lxc_driver.c 79.1 KB
Newer Older
D
Daniel Veillard 已提交
1
/*
2
 * Copyright (C) 2010-2011 Red Hat, Inc.
D
Daniel Veillard 已提交
3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26
 * Copyright IBM Corp. 2008
 *
 * lxc_driver.c: linux container driver functions
 *
 * Authors:
 *  David L. Leskovec <dlesko at linux.vnet.ibm.com>
 *
 * This library is free software; you can redistribute it and/or
 * modify it under the terms of the GNU Lesser General Public
 * License as published by the Free Software Foundation; either
 * version 2.1 of the License, or (at your option) any later version.
 *
 * This library is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 * Lesser General Public License for more details.
 *
 * You should have received a copy of the GNU Lesser General Public
 * License along with this library; if not, write to the Free Software
 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
 */

#include <config.h>

27
#include <fcntl.h>
D
Daniel Veillard 已提交
28 29 30 31
#include <sched.h>
#include <sys/utsname.h>
#include <string.h>
#include <sys/types.h>
32 33 34
#include <sys/socket.h>
#include <sys/un.h>
#include <sys/poll.h>
D
Daniel Veillard 已提交
35 36 37
#include <unistd.h>
#include <wait.h>

38
#include "virterror_internal.h"
39
#include "logging.h"
40
#include "datatypes.h"
D
Daniel Veillard 已提交
41
#include "lxc_conf.h"
42
#include "lxc_container.h"
D
Daniel Veillard 已提交
43
#include "lxc_driver.h"
44
#include "memory.h"
45
#include "util.h"
46 47
#include "bridge.h"
#include "veth.h"
48
#include "event.h"
49
#include "nodeinfo.h"
50
#include "uuid.h"
51
#include "stats_linux.h"
52
#include "hooks.h"
53
#include "files.h"
54
#include "fdstream.h"
55

D
Daniel Veillard 已提交
56

57 58
#define VIR_FROM_THIS VIR_FROM_LXC

59 60
#define START_POSTFIX ": starting up\n"

61 62
#define LXC_NB_MEM_PARAM  3

63 64 65 66 67 68 69 70
typedef struct _lxcDomainObjPrivate lxcDomainObjPrivate;
typedef lxcDomainObjPrivate *lxcDomainObjPrivatePtr;
struct _lxcDomainObjPrivate {
    int monitor;
    int monitorWatch;
};


71
static int lxcStartup(int privileged);
72
static int lxcShutdown(void);
73
static lxc_driver_t *lxc_driver = NULL;
D
Daniel Veillard 已提交
74 75 76

/* Functions */

77 78
static void lxcDriverLock(lxc_driver_t *driver)
{
79
    virMutexLock(&driver->lock);
80 81 82
}
static void lxcDriverUnlock(lxc_driver_t *driver)
{
83
    virMutexUnlock(&driver->lock);
84 85
}

86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106
static void *lxcDomainObjPrivateAlloc(void)
{
    lxcDomainObjPrivatePtr priv;

    if (VIR_ALLOC(priv) < 0)
        return NULL;

    priv->monitor = -1;
    priv->monitorWatch = -1;

    return priv;
}

static void lxcDomainObjPrivateFree(void *data)
{
    lxcDomainObjPrivatePtr priv = data;

    VIR_FREE(priv);
}


107 108 109 110
static void lxcDomainEventFlush(int timer, void *opaque);
static void lxcDomainEventQueue(lxc_driver_t *driver,
                                virDomainEventPtr event);

111

D
Daniel Veillard 已提交
112 113 114 115 116
static virDrvOpenStatus lxcOpen(virConnectPtr conn,
                                virConnectAuthPtr auth ATTRIBUTE_UNUSED,
                                int flags ATTRIBUTE_UNUSED)
{
    /* Verify uri was specified */
117
    if (conn->uri == NULL) {
118 119
        if (lxc_driver == NULL)
            return VIR_DRV_OPEN_DECLINED;
120

121 122
        conn->uri = xmlParseURI("lxc:///");
        if (!conn->uri) {
123
            virReportOOMError();
124 125
            return VIR_DRV_OPEN_ERROR;
        }
126 127 128 129 130 131 132 133 134 135
    } else {
        if (conn->uri->scheme == NULL ||
            STRNEQ(conn->uri->scheme, "lxc"))
            return VIR_DRV_OPEN_DECLINED;

        /* Leave for remote driver */
        if (conn->uri->server != NULL)
            return VIR_DRV_OPEN_DECLINED;

        /* If path isn't '/' then they typoed, tell them correct path */
136 137
        if (conn->uri->path != NULL &&
            STRNEQ(conn->uri->path, "/")) {
138
            lxcError(VIR_ERR_INTERNAL_ERROR,
139
                     _("Unexpected LXC URI path '%s', try lxc:///"),
140 141 142
                     conn->uri->path);
            return VIR_DRV_OPEN_ERROR;
        }
D
Daniel Veillard 已提交
143

144 145
        /* URI was good, but driver isn't active */
        if (lxc_driver == NULL) {
146
            lxcError(VIR_ERR_INTERNAL_ERROR,
147
                     "%s", _("lxc state driver is not active"));
148 149 150
            return VIR_DRV_OPEN_ERROR;
        }
    }
151

152
    conn->privateData = lxc_driver;
D
Daniel Veillard 已提交
153 154 155 156 157 158

    return VIR_DRV_OPEN_SUCCESS;
}

static int lxcClose(virConnectPtr conn)
{
159 160 161 162 163 164
    lxc_driver_t *driver = conn->privateData;

    lxcDriverLock(driver);
    virDomainEventCallbackListRemoveConn(conn, driver->domainEventCallbacks);
    lxcDriverUnlock(driver);

165 166
    conn->privateData = NULL;
    return 0;
D
Daniel Veillard 已提交
167 168
}

169 170 171 172 173 174 175 176 177 178 179 180 181 182 183

static int lxcIsSecure(virConnectPtr conn ATTRIBUTE_UNUSED)
{
    /* Trivially secure, since always inside the daemon */
    return 1;
}


static int lxcIsEncrypted(virConnectPtr conn ATTRIBUTE_UNUSED)
{
    /* Not encrypted, but remote driver takes care of that */
    return 0;
}


184 185 186 187 188 189
static char *lxcGetCapabilities(virConnectPtr conn) {
    lxc_driver_t *driver = conn->privateData;
    char *xml;

    lxcDriverLock(driver);
    if ((xml = virCapabilitiesFormatXML(driver->caps)) == NULL)
190
        virReportOOMError();
191 192 193 194 195 196
    lxcDriverUnlock(driver);

    return xml;
}


D
Daniel Veillard 已提交
197 198 199
static virDomainPtr lxcDomainLookupByID(virConnectPtr conn,
                                        int id)
{
200 201 202
    lxc_driver_t *driver = conn->privateData;
    virDomainObjPtr vm;
    virDomainPtr dom = NULL;
D
Daniel Veillard 已提交
203

204
    lxcDriverLock(driver);
205
    vm = virDomainFindByID(&driver->domains, id);
206 207
    lxcDriverUnlock(driver);

D
Daniel Veillard 已提交
208
    if (!vm) {
209 210
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching id %d"), id);
211
        goto cleanup;
D
Daniel Veillard 已提交
212 213 214
    }

    dom = virGetDomain(conn, vm->def->name, vm->def->uuid);
215
    if (dom)
D
Daniel Veillard 已提交
216 217
        dom->id = vm->def->id;

218
cleanup:
219 220
    if (vm)
        virDomainObjUnlock(vm);
D
Daniel Veillard 已提交
221 222 223 224 225 226
    return dom;
}

static virDomainPtr lxcDomainLookupByUUID(virConnectPtr conn,
                                          const unsigned char *uuid)
{
227 228 229
    lxc_driver_t *driver = conn->privateData;
    virDomainObjPtr vm;
    virDomainPtr dom = NULL;
D
Daniel Veillard 已提交
230

231
    lxcDriverLock(driver);
232
    vm = virDomainFindByUUID(&driver->domains, uuid);
233 234
    lxcDriverUnlock(driver);

D
Daniel Veillard 已提交
235
    if (!vm) {
236 237 238 239
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(uuid, uuidstr);
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching uuid '%s'"), uuidstr);
240
        goto cleanup;
D
Daniel Veillard 已提交
241 242 243
    }

    dom = virGetDomain(conn, vm->def->name, vm->def->uuid);
244
    if (dom)
D
Daniel Veillard 已提交
245 246
        dom->id = vm->def->id;

247
cleanup:
248 249
    if (vm)
        virDomainObjUnlock(vm);
D
Daniel Veillard 已提交
250 251 252 253 254 255
    return dom;
}

static virDomainPtr lxcDomainLookupByName(virConnectPtr conn,
                                          const char *name)
{
256 257 258
    lxc_driver_t *driver = conn->privateData;
    virDomainObjPtr vm;
    virDomainPtr dom = NULL;
D
Daniel Veillard 已提交
259

