qemu_hotplug.c 146.0 KB
Newer Older
1
/*
2
 * qemu_hotplug.c: QEMU device hotplug management
3
 *
4
 * Copyright (C) 2006-2016 Red Hat, Inc.
5 6 7 8 9 10 11 12 13 14 15 16 17
 * Copyright (C) 2006 Daniel P. Berrange
 *
 * This library is free software; you can redistribute it and/or
 * modify it under the terms of the GNU Lesser General Public
 * License as published by the Free Software Foundation; either
 * version 2.1 of the License, or (at your option) any later version.
 *
 * This library is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 * Lesser General Public License for more details.
 *
 * You should have received a copy of the GNU Lesser General Public
18
 * License along with this library.  If not, see
O
Osier Yang 已提交
19
 * <http://www.gnu.org/licenses/>.
20 21 22 23 24 25 26 27
 *
 * Author: Daniel P. Berrange <berrange@redhat.com>
 */


#include <config.h>

#include "qemu_hotplug.h"
28
#include "qemu_hotplugpriv.h"
29
#include "qemu_alias.h"
30 31
#include "qemu_capabilities.h"
#include "qemu_domain.h"
32
#include "qemu_domain_address.h"
33 34
#include "qemu_command.h"
#include "qemu_hostdev.h"
35
#include "qemu_interface.h"
36
#include "qemu_process.h"
37
#include "domain_audit.h"
38
#include "netdev_bandwidth_conf.h"
39
#include "domain_nwfilter.h"
40
#include "virlog.h"
41
#include "datatypes.h"
42
#include "virerror.h"
43
#include "viralloc.h"
44
#include "virpci.h"
E
Eric Blake 已提交
45
#include "virfile.h"
46
#include "virprocess.h"
47
#include "qemu_cgroup.h"
48
#include "locking/domain_lock.h"
49
#include "network/bridge_driver.h"
50 51
#include "virnetdev.h"
#include "virnetdevbridge.h"
A
Ansis Atteka 已提交
52
#include "virnetdevtap.h"
53
#include "virnetdevopenvswitch.h"
54
#include "virnetdevmidonet.h"
55
#include "device_conf.h"
56
#include "virstoragefile.h"
57
#include "virstring.h"
58
#include "virtime.h"
59
#include "storage/storage_driver.h"
60 61

#define VIR_FROM_THIS VIR_FROM_QEMU
62 63 64

VIR_LOG_INIT("qemu.qemu_hotplug");

65
#define CHANGE_MEDIA_TIMEOUT 5000
66

67 68 69 70
/* Wait up to 5 seconds for device removal to finish. */
unsigned long long qemuDomainRemoveDeviceWaitTime = 1000ull * 5;


71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147
/**
 * qemuDomainPrepareDisk:
 * @driver: qemu driver struct
 * @vm: domain object
 * @disk: disk to prepare
 * @overridesrc: Source different than @disk->src when necessary
 * @teardown: Teardown the disk instead of adding it to a vm
 *
 * Setup the locks, cgroups and security permissions on a disk of a VM.
 * If @overridesrc is specified the source struct is used instead of the
 * one present in @disk. If @teardown is true, then the labels and cgroups
 * are removed instead.
 *
 * Returns 0 on success and -1 on error. Reports libvirt error.
 */
static int
qemuDomainPrepareDisk(virQEMUDriverPtr driver,
                      virDomainObjPtr vm,
                      virDomainDiskDefPtr disk,
                      virStorageSourcePtr overridesrc,
                      bool teardown)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    int ret = -1;
    virStorageSourcePtr origsrc = NULL;

    if (overridesrc) {
        origsrc = disk->src;
        disk->src = overridesrc;
    }

    /* just tear down the disk access */
    if (teardown) {
        ret = 0;
        goto rollback_cgroup;
    }

    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
                                vm, disk) < 0)
        goto cleanup;

    if (virSecurityManagerSetDiskLabel(driver->securityManager,
                                       vm->def, disk) < 0)
        goto rollback_lock;

    if (qemuSetupDiskCgroup(vm, disk) < 0)
        goto rollback_label;

    ret = 0;
    goto cleanup;

 rollback_cgroup:
    if (qemuTeardownDiskCgroup(vm, disk) < 0)
        VIR_WARN("Unable to tear down cgroup access on %s",
                 virDomainDiskGetSource(disk));

 rollback_label:
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
        VIR_WARN("Unable to restore security label on %s",
                 virDomainDiskGetSource(disk));

 rollback_lock:
    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s",
                 virDomainDiskGetSource(disk));

 cleanup:
    if (origsrc)
        disk->src = origsrc;

    virObjectUnref(cfg);

    return ret;
}


148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165
static int
qemuHotplugWaitForTrayEject(virQEMUDriverPtr driver,
                            virDomainObjPtr vm,
                            virDomainDiskDefPtr disk,
                            const char *driveAlias,
                            bool force)
{
    unsigned long long now;
    int rc;

    if (virTimeMillisNow(&now) < 0)
        return -1;

    while (disk->tray_status != VIR_DOMAIN_DISK_TRAY_OPEN) {
        if ((rc = virDomainObjWaitUntil(vm, now + CHANGE_MEDIA_TIMEOUT)) < 0)
            return -1;

        if (rc > 0) {
166 167 168 169 170 171
            /* the caller called qemuMonitorEjectMedia which usually reports an
             * error. Report the failure in an off-chance that it didn't. */
            if (!virGetLastError()) {
                virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                               _("timed out waiting for disk tray status update"));
            }
172 173 174 175 176 177 178 179 180 181 182 183 184 185
            return -1;
        }
    }

    /* re-issue ejection command to pop out the media */
    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorEjectMedia(qemuDomainGetMonitor(vm), driveAlias, force);
    if (qemuDomainObjExitMonitor(driver, vm) < 0 || rc < 0)
        return -1;

    return 0;
}


186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206
/**
 * qemuDomainChangeEjectableMedia:
 * @driver: qemu driver structure
 * @vm: domain definition
 * @disk: disk definition to change the source of
 * @newsrc: new disk source to change to
 * @force: force the change of media
 *
 * Change the media in an ejectable device to the one described by
 * @newsrc. This function also removes the old source from the
 * shared device table if appropriate. Note that newsrc is consumed
 * on success and the old source is freed on success.
 *
 * Returns 0 on success, -1 on error and reports libvirt error
 */
int
qemuDomainChangeEjectableMedia(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDiskDefPtr disk,
                               virStorageSourcePtr newsrc,
                               bool force)
207
{
208
    int ret = -1, rc;
209
    char *driveAlias = NULL;
210
    qemuDomainObjPrivatePtr priv = vm->privateData;
211
    qemuDomainDiskPrivatePtr diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
212
    const char *format = NULL;
213
    char *sourcestr = NULL;
214

215
    if (!disk->info.alias) {
216
        virReportError(VIR_ERR_INTERNAL_ERROR,
217
                       _("missing disk device alias name for %s"), disk->dst);
218
        goto cleanup;
219 220
    }

221 222
    if (disk->device != VIR_DOMAIN_DISK_DEVICE_FLOPPY &&
        disk->device != VIR_DOMAIN_DISK_DEVICE_CDROM) {
223 224
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("Removable media not supported for %s device"),
225
                       virDomainDiskDeviceTypeToString(disk->device));
226
        goto cleanup;
227 228
    }

229
    if (qemuDomainPrepareDisk(driver, vm, disk, newsrc, false) < 0)
230
        goto cleanup;
231

232
    if (!(driveAlias = qemuAliasFromDisk(disk)))
233 234
        goto error;

235 236 237 238
    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorEjectMedia(priv->mon, driveAlias, force);
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
239

240 241 242
    /* If the tray is present and tray change event is supported wait for it to open. */
    if (diskPriv->tray &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_TRAY_MOVED)) {
243 244
        rc = qemuHotplugWaitForTrayEject(driver, vm, disk, driveAlias, force);
        if (rc < 0)
245
            goto error;
246 247 248 249 250
    } else  {
        /* otherwise report possible errors from the attempt to eject the media*/
        if (rc < 0)
            goto error;
    }
251

252
    if (!virStorageSourceIsEmpty(newsrc)) {
253
        if (qemuGetDriveSourceString(newsrc, diskPriv->secinfo, &sourcestr) < 0)
254 255
            goto error;

256 257 258
        if (virStorageSourceGetActualType(newsrc) != VIR_STORAGE_TYPE_DIR) {
            if (newsrc->format > 0) {
                format = virStorageFileFormatTypeToString(newsrc->format);
259
            } else {
260 261
                if (disk->src->format > 0)
                    format = virStorageFileFormatTypeToString(disk->src->format);
262
            }
263
        }
264
        qemuDomainObjEnterMonitor(driver, vm);
265 266 267 268 269
        rc = qemuMonitorChangeMedia(priv->mon,
                                    driveAlias,
                                    sourcestr,
                                    format);
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
270
            goto cleanup;
271
    }
272

273
    virDomainAuditDisk(vm, disk->src, newsrc, "update", rc >= 0);
274

275
    if (rc < 0)
276 277
        goto error;

278 279
    /* remove the old source from shared device list */
    ignore_value(qemuRemoveSharedDisk(driver, disk, vm->def->name));
280
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
281

282 283 284
    virStorageSourceFree(disk->src);
    disk->src = newsrc;
    newsrc = NULL;
285
    ret = 0;
286

287
 cleanup:
288
    VIR_FREE(driveAlias);
289
    VIR_FREE(sourcestr);
290 291
    return ret;

292
 error:
293 294
    virDomainAuditDisk(vm, disk->src, newsrc, "update", false);
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, newsrc, true));
295
    goto cleanup;
296 297
}

298

299 300 301 302 303
static int
qemuDomainAttachVirtioDiskDevice(virConnectPtr conn,
                                 virQEMUDriverPtr driver,
                                 virDomainObjPtr vm,
                                 virDomainDiskDefPtr disk)
304
{
305
    int ret = -1;
306
    int rv;
307
    qemuDomainObjPrivatePtr priv = vm->privateData;
308
    virErrorPtr orig_err;
309 310
    char *devstr = NULL;
    char *drivestr = NULL;
311
    char *drivealias = NULL;
312
    bool releaseaddr = false;
313
    bool driveAdded = false;
314
    bool secobjAdded = false;
315
    bool encobjAdded = false;
316
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
317
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
318
    const char *src = virDomainDiskGetSource(disk);
319
    virJSONValuePtr secobjProps = NULL;
320
    virJSONValuePtr encobjProps = NULL;
321 322
    qemuDomainDiskPrivatePtr diskPriv;
    qemuDomainSecretInfoPtr secinfo;
323
    qemuDomainSecretInfoPtr encinfo;
324

325
    if (!disk->info.type) {
326
        if (qemuDomainMachineIsS390CCW(vm->def) &&
327 328 329 330
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
331 332 333 334
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, disk->info, priv->qemuCaps,
                                            disk->dst))
            goto cleanup;
335 336
    }

337
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
338
        goto cleanup;
339

340
    if (disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
341 342 343
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto error;
        if (virDomainCCWAddressAssign(&disk->info, ccwaddrs,
344
                                      !disk->info.addr.ccw.assigned) < 0)
345
            goto error;
346 347 348
    } else if (!disk->info.type ||
                disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &disk->info) < 0)
349
            goto error;
350 351 352 353
    }
    releaseaddr = true;
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
354

J
John Ferlan 已提交
355
    if (qemuDomainSecretDiskPrepare(conn, priv, disk) < 0)
356 357
        goto error;

358 359 360 361 362 363 364
    diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
    secinfo = diskPriv->secinfo;
    if (secinfo && secinfo->type == VIR_DOMAIN_SECRET_INFO_TYPE_AES) {
        if (qemuBuildSecretInfoProps(secinfo, &secobjProps) < 0)
            goto error;
    }

365 366 367 368
    encinfo = diskPriv->encinfo;
    if (encinfo && qemuBuildSecretInfoProps(encinfo, &encobjProps) < 0)
        goto error;

369
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
370
        goto error;
371

372
    if (!(drivealias = qemuAliasFromDisk(disk)))
373 374 375 376
        goto error;

    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
377

378
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
379 380
        goto error;

381
    qemuDomainObjEnterMonitor(driver, vm);
382

383 384 385 386 387
    if (secobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", secinfo->s.aes.alias,
                                  secobjProps);
        secobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
388
            goto exit_monitor;
389
        secobjAdded = true;
390 391
    }

392 393 394 395 396 397
    if (encobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", encinfo->s.aes.alias,
                                  encobjProps);
        encobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
            goto exit_monitor;
398
        encobjAdded = true;
399 400
    }

401
    if (qemuMonitorAddDrive(priv->mon, drivestr) < 0)
402 403
        goto exit_monitor;
    driveAdded = true;
404 405

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
406
        goto exit_monitor;
407

408 409
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        releaseaddr = false;
410
        goto error;
411
    }
412

413
    virDomainAuditDisk(vm, NULL, disk->src, "attach", true);
414 415

    virDomainDiskInsertPreAlloced(vm->def, disk);
416
    ret = 0;
417

418
 cleanup:
419
    virJSONValueFree(secobjProps);
420
    virJSONValueFree(encobjProps);
421
    qemuDomainSecretDiskDestroy(disk);
422
    virDomainCCWAddressSetFree(ccwaddrs);
423 424
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
425
    VIR_FREE(drivealias);
426 427
    virObjectUnref(cfg);
    return ret;
428

429
 exit_monitor:
430
    orig_err = virSaveLastError();
431
    if (driveAdded && qemuMonitorDriveDel(priv->mon, drivealias) < 0) {
432 433 434
        VIR_WARN("Unable to remove drive %s (%s) after failed "
                 "qemuMonitorAddDevice", drivealias, drivestr);
    }
435 436
    if (secobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, secinfo->s.aes.alias));
437 438
    if (encobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, encinfo->s.aes.alias));
439 440 441 442
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }
443

444 445 446 447 448
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        releaseaddr = false;

    virDomainAuditDisk(vm, NULL, disk->src, "attach", false);

449
 error:
450
    if (releaseaddr)
451
        qemuDomainReleaseDeviceAddress(vm, &disk->info, src);
452

453
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
454
    goto cleanup;
455 456 457
}


458 459 460
int qemuDomainAttachControllerDevice(virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainControllerDefPtr controller)
461 462 463 464 465
{
    int ret = -1;
    const char* type = virDomainControllerTypeToString(controller->type);
    char *devstr = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
466
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
467
    bool releaseaddr = false;
468

469 470 471 472 473 474 475
    if (controller->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("'%s' controller cannot be hot plugged."),
                       virDomainControllerTypeToString(controller->type));
        return -1;
    }

476 477 478 479 480 481 482 483
    /* default idx would normally be set by virDomainDefPostParse(),
     * which isn't called in the case of live attach of a single
     * device.
     */
    if (controller->idx == -1)
       controller->idx = virDomainControllerFindUnusedIndex(vm->def,
                                                            controller->type);

484
    if (virDomainControllerFind(vm->def, controller->type, controller->idx) >= 0) {
485 486 487 488
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("target %s:%d already exists"),
                       type, controller->idx);
        return -1;
489 490
    }

491 492 493 494 495 496 497 498 499
    if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE) {
        if (qemuDomainMachineIsS390CCW(vm->def) &&
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW))
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, controller->info,
                                            priv->qemuCaps, "controller"))
500
            goto cleanup;
501
    }
502

503 504 505 506 507
    if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE ||
        controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &controller->info) < 0)
            goto cleanup;
    } else if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
508 509 510
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto cleanup;
        if (virDomainCCWAddressAssign(&controller->info, ccwaddrs,
511
                                      !controller->info.addr.ccw.assigned) < 0)
512 513
            goto cleanup;
    }
514 515 516 517 518 519
    releaseaddr = true;
    if (qemuAssignDeviceControllerAlias(vm->def, priv->qemuCaps, controller) < 0)
        goto cleanup;

    if (!(devstr = qemuBuildControllerDevStr(vm->def, controller, priv->qemuCaps, NULL)))
        goto cleanup;
520

521
    if (VIR_REALLOC_N(vm->def->controllers, vm->def->ncontrollers+1) < 0)
522 523
        goto cleanup;

524
    qemuDomainObjEnterMonitor(driver, vm);
525
    ret = qemuMonitorAddDevice(priv->mon, devstr);
526 527 528 529 530
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        releaseaddr = false;
        ret = -1;
        goto cleanup;
    }
531 532

    if (ret == 0) {
533 534
        if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE)
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
535 536 537
        virDomainControllerInsertPreAlloced(vm->def, controller);
    }

538
 cleanup:
539 540
    if (ret != 0 && releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
541 542

    VIR_FREE(devstr);
543
    virDomainCCWAddressSetFree(ccwaddrs);
544 545 546 547
    return ret;
}

static virDomainControllerDefPtr
548
qemuDomainFindOrCreateSCSIDiskController(virQEMUDriverPtr driver,
549
                                         virDomainObjPtr vm,
550
                                         int controller)
551
{
552
    size_t i;
553
    virDomainControllerDefPtr cont;
554

555
    for (i = 0; i < vm->def->ncontrollers; i++) {
556 557 558 559 560 561 562 563 564 565 566
        cont = vm->def->controllers[i];

        if (cont->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (cont->idx == controller)
            return cont;
    }

    /* No SCSI controller present, for backward compatibility we
     * now hotplug a controller */
567
    if (VIR_ALLOC(cont) < 0)
568 569
        return NULL;
    cont->type = VIR_DOMAIN_CONTROLLER_TYPE_SCSI;
570
    cont->idx = controller;
571 572
    cont->model = -1;

573
    VIR_INFO("No SCSI controller present, hotplugging one");
574 575
    if (qemuDomainAttachControllerDevice(driver,
                                         vm, cont) < 0) {
576 577 578 579 580
        VIR_FREE(cont);
        return NULL;
    }

    if (!virDomainObjIsActive(vm)) {
581 582
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit"));
583 584 585 586 587 588 589 590 591
        /* cont doesn't need freeing here, since the reference
         * now held in def->controllers */
        return NULL;
    }

    return cont;
}


592 593 594 595 596
static int
qemuDomainAttachSCSIDisk(virConnectPtr conn,
                         virQEMUDriverPtr driver,
                         virDomainObjPtr vm,
                         virDomainDiskDefPtr disk)
597
{
598
    size_t i;
599
    qemuDomainObjPrivatePtr priv = vm->privateData;
600
    virErrorPtr orig_err;
601 602
    char *drivestr = NULL;
    char *devstr = NULL;
603
    bool driveAdded = false;
604
    bool encobjAdded = false;
605
    int ret = -1;
606
    int rv;
607
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
608 609 610
    virJSONValuePtr encobjProps = NULL;
    qemuDomainDiskPrivatePtr diskPriv;
    qemuDomainSecretInfoPtr encinfo;
611

