141304Smckusick /*
263376Sbostic * Copyright (c) 1982, 1986, 1990, 1993
363376Sbostic * The Regents of the University of California. All rights reserved.
441304Smckusick *
541304Smckusick * This code is derived from software contributed to Berkeley by
641304Smckusick * Robert Elz at The University of Melbourne.
741304Smckusick *
844539Sbostic * %sccs.include.redist.c%
941304Smckusick *
10*65233Smckusick * @(#)ufs_quota.c 8.2 (Berkeley) 12/30/93
1141304Smckusick */
1251512Sbostic #include <sys/param.h>
1351512Sbostic #include <sys/kernel.h>
1451512Sbostic #include <sys/systm.h>
1551512Sbostic #include <sys/namei.h>
1651512Sbostic #include <sys/malloc.h>
1751512Sbostic #include <sys/file.h>
1851512Sbostic #include <sys/proc.h>
1951512Sbostic #include <sys/vnode.h>
2051512Sbostic #include <sys/mount.h>
2141304Smckusick
2251512Sbostic #include <ufs/ufs/quota.h>
2351512Sbostic #include <ufs/ufs/inode.h>
2451512Sbostic #include <ufs/ufs/ufsmount.h>
2551512Sbostic #include <ufs/ufs/ufs_extern.h>
2647571Skarels
2741304Smckusick /*
2841304Smckusick * Quota name to error message mapping.
2941304Smckusick */
3041304Smckusick static char *quotatypes[] = INITQFNAMES;
3141304Smckusick
3241304Smckusick /*
3341304Smckusick * Set up the quotas for an inode.
3441304Smckusick *
3541304Smckusick * This routine completely defines the semantics of quotas.
3641304Smckusick * If other criterion want to be used to establish quotas, the
3741304Smckusick * MAXQUOTAS value in quotas.h should be increased, and the
3841304Smckusick * additional dquots set up here.
3941304Smckusick */
4051512Sbostic int
getinoquota(ip)4141304Smckusick getinoquota(ip)
4241304Smckusick register struct inode *ip;
4341304Smckusick {
4441304Smckusick struct ufsmount *ump;
4541304Smckusick struct vnode *vp = ITOV(ip);
4641304Smckusick int error;
4741304Smckusick
4841304Smckusick ump = VFSTOUFS(vp->v_mount);
4941304Smckusick /*
5041304Smckusick * Set up the user quota based on file uid.
5141304Smckusick * EINVAL means that quotas are not enabled.
5241304Smckusick */
5341304Smckusick if (ip->i_dquot[USRQUOTA] == NODQUOT &&
5441304Smckusick (error =
5541304Smckusick dqget(vp, ip->i_uid, ump, USRQUOTA, &ip->i_dquot[USRQUOTA])) &&
5641304Smckusick error != EINVAL)
5741304Smckusick return (error);
5841304Smckusick /*
5941304Smckusick * Set up the group quota based on file gid.
6041304Smckusick * EINVAL means that quotas are not enabled.
6141304Smckusick */
6241304Smckusick if (ip->i_dquot[GRPQUOTA] == NODQUOT &&
6341304Smckusick (error =
6441304Smckusick dqget(vp, ip->i_gid, ump, GRPQUOTA, &ip->i_dquot[GRPQUOTA])) &&
6541304Smckusick error != EINVAL)
6641304Smckusick return (error);
6741304Smckusick return (0);
6841304Smckusick }
6941304Smckusick
7041304Smckusick /*
7141304Smckusick * Update disk usage, and take corrective action.
7241304Smckusick */
7351512Sbostic int
chkdq(ip,change,cred,flags)7441304Smckusick chkdq(ip, change, cred, flags)
7541304Smckusick register struct inode *ip;
7641304Smckusick long change;
7741304Smckusick struct ucred *cred;
7841304Smckusick int flags;
7941304Smckusick {
8041304Smckusick register struct dquot *dq;
8141304Smckusick register int i;
8241304Smckusick int ncurblocks, error;
8341304Smckusick
8441304Smckusick #ifdef DIAGNOSTIC
8541304Smckusick if ((flags & CHOWN) == 0)
8641304Smckusick chkdquot(ip);
8741304Smckusick #endif
8841304Smckusick if (change == 0)
8941304Smckusick return (0);
9041304Smckusick if (change < 0) {
9141304Smckusick for (i = 0; i < MAXQUOTAS; i++) {
9241304Smckusick if ((dq = ip->i_dquot[i]) == NODQUOT)
9341304Smckusick continue;
9441304Smckusick while (dq->dq_flags & DQ_LOCK) {
9541304Smckusick dq->dq_flags |= DQ_WANT;
9641304Smckusick sleep((caddr_t)dq, PINOD+1);
9741304Smckusick }
9841304Smckusick ncurblocks = dq->dq_curblocks + change;
9941304Smckusick if (ncurblocks >= 0)
10041304Smckusick dq->dq_curblocks = ncurblocks;
10141304Smckusick else
10241304Smckusick dq->dq_curblocks = 0;
10341304Smckusick dq->dq_flags &= ~DQ_BLKS;
10441304Smckusick dq->dq_flags |= DQ_MOD;
10541304Smckusick }
10641304Smckusick return (0);
10741304Smckusick }
10841304Smckusick if ((flags & FORCE) == 0 && cred->cr_uid != 0) {
10941304Smckusick for (i = 0; i < MAXQUOTAS; i++) {
11041304Smckusick if ((dq = ip->i_dquot[i]) == NODQUOT)
11141304Smckusick continue;
11241304Smckusick if (error = chkdqchg(ip, change, cred, i))
11341304Smckusick return (error);
11441304Smckusick }
11541304Smckusick }
11641304Smckusick for (i = 0; i < MAXQUOTAS; i++) {
11741304Smckusick if ((dq = ip->i_dquot[i]) == NODQUOT)
11841304Smckusick continue;
11941304Smckusick while (dq->dq_flags & DQ_LOCK) {
12041304Smckusick dq->dq_flags |= DQ_WANT;
12141304Smckusick sleep((caddr_t)dq, PINOD+1);
12241304Smckusick }
12341304Smckusick dq->dq_curblocks += change;
12441304Smckusick dq->dq_flags |= DQ_MOD;
12541304Smckusick }
12641304Smckusick return (0);
12741304Smckusick }
12841304Smckusick
12941304Smckusick /*
13041304Smckusick * Check for a valid change to a users allocation.
