]> CyberLeo.Net >> Repos - FreeBSD/FreeBSD.git/blob - sys/compat/cloudabi/cloudabi_fd.c
Update mandoc to 1.13.4 release
[FreeBSD/FreeBSD.git] / sys / compat / cloudabi / cloudabi_fd.c
1 /*-
2  * Copyright (c) 2015 Nuxi, https://nuxi.nl/
3  *
4  * Redistribution and use in source and binary forms, with or without
5  * modification, are permitted provided that the following conditions
6  * are met:
7  * 1. Redistributions of source code must retain the above copyright
8  *    notice, this list of conditions and the following disclaimer.
9  * 2. Redistributions in binary form must reproduce the above copyright
10  *    notice, this list of conditions and the following disclaimer in the
11  *    documentation and/or other materials provided with the distribution.
12  *
13  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
14  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
15  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
16  * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
17  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
18  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
19  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
20  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
21  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
22  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
23  * SUCH DAMAGE.
24  */
25
26 #include <sys/cdefs.h>
27 __FBSDID("$FreeBSD$");
28
29 #include <sys/param.h>
30 #include <sys/capsicum.h>
31 #include <sys/filedesc.h>
32 #include <sys/proc.h>
33 #include <sys/mman.h>
34 #include <sys/socketvar.h>
35 #include <sys/syscallsubr.h>
36 #include <sys/sysproto.h>
37 #include <sys/systm.h>
38 #include <sys/unistd.h>
39 #include <sys/vnode.h>
40
41 #include <contrib/cloudabi/cloudabi_types_common.h>
42
43 #include <compat/cloudabi/cloudabi_proto.h>
44 #include <compat/cloudabi/cloudabi_util.h>
45
46 /* Translation between CloudABI and Capsicum rights. */
47 #define RIGHTS_MAPPINGS \
48         MAPPING(CLOUDABI_RIGHT_FD_DATASYNC, CAP_FSYNC)                  \
49         MAPPING(CLOUDABI_RIGHT_FD_READ, CAP_READ)                       \
50         MAPPING(CLOUDABI_RIGHT_FD_SEEK, CAP_SEEK)                       \
51         MAPPING(CLOUDABI_RIGHT_FD_STAT_PUT_FLAGS, CAP_FCNTL)            \
52         MAPPING(CLOUDABI_RIGHT_FD_SYNC, CAP_FSYNC)                      \
53         MAPPING(CLOUDABI_RIGHT_FD_TELL, CAP_SEEK_TELL)                  \
54         MAPPING(CLOUDABI_RIGHT_FD_WRITE, CAP_WRITE)                     \
55         MAPPING(CLOUDABI_RIGHT_FILE_ADVISE)                             \
56         MAPPING(CLOUDABI_RIGHT_FILE_ALLOCATE, CAP_WRITE)                \
57         MAPPING(CLOUDABI_RIGHT_FILE_CREATE_DIRECTORY, CAP_MKDIRAT)      \
58         MAPPING(CLOUDABI_RIGHT_FILE_CREATE_FILE, CAP_CREATE)            \
59         MAPPING(CLOUDABI_RIGHT_FILE_CREATE_FIFO, CAP_MKFIFOAT)          \
60         MAPPING(CLOUDABI_RIGHT_FILE_LINK_SOURCE, CAP_LINKAT_SOURCE)     \
61         MAPPING(CLOUDABI_RIGHT_FILE_LINK_TARGET, CAP_LINKAT_TARGET)     \
62         MAPPING(CLOUDABI_RIGHT_FILE_OPEN, CAP_LOOKUP)                   \
63         MAPPING(CLOUDABI_RIGHT_FILE_READDIR, CAP_READ)                  \
64         MAPPING(CLOUDABI_RIGHT_FILE_READLINK, CAP_LOOKUP)               \
65         MAPPING(CLOUDABI_RIGHT_FILE_RENAME_SOURCE, CAP_RENAMEAT_SOURCE) \
66         MAPPING(CLOUDABI_RIGHT_FILE_RENAME_TARGET, CAP_RENAMEAT_TARGET) \
67         MAPPING(CLOUDABI_RIGHT_FILE_STAT_FGET, CAP_FSTAT)               \
