2 * $Id: unix.c,v 1.52 2009-02-02 11:55:01 franklahm Exp $
4 * Copyright (c) 1990,1993 Regents of The University of Michigan.
5 * All Rights Reserved. See COPYRIGHT.
10 #endif /* HAVE_CONFIG_H */
18 #else /* STDC_HEADERS */
23 #endif /* HAVE_STRCHR */
24 char *strchr (), *strrchr ();
27 #define memcpy(d,s,n) bcopy ((s), (d), (n))
28 #define memmove(d,s,n) bcopy ((s), (d), (n))
29 #endif /* ! HAVE_MEMCPY */
30 #endif /* STDC_HEADERS */
35 #include <sys/param.h>
37 #include <atalk/logger.h>
38 #include <atalk/adouble.h>
39 #include <atalk/afp.h>
40 #include <atalk/util.h>
43 #include "directory.h"
48 #ifdef HAVE_NFSv4_ACLS
49 extern void acltoownermode(char *path, struct stat *st,uid_t uid, struct maccess *ma);
54 * Get the free space on a partition.
56 int ustatfs_getvolspace( vol, bfree, btotal, bsize )
57 const struct vol *vol;
58 VolSpace *bfree, *btotal;
61 VolSpace maxVolSpace = (~(VolSpace)0);
70 if ( statfs( vol->v_path, &sfs ) < 0 ) {
71 LOG(log_error, logtype_afpd, "ustatfs_getvolspace unable to stat %s", vol->v_path);
72 return( AFPERR_PARAM );
76 *bfree = (VolSpace) sfs.fd_req.bfreen;
79 *bfree = (VolSpace) sfs.f_bavail;
80 *bsize = sfs.f_frsize;
83 if ( *bfree > maxVolSpace / *bsize ) {
91 ( sfs.fd_req.btot - ( sfs.fd_req.bfree - sfs.fd_req.bfreen ));
94 ( sfs.f_blocks - ( sfs.f_bfree - sfs.f_bavail ));
97 /* see similar block above comments */
98 if ( *btotal > maxVolSpace / *bsize ) {
99 *btotal = maxVolSpace;
107 static int utombits( bits )
114 mbits |= ( bits & ( S_IREAD >> 6 )) ? AR_UREAD : 0;
115 mbits |= ( bits & ( S_IWRITE >> 6 )) ? AR_UWRITE : 0;
116 /* Do we really need this? */
117 mbits |= ( bits & ( S_IEXEC >> 6) ) ? AR_USEARCH : 0;
122 /* --------------------------------
125 void utommode( stat, ma )
131 mode = stat->st_mode;
132 ma->ma_world = utombits( mode );
135 ma->ma_group = utombits( mode );
138 ma->ma_owner = utombits( mode );
140 /* ma_user is a union of all permissions but we must follow
143 if ( (uuid == stat->st_uid) || (uuid == 0)) {
144 ma->ma_user = ma->ma_owner | AR_UOWN;
146 else if ( gmem( stat->st_gid )) {
147 ma->ma_user = ma->ma_group;
150 ma->ma_user = ma->ma_world;
154 * There are certain things the mac won't try if you don't have
155 * the "owner" bit set, even tho you can do these things on unix wiht
156 * only write permission. What were the things?
159 * ditto seems to care if st_uid is 0 ?
160 * was ma->ma_user & AR_UWRITE
161 * but 0 as owner is a can of worms.
163 if ( !stat->st_uid ) {
164 ma->ma_user |= AR_UOWN;
172 * Calculate the mode for a directory using a stat() call to
173 * estimate permission.
175 * Note: the previous method, using access(), does not work correctly
178 * dir parameter is used by AFS
180 void accessmode( path, ma, dir, st )
189 ma->ma_user = ma->ma_owner = ma->ma_world = ma->ma_group = 0;
191 if (stat(path, &sb) != 0)
196 #ifdef HAVE_NFSv4_ACLS
197 /* 10.5 Finder looks at OS 9 mode, so we must do some mapping */
198 acltoownermode( path, st, uuid, ma);
207 for ( i = 0; i < ngroups; i++ ) {
208 if ( groups[ i ] == gid ) {
215 static mode_t mtoubits( bits )
222 mode |= ( bits & AR_UREAD ) ? ( (S_IREAD | S_IEXEC) >> 6 ) : 0;
223 mode |= ( bits & AR_UWRITE ) ? ( (S_IWRITE | S_IEXEC) >> 6 ) : 0;
224 /* I don't think there's a way to set the SEARCH bit by itself on a Mac
225 mode |= ( bits & AR_USEARCH ) ? ( S_IEXEC >> 6 ) : 0; */
230 /* ----------------------------------
231 from the finder's share windows (menu--> File--> sharing...)
