xref: /csrg-svn/sys/nfs/nfs_serv.c (revision 48050)
138418Smckusick /*
238418Smckusick  * Copyright (c) 1989 The Regents of the University of California.
338418Smckusick  * All rights reserved.
438418Smckusick  *
538418Smckusick  * This code is derived from software contributed to Berkeley by
638418Smckusick  * Rick Macklem at The University of Guelph.
738418Smckusick  *
844510Sbostic  * %sccs.include.redist.c%
938418Smckusick  *
10*48050Smckusick  *	@(#)nfs_serv.c	7.37 (Berkeley) 04/16/91
1138418Smckusick  */
1238418Smckusick 
1338418Smckusick /*
1438418Smckusick  * nfs version 2 server calls to vnode ops
1538418Smckusick  * - these routines generally have 3 phases
1638418Smckusick  *   1 - break down and validate rpc request in mbuf list
1738418Smckusick  *   2 - do the vnode ops for the request
1838425Smckusick  *       (surprisingly ?? many are very similar to syscalls in vfs_syscalls.c)
1938418Smckusick  *   3 - build the rpc reply in an mbuf list
2038418Smckusick  *   nb:
2138418Smckusick  *	- do not mix the phases, since the nfsm_?? macros can return failures
2241899Smckusick  *	  on a bad rpc or similar and do not do any vrele() or vput()'s
2338418Smckusick  *
2438425Smckusick  *      - the nfsm_reply() macro generates an nfs rpc reply with the nfs
2538418Smckusick  *	error number iff error != 0 whereas
2641899Smckusick  *	returning an error from the server function implies a fatal error
2741899Smckusick  *	such as a badly constructed rpc request that should be dropped without
2841899Smckusick  *	a reply.
2938418Smckusick  */
3038418Smckusick 
3138418Smckusick #include "param.h"
3240135Smckusick #include "file.h"
33*48050Smckusick #include "namei.h"
3440135Smckusick #include "vnode.h"
3538418Smckusick #include "mount.h"
3638418Smckusick #include "mbuf.h"
3747573Skarels 
3842242Smckusick #include "../ufs/quota.h"
3942242Smckusick #include "../ufs/inode.h"
4047573Skarels 
4138418Smckusick #include "nfsv2.h"
4238418Smckusick #include "nfs.h"
4338418Smckusick #include "xdr_subs.h"
4438418Smckusick #include "nfsm_subs.h"
4538418Smckusick 
4638418Smckusick /* Defs */
4738425Smckusick #define	TRUE	1
4838425Smckusick #define	FALSE	0
4938418Smckusick 
5038418Smckusick /* Global vars */
5138418Smckusick extern u_long nfs_procids[NFS_NPROCS];
5238418Smckusick extern u_long nfs_xdrneg1;
5338418Smckusick extern u_long nfs_false, nfs_true;
5442242Smckusick nfstype nfs_type[9]={ NFNON, NFREG, NFDIR, NFBLK, NFCHR, NFLNK, NFNON,
5542242Smckusick 		      NFCHR, NFNON };
5638418Smckusick 
5738418Smckusick /*
5838418Smckusick  * nfs getattr service
5938418Smckusick  */
60*48050Smckusick nfsrv_getattr(mrep, md, dpos, cred, xid, mrq, repstat, p)
6138418Smckusick 	struct mbuf **mrq;
6238418Smckusick 	struct mbuf *mrep, *md;
6338418Smckusick 	caddr_t dpos;
6438418Smckusick 	struct ucred *cred;
6538418Smckusick 	u_long xid;
6639753Smckusick 	int *repstat;
67*48050Smckusick 	struct proc *p;
6838418Smckusick {
6938884Smacklem 	register struct nfsv2_fattr *fp;
7038418Smckusick 	struct vattr va;
7138418Smckusick 	register struct vattr *vap = &va;
7238418Smckusick 	struct vnode *vp;
7338418Smckusick 	nfsv2fh_t nfh;
7438418Smckusick 	fhandle_t *fhp;
75*48050Smckusick 	register u_long *tl;
7639494Smckusick 	register long t1;
7739494Smckusick 	caddr_t bpos;
7839494Smckusick 	int error = 0;
7939494Smckusick 	char *cp2;
8039753Smckusick 	struct mbuf *mb, *mb2, *mreq;
8138418Smckusick 
8238418Smckusick 	fhp = &nfh.fh_generic;
8338418Smckusick 	nfsm_srvmtofh(fhp);
8438418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
8538418Smckusick 		nfsm_reply(0);
86*48050Smckusick 	error = VOP_GETATTR(vp, vap, cred, p);
8738418Smckusick 	vput(vp);
8838418Smckusick 	nfsm_reply(NFSX_FATTR);
8938884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
9039753Smckusick 	nfsm_srvfillattr;
9138418Smckusick 	nfsm_srvdone;
9238418Smckusick }
9338418Smckusick 
9438418Smckusick /*
9538418Smckusick  * nfs setattr service
9638418Smckusick  */
97*48050Smckusick nfsrv_setattr(mrep, md, dpos, cred, xid, mrq, repstat, p)
9838418Smckusick 	struct mbuf **mrq;
9938418Smckusick 	struct mbuf *mrep, *md;
10038418Smckusick 	caddr_t dpos;
10138418Smckusick 	struct ucred *cred;
10238418Smckusick 	u_long xid;
10339753Smckusick 	int *repstat;
104*48050Smckusick 	struct proc *p;
10538418Smckusick {
10638418Smckusick 	struct vattr va;
10738418Smckusick 	register struct vattr *vap = &va;
10838884Smacklem 	register struct nfsv2_sattr *sp;
10938884Smacklem 	register struct nfsv2_fattr *fp;
11038418Smckusick 	struct vnode *vp;
11138418Smckusick 	nfsv2fh_t nfh;
11238418Smckusick 	fhandle_t *fhp;
113*48050Smckusick 	register u_long *tl;
11439494Smckusick 	register long t1;
11539494Smckusick 	caddr_t bpos;
11639494Smckusick 	int error = 0;
11739494Smckusick 	char *cp2;
11839753Smckusick 	struct mbuf *mb, *mb2, *mreq;
11938418Smckusick 
12038418Smckusick 	fhp = &nfh.fh_generic;
12138418Smckusick 	nfsm_srvmtofh(fhp);
12238884Smacklem 	nfsm_disect(sp, struct nfsv2_sattr *, NFSX_SATTR);
12338418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
12438418Smckusick 		nfsm_reply(0);
125*48050Smckusick 	if (error = nfsrv_access(vp, VWRITE, cred, p))
12638418Smckusick 		goto out;
12741361Smckusick 	VATTR_NULL(vap);
12838418Smckusick 	/*
12938418Smckusick 	 * Nah nah nah nah na nah
13038418Smckusick 	 * There is a bug in the Sun client that puts 0xffff in the mode
13138418Smckusick 	 * field of sattr when it should put in 0xffffffff. The u_short
13238418Smckusick 	 * doesn't sign extend.
13338418Smckusick 	 * --> check the low order 2 bytes for 0xffff
13438418Smckusick 	 */
13538884Smacklem 	if ((fxdr_unsigned(int, sp->sa_mode) & 0xffff) != 0xffff)
13638884Smacklem 		vap->va_mode = nfstov_mode(sp->sa_mode);
13738884Smacklem 	if (sp->sa_uid != nfs_xdrneg1)
13838884Smacklem 		vap->va_uid = fxdr_unsigned(uid_t, sp->sa_uid);
13938884Smacklem 	if (sp->sa_gid != nfs_xdrneg1)
14038884Smacklem 		vap->va_gid = fxdr_unsigned(gid_t, sp->sa_gid);
14139753Smckusick 	if (sp->sa_size != nfs_xdrneg1)
14238884Smacklem 		vap->va_size = fxdr_unsigned(u_long, sp->sa_size);
14339753Smckusick 	/*
14439753Smckusick 	 * The usec field of sa_atime is overloaded with the va_flags field
14539753Smckusick 	 * for 4.4BSD clients. Hopefully other clients always set both the
14639753Smckusick 	 * sec and usec fields to -1 when not setting the atime.
