1 /*-
2 * Copyright (c) 2015 Nuxi, https://nuxi.nl/
3 *
4 * Redistribution and use in source and binary forms, with or without
5 * modification, are permitted provided that the following conditions
6 * are met:
7 * 1. Redistributions of source code must retain the above copyright
8 * notice, this list of conditions and the following disclaimer.
9 * 2. Redistributions in binary form must reproduce the above copyright
10 * notice, this list of conditions and the following disclaimer in the
11 * documentation and/or other materials provided with the distribution.
12 *
13 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
14 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
15 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
16 * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
17 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
18 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
19 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
20 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
21 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
22 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
23 * SUCH DAMAGE.
24 */
25
26 #include <sys/cdefs.h>
27 __FBSDID("$FreeBSD: releng/11.1/sys/compat/cloudabi/cloudabi_fd.c 315550 2017-03-19 14:36:19Z trasz $");
28
29 #include <sys/param.h>
30 #include <sys/capsicum.h>
31 #include <sys/filedesc.h>
32 #include <sys/proc.h>
33 #include <sys/mman.h>
34 #include <sys/socketvar.h>
35 #include <sys/syscallsubr.h>
36 #include <sys/sysproto.h>
37 #include <sys/systm.h>
38 #include <sys/unistd.h>
39 #include <sys/vnode.h>
40
41 #include <contrib/cloudabi/cloudabi_types_common.h>
42
43 #include <compat/cloudabi/cloudabi_proto.h>
44 #include <compat/cloudabi/cloudabi_util.h>
45
46 /* Translation between CloudABI and Capsicum rights. */
47 #define RIGHTS_MAPPINGS \
48 MAPPING(CLOUDABI_RIGHT_FD_DATASYNC, CAP_FSYNC) \
49 MAPPING(CLOUDABI_RIGHT_FD_READ, CAP_READ) \
50 MAPPING(CLOUDABI_RIGHT_FD_SEEK, CAP_SEEK) \
51 MAPPING(CLOUDABI_RIGHT_FD_STAT_PUT_FLAGS, CAP_FCNTL) \
52 MAPPING(CLOUDABI_RIGHT_FD_SYNC, CAP_FSYNC) \
53 MAPPING(CLOUDABI_RIGHT_FD_TELL, CAP_SEEK_TELL) \
54 MAPPING(CLOUDABI_RIGHT_FD_WRITE, CAP_WRITE) \
55 MAPPING(CLOUDABI_RIGHT_FILE_ADVISE) \
56 MAPPING(CLOUDABI_RIGHT_FILE_ALLOCATE, CAP_WRITE) \
57 MAPPING(CLOUDABI_RIGHT_FILE_CREATE_DIRECTORY, CAP_MKDIRAT) \
58 MAPPING(CLOUDABI_RIGHT_FILE_CREATE_FILE, CAP_CREATE) \
59 MAPPING(CLOUDABI_RIGHT_FILE_CREATE_FIFO, CAP_MKFIFOAT) \
60 MAPPING(CLOUDABI_RIGHT_FILE_LINK_SOURCE, CAP_LINKAT_SOURCE) \
61 MAPPING(CLOUDABI_RIGHT_FILE_LINK_TARGET, CAP_LINKAT_TARGET) \
62 MAPPING(CLOUDABI_RIGHT_FILE_OPEN, CAP_LOOKUP) \
63 MAPPING(CLOUDABI_RIGHT_FILE_READDIR, CAP_READ) \
64 MAPPING(CLOUDABI_RIGHT_FILE_READLINK, CAP_LOOKUP) \
