Thomas Gleixner | b886d83c | 2019-06-01 10:08:55 +0200 | [diff] [blame] | 1 | // SPDX-License-Identifier: GPL-2.0-only |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 2 | /* |
| 3 | * Copyright (C) 2007 |
| 4 | * |
| 5 | * Author: Eric Biederman <ebiederm@xmision.com> |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 6 | */ |
| 7 | |
| 8 | #include <linux/module.h> |
| 9 | #include <linux/ipc.h> |
| 10 | #include <linux/nsproxy.h> |
| 11 | #include <linux/sysctl.h> |
| 12 | #include <linux/uaccess.h> |
Michal Clapinski | 5563cab | 2021-11-08 18:35:59 -0800 | [diff] [blame] | 13 | #include <linux/capability.h> |
Pavel Emelyanov | ae5e1b2 | 2008-02-08 04:18:22 -0800 | [diff] [blame] | 14 | #include <linux/ipc_namespace.h> |
Nadia Derbey | 6546bc4 | 2008-04-29 01:00:45 -0700 | [diff] [blame] | 15 | #include <linux/msg.h> |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 16 | #include <linux/slab.h> |
Alexey Gladkov | 50ec499 | 2024-01-15 15:46:41 +0000 | [diff] [blame] | 17 | #include <linux/cred.h> |
Nadia Derbey | 6546bc4 | 2008-04-29 01:00:45 -0700 | [diff] [blame] | 18 | #include "util.h" |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 19 | |
Joel Granados | 78eb4ea | 2024-07-24 20:59:29 +0200 | [diff] [blame] | 20 | static int proc_ipc_dointvec_minmax_orphans(const struct ctl_table *table, int write, |
Christoph Hellwig | 3292739 | 2020-04-24 08:43:38 +0200 | [diff] [blame] | 21 | void *buffer, size_t *lenp, loff_t *ppos) |
Vasiliy Kulikov | b34a6b1 | 2011-07-26 16:08:48 -0700 | [diff] [blame] | 22 | { |
Alexey Gladkov | dd141a4 | 2022-05-03 15:39:55 +0200 | [diff] [blame] | 23 | struct ipc_namespace *ns = |
| 24 | container_of(table->data, struct ipc_namespace, shm_rmid_forced); |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 25 | int err; |
| 26 | |
Alexey Gladkov | dd141a4 | 2022-05-03 15:39:55 +0200 | [diff] [blame] | 27 | err = proc_dointvec_minmax(table, write, buffer, lenp, ppos); |
Vasiliy Kulikov | b34a6b1 | 2011-07-26 16:08:48 -0700 | [diff] [blame] | 28 | |
| 29 | if (err < 0) |
| 30 | return err; |
| 31 | if (ns->shm_rmid_forced) |
| 32 | shm_destroy_orphaned(ns); |
| 33 | return err; |
| 34 | } |
| 35 | |
Joel Granados | 78eb4ea | 2024-07-24 20:59:29 +0200 | [diff] [blame] | 36 | static int proc_ipc_auto_msgmni(const struct ctl_table *table, int write, |
Christoph Hellwig | 3292739 | 2020-04-24 08:43:38 +0200 | [diff] [blame] | 37 | void *buffer, size_t *lenp, loff_t *ppos) |
Nadia Derbey | 9eefe52 | 2008-07-25 01:48:08 -0700 | [diff] [blame] | 38 | { |
| 39 | struct ctl_table ipc_table; |
Manfred Spraul | 0050ee0 | 2014-12-12 16:58:17 -0800 | [diff] [blame] | 40 | int dummy = 0; |
Nadia Derbey | 9eefe52 | 2008-07-25 01:48:08 -0700 | [diff] [blame] | 41 | |
| 42 | memcpy(&ipc_table, table, sizeof(ipc_table)); |
Manfred Spraul | 0050ee0 | 2014-12-12 16:58:17 -0800 | [diff] [blame] | 43 | ipc_table.data = &dummy; |
Nadia Derbey | 9eefe52 | 2008-07-25 01:48:08 -0700 | [diff] [blame] | 44 | |