232 and from AFP 3.0 spec page 63
233 the mac mode should be save somewhere
235 mode_t mtoumode( ma )
241 mode |= mtoubits( ma->ma_owner |ma->ma_world);
244 mode |= mtoubits( ma->ma_group |ma->ma_world);
247 mode |= mtoubits( ma->ma_world );
252 /* ----------------------------- */
253 char *fullpathname(const char *name)
255 static char wd[ MAXPATHLEN + 1];
257 if ( getcwd( wd , MAXPATHLEN) ) {
258 strlcat(wd, "/", MAXPATHLEN);
259 strlcat(wd, name, MAXPATHLEN);
262 strlcpy(wd, name, MAXPATHLEN);
267 /* -----------------------------
268 a dropbox is a folder where w is set but not r eg:
269 rwx-wx-wx or rwx-wx--
270 rwx----wx (is not asked by a Mac with OS >= 8.0 ?)
272 int stickydirmode(name, mode, dropbox)
280 /* Turn on the sticky bit if this is a drop box, also turn off the setgid bit */
281 if ((dropbox & AFPVOL_DROPBOX)) {
284 if ( ( (mode & S_IWOTH) && !(mode & S_IROTH)) ||
285 ( (mode & S_IWGRP) && !(mode & S_IRGRP)) )
288 if ( seteuid(0) < 0) {
289 LOG(log_error, logtype_afpd, "stickydirmode: unable to seteuid root: %s", strerror(errno));
291 if ( (retval=chmod( name, ( (DIRBITS | mode | S_ISVTX) & ~default_options.umask) )) < 0) {
292 LOG(log_error, logtype_afpd, "stickydirmode: chmod \"%s\": %s", fullpathname(name), strerror(errno) );
295 LOG(log_info, logtype_afpd, "stickydirmode: (debug) chmod \"%s\": %s", fullpathname(name), strerror(retval) );
302 #endif /* DROPKLUDGE */
305 * Ignore EPERM errors: We may be dealing with a directory that is
306 * group writable, in which case chmod will fail.
308 if ( (chmod( name, (DIRBITS | mode) & ~default_options.umask ) < 0) && errno != EPERM &&
309 !(errno == ENOENT && (dropbox & AFPVOL_NOADOUBLE)) )
311 LOG(log_error, logtype_afpd, "stickydirmode: chmod \"%s\": %s", fullpathname(name), strerror(errno) );
318 /* ------------------------- */
319 int dir_rx_set(mode_t mode)
321 return (mode & (S_IXUSR | S_IRUSR)) == (S_IXUSR | S_IRUSR);
324 #define EXEC_MODE (S_IXGRP | S_IXUSR | S_IXOTH)
326 int setdeskmode( mode )
329 char wd[ MAXPATHLEN + 1];
331 char modbuf[ 12 + 1], *m;
332 struct dirent *deskp, *subp;
335 if (!dir_rx_set(mode)) {
336 /* want to remove read and search access to owner it will screw the volume */
339 if ( getcwd( wd , MAXPATHLEN) == NULL ) {
342 if ( chdir( ".AppleDesktop" ) < 0 ) {
345 if (( desk = opendir( "." )) == NULL ) {
346 if ( chdir( wd ) < 0 ) {
347 LOG(log_error, logtype_afpd, "setdeskmode: chdir %s: %s", wd, strerror(errno) );
351 for ( deskp = readdir( desk ); deskp != NULL; deskp = readdir( desk )) {
352 if ( strcmp( deskp->d_name, "." ) == 0 ||
353 strcmp( deskp->d_name, ".." ) == 0 || strlen( deskp->d_name ) > 2 ) {
356 strcpy( modbuf, deskp->d_name );
357 strcat( modbuf, "/" );
358 m = strchr( modbuf, '\0' );
359 if (( sub = opendir( deskp->d_name )) == NULL ) {
362 for ( subp = readdir( sub ); subp != NULL; subp = readdir( sub )) {
363 if ( strcmp( subp->d_name, "." ) == 0 ||
364 strcmp( subp->d_name, ".." ) == 0 ) {
368 strcat( modbuf, subp->d_name );
369 /* XXX: need to preserve special modes */
