xref: /onnv-gate/usr/src/uts/common/fs/smbsrv/smb_fsops.c (revision 12508:edb7861a1533)
15331Samw /*
25331Samw  * CDDL HEADER START
35331Samw  *
45331Samw  * The contents of this file are subject to the terms of the
55331Samw  * Common Development and Distribution License (the "License").
65331Samw  * You may not use this file except in compliance with the License.
75331Samw  *
85331Samw  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
95331Samw  * or http://www.opensolaris.org/os/licensing.
105331Samw  * See the License for the specific language governing permissions
115331Samw  * and limitations under the License.
125331Samw  *
135331Samw  * When distributing Covered Code, include this CDDL HEADER in each
145331Samw  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
155331Samw  * If applicable, add the following below this CDDL HEADER, with the
165331Samw  * fields enclosed by brackets "[]" replaced with your own identifying
175331Samw  * information: Portions Copyright [yyyy] [name of copyright owner]
185331Samw  *
195331Samw  * CDDL HEADER END
205331Samw  */
215331Samw /*
22*12508Samw@Sun.COM  * Copyright (c) 2007, 2010, Oracle and/or its affiliates. All rights reserved.
235331Samw  */
245331Samw 
255331Samw #include <sys/sid.h>
265772Sas200622 #include <sys/nbmlock.h>
275331Samw #include <smbsrv/smb_fsops.h>
285521Sas200622 #include <smbsrv/smb_kproto.h>
295331Samw #include <acl/acl_common.h>
305772Sas200622 #include <sys/fcntl.h>
315772Sas200622 #include <sys/flock.h>
325772Sas200622 #include <fs/fs_subr.h>
335331Samw 
346139Sjb150015 extern caller_context_t smb_ct;
356139Sjb150015 
366600Sas200622 extern int smb_fem_oplock_install(smb_node_t *);
376600Sas200622 extern void smb_fem_oplock_uninstall(smb_node_t *);
386600Sas200622 
396600Sas200622 extern int smb_vop_other_opens(vnode_t *, int);
406600Sas200622 
419343SAfshin.Ardakani@Sun.COM static int smb_fsop_create_stream(smb_request_t *, cred_t *, smb_node_t *,
4210001SJoyce.McIntosh@Sun.COM     char *, char *, int, smb_attr_t *, smb_node_t **);
439343SAfshin.Ardakani@Sun.COM 
449343SAfshin.Ardakani@Sun.COM static int smb_fsop_create_file(smb_request_t *, cred_t *, smb_node_t *,
4510001SJoyce.McIntosh@Sun.COM     char *, int, smb_attr_t *, smb_node_t **);
469343SAfshin.Ardakani@Sun.COM 
479343SAfshin.Ardakani@Sun.COM static int smb_fsop_create_with_sd(smb_request_t *, cred_t *, smb_node_t *,
4810001SJoyce.McIntosh@Sun.COM     char *, smb_attr_t *, smb_node_t **, smb_fssd_t *);
499343SAfshin.Ardakani@Sun.COM 
509343SAfshin.Ardakani@Sun.COM static int smb_fsop_sdinherit(smb_request_t *, smb_node_t *, smb_fssd_t *);
515331Samw 
525331Samw /*
535331Samw  * The smb_fsop_* functions have knowledge of CIFS semantics.
545331Samw  *
555331Samw  * The smb_vop_* functions have minimal knowledge of CIFS semantics and
565331Samw  * serve as an interface to the VFS layer.
575331Samw  *
585331Samw  * Hence, smb_request_t and smb_node_t structures should not be passed
595331Samw  * from the smb_fsop_* layer to the smb_vop_* layer.
605331Samw  *
615331Samw  * In general, CIFS service code should only ever call smb_fsop_*
625331Samw  * functions directly, and never smb_vop_* functions directly.
635331Samw  *
645331Samw  * smb_fsop_* functions should call smb_vop_* functions where possible, instead
655331Samw  * of their smb_fsop_* counterparts.  However, there are times when
665331Samw  * this cannot be avoided.
675331Samw  */
685331Samw 
695331Samw /*
705331Samw  * Note: Stream names cannot be mangled.
715331Samw  */
725331Samw 
736600Sas200622 /*
746600Sas200622  * smb_fsop_amask_to_omode
756600Sas200622  *
766600Sas200622  * Convert the access mask to the open mode (for use
776600Sas200622  * with the VOP_OPEN call).
786600Sas200622  *
796600Sas200622  * Note that opening a file for attribute only access
806600Sas200622  * will also translate into an FREAD or FWRITE open mode
816600Sas200622  * (i.e., it's not just for data).
826600Sas200622  *
836600Sas200622  * This is needed so that opens are tracked appropriately
846600Sas200622  * for oplock processing.
856600Sas200622  */
866600Sas200622 
875331Samw int
886600Sas200622 smb_fsop_amask_to_omode(uint32_t access)
895331Samw {
906600Sas200622 	int mode = 0;
916600Sas200622 
926600Sas200622 	if (access & (FILE_READ_DATA | FILE_EXECUTE |
936600Sas200622 	    FILE_READ_ATTRIBUTES | FILE_READ_EA))
946600Sas200622 		mode |= FREAD;
956600Sas200622 
966600Sas200622 	if (access & (FILE_WRITE_DATA | FILE_APPEND_DATA |
976600Sas200622 	    FILE_WRITE_ATTRIBUTES | FILE_WRITE_EA))
986600Sas200622 		mode |= FWRITE;
996600Sas200622 
1006600Sas200622 	if (access & FILE_APPEND_DATA)
1016600Sas200622 		mode |= FAPPEND;
1026600Sas200622 
1036600Sas200622 	return (mode);
1045331Samw }
1055331Samw 
1065331Samw int
1076600Sas200622 smb_fsop_open(smb_node_t *node, int mode, cred_t *cred)
1085331Samw {
1096600Sas200622 	/*
1106600Sas200622 	 * Assuming that the same vnode is returned as we had before.
1116600Sas200622 	 * (I.e., with certain types of files or file systems, a
1126600Sas200622 	 * different vnode might be returned by VOP_OPEN)
1136600Sas200622 	 */
1146600Sas200622 	return (smb_vop_open(&node->vp, mode, cred));
1155331Samw }
1165331Samw 
1177348SJose.Borrego@Sun.COM void
1186600Sas200622 smb_fsop_close(smb_node_t *node, int mode, cred_t *cred)
1196600Sas200622 {
1207348SJose.Borrego@Sun.COM 	smb_vop_close(node->vp, mode, cred);
1216600Sas200622 }
1226600Sas200622 
1236600Sas200622 int
1246600Sas200622 smb_fsop_oplock_install(smb_node_t *node, int mode)
1255331Samw {
1266600Sas200622 	int rc;
1276600Sas200622 
1286600Sas200622 	if (smb_vop_other_opens(node->vp, mode))
1296600Sas200622 		return (EMFILE);
1306600Sas200622 
1316600Sas200622 	if ((rc = smb_fem_oplock_install(node)))
1326600Sas200622 		return (rc);
1336600Sas200622 
1346600Sas200622 	if (smb_vop_other_opens(node->vp, mode)) {
1356600Sas200622 		(void) smb_fem_oplock_uninstall(node);
1366600Sas200622 		return (EMFILE);
1376600Sas200622 	}
1386600Sas200622 
1396600Sas200622 	return (0);
1406600Sas200622 }
1416600Sas200622 
1426600Sas200622 void
1436600Sas200622 smb_fsop_oplock_uninstall(smb_node_t *node)
1446600Sas200622 {
1456600Sas200622 	smb_fem_oplock_uninstall(node);
1465331Samw }
1475331Samw 
1485331Samw static int
1499343SAfshin.Ardakani@Sun.COM smb_fsop_create_with_sd(smb_request_t *sr, cred_t *cr,
1509343SAfshin.Ardakani@Sun.COM     smb_node_t *dnode, char *name,
15110001SJoyce.McIntosh@Sun.COM     smb_attr_t *attr, smb_node_t **ret_snode, smb_fssd_t *fs_sd)
1525331Samw {
1535331Samw 	vsecattr_t *vsap;
1545331Samw 	vsecattr_t vsecattr;
1555331Samw 	acl_t *acl, *dacl, *sacl;
1565331Samw 	smb_attr_t set_attr;
1575331Samw 	vnode_t *vp;
1585331Samw 	int aclbsize = 0;	/* size of acl list in bytes */
1595331Samw 	int flags = 0;
1605331Samw 	int rc;
1617619SJose.Borrego@Sun.COM 	boolean_t is_dir;
1625331Samw 
1635331Samw 	ASSERT(fs_sd);
1645331Samw 
1657348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_CASEINSENSITIVE(sr))
1665331Samw 		flags = SMB_IGNORE_CASE;
1679231SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_SUPPORTS_CATIA(sr))
1689231SAfshin.Ardakani@Sun.COM 		flags |= SMB_CATIA;
1695331Samw 
1705331Samw 	ASSERT(cr);
1715331Samw 
1725331Samw 	is_dir = ((fs_sd->sd_flags & SMB_FSSD_FLAGS_DIR) != 0);
1735331Samw 
1747348SJose.Borrego@Sun.COM 	if (smb_tree_has_feature(sr->tid_tree, SMB_TREE_ACLONCREATE)) {
1755331Samw 		if (fs_sd->sd_secinfo & SMB_ACL_SECINFO) {
1765331Samw 			dacl = fs_sd->sd_zdacl;
1775331Samw 			sacl = fs_sd->sd_zsacl;
1785331Samw 			ASSERT(dacl || sacl);
1795331Samw 			if (dacl && sacl) {
1805521Sas200622 				acl = smb_fsacl_merge(dacl, sacl);
1815331Samw 			} else if (dacl) {
1825331Samw 				acl = dacl;
1835331Samw 			} else {
1845331Samw 				acl = sacl;
1855331Samw 			}
1865331Samw 
1875521Sas200622 			rc = smb_fsacl_to_vsa(acl, &vsecattr, &aclbsize);
1885331Samw 
1895331Samw 			if (dacl && sacl)
1905331Samw 				acl_free(acl);
1915331Samw 
1927619SJose.Borrego@Sun.COM 			if (rc != 0)
1935331Samw 				return (rc);
1945331Samw 
1955331Samw 			vsap = &vsecattr;
1967619SJose.Borrego@Sun.COM 		} else {
1977619SJose.Borrego@Sun.COM 			vsap = NULL;
1985331Samw 		}
1995331Samw 
2008845Samw@Sun.COM 		/* The tree ACEs may prevent a create */
2018845Samw@Sun.COM 		rc = EACCES;
2025331Samw 		if (is_dir) {
2038845Samw@Sun.COM 			if (SMB_TREE_HAS_ACCESS(sr, ACE_ADD_SUBDIRECTORY) != 0)
2049343SAfshin.Ardakani@Sun.COM 				rc = smb_vop_mkdir(dnode->vp, name, attr,
2058845Samw@Sun.COM 				    &vp, flags, cr, vsap);
2065331Samw 		} else {
2078845Samw@Sun.COM 			if (SMB_TREE_HAS_ACCESS(sr, ACE_ADD_FILE) != 0)
2089343SAfshin.Ardakani@Sun.COM 				rc = smb_vop_create(dnode->vp, name, attr,
2098845Samw@Sun.COM 				    &vp, flags, cr, vsap);
2105331Samw 		}
2115331Samw 
2125331Samw 		if (vsap != NULL)
2135331Samw 			kmem_free(vsap->vsa_aclentp, aclbsize);
2145331Samw 
2155331Samw 		if (rc != 0)
2165331Samw 			return (rc);
2175331Samw 
2185331Samw 		set_attr.sa_mask = 0;
2195331Samw 
2205331Samw 		/*
2215331Samw 		 * Ideally we should be able to specify the owner and owning
2225331Samw 		 * group at create time along with the ACL. Since we cannot
2235331Samw 		 * do that right now, kcred is passed to smb_vop_setattr so it
2245331Samw 		 * doesn't fail due to lack of permission.
2255331Samw 		 */
2265331Samw 		if (fs_sd->sd_secinfo & SMB_OWNER_SECINFO) {
2275331Samw 			set_attr.sa_vattr.va_uid = fs_sd->sd_uid;
2285331Samw 			set_attr.sa_mask |= SMB_AT_UID;
2295331Samw 		}
2305331Samw 
2315331Samw 		if (fs_sd->sd_secinfo & SMB_GROUP_SECINFO) {
2325331Samw 			set_attr.sa_vattr.va_gid = fs_sd->sd_gid;
2335331Samw 			set_attr.sa_mask |= SMB_AT_GID;
2345331Samw 		}
2355331Samw 
2367757SJanice.Chang@Sun.COM 		if (set_attr.sa_mask)
2377757SJanice.Chang@Sun.COM 			rc = smb_vop_setattr(vp, NULL, &set_attr, 0, kcred);
2385331Samw 
2397619SJose.Borrego@Sun.COM 		if (rc == 0) {
2407619SJose.Borrego@Sun.COM 			*ret_snode = smb_node_lookup(sr, &sr->arg.open, cr, vp,
24110001SJoyce.McIntosh@Sun.COM 			    name, dnode, NULL);
2427619SJose.Borrego@Sun.COM 
2438670SJose.Borrego@Sun.COM 			if (*ret_snode == NULL)
2447619SJose.Borrego@Sun.COM 				rc = ENOMEM;
2458670SJose.Borrego@Sun.COM 
2468670SJose.Borrego@Sun.COM 			VN_RELE(vp);
2477619SJose.Borrego@Sun.COM 		}
2485331Samw 	} else {
2495331Samw 		/*
2505331Samw 		 * For filesystems that don't support ACL-on-create, try
2515331Samw 		 * to set the specified SD after create, which could actually
2525331Samw 		 * fail because of conflicts between inherited security
2535331Samw 		 * attributes upon creation and the specified SD.
2545331Samw 		 *
2555331Samw 		 * Passing kcred to smb_fsop_sdwrite() to overcome this issue.
2565331Samw 		 */
2575331Samw 
2585331Samw 		if (is_dir) {
2599343SAfshin.Ardakani@Sun.COM 			rc = smb_vop_mkdir(dnode->vp, name, attr, &vp,
2607619SJose.Borrego@Sun.COM 			    flags, cr, NULL);
2615331Samw 		} else {
2629343SAfshin.Ardakani@Sun.COM 			rc = smb_vop_create(dnode->vp, name, attr, &vp,
2637619SJose.Borrego@Sun.COM 			    flags, cr, NULL);
2645331Samw 		}
2655331Samw 
2665521Sas200622 		if (rc != 0)
2675521Sas200622 			return (rc);
2685521Sas200622 
2697619SJose.Borrego@Sun.COM 		*ret_snode = smb_node_lookup(sr, &sr->arg.open, cr, vp,
27010001SJoyce.McIntosh@Sun.COM 		    name, dnode, NULL);
2717619SJose.Borrego@Sun.COM 
2727619SJose.Borrego@Sun.COM 		if (*ret_snode != NULL) {
2737619SJose.Borrego@Sun.COM 			if (!smb_tree_has_feature(sr->tid_tree,
2747619SJose.Borrego@Sun.COM 			    SMB_TREE_NFS_MOUNTED))
2757619SJose.Borrego@Sun.COM 				rc = smb_fsop_sdwrite(sr, kcred, *ret_snode,
2767619SJose.Borrego@Sun.COM 				    fs_sd, 1);
2777619SJose.Borrego@Sun.COM 		} else {
2785331Samw 			rc = ENOMEM;
2795331Samw 		}
2808670SJose.Borrego@Sun.COM 
2818670SJose.Borrego@Sun.COM 		VN_RELE(vp);
2825331Samw 	}
2835331Samw 
2845521Sas200622 	if (rc != 0) {
2857619SJose.Borrego@Sun.COM 		if (is_dir)
2869343SAfshin.Ardakani@Sun.COM 			(void) smb_vop_rmdir(dnode->vp, name, flags, cr);
2877619SJose.Borrego@Sun.COM 		else
2889343SAfshin.Ardakani@Sun.COM 			(void) smb_vop_remove(dnode->vp, name, flags, cr);
2895521Sas200622 	}
2905521Sas200622 
2915331Samw 	return (rc);
2925331Samw }
2935331Samw 
2945331Samw /*
2955331Samw  * smb_fsop_create
2965331Samw  *
2975331Samw  * All SMB functions should use this wrapper to ensure that
2985331Samw  * all the smb_vop_creates are performed with the appropriate credentials.
2999343SAfshin.Ardakani@Sun.COM  * Please document any direct calls to explain the reason for avoiding
3009343SAfshin.Ardakani@Sun.COM  * this wrapper.
3015331Samw  *
3025331Samw  * *ret_snode is returned with a reference upon success.  No reference is
3035331Samw  * taken if an error is returned.