Manfred Spraul | 0050ee0 | 2014-12-12 16:58:17 -0800 | [diff] [blame] | 45 | if (write) |
| 46 | pr_info_once("writing to auto_msgmni has no effect"); |
Nadia Derbey | 9eefe52 | 2008-07-25 01:48:08 -0700 | [diff] [blame] | 47 | |
Manfred Spraul | 0050ee0 | 2014-12-12 16:58:17 -0800 | [diff] [blame] | 48 | return proc_dointvec_minmax(&ipc_table, write, buffer, lenp, ppos); |
Nadia Derbey | 9eefe52 | 2008-07-25 01:48:08 -0700 | [diff] [blame] | 49 | } |
| 50 | |
Joel Granados | 78eb4ea | 2024-07-24 20:59:29 +0200 | [diff] [blame] | 51 | static int proc_ipc_sem_dointvec(const struct ctl_table *table, int write, |
Tobias Klauser | fff1662 | 2020-09-04 16:35:46 -0700 | [diff] [blame] | 52 | void *buffer, size_t *lenp, loff_t *ppos) |
Waiman Long | 8c81ddd | 2018-10-30 15:07:24 -0700 | [diff] [blame] | 53 | { |
Alexey Gladkov | dd141a4 | 2022-05-03 15:39:55 +0200 | [diff] [blame] | 54 | struct ipc_namespace *ns = |
| 55 | container_of(table->data, struct ipc_namespace, sem_ctls); |
Waiman Long | 8c81ddd | 2018-10-30 15:07:24 -0700 | [diff] [blame] | 56 | int ret, semmni; |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 57 | |
Waiman Long | 8c81ddd | 2018-10-30 15:07:24 -0700 | [diff] [blame] | 58 | semmni = ns->sem_ctls[3]; |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 59 | ret = proc_dointvec(table, write, buffer, lenp, ppos); |
Waiman Long | 8c81ddd | 2018-10-30 15:07:24 -0700 | [diff] [blame] | 60 | |
| 61 | if (!ret) |
Alexey Gladkov | def7343 | 2022-05-03 15:39:54 +0200 | [diff] [blame] | 62 | ret = sem_check_semmni(ns); |
Waiman Long | 8c81ddd | 2018-10-30 15:07:24 -0700 | [diff] [blame] | 63 | |
| 64 | /* |
| 65 | * Reset the semmni value if an error happens. |
| 66 | */ |
| 67 | if (ret) |
| 68 | ns->sem_ctls[3] = semmni; |
| 69 | return ret; |
| 70 | } |
| 71 | |
Waiman Long | 5ac893b | 2019-05-14 15:46:29 -0700 | [diff] [blame] | 72 | int ipc_mni = IPCMNI; |
| 73 | int ipc_mni_shift = IPCMNI_SHIFT; |
Manfred Spraul | 99db46e | 2019-05-14 15:46:36 -0700 | [diff] [blame] | 74 | int ipc_min_cycle = RADIX_TREE_MAP_SIZE; |
Nadia Derbey | 9eefe52 | 2008-07-25 01:48:08 -0700 | [diff] [blame] | 75 | |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 76 | static struct ctl_table ipc_sysctls[] = { |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 77 | { |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 78 | .procname = "shmmax", |
| 79 | .data = &init_ipc_ns.shm_ctlmax, |
Manfred Spraul | 239521f | 2014-01-27 17:07:04 -0800 | [diff] [blame] | 80 | .maxlen = sizeof(init_ipc_ns.shm_ctlmax), |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 81 | .mode = 0644, |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 82 | .proc_handler = proc_doulongvec_minmax, |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 83 | }, |
| 84 | { |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 85 | .procname = "shmall", |
| 86 | .data = &init_ipc_ns.shm_ctlall, |
