xref: /freebsd-src/sys/contrib/openzfs/lib/libshare/nfs.c (revision fd45b686f9d92f583366c75b22c04c7ee49709c0)
116038816SMartin Matuska /*
216038816SMartin Matuska  * CDDL HEADER START
316038816SMartin Matuska  *
416038816SMartin Matuska  * The contents of this file are subject to the terms of the
516038816SMartin Matuska  * Common Development and Distribution License (the "License").
616038816SMartin Matuska  * You may not use this file except in compliance with the License.
716038816SMartin Matuska  *
816038816SMartin Matuska  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
9271171e0SMartin Matuska  * or https://opensource.org/licenses/CDDL-1.0.
1016038816SMartin Matuska  * See the License for the specific language governing permissions
1116038816SMartin Matuska  * and limitations under the License.
1216038816SMartin Matuska  *
1316038816SMartin Matuska  * When distributing Covered Code, include this CDDL HEADER in each
1416038816SMartin Matuska  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
1516038816SMartin Matuska  * If applicable, add the following below this CDDL HEADER, with the
1616038816SMartin Matuska  * fields enclosed by brackets "[]" replaced with your own identifying
1716038816SMartin Matuska  * information: Portions Copyright [yyyy] [name of copyright owner]
1816038816SMartin Matuska  *
1916038816SMartin Matuska  * CDDL HEADER END
2016038816SMartin Matuska  */
2116038816SMartin Matuska 
2216038816SMartin Matuska 
2316038816SMartin Matuska #include <sys/types.h>
2416038816SMartin Matuska #include <sys/stat.h>
2516038816SMartin Matuska #include <sys/file.h>
2616038816SMartin Matuska #include <fcntl.h>
27716fd348SMartin Matuska #include <ctype.h>
2816038816SMartin Matuska #include <stdio.h>
2916038816SMartin Matuska #include <errno.h>
3016038816SMartin Matuska #include <libshare.h>
31c7046f76SMartin Matuska #include <unistd.h>
32*fd45b686SMartin Matuska #include <libzutil.h>
3316038816SMartin Matuska #include "nfs.h"
3416038816SMartin Matuska 
3516038816SMartin Matuska 
3616038816SMartin Matuska /*
3716038816SMartin Matuska  * nfs_exports_[lock|unlock] are used to guard against conconcurrent
3816038816SMartin Matuska  * updates to the exports file. Each protocol is responsible for
3916038816SMartin Matuska  * providing the necessary locking to ensure consistency.
4016038816SMartin Matuska  */
4116038816SMartin Matuska static int
nfs_exports_lock(const char * name,int * nfs_lock_fd)42716fd348SMartin Matuska nfs_exports_lock(const char *name, int *nfs_lock_fd)
4316038816SMartin Matuska {
4416038816SMartin Matuska 	int err;
4516038816SMartin Matuska 
46716fd348SMartin Matuska 	*nfs_lock_fd = open(name, O_RDWR | O_CREAT | O_CLOEXEC, 0600);
47716fd348SMartin Matuska 	if (*nfs_lock_fd == -1) {
4816038816SMartin Matuska 		err = errno;
49*fd45b686SMartin Matuska 		fprintf(stderr, "failed to lock %s: %s\n", name,
50*fd45b686SMartin Matuska 		    zfs_strerror(err));
5116038816SMartin Matuska 		return (err);
5216038816SMartin Matuska 	}
5316038816SMartin Matuska 
54716fd348SMartin Matuska 	while ((err = flock(*nfs_lock_fd, LOCK_EX)) != 0 && errno == EINTR)
55e92ffd9bSMartin Matuska 		;
56e92ffd9bSMartin Matuska 	if (err != 0) {
5716038816SMartin Matuska 		err = errno;
58*fd45b686SMartin Matuska 		fprintf(stderr, "failed to lock %s: %s\n", name,
59*fd45b686SMartin Matuska 		    zfs_strerror(err));
60716fd348SMartin Matuska 		(void) close(*nfs_lock_fd);
61716fd348SMartin Matuska 		*nfs_lock_fd = -1;
6216038816SMartin Matuska 		return (err);
6316038816SMartin Matuska 	}
6416038816SMartin Matuska 
6516038816SMartin Matuska 	return (0);
6616038816SMartin Matuska }
6716038816SMartin Matuska 
6816038816SMartin Matuska static void
nfs_exports_unlock(const char * name,int * nfs_lock_fd)69716fd348SMartin Matuska nfs_exports_unlock(const char *name, int *nfs_lock_fd)
7016038816SMartin Matuska {
71716fd348SMartin Matuska 	verify(*nfs_lock_fd > 0);
7216038816SMartin Matuska 
73716fd348SMartin Matuska 	if (flock(*nfs_lock_fd, LOCK_UN) != 0)
7416038816SMartin Matuska 		fprintf(stderr, "failed to unlock %s: %s\n",
75*fd45b686SMartin Matuska 		    name, zfs_strerror(errno));
7616038816SMartin Matuska 
77716fd348SMartin Matuska 	(void) close(*nfs_lock_fd);
78716fd348SMartin Matuska 	*nfs_lock_fd = -1;
7916038816SMartin Matuska }
8016038816SMartin Matuska 
81e92ffd9bSMartin Matuska struct tmpfile {
82e92ffd9bSMartin Matuska 	/*
83e92ffd9bSMartin Matuska 	 * This only needs to be as wide as ZFS_EXPORTS_FILE and mktemp suffix,
84e92ffd9bSMartin Matuska 	 * 64 is more than enough.
