xref: /csrg-svn/sys/nfs/nfs_serv.c (revision 42867)
138418Smckusick /*
238418Smckusick  * Copyright (c) 1989 The Regents of the University of California.
338418Smckusick  * All rights reserved.
438418Smckusick  *
538418Smckusick  * This code is derived from software contributed to Berkeley by
638418Smckusick  * Rick Macklem at The University of Guelph.
738418Smckusick  *
838418Smckusick  * Redistribution and use in source and binary forms are permitted
938418Smckusick  * provided that the above copyright notice and this paragraph are
1038418Smckusick  * duplicated in all such forms and that any documentation,
1138418Smckusick  * advertising materials, and other materials related to such
1238418Smckusick  * distribution and use acknowledge that the software was developed
1338418Smckusick  * by the University of California, Berkeley.  The name of the
1438418Smckusick  * University may not be used to endorse or promote products derived
1538418Smckusick  * from this software without specific prior written permission.
1638418Smckusick  * THIS SOFTWARE IS PROVIDED ``AS IS'' AND WITHOUT ANY EXPRESS OR
1738418Smckusick  * IMPLIED WARRANTIES, INCLUDING, WITHOUT LIMITATION, THE IMPLIED
1838418Smckusick  * WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE.
1938418Smckusick  *
20*42867Smckusick  *	@(#)nfs_serv.c	7.23 (Berkeley) 06/04/90
2138418Smckusick  */
2238418Smckusick 
2338418Smckusick /*
2438418Smckusick  * nfs version 2 server calls to vnode ops
2538418Smckusick  * - these routines generally have 3 phases
2638418Smckusick  *   1 - break down and validate rpc request in mbuf list
2738418Smckusick  *   2 - do the vnode ops for the request
2838425Smckusick  *       (surprisingly ?? many are very similar to syscalls in vfs_syscalls.c)
2938418Smckusick  *   3 - build the rpc reply in an mbuf list
3038418Smckusick  *   nb:
3138418Smckusick  *	- do not mix the phases, since the nfsm_?? macros can return failures
3241899Smckusick  *	  on a bad rpc or similar and do not do any vrele() or vput()'s
3338418Smckusick  *
3438425Smckusick  *      - the nfsm_reply() macro generates an nfs rpc reply with the nfs
3538418Smckusick  *	error number iff error != 0 whereas
3641899Smckusick  *	returning an error from the server function implies a fatal error
3741899Smckusick  *	such as a badly constructed rpc request that should be dropped without
3841899Smckusick  *	a reply.
3938418Smckusick  */
4038418Smckusick 
4138418Smckusick #include "param.h"
4240135Smckusick #include "user.h"
4340135Smckusick #include "file.h"
4440135Smckusick #include "vnode.h"
4538418Smckusick #include "mount.h"
4638418Smckusick #include "mbuf.h"
4738418Smckusick #include "errno.h"
4842242Smckusick #include "../ufs/quota.h"
4942242Smckusick #include "../ufs/inode.h"
5038418Smckusick #include "nfsv2.h"
5138418Smckusick #include "nfs.h"
5238418Smckusick #include "xdr_subs.h"
5338418Smckusick #include "nfsm_subs.h"
5438418Smckusick 
5538418Smckusick /* Defs */
5638425Smckusick #define	TRUE	1
5738425Smckusick #define	FALSE	0
5838418Smckusick 
5938418Smckusick /* Global vars */
6038418Smckusick extern u_long nfs_procids[NFS_NPROCS];
6138418Smckusick extern u_long nfs_xdrneg1;
6238418Smckusick extern u_long nfs_false, nfs_true;
6342242Smckusick nfstype nfs_type[9]={ NFNON, NFREG, NFDIR, NFBLK, NFCHR, NFLNK, NFNON,
6442242Smckusick 		      NFCHR, NFNON };
6538418Smckusick 
6638418Smckusick /*
6738418Smckusick  * nfs getattr service
6838418Smckusick  */
6939753Smckusick nfsrv_getattr(mrep, md, dpos, cred, xid, mrq, repstat)
7038418Smckusick 	struct mbuf **mrq;
7138418Smckusick 	struct mbuf *mrep, *md;
7238418Smckusick 	caddr_t dpos;
7338418Smckusick 	struct ucred *cred;
7438418Smckusick 	u_long xid;
7539753Smckusick 	int *repstat;
7638418Smckusick {
7738884Smacklem 	register struct nfsv2_fattr *fp;
7838418Smckusick 	struct vattr va;
7938418Smckusick 	register struct vattr *vap = &va;
8038418Smckusick 	struct vnode *vp;
8138418Smckusick 	nfsv2fh_t nfh;
8238418Smckusick 	fhandle_t *fhp;
8339494Smckusick 	register u_long *p;
8439494Smckusick 	register long t1;
8539494Smckusick 	caddr_t bpos;
8639494Smckusick 	int error = 0;
8739494Smckusick 	char *cp2;
8839753Smckusick 	struct mbuf *mb, *mb2, *mreq;
8938418Smckusick 
9038418Smckusick 	fhp = &nfh.fh_generic;
9138418Smckusick 	nfsm_srvmtofh(fhp);
9238418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
9338418Smckusick 		nfsm_reply(0);
9438418Smckusick 	error = VOP_GETATTR(vp, vap, cred);
9538418Smckusick 	vput(vp);
9638418Smckusick 	nfsm_reply(NFSX_FATTR);
9738884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
9839753Smckusick 	nfsm_srvfillattr;
9938418Smckusick 	nfsm_srvdone;
10038418Smckusick }
10138418Smckusick 
10238418Smckusick /*
10338418Smckusick  * nfs setattr service
10438418Smckusick  */
10539753Smckusick nfsrv_setattr(mrep, md, dpos, cred, xid, mrq, repstat)
10638418Smckusick 	struct mbuf **mrq;
10738418Smckusick 	struct mbuf *mrep, *md;
10838418Smckusick 	caddr_t dpos;
10938418Smckusick 	struct ucred *cred;
11038418Smckusick 	u_long xid;
11139753Smckusick 	int *repstat;
11238418Smckusick {
11338418Smckusick 	struct vattr va;
11438418Smckusick 	register struct vattr *vap = &va;
11538884Smacklem 	register struct nfsv2_sattr *sp;
11638884Smacklem 	register struct nfsv2_fattr *fp;
11738418Smckusick 	struct vnode *vp;
11838418Smckusick 	nfsv2fh_t nfh;
11938418Smckusick 	fhandle_t *fhp;
12039494Smckusick 	register u_long *p;
12139494Smckusick 	register long t1;
12239494Smckusick 	caddr_t bpos;
12339494Smckusick 	int error = 0;
12439494Smckusick 	char *cp2;
12539753Smckusick 	struct mbuf *mb, *mb2, *mreq;
12638418Smckusick 
12738418Smckusick 	fhp = &nfh.fh_generic;
12838418Smckusick 	nfsm_srvmtofh(fhp);
12938884Smacklem 	nfsm_disect(sp, struct nfsv2_sattr *, NFSX_SATTR);
13038418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
13138418Smckusick 		nfsm_reply(0);
13238450Smckusick 	if (error = nfsrv_access(vp, VWRITE, cred))
13338418Smckusick 		goto out;
13441361Smckusick 	VATTR_NULL(vap);
13538418Smckusick 	/*
13638418Smckusick 	 * Nah nah nah nah na nah
13738418Smckusick 	 * There is a bug in the Sun client that puts 0xffff in the mode
13838418Smckusick 	 * field of sattr when it should put in 0xffffffff. The u_short
13938418Smckusick 	 * doesn't sign extend.
14038418Smckusick 	 * --> check the low order 2 bytes for 0xffff
14138418Smckusick 	 */
14238884Smacklem 	if ((fxdr_unsigned(int, sp->sa_mode) & 0xffff) != 0xffff)
14338884Smacklem 		vap->va_mode = nfstov_mode(sp->sa_mode);
14438884Smacklem 	if (sp->sa_uid != nfs_xdrneg1)
14538884Smacklem 		vap->va_uid = fxdr_unsigned(uid_t, sp->sa_uid);
14638884Smacklem 	if (sp->sa_gid != nfs_xdrneg1)
14738884Smacklem 		vap->va_gid = fxdr_unsigned(gid_t, sp->sa_gid);
14839753Smckusick 	if (sp->sa_size != nfs_xdrneg1)
14938884Smacklem 		vap->va_size = fxdr_unsigned(u_long, sp->sa_size);
15039753Smckusick 	/*
15139753Smckusick 	 * The usec field of sa_atime is overloaded with the va_flags field
15239753Smckusick 	 * for 4.4BSD clients. Hopefully other clients always set both the
15339753Smckusick 	 * sec and usec fields to -1 when not setting the atime.