Manfred Spraul | 239521f | 2014-01-27 17:07:04 -0800 | [diff] [blame] | 87 | .maxlen = sizeof(init_ipc_ns.shm_ctlall), |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 88 | .mode = 0644, |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 89 | .proc_handler = proc_doulongvec_minmax, |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 90 | }, |
| 91 | { |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 92 | .procname = "shmmni", |
| 93 | .data = &init_ipc_ns.shm_ctlmni, |
Manfred Spraul | 239521f | 2014-01-27 17:07:04 -0800 | [diff] [blame] | 94 | .maxlen = sizeof(init_ipc_ns.shm_ctlmni), |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 95 | .mode = 0644, |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 96 | .proc_handler = proc_dointvec_minmax, |
Matteo Croce | eec4844 | 2019-07-18 15:58:50 -0700 | [diff] [blame] | 97 | .extra1 = SYSCTL_ZERO, |
Waiman Long | 6730e65 | 2018-10-30 15:07:20 -0700 | [diff] [blame] | 98 | .extra2 = &ipc_mni, |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 99 | }, |
| 100 | { |
Vasiliy Kulikov | b34a6b1 | 2011-07-26 16:08:48 -0700 | [diff] [blame] | 101 | .procname = "shm_rmid_forced", |
| 102 | .data = &init_ipc_ns.shm_rmid_forced, |
| 103 | .maxlen = sizeof(init_ipc_ns.shm_rmid_forced), |
| 104 | .mode = 0644, |
| 105 | .proc_handler = proc_ipc_dointvec_minmax_orphans, |
Alexey Gladkov | dd141a4 | 2022-05-03 15:39:55 +0200 | [diff] [blame] | 106 | .extra1 = SYSCTL_ZERO, |
| 107 | .extra2 = SYSCTL_ONE, |
Vasiliy Kulikov | b34a6b1 | 2011-07-26 16:08:48 -0700 | [diff] [blame] | 108 | }, |
| 109 | { |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 110 | .procname = "msgmax", |
| 111 | .data = &init_ipc_ns.msg_ctlmax, |
Manfred Spraul | 239521f | 2014-01-27 17:07:04 -0800 | [diff] [blame] | 112 | .maxlen = sizeof(init_ipc_ns.msg_ctlmax), |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 113 | .mode = 0644, |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 114 | .proc_handler = proc_dointvec_minmax, |
Matteo Croce | eec4844 | 2019-07-18 15:58:50 -0700 | [diff] [blame] | 115 | .extra1 = SYSCTL_ZERO, |
| 116 | .extra2 = SYSCTL_INT_MAX, |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 117 | }, |
| 118 | { |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 119 | .procname = "msgmni", |
| 120 | .data = &init_ipc_ns.msg_ctlmni, |
Manfred Spraul | 239521f | 2014-01-27 17:07:04 -0800 | [diff] [blame] | 121 | .maxlen = sizeof(init_ipc_ns.msg_ctlmni), |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 122 | .mode = 0644, |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 123 | .proc_handler = proc_dointvec_minmax, |
Matteo Croce | eec4844 | 2019-07-18 15:58:50 -0700 | [diff] [blame] | 124 | .extra1 = SYSCTL_ZERO, |
Waiman Long | 6730e65 | 2018-10-30 15:07:20 -0700 | [diff] [blame] | 125 | .extra2 = &ipc_mni, |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 126 | }, |
| 127 | { |
Manfred Spraul | 0050ee0 | 2014-12-12 16:58:17 -0800 | [diff] [blame] | 128 | .procname = "auto_msgmni", |
