267 | IRELE(ip); | |
268 | return error; | |
269 | } | |
270 | ||
fcafb71b | 271 | int |
1da177e4 LT |
272 | xfs_qm_scall_trunc_qfiles( |
273 | xfs_mount_t *mp, | |
274 | uint flags) | |
275 | { | |
2451337d | 276 | int error = -EINVAL; |
1da177e4 | 277 | |
f58522c5 ES |
278 | if (!xfs_sb_version_hasquota(&mp->m_sb) || flags == 0 || |
279 | (flags & ~XFS_DQ_ALLTYPES)) { | |
08e96e1a | 280 | xfs_debug(mp, "%s: flags=%x m_qflags=%x", |
8221112b | 281 | __func__, flags, mp->m_qflags); |
2451337d | 282 | return -EINVAL; |
1da177e4 LT |
283 | } |
284 | ||
c61a9e39 | 285 | if (flags & XFS_DQ_USER) { |
5d18898b | 286 | error = xfs_qm_scall_trunc_qfile(mp, mp->m_sb.sb_uquotino); |
c61a9e39 JL |
287 | if (error) |
288 | return error; | |
289 | } | |
290 | if (flags & XFS_DQ_GROUP) { | |
291 | error = xfs_qm_scall_trunc_qfile(mp, mp->m_sb.sb_gquotino); | |
292 | if (error) | |
293 | return error; | |
294 | } | |
d892d586 | 295 | if (flags & XFS_DQ_PROJ) |
c61a9e39 | 296 | error = xfs_qm_scall_trunc_qfile(mp, mp->m_sb.sb_pquotino); |
1da177e4 | 297 | |
c61a9e39 | 298 | return error; |
1da177e4 LT |
299 | } |
300 | ||
1da177e4 LT |
301 | /* |
302 | * Switch on (a given) quota enforcement for a filesystem. This takes | |
303 | * effect immediately. | |
304 | * (Switching on quota accounting must be done at mount time.) | |
305 | */ | |
fcafb71b | 306 | int |
1da177e4 LT |
307 | xfs_qm_scall_quotaon( |
308 | xfs_mount_t *mp, | |
309 | uint flags) | |
310 | { | |
311 | int error; | |
1da177e4 | 312 | uint qf; |
1da177e4 | 313 | |
1da177e4 LT |
314 | flags &= (XFS_ALL_QUOTA_ACCT | XFS_ALL_QUOTA_ENFD); |
315 | /* | |
316 | * Switching on quota accounting must be done at mount time. | |
317 | */ | |
1da177e4 LT |
318 | flags &= ~(XFS_ALL_QUOTA_ACCT); |
319 | ||
1da177e4 | 320 | if (flags == 0) { |
08e96e1a | 321 | xfs_debug(mp, "%s: zero flags, m_qflags=%x", |
8221112b | 322 | __func__, mp->m_qflags); |
2451337d | 323 | return -EINVAL; |
1da177e4 LT |
324 | } |
325 | ||
1da177e4 LT |
326 | /* |
327 | * Can't enforce without accounting. We check the superblock | |
328 | * qflags here instead of m_qflags because rootfs can have | |
329 | * quota acct on ondisk without m_qflags' knowing. | |
330 | */ | |
fbf64b3d | 331 | if (((mp->m_sb.sb_qflags & XFS_UQUOTA_ACCT) == 0 && |
83e782e1 | 332 | (flags & XFS_UQUOTA_ENFD)) || |
fbf64b3d | 333 | ((mp->m_sb.sb_qflags & XFS_GQUOTA_ACCT) == 0 && |
83e782e1 | 334 | (flags & XFS_GQUOTA_ENFD)) || |
fbf64b3d | 335 | ((mp->m_sb.sb_qflags & XFS_PQUOTA_ACCT) == 0 && |
83e782e1 | 336 | (flags & XFS_PQUOTA_ENFD))) { |
8221112b | 337 | xfs_debug(mp, |
08e96e1a | 338 | "%s: Can't enforce without acct, flags=%x sbflags=%x", |
8221112b | 339 | __func__, flags, mp->m_sb.sb_qflags); |
2451337d | 340 | return -EINVAL; |
1da177e4 LT |
341 | } |
342 | /* | |
25985edc | 343 | * If everything's up to-date incore, then don't waste time. |
1da177e4 LT |
344 | */ |
