xref: /linux-6.15/drivers/block/loop.c (revision 355341e4)
1f21e6e18SChristoph Hellwig // SPDX-License-Identifier: GPL-2.0-only
21da177e4SLinus Torvalds /*
3f21e6e18SChristoph Hellwig  * Copyright 1993 by Theodore Ts'o.
41da177e4SLinus Torvalds  */
51da177e4SLinus Torvalds #include <linux/module.h>
61da177e4SLinus Torvalds #include <linux/moduleparam.h>
71da177e4SLinus Torvalds #include <linux/sched.h>
81da177e4SLinus Torvalds #include <linux/fs.h>
94ee60ec1SMatthew Wilcox (Oracle) #include <linux/pagemap.h>
101da177e4SLinus Torvalds #include <linux/file.h>
111da177e4SLinus Torvalds #include <linux/stat.h>
121da177e4SLinus Torvalds #include <linux/errno.h>
131da177e4SLinus Torvalds #include <linux/major.h>
141da177e4SLinus Torvalds #include <linux/wait.h>
151da177e4SLinus Torvalds #include <linux/blkpg.h>
161da177e4SLinus Torvalds #include <linux/init.h>
171da177e4SLinus Torvalds #include <linux/swap.h>
181da177e4SLinus Torvalds #include <linux/slab.h>
19863d5b82SDavid Howells #include <linux/compat.h>
201da177e4SLinus Torvalds #include <linux/suspend.h>
2183144186SRafael J. Wysocki #include <linux/freezer.h>
222a48fc0aSArnd Bergmann #include <linux/mutex.h>
231da177e4SLinus Torvalds #include <linux/writeback.h>
241da177e4SLinus Torvalds #include <linux/completion.h>
251da177e4SLinus Torvalds #include <linux/highmem.h>
26d6b29d7cSJens Axboe #include <linux/splice.h>
27ee862730SMilan Broz #include <linux/sysfs.h>
28770fe30aSKay Sievers #include <linux/miscdevice.h>
29dfaa2ef6SLukas Czerner #include <linux/falloc.h>
30283e7e5dSAl Viro #include <linux/uio.h>
31d9a08a9eSAdam Manzanares #include <linux/ioprio.h>
32db6638d7SDennis Zhou #include <linux/blk-cgroup.h>
33c74d40e8SDan Schatzberg #include <linux/sched/mm.h>
3406582bc8SMing Lei #include <linux/statfs.h>
357c0f6ba6SLinus Torvalds #include <linux/uaccess.h>
36754d9679SChristoph Hellwig #include <linux/blk-mq.h>
37754d9679SChristoph Hellwig #include <linux/spinlock.h>
38754d9679SChristoph Hellwig #include <uapi/linux/loop.h>
39754d9679SChristoph Hellwig 
40754d9679SChristoph Hellwig /* Possible states of device */
41754d9679SChristoph Hellwig enum {
42754d9679SChristoph Hellwig 	Lo_unbound,
43754d9679SChristoph Hellwig 	Lo_bound,
44754d9679SChristoph Hellwig 	Lo_rundown,
45754d9679SChristoph Hellwig 	Lo_deleting,
46754d9679SChristoph Hellwig };
47754d9679SChristoph Hellwig 
48754d9679SChristoph Hellwig struct loop_device {
49754d9679SChristoph Hellwig 	int		lo_number;
50754d9679SChristoph Hellwig 	loff_t		lo_offset;
51754d9679SChristoph Hellwig 	loff_t		lo_sizelimit;
52754d9679SChristoph Hellwig 	int		lo_flags;
53754d9679SChristoph Hellwig 	char		lo_file_name[LO_NAME_SIZE];
54754d9679SChristoph Hellwig 
55754d9679SChristoph Hellwig 	struct file	*lo_backing_file;
56f4774e92SChristoph Hellwig 	unsigned int	lo_min_dio_size;
57754d9679SChristoph Hellwig 	struct block_device *lo_device;
58754d9679SChristoph Hellwig 
59754d9679SChristoph Hellwig 	gfp_t		old_gfp_mask;
60754d9679SChristoph Hellwig 
61754d9679SChristoph Hellwig 	spinlock_t		lo_lock;
62754d9679SChristoph Hellwig 	int			lo_state;
63754d9679SChristoph Hellwig 	spinlock_t              lo_work_lock;
64754d9679SChristoph Hellwig 	struct workqueue_struct *workqueue;
65754d9679SChristoph Hellwig 	struct work_struct      rootcg_work;
66754d9679SChristoph Hellwig 	struct list_head        rootcg_cmd_list;
67754d9679SChristoph Hellwig 	struct list_head        idle_worker_list;
68754d9679SChristoph Hellwig 	struct rb_root          worker_tree;
69754d9679SChristoph Hellwig 	struct timer_list       timer;
70754d9679SChristoph Hellwig 	bool			sysfs_inited;
71754d9679SChristoph Hellwig 
72754d9679SChristoph Hellwig 	struct request_queue	*lo_queue;
73754d9679SChristoph Hellwig 	struct blk_mq_tag_set	tag_set;
74754d9679SChristoph Hellwig 	struct gendisk		*lo_disk;
75754d9679SChristoph Hellwig 	struct mutex		lo_mutex;
76754d9679SChristoph Hellwig 	bool			idr_visible;
77754d9679SChristoph Hellwig };
78754d9679SChristoph Hellwig 
79754d9679SChristoph Hellwig struct loop_cmd {
80754d9679SChristoph Hellwig 	struct list_head list_entry;
81754d9679SChristoph Hellwig 	bool use_aio; /* use AIO interface to handle I/O */
82754d9679SChristoph Hellwig 	atomic_t ref; /* only for aio */
83754d9679SChristoph Hellwig 	long ret;
84754d9679SChristoph Hellwig 	struct kiocb iocb;
85754d9679SChristoph Hellwig 	struct bio_vec *bvec;
86754d9679SChristoph Hellwig 	struct cgroup_subsys_state *blkcg_css;
87754d9679SChristoph Hellwig 	struct cgroup_subsys_state *memcg_css;
88754d9679SChristoph Hellwig };
891da177e4SLinus Torvalds 
9087579e9bSDan Schatzberg #define LOOP_IDLE_WORKER_TIMEOUT (60 * HZ)
91e152a05fSBart Van Assche #define LOOP_DEFAULT_HW_Q_DEPTH 128
9287579e9bSDan Schatzberg 
9334dd82afSKay Sievers static DEFINE_IDR(loop_index_idr);
94310ca162STetsuo Handa static DEFINE_MUTEX(loop_ctl_mutex);
953ce6e1f6STetsuo Handa static DEFINE_MUTEX(loop_validate_mutex);
963ce6e1f6STetsuo Handa 
973ce6e1f6STetsuo Handa /**
983ce6e1f6STetsuo Handa  * loop_global_lock_killable() - take locks for safe loop_validate_file() test
993ce6e1f6STetsuo Handa  *
1003ce6e1f6STetsuo Handa  * @lo: struct loop_device
1013ce6e1f6STetsuo Handa  * @global: true if @lo is about to bind another "struct loop_device", false otherwise
1023ce6e1f6STetsuo Handa  *
1033ce6e1f6STetsuo Handa  * Returns 0 on success, -EINTR otherwise.
1043ce6e1f6STetsuo Handa  *
1053ce6e1f6STetsuo Handa  * Since loop_validate_file() traverses on other "struct loop_device" if
1063ce6e1f6STetsuo Handa  * is_loop_device() is true, we need a global lock for serializing concurrent
1073ce6e1f6STetsuo Handa  * loop_configure()/loop_change_fd()/__loop_clr_fd() calls.
1083ce6e1f6STetsuo Handa  */
loop_global_lock_killable(struct loop_device * lo,bool global)1093ce6e1f6STetsuo Handa static int loop_global_lock_killable(struct loop_device *lo, bool global)
1103ce6e1f6STetsuo Handa {
1113ce6e1f6STetsuo Handa 	int err;
1123ce6e1f6STetsuo Handa 
1133ce6e1f6STetsuo Handa 	if (global) {
1143ce6e1f6STetsuo Handa 		err = mutex_lock_killable(&loop_validate_mutex);
1153ce6e1f6STetsuo Handa 		if (err)
1163ce6e1f6STetsuo Handa 			return err;
1173ce6e1f6STetsuo Handa 	}
1183ce6e1f6STetsuo Handa 	err = mutex_lock_killable(&lo->lo_mutex);
1193ce6e1f6STetsuo Handa 	if (err && global)
1203ce6e1f6STetsuo Handa 		mutex_unlock(&loop_validate_mutex);
1213ce6e1f6STetsuo Handa 	return err;
1223ce6e1f6STetsuo Handa }
1233ce6e1f6STetsuo Handa 
1243ce6e1f6STetsuo Handa /**
1253ce6e1f6STetsuo Handa  * loop_global_unlock() - release locks taken by loop_global_lock_killable()
1263ce6e1f6STetsuo Handa  *
1273ce6e1f6STetsuo Handa  * @lo: struct loop_device
1283ce6e1f6STetsuo Handa  * @global: true if @lo was about to bind another "struct loop_device", false otherwise
1293ce6e1f6STetsuo Handa  */
loop_global_unlock(struct loop_device * lo,bool global)1303ce6e1f6STetsuo Handa static void loop_global_unlock(struct loop_device *lo, bool global)
1313ce6e1f6STetsuo Handa {
1323ce6e1f6STetsuo Handa 	mutex_unlock(&lo->lo_mutex);
1333ce6e1f6STetsuo Handa 	if (global)
1343ce6e1f6STetsuo Handa 		mutex_unlock(&loop_validate_mutex);
1353ce6e1f6STetsuo Handa }
1361da177e4SLinus Torvalds 
137476a4813SLaurent Vivier static int max_part;
138476a4813SLaurent Vivier static int part_shift;
139476a4813SLaurent Vivier 
get_size(loff_t offset,loff_t sizelimit,struct file * file)1407035b5dfSDmitry Monakhov static loff_t get_size(loff_t offset, loff_t sizelimit, struct file *file)
1411da177e4SLinus Torvalds {
142b7a1da69SGuo Chao 	loff_t loopsize;
1431da177e4SLinus Torvalds 
1441da177e4SLinus Torvalds 	/* Compute loopsize in bytes */
145b7a1da69SGuo Chao 	loopsize = i_size_read(file->f_mapping->host);
146b7a1da69SGuo Chao 	if (offset > 0)
147b7a1da69SGuo Chao 		loopsize -= offset;
148b7a1da69SGuo Chao 	/* offset is beyond i_size, weird but possible */
1497035b5dfSDmitry Monakhov 	if (loopsize < 0)
1507035b5dfSDmitry Monakhov 		return 0;
1511da177e4SLinus Torvalds 
1527035b5dfSDmitry Monakhov 	if (sizelimit > 0 && sizelimit < loopsize)
1537035b5dfSDmitry Monakhov 		loopsize = sizelimit;
1541da177e4SLinus Torvalds 	/*
1551da177e4SLinus Torvalds 	 * Unfortunately, if we want to do I/O on the device,
1561da177e4SLinus Torvalds 	 * the number of 512-byte sectors has to fit into a sector_t.
1571da177e4SLinus Torvalds 	 */
1581da177e4SLinus Torvalds 	return loopsize >> 9;
1591da177e4SLinus Torvalds }
1601da177e4SLinus Torvalds 
get_loop_size(struct loop_device * lo,struct file * file)1617035b5dfSDmitry Monakhov static loff_t get_loop_size(struct loop_device *lo, struct file *file)
1621da177e4SLinus Torvalds {
1637035b5dfSDmitry Monakhov 	return get_size(lo->lo_offset, lo->lo_sizelimit, file);
1647035b5dfSDmitry Monakhov }
1657035b5dfSDmitry Monakhov 
166baa7d536SChristoph Hellwig /*
167baa7d536SChristoph Hellwig  * We support direct I/O only if lo_offset is aligned with the logical I/O size
168baa7d536SChristoph Hellwig  * of backing device, and the logical block size of loop is bigger than that of
169baa7d536SChristoph Hellwig  * the backing device.
170baa7d536SChristoph Hellwig  */
lo_can_use_dio(struct loop_device * lo)171781fc49aSChristoph Hellwig static bool lo_can_use_dio(struct loop_device *lo)
1722e5ab5f3SMing Lei {
173781fc49aSChristoph Hellwig 	if (!(lo->lo_backing_file->f_mode & FMODE_CAN_ODIRECT))
174781fc49aSChristoph Hellwig 		return false;
175f4774e92SChristoph Hellwig 	if (queue_logical_block_size(lo->lo_queue) < lo->lo_min_dio_size)
176f4774e92SChristoph Hellwig 		return false;
177f4774e92SChristoph Hellwig 	if (lo->lo_offset & (lo->lo_min_dio_size - 1))
178f4774e92SChristoph Hellwig 		return false;
179781fc49aSChristoph Hellwig 	return true;
180781fc49aSChristoph Hellwig }
1812e5ab5f3SMing Lei 
182afd69d5cSChristoph Hellwig /*
183afd69d5cSChristoph Hellwig  * Direct I/O can be enabled either by using an O_DIRECT file descriptor, or by
184afd69d5cSChristoph Hellwig  * passing in the LO_FLAGS_DIRECT_IO flag from userspace.  It will be silently
185afd69d5cSChristoph Hellwig  * disabled when the device block size is too small or the offset is unaligned.
186afd69d5cSChristoph Hellwig  *
187afd69d5cSChristoph Hellwig  * loop_get_status will always report the effective LO_FLAGS_DIRECT_IO flag and
188afd69d5cSChristoph Hellwig  * not the originally passed in one.
189afd69d5cSChristoph Hellwig  */
loop_update_dio(struct loop_device * lo)1903a693110SChristoph Hellwig static inline void loop_update_dio(struct loop_device *lo)
191781fc49aSChristoph Hellwig {
1920cd719aaSChristoph Hellwig 	lockdep_assert_held(&lo->lo_mutex);
1930cd719aaSChristoph Hellwig 	WARN_ON_ONCE(lo->lo_state == Lo_bound &&
1940cd719aaSChristoph Hellwig 		     lo->lo_queue->mq_freeze_depth == 0);
1950cd719aaSChristoph Hellwig 
196afd69d5cSChristoph Hellwig 	if ((lo->lo_flags & LO_FLAGS_DIRECT_IO) && !lo_can_use_dio(lo))
1972e5ab5f3SMing Lei 		lo->lo_flags &= ~LO_FLAGS_DIRECT_IO;
1982e5ab5f3SMing Lei }
1992e5ab5f3SMing Lei 
2005795b6f5SMartijn Coenen /**
2015795b6f5SMartijn Coenen  * loop_set_size() - sets device size and notifies userspace
2025795b6f5SMartijn Coenen  * @lo: struct loop_device to set the size for
2035795b6f5SMartijn Coenen  * @size: new size of the loop device
2045795b6f5SMartijn Coenen  *
2055795b6f5SMartijn Coenen  * Callers must validate that the size passed into this function fits into
2065795b6f5SMartijn Coenen  * a sector_t, eg using loop_validate_size()
2075795b6f5SMartijn Coenen  */
loop_set_size(struct loop_device * lo,loff_t size)2085795b6f5SMartijn Coenen static void loop_set_size(struct loop_device *lo, loff_t size)
2095795b6f5SMartijn Coenen {
210449f4ec9SChristoph Hellwig 	if (!set_capacity_and_notify(lo->lo_disk, size))
2113b4f85d0SChristoph Hellwig 		kobject_uevent(&disk_to_dev(lo->lo_disk)->kobj, KOBJ_CHANGE);
2121da177e4SLinus Torvalds }
2131da177e4SLinus Torvalds 
loop_clear_limits(struct loop_device * lo,int mode)2145f75e081SCyril Hrubis static void loop_clear_limits(struct loop_device *lo, int mode)
2155f75e081SCyril Hrubis {
2165f75e081SCyril Hrubis 	struct queue_limits lim = queue_limits_start_update(lo->lo_queue);
2175f75e081SCyril Hrubis 
2185f75e081SCyril Hrubis 	if (mode & FALLOC_FL_ZERO_RANGE)
2195f75e081SCyril Hrubis 		lim.max_write_zeroes_sectors = 0;
2205f75e081SCyril Hrubis 
2215f75e081SCyril Hrubis 	if (mode & FALLOC_FL_PUNCH_HOLE) {
2225f75e081SCyril Hrubis 		lim.max_hw_discard_sectors = 0;
2235f75e081SCyril Hrubis 		lim.discard_granularity = 0;
2245f75e081SCyril Hrubis 	}
2255f75e081SCyril Hrubis 
226b03732a9SChristoph Hellwig 	/*
227b03732a9SChristoph Hellwig 	 * XXX: this updates the queue limits without freezing the queue, which
228b03732a9SChristoph Hellwig 	 * is against the locking protocol and dangerous.  But we can't just
229b03732a9SChristoph Hellwig 	 * freeze the queue as we're inside the ->queue_rq method here.  So this
230b03732a9SChristoph Hellwig 	 * should move out into a workqueue unless we get the file operations to
231b03732a9SChristoph Hellwig 	 * advertise if they support specific fallocate operations.
232b03732a9SChristoph Hellwig 	 */
2335f75e081SCyril Hrubis 	queue_limits_commit_update(lo->lo_queue, &lim);
2345f75e081SCyril Hrubis }
2355f75e081SCyril Hrubis 
lo_fallocate(struct loop_device * lo,struct request * rq,loff_t pos,int mode)236efcfec57SDarrick J. Wong static int lo_fallocate(struct loop_device *lo, struct request *rq, loff_t pos,
237efcfec57SDarrick J. Wong 			int mode)
238cf655d95SMing Lei {
239cf655d95SMing Lei 	/*
240efcfec57SDarrick J. Wong 	 * We use fallocate to manipulate the space mappings used by the image
24147e96246SChristoph Hellwig 	 * a.k.a. discard/zerorange.
242cf655d95SMing Lei 	 */
243cf655d95SMing Lei 	struct file *file = lo->lo_backing_file;
244cf655d95SMing Lei 	int ret;
245cf655d95SMing Lei 
246efcfec57SDarrick J. Wong 	mode |= FALLOC_FL_KEEP_SIZE;
247efcfec57SDarrick J. Wong 
24870200574SChristoph Hellwig 	if (!bdev_max_discard_sectors(lo->lo_device))
24970200574SChristoph Hellwig 		return -EOPNOTSUPP;
250cf655d95SMing Lei 
251cf655d95SMing Lei 	ret = file->f_op->fallocate(file, mode, pos, blk_rq_bytes(rq));
252cf655d95SMing Lei 	if (unlikely(ret && ret != -EINVAL && ret != -EOPNOTSUPP))
25370200574SChristoph Hellwig 		return -EIO;
2545f75e081SCyril Hrubis 
2555f75e081SCyril Hrubis 	/*
2565f75e081SCyril Hrubis 	 * We initially configure the limits in a hope that fallocate is
2575f75e081SCyril Hrubis 	 * supported and clear them here if that turns out not to be true.
2585f75e081SCyril Hrubis 	 */
2595f75e081SCyril Hrubis 	if (unlikely(ret == -EOPNOTSUPP))
2605f75e081SCyril Hrubis 		loop_clear_limits(lo, mode);
2615f75e081SCyril Hrubis 
262cf655d95SMing Lei 	return ret;
263cf655d95SMing Lei }
264cf655d95SMing Lei 
lo_req_flush(struct loop_device * lo,struct request * rq)265cf655d95SMing Lei static int lo_req_flush(struct loop_device *lo, struct request *rq)
266cf655d95SMing Lei {
2679c64e38cSChaitanya Kulkarni 	int ret = vfs_fsync(lo->lo_backing_file, 0);
268cf655d95SMing Lei 	if (unlikely(ret && ret != -EINVAL))
269cf655d95SMing Lei 		ret = -EIO;
270cf655d95SMing Lei 
271cf655d95SMing Lei 	return ret;
272cf655d95SMing Lei }
273cf655d95SMing Lei 
lo_complete_rq(struct request * rq)274fe2cb290SChristoph Hellwig static void lo_complete_rq(struct request *rq)
275bc07c10aSMing Lei {
276fe2cb290SChristoph Hellwig 	struct loop_cmd *cmd = blk_mq_rq_to_pdu(rq);
277f9de14bcSJens Axboe 	blk_status_t ret = BLK_STS_OK;
278bc07c10aSMing Lei 
279f2fed441SChristoph Hellwig 	if (cmd->ret < 0 || cmd->ret == blk_rq_bytes(rq) ||
280f9de14bcSJens Axboe 	    req_op(rq) != REQ_OP_READ) {
281f9de14bcSJens Axboe 		if (cmd->ret < 0)
2828cd55087SEvan Green 			ret = errno_to_blk_status(cmd->ret);
283f9de14bcSJens Axboe 		goto end_io;
284bc07c10aSMing Lei 	}
285fe2cb290SChristoph Hellwig 
286f9de14bcSJens Axboe 	/*
287f9de14bcSJens Axboe 	 * Short READ - if we got some data, advance our request and
288f9de14bcSJens Axboe 	 * retry it. If we got no data, end the rest with EIO.