3045331Samw  */
3055331Samw int
30610001SJoyce.McIntosh@Sun.COM smb_fsop_create(smb_request_t *sr, cred_t *cr, smb_node_t *dnode,
30710001SJoyce.McIntosh@Sun.COM     char *name, smb_attr_t *attr, smb_node_t **ret_snode)
3085331Samw {
3099343SAfshin.Ardakani@Sun.COM 	int	rc = 0;
3109343SAfshin.Ardakani@Sun.COM 	int	flags = 0;
3119343SAfshin.Ardakani@Sun.COM 	char	*fname, *sname;
3129343SAfshin.Ardakani@Sun.COM 	char	*longname = NULL;
3135331Samw 
3145331Samw 	ASSERT(cr);
3159343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode);
3169343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode->n_magic == SMB_NODE_MAGIC);
3179343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode->n_state != SMB_NODE_STATE_DESTROYING);
3185331Samw 
3195331Samw 	ASSERT(ret_snode);
3205331Samw 	*ret_snode = 0;
3215331Samw 
3225331Samw 	ASSERT(name);
3235331Samw 	if (*name == 0)
3245331Samw 		return (EINVAL);
3255331Samw 
3265331Samw 	ASSERT(sr);
3275331Samw 	ASSERT(sr->tid_tree);
3287348SJose.Borrego@Sun.COM 
3299343SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_CONTAINS_NODE(sr, dnode) == 0)
3307348SJose.Borrego@Sun.COM 		return (EACCES);
3317348SJose.Borrego@Sun.COM 
3327348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_READONLY(sr))
3335331Samw 		return (EROFS);
3345331Samw 
3357348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_CASEINSENSITIVE(sr))
3365331Samw 		flags = SMB_IGNORE_CASE;
3379231SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_SUPPORTS_CATIA(sr))
3389231SAfshin.Ardakani@Sun.COM 		flags |= SMB_CATIA;
33910504SKeyur.Desai@Sun.COM 	if (SMB_TREE_SUPPORTS_ABE(sr))
34010504SKeyur.Desai@Sun.COM 		flags |= SMB_ABE;
3415331Samw 
3429231SAfshin.Ardakani@Sun.COM 	if (smb_is_stream_name(name)) {
3439231SAfshin.Ardakani@Sun.COM 		fname = kmem_alloc(MAXNAMELEN, KM_SLEEP);
3449231SAfshin.Ardakani@Sun.COM 		sname = kmem_alloc(MAXNAMELEN, KM_SLEEP);
3459343SAfshin.Ardakani@Sun.COM 		smb_stream_parse_name(name, fname, sname);
3465331Samw 
3479343SAfshin.Ardakani@Sun.COM 		rc = smb_fsop_create_stream(sr, cr, dnode,
34810001SJoyce.McIntosh@Sun.COM 		    fname, sname, flags, attr, ret_snode);
3499231SAfshin.Ardakani@Sun.COM 
3509231SAfshin.Ardakani@Sun.COM 		kmem_free(fname, MAXNAMELEN);
3519231SAfshin.Ardakani@Sun.COM 		kmem_free(sname, MAXNAMELEN);
3529231SAfshin.Ardakani@Sun.COM 		return (rc);
3539231SAfshin.Ardakani@Sun.COM 	}
3545521Sas200622 
3559231SAfshin.Ardakani@Sun.COM 	/* Not a named stream */
3569343SAfshin.Ardakani@Sun.COM 
357*12508Samw@Sun.COM 	if (smb_maybe_mangled(name)) {
3589231SAfshin.Ardakani@Sun.COM 		longname = kmem_alloc(MAXNAMELEN, KM_SLEEP);
359*12508Samw@Sun.COM 		rc = smb_unmangle(dnode, name, longname, MAXNAMELEN, flags);
3609231SAfshin.Ardakani@Sun.COM 		kmem_free(longname, MAXNAMELEN);
3615331Samw 
3629231SAfshin.Ardakani@Sun.COM 		if (rc == 0)
3639231SAfshin.Ardakani@Sun.COM 			rc = EEXIST;
3649231SAfshin.Ardakani@Sun.COM 		if (rc != ENOENT)
3659231SAfshin.Ardakani@Sun.COM 			return (rc);
3665331Samw 	}
3675331Samw 
3689343SAfshin.Ardakani@Sun.COM 	rc = smb_fsop_create_file(sr, cr, dnode, name, flags,
36910001SJoyce.McIntosh@Sun.COM 	    attr, ret_snode);
3709343SAfshin.Ardakani@Sun.COM 	return (rc);
3719343SAfshin.Ardakani@Sun.COM 
3729343SAfshin.Ardakani@Sun.COM }
3739343SAfshin.Ardakani@Sun.COM 
3749343SAfshin.Ardakani@Sun.COM 
3759343SAfshin.Ardakani@Sun.COM /*
3769343SAfshin.Ardakani@Sun.COM  * smb_fsop_create_stream
3779343SAfshin.Ardakani@Sun.COM  *
3789343SAfshin.Ardakani@Sun.COM  * Create NTFS named stream file (sname) on unnamed stream
3799343SAfshin.Ardakani@Sun.COM  * file (fname), creating the unnamed stream file if it
3809343SAfshin.Ardakani@Sun.COM  * doesn't exist.
3819343SAfshin.Ardakani@Sun.COM  * If we created the unnamed stream file and then creation
3829343SAfshin.Ardakani@Sun.COM  * of the named stream file fails, we delete the unnamed stream.
3839343SAfshin.Ardakani@Sun.COM  * Since we use the real file name for the smb_vop_remove we
3849343SAfshin.Ardakani@Sun.COM  * clear the SMB_IGNORE_CASE flag to ensure a case sensitive
3859343SAfshin.Ardakani@Sun.COM  * match.
3869343SAfshin.Ardakani@Sun.COM  *
3879343SAfshin.Ardakani@Sun.COM  * The second parameter of smb_vop_setattr() is set to
3889343SAfshin.Ardakani@Sun.COM  * NULL, even though an unnamed stream exists.  This is
3899343SAfshin.Ardakani@Sun.COM  * because we want to set the UID and GID on the named
3909343SAfshin.Ardakani@Sun.COM  * stream in this case for consistency with the (unnamed
3919343SAfshin.Ardakani@Sun.COM  * stream) file (see comments for smb_vop_setattr()).
3929343SAfshin.Ardakani@Sun.COM  */
3939343SAfshin.Ardakani@Sun.COM static int
3949343SAfshin.Ardakani@Sun.COM smb_fsop_create_stream(smb_request_t *sr, cred_t *cr,
3959343SAfshin.Ardakani@Sun.COM     smb_node_t *dnode, char *fname, char *sname, int flags,
39610001SJoyce.McIntosh@Sun.COM     smb_attr_t *attr, smb_node_t **ret_snode)
3979343SAfshin.Ardakani@Sun.COM {
3989343SAfshin.Ardakani@Sun.COM 	smb_node_t	*fnode;
3999343SAfshin.Ardakani@Sun.COM 	smb_attr_t	fattr;
4009343SAfshin.Ardakani@Sun.COM 	vnode_t		*xattrdvp;
4019343SAfshin.Ardakani@Sun.COM 	vnode_t		*vp;
4029343SAfshin.Ardakani@Sun.COM 	int		rc = 0;
4039343SAfshin.Ardakani@Sun.COM 	boolean_t	fcreate = B_FALSE;
4049343SAfshin.Ardakani@Sun.COM 
4059343SAfshin.Ardakani@Sun.COM 	/* Look up / create the unnamed stream, fname */
4069343SAfshin.Ardakani@Sun.COM 	rc = smb_fsop_lookup(sr, cr, flags | SMB_FOLLOW_LINKS,
40710001SJoyce.McIntosh@Sun.COM 	    sr->tid_tree->t_snode, dnode, fname, &fnode);
4089343SAfshin.Ardakani@Sun.COM 	if (rc == ENOENT) {
4099343SAfshin.Ardakani@Sun.COM 		fcreate = B_TRUE;
4109343SAfshin.Ardakani@Sun.COM 		rc = smb_fsop_create_file(sr, cr, dnode, fname, flags,
41110001SJoyce.McIntosh@Sun.COM 		    attr, &fnode);
4129343SAfshin.Ardakani@Sun.COM 	}
4139343SAfshin.Ardakani@Sun.COM 	if (rc != 0)
4149343SAfshin.Ardakani@Sun.COM 		return (rc);
4159343SAfshin.Ardakani@Sun.COM 
41610001SJoyce.McIntosh@Sun.COM 	fattr.sa_mask = SMB_AT_UID | SMB_AT_GID;
41710001SJoyce.McIntosh@Sun.COM 	rc = smb_vop_getattr(fnode->vp, NULL, &fattr, 0, kcred);
41810001SJoyce.McIntosh@Sun.COM 
41910001SJoyce.McIntosh@Sun.COM 	if (rc == 0) {
42010001SJoyce.McIntosh@Sun.COM 		/* create the named stream, sname */
42110001SJoyce.McIntosh@Sun.COM 		rc = smb_vop_stream_create(fnode->vp, sname, attr,
42210001SJoyce.McIntosh@Sun.COM 		    &vp, &xattrdvp, flags, cr);
42310001SJoyce.McIntosh@Sun.COM 	}
4249343SAfshin.Ardakani@Sun.COM 	if (rc != 0) {
4259343SAfshin.Ardakani@Sun.COM 		if (fcreate) {
4269343SAfshin.Ardakani@Sun.COM 			flags &= ~SMB_IGNORE_CASE;
4279343SAfshin.Ardakani@Sun.COM 			(void) smb_vop_remove(dnode->vp,
4289343SAfshin.Ardakani@Sun.COM 			    fnode->od_name, flags, cr);
4299343SAfshin.Ardakani@Sun.COM 		}
4309343SAfshin.Ardakani@Sun.COM 		smb_node_release(fnode);
4319343SAfshin.Ardakani@Sun.COM 		return (rc);
4329343SAfshin.Ardakani@Sun.COM 	}
4339343SAfshin.Ardakani@Sun.COM 
4349343SAfshin.Ardakani@Sun.COM 	attr->sa_vattr.va_uid = fattr.sa_vattr.va_uid;
4359343SAfshin.Ardakani@Sun.COM 	attr->sa_vattr.va_gid = fattr.sa_vattr.va_gid;
4369343SAfshin.Ardakani@Sun.COM 	attr->sa_mask = SMB_AT_UID | SMB_AT_GID;
4379343SAfshin.Ardakani@Sun.COM 
4389343SAfshin.Ardakani@Sun.COM 	rc = smb_vop_setattr(vp, NULL, attr, 0, kcred);
4399343SAfshin.Ardakani@Sun.COM 	if (rc != 0) {
4409343SAfshin.Ardakani@Sun.COM 		smb_node_release(fnode);
4419343SAfshin.Ardakani@Sun.COM 		return (rc);
4429343SAfshin.Ardakani@Sun.COM 	}
4439343SAfshin.Ardakani@Sun.COM 
4449343SAfshin.Ardakani@Sun.COM 	*ret_snode = smb_stream_node_lookup(sr, cr, fnode, xattrdvp,
44510001SJoyce.McIntosh@Sun.COM 	    vp, sname);
4469343SAfshin.Ardakani@Sun.COM 
4479343SAfshin.Ardakani@Sun.COM 	smb_node_release(fnode);
4489343SAfshin.Ardakani@Sun.COM 	VN_RELE(xattrdvp);
4499343SAfshin.Ardakani@Sun.COM 	VN_RELE(vp);
4509343SAfshin.Ardakani@Sun.COM 
4519343SAfshin.Ardakani@Sun.COM 	if (*ret_snode == NULL)
4529343SAfshin.Ardakani@Sun.COM 		rc = ENOMEM;
4539343SAfshin.Ardakani@Sun.COM 
45411963SAfshin.Ardakani@Sun.COM 	/* notify change to the unnamed stream */
45511963SAfshin.Ardakani@Sun.COM 	if (rc == 0)
45611963SAfshin.Ardakani@Sun.COM 		smb_node_notify_change(dnode);
45711963SAfshin.Ardakani@Sun.COM 
4589343SAfshin.Ardakani@Sun.COM 	return (rc);
4599343SAfshin.Ardakani@Sun.COM }
4609343SAfshin.Ardakani@Sun.COM 
4619343SAfshin.Ardakani@Sun.COM /*
4629343SAfshin.Ardakani@Sun.COM  * smb_fsop_create_file
4639343SAfshin.Ardakani@Sun.COM  */
4649343SAfshin.Ardakani@Sun.COM static int
4659343SAfshin.Ardakani@Sun.COM smb_fsop_create_file(smb_request_t *sr, cred_t *cr,
4669343SAfshin.Ardakani@Sun.COM     smb_node_t *dnode, char *name, int flags,
46710001SJoyce.McIntosh@Sun.COM     smb_attr_t *attr, smb_node_t **ret_snode)
4689343SAfshin.Ardakani@Sun.COM {
469*12508Samw@Sun.COM 	smb_arg_open_t	*op = &sr->sr_open;
4709343SAfshin.Ardakani@Sun.COM 	vnode_t		*vp;
4719343SAfshin.Ardakani@Sun.COM 	smb_fssd_t	fs_sd;
4729343SAfshin.Ardakani@Sun.COM 	uint32_t	secinfo;
4739343SAfshin.Ardakani@Sun.COM 	uint32_t	status;
4749343SAfshin.Ardakani@Sun.COM 	int		rc = 0;
4759343SAfshin.Ardakani@Sun.COM 
4769231SAfshin.Ardakani@Sun.COM 	if (op->sd) {
4779231SAfshin.Ardakani@Sun.COM 		/*
4789231SAfshin.Ardakani@Sun.COM 		 * SD sent by client in Windows format. Needs to be
4799231SAfshin.Ardakani@Sun.COM 		 * converted to FS format. No inheritance.
4809231SAfshin.Ardakani@Sun.COM 		 */
4819231SAfshin.Ardakani@Sun.COM 		secinfo = smb_sd_get_secinfo(op->sd);
4829231SAfshin.Ardakani@Sun.COM 		smb_fssd_init(&fs_sd, secinfo, 0);
4839231SAfshin.Ardakani@Sun.COM 
4849231SAfshin.Ardakani@Sun.COM 		status = smb_sd_tofs(op->sd, &fs_sd);
4859231SAfshin.Ardakani@Sun.COM 		if (status == NT_STATUS_SUCCESS) {
4869343SAfshin.Ardakani@Sun.COM 			rc = smb_fsop_create_with_sd(sr, cr, dnode,
48710001SJoyce.McIntosh@Sun.COM 			    name, attr, ret_snode, &fs_sd);
4889231SAfshin.Ardakani@Sun.COM 		} else {
4899231SAfshin.Ardakani@Sun.COM 			rc = EINVAL;
4909231SAfshin.Ardakani@Sun.COM 		}
4919231SAfshin.Ardakani@Sun.COM 		smb_fssd_term(&fs_sd);
4929231SAfshin.Ardakani@Sun.COM 	} else if (sr->tid_tree->t_acltype == ACE_T) {
4939231SAfshin.Ardakani@Sun.COM 		/*
4949231SAfshin.Ardakani@Sun.COM 		 * No incoming SD and filesystem is ZFS
4959231SAfshin.Ardakani@Sun.COM 		 * Server applies Windows inheritance rules,
4969231SAfshin.Ardakani@Sun.COM 		 * see smb_fsop_sdinherit() comments as to why.
4979231SAfshin.Ardakani@Sun.COM 		 */
4989231SAfshin.Ardakani@Sun.COM 		smb_fssd_init(&fs_sd, SMB_ACL_SECINFO, 0);
4999343SAfshin.Ardakani@Sun.COM 		rc = smb_fsop_sdinherit(sr, dnode, &fs_sd);
5009231SAfshin.Ardakani@Sun.COM 		if (rc == 0) {
5019343SAfshin.Ardakani@Sun.COM 			rc = smb_fsop_create_with_sd(sr, cr, dnode,
50210001SJoyce.McIntosh@Sun.COM 			    name, attr, ret_snode, &fs_sd);
5039231SAfshin.Ardakani@Sun.COM 		}
5049231SAfshin.Ardakani@Sun.COM 
5059231SAfshin.Ardakani@Sun.COM 		smb_fssd_term(&fs_sd);
5069231SAfshin.Ardakani@Sun.COM 	} else {
5079231SAfshin.Ardakani@Sun.COM 		/*
5089231SAfshin.Ardakani@Sun.COM 		 * No incoming SD and filesystem is not ZFS
5099231SAfshin.Ardakani@Sun.COM 		 * let the filesystem handles the inheritance.
5109231SAfshin.Ardakani@Sun.COM 		 */
5119343SAfshin.Ardakani@Sun.COM 		rc = smb_vop_create(dnode->vp, name, attr, &vp,
5129231SAfshin.Ardakani@Sun.COM 		    flags, cr, NULL);
5139231SAfshin.Ardakani@Sun.COM 
5149231SAfshin.Ardakani@Sun.COM 		if (rc == 0) {
5159231SAfshin.Ardakani@Sun.COM 			*ret_snode = smb_node_lookup(sr, op, cr, vp,
51610001SJoyce.McIntosh@Sun.COM 			    name, dnode, NULL);
5179231SAfshin.Ardakani@Sun.COM 
5189231SAfshin.Ardakani@Sun.COM 			if (*ret_snode == NULL)
5199231SAfshin.Ardakani@Sun.COM 				rc = ENOMEM;
5209231SAfshin.Ardakani@Sun.COM 
5219231SAfshin.Ardakani@Sun.COM 			VN_RELE(vp);
5229231SAfshin.Ardakani@Sun.COM 		}
5239231SAfshin.Ardakani@Sun.COM 
5249231SAfshin.Ardakani@Sun.COM 	}
52511963SAfshin.Ardakani@Sun.COM 
52611963SAfshin.Ardakani@Sun.COM 	if (rc == 0)
52711963SAfshin.Ardakani@Sun.COM 		smb_node_notify_parents(dnode);
52811963SAfshin.Ardakani@Sun.COM 
5295331Samw 	return (rc);
5305331Samw }
5315331Samw 
5325331Samw /*
5335331Samw  * smb_fsop_mkdir
5345331Samw  *
5355331Samw  * All SMB functions should use this wrapper to ensure that
5365331Samw  * the the calls are performed with the appropriate credentials.
5375331Samw  * Please document any direct call to explain the reason
5385331Samw  * for avoiding this wrapper.
5395331Samw  *
5405331Samw  * It is assumed that a reference exists on snode coming into this routine.
5415331Samw  *
5425331Samw  * *ret_snode is returned with a reference upon success.  No reference is
5435331Samw  * taken if an error is returned.
5445331Samw  */
5455331Samw int
5465331Samw smb_fsop_mkdir(
5476139Sjb150015     smb_request_t *sr,
5485331Samw     cred_t *cr,
5499343SAfshin.Ardakani@Sun.COM     smb_node_t *dnode,
5505331Samw     char *name,
5515331Samw     smb_attr_t *attr,
55210001SJoyce.McIntosh@Sun.COM     smb_node_t **ret_snode)
5535331Samw {
5545331Samw 	struct open_param *op = &sr->arg.open;
5555331Samw 	char *longname;
5565331Samw 	vnode_t *vp;
5575331Samw 	int flags = 0;
5585331Samw 	smb_fssd_t fs_sd;
5595331Samw 	uint32_t secinfo;
5605331Samw 	uint32_t status;
5615331Samw 	int rc;
5625331Samw 	ASSERT(cr);
5639343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode);
5649343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode->n_magic == SMB_NODE_MAGIC);
5659343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode->n_state != SMB_NODE_STATE_DESTROYING);
5665331Samw 
5675331Samw 	ASSERT(ret_snode);
5685331Samw 	*ret_snode = 0;
5695331Samw 
5705331Samw 	ASSERT(name);
5715331Samw 	if (*name == 0)
5725331Samw 		return (EINVAL);
5735331Samw 
5745331Samw 	ASSERT(sr);
5755331Samw 	ASSERT(sr->tid_tree);
5767348SJose.Borrego@Sun.COM 
5779343SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_CONTAINS_NODE(sr, dnode) == 0)
5787348SJose.Borrego@Sun.COM 		return (EACCES);
5797348SJose.Borrego@Sun.COM 
5807348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_READONLY(sr))
5815331Samw 		return (EROFS);
5829231SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_SUPPORTS_CATIA(sr))
5839231SAfshin.Ardakani@Sun.COM 		flags |= SMB_CATIA;
58410504SKeyur.Desai@Sun.COM 	if (SMB_TREE_SUPPORTS_ABE(sr))
58510504SKeyur.Desai@Sun.COM 		flags |= SMB_ABE;
5865331Samw 
587*12508Samw@Sun.COM 	if (smb_maybe_mangled(name)) {
5885331Samw 		longname = kmem_alloc(MAXNAMELEN, KM_SLEEP);
589*12508Samw@Sun.COM 		rc = smb_unmangle(dnode, name, longname, MAXNAMELEN, flags);
5905331Samw 		kmem_free(longname, MAXNAMELEN);
5915331Samw 
5925331Samw 		/*
5935331Samw 		 * If the name passed in by the client has an unmangled
5945331Samw 		 * equivalent that is found in the specified directory,
5955331Samw 		 * then the mkdir cannot succeed.  Return EEXIST.