85e92ffd9bSMartin Matuska 	 */
86e92ffd9bSMartin Matuska 	char name[64];
87e92ffd9bSMartin Matuska 	FILE *fp;
88e92ffd9bSMartin Matuska };
8916038816SMartin Matuska 
90e92ffd9bSMartin Matuska static boolean_t
nfs_init_tmpfile(const char * prefix,const char * mdir,struct tmpfile * tmpf)91e92ffd9bSMartin Matuska nfs_init_tmpfile(const char *prefix, const char *mdir, struct tmpfile *tmpf)
92e92ffd9bSMartin Matuska {
9316038816SMartin Matuska 	if (mdir != NULL &&
94e92ffd9bSMartin Matuska 	    mkdir(mdir, 0755) < 0 &&
95e92ffd9bSMartin Matuska 	    errno != EEXIST) {
9616038816SMartin Matuska 		fprintf(stderr, "failed to create %s: %s\n",
97bb2d13b6SMartin Matuska 		// cppcheck-suppress uninitvar
98*fd45b686SMartin Matuska 		    mdir, zfs_strerror(errno));
99e92ffd9bSMartin Matuska 		return (B_FALSE);
10016038816SMartin Matuska 	}
10116038816SMartin Matuska 
102be181ee2SMartin Matuska 	strlcpy(tmpf->name, prefix, sizeof (tmpf->name));
103c9539b89SMartin Matuska 	strlcat(tmpf->name, ".XXXXXXXX", sizeof (tmpf->name));
10416038816SMartin Matuska 
105e92ffd9bSMartin Matuska 	int fd = mkostemp(tmpf->name, O_CLOEXEC);
10616038816SMartin Matuska 	if (fd == -1) {
10716038816SMartin Matuska 		fprintf(stderr, "Unable to create temporary file: %s",
108*fd45b686SMartin Matuska 		    zfs_strerror(errno));
109e92ffd9bSMartin Matuska 		return (B_FALSE);
11016038816SMartin Matuska 	}
111e92ffd9bSMartin Matuska 
112e92ffd9bSMartin Matuska 	tmpf->fp = fdopen(fd, "w+");
113e92ffd9bSMartin Matuska 	if (tmpf->fp == NULL) {
114e92ffd9bSMartin Matuska 		fprintf(stderr, "Unable to reopen temporary file: %s",
115*fd45b686SMartin Matuska 		    zfs_strerror(errno));
11616038816SMartin Matuska 		close(fd);
117e92ffd9bSMartin Matuska 		return (B_FALSE);
118e92ffd9bSMartin Matuska 	}
119e92ffd9bSMartin Matuska 
120e92ffd9bSMartin Matuska 	return (B_TRUE);
121e92ffd9bSMartin Matuska }
122e92ffd9bSMartin Matuska 
123e92ffd9bSMartin Matuska static void
nfs_abort_tmpfile(struct tmpfile * tmpf)124e92ffd9bSMartin Matuska nfs_abort_tmpfile(struct tmpfile *tmpf)
125e92ffd9bSMartin Matuska {
126e92ffd9bSMartin Matuska 	unlink(tmpf->name);
127e92ffd9bSMartin Matuska 	fclose(tmpf->fp);
12816038816SMartin Matuska }
12916038816SMartin Matuska 
13016038816SMartin Matuska static int
nfs_fini_tmpfile(const char * exports,struct tmpfile * tmpf)131e92ffd9bSMartin Matuska nfs_fini_tmpfile(const char *exports, struct tmpfile *tmpf)
13216038816SMartin Matuska {
133e92ffd9bSMartin Matuska 	if (fflush(tmpf->fp) != 0) {
134e92ffd9bSMartin Matuska 		fprintf(stderr, "Failed to write to temporary file: %s\n",
135*fd45b686SMartin Matuska 		    zfs_strerror(errno));
