xref: /csrg-svn/sys/nfs/nfs_serv.c (revision 43350)
138418Smckusick /*
238418Smckusick  * Copyright (c) 1989 The Regents of the University of California.
338418Smckusick  * All rights reserved.
438418Smckusick  *
538418Smckusick  * This code is derived from software contributed to Berkeley by
638418Smckusick  * Rick Macklem at The University of Guelph.
738418Smckusick  *
838418Smckusick  * Redistribution and use in source and binary forms are permitted
938418Smckusick  * provided that the above copyright notice and this paragraph are
1038418Smckusick  * duplicated in all such forms and that any documentation,
1138418Smckusick  * advertising materials, and other materials related to such
1238418Smckusick  * distribution and use acknowledge that the software was developed
1338418Smckusick  * by the University of California, Berkeley.  The name of the
1438418Smckusick  * University may not be used to endorse or promote products derived
1538418Smckusick  * from this software without specific prior written permission.
1638418Smckusick  * THIS SOFTWARE IS PROVIDED ``AS IS'' AND WITHOUT ANY EXPRESS OR
1738418Smckusick  * IMPLIED WARRANTIES, INCLUDING, WITHOUT LIMITATION, THE IMPLIED
1838418Smckusick  * WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE.
1938418Smckusick  *
20*43350Smckusick  *	@(#)nfs_serv.c	7.24 (Berkeley) 06/21/90
2138418Smckusick  */
2238418Smckusick 
2338418Smckusick /*
2438418Smckusick  * nfs version 2 server calls to vnode ops
2538418Smckusick  * - these routines generally have 3 phases
2638418Smckusick  *   1 - break down and validate rpc request in mbuf list
2738418Smckusick  *   2 - do the vnode ops for the request
2838425Smckusick  *       (surprisingly ?? many are very similar to syscalls in vfs_syscalls.c)
2938418Smckusick  *   3 - build the rpc reply in an mbuf list
3038418Smckusick  *   nb:
3138418Smckusick  *	- do not mix the phases, since the nfsm_?? macros can return failures
3241899Smckusick  *	  on a bad rpc or similar and do not do any vrele() or vput()'s
3338418Smckusick  *
3438425Smckusick  *      - the nfsm_reply() macro generates an nfs rpc reply with the nfs
3538418Smckusick  *	error number iff error != 0 whereas
3641899Smckusick  *	returning an error from the server function implies a fatal error
3741899Smckusick  *	such as a badly constructed rpc request that should be dropped without
3841899Smckusick  *	a reply.
3938418Smckusick  */
4038418Smckusick 
4138418Smckusick #include "param.h"
4240135Smckusick #include "user.h"
4340135Smckusick #include "file.h"
4440135Smckusick #include "vnode.h"
4538418Smckusick #include "mount.h"
4638418Smckusick #include "mbuf.h"
4738418Smckusick #include "errno.h"
4842242Smckusick #include "../ufs/quota.h"
4942242Smckusick #include "../ufs/inode.h"
5038418Smckusick #include "nfsv2.h"
5138418Smckusick #include "nfs.h"
5238418Smckusick #include "xdr_subs.h"
5338418Smckusick #include "nfsm_subs.h"
5438418Smckusick 
5538418Smckusick /* Defs */
5638425Smckusick #define	TRUE	1
5738425Smckusick #define	FALSE	0
5838418Smckusick 
5938418Smckusick /* Global vars */
6038418Smckusick extern u_long nfs_procids[NFS_NPROCS];
6138418Smckusick extern u_long nfs_xdrneg1;
6238418Smckusick extern u_long nfs_false, nfs_true;
6342242Smckusick nfstype nfs_type[9]={ NFNON, NFREG, NFDIR, NFBLK, NFCHR, NFLNK, NFNON,
6442242Smckusick 		      NFCHR, NFNON };
6538418Smckusick 
6638418Smckusick /*
6738418Smckusick  * nfs getattr service
6838418Smckusick  */
6939753Smckusick nfsrv_getattr(mrep, md, dpos, cred, xid, mrq, repstat)
7038418Smckusick 	struct mbuf **mrq;
7138418Smckusick 	struct mbuf *mrep, *md;
7238418Smckusick 	caddr_t dpos;
7338418Smckusick 	struct ucred *cred;
7438418Smckusick 	u_long xid;
7539753Smckusick 	int *repstat;
7638418Smckusick {
7738884Smacklem 	register struct nfsv2_fattr *fp;
7838418Smckusick 	struct vattr va;
7938418Smckusick 	register struct vattr *vap = &va;
8038418Smckusick 	struct vnode *vp;
8138418Smckusick 	nfsv2fh_t nfh;
8238418Smckusick 	fhandle_t *fhp;
8339494Smckusick 	register u_long *p;
8439494Smckusick 	register long t1;
8539494Smckusick 	caddr_t bpos;
8639494Smckusick 	int error = 0;
8739494Smckusick 	char *cp2;
8839753Smckusick 	struct mbuf *mb, *mb2, *mreq;
8938418Smckusick 
9038418Smckusick 	fhp = &nfh.fh_generic;
9138418Smckusick 	nfsm_srvmtofh(fhp);
9238418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
9338418Smckusick 		nfsm_reply(0);
9438418Smckusick 	error = VOP_GETATTR(vp, vap, cred);
9538418Smckusick 	vput(vp);
9638418Smckusick 	nfsm_reply(NFSX_FATTR);
9738884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
9839753Smckusick 	nfsm_srvfillattr;
9938418Smckusick 	nfsm_srvdone;
10038418Smckusick }
10138418Smckusick 
10238418Smckusick /*
10338418Smckusick  * nfs setattr service
10438418Smckusick  */
10539753Smckusick nfsrv_setattr(mrep, md, dpos, cred, xid, mrq, repstat)
10638418Smckusick 	struct mbuf **mrq;
10738418Smckusick 	struct mbuf *mrep, *md;
10838418Smckusick 	caddr_t dpos;
10938418Smckusick 	struct ucred *cred;
11038418Smckusick 	u_long xid;
11139753Smckusick 	int *repstat;
11238418Smckusick {
11338418Smckusick 	struct vattr va;
11438418Smckusick 	register struct vattr *vap = &va;
11538884Smacklem 	register struct nfsv2_sattr *sp;
11638884Smacklem 	register struct nfsv2_fattr *fp;
11738418Smckusick 	struct vnode *vp;
11838418Smckusick 	nfsv2fh_t nfh;
11938418Smckusick 	fhandle_t *fhp;
12039494Smckusick 	register u_long *p;
12139494Smckusick 	register long t1;
12239494Smckusick 	caddr_t bpos;
12339494Smckusick 	int error = 0;
12439494Smckusick 	char *cp2;
12539753Smckusick 	struct mbuf *mb, *mb2, *mreq;
12638418Smckusick 
12738418Smckusick 	fhp = &nfh.fh_generic;
12838418Smckusick 	nfsm_srvmtofh(fhp);
12938884Smacklem 	nfsm_disect(sp, struct nfsv2_sattr *, NFSX_SATTR);
13038418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
13138418Smckusick 		nfsm_reply(0);
13238450Smckusick 	if (error = nfsrv_access(vp, VWRITE, cred))
13338418Smckusick 		goto out;
13441361Smckusick 	VATTR_NULL(vap);
13538418Smckusick 	/*
13638418Smckusick 	 * Nah nah nah nah na nah
13738418Smckusick 	 * There is a bug in the Sun client that puts 0xffff in the mode
13838418Smckusick 	 * field of sattr when it should put in 0xffffffff. The u_short
13938418Smckusick 	 * doesn't sign extend.
14038418Smckusick 	 * --> check the low order 2 bytes for 0xffff
14138418Smckusick 	 */
14238884Smacklem 	if ((fxdr_unsigned(int, sp->sa_mode) & 0xffff) != 0xffff)
14338884Smacklem 		vap->va_mode = nfstov_mode(sp->sa_mode);
14438884Smacklem 	if (sp->sa_uid != nfs_xdrneg1)
14538884Smacklem 		vap->va_uid = fxdr_unsigned(uid_t, sp->sa_uid);
14638884Smacklem 	if (sp->sa_gid != nfs_xdrneg1)
14738884Smacklem 		vap->va_gid = fxdr_unsigned(gid_t, sp->sa_gid);
14839753Smckusick 	if (sp->sa_size != nfs_xdrneg1)
14938884Smacklem 		vap->va_size = fxdr_unsigned(u_long, sp->sa_size);
15039753Smckusick 	/*
15139753Smckusick 	 * The usec field of sa_atime is overloaded with the va_flags field
15239753Smckusick 	 * for 4.4BSD clients. Hopefully other clients always set both the
15339753Smckusick 	 * sec and usec fields to -1 when not setting the atime.
15439753Smckusick 	 */
15539753Smckusick 	if (sp->sa_atime.tv_sec != nfs_xdrneg1) {
15639753Smckusick 		vap->va_atime.tv_sec = fxdr_unsigned(long, sp->sa_atime.tv_sec);
15739753Smckusick 		vap->va_atime.tv_usec = 0;
15838425Smckusick 	}
15939753Smckusick 	if (sp->sa_atime.tv_usec != nfs_xdrneg1)
16039753Smckusick 		vap->va_flags = fxdr_unsigned(u_long, sp->sa_atime.tv_usec);
16138884Smacklem 	if (sp->sa_mtime.tv_sec != nfs_xdrneg1)
16238884Smacklem 		fxdr_time(&sp->sa_mtime, &vap->va_mtime);
16338418Smckusick 	if (error = VOP_SETATTR(vp, vap, cred)) {
16438418Smckusick 		vput(vp);
16538418Smckusick 		nfsm_reply(0);
16638418Smckusick 	}
16738418Smckusick 	error = VOP_GETATTR(vp, vap, cred);
16838418Smckusick out:
16938418Smckusick 	vput(vp);
17038418Smckusick 	nfsm_reply(NFSX_FATTR);
17138884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
17239753Smckusick 	nfsm_srvfillattr;
17338418Smckusick 	nfsm_srvdone;
17438418Smckusick }
17538418Smckusick 
17638418Smckusick /*
17738418Smckusick  * nfs lookup rpc
17838418Smckusick  */
17939753Smckusick nfsrv_lookup(mrep, md, dpos, cred, xid, mrq, repstat)
18038418Smckusick 	struct mbuf **mrq;
18138418Smckusick 	struct mbuf *mrep, *md;
18238418Smckusick 	caddr_t dpos;
18338418Smckusick 	struct ucred *cred;
18438418Smckusick 	u_long xid;
18539753Smckusick 	int *repstat;
18638418Smckusick {
18738884Smacklem 	register struct nfsv2_fattr *fp;
18839343Smckusick 	struct nameidata nami;
18939343Smckusick 	register struct nameidata *ndp = &nami;
19038418Smckusick 	struct vnode *vp;
19138418Smckusick 	nfsv2fh_t nfh;
19238418Smckusick 	fhandle_t *fhp;
19339494Smckusick 	register caddr_t cp;
19439494Smckusick 	register u_long *p;
19539494Smckusick 	register long t1;
19639494Smckusick 	caddr_t bpos;
19739494Smckusick 	int error = 0;
19839494Smckusick 	char *cp2;
19939753Smckusick 	struct mbuf *mb, *mb2, *mreq;
20038418Smckusick 	long len;
20138418Smckusick 	struct vattr va, *vap = &va;
20238418Smckusick 
20339343Smckusick 	ndinit(ndp);
20438418Smckusick 	fhp = &nfh.fh_generic;
20538418Smckusick 	nfsm_srvmtofh(fhp);
20638418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
20738418Smckusick 	ndp->ni_cred = cred;
20838418Smckusick 	ndp->ni_nameiop = LOOKUP | LOCKLEAF;
20938418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
21038418Smckusick 		nfsm_reply(0);
21138418Smckusick 	vp = ndp->ni_vp;
21238418Smckusick 	bzero((caddr_t)fhp, sizeof(nfh));
21341398Smckusick 	fhp->fh_fsid = vp->v_mount->mnt_stat.f_fsid;
21438418Smckusick 	if (error = VFS_VPTOFH(vp, &fhp->fh_fid)) {
21538418Smckusick 		vput(vp);
21638418Smckusick 		nfsm_reply(0);
21738418Smckusick 	}
21838418Smckusick 	error = VOP_GETATTR(vp, vap, cred);
21938418Smckusick 	vput(vp);
22038418Smckusick 	nfsm_reply(NFSX_FH+NFSX_FATTR);
22138418Smckusick 	nfsm_srvfhtom(fhp);
22238884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
22339753Smckusick 	nfsm_srvfillattr;
22438418Smckusick 	nfsm_srvdone;
22538418Smckusick }
22638418Smckusick 
22738418Smckusick /*
22838418Smckusick  * nfs readlink service
22938418Smckusick  */
23039753Smckusick nfsrv_readlink(mrep, md, dpos, cred, xid, mrq, repstat)
23138418Smckusick 	struct mbuf **mrq;
23238418Smckusick 	struct mbuf *mrep, *md;
23338418Smckusick 	caddr_t dpos;
23438418Smckusick 	struct ucred *cred;
23539753Smckusick 	u_long xid;
23639753Smckusick 	int *repstat;
23738418Smckusick {
23841899Smckusick 	struct iovec iv[(NFS_MAXPATHLEN+MLEN-1)/MLEN];
23938418Smckusick 	register struct iovec *ivp = iv;
24038418Smckusick 	register struct mbuf *mp;
24139494Smckusick 	register u_long *p;
24239494Smckusick 	register long t1;
24339494Smckusick 	caddr_t bpos;
24439494Smckusick 	int error = 0;
24539494Smckusick 	char *cp2;
24639753Smckusick 	struct mbuf *mb, *mb2, *mp2, *mp3, *mreq;
24738418Smckusick 	struct vnode *vp;
24838418Smckusick 	nfsv2fh_t nfh;
24938418Smckusick 	fhandle_t *fhp;
25038418Smckusick 	struct uio io, *uiop = &io;
25138418Smckusick 	int i, tlen, len;
25238418Smckusick 
25338418Smckusick 	fhp = &nfh.fh_generic;
25438418Smckusick 	nfsm_srvmtofh(fhp);
25538418Smckusick 	len = 0;
25638418Smckusick 	i = 0;
25738418Smckusick 	while (len < NFS_MAXPATHLEN) {
25838418Smckusick 		MGET(mp, M_WAIT, MT_DATA);
25941899Smckusick 		MCLGET(mp, M_WAIT);
26038418Smckusick 		mp->m_len = NFSMSIZ(mp);
26138418Smckusick 		if (len == 0)
26238418Smckusick 			mp3 = mp2 = mp;
26341899Smckusick 		else {
26438418Smckusick 			mp2->m_next = mp;
26541899Smckusick 			mp2 = mp;
26641899Smckusick 		}
26738418Smckusick 		if ((len+mp->m_len) > NFS_MAXPATHLEN) {
26838418Smckusick 			mp->m_len = NFS_MAXPATHLEN-len;
26938418Smckusick 			len = NFS_MAXPATHLEN;
27038418Smckusick 		} else
27138418Smckusick 			len += mp->m_len;
27238418Smckusick 		ivp->iov_base = mtod(mp, caddr_t);
27338418Smckusick 		ivp->iov_len = mp->m_len;
27438418Smckusick 		i++;
27538418Smckusick 		ivp++;
27638418Smckusick 	}
27738418Smckusick 	uiop->uio_iov = iv;
27838418Smckusick 	uiop->uio_iovcnt = i;
27938418Smckusick 	uiop->uio_offset = 0;
28038418Smckusick 	uiop->uio_resid = len;
28138418Smckusick 	uiop->uio_rw = UIO_READ;
28238418Smckusick 	uiop->uio_segflg = UIO_SYSSPACE;
28338418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred)) {
28438418Smckusick 		m_freem(mp3);
28538418Smckusick 		nfsm_reply(0);
28638418Smckusick 	}
28738418Smckusick 	if (vp->v_type != VLNK) {
28838418Smckusick 		error = EINVAL;
28938418Smckusick 		goto out;
29038418Smckusick 	}
29138418Smckusick 	error = VOP_READLINK(vp, uiop, cred);
29238418Smckusick out:
29338418Smckusick 	vput(vp);
29438418Smckusick 	if (error)
29538418Smckusick 		m_freem(mp3);
29638418Smckusick 	nfsm_reply(NFSX_UNSIGNED);
29738418Smckusick 	if (uiop->uio_resid > 0) {
29838418Smckusick 		len -= uiop->uio_resid;
29938418Smckusick 		tlen = nfsm_rndup(len);
30038418Smckusick 		nfsm_adj(mp3, NFS_MAXPATHLEN-tlen, tlen-len);
30138418Smckusick 	}
30238418Smckusick 	nfsm_build(p, u_long *, NFSX_UNSIGNED);
30338418Smckusick 	*p = txdr_unsigned(len);
30438418Smckusick 	mb->m_next = mp3;
30538418Smckusick 	nfsm_srvdone;
30638418Smckusick }
30738418Smckusick 
30838418Smckusick /*
30938418Smckusick  * nfs read service
31038418Smckusick  */
31139753Smckusick nfsrv_read(mrep, md, dpos, cred, xid, mrq, repstat)
31238418Smckusick 	struct mbuf **mrq;
31338418Smckusick 	struct mbuf *mrep, *md;
31438418Smckusick 	caddr_t dpos;
31538418Smckusick 	struct ucred *cred;
31638418Smckusick 	u_long xid;
31739753Smckusick 	int *repstat;
31838418Smckusick {
319*43350Smckusick 	register struct iovec *iv;
320*43350Smckusick 	struct iovec *iv2;
32141899Smckusick 	register struct mbuf *m;
32238884Smacklem 	register struct nfsv2_fattr *fp;
32339494Smckusick 	register u_long *p;
32439494Smckusick 	register long t1;
32539494Smckusick 	caddr_t bpos;
32639494Smckusick 	int error = 0;
32739494Smckusick 	char *cp2;
32839753Smckusick 	struct mbuf *mb, *mb2, *mreq;
32941899Smckusick 	struct mbuf *m2, *m3;
33038418Smckusick 	struct vnode *vp;
33138418Smckusick 	nfsv2fh_t nfh;
33238418Smckusick 	fhandle_t *fhp;
33338418Smckusick 	struct uio io, *uiop = &io;
33438418Smckusick 	struct vattr va, *vap = &va;
33541899Smckusick 	int i, cnt, len, left, siz, tlen;
33638418Smckusick 	off_t off;
33738418Smckusick 
33838418Smckusick 	fhp = &nfh.fh_generic;
33938418Smckusick 	nfsm_srvmtofh(fhp);
34038418Smckusick 	nfsm_disect(p, u_long *, NFSX_UNSIGNED);
34138418Smckusick 	off = fxdr_unsigned(off_t, *p);
34238418Smckusick 	nfsm_srvstrsiz(cnt, NFS_MAXDATA);
34338418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
34438418Smckusick 		nfsm_reply(0);
34538450Smckusick 	if (error = nfsrv_access(vp, VREAD | VEXEC, cred)) {
34638418Smckusick 		vput(vp);
34738418Smckusick 		nfsm_reply(0);
34838418Smckusick 	}
34938418Smckusick 	len = left = cnt;
35041899Smckusick 	/*
35141899Smckusick 	 * Generate the mbuf list with the uio_iov ref. to it.