370 if (stat(modbuf, &st) < 0) {
371 LOG(log_error, logtype_afpd, "setdeskmode: stat %s: %s",fullpathname(modbuf), strerror(errno) );
375 if (S_ISDIR(st.st_mode)) {
376 if ( chmod( modbuf, (DIRBITS | mode) & ~default_options.umask ) < 0 && errno != EPERM ) {
377 LOG(log_error, logtype_afpd, "setdeskmode: chmod %s: %s",fullpathname(modbuf), strerror(errno) );
379 } else if ( chmod( modbuf, mode & ~(default_options.umask | EXEC_MODE) ) < 0 && errno != EPERM ) {
380 LOG(log_error, logtype_afpd, "setdeskmode: chmod %s: %s",fullpathname(modbuf), strerror(errno) );
385 /* XXX: need to preserve special modes */
386 if ( chmod( deskp->d_name, (DIRBITS | mode) & ~default_options.umask ) < 0 && errno != EPERM ) {
387 LOG(log_error, logtype_afpd, "setdeskmode: chmod %s: %s",fullpathname(deskp->d_name), strerror(errno) );
391 if ( chdir( wd ) < 0 ) {
392 LOG(log_error, logtype_afpd, "setdeskmode: chdir %s: %s", wd, strerror(errno) );
395 /* XXX: need to preserve special modes */
396 if ( chmod( ".AppleDesktop", (DIRBITS | mode) & ~default_options.umask ) < 0 && errno != EPERM ) {
397 LOG(log_error, logtype_afpd, "setdeskmode: chmod %s: %s", fullpathname(".AppleDesktop"),strerror(errno) );
402 /* --------------------- */
403 int setfilunixmode (vol, path, mode)
404 const struct vol *vol;
408 if (!path->st_valid) {
412 if (path->st_errno) {
416 mode |= vol->v_fperm;
418 if (setfilmode( path->u_name, mode, &path->st) < 0)
420 /* we need to set write perm if read set for resource fork */
421 return vol->vfs->rf_setfilmode(vol, path->u_name, mode, &path->st);
424 /* --------------------- */
425 int setfilmode(name, mode, st)
431 mode_t mask = S_IRWXU | S_IRWXG | S_IRWXO; /* rwx for owner group and other, by default */
434 if (stat(name, &sb) != 0)
439 mode |= st->st_mode & ~mask; /* keep other bits from previous mode */
440 if ( chmod( name, mode & ~default_options.umask ) < 0 && errno != EPERM ) {
446 /* --------------------- */
447 int setdirunixmode( vol, name, mode )
448 const struct vol *vol;
453 int dropbox = (vol->v_flags & AFPVOL_DROPBOX);
454 mode |= vol->v_dperm;
456 if (dir_rx_set(mode)) {
457 /* extending right? dir first then .AppleDouble in rf_setdirmode */
458 if ( stickydirmode(name, DIRBITS | mode, dropbox) < 0 )
461 if (vol->vfs->rf_setdirunixmode(vol, name, mode, NULL) < 0 && !vol_noadouble(vol)) {
464 if (!dir_rx_set(mode)) {
465 if ( stickydirmode(name, DIRBITS | mode, dropbox) < 0 )
471 /* --------------------- */
472 int setdirmode( vol, name, mode )
473 const struct vol *vol;
481 int osx = vol->v_adouble == AD_VERSION2_OSX;
482 int dropbox = (vol->v_flags & AFPVOL_DROPBOX);
484 mode |= vol->v_dperm;
485 hf_mode = ad_hf_mode(mode);
487 if (dir_rx_set(mode)) {
488 /* extending right? dir first */
489 if ( stickydirmode(name, DIRBITS | mode, dropbox) < 0 )
493 if (( dir = opendir( name )) == NULL ) {
494 LOG(log_error, logtype_afpd, "setdirmode: opendir: %s", fullpathname(name), strerror(errno) );
498 for ( dirp = readdir( dir ); dirp != NULL; dirp = readdir( dir )) {