14739753Smckusick 	 */
14839753Smckusick 	if (sp->sa_atime.tv_sec != nfs_xdrneg1) {
14939753Smckusick 		vap->va_atime.tv_sec = fxdr_unsigned(long, sp->sa_atime.tv_sec);
15039753Smckusick 		vap->va_atime.tv_usec = 0;
15138425Smckusick 	}
15239753Smckusick 	if (sp->sa_atime.tv_usec != nfs_xdrneg1)
15339753Smckusick 		vap->va_flags = fxdr_unsigned(u_long, sp->sa_atime.tv_usec);
15438884Smacklem 	if (sp->sa_mtime.tv_sec != nfs_xdrneg1)
15538884Smacklem 		fxdr_time(&sp->sa_mtime, &vap->va_mtime);
156*48050Smckusick 	if (error = VOP_SETATTR(vp, vap, cred, p)) {
15738418Smckusick 		vput(vp);
15838418Smckusick 		nfsm_reply(0);
15938418Smckusick 	}
160*48050Smckusick 	error = VOP_GETATTR(vp, vap, cred, p);
16138418Smckusick out:
16238418Smckusick 	vput(vp);
16338418Smckusick 	nfsm_reply(NFSX_FATTR);
16438884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
16539753Smckusick 	nfsm_srvfillattr;
16638418Smckusick 	nfsm_srvdone;
16738418Smckusick }
16838418Smckusick 
16938418Smckusick /*
17038418Smckusick  * nfs lookup rpc
17138418Smckusick  */
172*48050Smckusick nfsrv_lookup(mrep, md, dpos, cred, xid, mrq, repstat, p)
17338418Smckusick 	struct mbuf **mrq;
17438418Smckusick 	struct mbuf *mrep, *md;
17538418Smckusick 	caddr_t dpos;
17638418Smckusick 	struct ucred *cred;
17738418Smckusick 	u_long xid;
17839753Smckusick 	int *repstat;
179*48050Smckusick 	struct proc *p;
18038418Smckusick {
18138884Smacklem 	register struct nfsv2_fattr *fp;
18239343Smckusick 	struct nameidata nami;
18339343Smckusick 	register struct nameidata *ndp = &nami;
18438418Smckusick 	struct vnode *vp;
18538418Smckusick 	nfsv2fh_t nfh;
18638418Smckusick 	fhandle_t *fhp;
18739494Smckusick 	register caddr_t cp;
188*48050Smckusick 	register u_long *tl;
18939494Smckusick 	register long t1;
19039494Smckusick 	caddr_t bpos;
19139494Smckusick 	int error = 0;
19239494Smckusick 	char *cp2;
19339753Smckusick 	struct mbuf *mb, *mb2, *mreq;
19438418Smckusick 	long len;
19538418Smckusick 	struct vattr va, *vap = &va;
19638418Smckusick 
19739343Smckusick 	ndinit(ndp);
19838418Smckusick 	fhp = &nfh.fh_generic;
19938418Smckusick 	nfsm_srvmtofh(fhp);
20038418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
20138418Smckusick 	ndp->ni_cred = cred;
20238418Smckusick 	ndp->ni_nameiop = LOOKUP | LOCKLEAF;
20338418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
20438418Smckusick 		nfsm_reply(0);
20538418Smckusick 	vp = ndp->ni_vp;
20638418Smckusick 	bzero((caddr_t)fhp, sizeof(nfh));
20741398Smckusick 	fhp->fh_fsid = vp->v_mount->mnt_stat.f_fsid;
20838418Smckusick 	if (error = VFS_VPTOFH(vp, &fhp->fh_fid)) {
20938418Smckusick 		vput(vp);
21038418Smckusick 		nfsm_reply(0);
21138418Smckusick 	}
212*48050Smckusick 	error = VOP_GETATTR(vp, vap, cred, p);
21338418Smckusick 	vput(vp);
21438418Smckusick 	nfsm_reply(NFSX_FH+NFSX_FATTR);
21538418Smckusick 	nfsm_srvfhtom(fhp);
21638884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
21739753Smckusick 	nfsm_srvfillattr;
21838418Smckusick 	nfsm_srvdone;
21938418Smckusick }
22038418Smckusick 
22138418Smckusick /*
22238418Smckusick  * nfs readlink service
22338418Smckusick  */
224*48050Smckusick nfsrv_readlink(mrep, md, dpos, cred, xid, mrq, repstat, p)
22538418Smckusick 	struct mbuf **mrq;
22638418Smckusick 	struct mbuf *mrep, *md;
22738418Smckusick 	caddr_t dpos;
22838418Smckusick 	struct ucred *cred;
22939753Smckusick 	u_long xid;
23039753Smckusick 	int *repstat;
231*48050Smckusick 	struct proc *p;
23238418Smckusick {
23341899Smckusick 	struct iovec iv[(NFS_MAXPATHLEN+MLEN-1)/MLEN];
23438418Smckusick 	register struct iovec *ivp = iv;
23538418Smckusick 	register struct mbuf *mp;
236*48050Smckusick 	register u_long *tl;
23739494Smckusick 	register long t1;
23839494Smckusick 	caddr_t bpos;
23939494Smckusick 	int error = 0;
24039494Smckusick 	char *cp2;
24139753Smckusick 	struct mbuf *mb, *mb2, *mp2, *mp3, *mreq;
24238418Smckusick 	struct vnode *vp;
24338418Smckusick 	nfsv2fh_t nfh;
24438418Smckusick 	fhandle_t *fhp;
24538418Smckusick 	struct uio io, *uiop = &io;
24638418Smckusick 	int i, tlen, len;
24738418Smckusick 
24838418Smckusick 	fhp = &nfh.fh_generic;
24938418Smckusick 	nfsm_srvmtofh(fhp);
25038418Smckusick 	len = 0;
25138418Smckusick 	i = 0;
25238418Smckusick 	while (len < NFS_MAXPATHLEN) {
25338418Smckusick 		MGET(mp, M_WAIT, MT_DATA);
25441899Smckusick 		MCLGET(mp, M_WAIT);
25538418Smckusick 		mp->m_len = NFSMSIZ(mp);
25638418Smckusick 		if (len == 0)
25738418Smckusick 			mp3 = mp2 = mp;
25841899Smckusick 		else {
25938418Smckusick 			mp2->m_next = mp;
26041899Smckusick 			mp2 = mp;
26141899Smckusick 		}
26238418Smckusick 		if ((len+mp->m_len) > NFS_MAXPATHLEN) {
26338418Smckusick 			mp->m_len = NFS_MAXPATHLEN-len;
26438418Smckusick 			len = NFS_MAXPATHLEN;
26538418Smckusick 		} else
26638418Smckusick 			len += mp->m_len;
26738418Smckusick 		ivp->iov_base = mtod(mp, caddr_t);
26838418Smckusick 		ivp->iov_len = mp->m_len;
26938418Smckusick 		i++;
27038418Smckusick 		ivp++;
27138418Smckusick 	}
27238418Smckusick 	uiop->uio_iov = iv;
27338418Smckusick 	uiop->uio_iovcnt = i;
27438418Smckusick 	uiop->uio_offset = 0;
27538418Smckusick 	uiop->uio_resid = len;
27638418Smckusick 	uiop->uio_rw = UIO_READ;
27738418Smckusick 	uiop->uio_segflg = UIO_SYSSPACE;
278*48050Smckusick 	uiop->uio_procp = (struct proc *)0;
27938418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred)) {
28038418Smckusick 		m_freem(mp3);
28138418Smckusick 		nfsm_reply(0);
28238418Smckusick 	}
28338418Smckusick 	if (vp->v_type != VLNK) {
28438418Smckusick 		error = EINVAL;
28538418Smckusick 		goto out;
28638418Smckusick 	}
28738418Smckusick 	error = VOP_READLINK(vp, uiop, cred);
28838418Smckusick out:
28938418Smckusick 	vput(vp);
29038418Smckusick 	if (error)
29138418Smckusick 		m_freem(mp3);
29238418Smckusick 	nfsm_reply(NFSX_UNSIGNED);
29338418Smckusick 	if (uiop->uio_resid > 0) {
29438418Smckusick 		len -= uiop->uio_resid;
29538418Smckusick 		tlen = nfsm_rndup(len);
29638418Smckusick 		nfsm_adj(mp3, NFS_MAXPATHLEN-tlen, tlen-len);
29738418Smckusick 	}
298*48050Smckusick 	nfsm_build(tl, u_long *, NFSX_UNSIGNED);
299*48050Smckusick 	*tl = txdr_unsigned(len);
30038418Smckusick 	mb->m_next = mp3;
30138418Smckusick 	nfsm_srvdone;
30238418Smckusick }
30338418Smckusick 
30438418Smckusick /*
30538418Smckusick  * nfs read service
30638418Smckusick  */
307*48050Smckusick nfsrv_read(mrep, md, dpos, cred, xid, mrq, repstat, p)
30838418Smckusick 	struct mbuf **mrq;
30938418Smckusick 	struct mbuf *mrep, *md;
31038418Smckusick 	caddr_t dpos;
31138418Smckusick 	struct ucred *cred;
31238418Smckusick 	u_long xid;
31339753Smckusick 	int *repstat;
314*48050Smckusick 	struct proc *p;
31538418Smckusick {
31643350Smckusick 	register struct iovec *iv;
31743350Smckusick 	struct iovec *iv2;
31841899Smckusick 	register struct mbuf *m;
31938884Smacklem 	register struct nfsv2_fattr *fp;
320*48050Smckusick 	register u_long *tl;
32139494Smckusick 	register long t1;
32239494Smckusick 	caddr_t bpos;
32339494Smckusick 	int error = 0;
32439494Smckusick 	char *cp2;
32539753Smckusick 	struct mbuf *mb, *mb2, *mreq;
32641899Smckusick 	struct mbuf *m2, *m3;
32738418Smckusick 	struct vnode *vp;
32838418Smckusick 	nfsv2fh_t nfh;
32938418Smckusick 	fhandle_t *fhp;
33038418Smckusick 	struct uio io, *uiop = &io;
33138418Smckusick 	struct vattr va, *vap = &va;
33241899Smckusick 	int i, cnt, len, left, siz, tlen;
33338418Smckusick 	off_t off;
33438418Smckusick 
33538418Smckusick 	fhp = &nfh.fh_generic;
33638418Smckusick 	nfsm_srvmtofh(fhp);
337*48050Smckusick 	nfsm_disect(tl, u_long *, NFSX_UNSIGNED);
338*48050Smckusick 	off = fxdr_unsigned(off_t, *tl);
33938418Smckusick 	nfsm_srvstrsiz(cnt, NFS_MAXDATA);
34038418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
34138418Smckusick 		nfsm_reply(0);
342*48050Smckusick 	if (error = nfsrv_access(vp, VREAD | VEXEC, cred, p)) {
34338418Smckusick 		vput(vp);
34438418Smckusick 		nfsm_reply(0);
34538418Smckusick 	}
34638418Smckusick 	len = left = cnt;
34741899Smckusick 	/*
34841899Smckusick 	 * Generate the mbuf list with the uio_iov ref. to it.
34941899Smckusick 	 */
35041899Smckusick 	i = 0;
35141899Smckusick 	m3 = (struct mbuf *)0;
35242242Smckusick #ifdef lint
35342242Smckusick 	m2 = (struct mbuf *)0;
35442242Smckusick #endif /* lint */
35543350Smckusick 	MALLOC(iv, struct iovec *,
35643350Smckusick 	       ((NFS_MAXDATA+MLEN-1)/MLEN) * sizeof (struct iovec), M_TEMP,
35743350Smckusick 	       M_WAITOK);
35843350Smckusick 	iv2 = iv;
35941899Smckusick 	while (left > 0) {
36041899Smckusick 		MGET(m, M_WAIT, MT_DATA);
36141899Smckusick 		if (left > MINCLSIZE)
36241899Smckusick 			MCLGET(m, M_WAIT);
36341899Smckusick 		m->m_len = 0;
36441899Smckusick 		siz = min(M_TRAILINGSPACE(m), left);
36541899Smckusick 		m->m_len = siz;
36643350Smckusick 		iv->iov_base = mtod(m, caddr_t);
36743350Smckusick 		iv->iov_len = siz;
36843350Smckusick 		iv++;
36941899Smckusick 		i++;
37041899Smckusick 		left -= siz;
37141899Smckusick 		if (m3) {
37241899Smckusick 			m2->m_next = m;
37341899Smckusick 			m2 = m;
37441899Smckusick 		} else
37541899Smckusick 			m3 = m2 = m;
37641899Smckusick 	}
37743350Smckusick 	uiop->uio_iov = iv2;
37841899Smckusick 	uiop->uio_iovcnt = i;
37938418Smckusick 	uiop->uio_offset = off;
38038418Smckusick 	uiop->uio_resid = cnt;
38138418Smckusick 	uiop->uio_rw = UIO_READ;
38238418Smckusick 	uiop->uio_segflg = UIO_SYSSPACE;
383*48050Smckusick 	uiop->uio_procp = (struct proc *)0;
38439586Smckusick 	error = VOP_READ(vp, uiop, IO_NODELOCKED, cred);
38539586Smckusick 	off = uiop->uio_offset;
38643350Smckusick 	FREE((caddr_t)iv2, M_TEMP);
38738418Smckusick 	if (error) {
38841899Smckusick 		m_freem(m3);
38938418Smckusick 		vput(vp);
39038418Smckusick 		nfsm_reply(0);
39138418Smckusick 	}
392*48050Smckusick 	if (error = VOP_GETATTR(vp, vap, cred, p))
39341899Smckusick 		m_freem(m3);
39438418Smckusick 	vput(vp);
39538418Smckusick 	nfsm_reply(NFSX_FATTR+NFSX_UNSIGNED);
39638884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
39739753Smckusick 	nfsm_srvfillattr;
39845877Smckusick 	len -= uiop->uio_resid;
39945877Smckusick 	if (len > 0) {
40045877Smckusick 		tlen = nfsm_rndup(len);
40145877Smckusick 		if (cnt != tlen || tlen != len)
40241899Smckusick 			nfsm_adj(m3, cnt-tlen, tlen-len);
40345877Smckusick 	} else {
40445877Smckusick 		m_freem(m3);
40545877Smckusick 		m3 = (struct mbuf *)0;
40638418Smckusick 	}
407*48050Smckusick 	nfsm_build(tl, u_long *, NFSX_UNSIGNED);
408*48050Smckusick 	*tl = txdr_unsigned(len);
40941899Smckusick 	mb->m_next = m3;
41038418Smckusick 	nfsm_srvdone;
41138418Smckusick }
41238418Smckusick 
41338418Smckusick /*
41438418Smckusick  * nfs write service
41538418Smckusick  */
416*48050Smckusick nfsrv_write(mrep, md, dpos, cred, xid, mrq, repstat, p)
41738418Smckusick 	struct mbuf *mrep, *md, **mrq;
41838418Smckusick 	caddr_t dpos;
41938418Smckusick 	struct ucred *cred;
42039753Smckusick 	u_long xid;
42139753Smckusick 	int *repstat;
422*48050Smckusick 	struct proc *p;
42338418Smckusick {
42438418Smckusick 	register struct iovec *ivp;
42538418Smckusick 	register struct mbuf *mp;
42638884Smacklem 	register struct nfsv2_fattr *fp;
42741899Smckusick 	struct iovec iv[NFS_MAXIOVEC];
42838418Smckusick 	struct vattr va;
42938418Smckusick 	register struct vattr *vap = &va;
430*48050Smckusick 	register u_long *tl;
43139494Smckusick 	register long t1;
43239494Smckusick 	caddr_t bpos;
43339494Smckusick 	int error = 0;
43439494Smckusick 	char *cp2;
43539753Smckusick 	struct mbuf *mb, *mb2, *mreq;
43638418Smckusick 	struct vnode *vp;
43738418Smckusick 	nfsv2fh_t nfh;
43838418Smckusick 	fhandle_t *fhp;
43938418Smckusick 	struct uio io, *uiop = &io;
44038418Smckusick 	off_t off;
44138418Smckusick 	long siz, len, xfer;
44238418Smckusick 
44338418Smckusick 	fhp = &nfh.fh_generic;
44438418Smckusick 	nfsm_srvmtofh(fhp);
445*48050Smckusick 	nfsm_disect(tl, u_long *, 4*NFSX_UNSIGNED);
446*48050Smckusick 	off = fxdr_unsigned(off_t, *++tl);
447*48050Smckusick 	tl += 2;
448*48050Smckusick 	len = fxdr_unsigned(long, *tl);
44938418Smckusick 	if (len > NFS_MAXDATA || len <= 0) {
45038418Smckusick 		error = EBADRPC;
45138418Smckusick 		nfsm_reply(0);
45238418Smckusick 	}
45338418Smckusick 	if (dpos == (mtod(md, caddr_t)+md->m_len)) {
45438418Smckusick 		mp = md->m_next;
45538418Smckusick 		if (mp == NULL) {
45638418Smckusick 			error = EBADRPC;
45738418Smckusick 			nfsm_reply(0);
45838418Smckusick 		}
45938418Smckusick 	} else {
46038418Smckusick 		mp = md;
46138418Smckusick 		siz = dpos-mtod(mp, caddr_t);
46238418Smckusick 		mp->m_len -= siz;
46338418Smckusick 		NFSMADV(mp, siz);
46438418Smckusick 	}
46538418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
46638418Smckusick 		nfsm_reply(0);
467*48050Smckusick 	if (error = nfsrv_access(vp, VWRITE, cred, p)) {
46838418Smckusick 		vput(vp);
46938418Smckusick 		nfsm_reply(0);
47038418Smckusick 	}
47138418Smckusick 	uiop->uio_resid = 0;
47238418Smckusick 	uiop->uio_rw = UIO_WRITE;
47338418Smckusick 	uiop->uio_segflg = UIO_SYSSPACE;
474*48050Smckusick 	uiop->uio_procp = (struct proc *)0;
47538418Smckusick 	/*
47641899Smckusick 	 * Do up to NFS_MAXIOVEC mbufs of write each iteration of the
47738418Smckusick 	 * loop until done.
47838418Smckusick 	 */
47938418Smckusick 	while (len > 0 && uiop->uio_resid == 0) {
48038418Smckusick 		ivp = iv;
48138418Smckusick 		siz = 0;
48238418Smckusick 		uiop->uio_iov = ivp;
48338418Smckusick 		uiop->uio_iovcnt = 0;
48438418Smckusick 		uiop->uio_offset = off;
48541899Smckusick 		while (len > 0 && uiop->uio_iovcnt < NFS_MAXIOVEC && mp != NULL) {
48638418Smckusick 			ivp->iov_base = mtod(mp, caddr_t);
48738418Smckusick 			if (len < mp->m_len)
48838418Smckusick 				ivp->iov_len = xfer = len;
48938418Smckusick 			else
49038418Smckusick 				ivp->iov_len = xfer = mp->m_len;
49138418Smckusick #ifdef notdef
49238418Smckusick 			/* Not Yet .. */
49338418Smckusick 			if (M_HASCL(mp) && (((u_long)ivp->iov_base) & CLOFSET) == 0)
49438418Smckusick 				ivp->iov_op = NULL;	/* what should it be ?? */
49538418Smckusick 			else
49638418Smckusick 				ivp->iov_op = NULL;
49738418Smckusick #endif
49838418Smckusick 			uiop->uio_iovcnt++;
49938418Smckusick 			ivp++;
50038418Smckusick 			len -= xfer;
50138418Smckusick 			siz += xfer;
50238418Smckusick 			mp = mp->m_next;
50338418Smckusick 		}
50438418Smckusick 		if (len > 0 && mp == NULL) {
50538418Smckusick 			error = EBADRPC;
50638418Smckusick 			vput(vp);
50738418Smckusick 			nfsm_reply(0);
50838418Smckusick 		}
50938418Smckusick 		uiop->uio_resid = siz;
51039586Smckusick 		if (error = VOP_WRITE(vp, uiop, IO_SYNC | IO_NODELOCKED,
51138418Smckusick 			cred)) {
51238418Smckusick 			vput(vp);
51338418Smckusick 			nfsm_reply(0);
51438418Smckusick 		}
51539586Smckusick 		off = uiop->uio_offset;
51638418Smckusick 	}
517*48050Smckusick 	error = VOP_GETATTR(vp, vap, cred, p);
51838418Smckusick 	vput(vp);
51938418Smckusick 	nfsm_reply(NFSX_FATTR);
52038884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
52139753Smckusick 	nfsm_srvfillattr;
52238418Smckusick 	nfsm_srvdone;
52338418Smckusick }
52438418Smckusick 
52538418Smckusick /*
52638418Smckusick  * nfs create service
52738418Smckusick  * now does a truncate to 0 length via. setattr if it already exists
52838418Smckusick  */
529*48050Smckusick nfsrv_create(mrep, md, dpos, cred, xid, mrq, repstat, p)
53038418Smckusick 	struct mbuf *mrep, *md, **mrq;
53138418Smckusick 	caddr_t dpos;
53238418Smckusick 	struct ucred *cred;
53339753Smckusick 	u_long xid;
53439753Smckusick 	int *repstat;
535*48050Smckusick 	struct proc *p;
53638418Smckusick {
53738884Smacklem 	register struct nfsv2_fattr *fp;
53838418Smckusick 	struct vattr va;
53938418Smckusick 	register struct vattr *vap = &va;
54039343Smckusick 	struct nameidata nami;
54139343Smckusick 	register struct nameidata *ndp = &nami;
54239494Smckusick 	register caddr_t cp;
543*48050Smckusick 	register u_long *tl;
54439494Smckusick 	register long t1;
54539494Smckusick 	caddr_t bpos;
54642242Smckusick 	long rdev;
54739494Smckusick 	int error = 0;
54839494Smckusick 	char *cp2;
54939753Smckusick 	struct mbuf *mb, *mb2, *mreq;
55038418Smckusick 	struct vnode *vp;
55138418Smckusick 	nfsv2fh_t nfh;
55238418Smckusick 	fhandle_t *fhp;
55338418Smckusick 	long len;
55438418Smckusick 
55539343Smckusick 	ndinit(ndp);
55638418Smckusick 	fhp = &nfh.fh_generic;
55738418Smckusick 	nfsm_srvmtofh(fhp);
55838418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
55938418Smckusick 	ndp->ni_cred = cred;
56038418Smckusick 	ndp->ni_nameiop = CREATE | LOCKPARENT | LOCKLEAF;
56138418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
56238418Smckusick 		nfsm_reply(0);
56341361Smckusick 	VATTR_NULL(vap);
564*48050Smckusick 	nfsm_disect(tl, u_long *, NFSX_SATTR);
56538418Smckusick 	/*
56638418Smckusick 	 * Iff doesn't exist, create it
56738418Smckusick 	 * otherwise just truncate to 0 length
56838418Smckusick 	 *   should I set the mode too ??
56938418Smckusick 	 */
57038418Smckusick 	if (ndp->ni_vp == NULL) {
571*48050Smckusick 		vap->va_type = IFTOVT(fxdr_unsigned(u_long, *tl));
57242867Smckusick 		if (vap->va_type == VNON)
57342867Smckusick 			vap->va_type = VREG;
574*48050Smckusick 		vap->va_mode = nfstov_mode(*tl);
575*48050Smckusick 		rdev = fxdr_unsigned(long, *(tl+3));
57646988Smckusick 		if (vap->va_type == VREG || vap->va_type == VSOCK) {
577*48050Smckusick 			if (error = VOP_CREATE(ndp, vap, p))
57842242Smckusick 				nfsm_reply(0);
57942242Smckusick 		} else if (vap->va_type == VCHR || vap->va_type == VBLK ||
58042242Smckusick 			vap->va_type == VFIFO) {
58142242Smckusick 			if (vap->va_type == VCHR && rdev == 0xffffffff)
58242242Smckusick 				vap->va_type = VFIFO;
58342242Smckusick 			if (vap->va_type == VFIFO) {
58442242Smckusick #ifndef FIFO
58542242Smckusick 				VOP_ABORTOP(ndp);
58642467Smckusick 				vput(ndp->ni_dvp);
58742242Smckusick 				error = ENXIO;
58842242Smckusick 				nfsm_reply(0);
58942242Smckusick #endif /* FIFO */
59042242Smckusick 			} else if (error = suser(cred, (short *)0)) {
59142242Smckusick 				VOP_ABORTOP(ndp);
59242467Smckusick 				vput(ndp->ni_dvp);
59342242Smckusick 				nfsm_reply(0);
59442242Smckusick 			} else
59542242Smckusick 				vap->va_rdev = (dev_t)rdev;
596*48050Smckusick 			if (error = VOP_MKNOD(ndp, vap, cred, p))
59742242Smckusick 				nfsm_reply(0);
59842242Smckusick 			ndp->ni_nameiop = LOOKUP | LOCKLEAF | HASBUF;
59942242Smckusick 			if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
60042242Smckusick 				nfsm_reply(0);
60142242Smckusick 		} else {
60242242Smckusick 			VOP_ABORTOP(ndp);
60342467Smckusick 			vput(ndp->ni_dvp);
60442242Smckusick 			error = ENXIO;
60538418Smckusick 			nfsm_reply(0);
60642242Smckusick 		}
60738425Smckusick 		vp = ndp->ni_vp;
60838418Smckusick 	} else {
60938425Smckusick 		vp = ndp->ni_vp;
61041398Smckusick 		ndp->ni_vp = NULLVP;
61138425Smckusick 		VOP_ABORTOP(ndp);
61243359Smckusick 		if (ndp->ni_dvp == vp)
61343359Smckusick 			vrele(ndp->ni_dvp);
61443359Smckusick 		else
61543359Smckusick 			vput(ndp->ni_dvp);
61638418Smckusick 		vap->va_size = 0;
617*48050Smckusick 		if (error = VOP_SETATTR(vp, vap, cred, p)) {
61842506Smckusick 			vput(vp);
61938418Smckusick 			nfsm_reply(0);
62042506Smckusick 		}
62138418Smckusick 	}
62238418Smckusick 	bzero((caddr_t)fhp, sizeof(nfh));
62341398Smckusick 	fhp->fh_fsid = vp->v_mount->mnt_stat.f_fsid;
62438418Smckusick 	if (error = VFS_VPTOFH(vp, &fhp->fh_fid)) {
62538418Smckusick 		vput(vp);
62638418Smckusick 		nfsm_reply(0);
62738418Smckusick 	}
628*48050Smckusick 	error = VOP_GETATTR(vp, vap, cred, p);
62938418Smckusick 	vput(vp);
63038418Smckusick 	nfsm_reply(NFSX_FH+NFSX_FATTR);
63138418Smckusick 	nfsm_srvfhtom(fhp);
63238884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
63339753Smckusick 	nfsm_srvfillattr;
63438418Smckusick 	return (error);
63538418Smckusick nfsmout:
63638418Smckusick 	VOP_ABORTOP(ndp);
63743359Smckusick 	if (ndp->ni_dvp == ndp->ni_vp)
63843359Smckusick 		vrele(ndp->ni_dvp);
63943359Smckusick 	else
64043359Smckusick 		vput(ndp->ni_dvp);
64142467Smckusick 	if (ndp->ni_vp)
64242467Smckusick 		vput(ndp->ni_vp);
64338418Smckusick 	return (error);
64438418Smckusick }
64538418Smckusick 
64638418Smckusick /*
64738418Smckusick  * nfs remove service
64838418Smckusick  */
649*48050Smckusick nfsrv_remove(mrep, md, dpos, cred, xid, mrq, repstat, p)
65038418Smckusick 	struct mbuf *mrep, *md, **mrq;
65138418Smckusick 	caddr_t dpos;
65238418Smckusick 	struct ucred *cred;
65339753Smckusick 	u_long xid;
65439753Smckusick 	int *repstat;
655*48050Smckusick 	struct proc *p;
65638418Smckusick {
65739343Smckusick 	struct nameidata nami;
65839343Smckusick 	register struct nameidata *ndp = &nami;
659*48050Smckusick 	register u_long *tl;
66039494Smckusick 	register long t1;
66139494Smckusick 	caddr_t bpos;
66239494Smckusick 	int error = 0;
66339494Smckusick 	char *cp2;
66439753Smckusick 	struct mbuf *mb, *mreq;
66538418Smckusick 	struct vnode *vp;
66638418Smckusick 	nfsv2fh_t nfh;
66738418Smckusick 	fhandle_t *fhp;
66838418Smckusick 	long len;
66938418Smckusick 
67039343Smckusick 	ndinit(ndp);
67138418Smckusick 	fhp = &nfh.fh_generic;
67238418Smckusick 	nfsm_srvmtofh(fhp);
67338418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
67438418Smckusick 	ndp->ni_cred = cred;
67538418Smckusick 	ndp->ni_nameiop = DELETE | LOCKPARENT | LOCKLEAF;
67638418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
67738418Smckusick 		nfsm_reply(0);
67838418Smckusick 	vp = ndp->ni_vp;
67938418Smckusick 	if (vp->v_type == VDIR &&
68038418Smckusick 		(error = suser(cred, (short *)0)))
68138418Smckusick 		goto out;
68238418Smckusick 	/*
68338418Smckusick 	 * Don't unlink a mounted file.
68438418Smckusick 	 */
68538418Smckusick 	if (vp->v_flag & VROOT) {
68638418Smckusick 		error = EBUSY;
68738418Smckusick 		goto out;
68838418Smckusick 	}
68938418Smckusick 	if (vp->v_flag & VTEXT)
69045918Smckusick #ifdef NVM
69145715Smckusick 		(void) vnode_pager_uncache(vp);
69245918Smckusick #else
69345918Smckusick 		xrele(vp);	/* try once to free text */
69445918Smckusick #endif
69538418Smckusick out:
69642467Smckusick 	if (!error) {
697*48050Smckusick 		error = VOP_REMOVE(ndp, p);
69842467Smckusick 	} else {
69938418Smckusick 		VOP_ABORTOP(ndp);
70043359Smckusick 		if (ndp->ni_dvp == vp)
70143359Smckusick 			vrele(ndp->ni_dvp);
70243359Smckusick 		else
70343359Smckusick 			vput(ndp->ni_dvp);
70442467Smckusick 		vput(vp);
70542467Smckusick 	}
70638418Smckusick 	nfsm_reply(0);
70738418Smckusick 	nfsm_srvdone;
70838418Smckusick }
70938418Smckusick 
71038418Smckusick /*
71138418Smckusick  * nfs rename service
71238418Smckusick  */
713*48050Smckusick nfsrv_rename(mrep, md, dpos, cred, xid, mrq, repstat, p)
71438418Smckusick 	struct mbuf *mrep, *md, **mrq;
71538418Smckusick 	caddr_t dpos;
71638418Smckusick 	struct ucred *cred;
71739753Smckusick 	u_long xid;
71839753Smckusick 	int *repstat;
719*48050Smckusick 	struct proc *p;
72038418Smckusick {
72138425Smckusick 	register struct nameidata *ndp;
722*48050Smckusick 	register u_long *tl;
72339494Smckusick 	register long t1;
72439494Smckusick 	caddr_t bpos;
72539494Smckusick 	int error = 0;
72639494Smckusick 	char *cp2;
72739753Smckusick 	struct mbuf *mb, *mreq;
72839343Smckusick 	struct nameidata nami, tond;
72938418Smckusick 	struct vnode *fvp, *tvp, *tdvp;
73038418Smckusick 	nfsv2fh_t fnfh, tnfh;
73138418Smckusick 	fhandle_t *ffhp, *tfhp;
73238418Smckusick 	long len, len2;
73338418Smckusick 	int rootflg = 0;
73438418Smckusick 
73539343Smckusick 	ndp = &nami;
73639343Smckusick 	ndinit(ndp);
73738418Smckusick 	ffhp = &fnfh.fh_generic;
73838418Smckusick 	tfhp = &tnfh.fh_generic;
73938418Smckusick 	nfsm_srvmtofh(ffhp);
74038418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
74138418Smckusick 	/*
74238418Smckusick 	 * Remember if we are root so that we can reset cr_uid before
74338418Smckusick 	 * the second nfs_namei() call
74438418Smckusick 	 */
74538418Smckusick 	if (cred->cr_uid == 0)
74638418Smckusick 		rootflg++;
74738425Smckusick 	ndp->ni_cred = cred;
74846513Smckusick 	ndp->ni_nameiop = DELETE | WANTPARENT | SAVESTARTDIR;
74938425Smckusick 	if (error = nfs_namei(ndp, ffhp, len, &md, &dpos))
75038418Smckusick 		nfsm_reply(0);
75138425Smckusick 	fvp = ndp->ni_vp;
75238418Smckusick 	nfsm_srvmtofh(tfhp);
75341899Smckusick 	nfsm_strsiz(len2, NFS_MAXNAMLEN);
75438418Smckusick 	if (rootflg)
75538418Smckusick 		cred->cr_uid = 0;
75639343Smckusick 	ndinit(&tond);
75739343Smckusick 	crhold(cred);
75839343Smckusick 	tond.ni_cred = cred;
75946513Smckusick 	tond.ni_nameiop = RENAME | LOCKPARENT | LOCKLEAF | NOCACHE
76046513Smckusick 		| SAVESTARTDIR;
76142467Smckusick 	if (error = nfs_namei(&tond, tfhp, len2, &md, &dpos)) {
76242467Smckusick 		VOP_ABORTOP(ndp);
76342467Smckusick 		vrele(ndp->ni_dvp);
76442467Smckusick 		vrele(fvp);
76542467Smckusick 		goto out1;
76642467Smckusick 	}
76738425Smckusick 	tdvp = tond.ni_dvp;
76838425Smckusick 	tvp = tond.ni_vp;
76938418Smckusick 	if (tvp != NULL) {
77038418Smckusick 		if (fvp->v_type == VDIR && tvp->v_type != VDIR) {
77138418Smckusick 			error = EISDIR;
77238418Smckusick 			goto out;
77338418Smckusick 		} else if (fvp->v_type != VDIR && tvp->v_type == VDIR) {
77438418Smckusick 			error = ENOTDIR;
77538418Smckusick 			goto out;
77638418Smckusick 		}
77738418Smckusick 	}
77838418Smckusick 	if (fvp->v_mount != tdvp->v_mount) {
77938418Smckusick 		error = EXDEV;
78038418Smckusick 		goto out;
78138418Smckusick 	}
78238418Smckusick 	if (fvp == tdvp || fvp == tvp)
78338418Smckusick 		error = EINVAL;
78438418Smckusick out:
78542467Smckusick 	if (!error) {
786*48050Smckusick 		error = VOP_RENAME(ndp, &tond, p);
78742467Smckusick 	} else {
78842467Smckusick 		VOP_ABORTOP(&tond);
78943359Smckusick 		if (tdvp == tvp)
79043359Smckusick 			vrele(tdvp);
79143359Smckusick 		else
79243359Smckusick 			vput(tdvp);
79342467Smckusick 		if (tvp)
79442467Smckusick 			vput(tvp);
79542467Smckusick 		VOP_ABORTOP(ndp);
79642467Smckusick 		vrele(ndp->ni_dvp);
79742467Smckusick 		vrele(fvp);
79838418Smckusick 	}
79946513Smckusick 	vrele(tond.ni_startdir);
80038418Smckusick out1:
80146513Smckusick 	vrele(ndp->ni_startdir);
80239343Smckusick 	crfree(cred);
80338418Smckusick 	nfsm_reply(0);
80438418Smckusick 	return (error);
80538418Smckusick nfsmout:
80646513Smckusick 	if (ndp->ni_nameiop & SAVESTARTDIR)
80746513Smckusick 		vrele(ndp->ni_startdir);
80838425Smckusick 	VOP_ABORTOP(ndp);
80942467Smckusick 	vrele(ndp->ni_dvp);
81042467Smckusick 	vrele(fvp);
81138418Smckusick 	return (error);
81238418Smckusick }
81338418Smckusick 
81438418Smckusick /*
81538418Smckusick  * nfs link service
81638418Smckusick  */
817*48050Smckusick nfsrv_link(mrep, md, dpos, cred, xid, mrq, repstat, p)
81838418Smckusick 	struct mbuf *mrep, *md, **mrq;
81938418Smckusick 	caddr_t dpos;
82038418Smckusick 	struct ucred *cred;
82139753Smckusick 	u_long xid;
82239753Smckusick 	int *repstat;
823*48050Smckusick 	struct proc *p;
82438418Smckusick {
82539343Smckusick 	struct nameidata nami;
82639343Smckusick 	register struct nameidata *ndp = &nami;
827*48050Smckusick 	register u_long *tl;
82839494Smckusick 	register long t1;
82939494Smckusick 	caddr_t bpos;
83039494Smckusick 	int error = 0;
83139494Smckusick 	char *cp2;
83239753Smckusick 	struct mbuf *mb, *mreq;
83338418Smckusick 	struct vnode *vp, *xp;
83438418Smckusick 	nfsv2fh_t nfh, dnfh;
83538418Smckusick 	fhandle_t *fhp, *dfhp;
83638418Smckusick 	long len;
83738418Smckusick 
83839343Smckusick 	ndinit(ndp);
83938418Smckusick 	fhp = &nfh.fh_generic;
84038418Smckusick 	dfhp = &dnfh.fh_generic;
84138418Smckusick 	nfsm_srvmtofh(fhp);
84238418Smckusick 	nfsm_srvmtofh(dfhp);
84338418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
84438418Smckusick 	if (error = nfsrv_fhtovp(fhp, FALSE, &vp, cred))
84538418Smckusick 		nfsm_reply(0);
84638418Smckusick 	if (vp->v_type == VDIR && (error = suser(cred, NULL)))
84738418Smckusick 		goto out1;
84838418Smckusick 	ndp->ni_cred = cred;
84938418Smckusick 	ndp->ni_nameiop = CREATE | LOCKPARENT;
85038418Smckusick 	if (error = nfs_namei(ndp, dfhp, len, &md, &dpos))
85138418Smckusick 		goto out1;
85238418Smckusick 	xp = ndp->ni_vp;
85338418Smckusick 	if (xp != NULL) {
85438418Smckusick 		error = EEXIST;
85538418Smckusick 		goto out;
85638418Smckusick 	}
85738418Smckusick 	xp = ndp->ni_dvp;
85838418Smckusick 	if (vp->v_mount != xp->v_mount)
85938418Smckusick 		error = EXDEV;
86038418Smckusick out:
86142467Smckusick 	if (!error) {
862*48050Smckusick 		error = VOP_LINK(vp, ndp, p);
86342467Smckusick 	} else {
86438418Smckusick 		VOP_ABORTOP(ndp);
86543359Smckusick 		if (ndp->ni_dvp == ndp->ni_vp)
86643359Smckusick 			vrele(ndp->ni_dvp);
86743359Smckusick 		else
86843359Smckusick 			vput(ndp->ni_dvp);
86942467Smckusick 		if (ndp->ni_vp)
87042467Smckusick 			vrele(ndp->ni_vp);
87142467Smckusick 	}
87238418Smckusick out1:
87338418Smckusick 	vrele(vp);
87438418Smckusick 	nfsm_reply(0);
87538418Smckusick 	nfsm_srvdone;
87638418Smckusick }
87738418Smckusick 
87838418Smckusick /*
87938418Smckusick  * nfs symbolic link service
88038418Smckusick  */
881*48050Smckusick nfsrv_symlink(mrep, md, dpos, cred, xid, mrq, repstat, p)
88238418Smckusick 	struct mbuf *mrep, *md, **mrq;
88338418Smckusick 	caddr_t dpos;
88438418Smckusick 	struct ucred *cred;
88539753Smckusick 	u_long xid;
88639753Smckusick 	int *repstat;
887*48050Smckusick 	struct proc *p;
88838418Smckusick {
88938418Smckusick 	struct vattr va;
89039343Smckusick 	struct nameidata nami;