5965331Samw 		 *
5975331Samw 		 * Only if ENOENT is returned will a mkdir be attempted.
5985331Samw 		 */
5995331Samw 
6005331Samw 		if (rc == 0)
6015331Samw 			rc = EEXIST;
6025331Samw 
6035331Samw 		if (rc != ENOENT)
6045331Samw 			return (rc);
6055331Samw 	}
6065331Samw 
6077348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_CASEINSENSITIVE(sr))
6085331Samw 		flags = SMB_IGNORE_CASE;
6095331Samw 
6105521Sas200622 	if (op->sd) {
6115331Samw 		/*
6125331Samw 		 * SD sent by client in Windows format. Needs to be
6135331Samw 		 * converted to FS format. No inheritance.
6145331Samw 		 */
6155521Sas200622 		secinfo = smb_sd_get_secinfo(op->sd);
6165521Sas200622 		smb_fssd_init(&fs_sd, secinfo, SMB_FSSD_FLAGS_DIR);
6175521Sas200622 
6185521Sas200622 		status = smb_sd_tofs(op->sd, &fs_sd);
6195331Samw 		if (status == NT_STATUS_SUCCESS) {
6209343SAfshin.Ardakani@Sun.COM 			rc = smb_fsop_create_with_sd(sr, cr, dnode,
62110001SJoyce.McIntosh@Sun.COM 			    name, attr, ret_snode, &fs_sd);
6225331Samw 		}
6235331Samw 		else
6245331Samw 			rc = EINVAL;
6255521Sas200622 		smb_fssd_term(&fs_sd);
6265331Samw 	} else if (sr->tid_tree->t_acltype == ACE_T) {
6275331Samw 		/*
6285331Samw 		 * No incoming SD and filesystem is ZFS
6295331Samw 		 * Server applies Windows inheritance rules,
6305331Samw 		 * see smb_fsop_sdinherit() comments as to why.
6315331Samw 		 */
6325521Sas200622 		smb_fssd_init(&fs_sd, SMB_ACL_SECINFO, SMB_FSSD_FLAGS_DIR);
6339343SAfshin.Ardakani@Sun.COM 		rc = smb_fsop_sdinherit(sr, dnode, &fs_sd);
6345331Samw 		if (rc == 0) {
6359343SAfshin.Ardakani@Sun.COM 			rc = smb_fsop_create_with_sd(sr, cr, dnode,
63610001SJoyce.McIntosh@Sun.COM 			    name, attr, ret_snode, &fs_sd);
6375331Samw 		}
6385331Samw 
6395521Sas200622 		smb_fssd_term(&fs_sd);
6405331Samw 
6415331Samw 	} else {
6429343SAfshin.Ardakani@Sun.COM 		rc = smb_vop_mkdir(dnode->vp, name, attr, &vp, flags, cr,
6435772Sas200622 		    NULL);
6445331Samw 
6455331Samw 		if (rc == 0) {
6465331Samw 			*ret_snode = smb_node_lookup(sr, op, cr, vp, name,
64710001SJoyce.McIntosh@Sun.COM 			    dnode, NULL);
6485331Samw 
6498670SJose.Borrego@Sun.COM 			if (*ret_snode == NULL)
6505331Samw 				rc = ENOMEM;
6518670SJose.Borrego@Sun.COM 
6528670SJose.Borrego@Sun.COM 			VN_RELE(vp);
6535331Samw 		}
6545331Samw 	}
6555331Samw 
65611963SAfshin.Ardakani@Sun.COM 	if (rc == 0)
65711963SAfshin.Ardakani@Sun.COM 		smb_node_notify_parents(dnode);
65811963SAfshin.Ardakani@Sun.COM 
6595331Samw 	return (rc);
6605331Samw }
6615331Samw 
6625331Samw /*
6635331Samw  * smb_fsop_remove
6645331Samw  *
6655331Samw  * All SMB functions should use this wrapper to ensure that
6665331Samw  * the the calls are performed with the appropriate credentials.
6675331Samw  * Please document any direct call to explain the reason
6685331Samw  * for avoiding this wrapper.
6695331Samw  *
6705331Samw  * It is assumed that a reference exists on snode coming into this routine.
6715331Samw  *
6725331Samw  * A null smb_request might be passed to this function.
6735331Samw  */
6745331Samw int
6755331Samw smb_fsop_remove(
6766139Sjb150015     smb_request_t	*sr,
6776139Sjb150015     cred_t		*cr,
6789343SAfshin.Ardakani@Sun.COM     smb_node_t		*dnode,
6796139Sjb150015     char		*name,
6809231SAfshin.Ardakani@Sun.COM     uint32_t		flags)
6815331Samw {
6826139Sjb150015 	smb_node_t	*fnode;
6836139Sjb150015 	char		*longname;
6846139Sjb150015 	char		*fname;
6856139Sjb150015 	char		*sname;
6866139Sjb150015 	int		rc;
6875331Samw 
6885331Samw 	ASSERT(cr);
6895331Samw 	/*
6905331Samw 	 * The state of the node could be SMB_NODE_STATE_DESTROYING if this
6915331Samw 	 * function is called during the deletion of the node (because of
6925331Samw 	 * DELETE_ON_CLOSE).
6935331Samw 	 */
6949343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode);
6959343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode->n_magic == SMB_NODE_MAGIC);
6965331Samw 
6979343SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_CONTAINS_NODE(sr, dnode) == 0 ||
6988845Samw@Sun.COM 	    SMB_TREE_HAS_ACCESS(sr, ACE_DELETE) == 0)
6995331Samw 		return (EACCES);
7005331Samw 
7017348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_READONLY(sr))
7025331Samw 		return (EROFS);
7035331Samw 
7045331Samw 	fname = kmem_alloc(MAXNAMELEN, KM_SLEEP);
7055331Samw 	sname = kmem_alloc(MAXNAMELEN, KM_SLEEP);
7065331Samw 
7079343SAfshin.Ardakani@Sun.COM 	if (dnode->flags & NODE_XATTR_DIR) {
70811963SAfshin.Ardakani@Sun.COM 		fnode = dnode->n_dnode;
70911963SAfshin.Ardakani@Sun.COM 		rc = smb_vop_stream_remove(fnode->vp, name, flags, cr);
71011963SAfshin.Ardakani@Sun.COM 
71111963SAfshin.Ardakani@Sun.COM 		/* notify change to the unnamed stream */
71211963SAfshin.Ardakani@Sun.COM 		if ((rc == 0) && fnode->n_dnode)
71311963SAfshin.Ardakani@Sun.COM 			smb_node_notify_change(fnode->n_dnode);
71411963SAfshin.Ardakani@Sun.COM 
7159343SAfshin.Ardakani@Sun.COM 	} else if (smb_is_stream_name(name)) {
7169343SAfshin.Ardakani@Sun.COM 		smb_stream_parse_name(name, fname, sname);
7178334SJose.Borrego@Sun.COM 
7185967Scp160787 		/*
7195331Samw 		 * Look up the unnamed stream (i.e. fname).
7205331Samw 		 * Unmangle processing will be done on fname
7215331Samw 		 * as well as any link target.
7225331Samw 		 */
7235331Samw 
7245331Samw 		rc = smb_fsop_lookup(sr, cr, flags | SMB_FOLLOW_LINKS,
72510001SJoyce.McIntosh@Sun.COM 		    sr->tid_tree->t_snode, dnode, fname, &fnode);
7265331Samw 
7275331Samw 		if (rc != 0) {
7285331Samw 			kmem_free(fname, MAXNAMELEN);
7295331Samw 			kmem_free(sname, MAXNAMELEN);
7305331Samw 			return (rc);
7315331Samw 		}
7325331Samw 
7335331Samw 		/*
7345331Samw 		 * XXX
7355331Samw 		 * Need to find out what permission is required by NTFS
7365331Samw 		 * to remove a stream.
7375331Samw 		 */
7385772Sas200622 		rc = smb_vop_stream_remove(fnode->vp, sname, flags, cr);
7395331Samw 
7405331Samw 		smb_node_release(fnode);
74111963SAfshin.Ardakani@Sun.COM 
74211963SAfshin.Ardakani@Sun.COM 		/* notify change to the unnamed stream */
74311963SAfshin.Ardakani@Sun.COM 		if (rc == 0)
74411963SAfshin.Ardakani@Sun.COM 			smb_node_notify_change(dnode);
7455331Samw 	} else {
7469343SAfshin.Ardakani@Sun.COM 		rc = smb_vop_remove(dnode->vp, name, flags, cr);
7475331Samw 
7485331Samw 		if (rc == ENOENT) {
749*12508Samw@Sun.COM 			if (!smb_maybe_mangled(name)) {
7505331Samw 				kmem_free(fname, MAXNAMELEN);
7515331Samw 				kmem_free(sname, MAXNAMELEN);
7525331Samw 				return (rc);
7535331Samw 			}
7545331Samw 			longname = kmem_alloc(MAXNAMELEN, KM_SLEEP);
7555331Samw 
75610504SKeyur.Desai@Sun.COM 			if (SMB_TREE_SUPPORTS_ABE(sr))
75710504SKeyur.Desai@Sun.COM 				flags |= SMB_ABE;
75810504SKeyur.Desai@Sun.COM 
759*12508Samw@Sun.COM 			rc = smb_unmangle(dnode, name, longname, MAXNAMELEN,
760*12508Samw@Sun.COM 			    flags);
7615331Samw 
7625331Samw 			if (rc == 0) {
7635331Samw 				/*
7649231SAfshin.Ardakani@Sun.COM 				 * longname is the real (case-sensitive)
7659231SAfshin.Ardakani@Sun.COM 				 * on-disk name.
7665331Samw 				 * We make sure we do a remove on this exact
7675331Samw 				 * name, as the name was mangled and denotes
7685331Samw 				 * a unique file.
7695331Samw 				 */
7705331Samw 				flags &= ~SMB_IGNORE_CASE;
7719343SAfshin.Ardakani@Sun.COM 				rc = smb_vop_remove(dnode->vp, longname,
7725772Sas200622 				    flags, cr);
7735331Samw 			}
7745331Samw 
77511963SAfshin.Ardakani@Sun.COM 			if (rc == 0)
77611963SAfshin.Ardakani@Sun.COM 				smb_node_notify_parents(dnode);
77711963SAfshin.Ardakani@Sun.COM 
7785331Samw 			kmem_free(longname, MAXNAMELEN);
7795331Samw 		}
7805331Samw 	}
7815331Samw 
7825331Samw 	kmem_free(fname, MAXNAMELEN);
7835331Samw 	kmem_free(sname, MAXNAMELEN);
78411963SAfshin.Ardakani@Sun.COM 
7855331Samw 	return (rc);
7865331Samw }
7875331Samw 
7885331Samw /*
7895331Samw  * smb_fsop_remove_streams
7905331Samw  *
7915331Samw  * This function removes a file's streams without removing the
7925331Samw  * file itself.
7935331Samw  *
7948670SJose.Borrego@Sun.COM  * It is assumed that fnode is not a link.
7955331Samw  */
7965331Samw int
7976139Sjb150015 smb_fsop_remove_streams(smb_request_t *sr, cred_t *cr, smb_node_t *fnode)
7985331Samw {
7998670SJose.Borrego@Sun.COM 	int rc, flags = 0;
8008670SJose.Borrego@Sun.COM 	uint16_t odid;
8018670SJose.Borrego@Sun.COM 	smb_odir_t *od;
8028670SJose.Borrego@Sun.COM 	smb_odirent_t *odirent;
8038670SJose.Borrego@Sun.COM 	boolean_t eos;
8045331Samw 
8057348SJose.Borrego@Sun.COM 	ASSERT(sr);
8065331Samw 	ASSERT(cr);
8075331Samw 	ASSERT(fnode);
8085331Samw 	ASSERT(fnode->n_magic == SMB_NODE_MAGIC);
8095331Samw 	ASSERT(fnode->n_state != SMB_NODE_STATE_DESTROYING);
8105331Samw 
8119343SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_CONTAINS_NODE(sr, fnode) == 0) {
8129343SAfshin.Ardakani@Sun.COM 		smbsr_errno(sr, EACCES);
8139343SAfshin.Ardakani@Sun.COM 		return (-1);
8149343SAfshin.Ardakani@Sun.COM 	}
8155331Samw 
8169343SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_IS_READONLY(sr)) {
8179343SAfshin.Ardakani@Sun.COM 		smbsr_errno(sr, EROFS);
8189343SAfshin.Ardakani@Sun.COM 		return (-1);
8199343SAfshin.Ardakani@Sun.COM 	}
8205331Samw 
8217348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_CASEINSENSITIVE(sr))
8225331Samw 		flags = SMB_IGNORE_CASE;
8239343SAfshin.Ardakani@Sun.COM 
8249231SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_SUPPORTS_CATIA(sr))
8259231SAfshin.Ardakani@Sun.COM 		flags |= SMB_CATIA;
8265331Samw 
8279343SAfshin.Ardakani@Sun.COM 	if ((odid = smb_odir_openat(sr, fnode)) == 0) {
8289343SAfshin.Ardakani@Sun.COM 		smbsr_errno(sr, ENOENT);
8299343SAfshin.Ardakani@Sun.COM 		return (-1);
8309343SAfshin.Ardakani@Sun.COM 	}
8319343SAfshin.Ardakani@Sun.COM 
8329343SAfshin.Ardakani@Sun.COM 	if ((od = smb_tree_lookup_odir(sr->tid_tree, odid)) == NULL) {
8339343SAfshin.Ardakani@Sun.COM 		smbsr_errno(sr, ENOENT);
8349343SAfshin.Ardakani@Sun.COM 		return (-1);
8359343SAfshin.Ardakani@Sun.COM 	}
8365331Samw 
8378670SJose.Borrego@Sun.COM 	odirent = kmem_alloc(sizeof (smb_odirent_t), KM_SLEEP);
8388670SJose.Borrego@Sun.COM 	for (;;) {
8398670SJose.Borrego@Sun.COM 		rc = smb_odir_read(sr, od, odirent, &eos);
8408670SJose.Borrego@Sun.COM 		if ((rc != 0) || (eos))
8415331Samw 			break;
8428670SJose.Borrego@Sun.COM 		(void) smb_vop_remove(od->d_dnode->vp, odirent->od_name,
8438670SJose.Borrego@Sun.COM 		    flags, cr);
8448670SJose.Borrego@Sun.COM 	}
8458670SJose.Borrego@Sun.COM 	kmem_free(odirent, sizeof (smb_odirent_t));
8465331Samw 
8479635SJoyce.McIntosh@Sun.COM 	smb_odir_close(od);
8488670SJose.Borrego@Sun.COM 	smb_odir_release(od);
8495331Samw 	return (rc);
8505331Samw }
8515331Samw 
8525331Samw /*
8535331Samw  * smb_fsop_rmdir
8545331Samw  *
8555331Samw  * All SMB functions should use this wrapper to ensure that
8565331Samw  * the the calls are performed with the appropriate credentials.
8575331Samw  * Please document any direct call to explain the reason
8585331Samw  * for avoiding this wrapper.
8595331Samw  *
8605331Samw  * It is assumed that a reference exists on snode coming into this routine.
8615331Samw  */
8625331Samw int
8635331Samw smb_fsop_rmdir(
8646139Sjb150015     smb_request_t	*sr,
8656139Sjb150015     cred_t		*cr,
8669343SAfshin.Ardakani@Sun.COM     smb_node_t		*dnode,
8676139Sjb150015     char		*name,
8689231SAfshin.Ardakani@Sun.COM     uint32_t		flags)
8695331Samw {
8706139Sjb150015 	int		rc;
8716139Sjb150015 	char		*longname;
8725331Samw 
8735331Samw 	ASSERT(cr);
8745331Samw 	/*
8755331Samw 	 * The state of the node could be SMB_NODE_STATE_DESTROYING if this
8765331Samw 	 * function is called during the deletion of the node (because of
8775331Samw 	 * DELETE_ON_CLOSE).
8785331Samw 	 */
8799343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode);
8809343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode->n_magic == SMB_NODE_MAGIC);
8815331Samw 
8829343SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_CONTAINS_NODE(sr, dnode) == 0 ||
8838845Samw@Sun.COM 	    SMB_TREE_HAS_ACCESS(sr, ACE_DELETE_CHILD) == 0)
8845331Samw 		return (EACCES);
8855331Samw 
8867348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_READONLY(sr))
8875331Samw 		return (EROFS);
8885331Samw 
8899343SAfshin.Ardakani@Sun.COM 	rc = smb_vop_rmdir(dnode->vp, name, flags, cr);
8905331Samw 
8915331Samw 	if (rc == ENOENT) {
892*12508Samw@Sun.COM 		if (!smb_maybe_mangled(name))
8935331Samw 			return (rc);
8945331Samw 
8955331Samw 		longname = kmem_alloc(MAXNAMELEN, KM_SLEEP);
89610504SKeyur.Desai@Sun.COM 
89710504SKeyur.Desai@Sun.COM 		if (SMB_TREE_SUPPORTS_ABE(sr))
89810504SKeyur.Desai@Sun.COM 			flags |= SMB_ABE;
899*12508Samw@Sun.COM 		rc = smb_unmangle(dnode, name, longname, MAXNAMELEN, flags);
9005331Samw 
9015331Samw 		if (rc == 0) {
9025331Samw 			/*
9039231SAfshin.Ardakani@Sun.COM 			 * longname is the real (case-sensitive)
9049231SAfshin.Ardakani@Sun.COM 			 * on-disk name.
9055331Samw 			 * We make sure we do a rmdir on this exact
9065331Samw 			 * name, as the name was mangled and denotes
9075331Samw 			 * a unique directory.
9085331Samw 			 */
9095331Samw 			flags &= ~SMB_IGNORE_CASE;
9109343SAfshin.Ardakani@Sun.COM 			rc = smb_vop_rmdir(dnode->vp, longname, flags, cr);
9115331Samw 		}
9125331Samw 
9135331Samw 		kmem_free(longname, MAXNAMELEN);
9145331Samw 	}
9155331Samw 
91611963SAfshin.Ardakani@Sun.COM 	if (rc == 0)
91711963SAfshin.Ardakani@Sun.COM 		smb_node_notify_parents(dnode);
91811963SAfshin.Ardakani@Sun.COM 
9195331Samw 	return (rc);
9205331Samw }
9215331Samw 
9225331Samw /*
9235331Samw  * smb_fsop_getattr
9245331Samw  *
9255331Samw  * All SMB functions should use this wrapper to ensure that
9265331Samw  * the the calls are performed with the appropriate credentials.
