| /linux/fs/ |
| H A D | mnt_idmapping.c | 80 vfsuid_t make_vfsuid(struct mnt_idmap *idmap, in make_vfsuid() argument 86 if (idmap == &nop_mnt_idmap) in make_vfsuid() 88 if (idmap == &invalid_mnt_idmap) in make_vfsuid() 96 return VFSUIDT_INIT_RAW(map_id_down(&idmap->uid_map, uid)); in make_vfsuid() 120 vfsgid_t make_vfsgid(struct mnt_idmap *idmap, in make_vfsgid() argument 125 if (idmap == &nop_mnt_idmap) in make_vfsgid() 127 if (idmap == &invalid_mnt_idmap) in make_vfsgid() 135 return VFSGIDT_INIT_RAW(map_id_down(&idmap->gid_map, gid)); in make_vfsgid() 150 kuid_t from_vfsuid(struct mnt_idmap *idmap, in from_vfsuid() argument 155 if (idmap == &nop_mnt_idmap) in from_vfsuid() [all …]
|
| H A D | attr.c | 33 int setattr_should_drop_sgid(struct mnt_idmap *idmap, in setattr_should_drop_sgid() argument 42 if (!in_group_or_capable(idmap, inode, i_gid_into_vfsgid(idmap, inode))) in setattr_should_drop_sgid() 63 int setattr_should_drop_suidgid(struct mnt_idmap *idmap, in setattr_should_drop_suidgid() argument 73 kill |= setattr_should_drop_sgid(idmap, inode); in setattr_should_drop_suidgid() 94 static bool chown_ok(struct mnt_idmap *idmap, in chown_ok() argument 97 vfsuid_t vfsuid = i_uid_into_vfsuid(idmap, inode); in chown_ok() 101 if (capable_wrt_inode_uidgid(idmap, inode, CAP_CHOWN)) in chown_ok() 121 static bool chgrp_ok(struct mnt_idmap *idmap, in chgrp_ok() argument 124 vfsgid_t vfsgid = i_gid_into_vfsgid(idmap, inode); in chgrp_ok() 125 vfsuid_t vfsuid = i_uid_into_vfsuid(idmap, inode); in chgrp_ok() [all …]
|
| H A D | posix_acl.c | 114 static struct posix_acl *__get_acl(struct mnt_idmap *idmap, in __get_acl() argument 157 acl = inode->i_op->get_acl(idmap, dentry, type); in __get_acl() 374 posix_acl_permission(struct mnt_idmap *idmap, struct inode *inode, in posix_acl_permission() argument 389 vfsuid = i_uid_into_vfsuid(idmap, inode); in posix_acl_permission() 394 vfsuid = make_vfsuid(idmap, fs_userns, in posix_acl_permission() 400 vfsgid = i_gid_into_vfsgid(idmap, inode); in posix_acl_permission() 408 vfsgid = make_vfsgid(idmap, fs_userns, in posix_acl_permission() 604 posix_acl_chmod(struct mnt_idmap *idmap, struct dentry *dentry, in posix_acl_chmod() argument 626 ret = inode->i_op->set_acl(idmap, dentry, acl, ACL_TYPE_ACCESS); in posix_acl_chmod() 705 int posix_acl_update_mode(struct mnt_idmap *idmap, in posix_acl_update_mode() argument [all …]
|
| H A D | bad_inode.c | 30 static int bad_inode_create(struct mnt_idmap *idmap, in bad_inode_create() argument 54 static int bad_inode_symlink(struct mnt_idmap *idmap, in bad_inode_symlink() argument 61 static struct dentry *bad_inode_mkdir(struct mnt_idmap *idmap, struct inode *dir, in bad_inode_mkdir() argument 72 static int bad_inode_mknod(struct mnt_idmap *idmap, struct inode *dir, in bad_inode_mknod() argument 78 static int bad_inode_rename2(struct mnt_idmap *idmap, in bad_inode_rename2() argument 92 static int bad_inode_permission(struct mnt_idmap *idmap, in bad_inode_permission() argument 98 static int bad_inode_getattr(struct mnt_idmap *idmap, in bad_inode_getattr() argument 105 static int bad_inode_setattr(struct mnt_idmap *idmap, in bad_inode_setattr() argument 148 static int bad_inode_tmpfile(struct mnt_idmap *idmap, in bad_inode_tmpfile() argument 155 static int bad_inode_set_acl(struct mnt_idmap *idmap, in bad_inode_set_acl() argument