68         MAPPING(CLOUDABI_RIGHT_FILE_STAT_FPUT_SIZE, CAP_FTRUNCATE)      \
69         MAPPING(CLOUDABI_RIGHT_FILE_STAT_FPUT_TIMES, CAP_FUTIMES)       \
70         MAPPING(CLOUDABI_RIGHT_FILE_STAT_GET, CAP_FSTATAT)              \
71         MAPPING(CLOUDABI_RIGHT_FILE_STAT_PUT_TIMES, CAP_FUTIMESAT)      \
72         MAPPING(CLOUDABI_RIGHT_FILE_SYMLINK, CAP_SYMLINKAT)             \
73         MAPPING(CLOUDABI_RIGHT_FILE_UNLINK, CAP_UNLINKAT)               \
74         MAPPING(CLOUDABI_RIGHT_MEM_MAP, CAP_MMAP)                       \
75         MAPPING(CLOUDABI_RIGHT_MEM_MAP_EXEC, CAP_MMAP_X)                \
76         MAPPING(CLOUDABI_RIGHT_POLL_FD_READWRITE, CAP_EVENT)            \
77         MAPPING(CLOUDABI_RIGHT_POLL_MODIFY, CAP_KQUEUE_CHANGE)          \
78         MAPPING(CLOUDABI_RIGHT_POLL_PROC_TERMINATE, CAP_EVENT)          \
79         MAPPING(CLOUDABI_RIGHT_POLL_WAIT, CAP_KQUEUE_EVENT)             \
80         MAPPING(CLOUDABI_RIGHT_PROC_EXEC, CAP_FEXECVE)                  \
81         MAPPING(CLOUDABI_RIGHT_SOCK_ACCEPT, CAP_ACCEPT)                 \
82         MAPPING(CLOUDABI_RIGHT_SOCK_BIND_DIRECTORY, CAP_BINDAT)         \
83         MAPPING(CLOUDABI_RIGHT_SOCK_BIND_SOCKET, CAP_BIND)              \
84         MAPPING(CLOUDABI_RIGHT_SOCK_CONNECT_DIRECTORY, CAP_CONNECTAT)   \
85         MAPPING(CLOUDABI_RIGHT_SOCK_CONNECT_SOCKET, CAP_CONNECT)        \
86         MAPPING(CLOUDABI_RIGHT_SOCK_LISTEN, CAP_LISTEN)                 \
87         MAPPING(CLOUDABI_RIGHT_SOCK_SHUTDOWN, CAP_SHUTDOWN)             \
88         MAPPING(CLOUDABI_RIGHT_SOCK_STAT_GET, CAP_GETPEERNAME,          \
89             CAP_GETSOCKNAME, CAP_GETSOCKOPT)
90
91 int
92 cloudabi_sys_fd_close(struct thread *td, struct cloudabi_sys_fd_close_args *uap)
93 {
94
95         return (kern_close(td, uap->fd));
96 }
97
98 int
99 cloudabi_sys_fd_create1(struct thread *td,
100     struct cloudabi_sys_fd_create1_args *uap)
101 {
102         struct filecaps fcaps = {};
103         struct socket_args socket_args = {
104                 .domain = AF_UNIX,
105         };
106
107         switch (uap->type) {
108         case CLOUDABI_FILETYPE_POLL:
109                 cap_rights_init(&fcaps.fc_rights, CAP_FSTAT, CAP_KQUEUE);
110                 return (kern_kqueue(td, 0, &fcaps));
111         case CLOUDABI_FILETYPE_SHARED_MEMORY:
112                 cap_rights_init(&fcaps.fc_rights, CAP_FSTAT, CAP_FTRUNCATE,
113                     CAP_MMAP_RWX);
114                 return (kern_shm_open(td, SHM_ANON, O_RDWR, 0, &fcaps));
115         case CLOUDABI_FILETYPE_SOCKET_DGRAM:
116                 socket_args.type = SOCK_DGRAM;
117                 return (sys_socket(td, &socket_args));
118         case CLOUDABI_FILETYPE_SOCKET_SEQPACKET:
119                 socket_args.type = SOCK_SEQPACKET;
120                 return (sys_socket(td, &socket_args));
121         case CLOUDABI_FILETYPE_SOCKET_STREAM:
122                 socket_args.type = SOCK_STREAM;
123                 return (sys_socket(td, &socket_args));
124         default:
125                 return (EINVAL);
126         }
127 }
128
129 int
130 cloudabi_sys_fd_create2(struct thread *td,
131     struct cloudabi_sys_fd_create2_args *uap)
132 {
133         struct filecaps fcaps1 = {}, fcaps2 = {};
134         int fds[2];
135         int error;
136
137         switch (uap->type) {
138         case CLOUDABI_FILETYPE_FIFO:
139                 /*
140                  * CloudABI pipes are unidirectional. Restrict rights on
141                  * the pipe to simulate this.