| 129 | .data = NULL, |
| 130 | .maxlen = sizeof(int), |
| 131 | .mode = 0644, |
| 132 | .proc_handler = proc_ipc_auto_msgmni, |
Matteo Croce | eec4844 | 2019-07-18 15:58:50 -0700 | [diff] [blame] | 133 | .extra1 = SYSCTL_ZERO, |
| 134 | .extra2 = SYSCTL_ONE, |
Manfred Spraul | 0050ee0 | 2014-12-12 16:58:17 -0800 | [diff] [blame] | 135 | }, |
| 136 | { |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 137 | .procname = "msgmnb", |
| 138 | .data = &init_ipc_ns.msg_ctlmnb, |
Manfred Spraul | 239521f | 2014-01-27 17:07:04 -0800 | [diff] [blame] | 139 | .maxlen = sizeof(init_ipc_ns.msg_ctlmnb), |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 140 | .mode = 0644, |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 141 | .proc_handler = proc_dointvec_minmax, |
Matteo Croce | eec4844 | 2019-07-18 15:58:50 -0700 | [diff] [blame] | 142 | .extra1 = SYSCTL_ZERO, |
| 143 | .extra2 = SYSCTL_INT_MAX, |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 144 | }, |
| 145 | { |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 146 | .procname = "sem", |
| 147 | .data = &init_ipc_ns.sem_ctls, |
Manfred Spraul | 239521f | 2014-01-27 17:07:04 -0800 | [diff] [blame] | 148 | .maxlen = 4*sizeof(int), |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 149 | .mode = 0644, |
Waiman Long | 8c81ddd | 2018-10-30 15:07:24 -0700 | [diff] [blame] | 150 | .proc_handler = proc_ipc_sem_dointvec, |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 151 | }, |
Stanislav Kinsbursky | 03f5956 | 2013-01-04 15:34:50 -0800 | [diff] [blame] | 152 | #ifdef CONFIG_CHECKPOINT_RESTORE |
| 153 | { |
| 154 | .procname = "sem_next_id", |
| 155 | .data = &init_ipc_ns.ids[IPC_SEM_IDS].next_id, |
| 156 | .maxlen = sizeof(init_ipc_ns.ids[IPC_SEM_IDS].next_id), |
Alexey Gladkov | 0889f44 | 2022-05-03 15:39:56 +0200 | [diff] [blame] | 157 | .mode = 0444, |
| 158 | .proc_handler = proc_dointvec_minmax, |
| 159 | .extra1 = SYSCTL_ZERO, |
| 160 | .extra2 = SYSCTL_INT_MAX, |
Stanislav Kinsbursky | 03f5956 | 2013-01-04 15:34:50 -0800 | [diff] [blame] | 161 | }, |
| 162 | { |
| 163 | .procname = "msg_next_id", |
| 164 | .data = &init_ipc_ns.ids[IPC_MSG_IDS].next_id, |
| 165 | .maxlen = sizeof(init_ipc_ns.ids[IPC_MSG_IDS].next_id), |
Alexey Gladkov | 0889f44 | 2022-05-03 15:39:56 +0200 | [diff] [blame] | 166 | .mode = 0444, |
| 167 | .proc_handler = proc_dointvec_minmax, |
| 168 | .extra1 = SYSCTL_ZERO, |
| 169 | .extra2 = SYSCTL_INT_MAX, |
Stanislav Kinsbursky | 03f5956 | 2013-01-04 15:34:50 -0800 | [diff] [blame] | 170 | }, |
| 171 | { |
| 172 | .procname = "shm_next_id", |
| 173 | .data = &init_ipc_ns.ids[IPC_SHM_IDS].next_id, |
| 174 | .maxlen = sizeof(init_ipc_ns.ids[IPC_SHM_IDS].next_id), |
Alexey Gladkov | 0889f44 | 2022-05-03 15:39:56 +0200 | [diff] [blame] | 175 | .mode = 0444, |
| 176 | .proc_handler = proc_dointvec_minmax, |
| 177 | .extra1 = SYSCTL_ZERO, |
| 178 | .extra2 = SYSCTL_INT_MAX, |
Stanislav Kinsbursky | 03f5956 | 2013-01-04 15:34:50 -0800 | [diff] [blame] | 179 | }, |