9275331Samw  * Please document any direct call to explain the reason
9285331Samw  * for avoiding this wrapper.
9295331Samw  *
9305331Samw  * It is assumed that a reference exists on snode coming into this routine.
9315331Samw  */
9325331Samw int
9336139Sjb150015 smb_fsop_getattr(smb_request_t *sr, cred_t *cr, smb_node_t *snode,
9345331Samw     smb_attr_t *attr)
9355331Samw {
9365331Samw 	smb_node_t *unnamed_node;
9375331Samw 	vnode_t *unnamed_vp = NULL;
9385331Samw 	uint32_t status;
9395331Samw 	uint32_t access = 0;
9405331Samw 	int flags = 0;
9415772Sas200622 	int rc;
9425331Samw 
9435331Samw 	ASSERT(cr);
9445331Samw 	ASSERT(snode);
9455331Samw 	ASSERT(snode->n_magic == SMB_NODE_MAGIC);
9465331Samw 	ASSERT(snode->n_state != SMB_NODE_STATE_DESTROYING);
9475331Samw 
9488845Samw@Sun.COM 	if (SMB_TREE_CONTAINS_NODE(sr, snode) == 0 ||
9498845Samw@Sun.COM 	    SMB_TREE_HAS_ACCESS(sr, ACE_READ_ATTRIBUTES) == 0)
9505331Samw 		return (EACCES);
9515331Samw 
95210001SJoyce.McIntosh@Sun.COM 	/* sr could be NULL in some cases */
95310001SJoyce.McIntosh@Sun.COM 	if (sr && sr->fid_ofile) {
9545331Samw 		/* if uid and/or gid is requested */
9555331Samw 		if (attr->sa_mask & (SMB_AT_UID|SMB_AT_GID))
9565331Samw 			access |= READ_CONTROL;
9575331Samw 
9585331Samw 		/* if anything else is also requested */
9595331Samw 		if (attr->sa_mask & ~(SMB_AT_UID|SMB_AT_GID))
9605331Samw 			access |= FILE_READ_ATTRIBUTES;
9615331Samw 
9625331Samw 		status = smb_ofile_access(sr->fid_ofile, cr, access);
9635331Samw 		if (status != NT_STATUS_SUCCESS)
9645331Samw 			return (EACCES);
9655331Samw 
9667348SJose.Borrego@Sun.COM 		if (smb_tree_has_feature(sr->tid_tree,
9677348SJose.Borrego@Sun.COM 		    SMB_TREE_ACEMASKONACCESS))
9685331Samw 			flags = ATTR_NOACLCHECK;
9695331Samw 	}
9705331Samw 
9715331Samw 	unnamed_node = SMB_IS_STREAM(snode);
9725331Samw 
9735331Samw 	if (unnamed_node) {
9745331Samw 		ASSERT(unnamed_node->n_magic == SMB_NODE_MAGIC);
9755331Samw 		ASSERT(unnamed_node->n_state != SMB_NODE_STATE_DESTROYING);
9765331Samw 		unnamed_vp = unnamed_node->vp;
9775331Samw 	}
9785331Samw 
9795772Sas200622 	rc = smb_vop_getattr(snode->vp, unnamed_vp, attr, flags, cr);
98011963SAfshin.Ardakani@Sun.COM 
98111963SAfshin.Ardakani@Sun.COM 	if ((rc == 0) && smb_node_is_dfslink(snode)) {
98211963SAfshin.Ardakani@Sun.COM 		/* a DFS link should be treated as a directory */
98311963SAfshin.Ardakani@Sun.COM 		attr->sa_dosattr |= FILE_ATTRIBUTE_DIRECTORY;
98411963SAfshin.Ardakani@Sun.COM 	}
98511963SAfshin.Ardakani@Sun.COM 
9865772Sas200622 	return (rc);
9875331Samw }
9885331Samw 
9895331Samw /*
9909914Samw@Sun.COM  * smb_fsop_link
9919914Samw@Sun.COM  *
9929914Samw@Sun.COM  * All SMB functions should use this smb_vop_link wrapper to ensure that
9939914Samw@Sun.COM  * the smb_vop_link is performed with the appropriate credentials.
9949914Samw@Sun.COM  * Please document any direct call to smb_vop_link to explain the reason
9959914Samw@Sun.COM  * for avoiding this wrapper.
9969914Samw@Sun.COM  *
9979914Samw@Sun.COM  * It is assumed that references exist on from_dnode and to_dnode coming
9989914Samw@Sun.COM  * into this routine.
9999914Samw@Sun.COM  */
10009914Samw@Sun.COM int
100110966SJordan.Brown@Sun.COM smb_fsop_link(smb_request_t *sr, cred_t *cr, smb_node_t *from_fnode,
100210966SJordan.Brown@Sun.COM     smb_node_t *to_dnode, char *to_name)
10039914Samw@Sun.COM {
10049914Samw@Sun.COM 	char	*longname = NULL;
10059914Samw@Sun.COM 	int	flags = 0;
10069914Samw@Sun.COM 	int	rc;
10079914Samw@Sun.COM 
10089914Samw@Sun.COM 	ASSERT(sr);
10099914Samw@Sun.COM 	ASSERT(sr->tid_tree);
10109914Samw@Sun.COM 	ASSERT(cr);
10119914Samw@Sun.COM 	ASSERT(to_dnode);
10129914Samw@Sun.COM 	ASSERT(to_dnode->n_magic == SMB_NODE_MAGIC);
10139914Samw@Sun.COM 	ASSERT(to_dnode->n_state != SMB_NODE_STATE_DESTROYING);
10149914Samw@Sun.COM 	ASSERT(from_fnode);
10159914Samw@Sun.COM 	ASSERT(from_fnode->n_magic == SMB_NODE_MAGIC);
10169914Samw@Sun.COM 	ASSERT(from_fnode->n_state != SMB_NODE_STATE_DESTROYING);
10179914Samw@Sun.COM 
10189914Samw@Sun.COM 	if (SMB_TREE_CONTAINS_NODE(sr, from_fnode) == 0)
10199914Samw@Sun.COM 		return (EACCES);
10209914Samw@Sun.COM 
10219914Samw@Sun.COM 	if (SMB_TREE_CONTAINS_NODE(sr, to_dnode) == 0)
10229914Samw@Sun.COM 		return (EACCES);
10239914Samw@Sun.COM 
10249914Samw@Sun.COM 	if (SMB_TREE_IS_READONLY(sr))
10259914Samw@Sun.COM 		return (EROFS);
10269914Samw@Sun.COM 
10279914Samw@Sun.COM 	if (SMB_TREE_IS_CASEINSENSITIVE(sr))
10289914Samw@Sun.COM 		flags = SMB_IGNORE_CASE;
10299914Samw@Sun.COM 	if (SMB_TREE_SUPPORTS_CATIA(sr))
10309914Samw@Sun.COM 		flags |= SMB_CATIA;
103110504SKeyur.Desai@Sun.COM 	if (SMB_TREE_SUPPORTS_ABE(sr))
103210504SKeyur.Desai@Sun.COM 		flags |= SMB_ABE;
10339914Samw@Sun.COM 
1034*12508Samw@Sun.COM 	if (smb_maybe_mangled(to_name)) {
10359914Samw@Sun.COM 		longname = kmem_alloc(MAXNAMELEN, KM_SLEEP);
1036*12508Samw@Sun.COM 		rc = smb_unmangle(to_dnode, to_name, longname,
1037*12508Samw@Sun.COM 		    MAXNAMELEN, flags);
10389914Samw@Sun.COM 		kmem_free(longname, MAXNAMELEN);
10399914Samw@Sun.COM 
10409914Samw@Sun.COM 		if (rc == 0)
10419914Samw@Sun.COM 			rc = EEXIST;
10429914Samw@Sun.COM 		if (rc != ENOENT)
10439914Samw@Sun.COM 			return (rc);
10449914Samw@Sun.COM 	}
10459914Samw@Sun.COM 
10469914Samw@Sun.COM 	rc = smb_vop_link(to_dnode->vp, from_fnode->vp, to_name, flags, cr);
104711963SAfshin.Ardakani@Sun.COM 
104811963SAfshin.Ardakani@Sun.COM 	if ((rc == 0) && from_fnode->n_dnode)
104911963SAfshin.Ardakani@Sun.COM 		smb_node_notify_parents(from_fnode->n_dnode);
105011963SAfshin.Ardakani@Sun.COM 
10519914Samw@Sun.COM 	return (rc);
10529914Samw@Sun.COM }
10539914Samw@Sun.COM 
10549914Samw@Sun.COM /*
10555331Samw  * smb_fsop_rename
10565331Samw  *
10575331Samw  * All SMB functions should use this smb_vop_rename wrapper to ensure that
10585331Samw  * the smb_vop_rename is performed with the appropriate credentials.
10595331Samw  * Please document any direct call to smb_vop_rename to explain the reason
10605331Samw  * for avoiding this wrapper.
10615331Samw  *
10629343SAfshin.Ardakani@Sun.COM  * It is assumed that references exist on from_dnode and to_dnode coming
10635331Samw  * into this routine.
10645331Samw  */
10655331Samw int
10665331Samw smb_fsop_rename(
10676139Sjb150015     smb_request_t *sr,
10685331Samw     cred_t *cr,
10699343SAfshin.Ardakani@Sun.COM     smb_node_t *from_dnode,
10705331Samw     char *from_name,
10719343SAfshin.Ardakani@Sun.COM     smb_node_t *to_dnode,
10725331Samw     char *to_name)
10735331Samw {
10745331Samw 	smb_node_t *from_snode;
107511963SAfshin.Ardakani@Sun.COM 	smb_attr_t from_attr;
10765331Samw 	vnode_t *from_vp;
10779231SAfshin.Ardakani@Sun.COM 	int flags = 0, ret_flags;
10785331Samw 	int rc;
10798845Samw@Sun.COM 	boolean_t isdir;
10805331Samw 
10815331Samw 	ASSERT(cr);
10829343SAfshin.Ardakani@Sun.COM 	ASSERT(from_dnode);
10839343SAfshin.Ardakani@Sun.COM 	ASSERT(from_dnode->n_magic == SMB_NODE_MAGIC);
10849343SAfshin.Ardakani@Sun.COM 	ASSERT(from_dnode->n_state != SMB_NODE_STATE_DESTROYING);
10855331Samw 
10869343SAfshin.Ardakani@Sun.COM 	ASSERT(to_dnode);
10879343SAfshin.Ardakani@Sun.COM 	ASSERT(to_dnode->n_magic == SMB_NODE_MAGIC);
10889343SAfshin.Ardakani@Sun.COM 	ASSERT(to_dnode->n_state != SMB_NODE_STATE_DESTROYING);
10895331Samw 
10909343SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_CONTAINS_NODE(sr, from_dnode) == 0)
10915331Samw 		return (EACCES);
10925331Samw 
10939343SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_CONTAINS_NODE(sr, to_dnode) == 0)
10945331Samw 		return (EACCES);
10955331Samw 
10965331Samw 	ASSERT(sr);
10975331Samw 	ASSERT(sr->tid_tree);
10987348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_READONLY(sr))
10995331Samw 		return (EROFS);
11005331Samw 
11015331Samw 	/*
11027348SJose.Borrego@Sun.COM 	 * Note: There is no need to check SMB_TREE_IS_CASEINSENSITIVE
11035331Samw 	 * here.
11045331Samw 	 *
11055331Samw 	 * A case-sensitive rename is always done in this routine
11065331Samw 	 * because we are using the on-disk name from an earlier lookup.
11075331Samw 	 * If a mangled name was passed in by the caller (denoting a
11085331Samw 	 * deterministic lookup), then the exact file must be renamed
11095331Samw 	 * (i.e. SMB_IGNORE_CASE must not be passed to VOP_RENAME, or
11105331Samw 	 * else the underlying file system might return a "first-match"
11115331Samw 	 * on this on-disk name, possibly resulting in the wrong file).
11125331Samw 	 */
11135331Samw 
11149231SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_SUPPORTS_CATIA(sr))
11159231SAfshin.Ardakani@Sun.COM 		flags |= SMB_CATIA;
11169231SAfshin.Ardakani@Sun.COM 
11175331Samw 	/*
11185331Samw 	 * XXX: Lock required through smb_node_release() below?
11195331Samw 	 */
11205331Samw 
11219343SAfshin.Ardakani@Sun.COM 	rc = smb_vop_lookup(from_dnode->vp, from_name, &from_vp, NULL,
112211963SAfshin.Ardakani@Sun.COM 	    flags, &ret_flags, NULL, &from_attr, cr);
11235331Samw 
11245331Samw 	if (rc != 0)
11255331Samw 		return (rc);
11265331Samw 
112711963SAfshin.Ardakani@Sun.COM 	if (from_attr.sa_dosattr & FILE_ATTRIBUTE_REPARSE_POINT) {
112811963SAfshin.Ardakani@Sun.COM 		VN_RELE(from_vp);
112911963SAfshin.Ardakani@Sun.COM 		return (EACCES);
113011963SAfshin.Ardakani@Sun.COM 	}
113111963SAfshin.Ardakani@Sun.COM 
113211963SAfshin.Ardakani@Sun.COM 	isdir = ((from_attr.sa_dosattr & FILE_ATTRIBUTE_DIRECTORY) != 0);
11338845Samw@Sun.COM 
11348845Samw@Sun.COM 	if ((isdir && SMB_TREE_HAS_ACCESS(sr,
11358845Samw@Sun.COM 	    ACE_DELETE_CHILD | ACE_ADD_SUBDIRECTORY) !=
11368845Samw@Sun.COM 	    (ACE_DELETE_CHILD | ACE_ADD_SUBDIRECTORY)) ||
11378845Samw@Sun.COM 	    (!isdir && SMB_TREE_HAS_ACCESS(sr, ACE_DELETE | ACE_ADD_FILE) !=
113811963SAfshin.Ardakani@Sun.COM 	    (ACE_DELETE | ACE_ADD_FILE))) {
113911963SAfshin.Ardakani@Sun.COM 		VN_RELE(from_vp);
11408845Samw@Sun.COM 		return (EACCES);
114111963SAfshin.Ardakani@Sun.COM 	}
11428845Samw@Sun.COM 
114310966SJordan.Brown@Sun.COM 	/*
114410966SJordan.Brown@Sun.COM 	 * SMB checks access on open and retains an access granted
114510966SJordan.Brown@Sun.COM 	 * mask for use while the file is open.  ACL changes should
114610966SJordan.Brown@Sun.COM 	 * not affect access to an open file.
114710966SJordan.Brown@Sun.COM 	 *
114810966SJordan.Brown@Sun.COM 	 * If the rename is being performed on an ofile:
114910966SJordan.Brown@Sun.COM 	 * - Check the ofile's access granted mask to see if the
115010966SJordan.Brown@Sun.COM 	 *   rename is permitted - requires DELETE access.
115110966SJordan.Brown@Sun.COM 	 * - If the file system does access checking, set the
115210966SJordan.Brown@Sun.COM 	 *   ATTR_NOACLCHECK flag to ensure that the file system
115310966SJordan.Brown@Sun.COM 	 *   does not check permissions on subsequent calls.
115410966SJordan.Brown@Sun.COM 	 */
115510966SJordan.Brown@Sun.COM 	if (sr && sr->fid_ofile) {
115610966SJordan.Brown@Sun.COM 		rc = smb_ofile_access(sr->fid_ofile, cr, DELETE);
115711963SAfshin.Ardakani@Sun.COM 		if (rc != NT_STATUS_SUCCESS) {
115811963SAfshin.Ardakani@Sun.COM 			VN_RELE(from_vp);
115910966SJordan.Brown@Sun.COM 			return (EACCES);
116011963SAfshin.Ardakani@Sun.COM 		}
116110966SJordan.Brown@Sun.COM 
116210966SJordan.Brown@Sun.COM 		if (smb_tree_has_feature(sr->tid_tree,
116310966SJordan.Brown@Sun.COM 		    SMB_TREE_ACEMASKONACCESS))
116410966SJordan.Brown@Sun.COM 			flags = ATTR_NOACLCHECK;
116510966SJordan.Brown@Sun.COM 	}
116610966SJordan.Brown@Sun.COM 
11679343SAfshin.Ardakani@Sun.COM 	rc = smb_vop_rename(from_dnode->vp, from_name, to_dnode->vp,
11685772Sas200622 	    to_name, flags, cr);
11695331Samw 
11705331Samw 	if (rc == 0) {
11715331Samw 		from_snode = smb_node_lookup(sr, NULL, cr, from_vp, from_name,
117210001SJoyce.McIntosh@Sun.COM 		    from_dnode, NULL);
11735331Samw 
11745331Samw 		if (from_snode == NULL) {
11758670SJose.Borrego@Sun.COM 			rc = ENOMEM;
11768670SJose.Borrego@Sun.COM 		} else {
11779343SAfshin.Ardakani@Sun.COM 			smb_node_rename(from_dnode, from_snode,
11789343SAfshin.Ardakani@Sun.COM 			    to_dnode, to_name);
11798670SJose.Borrego@Sun.COM 			smb_node_release(from_snode);
11805331Samw 		}
11815331Samw 	}
11828670SJose.Borrego@Sun.COM 	VN_RELE(from_vp);
11835331Samw 
118411963SAfshin.Ardakani@Sun.COM 	if (rc == 0)
118511963SAfshin.Ardakani@Sun.COM 		smb_node_notify_parents(from_dnode);
118611963SAfshin.Ardakani@Sun.COM 
11875331Samw 	/* XXX: unlock */
11885331Samw 
11895331Samw 	return (rc);
11905331Samw }
11915331Samw 
11925331Samw /*
11935331Samw  * smb_fsop_setattr
11945331Samw  *
11955331Samw  * All SMB functions should use this wrapper to ensure that
11965331Samw  * the the calls are performed with the appropriate credentials.
11975331Samw  * Please document any direct call to explain the reason
11985331Samw  * for avoiding this wrapper.
11995331Samw  *
120010504SKeyur.Desai@Sun.COM  * It is assumed that a reference exists on snode coming into
120110504SKeyur.Desai@Sun.COM  * this function.
12025331Samw  * A null smb_request might be passed to this function.