142                  */
143                 cap_rights_init(&fcaps1.fc_rights, CAP_EVENT, CAP_FCNTL,
144                     CAP_FSTAT, CAP_READ);
145                 fcaps1.fc_fcntls = CAP_FCNTL_SETFL;
146                 cap_rights_init(&fcaps2.fc_rights, CAP_EVENT, CAP_FCNTL,
147                     CAP_FSTAT, CAP_WRITE);
148                 fcaps2.fc_fcntls = CAP_FCNTL_SETFL;
149                 error = kern_pipe(td, fds, 0, &fcaps1, &fcaps2);
150                 break;
151         case CLOUDABI_FILETYPE_SOCKET_DGRAM:
152                 error = kern_socketpair(td, AF_UNIX, SOCK_DGRAM, 0, fds);
153                 break;
154         case CLOUDABI_FILETYPE_SOCKET_SEQPACKET:
155                 error = kern_socketpair(td, AF_UNIX, SOCK_SEQPACKET, 0, fds);
156                 break;
157         case CLOUDABI_FILETYPE_SOCKET_STREAM:
158                 error = kern_socketpair(td, AF_UNIX, SOCK_STREAM, 0, fds);
159                 break;
160         default:
161                 return (EINVAL);
162         }
163
164         if (error == 0) {
165                 td->td_retval[0] = fds[0];
166                 td->td_retval[1] = fds[1];
167         }
168         return (0);
169 }
170
171 int
172 cloudabi_sys_fd_datasync(struct thread *td,
173     struct cloudabi_sys_fd_datasync_args *uap)
174 {
175         struct fsync_args fsync_args = {
176                 .fd = uap->fd
177         };
178
179         /* Call into fsync(), as FreeBSD lacks fdatasync(). */
180         return (sys_fsync(td, &fsync_args));
181 }
182
183 int
184 cloudabi_sys_fd_dup(struct thread *td, struct cloudabi_sys_fd_dup_args *uap)
185 {
186
187         return (kern_dup(td, FDDUP_NORMAL, 0, uap->from, 0));
188 }
189
190 int
191 cloudabi_sys_fd_replace(struct thread *td,
192     struct cloudabi_sys_fd_replace_args *uap)
193 {
194         int error;
195
196         /*
197          * CloudABI's equivalent to dup2(). CloudABI processes should
198          * not depend on hardcoded file descriptor layouts, but simply
199          * use the file descriptor numbers that are allocated by the
200          * kernel. Duplicating file descriptors to arbitrary numbers
201          * should not be done.
202          *
203          * Invoke kern_dup() with FDDUP_MUSTREPLACE, so that we return
204          * EBADF when duplicating to a nonexistent file descriptor. Also
205          * clear the return value, as this system call yields no return
206          * value.