612
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
613
        goto cleanup;
614 615 616

    /* We should have an address already, so make sure */
    if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE) {
617 618 619
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("unexpected disk address type %s"),
                       virDomainDeviceAddressTypeToString(disk->info.type));
620 621 622
        goto error;
    }

623 624 625 626 627 628 629 630 631 632 633 634
    /* Let's make sure the disk has a controller defined and loaded before
     * trying to add it. The controller used by the disk must exist before a
     * qemu command line string is generated.
     *
     * Ensure that the given controller and all controllers with a smaller index
     * exist; there must not be any missing index in between.
     */
    for (i = 0; i <= disk->info.addr.drive.controller; i++) {
        if (!qemuDomainFindOrCreateSCSIDiskController(driver, vm, i))
            goto error;
    }

635 636
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
637

J
John Ferlan 已提交
638
    if (qemuDomainSecretDiskPrepare(conn, priv, disk) < 0)
639 640
        goto error;

641 642 643 644 645
    diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
    encinfo = diskPriv->encinfo;
    if (encinfo && qemuBuildSecretInfoProps(encinfo, &encobjProps) < 0)
        goto error;

646 647
    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
648

649
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
650 651
        goto error;

652
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
653 654
        goto error;

655
    qemuDomainObjEnterMonitor(driver, vm);
656

657 658 659 660 661 662
    if (encobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", encinfo->s.aes.alias,
                                  encobjProps);
        encobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
            goto exit_monitor;
663
        encobjAdded = true;
664 665
    }

666
    if (qemuMonitorAddDrive(priv->mon, drivestr) < 0)
667 668
        goto exit_monitor;
    driveAdded = true;
669

670
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
671
        goto exit_monitor;
672

673
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
674
        goto error;
675

676
    virDomainAuditDisk(vm, NULL, disk->src, "attach", true);
677 678

    virDomainDiskInsertPreAlloced(vm->def, disk);
679
    ret = 0;
680

681
 cleanup:
682
    virJSONValueFree(encobjProps);
683
    qemuDomainSecretDiskDestroy(disk);
684 685
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
686 687
    virObjectUnref(cfg);
    return ret;
688

689
 exit_monitor:
690
    /* XXX should call 'drive_del' on error but this does not exist yet */
691 692
    if (driveAdded)
        VIR_WARN("qemuMonitorAddDevice failed on %s (%s)", drivestr, devstr);
693

694 695 696 697 698 699 700 701
    orig_err = virSaveLastError();
    if (encobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, encinfo->s.aes.alias));
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

702 703 704 705
    ignore_value(qemuDomainObjExitMonitor(driver, vm));

    virDomainAuditDisk(vm, NULL, disk->src, "attach", false);

706
 error:
707
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
708
    goto cleanup;
709 710 711
}


712
static int
713
qemuDomainAttachUSBMassStorageDevice(virQEMUDriverPtr driver,
714 715
                                     virDomainObjPtr vm,
                                     virDomainDiskDefPtr disk)
716 717
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
718
    int ret = -1;
719 720
    char *drivestr = NULL;
    char *devstr = NULL;
721
    bool driveAdded = false;
722
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
723
    const char *src = virDomainDiskGetSource(disk);
724 725 726 727 728 729 730
    bool releaseaddr = false;

    if (priv->usbaddrs) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, &disk->info) < 0)
            goto cleanup;
        releaseaddr = true;
    }
731

732
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
733
        goto cleanup;
734

735
    /* XXX not correct once we allow attaching a USB CDROM */
736
    if (!src) {
737 738
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       "%s", _("disk source path is missing"));
739 740 741
        goto error;
    }

742 743
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
744
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
745 746 747
        goto error;
    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
748

749
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
750 751
        goto error;

752
    qemuDomainObjEnterMonitor(driver, vm);
753

754 755 756 757 758 759
    if (qemuMonitorAddDrive(priv->mon, drivestr) < 0)
        goto exit_monitor;
    driveAdded = true;

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
        goto exit_monitor;
760

761
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
762 763
        goto error;

764 765
    virDomainAuditDisk(vm, NULL, disk->src, "attach", true);

766
    virDomainDiskInsertPreAlloced(vm->def, disk);
767
    ret = 0;
768

769
 cleanup:
770 771
    if (ret < 0 && releaseaddr)
        virDomainUSBAddressRelease(priv->usbaddrs, &disk->info);
772 773
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
774 775
    virObjectUnref(cfg);
    return ret;
776

777 778 779 780 781 782 783 784 785 786 787
 exit_monitor:
    if (driveAdded) {
        VIR_WARN("qemuMonitorAddDevice failed on %s (%s)",
                 drivestr, devstr);
        /* XXX should call 'drive_del' on error but this does not
           exist yet */
    }

    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    virDomainAuditDisk(vm, NULL, disk->src, "attach", false);

788
 error:
789
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
790
    goto cleanup;
791 792 793
}


794 795 796 797 798 799
int
qemuDomainAttachDeviceDiskLive(virConnectPtr conn,
                               virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
800
    size_t i;
801 802 803
    virDomainDiskDefPtr disk = dev->data.disk;
    virDomainDiskDefPtr orig_disk = NULL;
    int ret = -1;
804
    const char *src = virDomainDiskGetSource(disk);
805

806
    if (STRNEQ_NULLABLE(virDomainDiskGetDriver(disk), "qemu")) {
807 808
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("unsupported driver name '%s' for disk '%s'"),
809
                       virDomainDiskGetDriver(disk), src);
810
        goto cleanup;
811 812
    }

813
    if (virStorageTranslateDiskSourcePool(conn, disk) < 0)
814
        goto cleanup;
815 816

    if (qemuAddSharedDevice(driver, dev, vm->def->name) < 0)
817
        goto cleanup;
818 819

    if (qemuSetUnprivSGIO(dev) < 0)
820
        goto cleanup;
821

822
    if (qemuDomainDetermineDiskChain(driver, vm, disk, false, true) < 0)
823
        goto cleanup;
824

825
    switch ((virDomainDiskDevice) disk->device)  {
826 827 828 829 830
    case VIR_DOMAIN_DISK_DEVICE_CDROM:
    case VIR_DOMAIN_DISK_DEVICE_FLOPPY:
        if (!(orig_disk = virDomainDiskFindByBusAndDst(vm->def,
                                                       disk->bus, disk->dst))) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
831 832 833
                           _("No device with bus '%s' and target '%s'. "
                             "cdrom and floppy device hotplug isn't supported "
                             "by libvirt"),
834 835
                           virDomainDiskBusTypeToString(disk->bus),
                           disk->dst);
836
            goto cleanup;
837 838
        }

839
        if (qemuDomainChangeEjectableMedia(driver, vm, orig_disk,
840
                                           disk->src, false) < 0)
841
            goto cleanup;
842

843
        disk->src = NULL;
844
        ret = 0;
845
        break;
846

847 848
    case VIR_DOMAIN_DISK_DEVICE_DISK:
    case VIR_DOMAIN_DISK_DEVICE_LUN:
849
        for (i = 0; i < vm->def->ndisks; i++) {
850 851
            if (virDomainDiskDefCheckDuplicateInfo(vm->def->disks[i], disk) < 0)
                goto cleanup;
852 853
        }

854 855
        switch ((virDomainDiskBus) disk->bus) {
        case VIR_DOMAIN_DISK_BUS_USB:
856 857 858 859 860
            if (disk->device == VIR_DOMAIN_DISK_DEVICE_LUN) {
                virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                               _("disk device='lun' is not supported for usb bus"));
                break;
            }
861
            ret = qemuDomainAttachUSBMassStorageDevice(driver, vm, disk);
862 863 864
            break;

        case VIR_DOMAIN_DISK_BUS_VIRTIO:
865
            ret = qemuDomainAttachVirtioDiskDevice(conn, driver, vm, disk);
866 867 868
            break;

        case VIR_DOMAIN_DISK_BUS_SCSI:
869
            ret = qemuDomainAttachSCSIDisk(conn, driver, vm, disk);
870 871 872 873 874 875 876 877 878
            break;

        case VIR_DOMAIN_DISK_BUS_IDE:
        case VIR_DOMAIN_DISK_BUS_FDC:
        case VIR_DOMAIN_DISK_BUS_XEN:
        case VIR_DOMAIN_DISK_BUS_UML:
        case VIR_DOMAIN_DISK_BUS_SATA:
        case VIR_DOMAIN_DISK_BUS_SD:
        case VIR_DOMAIN_DISK_BUS_LAST:
879 880 881 882 883
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                           _("disk bus '%s' cannot be hotplugged."),
                           virDomainDiskBusTypeToString(disk->bus));
        }
        break;
884 885

    case VIR_DOMAIN_DISK_DEVICE_LAST:
886 887 888
        break;
    }

889
 cleanup:
890 891 892 893 894 895
    if (ret != 0)
        ignore_value(qemuRemoveSharedDevice(driver, dev, vm->def->name));
    return ret;
}


896 897 898 899
int
qemuDomainAttachNetDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr net)
900 901
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
902 903
    char **tapfdName = NULL;
    int *tapfd = NULL;
904
    size_t tapfdSize = 0;
905 906
    char **vhostfdName = NULL;
    int *vhostfd = NULL;
907
    size_t vhostfdSize = 0;
908 909
    char *nicstr = NULL;
    char *netstr = NULL;
A
Ansis Atteka 已提交
910
    virNetDevVPortProfilePtr vport = NULL;
911 912
    int ret = -1;
    int vlan;
913
    bool releaseaddr = false;
914 915
    bool iface_connected = false;
    int actualType;
916
    virNetDevBandwidthPtr actualBandwidth;
917
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
918
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
919
    size_t i;
920

921
    /* preallocate new slot for device */
922
    if (VIR_REALLOC_N(vm->def->nets, vm->def->nnets + 1) < 0)
923
        goto cleanup;
924

925 926 927 928
    /* If appropriate, grab a physical device from the configured
     * network's pool of devices, or resolve bridge device name
     * to the one defined in the network definition.
     */
929
    if (networkAllocateActualDevice(vm->def, net) < 0)
930
        goto cleanup;
931 932

    actualType = virDomainNetGetActualType(net);
933 934 935 936 937 938

    if (actualType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* This is really a "smart hostdev", so it should be attached
         * as a hostdev (the hostdev code will reach over into the
         * netdev-specific code as appropriate), then also added to
         * the nets list (see cleanup:) if successful.
939 940 941
         *
         * qemuDomainAttachHostDevice uses a connection to resolve
         * a SCSI hostdev secret, which is not this case, so pass NULL.
942
         */
943
        ret = qemuDomainAttachHostDevice(NULL, driver, vm,
944 945 946 947
                                         virDomainNetGetActualHostdev(net));
        goto cleanup;
    }

948
    /* Currently only TAP/macvtap devices supports multiqueue. */
949 950
    if (net->driver.virtio.queues > 0 &&
        !(actualType == VIR_DOMAIN_NET_TYPE_NETWORK ||
951
          actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
952 953
          actualType == VIR_DOMAIN_NET_TYPE_DIRECT ||
          actualType == VIR_DOMAIN_NET_TYPE_ETHERNET)) {
954 955 956 957 958 959
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("Multiqueue network is not supported for: %s"),
                       virDomainNetTypeToString(actualType));
        return -1;
    }

960 961 962
    /* and only TAP devices support nwfilter rules */
    if (net->filter &&
        !(actualType == VIR_DOMAIN_NET_TYPE_NETWORK ||
963 964
          actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
          actualType == VIR_DOMAIN_NET_TYPE_ETHERNET)) {
965 966 967 968 969 970 971
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("filterref is not supported for "
                         "network interfaces of type %s"),
                       virDomainNetTypeToString(actualType));
        return -1;
    }

972 973
    if (actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
        actualType == VIR_DOMAIN_NET_TYPE_NETWORK) {
974 975 976
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
977
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
978
            goto cleanup;
979 980 981 982
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
            goto cleanup;
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
983 984
        if (qemuInterfaceBridgeConnect(vm->def, driver, net,
                                       tapfd, &tapfdSize) < 0)
985 986
            goto cleanup;
        iface_connected = true;
987 988
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
989
            goto cleanup;
990
    } else if (actualType == VIR_DOMAIN_NET_TYPE_DIRECT) {
991 992 993 994
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
995
            goto cleanup;
996 997
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
998
            goto cleanup;
999
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
1000 1001 1002
        if (qemuInterfaceDirectConnect(vm->def, driver, net,
                                       tapfd, tapfdSize,
                                       VIR_NETDEV_VPORT_PROFILE_OP_CREATE) < 0)
1003 1004
            goto cleanup;
        iface_connected = true;
1005 1006
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
1007
            goto cleanup;
1008
    } else if (actualType == VIR_DOMAIN_NET_TYPE_ETHERNET) {
1009 1010 1011 1012
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
1013
            goto cleanup;
1014 1015 1016 1017 1018 1019 1020 1021
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
            goto cleanup;
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
        if (qemuInterfaceEthernetConnect(vm->def, driver, net,
                                       tapfd, tapfdSize) < 0)
            goto cleanup;
        iface_connected = true;
1022 1023
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
1024
            goto cleanup;
1025 1026
    }

1027 1028
    /* Set device online immediately */
    if (qemuInterfaceStartDevice(net) < 0)
1029
        goto cleanup;
1030

1031 1032 1033 1034 1035 1036 1037 1038 1039 1040 1041 1042
    /* Set bandwidth or warn if requested and not supported. */
    actualBandwidth = virDomainNetGetActualBandwidth(net);
    if (actualBandwidth) {
        if (virNetDevSupportBandwidth(actualType)) {
            if (virNetDevBandwidthSet(net->ifname, actualBandwidth, false) < 0)
                goto cleanup;
        } else {
            VIR_WARN("setting bandwidth on interfaces of "
                     "type '%s' is not implemented yet",
                     virDomainNetTypeToString(actualType));
        }
    }
1043

M
Michal Privoznik 已提交
1044 1045 1046 1047 1048 1049
    for (i = 0; i < tapfdSize; i++) {
        if (virSecurityManagerSetTapFDLabel(driver->securityManager,
                                            vm->def, tapfd[i]) < 0)
            goto cleanup;
    }

1050 1051
    if (qemuAssignDeviceNetAlias(vm->def, net, -1) < 0)
        goto cleanup;
1052

1053
    if (qemuDomainMachineIsS390CCW(vm->def) &&
1054 1055
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        net->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
1056 1057 1058
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto cleanup;
        if (virDomainCCWAddressAssign(&net->info, ccwaddrs,
J
Ján Tomko 已提交
1059
                                      !net->info.addr.ccw.assigned) < 0)
1060
            goto cleanup;
1061
    } else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390)) {
1062
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
1063 1064
                       _("virtio-s390 net device cannot be hotplugged."));
        goto cleanup;
1065
    } else if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &net->info) < 0) {
1066 1067
        goto cleanup;
    }
1068

1069 1070
    releaseaddr = true;

1071
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1072 1073 1074 1075 1076
        vlan = -1;
    } else {
        vlan = qemuDomainNetVLAN(net);

        if (vlan < 0) {
1077 1078
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("Unable to attach network devices without vlan"));
1079 1080 1081 1082
            goto cleanup;
        }
    }

1083
    if (VIR_ALLOC_N(tapfdName, tapfdSize) < 0 ||
1084
        VIR_ALLOC_N(vhostfdName, vhostfdSize) < 0)
1085 1086 1087
        goto cleanup;

    for (i = 0; i < tapfdSize; i++) {
1088
        if (virAsprintf(&tapfdName[i], "fd-%s%zu", net->info.alias, i) < 0)
1089
            goto cleanup;
1090 1091
    }

1092
    for (i = 0; i < vhostfdSize; i++) {
1093
        if (virAsprintf(&vhostfdName[i], "vhostfd-%s%zu", net->info.alias, i) < 0)
1094
            goto cleanup;
1095 1096
    }

1097
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1098
        if (!(netstr = qemuBuildHostNetStr(net, driver,
1099 1100 1101
                                           ',', -1,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
1102
            goto cleanup;
1103
    } else {
1104
        if (!(netstr = qemuBuildHostNetStr(net, driver,
1105 1106 1107
                                           ' ', vlan,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
1108
            goto cleanup;
1109 1110
    }

1111
    qemuDomainObjEnterMonitor(driver, vm);
1112
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1113 1114 1115
        if (qemuMonitorAddNetdev(priv->mon, netstr,
                                 tapfd, tapfdName, tapfdSize,
                                 vhostfd, vhostfdName, vhostfdSize) < 0) {
1116
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1117
            virDomainAuditNet(vm, NULL, net, "attach", false);
1118
            goto cleanup;
1119 1120
        }
    } else {
1121 1122 1123
        if (qemuMonitorAddHostNetwork(priv->mon, netstr,
                                      tapfd, tapfdName, tapfdSize,
                                      vhostfd, vhostfdName, vhostfdSize) < 0) {
1124
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1125
            virDomainAuditNet(vm, NULL, net, "attach", false);
1126
            goto cleanup;
1127 1128
        }
    }
1129 1130
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
1131

1132 1133 1134 1135
    for (i = 0; i < tapfdSize; i++)
        VIR_FORCE_CLOSE(tapfd[i]);
    for (i = 0; i < vhostfdSize; i++)
        VIR_FORCE_CLOSE(vhostfd[i]);
1136

1137 1138 1139
    if (!(nicstr = qemuBuildNicDevStr(vm->def, net, vlan, 0,
                                      vhostfdSize, priv->qemuCaps)))
        goto try_remove;
1140

1141
    qemuDomainObjEnterMonitor(driver, vm);
1142 1143 1144 1145
    if (qemuMonitorAddDevice(priv->mon, nicstr) < 0) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        virDomainAuditNet(vm, NULL, net, "attach", false);
        goto try_remove;
1146
    }
1147 1148
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
1149

1150 1151 1152
    /* set link state */
    if (net->linkstate == VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) {
        if (!net->info.alias) {
1153 1154
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device alias not found: cannot set link state to down"));
1155
        } else {
1156
            qemuDomainObjEnterMonitor(driver, vm);
1157

1158
            if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1159
                if (qemuMonitorSetLink(priv->mon, net->info.alias, VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) < 0) {
1160
                    ignore_value(qemuDomainObjExitMonitor(driver, vm));
1161 1162 1163 1164
                    virDomainAuditNet(vm, NULL, net, "attach", false);
                    goto try_remove;
                }
            } else {
1165
                virReportError(VIR_ERR_OPERATION_FAILED, "%s",
1166
                               _("setting of link state not supported: Link is up"));
1167 1168
            }

1169 1170
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
1171 1172 1173 1174
        }
        /* link set to down */
    }

1175
    virDomainAuditNet(vm, NULL, net, "attach", true);
1176 1177 1178

    ret = 0;

1179
 cleanup:
1180 1181 1182
    if (!ret) {
        vm->def->nets[vm->def->nnets++] = net;
    } else {
1183 1184
        if (releaseaddr)
            qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
1185