500 if ( *dirp->d_name == '.' && (!osx || dirp->d_name[1] != '_')) {
503 if ( stat( dirp->d_name, &st ) < 0 ) {
504 LOG(log_error, logtype_afpd, "setdirmode: stat %s: %s",dirp->d_name, strerror(errno) );
508 if (!S_ISDIR(st.st_mode)) {
509 int setmode = (osx && *dirp->d_name == '.')?hf_mode:mode;
511 if (setfilmode(dirp->d_name, setmode, &st) < 0) {
512 LOG(log_error, logtype_afpd, "setdirmode: chmod %s: %s",dirp->d_name, strerror(errno) );
519 if (vol->vfs->rf_setdirmode(vol, name, mode, NULL) < 0 && !vol_noadouble(vol)) {
523 if (!dir_rx_set(mode)) {
524 if ( stickydirmode(name, DIRBITS | mode, dropbox) < 0 )
530 /* ----------------------------- */
531 int setdeskowner( uid, gid )
535 char wd[ MAXPATHLEN + 1];
536 char modbuf[12 + 1], *m;
537 struct dirent *deskp, *subp;
540 if ( getcwd( wd, MAXPATHLEN ) == NULL ) {
543 if ( chdir( ".AppleDesktop" ) < 0 ) {
546 if (( desk = opendir( "." )) == NULL ) {
547 if ( chdir( wd ) < 0 ) {
548 LOG(log_error, logtype_afpd, "setdeskowner: chdir %s: %s", wd, strerror(errno) );
552 for ( deskp = readdir( desk ); deskp != NULL; deskp = readdir( desk )) {
553 if ( strcmp( deskp->d_name, "." ) == 0 ||
554 strcmp( deskp->d_name, ".." ) == 0 ||
555 strlen( deskp->d_name ) > 2 ) {
558 strcpy( modbuf, deskp->d_name );
559 strcat( modbuf, "/" );
560 m = strchr( modbuf, '\0' );
561 if (( sub = opendir( deskp->d_name )) == NULL ) {
564 for ( subp = readdir( sub ); subp != NULL; subp = readdir( sub )) {
565 if ( strcmp( subp->d_name, "." ) == 0 ||
566 strcmp( subp->d_name, ".." ) == 0 ) {
570 strcat( modbuf, subp->d_name );
571 /* XXX: add special any uid, ignore group bits */
572 if ( chown( modbuf, uid, gid ) < 0 && errno != EPERM ) {
573 LOG(log_error, logtype_afpd, "setdeskown: chown %s: %s", fullpathname(modbuf), strerror(errno) );
577 /* XXX: add special any uid, ignore group bits */
578 if ( chown( deskp->d_name, uid, gid ) < 0 && errno != EPERM ) {
579 LOG(log_error, logtype_afpd, "setdeskowner: chown %s: %s",
580 deskp->d_name, strerror(errno) );
584 if ( chdir( wd ) < 0 ) {
585 LOG(log_error, logtype_afpd, "setdeskowner: chdir %s: %s", wd, strerror(errno) );
588 if ( chown( ".AppleDesktop", uid, gid ) < 0 && errno != EPERM ) {
589 LOG(log_error, logtype_afpd, "setdeskowner: chown %s: %s", fullpathname(".AppleDouble"), strerror(errno) );
594 /* ----------------------------- */
595 int setfilowner(vol, uid, gid, path)
596 const struct vol *vol;
602 if (!path->st_valid) {
606 if (path->st_errno) {
610 if ( chown( path->u_name, uid, gid ) < 0 && errno != EPERM ) {
611 LOG(log_debug, logtype_afpd, "setfilowner: chown %d/%d %s: %s",
612 uid, gid, path->u_name, strerror(errno) );
616 if (vol->vfs->rf_chown(vol, path->u_name, uid, gid ) < 0 && errno != EPERM) {
617 LOG(log_debug, logtype_afpd, "setfilowner: rf_chown %d/%d %s: %s",
618 uid, gid, path->u_name, strerror(errno) );
625 /* ---------------------------------
626 * uid/gid == 0 need to be handled as special cases. they really mean
