1789Sahrens /* 2789Sahrens * CDDL HEADER START 3789Sahrens * 4789Sahrens * The contents of this file are subject to the terms of the 51485Slling * Common Development and Distribution License (the "License"). 61485Slling * You may not use this file except in compliance with the License. 7789Sahrens * 8789Sahrens * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 9789Sahrens * or http://www.opensolaris.org/os/licensing. 10789Sahrens * See the License for the specific language governing permissions 11789Sahrens * and limitations under the License. 12789Sahrens * 13789Sahrens * When distributing Covered Code, include this CDDL HEADER in each 14789Sahrens * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 15789Sahrens * If applicable, add the following below this CDDL HEADER, with the 16789Sahrens * fields enclosed by brackets "[]" replaced with your own identifying 17789Sahrens * information: Portions Copyright [yyyy] [name of copyright owner] 18789Sahrens * 19789Sahrens * CDDL HEADER END 20789Sahrens */ 21789Sahrens /* 223444Sek110237 * Copyright 2007 Sun Microsystems, Inc. All rights reserved. 23789Sahrens * Use is subject to license terms. 24789Sahrens */ 25789Sahrens 26789Sahrens #pragma ident "%Z%%M% %I% %E% SMI" 27789Sahrens 28789Sahrens #include <sys/types.h> 29789Sahrens #include <sys/param.h> 30789Sahrens #include <sys/errno.h> 31789Sahrens #include <sys/uio.h> 32789Sahrens #include <sys/buf.h> 33789Sahrens #include <sys/modctl.h> 34789Sahrens #include <sys/open.h> 35789Sahrens #include <sys/file.h> 36789Sahrens #include <sys/kmem.h> 37789Sahrens #include <sys/conf.h> 38789Sahrens #include <sys/cmn_err.h> 39789Sahrens #include <sys/stat.h> 40789Sahrens #include <sys/zfs_ioctl.h> 415331Samw #include <sys/zfs_i18n.h> 425331Samw #include <sys/zfs_znode.h> 43789Sahrens #include <sys/zap.h> 44789Sahrens #include <sys/spa.h> 453912Slling #include <sys/spa_impl.h> 46789Sahrens #include <sys/vdev.h> 473912Slling #include <sys/vdev_impl.h> 48789Sahrens #include <sys/dmu.h> 49789Sahrens #include <sys/dsl_dir.h> 50789Sahrens #include <sys/dsl_dataset.h> 51789Sahrens #include <sys/dsl_prop.h> 524543Smarks #include <sys/dsl_deleg.h> 534543Smarks #include <sys/dmu_objset.h> 54789Sahrens #include <sys/ddi.h> 55789Sahrens #include <sys/sunddi.h> 56789Sahrens #include <sys/sunldi.h> 57789Sahrens #include <sys/policy.h> 58789Sahrens #include <sys/zone.h> 59789Sahrens #include <sys/nvpair.h> 60789Sahrens #include <sys/pathname.h> 61789Sahrens #include <sys/mount.h> 62789Sahrens #include <sys/sdt.h> 63789Sahrens #include <sys/fs/zfs.h> 64789Sahrens #include <sys/zfs_ctldir.h> 655331Samw #include <sys/zfs_dir.h> 662885Sahrens #include <sys/zvol.h> 674543Smarks #include <sharefs/share.h> 684577Sahrens #include <sys/zfs_znode.h> 695326Sek110237 #include <sys/zfs_vfsops.h> 705326Sek110237 #include <sys/dmu_objset.h> 71789Sahrens 72789Sahrens #include "zfs_namecheck.h" 732676Seschrock #include "zfs_prop.h" 744543Smarks #include "zfs_deleg.h" 75789Sahrens 76789Sahrens extern struct modlfs zfs_modlfs; 77789Sahrens 78789Sahrens extern void zfs_init(void); 79789Sahrens extern void zfs_fini(void); 80789Sahrens 81789Sahrens ldi_ident_t zfs_li = NULL; 82789Sahrens dev_info_t *zfs_dip; 83789Sahrens 84789Sahrens typedef int zfs_ioc_func_t(zfs_cmd_t *); 854543Smarks typedef int zfs_secpolicy_func_t(zfs_cmd_t *, cred_t *); 86789Sahrens 87789Sahrens typedef struct zfs_ioc_vec { 88789Sahrens zfs_ioc_func_t *zvec_func; 89789Sahrens zfs_secpolicy_func_t *zvec_secpolicy; 90789Sahrens enum { 914577Sahrens NO_NAME, 924577Sahrens POOL_NAME, 934577Sahrens DATASET_NAME 944543Smarks } zvec_namecheck; 954543Smarks boolean_t zvec_his_log; 96789Sahrens } zfs_ioc_vec_t; 97789Sahrens 98789Sahrens /* _NOTE(PRINTFLIKE(4)) - this is printf-like, but lint is too whiney */ 99789Sahrens void 100789Sahrens __dprintf(const char *file, const char *func, int line, const char *fmt, ...) 101789Sahrens { 102789Sahrens const char *newfile; 103789Sahrens char buf[256]; 104789Sahrens va_list adx; 105789Sahrens 106789Sahrens /* 107789Sahrens * Get rid of annoying "../common/" prefix to filename. 108789Sahrens */ 109789Sahrens newfile = strrchr(file, '/'); 110789Sahrens if (newfile != NULL) { 111789Sahrens newfile = newfile + 1; /* Get rid of leading / */ 112789Sahrens } else { 113789Sahrens newfile = file; 114789Sahrens } 115789Sahrens 116789Sahrens va_start(adx, fmt); 117789Sahrens (void) vsnprintf(buf, sizeof (buf), fmt, adx); 118789Sahrens va_end(adx); 119789Sahrens 120789Sahrens /* 121789Sahrens * To get this data, use the zfs-dprintf probe as so: 122789Sahrens * dtrace -q -n 'zfs-dprintf \ 123789Sahrens * /stringof(arg0) == "dbuf.c"/ \ 124789Sahrens * {printf("%s: %s", stringof(arg1), stringof(arg3))}' 125789Sahrens * arg0 = file name 126789Sahrens * arg1 = function name 127789Sahrens * arg2 = line number 128789Sahrens * arg3 = message 129789Sahrens */ 130789Sahrens DTRACE_PROBE4(zfs__dprintf, 131789Sahrens char *, newfile, char *, func, int, line, char *, buf); 132789Sahrens } 133789Sahrens 1344543Smarks static void 1354715Sek110237 history_str_free(char *buf) 1364715Sek110237 { 1374715Sek110237 kmem_free(buf, HIS_MAX_RECORD_LEN); 1384715Sek110237 } 1394715Sek110237 1404715Sek110237 static char * 1414715Sek110237 history_str_get(zfs_cmd_t *zc) 1424715Sek110237 { 1434715Sek110237 char *buf; 1444715Sek110237 1454715Sek110237 if (zc->zc_history == NULL) 1464715Sek110237 return (NULL); 1474715Sek110237 1484715Sek110237 buf = kmem_alloc(HIS_MAX_RECORD_LEN, KM_SLEEP); 1494715Sek110237 if (copyinstr((void *)(uintptr_t)zc->zc_history, 1504715Sek110237 buf, HIS_MAX_RECORD_LEN, NULL) != 0) { 1514715Sek110237 history_str_free(buf); 1524715Sek110237 return (NULL); 1534715Sek110237 } 1544715Sek110237 1554715Sek110237 buf[HIS_MAX_RECORD_LEN -1] = '\0'; 1564715Sek110237 1574715Sek110237 return (buf); 1584715Sek110237 } 1594715Sek110237 160*5375Stimh /* 161*5375Stimh * zfs_check_version 162*5375Stimh * 163*5375Stimh * Return non-zero if the spa version is less than requested version. 164*5375Stimh */ 1655331Samw static int 1665331Samw zfs_check_version(const char *name, int version) 1675331Samw { 1685331Samw 1695331Samw spa_t *spa; 1705331Samw 1715331Samw if (spa_open(name, &spa, FTAG) == 0) { 1725331Samw if (spa_version(spa) < version) { 1735331Samw spa_close(spa, FTAG); 1745331Samw return (1); 1755331Samw } 1765331Samw spa_close(spa, FTAG); 1775331Samw } 1785331Samw return (0); 1795331Samw } 1805331Samw 1814715Sek110237 static void 1824543Smarks zfs_log_history(zfs_cmd_t *zc) 1834543Smarks { 1844543Smarks spa_t *spa; 1854603Sahrens char *buf; 1864543Smarks 1874715Sek110237 if ((buf = history_str_get(zc)) == NULL) 1884577Sahrens return; 1894577Sahrens 1904715Sek110237 if (spa_open(zc->zc_name, &spa, FTAG) == 0) { 1914715Sek110237 if (spa_version(spa) >= SPA_VERSION_ZPOOL_HISTORY) 1924715Sek110237 (void) spa_history_log(spa, buf, LOG_CMD_NORMAL); 1934715Sek110237 spa_close(spa, FTAG); 1944543Smarks } 1954715Sek110237 history_str_free(buf); 1964543Smarks } 1974543Smarks 198789Sahrens /* 199789Sahrens * Policy for top-level read operations (list pools). Requires no privileges, 200789Sahrens * and can be used in the local zone, as there is no associated dataset. 201789Sahrens */ 202789Sahrens /* ARGSUSED */ 203789Sahrens static int 2044543Smarks zfs_secpolicy_none(zfs_cmd_t *zc, cred_t *cr) 205789Sahrens { 206789Sahrens return (0); 207789Sahrens } 208789Sahrens 209789Sahrens /* 210789Sahrens * Policy for dataset read operations (list children, get statistics). Requires 211789Sahrens * no privileges, but must be visible in the local zone. 212789Sahrens */ 213789Sahrens /* ARGSUSED */ 214789Sahrens static int 2154543Smarks zfs_secpolicy_read(zfs_cmd_t *zc, cred_t *cr) 216789Sahrens { 217789Sahrens if (INGLOBALZONE(curproc) || 2184543Smarks zone_dataset_visible(zc->zc_name, NULL)) 219789Sahrens return (0); 220789Sahrens 221789Sahrens return (ENOENT); 222789Sahrens } 223789Sahrens 224789Sahrens static int 225789Sahrens zfs_dozonecheck(const char *dataset, cred_t *cr) 226789Sahrens { 227789Sahrens uint64_t zoned; 228789Sahrens int writable = 1; 229789Sahrens 230789Sahrens /* 231789Sahrens * The dataset must be visible by this zone -- check this first 232789Sahrens * so they don't see EPERM on something they shouldn't know about. 233789Sahrens */ 234789Sahrens if (!INGLOBALZONE(curproc) && 235789Sahrens !zone_dataset_visible(dataset, &writable)) 236789Sahrens return (ENOENT); 237789Sahrens 238789Sahrens if (dsl_prop_get_integer(dataset, "zoned", &zoned, NULL)) 239789Sahrens return (ENOENT); 240789Sahrens 241789Sahrens if (INGLOBALZONE(curproc)) { 242789Sahrens /* 243789Sahrens * If the fs is zoned, only root can access it from the 244789Sahrens * global zone. 245789Sahrens */ 246789Sahrens if (secpolicy_zfs(cr) && zoned) 247789Sahrens return (EPERM); 248789Sahrens } else { 249789Sahrens /* 250789Sahrens * If we are in a local zone, the 'zoned' property must be set. 251789Sahrens */ 252789Sahrens if (!zoned) 253789Sahrens return (EPERM); 254789Sahrens 255789Sahrens /* must be writable by this zone */ 256789Sahrens if (!writable) 257789Sahrens return (EPERM); 258789Sahrens } 259789Sahrens return (0); 260789Sahrens } 261789Sahrens 262789Sahrens int 2634543Smarks zfs_secpolicy_write_perms(const char *name, const char *perm, cred_t *cr) 264789Sahrens { 265789Sahrens int error; 266789Sahrens 2674543Smarks error = zfs_dozonecheck(name, cr); 2684543Smarks if (error == 0) { 2694543Smarks error = secpolicy_zfs(cr); 2704670Sahrens if (error) 2714543Smarks error = dsl_deleg_access(name, perm, cr); 2724543Smarks } 2734543Smarks return (error); 2744543Smarks } 2754543Smarks 2764543Smarks static int 2774543Smarks zfs_secpolicy_setprop(const char *name, zfs_prop_t prop, cred_t *cr) 2784543Smarks { 2794543Smarks /* 2804543Smarks * Check permissions for special properties. 2814543Smarks */ 2824543Smarks switch (prop) { 2834543Smarks case ZFS_PROP_ZONED: 2844543Smarks /* 2854543Smarks * Disallow setting of 'zoned' from within a local zone. 2864543Smarks */ 2874543Smarks if (!INGLOBALZONE(curproc)) 2884543Smarks return (EPERM); 2894543Smarks break; 290789Sahrens 2914543Smarks case ZFS_PROP_QUOTA: 2924543Smarks if (!INGLOBALZONE(curproc)) { 2934543Smarks uint64_t zoned; 2944543Smarks char setpoint[MAXNAMELEN]; 2954543Smarks /* 2964543Smarks * Unprivileged users are allowed to modify the 2974543Smarks * quota on things *under* (ie. contained by) 2984543Smarks * the thing they own. 2994543Smarks */ 3004543Smarks if (dsl_prop_get_integer(name, "zoned", &zoned, 3014543Smarks setpoint)) 3024543Smarks return (EPERM); 3034670Sahrens if (!zoned || strlen(name) <= strlen(setpoint)) 3044543Smarks return (EPERM); 3054543Smarks } 3064670Sahrens break; 3074543Smarks } 3084543Smarks 3094787Sahrens return (zfs_secpolicy_write_perms(name, zfs_prop_to_name(prop), cr)); 310789Sahrens } 311789Sahrens 3124543Smarks int 3134543Smarks zfs_secpolicy_fsacl(zfs_cmd_t *zc, cred_t *cr) 3144543Smarks { 3154543Smarks int error; 3164543Smarks 3174543Smarks error = zfs_dozonecheck(zc->zc_name, cr); 3184543Smarks if (error) 3194543Smarks return (error); 3204543Smarks 3214543Smarks /* 3224543Smarks * permission to set permissions will be evaluated later in 3234543Smarks * dsl_deleg_can_allow() 3244543Smarks */ 3254543Smarks return (0); 3264543Smarks } 3274543Smarks 3284543Smarks int 3294543Smarks zfs_secpolicy_rollback(zfs_cmd_t *zc, cred_t *cr) 3304543Smarks { 3314543Smarks int error; 3324543Smarks error = zfs_secpolicy_write_perms(zc->zc_name, 3334543Smarks ZFS_DELEG_PERM_ROLLBACK, cr); 3344543Smarks if (error == 0) 3354543Smarks error = zfs_secpolicy_write_perms(zc->zc_name, 3364543Smarks ZFS_DELEG_PERM_MOUNT, cr); 3374543Smarks return (error); 3384543Smarks } 3394543Smarks 3404543Smarks int 3414543Smarks zfs_secpolicy_send(zfs_cmd_t *zc, cred_t *cr) 3424543Smarks { 3434543Smarks return (zfs_secpolicy_write_perms(zc->zc_name, 3444543Smarks ZFS_DELEG_PERM_SEND, cr)); 3454543Smarks } 3464543Smarks 3474543Smarks int 3484543Smarks zfs_secpolicy_share(zfs_cmd_t *zc, cred_t *cr) 3494543Smarks { 3504543Smarks if (!INGLOBALZONE(curproc)) 3514543Smarks return (EPERM); 3524543Smarks 3535367Sahrens if (secpolicy_nfs(cr) == 0) { 3544543Smarks return (0); 3554543Smarks } else { 3564543Smarks vnode_t *vp; 3574543Smarks int error; 3584543Smarks 3594543Smarks if ((error = lookupname(zc->zc_value, UIO_SYSSPACE, 3604543Smarks NO_FOLLOW, NULL, &vp)) != 0) 3614543Smarks return (error); 3624543Smarks 3634543Smarks /* Now make sure mntpnt and dataset are ZFS */ 3644543Smarks 3654543Smarks if (vp->v_vfsp->vfs_fstype != zfsfstype || 3664543Smarks (strcmp((char *)refstr_value(vp->v_vfsp->vfs_resource), 3674543Smarks zc->zc_name) != 0)) { 3684543Smarks VN_RELE(vp); 3694543Smarks return (EPERM); 3704543Smarks } 3714543Smarks 3724543Smarks VN_RELE(vp); 3734543Smarks return (dsl_deleg_access(zc->zc_name, 3744543Smarks ZFS_DELEG_PERM_SHARE, cr)); 3754543Smarks } 3764543Smarks } 3774543Smarks 378789Sahrens static int 3794543Smarks zfs_get_parent(const char *datasetname, char *parent, int parentsize) 380789Sahrens { 381789Sahrens char *cp; 382789Sahrens 383789Sahrens /* 384789Sahrens * Remove the @bla or /bla from the end of the name to get the parent. 