13141304Smckusick * Issue an error message if appropriate.
13241304Smckusick */
13351512Sbostic int
chkdqchg(ip,change,cred,type)13441304Smckusick chkdqchg(ip, change, cred, type)
13541304Smckusick struct inode *ip;
13641304Smckusick long change;
13741304Smckusick struct ucred *cred;
13841304Smckusick int type;
13941304Smckusick {
14041304Smckusick register struct dquot *dq = ip->i_dquot[type];
14141304Smckusick long ncurblocks = dq->dq_curblocks + change;
14241304Smckusick
14341304Smckusick /*
14441304Smckusick * If user would exceed their hard limit, disallow space allocation.
14541304Smckusick */
14641304Smckusick if (ncurblocks >= dq->dq_bhardlimit && dq->dq_bhardlimit) {
14741304Smckusick if ((dq->dq_flags & DQ_BLKS) == 0 &&
14841304Smckusick ip->i_uid == cred->cr_uid) {
14941304Smckusick uprintf("\n%s: write failed, %s disk limit reached\n",
15051512Sbostic ITOV(ip)->v_mount->mnt_stat.f_mntonname,
15151512Sbostic quotatypes[type]);
15241304Smckusick dq->dq_flags |= DQ_BLKS;
15341304Smckusick }
15441304Smckusick return (EDQUOT);
15541304Smckusick }
15641304Smckusick /*
15741304Smckusick * If user is over their soft limit for too long, disallow space
15841304Smckusick * allocation. Reset time limit as they cross their soft limit.
15941304Smckusick */
16041304Smckusick if (ncurblocks >= dq->dq_bsoftlimit && dq->dq_bsoftlimit) {
16141304Smckusick if (dq->dq_curblocks < dq->dq_bsoftlimit) {
16241304Smckusick dq->dq_btime = time.tv_sec +
16341304Smckusick VFSTOUFS(ITOV(ip)->v_mount)->um_btime[type];
16441304Smckusick if (ip->i_uid == cred->cr_uid)
16541304Smckusick uprintf("\n%s: warning, %s %s\n",
16651512Sbostic ITOV(ip)->v_mount->mnt_stat.f_mntonname,
16751512Sbostic quotatypes[type], "disk quota exceeded");
16841304Smckusick return (0);
16941304Smckusick }
17041304Smckusick if (time.tv_sec > dq->dq_btime) {
17141304Smckusick if ((dq->dq_flags & DQ_BLKS) == 0 &&
17241304Smckusick ip->i_uid == cred->cr_uid) {
17341304Smckusick uprintf("\n%s: write failed, %s %s\n",
17451512Sbostic ITOV(ip)->v_mount->mnt_stat.f_mntonname,
17551512Sbostic quotatypes[type],
17651512Sbostic "disk quota exceeded for too long");
17741304Smckusick dq->dq_flags |= DQ_BLKS;
17841304Smckusick }
17941304Smckusick return (EDQUOT);
18041304Smckusick }
18141304Smckusick }
18241304Smckusick return (0);
18341304Smckusick }
18441304Smckusick
18541304Smckusick /*
18641304Smckusick * Check the inode limit, applying corrective action.
18741304Smckusick */
18851512Sbostic int
chkiq(ip,change,cred,flags)18941304Smckusick chkiq(ip, change, cred, flags)
19041304Smckusick register struct inode *ip;
19141304Smckusick long change;
19241304Smckusick struct ucred *cred;
19341304Smckusick int flags;
19441304Smckusick {
19541304Smckusick register struct dquot *dq;
19641304Smckusick register int i;
19741304Smckusick int ncurinodes, error;
19841304Smckusick
19941304Smckusick #ifdef DIAGNOSTIC
20041304Smckusick if ((flags & CHOWN) == 0)
20141304Smckusick chkdquot(ip);
20241304Smckusick #endif
20341304Smckusick if (change == 0)
20441304Smckusick return (0);
20541304Smckusick if (change < 0) {
20641304Smckusick for (i = 0; i < MAXQUOTAS; i++) {
20741304Smckusick if ((dq = ip->i_dquot[i]) == NODQUOT)
20841304Smckusick continue;
20941304Smckusick while (dq->dq_flags & DQ_LOCK) {
21041304Smckusick dq->dq_flags |= DQ_WANT;
21141304Smckusick sleep((caddr_t)dq, PINOD+1);
21241304Smckusick }
21341304Smckusick ncurinodes = dq->dq_curinodes + change;
21441304Smckusick if (ncurinodes >= 0)
21541304Smckusick dq->dq_curinodes = ncurinodes;
21641304Smckusick else
21741304Smckusick dq->dq_curinodes = 0;
21841304Smckusick dq->dq_flags &= ~DQ_INODS;
21941304Smckusick dq->dq_flags |= DQ_MOD;
22041304Smckusick }
22141304Smckusick return (0);
22241304Smckusick }
22341304Smckusick if ((flags & FORCE) == 0 && cred->cr_uid != 0) {
22441304Smckusick for (i = 0; i < MAXQUOTAS; i++) {
22541304Smckusick if ((dq = ip->i_dquot[i]) == NODQUOT)
22641304Smckusick continue;
22741304Smckusick if (error = chkiqchg(ip, change, cred, i))
22841304Smckusick return (error);
22941304Smckusick }
23041304Smckusick }
23141304Smckusick for (i = 0; i < MAXQUOTAS; i++) {
23241304Smckusick if ((dq = ip->i_dquot[i]) == NODQUOT)
23341304Smckusick continue;
23441304Smckusick while (dq->dq_flags & DQ_LOCK) {
23541304Smckusick dq->dq_flags |= DQ_WANT;
23641304Smckusick sleep((caddr_t)dq, PINOD+1);
23741304Smckusick }
23841304Smckusick dq->dq_curinodes += change;
23941304Smckusick dq->dq_flags |= DQ_MOD;
24041304Smckusick }
24141304Smckusick return (0);
24241304Smckusick }
24341304Smckusick
24441304Smckusick /*
24541304Smckusick * Check for a valid change to a users allocation.
