From: ebiederm@xmission.com (Eric W. Biederman)
To: Jose Lopes <jabolopes@gmail.com>
Cc: Al Viro <viro@zeniv.linux.org.uk>,
linux-fsdevel@vger.kernel.org, fuse-devel@lists.sourceforge.net
Subject: Re: [fuse-devel] [PATCH] Make file struct available to fchmod FS handlers.
Date: Thu, 17 Nov 2016 11:44:11 -0600 [thread overview]
Message-ID: <87a8cy80ic.fsf@xmission.com> (raw)
In-Reply-To: <CANnRPkmFe1mj2jKmP1BSAYSikHpxZpTw8Ctxjmi8xGQ0=v-+7A@mail.gmail.com> (Jose Lopes's message of "Thu, 03 Nov 2016 10:26:14 +0000")
Jose Lopes <jabolopes@gmail.com> writes:
> Hi,
>
> On Thu, Nov 3, 2016 at 9:22 AM Jean-Pierre André <jean-pierre.andre@wanadoo.fr> wrote:
>
> Al Viro wrote:
> > On Wed, Nov 02, 2016 at 11:53:40PM +0100, Jose Lopes wrote:
> >> Syscall 'ftruncate' makes the 'file' struct available to filesystem
> >> handlers. This makes it possible, e.g., for filesystems, such as,
> >> FUSE, to access the file handle associated with the file descriptor
> >> that was passed to 'ftruncate'. In the specific case of FUSE, this
> >> also makes it possible for (userspace) FUSE-based filesystems to
> >> distinguish between calls to 'truncate' and 'ftruncate'.
> >
> > Why FUSE is such a precious snowflake that it needs to make that distinction,
> > unlike all other filesystems?
>
> For fuse file system which delegate the permission checks
> to user space (and have to do so because of cacheing
> issues), the write permission has to be checked for
> truncate(), and not checked for ftruncate() : the file
> may have been opened for writing and then its permissions
> set to read-only before the ftruncate() is requested.
> The user space file system can check current permissions,
> not the ones which were set when the file was opened.
>
> +1 what Jean-Pierre said.
>
> Also, I work on a FUSE-based network filesystem and the fact that we cannot
> distinguish between calls to fchmod and chmod produces incorrect results.
> For example, in the cases where a file was unlinked or moved, calling fchmod
> should apply the change directly in the open file. However, since the fchmod
> call arrives to FUSE as chmod (because of the missing file handle), FUSE will
> try to resolve the path to get to the open file, which fails because the file was
> moved or unlinked, or it will apply the change to the wrong file if in the meantime
> another file was open under the same path of the previous file.
I read through this and I agree with Al. Semantically ftruncate needs
the file handle to operate correctly. Semantically fchmod does not need
the file handle. The file handle to fchmod is just a way to pass it the
specific inode.
Given that a file handle exists presumably userspace has state cached
for this file already. So a lookup by inode in the userspace
filesystems data structures should get the job done.
Beyond that the kernel does have interfaces for dealing with things like
this if you don't want to have lots and lots of open files in userspace.
These are the system calls name_to_handle_at and open_by_handle_at.
Eric
next prev parent reply other threads:[~2016-11-17 17:46 UTC|newest]
Thread overview: 12+ messages / expand[flat|nested] mbox.gz Atom feed top
2016-11-02 22:53 [PATCH] Make file struct available to fchmod FS handlers Jose Lopes
2016-11-03 0:59 ` Al Viro
2016-11-03 8:22 ` [fuse-devel] " Jean-Pierre André
[not found] ` <581AF3CB.3090001-39ZsbGIQGT5GWvitb5QawA@public.gmane.org>
2016-11-03 10:26 ` Jose Lopes
2016-11-17 17:44 ` Eric W. Biederman [this message]
2016-11-17 18:39 ` [fuse-devel] " Nikolaus Rath
2016-11-17 19:20 ` Eric W. Biederman
2016-11-17 23:03 ` Stef Bon
2016-11-03 15:22 ` Nikolaus Rath
2016-11-07 4:51 ` Nikolaus Rath
2016-11-09 17:54 ` Jose Lopes
2016-11-07 5:25 ` Nikolaus Rath
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=87a8cy80ic.fsf@xmission.com \
--to=ebiederm@xmission.com \
--cc=fuse-devel@lists.sourceforge.net \
--cc=jabolopes@gmail.com \
--cc=linux-fsdevel@vger.kernel.org \
--cc=viro@zeniv.linux.org.uk \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.