627 * that user/group should inherit from other, but that doesn't fit
628 * into the unix permission scheme. we can get around this by
629 * co-opting some bits. */
630 int setdirowner(vol, name, uid, gid )
631 const struct vol *vol;
639 int osx = vol->v_adouble == AD_VERSION2_OSX;
641 if (( dir = opendir( name )) == NULL ) {
644 for ( dirp = readdir( dir ); dirp != NULL; dirp = readdir( dir )) {
645 if ( *dirp->d_name == '.' && (!osx || dirp->d_name[1] != '_')) {
648 if ( stat( dirp->d_name, &st ) < 0 ) {
649 LOG(log_error, logtype_afpd, "setdirowner: stat %s: %s",
650 fullpathname(dirp->d_name), strerror(errno) );
653 if (( st.st_mode & S_IFMT ) == S_IFREG ) {
654 if ( chown( dirp->d_name, uid, gid ) < 0 && errno != EPERM ) {
655 LOG(log_debug, logtype_afpd, "setdirowner: chown %s: %s",
656 fullpathname(dirp->d_name), strerror(errno) );
657 /* return ( -1 ); Sometimes this is okay */
663 if (vol->vfs->rf_setdirowner(vol, name, uid, gid) < 0) {
667 if ( stat( ".", &st ) < 0 ) {
670 if ( gid && gid != st.st_gid && chown( ".", uid, gid ) < 0 && errno != EPERM ) {
671 LOG(log_debug, logtype_afpd, "setdirowner: chown %d/%d %s: %s",
672 uid, gid, fullpathname("."), strerror(errno) );
679 /* recursive chown()ing of a directory */
680 static int recursive_chown(const char *path, uid_t uid, gid_t gid) {
683 struct dirent *entry;
686 char newpath[PATH_MAX+1];
687 newpath[PATH_MAX] = '\0';
689 if (chown(path, uid, gid) < 0) {
690 LOG(log_error, logtype_afpd, "cannot chown() file [%s] (uid = %d): %s", path, uid, strerror(errno));
694 if (stat(path, &sbuf) < 0) {
695 LOG(log_error, logtype_afpd, "cannot chown() file [%s] (uid = %d): %s", path, uid, strerror(errno));
699 if (S_ISDIR(sbuf.st_mode)) {
700 odir = opendir(path);
702 LOG(log_error, logtype_afpd, "cannot opendir() [%s] (uid = %d): %s", path, uid, strerror(errno));
703 goto recursive_chown_end;
705 while (NULL != (entry=readdir(odir)) ) {
706 name = entry->d_name;
707 if (name[0] == '.' && name[1] == '\0')
709 if (name[0] == '.' && name[1] == '.' && name[2] == '\0')
711 sprintf(newpath, "%s/%s", path, name);
712 if (recursive_chown(newpath, uid, gid) < 0)
725 /* This is equivalent of unix rename(). */
726 int unix_rename(const char *oldpath, const char *newpath)
729 char pd_name[PATH_MAX+1];
735 if (rename(oldpath, newpath) < 0)
738 for (i = 0; i <= PATH_MAX && newpath[i] != '\0'; i++)
739 pd_name[i] = newpath[i];
742 while (i > 0 && pd_name[i] != '/') i--;
743 if (pd_name[i] == '/') i++;
745 pd_name[i++] = '.'; pd_name[i++] = '\0';
747 if (stat(pd_name, &pd_stat) < 0) {
748 LOG(log_error, logtype_afpd, "stat() of parent dir failed: pd_name = %s, uid = %d: %s",
749 pd_name, geteuid(), strerror(errno));
753 /* So we have SGID bit set... */
754 if ((S_ISGID & pd_stat.st_mode) != 0) {
757 LOG(log_error, logtype_afpd, "seteuid() failed: %s", strerror(errno));
758 if (recursive_chown(newpath, uid, pd_stat.st_gid) < 0)
759 LOG(log_error, logtype_afpd, "chown() of parent dir failed: newpath=%s, uid=%d: %s",
760 pd_name, geteuid(), strerror(errno));