1186
        if (iface_connected) {
1187
            virDomainConfNWFilterTeardown(net);
1188

1189 1190 1191 1192 1193 1194 1195 1196 1197
            if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_DIRECT) {
                ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                                 net->ifname, &net->mac,
                                 virDomainNetGetActualDirectDev(net),
                                 virDomainNetGetActualDirectMode(net),
                                 virDomainNetGetActualVirtPortProfile(net),
                                 cfg->stateDir));
            }

1198
            vport = virDomainNetGetActualVirtPortProfile(net);
1199 1200 1201 1202 1203 1204 1205 1206 1207
            if (vport) {
                if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_MIDONET) {
                    ignore_value(virNetDevMidonetUnbindPort(vport));
                } else if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH) {
                    ignore_value(virNetDevOpenvswitchRemovePort(
                                     virDomainNetGetActualBridgeName(net),
                                     net->ifname));
                }
            }
1208
        }
A
Ansis Atteka 已提交
1209

1210 1211
        virDomainNetRemoveHostdev(vm->def, net);

1212
        networkReleaseActualDevice(vm->def, net);
1213
    }
1214 1215 1216

    VIR_FREE(nicstr);
    VIR_FREE(netstr);
1217
    for (i = 0; tapfd && i < tapfdSize; i++) {
1218
        VIR_FORCE_CLOSE(tapfd[i]);
1219 1220
        if (tapfdName)
            VIR_FREE(tapfdName[i]);
1221 1222 1223
    }
    VIR_FREE(tapfd);
    VIR_FREE(tapfdName);
1224
    for (i = 0; vhostfd && i < vhostfdSize; i++) {
1225
        VIR_FORCE_CLOSE(vhostfd[i]);
1226 1227
        if (vhostfdName)
            VIR_FREE(vhostfdName[i]);
1228 1229 1230
    }
    VIR_FREE(vhostfd);
    VIR_FREE(vhostfdName);
1231
    virObjectUnref(cfg);
1232
    virDomainCCWAddressSetFree(ccwaddrs);
1233 1234 1235

    return ret;

1236
 try_remove:
1237 1238 1239 1240
    if (!virDomainObjIsActive(vm))
        goto cleanup;

    if (vlan < 0) {
1241
        if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1242 1243
            char *netdev_name;
            if (virAsprintf(&netdev_name, "host%s", net->info.alias) < 0)
1244
                goto cleanup;
1245
            qemuDomainObjEnterMonitor(driver, vm);
1246 1247 1248
            if (qemuMonitorRemoveNetdev(priv->mon, netdev_name) < 0)
                VIR_WARN("Failed to remove network backend for netdev %s",
                         netdev_name);
1249
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1250 1251
            VIR_FREE(netdev_name);
        } else {
1252
            VIR_WARN("Unable to remove network backend");
1253 1254 1255 1256
        }
    } else {
        char *hostnet_name;
        if (virAsprintf(&hostnet_name, "host%s", net->info.alias) < 0)
1257
            goto cleanup;
1258
        qemuDomainObjEnterMonitor(driver, vm);
1259 1260 1261
        if (qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0)
            VIR_WARN("Failed to remove network backend for vlan %d, net %s",
                     vlan, hostnet_name);
1262
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
1263 1264 1265 1266 1267 1268
        VIR_FREE(hostnet_name);
    }
    goto cleanup;
}


1269
static int
1270
qemuDomainAttachHostPCIDevice(virQEMUDriverPtr driver,
1271 1272
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
1273 1274 1275 1276 1277 1278
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret;
    char *devstr = NULL;
    int configfd = -1;
    char *configfd_name = NULL;
1279
    bool releaseaddr = false;
1280
    bool teardowncgroup = false;
1281
    bool teardownlabel = false;
1282
    int backend;
1283 1284
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    unsigned int flags = 0;
1285

1286
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs + 1) < 0)
1287
        goto cleanup;
1288

1289 1290
    if (!cfg->relaxedACS)
        flags |= VIR_HOSTDEV_STRICT_ACS_CHECK;
1291
    if (qemuHostdevPreparePCIDevices(driver, vm->def->name, vm->def->uuid,
1292 1293
                                     &hostdev, 1, priv->qemuCaps, flags) < 0)
        goto cleanup;
1294

1295
    /* this could have been changed by qemuHostdevPreparePCIDevices */
1296 1297
    backend = hostdev->source.subsys.u.pci.backend;

1298
    switch ((virDomainHostdevSubsysPCIBackendType) backend) {
1299
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO:
1300 1301 1302 1303 1304 1305
        if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_VFIO_PCI)) {
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("VFIO PCI device assignment is not "
                             "supported by this version of qemu"));
            goto error;
        }
1306 1307
        break;

1308 1309 1310 1311 1312 1313 1314 1315 1316 1317
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_DEFAULT:
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_KVM:
        break;

    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_XEN:
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_TYPE_LAST:
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("QEMU does not support device assignment mode '%s'"),
                       virDomainHostdevSubsysPCIBackendTypeToString(backend));
        goto error;
1318
        break;
1319 1320
    }

1321
    /* Temporarily add the hostdev to the domain definition. This is needed
1322 1323 1324 1325
     * because qemuDomainAdjustMaxMemLock() requires the hostdev to be already
     * part of the domain definition, but other functions like
     * qemuAssignDeviceHostdevAlias() used below expect it *not* to be there.
     * A better way to handle this would be nice */
1326
    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;
1327 1328 1329
    if (qemuDomainAdjustMaxMemLock(vm) < 0) {
        vm->def->hostdevs[--(vm->def->nhostdevs)] = NULL;
        goto error;
1330 1331 1332
    }
    vm->def->hostdevs[--(vm->def->nhostdevs)] = NULL;

1333
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
1334 1335 1336
        goto error;
    teardowncgroup = true;

1337 1338 1339
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto error;
1340 1341
    if (backend != VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO)
        teardownlabel = true;
1342

1343 1344 1345 1346 1347 1348 1349 1350 1351 1352 1353 1354
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
        goto error;
    if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, hostdev->info) < 0)
        goto error;
    releaseaddr = true;
    if (backend != VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_PCI_CONFIGFD)) {
        configfd = qemuOpenPCIConfig(hostdev);
        if (configfd >= 0) {
            if (virAsprintf(&configfd_name, "fd-%s",
                            hostdev->info->alias) < 0)
                goto error;
1355
        }
1356
    }
1357

1358 1359 1360 1361 1362
    if (!virDomainObjIsActive(vm)) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit during hotplug"));
        goto error;
    }
1363

1364 1365 1366
    if (!(devstr = qemuBuildPCIHostdevDevStr(vm->def, hostdev, 0,
                                             configfd_name, priv->qemuCaps)))
        goto error;
1367

1368 1369 1370 1371 1372
    qemuDomainObjEnterMonitor(driver, vm);
    ret = qemuMonitorAddDeviceWithFd(priv->mon, devstr,
                                     configfd, configfd_name);
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto error;
1373

1374
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
1375 1376 1377 1378 1379 1380 1381 1382
    if (ret < 0)
        goto error;

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);
1383
    virObjectUnref(cfg);
1384 1385 1386

    return 0;

1387
 error:
1388 1389
    if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
1390 1391 1392 1393
    if (teardownlabel &&
        virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                              vm->def, hostdev, NULL) < 0)
        VIR_WARN("Unable to restore host device labelling on hotplug fail");
1394

1395 1396
    if (releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
1397

1398
    qemuHostdevReAttachPCIDevices(driver, vm->def->name, &hostdev, 1);
1399 1400 1401 1402 1403

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);

1404
 cleanup:
1405
    virObjectUnref(cfg);
1406 1407 1408 1409
    return -1;
}


1410
int qemuDomainAttachRedirdevDevice(virQEMUDriverPtr driver,
1411 1412 1413
                                   virDomainObjPtr vm,
                                   virDomainRedirdevDefPtr redirdev)
{
1414
    int ret = -1;
1415
    qemuDomainObjPrivatePtr priv = vm->privateData;
1416
    virDomainDefPtr def = vm->def;
1417
    char *charAlias = NULL;
1418 1419
    char *devstr = NULL;

1420
    if (qemuAssignDeviceRedirdevAlias(def, redirdev, -1) < 0)
1421 1422 1423 1424 1425
        goto cleanup;

    if (virAsprintf(&charAlias, "char%s", redirdev->info.alias) < 0)
        goto cleanup;

1426
    if (!(devstr = qemuBuildRedirdevDevStr(def, redirdev, priv->qemuCaps)))
1427
        goto cleanup;
1428

1429
    if (VIR_REALLOC_N(def->redirdevs, def->nredirdevs+1) < 0)
1430
        goto cleanup;
1431

1432
    qemuDomainObjEnterMonitor(driver, vm);
1433 1434 1435 1436 1437 1438
    if (qemuMonitorAttachCharDev(priv->mon,
                                 charAlias,
                                 &(redirdev->source.chr)) < 0) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        goto audit;
    }
1439

1440 1441 1442 1443 1444 1445
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0) {
        /* detach associated chardev on error */
        qemuMonitorDetachCharDev(priv->mon, charAlias);
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        goto audit;
    }
1446

1447 1448
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto audit;
1449

1450
    def->redirdevs[def->nredirdevs++] = redirdev;
1451 1452 1453 1454 1455
    ret = 0;
 audit:
    virDomainAuditRedirdev(vm, redirdev, "attach", ret == 0);
 cleanup:
    VIR_FREE(charAlias);
1456
    VIR_FREE(devstr);
1457
    return ret;
1458 1459
}

1460 1461 1462
static int
qemuDomainChrPreInsert(virDomainDefPtr vmdef,
                       virDomainChrDefPtr chr)
1463 1464 1465 1466 1467 1468 1469 1470 1471 1472 1473 1474 1475 1476
{
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
                       _("attaching serial console is not supported"));
        return -1;
    }

    if (virDomainChrFind(vmdef, chr)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("chardev already exists"));
        return -1;
    }

1477
    if (virDomainChrPreAlloc(vmdef, chr) < 0)
1478 1479 1480 1481 1482
        return -1;

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
1483 1484 1485 1486 1487 1488 1489
    if (vmdef->nserials == 0 && vmdef->nconsoles == 0 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
        if (!vmdef->consoles && VIR_ALLOC(vmdef->consoles) < 0)
            return -1;

        if (VIR_ALLOC(vmdef->consoles[0]) < 0) {
            VIR_FREE(vmdef->consoles);
1490 1491
            return -1;
        }
1492 1493 1494 1495 1496 1497 1498 1499 1500 1501 1502 1503
        vmdef->nconsoles++;
    }
    return 0;
}

static void
qemuDomainChrInsertPreAlloced(virDomainDefPtr vmdef,
                              virDomainChrDefPtr chr)
{
    virDomainChrInsertPreAlloced(vmdef, chr);
    if (vmdef->nserials == 1 && vmdef->nconsoles == 0 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
1504 1505 1506 1507 1508 1509
        vmdef->nconsoles = 1;

        /* Create an console alias for the serial port */
        vmdef->consoles[0]->deviceType = VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE;
        vmdef->consoles[0]->targetType = VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL;
    }
1510 1511 1512 1513 1514 1515 1516 1517 1518 1519 1520 1521 1522 1523
}

static void
qemuDomainChrInsertPreAllocCleanup(virDomainDefPtr vmdef,
                                   virDomainChrDefPtr chr)
{
    /* Remove the stub console added by qemuDomainChrPreInsert */
    if (vmdef->nserials == 0 && vmdef->nconsoles == 1 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
        VIR_FREE(vmdef->consoles[0]);
        VIR_FREE(vmdef->consoles);
        vmdef->nconsoles = 0;
    }
}
1524

1525 1526 1527 1528 1529 1530 1531 1532 1533
int
qemuDomainChrInsert(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    if (qemuDomainChrPreInsert(vmdef, chr) < 0) {
        qemuDomainChrInsertPreAllocCleanup(vmdef, chr);
        return -1;
    }
    qemuDomainChrInsertPreAlloced(vmdef, chr);
1534 1535 1536 1537 1538 1539 1540 1541 1542 1543 1544 1545 1546 1547 1548 1549 1550 1551 1552 1553 1554 1555 1556 1557 1558 1559 1560 1561 1562 1563 1564 1565 1566 1567 1568 1569
    return 0;
}

virDomainChrDefPtr
qemuDomainChrRemove(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    virDomainChrDefPtr ret;
    bool removeCompat;

    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("detaching serial console is not supported"));
        return NULL;
    }

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
    removeCompat = vmdef->nserials && vmdef->nconsoles &&
        vmdef->consoles[0]->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        vmdef->consoles[0]->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL &&
        virDomainChrEquals(vmdef->serials[0], chr);

    if (!(ret = virDomainChrRemove(vmdef, chr))) {
        virReportError(VIR_ERR_INVALID_ARG, "%s",
                       _("device not present in domain configuration"));
            return NULL;
    }

    if (removeCompat)
        VIR_DELETE_ELEMENT(vmdef->consoles, 0, vmdef->nconsoles);

    return ret;
}
1570

1571
static int
1572 1573
qemuDomainAttachChrDeviceAssignAddr(virDomainDefPtr def,
                                    qemuDomainObjPrivatePtr priv,
1574 1575
                                    virDomainChrDefPtr chr)
{
1576 1577 1578 1579 1580 1581
    int ret = -1;
    virDomainVirtioSerialAddrSetPtr vioaddrs = NULL;

    if (!(vioaddrs = virDomainVirtioSerialAddrSetCreateFromDomain(def)))
        goto cleanup;

1582 1583
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_VIRTIO) {
1584
        if (virDomainVirtioSerialAddrAutoAssign(NULL, vioaddrs,
1585
                                                &chr->info, true) < 0)
1586 1587
            goto cleanup;
        ret = 1;
1588 1589 1590 1591

    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL &&
               chr->targetType == VIR_DOMAIN_CHR_SERIAL_TARGET_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &chr->info) < 0)
1592 1593
            goto cleanup;
        ret = 1;
1594

1595 1596 1597
    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL &&
               chr->targetType == VIR_DOMAIN_CHR_SERIAL_TARGET_TYPE_USB) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, &chr->info) < 0)
1598 1599
            goto cleanup;
        ret = 1;
1600

1601 1602
    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CHANNEL &&
               chr->targetType == VIR_DOMAIN_CHR_CHANNEL_TARGET_TYPE_VIRTIO) {
1603
        if (virDomainVirtioSerialAddrAutoAssign(NULL, vioaddrs,
1604
                                                &chr->info, false) < 0)
1605 1606
            goto cleanup;
        ret = 1;
1607 1608
    }

1609 1610 1611
    if (ret == 1)
        goto cleanup;

1612 1613 1614 1615
    if (chr->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_SERIAL ||
        chr->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("Unsupported address type for character device"));
1616
        goto cleanup;
1617 1618
    }

1619 1620 1621 1622 1623
    ret = 0;

 cleanup:
    virDomainVirtioSerialAddrSetFree(vioaddrs);
    return ret;
1624 1625
}

1626 1627 1628 1629
int qemuDomainAttachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
1630
    int ret = -1, rc;
1631
    qemuDomainObjPrivatePtr priv = vm->privateData;
1632
    virErrorPtr orig_err;
1633 1634 1635
    virDomainDefPtr vmdef = vm->def;
    char *devstr = NULL;
    char *charAlias = NULL;
1636
    bool chardevAttached = false;
1637
    bool need_release = false;
1638

1639 1640 1641 1642
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CHANNEL &&
        qemuDomainPrepareChannel(chr, priv->channelTargetDir) < 0)
        goto cleanup;

1643
    if (qemuAssignDeviceChrAlias(vmdef, chr, -1) < 0)
1644
        goto cleanup;
1645

1646
    if ((rc = qemuDomainAttachChrDeviceAssignAddr(vm->def, priv, chr)) < 0)
1647 1648 1649
        goto cleanup;
    if (rc == 1)
        need_release = true;
1650

1651
    if (qemuBuildChrDeviceStr(&devstr, vmdef, chr, priv->qemuCaps) < 0)
1652
        goto cleanup;
1653

J
Ján Tomko 已提交
1654
    if (virAsprintf(&charAlias, "char%s", chr->info.alias) < 0)
1655 1656
        goto cleanup;

1657
    if (qemuDomainChrPreInsert(vmdef, chr) < 0)
1658 1659 1660
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
1661
    if (qemuMonitorAttachCharDev(priv->mon, charAlias, &chr->source) < 0)
1662 1663
        goto exit_monitor;
    chardevAttached = true;
1664 1665

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
1666
        goto exit_monitor;
1667

1668 1669
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto audit;
1670

1671
    qemuDomainChrInsertPreAlloced(vmdef, chr);
1672
    ret = 0;
1673 1674
 audit:
    virDomainAuditChardev(vm, NULL, chr, "attach", ret == 0);
1675
 cleanup:
1676
    if (ret < 0 && virDomainObjIsActive(vm))
1677
        qemuDomainChrInsertPreAllocCleanup(vmdef, chr);
1678 1679
    if (ret < 0 && need_release)
        qemuDomainReleaseDeviceAddress(vm, &chr->info, NULL);
1680 1681 1682
    VIR_FREE(charAlias);
    VIR_FREE(devstr);
    return ret;
1683

1684 1685
 exit_monitor:
    orig_err = virSaveLastError();
1686
    /* detach associated chardev on error */
1687 1688 1689 1690 1691 1692 1693
    if (chardevAttached)
        qemuMonitorDetachCharDev(priv->mon, charAlias);
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

1694 1695
    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    goto audit;
1696 1697
}

1698 1699 1700 1701 1702 1703 1704

int
qemuDomainAttachRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
1705
    virErrorPtr orig_err;
1706 1707 1708
    char *devstr = NULL;
    char *charAlias = NULL;
    char *objAlias = NULL;
1709 1710 1711
    bool releaseaddr = false;
    bool chardevAdded = false;
    bool objAdded = false;
1712
    virJSONValuePtr props = NULL;
1713
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
1714 1715
    const char *type;
    int ret = -1;
1716
    int rv;
1717

1718
    if (qemuAssignDeviceRNGAlias(vm->def, rng) < 0)
1719 1720 1721 1722 1723 1724 1725
        return -1;

    /* preallocate space for the device definition */
    if (VIR_REALLOC_N(vm->def->rngs, vm->def->nrngs + 1) < 0)
        return -1;

    if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE) {
1726
        if (qemuDomainMachineIsS390CCW(vm->def) &&
1727 1728 1729 1730 1731
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
            rng->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        } else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390)) {
            rng->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
        }
1732 1733 1734 1735
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, rng->info, priv->qemuCaps,
                                            rng->source.file))
            return -1;
1736
    }
1737
    releaseaddr = true;
1738 1739 1740 1741 1742 1743

    if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE ||
        rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &rng->info) < 0)
            return -1;
    } else if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
1744 1745 1746
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto cleanup;
        if (virDomainCCWAddressAssign(&rng->info, ccwaddrs,
1747
                                      !rng->info.addr.ccw.assigned) < 0)
1748
            goto cleanup;
1749 1750 1751 1752 1753 1754 1755 1756 1757 1758 1759 1760 1761 1762 1763 1764 1765 1766 1767 1768
    }