24641304Smckusick * Issue an error message if appropriate.
24741304Smckusick */
24851512Sbostic int
chkiqchg(ip,change,cred,type)24941304Smckusick chkiqchg(ip, change, cred, type)
25041304Smckusick struct inode *ip;
25141304Smckusick long change;
25241304Smckusick struct ucred *cred;
25341304Smckusick int type;
25441304Smckusick {
25541304Smckusick register struct dquot *dq = ip->i_dquot[type];
25641304Smckusick long ncurinodes = dq->dq_curinodes + change;
25741304Smckusick
25841304Smckusick /*
25941304Smckusick * If user would exceed their hard limit, disallow inode allocation.
26041304Smckusick */
26141304Smckusick if (ncurinodes >= dq->dq_ihardlimit && dq->dq_ihardlimit) {
26241304Smckusick if ((dq->dq_flags & DQ_INODS) == 0 &&
26341304Smckusick ip->i_uid == cred->cr_uid) {
26441304Smckusick uprintf("\n%s: write failed, %s inode limit reached\n",
26551512Sbostic ITOV(ip)->v_mount->mnt_stat.f_mntonname,
26651512Sbostic quotatypes[type]);
26741304Smckusick dq->dq_flags |= DQ_INODS;
26841304Smckusick }
26941304Smckusick return (EDQUOT);
27041304Smckusick }
27141304Smckusick /*
27241304Smckusick * If user is over their soft limit for too long, disallow inode
27341304Smckusick * allocation. Reset time limit as they cross their soft limit.
27441304Smckusick */
27541304Smckusick if (ncurinodes >= dq->dq_isoftlimit && dq->dq_isoftlimit) {
27641304Smckusick if (dq->dq_curinodes < dq->dq_isoftlimit) {
27741304Smckusick dq->dq_itime = time.tv_sec +
27841304Smckusick VFSTOUFS(ITOV(ip)->v_mount)->um_itime[type];
27941304Smckusick if (ip->i_uid == cred->cr_uid)
28041304Smckusick uprintf("\n%s: warning, %s %s\n",
28151512Sbostic ITOV(ip)->v_mount->mnt_stat.f_mntonname,
28251512Sbostic quotatypes[type], "inode quota exceeded");
28341304Smckusick return (0);
28441304Smckusick }
28541304Smckusick if (time.tv_sec > dq->dq_itime) {
28641304Smckusick if ((dq->dq_flags & DQ_INODS) == 0 &&
28741304Smckusick ip->i_uid == cred->cr_uid) {
28841304Smckusick uprintf("\n%s: write failed, %s %s\n",
28951512Sbostic ITOV(ip)->v_mount->mnt_stat.f_mntonname,
29051512Sbostic quotatypes[type],
29151512Sbostic "inode quota exceeded for too long");
29241304Smckusick dq->dq_flags |= DQ_INODS;
29341304Smckusick }
29441304Smckusick return (EDQUOT);
29541304Smckusick }
29641304Smckusick }
29741304Smckusick return (0);
29841304Smckusick }
29941304Smckusick
30041304Smckusick #ifdef DIAGNOSTIC
30141304Smckusick /*
30251512Sbostic * On filesystems with quotas enabled, it is an error for a file to change
30351512Sbostic * size and not to have a dquot structure associated with it.
30441304Smckusick */
30551512Sbostic void
chkdquot(ip)30641304Smckusick chkdquot(ip)
30741304Smckusick register struct inode *ip;
30841304Smckusick {
30941304Smckusick struct ufsmount *ump = VFSTOUFS(ITOV(ip)->v_mount);
31041304Smckusick register int i;
31141304Smckusick
31241304Smckusick for (i = 0; i < MAXQUOTAS; i++) {
31341304Smckusick if (ump->um_quotas[i] == NULLVP ||
31441304Smckusick (ump->um_qflags[i] & (QTF_OPENING|QTF_CLOSING)))
31541304Smckusick continue;
31641304Smckusick if (ip->i_dquot[i] == NODQUOT) {
31741304Smckusick vprint("chkdquot: missing dquot", ITOV(ip));
31841304Smckusick panic("missing dquot");
31941304Smckusick }
32041304Smckusick }
32141304Smckusick }
32251512Sbostic #endif
32341304Smckusick
32441304Smckusick /*
32541304Smckusick * Code to process quotactl commands.
32641304Smckusick */
32741304Smckusick
32841304Smckusick /*
32941304Smckusick * Q_QUOTAON - set up a quota file for a particular file system.
33041304Smckusick */
33151512Sbostic int
quotaon(p,mp,type,fname)33247571Skarels quotaon(p, mp, type, fname)
33347571Skarels struct proc *p;
33441304Smckusick struct mount *mp;
33541304Smckusick register int type;
33641304Smckusick caddr_t fname;
33741304Smckusick {
33841304Smckusick register struct ufsmount *ump = VFSTOUFS(mp);
33941304Smckusick register struct vnode *vp, **vpp;
34041304Smckusick struct vnode *nextvp;
34141304Smckusick struct dquot *dq;
34241304Smckusick int error;
34347571Skarels struct nameidata nd;
34447571Skarels
34541304Smckusick vpp = &ump->um_quotas[type];
34652335Smckusick NDINIT(&nd, LOOKUP, FOLLOW, UIO_USERSPACE, fname, p);
34752335Smckusick if (error = vn_open(&nd, FREAD|FWRITE, 0))
34841304Smckusick return (error);
34947571Skarels vp = nd.ni_vp;
35049984Smckusick VOP_UNLOCK(vp);
35141304Smckusick if (vp->v_type != VREG) {
35250113Smckusick (void) vn_close(vp, FREAD|FWRITE, p->p_ucred, p);
35341304Smckusick return (EACCES);
35441304Smckusick }
35541304Smckusick if (vfs_busy(mp)) {
35650113Smckusick (void) vn_close(vp, FREAD|FWRITE, p->p_ucred, p);
35741304Smckusick return (EBUSY);
35841304Smckusick }
35941304Smckusick if (*vpp != vp)
36050113Smckusick quotaoff(p, mp, type);
36141304Smckusick ump->um_qflags[type] |= QTF_OPENING;
36241397Smckusick mp->mnt_flag |= MNT_QUOTA;
36341304Smckusick vp->v_flag |= VSYSTEM;
36441304Smckusick *vpp = vp;
36541304Smckusick /*
36641304Smckusick * Save the credential of the process that turned on quotas.