260
    lxcDriverLock(driver);
261
    vm = virDomainFindByName(&driver->domains, name);
262
    lxcDriverUnlock(driver);
D
Daniel Veillard 已提交
263
    if (!vm) {
264 265
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching name '%s'"), name);
266
        goto cleanup;
D
Daniel Veillard 已提交
267 268 269
    }

    dom = virGetDomain(conn, vm->def->name, vm->def->uuid);
270
    if (dom)
D
Daniel Veillard 已提交
271 272
        dom->id = vm->def->id;

273
cleanup:
274 275
    if (vm)
        virDomainObjUnlock(vm);
D
Daniel Veillard 已提交
276 277 278
    return dom;
}

279 280 281 282 283 284 285 286 287 288 289

static int lxcDomainIsActive(virDomainPtr dom)
{
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr obj;
    int ret = -1;

    lxcDriverLock(driver);
    obj = virDomainFindByUUID(&driver->domains, dom->uuid);
    lxcDriverUnlock(driver);
    if (!obj) {
290 291 292 293
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching uuid '%s'"), uuidstr);
294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314
        goto cleanup;
    }
    ret = virDomainObjIsActive(obj);

cleanup:
    if (obj)
        virDomainObjUnlock(obj);
    return ret;
}


static int lxcDomainIsPersistent(virDomainPtr dom)
{
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr obj;
    int ret = -1;

    lxcDriverLock(driver);
    obj = virDomainFindByUUID(&driver->domains, dom->uuid);
    lxcDriverUnlock(driver);
    if (!obj) {
315 316 317 318
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching uuid '%s'"), uuidstr);
319 320 321 322 323 324 325 326 327 328
        goto cleanup;
    }
    ret = obj->persistent;

cleanup:
    if (obj)
        virDomainObjUnlock(obj);
    return ret;
}

329 330 331 332 333 334 335 336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351
static int lxcDomainIsUpdated(virDomainPtr dom)
{
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr obj;
    int ret = -1;

    lxcDriverLock(driver);
    obj = virDomainFindByUUID(&driver->domains, dom->uuid);
    lxcDriverUnlock(driver);
    if (!obj) {
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching uuid '%s'"), uuidstr);
        goto cleanup;
    }
    ret = obj->updated;

cleanup:
    if (obj)
        virDomainObjUnlock(obj);
    return ret;
}
352

353
static int lxcListDomains(virConnectPtr conn, int *ids, int nids) {
354
    lxc_driver_t *driver = conn->privateData;
355
    int n;
356

357
    lxcDriverLock(driver);
358
    n = virDomainObjListGetActiveIDs(&driver->domains, ids, nids);
359
    lxcDriverUnlock(driver);
360

361
    return n;
D
Daniel Veillard 已提交
362
}
363

364
static int lxcNumDomains(virConnectPtr conn) {
365
    lxc_driver_t *driver = conn->privateData;
366
    int n;
367

368
    lxcDriverLock(driver);
369
    n = virDomainObjListNumOfDomains(&driver->domains, 1);
370
    lxcDriverUnlock(driver);
371

372
    return n;
D
Daniel Veillard 已提交
373 374 375
}

static int lxcListDefinedDomains(virConnectPtr conn,
376
                                 char **const names, int nnames) {
377
    lxc_driver_t *driver = conn->privateData;
378
    int n;
379

380
    lxcDriverLock(driver);
381
    n = virDomainObjListGetInactiveNames(&driver->domains, names, nnames);
382
    lxcDriverUnlock(driver);
383

384
    return n;
D
Daniel Veillard 已提交
385 386 387
}


388
static int lxcNumDefinedDomains(virConnectPtr conn) {
389
    lxc_driver_t *driver = conn->privateData;
390
    int n;
391

392
    lxcDriverLock(driver);
393
    n = virDomainObjListNumOfDomains(&driver->domains, 0);
394
    lxcDriverUnlock(driver);
395

396
    return n;
D
Daniel Veillard 已提交
397 398
}

399 400


D
Daniel Veillard 已提交
401 402
static virDomainPtr lxcDomainDefine(virConnectPtr conn, const char *xml)
{
403 404
    lxc_driver_t *driver = conn->privateData;
    virDomainDefPtr def = NULL;
405
    virDomainObjPtr vm = NULL;
406
    virDomainPtr dom = NULL;
407
    virDomainEventPtr event = NULL;
408
    int dupVM;
D
Daniel Veillard 已提交
409

410
    lxcDriverLock(driver);
411
    if (!(def = virDomainDefParseString(driver->caps, xml,
412
                                        VIR_DOMAIN_XML_INACTIVE)))
413
        goto cleanup;
D
Daniel Veillard 已提交
414

415 416
   if ((dupVM = virDomainObjIsDuplicate(&driver->domains, def, 0)) < 0)
        goto cleanup;
417

418
    if ((def->nets != NULL) && !(driver->have_netns)) {
419
        lxcError(VIR_ERR_NO_SUPPORT,
J
Jim Meyering 已提交
420
                 "%s", _("System lacks NETNS support"));
421
        goto cleanup;
422 423
    }

424
    if (!(vm = virDomainAssignDef(driver->caps,
425
                                  &driver->domains, def, false)))
426 427
        goto cleanup;
    def = NULL;
428
    vm->persistent = 1;
D
Daniel Veillard 已提交
429

430
    if (virDomainSaveConfig(driver->configDir,
431
                            vm->newDef ? vm->newDef : vm->def) < 0) {
432
        virDomainRemoveInactive(&driver->domains, vm);
433
        vm = NULL;
434
        goto cleanup;
D
Daniel Veillard 已提交
435 436
    }

437 438
    event = virDomainEventNewFromObj(vm,
                                     VIR_DOMAIN_EVENT_DEFINED,
439
                                     !dupVM ?
440 441 442
                                     VIR_DOMAIN_EVENT_DEFINED_ADDED :
                                     VIR_DOMAIN_EVENT_DEFINED_UPDATED);

D
Daniel Veillard 已提交
443
    dom = virGetDomain(conn, vm->def->name, vm->def->uuid);
444
    if (dom)
D
Daniel Veillard 已提交
445 446
        dom->id = vm->def->id;

447 448
cleanup:
    virDomainDefFree(def);
449 450
    if (vm)
        virDomainObjUnlock(vm);
451 452
    if (event)
        lxcDomainEventQueue(driver, event);
453
    lxcDriverUnlock(driver);
D
Daniel Veillard 已提交
454 455 456 457 458
    return dom;
}

static int lxcDomainUndefine(virDomainPtr dom)
{
459 460
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm;
461
    virDomainEventPtr event = NULL;
462
    int ret = -1;
D
Daniel Veillard 已提交
463

464
    lxcDriverLock(driver);
465
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);
D
Daniel Veillard 已提交
466
    if (!vm) {
467 468 469 470
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching uuid '%s'"), uuidstr);
471
        goto cleanup;
D
Daniel Veillard 已提交
472 473
    }

D
Daniel P. Berrange 已提交
474
    if (virDomainObjIsActive(vm)) {
475
        lxcError(VIR_ERR_OPERATION_INVALID,
476
                 "%s", _("Cannot delete active domain"));
477
        goto cleanup;
D
Daniel Veillard 已提交
478 479
    }

480
    if (!vm->persistent) {
481
        lxcError(VIR_ERR_OPERATION_INVALID,
482
                 "%s", _("Cannot undefine transient domain"));
483
        goto cleanup;
484
    }
D
Daniel Veillard 已提交
485

486
    if (virDomainDeleteConfig(driver->configDir,
487
                              driver->autostartDir,
488 489
                              vm) < 0)
        goto cleanup;
D
Daniel Veillard 已提交
490

491 492 493 494
    event = virDomainEventNewFromObj(vm,
                                     VIR_DOMAIN_EVENT_UNDEFINED,
                                     VIR_DOMAIN_EVENT_UNDEFINED_REMOVED);

495
    virDomainRemoveInactive(&driver->domains, vm);
496
    vm = NULL;
497
    ret = 0;
D
Daniel Veillard 已提交
498

499
cleanup:
500 501
    if (vm)
        virDomainObjUnlock(vm);
502 503
    if (event)
        lxcDomainEventQueue(driver, event);
504
    lxcDriverUnlock(driver);
505
    return ret;
D
Daniel Veillard 已提交
506 507 508 509 510
}

static int lxcDomainGetInfo(virDomainPtr dom,
                            virDomainInfoPtr info)
{
511 512
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm;
513
    virCgroupPtr cgroup = NULL;
514
    int ret = -1, rc;
D
Daniel Veillard 已提交
515

516
    lxcDriverLock(driver);
517
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);
518

D
Daniel Veillard 已提交
519
    if (!vm) {
520 521 522 523
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching uuid '%s'"), uuidstr);
524
        goto cleanup;
D
Daniel Veillard 已提交
525 526 527 528
    }

    info->state = vm->state;

