xref: /freebsd-src/sys/contrib/openzfs/lib/libshare/os/linux/nfs.c (revision 716fd348e01c5f2ba125f878a634a753436c2994)
1eda14cbcSMatt Macy /*
2eda14cbcSMatt Macy  * CDDL HEADER START
3eda14cbcSMatt Macy  *
4eda14cbcSMatt Macy  * The contents of this file are subject to the terms of the
5eda14cbcSMatt Macy  * Common Development and Distribution License (the "License").
6eda14cbcSMatt Macy  * You may not use this file except in compliance with the License.
7eda14cbcSMatt Macy  *
8eda14cbcSMatt Macy  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
9eda14cbcSMatt Macy  * or http://www.opensolaris.org/os/licensing.
10eda14cbcSMatt Macy  * See the License for the specific language governing permissions
11eda14cbcSMatt Macy  * and limitations under the License.
12eda14cbcSMatt Macy  *
13eda14cbcSMatt Macy  * When distributing Covered Code, include this CDDL HEADER in each
14eda14cbcSMatt Macy  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
15eda14cbcSMatt Macy  * If applicable, add the following below this CDDL HEADER, with the
16eda14cbcSMatt Macy  * fields enclosed by brackets "[]" replaced with your own identifying
17eda14cbcSMatt Macy  * information: Portions Copyright [yyyy] [name of copyright owner]
18eda14cbcSMatt Macy  *
19eda14cbcSMatt Macy  * CDDL HEADER END
20eda14cbcSMatt Macy  */
21eda14cbcSMatt Macy 
22eda14cbcSMatt Macy /*
23eda14cbcSMatt Macy  * Copyright (c) 2002, 2010, Oracle and/or its affiliates. All rights reserved.
24eda14cbcSMatt Macy  * Copyright (c) 2011 Gunnar Beutner
25eda14cbcSMatt Macy  * Copyright (c) 2012 Cyril Plisko. All rights reserved.
26eda14cbcSMatt Macy  * Copyright (c) 2019, 2020 by Delphix. All rights reserved.
27eda14cbcSMatt Macy  */
28eda14cbcSMatt Macy 
29eda14cbcSMatt Macy #include <dirent.h>
30eda14cbcSMatt Macy #include <stdio.h>
31eda14cbcSMatt Macy #include <string.h>
32eda14cbcSMatt Macy #include <errno.h>
332c48331dSMatt Macy #include <fcntl.h>
34eda14cbcSMatt Macy #include <sys/file.h>
35eda14cbcSMatt Macy #include <sys/stat.h>
36eda14cbcSMatt Macy #include <sys/types.h>
37eda14cbcSMatt Macy #include <sys/wait.h>
38eda14cbcSMatt Macy #include <unistd.h>
39eda14cbcSMatt Macy #include <libzfs.h>
40eda14cbcSMatt Macy #include <libshare.h>
41eda14cbcSMatt Macy #include "libshare_impl.h"
42eda14cbcSMatt Macy #include "nfs.h"
43eda14cbcSMatt Macy 
44eda14cbcSMatt Macy #define	ZFS_EXPORTS_DIR		"/etc/exports.d"
45eda14cbcSMatt Macy #define	ZFS_EXPORTS_FILE	ZFS_EXPORTS_DIR"/zfs.exports"
46eda14cbcSMatt Macy #define	ZFS_EXPORTS_LOCK	ZFS_EXPORTS_FILE".lock"
47eda14cbcSMatt Macy 
48*716fd348SMartin Matuska 
49*716fd348SMartin Matuska static boolean_t nfs_available(void);
50eda14cbcSMatt Macy 
51eda14cbcSMatt Macy typedef int (*nfs_shareopt_callback_t)(const char *opt, const char *value,
52eda14cbcSMatt Macy     void *cookie);
53eda14cbcSMatt Macy 
54e92ffd9bSMartin Matuska typedef int (*nfs_host_callback_t)(FILE *tmpfile, const char *sharepath,
55eda14cbcSMatt Macy     const char *host, const char *security, const char *access, void *cookie);
56eda14cbcSMatt Macy 
57eda14cbcSMatt Macy /*
58eda14cbcSMatt Macy  * Invokes the specified callback function for each Solaris share option
59eda14cbcSMatt Macy  * listed in the specified string.
