Lines Matching refs:v

84 	struct dm_verity *v;  member
110 struct dm_verity *v; member
115 static struct shash_desc *io_hash_desc(struct dm_verity *v, struct dm_verity_io *io) in io_hash_desc() argument
120 static u8 *io_real_digest(struct dm_verity *v, struct dm_verity_io *io) in io_real_digest() argument
122 return (u8 *)(io + 1) + v->shash_descsize; in io_real_digest()
125 static u8 *io_want_digest(struct dm_verity *v, struct dm_verity_io *io) in io_want_digest() argument
127 return (u8 *)(io + 1) + v->shash_descsize + v->digest_size; in io_want_digest()
159 static sector_t verity_map_sector(struct dm_verity *v, sector_t bi_sector) in verity_map_sector() argument
161 return v->data_start + dm_target_offset(v->ti, bi_sector); in verity_map_sector()
170 static sector_t verity_position_at_level(struct dm_verity *v, sector_t block, in verity_position_at_level() argument
173 return block >> (level * v->hash_per_block_bits); in verity_position_at_level()
176 static void verity_hash_at_level(struct dm_verity *v, sector_t block, int level, in verity_hash_at_level() argument
179 sector_t position = verity_position_at_level(v, block, level); in verity_hash_at_level()
182 *hash_block = v->hash_level_block[level] + (position >> v->hash_per_block_bits); in verity_hash_at_level()
187 idx = position & ((1 << v->hash_per_block_bits) - 1); in verity_hash_at_level()
188 if (!v->version) in verity_hash_at_level()
189 *offset = idx * v->digest_size; in verity_hash_at_level()
191 *offset = idx << (v->hash_dev_block_bits - v->hash_per_block_bits); in verity_hash_at_level()
197 static int verity_handle_err(struct dm_verity *v, enum verity_block_type type, in verity_handle_err() argument
203 struct mapped_device *md = dm_table_get_md(v->ti->table); in verity_handle_err()
206 v->hash_failed = 1; in verity_handle_err()
208 if (v->corrupted_errs >= DM_VERITY_MAX_CORRUPTED_ERRS) in verity_handle_err()
211 v->corrupted_errs++; in verity_handle_err()
224 DMERR("%s: %s block %llu is corrupted", v->data_dev->name, type_str, in verity_handle_err()
227 if (v->corrupted_errs == DM_VERITY_MAX_CORRUPTED_ERRS) in verity_handle_err()
228 DMERR("%s: reached maximum errors", v->data_dev->name); in verity_handle_err()
236 if (v->mode == DM_VERITY_MODE_LOGGING) in verity_handle_err()
239 if (v->mode == DM_VERITY_MODE_RESTART) in verity_handle_err()
259 struct dm_verity *v = io->v; in verity_verify_level() local
267 verity_hash_at_level(v, block, level, &hash_block, &offset); in verity_verify_level()
269 data = dm_bufio_read(v->bufio, hash_block, &buf); in verity_verify_level()
284 desc = io_hash_desc(v, io); in verity_verify_level()
285 desc->tfm = v->tfm; in verity_verify_level()
293 if (likely(v->version >= 1)) { in verity_verify_level()
294 r = crypto_shash_update(desc, v->salt, v->salt_size); in verity_verify_level()
301 r = crypto_shash_update(desc, data, 1 << v->hash_dev_block_bits); in verity_verify_level()
307 if (!v->version) { in verity_verify_level()
308 r = crypto_shash_update(desc, v->salt, v->salt_size); in verity_verify_level()