15439753Smckusick 	 */
15539753Smckusick 	if (sp->sa_atime.tv_sec != nfs_xdrneg1) {
15639753Smckusick 		vap->va_atime.tv_sec = fxdr_unsigned(long, sp->sa_atime.tv_sec);
15739753Smckusick 		vap->va_atime.tv_usec = 0;
15838425Smckusick 	}
15939753Smckusick 	if (sp->sa_atime.tv_usec != nfs_xdrneg1)
16039753Smckusick 		vap->va_flags = fxdr_unsigned(u_long, sp->sa_atime.tv_usec);
16138884Smacklem 	if (sp->sa_mtime.tv_sec != nfs_xdrneg1)
16238884Smacklem 		fxdr_time(&sp->sa_mtime, &vap->va_mtime);
16338418Smckusick 	if (error = VOP_SETATTR(vp, vap, cred)) {
16438418Smckusick 		vput(vp);
16538418Smckusick 		nfsm_reply(0);
16638418Smckusick 	}
16738418Smckusick 	error = VOP_GETATTR(vp, vap, cred);
16838418Smckusick out:
16938418Smckusick 	vput(vp);
17038418Smckusick 	nfsm_reply(NFSX_FATTR);
17138884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
17239753Smckusick 	nfsm_srvfillattr;
17338418Smckusick 	nfsm_srvdone;
17438418Smckusick }
17538418Smckusick 
17638418Smckusick /*
17738418Smckusick  * nfs lookup rpc
17838418Smckusick  */
17939753Smckusick nfsrv_lookup(mrep, md, dpos, cred, xid, mrq, repstat)
18038418Smckusick 	struct mbuf **mrq;
18138418Smckusick 	struct mbuf *mrep, *md;
18238418Smckusick 	caddr_t dpos;
18338418Smckusick 	struct ucred *cred;
18438418Smckusick 	u_long xid;
18539753Smckusick 	int *repstat;
18638418Smckusick {
18738884Smacklem 	register struct nfsv2_fattr *fp;
18839343Smckusick 	struct nameidata nami;
18939343Smckusick 	register struct nameidata *ndp = &nami;
19038418Smckusick 	struct vnode *vp;
19138418Smckusick 	nfsv2fh_t nfh;
19238418Smckusick 	fhandle_t *fhp;
19339494Smckusick 	register caddr_t cp;
19439494Smckusick 	register u_long *p;
19539494Smckusick 	register long t1;
19639494Smckusick 	caddr_t bpos;
19739494Smckusick 	int error = 0;
19839494Smckusick 	char *cp2;
19939753Smckusick 	struct mbuf *mb, *mb2, *mreq;
20038418Smckusick 	long len;
20138418Smckusick 	struct vattr va, *vap = &va;
20238418Smckusick 
20339343Smckusick 	ndinit(ndp);
20438418Smckusick 	fhp = &nfh.fh_generic;
20538418Smckusick 	nfsm_srvmtofh(fhp);
20638418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
20738418Smckusick 	ndp->ni_cred = cred;
20838418Smckusick 	ndp->ni_nameiop = LOOKUP | LOCKLEAF;
20938418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
21038418Smckusick 		nfsm_reply(0);
21138418Smckusick 	vp = ndp->ni_vp;
21238418Smckusick 	bzero((caddr_t)fhp, sizeof(nfh));
21341398Smckusick 	fhp->fh_fsid = vp->v_mount->mnt_stat.f_fsid;
21438418Smckusick 	if (error = VFS_VPTOFH(vp, &fhp->fh_fid)) {
21538418Smckusick 		vput(vp);
21638418Smckusick 		nfsm_reply(0);
21738418Smckusick 	}
21838418Smckusick 	error = VOP_GETATTR(vp, vap, cred);
21938418Smckusick 	vput(vp);
22038418Smckusick 	nfsm_reply(NFSX_FH+NFSX_FATTR);
22138418Smckusick 	nfsm_srvfhtom(fhp);
22238884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
22339753Smckusick 	nfsm_srvfillattr;
22438418Smckusick 	nfsm_srvdone;
22538418Smckusick }
22638418Smckusick 
22738418Smckusick /*
22838418Smckusick  * nfs readlink service
22938418Smckusick  */
23039753Smckusick nfsrv_readlink(mrep, md, dpos, cred, xid, mrq, repstat)
23138418Smckusick 	struct mbuf **mrq;
23238418Smckusick 	struct mbuf *mrep, *md;
23338418Smckusick 	caddr_t dpos;
23438418Smckusick 	struct ucred *cred;
23539753Smckusick 	u_long xid;
23639753Smckusick 	int *repstat;
23738418Smckusick {
23841899Smckusick 	struct iovec iv[(NFS_MAXPATHLEN+MLEN-1)/MLEN];
23938418Smckusick 	register struct iovec *ivp = iv;
24038418Smckusick 	register struct mbuf *mp;
24139494Smckusick 	register u_long *p;
24239494Smckusick 	register long t1;
24339494Smckusick 	caddr_t bpos;
24439494Smckusick 	int error = 0;
24539494Smckusick 	char *cp2;
24639753Smckusick 	struct mbuf *mb, *mb2, *mp2, *mp3, *mreq;
24738418Smckusick 	struct vnode *vp;
24838418Smckusick 	nfsv2fh_t nfh;
24938418Smckusick 	fhandle_t *fhp;
25038418Smckusick 	struct uio io, *uiop = &io;
25138418Smckusick 	int i, tlen, len;
25238418Smckusick 
25338418Smckusick 	fhp = &nfh.fh_generic;
25438418Smckusick 	nfsm_srvmtofh(fhp);
25538418Smckusick 	len = 0;
25638418Smckusick 	i = 0;
25738418Smckusick 	while (len < NFS_MAXPATHLEN) {
25838418Smckusick 		MGET(mp, M_WAIT, MT_DATA);
25941899Smckusick 		MCLGET(mp, M_WAIT);
26038418Smckusick 		mp->m_len = NFSMSIZ(mp);
26138418Smckusick 		if (len == 0)
26238418Smckusick 			mp3 = mp2 = mp;
26341899Smckusick 		else {
26438418Smckusick 			mp2->m_next = mp;
26541899Smckusick 			mp2 = mp;
26641899Smckusick 		}
26738418Smckusick 		if ((len+mp->m_len) > NFS_MAXPATHLEN) {
26838418Smckusick 			mp->m_len = NFS_MAXPATHLEN-len;
26938418Smckusick 			len = NFS_MAXPATHLEN;
27038418Smckusick 		} else
27138418Smckusick 			len += mp->m_len;
27238418Smckusick 		ivp->iov_base = mtod(mp, caddr_t);
27338418Smckusick 		ivp->iov_len = mp->m_len;
27438418Smckusick 		i++;
27538418Smckusick 		ivp++;
27638418Smckusick 	}
27738418Smckusick 	uiop->uio_iov = iv;
27838418Smckusick 	uiop->uio_iovcnt = i;
27938418Smckusick 	uiop->uio_offset = 0;
28038418Smckusick 	uiop->uio_resid = len;
28138418Smckusick 	uiop->uio_rw = UIO_READ;
28238418Smckusick 	uiop->uio_segflg = UIO_SYSSPACE;
28338418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred)) {
28438418Smckusick 		m_freem(mp3);
28538418Smckusick 		nfsm_reply(0);
28638418Smckusick 	}
28738418Smckusick 	if (vp->v_type != VLNK) {
28838418Smckusick 		error = EINVAL;
28938418Smckusick 		goto out;
29038418Smckusick 	}
29138418Smckusick 	error = VOP_READLINK(vp, uiop, cred);
29238418Smckusick out:
29338418Smckusick 	vput(vp);
29438418Smckusick 	if (error)
29538418Smckusick 		m_freem(mp3);
29638418Smckusick 	nfsm_reply(NFSX_UNSIGNED);
29738418Smckusick 	if (uiop->uio_resid > 0) {
29838418Smckusick 		len -= uiop->uio_resid;
29938418Smckusick 		tlen = nfsm_rndup(len);
30038418Smckusick 		nfsm_adj(mp3, NFS_MAXPATHLEN-tlen, tlen-len);
30138418Smckusick 	}
30238418Smckusick 	nfsm_build(p, u_long *, NFSX_UNSIGNED);
30338418Smckusick 	*p = txdr_unsigned(len);
30438418Smckusick 	mb->m_next = mp3;
30538418Smckusick 	nfsm_srvdone;
30638418Smckusick }
30738418Smckusick 
30838418Smckusick /*
30938418Smckusick  * nfs read service
31038418Smckusick  */
31139753Smckusick nfsrv_read(mrep, md, dpos, cred, xid, mrq, repstat)
31238418Smckusick 	struct mbuf **mrq;
31338418Smckusick 	struct mbuf *mrep, *md;
31438418Smckusick 	caddr_t dpos;
31538418Smckusick 	struct ucred *cred;
31638418Smckusick 	u_long xid;
31739753Smckusick 	int *repstat;
31838418Smckusick {
31941899Smckusick 	struct iovec iv[(NFS_MAXDATA+MLEN-1)/MLEN];
32041899Smckusick 	register struct mbuf *m;
32138884Smacklem 	register struct nfsv2_fattr *fp;
32239494Smckusick 	register u_long *p;
32339494Smckusick 	register long t1;
32439494Smckusick 	caddr_t bpos;
32539494Smckusick 	int error = 0;
32639494Smckusick 	char *cp2;
32739753Smckusick 	struct mbuf *mb, *mb2, *mreq;
32841899Smckusick 	struct mbuf *m2, *m3;
32938418Smckusick 	struct vnode *vp;
33038418Smckusick 	nfsv2fh_t nfh;
33138418Smckusick 	fhandle_t *fhp;
33238418Smckusick 	struct uio io, *uiop = &io;
33338418Smckusick 	struct vattr va, *vap = &va;
33441899Smckusick 	int i, cnt, len, left, siz, tlen;
33538418Smckusick 	off_t off;
33638418Smckusick 
33738418Smckusick 	fhp = &nfh.fh_generic;
33838418Smckusick 	nfsm_srvmtofh(fhp);
33938418Smckusick 	nfsm_disect(p, u_long *, NFSX_UNSIGNED);
34038418Smckusick 	off = fxdr_unsigned(off_t, *p);
34138418Smckusick 	nfsm_srvstrsiz(cnt, NFS_MAXDATA);
34238418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
34338418Smckusick 		nfsm_reply(0);
34438450Smckusick 	if (error = nfsrv_access(vp, VREAD | VEXEC, cred)) {
34538418Smckusick 		vput(vp);
34638418Smckusick 		nfsm_reply(0);
34738418Smckusick 	}
34838418Smckusick 	len = left = cnt;
34941899Smckusick 	/*
35041899Smckusick 	 * Generate the mbuf list with the uio_iov ref. to it.
