From: Roberto Bergantinos Corpas <rbergant@redhat.com>
To: trondmy@kernel.org, anna@kernel.org
Cc: linux-nfs@vger.kernel.org
Subject: [PATCH v2] nfs: set gencount on protocol-specific remove
Date: Tue, 21 Apr 2026 12:00:46 +0200 [thread overview]
Message-ID: <20260421100046.930082-1-rbergant@redhat.com> (raw)
In-Reply-To: <20260420114331.700769-1-rbergant@redhat.com>
commit bd4928ec799b ("NFS: Avoid changing nlink when file removes and
attribute updates race") avoids races on attribute cache with any
inflight RPC that may modify inode attributes (and gencount) during
i.e. REMOVE.
However it does not take into account that REMOVE may trigger
a delegation return which also advances gencount (via the attribute
refresh during delegation return), and in that case the gencount
mismatch is not due to an inflight RPC that already reflected the
removal.
Push the setting of gencount under each version-specific layer,
reordering correctly for nfsv4 case after the delegation returns.
This fixes LTP/inotify04 failure after bd4928ec799b.
Fixes: bd4928ec799b ("NFS: Avoid changing nlink when file removes and attribute updates race")
Signed-off-by: Roberto Bergantinos Corpas <rbergant@redhat.com>
---
v2: Move gencount capture and nfs_drop_nlink into version-specific
remove handlers instead of using force flag (Trond)
---
fs/nfs/dir.c | 13 +++----------
fs/nfs/internal.h | 1 +
fs/nfs/nfs3proc.c | 8 ++++++++
fs/nfs/nfs4proc.c | 5 +++++
fs/nfs/proc.c | 8 ++++++++
5 files changed, 25 insertions(+), 10 deletions(-)
diff --git a/fs/nfs/dir.c b/fs/nfs/dir.c
index 2402f57c8e7d..e48e8a837d6f 100644
--- a/fs/nfs/dir.c
+++ b/fs/nfs/dir.c
@@ -1937,7 +1937,7 @@ static int nfs_dentry_delete(const struct dentry *dentry)
}
/* Ensure that we revalidate inode->i_nlink */
-static void nfs_drop_nlink(struct inode *inode, unsigned long gencount)
+void nfs_drop_nlink(struct inode *inode, unsigned long gencount)
{
struct nfs_inode *nfsi = NFS_I(inode);
@@ -1951,6 +1951,7 @@ static void nfs_drop_nlink(struct inode *inode, unsigned long gencount)
NFS_INO_INVALID_NLINK);
spin_unlock(&inode->i_lock);
}
+EXPORT_SYMBOL_GPL(nfs_drop_nlink);
/*
* Called when the dentry loses inode.
@@ -2542,7 +2543,6 @@ EXPORT_SYMBOL_GPL(nfs_rmdir);
static int nfs_safe_remove(struct dentry *dentry)
{
struct inode *dir = d_inode(dentry->d_parent);
- struct inode *inode = d_inode(dentry);
int error = -EBUSY;
dfprintk(VFS, "NFS: safe_remove(%pd2)\n", dentry);
@@ -2554,14 +2554,7 @@ static int nfs_safe_remove(struct dentry *dentry)
}
trace_nfs_remove_enter(dir, dentry);
- if (inode != NULL) {
- unsigned long gencount = READ_ONCE(NFS_I(inode)->attr_gencount);
-
- error = NFS_PROTO(dir)->remove(dir, dentry);
- if (error == 0)
- nfs_drop_nlink(inode, gencount);
- } else
- error = NFS_PROTO(dir)->remove(dir, dentry);
+ error = NFS_PROTO(dir)->remove(dir, dentry);
if (error == -ENOENT)
nfs_dentry_handle_enoent(dentry);
trace_nfs_remove_exit(dir, dentry, error);
diff --git a/fs/nfs/internal.h b/fs/nfs/internal.h
index 63e09dfc27a8..84d750de608e 100644
--- a/fs/nfs/internal.h
+++ b/fs/nfs/internal.h
@@ -390,6 +390,7 @@ extern unsigned long nfs_access_cache_count(struct shrinker *shrink,