60eda14cbcSMatt Macy  */
61eda14cbcSMatt Macy static int
62eda14cbcSMatt Macy foreach_nfs_shareopt(const char *shareopts,
63eda14cbcSMatt Macy     nfs_shareopt_callback_t callback, void *cookie)
64eda14cbcSMatt Macy {
65eda14cbcSMatt Macy 	char *shareopts_dup, *opt, *cur, *value;
66eda14cbcSMatt Macy 	int was_nul, error;
67eda14cbcSMatt Macy 
68eda14cbcSMatt Macy 	if (shareopts == NULL)
69eda14cbcSMatt Macy 		return (SA_OK);
70eda14cbcSMatt Macy 
71eda14cbcSMatt Macy 	if (strcmp(shareopts, "on") == 0)
72eda14cbcSMatt Macy 		shareopts = "rw,crossmnt";
73eda14cbcSMatt Macy 
74eda14cbcSMatt Macy 	shareopts_dup = strdup(shareopts);
75eda14cbcSMatt Macy 
76eda14cbcSMatt Macy 
77eda14cbcSMatt Macy 	if (shareopts_dup == NULL)
78eda14cbcSMatt Macy 		return (SA_NO_MEMORY);
79eda14cbcSMatt Macy 
80eda14cbcSMatt Macy 	opt = shareopts_dup;
81eda14cbcSMatt Macy 	was_nul = 0;
82eda14cbcSMatt Macy 
83eda14cbcSMatt Macy 	while (1) {
84eda14cbcSMatt Macy 		cur = opt;
85eda14cbcSMatt Macy 
86eda14cbcSMatt Macy 		while (*cur != ',' && *cur != '\0')
87eda14cbcSMatt Macy 			cur++;
88eda14cbcSMatt Macy 
89eda14cbcSMatt Macy 		if (*cur == '\0')
90eda14cbcSMatt Macy 			was_nul = 1;
91eda14cbcSMatt Macy 
92eda14cbcSMatt Macy 		*cur = '\0';
93eda14cbcSMatt Macy 
94eda14cbcSMatt Macy 		if (cur > opt) {
95eda14cbcSMatt Macy 			value = strchr(opt, '=');
96eda14cbcSMatt Macy 
97eda14cbcSMatt Macy 			if (value != NULL) {
98eda14cbcSMatt Macy 				*value = '\0';
99eda14cbcSMatt Macy 				value++;
100eda14cbcSMatt Macy 			}
101eda14cbcSMatt Macy 
102eda14cbcSMatt Macy 			error = callback(opt, value, cookie);
103eda14cbcSMatt Macy 
104eda14cbcSMatt Macy 			if (error != SA_OK) {
105eda14cbcSMatt Macy 				free(shareopts_dup);
106eda14cbcSMatt Macy 				return (error);
107eda14cbcSMatt Macy 			}
108eda14cbcSMatt Macy 		}
109eda14cbcSMatt Macy 
110eda14cbcSMatt Macy 		opt = cur + 1;
111eda14cbcSMatt Macy 
112eda14cbcSMatt Macy 		if (was_nul)
113eda14cbcSMatt Macy 			break;
114eda14cbcSMatt Macy 	}
115eda14cbcSMatt Macy 
116eda14cbcSMatt Macy 	free(shareopts_dup);
117eda14cbcSMatt Macy 
118eda14cbcSMatt Macy 	return (SA_OK);
119eda14cbcSMatt Macy }
120eda14cbcSMatt Macy 
121eda14cbcSMatt Macy typedef struct nfs_host_cookie_s {
122eda14cbcSMatt Macy 	nfs_host_callback_t callback;
123eda14cbcSMatt Macy 	const char *sharepath;
124eda14cbcSMatt Macy 	void *cookie;
125e92ffd9bSMartin Matuska 	FILE *tmpfile;
126eda14cbcSMatt Macy 	const char *security;
127eda14cbcSMatt Macy } nfs_host_cookie_t;
128eda14cbcSMatt Macy 
129eda14cbcSMatt Macy /*
130eda14cbcSMatt Macy  * Helper function for foreach_nfs_host. This function checks whether the
131eda14cbcSMatt Macy  * current share option is a host specification and invokes a callback
132eda14cbcSMatt Macy  * function with information about the host.