D
Daniel P. Berrange 已提交
529
    if (!virDomainObjIsActive(vm) || driver->cgroup == NULL) {
D
Daniel Veillard 已提交
530
        info->cpuTime = 0;
531
        info->memory = vm->def->mem.cur_balloon;
D
Daniel Veillard 已提交
532
    } else {
533
        if (virCgroupForDomain(driver->cgroup, vm->def->name, &cgroup, 0) != 0) {
534
            lxcError(VIR_ERR_INTERNAL_ERROR,
535
                     _("Unable to get cgroup for %s"), vm->def->name);
536 537 538 539
            goto cleanup;
        }

        if (virCgroupGetCpuacctUsage(cgroup, &(info->cpuTime)) < 0) {
540
            lxcError(VIR_ERR_OPERATION_FAILED,
541
                     "%s", _("Cannot read cputime for domain"));
R
Ryota Ozaki 已提交
542 543
            goto cleanup;
        }
544
        if ((rc = virCgroupGetMemoryUsage(cgroup, &(info->memory))) < 0) {
545
            lxcError(VIR_ERR_OPERATION_FAILED,
546
                     "%s", _("Cannot read memory usage for domain"));
547 548 549 550 551 552
            if (rc == -ENOENT) {
                /* Don't fail if we can't read memory usage due to a lack of
                 * kernel support */
                info->memory = 0;
            } else
                goto cleanup;
553
        }
D
Daniel Veillard 已提交
554 555
    }

556
    info->maxMem = vm->def->mem.max_balloon;
D
Daniel Veillard 已提交
557
    info->nrVirtCpu = 1;
558
    ret = 0;
D
Daniel Veillard 已提交
559

560
cleanup:
561
    lxcDriverUnlock(driver);
562 563
    if (cgroup)
        virCgroupFree(&cgroup);
564 565
    if (vm)
        virDomainObjUnlock(vm);
566
    return ret;
D
Daniel Veillard 已提交
567 568
}

569
static char *lxcGetOSType(virDomainPtr dom)
D
Daniel Veillard 已提交
570
{
571 572 573
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm;
    char *ret = NULL;
574

575
    lxcDriverLock(driver);
576
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);
577 578
    lxcDriverUnlock(driver);

579
    if (!vm) {
580 581 582 583
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching uuid '%s'"), uuidstr);
584
        goto cleanup;
585 586
    }

587 588
    ret = strdup(vm->def->os.type);

589
    if (ret == NULL)
590
        virReportOOMError();
591

592
cleanup:
593 594
    if (vm)
        virDomainObjUnlock(vm);
595
    return ret;
D
Daniel Veillard 已提交
596 597
}

R
Ryota Ozaki 已提交
598 599 600 601 602 603 604 605 606 607 608 609 610
/* Returns max memory in kb, 0 if error */
static unsigned long lxcDomainGetMaxMemory(virDomainPtr dom) {
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm;
    unsigned long ret = 0;

    lxcDriverLock(driver);
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);
    lxcDriverUnlock(driver);

    if (!vm) {
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
611
        lxcError(VIR_ERR_NO_DOMAIN,
612
                         _("No domain with matching uuid '%s'"), uuidstr);
R
Ryota Ozaki 已提交
613 614 615
        goto cleanup;
    }

616
    ret = vm->def->mem.max_balloon;
R
Ryota Ozaki 已提交
617 618 619 620 621 622 623 624 625 626 627 628 629 630 631 632 633 634 635

cleanup:
    if (vm)
        virDomainObjUnlock(vm);
    return ret;
}

static int lxcDomainSetMaxMemory(virDomainPtr dom, unsigned long newmax) {
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm;
    int ret = -1;

    lxcDriverLock(driver);
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);
    lxcDriverUnlock(driver);

    if (!vm) {
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
636
        lxcError(VIR_ERR_NO_DOMAIN,
637
                         _("No domain with matching uuid '%s'"), uuidstr);
R
Ryota Ozaki 已提交
638 639 640
        goto cleanup;
    }

641
    if (newmax < vm->def->mem.cur_balloon) {
642
        lxcError(VIR_ERR_INVALID_ARG,
643
                         "%s", _("Cannot set max memory lower than current memory"));
R
Ryota Ozaki 已提交
644 645 646
        goto cleanup;
    }

647
    vm->def->mem.max_balloon = newmax;
R
Ryota Ozaki 已提交
648 649 650 651 652 653 654 655 656 657 658 659 660 661 662 663 664 665 666 667
    ret = 0;

cleanup:
    if (vm)
        virDomainObjUnlock(vm);
    return ret;
}

static int lxcDomainSetMemory(virDomainPtr dom, unsigned long newmem) {
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm;
    virCgroupPtr cgroup = NULL;
    int ret = -1;

    lxcDriverLock(driver);
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);
    lxcDriverUnlock(driver);
    if (!vm) {
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
668
        lxcError(VIR_ERR_NO_DOMAIN,
669
                 _("No domain with matching uuid '%s'"), uuidstr);
R
Ryota Ozaki 已提交
670 671 672
        goto cleanup;
    }

673
    if (newmem > vm->def->mem.max_balloon) {
674
        lxcError(VIR_ERR_INVALID_ARG,
675
                 "%s", _("Cannot set memory higher than max memory"));
R
Ryota Ozaki 已提交
676 677 678
        goto cleanup;
    }

679 680 681 682 683
    if (!virDomainObjIsActive(vm)) {
        lxcError(VIR_ERR_OPERATION_INVALID,
                 "%s", _("Domain is not running"));
        goto cleanup;
    }
684

685 686 687 688 689
    if (driver->cgroup == NULL) {
        lxcError(VIR_ERR_NO_SUPPORT,
                 "%s", _("cgroups must be configured on the host"));
        goto cleanup;
    }
R
Ryota Ozaki 已提交
690

691 692 693 694
    if (virCgroupForDomain(driver->cgroup, vm->def->name, &cgroup, 0) != 0) {
        lxcError(VIR_ERR_INTERNAL_ERROR,
                 _("Unable to get cgroup for %s"), vm->def->name);
        goto cleanup;
R
Ryota Ozaki 已提交
695
    }
696 697 698 699 700 701 702

    if (virCgroupSetMemory(cgroup, newmem) < 0) {
        lxcError(VIR_ERR_OPERATION_FAILED,
                 "%s", _("Failed to set memory for domain"));
        goto cleanup;
    }

R
Ryota Ozaki 已提交
703 704 705 706 707 708 709 710 711 712
    ret = 0;

cleanup:
    if (vm)
        virDomainObjUnlock(vm);
    if (cgroup)
        virCgroupFree(&cgroup);
    return ret;
}

713 714 715 716 717 718 719 720 721 722 723 724 725 726 727 728 729 730 731 732 733 734 735 736 737 738 739 740 741 742 743 744 745 746 747 748 749 750 751 752 753 754 755 756 757 758 759 760 761 762 763 764 765 766 767 768 769 770 771 772 773 774
static int lxcDomainSetMemoryParameters(virDomainPtr dom,
                                        virMemoryParameterPtr params,
                                        int nparams,
                                        unsigned int flags ATTRIBUTE_UNUSED)
{
    lxc_driver_t *driver = dom->conn->privateData;
    int i;
    virCgroupPtr cgroup = NULL;
    virDomainObjPtr vm = NULL;
    int ret = -1;

    lxcDriverLock(driver);
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);

    if (vm == NULL) {
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching uuid '%s'"), uuidstr);
        goto cleanup;
    }

    if (virCgroupForDomain(driver->cgroup, vm->def->name, &cgroup, 0) != 0) {
        lxcError(VIR_ERR_INTERNAL_ERROR,
                 _("cannot find cgroup for domain %s"), vm->def->name);
        goto cleanup;
    }

    ret = 0;
    for (i = 0; i < nparams; i++) {
        virMemoryParameterPtr param = &params[i];

        if (STREQ(param->field, VIR_DOMAIN_MEMORY_HARD_LIMIT)) {
            int rc;
            if (param->type != VIR_DOMAIN_MEMORY_PARAM_ULLONG) {
                lxcError(VIR_ERR_INVALID_ARG, "%s",
                         _("invalid type for memory hard_limit tunable, expected a 'ullong'"));
                ret = -1;
                continue;
            }

            rc = virCgroupSetMemoryHardLimit(cgroup, params[i].value.ul);
            if (rc != 0) {
                virReportSystemError(-rc, "%s",
                                     _("unable to set memory hard_limit tunable"));
                ret = -1;
            }
        } else if (STREQ(param->field, VIR_DOMAIN_MEMORY_SOFT_LIMIT)) {
            int rc;
            if (param->type != VIR_DOMAIN_MEMORY_PARAM_ULLONG) {
                lxcError(VIR_ERR_INVALID_ARG, "%s",
                         _("invalid type for memory soft_limit tunable, expected a 'ullong'"));
                ret = -1;
                continue;
            }

            rc = virCgroupSetMemorySoftLimit(cgroup, params[i].value.ul);
            if (rc != 0) {
                virReportSystemError(-rc, "%s",
                                     _("unable to set memory soft_limit tunable"));
                ret = -1;
            }
775
        } else if (STREQ(param->field, VIR_DOMAIN_MEMORY_SWAP_HARD_LIMIT)) {
776 777 778 779 780 781 782 783
            int rc;
            if (param->type != VIR_DOMAIN_MEMORY_PARAM_ULLONG) {
                lxcError(VIR_ERR_INVALID_ARG, "%s",
                         _("invalid type for swap_hard_limit tunable, expected a 'ullong'"));
                ret = -1;
                continue;
            }