struct shrink_control *sc);
extern unsigned long nfs_access_cache_scan(struct shrinker *shrink,
struct shrink_control *sc);
+extern void nfs_drop_nlink(struct inode *inode, unsigned long gencount);
struct dentry *nfs_lookup(struct inode *, struct dentry *, unsigned int);
void nfs_d_prune_case_insensitive_aliases(struct inode *inode);
int nfs_create(struct mnt_idmap *, struct inode *, struct dentry *,
diff --git a/fs/nfs/nfs3proc.c b/fs/nfs/nfs3proc.c
index 3e2de45c95fe..b077455fb019 100644
--- a/fs/nfs/nfs3proc.c
+++ b/fs/nfs/nfs3proc.c
@@ -442,13 +442,21 @@ nfs3_proc_remove(struct inode *dir, struct dentry *dentry)
.rpc_resp = &res,
};
int status = -ENOMEM;
+ struct inode *inode = d_inode(dentry);
+ unsigned long gencount;
dprintk("NFS call remove %pd2\n", dentry);
res.dir_attr = nfs_alloc_fattr();
if (res.dir_attr == NULL)
goto out;
+ if (inode)
+ gencount = READ_ONCE(NFS_I(inode)->attr_gencount);
+
status = rpc_call_sync(NFS_CLIENT(dir), &msg, 0);
+ if (status == 0 && inode)
+ nfs_drop_nlink(inode, gencount);
+
nfs_post_op_update_inode(dir, res.dir_attr);
nfs_free_fattr(res.dir_attr);
out:
diff --git a/fs/nfs/nfs4proc.c b/fs/nfs/nfs4proc.c
index 91bcf67bd743..85901714b4b5 100644
--- a/fs/nfs/nfs4proc.c
+++ b/fs/nfs/nfs4proc.c
@@ -4919,12 +4919,14 @@ static int nfs4_proc_remove(struct inode *dir, struct dentry *dentry)
};
struct inode *inode = d_inode(dentry);
int err;
+ unsigned long gencount;
if (inode) {
if (inode->i_nlink == 1)
nfs4_inode_return_delegation(inode);
else
nfs4_inode_make_writeable(inode);
+ gencount = READ_ONCE(NFS_I(inode)->attr_gencount);
}
do {
err = _nfs4_proc_remove(dir, &dentry->d_name, NF4REG);
@@ -4932,6 +4934,9 @@ static int nfs4_proc_remove(struct inode *dir, struct dentry *dentry)
err = nfs4_handle_exception(NFS_SERVER(dir), err,
&exception);
} while (exception.retry);
+
+ if (err == 0 && inode)
+ nfs_drop_nlink(inode, gencount);
return err;
}
diff --git a/fs/nfs/proc.c b/fs/nfs/proc.c
index 8c3d2efa2636..a8d8ac421200 100644
--- a/fs/nfs/proc.c
+++ b/fs/nfs/proc.c
@@ -322,9 +322,17 @@ nfs_proc_remove(struct inode *dir, struct dentry *dentry)
.rpc_argp = &arg,
};
int status;
+ struct inode *inode = d_inode(dentry);
+ unsigned long gencount;
dprintk("NFS call remove %pd2\n",dentry);
+ if (inode)
+ gencount = READ_ONCE(NFS_I(inode)->attr_gencount);
+
status = rpc_call_sync(NFS_CLIENT(dir), &msg, 0);
+ if (status == 0 && inode)
+ nfs_drop_nlink(inode, gencount);
+
nfs_mark_for_revalidate(dir);
dprintk("NFS reply remove: %d\n", status);
--
2.53.0
prev parent reply other threads:[~2026-04-21 10:01 UTC|newest]
Thread overview: 3+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-04-20 11:43 [PATCH RESEND] nfs: force drop_nlink if we have a delegation during REMOVE Roberto Bergantinos Corpas
2026-04-20 16:15 ` Trond Myklebust
2026-04-21 10:00 ` Roberto Bergantinos Corpas [this message]
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20260421100046.930082-1-rbergant@redhat.com \
--to=rbergant@redhat.com \
--cc=anna@kernel.org \
--cc=linux-nfs@vger.kernel.org \
--cc=trondmy@kernel.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox