qemu_hotplug.c 155.4 KB
Newer Older
1
/*
2
 * qemu_hotplug.c: QEMU device hotplug management
3
 *
4
 * Copyright (C) 2006-2016 Red Hat, Inc.
5 6 7 8 9 10 11 12 13 14 15 16 17
 * Copyright (C) 2006 Daniel P. Berrange
 *
 * This library is free software; you can redistribute it and/or
 * modify it under the terms of the GNU Lesser General Public
 * License as published by the Free Software Foundation; either
 * version 2.1 of the License, or (at your option) any later version.
 *
 * This library is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 * Lesser General Public License for more details.
 *
 * You should have received a copy of the GNU Lesser General Public
18
 * License along with this library.  If not, see
O
Osier Yang 已提交
19
 * <http://www.gnu.org/licenses/>.
20 21 22 23 24 25 26 27
 *
 * Author: Daniel P. Berrange <berrange@redhat.com>
 */


#include <config.h>

#include "qemu_hotplug.h"
28
#include "qemu_hotplugpriv.h"
29
#include "qemu_alias.h"
30 31
#include "qemu_capabilities.h"
#include "qemu_domain.h"
32
#include "qemu_domain_address.h"
33 34
#include "qemu_command.h"
#include "qemu_hostdev.h"
35
#include "qemu_interface.h"
36
#include "qemu_process.h"
37
#include "domain_audit.h"
38
#include "netdev_bandwidth_conf.h"
39
#include "domain_nwfilter.h"
40
#include "virlog.h"
41
#include "datatypes.h"
42
#include "virerror.h"
43
#include "viralloc.h"
44
#include "virpci.h"
E
Eric Blake 已提交
45
#include "virfile.h"
46
#include "virprocess.h"
47
#include "qemu_cgroup.h"
48
#include "locking/domain_lock.h"
49
#include "network/bridge_driver.h"
50 51
#include "virnetdev.h"
#include "virnetdevbridge.h"
A
Ansis Atteka 已提交
52
#include "virnetdevtap.h"
53
#include "virnetdevopenvswitch.h"
54
#include "virnetdevmidonet.h"
55
#include "device_conf.h"
56
#include "virstoragefile.h"
57
#include "virstring.h"
58
#include "virtime.h"
59
#include "storage/storage_driver.h"
60 61

#define VIR_FROM_THIS VIR_FROM_QEMU
62 63 64

VIR_LOG_INIT("qemu.qemu_hotplug");

65
#define CHANGE_MEDIA_TIMEOUT 5000
66

67 68 69 70
/* Wait up to 5 seconds for device removal to finish. */
unsigned long long qemuDomainRemoveDeviceWaitTime = 1000ull * 5;


71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147
/**
 * qemuDomainPrepareDisk:
 * @driver: qemu driver struct
 * @vm: domain object
 * @disk: disk to prepare
 * @overridesrc: Source different than @disk->src when necessary
 * @teardown: Teardown the disk instead of adding it to a vm
 *
 * Setup the locks, cgroups and security permissions on a disk of a VM.
 * If @overridesrc is specified the source struct is used instead of the
 * one present in @disk. If @teardown is true, then the labels and cgroups
 * are removed instead.
 *
 * Returns 0 on success and -1 on error. Reports libvirt error.
 */
static int
qemuDomainPrepareDisk(virQEMUDriverPtr driver,
                      virDomainObjPtr vm,
                      virDomainDiskDefPtr disk,
                      virStorageSourcePtr overridesrc,
                      bool teardown)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    int ret = -1;
    virStorageSourcePtr origsrc = NULL;

    if (overridesrc) {
        origsrc = disk->src;
        disk->src = overridesrc;
    }

    /* just tear down the disk access */
    if (teardown) {
        ret = 0;
        goto rollback_cgroup;
    }

    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
                                vm, disk) < 0)
        goto cleanup;

    if (virSecurityManagerSetDiskLabel(driver->securityManager,
                                       vm->def, disk) < 0)
        goto rollback_lock;

    if (qemuSetupDiskCgroup(vm, disk) < 0)
        goto rollback_label;

    ret = 0;
    goto cleanup;

 rollback_cgroup:
    if (qemuTeardownDiskCgroup(vm, disk) < 0)
        VIR_WARN("Unable to tear down cgroup access on %s",
                 virDomainDiskGetSource(disk));

 rollback_label:
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
        VIR_WARN("Unable to restore security label on %s",
                 virDomainDiskGetSource(disk));

 rollback_lock:
    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s",
                 virDomainDiskGetSource(disk));

 cleanup:
    if (origsrc)
        disk->src = origsrc;

    virObjectUnref(cfg);

    return ret;
}


148 149 150 151
static int
qemuHotplugWaitForTrayEject(virQEMUDriverPtr driver,
                            virDomainObjPtr vm,
                            virDomainDiskDefPtr disk,
152
                            const char *driveAlias)
153 154 155 156 157 158 159 160 161 162 163 164
{
    unsigned long long now;
    int rc;

    if (virTimeMillisNow(&now) < 0)
        return -1;

    while (disk->tray_status != VIR_DOMAIN_DISK_TRAY_OPEN) {
        if ((rc = virDomainObjWaitUntil(vm, now + CHANGE_MEDIA_TIMEOUT)) < 0)
            return -1;

        if (rc > 0) {
165 166 167 168 169 170
            /* the caller called qemuMonitorEjectMedia which usually reports an
             * error. Report the failure in an off-chance that it didn't. */
            if (!virGetLastError()) {
                virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                               _("timed out waiting for disk tray status update"));
            }
171 172 173 174 175 176
            return -1;
        }
    }

    /* re-issue ejection command to pop out the media */
    qemuDomainObjEnterMonitor(driver, vm);
177
    rc = qemuMonitorEjectMedia(qemuDomainGetMonitor(vm), driveAlias, false);
178 179 180 181 182 183 184
    if (qemuDomainObjExitMonitor(driver, vm) < 0 || rc < 0)
        return -1;

    return 0;
}


185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205
/**
 * qemuDomainChangeEjectableMedia:
 * @driver: qemu driver structure
 * @vm: domain definition
 * @disk: disk definition to change the source of
 * @newsrc: new disk source to change to
 * @force: force the change of media
 *
 * Change the media in an ejectable device to the one described by
 * @newsrc. This function also removes the old source from the
 * shared device table if appropriate. Note that newsrc is consumed
 * on success and the old source is freed on success.
 *
 * Returns 0 on success, -1 on error and reports libvirt error
 */
int
qemuDomainChangeEjectableMedia(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDiskDefPtr disk,
                               virStorageSourcePtr newsrc,
                               bool force)
206
{
207
    int ret = -1, rc;
208
    char *driveAlias = NULL;
209
    qemuDomainObjPrivatePtr priv = vm->privateData;
210
    qemuDomainDiskPrivatePtr diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
211
    const char *format = NULL;
212
    char *sourcestr = NULL;
213

214
    if (!disk->info.alias) {
215
        virReportError(VIR_ERR_INTERNAL_ERROR,
216
                       _("missing disk device alias name for %s"), disk->dst);
217
        goto cleanup;
218 219
    }

220 221
    if (disk->device != VIR_DOMAIN_DISK_DEVICE_FLOPPY &&
        disk->device != VIR_DOMAIN_DISK_DEVICE_CDROM) {
222 223
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("Removable media not supported for %s device"),
224
                       virDomainDiskDeviceTypeToString(disk->device));
225
        goto cleanup;
226 227
    }

228
    if (qemuDomainPrepareDisk(driver, vm, disk, newsrc, false) < 0)
229
        goto cleanup;
230

231
    if (!(driveAlias = qemuAliasFromDisk(disk)))
232 233
        goto error;

234 235 236 237
    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorEjectMedia(priv->mon, driveAlias, force);
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
238

239
    /* If the tray is present and tray change event is supported wait for it to open. */
240
    if (!force && diskPriv->tray &&
241
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_TRAY_MOVED)) {
242
        rc = qemuHotplugWaitForTrayEject(driver, vm, disk, driveAlias);
243
        if (rc < 0)
244
            goto error;
245 246 247 248 249
    } else  {
        /* otherwise report possible errors from the attempt to eject the media*/
        if (rc < 0)
            goto error;
    }
250

251
    if (!virStorageSourceIsEmpty(newsrc)) {
252
        if (qemuGetDriveSourceString(newsrc, diskPriv->secinfo, &sourcestr) < 0)
253 254
            goto error;

255 256 257
        if (virStorageSourceGetActualType(newsrc) != VIR_STORAGE_TYPE_DIR) {
            if (newsrc->format > 0) {
                format = virStorageFileFormatTypeToString(newsrc->format);
258
            } else {
259 260
                if (disk->src->format > 0)
                    format = virStorageFileFormatTypeToString(disk->src->format);
261
            }
262
        }
263
        qemuDomainObjEnterMonitor(driver, vm);
264 265 266 267 268
        rc = qemuMonitorChangeMedia(priv->mon,
                                    driveAlias,
                                    sourcestr,
                                    format);
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
269
            goto cleanup;
270
    }
271

272
    virDomainAuditDisk(vm, disk->src, newsrc, "update", rc >= 0);
273

274
    if (rc < 0)
275 276
        goto error;

277 278
    /* remove the old source from shared device list */
    ignore_value(qemuRemoveSharedDisk(driver, disk, vm->def->name));
279
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
280

281 282 283
    virStorageSourceFree(disk->src);
    disk->src = newsrc;
    newsrc = NULL;
284
    ret = 0;
285

286
 cleanup:
287
    VIR_FREE(driveAlias);
288
    VIR_FREE(sourcestr);
289 290
    return ret;

291
 error:
292 293
    virDomainAuditDisk(vm, disk->src, newsrc, "update", false);
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, newsrc, true));
294
    goto cleanup;
295 296
}

297

298 299 300 301 302
static int
qemuDomainAttachVirtioDiskDevice(virConnectPtr conn,
                                 virQEMUDriverPtr driver,
                                 virDomainObjPtr vm,
                                 virDomainDiskDefPtr disk)
303
{
304
    int ret = -1;
305
    int rv;
306
    qemuDomainObjPrivatePtr priv = vm->privateData;
307
    virErrorPtr orig_err;
308 309
    char *devstr = NULL;
    char *drivestr = NULL;
310
    char *drivealias = NULL;
311
    bool releaseaddr = false;
312
    bool driveAdded = false;
313
    bool secobjAdded = false;
314
    bool encobjAdded = false;
315
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
316
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
317
    const char *src = virDomainDiskGetSource(disk);
318
    virJSONValuePtr secobjProps = NULL;
319
    virJSONValuePtr encobjProps = NULL;
320 321
    qemuDomainDiskPrivatePtr diskPriv;
    qemuDomainSecretInfoPtr secinfo;
322
    qemuDomainSecretInfoPtr encinfo;
323

324
    if (!disk->info.type) {
325
        if (qemuDomainMachineIsS390CCW(vm->def) &&
326 327 328 329
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
330 331 332 333
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, disk->info, priv->qemuCaps,
                                            disk->dst))
            goto cleanup;
334 335
    }

336
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
337
        goto cleanup;
338

339
    if (disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
340 341 342
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto error;
        if (virDomainCCWAddressAssign(&disk->info, ccwaddrs,
343
                                      !disk->info.addr.ccw.assigned) < 0)
344
            goto error;
345 346 347
    } else if (!disk->info.type ||
                disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &disk->info) < 0)
348
            goto error;
349 350 351 352
    }
    releaseaddr = true;
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
353

J
John Ferlan 已提交
354
    if (qemuDomainSecretDiskPrepare(conn, priv, disk) < 0)
355 356
        goto error;

357 358 359 360 361 362 363
    diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
    secinfo = diskPriv->secinfo;
    if (secinfo && secinfo->type == VIR_DOMAIN_SECRET_INFO_TYPE_AES) {
        if (qemuBuildSecretInfoProps(secinfo, &secobjProps) < 0)
            goto error;
    }

364 365 366 367
    encinfo = diskPriv->encinfo;
    if (encinfo && qemuBuildSecretInfoProps(encinfo, &encobjProps) < 0)
        goto error;

368
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
369
        goto error;
370

371
    if (!(drivealias = qemuAliasFromDisk(disk)))
372 373 374 375
        goto error;

    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
376

377
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
378 379
        goto error;

380
    qemuDomainObjEnterMonitor(driver, vm);
381

382 383 384 385 386
    if (secobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", secinfo->s.aes.alias,
                                  secobjProps);
        secobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
387
            goto exit_monitor;
388
        secobjAdded = true;
389 390
    }

391 392 393 394 395 396
    if (encobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", encinfo->s.aes.alias,
                                  encobjProps);
        encobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
            goto exit_monitor;
397
        encobjAdded = true;
398 399
    }

400
    if (qemuMonitorAddDrive(priv->mon, drivestr) < 0)
401 402
        goto exit_monitor;
    driveAdded = true;
403 404

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
405
        goto exit_monitor;
406

407 408
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        releaseaddr = false;
409
        goto error;
410
    }
411

412
    virDomainAuditDisk(vm, NULL, disk->src, "attach", true);
413 414

    virDomainDiskInsertPreAlloced(vm->def, disk);
415
    ret = 0;
416

417
 cleanup:
418
    virJSONValueFree(secobjProps);
419
    virJSONValueFree(encobjProps);
420
    qemuDomainSecretDiskDestroy(disk);
421
    virDomainCCWAddressSetFree(ccwaddrs);
422 423
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
424
    VIR_FREE(drivealias);
425 426
    virObjectUnref(cfg);
    return ret;
427

428
 exit_monitor:
429
    orig_err = virSaveLastError();
430
    if (driveAdded && qemuMonitorDriveDel(priv->mon, drivealias) < 0) {
431 432 433
        VIR_WARN("Unable to remove drive %s (%s) after failed "
                 "qemuMonitorAddDevice", drivealias, drivestr);
    }
434 435
    if (secobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, secinfo->s.aes.alias));
436 437
    if (encobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, encinfo->s.aes.alias));
438 439 440 441
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }
442

443 444 445 446 447
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        releaseaddr = false;

    virDomainAuditDisk(vm, NULL, disk->src, "attach", false);

448
 error:
449
    if (releaseaddr)
450
        qemuDomainReleaseDeviceAddress(vm, &disk->info, src);
451

452
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
453
    goto cleanup;
454 455 456
}


457 458 459
int qemuDomainAttachControllerDevice(virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainControllerDefPtr controller)
460 461 462 463 464
{
    int ret = -1;
    const char* type = virDomainControllerTypeToString(controller->type);
    char *devstr = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
465
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
466
    bool releaseaddr = false;
467

468 469 470 471 472 473 474
    if (controller->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("'%s' controller cannot be hot plugged."),
                       virDomainControllerTypeToString(controller->type));
        return -1;
    }

475 476 477 478 479 480 481 482
    /* default idx would normally be set by virDomainDefPostParse(),
     * which isn't called in the case of live attach of a single
     * device.
     */
    if (controller->idx == -1)
       controller->idx = virDomainControllerFindUnusedIndex(vm->def,
                                                            controller->type);

483
    if (virDomainControllerFind(vm->def, controller->type, controller->idx) >= 0) {
484 485 486 487
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("target %s:%d already exists"),
                       type, controller->idx);
        return -1;
488 489
    }

490 491 492 493 494 495 496 497 498
    if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE) {
        if (qemuDomainMachineIsS390CCW(vm->def) &&
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW))
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, controller->info,
                                            priv->qemuCaps, "controller"))
499
            goto cleanup;
500
    }
501

502 503 504 505 506
    if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE ||
        controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &controller->info) < 0)
            goto cleanup;
    } else if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
507 508 509
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto cleanup;
        if (virDomainCCWAddressAssign(&controller->info, ccwaddrs,
510
                                      !controller->info.addr.ccw.assigned) < 0)
511 512
            goto cleanup;
    }
513 514 515 516 517 518
    releaseaddr = true;
    if (qemuAssignDeviceControllerAlias(vm->def, priv->qemuCaps, controller) < 0)
        goto cleanup;

    if (!(devstr = qemuBuildControllerDevStr(vm->def, controller, priv->qemuCaps, NULL)))
        goto cleanup;
519

520
    if (VIR_REALLOC_N(vm->def->controllers, vm->def->ncontrollers+1) < 0)
521 522
        goto cleanup;

523
    qemuDomainObjEnterMonitor(driver, vm);
524
    ret = qemuMonitorAddDevice(priv->mon, devstr);
525 526 527 528 529
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        releaseaddr = false;
        ret = -1;
        goto cleanup;
    }
530 531

    if (ret == 0) {
532 533
        if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE)
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
534 535 536
        virDomainControllerInsertPreAlloced(vm->def, controller);
    }

537
 cleanup:
538 539
    if (ret != 0 && releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
540 541

    VIR_FREE(devstr);
542
    virDomainCCWAddressSetFree(ccwaddrs);
543 544 545 546
    return ret;
}

static virDomainControllerDefPtr
547
qemuDomainFindOrCreateSCSIDiskController(virQEMUDriverPtr driver,
548
                                         virDomainObjPtr vm,
549
                                         int controller)
550
{
551
    size_t i;
552
    virDomainControllerDefPtr cont;
553

554
    for (i = 0; i < vm->def->ncontrollers; i++) {
555 556 557 558 559 560 561 562 563 564 565
        cont = vm->def->controllers[i];

        if (cont->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (cont->idx == controller)
            return cont;
    }

    /* No SCSI controller present, for backward compatibility we
     * now hotplug a controller */
566
    if (VIR_ALLOC(cont) < 0)
567 568
        return NULL;
    cont->type = VIR_DOMAIN_CONTROLLER_TYPE_SCSI;
569
    cont->idx = controller;
570 571
    cont->model = -1;

572
    VIR_INFO("No SCSI controller present, hotplugging one");
573 574
    if (qemuDomainAttachControllerDevice(driver,
                                         vm, cont) < 0) {
575 576 577 578 579
        VIR_FREE(cont);
        return NULL;
    }

    if (!virDomainObjIsActive(vm)) {
580 581
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit"));
582 583 584 585 586 587 588 589 590
        /* cont doesn't need freeing here, since the reference
         * now held in def->controllers */
        return NULL;
    }

    return cont;
}


591 592 593 594 595
static int
qemuDomainAttachSCSIDisk(virConnectPtr conn,
                         virQEMUDriverPtr driver,
                         virDomainObjPtr vm,
                         virDomainDiskDefPtr disk)
596
{
597
    size_t i;
598
    qemuDomainObjPrivatePtr priv = vm->privateData;
599
    virErrorPtr orig_err;
600 601
    char *drivestr = NULL;
    char *devstr = NULL;
602
    bool driveAdded = false;
603
    bool encobjAdded = false;
604
    char *drivealias = NULL;
605
    int ret = -1;
606
    int rv;
607
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
608 609 610
    virJSONValuePtr encobjProps = NULL;
    qemuDomainDiskPrivatePtr diskPriv;
    qemuDomainSecretInfoPtr encinfo;
611

612
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
613
        goto cleanup;
614 615 616

    /* We should have an address already, so make sure */
    if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE) {
617 618 619
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("unexpected disk address type %s"),
                       virDomainDeviceAddressTypeToString(disk->info.type));
620 621 622
        goto error;
    }

623 624 625 626 627 628 629 630 631 632 633 634
    /* Let's make sure the disk has a controller defined and loaded before
     * trying to add it. The controller used by the disk must exist before a
     * qemu command line string is generated.
     *
     * Ensure that the given controller and all controllers with a smaller index
     * exist; there must not be any missing index in between.
     */
    for (i = 0; i <= disk->info.addr.drive.controller; i++) {
        if (!qemuDomainFindOrCreateSCSIDiskController(driver, vm, i))
            goto error;
    }

635 636
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
637

J
John Ferlan 已提交
638
    if (qemuDomainSecretDiskPrepare(conn, priv, disk) < 0)
639 640
        goto error;

641 642 643 644 645
    diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
    encinfo = diskPriv->encinfo;
    if (encinfo && qemuBuildSecretInfoProps(encinfo, &encobjProps) < 0)
        goto error;

646 647
    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
648

649
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
650 651
        goto error;

652 653 654
    if (!(drivealias = qemuAliasFromDisk(disk)))
        goto error;

655
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
656 657
        goto error;

658
    qemuDomainObjEnterMonitor(driver, vm);
659

660 661 662 663 664 665
    if (encobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", encinfo->s.aes.alias,
                                  encobjProps);
        encobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
            goto exit_monitor;
666
        encobjAdded = true;
667 668
    }