12035331Samw  */
12045331Samw int
12055331Samw smb_fsop_setattr(
12066139Sjb150015     smb_request_t	*sr,
12076139Sjb150015     cred_t		*cr,
12086139Sjb150015     smb_node_t		*snode,
120910001SJoyce.McIntosh@Sun.COM     smb_attr_t		*set_attr)
12105331Samw {
12115331Samw 	smb_node_t *unnamed_node;
12125331Samw 	vnode_t *unnamed_vp = NULL;
12135331Samw 	uint32_t status;
12147619SJose.Borrego@Sun.COM 	uint32_t access;
12155331Samw 	int rc = 0;
12165331Samw 	int flags = 0;
12177619SJose.Borrego@Sun.COM 	uint_t sa_mask;
12185331Samw 
12195331Samw 	ASSERT(cr);
12205331Samw 	ASSERT(snode);
12215331Samw 	ASSERT(snode->n_magic == SMB_NODE_MAGIC);
12225331Samw 	ASSERT(snode->n_state != SMB_NODE_STATE_DESTROYING);
12235331Samw 
12247348SJose.Borrego@Sun.COM 	if (SMB_TREE_CONTAINS_NODE(sr, snode) == 0)
12255331Samw 		return (EACCES);
12265331Samw 
12277348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_READONLY(sr))
12285331Samw 		return (EROFS);
12295331Samw 
12308845Samw@Sun.COM 	if (SMB_TREE_HAS_ACCESS(sr,
12318845Samw@Sun.COM 	    ACE_WRITE_ATTRIBUTES | ACE_WRITE_NAMED_ATTRS) == 0)
12328845Samw@Sun.COM 		return (EACCES);
12338845Samw@Sun.COM 
123410504SKeyur.Desai@Sun.COM 	/*
123510504SKeyur.Desai@Sun.COM 	 * The file system cannot detect pending READDONLY
123610504SKeyur.Desai@Sun.COM 	 * (i.e. if the file has been opened readonly but
123710504SKeyur.Desai@Sun.COM 	 * not yet closed) so we need to test READONLY here.
123810504SKeyur.Desai@Sun.COM 	 */
12397348SJose.Borrego@Sun.COM 	if (sr && (set_attr->sa_mask & SMB_AT_SIZE)) {
12407348SJose.Borrego@Sun.COM 		if (sr->fid_ofile) {
12417348SJose.Borrego@Sun.COM 			if (SMB_OFILE_IS_READONLY(sr->fid_ofile))
12427348SJose.Borrego@Sun.COM 				return (EACCES);
12437348SJose.Borrego@Sun.COM 		} else {
12447348SJose.Borrego@Sun.COM 			if (SMB_PATHFILE_IS_READONLY(sr, snode))
12457348SJose.Borrego@Sun.COM 				return (EACCES);
12467348SJose.Borrego@Sun.COM 		}
12477348SJose.Borrego@Sun.COM 	}
12487348SJose.Borrego@Sun.COM 
124910504SKeyur.Desai@Sun.COM 	/*
125010504SKeyur.Desai@Sun.COM 	 * SMB checks access on open and retains an access granted
125110504SKeyur.Desai@Sun.COM 	 * mask for use while the file is open.  ACL changes should
125210504SKeyur.Desai@Sun.COM 	 * not affect access to an open file.
125310504SKeyur.Desai@Sun.COM 	 *
125410504SKeyur.Desai@Sun.COM 	 * If the setattr is being performed on an ofile:
125510504SKeyur.Desai@Sun.COM 	 * - Check the ofile's access granted mask to see if the
125610504SKeyur.Desai@Sun.COM 	 *   setattr is permitted.
125710504SKeyur.Desai@Sun.COM 	 *   UID, GID - require WRITE_OWNER
125810504SKeyur.Desai@Sun.COM 	 *   SIZE, ALLOCSZ - require FILE_WRITE_DATA
125910504SKeyur.Desai@Sun.COM 	 *   all other attributes require FILE_WRITE_ATTRIBUTES
126010504SKeyur.Desai@Sun.COM 	 *
126110504SKeyur.Desai@Sun.COM 	 * - If the file system does access checking, set the
126210504SKeyur.Desai@Sun.COM 	 *   ATTR_NOACLCHECK flag to ensure that the file system
126310504SKeyur.Desai@Sun.COM 	 *   does not check permissions on subsequent calls.
126410504SKeyur.Desai@Sun.COM 	 */
12655331Samw 	if (sr && sr->fid_ofile) {
12667619SJose.Borrego@Sun.COM 		sa_mask = set_attr->sa_mask;
12677619SJose.Borrego@Sun.COM 		access = 0;
12687619SJose.Borrego@Sun.COM 
126910504SKeyur.Desai@Sun.COM 		if (sa_mask & (SMB_AT_SIZE | SMB_AT_ALLOCSZ)) {
12707619SJose.Borrego@Sun.COM 			access |= FILE_WRITE_DATA;
127110504SKeyur.Desai@Sun.COM 			sa_mask &= ~(SMB_AT_SIZE | SMB_AT_ALLOCSZ);
12727619SJose.Borrego@Sun.COM 		}
12737619SJose.Borrego@Sun.COM 
12747619SJose.Borrego@Sun.COM 		if (sa_mask & (SMB_AT_UID|SMB_AT_GID)) {
12755331Samw 			access |= WRITE_OWNER;
12767619SJose.Borrego@Sun.COM 			sa_mask &= ~(SMB_AT_UID|SMB_AT_GID);
12777619SJose.Borrego@Sun.COM 		}
12787619SJose.Borrego@Sun.COM 
12797619SJose.Borrego@Sun.COM 		if (sa_mask)
12805331Samw 			access |= FILE_WRITE_ATTRIBUTES;
12815331Samw 
12825331Samw 		status = smb_ofile_access(sr->fid_ofile, cr, access);
12835331Samw 		if (status != NT_STATUS_SUCCESS)
12845331Samw 			return (EACCES);
12855331Samw 
12867348SJose.Borrego@Sun.COM 		if (smb_tree_has_feature(sr->tid_tree,
12877348SJose.Borrego@Sun.COM 		    SMB_TREE_ACEMASKONACCESS))
12885331Samw 			flags = ATTR_NOACLCHECK;
12895331Samw 	}
12905331Samw 
12915331Samw 	unnamed_node = SMB_IS_STREAM(snode);
12925331Samw 
12935331Samw 	if (unnamed_node) {
12945331Samw 		ASSERT(unnamed_node->n_magic == SMB_NODE_MAGIC);
12955331Samw 		ASSERT(unnamed_node->n_state != SMB_NODE_STATE_DESTROYING);
12965331Samw 		unnamed_vp = unnamed_node->vp;
12975331Samw 	}
12987757SJanice.Chang@Sun.COM 
12997757SJanice.Chang@Sun.COM 	rc = smb_vop_setattr(snode->vp, unnamed_vp, set_attr, flags, cr);
13005331Samw 	return (rc);
13015331Samw }
13025331Samw 
13035331Samw /*
13045331Samw  * smb_fsop_read
13055331Samw  *
13065331Samw  * All SMB functions should use this wrapper to ensure that
13075331Samw  * the the calls are performed with the appropriate credentials.
13085331Samw  * Please document any direct call to explain the reason
13095331Samw  * for avoiding this wrapper.
13105331Samw  *
13115331Samw  * It is assumed that a reference exists on snode coming into this routine.
13125331Samw  */
13135331Samw int
131410001SJoyce.McIntosh@Sun.COM smb_fsop_read(smb_request_t *sr, cred_t *cr, smb_node_t *snode, uio_t *uio)
13155331Samw {
13167348SJose.Borrego@Sun.COM 	caller_context_t ct;
13175772Sas200622 	int svmand;
13185331Samw 	int rc;
13195331Samw 
13205331Samw 	ASSERT(cr);
13215331Samw 	ASSERT(snode);
13225331Samw 	ASSERT(snode->n_magic == SMB_NODE_MAGIC);
13235331Samw 	ASSERT(snode->n_state != SMB_NODE_STATE_DESTROYING);
13245331Samw 
13255331Samw 	ASSERT(sr);
13265331Samw 	ASSERT(sr->fid_ofile);
13275331Samw 
13288845Samw@Sun.COM 	if (SMB_TREE_HAS_ACCESS(sr, ACE_READ_DATA) == 0)
13298845Samw@Sun.COM 		return (EACCES);
13308845Samw@Sun.COM 
13315331Samw 	rc = smb_ofile_access(sr->fid_ofile, cr, FILE_READ_DATA);
133211963SAfshin.Ardakani@Sun.COM 	if ((rc != NT_STATUS_SUCCESS) &&
133311963SAfshin.Ardakani@Sun.COM 	    (sr->smb_flg2 & SMB_FLAGS2_READ_IF_EXECUTE))
13345331Samw 		rc = smb_ofile_access(sr->fid_ofile, cr, FILE_EXECUTE);
133511963SAfshin.Ardakani@Sun.COM 
133611963SAfshin.Ardakani@Sun.COM 	if (rc != NT_STATUS_SUCCESS)
133711963SAfshin.Ardakani@Sun.COM 		return (EACCES);
13385331Samw 
133910001SJoyce.McIntosh@Sun.COM 	/*
134010001SJoyce.McIntosh@Sun.COM 	 * Streams permission are checked against the unnamed stream,
134110001SJoyce.McIntosh@Sun.COM 	 * but in FS level they have their own permissions. To avoid
134210001SJoyce.McIntosh@Sun.COM 	 * rejection by FS due to lack of permission on the actual
134310001SJoyce.McIntosh@Sun.COM 	 * extended attr kcred is passed for streams.
134410001SJoyce.McIntosh@Sun.COM 	 */
134510001SJoyce.McIntosh@Sun.COM 	if (SMB_IS_STREAM(snode))
13465331Samw 		cr = kcred;
13475331Samw 
13485772Sas200622 	smb_node_start_crit(snode, RW_READER);
13497348SJose.Borrego@Sun.COM 	rc = nbl_svmand(snode->vp, kcred, &svmand);
13505772Sas200622 	if (rc) {
13515772Sas200622 		smb_node_end_crit(snode);
13525772Sas200622 		return (rc);
13535772Sas200622 	}
13545772Sas200622 
13557348SJose.Borrego@Sun.COM 	ct = smb_ct;
13567348SJose.Borrego@Sun.COM 	ct.cc_pid = sr->fid_ofile->f_uniqid;
13575772Sas200622 	rc = nbl_lock_conflict(snode->vp, NBL_READ, uio->uio_loffset,
13587348SJose.Borrego@Sun.COM 	    uio->uio_iov->iov_len, svmand, &ct);
13595772Sas200622 
13605772Sas200622 	if (rc) {
13615772Sas200622 		smb_node_end_crit(snode);
13626432Sas200622 		return (ERANGE);
13635772Sas200622 	}
136410001SJoyce.McIntosh@Sun.COM 
13655772Sas200622 	rc = smb_vop_read(snode->vp, uio, cr);
13665772Sas200622 	smb_node_end_crit(snode);
13675772Sas200622 
13685331Samw 	return (rc);
13695331Samw }
13705331Samw 
13715331Samw /*
13725331Samw  * smb_fsop_write
13735331Samw  *
13745331Samw  * This is a wrapper function used for smb_write and smb_write_raw operations.
13755331Samw  *
13765331Samw  * It is assumed that a reference exists on snode coming into this routine.
13775331Samw  */
13785331Samw int
13795331Samw smb_fsop_write(
13806139Sjb150015     smb_request_t *sr,
13815331Samw     cred_t *cr,
13825331Samw     smb_node_t *snode,
13835331Samw     uio_t *uio,
13845331Samw     uint32_t *lcount,
13857052Samw     int ioflag)
13865331Samw {
13877348SJose.Borrego@Sun.COM 	caller_context_t ct;
13885772Sas200622 	int svmand;
13895331Samw 	int rc;
13905331Samw 
13915331Samw 	ASSERT(cr);
13925331Samw 	ASSERT(snode);
13935331Samw 	ASSERT(snode->n_magic == SMB_NODE_MAGIC);
13945331Samw 	ASSERT(snode->n_state != SMB_NODE_STATE_DESTROYING);
13955331Samw 
13965331Samw 	ASSERT(sr);
13975331Samw 	ASSERT(sr->tid_tree);
13985331Samw 	ASSERT(sr->fid_ofile);
13995331Samw 
14007348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_READONLY(sr))
14015331Samw 		return (EROFS);
14025772Sas200622 
14038845Samw@Sun.COM 	if (SMB_OFILE_IS_READONLY(sr->fid_ofile) ||
14048845Samw@Sun.COM 	    SMB_TREE_HAS_ACCESS(sr, ACE_WRITE_DATA | ACE_APPEND_DATA) == 0)
14057348SJose.Borrego@Sun.COM 		return (EACCES);
14067348SJose.Borrego@Sun.COM 
14075331Samw 	rc = smb_ofile_access(sr->fid_ofile, cr, FILE_WRITE_DATA);
14085772Sas200622 	if (rc != NT_STATUS_SUCCESS) {
14095772Sas200622 		rc = smb_ofile_access(sr->fid_ofile, cr, FILE_APPEND_DATA);
14105772Sas200622 		if (rc != NT_STATUS_SUCCESS)
14115772Sas200622 			return (EACCES);
14125772Sas200622 	}
14135331Samw 
141410001SJoyce.McIntosh@Sun.COM 	/*
141510001SJoyce.McIntosh@Sun.COM 	 * Streams permission are checked against the unnamed stream,
141610001SJoyce.McIntosh@Sun.COM 	 * but in FS level they have their own permissions. To avoid
141710001SJoyce.McIntosh@Sun.COM 	 * rejection by FS due to lack of permission on the actual
141810001SJoyce.McIntosh@Sun.COM 	 * extended attr kcred is passed for streams.
141910001SJoyce.McIntosh@Sun.COM 	 */
142010001SJoyce.McIntosh@Sun.COM 	if (SMB_IS_STREAM(snode))
14215331Samw 		cr = kcred;
14225331Samw 
14235772Sas200622 	smb_node_start_crit(snode, RW_READER);
14247348SJose.Borrego@Sun.COM 	rc = nbl_svmand(snode->vp, kcred, &svmand);
14255772Sas200622 	if (rc) {
14265772Sas200622 		smb_node_end_crit(snode);
14275772Sas200622 		return (rc);
14285772Sas200622 	}
14297348SJose.Borrego@Sun.COM 
14307348SJose.Borrego@Sun.COM 	ct = smb_ct;
14317348SJose.Borrego@Sun.COM 	ct.cc_pid = sr->fid_ofile->f_uniqid;
14325772Sas200622 	rc = nbl_lock_conflict(snode->vp, NBL_WRITE, uio->uio_loffset,
14337348SJose.Borrego@Sun.COM 	    uio->uio_iov->iov_len, svmand, &ct);
14345772Sas200622 
14355772Sas200622 	if (rc) {
14365772Sas200622 		smb_node_end_crit(snode);
14376432Sas200622 		return (ERANGE);
14385772Sas200622 	}
143910001SJoyce.McIntosh@Sun.COM 
14407052Samw 	rc = smb_vop_write(snode->vp, uio, ioflag, lcount, cr);
14415772Sas200622 	smb_node_end_crit(snode);
14425772Sas200622 
14435331Samw 	return (rc);
14445331Samw }
14455331Samw 
14465331Samw /*
14475331Samw  * smb_fsop_statfs
14485331Samw  *
14495331Samw  * This is a wrapper function used for stat operations.
14505331Samw  */
14515331Samw int
14525331Samw smb_fsop_statfs(
14535331Samw     cred_t *cr,
14545331Samw     smb_node_t *snode,
14555331Samw     struct statvfs64 *statp)
14565331Samw {
14575331Samw 	ASSERT(cr);
14585331Samw 	ASSERT(snode);
14595331Samw 	ASSERT(snode->n_magic == SMB_NODE_MAGIC);
14605331Samw 	ASSERT(snode->n_state != SMB_NODE_STATE_DESTROYING);
14615331Samw 
14625331Samw 	return (smb_vop_statfs(snode->vp, statp, cr));
14635331Samw }
14645331Samw 
14655331Samw /*
14665331Samw  * smb_fsop_access
14676700Sjm199354  *
14686700Sjm199354  * Named streams do not have separate permissions from the associated
14696700Sjm199354  * unnamed stream.  Thus, if node is a named stream, the permissions
14706700Sjm199354  * check will be performed on the associated unnamed stream.
14716700Sjm199354  *
14726700Sjm199354  * However, our named streams do have their own quarantine attribute,
14736700Sjm199354  * separate from that on the unnamed stream. If READ or EXECUTE
14746700Sjm199354  * access has been requested on a named stream, an additional access
14756700Sjm199354  * check is performed on the named stream in case it has been
14766700Sjm199354  * quarantined.  kcred is used to avoid issues with the permissions
14776700Sjm199354  * set on the extended attribute file representing the named stream.
14785331Samw  */
14795331Samw int
14805331Samw smb_fsop_access(smb_request_t *sr, cred_t *cr, smb_node_t *snode,
14815331Samw     uint32_t faccess)
14825331Samw {
14835331Samw 	int access = 0;
14845331Samw 	int error;
14855331Samw 	vnode_t *dir_vp;
14865331Samw 	boolean_t acl_check = B_TRUE;
14875331Samw 	smb_node_t *unnamed_node;
14885331Samw 
14897348SJose.Borrego@Sun.COM 	ASSERT(sr);
14905331Samw 	ASSERT(cr);
14915331Samw 	ASSERT(snode);
14925331Samw 	ASSERT(snode->n_magic == SMB_NODE_MAGIC);
14935331Samw 	ASSERT(snode->n_state != SMB_NODE_STATE_DESTROYING);
14945331Samw 
14955331Samw 	if (faccess == 0)
14965331Samw 		return (NT_STATUS_SUCCESS);
14975331Samw 
14987348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_READONLY(sr)) {
14995331Samw 		if (faccess & (FILE_WRITE_DATA|FILE_APPEND_DATA|
15005331Samw 		    FILE_WRITE_EA|FILE_DELETE_CHILD|FILE_WRITE_ATTRIBUTES|
15015331Samw 		    DELETE|WRITE_DAC|WRITE_OWNER)) {
15025331Samw 			return (NT_STATUS_ACCESS_DENIED);
15035331Samw 		}
15045331Samw 	}
15055331Samw 
150611963SAfshin.Ardakani@Sun.COM 	if (smb_node_is_reparse(snode) && (faccess & DELETE))
150711963SAfshin.Ardakani@Sun.COM 		return (NT_STATUS_ACCESS_DENIED);
150811963SAfshin.Ardakani@Sun.COM 
15095331Samw 	unnamed_node = SMB_IS_STREAM(snode);
15105331Samw 	if (unnamed_node) {
15115331Samw 		ASSERT(unnamed_node->n_magic == SMB_NODE_MAGIC);
15125331Samw 		ASSERT(unnamed_node->n_state != SMB_NODE_STATE_DESTROYING);
15136700Sjm199354 
15146700Sjm199354 		/*
15156700Sjm199354 		 * Perform VREAD access check on the named stream in case it
15166700Sjm199354 		 * is quarantined. kcred is passed to smb_vop_access so it
15176700Sjm199354 		 * doesn't fail due to lack of permission.