315 result = io_real_digest(v, io); in verity_verify_level()
321 if (unlikely(memcmp(result, io_want_digest(v, io), v->digest_size))) { in verity_verify_level()
322 if (verity_handle_err(v, DM_VERITY_BLOCK_TYPE_METADATA, in verity_verify_level()
333 memcpy(io_want_digest(v, io), data, v->digest_size); in verity_verify_level()
349 struct dm_verity *v = io->v; in verity_verify_io() local
351 v->ti->per_bio_data_size); in verity_verify_io()
361 if (likely(v->levels)) { in verity_verify_io()
376 memcpy(io_want_digest(v, io), v->root_digest, v->digest_size); in verity_verify_io()
378 for (i = v->levels - 1; i >= 0; i--) { in verity_verify_io()
385 desc = io_hash_desc(v, io); in verity_verify_io()
386 desc->tfm = v->tfm; in verity_verify_io()
394 if (likely(v->version >= 1)) { in verity_verify_io()
395 r = crypto_shash_update(desc, v->salt, v->salt_size); in verity_verify_io()
401 todo = 1 << v->data_dev_block_bits; in verity_verify_io()
423 if (!v->version) { in verity_verify_io()
424 r = crypto_shash_update(desc, v->salt, v->salt_size); in verity_verify_io()
431 result = io_real_digest(v, io); in verity_verify_io()
437 if (unlikely(memcmp(result, io_want_digest(v, io), v->digest_size))) { in verity_verify_io()
438 if (verity_handle_err(v, DM_VERITY_BLOCK_TYPE_DATA, in verity_verify_io()
452 struct dm_verity *v = io->v; in verity_finish_io() local
453 struct bio *bio = dm_bio_from_per_bio_data(io, v->ti->per_bio_data_size); in verity_finish_io()
479 queue_work(io->v->verify_wq, &io->work); in verity_end_io()
491 struct dm_verity *v = pw->v; in verity_prefetch_io() local
494 for (i = v->levels - 2; i >= 0; i--) { in verity_prefetch_io()
497 verity_hash_at_level(v, pw->block, i, &hash_block_start, NULL); in verity_prefetch_io()
498 verity_hash_at_level(v, pw->block + pw->n_blocks - 1, i, &hash_block_end, NULL); in verity_prefetch_io()
502 cluster >>= v->data_dev_block_bits; in verity_prefetch_io()
511 if (unlikely(hash_block_end >= v->hash_blocks)) in verity_prefetch_io()
512 hash_block_end = v->hash_blocks - 1; in verity_prefetch_io()
515 dm_bufio_prefetch(v->bufio, hash_block_start, in verity_prefetch_io()
522 static void verity_submit_prefetch(struct dm_verity *v, struct dm_verity_io *io) in verity_submit_prefetch() argument
533 pw->v = v; in verity_submit_prefetch()
536 queue_work(v->verify_wq, &pw->work); in verity_submit_prefetch()
545 struct dm_verity *v = ti->private; in verity_map() local
548 bio->bi_bdev = v->data_dev->bdev; in verity_map()
549 bio->bi_iter.bi_sector = verity_map_sector(v, bio->bi_iter.bi_sector); in verity_map()
552 ((1 << (v->data_dev_block_bits - SECTOR_SHIFT)) - 1)) { in verity_map()
558 (v->data_dev_block_bits - SECTOR_SHIFT) > v->data_blocks) { in verity_map()
567 io->v = v; in verity_map()
570 io->block = bio->bi_iter.bi_sector >> (v->data_dev_block_bits - SECTOR_SHIFT); in verity_map()
571 io->n_blocks = bio->bi_iter.bi_size >> v->data_dev_block_bits; in verity_map()
577 verity_submit_prefetch(v, io); in verity_map()
590 struct dm_verity *v = ti->private; in verity_status() local
