1789Sahrens /* 2789Sahrens * CDDL HEADER START 3789Sahrens * 4789Sahrens * The contents of this file are subject to the terms of the 51485Slling * Common Development and Distribution License (the "License"). 61485Slling * You may not use this file except in compliance with the License. 7789Sahrens * 8789Sahrens * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 9789Sahrens * or http://www.opensolaris.org/os/licensing. 10789Sahrens * See the License for the specific language governing permissions 11789Sahrens * and limitations under the License. 12789Sahrens * 13789Sahrens * When distributing Covered Code, include this CDDL HEADER in each 14789Sahrens * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 15789Sahrens * If applicable, add the following below this CDDL HEADER, with the 16789Sahrens * fields enclosed by brackets "[]" replaced with your own identifying 17789Sahrens * information: Portions Copyright [yyyy] [name of copyright owner] 18789Sahrens * 19789Sahrens * CDDL HEADER END 20789Sahrens */ 21789Sahrens /* 2212296SLin.Ling@Sun.COM * Copyright (c) 2005, 2010, Oracle and/or its affiliates. All rights reserved. 23789Sahrens */ 24789Sahrens 25789Sahrens #include <sys/types.h> 26789Sahrens #include <sys/param.h> 27789Sahrens #include <sys/errno.h> 28789Sahrens #include <sys/uio.h> 29789Sahrens #include <sys/buf.h> 30789Sahrens #include <sys/modctl.h> 31789Sahrens #include <sys/open.h> 32789Sahrens #include <sys/file.h> 33789Sahrens #include <sys/kmem.h> 34789Sahrens #include <sys/conf.h> 35789Sahrens #include <sys/cmn_err.h> 36789Sahrens #include <sys/stat.h> 37789Sahrens #include <sys/zfs_ioctl.h> 3810972SRic.Aleshire@Sun.COM #include <sys/zfs_vfsops.h> 395331Samw #include <sys/zfs_znode.h> 40789Sahrens #include <sys/zap.h> 41789Sahrens #include <sys/spa.h> 423912Slling #include <sys/spa_impl.h> 43789Sahrens #include <sys/vdev.h> 4410972SRic.Aleshire@Sun.COM #include <sys/priv_impl.h> 45789Sahrens #include <sys/dmu.h> 46789Sahrens #include <sys/dsl_dir.h> 47789Sahrens #include <sys/dsl_dataset.h> 48789Sahrens #include <sys/dsl_prop.h> 494543Smarks #include <sys/dsl_deleg.h> 504543Smarks #include <sys/dmu_objset.h> 51789Sahrens #include <sys/ddi.h> 52789Sahrens #include <sys/sunddi.h> 53789Sahrens #include <sys/sunldi.h> 54789Sahrens #include <sys/policy.h> 55789Sahrens #include <sys/zone.h> 56789Sahrens #include <sys/nvpair.h> 57789Sahrens #include <sys/pathname.h> 58789Sahrens #include <sys/mount.h> 59789Sahrens #include <sys/sdt.h> 60789Sahrens #include <sys/fs/zfs.h> 61789Sahrens #include <sys/zfs_ctldir.h> 625331Samw #include <sys/zfs_dir.h> 6312527SChris.Kirby@oracle.com #include <sys/zfs_onexit.h> 642885Sahrens #include <sys/zvol.h> 6512296SLin.Ling@Sun.COM #include <sys/dsl_scan.h> 664543Smarks #include <sharefs/share.h> 675326Sek110237 #include <sys/dmu_objset.h> 68789Sahrens 69789Sahrens #include "zfs_namecheck.h" 702676Seschrock #include "zfs_prop.h" 714543Smarks #include "zfs_deleg.h" 7211935SMark.Shellenbaum@Sun.COM #include "zfs_comutil.h" 73789Sahrens 74789Sahrens extern struct modlfs zfs_modlfs; 75789Sahrens 76789Sahrens extern void zfs_init(void); 77789Sahrens extern void zfs_fini(void); 78789Sahrens 79789Sahrens ldi_ident_t zfs_li = NULL; 80789Sahrens dev_info_t *zfs_dip; 81789Sahrens 82789Sahrens typedef int zfs_ioc_func_t(zfs_cmd_t *); 834543Smarks typedef int zfs_secpolicy_func_t(zfs_cmd_t *, cred_t *); 84789Sahrens 859234SGeorge.Wilson@Sun.COM typedef enum { 869234SGeorge.Wilson@Sun.COM NO_NAME, 879234SGeorge.Wilson@Sun.COM POOL_NAME, 889234SGeorge.Wilson@Sun.COM DATASET_NAME 899234SGeorge.Wilson@Sun.COM } zfs_ioc_namecheck_t; 909234SGeorge.Wilson@Sun.COM 91789Sahrens typedef struct zfs_ioc_vec { 92789Sahrens zfs_ioc_func_t *zvec_func; 93789Sahrens zfs_secpolicy_func_t *zvec_secpolicy; 949234SGeorge.Wilson@Sun.COM zfs_ioc_namecheck_t zvec_namecheck; 954543Smarks boolean_t zvec_his_log; 969234SGeorge.Wilson@Sun.COM boolean_t zvec_pool_check; 97789Sahrens } zfs_ioc_vec_t; 98789Sahrens 999396SMatthew.Ahrens@Sun.COM /* This array is indexed by zfs_userquota_prop_t */ 1009396SMatthew.Ahrens@Sun.COM static const char *userquota_perms[] = { 1019396SMatthew.Ahrens@Sun.COM ZFS_DELEG_PERM_USERUSED, 1029396SMatthew.Ahrens@Sun.COM ZFS_DELEG_PERM_USERQUOTA, 1039396SMatthew.Ahrens@Sun.COM ZFS_DELEG_PERM_GROUPUSED, 1049396SMatthew.Ahrens@Sun.COM ZFS_DELEG_PERM_GROUPQUOTA, 1059396SMatthew.Ahrens@Sun.COM }; 1069396SMatthew.Ahrens@Sun.COM 1079396SMatthew.Ahrens@Sun.COM static int zfs_ioc_userspace_upgrade(zfs_cmd_t *zc); 10811022STom.Erickson@Sun.COM static int zfs_check_settable(const char *name, nvpair_t *property, 10911022STom.Erickson@Sun.COM cred_t *cr); 11011022STom.Erickson@Sun.COM static int zfs_check_clearable(char *dataset, nvlist_t *props, 11111022STom.Erickson@Sun.COM nvlist_t **errors); 1127184Stimh static int zfs_fill_zplprops_root(uint64_t, nvlist_t *, nvlist_t *, 1137184Stimh boolean_t *); 11411022STom.Erickson@Sun.COM int zfs_set_prop_nvlist(const char *, zprop_source_t, nvlist_t *, nvlist_t **); 1157184Stimh 116789Sahrens /* _NOTE(PRINTFLIKE(4)) - this is printf-like, but lint is too whiney */ 117789Sahrens void 118789Sahrens __dprintf(const char *file, const char *func, int line, const char *fmt, ...) 119789Sahrens { 120789Sahrens const char *newfile; 12112296SLin.Ling@Sun.COM char buf[512]; 122789Sahrens va_list adx; 123789Sahrens 124789Sahrens /* 125789Sahrens * Get rid of annoying "../common/" prefix to filename. 126789Sahrens */ 127789Sahrens newfile = strrchr(file, '/'); 128789Sahrens if (newfile != NULL) { 129789Sahrens newfile = newfile + 1; /* Get rid of leading / */ 130789Sahrens } else { 131789Sahrens newfile = file; 132789Sahrens } 133789Sahrens 134789Sahrens va_start(adx, fmt); 135789Sahrens (void) vsnprintf(buf, sizeof (buf), fmt, adx); 136789Sahrens va_end(adx); 137789Sahrens 138789Sahrens /* 139789Sahrens * To get this data, use the zfs-dprintf probe as so: 140789Sahrens * dtrace -q -n 'zfs-dprintf \ 141789Sahrens * /stringof(arg0) == "dbuf.c"/ \ 142789Sahrens * {printf("%s: %s", stringof(arg1), stringof(arg3))}' 143789Sahrens * arg0 = file name 144789Sahrens * arg1 = function name 145789Sahrens * arg2 = line number 146789Sahrens * arg3 = message 147789Sahrens */ 148789Sahrens DTRACE_PROBE4(zfs__dprintf, 149789Sahrens char *, newfile, char *, func, int, line, char *, buf); 150789Sahrens } 151789Sahrens 1524543Smarks static void 1534715Sek110237 history_str_free(char *buf) 1544715Sek110237 { 1554715Sek110237 kmem_free(buf, HIS_MAX_RECORD_LEN); 1564715Sek110237 } 1574715Sek110237 1584715Sek110237 static char * 1594715Sek110237 history_str_get(zfs_cmd_t *zc) 1604715Sek110237 { 1614715Sek110237 char *buf; 1624715Sek110237 1634715Sek110237 if (zc->zc_history == NULL) 1644715Sek110237 return (NULL); 1654715Sek110237 1664715Sek110237 buf = kmem_alloc(HIS_MAX_RECORD_LEN, KM_SLEEP); 1674715Sek110237 if (copyinstr((void *)(uintptr_t)zc->zc_history, 1684715Sek110237 buf, HIS_MAX_RECORD_LEN, NULL) != 0) { 1694715Sek110237 history_str_free(buf); 1704715Sek110237 return (NULL); 1714715Sek110237 } 1724715Sek110237 1734715Sek110237 buf[HIS_MAX_RECORD_LEN -1] = '\0'; 1744715Sek110237 1754715Sek110237 return (buf); 1764715Sek110237 } 1774715Sek110237 1785375Stimh /* 1797042Sgw25295 * Check to see if the named dataset is currently defined as bootable 1807042Sgw25295 */ 1817042Sgw25295 static boolean_t 1827042Sgw25295 zfs_is_bootfs(const char *name) 1837042Sgw25295 { 18410298SMatthew.Ahrens@Sun.COM objset_t *os; 18510298SMatthew.Ahrens@Sun.COM 18610298SMatthew.Ahrens@Sun.COM if (dmu_objset_hold(name, FTAG, &os) == 0) { 18710298SMatthew.Ahrens@Sun.COM boolean_t ret; 18810922SJeff.Bonwick@Sun.COM ret = (dmu_objset_id(os) == spa_bootfs(dmu_objset_spa(os))); 18910298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 19010298SMatthew.Ahrens@Sun.COM return (ret); 1917042Sgw25295 } 19210298SMatthew.Ahrens@Sun.COM return (B_FALSE); 1937042Sgw25295 } 1947042Sgw25295 1957042Sgw25295 /* 1967184Stimh * zfs_earlier_version 1975375Stimh * 1985375Stimh * Return non-zero if the spa version is less than requested version. 1995375Stimh */ 2005331Samw static int 2017184Stimh zfs_earlier_version(const char *name, int version) 2025331Samw { 2035331Samw spa_t *spa; 2045331Samw 2055331Samw if (spa_open(name, &spa, FTAG) == 0) { 2065331Samw if (spa_version(spa) < version) { 2075331Samw spa_close(spa, FTAG); 2085331Samw return (1); 2095331Samw } 2105331Samw spa_close(spa, FTAG); 2115331Samw } 2125331Samw return (0); 2135331Samw } 2145331Samw 2155977Smarks /* 2166689Smaybee * zpl_earlier_version 2175977Smarks * 2186689Smaybee * Return TRUE if the ZPL version is less than requested version. 2195977Smarks */ 2206689Smaybee static boolean_t 2216689Smaybee zpl_earlier_version(const char *name, int version) 2225977Smarks { 2235977Smarks objset_t *os; 2246689Smaybee boolean_t rc = B_TRUE; 2255977Smarks 22610298SMatthew.Ahrens@Sun.COM if (dmu_objset_hold(name, FTAG, &os) == 0) { 2276689Smaybee uint64_t zplversion; 2286689Smaybee 22910298SMatthew.Ahrens@Sun.COM if (dmu_objset_type(os) != DMU_OST_ZFS) { 23010298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 23110298SMatthew.Ahrens@Sun.COM return (B_TRUE); 23210298SMatthew.Ahrens@Sun.COM } 23310298SMatthew.Ahrens@Sun.COM /* XXX reading from non-owned objset */ 2346689Smaybee if (zfs_get_zplprop(os, ZFS_PROP_VERSION, &zplversion) == 0) 2356689Smaybee rc = zplversion < version; 23610298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 2375977Smarks } 2385977Smarks return (rc); 2395977Smarks } 2405977Smarks 2414715Sek110237 static void 2424543Smarks zfs_log_history(zfs_cmd_t *zc) 2434543Smarks { 2444543Smarks spa_t *spa; 2454603Sahrens char *buf; 2464543Smarks 2474715Sek110237 if ((buf = history_str_get(zc)) == NULL) 2484577Sahrens return; 2494577Sahrens 2504715Sek110237 if (spa_open(zc->zc_name, &spa, FTAG) == 0) { 2514715Sek110237 if (spa_version(spa) >= SPA_VERSION_ZPOOL_HISTORY) 2524715Sek110237 (void) spa_history_log(spa, buf, LOG_CMD_NORMAL); 2534715Sek110237 spa_close(spa, FTAG); 2544543Smarks } 2554715Sek110237 history_str_free(buf); 2564543Smarks } 2574543Smarks 258789Sahrens /* 259789Sahrens * Policy for top-level read operations (list pools). Requires no privileges, 260789Sahrens * and can be used in the local zone, as there is no associated dataset. 261789Sahrens */ 262789Sahrens /* ARGSUSED */ 263789Sahrens static int 2644543Smarks zfs_secpolicy_none(zfs_cmd_t *zc, cred_t *cr) 265789Sahrens { 266789Sahrens return (0); 267789Sahrens } 268789Sahrens 269789Sahrens /* 270789Sahrens * Policy for dataset read operations (list children, get statistics). Requires 271789Sahrens * no privileges, but must be visible in the local zone. 272789Sahrens */ 273789Sahrens /* ARGSUSED */ 274789Sahrens static int 2754543Smarks zfs_secpolicy_read(zfs_cmd_t *zc, cred_t *cr) 276789Sahrens { 277789Sahrens if (INGLOBALZONE(curproc) || 2784543Smarks zone_dataset_visible(zc->zc_name, NULL)) 279789Sahrens return (0); 280789Sahrens 281789Sahrens return (ENOENT); 282789Sahrens } 283789Sahrens 284789Sahrens static int 285789Sahrens zfs_dozonecheck(const char *dataset, cred_t *cr) 286789Sahrens { 287789Sahrens uint64_t zoned; 288789Sahrens int writable = 1; 289789Sahrens 290789Sahrens /* 291789Sahrens * The dataset must be visible by this zone -- check this first 292789Sahrens * so they don't see EPERM on something they shouldn't know about. 293789Sahrens */ 294789Sahrens if (!INGLOBALZONE(curproc) && 295789Sahrens !zone_dataset_visible(dataset, &writable)) 296789Sahrens return (ENOENT); 297789Sahrens 298789Sahrens if (dsl_prop_get_integer(dataset, "zoned", &zoned, NULL)) 299789Sahrens return (ENOENT); 300789Sahrens 301789Sahrens if (INGLOBALZONE(curproc)) { 302789Sahrens /* 303789Sahrens * If the fs is zoned, only root can access it from the 304789Sahrens * global zone. 305789Sahrens */ 306789Sahrens if (secpolicy_zfs(cr) && zoned) 307789Sahrens return (EPERM); 308789Sahrens } else { 309789Sahrens /* 310789Sahrens * If we are in a local zone, the 'zoned' property must be set. 311789Sahrens */ 312789Sahrens if (!zoned) 313789Sahrens return (EPERM); 314789Sahrens 315789Sahrens /* must be writable by this zone */ 316789Sahrens if (!writable) 317789Sahrens return (EPERM); 318789Sahrens } 319789Sahrens return (0); 320789Sahrens } 321789Sahrens 322789Sahrens int 3234543Smarks zfs_secpolicy_write_perms(const char *name, const char *perm, cred_t *cr) 324789Sahrens { 325789Sahrens int error; 326789Sahrens 3274543Smarks error = zfs_dozonecheck(name, cr); 3284543Smarks if (error == 0) { 3294543Smarks error = secpolicy_zfs(cr); 3304670Sahrens if (error) 3314543Smarks error = dsl_deleg_access(name, perm, cr); 3324543Smarks } 3334543Smarks return (error); 3344543Smarks } 3354543Smarks 33610972SRic.Aleshire@Sun.COM /* 33710972SRic.Aleshire@Sun.COM * Policy for setting the security label property. 33810972SRic.Aleshire@Sun.COM * 33910972SRic.Aleshire@Sun.COM * Returns 0 for success, non-zero for access and other errors. 34010972SRic.Aleshire@Sun.COM */ 34110972SRic.Aleshire@Sun.COM static int 34211022STom.Erickson@Sun.COM zfs_set_slabel_policy(const char *name, char *strval, cred_t *cr) 34310972SRic.Aleshire@Sun.COM { 34410972SRic.Aleshire@Sun.COM char ds_hexsl[MAXNAMELEN]; 34510972SRic.Aleshire@Sun.COM bslabel_t ds_sl, new_sl; 34610972SRic.Aleshire@Sun.COM boolean_t new_default = FALSE; 34710972SRic.Aleshire@Sun.COM uint64_t zoned; 34810972SRic.Aleshire@Sun.COM int needed_priv = -1; 34910972SRic.Aleshire@Sun.COM int error; 35010972SRic.Aleshire@Sun.COM 35110972SRic.Aleshire@Sun.COM /* First get the existing dataset label. */ 35210972SRic.Aleshire@Sun.COM error = dsl_prop_get(name, zfs_prop_to_name(ZFS_PROP_MLSLABEL), 35310972SRic.Aleshire@Sun.COM 1, sizeof (ds_hexsl), &ds_hexsl, NULL); 35410972SRic.Aleshire@Sun.COM if (error) 35510972SRic.Aleshire@Sun.COM return (EPERM); 35610972SRic.Aleshire@Sun.COM 35710972SRic.Aleshire@Sun.COM if (strcasecmp(strval, ZFS_MLSLABEL_DEFAULT) == 0) 35810972SRic.Aleshire@Sun.COM new_default = TRUE; 35910972SRic.Aleshire@Sun.COM 36010972SRic.Aleshire@Sun.COM /* The label must be translatable */ 36110972SRic.Aleshire@Sun.COM if (!new_default && (hexstr_to_label(strval, &new_sl) != 0)) 36210972SRic.Aleshire@Sun.COM return (EINVAL); 36310972SRic.Aleshire@Sun.COM 36410972SRic.Aleshire@Sun.COM /* 36510972SRic.Aleshire@Sun.COM * In a non-global zone, disallow attempts to set a label that 36610972SRic.Aleshire@Sun.COM * doesn't match that of the zone; otherwise no other checks 36710972SRic.Aleshire@Sun.COM * are needed. 36810972SRic.Aleshire@Sun.COM */ 36910972SRic.Aleshire@Sun.COM if (!INGLOBALZONE(curproc)) { 37010972SRic.Aleshire@Sun.COM if (new_default || !blequal(&new_sl, CR_SL(CRED()))) 37110972SRic.Aleshire@Sun.COM return (EPERM); 37210972SRic.Aleshire@Sun.COM return (0); 37310972SRic.Aleshire@Sun.COM } 37410972SRic.Aleshire@Sun.COM 37510972SRic.Aleshire@Sun.COM /* 37610972SRic.Aleshire@Sun.COM * For global-zone datasets (i.e., those whose zoned property is 37710972SRic.Aleshire@Sun.COM * "off", verify that the specified new label is valid for the 37810972SRic.Aleshire@Sun.COM * global zone. 37910972SRic.Aleshire@Sun.COM */ 38010972SRic.Aleshire@Sun.COM if (dsl_prop_get_integer(name, 38110972SRic.Aleshire@Sun.COM zfs_prop_to_name(ZFS_PROP_ZONED), &zoned, NULL)) 38210972SRic.Aleshire@Sun.COM return (EPERM); 38310972SRic.Aleshire@Sun.COM if (!zoned) { 38410972SRic.Aleshire@Sun.COM if (zfs_check_global_label(name, strval) != 0) 38510972SRic.Aleshire@Sun.COM return (EPERM); 38610972SRic.Aleshire@Sun.COM } 38710972SRic.Aleshire@Sun.COM 38810972SRic.Aleshire@Sun.COM /* 38910972SRic.Aleshire@Sun.COM * If the existing dataset label is nondefault, check if the 39010972SRic.Aleshire@Sun.COM * dataset is mounted (label cannot be changed while mounted). 39110972SRic.Aleshire@Sun.COM * Get the zfsvfs; if there isn't one, then the dataset isn't 39210972SRic.Aleshire@Sun.COM * mounted (or isn't a dataset, doesn't exist, ...). 39310972SRic.Aleshire@Sun.COM */ 39410972SRic.Aleshire@Sun.COM if (strcasecmp(ds_hexsl, ZFS_MLSLABEL_DEFAULT) != 0) { 39511022STom.Erickson@Sun.COM objset_t *os; 39611022STom.Erickson@Sun.COM static char *setsl_tag = "setsl_tag"; 39711022STom.Erickson@Sun.COM 39810972SRic.Aleshire@Sun.COM /* 39910972SRic.Aleshire@Sun.COM * Try to own the dataset; abort if there is any error, 40010972SRic.Aleshire@Sun.COM * (e.g., already mounted, in use, or other error). 40110972SRic.Aleshire@Sun.COM */ 40210972SRic.Aleshire@Sun.COM error = dmu_objset_own(name, DMU_OST_ZFS, B_TRUE, 40311022STom.Erickson@Sun.COM setsl_tag, &os); 40410972SRic.Aleshire@Sun.COM if (error) 40510972SRic.Aleshire@Sun.COM return (EPERM); 40610972SRic.Aleshire@Sun.COM 40711022STom.Erickson@Sun.COM dmu_objset_disown(os, setsl_tag); 40811022STom.Erickson@Sun.COM 40910972SRic.Aleshire@Sun.COM if (new_default) { 41010972SRic.Aleshire@Sun.COM needed_priv = PRIV_FILE_DOWNGRADE_SL; 41110972SRic.Aleshire@Sun.COM goto out_check; 41210972SRic.Aleshire@Sun.COM } 41310972SRic.Aleshire@Sun.COM 41410972SRic.Aleshire@Sun.COM if (hexstr_to_label(strval, &new_sl) != 0) 41510972SRic.Aleshire@Sun.COM return (EPERM); 41610972SRic.Aleshire@Sun.COM 41710972SRic.Aleshire@Sun.COM if (blstrictdom(&ds_sl, &new_sl)) 41810972SRic.Aleshire@Sun.COM needed_priv = PRIV_FILE_DOWNGRADE_SL; 41910972SRic.Aleshire@Sun.COM else if (blstrictdom(&new_sl, &ds_sl)) 42010972SRic.Aleshire@Sun.COM needed_priv = PRIV_FILE_UPGRADE_SL; 42110972SRic.Aleshire@Sun.COM } else { 42210972SRic.Aleshire@Sun.COM /* dataset currently has a default label */ 42310972SRic.Aleshire@Sun.COM if (!new_default) 42410972SRic.Aleshire@Sun.COM needed_priv = PRIV_FILE_UPGRADE_SL; 42510972SRic.Aleshire@Sun.COM } 42610972SRic.Aleshire@Sun.COM 42710972SRic.Aleshire@Sun.COM out_check: 42810972SRic.Aleshire@Sun.COM if (needed_priv != -1) 42910972SRic.Aleshire@Sun.COM return (PRIV_POLICY(cr, needed_priv, B_FALSE, EPERM, NULL)); 43010972SRic.Aleshire@Sun.COM return (0); 43110972SRic.Aleshire@Sun.COM } 43210972SRic.Aleshire@Sun.COM 4334543Smarks static int 43411022STom.Erickson@Sun.COM zfs_secpolicy_setprop(const char *dsname, zfs_prop_t prop, nvpair_t *propval, 43511022STom.Erickson@Sun.COM cred_t *cr) 4364543Smarks { 43711022STom.Erickson@Sun.COM char *strval; 43811022STom.Erickson@Sun.COM 4394543Smarks /* 4404543Smarks * Check permissions for special properties. 4414543Smarks */ 4424543Smarks switch (prop) { 4434543Smarks case ZFS_PROP_ZONED: 4444543Smarks /* 4454543Smarks * Disallow setting of 'zoned' from within a local zone. 4464543Smarks */ 4474543Smarks if (!INGLOBALZONE(curproc)) 4484543Smarks return (EPERM); 4494543Smarks break; 450789Sahrens 4514543Smarks case ZFS_PROP_QUOTA: 4524543Smarks if (!INGLOBALZONE(curproc)) { 4534543Smarks uint64_t zoned; 4544543Smarks char setpoint[MAXNAMELEN]; 4554543Smarks /* 4564543Smarks * Unprivileged users are allowed to modify the 4574543Smarks * quota on things *under* (ie. contained by) 4584543Smarks * the thing they own. 4594543Smarks */ 46011022STom.Erickson@Sun.COM if (dsl_prop_get_integer(dsname, "zoned", &zoned, 4614543Smarks setpoint)) 4624543Smarks return (EPERM); 46311022STom.Erickson@Sun.COM if (!zoned || strlen(dsname) <= strlen(setpoint)) 4644543Smarks return (EPERM); 4654543Smarks } 4664670Sahrens break; 46710972SRic.Aleshire@Sun.COM 46810972SRic.Aleshire@Sun.COM case ZFS_PROP_MLSLABEL: 46910972SRic.Aleshire@Sun.COM if (!is_system_labeled()) 47010972SRic.Aleshire@Sun.COM return (EPERM); 47111022STom.Erickson@Sun.COM 47211022STom.Erickson@Sun.COM if (nvpair_value_string(propval, &strval) == 0) { 47311022STom.Erickson@Sun.COM int err; 47411022STom.Erickson@Sun.COM 47511022STom.Erickson@Sun.COM err = zfs_set_slabel_policy(dsname, strval, CRED()); 47611022STom.Erickson@Sun.COM if (err != 0) 47711022STom.Erickson@Sun.COM return (err); 47811022STom.Erickson@Sun.COM } 47910972SRic.Aleshire@Sun.COM break; 4804543Smarks } 4814543Smarks 48211022STom.Erickson@Sun.COM return (zfs_secpolicy_write_perms(dsname, zfs_prop_to_name(prop), cr)); 483789Sahrens } 484789Sahrens 4854543Smarks int 4864543Smarks zfs_secpolicy_fsacl(zfs_cmd_t *zc, cred_t *cr) 4874543Smarks { 4884543Smarks int error; 4894543Smarks 4904543Smarks error = zfs_dozonecheck(zc->zc_name, cr); 4914543Smarks if (error) 4924543Smarks return (error); 4934543Smarks 4944543Smarks /* 4954543Smarks * permission to set permissions will be evaluated later in 4964543Smarks * dsl_deleg_can_allow() 4974543Smarks */ 4984543Smarks return (0); 4994543Smarks } 5004543Smarks 5014543Smarks int 5024543Smarks zfs_secpolicy_rollback(zfs_cmd_t *zc, cred_t *cr) 5034543Smarks { 50410588SEric.Taylor@Sun.COM return (zfs_secpolicy_write_perms(zc->zc_name, 50510588SEric.Taylor@Sun.COM ZFS_DELEG_PERM_ROLLBACK, cr)); 5064543Smarks } 5074543Smarks 5084543Smarks int 5094543Smarks zfs_secpolicy_send(zfs_cmd_t *zc, cred_t *cr) 5104543Smarks { 5114543Smarks return (zfs_secpolicy_write_perms(zc->zc_name, 5124543Smarks ZFS_DELEG_PERM_SEND, cr)); 5134543Smarks } 5144543Smarks 5158845Samw@Sun.COM static int 5168845Samw@Sun.COM zfs_secpolicy_deleg_share(zfs_cmd_t *zc, cred_t *cr) 5178845Samw@Sun.COM { 5188845Samw@Sun.COM vnode_t *vp; 5198845Samw@Sun.COM int error; 5208845Samw@Sun.COM 5218845Samw@Sun.COM if ((error = lookupname(zc->zc_value, UIO_SYSSPACE, 5228845Samw@Sun.COM NO_FOLLOW, NULL, &vp)) != 0) 5238845Samw@Sun.COM return (error); 5248845Samw@Sun.COM 5258845Samw@Sun.COM /* Now make sure mntpnt and dataset are ZFS */ 5268845Samw@Sun.COM 5278845Samw@Sun.COM if (vp->v_vfsp->vfs_fstype != zfsfstype || 5288845Samw@Sun.COM (strcmp((char *)refstr_value(vp->v_vfsp->vfs_resource), 5298845Samw@Sun.COM zc->zc_name) != 0)) { 5308845Samw@Sun.COM VN_RELE(vp); 5318845Samw@Sun.COM return (EPERM); 5328845Samw@Sun.COM } 5338845Samw@Sun.COM 5348845Samw@Sun.COM VN_RELE(vp); 5358845Samw@Sun.COM return (dsl_deleg_access(zc->zc_name, 5368845Samw@Sun.COM ZFS_DELEG_PERM_SHARE, cr)); 5378845Samw@Sun.COM } 5388845Samw@Sun.COM 5394543Smarks int 5404543Smarks zfs_secpolicy_share(zfs_cmd_t *zc, cred_t *cr) 5414543Smarks { 5424543Smarks if (!INGLOBALZONE(curproc)) 5434543Smarks return (EPERM); 5444543Smarks 5455367Sahrens if (secpolicy_nfs(cr) == 0) { 5464543Smarks return (0); 5474543Smarks } else { 5488845Samw@Sun.COM return (zfs_secpolicy_deleg_share(zc, cr)); 5498845Samw@Sun.COM } 5508845Samw@Sun.COM } 5518845Samw@Sun.COM 5528845Samw@Sun.COM int 5538845Samw@Sun.COM zfs_secpolicy_smb_acl(zfs_cmd_t *zc, cred_t *cr) 5548845Samw@Sun.COM { 5558845Samw@Sun.COM if (!INGLOBALZONE(curproc)) 5568845Samw@Sun.COM return (EPERM); 5578845Samw@Sun.COM 5588845Samw@Sun.COM if (secpolicy_smb(cr) == 0) { 5598845Samw@Sun.COM return (0); 5608845Samw@Sun.COM } else { 5618845Samw@Sun.COM return (zfs_secpolicy_deleg_share(zc, cr)); 5624543Smarks } 5634543Smarks } 5644543Smarks 565789Sahrens static int 5664543Smarks zfs_get_parent(const char *datasetname, char *parent, int parentsize) 567789Sahrens { 568789Sahrens char *cp; 569789Sahrens 570789Sahrens /* 571789Sahrens * Remove the @bla or /bla from the end of the name to get the parent. 572789Sahrens */ 5734543Smarks (void) strncpy(parent, datasetname, parentsize); 5744543Smarks cp = strrchr(parent, '@'); 575789Sahrens if (cp != NULL) { 576789Sahrens cp[0] = '\0'; 577789Sahrens } else { 5784543Smarks cp = strrchr(parent, '/'); 579789Sahrens if (cp == NULL) 580789Sahrens return (ENOENT); 581789Sahrens cp[0] = '\0'; 582789Sahrens } 583789Sahrens 5844543Smarks return (0); 5854543Smarks } 5864543Smarks 5874543Smarks int 5884543Smarks zfs_secpolicy_destroy_perms(const char *name, cred_t *cr) 5894543Smarks { 5904543Smarks int error; 5914543Smarks 5924543Smarks if ((error = zfs_secpolicy_write_perms(name, 5934543Smarks ZFS_DELEG_PERM_MOUNT, cr)) != 0) 5944543Smarks return (error); 5954543Smarks 5964543Smarks return (zfs_secpolicy_write_perms(name, ZFS_DELEG_PERM_DESTROY, cr)); 5974543Smarks } 5984543Smarks 5994543Smarks static int 6004543Smarks zfs_secpolicy_destroy(zfs_cmd_t *zc, cred_t *cr) 6014543Smarks { 6024543Smarks return (zfs_secpolicy_destroy_perms(zc->zc_name, cr)); 6034543Smarks } 6044543Smarks 6054543Smarks /* 60611314Swilliam.gorrell@sun.com * Destroying snapshots with delegated permissions requires 60711314Swilliam.gorrell@sun.com * descendent mount and destroy permissions. 60811314Swilliam.gorrell@sun.com * Reassemble the full filesystem@snap name so dsl_deleg_access() 60911314Swilliam.gorrell@sun.com * can do the correct permission check. 