784
            rc = virCgroupSetMemSwapHardLimit(cgroup, params[i].value.ul);
785 786 787 788 789 790 791 792 793 794 795 796 797 798 799 800 801 802 803 804 805 806 807 808 809
            if (rc != 0) {
                virReportSystemError(-rc, "%s",
                                     _("unable to set swap_hard_limit tunable"));
                ret = -1;
            }
        } else if (STREQ(param->field, VIR_DOMAIN_MEMORY_MIN_GUARANTEE)) {
            lxcError(VIR_ERR_INVALID_ARG,
                     _("Memory tunable `%s' not implemented"), param->field);
            ret = -1;
        } else {
            lxcError(VIR_ERR_INVALID_ARG,
                     _("Parameter `%s' not supported"), param->field);
            ret = -1;
        }
    }

cleanup:
    if (cgroup)
        virCgroupFree(&cgroup);
    if (vm)
        virDomainObjUnlock(vm);
    lxcDriverUnlock(driver);
    return ret;
}

810 811 812 813 814 815 816 817 818
static int lxcDomainGetMemoryParameters(virDomainPtr dom,
                                        virMemoryParameterPtr params,
                                        int *nparams,
                                        unsigned int flags ATTRIBUTE_UNUSED)
{
    lxc_driver_t *driver = dom->conn->privateData;
    int i;
    virCgroupPtr cgroup = NULL;
    virDomainObjPtr vm = NULL;
819
    unsigned long long val;
820 821 822 823 824 825 826 827 828 829 830 831 832 833 834 835 836 837 838 839 840 841 842 843 844 845 846 847 848 849 850 851 852 853 854 855 856 857 858 859 860 861 862 863
    int ret = -1;
    int rc;

    lxcDriverLock(driver);
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);

    if (vm == NULL) {
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching uuid '%s'"), uuidstr);
        goto cleanup;
    }

    if ((*nparams) == 0) {
        /* Current number of memory parameters supported by cgroups */
        *nparams = LXC_NB_MEM_PARAM;
        ret = 0;
        goto cleanup;
    }
    if ((*nparams) != LXC_NB_MEM_PARAM) {
        lxcError(VIR_ERR_INVALID_ARG,
                 "%s", _("Invalid parameter count"));
        goto cleanup;
    }

    if (virCgroupForDomain(driver->cgroup, vm->def->name, &cgroup, 0) != 0) {
        lxcError(VIR_ERR_INTERNAL_ERROR,
                 _("Unable to get cgroup for %s"), vm->def->name);
        goto cleanup;
    }

    for (i = 0; i < *nparams; i++) {
        virMemoryParameterPtr param = &params[i];
        val = 0;
        param->value.ul = 0;
        param->type = VIR_DOMAIN_MEMORY_PARAM_ULLONG;

        switch(i) {
        case 0: /* fill memory hard limit here */
            rc = virCgroupGetMemoryHardLimit(cgroup, &val);
            if (rc != 0) {
                virReportSystemError(-rc, "%s",
                                     _("unable to get memory hard limit"));
864
                goto cleanup;
865 866 867 868
            }
            if (virStrcpyStatic(param->field, VIR_DOMAIN_MEMORY_HARD_LIMIT) == NULL) {
                lxcError(VIR_ERR_INTERNAL_ERROR,
                         "%s", _("Field memory hard limit too long for destination"));
869
                goto cleanup;
870 871 872 873 874 875 876 877 878
            }
            param->value.ul = val;
            break;

        case 1: /* fill memory soft limit here */
            rc = virCgroupGetMemorySoftLimit(cgroup, &val);
            if (rc != 0) {
                virReportSystemError(-rc, "%s",
                                     _("unable to get memory soft limit"));
879
                goto cleanup;
880 881 882 883
            }
            if (virStrcpyStatic(param->field, VIR_DOMAIN_MEMORY_SOFT_LIMIT) == NULL) {
                lxcError(VIR_ERR_INTERNAL_ERROR,
                         "%s", _("Field memory soft limit too long for destination"));
884
                goto cleanup;
885 886 887 888 889
            }
            param->value.ul = val;
            break;

        case 2: /* fill swap hard limit here */
890
            rc = virCgroupGetMemSwapHardLimit(cgroup, &val);
891 892 893
            if (rc != 0) {
                virReportSystemError(-rc, "%s",
                                     _("unable to get swap hard limit"));
894
                goto cleanup;
895
            }
896
            if (virStrcpyStatic(param->field, VIR_DOMAIN_MEMORY_SWAP_HARD_LIMIT) == NULL) {
897 898
                lxcError(VIR_ERR_INTERNAL_ERROR,
                         "%s", _("Field swap hard limit too long for destination"));
899
                goto cleanup;
900 901 902 903 904 905 906 907 908 909
            }
            param->value.ul = val;
            break;

        default:
            break;
            /* should not hit here */
        }
    }

910 911
    ret = 0;

912 913 914 915 916 917 918 919 920
cleanup:
    if (cgroup)
        virCgroupFree(&cgroup);
    if (vm)
        virDomainObjUnlock(vm);
    lxcDriverUnlock(driver);
    return ret;
}

921 922
static char *lxcDomainGetXMLDesc(virDomainPtr dom,
                                 int flags)
D
Daniel Veillard 已提交
923
{
924 925 926
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm;
    char *ret = NULL;
D
Daniel Veillard 已提交
927

928
    lxcDriverLock(driver);
929
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);
930 931
    lxcDriverUnlock(driver);

D
Daniel Veillard 已提交
932
    if (!vm) {
933 934 935 936
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching uuid '%s'"), uuidstr);
937
        goto cleanup;
D
Daniel Veillard 已提交
938 939
    }

940
    ret = virDomainDefFormat((flags & VIR_DOMAIN_XML_INACTIVE) &&
941 942 943 944
                             vm->newDef ? vm->newDef : vm->def,
                             flags);

cleanup:
945 946
    if (vm)
        virDomainObjUnlock(vm);
947
    return ret;
D
Daniel Veillard 已提交
948 949
}

950 951 952

/**
 * lxcVmCleanup:
953 954 955
 * @conn: pointer to connection
 * @driver: pointer to driver structure
 * @vm: pointer to VM to clean up
956
 *
957
 * Cleanout resources associated with the now dead VM
958 959
 *
 */
960
static void lxcVmCleanup(lxc_driver_t *driver,
961
                        virDomainObjPtr  vm)
962
{
D
Dan Smith 已提交
963
    virCgroupPtr cgroup;
964
    int i;
965
    lxcDomainObjPrivatePtr priv = vm->privateData;
966

967 968 969 970 971 972 973 974 975 976
    /* now that we know it's stopped call the hook if present */
    if (virHookPresent(VIR_HOOK_DRIVER_LXC)) {
        char *xml = virDomainDefFormat(vm->def, 0);

        /* we can't stop the operation even if the script raised an error */
        virHookCall(VIR_HOOK_DRIVER_LXC, vm->def->name,
                    VIR_HOOK_LXC_OP_STOPPED, VIR_HOOK_SUBOP_END, NULL, xml);
        VIR_FREE(xml);
    }

977
    virEventRemoveHandle(priv->monitorWatch);
978
    VIR_FORCE_CLOSE(priv->monitor);
979 980

    virFileDeletePid(driver->stateDir, vm->def->name);
981
    virDomainDeleteConfig(driver->stateDir, NULL, vm);
982 983 984 985

    vm->state = VIR_DOMAIN_SHUTOFF;
    vm->pid = -1;
    vm->def->id = -1;
986 987
    priv->monitor = -1;
    priv->monitorWatch = -1;
988

989 990 991
    for (i = 0 ; i < vm->def->nnets ; i++) {
        vethInterfaceUpOrDown(vm->def->nets[i]->ifname, 0);
        vethDelete(vm->def->nets[i]->ifname);
992 993
    }

994 995
    if (driver->cgroup &&
        virCgroupForDomain(driver->cgroup, vm->def->name, &cgroup, 0) == 0) {
D
Dan Smith 已提交
996 997 998 999
        virCgroupRemove(cgroup);
        virCgroupFree(&cgroup);
    }

1000 1001 1002 1003 1004 1005
    if (vm->newDef) {
        virDomainDefFree(vm->def);
        vm->def = vm->newDef;
        vm->def->id = -1;
        vm->newDef = NULL;
    }
1006 1007
}