669
    if (qemuMonitorAddDrive(priv->mon, drivestr) < 0)
670 671
        goto exit_monitor;
    driveAdded = true;
672

673
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
674
        goto exit_monitor;
675

676
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
677
        goto error;
678

679
    virDomainAuditDisk(vm, NULL, disk->src, "attach", true);
680 681

    virDomainDiskInsertPreAlloced(vm->def, disk);
682
    ret = 0;
683

684
 cleanup:
685
    virJSONValueFree(encobjProps);
686
    qemuDomainSecretDiskDestroy(disk);
687 688
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
689
    VIR_FREE(drivealias);
690 691
    virObjectUnref(cfg);
    return ret;
692

693
 exit_monitor:
694
    orig_err = virSaveLastError();
695 696 697 698
    if (driveAdded && qemuMonitorDriveDel(priv->mon, drivealias) < 0) {
        VIR_WARN("Unable to remove drive %s (%s) after failed "
                 "qemuMonitorAddDevice", drivealias, drivestr);
    }
699 700 701 702 703 704 705
    if (encobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, encinfo->s.aes.alias));
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

706 707 708 709
    ignore_value(qemuDomainObjExitMonitor(driver, vm));

    virDomainAuditDisk(vm, NULL, disk->src, "attach", false);

710
 error:
711
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
712
    goto cleanup;
713 714 715
}


716
static int
717
qemuDomainAttachUSBMassStorageDevice(virQEMUDriverPtr driver,
718 719
                                     virDomainObjPtr vm,
                                     virDomainDiskDefPtr disk)
720 721
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
722
    virErrorPtr orig_err;
723
    int ret = -1;
724
    char *drivealias = NULL;
725 726
    char *drivestr = NULL;
    char *devstr = NULL;
727
    bool driveAdded = false;
728
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
729
    const char *src = virDomainDiskGetSource(disk);
730 731 732 733 734 735 736
    bool releaseaddr = false;

    if (priv->usbaddrs) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, &disk->info) < 0)
            goto cleanup;
        releaseaddr = true;
    }
737

738
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
739
        goto cleanup;
740

741
    /* XXX not correct once we allow attaching a USB CDROM */
742
    if (!src) {
743 744
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       "%s", _("disk source path is missing"));
745 746 747
        goto error;
    }

748 749
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
750

751
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
752
        goto error;
753 754 755 756

    if (!(drivealias = qemuAliasFromDisk(disk)))
        goto error;

757 758
    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
759

760
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
761 762
        goto error;

763
    qemuDomainObjEnterMonitor(driver, vm);
764

765 766 767 768 769 770
    if (qemuMonitorAddDrive(priv->mon, drivestr) < 0)
        goto exit_monitor;
    driveAdded = true;

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
        goto exit_monitor;
771

772
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
773 774
        goto error;

775 776
    virDomainAuditDisk(vm, NULL, disk->src, "attach", true);

777
    virDomainDiskInsertPreAlloced(vm->def, disk);
778
    ret = 0;
779

780
 cleanup:
781 782
    if (ret < 0 && releaseaddr)
        virDomainUSBAddressRelease(priv->usbaddrs, &disk->info);
783
    VIR_FREE(devstr);
784
    VIR_FREE(drivealias);
785
    VIR_FREE(drivestr);
786 787
    virObjectUnref(cfg);
    return ret;
788

789
 exit_monitor:
790 791 792 793 794 795 796 797
    orig_err = virSaveLastError();
    if (driveAdded && qemuMonitorDriveDel(priv->mon, drivealias) < 0) {
        VIR_WARN("Unable to remove drive %s (%s) after failed "
                 "qemuMonitorAddDevice", drivealias, drivestr);
    }
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
798 799 800 801 802
    }

    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    virDomainAuditDisk(vm, NULL, disk->src, "attach", false);

803
 error:
804
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
805
    goto cleanup;
806 807 808
}


809 810 811 812 813 814
int
qemuDomainAttachDeviceDiskLive(virConnectPtr conn,
                               virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
815
    size_t i;
816 817 818
    virDomainDiskDefPtr disk = dev->data.disk;
    virDomainDiskDefPtr orig_disk = NULL;
    int ret = -1;
819
    const char *src = virDomainDiskGetSource(disk);
820

821
    if (STRNEQ_NULLABLE(virDomainDiskGetDriver(disk), "qemu")) {
822 823
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("unsupported driver name '%s' for disk '%s'"),
824
                       virDomainDiskGetDriver(disk), src);
825
        goto cleanup;
826 827
    }

828
    if (virStorageTranslateDiskSourcePool(conn, disk) < 0)
829
        goto cleanup;
830 831

    if (qemuAddSharedDevice(driver, dev, vm->def->name) < 0)
832
        goto cleanup;
833 834

    if (qemuSetUnprivSGIO(dev) < 0)
835
        goto cleanup;
836

837
    if (qemuDomainDetermineDiskChain(driver, vm, disk, false, true) < 0)
838
        goto cleanup;
839

840
    switch ((virDomainDiskDevice) disk->device)  {
841 842 843 844 845
    case VIR_DOMAIN_DISK_DEVICE_CDROM:
    case VIR_DOMAIN_DISK_DEVICE_FLOPPY:
        if (!(orig_disk = virDomainDiskFindByBusAndDst(vm->def,
                                                       disk->bus, disk->dst))) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
846 847 848
                           _("No device with bus '%s' and target '%s'. "
                             "cdrom and floppy device hotplug isn't supported "
                             "by libvirt"),
849 850
                           virDomainDiskBusTypeToString(disk->bus),
                           disk->dst);
851
            goto cleanup;
852 853
        }

854
        if (qemuDomainChangeEjectableMedia(driver, vm, orig_disk,
855
                                           disk->src, false) < 0)
856
            goto cleanup;
857

858
        disk->src = NULL;
859
        ret = 0;
860
        break;
861

862 863
    case VIR_DOMAIN_DISK_DEVICE_DISK:
    case VIR_DOMAIN_DISK_DEVICE_LUN:
864
        for (i = 0; i < vm->def->ndisks; i++) {
865 866
            if (virDomainDiskDefCheckDuplicateInfo(vm->def->disks[i], disk) < 0)
                goto cleanup;
867 868
        }

869 870
        switch ((virDomainDiskBus) disk->bus) {
        case VIR_DOMAIN_DISK_BUS_USB:
871 872 873 874 875
            if (disk->device == VIR_DOMAIN_DISK_DEVICE_LUN) {
                virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                               _("disk device='lun' is not supported for usb bus"));
                break;
            }
876
            ret = qemuDomainAttachUSBMassStorageDevice(driver, vm, disk);
877 878 879
            break;

        case VIR_DOMAIN_DISK_BUS_VIRTIO:
880
            ret = qemuDomainAttachVirtioDiskDevice(conn, driver, vm, disk);
881 882 883
            break;

        case VIR_DOMAIN_DISK_BUS_SCSI:
884
            ret = qemuDomainAttachSCSIDisk(conn, driver, vm, disk);
885 886 887 888 889 890 891 892 893
            break;

        case VIR_DOMAIN_DISK_BUS_IDE:
        case VIR_DOMAIN_DISK_BUS_FDC:
        case VIR_DOMAIN_DISK_BUS_XEN:
        case VIR_DOMAIN_DISK_BUS_UML:
        case VIR_DOMAIN_DISK_BUS_SATA:
        case VIR_DOMAIN_DISK_BUS_SD:
        case VIR_DOMAIN_DISK_BUS_LAST:
894 895 896 897 898
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                           _("disk bus '%s' cannot be hotplugged."),
                           virDomainDiskBusTypeToString(disk->bus));
        }
        break;
899 900

    case VIR_DOMAIN_DISK_DEVICE_LAST:
901 902 903
        break;
    }

904
 cleanup:
905 906 907 908 909 910
    if (ret != 0)
        ignore_value(qemuRemoveSharedDevice(driver, dev, vm->def->name));
    return ret;
}


911 912 913 914
int
qemuDomainAttachNetDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr net)
915 916
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
917 918
    char **tapfdName = NULL;
    int *tapfd = NULL;
919
    size_t tapfdSize = 0;
920 921
    char **vhostfdName = NULL;
    int *vhostfd = NULL;
922
    size_t vhostfdSize = 0;
923 924
    char *nicstr = NULL;
    char *netstr = NULL;
A
Ansis Atteka 已提交
925
    virNetDevVPortProfilePtr vport = NULL;
926 927
    int ret = -1;
    int vlan;
928
    bool releaseaddr = false;
929
    bool iface_connected = false;
930
    virDomainNetType actualType;
931
    virNetDevBandwidthPtr actualBandwidth;
932
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
933
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
934
    size_t i;
935 936 937 938
    char *charDevAlias = NULL;
    bool charDevPlugged = false;
    bool netdevPlugged = false;
    bool hostPlugged = false;
939

940
    /* preallocate new slot for device */
941
    if (VIR_REALLOC_N(vm->def->nets, vm->def->nnets + 1) < 0)
942
        goto cleanup;
943

944 945 946 947
    /* If appropriate, grab a physical device from the configured
     * network's pool of devices, or resolve bridge device name
     * to the one defined in the network definition.
     */
948
    if (networkAllocateActualDevice(vm->def, net) < 0)
949
        goto cleanup;
950 951

    actualType = virDomainNetGetActualType(net);
952

953
    /* Currently only TAP/macvtap devices supports multiqueue. */
954 955
    if (net->driver.virtio.queues > 0 &&
        !(actualType == VIR_DOMAIN_NET_TYPE_NETWORK ||
956
          actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
957 958
          actualType == VIR_DOMAIN_NET_TYPE_DIRECT ||
          actualType == VIR_DOMAIN_NET_TYPE_ETHERNET)) {
959 960 961 962 963 964
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("Multiqueue network is not supported for: %s"),
                       virDomainNetTypeToString(actualType));
        return -1;
    }

965 966 967
    /* and only TAP devices support nwfilter rules */
    if (net->filter &&
        !(actualType == VIR_DOMAIN_NET_TYPE_NETWORK ||
968 969
          actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
          actualType == VIR_DOMAIN_NET_TYPE_ETHERNET)) {
970 971 972 973 974 975 976
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("filterref is not supported for "
                         "network interfaces of type %s"),
                       virDomainNetTypeToString(actualType));
        return -1;
    }

977 978 979
    if (qemuAssignDeviceNetAlias(vm->def, net, -1) < 0)
        goto cleanup;

980 981 982
    switch (actualType) {
    case VIR_DOMAIN_NET_TYPE_BRIDGE:
    case VIR_DOMAIN_NET_TYPE_NETWORK:
983 984 985
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
986
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
987
            goto cleanup;
988 989 990 991
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
            goto cleanup;
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
992 993
        if (qemuInterfaceBridgeConnect(vm->def, driver, net,
                                       tapfd, &tapfdSize) < 0)
994 995
            goto cleanup;
        iface_connected = true;
996 997
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
998
            goto cleanup;
999 1000 1001
        break;

    case VIR_DOMAIN_NET_TYPE_DIRECT:
1002 1003 1004 1005
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
1006
            goto cleanup;
1007 1008
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
1009
            goto cleanup;
1010
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
1011 1012 1013
        if (qemuInterfaceDirectConnect(vm->def, driver, net,
                                       tapfd, tapfdSize,
                                       VIR_NETDEV_VPORT_PROFILE_OP_CREATE) < 0)
1014 1015
            goto cleanup;
        iface_connected = true;
1016 1017
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
1018
            goto cleanup;
1019 1020 1021
        break;

    case VIR_DOMAIN_NET_TYPE_ETHERNET:
1022 1023 1024 1025
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
1026
            goto cleanup;
1027 1028 1029 1030 1031
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
            goto cleanup;
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
        if (qemuInterfaceEthernetConnect(vm->def, driver, net,
1032
                                         tapfd, tapfdSize) < 0)
1033 1034
            goto cleanup;
        iface_connected = true;
1035 1036
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
1037
            goto cleanup;
1038 1039 1040
        break;

    case VIR_DOMAIN_NET_TYPE_HOSTDEV:
1041 1042 1043 1044 1045 1046 1047 1048 1049 1050 1051
        /* This is really a "smart hostdev", so it should be attached
         * as a hostdev (the hostdev code will reach over into the
         * netdev-specific code as appropriate), then also added to
         * the nets list (see cleanup:) if successful.
         *
         * qemuDomainAttachHostDevice uses a connection to resolve
         * a SCSI hostdev secret, which is not this case, so pass NULL.
         */
        ret = qemuDomainAttachHostDevice(NULL, driver, vm,
                                         virDomainNetGetActualHostdev(net));
        goto cleanup;
1052 1053 1054
        break;

    case VIR_DOMAIN_NET_TYPE_VHOSTUSER:
1055 1056 1057 1058 1059 1060
        if (!qemuDomainSupportsNetdev(vm->def, priv->qemuCaps, net)) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           "%s", _("Netdev support unavailable"));
            goto cleanup;
        }

1061
        if (!(charDevAlias = qemuAliasChardevFromDevAlias(net->info.alias)))
1062 1063 1064 1065
            goto cleanup;
        break;

    case VIR_DOMAIN_NET_TYPE_USER:
1066 1067 1068 1069 1070 1071 1072 1073 1074 1075
    case VIR_DOMAIN_NET_TYPE_SERVER:
    case VIR_DOMAIN_NET_TYPE_CLIENT:
    case VIR_DOMAIN_NET_TYPE_MCAST:
    case VIR_DOMAIN_NET_TYPE_INTERNAL:
    case VIR_DOMAIN_NET_TYPE_UDP:
    case VIR_DOMAIN_NET_TYPE_LAST:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("hotplug of interface type of %s is not implemented yet"),
                       virDomainNetTypeToString(actualType));
        goto cleanup;
1076 1077
    }

1078 1079
    /* Set device online immediately */
    if (qemuInterfaceStartDevice(net) < 0)
1080
        goto cleanup;
1081

1082 1083 1084 1085 1086 1087 1088 1089 1090 1091 1092 1093
    /* Set bandwidth or warn if requested and not supported. */
    actualBandwidth = virDomainNetGetActualBandwidth(net);
    if (actualBandwidth) {
        if (virNetDevSupportBandwidth(actualType)) {
            if (virNetDevBandwidthSet(net->ifname, actualBandwidth, false) < 0)
                goto cleanup;
        } else {
            VIR_WARN("setting bandwidth on interfaces of "
                     "type '%s' is not implemented yet",
                     virDomainNetTypeToString(actualType));
        }
    }
1094

M
Michal Privoznik 已提交
1095 1096 1097 1098 1099 1100
    for (i = 0; i < tapfdSize; i++) {
        if (virSecurityManagerSetTapFDLabel(driver->securityManager,
                                            vm->def, tapfd[i]) < 0)
            goto cleanup;
    }

1101
    if (qemuDomainMachineIsS390CCW(vm->def) &&
1102 1103
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        net->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
1104 1105 1106
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto cleanup;
        if (virDomainCCWAddressAssign(&net->info, ccwaddrs,
J
Ján Tomko 已提交
1107
                                      !net->info.addr.ccw.assigned) < 0)
1108
            goto cleanup;
1109
    } else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390)) {
1110
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
1111 1112
                       _("virtio-s390 net device cannot be hotplugged."));
        goto cleanup;
1113
    } else if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &net->info) < 0) {
1114 1115
        goto cleanup;
    }
1116

1117 1118
    releaseaddr = true;

1119
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1120 1121 1122 1123 1124
        vlan = -1;
    } else {
        vlan = qemuDomainNetVLAN(net);

        if (vlan < 0) {
1125 1126
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("Unable to attach network devices without vlan"));
1127 1128 1129 1130
            goto cleanup;
        }
    }

1131
    if (VIR_ALLOC_N(tapfdName, tapfdSize) < 0 ||
1132
        VIR_ALLOC_N(vhostfdName, vhostfdSize) < 0)
1133 1134 1135
        goto cleanup;

    for (i = 0; i < tapfdSize; i++) {
1136
        if (virAsprintf(&tapfdName[i], "fd-%s%zu", net->info.alias, i) < 0)
1137
            goto cleanup;
1138 1139
    }

1140
    for (i = 0; i < vhostfdSize; i++) {
1141
        if (virAsprintf(&vhostfdName[i], "vhostfd-%s%zu", net->info.alias, i) < 0)
1142
            goto cleanup;
1143 1144
    }

1145
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1146
        if (!(netstr = qemuBuildHostNetStr(net, driver,
1147 1148 1149
                                           ',', -1,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
1150
            goto cleanup;
1151
    } else {
1152
        if (!(netstr = qemuBuildHostNetStr(net, driver,
1153 1154 1155
                                           ' ', vlan,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
1156
            goto cleanup;
1157 1158
    }

1159
    qemuDomainObjEnterMonitor(driver, vm);
1160 1161 1162 1163 1164 1165 1166 1167 1168 1169

    if (actualType == VIR_DOMAIN_NET_TYPE_VHOSTUSER) {
        if (qemuMonitorAttachCharDev(priv->mon, charDevAlias, net->data.vhostuser) < 0) {
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
            virDomainAuditNet(vm, NULL, net, "attach", false);
            goto cleanup;
        }
        charDevPlugged = true;
    }

1170
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1171 1172 1173
        if (qemuMonitorAddNetdev(priv->mon, netstr,
                                 tapfd, tapfdName, tapfdSize,
                                 vhostfd, vhostfdName, vhostfdSize) < 0) {
1174
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1175
            virDomainAuditNet(vm, NULL, net, "attach", false);
1176
            goto try_remove;
1177
        }
1178
        netdevPlugged = true;
1179
    } else {
1180 1181 1182
        if (qemuMonitorAddHostNetwork(priv->mon, netstr,
                                      tapfd, tapfdName, tapfdSize,
                                      vhostfd, vhostfdName, vhostfdSize) < 0) {
1183
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1184
            virDomainAuditNet(vm, NULL, net, "attach", false);
1185
            goto try_remove;
1186
        }
1187
        hostPlugged = true;
1188
    }
1189

1190 1191
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
1192

1193 1194 1195 1196
    for (i = 0; i < tapfdSize; i++)
        VIR_FORCE_CLOSE(tapfd[i]);
    for (i = 0; i < vhostfdSize; i++)
        VIR_FORCE_CLOSE(vhostfd[i]);
1197

1198 1199 1200
    if (!(nicstr = qemuBuildNicDevStr(vm->def, net, vlan, 0,
                                      vhostfdSize, priv->qemuCaps)))
        goto try_remove;
1201

1202
    qemuDomainObjEnterMonitor(driver, vm);
1203 1204 1205 1206
    if (qemuMonitorAddDevice(priv->mon, nicstr) < 0) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        virDomainAuditNet(vm, NULL, net, "attach", false);
        goto try_remove;
1207
    }
1208 1209
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
1210

1211 1212 1213
    /* set link state */
    if (net->linkstate == VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) {
        if (!net->info.alias) {
1214 1215
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device alias not found: cannot set link state to down"));
1216
        } else {
1217
            qemuDomainObjEnterMonitor(driver, vm);
1218

1219
            if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1220
                if (qemuMonitorSetLink(priv->mon, net->info.alias, VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) < 0) {
1221
                    ignore_value(qemuDomainObjExitMonitor(driver, vm));
1222 1223 1224 1225
                    virDomainAuditNet(vm, NULL, net, "attach", false);
                    goto try_remove;
                }
            } else {
1226
                virReportError(VIR_ERR_OPERATION_FAILED, "%s",
1227
                               _("setting of link state not supported: Link is up"));
1228 1229
            }

1230 1231
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
1232 1233 1234 1235
        }
        /* link set to down */
    }

1236
    virDomainAuditNet(vm, NULL, net, "attach", true);
1237 1238 1239

    ret = 0;

1240
 cleanup:
1241 1242 1243
    if (!ret) {
        vm->def->nets[vm->def->nnets++] = net;
    } else {
1244 1245
        if (releaseaddr)
            qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
1246

1247
        if (iface_connected) {
1248
            virDomainConfNWFilterTeardown(net);
1249

1250 1251 1252 1253 1254 1255 1256 1257 1258
            if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_DIRECT) {
                ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                                 net->ifname, &net->mac,
                                 virDomainNetGetActualDirectDev(net),
                                 virDomainNetGetActualDirectMode(net),
                                 virDomainNetGetActualVirtPortProfile(net),
                                 cfg->stateDir));
            }