61011314Swilliam.gorrell@sun.com * 61111314Swilliam.gorrell@sun.com * Since this routine is used when doing a recursive destroy of snapshots 61211314Swilliam.gorrell@sun.com * and destroying snapshots requires descendent permissions, a successfull 61311314Swilliam.gorrell@sun.com * check of the top level snapshot applies to snapshots of all descendent 61411314Swilliam.gorrell@sun.com * datasets as well. 61511314Swilliam.gorrell@sun.com */ 61611314Swilliam.gorrell@sun.com static int 61711314Swilliam.gorrell@sun.com zfs_secpolicy_destroy_snaps(zfs_cmd_t *zc, cred_t *cr) 61811314Swilliam.gorrell@sun.com { 61911314Swilliam.gorrell@sun.com int error; 62011314Swilliam.gorrell@sun.com char *dsname; 62111314Swilliam.gorrell@sun.com 62211314Swilliam.gorrell@sun.com dsname = kmem_asprintf("%s@%s", zc->zc_name, zc->zc_value); 62311314Swilliam.gorrell@sun.com 62411314Swilliam.gorrell@sun.com error = zfs_secpolicy_destroy_perms(dsname, cr); 62511314Swilliam.gorrell@sun.com 62611314Swilliam.gorrell@sun.com strfree(dsname); 62711314Swilliam.gorrell@sun.com return (error); 62811314Swilliam.gorrell@sun.com } 62911314Swilliam.gorrell@sun.com 6304543Smarks int 6314543Smarks zfs_secpolicy_rename_perms(const char *from, const char *to, cred_t *cr) 6324543Smarks { 63311022STom.Erickson@Sun.COM char parentname[MAXNAMELEN]; 6344543Smarks int error; 6354543Smarks 6364543Smarks if ((error = zfs_secpolicy_write_perms(from, 6374543Smarks ZFS_DELEG_PERM_RENAME, cr)) != 0) 6384543Smarks return (error); 6394543Smarks 6404543Smarks if ((error = zfs_secpolicy_write_perms(from, 6414543Smarks ZFS_DELEG_PERM_MOUNT, cr)) != 0) 6424543Smarks return (error); 6434543Smarks 6444543Smarks if ((error = zfs_get_parent(to, parentname, 6454543Smarks sizeof (parentname))) != 0) 6464543Smarks return (error); 6474543Smarks 6484543Smarks if ((error = zfs_secpolicy_write_perms(parentname, 6494543Smarks ZFS_DELEG_PERM_CREATE, cr)) != 0) 6504543Smarks return (error); 6514543Smarks 6524543Smarks if ((error = zfs_secpolicy_write_perms(parentname, 6534543Smarks ZFS_DELEG_PERM_MOUNT, cr)) != 0) 6544543Smarks return (error); 6554543Smarks 6564543Smarks return (error); 6574543Smarks } 6584543Smarks 6594543Smarks static int 6604543Smarks zfs_secpolicy_rename(zfs_cmd_t *zc, cred_t *cr) 6614543Smarks { 6624543Smarks return (zfs_secpolicy_rename_perms(zc->zc_name, zc->zc_value, cr)); 6634543Smarks } 6644543Smarks 6654543Smarks static int 6664543Smarks zfs_secpolicy_promote(zfs_cmd_t *zc, cred_t *cr) 6674543Smarks { 66811022STom.Erickson@Sun.COM char parentname[MAXNAMELEN]; 6694543Smarks objset_t *clone; 6704543Smarks int error; 6714543Smarks 6724543Smarks error = zfs_secpolicy_write_perms(zc->zc_name, 6734543Smarks ZFS_DELEG_PERM_PROMOTE, cr); 6744543Smarks if (error) 6754543Smarks return (error); 6764543Smarks 67710298SMatthew.Ahrens@Sun.COM error = dmu_objset_hold(zc->zc_name, FTAG, &clone); 6784543Smarks 6794543Smarks if (error == 0) { 6804543Smarks dsl_dataset_t *pclone = NULL; 6814543Smarks dsl_dir_t *dd; 68210298SMatthew.Ahrens@Sun.COM dd = clone->os_dsl_dataset->ds_dir; 6834543Smarks 6844543Smarks rw_enter(&dd->dd_pool->dp_config_rwlock, RW_READER); 6856689Smaybee error = dsl_dataset_hold_obj(dd->dd_pool, 6866689Smaybee dd->dd_phys->dd_origin_obj, FTAG, &pclone); 6874543Smarks rw_exit(&dd->dd_pool->dp_config_rwlock); 6884543Smarks if (error) { 68910298SMatthew.Ahrens@Sun.COM dmu_objset_rele(clone, FTAG); 6904543Smarks return (error); 6914543Smarks } 6924543Smarks 6934543Smarks error = zfs_secpolicy_write_perms(zc->zc_name, 6944543Smarks ZFS_DELEG_PERM_MOUNT, cr); 6954543Smarks 6964543Smarks dsl_dataset_name(pclone, parentname); 69710298SMatthew.Ahrens@Sun.COM dmu_objset_rele(clone, FTAG); 6986689Smaybee dsl_dataset_rele(pclone, FTAG); 6994543Smarks if (error == 0) 7004543Smarks error = zfs_secpolicy_write_perms(parentname, 7014543Smarks ZFS_DELEG_PERM_PROMOTE, cr); 7024543Smarks } 7034543Smarks return (error); 7044543Smarks } 7054543Smarks 7064543Smarks static int 7074543Smarks zfs_secpolicy_receive(zfs_cmd_t *zc, cred_t *cr) 7084543Smarks { 7094543Smarks int error; 7104543Smarks 7114543Smarks if ((error = zfs_secpolicy_write_perms(zc->zc_name, 7124543Smarks ZFS_DELEG_PERM_RECEIVE, cr)) != 0) 7134543Smarks return (error); 7144543Smarks 7154543Smarks if ((error = zfs_secpolicy_write_perms(zc->zc_name, 7164543Smarks ZFS_DELEG_PERM_MOUNT, cr)) != 0) 7174543Smarks return (error); 7184543Smarks 7194543Smarks return (zfs_secpolicy_write_perms(zc->zc_name, 7204543Smarks ZFS_DELEG_PERM_CREATE, cr)); 7214543Smarks } 7224543Smarks 7234543Smarks int 7244543Smarks zfs_secpolicy_snapshot_perms(const char *name, cred_t *cr) 7254543Smarks { 72610588SEric.Taylor@Sun.COM return (zfs_secpolicy_write_perms(name, 72710588SEric.Taylor@Sun.COM ZFS_DELEG_PERM_SNAPSHOT, cr)); 7284543Smarks } 7294543Smarks 7304543Smarks static int 7314543Smarks zfs_secpolicy_snapshot(zfs_cmd_t *zc, cred_t *cr) 7324543Smarks { 7334543Smarks 7344543Smarks return (zfs_secpolicy_snapshot_perms(zc->zc_name, cr)); 7354543Smarks } 7364543Smarks 7374543Smarks static int 7384543Smarks zfs_secpolicy_create(zfs_cmd_t *zc, cred_t *cr) 7394543Smarks { 74011022STom.Erickson@Sun.COM char parentname[MAXNAMELEN]; 74111022STom.Erickson@Sun.COM int error; 7424543Smarks 7434543Smarks if ((error = zfs_get_parent(zc->zc_name, parentname, 7444543Smarks sizeof (parentname))) != 0) 7454543Smarks return (error); 7464543Smarks 7474543Smarks if (zc->zc_value[0] != '\0') { 7484543Smarks if ((error = zfs_secpolicy_write_perms(zc->zc_value, 7494543Smarks ZFS_DELEG_PERM_CLONE, cr)) != 0) 7504543Smarks return (error); 7514543Smarks } 7524543Smarks 7534543Smarks if ((error = zfs_secpolicy_write_perms(parentname, 7544543Smarks ZFS_DELEG_PERM_CREATE, cr)) != 0) 7554543Smarks return (error); 7564543Smarks 7574543Smarks error = zfs_secpolicy_write_perms(parentname, 7584543Smarks ZFS_DELEG_PERM_MOUNT, cr); 7594543Smarks 7604543Smarks return (error); 7614543Smarks } 7624543Smarks 7634543Smarks static int 7644543Smarks zfs_secpolicy_umount(zfs_cmd_t *zc, cred_t *cr) 7654543Smarks { 7664543Smarks int error; 7674543Smarks 7684543Smarks error = secpolicy_fs_unmount(cr, NULL); 7694543Smarks if (error) { 7704543Smarks error = dsl_deleg_access(zc->zc_name, ZFS_DELEG_PERM_MOUNT, cr); 7714543Smarks } 7724543Smarks return (error); 773789Sahrens } 774789Sahrens 775789Sahrens /* 776789Sahrens * Policy for pool operations - create/destroy pools, add vdevs, etc. Requires 777789Sahrens * SYS_CONFIG privilege, which is not available in a local zone. 778789Sahrens */ 779789Sahrens /* ARGSUSED */ 780789Sahrens static int 7814543Smarks zfs_secpolicy_config(zfs_cmd_t *zc, cred_t *cr) 782789Sahrens { 783789Sahrens if (secpolicy_sys_config(cr, B_FALSE) != 0) 784789Sahrens return (EPERM); 785789Sahrens 786789Sahrens return (0); 787789Sahrens } 788789Sahrens 789789Sahrens /* 7901544Seschrock * Policy for fault injection. Requires all privileges. 7911544Seschrock */ 7921544Seschrock /* ARGSUSED */ 7931544Seschrock static int 7944543Smarks zfs_secpolicy_inject(zfs_cmd_t *zc, cred_t *cr) 7951544Seschrock { 7961544Seschrock return (secpolicy_zinject(cr)); 7971544Seschrock } 7981544Seschrock 7994849Sahrens static int 8004849Sahrens zfs_secpolicy_inherit(zfs_cmd_t *zc, cred_t *cr) 8014849Sahrens { 8024849Sahrens zfs_prop_t prop = zfs_name_to_prop(zc->zc_value); 8034849Sahrens 8045094Slling if (prop == ZPROP_INVAL) { 8054849Sahrens if (!zfs_prop_user(zc->zc_value)) 8064849Sahrens return (EINVAL); 8074849Sahrens return (zfs_secpolicy_write_perms(zc->zc_name, 8084849Sahrens ZFS_DELEG_PERM_USERPROP, cr)); 8094849Sahrens } else { 81011022STom.Erickson@Sun.COM return (zfs_secpolicy_setprop(zc->zc_name, prop, 81111022STom.Erickson@Sun.COM NULL, cr)); 8124849Sahrens } 8134849Sahrens } 8144849Sahrens 8159396SMatthew.Ahrens@Sun.COM static int 8169396SMatthew.Ahrens@Sun.COM zfs_secpolicy_userspace_one(zfs_cmd_t *zc, cred_t *cr) 8179396SMatthew.Ahrens@Sun.COM { 8189396SMatthew.Ahrens@Sun.COM int err = zfs_secpolicy_read(zc, cr); 8199396SMatthew.Ahrens@Sun.COM if (err) 8209396SMatthew.Ahrens@Sun.COM return (err); 8219396SMatthew.Ahrens@Sun.COM 8229396SMatthew.Ahrens@Sun.COM if (zc->zc_objset_type >= ZFS_NUM_USERQUOTA_PROPS) 8239396SMatthew.Ahrens@Sun.COM return (EINVAL); 8249396SMatthew.Ahrens@Sun.COM 8259396SMatthew.Ahrens@Sun.COM if (zc->zc_value[0] == 0) { 8269396SMatthew.Ahrens@Sun.COM /* 8279396SMatthew.Ahrens@Sun.COM * They are asking about a posix uid/gid. If it's 8289396SMatthew.Ahrens@Sun.COM * themself, allow it. 8299396SMatthew.Ahrens@Sun.COM */ 8309396SMatthew.Ahrens@Sun.COM if (zc->zc_objset_type == ZFS_PROP_USERUSED || 8319396SMatthew.Ahrens@Sun.COM zc->zc_objset_type == ZFS_PROP_USERQUOTA) { 8329396SMatthew.Ahrens@Sun.COM if (zc->zc_guid == crgetuid(cr)) 8339396SMatthew.Ahrens@Sun.COM return (0); 8349396SMatthew.Ahrens@Sun.COM } else { 8359396SMatthew.Ahrens@Sun.COM if (groupmember(zc->zc_guid, cr)) 8369396SMatthew.Ahrens@Sun.COM return (0); 8379396SMatthew.Ahrens@Sun.COM } 8389396SMatthew.Ahrens@Sun.COM } 8399396SMatthew.Ahrens@Sun.COM 8409396SMatthew.Ahrens@Sun.COM return (zfs_secpolicy_write_perms(zc->zc_name, 8419396SMatthew.Ahrens@Sun.COM userquota_perms[zc->zc_objset_type], cr)); 8429396SMatthew.Ahrens@Sun.COM } 8439396SMatthew.Ahrens@Sun.COM 8449396SMatthew.Ahrens@Sun.COM static int 8459396SMatthew.Ahrens@Sun.COM zfs_secpolicy_userspace_many(zfs_cmd_t *zc, cred_t *cr) 8469396SMatthew.Ahrens@Sun.COM { 8479396SMatthew.Ahrens@Sun.COM int err = zfs_secpolicy_read(zc, cr); 8489396SMatthew.Ahrens@Sun.COM if (err) 8499396SMatthew.Ahrens@Sun.COM return (err); 8509396SMatthew.Ahrens@Sun.COM 8519396SMatthew.Ahrens@Sun.COM if (zc->zc_objset_type >= ZFS_NUM_USERQUOTA_PROPS) 8529396SMatthew.Ahrens@Sun.COM return (EINVAL); 8539396SMatthew.Ahrens@Sun.COM 8549396SMatthew.Ahrens@Sun.COM return (zfs_secpolicy_write_perms(zc->zc_name, 8559396SMatthew.Ahrens@Sun.COM userquota_perms[zc->zc_objset_type], cr)); 8569396SMatthew.Ahrens@Sun.COM } 8579396SMatthew.Ahrens@Sun.COM 8589396SMatthew.Ahrens@Sun.COM static int 8599396SMatthew.Ahrens@Sun.COM zfs_secpolicy_userspace_upgrade(zfs_cmd_t *zc, cred_t *cr) 8609396SMatthew.Ahrens@Sun.COM { 86111022STom.Erickson@Sun.COM return (zfs_secpolicy_setprop(zc->zc_name, ZFS_PROP_VERSION, 86211022STom.Erickson@Sun.COM NULL, cr)); 8639396SMatthew.Ahrens@Sun.COM } 8649396SMatthew.Ahrens@Sun.COM 86510242Schris.kirby@sun.com static int 86610242Schris.kirby@sun.com zfs_secpolicy_hold(zfs_cmd_t *zc, cred_t *cr) 86710242Schris.kirby@sun.com { 86810242Schris.kirby@sun.com return (zfs_secpolicy_write_perms(zc->zc_name, 86910242Schris.kirby@sun.com ZFS_DELEG_PERM_HOLD, cr)); 87010242Schris.kirby@sun.com } 87110242Schris.kirby@sun.com 87210242Schris.kirby@sun.com static int 87310242Schris.kirby@sun.com zfs_secpolicy_release(zfs_cmd_t *zc, cred_t *cr) 87410242Schris.kirby@sun.com { 87510242Schris.kirby@sun.com return (zfs_secpolicy_write_perms(zc->zc_name, 87610242Schris.kirby@sun.com ZFS_DELEG_PERM_RELEASE, cr)); 87710242Schris.kirby@sun.com } 87810242Schris.kirby@sun.com 8791544Seschrock /* 880789Sahrens * Returns the nvlist as specified by the user in the zfs_cmd_t. 881789Sahrens */ 882789Sahrens static int 8839643SEric.Taylor@Sun.COM get_nvlist(uint64_t nvl, uint64_t size, int iflag, nvlist_t **nvp) 884789Sahrens { 885789Sahrens char *packed; 886789Sahrens int error; 8875094Slling nvlist_t *list = NULL; 888789Sahrens 889789Sahrens /* 8902676Seschrock * Read in and unpack the user-supplied nvlist. 891789Sahrens */ 8925094Slling if (size == 0) 893789Sahrens return (EINVAL); 894789Sahrens 895789Sahrens packed = kmem_alloc(size, KM_SLEEP); 896789Sahrens 8979643SEric.Taylor@Sun.COM if ((error = ddi_copyin((void *)(uintptr_t)nvl, packed, size, 8989643SEric.Taylor@Sun.COM iflag)) != 0) { 899789Sahrens kmem_free(packed, size); 900789Sahrens return (error); 901789Sahrens } 902789Sahrens 9035094Slling if ((error = nvlist_unpack(packed, size, &list, 0)) != 0) { 904789Sahrens kmem_free(packed, size); 905789Sahrens return (error); 906789Sahrens } 907789Sahrens 908789Sahrens kmem_free(packed, size); 909789Sahrens 9105094Slling *nvp = list; 911789Sahrens return (0); 912789Sahrens } 913789Sahrens 914789Sahrens static int 91511022STom.Erickson@Sun.COM fit_error_list(zfs_cmd_t *zc, nvlist_t **errors) 91611022STom.Erickson@Sun.COM { 91711022STom.Erickson@Sun.COM size_t size; 91811022STom.Erickson@Sun.COM 91911022STom.Erickson@Sun.COM VERIFY(nvlist_size(*errors, &size, NV_ENCODE_NATIVE) == 0); 92011022STom.Erickson@Sun.COM 92111022STom.Erickson@Sun.COM if (size > zc->zc_nvlist_dst_size) { 92211022STom.Erickson@Sun.COM nvpair_t *more_errors; 92311022STom.Erickson@Sun.COM int n = 0; 92411022STom.Erickson@Sun.COM 92511022STom.Erickson@Sun.COM if (zc->zc_nvlist_dst_size < 1024) 92611022STom.Erickson@Sun.COM return (ENOMEM); 92711022STom.Erickson@Sun.COM 92811022STom.Erickson@Sun.COM VERIFY(nvlist_add_int32(*errors, ZPROP_N_MORE_ERRORS, 0) == 0); 92911022STom.Erickson@Sun.COM more_errors = nvlist_prev_nvpair(*errors, NULL); 93011022STom.Erickson@Sun.COM 93111022STom.Erickson@Sun.COM do { 93211022STom.Erickson@Sun.COM nvpair_t *pair = nvlist_prev_nvpair(*errors, 93311022STom.Erickson@Sun.COM more_errors); 93411022STom.Erickson@Sun.COM VERIFY(nvlist_remove_nvpair(*errors, pair) == 0); 93511022STom.Erickson@Sun.COM n++; 93611022STom.Erickson@Sun.COM VERIFY(nvlist_size(*errors, &size, 93711022STom.Erickson@Sun.COM NV_ENCODE_NATIVE) == 0); 93811022STom.Erickson@Sun.COM } while (size > zc->zc_nvlist_dst_size); 93911022STom.Erickson@Sun.COM 94011022STom.Erickson@Sun.COM VERIFY(nvlist_remove_nvpair(*errors, more_errors) == 0); 94111022STom.Erickson@Sun.COM VERIFY(nvlist_add_int32(*errors, ZPROP_N_MORE_ERRORS, n) == 0); 94211022STom.Erickson@Sun.COM ASSERT(nvlist_size(*errors, &size, NV_ENCODE_NATIVE) == 0); 94311022STom.Erickson@Sun.COM ASSERT(size <= zc->zc_nvlist_dst_size); 94411022STom.Erickson@Sun.COM } 94511022STom.Erickson@Sun.COM 94611022STom.Erickson@Sun.COM return (0); 94711022STom.Erickson@Sun.COM } 94811022STom.Erickson@Sun.COM 94911022STom.Erickson@Sun.COM static int 9502676Seschrock put_nvlist(zfs_cmd_t *zc, nvlist_t *nvl) 9512676Seschrock { 9522676Seschrock char *packed = NULL; 95311807SSam.Falkner@Sun.COM int error = 0; 9542676Seschrock size_t size; 9552676Seschrock 9562676Seschrock VERIFY(nvlist_size(nvl, &size, NV_ENCODE_NATIVE) == 0); 9572676Seschrock 9582676Seschrock if (size > zc->zc_nvlist_dst_size) { 9592676Seschrock error = ENOMEM; 9602676Seschrock } else { 9614611Smarks packed = kmem_alloc(size, KM_SLEEP); 9622676Seschrock VERIFY(nvlist_pack(nvl, &packed, &size, NV_ENCODE_NATIVE, 9632676Seschrock KM_SLEEP) == 0); 96411807SSam.Falkner@Sun.COM if (ddi_copyout(packed, (void *)(uintptr_t)zc->zc_nvlist_dst, 96511807SSam.Falkner@Sun.COM size, zc->zc_iflags) != 0) 96611807SSam.Falkner@Sun.COM error = EFAULT; 9672676Seschrock kmem_free(packed, size); 9682676Seschrock } 9692676Seschrock 9702676Seschrock zc->zc_nvlist_dst_size = size; 9712676Seschrock return (error); 9722676Seschrock } 9732676Seschrock 9742676Seschrock static int 97511185SSean.McEnroe@Sun.COM getzfsvfs(const char *dsname, zfsvfs_t **zfvp) 9769396SMatthew.Ahrens@Sun.COM { 9779396SMatthew.Ahrens@Sun.COM objset_t *os; 9789396SMatthew.Ahrens@Sun.COM int error; 9799396SMatthew.Ahrens@Sun.COM 98010298SMatthew.Ahrens@Sun.COM error = dmu_objset_hold(dsname, FTAG, &os); 9819396SMatthew.Ahrens@Sun.COM if (error) 9829396SMatthew.Ahrens@Sun.COM return (error); 98310298SMatthew.Ahrens@Sun.COM if (dmu_objset_type(os) != DMU_OST_ZFS) { 98410298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 98510298SMatthew.Ahrens@Sun.COM return (EINVAL); 98610298SMatthew.Ahrens@Sun.COM } 98710298SMatthew.Ahrens@Sun.COM 98810298SMatthew.Ahrens@Sun.COM mutex_enter(&os->os_user_ptr_lock); 98911185SSean.McEnroe@Sun.COM *zfvp = dmu_objset_get_user(os); 99011185SSean.McEnroe@Sun.COM if (*zfvp) { 99111185SSean.McEnroe@Sun.COM VFS_HOLD((*zfvp)->z_vfs); 9929396SMatthew.Ahrens@Sun.COM } else { 9939396SMatthew.Ahrens@Sun.COM error = ESRCH; 9949396SMatthew.Ahrens@Sun.COM } 99510298SMatthew.Ahrens@Sun.COM mutex_exit(&os->os_user_ptr_lock); 99610298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 9979396SMatthew.Ahrens@Sun.COM return (error); 9989396SMatthew.Ahrens@Sun.COM } 9999396SMatthew.Ahrens@Sun.COM 10009396SMatthew.Ahrens@Sun.COM /* 10019396SMatthew.Ahrens@Sun.COM * Find a zfsvfs_t for a mounted filesystem, or create our own, in which 10029396SMatthew.Ahrens@Sun.COM * case its z_vfs will be NULL, and it will be opened as the owner. 10039396SMatthew.Ahrens@Sun.COM */ 10049396SMatthew.Ahrens@Sun.COM static int 1005*12620SMark.Shellenbaum@Oracle.COM zfsvfs_hold(const char *name, void *tag, zfsvfs_t **zfvp, boolean_t writer) 10069396SMatthew.Ahrens@Sun.COM { 10079396SMatthew.Ahrens@Sun.COM int error = 0; 10089396SMatthew.Ahrens@Sun.COM 100911185SSean.McEnroe@Sun.COM if (getzfsvfs(name, zfvp) != 0) 101011185SSean.McEnroe@Sun.COM error = zfsvfs_create(name, zfvp); 10119396SMatthew.Ahrens@Sun.COM if (error == 0) { 1012*12620SMark.Shellenbaum@Oracle.COM rrw_enter(&(*zfvp)->z_teardown_lock, (writer) ? RW_WRITER : 1013*12620SMark.Shellenbaum@Oracle.COM RW_READER, tag); 101411185SSean.McEnroe@Sun.COM if ((*zfvp)->z_unmounted) { 10159396SMatthew.Ahrens@Sun.COM /* 10169396SMatthew.Ahrens@Sun.COM * XXX we could probably try again, since the unmounting 10179396SMatthew.Ahrens@Sun.COM * thread should be just about to disassociate the 10189396SMatthew.Ahrens@Sun.COM * objset from the zfsvfs. 10199396SMatthew.Ahrens@Sun.COM */ 102011185SSean.McEnroe@Sun.COM rrw_exit(&(*zfvp)->z_teardown_lock, tag); 10219396SMatthew.Ahrens@Sun.COM return (EBUSY); 10229396SMatthew.Ahrens@Sun.COM } 10239396SMatthew.Ahrens@Sun.COM } 10249396SMatthew.Ahrens@Sun.COM return (error); 10259396SMatthew.Ahrens@Sun.COM } 10269396SMatthew.Ahrens@Sun.COM 10279396SMatthew.Ahrens@Sun.COM static void 10289396SMatthew.Ahrens@Sun.COM zfsvfs_rele(zfsvfs_t *zfsvfs, void *tag) 10299396SMatthew.Ahrens@Sun.COM { 10309396SMatthew.Ahrens@Sun.COM rrw_exit(&zfsvfs->z_teardown_lock, tag); 10319396SMatthew.Ahrens@Sun.COM 10329396SMatthew.Ahrens@Sun.COM if (zfsvfs->z_vfs) { 10339396SMatthew.Ahrens@Sun.COM VFS_RELE(zfsvfs->z_vfs); 10349396SMatthew.Ahrens@Sun.COM } else { 103510298SMatthew.Ahrens@Sun.COM dmu_objset_disown(zfsvfs->z_os, zfsvfs); 10369396SMatthew.Ahrens@Sun.COM zfsvfs_free(zfsvfs); 10379396SMatthew.Ahrens@Sun.COM } 10389396SMatthew.Ahrens@Sun.COM } 10399396SMatthew.Ahrens@Sun.COM 10409396SMatthew.Ahrens@Sun.COM static int 1041789Sahrens zfs_ioc_pool_create(zfs_cmd_t *zc) 1042789Sahrens { 1043789Sahrens int error; 10445094Slling nvlist_t *config, *props = NULL; 10457184Stimh nvlist_t *rootprops = NULL; 10467184Stimh nvlist_t *zplprops = NULL; 10474715Sek110237 char *buf; 1048789Sahrens 10495094Slling if (error = get_nvlist(zc->zc_nvlist_conf, zc->zc_nvlist_conf_size, 10509643SEric.Taylor@Sun.COM zc->zc_iflags, &config)) 10514988Sek110237 return (error); 10524715Sek110237 10535094Slling if (zc->zc_nvlist_src_size != 0 && (error = 10549643SEric.Taylor@Sun.COM get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 10559643SEric.Taylor@Sun.COM zc->zc_iflags, &props))) { 10565094Slling nvlist_free(config); 10575094Slling return (error); 10585094Slling } 10595094Slling 10607184Stimh if (props) { 10617184Stimh nvlist_t *nvl = NULL; 10627184Stimh uint64_t version = SPA_VERSION; 10637184Stimh 10647184Stimh (void) nvlist_lookup_uint64(props, 10657184Stimh zpool_prop_to_name(ZPOOL_PROP_VERSION), &version); 10667184Stimh if (version < SPA_VERSION_INITIAL || version > SPA_VERSION) { 10677184Stimh error = EINVAL; 10687184Stimh goto pool_props_bad; 10697184Stimh } 10707184Stimh (void) nvlist_lookup_nvlist(props, ZPOOL_ROOTFS_PROPS, &nvl); 10717184Stimh if (nvl) { 10727184Stimh error = nvlist_dup(nvl, &rootprops, KM_SLEEP); 10737184Stimh if (error != 0) { 10747184Stimh nvlist_free(config); 10757184Stimh nvlist_free(props); 10767184Stimh return (error); 10777184Stimh } 10787184Stimh (void) nvlist_remove_all(props, ZPOOL_ROOTFS_PROPS); 10797184Stimh } 10807184Stimh VERIFY(nvlist_alloc(&zplprops, NV_UNIQUE_NAME, KM_SLEEP) == 0); 10817184Stimh error = zfs_fill_zplprops_root(version, rootprops, 10827184Stimh zplprops, NULL); 10837184Stimh if (error) 10847184Stimh goto pool_props_bad; 10857184Stimh } 10867184Stimh 10874988Sek110237 buf = history_str_get(zc); 1088789Sahrens 10897184Stimh error = spa_create(zc->zc_name, config, props, buf, zplprops); 10907184Stimh 10917184Stimh /* 10927184Stimh * Set the remaining root properties 10937184Stimh */ 109411022STom.Erickson@Sun.COM if (!error && (error = zfs_set_prop_nvlist(zc->zc_name, 109511022STom.Erickson@Sun.COM ZPROP_SRC_LOCAL, rootprops, NULL)) != 0) 10967184Stimh (void) spa_destroy(zc->zc_name); 1097789Sahrens 10984988Sek110237 if (buf != NULL) 10994988Sek110237 history_str_free(buf); 11005094Slling 11017184Stimh pool_props_bad: 11027184Stimh nvlist_free(rootprops); 11037184Stimh nvlist_free(zplprops); 1104789Sahrens nvlist_free(config); 11057184Stimh nvlist_free(props); 11065094Slling 1107789Sahrens return (error); 1108789Sahrens } 1109789Sahrens 1110789Sahrens static int 1111789Sahrens zfs_ioc_pool_destroy(zfs_cmd_t *zc) 1112789Sahrens { 11134543Smarks int error; 11144543Smarks zfs_log_history(zc); 11154543Smarks error = spa_destroy(zc->zc_name); 111610588SEric.Taylor@Sun.COM if (error == 0) 111710588SEric.Taylor@Sun.COM zvol_remove_minors(zc->zc_name); 11184543Smarks return (error); 1119789Sahrens } 1120789Sahrens 1121789Sahrens static int 1122789Sahrens zfs_ioc_pool_import(zfs_cmd_t *zc) 1123789Sahrens { 11245094Slling nvlist_t *config, *props = NULL; 1125789Sahrens uint64_t guid; 112610921STim.Haley@Sun.COM int error; 1127789Sahrens 11285094Slling if ((error = get_nvlist(zc->zc_nvlist_conf, zc->zc_nvlist_conf_size, 11299643SEric.Taylor@Sun.COM zc->zc_iflags, &config)) != 0) 1130789Sahrens return (error); 1131789Sahrens 11325094Slling if (zc->zc_nvlist_src_size != 0 && (error = 11339643SEric.Taylor@Sun.COM get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 11349643SEric.Taylor@Sun.COM zc->zc_iflags, &props))) { 11355094Slling nvlist_free(config); 11365094Slling return (error); 11375094Slling } 11385094Slling 1139789Sahrens if (nvlist_lookup_uint64(config, ZPOOL_CONFIG_POOL_GUID, &guid) != 0 || 11401544Seschrock guid != zc->zc_guid) 1141789Sahrens error = EINVAL; 11426643Seschrock else if (zc->zc_cookie) 114310921STim.Haley@Sun.COM error = spa_import_verbatim(zc->zc_name, config, props); 1144789Sahrens else 11455094Slling error = spa_import(zc->zc_name, config, props); 1146789Sahrens 114710921STim.Haley@Sun.COM if (zc->zc_nvlist_dst != 0) 114810921STim.Haley@Sun.COM (void) put_nvlist(zc, config); 114910921STim.Haley@Sun.COM 1150789Sahrens nvlist_free(config); 1151789Sahrens 11525094Slling if (props) 11535094Slling nvlist_free(props); 11545094Slling 1155789Sahrens return (error); 1156789Sahrens } 1157789Sahrens 1158789Sahrens static int 1159789Sahrens zfs_ioc_pool_export(zfs_cmd_t *zc) 1160789Sahrens { 11614543Smarks int error; 11627214Slling boolean_t force = (boolean_t)zc->zc_cookie; 11638211SGeorge.Wilson@Sun.COM boolean_t hardforce = (boolean_t)zc->zc_guid; 11647214Slling 11654543Smarks zfs_log_history(zc); 11668211SGeorge.Wilson@Sun.COM error = spa_export(zc->zc_name, NULL, force, hardforce); 116710588SEric.Taylor@Sun.COM if (error == 0) 116810588SEric.Taylor@Sun.COM zvol_remove_minors(zc->zc_name); 11694543Smarks return (error); 1170789Sahrens } 1171789Sahrens 1172789Sahrens static int 1173789Sahrens zfs_ioc_pool_configs(zfs_cmd_t *zc) 1174789Sahrens { 1175789Sahrens nvlist_t *configs; 1176789Sahrens int error; 1177789Sahrens 1178789Sahrens if ((configs = spa_all_configs(&zc->zc_cookie)) == NULL) 1179789Sahrens return (EEXIST); 1180789Sahrens 11812676Seschrock error = put_nvlist(zc, configs); 1182789Sahrens 1183789Sahrens nvlist_free(configs); 1184789Sahrens 1185789Sahrens return (error); 1186789Sahrens } 1187789Sahrens 1188789Sahrens static int 1189789Sahrens zfs_ioc_pool_stats(zfs_cmd_t *zc) 1190789Sahrens { 1191789Sahrens nvlist_t *config; 1192789Sahrens int error; 11931544Seschrock int ret = 0; 1194789Sahrens 11952676Seschrock error = spa_get_stats(zc->zc_name, &config, zc->zc_value, 11962676Seschrock sizeof (zc->zc_value)); 1197789Sahrens 1198789Sahrens if (config != NULL) { 11992676Seschrock ret = put_nvlist(zc, config); 1200789Sahrens nvlist_free(config); 12011544Seschrock 12021544Seschrock /* 12031544Seschrock * The config may be present even if 'error' is non-zero. 12041544Seschrock * In this case we return success, and preserve the real errno 12051544Seschrock * in 'zc_cookie'. 12061544Seschrock */ 12071544Seschrock zc->zc_cookie = error; 1208789Sahrens } else { 12091544Seschrock ret = error; 1210789Sahrens } 1211789Sahrens 12121544Seschrock return (ret); 1213789Sahrens } 1214789Sahrens 1215789Sahrens /* 1216789Sahrens * Try to import the given pool, returning pool stats as appropriate so that 1217789Sahrens * user land knows which devices are available and overall pool health. 