289f9de14bcSJens Axboe 	 */
290f9de14bcSJens Axboe 	if (cmd->ret) {
291f9de14bcSJens Axboe 		blk_update_request(rq, BLK_STS_OK, cmd->ret);
292f9de14bcSJens Axboe 		cmd->ret = 0;
293f9de14bcSJens Axboe 		blk_mq_requeue_request(rq, true);
294f9de14bcSJens Axboe 	} else {
295f9de14bcSJens Axboe 		struct bio *bio = rq->bio;
296f9de14bcSJens Axboe 
297f9de14bcSJens Axboe 		while (bio) {
298f9de14bcSJens Axboe 			zero_fill_bio(bio);
299f9de14bcSJens Axboe 			bio = bio->bi_next;
300f9de14bcSJens Axboe 		}
301f2fed441SChristoph Hellwig 
302f9de14bcSJens Axboe 		ret = BLK_STS_IOERR;
303f9de14bcSJens Axboe end_io:
304f9de14bcSJens Axboe 		blk_mq_end_request(rq, ret);
305f9de14bcSJens Axboe 	}
306bc07c10aSMing Lei }
307bc07c10aSMing Lei 
lo_rw_aio_do_completion(struct loop_cmd * cmd)30892d77332SShaohua Li static void lo_rw_aio_do_completion(struct loop_cmd *cmd)
30992d77332SShaohua Li {
3101894e916SJens Axboe 	struct request *rq = blk_mq_rq_from_pdu(cmd);
3111894e916SJens Axboe 
31292d77332SShaohua Li 	if (!atomic_dec_and_test(&cmd->ref))
31392d77332SShaohua Li 		return;
31492d77332SShaohua Li 	kfree(cmd->bvec);
31592d77332SShaohua Li 	cmd->bvec = NULL;
31615f73f5bSChristoph Hellwig 	if (likely(!blk_should_fake_timeout(rq->q)))
3171894e916SJens Axboe 		blk_mq_complete_request(rq);
31892d77332SShaohua Li }
31992d77332SShaohua Li 
lo_rw_aio_complete(struct kiocb * iocb,long ret)3206b19b766SJens Axboe static void lo_rw_aio_complete(struct kiocb *iocb, long ret)
321bc07c10aSMing Lei {
322bc07c10aSMing Lei 	struct loop_cmd *cmd = container_of(iocb, struct loop_cmd, iocb);
323bc07c10aSMing Lei 
324fe2cb290SChristoph Hellwig 	cmd->ret = ret;
32592d77332SShaohua Li 	lo_rw_aio_do_completion(cmd);
326bc07c10aSMing Lei }
327bc07c10aSMing Lei 
lo_rw_aio(struct loop_device * lo,struct loop_cmd * cmd,loff_t pos,int rw)328bc07c10aSMing Lei static int lo_rw_aio(struct loop_device *lo, struct loop_cmd *cmd,
329de4eda9dSAl Viro 		     loff_t pos, int rw)
330bc07c10aSMing Lei {
331bc07c10aSMing Lei 	struct iov_iter iter;
33286af5952SMing Lei 	struct req_iterator rq_iter;
333bc07c10aSMing Lei 	struct bio_vec *bvec;
3341894e916SJens Axboe 	struct request *rq = blk_mq_rq_from_pdu(cmd);
33540326d8aSShaohua Li 	struct bio *bio = rq->bio;
336bc07c10aSMing Lei 	struct file *file = lo->lo_backing_file;
33786af5952SMing Lei 	struct bio_vec tmp;
33840326d8aSShaohua Li 	unsigned int offset;
33986af5952SMing Lei 	int nr_bvec = 0;
340bc07c10aSMing Lei 	int ret;
341bc07c10aSMing Lei 
34286af5952SMing Lei 	rq_for_each_bvec(tmp, rq, rq_iter)
34386af5952SMing Lei 		nr_bvec++;
344bc07c10aSMing Lei 
34586af5952SMing Lei 	if (rq->bio != rq->biotail) {
34686af5952SMing Lei 
34786af5952SMing Lei 		bvec = kmalloc_array(nr_bvec, sizeof(struct bio_vec),
3486da2ec56SKees Cook 				     GFP_NOIO);
34940326d8aSShaohua Li 		if (!bvec)
35040326d8aSShaohua Li 			return -EIO;
35140326d8aSShaohua Li 		cmd->bvec = bvec;
35240326d8aSShaohua Li 
353a7297a6aSMing Lei 		/*
35440326d8aSShaohua Li 		 * The bios of the request may be started from the middle of
35540326d8aSShaohua Li 		 * the 'bvec' because of bio splitting, so we can't directly
35686af5952SMing Lei 		 * copy bio->bi_iov_vec to new bvec. The rq_for_each_bvec
35740326d8aSShaohua Li 		 * API will take care of all details for us.
358a7297a6aSMing Lei 		 */
35986af5952SMing Lei 		rq_for_each_bvec(tmp, rq, rq_iter) {
36040326d8aSShaohua Li 			*bvec = tmp;
36140326d8aSShaohua Li 			bvec++;
36240326d8aSShaohua Li 		}
36340326d8aSShaohua Li 		bvec = cmd->bvec;
36440326d8aSShaohua Li 		offset = 0;
36540326d8aSShaohua Li 	} else {
36640326d8aSShaohua Li 		/*
36740326d8aSShaohua Li 		 * Same here, this bio may be started from the middle of the
36840326d8aSShaohua Li 		 * 'bvec' because of bio splitting, so offset from the bvec
36940326d8aSShaohua Li 		 * must be passed to iov iterator
37040326d8aSShaohua Li 		 */
37140326d8aSShaohua Li 		offset = bio->bi_iter.bi_bvec_done;
37240326d8aSShaohua Li 		bvec = __bvec_iter_bvec(bio->bi_io_vec, bio->bi_iter);
37340326d8aSShaohua Li 	}
37492d77332SShaohua Li 	atomic_set(&cmd->ref, 2);
37540326d8aSShaohua Li 
376b6207430SChristoph Hellwig 	iov_iter_bvec(&iter, rw, bvec, nr_bvec, blk_rq_bytes(rq));
37740326d8aSShaohua Li 	iter.iov_offset = offset;
378bc07c10aSMing Lei 
379bc07c10aSMing Lei 	cmd->iocb.ki_pos = pos;
380bc07c10aSMing Lei 	cmd->iocb.ki_filp = file;
381f2fed441SChristoph Hellwig 	cmd->iocb.ki_ioprio = req_get_ioprio(rq);
382f2fed441SChristoph Hellwig 	if (cmd->use_aio) {
383bc07c10aSMing Lei 		cmd->iocb.ki_complete = lo_rw_aio_complete;
384bc07c10aSMing Lei 		cmd->iocb.ki_flags = IOCB_DIRECT;
385f2fed441SChristoph Hellwig 	} else {
386f2fed441SChristoph Hellwig 		cmd->iocb.ki_complete = NULL;
387f2fed441SChristoph Hellwig 		cmd->iocb.ki_flags = 0;
388f2fed441SChristoph Hellwig 	}
389bc07c10aSMing Lei 
390de4eda9dSAl Viro 	if (rw == ITER_SOURCE)
3917c98f7cbSMiklos Szeredi 		ret = file->f_op->write_iter(&cmd->iocb, &iter);
392bc07c10aSMing Lei 	else
3937c98f7cbSMiklos Szeredi 		ret = file->f_op->read_iter(&cmd->iocb, &iter);
394bc07c10aSMing Lei 
39592d77332SShaohua Li 	lo_rw_aio_do_completion(cmd);
39692d77332SShaohua Li 
397bc07c10aSMing Lei 	if (ret != -EIOCBQUEUED)
3986b19b766SJens Axboe 		lo_rw_aio_complete(&cmd->iocb, ret);
399f2fed441SChristoph Hellwig 	return -EIOCBQUEUED;
400bc07c10aSMing Lei }
401bc07c10aSMing Lei 
do_req_filebacked(struct loop_device * lo,struct request * rq)402c1c87c2bSChristoph Hellwig static int do_req_filebacked(struct loop_device *lo, struct request *rq)
403bc07c10aSMing Lei {
404bc07c10aSMing Lei 	struct loop_cmd *cmd = blk_mq_rq_to_pdu(rq);
405c1c87c2bSChristoph Hellwig 	loff_t pos = ((loff_t) blk_rq_pos(rq) << 9) + lo->lo_offset;
406bc07c10aSMing Lei 
407c1c87c2bSChristoph Hellwig 	switch (req_op(rq)) {
408c1c87c2bSChristoph Hellwig 	case REQ_OP_FLUSH:
409c1c87c2bSChristoph Hellwig 		return lo_req_flush(lo, rq);
41019372e27SChristoph Hellwig 	case REQ_OP_WRITE_ZEROES:
411efcfec57SDarrick J. Wong 		/*
412efcfec57SDarrick J. Wong 		 * If the caller doesn't want deallocation, call zeroout to
413efcfec57SDarrick J. Wong 		 * write zeroes the range.  Otherwise, punch them out.
414efcfec57SDarrick J. Wong 		 */
415efcfec57SDarrick J. Wong 		return lo_fallocate(lo, rq, pos,
416efcfec57SDarrick J. Wong 			(rq->cmd_flags & REQ_NOUNMAP) ?
417efcfec57SDarrick J. Wong 				FALLOC_FL_ZERO_RANGE :
418efcfec57SDarrick J. Wong 				FALLOC_FL_PUNCH_HOLE);
419efcfec57SDarrick J. Wong 	case REQ_OP_DISCARD:
420efcfec57SDarrick J. Wong 		return lo_fallocate(lo, rq, pos, FALLOC_FL_PUNCH_HOLE);
421c1c87c2bSChristoph Hellwig 	case REQ_OP_WRITE:
422de4eda9dSAl Viro 		return lo_rw_aio(lo, cmd, pos, ITER_SOURCE);
423c1c87c2bSChristoph Hellwig 	case REQ_OP_READ:
424de4eda9dSAl Viro 		return lo_rw_aio(lo, cmd, pos, ITER_DEST);
425c1c87c2bSChristoph Hellwig 	default:
426c1c87c2bSChristoph Hellwig 		WARN_ON_ONCE(1);
427c1c87c2bSChristoph Hellwig 		return -EIO;
428bc07c10aSMing Lei 	}
4291da177e4SLinus Torvalds }
4301da177e4SLinus Torvalds 
loop_reread_partitions(struct loop_device * lo)4310384264eSChristoph Hellwig static void loop_reread_partitions(struct loop_device *lo)
43206f0e9e6SMing Lei {
43306f0e9e6SMing Lei 	int rc;
43406f0e9e6SMing Lei 
4350384264eSChristoph Hellwig 	mutex_lock(&lo->lo_disk->open_mutex);
4360384264eSChristoph Hellwig 	rc = bdev_disk_changed(lo->lo_disk, false);
4370384264eSChristoph Hellwig 	mutex_unlock(&lo->lo_disk->open_mutex);
43806f0e9e6SMing Lei 	if (rc)
43906f0e9e6SMing Lei 		pr_warn("%s: partition scan of loop%d (%s) failed (rc=%d)\n",
44006f0e9e6SMing Lei 			__func__, lo->lo_number, lo->lo_file_name, rc);
44106f0e9e6SMing Lei }
44206f0e9e6SMing Lei 
loop_query_min_dio_size(struct loop_device * lo)443f4774e92SChristoph Hellwig static unsigned int loop_query_min_dio_size(struct loop_device *lo)
444f4774e92SChristoph Hellwig {
445f4774e92SChristoph Hellwig 	struct file *file = lo->lo_backing_file;
446f4774e92SChristoph Hellwig 	struct block_device *sb_bdev = file->f_mapping->host->i_sb->s_bdev;
447f4774e92SChristoph Hellwig 	struct kstat st;
448f4774e92SChristoph Hellwig 
449f4774e92SChristoph Hellwig 	/*
450f4774e92SChristoph Hellwig 	 * Use the minimal dio alignment of the file system if provided.
451f4774e92SChristoph Hellwig 	 */
452f4774e92SChristoph Hellwig 	if (!vfs_getattr(&file->f_path, &st, STATX_DIOALIGN, 0) &&
453f4774e92SChristoph Hellwig 	    (st.result_mask & STATX_DIOALIGN))
454f4774e92SChristoph Hellwig 		return st.dio_offset_align;
455f4774e92SChristoph Hellwig 
456f4774e92SChristoph Hellwig 	/*
457f4774e92SChristoph Hellwig 	 * In a perfect world this wouldn't be needed, but as of Linux 6.13 only
458f4774e92SChristoph Hellwig 	 * a handful of file systems support the STATX_DIOALIGN flag.
459f4774e92SChristoph Hellwig 	 */
460f4774e92SChristoph Hellwig 	if (sb_bdev)
461f4774e92SChristoph Hellwig 		return bdev_logical_block_size(sb_bdev);
462f4774e92SChristoph Hellwig 	return SECTOR_SIZE;
463f4774e92SChristoph Hellwig }
464f4774e92SChristoph Hellwig 
is_loop_device(struct file * file)465d2ac838eSTheodore Ts'o static inline int is_loop_device(struct file *file)
466d2ac838eSTheodore Ts'o {
467d2ac838eSTheodore Ts'o 	struct inode *i = file->f_mapping->host;
468d2ac838eSTheodore Ts'o 
4696f24784fSAl Viro 	return i && S_ISBLK(i->i_mode) && imajor(i) == LOOP_MAJOR;
470d2ac838eSTheodore Ts'o }
471d2ac838eSTheodore Ts'o 
loop_validate_file(struct file * file,struct block_device * bdev)472d2ac838eSTheodore Ts'o static int loop_validate_file(struct file *file, struct block_device *bdev)
473d2ac838eSTheodore Ts'o {
474d2ac838eSTheodore Ts'o 	struct inode	*inode = file->f_mapping->host;
475d2ac838eSTheodore Ts'o 	struct file	*f = file;
476d2ac838eSTheodore Ts'o 
477d2ac838eSTheodore Ts'o 	/* Avoid recursion */
478d2ac838eSTheodore Ts'o 	while (is_loop_device(f)) {
479d2ac838eSTheodore Ts'o 		struct loop_device *l;
480d2ac838eSTheodore Ts'o 
4813ce6e1f6STetsuo Handa 		lockdep_assert_held(&loop_validate_mutex);
4824e7b5671SChristoph Hellwig 		if (f->f_mapping->host->i_rdev == bdev->bd_dev)
483d2ac838eSTheodore Ts'o 			return -EBADF;
484d2ac838eSTheodore Ts'o 
4854e7b5671SChristoph Hellwig 		l = I_BDEV(f->f_mapping->host)->bd_disk->private_data;
4863ce6e1f6STetsuo Handa 		if (l->lo_state != Lo_bound)
487d2ac838eSTheodore Ts'o 			return -EINVAL;
4883ce6e1f6STetsuo Handa 		/* Order wrt setting lo->lo_backing_file in loop_configure(). */
4893ce6e1f6STetsuo Handa 		rmb();
490d2ac838eSTheodore Ts'o 		f = l->lo_backing_file;
491d2ac838eSTheodore Ts'o 	}
492d2ac838eSTheodore Ts'o 	if (!S_ISREG(inode->i_mode) && !S_ISBLK(inode->i_mode))
493d2ac838eSTheodore Ts'o 		return -EINVAL;
494d2ac838eSTheodore Ts'o 	return 0;
495d2ac838eSTheodore Ts'o }
496d2ac838eSTheodore Ts'o 
loop_assign_backing_file(struct loop_device * lo,struct file * file)497d2781648SChristoph Hellwig static void loop_assign_backing_file(struct loop_device *lo, struct file *file)
498d2781648SChristoph Hellwig {
499d2781648SChristoph Hellwig 	lo->lo_backing_file = file;
500d2781648SChristoph Hellwig 	lo->old_gfp_mask = mapping_gfp_mask(file->f_mapping);
501d2781648SChristoph Hellwig 	mapping_set_gfp_mask(file->f_mapping,
502d2781648SChristoph Hellwig 			lo->old_gfp_mask & ~(__GFP_IO | __GFP_FS));
503984c2ab4SChristoph Hellwig 	if (lo->lo_backing_file->f_flags & O_DIRECT)
504984c2ab4SChristoph Hellwig 		lo->lo_flags |= LO_FLAGS_DIRECT_IO;
505f4774e92SChristoph Hellwig 	lo->lo_min_dio_size = loop_query_min_dio_size(lo);
506d2781648SChristoph Hellwig }
507d2781648SChristoph Hellwig 
loop_check_backing_file(struct file * file)508*f5c84effSLizhi Xu static int loop_check_backing_file(struct file *file)
509*f5c84effSLizhi Xu {
510*f5c84effSLizhi Xu 	if (!file->f_op->read_iter)
511*f5c84effSLizhi Xu 		return -EINVAL;
512*f5c84effSLizhi Xu 
513*f5c84effSLizhi Xu 	if ((file->f_mode & FMODE_WRITE) && !file->f_op->write_iter)
514*f5c84effSLizhi Xu 		return -EINVAL;
515*f5c84effSLizhi Xu 
516*f5c84effSLizhi Xu 	return 0;
517*f5c84effSLizhi Xu }
518*f5c84effSLizhi Xu 
5191da177e4SLinus Torvalds /*
5201da177e4SLinus Torvalds  * loop_change_fd switched the backing store of a loopback device to
5211da177e4SLinus Torvalds  * a new file. This is useful for operating system installers to free up
5221da177e4SLinus Torvalds  * the original file and in High Availability environments to switch to
5231da177e4SLinus Torvalds  * an alternative location for the content in case of server meltdown.
5241da177e4SLinus Torvalds  * This can only work if the loop device is used read-only, and if the
5251da177e4SLinus Torvalds  * new backing store is the same size and type as the old backing store.
5261da177e4SLinus Torvalds  */
loop_change_fd(struct loop_device * lo,struct block_device * bdev,unsigned int arg)527bb214884SAl Viro static int loop_change_fd(struct loop_device *lo, struct block_device *bdev,
528bb214884SAl Viro 			  unsigned int arg)
5291da177e4SLinus Torvalds {
5303ce6e1f6STetsuo Handa 	struct file *file = fget(arg);
5313ce6e1f6STetsuo Handa 	struct file *old_file;
5321e1a9cecSChristoph Hellwig 	unsigned int memflags;
5331da177e4SLinus Torvalds 	int error;
53485b0a54aSJan Kara 	bool partscan;
5353ce6e1f6STetsuo Handa 	bool is_loop;
5361da177e4SLinus Torvalds 
5373ce6e1f6STetsuo Handa 	if (!file)
5383ce6e1f6STetsuo Handa 		return -EBADF;
539498ef5c7SChristoph Hellwig 
540*f5c84effSLizhi Xu 	error = loop_check_backing_file(file);
541*f5c84effSLizhi Xu 	if (error)
542*f5c84effSLizhi Xu 		return error;
543*f5c84effSLizhi Xu 
544498ef5c7SChristoph Hellwig 	/* suppress uevents while reconfiguring the device */
545498ef5c7SChristoph Hellwig 	dev_set_uevent_suppress(disk_to_dev(lo->lo_disk), 1);
546498ef5c7SChristoph Hellwig 
5473ce6e1f6STetsuo Handa 	is_loop = is_loop_device(file);
5483ce6e1f6STetsuo Handa 	error = loop_global_lock_killable(lo, is_loop);
549c3710770SJan Kara 	if (error)
5503ce6e1f6STetsuo Handa 		goto out_putf;
5511da177e4SLinus Torvalds 	error = -ENXIO;
5521da177e4SLinus Torvalds 	if (lo->lo_state != Lo_bound)
5531dded9acSJan Kara 		goto out_err;
5541da177e4SLinus Torvalds 
5551da177e4SLinus Torvalds 	/* the loop device has to be read-only */
5561da177e4SLinus Torvalds 	error = -EINVAL;
5571da177e4SLinus Torvalds 	if (!(lo->lo_flags & LO_FLAGS_READ_ONLY))
5581dded9acSJan Kara 		goto out_err;
5591da177e4SLinus Torvalds 
560d2ac838eSTheodore Ts'o 	error = loop_validate_file(file, bdev);
561d2ac838eSTheodore Ts'o 	if (error)
5621dded9acSJan Kara 		goto out_err;
563d2ac838eSTheodore Ts'o 
5641da177e4SLinus Torvalds 	old_file = lo->lo_backing_file;
5651da177e4SLinus Torvalds 
5661da177e4SLinus Torvalds 	error = -EINVAL;
5671da177e4SLinus Torvalds 
5681da177e4SLinus Torvalds 	/* size of the new backing store needs to be the same */
5691da177e4SLinus Torvalds 	if (get_loop_size(lo, file) != get_loop_size(lo, old_file))
5701dded9acSJan Kara 		goto out_err;
5711da177e4SLinus Torvalds 
57286947bdcSMing Lei 	/*
57386947bdcSMing Lei 	 * We might switch to direct I/O mode for the loop device, write back
57486947bdcSMing Lei 	 * all dirty data the page cache now that so that the individual I/O
57586947bdcSMing Lei 	 * operations don't have to do that.