1008 1009
/**
 * lxcSetupInterfaces:
1010
 * @conn: pointer to connection
1011
 * @def: pointer to virtual machine structure
1012 1013
 * @nveths: number of interfaces
 * @veths: interface names
1014 1015 1016 1017 1018 1019 1020 1021
 *
 * Sets up the container interfaces by creating the veth device pairs and
 * attaching the parent end to the appropriate bridge.  The container end
 * will moved into the container namespace later after clone has been called.
 *
 * Returns 0 on success or -1 in case of error
 */
static int lxcSetupInterfaces(virConnectPtr conn,
1022
                              virDomainDefPtr def,
1023 1024
                              unsigned int *nveths,
                              char ***veths)
1025
{
1026
    int rc = -1, i;
1027 1028
    char *bridge = NULL;
    brControl *brctl = NULL;
1029
    int ret;
1030

1031 1032 1033
    if ((ret = brInit(&brctl)) != 0) {
        virReportSystemError(ret, "%s",
                             _("Unable to initialize bridging"));
1034
        return -1;
1035
    }
1036

1037
    for (i = 0 ; i < def->nnets ; i++) {
1038 1039
        char *parentVeth;
        char *containerVeth = NULL;
1040

1041
        switch (def->nets[i]->type) {
1042 1043
        case VIR_DOMAIN_NET_TYPE_NETWORK:
        {
1044 1045 1046 1047
            virNetworkPtr network;

            network = virNetworkLookupByName(conn,
                                             def->nets[i]->data.network.name);
1048 1049 1050 1051 1052 1053 1054
            if (!network) {
                goto error_exit;
            }

            bridge = virNetworkGetBridgeName(network);

            virNetworkFree(network);
1055 1056 1057
            break;
        }
        case VIR_DOMAIN_NET_TYPE_BRIDGE:
1058
            bridge = def->nets[i]->data.bridge.brname;
1059
            break;
S
Stefan Berger 已提交
1060 1061 1062 1063 1064 1065 1066 1067 1068 1069

        case VIR_DOMAIN_NET_TYPE_USER:
        case VIR_DOMAIN_NET_TYPE_ETHERNET:
        case VIR_DOMAIN_NET_TYPE_SERVER:
        case VIR_DOMAIN_NET_TYPE_CLIENT:
        case VIR_DOMAIN_NET_TYPE_MCAST:
        case VIR_DOMAIN_NET_TYPE_INTERNAL:
        case VIR_DOMAIN_NET_TYPE_DIRECT:
        case VIR_DOMAIN_NET_TYPE_LAST:
            break;
1070 1071
        }

1072
        VIR_DEBUG("bridge: %s", bridge);
1073
        if (NULL == bridge) {
1074
            lxcError(VIR_ERR_INTERNAL_ERROR,
1075
                     "%s", _("Failed to get bridge for interface"));
1076 1077 1078
            goto error_exit;
        }

1079
        VIR_DEBUG("calling vethCreate()");
1080 1081
        parentVeth = def->nets[i]->ifname;
        if (vethCreate(&parentVeth, &containerVeth) < 0)
1082
            goto error_exit;
1083
        VIR_DEBUG("parentVeth: %s, containerVeth: %s", parentVeth, containerVeth);
1084

1085
        if (NULL == def->nets[i]->ifname) {
1086
            def->nets[i]->ifname = parentVeth;
1087
        }
1088

1089
        if (VIR_REALLOC_N(*veths, (*nveths)+1) < 0) {
1090
            virReportOOMError();
1091
            VIR_FREE(containerVeth);
1092
            goto error_exit;
1093
        }
1094
        (*veths)[(*nveths)] = containerVeth;
1095
        (*nveths)++;
1096

1097
        {
1098 1099
            char macaddr[VIR_MAC_STRING_BUFLEN];
            virFormatMacAddr(def->nets[i]->mac, macaddr);
1100
            if (setMacAddr(containerVeth, macaddr) < 0)
1101 1102 1103
                goto error_exit;
        }

1104
        if ((ret = brAddInterface(brctl, bridge, parentVeth)) != 0) {
E
Eric Blake 已提交
1105
            virReportSystemError(ret,
1106
                                 _("Failed to add %s device to %s"),
1107
                                 parentVeth, bridge);
1108 1109 1110
            goto error_exit;
        }

1111
        if (vethInterfaceUpOrDown(parentVeth, 1) < 0)
1112 1113 1114 1115 1116 1117
            goto error_exit;
    }

    rc = 0;

error_exit:
1118
    brShutdown(brctl);
1119 1120 1121
    return rc;
}

1122

1123
static int lxcMonitorClient(lxc_driver_t * driver,
1124
                            virDomainObjPtr vm)
1125
{
1126 1127 1128
    char *sockpath = NULL;
    int fd;
    struct sockaddr_un addr;
1129

1130 1131
    if (virAsprintf(&sockpath, "%s/%s.sock",
                    driver->stateDir, vm->def->name) < 0) {
1132
        virReportOOMError();
1133 1134 1135 1136
        return -1;
    }

    if ((fd = socket(PF_UNIX, SOCK_STREAM, 0)) < 0) {
1137
        virReportSystemError(errno, "%s",
1138
                             _("Failed to create client socket"));
1139
        goto error;
1140 1141
    }

1142 1143
    memset(&addr, 0, sizeof(addr));
    addr.sun_family = AF_UNIX;
C
Chris Lalancette 已提交
1144
    if (virStrcpyStatic(addr.sun_path, sockpath) == NULL) {
1145
        lxcError(VIR_ERR_INTERNAL_ERROR,
C
Chris Lalancette 已提交
1146 1147 1148
                 _("Socket path %s too big for destination"), sockpath);
        goto error;
    }
1149 1150

    if (connect(fd, (struct sockaddr *) &addr, sizeof(addr)) < 0) {
1151
        virReportSystemError(errno, "%s",
1152
                             _("Failed to connect to client socket"));
1153
        goto error;
1154 1155
    }

1156 1157
    VIR_FREE(sockpath);
    return fd;
1158

1159 1160
error:
    VIR_FREE(sockpath);
1161
    VIR_FORCE_CLOSE(fd);
1162 1163 1164 1165
    return -1;
}


1166
static int lxcVmTerminate(lxc_driver_t *driver,
1167
                          virDomainObjPtr vm)
1168
{
1169 1170
    virCgroupPtr group = NULL;
    int rc;
1171

1172
    if (vm->pid <= 0) {
1173
        lxcError(VIR_ERR_INTERNAL_ERROR,
1174
                 _("Invalid PID %d for container"), vm->pid);
1175 1176 1177
        return -1;
    }

1178 1179 1180 1181 1182 1183 1184 1185 1186
    if (virCgroupForDomain(driver->cgroup, vm->def->name, &group, 0) != 0)
        return -1;

    rc = virCgroupKillPainfully(group);
    if (rc < 0) {
        virReportSystemError(-rc, "%s",
                             _("Failed to kill container PIDs"));
        rc = -1;
        goto cleanup;
1187
    }
1188 1189 1190 1191 1192 1193 1194
    if (rc == 1) {
        lxcError(VIR_ERR_INTERNAL_ERROR, "%s",
                 _("Some container PIDs refused to die"));
        rc = -1;
        goto cleanup;
    }
    lxcVmCleanup(driver, vm);
1195

1196
    rc = 0;
1197

1198 1199 1200
cleanup:
    virCgroupFree(&group);
    return rc;
1201
}
1202

1203 1204
static void lxcMonitorEvent(int watch,
                            int fd,
1205 1206 1207
                            int events ATTRIBUTE_UNUSED,
                            void *data)
{
1208 1209
    lxc_driver_t *driver = lxc_driver;
    virDomainObjPtr vm = data;
1210
    virDomainEventPtr event = NULL;
1211
    lxcDomainObjPrivatePtr priv;
1212

1213
    lxcDriverLock(driver);
1214 1215
    virDomainObjLock(vm);
    lxcDriverUnlock(driver);
1216

1217 1218 1219
    priv = vm->privateData;

    if (priv->monitor != fd || priv->monitorWatch != watch) {
1220
        virEventRemoveHandle(watch);
1221
        goto cleanup;
1222 1223
    }

1224
    if (lxcVmTerminate(driver, vm) < 0) {
1225
        virEventRemoveHandle(watch);
1226 1227 1228 1229 1230
    } else {
        event = virDomainEventNewFromObj(vm,
                                         VIR_DOMAIN_EVENT_STOPPED,
                                         VIR_DOMAIN_EVENT_STOPPED_SHUTDOWN);
    }
1231 1232 1233 1234
    if (!vm->persistent) {
        virDomainRemoveInactive(&driver->domains, vm);
        vm = NULL;
    }
1235 1236

cleanup:
1237 1238
    if (vm)
        virDomainObjUnlock(vm);
1239 1240
    if (event) {
        lxcDriverLock(driver);
1241
        lxcDomainEventQueue(driver, event);
1242 1243
        lxcDriverUnlock(driver);
    }
1244 1245 1246
}


1247
static int lxcControllerStart(lxc_driver_t *driver,
1248 1249 1250 1251
                              virDomainObjPtr vm,
                              int nveths,
                              char **veths,
                              int appPty,
1252
                              int logfile)
1253 1254
{
    int i;
1255
    int ret = -1;
A
Amy Griffis 已提交
1256 1257
    char *filterstr;
    char *outputstr;
1258
    virCommandPtr cmd;
1259 1260 1261
    off_t pos = -1;
    char ebuf[1024];
    char *timestamp;
1262 1263 1264 1265 1266 1267 1268 1269

    cmd = virCommandNew(vm->def->emulator);