385789Sahrens */ 3864543Smarks (void) strncpy(parent, datasetname, parentsize); 3874543Smarks cp = strrchr(parent, '@'); 388789Sahrens if (cp != NULL) { 389789Sahrens cp[0] = '\0'; 390789Sahrens } else { 3914543Smarks cp = strrchr(parent, '/'); 392789Sahrens if (cp == NULL) 393789Sahrens return (ENOENT); 394789Sahrens cp[0] = '\0'; 395789Sahrens } 396789Sahrens 3974543Smarks return (0); 3984543Smarks } 3994543Smarks 4004543Smarks int 4014543Smarks zfs_secpolicy_destroy_perms(const char *name, cred_t *cr) 4024543Smarks { 4034543Smarks int error; 4044543Smarks 4054543Smarks if ((error = zfs_secpolicy_write_perms(name, 4064543Smarks ZFS_DELEG_PERM_MOUNT, cr)) != 0) 4074543Smarks return (error); 4084543Smarks 4094543Smarks return (zfs_secpolicy_write_perms(name, ZFS_DELEG_PERM_DESTROY, cr)); 4104543Smarks } 4114543Smarks 4124543Smarks static int 4134543Smarks zfs_secpolicy_destroy(zfs_cmd_t *zc, cred_t *cr) 4144543Smarks { 4154543Smarks return (zfs_secpolicy_destroy_perms(zc->zc_name, cr)); 4164543Smarks } 4174543Smarks 4184543Smarks /* 4194543Smarks * Must have sys_config privilege to check the iscsi permission 4204543Smarks */ 4214543Smarks /* ARGSUSED */ 4224543Smarks static int 4234543Smarks zfs_secpolicy_iscsi(zfs_cmd_t *zc, cred_t *cr) 4244543Smarks { 4254543Smarks return (secpolicy_zfs(cr)); 4264543Smarks } 4274543Smarks 4284543Smarks int 4294543Smarks zfs_secpolicy_rename_perms(const char *from, const char *to, cred_t *cr) 4304543Smarks { 4314543Smarks char parentname[MAXNAMELEN]; 4324543Smarks int error; 4334543Smarks 4344543Smarks if ((error = zfs_secpolicy_write_perms(from, 4354543Smarks ZFS_DELEG_PERM_RENAME, cr)) != 0) 4364543Smarks return (error); 4374543Smarks 4384543Smarks if ((error = zfs_secpolicy_write_perms(from, 4394543Smarks ZFS_DELEG_PERM_MOUNT, cr)) != 0) 4404543Smarks return (error); 4414543Smarks 4424543Smarks if ((error = zfs_get_parent(to, parentname, 4434543Smarks sizeof (parentname))) != 0) 4444543Smarks return (error); 4454543Smarks 4464543Smarks if ((error = zfs_secpolicy_write_perms(parentname, 4474543Smarks ZFS_DELEG_PERM_CREATE, cr)) != 0) 4484543Smarks return (error); 4494543Smarks 4504543Smarks if ((error = zfs_secpolicy_write_perms(parentname, 4514543Smarks ZFS_DELEG_PERM_MOUNT, cr)) != 0) 4524543Smarks return (error); 4534543Smarks 4544543Smarks return (error); 4554543Smarks } 4564543Smarks 4574543Smarks static int 4584543Smarks zfs_secpolicy_rename(zfs_cmd_t *zc, cred_t *cr) 4594543Smarks { 4604543Smarks return (zfs_secpolicy_rename_perms(zc->zc_name, zc->zc_value, cr)); 4614543Smarks } 4624543Smarks 4634543Smarks static int 4644543Smarks zfs_secpolicy_promote(zfs_cmd_t *zc, cred_t *cr) 4654543Smarks { 4664543Smarks char parentname[MAXNAMELEN]; 4674543Smarks objset_t *clone; 4684543Smarks int error; 4694543Smarks 4704543Smarks error = zfs_secpolicy_write_perms(zc->zc_name, 4714543Smarks ZFS_DELEG_PERM_PROMOTE, cr); 4724543Smarks if (error) 4734543Smarks return (error); 4744543Smarks 4754543Smarks error = dmu_objset_open(zc->zc_name, DMU_OST_ANY, 4764543Smarks DS_MODE_STANDARD | DS_MODE_READONLY, &clone); 4774543Smarks 4784543Smarks if (error == 0) { 4794543Smarks dsl_dataset_t *pclone = NULL; 4804543Smarks dsl_dir_t *dd; 4814543Smarks dd = clone->os->os_dsl_dataset->ds_dir; 4824543Smarks 4834543Smarks rw_enter(&dd->dd_pool->dp_config_rwlock, RW_READER); 4844543Smarks error = dsl_dataset_open_obj(dd->dd_pool, 4855367Sahrens dd->dd_phys->dd_origin_obj, NULL, 4864543Smarks DS_MODE_NONE, FTAG, &pclone); 4874543Smarks rw_exit(&dd->dd_pool->dp_config_rwlock); 4884543Smarks if (error) { 4894543Smarks dmu_objset_close(clone); 4904543Smarks return (error); 4914543Smarks } 4924543Smarks 4934543Smarks error = zfs_secpolicy_write_perms(zc->zc_name, 4944543Smarks ZFS_DELEG_PERM_MOUNT, cr); 4954543Smarks 4964543Smarks dsl_dataset_name(pclone, parentname); 4974543Smarks dmu_objset_close(clone); 4984543Smarks dsl_dataset_close(pclone, DS_MODE_NONE, FTAG); 4994543Smarks if (error == 0) 5004543Smarks error = zfs_secpolicy_write_perms(parentname, 5014543Smarks ZFS_DELEG_PERM_PROMOTE, cr); 5024543Smarks } 5034543Smarks return (error); 5044543Smarks } 5054543Smarks 5064543Smarks static int 5074543Smarks zfs_secpolicy_receive(zfs_cmd_t *zc, cred_t *cr) 5084543Smarks { 5094543Smarks int error; 5104543Smarks 5114543Smarks if ((error = zfs_secpolicy_write_perms(zc->zc_name, 5124543Smarks ZFS_DELEG_PERM_RECEIVE, cr)) != 0) 5134543Smarks return (error); 5144543Smarks 5154543Smarks if ((error = zfs_secpolicy_write_perms(zc->zc_name, 5164543Smarks ZFS_DELEG_PERM_MOUNT, cr)) != 0) 5174543Smarks return (error); 5184543Smarks 5194543Smarks return (zfs_secpolicy_write_perms(zc->zc_name, 5204543Smarks ZFS_DELEG_PERM_CREATE, cr)); 5214543Smarks } 5224543Smarks 5234543Smarks int 5244543Smarks zfs_secpolicy_snapshot_perms(const char *name, cred_t *cr) 5254543Smarks { 5264543Smarks int error; 5274543Smarks 5284543Smarks if ((error = zfs_secpolicy_write_perms(name, 5294543Smarks ZFS_DELEG_PERM_SNAPSHOT, cr)) != 0) 5304543Smarks return (error); 5314543Smarks 5324543Smarks error = zfs_secpolicy_write_perms(name, 5334543Smarks ZFS_DELEG_PERM_MOUNT, cr); 5344543Smarks 5354543Smarks return (error); 5364543Smarks } 5374543Smarks 5384543Smarks static int 5394543Smarks zfs_secpolicy_snapshot(zfs_cmd_t *zc, cred_t *cr) 5404543Smarks { 5414543Smarks 5424543Smarks return (zfs_secpolicy_snapshot_perms(zc->zc_name, cr)); 5434543Smarks } 5444543Smarks 5454543Smarks static int 5464543Smarks zfs_secpolicy_create(zfs_cmd_t *zc, cred_t *cr) 5474543Smarks { 5484543Smarks char parentname[MAXNAMELEN]; 5494543Smarks int error; 5504543Smarks 5514543Smarks if ((error = zfs_get_parent(zc->zc_name, parentname, 5524543Smarks sizeof (parentname))) != 0) 5534543Smarks return (error); 5544543Smarks 5554543Smarks if (zc->zc_value[0] != '\0') { 5564543Smarks if ((error = zfs_secpolicy_write_perms(zc->zc_value, 5574543Smarks ZFS_DELEG_PERM_CLONE, cr)) != 0) 5584543Smarks return (error); 5594543Smarks } 5604543Smarks 5614543Smarks if ((error = zfs_secpolicy_write_perms(parentname, 5624543Smarks ZFS_DELEG_PERM_CREATE, cr)) != 0) 5634543Smarks return (error); 5644543Smarks 5654543Smarks error = zfs_secpolicy_write_perms(parentname, 5664543Smarks ZFS_DELEG_PERM_MOUNT, cr); 5674543Smarks 5684543Smarks return (error); 5694543Smarks } 5704543Smarks 5714543Smarks static int 5724543Smarks zfs_secpolicy_umount(zfs_cmd_t *zc, cred_t *cr) 5734543Smarks { 5744543Smarks int error; 5754543Smarks 5764543Smarks error = secpolicy_fs_unmount(cr, NULL); 5774543Smarks if (error) { 5784543Smarks error = dsl_deleg_access(zc->zc_name, ZFS_DELEG_PERM_MOUNT, cr); 5794543Smarks } 5804543Smarks return (error); 581789Sahrens } 582789Sahrens 583789Sahrens /* 584789Sahrens * Policy for pool operations - create/destroy pools, add vdevs, etc. Requires 585789Sahrens * SYS_CONFIG privilege, which is not available in a local zone. 586789Sahrens */ 587789Sahrens /* ARGSUSED */ 588789Sahrens static int 5894543Smarks zfs_secpolicy_config(zfs_cmd_t *zc, cred_t *cr) 590789Sahrens { 591789Sahrens if (secpolicy_sys_config(cr, B_FALSE) != 0) 592789Sahrens return (EPERM); 593789Sahrens 594789Sahrens return (0); 595789Sahrens } 596789Sahrens 597789Sahrens /* 5984543Smarks * Just like zfs_secpolicy_config, except that we will check for 5994543Smarks * mount permission on the dataset for permission to create/remove 6004543Smarks * the minor nodes. 6014543Smarks */ 6024543Smarks static int 6034543Smarks zfs_secpolicy_minor(zfs_cmd_t *zc, cred_t *cr) 6044543Smarks { 6054543Smarks if (secpolicy_sys_config(cr, B_FALSE) != 0) { 6064543Smarks return (dsl_deleg_access(zc->zc_name, 6074543Smarks ZFS_DELEG_PERM_MOUNT, cr)); 6084543Smarks } 6094543Smarks 6104543Smarks return (0); 6114543Smarks } 6124543Smarks 6134543Smarks /* 6141544Seschrock * Policy for fault injection. Requires all privileges. 6151544Seschrock */ 6161544Seschrock /* ARGSUSED */ 6171544Seschrock static int 6184543Smarks zfs_secpolicy_inject(zfs_cmd_t *zc, cred_t *cr) 6191544Seschrock { 6201544Seschrock return (secpolicy_zinject(cr)); 6211544Seschrock } 6221544Seschrock 6234849Sahrens static int 6244849Sahrens zfs_secpolicy_inherit(zfs_cmd_t *zc, cred_t *cr) 6254849Sahrens { 6264849Sahrens zfs_prop_t prop = zfs_name_to_prop(zc->zc_value); 6274849Sahrens 6285094Slling if (prop == ZPROP_INVAL) { 6294849Sahrens if (!zfs_prop_user(zc->zc_value)) 6304849Sahrens return (EINVAL); 6314849Sahrens return (zfs_secpolicy_write_perms(zc->zc_name, 6324849Sahrens ZFS_DELEG_PERM_USERPROP, cr)); 6334849Sahrens } else { 6344849Sahrens if (!zfs_prop_inheritable(prop)) 6354849Sahrens return (EINVAL); 6364849Sahrens return (zfs_secpolicy_setprop(zc->zc_name, prop, cr)); 6374849Sahrens } 6384849Sahrens } 6394849Sahrens 6401544Seschrock /* 641789Sahrens * Returns the nvlist as specified by the user in the zfs_cmd_t. 642789Sahrens */ 643789Sahrens static int 6445094Slling get_nvlist(uint64_t nvl, uint64_t size, nvlist_t **nvp) 645789Sahrens { 646789Sahrens char *packed; 647789Sahrens int error; 6485094Slling nvlist_t *list = NULL; 649789Sahrens 650789Sahrens /* 6512676Seschrock * Read in and unpack the user-supplied nvlist. 652789Sahrens */ 6535094Slling if (size == 0) 654789Sahrens return (EINVAL); 655789Sahrens 656789Sahrens packed = kmem_alloc(size, KM_SLEEP); 657789Sahrens 6585094Slling if ((error = xcopyin((void *)(uintptr_t)nvl, packed, size)) != 0) { 659789Sahrens kmem_free(packed, size); 660789Sahrens return (error); 661789Sahrens } 662789Sahrens 6635094Slling if ((error = nvlist_unpack(packed, size, &list, 0)) != 0) { 664789Sahrens kmem_free(packed, size); 665789Sahrens return (error); 666789Sahrens } 667789Sahrens 668789Sahrens kmem_free(packed, size); 669789Sahrens 6705094Slling *nvp = list; 671789Sahrens return (0); 672789Sahrens } 673789Sahrens 674789Sahrens static int 6752676Seschrock put_nvlist(zfs_cmd_t *zc, nvlist_t *nvl) 6762676Seschrock { 6772676Seschrock char *packed = NULL; 6782676Seschrock size_t size; 6792676Seschrock int error; 6802676Seschrock 6812676Seschrock VERIFY(nvlist_size(nvl, &size, NV_ENCODE_NATIVE) == 0); 6822676Seschrock 6832676Seschrock if (size > zc->zc_nvlist_dst_size) { 6842676Seschrock error = ENOMEM; 6852676Seschrock } else { 6864611Smarks packed = kmem_alloc(size, KM_SLEEP); 6872676Seschrock VERIFY(nvlist_pack(nvl, &packed, &size, NV_ENCODE_NATIVE, 6882676Seschrock KM_SLEEP) == 0); 6892676Seschrock error = xcopyout(packed, (void *)(uintptr_t)zc->zc_nvlist_dst, 6902676Seschrock size); 6912676Seschrock kmem_free(packed, size); 6922676Seschrock } 6932676Seschrock 6942676Seschrock zc->zc_nvlist_dst_size = size; 6952676Seschrock return (error); 6962676Seschrock } 6972676Seschrock 6982676Seschrock static int 699789Sahrens zfs_ioc_pool_create(zfs_cmd_t *zc) 700789Sahrens { 701789Sahrens int error; 7025094Slling nvlist_t *config, *props = NULL; 7034715Sek110237 char *buf; 704789Sahrens 7055094Slling if (error = get_nvlist(zc->zc_nvlist_conf, zc->zc_nvlist_conf_size, 7065094Slling &config)) 7074988Sek110237 return (error); 7084715Sek110237 7095094Slling if (zc->zc_nvlist_src_size != 0 && (error = 7105094Slling get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, &props))) { 7115094Slling nvlist_free(config); 7125094Slling return (error); 7135094Slling } 7145094Slling 7154988Sek110237 buf = history_str_get(zc); 716789Sahrens 7175094Slling error = spa_create(zc->zc_name, config, props, buf); 718789Sahrens 7194988Sek110237 if (buf != NULL) 7204988Sek110237 history_str_free(buf); 7215094Slling 722789Sahrens nvlist_free(config); 723789Sahrens 7245094Slling if (props) 7255094Slling nvlist_free(props); 7265094Slling 727789Sahrens return (error); 728789Sahrens } 729789Sahrens 730789Sahrens static int 731789Sahrens zfs_ioc_pool_destroy(zfs_cmd_t *zc) 732789Sahrens { 7334543Smarks int error; 7344543Smarks zfs_log_history(zc); 7354543Smarks error = spa_destroy(zc->zc_name); 7364543Smarks return (error); 737789Sahrens } 738789Sahrens 739789Sahrens static int 740789Sahrens zfs_ioc_pool_import(zfs_cmd_t *zc) 741789Sahrens { 742789Sahrens int error; 7435094Slling nvlist_t *config, *props = NULL; 744789Sahrens uint64_t guid; 745789Sahrens 7465094Slling if ((error = get_nvlist(zc->zc_nvlist_conf, zc->zc_nvlist_conf_size, 7475094Slling &config)) != 0) 748789Sahrens return (error); 749789Sahrens 7505094Slling if (zc->zc_nvlist_src_size != 0 && (error = 7515094Slling get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, &props))) { 7525094Slling nvlist_free(config); 7535094Slling return (error); 7545094Slling } 7555094Slling 756789Sahrens if (nvlist_lookup_uint64(config, ZPOOL_CONFIG_POOL_GUID, &guid) != 0 || 7571544Seschrock guid != zc->zc_guid) 758789Sahrens error = EINVAL; 759789Sahrens else 7605094Slling error = spa_import(zc->zc_name, config, props); 761789Sahrens 762789Sahrens nvlist_free(config); 763789Sahrens 7645094Slling if (props) 7655094Slling nvlist_free(props); 7665094Slling 767789Sahrens return (error); 768789Sahrens } 769789Sahrens 770789Sahrens static int 771789Sahrens zfs_ioc_pool_export(zfs_cmd_t *zc) 772789Sahrens { 7734543Smarks int error; 7744543Smarks zfs_log_history(zc); 7754543Smarks error = spa_export(zc->zc_name, NULL); 7764543Smarks return (error); 777789Sahrens } 778789Sahrens 779789Sahrens static int 780789Sahrens zfs_ioc_pool_configs(zfs_cmd_t *zc) 781789Sahrens { 782789Sahrens nvlist_t *configs; 783789Sahrens int error; 784789Sahrens 785789Sahrens if ((configs = spa_all_configs(&zc->zc_cookie)) == NULL) 786789Sahrens return (EEXIST); 787789Sahrens 7882676Seschrock error = put_nvlist(zc, configs); 789789Sahrens 790789Sahrens nvlist_free(configs); 791789Sahrens 792789Sahrens return (error); 793789Sahrens } 794789Sahrens 795789Sahrens static int 796789Sahrens zfs_ioc_pool_stats(zfs_cmd_t *zc) 797789Sahrens { 798789Sahrens nvlist_t *config; 799789Sahrens int error; 8001544Seschrock int ret = 0; 801789Sahrens 8022676Seschrock error = spa_get_stats(zc->zc_name, &config, zc->zc_value, 8032676Seschrock sizeof (zc->zc_value)); 804789Sahrens 805789Sahrens if (config != NULL) { 8062676Seschrock ret = put_nvlist(zc, config); 807789Sahrens nvlist_free(config); 8081544Seschrock 8091544Seschrock /* 8101544Seschrock * The config may be present even if 'error' is non-zero. 8111544Seschrock * In this case we return success, and preserve the real errno 8121544Seschrock * in 'zc_cookie'. 