596 DMEMIT("%c", v->hash_failed ? 'C' : 'V'); in verity_status()
600 v->version, in verity_status()
601 v->data_dev->name, in verity_status()
602 v->hash_dev->name, in verity_status()
603 1 << v->data_dev_block_bits, in verity_status()
604 1 << v->hash_dev_block_bits, in verity_status()
605 (unsigned long long)v->data_blocks, in verity_status()
606 (unsigned long long)v->hash_start, in verity_status()
607 v->alg_name in verity_status()
609 for (x = 0; x < v->digest_size; x++) in verity_status()
610 DMEMIT("%02x", v->root_digest[x]); in verity_status()
612 if (!v->salt_size) in verity_status()
615 for (x = 0; x < v->salt_size; x++) in verity_status()
616 DMEMIT("%02x", v->salt[x]); in verity_status()
617 if (v->mode != DM_VERITY_MODE_EIO) { in verity_status()
619 switch (v->mode) { in verity_status()
637 struct dm_verity *v = ti->private; in verity_prepare_ioctl() local
639 *bdev = v->data_dev->bdev; in verity_prepare_ioctl()
641 if (v->data_start || in verity_prepare_ioctl()
642 ti->len != i_size_read(v->data_dev->bdev->bd_inode) >> SECTOR_SHIFT) in verity_prepare_ioctl()
650 struct dm_verity *v = ti->private; in verity_iterate_devices() local
652 return fn(ti, v->data_dev, v->data_start, ti->len, data); in verity_iterate_devices()
657 struct dm_verity *v = ti->private; in verity_io_hints() local
659 if (limits->logical_block_size < 1 << v->data_dev_block_bits) in verity_io_hints()
660 limits->logical_block_size = 1 << v->data_dev_block_bits; in verity_io_hints()
662 if (limits->physical_block_size < 1 << v->data_dev_block_bits) in verity_io_hints()
663 limits->physical_block_size = 1 << v->data_dev_block_bits; in verity_io_hints()
670 struct dm_verity *v = ti->private; in verity_dtr() local
672 if (v->verify_wq) in verity_dtr()
673 destroy_workqueue(v->verify_wq); in verity_dtr()
675 if (v->bufio) in verity_dtr()
676 dm_bufio_client_destroy(v->bufio); in verity_dtr()
678 kfree(v->salt); in verity_dtr()
679 kfree(v->root_digest); in verity_dtr()
681 if (v->tfm) in verity_dtr()
682 crypto_free_shash(v->tfm); in verity_dtr()
684 kfree(v->alg_name); in verity_dtr()
686 if (v->hash_dev) in verity_dtr()
687 dm_put_device(ti, v->hash_dev); in verity_dtr()
689 if (v->data_dev) in verity_dtr()
690 dm_put_device(ti, v->data_dev); in verity_dtr()
692 kfree(v); in verity_dtr()
711 struct dm_verity *v; in verity_ctr() local
725 v = kzalloc(sizeof(struct dm_verity), GFP_KERNEL); in verity_ctr()
726 if (!v) { in verity_ctr()
730 ti->private = v; in verity_ctr()
731 v->ti = ti; in verity_ctr()
751 v->version = num; in verity_ctr()
753 r = dm_get_device(ti, argv[1], FMODE_READ, &v->data_dev); in verity_ctr()
759 r = dm_get_device(ti, argv[2], FMODE_READ, &v->hash_dev); in verity_ctr()
767 num < bdev_logical_block_size(v->data_dev->bdev) || in verity_ctr()
773 v->data_dev_block_bits = __ffs(num); in verity_ctr()
777 num < bdev_logical_block_size(v->hash_dev->bdev) || in verity_ctr()
783 v->hash_dev_block_bits = __ffs(num); in verity_ctr()
786 (sector_t)(num_ll << (v->data_dev_block_bits - SECTOR_SHIFT)) in verity_ctr()
787 >> (v->data_dev_block_bits - SECTOR_SHIFT) != num_ll) { in verity_ctr()