1218789Sahrens */ 1219789Sahrens static int 1220789Sahrens zfs_ioc_pool_tryimport(zfs_cmd_t *zc) 1221789Sahrens { 1222789Sahrens nvlist_t *tryconfig, *config; 1223789Sahrens int error; 1224789Sahrens 12255094Slling if ((error = get_nvlist(zc->zc_nvlist_conf, zc->zc_nvlist_conf_size, 12269643SEric.Taylor@Sun.COM zc->zc_iflags, &tryconfig)) != 0) 1227789Sahrens return (error); 1228789Sahrens 1229789Sahrens config = spa_tryimport(tryconfig); 1230789Sahrens 1231789Sahrens nvlist_free(tryconfig); 1232789Sahrens 1233789Sahrens if (config == NULL) 1234789Sahrens return (EINVAL); 1235789Sahrens 12362676Seschrock error = put_nvlist(zc, config); 1237789Sahrens nvlist_free(config); 1238789Sahrens 1239789Sahrens return (error); 1240789Sahrens } 1241789Sahrens 124212296SLin.Ling@Sun.COM /* 124312296SLin.Ling@Sun.COM * inputs: 124412296SLin.Ling@Sun.COM * zc_name name of the pool 124512296SLin.Ling@Sun.COM * zc_cookie scan func (pool_scan_func_t) 124612296SLin.Ling@Sun.COM */ 1247789Sahrens static int 124812296SLin.Ling@Sun.COM zfs_ioc_pool_scan(zfs_cmd_t *zc) 1249789Sahrens { 1250789Sahrens spa_t *spa; 1251789Sahrens int error; 1252789Sahrens 12532926Sek110237 if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 12542926Sek110237 return (error); 12552926Sek110237 125612296SLin.Ling@Sun.COM if (zc->zc_cookie == POOL_SCAN_NONE) 125712296SLin.Ling@Sun.COM error = spa_scan_stop(spa); 125812296SLin.Ling@Sun.COM else 125912296SLin.Ling@Sun.COM error = spa_scan(spa, zc->zc_cookie); 12602926Sek110237 12612926Sek110237 spa_close(spa, FTAG); 12622926Sek110237 1263789Sahrens return (error); 1264789Sahrens } 1265789Sahrens 1266789Sahrens static int 1267789Sahrens zfs_ioc_pool_freeze(zfs_cmd_t *zc) 1268789Sahrens { 1269789Sahrens spa_t *spa; 1270789Sahrens int error; 1271789Sahrens 1272789Sahrens error = spa_open(zc->zc_name, &spa, FTAG); 1273789Sahrens if (error == 0) { 1274789Sahrens spa_freeze(spa); 1275789Sahrens spa_close(spa, FTAG); 1276789Sahrens } 1277789Sahrens return (error); 1278789Sahrens } 1279789Sahrens 1280789Sahrens static int 12811760Seschrock zfs_ioc_pool_upgrade(zfs_cmd_t *zc) 12821760Seschrock { 12831760Seschrock spa_t *spa; 12841760Seschrock int error; 12851760Seschrock 12862926Sek110237 if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 12872926Sek110237 return (error); 12882926Sek110237 12895118Slling if (zc->zc_cookie < spa_version(spa) || zc->zc_cookie > SPA_VERSION) { 12905118Slling spa_close(spa, FTAG); 12915118Slling return (EINVAL); 12925118Slling } 12935118Slling 12945094Slling spa_upgrade(spa, zc->zc_cookie); 12952926Sek110237 spa_close(spa, FTAG); 12962926Sek110237 12972926Sek110237 return (error); 12982926Sek110237 } 12992926Sek110237 13002926Sek110237 static int 13012926Sek110237 zfs_ioc_pool_get_history(zfs_cmd_t *zc) 13022926Sek110237 { 13032926Sek110237 spa_t *spa; 13042926Sek110237 char *hist_buf; 13052926Sek110237 uint64_t size; 13062926Sek110237 int error; 13072926Sek110237 13082926Sek110237 if ((size = zc->zc_history_len) == 0) 13092926Sek110237 return (EINVAL); 13102926Sek110237 13112926Sek110237 if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 13122926Sek110237 return (error); 13132926Sek110237 13144577Sahrens if (spa_version(spa) < SPA_VERSION_ZPOOL_HISTORY) { 13153863Sek110237 spa_close(spa, FTAG); 13163863Sek110237 return (ENOTSUP); 13173863Sek110237 } 13183863Sek110237 13192926Sek110237 hist_buf = kmem_alloc(size, KM_SLEEP); 13202926Sek110237 if ((error = spa_history_get(spa, &zc->zc_history_offset, 13212926Sek110237 &zc->zc_history_len, hist_buf)) == 0) { 13229643SEric.Taylor@Sun.COM error = ddi_copyout(hist_buf, 13239643SEric.Taylor@Sun.COM (void *)(uintptr_t)zc->zc_history, 13249643SEric.Taylor@Sun.COM zc->zc_history_len, zc->zc_iflags); 13252926Sek110237 } 13262926Sek110237 13272926Sek110237 spa_close(spa, FTAG); 13282926Sek110237 kmem_free(hist_buf, size); 13292926Sek110237 return (error); 13302926Sek110237 } 13312926Sek110237 13322926Sek110237 static int 13333444Sek110237 zfs_ioc_dsobj_to_dsname(zfs_cmd_t *zc) 13343444Sek110237 { 13353444Sek110237 int error; 13363444Sek110237 13373912Slling if (error = dsl_dsobj_to_dsname(zc->zc_name, zc->zc_obj, zc->zc_value)) 13383444Sek110237 return (error); 13393444Sek110237 13403444Sek110237 return (0); 13413444Sek110237 } 13423444Sek110237 134310298SMatthew.Ahrens@Sun.COM /* 134410298SMatthew.Ahrens@Sun.COM * inputs: 134510298SMatthew.Ahrens@Sun.COM * zc_name name of filesystem 134610298SMatthew.Ahrens@Sun.COM * zc_obj object to find 134710298SMatthew.Ahrens@Sun.COM * 134810298SMatthew.Ahrens@Sun.COM * outputs: 134910298SMatthew.Ahrens@Sun.COM * zc_value name of object 135010298SMatthew.Ahrens@Sun.COM */ 13513444Sek110237 static int 13523444Sek110237 zfs_ioc_obj_to_path(zfs_cmd_t *zc) 13533444Sek110237 { 135410298SMatthew.Ahrens@Sun.COM objset_t *os; 13553444Sek110237 int error; 13563444Sek110237 135710298SMatthew.Ahrens@Sun.COM /* XXX reading from objset not owned */ 135810298SMatthew.Ahrens@Sun.COM if ((error = dmu_objset_hold(zc->zc_name, FTAG, &os)) != 0) 13593444Sek110237 return (error); 136010298SMatthew.Ahrens@Sun.COM if (dmu_objset_type(os) != DMU_OST_ZFS) { 136110298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 136210298SMatthew.Ahrens@Sun.COM return (EINVAL); 136310298SMatthew.Ahrens@Sun.COM } 136410298SMatthew.Ahrens@Sun.COM error = zfs_obj_to_path(os, zc->zc_obj, zc->zc_value, 13653444Sek110237 sizeof (zc->zc_value)); 136610298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 13673444Sek110237 13683444Sek110237 return (error); 13693444Sek110237 } 13703444Sek110237 13713444Sek110237 static int 1372789Sahrens zfs_ioc_vdev_add(zfs_cmd_t *zc) 1373789Sahrens { 1374789Sahrens spa_t *spa; 1375789Sahrens int error; 13766423Sgw25295 nvlist_t *config, **l2cache, **spares; 13776423Sgw25295 uint_t nl2cache = 0, nspares = 0; 1378789Sahrens 1379789Sahrens error = spa_open(zc->zc_name, &spa, FTAG); 1380789Sahrens if (error != 0) 1381789Sahrens return (error); 1382789Sahrens 13835450Sbrendan error = get_nvlist(zc->zc_nvlist_conf, zc->zc_nvlist_conf_size, 13849643SEric.Taylor@Sun.COM zc->zc_iflags, &config); 13855450Sbrendan (void) nvlist_lookup_nvlist_array(config, ZPOOL_CONFIG_L2CACHE, 13865450Sbrendan &l2cache, &nl2cache); 13875450Sbrendan 13886423Sgw25295 (void) nvlist_lookup_nvlist_array(config, ZPOOL_CONFIG_SPARES, 13896423Sgw25295 &spares, &nspares); 13906423Sgw25295 13913912Slling /* 13923912Slling * A root pool with concatenated devices is not supported. 13936423Sgw25295 * Thus, can not add a device to a root pool. 13946423Sgw25295 * 13956423Sgw25295 * Intent log device can not be added to a rootpool because 13966423Sgw25295 * during mountroot, zil is replayed, a seperated log device 13976423Sgw25295 * can not be accessed during the mountroot time. 13986423Sgw25295 * 13996423Sgw25295 * l2cache and spare devices are ok to be added to a rootpool. 14003912Slling */ 140110922SJeff.Bonwick@Sun.COM if (spa_bootfs(spa) != 0 && nl2cache == 0 && nspares == 0) { 140211422SMark.Musante@Sun.COM nvlist_free(config); 14033912Slling spa_close(spa, FTAG); 14043912Slling return (EDOM); 14053912Slling } 14063912Slling 14075450Sbrendan if (error == 0) { 1408789Sahrens error = spa_vdev_add(spa, config); 1409789Sahrens nvlist_free(config); 1410789Sahrens } 1411789Sahrens spa_close(spa, FTAG); 1412789Sahrens return (error); 1413789Sahrens } 1414789Sahrens 141512296SLin.Ling@Sun.COM /* 141612296SLin.Ling@Sun.COM * inputs: 141712296SLin.Ling@Sun.COM * zc_name name of the pool 141812296SLin.Ling@Sun.COM * zc_nvlist_conf nvlist of devices to remove 141912296SLin.Ling@Sun.COM * zc_cookie to stop the remove? 142012296SLin.Ling@Sun.COM */ 1421789Sahrens static int 1422789Sahrens zfs_ioc_vdev_remove(zfs_cmd_t *zc) 1423789Sahrens { 14242082Seschrock spa_t *spa; 14252082Seschrock int error; 14262082Seschrock 14272082Seschrock error = spa_open(zc->zc_name, &spa, FTAG); 14282082Seschrock if (error != 0) 14292082Seschrock return (error); 14302082Seschrock error = spa_vdev_remove(spa, zc->zc_guid, B_FALSE); 14312082Seschrock spa_close(spa, FTAG); 14322082Seschrock return (error); 1433789Sahrens } 1434789Sahrens 1435789Sahrens static int 14364451Seschrock zfs_ioc_vdev_set_state(zfs_cmd_t *zc) 1437789Sahrens { 1438789Sahrens spa_t *spa; 1439789Sahrens int error; 14404451Seschrock vdev_state_t newstate = VDEV_STATE_UNKNOWN; 1441789Sahrens 14422926Sek110237 if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 1443789Sahrens return (error); 14444451Seschrock switch (zc->zc_cookie) { 14454451Seschrock case VDEV_STATE_ONLINE: 14464451Seschrock error = vdev_online(spa, zc->zc_guid, zc->zc_obj, &newstate); 14474451Seschrock break; 14484451Seschrock 14494451Seschrock case VDEV_STATE_OFFLINE: 14504451Seschrock error = vdev_offline(spa, zc->zc_guid, zc->zc_obj); 14514451Seschrock break; 1452789Sahrens 14534451Seschrock case VDEV_STATE_FAULTED: 145410817SEric.Schrock@Sun.COM if (zc->zc_obj != VDEV_AUX_ERR_EXCEEDED && 145510817SEric.Schrock@Sun.COM zc->zc_obj != VDEV_AUX_EXTERNAL) 145610817SEric.Schrock@Sun.COM zc->zc_obj = VDEV_AUX_ERR_EXCEEDED; 145710817SEric.Schrock@Sun.COM 145810817SEric.Schrock@Sun.COM error = vdev_fault(spa, zc->zc_guid, zc->zc_obj); 14594451Seschrock break; 1460789Sahrens 14614451Seschrock case VDEV_STATE_DEGRADED: 146210817SEric.Schrock@Sun.COM if (zc->zc_obj != VDEV_AUX_ERR_EXCEEDED && 146310817SEric.Schrock@Sun.COM zc->zc_obj != VDEV_AUX_EXTERNAL) 146410817SEric.Schrock@Sun.COM zc->zc_obj = VDEV_AUX_ERR_EXCEEDED; 146510817SEric.Schrock@Sun.COM 146610817SEric.Schrock@Sun.COM error = vdev_degrade(spa, zc->zc_guid, zc->zc_obj); 14674451Seschrock break; 14684451Seschrock 14694451Seschrock default: 14704451Seschrock error = EINVAL; 14714451Seschrock } 14724451Seschrock zc->zc_cookie = newstate; 1473789Sahrens spa_close(spa, FTAG); 1474789Sahrens return (error); 1475789Sahrens } 1476789Sahrens 1477789Sahrens static int 1478789Sahrens zfs_ioc_vdev_attach(zfs_cmd_t *zc) 1479789Sahrens { 1480789Sahrens spa_t *spa; 1481789Sahrens int replacing = zc->zc_cookie; 1482789Sahrens nvlist_t *config; 1483789Sahrens int error; 1484789Sahrens 14852926Sek110237 if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 1486789Sahrens return (error); 1487789Sahrens 14885094Slling if ((error = get_nvlist(zc->zc_nvlist_conf, zc->zc_nvlist_conf_size, 14899643SEric.Taylor@Sun.COM zc->zc_iflags, &config)) == 0) { 14901544Seschrock error = spa_vdev_attach(spa, zc->zc_guid, config, replacing); 1491789Sahrens nvlist_free(config); 1492789Sahrens } 1493789Sahrens 1494789Sahrens spa_close(spa, FTAG); 1495789Sahrens return (error); 1496789Sahrens } 1497789Sahrens 1498789Sahrens static int 1499789Sahrens zfs_ioc_vdev_detach(zfs_cmd_t *zc) 1500789Sahrens { 1501789Sahrens spa_t *spa; 1502789Sahrens int error; 1503789Sahrens 15042926Sek110237 if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 1505789Sahrens return (error); 1506789Sahrens 15078241SJeff.Bonwick@Sun.COM error = spa_vdev_detach(spa, zc->zc_guid, 0, B_FALSE); 1508789Sahrens 1509789Sahrens spa_close(spa, FTAG); 1510789Sahrens return (error); 1511789Sahrens } 1512789Sahrens 1513789Sahrens static int 151411422SMark.Musante@Sun.COM zfs_ioc_vdev_split(zfs_cmd_t *zc) 151511422SMark.Musante@Sun.COM { 151611422SMark.Musante@Sun.COM spa_t *spa; 151711422SMark.Musante@Sun.COM nvlist_t *config, *props = NULL; 151811422SMark.Musante@Sun.COM int error; 151911422SMark.Musante@Sun.COM boolean_t exp = !!(zc->zc_cookie & ZPOOL_EXPORT_AFTER_SPLIT); 152011422SMark.Musante@Sun.COM 152111422SMark.Musante@Sun.COM if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 152211422SMark.Musante@Sun.COM return (error); 152311422SMark.Musante@Sun.COM 152411422SMark.Musante@Sun.COM if (error = get_nvlist(zc->zc_nvlist_conf, zc->zc_nvlist_conf_size, 152511422SMark.Musante@Sun.COM zc->zc_iflags, &config)) { 152611422SMark.Musante@Sun.COM spa_close(spa, FTAG); 152711422SMark.Musante@Sun.COM return (error); 152811422SMark.Musante@Sun.COM } 152911422SMark.Musante@Sun.COM 153011422SMark.Musante@Sun.COM if (zc->zc_nvlist_src_size != 0 && (error = 153111422SMark.Musante@Sun.COM get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 153211422SMark.Musante@Sun.COM zc->zc_iflags, &props))) { 153311422SMark.Musante@Sun.COM spa_close(spa, FTAG); 153411422SMark.Musante@Sun.COM nvlist_free(config); 153511422SMark.Musante@Sun.COM return (error); 153611422SMark.Musante@Sun.COM } 153711422SMark.Musante@Sun.COM 153811422SMark.Musante@Sun.COM error = spa_vdev_split_mirror(spa, zc->zc_string, config, props, exp); 153911422SMark.Musante@Sun.COM 154011422SMark.Musante@Sun.COM spa_close(spa, FTAG); 154111422SMark.Musante@Sun.COM 154211422SMark.Musante@Sun.COM nvlist_free(config); 154311422SMark.Musante@Sun.COM nvlist_free(props); 154411422SMark.Musante@Sun.COM 154511422SMark.Musante@Sun.COM return (error); 154611422SMark.Musante@Sun.COM } 154711422SMark.Musante@Sun.COM 154811422SMark.Musante@Sun.COM static int 15491354Seschrock zfs_ioc_vdev_setpath(zfs_cmd_t *zc) 15501354Seschrock { 15511354Seschrock spa_t *spa; 15522676Seschrock char *path = zc->zc_value; 15531544Seschrock uint64_t guid = zc->zc_guid; 15541354Seschrock int error; 15551354Seschrock 15561354Seschrock error = spa_open(zc->zc_name, &spa, FTAG); 15571354Seschrock if (error != 0) 15581354Seschrock return (error); 15591354Seschrock 15601354Seschrock error = spa_vdev_setpath(spa, guid, path); 15611354Seschrock spa_close(spa, FTAG); 15621354Seschrock return (error); 15631354Seschrock } 15641354Seschrock 15659425SEric.Schrock@Sun.COM static int 15669425SEric.Schrock@Sun.COM zfs_ioc_vdev_setfru(zfs_cmd_t *zc) 15679425SEric.Schrock@Sun.COM { 15689425SEric.Schrock@Sun.COM spa_t *spa; 15699425SEric.Schrock@Sun.COM char *fru = zc->zc_value; 15709425SEric.Schrock@Sun.COM uint64_t guid = zc->zc_guid; 15719425SEric.Schrock@Sun.COM int error; 15729425SEric.Schrock@Sun.COM 15739425SEric.Schrock@Sun.COM error = spa_open(zc->zc_name, &spa, FTAG); 15749425SEric.Schrock@Sun.COM if (error != 0) 15759425SEric.Schrock@Sun.COM return (error); 15769425SEric.Schrock@Sun.COM 15779425SEric.Schrock@Sun.COM error = spa_vdev_setfru(spa, guid, fru); 15789425SEric.Schrock@Sun.COM spa_close(spa, FTAG); 15799425SEric.Schrock@Sun.COM return (error); 15809425SEric.Schrock@Sun.COM } 15819425SEric.Schrock@Sun.COM 15825367Sahrens /* 15835367Sahrens * inputs: 15845367Sahrens * zc_name name of filesystem 15855367Sahrens * zc_nvlist_dst_size size of buffer for property nvlist 15865367Sahrens * 15875367Sahrens * outputs: 15885367Sahrens * zc_objset_stats stats 15895367Sahrens * zc_nvlist_dst property nvlist 15905367Sahrens * zc_nvlist_dst_size size of property nvlist 15915367Sahrens */ 15921354Seschrock static int 1593789Sahrens zfs_ioc_objset_stats(zfs_cmd_t *zc) 1594789Sahrens { 1595789Sahrens objset_t *os = NULL; 1596789Sahrens int error; 15971356Seschrock nvlist_t *nv; 1598789Sahrens 159910298SMatthew.Ahrens@Sun.COM if (error = dmu_objset_hold(zc->zc_name, FTAG, &os)) 1600789Sahrens return (error); 1601789Sahrens 16022885Sahrens dmu_objset_fast_stat(os, &zc->zc_objset_stats); 1603789Sahrens 16042856Snd150628 if (zc->zc_nvlist_dst != 0 && 160511022STom.Erickson@Sun.COM (error = dsl_prop_get_all(os, &nv)) == 0) { 16062885Sahrens dmu_objset_stats(os, nv); 16073087Sahrens /* 16085147Srm160521 * NB: zvol_get_stats() will read the objset contents, 16093087Sahrens * which we aren't supposed to do with a 16106689Smaybee * DS_MODE_USER hold, because it could be 16113087Sahrens * inconsistent. So this is a bit of a workaround... 161210298SMatthew.Ahrens@Sun.COM * XXX reading with out owning 16133087Sahrens */ 16144577Sahrens if (!zc->zc_objset_stats.dds_inconsistent) { 16154577Sahrens if (dmu_objset_type(os) == DMU_OST_ZVOL) 16164577Sahrens VERIFY(zvol_get_stats(os, nv) == 0); 16174577Sahrens } 16182676Seschrock error = put_nvlist(zc, nv); 16191356Seschrock nvlist_free(nv); 16201356Seschrock } 1621789Sahrens 162210298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 1623789Sahrens return (error); 1624789Sahrens } 1625789Sahrens 162611022STom.Erickson@Sun.COM /* 162711022STom.Erickson@Sun.COM * inputs: 162811022STom.Erickson@Sun.COM * zc_name name of filesystem 162911022STom.Erickson@Sun.COM * zc_nvlist_dst_size size of buffer for property nvlist 163011022STom.Erickson@Sun.COM * 163111022STom.Erickson@Sun.COM * outputs: 163211022STom.Erickson@Sun.COM * zc_nvlist_dst received property nvlist 163311022STom.Erickson@Sun.COM * zc_nvlist_dst_size size of received property nvlist 163411022STom.Erickson@Sun.COM * 163511022STom.Erickson@Sun.COM * Gets received properties (distinct from local properties on or after 163611022STom.Erickson@Sun.COM * SPA_VERSION_RECVD_PROPS) for callers who want to differentiate received from 163711022STom.Erickson@Sun.COM * local property values. 163811022STom.Erickson@Sun.COM */ 163911022STom.Erickson@Sun.COM static int 164011022STom.Erickson@Sun.COM zfs_ioc_objset_recvd_props(zfs_cmd_t *zc) 164111022STom.Erickson@Sun.COM { 164211022STom.Erickson@Sun.COM objset_t *os = NULL; 164311022STom.Erickson@Sun.COM int error; 164411022STom.Erickson@Sun.COM nvlist_t *nv; 164511022STom.Erickson@Sun.COM 164611022STom.Erickson@Sun.COM if (error = dmu_objset_hold(zc->zc_name, FTAG, &os)) 164711022STom.Erickson@Sun.COM return (error); 164811022STom.Erickson@Sun.COM 164911022STom.Erickson@Sun.COM /* 165011022STom.Erickson@Sun.COM * Without this check, we would return local property values if the 165111022STom.Erickson@Sun.COM * caller has not already received properties on or after 165211022STom.Erickson@Sun.COM * SPA_VERSION_RECVD_PROPS. 165311022STom.Erickson@Sun.COM */ 165411022STom.Erickson@Sun.COM if (!dsl_prop_get_hasrecvd(os)) { 165511022STom.Erickson@Sun.COM dmu_objset_rele(os, FTAG); 165611022STom.Erickson@Sun.COM return (ENOTSUP); 165711022STom.Erickson@Sun.COM } 165811022STom.Erickson@Sun.COM 165911022STom.Erickson@Sun.COM if (zc->zc_nvlist_dst != 0 && 166011022STom.Erickson@Sun.COM (error = dsl_prop_get_received(os, &nv)) == 0) { 166111022STom.Erickson@Sun.COM error = put_nvlist(zc, nv); 166211022STom.Erickson@Sun.COM nvlist_free(nv); 166311022STom.Erickson@Sun.COM } 166411022STom.Erickson@Sun.COM 166511022STom.Erickson@Sun.COM dmu_objset_rele(os, FTAG); 166611022STom.Erickson@Sun.COM return (error); 166711022STom.Erickson@Sun.COM } 166811022STom.Erickson@Sun.COM 16695498Stimh static int 16705498Stimh nvl_add_zplprop(objset_t *os, nvlist_t *props, zfs_prop_t prop) 16715498Stimh { 16725498Stimh uint64_t value; 16735498Stimh int error; 16745498Stimh 16755498Stimh /* 16765498Stimh * zfs_get_zplprop() will either find a value or give us 16775498Stimh * the default value (if there is one). 16785498Stimh */ 16795498Stimh if ((error = zfs_get_zplprop(os, prop, &value)) != 0) 16805498Stimh return (error); 16815498Stimh VERIFY(nvlist_add_uint64(props, zfs_prop_to_name(prop), value) == 0); 16825498Stimh return (0); 16835498Stimh } 16845498Stimh 16855498Stimh /* 16865498Stimh * inputs: 16875498Stimh * zc_name name of filesystem 16885498Stimh * zc_nvlist_dst_size size of buffer for zpl property nvlist 16895498Stimh * 16905498Stimh * outputs: 16915498Stimh * zc_nvlist_dst zpl property nvlist 16925498Stimh * zc_nvlist_dst_size size of zpl property nvlist 16935498Stimh */ 16945498Stimh static int 16955498Stimh zfs_ioc_objset_zplprops(zfs_cmd_t *zc) 16965498Stimh { 16975498Stimh objset_t *os; 16985498Stimh int err; 16995498Stimh 170010298SMatthew.Ahrens@Sun.COM /* XXX reading without owning */ 170110298SMatthew.Ahrens@Sun.COM if (err = dmu_objset_hold(zc->zc_name, FTAG, &os)) 17025498Stimh return (err); 17035498Stimh 17045498Stimh dmu_objset_fast_stat(os, &zc->zc_objset_stats); 17055498Stimh 17065498Stimh /* 17075498Stimh * NB: nvl_add_zplprop() will read the objset contents, 17086689Smaybee * which we aren't supposed to do with a DS_MODE_USER 17096689Smaybee * hold, because it could be inconsistent. 17105498Stimh */ 17115498Stimh if (zc->zc_nvlist_dst != NULL && 17125498Stimh !zc->zc_objset_stats.dds_inconsistent && 17135498Stimh dmu_objset_type(os) == DMU_OST_ZFS) { 17145498Stimh nvlist_t *nv; 17155498Stimh 17165498Stimh VERIFY(nvlist_alloc(&nv, NV_UNIQUE_NAME, KM_SLEEP) == 0); 17175498Stimh if ((err = nvl_add_zplprop(os, nv, ZFS_PROP_VERSION)) == 0 && 17185498Stimh (err = nvl_add_zplprop(os, nv, ZFS_PROP_NORMALIZE)) == 0 && 17195498Stimh (err = nvl_add_zplprop(os, nv, ZFS_PROP_UTF8ONLY)) == 0 && 17205498Stimh (err = nvl_add_zplprop(os, nv, ZFS_PROP_CASE)) == 0) 17215498Stimh err = put_nvlist(zc, nv); 17225498Stimh nvlist_free(nv); 17235498Stimh } else { 17245498Stimh err = ENOENT; 17255498Stimh } 172610298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 17275498Stimh return (err); 17285498Stimh } 17295498Stimh 17309396SMatthew.Ahrens@Sun.COM static boolean_t 17319396SMatthew.Ahrens@Sun.COM dataset_name_hidden(const char *name) 17329396SMatthew.Ahrens@Sun.COM { 17339396SMatthew.Ahrens@Sun.COM /* 17349396SMatthew.Ahrens@Sun.COM * Skip over datasets that are not visible in this zone, 17359396SMatthew.Ahrens@Sun.COM * internal datasets (which have a $ in their name), and 17369396SMatthew.Ahrens@Sun.COM * temporary datasets (which have a % in their name). 17379396SMatthew.Ahrens@Sun.COM */ 17389396SMatthew.Ahrens@Sun.COM if (strchr(name, '$') != NULL) 17399396SMatthew.Ahrens@Sun.COM return (B_TRUE); 17409396SMatthew.Ahrens@Sun.COM if (strchr(name, '%') != NULL) 17419396SMatthew.Ahrens@Sun.COM return (B_TRUE); 17429396SMatthew.Ahrens@Sun.COM if (!INGLOBALZONE(curproc) && !zone_dataset_visible(name, NULL)) 17439396SMatthew.Ahrens@Sun.COM return (B_TRUE); 17449396SMatthew.Ahrens@Sun.COM return (B_FALSE); 17459396SMatthew.Ahrens@Sun.COM } 17469396SMatthew.Ahrens@Sun.COM 17475367Sahrens /* 17485367Sahrens * inputs: 17495367Sahrens * zc_name name of filesystem 17505367Sahrens * zc_cookie zap cursor 17515367Sahrens * zc_nvlist_dst_size size of buffer for property nvlist 17525367Sahrens * 17535367Sahrens * outputs: 17545367Sahrens * zc_name name of next filesystem 17559396SMatthew.Ahrens@Sun.COM * zc_cookie zap cursor 17565367Sahrens * zc_objset_stats stats 17575367Sahrens * zc_nvlist_dst property nvlist 17585367Sahrens * zc_nvlist_dst_size size of property nvlist 17595367Sahrens */ 1760789Sahrens static int 1761789Sahrens zfs_ioc_dataset_list_next(zfs_cmd_t *zc) 1762789Sahrens { 1763885Sahrens objset_t *os; 1764789Sahrens int error; 1765789Sahrens char *p; 176611546SChris.Kirby@sun.com size_t orig_len = strlen(zc->zc_name); 176711546SChris.Kirby@sun.com 176811546SChris.Kirby@sun.com top: 176910298SMatthew.Ahrens@Sun.COM if (error = dmu_objset_hold(zc->zc_name, FTAG, &os)) { 1770885Sahrens if (error == ENOENT) 1771885Sahrens error = ESRCH; 1772885Sahrens return (error); 1773789Sahrens } 1774789Sahrens 1775789Sahrens p = strrchr(zc->zc_name, '/'); 1776789Sahrens if (p == NULL || p[1] != '\0') 1777789Sahrens (void) strlcat(zc->zc_name, "/", sizeof (zc->zc_name)); 1778789Sahrens p = zc->zc_name + strlen(zc->zc_name); 1779789Sahrens 17808697SRichard.Morris@Sun.COM /* 17818697SRichard.Morris@Sun.COM * Pre-fetch the datasets. dmu_objset_prefetch() always returns 0 17828697SRichard.Morris@Sun.COM * but is not declared void because its called by dmu_objset_find(). 17838697SRichard.Morris@Sun.COM */ 17848415SRichard.Morris@Sun.COM if (zc->zc_cookie == 0) { 17858415SRichard.Morris@Sun.COM uint64_t cookie = 0; 17868415SRichard.Morris@Sun.COM int len = sizeof (zc->zc_name) - (p - zc->zc_name); 17878415SRichard.Morris@Sun.COM 17888415SRichard.Morris@Sun.COM while (dmu_dir_list_next(os, len, p, NULL, &cookie) == 0) 17898697SRichard.Morris@Sun.COM (void) dmu_objset_prefetch(p, NULL); 17908415SRichard.Morris@Sun.COM } 17918415SRichard.Morris@Sun.COM 1792789Sahrens do { 1793885Sahrens error = dmu_dir_list_next(os, 1794885Sahrens sizeof (zc->zc_name) - (p - zc->zc_name), p, 1795885Sahrens NULL, &zc->zc_cookie); 1796789Sahrens if (error == ENOENT) 1797789Sahrens error = ESRCH; 179810588SEric.Taylor@Sun.COM } while (error == 0 && dataset_name_hidden(zc->zc_name) && 179910588SEric.Taylor@Sun.COM !(zc->zc_iflags & FKIOCTL)); 180010298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 1801789Sahrens 180210588SEric.Taylor@Sun.COM /* 180310588SEric.Taylor@Sun.COM * If it's an internal dataset (ie. with a '$' in its name), 180410588SEric.Taylor@Sun.COM * don't try to get stats for it, otherwise we'll return ENOENT. 180510588SEric.Taylor@Sun.COM */ 180611546SChris.Kirby@sun.com if (error == 0 && strchr(zc->zc_name, '$') == NULL) { 1807885Sahrens error = zfs_ioc_objset_stats(zc); /* fill in the stats */ 180811546SChris.Kirby@sun.com if (error == ENOENT) { 180911546SChris.Kirby@sun.com /* We lost a race with destroy, get the next one. */ 181011546SChris.Kirby@sun.com zc->zc_name[orig_len] = '\0'; 181111546SChris.Kirby@sun.com goto top; 181211546SChris.Kirby@sun.com } 181311546SChris.Kirby@sun.com } 1814789Sahrens return (error); 1815789Sahrens } 1816789Sahrens 18175367Sahrens /* 18185367Sahrens * inputs: 18195367Sahrens * zc_name name of filesystem 18205367Sahrens * zc_cookie zap cursor 18215367Sahrens * zc_nvlist_dst_size size of buffer for property nvlist 18225367Sahrens * 18235367Sahrens * outputs: 18245367Sahrens * zc_name name of next snapshot 18255367Sahrens * zc_objset_stats stats 18265367Sahrens * zc_nvlist_dst property nvlist 18275367Sahrens * zc_nvlist_dst_size size of property nvlist 18285367Sahrens */ 1829789Sahrens static int 1830789Sahrens zfs_ioc_snapshot_list_next(zfs_cmd_t *zc) 1831789Sahrens { 1832885Sahrens objset_t *os; 1833789Sahrens int error; 1834789Sahrens 183511546SChris.Kirby@sun.com top: 183610474SRichard.Morris@Sun.COM if (zc->zc_cookie == 0) 183710474SRichard.Morris@Sun.COM (void) dmu_objset_find(zc->zc_name, dmu_objset_prefetch, 183810474SRichard.Morris@Sun.COM NULL, DS_FIND_SNAPSHOTS); 183910474SRichard.Morris@Sun.COM 184010298SMatthew.Ahrens@Sun.COM error = dmu_objset_hold(zc->zc_name, FTAG, &os); 18416689Smaybee if (error) 18426689Smaybee return (error == ENOENT ? ESRCH : error); 1843789Sahrens 18441003Slling /* 18451003Slling * A dataset name of maximum length cannot have any snapshots, 18461003Slling * so exit immediately. 18471003Slling */ 18481003Slling if (strlcat(zc->zc_name, "@", sizeof (zc->zc_name)) >= MAXNAMELEN) { 184910298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 18501003Slling return (ESRCH); 1851789Sahrens } 1852789Sahrens 1853885Sahrens error = dmu_snapshot_list_next(os, 1854885Sahrens sizeof (zc->zc_name) - strlen(zc->zc_name), 18555663Sck153898 zc->zc_name + strlen(zc->zc_name), NULL, &zc->zc_cookie, NULL); 185610298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 185711546SChris.Kirby@sun.com if (error == 0) { 1858885Sahrens error = zfs_ioc_objset_stats(zc); /* fill in the stats */ 185911546SChris.Kirby@sun.com if (error == ENOENT) { 186011546SChris.Kirby@sun.com /* We lost a race with destroy, get the next one. */ 186111546SChris.Kirby@sun.com *strchr(zc->zc_name, '@') = '\0'; 186211546SChris.Kirby@sun.com goto top; 186311546SChris.Kirby@sun.com } 186411546SChris.Kirby@sun.com } else if (error == ENOENT) { 18656689Smaybee error = ESRCH; 186611546SChris.Kirby@sun.com } 1867789Sahrens 18685367Sahrens /* if we failed, undo the @ that we tacked on to zc_name */ 18696689Smaybee if (error) 18705367Sahrens *strchr(zc->zc_name, '@') = '\0'; 1871789Sahrens return (error); 1872789Sahrens } 1873789Sahrens 187411022STom.Erickson@Sun.COM static int 187511022STom.Erickson@Sun.COM zfs_prop_set_userquota(const char *dsname, nvpair_t *pair) 187611022STom.Erickson@Sun.COM { 187711022STom.Erickson@Sun.COM const char *propname = nvpair_name(pair); 187811022STom.Erickson@Sun.COM uint64_t *valary; 187911022STom.Erickson@Sun.COM unsigned int vallen; 188011022STom.Erickson@Sun.COM const char *domain; 188111933STim.Haley@Sun.COM char *dash; 188211022STom.Erickson@Sun.COM zfs_userquota_prop_t type; 188311022STom.Erickson@Sun.COM uint64_t rid; 188411022STom.Erickson@Sun.COM uint64_t quota; 188511022STom.Erickson@Sun.COM zfsvfs_t *zfsvfs; 188611022STom.Erickson@Sun.COM int err; 188711022STom.Erickson@Sun.COM 188811022STom.Erickson@Sun.COM if (nvpair_type(pair) == DATA_TYPE_NVLIST) { 188911022STom.Erickson@Sun.COM nvlist_t *attrs; 189011022STom.Erickson@Sun.COM VERIFY(nvpair_value_nvlist(pair, &attrs) == 0); 189111933STim.Haley@Sun.COM if (nvlist_lookup_nvpair(attrs, ZPROP_VALUE, 189211933STim.Haley@Sun.COM &pair) != 0) 189311933STim.Haley@Sun.COM return (EINVAL); 189411022STom.Erickson@Sun.COM } 189511022STom.Erickson@Sun.COM 189611933STim.Haley@Sun.COM /* 189711933STim.Haley@Sun.COM * A correctly constructed propname is encoded as 189811933STim.Haley@Sun.COM * userquota@<rid>-<domain>. 