89139343Smckusick 	register struct nameidata *ndp = &nami;
89238418Smckusick 	register struct vattr *vap = &va;
893*48050Smckusick 	register u_long *tl;
89439494Smckusick 	register long t1;
89545285Smckusick 	struct nfsv2_sattr *sp;
89639494Smckusick 	caddr_t bpos;
89741899Smckusick 	struct uio io;
89841899Smckusick 	struct iovec iv;
89939494Smckusick 	int error = 0;
90041899Smckusick 	char *pathcp, *cp2;
90139753Smckusick 	struct mbuf *mb, *mreq;
90238418Smckusick 	nfsv2fh_t nfh;
90338418Smckusick 	fhandle_t *fhp;
90442242Smckusick 	long len, len2;
90538418Smckusick 
90641899Smckusick 	pathcp = (char *)0;
90739343Smckusick 	ndinit(ndp);
90838418Smckusick 	fhp = &nfh.fh_generic;
90938418Smckusick 	nfsm_srvmtofh(fhp);
91038418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
91138418Smckusick 	ndp->ni_cred = cred;
91238418Smckusick 	ndp->ni_nameiop = CREATE | LOCKPARENT;
91338418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
91442467Smckusick 		goto out;
91541899Smckusick 	nfsm_strsiz(len2, NFS_MAXPATHLEN);
91641899Smckusick 	MALLOC(pathcp, caddr_t, len2 + 1, M_TEMP, M_WAITOK);
91741899Smckusick 	iv.iov_base = pathcp;
91841899Smckusick 	iv.iov_len = len2;
91941899Smckusick 	io.uio_resid = len2;
92041899Smckusick 	io.uio_offset = 0;
92141899Smckusick 	io.uio_iov = &iv;
92241899Smckusick 	io.uio_iovcnt = 1;
92341899Smckusick 	io.uio_segflg = UIO_SYSSPACE;
92441899Smckusick 	io.uio_rw = UIO_READ;
925*48050Smckusick 	io.uio_procp = (struct proc *)0;
92641899Smckusick 	nfsm_mtouio(&io, len2);
92745285Smckusick 	nfsm_disect(sp, struct nfsv2_sattr *, NFSX_SATTR);
92841899Smckusick 	*(pathcp + len2) = '\0';
92942467Smckusick 	if (ndp->ni_vp) {
93042467Smckusick 		VOP_ABORTOP(ndp);
93143359Smckusick 		if (ndp->ni_dvp == ndp->ni_vp)
93243359Smckusick 			vrele(ndp->ni_dvp);
93343359Smckusick 		else
93443359Smckusick 			vput(ndp->ni_dvp);
93542467Smckusick 		vrele(ndp->ni_vp);
93638418Smckusick 		error = EEXIST;
93738418Smckusick 		goto out;
93838418Smckusick 	}
93941361Smckusick 	VATTR_NULL(vap);
94045285Smckusick 	vap->va_mode = fxdr_unsigned(u_short, sp->sa_mode);
941*48050Smckusick 	error = VOP_SYMLINK(ndp, vap, pathcp, p);
94238418Smckusick out:
94341899Smckusick 	if (pathcp)
94441899Smckusick 		FREE(pathcp, M_TEMP);
94538418Smckusick 	nfsm_reply(0);
94638418Smckusick 	return (error);
94738418Smckusick nfsmout:
94838418Smckusick 	VOP_ABORTOP(ndp);
94943359Smckusick 	if (ndp->ni_dvp == ndp->ni_vp)
95043359Smckusick 		vrele(ndp->ni_dvp);
95143359Smckusick 	else
95243359Smckusick 		vput(ndp->ni_dvp);
95342467Smckusick 	if (ndp->ni_vp);
95442467Smckusick 		vrele(ndp->ni_vp);
95541899Smckusick 	if (pathcp)
95641899Smckusick 		FREE(pathcp, M_TEMP);
95738418Smckusick 	return (error);
95838418Smckusick }
95938418Smckusick 
96038418Smckusick /*
96138418Smckusick  * nfs mkdir service
96238418Smckusick  */
963*48050Smckusick nfsrv_mkdir(mrep, md, dpos, cred, xid, mrq, repstat, p)
96438418Smckusick 	struct mbuf *mrep, *md, **mrq;
96538418Smckusick 	caddr_t dpos;
96638418Smckusick 	struct ucred *cred;
96739753Smckusick 	u_long xid;
96839753Smckusick 	int *repstat;
969*48050Smckusick 	struct proc *p;
97038418Smckusick {
97138418Smckusick 	struct vattr va;
97238418Smckusick 	register struct vattr *vap = &va;
97338884Smacklem 	register struct nfsv2_fattr *fp;
97439343Smckusick 	struct nameidata nami;
97539343Smckusick 	register struct nameidata *ndp = &nami;
97639494Smckusick 	register caddr_t cp;
977*48050Smckusick 	register u_long *tl;
97839494Smckusick 	register long t1;
97939494Smckusick 	caddr_t bpos;
98039494Smckusick 	int error = 0;
98139494Smckusick 	char *cp2;
98239753Smckusick 	struct mbuf *mb, *mb2, *mreq;
98338418Smckusick 	struct vnode *vp;
98438418Smckusick 	nfsv2fh_t nfh;
98538418Smckusick 	fhandle_t *fhp;
98638418Smckusick 	long len;
98738418Smckusick 
98839343Smckusick 	ndinit(ndp);
98938418Smckusick 	fhp = &nfh.fh_generic;
99038418Smckusick 	nfsm_srvmtofh(fhp);
99138418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
99238418Smckusick 	ndp->ni_cred = cred;
99346513Smckusick 	ndp->ni_nameiop = CREATE | LOCKPARENT | SAVESTARTDIR;
99438418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
99538418Smckusick 		nfsm_reply(0);
996*48050Smckusick 	nfsm_disect(tl, u_long *, NFSX_UNSIGNED);
99741361Smckusick 	VATTR_NULL(vap);
99838418Smckusick 	vap->va_type = VDIR;
999*48050Smckusick 	vap->va_mode = nfstov_mode(*tl++);
100038418Smckusick 	vp = ndp->ni_vp;
100138418Smckusick 	if (vp != NULL) {
100238418Smckusick 		VOP_ABORTOP(ndp);
100343359Smckusick 		if (ndp->ni_dvp == vp)
100443359Smckusick 			vrele(ndp->ni_dvp);
100543359Smckusick 		else
100643359Smckusick 			vput(ndp->ni_dvp);
100742467Smckusick 		vrele(vp);
100846513Smckusick 		vrele(ndp->ni_startdir);
100938418Smckusick 		error = EEXIST;
101038418Smckusick 		nfsm_reply(0);
101138418Smckusick 	}
1012*48050Smckusick 	error = VOP_MKDIR(ndp, vap, p);
101346513Smckusick 	vrele(ndp->ni_startdir);
101446513Smckusick 	if (error)
101538418Smckusick 		nfsm_reply(0);
101638418Smckusick 	vp = ndp->ni_vp;
101738418Smckusick 	bzero((caddr_t)fhp, sizeof(nfh));
101841398Smckusick 	fhp->fh_fsid = vp->v_mount->mnt_stat.f_fsid;
101938418Smckusick 	if (error = VFS_VPTOFH(vp, &fhp->fh_fid)) {
102038418Smckusick 		vput(vp);
102138418Smckusick 		nfsm_reply(0);
102238418Smckusick 	}
1023*48050Smckusick 	error = VOP_GETATTR(vp, vap, cred, p);
102438418Smckusick 	vput(vp);
102538418Smckusick 	nfsm_reply(NFSX_FH+NFSX_FATTR);
102638418Smckusick 	nfsm_srvfhtom(fhp);
102738884Smacklem 	nfsm_build(fp, struct nfsv2_fattr *, NFSX_FATTR);
102839753Smckusick 	nfsm_srvfillattr;
102938418Smckusick 	return (error);
103038418Smckusick nfsmout:
103138418Smckusick 	VOP_ABORTOP(ndp);
103243359Smckusick 	if (ndp->ni_dvp == ndp->ni_vp)
103343359Smckusick 		vrele(ndp->ni_dvp);
103443359Smckusick 	else
103543359Smckusick 		vput(ndp->ni_dvp);
103642467Smckusick 	if (ndp->ni_vp)
103742467Smckusick 		vrele(ndp->ni_vp);
103838418Smckusick 	return (error);
103938418Smckusick }
104038418Smckusick 
104138418Smckusick /*
104238418Smckusick  * nfs rmdir service
104338418Smckusick  */
1044*48050Smckusick nfsrv_rmdir(mrep, md, dpos, cred, xid, mrq, repstat, p)
104538418Smckusick 	struct mbuf *mrep, *md, **mrq;
104638418Smckusick 	caddr_t dpos;
104738418Smckusick 	struct ucred *cred;
104839753Smckusick 	u_long xid;
104939753Smckusick 	int *repstat;
1050*48050Smckusick 	struct proc *p;
105138418Smckusick {
105239343Smckusick 	struct nameidata nami;
105339343Smckusick 	register struct nameidata *ndp = &nami;
1054*48050Smckusick 	register u_long *tl;
105539494Smckusick 	register long t1;
105639494Smckusick 	caddr_t bpos;
105739494Smckusick 	int error = 0;
105839494Smckusick 	char *cp2;
105939753Smckusick 	struct mbuf *mb, *mreq;
106038418Smckusick 	struct vnode *vp;
106138418Smckusick 	nfsv2fh_t nfh;
106238418Smckusick 	fhandle_t *fhp;
106338418Smckusick 	long len;
106438418Smckusick 
106539343Smckusick 	ndinit(ndp);
106638418Smckusick 	fhp = &nfh.fh_generic;
106738418Smckusick 	nfsm_srvmtofh(fhp);
106838418Smckusick 	nfsm_srvstrsiz(len, NFS_MAXNAMLEN);
106938418Smckusick 	ndp->ni_cred = cred;
107038418Smckusick 	ndp->ni_nameiop = DELETE | LOCKPARENT | LOCKLEAF;
107138418Smckusick 	if (error = nfs_namei(ndp, fhp, len, &md, &dpos))
107238418Smckusick 		nfsm_reply(0);
107338418Smckusick 	vp = ndp->ni_vp;
107438418Smckusick 	if (vp->v_type != VDIR) {
107538418Smckusick 		error = ENOTDIR;
107638418Smckusick 		goto out;
107738418Smckusick 	}
107838418Smckusick 	/*
107938418Smckusick 	 * No rmdir "." please.
108038418Smckusick 	 */
108138418Smckusick 	if (ndp->ni_dvp == vp) {
108238418Smckusick 		error = EINVAL;
108338418Smckusick 		goto out;
108438418Smckusick 	}
108538418Smckusick 	/*
108638418Smckusick 	 * Don't unlink a mounted file.