8131544Seschrock */ 8141544Seschrock zc->zc_cookie = error; 815789Sahrens } else { 8161544Seschrock ret = error; 817789Sahrens } 818789Sahrens 8191544Seschrock return (ret); 820789Sahrens } 821789Sahrens 822789Sahrens /* 823789Sahrens * Try to import the given pool, returning pool stats as appropriate so that 824789Sahrens * user land knows which devices are available and overall pool health. 825789Sahrens */ 826789Sahrens static int 827789Sahrens zfs_ioc_pool_tryimport(zfs_cmd_t *zc) 828789Sahrens { 829789Sahrens nvlist_t *tryconfig, *config; 830789Sahrens int error; 831789Sahrens 8325094Slling if ((error = get_nvlist(zc->zc_nvlist_conf, zc->zc_nvlist_conf_size, 8335094Slling &tryconfig)) != 0) 834789Sahrens return (error); 835789Sahrens 836789Sahrens config = spa_tryimport(tryconfig); 837789Sahrens 838789Sahrens nvlist_free(tryconfig); 839789Sahrens 840789Sahrens if (config == NULL) 841789Sahrens return (EINVAL); 842789Sahrens 8432676Seschrock error = put_nvlist(zc, config); 844789Sahrens nvlist_free(config); 845789Sahrens 846789Sahrens return (error); 847789Sahrens } 848789Sahrens 849789Sahrens static int 850789Sahrens zfs_ioc_pool_scrub(zfs_cmd_t *zc) 851789Sahrens { 852789Sahrens spa_t *spa; 853789Sahrens int error; 854789Sahrens 8552926Sek110237 if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 8562926Sek110237 return (error); 8572926Sek110237 8584808Sek110237 mutex_enter(&spa_namespace_lock); 8592926Sek110237 error = spa_scrub(spa, zc->zc_cookie, B_FALSE); 8604808Sek110237 mutex_exit(&spa_namespace_lock); 8612926Sek110237 8622926Sek110237 spa_close(spa, FTAG); 8632926Sek110237 864789Sahrens return (error); 865789Sahrens } 866789Sahrens 867789Sahrens static int 868789Sahrens zfs_ioc_pool_freeze(zfs_cmd_t *zc) 869789Sahrens { 870789Sahrens spa_t *spa; 871789Sahrens int error; 872789Sahrens 873789Sahrens error = spa_open(zc->zc_name, &spa, FTAG); 874789Sahrens if (error == 0) { 875789Sahrens spa_freeze(spa); 876789Sahrens spa_close(spa, FTAG); 877789Sahrens } 878789Sahrens return (error); 879789Sahrens } 880789Sahrens 881789Sahrens static int 8821760Seschrock zfs_ioc_pool_upgrade(zfs_cmd_t *zc) 8831760Seschrock { 8841760Seschrock spa_t *spa; 8851760Seschrock int error; 8861760Seschrock 8872926Sek110237 if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 8882926Sek110237 return (error); 8892926Sek110237 8905118Slling if (zc->zc_cookie < spa_version(spa) || zc->zc_cookie > SPA_VERSION) { 8915118Slling spa_close(spa, FTAG); 8925118Slling return (EINVAL); 8935118Slling } 8945118Slling 8955094Slling spa_upgrade(spa, zc->zc_cookie); 8962926Sek110237 spa_close(spa, FTAG); 8972926Sek110237 8982926Sek110237 return (error); 8992926Sek110237 } 9002926Sek110237 9012926Sek110237 static int 9022926Sek110237 zfs_ioc_pool_get_history(zfs_cmd_t *zc) 9032926Sek110237 { 9042926Sek110237 spa_t *spa; 9052926Sek110237 char *hist_buf; 9062926Sek110237 uint64_t size; 9072926Sek110237 int error; 9082926Sek110237 9092926Sek110237 if ((size = zc->zc_history_len) == 0) 9102926Sek110237 return (EINVAL); 9112926Sek110237 9122926Sek110237 if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 9132926Sek110237 return (error); 9142926Sek110237 9154577Sahrens if (spa_version(spa) < SPA_VERSION_ZPOOL_HISTORY) { 9163863Sek110237 spa_close(spa, FTAG); 9173863Sek110237 return (ENOTSUP); 9183863Sek110237 } 9193863Sek110237 9202926Sek110237 hist_buf = kmem_alloc(size, KM_SLEEP); 9212926Sek110237 if ((error = spa_history_get(spa, &zc->zc_history_offset, 9222926Sek110237 &zc->zc_history_len, hist_buf)) == 0) { 9234543Smarks error = xcopyout(hist_buf, 9244543Smarks (char *)(uintptr_t)zc->zc_history, 9252926Sek110237 zc->zc_history_len); 9262926Sek110237 } 9272926Sek110237 9282926Sek110237 spa_close(spa, FTAG); 9292926Sek110237 kmem_free(hist_buf, size); 9302926Sek110237 return (error); 9312926Sek110237 } 9322926Sek110237 9332926Sek110237 static int 9343444Sek110237 zfs_ioc_dsobj_to_dsname(zfs_cmd_t *zc) 9353444Sek110237 { 9363444Sek110237 int error; 9373444Sek110237 9383912Slling if (error = dsl_dsobj_to_dsname(zc->zc_name, zc->zc_obj, zc->zc_value)) 9393444Sek110237 return (error); 9403444Sek110237 9413444Sek110237 return (0); 9423444Sek110237 } 9433444Sek110237 9443444Sek110237 static int 9453444Sek110237 zfs_ioc_obj_to_path(zfs_cmd_t *zc) 9463444Sek110237 { 9473444Sek110237 objset_t *osp; 9483444Sek110237 int error; 9493444Sek110237 9503444Sek110237 if ((error = dmu_objset_open(zc->zc_name, DMU_OST_ZFS, 9513444Sek110237 DS_MODE_NONE | DS_MODE_READONLY, &osp)) != 0) 9523444Sek110237 return (error); 9533444Sek110237 9543444Sek110237 error = zfs_obj_to_path(osp, zc->zc_obj, zc->zc_value, 9553444Sek110237 sizeof (zc->zc_value)); 9563444Sek110237 dmu_objset_close(osp); 9573444Sek110237 9583444Sek110237 return (error); 9593444Sek110237 } 9603444Sek110237 9613444Sek110237 static int 962789Sahrens zfs_ioc_vdev_add(zfs_cmd_t *zc) 963789Sahrens { 964789Sahrens spa_t *spa; 965789Sahrens int error; 966789Sahrens nvlist_t *config; 967789Sahrens 968789Sahrens error = spa_open(zc->zc_name, &spa, FTAG); 969789Sahrens if (error != 0) 970789Sahrens return (error); 971789Sahrens 9723912Slling /* 9733912Slling * A root pool with concatenated devices is not supported. 9743912Slling * Thus, can not add a device to a root pool with one device. 9753912Slling */ 9763912Slling if (spa->spa_root_vdev->vdev_children == 1 && spa->spa_bootfs != 0) { 9773912Slling spa_close(spa, FTAG); 9783912Slling return (EDOM); 9793912Slling } 9803912Slling 9815094Slling if ((error = get_nvlist(zc->zc_nvlist_conf, zc->zc_nvlist_conf_size, 9825094Slling &config)) == 0) { 983789Sahrens error = spa_vdev_add(spa, config); 984789Sahrens nvlist_free(config); 985789Sahrens } 986789Sahrens spa_close(spa, FTAG); 987789Sahrens return (error); 988789Sahrens } 989789Sahrens 990789Sahrens static int 991789Sahrens zfs_ioc_vdev_remove(zfs_cmd_t *zc) 992789Sahrens { 9932082Seschrock spa_t *spa; 9942082Seschrock int error; 9952082Seschrock 9962082Seschrock error = spa_open(zc->zc_name, &spa, FTAG); 9972082Seschrock if (error != 0) 9982082Seschrock return (error); 9992082Seschrock error = spa_vdev_remove(spa, zc->zc_guid, B_FALSE); 10002082Seschrock spa_close(spa, FTAG); 10012082Seschrock return (error); 1002789Sahrens } 1003789Sahrens 1004789Sahrens static int 10054451Seschrock zfs_ioc_vdev_set_state(zfs_cmd_t *zc) 1006789Sahrens { 1007789Sahrens spa_t *spa; 1008789Sahrens int error; 10094451Seschrock vdev_state_t newstate = VDEV_STATE_UNKNOWN; 1010789Sahrens 10112926Sek110237 if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 1012789Sahrens return (error); 10134451Seschrock switch (zc->zc_cookie) { 10144451Seschrock case VDEV_STATE_ONLINE: 10154451Seschrock error = vdev_online(spa, zc->zc_guid, zc->zc_obj, &newstate); 10164451Seschrock break; 10174451Seschrock 10184451Seschrock case VDEV_STATE_OFFLINE: 10194451Seschrock error = vdev_offline(spa, zc->zc_guid, zc->zc_obj); 10204451Seschrock break; 1021789Sahrens 10224451Seschrock case VDEV_STATE_FAULTED: 10234451Seschrock error = vdev_fault(spa, zc->zc_guid); 10244451Seschrock break; 1025789Sahrens 10264451Seschrock case VDEV_STATE_DEGRADED: 10274451Seschrock error = vdev_degrade(spa, zc->zc_guid); 10284451Seschrock break; 10294451Seschrock 10304451Seschrock default: 10314451Seschrock error = EINVAL; 10324451Seschrock } 10334451Seschrock zc->zc_cookie = newstate; 1034789Sahrens spa_close(spa, FTAG); 1035789Sahrens return (error); 1036789Sahrens } 1037789Sahrens 1038789Sahrens static int 1039789Sahrens zfs_ioc_vdev_attach(zfs_cmd_t *zc) 1040789Sahrens { 1041789Sahrens spa_t *spa; 1042789Sahrens int replacing = zc->zc_cookie; 1043789Sahrens nvlist_t *config; 1044789Sahrens int error; 1045789Sahrens 10462926Sek110237 if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 1047789Sahrens return (error); 1048789Sahrens 10495094Slling if ((error = get_nvlist(zc->zc_nvlist_conf, zc->zc_nvlist_conf_size, 10505094Slling &config)) == 0) { 10511544Seschrock error = spa_vdev_attach(spa, zc->zc_guid, config, replacing); 1052789Sahrens nvlist_free(config); 1053789Sahrens } 1054789Sahrens 1055789Sahrens spa_close(spa, FTAG); 1056789Sahrens return (error); 1057789Sahrens } 1058789Sahrens 1059789Sahrens static int 1060789Sahrens zfs_ioc_vdev_detach(zfs_cmd_t *zc) 1061789Sahrens { 1062789Sahrens spa_t *spa; 1063789Sahrens int error; 1064789Sahrens 10652926Sek110237 if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 1066789Sahrens return (error); 1067789Sahrens 10681544Seschrock error = spa_vdev_detach(spa, zc->zc_guid, B_FALSE); 1069789Sahrens 1070789Sahrens spa_close(spa, FTAG); 1071789Sahrens return (error); 1072789Sahrens } 1073789Sahrens 1074789Sahrens static int 10751354Seschrock zfs_ioc_vdev_setpath(zfs_cmd_t *zc) 10761354Seschrock { 10771354Seschrock spa_t *spa; 10782676Seschrock char *path = zc->zc_value; 10791544Seschrock uint64_t guid = zc->zc_guid; 10801354Seschrock int error; 10811354Seschrock 10821354Seschrock error = spa_open(zc->zc_name, &spa, FTAG); 10831354Seschrock if (error != 0) 10841354Seschrock return (error); 10851354Seschrock 10861354Seschrock error = spa_vdev_setpath(spa, guid, path); 10871354Seschrock spa_close(spa, FTAG); 10881354Seschrock return (error); 10891354Seschrock } 10901354Seschrock 10915367Sahrens /* 10925367Sahrens * inputs: 10935367Sahrens * zc_name name of filesystem 10945367Sahrens * zc_nvlist_dst_size size of buffer for property nvlist 10955367Sahrens * 10965367Sahrens * outputs: 10975367Sahrens * zc_objset_stats stats 10985367Sahrens * zc_nvlist_dst property nvlist 10995367Sahrens * zc_nvlist_dst_size size of property nvlist 11005367Sahrens * zc_value alternate root 11015367Sahrens */ 11021354Seschrock static int 1103789Sahrens zfs_ioc_objset_stats(zfs_cmd_t *zc) 1104789Sahrens { 1105789Sahrens objset_t *os = NULL; 1106789Sahrens int error; 11071356Seschrock nvlist_t *nv; 1108789Sahrens 1109789Sahrens retry: 1110789Sahrens error = dmu_objset_open(zc->zc_name, DMU_OST_ANY, 1111789Sahrens DS_MODE_STANDARD | DS_MODE_READONLY, &os); 1112789Sahrens if (error != 0) { 1113789Sahrens /* 1114789Sahrens * This is ugly: dmu_objset_open() can return EBUSY if 1115789Sahrens * the objset is held exclusively. Fortunately this hold is 1116789Sahrens * only for a short while, so we retry here. 1117789Sahrens * This avoids user code having to handle EBUSY, 1118789Sahrens * for example for a "zfs list". 1119789Sahrens */ 1120789Sahrens if (error == EBUSY) { 1121789Sahrens delay(1); 1122789Sahrens goto retry; 1123789Sahrens } 1124789Sahrens return (error); 1125789Sahrens } 1126789Sahrens 11272885Sahrens dmu_objset_fast_stat(os, &zc->zc_objset_stats); 1128789Sahrens 11292856Snd150628 if (zc->zc_nvlist_dst != 0 && 11301356Seschrock (error = dsl_prop_get_all(os, &nv)) == 0) { 11312885Sahrens dmu_objset_stats(os, nv); 11323087Sahrens /* 11335147Srm160521 * NB: zvol_get_stats() will read the objset contents, 11343087Sahrens * which we aren't supposed to do with a 11353087Sahrens * DS_MODE_STANDARD open, because it could be 11363087Sahrens * inconsistent. So this is a bit of a workaround... 11373087Sahrens */ 11384577Sahrens if (!zc->zc_objset_stats.dds_inconsistent) { 11394577Sahrens if (dmu_objset_type(os) == DMU_OST_ZVOL) 11404577Sahrens VERIFY(zvol_get_stats(os, nv) == 0); 11414577Sahrens } 11422676Seschrock error = put_nvlist(zc, nv); 11431356Seschrock nvlist_free(nv); 11441356Seschrock } 1145789Sahrens 11462676Seschrock spa_altroot(dmu_objset_spa(os), zc->zc_value, sizeof (zc->zc_value)); 11471544Seschrock 1148789Sahrens dmu_objset_close(os); 1149789Sahrens return (error); 1150789Sahrens } 1151789Sahrens 11525367Sahrens /* 11535367Sahrens * inputs: 11545367Sahrens * zc_name name of filesystem 11555367Sahrens * zc_cookie zap cursor 11565367Sahrens * zc_nvlist_dst_size size of buffer for property nvlist 11575367Sahrens * 11585367Sahrens * outputs: 11595367Sahrens * zc_name name of next filesystem 11605367Sahrens * zc_objset_stats stats 11615367Sahrens * zc_nvlist_dst property nvlist 11625367Sahrens * zc_nvlist_dst_size size of property nvlist 11635367Sahrens * zc_value alternate root 11645367Sahrens */ 1165789Sahrens static int 11665147Srm160521 zfs_ioc_objset_version(zfs_cmd_t *zc) 11675147Srm160521 { 11685147Srm160521 objset_t *os = NULL; 11695147Srm160521 int error; 11705147Srm160521 11715147Srm160521 retry: 11725147Srm160521 error = dmu_objset_open(zc->zc_name, DMU_OST_ANY, 11735147Srm160521 DS_MODE_STANDARD | DS_MODE_READONLY, &os); 11745147Srm160521 if (error != 0) { 11755147Srm160521 /* 11765147Srm160521 * This is ugly: dmu_objset_open() can return EBUSY if 11775147Srm160521 * the objset is held exclusively. Fortunately this hold is 11785147Srm160521 * only for a short while, so we retry here. 11795147Srm160521 * This avoids user code having to handle EBUSY, 11805147Srm160521 * for example for a "zfs list". 