189911933STim.Haley@Sun.COM */ 190011933STim.Haley@Sun.COM if ((dash = strchr(propname, '-')) == NULL || 190111933STim.Haley@Sun.COM nvpair_value_uint64_array(pair, &valary, &vallen) != 0 || 190211933STim.Haley@Sun.COM vallen != 3) 190311933STim.Haley@Sun.COM return (EINVAL); 190411933STim.Haley@Sun.COM 190511933STim.Haley@Sun.COM domain = dash + 1; 190611022STom.Erickson@Sun.COM type = valary[0]; 190711022STom.Erickson@Sun.COM rid = valary[1]; 190811022STom.Erickson@Sun.COM quota = valary[2]; 190911022STom.Erickson@Sun.COM 1910*12620SMark.Shellenbaum@Oracle.COM err = zfsvfs_hold(dsname, FTAG, &zfsvfs, B_FALSE); 191111022STom.Erickson@Sun.COM if (err == 0) { 191211022STom.Erickson@Sun.COM err = zfs_set_userquota(zfsvfs, type, domain, rid, quota); 191311022STom.Erickson@Sun.COM zfsvfs_rele(zfsvfs, FTAG); 191411022STom.Erickson@Sun.COM } 191511022STom.Erickson@Sun.COM 191611022STom.Erickson@Sun.COM return (err); 191711022STom.Erickson@Sun.COM } 191811022STom.Erickson@Sun.COM 191911022STom.Erickson@Sun.COM /* 192011022STom.Erickson@Sun.COM * If the named property is one that has a special function to set its value, 192111022STom.Erickson@Sun.COM * return 0 on success and a positive error code on failure; otherwise if it is 192211022STom.Erickson@Sun.COM * not one of the special properties handled by this function, return -1. 192311022STom.Erickson@Sun.COM * 192411933STim.Haley@Sun.COM * XXX: It would be better for callers of the property interface if we handled 192511022STom.Erickson@Sun.COM * these special cases in dsl_prop.c (in the dsl layer). 192611022STom.Erickson@Sun.COM */ 192711022STom.Erickson@Sun.COM static int 192811022STom.Erickson@Sun.COM zfs_prop_set_special(const char *dsname, zprop_source_t source, 192911022STom.Erickson@Sun.COM nvpair_t *pair) 1930789Sahrens { 193111022STom.Erickson@Sun.COM const char *propname = nvpair_name(pair); 193211022STom.Erickson@Sun.COM zfs_prop_t prop = zfs_name_to_prop(propname); 193311022STom.Erickson@Sun.COM uint64_t intval; 193411022STom.Erickson@Sun.COM int err; 193511022STom.Erickson@Sun.COM 193611022STom.Erickson@Sun.COM if (prop == ZPROP_INVAL) { 193711022STom.Erickson@Sun.COM if (zfs_prop_userquota(propname)) 193811022STom.Erickson@Sun.COM return (zfs_prop_set_userquota(dsname, pair)); 193911022STom.Erickson@Sun.COM return (-1); 194011022STom.Erickson@Sun.COM } 194111022STom.Erickson@Sun.COM 194211022STom.Erickson@Sun.COM if (nvpair_type(pair) == DATA_TYPE_NVLIST) { 194311022STom.Erickson@Sun.COM nvlist_t *attrs; 194411022STom.Erickson@Sun.COM VERIFY(nvpair_value_nvlist(pair, &attrs) == 0); 194511022STom.Erickson@Sun.COM VERIFY(nvlist_lookup_nvpair(attrs, ZPROP_VALUE, 194611022STom.Erickson@Sun.COM &pair) == 0); 194711022STom.Erickson@Sun.COM } 194811022STom.Erickson@Sun.COM 194911022STom.Erickson@Sun.COM if (zfs_prop_get_type(prop) == PROP_TYPE_STRING) 195011022STom.Erickson@Sun.COM return (-1); 195111022STom.Erickson@Sun.COM 195211022STom.Erickson@Sun.COM VERIFY(0 == nvpair_value_uint64(pair, &intval)); 195311022STom.Erickson@Sun.COM 195411022STom.Erickson@Sun.COM switch (prop) { 195511022STom.Erickson@Sun.COM case ZFS_PROP_QUOTA: 195611022STom.Erickson@Sun.COM err = dsl_dir_set_quota(dsname, source, intval); 195711022STom.Erickson@Sun.COM break; 195811022STom.Erickson@Sun.COM case ZFS_PROP_REFQUOTA: 195911022STom.Erickson@Sun.COM err = dsl_dataset_set_quota(dsname, source, intval); 196011022STom.Erickson@Sun.COM break; 196111022STom.Erickson@Sun.COM case ZFS_PROP_RESERVATION: 196211022STom.Erickson@Sun.COM err = dsl_dir_set_reservation(dsname, source, intval); 196311022STom.Erickson@Sun.COM break; 196411022STom.Erickson@Sun.COM case ZFS_PROP_REFRESERVATION: 196511022STom.Erickson@Sun.COM err = dsl_dataset_set_reservation(dsname, source, intval); 196611022STom.Erickson@Sun.COM break; 196711022STom.Erickson@Sun.COM case ZFS_PROP_VOLSIZE: 196811022STom.Erickson@Sun.COM err = zvol_set_volsize(dsname, ddi_driver_major(zfs_dip), 196911022STom.Erickson@Sun.COM intval); 197011022STom.Erickson@Sun.COM break; 197111022STom.Erickson@Sun.COM case ZFS_PROP_VERSION: 197211022STom.Erickson@Sun.COM { 197311022STom.Erickson@Sun.COM zfsvfs_t *zfsvfs; 197411022STom.Erickson@Sun.COM 1975*12620SMark.Shellenbaum@Oracle.COM if ((err = zfsvfs_hold(dsname, FTAG, &zfsvfs, B_TRUE)) != 0) 197611022STom.Erickson@Sun.COM break; 197711022STom.Erickson@Sun.COM 197811022STom.Erickson@Sun.COM err = zfs_set_version(zfsvfs, intval); 197911022STom.Erickson@Sun.COM zfsvfs_rele(zfsvfs, FTAG); 198011022STom.Erickson@Sun.COM 198111022STom.Erickson@Sun.COM if (err == 0 && intval >= ZPL_VERSION_USERSPACE) { 198211147SGeorge.Wilson@Sun.COM zfs_cmd_t *zc; 198311147SGeorge.Wilson@Sun.COM 198411147SGeorge.Wilson@Sun.COM zc = kmem_zalloc(sizeof (zfs_cmd_t), KM_SLEEP); 198511147SGeorge.Wilson@Sun.COM (void) strcpy(zc->zc_name, dsname); 198611147SGeorge.Wilson@Sun.COM (void) zfs_ioc_userspace_upgrade(zc); 198711147SGeorge.Wilson@Sun.COM kmem_free(zc, sizeof (zfs_cmd_t)); 198811022STom.Erickson@Sun.COM } 198911022STom.Erickson@Sun.COM break; 199011022STom.Erickson@Sun.COM } 199111022STom.Erickson@Sun.COM 199211022STom.Erickson@Sun.COM default: 199311022STom.Erickson@Sun.COM err = -1; 199411022STom.Erickson@Sun.COM } 199511022STom.Erickson@Sun.COM 199611022STom.Erickson@Sun.COM return (err); 199711022STom.Erickson@Sun.COM } 199811022STom.Erickson@Sun.COM 199911022STom.Erickson@Sun.COM /* 200011022STom.Erickson@Sun.COM * This function is best effort. If it fails to set any of the given properties, 200111022STom.Erickson@Sun.COM * it continues to set as many as it can and returns the first error 200211022STom.Erickson@Sun.COM * encountered. If the caller provides a non-NULL errlist, it also gives the 200311022STom.Erickson@Sun.COM * complete list of names of all the properties it failed to set along with the 200411022STom.Erickson@Sun.COM * corresponding error numbers. The caller is responsible for freeing the 200511022STom.Erickson@Sun.COM * returned errlist. 200611022STom.Erickson@Sun.COM * 200711022STom.Erickson@Sun.COM * If every property is set successfully, zero is returned and the list pointed 200811022STom.Erickson@Sun.COM * at by errlist is NULL. 200911022STom.Erickson@Sun.COM */ 201011022STom.Erickson@Sun.COM int 201111022STom.Erickson@Sun.COM zfs_set_prop_nvlist(const char *dsname, zprop_source_t source, nvlist_t *nvl, 201211022STom.Erickson@Sun.COM nvlist_t **errlist) 201311022STom.Erickson@Sun.COM { 201411022STom.Erickson@Sun.COM nvpair_t *pair; 201511022STom.Erickson@Sun.COM nvpair_t *propval; 201611045STom.Erickson@Sun.COM int rv = 0; 20172676Seschrock uint64_t intval; 20182676Seschrock char *strval; 20198697SRichard.Morris@Sun.COM nvlist_t *genericnvl; 202011022STom.Erickson@Sun.COM nvlist_t *errors; 202111022STom.Erickson@Sun.COM nvlist_t *retrynvl; 20224543Smarks 20238697SRichard.Morris@Sun.COM VERIFY(nvlist_alloc(&genericnvl, NV_UNIQUE_NAME, KM_SLEEP) == 0); 202411022STom.Erickson@Sun.COM VERIFY(nvlist_alloc(&errors, NV_UNIQUE_NAME, KM_SLEEP) == 0); 202511022STom.Erickson@Sun.COM VERIFY(nvlist_alloc(&retrynvl, NV_UNIQUE_NAME, KM_SLEEP) == 0); 202611022STom.Erickson@Sun.COM 202711022STom.Erickson@Sun.COM retry: 202811022STom.Erickson@Sun.COM pair = NULL; 202911022STom.Erickson@Sun.COM while ((pair = nvlist_next_nvpair(nvl, pair)) != NULL) { 203011022STom.Erickson@Sun.COM const char *propname = nvpair_name(pair); 20314670Sahrens zfs_prop_t prop = zfs_name_to_prop(propname); 203211181STom.Erickson@Sun.COM int err = 0; 20334543Smarks 203411022STom.Erickson@Sun.COM /* decode the property value */ 203511022STom.Erickson@Sun.COM propval = pair; 203611022STom.Erickson@Sun.COM if (nvpair_type(pair) == DATA_TYPE_NVLIST) { 203711022STom.Erickson@Sun.COM nvlist_t *attrs; 203811022STom.Erickson@Sun.COM VERIFY(nvpair_value_nvlist(pair, &attrs) == 0); 203911933STim.Haley@Sun.COM if (nvlist_lookup_nvpair(attrs, ZPROP_VALUE, 204011933STim.Haley@Sun.COM &propval) != 0) 204111933STim.Haley@Sun.COM err = EINVAL; 20424543Smarks } 20432676Seschrock 204411022STom.Erickson@Sun.COM /* Validate value type */ 204511933STim.Haley@Sun.COM if (err == 0 && prop == ZPROP_INVAL) { 204611022STom.Erickson@Sun.COM if (zfs_prop_user(propname)) { 204711022STom.Erickson@Sun.COM if (nvpair_type(propval) != DATA_TYPE_STRING) 204811022STom.Erickson@Sun.COM err = EINVAL; 204911022STom.Erickson@Sun.COM } else if (zfs_prop_userquota(propname)) { 205011022STom.Erickson@Sun.COM if (nvpair_type(propval) != 205111022STom.Erickson@Sun.COM DATA_TYPE_UINT64_ARRAY) 205211022STom.Erickson@Sun.COM err = EINVAL; 20539396SMatthew.Ahrens@Sun.COM } 205411933STim.Haley@Sun.COM } else if (err == 0) { 205511022STom.Erickson@Sun.COM if (nvpair_type(propval) == DATA_TYPE_STRING) { 205611022STom.Erickson@Sun.COM if (zfs_prop_get_type(prop) != PROP_TYPE_STRING) 205711022STom.Erickson@Sun.COM err = EINVAL; 205811022STom.Erickson@Sun.COM } else if (nvpair_type(propval) == DATA_TYPE_UINT64) { 20592885Sahrens const char *unused; 20602885Sahrens 206111022STom.Erickson@Sun.COM VERIFY(nvpair_value_uint64(propval, 206211022STom.Erickson@Sun.COM &intval) == 0); 20632676Seschrock 20642676Seschrock switch (zfs_prop_get_type(prop)) { 20654787Sahrens case PROP_TYPE_NUMBER: 20662676Seschrock break; 20674787Sahrens case PROP_TYPE_STRING: 206811022STom.Erickson@Sun.COM err = EINVAL; 206911022STom.Erickson@Sun.COM break; 20704787Sahrens case PROP_TYPE_INDEX: 20712717Seschrock if (zfs_prop_index_to_string(prop, 207211022STom.Erickson@Sun.COM intval, &unused) != 0) 207311022STom.Erickson@Sun.COM err = EINVAL; 20742676Seschrock break; 20752676Seschrock default: 20764577Sahrens cmn_err(CE_PANIC, 20774577Sahrens "unknown property type"); 20782676Seschrock } 20792676Seschrock } else { 208011022STom.Erickson@Sun.COM err = EINVAL; 208111022STom.Erickson@Sun.COM } 208211022STom.Erickson@Sun.COM } 208311022STom.Erickson@Sun.COM 208411022STom.Erickson@Sun.COM /* Validate permissions */ 208511022STom.Erickson@Sun.COM if (err == 0) 208611022STom.Erickson@Sun.COM err = zfs_check_settable(dsname, pair, CRED()); 208711022STom.Erickson@Sun.COM 208811022STom.Erickson@Sun.COM if (err == 0) { 208911022STom.Erickson@Sun.COM err = zfs_prop_set_special(dsname, source, pair); 209011022STom.Erickson@Sun.COM if (err == -1) { 209111022STom.Erickson@Sun.COM /* 209211022STom.Erickson@Sun.COM * For better performance we build up a list of 209311022STom.Erickson@Sun.COM * properties to set in a single transaction. 209411022STom.Erickson@Sun.COM */ 209511022STom.Erickson@Sun.COM err = nvlist_add_nvpair(genericnvl, pair); 209611022STom.Erickson@Sun.COM } else if (err != 0 && nvl != retrynvl) { 209711022STom.Erickson@Sun.COM /* 209811022STom.Erickson@Sun.COM * This may be a spurious error caused by 209911022STom.Erickson@Sun.COM * receiving quota and reservation out of order. 210011022STom.Erickson@Sun.COM * Try again in a second pass. 210111022STom.Erickson@Sun.COM */ 210211022STom.Erickson@Sun.COM err = nvlist_add_nvpair(retrynvl, pair); 21032676Seschrock } 210411022STom.Erickson@Sun.COM } 210511022STom.Erickson@Sun.COM 210611022STom.Erickson@Sun.COM if (err != 0) 210711022STom.Erickson@Sun.COM VERIFY(nvlist_add_int32(errors, propname, err) == 0); 210811022STom.Erickson@Sun.COM } 210911022STom.Erickson@Sun.COM 211011022STom.Erickson@Sun.COM if (nvl != retrynvl && !nvlist_empty(retrynvl)) { 211111022STom.Erickson@Sun.COM nvl = retrynvl; 211211022STom.Erickson@Sun.COM goto retry; 211311022STom.Erickson@Sun.COM } 211411022STom.Erickson@Sun.COM 211511022STom.Erickson@Sun.COM if (!nvlist_empty(genericnvl) && 211611022STom.Erickson@Sun.COM dsl_props_set(dsname, source, genericnvl) != 0) { 211711022STom.Erickson@Sun.COM /* 211811022STom.Erickson@Sun.COM * If this fails, we still want to set as many properties as we 211911022STom.Erickson@Sun.COM * can, so try setting them individually. 212011022STom.Erickson@Sun.COM */ 212111022STom.Erickson@Sun.COM pair = NULL; 212211022STom.Erickson@Sun.COM while ((pair = nvlist_next_nvpair(genericnvl, pair)) != NULL) { 212311022STom.Erickson@Sun.COM const char *propname = nvpair_name(pair); 212411181STom.Erickson@Sun.COM int err = 0; 212511022STom.Erickson@Sun.COM 212611022STom.Erickson@Sun.COM propval = pair; 212711022STom.Erickson@Sun.COM if (nvpair_type(pair) == DATA_TYPE_NVLIST) { 212811022STom.Erickson@Sun.COM nvlist_t *attrs; 212911022STom.Erickson@Sun.COM VERIFY(nvpair_value_nvlist(pair, &attrs) == 0); 213011022STom.Erickson@Sun.COM VERIFY(nvlist_lookup_nvpair(attrs, ZPROP_VALUE, 213111022STom.Erickson@Sun.COM &propval) == 0); 213211022STom.Erickson@Sun.COM } 213311022STom.Erickson@Sun.COM 213411022STom.Erickson@Sun.COM if (nvpair_type(propval) == DATA_TYPE_STRING) { 213511022STom.Erickson@Sun.COM VERIFY(nvpair_value_string(propval, 213611022STom.Erickson@Sun.COM &strval) == 0); 213711022STom.Erickson@Sun.COM err = dsl_prop_set(dsname, propname, source, 1, 213811022STom.Erickson@Sun.COM strlen(strval) + 1, strval); 213911022STom.Erickson@Sun.COM } else { 214011022STom.Erickson@Sun.COM VERIFY(nvpair_value_uint64(propval, 214111022STom.Erickson@Sun.COM &intval) == 0); 214211022STom.Erickson@Sun.COM err = dsl_prop_set(dsname, propname, source, 8, 214311022STom.Erickson@Sun.COM 1, &intval); 214411022STom.Erickson@Sun.COM } 214511022STom.Erickson@Sun.COM 214611022STom.Erickson@Sun.COM if (err != 0) { 214711022STom.Erickson@Sun.COM VERIFY(nvlist_add_int32(errors, propname, 214811022STom.Erickson@Sun.COM err) == 0); 214911022STom.Erickson@Sun.COM } 21502676Seschrock } 21512676Seschrock } 215211022STom.Erickson@Sun.COM nvlist_free(genericnvl); 215311022STom.Erickson@Sun.COM nvlist_free(retrynvl); 215411022STom.Erickson@Sun.COM 215511022STom.Erickson@Sun.COM if ((pair = nvlist_next_nvpair(errors, NULL)) == NULL) { 215611022STom.Erickson@Sun.COM nvlist_free(errors); 215711022STom.Erickson@Sun.COM errors = NULL; 215811022STom.Erickson@Sun.COM } else { 215911022STom.Erickson@Sun.COM VERIFY(nvpair_value_int32(pair, &rv) == 0); 21608697SRichard.Morris@Sun.COM } 216111022STom.Erickson@Sun.COM 216211022STom.Erickson@Sun.COM if (errlist == NULL) 216311022STom.Erickson@Sun.COM nvlist_free(errors); 216411022STom.Erickson@Sun.COM else 216511022STom.Erickson@Sun.COM *errlist = errors; 216611022STom.Erickson@Sun.COM 216711022STom.Erickson@Sun.COM return (rv); 2168789Sahrens } 2169789Sahrens 21705367Sahrens /* 21719355SMatthew.Ahrens@Sun.COM * Check that all the properties are valid user properties. 21729355SMatthew.Ahrens@Sun.COM */ 21739355SMatthew.Ahrens@Sun.COM static int 21749355SMatthew.Ahrens@Sun.COM zfs_check_userprops(char *fsname, nvlist_t *nvl) 21759355SMatthew.Ahrens@Sun.COM { 217611022STom.Erickson@Sun.COM nvpair_t *pair = NULL; 21779355SMatthew.Ahrens@Sun.COM int error = 0; 21789355SMatthew.Ahrens@Sun.COM 217911022STom.Erickson@Sun.COM while ((pair = nvlist_next_nvpair(nvl, pair)) != NULL) { 218011022STom.Erickson@Sun.COM const char *propname = nvpair_name(pair); 21819355SMatthew.Ahrens@Sun.COM char *valstr; 21829355SMatthew.Ahrens@Sun.COM 21839355SMatthew.Ahrens@Sun.COM if (!zfs_prop_user(propname) || 218411022STom.Erickson@Sun.COM nvpair_type(pair) != DATA_TYPE_STRING) 21859355SMatthew.Ahrens@Sun.COM return (EINVAL); 21869355SMatthew.Ahrens@Sun.COM 21879355SMatthew.Ahrens@Sun.COM if (error = zfs_secpolicy_write_perms(fsname, 21889355SMatthew.Ahrens@Sun.COM ZFS_DELEG_PERM_USERPROP, CRED())) 21899355SMatthew.Ahrens@Sun.COM return (error); 21909355SMatthew.Ahrens@Sun.COM 21919355SMatthew.Ahrens@Sun.COM if (strlen(propname) >= ZAP_MAXNAMELEN) 21929355SMatthew.Ahrens@Sun.COM return (ENAMETOOLONG); 21939355SMatthew.Ahrens@Sun.COM 219411022STom.Erickson@Sun.COM VERIFY(nvpair_value_string(pair, &valstr) == 0); 21959355SMatthew.Ahrens@Sun.COM if (strlen(valstr) >= ZAP_MAXVALUELEN) 21969355SMatthew.Ahrens@Sun.COM return (E2BIG); 21979355SMatthew.Ahrens@Sun.COM } 21989355SMatthew.Ahrens@Sun.COM return (0); 21999355SMatthew.Ahrens@Sun.COM } 22009355SMatthew.Ahrens@Sun.COM 220111022STom.Erickson@Sun.COM static void 220211022STom.Erickson@Sun.COM props_skip(nvlist_t *props, nvlist_t *skipped, nvlist_t **newprops) 220311022STom.Erickson@Sun.COM { 220411022STom.Erickson@Sun.COM nvpair_t *pair; 220511022STom.Erickson@Sun.COM 220611022STom.Erickson@Sun.COM VERIFY(nvlist_alloc(newprops, NV_UNIQUE_NAME, KM_SLEEP) == 0); 220711022STom.Erickson@Sun.COM 220811022STom.Erickson@Sun.COM pair = NULL; 220911022STom.Erickson@Sun.COM while ((pair = nvlist_next_nvpair(props, pair)) != NULL) { 221011022STom.Erickson@Sun.COM if (nvlist_exists(skipped, nvpair_name(pair))) 221111022STom.Erickson@Sun.COM continue; 221211022STom.Erickson@Sun.COM 221311022STom.Erickson@Sun.COM VERIFY(nvlist_add_nvpair(*newprops, pair) == 0); 221411022STom.Erickson@Sun.COM } 221511022STom.Erickson@Sun.COM } 221611022STom.Erickson@Sun.COM 221711022STom.Erickson@Sun.COM static int 221811022STom.Erickson@Sun.COM clear_received_props(objset_t *os, const char *fs, nvlist_t *props, 221911022STom.Erickson@Sun.COM nvlist_t *skipped) 222011022STom.Erickson@Sun.COM { 222111022STom.Erickson@Sun.COM int err = 0; 222211022STom.Erickson@Sun.COM nvlist_t *cleared_props = NULL; 222311022STom.Erickson@Sun.COM props_skip(props, skipped, &cleared_props); 222411022STom.Erickson@Sun.COM if (!nvlist_empty(cleared_props)) { 222511022STom.Erickson@Sun.COM /* 222611022STom.Erickson@Sun.COM * Acts on local properties until the dataset has received 222711022STom.Erickson@Sun.COM * properties at least once on or after SPA_VERSION_RECVD_PROPS. 222811022STom.Erickson@Sun.COM */ 222911022STom.Erickson@Sun.COM zprop_source_t flags = (ZPROP_SRC_NONE | 223011022STom.Erickson@Sun.COM (dsl_prop_get_hasrecvd(os) ? ZPROP_SRC_RECEIVED : 0)); 223111022STom.Erickson@Sun.COM err = zfs_set_prop_nvlist(fs, flags, cleared_props, NULL); 223211022STom.Erickson@Sun.COM } 223311022STom.Erickson@Sun.COM nvlist_free(cleared_props); 223411022STom.Erickson@Sun.COM return (err); 223511022STom.Erickson@Sun.COM } 223611022STom.Erickson@Sun.COM 22379355SMatthew.Ahrens@Sun.COM /* 22385367Sahrens * inputs: 22395367Sahrens * zc_name name of filesystem 22408697SRichard.Morris@Sun.COM * zc_value name of property to set 22415367Sahrens * zc_nvlist_src{_size} nvlist of properties to apply 224211022STom.Erickson@Sun.COM * zc_cookie received properties flag 22435367Sahrens * 224411022STom.Erickson@Sun.COM * outputs: 224511022STom.Erickson@Sun.COM * zc_nvlist_dst{_size} error for each unapplied received property 22465367Sahrens */ 2247789Sahrens static int 22482676Seschrock zfs_ioc_set_prop(zfs_cmd_t *zc) 2249789Sahrens { 22502676Seschrock nvlist_t *nvl; 225111022STom.Erickson@Sun.COM boolean_t received = zc->zc_cookie; 225211022STom.Erickson@Sun.COM zprop_source_t source = (received ? ZPROP_SRC_RECEIVED : 225311022STom.Erickson@Sun.COM ZPROP_SRC_LOCAL); 225411022STom.Erickson@Sun.COM nvlist_t *errors = NULL; 22552676Seschrock int error; 2256789Sahrens 22575094Slling if ((error = get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 22589643SEric.Taylor@Sun.COM zc->zc_iflags, &nvl)) != 0) 22592676Seschrock return (error); 22602676Seschrock 226111022STom.Erickson@Sun.COM if (received) { 22627265Sahrens nvlist_t *origprops; 22637265Sahrens objset_t *os; 22647265Sahrens 226510298SMatthew.Ahrens@Sun.COM if (dmu_objset_hold(zc->zc_name, FTAG, &os) == 0) { 226611022STom.Erickson@Sun.COM if (dsl_prop_get_received(os, &origprops) == 0) { 226711022STom.Erickson@Sun.COM (void) clear_received_props(os, 226811022STom.Erickson@Sun.COM zc->zc_name, origprops, nvl); 22697265Sahrens nvlist_free(origprops); 22707265Sahrens } 227111022STom.Erickson@Sun.COM 227211022STom.Erickson@Sun.COM dsl_prop_set_hasrecvd(os); 227310298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 22747265Sahrens } 22757265Sahrens } 22767265Sahrens 227711022STom.Erickson@Sun.COM error = zfs_set_prop_nvlist(zc->zc_name, source, nvl, &errors); 227811022STom.Erickson@Sun.COM 227911022STom.Erickson@Sun.COM if (zc->zc_nvlist_dst != NULL && errors != NULL) { 228011022STom.Erickson@Sun.COM (void) put_nvlist(zc, errors); 228111022STom.Erickson@Sun.COM } 228211022STom.Erickson@Sun.COM 228311022STom.Erickson@Sun.COM nvlist_free(errors); 22842676Seschrock nvlist_free(nvl); 22852676Seschrock return (error); 2286789Sahrens } 2287789Sahrens 22885367Sahrens /* 22895367Sahrens * inputs: 22905367Sahrens * zc_name name of filesystem 22915367Sahrens * zc_value name of property to inherit 229211022STom.Erickson@Sun.COM * zc_cookie revert to received value if TRUE 22935367Sahrens * 22945367Sahrens * outputs: none 22955367Sahrens */ 2296789Sahrens static int 22974849Sahrens zfs_ioc_inherit_prop(zfs_cmd_t *zc) 22984849Sahrens { 229911022STom.Erickson@Sun.COM const char *propname = zc->zc_value; 230011022STom.Erickson@Sun.COM zfs_prop_t prop = zfs_name_to_prop(propname); 230111022STom.Erickson@Sun.COM boolean_t received = zc->zc_cookie; 230211022STom.Erickson@Sun.COM zprop_source_t source = (received 230311022STom.Erickson@Sun.COM ? ZPROP_SRC_NONE /* revert to received value, if any */ 230411022STom.Erickson@Sun.COM : ZPROP_SRC_INHERITED); /* explicitly inherit */ 230511022STom.Erickson@Sun.COM 230611022STom.Erickson@Sun.COM if (received) { 230711022STom.Erickson@Sun.COM nvlist_t *dummy; 230811022STom.Erickson@Sun.COM nvpair_t *pair; 230911022STom.Erickson@Sun.COM zprop_type_t type; 231011022STom.Erickson@Sun.COM int err; 231111022STom.Erickson@Sun.COM 231211022STom.Erickson@Sun.COM /* 231311022STom.Erickson@Sun.COM * zfs_prop_set_special() expects properties in the form of an 231411022STom.Erickson@Sun.COM * nvpair with type info. 231511022STom.Erickson@Sun.COM */ 231611022STom.Erickson@Sun.COM if (prop == ZPROP_INVAL) { 231711022STom.Erickson@Sun.COM if (!zfs_prop_user(propname)) 231811022STom.Erickson@Sun.COM return (EINVAL); 231911022STom.Erickson@Sun.COM 232011022STom.Erickson@Sun.COM type = PROP_TYPE_STRING; 232111515STom.Erickson@Sun.COM } else if (prop == ZFS_PROP_VOLSIZE || 232211515STom.Erickson@Sun.COM prop == ZFS_PROP_VERSION) { 232311515STom.Erickson@Sun.COM return (EINVAL); 232411022STom.Erickson@Sun.COM } else { 232511022STom.Erickson@Sun.COM type = zfs_prop_get_type(prop); 232611022STom.Erickson@Sun.COM } 232711022STom.Erickson@Sun.COM 232811022STom.Erickson@Sun.COM VERIFY(nvlist_alloc(&dummy, NV_UNIQUE_NAME, KM_SLEEP) == 0); 232911022STom.Erickson@Sun.COM 233011022STom.Erickson@Sun.COM switch (type) { 233111022STom.Erickson@Sun.COM case PROP_TYPE_STRING: 233211022STom.Erickson@Sun.COM VERIFY(0 == nvlist_add_string(dummy, propname, "")); 233311022STom.Erickson@Sun.COM break; 233411022STom.Erickson@Sun.COM case PROP_TYPE_NUMBER: 233511022STom.Erickson@Sun.COM case PROP_TYPE_INDEX: 233611022STom.Erickson@Sun.COM VERIFY(0 == nvlist_add_uint64(dummy, propname, 0)); 233711022STom.Erickson@Sun.COM break; 233811022STom.Erickson@Sun.COM default: 233911022STom.Erickson@Sun.COM nvlist_free(dummy); 234011022STom.Erickson@Sun.COM return (EINVAL); 234111022STom.Erickson@Sun.COM } 234211022STom.Erickson@Sun.COM 234311022STom.Erickson@Sun.COM pair = nvlist_next_nvpair(dummy, NULL); 234411022STom.Erickson@Sun.COM err = zfs_prop_set_special(zc->zc_name, source, pair); 234511022STom.Erickson@Sun.COM nvlist_free(dummy); 234611022STom.Erickson@Sun.COM if (err != -1) 234711022STom.Erickson@Sun.COM return (err); /* special property already handled */ 234811022STom.Erickson@Sun.COM } else { 234911022STom.Erickson@Sun.COM /* 235011022STom.Erickson@Sun.COM * Only check this in the non-received case. We want to allow 235111022STom.Erickson@Sun.COM * 'inherit -S' to revert non-inheritable properties like quota 235211022STom.Erickson@Sun.COM * and reservation to the received or default values even though 235311022STom.Erickson@Sun.COM * they are not considered inheritable. 235411022STom.Erickson@Sun.COM */ 235511022STom.Erickson@Sun.COM if (prop != ZPROP_INVAL && !zfs_prop_inheritable(prop)) 235611022STom.Erickson@Sun.COM return (EINVAL); 235711022STom.Erickson@Sun.COM } 235811022STom.Erickson@Sun.COM 23594849Sahrens /* the property name has been validated by zfs_secpolicy_inherit() */ 236011022STom.Erickson@Sun.COM return (dsl_prop_set(zc->zc_name, zc->zc_value, source, 0, 0, NULL)); 23614849Sahrens } 23624849Sahrens 23634849Sahrens static int 23644098Slling zfs_ioc_pool_set_props(zfs_cmd_t *zc) 23653912Slling { 23665094Slling nvlist_t *props; 23673912Slling spa_t *spa; 23685094Slling int error; 236911022STom.Erickson@Sun.COM nvpair_t *pair; 237011022STom.Erickson@Sun.COM 237111022STom.Erickson@Sun.COM if (error = get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 237211022STom.Erickson@Sun.COM zc->zc_iflags, &props)) 23733912Slling return (error); 23743912Slling 23758525SEric.Schrock@Sun.COM /* 23768525SEric.Schrock@Sun.COM * If the only property is the configfile, then just do a spa_lookup() 23778525SEric.Schrock@Sun.COM * to handle the faulted case. 23788525SEric.Schrock@Sun.COM */ 237911022STom.Erickson@Sun.COM pair = nvlist_next_nvpair(props, NULL); 238011022STom.Erickson@Sun.COM if (pair != NULL && strcmp(nvpair_name(pair), 23818525SEric.Schrock@Sun.COM zpool_prop_to_name(ZPOOL_PROP_CACHEFILE)) == 0 && 238211022STom.Erickson@Sun.COM nvlist_next_nvpair(props, pair) == NULL) { 23838525SEric.Schrock@Sun.COM mutex_enter(&spa_namespace_lock); 23848525SEric.Schrock@Sun.COM if ((spa = spa_lookup(zc->zc_name)) != NULL) { 23858525SEric.Schrock@Sun.COM spa_configfile_set(spa, props, B_FALSE); 23868525SEric.Schrock@Sun.COM spa_config_sync(spa, B_FALSE, B_TRUE); 23878525SEric.Schrock@Sun.COM } 23888525SEric.Schrock@Sun.COM mutex_exit(&spa_namespace_lock); 238910672SEric.Schrock@Sun.COM if (spa != NULL) { 239010672SEric.Schrock@Sun.COM nvlist_free(props); 23918525SEric.Schrock@Sun.COM return (0); 239210672SEric.Schrock@Sun.COM } 23938525SEric.Schrock@Sun.COM } 23948525SEric.Schrock@Sun.COM 23953912Slling if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) { 23965094Slling nvlist_free(props); 23973912Slling return (error); 23983912Slling } 23993912Slling 24005094Slling error = spa_prop_set(spa, props); 24013912Slling 24025094Slling nvlist_free(props); 24033912Slling spa_close(spa, FTAG); 24043912Slling 24053912Slling return (error); 24063912Slling } 24073912Slling 24083912Slling static int 24094098Slling zfs_ioc_pool_get_props(zfs_cmd_t *zc) 24103912Slling { 24113912Slling spa_t *spa; 24123912Slling int error; 24133912Slling nvlist_t *nvp = NULL; 24143912Slling 24158525SEric.Schrock@Sun.COM if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) { 24168525SEric.Schrock@Sun.COM /* 24178525SEric.Schrock@Sun.COM * If the pool is faulted, there may be properties we can still 24188525SEric.Schrock@Sun.COM * get (such as altroot and cachefile), so attempt to get them 24198525SEric.Schrock@Sun.COM * anyway. 