    /* The controller may call ip command, so we have to retain PATH. */
    virCommandAddEnvPass(cmd, "PATH");

    virCommandAddEnvFormat(cmd, "LIBVIRT_DEBUG=%d",
                           virLogGetDefaultPriority());
A
Amy Griffis 已提交
1270 1271 1272

    if (virLogGetNbFilters() > 0) {
        filterstr = virLogGetFilters();
1273 1274 1275 1276 1277 1278
        if (!filterstr) {
            virReportOOMError();
            goto cleanup;
        }

        virCommandAddEnvPair(cmd, "LIBVIRT_LOG_FILTERS", filterstr);
A
Amy Griffis 已提交
1279 1280 1281
        VIR_FREE(filterstr);
    }

A
Amy Griffis 已提交
1282 1283 1284
    if (driver->log_libvirtd) {
        if (virLogGetNbOutputs() > 0) {
            outputstr = virLogGetOutputs();
1285 1286 1287 1288 1289 1290
            if (!outputstr) {
                virReportOOMError();
                goto cleanup;
            }

            virCommandAddEnvPair(cmd, "LIBVIRT_LOG_OUTPUTS", outputstr);
A
Amy Griffis 已提交
1291 1292 1293
            VIR_FREE(outputstr);
        }
    } else {
1294 1295 1296
        virCommandAddEnvFormat(cmd,
                               "LIBVIRT_LOG_OUTPUTS=%d:stderr",
                               virLogGetDefaultPriority());
A
Amy Griffis 已提交
1297 1298
    }

1299 1300 1301
    virCommandAddArgList(cmd, "--name", vm->def->name, "--console", NULL);
    virCommandAddArgFormat(cmd, "%d", appPty);
    virCommandAddArg(cmd, "--background");
1302 1303

    for (i = 0 ; i < nveths ; i++) {
1304
        virCommandAddArgList(cmd, "--veth", veths[i], NULL);
1305 1306
    }

1307 1308 1309 1310 1311 1312 1313 1314 1315 1316 1317 1318 1319 1320 1321 1322
    /* now that we know it is about to start call the hook if present */
    if (virHookPresent(VIR_HOOK_DRIVER_LXC)) {
        char *xml = virDomainDefFormat(vm->def, 0);
        int hookret;

        hookret = virHookCall(VIR_HOOK_DRIVER_LXC, vm->def->name,
                    VIR_HOOK_LXC_OP_START, VIR_HOOK_SUBOP_BEGIN, NULL, xml);
        VIR_FREE(xml);

        /*
         * If the script raised an error abort the launch
         */
        if (hookret < 0)
            goto cleanup;
    }

1323 1324 1325 1326 1327 1328 1329 1330 1331 1332 1333 1334 1335 1336 1337 1338 1339 1340
    /* Log timestamp */
    if ((timestamp = virTimestamp()) == NULL) {
        virReportOOMError();
        goto cleanup;
    }
    if (safewrite(logfile, timestamp, strlen(timestamp)) < 0 ||
        safewrite(logfile, START_POSTFIX, strlen(START_POSTFIX)) < 0) {
        VIR_WARN("Unable to write timestamp to logfile: %s",
                 virStrerror(errno, ebuf, sizeof ebuf));
    }
    VIR_FREE(timestamp);

    /* Log generated command line */
    virCommandWriteArgLog(cmd, logfile);
    if ((pos = lseek(logfile, 0, SEEK_END)) < 0)
        VIR_WARN("Unable to seek to end of logfile: %s",
                 virStrerror(errno, ebuf, sizeof ebuf));

1341 1342 1343
    virCommandPreserveFD(cmd, appPty);
    virCommandSetOutputFD(cmd, &logfile);
    virCommandSetErrorFD(cmd, &logfile);
1344

1345
    ret = virCommandRun(cmd, NULL);
1346

A
Amy Griffis 已提交
1347
cleanup:
1348 1349
    virCommandFree(cmd);
    return ret;
1350 1351 1352
}


1353 1354 1355 1356 1357 1358 1359 1360 1361 1362 1363 1364
/**
 * lxcVmStart:
 * @conn: pointer to connection
 * @driver: pointer to driver structure
 * @vm: pointer to virtual machine structure
 *
 * Starts a vm
 *
 * Returns 0 on success or -1 in case of error
 */
static int lxcVmStart(virConnectPtr conn,
                      lxc_driver_t * driver,
1365
                      virDomainObjPtr  vm)
1366
{
1367
    int rc = -1, r;
1368 1369
    unsigned int i;
    int parentTty;
1370
    char *parentTtyPath = NULL;
1371 1372 1373 1374
    char *logfile = NULL;
    int logfd = -1;
    unsigned int nveths = 0;
    char **veths = NULL;
1375
    lxcDomainObjPrivatePtr priv = vm->privateData;
1376

1377 1378 1379 1380 1381 1382 1383 1384 1385 1386 1387 1388 1389 1390 1391 1392 1393 1394 1395 1396 1397 1398 1399 1400 1401
    if (!lxc_driver->cgroup) {
        lxcError(VIR_ERR_INTERNAL_ERROR, "%s",
                 _("The 'cpuacct', 'devices' & 'memory' cgroups controllers must be mounted"));
        return -1;
    }

    if (!virCgroupMounted(lxc_driver->cgroup,
                          VIR_CGROUP_CONTROLLER_CPUACCT)) {
        lxcError(VIR_ERR_INTERNAL_ERROR, "%s",
                 _("Unable to find 'cpuacct' cgroups controller mount"));
        return -1;
    }
    if (!virCgroupMounted(lxc_driver->cgroup,
                          VIR_CGROUP_CONTROLLER_DEVICES)) {
        lxcError(VIR_ERR_INTERNAL_ERROR, "%s",
                 _("Unable to find 'devices' cgroups controller mount"));
        return -1;
    }
    if (!virCgroupMounted(lxc_driver->cgroup,
                          VIR_CGROUP_CONTROLLER_MEMORY)) {
        lxcError(VIR_ERR_INTERNAL_ERROR, "%s",
                 _("Unable to find 'memory' cgroups controller mount"));
        return -1;
    }

L
Laine Stump 已提交
1402
    if ((r = virFileMakePath(driver->logDir)) != 0) {
1403
        virReportSystemError(r,
1404
                             _("Cannot create log directory '%s'"),
1405
                             driver->logDir);
1406 1407
        return -1;
    }
1408

1409 1410
    if (virAsprintf(&logfile, "%s/%s.log",
                    driver->logDir, vm->def->name) < 0) {
1411
        virReportOOMError();
1412
        return -1;
1413 1414
    }

1415
    /* open parent tty */
1416
    if (virFileOpenTty(&parentTty, &parentTtyPath, 1) < 0) {
1417
        virReportSystemError(errno, "%s",
1418
                             _("Failed to allocate tty"));
1419 1420
        goto cleanup;
    }
1421
    if (vm->def->console &&
1422 1423 1424
        vm->def->console->source.type == VIR_DOMAIN_CHR_TYPE_PTY) {
        VIR_FREE(vm->def->console->source.data.file.path);
        vm->def->console->source.data.file.path = parentTtyPath;
1425 1426 1427
    } else {
        VIR_FREE(parentTtyPath);
    }
1428

1429
    if (lxcSetupInterfaces(conn, vm->def, &nveths, &veths) != 0)
1430
        goto cleanup;
1431

1432
    /* Save the configuration for the controller */
1433
    if (virDomainSaveConfig(driver->stateDir, vm->def) < 0)
1434 1435
        goto cleanup;

1436
    if ((logfd = open(logfile, O_WRONLY | O_APPEND | O_CREAT,
1437
             S_IRUSR|S_IWUSR)) < 0) {
1438
        virReportSystemError(errno,
1439
                             _("Failed to open '%s'"),
1440
                             logfile);
1441
        goto cleanup;
1442 1443
    }

1444
    if (lxcControllerStart(driver,
1445 1446 1447
                           vm,
                           nveths, veths,
                           parentTty, logfd) < 0)
1448
        goto cleanup;
1449 1450 1451 1452

    /* Connect to the controller as a client *first* because
     * this will block until the child has written their
     * pid file out to disk */
1453
    if ((priv->monitor = lxcMonitorClient(driver, vm)) < 0)
1454 1455
        goto cleanup;

1456
    /* And get its pid */
1457
    if ((r = virFileReadPid(driver->stateDir, vm->def->name, &vm->pid)) != 0) {
1458
        virReportSystemError(r,
1459 1460
                             _("Failed to read pid file %s/%s.pid"),
                             driver->stateDir, vm->def->name);
1461
        goto cleanup;
1462
    }
1463

1464
    vm->def->id = vm->pid;
1465 1466
    vm->state = VIR_DOMAIN_RUNNING;