15186700Sjm199354 		 */
15196700Sjm199354 		if (faccess & (FILE_READ_DATA | FILE_EXECUTE)) {
15206700Sjm199354 			error = smb_vop_access(snode->vp, VREAD,
15216700Sjm199354 			    0, NULL, kcred);
15226700Sjm199354 			if (error)
15236700Sjm199354 				return (NT_STATUS_ACCESS_DENIED);
15246700Sjm199354 		}
15256700Sjm199354 
15265331Samw 		/*
15275331Samw 		 * Streams authorization should be performed against the
15285331Samw 		 * unnamed stream.
15295331Samw 		 */
15305331Samw 		snode = unnamed_node;
15315331Samw 	}
15325331Samw 
15335331Samw 	if (faccess & ACCESS_SYSTEM_SECURITY) {
15345331Samw 		/*
15355331Samw 		 * This permission is required for reading/writing SACL and
15365331Samw 		 * it's not part of DACL. It's only granted via proper
15375331Samw 		 * privileges.
15385331Samw 		 */
15395331Samw 		if ((sr->uid_user->u_privileges &
15405331Samw 		    (SMB_USER_PRIV_BACKUP |
15415331Samw 		    SMB_USER_PRIV_RESTORE |
15425331Samw 		    SMB_USER_PRIV_SECURITY)) == 0)
15435331Samw 			return (NT_STATUS_PRIVILEGE_NOT_HELD);
15445331Samw 
15455331Samw 		faccess &= ~ACCESS_SYSTEM_SECURITY;
15465331Samw 	}
15475331Samw 
15485331Samw 	/* Links don't have ACL */
15497348SJose.Borrego@Sun.COM 	if ((!smb_tree_has_feature(sr->tid_tree, SMB_TREE_ACEMASKONACCESS)) ||
155011963SAfshin.Ardakani@Sun.COM 	    smb_node_is_symlink(snode))
15515331Samw 		acl_check = B_FALSE;
15525331Samw 
15538845Samw@Sun.COM 	/*
15548845Samw@Sun.COM 	 * Use the most restrictive parts of both faccess and the
15558845Samw@Sun.COM 	 * share access.  An AND of the two value masks gives us that
15568845Samw@Sun.COM 	 * since we've already converted to a mask of what we "can"
15578845Samw@Sun.COM 	 * do.
15588845Samw@Sun.COM 	 */
15598845Samw@Sun.COM 	faccess &= sr->tid_tree->t_access;
15608845Samw@Sun.COM 
15615331Samw 	if (acl_check) {
156210122SJordan.Brown@Sun.COM 		dir_vp = (snode->n_dnode) ? snode->n_dnode->vp : NULL;
15635331Samw 		error = smb_vop_access(snode->vp, faccess, V_ACE_MASK, dir_vp,
15645331Samw 		    cr);
15655331Samw 	} else {
15665331Samw 		/*
15675331Samw 		 * FS doesn't understand 32-bit mask, need to map
15685331Samw 		 */
15695331Samw 		if (faccess & (FILE_WRITE_DATA | FILE_APPEND_DATA))
15705331Samw 			access |= VWRITE;
15715331Samw 
15725331Samw 		if (faccess & FILE_READ_DATA)
15735331Samw 			access |= VREAD;
15745331Samw 
15755331Samw 		if (faccess & FILE_EXECUTE)
15765331Samw 			access |= VEXEC;
15775331Samw 
15785331Samw 		error = smb_vop_access(snode->vp, access, 0, NULL, cr);
15795331Samw 	}
15805331Samw 
15815331Samw 	return ((error) ? NT_STATUS_ACCESS_DENIED : NT_STATUS_SUCCESS);
15825331Samw }
15835331Samw 
15845331Samw /*
15855331Samw  * smb_fsop_lookup_name()
15865331Samw  *
15877961SNatalie.Li@Sun.COM  * If name indicates that the file is a stream file, perform
15887961SNatalie.Li@Sun.COM  * stream specific lookup, otherwise call smb_fsop_lookup.
15895331Samw  *
15907961SNatalie.Li@Sun.COM  * Return an error if the looked-up file is in outside the tree.
15917961SNatalie.Li@Sun.COM  * (Required when invoked from open path.)
1592*12508Samw@Sun.COM  *
1593*12508Samw@Sun.COM  * Case sensitivity flags (SMB_IGNORE_CASE, SMB_CASE_SENSITIVE):
1594*12508Samw@Sun.COM  * if SMB_CASE_SENSITIVE is set, the SMB_IGNORE_CASE flag will NOT be set
1595*12508Samw@Sun.COM  * based on the tree's case sensitivity. However, if the SMB_IGNORE_CASE
1596*12508Samw@Sun.COM  * flag is set in the flags value passed as a parameter, a case insensitive
1597*12508Samw@Sun.COM  * lookup WILL be done (regardless of whether SMB_CASE_SENSITIVE is set
1598*12508Samw@Sun.COM  * or not).
15995331Samw  */
16005331Samw 
16015331Samw int
16025331Samw smb_fsop_lookup_name(
16036139Sjb150015     smb_request_t *sr,
16045331Samw     cred_t	*cr,
16055331Samw     int		flags,
16065331Samw     smb_node_t	*root_node,
16079343SAfshin.Ardakani@Sun.COM     smb_node_t	*dnode,
16085331Samw     char	*name,
160910001SJoyce.McIntosh@Sun.COM     smb_node_t	**ret_snode)
16105331Samw {
16116139Sjb150015 	smb_node_t	*fnode;
16126139Sjb150015 	vnode_t		*xattrdirvp;
16136139Sjb150015 	vnode_t		*vp;
16146139Sjb150015 	char		*od_name;
16156139Sjb150015 	char		*fname;
16166139Sjb150015 	char		*sname;
16176139Sjb150015 	int		rc;
16185331Samw 
16195331Samw 	ASSERT(cr);
16209343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode);
16219343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode->n_magic == SMB_NODE_MAGIC);
16229343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode->n_state != SMB_NODE_STATE_DESTROYING);
16235331Samw 
16245331Samw 	/*
16255331Samw 	 * The following check is required for streams processing, below
16265331Samw 	 */
16275331Samw 
1628*12508Samw@Sun.COM 	if (!(flags & SMB_CASE_SENSITIVE)) {
1629*12508Samw@Sun.COM 		if (SMB_TREE_IS_CASEINSENSITIVE(sr))
1630*12508Samw@Sun.COM 			flags |= SMB_IGNORE_CASE;
1631*12508Samw@Sun.COM 	}
16325331Samw 
16335331Samw 	fname = kmem_alloc(MAXNAMELEN, KM_SLEEP);
16345331Samw 	sname = kmem_alloc(MAXNAMELEN, KM_SLEEP);
16355331Samw 
16369343SAfshin.Ardakani@Sun.COM 	if (smb_is_stream_name(name)) {
16379343SAfshin.Ardakani@Sun.COM 		smb_stream_parse_name(name, fname, sname);
16388334SJose.Borrego@Sun.COM 
16395331Samw 		/*
16405331Samw 		 * Look up the unnamed stream (i.e. fname).
16415331Samw 		 * Unmangle processing will be done on fname
16425331Samw 		 * as well as any link target.
16435331Samw 		 */
164410001SJoyce.McIntosh@Sun.COM 		rc = smb_fsop_lookup(sr, cr, flags, root_node, dnode,
164510001SJoyce.McIntosh@Sun.COM 		    fname, &fnode);
16465331Samw 
16475331Samw 		if (rc != 0) {
16485331Samw 			kmem_free(fname, MAXNAMELEN);
16495331Samw 			kmem_free(sname, MAXNAMELEN);
16505331Samw 			return (rc);
16515331Samw 		}
16525331Samw 
16535331Samw 		od_name = kmem_alloc(MAXNAMELEN, KM_SLEEP);
16545331Samw 
16555331Samw 		/*
16565331Samw 		 * od_name is the on-disk name of the stream, except
16575331Samw 		 * without the prepended stream prefix (SMB_STREAM_PREFIX)
16585331Samw 		 */
16595331Samw 
16605331Samw 		/*
16615331Samw 		 * XXX
16625331Samw 		 * What permissions NTFS requires for stream lookup if any?
16635331Samw 		 */
16645331Samw 		rc = smb_vop_stream_lookup(fnode->vp, sname, &vp, od_name,
16655772Sas200622 		    &xattrdirvp, flags, root_node->vp, cr);
16665331Samw 
16675331Samw 		if (rc != 0) {
16685331Samw 			smb_node_release(fnode);
16695331Samw 			kmem_free(fname, MAXNAMELEN);
16705331Samw 			kmem_free(sname, MAXNAMELEN);
16715331Samw 			kmem_free(od_name, MAXNAMELEN);
16725331Samw 			return (rc);
16735331Samw 		}
16745331Samw 
16755331Samw 		*ret_snode = smb_stream_node_lookup(sr, cr, fnode, xattrdirvp,
167610001SJoyce.McIntosh@Sun.COM 		    vp, od_name);
16775331Samw 
16785331Samw 		kmem_free(od_name, MAXNAMELEN);
16795331Samw 		smb_node_release(fnode);
16808670SJose.Borrego@Sun.COM 		VN_RELE(xattrdirvp);
16818670SJose.Borrego@Sun.COM 		VN_RELE(vp);
16825331Samw 
16835331Samw 		if (*ret_snode == NULL) {
16845331Samw 			kmem_free(fname, MAXNAMELEN);
16855331Samw 			kmem_free(sname, MAXNAMELEN);
16865331Samw 			return (ENOMEM);
16875331Samw 		}
16885331Samw 	} else {
16899343SAfshin.Ardakani@Sun.COM 		rc = smb_fsop_lookup(sr, cr, flags, root_node, dnode, name,
169010001SJoyce.McIntosh@Sun.COM 		    ret_snode);
16915331Samw 	}
16925331Samw 
16935331Samw 	if (rc == 0) {
16945331Samw 		ASSERT(ret_snode);
16957348SJose.Borrego@Sun.COM 		if (SMB_TREE_CONTAINS_NODE(sr, *ret_snode) == 0) {
16965331Samw 			smb_node_release(*ret_snode);
16975331Samw 			*ret_snode = NULL;
16985331Samw 			rc = EACCES;
16995331Samw 		}
17005331Samw 	}
17015331Samw 
17025331Samw 	kmem_free(fname, MAXNAMELEN);
17035331Samw 	kmem_free(sname, MAXNAMELEN);
17045331Samw 
17055331Samw 	return (rc);
17065331Samw }
17075331Samw 
17085331Samw /*
17095331Samw  * smb_fsop_lookup
17105331Samw  *
17115331Samw  * All SMB functions should use this smb_vop_lookup wrapper to ensure that
17125331Samw  * the smb_vop_lookup is performed with the appropriate credentials and using
17135331Samw  * case insensitive compares. Please document any direct call to smb_vop_lookup
17145331Samw  * to explain the reason for avoiding this wrapper.
17155331Samw  *
17169343SAfshin.Ardakani@Sun.COM  * It is assumed that a reference exists on dnode coming into this routine
17175331Samw  * (and that it is safe from deallocation).
17185331Samw  *
17195331Samw  * Same with the root_node.
17205331Samw  *
17215331Samw  * *ret_snode is returned with a reference upon success.  No reference is
17225331Samw  * taken if an error is returned.
17235331Samw  *
17245331Samw  * Note: The returned ret_snode may be in a child mount.  This is ok for
17258670SJose.Borrego@Sun.COM  * readdir.
17265331Samw  *
17277348SJose.Borrego@Sun.COM  * Other smb_fsop_* routines will call SMB_TREE_CONTAINS_NODE() to prevent
17285331Samw  * operations on files not in the parent mount.
172910966SJordan.Brown@Sun.COM  *
173010966SJordan.Brown@Sun.COM  * Case sensitivity flags (SMB_IGNORE_CASE, SMB_CASE_SENSITIVE):
173110966SJordan.Brown@Sun.COM  * if SMB_CASE_SENSITIVE is set, the SMB_IGNORE_CASE flag will NOT be set
173210966SJordan.Brown@Sun.COM  * based on the tree's case sensitivity. However, if the SMB_IGNORE_CASE
173310966SJordan.Brown@Sun.COM  * flag is set in the flags value passed as a parameter, a case insensitive
173410966SJordan.Brown@Sun.COM  * lookup WILL be done (regardless of whether SMB_CASE_SENSITIVE is set
173510966SJordan.Brown@Sun.COM  * or not).
17365331Samw  */
17375331Samw int
17385331Samw smb_fsop_lookup(
17396139Sjb150015     smb_request_t *sr,
17405331Samw     cred_t	*cr,
17415331Samw     int		flags,
17425331Samw     smb_node_t	*root_node,
17439343SAfshin.Ardakani@Sun.COM     smb_node_t	*dnode,
17445331Samw     char	*name,
174510001SJoyce.McIntosh@Sun.COM     smb_node_t	**ret_snode)
17465331Samw {
17475331Samw 	smb_node_t *lnk_target_node;
17485331Samw 	smb_node_t *lnk_dnode;
17495331Samw 	char *longname;
17505331Samw 	char *od_name;
17515331Samw 	vnode_t *vp;
17525331Samw 	int rc;
17539231SAfshin.Ardakani@Sun.COM 	int ret_flags;
175411963SAfshin.Ardakani@Sun.COM 	smb_attr_t attr;
17555331Samw 
17565331Samw 	ASSERT(cr);
17579343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode);
17589343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode->n_magic == SMB_NODE_MAGIC);
17599343SAfshin.Ardakani@Sun.COM 	ASSERT(dnode->n_state != SMB_NODE_STATE_DESTROYING);
17605331Samw 
17615331Samw 	if (name == NULL)
17625331Samw 		return (EINVAL);
17635331Samw 
17649343SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_CONTAINS_NODE(sr, dnode) == 0)
17655331Samw 		return (EACCES);
17665331Samw 
176710966SJordan.Brown@Sun.COM 	if (!(flags & SMB_CASE_SENSITIVE)) {
176810966SJordan.Brown@Sun.COM 		if (SMB_TREE_IS_CASEINSENSITIVE(sr))
176910966SJordan.Brown@Sun.COM 			flags |= SMB_IGNORE_CASE;
177010966SJordan.Brown@Sun.COM 	}
17719231SAfshin.Ardakani@Sun.COM 	if (SMB_TREE_SUPPORTS_CATIA(sr))
17729231SAfshin.Ardakani@Sun.COM 		flags |= SMB_CATIA;
177310504SKeyur.Desai@Sun.COM 	if (SMB_TREE_SUPPORTS_ABE(sr))
177410504SKeyur.Desai@Sun.COM 		flags |= SMB_ABE;
17755331Samw 
17765331Samw 	od_name = kmem_alloc(MAXNAMELEN, KM_SLEEP);
17775331Samw 
17789343SAfshin.Ardakani@Sun.COM 	rc = smb_vop_lookup(dnode->vp, name, &vp, od_name, flags,
177911963SAfshin.Ardakani@Sun.COM 	    &ret_flags, root_node ? root_node->vp : NULL, &attr, cr);
17805331Samw 
17815331Samw 	if (rc != 0) {
1782*12508Samw@Sun.COM 		if (!smb_maybe_mangled(name)) {
17835331Samw 			kmem_free(od_name, MAXNAMELEN);
17845331Samw 			return (rc);
17855331Samw 		}
17865331Samw 
17875331Samw 		longname = kmem_alloc(MAXNAMELEN, KM_SLEEP);
1788*12508Samw@Sun.COM 		rc = smb_unmangle(dnode, name, longname, MAXNAMELEN, flags);
17895331Samw 		if (rc != 0) {
17905331Samw 			kmem_free(od_name, MAXNAMELEN);
17915331Samw 			kmem_free(longname, MAXNAMELEN);
17925331Samw 			return (rc);
17935331Samw 		}
17945331Samw 
17955331Samw 		/*
17969231SAfshin.Ardakani@Sun.COM 		 * longname is the real (case-sensitive)
17979231SAfshin.Ardakani@Sun.COM 		 * on-disk name.
17985331Samw 		 * We make sure we do a lookup on this exact
17995331Samw 		 * name, as the name was mangled and denotes
18005331Samw 		 * a unique file.
18015331Samw 		 */
18025331Samw 
18035331Samw 		if (flags & SMB_IGNORE_CASE)
18045331Samw 			flags &= ~SMB_IGNORE_CASE;
18055331Samw 
18069343SAfshin.Ardakani@Sun.COM 		rc = smb_vop_lookup(dnode->vp, longname, &vp, od_name,
180711963SAfshin.Ardakani@Sun.COM 		    flags, &ret_flags, root_node ? root_node->vp : NULL, &attr,
180811963SAfshin.Ardakani@Sun.COM 		    cr);
18095331Samw 
18105331Samw 		kmem_free(longname, MAXNAMELEN);
18115331Samw 
18125331Samw 		if (rc != 0) {
18135331Samw 			kmem_free(od_name, MAXNAMELEN);
18145331Samw 			return (rc);
18155331Samw 		}
18165331Samw 	}
18175331Samw 
181811963SAfshin.Ardakani@Sun.COM 	if ((flags & SMB_FOLLOW_LINKS) && (vp->v_type == VLNK) &&
181911963SAfshin.Ardakani@Sun.COM 	    ((attr.sa_dosattr & FILE_ATTRIBUTE_REPARSE_POINT) == 0)) {
18209343SAfshin.Ardakani@Sun.COM 		rc = smb_pathname(sr, od_name, FOLLOW, root_node, dnode,
18215331Samw 		    &lnk_dnode, &lnk_target_node, cr);
18225331Samw 
18235331Samw 		if (rc != 0) {
18245331Samw 			/*
18255331Samw 			 * The link is assumed to be for the last component
18265331Samw 			 * of a path.  Hence any ENOTDIR error will be returned
18275331Samw 			 * as ENOENT.