36741304Smckusick * Set up the time limits for this quota.
36841304Smckusick */
36947571Skarels crhold(p->p_ucred);
37047571Skarels ump->um_cred[type] = p->p_ucred;
37141304Smckusick ump->um_btime[type] = MAX_DQ_TIME;
37241304Smckusick ump->um_itime[type] = MAX_IQ_TIME;
37341304Smckusick if (dqget(NULLVP, 0, ump, type, &dq) == 0) {
37441304Smckusick if (dq->dq_btime > 0)
37541304Smckusick ump->um_btime[type] = dq->dq_btime;
37641304Smckusick if (dq->dq_itime > 0)
37741304Smckusick ump->um_itime[type] = dq->dq_itime;
37841304Smckusick dqrele(NULLVP, dq);
37941304Smckusick }
38041304Smckusick /*
38141304Smckusick * Search vnodes associated with this mount point,
38241304Smckusick * adding references to quota file being opened.
38350113Smckusick * NB: only need to add dquot's for inodes being modified.
38441304Smckusick */
38541304Smckusick again:
386*65233Smckusick for (vp = mp->mnt_vnodelist.lh_first; vp != NULL; vp = nextvp) {
387*65233Smckusick nextvp = vp->v_mntvnodes.le_next;
38850113Smckusick if (vp->v_writecount == 0)
38941304Smckusick continue;
390*65233Smckusick if (vget(vp, 1))
39141304Smckusick goto again;
39245156Smckusick if (error = getinoquota(VTOI(vp))) {
39345156Smckusick vput(vp);
39441304Smckusick break;
39545156Smckusick }
39641304Smckusick vput(vp);
397*65233Smckusick if (vp->v_mntvnodes.le_next != nextvp || vp->v_mount != mp)
39841304Smckusick goto again;
39941304Smckusick }
40041304Smckusick ump->um_qflags[type] &= ~QTF_OPENING;
40141304Smckusick if (error)
40250113Smckusick quotaoff(p, mp, type);
40341304Smckusick vfs_unbusy(mp);
40441304Smckusick return (error);
40541304Smckusick }
40641304Smckusick
40741304Smckusick /*
40841304Smckusick * Q_QUOTAOFF - turn off disk quotas for a filesystem.
40941304Smckusick */
41051512Sbostic int
quotaoff(p,mp,type)41150113Smckusick quotaoff(p, mp, type)
41250113Smckusick struct proc *p;
41341304Smckusick struct mount *mp;
41441304Smckusick register int type;
41541304Smckusick {
41641304Smckusick register struct vnode *vp;
41741304Smckusick struct vnode *qvp, *nextvp;
41841304Smckusick struct ufsmount *ump = VFSTOUFS(mp);
41941304Smckusick register struct dquot *dq;
42041304Smckusick register struct inode *ip;
42150113Smckusick int error;
42241304Smckusick
42341397Smckusick if ((mp->mnt_flag & MNT_MPBUSY) == 0)
42441304Smckusick panic("quotaoff: not busy");
42541304Smckusick if ((qvp = ump->um_quotas[type]) == NULLVP)
42641304Smckusick return (0);
42741304Smckusick ump->um_qflags[type] |= QTF_CLOSING;
42841304Smckusick /*
42941304Smckusick * Search vnodes associated with this mount point,
43041304Smckusick * deleting any references to quota file being closed.
43141304Smckusick */
43241304Smckusick again:
433*65233Smckusick for (vp = mp->mnt_vnodelist.lh_first; vp != NULL; vp = nextvp) {
434*65233Smckusick nextvp = vp->v_mntvnodes.le_next;
435*65233Smckusick if (vget(vp, 1))
43641304Smckusick goto again;
43741304Smckusick ip = VTOI(vp);
43841304Smckusick dq = ip->i_dquot[type];
43941304Smckusick ip->i_dquot[type] = NODQUOT;
44041304Smckusick dqrele(vp, dq);
44141304Smckusick vput(vp);
442*65233Smckusick if (vp->v_mntvnodes.le_next != nextvp || vp->v_mount != mp)
44341304Smckusick goto again;
44441304Smckusick }
44541304Smckusick dqflush(qvp);
44641304Smckusick qvp->v_flag &= ~VSYSTEM;
44750113Smckusick error = vn_close(qvp, FREAD|FWRITE, p->p_ucred, p);
44841304Smckusick ump->um_quotas[type] = NULLVP;
44941304Smckusick crfree(ump->um_cred[type]);
45041304Smckusick ump->um_cred[type] = NOCRED;
45141304Smckusick ump->um_qflags[type] &= ~QTF_CLOSING;
45241304Smckusick for (type = 0; type < MAXQUOTAS; type++)
45341304Smckusick if (ump->um_quotas[type] != NULLVP)
45441304Smckusick break;
45541304Smckusick if (type == MAXQUOTAS)
45641397Smckusick mp->mnt_flag &= ~MNT_QUOTA;
45750113Smckusick return (error);
45841304Smckusick }
45941304Smckusick
46041304Smckusick /*
46141304Smckusick * Q_GETQUOTA - return current values in a dqblk structure.
