On Thu, Mar 30, 2017 at 10:21 AM, Christoph Hellwig <hch@xxxxxx> wrote: > > Failure atomic file updates, aka O_ATOMIC: > > https://lwn.net/Articles/573092/ > > Currently the way to probe for it is a new ioctl to check if atomicy > is offered. This should work, but it's rather fragile.. So quite frankly, I'd much rather see that people who really want to check would instead just fd = open(... O_ATOMIC); if (fd < 0) .. regular error handling .. /* Did we actually get O_ATOMIC? */ if (!(O_ATOMIC & fnctl(fd, F_GETFL, NULL))) .. warn about lack of O_ATOMIC .. because I suspect that you will find users that might *want* atomic behavior, but in the absence of atomicity guarantees will want to still be able to do IO. The above kind of model seems much more straightforward, and has no backwards/forwards compatibility issues I can see. I'm assuming you'd also possible want to be able to use F_SETFL to set O_ATOMIC after the fact (independently of the open - I could see tools like "dd" growing an atomic flag and setting it on stdout), so the F_GETFL interface seems natural for that reason too. Linus