207          */
208         error = kern_dup(td, FDDUP_MUSTREPLACE, 0, uap->from, uap->to);
209         td->td_retval[0] = 0;
210         return (error);
211 }
212
213 int
214 cloudabi_sys_fd_seek(struct thread *td, struct cloudabi_sys_fd_seek_args *uap)
215 {
216         struct lseek_args lseek_args = {
217                 .fd     = uap->fd,
218                 .offset = uap->offset
219         };
220
221         switch (uap->whence) {
222         case CLOUDABI_WHENCE_CUR:
223                 lseek_args.whence = SEEK_CUR;
224                 break;
225         case CLOUDABI_WHENCE_END:
226                 lseek_args.whence = SEEK_END;
227                 break;
228         case CLOUDABI_WHENCE_SET:
229                 lseek_args.whence = SEEK_SET;
230                 break;
231         default:
232                 return (EINVAL);
233         }
234
235         return (sys_lseek(td, &lseek_args));
236 }
237
238 /* Converts a file descriptor to a CloudABI file descriptor type. */
239 cloudabi_filetype_t
240 cloudabi_convert_filetype(const struct file *fp)
241 {
242         struct socket *so;
243         struct vnode *vp;
244
245         switch (fp->f_type) {
246         case DTYPE_FIFO:
247                 return (CLOUDABI_FILETYPE_FIFO);
248         case DTYPE_KQUEUE:
249                 return (CLOUDABI_FILETYPE_POLL);
250         case DTYPE_PIPE:
251                 return (CLOUDABI_FILETYPE_FIFO);
252         case DTYPE_PROCDESC:
253                 return (CLOUDABI_FILETYPE_PROCESS);
254         case DTYPE_SHM:
255                 return (CLOUDABI_FILETYPE_SHARED_MEMORY);
256         case DTYPE_SOCKET:
257                 so = fp->f_data;
258                 switch (so->so_type) {
259                 case SOCK_DGRAM:
260                         return (CLOUDABI_FILETYPE_SOCKET_DGRAM);
261                 case SOCK_SEQPACKET:
262                         return (CLOUDABI_FILETYPE_SOCKET_SEQPACKET);
263                 case SOCK_STREAM:
264                         return (CLOUDABI_FILETYPE_SOCKET_STREAM);
265                 default:
266                         return (CLOUDABI_FILETYPE_UNKNOWN);
267                 }
268         case DTYPE_VNODE:
269                 vp = fp->f_vnode;
270                 switch (vp->v_type) {
271                 case VBLK:
272                         return (CLOUDABI_FILETYPE_BLOCK_DEVICE);
273                 case VCHR:
274                         return (CLOUDABI_FILETYPE_CHARACTER_DEVICE);
275                 case VDIR:
276                         return (CLOUDABI_FILETYPE_DIRECTORY);
277                 case VFIFO:
278                         return (CLOUDABI_FILETYPE_FIFO);
279                 case VLNK:
280                         return (CLOUDABI_FILETYPE_SYMBOLIC_LINK);
281                 case VREG:
282                         return (CLOUDABI_FILETYPE_REGULAR_FILE);
283                 case VSOCK:
284                         return (CLOUDABI_FILETYPE_SOCKET_STREAM);
285                 default:
286                         return (CLOUDABI_FILETYPE_UNKNOWN);
287                 }
288         default:
289                 return (CLOUDABI_FILETYPE_UNKNOWN);
290         }
291 }
292
293 /* Removes rights that conflict with the file descriptor type. */
294 void
295 cloudabi_remove_conflicting_rights(cloudabi_filetype_t filetype,
296     cloudabi_rights_t *base, cloudabi_rights_t *inheriting)
297 {
298
299         /*
300          * CloudABI has a small number of additional rights bits to
301          * disambiguate between multiple purposes. Remove the bits that
302          * don't apply to the type of the file descriptor.
303          *
304          * As file descriptor access modes (O_ACCMODE) has been fully
305          * replaced by rights bits, CloudABI distinguishes between
306          * rights that apply to the file descriptor itself (base) versus
307          * rights of new file descriptors derived from them
308          * (inheriting). The code below approximates the pair by
309          * decomposing depending on the file descriptor type.
310          *
311          * We need to be somewhat accurate about which actions can
312          * actually be performed on the file descriptor, as functions
313          * like fcntl(fd, F_GETFL) are emulated on top of this.