345 | if ((mp->m_qflags & flags) == flags) | |
2451337d | 346 | return -EEXIST; |
1da177e4 LT |
347 | |
348 | /* | |
349 | * Change sb_qflags on disk but not incore mp->qflags | |
350 | * if this is the root filesystem. | |
351 | */ | |
3685c2a1 | 352 | spin_lock(&mp->m_sb_lock); |
1da177e4 LT |
353 | qf = mp->m_sb.sb_qflags; |
354 | mp->m_sb.sb_qflags = qf | flags; | |
3685c2a1 | 355 | spin_unlock(&mp->m_sb_lock); |
1da177e4 LT |
356 | |
357 | /* | |
358 | * There's nothing to change if it's the same. | |
359 | */ | |
4d11a402 | 360 | if ((qf & flags) == flags) |
2451337d | 361 | return -EEXIST; |
1da177e4 | 362 | |
61e63ecb DC |
363 | error = xfs_sync_sb(mp, false); |
364 | if (error) | |
d99831ff | 365 | return error; |
1da177e4 LT |
366 | /* |
367 | * If we aren't trying to switch on quota enforcement, we are done. | |
368 | */ | |
369 | if (((mp->m_sb.sb_qflags & XFS_UQUOTA_ACCT) != | |
370 | (mp->m_qflags & XFS_UQUOTA_ACCT)) || | |
c8ad20ff NS |
371 | ((mp->m_sb.sb_qflags & XFS_PQUOTA_ACCT) != |
372 | (mp->m_qflags & XFS_PQUOTA_ACCT)) || | |
373 | ((mp->m_sb.sb_qflags & XFS_GQUOTA_ACCT) != | |
fbf64b3d | 374 | (mp->m_qflags & XFS_GQUOTA_ACCT))) |
d99831ff | 375 | return 0; |
1da177e4 LT |
376 | |
377 | if (! XFS_IS_QUOTA_RUNNING(mp)) | |
2451337d | 378 | return -ESRCH; |
1da177e4 LT |
379 | |
380 | /* | |
381 | * Switch on quota enforcement in core. | |
382 | */ | |
8a7b8a89 | 383 | mutex_lock(&mp->m_quotainfo->qi_quotaofflock); |
1da177e4 | 384 | mp->m_qflags |= (flags & XFS_ALL_QUOTA_ENFD); |
8a7b8a89 | 385 | mutex_unlock(&mp->m_quotainfo->qi_quotaofflock); |
1da177e4 | 386 | |
d99831ff | 387 | return 0; |
1da177e4 LT |
388 | } |
389 | ||
14bf61ff JK |
390 | #define XFS_QC_MASK \ |
391 | (QC_LIMIT_MASK | QC_TIMER_MASK | QC_WARNS_MASK) | |
c472b432 | 392 | |
1da177e4 LT |
393 | /* |
394 | * Adjust quota limits, and start/stop timers accordingly. | |
395 | */ | |
fcafb71b | 396 | int |
1da177e4 | 397 | xfs_qm_scall_setqlim( |
b1366451 | 398 | struct xfs_mount *mp, |
1da177e4 LT |
399 | xfs_dqid_t id, |
400 | uint type, | |
14bf61ff | 401 | struct qc_dqblk *newlim) |
1da177e4 | 402 | { |
8a7b8a89 | 403 | struct xfs_quotainfo *q = mp->m_quotainfo; |
b1366451 BF |
404 | struct xfs_disk_dquot *ddq; |
405 | struct xfs_dquot *dqp; | |
406 | struct xfs_trans *tp; | |
be607946 | 407 | struct xfs_def_quota *defq; |
1da177e4 LT |
408 | int error; |
409 | xfs_qcnt_t hard, soft; | |
410 | ||
14bf61ff | 411 | if (newlim->d_fieldmask & ~XFS_QC_MASK) |
2451337d | 412 | return -EINVAL; |
14bf61ff | 413 | if ((newlim->d_fieldmask & XFS_QC_MASK) == 0) |
c472b432 | 414 | return 0; |
1da177e4 | 415 | |
1da177e4 LT |
416 | /* |
417 | * We don't want to race with a quotaoff so take the quotaoff lock. | |
f648167f DC |
418 | * We don't hold an inode lock, so there's nothing else to stop |
419 | * a quotaoff from happening. | |
1da177e4 | 420 | */ |
8a7b8a89 | 421 | mutex_lock(&q->qi_quotaofflock); |