11815147Srm160521 */ 11825147Srm160521 if (error == EBUSY) { 11835147Srm160521 delay(1); 11845147Srm160521 goto retry; 11855147Srm160521 } 11865147Srm160521 return (error); 11875147Srm160521 } 11885147Srm160521 11895147Srm160521 dmu_objset_fast_stat(os, &zc->zc_objset_stats); 11905147Srm160521 11915147Srm160521 /* 11925147Srm160521 * NB: zfs_get_version() will read the objset contents, 11935147Srm160521 * which we aren't supposed to do with a 11945147Srm160521 * DS_MODE_STANDARD open, because it could be 11955147Srm160521 * inconsistent. So this is a bit of a workaround... 11965147Srm160521 */ 11975147Srm160521 zc->zc_cookie = 0; 11985147Srm160521 if (!zc->zc_objset_stats.dds_inconsistent) 11995147Srm160521 if (dmu_objset_type(os) == DMU_OST_ZFS) 12005147Srm160521 (void) zfs_get_version(os, &zc->zc_cookie); 12015147Srm160521 12025147Srm160521 dmu_objset_close(os); 12035147Srm160521 return (0); 12045147Srm160521 } 12055147Srm160521 12065147Srm160521 static int 1207789Sahrens zfs_ioc_dataset_list_next(zfs_cmd_t *zc) 1208789Sahrens { 1209885Sahrens objset_t *os; 1210789Sahrens int error; 1211789Sahrens char *p; 1212789Sahrens 1213885Sahrens retry: 1214885Sahrens error = dmu_objset_open(zc->zc_name, DMU_OST_ANY, 1215885Sahrens DS_MODE_STANDARD | DS_MODE_READONLY, &os); 1216885Sahrens if (error != 0) { 1217885Sahrens /* 1218885Sahrens * This is ugly: dmu_objset_open() can return EBUSY if 1219885Sahrens * the objset is held exclusively. Fortunately this hold is 1220885Sahrens * only for a short while, so we retry here. 1221885Sahrens * This avoids user code having to handle EBUSY, 1222885Sahrens * for example for a "zfs list". 1223885Sahrens */ 1224885Sahrens if (error == EBUSY) { 1225885Sahrens delay(1); 1226885Sahrens goto retry; 1227885Sahrens } 1228885Sahrens if (error == ENOENT) 1229885Sahrens error = ESRCH; 1230885Sahrens return (error); 1231789Sahrens } 1232789Sahrens 1233789Sahrens p = strrchr(zc->zc_name, '/'); 1234789Sahrens if (p == NULL || p[1] != '\0') 1235789Sahrens (void) strlcat(zc->zc_name, "/", sizeof (zc->zc_name)); 1236789Sahrens p = zc->zc_name + strlen(zc->zc_name); 1237789Sahrens 1238789Sahrens do { 1239885Sahrens error = dmu_dir_list_next(os, 1240885Sahrens sizeof (zc->zc_name) - (p - zc->zc_name), p, 1241885Sahrens NULL, &zc->zc_cookie); 1242789Sahrens if (error == ENOENT) 1243789Sahrens error = ESRCH; 1244885Sahrens } while (error == 0 && !INGLOBALZONE(curproc) && 1245789Sahrens !zone_dataset_visible(zc->zc_name, NULL)); 1246789Sahrens 1247885Sahrens /* 1248885Sahrens * If it's a hidden dataset (ie. with a '$' in its name), don't 1249885Sahrens * try to get stats for it. Userland will skip over it. 1250885Sahrens */ 1251885Sahrens if (error == 0 && strchr(zc->zc_name, '$') == NULL) 1252885Sahrens error = zfs_ioc_objset_stats(zc); /* fill in the stats */ 1253789Sahrens 1254885Sahrens dmu_objset_close(os); 1255789Sahrens return (error); 1256789Sahrens } 1257789Sahrens 12585367Sahrens /* 12595367Sahrens * inputs: 12605367Sahrens * zc_name name of filesystem 12615367Sahrens * zc_cookie zap cursor 12625367Sahrens * zc_nvlist_dst_size size of buffer for property nvlist 12635367Sahrens * 12645367Sahrens * outputs: 12655367Sahrens * zc_name name of next snapshot 12665367Sahrens * zc_objset_stats stats 12675367Sahrens * zc_nvlist_dst property nvlist 12685367Sahrens * zc_nvlist_dst_size size of property nvlist 12695367Sahrens * zc_value alternate root 12705367Sahrens */ 1271789Sahrens static int 1272789Sahrens zfs_ioc_snapshot_list_next(zfs_cmd_t *zc) 1273789Sahrens { 1274885Sahrens objset_t *os; 1275789Sahrens int error; 1276789Sahrens 1277789Sahrens retry: 1278885Sahrens error = dmu_objset_open(zc->zc_name, DMU_OST_ANY, 1279885Sahrens DS_MODE_STANDARD | DS_MODE_READONLY, &os); 1280885Sahrens if (error != 0) { 1281789Sahrens /* 1282885Sahrens * This is ugly: dmu_objset_open() can return EBUSY if 1283789Sahrens * the objset is held exclusively. Fortunately this hold is 1284789Sahrens * only for a short while, so we retry here. 1285789Sahrens * This avoids user code having to handle EBUSY, 1286885Sahrens * for example for a "zfs list". 1287789Sahrens */ 1288789Sahrens if (error == EBUSY) { 1289789Sahrens delay(1); 1290789Sahrens goto retry; 1291789Sahrens } 1292789Sahrens if (error == ENOENT) 1293885Sahrens error = ESRCH; 1294789Sahrens return (error); 1295789Sahrens } 1296789Sahrens 12971003Slling /* 12981003Slling * A dataset name of maximum length cannot have any snapshots, 12991003Slling * so exit immediately. 13001003Slling */ 13011003Slling if (strlcat(zc->zc_name, "@", sizeof (zc->zc_name)) >= MAXNAMELEN) { 1302885Sahrens dmu_objset_close(os); 13031003Slling return (ESRCH); 1304789Sahrens } 1305789Sahrens 1306885Sahrens error = dmu_snapshot_list_next(os, 1307885Sahrens sizeof (zc->zc_name) - strlen(zc->zc_name), 1308885Sahrens zc->zc_name + strlen(zc->zc_name), NULL, &zc->zc_cookie); 1309789Sahrens if (error == ENOENT) 1310789Sahrens error = ESRCH; 1311789Sahrens 1312885Sahrens if (error == 0) 1313885Sahrens error = zfs_ioc_objset_stats(zc); /* fill in the stats */ 1314789Sahrens 13155367Sahrens /* if we failed, undo the @ that we tacked on to zc_name */ 13165367Sahrens if (error != 0) 13175367Sahrens *strchr(zc->zc_name, '@') = '\0'; 13185367Sahrens 1319885Sahrens dmu_objset_close(os); 1320789Sahrens return (error); 1321789Sahrens } 1322789Sahrens 1323789Sahrens static int 13244787Sahrens zfs_set_prop_nvlist(const char *name, nvlist_t *nvl) 1325789Sahrens { 13262676Seschrock nvpair_t *elem; 13272676Seschrock int error; 13282676Seschrock uint64_t intval; 13292676Seschrock char *strval; 13302676Seschrock 13314543Smarks /* 13324543Smarks * First validate permission to set all of the properties 13334543Smarks */ 13342676Seschrock elem = NULL; 13352676Seschrock while ((elem = nvlist_next_nvpair(nvl, elem)) != NULL) { 13364670Sahrens const char *propname = nvpair_name(elem); 13374670Sahrens zfs_prop_t prop = zfs_name_to_prop(propname); 13382676Seschrock 13395094Slling if (prop == ZPROP_INVAL) { 13402676Seschrock /* 13412676Seschrock * If this is a user-defined property, it must be a 13422676Seschrock * string, and there is no further validation to do. 13432676Seschrock */ 13442676Seschrock if (!zfs_prop_user(propname) || 13452676Seschrock nvpair_type(elem) != DATA_TYPE_STRING) 13462676Seschrock return (EINVAL); 13472676Seschrock 13485331Samw if (error = zfs_secpolicy_write_perms(name, 13495331Samw ZFS_DELEG_PERM_USERPROP, CRED())) 13504670Sahrens return (error); 13514543Smarks continue; 13522676Seschrock } 13532676Seschrock 13544787Sahrens if ((error = zfs_secpolicy_setprop(name, prop, CRED())) != 0) 13554670Sahrens return (error); 13562676Seschrock 13574670Sahrens /* 13584670Sahrens * Check that this value is valid for this pool version 13594670Sahrens */ 13604670Sahrens switch (prop) { 13613886Sahl case ZFS_PROP_COMPRESSION: 13623886Sahl /* 13633886Sahl * If the user specified gzip compression, make sure 13643886Sahl * the SPA supports it. We ignore any errors here since 13653886Sahl * we'll catch them later. 13663886Sahl */ 13673886Sahl if (nvpair_type(elem) == DATA_TYPE_UINT64 && 13683886Sahl nvpair_value_uint64(elem, &intval) == 0 && 13693886Sahl intval >= ZIO_COMPRESS_GZIP_1 && 13703886Sahl intval <= ZIO_COMPRESS_GZIP_9) { 13715331Samw if (zfs_check_version(name, 13725331Samw SPA_VERSION_GZIP_COMPRESSION)) 13735331Samw return (ENOTSUP); 13743886Sahl } 13753886Sahl break; 13764603Sahrens 13774603Sahrens case ZFS_PROP_COPIES: 13785331Samw if (zfs_check_version(name, SPA_VERSION_DITTO_BLOCKS)) 13795331Samw return (ENOTSUP); 13804603Sahrens break; 13815331Samw case ZFS_PROP_NORMALIZE: 13825331Samw case ZFS_PROP_UTF8ONLY: 13835331Samw case ZFS_PROP_CASE: 13845331Samw if (zfs_check_version(name, SPA_VERSION_NORMALIZATION)) 13855331Samw return (ENOTSUP); 13865331Samw 13874603Sahrens } 13885331Samw if ((error = zfs_secpolicy_setprop(name, prop, CRED())) != 0) 13895331Samw return (error); 13904543Smarks } 13914543Smarks 13924543Smarks elem = NULL; 13934543Smarks while ((elem = nvlist_next_nvpair(nvl, elem)) != NULL) { 13944670Sahrens const char *propname = nvpair_name(elem); 13954670Sahrens zfs_prop_t prop = zfs_name_to_prop(propname); 13964543Smarks 13975094Slling if (prop == ZPROP_INVAL) { 13984543Smarks VERIFY(nvpair_value_string(elem, &strval) == 0); 13994543Smarks error = dsl_prop_set(name, propname, 1, 14004543Smarks strlen(strval) + 1, strval); 14014543Smarks if (error == 0) 14024543Smarks continue; 14034543Smarks else 14044543Smarks return (error); 14054543Smarks } 14062676Seschrock 14072676Seschrock switch (prop) { 14082676Seschrock case ZFS_PROP_QUOTA: 14092676Seschrock if ((error = nvpair_value_uint64(elem, &intval)) != 0 || 14104577Sahrens (error = dsl_dir_set_quota(name, intval)) != 0) 14112676Seschrock return (error); 14122676Seschrock break; 14132676Seschrock 14142676Seschrock case ZFS_PROP_RESERVATION: 14152676Seschrock if ((error = nvpair_value_uint64(elem, &intval)) != 0 || 14162676Seschrock (error = dsl_dir_set_reservation(name, 14172676Seschrock intval)) != 0) 14182676Seschrock return (error); 14192676Seschrock break; 1420789Sahrens 14212676Seschrock case ZFS_PROP_VOLSIZE: 14222676Seschrock if ((error = nvpair_value_uint64(elem, &intval)) != 0 || 14234787Sahrens (error = zvol_set_volsize(name, 14244787Sahrens ddi_driver_major(zfs_dip), intval)) != 0) 14252676Seschrock return (error); 14262676Seschrock break; 14272676Seschrock 14282676Seschrock case ZFS_PROP_VOLBLOCKSIZE: 14292676Seschrock if ((error = nvpair_value_uint64(elem, &intval)) != 0 || 14304577Sahrens (error = zvol_set_volblocksize(name, intval)) != 0) 14314577Sahrens return (error); 14324577Sahrens break; 14334577Sahrens 14344577Sahrens case ZFS_PROP_VERSION: 14354577Sahrens if ((error = nvpair_value_uint64(elem, &intval)) != 0 || 14364577Sahrens (error = zfs_set_version(name, intval)) != 0) 14372676Seschrock return (error); 14382676Seschrock break; 14392676Seschrock 14402676Seschrock default: 14412676Seschrock if (nvpair_type(elem) == DATA_TYPE_STRING) { 14422676Seschrock if (zfs_prop_get_type(prop) != 14434787Sahrens PROP_TYPE_STRING) 14442676Seschrock return (EINVAL); 14452717Seschrock VERIFY(nvpair_value_string(elem, &strval) == 0); 14462717Seschrock if ((error = dsl_prop_set(name, 14472676Seschrock nvpair_name(elem), 1, strlen(strval) + 1, 14482717Seschrock strval)) != 0) 14492717Seschrock return (error); 14502676Seschrock } else if (nvpair_type(elem) == DATA_TYPE_UINT64) { 14512885Sahrens const char *unused; 14522885Sahrens 14532717Seschrock VERIFY(nvpair_value_uint64(elem, &intval) == 0); 14542676Seschrock 14552676Seschrock switch (zfs_prop_get_type(prop)) { 14564787Sahrens case PROP_TYPE_NUMBER: 14572676Seschrock break; 14584787Sahrens case PROP_TYPE_STRING: 14592717Seschrock return (EINVAL); 14604787Sahrens case PROP_TYPE_INDEX: 14612717Seschrock if (zfs_prop_index_to_string(prop, 14622717Seschrock intval, &unused) != 0) 14632717Seschrock return (EINVAL); 14642676Seschrock break; 14652676Seschrock default: 14664577Sahrens cmn_err(CE_PANIC, 14674577Sahrens "unknown property type"); 14682676Seschrock break; 14692676Seschrock } 14702676Seschrock 14712717Seschrock if ((error = dsl_prop_set(name, propname, 14722717Seschrock 8, 1, &intval)) != 0) 14732717Seschrock return (error); 14742676Seschrock } else { 14752676Seschrock return (EINVAL); 14762676Seschrock } 14772676Seschrock break; 14782676Seschrock } 14792676Seschrock } 14802676Seschrock 14812676Seschrock return (0); 1482789Sahrens } 1483789Sahrens 14845367Sahrens /* 14855367Sahrens * inputs: 14865367Sahrens * zc_name name of filesystem 14875367Sahrens * zc_value name of property to inherit 14885367Sahrens * zc_nvlist_src{_size} nvlist of properties to apply 14895367Sahrens * 14905367Sahrens * outputs: none 14915367Sahrens */ 1492789Sahrens static int 14932676Seschrock zfs_ioc_set_prop(zfs_cmd_t *zc) 1494789Sahrens { 14952676Seschrock nvlist_t *nvl; 14962676Seschrock int error; 1497789Sahrens 14985094Slling if ((error = get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 14995094Slling &nvl)) != 0) 15002676Seschrock return (error); 15012676Seschrock 15024787Sahrens error = zfs_set_prop_nvlist(zc->zc_name, nvl); 15034543Smarks 15042676Seschrock nvlist_free(nvl); 15052676Seschrock return (error); 1506789Sahrens } 1507789Sahrens 15085367Sahrens /* 15095367Sahrens * inputs: 15105367Sahrens * zc_name name of filesystem 15115367Sahrens * zc_value name of property to inherit 15125367Sahrens * 15135367Sahrens * outputs: none 15145367Sahrens */ 1515789Sahrens static int 15164849Sahrens zfs_ioc_inherit_prop(zfs_cmd_t *zc) 15174849Sahrens { 15184849Sahrens /* the property name has been validated by zfs_secpolicy_inherit() */ 15194849Sahrens return (dsl_prop_set(zc->zc_name, zc->zc_value, 0, 0, NULL)); 15204849Sahrens } 15214849Sahrens 15224849Sahrens static int 15234098Slling zfs_ioc_pool_set_props(zfs_cmd_t *zc) 15243912Slling { 15255094Slling nvlist_t *props; 15263912Slling spa_t *spa; 15275094Slling int error; 15283912Slling 15295094Slling if ((error = get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 15305094Slling &props))) 