    /* build required metadata */
    if (!(devstr = qemuBuildRNGDevStr(vm->def, rng, priv->qemuCaps)))
        goto cleanup;

    if (qemuBuildRNGBackendProps(rng, priv->qemuCaps, &type, &props) < 0)
        goto cleanup;

    if (virAsprintf(&objAlias, "obj%s", rng->info.alias) < 0)
        goto cleanup;

    if (virAsprintf(&charAlias, "char%s", rng->info.alias) < 0)
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);

    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD &&
        qemuMonitorAttachCharDev(priv->mon, charAlias,
                                 rng->source.chardev) < 0)
1769 1770
        goto exit_monitor;
    chardevAdded = true;
1771

1772 1773 1774 1775 1776
    rv = qemuMonitorAddObject(priv->mon, type, objAlias, props);
    props = NULL; /* qemuMonitorAddObject consumes */
    if (rv < 0)
        goto exit_monitor;
    objAdded = true;
1777 1778

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
1779
        goto exit_monitor;
1780 1781

    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
1782
        releaseaddr = false;
1783 1784 1785
        goto cleanup;
    }

1786
    VIR_APPEND_ELEMENT_INPLACE(vm->def->rngs, vm->def->nrngs, rng);
1787 1788 1789 1790 1791 1792

    ret = 0;

 audit:
    virDomainAuditRNG(vm, NULL, rng, "attach", ret == 0);
 cleanup:
1793
    virJSONValueFree(props);
1794
    if (ret < 0 && releaseaddr)
1795 1796 1797 1798
        qemuDomainReleaseDeviceAddress(vm, &rng->info, NULL);
    VIR_FREE(charAlias);
    VIR_FREE(objAlias);
    VIR_FREE(devstr);
1799
    virDomainCCWAddressSetFree(ccwaddrs);
1800 1801
    return ret;

1802 1803 1804 1805 1806
 exit_monitor:
    orig_err = virSaveLastError();
    if (objAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, objAlias));
    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD && chardevAdded)
1807
        ignore_value(qemuMonitorDetachCharDev(priv->mon, charAlias));
1808 1809 1810
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
1811 1812
    }

1813 1814
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        releaseaddr = false;
1815 1816 1817 1818
    goto audit;
}


1819 1820 1821 1822 1823 1824 1825 1826 1827 1828 1829 1830 1831 1832 1833 1834
/**
 * qemuDomainAttachMemory:
 * @driver: qemu driver data
 * @vm: VM object
 * @mem: Definition of the memory device to be attached. @mem is always consumed
 *
 * Attaches memory device described by @mem to domain @vm.
 *
 * Returns 0 on success -1 on error.
 */
int
qemuDomainAttachMemory(virQEMUDriverPtr driver,
                       virDomainObjPtr vm,
                       virDomainMemoryDefPtr mem)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
1835
    virErrorPtr orig_err;
1836
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
1837
    unsigned long long oldmem = virDomainDefGetMemoryTotal(vm->def);
1838
    unsigned long long newmem = oldmem + mem->size;
1839 1840 1841
    char *devstr = NULL;
    char *objalias = NULL;
    const char *backendType;
1842
    bool objAdded = false;
1843
    virJSONValuePtr props = NULL;
1844
    virObjectEventPtr event;
1845 1846
    int id;
    int ret = -1;
1847
    int rv;
1848

1849 1850 1851
    qemuDomainMemoryDeviceAlignSize(vm->def, mem);

    if (qemuDomainDefValidateMemoryHotplug(vm->def, priv->qemuCaps, mem) < 0)
1852 1853
        goto cleanup;

1854
    if (qemuAssignDeviceMemoryAlias(vm->def, mem) < 0)
1855 1856 1857 1858 1859
        goto cleanup;

    if (virAsprintf(&objalias, "mem%s", mem->info.alias) < 0)
        goto cleanup;

1860
    if (!(devstr = qemuBuildMemoryDeviceStr(mem)))
1861 1862 1863 1864 1865 1866 1867 1868 1869 1870 1871 1872 1873
        goto cleanup;

    if (qemuBuildMemoryBackendStr(mem->size, mem->pagesize,
                                  mem->targetNode, mem->sourceNodes, NULL,
                                  vm->def, priv->qemuCaps, cfg,
                                  &backendType, &props, true) < 0)
        goto cleanup;

    if (virDomainMemoryInsert(vm->def, mem) < 0) {
        virJSONValueFree(props);
        goto cleanup;
    }

1874
    if (qemuDomainAdjustMaxMemLock(vm) < 0) {
1875 1876 1877 1878
        virJSONValueFree(props);
        goto removedef;
    }

1879
    qemuDomainObjEnterMonitor(driver, vm);
1880 1881 1882
    rv = qemuMonitorAddObject(priv->mon, backendType, objalias, props);
    props = NULL; /* qemuMonitorAddObject consumes */
    if (rv < 0)
1883
        goto exit_monitor;
1884
    objAdded = true;
1885

1886
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
1887
        goto exit_monitor;
1888 1889 1890 1891

    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        /* we shouldn't touch mem now, as the def might be freed */
        mem = NULL;
1892
        goto audit;
1893 1894
    }

1895
    event = virDomainEventDeviceAddedNewFromObj(vm, objalias);
1896
    qemuDomainEventQueue(driver, event);
1897

1898 1899
    /* fix the balloon size */
    ignore_value(qemuProcessRefreshBalloonState(driver, vm, QEMU_ASYNC_JOB_NONE));
1900

1901 1902 1903 1904 1905 1906 1907 1908 1909
    /* mem is consumed by vm->def */
    mem = NULL;

    /* this step is best effort, removing the device would be so much trouble */
    ignore_value(qemuDomainUpdateMemoryDeviceInfo(driver, vm,
                                                  QEMU_ASYNC_JOB_NONE));

    ret = 0;

1910 1911
 audit:
    virDomainAuditMemory(vm, oldmem, newmem, "update", ret == 0);
1912 1913 1914 1915 1916 1917 1918
 cleanup:
    virObjectUnref(cfg);
    VIR_FREE(devstr);
    VIR_FREE(objalias);
    virDomainMemoryDefFree(mem);
    return ret;

1919
 exit_monitor:
1920 1921 1922 1923 1924 1925 1926
    orig_err = virSaveLastError();
    if (objAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, objalias));
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }
1927 1928
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        mem = NULL;
1929
        goto audit;
1930 1931
    }

1932
 removedef:
1933 1934 1935 1936 1937
    if ((id = virDomainMemoryFindByDef(vm->def, mem)) >= 0)
        mem = virDomainMemoryRemove(vm->def, id);
    else
        mem = NULL;

1938
    /* reset the mlock limit */
1939
    orig_err = virSaveLastError();
1940
    ignore_value(qemuDomainAdjustMaxMemLock(vm));
1941 1942
    virSetError(orig_err);
    virFreeError(orig_err);
1943

1944
    goto audit;
1945 1946 1947
}


1948
static int
1949
qemuDomainAttachHostUSBDevice(virQEMUDriverPtr driver,
1950 1951
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
1952 1953 1954
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *devstr = NULL;
1955
    bool releaseaddr = false;
1956
    bool added = false;
1957
    bool teardowncgroup = false;
1958
    bool teardownlabel = false;
1959 1960
    int ret = -1;

1961 1962 1963 1964 1965 1966
    if (priv->usbaddrs) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, hostdev->info) < 0)
            goto cleanup;
        releaseaddr = true;
    }

1967
    if (qemuHostdevPrepareUSBDevices(driver, vm->def->name, &hostdev, 1, 0) < 0)
1968 1969 1970
        goto cleanup;

    added = true;
1971

1972
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
1973 1974 1975
        goto cleanup;
    teardowncgroup = true;

1976 1977 1978 1979 1980
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto cleanup;
    teardownlabel = true;

1981 1982 1983 1984
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
        goto cleanup;
    if (!(devstr = qemuBuildUSBHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
        goto cleanup;
1985

1986
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs+1) < 0)
1987
        goto cleanup;
1988

1989
    qemuDomainObjEnterMonitor(driver, vm);
1990
    ret = qemuMonitorAddDevice(priv->mon, devstr);
1991 1992 1993 1994
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        ret = -1;
        goto cleanup;
    }
1995
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
1996
    if (ret < 0)
1997
        goto cleanup;
1998 1999 2000

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

2001
    ret = 0;
2002
 cleanup:
2003 2004 2005 2006 2007 2008 2009
    if (ret < 0) {
        if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
            VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
        if (teardownlabel &&
            virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                                  vm->def, hostdev, NULL) < 0)
            VIR_WARN("Unable to restore host device labelling on hotplug fail");
2010
        if (added)
2011
            qemuHostdevReAttachUSBDevices(driver, vm->def->name, &hostdev, 1);
2012 2013
        if (releaseaddr)
            virDomainUSBAddressRelease(priv->usbaddrs, hostdev->info);
2014
    }
2015
    VIR_FREE(devstr);
2016
    return ret;
2017 2018
}

2019

2020
static int
2021 2022
qemuDomainAttachHostSCSIDevice(virConnectPtr conn,
                               virQEMUDriverPtr driver,
2023 2024 2025
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
2026
    size_t i;
2027 2028
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
2029
    virErrorPtr orig_err;
2030 2031
    char *devstr = NULL;
    char *drvstr = NULL;
2032
    bool teardowncgroup = false;
2033
    bool teardownlabel = false;
2034
    bool driveAdded = false;
2035

2036
    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_SCSI_GENERIC)) {
2037 2038 2039 2040 2041
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("SCSI passthrough is not supported by this version of qemu"));
        return -1;
    }

2042 2043 2044 2045 2046 2047 2048 2049 2050 2051 2052
    /* Let's make sure the disk has a controller defined and loaded before
     * trying to add it. The controller used by the disk must exist before a
     * qemu command line string is generated.
     *
     * Ensure that the given controller and all controllers with a smaller index
     * exist; there must not be any missing index in between.
     */
    for (i = 0; i <= hostdev->info->addr.drive.controller; i++) {
        if (!qemuDomainFindOrCreateSCSIDiskController(driver, vm, i))
            return -1;
    }
2053

2054
    if (qemuHostdevPrepareSCSIDevices(driver, vm->def->name,
2055
                                      &hostdev, 1)) {
2056
        virDomainHostdevSubsysSCSIPtr scsisrc = &hostdev->source.subsys.u.scsi;
2057 2058 2059 2060 2061 2062 2063 2064
        if (scsisrc->protocol == VIR_DOMAIN_HOSTDEV_SCSI_PROTOCOL_TYPE_ISCSI) {
            virDomainHostdevSubsysSCSIiSCSIPtr iscsisrc = &scsisrc->u.iscsi;
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("Unable to prepare scsi hostdev for iSCSI: %s"),
                           iscsisrc->path);
        } else {
            virDomainHostdevSubsysSCSIHostPtr scsihostsrc = &scsisrc->u.host;
            virReportError(VIR_ERR_INTERNAL_ERROR,
2065
                           _("Unable to prepare scsi hostdev: %s:%u:%u:%llu"),
2066 2067 2068
                           scsihostsrc->adapter, scsihostsrc->bus,
                           scsihostsrc->target, scsihostsrc->unit);
        }
2069 2070 2071
        return -1;
    }

2072
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
2073 2074 2075
        goto cleanup;
    teardowncgroup = true;

2076 2077 2078 2079 2080
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto cleanup;
    teardownlabel = true;

2081
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
2082 2083
        goto cleanup;

J
John Ferlan 已提交
2084
    if (qemuDomainSecretHostdevPrepare(conn, priv, hostdev) < 0)
2085 2086
        goto cleanup;

2087
    if (!(drvstr = qemuBuildSCSIHostdevDrvStr(hostdev)))
2088 2089 2090 2091 2092
        goto cleanup;

    if (!(devstr = qemuBuildSCSIHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
        goto cleanup;

2093
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs + 1) < 0)
2094 2095 2096 2097
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);

2098
    if (qemuMonitorAddDrive(priv->mon, drvstr) < 0)
2099 2100
        goto exit_monitor;
    driveAdded = true;
2101 2102

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
2103
        goto exit_monitor;
2104 2105

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
2106
        goto cleanup;
2107 2108

    virDomainAuditHostdev(vm, hostdev, "attach", true);
2109 2110 2111 2112

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    ret = 0;
2113

2114
 cleanup:
2115
    qemuDomainSecretHostdevDestroy(hostdev);
2116
    if (ret < 0) {
2117
        qemuHostdevReAttachSCSIDevices(driver, vm->def->name, &hostdev, 1);
2118 2119
        if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
            VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
2120 2121 2122 2123
        if (teardownlabel &&
            virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                                  vm->def, hostdev, NULL) < 0)
            VIR_WARN("Unable to restore host device labelling on hotplug fail");
2124
    }
2125 2126 2127
    VIR_FREE(drvstr);
    VIR_FREE(devstr);
    return ret;
2128

2129
 exit_monitor:
2130
    orig_err = virSaveLastError();
2131
    if (driveAdded && qemuMonitorDriveDel(priv->mon, drvstr) < 0) {
2132 2133 2134
        VIR_WARN("Unable to remove drive %s (%s) after failed "
                 "qemuMonitorAddDevice",
                 drvstr, devstr);
2135
    }
2136 2137 2138 2139 2140 2141 2142 2143 2144
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    virDomainAuditHostdev(vm, hostdev, "attach", false);

    goto cleanup;
2145 2146
}

2147 2148 2149 2150 2151 2152

int
qemuDomainAttachHostDevice(virConnectPtr conn,
                           virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainHostdevDefPtr hostdev)
2153 2154
{
    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
2155 2156 2157
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
2158 2159 2160 2161 2162
        return -1;
    }

    switch (hostdev->source.subsys.type) {
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
2163
        if (qemuDomainAttachHostPCIDevice(driver, vm,
2164
                                          hostdev) < 0)
2165 2166 2167 2168
            goto error;
        break;

    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
2169
        if (qemuDomainAttachHostUSBDevice(driver, vm,
2170
                                          hostdev) < 0)
2171 2172 2173
            goto error;
        break;

2174
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
2175
        if (qemuDomainAttachHostSCSIDevice(conn, driver, vm,
2176 2177 2178 2179
                                           hostdev) < 0)
            goto error;
        break;

2180
    default:
2181 2182 2183
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(hostdev->source.subsys.type));
2184 2185 2186 2187 2188
        goto error;
    }

    return 0;

2189
 error:
2190 2191 2192
    return -1;
}

2193
static int
2194
qemuDomainChangeNetBridge(virDomainObjPtr vm,
2195 2196
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
2197 2198
{
    int ret = -1;
2199 2200
    const char *oldbridge = virDomainNetGetActualBridgeName(olddev);
    const char *newbridge = virDomainNetGetActualBridgeName(newdev);
2201

2202 2203
    if (!oldbridge || !newbridge) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s", _("Missing bridge name"));
2204
        goto cleanup;
2205
    }
2206 2207 2208 2209 2210

    VIR_DEBUG("Change bridge for interface %s: %s -> %s",
              olddev->ifname, oldbridge, newbridge);

    if (virNetDevExists(newbridge) != 1) {
2211 2212
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("bridge %s doesn't exist"), newbridge);
2213
        goto cleanup;
2214 2215 2216 2217 2218
    }

    if (oldbridge) {
        ret = virNetDevBridgeRemovePort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, olddev, NULL, "detach", ret == 0);
2219 2220 2221 2222 2223 2224 2225 2226
        if (ret < 0) {
            /* warn but continue - possibly the old network
             * had been destroyed and reconstructed, leaving the
             * tap device orphaned.
             */
            VIR_WARN("Unable to detach device %s from bridge %s",
                     olddev->ifname, oldbridge);
        }
2227 2228 2229
    }

    ret = virNetDevBridgeAddPort(newbridge, olddev->ifname);
2230
    virDomainAuditNet(vm, NULL, newdev, "attach", ret == 0);
2231 2232 2233 2234
    if (ret < 0) {
        ret = virNetDevBridgeAddPort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, NULL, olddev, "attach", ret == 0);
        if (ret < 0) {
2235
            virReportError(VIR_ERR_OPERATION_FAILED,
2236
                           _("unable to recover former state by adding port "
2237
                             "to bridge %s"), oldbridge);
2238
        }
2239
        goto cleanup;
2240
    }
2241 2242
    /* caller will replace entire olddev with newdev in domain nets list */
    ret = 0;
2243
 cleanup:
2244
    return ret;
2245 2246
}

2247
static int
2248
qemuDomainChangeNetFilter(virDomainObjPtr vm,
2249 2250 2251 2252 2253 2254 2255 2256 2257 2258 2259 2260 2261 2262 2263 2264 2265 2266
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
{
    /* make sure this type of device supports filters. */
    switch (virDomainNetGetActualType(newdev)) {
    case VIR_DOMAIN_NET_TYPE_ETHERNET:
    case VIR_DOMAIN_NET_TYPE_BRIDGE:
    case VIR_DOMAIN_NET_TYPE_NETWORK:
        break;
    default:
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("filters not supported on interfaces of type %s"),
                       virDomainNetTypeToString(virDomainNetGetActualType(newdev)));
        return -1;
    }

    virDomainConfNWFilterTeardown(olddev);

2267
    if (newdev->filter &&
2268
        virDomainConfNWFilterInstantiate(vm->def->uuid, newdev) < 0) {
2269 2270 2271 2272 2273 2274 2275
        virErrorPtr errobj;

        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("failed to add new filter rules to '%s' "
                         "- attempting to restore old rules"),
                       olddev->ifname);
        errobj = virSaveLastError();
2276
        ignore_value(virDomainConfNWFilterInstantiate(vm->def->uuid, olddev));
2277 2278 2279 2280 2281 2282 2283
        virSetError(errobj);
        virFreeError(errobj);
        return -1;
    }
    return 0;
}

2284
int qemuDomainChangeNetLinkState(virQEMUDriverPtr driver,
2285 2286 2287 2288 2289 2290 2291 2292
                                 virDomainObjPtr vm,
                                 virDomainNetDefPtr dev,
                                 int linkstate)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;

    if (!dev->info.alias) {
2293 2294
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("can't change link state: device alias not found"));
2295 2296 2297
        return -1;
    }

2298 2299
    VIR_DEBUG("dev: %s, state: %d", dev->info.alias, linkstate);