35141899Smckusick 	 */
35241899Smckusick 	i = 0;
35341899Smckusick 	m3 = (struct mbuf *)0;
35442242Smckusick #ifdef lint
35542242Smckusick 	m2 = (struct mbuf *)0;
35642242Smckusick #endif /* lint */
35741899Smckusick 	while (left > 0) {
35841899Smckusick 		MGET(m, M_WAIT, MT_DATA);
35941899Smckusick 		if (left > MINCLSIZE)
36041899Smckusick 			MCLGET(m, M_WAIT);
36141899Smckusick 		m->m_len = 0;
36241899Smckusick 		siz = min(M_TRAILINGSPACE(m), left);
36341899Smckusick 		m->m_len = siz;
36441899Smckusick 		iv[i].iov_base = mtod(m, caddr_t);
36541899Smckusick 		iv[i].iov_len = siz;
36641899Smckusick 		i++;
36741899Smckusick 		left -= siz;
36841899Smckusick 		if (m3) {
36941899Smckusick 			m2->m_next = m;
37041899Smckusick 			m2 = m;
37141899Smckusick 		} else
37241899Smckusick 			m3 = m2 = m;
37341899Smckusick 	}
37441899Smckusick 	uiop->uio_iov = iv;
37541899Smckusick 	uiop->uio_iovcnt = i;
37638418Smckusick 	uiop->uio_offset = off;
37738418Smckusick 	uiop->uio_resid = cnt;
37838418Smckusick 	uiop->uio_rw = UIO_READ;
37938418Smckusick 	uiop->uio_segflg = UIO_SYSSPACE;
38039586Smckusick 	error = VOP_READ(vp, uiop, IO_NODELOCKED, cred);
38139586Smckusick 	off = uiop->uio_offset;
38238418Smckusick 	if (error) {
38341899Smckusick 		m_freem(m3);
38438418Smckusick 		vput(vp);
38538418Smckusick 		nfsm_reply(0);
38638418Smckusick 	}
38738418Smckusick 	if (error = VOP_GETATTR(vp, vap, cred))
38841899Smckusick 		m_freem(m3);
38938418Smckusick 	vput(vp);
39038418Smckusick 	nfsm_reply(NFSX_FATTR+NFSX_UNSIGNED);
39138884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
39239753Smckusick 	nfsm_srvfillattr;
39338418Smckusick 	if (uiop->uio_resid > 0) {
39438418Smckusick 		len -= uiop->uio_resid;
39538418Smckusick 		if (len > 0) {
39638418Smckusick 			tlen = nfsm_rndup(len);
39741899Smckusick 			nfsm_adj(m3, cnt-tlen, tlen-len);
39838418Smckusick 		} else {
39941899Smckusick 			m_freem(m3);
40041899Smckusick 			m3 = (struct mbuf *)0;
40138418Smckusick 		}
40238418Smckusick 	}
40338884Smacklem 	nfsm_build(p, u_long *, NFSX_UNSIGNED);
40438418Smckusick 	*p = txdr_unsigned(len);
40541899Smckusick 	mb->m_next = m3;
40638418Smckusick 	nfsm_srvdone;
40738418Smckusick }
40838418Smckusick 
40938418Smckusick /*
41038418Smckusick  * nfs write service
41138418Smckusick  */
41239753Smckusick nfsrv_write(mrep, md, dpos, cred, xid, mrq, repstat)
41338418Smckusick 	struct mbuf *mrep, *md, **mrq;
41438418Smckusick 	caddr_t dpos;
41538418Smckusick 	struct ucred *cred;
41639753Smckusick 	u_long xid;
41739753Smckusick 	int *repstat;
41838418Smckusick {
41938418Smckusick 	register struct iovec *ivp;
42038418Smckusick 	register struct mbuf *mp;
42138884Smacklem 	register struct nfsv2_fattr *fp;
42241899Smckusick 	struct iovec iv[NFS_MAXIOVEC];
42338418Smckusick 	struct vattr va;
42438418Smckusick 	register struct vattr *vap = &va;
42539494Smckusick 	register u_long *p;
42639494Smckusick 	register long t1;
42739494Smckusick 	caddr_t bpos;
42839494Smckusick 	int error = 0;
42939494Smckusick 	char *cp2;
43039753Smckusick 	struct mbuf *mb, *mb2, *mreq;
43138418Smckusick 	struct vnode *vp;
43238418Smckusick 	nfsv2fh_t nfh;
43338418Smckusick 	fhandle_t *fhp;
43438418Smckusick 	struct uio io, *uiop = &io;
43538418Smckusick 	off_t off;
43638418Smckusick 	long siz, len, xfer;
43738418Smckusick 
43838418Smckusick 	fhp = &nfh.fh_generic;
43938418Smckusick 	nfsm_srvmtofh(fhp);
44038418Smckusick 	nfsm_disect(p, u_long *, 4*NFSX_UNSIGNED);
44138418Smckusick 	off = fxdr_unsigned(off_t, *++p);
44238418Smckusick 	p += 2;
44338418Smckusick 	len = fxdr_unsigned(long, *p);
44438418Smckusick 	if (len > NFS_MAXDATA || len <= 0) {
44538418Smckusick 		error = EBADRPC;
44638418Smckusick 		nfsm_reply(0);
44738418Smckusick 	}
44838418Smckusick 	if (dpos == (mtod(md, caddr_t)+md->m_len)) {
44938418Smckusick 		mp = md->m_next;
45038418Smckusick 		if (mp == NULL) {
45138418Smckusick 			error = EBADRPC;
45238418Smckusick 			nfsm_reply(0);
45338418Smckusick 		}
45438418Smckusick 	} else {
45538418Smckusick 		mp = md;
45638418Smckusick 		siz = dpos-mtod(mp, caddr_t);
45738418Smckusick 		mp->m_len -= siz;
45838418Smckusick 		NFSMADV(mp, siz);
45938418Smckusick 	}
46038418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
46138418Smckusick 		nfsm_reply(0);
46238450Smckusick 	if (error = nfsrv_access(vp, VWRITE, cred)) {
46338418Smckusick 		vput(vp);
46438418Smckusick 		nfsm_reply(0);
46538418Smckusick 	}
46638418Smckusick 	uiop->uio_resid = 0;
46738418Smckusick 	uiop->uio_rw = UIO_WRITE;
46838418Smckusick 	uiop->uio_segflg = UIO_SYSSPACE;
46938418Smckusick 	/*
47041899Smckusick 	 * Do up to NFS_MAXIOVEC mbufs of write each iteration of the
47138418Smckusick 	 * loop until done.