65 MAPPING(CLOUDABI_RIGHT_FILE_RENAME_SOURCE, CAP_RENAMEAT_SOURCE) \
66 MAPPING(CLOUDABI_RIGHT_FILE_RENAME_TARGET, CAP_RENAMEAT_TARGET) \
67 MAPPING(CLOUDABI_RIGHT_FILE_STAT_FGET, CAP_FSTAT) \
68 MAPPING(CLOUDABI_RIGHT_FILE_STAT_FPUT_SIZE, CAP_FTRUNCATE) \
69 MAPPING(CLOUDABI_RIGHT_FILE_STAT_FPUT_TIMES, CAP_FUTIMES) \
70 MAPPING(CLOUDABI_RIGHT_FILE_STAT_GET, CAP_FSTATAT) \
71 MAPPING(CLOUDABI_RIGHT_FILE_STAT_PUT_TIMES, CAP_FUTIMESAT) \
72 MAPPING(CLOUDABI_RIGHT_FILE_SYMLINK, CAP_SYMLINKAT) \
73 MAPPING(CLOUDABI_RIGHT_FILE_UNLINK, CAP_UNLINKAT) \
74 MAPPING(CLOUDABI_RIGHT_MEM_MAP, CAP_MMAP) \
75 MAPPING(CLOUDABI_RIGHT_MEM_MAP_EXEC, CAP_MMAP_X) \
76 MAPPING(CLOUDABI_RIGHT_POLL_FD_READWRITE, CAP_EVENT) \
77 MAPPING(CLOUDABI_RIGHT_POLL_MODIFY, CAP_KQUEUE_CHANGE) \
78 MAPPING(CLOUDABI_RIGHT_POLL_PROC_TERMINATE, CAP_EVENT) \
79 MAPPING(CLOUDABI_RIGHT_POLL_WAIT, CAP_KQUEUE_EVENT) \
80 MAPPING(CLOUDABI_RIGHT_PROC_EXEC, CAP_FEXECVE) \
81 MAPPING(CLOUDABI_RIGHT_SOCK_ACCEPT, CAP_ACCEPT) \
82 MAPPING(CLOUDABI_RIGHT_SOCK_BIND_DIRECTORY, CAP_BINDAT) \
83 MAPPING(CLOUDABI_RIGHT_SOCK_BIND_SOCKET, CAP_BIND) \
84 MAPPING(CLOUDABI_RIGHT_SOCK_CONNECT_DIRECTORY, CAP_CONNECTAT) \
85 MAPPING(CLOUDABI_RIGHT_SOCK_CONNECT_SOCKET, CAP_CONNECT) \
86 MAPPING(CLOUDABI_RIGHT_SOCK_LISTEN, CAP_LISTEN) \
87 MAPPING(CLOUDABI_RIGHT_SOCK_SHUTDOWN, CAP_SHUTDOWN) \
88 MAPPING(CLOUDABI_RIGHT_SOCK_STAT_GET, CAP_GETPEERNAME, \
89 CAP_GETSOCKNAME, CAP_GETSOCKOPT)
90
91 int
92 cloudabi_sys_fd_close(struct thread *td, struct cloudabi_sys_fd_close_args *uap)
93 {
94
95 return (kern_close(td, uap->fd));
96 }
97
98 int
99 cloudabi_sys_fd_create1(struct thread *td,
100 struct cloudabi_sys_fd_create1_args *uap)
101 {
102 struct filecaps fcaps = {};
103
104 switch (uap->type) {
105 case CLOUDABI_FILETYPE_POLL:
106 cap_rights_init(&fcaps.fc_rights, CAP_FSTAT, CAP_KQUEUE);
107 return (kern_kqueue(td, 0, &fcaps));
108 case CLOUDABI_FILETYPE_SHARED_MEMORY:
109 cap_rights_init(&fcaps.fc_rights, CAP_FSTAT, CAP_FTRUNCATE,
110 CAP_MMAP_RWX);
111 return (kern_shm_open(td, SHM_ANON, O_RDWR, 0, &fcaps));
112 case CLOUDABI_FILETYPE_SOCKET_DGRAM:
113 return (kern_socket(td, AF_UNIX, SOCK_DGRAM, 0));
114 case CLOUDABI_FILETYPE_SOCKET_SEQPACKET:
115 return (kern_socket(td, AF_UNIX, SOCK_SEQPACKET, 0));
116 case CLOUDABI_FILETYPE_SOCKET_STREAM:
117 return (kern_socket(td, AF_UNIX, SOCK_STREAM, 0));
118 default:
119 return (EINVAL);
120 }
121 }
122
123 int
124 cloudabi_sys_fd_create2(struct thread *td,
125 struct cloudabi_sys_fd_create2_args *uap)
126 {
127 struct filecaps fcaps1 = {}, fcaps2 = {};
128 int fds[2];
129 int error;
130
131 switch (uap->type) {
132 case CLOUDABI_FILETYPE_FIFO:
133 /*
134 * CloudABI pipes are unidirectional. Restrict rights on
135 * the pipe to simulate this.
