Release 4.7 net/sunrpc/auth_unix.c
/*
* linux/net/sunrpc/auth_unix.c
*
* UNIX-style authentication; no AUTH_SHORT support
*
* Copyright (C) 1996, Olaf Kirch <okir@monad.swb.de>
*/
#include <linux/slab.h>
#include <linux/types.h>
#include <linux/sched.h>
#include <linux/module.h>
#include <linux/sunrpc/clnt.h>
#include <linux/sunrpc/auth.h>
#include <linux/user_namespace.h>
#define NFS_NGROUPS 16
struct unx_cred {
struct rpc_cred uc_base;
kgid_t uc_gid;
kgid_t uc_gids[NFS_NGROUPS];
};
#define uc_uid uc_base.cr_uid
#if IS_ENABLED(CONFIG_SUNRPC_DEBUG)
# define RPCDBG_FACILITY RPCDBG_AUTH
#endif
static struct rpc_auth unix_auth;
static const struct rpc_credops unix_credops;
static struct rpc_auth *
unx_create(struct rpc_auth_create_args *args, struct rpc_clnt *clnt)
{
dprintk("RPC: creating UNIX authenticator for client %p\n",
clnt);
atomic_inc(&unix_auth.au_count);
return &unix_auth;
}
Contributors
| Person | Tokens | Prop | Commits | CommitProp |
pre-git | pre-git | 24 | 64.86% | 1 | 20.00% |
trond myklebust | trond myklebust | 12 | 32.43% | 3 | 60.00% |
chuck lever | chuck lever | 1 | 2.70% | 1 | 20.00% |
| Total | 37 | 100.00% | 5 | 100.00% |
static void
unx_destroy(struct rpc_auth *auth)
{
dprintk("RPC: destroying UNIX authenticator %p\n", auth);
rpcauth_clear_credcache(auth->au_credcache);
}
Contributors
| Person | Tokens | Prop | Commits | CommitProp |
pre-git | pre-git | 21 | 84.00% | 1 | 33.33% |
trond myklebust | trond myklebust | 3 | 12.00% | 1 | 33.33% |
chuck lever | chuck lever | 1 | 4.00% | 1 | 33.33% |
| Total | 25 | 100.00% | 3 | 100.00% |
/*
* Lookup AUTH_UNIX creds for current process
*/
static struct rpc_cred *
unx_lookup_cred(struct rpc_auth *auth, struct auth_cred *acred, int flags)
{
return rpcauth_lookup_credcache(auth, acred, flags, GFP_NOFS);
}
Contributors
| Person | Tokens | Prop | Commits | CommitProp |
trond myklebust | trond myklebust | 31 | 93.94% | 1 | 50.00% |
jeff layton | jeff layton | 2 | 6.06% | 1 | 50.00% |
| Total | 33 | 100.00% | 2 | 100.00% |
static struct rpc_cred *
unx_create_cred(struct rpc_auth *auth, struct auth_cred *acred, int flags, gfp_t gfp)
{
struct unx_cred *cred;
unsigned int groups = 0;
unsigned int i;
dprintk("RPC: allocating UNIX cred for uid %d gid %d\n",
from_kuid(&init_user_ns, acred->uid),
from_kgid(&init_user_ns, acred->gid));
if (!(cred = kmalloc(sizeof(*cred), gfp)))
return ERR_PTR(-ENOMEM);
rpcauth_init_cred(&cred->uc_base, acred, auth, &unix_credops);
cred->uc_base.cr_flags = 1UL << RPCAUTH_CRED_UPTODATE;
if (acred->group_info != NULL)
groups = acred->group_info->ngroups;
if (groups > NFS_NGROUPS)
groups = NFS_NGROUPS;
cred->uc_gid = acred->gid;
for (i = 0; i < groups; i++)
cred->uc_gids[i] = GROUP_AT(acred->group_info, i);
if (i < NFS_NGROUPS)
cred->uc_gids[i] = INVALID_GID;
return &cred->uc_base;
}
Contributors
| Person | Tokens | Prop | Commits | CommitProp |
pre-git | pre-git | 110 | 55.56% | 3 | 15.79% |
trond myklebust | trond myklebust | 52 | 26.26% | 8 | 42.11% |