57686947bdcSMing Lei 	 */
57786947bdcSMing Lei 	vfs_fsync(file, 0);
57886947bdcSMing Lei 
5791da177e4SLinus Torvalds 	/* and ... switch */
580ab6860f6SChristoph Hellwig 	disk_force_media_change(lo->lo_disk);
5811e1a9cecSChristoph Hellwig 	memflags = blk_mq_freeze_queue(lo->lo_queue);
58243cade80SOmar Sandoval 	mapping_set_gfp_mask(old_file->f_mapping, lo->old_gfp_mask);
583d2781648SChristoph Hellwig 	loop_assign_backing_file(lo, file);
58443cade80SOmar Sandoval 	loop_update_dio(lo);
5851e1a9cecSChristoph Hellwig 	blk_mq_unfreeze_queue(lo->lo_queue, memflags);
58685b0a54aSJan Kara 	partscan = lo->lo_flags & LO_FLAGS_PARTSCAN;
5873ce6e1f6STetsuo Handa 	loop_global_unlock(lo, is_loop);
5883ce6e1f6STetsuo Handa 
5893ce6e1f6STetsuo Handa 	/*
5903ce6e1f6STetsuo Handa 	 * Flush loop_validate_file() before fput(), for l->lo_backing_file
5913ce6e1f6STetsuo Handa 	 * might be pointing at old_file which might be the last reference.
5923ce6e1f6STetsuo Handa 	 */
5933ce6e1f6STetsuo Handa 	if (!is_loop) {
5943ce6e1f6STetsuo Handa 		mutex_lock(&loop_validate_mutex);
5953ce6e1f6STetsuo Handa 		mutex_unlock(&loop_validate_mutex);
5963ce6e1f6STetsuo Handa 	}
5971dded9acSJan Kara 	/*
5986cc8e743SPavel Tatashin 	 * We must drop file reference outside of lo_mutex as dropping
599a8698707SChristoph Hellwig 	 * the file ref can take open_mutex which creates circular locking
6001dded9acSJan Kara 	 * dependency.
6011dded9acSJan Kara 	 */
6021dded9acSJan Kara 	fput(old_file);
6030dba7a05SThomas Weißschuh 	dev_set_uevent_suppress(disk_to_dev(lo->lo_disk), 0);
60485b0a54aSJan Kara 	if (partscan)
6050384264eSChristoph Hellwig 		loop_reread_partitions(lo);
606498ef5c7SChristoph Hellwig 
607498ef5c7SChristoph Hellwig 	error = 0;
608498ef5c7SChristoph Hellwig done:
609e7bc0010SThomas Weißschuh 	kobject_uevent(&disk_to_dev(lo->lo_disk)->kobj, KOBJ_CHANGE);
610498ef5c7SChristoph Hellwig 	return error;
6111da177e4SLinus Torvalds 
6121dded9acSJan Kara out_err:
6133ce6e1f6STetsuo Handa 	loop_global_unlock(lo, is_loop);
6143ce6e1f6STetsuo Handa out_putf:
6151dded9acSJan Kara 	fput(file);
6160dba7a05SThomas Weißschuh 	dev_set_uevent_suppress(disk_to_dev(lo->lo_disk), 0);
617498ef5c7SChristoph Hellwig 	goto done;
6181da177e4SLinus Torvalds }
6191da177e4SLinus Torvalds 
620ee862730SMilan Broz /* loop sysfs attributes */
621ee862730SMilan Broz 
loop_attr_show(struct device * dev,char * page,ssize_t (* callback)(struct loop_device *,char *))622ee862730SMilan Broz static ssize_t loop_attr_show(struct device *dev, char *page,
623ee862730SMilan Broz 			      ssize_t (*callback)(struct loop_device *, char *))
624ee862730SMilan Broz {
62534dd82afSKay Sievers 	struct gendisk *disk = dev_to_disk(dev);
62634dd82afSKay Sievers 	struct loop_device *lo = disk->private_data;
627ee862730SMilan Broz 
62834dd82afSKay Sievers 	return callback(lo, page);
629ee862730SMilan Broz }
630ee862730SMilan Broz 
631ee862730SMilan Broz #define LOOP_ATTR_RO(_name)						\
632ee862730SMilan Broz static ssize_t loop_attr_##_name##_show(struct loop_device *, char *);	\
633ee862730SMilan Broz static ssize_t loop_attr_do_show_##_name(struct device *d,		\
634ee862730SMilan Broz 				struct device_attribute *attr, char *b)	\
635ee862730SMilan Broz {									\
636ee862730SMilan Broz 	return loop_attr_show(d, b, loop_attr_##_name##_show);		\
637ee862730SMilan Broz }									\
638ee862730SMilan Broz static struct device_attribute loop_attr_##_name =			\
6395657a819SJoe Perches 	__ATTR(_name, 0444, loop_attr_do_show_##_name, NULL);
640ee862730SMilan Broz 
loop_attr_backing_file_show(struct loop_device * lo,char * buf)641ee862730SMilan Broz static ssize_t loop_attr_backing_file_show(struct loop_device *lo, char *buf)
642ee862730SMilan Broz {
643ee862730SMilan Broz 	ssize_t ret;
644ee862730SMilan Broz 	char *p = NULL;
645ee862730SMilan Broz 
64605eb0f25SKay Sievers 	spin_lock_irq(&lo->lo_lock);
647ee862730SMilan Broz 	if (lo->lo_backing_file)
6489bf39ab2SMiklos Szeredi 		p = file_path(lo->lo_backing_file, buf, PAGE_SIZE - 1);
64905eb0f25SKay Sievers 	spin_unlock_irq(&lo->lo_lock);
650ee862730SMilan Broz 
651ee862730SMilan Broz 	if (IS_ERR_OR_NULL(p))
652ee862730SMilan Broz 		ret = PTR_ERR(p);
653ee862730SMilan Broz 	else {
654ee862730SMilan Broz 		ret = strlen(p);
655ee862730SMilan Broz 		memmove(buf, p, ret);
656ee862730SMilan Broz 		buf[ret++] = '\n';
657ee862730SMilan Broz 		buf[ret] = 0;
658ee862730SMilan Broz 	}
659ee862730SMilan Broz 
660ee862730SMilan Broz 	return ret;
661ee862730SMilan Broz }
662ee862730SMilan Broz 
loop_attr_offset_show(struct loop_device * lo,char * buf)663ee862730SMilan Broz static ssize_t loop_attr_offset_show(struct loop_device *lo, char *buf)
664ee862730SMilan Broz {
665b27824d3SChaitanya Kulkarni 	return sysfs_emit(buf, "%llu\n", (unsigned long long)lo->lo_offset);
666ee862730SMilan Broz }
667ee862730SMilan Broz 
loop_attr_sizelimit_show(struct loop_device * lo,char * buf)668ee862730SMilan Broz static ssize_t loop_attr_sizelimit_show(struct loop_device *lo, char *buf)
669ee862730SMilan Broz {
670b27824d3SChaitanya Kulkarni 	return sysfs_emit(buf, "%llu\n", (unsigned long long)lo->lo_sizelimit);
671ee862730SMilan Broz }
672ee862730SMilan Broz 
loop_attr_autoclear_show(struct loop_device * lo,char * buf)673ee862730SMilan Broz static ssize_t loop_attr_autoclear_show(struct loop_device *lo, char *buf)
674ee862730SMilan Broz {
675ee862730SMilan Broz 	int autoclear = (lo->lo_flags & LO_FLAGS_AUTOCLEAR);
676ee862730SMilan Broz 
677b27824d3SChaitanya Kulkarni 	return sysfs_emit(buf, "%s\n", autoclear ? "1" : "0");
678ee862730SMilan Broz }
679ee862730SMilan Broz 
loop_attr_partscan_show(struct loop_device * lo,char * buf)680e03c8dd1SKay Sievers static ssize_t loop_attr_partscan_show(struct loop_device *lo, char *buf)
681e03c8dd1SKay Sievers {
682e03c8dd1SKay Sievers 	int partscan = (lo->lo_flags & LO_FLAGS_PARTSCAN);
683e03c8dd1SKay Sievers 
684b27824d3SChaitanya Kulkarni 	return sysfs_emit(buf, "%s\n", partscan ? "1" : "0");
685e03c8dd1SKay Sievers }
686e03c8dd1SKay Sievers 
loop_attr_dio_show(struct loop_device * lo,char * buf)6872e5ab5f3SMing Lei static ssize_t loop_attr_dio_show(struct loop_device *lo, char *buf)
6882e5ab5f3SMing Lei {
6892e5ab5f3SMing Lei 	int dio = (lo->lo_flags & LO_FLAGS_DIRECT_IO);
6902e5ab5f3SMing Lei 
691b27824d3SChaitanya Kulkarni 	return sysfs_emit(buf, "%s\n", dio ? "1" : "0");
6922e5ab5f3SMing Lei }
6932e5ab5f3SMing Lei 
694ee862730SMilan Broz LOOP_ATTR_RO(backing_file);
695ee862730SMilan Broz LOOP_ATTR_RO(offset);
696ee862730SMilan Broz LOOP_ATTR_RO(sizelimit);
697ee862730SMilan Broz LOOP_ATTR_RO(autoclear);
698e03c8dd1SKay Sievers LOOP_ATTR_RO(partscan);
6992e5ab5f3SMing Lei LOOP_ATTR_RO(dio);
700ee862730SMilan Broz 
701ee862730SMilan Broz static struct attribute *loop_attrs[] = {
702ee862730SMilan Broz 	&loop_attr_backing_file.attr,
703ee862730SMilan Broz 	&loop_attr_offset.attr,
704ee862730SMilan Broz 	&loop_attr_sizelimit.attr,
705ee862730SMilan Broz 	&loop_attr_autoclear.attr,
706e03c8dd1SKay Sievers 	&loop_attr_partscan.attr,
7072e5ab5f3SMing Lei 	&loop_attr_dio.attr,
708ee862730SMilan Broz 	NULL,
709ee862730SMilan Broz };
710ee862730SMilan Broz 
711ee862730SMilan Broz static struct attribute_group loop_attribute_group = {
712ee862730SMilan Broz 	.name = "loop",
713ee862730SMilan Broz 	.attrs= loop_attrs,
714ee862730SMilan Broz };
715ee862730SMilan Broz 
loop_sysfs_init(struct loop_device * lo)716d3349b6bSTetsuo Handa static void loop_sysfs_init(struct loop_device *lo)
717ee862730SMilan Broz {
718d3349b6bSTetsuo Handa 	lo->sysfs_inited = !sysfs_create_group(&disk_to_dev(lo->lo_disk)->kobj,
719ee862730SMilan Broz 						&loop_attribute_group);
720ee862730SMilan Broz }
721ee862730SMilan Broz 
loop_sysfs_exit(struct loop_device * lo)722ee862730SMilan Broz static void loop_sysfs_exit(struct loop_device *lo)
723ee862730SMilan Broz {
724d3349b6bSTetsuo Handa 	if (lo->sysfs_inited)
725ee862730SMilan Broz 		sysfs_remove_group(&disk_to_dev(lo->lo_disk)->kobj,
726ee862730SMilan Broz 				   &loop_attribute_group);
727ee862730SMilan Broz }
728ee862730SMilan Broz 
loop_get_discard_config(struct loop_device * lo,u32 * granularity,u32 * max_discard_sectors)729b4912557SOGAWA Hirofumi static void loop_get_discard_config(struct loop_device *lo,
730b4912557SOGAWA Hirofumi 				    u32 *granularity, u32 *max_discard_sectors)
731dfaa2ef6SLukas Czerner {
732dfaa2ef6SLukas Czerner 	struct file *file = lo->lo_backing_file;
733dfaa2ef6SLukas Czerner 	struct inode *inode = file->f_mapping->host;
73465bdd16fSChristoph Hellwig 	struct kstatfs sbuf;
735dfaa2ef6SLukas Czerner 
736dfaa2ef6SLukas Czerner 	/*
737c52abf56SEvan Green 	 * If the backing device is a block device, mirror its zeroing
738c52abf56SEvan Green 	 * capability. Set the discard sectors to the block device's zeroing
739c52abf56SEvan Green 	 * capabilities because loop discards result in blkdev_issue_zeroout(),
740c52abf56SEvan Green 	 * not blkdev_issue_discard(). This maintains consistent behavior with
741c52abf56SEvan Green 	 * file-backed loop devices: discarded regions read back as zero.
742c52abf56SEvan Green 	 */
74347e96246SChristoph Hellwig 	if (S_ISBLK(inode->i_mode)) {
7448d3fd059SJohn Garry 		struct block_device *bdev = I_BDEV(inode);
745c52abf56SEvan Green 
746b4912557SOGAWA Hirofumi 		*max_discard_sectors = bdev_write_zeroes_sectors(bdev);
747b4912557SOGAWA Hirofumi 		*granularity = bdev_discard_granularity(bdev);
748c52abf56SEvan Green 
749c52abf56SEvan Green 	/*
750dfaa2ef6SLukas Czerner 	 * We use punch hole to reclaim the free space used by the
75147e96246SChristoph Hellwig 	 * image a.k.a. discard.
752dfaa2ef6SLukas Czerner 	 */
75365bdd16fSChristoph Hellwig 	} else if (file->f_op->fallocate && !vfs_statfs(&file->f_path, &sbuf)) {
754b4912557SOGAWA Hirofumi 		*max_discard_sectors = UINT_MAX >> 9;
755b4912557SOGAWA Hirofumi 		*granularity = sbuf.f_bsize;
756c52abf56SEvan Green 	}
757bcb21c8cSMing Lei }
758dfaa2ef6SLukas Czerner 
75987579e9bSDan Schatzberg struct loop_worker {
76087579e9bSDan Schatzberg 	struct rb_node rb_node;
76187579e9bSDan Schatzberg 	struct work_struct work;
76287579e9bSDan Schatzberg 	struct list_head cmd_list;
76387579e9bSDan Schatzberg 	struct list_head idle_list;
76487579e9bSDan Schatzberg 	struct loop_device *lo;
765c74d40e8SDan Schatzberg 	struct cgroup_subsys_state *blkcg_css;
76687579e9bSDan Schatzberg 	unsigned long last_ran_at;
76787579e9bSDan Schatzberg };
768e03a3d7aSMing Lei 
76987579e9bSDan Schatzberg static void loop_workfn(struct work_struct *work);
770b2ee7d46SNeilBrown 
77187579e9bSDan Schatzberg #ifdef CONFIG_BLK_CGROUP
queue_on_root_worker(struct cgroup_subsys_state * css)77287579e9bSDan Schatzberg static inline int queue_on_root_worker(struct cgroup_subsys_state *css)
773e03a3d7aSMing Lei {
77487579e9bSDan Schatzberg 	return !css || css == blkcg_root_css;
77587579e9bSDan Schatzberg }
77687579e9bSDan Schatzberg #else
queue_on_root_worker(struct cgroup_subsys_state * css)77787579e9bSDan Schatzberg static inline int queue_on_root_worker(struct cgroup_subsys_state *css)
77887579e9bSDan Schatzberg {
77987579e9bSDan Schatzberg 	return !css;
78087579e9bSDan Schatzberg }
78187579e9bSDan Schatzberg #endif
78287579e9bSDan Schatzberg 
loop_queue_work(struct loop_device * lo,struct loop_cmd * cmd)78387579e9bSDan Schatzberg static void loop_queue_work(struct loop_device *lo, struct loop_cmd *cmd)
78487579e9bSDan Schatzberg {
785413ec805SColin Ian King 	struct rb_node **node, *parent = NULL;
78687579e9bSDan Schatzberg 	struct loop_worker *cur_worker, *worker = NULL;
78787579e9bSDan Schatzberg 	struct work_struct *work;
78887579e9bSDan Schatzberg 	struct list_head *cmd_list;
78987579e9bSDan Schatzberg 
79087579e9bSDan Schatzberg 	spin_lock_irq(&lo->lo_work_lock);
79187579e9bSDan Schatzberg 
792c74d40e8SDan Schatzberg 	if (queue_on_root_worker(cmd->blkcg_css))
79387579e9bSDan Schatzberg 		goto queue_work;
79487579e9bSDan Schatzberg 
79587579e9bSDan Schatzberg 	node = &lo->worker_tree.rb_node;
79687579e9bSDan Schatzberg 
79787579e9bSDan Schatzberg 	while (*node) {
79887579e9bSDan Schatzberg 		parent = *node;
79987579e9bSDan Schatzberg 		cur_worker = container_of(*node, struct loop_worker, rb_node);
800c74d40e8SDan Schatzberg 		if (cur_worker->blkcg_css == cmd->blkcg_css) {
80187579e9bSDan Schatzberg 			worker = cur_worker;
80287579e9bSDan Schatzberg 			break;
803c74d40e8SDan Schatzberg 		} else if ((long)cur_worker->blkcg_css < (long)cmd->blkcg_css) {
80487579e9bSDan Schatzberg 			node = &(*node)->rb_left;
80587579e9bSDan Schatzberg 		} else {
80687579e9bSDan Schatzberg 			node = &(*node)->rb_right;
80787579e9bSDan Schatzberg 		}
80887579e9bSDan Schatzberg 	}
80987579e9bSDan Schatzberg 	if (worker)
81087579e9bSDan Schatzberg 		goto queue_work;
81187579e9bSDan Schatzberg 
81287579e9bSDan Schatzberg 	worker = kzalloc(sizeof(struct loop_worker), GFP_NOWAIT | __GFP_NOWARN);
81387579e9bSDan Schatzberg 	/*
81487579e9bSDan Schatzberg 	 * In the event we cannot allocate a worker, just queue on the
815c74d40e8SDan Schatzberg 	 * rootcg worker and issue the I/O as the rootcg
81687579e9bSDan Schatzberg 	 */
817c74d40e8SDan Schatzberg 	if (!worker) {
818c74d40e8SDan Schatzberg 		cmd->blkcg_css = NULL;
819c74d40e8SDan Schatzberg 		if (cmd->memcg_css)
820c74d40e8SDan Schatzberg 			css_put(cmd->memcg_css);
821c74d40e8SDan Schatzberg 		cmd->memcg_css = NULL;
82287579e9bSDan Schatzberg 		goto queue_work;
823c74d40e8SDan Schatzberg 	}
82487579e9bSDan Schatzberg 
825c74d40e8SDan Schatzberg 	worker->blkcg_css = cmd->blkcg_css;
826c74d40e8SDan Schatzberg 	css_get(worker->blkcg_css);
82787579e9bSDan Schatzberg 	INIT_WORK(&worker->work, loop_workfn);
82887579e9bSDan Schatzberg 	INIT_LIST_HEAD(&worker->cmd_list);
82987579e9bSDan Schatzberg 	INIT_LIST_HEAD(&worker->idle_list);
83087579e9bSDan Schatzberg 	worker->lo = lo;
83187579e9bSDan Schatzberg 	rb_link_node(&worker->rb_node, parent, node);
83287579e9bSDan Schatzberg 	rb_insert_color(&worker->rb_node, &lo->worker_tree);
83387579e9bSDan Schatzberg queue_work:
83487579e9bSDan Schatzberg 	if (worker) {
83587579e9bSDan Schatzberg 		/*
83687579e9bSDan Schatzberg 		 * We need to remove from the idle list here while
83787579e9bSDan Schatzberg 		 * holding the lock so that the idle timer doesn't
83887579e9bSDan Schatzberg 		 * free the worker
83987579e9bSDan Schatzberg 		 */
84087579e9bSDan Schatzberg 		if (!list_empty(&worker->idle_list))
84187579e9bSDan Schatzberg 			list_del_init(&worker->idle_list);
84287579e9bSDan Schatzberg 		work = &worker->work;
84387579e9bSDan Schatzberg 		cmd_list = &worker->cmd_list;
84487579e9bSDan Schatzberg 	} else {
84587579e9bSDan Schatzberg 		work = &lo->rootcg_work;
84687579e9bSDan Schatzberg 		cmd_list = &lo->rootcg_cmd_list;
84787579e9bSDan Schatzberg 	}
84887579e9bSDan Schatzberg 	list_add_tail(&cmd->list_entry, cmd_list);
8493bee991fSZhaoyang Huang 	queue_work(lo->workqueue, work);
85002b3c61aSZhaoyang Huang 	spin_unlock_irq(&lo->lo_work_lock);
851e03a3d7aSMing Lei }
852e03a3d7aSMing Lei 
loop_set_timer(struct loop_device * lo)8532cf429b5SChristoph Hellwig static void loop_set_timer(struct loop_device *lo)
8542cf429b5SChristoph Hellwig {
8552cf429b5SChristoph Hellwig 	timer_reduce(&lo->timer, jiffies + LOOP_IDLE_WORKER_TIMEOUT);
8562cf429b5SChristoph Hellwig }
8572cf429b5SChristoph Hellwig 
loop_free_idle_workers(struct loop_device * lo,bool delete_all)8582cf429b5SChristoph Hellwig static void loop_free_idle_workers(struct loop_device *lo, bool delete_all)
8592cf429b5SChristoph Hellwig {
8602cf429b5SChristoph Hellwig 	struct loop_worker *pos, *worker;
8612cf429b5SChristoph Hellwig 
8622cf429b5SChristoph Hellwig 	spin_lock_irq(&lo->lo_work_lock);
8632cf429b5SChristoph Hellwig 	list_for_each_entry_safe(worker, pos, &lo->idle_worker_list,
8642cf429b5SChristoph Hellwig 				idle_list) {
8652cf429b5SChristoph Hellwig 		if (!delete_all &&
8662cf429b5SChristoph Hellwig 		    time_is_after_jiffies(worker->last_ran_at +
8672cf429b5SChristoph Hellwig 					  LOOP_IDLE_WORKER_TIMEOUT))
8682cf429b5SChristoph Hellwig 			break;
8692cf429b5SChristoph Hellwig 		list_del(&worker->idle_list);
8702cf429b5SChristoph Hellwig 		rb_erase(&worker->rb_node, &lo->worker_tree);
8712cf429b5SChristoph Hellwig 		css_put(worker->blkcg_css);
8722cf429b5SChristoph Hellwig 		kfree(worker);
8732cf429b5SChristoph Hellwig 	}
8742cf429b5SChristoph Hellwig 	if (!list_empty(&lo->idle_worker_list))
8752cf429b5SChristoph Hellwig 		loop_set_timer(lo);
8762cf429b5SChristoph Hellwig 	spin_unlock_irq(&lo->lo_work_lock);
8772cf429b5SChristoph Hellwig }
8782cf429b5SChristoph Hellwig 
loop_free_idle_workers_timer(struct timer_list * timer)8792cf429b5SChristoph Hellwig static void loop_free_idle_workers_timer(struct timer_list *timer)
8802cf429b5SChristoph Hellwig {
8812cf429b5SChristoph Hellwig 	struct loop_device *lo = container_of(timer, struct loop_device, timer);
8822cf429b5SChristoph Hellwig 
8832cf429b5SChristoph Hellwig 	return loop_free_idle_workers(lo, false);
8842cf429b5SChristoph Hellwig }
8852cf429b5SChristoph Hellwig 
88662ab466cSMartijn Coenen /**
88762ab466cSMartijn Coenen  * loop_set_status_from_info - configure device from loop_info
88862ab466cSMartijn Coenen  * @lo: struct loop_device to configure
88962ab466cSMartijn Coenen  * @info: struct loop_info64 to configure the device with
89062ab466cSMartijn Coenen  *
89162ab466cSMartijn Coenen  * Configures the loop device parameters according to the passed
89262ab466cSMartijn Coenen  * in loop_info64 configuration.