133eda14cbcSMatt Macy  */
134eda14cbcSMatt Macy static int
135eda14cbcSMatt Macy foreach_nfs_host_cb(const char *opt, const char *value, void *pcookie)
136eda14cbcSMatt Macy {
137eda14cbcSMatt Macy 	int error;
138eda14cbcSMatt Macy 	const char *access;
1396ba2210eSMartin Matuska 	char *host_dup, *host, *next, *v6Literal;
140eda14cbcSMatt Macy 	nfs_host_cookie_t *udata = (nfs_host_cookie_t *)pcookie;
1416ba2210eSMartin Matuska 	int cidr_len;
142eda14cbcSMatt Macy 
143eda14cbcSMatt Macy #ifdef DEBUG
144eda14cbcSMatt Macy 	fprintf(stderr, "foreach_nfs_host_cb: key=%s, value=%s\n", opt, value);
145eda14cbcSMatt Macy #endif
146eda14cbcSMatt Macy 
147eda14cbcSMatt Macy 	if (strcmp(opt, "sec") == 0)
148eda14cbcSMatt Macy 		udata->security = value;
149eda14cbcSMatt Macy 
150eda14cbcSMatt Macy 	if (strcmp(opt, "rw") == 0 || strcmp(opt, "ro") == 0) {
151eda14cbcSMatt Macy 		if (value == NULL)
152eda14cbcSMatt Macy 			value = "*";
153eda14cbcSMatt Macy 
154eda14cbcSMatt Macy 		access = opt;
155eda14cbcSMatt Macy 
156eda14cbcSMatt Macy 		host_dup = strdup(value);
157eda14cbcSMatt Macy 
158eda14cbcSMatt Macy 		if (host_dup == NULL)
159eda14cbcSMatt Macy 			return (SA_NO_MEMORY);
160eda14cbcSMatt Macy 
161eda14cbcSMatt Macy 		host = host_dup;
162eda14cbcSMatt Macy 
163eda14cbcSMatt Macy 		do {
1646ba2210eSMartin Matuska 			if (*host == '[') {
1656ba2210eSMartin Matuska 				host++;
1666ba2210eSMartin Matuska 				v6Literal = strchr(host, ']');
1676ba2210eSMartin Matuska 				if (v6Literal == NULL) {
1686ba2210eSMartin Matuska 					free(host_dup);
1696ba2210eSMartin Matuska 					return (SA_SYNTAX_ERR);
1706ba2210eSMartin Matuska 				}
1716ba2210eSMartin Matuska 				if (v6Literal[1] == '\0') {
1726ba2210eSMartin Matuska 					*v6Literal = '\0';
1736ba2210eSMartin Matuska 					next = NULL;
1746ba2210eSMartin Matuska 				} else if (v6Literal[1] == '/') {
1756ba2210eSMartin Matuska 					next = strchr(v6Literal + 2, ':');
1766ba2210eSMartin Matuska 					if (next == NULL) {
1776ba2210eSMartin Matuska 						cidr_len =
1786ba2210eSMartin Matuska 						    strlen(v6Literal + 1);
1796ba2210eSMartin Matuska 						memmove(v6Literal,
1806ba2210eSMartin Matuska 						    v6Literal + 1,
1816ba2210eSMartin Matuska 						    cidr_len);
1826ba2210eSMartin Matuska 						v6Literal[cidr_len] = '\0';
1836ba2210eSMartin Matuska 					} else {
1846ba2210eSMartin Matuska 						cidr_len = next - v6Literal - 1;
1856ba2210eSMartin Matuska 						memmove(v6Literal,
1866ba2210eSMartin Matuska 						    v6Literal + 1,
1876ba2210eSMartin Matuska 						    cidr_len);
1886ba2210eSMartin Matuska 						v6Literal[cidr_len] = '\0';
1896ba2210eSMartin Matuska 						next++;
1906ba2210eSMartin Matuska 					}
1916ba2210eSMartin Matuska 				} else if (v6Literal[1] == ':') {
1926ba2210eSMartin Matuska 					*v6Literal = '\0';
1936ba2210eSMartin Matuska 					next = v6Literal + 2;
1946ba2210eSMartin Matuska 				} else {
1956ba2210eSMartin Matuska 					free(host_dup);
1966ba2210eSMartin Matuska 					return (SA_SYNTAX_ERR);