|
| H A D | xattr.c | 97 int may_write_xattr(struct mnt_idmap *idmap, struct inode *inode) in may_write_xattr() argument 103 if (HAS_UNMAPPED_ID(idmap, inode)) in may_write_xattr() 113 xattr_permission(struct mnt_idmap *idmap, struct inode *inode, in xattr_permission() argument 119 ret = may_write_xattr(idmap, inode); in xattr_permission() 151 !inode_owner_or_capable(idmap, inode)) in xattr_permission() 155 return inode_permission(idmap, inode, mask); in xattr_permission() 184 __vfs_setxattr(struct mnt_idmap *idmap, struct dentry *dentry, in __vfs_setxattr() argument 200 return handler->set(handler, idmap, dentry, inode, name, value, in __vfs_setxattr() 222 int __vfs_setxattr_noperm(struct mnt_idmap *idmap, in __vfs_setxattr_noperm() argument 234 error = __vfs_setxattr(idmap, dentry, inode, name, value, in __vfs_setxattr_noperm() [all …]
|
| H A D | internal.h | 59 int may_linkat(struct mnt_idmap *idmap, const struct path *link); 66 int vfs_tmpfile(struct mnt_idmap *idmap, 208 bool in_group_or_capable(struct mnt_idmap *idmap, 295 int may_write_xattr(struct mnt_idmap *idmap, struct inode *inode); 298 int do_set_acl(struct mnt_idmap *idmap, struct dentry *dentry, 300 ssize_t do_get_acl(struct mnt_idmap *idmap, struct dentry *dentry, 303 static inline int do_set_acl(struct mnt_idmap *idmap, in do_set_acl() argument 309 static inline ssize_t do_get_acl(struct mnt_idmap *idmap, in do_get_acl() argument 323 struct mnt_idmap *mnt_idmap_get(struct mnt_idmap *idmap); 324 void mnt_idmap_put(struct mnt_idmap *idmap); [all …]
|
| H A D | namei.c | 317 static int check_acl(struct mnt_idmap *idmap, in check_acl() argument 330 return posix_acl_permission(idmap, inode, acl, mask); in check_acl() 337 int error = posix_acl_permission(idmap, inode, acl, mask); in check_acl() 381 static int acl_permission_check(struct mnt_idmap *idmap, in acl_permission_check() argument 410 vfsuid = i_uid_into_vfsuid(idmap, inode); in acl_permission_check() 419 int error = check_acl(idmap, inode, mask); in acl_permission_check() 433 vfsgid_t vfsgid = i_gid_into_vfsgid(idmap, inode); in acl_permission_check() 464 int generic_permission(struct mnt_idmap *idmap, struct inode *inode, in generic_permission() argument 472 ret = acl_permission_check(idmap, inode, mask); in generic_permission() 479 if (capable_wrt_inode_uidgid(idmap, inode, in generic_permission() [all …]
|
| /linux/fs/nfs/ |
| H A D | nfs4idmap.c | 65 struct idmap *idmap; member 68 struct idmap { struct 76 static struct user_namespace *idmap_userns(const struct idmap *idmap) in idmap_userns() argument 78 if (idmap && idmap->user_ns) in idmap_userns() 79 return idmap->user_ns; in idmap_userns() 280 const char *type, struct idmap *idmap) in nfs_idmap_request_key() argument 290 if (!idmap->user_ns || idmap->user_ns == &init_user_ns) in nfs_idmap_request_key() 293 mutex_lock(&idmap->idmap_mutex); in nfs_idmap_request_key() 295 desc, NULL, "", 0, idmap); in nfs_idmap_request_key() 296 mutex_unlock(&idmap->idmap_mutex); in nfs_idmap_request_key() [all …]