136e92ffd9bSMartin Matuska 		nfs_abort_tmpfile(tmpf);
13716038816SMartin Matuska 		return (SA_SYSTEM_ERR);
13816038816SMartin Matuska 	}
139e92ffd9bSMartin Matuska 
140e92ffd9bSMartin Matuska 	if (rename(tmpf->name, exports) == -1) {
141e92ffd9bSMartin Matuska 		fprintf(stderr, "Unable to rename %s -> %s: %s\n",
142*fd45b686SMartin Matuska 		    tmpf->name, exports, zfs_strerror(errno));
143e92ffd9bSMartin Matuska 		nfs_abort_tmpfile(tmpf);
144e92ffd9bSMartin Matuska 		return (SA_SYSTEM_ERR);
145e92ffd9bSMartin Matuska 	}
146e92ffd9bSMartin Matuska 
147e92ffd9bSMartin Matuska 	(void) fchmod(fileno(tmpf->fp), 0644);
148e92ffd9bSMartin Matuska 	fclose(tmpf->fp);
14916038816SMartin Matuska 	return (SA_OK);
15016038816SMartin Matuska }
15116038816SMartin Matuska 
152716fd348SMartin Matuska int
nfs_escape_mountpoint(const char * mp,char ** out,boolean_t * need_free)153716fd348SMartin Matuska nfs_escape_mountpoint(const char *mp, char **out, boolean_t *need_free)
154716fd348SMartin Matuska {
155716fd348SMartin Matuska 	if (strpbrk(mp, "\t\n\v\f\r \\") == NULL) {
156716fd348SMartin Matuska 		*out = (char *)mp;
157716fd348SMartin Matuska 		*need_free = B_FALSE;
158716fd348SMartin Matuska 		return (SA_OK);
159716fd348SMartin Matuska 	} else {
160716fd348SMartin Matuska 		size_t len = strlen(mp);
161716fd348SMartin Matuska 		*out = malloc(len * 4 + 1);
162716fd348SMartin Matuska 		if (!*out)
163716fd348SMartin Matuska 			return (SA_NO_MEMORY);
164716fd348SMartin Matuska 		*need_free = B_TRUE;
165716fd348SMartin Matuska 
166716fd348SMartin Matuska 		char *oc = *out;
167716fd348SMartin Matuska 		for (const char *c = mp; c < mp + len; ++c)
168716fd348SMartin Matuska 			if (memchr("\t\n\v\f\r \\", *c,
169716fd348SMartin Matuska 			    strlen("\t\n\v\f\r \\"))) {
170716fd348SMartin Matuska 				sprintf(oc, "\\%03hho", *c);
171716fd348SMartin Matuska 				oc += 4;
172716fd348SMartin Matuska 			} else
173716fd348SMartin Matuska 				*oc++ = *c;
174716fd348SMartin Matuska 		*oc = '\0';
175716fd348SMartin Matuska 	}
176716fd348SMartin Matuska 
177716fd348SMartin Matuska 	return (SA_OK);
178716fd348SMartin Matuska }
179716fd348SMartin Matuska 
180e92ffd9bSMartin Matuska static int
nfs_process_exports(const char * exports,const char * mountpoint,boolean_t (* cbk)(void * userdata,char * line,boolean_t found_mountpoint),void * userdata)181e92ffd9bSMartin Matuska nfs_process_exports(const char *exports, const char *mountpoint,
182e92ffd9bSMartin Matuska     boolean_t (*cbk)(void *userdata, char *line, boolean_t found_mountpoint),
183e92ffd9bSMartin Matuska     void *userdata)
184e92ffd9bSMartin Matuska {
185e92ffd9bSMartin Matuska 	int error = SA_OK;
186e92ffd9bSMartin Matuska 	boolean_t cont = B_TRUE;