1259
            vport = virDomainNetGetActualVirtPortProfile(net);
1260 1261 1262 1263 1264 1265 1266 1267 1268
            if (vport) {
                if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_MIDONET) {
                    ignore_value(virNetDevMidonetUnbindPort(vport));
                } else if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH) {
                    ignore_value(virNetDevOpenvswitchRemovePort(
                                     virDomainNetGetActualBridgeName(net),
                                     net->ifname));
                }
            }
1269
        }
A
Ansis Atteka 已提交
1270

1271 1272
        virDomainNetRemoveHostdev(vm->def, net);

1273
        networkReleaseActualDevice(vm->def, net);
1274
    }
1275 1276 1277

    VIR_FREE(nicstr);
    VIR_FREE(netstr);
1278
    for (i = 0; tapfd && i < tapfdSize; i++) {
1279
        VIR_FORCE_CLOSE(tapfd[i]);
1280 1281
        if (tapfdName)
            VIR_FREE(tapfdName[i]);
1282 1283 1284
    }
    VIR_FREE(tapfd);
    VIR_FREE(tapfdName);
1285
    for (i = 0; vhostfd && i < vhostfdSize; i++) {
1286
        VIR_FORCE_CLOSE(vhostfd[i]);
1287 1288
        if (vhostfdName)
            VIR_FREE(vhostfdName[i]);
1289 1290 1291
    }
    VIR_FREE(vhostfd);
    VIR_FREE(vhostfdName);
1292
    VIR_FREE(charDevAlias);
1293
    virObjectUnref(cfg);
1294
    virDomainCCWAddressSetFree(ccwaddrs);
1295 1296 1297

    return ret;

1298
 try_remove:
1299 1300 1301 1302
    if (!virDomainObjIsActive(vm))
        goto cleanup;

    if (vlan < 0) {
1303
        if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1304 1305
            char *netdev_name;
            if (virAsprintf(&netdev_name, "host%s", net->info.alias) < 0)
1306
                goto cleanup;
1307
            qemuDomainObjEnterMonitor(driver, vm);
1308 1309 1310 1311 1312
            if (charDevPlugged &&
                qemuMonitorDetachCharDev(priv->mon, charDevAlias) < 0)
                VIR_WARN("Failed to remove associated chardev %s", charDevAlias);
            if (netdevPlugged &&
                qemuMonitorRemoveNetdev(priv->mon, netdev_name) < 0)
1313 1314
                VIR_WARN("Failed to remove network backend for netdev %s",
                         netdev_name);
1315
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1316 1317
            VIR_FREE(netdev_name);
        } else {
1318
            VIR_WARN("Unable to remove network backend");
1319 1320 1321 1322
        }
    } else {
        char *hostnet_name;
        if (virAsprintf(&hostnet_name, "host%s", net->info.alias) < 0)
1323
            goto cleanup;
1324
        qemuDomainObjEnterMonitor(driver, vm);
1325 1326
        if (hostPlugged &&
            qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0)
1327 1328
            VIR_WARN("Failed to remove network backend for vlan %d, net %s",
                     vlan, hostnet_name);
1329
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
1330 1331 1332 1333 1334 1335
        VIR_FREE(hostnet_name);
    }
    goto cleanup;
}


1336
static int
1337
qemuDomainAttachHostPCIDevice(virQEMUDriverPtr driver,
1338 1339
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
1340 1341 1342 1343 1344 1345
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret;
    char *devstr = NULL;
    int configfd = -1;
    char *configfd_name = NULL;
1346
    bool releaseaddr = false;
1347
    bool teardowncgroup = false;
1348
    bool teardownlabel = false;
1349
    int backend;
1350 1351
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    unsigned int flags = 0;
1352

1353
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs + 1) < 0)
1354
        goto cleanup;
1355

1356 1357
    if (!cfg->relaxedACS)
        flags |= VIR_HOSTDEV_STRICT_ACS_CHECK;
1358
    if (qemuHostdevPreparePCIDevices(driver, vm->def->name, vm->def->uuid,
1359 1360
                                     &hostdev, 1, priv->qemuCaps, flags) < 0)
        goto cleanup;
1361

1362
    /* this could have been changed by qemuHostdevPreparePCIDevices */
1363 1364
    backend = hostdev->source.subsys.u.pci.backend;

1365
    switch ((virDomainHostdevSubsysPCIBackendType) backend) {
1366
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO:
1367 1368 1369 1370 1371 1372
        if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_VFIO_PCI)) {
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("VFIO PCI device assignment is not "
                             "supported by this version of qemu"));
            goto error;
        }
1373 1374
        break;

1375 1376 1377 1378 1379 1380 1381 1382 1383 1384
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_DEFAULT:
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_KVM:
        break;

    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_XEN:
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_TYPE_LAST:
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("QEMU does not support device assignment mode '%s'"),
                       virDomainHostdevSubsysPCIBackendTypeToString(backend));
        goto error;
1385
        break;
1386 1387
    }

1388
    /* Temporarily add the hostdev to the domain definition. This is needed
1389 1390 1391 1392
     * because qemuDomainAdjustMaxMemLock() requires the hostdev to be already
     * part of the domain definition, but other functions like
     * qemuAssignDeviceHostdevAlias() used below expect it *not* to be there.
     * A better way to handle this would be nice */
1393
    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;
1394 1395 1396
    if (qemuDomainAdjustMaxMemLock(vm) < 0) {
        vm->def->hostdevs[--(vm->def->nhostdevs)] = NULL;
        goto error;
1397 1398 1399
    }
    vm->def->hostdevs[--(vm->def->nhostdevs)] = NULL;

1400
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
1401 1402 1403
        goto error;
    teardowncgroup = true;

1404 1405 1406
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto error;
1407 1408
    if (backend != VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO)
        teardownlabel = true;
1409

1410 1411 1412 1413 1414 1415 1416 1417 1418 1419 1420 1421
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
        goto error;
    if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, hostdev->info) < 0)
        goto error;
    releaseaddr = true;
    if (backend != VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_PCI_CONFIGFD)) {
        configfd = qemuOpenPCIConfig(hostdev);
        if (configfd >= 0) {
            if (virAsprintf(&configfd_name, "fd-%s",
                            hostdev->info->alias) < 0)
                goto error;
1422
        }
1423
    }
1424

1425 1426 1427 1428 1429
    if (!virDomainObjIsActive(vm)) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit during hotplug"));
        goto error;
    }
1430

1431 1432 1433
    if (!(devstr = qemuBuildPCIHostdevDevStr(vm->def, hostdev, 0,
                                             configfd_name, priv->qemuCaps)))
        goto error;
1434

1435 1436 1437 1438 1439
    qemuDomainObjEnterMonitor(driver, vm);
    ret = qemuMonitorAddDeviceWithFd(priv->mon, devstr,
                                     configfd, configfd_name);
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto error;
1440

1441
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
1442 1443 1444 1445 1446 1447 1448 1449
    if (ret < 0)
        goto error;

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);
1450
    virObjectUnref(cfg);
1451 1452 1453

    return 0;

1454
 error:
1455 1456
    if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
1457 1458 1459 1460
    if (teardownlabel &&
        virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                              vm->def, hostdev, NULL) < 0)
        VIR_WARN("Unable to restore host device labelling on hotplug fail");
1461

1462 1463
    if (releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
1464

1465
    qemuHostdevReAttachPCIDevices(driver, vm->def->name, &hostdev, 1);
1466 1467 1468 1469 1470

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);

1471
 cleanup:
1472
    virObjectUnref(cfg);
1473 1474 1475 1476
    return -1;
}


1477 1478 1479 1480 1481 1482 1483 1484
static int
qemuDomainGetChardevTLSObjects(virQEMUDriverConfigPtr cfg,
                               qemuDomainObjPrivatePtr priv,
                               virDomainChrSourceDefPtr dev,
                               char *charAlias,
                               virJSONValuePtr *tlsProps,
                               char **tlsAlias)
{
1485 1486
    if (dev->type != VIR_DOMAIN_CHR_TYPE_TCP ||
        dev->data.tcp.haveTLS != VIR_TRISTATE_BOOL_YES)
1487 1488 1489 1490 1491 1492 1493 1494 1495 1496 1497 1498 1499 1500 1501 1502 1503
        return 0;

    if (qemuBuildTLSx509BackendProps(cfg->chardevTLSx509certdir,
                                     dev->data.tcp.listen,
                                     cfg->chardevTLSx509verify,
                                     priv->qemuCaps,
                                     tlsProps) < 0)
        return -1;

    if (!(*tlsAlias = qemuAliasTLSObjFromChardevAlias(charAlias)))
        return -1;
    dev->data.tcp.tlscreds = true;

    return 0;
}


1504
int qemuDomainAttachRedirdevDevice(virQEMUDriverPtr driver,
1505 1506 1507
                                   virDomainObjPtr vm,
                                   virDomainRedirdevDefPtr redirdev)
{
1508
    int ret = -1;
1509 1510
    int rc;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
1511
    qemuDomainObjPrivatePtr priv = vm->privateData;
1512
    virDomainDefPtr def = vm->def;
1513
    char *charAlias = NULL;
1514
    char *devstr = NULL;
1515
    bool chardevAdded = false;
1516 1517 1518
    bool tlsobjAdded = false;
    virJSONValuePtr tlsProps = NULL;
    char *tlsAlias = NULL;
1519
    virErrorPtr orig_err;
1520

1521 1522
    qemuDomainPrepareChardevSourceTLS(redirdev->source, cfg);

1523
    if (qemuAssignDeviceRedirdevAlias(def, redirdev, -1) < 0)
1524 1525
        goto cleanup;

1526
    if (!(charAlias = qemuAliasChardevFromDevAlias(redirdev->info.alias)))
1527 1528
        goto cleanup;

1529
    if (!(devstr = qemuBuildRedirdevDevStr(def, redirdev, priv->qemuCaps)))
1530
        goto cleanup;
1531

1532
    if (VIR_REALLOC_N(def->redirdevs, def->nredirdevs+1) < 0)
1533
        goto cleanup;
1534

1535
    if (qemuDomainGetChardevTLSObjects(cfg, priv, redirdev->source,
1536 1537 1538
                                       charAlias, &tlsProps, &tlsAlias) < 0)
        goto cleanup;

1539
    qemuDomainObjEnterMonitor(driver, vm);
1540 1541 1542 1543 1544 1545 1546 1547 1548
    if (tlsAlias) {
        rc = qemuMonitorAddObject(priv->mon, "tls-creds-x509",
                                  tlsAlias, tlsProps);
        tlsProps = NULL; /* qemuMonitorAddObject consumes */
        if (rc < 0)
            goto exit_monitor;
        tlsobjAdded = true;
    }

1549 1550
    if (qemuMonitorAttachCharDev(priv->mon,
                                 charAlias,
1551
                                 redirdev->source) < 0)
1552 1553
        goto exit_monitor;
    chardevAdded = true;
1554

1555 1556
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
        goto exit_monitor;
1557

1558 1559
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto audit;
1560

1561
    def->redirdevs[def->nredirdevs++] = redirdev;
1562 1563 1564 1565
    ret = 0;
 audit:
    virDomainAuditRedirdev(vm, redirdev, "attach", ret == 0);
 cleanup:
1566 1567
    VIR_FREE(tlsAlias);
    virJSONValueFree(tlsProps);
1568
    VIR_FREE(charAlias);
1569
    VIR_FREE(devstr);
1570
    virObjectUnref(cfg);
1571
    return ret;
1572 1573 1574

 exit_monitor:
    orig_err = virSaveLastError();
1575 1576
    if (tlsobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, tlsAlias));
1577 1578 1579 1580 1581 1582 1583 1584 1585
    /* detach associated chardev on error */
    if (chardevAdded)
        ignore_value(qemuMonitorDetachCharDev(priv->mon, charAlias));
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }
    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    goto audit;
1586 1587
}

1588 1589 1590
static int
qemuDomainChrPreInsert(virDomainDefPtr vmdef,
                       virDomainChrDefPtr chr)
1591 1592 1593 1594 1595 1596 1597 1598 1599 1600 1601 1602 1603 1604
{
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
                       _("attaching serial console is not supported"));
        return -1;
    }

    if (virDomainChrFind(vmdef, chr)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("chardev already exists"));
        return -1;
    }

1605
    if (virDomainChrPreAlloc(vmdef, chr) < 0)
1606 1607 1608 1609 1610
        return -1;

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
1611 1612 1613 1614 1615 1616 1617
    if (vmdef->nserials == 0 && vmdef->nconsoles == 0 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
        if (!vmdef->consoles && VIR_ALLOC(vmdef->consoles) < 0)
            return -1;

        if (VIR_ALLOC(vmdef->consoles[0]) < 0) {
            VIR_FREE(vmdef->consoles);
1618 1619
            return -1;
        }
1620 1621 1622 1623 1624 1625 1626 1627 1628 1629 1630 1631
        vmdef->nconsoles++;
    }
    return 0;
}

static void
qemuDomainChrInsertPreAlloced(virDomainDefPtr vmdef,
                              virDomainChrDefPtr chr)
{
    virDomainChrInsertPreAlloced(vmdef, chr);
    if (vmdef->nserials == 1 && vmdef->nconsoles == 0 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
1632 1633 1634 1635 1636 1637
        vmdef->nconsoles = 1;

        /* Create an console alias for the serial port */
        vmdef->consoles[0]->deviceType = VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE;
        vmdef->consoles[0]->targetType = VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL;
    }
1638 1639 1640 1641 1642 1643 1644 1645 1646 1647 1648 1649 1650 1651
}

static void
qemuDomainChrInsertPreAllocCleanup(virDomainDefPtr vmdef,
                                   virDomainChrDefPtr chr)
{
    /* Remove the stub console added by qemuDomainChrPreInsert */
    if (vmdef->nserials == 0 && vmdef->nconsoles == 1 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
        VIR_FREE(vmdef->consoles[0]);
        VIR_FREE(vmdef->consoles);
        vmdef->nconsoles = 0;
    }
}
1652

1653 1654 1655 1656 1657 1658 1659 1660 1661
int
qemuDomainChrInsert(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    if (qemuDomainChrPreInsert(vmdef, chr) < 0) {
        qemuDomainChrInsertPreAllocCleanup(vmdef, chr);
        return -1;
    }
    qemuDomainChrInsertPreAlloced(vmdef, chr);
1662 1663 1664 1665 1666 1667 1668 1669 1670 1671 1672 1673 1674 1675 1676 1677 1678 1679 1680 1681 1682 1683 1684 1685 1686 1687 1688 1689 1690 1691 1692 1693 1694 1695 1696 1697
    return 0;
}

virDomainChrDefPtr
qemuDomainChrRemove(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    virDomainChrDefPtr ret;
    bool removeCompat;

    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("detaching serial console is not supported"));
        return NULL;
    }

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
    removeCompat = vmdef->nserials && vmdef->nconsoles &&
        vmdef->consoles[0]->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        vmdef->consoles[0]->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL &&
        virDomainChrEquals(vmdef->serials[0], chr);

    if (!(ret = virDomainChrRemove(vmdef, chr))) {
        virReportError(VIR_ERR_INVALID_ARG, "%s",
                       _("device not present in domain configuration"));
            return NULL;
    }

    if (removeCompat)
        VIR_DELETE_ELEMENT(vmdef->consoles, 0, vmdef->nconsoles);

    return ret;
}
1698

1699
static int
1700
qemuDomainAttachChrDeviceAssignAddr(virDomainObjPtr vm,
1701 1702
                                    virDomainChrDefPtr chr)
{
1703 1704
    virDomainDefPtr def = vm->def;
    qemuDomainObjPrivatePtr priv = vm->privateData;
1705 1706 1707 1708 1709 1710
    int ret = -1;
    virDomainVirtioSerialAddrSetPtr vioaddrs = NULL;

    if (!(vioaddrs = virDomainVirtioSerialAddrSetCreateFromDomain(def)))
        goto cleanup;

1711 1712
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_VIRTIO) {
1713
        if (virDomainVirtioSerialAddrAutoAssign(NULL, vioaddrs,
1714
                                                &chr->info, true) < 0)
1715 1716
            goto cleanup;
        ret = 1;
1717 1718 1719 1720

    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL &&
               chr->targetType == VIR_DOMAIN_CHR_SERIAL_TARGET_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &chr->info) < 0)
1721 1722
            goto cleanup;
        ret = 1;
1723

1724 1725 1726
    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL &&
               chr->targetType == VIR_DOMAIN_CHR_SERIAL_TARGET_TYPE_USB) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, &chr->info) < 0)
1727 1728
            goto cleanup;
        ret = 1;
1729

1730 1731
    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CHANNEL &&
               chr->targetType == VIR_DOMAIN_CHR_CHANNEL_TARGET_TYPE_VIRTIO) {
1732
        if (virDomainVirtioSerialAddrAutoAssign(NULL, vioaddrs,
1733
                                                &chr->info, false) < 0)
1734 1735
            goto cleanup;
        ret = 1;
1736 1737
    }

1738 1739 1740
    if (ret == 1)
        goto cleanup;

1741 1742 1743 1744
    if (chr->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_SERIAL ||
        chr->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("Unsupported address type for character device"));
1745
        goto cleanup;
1746 1747
    }

1748 1749 1750 1751 1752
    ret = 0;

 cleanup:
    virDomainVirtioSerialAddrSetFree(vioaddrs);
    return ret;
1753 1754
}

1755 1756 1757 1758
int qemuDomainAttachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
1759
    int ret = -1, rc;
1760
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
1761
    qemuDomainObjPrivatePtr priv = vm->privateData;
1762
    virErrorPtr orig_err;
1763 1764
    virDomainDefPtr vmdef = vm->def;
    char *devstr = NULL;
1765
    virDomainChrSourceDefPtr dev = chr->source;
1766
    char *charAlias = NULL;
1767
    bool chardevAttached = false;
1768 1769 1770
    bool tlsobjAdded = false;
    virJSONValuePtr tlsProps = NULL;
    char *tlsAlias = NULL;
1771
    bool need_release = false;
1772

1773 1774 1775 1776
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CHANNEL &&
        qemuDomainPrepareChannel(chr, priv->channelTargetDir) < 0)
        goto cleanup;

1777 1778
    qemuDomainPrepareChardevSourceTLS(dev, cfg);

1779
    if (qemuAssignDeviceChrAlias(vmdef, chr, -1) < 0)
1780
        goto cleanup;
1781

1782
    if ((rc = qemuDomainAttachChrDeviceAssignAddr(vm, chr)) < 0)
1783 1784 1785
        goto cleanup;
    if (rc == 1)
        need_release = true;
1786

1787
    if (qemuBuildChrDeviceStr(&devstr, vmdef, chr, priv->qemuCaps) < 0)
1788
        goto cleanup;
1789

1790
    if (!(charAlias = qemuAliasChardevFromDevAlias(chr->info.alias)))
1791 1792
        goto cleanup;

1793
    if (qemuDomainChrPreInsert(vmdef, chr) < 0)
1794 1795
        goto cleanup;

1796 1797 1798
    if (qemuDomainGetChardevTLSObjects(cfg, priv, dev, charAlias,
                                       &tlsProps, &tlsAlias) < 0)
        goto cleanup;
1799

1800
    qemuDomainObjEnterMonitor(driver, vm);
1801 1802 1803 1804 1805 1806 1807 1808 1809
    if (tlsAlias) {
        rc = qemuMonitorAddObject(priv->mon, "tls-creds-x509",
                                  tlsAlias, tlsProps);
        tlsProps = NULL; /* qemuMonitorAddObject consumes */
        if (rc < 0)
            goto exit_monitor;
        tlsobjAdded = true;
    }

1810
    if (qemuMonitorAttachCharDev(priv->mon, charAlias, chr->source) < 0)
1811 1812
        goto exit_monitor;
    chardevAttached = true;
1813 1814

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
1815
        goto exit_monitor;
1816

1817 1818
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto audit;
1819

1820
    qemuDomainChrInsertPreAlloced(vmdef, chr);
1821
    ret = 0;
1822 1823
 audit:
    virDomainAuditChardev(vm, NULL, chr, "attach", ret == 0);
1824
 cleanup:
1825
    if (ret < 0 && virDomainObjIsActive(vm))
1826
        qemuDomainChrInsertPreAllocCleanup(vmdef, chr);
1827 1828
    if (ret < 0 && need_release)
        qemuDomainReleaseDeviceAddress(vm, &chr->info, NULL);
1829 1830
    VIR_FREE(tlsAlias);
    virJSONValueFree(tlsProps);
1831 1832
    VIR_FREE(charAlias);
    VIR_FREE(devstr);
1833
    virObjectUnref(cfg);
1834
    return ret;
1835