|
| /linux/include/linux/ |
| H A D | mnt_idmapping.h | 28 static inline bool is_valid_mnt_idmap(const struct mnt_idmap *idmap) in is_valid_mnt_idmap() argument 30 return idmap != &nop_mnt_idmap && idmap != &invalid_mnt_idmap; in is_valid_mnt_idmap() 124 struct mnt_idmap *mnt_idmap_get(struct mnt_idmap *idmap); 125 void mnt_idmap_put(struct mnt_idmap *idmap); 127 vfsuid_t make_vfsuid(struct mnt_idmap *idmap, 130 vfsgid_t make_vfsgid(struct mnt_idmap *idmap, 133 kuid_t from_vfsuid(struct mnt_idmap *idmap, 136 kgid_t from_vfsgid(struct mnt_idmap *idmap, 151 static inline bool vfsuid_has_fsmapping(struct mnt_idmap *idmap, in vfsuid_has_fsmapping() argument 155 return uid_valid(from_vfsuid(idmap, fs_userns, vfsuid)); in vfsuid_has_fsmapping() [all …]
|
| H A D | posix_acl.h | 108 int vfs_set_acl(struct mnt_idmap *idmap, struct dentry *dentry, 110 struct posix_acl *vfs_get_acl(struct mnt_idmap *idmap, 112 int vfs_remove_acl(struct mnt_idmap *idmap, struct dentry *dentry, 117 static inline int posix_acl_chmod(struct mnt_idmap *idmap, in posix_acl_chmod() argument 144 static inline int vfs_set_acl(struct mnt_idmap *idmap, in vfs_set_acl() argument 151 static inline struct posix_acl *vfs_get_acl(struct mnt_idmap *idmap, in vfs_get_acl() argument 158 static inline int vfs_remove_acl(struct mnt_idmap *idmap, in vfs_remove_acl() argument
|
| H A D | security.h | 188 int cap_inode_removexattr(struct mnt_idmap *idmap, 191 int cap_inode_killpriv(struct mnt_idmap *idmap, struct dentry *dentry); 192 int cap_inode_getsecurity(struct mnt_idmap *idmap, 408 void security_inode_post_create_tmpfile(struct mnt_idmap *idmap, 425 int security_inode_setattr(struct mnt_idmap *idmap, 427 void security_inode_post_setattr(struct mnt_idmap *idmap, struct dentry *dentry, 430 int security_inode_setxattr(struct mnt_idmap *idmap, 433 int security_inode_set_acl(struct mnt_idmap *idmap, 438 int security_inode_get_acl(struct mnt_idmap *idmap, 440 int security_inode_remove_acl(struct mnt_idmap *idmap, [all …]
|
| /linux/fs/smb/server/ |
| H A D | vfs.h | 76 void ksmbd_vfs_query_maximal_access(struct mnt_idmap *idmap, 104 ssize_t ksmbd_vfs_getxattr(struct mnt_idmap *idmap, 108 ssize_t ksmbd_vfs_casexattr_len(struct mnt_idmap *idmap, 111 int ksmbd_vfs_setxattr(struct mnt_idmap *idmap, 117 int ksmbd_vfs_remove_xattr(struct mnt_idmap *idmap, 142 struct mnt_idmap *idmap, 147 int ksmbd_vfs_remove_acl_xattrs(struct mnt_idmap *idmap, 149 int ksmbd_vfs_remove_sd_xattrs(struct mnt_idmap *idmap, const struct path *path); 151 struct mnt_idmap *idmap, 156 struct mnt_idmap *idmap, [all …]
|