47238418Smckusick 	 */
47338418Smckusick 	while (len > 0 && uiop->uio_resid == 0) {
47438418Smckusick 		ivp = iv;
47538418Smckusick 		siz = 0;
47638418Smckusick 		uiop->uio_iov = ivp;
47738418Smckusick 		uiop->uio_iovcnt = 0;
47838418Smckusick 		uiop->uio_offset = off;
47941899Smckusick 		while (len > 0 && uiop->uio_iovcnt < NFS_MAXIOVEC && mp != NULL) {
48038418Smckusick 			ivp->iov_base = mtod(mp, caddr_t);
48138418Smckusick 			if (len < mp->m_len)
48238418Smckusick 				ivp->iov_len = xfer = len;
48338418Smckusick 			else
48438418Smckusick 				ivp->iov_len = xfer = mp->m_len;
48538418Smckusick #ifdef notdef
48638418Smckusick 			/* Not Yet .. */
48738418Smckusick 			if (M_HASCL(mp) && (((u_long)ivp->iov_base) & CLOFSET) == 0)
48838418Smckusick 				ivp->iov_op = NULL;	/* what should it be ?? */
48938418Smckusick 			else
49038418Smckusick 				ivp->iov_op = NULL;
49138418Smckusick #endif
49238418Smckusick 			uiop->uio_iovcnt++;
49338418Smckusick 			ivp++;
49438418Smckusick 			len -= xfer;
49538418Smckusick 			siz += xfer;
49638418Smckusick 			mp = mp->m_next;
49738418Smckusick 		}
49838418Smckusick 		if (len > 0 && mp == NULL) {
49938418Smckusick 			error = EBADRPC;
50038418Smckusick 			vput(vp);
50138418Smckusick 			nfsm_reply(0);
50238418Smckusick 		}
50338418Smckusick 		uiop->uio_resid = siz;
50439586Smckusick 		if (error = VOP_WRITE(vp, uiop, IO_SYNC | IO_NODELOCKED,
50538418Smckusick 			cred)) {
50638418Smckusick 			vput(vp);
50738418Smckusick 			nfsm_reply(0);
50838418Smckusick 		}
50939586Smckusick 		off = uiop->uio_offset;
51038418Smckusick 	}
51138418Smckusick 	error = VOP_GETATTR(vp, vap, cred);
51238418Smckusick 	vput(vp);
51338418Smckusick 	nfsm_reply(NFSX_FATTR);
51438884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
51539753Smckusick 	nfsm_srvfillattr;
51638418Smckusick 	nfsm_srvdone;
51738418Smckusick }
51838418Smckusick 
51938418Smckusick /*
52038418Smckusick  * nfs create service
52138418Smckusick  * now does a truncate to 0 length via. setattr if it already exists
52238418Smckusick  */
52339753Smckusick nfsrv_create(mrep, md, dpos, cred, xid, mrq, repstat)
52438418Smckusick 	struct mbuf *mrep, *md, **mrq;
52538418Smckusick 	caddr_t dpos;
52638418Smckusick 	struct ucred *cred;
52739753Smckusick 	u_long xid;
52839753Smckusick 	int *repstat;
52938418Smckusick {
53038884Smacklem 	register struct nfsv2_fattr *fp;
53138418Smckusick 	struct vattr va;
53238418Smckusick 	register struct vattr *vap = &va;
53339343Smckusick 	struct nameidata nami;
53439343Smckusick 	register struct nameidata *ndp = &nami;
53539494Smckusick 	register caddr_t cp;
53639494Smckusick 	register u_long *p;
53739494Smckusick 	register long t1;
53839494Smckusick 	caddr_t bpos;
53942242Smckusick 	long rdev;
54039494Smckusick 	int error = 0;
54139494Smckusick 	char *cp2;
54239753Smckusick 	struct mbuf *mb, *mb2, *mreq;
54338418Smckusick 	struct vnode *vp;
54438418Smckusick 	nfsv2fh_t nfh;
54538418Smckusick 	fhandle_t *fhp;
54638418Smckusick 	long len;
54738418Smckusick 
54839343Smckusick 	ndinit(ndp);
54938418Smckusick 	fhp = &nfh.fh_generic;
55038418Smckusick 	nfsm_srvmtofh(fhp);
55138418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
55238418Smckusick 	ndp->ni_cred = cred;
55338418Smckusick 	ndp->ni_nameiop = CREATE | LOCKPARENT | LOCKLEAF;
55438418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
55538418Smckusick 		nfsm_reply(0);
55641361Smckusick 	VATTR_NULL(vap);
55742242Smckusick 	nfsm_disect(p, u_long *, NFSX_SATTR);
55838418Smckusick 	/*
55938418Smckusick 	 * Iff doesn't exist, create it
56038418Smckusick 	 * otherwise just truncate to 0 length
56138418Smckusick 	 *   should I set the mode too ??
56238418Smckusick 	 */
56338418Smckusick 	if (ndp->ni_vp == NULL) {
56442242Smckusick 		vap->va_type = IFTOVT(fxdr_unsigned(u_long, *p));
565*42867Smckusick 		if (vap->va_type == VNON)
566*42867Smckusick 			vap->va_type = VREG;
56742242Smckusick 		vap->va_mode = nfstov_mode(*p);
56842242Smckusick 		rdev = fxdr_unsigned(long, *(p+3));
56942242Smckusick 		if (vap->va_type == VREG) {
57042242Smckusick 			if (error = VOP_CREATE(ndp, vap))
57142242Smckusick 				nfsm_reply(0);
57242242Smckusick 		} else if (vap->va_type == VCHR || vap->va_type == VBLK ||
57342242Smckusick 			vap->va_type == VFIFO) {
57442242Smckusick 			if (vap->va_type == VCHR && rdev == 0xffffffff)
57542242Smckusick 				vap->va_type = VFIFO;
57642242Smckusick 			if (vap->va_type == VFIFO) {
57742242Smckusick #ifndef FIFO
57842242Smckusick 				VOP_ABORTOP(ndp);
57942467Smckusick 				vput(ndp->ni_dvp);
58042242Smckusick 				error = ENXIO;
58142242Smckusick 				nfsm_reply(0);
58242242Smckusick #endif /* FIFO */
58342242Smckusick 			} else if (error = suser(cred, (short *)0)) {
58442242Smckusick 				VOP_ABORTOP(ndp);
58542467Smckusick 				vput(ndp->ni_dvp);
58642242Smckusick 				nfsm_reply(0);
58742242Smckusick 			} else
58842242Smckusick 				vap->va_rdev = (dev_t)rdev;
58942242Smckusick 			if (error = VOP_MKNOD(ndp, vap, cred))
59042242Smckusick 				nfsm_reply(0);
59142242Smckusick 			ndp->ni_nameiop = LOOKUP | LOCKLEAF | HASBUF;
59242242Smckusick 			if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
59342242Smckusick 				nfsm_reply(0);
59442242Smckusick 		} else {
59542242Smckusick 			VOP_ABORTOP(ndp);
59642467Smckusick 			vput(ndp->ni_dvp);
59742242Smckusick 			error = ENXIO;
59838418Smckusick 			nfsm_reply(0);
59942242Smckusick 		}
60038425Smckusick 		vp = ndp->ni_vp;
60138418Smckusick 	} else {
60238425Smckusick 		vp = ndp->ni_vp;
60341398Smckusick 		ndp->ni_vp = NULLVP;
60438425Smckusick 		VOP_ABORTOP(ndp);
60542467Smckusick 		vput(ndp->ni_dvp);
60638418Smckusick 		vap->va_size = 0;
60742506Smckusick 		if (error = VOP_SETATTR(vp, vap, cred)) {
60842506Smckusick 			vput(vp);
60938418Smckusick 			nfsm_reply(0);
61042506Smckusick 		}
61138418Smckusick 	}
61238418Smckusick 	bzero((caddr_t)fhp, sizeof(nfh));
61341398Smckusick 	fhp->fh_fsid = vp->v_mount->mnt_stat.f_fsid;
61438418Smckusick 	if (error = VFS_VPTOFH(vp, &fhp->fh_fid)) {
61538418Smckusick 		vput(vp);
61638418Smckusick 		nfsm_reply(0);
61738418Smckusick 	}
61838418Smckusick 	error = VOP_GETATTR(vp, vap, cred);
61938418Smckusick 	vput(vp);
62038418Smckusick 	nfsm_reply(NFSX_FH+NFSX_FATTR);
62138418Smckusick 	nfsm_srvfhtom(fhp);
62238884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
62339753Smckusick 	nfsm_srvfillattr;
62438418Smckusick 	return (error);
62538418Smckusick nfsmout:
62638418Smckusick 	VOP_ABORTOP(ndp);
62742467Smckusick 	vput(ndp->ni_dvp);
62842467Smckusick 	if (ndp->ni_vp)
62942467Smckusick 		vput(ndp->ni_vp);
63038418Smckusick 	return (error);
63138418Smckusick }
63238418Smckusick 
63338418Smckusick /*
63438418Smckusick  * nfs remove service
63538418Smckusick  */
63639753Smckusick nfsrv_remove(mrep, md, dpos, cred, xid, mrq, repstat)
63738418Smckusick 	struct mbuf *mrep, *md, **mrq;
63838418Smckusick 	caddr_t dpos;
63938418Smckusick 	struct ucred *cred;
64039753Smckusick 	u_long xid;
64139753Smckusick 	int *repstat;
64238418Smckusick {
64339343Smckusick 	struct nameidata nami;
64439343Smckusick 	register struct nameidata *ndp = &nami;
64539494Smckusick 	register u_long *p;
64639494Smckusick 	register long t1;
64739494Smckusick 	caddr_t bpos;
64839494Smckusick 	int error = 0;
64939494Smckusick 	char *cp2;
65039753Smckusick 	struct mbuf *mb, *mreq;
65138418Smckusick 	struct vnode *vp;
65238418Smckusick 	nfsv2fh_t nfh;
65338418Smckusick 	fhandle_t *fhp;
65438418Smckusick 	long len;
65538418Smckusick 
65639343Smckusick 	ndinit(ndp);
65738418Smckusick 	fhp = &nfh.fh_generic;
65838418Smckusick 	nfsm_srvmtofh(fhp);
65938418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
66038418Smckusick 	ndp->ni_cred = cred;
66138418Smckusick 	ndp->ni_nameiop = DELETE | LOCKPARENT | LOCKLEAF;
66238418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
66338418Smckusick 		nfsm_reply(0);
66438418Smckusick 	vp = ndp->ni_vp;
66538418Smckusick 	if (vp->v_type == VDIR &&
66638418Smckusick 		(error = suser(cred, (short *)0)))
66738418Smckusick 		goto out;
66838418Smckusick 	/*
66938418Smckusick 	 * Don't unlink a mounted file.