1836 1837
 exit_monitor:
    orig_err = virSaveLastError();
1838 1839
    if (tlsobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, tlsAlias));
1840
    /* detach associated chardev on error */
1841 1842 1843 1844 1845 1846 1847
    if (chardevAttached)
        qemuMonitorDetachCharDev(priv->mon, charAlias);
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

1848 1849
    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    goto audit;
1850 1851
}

1852 1853 1854 1855 1856 1857

int
qemuDomainAttachRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
1858
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
1859
    qemuDomainObjPrivatePtr priv = vm->privateData;
1860
    virErrorPtr orig_err;
1861 1862 1863
    char *devstr = NULL;
    char *charAlias = NULL;
    char *objAlias = NULL;
1864
    char *tlsAlias = NULL;
1865 1866 1867
    bool releaseaddr = false;
    bool chardevAdded = false;
    bool objAdded = false;
1868
    bool tlsobjAdded = false;
1869
    virJSONValuePtr props = NULL;
1870
    virJSONValuePtr tlsProps = NULL;
1871
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
1872 1873
    const char *type;
    int ret = -1;
1874
    int rv;
1875

1876
    if (qemuAssignDeviceRNGAlias(vm->def, rng) < 0)
1877
        goto cleanup;
1878 1879 1880

    /* preallocate space for the device definition */
    if (VIR_REALLOC_N(vm->def->rngs, vm->def->nrngs + 1) < 0)
1881
        goto cleanup;
1882 1883

    if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE) {
1884
        if (qemuDomainMachineIsS390CCW(vm->def) &&
1885 1886 1887 1888 1889
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
            rng->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        } else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390)) {
            rng->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
        }
1890 1891 1892
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, rng->info, priv->qemuCaps,
                                            rng->source.file))
1893
            goto cleanup;
1894
    }
1895
    releaseaddr = true;
1896 1897 1898 1899

    if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE ||
        rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &rng->info) < 0)
1900
            goto cleanup;
1901
    } else if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
1902 1903 1904
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto cleanup;
        if (virDomainCCWAddressAssign(&rng->info, ccwaddrs,
1905
                                      !rng->info.addr.ccw.assigned) < 0)
1906
            goto cleanup;
1907 1908
    }

1909 1910 1911
    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD)
        qemuDomainPrepareChardevSourceTLS(rng->source.chardev, cfg);

1912 1913 1914 1915 1916 1917 1918 1919 1920 1921
    /* build required metadata */
    if (!(devstr = qemuBuildRNGDevStr(vm->def, rng, priv->qemuCaps)))
        goto cleanup;

    if (qemuBuildRNGBackendProps(rng, priv->qemuCaps, &type, &props) < 0)
        goto cleanup;

    if (virAsprintf(&objAlias, "obj%s", rng->info.alias) < 0)
        goto cleanup;

1922
    if (!(charAlias = qemuAliasChardevFromDevAlias(rng->info.alias)))
1923 1924
        goto cleanup;

1925 1926 1927 1928 1929
    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD &&
        qemuDomainGetChardevTLSObjects(cfg, priv, rng->source.chardev,
                                       charAlias, &tlsProps, &tlsAlias) < 0)
        goto cleanup;

1930 1931
    qemuDomainObjEnterMonitor(driver, vm);

1932 1933 1934 1935 1936 1937 1938 1939 1940
    if (tlsAlias) {
        rv = qemuMonitorAddObject(priv->mon, "tls-creds-x509",
                                  tlsAlias, tlsProps);
        tlsProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
            goto exit_monitor;
        tlsobjAdded = true;
    }

1941 1942 1943
    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD &&
        qemuMonitorAttachCharDev(priv->mon, charAlias,
                                 rng->source.chardev) < 0)
1944 1945
        goto exit_monitor;
    chardevAdded = true;
1946

1947 1948 1949 1950 1951
    rv = qemuMonitorAddObject(priv->mon, type, objAlias, props);
    props = NULL; /* qemuMonitorAddObject consumes */
    if (rv < 0)
        goto exit_monitor;
    objAdded = true;
1952 1953

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
1954
        goto exit_monitor;
1955 1956

    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
1957
        releaseaddr = false;
1958 1959 1960
        goto cleanup;
    }

1961
    VIR_APPEND_ELEMENT_INPLACE(vm->def->rngs, vm->def->nrngs, rng);
1962 1963 1964 1965 1966 1967

    ret = 0;

 audit:
    virDomainAuditRNG(vm, NULL, rng, "attach", ret == 0);
 cleanup:
1968
    virJSONValueFree(tlsProps);
1969
    virJSONValueFree(props);
1970
    if (ret < 0 && releaseaddr)
1971
        qemuDomainReleaseDeviceAddress(vm, &rng->info, NULL);
1972
    VIR_FREE(tlsAlias);
1973 1974 1975
    VIR_FREE(charAlias);
    VIR_FREE(objAlias);
    VIR_FREE(devstr);
1976
    virDomainCCWAddressSetFree(ccwaddrs);
1977
    virObjectUnref(cfg);
1978 1979
    return ret;

1980 1981
 exit_monitor:
    orig_err = virSaveLastError();
1982 1983
    if (tlsobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, tlsAlias));
1984 1985 1986
    if (objAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, objAlias));
    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD && chardevAdded)
1987
        ignore_value(qemuMonitorDetachCharDev(priv->mon, charAlias));
1988 1989 1990
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
1991 1992
    }

1993 1994
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        releaseaddr = false;
1995 1996 1997 1998
    goto audit;
}


1999 2000 2001 2002 2003 2004 2005 2006 2007 2008 2009 2010 2011 2012 2013 2014
/**
 * qemuDomainAttachMemory:
 * @driver: qemu driver data
 * @vm: VM object
 * @mem: Definition of the memory device to be attached. @mem is always consumed
 *
 * Attaches memory device described by @mem to domain @vm.
 *
 * Returns 0 on success -1 on error.
 */
int
qemuDomainAttachMemory(virQEMUDriverPtr driver,
                       virDomainObjPtr vm,
                       virDomainMemoryDefPtr mem)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
2015
    virErrorPtr orig_err;
2016
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
2017
    unsigned long long oldmem = virDomainDefGetMemoryTotal(vm->def);
2018
    unsigned long long newmem = oldmem + mem->size;
2019 2020 2021
    char *devstr = NULL;
    char *objalias = NULL;
    const char *backendType;
2022
    bool objAdded = false;
2023
    virJSONValuePtr props = NULL;
2024
    virObjectEventPtr event;
2025 2026
    int id;
    int ret = -1;
2027
    int rv;
2028

2029 2030 2031
    qemuDomainMemoryDeviceAlignSize(vm->def, mem);

    if (qemuDomainDefValidateMemoryHotplug(vm->def, priv->qemuCaps, mem) < 0)
2032 2033
        goto cleanup;

2034
    if (qemuAssignDeviceMemoryAlias(vm->def, mem) < 0)
2035 2036 2037 2038 2039
        goto cleanup;

    if (virAsprintf(&objalias, "mem%s", mem->info.alias) < 0)
        goto cleanup;

2040
    if (!(devstr = qemuBuildMemoryDeviceStr(mem)))
2041 2042 2043 2044 2045 2046 2047 2048 2049 2050 2051 2052 2053
        goto cleanup;

    if (qemuBuildMemoryBackendStr(mem->size, mem->pagesize,
                                  mem->targetNode, mem->sourceNodes, NULL,
                                  vm->def, priv->qemuCaps, cfg,
                                  &backendType, &props, true) < 0)
        goto cleanup;

    if (virDomainMemoryInsert(vm->def, mem) < 0) {
        virJSONValueFree(props);
        goto cleanup;
    }

2054
    if (qemuDomainAdjustMaxMemLock(vm) < 0) {
2055 2056 2057 2058
        virJSONValueFree(props);
        goto removedef;
    }

2059
    qemuDomainObjEnterMonitor(driver, vm);
2060 2061 2062
    rv = qemuMonitorAddObject(priv->mon, backendType, objalias, props);
    props = NULL; /* qemuMonitorAddObject consumes */
    if (rv < 0)
2063
        goto exit_monitor;
2064
    objAdded = true;
2065

2066
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
2067
        goto exit_monitor;
2068 2069 2070 2071

    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        /* we shouldn't touch mem now, as the def might be freed */
        mem = NULL;
2072
        goto audit;
2073 2074
    }

2075
    event = virDomainEventDeviceAddedNewFromObj(vm, objalias);
2076
    qemuDomainEventQueue(driver, event);
2077

2078 2079
    /* fix the balloon size */
    ignore_value(qemuProcessRefreshBalloonState(driver, vm, QEMU_ASYNC_JOB_NONE));
2080

2081 2082 2083 2084 2085 2086 2087 2088 2089
    /* mem is consumed by vm->def */
    mem = NULL;

    /* this step is best effort, removing the device would be so much trouble */
    ignore_value(qemuDomainUpdateMemoryDeviceInfo(driver, vm,
                                                  QEMU_ASYNC_JOB_NONE));

    ret = 0;

2090 2091
 audit:
    virDomainAuditMemory(vm, oldmem, newmem, "update", ret == 0);
2092 2093 2094 2095 2096 2097 2098
 cleanup:
    virObjectUnref(cfg);
    VIR_FREE(devstr);
    VIR_FREE(objalias);
    virDomainMemoryDefFree(mem);
    return ret;

2099
 exit_monitor:
2100 2101 2102 2103 2104 2105 2106
    orig_err = virSaveLastError();
    if (objAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, objalias));
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }
2107 2108
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        mem = NULL;
2109
        goto audit;
2110 2111
    }

2112
 removedef:
2113 2114 2115 2116 2117
    if ((id = virDomainMemoryFindByDef(vm->def, mem)) >= 0)
        mem = virDomainMemoryRemove(vm->def, id);
    else
        mem = NULL;

2118
    /* reset the mlock limit */
2119
    orig_err = virSaveLastError();
2120
    ignore_value(qemuDomainAdjustMaxMemLock(vm));
2121 2122
    virSetError(orig_err);
    virFreeError(orig_err);
2123

2124
    goto audit;
2125 2126 2127
}


2128
static int
2129
qemuDomainAttachHostUSBDevice(virQEMUDriverPtr driver,
2130 2131
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
2132 2133 2134
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *devstr = NULL;
2135
    bool releaseaddr = false;
2136
    bool added = false;
2137
    bool teardowncgroup = false;
2138
    bool teardownlabel = false;
2139 2140
    int ret = -1;

2141 2142 2143 2144 2145 2146
    if (priv->usbaddrs) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, hostdev->info) < 0)
            goto cleanup;
        releaseaddr = true;
    }

2147
    if (qemuHostdevPrepareUSBDevices(driver, vm->def->name, &hostdev, 1, 0) < 0)
2148 2149 2150
        goto cleanup;

    added = true;
2151

2152
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
2153 2154 2155
        goto cleanup;
    teardowncgroup = true;

2156 2157 2158 2159 2160
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto cleanup;
    teardownlabel = true;

2161 2162 2163 2164
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
        goto cleanup;
    if (!(devstr = qemuBuildUSBHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
        goto cleanup;
2165

2166
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs+1) < 0)
2167
        goto cleanup;
2168

2169
    qemuDomainObjEnterMonitor(driver, vm);
2170
    ret = qemuMonitorAddDevice(priv->mon, devstr);
2171 2172 2173 2174
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        ret = -1;
        goto cleanup;
    }
2175
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
2176
    if (ret < 0)
2177
        goto cleanup;
2178 2179 2180

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

2181
    ret = 0;
2182
 cleanup:
2183 2184 2185 2186 2187 2188 2189
    if (ret < 0) {
        if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
            VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
        if (teardownlabel &&
            virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                                  vm->def, hostdev, NULL) < 0)
            VIR_WARN("Unable to restore host device labelling on hotplug fail");
2190
        if (added)
2191
            qemuHostdevReAttachUSBDevices(driver, vm->def->name, &hostdev, 1);
2192 2193
        if (releaseaddr)
            virDomainUSBAddressRelease(priv->usbaddrs, hostdev->info);
2194
    }
2195
    VIR_FREE(devstr);
2196
    return ret;
2197 2198
}

2199

2200
static int
2201 2202
qemuDomainAttachHostSCSIDevice(virConnectPtr conn,
                               virQEMUDriverPtr driver,
2203 2204 2205
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
2206
    size_t i;
2207 2208
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
2209
    virErrorPtr orig_err;
2210 2211
    char *devstr = NULL;
    char *drvstr = NULL;
2212
    char *drivealias = NULL;
2213
    bool teardowncgroup = false;
2214
    bool teardownlabel = false;
2215
    bool driveAdded = false;
2216

2217
    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_SCSI_GENERIC)) {
2218 2219 2220 2221 2222
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("SCSI passthrough is not supported by this version of qemu"));
        return -1;
    }

2223 2224 2225 2226 2227 2228 2229 2230 2231 2232 2233
    /* Let's make sure the disk has a controller defined and loaded before
     * trying to add it. The controller used by the disk must exist before a
     * qemu command line string is generated.
     *
     * Ensure that the given controller and all controllers with a smaller index
     * exist; there must not be any missing index in between.
     */
    for (i = 0; i <= hostdev->info->addr.drive.controller; i++) {
        if (!qemuDomainFindOrCreateSCSIDiskController(driver, vm, i))
            return -1;
    }
2234

2235
    if (qemuHostdevPrepareSCSIDevices(driver, vm->def->name,
2236
                                      &hostdev, 1)) {
2237
        virDomainHostdevSubsysSCSIPtr scsisrc = &hostdev->source.subsys.u.scsi;
2238 2239 2240 2241 2242 2243 2244 2245
        if (scsisrc->protocol == VIR_DOMAIN_HOSTDEV_SCSI_PROTOCOL_TYPE_ISCSI) {
            virDomainHostdevSubsysSCSIiSCSIPtr iscsisrc = &scsisrc->u.iscsi;
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("Unable to prepare scsi hostdev for iSCSI: %s"),
                           iscsisrc->path);
        } else {
            virDomainHostdevSubsysSCSIHostPtr scsihostsrc = &scsisrc->u.host;
            virReportError(VIR_ERR_INTERNAL_ERROR,
2246
                           _("Unable to prepare scsi hostdev: %s:%u:%u:%llu"),
2247 2248 2249
                           scsihostsrc->adapter, scsihostsrc->bus,
                           scsihostsrc->target, scsihostsrc->unit);
        }
2250 2251 2252
        return -1;
    }

2253
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
2254 2255 2256
        goto cleanup;
    teardowncgroup = true;

2257 2258 2259 2260 2261
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto cleanup;
    teardownlabel = true;

2262
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
2263 2264
        goto cleanup;

J
John Ferlan 已提交
2265
    if (qemuDomainSecretHostdevPrepare(conn, priv, hostdev) < 0)
2266 2267
        goto cleanup;

2268
    if (!(drvstr = qemuBuildSCSIHostdevDrvStr(hostdev)))
2269 2270
        goto cleanup;

2271 2272 2273
    if (!(drivealias = qemuAliasFromHostdev(hostdev)))
        goto cleanup;

2274 2275 2276
    if (!(devstr = qemuBuildSCSIHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
        goto cleanup;

2277
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs + 1) < 0)
2278 2279 2280 2281
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);

2282
    if (qemuMonitorAddDrive(priv->mon, drvstr) < 0)
2283 2284
        goto exit_monitor;
    driveAdded = true;
2285 2286

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
2287
        goto exit_monitor;
2288 2289

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
2290
        goto cleanup;
2291 2292

    virDomainAuditHostdev(vm, hostdev, "attach", true);
2293 2294 2295 2296

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    ret = 0;
2297

2298
 cleanup:
2299
    qemuDomainSecretHostdevDestroy(hostdev);
2300
    if (ret < 0) {
2301
        qemuHostdevReAttachSCSIDevices(driver, vm->def->name, &hostdev, 1);
2302 2303
        if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
            VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
2304 2305 2306 2307
        if (teardownlabel &&
            virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                                  vm->def, hostdev, NULL) < 0)
            VIR_WARN("Unable to restore host device labelling on hotplug fail");
2308
    }
2309
    VIR_FREE(drivealias);
2310 2311 2312
    VIR_FREE(drvstr);
    VIR_FREE(devstr);
    return ret;
2313

2314
 exit_monitor:
2315
    orig_err = virSaveLastError();
2316
    if (driveAdded && qemuMonitorDriveDel(priv->mon, drivealias) < 0) {
2317 2318 2319
        VIR_WARN("Unable to remove drive %s (%s) after failed "
                 "qemuMonitorAddDevice",
                 drvstr, devstr);
2320
    }
2321 2322 2323 2324 2325 2326 2327 2328 2329
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    virDomainAuditHostdev(vm, hostdev, "attach", false);

    goto cleanup;
2330 2331
}

2332 2333 2334 2335 2336 2337

int
qemuDomainAttachHostDevice(virConnectPtr conn,
                           virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainHostdevDefPtr hostdev)
2338 2339
{
    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
2340 2341 2342
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
2343 2344 2345 2346 2347
        return -1;
    }

    switch (hostdev->source.subsys.type) {
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
2348
        if (qemuDomainAttachHostPCIDevice(driver, vm,
2349
                                          hostdev) < 0)
2350 2351 2352 2353
            goto error;
        break;

    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
2354
        if (qemuDomainAttachHostUSBDevice(driver, vm,
2355
                                          hostdev) < 0)
2356 2357 2358
            goto error;
        break;

2359
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
2360
        if (qemuDomainAttachHostSCSIDevice(conn, driver, vm,
2361 2362 2363 2364
                                           hostdev) < 0)
            goto error;
        break;

2365
    default:
2366 2367 2368
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(hostdev->source.subsys.type));
2369 2370 2371 2372 2373
        goto error;
    }

    return 0;

2374
 error:
2375 2376 2377
    return -1;
}

2378
static int
2379
qemuDomainChangeNetBridge(virDomainObjPtr vm,
2380 2381
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
2382 2383
{
    int ret = -1;
2384 2385
    const char *oldbridge = virDomainNetGetActualBridgeName(olddev);
    const char *newbridge = virDomainNetGetActualBridgeName(newdev);
2386

2387 2388
    if (!oldbridge || !newbridge) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s", _("Missing bridge name"));
2389
        goto cleanup;
2390
    }
2391 2392 2393 2394 2395

    VIR_DEBUG("Change bridge for interface %s: %s -> %s",
              olddev->ifname, oldbridge, newbridge);

    if (virNetDevExists(newbridge) != 1) {
2396 2397
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("bridge %s doesn't exist"), newbridge);
2398
        goto cleanup;
2399 2400 2401 2402 2403
    }

    if (oldbridge) {
        ret = virNetDevBridgeRemovePort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, olddev, NULL, "detach", ret == 0);
2404 2405 2406 2407 2408 2409 2410 2411
        if (ret < 0) {
            /* warn but continue - possibly the old network
             * had been destroyed and reconstructed, leaving the
             * tap device orphaned.
             */
            VIR_WARN("Unable to detach device %s from bridge %s",
                     olddev->ifname, oldbridge);
        }
2412 2413 2414
    }

    ret = virNetDevBridgeAddPort(newbridge, olddev->ifname);
2415
    virDomainAuditNet(vm, NULL, newdev, "attach", ret == 0);
2416 2417 2418 2419
    if (ret < 0) {
        ret = virNetDevBridgeAddPort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, NULL, olddev, "attach", ret == 0);
        if (ret < 0) {
2420
            virReportError(VIR_ERR_OPERATION_FAILED,
2421
                           _("unable to recover former state by adding port "
2422
                             "to bridge %s"), oldbridge);
2423
        }
2424
        goto cleanup;
2425
    }
2426 2427
    /* caller will replace entire olddev with newdev in domain nets list */
    ret = 0;
2428
 cleanup:
2429
    return ret;
2430 2431
}

2432
static int
2433
qemuDomainChangeNetFilter(virDomainObjPtr vm,
2434 2435 2436 2437 2438 2439 2440 2441 2442 2443 2444 2445 2446 2447 2448 2449 2450 2451
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
{
    /* make sure this type of device supports filters. */
    switch (virDomainNetGetActualType(newdev)) {
    case VIR_DOMAIN_NET_TYPE_ETHERNET:
    case VIR_DOMAIN_NET_TYPE_BRIDGE:
    case VIR_DOMAIN_NET_TYPE_NETWORK:
        break;
    default:
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("filters not supported on interfaces of type %s"),
                       virDomainNetTypeToString(virDomainNetGetActualType(newdev)));
        return -1;
    }

    virDomainConfNWFilterTeardown(olddev);