| H A D | vfs.c | 145 void ksmbd_vfs_query_maximal_access(struct mnt_idmap *idmap, in ksmbd_vfs_query_maximal_access() argument 150 if (!inode_permission(idmap, d_inode(dentry), MAY_OPEN | MAY_WRITE)) in ksmbd_vfs_query_maximal_access() 156 if (!inode_permission(idmap, d_inode(dentry), MAY_OPEN | MAY_READ)) in ksmbd_vfs_query_maximal_access() 159 if (!inode_permission(idmap, d_inode(dentry), MAY_OPEN | MAY_EXEC)) in ksmbd_vfs_query_maximal_access() 162 if (!inode_permission(idmap, d_inode(dentry->d_parent), MAY_EXEC | MAY_WRITE)) in ksmbd_vfs_query_maximal_access() 214 struct mnt_idmap *idmap; in ksmbd_vfs_mkdir() local 230 idmap = mnt_idmap(path.mnt); in ksmbd_vfs_mkdir() 233 dentry = vfs_mkdir(idmap, d_inode(path.dentry), dentry, mode); in ksmbd_vfs_mkdir() 247 static ssize_t ksmbd_vfs_getcasexattr(struct mnt_idmap *idmap, in ksmbd_vfs_getcasexattr() argument 264 value_len = ksmbd_vfs_getxattr(idmap, in ksmbd_vfs_getcasexattr() [all …]
|
| H A D | smbacl.h | 84 int parse_sec_desc(struct mnt_idmap *idmap, struct smb_ntsd *pntsd, 86 int build_sec_desc(struct mnt_idmap *idmap, struct smb_ntsd *pntsd, 105 static inline uid_t posix_acl_uid_translate(struct mnt_idmap *idmap, in posix_acl_uid_translate() argument 111 vfsuid = make_vfsuid(idmap, &init_user_ns, pace->e_uid); in posix_acl_uid_translate() 117 static inline gid_t posix_acl_gid_translate(struct mnt_idmap *idmap, in posix_acl_gid_translate() argument 123 vfsgid = make_vfsgid(idmap, &init_user_ns, pace->e_gid); in posix_acl_gid_translate()
|
| H A D | smbacl.c | 257 static int sid_to_id(struct mnt_idmap *idmap, in sid_to_id() argument 284 uid = from_vfsuid(idmap, &init_user_ns, VFSUIDT_INIT(uid)); in sid_to_id() 295 gid = from_vfsgid(idmap, &init_user_ns, VFSGIDT_INIT(gid)); in sid_to_id() 370 static void parse_dacl(struct mnt_idmap *idmap, in parse_dacl() argument 503 ret = sid_to_id(idmap, &ppace[i]->sid, SIDOWNER, &temp_fattr); in parse_dacl() 589 static void set_posix_acl_entries_dacl(struct mnt_idmap *idmap, in set_posix_acl_entries_dacl() argument 614 uid = posix_acl_uid_translate(idmap, pace); in set_posix_acl_entries_dacl() 621 gid = posix_acl_gid_translate(idmap, pace); in set_posix_acl_entries_dacl() 680 uid = posix_acl_uid_translate(idmap, pace); in set_posix_acl_entries_dacl() 685 gid = posix_acl_gid_translate(idmap, pace); in set_posix_acl_entries_dacl() [all …]
|
| /linux/Documentation/admin-guide/nfs/ |
| H A D | nfs-idmapper.rst | 9 or by placing a call to the rpc.idmap daemon. 19 legacy rpc.idmap daemon for the id mapping. This result will be stored 20 in a custom NFS idmap cache. 31 ``create id_resolver * * /usr/sbin/nfs.idmap %k %d 600`` 34 This will direct all id_resolver requests to the program /usr/sbin/nfs.idmap. 36 expire. This parameter is optional for /usr/sbin/nfs.idmap. When the timeout 37 is not specified, nfs.idmap will default to 600 seconds. 53 ``create id_resolver * * /usr/sbin/nfs.idmap %k %d 600`` 59 /usr/sbin/nfs.idmap will handle gid, user, and group lookups. 65 nfs.idmap [all …]
|
| /linux/fs/xfs/ |