eric w. biederman | eric w. biederman | 20 | 10.10% | 4 | 21.05% |
andrew morton | andrew morton | 7 | 3.54% | 1 | 5.26% |
jeff layton | jeff layton | 4 | 2.02% | 1 | 5.26% |
linus torvalds | linus torvalds | 4 | 2.02% | 1 | 5.26% |
chuck lever | chuck lever | 1 | 0.51% | 1 | 5.26% |
| Total | 198 | 100.00% | 19 | 100.00% |
static void
unx_free_cred(struct unx_cred *unx_cred)
{
dprintk("RPC: unx_free_cred %p\n", unx_cred);
kfree(unx_cred);
}
Contributors
| Person | Tokens | Prop | Commits | CommitProp |
trond myklebust | trond myklebust | 18 | 78.26% | 1 | 50.00% |
pre-git | pre-git | 5 | 21.74% | 1 | 50.00% |
| Total | 23 | 100.00% | 2 | 100.00% |
static void
unx_free_cred_callback(struct rcu_head *head)
{
struct unx_cred *unx_cred = container_of(head, struct unx_cred, uc_base.cr_rcu);
unx_free_cred(unx_cred);
}
Contributors
| Person | Tokens | Prop | Commits | CommitProp |
trond myklebust | trond myklebust | 31 | 93.94% | 2 | 66.67% |
pre-git | pre-git | 2 | 6.06% | 1 | 33.33% |
| Total | 33 | 100.00% | 3 | 100.00% |
static void
unx_destroy_cred(struct rpc_cred *cred)
{
call_rcu(&cred->cr_rcu, unx_free_cred_callback);
}
Contributors
| Person | Tokens | Prop | Commits | CommitProp |
trond myklebust | trond myklebust | 16 | 76.19% | 1 | 50.00% |
pre-git | pre-git | 5 | 23.81% | 1 | 50.00% |
| Total | 21 | 100.00% | 2 | 100.00% |
/*
* Match credentials against current process creds.
* The root_override argument takes care of cases where the caller may
* request root creds (e.g. for NFS swapping).
*/
static int
unx_match(struct auth_cred *acred, struct rpc_cred *rcred, int flags)
{
struct unx_cred *cred = container_of(rcred, struct unx_cred, uc_base);
unsigned int groups = 0;
unsigned int i;
if (!uid_eq(cred->uc_uid, acred->uid) || !gid_eq(cred->uc_gid, acred->gid))
return 0;
if (acred->group_info != NULL)
groups = acred->group_info->ngroups;
if (groups > NFS_NGROUPS)
groups = NFS_NGROUPS;
for (i = 0; i < groups ; i++)
if (!gid_eq(cred->uc_gids[i], GROUP_AT(acred->group_info, i)))
return 0;
if (groups < NFS_NGROUPS && gid_valid(cred->uc_gids[groups]))
return 0;
return 1;
}
Contributors
| Person | Tokens | Prop | Commits | CommitProp |
pre-git | pre-git | 77 | 48.43% | 3 | 23.08% |
eric w. biederman | eric w. biederman | 34 | 21.38% | 4 | 30.77% |
trond myklebust | trond myklebust | 30 | 18.87% | 4 | 30.77% |
neil brown | neil brown | 16 | 10.06% | 1 | 7.69% |
andrew morton | andrew morton | 2 | 1.26% | 1 | 7.69% |
| Total | 159 | 100.00% | 13 | 100.00% |
/*
* Marshal credentials.
* Maybe we should keep a cached credential for performance reasons.
*/
static __be32 *
unx_marshal(struct rpc_task *task, __be32 *p)
{
struct rpc_clnt *clnt = task->tk_client;
struct unx_cred *cred = container_of(task->tk_rqstp->rq_cred, struct unx_cred, uc_base);
__be32 *base, *hold;
int i;
*p++ = htonl(RPC_AUTH_UNIX);
base = p++;
*p++ = htonl(jiffies/HZ);
/*
* Copy the UTS nodename captured when the client was created.