18285331Samw 			 */
18295331Samw 			if (rc == ENOTDIR)
18305331Samw 				rc = ENOENT;
18315331Samw 
18325331Samw 			VN_RELE(vp);
18335331Samw 			kmem_free(od_name, MAXNAMELEN);
18345331Samw 			return (rc);
18355331Samw 		}
18365331Samw 
18375331Samw 		/*
18385331Samw 		 * Release the original VLNK vnode
18395331Samw 		 */
18405331Samw 
18415331Samw 		VN_RELE(vp);
18425331Samw 		vp = lnk_target_node->vp;
18435331Samw 
18445331Samw 		rc = smb_vop_traverse_check(&vp);
18455331Samw 
18465331Samw 		if (rc != 0) {
18475331Samw 			smb_node_release(lnk_dnode);
18485331Samw 			smb_node_release(lnk_target_node);
18495331Samw 			kmem_free(od_name, MAXNAMELEN);
18505331Samw 			return (rc);
18515331Samw 		}
18525331Samw 
18535331Samw 		/*
18545331Samw 		 * smb_vop_traverse_check() may have returned a different vnode
18555331Samw 		 */
18565331Samw 
18575331Samw 		if (lnk_target_node->vp == vp) {
18585331Samw 			*ret_snode = lnk_target_node;
18595331Samw 		} else {
18605331Samw 			*ret_snode = smb_node_lookup(sr, NULL, cr, vp,
186110001SJoyce.McIntosh@Sun.COM 			    lnk_target_node->od_name, lnk_dnode, NULL);
18628670SJose.Borrego@Sun.COM 			VN_RELE(vp);
18635331Samw 
18648670SJose.Borrego@Sun.COM 			if (*ret_snode == NULL)
18655331Samw 				rc = ENOMEM;
18665331Samw 			smb_node_release(lnk_target_node);
18675331Samw 		}
18685331Samw 
18695331Samw 		smb_node_release(lnk_dnode);
18705331Samw 
18715331Samw 	} else {
18725331Samw 
18735331Samw 		rc = smb_vop_traverse_check(&vp);
18745331Samw 		if (rc) {
18755331Samw 			VN_RELE(vp);
18765331Samw 			kmem_free(od_name, MAXNAMELEN);
18775331Samw 			return (rc);
18785331Samw 		}
18795331Samw 
18805331Samw 		*ret_snode = smb_node_lookup(sr, NULL, cr, vp, od_name,
188110001SJoyce.McIntosh@Sun.COM 		    dnode, NULL);
18828670SJose.Borrego@Sun.COM 		VN_RELE(vp);
18835331Samw 
18848670SJose.Borrego@Sun.COM 		if (*ret_snode == NULL)
18855331Samw 			rc = ENOMEM;
18865331Samw 	}
18875331Samw 
18885331Samw 	kmem_free(od_name, MAXNAMELEN);
18895331Samw 	return (rc);
18905331Samw }
18915331Samw 
18925331Samw int /*ARGSUSED*/
18935331Samw smb_fsop_commit(smb_request_t *sr, cred_t *cr, smb_node_t *snode)
18945331Samw {
18955331Samw 	ASSERT(cr);
18965331Samw 	ASSERT(snode);
18975331Samw 	ASSERT(snode->n_magic == SMB_NODE_MAGIC);
18985331Samw 	ASSERT(snode->n_state != SMB_NODE_STATE_DESTROYING);
18995331Samw 
19005331Samw 	ASSERT(sr);
19015331Samw 	ASSERT(sr->tid_tree);
19027348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_READONLY(sr))
19035331Samw 		return (EROFS);
19045331Samw 
19055772Sas200622 	return (smb_vop_commit(snode->vp, cr));
19065331Samw }
19075331Samw 
19085331Samw /*
19095331Samw  * smb_fsop_aclread
19105331Samw  *
19115331Samw  * Retrieve filesystem ACL. Depends on requested ACLs in
19125331Samw  * fs_sd->sd_secinfo, it'll set DACL and SACL pointers in
19135331Samw  * fs_sd. Note that requesting a DACL/SACL doesn't mean that
19145331Samw  * the corresponding field in fs_sd should be non-NULL upon
19155331Samw  * return, since the target ACL might not contain that type of
19165331Samw  * entries.
19175331Samw  *
19185331Samw  * Returned ACL is always in ACE_T (aka ZFS) format.
19195331Samw  * If successful the allocated memory for the ACL should be freed
19205521Sas200622  * using smb_fsacl_free() or smb_fssd_term()
19215331Samw  */
19225331Samw int
19235331Samw smb_fsop_aclread(smb_request_t *sr, cred_t *cr, smb_node_t *snode,
19245331Samw     smb_fssd_t *fs_sd)
19255331Samw {
19265331Samw 	int error = 0;
19275331Samw 	int flags = 0;
19285331Samw 	int access = 0;
19295331Samw 	acl_t *acl;
19305331Samw 	smb_node_t *unnamed_node;
19315331Samw 
19325331Samw 	ASSERT(cr);
19335331Samw 
19348845Samw@Sun.COM 	if (SMB_TREE_HAS_ACCESS(sr, ACE_READ_ACL) == 0)
19358845Samw@Sun.COM 		return (EACCES);
19368845Samw@Sun.COM 
19375331Samw 	if (sr->fid_ofile) {
19385331Samw 		if (fs_sd->sd_secinfo & SMB_DACL_SECINFO)
19395331Samw 			access = READ_CONTROL;
19405331Samw 
19415331Samw 		if (fs_sd->sd_secinfo & SMB_SACL_SECINFO)
19425331Samw 			access |= ACCESS_SYSTEM_SECURITY;
19435331Samw 
19445331Samw 		error = smb_ofile_access(sr->fid_ofile, cr, access);
19455331Samw 		if (error != NT_STATUS_SUCCESS) {
19465331Samw 			return (EACCES);
19475331Samw 		}
19485331Samw 	}
19495331Samw 
19505331Samw 	unnamed_node = SMB_IS_STREAM(snode);
19515331Samw 	if (unnamed_node) {
19525331Samw 		ASSERT(unnamed_node->n_magic == SMB_NODE_MAGIC);
19535331Samw 		ASSERT(unnamed_node->n_state != SMB_NODE_STATE_DESTROYING);
19545331Samw 		/*
19555331Samw 		 * Streams don't have ACL, any read ACL attempt on a stream
19565331Samw 		 * should be performed on the unnamed stream.
19575331Samw 		 */
19585331Samw 		snode = unnamed_node;
19595331Samw 	}
19605331Samw 
19617348SJose.Borrego@Sun.COM 	if (smb_tree_has_feature(sr->tid_tree, SMB_TREE_ACEMASKONACCESS))
19625331Samw 		flags = ATTR_NOACLCHECK;
19635331Samw 
19645331Samw 	error = smb_vop_acl_read(snode->vp, &acl, flags,
19655772Sas200622 	    sr->tid_tree->t_acltype, cr);
19665331Samw 	if (error != 0) {
19675331Samw 		return (error);
19685331Samw 	}
19695331Samw 
19705331Samw 	error = acl_translate(acl, _ACL_ACE_ENABLED,
197111963SAfshin.Ardakani@Sun.COM 	    smb_node_is_dir(snode), fs_sd->sd_uid, fs_sd->sd_gid);
19725331Samw 
19735331Samw 	if (error == 0) {
19745521Sas200622 		smb_fsacl_split(acl, &fs_sd->sd_zdacl, &fs_sd->sd_zsacl,
19755331Samw 		    fs_sd->sd_secinfo);
19765331Samw 	}
19775331Samw 
19785331Samw 	acl_free(acl);
19795331Samw 	return (error);
19805331Samw }
19815331Samw 
19825331Samw /*
19835331Samw  * smb_fsop_aclwrite
19845331Samw  *
19855331Samw  * Stores the filesystem ACL provided in fs_sd->sd_acl.
19865331Samw  */
19875331Samw int
19885331Samw smb_fsop_aclwrite(smb_request_t *sr, cred_t *cr, smb_node_t *snode,
19895331Samw     smb_fssd_t *fs_sd)
19905331Samw {
19915331Samw 	int target_flavor;
19925331Samw 	int error = 0;
19935331Samw 	int flags = 0;
19945331Samw 	int access = 0;
19955331Samw 	acl_t *acl, *dacl, *sacl;
19965331Samw 	smb_node_t *unnamed_node;
19975331Samw 
19985331Samw 	ASSERT(cr);
19995331Samw 
20005331Samw 	ASSERT(sr);
20015331Samw 	ASSERT(sr->tid_tree);
20027348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_READONLY(sr))
20035331Samw 		return (EROFS);
20045331Samw 
20058845Samw@Sun.COM 	if (SMB_TREE_HAS_ACCESS(sr, ACE_WRITE_ACL) == 0)
20068845Samw@Sun.COM 		return (EACCES);
20078845Samw@Sun.COM 
20085331Samw 	if (sr->fid_ofile) {
20095331Samw 		if (fs_sd->sd_secinfo & SMB_DACL_SECINFO)
20105331Samw 			access = WRITE_DAC;
20115331Samw 
20125331Samw 		if (fs_sd->sd_secinfo & SMB_SACL_SECINFO)
20135331Samw 			access |= ACCESS_SYSTEM_SECURITY;
20145331Samw 
20155331Samw 		error = smb_ofile_access(sr->fid_ofile, cr, access);
20165331Samw 		if (error != NT_STATUS_SUCCESS)
20175331Samw 			return (EACCES);
20185331Samw 	}
20195331Samw 
20205331Samw 	switch (sr->tid_tree->t_acltype) {
20215331Samw 	case ACLENT_T:
20225331Samw 		target_flavor = _ACL_ACLENT_ENABLED;
20235331Samw 		break;
20245331Samw 
20255331Samw 	case ACE_T:
20265331Samw 		target_flavor = _ACL_ACE_ENABLED;
20275331Samw 		break;
20285331Samw 	default:
20295331Samw 		return (EINVAL);
20305331Samw 	}
20315331Samw 
20325331Samw 	unnamed_node = SMB_IS_STREAM(snode);
20335331Samw 	if (unnamed_node) {
20345331Samw 		ASSERT(unnamed_node->n_magic == SMB_NODE_MAGIC);
20355331Samw 		ASSERT(unnamed_node->n_state != SMB_NODE_STATE_DESTROYING);
20365331Samw 		/*
20375331Samw 		 * Streams don't have ACL, any write ACL attempt on a stream
20385331Samw 		 * should be performed on the unnamed stream.
20395331Samw 		 */
20405331Samw 		snode = unnamed_node;
20415331Samw 	}
20425331Samw 
20435331Samw 	dacl = fs_sd->sd_zdacl;
20445331Samw 	sacl = fs_sd->sd_zsacl;
20455331Samw 
20465331Samw 	ASSERT(dacl || sacl);
20475331Samw 	if ((dacl == NULL) && (sacl == NULL))
20485331Samw 		return (EINVAL);
20495331Samw 
20505331Samw 	if (dacl && sacl)
20515521Sas200622 		acl = smb_fsacl_merge(dacl, sacl);
20525331Samw 	else if (dacl)
20535331Samw 		acl = dacl;
20545331Samw 	else
20555331Samw 		acl = sacl;
20565331Samw 
205711963SAfshin.Ardakani@Sun.COM 	error = acl_translate(acl, target_flavor, smb_node_is_dir(snode),
20585331Samw 	    fs_sd->sd_uid, fs_sd->sd_gid);
20595331Samw 	if (error == 0) {
20607348SJose.Borrego@Sun.COM 		if (smb_tree_has_feature(sr->tid_tree,
20617348SJose.Borrego@Sun.COM 		    SMB_TREE_ACEMASKONACCESS))
20625331Samw 			flags = ATTR_NOACLCHECK;
20635331Samw 
20645772Sas200622 		error = smb_vop_acl_write(snode->vp, acl, flags, cr);
20655331Samw 	}
20665331Samw 
20675331Samw 	if (dacl && sacl)
20685331Samw 		acl_free(acl);
20695331Samw 
20705331Samw 	return (error);
20715331Samw }
20725331Samw 
20735331Samw acl_type_t
20745331Samw smb_fsop_acltype(smb_node_t *snode)
20755331Samw {
20765331Samw 	return (smb_vop_acl_type(snode->vp));
20775331Samw }
20785331Samw 
20795331Samw /*
20805331Samw  * smb_fsop_sdread
20815331Samw  *
20825331Samw  * Read the requested security descriptor items from filesystem.
20835331Samw  * The items are specified in fs_sd->sd_secinfo.
20845331Samw  */
20855331Samw int
20865331Samw smb_fsop_sdread(smb_request_t *sr, cred_t *cr, smb_node_t *snode,
20875331Samw     smb_fssd_t *fs_sd)
20885331Samw {
20895331Samw 	int error = 0;
20905331Samw 	int getowner = 0;
20915331Samw 	cred_t *ga_cred;
20925331Samw 	smb_attr_t attr;
20935331Samw 
20945331Samw 	ASSERT(cr);
20955331Samw 	ASSERT(fs_sd);
20965331Samw 
20975331Samw 	/*
20985331Samw 	 * File's uid/gid is fetched in two cases:
20995331Samw 	 *
21005331Samw 	 * 1. it's explicitly requested
21015331Samw 	 *
21025331Samw 	 * 2. target ACL is ACE_T (ZFS ACL). They're needed for
21035331Samw 	 *    owner@/group@ entries. In this case kcred should be used
21045331Samw 	 *    because uid/gid are fetched on behalf of smb server.
21055331Samw 	 */
21065331Samw 	if (fs_sd->sd_secinfo & (SMB_OWNER_SECINFO | SMB_GROUP_SECINFO)) {
21075331Samw 		getowner = 1;
21085331Samw 		ga_cred = cr;
21095331Samw 	} else if (sr->tid_tree->t_acltype == ACE_T) {
21105331Samw 		getowner = 1;
21115331Samw 		ga_cred = kcred;
21125331Samw 	}
21135331Samw 
21145331Samw 	if (getowner) {
21155331Samw 		/*
21165331Samw 		 * Windows require READ_CONTROL to read owner/group SID since
21175331Samw 		 * they're part of Security Descriptor.
21185331Samw 		 * ZFS only requires read_attribute. Need to have a explicit
21195331Samw 		 * access check here.
21205331Samw 		 */
21215331Samw 		if (sr->fid_ofile == NULL) {
21225331Samw 			error = smb_fsop_access(sr, ga_cred, snode,
21235331Samw 			    READ_CONTROL);
21245331Samw 			if (error)
21259914Samw@Sun.COM 				return (EACCES);
21265331Samw 		}
21275331Samw 
21285331Samw 		attr.sa_mask = SMB_AT_UID | SMB_AT_GID;
21295331Samw 		error = smb_fsop_getattr(sr, ga_cred, snode, &attr);
21305331Samw 		if (error == 0) {
21315331Samw 			fs_sd->sd_uid = attr.sa_vattr.va_uid;
21325331Samw 			fs_sd->sd_gid = attr.sa_vattr.va_gid;
21335331Samw 		} else {
21345331Samw 			return (error);
21355331Samw 		}
21365331Samw 	}
21375331Samw 
21385331Samw 	if (fs_sd->sd_secinfo & SMB_ACL_SECINFO) {
21395331Samw 		error = smb_fsop_aclread(sr, cr, snode, fs_sd);
21405331Samw 	}
21415331Samw 
21425331Samw 	return (error);
21435331Samw }
21445331Samw 
21455331Samw /*
21465331Samw  * smb_fsop_sdmerge
21475331Samw  *
21485331Samw  * From SMB point of view DACL and SACL are two separate list
21495331Samw  * which can be manipulated independently without one affecting
21505331Samw  * the other, but entries for both DACL and SACL will end up
21515331Samw  * in the same ACL if target filesystem supports ACE_T ACLs.
21525331Samw  *
21535331Samw  * So, if either DACL or SACL is present in the client set request
21545331Samw  * the entries corresponding to the non-present ACL shouldn't
21555331Samw  * be touched in the FS ACL.
21565331Samw  *
21575331Samw  * fs_sd parameter contains DACL and SACL specified by SMB
21585331Samw  * client to be set on a file/directory. The client could
21595331Samw  * specify both or one of these ACLs (if none is specified
21605331Samw  * we don't get this far). When both DACL and SACL are given
21615331Samw  * by client the existing ACL should be overwritten. If only
21625331Samw  * one of them is specified the entries corresponding to the other
21635331Samw  * ACL should not be touched. For example, if only DACL
21645331Samw  * is specified in input fs_sd, the function reads audit entries
21655331Samw  * of the existing ACL of the file and point fs_sd->sd_zsdacl
21665331Samw  * pointer to the fetched SACL, this way when smb_fsop_sdwrite()
21675331Samw  * function is called the passed fs_sd would point to the specified
21685331Samw  * DACL by client and fetched SACL from filesystem, so the file
21695331Samw  * will end up with correct ACL.
21705331Samw  */
21715331Samw static int
21725331Samw smb_fsop_sdmerge(smb_request_t *sr, smb_node_t *snode, smb_fssd_t *fs_sd)
21735331Samw {
21745331Samw 	smb_fssd_t cur_sd;
21755331Samw 	int error = 0;
21765331Samw 
21775331Samw 	if (sr->tid_tree->t_acltype != ACE_T)
21785331Samw 		/* Don't bother if target FS doesn't support ACE_T */
21795331Samw 		return (0);
21805331Samw 
21815331Samw 	if ((fs_sd->sd_secinfo & SMB_ACL_SECINFO) != SMB_ACL_SECINFO) {
21825331Samw 		if (fs_sd->sd_secinfo & SMB_DACL_SECINFO) {
21835331Samw 			/*
21845331Samw 			 * Don't overwrite existing audit entries
21855331Samw 			 */
21865521Sas200622 			smb_fssd_init(&cur_sd, SMB_SACL_SECINFO,
21875331Samw 			    fs_sd->sd_flags);
21885331Samw 
21895331Samw 			error = smb_fsop_sdread(sr, kcred, snode, &cur_sd);
21905331Samw 			if (error == 0) {
21915331Samw 				ASSERT(fs_sd->sd_zsacl == NULL);
21925331Samw 				fs_sd->sd_zsacl = cur_sd.sd_zsacl;
21935331Samw 				if (fs_sd->sd_zsacl && fs_sd->sd_zdacl)
21945331Samw 					fs_sd->sd_zsacl->acl_flags =
21955331Samw 					    fs_sd->sd_zdacl->acl_flags;
21965331Samw 			}
21975331Samw 		} else {
21985331Samw 			/*
21995331Samw 			 * Don't overwrite existing access entries
22005331Samw 			 */
22015521Sas200622 			smb_fssd_init(&cur_sd, SMB_DACL_SECINFO,
22025331Samw 			    fs_sd->sd_flags);
22035331Samw 
22045331Samw 			error = smb_fsop_sdread(sr, kcred, snode, &cur_sd);
22055331Samw 			if (error == 0) {
22065331Samw 				ASSERT(fs_sd->sd_zdacl == NULL);
22075331Samw 				fs_sd->sd_zdacl = cur_sd.sd_zdacl;
22085331Samw 				if (fs_sd->sd_zdacl && fs_sd->sd_zsacl)
22095331Samw 					fs_sd->sd_zdacl->acl_flags =
22105331Samw 					    fs_sd->sd_zsacl->acl_flags;
22115331Samw 			}
22125331Samw 		}
22135331Samw 
22145331Samw 		if (error)
22155521Sas200622 			smb_fssd_term(&cur_sd);
22165331Samw 	}
22175331Samw 
22185331Samw 	return (error);
22195331Samw }
22205331Samw 
22215331Samw /*
22225331Samw  * smb_fsop_sdwrite
22235331Samw  *
22245331Samw  * Stores the given uid, gid and acl in filesystem.