| H A D | xfs_iops.c | 172 struct mnt_idmap *idmap, in xfs_generic_create() argument 180 .idmap = idmap, in xfs_generic_create() 282 struct mnt_idmap *idmap, in xfs_vn_mknod() argument 288 return xfs_generic_create(idmap, dir, dentry, mode, rdev, NULL); in xfs_vn_mknod() 293 struct mnt_idmap *idmap, in xfs_vn_create() argument 299 return xfs_generic_create(idmap, dir, dentry, mode, 0, NULL); in xfs_vn_create() 304 struct mnt_idmap *idmap, in xfs_vn_mkdir() argument 309 return ERR_PTR(xfs_generic_create(idmap, dir, dentry, mode | S_IFDIR, 0, NULL)); in xfs_vn_mkdir() 429 struct mnt_idmap *idmap, in xfs_vn_symlink() argument 444 error = xfs_symlink(idmap, XFS_I(dir), &name, symname, mode, &cip); in xfs_vn_symlink() [all …]
|
| /linux/security/integrity/evm/ |
| H A D | evm_main.c | 461 static int evm_xattr_change(struct mnt_idmap *idmap, in evm_xattr_change() argument 497 static int evm_protect_xattr(struct mnt_idmap *idmap, in evm_protect_xattr() argument 559 !evm_xattr_change(idmap, dentry, xattr_name, xattr_value, in evm_protect_xattr() 587 static int evm_inode_setxattr(struct mnt_idmap *idmap, struct dentry *dentry, in evm_inode_setxattr() argument 606 return evm_protect_xattr(idmap, dentry, xattr_name, xattr_value, in evm_inode_setxattr() 619 static int evm_inode_removexattr(struct mnt_idmap *idmap, struct dentry *dentry, in evm_inode_removexattr() argument 628 return evm_protect_xattr(idmap, dentry, xattr_name, NULL, 0); in evm_inode_removexattr() 632 static int evm_inode_set_acl_change(struct mnt_idmap *idmap, in evm_inode_set_acl_change() argument 644 rc = posix_acl_update_mode(idmap, inode, &mode, &kacl); in evm_inode_set_acl_change() 651 static inline int evm_inode_set_acl_change(struct mnt_idmap *idmap, in evm_inode_set_acl_change() argument [all …]
|
| /linux/samples/vfs/ |
| H A D | test-list-all-mounts.c | 149 const char *idmap = stmnt->str + stmnt->mnt_uidmap; in main() local 152 printf("mnt_uidmap[%zu]:\t%s\n", idx, idmap); in main() 153 idmap += strlen(idmap) + 1; in main() 158 const char *idmap = stmnt->str + stmnt->mnt_gidmap; in main() local 161 printf("mnt_gidmap[%zu]:\t%s\n", idx, idmap); in main() 162 idmap += strlen(idmap) + 1; in main()
|
| /linux/fs/fuse/ |
| H A D | dir.c | 549 static int get_create_supp_group(struct mnt_idmap *idmap, in get_create_supp_group() argument 557 vfsgid_t vfsgid = make_vfsgid(idmap, fc->user_ns, kgid); in get_create_supp_group() 580 static int get_create_ext(struct mnt_idmap *idmap, in get_create_ext() argument 592 err = get_create_supp_group(idmap, dir, &ext); in get_create_ext() 618 static int fuse_create_open(struct mnt_idmap *idmap, struct inode *dir, in fuse_create_open() argument 678 err = get_create_ext(idmap, &args, dir, entry, mode); in fuse_create_open() 682 err = fuse_simple_idmap_request(idmap, fm, &args); in fuse_create_open() 740 struct mnt_idmap *idmap = file_mnt_idmap(file); in fuse_atomic_open() local 761 err = fuse_create_open(idmap, dir, entry, file, flags, mode, FUSE_CREATE); in fuse_atomic_open() 770 err = fuse_mknod(idmap, dir, entry, mode, 0); in fuse_atomic_open() [all …]
|
| H A D | acl.c | 67 struct posix_acl *fuse_get_acl(struct mnt_idmap *idmap, in fuse_get_acl() argument 95 int fuse_set_acl(struct mnt_idmap *idmap, struct dentry *dentry, in fuse_set_acl() argument 147 !in_group_or_capable(idmap, inode, in fuse_set_acl() 148 i_gid_into_vfsgid(idmap, inode))) in fuse_set_acl()