1467 1468
    if ((priv->monitorWatch = virEventAddHandle(
             priv->monitor,
1469 1470
             VIR_EVENT_HANDLE_ERROR | VIR_EVENT_HANDLE_HANGUP,
             lxcMonitorEvent,
1471
             vm, NULL)) < 0) {
1472
        lxcVmTerminate(driver, vm);
1473 1474
        goto cleanup;
    }
1475

1476 1477 1478 1479 1480 1481 1482
    /*
     * Again, need to save the live configuration, because the function
     * requires vm->def->id != -1 to save tty info surely.
     */
    if (virDomainSaveConfig(driver->stateDir, vm->def) < 0)
        goto cleanup;

1483
    if (virDomainObjSetDefTransient(driver->caps, vm, false) < 0)
1484 1485
        goto cleanup;

1486 1487 1488
    rc = 0;

cleanup:
1489 1490 1491 1492
    if (VIR_CLOSE(logfd) < 0) {
        virReportSystemError(errno, "%s", _("could not close logfile"));
        rc = -1;
    }
1493 1494 1495 1496 1497
    for (i = 0 ; i < nveths ; i++) {
        if (rc != 0)
            vethDelete(veths[i]);
        VIR_FREE(veths[i]);
    }
1498 1499 1500
    if (rc != 0)
        VIR_FORCE_CLOSE(priv->monitor);
    VIR_FORCE_CLOSE(parentTty);
1501
    VIR_FREE(logfile);
1502 1503 1504 1505
    return rc;
}

/**
1506
 * lxcDomainStartWithFlags:
1507
 * @dom: domain to start
1508
 * @flags: Must be 0 for now
1509 1510 1511 1512 1513
 *
 * Looks up domain and starts it.
 *
 * Returns 0 on success or -1 in case of error
 */
1514
static int lxcDomainStartWithFlags(virDomainPtr dom, unsigned int flags)
1515
{
1516 1517
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm;
1518
    virDomainEventPtr event = NULL;
1519
    int ret = -1;
1520

1521 1522
    virCheckFlags(0, -1);

1523
    lxcDriverLock(driver);
1524
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);
1525
    if (!vm) {
1526 1527 1528 1529
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching uuid '%s'"), uuidstr);
1530 1531 1532
        goto cleanup;
    }

1533
    if ((vm->def->nets != NULL) && !(driver->have_netns)) {
1534
        lxcError(VIR_ERR_NO_SUPPORT,
J
Jim Meyering 已提交
1535
                 "%s", _("System lacks NETNS support"));
1536 1537 1538
        goto cleanup;
    }

1539 1540 1541 1542 1543 1544
    if (virDomainObjIsActive(vm)) {
        lxcError(VIR_ERR_OPERATION_INVALID,
                 "%s", _("Domain is already running"));
        goto cleanup;
    }

1545
    ret = lxcVmStart(dom->conn, driver, vm);
1546

1547 1548 1549 1550 1551
    if (ret == 0)
        event = virDomainEventNewFromObj(vm,
                                         VIR_DOMAIN_EVENT_STARTED,
                                         VIR_DOMAIN_EVENT_STARTED_BOOTED);

1552
cleanup:
1553 1554
    if (vm)
        virDomainObjUnlock(vm);
1555 1556
    if (event)
        lxcDomainEventQueue(driver, event);
1557
    lxcDriverUnlock(driver);
1558
    return ret;
1559 1560
}

1561 1562 1563 1564 1565 1566 1567 1568 1569 1570 1571 1572 1573
/**
 * lxcDomainStart:
 * @dom: domain to start
 *
 * Looks up domain and starts it.
 *
 * Returns 0 on success or -1 in case of error
 */
static int lxcDomainStart(virDomainPtr dom)
{
    return lxcDomainStartWithFlags(dom, 0);
}

1574 1575 1576 1577
/**
 * lxcDomainCreateAndStart:
 * @conn: pointer to connection
 * @xml: XML definition of domain
1578
 * @flags: Must be 0 for now
1579 1580 1581 1582 1583 1584 1585 1586
 *
 * Creates a domain based on xml and starts it
 *
 * Returns 0 on success or -1 in case of error
 */
static virDomainPtr
lxcDomainCreateAndStart(virConnectPtr conn,
                        const char *xml,
1587
                        unsigned int flags) {
1588
    lxc_driver_t *driver = conn->privateData;
1589
    virDomainObjPtr vm = NULL;
1590
    virDomainDefPtr def;
1591
    virDomainPtr dom = NULL;
1592
    virDomainEventPtr event = NULL;
1593

1594 1595
    virCheckFlags(0, NULL);

1596
    lxcDriverLock(driver);
1597
    if (!(def = virDomainDefParseString(driver->caps, xml,
1598
                                        VIR_DOMAIN_XML_INACTIVE)))
1599
        goto cleanup;
1600

1601 1602
    if (virDomainObjIsDuplicate(&driver->domains, def, 1) < 0)
        goto cleanup;
1603

1604
    if ((def->nets != NULL) && !(driver->have_netns)) {
1605
        lxcError(VIR_ERR_NO_SUPPORT,
J
Jim Meyering 已提交
1606
                 "%s", _("System lacks NETNS support"));
1607
        goto cleanup;
1608 1609
    }

1610

1611
    if (!(vm = virDomainAssignDef(driver->caps,
1612
                                  &driver->domains, def, false)))
1613 1614
        goto cleanup;
    def = NULL;
1615 1616

    if (lxcVmStart(conn, driver, vm) < 0) {
1617
        virDomainRemoveInactive(&driver->domains, vm);
1618
        vm = NULL;
1619
        goto cleanup;
1620 1621
    }

1622 1623 1624 1625
    event = virDomainEventNewFromObj(vm,
                                     VIR_DOMAIN_EVENT_STARTED,
                                     VIR_DOMAIN_EVENT_STARTED_BOOTED);

1626
    dom = virGetDomain(conn, vm->def->name, vm->def->uuid);
1627
    if (dom)
1628 1629
        dom->id = vm->def->id;

1630 1631
cleanup:
    virDomainDefFree(def);
1632 1633
    if (vm)
        virDomainObjUnlock(vm);
1634 1635
    if (event)
        lxcDomainEventQueue(driver, event);
1636
    lxcDriverUnlock(driver);
1637 1638 1639
    return dom;
}

1640 1641

static int
1642 1643 1644 1645
lxcDomainEventRegister(virConnectPtr conn,
                       virConnectDomainEventCallback callback,
                       void *opaque,
                       virFreeCallback freecb)
1646 1647 1648 1649 1650 1651 1652
{
    lxc_driver_t *driver = conn->privateData;
    int ret;

    lxcDriverLock(driver);
    ret = virDomainEventCallbackListAdd(conn, driver->domainEventCallbacks,
                                        callback, opaque, freecb);
1653
    lxcDriverUnlock(driver);
1654

1655
    return ret;
1656 1657
}

1658

1659
static int
1660 1661
lxcDomainEventDeregister(virConnectPtr conn,
                         virConnectDomainEventCallback callback)
1662 1663 1664 1665 1666 1667 1668 1669 1670 1671 1672 1673 1674 1675 1676 1677
{
    lxc_driver_t *driver = conn->privateData;
    int ret;

    lxcDriverLock(driver);
    if (driver->domainEventDispatching)
        ret = virDomainEventCallbackListMarkDelete(conn, driver->domainEventCallbacks,
                                                   callback);
    else
        ret = virDomainEventCallbackListRemove(conn, driver->domainEventCallbacks,
                                               callback);
    lxcDriverUnlock(driver);

    return ret;
}

1678 1679 1680 1681 1682 1683 1684 1685 1686 1687 1688 1689 1690 1691 1692 1693 1694 1695 1696 1697 1698 1699 1700 1701 1702 1703 1704 1705 1706 1707 1708 1709 1710 1711 1712 1713 1714 1715 1716 1717 1718 1719 1720

static int
lxcDomainEventRegisterAny(virConnectPtr conn,
                          virDomainPtr dom,
                          int eventID,
                          virConnectDomainEventGenericCallback callback,
                          void *opaque,
                          virFreeCallback freecb)
{
    lxc_driver_t *driver = conn->privateData;
    int ret;

    lxcDriverLock(driver);
    ret = virDomainEventCallbackListAddID(conn,
                                          driver->domainEventCallbacks,
                                          dom, eventID,
                                          callback, opaque, freecb);
    lxcDriverUnlock(driver);

    return ret;
}


static int
lxcDomainEventDeregisterAny(virConnectPtr conn,
                            int callbackID)
{
    lxc_driver_t *driver = conn->privateData;
    int ret;

    lxcDriverLock(driver);
    if (driver->domainEventDispatching)
        ret = virDomainEventCallbackListMarkDeleteID(conn, driver->domainEventCallbacks,
                                                     callbackID);
    else
        ret = virDomainEventCallbackListRemoveID(conn, driver->domainEventCallbacks,
                                                 callbackID);
    lxcDriverUnlock(driver);

    return ret;
}


1721 1722
static void lxcDomainEventDispatchFunc(virConnectPtr conn,
                                       virDomainEventPtr event,
1723
                                       virConnectDomainEventGenericCallback cb,
1724 1725 1726 1727 1728 1729 1730 1731 1732 1733 1734 1735 1736 1737 1738 1739 1740 1741 1742 1743 1744 1745 1746 1747 1748 1749 1750 1751 1752 1753 1754 1755 1756 1757 1758 1759 1760 1761 1762 1763 1764 1765 1766 1767 1768 1769 1770 1771 1772 1773 1774
                                       void *cbopaque,
                                       void *opaque)
{
    lxc_driver_t *driver = opaque;