2300
    qemuDomainObjEnterMonitor(driver, vm);
2301 2302 2303 2304 2305

    ret = qemuMonitorSetLink(priv->mon, dev->info.alias, linkstate);
    if (ret < 0)
        goto cleanup;

2306 2307 2308 2309 2310 2311 2312 2313 2314 2315 2316 2317 2318 2319 2320
    if (virDomainNetGetActualType(dev) == VIR_DOMAIN_NET_TYPE_ETHERNET) {
        switch (linkstate) {
            case VIR_DOMAIN_NET_INTERFACE_LINK_STATE_UP:
            case VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DEFAULT:
                if ((ret = virNetDevSetOnline(dev->ifname, true)) < 0)
                    goto cleanup;
                break;

            case VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN:
                if ((ret = virNetDevSetOnline(dev->ifname, false)) < 0)
                    goto cleanup;
                break;
            }
    }

2321 2322 2323
    /* modify the device configuration */
    dev->linkstate = linkstate;

2324
 cleanup:
2325 2326
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
2327 2328 2329 2330

    return ret;
}

2331
int
2332
qemuDomainChangeNet(virQEMUDriverPtr driver,
2333 2334
                    virDomainObjPtr vm,
                    virDomainDeviceDefPtr dev)
2335
{
2336
    virDomainNetDefPtr newdev = dev->data.net;
2337
    virDomainNetDefPtr *devslot = NULL;
2338 2339 2340 2341
    virDomainNetDefPtr olddev;
    int oldType, newType;
    bool needReconnect = false;
    bool needBridgeChange = false;
2342
    bool needFilterChange = false;
2343 2344
    bool needLinkStateChange = false;
    bool needReplaceDevDef = false;
2345
    bool needBandwidthSet = false;
2346
    int ret = -1;
2347 2348 2349 2350 2351
    int changeidx = -1;

    if ((changeidx = virDomainNetFindIdx(vm->def, newdev)) < 0)
        goto cleanup;
    devslot = &vm->def->nets[changeidx];
2352

2353
    if (!(olddev = *devslot)) {
2354
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
2355
                       _("cannot find existing network device to modify"));
2356 2357 2358 2359 2360 2361
        goto cleanup;
    }

    oldType = virDomainNetGetActualType(olddev);
    if (oldType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* no changes are possible to a type='hostdev' interface */
2362
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2363 2364 2365 2366 2367 2368 2369 2370 2371 2372 2373 2374 2375 2376 2377 2378 2379 2380 2381 2382 2383 2384
                       _("cannot change config of '%s' network type"),
                       virDomainNetTypeToString(oldType));
        goto cleanup;
    }

    /* Check individual attributes for changes that can't be done to a
     * live netdev. These checks *mostly* go in order of the
     * declarations in virDomainNetDef in order to assure nothing is
     * omitted. (exceptiong where noted in comments - in particular,
     * some things require that a new "actual device" be allocated
     * from the network driver first, but we delay doing that until
     * after we've made as many other checks as possible)
     */

    /* type: this can change (with some restrictions), but the actual
     * type of the new device connection isn't known until after we
     * allocate the "actual" device.
     */

    if (virMacAddrCmp(&olddev->mac, &newdev->mac)) {
        char oldmac[VIR_MAC_STRING_BUFLEN], newmac[VIR_MAC_STRING_BUFLEN];

2385
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2386 2387 2388 2389 2390 2391 2392 2393
                       _("cannot change network interface mac address "
                         "from %s to %s"),
                       virMacAddrFormat(&olddev->mac, oldmac),
                       virMacAddrFormat(&newdev->mac, newmac));
        goto cleanup;
    }

    if (STRNEQ_NULLABLE(olddev->model, newdev->model)) {
2394
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2395 2396 2397 2398
                       _("cannot modify network device model from %s to %s"),
                       olddev->model ? olddev->model : "(default)",
                       newdev->model ? newdev->model : "(default)");
        goto cleanup;
2399 2400
    }

2401 2402 2403 2404
    if (olddev->model && STREQ(olddev->model, "virtio") &&
        (olddev->driver.virtio.name != newdev->driver.virtio.name ||
         olddev->driver.virtio.txmode != newdev->driver.virtio.txmode ||
         olddev->driver.virtio.ioeventfd != newdev->driver.virtio.ioeventfd ||
2405
         olddev->driver.virtio.event_idx != newdev->driver.virtio.event_idx ||
2406 2407 2408 2409 2410 2411 2412
         olddev->driver.virtio.queues != newdev->driver.virtio.queues ||
         olddev->driver.virtio.host.csum != newdev->driver.virtio.host.csum ||
         olddev->driver.virtio.host.gso != newdev->driver.virtio.host.gso ||
         olddev->driver.virtio.host.tso4 != newdev->driver.virtio.host.tso4 ||
         olddev->driver.virtio.host.tso6 != newdev->driver.virtio.host.tso6 ||
         olddev->driver.virtio.host.ecn != newdev->driver.virtio.host.ecn ||
         olddev->driver.virtio.host.ufo != newdev->driver.virtio.host.ufo ||
J
Ján Tomko 已提交
2413
         olddev->driver.virtio.host.mrg_rxbuf != newdev->driver.virtio.host.mrg_rxbuf ||
2414 2415 2416 2417 2418
         olddev->driver.virtio.guest.csum != newdev->driver.virtio.guest.csum ||
         olddev->driver.virtio.guest.tso4 != newdev->driver.virtio.guest.tso4 ||
         olddev->driver.virtio.guest.tso6 != newdev->driver.virtio.guest.tso6 ||
         olddev->driver.virtio.guest.ecn != newdev->driver.virtio.guest.ecn ||
         olddev->driver.virtio.guest.ufo != newdev->driver.virtio.guest.ufo)) {
2419
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2420 2421 2422 2423 2424 2425 2426 2427 2428 2429
                       _("cannot modify virtio network device driver attributes"));
        goto cleanup;
    }

    /* data: this union will be examined later, after allocating new actualdev */
    /* virtPortProfile: will be examined later, after allocating new actualdev */

    if (olddev->tune.sndbuf_specified != newdev->tune.sndbuf_specified ||
        olddev->tune.sndbuf != newdev->tune.sndbuf) {
        needReconnect = true;
2430 2431
    }

2432
    if (STRNEQ_NULLABLE(olddev->script, newdev->script)) {
2433
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2434 2435
                       _("cannot modify network device script attribute"));
        goto cleanup;
2436 2437
    }

2438
    /* ifname: check if it's set in newdev. If not, retain the autogenerated one */
2439
    if (!newdev->ifname && VIR_STRDUP(newdev->ifname, olddev->ifname) < 0)
2440 2441
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->ifname, newdev->ifname)) {
2442
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2443 2444 2445
                       _("cannot modify network device tap name"));
        goto cleanup;
    }
2446

2447 2448 2449 2450 2451 2452 2453 2454 2455 2456 2457
    /* info: if newdev->info is empty, fill it in from olddev,
     * otherwise verify that it matches - nothing is allowed to
     * change. (There is no helper function to do this, so
     * individually check the few feidls of virDomainDeviceInfo that
     * are relevant in this case).
     */
    if (!virDomainDeviceAddressIsValid(&newdev->info,
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) &&
        virDomainDeviceInfoCopy(&newdev->info, &olddev->info) < 0) {
        goto cleanup;
    }
2458
    if (!virPCIDeviceAddressEqual(&olddev->info.addr.pci,
2459
                                  &newdev->info.addr.pci)) {
2460
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2461 2462 2463 2464
                       _("cannot modify network device guest PCI address"));
        goto cleanup;
    }
    /* grab alias from olddev if not set in newdev */
2465 2466
    if (!newdev->info.alias &&
        VIR_STRDUP(newdev->info.alias, olddev->info.alias) < 0)
2467 2468
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->info.alias, newdev->info.alias)) {
2469
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2470 2471 2472 2473
                       _("cannot modify network device alias"));
        goto cleanup;
    }
    if (olddev->info.rombar != newdev->info.rombar) {
2474
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2475 2476 2477 2478
                       _("cannot modify network device rom bar setting"));
        goto cleanup;
    }
    if (STRNEQ_NULLABLE(olddev->info.romfile, newdev->info.romfile)) {
2479
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2480 2481 2482 2483
                       _("cannot modify network rom file"));
        goto cleanup;
    }
    if (olddev->info.bootIndex != newdev->info.bootIndex) {
2484
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2485 2486 2487 2488
                       _("cannot modify network device boot index setting"));
        goto cleanup;
    }
    /* (end of device info checks) */
2489

2490 2491 2492 2493
    if (STRNEQ_NULLABLE(olddev->filter, newdev->filter) ||
        !virNWFilterHashTableEqual(olddev->filterparams, newdev->filterparams)) {
        needFilterChange = true;
    }
2494

2495 2496 2497 2498 2499 2500 2501 2502
    /* bandwidth can be modified, and will be checked later */
    /* vlan can be modified, and will be checked later */
    /* linkstate can be modified */

    /* allocate new actual device to compare to old - we will need to
     * free it if we fail for any reason
     */
    if (newdev->type == VIR_DOMAIN_NET_TYPE_NETWORK &&
2503
        networkAllocateActualDevice(vm->def, newdev) < 0) {
2504 2505 2506 2507 2508 2509 2510
        goto cleanup;
    }

    newType = virDomainNetGetActualType(newdev);

    if (newType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* can't turn it into a type='hostdev' interface */
2511
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2512 2513 2514 2515 2516 2517
                       _("cannot change network interface type to '%s'"),
                       virDomainNetTypeToString(newType));
        goto cleanup;
    }

    if (olddev->type == newdev->type && oldType == newType) {
2518

2519 2520 2521 2522 2523 2524
        /* if type hasn't changed, check the relevant fields for the type */
        switch (newdev->type) {
        case VIR_DOMAIN_NET_TYPE_USER:
            break;

        case VIR_DOMAIN_NET_TYPE_ETHERNET:
2525
            break;
2526

2527 2528 2529
        case VIR_DOMAIN_NET_TYPE_SERVER:
        case VIR_DOMAIN_NET_TYPE_CLIENT:
        case VIR_DOMAIN_NET_TYPE_MCAST:
2530
        case VIR_DOMAIN_NET_TYPE_UDP:
2531 2532 2533 2534 2535 2536 2537 2538 2539 2540 2541 2542 2543 2544 2545 2546 2547 2548 2549 2550 2551 2552 2553 2554 2555 2556 2557 2558 2559 2560 2561 2562 2563
            if (STRNEQ_NULLABLE(olddev->data.socket.address,
                                newdev->data.socket.address) ||
                olddev->data.socket.port != newdev->data.socket.port) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_NETWORK:
            if (STRNEQ(olddev->data.network.name, newdev->data.network.name)) {
                if (virDomainNetGetActualVirtPortProfile(newdev))
                    needReconnect = true;
                else
                    needBridgeChange = true;
            }
            /* other things handled in common code directly below this switch */
            break;

        case VIR_DOMAIN_NET_TYPE_BRIDGE:
            /* all handled in bridge name checked in common code below */
            break;

        case VIR_DOMAIN_NET_TYPE_INTERNAL:
            if (STRNEQ_NULLABLE(olddev->data.internal.name,
                                newdev->data.internal.name)) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_DIRECT:
            /* all handled in common code directly below this switch */
            break;

        default:
2564
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2565 2566 2567
                           _("unable to change config on '%s' network type"),
                           virDomainNetTypeToString(newdev->type));
            break;
2568

2569
        }
2570 2571 2572 2573 2574 2575 2576 2577 2578 2579 2580 2581 2582 2583 2584 2585 2586 2587 2588 2589 2590 2591 2592 2593 2594 2595 2596 2597 2598 2599 2600
    } else {
        /* interface type has changed. There are a few special cases
         * where this can only require a minor (or even no) change,
         * but in most cases we need to do a full reconnection.
         *
         * If we switch (in either direction) between type='bridge'
         * and type='network' (for a traditional managed virtual
         * network that uses a host bridge, i.e. forward
         * mode='route|nat'), we just need to change the bridge.
         */
        if ((oldType == VIR_DOMAIN_NET_TYPE_NETWORK &&
             newType == VIR_DOMAIN_NET_TYPE_BRIDGE) ||
            (oldType == VIR_DOMAIN_NET_TYPE_BRIDGE &&
             newType == VIR_DOMAIN_NET_TYPE_NETWORK)) {

            needBridgeChange = true;

        } else if (oldType == VIR_DOMAIN_NET_TYPE_DIRECT &&
                   newType == VIR_DOMAIN_NET_TYPE_DIRECT) {

            /* this is the case of switching from type='direct' to
             * type='network' for a network that itself uses direct
             * (macvtap) devices. If the physical device and mode are
             * the same, this doesn't require any actual setup
             * change. If the physical device or mode *does* change,
             * that will be caught in the common section below */

        } else {

            /* for all other combinations, we'll need a full reconnect */
            needReconnect = true;
2601 2602

        }
2603
    }
2604

2605 2606 2607 2608 2609 2610 2611 2612 2613 2614 2615
    /* now several things that are in multiple (but not all)
     * different types, and can be safely compared even for those
     * cases where they don't apply to a particular type.
     */
    if (STRNEQ_NULLABLE(virDomainNetGetActualBridgeName(olddev),
                        virDomainNetGetActualBridgeName(newdev))) {
        if (virDomainNetGetActualVirtPortProfile(newdev))
            needReconnect = true;
        else
            needBridgeChange = true;
    }
2616

2617 2618 2619 2620 2621 2622 2623 2624
    if (STRNEQ_NULLABLE(virDomainNetGetActualDirectDev(olddev),
                        virDomainNetGetActualDirectDev(newdev)) ||
        virDomainNetGetActualDirectMode(olddev) != virDomainNetGetActualDirectMode(olddev) ||
        !virNetDevVPortProfileEqual(virDomainNetGetActualVirtPortProfile(olddev),
                                    virDomainNetGetActualVirtPortProfile(newdev)) ||
        !virNetDevVlanEqual(virDomainNetGetActualVlan(olddev),
                            virDomainNetGetActualVlan(newdev))) {
        needReconnect = true;
2625 2626
    }

2627 2628 2629
    if (olddev->linkstate != newdev->linkstate)
        needLinkStateChange = true;

2630 2631 2632 2633
    if (!virNetDevBandwidthEqual(virDomainNetGetActualBandwidth(olddev),
                                 virDomainNetGetActualBandwidth(newdev)))
        needBandwidthSet = true;

2634 2635 2636
    /* FINALLY - actually perform the required actions */

    if (needReconnect) {
2637
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2638 2639 2640
                       _("unable to change config on '%s' network type"),
                       virDomainNetTypeToString(newdev->type));
        goto cleanup;
2641 2642
    }

2643 2644 2645
    if (needBandwidthSet) {
        if (virNetDevBandwidthSet(newdev->ifname,
                                  virDomainNetGetActualBandwidth(newdev),
2646
                                  false) < 0)
2647 2648 2649 2650
            goto cleanup;
        needReplaceDevDef = true;
    }

2651
    if (needBridgeChange) {
2652
        if (qemuDomainChangeNetBridge(vm, olddev, newdev) < 0)
2653 2654 2655
            goto cleanup;
        /* we successfully switched to the new bridge, and we've
         * determined that the rest of newdev is equivalent to olddev,
2656 2657 2658 2659 2660
         * so move newdev into place */
        needReplaceDevDef = true;
    }

    if (needFilterChange) {
2661
        if (qemuDomainChangeNetFilter(vm, olddev, newdev) < 0)
2662 2663 2664 2665
            goto cleanup;
        /* we successfully switched to the new filter, and we've
         * determined that the rest of newdev is equivalent to olddev,
         * so move newdev into place */
2666
        needReplaceDevDef = true;
2667 2668
    }

2669 2670 2671
    if (needLinkStateChange &&
        qemuDomainChangeNetLinkState(driver, vm, olddev, newdev->linkstate) < 0) {
        goto cleanup;
2672 2673
    }

2674 2675 2676 2677
    if (needReplaceDevDef) {
        /* the changes above warrant replacing olddev with newdev in
         * the domain's nets list.
         */
2678 2679 2680

        /* this function doesn't work with HOSTDEV networks yet, thus
         * no need to change the pointer in the hostdev structure */
2681
        networkReleaseActualDevice(vm->def, olddev);
2682 2683 2684 2685 2686 2687 2688 2689
        virDomainNetDefFree(olddev);
        /* move newdev into the nets list, and NULL it out from the
         * virDomainDeviceDef that we were given so that the caller
         * won't delete it on return.
         */
        *devslot = newdev;
        newdev = dev->data.net = NULL;
        dev->type = VIR_DOMAIN_DEVICE_NONE;
2690 2691
    }

2692
    ret = 0;
2693
 cleanup:
2694 2695 2696 2697 2698 2699 2700 2701 2702 2703 2704 2705 2706 2707 2708 2709 2710 2711 2712
    /* When we get here, we will be in one of these two states:
     *
     * 1) newdev has been moved into the domain's list of nets and
     *    newdev set to NULL, and dev->data.net will be NULL (and
     *    dev->type is NONE). olddev will have been completely
     *    released and freed. (aka success) In this case no extra
     *    cleanup is needed.
     *
     * 2) newdev has *not* been moved into the domain's list of nets,
     *    and dev->data.net == newdev (and dev->type == NET). In this *
     *    case, we need to at least release the "actual device" from *
     *    newdev (the caller will free dev->data.net a.k.a. newdev, and
     *    the original olddev is still in used)
     *
     * Note that case (2) isn't necessarily a failure. It may just be
     * that the changes were minor enough that we didn't need to
     * replace the entire device object.
     */
    if (newdev)
2713
        networkReleaseActualDevice(vm->def, newdev);
2714

2715 2716 2717
    return ret;
}

2718 2719 2720
static virDomainGraphicsDefPtr
qemuDomainFindGraphics(virDomainObjPtr vm,
                       virDomainGraphicsDefPtr dev)
2721
{
2722
    size_t i;
2723

2724
    for (i = 0; i < vm->def->ngraphics; i++) {
2725 2726 2727 2728 2729 2730 2731
        if (vm->def->graphics[i]->type == dev->type)
            return vm->def->graphics[i];
    }

    return NULL;
}

2732 2733 2734 2735 2736 2737 2738 2739 2740 2741 2742 2743 2744 2745
int
qemuDomainFindGraphicsIndex(virDomainDefPtr def,
                            virDomainGraphicsDefPtr dev)
{
    size_t i;

    for (i = 0; i < def->ngraphics; i++) {
        if (def->graphics[i]->type == dev->type)
            return i;
    }

    return -1;
}

2746
int
2747
qemuDomainChangeGraphics(virQEMUDriverPtr driver,
2748 2749 2750 2751
                         virDomainObjPtr vm,
                         virDomainGraphicsDefPtr dev)
{
    virDomainGraphicsDefPtr olddev = qemuDomainFindGraphics(vm, dev);
2752
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
2753
    const char *type = virDomainGraphicsTypeToString(dev->type);
2754
    size_t i;
2755
    int ret = -1;
2756 2757

    if (!olddev) {
2758 2759
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("cannot find existing graphics device to modify"));
2760
        goto cleanup;
2761 2762
    }