1da177e4 LT |
422 | |
423 | /* | |
f648167f DC |
424 | * Get the dquot (locked) before we start, as we need to do a |
425 | * transaction to allocate it if it doesn't exist. Once we have the | |
426 | * dquot, unlock it so we can start the next transaction safely. We hold | |
427 | * a reference to the dquot, so it's safe to do this unlock/lock without | |
428 | * it being reclaimed in the mean time. | |
1da177e4 | 429 | */ |
f648167f DC |
430 | error = xfs_qm_dqget(mp, NULL, id, type, XFS_QMOPT_DQALLOC, &dqp); |
431 | if (error) { | |
2451337d | 432 | ASSERT(error != -ENOENT); |
8a7b8a89 | 433 | goto out_unlock; |
1da177e4 | 434 | } |
be607946 CM |
435 | |
436 | defq = xfs_get_defquota(dqp, q); | |
f648167f DC |
437 | xfs_dqunlock(dqp); |
438 | ||
439 | tp = xfs_trans_alloc(mp, XFS_TRANS_QM_SETQLIM); | |
3d3c8b52 | 440 | error = xfs_trans_reserve(tp, &M_RES(mp)->tr_qm_setqlim, 0, 0); |
f648167f | 441 | if (error) { |
4906e215 | 442 | xfs_trans_cancel(tp); |
f648167f DC |
443 | goto out_rele; |
444 | } | |
445 | ||
446 | xfs_dqlock(dqp); | |
1da177e4 LT |
447 | xfs_trans_dqjoin(tp, dqp); |
448 | ddq = &dqp->q_core; | |
449 | ||
450 | /* | |
451 | * Make sure that hardlimits are >= soft limits before changing. | |
452 | */ | |
14bf61ff JK |
453 | hard = (newlim->d_fieldmask & QC_SPC_HARD) ? |
454 | (xfs_qcnt_t) XFS_B_TO_FSB(mp, newlim->d_spc_hardlimit) : | |
1149d96a | 455 | be64_to_cpu(ddq->d_blk_hardlimit); |
14bf61ff JK |
456 | soft = (newlim->d_fieldmask & QC_SPC_SOFT) ? |
457 | (xfs_qcnt_t) XFS_B_TO_FSB(mp, newlim->d_spc_softlimit) : | |
1149d96a | 458 | be64_to_cpu(ddq->d_blk_softlimit); |
1da177e4 | 459 | if (hard == 0 || hard >= soft) { |
1149d96a CH |
460 | ddq->d_blk_hardlimit = cpu_to_be64(hard); |
461 | ddq->d_blk_softlimit = cpu_to_be64(soft); | |
b1366451 | 462 | xfs_dquot_set_prealloc_limits(dqp); |
1da177e4 | 463 | if (id == 0) { |
be607946 CM |
464 | defq->bhardlimit = hard; |
465 | defq->bsoftlimit = soft; | |
1da177e4 LT |
466 | } |
467 | } else { | |
08e96e1a | 468 | xfs_debug(mp, "blkhard %Ld < blksoft %Ld", hard, soft); |
1da177e4 | 469 | } |
14bf61ff JK |
470 | hard = (newlim->d_fieldmask & QC_RT_SPC_HARD) ? |
471 | (xfs_qcnt_t) XFS_B_TO_FSB(mp, newlim->d_rt_spc_hardlimit) : | |
1149d96a | 472 | be64_to_cpu(ddq->d_rtb_hardlimit); |
14bf61ff JK |
473 | soft = (newlim->d_fieldmask & QC_RT_SPC_SOFT) ? |
474 | (xfs_qcnt_t) XFS_B_TO_FSB(mp, newlim->d_rt_spc_softlimit) : | |
1149d96a | 475 | be64_to_cpu(ddq->d_rtb_softlimit); |
1da177e4 | 476 | if (hard == 0 || hard >= soft) { |
1149d96a CH |
477 | ddq->d_rtb_hardlimit = cpu_to_be64(hard); |
478 | ddq->d_rtb_softlimit = cpu_to_be64(soft); | |
1da177e4 | 479 | if (id == 0) { |
be607946 CM |
480 | defq->rtbhardlimit = hard; |
481 | defq->rtbsoftlimit = soft; | |
1da177e4 LT |
482 | } |
483 | } else { | |
08e96e1a | 484 | xfs_debug(mp, "rtbhard %Ld < rtbsoft %Ld", hard, soft); |