15313912Slling return (error); 15323912Slling 15333912Slling if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) { 15345094Slling nvlist_free(props); 15353912Slling return (error); 15363912Slling } 15373912Slling 15385094Slling error = spa_prop_set(spa, props); 15393912Slling 15405094Slling nvlist_free(props); 15413912Slling spa_close(spa, FTAG); 15423912Slling 15433912Slling return (error); 15443912Slling } 15453912Slling 15463912Slling static int 15474098Slling zfs_ioc_pool_get_props(zfs_cmd_t *zc) 15483912Slling { 15493912Slling spa_t *spa; 15503912Slling int error; 15513912Slling nvlist_t *nvp = NULL; 15523912Slling 15533912Slling if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 15543912Slling return (error); 15553912Slling 15565094Slling error = spa_prop_get(spa, &nvp); 15573912Slling 15583912Slling if (error == 0 && zc->zc_nvlist_dst != NULL) 15593912Slling error = put_nvlist(zc, nvp); 15603912Slling else 15613912Slling error = EFAULT; 15623912Slling 15633912Slling spa_close(spa, FTAG); 15643912Slling 15653912Slling if (nvp) 15663912Slling nvlist_free(nvp); 15673912Slling return (error); 15683912Slling } 15693912Slling 15703912Slling static int 15714543Smarks zfs_ioc_iscsi_perm_check(zfs_cmd_t *zc) 15724543Smarks { 15734543Smarks nvlist_t *nvp; 15744543Smarks int error; 15754543Smarks uint32_t uid; 15764543Smarks uint32_t gid; 15774543Smarks uint32_t *groups; 15784543Smarks uint_t group_cnt; 15794543Smarks cred_t *usercred; 15804543Smarks 15815094Slling if ((error = get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 15825094Slling &nvp)) != 0) { 15834543Smarks return (error); 15844543Smarks } 15854543Smarks 15864543Smarks if ((error = nvlist_lookup_uint32(nvp, 15874543Smarks ZFS_DELEG_PERM_UID, &uid)) != 0) { 15884543Smarks nvlist_free(nvp); 15894543Smarks return (EPERM); 15904543Smarks } 15914543Smarks 15924543Smarks if ((error = nvlist_lookup_uint32(nvp, 15934543Smarks ZFS_DELEG_PERM_GID, &gid)) != 0) { 15944543Smarks nvlist_free(nvp); 15954543Smarks return (EPERM); 15964543Smarks } 15974543Smarks 15984543Smarks if ((error = nvlist_lookup_uint32_array(nvp, ZFS_DELEG_PERM_GROUPS, 15994543Smarks &groups, &group_cnt)) != 0) { 16004543Smarks nvlist_free(nvp); 16014543Smarks return (EPERM); 16024543Smarks } 16034543Smarks usercred = cralloc(); 16044543Smarks if ((crsetugid(usercred, uid, gid) != 0) || 16054543Smarks (crsetgroups(usercred, group_cnt, (gid_t *)groups) != 0)) { 16064543Smarks nvlist_free(nvp); 16074543Smarks crfree(usercred); 16084543Smarks return (EPERM); 16094543Smarks } 16104543Smarks nvlist_free(nvp); 16114543Smarks error = dsl_deleg_access(zc->zc_name, 16124787Sahrens zfs_prop_to_name(ZFS_PROP_SHAREISCSI), usercred); 16134543Smarks crfree(usercred); 16144543Smarks return (error); 16154543Smarks } 16164543Smarks 16175367Sahrens /* 16185367Sahrens * inputs: 16195367Sahrens * zc_name name of filesystem 16205367Sahrens * zc_nvlist_src{_size} nvlist of delegated permissions 16215367Sahrens * zc_perm_action allow/unallow flag 16225367Sahrens * 16235367Sahrens * outputs: none 16245367Sahrens */ 16254543Smarks static int 16264543Smarks zfs_ioc_set_fsacl(zfs_cmd_t *zc) 16274543Smarks { 16284543Smarks int error; 16294543Smarks nvlist_t *fsaclnv = NULL; 16304543Smarks 16315094Slling if ((error = get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 16325094Slling &fsaclnv)) != 0) 16334543Smarks return (error); 16344543Smarks 16354543Smarks /* 16364543Smarks * Verify nvlist is constructed correctly 16374543Smarks */ 16384543Smarks if ((error = zfs_deleg_verify_nvlist(fsaclnv)) != 0) { 16394543Smarks nvlist_free(fsaclnv); 16404543Smarks return (EINVAL); 16414543Smarks } 16424543Smarks 16434543Smarks /* 16444543Smarks * If we don't have PRIV_SYS_MOUNT, then validate 16454543Smarks * that user is allowed to hand out each permission in 16464543Smarks * the nvlist(s) 16474543Smarks */ 16484543Smarks 16494787Sahrens error = secpolicy_zfs(CRED()); 16504543Smarks if (error) { 16514787Sahrens if (zc->zc_perm_action == B_FALSE) { 16524787Sahrens error = dsl_deleg_can_allow(zc->zc_name, 16534787Sahrens fsaclnv, CRED()); 16544787Sahrens } else { 16554787Sahrens error = dsl_deleg_can_unallow(zc->zc_name, 16564787Sahrens fsaclnv, CRED()); 16574787Sahrens } 16584543Smarks } 16594543Smarks 16604543Smarks if (error == 0) 16614543Smarks error = dsl_deleg_set(zc->zc_name, fsaclnv, zc->zc_perm_action); 16624543Smarks 16634543Smarks nvlist_free(fsaclnv); 16644543Smarks return (error); 16654543Smarks } 16664543Smarks 16675367Sahrens /* 16685367Sahrens * inputs: 16695367Sahrens * zc_name name of filesystem 16705367Sahrens * 16715367Sahrens * outputs: 16725367Sahrens * zc_nvlist_src{_size} nvlist of delegated permissions 16735367Sahrens */ 16744543Smarks static int 16754543Smarks zfs_ioc_get_fsacl(zfs_cmd_t *zc) 16764543Smarks { 16774543Smarks nvlist_t *nvp; 16784543Smarks int error; 16794543Smarks 16804543Smarks if ((error = dsl_deleg_get(zc->zc_name, &nvp)) == 0) { 16814543Smarks error = put_nvlist(zc, nvp); 16824543Smarks nvlist_free(nvp); 16834543Smarks } 16844543Smarks 16854543Smarks return (error); 16864543Smarks } 16874543Smarks 16885367Sahrens /* 16895367Sahrens * inputs: 16905367Sahrens * zc_name name of volume 16915367Sahrens * 16925367Sahrens * outputs: none 16935367Sahrens */ 16944543Smarks static int 1695789Sahrens zfs_ioc_create_minor(zfs_cmd_t *zc) 1696789Sahrens { 16974787Sahrens return (zvol_create_minor(zc->zc_name, ddi_driver_major(zfs_dip))); 1698789Sahrens } 1699789Sahrens 17005367Sahrens /* 17015367Sahrens * inputs: 17025367Sahrens * zc_name name of volume 17035367Sahrens * 17045367Sahrens * outputs: none 17055367Sahrens */ 1706789Sahrens static int 1707789Sahrens zfs_ioc_remove_minor(zfs_cmd_t *zc) 1708789Sahrens { 17092676Seschrock return (zvol_remove_minor(zc->zc_name)); 1710789Sahrens } 1711789Sahrens 1712789Sahrens /* 1713789Sahrens * Search the vfs list for a specified resource. Returns a pointer to it 1714789Sahrens * or NULL if no suitable entry is found. The caller of this routine 1715789Sahrens * is responsible for releasing the returned vfs pointer. 1716789Sahrens */ 1717789Sahrens static vfs_t * 1718789Sahrens zfs_get_vfs(const char *resource) 1719789Sahrens { 1720789Sahrens struct vfs *vfsp; 1721789Sahrens struct vfs *vfs_found = NULL; 1722789Sahrens 1723789Sahrens vfs_list_read_lock(); 1724789Sahrens vfsp = rootvfs; 1725789Sahrens do { 1726789Sahrens if (strcmp(refstr_value(vfsp->vfs_resource), resource) == 0) { 1727789Sahrens VFS_HOLD(vfsp); 1728789Sahrens vfs_found = vfsp; 1729789Sahrens break; 1730789Sahrens } 1731789Sahrens vfsp = vfsp->vfs_next; 1732789Sahrens } while (vfsp != rootvfs); 1733789Sahrens vfs_list_unlock(); 1734789Sahrens return (vfs_found); 1735789Sahrens } 1736789Sahrens 17374543Smarks /* ARGSUSED */ 1738789Sahrens static void 17394543Smarks zfs_create_cb(objset_t *os, void *arg, cred_t *cr, dmu_tx_t *tx) 1740789Sahrens { 17415331Samw zfs_creat_t *zct = arg; 17425331Samw uint64_t version; 17435331Samw 17445331Samw if (spa_version(dmu_objset_spa(os)) >= SPA_VERSION_FUID) 17455331Samw version = ZPL_VERSION; 17465331Samw else 17475331Samw version = ZPL_VERSION_FUID - 1; 17485331Samw 17495331Samw (void) nvlist_lookup_uint64(zct->zct_props, 17504577Sahrens zfs_prop_to_name(ZFS_PROP_VERSION), &version); 17514577Sahrens 17525331Samw zfs_create_fs(os, cr, version, zct->zct_norm, tx); 17535331Samw } 17545331Samw 17555331Samw /* 17565331Samw * zfs_prop_lookup() 17575331Samw * 17585331Samw * Look for the property first in the existing property nvlist. If 17595331Samw * it's already present, you're done. If it's not there, attempt to 17605331Samw * find the property value from a parent dataset. If that fails, fall 17615331Samw * back to the property's default value. In either of these two 17625331Samw * cases, if update is TRUE, add a value for the property to the 17635331Samw * property nvlist. 17645331Samw * 17655331Samw * If the rval pointer is non-NULL, copy the discovered value to rval. 17665331Samw * 17675331Samw * If we get any unexpected errors, bail and return the error number 17685331Samw * to the caller. 17695331Samw * 17705331Samw * If we succeed, return 0. 17715331Samw */ 17725331Samw static int 17735331Samw zfs_prop_lookup(const char *parentname, zfs_prop_t propnum, 17745331Samw nvlist_t *proplist, uint64_t *rval, boolean_t update) 17755331Samw { 17765331Samw const char *propname; 17775331Samw uint64_t value; 17785331Samw int error = ENOENT; 17795331Samw 17805331Samw propname = zfs_prop_to_name(propnum); 17815331Samw if (proplist != NULL) 17825331Samw error = nvlist_lookup_uint64(proplist, propname, &value); 17835331Samw if (error == ENOENT) { 17845331Samw error = dsl_prop_get_integer(parentname, propname, 17855331Samw &value, NULL); 17865331Samw if (error == ENOENT) 17875331Samw value = zfs_prop_default_numeric(propnum); 17885331Samw else if (error != 0) 17895331Samw return (error); 17905331Samw if (update) { 17915331Samw ASSERT(proplist != NULL); 17925331Samw error = nvlist_add_uint64(proplist, propname, value); 17935331Samw } 17945331Samw } 17955331Samw if (error == 0 && rval) 17965331Samw *rval = value; 17975331Samw return (error); 17985331Samw } 17995331Samw 18005331Samw /* 18015331Samw * zfs_normalization_get 18025331Samw * 18035331Samw * Get the normalization flag value. If the properties have 18045331Samw * non-default values, make sure the pool version is recent enough to 18055331Samw * support these choices. 18065331Samw */ 18075331Samw static int 18085331Samw zfs_normalization_get(const char *dataset, nvlist_t *proplist, int *norm, 18095331Samw boolean_t update) 18105331Samw { 18115331Samw char parentname[MAXNAMELEN]; 18125331Samw char poolname[MAXNAMELEN]; 18135331Samw char *cp; 18145331Samw uint64_t value; 18155331Samw int check = 0; 18165331Samw int error; 18175331Samw 18185331Samw ASSERT(norm != NULL); 18195331Samw *norm = 0; 18205331Samw 18215331Samw (void) strncpy(parentname, dataset, sizeof (parentname)); 18225331Samw cp = strrchr(parentname, '@'); 18235331Samw if (cp != NULL) { 18245331Samw cp[0] = '\0'; 18255331Samw } else { 18265331Samw cp = strrchr(parentname, '/'); 18275331Samw if (cp == NULL) 18285331Samw return (ENOENT); 18295331Samw cp[0] = '\0'; 18305331Samw } 18315331Samw 18325331Samw (void) strncpy(poolname, dataset, sizeof (poolname)); 18335331Samw cp = strchr(poolname, '/'); 18345331Samw if (cp != NULL) 18355331Samw cp[0] = '\0'; 18365331Samw 1837*5375Stimh /* 1838*5375Stimh * Make sure pool is of new enough vintage to support normalization. 1839*5375Stimh */ 1840*5375Stimh if (zfs_check_version(poolname, SPA_VERSION_NORMALIZATION)) 1841*5375Stimh return (0); 1842*5375Stimh 18435331Samw error = zfs_prop_lookup(parentname, ZFS_PROP_UTF8ONLY, 18445331Samw proplist, &value, update); 18455331Samw if (error != 0) 18465331Samw return (error); 18475331Samw if (value != zfs_prop_default_numeric(ZFS_PROP_UTF8ONLY)) 18485331Samw check = 1; 18495331Samw 18505331Samw error = zfs_prop_lookup(parentname, ZFS_PROP_NORMALIZE, 18515331Samw proplist, &value, update); 18525331Samw if (error != 0) 18535331Samw return (error); 18545331Samw if (value != zfs_prop_default_numeric(ZFS_PROP_NORMALIZE)) { 18555331Samw check = 1; 18565331Samw switch ((int)value) { 18575331Samw case ZFS_NORMALIZE_NONE: 18585331Samw break; 18595331Samw case ZFS_NORMALIZE_C: 18605331Samw *norm |= U8_TEXTPREP_NFC; 18615331Samw break; 18625331Samw case ZFS_NORMALIZE_D: 18635331Samw *norm |= U8_TEXTPREP_NFD; 18645331Samw break; 18655331Samw case ZFS_NORMALIZE_KC: 18665331Samw *norm |= U8_TEXTPREP_NFKC; 18675331Samw break; 18685331Samw case ZFS_NORMALIZE_KD: 18695331Samw *norm |= U8_TEXTPREP_NFKD; 18705331Samw break; 18715331Samw default: 18725331Samw ASSERT((int)value >= ZFS_NORMALIZE_NONE); 18735331Samw ASSERT((int)value <= ZFS_NORMALIZE_KD); 18745331Samw break; 18755331Samw } 18765331Samw } 18775331Samw 18785331Samw error = zfs_prop_lookup(parentname, ZFS_PROP_CASE, 18795331Samw proplist, &value, update); 18805331Samw if (error != 0) 18815331Samw return (error); 18825331Samw if (value != zfs_prop_default_numeric(ZFS_PROP_CASE)) { 18835331Samw check = 1; 18845331Samw switch ((int)value) { 18855331Samw case ZFS_CASE_SENSITIVE: 18865331Samw break; 18875331Samw case ZFS_CASE_INSENSITIVE: 18885331Samw *norm |= U8_TEXTPREP_TOUPPER; 18895331Samw break; 18905331Samw case ZFS_CASE_MIXED: 18915331Samw *norm |= U8_TEXTPREP_TOUPPER; 18925331Samw break; 18935331Samw default: 18945331Samw ASSERT((int)value >= ZFS_CASE_SENSITIVE); 18955331Samw ASSERT((int)value <= ZFS_CASE_MIXED); 18965331Samw break; 18975331Samw } 18985331Samw } 18995331Samw 1900*5375Stimh /* 1901*5375Stimh * At the moment we are disabling non-default values for these 1902*5375Stimh * properties because they cannot be preserved properly with a 1903*5375Stimh * zfs send. 1904*5375Stimh */ 19055331Samw if (check == 1) 1906*5375Stimh return (ENOTSUP); 1907*5375Stimh 19085331Samw return (0); 1909789Sahrens } 1910789Sahrens 19115367Sahrens /* 19125367Sahrens * inputs: 19135367Sahrens * zc_objset_type type of objset to create (fs vs zvol) 19145367Sahrens * zc_name name of new objset 19155367Sahrens * zc_value name of snapshot to clone from (may be empty) 19165367Sahrens * zc_nvlist_src{_size} nvlist of properties to apply 19175367Sahrens * 19185367Sahrens * outputs: none 19195367Sahrens */ 1920789Sahrens static int 1921789Sahrens zfs_ioc_create(zfs_cmd_t *zc) 1922789Sahrens { 1923789Sahrens objset_t *clone; 1924789Sahrens int error = 0; 19255331Samw zfs_creat_t zct; 19264543Smarks nvlist_t *nvprops = NULL; 19274543Smarks void (*cbfunc)(objset_t *os, void *arg, cred_t *cr, dmu_tx_t *tx); 1928789Sahrens dmu_objset_type_t type = zc->zc_objset_type; 1929789Sahrens 1930789Sahrens switch (type) { 1931789Sahrens 1932789Sahrens case DMU_OST_ZFS: 1933789Sahrens cbfunc = zfs_create_cb; 1934789Sahrens break; 1935789Sahrens 1936789Sahrens case DMU_OST_ZVOL: 1937789Sahrens cbfunc = zvol_create_cb; 1938789Sahrens break; 1939789Sahrens 1940789Sahrens default: 19412199Sahrens cbfunc = NULL; 19422199Sahrens } 19435326Sek110237 if (strchr(zc->zc_name, '@') || 19445326Sek110237 strchr(zc->zc_name, '%')) 1945789Sahrens return (EINVAL); 1946789Sahrens 19472676Seschrock if (zc->zc_nvlist_src != NULL && 19485094Slling (error = get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 19495094Slling &nvprops)) != 0) 19502676Seschrock return (error); 19512676Seschrock 19525331Samw zct.zct_norm = 0; 19535331Samw zct.zct_props = nvprops; 19545331Samw 19552676Seschrock if (zc->zc_value[0] != '\0') { 1956789Sahrens /* 1957789Sahrens * We're creating a clone of an existing snapshot. 