24208525SEric.Schrock@Sun.COM */ 24218525SEric.Schrock@Sun.COM mutex_enter(&spa_namespace_lock); 24228525SEric.Schrock@Sun.COM if ((spa = spa_lookup(zc->zc_name)) != NULL) 24238525SEric.Schrock@Sun.COM error = spa_prop_get(spa, &nvp); 24248525SEric.Schrock@Sun.COM mutex_exit(&spa_namespace_lock); 24258525SEric.Schrock@Sun.COM } else { 24268525SEric.Schrock@Sun.COM error = spa_prop_get(spa, &nvp); 24278525SEric.Schrock@Sun.COM spa_close(spa, FTAG); 24288525SEric.Schrock@Sun.COM } 24293912Slling 24303912Slling if (error == 0 && zc->zc_nvlist_dst != NULL) 24313912Slling error = put_nvlist(zc, nvp); 24323912Slling else 24333912Slling error = EFAULT; 24343912Slling 24358525SEric.Schrock@Sun.COM nvlist_free(nvp); 24363912Slling return (error); 24373912Slling } 24383912Slling 24395367Sahrens /* 24405367Sahrens * inputs: 24415367Sahrens * zc_name name of filesystem 24425367Sahrens * zc_nvlist_src{_size} nvlist of delegated permissions 24435367Sahrens * zc_perm_action allow/unallow flag 24445367Sahrens * 24455367Sahrens * outputs: none 24465367Sahrens */ 24474543Smarks static int 24484543Smarks zfs_ioc_set_fsacl(zfs_cmd_t *zc) 24494543Smarks { 24504543Smarks int error; 24514543Smarks nvlist_t *fsaclnv = NULL; 24524543Smarks 24535094Slling if ((error = get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 24549643SEric.Taylor@Sun.COM zc->zc_iflags, &fsaclnv)) != 0) 24554543Smarks return (error); 24564543Smarks 24574543Smarks /* 24584543Smarks * Verify nvlist is constructed correctly 24594543Smarks */ 24604543Smarks if ((error = zfs_deleg_verify_nvlist(fsaclnv)) != 0) { 24614543Smarks nvlist_free(fsaclnv); 24624543Smarks return (EINVAL); 24634543Smarks } 24644543Smarks 24654543Smarks /* 24664543Smarks * If we don't have PRIV_SYS_MOUNT, then validate 24674543Smarks * that user is allowed to hand out each permission in 24684543Smarks * the nvlist(s) 24694543Smarks */ 24704543Smarks 24714787Sahrens error = secpolicy_zfs(CRED()); 24724543Smarks if (error) { 24734787Sahrens if (zc->zc_perm_action == B_FALSE) { 24744787Sahrens error = dsl_deleg_can_allow(zc->zc_name, 24754787Sahrens fsaclnv, CRED()); 24764787Sahrens } else { 24774787Sahrens error = dsl_deleg_can_unallow(zc->zc_name, 24784787Sahrens fsaclnv, CRED()); 24794787Sahrens } 24804543Smarks } 24814543Smarks 24824543Smarks if (error == 0) 24834543Smarks error = dsl_deleg_set(zc->zc_name, fsaclnv, zc->zc_perm_action); 24844543Smarks 24854543Smarks nvlist_free(fsaclnv); 24864543Smarks return (error); 24874543Smarks } 24884543Smarks 24895367Sahrens /* 24905367Sahrens * inputs: 24915367Sahrens * zc_name name of filesystem 24925367Sahrens * 24935367Sahrens * outputs: 24945367Sahrens * zc_nvlist_src{_size} nvlist of delegated permissions 24955367Sahrens */ 24964543Smarks static int 24974543Smarks zfs_ioc_get_fsacl(zfs_cmd_t *zc) 24984543Smarks { 24994543Smarks nvlist_t *nvp; 25004543Smarks int error; 25014543Smarks 25024543Smarks if ((error = dsl_deleg_get(zc->zc_name, &nvp)) == 0) { 25034543Smarks error = put_nvlist(zc, nvp); 25044543Smarks nvlist_free(nvp); 25054543Smarks } 25064543Smarks 25074543Smarks return (error); 25084543Smarks } 25094543Smarks 25105367Sahrens /* 2511789Sahrens * Search the vfs list for a specified resource. Returns a pointer to it 2512789Sahrens * or NULL if no suitable entry is found. The caller of this routine 2513789Sahrens * is responsible for releasing the returned vfs pointer. 2514789Sahrens */ 2515789Sahrens static vfs_t * 2516789Sahrens zfs_get_vfs(const char *resource) 2517789Sahrens { 2518789Sahrens struct vfs *vfsp; 2519789Sahrens struct vfs *vfs_found = NULL; 2520789Sahrens 2521789Sahrens vfs_list_read_lock(); 2522789Sahrens vfsp = rootvfs; 2523789Sahrens do { 2524789Sahrens if (strcmp(refstr_value(vfsp->vfs_resource), resource) == 0) { 2525789Sahrens VFS_HOLD(vfsp); 2526789Sahrens vfs_found = vfsp; 2527789Sahrens break; 2528789Sahrens } 2529789Sahrens vfsp = vfsp->vfs_next; 2530789Sahrens } while (vfsp != rootvfs); 2531789Sahrens vfs_list_unlock(); 2532789Sahrens return (vfs_found); 2533789Sahrens } 2534789Sahrens 25354543Smarks /* ARGSUSED */ 2536789Sahrens static void 25374543Smarks zfs_create_cb(objset_t *os, void *arg, cred_t *cr, dmu_tx_t *tx) 2538789Sahrens { 25395331Samw zfs_creat_t *zct = arg; 25405498Stimh 25415498Stimh zfs_create_fs(os, cr, zct->zct_zplprops, tx); 25425331Samw } 25435331Samw 25445498Stimh #define ZFS_PROP_UNDEFINED ((uint64_t)-1) 25455498Stimh 25465331Samw /* 25475498Stimh * inputs: 25487184Stimh * createprops list of properties requested by creator 25497184Stimh * default_zplver zpl version to use if unspecified in createprops 25507184Stimh * fuids_ok fuids allowed in this version of the spa? 25517184Stimh * os parent objset pointer (NULL if root fs) 25525331Samw * 25535498Stimh * outputs: 25545498Stimh * zplprops values for the zplprops we attach to the master node object 25557184Stimh * is_ci true if requested file system will be purely case-insensitive 25565331Samw * 25575498Stimh * Determine the settings for utf8only, normalization and 25585498Stimh * casesensitivity. Specific values may have been requested by the 25595498Stimh * creator and/or we can inherit values from the parent dataset. If 25605498Stimh * the file system is of too early a vintage, a creator can not 25615498Stimh * request settings for these properties, even if the requested 25625498Stimh * setting is the default value. We don't actually want to create dsl 25635498Stimh * properties for these, so remove them from the source nvlist after 25645498Stimh * processing. 25655331Samw */ 25665331Samw static int 25679396SMatthew.Ahrens@Sun.COM zfs_fill_zplprops_impl(objset_t *os, uint64_t zplver, 256811935SMark.Shellenbaum@Sun.COM boolean_t fuids_ok, boolean_t sa_ok, nvlist_t *createprops, 256911935SMark.Shellenbaum@Sun.COM nvlist_t *zplprops, boolean_t *is_ci) 25705331Samw { 25715498Stimh uint64_t sense = ZFS_PROP_UNDEFINED; 25725498Stimh uint64_t norm = ZFS_PROP_UNDEFINED; 25735498Stimh uint64_t u8 = ZFS_PROP_UNDEFINED; 25745498Stimh 25755498Stimh ASSERT(zplprops != NULL); 25765498Stimh 25775375Stimh /* 25785498Stimh * Pull out creator prop choices, if any. 25795375Stimh */ 25805498Stimh if (createprops) { 25815498Stimh (void) nvlist_lookup_uint64(createprops, 25827184Stimh zfs_prop_to_name(ZFS_PROP_VERSION), &zplver); 25837184Stimh (void) nvlist_lookup_uint64(createprops, 25845498Stimh zfs_prop_to_name(ZFS_PROP_NORMALIZE), &norm); 25855498Stimh (void) nvlist_remove_all(createprops, 25865498Stimh zfs_prop_to_name(ZFS_PROP_NORMALIZE)); 25875498Stimh (void) nvlist_lookup_uint64(createprops, 25885498Stimh zfs_prop_to_name(ZFS_PROP_UTF8ONLY), &u8); 25895498Stimh (void) nvlist_remove_all(createprops, 25905498Stimh zfs_prop_to_name(ZFS_PROP_UTF8ONLY)); 25915498Stimh (void) nvlist_lookup_uint64(createprops, 25925498Stimh zfs_prop_to_name(ZFS_PROP_CASE), &sense); 25935498Stimh (void) nvlist_remove_all(createprops, 25945498Stimh zfs_prop_to_name(ZFS_PROP_CASE)); 25955331Samw } 25965331Samw 25975375Stimh /* 25987184Stimh * If the zpl version requested is whacky or the file system 25997184Stimh * or pool is version is too "young" to support normalization 26007184Stimh * and the creator tried to set a value for one of the props, 26017184Stimh * error out. 26025498Stimh */ 26037184Stimh if ((zplver < ZPL_VERSION_INITIAL || zplver > ZPL_VERSION) || 26047184Stimh (zplver >= ZPL_VERSION_FUID && !fuids_ok) || 260511935SMark.Shellenbaum@Sun.COM (zplver >= ZPL_VERSION_SA && !sa_ok) || 26067184Stimh (zplver < ZPL_VERSION_NORMALIZATION && 26075498Stimh (norm != ZFS_PROP_UNDEFINED || u8 != ZFS_PROP_UNDEFINED || 26087184Stimh sense != ZFS_PROP_UNDEFINED))) 26095498Stimh return (ENOTSUP); 26105498Stimh 26115498Stimh /* 26125498Stimh * Put the version in the zplprops 26135498Stimh */ 26145498Stimh VERIFY(nvlist_add_uint64(zplprops, 26155498Stimh zfs_prop_to_name(ZFS_PROP_VERSION), zplver) == 0); 26165498Stimh 26175498Stimh if (norm == ZFS_PROP_UNDEFINED) 26185498Stimh VERIFY(zfs_get_zplprop(os, ZFS_PROP_NORMALIZE, &norm) == 0); 26195498Stimh VERIFY(nvlist_add_uint64(zplprops, 26205498Stimh zfs_prop_to_name(ZFS_PROP_NORMALIZE), norm) == 0); 26215498Stimh 26225498Stimh /* 26235498Stimh * If we're normalizing, names must always be valid UTF-8 strings. 26245498Stimh */ 26255498Stimh if (norm) 26265498Stimh u8 = 1; 26275498Stimh if (u8 == ZFS_PROP_UNDEFINED) 26285498Stimh VERIFY(zfs_get_zplprop(os, ZFS_PROP_UTF8ONLY, &u8) == 0); 26295498Stimh VERIFY(nvlist_add_uint64(zplprops, 26305498Stimh zfs_prop_to_name(ZFS_PROP_UTF8ONLY), u8) == 0); 26315498Stimh 26325498Stimh if (sense == ZFS_PROP_UNDEFINED) 26335498Stimh VERIFY(zfs_get_zplprop(os, ZFS_PROP_CASE, &sense) == 0); 26345498Stimh VERIFY(nvlist_add_uint64(zplprops, 26355498Stimh zfs_prop_to_name(ZFS_PROP_CASE), sense) == 0); 26365498Stimh 26376492Stimh if (is_ci) 26386492Stimh *is_ci = (sense == ZFS_CASE_INSENSITIVE); 26396492Stimh 26407184Stimh return (0); 26417184Stimh } 26427184Stimh 26437184Stimh static int 26447184Stimh zfs_fill_zplprops(const char *dataset, nvlist_t *createprops, 26457184Stimh nvlist_t *zplprops, boolean_t *is_ci) 26467184Stimh { 264711935SMark.Shellenbaum@Sun.COM boolean_t fuids_ok, sa_ok; 26487184Stimh uint64_t zplver = ZPL_VERSION; 26497184Stimh objset_t *os = NULL; 26507184Stimh char parentname[MAXNAMELEN]; 26517184Stimh char *cp; 265211935SMark.Shellenbaum@Sun.COM spa_t *spa; 265311935SMark.Shellenbaum@Sun.COM uint64_t spa_vers; 26547184Stimh int error; 26557184Stimh 26567184Stimh (void) strlcpy(parentname, dataset, sizeof (parentname)); 26577184Stimh cp = strrchr(parentname, '/'); 26587184Stimh ASSERT(cp != NULL); 26597184Stimh cp[0] = '\0'; 26607184Stimh 266111935SMark.Shellenbaum@Sun.COM if ((error = spa_open(dataset, &spa, FTAG)) != 0) 266211935SMark.Shellenbaum@Sun.COM return (error); 266311935SMark.Shellenbaum@Sun.COM 266411935SMark.Shellenbaum@Sun.COM spa_vers = spa_version(spa); 266511935SMark.Shellenbaum@Sun.COM spa_close(spa, FTAG); 266611935SMark.Shellenbaum@Sun.COM 266711935SMark.Shellenbaum@Sun.COM zplver = zfs_zpl_version_map(spa_vers); 266811935SMark.Shellenbaum@Sun.COM fuids_ok = (zplver >= ZPL_VERSION_FUID); 266911935SMark.Shellenbaum@Sun.COM sa_ok = (zplver >= ZPL_VERSION_SA); 26707184Stimh 26717184Stimh /* 26727184Stimh * Open parent object set so we can inherit zplprop values. 26737184Stimh */ 267410298SMatthew.Ahrens@Sun.COM if ((error = dmu_objset_hold(parentname, FTAG, &os)) != 0) 26757184Stimh return (error); 26767184Stimh 267711935SMark.Shellenbaum@Sun.COM error = zfs_fill_zplprops_impl(os, zplver, fuids_ok, sa_ok, createprops, 26787184Stimh zplprops, is_ci); 267910298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 26807184Stimh return (error); 26817184Stimh } 26827184Stimh 26837184Stimh static int 26847184Stimh zfs_fill_zplprops_root(uint64_t spa_vers, nvlist_t *createprops, 26857184Stimh nvlist_t *zplprops, boolean_t *is_ci) 26867184Stimh { 268711935SMark.Shellenbaum@Sun.COM boolean_t fuids_ok; 268811935SMark.Shellenbaum@Sun.COM boolean_t sa_ok; 26897184Stimh uint64_t zplver = ZPL_VERSION; 26907184Stimh int error; 26917184Stimh 269211935SMark.Shellenbaum@Sun.COM zplver = zfs_zpl_version_map(spa_vers); 269311935SMark.Shellenbaum@Sun.COM fuids_ok = (zplver >= ZPL_VERSION_FUID); 269411935SMark.Shellenbaum@Sun.COM sa_ok = (zplver >= ZPL_VERSION_SA); 269511935SMark.Shellenbaum@Sun.COM 269611935SMark.Shellenbaum@Sun.COM error = zfs_fill_zplprops_impl(NULL, zplver, fuids_ok, sa_ok, 269711935SMark.Shellenbaum@Sun.COM createprops, zplprops, is_ci); 26987184Stimh return (error); 2699789Sahrens } 2700789Sahrens 27015367Sahrens /* 27025367Sahrens * inputs: 27035367Sahrens * zc_objset_type type of objset to create (fs vs zvol) 27045367Sahrens * zc_name name of new objset 27055367Sahrens * zc_value name of snapshot to clone from (may be empty) 27065367Sahrens * zc_nvlist_src{_size} nvlist of properties to apply 27075367Sahrens * 27085498Stimh * outputs: none 27095367Sahrens */ 2710789Sahrens static int 2711789Sahrens zfs_ioc_create(zfs_cmd_t *zc) 2712789Sahrens { 2713789Sahrens objset_t *clone; 2714789Sahrens int error = 0; 27155331Samw zfs_creat_t zct; 27164543Smarks nvlist_t *nvprops = NULL; 27174543Smarks void (*cbfunc)(objset_t *os, void *arg, cred_t *cr, dmu_tx_t *tx); 2718789Sahrens dmu_objset_type_t type = zc->zc_objset_type; 2719789Sahrens 2720789Sahrens switch (type) { 2721789Sahrens 2722789Sahrens case DMU_OST_ZFS: 2723789Sahrens cbfunc = zfs_create_cb; 2724789Sahrens break; 2725789Sahrens 2726789Sahrens case DMU_OST_ZVOL: 2727789Sahrens cbfunc = zvol_create_cb; 2728789Sahrens break; 2729789Sahrens 2730789Sahrens default: 27312199Sahrens cbfunc = NULL; 27326423Sgw25295 break; 27332199Sahrens } 27345326Sek110237 if (strchr(zc->zc_name, '@') || 27355326Sek110237 strchr(zc->zc_name, '%')) 2736789Sahrens return (EINVAL); 2737789Sahrens 27382676Seschrock if (zc->zc_nvlist_src != NULL && 27395094Slling (error = get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 27409643SEric.Taylor@Sun.COM zc->zc_iflags, &nvprops)) != 0) 27412676Seschrock return (error); 27422676Seschrock 27435498Stimh zct.zct_zplprops = NULL; 27445331Samw zct.zct_props = nvprops; 27455331Samw 27462676Seschrock if (zc->zc_value[0] != '\0') { 2747789Sahrens /* 2748789Sahrens * We're creating a clone of an existing snapshot. 2749789Sahrens */ 27502676Seschrock zc->zc_value[sizeof (zc->zc_value) - 1] = '\0'; 27512676Seschrock if (dataset_namecheck(zc->zc_value, NULL, NULL) != 0) { 27524543Smarks nvlist_free(nvprops); 2753789Sahrens return (EINVAL); 27542676Seschrock } 2755789Sahrens 275610298SMatthew.Ahrens@Sun.COM error = dmu_objset_hold(zc->zc_value, FTAG, &clone); 27572676Seschrock if (error) { 27584543Smarks nvlist_free(nvprops); 2759789Sahrens return (error); 27602676Seschrock } 27616492Stimh 276210272SMatthew.Ahrens@Sun.COM error = dmu_objset_clone(zc->zc_name, dmu_objset_ds(clone), 0); 276310298SMatthew.Ahrens@Sun.COM dmu_objset_rele(clone, FTAG); 27645331Samw if (error) { 27655331Samw nvlist_free(nvprops); 27665331Samw return (error); 27675331Samw } 2768789Sahrens } else { 27696492Stimh boolean_t is_insensitive = B_FALSE; 27706492Stimh 27712676Seschrock if (cbfunc == NULL) { 27724543Smarks nvlist_free(nvprops); 27732199Sahrens return (EINVAL); 27742676Seschrock } 27752676Seschrock 2776789Sahrens if (type == DMU_OST_ZVOL) { 27772676Seschrock uint64_t volsize, volblocksize; 27782676Seschrock 27794543Smarks if (nvprops == NULL || 27804543Smarks nvlist_lookup_uint64(nvprops, 27812676Seschrock zfs_prop_to_name(ZFS_PROP_VOLSIZE), 27822676Seschrock &volsize) != 0) { 27834543Smarks nvlist_free(nvprops); 27842676Seschrock return (EINVAL); 27852676Seschrock } 27862676Seschrock 27874543Smarks if ((error = nvlist_lookup_uint64(nvprops, 27882676Seschrock zfs_prop_to_name(ZFS_PROP_VOLBLOCKSIZE), 27892676Seschrock &volblocksize)) != 0 && error != ENOENT) { 27904543Smarks nvlist_free(nvprops); 27912676Seschrock return (EINVAL); 27922676Seschrock } 27931133Seschrock 27942676Seschrock if (error != 0) 27952676Seschrock volblocksize = zfs_prop_default_numeric( 27962676Seschrock ZFS_PROP_VOLBLOCKSIZE); 27972676Seschrock 27982676Seschrock if ((error = zvol_check_volblocksize( 27992676Seschrock volblocksize)) != 0 || 28002676Seschrock (error = zvol_check_volsize(volsize, 28012676Seschrock volblocksize)) != 0) { 28024543Smarks nvlist_free(nvprops); 2803789Sahrens return (error); 28042676Seschrock } 28054577Sahrens } else if (type == DMU_OST_ZFS) { 28065331Samw int error; 28075331Samw 28085498Stimh /* 28095331Samw * We have to have normalization and 28105331Samw * case-folding flags correct when we do the 28115331Samw * file system creation, so go figure them out 28125498Stimh * now. 28135331Samw */ 28145498Stimh VERIFY(nvlist_alloc(&zct.zct_zplprops, 28155498Stimh NV_UNIQUE_NAME, KM_SLEEP) == 0); 28165498Stimh error = zfs_fill_zplprops(zc->zc_name, nvprops, 28177184Stimh zct.zct_zplprops, &is_insensitive); 28185331Samw if (error != 0) { 28195331Samw nvlist_free(nvprops); 28205498Stimh nvlist_free(zct.zct_zplprops); 28215331Samw return (error); 28224577Sahrens } 28232676Seschrock } 282410272SMatthew.Ahrens@Sun.COM error = dmu_objset_create(zc->zc_name, type, 28256492Stimh is_insensitive ? DS_FLAG_CI_DATASET : 0, cbfunc, &zct); 28265498Stimh nvlist_free(zct.zct_zplprops); 2827789Sahrens } 28282676Seschrock 28292676Seschrock /* 28302676Seschrock * It would be nice to do this atomically. 28312676Seschrock */ 28322676Seschrock if (error == 0) { 283311022STom.Erickson@Sun.COM error = zfs_set_prop_nvlist(zc->zc_name, ZPROP_SRC_LOCAL, 283411022STom.Erickson@Sun.COM nvprops, NULL); 283511022STom.Erickson@Sun.COM if (error != 0) 283610242Schris.kirby@sun.com (void) dmu_objset_destroy(zc->zc_name, B_FALSE); 28372676Seschrock } 28384543Smarks nvlist_free(nvprops); 2839789Sahrens return (error); 2840789Sahrens } 2841789Sahrens 28425367Sahrens /* 28435367Sahrens * inputs: 28445367Sahrens * zc_name name of filesystem 28455367Sahrens * zc_value short name of snapshot 28465367Sahrens * zc_cookie recursive flag 28479396SMatthew.Ahrens@Sun.COM * zc_nvlist_src[_size] property list 28485367Sahrens * 284910588SEric.Taylor@Sun.COM * outputs: 285010588SEric.Taylor@Sun.COM * zc_value short snapname (i.e. part after the '@') 28515367Sahrens */ 2852789Sahrens static int 28532199Sahrens zfs_ioc_snapshot(zfs_cmd_t *zc) 28542199Sahrens { 28557265Sahrens nvlist_t *nvprops = NULL; 28567265Sahrens int error; 28577265Sahrens boolean_t recursive = zc->zc_cookie; 28587265Sahrens 28592676Seschrock if (snapshot_namecheck(zc->zc_value, NULL, NULL) != 0) 28602199Sahrens return (EINVAL); 28617265Sahrens 28627265Sahrens if (zc->zc_nvlist_src != NULL && 28637265Sahrens (error = get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 28649643SEric.Taylor@Sun.COM zc->zc_iflags, &nvprops)) != 0) 28657265Sahrens return (error); 28667265Sahrens 28679355SMatthew.Ahrens@Sun.COM error = zfs_check_userprops(zc->zc_name, nvprops); 28689355SMatthew.Ahrens@Sun.COM if (error) 28699355SMatthew.Ahrens@Sun.COM goto out; 28709355SMatthew.Ahrens@Sun.COM 287111022STom.Erickson@Sun.COM if (!nvlist_empty(nvprops) && 28729355SMatthew.Ahrens@Sun.COM zfs_earlier_version(zc->zc_name, SPA_VERSION_SNAP_PROPS)) { 28739355SMatthew.Ahrens@Sun.COM error = ENOTSUP; 28749355SMatthew.Ahrens@Sun.COM goto out; 28757265Sahrens } 28769355SMatthew.Ahrens@Sun.COM 28779355SMatthew.Ahrens@Sun.COM error = dmu_objset_snapshot(zc->zc_name, zc->zc_value, 28789355SMatthew.Ahrens@Sun.COM nvprops, recursive); 28799355SMatthew.Ahrens@Sun.COM 28809355SMatthew.Ahrens@Sun.COM out: 28817265Sahrens nvlist_free(nvprops); 28827265Sahrens return (error); 28832199Sahrens } 28842199Sahrens 28854007Smmusante int 288611209SMatthew.Ahrens@Sun.COM zfs_unmount_snap(const char *name, void *arg) 2887789Sahrens { 28882417Sahrens vfs_t *vfsp = NULL; 28892199Sahrens 28906689Smaybee if (arg) { 28916689Smaybee char *snapname = arg; 289211209SMatthew.Ahrens@Sun.COM char *fullname = kmem_asprintf("%s@%s", name, snapname); 289311209SMatthew.Ahrens@Sun.COM vfsp = zfs_get_vfs(fullname); 289411209SMatthew.Ahrens@Sun.COM strfree(fullname); 28952417Sahrens } else if (strchr(name, '@')) { 28962199Sahrens vfsp = zfs_get_vfs(name); 28972199Sahrens } 28982199Sahrens 28992199Sahrens if (vfsp) { 29002199Sahrens /* 29012199Sahrens * Always force the unmount for snapshots. 29022199Sahrens */ 29032199Sahrens int flag = MS_FORCE; 2904789Sahrens int err; 2905789Sahrens 29062199Sahrens if ((err = vn_vfswlock(vfsp->vfs_vnodecovered)) != 0) { 29072199Sahrens VFS_RELE(vfsp); 29082199Sahrens return (err); 29092199Sahrens } 29102199Sahrens VFS_RELE(vfsp); 29112199Sahrens if ((err = dounmount(vfsp, flag, kcred)) != 0) 29122199Sahrens return (err); 29132199Sahrens } 29142199Sahrens return (0); 29152199Sahrens } 29162199Sahrens 29175367Sahrens /* 29185367Sahrens * inputs: 291910242Schris.kirby@sun.com * zc_name name of filesystem 292010242Schris.kirby@sun.com * zc_value short name of snapshot 292110242Schris.kirby@sun.com * zc_defer_destroy mark for deferred destroy 29225367Sahrens * 29235367Sahrens * outputs: none 29245367Sahrens */ 29252199Sahrens static int 29262199Sahrens zfs_ioc_destroy_snaps(zfs_cmd_t *zc) 29272199Sahrens { 29282199Sahrens int err; 2929789Sahrens 29302676Seschrock if (snapshot_namecheck(zc->zc_value, NULL, NULL) != 0) 29312199Sahrens return (EINVAL); 29322199Sahrens err = dmu_objset_find(zc->zc_name, 29332676Seschrock zfs_unmount_snap, zc->zc_value, DS_FIND_CHILDREN); 29342199Sahrens if (err) 29352199Sahrens return (err); 293610242Schris.kirby@sun.com return (dmu_snapshots_destroy(zc->zc_name, zc->zc_value, 293710242Schris.kirby@sun.com zc->zc_defer_destroy)); 29382199Sahrens } 29392199Sahrens 29405367Sahrens /* 29415367Sahrens * inputs: 29425367Sahrens * zc_name name of dataset to destroy 29435367Sahrens * zc_objset_type type of objset 294410242Schris.kirby@sun.com * zc_defer_destroy mark for deferred destroy 29455367Sahrens * 29465367Sahrens * outputs: none 29475367Sahrens */ 29482199Sahrens static int 29492199Sahrens zfs_ioc_destroy(zfs_cmd_t *zc) 29502199Sahrens { 295110588SEric.Taylor@Sun.COM int err; 29522199Sahrens if (strchr(zc->zc_name, '@') && zc->zc_objset_type == DMU_OST_ZFS) { 295310588SEric.Taylor@Sun.COM err = zfs_unmount_snap(zc->zc_name, NULL); 29542199Sahrens if (err) 29552199Sahrens return (err); 2956789Sahrens } 2957789Sahrens 295810588SEric.Taylor@Sun.COM err = dmu_objset_destroy(zc->zc_name, zc->zc_defer_destroy); 295910588SEric.Taylor@Sun.COM if (zc->zc_objset_type == DMU_OST_ZVOL && err == 0) 296010693Schris.kirby@sun.com (void) zvol_remove_minor(zc->zc_name); 296110588SEric.Taylor@Sun.COM return (err); 2962789Sahrens } 2963789Sahrens 29645367Sahrens /* 29655367Sahrens * inputs: 29665446Sahrens * zc_name name of dataset to rollback (to most recent snapshot) 29675367Sahrens * 29685367Sahrens * outputs: none 29695367Sahrens */ 2970789Sahrens static int 2971789Sahrens zfs_ioc_rollback(zfs_cmd_t *zc) 2972789Sahrens { 297310272SMatthew.Ahrens@Sun.COM dsl_dataset_t *ds, *clone; 29745446Sahrens int error; 297510272SMatthew.Ahrens@Sun.COM zfsvfs_t *zfsvfs; 297610272SMatthew.Ahrens@Sun.COM char *clone_name; 297710272SMatthew.Ahrens@Sun.COM 297810272SMatthew.Ahrens@Sun.COM error = dsl_dataset_hold(zc->zc_name, FTAG, &ds); 297910272SMatthew.Ahrens@Sun.COM if (error) 298010272SMatthew.Ahrens@Sun.COM return (error); 298110272SMatthew.Ahrens@Sun.COM 298210272SMatthew.Ahrens@Sun.COM /* must not be a snapshot */ 298310272SMatthew.Ahrens@Sun.COM if (dsl_dataset_is_snapshot(ds)) { 298410272SMatthew.Ahrens@Sun.COM dsl_dataset_rele(ds, FTAG); 298510272SMatthew.Ahrens@Sun.COM return (EINVAL); 298610272SMatthew.Ahrens@Sun.COM } 298710272SMatthew.Ahrens@Sun.COM 298810272SMatthew.Ahrens@Sun.COM /* must have a most recent snapshot */ 298910272SMatthew.Ahrens@Sun.COM if (ds->ds_phys->ds_prev_snap_txg < TXG_INITIAL) { 299010272SMatthew.Ahrens@Sun.COM dsl_dataset_rele(ds, FTAG); 299110272SMatthew.Ahrens@Sun.COM return (EINVAL); 299210272SMatthew.Ahrens@Sun.COM } 29935446Sahrens 29945446Sahrens /* 299510272SMatthew.Ahrens@Sun.COM * Create clone of most recent snapshot. 29965446Sahrens */ 299710272SMatthew.Ahrens@Sun.COM clone_name = kmem_asprintf("%s/%%rollback", zc->zc_name); 299810272SMatthew.Ahrens@Sun.COM error = dmu_objset_clone(clone_name, ds->ds_prev, DS_FLAG_INCONSISTENT); 29995446Sahrens if (error) 300010272SMatthew.Ahrens@Sun.COM goto out; 300110272SMatthew.Ahrens@Sun.COM 300210298SMatthew.Ahrens@Sun.COM error = dsl_dataset_own(clone_name, B_TRUE, FTAG, &clone); 300310272SMatthew.Ahrens@Sun.COM if (error) 300410272SMatthew.Ahrens@Sun.COM goto out; 300510272SMatthew.Ahrens@Sun.COM 300610272SMatthew.Ahrens@Sun.COM /* 300710272SMatthew.Ahrens@Sun.COM * Do clone swap. 300810272SMatthew.Ahrens@Sun.COM */ 30099396SMatthew.Ahrens@Sun.COM if (getzfsvfs(zc->zc_name, &zfsvfs) == 0) { 301010298SMatthew.Ahrens@Sun.COM error = zfs_suspend_fs(zfsvfs); 30116083Sek110237 if (error == 0) { 30126083Sek110237 int resume_err; 30136083Sek110237 301410272SMatthew.Ahrens@Sun.COM if (dsl_dataset_tryown(ds, B_FALSE, FTAG)) { 301510272SMatthew.Ahrens@Sun.COM error = dsl_dataset_clone_swap(clone, ds, 301610272SMatthew.Ahrens@Sun.COM B_TRUE); 301710272SMatthew.Ahrens@Sun.COM dsl_dataset_disown(ds, FTAG); 301810272SMatthew.Ahrens@Sun.COM ds = NULL; 301910272SMatthew.Ahrens@Sun.COM } else { 302010272SMatthew.Ahrens@Sun.COM error = EBUSY; 302110272SMatthew.Ahrens@Sun.COM } 302210298SMatthew.Ahrens@Sun.COM resume_err = zfs_resume_fs(zfsvfs, zc->zc_name); 30236083Sek110237 error = error ? error : resume_err; 30246083Sek110237 } 30255446Sahrens VFS_RELE(zfsvfs->z_vfs); 30265446Sahrens } else { 302710272SMatthew.Ahrens@Sun.COM if (dsl_dataset_tryown(ds, B_FALSE, FTAG)) { 302810272SMatthew.Ahrens@Sun.COM error = dsl_dataset_clone_swap(clone, ds, B_TRUE); 302910272SMatthew.Ahrens@Sun.COM dsl_dataset_disown(ds, FTAG); 303010272SMatthew.Ahrens@Sun.COM ds = NULL; 303110272SMatthew.Ahrens@Sun.COM } else { 303210272SMatthew.Ahrens@Sun.COM error = EBUSY; 303310272SMatthew.Ahrens@Sun.COM } 30345446Sahrens } 303510272SMatthew.Ahrens@Sun.COM 303610272SMatthew.Ahrens@Sun.COM /* 303710272SMatthew.Ahrens@Sun.COM * Destroy clone (which also closes it). 303810272SMatthew.Ahrens@Sun.COM */ 303910272SMatthew.Ahrens@Sun.COM (void) dsl_dataset_destroy(clone, FTAG, B_FALSE); 304010272SMatthew.Ahrens@Sun.COM 304110272SMatthew.Ahrens@Sun.COM out: 304210272SMatthew.Ahrens@Sun.COM strfree(clone_name); 304310272SMatthew.Ahrens@Sun.COM if (ds) 304410272SMatthew.Ahrens@Sun.COM dsl_dataset_rele(ds, FTAG); 30455446Sahrens return (error); 3046789Sahrens } 3047789Sahrens 30485367Sahrens /* 30495367Sahrens * inputs: 30505367Sahrens * zc_name old name of dataset 30515367Sahrens * zc_value new name of dataset 30525367Sahrens * zc_cookie recursive flag (only valid for snapshots) 30535367Sahrens * 30545367Sahrens * outputs: none 30555367Sahrens */ 3056789Sahrens static int 3057789Sahrens zfs_ioc_rename(zfs_cmd_t *zc) 3058789Sahrens { 30594490Svb160487 boolean_t recursive = zc->zc_cookie & 1; 30604007Smmusante 30612676Seschrock zc->zc_value[sizeof (zc->zc_value) - 1] = '\0'; 30625326Sek110237 if (dataset_namecheck(zc->zc_value, NULL, NULL) != 0 || 30635326Sek110237 strchr(zc->zc_value, '%')) 3064789Sahrens return (EINVAL); 3065789Sahrens 30664007Smmusante /* 30674007Smmusante * Unmount snapshot unless we're doing a recursive rename, 30684007Smmusante * in which case the dataset code figures out which snapshots 30694007Smmusante * to unmount. 