35241899Smckusick 	 */
35341899Smckusick 	i = 0;
35441899Smckusick 	m3 = (struct mbuf *)0;
35542242Smckusick #ifdef lint
35642242Smckusick 	m2 = (struct mbuf *)0;
35742242Smckusick #endif /* lint */
358*43350Smckusick 	MALLOC(iv, struct iovec *,
359*43350Smckusick 	       ((NFS_MAXDATA+MLEN-1)/MLEN) * sizeof (struct iovec), M_TEMP,
360*43350Smckusick 	       M_WAITOK);
361*43350Smckusick 	iv2 = iv;
36241899Smckusick 	while (left > 0) {
36341899Smckusick 		MGET(m, M_WAIT, MT_DATA);
36441899Smckusick 		if (left > MINCLSIZE)
36541899Smckusick 			MCLGET(m, M_WAIT);
36641899Smckusick 		m->m_len = 0;
36741899Smckusick 		siz = min(M_TRAILINGSPACE(m), left);
36841899Smckusick 		m->m_len = siz;
369*43350Smckusick 		iv->iov_base = mtod(m, caddr_t);
370*43350Smckusick 		iv->iov_len = siz;
371*43350Smckusick 		iv++;
37241899Smckusick 		i++;
37341899Smckusick 		left -= siz;
37441899Smckusick 		if (m3) {
37541899Smckusick 			m2->m_next = m;
37641899Smckusick 			m2 = m;
37741899Smckusick 		} else
37841899Smckusick 			m3 = m2 = m;
37941899Smckusick 	}
380*43350Smckusick 	uiop->uio_iov = iv2;
38141899Smckusick 	uiop->uio_iovcnt = i;
38238418Smckusick 	uiop->uio_offset = off;
38338418Smckusick 	uiop->uio_resid = cnt;
38438418Smckusick 	uiop->uio_rw = UIO_READ;
38538418Smckusick 	uiop->uio_segflg = UIO_SYSSPACE;
38639586Smckusick 	error = VOP_READ(vp, uiop, IO_NODELOCKED, cred);
38739586Smckusick 	off = uiop->uio_offset;
388*43350Smckusick 	FREE((caddr_t)iv2, M_TEMP);
38938418Smckusick 	if (error) {
39041899Smckusick 		m_freem(m3);
39138418Smckusick 		vput(vp);
39238418Smckusick 		nfsm_reply(0);
39338418Smckusick 	}
39438418Smckusick 	if (error = VOP_GETATTR(vp, vap, cred))
39541899Smckusick 		m_freem(m3);
39638418Smckusick 	vput(vp);
39738418Smckusick 	nfsm_reply(NFSX_FATTR+NFSX_UNSIGNED);
39838884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
39939753Smckusick 	nfsm_srvfillattr;
40038418Smckusick 	if (uiop->uio_resid > 0) {
40138418Smckusick 		len -= uiop->uio_resid;
40238418Smckusick 		if (len > 0) {
40338418Smckusick 			tlen = nfsm_rndup(len);
40441899Smckusick 			nfsm_adj(m3, cnt-tlen, tlen-len);
40538418Smckusick 		} else {
40641899Smckusick 			m_freem(m3);
40741899Smckusick 			m3 = (struct mbuf *)0;
40838418Smckusick 		}
40938418Smckusick 	}
41038884Smacklem 	nfsm_build(p, u_long *, NFSX_UNSIGNED);
41138418Smckusick 	*p = txdr_unsigned(len);
41241899Smckusick 	mb->m_next = m3;
41338418Smckusick 	nfsm_srvdone;
41438418Smckusick }
41538418Smckusick 
41638418Smckusick /*
41738418Smckusick  * nfs write service
41838418Smckusick  */
41939753Smckusick nfsrv_write(mrep, md, dpos, cred, xid, mrq, repstat)
42038418Smckusick 	struct mbuf *mrep, *md, **mrq;
42138418Smckusick 	caddr_t dpos;
42238418Smckusick 	struct ucred *cred;
42339753Smckusick 	u_long xid;
42439753Smckusick 	int *repstat;
42538418Smckusick {
42638418Smckusick 	register struct iovec *ivp;
42738418Smckusick 	register struct mbuf *mp;
42838884Smacklem 	register struct nfsv2_fattr *fp;
42941899Smckusick 	struct iovec iv[NFS_MAXIOVEC];
43038418Smckusick 	struct vattr va;
43138418Smckusick 	register struct vattr *vap = &va;
43239494Smckusick 	register u_long *p;
43339494Smckusick 	register long t1;
43439494Smckusick 	caddr_t bpos;
43539494Smckusick 	int error = 0;
43639494Smckusick 	char *cp2;
43739753Smckusick 	struct mbuf *mb, *mb2, *mreq;
43838418Smckusick 	struct vnode *vp;
43938418Smckusick 	nfsv2fh_t nfh;
44038418Smckusick 	fhandle_t *fhp;
44138418Smckusick 	struct uio io, *uiop = &io;
44238418Smckusick 	off_t off;
44338418Smckusick 	long siz, len, xfer;
44438418Smckusick 
44538418Smckusick 	fhp = &nfh.fh_generic;
44638418Smckusick 	nfsm_srvmtofh(fhp);
44738418Smckusick 	nfsm_disect(p, u_long *, 4*NFSX_UNSIGNED);
44838418Smckusick 	off = fxdr_unsigned(off_t, *++p);
44938418Smckusick 	p += 2;
45038418Smckusick 	len = fxdr_unsigned(long, *p);
45138418Smckusick 	if (len > NFS_MAXDATA || len <= 0) {
45238418Smckusick 		error = EBADRPC;
45338418Smckusick 		nfsm_reply(0);
45438418Smckusick 	}
45538418Smckusick 	if (dpos == (mtod(md, caddr_t)+md->m_len)) {
45638418Smckusick 		mp = md->m_next;
45738418Smckusick 		if (mp == NULL) {
45838418Smckusick 			error = EBADRPC;
45938418Smckusick 			nfsm_reply(0);
46038418Smckusick 		}
46138418Smckusick 	} else {
46238418Smckusick 		mp = md;
46338418Smckusick 		siz = dpos-mtod(mp, caddr_t);
46438418Smckusick 		mp->m_len -= siz;
46538418Smckusick 		NFSMADV(mp, siz);
46638418Smckusick 	}
46738418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
46838418Smckusick 		nfsm_reply(0);
46938450Smckusick 	if (error = nfsrv_access(vp, VWRITE, cred)) {
47038418Smckusick 		vput(vp);
47138418Smckusick 		nfsm_reply(0);
47238418Smckusick 	}
47338418Smckusick 	uiop->uio_resid = 0;
47438418Smckusick 	uiop->uio_rw = UIO_WRITE;
47538418Smckusick 	uiop->uio_segflg = UIO_SYSSPACE;
47638418Smckusick 	/*
47741899Smckusick 	 * Do up to NFS_MAXIOVEC mbufs of write each iteration of the
47838418Smckusick 	 * loop until done.