1da177e4 LT |
485 | } |
486 | ||
14bf61ff | 487 | hard = (newlim->d_fieldmask & QC_INO_HARD) ? |
1da177e4 | 488 | (xfs_qcnt_t) newlim->d_ino_hardlimit : |
1149d96a | 489 | be64_to_cpu(ddq->d_ino_hardlimit); |
14bf61ff | 490 | soft = (newlim->d_fieldmask & QC_INO_SOFT) ? |
1da177e4 | 491 | (xfs_qcnt_t) newlim->d_ino_softlimit : |
1149d96a | 492 | be64_to_cpu(ddq->d_ino_softlimit); |
1da177e4 | 493 | if (hard == 0 || hard >= soft) { |
1149d96a CH |
494 | ddq->d_ino_hardlimit = cpu_to_be64(hard); |
495 | ddq->d_ino_softlimit = cpu_to_be64(soft); | |
1da177e4 | 496 | if (id == 0) { |
be607946 CM |
497 | defq->ihardlimit = hard; |
498 | defq->isoftlimit = soft; | |
1da177e4 LT |
499 | } |
500 | } else { | |
08e96e1a | 501 | xfs_debug(mp, "ihard %Ld < isoft %Ld", hard, soft); |
1da177e4 LT |
502 | } |
503 | ||
754002b4 NS |
504 | /* |
505 | * Update warnings counter(s) if requested | |
506 | */ | |
14bf61ff JK |
507 | if (newlim->d_fieldmask & QC_SPC_WARNS) |
508 | ddq->d_bwarns = cpu_to_be16(newlim->d_spc_warns); | |
509 | if (newlim->d_fieldmask & QC_INO_WARNS) | |
510 | ddq->d_iwarns = cpu_to_be16(newlim->d_ino_warns); | |
511 | if (newlim->d_fieldmask & QC_RT_SPC_WARNS) | |
512 | ddq->d_rtbwarns = cpu_to_be16(newlim->d_rt_spc_warns); | |
754002b4 | 513 | |
1da177e4 LT |
514 | if (id == 0) { |
515 | /* | |
516 | * Timelimits for the super user set the relative time | |
517 | * the other users can be over quota for this file system. | |
518 | * If it is zero a default is used. Ditto for the default | |
754002b4 NS |
519 | * soft and hard limit values (already done, above), and |
520 | * for warnings. | |
1da177e4 | 521 | */ |
14bf61ff JK |
522 | if (newlim->d_fieldmask & QC_SPC_TIMER) { |
523 | q->qi_btimelimit = newlim->d_spc_timer; | |
524 | ddq->d_btimer = cpu_to_be32(newlim->d_spc_timer); | |
1da177e4 | 525 | } |
14bf61ff JK |
526 | if (newlim->d_fieldmask & QC_INO_TIMER) { |
527 | q->qi_itimelimit = newlim->d_ino_timer; | |
528 | ddq->d_itimer = cpu_to_be32(newlim->d_ino_timer); | |
1da177e4 | 529 | } |
14bf61ff JK |
530 | if (newlim->d_fieldmask & QC_RT_SPC_TIMER) { |
531 | q->qi_rtbtimelimit = newlim->d_rt_spc_timer; | |
532 | ddq->d_rtbtimer = cpu_to_be32(newlim->d_rt_spc_timer); | |
1da177e4 | 533 | } |
14bf61ff JK |
534 | if (newlim->d_fieldmask & QC_SPC_WARNS) |
535 | q->qi_bwarnlimit = newlim->d_spc_warns; | |
536 | if (newlim->d_fieldmask & QC_INO_WARNS) | |
537 | q->qi_iwarnlimit = newlim->d_ino_warns; | |
538 | if (newlim->d_fieldmask & QC_RT_SPC_WARNS) | |
539 | q->qi_rtbwarnlimit = newlim->d_rt_spc_warns; | |
754002b4 | 540 | } else { |
1da177e4 LT |
541 | /* |
542 | * If the user is now over quota, start the timelimit. | |
543 | * The user will not be 'warned'. | |
544 | * Note that we keep the timers ticking, whether enforcement | |
545 | * is on or off. We don't really want to bother with iterating | |
546 | * over all ondisk dquots and turning the timers on/off. | |