1976ba2210eSMartin Matuska 				}
1986ba2210eSMartin Matuska 			} else {
199eda14cbcSMatt Macy 				next = strchr(host, ':');
200eda14cbcSMatt Macy 				if (next != NULL) {
201eda14cbcSMatt Macy 					*next = '\0';
202eda14cbcSMatt Macy 					next++;
203eda14cbcSMatt Macy 				}
2046ba2210eSMartin Matuska 			}
205eda14cbcSMatt Macy 
206e92ffd9bSMartin Matuska 			error = udata->callback(udata->tmpfile,
207eda14cbcSMatt Macy 			    udata->sharepath, host, udata->security,
208eda14cbcSMatt Macy 			    access, udata->cookie);
209eda14cbcSMatt Macy 
210eda14cbcSMatt Macy 			if (error != SA_OK) {
211eda14cbcSMatt Macy 				free(host_dup);
212eda14cbcSMatt Macy 
213eda14cbcSMatt Macy 				return (error);
214eda14cbcSMatt Macy 			}
215eda14cbcSMatt Macy 
216eda14cbcSMatt Macy 			host = next;
217eda14cbcSMatt Macy 		} while (host != NULL);
218eda14cbcSMatt Macy 
219eda14cbcSMatt Macy 		free(host_dup);
220eda14cbcSMatt Macy 	}
221eda14cbcSMatt Macy 
222eda14cbcSMatt Macy 	return (SA_OK);
223eda14cbcSMatt Macy }
224eda14cbcSMatt Macy 
225eda14cbcSMatt Macy /*
226eda14cbcSMatt Macy  * Invokes a callback function for all NFS hosts that are set for a share.
227eda14cbcSMatt Macy  */
228eda14cbcSMatt Macy static int
229e92ffd9bSMartin Matuska foreach_nfs_host(sa_share_impl_t impl_share, FILE *tmpfile,
230eda14cbcSMatt Macy     nfs_host_callback_t callback, void *cookie)
231eda14cbcSMatt Macy {
232eda14cbcSMatt Macy 	nfs_host_cookie_t udata;
233eda14cbcSMatt Macy 
234eda14cbcSMatt Macy 	udata.callback = callback;
235eda14cbcSMatt Macy 	udata.sharepath = impl_share->sa_mountpoint;
236eda14cbcSMatt Macy 	udata.cookie = cookie;
237e92ffd9bSMartin Matuska 	udata.tmpfile = tmpfile;
238eda14cbcSMatt Macy 	udata.security = "sys";
239eda14cbcSMatt Macy 
240*716fd348SMartin Matuska 	return (foreach_nfs_shareopt(impl_share->sa_shareopts,
241*716fd348SMartin Matuska 	    foreach_nfs_host_cb, &udata));
242eda14cbcSMatt Macy }
243eda14cbcSMatt Macy 
244eda14cbcSMatt Macy /*
245eda14cbcSMatt Macy  * Converts a Solaris NFS host specification to its Linux equivalent.
246eda14cbcSMatt Macy  */
247e92ffd9bSMartin Matuska static const char *
248e92ffd9bSMartin Matuska get_linux_hostspec(const char *solaris_hostspec)
249eda14cbcSMatt Macy {
250eda14cbcSMatt Macy 	/*
251eda14cbcSMatt Macy 	 * For now we just support CIDR masks (e.g. @192.168.0.0/16) and host
252eda14cbcSMatt Macy 	 * wildcards (e.g. *.example.org).
253eda14cbcSMatt Macy 	 */
254eda14cbcSMatt Macy 	if (solaris_hostspec[0] == '@') {
255eda14cbcSMatt Macy 		/*
256eda14cbcSMatt Macy 		 * Solaris host specifier, e.g. @192.168.0.0/16; we just need
257eda14cbcSMatt Macy 		 * to skip the @ in this case
258eda14cbcSMatt Macy 		 */
259e92ffd9bSMartin Matuska 		return (solaris_hostspec + 1);
260eda14cbcSMatt Macy 	} else {
261e92ffd9bSMartin Matuska 		return (solaris_hostspec);
262eda14cbcSMatt Macy 	}
263eda14cbcSMatt Macy }
264eda14cbcSMatt Macy 
265eda14cbcSMatt Macy /*
266eda14cbcSMatt Macy  * Adds a Linux share option to an array of NFS options.