47938418Smckusick 	 */
48038418Smckusick 	while (len > 0 && uiop->uio_resid == 0) {
48138418Smckusick 		ivp = iv;
48238418Smckusick 		siz = 0;
48338418Smckusick 		uiop->uio_iov = ivp;
48438418Smckusick 		uiop->uio_iovcnt = 0;
48538418Smckusick 		uiop->uio_offset = off;
48641899Smckusick 		while (len > 0 && uiop->uio_iovcnt < NFS_MAXIOVEC && mp != NULL) {
48738418Smckusick 			ivp->iov_base = mtod(mp, caddr_t);
48838418Smckusick 			if (len < mp->m_len)
48938418Smckusick 				ivp->iov_len = xfer = len;
49038418Smckusick 			else
49138418Smckusick 				ivp->iov_len = xfer = mp->m_len;
49238418Smckusick #ifdef notdef
49338418Smckusick 			/* Not Yet .. */
49438418Smckusick 			if (M_HASCL(mp) && (((u_long)ivp->iov_base) & CLOFSET) == 0)
49538418Smckusick 				ivp->iov_op = NULL;	/* what should it be ?? */
49638418Smckusick 			else
49738418Smckusick 				ivp->iov_op = NULL;
49838418Smckusick #endif
49938418Smckusick 			uiop->uio_iovcnt++;
50038418Smckusick 			ivp++;
50138418Smckusick 			len -= xfer;
50238418Smckusick 			siz += xfer;
50338418Smckusick 			mp = mp->m_next;
50438418Smckusick 		}
50538418Smckusick 		if (len > 0 && mp == NULL) {
50638418Smckusick 			error = EBADRPC;
50738418Smckusick 			vput(vp);
50838418Smckusick 			nfsm_reply(0);
50938418Smckusick 		}
51038418Smckusick 		uiop->uio_resid = siz;
51139586Smckusick 		if (error = VOP_WRITE(vp, uiop, IO_SYNC | IO_NODELOCKED,
51238418Smckusick 			cred)) {
51338418Smckusick 			vput(vp);
51438418Smckusick 			nfsm_reply(0);
51538418Smckusick 		}
51639586Smckusick 		off = uiop->uio_offset;
51738418Smckusick 	}
51838418Smckusick 	error = VOP_GETATTR(vp, vap, cred);
51938418Smckusick 	vput(vp);
52038418Smckusick 	nfsm_reply(NFSX_FATTR);
52138884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
52239753Smckusick 	nfsm_srvfillattr;
52338418Smckusick 	nfsm_srvdone;
52438418Smckusick }
52538418Smckusick 
52638418Smckusick /*
52738418Smckusick  * nfs create service
52838418Smckusick  * now does a truncate to 0 length via. setattr if it already exists
52938418Smckusick  */
53039753Smckusick nfsrv_create(mrep, md, dpos, cred, xid, mrq, repstat)
53138418Smckusick 	struct mbuf *mrep, *md, **mrq;
53238418Smckusick 	caddr_t dpos;
53338418Smckusick 	struct ucred *cred;
53439753Smckusick 	u_long xid;
53539753Smckusick 	int *repstat;
53638418Smckusick {
53738884Smacklem 	register struct nfsv2_fattr *fp;
53838418Smckusick 	struct vattr va;
53938418Smckusick 	register struct vattr *vap = &va;
54039343Smckusick 	struct nameidata nami;
54139343Smckusick 	register struct nameidata *ndp = &nami;
54239494Smckusick 	register caddr_t cp;
54339494Smckusick 	register u_long *p;
54439494Smckusick 	register long t1;
54539494Smckusick 	caddr_t bpos;
54642242Smckusick 	long rdev;
54739494Smckusick 	int error = 0;
54839494Smckusick 	char *cp2;
54939753Smckusick 	struct mbuf *mb, *mb2, *mreq;
55038418Smckusick 	struct vnode *vp;
55138418Smckusick 	nfsv2fh_t nfh;
55238418Smckusick 	fhandle_t *fhp;
55338418Smckusick 	long len;
55438418Smckusick 
55539343Smckusick 	ndinit(ndp);
55638418Smckusick 	fhp = &nfh.fh_generic;
55738418Smckusick 	nfsm_srvmtofh(fhp);
55838418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
55938418Smckusick 	ndp->ni_cred = cred;
56038418Smckusick 	ndp->ni_nameiop = CREATE | LOCKPARENT | LOCKLEAF;
56138418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
56238418Smckusick 		nfsm_reply(0);
56341361Smckusick 	VATTR_NULL(vap);
56442242Smckusick 	nfsm_disect(p, u_long *, NFSX_SATTR);
56538418Smckusick 	/*
56638418Smckusick 	 * Iff doesn't exist, create it
56738418Smckusick 	 * otherwise just truncate to 0 length
56838418Smckusick 	 *   should I set the mode too ??
56938418Smckusick 	 */
57038418Smckusick 	if (ndp->ni_vp == NULL) {
57142242Smckusick 		vap->va_type = IFTOVT(fxdr_unsigned(u_long, *p));
57242867Smckusick 		if (vap->va_type == VNON)
57342867Smckusick 			vap->va_type = VREG;
57442242Smckusick 		vap->va_mode = nfstov_mode(*p);
57542242Smckusick 		rdev = fxdr_unsigned(long, *(p+3));
57642242Smckusick 		if (vap->va_type == VREG) {
57742242Smckusick 			if (error = VOP_CREATE(ndp, vap))
57842242Smckusick 				nfsm_reply(0);
57942242Smckusick 		} else if (vap->va_type == VCHR || vap->va_type == VBLK ||
58042242Smckusick 			vap->va_type == VFIFO) {
58142242Smckusick 			if (vap->va_type == VCHR && rdev == 0xffffffff)
58242242Smckusick 				vap->va_type = VFIFO;
58342242Smckusick 			if (vap->va_type == VFIFO) {
58442242Smckusick #ifndef FIFO
58542242Smckusick 				VOP_ABORTOP(ndp);
58642467Smckusick 				vput(ndp->ni_dvp);
58742242Smckusick 				error = ENXIO;
58842242Smckusick 				nfsm_reply(0);
58942242Smckusick #endif /* FIFO */
59042242Smckusick 			} else if (error = suser(cred, (short *)0)) {
59142242Smckusick 				VOP_ABORTOP(ndp);
59242467Smckusick 				vput(ndp->ni_dvp);
59342242Smckusick 				nfsm_reply(0);
59442242Smckusick 			} else
59542242Smckusick 				vap->va_rdev = (dev_t)rdev;
59642242Smckusick 			if (error = VOP_MKNOD(ndp, vap, cred))
59742242Smckusick 				nfsm_reply(0);
59842242Smckusick 			ndp->ni_nameiop = LOOKUP | LOCKLEAF | HASBUF;
59942242Smckusick 			if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
60042242Smckusick 				nfsm_reply(0);
60142242Smckusick 		} else {
60242242Smckusick 			VOP_ABORTOP(ndp);
60342467Smckusick 			vput(ndp->ni_dvp);
60442242Smckusick 			error = ENXIO;
60538418Smckusick 			nfsm_reply(0);
60642242Smckusick 		}
60738425Smckusick 		vp = ndp->ni_vp;
60838418Smckusick 	} else {
60938425Smckusick 		vp = ndp->ni_vp;
61041398Smckusick 		ndp->ni_vp = NULLVP;
61138425Smckusick 		VOP_ABORTOP(ndp);
61242467Smckusick 		vput(ndp->ni_dvp);
61338418Smckusick 		vap->va_size = 0;
61442506Smckusick 		if (error = VOP_SETATTR(vp, vap, cred)) {
61542506Smckusick 			vput(vp);
61638418Smckusick 			nfsm_reply(0);
61742506Smckusick 		}
61838418Smckusick 	}
61938418Smckusick 	bzero((caddr_t)fhp, sizeof(nfh));
62041398Smckusick 	fhp->fh_fsid = vp->v_mount->mnt_stat.f_fsid;
62138418Smckusick 	if (error = VFS_VPTOFH(vp, &fhp->fh_fid)) {
62238418Smckusick 		vput(vp);
62338418Smckusick 		nfsm_reply(0);
62438418Smckusick 	}
62538418Smckusick 	error = VOP_GETATTR(vp, vap, cred);
62638418Smckusick 	vput(vp);
62738418Smckusick 	nfsm_reply(NFSX_FH+NFSX_FATTR);
62838418Smckusick 	nfsm_srvfhtom(fhp);
62938884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
63039753Smckusick 	nfsm_srvfillattr;
63138418Smckusick 	return (error);
63238418Smckusick nfsmout:
63338418Smckusick 	VOP_ABORTOP(ndp);
63442467Smckusick 	vput(ndp->ni_dvp);
63542467Smckusick 	if (ndp->ni_vp)
63642467Smckusick 		vput(ndp->ni_vp);
63738418Smckusick 	return (error);
63838418Smckusick }
63938418Smckusick 
64038418Smckusick /*
64138418Smckusick  * nfs remove service
64238418Smckusick  */
64339753Smckusick nfsrv_remove(mrep, md, dpos, cred, xid, mrq, repstat)
64438418Smckusick 	struct mbuf *mrep, *md, **mrq;
64538418Smckusick 	caddr_t dpos;
64638418Smckusick 	struct ucred *cred;
64739753Smckusick 	u_long xid;
64839753Smckusick 	int *repstat;
64938418Smckusick {
65039343Smckusick 	struct nameidata nami;
65139343Smckusick 	register struct nameidata *ndp = &nami;
65239494Smckusick 	register u_long *p;
65339494Smckusick 	register long t1;
65439494Smckusick 	caddr_t bpos;
65539494Smckusick 	int error = 0;
65639494Smckusick 	char *cp2;
65739753Smckusick 	struct mbuf *mb, *mreq;
65838418Smckusick 	struct vnode *vp;
65938418Smckusick 	nfsv2fh_t nfh;
66038418Smckusick 	fhandle_t *fhp;
66138418Smckusick 	long len;
66238418Smckusick 
66339343Smckusick 	ndinit(ndp);
66438418Smckusick 	fhp = &nfh.fh_generic;
66538418Smckusick 	nfsm_srvmtofh(fhp);
66638418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
66738418Smckusick 	ndp->ni_cred = cred;
66838418Smckusick 	ndp->ni_nameiop = DELETE | LOCKPARENT | LOCKLEAF;
66938418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
67038418Smckusick 		nfsm_reply(0);
67138418Smckusick 	vp = ndp->ni_vp;
67238418Smckusick 	if (vp->v_type == VDIR &&
67338418Smckusick 		(error = suser(cred, (short *)0)))
67438418Smckusick 		goto out;
67538418Smckusick 	/*
67638418Smckusick 	 * Don't unlink a mounted file.