547 | */ | |
548 | xfs_qm_adjust_dqtimers(mp, ddq); | |
549 | } | |
550 | dqp->dq_flags |= XFS_DQ_DIRTY; | |
551 | xfs_trans_log_dquot(tp, dqp); | |
552 | ||
70393313 | 553 | error = xfs_trans_commit(tp); |
1da177e4 | 554 | |
f648167f DC |
555 | out_rele: |
556 | xfs_qm_dqrele(dqp); | |
557 | out_unlock: | |
8a7b8a89 | 558 | mutex_unlock(&q->qi_quotaofflock); |
e5720eec | 559 | return error; |
1da177e4 LT |
560 | } |
561 | ||
1da177e4 LT |
562 | STATIC int |
563 | xfs_qm_log_quotaoff_end( | |
564 | xfs_mount_t *mp, | |
565 | xfs_qoff_logitem_t *startqoff, | |
566 | uint flags) | |
567 | { | |
c8ad20ff | 568 | xfs_trans_t *tp; |
1da177e4 | 569 | int error; |
c8ad20ff | 570 | xfs_qoff_logitem_t *qoffi; |
1da177e4 LT |
571 | |
572 | tp = xfs_trans_alloc(mp, XFS_TRANS_QM_QUOTAOFF_END); | |
573 | ||
3d3c8b52 | 574 | error = xfs_trans_reserve(tp, &M_RES(mp)->tr_qm_equotaoff, 0, 0); |
762d7ba6 | 575 | if (error) { |
4906e215 | 576 | xfs_trans_cancel(tp); |
d99831ff | 577 | return error; |
1da177e4 LT |
578 | } |
579 | ||
580 | qoffi = xfs_trans_get_qoff_item(tp, startqoff, | |
581 | flags & XFS_ALL_QUOTA_ACCT); | |
582 | xfs_trans_log_quotaoff_item(tp, qoffi); | |
583 | ||
584 | /* | |
585 | * We have to make sure that the transaction is secure on disk before we | |
586 | * return and actually stop quota accounting. So, make it synchronous. | |
587 | * We don't care about quotoff's performance. | |
588 | */ | |
589 | xfs_trans_set_sync(tp); | |
70393313 | 590 | return xfs_trans_commit(tp); |
1da177e4 LT |
591 | } |
592 | ||
593 | ||
594 | STATIC int | |
595 | xfs_qm_log_quotaoff( | |
596 | xfs_mount_t *mp, | |
597 | xfs_qoff_logitem_t **qoffstartp, | |
598 | uint flags) | |
599 | { | |
600 | xfs_trans_t *tp; | |
601 | int error; | |
5d45ee1b BF |
602 | xfs_qoff_logitem_t *qoffi; |
603 | ||
604 | *qoffstartp = NULL; | |
1da177e4 LT |
605 | |
606 | tp = xfs_trans_alloc(mp, XFS_TRANS_QM_QUOTAOFF); | |
3d3c8b52 | 607 | error = xfs_trans_reserve(tp, &M_RES(mp)->tr_qm_quotaoff, 0, 0); |
5d45ee1b | 608 | if (error) { |
4906e215 | 609 | xfs_trans_cancel(tp); |
5d45ee1b BF |
610 | goto out; |
611 | } | |
1da177e4 LT |
612 | |
613 | qoffi = xfs_trans_get_qoff_item(tp, NULL, flags & XFS_ALL_QUOTA_ACCT); | |
614 | xfs_trans_log_quotaoff_item(tp, qoffi); | |
615 | ||
3685c2a1 | 616 | spin_lock(&mp->m_sb_lock); |
1da177e4 | 617 | mp->m_sb.sb_qflags = (mp->m_qflags & ~(flags)) & XFS_MOUNT_QUOTA_ALL; |
3685c2a1 | 618 | spin_unlock(&mp->m_sb_lock); |
1da177e4 | 619 | |
61e63ecb | 620 | xfs_log_sb(tp); |
1da177e4 LT |
621 | |
622 | /* | |
623 | * We have to make sure that the transaction is secure on disk before we | |
624 | * return and actually stop quota accounting. So, make it synchronous. | |
625 | * We don't care about quotoff's performance. | |
626 | */ | |
627 | xfs_trans_set_sync(tp); | |
70393313 | 628 | error = xfs_trans_commit(tp); |
5d45ee1b BF |