46241304Smckusick */
46351512Sbostic int
getquota(mp,id,type,addr)46441304Smckusick getquota(mp, id, type, addr)
46541304Smckusick struct mount *mp;
46641304Smckusick u_long id;
46741304Smckusick int type;
46841304Smckusick caddr_t addr;
46941304Smckusick {
47041304Smckusick struct dquot *dq;
47141304Smckusick int error;
47241304Smckusick
47341304Smckusick if (error = dqget(NULLVP, id, VFSTOUFS(mp), type, &dq))
47441304Smckusick return (error);
47541304Smckusick error = copyout((caddr_t)&dq->dq_dqb, addr, sizeof (struct dqblk));
47641304Smckusick dqrele(NULLVP, dq);
47741304Smckusick return (error);
47841304Smckusick }
47941304Smckusick
48041304Smckusick /*
48141304Smckusick * Q_SETQUOTA - assign an entire dqblk structure.
48241304Smckusick */
48351512Sbostic int
setquota(mp,id,type,addr)48441304Smckusick setquota(mp, id, type, addr)
48541304Smckusick struct mount *mp;
48641304Smckusick u_long id;
48741304Smckusick int type;
48841304Smckusick caddr_t addr;
48941304Smckusick {
49041304Smckusick register struct dquot *dq;
49141304Smckusick struct dquot *ndq;
49241304Smckusick struct ufsmount *ump = VFSTOUFS(mp);
49341304Smckusick struct dqblk newlim;
49441304Smckusick int error;
49541304Smckusick
49641304Smckusick if (error = copyin(addr, (caddr_t)&newlim, sizeof (struct dqblk)))
49741304Smckusick return (error);
49841304Smckusick if (error = dqget(NULLVP, id, ump, type, &ndq))
49941304Smckusick return (error);
50041304Smckusick dq = ndq;
50141304Smckusick while (dq->dq_flags & DQ_LOCK) {
50241304Smckusick dq->dq_flags |= DQ_WANT;
50341304Smckusick sleep((caddr_t)dq, PINOD+1);
50441304Smckusick }
50541304Smckusick /*
50641304Smckusick * Copy all but the current values.
50741304Smckusick * Reset time limit if previously had no soft limit or were
50841304Smckusick * under it, but now have a soft limit and are over it.
50941304Smckusick */
51041304Smckusick newlim.dqb_curblocks = dq->dq_curblocks;
51141304Smckusick newlim.dqb_curinodes = dq->dq_curinodes;
51241304Smckusick if (dq->dq_id != 0) {
51341304Smckusick newlim.dqb_btime = dq->dq_btime;
51441304Smckusick newlim.dqb_itime = dq->dq_itime;
51541304Smckusick }
51641304Smckusick if (newlim.dqb_bsoftlimit &&
51741304Smckusick dq->dq_curblocks >= newlim.dqb_bsoftlimit &&
51841304Smckusick (dq->dq_bsoftlimit == 0 || dq->dq_curblocks < dq->dq_bsoftlimit))
51941304Smckusick newlim.dqb_btime = time.tv_sec + ump->um_btime[type];
52041304Smckusick if (newlim.dqb_isoftlimit &&
52141304Smckusick dq->dq_curinodes >= newlim.dqb_isoftlimit &&
52241304Smckusick (dq->dq_isoftlimit == 0 || dq->dq_curinodes < dq->dq_isoftlimit))
52341304Smckusick newlim.dqb_itime = time.tv_sec + ump->um_itime[type];
52441304Smckusick dq->dq_dqb = newlim;
52541304Smckusick if (dq->dq_curblocks < dq->dq_bsoftlimit)
52641304Smckusick dq->dq_flags &= ~DQ_BLKS;
52741304Smckusick if (dq->dq_curinodes < dq->dq_isoftlimit)
52841304Smckusick dq->dq_flags &= ~DQ_INODS;
52941304Smckusick if (dq->dq_isoftlimit == 0 && dq->dq_bsoftlimit == 0 &&
53041304Smckusick dq->dq_ihardlimit == 0 && dq->dq_bhardlimit == 0)
53141304Smckusick dq->dq_flags |= DQ_FAKE;
53241304Smckusick else
53341304Smckusick dq->dq_flags &= ~DQ_FAKE;
53441304Smckusick dq->dq_flags |= DQ_MOD;
53541304Smckusick dqrele(NULLVP, dq);
53641304Smckusick return (0);
53741304Smckusick }
53841304Smckusick
53941304Smckusick /*
54041304Smckusick * Q_SETUSE - set current inode and block usage.
54141304Smckusick */
54251512Sbostic int
setuse(mp,id,type,addr)54341304Smckusick setuse(mp, id, type, addr)
54441304Smckusick struct mount *mp;
54541304Smckusick u_long id;
54641304Smckusick int type;
54741304Smckusick caddr_t addr;
54841304Smckusick {
54941304Smckusick register struct dquot *dq;
55041304Smckusick struct ufsmount *ump = VFSTOUFS(mp);
55141304Smckusick struct dquot *ndq;
55241304Smckusick struct dqblk usage;
55341304Smckusick int error;
55441304Smckusick
55541304Smckusick if (error = copyin(addr, (caddr_t)&usage, sizeof (struct dqblk)))
55641304Smckusick return (error);
55741304Smckusick if (error = dqget(NULLVP, id, ump, type, &ndq))
55841304Smckusick return (error);
55941304Smckusick dq = ndq;
56041304Smckusick while (dq->dq_flags & DQ_LOCK) {
56141304Smckusick dq->dq_flags |= DQ_WANT;
56241304Smckusick sleep((caddr_t)dq, PINOD+1);
56341304Smckusick }
56441304Smckusick /*
56541304Smckusick * Reset time limit if have a soft limit and were
56641304Smckusick * previously under it, but are now over it.