67038418Smckusick 	 */
67138418Smckusick 	if (vp->v_flag & VROOT) {
67238418Smckusick 		error = EBUSY;
67338418Smckusick 		goto out;
67438418Smckusick 	}
67538418Smckusick 	if (vp->v_flag & VTEXT)
67638418Smckusick 		xrele(vp);	/* try once to free text */
67738418Smckusick out:
67842467Smckusick 	if (!error) {
67942467Smckusick 		error = VOP_REMOVE(ndp);
68042467Smckusick 	} else {
68138418Smckusick 		VOP_ABORTOP(ndp);
68242467Smckusick 		vput(ndp->ni_dvp);
68342467Smckusick 		vput(vp);
68442467Smckusick 	}
68538418Smckusick 	nfsm_reply(0);
68638418Smckusick 	nfsm_srvdone;
68738418Smckusick }
68838418Smckusick 
68938418Smckusick /*
69038418Smckusick  * nfs rename service
69138418Smckusick  */
69239753Smckusick nfsrv_rename(mrep, md, dpos, cred, xid, mrq, repstat)
69338418Smckusick 	struct mbuf *mrep, *md, **mrq;
69438418Smckusick 	caddr_t dpos;
69538418Smckusick 	struct ucred *cred;
69639753Smckusick 	u_long xid;
69739753Smckusick 	int *repstat;
69838418Smckusick {
69938425Smckusick 	register struct nameidata *ndp;
70039494Smckusick 	register u_long *p;
70139494Smckusick 	register long t1;
70239494Smckusick 	caddr_t bpos;
70339494Smckusick 	int error = 0;
70439494Smckusick 	char *cp2;
70539753Smckusick 	struct mbuf *mb, *mreq;
70639343Smckusick 	struct nameidata nami, tond;
70738418Smckusick 	struct vnode *fvp, *tvp, *tdvp;
70838418Smckusick 	nfsv2fh_t fnfh, tnfh;
70938418Smckusick 	fhandle_t *ffhp, *tfhp;
71038418Smckusick 	long len, len2;
71138418Smckusick 	int rootflg = 0;
71238418Smckusick 
71339343Smckusick 	ndp = &nami;
71439343Smckusick 	ndinit(ndp);
71538418Smckusick 	ffhp = &fnfh.fh_generic;
71638418Smckusick 	tfhp = &tnfh.fh_generic;
71738418Smckusick 	nfsm_srvmtofh(ffhp);
71838418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
71938418Smckusick 	/*
72038418Smckusick 	 * Remember if we are root so that we can reset cr_uid before
72138418Smckusick 	 * the second nfs_namei() call
72238418Smckusick 	 */
72338418Smckusick 	if (cred->cr_uid == 0)
72438418Smckusick 		rootflg++;
72538425Smckusick 	ndp->ni_cred = cred;
72638425Smckusick 	ndp->ni_nameiop = DELETE | WANTPARENT;
72738425Smckusick 	if (error = nfs_namei(ndp, ffhp, len, &md, &dpos))
72838418Smckusick 		nfsm_reply(0);
72938425Smckusick 	fvp = ndp->ni_vp;
73038418Smckusick 	nfsm_srvmtofh(tfhp);
73141899Smckusick 	nfsm_strsiz(len2, NFS_MAXNAMLEN);
73238418Smckusick 	if (rootflg)
73338418Smckusick 		cred->cr_uid = 0;
73439343Smckusick 	ndinit(&tond);
73539343Smckusick 	crhold(cred);
73639343Smckusick 	tond.ni_cred = cred;
73738425Smckusick 	tond.ni_nameiop = RENAME | LOCKPARENT | LOCKLEAF | NOCACHE;
73842467Smckusick 	if (error = nfs_namei(&tond, tfhp, len2, &md, &dpos)) {
73942467Smckusick 		VOP_ABORTOP(ndp);
74042467Smckusick 		vrele(ndp->ni_dvp);
74142467Smckusick 		vrele(fvp);
74242467Smckusick 		goto out1;
74342467Smckusick 	}
74438425Smckusick 	tdvp = tond.ni_dvp;
74538425Smckusick 	tvp = tond.ni_vp;
74638418Smckusick 	if (tvp != NULL) {
74738418Smckusick 		if (fvp->v_type == VDIR && tvp->v_type != VDIR) {
74838418Smckusick 			error = EISDIR;
74938418Smckusick 			goto out;
75038418Smckusick 		} else if (fvp->v_type != VDIR && tvp->v_type == VDIR) {
75138418Smckusick 			error = ENOTDIR;
75238418Smckusick 			goto out;
75338418Smckusick 		}
75438418Smckusick 	}
75538418Smckusick 	if (fvp->v_mount != tdvp->v_mount) {
75638418Smckusick 		error = EXDEV;
75738418Smckusick 		goto out;
75838418Smckusick 	}
75938418Smckusick 	if (fvp == tdvp || fvp == tvp)
76038418Smckusick 		error = EINVAL;
76138418Smckusick out:
76242467Smckusick 	if (!error) {
76339343Smckusick 		VREF(ndp->ni_cdir);
76438451Smckusick 		VREF(tond.ni_cdir);
76538425Smckusick 		error = VOP_RENAME(ndp, &tond);
76639343Smckusick 		vrele(ndp->ni_cdir);
76738451Smckusick 		vrele(tond.ni_cdir);
76842467Smckusick 	} else {
76942467Smckusick 		VOP_ABORTOP(&tond);
77042467Smckusick 		vput(tdvp);
77142467Smckusick 		if (tvp)
77242467Smckusick 			vput(tvp);
77342467Smckusick 		VOP_ABORTOP(ndp);
77442467Smckusick 		vrele(ndp->ni_dvp);
77542467Smckusick 		vrele(fvp);
77638418Smckusick 	}
77738418Smckusick out1:
77839343Smckusick 	crfree(cred);
77938418Smckusick 	nfsm_reply(0);
78038418Smckusick 	return (error);
78138418Smckusick nfsmout:
78238425Smckusick 	VOP_ABORTOP(ndp);
78342467Smckusick 	vrele(ndp->ni_dvp);
78442467Smckusick 	vrele(fvp);
78538418Smckusick 	return (error);
78638418Smckusick }
78738418Smckusick 
78838418Smckusick /*
78938418Smckusick  * nfs link service
79038418Smckusick  */
79139753Smckusick nfsrv_link(mrep, md, dpos, cred, xid, mrq, repstat)
79238418Smckusick 	struct mbuf *mrep, *md, **mrq;
79338418Smckusick 	caddr_t dpos;
79438418Smckusick 	struct ucred *cred;
79539753Smckusick 	u_long xid;
79639753Smckusick 	int *repstat;
79738418Smckusick {
79839343Smckusick 	struct nameidata nami;
79939343Smckusick 	register struct nameidata *ndp = &nami;
80039494Smckusick 	register u_long *p;
80139494Smckusick 	register long t1;
80239494Smckusick 	caddr_t bpos;
80339494Smckusick 	int error = 0;
80439494Smckusick 	char *cp2;
80539753Smckusick 	struct mbuf *mb, *mreq;
80638418Smckusick 	struct vnode *vp, *xp;
80738418Smckusick 	nfsv2fh_t nfh, dnfh;
80838418Smckusick 	fhandle_t *fhp, *dfhp;
80938418Smckusick 	long len;
81038418Smckusick 
81139343Smckusick 	ndinit(ndp);
81238418Smckusick 	fhp = &nfh.fh_generic;
81338418Smckusick 	dfhp = &dnfh.fh_generic;
81438418Smckusick 	nfsm_srvmtofh(fhp);
81538418Smckusick 	nfsm_srvmtofh(dfhp);
81638418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
81738418Smckusick 	if (error = nfsrv_fhtovp(fhp, FALSE, &vp, cred))
81838418Smckusick 		nfsm_reply(0);
81938418Smckusick 	if (vp->v_type == VDIR && (error = suser(cred, NULL)))
82038418Smckusick 		goto out1;
82138418Smckusick 	ndp->ni_cred = cred;
82238418Smckusick 	ndp->ni_nameiop = CREATE | LOCKPARENT;
82338418Smckusick 	if (error = nfs_namei(ndp, dfhp, len, &md, &dpos))
82438418Smckusick 		goto out1;
82538418Smckusick 	xp = ndp->ni_vp;
82638418Smckusick 	if (xp != NULL) {
82738418Smckusick 		error = EEXIST;
82838418Smckusick 		goto out;
82938418Smckusick 	}
83038418Smckusick 	xp = ndp->ni_dvp;
83138418Smckusick 	if (vp->v_mount != xp->v_mount)
83238418Smckusick 		error = EXDEV;
83338418Smckusick out:
83442467Smckusick 	if (!error) {
83542467Smckusick 		error = VOP_LINK(vp, ndp);
83642467Smckusick 	} else {
83738418Smckusick 		VOP_ABORTOP(ndp);
83842467Smckusick 		vput(ndp->ni_dvp);
83942467Smckusick 		if (ndp->ni_vp)
84042467Smckusick 			vrele(ndp->ni_vp);
84142467Smckusick 	}
84238418Smckusick out1:
84338418Smckusick 	vrele(vp);
84438418Smckusick 	nfsm_reply(0);
84538418Smckusick 	nfsm_srvdone;
84638418Smckusick }
84738418Smckusick 
84838418Smckusick /*
84938418Smckusick  * nfs symbolic link service
85038418Smckusick  */
85139753Smckusick nfsrv_symlink(mrep, md, dpos, cred, xid, mrq, repstat)
85238418Smckusick 	struct mbuf *mrep, *md, **mrq;
85338418Smckusick 	caddr_t dpos;
85438418Smckusick 	struct ucred *cred;
85539753Smckusick 	u_long xid;
85639753Smckusick 	int *repstat;
85738418Smckusick {
85838418Smckusick 	struct vattr va;
85939343Smckusick 	struct nameidata nami;
86039343Smckusick 	register struct nameidata *ndp = &nami;
86138418Smckusick 	register struct vattr *vap = &va;
86239494Smckusick 	register u_long *p;
86339494Smckusick 	register long t1;
86439494Smckusick 	caddr_t bpos;
86541899Smckusick 	struct uio io;
86641899Smckusick 	struct iovec iv;
86739494Smckusick 	int error = 0;
86841899Smckusick 	char *pathcp, *cp2;