30704007Smmusante */ 30714007Smmusante if (!recursive && strchr(zc->zc_name, '@') != NULL && 3072789Sahrens zc->zc_objset_type == DMU_OST_ZFS) { 30732199Sahrens int err = zfs_unmount_snap(zc->zc_name, NULL); 30742199Sahrens if (err) 30752199Sahrens return (err); 3076789Sahrens } 307710588SEric.Taylor@Sun.COM if (zc->zc_objset_type == DMU_OST_ZVOL) 307810588SEric.Taylor@Sun.COM (void) zvol_remove_minor(zc->zc_name); 30794007Smmusante return (dmu_objset_rename(zc->zc_name, zc->zc_value, recursive)); 3080789Sahrens } 3081789Sahrens 308211022STom.Erickson@Sun.COM static int 308311022STom.Erickson@Sun.COM zfs_check_settable(const char *dsname, nvpair_t *pair, cred_t *cr) 308411022STom.Erickson@Sun.COM { 308511022STom.Erickson@Sun.COM const char *propname = nvpair_name(pair); 308611022STom.Erickson@Sun.COM boolean_t issnap = (strchr(dsname, '@') != NULL); 308711022STom.Erickson@Sun.COM zfs_prop_t prop = zfs_name_to_prop(propname); 308811022STom.Erickson@Sun.COM uint64_t intval; 308911022STom.Erickson@Sun.COM int err; 309011022STom.Erickson@Sun.COM 309111022STom.Erickson@Sun.COM if (prop == ZPROP_INVAL) { 309211022STom.Erickson@Sun.COM if (zfs_prop_user(propname)) { 309311022STom.Erickson@Sun.COM if (err = zfs_secpolicy_write_perms(dsname, 309411022STom.Erickson@Sun.COM ZFS_DELEG_PERM_USERPROP, cr)) 309511022STom.Erickson@Sun.COM return (err); 309611022STom.Erickson@Sun.COM return (0); 309711022STom.Erickson@Sun.COM } 309811022STom.Erickson@Sun.COM 309911022STom.Erickson@Sun.COM if (!issnap && zfs_prop_userquota(propname)) { 310011022STom.Erickson@Sun.COM const char *perm = NULL; 310111022STom.Erickson@Sun.COM const char *uq_prefix = 310211022STom.Erickson@Sun.COM zfs_userquota_prop_prefixes[ZFS_PROP_USERQUOTA]; 310311022STom.Erickson@Sun.COM const char *gq_prefix = 310411022STom.Erickson@Sun.COM zfs_userquota_prop_prefixes[ZFS_PROP_GROUPQUOTA]; 310511022STom.Erickson@Sun.COM 310611022STom.Erickson@Sun.COM if (strncmp(propname, uq_prefix, 310711022STom.Erickson@Sun.COM strlen(uq_prefix)) == 0) { 310811022STom.Erickson@Sun.COM perm = ZFS_DELEG_PERM_USERQUOTA; 310911022STom.Erickson@Sun.COM } else if (strncmp(propname, gq_prefix, 311011022STom.Erickson@Sun.COM strlen(gq_prefix)) == 0) { 311111022STom.Erickson@Sun.COM perm = ZFS_DELEG_PERM_GROUPQUOTA; 311211022STom.Erickson@Sun.COM } else { 311311022STom.Erickson@Sun.COM /* USERUSED and GROUPUSED are read-only */ 311411022STom.Erickson@Sun.COM return (EINVAL); 311511022STom.Erickson@Sun.COM } 311611022STom.Erickson@Sun.COM 311711022STom.Erickson@Sun.COM if (err = zfs_secpolicy_write_perms(dsname, perm, cr)) 311811022STom.Erickson@Sun.COM return (err); 311911022STom.Erickson@Sun.COM return (0); 312011022STom.Erickson@Sun.COM } 312111022STom.Erickson@Sun.COM 312211022STom.Erickson@Sun.COM return (EINVAL); 312311022STom.Erickson@Sun.COM } 312411022STom.Erickson@Sun.COM 312511022STom.Erickson@Sun.COM if (issnap) 312611022STom.Erickson@Sun.COM return (EINVAL); 312711022STom.Erickson@Sun.COM 312811022STom.Erickson@Sun.COM if (nvpair_type(pair) == DATA_TYPE_NVLIST) { 312911022STom.Erickson@Sun.COM /* 313011022STom.Erickson@Sun.COM * dsl_prop_get_all_impl() returns properties in this 313111022STom.Erickson@Sun.COM * format. 313211022STom.Erickson@Sun.COM */ 313311022STom.Erickson@Sun.COM nvlist_t *attrs; 313411022STom.Erickson@Sun.COM VERIFY(nvpair_value_nvlist(pair, &attrs) == 0); 313511022STom.Erickson@Sun.COM VERIFY(nvlist_lookup_nvpair(attrs, ZPROP_VALUE, 313611022STom.Erickson@Sun.COM &pair) == 0); 313711022STom.Erickson@Sun.COM } 313811022STom.Erickson@Sun.COM 313911022STom.Erickson@Sun.COM /* 314011022STom.Erickson@Sun.COM * Check that this value is valid for this pool version 314111022STom.Erickson@Sun.COM */ 314211022STom.Erickson@Sun.COM switch (prop) { 314311022STom.Erickson@Sun.COM case ZFS_PROP_COMPRESSION: 314411022STom.Erickson@Sun.COM /* 314511022STom.Erickson@Sun.COM * If the user specified gzip compression, make sure 314611022STom.Erickson@Sun.COM * the SPA supports it. We ignore any errors here since 314711022STom.Erickson@Sun.COM * we'll catch them later. 314811022STom.Erickson@Sun.COM */ 314911022STom.Erickson@Sun.COM if (nvpair_type(pair) == DATA_TYPE_UINT64 && 315011022STom.Erickson@Sun.COM nvpair_value_uint64(pair, &intval) == 0) { 315111022STom.Erickson@Sun.COM if (intval >= ZIO_COMPRESS_GZIP_1 && 315211022STom.Erickson@Sun.COM intval <= ZIO_COMPRESS_GZIP_9 && 315311022STom.Erickson@Sun.COM zfs_earlier_version(dsname, 315411022STom.Erickson@Sun.COM SPA_VERSION_GZIP_COMPRESSION)) { 315511022STom.Erickson@Sun.COM return (ENOTSUP); 315611022STom.Erickson@Sun.COM } 315711022STom.Erickson@Sun.COM 315811022STom.Erickson@Sun.COM if (intval == ZIO_COMPRESS_ZLE && 315911022STom.Erickson@Sun.COM zfs_earlier_version(dsname, 316011022STom.Erickson@Sun.COM SPA_VERSION_ZLE_COMPRESSION)) 316111022STom.Erickson@Sun.COM return (ENOTSUP); 316211022STom.Erickson@Sun.COM 316311022STom.Erickson@Sun.COM /* 316411022STom.Erickson@Sun.COM * If this is a bootable dataset then 316511022STom.Erickson@Sun.COM * verify that the compression algorithm 316611022STom.Erickson@Sun.COM * is supported for booting. We must return 316711022STom.Erickson@Sun.COM * something other than ENOTSUP since it 316811022STom.Erickson@Sun.COM * implies a downrev pool version. 316911022STom.Erickson@Sun.COM */ 317011022STom.Erickson@Sun.COM if (zfs_is_bootfs(dsname) && 317111022STom.Erickson@Sun.COM !BOOTFS_COMPRESS_VALID(intval)) { 317211022STom.Erickson@Sun.COM return (ERANGE); 317311022STom.Erickson@Sun.COM } 317411022STom.Erickson@Sun.COM } 317511022STom.Erickson@Sun.COM break; 317611022STom.Erickson@Sun.COM 317711022STom.Erickson@Sun.COM case ZFS_PROP_COPIES: 317811022STom.Erickson@Sun.COM if (zfs_earlier_version(dsname, SPA_VERSION_DITTO_BLOCKS)) 317911022STom.Erickson@Sun.COM return (ENOTSUP); 318011022STom.Erickson@Sun.COM break; 318111022STom.Erickson@Sun.COM 318211022STom.Erickson@Sun.COM case ZFS_PROP_DEDUP: 318311022STom.Erickson@Sun.COM if (zfs_earlier_version(dsname, SPA_VERSION_DEDUP)) 318411022STom.Erickson@Sun.COM return (ENOTSUP); 318511022STom.Erickson@Sun.COM break; 318611022STom.Erickson@Sun.COM 318711022STom.Erickson@Sun.COM case ZFS_PROP_SHARESMB: 318811022STom.Erickson@Sun.COM if (zpl_earlier_version(dsname, ZPL_VERSION_FUID)) 318911022STom.Erickson@Sun.COM return (ENOTSUP); 319011022STom.Erickson@Sun.COM break; 319111022STom.Erickson@Sun.COM 319211022STom.Erickson@Sun.COM case ZFS_PROP_ACLINHERIT: 319311022STom.Erickson@Sun.COM if (nvpair_type(pair) == DATA_TYPE_UINT64 && 319411022STom.Erickson@Sun.COM nvpair_value_uint64(pair, &intval) == 0) { 319511022STom.Erickson@Sun.COM if (intval == ZFS_ACL_PASSTHROUGH_X && 319611022STom.Erickson@Sun.COM zfs_earlier_version(dsname, 319711022STom.Erickson@Sun.COM SPA_VERSION_PASSTHROUGH_X)) 319811022STom.Erickson@Sun.COM return (ENOTSUP); 319911022STom.Erickson@Sun.COM } 320011022STom.Erickson@Sun.COM break; 320111022STom.Erickson@Sun.COM } 320211022STom.Erickson@Sun.COM 320311022STom.Erickson@Sun.COM return (zfs_secpolicy_setprop(dsname, prop, pair, CRED())); 320411022STom.Erickson@Sun.COM } 320511022STom.Erickson@Sun.COM 320611022STom.Erickson@Sun.COM /* 320711022STom.Erickson@Sun.COM * Removes properties from the given props list that fail permission checks 320811022STom.Erickson@Sun.COM * needed to clear them and to restore them in case of a receive error. For each 320911022STom.Erickson@Sun.COM * property, make sure we have both set and inherit permissions. 321011022STom.Erickson@Sun.COM * 321111022STom.Erickson@Sun.COM * Returns the first error encountered if any permission checks fail. If the 321211022STom.Erickson@Sun.COM * caller provides a non-NULL errlist, it also gives the complete list of names 321311022STom.Erickson@Sun.COM * of all the properties that failed a permission check along with the 321411022STom.Erickson@Sun.COM * corresponding error numbers. The caller is responsible for freeing the 321511022STom.Erickson@Sun.COM * returned errlist. 321611022STom.Erickson@Sun.COM * 321711022STom.Erickson@Sun.COM * If every property checks out successfully, zero is returned and the list 321811022STom.Erickson@Sun.COM * pointed at by errlist is NULL. 321911022STom.Erickson@Sun.COM */ 322011022STom.Erickson@Sun.COM static int 322111022STom.Erickson@Sun.COM zfs_check_clearable(char *dataset, nvlist_t *props, nvlist_t **errlist) 32226689Smaybee { 32236689Smaybee zfs_cmd_t *zc; 322411022STom.Erickson@Sun.COM nvpair_t *pair, *next_pair; 322511022STom.Erickson@Sun.COM nvlist_t *errors; 322611022STom.Erickson@Sun.COM int err, rv = 0; 32276689Smaybee 32286689Smaybee if (props == NULL) 322911022STom.Erickson@Sun.COM return (0); 323011022STom.Erickson@Sun.COM 323111022STom.Erickson@Sun.COM VERIFY(nvlist_alloc(&errors, NV_UNIQUE_NAME, KM_SLEEP) == 0); 323211022STom.Erickson@Sun.COM 32336689Smaybee zc = kmem_alloc(sizeof (zfs_cmd_t), KM_SLEEP); 32346689Smaybee (void) strcpy(zc->zc_name, dataset); 323511022STom.Erickson@Sun.COM pair = nvlist_next_nvpair(props, NULL); 323611022STom.Erickson@Sun.COM while (pair != NULL) { 323711022STom.Erickson@Sun.COM next_pair = nvlist_next_nvpair(props, pair); 323811022STom.Erickson@Sun.COM 323911022STom.Erickson@Sun.COM (void) strcpy(zc->zc_value, nvpair_name(pair)); 324011022STom.Erickson@Sun.COM if ((err = zfs_check_settable(dataset, pair, CRED())) != 0 || 324111022STom.Erickson@Sun.COM (err = zfs_secpolicy_inherit(zc, CRED())) != 0) { 324211022STom.Erickson@Sun.COM VERIFY(nvlist_remove_nvpair(props, pair) == 0); 324311022STom.Erickson@Sun.COM VERIFY(nvlist_add_int32(errors, 324411022STom.Erickson@Sun.COM zc->zc_value, err) == 0); 324511022STom.Erickson@Sun.COM } 324611022STom.Erickson@Sun.COM pair = next_pair; 32476689Smaybee } 32486689Smaybee kmem_free(zc, sizeof (zfs_cmd_t)); 324911022STom.Erickson@Sun.COM 325011022STom.Erickson@Sun.COM if ((pair = nvlist_next_nvpair(errors, NULL)) == NULL) { 325111022STom.Erickson@Sun.COM nvlist_free(errors); 325211022STom.Erickson@Sun.COM errors = NULL; 325311022STom.Erickson@Sun.COM } else { 325411022STom.Erickson@Sun.COM VERIFY(nvpair_value_int32(pair, &rv) == 0); 325511022STom.Erickson@Sun.COM } 325611022STom.Erickson@Sun.COM 325711022STom.Erickson@Sun.COM if (errlist == NULL) 325811022STom.Erickson@Sun.COM nvlist_free(errors); 325911022STom.Erickson@Sun.COM else 326011022STom.Erickson@Sun.COM *errlist = errors; 326111022STom.Erickson@Sun.COM 326211022STom.Erickson@Sun.COM return (rv); 32636689Smaybee } 32646689Smaybee 326511022STom.Erickson@Sun.COM static boolean_t 326611022STom.Erickson@Sun.COM propval_equals(nvpair_t *p1, nvpair_t *p2) 326711022STom.Erickson@Sun.COM { 326811022STom.Erickson@Sun.COM if (nvpair_type(p1) == DATA_TYPE_NVLIST) { 326911022STom.Erickson@Sun.COM /* dsl_prop_get_all_impl() format */ 327011022STom.Erickson@Sun.COM nvlist_t *attrs; 327111022STom.Erickson@Sun.COM VERIFY(nvpair_value_nvlist(p1, &attrs) == 0); 327211022STom.Erickson@Sun.COM VERIFY(nvlist_lookup_nvpair(attrs, ZPROP_VALUE, 327311022STom.Erickson@Sun.COM &p1) == 0); 327411022STom.Erickson@Sun.COM } 327511022STom.Erickson@Sun.COM 327611022STom.Erickson@Sun.COM if (nvpair_type(p2) == DATA_TYPE_NVLIST) { 327711022STom.Erickson@Sun.COM nvlist_t *attrs; 327811022STom.Erickson@Sun.COM VERIFY(nvpair_value_nvlist(p2, &attrs) == 0); 327911022STom.Erickson@Sun.COM VERIFY(nvlist_lookup_nvpair(attrs, ZPROP_VALUE, 328011022STom.Erickson@Sun.COM &p2) == 0); 328111022STom.Erickson@Sun.COM } 328211022STom.Erickson@Sun.COM 328311022STom.Erickson@Sun.COM if (nvpair_type(p1) != nvpair_type(p2)) 328411022STom.Erickson@Sun.COM return (B_FALSE); 328511022STom.Erickson@Sun.COM 328611022STom.Erickson@Sun.COM if (nvpair_type(p1) == DATA_TYPE_STRING) { 328711022STom.Erickson@Sun.COM char *valstr1, *valstr2; 328811022STom.Erickson@Sun.COM 328911022STom.Erickson@Sun.COM VERIFY(nvpair_value_string(p1, (char **)&valstr1) == 0); 329011022STom.Erickson@Sun.COM VERIFY(nvpair_value_string(p2, (char **)&valstr2) == 0); 329111022STom.Erickson@Sun.COM return (strcmp(valstr1, valstr2) == 0); 329211022STom.Erickson@Sun.COM } else { 329311022STom.Erickson@Sun.COM uint64_t intval1, intval2; 329411022STom.Erickson@Sun.COM 329511022STom.Erickson@Sun.COM VERIFY(nvpair_value_uint64(p1, &intval1) == 0); 329611022STom.Erickson@Sun.COM VERIFY(nvpair_value_uint64(p2, &intval2) == 0); 329711022STom.Erickson@Sun.COM return (intval1 == intval2); 329811022STom.Erickson@Sun.COM } 329911022STom.Erickson@Sun.COM } 330011022STom.Erickson@Sun.COM 330111022STom.Erickson@Sun.COM /* 330211022STom.Erickson@Sun.COM * Remove properties from props if they are not going to change (as determined 330311022STom.Erickson@Sun.COM * by comparison with origprops). Remove them from origprops as well, since we 330411022STom.Erickson@Sun.COM * do not need to clear or restore properties that won't change. 330511022STom.Erickson@Sun.COM */ 330611022STom.Erickson@Sun.COM static void 330711022STom.Erickson@Sun.COM props_reduce(nvlist_t *props, nvlist_t *origprops) 330811022STom.Erickson@Sun.COM { 330911022STom.Erickson@Sun.COM nvpair_t *pair, *next_pair; 331011022STom.Erickson@Sun.COM 331111022STom.Erickson@Sun.COM if (origprops == NULL) 331211022STom.Erickson@Sun.COM return; /* all props need to be received */ 331311022STom.Erickson@Sun.COM 331411022STom.Erickson@Sun.COM pair = nvlist_next_nvpair(props, NULL); 331511022STom.Erickson@Sun.COM while (pair != NULL) { 331611022STom.Erickson@Sun.COM const char *propname = nvpair_name(pair); 331711022STom.Erickson@Sun.COM nvpair_t *match; 331811022STom.Erickson@Sun.COM 331911022STom.Erickson@Sun.COM next_pair = nvlist_next_nvpair(props, pair); 332011022STom.Erickson@Sun.COM 332111022STom.Erickson@Sun.COM if ((nvlist_lookup_nvpair(origprops, propname, 332211022STom.Erickson@Sun.COM &match) != 0) || !propval_equals(pair, match)) 332311022STom.Erickson@Sun.COM goto next; /* need to set received value */ 332411022STom.Erickson@Sun.COM 332511022STom.Erickson@Sun.COM /* don't clear the existing received value */ 332611022STom.Erickson@Sun.COM (void) nvlist_remove_nvpair(origprops, match); 332711022STom.Erickson@Sun.COM /* don't bother receiving the property */ 332811022STom.Erickson@Sun.COM (void) nvlist_remove_nvpair(props, pair); 332911022STom.Erickson@Sun.COM next: 333011022STom.Erickson@Sun.COM pair = next_pair; 333111022STom.Erickson@Sun.COM } 333211022STom.Erickson@Sun.COM } 333311022STom.Erickson@Sun.COM 333411022STom.Erickson@Sun.COM #ifdef DEBUG 333511022STom.Erickson@Sun.COM static boolean_t zfs_ioc_recv_inject_err; 333611022STom.Erickson@Sun.COM #endif 333711022STom.Erickson@Sun.COM 33385367Sahrens /* 33395367Sahrens * inputs: 33405367Sahrens * zc_name name of containing filesystem 33415367Sahrens * zc_nvlist_src{_size} nvlist of properties to apply 33425367Sahrens * zc_value name of snapshot to create 33435367Sahrens * zc_string name of clone origin (if DRR_FLAG_CLONE) 33445367Sahrens * zc_cookie file descriptor to recv from 33455367Sahrens * zc_begin_record the BEGIN record of the stream (not byteswapped) 33465367Sahrens * zc_guid force flag 334712527SChris.Kirby@oracle.com * zc_cleanup_fd cleanup-on-exit file descriptor 334812527SChris.Kirby@oracle.com * zc_action_handle handle for this guid/ds mapping (or zero on first call) 33495367Sahrens * 33505367Sahrens * outputs: 33515367Sahrens * zc_cookie number of bytes read 335211022STom.Erickson@Sun.COM * zc_nvlist_dst{_size} error for each unapplied received property 335311022STom.Erickson@Sun.COM * zc_obj zprop_errflags_t 335412527SChris.Kirby@oracle.com * zc_action_handle handle for this guid/ds mapping 33555367Sahrens */ 3356789Sahrens static int 33575367Sahrens zfs_ioc_recv(zfs_cmd_t *zc) 3358789Sahrens { 3359789Sahrens file_t *fp; 33605326Sek110237 objset_t *os; 33615367Sahrens dmu_recv_cookie_t drc; 33625326Sek110237 boolean_t force = (boolean_t)zc->zc_guid; 336311022STom.Erickson@Sun.COM int fd; 336411022STom.Erickson@Sun.COM int error = 0; 336511022STom.Erickson@Sun.COM int props_error = 0; 336611022STom.Erickson@Sun.COM nvlist_t *errors; 33675367Sahrens offset_t off; 336811022STom.Erickson@Sun.COM nvlist_t *props = NULL; /* sent properties */ 336911022STom.Erickson@Sun.COM nvlist_t *origprops = NULL; /* existing properties */ 33705367Sahrens objset_t *origin = NULL; 33715367Sahrens char *tosnap; 33725367Sahrens char tofs[ZFS_MAXNAMELEN]; 337311022STom.Erickson@Sun.COM boolean_t first_recvd_props = B_FALSE; 3374789Sahrens 33753265Sahrens if (dataset_namecheck(zc->zc_value, NULL, NULL) != 0 || 33765326Sek110237 strchr(zc->zc_value, '@') == NULL || 33775326Sek110237 strchr(zc->zc_value, '%')) 33783265Sahrens return (EINVAL); 33793265Sahrens 33805367Sahrens (void) strcpy(tofs, zc->zc_value); 33815367Sahrens tosnap = strchr(tofs, '@'); 338211022STom.Erickson@Sun.COM *tosnap++ = '\0'; 33835367Sahrens 33845367Sahrens if (zc->zc_nvlist_src != NULL && 33855367Sahrens (error = get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 33869643SEric.Taylor@Sun.COM zc->zc_iflags, &props)) != 0) 33875367Sahrens return (error); 33885367Sahrens 3389789Sahrens fd = zc->zc_cookie; 3390789Sahrens fp = getf(fd); 33915367Sahrens if (fp == NULL) { 33925367Sahrens nvlist_free(props); 3393789Sahrens return (EBADF); 33945367Sahrens } 33955326Sek110237 339611022STom.Erickson@Sun.COM VERIFY(nvlist_alloc(&errors, NV_UNIQUE_NAME, KM_SLEEP) == 0); 339711022STom.Erickson@Sun.COM 339810298SMatthew.Ahrens@Sun.COM if (props && dmu_objset_hold(tofs, FTAG, &os) == 0) { 339911022STom.Erickson@Sun.COM if ((spa_version(os->os_spa) >= SPA_VERSION_RECVD_PROPS) && 340011022STom.Erickson@Sun.COM !dsl_prop_get_hasrecvd(os)) { 340111022STom.Erickson@Sun.COM first_recvd_props = B_TRUE; 340211022STom.Erickson@Sun.COM } 340311022STom.Erickson@Sun.COM 34046689Smaybee /* 340511022STom.Erickson@Sun.COM * If new received properties are supplied, they are to 340611022STom.Erickson@Sun.COM * completely replace the existing received properties, so stash 340711022STom.Erickson@Sun.COM * away the existing ones. 34086689Smaybee */ 340911022STom.Erickson@Sun.COM if (dsl_prop_get_received(os, &origprops) == 0) { 341011022STom.Erickson@Sun.COM nvlist_t *errlist = NULL; 341111022STom.Erickson@Sun.COM /* 341211022STom.Erickson@Sun.COM * Don't bother writing a property if its value won't 341311022STom.Erickson@Sun.COM * change (and avoid the unnecessary security checks). 341411022STom.Erickson@Sun.COM * 341511022STom.Erickson@Sun.COM * The first receive after SPA_VERSION_RECVD_PROPS is a 341611022STom.Erickson@Sun.COM * special case where we blow away all local properties 341711022STom.Erickson@Sun.COM * regardless. 341811022STom.Erickson@Sun.COM */ 341911022STom.Erickson@Sun.COM if (!first_recvd_props) 342011022STom.Erickson@Sun.COM props_reduce(props, origprops); 342111022STom.Erickson@Sun.COM if (zfs_check_clearable(tofs, origprops, 342211022STom.Erickson@Sun.COM &errlist) != 0) 342311022STom.Erickson@Sun.COM (void) nvlist_merge(errors, errlist, 0); 342411022STom.Erickson@Sun.COM nvlist_free(errlist); 342511022STom.Erickson@Sun.COM } 342610298SMatthew.Ahrens@Sun.COM 342710298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 34285326Sek110237 } 34295326Sek110237 34305367Sahrens if (zc->zc_string[0]) { 343110298SMatthew.Ahrens@Sun.COM error = dmu_objset_hold(zc->zc_string, FTAG, &origin); 34326689Smaybee if (error) 34336689Smaybee goto out; 34345367Sahrens } 34355367Sahrens 343611007SLori.Alt@Sun.COM error = dmu_recv_begin(tofs, tosnap, zc->zc_top_ds, 343711007SLori.Alt@Sun.COM &zc->zc_begin_record, force, origin, &drc); 34385367Sahrens if (origin) 343910298SMatthew.Ahrens@Sun.COM dmu_objset_rele(origin, FTAG); 34406689Smaybee if (error) 34416689Smaybee goto out; 34425326Sek110237 34435326Sek110237 /* 344411022STom.Erickson@Sun.COM * Set properties before we receive the stream so that they are applied 344511022STom.Erickson@Sun.COM * to the new data. Note that we must call dmu_recv_stream() if 344611022STom.Erickson@Sun.COM * dmu_recv_begin() succeeds. 34475326Sek110237 */ 34485367Sahrens if (props) { 344911022STom.Erickson@Sun.COM nvlist_t *errlist; 345011022STom.Erickson@Sun.COM 345111022STom.Erickson@Sun.COM if (dmu_objset_from_ds(drc.drc_logical_ds, &os) == 0) { 345211022STom.Erickson@Sun.COM if (drc.drc_newfs) { 345311022STom.Erickson@Sun.COM if (spa_version(os->os_spa) >= 345411022STom.Erickson@Sun.COM SPA_VERSION_RECVD_PROPS) 345511022STom.Erickson@Sun.COM first_recvd_props = B_TRUE; 345611022STom.Erickson@Sun.COM } else if (origprops != NULL) { 345711022STom.Erickson@Sun.COM if (clear_received_props(os, tofs, origprops, 345811022STom.Erickson@Sun.COM first_recvd_props ? NULL : props) != 0) 345911022STom.Erickson@Sun.COM zc->zc_obj |= ZPROP_ERR_NOCLEAR; 346011022STom.Erickson@Sun.COM } else { 346111022STom.Erickson@Sun.COM zc->zc_obj |= ZPROP_ERR_NOCLEAR; 346211022STom.Erickson@Sun.COM } 346311022STom.Erickson@Sun.COM dsl_prop_set_hasrecvd(os); 346411022STom.Erickson@Sun.COM } else if (!drc.drc_newfs) { 346511022STom.Erickson@Sun.COM zc->zc_obj |= ZPROP_ERR_NOCLEAR; 346611022STom.Erickson@Sun.COM } 346711022STom.Erickson@Sun.COM 346811022STom.Erickson@Sun.COM (void) zfs_set_prop_nvlist(tofs, ZPROP_SRC_RECEIVED, 346911022STom.Erickson@Sun.COM props, &errlist); 347011022STom.Erickson@Sun.COM (void) nvlist_merge(errors, errlist, 0); 347111022STom.Erickson@Sun.COM nvlist_free(errlist); 347211022STom.Erickson@Sun.COM } 347311022STom.Erickson@Sun.COM 347411022STom.Erickson@Sun.COM if (fit_error_list(zc, &errors) != 0 || put_nvlist(zc, errors) != 0) { 34756689Smaybee /* 347611022STom.Erickson@Sun.COM * Caller made zc->zc_nvlist_dst less than the minimum expected 347711022STom.Erickson@Sun.COM * size or supplied an invalid address. 34786689Smaybee */ 347911022STom.Erickson@Sun.COM props_error = EINVAL; 34805367Sahrens } 34815367Sahrens 34825367Sahrens off = fp->f_offset; 348312527SChris.Kirby@oracle.com error = dmu_recv_stream(&drc, fp->f_vnode, &off, zc->zc_cleanup_fd, 348412527SChris.Kirby@oracle.com &zc->zc_action_handle); 34855367Sahrens 348610204SMatthew.Ahrens@Sun.COM if (error == 0) { 348710204SMatthew.Ahrens@Sun.COM zfsvfs_t *zfsvfs = NULL; 348810204SMatthew.Ahrens@Sun.COM 348910204SMatthew.Ahrens@Sun.COM if (getzfsvfs(tofs, &zfsvfs) == 0) { 349010204SMatthew.Ahrens@Sun.COM /* online recv */ 349110204SMatthew.Ahrens@Sun.COM int end_err; 349210298SMatthew.Ahrens@Sun.COM 349310298SMatthew.Ahrens@Sun.COM error = zfs_suspend_fs(zfsvfs); 349410204SMatthew.Ahrens@Sun.COM /* 349510204SMatthew.Ahrens@Sun.COM * If the suspend fails, then the recv_end will 349610204SMatthew.Ahrens@Sun.COM * likely also fail, and clean up after itself. 349710204SMatthew.Ahrens@Sun.COM */ 349810204SMatthew.Ahrens@Sun.COM end_err = dmu_recv_end(&drc); 349911812SGeorge.Wilson@Sun.COM if (error == 0) 350011812SGeorge.Wilson@Sun.COM error = zfs_resume_fs(zfsvfs, tofs); 350110204SMatthew.Ahrens@Sun.COM error = error ? error : end_err; 350210204SMatthew.Ahrens@Sun.COM VFS_RELE(zfsvfs->z_vfs); 350310204SMatthew.Ahrens@Sun.COM } else { 35046689Smaybee error = dmu_recv_end(&drc); 35055367Sahrens } 35066083Sek110237 } 35075367Sahrens 35085367Sahrens zc->zc_cookie = off - fp->f_offset; 35095367Sahrens if (VOP_SEEK(fp->f_vnode, fp->f_offset, &off, NULL) == 0) 35105367Sahrens fp->f_offset = off; 35112885Sahrens 351211022STom.Erickson@Sun.COM #ifdef DEBUG 351311022STom.Erickson@Sun.COM if (zfs_ioc_recv_inject_err) { 351411022STom.Erickson@Sun.COM zfs_ioc_recv_inject_err = B_FALSE; 351511022STom.Erickson@Sun.COM error = 1; 351611022STom.Erickson@Sun.COM } 351711022STom.Erickson@Sun.COM #endif 35186689Smaybee /* 35196689Smaybee * On error, restore the original props. 35206689Smaybee */ 35216689Smaybee if (error && props) { 352211022STom.Erickson@Sun.COM if (dmu_objset_hold(tofs, FTAG, &os) == 0) { 352311022STom.Erickson@Sun.COM if (clear_received_props(os, tofs, props, NULL) != 0) { 352411022STom.Erickson@Sun.COM /* 352511022STom.Erickson@Sun.COM * We failed to clear the received properties. 352611022STom.Erickson@Sun.COM * Since we may have left a $recvd value on the 352711022STom.Erickson@Sun.COM * system, we can't clear the $hasrecvd flag. 352811022STom.Erickson@Sun.COM */ 352911022STom.Erickson@Sun.COM zc->zc_obj |= ZPROP_ERR_NORESTORE; 353011022STom.Erickson@Sun.COM } else if (first_recvd_props) { 353111022STom.Erickson@Sun.COM dsl_prop_unset_hasrecvd(os); 353211022STom.Erickson@Sun.COM } 353311022STom.Erickson@Sun.COM dmu_objset_rele(os, FTAG); 353411022STom.Erickson@Sun.COM } else if (!drc.drc_newfs) { 353511022STom.Erickson@Sun.COM /* We failed to clear the received properties. */ 353611022STom.Erickson@Sun.COM zc->zc_obj |= ZPROP_ERR_NORESTORE; 353711022STom.Erickson@Sun.COM } 353811022STom.Erickson@Sun.COM 353911022STom.Erickson@Sun.COM if (origprops == NULL && !drc.drc_newfs) { 354011022STom.Erickson@Sun.COM /* We failed to stash the original properties. */ 354111022STom.Erickson@Sun.COM zc->zc_obj |= ZPROP_ERR_NORESTORE; 354211022STom.Erickson@Sun.COM } 354311022STom.Erickson@Sun.COM 354411022STom.Erickson@Sun.COM /* 354511022STom.Erickson@Sun.COM * dsl_props_set() will not convert RECEIVED to LOCAL on or 354611022STom.Erickson@Sun.COM * after SPA_VERSION_RECVD_PROPS, so we need to specify LOCAL 354711022STom.Erickson@Sun.COM * explictly if we're restoring local properties cleared in the 354811022STom.Erickson@Sun.COM * first new-style receive. 354911022STom.Erickson@Sun.COM */ 355011022STom.Erickson@Sun.COM if (origprops != NULL && 355111022STom.Erickson@Sun.COM zfs_set_prop_nvlist(tofs, (first_recvd_props ? 