56741304Smckusick */
56841304Smckusick if (dq->dq_bsoftlimit && dq->dq_curblocks < dq->dq_bsoftlimit &&
56941304Smckusick usage.dqb_curblocks >= dq->dq_bsoftlimit)
57041304Smckusick dq->dq_btime = time.tv_sec + ump->um_btime[type];
57141304Smckusick if (dq->dq_isoftlimit && dq->dq_curinodes < dq->dq_isoftlimit &&
57241304Smckusick usage.dqb_curinodes >= dq->dq_isoftlimit)
57341304Smckusick dq->dq_itime = time.tv_sec + ump->um_itime[type];
57441304Smckusick dq->dq_curblocks = usage.dqb_curblocks;
57541304Smckusick dq->dq_curinodes = usage.dqb_curinodes;
57641304Smckusick if (dq->dq_curblocks < dq->dq_bsoftlimit)
57741304Smckusick dq->dq_flags &= ~DQ_BLKS;
57841304Smckusick if (dq->dq_curinodes < dq->dq_isoftlimit)
57941304Smckusick dq->dq_flags &= ~DQ_INODS;
58041304Smckusick dq->dq_flags |= DQ_MOD;
58141304Smckusick dqrele(NULLVP, dq);
58241304Smckusick return (0);
58341304Smckusick }
58441304Smckusick
58541304Smckusick /*
58641304Smckusick * Q_SYNC - sync quota files to disk.
58741304Smckusick */
58851512Sbostic int
qsync(mp)58941304Smckusick qsync(mp)
59041304Smckusick struct mount *mp;
59141304Smckusick {
59241304Smckusick struct ufsmount *ump = VFSTOUFS(mp);
59341304Smckusick register struct vnode *vp, *nextvp;
59441304Smckusick register struct dquot *dq;
59541304Smckusick register int i;
59641304Smckusick
59741304Smckusick /*
59850005Smckusick * Check if the mount point has any quotas.
59950005Smckusick * If not, simply return.
60050005Smckusick */
60150005Smckusick if ((mp->mnt_flag & MNT_MPBUSY) == 0)
60250005Smckusick panic("qsync: not busy");
60350005Smckusick for (i = 0; i < MAXQUOTAS; i++)
60450005Smckusick if (ump->um_quotas[i] != NULLVP)
60550005Smckusick break;
60650005Smckusick if (i == MAXQUOTAS)
60750005Smckusick return (0);
60850005Smckusick /*
60941304Smckusick * Search vnodes associated with this mount point,
61041304Smckusick * synchronizing any modified dquot structures.
61141304Smckusick */
61241304Smckusick again:
613*65233Smckusick for (vp = mp->mnt_vnodelist.lh_first; vp != NULL; vp = nextvp) {
614*65233Smckusick nextvp = vp->v_mntvnodes.le_next;
61550005Smckusick if (VOP_ISLOCKED(vp))
61650005Smckusick continue;
617*65233Smckusick if (vget(vp, 1))
61841304Smckusick goto again;
61941304Smckusick for (i = 0; i < MAXQUOTAS; i++) {
62041304Smckusick dq = VTOI(vp)->i_dquot[i];
62141304Smckusick if (dq != NODQUOT && (dq->dq_flags & DQ_MOD))
62241304Smckusick dqsync(vp, dq);
62341304Smckusick }
62441304Smckusick vput(vp);
625*65233Smckusick if (vp->v_mntvnodes.le_next != nextvp || vp->v_mount != mp)
62641304Smckusick goto again;
62741304Smckusick }
62841304Smckusick return (0);
62941304Smckusick }
63041304Smckusick
63141304Smckusick /*
63241304Smckusick * Code pertaining to management of the in-core dquot data structures.
63341304Smckusick */
63455545Smckusick struct dquot **dqhashtbl;
63555545Smckusick u_long dqhash;
63641304Smckusick
63741304Smckusick /*
63841304Smckusick * Dquot free list.
63941304Smckusick */
64041304Smckusick #define DQUOTINC 5 /* minimum free dquots desired */
64141304Smckusick struct dquot *dqfreel, **dqback = &dqfreel;
64241304Smckusick long numdquot, desireddquot = DQUOTINC;
64341304Smckusick
64441304Smckusick /*
64541304Smckusick * Initialize the quota system.
64641304Smckusick */
64751512Sbostic void
dqinit()64841304Smckusick dqinit()
64941304Smckusick {
65041304Smckusick
65155545Smckusick dqhashtbl = hashinit(desiredvnodes, M_DQUOT, &dqhash);
65241304Smckusick }
65341304Smckusick
65441304Smckusick /*
65541304Smckusick * Obtain a dquot structure for the specified identifier and quota file
65641304Smckusick * reading the information from the file if necessary.
65741304Smckusick */
65851512Sbostic int
dqget(vp,id,ump,type,dqp)65941304Smckusick dqget(vp, id, ump, type, dqp)
66041304Smckusick struct vnode *vp;
66141304Smckusick u_long id;
66241304Smckusick register struct ufsmount *ump;
66341304Smckusick register int type;
66441304Smckusick struct dquot **dqp;
66541304Smckusick {
66655545Smckusick register struct dquot *dq, *dp, **dpp;
66741304Smckusick register struct vnode *dqvp;
66841304Smckusick struct iovec aiov;
66941304Smckusick struct uio auio;
67041304Smckusick int error;
67141304Smckusick
67241304Smckusick dqvp = ump->um_quotas[type];
67341304Smckusick if (dqvp == NULLVP || (ump->um_qflags[type] & QTF_CLOSING)) {
67441304Smckusick *dqp = NODQUOT;
67541304Smckusick return (EINVAL);
67641304Smckusick }
67741304Smckusick /*
67841304Smckusick * Check the cache first.
67941304Smckusick */
68055545Smckusick dpp = &dqhashtbl[((((int)(dqvp)) >> 8) + id) & dqhash];
68155545Smckusick for (dq = *dpp; dq; dq = dq->dq_forw) {
68241304Smckusick if (dq->dq_id != id ||
68341304Smckusick dq->dq_ump->um_quotas[dq->dq_type] != dqvp)
68441304Smckusick continue;
68541304Smckusick /*
68641304Smckusick * Cache hit with no references. Take
68741304Smckusick * the structure off the free list.
