2 * $Id: unix.c,v 1.61 2010-02-10 14:05:37 franklahm Exp $
4 * Copyright (c) 1990,1993 Regents of The University of Michigan.
5 * All Rights Reserved. See COPYRIGHT.
10 #endif /* HAVE_CONFIG_H */
18 #else /* STDC_HEADERS */
23 #endif /* HAVE_STRCHR */
24 char *strchr (), *strrchr ();
27 #define memcpy(d,s,n) bcopy ((s), (d), (n))
28 #define memmove(d,s,n) bcopy ((s), (d), (n))
29 #endif /* ! HAVE_MEMCPY */
30 #endif /* STDC_HEADERS */
34 #include <sys/param.h>
35 #include <atalk/logger.h>
36 #include <atalk/adouble.h>
37 #include <atalk/vfs.h>
38 #include <atalk/afp.h>
39 #include <atalk/util.h>
40 #include <atalk/unix.h>
41 #include <atalk/acl.h>
44 #include "directory.h"
49 #ifdef HAVE_NFSv4_ACLS
50 extern void acltoownermode(char *path, struct stat *st,uid_t uid, struct maccess *ma);
55 * Get the free space on a partition.
57 int ustatfs_getvolspace(const struct vol *vol, VolSpace *bfree, VolSpace *btotal, u_int32_t *bsize)
59 VolSpace maxVolSpace = (~(VolSpace)0);
68 if ( statfs( vol->v_path, &sfs ) < 0 ) {
69 LOG(log_error, logtype_afpd, "ustatfs_getvolspace unable to stat %s", vol->v_path);
70 return( AFPERR_PARAM );
74 *bfree = (VolSpace) sfs.fd_req.bfreen;
77 *bfree = (VolSpace) sfs.f_bavail;
78 *bsize = sfs.f_frsize;
81 if ( *bfree > maxVolSpace / *bsize ) {
89 ( sfs.fd_req.btot - ( sfs.fd_req.bfree - sfs.fd_req.bfreen ));
92 ( sfs.f_blocks - ( sfs.f_bfree - sfs.f_bavail ));
95 /* see similar block above comments */
96 if ( *btotal > maxVolSpace / *bsize ) {
97 *btotal = maxVolSpace;
105 static int utombits(mode_t bits)
111 mbits |= ( bits & ( S_IREAD >> 6 )) ? AR_UREAD : 0;
112 mbits |= ( bits & ( S_IWRITE >> 6 )) ? AR_UWRITE : 0;
113 /* Do we really need this? */
114 mbits |= ( bits & ( S_IEXEC >> 6) ) ? AR_USEARCH : 0;
119 /* --------------------------------
122 void utommode(struct stat *stat, struct maccess *ma)
126 mode = stat->st_mode;
127 ma->ma_world = utombits( mode );
130 ma->ma_group = utombits( mode );
133 ma->ma_owner = utombits( mode );
135 /* ma_user is a union of all permissions but we must follow
138 if ( (uuid == stat->st_uid) || (uuid == 0)) {
139 ma->ma_user = ma->ma_owner | AR_UOWN;
141 else if ( gmem( stat->st_gid )) {
142 ma->ma_user = ma->ma_group;
145 ma->ma_user = ma->ma_world;
149 * There are certain things the mac won't try if you don't have
150 * the "owner" bit set, even tho you can do these things on unix wiht
151 * only write permission. What were the things?
154 * ditto seems to care if st_uid is 0 ?
155 * was ma->ma_user & AR_UWRITE
156 * but 0 as owner is a can of worms.
158 if ( !stat->st_uid ) {
159 ma->ma_user |= AR_UOWN;
167 * Calculate the mode for a directory using a stat() call to
168 * estimate permission.
170 * Note: the previous method, using access(), does not work correctly
173 * dir parameter is used by AFS
175 void accessmode(char *path, struct maccess *ma, struct dir *dir _U_, struct stat *st)
180 ma->ma_user = ma->ma_owner = ma->ma_world = ma->ma_group = 0;
182 if (lstat(path, &sb) != 0)
187 #ifdef HAVE_NFSv4_ACLS
188 /* 10.5 Finder looks at OS 9 mode, so we must do some mapping */
189 acltoownermode( path, st, uuid, ma);
193 int gmem(const gid_t gid)
197 for ( i = 0; i < ngroups; i++ ) {
198 if ( groups[ i ] == gid ) {
205 static mode_t mtoubits(u_char bits)
211 mode |= ( bits & AR_UREAD ) ? ( (S_IREAD | S_IEXEC) >> 6 ) : 0;
212 mode |= ( bits & AR_UWRITE ) ? ( (S_IWRITE | S_IEXEC) >> 6 ) : 0;
213 /* I don't think there's a way to set the SEARCH bit by itself on a Mac
214 mode |= ( bits & AR_USEARCH ) ? ( S_IEXEC >> 6 ) : 0; */
219 /* ----------------------------------
220 from the finder's share windows (menu--> File--> sharing...)