2763
    if (dev->nListens != olddev->nListens) {
2764 2765 2766
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("cannot change the number of listen addresses "
                         "on '%s' graphics"), type);
2767 2768 2769 2770
        goto cleanup;
    }

    for (i = 0; i < dev->nListens; i++) {
J
Jim Fehlig 已提交
2771
        virDomainGraphicsListenDefPtr newlisten = &dev->listens[i];
2772 2773
        virDomainGraphicsListenDefPtr oldlisten = &olddev->listens[i];

J
Jim Fehlig 已提交
2774
        if (newlisten->type != oldlisten->type) {
2775 2776 2777
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                           _("cannot change the type of listen address "
                             "on '%s' graphics"), type);
2778 2779 2780
            goto cleanup;
        }

2781
        switch (newlisten->type) {
2782
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_ADDRESS:
J
Jim Fehlig 已提交
2783
            if (STRNEQ_NULLABLE(newlisten->address, oldlisten->address)) {
2784 2785 2786
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen address setting "
                                 "on '%s' graphics"), type);
2787 2788
                goto cleanup;
            }
2789

2790 2791 2792
            break;

        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NETWORK:
J
Jim Fehlig 已提交
2793
            if (STRNEQ_NULLABLE(newlisten->network, oldlisten->network)) {
2794 2795 2796
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen address setting "
                                 "on '%s' graphics"), type);
2797 2798
                goto cleanup;
            }
2799

2800 2801
            break;

2802 2803 2804 2805 2806 2807 2808 2809 2810
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_SOCKET:
            if (STRNEQ_NULLABLE(newlisten->socket, oldlisten->socket)) {
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen socket setting "
                                 "on '%s' graphics"), type);
                goto cleanup;
            }
            break;

2811 2812 2813 2814 2815 2816
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NONE:
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_LAST:
            /* nada */
            break;
        }
    }
2817

2818 2819
    switch (dev->type) {
    case VIR_DOMAIN_GRAPHICS_TYPE_VNC:
2820 2821 2822
        if ((olddev->data.vnc.autoport != dev->data.vnc.autoport) ||
            (!dev->data.vnc.autoport &&
             (olddev->data.vnc.port != dev->data.vnc.port))) {
2823
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2824
                           _("cannot change port settings on vnc graphics"));
2825
            goto cleanup;
2826 2827
        }
        if (STRNEQ_NULLABLE(olddev->data.vnc.keymap, dev->data.vnc.keymap)) {
2828
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2829
                           _("cannot change keymap setting on vnc graphics"));
2830
            goto cleanup;
2831 2832
        }

2833 2834 2835
        /* If a password lifetime was, or is set, or action if connected has
         * changed, then we must always run, even if new password matches
         * old password */
2836 2837
        if (olddev->data.vnc.auth.expires ||
            dev->data.vnc.auth.expires ||
2838
            olddev->data.vnc.auth.connected != dev->data.vnc.auth.connected ||
E
Eric Blake 已提交
2839 2840 2841
            STRNEQ_NULLABLE(olddev->data.vnc.auth.passwd,
                            dev->data.vnc.auth.passwd)) {
            VIR_DEBUG("Updating password on VNC server %p %p",
2842
                      dev->data.vnc.auth.passwd, cfg->vncPassword);
E
Eric Blake 已提交
2843 2844 2845
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_VNC,
                                                    &dev->data.vnc.auth,
2846 2847
                                                    cfg->vncPassword,
                                                    QEMU_ASYNC_JOB_NONE);
2848
            if (ret < 0)
2849
                goto cleanup;
2850 2851 2852 2853 2854

            /* Steal the new dev's  char * reference */
            VIR_FREE(olddev->data.vnc.auth.passwd);
            olddev->data.vnc.auth.passwd = dev->data.vnc.auth.passwd;
            dev->data.vnc.auth.passwd = NULL;
2855 2856
            olddev->data.vnc.auth.validTo = dev->data.vnc.auth.validTo;
            olddev->data.vnc.auth.expires = dev->data.vnc.auth.expires;
2857
            olddev->data.vnc.auth.connected = dev->data.vnc.auth.connected;
2858 2859 2860 2861 2862
        } else {
            ret = 0;
        }
        break;

2863
    case VIR_DOMAIN_GRAPHICS_TYPE_SPICE:
2864 2865 2866 2867 2868
        if ((olddev->data.spice.autoport != dev->data.spice.autoport) ||
            (!dev->data.spice.autoport &&
             (olddev->data.spice.port != dev->data.spice.port)) ||
            (!dev->data.spice.autoport &&
             (olddev->data.spice.tlsPort != dev->data.spice.tlsPort))) {
2869
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2870
                           _("cannot change port settings on spice graphics"));
2871
            goto cleanup;
2872
        }
E
Eric Blake 已提交
2873 2874
        if (STRNEQ_NULLABLE(olddev->data.spice.keymap,
                            dev->data.spice.keymap)) {
2875
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2876
                            _("cannot change keymap setting on spice graphics"));
2877
            goto cleanup;
2878 2879
        }

2880 2881 2882 2883 2884
        /* We must reset the password if it has changed but also if:
         * - password lifetime is or was set
         * - the requested action has changed
         * - the action is "disconnect"
         */
2885 2886
        if (olddev->data.spice.auth.expires ||
            dev->data.spice.auth.expires ||
2887
            olddev->data.spice.auth.connected != dev->data.spice.auth.connected ||
2888 2889
            dev->data.spice.auth.connected ==
            VIR_DOMAIN_GRAPHICS_AUTH_CONNECTED_DISCONNECT ||
E
Eric Blake 已提交
2890 2891 2892
            STRNEQ_NULLABLE(olddev->data.spice.auth.passwd,
                            dev->data.spice.auth.passwd)) {
            VIR_DEBUG("Updating password on SPICE server %p %p",
2893
                      dev->data.spice.auth.passwd, cfg->spicePassword);
E
Eric Blake 已提交
2894 2895 2896
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_SPICE,
                                                    &dev->data.spice.auth,
2897 2898
                                                    cfg->spicePassword,
                                                    QEMU_ASYNC_JOB_NONE);
E
Eric Blake 已提交
2899

2900
            if (ret < 0)
2901
                goto cleanup;
2902

E
Eric Blake 已提交
2903
            /* Steal the new dev's char * reference */
2904 2905 2906 2907 2908
            VIR_FREE(olddev->data.spice.auth.passwd);
            olddev->data.spice.auth.passwd = dev->data.spice.auth.passwd;
            dev->data.spice.auth.passwd = NULL;
            olddev->data.spice.auth.validTo = dev->data.spice.auth.validTo;
            olddev->data.spice.auth.expires = dev->data.spice.auth.expires;
2909
            olddev->data.spice.auth.connected = dev->data.spice.auth.connected;
2910
        } else {
2911
            VIR_DEBUG("Not updating since password didn't change");
2912 2913
            ret = 0;
        }
E
Eric Blake 已提交
2914
        break;
2915

2916
    default:
2917
        virReportError(VIR_ERR_INTERNAL_ERROR,
2918
                       _("unable to change config on '%s' graphics type"), type);
2919 2920 2921
        break;
    }

2922
 cleanup:
2923
    virObjectUnref(cfg);
2924 2925 2926 2927
    return ret;
}


2928
static int qemuComparePCIDevice(virDomainDefPtr def ATTRIBUTE_UNUSED,
2929
                                virDomainDeviceDefPtr device ATTRIBUTE_UNUSED,
2930
                                virDomainDeviceInfoPtr info1,
2931 2932
                                void *opaque)
{
2933
    virDomainDeviceInfoPtr info2 = opaque;
2934

2935 2936
    if (info1->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI ||
        info2->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)
2937 2938
        return 0;

2939 2940 2941
    if (info1->addr.pci.domain == info2->addr.pci.domain &&
        info1->addr.pci.bus == info2->addr.pci.bus &&
        info1->addr.pci.slot == info2->addr.pci.slot &&
2942
        info1->addr.pci.function != info2->addr.pci.function)
2943 2944 2945 2946 2947 2948 2949 2950 2951 2952 2953 2954
        return -1;
    return 0;
}

static bool qemuIsMultiFunctionDevice(virDomainDefPtr def,
                                      virDomainDeviceInfoPtr dev)
{
    if (virDomainDeviceInfoIterate(def, qemuComparePCIDevice, dev) < 0)
        return true;
    return false;
}

2955

2956
static int
2957 2958 2959 2960 2961
qemuDomainRemoveDiskDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainDiskDefPtr disk)
{
    virDomainDeviceDef dev;
2962
    virObjectEventPtr event;
2963
    size_t i;
2964
    const char *src = virDomainDiskGetSource(disk);
2965 2966
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drivestr;
2967
    char *objAlias = NULL;
2968
    char *encAlias = NULL;
2969 2970 2971 2972

    VIR_DEBUG("Removing disk %s from domain %p %s",
              disk->info.alias, vm, vm->def->name);

2973 2974 2975 2976 2977 2978
    /* build the actual drive id string as the disk->info.alias doesn't
     * contain the QEMU_DRIVE_HOST_PREFIX that is passed to qemu */
    if (virAsprintf(&drivestr, "%s%s",
                    QEMU_DRIVE_HOST_PREFIX, disk->info.alias) < 0)
        return -1;

2979 2980 2981 2982 2983 2984 2985 2986
    /* Let's look for some markers for a secret object and create an alias
     * object to be used to attempt to delete the object that was created.
     * We cannot just use the disk private secret info since it would have
     * been removed during cleanup of qemuProcessLaunch. Likewise, libvirtd
     * restart wouldn't have them, so no assumption can be made. */
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_OBJECT_SECRET) &&
        qemuDomainSecretDiskCapable(disk->src)) {

2987 2988
        if (!(objAlias =
              qemuDomainGetSecretAESAlias(disk->info.alias, false))) {
2989 2990 2991 2992 2993
            VIR_FREE(drivestr);
            return -1;
        }
    }

2994 2995 2996 2997
    /* Similarly, if this is possible a device using LUKS encryption, we
     * can remove the luks object password too
     */
    if (!virStorageSourceIsEmpty(disk->src) && disk->src->encryption &&
2998
        disk->src->encryption->format == VIR_STORAGE_ENCRYPTION_FORMAT_LUKS) {
2999 3000 3001 3002 3003 3004 3005 3006 3007

        if (!(encAlias =
              qemuDomainGetSecretAESAlias(disk->info.alias, true))) {
            VIR_FREE(objAlias);
            VIR_FREE(drivestr);
            return -1;
        }
    }

3008
    qemuDomainObjEnterMonitor(driver, vm);
3009 3010 3011 3012 3013 3014

    /* If it fails, then so be it - it was a best shot */
    if (objAlias)
        ignore_value(qemuMonitorDelObject(priv->mon, objAlias));
    VIR_FREE(objAlias);

3015 3016 3017 3018 3019
    /* If it fails, then so be it - it was a best shot */
    if (encAlias)
        ignore_value(qemuMonitorDelObject(priv->mon, encAlias));
    VIR_FREE(encAlias);

3020 3021
    qemuMonitorDriveDel(priv->mon, drivestr);
    VIR_FREE(drivestr);
3022 3023
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
3024

3025
    virDomainAuditDisk(vm, disk->src, NULL, "detach", true);
3026

3027
    event = virDomainEventDeviceRemovedNewFromObj(vm, disk->info.alias);
3028
    qemuDomainEventQueue(driver, event);
3029

3030 3031 3032 3033 3034 3035 3036
    for (i = 0; i < vm->def->ndisks; i++) {
        if (vm->def->disks[i] == disk) {
            virDomainDiskRemove(vm->def, i);
            break;
        }
    }

3037
    qemuDomainReleaseDeviceAddress(vm, &disk->info, src);
3038

3039 3040
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
3041
        VIR_WARN("Unable to restore security label on %s", src);
3042 3043

    if (qemuTeardownDiskCgroup(vm, disk) < 0)
3044
        VIR_WARN("Failed to tear down cgroup for disk path %s", src);
3045 3046

    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
3047
        VIR_WARN("Unable to release lock on %s", src);
3048 3049 3050 3051

    dev.type = VIR_DOMAIN_DEVICE_DISK;
    dev.data.disk = disk;
    ignore_value(qemuRemoveSharedDevice(driver, &dev, vm->def->name));
3052 3053
    if (priv->usbaddrs)
        virDomainUSBAddressRelease(priv->usbaddrs, &disk->info);
3054 3055

    virDomainDiskDefFree(disk);
3056
    return 0;
3057 3058 3059
}


3060
static int
3061
qemuDomainRemoveControllerDevice(virQEMUDriverPtr driver,
3062 3063 3064
                                 virDomainObjPtr vm,
                                 virDomainControllerDefPtr controller)
{
3065
    virObjectEventPtr event;
3066 3067 3068 3069 3070
    size_t i;

    VIR_DEBUG("Removing controller %s from domain %p %s",
              controller->info.alias, vm, vm->def->name);

3071
    event = virDomainEventDeviceRemovedNewFromObj(vm, controller->info.alias);
3072
    qemuDomainEventQueue(driver, event);
3073

3074 3075 3076 3077 3078 3079 3080 3081 3082
    for (i = 0; i < vm->def->ncontrollers; i++) {
        if (vm->def->controllers[i] == controller) {
            virDomainControllerRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
    virDomainControllerDefFree(controller);
3083
    return 0;
3084 3085 3086
}


3087 3088 3089 3090 3091 3092
static int
qemuDomainRemoveMemoryDevice(virQEMUDriverPtr driver,
                             virDomainObjPtr vm,
                             virDomainMemoryDefPtr mem)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3093
    unsigned long long oldmem = virDomainDefGetMemoryTotal(vm->def);
3094
    unsigned long long newmem = oldmem - mem->size;
3095 3096 3097 3098 3099 3100 3101 3102
    virObjectEventPtr event;
    char *backendAlias = NULL;
    int rc;
    int idx;

    VIR_DEBUG("Removing memory device %s from domain %p %s",
              mem->info.alias, vm, vm->def->name);

3103 3104
    event = virDomainEventDeviceRemovedNewFromObj(vm, mem->info.alias);
    qemuDomainEventQueue(driver, event);
3105 3106

    if (virAsprintf(&backendAlias, "mem%s", mem->info.alias) < 0)
3107
        return -1;
3108 3109 3110

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelObject(priv->mon, backendAlias);
3111 3112 3113 3114 3115 3116 3117 3118
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        rc = -1;

    VIR_FREE(backendAlias);

    virDomainAuditMemory(vm, oldmem, newmem, "update", rc == 0);
    if (rc < 0)
        return -1;
3119 3120 3121 3122 3123

    if ((idx = virDomainMemoryFindByDef(vm->def, mem)) >= 0)
        virDomainMemoryRemove(vm->def, idx);

    virDomainMemoryDefFree(mem);
3124

3125 3126 3127
    /* fix the balloon size */
    ignore_value(qemuProcessRefreshBalloonState(driver, vm, QEMU_ASYNC_JOB_NONE));

3128
    /* decrease the mlock limit after memory unplug if necessary */
3129
    ignore_value(qemuDomainAdjustMaxMemLock(vm));
3130

3131
    return 0;
3132 3133 3134
}


3135 3136 3137 3138 3139
static void
qemuDomainRemovePCIHostDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
{
3140
    qemuHostdevReAttachPCIDevices(driver, vm->def->name, &hostdev, 1);
3141 3142 3143 3144 3145
    qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
}

static void
qemuDomainRemoveUSBHostDevice(virQEMUDriverPtr driver,
3146
                              virDomainObjPtr vm,
3147 3148
                              virDomainHostdevDefPtr hostdev)
{
3149
    qemuHostdevReAttachUSBDevices(driver, vm->def->name, &hostdev, 1);
3150
    qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
3151 3152 3153 3154 3155 3156 3157
}

static void
qemuDomainRemoveSCSIHostDevice(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
3158
    qemuHostdevReAttachSCSIDevices(driver, vm->def->name, &hostdev, 1);
3159 3160
}

3161
static int
3162 3163 3164 3165
qemuDomainRemoveHostDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainHostdevDefPtr hostdev)
{
3166
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3167
    virDomainNetDefPtr net = NULL;
3168
    virObjectEventPtr event;
3169
    size_t i;
3170 3171 3172
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drivestr = NULL;
3173
    bool is_vfio = false;
3174 3175 3176 3177

    VIR_DEBUG("Removing host device %s from domain %p %s",
              hostdev->info->alias, vm, vm->def->name);

3178 3179 3180 3181 3182
    if (hostdev->source.subsys.type == VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI) {
        int backend = hostdev->source.subsys.u.pci.backend;
        is_vfio = backend == VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO;
    }

3183 3184 3185 3186 3187 3188 3189 3190 3191 3192
    if (hostdev->source.subsys.type == VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI) {
        /* build the actual drive id string as generated during
         * qemuBuildSCSIHostdevDrvStr that is passed to qemu */
        if (virAsprintf(&drivestr, "%s-%s",
                        virDomainDeviceAddressTypeToString(hostdev->info->type),
                        hostdev->info->alias) < 0)
            goto cleanup;

        qemuDomainObjEnterMonitor(driver, vm);
        qemuMonitorDriveDel(priv->mon, drivestr);
3193 3194
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
            goto cleanup;
3195 3196
    }

3197
    event = virDomainEventDeviceRemovedNewFromObj(vm, hostdev->info->alias);
3198
    qemuDomainEventQueue(driver, event);
3199

3200 3201 3202 3203 3204 3205 3206 3207 3208 3209 3210 3211 3212 3213 3214 3215 3216 3217 3218 3219
    if (hostdev->parent.type == VIR_DOMAIN_DEVICE_NET) {
        net = hostdev->parent.data.net;

        for (i = 0; i < vm->def->nnets; i++) {
            if (vm->def->nets[i] == net) {
                virDomainNetRemove(vm->def, i);
                break;
            }
        }
    }

    for (i = 0; i < vm->def->nhostdevs; i++) {
        if (vm->def->hostdevs[i] == hostdev) {
            virDomainHostdevRemove(vm->def, i);
            break;
        }
    }

    virDomainAuditHostdev(vm, hostdev, "detach", true);

3220 3221 3222 3223
    if (!is_vfio &&
        virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                              vm->def, hostdev, NULL) < 0)
        VIR_WARN("Failed to restore host device labelling");
3224

3225 3226 3227
    if (qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Failed to remove host device cgroup ACL");