1958789Sahrens */ 19592676Seschrock zc->zc_value[sizeof (zc->zc_value) - 1] = '\0'; 19602676Seschrock if (dataset_namecheck(zc->zc_value, NULL, NULL) != 0) { 19614543Smarks nvlist_free(nvprops); 1962789Sahrens return (EINVAL); 19632676Seschrock } 1964789Sahrens 19652676Seschrock error = dmu_objset_open(zc->zc_value, type, 1966789Sahrens DS_MODE_STANDARD | DS_MODE_READONLY, &clone); 19672676Seschrock if (error) { 19684543Smarks nvlist_free(nvprops); 1969789Sahrens return (error); 19702676Seschrock } 1971789Sahrens error = dmu_objset_create(zc->zc_name, type, clone, NULL, NULL); 19725331Samw if (error) { 19735331Samw dmu_objset_close(clone); 19745331Samw nvlist_free(nvprops); 19755331Samw return (error); 19765331Samw } 19775331Samw /* 19785331Samw * If caller did not provide any properties, allocate 19795331Samw * an nvlist for properties, as we will be adding our set-once 19805331Samw * properties to it. This carries the choices made on the 19815331Samw * original file system into the clone. 19825331Samw */ 19835331Samw if (nvprops == NULL) 19845331Samw VERIFY(nvlist_alloc(&nvprops, 19855331Samw NV_UNIQUE_NAME, KM_SLEEP) == 0); 19865331Samw 19875331Samw /* 19885331Samw * We have to have normalization and case-folding 19895331Samw * flags correct when we do the file system creation, 19905331Samw * so go figure them out now. All we really care about 19915331Samw * here is getting these values into the property list. 19925331Samw */ 19935331Samw error = zfs_normalization_get(zc->zc_value, nvprops, 19945331Samw &zct.zct_norm, B_TRUE); 19955331Samw if (error != 0) { 19965331Samw dmu_objset_close(clone); 19975331Samw nvlist_free(nvprops); 19985331Samw return (error); 19995331Samw } 2000789Sahrens dmu_objset_close(clone); 2001789Sahrens } else { 20022676Seschrock if (cbfunc == NULL) { 20034543Smarks nvlist_free(nvprops); 20042199Sahrens return (EINVAL); 20052676Seschrock } 20062676Seschrock 2007789Sahrens if (type == DMU_OST_ZVOL) { 20082676Seschrock uint64_t volsize, volblocksize; 20092676Seschrock 20104543Smarks if (nvprops == NULL || 20114543Smarks nvlist_lookup_uint64(nvprops, 20122676Seschrock zfs_prop_to_name(ZFS_PROP_VOLSIZE), 20132676Seschrock &volsize) != 0) { 20144543Smarks nvlist_free(nvprops); 20152676Seschrock return (EINVAL); 20162676Seschrock } 20172676Seschrock 20184543Smarks if ((error = nvlist_lookup_uint64(nvprops, 20192676Seschrock zfs_prop_to_name(ZFS_PROP_VOLBLOCKSIZE), 20202676Seschrock &volblocksize)) != 0 && error != ENOENT) { 20214543Smarks nvlist_free(nvprops); 20222676Seschrock return (EINVAL); 20232676Seschrock } 20241133Seschrock 20252676Seschrock if (error != 0) 20262676Seschrock volblocksize = zfs_prop_default_numeric( 20272676Seschrock ZFS_PROP_VOLBLOCKSIZE); 20282676Seschrock 20292676Seschrock if ((error = zvol_check_volblocksize( 20302676Seschrock volblocksize)) != 0 || 20312676Seschrock (error = zvol_check_volsize(volsize, 20322676Seschrock volblocksize)) != 0) { 20334543Smarks nvlist_free(nvprops); 2034789Sahrens return (error); 20352676Seschrock } 20364577Sahrens } else if (type == DMU_OST_ZFS) { 20374577Sahrens uint64_t version; 20385331Samw int error; 20395331Samw 20405331Samw error = nvlist_lookup_uint64(nvprops, 20415331Samw zfs_prop_to_name(ZFS_PROP_VERSION), &version); 20425331Samw 20435331Samw if (error == 0 && (version < ZPL_VERSION_INITIAL || 20444577Sahrens version > ZPL_VERSION)) { 20454577Sahrens nvlist_free(nvprops); 20465331Samw return (ENOTSUP); 20475331Samw } else if (error == 0 && version >= ZPL_VERSION_FUID && 20485331Samw zfs_check_version(zc->zc_name, SPA_VERSION_FUID)) { 20495331Samw nvlist_free(nvprops); 20505331Samw return (ENOTSUP); 20515331Samw } 20525331Samw 20535331Samw /* 20545331Samw * We have to have normalization and 20555331Samw * case-folding flags correct when we do the 20565331Samw * file system creation, so go figure them out 20575331Samw * now. The final argument to zfs_normalization_get() 20585331Samw * tells that routine not to update the nvprops 20595331Samw * list. 20605331Samw */ 20615331Samw error = zfs_normalization_get(zc->zc_name, nvprops, 20625331Samw &zct.zct_norm, B_FALSE); 20635331Samw if (error != 0) { 20645331Samw nvlist_free(nvprops); 20655331Samw return (error); 20664577Sahrens } 20672676Seschrock } 20682676Seschrock error = dmu_objset_create(zc->zc_name, type, NULL, cbfunc, 20695331Samw &zct); 2070789Sahrens } 20712676Seschrock 20722676Seschrock /* 20732676Seschrock * It would be nice to do this atomically. 20742676Seschrock */ 20752676Seschrock if (error == 0) { 20764787Sahrens if ((error = zfs_set_prop_nvlist(zc->zc_name, nvprops)) != 0) 20772676Seschrock (void) dmu_objset_destroy(zc->zc_name); 20782676Seschrock } 20792676Seschrock 20804543Smarks nvlist_free(nvprops); 2081789Sahrens return (error); 2082789Sahrens } 2083789Sahrens 20845367Sahrens /* 20855367Sahrens * inputs: 20865367Sahrens * zc_name name of filesystem 20875367Sahrens * zc_value short name of snapshot 20885367Sahrens * zc_cookie recursive flag 20895367Sahrens * 20905367Sahrens * outputs: none 20915367Sahrens */ 2092789Sahrens static int 20932199Sahrens zfs_ioc_snapshot(zfs_cmd_t *zc) 20942199Sahrens { 20952676Seschrock if (snapshot_namecheck(zc->zc_value, NULL, NULL) != 0) 20962199Sahrens return (EINVAL); 20972199Sahrens return (dmu_objset_snapshot(zc->zc_name, 20982676Seschrock zc->zc_value, zc->zc_cookie)); 20992199Sahrens } 21002199Sahrens 21014007Smmusante int 21022199Sahrens zfs_unmount_snap(char *name, void *arg) 2103789Sahrens { 21042199Sahrens char *snapname = arg; 21052199Sahrens char *cp; 21062417Sahrens vfs_t *vfsp = NULL; 21072199Sahrens 21082199Sahrens /* 21092199Sahrens * Snapshots (which are under .zfs control) must be unmounted 21102199Sahrens * before they can be destroyed. 21112199Sahrens */ 21122199Sahrens 21132199Sahrens if (snapname) { 21142199Sahrens (void) strcat(name, "@"); 21152199Sahrens (void) strcat(name, snapname); 21162199Sahrens vfsp = zfs_get_vfs(name); 21172199Sahrens cp = strchr(name, '@'); 21182199Sahrens *cp = '\0'; 21192417Sahrens } else if (strchr(name, '@')) { 21202199Sahrens vfsp = zfs_get_vfs(name); 21212199Sahrens } 21222199Sahrens 21232199Sahrens if (vfsp) { 21242199Sahrens /* 21252199Sahrens * Always force the unmount for snapshots. 21262199Sahrens */ 21272199Sahrens int flag = MS_FORCE; 2128789Sahrens int err; 2129789Sahrens 21302199Sahrens if ((err = vn_vfswlock(vfsp->vfs_vnodecovered)) != 0) { 21312199Sahrens VFS_RELE(vfsp); 21322199Sahrens return (err); 21332199Sahrens } 21342199Sahrens VFS_RELE(vfsp); 21352199Sahrens if ((err = dounmount(vfsp, flag, kcred)) != 0) 21362199Sahrens return (err); 21372199Sahrens } 21382199Sahrens return (0); 21392199Sahrens } 21402199Sahrens 21415367Sahrens /* 21425367Sahrens * inputs: 21435367Sahrens * zc_name name of filesystem 21445367Sahrens * zc_value short name of snapshot 21455367Sahrens * 21465367Sahrens * outputs: none 21475367Sahrens */ 21482199Sahrens static int 21492199Sahrens zfs_ioc_destroy_snaps(zfs_cmd_t *zc) 21502199Sahrens { 21512199Sahrens int err; 2152789Sahrens 21532676Seschrock if (snapshot_namecheck(zc->zc_value, NULL, NULL) != 0) 21542199Sahrens return (EINVAL); 21552199Sahrens err = dmu_objset_find(zc->zc_name, 21562676Seschrock zfs_unmount_snap, zc->zc_value, DS_FIND_CHILDREN); 21572199Sahrens if (err) 21582199Sahrens return (err); 21592676Seschrock return (dmu_snapshots_destroy(zc->zc_name, zc->zc_value)); 21602199Sahrens } 21612199Sahrens 21625367Sahrens /* 21635367Sahrens * inputs: 21645367Sahrens * zc_name name of dataset to destroy 21655367Sahrens * zc_objset_type type of objset 21665367Sahrens * 21675367Sahrens * outputs: none 21685367Sahrens */ 21692199Sahrens static int 21702199Sahrens zfs_ioc_destroy(zfs_cmd_t *zc) 21712199Sahrens { 21722199Sahrens if (strchr(zc->zc_name, '@') && zc->zc_objset_type == DMU_OST_ZFS) { 21732199Sahrens int err = zfs_unmount_snap(zc->zc_name, NULL); 21742199Sahrens if (err) 21752199Sahrens return (err); 2176789Sahrens } 2177789Sahrens 2178789Sahrens return (dmu_objset_destroy(zc->zc_name)); 2179789Sahrens } 2180789Sahrens 21815367Sahrens /* 21825367Sahrens * inputs: 21835367Sahrens * zc_name name of snapshot to roll back to 21845367Sahrens * 21855367Sahrens * outputs: none 21865367Sahrens */ 2187789Sahrens static int 2188789Sahrens zfs_ioc_rollback(zfs_cmd_t *zc) 2189789Sahrens { 2190789Sahrens return (dmu_objset_rollback(zc->zc_name)); 2191789Sahrens } 2192789Sahrens 21935367Sahrens /* 21945367Sahrens * inputs: 21955367Sahrens * zc_name old name of dataset 21965367Sahrens * zc_value new name of dataset 21975367Sahrens * zc_cookie recursive flag (only valid for snapshots) 21985367Sahrens * 21995367Sahrens * outputs: none 22005367Sahrens */ 2201789Sahrens static int 2202789Sahrens zfs_ioc_rename(zfs_cmd_t *zc) 2203789Sahrens { 22044490Svb160487 boolean_t recursive = zc->zc_cookie & 1; 22054007Smmusante 22062676Seschrock zc->zc_value[sizeof (zc->zc_value) - 1] = '\0'; 22075326Sek110237 if (dataset_namecheck(zc->zc_value, NULL, NULL) != 0 || 22085326Sek110237 strchr(zc->zc_value, '%')) 2209789Sahrens return (EINVAL); 2210789Sahrens 22114007Smmusante /* 22124007Smmusante * Unmount snapshot unless we're doing a recursive rename, 22134007Smmusante * in which case the dataset code figures out which snapshots 22144007Smmusante * to unmount. 22154007Smmusante */ 22164007Smmusante if (!recursive && strchr(zc->zc_name, '@') != NULL && 2217789Sahrens zc->zc_objset_type == DMU_OST_ZFS) { 22182199Sahrens int err = zfs_unmount_snap(zc->zc_name, NULL); 22192199Sahrens if (err) 22202199Sahrens return (err); 2221789Sahrens } 2222789Sahrens 22234007Smmusante return (dmu_objset_rename(zc->zc_name, zc->zc_value, recursive)); 2224789Sahrens } 2225789Sahrens 22265367Sahrens /* 22275367Sahrens * inputs: 22285367Sahrens * zc_name name of containing filesystem 22295367Sahrens * zc_nvlist_src{_size} nvlist of properties to apply 22305367Sahrens * zc_value name of snapshot to create 22315367Sahrens * zc_string name of clone origin (if DRR_FLAG_CLONE) 22325367Sahrens * zc_cookie file descriptor to recv from 22335367Sahrens * zc_begin_record the BEGIN record of the stream (not byteswapped) 22345367Sahrens * zc_guid force flag 22355367Sahrens * 22365367Sahrens * outputs: 22375367Sahrens * zc_cookie number of bytes read 22385367Sahrens */ 2239789Sahrens static int 22405367Sahrens zfs_ioc_recv(zfs_cmd_t *zc) 2241789Sahrens { 2242789Sahrens file_t *fp; 22435326Sek110237 objset_t *os; 22445367Sahrens dmu_recv_cookie_t drc; 22455326Sek110237 zfsvfs_t *zfsvfs = NULL; 22465326Sek110237 boolean_t force = (boolean_t)zc->zc_guid; 2247789Sahrens int error, fd; 22485367Sahrens offset_t off; 22495367Sahrens nvlist_t *props = NULL; 22505367Sahrens objset_t *origin = NULL; 22515367Sahrens char *tosnap; 22525367Sahrens char tofs[ZFS_MAXNAMELEN]; 2253789Sahrens 22543265Sahrens if (dataset_namecheck(zc->zc_value, NULL, NULL) != 0 || 22555326Sek110237 strchr(zc->zc_value, '@') == NULL || 22565326Sek110237 strchr(zc->zc_value, '%')) 22573265Sahrens return (EINVAL); 22583265Sahrens 22595367Sahrens (void) strcpy(tofs, zc->zc_value); 22605367Sahrens tosnap = strchr(tofs, '@'); 22615367Sahrens *tosnap = '\0'; 22625367Sahrens tosnap++; 22635367Sahrens 22645367Sahrens if (zc->zc_nvlist_src != NULL && 22655367Sahrens (error = get_nvlist(zc->zc_nvlist_src, zc->zc_nvlist_src_size, 22665367Sahrens &props)) != 0) 22675367Sahrens return (error); 22685367Sahrens 2269789Sahrens fd = zc->zc_cookie; 2270789Sahrens fp = getf(fd); 22715367Sahrens if (fp == NULL) { 22725367Sahrens nvlist_free(props); 2273789Sahrens return (EBADF); 22745367Sahrens } 22755326Sek110237 22765326Sek110237 /* 22775326Sek110237 * Get the zfsvfs for the receiving objset. There 22785326Sek110237 * won't be one if we're operating on a zvol, if the 22795326Sek110237 * objset doesn't exist yet, or is not mounted. 