187e92ffd9bSMartin Matuska 
188e92ffd9bSMartin Matuska 	FILE *oldfp = fopen(exports, "re");
189e92ffd9bSMartin Matuska 	if (oldfp != NULL) {
190716fd348SMartin Matuska 		boolean_t need_mp_free;
191716fd348SMartin Matuska 		char *mp;
192716fd348SMartin Matuska 		if ((error = nfs_escape_mountpoint(mountpoint,
193716fd348SMartin Matuska 		    &mp, &need_mp_free)) != SA_OK) {
194716fd348SMartin Matuska 			(void) fclose(oldfp);
195716fd348SMartin Matuska 			return (error);
196716fd348SMartin Matuska 		}
197716fd348SMartin Matuska 
198e92ffd9bSMartin Matuska 		char *buf = NULL, *sep;
199716fd348SMartin Matuska 		size_t buflen = 0, mplen = strlen(mp);
200e92ffd9bSMartin Matuska 
201e92ffd9bSMartin Matuska 		while (cont && getline(&buf, &buflen, oldfp) != -1) {
202e92ffd9bSMartin Matuska 			if (buf[0] == '\n' || buf[0] == '#')
203e92ffd9bSMartin Matuska 				continue;
204e92ffd9bSMartin Matuska 
205e92ffd9bSMartin Matuska 			cont = cbk(userdata, buf,
206e92ffd9bSMartin Matuska 			    (sep = strpbrk(buf, "\t \n")) != NULL &&
207e92ffd9bSMartin Matuska 			    sep - buf == mplen &&
208716fd348SMartin Matuska 			    strncmp(buf, mp, mplen) == 0);
209e92ffd9bSMartin Matuska 		}
210e92ffd9bSMartin Matuska 		free(buf);
211716fd348SMartin Matuska 		if (need_mp_free)
212716fd348SMartin Matuska 			free(mp);
213e92ffd9bSMartin Matuska 
214e92ffd9bSMartin Matuska 		if (ferror(oldfp) != 0)
215e92ffd9bSMartin Matuska 			error = ferror(oldfp);
216e92ffd9bSMartin Matuska 
217e92ffd9bSMartin Matuska 		if (fclose(oldfp) != 0) {
218e92ffd9bSMartin Matuska 			fprintf(stderr, "Unable to close file %s: %s\n",
219*fd45b686SMartin Matuska 			    exports, zfs_strerror(errno));
220e92ffd9bSMartin Matuska 			error = error != SA_OK ? error : SA_SYSTEM_ERR;
221e92ffd9bSMartin Matuska 		}
222e92ffd9bSMartin Matuska 	}
223e92ffd9bSMartin Matuska 
224e92ffd9bSMartin Matuska 	return (error);
225e92ffd9bSMartin Matuska }
226e92ffd9bSMartin Matuska 
227e92ffd9bSMartin Matuska static boolean_t
nfs_copy_entries_cb(void * userdata,char * line,boolean_t found_mountpoint)228e92ffd9bSMartin Matuska nfs_copy_entries_cb(void *userdata, char *line, boolean_t found_mountpoint)
229e92ffd9bSMartin Matuska {
230e92ffd9bSMartin Matuska 	FILE *newfp = userdata;
231e92ffd9bSMartin Matuska 	if (!found_mountpoint)
232e92ffd9bSMartin Matuska 		fputs(line, newfp);
233e92ffd9bSMartin Matuska 	return (B_TRUE);
234e92ffd9bSMartin Matuska }
235e92ffd9bSMartin Matuska 
236e92ffd9bSMartin Matuska /*
237e92ffd9bSMartin Matuska  * Copy all entries from the exports file (if it exists) to newfp,
238e92ffd9bSMartin Matuska  * omitting any entries for the specified mountpoint.