2452
    if (newdev->filter &&
2453
        virDomainConfNWFilterInstantiate(vm->def->uuid, newdev) < 0) {
2454 2455 2456 2457 2458 2459 2460
        virErrorPtr errobj;

        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("failed to add new filter rules to '%s' "
                         "- attempting to restore old rules"),
                       olddev->ifname);
        errobj = virSaveLastError();
2461
        ignore_value(virDomainConfNWFilterInstantiate(vm->def->uuid, olddev));
2462 2463 2464 2465 2466 2467 2468
        virSetError(errobj);
        virFreeError(errobj);
        return -1;
    }
    return 0;
}

2469
int qemuDomainChangeNetLinkState(virQEMUDriverPtr driver,
2470 2471 2472 2473 2474 2475 2476 2477
                                 virDomainObjPtr vm,
                                 virDomainNetDefPtr dev,
                                 int linkstate)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;

    if (!dev->info.alias) {
2478 2479
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("can't change link state: device alias not found"));
2480 2481 2482
        return -1;
    }

2483 2484
    VIR_DEBUG("dev: %s, state: %d", dev->info.alias, linkstate);

2485
    qemuDomainObjEnterMonitor(driver, vm);
2486 2487 2488 2489 2490 2491 2492 2493

    ret = qemuMonitorSetLink(priv->mon, dev->info.alias, linkstate);
    if (ret < 0)
        goto cleanup;

    /* modify the device configuration */
    dev->linkstate = linkstate;

2494
 cleanup:
2495 2496
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
2497 2498 2499 2500

    return ret;
}

2501
int
2502
qemuDomainChangeNet(virQEMUDriverPtr driver,
2503 2504
                    virDomainObjPtr vm,
                    virDomainDeviceDefPtr dev)
2505
{
2506
    virDomainNetDefPtr newdev = dev->data.net;
2507
    virDomainNetDefPtr *devslot = NULL;
2508
    virDomainNetDefPtr olddev;
2509
    virDomainNetType oldType, newType;
2510 2511
    bool needReconnect = false;
    bool needBridgeChange = false;
2512
    bool needFilterChange = false;
2513 2514
    bool needLinkStateChange = false;
    bool needReplaceDevDef = false;
2515
    bool needBandwidthSet = false;
2516
    int ret = -1;
2517 2518 2519 2520 2521
    int changeidx = -1;

    if ((changeidx = virDomainNetFindIdx(vm->def, newdev)) < 0)
        goto cleanup;
    devslot = &vm->def->nets[changeidx];
2522

2523
    if (!(olddev = *devslot)) {
2524
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
2525
                       _("cannot find existing network device to modify"));
2526 2527 2528 2529 2530 2531
        goto cleanup;
    }

    oldType = virDomainNetGetActualType(olddev);
    if (oldType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* no changes are possible to a type='hostdev' interface */
2532
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2533 2534 2535 2536 2537 2538 2539 2540 2541 2542 2543 2544 2545 2546 2547 2548 2549 2550 2551 2552 2553 2554
                       _("cannot change config of '%s' network type"),
                       virDomainNetTypeToString(oldType));
        goto cleanup;
    }

    /* Check individual attributes for changes that can't be done to a
     * live netdev. These checks *mostly* go in order of the
     * declarations in virDomainNetDef in order to assure nothing is
     * omitted. (exceptiong where noted in comments - in particular,
     * some things require that a new "actual device" be allocated
     * from the network driver first, but we delay doing that until
     * after we've made as many other checks as possible)
     */

    /* type: this can change (with some restrictions), but the actual
     * type of the new device connection isn't known until after we
     * allocate the "actual" device.
     */

    if (virMacAddrCmp(&olddev->mac, &newdev->mac)) {
        char oldmac[VIR_MAC_STRING_BUFLEN], newmac[VIR_MAC_STRING_BUFLEN];

2555
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2556 2557 2558 2559 2560 2561 2562 2563
                       _("cannot change network interface mac address "
                         "from %s to %s"),
                       virMacAddrFormat(&olddev->mac, oldmac),
                       virMacAddrFormat(&newdev->mac, newmac));
        goto cleanup;
    }

    if (STRNEQ_NULLABLE(olddev->model, newdev->model)) {
2564
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2565 2566 2567 2568
                       _("cannot modify network device model from %s to %s"),
                       olddev->model ? olddev->model : "(default)",
                       newdev->model ? newdev->model : "(default)");
        goto cleanup;
2569 2570
    }

2571 2572 2573 2574
    if (olddev->model && STREQ(olddev->model, "virtio") &&
        (olddev->driver.virtio.name != newdev->driver.virtio.name ||
         olddev->driver.virtio.txmode != newdev->driver.virtio.txmode ||
         olddev->driver.virtio.ioeventfd != newdev->driver.virtio.ioeventfd ||
2575
         olddev->driver.virtio.event_idx != newdev->driver.virtio.event_idx ||
2576 2577 2578 2579 2580 2581 2582
         olddev->driver.virtio.queues != newdev->driver.virtio.queues ||
         olddev->driver.virtio.host.csum != newdev->driver.virtio.host.csum ||
         olddev->driver.virtio.host.gso != newdev->driver.virtio.host.gso ||
         olddev->driver.virtio.host.tso4 != newdev->driver.virtio.host.tso4 ||
         olddev->driver.virtio.host.tso6 != newdev->driver.virtio.host.tso6 ||
         olddev->driver.virtio.host.ecn != newdev->driver.virtio.host.ecn ||
         olddev->driver.virtio.host.ufo != newdev->driver.virtio.host.ufo ||
J
Ján Tomko 已提交
2583
         olddev->driver.virtio.host.mrg_rxbuf != newdev->driver.virtio.host.mrg_rxbuf ||
2584 2585 2586 2587 2588
         olddev->driver.virtio.guest.csum != newdev->driver.virtio.guest.csum ||
         olddev->driver.virtio.guest.tso4 != newdev->driver.virtio.guest.tso4 ||
         olddev->driver.virtio.guest.tso6 != newdev->driver.virtio.guest.tso6 ||
         olddev->driver.virtio.guest.ecn != newdev->driver.virtio.guest.ecn ||
         olddev->driver.virtio.guest.ufo != newdev->driver.virtio.guest.ufo)) {
2589
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2590 2591 2592 2593 2594 2595 2596 2597 2598 2599
                       _("cannot modify virtio network device driver attributes"));
        goto cleanup;
    }

    /* data: this union will be examined later, after allocating new actualdev */
    /* virtPortProfile: will be examined later, after allocating new actualdev */

    if (olddev->tune.sndbuf_specified != newdev->tune.sndbuf_specified ||
        olddev->tune.sndbuf != newdev->tune.sndbuf) {
        needReconnect = true;
2600 2601
    }

2602
    if (STRNEQ_NULLABLE(olddev->script, newdev->script)) {
2603
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2604 2605
                       _("cannot modify network device script attribute"));
        goto cleanup;
2606 2607
    }

2608
    /* ifname: check if it's set in newdev. If not, retain the autogenerated one */
2609
    if (!newdev->ifname && VIR_STRDUP(newdev->ifname, olddev->ifname) < 0)
2610 2611
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->ifname, newdev->ifname)) {
2612
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2613 2614 2615
                       _("cannot modify network device tap name"));
        goto cleanup;
    }
2616

2617 2618 2619 2620 2621 2622 2623 2624 2625 2626 2627
    /* info: if newdev->info is empty, fill it in from olddev,
     * otherwise verify that it matches - nothing is allowed to
     * change. (There is no helper function to do this, so
     * individually check the few feidls of virDomainDeviceInfo that
     * are relevant in this case).
     */
    if (!virDomainDeviceAddressIsValid(&newdev->info,
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) &&
        virDomainDeviceInfoCopy(&newdev->info, &olddev->info) < 0) {
        goto cleanup;
    }
2628
    if (!virPCIDeviceAddressEqual(&olddev->info.addr.pci,
2629
                                  &newdev->info.addr.pci)) {
2630
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2631 2632 2633 2634
                       _("cannot modify network device guest PCI address"));
        goto cleanup;
    }
    /* grab alias from olddev if not set in newdev */
2635 2636
    if (!newdev->info.alias &&
        VIR_STRDUP(newdev->info.alias, olddev->info.alias) < 0)
2637 2638
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->info.alias, newdev->info.alias)) {
2639
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2640 2641 2642 2643
                       _("cannot modify network device alias"));
        goto cleanup;
    }
    if (olddev->info.rombar != newdev->info.rombar) {
2644
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2645 2646 2647 2648
                       _("cannot modify network device rom bar setting"));
        goto cleanup;
    }
    if (STRNEQ_NULLABLE(olddev->info.romfile, newdev->info.romfile)) {
2649
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2650 2651 2652 2653
                       _("cannot modify network rom file"));
        goto cleanup;
    }
    if (olddev->info.bootIndex != newdev->info.bootIndex) {
2654
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2655 2656 2657 2658
                       _("cannot modify network device boot index setting"));
        goto cleanup;
    }
    /* (end of device info checks) */
2659

2660 2661 2662 2663
    if (STRNEQ_NULLABLE(olddev->filter, newdev->filter) ||
        !virNWFilterHashTableEqual(olddev->filterparams, newdev->filterparams)) {
        needFilterChange = true;
    }
2664

2665 2666 2667 2668 2669 2670 2671 2672
    /* bandwidth can be modified, and will be checked later */
    /* vlan can be modified, and will be checked later */
    /* linkstate can be modified */

    /* allocate new actual device to compare to old - we will need to
     * free it if we fail for any reason
     */
    if (newdev->type == VIR_DOMAIN_NET_TYPE_NETWORK &&
2673
        networkAllocateActualDevice(vm->def, newdev) < 0) {
2674 2675 2676 2677 2678 2679 2680
        goto cleanup;
    }

    newType = virDomainNetGetActualType(newdev);

    if (newType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* can't turn it into a type='hostdev' interface */
2681
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2682 2683 2684 2685 2686 2687
                       _("cannot change network interface type to '%s'"),
                       virDomainNetTypeToString(newType));
        goto cleanup;
    }

    if (olddev->type == newdev->type && oldType == newType) {
2688

2689 2690 2691 2692 2693 2694
        /* if type hasn't changed, check the relevant fields for the type */
        switch (newdev->type) {
        case VIR_DOMAIN_NET_TYPE_USER:
            break;

        case VIR_DOMAIN_NET_TYPE_ETHERNET:
2695
            break;
2696

2697 2698 2699
        case VIR_DOMAIN_NET_TYPE_SERVER:
        case VIR_DOMAIN_NET_TYPE_CLIENT:
        case VIR_DOMAIN_NET_TYPE_MCAST:
2700
        case VIR_DOMAIN_NET_TYPE_UDP:
2701 2702 2703 2704 2705 2706 2707 2708 2709 2710 2711 2712 2713 2714 2715 2716 2717 2718 2719 2720 2721 2722 2723 2724 2725 2726 2727 2728 2729 2730 2731 2732 2733
            if (STRNEQ_NULLABLE(olddev->data.socket.address,
                                newdev->data.socket.address) ||
                olddev->data.socket.port != newdev->data.socket.port) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_NETWORK:
            if (STRNEQ(olddev->data.network.name, newdev->data.network.name)) {
                if (virDomainNetGetActualVirtPortProfile(newdev))
                    needReconnect = true;
                else
                    needBridgeChange = true;
            }
            /* other things handled in common code directly below this switch */
            break;

        case VIR_DOMAIN_NET_TYPE_BRIDGE:
            /* all handled in bridge name checked in common code below */
            break;

        case VIR_DOMAIN_NET_TYPE_INTERNAL:
            if (STRNEQ_NULLABLE(olddev->data.internal.name,
                                newdev->data.internal.name)) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_DIRECT:
            /* all handled in common code directly below this switch */
            break;

        default:
2734
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2735 2736 2737
                           _("unable to change config on '%s' network type"),
                           virDomainNetTypeToString(newdev->type));
            break;
2738

2739
        }
2740 2741 2742 2743 2744 2745 2746 2747 2748 2749 2750 2751 2752 2753 2754 2755 2756 2757 2758 2759 2760 2761 2762 2763 2764 2765 2766 2767 2768 2769 2770
    } else {
        /* interface type has changed. There are a few special cases
         * where this can only require a minor (or even no) change,
         * but in most cases we need to do a full reconnection.
         *
         * If we switch (in either direction) between type='bridge'
         * and type='network' (for a traditional managed virtual
         * network that uses a host bridge, i.e. forward
         * mode='route|nat'), we just need to change the bridge.
         */
        if ((oldType == VIR_DOMAIN_NET_TYPE_NETWORK &&
             newType == VIR_DOMAIN_NET_TYPE_BRIDGE) ||
            (oldType == VIR_DOMAIN_NET_TYPE_BRIDGE &&
             newType == VIR_DOMAIN_NET_TYPE_NETWORK)) {

            needBridgeChange = true;

        } else if (oldType == VIR_DOMAIN_NET_TYPE_DIRECT &&
                   newType == VIR_DOMAIN_NET_TYPE_DIRECT) {

            /* this is the case of switching from type='direct' to
             * type='network' for a network that itself uses direct
             * (macvtap) devices. If the physical device and mode are
             * the same, this doesn't require any actual setup
             * change. If the physical device or mode *does* change,
             * that will be caught in the common section below */

        } else {

            /* for all other combinations, we'll need a full reconnect */
            needReconnect = true;
2771 2772

        }
2773
    }
2774

2775 2776 2777 2778 2779 2780 2781 2782 2783 2784 2785
    /* now several things that are in multiple (but not all)
     * different types, and can be safely compared even for those
     * cases where they don't apply to a particular type.
     */
    if (STRNEQ_NULLABLE(virDomainNetGetActualBridgeName(olddev),
                        virDomainNetGetActualBridgeName(newdev))) {
        if (virDomainNetGetActualVirtPortProfile(newdev))
            needReconnect = true;
        else
            needBridgeChange = true;
    }
2786

2787 2788 2789 2790 2791 2792 2793 2794
    if (STRNEQ_NULLABLE(virDomainNetGetActualDirectDev(olddev),
                        virDomainNetGetActualDirectDev(newdev)) ||
        virDomainNetGetActualDirectMode(olddev) != virDomainNetGetActualDirectMode(olddev) ||
        !virNetDevVPortProfileEqual(virDomainNetGetActualVirtPortProfile(olddev),
                                    virDomainNetGetActualVirtPortProfile(newdev)) ||
        !virNetDevVlanEqual(virDomainNetGetActualVlan(olddev),
                            virDomainNetGetActualVlan(newdev))) {
        needReconnect = true;
2795 2796
    }

2797 2798 2799
    if (olddev->linkstate != newdev->linkstate)
        needLinkStateChange = true;

2800 2801 2802 2803
    if (!virNetDevBandwidthEqual(virDomainNetGetActualBandwidth(olddev),
                                 virDomainNetGetActualBandwidth(newdev)))
        needBandwidthSet = true;

2804 2805 2806
    /* FINALLY - actually perform the required actions */

    if (needReconnect) {
2807
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2808 2809 2810
                       _("unable to change config on '%s' network type"),
                       virDomainNetTypeToString(newdev->type));
        goto cleanup;
2811 2812
    }

2813 2814 2815
    if (needBandwidthSet) {
        if (virNetDevBandwidthSet(newdev->ifname,
                                  virDomainNetGetActualBandwidth(newdev),
2816
                                  false) < 0)
2817 2818 2819 2820
            goto cleanup;
        needReplaceDevDef = true;
    }

2821
    if (needBridgeChange) {
2822
        if (qemuDomainChangeNetBridge(vm, olddev, newdev) < 0)
2823 2824 2825
            goto cleanup;
        /* we successfully switched to the new bridge, and we've
         * determined that the rest of newdev is equivalent to olddev,
2826 2827 2828 2829 2830
         * so move newdev into place */
        needReplaceDevDef = true;
    }

    if (needFilterChange) {
2831
        if (qemuDomainChangeNetFilter(vm, olddev, newdev) < 0)
2832 2833 2834 2835
            goto cleanup;
        /* we successfully switched to the new filter, and we've
         * determined that the rest of newdev is equivalent to olddev,
         * so move newdev into place */
2836
        needReplaceDevDef = true;
2837 2838
    }

2839 2840 2841
    if (needLinkStateChange &&
        qemuDomainChangeNetLinkState(driver, vm, olddev, newdev->linkstate) < 0) {
        goto cleanup;
2842 2843
    }

2844 2845 2846 2847
    if (needReplaceDevDef) {
        /* the changes above warrant replacing olddev with newdev in
         * the domain's nets list.
         */
2848 2849 2850

        /* this function doesn't work with HOSTDEV networks yet, thus
         * no need to change the pointer in the hostdev structure */
2851
        networkReleaseActualDevice(vm->def, olddev);
2852 2853 2854 2855 2856 2857 2858 2859
        virDomainNetDefFree(olddev);
        /* move newdev into the nets list, and NULL it out from the
         * virDomainDeviceDef that we were given so that the caller
         * won't delete it on return.
         */
        *devslot = newdev;
        newdev = dev->data.net = NULL;
        dev->type = VIR_DOMAIN_DEVICE_NONE;
2860 2861
    }

2862
    ret = 0;
2863
 cleanup:
2864 2865 2866 2867 2868 2869 2870 2871 2872 2873 2874 2875 2876 2877 2878 2879 2880 2881 2882
    /* When we get here, we will be in one of these two states:
     *
     * 1) newdev has been moved into the domain's list of nets and
     *    newdev set to NULL, and dev->data.net will be NULL (and
     *    dev->type is NONE). olddev will have been completely
     *    released and freed. (aka success) In this case no extra
     *    cleanup is needed.
     *
     * 2) newdev has *not* been moved into the domain's list of nets,
     *    and dev->data.net == newdev (and dev->type == NET). In this *
     *    case, we need to at least release the "actual device" from *
     *    newdev (the caller will free dev->data.net a.k.a. newdev, and
     *    the original olddev is still in used)
     *
     * Note that case (2) isn't necessarily a failure. It may just be
     * that the changes were minor enough that we didn't need to
     * replace the entire device object.
     */
    if (newdev)
2883
        networkReleaseActualDevice(vm->def, newdev);
2884

2885 2886 2887
    return ret;
}

2888 2889 2890
static virDomainGraphicsDefPtr
qemuDomainFindGraphics(virDomainObjPtr vm,
                       virDomainGraphicsDefPtr dev)
2891
{
2892
    size_t i;
2893

2894
    for (i = 0; i < vm->def->ngraphics; i++) {
2895 2896 2897 2898 2899 2900 2901
        if (vm->def->graphics[i]->type == dev->type)
            return vm->def->graphics[i];
    }

    return NULL;
}

2902 2903 2904 2905 2906 2907 2908 2909 2910 2911 2912 2913 2914 2915
int
qemuDomainFindGraphicsIndex(virDomainDefPtr def,
                            virDomainGraphicsDefPtr dev)
{
    size_t i;

    for (i = 0; i < def->ngraphics; i++) {
        if (def->graphics[i]->type == dev->type)
            return i;
    }

    return -1;
}

2916
int
2917
qemuDomainChangeGraphics(virQEMUDriverPtr driver,
2918 2919 2920 2921
                         virDomainObjPtr vm,
                         virDomainGraphicsDefPtr dev)
{
    virDomainGraphicsDefPtr olddev = qemuDomainFindGraphics(vm, dev);
2922
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
2923
    const char *type = virDomainGraphicsTypeToString(dev->type);
2924
    size_t i;
2925
    int ret = -1;
2926 2927

    if (!olddev) {
2928 2929
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("cannot find existing graphics device to modify"));
2930
        goto cleanup;
2931 2932
    }

2933
    if (dev->nListens != olddev->nListens) {
2934 2935 2936
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("cannot change the number of listen addresses "
                         "on '%s' graphics"), type);
2937 2938 2939 2940
        goto cleanup;
    }

    for (i = 0; i < dev->nListens; i++) {
J
Jim Fehlig 已提交
2941
        virDomainGraphicsListenDefPtr newlisten = &dev->listens[i];
2942 2943
        virDomainGraphicsListenDefPtr oldlisten = &olddev->listens[i];

J
Jim Fehlig 已提交
2944
        if (newlisten->type != oldlisten->type) {
2945 2946 2947
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                           _("cannot change the type of listen address "
                             "on '%s' graphics"), type);
2948 2949 2950
            goto cleanup;
        }

2951
        switch (newlisten->type) {
2952
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_ADDRESS:
J
Jim Fehlig 已提交
2953
            if (STRNEQ_NULLABLE(newlisten->address, oldlisten->address)) {
2954 2955 2956
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen address setting "
                                 "on '%s' graphics"), type);
2957 2958
                goto cleanup;
            }
2959