89362ab466cSMartijn Coenen  */
89462ab466cSMartijn Coenen static int
loop_set_status_from_info(struct loop_device * lo,const struct loop_info64 * info)89562ab466cSMartijn Coenen loop_set_status_from_info(struct loop_device *lo,
89662ab466cSMartijn Coenen 			  const struct loop_info64 *info)
89762ab466cSMartijn Coenen {
89862ab466cSMartijn Coenen 	if ((unsigned int) info->lo_encrypt_key_size > LO_KEY_SIZE)
89962ab466cSMartijn Coenen 		return -EINVAL;
90062ab466cSMartijn Coenen 
90147e96246SChristoph Hellwig 	switch (info->lo_encrypt_type) {
90247e96246SChristoph Hellwig 	case LO_CRYPT_NONE:
90347e96246SChristoph Hellwig 		break;
90447e96246SChristoph Hellwig 	case LO_CRYPT_XOR:
90547e96246SChristoph Hellwig 		pr_warn("support for the xor transformation has been removed.\n");
90662ab466cSMartijn Coenen 		return -EINVAL;
90747e96246SChristoph Hellwig 	case LO_CRYPT_CRYPTOAPI:
90847e96246SChristoph Hellwig 		pr_warn("support for cryptoloop has been removed.  Use dm-crypt instead.\n");
90962ab466cSMartijn Coenen 		return -EINVAL;
91047e96246SChristoph Hellwig 	default:
91147e96246SChristoph Hellwig 		return -EINVAL;
91247e96246SChristoph Hellwig 	}
91362ab466cSMartijn Coenen 
9149f6ad5d5SZhong Jinghua 	/* Avoid assigning overflow values */
9159f6ad5d5SZhong Jinghua 	if (info->lo_offset > LLONG_MAX || info->lo_sizelimit > LLONG_MAX)
9169f6ad5d5SZhong Jinghua 		return -EOVERFLOW;
9179f6ad5d5SZhong Jinghua 
91862ab466cSMartijn Coenen 	lo->lo_offset = info->lo_offset;
91962ab466cSMartijn Coenen 	lo->lo_sizelimit = info->lo_sizelimit;
920c490a0b5SSiddh Raman Pant 
92162ab466cSMartijn Coenen 	memcpy(lo->lo_file_name, info->lo_file_name, LO_NAME_SIZE);
92262ab466cSMartijn Coenen 	lo->lo_file_name[LO_NAME_SIZE-1] = 0;
92362ab466cSMartijn Coenen 	return 0;
92462ab466cSMartijn Coenen }
92562ab466cSMartijn Coenen 
loop_default_blocksize(struct loop_device * lo)926f4774e92SChristoph Hellwig static unsigned int loop_default_blocksize(struct loop_device *lo)
927473516b3SChristoph Hellwig {
928f4774e92SChristoph Hellwig 	/* In case of direct I/O, match underlying minimum I/O size */
929f4774e92SChristoph Hellwig 	if (lo->lo_flags & LO_FLAGS_DIRECT_IO)
930f4774e92SChristoph Hellwig 		return lo->lo_min_dio_size;
931a17ece76SChristoph Hellwig 	return SECTOR_SIZE;
932a17ece76SChristoph Hellwig }
933a17ece76SChristoph Hellwig 
loop_update_limits(struct loop_device * lo,struct queue_limits * lim,unsigned int bsize)934b38c8be2SChristoph Hellwig static void loop_update_limits(struct loop_device *lo, struct queue_limits *lim,
935b38c8be2SChristoph Hellwig 		unsigned int bsize)
936473516b3SChristoph Hellwig {
937a17ece76SChristoph Hellwig 	struct file *file = lo->lo_backing_file;
938a17ece76SChristoph Hellwig 	struct inode *inode = file->f_mapping->host;
9394ce37fe0SChristoph Hellwig 	struct block_device *backing_bdev = NULL;
940b4912557SOGAWA Hirofumi 	u32 granularity = 0, max_discard_sectors = 0;
941473516b3SChristoph Hellwig 
9424ce37fe0SChristoph Hellwig 	if (S_ISBLK(inode->i_mode))
9434ce37fe0SChristoph Hellwig 		backing_bdev = I_BDEV(inode);
9444ce37fe0SChristoph Hellwig 	else if (inode->i_sb->s_bdev)
9454ce37fe0SChristoph Hellwig 		backing_bdev = inode->i_sb->s_bdev;
9464ce37fe0SChristoph Hellwig 
947a17ece76SChristoph Hellwig 	if (!bsize)
948f4774e92SChristoph Hellwig 		bsize = loop_default_blocksize(lo);
949a17ece76SChristoph Hellwig 
950b4912557SOGAWA Hirofumi 	loop_get_discard_config(lo, &granularity, &max_discard_sectors);
951b4912557SOGAWA Hirofumi 
952b38c8be2SChristoph Hellwig 	lim->logical_block_size = bsize;
953b38c8be2SChristoph Hellwig 	lim->physical_block_size = bsize;
954b38c8be2SChristoph Hellwig 	lim->io_min = bsize;
955b38c8be2SChristoph Hellwig 	lim->features &= ~(BLK_FEAT_WRITE_CACHE | BLK_FEAT_ROTATIONAL);
9561122c0c1SChristoph Hellwig 	if (file->f_op->fsync && !(lo->lo_flags & LO_FLAGS_READ_ONLY))
957b38c8be2SChristoph Hellwig 		lim->features |= BLK_FEAT_WRITE_CACHE;
958bd4a633bSChristoph Hellwig 	if (backing_bdev && !bdev_nonrot(backing_bdev))
959b38c8be2SChristoph Hellwig 		lim->features |= BLK_FEAT_ROTATIONAL;
960b38c8be2SChristoph Hellwig 	lim->max_hw_discard_sectors = max_discard_sectors;
961b38c8be2SChristoph Hellwig 	lim->max_write_zeroes_sectors = max_discard_sectors;
962b4912557SOGAWA Hirofumi 	if (max_discard_sectors)
963b38c8be2SChristoph Hellwig 		lim->discard_granularity = granularity;
964b4912557SOGAWA Hirofumi 	else
965b38c8be2SChristoph Hellwig 		lim->discard_granularity = 0;
966473516b3SChristoph Hellwig }
967473516b3SChristoph Hellwig 
loop_configure(struct loop_device * lo,blk_mode_t mode,struct block_device * bdev,const struct loop_config * config)96805bdb996SChristoph Hellwig static int loop_configure(struct loop_device *lo, blk_mode_t mode,
9693448914eSMartijn Coenen 			  struct block_device *bdev,
9703448914eSMartijn Coenen 			  const struct loop_config *config)
9711da177e4SLinus Torvalds {
9723ce6e1f6STetsuo Handa 	struct file *file = fget(config->fd);
973b38c8be2SChristoph Hellwig 	struct queue_limits lim;
9741da177e4SLinus Torvalds 	int error;
9751da177e4SLinus Torvalds 	loff_t size;
97685b0a54aSJan Kara 	bool partscan;
9773ce6e1f6STetsuo Handa 	bool is_loop;
9783ce6e1f6STetsuo Handa 
9793ce6e1f6STetsuo Handa 	if (!file)
9803ce6e1f6STetsuo Handa 		return -EBADF;
981*f5c84effSLizhi Xu 
982*f5c84effSLizhi Xu 	error = loop_check_backing_file(file);
983*f5c84effSLizhi Xu 	if (error)
984*f5c84effSLizhi Xu 		return error;
985*f5c84effSLizhi Xu 
9863ce6e1f6STetsuo Handa 	is_loop = is_loop_device(file);
9871da177e4SLinus Torvalds 
9881da177e4SLinus Torvalds 	/* This is safe, since we have a reference from open(). */
9891da177e4SLinus Torvalds 	__module_get(THIS_MODULE);
9901da177e4SLinus Torvalds 
99133ec3e53SJan Kara 	/*
99233ec3e53SJan Kara 	 * If we don't hold exclusive handle for the device, upgrade to it
99333ec3e53SJan Kara 	 * here to avoid changing device under exclusive owner.
99433ec3e53SJan Kara 	 */
99505bdb996SChristoph Hellwig 	if (!(mode & BLK_OPEN_EXCL)) {
9960718afd4SChristoph Hellwig 		error = bd_prepare_to_claim(bdev, loop_configure, NULL);
997ecbe6bc0SChristoph Hellwig 		if (error)
998757ecf40SJan Kara 			goto out_putf;
99933ec3e53SJan Kara 	}
100033ec3e53SJan Kara 
10013ce6e1f6STetsuo Handa 	error = loop_global_lock_killable(lo, is_loop);
100233ec3e53SJan Kara 	if (error)
100333ec3e53SJan Kara 		goto out_bdev;
1004757ecf40SJan Kara 
10051da177e4SLinus Torvalds 	error = -EBUSY;
10061da177e4SLinus Torvalds 	if (lo->lo_state != Lo_unbound)
1007757ecf40SJan Kara 		goto out_unlock;
10081da177e4SLinus Torvalds 
1009d2ac838eSTheodore Ts'o 	error = loop_validate_file(file, bdev);
1010d2ac838eSTheodore Ts'o 	if (error)
1011757ecf40SJan Kara 		goto out_unlock;
10121da177e4SLinus Torvalds 
10133448914eSMartijn Coenen 	if ((config->info.lo_flags & ~LOOP_CONFIGURE_SETTABLE_FLAGS) != 0) {
10143448914eSMartijn Coenen 		error = -EINVAL;
10153448914eSMartijn Coenen 		goto out_unlock;
10163448914eSMartijn Coenen 	}
10173448914eSMartijn Coenen 
10183448914eSMartijn Coenen 	error = loop_set_status_from_info(lo, &config->info);
10193448914eSMartijn Coenen 	if (error)
10203448914eSMartijn Coenen 		goto out_unlock;
1021ae074d07SChristoph Hellwig 	lo->lo_flags = config->info.lo_flags;
10223448914eSMartijn Coenen 
102305bdb996SChristoph Hellwig 	if (!(file->f_mode & FMODE_WRITE) || !(mode & BLK_OPEN_WRITE) ||
1024283e7e5dSAl Viro 	    !file->f_op->write_iter)
10253448914eSMartijn Coenen 		lo->lo_flags |= LO_FLAGS_READ_ONLY;
1026083a6a50SMartijn Coenen 
1027d292dc80SChristoph Hellwig 	if (!lo->workqueue) {
102887579e9bSDan Schatzberg 		lo->workqueue = alloc_workqueue("loop%d",
102987579e9bSDan Schatzberg 						WQ_UNBOUND | WQ_FREEZABLE,
1030d292dc80SChristoph Hellwig 						0, lo->lo_number);
103187579e9bSDan Schatzberg 		if (!lo->workqueue) {
103287579e9bSDan Schatzberg 			error = -ENOMEM;
1033757ecf40SJan Kara 			goto out_unlock;
103487579e9bSDan Schatzberg 		}
1035d292dc80SChristoph Hellwig 	}
10361da177e4SLinus Torvalds 
1037bb430b69SAlyssa Ross 	/* suppress uevents while reconfiguring the device */
1038bb430b69SAlyssa Ross 	dev_set_uevent_suppress(disk_to_dev(lo->lo_disk), 1);
1039bb430b69SAlyssa Ross 
1040ab6860f6SChristoph Hellwig 	disk_force_media_change(lo->lo_disk);
10417a2f0ce1SChristoph Hellwig 	set_disk_ro(lo->lo_disk, (lo->lo_flags & LO_FLAGS_READ_ONLY) != 0);
10421da177e4SLinus Torvalds 
10431da177e4SLinus Torvalds 	lo->lo_device = bdev;
1044d2781648SChristoph Hellwig 	loop_assign_backing_file(lo, file);
10451da177e4SLinus Torvalds 
1046b38c8be2SChristoph Hellwig 	lim = queue_limits_start_update(lo->lo_queue);
1047b38c8be2SChristoph Hellwig 	loop_update_limits(lo, &lim, config->block_size);
1048b03732a9SChristoph Hellwig 	/* No need to freeze the queue as the device isn't bound yet. */
1049b38c8be2SChristoph Hellwig 	error = queue_limits_commit_update(lo->lo_queue, &lim);
10509423c653SJohn Garry 	if (error)
1051473516b3SChristoph Hellwig 		goto out_unlock;
105285560117SMartijn Coenen 
105386947bdcSMing Lei 	/*
105486947bdcSMing Lei 	 * We might switch to direct I/O mode for the loop device, write back
105586947bdcSMing Lei 	 * all dirty data the page cache now that so that the individual I/O
105686947bdcSMing Lei 	 * operations don't have to do that.
105786947bdcSMing Lei 	 */
105886947bdcSMing Lei 	vfs_fsync(file, 0);
105986947bdcSMing Lei 
10602e5ab5f3SMing Lei 	loop_update_dio(lo);
1061ee862730SMilan Broz 	loop_sysfs_init(lo);
106279e5dc59SMartijn Coenen 
106379e5dc59SMartijn Coenen 	size = get_loop_size(lo, file);
10645795b6f5SMartijn Coenen 	loop_set_size(lo, size);
10651da177e4SLinus Torvalds 
10663ce6e1f6STetsuo Handa 	/* Order wrt reading lo_state in loop_validate_file(). */
10673ce6e1f6STetsuo Handa 	wmb();
10683ce6e1f6STetsuo Handa 
10696c997918SSerge E. Hallyn 	lo->lo_state = Lo_bound;
1070e03c8dd1SKay Sievers 	if (part_shift)
1071e03c8dd1SKay Sievers 		lo->lo_flags |= LO_FLAGS_PARTSCAN;
107285b0a54aSJan Kara 	partscan = lo->lo_flags & LO_FLAGS_PARTSCAN;
1073fe6a8fc5SLennart Poettering 	if (partscan)
1074b9684a71SChristoph Hellwig 		clear_bit(GD_SUPPRESS_PART_SCAN, &lo->lo_disk->state);
1075c1681bf8SAnatol Pomozov 
1076bb430b69SAlyssa Ross 	dev_set_uevent_suppress(disk_to_dev(lo->lo_disk), 0);
1077e7bc0010SThomas Weißschuh 	kobject_uevent(&disk_to_dev(lo->lo_disk)->kobj, KOBJ_CHANGE);
1078bb430b69SAlyssa Ross 
10793ce6e1f6STetsuo Handa 	loop_global_unlock(lo, is_loop);
108085b0a54aSJan Kara 	if (partscan)
10810384264eSChristoph Hellwig 		loop_reread_partitions(lo);
1082bb430b69SAlyssa Ross 
108305bdb996SChristoph Hellwig 	if (!(mode & BLK_OPEN_EXCL))
108437c3fc9aSChristoph Hellwig 		bd_abort_claiming(bdev, loop_configure);
1085498ef5c7SChristoph Hellwig 
1086bb430b69SAlyssa Ross 	return 0;
10871da177e4SLinus Torvalds 
1088757ecf40SJan Kara out_unlock:
10893ce6e1f6STetsuo Handa 	loop_global_unlock(lo, is_loop);
109033ec3e53SJan Kara out_bdev:
109105bdb996SChristoph Hellwig 	if (!(mode & BLK_OPEN_EXCL))
109237c3fc9aSChristoph Hellwig 		bd_abort_claiming(bdev, loop_configure);
10931da177e4SLinus Torvalds out_putf:
10941da177e4SLinus Torvalds 	fput(file);
10951da177e4SLinus Torvalds 	/* This is safe: open() is still holding a reference. */
10961da177e4SLinus Torvalds 	module_put(THIS_MODULE);
1097bb430b69SAlyssa Ross 	return error;
10981da177e4SLinus Torvalds }
10991da177e4SLinus Torvalds 
__loop_clr_fd(struct loop_device * lo)110018048c1aSGulam Mohamed static void __loop_clr_fd(struct loop_device *lo)
11011da177e4SLinus Torvalds {
1102c9055b44SChristoph Hellwig 	struct queue_limits lim;
11036050fa4cSTetsuo Handa 	struct file *filp;
1104b4e3ca1aSAl Viro 	gfp_t gfp = lo->old_gfp_mask;
11051da177e4SLinus Torvalds 
11061da177e4SLinus Torvalds 	spin_lock_irq(&lo->lo_lock);
11076050fa4cSTetsuo Handa 	filp = lo->lo_backing_file;
11081da177e4SLinus Torvalds 	lo->lo_backing_file = NULL;
110905eb0f25SKay Sievers 	spin_unlock_irq(&lo->lo_lock);
11101da177e4SLinus Torvalds 
11111da177e4SLinus Torvalds 	lo->lo_device = NULL;
11121da177e4SLinus Torvalds 	lo->lo_offset = 0;
11131da177e4SLinus Torvalds 	lo->lo_sizelimit = 0;
11141da177e4SLinus Torvalds 	memset(lo->lo_file_name, 0, LO_NAME_SIZE);
1115c9055b44SChristoph Hellwig 
1116b03732a9SChristoph Hellwig 	/*
1117b03732a9SChristoph Hellwig 	 * Reset the block size to the default.
1118b03732a9SChristoph Hellwig 	 *
1119b03732a9SChristoph Hellwig 	 * No queue freezing needed because this is called from the final
1120b03732a9SChristoph Hellwig 	 * ->release call only, so there can't be any outstanding I/O.
1121b03732a9SChristoph Hellwig 	 */
1122c9055b44SChristoph Hellwig 	lim = queue_limits_start_update(lo->lo_queue);
1123c9055b44SChristoph Hellwig 	lim.logical_block_size = SECTOR_SIZE;
1124c9055b44SChristoph Hellwig 	lim.physical_block_size = SECTOR_SIZE;
1125c9055b44SChristoph Hellwig 	lim.io_min = SECTOR_SIZE;
1126c9055b44SChristoph Hellwig 	queue_limits_commit_update(lo->lo_queue, &lim);
1127c9055b44SChristoph Hellwig 
1128e515be8fSXie Yongji 	invalidate_disk(lo->lo_disk);
112951a0bb0cSMilan Broz 	loop_sysfs_exit(lo);
1130c3473c63SDavid Zeuthen 	/* let user-space know about this change */
113119f553dbSXie Yongji 	kobject_uevent(&disk_to_dev(lo->lo_disk)->kobj, KOBJ_CHANGE);
11321da177e4SLinus Torvalds 	mapping_set_gfp_mask(filp->f_mapping, gfp);
1133bf23747eSTetsuo Handa 	/* This is safe: open() is still holding a reference. */
1134bf23747eSTetsuo Handa 	module_put(THIS_MODULE);
1135f8933667SMing Lei 
1136ab6860f6SChristoph Hellwig 	disk_force_media_change(lo->lo_disk);
11376050fa4cSTetsuo Handa 
11386050fa4cSTetsuo Handa 	if (lo->lo_flags & LO_FLAGS_PARTSCAN) {
11396050fa4cSTetsuo Handa 		int err;
11406050fa4cSTetsuo Handa 
1141bf23747eSTetsuo Handa 		/*
1142bf23747eSTetsuo Handa 		 * open_mutex has been held already in release path, so don't
1143bf23747eSTetsuo Handa 		 * acquire it if this function is called in such case.