136 */
137 cap_rights_init(&fcaps1.fc_rights, CAP_EVENT, CAP_FCNTL,
138 CAP_FSTAT, CAP_READ);
139 fcaps1.fc_fcntls = CAP_FCNTL_SETFL;
140 cap_rights_init(&fcaps2.fc_rights, CAP_EVENT, CAP_FCNTL,
141 CAP_FSTAT, CAP_WRITE);
142 fcaps2.fc_fcntls = CAP_FCNTL_SETFL;
143 error = kern_pipe(td, fds, 0, &fcaps1, &fcaps2);
144 break;
145 case CLOUDABI_FILETYPE_SOCKET_DGRAM:
146 error = kern_socketpair(td, AF_UNIX, SOCK_DGRAM, 0, fds);
147 break;
148 case CLOUDABI_FILETYPE_SOCKET_SEQPACKET:
149 error = kern_socketpair(td, AF_UNIX, SOCK_SEQPACKET, 0, fds);
150 break;
151 case CLOUDABI_FILETYPE_SOCKET_STREAM:
152 error = kern_socketpair(td, AF_UNIX, SOCK_STREAM, 0, fds);
153 break;
154 default:
155 return (EINVAL);
156 }
157
158 if (error == 0) {
159 td->td_retval[0] = fds[0];
160 td->td_retval[1] = fds[1];
161 }
162 return (0);
163 }
164
165 int
166 cloudabi_sys_fd_datasync(struct thread *td,
167 struct cloudabi_sys_fd_datasync_args *uap)
168 {
169
170 return (kern_fsync(td, uap->fd, false));
171 }
172
173 int
174 cloudabi_sys_fd_dup(struct thread *td, struct cloudabi_sys_fd_dup_args *uap)
175 {
176
177 return (kern_dup(td, FDDUP_NORMAL, 0, uap->from, 0));
178 }
179
180 int
181 cloudabi_sys_fd_replace(struct thread *td,
182 struct cloudabi_sys_fd_replace_args *uap)
183 {
184 int error;
185
186 /*
187 * CloudABI's equivalent to dup2(). CloudABI processes should
188 * not depend on hardcoded file descriptor layouts, but simply
189 * use the file descriptor numbers that are allocated by the
190 * kernel. Duplicating file descriptors to arbitrary numbers
191 * should not be done.
192 *
193 * Invoke kern_dup() with FDDUP_MUSTREPLACE, so that we return
194 * EBADF when duplicating to a nonexistent file descriptor. Also
195 * clear the return value, as this system call yields no return
196 * value.
197 */
198 error = kern_dup(td, FDDUP_MUSTREPLACE, 0, uap->from, uap->to);
199 td->td_retval[0] = 0;
200 return (error);
201 }
202
203 int
204 cloudabi_sys_fd_seek(struct thread *td, struct cloudabi_sys_fd_seek_args *uap)
205 {
206 int whence;
207
208 switch (uap->whence) {
209 case CLOUDABI_WHENCE_CUR:
210 whence = SEEK_CUR;
211 break;
212 case CLOUDABI_WHENCE_END:
213 whence = SEEK_END;
214 break;
215 case CLOUDABI_WHENCE_SET:
216 whence = SEEK_SET;
217 break;
218 default:
219 return (EINVAL);
220 }
221
222 return (kern_lseek(td, uap->fd, uap->offset, whence));
223 }
224
225 /* Converts a file descriptor to a CloudABI file descriptor type. */
226 cloudabi_filetype_t
227 cloudabi_convert_filetype(const struct file *fp)
228 {
229 struct socket *so;
230 struct vnode *vp;
231
232 switch (fp->f_type) {
233 case DTYPE_FIFO:
234 return (CLOUDABI_FILETYPE_FIFO);
235 case DTYPE_KQUEUE:
236 return (CLOUDABI_FILETYPE_POLL);
237 case DTYPE_PIPE:
238 return (CLOUDABI_FILETYPE_FIFO);
239 case DTYPE_PROCDESC:
240 return (CLOUDABI_FILETYPE_PROCESS);
241 case DTYPE_SHM:
242 return (CLOUDABI_FILETYPE_SHARED_MEMORY);
243 case DTYPE_SOCKET:
244 so = fp->f_data;
245 switch (so->so_type) {
246 case SOCK_DGRAM:
247 return (CLOUDABI_FILETYPE_SOCKET_DGRAM);
248 case SOCK_SEQPACKET:
249 return (CLOUDABI_FILETYPE_SOCKET_SEQPACKET);
250 case SOCK_STREAM:
251 return (CLOUDABI_FILETYPE_SOCKET_STREAM);
252 default:
253 return (CLOUDABI_FILETYPE_UNKNOWN);
254 }
255 case DTYPE_VNODE:
256 vp = fp->f_vnode;
257 switch (vp->v_type) {
258 case VBLK:
259 return (CLOUDABI_FILETYPE_BLOCK_DEVICE);
260 case VCHR:
261 return (CLOUDABI_FILETYPE_CHARACTER_DEVICE);
262 case VDIR:
263 return (CLOUDABI_FILETYPE_DIRECTORY);
264 case VFIFO:
265 return (CLOUDABI_FILETYPE_FIFO);
266 case VLNK:
267 return (CLOUDABI_FILETYPE_SYMBOLIC_LINK);
268 case VREG:
269 return (CLOUDABI_FILETYPE_REGULAR_FILE);
270 case VSOCK:
271 return (CLOUDABI_FILETYPE_SOCKET_STREAM);
272 default:
273 return (CLOUDABI_FILETYPE_UNKNOWN);
274 }
275 default:
276 return (CLOUDABI_FILETYPE_UNKNOWN);
277 }
278 }
279
280 /* Removes rights that conflict with the file descriptor type. */
281 void
282 cloudabi_remove_conflicting_rights(cloudabi_filetype_t filetype,
283 cloudabi_rights_t *base, cloudabi_rights_t *inheriting)
284 {
285
286 /*
287 * CloudABI has a small number of additional rights bits to
288 * disambiguate between multiple purposes. Remove the bits that
289 * don't apply to the type of the file descriptor.
290 *
291 * As file descriptor access modes (O_ACCMODE) has been fully
292 * replaced by rights bits, CloudABI distinguishes between
293 * rights that apply to the file descriptor itself (base) versus
294 * rights of new file descriptors derived from them
295 * (inheriting). The code below approximates the pair by
296 * decomposing depending on the file descriptor type.
297 *
298 * We need to be somewhat accurate about which actions can
299 * actually be performed on the file descriptor, as functions
300 * like fcntl(fd, F_GETFL) are emulated on top of this.