68841304Smckusick */
68941304Smckusick if (dq->dq_cnt == 0) {
69055545Smckusick if ((dp = dq->dq_freef) != NODQUOT)
69141304Smckusick dp->dq_freeb = dq->dq_freeb;
69241304Smckusick else
69341304Smckusick dqback = dq->dq_freeb;
69441304Smckusick *dq->dq_freeb = dp;
69541304Smckusick }
69641304Smckusick DQREF(dq);
69741304Smckusick *dqp = dq;
69841304Smckusick return (0);
69941304Smckusick }
70041304Smckusick /*
70141304Smckusick * Not in cache, allocate a new one.
70241304Smckusick */
70341304Smckusick if (dqfreel == NODQUOT && numdquot < MAXQUOTAS * desiredvnodes)
70441304Smckusick desireddquot += DQUOTINC;
70541304Smckusick if (numdquot < desireddquot) {
70641304Smckusick dq = (struct dquot *)malloc(sizeof *dq, M_DQUOT, M_WAITOK);
70741304Smckusick bzero((char *)dq, sizeof *dq);
70841304Smckusick numdquot++;
70941304Smckusick } else {
71041304Smckusick if ((dq = dqfreel) == NULL) {
71141304Smckusick tablefull("dquot");
71241304Smckusick *dqp = NODQUOT;
71341304Smckusick return (EUSERS);
71441304Smckusick }
71541304Smckusick if (dq->dq_cnt || (dq->dq_flags & DQ_MOD))
71641304Smckusick panic("free dquot isn't");
71741304Smckusick if ((dp = dq->dq_freef) != NODQUOT)
71841304Smckusick dp->dq_freeb = &dqfreel;
71941304Smckusick else
72041304Smckusick dqback = &dqfreel;
72141304Smckusick dqfreel = dp;
72241304Smckusick dq->dq_freef = NULL;
72341304Smckusick dq->dq_freeb = NULL;
72455545Smckusick if (dp = dq->dq_forw)
72555545Smckusick dp->dq_back = dq->dq_back;
72655545Smckusick *dq->dq_back = dp;
72741304Smckusick }
72841304Smckusick /*
72941304Smckusick * Initialize the contents of the dquot structure.
73041304Smckusick */
73141304Smckusick if (vp != dqvp)
73241304Smckusick VOP_LOCK(dqvp);
73355545Smckusick if (dp = *dpp)
73455545Smckusick dp->dq_back = &dq->dq_forw;
73555545Smckusick dq->dq_forw = dp;
73655545Smckusick dq->dq_back = dpp;
73755545Smckusick *dpp = dq;
73841304Smckusick DQREF(dq);
73941304Smckusick dq->dq_flags = DQ_LOCK;
74041304Smckusick dq->dq_id = id;
74141304Smckusick dq->dq_ump = ump;
74241304Smckusick dq->dq_type = type;
74341304Smckusick auio.uio_iov = &aiov;
74441304Smckusick auio.uio_iovcnt = 1;
74541304Smckusick aiov.iov_base = (caddr_t)&dq->dq_dqb;
74641304Smckusick aiov.iov_len = sizeof (struct dqblk);
74741304Smckusick auio.uio_resid = sizeof (struct dqblk);
74841304Smckusick auio.uio_offset = (off_t)(id * sizeof (struct dqblk));
74941304Smckusick auio.uio_segflg = UIO_SYSSPACE;
75041304Smckusick auio.uio_rw = UIO_READ;
75148034Smckusick auio.uio_procp = (struct proc *)0;
75241304Smckusick error = VOP_READ(dqvp, &auio, 0, ump->um_cred[type]);
75343287Smckusick if (auio.uio_resid == sizeof(struct dqblk) && error == 0)
75443287Smckusick bzero((caddr_t)&dq->dq_dqb, sizeof(struct dqblk));
75541304Smckusick if (vp != dqvp)
75641304Smckusick VOP_UNLOCK(dqvp);
75741304Smckusick if (dq->dq_flags & DQ_WANT)
75841304Smckusick wakeup((caddr_t)dq);
75941304Smckusick dq->dq_flags = 0;
76041304Smckusick /*
76141304Smckusick * I/O error in reading quota file, release
76241304Smckusick * quota structure and reflect problem to caller.
76341304Smckusick */
76441304Smckusick if (error) {
76555545Smckusick if (dp = dq->dq_forw)
76655545Smckusick dp->dq_back = dq->dq_back;
76755545Smckusick *dq->dq_back = dp;
76855545Smckusick dq->dq_forw = NULL;
76955545Smckusick dq->dq_back = NULL;
77041304Smckusick dqrele(vp, dq);
77141304Smckusick *dqp = NODQUOT;
77241304Smckusick return (error);
77341304Smckusick }
77441304Smckusick /*
77541304Smckusick * Check for no limit to enforce.
77641304Smckusick * Initialize time values if necessary.
77741304Smckusick */
77841304Smckusick if (dq->dq_isoftlimit == 0 && dq->dq_bsoftlimit == 0 &&
77941304Smckusick dq->dq_ihardlimit == 0 && dq->dq_bhardlimit == 0)
78041304Smckusick dq->dq_flags |= DQ_FAKE;
78141304Smckusick if (dq->dq_id != 0) {
78241304Smckusick if (dq->dq_btime == 0)
78341304Smckusick dq->dq_btime = time.tv_sec + ump->um_btime[type];
78441304Smckusick if (dq->dq_itime == 0)
78541304Smckusick dq->dq_itime = time.tv_sec + ump->um_itime[type];
78641304Smckusick }
78741304Smckusick *dqp = dq;
78841304Smckusick return (0);
78941304Smckusick }
79041304Smckusick
79141304Smckusick /*
79241304Smckusick * Obtain a reference to a dquot.