*/
p = xdr_encode_array(p, clnt->cl_nodename, clnt->cl_nodelen);
*p++ = htonl((u32) from_kuid(&init_user_ns, cred->uc_uid));
*p++ = htonl((u32) from_kgid(&init_user_ns, cred->uc_gid));
hold = p++;
for (i = 0; i < 16 && gid_valid(cred->uc_gids[i]); i++)
*p++ = htonl((u32) from_kgid(&init_user_ns, cred->uc_gids[i]));
*hold = htonl(p - hold - 1); /* gid array length */
*base = htonl((p - base - 1) << 2); /* cred length */
*p++ = htonl(RPC_AUTH_NULL);
*p++ = htonl(0);
return p;
}
Contributors
| Person | Tokens | Prop | Commits | CommitProp |
pre-git | pre-git | 196 | 82.70% | 2 | 22.22% |
eric w. biederman | eric w. biederman | 21 | 8.86% | 2 | 22.22% |
trond myklebust | trond myklebust | 17 | 7.17% | 4 | 44.44% |
alexey dobriyan | alexey dobriyan | 3 | 1.27% | 1 | 11.11% |
| Total | 237 | 100.00% | 9 | 100.00% |
/*
* Refresh credentials. This is a no-op for AUTH_UNIX
*/
static int
unx_refresh(struct rpc_task *task)
{
set_bit(RPCAUTH_CRED_UPTODATE, &task->tk_rqstp->rq_cred->cr_flags);
return 0;
}
Contributors
| Person | Tokens | Prop | Commits | CommitProp |
pre-git | pre-git | 18 | 64.29% | 1 | 25.00% |
trond myklebust | trond myklebust | 10 | 35.71% | 3 | 75.00% |
| Total | 28 | 100.00% | 4 | 100.00% |
static __be32 *
unx_validate(struct rpc_task *task, __be32 *p)
{
rpc_authflavor_t flavor;
u32 size;
flavor = ntohl(*p++);
if (flavor != RPC_AUTH_NULL &&
flavor != RPC_AUTH_UNIX &&
flavor != RPC_AUTH_SHORT) {
printk("RPC: bad verf flavor: %u\n", flavor);
return ERR_PTR(-EIO);
}
size = ntohl(*p++);
if (size > RPC_MAX_AUTH_SIZE) {
printk("RPC: giant verf size: %u\n", size);
return ERR_PTR(-EIO);
}
task->tk_rqstp->rq_cred->cr_auth->au_rslack = (size >> 2) + 2;
p += (size >> 2);
return p;
}
Contributors
| Person | Tokens | Prop | Commits | CommitProp |
pre-git | pre-git | 81 | 66.94% | 1 | 14.29% |
chuck lever | chuck lever | 22 | 18.18% | 1 | 14.29% |
andy adamson | andy adamson | 10 | 8.26% | 1 | 14.29% |
trond myklebust | trond myklebust | 6 | 4.96% | 3 | 42.86% |
alexey dobriyan | alexey dobriyan | 2 | 1.65% | 1 | 14.29% |
| Total | 121 | 100.00% | 7 | 100.00% |
int __init rpc_init_authunix(void)
{
return rpcauth_init_credcache(&unix_auth);
}
Contributors
| Person | Tokens | Prop | Commits | CommitProp |
trond myklebust | trond myklebust | 15 | 100.00% | 2 | 100.00% |
| Total | 15 | 100.00% | 2 | 100.00% |
void rpc_destroy_authunix(void)
{
rpcauth_destroy_credcache(&unix_auth);
}
Contributors
| Person | Tokens | Prop | Commits | CommitProp |
trond myklebust | trond myklebust | 13 | 100.00% | 2 | 100.00% |
| Total | 13 | 100.00% | 2 | 100.00% |
const struct rpc_authops authunix_ops = {
.owner = THIS_MODULE,
.au_flavor = RPC_AUTH_UNIX,
.au_name = "UNIX",
.create = unx_create,
.destroy = unx_destroy,
.lookup_cred = unx_lookup_cred,
.crcreate = unx_create_cred,
};
static
struct rpc_auth unix_auth = {
.au_cslack = UNX_CALLSLACK,
.au_rslack = NUL_REPLYSLACK,
.au_ops = &authunix_ops,
.au_flavor = RPC_AUTH_UNIX,
.au_count = ATOMIC_INIT(0),
};
static
const struct rpc_credops unix_credops = {
.cr_name = "AUTH_UNIX",
.crdestroy = unx_destroy_cred,
.crbind = rpcauth_generic_bind_cred,
.crmatch = unx_match,
.crmarshal = unx_marshal,
.crrefresh = unx_refresh,
.crvalidate = unx_validate,
};
Overall Contributors
| Person | Tokens | Prop | Commits | CommitProp |
pre-git | pre-git | 607 | 53.29% | 4 | 7.84% |
trond myklebust | trond myklebust | 312 | 27.39% | 25 | 49.02% |
eric w. biederman | eric w. biederman | 80 | 7.02% | 8 | 15.69% |
dave jones | dave jones | 32 | 2.81% | 1 | 1.96% |
chuck lever | chuck lever | 28 | 2.46% | 3 | 5.88% |
linus torvalds | linus torvalds | 17 | 1.49% | 2 | 3.92% |
neil brown | neil brown | 16 | 1.40% | 1 | 1.96% |
jeff layton | jeff layton | 12 | 1.05% | 2 | 3.92% |
andy adamson | andy adamson | 10 | 0.88% | 1 | 1.96% |
andrew morton | andrew morton | 9 | 0.79% | 1 | 1.96% |
christoph hellwig | christoph hellwig | 8 | 0.70% | 1 | 1.96% |
alexey dobriyan | alexey dobriyan | 5 | 0.44% | 1 | 1.96% |
tejun heo | tejun heo | 3 | 0.26% | 1 | 1.96% |
| Total | 1139 | 100.00% | 51 | 100.00% |
Information contained on this website is for historical information purposes only and does not indicate or represent copyright ownership.