221 and from AFP 3.0 spec page 63
222 the mac mode should be save somewhere
224 mode_t mtoumode(struct maccess *ma)
229 mode |= mtoubits( ma->ma_owner |ma->ma_world);
232 mode |= mtoubits( ma->ma_group |ma->ma_world);
235 mode |= mtoubits( ma->ma_world );
240 #define EXEC_MODE (S_IXGRP | S_IXUSR | S_IXOTH)
242 int setdeskmode(const mode_t mode)
244 char wd[ MAXPATHLEN + 1];
246 char modbuf[ 12 + 1], *m;
247 struct dirent *deskp, *subp;
250 if (!dir_rx_set(mode)) {
251 /* want to remove read and search access to owner it will screw the volume */
254 if ( getcwd( wd , MAXPATHLEN) == NULL ) {
257 if ( chdir( ".AppleDesktop" ) < 0 ) {
260 if (( desk = opendir( "." )) == NULL ) {
261 if ( chdir( wd ) < 0 ) {
262 LOG(log_error, logtype_afpd, "setdeskmode: chdir %s: %s", wd, strerror(errno) );
266 for ( deskp = readdir( desk ); deskp != NULL; deskp = readdir( desk )) {
267 if ( strcmp( deskp->d_name, "." ) == 0 ||
268 strcmp( deskp->d_name, ".." ) == 0 || strlen( deskp->d_name ) > 2 ) {
271 strcpy( modbuf, deskp->d_name );
272 strcat( modbuf, "/" );
273 m = strchr( modbuf, '\0' );
274 if (( sub = opendir( deskp->d_name )) == NULL ) {
277 for ( subp = readdir( sub ); subp != NULL; subp = readdir( sub )) {
278 if ( strcmp( subp->d_name, "." ) == 0 ||
279 strcmp( subp->d_name, ".." ) == 0 ) {
283 strcat( modbuf, subp->d_name );
284 /* XXX: need to preserve special modes */
285 if (lstat(modbuf, &st) < 0) {
286 LOG(log_error, logtype_afpd, "setdeskmode: stat %s: %s",fullpathname(modbuf), strerror(errno) );
290 if (S_ISDIR(st.st_mode)) {
291 if ( chmod( modbuf, (DIRBITS | mode) & ~default_options.umask ) < 0 && errno != EPERM ) {
292 LOG(log_error, logtype_afpd, "setdeskmode: chmod %s: %s",fullpathname(modbuf), strerror(errno) );
294 } else if ( chmod( modbuf, mode & ~(default_options.umask | EXEC_MODE) ) < 0 && errno != EPERM ) {
295 LOG(log_error, logtype_afpd, "setdeskmode: chmod %s: %s",fullpathname(modbuf), strerror(errno) );
300 /* XXX: need to preserve special modes */
301 if ( chmod( deskp->d_name, (DIRBITS | mode) & ~default_options.umask ) < 0 && errno != EPERM ) {
302 LOG(log_error, logtype_afpd, "setdeskmode: chmod %s: %s",fullpathname(deskp->d_name), strerror(errno) );
306 if ( chdir( wd ) < 0 ) {
307 LOG(log_error, logtype_afpd, "setdeskmode: chdir %s: %s", wd, strerror(errno) );
310 /* XXX: need to preserve special modes */
311 if ( chmod( ".AppleDesktop", (DIRBITS | mode) & ~default_options.umask ) < 0 && errno != EPERM ) {
312 LOG(log_error, logtype_afpd, "setdeskmode: chmod %s: %s", fullpathname(".AppleDesktop"),strerror(errno) );
317 /* --------------------- */
318 int setfilunixmode (const struct vol *vol, struct path* path, mode_t mode)
320 if (!path->st_valid) {
324 if (path->st_errno) {
328 mode |= vol->v_fperm;
330 if (setfilmode( path->u_name, mode, &path->st, vol->v_umask) < 0)
332 /* we need to set write perm if read set for resource fork */
333 return vol->vfs->vfs_setfilmode(vol, path->u_name, mode, &path->st);
337 /* --------------------- */
338 int setdirunixmode(const struct vol *vol, const char *name, mode_t mode)
341 int dropbox = (vol->v_flags & AFPVOL_DROPBOX);