2960 2961 2962
            break;

        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NETWORK:
J
Jim Fehlig 已提交
2963
            if (STRNEQ_NULLABLE(newlisten->network, oldlisten->network)) {
2964 2965 2966
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen address setting "
                                 "on '%s' graphics"), type);
2967 2968
                goto cleanup;
            }
2969

2970 2971
            break;

2972 2973 2974 2975 2976 2977 2978 2979 2980
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_SOCKET:
            if (STRNEQ_NULLABLE(newlisten->socket, oldlisten->socket)) {
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen socket setting "
                                 "on '%s' graphics"), type);
                goto cleanup;
            }
            break;

2981 2982 2983 2984 2985 2986
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NONE:
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_LAST:
            /* nada */
            break;
        }
    }
2987

2988 2989
    switch (dev->type) {
    case VIR_DOMAIN_GRAPHICS_TYPE_VNC:
2990 2991 2992
        if ((olddev->data.vnc.autoport != dev->data.vnc.autoport) ||
            (!dev->data.vnc.autoport &&
             (olddev->data.vnc.port != dev->data.vnc.port))) {
2993
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2994
                           _("cannot change port settings on vnc graphics"));
2995
            goto cleanup;
2996 2997
        }
        if (STRNEQ_NULLABLE(olddev->data.vnc.keymap, dev->data.vnc.keymap)) {
2998
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2999
                           _("cannot change keymap setting on vnc graphics"));
3000
            goto cleanup;
3001 3002
        }

3003 3004 3005
        /* If a password lifetime was, or is set, or action if connected has
         * changed, then we must always run, even if new password matches
         * old password */
3006 3007
        if (olddev->data.vnc.auth.expires ||
            dev->data.vnc.auth.expires ||
3008
            olddev->data.vnc.auth.connected != dev->data.vnc.auth.connected ||
E
Eric Blake 已提交
3009 3010 3011
            STRNEQ_NULLABLE(olddev->data.vnc.auth.passwd,
                            dev->data.vnc.auth.passwd)) {
            VIR_DEBUG("Updating password on VNC server %p %p",
3012
                      dev->data.vnc.auth.passwd, cfg->vncPassword);
E
Eric Blake 已提交
3013 3014 3015
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_VNC,
                                                    &dev->data.vnc.auth,
3016 3017
                                                    cfg->vncPassword,
                                                    QEMU_ASYNC_JOB_NONE);
3018
            if (ret < 0)
3019
                goto cleanup;
3020 3021 3022 3023 3024

            /* Steal the new dev's  char * reference */
            VIR_FREE(olddev->data.vnc.auth.passwd);
            olddev->data.vnc.auth.passwd = dev->data.vnc.auth.passwd;
            dev->data.vnc.auth.passwd = NULL;
3025 3026
            olddev->data.vnc.auth.validTo = dev->data.vnc.auth.validTo;
            olddev->data.vnc.auth.expires = dev->data.vnc.auth.expires;
3027
            olddev->data.vnc.auth.connected = dev->data.vnc.auth.connected;
3028 3029 3030 3031 3032
        } else {
            ret = 0;
        }
        break;

3033
    case VIR_DOMAIN_GRAPHICS_TYPE_SPICE:
3034 3035 3036 3037 3038
        if ((olddev->data.spice.autoport != dev->data.spice.autoport) ||
            (!dev->data.spice.autoport &&
             (olddev->data.spice.port != dev->data.spice.port)) ||
            (!dev->data.spice.autoport &&
             (olddev->data.spice.tlsPort != dev->data.spice.tlsPort))) {
3039
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
3040
                           _("cannot change port settings on spice graphics"));
3041
            goto cleanup;
3042
        }
E
Eric Blake 已提交
3043 3044
        if (STRNEQ_NULLABLE(olddev->data.spice.keymap,
                            dev->data.spice.keymap)) {
3045
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
3046
                            _("cannot change keymap setting on spice graphics"));
3047
            goto cleanup;
3048 3049
        }

3050 3051 3052 3053 3054
        /* We must reset the password if it has changed but also if:
         * - password lifetime is or was set
         * - the requested action has changed
         * - the action is "disconnect"
         */
3055 3056
        if (olddev->data.spice.auth.expires ||
            dev->data.spice.auth.expires ||
3057
            olddev->data.spice.auth.connected != dev->data.spice.auth.connected ||
3058 3059
            dev->data.spice.auth.connected ==
            VIR_DOMAIN_GRAPHICS_AUTH_CONNECTED_DISCONNECT ||
E
Eric Blake 已提交
3060 3061 3062
            STRNEQ_NULLABLE(olddev->data.spice.auth.passwd,
                            dev->data.spice.auth.passwd)) {
            VIR_DEBUG("Updating password on SPICE server %p %p",
3063
                      dev->data.spice.auth.passwd, cfg->spicePassword);
E
Eric Blake 已提交
3064 3065 3066
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_SPICE,
                                                    &dev->data.spice.auth,
3067 3068
                                                    cfg->spicePassword,
                                                    QEMU_ASYNC_JOB_NONE);
E
Eric Blake 已提交
3069

3070
            if (ret < 0)
3071
                goto cleanup;
3072

E
Eric Blake 已提交
3073
            /* Steal the new dev's char * reference */
3074 3075 3076 3077 3078
            VIR_FREE(olddev->data.spice.auth.passwd);
            olddev->data.spice.auth.passwd = dev->data.spice.auth.passwd;
            dev->data.spice.auth.passwd = NULL;
            olddev->data.spice.auth.validTo = dev->data.spice.auth.validTo;
            olddev->data.spice.auth.expires = dev->data.spice.auth.expires;
3079
            olddev->data.spice.auth.connected = dev->data.spice.auth.connected;
3080
        } else {
3081
            VIR_DEBUG("Not updating since password didn't change");
3082 3083
            ret = 0;
        }
E
Eric Blake 已提交
3084
        break;
3085

3086
    default:
3087
        virReportError(VIR_ERR_INTERNAL_ERROR,
3088
                       _("unable to change config on '%s' graphics type"), type);
3089 3090 3091
        break;
    }

3092
 cleanup:
3093
    virObjectUnref(cfg);
3094 3095 3096 3097
    return ret;
}


3098
static int qemuComparePCIDevice(virDomainDefPtr def ATTRIBUTE_UNUSED,
3099
                                virDomainDeviceDefPtr device ATTRIBUTE_UNUSED,
3100
                                virDomainDeviceInfoPtr info1,
3101 3102
                                void *opaque)
{
3103
    virDomainDeviceInfoPtr info2 = opaque;
3104

3105 3106
    if (info1->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI ||
        info2->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)
3107 3108
        return 0;

3109 3110 3111
    if (info1->addr.pci.domain == info2->addr.pci.domain &&
        info1->addr.pci.bus == info2->addr.pci.bus &&
        info1->addr.pci.slot == info2->addr.pci.slot &&
3112
        info1->addr.pci.function != info2->addr.pci.function)
3113 3114 3115 3116 3117 3118 3119 3120 3121 3122 3123 3124
        return -1;
    return 0;
}

static bool qemuIsMultiFunctionDevice(virDomainDefPtr def,
                                      virDomainDeviceInfoPtr dev)
{
    if (virDomainDeviceInfoIterate(def, qemuComparePCIDevice, dev) < 0)
        return true;
    return false;
}

3125

3126
static int
3127 3128 3129 3130 3131
qemuDomainRemoveDiskDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainDiskDefPtr disk)
{
    virDomainDeviceDef dev;
3132
    virObjectEventPtr event;
3133
    size_t i;
3134
    const char *src = virDomainDiskGetSource(disk);
3135 3136
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drivestr;
3137
    char *objAlias = NULL;
3138
    char *encAlias = NULL;
3139 3140 3141 3142

    VIR_DEBUG("Removing disk %s from domain %p %s",
              disk->info.alias, vm, vm->def->name);

3143 3144
    /* build the actual drive id string as the disk->info.alias doesn't
     * contain the QEMU_DRIVE_HOST_PREFIX that is passed to qemu */
3145
    if (!(drivestr = qemuAliasFromDisk(disk)))
3146 3147
        return -1;

3148 3149 3150 3151 3152 3153 3154 3155
    /* Let's look for some markers for a secret object and create an alias
     * object to be used to attempt to delete the object that was created.
     * We cannot just use the disk private secret info since it would have
     * been removed during cleanup of qemuProcessLaunch. Likewise, libvirtd
     * restart wouldn't have them, so no assumption can be made. */
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_OBJECT_SECRET) &&
        qemuDomainSecretDiskCapable(disk->src)) {

3156 3157
        if (!(objAlias =
              qemuDomainGetSecretAESAlias(disk->info.alias, false))) {
3158 3159 3160 3161 3162
            VIR_FREE(drivestr);
            return -1;
        }
    }

3163 3164 3165 3166
    /* Similarly, if this is possible a device using LUKS encryption, we
     * can remove the luks object password too
     */
    if (!virStorageSourceIsEmpty(disk->src) && disk->src->encryption &&
3167
        disk->src->encryption->format == VIR_STORAGE_ENCRYPTION_FORMAT_LUKS) {
3168 3169 3170 3171 3172 3173 3174 3175 3176

        if (!(encAlias =
              qemuDomainGetSecretAESAlias(disk->info.alias, true))) {
            VIR_FREE(objAlias);
            VIR_FREE(drivestr);
            return -1;
        }
    }

3177
    qemuDomainObjEnterMonitor(driver, vm);
3178 3179 3180 3181 3182 3183

    /* If it fails, then so be it - it was a best shot */
    if (objAlias)
        ignore_value(qemuMonitorDelObject(priv->mon, objAlias));
    VIR_FREE(objAlias);

3184 3185 3186 3187 3188
    /* If it fails, then so be it - it was a best shot */
    if (encAlias)
        ignore_value(qemuMonitorDelObject(priv->mon, encAlias));
    VIR_FREE(encAlias);

3189 3190
    qemuMonitorDriveDel(priv->mon, drivestr);
    VIR_FREE(drivestr);
3191 3192
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
3193

3194
    virDomainAuditDisk(vm, disk->src, NULL, "detach", true);
3195

3196
    event = virDomainEventDeviceRemovedNewFromObj(vm, disk->info.alias);
3197
    qemuDomainEventQueue(driver, event);
3198

3199 3200 3201 3202 3203 3204 3205
    for (i = 0; i < vm->def->ndisks; i++) {
        if (vm->def->disks[i] == disk) {
            virDomainDiskRemove(vm->def, i);
            break;
        }
    }

3206
    qemuDomainReleaseDeviceAddress(vm, &disk->info, src);
3207

3208 3209
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
3210
        VIR_WARN("Unable to restore security label on %s", src);
3211 3212

    if (qemuTeardownDiskCgroup(vm, disk) < 0)
3213
        VIR_WARN("Failed to tear down cgroup for disk path %s", src);
3214 3215

    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
3216
        VIR_WARN("Unable to release lock on %s", src);
3217 3218 3219 3220

    dev.type = VIR_DOMAIN_DEVICE_DISK;
    dev.data.disk = disk;
    ignore_value(qemuRemoveSharedDevice(driver, &dev, vm->def->name));
3221 3222
    if (priv->usbaddrs)
        virDomainUSBAddressRelease(priv->usbaddrs, &disk->info);
3223 3224

    virDomainDiskDefFree(disk);
3225
    return 0;
3226 3227 3228
}


3229
static int
3230
qemuDomainRemoveControllerDevice(virQEMUDriverPtr driver,
3231 3232 3233
                                 virDomainObjPtr vm,
                                 virDomainControllerDefPtr controller)
{
3234
    virObjectEventPtr event;
3235 3236 3237 3238 3239
    size_t i;

    VIR_DEBUG("Removing controller %s from domain %p %s",
              controller->info.alias, vm, vm->def->name);

3240
    event = virDomainEventDeviceRemovedNewFromObj(vm, controller->info.alias);
3241
    qemuDomainEventQueue(driver, event);
3242

3243 3244 3245 3246 3247 3248 3249 3250 3251
    for (i = 0; i < vm->def->ncontrollers; i++) {
        if (vm->def->controllers[i] == controller) {
            virDomainControllerRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
    virDomainControllerDefFree(controller);
3252
    return 0;
3253 3254 3255
}


3256 3257 3258 3259 3260 3261
static int
qemuDomainRemoveMemoryDevice(virQEMUDriverPtr driver,
                             virDomainObjPtr vm,
                             virDomainMemoryDefPtr mem)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3262
    unsigned long long oldmem = virDomainDefGetMemoryTotal(vm->def);
3263
    unsigned long long newmem = oldmem - mem->size;
3264 3265 3266 3267 3268 3269 3270 3271
    virObjectEventPtr event;
    char *backendAlias = NULL;
    int rc;
    int idx;

    VIR_DEBUG("Removing memory device %s from domain %p %s",
              mem->info.alias, vm, vm->def->name);

3272 3273
    event = virDomainEventDeviceRemovedNewFromObj(vm, mem->info.alias);
    qemuDomainEventQueue(driver, event);
3274 3275

    if (virAsprintf(&backendAlias, "mem%s", mem->info.alias) < 0)
3276
        return -1;
3277 3278 3279

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelObject(priv->mon, backendAlias);
3280 3281 3282 3283 3284 3285 3286 3287
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        rc = -1;

    VIR_FREE(backendAlias);

    virDomainAuditMemory(vm, oldmem, newmem, "update", rc == 0);
    if (rc < 0)
        return -1;
3288 3289 3290 3291 3292

    if ((idx = virDomainMemoryFindByDef(vm->def, mem)) >= 0)
        virDomainMemoryRemove(vm->def, idx);

    virDomainMemoryDefFree(mem);
3293

3294 3295 3296
    /* fix the balloon size */
    ignore_value(qemuProcessRefreshBalloonState(driver, vm, QEMU_ASYNC_JOB_NONE));

3297
    /* decrease the mlock limit after memory unplug if necessary */
3298
    ignore_value(qemuDomainAdjustMaxMemLock(vm));
3299

3300
    return 0;
3301 3302 3303
}


3304 3305 3306 3307 3308
static void
qemuDomainRemovePCIHostDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
{
3309
    qemuHostdevReAttachPCIDevices(driver, vm->def->name, &hostdev, 1);
3310 3311 3312 3313 3314
    qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
}

static void
qemuDomainRemoveUSBHostDevice(virQEMUDriverPtr driver,
3315
                              virDomainObjPtr vm,
3316 3317
                              virDomainHostdevDefPtr hostdev)
{
3318
    qemuHostdevReAttachUSBDevices(driver, vm->def->name, &hostdev, 1);
3319
    qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
3320 3321 3322 3323 3324 3325 3326
}

static void
qemuDomainRemoveSCSIHostDevice(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
3327
    qemuHostdevReAttachSCSIDevices(driver, vm->def->name, &hostdev, 1);
3328 3329
}

3330
static int
3331 3332 3333 3334
qemuDomainRemoveHostDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainHostdevDefPtr hostdev)
{
3335
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3336
    virDomainNetDefPtr net = NULL;
3337
    virObjectEventPtr event;
3338
    size_t i;
3339 3340
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
J
John Ferlan 已提交
3341
    char *drivealias = NULL;
3342
    bool is_vfio = false;
3343 3344 3345 3346

    VIR_DEBUG("Removing host device %s from domain %p %s",
              hostdev->info->alias, vm, vm->def->name);

3347 3348 3349 3350 3351
    if (hostdev->source.subsys.type == VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI) {
        int backend = hostdev->source.subsys.u.pci.backend;
        is_vfio = backend == VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO;
    }

3352
    if (hostdev->source.subsys.type == VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI) {
J
John Ferlan 已提交
3353
        if (!(drivealias = qemuAliasFromHostdev(hostdev)))
3354 3355 3356
            goto cleanup;

        qemuDomainObjEnterMonitor(driver, vm);
J
John Ferlan 已提交
3357
        qemuMonitorDriveDel(priv->mon, drivealias);
3358 3359
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
            goto cleanup;
3360 3361
    }

3362
    event = virDomainEventDeviceRemovedNewFromObj(vm, hostdev->info->alias);
3363
    qemuDomainEventQueue(driver, event);
3364

3365 3366 3367 3368 3369 3370 3371 3372 3373 3374 3375 3376 3377 3378 3379 3380 3381 3382 3383 3384
    if (hostdev->parent.type == VIR_DOMAIN_DEVICE_NET) {
        net = hostdev->parent.data.net;

        for (i = 0; i < vm->def->nnets; i++) {
            if (vm->def->nets[i] == net) {
                virDomainNetRemove(vm->def, i);
                break;
            }
        }
    }

    for (i = 0; i < vm->def->nhostdevs; i++) {
        if (vm->def->hostdevs[i] == hostdev) {
            virDomainHostdevRemove(vm->def, i);
            break;
        }
    }

    virDomainAuditHostdev(vm, hostdev, "detach", true);

3385 3386 3387 3388
    if (!is_vfio &&
        virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                              vm->def, hostdev, NULL) < 0)
        VIR_WARN("Failed to restore host device labelling");
3389

3390 3391 3392
    if (qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Failed to remove host device cgroup ACL");

3393
    switch ((virDomainHostdevSubsysType) hostdev->source.subsys.type) {
3394 3395
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
        qemuDomainRemovePCIHostDevice(driver, vm, hostdev);
3396 3397 3398 3399
        /* QEMU might no longer need to lock as much memory, eg. we just
         * detached the last VFIO device, so adjust the limit here */
        if (qemuDomainAdjustMaxMemLock(vm) < 0)
            VIR_WARN("Failed to adjust locked memory limit");
3400 3401 3402 3403 3404 3405 3406 3407 3408 3409 3410 3411 3412 3413
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
        qemuDomainRemoveUSBHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
        qemuDomainRemoveSCSIHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_LAST:
        break;
    }

    virDomainHostdevDefFree(hostdev);

    if (net) {
3414
        networkReleaseActualDevice(vm->def, net);
3415 3416
        virDomainNetDefFree(net);
    }
3417

3418 3419 3420
    ret = 0;

 cleanup:
J
John Ferlan 已提交
3421
    VIR_FREE(drivealias);
3422
    virObjectUnref(cfg);
3423
    return ret;
3424 3425 3426
}


3427
static int
3428 3429 3430 3431 3432
qemuDomainRemoveNetDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr net)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3433
    qemuDomainObjPrivatePtr priv = vm->privateData;
3434
    virNetDevVPortProfilePtr vport;
3435
    virObjectEventPtr event;
3436
    char *hostnet_name = NULL;
3437
    char *charDevAlias = NULL;
3438
    size_t i;
3439
    int ret = -1;
3440
    int actualType = virDomainNetGetActualType(net);
3441

3442
    if (actualType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
3443
        /* this function handles all hostdev and netdev cleanup */
3444 3445
        ret = qemuDomainRemoveHostDevice(driver, vm,
                                         virDomainNetGetActualHostdev(net));
3446
        goto cleanup;
3447 3448
    }

3449 3450 3451
    VIR_DEBUG("Removing network interface %s from domain %p %s",
              net->info.alias, vm, vm->def->name);

3452
    if (virAsprintf(&hostnet_name, "host%s", net->info.alias) < 0 ||
3453
        !(charDevAlias = qemuAliasChardevFromDevAlias(net->info.alias)))
3454 3455
        goto cleanup;

3456

3457
    qemuDomainObjEnterMonitor(driver, vm);
3458
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
3459
        if (qemuMonitorRemoveNetdev(priv->mon, hostnet_name) < 0) {
3460 3461
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
3462 3463 3464 3465 3466 3467 3468 3469 3470 3471 3472
            virDomainAuditNet(vm, net, NULL, "detach", false);
            goto cleanup;
        }
    } else {
        int vlan;
        if ((vlan = qemuDomainNetVLAN(net)) < 0 ||
            qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0) {
            if (vlan < 0) {
                virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                               _("unable to determine original VLAN"));
            }
3473 3474
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
3475 3476 3477 3478
            virDomainAuditNet(vm, net, NULL, "detach", false);
            goto cleanup;
        }
    }
3479 3480 3481 3482 3483 3484 3485 3486 3487 3488 3489

    if (actualType == VIR_DOMAIN_NET_TYPE_VHOSTUSER) {
        /* vhostuser has a chardev too */
        if (qemuMonitorDetachCharDev(priv->mon, charDevAlias) < 0) {
            /* well, this is a messy situation. Guest visible PCI device has
             * been removed, netdev too but chardev not. The best seems to be
             * to just ignore the error and carry on.
             */
        }
    }