629 | if (error) |
630 | goto out; | |
1da177e4 | 631 | |
1da177e4 | 632 | *qoffstartp = qoffi; |
5d45ee1b | 633 | out: |
d99831ff | 634 | return error; |
1da177e4 LT |
635 | } |
636 | ||
637 | ||
18535a7e CH |
638 | int |
639 | xfs_qm_scall_getquota( | |
640 | struct xfs_mount *mp, | |
296c24e2 | 641 | xfs_dqid_t *id, |
18535a7e | 642 | uint type, |
296c24e2 ES |
643 | struct qc_dqblk *dst, |
644 | uint dqget_flags) | |
1da177e4 | 645 | { |
18535a7e CH |
646 | struct xfs_dquot *dqp; |
647 | int error; | |
648 | ||
649 | /* | |
650 | * Try to get the dquot. We don't want it allocated on disk, so | |
651 | * we aren't passing the XFS_QMOPT_DOALLOC flag. If it doesn't | |
652 | * exist, we'll get ENOENT back. | |
653 | */ | |
296c24e2 | 654 | error = xfs_qm_dqget(mp, NULL, *id, type, dqget_flags, &dqp); |
18535a7e CH |
655 | if (error) |
656 | return error; | |
657 | ||
658 | /* | |
659 | * If everything's NULL, this dquot doesn't quite exist as far as | |
660 | * our utility programs are concerned. | |
661 | */ | |
662 | if (XFS_IS_DQUOT_UNINITIALIZED(dqp)) { | |
2451337d | 663 | error = -ENOENT; |
18535a7e CH |
664 | goto out_put; |
665 | } | |
666 | ||
296c24e2 ES |
667 | /* Fill in the ID we actually read from disk */ |
668 | *id = be32_to_cpu(dqp->q_core.d_id); | |
669 | ||
1da177e4 | 670 | memset(dst, 0, sizeof(*dst)); |
14bf61ff JK |
671 | dst->d_spc_hardlimit = |
672 | XFS_FSB_TO_B(mp, be64_to_cpu(dqp->q_core.d_blk_hardlimit)); | |
673 | dst->d_spc_softlimit = | |
674 | XFS_FSB_TO_B(mp, be64_to_cpu(dqp->q_core.d_blk_softlimit)); | |
18535a7e CH |
675 | dst->d_ino_hardlimit = be64_to_cpu(dqp->q_core.d_ino_hardlimit); |
676 | dst->d_ino_softlimit = be64_to_cpu(dqp->q_core.d_ino_softlimit); | |
14bf61ff JK |
677 | dst->d_space = XFS_FSB_TO_B(mp, dqp->q_res_bcount); |
678 | dst->d_ino_count = dqp->q_res_icount; | |
679 | dst->d_spc_timer = be32_to_cpu(dqp->q_core.d_btimer); | |
680 | dst->d_ino_timer = be32_to_cpu(dqp->q_core.d_itimer); | |
681 | dst->d_ino_warns = be16_to_cpu(dqp->q_core.d_iwarns); | |
682 | dst->d_spc_warns = be16_to_cpu(dqp->q_core.d_bwarns); | |
683 | dst->d_rt_spc_hardlimit = | |
684 | XFS_FSB_TO_B(mp, be64_to_cpu(dqp->q_core.d_rtb_hardlimit)); | |
685 | dst->d_rt_spc_softlimit = | |
686 | XFS_FSB_TO_B(mp, be64_to_cpu(dqp->q_core.d_rtb_softlimit)); | |
687 | dst->d_rt_space = XFS_FSB_TO_B(mp, dqp->q_res_rtbcount); | |
688 | dst->d_rt_spc_timer = be32_to_cpu(dqp->q_core.d_rtbtimer); | |
689 | dst->d_rt_spc_warns = be16_to_cpu(dqp->q_core.d_rtbwarns); | |
1da177e4 LT |
690 | |
691 | /* | |
692 | * Internally, we don't reset all the timers when quota enforcement | |
c41564b5 | 693 | * gets turned off. No need to confuse the user level code, |
1da177e4 LT |
694 | * so return zeroes in that case. |
695 | */ | |
83e782e1 CS |
696 | if ((!XFS_IS_UQUOTA_ENFORCED(mp) && |
697 | dqp->q_core.d_flags == XFS_DQ_USER) || | |
698 | (!XFS_IS_GQUOTA_ENFORCED(mp) && | |