792 v->data_blocks = num_ll; in verity_ctr()
794 if (ti->len > (v->data_blocks << (v->data_dev_block_bits - SECTOR_SHIFT))) { in verity_ctr()
801 (sector_t)(num_ll << (v->hash_dev_block_bits - SECTOR_SHIFT)) in verity_ctr()
802 >> (v->hash_dev_block_bits - SECTOR_SHIFT) != num_ll) { in verity_ctr()
807 v->hash_start = num_ll; in verity_ctr()
809 v->alg_name = kstrdup(argv[7], GFP_KERNEL); in verity_ctr()
810 if (!v->alg_name) { in verity_ctr()
816 v->tfm = crypto_alloc_shash(v->alg_name, 0, 0); in verity_ctr()
817 if (IS_ERR(v->tfm)) { in verity_ctr()
819 r = PTR_ERR(v->tfm); in verity_ctr()
820 v->tfm = NULL; in verity_ctr()
823 v->digest_size = crypto_shash_digestsize(v->tfm); in verity_ctr()
824 if ((1 << v->hash_dev_block_bits) < v->digest_size * 2) { in verity_ctr()
829 v->shash_descsize = in verity_ctr()
830 sizeof(struct shash_desc) + crypto_shash_descsize(v->tfm); in verity_ctr()
832 v->root_digest = kmalloc(v->digest_size, GFP_KERNEL); in verity_ctr()
833 if (!v->root_digest) { in verity_ctr()
838 if (strlen(argv[8]) != v->digest_size * 2 || in verity_ctr()
839 hex2bin(v->root_digest, argv[8], v->digest_size)) { in verity_ctr()
846 v->salt_size = strlen(argv[9]) / 2; in verity_ctr()
847 v->salt = kmalloc(v->salt_size, GFP_KERNEL); in verity_ctr()
848 if (!v->salt) { in verity_ctr()
853 if (strlen(argv[9]) != v->salt_size * 2 || in verity_ctr()
854 hex2bin(v->salt, argv[9], v->salt_size)) { in verity_ctr()
883 v->mode = DM_VERITY_MODE_LOGGING; in verity_ctr()
885 v->mode = DM_VERITY_MODE_RESTART; in verity_ctr()
894 v->hash_per_block_bits = in verity_ctr()
895 __fls((1 << v->hash_dev_block_bits) / v->digest_size); in verity_ctr()
897 v->levels = 0; in verity_ctr()
898 if (v->data_blocks) in verity_ctr()
899 while (v->hash_per_block_bits * v->levels < 64 && in verity_ctr()
900 (unsigned long long)(v->data_blocks - 1) >> in verity_ctr()
901 (v->hash_per_block_bits * v->levels)) in verity_ctr()
902 v->levels++; in verity_ctr()
904 if (v->levels > DM_VERITY_MAX_LEVELS) { in verity_ctr()
910 hash_position = v->hash_start; in verity_ctr()
911 for (i = v->levels - 1; i >= 0; i--) { in verity_ctr()
913 v->hash_level_block[i] = hash_position; in verity_ctr()
914 s = (v->data_blocks + ((sector_t)1 << ((i + 1) * v->hash_per_block_bits)) - 1) in verity_ctr()
915 >> ((i + 1) * v->hash_per_block_bits); in verity_ctr()
923 v->hash_blocks = hash_position; in verity_ctr()
925 v->bufio = dm_bufio_client_create(v->hash_dev->bdev, in verity_ctr()
926 1 << v->hash_dev_block_bits, 1, sizeof(struct buffer_aux), in verity_ctr()
928 if (IS_ERR(v->bufio)) { in verity_ctr()
930 r = PTR_ERR(v->bufio); in verity_ctr()
931 v->bufio = NULL; in verity_ctr()
935 if (dm_bufio_get_device_size(v->bufio) < v->hash_blocks) { in verity_ctr()
941 …ti->per_bio_data_size = roundup(sizeof(struct dm_verity_io) + v->shash_descsize + v->digest_size *… in verity_ctr()
944v->verify_wq = alloc_workqueue("kverityd", WQ_CPU_INTENSIVE | WQ_MEM_RECLAIM | WQ_UNBOUND, num_onl… in verity_ctr()
945 if (!v->verify_wq) { in verity_ctr()