1144bf23747eSTetsuo Handa 		 *
1145bf23747eSTetsuo Handa 		 * If the reread partition isn't from release path, lo_refcnt
1146bf23747eSTetsuo Handa 		 * must be at least one and it can only become zero when the
1147bf23747eSTetsuo Handa 		 * current holder is released.
1148bf23747eSTetsuo Handa 		 */
11490384264eSChristoph Hellwig 		err = bdev_disk_changed(lo->lo_disk, false);
115040853d6fSDongli Zhang 		if (err)
1151d57f3374SJan Kara 			pr_warn("%s: partition scan of loop%d failed (rc=%d)\n",
11526050fa4cSTetsuo Handa 				__func__, lo->lo_number, err);
1153d57f3374SJan Kara 		/* Device is gone, no point in returning error */
1154d57f3374SJan Kara 	}
1155758a58d0SDongli Zhang 
1156bf23747eSTetsuo Handa 	/*
1157bf23747eSTetsuo Handa 	 * lo->lo_state is set to Lo_unbound here after above partscan has
1158bf23747eSTetsuo Handa 	 * finished. There cannot be anybody else entering __loop_clr_fd() as
1159bf23747eSTetsuo Handa 	 * Lo_rundown state protects us from all the other places trying to
1160bf23747eSTetsuo Handa 	 * change the 'lo' device.
1161bf23747eSTetsuo Handa 	 */
1162758a58d0SDongli Zhang 	lo->lo_flags = 0;
1163758a58d0SDongli Zhang 	if (!part_shift)
1164b9684a71SChristoph Hellwig 		set_bit(GD_SUPPRESS_PART_SCAN, &lo->lo_disk->state);
11656050fa4cSTetsuo Handa 	mutex_lock(&lo->lo_mutex);
1166758a58d0SDongli Zhang 	lo->lo_state = Lo_unbound;
11676cc8e743SPavel Tatashin 	mutex_unlock(&lo->lo_mutex);
1168758a58d0SDongli Zhang 
1169bf23747eSTetsuo Handa 	/*
1170bf23747eSTetsuo Handa 	 * Need not hold lo_mutex to fput backing file. Calling fput holding
1171bf23747eSTetsuo Handa 	 * lo_mutex triggers a circular lock dependency possibility warning as
1172bf23747eSTetsuo Handa 	 * fput can take open_mutex which is usually taken before lo_mutex.
1173bf23747eSTetsuo Handa 	 */
1174bf23747eSTetsuo Handa 	fput(filp);
11751da177e4SLinus Torvalds }
11761da177e4SLinus Torvalds 
loop_clr_fd(struct loop_device * lo)1177a2505b79SJan Kara static int loop_clr_fd(struct loop_device *lo)
1178a2505b79SJan Kara {
11797ccd0791SJan Kara 	int err;
11807ccd0791SJan Kara 
1181158eaebaSTetsuo Handa 	/*
1182158eaebaSTetsuo Handa 	 * Since lo_ioctl() is called without locks held, it is possible that
1183158eaebaSTetsuo Handa 	 * loop_configure()/loop_change_fd() and loop_clr_fd() run in parallel.
1184158eaebaSTetsuo Handa 	 *
1185158eaebaSTetsuo Handa 	 * Therefore, use global lock when setting Lo_rundown state in order to
1186158eaebaSTetsuo Handa 	 * make sure that loop_validate_file() will fail if the "struct file"
1187158eaebaSTetsuo Handa 	 * which loop_configure()/loop_change_fd() found via fget() was this
1188158eaebaSTetsuo Handa 	 * loop device.
1189158eaebaSTetsuo Handa 	 */
1190158eaebaSTetsuo Handa 	err = loop_global_lock_killable(lo, true);
11917ccd0791SJan Kara 	if (err)
11927ccd0791SJan Kara 		return err;
11937ccd0791SJan Kara 	if (lo->lo_state != Lo_bound) {
1194158eaebaSTetsuo Handa 		loop_global_unlock(lo, true);
1195a2505b79SJan Kara 		return -ENXIO;
11967ccd0791SJan Kara 	}
1197a2505b79SJan Kara 	/*
119818048c1aSGulam Mohamed 	 * Mark the device for removing the backing device on last close.
119918048c1aSGulam Mohamed 	 * If we are the only opener, also switch the state to roundown here to
120018048c1aSGulam Mohamed 	 * prevent new openers from coming in.
1201a2505b79SJan Kara 	 */
120218048c1aSGulam Mohamed 
1203a2505b79SJan Kara 	lo->lo_flags |= LO_FLAGS_AUTOCLEAR;
120418048c1aSGulam Mohamed 	if (disk_openers(lo->lo_disk) == 1)
1205a2505b79SJan Kara 		lo->lo_state = Lo_rundown;
1206158eaebaSTetsuo Handa 	loop_global_unlock(lo, true);
1207a2505b79SJan Kara 
12086050fa4cSTetsuo Handa 	return 0;
1209a2505b79SJan Kara }
1210a2505b79SJan Kara 
12111da177e4SLinus Torvalds static int
loop_set_status(struct loop_device * lo,const struct loop_info64 * info)12121da177e4SLinus Torvalds loop_set_status(struct loop_device *lo, const struct loop_info64 *info)
12131da177e4SLinus Torvalds {
12141da177e4SLinus Torvalds 	int err;
121585b0a54aSJan Kara 	bool partscan = false;
12160c3796c2SMartijn Coenen 	bool size_changed = false;
12171e1a9cecSChristoph Hellwig 	unsigned int memflags;
12181da177e4SLinus Torvalds 
12196cc8e743SPavel Tatashin 	err = mutex_lock_killable(&lo->lo_mutex);
1220550df5fdSJan Kara 	if (err)
1221550df5fdSJan Kara 		return err;
1222550df5fdSJan Kara 	if (lo->lo_state != Lo_bound) {
1223550df5fdSJan Kara 		err = -ENXIO;
1224550df5fdSJan Kara 		goto out_unlock;
1225550df5fdSJan Kara 	}
12261da177e4SLinus Torvalds 
12275db470e2SJaegeuk Kim 	if (lo->lo_offset != info->lo_offset ||
12285db470e2SJaegeuk Kim 	    lo->lo_sizelimit != info->lo_sizelimit) {
12290c3796c2SMartijn Coenen 		size_changed = true;
12305db470e2SJaegeuk Kim 		sync_blockdev(lo->lo_device);
1231f4bd34b1SZheng Bin 		invalidate_bdev(lo->lo_device);
12325db470e2SJaegeuk Kim 	}
12335db470e2SJaegeuk Kim 
12344155adb0SChristoph Hellwig 	/* I/O needs to be drained before changing lo_offset or lo_sizelimit */
12351e1a9cecSChristoph Hellwig 	memflags = blk_mq_freeze_queue(lo->lo_queue);
1236ecdd0959SMing Lei 
12370c3796c2SMartijn Coenen 	err = loop_set_status_from_info(lo, info);
12380c3796c2SMartijn Coenen 	if (err)
1239550df5fdSJan Kara 		goto out_unfreeze;
12400c3796c2SMartijn Coenen 
1241ae074d07SChristoph Hellwig 	partscan = !(lo->lo_flags & LO_FLAGS_PARTSCAN) &&
1242ae074d07SChristoph Hellwig 		(info->lo_flags & LO_FLAGS_PARTSCAN);
1243ae074d07SChristoph Hellwig 
12445aa21b04SChristoph Hellwig 	lo->lo_flags &= ~LOOP_SET_STATUS_CLEARABLE_FLAGS;
1245ae074d07SChristoph Hellwig 	lo->lo_flags |= (info->lo_flags & LOOP_SET_STATUS_SETTABLE_FLAGS);
1246faf1d254SMartijn Coenen 
1247b0bd158dSMartijn Coenen 	if (size_changed) {
1248b0bd158dSMartijn Coenen 		loff_t new_size = get_size(lo->lo_offset, lo->lo_sizelimit,
1249b0bd158dSMartijn Coenen 					   lo->lo_backing_file);
1250b0bd158dSMartijn Coenen 		loop_set_size(lo, new_size);
1251b040ad9cSArnd Bergmann 	}
1252541c742aSGuo Chao 
12534155adb0SChristoph Hellwig 	/* update the direct I/O flag if lo_offset changed */
12543a693110SChristoph Hellwig 	loop_update_dio(lo);
12552e5ab5f3SMing Lei 
1256550df5fdSJan Kara out_unfreeze:
12571e1a9cecSChristoph Hellwig 	blk_mq_unfreeze_queue(lo->lo_queue, memflags);
1258ae074d07SChristoph Hellwig 	if (partscan)
1259b9684a71SChristoph Hellwig 		clear_bit(GD_SUPPRESS_PART_SCAN, &lo->lo_disk->state);
1260550df5fdSJan Kara out_unlock:
12616cc8e743SPavel Tatashin 	mutex_unlock(&lo->lo_mutex);
126285b0a54aSJan Kara 	if (partscan)
12630384264eSChristoph Hellwig 		loop_reread_partitions(lo);
1264e02898b4SOmar Sandoval 
1265ecdd0959SMing Lei 	return err;
12661da177e4SLinus Torvalds }
12671da177e4SLinus Torvalds 
12681da177e4SLinus Torvalds static int
loop_get_status(struct loop_device * lo,struct loop_info64 * info)12691da177e4SLinus Torvalds loop_get_status(struct loop_device *lo, struct loop_info64 *info)
12701da177e4SLinus Torvalds {
1271b1ab5fa3STetsuo Handa 	struct path path;
12721da177e4SLinus Torvalds 	struct kstat stat;
12732d1d4c1eSOmar Sandoval 	int ret;
12741da177e4SLinus Torvalds 
12756cc8e743SPavel Tatashin 	ret = mutex_lock_killable(&lo->lo_mutex);
12764a5ce9baSJan Kara 	if (ret)
12774a5ce9baSJan Kara 		return ret;
12782d1d4c1eSOmar Sandoval 	if (lo->lo_state != Lo_bound) {
12796cc8e743SPavel Tatashin 		mutex_unlock(&lo->lo_mutex);
12801da177e4SLinus Torvalds 		return -ENXIO;
12812d1d4c1eSOmar Sandoval 	}
12822d1d4c1eSOmar Sandoval 
12831da177e4SLinus Torvalds 	memset(info, 0, sizeof(*info));
12841da177e4SLinus Torvalds 	info->lo_number = lo->lo_number;
12851da177e4SLinus Torvalds 	info->lo_offset = lo->lo_offset;
12861da177e4SLinus Torvalds 	info->lo_sizelimit = lo->lo_sizelimit;
12871da177e4SLinus Torvalds 	info->lo_flags = lo->lo_flags;
12881da177e4SLinus Torvalds 	memcpy(info->lo_file_name, lo->lo_file_name, LO_NAME_SIZE);
12892d1d4c1eSOmar Sandoval 
12906cc8e743SPavel Tatashin 	/* Drop lo_mutex while we call into the filesystem. */
1291b1ab5fa3STetsuo Handa 	path = lo->lo_backing_file->f_path;
1292b1ab5fa3STetsuo Handa 	path_get(&path);
12936cc8e743SPavel Tatashin 	mutex_unlock(&lo->lo_mutex);
1294b1ab5fa3STetsuo Handa 	ret = vfs_getattr(&path, &stat, STATX_INO, AT_STATX_SYNC_AS_STAT);
12952d1d4c1eSOmar Sandoval 	if (!ret) {
12962d1d4c1eSOmar Sandoval 		info->lo_device = huge_encode_dev(stat.dev);
12972d1d4c1eSOmar Sandoval 		info->lo_inode = stat.ino;
12982d1d4c1eSOmar Sandoval 		info->lo_rdevice = huge_encode_dev(stat.rdev);
12992d1d4c1eSOmar Sandoval 	}
1300b1ab5fa3STetsuo Handa 	path_put(&path);
13012d1d4c1eSOmar Sandoval 	return ret;
13021da177e4SLinus Torvalds }
13031da177e4SLinus Torvalds 
13041da177e4SLinus Torvalds static void
loop_info64_from_old(const struct loop_info * info,struct loop_info64 * info64)13051da177e4SLinus Torvalds loop_info64_from_old(const struct loop_info *info, struct loop_info64 *info64)
13061da177e4SLinus Torvalds {
13071da177e4SLinus Torvalds 	memset(info64, 0, sizeof(*info64));
13081da177e4SLinus Torvalds 	info64->lo_number = info->lo_number;
13091da177e4SLinus Torvalds 	info64->lo_device = info->lo_device;
13101da177e4SLinus Torvalds 	info64->lo_inode = info->lo_inode;
13111da177e4SLinus Torvalds 	info64->lo_rdevice = info->lo_rdevice;
13121da177e4SLinus Torvalds 	info64->lo_offset = info->lo_offset;
13131da177e4SLinus Torvalds 	info64->lo_sizelimit = 0;
13141da177e4SLinus Torvalds 	info64->lo_flags = info->lo_flags;
13151da177e4SLinus Torvalds 	memcpy(info64->lo_file_name, info->lo_name, LO_NAME_SIZE);
13161da177e4SLinus Torvalds }
13171da177e4SLinus Torvalds 
13181da177e4SLinus Torvalds static int
loop_info64_to_old(const struct loop_info64 * info64,struct loop_info * info)13191da177e4SLinus Torvalds loop_info64_to_old(const struct loop_info64 *info64, struct loop_info *info)
13201da177e4SLinus Torvalds {
13211da177e4SLinus Torvalds 	memset(info, 0, sizeof(*info));
13221da177e4SLinus Torvalds 	info->lo_number = info64->lo_number;
13231da177e4SLinus Torvalds 	info->lo_device = info64->lo_device;
13241da177e4SLinus Torvalds 	info->lo_inode = info64->lo_inode;
13251da177e4SLinus Torvalds 	info->lo_rdevice = info64->lo_rdevice;
13261da177e4SLinus Torvalds 	info->lo_offset = info64->lo_offset;
13271da177e4SLinus Torvalds 	info->lo_flags = info64->lo_flags;
13281da177e4SLinus Torvalds 	memcpy(info->lo_name, info64->lo_file_name, LO_NAME_SIZE);
13291da177e4SLinus Torvalds 
13301da177e4SLinus Torvalds 	/* error in case values were truncated */
13311da177e4SLinus Torvalds 	if (info->lo_device != info64->lo_device ||
13321da177e4SLinus Torvalds 	    info->lo_rdevice != info64->lo_rdevice ||
13331da177e4SLinus Torvalds 	    info->lo_inode != info64->lo_inode ||
13341da177e4SLinus Torvalds 	    info->lo_offset != info64->lo_offset)
13351da177e4SLinus Torvalds 		return -EOVERFLOW;
13361da177e4SLinus Torvalds 
13371da177e4SLinus Torvalds 	return 0;
13381da177e4SLinus Torvalds }
13391da177e4SLinus Torvalds 
13401da177e4SLinus Torvalds static int
loop_set_status_old(struct loop_device * lo,const struct loop_info __user * arg)13411da177e4SLinus Torvalds loop_set_status_old(struct loop_device *lo, const struct loop_info __user *arg)
13421da177e4SLinus Torvalds {
13431da177e4SLinus Torvalds 	struct loop_info info;
13441da177e4SLinus Torvalds 	struct loop_info64 info64;
13451da177e4SLinus Torvalds 
13461da177e4SLinus Torvalds 	if (copy_from_user(&info, arg, sizeof (struct loop_info)))
13471da177e4SLinus Torvalds 		return -EFAULT;
13481da177e4SLinus Torvalds 	loop_info64_from_old(&info, &info64);
13491da177e4SLinus Torvalds 	return loop_set_status(lo, &info64);
13501da177e4SLinus Torvalds }
13511da177e4SLinus Torvalds 
13521da177e4SLinus Torvalds static int
loop_set_status64(struct loop_device * lo,const struct loop_info64 __user * arg)13531da177e4SLinus Torvalds loop_set_status64(struct loop_device *lo, const struct loop_info64 __user *arg)
13541da177e4SLinus Torvalds {
13551da177e4SLinus Torvalds 	struct loop_info64 info64;
13561da177e4SLinus Torvalds 
13571da177e4SLinus Torvalds 	if (copy_from_user(&info64, arg, sizeof (struct loop_info64)))
13581da177e4SLinus Torvalds 		return -EFAULT;
13591da177e4SLinus Torvalds 	return loop_set_status(lo, &info64);
13601da177e4SLinus Torvalds }
13611da177e4SLinus Torvalds 
13621da177e4SLinus Torvalds static int
loop_get_status_old(struct loop_device * lo,struct loop_info __user * arg)13631da177e4SLinus Torvalds loop_get_status_old(struct loop_device *lo, struct loop_info __user *arg) {
13641da177e4SLinus Torvalds 	struct loop_info info;
13651da177e4SLinus Torvalds 	struct loop_info64 info64;
1366bdac616dSOmar Sandoval 	int err;
13671da177e4SLinus Torvalds 
13684a5ce9baSJan Kara 	if (!arg)
1369bdac616dSOmar Sandoval 		return -EINVAL;
13701da177e4SLinus Torvalds 	err = loop_get_status(lo, &info64);
13711da177e4SLinus Torvalds 	if (!err)
13721da177e4SLinus Torvalds 		err = loop_info64_to_old(&info64, &info);
13731da177e4SLinus Torvalds 	if (!err && copy_to_user(arg, &info, sizeof(info)))
13741da177e4SLinus Torvalds 		err = -EFAULT;
13751da177e4SLinus Torvalds 
13761da177e4SLinus Torvalds 	return err;
13771da177e4SLinus Torvalds }
13781da177e4SLinus Torvalds 
13791da177e4SLinus Torvalds static int
loop_get_status64(struct loop_device * lo,struct loop_info64 __user * arg)13801da177e4SLinus Torvalds loop_get_status64(struct loop_device *lo, struct loop_info64 __user *arg) {
13811da177e4SLinus Torvalds 	struct loop_info64 info64;
1382bdac616dSOmar Sandoval 	int err;
13831da177e4SLinus Torvalds 
13844a5ce9baSJan Kara 	if (!arg)
1385bdac616dSOmar Sandoval 		return -EINVAL;
13861da177e4SLinus Torvalds 	err = loop_get_status(lo, &info64);
13871da177e4SLinus Torvalds 	if (!err && copy_to_user(arg, &info64, sizeof(info64)))
13881da177e4SLinus Torvalds 		err = -EFAULT;
13891da177e4SLinus Torvalds 
13901da177e4SLinus Torvalds 	return err;
13911da177e4SLinus Torvalds }
13921da177e4SLinus Torvalds 
loop_set_capacity(struct loop_device * lo)139351001b7dSHannes Reinecke static int loop_set_capacity(struct loop_device *lo)
139453d66608SJ. R. Okajima {
13950a6ed1b5SMartijn Coenen 	loff_t size;
13960a6ed1b5SMartijn Coenen 
139753d66608SJ. R. Okajima 	if (unlikely(lo->lo_state != Lo_bound))
13987b0576a3SGuo Chao 		return -ENXIO;
139953d66608SJ. R. Okajima 
14000a6ed1b5SMartijn Coenen 	size = get_loop_size(lo, lo->lo_backing_file);
14010a6ed1b5SMartijn Coenen 	loop_set_size(lo, size);
1402083a6a50SMartijn Coenen 
1403083a6a50SMartijn Coenen 	return 0;
140453d66608SJ. R. Okajima }
140553d66608SJ. R. Okajima 
loop_set_dio(struct loop_device * lo,unsigned long arg)1406ab1cb278SMing Lei static int loop_set_dio(struct loop_device *lo, unsigned long arg)
1407ab1cb278SMing Lei {
1408dc909525SChristoph Hellwig 	bool use_dio = !!arg;
14091e1a9cecSChristoph Hellwig 	unsigned int memflags;
1410ab1cb278SMing Lei 
1411dc909525SChristoph Hellwig 	if (lo->lo_state != Lo_bound)
1412dc909525SChristoph Hellwig 		return -ENXIO;
1413afd69d5cSChristoph Hellwig 	if (use_dio == !!(lo->lo_flags & LO_FLAGS_DIRECT_IO))
1414ab1cb278SMing Lei 		return 0;
1415dc909525SChristoph Hellwig 
1416dc909525SChristoph Hellwig 	if (use_dio) {
1417dc909525SChristoph Hellwig 		if (!lo_can_use_dio(lo))
1418dc909525SChristoph Hellwig 			return -EINVAL;
1419dc909525SChristoph Hellwig 		/* flush dirty pages before starting to use direct I/O */
1420dc909525SChristoph Hellwig 		vfs_fsync(lo->lo_backing_file, 0);
1421dc909525SChristoph Hellwig 	}
1422dc909525SChristoph Hellwig 
14231e1a9cecSChristoph Hellwig 	memflags = blk_mq_freeze_queue(lo->lo_queue);
1424dc909525SChristoph Hellwig 	if (use_dio)
1425dc909525SChristoph Hellwig 		lo->lo_flags |= LO_FLAGS_DIRECT_IO;
1426dc909525SChristoph Hellwig 	else
1427dc909525SChristoph Hellwig 		lo->lo_flags &= ~LO_FLAGS_DIRECT_IO;
14281e1a9cecSChristoph Hellwig 	blk_mq_unfreeze_queue(lo->lo_queue, memflags);
1429dc909525SChristoph Hellwig 	return 0;
1430ab1cb278SMing Lei }
1431ab1cb278SMing Lei 
loop_set_block_size(struct loop_device * lo,unsigned long arg)143289e4fdecSOmar Sandoval static int loop_set_block_size(struct loop_device *lo, unsigned long arg)
143389e4fdecSOmar Sandoval {
1434b38c8be2SChristoph Hellwig 	struct queue_limits lim;
14351e1a9cecSChristoph Hellwig 	unsigned int memflags;
14365db470e2SJaegeuk Kim 	int err = 0;
14375db470e2SJaegeuk Kim 
143889e4fdecSOmar Sandoval 	if (lo->lo_state != Lo_bound)
143989e4fdecSOmar Sandoval 		return -ENXIO;
144089e4fdecSOmar Sandoval 
14417e81f99aSMartijn Coenen 	if (lo->lo_queue->limits.logical_block_size == arg)
14427e81f99aSMartijn Coenen 		return 0;
14437e81f99aSMartijn Coenen 
14445db470e2SJaegeuk Kim 	sync_blockdev(lo->lo_device);
1445f4bd34b1SZheng Bin 	invalidate_bdev(lo->lo_device);
14465db470e2SJaegeuk Kim 
1447b38c8be2SChristoph Hellwig 	lim = queue_limits_start_update(lo->lo_queue);
1448b38c8be2SChristoph Hellwig 	loop_update_limits(lo, &lim, arg);
1449b03732a9SChristoph Hellwig 
14501e1a9cecSChristoph Hellwig 	memflags = blk_mq_freeze_queue(lo->lo_queue);
1451b38c8be2SChristoph Hellwig 	err = queue_limits_commit_update(lo->lo_queue, &lim);
145289e4fdecSOmar Sandoval 	loop_update_dio(lo);
14531e1a9cecSChristoph Hellwig 	blk_mq_unfreeze_queue(lo->lo_queue, memflags);
145489e4fdecSOmar Sandoval 
14555db470e2SJaegeuk Kim 	return err;
145689e4fdecSOmar Sandoval }
145789e4fdecSOmar Sandoval 
lo_simple_ioctl(struct loop_device * lo,unsigned int cmd,unsigned long arg)1458a1316544SJan Kara static int lo_simple_ioctl(struct loop_device *lo, unsigned int cmd,
1459a1316544SJan Kara 			   unsigned long arg)
14601da177e4SLinus Torvalds {
14611da177e4SLinus Torvalds 	int err;
14621da177e4SLinus Torvalds 
14636cc8e743SPavel Tatashin 	err = mutex_lock_killable(&lo->lo_mutex);
14643148ffbdSOmar Sandoval 	if (err)
1465a1316544SJan Kara 		return err;
14661da177e4SLinus Torvalds 	switch (cmd) {
146753d66608SJ. R. Okajima 	case LOOP_SET_CAPACITY:
146851001b7dSHannes Reinecke 		err = loop_set_capacity(lo);
146953d66608SJ. R. Okajima 		break;
1470ab1cb278SMing Lei 	case LOOP_SET_DIRECT_IO:
1471ab1cb278SMing Lei 		err = loop_set_dio(lo, arg);
1472ab1cb278SMing Lei 		break;
147389e4fdecSOmar Sandoval 	case LOOP_SET_BLOCK_SIZE:
147489e4fdecSOmar Sandoval 		err = loop_set_block_size(lo, arg);
147589e4fdecSOmar Sandoval 		break;
14761da177e4SLinus Torvalds 	default:
147747e96246SChristoph Hellwig 		err = -EINVAL;
14781da177e4SLinus Torvalds 	}
14796cc8e743SPavel Tatashin 	mutex_unlock(&lo->lo_mutex);
1480a1316544SJan Kara 	return err;
1481a1316544SJan Kara }
1482f028f3b2SNikanth Karthikesan 
lo_ioctl(struct block_device * bdev,blk_mode_t mode,unsigned int cmd,unsigned long arg)148305bdb996SChristoph Hellwig static int lo_ioctl(struct block_device *bdev, blk_mode_t mode,
1484a1316544SJan Kara 	unsigned int cmd, unsigned long arg)
1485a1316544SJan Kara {
1486a1316544SJan Kara 	struct loop_device *lo = bdev->bd_disk->private_data;
1487571fae6eSMartijn Coenen 	void __user *argp = (void __user *) arg;
1488a1316544SJan Kara 	int err;
1489a1316544SJan Kara 
1490a1316544SJan Kara 	switch (cmd) {
14913448914eSMartijn Coenen 	case LOOP_SET_FD: {
14923448914eSMartijn Coenen 		/*
14933448914eSMartijn Coenen 		 * Legacy case - pass in a zeroed out struct loop_config with
14943448914eSMartijn Coenen 		 * only the file descriptor set , which corresponds with the
14953448914eSMartijn Coenen 		 * default parameters we'd have used otherwise.