79341304Smckusick */
79451512Sbostic void
dqref(dq)79541304Smckusick dqref(dq)
79641304Smckusick struct dquot *dq;
79741304Smckusick {
79841304Smckusick
79941304Smckusick dq->dq_cnt++;
80041304Smckusick }
80141304Smckusick
80241304Smckusick /*
80341304Smckusick * Release a reference to a dquot.
80441304Smckusick */
80551512Sbostic void
dqrele(vp,dq)80641304Smckusick dqrele(vp, dq)
80741304Smckusick struct vnode *vp;
80841304Smckusick register struct dquot *dq;
80941304Smckusick {
81041304Smckusick
81141304Smckusick if (dq == NODQUOT)
81241304Smckusick return;
81341304Smckusick if (dq->dq_cnt > 1) {
81441304Smckusick dq->dq_cnt--;
81541304Smckusick return;
81641304Smckusick }
81741304Smckusick if (dq->dq_flags & DQ_MOD)
81841304Smckusick (void) dqsync(vp, dq);
81941304Smckusick if (--dq->dq_cnt > 0)
82041304Smckusick return;
82141304Smckusick if (dqfreel != NODQUOT) {
82241304Smckusick *dqback = dq;
82341304Smckusick dq->dq_freeb = dqback;
82441304Smckusick } else {
82541304Smckusick dqfreel = dq;
82641304Smckusick dq->dq_freeb = &dqfreel;
82741304Smckusick }
82841304Smckusick dq->dq_freef = NODQUOT;
82941304Smckusick dqback = &dq->dq_freef;
83041304Smckusick }
83141304Smckusick
83241304Smckusick /*
83341304Smckusick * Update the disk quota in the quota file.
83441304Smckusick */
83551512Sbostic int
dqsync(vp,dq)83641304Smckusick dqsync(vp, dq)
83741304Smckusick struct vnode *vp;
83841304Smckusick register struct dquot *dq;
83941304Smckusick {
84041304Smckusick struct vnode *dqvp;
84141304Smckusick struct iovec aiov;
84241304Smckusick struct uio auio;
84341304Smckusick int error;
84441304Smckusick
84541304Smckusick if (dq == NODQUOT)
84641304Smckusick panic("dqsync: dquot");
84741304Smckusick if ((dq->dq_flags & DQ_MOD) == 0)
84841304Smckusick return (0);
84941304Smckusick if ((dqvp = dq->dq_ump->um_quotas[dq->dq_type]) == NULLVP)
85041304Smckusick panic("dqsync: file");
85141304Smckusick if (vp != dqvp)
85241304Smckusick VOP_LOCK(dqvp);
85341304Smckusick while (dq->dq_flags & DQ_LOCK) {
85441304Smckusick dq->dq_flags |= DQ_WANT;
85541304Smckusick sleep((caddr_t)dq, PINOD+2);
85645557Smckusick if ((dq->dq_flags & DQ_MOD) == 0) {
85745557Smckusick if (vp != dqvp)
85845557Smckusick VOP_UNLOCK(dqvp);
85941304Smckusick return (0);
86045557Smckusick }
86141304Smckusick }
86241304Smckusick dq->dq_flags |= DQ_LOCK;
86341304Smckusick auio.uio_iov = &aiov;
86441304Smckusick auio.uio_iovcnt = 1;
86541304Smckusick aiov.iov_base = (caddr_t)&dq->dq_dqb;
86641304Smckusick aiov.iov_len = sizeof (struct dqblk);
86741304Smckusick auio.uio_resid = sizeof (struct dqblk);
86841304Smckusick auio.uio_offset = (off_t)(dq->dq_id * sizeof (struct dqblk));
86941304Smckusick auio.uio_segflg = UIO_SYSSPACE;
87041304Smckusick auio.uio_rw = UIO_WRITE;
87148034Smckusick auio.uio_procp = (struct proc *)0;
87241304Smckusick error = VOP_WRITE(dqvp, &auio, 0, dq->dq_ump->um_cred[dq->dq_type]);
87341304Smckusick if (auio.uio_resid && error == 0)
87441304Smckusick error = EIO;
87541304Smckusick if (dq->dq_flags & DQ_WANT)
87641304Smckusick wakeup((caddr_t)dq);
87741304Smckusick dq->dq_flags &= ~(DQ_MOD|DQ_LOCK|DQ_WANT);
87841304Smckusick if (vp != dqvp)
87941304Smckusick VOP_UNLOCK(dqvp);
88041304Smckusick return (error);
88141304Smckusick }
88241304Smckusick
88341304Smckusick /*
88441304Smckusick * Flush all entries from the cache for a particular vnode.
88541304Smckusick */
88651512Sbostic void
dqflush(vp)88741304Smckusick dqflush(vp)
88841304Smckusick register struct vnode *vp;
88941304Smckusick {
89055545Smckusick register struct dquot *dq, *dp, **dpp, *nextdq;
89141304Smckusick
89241304Smckusick /*
89341304Smckusick * Move all dquot's that used to refer to this quota
89441304Smckusick * file off their hash chains (they will eventually
89541304Smckusick * fall off the head of the free list and be re-used).
89641304Smckusick */
89755545Smckusick for (dpp = &dqhashtbl[dqhash]; dpp >= dqhashtbl; dpp--) {
89855545Smckusick for (dq = *dpp; dq; dq = nextdq) {
89941304Smckusick nextdq = dq->dq_forw;
90041304Smckusick if (dq->dq_ump->um_quotas[dq->dq_type] != vp)
90141304Smckusick continue;
90241304Smckusick if (dq->dq_cnt)
90341304Smckusick panic("dqflush: stray dquot");
90455545Smckusick if (dp = dq->dq_forw)
90555545Smckusick dp->dq_back = dq->dq_back;
90655545Smckusick *dq->dq_back = dp;
90755545Smckusick dq->dq_forw = NULL;
90855545Smckusick dq->dq_back = NULL;
90941304Smckusick dq->dq_ump = (struct ufsmount *)0;
91041304Smckusick }
91141304Smckusick }
91241304Smckusick }
913