22255331Samw  * Provided items in fs_sd are specified by fs_sd->sd_secinfo.
22265331Samw  *
22275331Samw  * A SMB security descriptor could contain owner, primary group,
22285331Samw  * DACL and SACL. Setting an SD should be atomic but here it has to
22295331Samw  * be done via two separate FS operations: VOP_SETATTR and
22305331Samw  * VOP_SETSECATTR. Therefore, this function has to simulate the
22315331Samw  * atomicity as well as it can.
22327619SJose.Borrego@Sun.COM  *
22337619SJose.Borrego@Sun.COM  * Get the current uid, gid before setting the new uid/gid
22347619SJose.Borrego@Sun.COM  * so if smb_fsop_aclwrite fails they can be restored. root cred is
22357619SJose.Borrego@Sun.COM  * used to get currend uid/gid since this operation is performed on
22367619SJose.Borrego@Sun.COM  * behalf of the server not the user.
22377619SJose.Borrego@Sun.COM  *
22387619SJose.Borrego@Sun.COM  * If setting uid/gid fails with EPERM it means that and invalid
22397619SJose.Borrego@Sun.COM  * owner has been specified. Callers should translate this to
22407619SJose.Borrego@Sun.COM  * STATUS_INVALID_OWNER which is not the normal mapping for EPERM
22417619SJose.Borrego@Sun.COM  * in upper layers, so EPERM is mapped to EBADE.
22425331Samw  */
22435331Samw int
22445331Samw smb_fsop_sdwrite(smb_request_t *sr, cred_t *cr, smb_node_t *snode,
22455331Samw     smb_fssd_t *fs_sd, int overwrite)
22465331Samw {
22475331Samw 	int error = 0;
22485331Samw 	int access = 0;
22495331Samw 	smb_attr_t set_attr;
22505331Samw 	smb_attr_t orig_attr;
22515331Samw 
22525331Samw 	ASSERT(cr);
22535331Samw 	ASSERT(fs_sd);
22545331Samw 
22555331Samw 	ASSERT(sr);
22565331Samw 	ASSERT(sr->tid_tree);
22577348SJose.Borrego@Sun.COM 	if (SMB_TREE_IS_READONLY(sr))
22585331Samw 		return (EROFS);
22595331Samw 
22605331Samw 	bzero(&set_attr, sizeof (smb_attr_t));
22615331Samw 
22625331Samw 	if (fs_sd->sd_secinfo & SMB_OWNER_SECINFO) {
22635331Samw 		set_attr.sa_vattr.va_uid = fs_sd->sd_uid;
22645331Samw 		set_attr.sa_mask |= SMB_AT_UID;
22657619SJose.Borrego@Sun.COM 		access |= WRITE_OWNER;
22665331Samw 	}
22675331Samw 
22685331Samw 	if (fs_sd->sd_secinfo & SMB_GROUP_SECINFO) {
22695331Samw 		set_attr.sa_vattr.va_gid = fs_sd->sd_gid;
22705331Samw 		set_attr.sa_mask |= SMB_AT_GID;
22717619SJose.Borrego@Sun.COM 		access |= WRITE_OWNER;
22725331Samw 	}
22735331Samw 
22745331Samw 	if (fs_sd->sd_secinfo & SMB_DACL_SECINFO)
22755331Samw 		access |= WRITE_DAC;
22765331Samw 
22775331Samw 	if (fs_sd->sd_secinfo & SMB_SACL_SECINFO)
22785331Samw 		access |= ACCESS_SYSTEM_SECURITY;
22795331Samw 
22805331Samw 	if (sr->fid_ofile)
22815331Samw 		error = smb_ofile_access(sr->fid_ofile, cr, access);
22825331Samw 	else
22835331Samw 		error = smb_fsop_access(sr, cr, snode, access);
22845331Samw 
22855331Samw 	if (error)
22865331Samw 		return (EACCES);
22875331Samw 
22885331Samw 	if (set_attr.sa_mask) {
22895331Samw 		orig_attr.sa_mask = SMB_AT_UID | SMB_AT_GID;
22905331Samw 		error = smb_fsop_getattr(sr, kcred, snode, &orig_attr);
22917619SJose.Borrego@Sun.COM 		if (error == 0) {
229210001SJoyce.McIntosh@Sun.COM 			error = smb_fsop_setattr(sr, cr, snode, &set_attr);
22937619SJose.Borrego@Sun.COM 			if (error == EPERM)
22947619SJose.Borrego@Sun.COM 				error = EBADE;
22957619SJose.Borrego@Sun.COM 		}
22965331Samw 
22975331Samw 		if (error)
22985331Samw 			return (error);
22995331Samw 	}
23005331Samw 
23015331Samw 	if (fs_sd->sd_secinfo & SMB_ACL_SECINFO) {
23025331Samw 		if (overwrite == 0) {
23035331Samw 			error = smb_fsop_sdmerge(sr, snode, fs_sd);
23045331Samw 			if (error)
23055331Samw 				return (error);
23065331Samw 		}
23075331Samw 
23085331Samw 		error = smb_fsop_aclwrite(sr, cr, snode, fs_sd);
23095331Samw 		if (error) {
23105331Samw 			/*
23115331Samw 			 * Revert uid/gid changes if required.
23125331Samw 			 */
23135331Samw 			if (set_attr.sa_mask) {
23145331Samw 				orig_attr.sa_mask = set_attr.sa_mask;
23155331Samw 				(void) smb_fsop_setattr(sr, kcred, snode,
231610001SJoyce.McIntosh@Sun.COM 				    &orig_attr);
23175331Samw 			}
23185331Samw 		}
23195331Samw 	}
23205331Samw 
23215331Samw 	return (error);
23225331Samw }
23235331Samw 
23245331Samw /*
23255331Samw  * smb_fsop_sdinherit
23265331Samw  *
23275331Samw  * Inherit the security descriptor from the parent container.
23285331Samw  * This function is called after FS has created the file/folder
23295331Samw  * so if this doesn't do anything it means FS inheritance is
23305331Samw  * in place.
23315331Samw  *
23325331Samw  * Do inheritance for ZFS internally.
23335331Samw  *
23345331Samw  * If we want to let ZFS does the inheritance the
23355331Samw  * following setting should be true:
23365331Samw  *
23375331Samw  *  - aclinherit = passthrough
23385331Samw  *  - aclmode = passthrough
23395331Samw  *  - smbd umask = 0777
23405331Samw  *
23415331Samw  * This will result in right effective permissions but
23425331Samw  * ZFS will always add 6 ACEs for owner, owning group
23435331Samw  * and others to be POSIX compliant. This is not what
23445331Samw  * Windows clients/users expect, so we decided that CIFS
23455331Samw  * implements Windows rules and overwrite whatever ZFS
23465331Samw  * comes up with. This way we also don't have to care
23475331Samw  * about ZFS aclinherit and aclmode settings.
23485331Samw  */
23495331Samw static int
23505331Samw smb_fsop_sdinherit(smb_request_t *sr, smb_node_t *dnode, smb_fssd_t *fs_sd)
23515331Samw {
23525521Sas200622 	acl_t *dacl = NULL;
23535521Sas200622 	acl_t *sacl = NULL;
235411963SAfshin.Ardakani@Sun.COM 	int is_dir;
23555331Samw 	int error;
23565331Samw 
23575331Samw 	ASSERT(fs_sd);
23585331Samw 
23595331Samw 	if (sr->tid_tree->t_acltype != ACE_T) {
23605331Samw 		/*
23615331Samw 		 * No forced inheritance for non-ZFS filesystems.
23625331Samw 		 */
23635331Samw 		fs_sd->sd_secinfo = 0;
23645331Samw 		return (0);
23655331Samw 	}
23665331Samw 
23675331Samw 
23685331Samw 	/* Fetch parent directory's ACL */
23695331Samw 	error = smb_fsop_sdread(sr, kcred, dnode, fs_sd);
23705331Samw 	if (error) {
23715331Samw 		return (error);
23725331Samw 	}
23735331Samw 
23745331Samw 	is_dir = (fs_sd->sd_flags & SMB_FSSD_FLAGS_DIR);
23755521Sas200622 	dacl = smb_fsacl_inherit(fs_sd->sd_zdacl, is_dir, SMB_DACL_SECINFO,
237611963SAfshin.Ardakani@Sun.COM 	    sr->user_cr);
23775521Sas200622 	sacl = smb_fsacl_inherit(fs_sd->sd_zsacl, is_dir, SMB_SACL_SECINFO,
237811963SAfshin.Ardakani@Sun.COM 	    sr->user_cr);
23795331Samw 
23805521Sas200622 	if (sacl == NULL)
23815521Sas200622 		fs_sd->sd_secinfo &= ~SMB_SACL_SECINFO;
23825521Sas200622 
23835521Sas200622 	smb_fsacl_free(fs_sd->sd_zdacl);
23845521Sas200622 	smb_fsacl_free(fs_sd->sd_zsacl);
23855331Samw 
23865331Samw 	fs_sd->sd_zdacl = dacl;
23875331Samw 	fs_sd->sd_zsacl = sacl;
23885331Samw 
23895331Samw 	return (0);
23905331Samw }
23915331Samw 
23925331Samw /*
23935331Samw  * smb_fsop_eaccess
23945331Samw  *
23955331Samw  * Returns the effective permission of the given credential for the
23965331Samw  * specified object.
23975331Samw  *
23985331Samw  * This is just a workaround. We need VFS/FS support for this.
23995331Samw  */
24005331Samw void
24015331Samw smb_fsop_eaccess(smb_request_t *sr, cred_t *cr, smb_node_t *snode,
24025331Samw     uint32_t *eaccess)
24035331Samw {
24045331Samw 	int access = 0;
24055331Samw 	vnode_t *dir_vp;
24065331Samw 	smb_node_t *unnamed_node;
24075331Samw 
24085331Samw 	ASSERT(cr);
24095331Samw 	ASSERT(snode);
24105331Samw 	ASSERT(snode->n_magic == SMB_NODE_MAGIC);
24115331Samw 	ASSERT(snode->n_state != SMB_NODE_STATE_DESTROYING);
24125331Samw 
24135331Samw 	unnamed_node = SMB_IS_STREAM(snode);
24145331Samw 	if (unnamed_node) {
24155331Samw 		ASSERT(unnamed_node->n_magic == SMB_NODE_MAGIC);
24165331Samw 		ASSERT(unnamed_node->n_state != SMB_NODE_STATE_DESTROYING);
24175331Samw 		/*
24185331Samw 		 * Streams authorization should be performed against the
24195331Samw 		 * unnamed stream.
24205331Samw 		 */
24215331Samw 		snode = unnamed_node;
24225331Samw 	}
24235331Samw 
24247348SJose.Borrego@Sun.COM 	if (smb_tree_has_feature(sr->tid_tree, SMB_TREE_ACEMASKONACCESS)) {
242510122SJordan.Brown@Sun.COM 		dir_vp = (snode->n_dnode) ? snode->n_dnode->vp : NULL;
24265331Samw 		smb_vop_eaccess(snode->vp, (int *)eaccess, V_ACE_MASK, dir_vp,
24275331Samw 		    cr);
24285331Samw 		return;
24295331Samw 	}
24305331Samw 
24315331Samw 	/*
24325331Samw 	 * FS doesn't understand 32-bit mask
24335331Samw 	 */
24345331Samw 	smb_vop_eaccess(snode->vp, &access, 0, NULL, cr);
24358845Samw@Sun.COM 	access &= sr->tid_tree->t_access;
24365331Samw 
24375331Samw 	*eaccess = READ_CONTROL | FILE_READ_EA | FILE_READ_ATTRIBUTES;
24385331Samw 
24395331Samw 	if (access & VREAD)
24405331Samw 		*eaccess |= FILE_READ_DATA;
24415331Samw 
24425331Samw 	if (access & VEXEC)
24435331Samw 		*eaccess |= FILE_EXECUTE;
24445331Samw 
24455331Samw 	if (access & VWRITE)
24465331Samw 		*eaccess |= FILE_WRITE_DATA | FILE_WRITE_ATTRIBUTES |
24475331Samw 		    FILE_WRITE_EA | FILE_APPEND_DATA | FILE_DELETE_CHILD;
24485331Samw }
24495521Sas200622 
24505772Sas200622 /*
24515772Sas200622  * smb_fsop_shrlock
24525772Sas200622  *
24535772Sas200622  * For the current open request, check file sharing rules
24545772Sas200622  * against existing opens.
24555772Sas200622  *
24565772Sas200622  * Returns NT_STATUS_SHARING_VIOLATION if there is any
24575772Sas200622  * sharing conflict.  Returns NT_STATUS_SUCCESS otherwise.
24585772Sas200622  *
24595772Sas200622  * Full system-wide share reservation synchronization is available
24605772Sas200622  * when the nbmand (non-blocking mandatory) mount option is set
24615772Sas200622  * (i.e. nbl_need_crit() is true) and nbmand critical regions are used.
24625772Sas200622  * This provides synchronization with NFS and local processes.  The
24635772Sas200622  * critical regions are entered in VOP_SHRLOCK()/fs_shrlock() (called
24645772Sas200622  * from smb_open_subr()/smb_fsop_shrlock()/smb_vop_shrlock()) as well
24655772Sas200622  * as the CIFS rename and delete paths.
24665772Sas200622  *
24675772Sas200622  * The CIFS server will also enter the nbl critical region in the open,
24685772Sas200622  * rename, and delete paths when nbmand is not set.  There is limited
24695772Sas200622  * coordination with local and VFS share reservations in this case.
24705772Sas200622  * Note that when the nbmand mount option is not set, the VFS layer
24715772Sas200622  * only processes advisory reservations and the delete mode is not checked.
24725772Sas200622  *
24735772Sas200622  * Whether or not the nbmand mount option is set, intra-CIFS share
24745772Sas200622  * checking is done in the open, delete, and rename paths using a CIFS
24755772Sas200622  * critical region (node->n_share_lock).
24765772Sas200622  */
24775772Sas200622 uint32_t
24786139Sjb150015 smb_fsop_shrlock(cred_t *cr, smb_node_t *node, uint32_t uniq_fid,
24795772Sas200622     uint32_t desired_access, uint32_t share_access)
24805772Sas200622 {
24815772Sas200622 	int rc;
24825772Sas200622 
24835772Sas200622 	/* Allow access if the request is just for meta data */
24845772Sas200622 	if ((desired_access & FILE_DATA_ALL) == 0)
24855772Sas200622 		return (NT_STATUS_SUCCESS);
24865772Sas200622 
248711963SAfshin.Ardakani@Sun.COM 	rc = smb_node_open_check(node, desired_access, share_access);
24885772Sas200622 	if (rc)
24895772Sas200622 		return (NT_STATUS_SHARING_VIOLATION);
24905772Sas200622 
24915772Sas200622 	rc = smb_vop_shrlock(node->vp, uniq_fid, desired_access, share_access,
24925772Sas200622 	    cr);
24935772Sas200622 	if (rc)
24945772Sas200622 		return (NT_STATUS_SHARING_VIOLATION);
24955772Sas200622 
24965772Sas200622 	return (NT_STATUS_SUCCESS);
24975772Sas200622 }
24985772Sas200622 
24995521Sas200622 void
25005772Sas200622 smb_fsop_unshrlock(cred_t *cr, smb_node_t *node, uint32_t uniq_fid)
25015521Sas200622 {
25025772Sas200622 	(void) smb_vop_unshrlock(node->vp, uniq_fid, cr);
25035772Sas200622 }
25046600Sas200622 
25056600Sas200622 int
25066600Sas200622 smb_fsop_frlock(smb_node_t *node, smb_lock_t *lock, boolean_t unlock,
25076600Sas200622     cred_t *cr)
25086600Sas200622 {
25096600Sas200622 	flock64_t bf;
25106600Sas200622 	int flag = F_REMOTELOCK;
25116600Sas200622 
25126771Sjb150015 	/*
25136771Sjb150015 	 * VOP_FRLOCK() will not be called if:
25146771Sjb150015 	 *
25156771Sjb150015 	 * 1) The lock has a range of zero bytes. The semantics of Windows and
25166771Sjb150015 	 *    POSIX are different. In the case of POSIX it asks for the locking
25176771Sjb150015 	 *    of all the bytes from the offset provided until the end of the
25186771Sjb150015 	 *    file. In the case of Windows a range of zero locks nothing and
25196771Sjb150015 	 *    doesn't conflict with any other lock.
25206771Sjb150015 	 *
25216771Sjb150015 	 * 2) The lock rolls over (start + lenght < start). Solaris will assert
25226771Sjb150015 	 *    if such a request is submitted. This will not create
25236771Sjb150015 	 *    incompatibilities between POSIX and Windows. In the Windows world,
25246771Sjb150015 	 *    if a client submits such a lock, the server will not lock any
25256771Sjb150015 	 *    bytes. Interestingly if the same lock (same offset and length) is
25266771Sjb150015 	 *    resubmitted Windows will consider that there is an overlap and
25276771Sjb150015 	 *    the granting rules will then apply.
25286771Sjb150015 	 */
25296771Sjb150015 	if ((lock->l_length == 0) ||
25306771Sjb150015 	    ((lock->l_start + lock->l_length - 1) < lock->l_start))
25316771Sjb150015 		return (0);
25326771Sjb150015 
25336600Sas200622 	bzero(&bf, sizeof (bf));
25346600Sas200622 
25356600Sas200622 	if (unlock) {
25366600Sas200622 		bf.l_type = F_UNLCK;
25376600Sas200622 	} else if (lock->l_type == SMB_LOCK_TYPE_READONLY) {
25386600Sas200622 		bf.l_type = F_RDLCK;
25396600Sas200622 		flag |= FREAD;
25406600Sas200622 	} else if (lock->l_type == SMB_LOCK_TYPE_READWRITE) {
25416600Sas200622 		bf.l_type = F_WRLCK;
25426600Sas200622 		flag |= FWRITE;
25436600Sas200622 	}
25446600Sas200622 
25456600Sas200622 	bf.l_start = lock->l_start;
25466600Sas200622 	bf.l_len = lock->l_length;
25477348SJose.Borrego@Sun.COM 	bf.l_pid = lock->l_file->f_uniqid;
25486600Sas200622 	bf.l_sysid = smb_ct.cc_sysid;
25496600Sas200622 
25506600Sas200622 	return (smb_vop_frlock(node->vp, cr, flag, &bf));
25516600Sas200622 }
2552