14963448914eSMartijn Coenen 		 */
14973448914eSMartijn Coenen 		struct loop_config config;
14983448914eSMartijn Coenen 
14993448914eSMartijn Coenen 		memset(&config, 0, sizeof(config));
15003448914eSMartijn Coenen 		config.fd = arg;
15013448914eSMartijn Coenen 
15023448914eSMartijn Coenen 		return loop_configure(lo, mode, bdev, &config);
15033448914eSMartijn Coenen 	}
15043448914eSMartijn Coenen 	case LOOP_CONFIGURE: {
15053448914eSMartijn Coenen 		struct loop_config config;
15063448914eSMartijn Coenen 
15073448914eSMartijn Coenen 		if (copy_from_user(&config, argp, sizeof(config)))
15083448914eSMartijn Coenen 			return -EFAULT;
15093448914eSMartijn Coenen 
15103448914eSMartijn Coenen 		return loop_configure(lo, mode, bdev, &config);
15113448914eSMartijn Coenen 	}
1512a1316544SJan Kara 	case LOOP_CHANGE_FD:
1513c3710770SJan Kara 		return loop_change_fd(lo, bdev, arg);
1514a1316544SJan Kara 	case LOOP_CLR_FD:
15157ccd0791SJan Kara 		return loop_clr_fd(lo);
1516a1316544SJan Kara 	case LOOP_SET_STATUS:
1517a1316544SJan Kara 		err = -EPERM;
151805bdb996SChristoph Hellwig 		if ((mode & BLK_OPEN_WRITE) || capable(CAP_SYS_ADMIN))
1519571fae6eSMartijn Coenen 			err = loop_set_status_old(lo, argp);
1520a1316544SJan Kara 		break;
1521a1316544SJan Kara 	case LOOP_GET_STATUS:
1522571fae6eSMartijn Coenen 		return loop_get_status_old(lo, argp);
1523a1316544SJan Kara 	case LOOP_SET_STATUS64:
1524a1316544SJan Kara 		err = -EPERM;
152505bdb996SChristoph Hellwig 		if ((mode & BLK_OPEN_WRITE) || capable(CAP_SYS_ADMIN))
1526571fae6eSMartijn Coenen 			err = loop_set_status64(lo, argp);
1527a1316544SJan Kara 		break;
1528a1316544SJan Kara 	case LOOP_GET_STATUS64:
1529571fae6eSMartijn Coenen 		return loop_get_status64(lo, argp);
1530a1316544SJan Kara 	case LOOP_SET_CAPACITY:
1531a1316544SJan Kara 	case LOOP_SET_DIRECT_IO:
1532a1316544SJan Kara 	case LOOP_SET_BLOCK_SIZE:
153305bdb996SChristoph Hellwig 		if (!(mode & BLK_OPEN_WRITE) && !capable(CAP_SYS_ADMIN))
1534a1316544SJan Kara 			return -EPERM;
1535df561f66SGustavo A. R. Silva 		fallthrough;
1536a1316544SJan Kara 	default:
1537a1316544SJan Kara 		err = lo_simple_ioctl(lo, cmd, arg);
1538a1316544SJan Kara 		break;
1539a1316544SJan Kara 	}
1540a1316544SJan Kara 
15411da177e4SLinus Torvalds 	return err;
15421da177e4SLinus Torvalds }
15431da177e4SLinus Torvalds 
1544863d5b82SDavid Howells #ifdef CONFIG_COMPAT
1545863d5b82SDavid Howells struct compat_loop_info {
1546863d5b82SDavid Howells 	compat_int_t	lo_number;      /* ioctl r/o */
1547863d5b82SDavid Howells 	compat_dev_t	lo_device;      /* ioctl r/o */
1548863d5b82SDavid Howells 	compat_ulong_t	lo_inode;       /* ioctl r/o */
1549863d5b82SDavid Howells 	compat_dev_t	lo_rdevice;     /* ioctl r/o */
1550863d5b82SDavid Howells 	compat_int_t	lo_offset;
1551f941c51eSCarlos Llamas 	compat_int_t	lo_encrypt_type;        /* obsolete, ignored */
1552863d5b82SDavid Howells 	compat_int_t	lo_encrypt_key_size;    /* ioctl w/o */
1553863d5b82SDavid Howells 	compat_int_t	lo_flags;       /* ioctl r/o */
1554863d5b82SDavid Howells 	char		lo_name[LO_NAME_SIZE];
1555863d5b82SDavid Howells 	unsigned char	lo_encrypt_key[LO_KEY_SIZE]; /* ioctl w/o */
1556863d5b82SDavid Howells 	compat_ulong_t	lo_init[2];
1557863d5b82SDavid Howells 	char		reserved[4];
1558863d5b82SDavid Howells };
1559863d5b82SDavid Howells 
1560863d5b82SDavid Howells /*
1561863d5b82SDavid Howells  * Transfer 32-bit compatibility structure in userspace to 64-bit loop info
1562863d5b82SDavid Howells  * - noinlined to reduce stack space usage in main part of driver
1563863d5b82SDavid Howells  */
1564863d5b82SDavid Howells static noinline int
loop_info64_from_compat(const struct compat_loop_info __user * arg,struct loop_info64 * info64)1565ba674cfcSAl Viro loop_info64_from_compat(const struct compat_loop_info __user *arg,
1566863d5b82SDavid Howells 			struct loop_info64 *info64)
1567863d5b82SDavid Howells {
1568863d5b82SDavid Howells 	struct compat_loop_info info;
1569863d5b82SDavid Howells 
1570863d5b82SDavid Howells 	if (copy_from_user(&info, arg, sizeof(info)))
1571863d5b82SDavid Howells 		return -EFAULT;
1572863d5b82SDavid Howells 
1573863d5b82SDavid Howells 	memset(info64, 0, sizeof(*info64));
1574863d5b82SDavid Howells 	info64->lo_number = info.lo_number;
1575863d5b82SDavid Howells 	info64->lo_device = info.lo_device;
1576863d5b82SDavid Howells 	info64->lo_inode = info.lo_inode;
1577863d5b82SDavid Howells 	info64->lo_rdevice = info.lo_rdevice;
1578863d5b82SDavid Howells 	info64->lo_offset = info.lo_offset;
1579863d5b82SDavid Howells 	info64->lo_sizelimit = 0;
1580863d5b82SDavid Howells 	info64->lo_flags = info.lo_flags;
1581863d5b82SDavid Howells 	memcpy(info64->lo_file_name, info.lo_name, LO_NAME_SIZE);
1582863d5b82SDavid Howells 	return 0;
1583863d5b82SDavid Howells }
1584863d5b82SDavid Howells 
1585863d5b82SDavid Howells /*
1586863d5b82SDavid Howells  * Transfer 64-bit loop info to 32-bit compatibility structure in userspace
1587863d5b82SDavid Howells  * - noinlined to reduce stack space usage in main part of driver
1588863d5b82SDavid Howells  */
1589863d5b82SDavid Howells static noinline int
loop_info64_to_compat(const struct loop_info64 * info64,struct compat_loop_info __user * arg)1590863d5b82SDavid Howells loop_info64_to_compat(const struct loop_info64 *info64,
1591863d5b82SDavid Howells 		      struct compat_loop_info __user *arg)
1592863d5b82SDavid Howells {
1593863d5b82SDavid Howells 	struct compat_loop_info info;
1594863d5b82SDavid Howells 
1595863d5b82SDavid Howells 	memset(&info, 0, sizeof(info));
1596863d5b82SDavid Howells 	info.lo_number = info64->lo_number;
1597863d5b82SDavid Howells 	info.lo_device = info64->lo_device;
1598863d5b82SDavid Howells 	info.lo_inode = info64->lo_inode;
1599863d5b82SDavid Howells 	info.lo_rdevice = info64->lo_rdevice;
1600863d5b82SDavid Howells 	info.lo_offset = info64->lo_offset;
1601863d5b82SDavid Howells 	info.lo_flags = info64->lo_flags;
1602863d5b82SDavid Howells 	memcpy(info.lo_name, info64->lo_file_name, LO_NAME_SIZE);
1603863d5b82SDavid Howells 
1604863d5b82SDavid Howells 	/* error in case values were truncated */
1605863d5b82SDavid Howells 	if (info.lo_device != info64->lo_device ||
1606863d5b82SDavid Howells 	    info.lo_rdevice != info64->lo_rdevice ||
1607863d5b82SDavid Howells 	    info.lo_inode != info64->lo_inode ||
160847e96246SChristoph Hellwig 	    info.lo_offset != info64->lo_offset)
1609863d5b82SDavid Howells 		return -EOVERFLOW;
1610863d5b82SDavid Howells 
1611863d5b82SDavid Howells 	if (copy_to_user(arg, &info, sizeof(info)))
1612863d5b82SDavid Howells 		return -EFAULT;
1613863d5b82SDavid Howells 	return 0;
1614863d5b82SDavid Howells }
1615863d5b82SDavid Howells 
1616863d5b82SDavid Howells static int
loop_set_status_compat(struct loop_device * lo,const struct compat_loop_info __user * arg)1617863d5b82SDavid Howells loop_set_status_compat(struct loop_device *lo,
1618863d5b82SDavid Howells 		       const struct compat_loop_info __user *arg)
1619863d5b82SDavid Howells {
1620863d5b82SDavid Howells 	struct loop_info64 info64;
1621863d5b82SDavid Howells 	int ret;
1622863d5b82SDavid Howells 
1623863d5b82SDavid Howells 	ret = loop_info64_from_compat(arg, &info64);
1624863d5b82SDavid Howells 	if (ret < 0)
1625863d5b82SDavid Howells 		return ret;
1626863d5b82SDavid Howells 	return loop_set_status(lo, &info64);
1627863d5b82SDavid Howells }
1628863d5b82SDavid Howells 
1629863d5b82SDavid Howells static int
loop_get_status_compat(struct loop_device * lo,struct compat_loop_info __user * arg)1630863d5b82SDavid Howells loop_get_status_compat(struct loop_device *lo,
1631863d5b82SDavid Howells 		       struct compat_loop_info __user *arg)
1632863d5b82SDavid Howells {
1633863d5b82SDavid Howells 	struct loop_info64 info64;
1634bdac616dSOmar Sandoval 	int err;
1635863d5b82SDavid Howells 
16364a5ce9baSJan Kara 	if (!arg)
1637bdac616dSOmar Sandoval 		return -EINVAL;
1638863d5b82SDavid Howells 	err = loop_get_status(lo, &info64);
1639863d5b82SDavid Howells 	if (!err)
1640863d5b82SDavid Howells 		err = loop_info64_to_compat(&info64, arg);
1641863d5b82SDavid Howells 	return err;
1642863d5b82SDavid Howells }
1643863d5b82SDavid Howells 
lo_compat_ioctl(struct block_device * bdev,blk_mode_t mode,unsigned int cmd,unsigned long arg)164405bdb996SChristoph Hellwig static int lo_compat_ioctl(struct block_device *bdev, blk_mode_t mode,
1645bb214884SAl Viro 			   unsigned int cmd, unsigned long arg)
1646863d5b82SDavid Howells {
1647bb214884SAl Viro 	struct loop_device *lo = bdev->bd_disk->private_data;
1648863d5b82SDavid Howells 	int err;
1649863d5b82SDavid Howells 
1650863d5b82SDavid Howells 	switch(cmd) {
1651863d5b82SDavid Howells 	case LOOP_SET_STATUS:
16523148ffbdSOmar Sandoval 		err = loop_set_status_compat(lo,
16533148ffbdSOmar Sandoval 			     (const struct compat_loop_info __user *)arg);
1654863d5b82SDavid Howells 		break;
1655863d5b82SDavid Howells 	case LOOP_GET_STATUS:
16563148ffbdSOmar Sandoval 		err = loop_get_status_compat(lo,
16573148ffbdSOmar Sandoval 				     (struct compat_loop_info __user *)arg);
1658863d5b82SDavid Howells 		break;
165953d66608SJ. R. Okajima 	case LOOP_SET_CAPACITY:
1660863d5b82SDavid Howells 	case LOOP_CLR_FD:
1661863d5b82SDavid Howells 	case LOOP_GET_STATUS64:
1662863d5b82SDavid Howells 	case LOOP_SET_STATUS64:
16633448914eSMartijn Coenen 	case LOOP_CONFIGURE:
1664863d5b82SDavid Howells 		arg = (unsigned long) compat_ptr(arg);
1665df561f66SGustavo A. R. Silva 		fallthrough;
1666863d5b82SDavid Howells 	case LOOP_SET_FD:
1667863d5b82SDavid Howells 	case LOOP_CHANGE_FD:
16689fea4b39SEvan Green 	case LOOP_SET_BLOCK_SIZE:
1669fdbe4eeeSAlessio Balsini 	case LOOP_SET_DIRECT_IO:
1670bb214884SAl Viro 		err = lo_ioctl(bdev, mode, cmd, arg);
1671863d5b82SDavid Howells 		break;
1672863d5b82SDavid Howells 	default:
1673863d5b82SDavid Howells 		err = -ENOIOCTLCMD;
1674863d5b82SDavid Howells 		break;
1675863d5b82SDavid Howells 	}
1676863d5b82SDavid Howells 	return err;
1677863d5b82SDavid Howells }
1678863d5b82SDavid Howells #endif
1679863d5b82SDavid Howells 
lo_open(struct gendisk * disk,blk_mode_t mode)168018048c1aSGulam Mohamed static int lo_open(struct gendisk *disk, blk_mode_t mode)
168118048c1aSGulam Mohamed {
168218048c1aSGulam Mohamed 	struct loop_device *lo = disk->private_data;
168318048c1aSGulam Mohamed 	int err;
168418048c1aSGulam Mohamed 
168518048c1aSGulam Mohamed 	err = mutex_lock_killable(&lo->lo_mutex);
168618048c1aSGulam Mohamed 	if (err)
168718048c1aSGulam Mohamed 		return err;
168818048c1aSGulam Mohamed 
168918048c1aSGulam Mohamed 	if (lo->lo_state == Lo_deleting || lo->lo_state == Lo_rundown)
169018048c1aSGulam Mohamed 		err = -ENXIO;
169118048c1aSGulam Mohamed 	mutex_unlock(&lo->lo_mutex);
169218048c1aSGulam Mohamed 	return err;
169318048c1aSGulam Mohamed }
169418048c1aSGulam Mohamed 
lo_release(struct gendisk * disk)1695ae220766SChristoph Hellwig static void lo_release(struct gendisk *disk)
16961da177e4SLinus Torvalds {
16976cc8e743SPavel Tatashin 	struct loop_device *lo = disk->private_data;
169818048c1aSGulam Mohamed 	bool need_clear = false;
16991da177e4SLinus Torvalds 
1700a0e286b6SChristoph Hellwig 	if (disk_openers(disk) > 0)
1701a0e286b6SChristoph Hellwig 		return;
170218048c1aSGulam Mohamed 	/*
170318048c1aSGulam Mohamed 	 * Clear the backing device information if this is the last close of
170418048c1aSGulam Mohamed 	 * a device that's been marked for auto clear, or on which LOOP_CLR_FD
170518048c1aSGulam Mohamed 	 * has been called.