3228
    switch ((virDomainHostdevSubsysType) hostdev->source.subsys.type) {
3229 3230
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
        qemuDomainRemovePCIHostDevice(driver, vm, hostdev);
3231 3232 3233 3234
        /* QEMU might no longer need to lock as much memory, eg. we just
         * detached the last VFIO device, so adjust the limit here */
        if (qemuDomainAdjustMaxMemLock(vm) < 0)
            VIR_WARN("Failed to adjust locked memory limit");
3235 3236 3237 3238 3239 3240 3241 3242 3243 3244 3245 3246 3247 3248
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
        qemuDomainRemoveUSBHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
        qemuDomainRemoveSCSIHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_LAST:
        break;
    }

    virDomainHostdevDefFree(hostdev);

    if (net) {
3249
        networkReleaseActualDevice(vm->def, net);
3250 3251
        virDomainNetDefFree(net);
    }
3252

3253 3254 3255 3256
    ret = 0;

 cleanup:
    VIR_FREE(drivestr);
3257
    virObjectUnref(cfg);
3258
    return ret;
3259 3260 3261
}


3262
static int
3263 3264 3265 3266 3267
qemuDomainRemoveNetDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr net)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3268
    qemuDomainObjPrivatePtr priv = vm->privateData;
3269
    virNetDevVPortProfilePtr vport;
3270
    virObjectEventPtr event;
3271
    char *hostnet_name = NULL;
3272
    size_t i;
3273
    int ret = -1;
3274

3275 3276
    if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* this function handles all hostdev and netdev cleanup */
3277 3278
        ret = qemuDomainRemoveHostDevice(driver, vm,
                                         virDomainNetGetActualHostdev(net));
3279
        goto cleanup;
3280 3281
    }

3282 3283 3284
    VIR_DEBUG("Removing network interface %s from domain %p %s",
              net->info.alias, vm, vm->def->name);

3285 3286 3287 3288
    if (virAsprintf(&hostnet_name, "host%s", net->info.alias) < 0)
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
3289
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
3290
        if (qemuMonitorRemoveNetdev(priv->mon, hostnet_name) < 0) {
3291 3292
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
3293 3294 3295 3296 3297 3298 3299 3300 3301 3302 3303
            virDomainAuditNet(vm, net, NULL, "detach", false);
            goto cleanup;
        }
    } else {
        int vlan;
        if ((vlan = qemuDomainNetVLAN(net)) < 0 ||
            qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0) {
            if (vlan < 0) {
                virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                               _("unable to determine original VLAN"));
            }
3304 3305
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
3306 3307 3308 3309
            virDomainAuditNet(vm, net, NULL, "detach", false);
            goto cleanup;
        }
    }
3310 3311
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3312

3313 3314 3315
    virDomainAuditNet(vm, net, NULL, "detach", true);

    event = virDomainEventDeviceRemovedNewFromObj(vm, net->info.alias);
3316
    qemuDomainEventQueue(driver, event);
3317 3318 3319 3320 3321 3322 3323 3324 3325 3326 3327

    for (i = 0; i < vm->def->nnets; i++) {
        if (vm->def->nets[i] == net) {
            virDomainNetRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
    virDomainConfNWFilterTeardown(net);

3328 3329 3330 3331 3332 3333
    if (cfg->macFilter && (net->ifname != NULL)) {
        ignore_value(ebtablesRemoveForwardAllowIn(driver->ebtables,
                                                  net->ifname,
                                                  &net->mac));
    }

3334 3335 3336 3337 3338 3339 3340 3341 3342 3343
    if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_DIRECT) {
        ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                         net->ifname, &net->mac,
                         virDomainNetGetActualDirectDev(net),
                         virDomainNetGetActualDirectMode(net),
                         virDomainNetGetActualVirtPortProfile(net),
                         cfg->stateDir));
    }

    vport = virDomainNetGetActualVirtPortProfile(net);
3344 3345 3346 3347 3348 3349 3350 3351 3352
    if (vport) {
        if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_MIDONET) {
            ignore_value(virNetDevMidonetUnbindPort(vport));
        } else if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH) {
            ignore_value(virNetDevOpenvswitchRemovePort(
                             virDomainNetGetActualBridgeName(net),
                             net->ifname));
        }
    }
3353

3354
    networkReleaseActualDevice(vm->def, net);
3355
    virDomainNetDefFree(net);
3356
    ret = 0;
3357 3358

 cleanup:
3359
    virObjectUnref(cfg);
3360 3361
    VIR_FREE(hostnet_name);
    return ret;
3362 3363 3364
}


3365
static int
3366
qemuDomainRemoveChrDevice(virQEMUDriverPtr driver,
3367 3368 3369
                          virDomainObjPtr vm,
                          virDomainChrDefPtr chr)
{
3370
    virObjectEventPtr event;
3371 3372 3373
    char *charAlias = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret = -1;
3374
    int rc;
3375

3376 3377 3378
    VIR_DEBUG("Removing character device %s from domain %p %s",
              chr->info.alias, vm, vm->def->name);

3379 3380 3381 3382
    if (virAsprintf(&charAlias, "char%s", chr->info.alias) < 0)
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
3383
    rc = qemuMonitorDetachCharDev(priv->mon, charAlias);
3384 3385
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3386

3387 3388 3389 3390 3391
    virDomainAuditChardev(vm, chr, NULL, "detach", rc == 0);

    if (rc < 0)
        goto cleanup;

3392
    event = virDomainEventDeviceRemovedNewFromObj(vm, chr->info.alias);
3393
    qemuDomainEventQueue(driver, event);
3394

3395 3396
    qemuDomainChrRemove(vm->def, chr);
    virDomainChrDefFree(chr);
3397 3398 3399 3400 3401
    ret = 0;

 cleanup:
    VIR_FREE(charAlias);
    return ret;
3402 3403 3404
}


3405 3406 3407 3408 3409 3410 3411 3412 3413 3414 3415 3416 3417 3418 3419 3420 3421 3422 3423 3424 3425 3426 3427 3428 3429 3430 3431 3432 3433 3434 3435 3436 3437 3438 3439 3440
static int
qemuDomainRemoveRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
    virObjectEventPtr event;
    char *charAlias = NULL;
    char *objAlias = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    ssize_t idx;
    int ret = -1;
    int rc;

    VIR_DEBUG("Removing RNG device %s from domain %p %s",
              rng->info.alias, vm, vm->def->name);

    if (virAsprintf(&objAlias, "obj%s", rng->info.alias) < 0)
        goto cleanup;

    if (virAsprintf(&charAlias, "char%s", rng->info.alias) < 0)
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelObject(priv->mon, objAlias);

    if (rc == 0 && rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD)
        ignore_value(qemuMonitorDetachCharDev(priv->mon, charAlias));

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;

    virDomainAuditRNG(vm, rng, NULL, "detach", rc == 0);

    if (rc < 0)
        goto cleanup;

3441 3442
    event = virDomainEventDeviceRemovedNewFromObj(vm, rng->info.alias);
    qemuDomainEventQueue(driver, event);
3443 3444 3445 3446 3447 3448 3449 3450 3451 3452 3453 3454 3455 3456

    if ((idx = virDomainRNGFind(vm->def, rng)) >= 0)
        virDomainRNGRemove(vm->def, idx);
    qemuDomainReleaseDeviceAddress(vm, &rng->info, NULL);
    virDomainRNGDefFree(rng);
    ret = 0;

 cleanup:
    VIR_FREE(charAlias);
    VIR_FREE(objAlias);
    return ret;
}


3457
int
3458 3459 3460 3461
qemuDomainRemoveDevice(virQEMUDriverPtr driver,
                       virDomainObjPtr vm,
                       virDomainDeviceDefPtr dev)
{
3462
    int ret = -1;
3463 3464
    switch ((virDomainDeviceType) dev->type) {
    case VIR_DOMAIN_DEVICE_DISK:
3465
        ret = qemuDomainRemoveDiskDevice(driver, vm, dev->data.disk);
3466 3467
        break;
    case VIR_DOMAIN_DEVICE_CONTROLLER:
3468
        ret = qemuDomainRemoveControllerDevice(driver, vm, dev->data.controller);
3469 3470
        break;
    case VIR_DOMAIN_DEVICE_NET:
3471
        ret = qemuDomainRemoveNetDevice(driver, vm, dev->data.net);
3472 3473
        break;
    case VIR_DOMAIN_DEVICE_HOSTDEV:
3474
        ret = qemuDomainRemoveHostDevice(driver, vm, dev->data.hostdev);
3475 3476 3477
        break;

    case VIR_DOMAIN_DEVICE_CHR:
3478
        ret = qemuDomainRemoveChrDevice(driver, vm, dev->data.chr);
3479
        break;
3480
    case VIR_DOMAIN_DEVICE_RNG:
3481
        ret = qemuDomainRemoveRNGDevice(driver, vm, dev->data.rng);
3482
        break;
3483

3484
    case VIR_DOMAIN_DEVICE_MEMORY:
3485 3486
        ret = qemuDomainRemoveMemoryDevice(driver, vm, dev->data.memory);
        break;
3487

3488 3489 3490 3491 3492 3493 3494 3495 3496 3497 3498 3499 3500
    case VIR_DOMAIN_DEVICE_NONE:
    case VIR_DOMAIN_DEVICE_LEASE:
    case VIR_DOMAIN_DEVICE_FS:
    case VIR_DOMAIN_DEVICE_INPUT:
    case VIR_DOMAIN_DEVICE_SOUND:
    case VIR_DOMAIN_DEVICE_VIDEO:
    case VIR_DOMAIN_DEVICE_WATCHDOG:
    case VIR_DOMAIN_DEVICE_GRAPHICS:
    case VIR_DOMAIN_DEVICE_HUB:
    case VIR_DOMAIN_DEVICE_REDIRDEV:
    case VIR_DOMAIN_DEVICE_SMARTCARD:
    case VIR_DOMAIN_DEVICE_MEMBALLOON:
    case VIR_DOMAIN_DEVICE_NVRAM:
3501
    case VIR_DOMAIN_DEVICE_SHMEM:
3502
    case VIR_DOMAIN_DEVICE_TPM:
3503
    case VIR_DOMAIN_DEVICE_PANIC:
J
Ján Tomko 已提交
3504
    case VIR_DOMAIN_DEVICE_IOMMU:
3505 3506 3507 3508 3509 3510
    case VIR_DOMAIN_DEVICE_LAST:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("don't know how to remove a %s device"),
                       virDomainDeviceTypeToString(dev->type));
        break;
    }
3511
    return ret;
3512 3513 3514 3515 3516 3517 3518 3519 3520
}


static void
qemuDomainMarkDeviceForRemoval(virDomainObjPtr vm,
                               virDomainDeviceInfoPtr info)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

3521 3522 3523 3524 3525 3526
    memset(&priv->unplug, 0, sizeof(priv->unplug));

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
        return;

    priv->unplug.alias = info->alias;
3527 3528 3529 3530 3531 3532
}

static void
qemuDomainResetDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3533
    priv->unplug.alias = NULL;
3534 3535 3536
}

/* Returns:
3537 3538
 *  -1 Unplug of the device failed
 *
3539 3540 3541 3542 3543 3544 3545
 *   0 DEVICE_DELETED event is supported and removal of the device did not
 *     finish in qemuDomainRemoveDeviceWaitTime
 *
 *   1 when the caller is responsible for finishing the device removal:
 *      - DEVICE_DELETED event is unsupported
 *      - DEVICE_DELETED event arrived before the timeout time
 *      - we failed to reliably wait for the event and thus use fallback behavior
3546 3547 3548 3549 3550 3551
 */
static int
qemuDomainWaitForDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    unsigned long long until;
3552
    int rc;
3553 3554

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
3555
        return 1;
3556 3557

    if (virTimeMillisNow(&until) < 0)
3558
        return 1;
3559
    until += qemuDomainRemoveDeviceWaitTime;
3560

3561
    while (priv->unplug.alias) {
3562 3563 3564 3565 3566
        if ((rc = virDomainObjWaitUntil(vm, until)) == 1)
            return 0;

        if (rc < 0) {
            VIR_WARN("Failed to wait on unplug condition for domain '%s' "
3567
                     "device '%s'", vm->def->name, priv->unplug.alias);
3568
            return 1;
3569 3570 3571
        }
    }

3572 3573 3574 3575 3576 3577
    if (priv->unplug.status == QEMU_DOMAIN_UNPLUGGING_DEVICE_STATUS_GUEST_REJECTED) {
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("unplug of device was rejected by the guest"));
        return -1;
    }

3578 3579 3580
    return 1;
}

3581 3582 3583 3584 3585 3586 3587
/* Returns:
 *  true    there was a thread waiting for devAlias to be removed and this
 *          thread will take care of finishing the removal
 *  false   the thread that started the removal is already gone and delegate
 *          finishing the removal to a new thread
 */
bool
3588
qemuDomainSignalDeviceRemoval(virDomainObjPtr vm,
3589 3590
                              const char *devAlias,
                              qemuDomainUnpluggingDeviceStatus status)
3591 3592 3593
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

3594
    if (STREQ_NULLABLE(priv->unplug.alias, devAlias)) {
3595
        qemuDomainResetDeviceRemoval(vm);
3596
        priv->unplug.status = status;
3597
        virDomainObjBroadcast(vm);
3598
        return true;
3599
    }
3600
    return false;
3601 3602 3603
}


3604 3605 3606 3607
static int
qemuDomainDetachVirtioDiskDevice(virQEMUDriverPtr driver,
                                 virDomainObjPtr vm,
                                 virDomainDiskDefPtr detach)
3608
{
3609
    int ret = -1;
3610 3611
    qemuDomainObjPrivatePtr priv = vm->privateData;

3612
    if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
3613 3614
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
3615
                       detach->dst);
3616 3617 3618
        goto cleanup;
    }

3619
    if (qemuDomainMachineIsS390CCW(vm->def) &&
3620 3621 3622 3623 3624 3625 3626 3627 3628 3629 3630 3631 3632 3633
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid PCI address"));
            goto cleanup;
        }
3634 3635
    }

3636
    if (!detach->info.alias) {
3637 3638 3639 3640
        if (qemuAssignDeviceDiskAlias(vm->def, detach, priv->qemuCaps) < 0)
            goto cleanup;
    }

3641 3642
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3643
    qemuDomainObjEnterMonitor(driver, vm);
3644 3645
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
3646
            goto cleanup;
3647 3648
        virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
        goto cleanup;
3649
    }
3650 3651
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3652

3653
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
3654
        ret = qemuDomainRemoveDiskDevice(driver, vm, detach);
3655

3656
 cleanup:
3657
    qemuDomainResetDeviceRemoval(vm);
3658 3659 3660
    return ret;
}

3661 3662 3663 3664
static int
qemuDomainDetachDiskDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainDiskDefPtr detach)
3665
{
3666
    int ret = -1;
3667 3668
    qemuDomainObjPrivatePtr priv = vm->privateData;

3669
    if (qemuDomainDiskBlockJobIsActive(detach))
E
Eric Blake 已提交
3670 3671
        goto cleanup;

3672 3673
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3674
    qemuDomainObjEnterMonitor(driver, vm);
3675
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
3676 3677
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
            goto cleanup;
3678
        virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
3679 3680
        goto cleanup;
    }
3681 3682
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3683

3684
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
3685
        ret = qemuDomainRemoveDiskDevice(driver, vm, detach);
3686

3687
 cleanup:
3688
    qemuDomainResetDeviceRemoval(vm);
3689 3690 3691
    return ret;
}

3692 3693 3694 3695 3696 3697
static int
qemuFindDisk(virDomainDefPtr def, const char *dst)
{
    size_t i;

    for (i = 0; i < def->ndisks; i++) {
3698
        if (STREQ(def->disks[i]->dst, dst))
3699 3700 3701 3702 3703 3704 3705 3706 3707 3708 3709 3710 3711 3712 3713 3714 3715 3716 3717 3718 3719 3720 3721 3722 3723 3724 3725 3726 3727 3728 3729 3730 3731 3732 3733 3734 3735 3736 3737 3738 3739 3740 3741 3742 3743
            return i;
    }

    return -1;
}

int
qemuDomainDetachDeviceDiskLive(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainDiskDefPtr disk;
    int ret = -1;
    int idx;

    if ((idx = qemuFindDisk(vm->def, dev->data.disk->dst)) < 0) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("disk %s not found"), dev->data.disk->dst);
        return -1;
    }
    disk = vm->def->disks[idx];

    switch (disk->device) {
    case VIR_DOMAIN_DISK_DEVICE_DISK:
    case VIR_DOMAIN_DISK_DEVICE_LUN:
        if (disk->bus == VIR_DOMAIN_DISK_BUS_VIRTIO)
            ret = qemuDomainDetachVirtioDiskDevice(driver, vm, disk);
        else if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI ||
                 disk->bus == VIR_DOMAIN_DISK_BUS_USB)
            ret = qemuDomainDetachDiskDevice(driver, vm, disk);
        else
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
                           _("This type of disk cannot be hot unplugged"));
        break;
    default:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("disk device type '%s' cannot be detached"),
                       virDomainDiskDeviceTypeToString(disk->device));
        break;
    }

    return ret;
}


3744 3745 3746
static bool qemuDomainDiskControllerIsBusy(virDomainObjPtr vm,
                                           virDomainControllerDefPtr detach)
{
3747
    size_t i;
3748 3749 3750 3751 3752 3753 3754 3755 3756 3757 3758 3759 3760 3761 3762 3763 3764 3765 3766 3767 3768 3769 3770 3771 3772 3773 3774 3775 3776 3777 3778 3779 3780 3781 3782 3783 3784 3785 3786 3787 3788 3789 3790 3791 3792 3793
    virDomainDiskDefPtr disk;

    for (i = 0; i < vm->def->ndisks; i++) {
        disk = vm->def->disks[i];
        if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE)
            /* the disk does not use disk controller */
            continue;

        /* check whether the disk uses this type controller */
        if (disk->bus == VIR_DOMAIN_DISK_BUS_IDE &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_IDE)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_FDC &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_FDC)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (disk->info.addr.drive.controller == detach->idx)
            return true;
    }

    return false;
}

static bool qemuDomainControllerIsBusy(virDomainObjPtr vm,
                                       virDomainControllerDefPtr detach)
{
    switch (detach->type) {
    case VIR_DOMAIN_CONTROLLER_TYPE_IDE:
    case VIR_DOMAIN_CONTROLLER_TYPE_FDC:
    case VIR_DOMAIN_CONTROLLER_TYPE_SCSI:
        return qemuDomainDiskControllerIsBusy(vm, detach);

    case VIR_DOMAIN_CONTROLLER_TYPE_SATA:
    case VIR_DOMAIN_CONTROLLER_TYPE_VIRTIO_SERIAL:
    case VIR_DOMAIN_CONTROLLER_TYPE_CCID:
    default:
        /* libvirt does not support sata controller, and does not support to
         * detach virtio and smart card controller.
         */
        return true;
    }
}

3794 3795 3796
int qemuDomainDetachControllerDevice(virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainDeviceDefPtr dev)
3797
{
3798
    int idx, ret = -1;
3799 3800 3801
    virDomainControllerDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;