|
| /linux/fs/f2fs/ |
| H A D | namei.c | 219 static struct inode *f2fs_new_inode(struct mnt_idmap *idmap, in f2fs_new_inode() argument 243 inode_init_owner(idmap, inode, dir, mode); in f2fs_new_inode() 353 static int f2fs_create(struct mnt_idmap *idmap, struct inode *dir, in f2fs_create() argument 370 inode = f2fs_new_inode(idmap, dir, mode, dentry->d_name.name); in f2fs_create() 624 static int f2fs_symlink(struct mnt_idmap *idmap, struct inode *dir, in f2fs_symlink() argument 647 inode = f2fs_new_inode(idmap, dir, S_IFLNK | S_IRWXUGO, NULL); in f2fs_symlink() 704 static struct dentry *f2fs_mkdir(struct mnt_idmap *idmap, struct inode *dir, in f2fs_mkdir() argument 718 inode = f2fs_new_inode(idmap, dir, S_IFDIR | mode, NULL); in f2fs_mkdir() 759 static int f2fs_mknod(struct mnt_idmap *idmap, struct inode *dir, in f2fs_mknod() argument 775 inode = f2fs_new_inode(idmap, dir, mode, NULL); in f2fs_mknod() [all …]
|
| /linux/fs/efivarfs/ |
| H A D | inode.c | 77 static int efivarfs_create(struct mnt_idmap *idmap, struct inode *dir, in efivarfs_create() argument 156 efivarfs_fileattr_set(struct mnt_idmap *idmap, in efivarfs_fileattr_set() argument 176 static int efivarfs_setattr(struct mnt_idmap *idmap, struct dentry *dentry, in efivarfs_setattr() argument 182 error = setattr_prepare(idmap, dentry, iattr); in efivarfs_setattr() 186 setattr_copy(idmap, inode, iattr); in efivarfs_setattr()
|
| /linux/fs/fat/ |
| H A D | file.c | 398 int fat_getattr(struct mnt_idmap *idmap, const struct path *path, in fat_getattr() argument 404 generic_fillattr(idmap, request_mask, inode, stat); in fat_getattr() 459 static int fat_allow_set_time(struct mnt_idmap *idmap, in fat_allow_set_time() argument 464 if (!vfsuid_eq_kuid(i_uid_into_vfsuid(idmap, inode), in fat_allow_set_time() 466 if (vfsgid_in_group_p(i_gid_into_vfsgid(idmap, inode))) in fat_allow_set_time() 480 int fat_setattr(struct mnt_idmap *idmap, struct dentry *dentry, in fat_setattr() argument 491 if (fat_allow_set_time(idmap, sbi, inode)) in fat_setattr() 495 error = setattr_prepare(idmap, dentry, attr); in fat_setattr() 521 (!uid_eq(from_vfsuid(idmap, i_user_ns(inode), attr->ia_vfsuid), in fat_setattr() 524 (!gid_eq(from_vfsgid(idmap, i_user_ns(inode), attr->ia_vfsgid), in fat_setattr() [all …]
|
| /linux/fs/minix/ |
| H A D | namei.c | 36 static int minix_mknod(struct mnt_idmap *idmap, struct inode *dir, in minix_mknod() argument 53 static int minix_tmpfile(struct mnt_idmap *idmap, struct inode *dir, in minix_tmpfile() argument 66 static int minix_create(struct mnt_idmap *idmap, struct inode *dir, in minix_create() argument 72 static int minix_symlink(struct mnt_idmap *idmap, struct inode *dir, in minix_symlink() argument 107 static struct dentry *minix_mkdir(struct mnt_idmap *idmap, struct inode *dir, in minix_mkdir() argument 176 static int minix_rename(struct mnt_idmap *idmap, in minix_rename() argument
|