| 180 | #endif |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 181 | }; |
| 182 | |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 183 | static struct ctl_table_set *set_lookup(struct ctl_table_root *root) |
| 184 | { |
| 185 | return ¤t->nsproxy->ipc_ns->ipc_set; |
| 186 | } |
| 187 | |
| 188 | static int set_is_seen(struct ctl_table_set *set) |
| 189 | { |
| 190 | return ¤t->nsproxy->ipc_ns->ipc_set == set; |
| 191 | } |
| 192 | |
Alexey Gladkov | 50ec499 | 2024-01-15 15:46:41 +0000 | [diff] [blame] | 193 | static void ipc_set_ownership(struct ctl_table_header *head, |
Alexey Gladkov | 50ec499 | 2024-01-15 15:46:41 +0000 | [diff] [blame] | 194 | kuid_t *uid, kgid_t *gid) |
| 195 | { |
| 196 | struct ipc_namespace *ns = |
| 197 | container_of(head->set, struct ipc_namespace, ipc_set); |
| 198 | |
| 199 | kuid_t ns_root_uid = make_kuid(ns->user_ns, 0); |
| 200 | kgid_t ns_root_gid = make_kgid(ns->user_ns, 0); |
| 201 | |
| 202 | *uid = uid_valid(ns_root_uid) ? ns_root_uid : GLOBAL_ROOT_UID; |
| 203 | *gid = gid_valid(ns_root_gid) ? ns_root_gid : GLOBAL_ROOT_GID; |
| 204 | } |
| 205 | |
Thomas Weißschuh | 795f90c | 2024-03-15 19:11:31 +0100 | [diff] [blame] | 206 | static int ipc_permissions(struct ctl_table_header *head, const struct ctl_table *table) |
Alexey Gladkov | 0889f44 | 2022-05-03 15:39:56 +0200 | [diff] [blame] | 207 | { |
| 208 | int mode = table->mode; |
| 209 | |
| 210 | #ifdef CONFIG_CHECKPOINT_RESTORE |
Alexey Gladkov | 50ec499 | 2024-01-15 15:46:41 +0000 | [diff] [blame] | 211 | struct ipc_namespace *ns = |
| 212 | container_of(head->set, struct ipc_namespace, ipc_set); |
Alexey Gladkov | 0889f44 | 2022-05-03 15:39:56 +0200 | [diff] [blame] | 213 | |
| 214 | if (((table->data == &ns->ids[IPC_SEM_IDS].next_id) || |
| 215 | (table->data == &ns->ids[IPC_MSG_IDS].next_id) || |
| 216 | (table->data == &ns->ids[IPC_SHM_IDS].next_id)) && |
| 217 | checkpoint_restore_ns_capable(ns->user_ns)) |
| 218 | mode = 0666; |
Alexey Gladkov | 50ec499 | 2024-01-15 15:46:41 +0000 | [diff] [blame] | 219 | else |
Alexey Gladkov | 0889f44 | 2022-05-03 15:39:56 +0200 | [diff] [blame] | 220 | #endif |
Alexey Gladkov | 50ec499 | 2024-01-15 15:46:41 +0000 | [diff] [blame] | 221 | { |
| 222 | kuid_t ns_root_uid; |
| 223 | kgid_t ns_root_gid; |
| 224 | |
Thomas Weißschuh | 520713a | 2024-03-15 19:11:30 +0100 | [diff] [blame] | 225 | ipc_set_ownership(head, &ns_root_uid, &ns_root_gid); |
Alexey Gladkov | 50ec499 | 2024-01-15 15:46:41 +0000 | [diff] [blame] | 226 | |
| 227 | if (uid_eq(current_euid(), ns_root_uid)) |
| 228 | mode >>= 6; |
| 229 | |
| 230 | else if (in_egroup_p(ns_root_gid)) |
| 231 | mode >>= 3; |
| 232 | } |
| 233 | |
| 234 | mode &= 7; |
| 235 | |
| 236 | return (mode << 6) | (mode << 3) | mode; |
Alexey Gladkov | 0889f44 | 2022-05-03 15:39:56 +0200 | [diff] [blame] | 237 | } |
| 238 | |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 239 | static struct ctl_table_root set_root = { |