86939753Smckusick 	struct mbuf *mb, *mreq;
87038418Smckusick 	nfsv2fh_t nfh;
87138418Smckusick 	fhandle_t *fhp;
87242242Smckusick 	long len, len2;
87338418Smckusick 
87441899Smckusick 	pathcp = (char *)0;
87539343Smckusick 	ndinit(ndp);
87638418Smckusick 	fhp = &nfh.fh_generic;
87738418Smckusick 	nfsm_srvmtofh(fhp);
87838418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
87938418Smckusick 	ndp->ni_cred = cred;
88038418Smckusick 	ndp->ni_nameiop = CREATE | LOCKPARENT;
88138418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
88242467Smckusick 		goto out;
88341899Smckusick 	nfsm_strsiz(len2, NFS_MAXPATHLEN);
88441899Smckusick 	MALLOC(pathcp, caddr_t, len2 + 1, M_TEMP, M_WAITOK);
88541899Smckusick 	iv.iov_base = pathcp;
88641899Smckusick 	iv.iov_len = len2;
88741899Smckusick 	io.uio_resid = len2;
88841899Smckusick 	io.uio_offset = 0;
88941899Smckusick 	io.uio_iov = &iv;
89041899Smckusick 	io.uio_iovcnt = 1;
89141899Smckusick 	io.uio_segflg = UIO_SYSSPACE;
89241899Smckusick 	io.uio_rw = UIO_READ;
89341899Smckusick 	nfsm_mtouio(&io, len2);
89441899Smckusick 	*(pathcp + len2) = '\0';
89542467Smckusick 	if (ndp->ni_vp) {
89642467Smckusick 		VOP_ABORTOP(ndp);
89742467Smckusick 		vput(ndp->ni_dvp);
89842467Smckusick 		vrele(ndp->ni_vp);
89938418Smckusick 		error = EEXIST;
90038418Smckusick 		goto out;
90138418Smckusick 	}
90241361Smckusick 	VATTR_NULL(vap);
90338418Smckusick 	vap->va_mode = 0777;
90442467Smckusick 	error = VOP_SYMLINK(ndp, vap, pathcp);
90538418Smckusick out:
90641899Smckusick 	if (pathcp)
90741899Smckusick 		FREE(pathcp, M_TEMP);
90838418Smckusick 	nfsm_reply(0);
90938418Smckusick 	return (error);
91038418Smckusick nfsmout:
91138418Smckusick 	VOP_ABORTOP(ndp);
91242467Smckusick 	vput(ndp->ni_dvp);
91342467Smckusick 	if (ndp->ni_vp);
91442467Smckusick 		vrele(ndp->ni_vp);
91541899Smckusick 	if (pathcp)
91641899Smckusick 		FREE(pathcp, M_TEMP);
91738418Smckusick 	return (error);
91838418Smckusick }
91938418Smckusick 
92038418Smckusick /*
92138418Smckusick  * nfs mkdir service
92238418Smckusick  */
92339753Smckusick nfsrv_mkdir(mrep, md, dpos, cred, xid, mrq, repstat)
92438418Smckusick 	struct mbuf *mrep, *md, **mrq;
92538418Smckusick 	caddr_t dpos;
92638418Smckusick 	struct ucred *cred;
92739753Smckusick 	u_long xid;
92839753Smckusick 	int *repstat;
92938418Smckusick {
93038418Smckusick 	struct vattr va;
93138418Smckusick 	register struct vattr *vap = &va;
93238884Smacklem 	register struct nfsv2_fattr *fp;
93339343Smckusick 	struct nameidata nami;
93439343Smckusick 	register struct nameidata *ndp = &nami;
93539494Smckusick 	register caddr_t cp;
93639494Smckusick 	register u_long *p;
93739494Smckusick 	register long t1;
93839494Smckusick 	caddr_t bpos;
93939494Smckusick 	int error = 0;
94039494Smckusick 	char *cp2;
94139753Smckusick 	struct mbuf *mb, *mb2, *mreq;
94238418Smckusick 	struct vnode *vp;
94338418Smckusick 	nfsv2fh_t nfh;
94438418Smckusick 	fhandle_t *fhp;
94538418Smckusick 	long len;
94638418Smckusick 
94739343Smckusick 	ndinit(ndp);
94838418Smckusick 	fhp = &nfh.fh_generic;
94938418Smckusick 	nfsm_srvmtofh(fhp);
95038418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
95138418Smckusick 	ndp->ni_cred = cred;
95238418Smckusick 	ndp->ni_nameiop = CREATE | LOCKPARENT;
95338418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
95438418Smckusick 		nfsm_reply(0);
95538418Smckusick 	nfsm_disect(p, u_long *, NFSX_UNSIGNED);
95641361Smckusick 	VATTR_NULL(vap);
95738418Smckusick 	vap->va_type = VDIR;
95838418Smckusick 	vap->va_mode = nfstov_mode(*p++);
95938418Smckusick 	vp = ndp->ni_vp;
96038418Smckusick 	if (vp != NULL) {
96138418Smckusick 		VOP_ABORTOP(ndp);
96242467Smckusick 		vput(ndp->ni_dvp);
96342467Smckusick 		vrele(vp);
96438418Smckusick 		error = EEXIST;
96538418Smckusick 		nfsm_reply(0);
96638418Smckusick 	}
96738418Smckusick 	if (error = VOP_MKDIR(ndp, vap))
96838418Smckusick 		nfsm_reply(0);
96938418Smckusick 	vp = ndp->ni_vp;
97038418Smckusick 	bzero((caddr_t)fhp, sizeof(nfh));
97141398Smckusick 	fhp->fh_fsid = vp->v_mount->mnt_stat.f_fsid;
97238418Smckusick 	if (error = VFS_VPTOFH(vp, &fhp->fh_fid)) {
97338418Smckusick 		vput(vp);
97438418Smckusick 		nfsm_reply(0);
97538418Smckusick 	}
97638418Smckusick 	error = VOP_GETATTR(vp, vap, cred);
97738418Smckusick 	vput(vp);
97838418Smckusick 	nfsm_reply(NFSX_FH+NFSX_FATTR);
97938418Smckusick 	nfsm_srvfhtom(fhp);
98038884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
98139753Smckusick 	nfsm_srvfillattr;
98238418Smckusick 	return (error);
98338418Smckusick nfsmout:
98438418Smckusick 	VOP_ABORTOP(ndp);
98542467Smckusick 	vput(ndp->ni_dvp);
98642467Smckusick 	if (ndp->ni_vp)
98742467Smckusick 		vrele(ndp->ni_vp);
98838418Smckusick 	return (error);
98938418Smckusick }
99038418Smckusick 
99138418Smckusick /*
99238418Smckusick  * nfs rmdir service
99338418Smckusick  */
99439753Smckusick nfsrv_rmdir(mrep, md, dpos, cred, xid, mrq, repstat)
99538418Smckusick 	struct mbuf *mrep, *md, **mrq;
99638418Smckusick 	caddr_t dpos;
99738418Smckusick 	struct ucred *cred;
99839753Smckusick 	u_long xid;
99939753Smckusick 	int *repstat;
100038418Smckusick {
100139343Smckusick 	struct nameidata nami;
100239343Smckusick 	register struct nameidata *ndp = &nami;
100339494Smckusick 	register u_long *p;
100439494Smckusick 	register long t1;
100539494Smckusick 	caddr_t bpos;
100639494Smckusick 	int error = 0;
100739494Smckusick 	char *cp2;
100839753Smckusick 	struct mbuf *mb, *mreq;
100938418Smckusick 	struct vnode *vp;
101038418Smckusick 	nfsv2fh_t nfh;
101138418Smckusick 	fhandle_t *fhp;
101238418Smckusick 	long len;
101338418Smckusick 
101439343Smckusick 	ndinit(ndp);
101538418Smckusick 	fhp = &nfh.fh_generic;
101638418Smckusick 	nfsm_srvmtofh(fhp);
101738418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
101838418Smckusick 	ndp->ni_cred = cred;
101938418Smckusick 	ndp->ni_nameiop = DELETE | LOCKPARENT | LOCKLEAF;
102038418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
102138418Smckusick 		nfsm_reply(0);
102238418Smckusick 	vp = ndp->ni_vp;
102338418Smckusick 	if (vp->v_type != VDIR) {
102438418Smckusick 		error = ENOTDIR;
102538418Smckusick 		goto out;
102638418Smckusick 	}
102738418Smckusick 	/*
102838418Smckusick 	 * No rmdir "." please.
102938418Smckusick 	 */
103038418Smckusick 	if (ndp->ni_dvp == vp) {
103138418Smckusick 		error = EINVAL;
103238418Smckusick 		goto out;
103338418Smckusick 	}
103438418Smckusick 	/*
103538418Smckusick 	 * Don't unlink a mounted file.
103638418Smckusick 	 */
103738418Smckusick 	if (vp->v_flag & VROOT)
103838418Smckusick 		error = EBUSY;
103938418Smckusick out:
104042467Smckusick 	if (!error) {
104142467Smckusick 		error = VOP_RMDIR(ndp);
104242467Smckusick 	} else {
104338418Smckusick 		VOP_ABORTOP(ndp);
104442467Smckusick 		vput(ndp->ni_dvp);
104542467Smckusick 		vput(vp);
104642467Smckusick 	}
104738418Smckusick 	nfsm_reply(0);
104838418Smckusick 	nfsm_srvdone;
104938418Smckusick }
105038418Smckusick 
105138418Smckusick /*
105238418Smckusick  * nfs readdir service
105338418Smckusick  * - mallocs what it thinks is enough to read
105441899Smckusick  *	count rounded up to a multiple of DIRBLKSIZ <= NFS_MAXREADDIR
105538418Smckusick  * - calls VOP_READDIR()
105640115Smckusick  * - loops around building the reply
105738425Smckusick  *	if the output generated exceeds count break out of loop
105838425Smckusick  *	The nfsm_clget macro is used here so that the reply will be packed
105938425Smckusick  *	tightly in mbuf clusters.