3490 3491
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3492

3493 3494 3495
    virDomainAuditNet(vm, net, NULL, "detach", true);

    event = virDomainEventDeviceRemovedNewFromObj(vm, net->info.alias);
3496
    qemuDomainEventQueue(driver, event);
3497 3498 3499 3500 3501 3502 3503 3504 3505 3506 3507

    for (i = 0; i < vm->def->nnets; i++) {
        if (vm->def->nets[i] == net) {
            virDomainNetRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
    virDomainConfNWFilterTeardown(net);

3508 3509 3510 3511 3512 3513
    if (cfg->macFilter && (net->ifname != NULL)) {
        ignore_value(ebtablesRemoveForwardAllowIn(driver->ebtables,
                                                  net->ifname,
                                                  &net->mac));
    }

3514
    if (actualType == VIR_DOMAIN_NET_TYPE_DIRECT) {
3515 3516 3517 3518 3519 3520 3521 3522 3523
        ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                         net->ifname, &net->mac,
                         virDomainNetGetActualDirectDev(net),
                         virDomainNetGetActualDirectMode(net),
                         virDomainNetGetActualVirtPortProfile(net),
                         cfg->stateDir));
    }

    vport = virDomainNetGetActualVirtPortProfile(net);
3524 3525 3526 3527 3528 3529 3530 3531 3532
    if (vport) {
        if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_MIDONET) {
            ignore_value(virNetDevMidonetUnbindPort(vport));
        } else if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH) {
            ignore_value(virNetDevOpenvswitchRemovePort(
                             virDomainNetGetActualBridgeName(net),
                             net->ifname));
        }
    }
3533

3534
    networkReleaseActualDevice(vm->def, net);
3535
    virDomainNetDefFree(net);
3536
    ret = 0;
3537 3538

 cleanup:
3539
    virObjectUnref(cfg);
3540
    VIR_FREE(charDevAlias);
3541 3542
    VIR_FREE(hostnet_name);
    return ret;
3543 3544 3545
}


3546
static int
3547
qemuDomainRemoveChrDevice(virQEMUDriverPtr driver,
3548 3549 3550
                          virDomainObjPtr vm,
                          virDomainChrDefPtr chr)
{
3551
    virObjectEventPtr event;
3552
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3553
    char *charAlias = NULL;
3554
    char *tlsAlias = NULL;
3555 3556
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret = -1;
3557
    int rc;
3558

3559 3560 3561
    VIR_DEBUG("Removing character device %s from domain %p %s",
              chr->info.alias, vm, vm->def->name);

3562
    if (!(charAlias = qemuAliasChardevFromDevAlias(chr->info.alias)))
3563 3564
        goto cleanup;

3565 3566 3567 3568 3569
    if (chr->source->type == VIR_DOMAIN_CHR_TYPE_TCP &&
        chr->source->data.tcp.haveTLS == VIR_TRISTATE_BOOL_YES &&
        !(tlsAlias = qemuAliasTLSObjFromChardevAlias(charAlias)))
        goto cleanup;

3570
    qemuDomainObjEnterMonitor(driver, vm);
3571
    rc = qemuMonitorDetachCharDev(priv->mon, charAlias);
3572 3573 3574 3575

    if (tlsAlias && qemuMonitorDelObject(priv->mon, tlsAlias) < 0)
        goto exit_monitor;

3576 3577
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3578

3579 3580 3581 3582 3583
    virDomainAuditChardev(vm, chr, NULL, "detach", rc == 0);

    if (rc < 0)
        goto cleanup;

3584
    event = virDomainEventDeviceRemovedNewFromObj(vm, chr->info.alias);
3585
    qemuDomainEventQueue(driver, event);
3586

3587 3588
    qemuDomainChrRemove(vm->def, chr);
    virDomainChrDefFree(chr);
3589 3590 3591 3592
    ret = 0;

 cleanup:
    VIR_FREE(charAlias);
3593 3594
    VIR_FREE(tlsAlias);
    virObjectUnref(cfg);
3595
    return ret;
3596 3597 3598 3599

 exit_monitor:
    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    goto cleanup;
3600 3601 3602
}


3603 3604 3605 3606 3607 3608 3609 3610 3611 3612 3613 3614 3615 3616 3617 3618 3619 3620 3621
static int
qemuDomainRemoveRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
    virObjectEventPtr event;
    char *charAlias = NULL;
    char *objAlias = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    ssize_t idx;
    int ret = -1;
    int rc;

    VIR_DEBUG("Removing RNG device %s from domain %p %s",
              rng->info.alias, vm, vm->def->name);

    if (virAsprintf(&objAlias, "obj%s", rng->info.alias) < 0)
        goto cleanup;

3622
    if (!(charAlias = qemuAliasChardevFromDevAlias(rng->info.alias)))
3623 3624 3625 3626 3627 3628 3629 3630 3631 3632 3633 3634 3635 3636 3637 3638
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelObject(priv->mon, objAlias);

    if (rc == 0 && rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD)
        ignore_value(qemuMonitorDetachCharDev(priv->mon, charAlias));

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;

    virDomainAuditRNG(vm, rng, NULL, "detach", rc == 0);

    if (rc < 0)
        goto cleanup;

3639 3640
    event = virDomainEventDeviceRemovedNewFromObj(vm, rng->info.alias);
    qemuDomainEventQueue(driver, event);
3641 3642 3643 3644 3645 3646 3647 3648 3649 3650 3651 3652 3653 3654

    if ((idx = virDomainRNGFind(vm->def, rng)) >= 0)
        virDomainRNGRemove(vm->def, idx);
    qemuDomainReleaseDeviceAddress(vm, &rng->info, NULL);
    virDomainRNGDefFree(rng);
    ret = 0;

 cleanup:
    VIR_FREE(charAlias);
    VIR_FREE(objAlias);
    return ret;
}


3655
int
3656 3657 3658 3659
qemuDomainRemoveDevice(virQEMUDriverPtr driver,
                       virDomainObjPtr vm,
                       virDomainDeviceDefPtr dev)
{
3660
    int ret = -1;
3661 3662
    switch ((virDomainDeviceType) dev->type) {
    case VIR_DOMAIN_DEVICE_DISK:
3663
        ret = qemuDomainRemoveDiskDevice(driver, vm, dev->data.disk);
3664 3665
        break;
    case VIR_DOMAIN_DEVICE_CONTROLLER:
3666
        ret = qemuDomainRemoveControllerDevice(driver, vm, dev->data.controller);
3667 3668
        break;
    case VIR_DOMAIN_DEVICE_NET:
3669
        ret = qemuDomainRemoveNetDevice(driver, vm, dev->data.net);
3670 3671
        break;
    case VIR_DOMAIN_DEVICE_HOSTDEV:
3672
        ret = qemuDomainRemoveHostDevice(driver, vm, dev->data.hostdev);
3673 3674 3675
        break;

    case VIR_DOMAIN_DEVICE_CHR:
3676
        ret = qemuDomainRemoveChrDevice(driver, vm, dev->data.chr);
3677
        break;
3678
    case VIR_DOMAIN_DEVICE_RNG:
3679
        ret = qemuDomainRemoveRNGDevice(driver, vm, dev->data.rng);
3680
        break;
3681

3682
    case VIR_DOMAIN_DEVICE_MEMORY:
3683 3684
        ret = qemuDomainRemoveMemoryDevice(driver, vm, dev->data.memory);
        break;
3685

3686 3687 3688 3689 3690 3691 3692 3693 3694 3695 3696 3697 3698
    case VIR_DOMAIN_DEVICE_NONE:
    case VIR_DOMAIN_DEVICE_LEASE:
    case VIR_DOMAIN_DEVICE_FS:
    case VIR_DOMAIN_DEVICE_INPUT:
    case VIR_DOMAIN_DEVICE_SOUND:
    case VIR_DOMAIN_DEVICE_VIDEO:
    case VIR_DOMAIN_DEVICE_WATCHDOG:
    case VIR_DOMAIN_DEVICE_GRAPHICS:
    case VIR_DOMAIN_DEVICE_HUB:
    case VIR_DOMAIN_DEVICE_REDIRDEV:
    case VIR_DOMAIN_DEVICE_SMARTCARD:
    case VIR_DOMAIN_DEVICE_MEMBALLOON:
    case VIR_DOMAIN_DEVICE_NVRAM:
3699
    case VIR_DOMAIN_DEVICE_SHMEM:
3700
    case VIR_DOMAIN_DEVICE_TPM:
3701
    case VIR_DOMAIN_DEVICE_PANIC:
J
Ján Tomko 已提交
3702
    case VIR_DOMAIN_DEVICE_IOMMU:
3703 3704 3705 3706 3707 3708
    case VIR_DOMAIN_DEVICE_LAST:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("don't know how to remove a %s device"),
                       virDomainDeviceTypeToString(dev->type));
        break;
    }
3709
    return ret;
3710 3711 3712 3713
}


static void
3714 3715
qemuDomainMarkDeviceAliasForRemoval(virDomainObjPtr vm,
                                    const char *alias)
3716 3717 3718
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

3719 3720 3721 3722 3723
    memset(&priv->unplug, 0, sizeof(priv->unplug));

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
        return;

3724
    priv->unplug.alias = alias;
3725 3726
}

3727 3728 3729 3730 3731 3732 3733 3734 3735 3736

static void
qemuDomainMarkDeviceForRemoval(virDomainObjPtr vm,
                               virDomainDeviceInfoPtr info)

{
    qemuDomainMarkDeviceAliasForRemoval(vm, info->alias);
}


3737 3738 3739 3740
static void
qemuDomainResetDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3741
    priv->unplug.alias = NULL;
3742 3743 3744
}

/* Returns:
3745 3746
 *  -1 Unplug of the device failed
 *
3747 3748 3749 3750 3751 3752 3753
 *   0 DEVICE_DELETED event is supported and removal of the device did not
 *     finish in qemuDomainRemoveDeviceWaitTime
 *
 *   1 when the caller is responsible for finishing the device removal:
 *      - DEVICE_DELETED event is unsupported
 *      - DEVICE_DELETED event arrived before the timeout time
 *      - we failed to reliably wait for the event and thus use fallback behavior
3754 3755 3756 3757 3758 3759
 */
static int
qemuDomainWaitForDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    unsigned long long until;
3760
    int rc;
3761 3762

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
3763
        return 1;
3764 3765

    if (virTimeMillisNow(&until) < 0)
3766
        return 1;
3767
    until += qemuDomainRemoveDeviceWaitTime;
3768

3769
    while (priv->unplug.alias) {
3770 3771 3772 3773 3774
        if ((rc = virDomainObjWaitUntil(vm, until)) == 1)
            return 0;

        if (rc < 0) {
            VIR_WARN("Failed to wait on unplug condition for domain '%s' "
3775
                     "device '%s'", vm->def->name, priv->unplug.alias);
3776
            return 1;
3777 3778 3779
        }
    }

3780 3781 3782 3783 3784 3785
    if (priv->unplug.status == QEMU_DOMAIN_UNPLUGGING_DEVICE_STATUS_GUEST_REJECTED) {
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("unplug of device was rejected by the guest"));
        return -1;
    }

3786 3787 3788
    return 1;
}

3789 3790 3791 3792 3793 3794 3795
/* Returns:
 *  true    there was a thread waiting for devAlias to be removed and this
 *          thread will take care of finishing the removal
 *  false   the thread that started the removal is already gone and delegate
 *          finishing the removal to a new thread
 */
bool
3796
qemuDomainSignalDeviceRemoval(virDomainObjPtr vm,
3797 3798
                              const char *devAlias,
                              qemuDomainUnpluggingDeviceStatus status)
3799 3800 3801
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

3802
    if (STREQ_NULLABLE(priv->unplug.alias, devAlias)) {
3803
        qemuDomainResetDeviceRemoval(vm);
3804
        priv->unplug.status = status;
3805
        virDomainObjBroadcast(vm);
3806
        return true;
3807
    }
3808
    return false;
3809 3810 3811
}


3812 3813 3814 3815
static int
qemuDomainDetachVirtioDiskDevice(virQEMUDriverPtr driver,
                                 virDomainObjPtr vm,
                                 virDomainDiskDefPtr detach)
3816
{
3817
    int ret = -1;
3818 3819
    qemuDomainObjPrivatePtr priv = vm->privateData;

3820
    if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
3821 3822
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
3823
                       detach->dst);
3824 3825 3826
        goto cleanup;
    }

3827
    if (qemuDomainMachineIsS390CCW(vm->def) &&
3828 3829 3830 3831 3832 3833 3834 3835 3836 3837 3838 3839 3840 3841
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid PCI address"));
            goto cleanup;
        }
3842 3843
    }

3844
    if (!detach->info.alias) {
3845 3846 3847 3848
        if (qemuAssignDeviceDiskAlias(vm->def, detach, priv->qemuCaps) < 0)
            goto cleanup;
    }

3849 3850
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3851
    qemuDomainObjEnterMonitor(driver, vm);
3852 3853
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
3854
            goto cleanup;
3855 3856
        virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
        goto cleanup;
3857
    }
3858 3859
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3860

3861
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
3862
        ret = qemuDomainRemoveDiskDevice(driver, vm, detach);
3863

3864
 cleanup:
3865
    qemuDomainResetDeviceRemoval(vm);
3866 3867 3868
    return ret;
}

3869 3870 3871 3872
static int
qemuDomainDetachDiskDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainDiskDefPtr detach)
3873
{
3874
    int ret = -1;
3875 3876
    qemuDomainObjPrivatePtr priv = vm->privateData;

3877
    if (qemuDomainDiskBlockJobIsActive(detach))
E
Eric Blake 已提交
3878 3879
        goto cleanup;

3880 3881
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3882
    qemuDomainObjEnterMonitor(driver, vm);
3883
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
3884 3885
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
            goto cleanup;
3886
        virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
3887 3888
        goto cleanup;
    }
3889 3890
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3891

3892
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
3893
        ret = qemuDomainRemoveDiskDevice(driver, vm, detach);
3894

3895
 cleanup:
3896
    qemuDomainResetDeviceRemoval(vm);
3897 3898 3899
    return ret;
}

3900 3901 3902 3903 3904 3905
static int
qemuFindDisk(virDomainDefPtr def, const char *dst)
{
    size_t i;

    for (i = 0; i < def->ndisks; i++) {
3906
        if (STREQ(def->disks[i]->dst, dst))
3907 3908 3909 3910 3911 3912 3913 3914 3915 3916 3917 3918 3919 3920 3921 3922 3923 3924 3925 3926 3927 3928 3929 3930 3931 3932 3933 3934 3935 3936 3937 3938 3939 3940 3941 3942 3943 3944 3945 3946 3947 3948 3949 3950 3951
            return i;
    }

    return -1;
}

int
qemuDomainDetachDeviceDiskLive(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainDiskDefPtr disk;
    int ret = -1;
    int idx;

    if ((idx = qemuFindDisk(vm->def, dev->data.disk->dst)) < 0) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("disk %s not found"), dev->data.disk->dst);
        return -1;
    }
    disk = vm->def->disks[idx];

    switch (disk->device) {
    case VIR_DOMAIN_DISK_DEVICE_DISK:
    case VIR_DOMAIN_DISK_DEVICE_LUN:
        if (disk->bus == VIR_DOMAIN_DISK_BUS_VIRTIO)
            ret = qemuDomainDetachVirtioDiskDevice(driver, vm, disk);
        else if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI ||
                 disk->bus == VIR_DOMAIN_DISK_BUS_USB)
            ret = qemuDomainDetachDiskDevice(driver, vm, disk);
        else
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
                           _("This type of disk cannot be hot unplugged"));
        break;
    default:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("disk device type '%s' cannot be detached"),
                       virDomainDiskDeviceTypeToString(disk->device));
        break;
    }

    return ret;
}


3952 3953 3954
static bool qemuDomainDiskControllerIsBusy(virDomainObjPtr vm,
                                           virDomainControllerDefPtr detach)
{
3955
    size_t i;
3956 3957 3958 3959 3960 3961 3962 3963 3964 3965 3966 3967 3968 3969 3970 3971 3972 3973 3974 3975 3976 3977 3978 3979 3980 3981 3982 3983 3984 3985 3986 3987 3988 3989 3990 3991 3992 3993 3994 3995 3996 3997 3998 3999 4000 4001
    virDomainDiskDefPtr disk;

    for (i = 0; i < vm->def->ndisks; i++) {
        disk = vm->def->disks[i];
        if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE)
            /* the disk does not use disk controller */
            continue;

        /* check whether the disk uses this type controller */
        if (disk->bus == VIR_DOMAIN_DISK_BUS_IDE &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_IDE)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_FDC &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_FDC)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (disk->info.addr.drive.controller == detach->idx)
            return true;
    }

    return false;
}

static bool qemuDomainControllerIsBusy(virDomainObjPtr vm,
                                       virDomainControllerDefPtr detach)
{
    switch (detach->type) {
    case VIR_DOMAIN_CONTROLLER_TYPE_IDE:
    case VIR_DOMAIN_CONTROLLER_TYPE_FDC:
    case VIR_DOMAIN_CONTROLLER_TYPE_SCSI:
        return qemuDomainDiskControllerIsBusy(vm, detach);

    case VIR_DOMAIN_CONTROLLER_TYPE_SATA:
    case VIR_DOMAIN_CONTROLLER_TYPE_VIRTIO_SERIAL:
    case VIR_DOMAIN_CONTROLLER_TYPE_CCID:
    default:
        /* libvirt does not support sata controller, and does not support to
         * detach virtio and smart card controller.
         */
        return true;
    }
}

4002 4003 4004
int qemuDomainDetachControllerDevice(virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainDeviceDefPtr dev)
4005
{
4006
    int idx, ret = -1;
4007 4008 4009
    virDomainControllerDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;

4010 4011 4012
    if ((idx = virDomainControllerFind(vm->def,
                                       dev->data.controller->type,
                                       dev->data.controller->idx)) < 0) {
4013
        virReportError(VIR_ERR_OPERATION_FAILED,
4014
                       _("controller %s:%d not found"),
4015 4016
                       virDomainControllerTypeToString(dev->data.controller->type),
                       dev->data.controller->idx);
4017 4018 4019
        goto cleanup;
    }

4020 4021
    detach = vm->def->controllers[idx];

4022 4023 4024 4025 4026 4027
    if (detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI &&
        detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW &&
        detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("device with '%s' address cannot be detached"),
                       virDomainDeviceAddressTypeToString(detach->info.type));
4028 4029 4030
        goto cleanup;
    }

4031 4032 4033 4034 4035 4036 4037 4038 4039
    if (!virDomainDeviceAddressIsValid(&detach->info, detach->info.type)) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("device with invalid '%s' address cannot be detached"),
                       virDomainDeviceAddressTypeToString(detach->info.type));
        goto cleanup;
    }

    if (detach->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI &&
        qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
4040 4041 4042
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
                       dev->data.disk->dst);
4043 4044 4045
        goto cleanup;
    }

4046
    if (qemuDomainControllerIsBusy(vm, detach)) {
4047 4048
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("device cannot be detached: device is busy"));
4049 4050 4051
        goto cleanup;
    }

4052
    if (!detach->info.alias) {
4053
        if (qemuAssignDeviceControllerAlias(vm->def, priv->qemuCaps, detach) < 0)
4054 4055 4056
            goto cleanup;
    }

4057 4058
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

4059
    qemuDomainObjEnterMonitor(driver, vm);
4060 4061 4062
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias)) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        goto cleanup;
4063
    }
4064 4065
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
4066

4067
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4068
        ret = qemuDomainRemoveControllerDevice(driver, vm, detach);
4069

4070
 cleanup:
4071
    qemuDomainResetDeviceRemoval(vm);
4072 4073 4074
    return ret;
}

4075
static int
4076
qemuDomainDetachHostPCIDevice(virQEMUDriverPtr driver,
4077
                              virDomainObjPtr vm,
4078
                              virDomainHostdevDefPtr detach)
4079 4080
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
4081
    virDomainHostdevSubsysPCIPtr pcisrc = &detach->source.subsys.u.pci;
4082
    int ret;
4083

4084
    if (qemuIsMultiFunctionDevice(vm->def, detach->info)) {
4085 4086
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %.4x:%.2x:%.2x.%.1x"),
4087 4088
                       pcisrc->addr.domain, pcisrc->addr.bus,
                       pcisrc->addr.slot, pcisrc->addr.function);
4089
        return -1;
4090 4091
    }