| 240 | .lookup = set_lookup, |
Alexey Gladkov | 0889f44 | 2022-05-03 15:39:56 +0200 | [diff] [blame] | 241 | .permissions = ipc_permissions, |
Alexey Gladkov | 50ec499 | 2024-01-15 15:46:41 +0000 | [diff] [blame] | 242 | .set_ownership = ipc_set_ownership, |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 243 | }; |
| 244 | |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 245 | bool setup_ipc_sysctls(struct ipc_namespace *ns) |
| 246 | { |
| 247 | struct ctl_table *tbl; |
| 248 | |
| 249 | setup_sysctl_set(&ns->ipc_set, &set_root, set_is_seen); |
| 250 | |
| 251 | tbl = kmemdup(ipc_sysctls, sizeof(ipc_sysctls), GFP_KERNEL); |
| 252 | if (tbl) { |
| 253 | int i; |
| 254 | |
| 255 | for (i = 0; i < ARRAY_SIZE(ipc_sysctls); i++) { |
Alexey Gladkov | 38cd5b1 | 2022-05-03 15:39:57 +0200 | [diff] [blame] | 256 | if (tbl[i].data == &init_ipc_ns.shm_ctlmax) |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 257 | tbl[i].data = &ns->shm_ctlmax; |
| 258 | |
Alexey Gladkov | 38cd5b1 | 2022-05-03 15:39:57 +0200 | [diff] [blame] | 259 | else if (tbl[i].data == &init_ipc_ns.shm_ctlall) |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 260 | tbl[i].data = &ns->shm_ctlall; |
| 261 | |
Alexey Gladkov | 38cd5b1 | 2022-05-03 15:39:57 +0200 | [diff] [blame] | 262 | else if (tbl[i].data == &init_ipc_ns.shm_ctlmni) |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 263 | tbl[i].data = &ns->shm_ctlmni; |
| 264 | |
Alexey Gladkov | 38cd5b1 | 2022-05-03 15:39:57 +0200 | [diff] [blame] | 265 | else if (tbl[i].data == &init_ipc_ns.shm_rmid_forced) |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 266 | tbl[i].data = &ns->shm_rmid_forced; |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 267 | |
Alexey Gladkov | 38cd5b1 | 2022-05-03 15:39:57 +0200 | [diff] [blame] | 268 | else if (tbl[i].data == &init_ipc_ns.msg_ctlmax) |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 269 | tbl[i].data = &ns->msg_ctlmax; |
| 270 | |
Alexey Gladkov | 38cd5b1 | 2022-05-03 15:39:57 +0200 | [diff] [blame] | 271 | else if (tbl[i].data == &init_ipc_ns.msg_ctlmni) |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 272 | tbl[i].data = &ns->msg_ctlmni; |
| 273 | |
Alexey Gladkov | 38cd5b1 | 2022-05-03 15:39:57 +0200 | [diff] [blame] | 274 | else if (tbl[i].data == &init_ipc_ns.msg_ctlmnb) |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 275 | tbl[i].data = &ns->msg_ctlmnb; |
| 276 | |
Alexey Gladkov | 38cd5b1 | 2022-05-03 15:39:57 +0200 | [diff] [blame] | 277 | else if (tbl[i].data == &init_ipc_ns.sem_ctls) |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 278 | tbl[i].data = &ns->sem_ctls; |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 279 | #ifdef CONFIG_CHECKPOINT_RESTORE |
Alexey Gladkov | 38cd5b1 | 2022-05-03 15:39:57 +0200 | [diff] [blame] | 280 | else if (tbl[i].data == &init_ipc_ns.ids[IPC_SEM_IDS].next_id) |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 281 | tbl[i].data = &ns->ids[IPC_SEM_IDS].next_id; |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 282 | |