3802 3803 3804
    if ((idx = virDomainControllerFind(vm->def,
                                       dev->data.controller->type,
                                       dev->data.controller->idx)) < 0) {
3805
        virReportError(VIR_ERR_OPERATION_FAILED,
3806
                       _("controller %s:%d not found"),
3807 3808
                       virDomainControllerTypeToString(dev->data.controller->type),
                       dev->data.controller->idx);
3809 3810 3811
        goto cleanup;
    }

3812 3813
    detach = vm->def->controllers[idx];

3814 3815 3816 3817 3818 3819
    if (detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI &&
        detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW &&
        detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("device with '%s' address cannot be detached"),
                       virDomainDeviceAddressTypeToString(detach->info.type));
3820 3821 3822
        goto cleanup;
    }

3823 3824 3825 3826 3827 3828 3829 3830 3831
    if (!virDomainDeviceAddressIsValid(&detach->info, detach->info.type)) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("device with invalid '%s' address cannot be detached"),
                       virDomainDeviceAddressTypeToString(detach->info.type));
        goto cleanup;
    }

    if (detach->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI &&
        qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
3832 3833 3834
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
                       dev->data.disk->dst);
3835 3836 3837
        goto cleanup;
    }

3838
    if (qemuDomainControllerIsBusy(vm, detach)) {
3839 3840
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("device cannot be detached: device is busy"));
3841 3842 3843
        goto cleanup;
    }

3844
    if (!detach->info.alias) {
3845
        if (qemuAssignDeviceControllerAlias(vm->def, priv->qemuCaps, detach) < 0)
3846 3847 3848
            goto cleanup;
    }

3849 3850
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3851
    qemuDomainObjEnterMonitor(driver, vm);
3852 3853 3854
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias)) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        goto cleanup;
3855
    }
3856 3857
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3858

3859
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
3860
        ret = qemuDomainRemoveControllerDevice(driver, vm, detach);
3861

3862
 cleanup:
3863
    qemuDomainResetDeviceRemoval(vm);
3864 3865 3866
    return ret;
}

3867
static int
3868
qemuDomainDetachHostPCIDevice(virQEMUDriverPtr driver,
3869
                              virDomainObjPtr vm,
3870
                              virDomainHostdevDefPtr detach)
3871 3872
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3873
    virDomainHostdevSubsysPCIPtr pcisrc = &detach->source.subsys.u.pci;
3874
    int ret;
3875

3876
    if (qemuIsMultiFunctionDevice(vm->def, detach->info)) {
3877 3878
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %.4x:%.2x:%.2x.%.1x"),
3879 3880
                       pcisrc->addr.domain, pcisrc->addr.bus,
                       pcisrc->addr.slot, pcisrc->addr.function);
3881
        return -1;
3882 3883
    }

3884
    if (!virDomainDeviceAddressIsValid(detach->info,
3885
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
3886 3887
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a PCI address"));
3888
        return -1;
3889 3890
    }

3891 3892
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

3893
    qemuDomainObjEnterMonitor(driver, vm);
3894
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
3895 3896
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
3897 3898 3899 3900

    return ret;
}

3901
static int
3902
qemuDomainDetachHostUSBDevice(virQEMUDriverPtr driver,
3903
                              virDomainObjPtr vm,
3904
                              virDomainHostdevDefPtr detach)
3905 3906
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3907
    int ret;
3908

3909
    if (!detach->info->alias) {
3910 3911
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
3912 3913 3914
        return -1;
    }

3915 3916
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

3917
    qemuDomainObjEnterMonitor(driver, vm);
3918
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
3919 3920
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
3921 3922 3923 3924

    return ret;
}

3925
static int
3926
qemuDomainDetachHostSCSIDevice(virQEMUDriverPtr driver,
3927 3928 3929 3930 3931 3932 3933 3934 3935 3936 3937 3938
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr detach)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret = -1;

    if (!detach->info->alias) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
        return -1;
    }

3939 3940
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

3941
    qemuDomainObjEnterMonitor(driver, vm);
3942 3943 3944 3945
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
3946 3947 3948 3949 3950

    return ret;
}

static int
3951
qemuDomainDetachThisHostDevice(virQEMUDriverPtr driver,
3952
                               virDomainObjPtr vm,
3953
                               virDomainHostdevDefPtr detach)
3954
{
3955
    int ret = -1;
3956

3957
    if (!detach->info->alias) {
3958
        if (qemuAssignDeviceHostdevAlias(vm->def, &detach->info->alias, -1) < 0)
3959 3960 3961
            return -1;
    }

3962
    switch (detach->source.subsys.type) {
3963
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
3964
        ret = qemuDomainDetachHostPCIDevice(driver, vm, detach);
3965
        break;
3966
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
3967
        ret = qemuDomainDetachHostUSBDevice(driver, vm, detach);
3968
        break;
3969
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
3970
        ret = qemuDomainDetachHostSCSIDevice(driver, vm, detach);
3971
        break;
3972
    default:
3973 3974 3975
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(detach->source.subsys.type));
3976 3977 3978
        return -1;
    }

3979
    if (ret < 0) {
3980 3981
        if (virDomainObjIsActive(vm))
            virDomainAuditHostdev(vm, detach, "detach", false);
3982 3983
    } else if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1) {
        ret = qemuDomainRemoveHostDevice(driver, vm, detach);
3984
    }
3985

3986 3987
    qemuDomainResetDeviceRemoval(vm);

3988 3989
    return ret;
}
3990

3991
/* search for a hostdev matching dev and detach it */
3992
int qemuDomainDetachHostDevice(virQEMUDriverPtr driver,
3993 3994 3995 3996 3997
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainHostdevDefPtr hostdev = dev->data.hostdev;
    virDomainHostdevSubsysPtr subsys = &hostdev->source.subsys;
3998
    virDomainHostdevSubsysUSBPtr usbsrc = &subsys->u.usb;
3999
    virDomainHostdevSubsysPCIPtr pcisrc = &subsys->u.pci;
4000
    virDomainHostdevSubsysSCSIPtr scsisrc = &subsys->u.scsi;
4001 4002 4003 4004
    virDomainHostdevDefPtr detach = NULL;
    int idx;

    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
4005 4006 4007
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
4008 4009 4010 4011 4012 4013
        return -1;
    }

    idx = virDomainHostdevFind(vm->def, hostdev, &detach);

    if (idx < 0) {
4014
        switch (subsys->type) {
4015
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
4016 4017
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("host pci device %.4x:%.2x:%.2x.%.1x not found"),
4018 4019
                           pcisrc->addr.domain, pcisrc->addr.bus,
                           pcisrc->addr.slot, pcisrc->addr.function);
4020 4021
            break;
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
4022
            if (usbsrc->bus && usbsrc->device) {
4023 4024
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device %03d.%03d not found"),
4025
                               usbsrc->bus, usbsrc->device);
4026
            } else {
4027 4028
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device vendor=0x%.4x product=0x%.4x not found"),
4029
                               usbsrc->vendor, usbsrc->product);
4030 4031
            }
            break;
4032
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI: {
4033 4034 4035 4036 4037 4038 4039 4040 4041 4042
            if (scsisrc->protocol ==
                VIR_DOMAIN_HOSTDEV_SCSI_PROTOCOL_TYPE_ISCSI) {
                virDomainHostdevSubsysSCSIiSCSIPtr iscsisrc = &scsisrc->u.iscsi;
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host scsi iSCSI path %s not found"),
                               iscsisrc->path);
            } else {
                 virDomainHostdevSubsysSCSIHostPtr scsihostsrc =
                     &scsisrc->u.host;
                 virReportError(VIR_ERR_OPERATION_FAILED,
4043
                                _("host scsi device %s:%u:%u.%llu not found"),
4044 4045 4046
                                scsihostsrc->adapter, scsihostsrc->bus,
                                scsihostsrc->target, scsihostsrc->unit);
            }
4047
            break;
4048
        }
4049
        default:
4050 4051
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("unexpected hostdev type %d"), subsys->type);
4052 4053 4054 4055 4056
            break;
        }
        return -1;
    }

4057 4058 4059 4060
    /* If this is a network hostdev, we need to use the higher-level detach
     * function so that mac address / virtualport are reset
     */
    if (detach->parent.type == VIR_DOMAIN_DEVICE_NET)
4061
        return qemuDomainDetachNetDevice(driver, vm, &detach->parent);
4062
    else
4063
        return qemuDomainDetachThisHostDevice(driver, vm, detach);
4064 4065
}

4066
int
4067
qemuDomainDetachNetDevice(virQEMUDriverPtr driver,
4068 4069 4070
                          virDomainObjPtr vm,
                          virDomainDeviceDefPtr dev)
{
4071
    int detachidx, ret = -1;
4072 4073 4074
    virDomainNetDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;

4075
    if ((detachidx = virDomainNetFindIdx(vm->def, dev->data.net)) < 0)
4076
        goto cleanup;
4077

4078
    detach = vm->def->nets[detachidx];
4079

4080
    if (virDomainNetGetActualType(detach) == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
4081
        /* coverity[negative_returns] */
4082
        ret = qemuDomainDetachThisHostDevice(driver, vm,
4083
                                             virDomainNetGetActualHostdev(detach));
4084 4085
        goto cleanup;
    }
4086
    if (qemuDomainMachineIsS390CCW(vm->def) &&
4087 4088 4089 4090 4091 4092 4093 4094 4095 4096 4097 4098 4099 4100
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a PCI address"));
            goto cleanup;
        }
4101

4102 4103 4104 4105 4106 4107
        if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            _("cannot hot unplug multifunction PCI device :%s"),
                            dev->data.disk->dst);
            goto cleanup;
        }
4108 4109
    }

4110
    if (!detach->info.alias) {
4111 4112 4113 4114
        if (qemuAssignDeviceNetAlias(vm->def, detach, -1) < 0)
            goto cleanup;
    }

4115 4116
    if (virDomainNetGetActualBandwidth(detach) &&
        virNetDevSupportBandwidth(virDomainNetGetActualType(detach)) &&
4117 4118 4119 4120
        virNetDevBandwidthClear(detach->ifname) < 0)
        VIR_WARN("cannot clear bandwidth setting for device : %s",
                 detach->ifname);

4121 4122 4123
    /* deactivate the tap/macvtap device on the host, which could also
     * affect the parent device (e.g. macvtap passthrough mode sets
     * the parent device offline)
4124 4125 4126
     */
    ignore_value(qemuInterfaceStopDevice(detach));

4127 4128
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

4129
    qemuDomainObjEnterMonitor(driver, vm);
4130 4131
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
4132
            goto cleanup;
4133 4134
        virDomainAuditNet(vm, detach, NULL, "detach", false);
        goto cleanup;
4135
    }
4136 4137
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
4138

4139
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4140
        ret = qemuDomainRemoveNetDevice(driver, vm, detach);
4141

4142
 cleanup:
4143
    qemuDomainResetDeviceRemoval(vm);
4144 4145 4146
    return ret;
}

4147
int
4148
qemuDomainChangeGraphicsPasswords(virQEMUDriverPtr driver,
4149 4150 4151
                                  virDomainObjPtr vm,
                                  int type,
                                  virDomainGraphicsAuthDefPtr auth,
4152 4153
                                  const char *defaultPasswd,
                                  int asyncJob)
4154 4155 4156
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    time_t now = time(NULL);
4157 4158
    const char *expire;
    char *validTo = NULL;
4159
    const char *connected = NULL;
4160
    const char *password;
4161 4162
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
4163

4164
    if (!auth->passwd && !defaultPasswd) {
4165 4166 4167
        ret = 0;
        goto cleanup;
    }
4168
    password = auth->passwd ? auth->passwd : defaultPasswd;
4169

4170 4171 4172
    if (auth->connected)
        connected = virDomainGraphicsAuthConnectedTypeToString(auth->connected);

4173 4174
    if (qemuDomainObjEnterMonitorAsync(driver, vm, asyncJob) < 0)
        goto cleanup;
4175
    ret = qemuMonitorSetPassword(priv->mon, type, password, connected);
4176 4177 4178

    if (ret == -2) {
        if (type != VIR_DOMAIN_GRAPHICS_TYPE_VNC) {
4179 4180
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Graphics password only supported for VNC"));
4181 4182
            ret = -1;
        } else {
4183
            ret = qemuMonitorSetVNCPassword(priv->mon, password);
4184 4185
        }
    }
4186
    if (ret != 0)
4187
        goto end_job;
4188

4189 4190 4191
    if (password[0] == '\0' ||
        (auth->expires && auth->validTo <= now)) {
        expire = "now";
4192
    } else if (auth->expires) {
4193 4194 4195
        if (virAsprintf(&validTo, "%lu", (unsigned long) auth->validTo) < 0)
            goto end_job;
        expire = validTo;
4196
    } else {
4197
        expire = "never";
4198 4199
    }

4200
    ret = qemuMonitorExpirePassword(priv->mon, type, expire);
4201 4202 4203 4204

    if (ret == -2) {
        /* XXX we could fake this with a timer */
        if (auth->expires) {
4205 4206
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Expiry of passwords is not supported"));
4207
            ret = -1;
4208 4209
        } else {
            ret = 0;
4210 4211 4212
        }
    }

4213
 end_job:
4214 4215
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
4216
 cleanup:
4217
    VIR_FREE(validTo);
4218
    virObjectUnref(cfg);
4219 4220
    return ret;
}
4221

4222
int qemuDomainAttachLease(virQEMUDriverPtr driver,
4223 4224 4225
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
4226 4227 4228
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);

4229
    if (virDomainLeaseInsertPreAlloc(vm->def) < 0)
4230
        goto cleanup;
4231

4232
    if (virDomainLockLeaseAttach(driver->lockManager, cfg->uri,
4233
                                 vm, lease) < 0) {
4234
        virDomainLeaseInsertPreAlloced(vm->def, NULL);
4235
        goto cleanup;
4236 4237 4238
    }

    virDomainLeaseInsertPreAlloced(vm->def, lease);
4239 4240
    ret = 0;

4241
 cleanup:
4242 4243
    virObjectUnref(cfg);
    return ret;
4244 4245
}

4246
int qemuDomainDetachLease(virQEMUDriverPtr driver,
4247 4248 4249
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
4250
    virDomainLeaseDefPtr det_lease;
4251
    int idx;
4252

4253
    if ((idx = virDomainLeaseIndex(vm->def, lease)) < 0) {
4254 4255 4256
        virReportError(VIR_ERR_INVALID_ARG,
                       _("Lease %s in lockspace %s does not exist"),
                       lease->key, NULLSTR(lease->lockspace));
4257 4258 4259 4260 4261 4262
        return -1;
    }

    if (virDomainLockLeaseDetach(driver->lockManager, vm, lease) < 0)
        return -1;

4263
    det_lease = virDomainLeaseRemoveAt(vm->def, idx);
4264
    virDomainLeaseDefFree(det_lease);
4265 4266
    return 0;
}
4267 4268 4269 4270 4271 4272 4273 4274 4275 4276 4277 4278 4279 4280 4281 4282 4283

int qemuDomainDetachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainDefPtr vmdef = vm->def;
    virDomainChrDefPtr tmpChr;
    char *devstr = NULL;

    if (!(tmpChr = virDomainChrFind(vmdef, chr))) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return ret;
    }

P
Pavel Hrdina 已提交
4284 4285 4286 4287 4288
    if (!tmpChr->info.alias && qemuAssignDeviceChrAlias(vmdef, tmpChr, -1) < 0)
        return ret;

    sa_assert(tmpChr->info.alias);

4289
    if (qemuBuildChrDeviceStr(&devstr, vmdef, chr, priv->qemuCaps) < 0)
4290 4291
        return ret;

4292 4293
    qemuDomainMarkDeviceForRemoval(vm, &tmpChr->info);

4294 4295
    qemuDomainObjEnterMonitor(driver, vm);
    if (devstr && qemuMonitorDelDevice(priv->mon, tmpChr->info.alias) < 0) {
4296
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
4297 4298
        goto cleanup;
    }
4299 4300
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
4301

4302
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1) {
4303
        qemuDomainReleaseDeviceAddress(vm, &tmpChr->info, NULL);
4304
        ret = qemuDomainRemoveChrDevice(driver, vm, tmpChr);
4305 4306
    }

4307
 cleanup:
4308
    qemuDomainResetDeviceRemoval(vm);
4309 4310 4311
    VIR_FREE(devstr);
    return ret;
}
4312 4313 4314 4315 4316 4317 4318 4319 4320 4321 4322 4323 4324 4325 4326 4327 4328 4329 4330 4331 4332 4333 4334 4335 4336 4337 4338 4339 4340 4341 4342 4343 4344 4345


int
qemuDomainDetachRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    ssize_t idx;
    virDomainRNGDefPtr tmpRNG;
    int rc;
    int ret = -1;

    if ((idx = virDomainRNGFind(vm->def, rng) < 0)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return -1;
    }

    tmpRNG = vm->def->rngs[idx];

    if (!tmpRNG->info.alias) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("alias not set for RNG device"));
        return -1;
    }

    qemuDomainMarkDeviceForRemoval(vm, &tmpRNG->info);

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelDevice(priv->mon, tmpRNG->info.alias);
    if (qemuDomainObjExitMonitor(driver, vm) || rc < 0)
        goto cleanup;

4346
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4347 4348 4349 4350 4351 4352
        ret = qemuDomainRemoveRNGDevice(driver, vm, tmpRNG);

 cleanup:
    qemuDomainResetDeviceRemoval(vm);
    return ret;
}
4353 4354 4355 4356 4357 4358 4359 4360 4361 4362 4363 4364 4365


int
qemuDomainDetachMemoryDevice(virQEMUDriverPtr driver,
                             virDomainObjPtr vm,
                             virDomainMemoryDefPtr memdef)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainMemoryDefPtr mem;
    int idx;
    int rc;
    int ret = -1;

4366
    qemuDomainMemoryDeviceAlignSize(vm->def, memdef);
4367 4368 4369 4370 4371 4372 4373 4374 4375 4376 4377 4378 4379 4380 4381 4382 4383 4384 4385 4386 4387 4388

    if ((idx = virDomainMemoryFindByDef(vm->def, memdef)) < 0) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return -1;
    }

    mem = vm->def->mems[idx];

    if (!mem->info.alias) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("alias for the memory device was not found"));
        return -1;
    }

    qemuDomainMarkDeviceForRemoval(vm, &mem->info);

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelDevice(priv->mon, mem->info.alias);
    if (qemuDomainObjExitMonitor(driver, vm) < 0 || rc < 0)
        goto cleanup;

4389
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4390 4391 4392 4393 4394 4395
        ret = qemuDomainRemoveMemoryDevice(driver, vm, mem);

 cleanup:
    qemuDomainResetDeviceRemoval(vm);
    return ret;
}