67738418Smckusick 	 */
67838418Smckusick 	if (vp->v_flag & VROOT) {
67938418Smckusick 		error = EBUSY;
68038418Smckusick 		goto out;
68138418Smckusick 	}
68238418Smckusick 	if (vp->v_flag & VTEXT)
68338418Smckusick 		xrele(vp);	/* try once to free text */
68438418Smckusick out:
68542467Smckusick 	if (!error) {
68642467Smckusick 		error = VOP_REMOVE(ndp);
68742467Smckusick 	} else {
68838418Smckusick 		VOP_ABORTOP(ndp);
68942467Smckusick 		vput(ndp->ni_dvp);
69042467Smckusick 		vput(vp);
69142467Smckusick 	}
69238418Smckusick 	nfsm_reply(0);
69338418Smckusick 	nfsm_srvdone;
69438418Smckusick }
69538418Smckusick 
69638418Smckusick /*
69738418Smckusick  * nfs rename service
69838418Smckusick  */
69939753Smckusick nfsrv_rename(mrep, md, dpos, cred, xid, mrq, repstat)
70038418Smckusick 	struct mbuf *mrep, *md, **mrq;
70138418Smckusick 	caddr_t dpos;
70238418Smckusick 	struct ucred *cred;
70339753Smckusick 	u_long xid;
70439753Smckusick 	int *repstat;
70538418Smckusick {
70638425Smckusick 	register struct nameidata *ndp;
70739494Smckusick 	register u_long *p;
70839494Smckusick 	register long t1;
70939494Smckusick 	caddr_t bpos;
71039494Smckusick 	int error = 0;
71139494Smckusick 	char *cp2;
71239753Smckusick 	struct mbuf *mb, *mreq;
71339343Smckusick 	struct nameidata nami, tond;
71438418Smckusick 	struct vnode *fvp, *tvp, *tdvp;
71538418Smckusick 	nfsv2fh_t fnfh, tnfh;
71638418Smckusick 	fhandle_t *ffhp, *tfhp;
71738418Smckusick 	long len, len2;
71838418Smckusick 	int rootflg = 0;
71938418Smckusick 
72039343Smckusick 	ndp = &nami;
72139343Smckusick 	ndinit(ndp);
72238418Smckusick 	ffhp = &fnfh.fh_generic;
72338418Smckusick 	tfhp = &tnfh.fh_generic;
72438418Smckusick 	nfsm_srvmtofh(ffhp);
72538418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
72638418Smckusick 	/*
72738418Smckusick 	 * Remember if we are root so that we can reset cr_uid before
72838418Smckusick 	 * the second nfs_namei() call
72938418Smckusick 	 */
73038418Smckusick 	if (cred->cr_uid == 0)
73138418Smckusick 		rootflg++;
73238425Smckusick 	ndp->ni_cred = cred;
73338425Smckusick 	ndp->ni_nameiop = DELETE | WANTPARENT;
73438425Smckusick 	if (error = nfs_namei(ndp, ffhp, len, &md, &dpos))
73538418Smckusick 		nfsm_reply(0);
73638425Smckusick 	fvp = ndp->ni_vp;
73738418Smckusick 	nfsm_srvmtofh(tfhp);
73841899Smckusick 	nfsm_strsiz(len2, NFS_MAXNAMLEN);
73938418Smckusick 	if (rootflg)
74038418Smckusick 		cred->cr_uid = 0;
74139343Smckusick 	ndinit(&tond);
74239343Smckusick 	crhold(cred);
74339343Smckusick 	tond.ni_cred = cred;
74438425Smckusick 	tond.ni_nameiop = RENAME | LOCKPARENT | LOCKLEAF | NOCACHE;
74542467Smckusick 	if (error = nfs_namei(&tond, tfhp, len2, &md, &dpos)) {
74642467Smckusick 		VOP_ABORTOP(ndp);
74742467Smckusick 		vrele(ndp->ni_dvp);
74842467Smckusick 		vrele(fvp);
74942467Smckusick 		goto out1;
75042467Smckusick 	}
75138425Smckusick 	tdvp = tond.ni_dvp;
75238425Smckusick 	tvp = tond.ni_vp;
75338418Smckusick 	if (tvp != NULL) {
75438418Smckusick 		if (fvp->v_type == VDIR && tvp->v_type != VDIR) {
75538418Smckusick 			error = EISDIR;
75638418Smckusick 			goto out;
75738418Smckusick 		} else if (fvp->v_type != VDIR && tvp->v_type == VDIR) {
75838418Smckusick 			error = ENOTDIR;
75938418Smckusick 			goto out;
76038418Smckusick 		}
76138418Smckusick 	}
76238418Smckusick 	if (fvp->v_mount != tdvp->v_mount) {
76338418Smckusick 		error = EXDEV;
76438418Smckusick 		goto out;
76538418Smckusick 	}
76638418Smckusick 	if (fvp == tdvp || fvp == tvp)
76738418Smckusick 		error = EINVAL;
76838418Smckusick out:
76942467Smckusick 	if (!error) {
77039343Smckusick 		VREF(ndp->ni_cdir);
77138451Smckusick 		VREF(tond.ni_cdir);
77238425Smckusick 		error = VOP_RENAME(ndp, &tond);
77339343Smckusick 		vrele(ndp->ni_cdir);
77438451Smckusick 		vrele(tond.ni_cdir);
77542467Smckusick 	} else {
77642467Smckusick 		VOP_ABORTOP(&tond);
77742467Smckusick 		vput(tdvp);
77842467Smckusick 		if (tvp)
77942467Smckusick 			vput(tvp);
78042467Smckusick 		VOP_ABORTOP(ndp);
78142467Smckusick 		vrele(ndp->ni_dvp);
78242467Smckusick 		vrele(fvp);
78338418Smckusick 	}
78438418Smckusick out1:
78539343Smckusick 	crfree(cred);
78638418Smckusick 	nfsm_reply(0);
78738418Smckusick 	return (error);
78838418Smckusick nfsmout:
78938425Smckusick 	VOP_ABORTOP(ndp);
79042467Smckusick 	vrele(ndp->ni_dvp);
79142467Smckusick 	vrele(fvp);
79238418Smckusick 	return (error);
79338418Smckusick }
79438418Smckusick 
79538418Smckusick /*
79638418Smckusick  * nfs link service
79738418Smckusick  */
79839753Smckusick nfsrv_link(mrep, md, dpos, cred, xid, mrq, repstat)
79938418Smckusick 	struct mbuf *mrep, *md, **mrq;
80038418Smckusick 	caddr_t dpos;
80138418Smckusick 	struct ucred *cred;
80239753Smckusick 	u_long xid;
80339753Smckusick 	int *repstat;
80438418Smckusick {
80539343Smckusick 	struct nameidata nami;
80639343Smckusick 	register struct nameidata *ndp = &nami;
80739494Smckusick 	register u_long *p;
80839494Smckusick 	register long t1;
80939494Smckusick 	caddr_t bpos;
81039494Smckusick 	int error = 0;
81139494Smckusick 	char *cp2;
81239753Smckusick 	struct mbuf *mb, *mreq;
81338418Smckusick 	struct vnode *vp, *xp;
81438418Smckusick 	nfsv2fh_t nfh, dnfh;
81538418Smckusick 	fhandle_t *fhp, *dfhp;
81638418Smckusick 	long len;
81738418Smckusick 
81839343Smckusick 	ndinit(ndp);
81938418Smckusick 	fhp = &nfh.fh_generic;
82038418Smckusick 	dfhp = &dnfh.fh_generic;
82138418Smckusick 	nfsm_srvmtofh(fhp);
82238418Smckusick 	nfsm_srvmtofh(dfhp);
82338418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
82438418Smckusick 	if (error = nfsrv_fhtovp(fhp, FALSE, &vp, cred))
82538418Smckusick 		nfsm_reply(0);
82638418Smckusick 	if (vp->v_type == VDIR && (error = suser(cred, NULL)))
82738418Smckusick 		goto out1;
82838418Smckusick 	ndp->ni_cred = cred;
82938418Smckusick 	ndp->ni_nameiop = CREATE | LOCKPARENT;
83038418Smckusick 	if (error = nfs_namei(ndp, dfhp, len, &md, &dpos))
83138418Smckusick 		goto out1;
83238418Smckusick 	xp = ndp->ni_vp;
83338418Smckusick 	if (xp != NULL) {
83438418Smckusick 		error = EEXIST;
83538418Smckusick 		goto out;
83638418Smckusick 	}
83738418Smckusick 	xp = ndp->ni_dvp;
83838418Smckusick 	if (vp->v_mount != xp->v_mount)
83938418Smckusick 		error = EXDEV;
84038418Smckusick out:
84142467Smckusick 	if (!error) {
84242467Smckusick 		error = VOP_LINK(vp, ndp);
84342467Smckusick 	} else {
84438418Smckusick 		VOP_ABORTOP(ndp);
84542467Smckusick 		vput(ndp->ni_dvp);
84642467Smckusick 		if (ndp->ni_vp)
84742467Smckusick 			vrele(ndp->ni_vp);
84842467Smckusick 	}
84938418Smckusick out1:
85038418Smckusick 	vrele(vp);
85138418Smckusick 	nfsm_reply(0);
85238418Smckusick 	nfsm_srvdone;
85338418Smckusick }
85438418Smckusick 
85538418Smckusick /*
85638418Smckusick  * nfs symbolic link service
85738418Smckusick  */
85839753Smckusick nfsrv_symlink(mrep, md, dpos, cred, xid, mrq, repstat)
85938418Smckusick 	struct mbuf *mrep, *md, **mrq;
86038418Smckusick 	caddr_t dpos;
86138418Smckusick 	struct ucred *cred;
86239753Smckusick 	u_long xid;