343 LOG(log_debug, logtype_afpd, "setdirunixmode('%s', mode:%04o) {v_dperm:%04o}",
344 fullpathname(name), mode, vol->v_dperm);
346 mode |= vol->v_dperm;
348 if (dir_rx_set(mode)) {
349 /* extending right? dir first then .AppleDouble in rf_setdirmode */
350 if ( stickydirmode(name, DIRBITS | mode, dropbox, vol->v_umask) < 0 )
353 if (vol->vfs->vfs_setdirunixmode(vol, name, mode, NULL) < 0 && !vol_noadouble(vol)) {
356 if (!dir_rx_set(mode)) {
357 if ( stickydirmode(name, DIRBITS | mode, dropbox, vol->v_umask) < 0 )
363 /* --------------------- */
364 int setdirmode(const struct vol *vol, const char *name, mode_t mode)
370 int osx = vol->v_adouble == AD_VERSION2_OSX;
371 int dropbox = (vol->v_flags & AFPVOL_DROPBOX);
373 mode |= vol->v_dperm;
374 hf_mode = ad_hf_mode(mode);
376 if (dir_rx_set(mode)) {
377 /* extending right? dir first */
378 if ( stickydirmode(name, DIRBITS | mode, dropbox, vol->v_umask) < 0 )
382 if (( dir = opendir( name )) == NULL ) {
383 LOG(log_error, logtype_afpd, "setdirmode: opendir: %s", fullpathname(name), strerror(errno) );
387 for ( dirp = readdir( dir ); dirp != NULL; dirp = readdir( dir )) {
389 if ( *dirp->d_name == '.' && (!osx || dirp->d_name[1] != '_')) {
392 if ( lstat( dirp->d_name, &st ) < 0 ) {
393 LOG(log_error, logtype_afpd, "setdirmode: stat %s: %s",dirp->d_name, strerror(errno) );
397 if (!S_ISDIR(st.st_mode)) {
398 int setmode = (osx && *dirp->d_name == '.')?hf_mode:mode;
400 if (setfilmode(dirp->d_name, setmode, &st, vol->v_umask) < 0) {
401 LOG(log_error, logtype_afpd, "setdirmode: chmod %s: %s",dirp->d_name, strerror(errno) );
408 if (vol->vfs->vfs_setdirmode(vol, name, mode, NULL) < 0 && !vol_noadouble(vol)) {
412 if (!dir_rx_set(mode)) {
413 if ( stickydirmode(name, DIRBITS | mode, dropbox, vol->v_umask) < 0 )
419 /* ----------------------------- */
420 int setdeskowner(const uid_t uid, const gid_t gid)
422 char wd[ MAXPATHLEN + 1];
423 char modbuf[12 + 1], *m;
424 struct dirent *deskp, *subp;
427 if ( getcwd( wd, MAXPATHLEN ) == NULL ) {
430 if ( chdir( ".AppleDesktop" ) < 0 ) {
433 if (( desk = opendir( "." )) == NULL ) {
434 if ( chdir( wd ) < 0 ) {
435 LOG(log_error, logtype_afpd, "setdeskowner: chdir %s: %s", wd, strerror(errno) );
439 for ( deskp = readdir( desk ); deskp != NULL; deskp = readdir( desk )) {
440 if ( strcmp( deskp->d_name, "." ) == 0 ||
441 strcmp( deskp->d_name, ".." ) == 0 ||
442 strlen( deskp->d_name ) > 2 ) {
445 strcpy( modbuf, deskp->d_name );
446 strcat( modbuf, "/" );
447 m = strchr( modbuf, '\0' );
448 if (( sub = opendir( deskp->d_name )) == NULL ) {
451 for ( subp = readdir( sub ); subp != NULL; subp = readdir( sub )) {
452 if ( strcmp( subp->d_name, "." ) == 0 ||
453 strcmp( subp->d_name, ".." ) == 0 ) {
457 strcat( modbuf, subp->d_name );
458 /* XXX: add special any uid, ignore group bits */
459 if ( chown( modbuf, uid, gid ) < 0 && errno != EPERM ) {
460 LOG(log_error, logtype_afpd, "setdeskown: chown %s: %s", fullpathname(modbuf), strerror(errno) );
464 /* XXX: add special any uid, ignore group bits */
465 if ( chown( deskp->d_name, uid, gid ) < 0 && errno != EPERM ) {
466 LOG(log_error, logtype_afpd, "setdeskowner: chown %s: %s",
467 deskp->d_name, strerror(errno) );