355211022STom.Erickson@Sun.COM ZPROP_SRC_LOCAL : ZPROP_SRC_RECEIVED), 355311022STom.Erickson@Sun.COM origprops, NULL) != 0) { 355411022STom.Erickson@Sun.COM /* 355511022STom.Erickson@Sun.COM * We stashed the original properties but failed to 355611022STom.Erickson@Sun.COM * restore them. 355711022STom.Erickson@Sun.COM */ 355811022STom.Erickson@Sun.COM zc->zc_obj |= ZPROP_ERR_NORESTORE; 355911022STom.Erickson@Sun.COM } 35606689Smaybee } 35616689Smaybee out: 35626689Smaybee nvlist_free(props); 35636689Smaybee nvlist_free(origprops); 356411022STom.Erickson@Sun.COM nvlist_free(errors); 3565789Sahrens releasef(fd); 356611022STom.Erickson@Sun.COM 356711022STom.Erickson@Sun.COM if (error == 0) 356811022STom.Erickson@Sun.COM error = props_error; 356911022STom.Erickson@Sun.COM 3570789Sahrens return (error); 3571789Sahrens } 3572789Sahrens 35735367Sahrens /* 35745367Sahrens * inputs: 35755367Sahrens * zc_name name of snapshot to send 35765367Sahrens * zc_value short name of incremental fromsnap (may be empty) 35775367Sahrens * zc_cookie file descriptor to send stream to 35785367Sahrens * zc_obj fromorigin flag (mutually exclusive with zc_value) 35795367Sahrens * 35805367Sahrens * outputs: none 35815367Sahrens */ 3582789Sahrens static int 35835367Sahrens zfs_ioc_send(zfs_cmd_t *zc) 3584789Sahrens { 3585789Sahrens objset_t *fromsnap = NULL; 3586789Sahrens objset_t *tosnap; 3587789Sahrens file_t *fp; 3588789Sahrens int error; 35895367Sahrens offset_t off; 3590789Sahrens 359110298SMatthew.Ahrens@Sun.COM error = dmu_objset_hold(zc->zc_name, FTAG, &tosnap); 3592789Sahrens if (error) 3593789Sahrens return (error); 3594789Sahrens 35952676Seschrock if (zc->zc_value[0] != '\0') { 35968012SEric.Taylor@Sun.COM char *buf; 35972885Sahrens char *cp; 35982885Sahrens 35998012SEric.Taylor@Sun.COM buf = kmem_alloc(MAXPATHLEN, KM_SLEEP); 36008012SEric.Taylor@Sun.COM (void) strncpy(buf, zc->zc_name, MAXPATHLEN); 36012885Sahrens cp = strchr(buf, '@'); 36022885Sahrens if (cp) 36032885Sahrens *(cp+1) = 0; 36048012SEric.Taylor@Sun.COM (void) strncat(buf, zc->zc_value, MAXPATHLEN); 360510298SMatthew.Ahrens@Sun.COM error = dmu_objset_hold(buf, FTAG, &fromsnap); 36068012SEric.Taylor@Sun.COM kmem_free(buf, MAXPATHLEN); 3607789Sahrens if (error) { 360810298SMatthew.Ahrens@Sun.COM dmu_objset_rele(tosnap, FTAG); 3609789Sahrens return (error); 3610789Sahrens } 3611789Sahrens } 3612789Sahrens 3613789Sahrens fp = getf(zc->zc_cookie); 3614789Sahrens if (fp == NULL) { 361510298SMatthew.Ahrens@Sun.COM dmu_objset_rele(tosnap, FTAG); 3616789Sahrens if (fromsnap) 361710298SMatthew.Ahrens@Sun.COM dmu_objset_rele(fromsnap, FTAG); 3618789Sahrens return (EBADF); 3619789Sahrens } 3620789Sahrens 36215367Sahrens off = fp->f_offset; 36225367Sahrens error = dmu_sendbackup(tosnap, fromsnap, zc->zc_obj, fp->f_vnode, &off); 36235367Sahrens 36245367Sahrens if (VOP_SEEK(fp->f_vnode, fp->f_offset, &off, NULL) == 0) 36255367Sahrens fp->f_offset = off; 3626789Sahrens releasef(zc->zc_cookie); 3627789Sahrens if (fromsnap) 362810298SMatthew.Ahrens@Sun.COM dmu_objset_rele(fromsnap, FTAG); 362910298SMatthew.Ahrens@Sun.COM dmu_objset_rele(tosnap, FTAG); 3630789Sahrens return (error); 3631789Sahrens } 3632789Sahrens 36331544Seschrock static int 36341544Seschrock zfs_ioc_inject_fault(zfs_cmd_t *zc) 36351544Seschrock { 36361544Seschrock int id, error; 36371544Seschrock 36381544Seschrock error = zio_inject_fault(zc->zc_name, (int)zc->zc_guid, &id, 36391544Seschrock &zc->zc_inject_record); 36401544Seschrock 36411544Seschrock if (error == 0) 36421544Seschrock zc->zc_guid = (uint64_t)id; 36431544Seschrock 36441544Seschrock return (error); 36451544Seschrock } 36461544Seschrock 36471544Seschrock static int 36481544Seschrock zfs_ioc_clear_fault(zfs_cmd_t *zc) 36491544Seschrock { 36501544Seschrock return (zio_clear_fault((int)zc->zc_guid)); 36511544Seschrock } 36521544Seschrock 36531544Seschrock static int 36541544Seschrock zfs_ioc_inject_list_next(zfs_cmd_t *zc) 36551544Seschrock { 36561544Seschrock int id = (int)zc->zc_guid; 36571544Seschrock int error; 36581544Seschrock 36591544Seschrock error = zio_inject_list_next(&id, zc->zc_name, sizeof (zc->zc_name), 36601544Seschrock &zc->zc_inject_record); 36611544Seschrock 36621544Seschrock zc->zc_guid = id; 36631544Seschrock 36641544Seschrock return (error); 36651544Seschrock } 36661544Seschrock 36671544Seschrock static int 36681544Seschrock zfs_ioc_error_log(zfs_cmd_t *zc) 36691544Seschrock { 36701544Seschrock spa_t *spa; 36711544Seschrock int error; 36722676Seschrock size_t count = (size_t)zc->zc_nvlist_dst_size; 36731544Seschrock 36741544Seschrock if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 36751544Seschrock return (error); 36761544Seschrock 36772676Seschrock error = spa_get_errlog(spa, (void *)(uintptr_t)zc->zc_nvlist_dst, 36781544Seschrock &count); 36791544Seschrock if (error == 0) 36802676Seschrock zc->zc_nvlist_dst_size = count; 36811544Seschrock else 36822676Seschrock zc->zc_nvlist_dst_size = spa_get_errlog_size(spa); 36831544Seschrock 36841544Seschrock spa_close(spa, FTAG); 36851544Seschrock 36861544Seschrock return (error); 36871544Seschrock } 36881544Seschrock 36891544Seschrock static int 36901544Seschrock zfs_ioc_clear(zfs_cmd_t *zc) 36911544Seschrock { 36921544Seschrock spa_t *spa; 36931544Seschrock vdev_t *vd; 36941544Seschrock int error; 36951544Seschrock 36967294Sperrin /* 36977294Sperrin * On zpool clear we also fix up missing slogs 36987294Sperrin */ 36997294Sperrin mutex_enter(&spa_namespace_lock); 37007294Sperrin spa = spa_lookup(zc->zc_name); 37017294Sperrin if (spa == NULL) { 37027294Sperrin mutex_exit(&spa_namespace_lock); 37037294Sperrin return (EIO); 37047294Sperrin } 370510922SJeff.Bonwick@Sun.COM if (spa_get_log_state(spa) == SPA_LOG_MISSING) { 37067294Sperrin /* we need to let spa_open/spa_load clear the chains */ 370710922SJeff.Bonwick@Sun.COM spa_set_log_state(spa, SPA_LOG_CLEAR); 37087294Sperrin } 370910921STim.Haley@Sun.COM spa->spa_last_open_failed = 0; 37107294Sperrin mutex_exit(&spa_namespace_lock); 37117294Sperrin 371211727SVictor.Latushkin@Sun.COM if (zc->zc_cookie & ZPOOL_NO_REWIND) { 371310921STim.Haley@Sun.COM error = spa_open(zc->zc_name, &spa, FTAG); 371410921STim.Haley@Sun.COM } else { 371510921STim.Haley@Sun.COM nvlist_t *policy; 371610921STim.Haley@Sun.COM nvlist_t *config = NULL; 371710921STim.Haley@Sun.COM 371810921STim.Haley@Sun.COM if (zc->zc_nvlist_src == NULL) 371910921STim.Haley@Sun.COM return (EINVAL); 372010921STim.Haley@Sun.COM 372110921STim.Haley@Sun.COM if ((error = get_nvlist(zc->zc_nvlist_src, 372210921STim.Haley@Sun.COM zc->zc_nvlist_src_size, zc->zc_iflags, &policy)) == 0) { 372310921STim.Haley@Sun.COM error = spa_open_rewind(zc->zc_name, &spa, FTAG, 372410921STim.Haley@Sun.COM policy, &config); 372510921STim.Haley@Sun.COM if (config != NULL) { 372610921STim.Haley@Sun.COM (void) put_nvlist(zc, config); 372710921STim.Haley@Sun.COM nvlist_free(config); 372810921STim.Haley@Sun.COM } 372910921STim.Haley@Sun.COM nvlist_free(policy); 373010921STim.Haley@Sun.COM } 373110921STim.Haley@Sun.COM } 373210921STim.Haley@Sun.COM 373310921STim.Haley@Sun.COM if (error) 37341544Seschrock return (error); 37351544Seschrock 373610685SGeorge.Wilson@Sun.COM spa_vdev_state_enter(spa, SCL_NONE); 37371544Seschrock 37382676Seschrock if (zc->zc_guid == 0) { 37391544Seschrock vd = NULL; 37406643Seschrock } else { 37416643Seschrock vd = spa_lookup_by_guid(spa, zc->zc_guid, B_TRUE); 37425450Sbrendan if (vd == NULL) { 37437754SJeff.Bonwick@Sun.COM (void) spa_vdev_state_exit(spa, NULL, ENODEV); 37445450Sbrendan spa_close(spa, FTAG); 37455450Sbrendan return (ENODEV); 37465450Sbrendan } 37471544Seschrock } 37481544Seschrock 37497754SJeff.Bonwick@Sun.COM vdev_clear(spa, vd); 37507754SJeff.Bonwick@Sun.COM 37517754SJeff.Bonwick@Sun.COM (void) spa_vdev_state_exit(spa, NULL, 0); 37527754SJeff.Bonwick@Sun.COM 37537754SJeff.Bonwick@Sun.COM /* 37547754SJeff.Bonwick@Sun.COM * Resume any suspended I/Os. 37557754SJeff.Bonwick@Sun.COM */ 37569234SGeorge.Wilson@Sun.COM if (zio_resume(spa) != 0) 37579234SGeorge.Wilson@Sun.COM error = EIO; 37581544Seschrock 37591544Seschrock spa_close(spa, FTAG); 37601544Seschrock 37619234SGeorge.Wilson@Sun.COM return (error); 37621544Seschrock } 37631544Seschrock 37645367Sahrens /* 37655367Sahrens * inputs: 37665367Sahrens * zc_name name of filesystem 37675367Sahrens * zc_value name of origin snapshot 37685367Sahrens * 376910588SEric.Taylor@Sun.COM * outputs: 377010588SEric.Taylor@Sun.COM * zc_string name of conflicting snapshot, if there is one 37715367Sahrens */ 37721544Seschrock static int 37732082Seschrock zfs_ioc_promote(zfs_cmd_t *zc) 37742082Seschrock { 37752417Sahrens char *cp; 37762417Sahrens 37772417Sahrens /* 37782417Sahrens * We don't need to unmount *all* the origin fs's snapshots, but 37792417Sahrens * it's easier. 37802417Sahrens */ 37812676Seschrock cp = strchr(zc->zc_value, '@'); 37822417Sahrens if (cp) 37832417Sahrens *cp = '\0'; 37842676Seschrock (void) dmu_objset_find(zc->zc_value, 37852417Sahrens zfs_unmount_snap, NULL, DS_FIND_SNAPSHOTS); 378610588SEric.Taylor@Sun.COM return (dsl_dataset_promote(zc->zc_name, zc->zc_string)); 37872082Seschrock } 37882082Seschrock 37894543Smarks /* 37909396SMatthew.Ahrens@Sun.COM * Retrieve a single {user|group}{used|quota}@... property. 37919396SMatthew.Ahrens@Sun.COM * 37929396SMatthew.Ahrens@Sun.COM * inputs: 37939396SMatthew.Ahrens@Sun.COM * zc_name name of filesystem 37949396SMatthew.Ahrens@Sun.COM * zc_objset_type zfs_userquota_prop_t 37959396SMatthew.Ahrens@Sun.COM * zc_value domain name (eg. "S-1-234-567-89") 37969396SMatthew.Ahrens@Sun.COM * zc_guid RID/UID/GID 37979396SMatthew.Ahrens@Sun.COM * 37989396SMatthew.Ahrens@Sun.COM * outputs: 37999396SMatthew.Ahrens@Sun.COM * zc_cookie property value 38009396SMatthew.Ahrens@Sun.COM */ 38019396SMatthew.Ahrens@Sun.COM static int 38029396SMatthew.Ahrens@Sun.COM zfs_ioc_userspace_one(zfs_cmd_t *zc) 38039396SMatthew.Ahrens@Sun.COM { 38049396SMatthew.Ahrens@Sun.COM zfsvfs_t *zfsvfs; 38059396SMatthew.Ahrens@Sun.COM int error; 38069396SMatthew.Ahrens@Sun.COM 38079396SMatthew.Ahrens@Sun.COM if (zc->zc_objset_type >= ZFS_NUM_USERQUOTA_PROPS) 38089396SMatthew.Ahrens@Sun.COM return (EINVAL); 38099396SMatthew.Ahrens@Sun.COM 3810*12620SMark.Shellenbaum@Oracle.COM error = zfsvfs_hold(zc->zc_name, FTAG, &zfsvfs, B_FALSE); 38119396SMatthew.Ahrens@Sun.COM if (error) 38129396SMatthew.Ahrens@Sun.COM return (error); 38139396SMatthew.Ahrens@Sun.COM 38149396SMatthew.Ahrens@Sun.COM error = zfs_userspace_one(zfsvfs, 38159396SMatthew.Ahrens@Sun.COM zc->zc_objset_type, zc->zc_value, zc->zc_guid, &zc->zc_cookie); 38169396SMatthew.Ahrens@Sun.COM zfsvfs_rele(zfsvfs, FTAG); 38179396SMatthew.Ahrens@Sun.COM 38189396SMatthew.Ahrens@Sun.COM return (error); 38199396SMatthew.Ahrens@Sun.COM } 38209396SMatthew.Ahrens@Sun.COM 38219396SMatthew.Ahrens@Sun.COM /* 38229396SMatthew.Ahrens@Sun.COM * inputs: 38239396SMatthew.Ahrens@Sun.COM * zc_name name of filesystem 38249396SMatthew.Ahrens@Sun.COM * zc_cookie zap cursor 38259396SMatthew.Ahrens@Sun.COM * zc_objset_type zfs_userquota_prop_t 38269396SMatthew.Ahrens@Sun.COM * zc_nvlist_dst[_size] buffer to fill (not really an nvlist) 38279396SMatthew.Ahrens@Sun.COM * 38289396SMatthew.Ahrens@Sun.COM * outputs: 38299396SMatthew.Ahrens@Sun.COM * zc_nvlist_dst[_size] data buffer (array of zfs_useracct_t) 38309396SMatthew.Ahrens@Sun.COM * zc_cookie zap cursor 38319396SMatthew.Ahrens@Sun.COM */ 38329396SMatthew.Ahrens@Sun.COM static int 38339396SMatthew.Ahrens@Sun.COM zfs_ioc_userspace_many(zfs_cmd_t *zc) 38349396SMatthew.Ahrens@Sun.COM { 38359396SMatthew.Ahrens@Sun.COM zfsvfs_t *zfsvfs; 383611933STim.Haley@Sun.COM int bufsize = zc->zc_nvlist_dst_size; 383711933STim.Haley@Sun.COM 383811933STim.Haley@Sun.COM if (bufsize <= 0) 383911933STim.Haley@Sun.COM return (ENOMEM); 384011933STim.Haley@Sun.COM 3841*12620SMark.Shellenbaum@Oracle.COM int error = zfsvfs_hold(zc->zc_name, FTAG, &zfsvfs, B_FALSE); 38429396SMatthew.Ahrens@Sun.COM if (error) 38439396SMatthew.Ahrens@Sun.COM return (error); 38449396SMatthew.Ahrens@Sun.COM 38459396SMatthew.Ahrens@Sun.COM void *buf = kmem_alloc(bufsize, KM_SLEEP); 38469396SMatthew.Ahrens@Sun.COM 38479396SMatthew.Ahrens@Sun.COM error = zfs_userspace_many(zfsvfs, zc->zc_objset_type, &zc->zc_cookie, 38489396SMatthew.Ahrens@Sun.COM buf, &zc->zc_nvlist_dst_size); 38499396SMatthew.Ahrens@Sun.COM 38509396SMatthew.Ahrens@Sun.COM if (error == 0) { 38519396SMatthew.Ahrens@Sun.COM error = xcopyout(buf, 38529396SMatthew.Ahrens@Sun.COM (void *)(uintptr_t)zc->zc_nvlist_dst, 38539396SMatthew.Ahrens@Sun.COM zc->zc_nvlist_dst_size); 38549396SMatthew.Ahrens@Sun.COM } 38559396SMatthew.Ahrens@Sun.COM kmem_free(buf, bufsize); 38569396SMatthew.Ahrens@Sun.COM zfsvfs_rele(zfsvfs, FTAG); 38579396SMatthew.Ahrens@Sun.COM 38589396SMatthew.Ahrens@Sun.COM return (error); 38599396SMatthew.Ahrens@Sun.COM } 38609396SMatthew.Ahrens@Sun.COM 38619396SMatthew.Ahrens@Sun.COM /* 38629396SMatthew.Ahrens@Sun.COM * inputs: 38639396SMatthew.Ahrens@Sun.COM * zc_name name of filesystem 38649396SMatthew.Ahrens@Sun.COM * 38659396SMatthew.Ahrens@Sun.COM * outputs: 38669396SMatthew.Ahrens@Sun.COM * none 38679396SMatthew.Ahrens@Sun.COM */ 38689396SMatthew.Ahrens@Sun.COM static int 38699396SMatthew.Ahrens@Sun.COM zfs_ioc_userspace_upgrade(zfs_cmd_t *zc) 38709396SMatthew.Ahrens@Sun.COM { 38719396SMatthew.Ahrens@Sun.COM objset_t *os; 387211422SMark.Musante@Sun.COM int error = 0; 38739396SMatthew.Ahrens@Sun.COM zfsvfs_t *zfsvfs; 38749396SMatthew.Ahrens@Sun.COM 38759396SMatthew.Ahrens@Sun.COM if (getzfsvfs(zc->zc_name, &zfsvfs) == 0) { 387610298SMatthew.Ahrens@Sun.COM if (!dmu_objset_userused_enabled(zfsvfs->z_os)) { 38779396SMatthew.Ahrens@Sun.COM /* 38789396SMatthew.Ahrens@Sun.COM * If userused is not enabled, it may be because the 38799396SMatthew.Ahrens@Sun.COM * objset needs to be closed & reopened (to grow the 38809396SMatthew.Ahrens@Sun.COM * objset_phys_t). Suspend/resume the fs will do that. 38819396SMatthew.Ahrens@Sun.COM */ 388210298SMatthew.Ahrens@Sun.COM error = zfs_suspend_fs(zfsvfs); 388310298SMatthew.Ahrens@Sun.COM if (error == 0) 388410298SMatthew.Ahrens@Sun.COM error = zfs_resume_fs(zfsvfs, zc->zc_name); 38859396SMatthew.Ahrens@Sun.COM } 38869396SMatthew.Ahrens@Sun.COM if (error == 0) 38879396SMatthew.Ahrens@Sun.COM error = dmu_objset_userspace_upgrade(zfsvfs->z_os); 38889396SMatthew.Ahrens@Sun.COM VFS_RELE(zfsvfs->z_vfs); 38899396SMatthew.Ahrens@Sun.COM } else { 389010298SMatthew.Ahrens@Sun.COM /* XXX kind of reading contents without owning */ 389110298SMatthew.Ahrens@Sun.COM error = dmu_objset_hold(zc->zc_name, FTAG, &os); 38929396SMatthew.Ahrens@Sun.COM if (error) 38939396SMatthew.Ahrens@Sun.COM return (error); 38949396SMatthew.Ahrens@Sun.COM 38959396SMatthew.Ahrens@Sun.COM error = dmu_objset_userspace_upgrade(os); 389610298SMatthew.Ahrens@Sun.COM dmu_objset_rele(os, FTAG); 38979396SMatthew.Ahrens@Sun.COM } 38989396SMatthew.Ahrens@Sun.COM 38999396SMatthew.Ahrens@Sun.COM return (error); 39009396SMatthew.Ahrens@Sun.COM } 39019396SMatthew.Ahrens@Sun.COM 39029396SMatthew.Ahrens@Sun.COM /* 39034543Smarks * We don't want to have a hard dependency 39044543Smarks * against some special symbols in sharefs 39055331Samw * nfs, and smbsrv. Determine them if needed when 39064543Smarks * the first file system is shared. 39075331Samw * Neither sharefs, nfs or smbsrv are unloadable modules. 39084543Smarks */ 39095331Samw int (*znfsexport_fs)(void *arg); 39104543Smarks int (*zshare_fs)(enum sharefs_sys_op, share_t *, uint32_t); 39115331Samw int (*zsmbexport_fs)(void *arg, boolean_t add_share); 39125331Samw 39135331Samw int zfs_nfsshare_inited; 39145331Samw int zfs_smbshare_inited; 39155331Samw 39164543Smarks ddi_modhandle_t nfs_mod; 39174543Smarks ddi_modhandle_t sharefs_mod; 39185331Samw ddi_modhandle_t smbsrv_mod; 39194543Smarks kmutex_t zfs_share_lock; 39204543Smarks 39214543Smarks static int 39225331Samw zfs_init_sharefs() 39235331Samw { 39245331Samw int error; 39255331Samw 39265331Samw ASSERT(MUTEX_HELD(&zfs_share_lock)); 39275331Samw /* Both NFS and SMB shares also require sharetab support. */ 39285331Samw if (sharefs_mod == NULL && ((sharefs_mod = 39295331Samw ddi_modopen("fs/sharefs", 39305331Samw KRTLD_MODE_FIRST, &error)) == NULL)) { 39315331Samw return (ENOSYS); 39325331Samw } 39335331Samw if (zshare_fs == NULL && ((zshare_fs = 39345331Samw (int (*)(enum sharefs_sys_op, share_t *, uint32_t)) 39355331Samw ddi_modsym(sharefs_mod, "sharefs_impl", &error)) == NULL)) { 39365331Samw return (ENOSYS); 39375331Samw } 39385331Samw return (0); 39395331Samw } 39405331Samw 39415331Samw static int 39424543Smarks zfs_ioc_share(zfs_cmd_t *zc) 39434543Smarks { 39444543Smarks int error; 39454543Smarks int opcode; 39464543Smarks 39475331Samw switch (zc->zc_share.z_sharetype) { 39485331Samw case ZFS_SHARE_NFS: 39495331Samw case ZFS_UNSHARE_NFS: 39505331Samw if (zfs_nfsshare_inited == 0) { 39515331Samw mutex_enter(&zfs_share_lock); 39525331Samw if (nfs_mod == NULL && ((nfs_mod = ddi_modopen("fs/nfs", 39535331Samw KRTLD_MODE_FIRST, &error)) == NULL)) { 39545331Samw mutex_exit(&zfs_share_lock); 39555331Samw return (ENOSYS); 39565331Samw } 39575331Samw if (znfsexport_fs == NULL && 39585331Samw ((znfsexport_fs = (int (*)(void *)) 39595331Samw ddi_modsym(nfs_mod, 39605331Samw "nfs_export", &error)) == NULL)) { 39615331Samw mutex_exit(&zfs_share_lock); 39625331Samw return (ENOSYS); 39635331Samw } 39645331Samw error = zfs_init_sharefs(); 39655331Samw if (error) { 39665331Samw mutex_exit(&zfs_share_lock); 39675331Samw return (ENOSYS); 39685331Samw } 39695331Samw zfs_nfsshare_inited = 1; 39704543Smarks mutex_exit(&zfs_share_lock); 39714543Smarks } 39725331Samw break; 39735331Samw case ZFS_SHARE_SMB: 39745331Samw case ZFS_UNSHARE_SMB: 39755331Samw if (zfs_smbshare_inited == 0) { 39765331Samw mutex_enter(&zfs_share_lock); 39775331Samw if (smbsrv_mod == NULL && ((smbsrv_mod = 39785331Samw ddi_modopen("drv/smbsrv", 39795331Samw KRTLD_MODE_FIRST, &error)) == NULL)) { 39805331Samw mutex_exit(&zfs_share_lock); 39815331Samw return (ENOSYS); 39825331Samw } 39835331Samw if (zsmbexport_fs == NULL && ((zsmbexport_fs = 39845331Samw (int (*)(void *, boolean_t))ddi_modsym(smbsrv_mod, 39856139Sjb150015 "smb_server_share", &error)) == NULL)) { 39865331Samw mutex_exit(&zfs_share_lock); 39875331Samw return (ENOSYS); 39885331Samw } 39895331Samw error = zfs_init_sharefs(); 39905331Samw if (error) { 39915331Samw mutex_exit(&zfs_share_lock); 39925331Samw return (ENOSYS); 39935331Samw } 39945331Samw zfs_smbshare_inited = 1; 39954543Smarks mutex_exit(&zfs_share_lock); 39964543Smarks } 39975331Samw break; 39985331Samw default: 39995331Samw return (EINVAL); 40004543Smarks } 40014543Smarks 40025331Samw switch (zc->zc_share.z_sharetype) { 40035331Samw case ZFS_SHARE_NFS: 40045331Samw case ZFS_UNSHARE_NFS: 40055331Samw if (error = 40065331Samw znfsexport_fs((void *) 40075331Samw (uintptr_t)zc->zc_share.z_exportdata)) 40085331Samw return (error); 40095331Samw break; 40105331Samw case ZFS_SHARE_SMB: 40115331Samw case ZFS_UNSHARE_SMB: 40125331Samw if (error = zsmbexport_fs((void *) 40135331Samw (uintptr_t)zc->zc_share.z_exportdata, 40145331Samw zc->zc_share.z_sharetype == ZFS_SHARE_SMB ? 40158845Samw@Sun.COM B_TRUE: B_FALSE)) { 40165331Samw return (error); 40175331Samw } 40185331Samw break; 40195331Samw } 40205331Samw 40215331Samw opcode = (zc->zc_share.z_sharetype == ZFS_SHARE_NFS || 40225331Samw zc->zc_share.z_sharetype == ZFS_SHARE_SMB) ? 40234543Smarks SHAREFS_ADD : SHAREFS_REMOVE; 40244543Smarks 40255331Samw /* 40265331Samw * Add or remove share from sharetab 40275331Samw */ 40284543Smarks error = zshare_fs(opcode, 40294543Smarks (void *)(uintptr_t)zc->zc_share.z_sharedata, 40304543Smarks zc->zc_share.z_sharemax); 40314543Smarks 40324543Smarks return (error); 40334543Smarks 40344543Smarks } 40354543Smarks 40368845Samw@Sun.COM ace_t full_access[] = { 40378845Samw@Sun.COM {(uid_t)-1, ACE_ALL_PERMS, ACE_EVERYONE, 0} 40388845Samw@Sun.COM }; 40398845Samw@Sun.COM 40408845Samw@Sun.COM /* 40418845Samw@Sun.COM * Remove all ACL files in shares dir 40428845Samw@Sun.COM */ 40438845Samw@Sun.COM static int 40448845Samw@Sun.COM zfs_smb_acl_purge(znode_t *dzp) 40458845Samw@Sun.COM { 40468845Samw@Sun.COM zap_cursor_t zc; 40478845Samw@Sun.COM zap_attribute_t zap; 40488845Samw@Sun.COM zfsvfs_t *zfsvfs = dzp->z_zfsvfs; 40498845Samw@Sun.COM int error; 40508845Samw@Sun.COM 40518845Samw@Sun.COM for (zap_cursor_init(&zc, zfsvfs->z_os, dzp->z_id); 40528845Samw@Sun.COM (error = zap_cursor_retrieve(&zc, &zap)) == 0; 40538845Samw@Sun.COM zap_cursor_advance(&zc)) { 40548845Samw@Sun.COM if ((error = VOP_REMOVE(ZTOV(dzp), zap.za_name, kcred, 40558845Samw@Sun.COM NULL, 0)) != 0) 40568845Samw@Sun.COM break; 40578845Samw@Sun.COM } 40588845Samw@Sun.COM zap_cursor_fini(&zc); 40598845Samw@Sun.COM return (error); 40608845Samw@Sun.COM } 40618845Samw@Sun.COM 40628845Samw@Sun.COM static int 40638845Samw@Sun.COM zfs_ioc_smb_acl(zfs_cmd_t *zc) 40648845Samw@Sun.COM { 40658845Samw@Sun.COM vnode_t *vp; 40668845Samw@Sun.COM znode_t *dzp; 40678845Samw@Sun.COM vnode_t *resourcevp = NULL; 40688845Samw@Sun.COM znode_t *sharedir; 40698845Samw@Sun.COM zfsvfs_t *zfsvfs; 40708845Samw@Sun.COM nvlist_t *nvlist; 40718845Samw@Sun.COM char *src, *target; 40728845Samw@Sun.COM vattr_t vattr; 40738845Samw@Sun.COM vsecattr_t vsec; 40748845Samw@Sun.COM int error = 0; 40758845Samw@Sun.COM 40768845Samw@Sun.COM if ((error = lookupname(zc->zc_value, UIO_SYSSPACE, 40778845Samw@Sun.COM NO_FOLLOW, NULL, &vp)) != 0) 40788845Samw@Sun.COM return (error); 40798845Samw@Sun.COM 40808845Samw@Sun.COM /* Now make sure mntpnt and dataset are ZFS */ 40818845Samw@Sun.COM 40828845Samw@Sun.COM if (vp->v_vfsp->vfs_fstype != zfsfstype || 40838845Samw@Sun.COM (strcmp((char *)refstr_value(vp->v_vfsp->vfs_resource), 40848845Samw@Sun.COM zc->zc_name) != 0)) { 40858845Samw@Sun.COM VN_RELE(vp); 40868845Samw@Sun.COM return (EINVAL); 40878845Samw@Sun.COM } 40888845Samw@Sun.COM 40898845Samw@Sun.COM dzp = VTOZ(vp); 40908845Samw@Sun.COM zfsvfs = dzp->z_zfsvfs; 40918845Samw@Sun.COM ZFS_ENTER(zfsvfs); 40928845Samw@Sun.COM 40939030SMark.Shellenbaum@Sun.COM /* 40949030SMark.Shellenbaum@Sun.COM * Create share dir if its missing. 40959030SMark.Shellenbaum@Sun.COM */ 40969030SMark.Shellenbaum@Sun.COM mutex_enter(&zfsvfs->z_lock); 40979030SMark.Shellenbaum@Sun.COM if (zfsvfs->z_shares_dir == 0) { 40989030SMark.Shellenbaum@Sun.COM dmu_tx_t *tx; 40999030SMark.Shellenbaum@Sun.COM 41009030SMark.Shellenbaum@Sun.COM tx = dmu_tx_create(zfsvfs->z_os); 41019030SMark.Shellenbaum@Sun.COM dmu_tx_hold_zap(tx, MASTER_NODE_OBJ, TRUE, 41029030SMark.Shellenbaum@Sun.COM ZFS_SHARES_DIR); 41039030SMark.Shellenbaum@Sun.COM dmu_tx_hold_zap(tx, DMU_NEW_OBJECT, FALSE, NULL); 41049030SMark.Shellenbaum@Sun.COM error = dmu_tx_assign(tx, TXG_WAIT); 41059030SMark.Shellenbaum@Sun.COM if (error) { 41069030SMark.Shellenbaum@Sun.COM dmu_tx_abort(tx); 41079030SMark.Shellenbaum@Sun.COM } else { 41089030SMark.Shellenbaum@Sun.COM error = zfs_create_share_dir(zfsvfs, tx); 41099030SMark.Shellenbaum@Sun.COM dmu_tx_commit(tx); 41109030SMark.Shellenbaum@Sun.COM } 41119030SMark.Shellenbaum@Sun.COM if (error) { 41129030SMark.Shellenbaum@Sun.COM mutex_exit(&zfsvfs->z_lock); 41139030SMark.Shellenbaum@Sun.COM VN_RELE(vp); 41149030SMark.Shellenbaum@Sun.COM ZFS_EXIT(zfsvfs); 41159030SMark.Shellenbaum@Sun.COM return (error); 41169030SMark.Shellenbaum@Sun.COM } 41179030SMark.Shellenbaum@Sun.COM } 41189030SMark.Shellenbaum@Sun.COM mutex_exit(&zfsvfs->z_lock); 41199030SMark.Shellenbaum@Sun.COM 41209030SMark.Shellenbaum@Sun.COM ASSERT(zfsvfs->z_shares_dir); 41218845Samw@Sun.COM if ((error = zfs_zget(zfsvfs, zfsvfs->z_shares_dir, &sharedir)) != 0) { 41229030SMark.Shellenbaum@Sun.COM VN_RELE(vp); 41238845Samw@Sun.COM ZFS_EXIT(zfsvfs); 41248845Samw@Sun.COM return (error); 41258845Samw@Sun.COM } 41268845Samw@Sun.COM 41278845Samw@Sun.COM switch (zc->zc_cookie) { 41288845Samw@Sun.COM case ZFS_SMB_ACL_ADD: 41298845Samw@Sun.COM vattr.va_mask = AT_MODE|AT_UID|AT_GID|AT_TYPE; 41308845Samw@Sun.COM vattr.va_type = VREG; 41318845Samw@Sun.COM vattr.va_mode = S_IFREG|0777; 41328845Samw@Sun.COM vattr.va_uid = 0; 41338845Samw@Sun.COM vattr.va_gid = 0; 41348845Samw@Sun.COM 41358845Samw@Sun.COM vsec.vsa_mask = VSA_ACE; 41368845Samw@Sun.COM vsec.vsa_aclentp = &full_access; 41378845Samw@Sun.COM vsec.vsa_aclentsz = sizeof (full_access); 41388845Samw@Sun.COM vsec.vsa_aclcnt = 1; 41398845Samw@Sun.COM 41408845Samw@Sun.COM error = VOP_CREATE(ZTOV(sharedir), zc->zc_string, 41418845Samw@Sun.COM &vattr, EXCL, 0, &resourcevp, kcred, 0, NULL, &vsec); 41428845Samw@Sun.COM if (resourcevp) 41438845Samw@Sun.COM VN_RELE(resourcevp); 41448845Samw@Sun.COM break; 41458845Samw@Sun.COM 41468845Samw@Sun.COM case ZFS_SMB_ACL_REMOVE: 41478845Samw@Sun.COM error = VOP_REMOVE(ZTOV(sharedir), zc->zc_string, kcred, 41488845Samw@Sun.COM NULL, 0); 41498845Samw@Sun.COM break; 41508845Samw@Sun.COM 41518845Samw@Sun.COM case ZFS_SMB_ACL_RENAME: 41528845Samw@Sun.COM if ((error = get_nvlist(zc->zc_nvlist_src, 41539643SEric.Taylor@Sun.COM zc->zc_nvlist_src_size, zc->zc_iflags, &nvlist)) != 0) { 41548845Samw@Sun.COM VN_RELE(vp); 41558845Samw@Sun.COM ZFS_EXIT(zfsvfs); 41568845Samw@Sun.COM return (error); 41578845Samw@Sun.COM } 41588845Samw@Sun.COM if (nvlist_lookup_string(nvlist, ZFS_SMB_ACL_SRC, &src) || 41598845Samw@Sun.COM nvlist_lookup_string(nvlist, ZFS_SMB_ACL_TARGET, 41608845Samw@Sun.COM &target)) { 41618845Samw@Sun.COM VN_RELE(vp); 41629179SMark.Shellenbaum@Sun.COM VN_RELE(ZTOV(sharedir)); 41638845Samw@Sun.COM ZFS_EXIT(zfsvfs); 416411422SMark.Musante@Sun.COM nvlist_free(nvlist); 41658845Samw@Sun.COM return (error); 41668845Samw@Sun.COM } 41678845Samw@Sun.COM error = VOP_RENAME(ZTOV(sharedir), src, ZTOV(sharedir), target, 41688845Samw@Sun.COM kcred, NULL, 0); 41698845Samw@Sun.COM nvlist_free(nvlist); 41708845Samw@Sun.COM break; 41718845Samw@Sun.COM 41728845Samw@Sun.COM case ZFS_SMB_ACL_PURGE: 41738845Samw@Sun.COM error = zfs_smb_acl_purge(sharedir); 41748845Samw@Sun.COM break; 41758845Samw@Sun.COM 41768845Samw@Sun.COM default: 41778845Samw@Sun.COM error = EINVAL; 41788845Samw@Sun.COM break; 41798845Samw@Sun.COM } 41808845Samw@Sun.COM 41818845Samw@Sun.COM VN_RELE(vp); 41828845Samw@Sun.COM VN_RELE(ZTOV(sharedir)); 41838845Samw@Sun.COM 41848845Samw@Sun.COM ZFS_EXIT(zfsvfs); 41858845Samw@Sun.COM 41868845Samw@Sun.COM return (error); 41878845Samw@Sun.COM } 41888845Samw@Sun.COM 41894543Smarks /* 419010242Schris.kirby@sun.com * inputs: 419112527SChris.Kirby@oracle.com * zc_name name of filesystem 419212527SChris.Kirby@oracle.com * zc_value short name of snap 419312527SChris.Kirby@oracle.com * zc_string user-supplied tag for this hold 419412527SChris.Kirby@oracle.com * zc_cookie recursive flag 419512527SChris.Kirby@oracle.com * zc_temphold set if hold is temporary 419612527SChris.Kirby@oracle.com * zc_cleanup_fd cleanup-on-exit file descriptor for calling process 419710242Schris.kirby@sun.com * 419810242Schris.kirby@sun.com * outputs: none 419910242Schris.kirby@sun.com */ 420010242Schris.kirby@sun.com static int 420110242Schris.kirby@sun.com zfs_ioc_hold(zfs_cmd_t *zc) 420210242Schris.kirby@sun.com { 420310242Schris.kirby@sun.com boolean_t recursive = zc->zc_cookie; 420410242Schris.kirby@sun.com 420510242Schris.kirby@sun.com if (snapshot_namecheck(zc->zc_value, NULL, NULL) != 0) 420610242Schris.kirby@sun.com return (EINVAL); 420710242Schris.kirby@sun.com 420810242Schris.kirby@sun.com return (dsl_dataset_user_hold(zc->zc_name, zc->zc_value, 420912527SChris.Kirby@oracle.com zc->zc_string, recursive, zc->zc_temphold, zc->zc_cleanup_fd)); 421010242Schris.kirby@sun.com } 421110242Schris.kirby@sun.com 421210242Schris.kirby@sun.com /* 421310242Schris.kirby@sun.com * inputs: 421412527SChris.Kirby@oracle.com * zc_name name of dataset from which we're releasing a user hold 421510242Schris.kirby@sun.com * zc_value short name of snap 421612527SChris.Kirby@oracle.com * zc_string user-supplied tag for this hold 421710242Schris.kirby@sun.com * zc_cookie recursive flag 421810242Schris.kirby@sun.com * 421912527SChris.Kirby@oracle.com * outputs: none 422010242Schris.kirby@sun.com */ 422110242Schris.kirby@sun.com static int 422210242Schris.kirby@sun.com zfs_ioc_release(zfs_cmd_t *zc) 422310242Schris.kirby@sun.com { 422410242Schris.kirby@sun.com boolean_t recursive = zc->zc_cookie; 422510242Schris.kirby@sun.com 422610242Schris.kirby@sun.com if (snapshot_namecheck(zc->zc_value, NULL, NULL) != 0) 422710242Schris.kirby@sun.com return (EINVAL); 422810242Schris.kirby@sun.com 422910242Schris.kirby@sun.com return (dsl_dataset_user_release(zc->zc_name, zc->zc_value, 423010242Schris.kirby@sun.com zc->zc_string, recursive)); 423110242Schris.kirby@sun.com } 423210242Schris.kirby@sun.com 423310242Schris.kirby@sun.com /* 423410242Schris.kirby@sun.com * inputs: 423510242Schris.kirby@sun.com * zc_name name of filesystem 423610242Schris.kirby@sun.com * 423710242Schris.kirby@sun.com * outputs: 423810242Schris.kirby@sun.com * zc_nvlist_src{_size} nvlist of snapshot holds 423910242Schris.kirby@sun.com */ 424010242Schris.kirby@sun.com static int 424110242Schris.kirby@sun.com zfs_ioc_get_holds(zfs_cmd_t *zc) 424210242Schris.kirby@sun.com { 424310242Schris.kirby@sun.com nvlist_t *nvp; 424410242Schris.kirby@sun.com int error; 424510242Schris.kirby@sun.com 424610242Schris.kirby@sun.com if ((error = dsl_dataset_get_holds(zc->zc_name, &nvp)) == 0) { 424710242Schris.kirby@sun.com error = put_nvlist(zc, nvp); 424810242Schris.kirby@sun.com nvlist_free(nvp); 424910242Schris.kirby@sun.com } 425010242Schris.kirby@sun.com 425110242Schris.kirby@sun.com return (error); 425210242Schris.kirby@sun.com } 425310242Schris.kirby@sun.com 425410242Schris.kirby@sun.com /* 42554988Sek110237 * pool create, destroy, and export don't log the history as part of 42564988Sek110237 * zfsdev_ioctl, but rather zfs_ioc_pool_create, and zfs_ioc_pool_export 42574988Sek110237 * do the logging of those commands. 