314          */
315         switch (filetype) {
316         case CLOUDABI_FILETYPE_DIRECTORY:
317                 *base &= CLOUDABI_RIGHT_FD_STAT_PUT_FLAGS |
318                     CLOUDABI_RIGHT_FD_SYNC | CLOUDABI_RIGHT_FILE_ADVISE |
319                     CLOUDABI_RIGHT_FILE_CREATE_DIRECTORY |
320                     CLOUDABI_RIGHT_FILE_CREATE_FILE |
321                     CLOUDABI_RIGHT_FILE_CREATE_FIFO |
322                     CLOUDABI_RIGHT_FILE_LINK_SOURCE |
323                     CLOUDABI_RIGHT_FILE_LINK_TARGET |
324                     CLOUDABI_RIGHT_FILE_OPEN |
325                     CLOUDABI_RIGHT_FILE_READDIR |
326                     CLOUDABI_RIGHT_FILE_READLINK |
327                     CLOUDABI_RIGHT_FILE_RENAME_SOURCE |
328                     CLOUDABI_RIGHT_FILE_RENAME_TARGET |
329                     CLOUDABI_RIGHT_FILE_STAT_FGET |
330                     CLOUDABI_RIGHT_FILE_STAT_FPUT_TIMES |
331                     CLOUDABI_RIGHT_FILE_STAT_GET |
332                     CLOUDABI_RIGHT_FILE_STAT_PUT_TIMES |
333                     CLOUDABI_RIGHT_FILE_SYMLINK |
334                     CLOUDABI_RIGHT_FILE_UNLINK |
335                     CLOUDABI_RIGHT_POLL_FD_READWRITE |
336                     CLOUDABI_RIGHT_SOCK_BIND_DIRECTORY |
337                     CLOUDABI_RIGHT_SOCK_CONNECT_DIRECTORY;
338                 *inheriting &= CLOUDABI_RIGHT_FD_DATASYNC |
339                     CLOUDABI_RIGHT_FD_READ |
340                     CLOUDABI_RIGHT_FD_SEEK |
341                     CLOUDABI_RIGHT_FD_STAT_PUT_FLAGS |
342                     CLOUDABI_RIGHT_FD_SYNC |
343                     CLOUDABI_RIGHT_FD_TELL |
344                     CLOUDABI_RIGHT_FD_WRITE |
345                     CLOUDABI_RIGHT_FILE_ADVISE |
346                     CLOUDABI_RIGHT_FILE_ALLOCATE |
347                     CLOUDABI_RIGHT_FILE_CREATE_DIRECTORY |
348                     CLOUDABI_RIGHT_FILE_CREATE_FILE |
349                     CLOUDABI_RIGHT_FILE_CREATE_FIFO |
350                     CLOUDABI_RIGHT_FILE_LINK_SOURCE |
351                     CLOUDABI_RIGHT_FILE_LINK_TARGET |
352                     CLOUDABI_RIGHT_FILE_OPEN |
353                     CLOUDABI_RIGHT_FILE_READDIR |
354                     CLOUDABI_RIGHT_FILE_READLINK |
355                     CLOUDABI_RIGHT_FILE_RENAME_SOURCE |
356                     CLOUDABI_RIGHT_FILE_RENAME_TARGET |
357                     CLOUDABI_RIGHT_FILE_STAT_FGET |
358                     CLOUDABI_RIGHT_FILE_STAT_FPUT_SIZE |
359                     CLOUDABI_RIGHT_FILE_STAT_FPUT_TIMES |
360                     CLOUDABI_RIGHT_FILE_STAT_GET |
361                     CLOUDABI_RIGHT_FILE_STAT_PUT_TIMES |
362                     CLOUDABI_RIGHT_FILE_SYMLINK |
363                     CLOUDABI_RIGHT_FILE_UNLINK |
364                     CLOUDABI_RIGHT_MEM_MAP |
365                     CLOUDABI_RIGHT_MEM_MAP_EXEC |
366                     CLOUDABI_RIGHT_POLL_FD_READWRITE |
367                     CLOUDABI_RIGHT_PROC_EXEC |
368                     CLOUDABI_RIGHT_SOCK_BIND_DIRECTORY |
369                     CLOUDABI_RIGHT_SOCK_CONNECT_DIRECTORY;
370                 break;
371         case CLOUDABI_FILETYPE_FIFO:
372                 *base &= CLOUDABI_RIGHT_FD_READ |
373                     CLOUDABI_RIGHT_FD_STAT_PUT_FLAGS |
374                     CLOUDABI_RIGHT_FD_WRITE |
375                     CLOUDABI_RIGHT_FILE_STAT_FGET |
376                     CLOUDABI_RIGHT_POLL_FD_READWRITE;
377                 *inheriting = 0;
378                 break;
379         case CLOUDABI_FILETYPE_POLL:
380                 *base &= ~CLOUDABI_RIGHT_FILE_ADVISE;
381                 *inheriting = 0;