267eda14cbcSMatt Macy  */
268eda14cbcSMatt Macy static int
269eda14cbcSMatt Macy add_linux_shareopt(char **plinux_opts, const char *key, const char *value)
270eda14cbcSMatt Macy {
271eda14cbcSMatt Macy 	size_t len = 0;
272eda14cbcSMatt Macy 	char *new_linux_opts;
273eda14cbcSMatt Macy 
274eda14cbcSMatt Macy 	if (*plinux_opts != NULL)
275eda14cbcSMatt Macy 		len = strlen(*plinux_opts);
276eda14cbcSMatt Macy 
277eda14cbcSMatt Macy 	new_linux_opts = realloc(*plinux_opts, len + 1 + strlen(key) +
278eda14cbcSMatt Macy 	    (value ? 1 + strlen(value) : 0) + 1);
279eda14cbcSMatt Macy 
280eda14cbcSMatt Macy 	if (new_linux_opts == NULL)
281eda14cbcSMatt Macy 		return (SA_NO_MEMORY);
282eda14cbcSMatt Macy 
283eda14cbcSMatt Macy 	new_linux_opts[len] = '\0';
284eda14cbcSMatt Macy 
285eda14cbcSMatt Macy 	if (len > 0)
286eda14cbcSMatt Macy 		strcat(new_linux_opts, ",");
287eda14cbcSMatt Macy 
288eda14cbcSMatt Macy 	strcat(new_linux_opts, key);
289eda14cbcSMatt Macy 
290eda14cbcSMatt Macy 	if (value != NULL) {
291eda14cbcSMatt Macy 		strcat(new_linux_opts, "=");
292eda14cbcSMatt Macy 		strcat(new_linux_opts, value);
293eda14cbcSMatt Macy 	}
294eda14cbcSMatt Macy 
295eda14cbcSMatt Macy 	*plinux_opts = new_linux_opts;
296eda14cbcSMatt Macy 
297eda14cbcSMatt Macy 	return (SA_OK);
298eda14cbcSMatt Macy }
299eda14cbcSMatt Macy 
300*716fd348SMartin Matuska static int string_cmp(const void *lhs, const void *rhs) {
301*716fd348SMartin Matuska 	const char *const *l = lhs, *const *r = rhs;
302*716fd348SMartin Matuska 	return (strcmp(*l, *r));
303*716fd348SMartin Matuska }
304*716fd348SMartin Matuska 
305eda14cbcSMatt Macy /*
306eda14cbcSMatt Macy  * Validates and converts a single Solaris share option to its Linux
307eda14cbcSMatt Macy  * equivalent.
308eda14cbcSMatt Macy  */
309eda14cbcSMatt Macy static int
310eda14cbcSMatt Macy get_linux_shareopts_cb(const char *key, const char *value, void *cookie)
311eda14cbcSMatt Macy {
312*716fd348SMartin Matuska 	/* This list must remain sorted, since we bsearch() it */
313*716fd348SMartin Matuska 	static const char *const valid_keys[] = { "all_squash", "anongid",
314*716fd348SMartin Matuska 	    "anonuid", "async", "auth_nlm", "crossmnt", "fsid", "fsuid", "hide",
315*716fd348SMartin Matuska 	    "insecure", "insecure_locks", "mountpoint", "mp", "no_acl",
316*716fd348SMartin Matuska 	    "no_all_squash", "no_auth_nlm", "no_root_squash",
317*716fd348SMartin Matuska 	    "no_subtree_check", "no_wdelay", "nohide", "refer", "replicas",
318*716fd348SMartin Matuska 	    "root_squash", "secure", "secure_locks", "subtree_check", "sync",
319*716fd348SMartin Matuska 	    "wdelay" };
320*716fd348SMartin Matuska 
321eda14cbcSMatt Macy 	char **plinux_opts = (char **)cookie;
322eda14cbcSMatt Macy 
323eda14cbcSMatt Macy 	/* host-specific options, these are taken care of elsewhere */