42584543Smarks */ 4259789Sahrens static zfs_ioc_vec_t zfs_ioc_vec[] = { 42609234SGeorge.Wilson@Sun.COM { zfs_ioc_pool_create, zfs_secpolicy_config, POOL_NAME, B_FALSE, 42619234SGeorge.Wilson@Sun.COM B_FALSE }, 42629234SGeorge.Wilson@Sun.COM { zfs_ioc_pool_destroy, zfs_secpolicy_config, POOL_NAME, B_FALSE, 42639234SGeorge.Wilson@Sun.COM B_FALSE }, 42649234SGeorge.Wilson@Sun.COM { zfs_ioc_pool_import, zfs_secpolicy_config, POOL_NAME, B_TRUE, 42659234SGeorge.Wilson@Sun.COM B_FALSE }, 42669234SGeorge.Wilson@Sun.COM { zfs_ioc_pool_export, zfs_secpolicy_config, POOL_NAME, B_FALSE, 42679234SGeorge.Wilson@Sun.COM B_FALSE }, 42689234SGeorge.Wilson@Sun.COM { zfs_ioc_pool_configs, zfs_secpolicy_none, NO_NAME, B_FALSE, 42699234SGeorge.Wilson@Sun.COM B_FALSE }, 42709234SGeorge.Wilson@Sun.COM { zfs_ioc_pool_stats, zfs_secpolicy_read, POOL_NAME, B_FALSE, 42719234SGeorge.Wilson@Sun.COM B_FALSE }, 42729234SGeorge.Wilson@Sun.COM { zfs_ioc_pool_tryimport, zfs_secpolicy_config, NO_NAME, B_FALSE, 42739234SGeorge.Wilson@Sun.COM B_FALSE }, 427412296SLin.Ling@Sun.COM { zfs_ioc_pool_scan, zfs_secpolicy_config, POOL_NAME, B_TRUE, 42759234SGeorge.Wilson@Sun.COM B_TRUE }, 42769234SGeorge.Wilson@Sun.COM { zfs_ioc_pool_freeze, zfs_secpolicy_config, NO_NAME, B_FALSE, 42779234SGeorge.Wilson@Sun.COM B_FALSE }, 42789234SGeorge.Wilson@Sun.COM { zfs_ioc_pool_upgrade, zfs_secpolicy_config, POOL_NAME, B_TRUE, 42799234SGeorge.Wilson@Sun.COM B_TRUE }, 42809234SGeorge.Wilson@Sun.COM { zfs_ioc_pool_get_history, zfs_secpolicy_config, POOL_NAME, B_FALSE, 42819234SGeorge.Wilson@Sun.COM B_FALSE }, 42829234SGeorge.Wilson@Sun.COM { zfs_ioc_vdev_add, zfs_secpolicy_config, POOL_NAME, B_TRUE, 42839234SGeorge.Wilson@Sun.COM B_TRUE }, 42849234SGeorge.Wilson@Sun.COM { zfs_ioc_vdev_remove, zfs_secpolicy_config, POOL_NAME, B_TRUE, 42859234SGeorge.Wilson@Sun.COM B_TRUE }, 42869234SGeorge.Wilson@Sun.COM { zfs_ioc_vdev_set_state, zfs_secpolicy_config, POOL_NAME, B_TRUE, 42879234SGeorge.Wilson@Sun.COM B_FALSE }, 42889234SGeorge.Wilson@Sun.COM { zfs_ioc_vdev_attach, zfs_secpolicy_config, POOL_NAME, B_TRUE, 42899234SGeorge.Wilson@Sun.COM B_TRUE }, 42909234SGeorge.Wilson@Sun.COM { zfs_ioc_vdev_detach, zfs_secpolicy_config, POOL_NAME, B_TRUE, 42919234SGeorge.Wilson@Sun.COM B_TRUE }, 42929234SGeorge.Wilson@Sun.COM { zfs_ioc_vdev_setpath, zfs_secpolicy_config, POOL_NAME, B_FALSE, 42939234SGeorge.Wilson@Sun.COM B_TRUE }, 42949425SEric.Schrock@Sun.COM { zfs_ioc_vdev_setfru, zfs_secpolicy_config, POOL_NAME, B_FALSE, 42959425SEric.Schrock@Sun.COM B_TRUE }, 42969234SGeorge.Wilson@Sun.COM { zfs_ioc_objset_stats, zfs_secpolicy_read, DATASET_NAME, B_FALSE, 429711454SSanjeev.Bagewadi@Sun.COM B_TRUE }, 42989234SGeorge.Wilson@Sun.COM { zfs_ioc_objset_zplprops, zfs_secpolicy_read, DATASET_NAME, B_FALSE, 42999234SGeorge.Wilson@Sun.COM B_FALSE }, 43009234SGeorge.Wilson@Sun.COM { zfs_ioc_dataset_list_next, zfs_secpolicy_read, DATASET_NAME, B_FALSE, 430111454SSanjeev.Bagewadi@Sun.COM B_TRUE }, 43029234SGeorge.Wilson@Sun.COM { zfs_ioc_snapshot_list_next, zfs_secpolicy_read, DATASET_NAME, B_FALSE, 430311454SSanjeev.Bagewadi@Sun.COM B_TRUE }, 43049234SGeorge.Wilson@Sun.COM { zfs_ioc_set_prop, zfs_secpolicy_none, DATASET_NAME, B_TRUE, B_TRUE }, 43059234SGeorge.Wilson@Sun.COM { zfs_ioc_create, zfs_secpolicy_create, DATASET_NAME, B_TRUE, B_TRUE }, 43069234SGeorge.Wilson@Sun.COM { zfs_ioc_destroy, zfs_secpolicy_destroy, DATASET_NAME, B_TRUE, 43079234SGeorge.Wilson@Sun.COM B_TRUE}, 43089234SGeorge.Wilson@Sun.COM { zfs_ioc_rollback, zfs_secpolicy_rollback, DATASET_NAME, B_TRUE, 43099234SGeorge.Wilson@Sun.COM B_TRUE }, 43109234SGeorge.Wilson@Sun.COM { zfs_ioc_rename, zfs_secpolicy_rename, DATASET_NAME, B_TRUE, B_TRUE }, 43119234SGeorge.Wilson@Sun.COM { zfs_ioc_recv, zfs_secpolicy_receive, DATASET_NAME, B_TRUE, B_TRUE }, 43129234SGeorge.Wilson@Sun.COM { zfs_ioc_send, zfs_secpolicy_send, DATASET_NAME, B_TRUE, B_FALSE }, 43139234SGeorge.Wilson@Sun.COM { zfs_ioc_inject_fault, zfs_secpolicy_inject, NO_NAME, B_FALSE, 43149234SGeorge.Wilson@Sun.COM B_FALSE }, 43159234SGeorge.Wilson@Sun.COM { zfs_ioc_clear_fault, zfs_secpolicy_inject, NO_NAME, B_FALSE, 43169234SGeorge.Wilson@Sun.COM B_FALSE }, 43179234SGeorge.Wilson@Sun.COM { zfs_ioc_inject_list_next, zfs_secpolicy_inject, NO_NAME, B_FALSE, 43189234SGeorge.Wilson@Sun.COM B_FALSE }, 43199234SGeorge.Wilson@Sun.COM { zfs_ioc_error_log, zfs_secpolicy_inject, POOL_NAME, B_FALSE, 43209234SGeorge.Wilson@Sun.COM B_FALSE }, 43219234SGeorge.Wilson@Sun.COM { zfs_ioc_clear, zfs_secpolicy_config, POOL_NAME, B_TRUE, B_FALSE }, 43229234SGeorge.Wilson@Sun.COM { zfs_ioc_promote, zfs_secpolicy_promote, DATASET_NAME, B_TRUE, 43239234SGeorge.Wilson@Sun.COM B_TRUE }, 432411314Swilliam.gorrell@sun.com { zfs_ioc_destroy_snaps, zfs_secpolicy_destroy_snaps, DATASET_NAME, 432511314Swilliam.gorrell@sun.com B_TRUE, B_TRUE }, 43269234SGeorge.Wilson@Sun.COM { zfs_ioc_snapshot, zfs_secpolicy_snapshot, DATASET_NAME, B_TRUE, 43279234SGeorge.Wilson@Sun.COM B_TRUE }, 43289234SGeorge.Wilson@Sun.COM { zfs_ioc_dsobj_to_dsname, zfs_secpolicy_config, POOL_NAME, B_FALSE, 43299234SGeorge.Wilson@Sun.COM B_FALSE }, 433010233SGeorge.Wilson@Sun.COM { zfs_ioc_obj_to_path, zfs_secpolicy_config, DATASET_NAME, B_FALSE, 433110233SGeorge.Wilson@Sun.COM B_TRUE }, 43329234SGeorge.Wilson@Sun.COM { zfs_ioc_pool_set_props, zfs_secpolicy_config, POOL_NAME, B_TRUE, 43339234SGeorge.Wilson@Sun.COM B_TRUE }, 43349234SGeorge.Wilson@Sun.COM { zfs_ioc_pool_get_props, zfs_secpolicy_read, POOL_NAME, B_FALSE, 43359234SGeorge.Wilson@Sun.COM B_FALSE }, 43369234SGeorge.Wilson@Sun.COM { zfs_ioc_set_fsacl, zfs_secpolicy_fsacl, DATASET_NAME, B_TRUE, 43379234SGeorge.Wilson@Sun.COM B_TRUE }, 43389234SGeorge.Wilson@Sun.COM { zfs_ioc_get_fsacl, zfs_secpolicy_read, DATASET_NAME, B_FALSE, 43399234SGeorge.Wilson@Sun.COM B_FALSE }, 43409234SGeorge.Wilson@Sun.COM { zfs_ioc_share, zfs_secpolicy_share, DATASET_NAME, B_FALSE, B_FALSE }, 43419234SGeorge.Wilson@Sun.COM { zfs_ioc_inherit_prop, zfs_secpolicy_inherit, DATASET_NAME, B_TRUE, 43429234SGeorge.Wilson@Sun.COM B_TRUE }, 43439234SGeorge.Wilson@Sun.COM { zfs_ioc_smb_acl, zfs_secpolicy_smb_acl, DATASET_NAME, B_FALSE, 43449396SMatthew.Ahrens@Sun.COM B_FALSE }, 43459396SMatthew.Ahrens@Sun.COM { zfs_ioc_userspace_one, zfs_secpolicy_userspace_one, 43469396SMatthew.Ahrens@Sun.COM DATASET_NAME, B_FALSE, B_FALSE }, 43479396SMatthew.Ahrens@Sun.COM { zfs_ioc_userspace_many, zfs_secpolicy_userspace_many, 43489396SMatthew.Ahrens@Sun.COM DATASET_NAME, B_FALSE, B_FALSE }, 43499396SMatthew.Ahrens@Sun.COM { zfs_ioc_userspace_upgrade, zfs_secpolicy_userspace_upgrade, 43509396SMatthew.Ahrens@Sun.COM DATASET_NAME, B_FALSE, B_TRUE }, 435110242Schris.kirby@sun.com { zfs_ioc_hold, zfs_secpolicy_hold, DATASET_NAME, B_TRUE, B_TRUE }, 435210242Schris.kirby@sun.com { zfs_ioc_release, zfs_secpolicy_release, DATASET_NAME, B_TRUE, 435310242Schris.kirby@sun.com B_TRUE }, 435410242Schris.kirby@sun.com { zfs_ioc_get_holds, zfs_secpolicy_read, DATASET_NAME, B_FALSE, 435511022STom.Erickson@Sun.COM B_TRUE }, 435611022STom.Erickson@Sun.COM { zfs_ioc_objset_recvd_props, zfs_secpolicy_read, DATASET_NAME, B_FALSE, 435711422SMark.Musante@Sun.COM B_FALSE }, 435811422SMark.Musante@Sun.COM { zfs_ioc_vdev_split, zfs_secpolicy_config, POOL_NAME, B_TRUE, 435911422SMark.Musante@Sun.COM B_TRUE } 4360789Sahrens }; 4361789Sahrens 43629234SGeorge.Wilson@Sun.COM int 43639234SGeorge.Wilson@Sun.COM pool_status_check(const char *name, zfs_ioc_namecheck_t type) 43649234SGeorge.Wilson@Sun.COM { 43659234SGeorge.Wilson@Sun.COM spa_t *spa; 43669234SGeorge.Wilson@Sun.COM int error; 43679234SGeorge.Wilson@Sun.COM 43689234SGeorge.Wilson@Sun.COM ASSERT(type == POOL_NAME || type == DATASET_NAME); 43699234SGeorge.Wilson@Sun.COM 43709396SMatthew.Ahrens@Sun.COM error = spa_open(name, &spa, FTAG); 43719234SGeorge.Wilson@Sun.COM if (error == 0) { 43729234SGeorge.Wilson@Sun.COM if (spa_suspended(spa)) 43739234SGeorge.Wilson@Sun.COM error = EAGAIN; 43749234SGeorge.Wilson@Sun.COM spa_close(spa, FTAG); 43759234SGeorge.Wilson@Sun.COM } 43769234SGeorge.Wilson@Sun.COM return (error); 43779234SGeorge.Wilson@Sun.COM } 43789234SGeorge.Wilson@Sun.COM 437912527SChris.Kirby@oracle.com /* 438012527SChris.Kirby@oracle.com * Find a free minor number. 438112527SChris.Kirby@oracle.com */ 438212527SChris.Kirby@oracle.com minor_t 438312527SChris.Kirby@oracle.com zfsdev_minor_alloc(void) 438412527SChris.Kirby@oracle.com { 438512527SChris.Kirby@oracle.com static minor_t last_minor; 438612527SChris.Kirby@oracle.com minor_t m; 438712527SChris.Kirby@oracle.com 438812527SChris.Kirby@oracle.com ASSERT(MUTEX_HELD(&zfsdev_state_lock)); 438912527SChris.Kirby@oracle.com 439012527SChris.Kirby@oracle.com for (m = last_minor + 1; m != last_minor; m++) { 439112527SChris.Kirby@oracle.com if (m > ZFSDEV_MAX_MINOR) 439212527SChris.Kirby@oracle.com m = 1; 439312527SChris.Kirby@oracle.com if (ddi_get_soft_state(zfsdev_state, m) == NULL) { 439412527SChris.Kirby@oracle.com last_minor = m; 439512527SChris.Kirby@oracle.com return (m); 439612527SChris.Kirby@oracle.com } 439712527SChris.Kirby@oracle.com } 439812527SChris.Kirby@oracle.com 439912527SChris.Kirby@oracle.com return (0); 440012527SChris.Kirby@oracle.com } 440112527SChris.Kirby@oracle.com 440212527SChris.Kirby@oracle.com static int 440312527SChris.Kirby@oracle.com zfs_ctldev_init(dev_t *devp) 440412527SChris.Kirby@oracle.com { 440512527SChris.Kirby@oracle.com minor_t minor; 440612527SChris.Kirby@oracle.com zfs_soft_state_t *zs; 440712527SChris.Kirby@oracle.com 440812527SChris.Kirby@oracle.com ASSERT(MUTEX_HELD(&zfsdev_state_lock)); 440912527SChris.Kirby@oracle.com ASSERT(getminor(*devp) == 0); 441012527SChris.Kirby@oracle.com 441112527SChris.Kirby@oracle.com minor = zfsdev_minor_alloc(); 441212527SChris.Kirby@oracle.com if (minor == 0) 441312527SChris.Kirby@oracle.com return (ENXIO); 441412527SChris.Kirby@oracle.com 441512527SChris.Kirby@oracle.com if (ddi_soft_state_zalloc(zfsdev_state, minor) != DDI_SUCCESS) 441612527SChris.Kirby@oracle.com return (EAGAIN); 441712527SChris.Kirby@oracle.com 441812527SChris.Kirby@oracle.com *devp = makedevice(getemajor(*devp), minor); 441912527SChris.Kirby@oracle.com 442012527SChris.Kirby@oracle.com zs = ddi_get_soft_state(zfsdev_state, minor); 442112527SChris.Kirby@oracle.com zs->zss_type = ZSST_CTLDEV; 442212527SChris.Kirby@oracle.com zfs_onexit_init((zfs_onexit_t **)&zs->zss_data); 442312527SChris.Kirby@oracle.com 442412527SChris.Kirby@oracle.com return (0); 442512527SChris.Kirby@oracle.com } 442612527SChris.Kirby@oracle.com 442712527SChris.Kirby@oracle.com static void 442812527SChris.Kirby@oracle.com zfs_ctldev_destroy(zfs_onexit_t *zo, minor_t minor) 442912527SChris.Kirby@oracle.com { 443012527SChris.Kirby@oracle.com ASSERT(MUTEX_HELD(&zfsdev_state_lock)); 443112527SChris.Kirby@oracle.com 443212527SChris.Kirby@oracle.com zfs_onexit_destroy(zo); 443312527SChris.Kirby@oracle.com ddi_soft_state_free(zfsdev_state, minor); 443412527SChris.Kirby@oracle.com } 443512527SChris.Kirby@oracle.com 443612527SChris.Kirby@oracle.com void * 443712527SChris.Kirby@oracle.com zfsdev_get_soft_state(minor_t minor, enum zfs_soft_state_type which) 443812527SChris.Kirby@oracle.com { 443912527SChris.Kirby@oracle.com zfs_soft_state_t *zp; 444012527SChris.Kirby@oracle.com 444112527SChris.Kirby@oracle.com zp = ddi_get_soft_state(zfsdev_state, minor); 444212527SChris.Kirby@oracle.com if (zp == NULL || zp->zss_type != which) 444312527SChris.Kirby@oracle.com return (NULL); 444412527SChris.Kirby@oracle.com 444512527SChris.Kirby@oracle.com return (zp->zss_data); 444612527SChris.Kirby@oracle.com } 444712527SChris.Kirby@oracle.com 444812527SChris.Kirby@oracle.com static int 444912527SChris.Kirby@oracle.com zfsdev_open(dev_t *devp, int flag, int otyp, cred_t *cr) 445012527SChris.Kirby@oracle.com { 445112527SChris.Kirby@oracle.com int error = 0; 445212527SChris.Kirby@oracle.com 445312527SChris.Kirby@oracle.com if (getminor(*devp) != 0) 445412527SChris.Kirby@oracle.com return (zvol_open(devp, flag, otyp, cr)); 445512527SChris.Kirby@oracle.com 445612527SChris.Kirby@oracle.com /* This is the control device. Allocate a new minor if requested. */ 445712527SChris.Kirby@oracle.com if (flag & FEXCL) { 445812527SChris.Kirby@oracle.com mutex_enter(&zfsdev_state_lock); 445912527SChris.Kirby@oracle.com error = zfs_ctldev_init(devp); 446012527SChris.Kirby@oracle.com mutex_exit(&zfsdev_state_lock); 446112527SChris.Kirby@oracle.com } 446212527SChris.Kirby@oracle.com 446312527SChris.Kirby@oracle.com return (error); 446412527SChris.Kirby@oracle.com } 446512527SChris.Kirby@oracle.com 446612527SChris.Kirby@oracle.com static int 446712527SChris.Kirby@oracle.com zfsdev_close(dev_t dev, int flag, int otyp, cred_t *cr) 446812527SChris.Kirby@oracle.com { 446912527SChris.Kirby@oracle.com zfs_onexit_t *zo; 447012527SChris.Kirby@oracle.com minor_t minor = getminor(dev); 447112527SChris.Kirby@oracle.com 447212527SChris.Kirby@oracle.com if (minor == 0) 447312527SChris.Kirby@oracle.com return (0); 447412527SChris.Kirby@oracle.com 447512527SChris.Kirby@oracle.com mutex_enter(&zfsdev_state_lock); 447612527SChris.Kirby@oracle.com zo = zfsdev_get_soft_state(minor, ZSST_CTLDEV); 447712527SChris.Kirby@oracle.com if (zo == NULL) { 447812527SChris.Kirby@oracle.com mutex_exit(&zfsdev_state_lock); 447912527SChris.Kirby@oracle.com return (zvol_close(dev, flag, otyp, cr)); 448012527SChris.Kirby@oracle.com } 448112527SChris.Kirby@oracle.com zfs_ctldev_destroy(zo, minor); 448212527SChris.Kirby@oracle.com mutex_exit(&zfsdev_state_lock); 448312527SChris.Kirby@oracle.com 448412527SChris.Kirby@oracle.com return (0); 448512527SChris.Kirby@oracle.com } 448612527SChris.Kirby@oracle.com 4487789Sahrens static int 4488789Sahrens zfsdev_ioctl(dev_t dev, int cmd, intptr_t arg, int flag, cred_t *cr, int *rvalp) 4489789Sahrens { 4490789Sahrens zfs_cmd_t *zc; 4491789Sahrens uint_t vec; 44922199Sahrens int error, rc; 449312527SChris.Kirby@oracle.com minor_t minor = getminor(dev); 449412527SChris.Kirby@oracle.com 449512527SChris.Kirby@oracle.com if (minor != 0 && 449612527SChris.Kirby@oracle.com zfsdev_get_soft_state(minor, ZSST_CTLDEV) == NULL) 4497789Sahrens return (zvol_ioctl(dev, cmd, arg, flag, cr, rvalp)); 4498789Sahrens 4499789Sahrens vec = cmd - ZFS_IOC; 45004787Sahrens ASSERT3U(getmajor(dev), ==, ddi_driver_major(zfs_dip)); 4501789Sahrens 4502789Sahrens if (vec >= sizeof (zfs_ioc_vec) / sizeof (zfs_ioc_vec[0])) 4503789Sahrens return (EINVAL); 4504789Sahrens 4505789Sahrens zc = kmem_zalloc(sizeof (zfs_cmd_t), KM_SLEEP); 4506789Sahrens 45079643SEric.Taylor@Sun.COM error = ddi_copyin((void *)arg, zc, sizeof (zfs_cmd_t), flag); 450811807SSam.Falkner@Sun.COM if (error != 0) 450911807SSam.Falkner@Sun.COM error = EFAULT; 4510789Sahrens 451110588SEric.Taylor@Sun.COM if ((error == 0) && !(flag & FKIOCTL)) 45124543Smarks error = zfs_ioc_vec[vec].zvec_secpolicy(zc, cr); 4513789Sahrens 4514789Sahrens /* 4515789Sahrens * Ensure that all pool/dataset names are valid before we pass down to 4516789Sahrens * the lower layers. 4517789Sahrens */ 4518789Sahrens if (error == 0) { 4519789Sahrens zc->zc_name[sizeof (zc->zc_name) - 1] = '\0'; 45209643SEric.Taylor@Sun.COM zc->zc_iflags = flag & FKIOCTL; 4521789Sahrens switch (zfs_ioc_vec[vec].zvec_namecheck) { 45224577Sahrens case POOL_NAME: 4523789Sahrens if (pool_namecheck(zc->zc_name, NULL, NULL) != 0) 4524789Sahrens error = EINVAL; 45259234SGeorge.Wilson@Sun.COM if (zfs_ioc_vec[vec].zvec_pool_check) 45269234SGeorge.Wilson@Sun.COM error = pool_status_check(zc->zc_name, 45279234SGeorge.Wilson@Sun.COM zfs_ioc_vec[vec].zvec_namecheck); 4528789Sahrens break; 4529789Sahrens 45304577Sahrens case DATASET_NAME: 4531789Sahrens if (dataset_namecheck(zc->zc_name, NULL, NULL) != 0) 4532789Sahrens error = EINVAL; 45339234SGeorge.Wilson@Sun.COM if (zfs_ioc_vec[vec].zvec_pool_check) 45349234SGeorge.Wilson@Sun.COM error = pool_status_check(zc->zc_name, 45359234SGeorge.Wilson@Sun.COM zfs_ioc_vec[vec].zvec_namecheck); 4536789Sahrens break; 45372856Snd150628 45384577Sahrens case NO_NAME: 45392856Snd150628 break; 4540789Sahrens } 4541789Sahrens } 4542789Sahrens 4543789Sahrens if (error == 0) 4544789Sahrens error = zfs_ioc_vec[vec].zvec_func(zc); 4545789Sahrens 45469643SEric.Taylor@Sun.COM rc = ddi_copyout(zc, (void *)arg, sizeof (zfs_cmd_t), flag); 45474543Smarks if (error == 0) { 454811807SSam.Falkner@Sun.COM if (rc != 0) 454911807SSam.Falkner@Sun.COM error = EFAULT; 45509396SMatthew.Ahrens@Sun.COM if (zfs_ioc_vec[vec].zvec_his_log) 45514543Smarks zfs_log_history(zc); 45524543Smarks } 4553789Sahrens 4554789Sahrens kmem_free(zc, sizeof (zfs_cmd_t)); 4555789Sahrens return (error); 4556789Sahrens } 4557789Sahrens 4558789Sahrens static int 4559789Sahrens zfs_attach(dev_info_t *dip, ddi_attach_cmd_t cmd) 4560789Sahrens { 4561789Sahrens if (cmd != DDI_ATTACH) 4562789Sahrens return (DDI_FAILURE); 4563789Sahrens 4564789Sahrens if (ddi_create_minor_node(dip, "zfs", S_IFCHR, 0, 4565789Sahrens DDI_PSEUDO, 0) == DDI_FAILURE) 4566789Sahrens return (DDI_FAILURE); 4567789Sahrens 4568789Sahrens zfs_dip = dip; 4569789Sahrens 4570789Sahrens ddi_report_dev(dip); 4571789Sahrens 4572789Sahrens return (DDI_SUCCESS); 4573789Sahrens } 4574789Sahrens 4575789Sahrens static int 4576789Sahrens zfs_detach(dev_info_t *dip, ddi_detach_cmd_t cmd) 4577789Sahrens { 4578789Sahrens if (spa_busy() || zfs_busy() || zvol_busy()) 4579789Sahrens return (DDI_FAILURE); 4580789Sahrens 4581789Sahrens if (cmd != DDI_DETACH) 4582789Sahrens return (DDI_FAILURE); 4583789Sahrens 4584789Sahrens zfs_dip = NULL; 4585789Sahrens 4586789Sahrens ddi_prop_remove_all(dip); 4587789Sahrens ddi_remove_minor_node(dip, NULL); 4588789Sahrens 4589789Sahrens return (DDI_SUCCESS); 4590789Sahrens } 4591789Sahrens 4592789Sahrens /*ARGSUSED*/ 4593789Sahrens static int 4594789Sahrens zfs_info(dev_info_t *dip, ddi_info_cmd_t infocmd, void *arg, void **result) 4595789Sahrens { 4596789Sahrens switch (infocmd) { 4597789Sahrens case DDI_INFO_DEVT2DEVINFO: 4598789Sahrens *result = zfs_dip; 4599789Sahrens return (DDI_SUCCESS); 4600789Sahrens 4601789Sahrens case DDI_INFO_DEVT2INSTANCE: 4602849Sbonwick *result = (void *)0; 4603789Sahrens return (DDI_SUCCESS); 4604789Sahrens } 4605789Sahrens 4606789Sahrens return (DDI_FAILURE); 4607789Sahrens } 4608789Sahrens 4609789Sahrens /* 4610789Sahrens * OK, so this is a little weird. 4611789Sahrens * 4612789Sahrens * /dev/zfs is the control node, i.e. minor 0. 4613789Sahrens * /dev/zvol/[r]dsk/pool/dataset are the zvols, minor > 0. 4614789Sahrens * 4615789Sahrens * /dev/zfs has basically nothing to do except serve up ioctls, 4616789Sahrens * so most of the standard driver entry points are in zvol.c. 4617789Sahrens */ 4618789Sahrens static struct cb_ops zfs_cb_ops = { 461912527SChris.Kirby@oracle.com zfsdev_open, /* open */ 462012527SChris.Kirby@oracle.com zfsdev_close, /* close */ 4621789Sahrens zvol_strategy, /* strategy */ 4622789Sahrens nodev, /* print */ 46236423Sgw25295 zvol_dump, /* dump */ 4624789Sahrens zvol_read, /* read */ 4625789Sahrens zvol_write, /* write */ 4626789Sahrens zfsdev_ioctl, /* ioctl */ 4627789Sahrens nodev, /* devmap */ 4628789Sahrens nodev, /* mmap */ 4629789Sahrens nodev, /* segmap */ 4630789Sahrens nochpoll, /* poll */ 4631789Sahrens ddi_prop_op, /* prop_op */ 4632789Sahrens NULL, /* streamtab */ 4633789Sahrens D_NEW | D_MP | D_64BIT, /* Driver compatibility flag */ 4634789Sahrens CB_REV, /* version */ 46353638Sbillm nodev, /* async read */ 46363638Sbillm nodev, /* async write */ 4637789Sahrens }; 4638789Sahrens 4639789Sahrens static struct dev_ops zfs_dev_ops = { 4640789Sahrens DEVO_REV, /* version */ 4641789Sahrens 0, /* refcnt */ 4642789Sahrens zfs_info, /* info */ 4643789Sahrens nulldev, /* identify */ 4644789Sahrens nulldev, /* probe */ 4645789Sahrens zfs_attach, /* attach */ 4646789Sahrens zfs_detach, /* detach */ 4647789Sahrens nodev, /* reset */ 4648789Sahrens &zfs_cb_ops, /* driver operations */ 46497656SSherry.Moore@Sun.COM NULL, /* no bus operations */ 46507656SSherry.Moore@Sun.COM NULL, /* power */ 46517656SSherry.Moore@Sun.COM ddi_quiesce_not_needed, /* quiesce */ 4652789Sahrens }; 4653789Sahrens 4654789Sahrens static struct modldrv zfs_modldrv = { 46557656SSherry.Moore@Sun.COM &mod_driverops, 46567656SSherry.Moore@Sun.COM "ZFS storage pool", 46577656SSherry.Moore@Sun.COM &zfs_dev_ops 4658789Sahrens }; 4659789Sahrens 4660789Sahrens static struct modlinkage modlinkage = { 4661789Sahrens MODREV_1, 4662789Sahrens (void *)&zfs_modlfs, 4663789Sahrens (void *)&zfs_modldrv, 4664789Sahrens NULL 4665789Sahrens }; 4666789Sahrens 46674720Sfr157268 46684720Sfr157268 uint_t zfs_fsyncer_key; 46695326Sek110237 extern uint_t rrw_tsd_key; 46704720Sfr157268 4671789Sahrens int 4672789Sahrens _init(void) 4673789Sahrens { 4674789Sahrens int error; 4675789Sahrens 4676849Sbonwick spa_init(FREAD | FWRITE); 4677849Sbonwick zfs_init(); 4678849Sbonwick zvol_init(); 4679849Sbonwick 4680849Sbonwick if ((error = mod_install(&modlinkage)) != 0) { 4681849Sbonwick zvol_fini(); 4682849Sbonwick zfs_fini(); 4683849Sbonwick spa_fini(); 4684789Sahrens return (error); 4685849Sbonwick } 4686789Sahrens 46874720Sfr157268 tsd_create(&zfs_fsyncer_key, NULL); 46885326Sek110237 tsd_create(&rrw_tsd_key, NULL); 46894720Sfr157268 4690789Sahrens error = ldi_ident_from_mod(&modlinkage, &zfs_li); 4691789Sahrens ASSERT(error == 0); 46924543Smarks mutex_init(&zfs_share_lock, NULL, MUTEX_DEFAULT, NULL); 4693789Sahrens 4694789Sahrens return (0); 4695789Sahrens } 4696789Sahrens 4697789Sahrens int 4698789Sahrens _fini(void) 4699789Sahrens { 4700789Sahrens int error; 4701789Sahrens 47021544Seschrock if (spa_busy() || zfs_busy() || zvol_busy() || zio_injection_enabled) 4703789Sahrens return (EBUSY); 4704789Sahrens 4705789Sahrens if ((error = mod_remove(&modlinkage)) != 0) 4706789Sahrens return (error); 4707789Sahrens 4708789Sahrens zvol_fini(); 4709789Sahrens zfs_fini(); 4710789Sahrens spa_fini(); 47115331Samw if (zfs_nfsshare_inited) 47124543Smarks (void) ddi_modclose(nfs_mod); 47135331Samw if (zfs_smbshare_inited) 47145331Samw (void) ddi_modclose(smbsrv_mod); 47155331Samw if (zfs_nfsshare_inited || zfs_smbshare_inited) 47164543Smarks (void) ddi_modclose(sharefs_mod); 4717789Sahrens 47184720Sfr157268 tsd_destroy(&zfs_fsyncer_key); 4719789Sahrens ldi_ident_release(zfs_li); 4720789Sahrens zfs_li = NULL; 47214543Smarks mutex_destroy(&zfs_share_lock); 4722789Sahrens 4723789Sahrens return (error); 4724789Sahrens } 4725789Sahrens 4726789Sahrens int 4727789Sahrens _info(struct modinfo *modinfop) 4728789Sahrens { 4729789Sahrens return (mod_info(&modlinkage, modinfop)); 4730789Sahrens } 4731