170618048c1aSGulam Mohamed 	 */
1707f8933667SMing Lei 
1708a0e286b6SChristoph Hellwig 	mutex_lock(&lo->lo_mutex);
170918048c1aSGulam Mohamed 	if (lo->lo_state == Lo_bound && (lo->lo_flags & LO_FLAGS_AUTOCLEAR))
1710a2505b79SJan Kara 		lo->lo_state = Lo_rundown;
171118048c1aSGulam Mohamed 
171218048c1aSGulam Mohamed 	need_clear = (lo->lo_state == Lo_rundown);
17136cc8e743SPavel Tatashin 	mutex_unlock(&lo->lo_mutex);
171418048c1aSGulam Mohamed 
171518048c1aSGulam Mohamed 	if (need_clear)
171618048c1aSGulam Mohamed 		__loop_clr_fd(lo);
171714f27939SMilan Broz }
171896c58655SDavid Woodhouse 
lo_free_disk(struct gendisk * disk)1719d2c7f56fSChristoph Hellwig static void lo_free_disk(struct gendisk *disk)
1720d2c7f56fSChristoph Hellwig {
1721d2c7f56fSChristoph Hellwig 	struct loop_device *lo = disk->private_data;
1722d2c7f56fSChristoph Hellwig 
1723d292dc80SChristoph Hellwig 	if (lo->workqueue)
1724d292dc80SChristoph Hellwig 		destroy_workqueue(lo->workqueue);
1725d292dc80SChristoph Hellwig 	loop_free_idle_workers(lo, true);
1726292a089dSSteven Rostedt (Google) 	timer_shutdown_sync(&lo->timer);
1727d2c7f56fSChristoph Hellwig 	mutex_destroy(&lo->lo_mutex);
1728d2c7f56fSChristoph Hellwig 	kfree(lo);
1729ae665016SLinus Torvalds }
1730ae665016SLinus Torvalds 
173183d5cde4SAlexey Dobriyan static const struct block_device_operations lo_fops = {
17321da177e4SLinus Torvalds 	.owner =	THIS_MODULE,
173318048c1aSGulam Mohamed 	.open =         lo_open,
1734bb214884SAl Viro 	.release =	lo_release,
1735bb214884SAl Viro 	.ioctl =	lo_ioctl,
1736863d5b82SDavid Howells #ifdef CONFIG_COMPAT
1737bb214884SAl Viro 	.compat_ioctl =	lo_compat_ioctl,
1738863d5b82SDavid Howells #endif
1739d2c7f56fSChristoph Hellwig 	.free_disk =	lo_free_disk,
17401da177e4SLinus Torvalds };
17411da177e4SLinus Torvalds 
17421da177e4SLinus Torvalds /*
17431da177e4SLinus Torvalds  * And now the modules code and kernel interface.
17441da177e4SLinus Torvalds  */
174585c50197SIsaac J. Manjarres 
174685c50197SIsaac J. Manjarres /*
174785c50197SIsaac J. Manjarres  * If max_loop is specified, create that many devices upfront.
174885c50197SIsaac J. Manjarres  * This also becomes a hard limit. If max_loop is not specified,
1749bb5faa99SMauricio Faria de Oliveira  * the default isn't a hard limit (as before commit 85c50197716c
1750bb5faa99SMauricio Faria de Oliveira  * changed the default value from 0 for max_loop=0 reasons), just
175185c50197SIsaac J. Manjarres  * create CONFIG_BLK_DEV_LOOP_MIN_COUNT loop devices at module
175285c50197SIsaac J. Manjarres  * init time. Loop devices can be requested on-demand with the
175385c50197SIsaac J. Manjarres  * /dev/loop-control interface, or be instantiated by accessing
175485c50197SIsaac J. Manjarres  * a 'dead' device node.
175585c50197SIsaac J. Manjarres  */
175685c50197SIsaac J. Manjarres static int max_loop = CONFIG_BLK_DEV_LOOP_MIN_COUNT;
1757bb5faa99SMauricio Faria de Oliveira 
1758bb5faa99SMauricio Faria de Oliveira #ifdef CONFIG_BLOCK_LEGACY_AUTOLOAD
1759bb5faa99SMauricio Faria de Oliveira static bool max_loop_specified;
1760bb5faa99SMauricio Faria de Oliveira 
max_loop_param_set_int(const char * val,const struct kernel_param * kp)1761bb5faa99SMauricio Faria de Oliveira static int max_loop_param_set_int(const char *val,
1762bb5faa99SMauricio Faria de Oliveira 				  const struct kernel_param *kp)
1763bb5faa99SMauricio Faria de Oliveira {
1764bb5faa99SMauricio Faria de Oliveira 	int ret;
1765bb5faa99SMauricio Faria de Oliveira 
1766bb5faa99SMauricio Faria de Oliveira 	ret = param_set_int(val, kp);
1767bb5faa99SMauricio Faria de Oliveira 	if (ret < 0)
1768bb5faa99SMauricio Faria de Oliveira 		return ret;
1769bb5faa99SMauricio Faria de Oliveira 
1770bb5faa99SMauricio Faria de Oliveira 	max_loop_specified = true;
1771bb5faa99SMauricio Faria de Oliveira 	return 0;
1772bb5faa99SMauricio Faria de Oliveira }
1773bb5faa99SMauricio Faria de Oliveira 
1774bb5faa99SMauricio Faria de Oliveira static const struct kernel_param_ops max_loop_param_ops = {
1775bb5faa99SMauricio Faria de Oliveira 	.set = max_loop_param_set_int,
1776bb5faa99SMauricio Faria de Oliveira 	.get = param_get_int,
1777bb5faa99SMauricio Faria de Oliveira };
1778bb5faa99SMauricio Faria de Oliveira 
1779bb5faa99SMauricio Faria de Oliveira module_param_cb(max_loop, &max_loop_param_ops, &max_loop, 0444);
1780a47653fcSKen Chen MODULE_PARM_DESC(max_loop, "Maximum number of loop devices");
1781bb5faa99SMauricio Faria de Oliveira #else
1782bb5faa99SMauricio Faria de Oliveira module_param(max_loop, int, 0444);
1783bb5faa99SMauricio Faria de Oliveira MODULE_PARM_DESC(max_loop, "Initial number of loop devices");
1784bb5faa99SMauricio Faria de Oliveira #endif
1785bb5faa99SMauricio Faria de Oliveira 
17865657a819SJoe Perches module_param(max_part, int, 0444);
1787476a4813SLaurent Vivier MODULE_PARM_DESC(max_part, "Maximum number of partitions per loop device");
1788ef44c508SChaitanya Kulkarni 
1789ef44c508SChaitanya Kulkarni static int hw_queue_depth = LOOP_DEFAULT_HW_Q_DEPTH;
1790ef44c508SChaitanya Kulkarni 
loop_set_hw_queue_depth(const char * s,const struct kernel_param * p)1791ef44c508SChaitanya Kulkarni static int loop_set_hw_queue_depth(const char *s, const struct kernel_param *p)
1792ef44c508SChaitanya Kulkarni {
1793e152a05fSBart Van Assche 	int qd, ret;
1794ef44c508SChaitanya Kulkarni 
1795e152a05fSBart Van Assche 	ret = kstrtoint(s, 0, &qd);
1796e152a05fSBart Van Assche 	if (ret < 0)
1797e152a05fSBart Van Assche 		return ret;
1798e152a05fSBart Van Assche 	if (qd < 1)
1799e152a05fSBart Van Assche 		return -EINVAL;
1800e152a05fSBart Van Assche 	hw_queue_depth = qd;
1801e152a05fSBart Van Assche 	return 0;
1802ef44c508SChaitanya Kulkarni }
1803ef44c508SChaitanya Kulkarni 
1804ef44c508SChaitanya Kulkarni static const struct kernel_param_ops loop_hw_qdepth_param_ops = {
1805ef44c508SChaitanya Kulkarni 	.set	= loop_set_hw_queue_depth,
1806ef44c508SChaitanya Kulkarni 	.get	= param_get_int,
1807ef44c508SChaitanya Kulkarni };
1808ef44c508SChaitanya Kulkarni 
1809ef44c508SChaitanya Kulkarni device_param_cb(hw_queue_depth, &loop_hw_qdepth_param_ops, &hw_queue_depth, 0444);
1810e152a05fSBart Van Assche MODULE_PARM_DESC(hw_queue_depth, "Queue depth for each hardware queue. Default: " __stringify(LOOP_DEFAULT_HW_Q_DEPTH));
1811ef44c508SChaitanya Kulkarni 
18127d4425d2SJeff Johnson MODULE_DESCRIPTION("Loopback device support");
18131da177e4SLinus Torvalds MODULE_LICENSE("GPL");
18141da177e4SLinus Torvalds MODULE_ALIAS_BLOCKDEV_MAJOR(LOOP_MAJOR);
18151da177e4SLinus Torvalds 
loop_queue_rq(struct blk_mq_hw_ctx * hctx,const struct blk_mq_queue_data * bd)1816fc17b653SChristoph Hellwig static blk_status_t loop_queue_rq(struct blk_mq_hw_ctx *hctx,
1817b5dd2f60SMing Lei 		const struct blk_mq_queue_data *bd)
1818b5dd2f60SMing Lei {
18191894e916SJens Axboe 	struct request *rq = bd->rq;
18201894e916SJens Axboe 	struct loop_cmd *cmd = blk_mq_rq_to_pdu(rq);
18211894e916SJens Axboe 	struct loop_device *lo = rq->q->queuedata;
1822b5dd2f60SMing Lei 
18231894e916SJens Axboe 	blk_mq_start_request(rq);
1824b5dd2f60SMing Lei 
1825f4aa4c7bSMing Lei 	if (lo->lo_state != Lo_bound)
1826fc17b653SChristoph Hellwig 		return BLK_STS_IOERR;
1827f4aa4c7bSMing Lei 
18281894e916SJens Axboe 	switch (req_op(rq)) {
1829f0225cacSChristoph Hellwig 	case REQ_OP_FLUSH:
1830f0225cacSChristoph Hellwig 	case REQ_OP_DISCARD:
183119372e27SChristoph Hellwig 	case REQ_OP_WRITE_ZEROES:
1832bc07c10aSMing Lei 		cmd->use_aio = false;
1833f0225cacSChristoph Hellwig 		break;
1834f0225cacSChristoph Hellwig 	default:
1835afd69d5cSChristoph Hellwig 		cmd->use_aio = lo->lo_flags & LO_FLAGS_DIRECT_IO;
1836f0225cacSChristoph Hellwig 		break;
1837f0225cacSChristoph Hellwig 	}
1838bc07c10aSMing Lei 
1839d4478e92SShaohua Li 	/* always use the first bio's css */
1840c74d40e8SDan Schatzberg 	cmd->blkcg_css = NULL;
1841c74d40e8SDan Schatzberg 	cmd->memcg_css = NULL;
18420b508bc9SShaohua Li #ifdef CONFIG_BLK_CGROUP
1843bbb1ebe7SChristoph Hellwig 	if (rq->bio) {
1844bbb1ebe7SChristoph Hellwig 		cmd->blkcg_css = bio_blkcg_css(rq->bio);
1845c74d40e8SDan Schatzberg #ifdef CONFIG_MEMCG
1846bbb1ebe7SChristoph Hellwig 		if (cmd->blkcg_css) {
1847c74d40e8SDan Schatzberg 			cmd->memcg_css =
1848c74d40e8SDan Schatzberg 				cgroup_get_e_css(cmd->blkcg_css->cgroup,
1849c74d40e8SDan Schatzberg 						&memory_cgrp_subsys);
1850bbb1ebe7SChristoph Hellwig 		}
1851d4478e92SShaohua Li #endif
1852c74d40e8SDan Schatzberg 	}
1853c74d40e8SDan Schatzberg #endif
185487579e9bSDan Schatzberg 	loop_queue_work(lo, cmd);
1855b5dd2f60SMing Lei 
1856fc17b653SChristoph Hellwig 	return BLK_STS_OK;
1857b5dd2f60SMing Lei }
1858b5dd2f60SMing Lei 
loop_handle_cmd(struct loop_cmd * cmd)1859b5dd2f60SMing Lei static void loop_handle_cmd(struct loop_cmd *cmd)
1860b5dd2f60SMing Lei {
18619b0cb770SBart Van Assche 	struct cgroup_subsys_state *cmd_blkcg_css = cmd->blkcg_css;
18629b0cb770SBart Van Assche 	struct cgroup_subsys_state *cmd_memcg_css = cmd->memcg_css;
18631894e916SJens Axboe 	struct request *rq = blk_mq_rq_from_pdu(cmd);
18641894e916SJens Axboe 	const bool write = op_is_write(req_op(rq));
18651894e916SJens Axboe 	struct loop_device *lo = rq->q->queuedata;
1866f4829a9bSChristoph Hellwig 	int ret = 0;
1867c74d40e8SDan Schatzberg 	struct mem_cgroup *old_memcg = NULL;
1868b5dd2f60SMing Lei 
1869f4829a9bSChristoph Hellwig 	if (write && (lo->lo_flags & LO_FLAGS_READ_ONLY)) {
1870f4829a9bSChristoph Hellwig 		ret = -EIO;
1871b5dd2f60SMing Lei 		goto failed;
1872f4829a9bSChristoph Hellwig 	}
1873b5dd2f60SMing Lei 
18749b0cb770SBart Van Assche 	if (cmd_blkcg_css)
18759b0cb770SBart Van Assche 		kthread_associate_blkcg(cmd_blkcg_css);
18769b0cb770SBart Van Assche 	if (cmd_memcg_css)
1877c74d40e8SDan Schatzberg 		old_memcg = set_active_memcg(
18789b0cb770SBart Van Assche 			mem_cgroup_from_css(cmd_memcg_css));
1879c74d40e8SDan Schatzberg 
18809b0cb770SBart Van Assche 	/*
18819b0cb770SBart Van Assche 	 * do_req_filebacked() may call blk_mq_complete_request() synchronously
18829b0cb770SBart Van Assche 	 * or asynchronously if using aio. Hence, do not touch 'cmd' after
18839b0cb770SBart Van Assche 	 * do_req_filebacked() has returned unless we are sure that 'cmd' has
18849b0cb770SBart Van Assche 	 * not yet been completed.
18859b0cb770SBart Van Assche 	 */
18861894e916SJens Axboe 	ret = do_req_filebacked(lo, rq);
1887c74d40e8SDan Schatzberg 
18889b0cb770SBart Van Assche 	if (cmd_blkcg_css)
1889c74d40e8SDan Schatzberg 		kthread_associate_blkcg(NULL);
1890c74d40e8SDan Schatzberg 
18919b0cb770SBart Van Assche 	if (cmd_memcg_css) {
1892c74d40e8SDan Schatzberg 		set_active_memcg(old_memcg);
18939b0cb770SBart Van Assche 		css_put(cmd_memcg_css);
1894c74d40e8SDan Schatzberg 	}
1895b5dd2f60SMing Lei  failed:
1896bc07c10aSMing Lei 	/* complete non-aio request */
1897f2fed441SChristoph Hellwig 	if (ret != -EIOCBQUEUED) {
18988cd55087SEvan Green 		if (ret == -EOPNOTSUPP)
18998cd55087SEvan Green 			cmd->ret = ret;
19008cd55087SEvan Green 		else
1901fe2cb290SChristoph Hellwig 			cmd->ret = ret ? -EIO : 0;
190215f73f5bSChristoph Hellwig 		if (likely(!blk_should_fake_timeout(rq->q)))
19031894e916SJens Axboe 			blk_mq_complete_request(rq);
1904fe2cb290SChristoph Hellwig 	}
1905b5dd2f60SMing Lei }
1906b5dd2f60SMing Lei 
loop_process_work(struct loop_worker * worker,struct list_head * cmd_list,struct loop_device * lo)190787579e9bSDan Schatzberg static void loop_process_work(struct loop_worker *worker,
190887579e9bSDan Schatzberg 			struct list_head *cmd_list, struct loop_device *lo)
1909b5dd2f60SMing Lei {
191087579e9bSDan Schatzberg 	int orig_flags = current->flags;
191187579e9bSDan Schatzberg 	struct loop_cmd *cmd;
1912b5dd2f60SMing Lei 
191387579e9bSDan Schatzberg 	current->flags |= PF_LOCAL_THROTTLE | PF_MEMALLOC_NOIO;
191487579e9bSDan Schatzberg 	spin_lock_irq(&lo->lo_work_lock);
191587579e9bSDan Schatzberg 	while (!list_empty(cmd_list)) {
191687579e9bSDan Schatzberg 		cmd = container_of(
191787579e9bSDan Schatzberg 			cmd_list->next, struct loop_cmd, list_entry);
191887579e9bSDan Schatzberg 		list_del(cmd_list->next);
191987579e9bSDan Schatzberg 		spin_unlock_irq(&lo->lo_work_lock);
192087579e9bSDan Schatzberg 
192187579e9bSDan Schatzberg 		loop_handle_cmd(cmd);
192287579e9bSDan Schatzberg 		cond_resched();
192387579e9bSDan Schatzberg 
192487579e9bSDan Schatzberg 		spin_lock_irq(&lo->lo_work_lock);
192587579e9bSDan Schatzberg 	}
192687579e9bSDan Schatzberg 
192787579e9bSDan Schatzberg 	/*
192887579e9bSDan Schatzberg 	 * We only add to the idle list if there are no pending cmds
192987579e9bSDan Schatzberg 	 * *and* the worker will not run again which ensures that it
193087579e9bSDan Schatzberg 	 * is safe to free any worker on the idle list
193187579e9bSDan Schatzberg 	 */
193287579e9bSDan Schatzberg 	if (worker && !work_pending(&worker->work)) {
193387579e9bSDan Schatzberg 		worker->last_ran_at = jiffies;
193487579e9bSDan Schatzberg 		list_add_tail(&worker->idle_list, &lo->idle_worker_list);
193587579e9bSDan Schatzberg 		loop_set_timer(lo);
193687579e9bSDan Schatzberg 	}
193787579e9bSDan Schatzberg 	spin_unlock_irq(&lo->lo_work_lock);
193887579e9bSDan Schatzberg 	current->flags = orig_flags;
193987579e9bSDan Schatzberg }
194087579e9bSDan Schatzberg 
loop_workfn(struct work_struct * work)194187579e9bSDan Schatzberg static void loop_workfn(struct work_struct *work)
194287579e9bSDan Schatzberg {
194387579e9bSDan Schatzberg 	struct loop_worker *worker =
194487579e9bSDan Schatzberg 		container_of(work, struct loop_worker, work);
194587579e9bSDan Schatzberg 	loop_process_work(worker, &worker->cmd_list, worker->lo);
194687579e9bSDan Schatzberg }
194787579e9bSDan Schatzberg 
loop_rootcg_workfn(struct work_struct * work)194887579e9bSDan Schatzberg static void loop_rootcg_workfn(struct work_struct *work)
194987579e9bSDan Schatzberg {
195087579e9bSDan Schatzberg 	struct loop_device *lo =
195187579e9bSDan Schatzberg 		container_of(work, struct loop_device, rootcg_work);
195287579e9bSDan Schatzberg 	loop_process_work(NULL, &lo->rootcg_cmd_list, lo);
195387579e9bSDan Schatzberg }
195487579e9bSDan Schatzberg 
1955f363b089SEric Biggers static const struct blk_mq_ops loop_mq_ops = {
1956b5dd2f60SMing Lei 	.queue_rq       = loop_queue_rq,
1957fe2cb290SChristoph Hellwig 	.complete	= lo_complete_rq,
1958b5dd2f60SMing Lei };
1959b5dd2f60SMing Lei 
loop_add(int i)1960d6da83d0SChristoph Hellwig static int loop_add(int i)
19611da177e4SLinus Torvalds {
196202aed4a1SChristoph Hellwig 	struct queue_limits lim = {
196302aed4a1SChristoph Hellwig 		/*
196402aed4a1SChristoph Hellwig 		 * Random number picked from the historic block max_sectors cap.