Alexey Gladkov | 38cd5b1 | 2022-05-03 15:39:57 +0200 | [diff] [blame] | 283 | else if (tbl[i].data == &init_ipc_ns.ids[IPC_MSG_IDS].next_id) |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 284 | tbl[i].data = &ns->ids[IPC_MSG_IDS].next_id; |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 285 | |
Alexey Gladkov | 38cd5b1 | 2022-05-03 15:39:57 +0200 | [diff] [blame] | 286 | else if (tbl[i].data == &init_ipc_ns.ids[IPC_SHM_IDS].next_id) |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 287 | tbl[i].data = &ns->ids[IPC_SHM_IDS].next_id; |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 288 | #endif |
Alexey Gladkov | 38cd5b1 | 2022-05-03 15:39:57 +0200 | [diff] [blame] | 289 | else |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 290 | tbl[i].data = NULL; |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 291 | } |
| 292 | |
Thomas Weißschuh | 8e88291 | 2024-02-19 21:19:23 +0100 | [diff] [blame] | 293 | ns->ipc_sysctls = __register_sysctl_table(&ns->ipc_set, "kernel", tbl, |
Joel Granados | bff97cf | 2023-08-09 12:49:57 +0200 | [diff] [blame] | 294 | ARRAY_SIZE(ipc_sysctls)); |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 295 | } |
| 296 | if (!ns->ipc_sysctls) { |
| 297 | kfree(tbl); |
| 298 | retire_sysctl_set(&ns->ipc_set); |
| 299 | return false; |
| 300 | } |
| 301 | |
| 302 | return true; |
| 303 | } |
| 304 | |
| 305 | void retire_ipc_sysctls(struct ipc_namespace *ns) |
| 306 | { |
Thomas Weißschuh | bfa858f | 2024-04-18 11:40:08 +0200 | [diff] [blame] | 307 | const struct ctl_table *tbl; |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 308 | |
| 309 | tbl = ns->ipc_sysctls->ctl_table_arg; |
| 310 | unregister_sysctl_table(ns->ipc_sysctls); |
| 311 | retire_sysctl_set(&ns->ipc_set); |
| 312 | kfree(tbl); |
| 313 | } |
| 314 | |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 315 | static int __init ipc_sysctl_init(void) |
| 316 | { |
Alexey Gladkov | 1f5c135 | 2022-02-14 19:18:15 +0100 | [diff] [blame] | 317 | if (!setup_ipc_sysctls(&init_ipc_ns)) { |
| 318 | pr_warn("ipc sysctl registration failed\n"); |
| 319 | return -ENOMEM; |
| 320 | } |
Eric W. Biederman | a5494dc | 2007-02-14 00:34:06 -0800 | [diff] [blame] | 321 | return 0; |
| 322 | } |
| 323 | |
Davidlohr Bueso | 6d08a25 | 2014-04-07 15:39:18 -0700 | [diff] [blame] | 324 | device_initcall(ipc_sysctl_init); |
Waiman Long | 5ac893b | 2019-05-14 15:46:29 -0700 | [diff] [blame] | 325 | |
| 326 | static int __init ipc_mni_extend(char *str) |
| 327 | { |
| 328 | ipc_mni = IPCMNI_EXTEND; |
| 329 | ipc_mni_shift = IPCMNI_EXTEND_SHIFT; |
Manfred Spraul | 99db46e | 2019-05-14 15:46:36 -0700 | [diff] [blame] | 330 | ipc_min_cycle = IPCMNI_EXTEND_MIN_CYCLE; |
Waiman Long | 5ac893b | 2019-05-14 15:46:29 -0700 | [diff] [blame] | 331 | pr_info("IPCMNI extended to %d.\n", ipc_mni); |
| 332 | return 0; |
| 333 | } |
| 334 | early_param("ipcmni_extend", ipc_mni_extend); |