382                 break;
383         case CLOUDABI_FILETYPE_PROCESS:
384                 *base &= ~(CLOUDABI_RIGHT_FILE_ADVISE |
385                     CLOUDABI_RIGHT_POLL_FD_READWRITE);
386                 *inheriting = 0;
387                 break;
388         case CLOUDABI_FILETYPE_REGULAR_FILE:
389                 *base &= CLOUDABI_RIGHT_FD_DATASYNC |
390                     CLOUDABI_RIGHT_FD_READ |
391                     CLOUDABI_RIGHT_FD_SEEK |
392                     CLOUDABI_RIGHT_FD_STAT_PUT_FLAGS |
393                     CLOUDABI_RIGHT_FD_SYNC |
394                     CLOUDABI_RIGHT_FD_TELL |
395                     CLOUDABI_RIGHT_FD_WRITE |
396                     CLOUDABI_RIGHT_FILE_ADVISE |
397                     CLOUDABI_RIGHT_FILE_ALLOCATE |
398                     CLOUDABI_RIGHT_FILE_STAT_FGET |
399                     CLOUDABI_RIGHT_FILE_STAT_FPUT_SIZE |
400                     CLOUDABI_RIGHT_FILE_STAT_FPUT_TIMES |
401                     CLOUDABI_RIGHT_MEM_MAP |
402                     CLOUDABI_RIGHT_MEM_MAP_EXEC |
403                     CLOUDABI_RIGHT_POLL_FD_READWRITE |
404                     CLOUDABI_RIGHT_PROC_EXEC;
405                 *inheriting = 0;
406                 break;
407         case CLOUDABI_FILETYPE_SHARED_MEMORY:
408                 *base &= ~(CLOUDABI_RIGHT_FD_SEEK |
409                     CLOUDABI_RIGHT_FD_TELL |
410                     CLOUDABI_RIGHT_FILE_ADVISE |
411                     CLOUDABI_RIGHT_FILE_ALLOCATE |
412                     CLOUDABI_RIGHT_FILE_READDIR);
413                 *inheriting = 0;
414                 break;
415         case CLOUDABI_FILETYPE_SOCKET_DGRAM:
416         case CLOUDABI_FILETYPE_SOCKET_SEQPACKET:
417         case CLOUDABI_FILETYPE_SOCKET_STREAM:
418                 *base &= CLOUDABI_RIGHT_FD_READ |
419                     CLOUDABI_RIGHT_FD_STAT_PUT_FLAGS |
420                     CLOUDABI_RIGHT_FD_WRITE |
421                     CLOUDABI_RIGHT_FILE_STAT_FGET |
422                     CLOUDABI_RIGHT_POLL_FD_READWRITE |
423                     CLOUDABI_RIGHT_SOCK_ACCEPT |
424                     CLOUDABI_RIGHT_SOCK_BIND_SOCKET |
425                     CLOUDABI_RIGHT_SOCK_CONNECT_SOCKET |
426                     CLOUDABI_RIGHT_SOCK_LISTEN |
427                     CLOUDABI_RIGHT_SOCK_SHUTDOWN |
428                     CLOUDABI_RIGHT_SOCK_STAT_GET;
429                 break;
430         default:
431                 *inheriting = 0;
432                 break;
433         }
434 }
435
436 /* Converts FreeBSD's Capsicum rights to CloudABI's set of rights. */
437 static void
438 convert_capabilities(const cap_rights_t *capabilities,
439     cloudabi_filetype_t filetype, cloudabi_rights_t *base,
440     cloudabi_rights_t *inheriting)
441 {
442         cloudabi_rights_t rights;
443
444         /* Convert FreeBSD bits to CloudABI bits. */
445         rights = 0;
446 #define MAPPING(cloudabi, ...) do {                             \
447         if (cap_rights_is_set(capabilities, ##__VA_ARGS__))     \
448                 rights |= (cloudabi);                           \
449 } while (0);
450         RIGHTS_MAPPINGS
451 #undef MAPPING
452
453         *base = rights;
454         *inheriting = rights;
455         cloudabi_remove_conflicting_rights(filetype, base, inheriting);
456 }
457
458 int
459 cloudabi_sys_fd_stat_get(struct thread *td,
460     struct cloudabi_sys_fd_stat_get_args *uap)
461 {
462         cloudabi_fdstat_t fsb = {};
463         struct filedesc *fdp;
464         struct file *fp;
465         seq_t seq;
466         cap_rights_t rights;
467         int error, oflags;
468         bool modified;
469