301 */
302 switch (filetype) {
303 case CLOUDABI_FILETYPE_DIRECTORY:
304 *base &= CLOUDABI_RIGHT_FD_STAT_PUT_FLAGS |
305 CLOUDABI_RIGHT_FD_SYNC | CLOUDABI_RIGHT_FILE_ADVISE |
306 CLOUDABI_RIGHT_FILE_CREATE_DIRECTORY |
307 CLOUDABI_RIGHT_FILE_CREATE_FILE |
308 CLOUDABI_RIGHT_FILE_CREATE_FIFO |
309 CLOUDABI_RIGHT_FILE_LINK_SOURCE |
310 CLOUDABI_RIGHT_FILE_LINK_TARGET |
311 CLOUDABI_RIGHT_FILE_OPEN |
312 CLOUDABI_RIGHT_FILE_READDIR |
313 CLOUDABI_RIGHT_FILE_READLINK |
314 CLOUDABI_RIGHT_FILE_RENAME_SOURCE |
315 CLOUDABI_RIGHT_FILE_RENAME_TARGET |
316 CLOUDABI_RIGHT_FILE_STAT_FGET |
317 CLOUDABI_RIGHT_FILE_STAT_FPUT_TIMES |
318 CLOUDABI_RIGHT_FILE_STAT_GET |
319 CLOUDABI_RIGHT_FILE_STAT_PUT_TIMES |
320 CLOUDABI_RIGHT_FILE_SYMLINK |
321 CLOUDABI_RIGHT_FILE_UNLINK |
322 CLOUDABI_RIGHT_POLL_FD_READWRITE |
323 CLOUDABI_RIGHT_SOCK_BIND_DIRECTORY |
324 CLOUDABI_RIGHT_SOCK_CONNECT_DIRECTORY;
325 *inheriting &= CLOUDABI_RIGHT_FD_DATASYNC |
326 CLOUDABI_RIGHT_FD_READ |
327 CLOUDABI_RIGHT_FD_SEEK |
328 CLOUDABI_RIGHT_FD_STAT_PUT_FLAGS |
329 CLOUDABI_RIGHT_FD_SYNC |
330 CLOUDABI_RIGHT_FD_TELL |
331 CLOUDABI_RIGHT_FD_WRITE |
332 CLOUDABI_RIGHT_FILE_ADVISE |
333 CLOUDABI_RIGHT_FILE_ALLOCATE |
334 CLOUDABI_RIGHT_FILE_CREATE_DIRECTORY |
335 CLOUDABI_RIGHT_FILE_CREATE_FILE |
336 CLOUDABI_RIGHT_FILE_CREATE_FIFO |
337 CLOUDABI_RIGHT_FILE_LINK_SOURCE |
338 CLOUDABI_RIGHT_FILE_LINK_TARGET |
339 CLOUDABI_RIGHT_FILE_OPEN |
340 CLOUDABI_RIGHT_FILE_READDIR |
341 CLOUDABI_RIGHT_FILE_READLINK |
342 CLOUDABI_RIGHT_FILE_RENAME_SOURCE |
343 CLOUDABI_RIGHT_FILE_RENAME_TARGET |
344 CLOUDABI_RIGHT_FILE_STAT_FGET |
345 CLOUDABI_RIGHT_FILE_STAT_FPUT_SIZE |
346 CLOUDABI_RIGHT_FILE_STAT_FPUT_TIMES |
347 CLOUDABI_RIGHT_FILE_STAT_GET |
348 CLOUDABI_RIGHT_FILE_STAT_PUT_TIMES |
349 CLOUDABI_RIGHT_FILE_SYMLINK |
350 CLOUDABI_RIGHT_FILE_UNLINK |
351 CLOUDABI_RIGHT_MEM_MAP |
352 CLOUDABI_RIGHT_MEM_MAP_EXEC |
353 CLOUDABI_RIGHT_POLL_FD_READWRITE |
354 CLOUDABI_RIGHT_PROC_EXEC |
355 CLOUDABI_RIGHT_SOCK_BIND_DIRECTORY |
356 CLOUDABI_RIGHT_SOCK_CONNECT_DIRECTORY;
357 break;
358 case CLOUDABI_FILETYPE_FIFO:
359 *base &= CLOUDABI_RIGHT_FD_READ |
360 CLOUDABI_RIGHT_FD_STAT_PUT_FLAGS |
361 CLOUDABI_RIGHT_FD_WRITE |
362 CLOUDABI_RIGHT_FILE_STAT_FGET |
363 CLOUDABI_RIGHT_POLL_FD_READWRITE;
364 *inheriting = 0;
365 break;
366 case CLOUDABI_FILETYPE_POLL:
367 *base &= ~CLOUDABI_RIGHT_FILE_ADVISE;
368 *inheriting = 0;
369 break;
370 case CLOUDABI_FILETYPE_PROCESS:
371 *base &= ~(CLOUDABI_RIGHT_FILE_ADVISE |
372 CLOUDABI_RIGHT_POLL_FD_READWRITE);