4092
    if (!virDomainDeviceAddressIsValid(detach->info,
4093
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
4094 4095
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a PCI address"));
4096
        return -1;
4097 4098
    }

4099 4100
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

4101
    qemuDomainObjEnterMonitor(driver, vm);
4102
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
4103 4104
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
4105 4106 4107 4108

    return ret;
}

4109
static int
4110
qemuDomainDetachHostUSBDevice(virQEMUDriverPtr driver,
4111
                              virDomainObjPtr vm,
4112
                              virDomainHostdevDefPtr detach)
4113 4114
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
4115
    int ret;
4116

4117
    if (!detach->info->alias) {
4118 4119
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
4120 4121 4122
        return -1;
    }

4123 4124
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

4125
    qemuDomainObjEnterMonitor(driver, vm);
4126
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
4127 4128
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
4129 4130 4131 4132

    return ret;
}

4133
static int
4134
qemuDomainDetachHostSCSIDevice(virQEMUDriverPtr driver,
4135 4136 4137 4138 4139 4140 4141 4142 4143 4144 4145 4146
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr detach)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret = -1;

    if (!detach->info->alias) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
        return -1;
    }

4147 4148
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

4149
    qemuDomainObjEnterMonitor(driver, vm);
4150 4151 4152 4153
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
4154 4155 4156 4157 4158

    return ret;
}

static int
4159
qemuDomainDetachThisHostDevice(virQEMUDriverPtr driver,
4160
                               virDomainObjPtr vm,
4161
                               virDomainHostdevDefPtr detach)
4162
{
4163
    int ret = -1;
4164

4165
    if (!detach->info->alias) {
4166
        if (qemuAssignDeviceHostdevAlias(vm->def, &detach->info->alias, -1) < 0)
4167 4168 4169
            return -1;
    }

4170
    switch (detach->source.subsys.type) {
4171
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
4172
        ret = qemuDomainDetachHostPCIDevice(driver, vm, detach);
4173
        break;
4174
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
4175
        ret = qemuDomainDetachHostUSBDevice(driver, vm, detach);
4176
        break;
4177
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
4178
        ret = qemuDomainDetachHostSCSIDevice(driver, vm, detach);
4179
        break;
4180
    default:
4181 4182 4183
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(detach->source.subsys.type));
4184 4185 4186
        return -1;
    }

4187
    if (ret < 0) {
4188 4189
        if (virDomainObjIsActive(vm))
            virDomainAuditHostdev(vm, detach, "detach", false);
4190 4191
    } else if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1) {
        ret = qemuDomainRemoveHostDevice(driver, vm, detach);
4192
    }
4193

4194 4195
    qemuDomainResetDeviceRemoval(vm);

4196 4197
    return ret;
}
4198

4199
/* search for a hostdev matching dev and detach it */
4200
int qemuDomainDetachHostDevice(virQEMUDriverPtr driver,
4201 4202 4203 4204 4205
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainHostdevDefPtr hostdev = dev->data.hostdev;
    virDomainHostdevSubsysPtr subsys = &hostdev->source.subsys;
4206
    virDomainHostdevSubsysUSBPtr usbsrc = &subsys->u.usb;
4207
    virDomainHostdevSubsysPCIPtr pcisrc = &subsys->u.pci;
4208
    virDomainHostdevSubsysSCSIPtr scsisrc = &subsys->u.scsi;
4209 4210 4211 4212
    virDomainHostdevDefPtr detach = NULL;
    int idx;

    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
4213 4214 4215
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
4216 4217 4218 4219 4220 4221
        return -1;
    }

    idx = virDomainHostdevFind(vm->def, hostdev, &detach);

    if (idx < 0) {
4222
        switch (subsys->type) {
4223
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
4224 4225
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("host pci device %.4x:%.2x:%.2x.%.1x not found"),
4226 4227
                           pcisrc->addr.domain, pcisrc->addr.bus,
                           pcisrc->addr.slot, pcisrc->addr.function);
4228 4229
            break;
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
4230
            if (usbsrc->bus && usbsrc->device) {
4231 4232
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device %03d.%03d not found"),
4233
                               usbsrc->bus, usbsrc->device);
4234
            } else {
4235 4236
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device vendor=0x%.4x product=0x%.4x not found"),
4237
                               usbsrc->vendor, usbsrc->product);
4238 4239
            }
            break;
4240
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI: {
4241 4242 4243 4244 4245 4246 4247 4248 4249 4250
            if (scsisrc->protocol ==
                VIR_DOMAIN_HOSTDEV_SCSI_PROTOCOL_TYPE_ISCSI) {
                virDomainHostdevSubsysSCSIiSCSIPtr iscsisrc = &scsisrc->u.iscsi;
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host scsi iSCSI path %s not found"),
                               iscsisrc->path);
            } else {
                 virDomainHostdevSubsysSCSIHostPtr scsihostsrc =
                     &scsisrc->u.host;
                 virReportError(VIR_ERR_OPERATION_FAILED,
4251
                                _("host scsi device %s:%u:%u.%llu not found"),
4252 4253 4254
                                scsihostsrc->adapter, scsihostsrc->bus,
                                scsihostsrc->target, scsihostsrc->unit);
            }
4255
            break;
4256
        }
4257
        default:
4258 4259
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("unexpected hostdev type %d"), subsys->type);
4260 4261 4262 4263 4264
            break;
        }
        return -1;
    }

4265 4266 4267 4268
    /* If this is a network hostdev, we need to use the higher-level detach
     * function so that mac address / virtualport are reset
     */
    if (detach->parent.type == VIR_DOMAIN_DEVICE_NET)
4269
        return qemuDomainDetachNetDevice(driver, vm, &detach->parent);
4270
    else
4271
        return qemuDomainDetachThisHostDevice(driver, vm, detach);
4272 4273
}

4274
int
4275
qemuDomainDetachNetDevice(virQEMUDriverPtr driver,
4276 4277 4278
                          virDomainObjPtr vm,
                          virDomainDeviceDefPtr dev)
{
4279
    int detachidx, ret = -1;
4280 4281 4282
    virDomainNetDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;

4283
    if ((detachidx = virDomainNetFindIdx(vm->def, dev->data.net)) < 0)
4284
        goto cleanup;
4285

4286
    detach = vm->def->nets[detachidx];
4287

4288
    if (virDomainNetGetActualType(detach) == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
4289
        /* coverity[negative_returns] */
4290
        ret = qemuDomainDetachThisHostDevice(driver, vm,
4291
                                             virDomainNetGetActualHostdev(detach));
4292 4293
        goto cleanup;
    }
4294
    if (qemuDomainMachineIsS390CCW(vm->def) &&
4295 4296 4297 4298 4299 4300 4301 4302 4303 4304 4305 4306 4307 4308
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a PCI address"));
            goto cleanup;
        }
4309

4310 4311 4312 4313 4314 4315
        if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            _("cannot hot unplug multifunction PCI device :%s"),
                            dev->data.disk->dst);
            goto cleanup;
        }
4316 4317
    }

4318
    if (!detach->info.alias) {
4319 4320 4321 4322
        if (qemuAssignDeviceNetAlias(vm->def, detach, -1) < 0)
            goto cleanup;
    }

4323 4324
    if (virDomainNetGetActualBandwidth(detach) &&
        virNetDevSupportBandwidth(virDomainNetGetActualType(detach)) &&
4325 4326 4327 4328
        virNetDevBandwidthClear(detach->ifname) < 0)
        VIR_WARN("cannot clear bandwidth setting for device : %s",
                 detach->ifname);

4329 4330 4331
    /* deactivate the tap/macvtap device on the host, which could also
     * affect the parent device (e.g. macvtap passthrough mode sets
     * the parent device offline)
4332 4333 4334
     */
    ignore_value(qemuInterfaceStopDevice(detach));

4335 4336
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

4337
    qemuDomainObjEnterMonitor(driver, vm);
4338 4339
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
4340
            goto cleanup;
4341 4342
        virDomainAuditNet(vm, detach, NULL, "detach", false);
        goto cleanup;
4343
    }
4344 4345
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
4346

4347
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4348
        ret = qemuDomainRemoveNetDevice(driver, vm, detach);
4349

4350
 cleanup:
4351
    qemuDomainResetDeviceRemoval(vm);
4352 4353 4354
    return ret;
}

4355
int
4356
qemuDomainChangeGraphicsPasswords(virQEMUDriverPtr driver,
4357 4358 4359
                                  virDomainObjPtr vm,
                                  int type,
                                  virDomainGraphicsAuthDefPtr auth,
4360 4361
                                  const char *defaultPasswd,
                                  int asyncJob)
4362 4363 4364
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    time_t now = time(NULL);
4365 4366
    const char *expire;
    char *validTo = NULL;
4367
    const char *connected = NULL;
4368
    const char *password;
4369 4370
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
4371

4372
    if (!auth->passwd && !defaultPasswd) {
4373 4374 4375
        ret = 0;
        goto cleanup;
    }
4376
    password = auth->passwd ? auth->passwd : defaultPasswd;
4377

4378 4379 4380
    if (auth->connected)
        connected = virDomainGraphicsAuthConnectedTypeToString(auth->connected);

4381 4382
    if (qemuDomainObjEnterMonitorAsync(driver, vm, asyncJob) < 0)
        goto cleanup;
4383
    ret = qemuMonitorSetPassword(priv->mon, type, password, connected);
4384 4385 4386

    if (ret == -2) {
        if (type != VIR_DOMAIN_GRAPHICS_TYPE_VNC) {
4387 4388
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Graphics password only supported for VNC"));
4389 4390
            ret = -1;
        } else {
4391
            ret = qemuMonitorSetVNCPassword(priv->mon, password);
4392 4393
        }
    }
4394
    if (ret != 0)
4395
        goto end_job;
4396

4397 4398 4399
    if (password[0] == '\0' ||
        (auth->expires && auth->validTo <= now)) {
        expire = "now";
4400
    } else if (auth->expires) {
4401 4402 4403
        if (virAsprintf(&validTo, "%lu", (unsigned long) auth->validTo) < 0)
            goto end_job;
        expire = validTo;
4404
    } else {
4405
        expire = "never";
4406 4407
    }

4408
    ret = qemuMonitorExpirePassword(priv->mon, type, expire);
4409 4410 4411 4412

    if (ret == -2) {
        /* XXX we could fake this with a timer */
        if (auth->expires) {
4413 4414
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Expiry of passwords is not supported"));
4415
            ret = -1;
4416 4417
        } else {
            ret = 0;
4418 4419 4420
        }
    }

4421
 end_job:
4422 4423
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
4424
 cleanup:
4425
    VIR_FREE(validTo);
4426
    virObjectUnref(cfg);
4427 4428
    return ret;
}
4429

4430
int qemuDomainAttachLease(virQEMUDriverPtr driver,
4431 4432 4433
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
4434 4435 4436
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);

4437
    if (virDomainLeaseInsertPreAlloc(vm->def) < 0)
4438
        goto cleanup;
4439

4440
    if (virDomainLockLeaseAttach(driver->lockManager, cfg->uri,
4441
                                 vm, lease) < 0) {
4442
        virDomainLeaseInsertPreAlloced(vm->def, NULL);
4443
        goto cleanup;
4444 4445 4446
    }

    virDomainLeaseInsertPreAlloced(vm->def, lease);
4447 4448
    ret = 0;

4449
 cleanup:
4450 4451
    virObjectUnref(cfg);
    return ret;
4452 4453
}

4454
int qemuDomainDetachLease(virQEMUDriverPtr driver,
4455 4456 4457
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
4458
    virDomainLeaseDefPtr det_lease;
4459
    int idx;
4460

4461
    if ((idx = virDomainLeaseIndex(vm->def, lease)) < 0) {
4462 4463 4464
        virReportError(VIR_ERR_INVALID_ARG,
                       _("Lease %s in lockspace %s does not exist"),
                       lease->key, NULLSTR(lease->lockspace));
4465 4466 4467 4468 4469 4470
        return -1;
    }

    if (virDomainLockLeaseDetach(driver->lockManager, vm, lease) < 0)
        return -1;

4471
    det_lease = virDomainLeaseRemoveAt(vm->def, idx);
4472
    virDomainLeaseDefFree(det_lease);
4473 4474
    return 0;
}
4475 4476 4477 4478 4479 4480 4481 4482 4483 4484 4485 4486 4487 4488

int qemuDomainDetachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainDefPtr vmdef = vm->def;
    virDomainChrDefPtr tmpChr;
    char *devstr = NULL;

    if (!(tmpChr = virDomainChrFind(vmdef, chr))) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
4489
        goto cleanup;
4490 4491
    }

P
Pavel Hrdina 已提交
4492
    if (!tmpChr->info.alias && qemuAssignDeviceChrAlias(vmdef, tmpChr, -1) < 0)
4493
        goto cleanup;
P
Pavel Hrdina 已提交
4494 4495 4496

    sa_assert(tmpChr->info.alias);

4497
    if (qemuBuildChrDeviceStr(&devstr, vmdef, chr, priv->qemuCaps) < 0)
4498
        goto cleanup;
4499

4500 4501
    qemuDomainMarkDeviceForRemoval(vm, &tmpChr->info);

4502
    qemuDomainObjEnterMonitor(driver, vm);
4503 4504 4505 4506
    if (devstr && qemuMonitorDelDevice(priv->mon, tmpChr->info.alias) < 0) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        goto cleanup;
    }
4507 4508
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
4509

4510
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1) {
4511
        qemuDomainReleaseDeviceAddress(vm, &tmpChr->info, NULL);
4512
        ret = qemuDomainRemoveChrDevice(driver, vm, tmpChr);
4513 4514
    }

4515
 cleanup:
4516
    qemuDomainResetDeviceRemoval(vm);
4517 4518 4519
    VIR_FREE(devstr);
    return ret;
}
4520 4521 4522 4523 4524 4525 4526 4527 4528 4529 4530 4531 4532 4533 4534 4535 4536 4537 4538 4539 4540 4541 4542 4543 4544 4545 4546 4547 4548 4549 4550 4551 4552 4553


int
qemuDomainDetachRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    ssize_t idx;
    virDomainRNGDefPtr tmpRNG;
    int rc;
    int ret = -1;

    if ((idx = virDomainRNGFind(vm->def, rng) < 0)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return -1;
    }

    tmpRNG = vm->def->rngs[idx];

    if (!tmpRNG->info.alias) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("alias not set for RNG device"));
        return -1;
    }

    qemuDomainMarkDeviceForRemoval(vm, &tmpRNG->info);

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelDevice(priv->mon, tmpRNG->info.alias);
    if (qemuDomainObjExitMonitor(driver, vm) || rc < 0)
        goto cleanup;

4554
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4555 4556 4557 4558 4559 4560
        ret = qemuDomainRemoveRNGDevice(driver, vm, tmpRNG);

 cleanup:
    qemuDomainResetDeviceRemoval(vm);
    return ret;
}
4561 4562 4563 4564 4565 4566 4567 4568 4569 4570 4571 4572 4573


int
qemuDomainDetachMemoryDevice(virQEMUDriverPtr driver,
                             virDomainObjPtr vm,
                             virDomainMemoryDefPtr memdef)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainMemoryDefPtr mem;
    int idx;
    int rc;
    int ret = -1;

4574
    qemuDomainMemoryDeviceAlignSize(vm->def, memdef);
4575 4576 4577 4578 4579 4580 4581 4582 4583 4584 4585 4586 4587 4588 4589 4590 4591 4592 4593 4594 4595 4596

    if ((idx = virDomainMemoryFindByDef(vm->def, memdef)) < 0) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return -1;
    }

    mem = vm->def->mems[idx];

    if (!mem->info.alias) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("alias for the memory device was not found"));
        return -1;
    }

    qemuDomainMarkDeviceForRemoval(vm, &mem->info);

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelDevice(priv->mon, mem->info.alias);
    if (qemuDomainObjExitMonitor(driver, vm) < 0 || rc < 0)
        goto cleanup;

4597
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4598 4599 4600 4601 4602 4603
        ret = qemuDomainRemoveMemoryDevice(driver, vm, mem);

 cleanup:
    qemuDomainResetDeviceRemoval(vm);
    return ret;
}
4604 4605 4606 4607 4608 4609 4610 4611 4612 4613 4614 4615 4616 4617 4618 4619 4620 4621 4622 4623 4624 4625 4626 4627 4628 4629 4630 4631 4632 4633 4634 4635 4636 4637 4638 4639 4640 4641 4642 4643 4644 4645 4646 4647 4648 4649 4650 4651 4652 4653 4654 4655 4656 4657 4658 4659 4660 4661 4662 4663 4664 4665 4666 4667 4668 4669 4670 4671 4672 4673 4674 4675 4676 4677 4678 4679 4680 4681 4682 4683 4684 4685 4686 4687 4688 4689 4690 4691 4692 4693 4694 4695 4696 4697 4698 4699 4700 4701 4702 4703 4704 4705 4706 4707 4708 4709 4710 4711


static int
qemuDomainRemoveVcpu(virQEMUDriverPtr driver,
                     virDomainObjPtr vm,
                     unsigned int vcpu)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainVcpuDefPtr vcpuinfo = virDomainDefGetVcpu(vm->def, vcpu);
    qemuDomainVcpuPrivatePtr vcpupriv = QEMU_DOMAIN_VCPU_PRIVATE(vcpuinfo);
    int oldvcpus = virDomainDefGetVcpus(vm->def);
    unsigned int nvcpus = vcpupriv->vcpus;
    size_t i;

    if (qemuDomainRefreshVcpuInfo(driver, vm, QEMU_ASYNC_JOB_NONE, false) < 0)
        return -1;

    /* validation requires us to set the expected state prior to calling it */
    for (i = vcpu; i < vcpu + nvcpus; i++) {
        vcpuinfo = virDomainDefGetVcpu(vm->def, i);
        vcpuinfo->online = false;
    }

    if (qemuDomainValidateVcpuInfo(vm) < 0) {
        /* rollback vcpu count if the setting has failed */
        virDomainAuditVcpu(vm, oldvcpus, oldvcpus - nvcpus, "update", false);

        for (i = vcpu; i < vcpu + nvcpus; i++) {
            vcpuinfo = virDomainDefGetVcpu(vm->def, i);
            vcpuinfo->online = true;
        }
        return -1;
    }

    virDomainAuditVcpu(vm, oldvcpus, oldvcpus - nvcpus, "update", true);

    for (i = vcpu; i < vcpu + nvcpus; i++) {
        vcpuinfo = virDomainDefGetVcpu(vm->def, i);
        if (virCgroupDelThread(priv->cgroup, VIR_CGROUP_THREAD_VCPU, i) < 0)
            return -1;
    }

    return 0;
}


void
qemuDomainRemoveVcpuAlias(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          const char *alias)
{
    virDomainVcpuDefPtr vcpu;
    qemuDomainVcpuPrivatePtr vcpupriv;
    size_t i;

    for (i = 0; i < virDomainDefGetVcpusMax(vm->def); i++) {
        vcpu = virDomainDefGetVcpu(vm->def, i);
        vcpupriv = QEMU_DOMAIN_VCPU_PRIVATE(vcpu);

        if (STREQ_NULLABLE(alias, vcpupriv->alias)) {
            qemuDomainRemoveVcpu(driver, vm, i);
            return;
        }
    }
}


int
qemuDomainHotplugDelVcpu(virQEMUDriverPtr driver,
                         virDomainObjPtr vm,
                         unsigned int vcpu)
{
    virDomainVcpuDefPtr vcpuinfo = virDomainDefGetVcpu(vm->def, vcpu);
    qemuDomainVcpuPrivatePtr vcpupriv = QEMU_DOMAIN_VCPU_PRIVATE(vcpuinfo);
    int oldvcpus = virDomainDefGetVcpus(vm->def);
    unsigned int nvcpus = vcpupriv->vcpus;
    int rc;

    if (!vcpupriv->alias) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("vcpu '%u' can't be unplugged"), vcpu);
        return -1;
    }

    qemuDomainMarkDeviceAliasForRemoval(vm, vcpupriv->alias);

    qemuDomainObjEnterMonitor(driver, vm);

    rc = qemuMonitorDelDevice(qemuDomainGetMonitor(vm), vcpupriv->alias);

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;

    if (rc < 0) {
        virDomainAuditVcpu(vm, oldvcpus, oldvcpus - nvcpus, "update", false);
        return -1;
    }

    if ((rc = qemuDomainWaitForDeviceRemoval(vm)) <= 0) {
        if (rc == 0)
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("vcpu unplug request timed out"));

        return -1;
    }

    return qemuDomainRemoveVcpu(driver, vm, vcpu);
}