86339753Smckusick 	int *repstat;
86438418Smckusick {
86538418Smckusick 	struct vattr va;
86639343Smckusick 	struct nameidata nami;
86739343Smckusick 	register struct nameidata *ndp = &nami;
86838418Smckusick 	register struct vattr *vap = &va;
86939494Smckusick 	register u_long *p;
87039494Smckusick 	register long t1;
87139494Smckusick 	caddr_t bpos;
87241899Smckusick 	struct uio io;
87341899Smckusick 	struct iovec iv;
87439494Smckusick 	int error = 0;
87541899Smckusick 	char *pathcp, *cp2;
87639753Smckusick 	struct mbuf *mb, *mreq;
87738418Smckusick 	nfsv2fh_t nfh;
87838418Smckusick 	fhandle_t *fhp;
87942242Smckusick 	long len, len2;
88038418Smckusick 
88141899Smckusick 	pathcp = (char *)0;
88239343Smckusick 	ndinit(ndp);
88338418Smckusick 	fhp = &nfh.fh_generic;
88438418Smckusick 	nfsm_srvmtofh(fhp);
88538418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
88638418Smckusick 	ndp->ni_cred = cred;
88738418Smckusick 	ndp->ni_nameiop = CREATE | LOCKPARENT;
88838418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
88942467Smckusick 		goto out;
89041899Smckusick 	nfsm_strsiz(len2, NFS_MAXPATHLEN);
89141899Smckusick 	MALLOC(pathcp, caddr_t, len2 + 1, M_TEMP, M_WAITOK);
89241899Smckusick 	iv.iov_base = pathcp;
89341899Smckusick 	iv.iov_len = len2;
89441899Smckusick 	io.uio_resid = len2;
89541899Smckusick 	io.uio_offset = 0;
89641899Smckusick 	io.uio_iov = &iv;
89741899Smckusick 	io.uio_iovcnt = 1;
89841899Smckusick 	io.uio_segflg = UIO_SYSSPACE;
89941899Smckusick 	io.uio_rw = UIO_READ;
90041899Smckusick 	nfsm_mtouio(&io, len2);
90141899Smckusick 	*(pathcp + len2) = '\0';
90242467Smckusick 	if (ndp->ni_vp) {
90342467Smckusick 		VOP_ABORTOP(ndp);
90442467Smckusick 		vput(ndp->ni_dvp);
90542467Smckusick 		vrele(ndp->ni_vp);
90638418Smckusick 		error = EEXIST;
90738418Smckusick 		goto out;
90838418Smckusick 	}
90941361Smckusick 	VATTR_NULL(vap);
91038418Smckusick 	vap->va_mode = 0777;
91142467Smckusick 	error = VOP_SYMLINK(ndp, vap, pathcp);
91238418Smckusick out:
91341899Smckusick 	if (pathcp)
91441899Smckusick 		FREE(pathcp, M_TEMP);
91538418Smckusick 	nfsm_reply(0);
91638418Smckusick 	return (error);
91738418Smckusick nfsmout:
91838418Smckusick 	VOP_ABORTOP(ndp);
91942467Smckusick 	vput(ndp->ni_dvp);
92042467Smckusick 	if (ndp->ni_vp);
92142467Smckusick 		vrele(ndp->ni_vp);
92241899Smckusick 	if (pathcp)
92341899Smckusick 		FREE(pathcp, M_TEMP);
92438418Smckusick 	return (error);
92538418Smckusick }
92638418Smckusick 
92738418Smckusick /*
92838418Smckusick  * nfs mkdir service
92938418Smckusick  */
93039753Smckusick nfsrv_mkdir(mrep, md, dpos, cred, xid, mrq, repstat)
93138418Smckusick 	struct mbuf *mrep, *md, **mrq;
93238418Smckusick 	caddr_t dpos;
93338418Smckusick 	struct ucred *cred;
93439753Smckusick 	u_long xid;
93539753Smckusick 	int *repstat;
93638418Smckusick {
93738418Smckusick 	struct vattr va;
93838418Smckusick 	register struct vattr *vap = &va;
93938884Smacklem 	register struct nfsv2_fattr *fp;
94039343Smckusick 	struct nameidata nami;
94139343Smckusick 	register struct nameidata *ndp = &nami;
94239494Smckusick 	register caddr_t cp;
94339494Smckusick 	register u_long *p;
94439494Smckusick 	register long t1;
94539494Smckusick 	caddr_t bpos;
94639494Smckusick 	int error = 0;
94739494Smckusick 	char *cp2;
94839753Smckusick 	struct mbuf *mb, *mb2, *mreq;
94938418Smckusick 	struct vnode *vp;
95038418Smckusick 	nfsv2fh_t nfh;
95138418Smckusick 	fhandle_t *fhp;
95238418Smckusick 	long len;
95338418Smckusick 
95439343Smckusick 	ndinit(ndp);
95538418Smckusick 	fhp = &nfh.fh_generic;
95638418Smckusick 	nfsm_srvmtofh(fhp);
95738418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
95838418Smckusick 	ndp->ni_cred = cred;
95938418Smckusick 	ndp->ni_nameiop = CREATE | LOCKPARENT;
96038418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
96138418Smckusick 		nfsm_reply(0);
96238418Smckusick 	nfsm_disect(p, u_long *, NFSX_UNSIGNED);
96341361Smckusick 	VATTR_NULL(vap);
96438418Smckusick 	vap->va_type = VDIR;
96538418Smckusick 	vap->va_mode = nfstov_mode(*p++);
96638418Smckusick 	vp = ndp->ni_vp;
96738418Smckusick 	if (vp != NULL) {
96838418Smckusick 		VOP_ABORTOP(ndp);
96942467Smckusick 		vput(ndp->ni_dvp);
97042467Smckusick 		vrele(vp);
97138418Smckusick 		error = EEXIST;
97238418Smckusick 		nfsm_reply(0);
97338418Smckusick 	}
97438418Smckusick 	if (error = VOP_MKDIR(ndp, vap))
97538418Smckusick 		nfsm_reply(0);
97638418Smckusick 	vp = ndp->ni_vp;
97738418Smckusick 	bzero((caddr_t)fhp, sizeof(nfh));
97841398Smckusick 	fhp->fh_fsid = vp->v_mount->mnt_stat.f_fsid;
97938418Smckusick 	if (error = VFS_VPTOFH(vp, &fhp->fh_fid)) {
98038418Smckusick 		vput(vp);
98138418Smckusick 		nfsm_reply(0);
98238418Smckusick 	}
98338418Smckusick 	error = VOP_GETATTR(vp, vap, cred);
98438418Smckusick 	vput(vp);
98538418Smckusick 	nfsm_reply(NFSX_FH+NFSX_FATTR);
98638418Smckusick 	nfsm_srvfhtom(fhp);
98738884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
98839753Smckusick 	nfsm_srvfillattr;
98938418Smckusick 	return (error);
99038418Smckusick nfsmout:
99138418Smckusick 	VOP_ABORTOP(ndp);
99242467Smckusick 	vput(ndp->ni_dvp);
99342467Smckusick 	if (ndp->ni_vp)
99442467Smckusick 		vrele(ndp->ni_vp);
99538418Smckusick 	return (error);
99638418Smckusick }
99738418Smckusick 
99838418Smckusick /*
99938418Smckusick  * nfs rmdir service
100038418Smckusick  */
100139753Smckusick nfsrv_rmdir(mrep, md, dpos, cred, xid, mrq, repstat)
100238418Smckusick 	struct mbuf *mrep, *md, **mrq;
100338418Smckusick 	caddr_t dpos;
100438418Smckusick 	struct ucred *cred;
100539753Smckusick 	u_long xid;
100639753Smckusick 	int *repstat;
100738418Smckusick {
100839343Smckusick 	struct nameidata nami;
100939343Smckusick 	register struct nameidata *ndp = &nami;
101039494Smckusick 	register u_long *p;
101139494Smckusick 	register long t1;
101239494Smckusick 	caddr_t bpos;
101339494Smckusick 	int error = 0;
101439494Smckusick 	char *cp2;
101539753Smckusick 	struct mbuf *mb, *mreq;
101638418Smckusick 	struct vnode *vp;
101738418Smckusick 	nfsv2fh_t nfh;
101838418Smckusick 	fhandle_t *fhp;
101938418Smckusick 	long len;
102038418Smckusick 
102139343Smckusick 	ndinit(ndp);
102238418Smckusick 	fhp = &nfh.fh_generic;
102338418Smckusick 	nfsm_srvmtofh(fhp);
102438418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
102538418Smckusick 	ndp->ni_cred = cred;
102638418Smckusick 	ndp->ni_nameiop = DELETE | LOCKPARENT | LOCKLEAF;
102738418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
102838418Smckusick 		nfsm_reply(0);
102938418Smckusick 	vp = ndp->ni_vp;
103038418Smckusick 	if (vp->v_type != VDIR) {
103138418Smckusick 		error = ENOTDIR;
103238418Smckusick 		goto out;
103338418Smckusick 	}
103438418Smckusick 	/*
103538418Smckusick 	 * No rmdir "." please.
103638418Smckusick 	 */
103738418Smckusick 	if (ndp->ni_dvp == vp) {
103838418Smckusick 		error = EINVAL;
103938418Smckusick 		goto out;
104038418Smckusick 	}
104138418Smckusick 	/*
104238418Smckusick 	 * Don't unlink a mounted file.