106038418Smckusick  * - it only knows that it has encountered eof when the VOP_READDIR()
106138425Smckusick  *	reads nothing
106238418Smckusick  * - as such one readdir rpc will return eof false although you are there
106338425Smckusick  *	and then the next will return eof
106438418Smckusick  * - it trims out records with d_ino == 0
106538425Smckusick  *	this doesn't matter for Unix clients, but they might confuse clients
106638425Smckusick  *	for other os'.
106738418Smckusick  * NB: It is tempting to set eof to true if the VOP_READDIR() reads less
106838425Smckusick  *	than requested, but this may not apply to all filesystems. For
106938425Smckusick  *	example, client NFS does not { although it is never remote mounted
107038425Smckusick  *	anyhow }
107138418Smckusick  * PS: The NFS protocol spec. does not clarify what the "count" byte
107238425Smckusick  *	argument is a count of.. just name strings and file id's or the
107338425Smckusick  *	entire reply rpc or ...
107438425Smckusick  *	I tried just file name and id sizes and it confused the Sun client,
107538425Smckusick  *	so I am using the full rpc size now. The "paranoia.." comment refers
107638425Smckusick  *	to including the status longwords that are not a part of the dir.
107738425Smckusick  *	"entry" structures, but are in the rpc.
107838418Smckusick  */
107939753Smckusick nfsrv_readdir(mrep, md, dpos, cred, xid, mrq, repstat)
108038418Smckusick 	struct mbuf **mrq;
108138418Smckusick 	struct mbuf *mrep, *md;
108238418Smckusick 	caddr_t dpos;
108338418Smckusick 	struct ucred *cred;
108438418Smckusick 	u_long xid;
108539753Smckusick 	int *repstat;
108638418Smckusick {
108738418Smckusick 	register char *bp, *be;
108838418Smckusick 	register struct mbuf *mp;
108938418Smckusick 	register struct direct *dp;
109039494Smckusick 	register caddr_t cp;
109139494Smckusick 	register u_long *p;
109239494Smckusick 	register long t1;
109339494Smckusick 	caddr_t bpos;
109439494Smckusick 	int error = 0;
109539494Smckusick 	char *cp2;
109639753Smckusick 	struct mbuf *mb, *mb2, *mreq;
109738418Smckusick 	char *cpos, *cend;
109838418Smckusick 	int len, nlen, rem, xfer, tsiz, i;
109938418Smckusick 	struct vnode *vp;
110038418Smckusick 	struct mbuf *mp2, *mp3;
110138418Smckusick 	nfsv2fh_t nfh;
110238418Smckusick 	fhandle_t *fhp;
110338418Smckusick 	struct uio io;
110438418Smckusick 	struct iovec iv;
110540296Smckusick 	int siz, cnt, fullsiz, eofflag;
110638418Smckusick 	u_long on;
110738418Smckusick 	char *rbuf;
110838418Smckusick 	off_t off, toff;
110938418Smckusick 
111038418Smckusick 	fhp = &nfh.fh_generic;
111138418Smckusick 	nfsm_srvmtofh(fhp);
111238418Smckusick 	nfsm_disect(p, u_long *, 2*NFSX_UNSIGNED);
111338418Smckusick 	toff = fxdr_unsigned(off_t, *p++);
111438418Smckusick 	off = (toff & ~(DIRBLKSIZ-1));
111538418Smckusick 	on = (toff & (DIRBLKSIZ-1));
111638418Smckusick 	cnt = fxdr_unsigned(int, *p);
111741899Smckusick 	siz = ((cnt+DIRBLKSIZ-1) & ~(DIRBLKSIZ-1));
111841899Smckusick 	if (cnt > NFS_MAXREADDIR)
111941899Smckusick 		siz = NFS_MAXREADDIR;
112038418Smckusick 	fullsiz = siz;
112138418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
112238418Smckusick 		nfsm_reply(0);
112338450Smckusick 	if (error = nfsrv_access(vp, VEXEC, cred)) {
112438418Smckusick 		vput(vp);
112538418Smckusick 		nfsm_reply(0);
112638418Smckusick 	}
112738418Smckusick 	VOP_UNLOCK(vp);
112838418Smckusick 	MALLOC(rbuf, caddr_t, siz, M_TEMP, M_WAITOK);
112938418Smckusick again:
113038418Smckusick 	iv.iov_base = rbuf;
113138418Smckusick 	iv.iov_len = fullsiz;
113238418Smckusick 	io.uio_iov = &iv;
113338418Smckusick 	io.uio_iovcnt = 1;
113438418Smckusick 	io.uio_offset = off;
113538418Smckusick 	io.uio_resid = fullsiz;
113638418Smckusick 	io.uio_segflg = UIO_SYSSPACE;
113738418Smckusick 	io.uio_rw = UIO_READ;
113840296Smckusick 	error = VOP_READDIR(vp, &io, cred, &eofflag);
113939586Smckusick 	off = io.uio_offset;
114038418Smckusick 	if (error) {
114138418Smckusick 		vrele(vp);
114238418Smckusick 		free((caddr_t)rbuf, M_TEMP);
114338418Smckusick 		nfsm_reply(0);
114438418Smckusick 	}
114538418Smckusick 	if (io.uio_resid) {
114638418Smckusick 		siz -= io.uio_resid;
114738418Smckusick 
114838418Smckusick 		/*
114938418Smckusick 		 * If nothing read, return eof
115038418Smckusick 		 * rpc reply
115138418Smckusick 		 */
115238418Smckusick 		if (siz == 0) {
115338418Smckusick 			vrele(vp);
115438418Smckusick 			nfsm_reply(2*NFSX_UNSIGNED);
115538418Smckusick 			nfsm_build(p, u_long *, 2*NFSX_UNSIGNED);
115638418Smckusick 			*p++ = nfs_false;
115738418Smckusick 			*p = nfs_true;
115838418Smckusick 			FREE((caddr_t)rbuf, M_TEMP);
115938418Smckusick 			return (0);
116038418Smckusick 		}
116138418Smckusick 	}
116240115Smckusick 
116338418Smckusick 	/*
116438418Smckusick 	 * Check for degenerate cases of nothing useful read.
116540115Smckusick 	 * If so go try again
116638418Smckusick 	 */
116740115Smckusick 	cpos = rbuf + on;
116840115Smckusick 	cend = rbuf + siz;
116940115Smckusick 	dp = (struct direct *)cpos;
117040115Smckusick 	while (cpos < cend && dp->d_ino == 0) {
117140115Smckusick 		cpos += dp->d_reclen;
117240115Smckusick 		dp = (struct direct *)cpos;
117340115Smckusick 	}
117440115Smckusick 	if (cpos >= cend) {
117538418Smckusick 		toff = off;
117638418Smckusick 		siz = fullsiz;
117738418Smckusick 		on = 0;
117838418Smckusick 		goto again;
117938418Smckusick 	}
118040115Smckusick 
118140115Smckusick 	cpos = rbuf + on;
118240115Smckusick 	cend = rbuf + siz;
118340115Smckusick 	dp = (struct direct *)cpos;
118438418Smckusick 	vrele(vp);
118538425Smckusick 	len = 3*NFSX_UNSIGNED;	/* paranoia, probably can be 0 */
118638418Smckusick 	bp = be = (caddr_t)0;
118738418Smckusick 	mp3 = (struct mbuf *)0;
118838418Smckusick 	nfsm_reply(siz);
118938418Smckusick 
119038418Smckusick 	/* Loop through the records and build reply */
119138418Smckusick 	while (cpos < cend) {
119238418Smckusick 		if (dp->d_ino != 0) {
119338418Smckusick 			nlen = dp->d_namlen;
119438418Smckusick 			rem = nfsm_rndup(nlen)-nlen;
119538425Smckusick 
119638418Smckusick 			/*
119738418Smckusick 			 * As noted above, the NFS spec. is not clear about what
119838418Smckusick 			 * should be included in "count" as totalled up here in
119938418Smckusick 			 * "len".