324eda14cbcSMatt Macy 	if (strcmp(key, "ro") == 0 || strcmp(key, "rw") == 0 ||
325eda14cbcSMatt Macy 	    strcmp(key, "sec") == 0)
326eda14cbcSMatt Macy 		return (SA_OK);
327eda14cbcSMatt Macy 
328eda14cbcSMatt Macy 	if (strcmp(key, "anon") == 0)
329eda14cbcSMatt Macy 		key = "anonuid";
330eda14cbcSMatt Macy 
331eda14cbcSMatt Macy 	if (strcmp(key, "root_mapping") == 0) {
332eda14cbcSMatt Macy 		(void) add_linux_shareopt(plinux_opts, "root_squash", NULL);
333eda14cbcSMatt Macy 		key = "anonuid";
334eda14cbcSMatt Macy 	}
335eda14cbcSMatt Macy 
336eda14cbcSMatt Macy 	if (strcmp(key, "nosub") == 0)
337eda14cbcSMatt Macy 		key = "subtree_check";
338eda14cbcSMatt Macy 
339*716fd348SMartin Matuska 	if (bsearch(&key, valid_keys, ARRAY_SIZE(valid_keys),
340*716fd348SMartin Matuska 	    sizeof (*valid_keys), string_cmp) == NULL)
341eda14cbcSMatt Macy 		return (SA_SYNTAX_ERR);
342eda14cbcSMatt Macy 
343eda14cbcSMatt Macy 	(void) add_linux_shareopt(plinux_opts, key, value);
344eda14cbcSMatt Macy 
345eda14cbcSMatt Macy 	return (SA_OK);
346eda14cbcSMatt Macy }
347eda14cbcSMatt Macy 
348eda14cbcSMatt Macy /*
349eda14cbcSMatt Macy  * Takes a string containing Solaris share options (e.g. "sync,no_acl") and
350eda14cbcSMatt Macy  * converts them to a NULL-terminated array of Linux NFS options.
351eda14cbcSMatt Macy  */
352eda14cbcSMatt Macy static int
353eda14cbcSMatt Macy get_linux_shareopts(const char *shareopts, char **plinux_opts)
354eda14cbcSMatt Macy {
355eda14cbcSMatt Macy 	int error;
356eda14cbcSMatt Macy 
357eda14cbcSMatt Macy 	assert(plinux_opts != NULL);
358eda14cbcSMatt Macy 
359eda14cbcSMatt Macy 	*plinux_opts = NULL;
360eda14cbcSMatt Macy 
361eda14cbcSMatt Macy 	/* no_subtree_check - Default as of nfs-utils v1.1.0 */
362eda14cbcSMatt Macy 	(void) add_linux_shareopt(plinux_opts, "no_subtree_check", NULL);
363eda14cbcSMatt Macy 
364eda14cbcSMatt Macy 	/* mountpoint - Restrict exports to ZFS mountpoints */
365eda14cbcSMatt Macy 	(void) add_linux_shareopt(plinux_opts, "mountpoint", NULL);
366eda14cbcSMatt Macy 
367eda14cbcSMatt Macy 	error = foreach_nfs_shareopt(shareopts, get_linux_shareopts_cb,
368eda14cbcSMatt Macy 	    plinux_opts);
369eda14cbcSMatt Macy 
370eda14cbcSMatt Macy 	if (error != SA_OK) {
371eda14cbcSMatt Macy 		free(*plinux_opts);
372eda14cbcSMatt Macy 		*plinux_opts = NULL;
373eda14cbcSMatt Macy 	}
374eda14cbcSMatt Macy 
375eda14cbcSMatt Macy 	return (error);
376eda14cbcSMatt Macy }
377eda14cbcSMatt Macy 
378eda14cbcSMatt Macy /*
379eda14cbcSMatt Macy  * This function populates an entry into /etc/exports.d/zfs.exports.
380eda14cbcSMatt Macy  * This file is consumed by the linux nfs server so that zfs shares are
381eda14cbcSMatt Macy  * automatically exported upon boot or whenever the nfs server restarts.