699 | dqp->q_core.d_flags == XFS_DQ_GROUP) || | |
700 | (!XFS_IS_PQUOTA_ENFORCED(mp) && | |
701 | dqp->q_core.d_flags == XFS_DQ_PROJ)) { | |
14bf61ff JK |
702 | dst->d_spc_timer = 0; |
703 | dst->d_ino_timer = 0; | |
704 | dst->d_rt_spc_timer = 0; | |
1da177e4 LT |
705 | } |
706 | ||
707 | #ifdef DEBUG | |
14bf61ff JK |
708 | if (((XFS_IS_UQUOTA_ENFORCED(mp) && type == XFS_DQ_USER) || |
709 | (XFS_IS_GQUOTA_ENFORCED(mp) && type == XFS_DQ_GROUP) || | |
710 | (XFS_IS_PQUOTA_ENFORCED(mp) && type == XFS_DQ_PROJ)) && | |
296c24e2 | 711 | *id != 0) { |
14bf61ff JK |
712 | if ((dst->d_space > dst->d_spc_softlimit) && |
713 | (dst->d_spc_softlimit > 0)) { | |
714 | ASSERT(dst->d_spc_timer != 0); | |
1da177e4 | 715 | } |
14bf61ff | 716 | if ((dst->d_ino_count > dst->d_ino_softlimit) && |
1da177e4 | 717 | (dst->d_ino_softlimit > 0)) { |
14bf61ff | 718 | ASSERT(dst->d_ino_timer != 0); |
1da177e4 LT |
719 | } |
720 | } | |
721 | #endif | |
18535a7e CH |
722 | out_put: |
723 | xfs_qm_dqput(dqp); | |
724 | return error; | |
1da177e4 LT |
725 | } |
726 | ||
1da177e4 | 727 | |
fe588ed3 CH |
728 | STATIC int |
729 | xfs_dqrele_inode( | |
730 | struct xfs_inode *ip, | |
a454f742 BF |
731 | int flags, |
732 | void *args) | |
1da177e4 | 733 | { |
fe588ed3 | 734 | /* skip quota inodes */ |
8a7b8a89 | 735 | if (ip == ip->i_mount->m_quotainfo->qi_uquotaip || |
92f8ff73 CS |
736 | ip == ip->i_mount->m_quotainfo->qi_gquotaip || |
737 | ip == ip->i_mount->m_quotainfo->qi_pquotaip) { | |
fe588ed3 CH |
738 | ASSERT(ip->i_udquot == NULL); |
739 | ASSERT(ip->i_gdquot == NULL); | |
92f8ff73 | 740 | ASSERT(ip->i_pdquot == NULL); |
fe588ed3 CH |
741 | return 0; |
742 | } | |
cb4f0d1d | 743 | |
fe588ed3 CH |
744 | xfs_ilock(ip, XFS_ILOCK_EXCL); |
745 | if ((flags & XFS_UQUOTA_ACCT) && ip->i_udquot) { | |
746 | xfs_qm_dqrele(ip->i_udquot); | |
747 | ip->i_udquot = NULL; | |
748 | } | |
92f8ff73 | 749 | if ((flags & XFS_GQUOTA_ACCT) && ip->i_gdquot) { |
fe588ed3 CH |
750 | xfs_qm_dqrele(ip->i_gdquot); |
751 | ip->i_gdquot = NULL; | |
752 | } | |
92f8ff73 CS |
753 | if ((flags & XFS_PQUOTA_ACCT) && ip->i_pdquot) { |
754 | xfs_qm_dqrele(ip->i_pdquot); | |
755 | ip->i_pdquot = NULL; | |
756 | } | |
f2d67614 | 757 | xfs_iunlock(ip, XFS_ILOCK_EXCL); |
fe588ed3 | 758 | return 0; |
5b4d89ae DC |
759 | } |
760 | ||
fe588ed3 | 761 | |
5b4d89ae DC |
762 | /* |
763 | * Go thru all the inodes in the file system, releasing their dquots. | |
fe588ed3 | 764 | * |
5b4d89ae | 765 | * Note that the mount structure gets modified to indicate that quotas are off |
fe588ed3 | 766 | * AFTER this, in the case of quotaoff. |
5b4d89ae DC |
767 | */ |
768 | void | |
769 | xfs_qm_dqrele_all_inodes( | |
770 | struct xfs_mount *mp, | |
771 | uint flags) | |
772 | { | |
5b4d89ae | 773 | ASSERT(mp->m_quotainfo); |
a454f742 | 774 | xfs_inode_ag_iterator(mp, xfs_dqrele_inode, flags, NULL); |
1da177e4 | 775 | } |