470         /* Obtain file descriptor properties. */
471         fdp = td->td_proc->p_fd;
472         do {
473                 error = fget_unlocked(fdp, uap->fd, cap_rights_init(&rights),
474                     &fp, &seq);
475                 if (error != 0)
476                         return (error);
477                 if (fp->f_ops == &badfileops) {
478                         fdrop(fp, td);
479                         return (EBADF);
480                 }
481
482                 rights = *cap_rights(fdp, uap->fd);
483                 oflags = OFLAGS(fp->f_flag);
484                 fsb.fs_filetype = cloudabi_convert_filetype(fp);
485
486                 modified = fd_modified(fdp, uap->fd, seq);
487                 fdrop(fp, td);
488         } while (modified);
489
490         /* Convert file descriptor flags. */
491         if (oflags & O_APPEND)
492                 fsb.fs_flags |= CLOUDABI_FDFLAG_APPEND;
493         if (oflags & O_NONBLOCK)
494                 fsb.fs_flags |= CLOUDABI_FDFLAG_NONBLOCK;
495         if (oflags & O_SYNC)
496                 fsb.fs_flags |= CLOUDABI_FDFLAG_SYNC;
497
498         /* Convert capabilities to CloudABI rights. */
499         convert_capabilities(&rights, fsb.fs_filetype,
500             &fsb.fs_rights_base, &fsb.fs_rights_inheriting);
501         return (copyout(&fsb, (void *)uap->buf, sizeof(fsb)));
502 }
503
504 /* Converts CloudABI rights to a set of Capsicum capabilities. */
505 int
506 cloudabi_convert_rights(cloudabi_rights_t in, cap_rights_t *out)
507 {
508
509         cap_rights_init(out);
510 #define MAPPING(cloudabi, ...) do {                     \
511         if (in & (cloudabi)) {                          \
512                 cap_rights_set(out, ##__VA_ARGS__);     \
513                 in &= ~(cloudabi);                      \
514         }                                               \
515 } while (0);
516         RIGHTS_MAPPINGS
517 #undef MAPPING
518         if (in != 0)
519                 return (ENOTCAPABLE);
520         return (0);
521 }
522
523 int
524 cloudabi_sys_fd_stat_put(struct thread *td,
525     struct cloudabi_sys_fd_stat_put_args *uap)
526 {
527         cloudabi_fdstat_t fsb;
528         cap_rights_t rights;
529         int error, oflags;
530
531         error = copyin(uap->buf, &fsb, sizeof(fsb));
532         if (error != 0)
533                 return (error);
534
535         if (uap->flags == CLOUDABI_FDSTAT_FLAGS) {
536                 /* Convert flags. */
537                 oflags = 0;
538                 if (fsb.fs_flags & CLOUDABI_FDFLAG_APPEND)
539                         oflags |= O_APPEND;
540                 if (fsb.fs_flags & CLOUDABI_FDFLAG_NONBLOCK)
541                         oflags |= O_NONBLOCK;
542                 if (fsb.fs_flags & (CLOUDABI_FDFLAG_SYNC |
543                     CLOUDABI_FDFLAG_DSYNC | CLOUDABI_FDFLAG_RSYNC))
544                         oflags |= O_SYNC;
545                 return (kern_fcntl(td, uap->fd, F_SETFL, oflags));
546         } else if (uap->flags == CLOUDABI_FDSTAT_RIGHTS) {
547                 /* Convert rights. */
548                 error = cloudabi_convert_rights(
549                     fsb.fs_rights_base | fsb.fs_rights_inheriting, &rights);
550                 if (error != 0)
551                         return (error);
552                 return (kern_cap_rights_limit(td, uap->fd, &rights));
553         }
554         return (EINVAL);
555 }
556
557 int
558 cloudabi_sys_fd_sync(struct thread *td, struct cloudabi_sys_fd_sync_args *uap)
559 {
560         struct fsync_args fsync_args = {
561                 .fd = uap->fd
562         };
563
564         return (sys_fsync(td, &fsync_args));
565 }