373 *inheriting = 0;
374 break;
375 case CLOUDABI_FILETYPE_REGULAR_FILE:
376 *base &= CLOUDABI_RIGHT_FD_DATASYNC |
377 CLOUDABI_RIGHT_FD_READ |
378 CLOUDABI_RIGHT_FD_SEEK |
379 CLOUDABI_RIGHT_FD_STAT_PUT_FLAGS |
380 CLOUDABI_RIGHT_FD_SYNC |
381 CLOUDABI_RIGHT_FD_TELL |
382 CLOUDABI_RIGHT_FD_WRITE |
383 CLOUDABI_RIGHT_FILE_ADVISE |
384 CLOUDABI_RIGHT_FILE_ALLOCATE |
385 CLOUDABI_RIGHT_FILE_STAT_FGET |
386 CLOUDABI_RIGHT_FILE_STAT_FPUT_SIZE |
387 CLOUDABI_RIGHT_FILE_STAT_FPUT_TIMES |
388 CLOUDABI_RIGHT_MEM_MAP |
389 CLOUDABI_RIGHT_MEM_MAP_EXEC |
390 CLOUDABI_RIGHT_POLL_FD_READWRITE |
391 CLOUDABI_RIGHT_PROC_EXEC;
392 *inheriting = 0;
393 break;
394 case CLOUDABI_FILETYPE_SHARED_MEMORY:
395 *base &= ~(CLOUDABI_RIGHT_FD_SEEK |
396 CLOUDABI_RIGHT_FD_TELL |
397 CLOUDABI_RIGHT_FILE_ADVISE |
398 CLOUDABI_RIGHT_FILE_ALLOCATE |
399 CLOUDABI_RIGHT_FILE_READDIR);
400 *inheriting = 0;
401 break;
402 case CLOUDABI_FILETYPE_SOCKET_DGRAM:
403 case CLOUDABI_FILETYPE_SOCKET_SEQPACKET:
404 case CLOUDABI_FILETYPE_SOCKET_STREAM:
405 *base &= CLOUDABI_RIGHT_FD_READ |
406 CLOUDABI_RIGHT_FD_STAT_PUT_FLAGS |
407 CLOUDABI_RIGHT_FD_WRITE |
408 CLOUDABI_RIGHT_FILE_STAT_FGET |
409 CLOUDABI_RIGHT_POLL_FD_READWRITE |
410 CLOUDABI_RIGHT_SOCK_ACCEPT |
411 CLOUDABI_RIGHT_SOCK_BIND_SOCKET |
412 CLOUDABI_RIGHT_SOCK_CONNECT_SOCKET |
413 CLOUDABI_RIGHT_SOCK_LISTEN |
414 CLOUDABI_RIGHT_SOCK_SHUTDOWN |
415 CLOUDABI_RIGHT_SOCK_STAT_GET;
416 break;
417 default:
418 *inheriting = 0;
419 break;
420 }
421 }
422
423 /* Converts FreeBSD's Capsicum rights to CloudABI's set of rights. */
424 static void
425 convert_capabilities(const cap_rights_t *capabilities,
426 cloudabi_filetype_t filetype, cloudabi_rights_t *base,
427 cloudabi_rights_t *inheriting)
428 {
429 cloudabi_rights_t rights;
430
431 /* Convert FreeBSD bits to CloudABI bits. */
432 rights = 0;
433 #define MAPPING(cloudabi, ...) do { \
434 if (cap_rights_is_set(capabilities, ##__VA_ARGS__)) \
435 rights |= (cloudabi); \
436 } while (0);
437 RIGHTS_MAPPINGS
438 #undef MAPPING
439
440 *base = rights;
441 *inheriting = rights;
442 cloudabi_remove_conflicting_rights(filetype, base, inheriting);
443 }
444
445 int
446 cloudabi_sys_fd_stat_get(struct thread *td,
447 struct cloudabi_sys_fd_stat_get_args *uap)
448 {
449 cloudabi_fdstat_t fsb = {};
450 struct filedesc *fdp;
451 struct file *fp;
452 seq_t seq;
453 cap_rights_t rights;
454 int error, oflags;
455 bool modified;
456
457 /* Obtain file descriptor properties. */
458 fdp = td->td_proc->p_fd;
459 do {
460 error = fget_unlocked(fdp, uap->fd, cap_rights_init(&rights),