196502aed4a1SChristoph Hellwig 		 */
196602aed4a1SChristoph Hellwig 		.max_hw_sectors		= 2560u,
196702aed4a1SChristoph Hellwig 	};
196873285082SKen Chen 	struct loop_device *lo;
196973285082SKen Chen 	struct gendisk *disk;
197034dd82afSKay Sievers 	int err;
19711da177e4SLinus Torvalds 
197234dd82afSKay Sievers 	err = -ENOMEM;
197368d740d7SSilva Paulo 	lo = kzalloc(sizeof(*lo), GFP_KERNEL);
197468d740d7SSilva Paulo 	if (!lo)
197573285082SKen Chen 		goto out;
1976b15ed546SChristoph Hellwig 	lo->worker_tree = RB_ROOT;
1977b15ed546SChristoph Hellwig 	INIT_LIST_HEAD(&lo->idle_worker_list);
1978b15ed546SChristoph Hellwig 	timer_setup(&lo->timer, loop_free_idle_workers_timer, TIMER_DEFERRABLE);
1979ef7e7c82SMikulas Patocka 	lo->lo_state = Lo_unbound;
1980ef7e7c82SMikulas Patocka 
198118d1f200SChristoph Hellwig 	err = mutex_lock_killable(&loop_ctl_mutex);
198218d1f200SChristoph Hellwig 	if (err)
198318d1f200SChristoph Hellwig 		goto out_free_dev;
198418d1f200SChristoph Hellwig 
1985c718aa65STejun Heo 	/* allocate id, if @id >= 0, we're requesting that specific id */
198634dd82afSKay Sievers 	if (i >= 0) {
1987c718aa65STejun Heo 		err = idr_alloc(&loop_index_idr, lo, i, i + 1, GFP_KERNEL);
1988c718aa65STejun Heo 		if (err == -ENOSPC)
198934dd82afSKay Sievers 			err = -EEXIST;
199034dd82afSKay Sievers 	} else {
1991c718aa65STejun Heo 		err = idr_alloc(&loop_index_idr, lo, 0, 0, GFP_KERNEL);
199234dd82afSKay Sievers 	}
19931c500ad7STetsuo Handa 	mutex_unlock(&loop_ctl_mutex);
199434dd82afSKay Sievers 	if (err < 0)
19951c500ad7STetsuo Handa 		goto out_free_dev;
1996c718aa65STejun Heo 	i = err;
19971da177e4SLinus Torvalds 
1998b5dd2f60SMing Lei 	lo->tag_set.ops = &loop_mq_ops;
1999b5dd2f60SMing Lei 	lo->tag_set.nr_hw_queues = 1;
2000ef44c508SChaitanya Kulkarni 	lo->tag_set.queue_depth = hw_queue_depth;
2001b5dd2f60SMing Lei 	lo->tag_set.numa_node = NUMA_NO_NODE;
2002b5dd2f60SMing Lei 	lo->tag_set.cmd_size = sizeof(struct loop_cmd);
2003cc76ace4SChristoph Hellwig 	lo->tag_set.flags = BLK_MQ_F_STACKING | BLK_MQ_F_NO_SCHED_BY_DEFAULT;
2004b5dd2f60SMing Lei 	lo->tag_set.driver_data = lo;
2005b5dd2f60SMing Lei 
2006b5dd2f60SMing Lei 	err = blk_mq_alloc_tag_set(&lo->tag_set);
2007b5dd2f60SMing Lei 	if (err)
20083ec981e3SMikulas Patocka 		goto out_free_idr;
200973285082SKen Chen 
201002aed4a1SChristoph Hellwig 	disk = lo->lo_disk = blk_mq_alloc_disk(&lo->tag_set, &lim, lo);
20111c99502fSChristoph Hellwig 	if (IS_ERR(disk)) {
20121c99502fSChristoph Hellwig 		err = PTR_ERR(disk);
2013b5dd2f60SMing Lei 		goto out_cleanup_tags;
2014b5dd2f60SMing Lei 	}
20151c99502fSChristoph Hellwig 	lo->lo_queue = lo->lo_disk->queue;
2016ef7e7c82SMikulas Patocka 
20175b5e20f4SMing Lei 	/*
2018e03c8dd1SKay Sievers 	 * Disable partition scanning by default. The in-kernel partition
2019e03c8dd1SKay Sievers 	 * scanning can be requested individually per-device during its
2020e03c8dd1SKay Sievers 	 * setup. Userspace can always add and remove partitions from all
2021e03c8dd1SKay Sievers 	 * devices. The needed partition minors are allocated from the
2022e03c8dd1SKay Sievers 	 * extended minor space, the main loop device numbers will continue
2023e03c8dd1SKay Sievers 	 * to match the loop minors, regardless of the number of partitions
2024e03c8dd1SKay Sievers 	 * used.
2025e03c8dd1SKay Sievers 	 *
2026e03c8dd1SKay Sievers 	 * If max_part is given, partition scanning is globally enabled for
2027e03c8dd1SKay Sievers 	 * all loop devices. The minors for the main loop devices will be
2028e03c8dd1SKay Sievers 	 * multiples of max_part.
2029e03c8dd1SKay Sievers 	 *
2030e03c8dd1SKay Sievers 	 * Note: Global-for-all-devices, set-only-at-init, read-only module
2031e03c8dd1SKay Sievers 	 * parameteters like 'max_loop' and 'max_part' make things needlessly
2032e03c8dd1SKay Sievers 	 * complicated, are too static, inflexible and may surprise
2033e03c8dd1SKay Sievers 	 * userspace tools. Parameters like this in general should be avoided.
2034e03c8dd1SKay Sievers 	 */
2035e03c8dd1SKay Sievers 	if (!part_shift)
2036b9684a71SChristoph Hellwig 		set_bit(GD_SUPPRESS_PART_SCAN, &disk->state);
20376cc8e743SPavel Tatashin 	mutex_init(&lo->lo_mutex);
20381da177e4SLinus Torvalds 	lo->lo_number		= i;
20391da177e4SLinus Torvalds 	spin_lock_init(&lo->lo_lock);
204087579e9bSDan Schatzberg 	spin_lock_init(&lo->lo_work_lock);
2041d292dc80SChristoph Hellwig 	INIT_WORK(&lo->rootcg_work, loop_rootcg_workfn);
2042d292dc80SChristoph Hellwig 	INIT_LIST_HEAD(&lo->rootcg_cmd_list);
20431da177e4SLinus Torvalds 	disk->major		= LOOP_MAJOR;
2044476a4813SLaurent Vivier 	disk->first_minor	= i << part_shift;
20451c99502fSChristoph Hellwig 	disk->minors		= 1 << part_shift;
20461da177e4SLinus Torvalds 	disk->fops		= &lo_fops;
20471da177e4SLinus Torvalds 	disk->private_data	= lo;
20481da177e4SLinus Torvalds 	disk->queue		= lo->lo_queue;
20499f65c489SMatteo Croce 	disk->events		= DISK_EVENT_MEDIA_CHANGE;
20509f65c489SMatteo Croce 	disk->event_flags	= DISK_EVENT_FLAG_UEVENT;
205173285082SKen Chen 	sprintf(disk->disk_name, "loop%d", i);
20521c500ad7STetsuo Handa 	/* Make this loop device reachable from pathname. */
2053905705f0SLuis Chamberlain 	err = add_disk(disk);
2054905705f0SLuis Chamberlain 	if (err)
2055905705f0SLuis Chamberlain 		goto out_cleanup_disk;
2056905705f0SLuis Chamberlain 
20571c500ad7STetsuo Handa 	/* Show this loop device. */
20581c500ad7STetsuo Handa 	mutex_lock(&loop_ctl_mutex);
20591c500ad7STetsuo Handa 	lo->idr_visible = true;
206018d1f200SChristoph Hellwig 	mutex_unlock(&loop_ctl_mutex);
2061905705f0SLuis Chamberlain 
206218d1f200SChristoph Hellwig 	return i;
206373285082SKen Chen 
2064905705f0SLuis Chamberlain out_cleanup_disk:
20658b9ab626SChristoph Hellwig 	put_disk(disk);
2066b5dd2f60SMing Lei out_cleanup_tags:
2067b5dd2f60SMing Lei 	blk_mq_free_tag_set(&lo->tag_set);
20683ec981e3SMikulas Patocka out_free_idr:
20691c500ad7STetsuo Handa 	mutex_lock(&loop_ctl_mutex);
20703ec981e3SMikulas Patocka 	idr_remove(&loop_index_idr, i);
207118d1f200SChristoph Hellwig 	mutex_unlock(&loop_ctl_mutex);
207273285082SKen Chen out_free_dev:
207373285082SKen Chen 	kfree(lo);
207473285082SKen Chen out:
207534dd82afSKay Sievers 	return err;
20761da177e4SLinus Torvalds }
20771da177e4SLinus Torvalds 
loop_remove(struct loop_device * lo)207834dd82afSKay Sievers static void loop_remove(struct loop_device *lo)
207973285082SKen Chen {
20801c500ad7STetsuo Handa 	/* Make this loop device unreachable from pathname. */
20816cd18e71SNeilBrown 	del_gendisk(lo->lo_disk);
2082b5dd2f60SMing Lei 	blk_mq_free_tag_set(&lo->tag_set);
2083ce8d7861SChristoph Hellwig 
20841c500ad7STetsuo Handa 	mutex_lock(&loop_ctl_mutex);
20851c500ad7STetsuo Handa 	idr_remove(&loop_index_idr, lo->lo_number);
20861c500ad7STetsuo Handa 	mutex_unlock(&loop_ctl_mutex);
2087d2c7f56fSChristoph Hellwig 
2088d2c7f56fSChristoph Hellwig 	put_disk(lo->lo_disk);
208973285082SKen Chen }
209073285082SKen Chen 
209123881aecSMauricio Faria de Oliveira #ifdef CONFIG_BLOCK_LEGACY_AUTOLOAD
loop_probe(dev_t dev)20928410d38cSChristoph Hellwig static void loop_probe(dev_t dev)
209373285082SKen Chen {
20948410d38cSChristoph Hellwig 	int idx = MINOR(dev) >> part_shift;
20958410d38cSChristoph Hellwig 
2096bb5faa99SMauricio Faria de Oliveira 	if (max_loop_specified && max_loop && idx >= max_loop)
20978410d38cSChristoph Hellwig 		return;
2098d6da83d0SChristoph Hellwig 	loop_add(idx);
2099f9d10764SChristoph Hellwig }
210023881aecSMauricio Faria de Oliveira #else
210123881aecSMauricio Faria de Oliveira #define loop_probe NULL
210223881aecSMauricio Faria de Oliveira #endif /* !CONFIG_BLOCK_LEGACY_AUTOLOAD */
2103f9d10764SChristoph Hellwig 
loop_control_remove(int idx)2104f9d10764SChristoph Hellwig static int loop_control_remove(int idx)
2105770fe30aSKay Sievers {
2106770fe30aSKay Sievers 	struct loop_device *lo;
21070a42e99bSJan Kara 	int ret;
2108e5d66a10SChristoph Hellwig 
2109e5d66a10SChristoph Hellwig 	if (idx < 0) {
2110e3f9387aSTetsuo Handa 		pr_warn_once("deleting an unspecified loop device is not supported.\n");
2111e5d66a10SChristoph Hellwig 		return -EINVAL;
2112e5d66a10SChristoph Hellwig 	}
2113770fe30aSKay Sievers 
21141c500ad7STetsuo Handa 	/* Hide this loop device for serialization. */
21150a42e99bSJan Kara 	ret = mutex_lock_killable(&loop_ctl_mutex);
21160a42e99bSJan Kara 	if (ret)
21170a42e99bSJan Kara 		return ret;
2118b9848081SChristoph Hellwig 	lo = idr_find(&loop_index_idr, idx);
21191c500ad7STetsuo Handa 	if (!lo || !lo->idr_visible)
2120b9848081SChristoph Hellwig 		ret = -ENODEV;
21211c500ad7STetsuo Handa 	else
21221c500ad7STetsuo Handa 		lo->idr_visible = false;
21231c500ad7STetsuo Handa 	mutex_unlock(&loop_ctl_mutex);
21241c500ad7STetsuo Handa 	if (ret)
21251c500ad7STetsuo Handa 		return ret;
2126f9d10764SChristoph Hellwig 
21271c500ad7STetsuo Handa 	/* Check whether this loop device can be removed. */
21286cc8e743SPavel Tatashin 	ret = mutex_lock_killable(&lo->lo_mutex);
21296cc8e743SPavel Tatashin 	if (ret)
21301c500ad7STetsuo Handa 		goto mark_visible;
2131a0e286b6SChristoph Hellwig 	if (lo->lo_state != Lo_unbound || disk_openers(lo->lo_disk) > 0) {
21326cc8e743SPavel Tatashin 		mutex_unlock(&lo->lo_mutex);
2133770fe30aSKay Sievers 		ret = -EBUSY;
21341c500ad7STetsuo Handa 		goto mark_visible;
2135770fe30aSKay Sievers 	}
2136a0e286b6SChristoph Hellwig 	/* Mark this loop device as no more bound, but not quite unbound yet */
2137990e7811SChristoph Hellwig 	lo->lo_state = Lo_deleting;
21386cc8e743SPavel Tatashin 	mutex_unlock(&lo->lo_mutex);
2139f9d10764SChristoph Hellwig 
2140770fe30aSKay Sievers 	loop_remove(lo);
21411c500ad7STetsuo Handa 	return 0;
21421c500ad7STetsuo Handa 
21431c500ad7STetsuo Handa mark_visible:
21441c500ad7STetsuo Handa 	/* Show this loop device again. */
21451c500ad7STetsuo Handa 	mutex_lock(&loop_ctl_mutex);
21461c500ad7STetsuo Handa 	lo->idr_visible = true;
2147f9d10764SChristoph Hellwig 	mutex_unlock(&loop_ctl_mutex);
2148f9d10764SChristoph Hellwig 	return ret;
2149770fe30aSKay Sievers }
2150f9d10764SChristoph Hellwig 
loop_control_get_free(int idx)2151f9d10764SChristoph Hellwig static int loop_control_get_free(int idx)
2152f9d10764SChristoph Hellwig {
2153f9d10764SChristoph Hellwig 	struct loop_device *lo;
2154b9848081SChristoph Hellwig 	int id, ret;
2155f9d10764SChristoph Hellwig 
2156f9d10764SChristoph Hellwig 	ret = mutex_lock_killable(&loop_ctl_mutex);
2157f9d10764SChristoph Hellwig 	if (ret)
2158f9d10764SChristoph Hellwig 		return ret;
2159b9848081SChristoph Hellwig 	idr_for_each_entry(&loop_index_idr, lo, id) {
21601c500ad7STetsuo Handa 		/* Hitting a race results in creating a new loop device which is harmless. */
21611c500ad7STetsuo Handa 		if (lo->idr_visible && data_race(lo->lo_state) == Lo_unbound)
2162b9848081SChristoph Hellwig 			goto found;
2163b9848081SChristoph Hellwig 	}
21640a42e99bSJan Kara 	mutex_unlock(&loop_ctl_mutex);
216518d1f200SChristoph Hellwig 	return loop_add(-1);
2166b9848081SChristoph Hellwig found:
2167b9848081SChristoph Hellwig 	mutex_unlock(&loop_ctl_mutex);
2168b9848081SChristoph Hellwig 	return id;
2169770fe30aSKay Sievers }
2170770fe30aSKay Sievers 
loop_control_ioctl(struct file * file,unsigned int cmd,unsigned long parm)2171f9d10764SChristoph Hellwig static long loop_control_ioctl(struct file *file, unsigned int cmd,
2172f9d10764SChristoph Hellwig 			       unsigned long parm)
2173f9d10764SChristoph Hellwig {
2174f9d10764SChristoph Hellwig 	switch (cmd) {
2175f9d10764SChristoph Hellwig 	case LOOP_CTL_ADD:
217618d1f200SChristoph Hellwig 		return loop_add(parm);
2177f9d10764SChristoph Hellwig 	case LOOP_CTL_REMOVE:
2178f9d10764SChristoph Hellwig 		return loop_control_remove(parm);
2179f9d10764SChristoph Hellwig 	case LOOP_CTL_GET_FREE:
2180f9d10764SChristoph Hellwig 		return loop_control_get_free(parm);
2181f9d10764SChristoph Hellwig 	default:
2182f9d10764SChristoph Hellwig 		return -ENOSYS;
2183f9d10764SChristoph Hellwig 	}
2184f9d10764SChristoph Hellwig }
2185f9d10764SChristoph Hellwig 
2186770fe30aSKay Sievers static const struct file_operations loop_ctl_fops = {
2187770fe30aSKay Sievers 	.open		= nonseekable_open,
2188770fe30aSKay Sievers 	.unlocked_ioctl	= loop_control_ioctl,
2189770fe30aSKay Sievers 	.compat_ioctl	= loop_control_ioctl,
2190770fe30aSKay Sievers 	.owner		= THIS_MODULE,
2191770fe30aSKay Sievers 	.llseek		= noop_llseek,
2192770fe30aSKay Sievers };
2193770fe30aSKay Sievers 
2194770fe30aSKay Sievers static struct miscdevice loop_misc = {
2195770fe30aSKay Sievers 	.minor		= LOOP_CTRL_MINOR,
2196770fe30aSKay Sievers 	.name		= "loop-control",
2197770fe30aSKay Sievers 	.fops		= &loop_ctl_fops,
2198770fe30aSKay Sievers };
2199770fe30aSKay Sievers 
2200770fe30aSKay Sievers MODULE_ALIAS_MISCDEV(LOOP_CTRL_MINOR);
2201770fe30aSKay Sievers MODULE_ALIAS("devname:loop-control");
2202770fe30aSKay Sievers 
loop_init(void)220373285082SKen Chen static int __init loop_init(void)
220473285082SKen Chen {
220585c50197SIsaac J. Manjarres 	int i;
2206770fe30aSKay Sievers 	int err;
2207a47653fcSKen Chen 
2208476a4813SLaurent Vivier 	part_shift = 0;
2209ac04fee0SNamhyung Kim 	if (max_part > 0) {
2210476a4813SLaurent Vivier 		part_shift = fls(max_part);
2211476a4813SLaurent Vivier 
2212ac04fee0SNamhyung Kim 		/*
2213ac04fee0SNamhyung Kim 		 * Adjust max_part according to part_shift as it is exported
2214ac04fee0SNamhyung Kim 		 * to user space so that user can decide correct minor number
2215ac04fee0SNamhyung Kim 		 * if [s]he want to create more devices.
2216ac04fee0SNamhyung Kim 		 *
2217ac04fee0SNamhyung Kim 		 * Note that -1 is required because partition 0 is reserved
2218ac04fee0SNamhyung Kim 		 * for the whole disk.
2219ac04fee0SNamhyung Kim 		 */
2220ac04fee0SNamhyung Kim 		max_part = (1UL << part_shift) - 1;
2221ac04fee0SNamhyung Kim 	}
2222ac04fee0SNamhyung Kim 
2223b1a66504SGuo Chao 	if ((1UL << part_shift) > DISK_MAX_PARTS) {
2224b1a66504SGuo Chao 		err = -EINVAL;
2225a8c1d064SAnton Volkov 		goto err_out;
2226b1a66504SGuo Chao 	}
222778f4bb36SNamhyung Kim 
2228b1a66504SGuo Chao 	if (max_loop > 1UL << (MINORBITS - part_shift)) {
2229b1a66504SGuo Chao 		err = -EINVAL;
2230a8c1d064SAnton Volkov 		goto err_out;
2231b1a66504SGuo Chao 	}
223273285082SKen Chen 
2233a8c1d064SAnton Volkov 	err = misc_register(&loop_misc);
2234a8c1d064SAnton Volkov 	if (err < 0)
2235a8c1d064SAnton Volkov 		goto err_out;
2236a8c1d064SAnton Volkov 
2237a8c1d064SAnton Volkov 
22388410d38cSChristoph Hellwig 	if (__register_blkdev(LOOP_MAJOR, "loop", loop_probe)) {
2239b1a66504SGuo Chao 		err = -EIO;
2240b1a66504SGuo Chao 		goto misc_out;
2241b1a66504SGuo Chao 	}
2242a47653fcSKen Chen 
2243d134b00bSKay Sievers 	/* pre-create number of devices given by config or max_loop */
224485c50197SIsaac J. Manjarres 	for (i = 0; i < max_loop; i++)
2245d6da83d0SChristoph Hellwig 		loop_add(i);
224634dd82afSKay Sievers 
224773285082SKen Chen 	printk(KERN_INFO "loop: module loaded\n");
22481da177e4SLinus Torvalds 	return 0;
2249b1a66504SGuo Chao 
2250b1a66504SGuo Chao misc_out:
2251b1a66504SGuo Chao 	misc_deregister(&loop_misc);
2252a8c1d064SAnton Volkov err_out:
2253b1a66504SGuo Chao 	return err;
225434dd82afSKay Sievers }
2255a47653fcSKen Chen 
loop_exit(void)225673285082SKen Chen static void __exit loop_exit(void)
22571da177e4SLinus Torvalds {
22588e60947dSChristoph Hellwig 	struct loop_device *lo;
22598e60947dSChristoph Hellwig 	int id;
22608e60947dSChristoph Hellwig 
22618b52d8beSChristoph Hellwig 	unregister_blkdev(LOOP_MAJOR, "loop");
22628b52d8beSChristoph Hellwig 	misc_deregister(&loop_misc);
2263200f9337SLuis Chamberlain 
22641c500ad7STetsuo Handa 	/*
22651c500ad7STetsuo Handa 	 * There is no need to use loop_ctl_mutex here, for nobody else can
22661c500ad7STetsuo Handa 	 * access loop_index_idr when this module is unloading (unless forced
22671c500ad7STetsuo Handa 	 * module unloading is requested). If this is not a clean unloading,
22681c500ad7STetsuo Handa 	 * we have no means to avoid kernel crash.
22691c500ad7STetsuo Handa 	 */
22708e60947dSChristoph Hellwig 	idr_for_each_entry(&loop_index_idr, lo, id)
22718e60947dSChristoph Hellwig 		loop_remove(lo);
2272bd5c39edSChristoph Hellwig 
2273bd5c39edSChristoph Hellwig 	idr_destroy(&loop_index_idr);
22741da177e4SLinus Torvalds }
22751da177e4SLinus Torvalds 
22761da177e4SLinus Torvalds module_init(loop_init);
22771da177e4SLinus Torvalds module_exit(loop_exit);
22781da177e4SLinus Torvalds 
22791da177e4SLinus Torvalds #ifndef MODULE
max_loop_setup(char * str)22801da177e4SLinus Torvalds static int __init max_loop_setup(char *str)
22811da177e4SLinus Torvalds {
22821da177e4SLinus Torvalds 	max_loop = simple_strtol(str, NULL, 0);
2283bb5faa99SMauricio Faria de Oliveira #ifdef CONFIG_BLOCK_LEGACY_AUTOLOAD
2284bb5faa99SMauricio Faria de Oliveira 	max_loop_specified = true;
2285bb5faa99SMauricio Faria de Oliveira #endif
22861da177e4SLinus Torvalds 	return 1;
22871da177e4SLinus Torvalds }
22881da177e4SLinus Torvalds 
22891da177e4SLinus Torvalds __setup("max_loop=", max_loop_setup);
22901da177e4SLinus Torvalds #endif
2291