471 if ( chdir( wd ) < 0 ) {
472 LOG(log_error, logtype_afpd, "setdeskowner: chdir %s: %s", wd, strerror(errno) );
475 if ( chown( ".AppleDesktop", uid, gid ) < 0 && errno != EPERM ) {
476 LOG(log_error, logtype_afpd, "setdeskowner: chown %s: %s", fullpathname(".AppleDouble"), strerror(errno) );
481 /* ----------------------------- */
482 int setfilowner(const struct vol *vol, const uid_t uid, const gid_t gid, struct path* path)
485 if (!path->st_valid) {
489 if (path->st_errno) {
493 if ( lchown( path->u_name, uid, gid ) < 0 && errno != EPERM ) {
494 LOG(log_debug, logtype_afpd, "setfilowner: chown %d/%d %s: %s",
495 uid, gid, path->u_name, strerror(errno) );
499 if (vol->vfs->vfs_chown(vol, path->u_name, uid, gid ) < 0 && errno != EPERM) {
500 LOG(log_debug, logtype_afpd, "setfilowner: rf_chown %d/%d %s: %s",
501 uid, gid, path->u_name, strerror(errno) );
508 /* ---------------------------------
509 * uid/gid == 0 need to be handled as special cases. they really mean
510 * that user/group should inherit from other, but that doesn't fit
511 * into the unix permission scheme. we can get around this by
512 * co-opting some bits. */
513 int setdirowner(const struct vol *vol, const char *name, const uid_t uid, const gid_t gid)
518 int osx = vol->v_adouble == AD_VERSION2_OSX;
520 if (( dir = opendir( name )) == NULL ) {
523 for ( dirp = readdir( dir ); dirp != NULL; dirp = readdir( dir )) {
524 if ( *dirp->d_name == '.' && (!osx || dirp->d_name[1] != '_')) {
527 if ( lstat( dirp->d_name, &st ) < 0 ) {
528 LOG(log_error, logtype_afpd, "setdirowner: stat %s: %s",
529 fullpathname(dirp->d_name), strerror(errno) );
532 if (( st.st_mode & S_IFMT ) == S_IFREG ) {
533 if ( lchown( dirp->d_name, uid, gid ) < 0 && errno != EPERM ) {
534 LOG(log_debug, logtype_afpd, "setdirowner: chown %s: %s",
535 fullpathname(dirp->d_name), strerror(errno) );
536 /* return ( -1 ); Sometimes this is okay */
542 if (vol->vfs->vfs_setdirowner(vol, name, uid, gid) < 0) {
546 if ( lstat( ".", &st ) < 0 ) {
549 if ( gid && gid != st.st_gid && lchown( ".", uid, gid ) < 0 && errno != EPERM ) {
550 LOG(log_debug, logtype_afpd, "setdirowner: chown %d/%d %s: %s",
551 uid, gid, fullpathname("."), strerror(errno) );
558 /* recursive chown()ing of a directory */
559 static int recursive_chown(const char *path, uid_t uid, gid_t gid) {
562 struct dirent *entry;
565 char newpath[PATH_MAX+1];
566 newpath[PATH_MAX] = '\0';
568 if (chown(path, uid, gid) < 0) {
569 LOG(log_error, logtype_afpd, "cannot chown() file [%s] (uid = %d): %s", path, uid, strerror(errno));
573 if (lstat(path, &sbuf) < 0) {
574 LOG(log_error, logtype_afpd, "cannot chown() file [%s] (uid = %d): %s", path, uid, strerror(errno));
578 if (S_ISDIR(sbuf.st_mode)) {
579 odir = opendir(path);
581 LOG(log_error, logtype_afpd, "cannot opendir() [%s] (uid = %d): %s", path, uid, strerror(errno));
582 goto recursive_chown_end;
584 while (NULL != (entry=readdir(odir)) ) {
585 name = entry->d_name;
586 if (name[0] == '.' && name[1] == '\0')
588 if (name[0] == '.' && name[1] == '.' && name[2] == '\0')
590 sprintf(newpath, "%s/%s", path, name);
591 if (recursive_chown(newpath, uid, gid) < 0)