382eda14cbcSMatt Macy  */
383eda14cbcSMatt Macy static int
384e92ffd9bSMartin Matuska nfs_add_entry(FILE *tmpfile, const char *sharepath,
385eda14cbcSMatt Macy     const char *host, const char *security, const char *access_opts,
386eda14cbcSMatt Macy     void *pcookie)
387eda14cbcSMatt Macy {
388eda14cbcSMatt Macy 	const char *linux_opts = (const char *)pcookie;
389eda14cbcSMatt Macy 
390eda14cbcSMatt Macy 	if (linux_opts == NULL)
391eda14cbcSMatt Macy 		linux_opts = "";
392eda14cbcSMatt Macy 
393*716fd348SMartin Matuska 	boolean_t need_free;
394*716fd348SMartin Matuska 	char *mp;
395*716fd348SMartin Matuska 	int rc = nfs_escape_mountpoint(sharepath, &mp, &need_free);
396*716fd348SMartin Matuska 	if (rc != SA_OK)
397*716fd348SMartin Matuska 		return (rc);
398*716fd348SMartin Matuska 	if (fprintf(tmpfile, "%s %s(sec=%s,%s,%s)\n", mp,
399e92ffd9bSMartin Matuska 	    get_linux_hostspec(host), security, access_opts,
400e92ffd9bSMartin Matuska 	    linux_opts) < 0) {
401e92ffd9bSMartin Matuska 		fprintf(stderr, "failed to write to temporary file\n");
402*716fd348SMartin Matuska 		rc = SA_SYSTEM_ERR;
403eda14cbcSMatt Macy 	}
404eda14cbcSMatt Macy 
405*716fd348SMartin Matuska 	if (need_free)
406*716fd348SMartin Matuska 		free(mp);
407*716fd348SMartin Matuska 	return (rc);
408eda14cbcSMatt Macy }
409eda14cbcSMatt Macy 
410eda14cbcSMatt Macy /*
411eda14cbcSMatt Macy  * Enables NFS sharing for the specified share.
412eda14cbcSMatt Macy  */
413eda14cbcSMatt Macy static int
414e92ffd9bSMartin Matuska nfs_enable_share_impl(sa_share_impl_t impl_share, FILE *tmpfile)
415eda14cbcSMatt Macy {
416*716fd348SMartin Matuska 	char *linux_opts = NULL;
417*716fd348SMartin Matuska 	int error = get_linux_shareopts(impl_share->sa_shareopts, &linux_opts);
41816038816SMartin Matuska 	if (error != SA_OK)
419eda14cbcSMatt Macy 		return (error);
420eda14cbcSMatt Macy 
421e92ffd9bSMartin Matuska 	error = foreach_nfs_host(impl_share, tmpfile, nfs_add_entry,
422eda14cbcSMatt Macy 	    linux_opts);
423eda14cbcSMatt Macy 	free(linux_opts);
424eda14cbcSMatt Macy 	return (error);
425eda14cbcSMatt Macy }
426eda14cbcSMatt Macy 
42716038816SMartin Matuska static int
42816038816SMartin Matuska nfs_enable_share(sa_share_impl_t impl_share)
42916038816SMartin Matuska {
430*716fd348SMartin Matuska 	if (!nfs_available())
431*716fd348SMartin Matuska 		return (SA_SYSTEM_ERR);
432*716fd348SMartin Matuska 
43316038816SMartin Matuska 	return (nfs_toggle_share(
43416038816SMartin Matuska 	    ZFS_EXPORTS_LOCK, ZFS_EXPORTS_FILE, ZFS_EXPORTS_DIR, impl_share,
43516038816SMartin Matuska 	    nfs_enable_share_impl));
43616038816SMartin Matuska }
43716038816SMartin Matuska 
438eda14cbcSMatt Macy /*
439eda14cbcSMatt Macy  * Disables NFS sharing for the specified share.