22805326Sek110237 */ 22815367Sahrens 22825367Sahrens error = dmu_objset_open(tofs, DMU_OST_ANY, 22835326Sek110237 DS_MODE_STANDARD | DS_MODE_READONLY, &os); 22845326Sek110237 if (!error) { 22855326Sek110237 if (dmu_objset_type(os) == DMU_OST_ZFS) { 22865326Sek110237 mutex_enter(&os->os->os_user_ptr_lock); 22875326Sek110237 zfsvfs = dmu_objset_get_user(os); 22885326Sek110237 if (zfsvfs != NULL) 22895326Sek110237 VFS_HOLD(zfsvfs->z_vfs); 22905326Sek110237 mutex_exit(&os->os->os_user_ptr_lock); 22915326Sek110237 } 22925326Sek110237 dmu_objset_close(os); 22935326Sek110237 } 22945326Sek110237 22955367Sahrens if (zc->zc_string[0]) { 22965367Sahrens error = dmu_objset_open(zc->zc_string, DMU_OST_ANY, 22975367Sahrens DS_MODE_STANDARD | DS_MODE_READONLY, &origin); 22985367Sahrens if (error) { 22995367Sahrens if (zfsvfs != NULL) 23005367Sahrens VFS_RELE(zfsvfs->z_vfs); 23015367Sahrens nvlist_free(props); 23025367Sahrens releasef(fd); 23035367Sahrens return (error); 23045367Sahrens } 23055367Sahrens } 23065367Sahrens 23075367Sahrens error = dmu_recv_begin(tofs, tosnap, &zc->zc_begin_record, 23085367Sahrens force, origin, zfsvfs != NULL, &drc); 23095367Sahrens if (origin) 23105367Sahrens dmu_objset_close(origin); 23115367Sahrens if (error) { 23125367Sahrens if (zfsvfs != NULL) 23135367Sahrens VFS_RELE(zfsvfs->z_vfs); 23145367Sahrens nvlist_free(props); 23155367Sahrens releasef(fd); 23165367Sahrens return (error); 23175367Sahrens } 23185326Sek110237 23195326Sek110237 /* 23205367Sahrens * If properties are supplied, they are to completely replace 23215367Sahrens * the existing ones; "inherit" any existing properties. 23225326Sek110237 */ 23235367Sahrens if (props) { 23245367Sahrens objset_t *os; 23255367Sahrens nvlist_t *nv = NULL; 23265367Sahrens 23275367Sahrens error = dmu_objset_open(tofs, DMU_OST_ANY, 23285367Sahrens DS_MODE_STANDARD | DS_MODE_READONLY | DS_MODE_INCONSISTENT, 23295367Sahrens &os); 23305367Sahrens if (error == 0) { 23315367Sahrens error = dsl_prop_get_all(os, &nv); 23325367Sahrens dmu_objset_close(os); 23335367Sahrens } 23345367Sahrens if (error == 0) { 23355367Sahrens nvpair_t *elem; 23365367Sahrens zfs_cmd_t zc2 = { 0 }; 23375367Sahrens 23385367Sahrens (void) strcpy(zc2.zc_name, tofs); 23395367Sahrens for (elem = nvlist_next_nvpair(nv, NULL); elem; 23405367Sahrens elem = nvlist_next_nvpair(nv, elem)) { 23415367Sahrens (void) strcpy(zc2.zc_value, nvpair_name(elem)); 23425367Sahrens if (zfs_secpolicy_inherit(&zc2, CRED()) == 0) 23435367Sahrens (void) zfs_ioc_inherit_prop(&zc2); 23445326Sek110237 } 23455326Sek110237 } 23465367Sahrens if (nv) 23475367Sahrens nvlist_free(nv); 23485367Sahrens } 23495367Sahrens 23505367Sahrens /* 23515367Sahrens * Set properties. Note, we ignore errors. Would be better to 23525367Sahrens * do best-effort in zfs_set_prop_nvlist, too. 23535367Sahrens */ 23545367Sahrens (void) zfs_set_prop_nvlist(tofs, props); 23555367Sahrens nvlist_free(props); 23565367Sahrens 23575367Sahrens off = fp->f_offset; 23585367Sahrens error = dmu_recv_stream(&drc, fp->f_vnode, &off); 23595367Sahrens 23605367Sahrens if (error == 0) { 23615367Sahrens if (zfsvfs != NULL) { 23625367Sahrens char osname[MAXNAMELEN]; 23635367Sahrens int mode; 23645367Sahrens 23655367Sahrens (void) zfs_suspend_fs(zfsvfs, osname, &mode); 23665367Sahrens error = dmu_recv_end(&drc); 23675367Sahrens error |= zfs_resume_fs(zfsvfs, osname, mode); 23685367Sahrens } else { 23695367Sahrens error = dmu_recv_end(&drc); 23705367Sahrens } 23715326Sek110237 } 23725326Sek110237 if (zfsvfs != NULL) 23735326Sek110237 VFS_RELE(zfsvfs->z_vfs); 23745367Sahrens 23755367Sahrens zc->zc_cookie = off - fp->f_offset; 23765367Sahrens if (VOP_SEEK(fp->f_vnode, fp->f_offset, &off, NULL) == 0) 23775367Sahrens fp->f_offset = off; 23782885Sahrens 2379789Sahrens releasef(fd); 2380789Sahrens return (error); 2381789Sahrens } 2382789Sahrens 23835367Sahrens /* 23845367Sahrens * inputs: 23855367Sahrens * zc_name name of snapshot to send 23865367Sahrens * zc_value short name of incremental fromsnap (may be empty) 23875367Sahrens * zc_cookie file descriptor to send stream to 23885367Sahrens * zc_obj fromorigin flag (mutually exclusive with zc_value) 23895367Sahrens * 23905367Sahrens * outputs: none 23915367Sahrens */ 2392789Sahrens static int 23935367Sahrens zfs_ioc_send(zfs_cmd_t *zc) 2394789Sahrens { 2395789Sahrens objset_t *fromsnap = NULL; 2396789Sahrens objset_t *tosnap; 2397789Sahrens file_t *fp; 2398789Sahrens int error; 23995367Sahrens offset_t off; 2400789Sahrens 2401789Sahrens error = dmu_objset_open(zc->zc_name, DMU_OST_ANY, 2402789Sahrens DS_MODE_STANDARD | DS_MODE_READONLY, &tosnap); 2403789Sahrens if (error) 2404789Sahrens return (error); 2405789Sahrens 24062676Seschrock if (zc->zc_value[0] != '\0') { 24072885Sahrens char buf[MAXPATHLEN]; 24082885Sahrens char *cp; 24092885Sahrens 24102885Sahrens (void) strncpy(buf, zc->zc_name, sizeof (buf)); 24112885Sahrens cp = strchr(buf, '@'); 24122885Sahrens if (cp) 24132885Sahrens *(cp+1) = 0; 24142885Sahrens (void) strncat(buf, zc->zc_value, sizeof (buf)); 24152885Sahrens error = dmu_objset_open(buf, DMU_OST_ANY, 2416789Sahrens DS_MODE_STANDARD | DS_MODE_READONLY, &fromsnap); 2417789Sahrens if (error) { 2418789Sahrens dmu_objset_close(tosnap); 2419789Sahrens return (error); 2420789Sahrens } 2421789Sahrens } 2422789Sahrens 2423789Sahrens fp = getf(zc->zc_cookie); 2424789Sahrens if (fp == NULL) { 2425789Sahrens dmu_objset_close(tosnap); 2426789Sahrens if (fromsnap) 2427789Sahrens dmu_objset_close(fromsnap); 2428789Sahrens return (EBADF); 2429789Sahrens } 2430789Sahrens 24315367Sahrens off = fp->f_offset; 24325367Sahrens error = dmu_sendbackup(tosnap, fromsnap, zc->zc_obj, fp->f_vnode, &off); 24335367Sahrens 24345367Sahrens if (VOP_SEEK(fp->f_vnode, fp->f_offset, &off, NULL) == 0) 24355367Sahrens fp->f_offset = off; 2436789Sahrens releasef(zc->zc_cookie); 2437789Sahrens if (fromsnap) 2438789Sahrens dmu_objset_close(fromsnap); 2439789Sahrens dmu_objset_close(tosnap); 2440789Sahrens return (error); 2441789Sahrens } 2442789Sahrens 24431544Seschrock static int 24441544Seschrock zfs_ioc_inject_fault(zfs_cmd_t *zc) 24451544Seschrock { 24461544Seschrock int id, error; 24471544Seschrock 24481544Seschrock error = zio_inject_fault(zc->zc_name, (int)zc->zc_guid, &id, 24491544Seschrock &zc->zc_inject_record); 24501544Seschrock 24511544Seschrock if (error == 0) 24521544Seschrock zc->zc_guid = (uint64_t)id; 24531544Seschrock 24541544Seschrock return (error); 24551544Seschrock } 24561544Seschrock 24571544Seschrock static int 24581544Seschrock zfs_ioc_clear_fault(zfs_cmd_t *zc) 24591544Seschrock { 24601544Seschrock return (zio_clear_fault((int)zc->zc_guid)); 24611544Seschrock } 24621544Seschrock 24631544Seschrock static int 24641544Seschrock zfs_ioc_inject_list_next(zfs_cmd_t *zc) 24651544Seschrock { 24661544Seschrock int id = (int)zc->zc_guid; 24671544Seschrock int error; 24681544Seschrock 24691544Seschrock error = zio_inject_list_next(&id, zc->zc_name, sizeof (zc->zc_name), 24701544Seschrock &zc->zc_inject_record); 24711544Seschrock 24721544Seschrock zc->zc_guid = id; 24731544Seschrock 24741544Seschrock return (error); 24751544Seschrock } 24761544Seschrock 24771544Seschrock static int 24781544Seschrock zfs_ioc_error_log(zfs_cmd_t *zc) 24791544Seschrock { 24801544Seschrock spa_t *spa; 24811544Seschrock int error; 24822676Seschrock size_t count = (size_t)zc->zc_nvlist_dst_size; 24831544Seschrock 24841544Seschrock if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 24851544Seschrock return (error); 24861544Seschrock 24872676Seschrock error = spa_get_errlog(spa, (void *)(uintptr_t)zc->zc_nvlist_dst, 24881544Seschrock &count); 24891544Seschrock if (error == 0) 24902676Seschrock zc->zc_nvlist_dst_size = count; 24911544Seschrock else 24922676Seschrock zc->zc_nvlist_dst_size = spa_get_errlog_size(spa); 24931544Seschrock 24941544Seschrock spa_close(spa, FTAG); 24951544Seschrock 24961544Seschrock return (error); 24971544Seschrock } 24981544Seschrock 24991544Seschrock static int 25001544Seschrock zfs_ioc_clear(zfs_cmd_t *zc) 25011544Seschrock { 25021544Seschrock spa_t *spa; 25031544Seschrock vdev_t *vd; 25044808Sek110237 uint64_t txg; 25051544Seschrock int error; 25061544Seschrock 25071544Seschrock if ((error = spa_open(zc->zc_name, &spa, FTAG)) != 0) 25081544Seschrock return (error); 25091544Seschrock 25105329Sgw25295 /* 25115329Sgw25295 * Try to resume any I/Os which may have been suspended 25125329Sgw25295 * as a result of a complete pool failure. 25135329Sgw25295 */ 25145329Sgw25295 if (!list_is_empty(&spa->spa_zio_list)) { 25155329Sgw25295 if (zio_vdev_resume_io(spa) != 0) { 25165329Sgw25295 spa_close(spa, FTAG); 25175329Sgw25295 return (EIO); 25185329Sgw25295 } 25195329Sgw25295 } 25205329Sgw25295 25214451Seschrock txg = spa_vdev_enter(spa); 25221544Seschrock 25232676Seschrock if (zc->zc_guid == 0) { 25241544Seschrock vd = NULL; 25252676Seschrock } else if ((vd = spa_lookup_by_guid(spa, zc->zc_guid)) == NULL) { 25264451Seschrock (void) spa_vdev_exit(spa, NULL, txg, ENODEV); 25271544Seschrock spa_close(spa, FTAG); 25281544Seschrock return (ENODEV); 25291544Seschrock } 25301544Seschrock 25315329Sgw25295 vdev_clear(spa, vd, B_TRUE); 25321544Seschrock 25334451Seschrock (void) spa_vdev_exit(spa, NULL, txg, 0); 25341544Seschrock 25351544Seschrock spa_close(spa, FTAG); 25361544Seschrock 25371544Seschrock return (0); 25381544Seschrock } 25391544Seschrock 25405367Sahrens /* 25415367Sahrens * inputs: 25425367Sahrens * zc_name name of filesystem 25435367Sahrens * zc_value name of origin snapshot 25445367Sahrens * 25455367Sahrens * outputs: none 25465367Sahrens */ 25471544Seschrock static int 25482082Seschrock zfs_ioc_promote(zfs_cmd_t *zc) 25492082Seschrock { 25502417Sahrens char *cp; 25512417Sahrens 25522417Sahrens /* 25532417Sahrens * We don't need to unmount *all* the origin fs's snapshots, but 25542417Sahrens * it's easier. 25552417Sahrens */ 25562676Seschrock cp = strchr(zc->zc_value, '@'); 25572417Sahrens if (cp) 25582417Sahrens *cp = '\0'; 25592676Seschrock (void) dmu_objset_find(zc->zc_value, 25602417Sahrens zfs_unmount_snap, NULL, DS_FIND_SNAPSHOTS); 25612082Seschrock return (dsl_dataset_promote(zc->zc_name)); 25622082Seschrock } 25632082Seschrock 25644543Smarks /* 25654543Smarks * We don't want to have a hard dependency 25664543Smarks * against some special symbols in sharefs 25675331Samw * nfs, and smbsrv. Determine them if needed when 25684543Smarks * the first file system is shared. 25695331Samw * Neither sharefs, nfs or smbsrv are unloadable modules. 25704543Smarks */ 25715331Samw int (*znfsexport_fs)(void *arg); 25724543Smarks int (*zshare_fs)(enum sharefs_sys_op, share_t *, uint32_t); 25735331Samw int (*zsmbexport_fs)(void *arg, boolean_t add_share); 25745331Samw 25755331Samw int zfs_nfsshare_inited; 25765331Samw int zfs_smbshare_inited; 25775331Samw 25784543Smarks ddi_modhandle_t nfs_mod; 25794543Smarks ddi_modhandle_t sharefs_mod; 25805331Samw ddi_modhandle_t smbsrv_mod; 25814543Smarks kmutex_t zfs_share_lock; 25824543Smarks 25834543Smarks static int 25845331Samw zfs_init_sharefs() 25855331Samw { 25865331Samw int error; 25875331Samw 25885331Samw ASSERT(MUTEX_HELD(&zfs_share_lock)); 25895331Samw /* Both NFS and SMB shares also require sharetab support. */ 25905331Samw if (sharefs_mod == NULL && ((sharefs_mod = 25915331Samw ddi_modopen("fs/sharefs", 25925331Samw KRTLD_MODE_FIRST, &error)) == NULL)) { 25935331Samw return (ENOSYS); 25945331Samw } 25955331Samw if (zshare_fs == NULL && ((zshare_fs = 25965331Samw (int (*)(enum sharefs_sys_op, share_t *, uint32_t)) 25975331Samw ddi_modsym(sharefs_mod, "sharefs_impl", &error)) == NULL)) { 25985331Samw return (ENOSYS); 25995331Samw } 26005331Samw return (0); 26015331Samw } 26025331Samw 26035331Samw static int 26044543Smarks zfs_ioc_share(zfs_cmd_t *zc) 26054543Smarks { 26064543Smarks int error; 26074543Smarks int opcode; 26084543Smarks 26095331Samw switch (zc->zc_share.z_sharetype) { 26105331Samw case ZFS_SHARE_NFS: 26115331Samw case ZFS_UNSHARE_NFS: 26125331Samw if (zfs_nfsshare_inited == 0) { 26135331Samw mutex_enter(&zfs_share_lock); 26145331Samw if (nfs_mod == NULL && ((nfs_mod = ddi_modopen("fs/nfs", 26155331Samw KRTLD_MODE_FIRST, &error)) == NULL)) { 26165331Samw mutex_exit(&zfs_share_lock); 26175331Samw return (ENOSYS); 26185331Samw } 26195331Samw if (znfsexport_fs == NULL && 26205331Samw ((znfsexport_fs = (int (*)(void *)) 26215331Samw ddi_modsym(nfs_mod, 26225331Samw "nfs_export", &error)) == NULL)) { 26235331Samw mutex_exit(&zfs_share_lock); 26245331Samw return (ENOSYS); 26255331Samw } 26265331Samw error = zfs_init_sharefs(); 26275331Samw if (error) { 26285331Samw mutex_exit(&zfs_share_lock); 26295331Samw return (ENOSYS); 26305331Samw } 26315331Samw zfs_nfsshare_inited = 1; 26324543Smarks mutex_exit(&zfs_share_lock); 26334543Smarks } 26345331Samw break; 26355331Samw case ZFS_SHARE_SMB: 26365331Samw case ZFS_UNSHARE_SMB: 26375331Samw if (zfs_smbshare_inited == 0) { 26385331Samw mutex_enter(&zfs_share_lock); 26395331Samw if (smbsrv_mod == NULL && ((smbsrv_mod = 26405331Samw ddi_modopen("drv/smbsrv", 26415331Samw KRTLD_MODE_FIRST, &error)) == NULL)) { 26425331Samw mutex_exit(&zfs_share_lock); 26435331Samw return (ENOSYS); 26445331Samw } 26455331Samw if (zsmbexport_fs == NULL && ((zsmbexport_fs = 26465331Samw (int (*)(void *, boolean_t))ddi_modsym(smbsrv_mod, 26475331Samw "lmshrd_share_upcall", &error)) == NULL)) { 26485331Samw mutex_exit(&zfs_share_lock); 26495331Samw return (ENOSYS); 26505331Samw } 26515331Samw error = zfs_init_sharefs(); 26525331Samw if (error) { 26535331Samw mutex_exit(&zfs_share_lock); 26545331Samw return (ENOSYS); 26555331Samw } 26565331Samw zfs_smbshare_inited = 1; 26574543Smarks mutex_exit(&zfs_share_lock); 26584543Smarks } 26595331Samw break; 26605331Samw default: 26615331Samw return (EINVAL); 26624543Smarks } 26634543Smarks 26645331Samw switch (zc->zc_share.z_sharetype) { 26655331Samw case ZFS_SHARE_NFS: 26665331Samw case ZFS_UNSHARE_NFS: 26675331Samw if (error = 26685331Samw znfsexport_fs((void *) 26695331Samw (uintptr_t)zc->zc_share.z_exportdata)) 26705331Samw return (error); 26715331Samw break; 26725331Samw case ZFS_SHARE_SMB: 26735331Samw case ZFS_UNSHARE_SMB: 26745331Samw if (error = zsmbexport_fs((void *) 26755331Samw (uintptr_t)zc->zc_share.z_exportdata, 26765331Samw zc->zc_share.z_sharetype == ZFS_SHARE_SMB ? 