120038418Smckusick 			 */
120138418Smckusick 			len += (4*NFSX_UNSIGNED+nlen+rem);
120241899Smckusick 			if (len > cnt) {
120341899Smckusick 				eofflag = 0;
120438418Smckusick 				break;
120541899Smckusick 			}
120638425Smckusick 
120738418Smckusick 			/* Build the directory record xdr from the direct entry */
120838418Smckusick 			nfsm_clget;
120938418Smckusick 			*p = nfs_true;
121038418Smckusick 			bp += NFSX_UNSIGNED;
121138418Smckusick 			nfsm_clget;
121238418Smckusick 			*p = txdr_unsigned(dp->d_ino);
121338418Smckusick 			bp += NFSX_UNSIGNED;
121438418Smckusick 			nfsm_clget;
121538418Smckusick 			*p = txdr_unsigned(nlen);
121638418Smckusick 			bp += NFSX_UNSIGNED;
121738425Smckusick 
121838418Smckusick 			/* And loop arround copying the name */
121938418Smckusick 			xfer = nlen;
122038418Smckusick 			cp = dp->d_name;
122138418Smckusick 			while (xfer > 0) {
122238418Smckusick 				nfsm_clget;
122338418Smckusick 				if ((bp+xfer) > be)
122438418Smckusick 					tsiz = be-bp;
122538418Smckusick 				else
122638418Smckusick 					tsiz = xfer;
122738418Smckusick 				bcopy(cp, bp, tsiz);
122838418Smckusick 				bp += tsiz;
122938418Smckusick 				xfer -= tsiz;
123038418Smckusick 				if (xfer > 0)
123138418Smckusick 					cp += tsiz;
123238418Smckusick 			}
123338418Smckusick 			/* And null pad to a long boundary */
123438418Smckusick 			for (i = 0; i < rem; i++)
123538418Smckusick 				*bp++ = '\0';
123638418Smckusick 			nfsm_clget;
123738425Smckusick 
123838418Smckusick 			/* Finish off the record */
123938418Smckusick 			toff += dp->d_reclen;
124038418Smckusick 			*p = txdr_unsigned(toff);
124138418Smckusick 			bp += NFSX_UNSIGNED;
124238418Smckusick 		} else
124338418Smckusick 			toff += dp->d_reclen;
124438418Smckusick 		cpos += dp->d_reclen;
124538418Smckusick 		dp = (struct direct *)cpos;
124638418Smckusick 	}
124738418Smckusick 	nfsm_clget;
124838418Smckusick 	*p = nfs_false;
124938418Smckusick 	bp += NFSX_UNSIGNED;
125038418Smckusick 	nfsm_clget;
125140296Smckusick 	if (eofflag)
125240296Smckusick 		*p = nfs_true;
125340296Smckusick 	else
125440296Smckusick 		*p = nfs_false;
125538418Smckusick 	bp += NFSX_UNSIGNED;
125638418Smckusick 	if (bp < be)
125738418Smckusick 		mp->m_len = bp-mtod(mp, caddr_t);
125838418Smckusick 	mb->m_next = mp3;
125938418Smckusick 	FREE(rbuf, M_TEMP);
126038418Smckusick 	nfsm_srvdone;
126138418Smckusick }
126238418Smckusick 
126338418Smckusick /*
126438418Smckusick  * nfs statfs service
126538418Smckusick  */
126639753Smckusick nfsrv_statfs(mrep, md, dpos, cred, xid, mrq, repstat)
126738418Smckusick 	struct mbuf **mrq;
126838418Smckusick 	struct mbuf *mrep, *md;
126938418Smckusick 	caddr_t dpos;
127038418Smckusick 	struct ucred *cred;
127138418Smckusick 	u_long xid;
127239753Smckusick 	int *repstat;
127338418Smckusick {
127438418Smckusick 	register struct statfs *sf;
127538884Smacklem 	register struct nfsv2_statfs *sfp;
127639494Smckusick 	register u_long *p;
127739494Smckusick 	register long t1;
127839494Smckusick 	caddr_t bpos;
127939494Smckusick 	int error = 0;
128039494Smckusick 	char *cp2;
128139753Smckusick 	struct mbuf *mb, *mb2, *mreq;
128238418Smckusick 	struct vnode *vp;
128338418Smckusick 	nfsv2fh_t nfh;
128438418Smckusick 	fhandle_t *fhp;
128538418Smckusick 	struct statfs statfs;
128638418Smckusick 
128738418Smckusick 	fhp = &nfh.fh_generic;
128838418Smckusick 	nfsm_srvmtofh(fhp);
128938418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
129038418Smckusick 		nfsm_reply(0);
129138418Smckusick 	sf = &statfs;
129238418Smckusick 	error = VFS_STATFS(vp->v_mount, sf);
129338418Smckusick 	vput(vp);
129438418Smckusick 	nfsm_reply(NFSX_STATFS);
129538884Smacklem 	nfsm_build(sfp, struct nfsv2_statfs *, NFSX_STATFS);
129638884Smacklem 	sfp->sf_tsize = txdr_unsigned(NFS_MAXDATA);
129738884Smacklem 	sfp->sf_bsize = txdr_unsigned(sf->f_fsize);
129838884Smacklem 	sfp->sf_blocks = txdr_unsigned(sf->f_blocks);
129938884Smacklem 	sfp->sf_bfree = txdr_unsigned(sf->f_bfree);
130038884Smacklem 	sfp->sf_bavail = txdr_unsigned(sf->f_bavail);
130138418Smckusick 	nfsm_srvdone;
130238418Smckusick }
130338418Smckusick 
130438418Smckusick /*
130538418Smckusick  * Null operation, used by clients to ping server
130638418Smckusick  */
130739494Smckusick /* ARGSUSED */
130839753Smckusick nfsrv_null(mrep, md, dpos, cred, xid, mrq, repstat)
130938418Smckusick 	struct mbuf **mrq;
131038418Smckusick 	struct mbuf *mrep, *md;
131138418Smckusick 	caddr_t dpos;
131238418Smckusick 	struct ucred *cred;
131338418Smckusick 	u_long xid;
131439753Smckusick 	int *repstat;
131538418Smckusick {
131639494Smckusick 	caddr_t bpos;
131739494Smckusick 	int error = 0;
131839753Smckusick 	struct mbuf *mb, *mreq;
131938418Smckusick 
132038418Smckusick 	error = VNOVAL;
132138418Smckusick 	nfsm_reply(0);
132239494Smckusick 	return (error);
132338418Smckusick }
132438418Smckusick 
132538418Smckusick /*
132638418Smckusick  * No operation, used for obsolete procedures
132738418Smckusick  */
132839494Smckusick /* ARGSUSED */
132939753Smckusick nfsrv_noop(mrep, md, dpos, cred, xid, mrq, repstat)
133038418Smckusick 	struct mbuf **mrq;
133138418Smckusick 	struct mbuf *mrep, *md;
133238418Smckusick 	caddr_t dpos;
133338418Smckusick 	struct ucred *cred;
133438418Smckusick 	u_long xid;
133539753Smckusick 	int *repstat;
133638418Smckusick {
133739494Smckusick 	caddr_t bpos;
133839494Smckusick 	int error = 0;
133939753Smckusick 	struct mbuf *mb, *mreq;
134038418Smckusick 
134138418Smckusick 	error = EPROCUNAVAIL;
134238418Smckusick 	nfsm_reply(0);
134339494Smckusick 	return (error);
134438418Smckusick }
134538425Smckusick 
134638450Smckusick /*
134738450Smckusick  * Perform access checking for vnodes obtained from file handles that would
134838450Smckusick  * refer to files already opened by a Unix client. You cannot just use
134938450Smckusick  * vn_writechk() and VOP_ACCESS() for two reasons.
135041398Smckusick  * 1 - You must check for MNT_EXRDONLY as well as MNT_RDONLY for the write case
135138450Smckusick  * 2 - The owner is to be given access irrespective of mode bits so that
135238450Smckusick  *     processes that chmod after opening a file don't break. I don't like
135338450Smckusick  *     this because it opens a security hole, but since the nfs server opens
135438450Smckusick  *     a security hole the size of a barn door anyhow, what the heck.
135538450Smckusick  */
135638450Smckusick nfsrv_access(vp, flags, cred)
135738450Smckusick 	register struct vnode *vp;
135838450Smckusick 	int flags;
135938450Smckusick 	register struct ucred *cred;
136038450Smckusick {
136138450Smckusick 	struct vattr vattr;
136238450Smckusick 	int error;
136338450Smckusick 	if (flags & VWRITE) {
136441398Smckusick 		/* Just vn_writechk() changed to check MNT_EXRDONLY */
136538450Smckusick 		/*
136638450Smckusick 		 * Disallow write attempts on read-only file systems;
136738450Smckusick 		 * unless the file is a socket or a block or character
136838450Smckusick 		 * device resident on the file system.
136938450Smckusick 		 */
137041398Smckusick 		if ((vp->v_mount->mnt_flag & (MNT_RDONLY | MNT_EXRDONLY)) &&
137138450Smckusick 			vp->v_type != VCHR &&
137238450Smckusick 			vp->v_type != VBLK &&
137338450Smckusick 			vp->v_type != VSOCK)
137438450Smckusick 				return (EROFS);
137538450Smckusick 		/*
137638450Smckusick 		 * If there's shared text associated with
137738450Smckusick 		 * the inode, try to free it up once.  If
137838450Smckusick 		 * we fail, we can't allow writing.
137938450Smckusick 		 */
138038450Smckusick 		if (vp->v_flag & VTEXT)
138138450Smckusick 			xrele(vp);
138238450Smckusick 		if (vp->v_flag & VTEXT)
138338450Smckusick 			return (ETXTBSY);
138438450Smckusick 		if (error = VOP_GETATTR(vp, &vattr, cred))
138538450Smckusick 			return (error);
138638450Smckusick 		if (cred->cr_uid == vattr.va_uid)
138738450Smckusick 			return (0);
138838450Smckusick 	} else {
138938450Smckusick 		if (error = VOP_GETATTR(vp, &vattr, cred))
139038450Smckusick 			return (error);
139138450Smckusick 		if (cred->cr_uid == vattr.va_uid)
139238450Smckusick 			return (0);
139338450Smckusick 	}
139438450Smckusick 	return (VOP_ACCESS(vp, flags, cred));
139538450Smckusick }
1396