440eda14cbcSMatt Macy  */
441eda14cbcSMatt Macy static int
442e92ffd9bSMartin Matuska nfs_disable_share_impl(sa_share_impl_t impl_share, FILE *tmpfile)
44316038816SMartin Matuska {
444e92ffd9bSMartin Matuska 	(void) impl_share, (void) tmpfile;
44516038816SMartin Matuska 	return (SA_OK);
44616038816SMartin Matuska }
44716038816SMartin Matuska 
44816038816SMartin Matuska static int
449eda14cbcSMatt Macy nfs_disable_share(sa_share_impl_t impl_share)
450eda14cbcSMatt Macy {
451*716fd348SMartin Matuska 	if (!nfs_available())
452*716fd348SMartin Matuska 		return (SA_SYSTEM_ERR);
453*716fd348SMartin Matuska 
45416038816SMartin Matuska 	return (nfs_toggle_share(
45516038816SMartin Matuska 	    ZFS_EXPORTS_LOCK, ZFS_EXPORTS_FILE, ZFS_EXPORTS_DIR, impl_share,
45616038816SMartin Matuska 	    nfs_disable_share_impl));
457eda14cbcSMatt Macy }
458eda14cbcSMatt Macy 
459eda14cbcSMatt Macy static boolean_t
460eda14cbcSMatt Macy nfs_is_shared(sa_share_impl_t impl_share)
461eda14cbcSMatt Macy {
462*716fd348SMartin Matuska 	if (!nfs_available())
463*716fd348SMartin Matuska 		return (SA_SYSTEM_ERR);
464*716fd348SMartin Matuska 
465e92ffd9bSMartin Matuska 	return (nfs_is_shared_impl(ZFS_EXPORTS_FILE, impl_share));
466eda14cbcSMatt Macy }
467eda14cbcSMatt Macy 
468eda14cbcSMatt Macy /*
469eda14cbcSMatt Macy  * Checks whether the specified NFS share options are syntactically correct.
470eda14cbcSMatt Macy  */
471eda14cbcSMatt Macy static int
472eda14cbcSMatt Macy nfs_validate_shareopts(const char *shareopts)
473eda14cbcSMatt Macy {
474*716fd348SMartin Matuska 	char *linux_opts = NULL;
475*716fd348SMartin Matuska 	int error = get_linux_shareopts(shareopts, &linux_opts);
476eda14cbcSMatt Macy 	if (error != SA_OK)
477eda14cbcSMatt Macy 		return (error);
478eda14cbcSMatt Macy 
479eda14cbcSMatt Macy 	free(linux_opts);
480eda14cbcSMatt Macy 	return (SA_OK);
481eda14cbcSMatt Macy }
482eda14cbcSMatt Macy 
483eda14cbcSMatt Macy static int
484eda14cbcSMatt Macy nfs_commit_shares(void)
485eda14cbcSMatt Macy {
486*716fd348SMartin Matuska 	if (!nfs_available())
487*716fd348SMartin Matuska 		return (SA_SYSTEM_ERR);
488*716fd348SMartin Matuska 
489eda14cbcSMatt Macy 	char *argv[] = {
490*716fd348SMartin Matuska 	    (char *)"/usr/sbin/exportfs",
491*716fd348SMartin Matuska 	    (char *)"-ra",
492eda14cbcSMatt Macy 	    NULL
493eda14cbcSMatt Macy 	};
494eda14cbcSMatt Macy 
495eda14cbcSMatt Macy 	return (libzfs_run_process(argv[0], argv, 0));
496eda14cbcSMatt Macy }
497eda14cbcSMatt Macy 
498*716fd348SMartin Matuska const sa_fstype_t libshare_nfs_type = {
499eda14cbcSMatt Macy 	.enable_share = nfs_enable_share,
500eda14cbcSMatt Macy 	.disable_share = nfs_disable_share,
501eda14cbcSMatt Macy 	.is_shared = nfs_is_shared,
502eda14cbcSMatt Macy 
503eda14cbcSMatt Macy 	.validate_shareopts = nfs_validate_shareopts,
504eda14cbcSMatt Macy 	.commit_shares = nfs_commit_shares,
505eda14cbcSMatt Macy };
506eda14cbcSMatt Macy 
507*716fd348SMartin Matuska static boolean_t
508*716fd348SMartin Matuska nfs_available(void)
509eda14cbcSMatt Macy {
510*716fd348SMartin Matuska 	static int avail;
511*716fd348SMartin Matuska 
512*716fd348SMartin Matuska 	if (!avail) {
513*716fd348SMartin Matuska 		if (access("/usr/sbin/exportfs", F_OK) != 0)
514*716fd348SMartin Matuska 			avail = -1;
515*716fd348SMartin Matuska 		else
516*716fd348SMartin Matuska 			avail = 1;
517*716fd348SMartin Matuska 	}
518*716fd348SMartin Matuska 
519*716fd348SMartin Matuska 	return (avail == 1);
520eda14cbcSMatt Macy }
521