104338418Smckusick 	 */
104438418Smckusick 	if (vp->v_flag & VROOT)
104538418Smckusick 		error = EBUSY;
104638418Smckusick out:
104742467Smckusick 	if (!error) {
104842467Smckusick 		error = VOP_RMDIR(ndp);
104942467Smckusick 	} else {
105038418Smckusick 		VOP_ABORTOP(ndp);
105142467Smckusick 		vput(ndp->ni_dvp);
105242467Smckusick 		vput(vp);
105342467Smckusick 	}
105438418Smckusick 	nfsm_reply(0);
105538418Smckusick 	nfsm_srvdone;
105638418Smckusick }
105738418Smckusick 
105838418Smckusick /*
105938418Smckusick  * nfs readdir service
106038418Smckusick  * - mallocs what it thinks is enough to read
106141899Smckusick  *	count rounded up to a multiple of DIRBLKSIZ <= NFS_MAXREADDIR
106238418Smckusick  * - calls VOP_READDIR()
106340115Smckusick  * - loops around building the reply
106438425Smckusick  *	if the output generated exceeds count break out of loop
106538425Smckusick  *	The nfsm_clget macro is used here so that the reply will be packed
106638425Smckusick  *	tightly in mbuf clusters.
106738418Smckusick  * - it only knows that it has encountered eof when the VOP_READDIR()
106838425Smckusick  *	reads nothing
106938418Smckusick  * - as such one readdir rpc will return eof false although you are there
107038425Smckusick  *	and then the next will return eof
107138418Smckusick  * - it trims out records with d_ino == 0
107238425Smckusick  *	this doesn't matter for Unix clients, but they might confuse clients
107338425Smckusick  *	for other os'.
107438418Smckusick  * NB: It is tempting to set eof to true if the VOP_READDIR() reads less
107538425Smckusick  *	than requested, but this may not apply to all filesystems. For
107638425Smckusick  *	example, client NFS does not { although it is never remote mounted
107738425Smckusick  *	anyhow }
107838418Smckusick  * PS: The NFS protocol spec. does not clarify what the "count" byte
107938425Smckusick  *	argument is a count of.. just name strings and file id's or the
108038425Smckusick  *	entire reply rpc or ...
108138425Smckusick  *	I tried just file name and id sizes and it confused the Sun client,
108238425Smckusick  *	so I am using the full rpc size now. The "paranoia.." comment refers
108338425Smckusick  *	to including the status longwords that are not a part of the dir.
108438425Smckusick  *	"entry" structures, but are in the rpc.
108538418Smckusick  */
108639753Smckusick nfsrv_readdir(mrep, md, dpos, cred, xid, mrq, repstat)
108738418Smckusick 	struct mbuf **mrq;
108838418Smckusick 	struct mbuf *mrep, *md;
108938418Smckusick 	caddr_t dpos;
109038418Smckusick 	struct ucred *cred;
109138418Smckusick 	u_long xid;
109239753Smckusick 	int *repstat;
109338418Smckusick {
109438418Smckusick 	register char *bp, *be;
109538418Smckusick 	register struct mbuf *mp;
109638418Smckusick 	register struct direct *dp;
109739494Smckusick 	register caddr_t cp;
109839494Smckusick 	register u_long *p;
109939494Smckusick 	register long t1;
110039494Smckusick 	caddr_t bpos;
110139494Smckusick 	int error = 0;
110239494Smckusick 	char *cp2;
110339753Smckusick 	struct mbuf *mb, *mb2, *mreq;
110438418Smckusick 	char *cpos, *cend;
110538418Smckusick 	int len, nlen, rem, xfer, tsiz, i;
110638418Smckusick 	struct vnode *vp;
110738418Smckusick 	struct mbuf *mp2, *mp3;
110838418Smckusick 	nfsv2fh_t nfh;
110938418Smckusick 	fhandle_t *fhp;
111038418Smckusick 	struct uio io;
111138418Smckusick 	struct iovec iv;
111240296Smckusick 	int siz, cnt, fullsiz, eofflag;
111338418Smckusick 	u_long on;
111438418Smckusick 	char *rbuf;
111538418Smckusick 	off_t off, toff;
111638418Smckusick 
111738418Smckusick 	fhp = &nfh.fh_generic;
111838418Smckusick 	nfsm_srvmtofh(fhp);
111938418Smckusick 	nfsm_disect(p, u_long *, 2*NFSX_UNSIGNED);
112038418Smckusick 	toff = fxdr_unsigned(off_t, *p++);
112138418Smckusick 	off = (toff & ~(DIRBLKSIZ-1));
112238418Smckusick 	on = (toff & (DIRBLKSIZ-1));
112338418Smckusick 	cnt = fxdr_unsigned(int, *p);
112441899Smckusick 	siz = ((cnt+DIRBLKSIZ-1) & ~(DIRBLKSIZ-1));
112541899Smckusick 	if (cnt > NFS_MAXREADDIR)
112641899Smckusick 		siz = NFS_MAXREADDIR;
112738418Smckusick 	fullsiz = siz;
112838418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
112938418Smckusick 		nfsm_reply(0);
113038450Smckusick 	if (error = nfsrv_access(vp, VEXEC, cred)) {
113138418Smckusick 		vput(vp);
113238418Smckusick 		nfsm_reply(0);
113338418Smckusick 	}
113438418Smckusick 	VOP_UNLOCK(vp);
113538418Smckusick 	MALLOC(rbuf, caddr_t, siz, M_TEMP, M_WAITOK);
113638418Smckusick again:
113738418Smckusick 	iv.iov_base = rbuf;
113838418Smckusick 	iv.iov_len = fullsiz;
113938418Smckusick 	io.uio_iov = &iv;
114038418Smckusick 	io.uio_iovcnt = 1;
114138418Smckusick 	io.uio_offset = off;
114238418Smckusick 	io.uio_resid = fullsiz;
114338418Smckusick 	io.uio_segflg = UIO_SYSSPACE;
114438418Smckusick 	io.uio_rw = UIO_READ;
114540296Smckusick 	error = VOP_READDIR(vp, &io, cred, &eofflag);
114639586Smckusick 	off = io.uio_offset;
114738418Smckusick 	if (error) {
114838418Smckusick 		vrele(vp);
114938418Smckusick 		free((caddr_t)rbuf, M_TEMP);
115038418Smckusick 		nfsm_reply(0);
115138418Smckusick 	}
115238418Smckusick 	if (io.uio_resid) {
115338418Smckusick 		siz -= io.uio_resid;
115438418Smckusick 
115538418Smckusick 		/*
115638418Smckusick 		 * If nothing read, return eof
115738418Smckusick 		 * rpc reply
115838418Smckusick 		 */
115938418Smckusick 		if (siz == 0) {
116038418Smckusick 			vrele(vp);
116138418Smckusick 			nfsm_reply(2*NFSX_UNSIGNED);
116238418Smckusick 			nfsm_build(p, u_long *, 2*NFSX_UNSIGNED);
116338418Smckusick 			*p++ = nfs_false;
116438418Smckusick 			*p = nfs_true;
116538418Smckusick 			FREE((caddr_t)rbuf, M_TEMP);
116638418Smckusick 			return (0);
116738418Smckusick 		}
116838418Smckusick 	}
116940115Smckusick 
117038418Smckusick 	/*
117138418Smckusick 	 * Check for degenerate cases of nothing useful read.
117240115Smckusick 	 * If so go try again
117338418Smckusick 	 */
117440115Smckusick 	cpos = rbuf + on;
117540115Smckusick 	cend = rbuf + siz;
117640115Smckusick 	dp = (struct direct *)cpos;
117740115Smckusick 	while (cpos < cend && dp->d_ino == 0) {
117840115Smckusick 		cpos += dp->d_reclen;
117940115Smckusick 		dp = (struct direct *)cpos;
118040115Smckusick 	}
118140115Smckusick 	if (cpos >= cend) {
118238418Smckusick 		toff = off;
118338418Smckusick 		siz = fullsiz;
118438418Smckusick 		on = 0;
118538418Smckusick 		goto again;
118638418Smckusick 	}
118740115Smckusick 
118840115Smckusick 	cpos = rbuf + on;
118940115Smckusick 	cend = rbuf + siz;
119040115Smckusick 	dp = (struct direct *)cpos;
119138418Smckusick 	vrele(vp);
119238425Smckusick 	len = 3*NFSX_UNSIGNED;	/* paranoia, probably can be 0 */
119338418Smckusick 	bp = be = (caddr_t)0;
119438418Smckusick 	mp3 = (struct mbuf *)0;
119538418Smckusick 	nfsm_reply(siz);
119638418Smckusick 
119738418Smckusick 	/* Loop through the records and build reply */
119838418Smckusick 	while (cpos < cend) {
119938418Smckusick 		if (dp->d_ino != 0) {
120038418Smckusick 			nlen = dp->d_namlen;
120138418Smckusick 			rem = nfsm_rndup(nlen)-nlen;
120238425Smckusick 
120338418Smckusick 			/*
120438418Smckusick 			 * As noted above, the NFS spec. is not clear about what
120538418Smckusick 			 * should be included in "count" as totalled up here in
120638418Smckusick 			 * "len".