26775331Samw B_TRUE : B_FALSE)) { 26785331Samw return (error); 26795331Samw } 26805331Samw break; 26815331Samw } 26825331Samw 26835331Samw opcode = (zc->zc_share.z_sharetype == ZFS_SHARE_NFS || 26845331Samw zc->zc_share.z_sharetype == ZFS_SHARE_SMB) ? 26854543Smarks SHAREFS_ADD : SHAREFS_REMOVE; 26864543Smarks 26875331Samw /* 26885331Samw * Add or remove share from sharetab 26895331Samw */ 26904543Smarks error = zshare_fs(opcode, 26914543Smarks (void *)(uintptr_t)zc->zc_share.z_sharedata, 26924543Smarks zc->zc_share.z_sharemax); 26934543Smarks 26944543Smarks return (error); 26954543Smarks 26964543Smarks } 26974543Smarks 26984543Smarks /* 26994988Sek110237 * pool create, destroy, and export don't log the history as part of 27004988Sek110237 * zfsdev_ioctl, but rather zfs_ioc_pool_create, and zfs_ioc_pool_export 27014988Sek110237 * do the logging of those commands. 27024543Smarks */ 2703789Sahrens static zfs_ioc_vec_t zfs_ioc_vec[] = { 27044715Sek110237 { zfs_ioc_pool_create, zfs_secpolicy_config, POOL_NAME, B_FALSE }, 27054577Sahrens { zfs_ioc_pool_destroy, zfs_secpolicy_config, POOL_NAME, B_FALSE }, 27064577Sahrens { zfs_ioc_pool_import, zfs_secpolicy_config, POOL_NAME, B_TRUE }, 27074577Sahrens { zfs_ioc_pool_export, zfs_secpolicy_config, POOL_NAME, B_FALSE }, 27084577Sahrens { zfs_ioc_pool_configs, zfs_secpolicy_none, NO_NAME, B_FALSE }, 27094577Sahrens { zfs_ioc_pool_stats, zfs_secpolicy_read, POOL_NAME, B_FALSE }, 27104577Sahrens { zfs_ioc_pool_tryimport, zfs_secpolicy_config, NO_NAME, B_FALSE }, 27114577Sahrens { zfs_ioc_pool_scrub, zfs_secpolicy_config, POOL_NAME, B_TRUE }, 27124577Sahrens { zfs_ioc_pool_freeze, zfs_secpolicy_config, NO_NAME, B_FALSE }, 27134577Sahrens { zfs_ioc_pool_upgrade, zfs_secpolicy_config, POOL_NAME, B_TRUE }, 27144577Sahrens { zfs_ioc_pool_get_history, zfs_secpolicy_config, POOL_NAME, B_FALSE }, 27154577Sahrens { zfs_ioc_vdev_add, zfs_secpolicy_config, POOL_NAME, B_TRUE }, 27164577Sahrens { zfs_ioc_vdev_remove, zfs_secpolicy_config, POOL_NAME, B_TRUE }, 27174577Sahrens { zfs_ioc_vdev_set_state, zfs_secpolicy_config, POOL_NAME, B_TRUE }, 27184577Sahrens { zfs_ioc_vdev_attach, zfs_secpolicy_config, POOL_NAME, B_TRUE }, 27194577Sahrens { zfs_ioc_vdev_detach, zfs_secpolicy_config, POOL_NAME, B_TRUE }, 27204577Sahrens { zfs_ioc_vdev_setpath, zfs_secpolicy_config, POOL_NAME, B_FALSE }, 27214577Sahrens { zfs_ioc_objset_stats, zfs_secpolicy_read, DATASET_NAME, B_FALSE }, 27225147Srm160521 { zfs_ioc_objset_version, zfs_secpolicy_read, DATASET_NAME, B_FALSE }, 27234543Smarks { zfs_ioc_dataset_list_next, zfs_secpolicy_read, 27244577Sahrens DATASET_NAME, B_FALSE }, 27254543Smarks { zfs_ioc_snapshot_list_next, zfs_secpolicy_read, 27264577Sahrens DATASET_NAME, B_FALSE }, 27274577Sahrens { zfs_ioc_set_prop, zfs_secpolicy_none, DATASET_NAME, B_TRUE }, 27284577Sahrens { zfs_ioc_create_minor, zfs_secpolicy_minor, DATASET_NAME, B_FALSE }, 27294577Sahrens { zfs_ioc_remove_minor, zfs_secpolicy_minor, DATASET_NAME, B_FALSE }, 27304577Sahrens { zfs_ioc_create, zfs_secpolicy_create, DATASET_NAME, B_TRUE }, 27314577Sahrens { zfs_ioc_destroy, zfs_secpolicy_destroy, DATASET_NAME, B_TRUE }, 27324577Sahrens { zfs_ioc_rollback, zfs_secpolicy_rollback, DATASET_NAME, B_TRUE }, 27334577Sahrens { zfs_ioc_rename, zfs_secpolicy_rename, DATASET_NAME, B_TRUE }, 27345367Sahrens { zfs_ioc_recv, zfs_secpolicy_receive, DATASET_NAME, B_TRUE }, 27355367Sahrens { zfs_ioc_send, zfs_secpolicy_send, DATASET_NAME, B_TRUE }, 27364577Sahrens { zfs_ioc_inject_fault, zfs_secpolicy_inject, NO_NAME, B_FALSE }, 27374577Sahrens { zfs_ioc_clear_fault, zfs_secpolicy_inject, NO_NAME, B_FALSE }, 27384577Sahrens { zfs_ioc_inject_list_next, zfs_secpolicy_inject, NO_NAME, B_FALSE }, 27394577Sahrens { zfs_ioc_error_log, zfs_secpolicy_inject, POOL_NAME, B_FALSE }, 27404577Sahrens { zfs_ioc_clear, zfs_secpolicy_config, POOL_NAME, B_TRUE }, 27414577Sahrens { zfs_ioc_promote, zfs_secpolicy_promote, DATASET_NAME, B_TRUE }, 27424577Sahrens { zfs_ioc_destroy_snaps, zfs_secpolicy_destroy, DATASET_NAME, B_TRUE }, 27434577Sahrens { zfs_ioc_snapshot, zfs_secpolicy_snapshot, DATASET_NAME, B_TRUE }, 27444577Sahrens { zfs_ioc_dsobj_to_dsname, zfs_secpolicy_config, POOL_NAME, B_FALSE }, 27454577Sahrens { zfs_ioc_obj_to_path, zfs_secpolicy_config, NO_NAME, B_FALSE }, 27464577Sahrens { zfs_ioc_pool_set_props, zfs_secpolicy_config, POOL_NAME, B_TRUE }, 27474577Sahrens { zfs_ioc_pool_get_props, zfs_secpolicy_read, POOL_NAME, B_FALSE }, 27484577Sahrens { zfs_ioc_set_fsacl, zfs_secpolicy_fsacl, DATASET_NAME, B_TRUE }, 27494577Sahrens { zfs_ioc_get_fsacl, zfs_secpolicy_read, DATASET_NAME, B_FALSE }, 27504543Smarks { zfs_ioc_iscsi_perm_check, zfs_secpolicy_iscsi, 27514577Sahrens DATASET_NAME, B_FALSE }, 27524849Sahrens { zfs_ioc_share, zfs_secpolicy_share, DATASET_NAME, B_FALSE }, 27534849Sahrens { zfs_ioc_inherit_prop, zfs_secpolicy_inherit, DATASET_NAME, B_TRUE }, 2754789Sahrens }; 2755789Sahrens 2756789Sahrens static int 2757789Sahrens zfsdev_ioctl(dev_t dev, int cmd, intptr_t arg, int flag, cred_t *cr, int *rvalp) 2758789Sahrens { 2759789Sahrens zfs_cmd_t *zc; 2760789Sahrens uint_t vec; 27612199Sahrens int error, rc; 2762789Sahrens 2763789Sahrens if (getminor(dev) != 0) 2764789Sahrens return (zvol_ioctl(dev, cmd, arg, flag, cr, rvalp)); 2765789Sahrens 2766789Sahrens vec = cmd - ZFS_IOC; 27674787Sahrens ASSERT3U(getmajor(dev), ==, ddi_driver_major(zfs_dip)); 2768789Sahrens 2769789Sahrens if (vec >= sizeof (zfs_ioc_vec) / sizeof (zfs_ioc_vec[0])) 2770789Sahrens return (EINVAL); 2771789Sahrens 2772789Sahrens zc = kmem_zalloc(sizeof (zfs_cmd_t), KM_SLEEP); 2773789Sahrens 2774789Sahrens error = xcopyin((void *)arg, zc, sizeof (zfs_cmd_t)); 2775789Sahrens 27764787Sahrens if (error == 0) 27774543Smarks error = zfs_ioc_vec[vec].zvec_secpolicy(zc, cr); 2778789Sahrens 2779789Sahrens /* 2780789Sahrens * Ensure that all pool/dataset names are valid before we pass down to 2781789Sahrens * the lower layers. 2782789Sahrens */ 2783789Sahrens if (error == 0) { 2784789Sahrens zc->zc_name[sizeof (zc->zc_name) - 1] = '\0'; 2785789Sahrens switch (zfs_ioc_vec[vec].zvec_namecheck) { 27864577Sahrens case POOL_NAME: 2787789Sahrens if (pool_namecheck(zc->zc_name, NULL, NULL) != 0) 2788789Sahrens error = EINVAL; 2789789Sahrens break; 2790789Sahrens 27914577Sahrens case DATASET_NAME: 2792789Sahrens if (dataset_namecheck(zc->zc_name, NULL, NULL) != 0) 2793789Sahrens error = EINVAL; 2794789Sahrens break; 27952856Snd150628 27964577Sahrens case NO_NAME: 27972856Snd150628 break; 2798789Sahrens } 2799789Sahrens } 2800789Sahrens 2801789Sahrens if (error == 0) 2802789Sahrens error = zfs_ioc_vec[vec].zvec_func(zc); 2803789Sahrens 28042199Sahrens rc = xcopyout(zc, (void *)arg, sizeof (zfs_cmd_t)); 28054543Smarks if (error == 0) { 28062199Sahrens error = rc; 28074543Smarks if (zfs_ioc_vec[vec].zvec_his_log == B_TRUE) 28084543Smarks zfs_log_history(zc); 28094543Smarks } 2810789Sahrens 2811789Sahrens kmem_free(zc, sizeof (zfs_cmd_t)); 2812789Sahrens return (error); 2813789Sahrens } 2814789Sahrens 2815789Sahrens static int 2816789Sahrens zfs_attach(dev_info_t *dip, ddi_attach_cmd_t cmd) 2817789Sahrens { 2818789Sahrens if (cmd != DDI_ATTACH) 2819789Sahrens return (DDI_FAILURE); 2820789Sahrens 2821789Sahrens if (ddi_create_minor_node(dip, "zfs", S_IFCHR, 0, 2822789Sahrens DDI_PSEUDO, 0) == DDI_FAILURE) 2823789Sahrens return (DDI_FAILURE); 2824789Sahrens 2825789Sahrens zfs_dip = dip; 2826789Sahrens 2827789Sahrens ddi_report_dev(dip); 2828789Sahrens 2829789Sahrens return (DDI_SUCCESS); 2830789Sahrens } 2831789Sahrens 2832789Sahrens static int 2833789Sahrens zfs_detach(dev_info_t *dip, ddi_detach_cmd_t cmd) 2834789Sahrens { 2835789Sahrens if (spa_busy() || zfs_busy() || zvol_busy()) 2836789Sahrens return (DDI_FAILURE); 2837789Sahrens 2838789Sahrens if (cmd != DDI_DETACH) 2839789Sahrens return (DDI_FAILURE); 2840789Sahrens 2841789Sahrens zfs_dip = NULL; 2842789Sahrens 2843789Sahrens ddi_prop_remove_all(dip); 2844789Sahrens ddi_remove_minor_node(dip, NULL); 2845789Sahrens 2846789Sahrens return (DDI_SUCCESS); 2847789Sahrens } 2848789Sahrens 2849789Sahrens /*ARGSUSED*/ 2850789Sahrens static int 2851789Sahrens zfs_info(dev_info_t *dip, ddi_info_cmd_t infocmd, void *arg, void **result) 2852789Sahrens { 2853789Sahrens switch (infocmd) { 2854789Sahrens case DDI_INFO_DEVT2DEVINFO: 2855789Sahrens *result = zfs_dip; 2856789Sahrens return (DDI_SUCCESS); 2857789Sahrens 2858789Sahrens case DDI_INFO_DEVT2INSTANCE: 2859849Sbonwick *result = (void *)0; 2860789Sahrens return (DDI_SUCCESS); 2861789Sahrens } 2862789Sahrens 2863789Sahrens return (DDI_FAILURE); 2864789Sahrens } 2865789Sahrens 2866789Sahrens /* 2867789Sahrens * OK, so this is a little weird. 2868789Sahrens * 2869789Sahrens * /dev/zfs is the control node, i.e. minor 0. 2870789Sahrens * /dev/zvol/[r]dsk/pool/dataset are the zvols, minor > 0. 2871789Sahrens * 2872789Sahrens * /dev/zfs has basically nothing to do except serve up ioctls, 2873789Sahrens * so most of the standard driver entry points are in zvol.c. 2874789Sahrens */ 2875789Sahrens static struct cb_ops zfs_cb_ops = { 2876789Sahrens zvol_open, /* open */ 2877789Sahrens zvol_close, /* close */ 2878789Sahrens zvol_strategy, /* strategy */ 2879789Sahrens nodev, /* print */ 2880789Sahrens nodev, /* dump */ 2881789Sahrens zvol_read, /* read */ 2882789Sahrens zvol_write, /* write */ 2883789Sahrens zfsdev_ioctl, /* ioctl */ 2884789Sahrens nodev, /* devmap */ 2885789Sahrens nodev, /* mmap */ 2886789Sahrens nodev, /* segmap */ 2887789Sahrens nochpoll, /* poll */ 2888789Sahrens ddi_prop_op, /* prop_op */ 2889789Sahrens NULL, /* streamtab */ 2890789Sahrens D_NEW | D_MP | D_64BIT, /* Driver compatibility flag */ 2891789Sahrens CB_REV, /* version */ 28923638Sbillm nodev, /* async read */ 28933638Sbillm nodev, /* async write */ 2894789Sahrens }; 2895789Sahrens 2896789Sahrens static struct dev_ops zfs_dev_ops = { 2897789Sahrens DEVO_REV, /* version */ 2898789Sahrens 0, /* refcnt */ 2899789Sahrens zfs_info, /* info */ 2900789Sahrens nulldev, /* identify */ 2901789Sahrens nulldev, /* probe */ 2902789Sahrens zfs_attach, /* attach */ 2903789Sahrens zfs_detach, /* detach */ 2904789Sahrens nodev, /* reset */ 2905789Sahrens &zfs_cb_ops, /* driver operations */ 2906789Sahrens NULL /* no bus operations */ 2907789Sahrens }; 2908789Sahrens 2909789Sahrens static struct modldrv zfs_modldrv = { 29104577Sahrens &mod_driverops, "ZFS storage pool version " SPA_VERSION_STRING, 29112676Seschrock &zfs_dev_ops 2912789Sahrens }; 2913789Sahrens 2914789Sahrens static struct modlinkage modlinkage = { 2915789Sahrens MODREV_1, 2916789Sahrens (void *)&zfs_modlfs, 2917789Sahrens (void *)&zfs_modldrv, 2918789Sahrens NULL 2919789Sahrens }; 2920789Sahrens 29214720Sfr157268 29224720Sfr157268 uint_t zfs_fsyncer_key; 29235326Sek110237 extern uint_t rrw_tsd_key; 29244720Sfr157268 2925789Sahrens int 2926789Sahrens _init(void) 2927789Sahrens { 2928789Sahrens int error; 2929789Sahrens 2930849Sbonwick spa_init(FREAD | FWRITE); 2931849Sbonwick zfs_init(); 2932849Sbonwick zvol_init(); 2933849Sbonwick 2934849Sbonwick if ((error = mod_install(&modlinkage)) != 0) { 2935849Sbonwick zvol_fini(); 2936849Sbonwick zfs_fini(); 2937849Sbonwick spa_fini(); 2938789Sahrens return (error); 2939849Sbonwick } 2940789Sahrens 29414720Sfr157268 tsd_create(&zfs_fsyncer_key, NULL); 29425326Sek110237 tsd_create(&rrw_tsd_key, NULL); 29434720Sfr157268 2944789Sahrens error = ldi_ident_from_mod(&modlinkage, &zfs_li); 2945789Sahrens ASSERT(error == 0); 29464543Smarks mutex_init(&zfs_share_lock, NULL, MUTEX_DEFAULT, NULL); 2947789Sahrens 2948789Sahrens return (0); 2949789Sahrens } 2950789Sahrens 2951789Sahrens int 2952789Sahrens _fini(void) 2953789Sahrens { 2954789Sahrens int error; 2955789Sahrens 29561544Seschrock if (spa_busy() || zfs_busy() || zvol_busy() || zio_injection_enabled) 2957789Sahrens return (EBUSY); 2958789Sahrens 2959789Sahrens if ((error = mod_remove(&modlinkage)) != 0) 2960789Sahrens return (error); 2961789Sahrens 2962789Sahrens zvol_fini(); 2963789Sahrens zfs_fini(); 2964789Sahrens spa_fini(); 29655331Samw if (zfs_nfsshare_inited) 29664543Smarks (void) ddi_modclose(nfs_mod); 29675331Samw if (zfs_smbshare_inited) 29685331Samw (void) ddi_modclose(smbsrv_mod); 29695331Samw if (zfs_nfsshare_inited || zfs_smbshare_inited) 29704543Smarks (void) ddi_modclose(sharefs_mod); 2971789Sahrens 29724720Sfr157268 tsd_destroy(&zfs_fsyncer_key); 2973789Sahrens ldi_ident_release(zfs_li); 2974789Sahrens zfs_li = NULL; 29754543Smarks mutex_destroy(&zfs_share_lock); 2976789Sahrens 2977789Sahrens return (error); 2978789Sahrens } 2979789Sahrens 2980789Sahrens int 2981789Sahrens _info(struct modinfo *modinfop) 2982789Sahrens { 2983789Sahrens return (mod_info(&modlinkage, modinfop)); 2984789Sahrens } 2985