461 &fp, &seq);
462 if (error != 0)
463 return (error);
464 if (fp->f_ops == &badfileops) {
465 fdrop(fp, td);
466 return (EBADF);
467 }
468
469 rights = *cap_rights(fdp, uap->fd);
470 oflags = OFLAGS(fp->f_flag);
471 fsb.fs_filetype = cloudabi_convert_filetype(fp);
472
473 modified = fd_modified(fdp, uap->fd, seq);
474 fdrop(fp, td);
475 } while (modified);
476
477 /* Convert file descriptor flags. */
478 if (oflags & O_APPEND)
479 fsb.fs_flags |= CLOUDABI_FDFLAG_APPEND;
480 if (oflags & O_NONBLOCK)
481 fsb.fs_flags |= CLOUDABI_FDFLAG_NONBLOCK;
482 if (oflags & O_SYNC)
483 fsb.fs_flags |= CLOUDABI_FDFLAG_SYNC;
484
485 /* Convert capabilities to CloudABI rights. */
486 convert_capabilities(&rights, fsb.fs_filetype,
487 &fsb.fs_rights_base, &fsb.fs_rights_inheriting);
488 return (copyout(&fsb, (void *)uap->buf, sizeof(fsb)));
489 }
490
491 /* Converts CloudABI rights to a set of Capsicum capabilities. */
492 int
493 cloudabi_convert_rights(cloudabi_rights_t in, cap_rights_t *out)
494 {
495
496 cap_rights_init(out);
497 #define MAPPING(cloudabi, ...) do { \
498 if (in & (cloudabi)) { \
499 cap_rights_set(out, ##__VA_ARGS__); \
500 in &= ~(cloudabi); \
501 } \
502 } while (0);
503 RIGHTS_MAPPINGS
504 #undef MAPPING
505 if (in != 0)
506 return (ENOTCAPABLE);
507 return (0);
508 }
509
510 int
511 cloudabi_sys_fd_stat_put(struct thread *td,
512 struct cloudabi_sys_fd_stat_put_args *uap)
513 {
514 cloudabi_fdstat_t fsb;
515 cap_rights_t rights;
516 int error, oflags;
517
518 error = copyin(uap->buf, &fsb, sizeof(fsb));
519 if (error != 0)
520 return (error);
521
522 if (uap->flags == CLOUDABI_FDSTAT_FLAGS) {
523 /* Convert flags. */
524 oflags = 0;
525 if (fsb.fs_flags & CLOUDABI_FDFLAG_APPEND)
526 oflags |= O_APPEND;
527 if (fsb.fs_flags & CLOUDABI_FDFLAG_NONBLOCK)
528 oflags |= O_NONBLOCK;
529 if (fsb.fs_flags & (CLOUDABI_FDFLAG_SYNC |
530 CLOUDABI_FDFLAG_DSYNC | CLOUDABI_FDFLAG_RSYNC))
531 oflags |= O_SYNC;
532 return (kern_fcntl(td, uap->fd, F_SETFL, oflags));
533 } else if (uap->flags == CLOUDABI_FDSTAT_RIGHTS) {
534 /* Convert rights. */
535 error = cloudabi_convert_rights(
536 fsb.fs_rights_base | fsb.fs_rights_inheriting, &rights);
537 if (error != 0)
538 return (error);
539 return (kern_cap_rights_limit(td, uap->fd, &rights));
540 }
541 return (EINVAL);
542 }
543
544 int
545 cloudabi_sys_fd_sync(struct thread *td, struct cloudabi_sys_fd_sync_args *uap)
546 {
547
548 return (kern_fsync(td, uap->fd, true));
549 }
Cache object: cff1e74489abe3872f672de2ed330178
|