120738418Smckusick 			 */
120838418Smckusick 			len += (4*NFSX_UNSIGNED+nlen+rem);
120941899Smckusick 			if (len > cnt) {
121041899Smckusick 				eofflag = 0;
121138418Smckusick 				break;
121241899Smckusick 			}
121338425Smckusick 
121438418Smckusick 			/* Build the directory record xdr from the direct entry */
121538418Smckusick 			nfsm_clget;
121638418Smckusick 			*p = nfs_true;
121738418Smckusick 			bp += NFSX_UNSIGNED;
121838418Smckusick 			nfsm_clget;
121938418Smckusick 			*p = txdr_unsigned(dp->d_ino);
122038418Smckusick 			bp += NFSX_UNSIGNED;
122138418Smckusick 			nfsm_clget;
122238418Smckusick 			*p = txdr_unsigned(nlen);
122338418Smckusick 			bp += NFSX_UNSIGNED;
122438425Smckusick 
122538418Smckusick 			/* And loop arround copying the name */
122638418Smckusick 			xfer = nlen;
122738418Smckusick 			cp = dp->d_name;
122838418Smckusick 			while (xfer > 0) {
122938418Smckusick 				nfsm_clget;
123038418Smckusick 				if ((bp+xfer) > be)
123138418Smckusick 					tsiz = be-bp;
123238418Smckusick 				else
123338418Smckusick 					tsiz = xfer;
123438418Smckusick 				bcopy(cp, bp, tsiz);
123538418Smckusick 				bp += tsiz;
123638418Smckusick 				xfer -= tsiz;
123738418Smckusick 				if (xfer > 0)
123838418Smckusick 					cp += tsiz;
123938418Smckusick 			}
124038418Smckusick 			/* And null pad to a long boundary */
124138418Smckusick 			for (i = 0; i < rem; i++)
124238418Smckusick 				*bp++ = '\0';
124338418Smckusick 			nfsm_clget;
124438425Smckusick 
124538418Smckusick 			/* Finish off the record */
124638418Smckusick 			toff += dp->d_reclen;
124738418Smckusick 			*p = txdr_unsigned(toff);
124838418Smckusick 			bp += NFSX_UNSIGNED;
124938418Smckusick 		} else
125038418Smckusick 			toff += dp->d_reclen;
125138418Smckusick 		cpos += dp->d_reclen;
125238418Smckusick 		dp = (struct direct *)cpos;
125338418Smckusick 	}
125438418Smckusick 	nfsm_clget;
125538418Smckusick 	*p = nfs_false;
125638418Smckusick 	bp += NFSX_UNSIGNED;
125738418Smckusick 	nfsm_clget;
125840296Smckusick 	if (eofflag)
125940296Smckusick 		*p = nfs_true;
126040296Smckusick 	else
126140296Smckusick 		*p = nfs_false;
126238418Smckusick 	bp += NFSX_UNSIGNED;
126338418Smckusick 	if (bp < be)
126438418Smckusick 		mp->m_len = bp-mtod(mp, caddr_t);
126538418Smckusick 	mb->m_next = mp3;
126638418Smckusick 	FREE(rbuf, M_TEMP);
126738418Smckusick 	nfsm_srvdone;
126838418Smckusick }
126938418Smckusick 
127038418Smckusick /*
127138418Smckusick  * nfs statfs service
127238418Smckusick  */
127339753Smckusick nfsrv_statfs(mrep, md, dpos, cred, xid, mrq, repstat)
127438418Smckusick 	struct mbuf **mrq;
127538418Smckusick 	struct mbuf *mrep, *md;
127638418Smckusick 	caddr_t dpos;
127738418Smckusick 	struct ucred *cred;
127838418Smckusick 	u_long xid;
127939753Smckusick 	int *repstat;
128038418Smckusick {
128138418Smckusick 	register struct statfs *sf;
128238884Smacklem 	register struct nfsv2_statfs *sfp;
128339494Smckusick 	register u_long *p;
128439494Smckusick 	register long t1;
128539494Smckusick 	caddr_t bpos;
128639494Smckusick 	int error = 0;
128739494Smckusick 	char *cp2;
128839753Smckusick 	struct mbuf *mb, *mb2, *mreq;
128938418Smckusick 	struct vnode *vp;
129038418Smckusick 	nfsv2fh_t nfh;
129138418Smckusick 	fhandle_t *fhp;
129238418Smckusick 	struct statfs statfs;
129338418Smckusick 
129438418Smckusick 	fhp = &nfh.fh_generic;
129538418Smckusick 	nfsm_srvmtofh(fhp);
129638418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
129738418Smckusick 		nfsm_reply(0);
129838418Smckusick 	sf = &statfs;
129938418Smckusick 	error = VFS_STATFS(vp->v_mount, sf);
130038418Smckusick 	vput(vp);
130138418Smckusick 	nfsm_reply(NFSX_STATFS);
130238884Smacklem 	nfsm_build(sfp, struct nfsv2_statfs *, NFSX_STATFS);
130338884Smacklem 	sfp->sf_tsize = txdr_unsigned(NFS_MAXDATA);
130438884Smacklem 	sfp->sf_bsize = txdr_unsigned(sf->f_fsize);
130538884Smacklem 	sfp->sf_blocks = txdr_unsigned(sf->f_blocks);
130638884Smacklem 	sfp->sf_bfree = txdr_unsigned(sf->f_bfree);
130738884Smacklem 	sfp->sf_bavail = txdr_unsigned(sf->f_bavail);
130838418Smckusick 	nfsm_srvdone;
130938418Smckusick }
131038418Smckusick 
131138418Smckusick /*
131238418Smckusick  * Null operation, used by clients to ping server
131338418Smckusick  */
131439494Smckusick /* ARGSUSED */
131539753Smckusick nfsrv_null(mrep, md, dpos, cred, xid, mrq, repstat)
131638418Smckusick 	struct mbuf **mrq;
131738418Smckusick 	struct mbuf *mrep, *md;
131838418Smckusick 	caddr_t dpos;
131938418Smckusick 	struct ucred *cred;
132038418Smckusick 	u_long xid;
132139753Smckusick 	int *repstat;
132238418Smckusick {
132339494Smckusick 	caddr_t bpos;
132439494Smckusick 	int error = 0;
132539753Smckusick 	struct mbuf *mb, *mreq;
132638418Smckusick 
132738418Smckusick 	error = VNOVAL;
132838418Smckusick 	nfsm_reply(0);
132939494Smckusick 	return (error);
133038418Smckusick }
133138418Smckusick 
133238418Smckusick /*
133338418Smckusick  * No operation, used for obsolete procedures
133438418Smckusick  */
133539494Smckusick /* ARGSUSED */
133639753Smckusick nfsrv_noop(mrep, md, dpos, cred, xid, mrq, repstat)
133738418Smckusick 	struct mbuf **mrq;
133838418Smckusick 	struct mbuf *mrep, *md;
133938418Smckusick 	caddr_t dpos;
134038418Smckusick 	struct ucred *cred;
134138418Smckusick 	u_long xid;
134239753Smckusick 	int *repstat;
134338418Smckusick {
134439494Smckusick 	caddr_t bpos;
134539494Smckusick 	int error = 0;
134639753Smckusick 	struct mbuf *mb, *mreq;
134738418Smckusick 
134838418Smckusick 	error = EPROCUNAVAIL;
134938418Smckusick 	nfsm_reply(0);
135039494Smckusick 	return (error);
135138418Smckusick }
135238425Smckusick 
135338450Smckusick /*
135438450Smckusick  * Perform access checking for vnodes obtained from file handles that would
135538450Smckusick  * refer to files already opened by a Unix client. You cannot just use
135638450Smckusick  * vn_writechk() and VOP_ACCESS() for two reasons.
135741398Smckusick  * 1 - You must check for MNT_EXRDONLY as well as MNT_RDONLY for the write case
135838450Smckusick  * 2 - The owner is to be given access irrespective of mode bits so that
135938450Smckusick  *     processes that chmod after opening a file don't break. I don't like
136038450Smckusick  *     this because it opens a security hole, but since the nfs server opens
136138450Smckusick  *     a security hole the size of a barn door anyhow, what the heck.
136238450Smckusick  */
136338450Smckusick nfsrv_access(vp, flags, cred)
136438450Smckusick 	register struct vnode *vp;
136538450Smckusick 	int flags;
136638450Smckusick 	register struct ucred *cred;
136738450Smckusick {
136838450Smckusick 	struct vattr vattr;
136938450Smckusick 	int error;
137038450Smckusick 	if (flags & VWRITE) {
137141398Smckusick 		/* Just vn_writechk() changed to check MNT_EXRDONLY */
137238450Smckusick 		/*
137338450Smckusick 		 * Disallow write attempts on read-only file systems;
137438450Smckusick 		 * unless the file is a socket or a block or character
137538450Smckusick 		 * device resident on the file system.
137638450Smckusick 		 */
137741398Smckusick 		if ((vp->v_mount->mnt_flag & (MNT_RDONLY | MNT_EXRDONLY)) &&
137838450Smckusick 			vp->v_type != VCHR &&
137938450Smckusick 			vp->v_type != VBLK &&
138038450Smckusick 			vp->v_type != VSOCK)
138138450Smckusick 				return (EROFS);
138238450Smckusick 		/*
138338450Smckusick 		 * If there's shared text associated with
138438450Smckusick 		 * the inode, try to free it up once.  If
138538450Smckusick 		 * we fail, we can't allow writing.
138638450Smckusick 		 */
138738450Smckusick 		if (vp->v_flag & VTEXT)
138838450Smckusick 			xrele(vp);
138938450Smckusick 		if (vp->v_flag & VTEXT)
139038450Smckusick 			return (ETXTBSY);
139138450Smckusick 		if (error = VOP_GETATTR(vp, &vattr, cred))
139238450Smckusick 			return (error);
139338450Smckusick 		if (cred->cr_uid == vattr.va_uid)
139438450Smckusick 			return (0);
139538450Smckusick 	} else {
139638450Smckusick 		if (error = VOP_GETATTR(vp, &vattr, cred))
139738450Smckusick 			return (error);
139838450Smckusick 		if (cred->cr_uid == vattr.va_uid)
139938450Smckusick 			return (0);
140038450Smckusick 	}
140138450Smckusick 	return (VOP_ACCESS(vp, flags, cred));
140238450Smckusick }
1403