108738418Smckusick 	 */
108838418Smckusick 	if (vp->v_flag & VROOT)
108938418Smckusick 		error = EBUSY;
109038418Smckusick out:
109142467Smckusick 	if (!error) {
1092*48050Smckusick 		error = VOP_RMDIR(ndp, p);
109342467Smckusick 	} else {
109438418Smckusick 		VOP_ABORTOP(ndp);
109543359Smckusick 		if (ndp->ni_dvp == ndp->ni_vp)
109643359Smckusick 			vrele(ndp->ni_dvp);
109743359Smckusick 		else
109843359Smckusick 			vput(ndp->ni_dvp);
109942467Smckusick 		vput(vp);
110042467Smckusick 	}
110138418Smckusick 	nfsm_reply(0);
110238418Smckusick 	nfsm_srvdone;
110338418Smckusick }
110438418Smckusick 
110538418Smckusick /*
110638418Smckusick  * nfs readdir service
110738418Smckusick  * - mallocs what it thinks is enough to read
1108*48050Smckusick  *	count rounded up to a multiple of NFS_DIRBLKSIZ <= NFS_MAXREADDIR
110938418Smckusick  * - calls VOP_READDIR()
111040115Smckusick  * - loops around building the reply
111138425Smckusick  *	if the output generated exceeds count break out of loop
111238425Smckusick  *	The nfsm_clget macro is used here so that the reply will be packed
111338425Smckusick  *	tightly in mbuf clusters.
111438418Smckusick  * - it only knows that it has encountered eof when the VOP_READDIR()
111538425Smckusick  *	reads nothing
111638418Smckusick  * - as such one readdir rpc will return eof false although you are there
111738425Smckusick  *	and then the next will return eof
111838418Smckusick  * - it trims out records with d_ino == 0
111938425Smckusick  *	this doesn't matter for Unix clients, but they might confuse clients
112038425Smckusick  *	for other os'.
112138418Smckusick  * NB: It is tempting to set eof to true if the VOP_READDIR() reads less
112238425Smckusick  *	than requested, but this may not apply to all filesystems. For
112338425Smckusick  *	example, client NFS does not { although it is never remote mounted
112438425Smckusick  *	anyhow }
112538418Smckusick  * PS: The NFS protocol spec. does not clarify what the "count" byte
112638425Smckusick  *	argument is a count of.. just name strings and file id's or the
112738425Smckusick  *	entire reply rpc or ...
112838425Smckusick  *	I tried just file name and id sizes and it confused the Sun client,
112938425Smckusick  *	so I am using the full rpc size now. The "paranoia.." comment refers
113038425Smckusick  *	to including the status longwords that are not a part of the dir.
113138425Smckusick  *	"entry" structures, but are in the rpc.
113238418Smckusick  */
1133*48050Smckusick nfsrv_readdir(mrep, md, dpos, cred, xid, mrq, repstat, p)
113438418Smckusick 	struct mbuf **mrq;
113538418Smckusick 	struct mbuf *mrep, *md;
113638418Smckusick 	caddr_t dpos;
113738418Smckusick 	struct ucred *cred;
113838418Smckusick 	u_long xid;
113939753Smckusick 	int *repstat;
1140*48050Smckusick 	struct proc *p;
114138418Smckusick {
114238418Smckusick 	register char *bp, *be;
114338418Smckusick 	register struct mbuf *mp;
114438418Smckusick 	register struct direct *dp;
114539494Smckusick 	register caddr_t cp;
1146*48050Smckusick 	register u_long *tl;
114739494Smckusick 	register long t1;
114839494Smckusick 	caddr_t bpos;
114939494Smckusick 	int error = 0;
115039494Smckusick 	char *cp2;
115139753Smckusick 	struct mbuf *mb, *mb2, *mreq;
115238418Smckusick 	char *cpos, *cend;
115338418Smckusick 	int len, nlen, rem, xfer, tsiz, i;
115438418Smckusick 	struct vnode *vp;
115538418Smckusick 	struct mbuf *mp2, *mp3;
115638418Smckusick 	nfsv2fh_t nfh;
115738418Smckusick 	fhandle_t *fhp;
115838418Smckusick 	struct uio io;
115938418Smckusick 	struct iovec iv;
116040296Smckusick 	int siz, cnt, fullsiz, eofflag;
116138418Smckusick 	u_long on;
116238418Smckusick 	char *rbuf;
116338418Smckusick 	off_t off, toff;
116438418Smckusick 
116538418Smckusick 	fhp = &nfh.fh_generic;
116638418Smckusick 	nfsm_srvmtofh(fhp);
1167*48050Smckusick 	nfsm_disect(tl, u_long *, 2*NFSX_UNSIGNED);
1168*48050Smckusick 	toff = fxdr_unsigned(off_t, *tl++);
1169*48050Smckusick 	off = (toff & ~(NFS_DIRBLKSIZ-1));
1170*48050Smckusick 	on = (toff & (NFS_DIRBLKSIZ-1));
1171*48050Smckusick 	cnt = fxdr_unsigned(int, *tl);
1172*48050Smckusick 	siz = ((cnt+NFS_DIRBLKSIZ-1) & ~(NFS_DIRBLKSIZ-1));
117341899Smckusick 	if (cnt > NFS_MAXREADDIR)
117441899Smckusick 		siz = NFS_MAXREADDIR;
117538418Smckusick 	fullsiz = siz;
117638418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
117738418Smckusick 		nfsm_reply(0);
1178*48050Smckusick 	if (error = nfsrv_access(vp, VEXEC, cred, p)) {
117938418Smckusick 		vput(vp);
118038418Smckusick 		nfsm_reply(0);
118138418Smckusick 	}
118238418Smckusick 	VOP_UNLOCK(vp);
118338418Smckusick 	MALLOC(rbuf, caddr_t, siz, M_TEMP, M_WAITOK);
118438418Smckusick again:
118538418Smckusick 	iv.iov_base = rbuf;
118638418Smckusick 	iv.iov_len = fullsiz;
118738418Smckusick 	io.uio_iov = &iv;
118838418Smckusick 	io.uio_iovcnt = 1;
118938418Smckusick 	io.uio_offset = off;
119038418Smckusick 	io.uio_resid = fullsiz;
119138418Smckusick 	io.uio_segflg = UIO_SYSSPACE;
119238418Smckusick 	io.uio_rw = UIO_READ;
1193*48050Smckusick 	io.uio_procp = (struct proc *)0;
119440296Smckusick 	error = VOP_READDIR(vp, &io, cred, &eofflag);
119539586Smckusick 	off = io.uio_offset;
119638418Smckusick 	if (error) {
119738418Smckusick 		vrele(vp);
119838418Smckusick 		free((caddr_t)rbuf, M_TEMP);
119938418Smckusick 		nfsm_reply(0);
120038418Smckusick 	}
120138418Smckusick 	if (io.uio_resid) {
120238418Smckusick 		siz -= io.uio_resid;
120338418Smckusick 
120438418Smckusick 		/*
120538418Smckusick 		 * If nothing read, return eof
120638418Smckusick 		 * rpc reply
120738418Smckusick 		 */
120838418Smckusick 		if (siz == 0) {
120938418Smckusick 			vrele(vp);
121038418Smckusick 			nfsm_reply(2*NFSX_UNSIGNED);
1211*48050Smckusick 			nfsm_build(tl, u_long *, 2*NFSX_UNSIGNED);
1212*48050Smckusick 			*tl++ = nfs_false;
1213*48050Smckusick 			*tl = nfs_true;
121438418Smckusick 			FREE((caddr_t)rbuf, M_TEMP);
121538418Smckusick 			return (0);
121638418Smckusick 		}
121738418Smckusick 	}
121840115Smckusick 
121938418Smckusick 	/*
122038418Smckusick 	 * Check for degenerate cases of nothing useful read.
122140115Smckusick 	 * If so go try again
122238418Smckusick 	 */
122340115Smckusick 	cpos = rbuf + on;
122440115Smckusick 	cend = rbuf + siz;
122540115Smckusick 	dp = (struct direct *)cpos;
122640115Smckusick 	while (cpos < cend && dp->d_ino == 0) {
122740115Smckusick 		cpos += dp->d_reclen;
122840115Smckusick 		dp = (struct direct *)cpos;
122940115Smckusick 	}
123040115Smckusick 	if (cpos >= cend) {
123138418Smckusick 		toff = off;
123238418Smckusick 		siz = fullsiz;
123338418Smckusick 		on = 0;
123438418Smckusick 		goto again;
123538418Smckusick 	}
123640115Smckusick 
123740115Smckusick 	cpos = rbuf + on;
123840115Smckusick 	cend = rbuf + siz;
123940115Smckusick 	dp = (struct direct *)cpos;
124038418Smckusick 	vrele(vp);
124138425Smckusick 	len = 3*NFSX_UNSIGNED;	/* paranoia, probably can be 0 */
124238418Smckusick 	bp = be = (caddr_t)0;
124338418Smckusick 	mp3 = (struct mbuf *)0;
124438418Smckusick 	nfsm_reply(siz);
124538418Smckusick 
124638418Smckusick 	/* Loop through the records and build reply */
124738418Smckusick 	while (cpos < cend) {
124838418Smckusick 		if (dp->d_ino != 0) {
124938418Smckusick 			nlen = dp->d_namlen;
125038418Smckusick 			rem = nfsm_rndup(nlen)-nlen;
125138425Smckusick 
125238418Smckusick 			/*
125338418Smckusick 			 * As noted above, the NFS spec. is not clear about what
125438418Smckusick 			 * should be included in "count" as totalled up here in
125538418Smckusick 			 * "len".