239e92ffd9bSMartin Matuska  */
240e92ffd9bSMartin Matuska static int
nfs_copy_entries(FILE * newfp,const char * exports,const char * mountpoint)241e92ffd9bSMartin Matuska nfs_copy_entries(FILE *newfp, const char *exports, const char *mountpoint)
242e92ffd9bSMartin Matuska {
243e92ffd9bSMartin Matuska 	fputs(FILE_HEADER, newfp);
244e92ffd9bSMartin Matuska 
245e92ffd9bSMartin Matuska 	int error = nfs_process_exports(
246e92ffd9bSMartin Matuska 	    exports, mountpoint, nfs_copy_entries_cb, newfp);
247e92ffd9bSMartin Matuska 
248e92ffd9bSMartin Matuska 	if (error == SA_OK && ferror(newfp) != 0)
249e92ffd9bSMartin Matuska 		error = ferror(newfp);
250e92ffd9bSMartin Matuska 
251e92ffd9bSMartin Matuska 	return (error);
252e92ffd9bSMartin Matuska }
253e92ffd9bSMartin Matuska 
2543ff01b23SMartin Matuska int
nfs_toggle_share(const char * lockfile,const char * exports,const char * expdir,sa_share_impl_t impl_share,int (* cbk)(sa_share_impl_t impl_share,FILE * tmpfile))25516038816SMartin Matuska nfs_toggle_share(const char *lockfile, const char *exports,
25616038816SMartin Matuska     const char *expdir, sa_share_impl_t impl_share,
257e92ffd9bSMartin Matuska     int(*cbk)(sa_share_impl_t impl_share, FILE *tmpfile))
25816038816SMartin Matuska {
259716fd348SMartin Matuska 	int error, nfs_lock_fd = -1;
260e92ffd9bSMartin Matuska 	struct tmpfile tmpf;
26116038816SMartin Matuska 
262e92ffd9bSMartin Matuska 	if (!nfs_init_tmpfile(exports, expdir, &tmpf))
26316038816SMartin Matuska 		return (SA_SYSTEM_ERR);
26416038816SMartin Matuska 
265716fd348SMartin Matuska 	error = nfs_exports_lock(lockfile, &nfs_lock_fd);
26616038816SMartin Matuska 	if (error != 0) {
267e92ffd9bSMartin Matuska 		nfs_abort_tmpfile(&tmpf);
26816038816SMartin Matuska 		return (error);
26916038816SMartin Matuska 	}
27016038816SMartin Matuska 
271e92ffd9bSMartin Matuska 	error = nfs_copy_entries(tmpf.fp, exports, impl_share->sa_mountpoint);
27216038816SMartin Matuska 	if (error != SA_OK)
27316038816SMartin Matuska 		goto fullerr;
27416038816SMartin Matuska 
275e92ffd9bSMartin Matuska 	error = cbk(impl_share, tmpf.fp);
27616038816SMartin Matuska 	if (error != SA_OK)
27716038816SMartin Matuska 		goto fullerr;
27816038816SMartin Matuska 
279e92ffd9bSMartin Matuska 	error = nfs_fini_tmpfile(exports, &tmpf);
280716fd348SMartin Matuska 	nfs_exports_unlock(lockfile, &nfs_lock_fd);
28116038816SMartin Matuska 	return (error);
28216038816SMartin Matuska 
28316038816SMartin Matuska fullerr:
284e92ffd9bSMartin Matuska 	nfs_abort_tmpfile(&tmpf);
285716fd348SMartin Matuska 	nfs_exports_unlock(lockfile, &nfs_lock_fd);
28616038816SMartin Matuska 	return (error);
28716038816SMartin Matuska }
288e92ffd9bSMartin Matuska 
289c7046f76SMartin Matuska void
nfs_reset_shares(const char * lockfile,const char * exports)290c7046f76SMartin Matuska nfs_reset_shares(const char *lockfile, const char *exports)
291c7046f76SMartin Matuska {
292c7046f76SMartin Matuska 	int nfs_lock_fd = -1;
293c7046f76SMartin Matuska 
294c7046f76SMartin Matuska 	if (nfs_exports_lock(lockfile, &nfs_lock_fd) == 0) {
295c7046f76SMartin Matuska 		(void) ! truncate(exports, 0);
296c7046f76SMartin Matuska 		nfs_exports_unlock(lockfile, &nfs_lock_fd);
297c7046f76SMartin Matuska 	}
298c7046f76SMartin Matuska }
299c7046f76SMartin Matuska 
300e92ffd9bSMartin Matuska static boolean_t
nfs_is_shared_cb(void * userdata,char * line,boolean_t found_mountpoint)301e92ffd9bSMartin Matuska nfs_is_shared_cb(void *userdata, char *line, boolean_t found_mountpoint)
302e92ffd9bSMartin Matuska {
303e92ffd9bSMartin Matuska 	(void) line;
304e92ffd9bSMartin Matuska 
305e92ffd9bSMartin Matuska 	boolean_t *found = userdata;
306e92ffd9bSMartin Matuska 	*found = found_mountpoint;
307e92ffd9bSMartin Matuska 	return (!found_mountpoint);
308e92ffd9bSMartin Matuska }
309e92ffd9bSMartin Matuska 
310e92ffd9bSMartin Matuska boolean_t
nfs_is_shared_impl(const char * exports,sa_share_impl_t impl_share)311e92ffd9bSMartin Matuska nfs_is_shared_impl(const char *exports, sa_share_impl_t impl_share)
312e92ffd9bSMartin Matuska {
313e92ffd9bSMartin Matuska 	boolean_t found = B_FALSE;
314e92ffd9bSMartin Matuska 	nfs_process_exports(exports, impl_share->sa_mountpoint,
315e92ffd9bSMartin Matuska 	    nfs_is_shared_cb, &found);
316e92ffd9bSMartin Matuska 	return (found);
317e92ffd9bSMartin Matuska }
318