125638418Smckusick 			 */
125738418Smckusick 			len += (4*NFSX_UNSIGNED+nlen+rem);
125841899Smckusick 			if (len > cnt) {
125941899Smckusick 				eofflag = 0;
126038418Smckusick 				break;
126141899Smckusick 			}
126238425Smckusick 
126338418Smckusick 			/* Build the directory record xdr from the direct entry */
126438418Smckusick 			nfsm_clget;
1265*48050Smckusick 			*tl = nfs_true;
126638418Smckusick 			bp += NFSX_UNSIGNED;
126738418Smckusick 			nfsm_clget;
1268*48050Smckusick 			*tl = txdr_unsigned(dp->d_ino);
126938418Smckusick 			bp += NFSX_UNSIGNED;
127038418Smckusick 			nfsm_clget;
1271*48050Smckusick 			*tl = txdr_unsigned(nlen);
127238418Smckusick 			bp += NFSX_UNSIGNED;
127338425Smckusick 
127438418Smckusick 			/* And loop arround copying the name */
127538418Smckusick 			xfer = nlen;
127638418Smckusick 			cp = dp->d_name;
127738418Smckusick 			while (xfer > 0) {
127838418Smckusick 				nfsm_clget;
127938418Smckusick 				if ((bp+xfer) > be)
128038418Smckusick 					tsiz = be-bp;
128138418Smckusick 				else
128238418Smckusick 					tsiz = xfer;
128338418Smckusick 				bcopy(cp, bp, tsiz);
128438418Smckusick 				bp += tsiz;
128538418Smckusick 				xfer -= tsiz;
128638418Smckusick 				if (xfer > 0)
128738418Smckusick 					cp += tsiz;
128838418Smckusick 			}
128938418Smckusick 			/* And null pad to a long boundary */
129038418Smckusick 			for (i = 0; i < rem; i++)
129138418Smckusick 				*bp++ = '\0';
129238418Smckusick 			nfsm_clget;
129338425Smckusick 
129438418Smckusick 			/* Finish off the record */
129538418Smckusick 			toff += dp->d_reclen;
1296*48050Smckusick 			*tl = txdr_unsigned(toff);
129738418Smckusick 			bp += NFSX_UNSIGNED;
129838418Smckusick 		} else
129938418Smckusick 			toff += dp->d_reclen;
130038418Smckusick 		cpos += dp->d_reclen;
130138418Smckusick 		dp = (struct direct *)cpos;
130238418Smckusick 	}
130338418Smckusick 	nfsm_clget;
1304*48050Smckusick 	*tl = nfs_false;
130538418Smckusick 	bp += NFSX_UNSIGNED;
130638418Smckusick 	nfsm_clget;
130740296Smckusick 	if (eofflag)
1308*48050Smckusick 		*tl = nfs_true;
130940296Smckusick 	else
1310*48050Smckusick 		*tl = nfs_false;
131138418Smckusick 	bp += NFSX_UNSIGNED;
131238418Smckusick 	if (bp < be)
131338418Smckusick 		mp->m_len = bp-mtod(mp, caddr_t);
131438418Smckusick 	mb->m_next = mp3;
131538418Smckusick 	FREE(rbuf, M_TEMP);
131638418Smckusick 	nfsm_srvdone;
131738418Smckusick }
131838418Smckusick 
131938418Smckusick /*
132038418Smckusick  * nfs statfs service
132138418Smckusick  */
1322*48050Smckusick nfsrv_statfs(mrep, md, dpos, cred, xid, mrq, repstat, p)
132338418Smckusick 	struct mbuf **mrq;
132438418Smckusick 	struct mbuf *mrep, *md;
132538418Smckusick 	caddr_t dpos;
132638418Smckusick 	struct ucred *cred;
132738418Smckusick 	u_long xid;
132839753Smckusick 	int *repstat;
1329*48050Smckusick 	struct proc *p;
133038418Smckusick {
133138418Smckusick 	register struct statfs *sf;
133238884Smacklem 	register struct nfsv2_statfs *sfp;
1333*48050Smckusick 	register u_long *tl;
133439494Smckusick 	register long t1;
133539494Smckusick 	caddr_t bpos;
133639494Smckusick 	int error = 0;
133739494Smckusick 	char *cp2;
133839753Smckusick 	struct mbuf *mb, *mb2, *mreq;
133938418Smckusick 	struct vnode *vp;
134038418Smckusick 	nfsv2fh_t nfh;
134138418Smckusick 	fhandle_t *fhp;
134238418Smckusick 	struct statfs statfs;
134338418Smckusick 
134438418Smckusick 	fhp = &nfh.fh_generic;
134538418Smckusick 	nfsm_srvmtofh(fhp);
134638418Smckusick 	if (error = nfsrv_fhtovp(fhp, TRUE, &vp, cred))
134738418Smckusick 		nfsm_reply(0);
134838418Smckusick 	sf = &statfs;
1349*48050Smckusick 	error = VFS_STATFS(vp->v_mount, sf, p);
135038418Smckusick 	vput(vp);
135138418Smckusick 	nfsm_reply(NFSX_STATFS);
135238884Smacklem 	nfsm_build(sfp, struct nfsv2_statfs *, NFSX_STATFS);
135344993Sbostic 	sfp->sf_tsize = txdr_unsigned(NFS_MAXDGRAMDATA);
135438884Smacklem 	sfp->sf_bsize = txdr_unsigned(sf->f_fsize);
135538884Smacklem 	sfp->sf_blocks = txdr_unsigned(sf->f_blocks);
135638884Smacklem 	sfp->sf_bfree = txdr_unsigned(sf->f_bfree);
135738884Smacklem 	sfp->sf_bavail = txdr_unsigned(sf->f_bavail);
135838418Smckusick 	nfsm_srvdone;
135938418Smckusick }
136038418Smckusick 
136138418Smckusick /*
136238418Smckusick  * Null operation, used by clients to ping server
136338418Smckusick  */
136439494Smckusick /* ARGSUSED */
1365*48050Smckusick nfsrv_null(mrep, md, dpos, cred, xid, mrq, repstat, p)
136638418Smckusick 	struct mbuf **mrq;
136738418Smckusick 	struct mbuf *mrep, *md;
136838418Smckusick 	caddr_t dpos;
136938418Smckusick 	struct ucred *cred;
137038418Smckusick 	u_long xid;
137139753Smckusick 	int *repstat;
1372*48050Smckusick 	struct proc *p;
137338418Smckusick {
137439494Smckusick 	caddr_t bpos;
137539494Smckusick 	int error = 0;
137639753Smckusick 	struct mbuf *mb, *mreq;
137738418Smckusick 
137838418Smckusick 	error = VNOVAL;
137938418Smckusick 	nfsm_reply(0);
138039494Smckusick 	return (error);
138138418Smckusick }
138238418Smckusick 
138338418Smckusick /*
138438418Smckusick  * No operation, used for obsolete procedures
138538418Smckusick  */
138639494Smckusick /* ARGSUSED */
1387*48050Smckusick nfsrv_noop(mrep, md, dpos, cred, xid, mrq, repstat, p)
138838418Smckusick 	struct mbuf **mrq;
138938418Smckusick 	struct mbuf *mrep, *md;
139038418Smckusick 	caddr_t dpos;
139138418Smckusick 	struct ucred *cred;
139238418Smckusick 	u_long xid;
139339753Smckusick 	int *repstat;
1394*48050Smckusick 	struct proc *p;
139538418Smckusick {
139639494Smckusick 	caddr_t bpos;
139739494Smckusick 	int error = 0;
139839753Smckusick 	struct mbuf *mb, *mreq;
139938418Smckusick 
140038418Smckusick 	error = EPROCUNAVAIL;
140138418Smckusick 	nfsm_reply(0);
140239494Smckusick 	return (error);
140338418Smckusick }
140438425Smckusick 
140538450Smckusick /*
140638450Smckusick  * Perform access checking for vnodes obtained from file handles that would
140738450Smckusick  * refer to files already opened by a Unix client. You cannot just use
140838450Smckusick  * vn_writechk() and VOP_ACCESS() for two reasons.
140941398Smckusick  * 1 - You must check for MNT_EXRDONLY as well as MNT_RDONLY for the write case
141038450Smckusick  * 2 - The owner is to be given access irrespective of mode bits so that
141138450Smckusick  *     processes that chmod after opening a file don't break. I don't like
141238450Smckusick  *     this because it opens a security hole, but since the nfs server opens
141338450Smckusick  *     a security hole the size of a barn door anyhow, what the heck.
141438450Smckusick  */
1415*48050Smckusick nfsrv_access(vp, flags, cred, p)
141638450Smckusick 	register struct vnode *vp;
141738450Smckusick 	int flags;
141838450Smckusick 	register struct ucred *cred;
1419*48050Smckusick 	struct proc *p;
142038450Smckusick {
142138450Smckusick 	struct vattr vattr;
142238450Smckusick 	int error;
142338450Smckusick 	if (flags & VWRITE) {
142441398Smckusick 		/* Just vn_writechk() changed to check MNT_EXRDONLY */
142538450Smckusick 		/*
142638450Smckusick 		 * Disallow write attempts on read-only file systems;
142738450Smckusick 		 * unless the file is a socket or a block or character
142838450Smckusick 		 * device resident on the file system.
142938450Smckusick 		 */
143045059Smckusick 		if (vp->v_mount->mnt_flag & (MNT_RDONLY | MNT_EXRDONLY)) {
143145059Smckusick 			switch (vp->v_type) {
143245059Smckusick 			case VREG: case VDIR: case VLNK:
143338450Smckusick 				return (EROFS);
143445059Smckusick 			}
143545059Smckusick 		}
143638450Smckusick 		/*
143738450Smckusick 		 * If there's shared text associated with
143838450Smckusick 		 * the inode, try to free it up once.  If
143938450Smckusick 		 * we fail, we can't allow writing.
144038450Smckusick 		 */
144145918Smckusick #ifdef NVM
144245715Smckusick 		if ((vp->v_flag & VTEXT) && !vnode_pager_uncache(vp))
144338450Smckusick 			return (ETXTBSY);
144445918Smckusick #else
144545918Smckusick 		if (vp->v_flag & VTEXT)
144645918Smckusick 			xrele(vp);
144745918Smckusick 		if (vp->v_flag & VTEXT)
144845918Smckusick 			return (ETXTBSY);
144945918Smckusick #endif
145038450Smckusick 	}
1451*48050Smckusick 	if (error = VOP_GETATTR(vp, &vattr, cred, p))
145245059Smckusick 		return (error);
1453*48050Smckusick 	if ((error = VOP_ACCESS(vp, flags, cred, p)) &&
145445059Smckusick 	    cred->cr_uid != vattr.va_uid)
145545059Smckusick 		return (error);
145645059Smckusick 	return (0);
145738450Smckusick }
1458