    /* Drop the lock whle dispatching, for sake of re-entrancy */
    lxcDriverUnlock(driver);
    virDomainEventDispatchDefaultFunc(conn, event, cb, cbopaque, NULL);
    lxcDriverLock(driver);
}


static void lxcDomainEventFlush(int timer ATTRIBUTE_UNUSED, void *opaque)
{
    lxc_driver_t *driver = opaque;
    virDomainEventQueue tempQueue;

    lxcDriverLock(driver);

    driver->domainEventDispatching = 1;

    /* Copy the queue, so we're reentrant safe */
    tempQueue.count = driver->domainEventQueue->count;
    tempQueue.events = driver->domainEventQueue->events;
    driver->domainEventQueue->count = 0;
    driver->domainEventQueue->events = NULL;

    virEventUpdateTimeout(driver->domainEventTimer, -1);
    virDomainEventQueueDispatch(&tempQueue,
                                driver->domainEventCallbacks,
                                lxcDomainEventDispatchFunc,
                                driver);

    /* Purge any deleted callbacks */
    virDomainEventCallbackListPurgeMarked(driver->domainEventCallbacks);

    driver->domainEventDispatching = 0;
    lxcDriverUnlock(driver);
}


/* driver must be locked before calling */
static void lxcDomainEventQueue(lxc_driver_t *driver,
                                 virDomainEventPtr event)
{
    if (virDomainEventQueuePush(driver->domainEventQueue,
                                event) < 0)
        virDomainEventFree(event);
    if (lxc_driver->domainEventQueue->count == 1)
        virEventUpdateTimeout(driver->domainEventTimer, 0);
}
1775 1776 1777

/**
 * lxcDomainDestroy:
1778
 * @dom: pointer to domain to destroy
1779 1780 1781 1782 1783 1784 1785
 *
 * Sends SIGKILL to container root process to terminate the container
 *
 * Returns 0 on success or -1 in case of error
 */
static int lxcDomainDestroy(virDomainPtr dom)
{
1786 1787
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm;
1788
    virDomainEventPtr event = NULL;
1789
    int ret = -1;
1790

1791
    lxcDriverLock(driver);
1792
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);
1793
    if (!vm) {
1794 1795 1796 1797
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching uuid '%s'"), uuidstr);
1798
        goto cleanup;
1799 1800
    }

1801 1802 1803 1804 1805 1806
    if (!virDomainObjIsActive(vm)) {
        lxcError(VIR_ERR_OPERATION_INVALID,
                 "%s", _("Domain is not running"));
        goto cleanup;
    }

1807
    ret = lxcVmTerminate(driver, vm);
1808 1809 1810
    event = virDomainEventNewFromObj(vm,
                                     VIR_DOMAIN_EVENT_STOPPED,
                                     VIR_DOMAIN_EVENT_STOPPED_DESTROYED);
1811 1812 1813 1814
    if (!vm->persistent) {
        virDomainRemoveInactive(&driver->domains, vm);
        vm = NULL;
    }
1815 1816

cleanup:
1817 1818
    if (vm)
        virDomainObjUnlock(vm);
1819 1820
    if (event)
        lxcDomainEventQueue(driver, event);
1821
    lxcDriverUnlock(driver);
1822
    return ret;
1823
}
1824

1825 1826 1827 1828 1829
static int lxcCheckNetNsSupport(void)
{
    const char *argv[] = {"ip", "link", "set", "lo", "netns", "-1", NULL};
    int ip_rc;

1830
    if (virRun(argv, &ip_rc) < 0 ||
1831 1832
        !(WIFEXITED(ip_rc) && (WEXITSTATUS(ip_rc) != 255)))
        return 0;
1833

1834 1835
    if (lxcContainerAvailable(LXC_CONTAINER_FEATURE_NET) < 0)
        return 0;
1836

1837
    return 1;
1838 1839
}

1840

1841 1842 1843 1844 1845 1846
struct lxcAutostartData {
    lxc_driver_t *driver;
    virConnectPtr conn;
};

static void
1847
lxcAutostartDomain(void *payload, const void *name ATTRIBUTE_UNUSED, void *opaque)
1848 1849 1850 1851 1852 1853
{
    virDomainObjPtr vm = payload;
    const struct lxcAutostartData *data = opaque;

    virDomainObjLock(vm);
    if (vm->autostart &&
D
Daniel P. Berrange 已提交
1854
        !virDomainObjIsActive(vm)) {
1855 1856 1857
        int ret = lxcVmStart(data->conn, data->driver, vm);
        if (ret < 0) {
            virErrorPtr err = virGetLastError();
1858
            VIR_ERROR(_("Failed to autostart VM '%s': %s"),
1859 1860 1861 1862 1863 1864 1865 1866 1867 1868 1869 1870 1871 1872
                      vm->def->name,
                      err ? err->message : "");
        } else {
            virDomainEventPtr event =
                virDomainEventNewFromObj(vm,
                                         VIR_DOMAIN_EVENT_STARTED,
                                         VIR_DOMAIN_EVENT_STARTED_BOOTED);
            if (event)
                lxcDomainEventQueue(data->driver, event);
        }
    }
    virDomainObjUnlock(vm);
}

1873 1874 1875 1876 1877 1878 1879 1880 1881 1882
static void
lxcAutostartConfigs(lxc_driver_t *driver) {
    /* XXX: Figure out a better way todo this. The domain
     * startup code needs a connection handle in order
     * to lookup the bridge associated with a virtual
     * network
     */
    virConnectPtr conn = virConnectOpen("lxc:///");
    /* Ignoring NULL conn which is mostly harmless here */

1883 1884
    struct lxcAutostartData data = { driver, conn };

1885
    lxcDriverLock(driver);
1886
    virHashForEach(driver->domains.objs, lxcAutostartDomain, &data);
1887 1888 1889 1890 1891 1892
    lxcDriverUnlock(driver);

    if (conn)
        virConnectClose(conn);
}

1893
static void
1894
lxcReconnectVM(void *payload, const void *name ATTRIBUTE_UNUSED, void *opaque)
1895 1896 1897 1898 1899
{
    virDomainObjPtr vm = payload;
    lxc_driver_t *driver = opaque;
    char *config = NULL;
    virDomainDefPtr tmp;
1900
    lxcDomainObjPrivatePtr priv;
1901 1902

    virDomainObjLock(vm);
1903 1904

    priv = vm->privateData;
1905
    if ((priv->monitor = lxcMonitorClient(driver, vm)) < 0) {
1906 1907 1908 1909 1910
        goto cleanup;
    }

    /* Read pid from controller */
    if ((virFileReadPid(lxc_driver->stateDir, vm->def->name, &vm->pid)) != 0) {
1911
        VIR_FORCE_CLOSE(priv->monitor);
1912 1913 1914
        goto cleanup;
    }

1915
    if ((config = virDomainConfigFile(driver->stateDir,
1916 1917 1918 1919
                                      vm->def->name)) == NULL)
        goto cleanup;

    /* Try and load the live config */
1920
    tmp = virDomainDefParseFile(driver->caps, config, 0);
1921 1922 1923 1924 1925 1926 1927 1928 1929
    VIR_FREE(config);
    if (tmp) {
        vm->newDef = vm->def;
        vm->def = tmp;
    }

    if (vm->pid != 0) {
        vm->def->id = vm->pid;
        vm->state = VIR_DOMAIN_RUNNING;
1930 1931 1932 1933 1934 1935

        if ((priv->monitorWatch = virEventAddHandle(
                 priv->monitor,
                 VIR_EVENT_HANDLE_ERROR | VIR_EVENT_HANDLE_HANGUP,
                 lxcMonitorEvent,
                 vm, NULL)) < 0) {
1936
            lxcVmTerminate(driver, vm);
1937 1938
            goto cleanup;
        }
1939 1940
    } else {
        vm->def->id = -1;
1941
        VIR_FORCE_CLOSE(priv->monitor);
1942 1943 1944 1945 1946 1947
    }

cleanup:
    virDomainObjUnlock(vm);
}

1948

1949
static int lxcStartup(int privileged)
D
Daniel Veillard 已提交
1950
{
1951
    char *ld;
1952
    int rc;
1953 1954 1955 1956 1957 1958

    /* Valgrind gets very annoyed when we clone containers, so
     * disable LXC when under valgrind
     * XXX remove this when valgrind is fixed
     */
    ld = getenv("LD_PRELOAD");
1959
    if (ld && strstr(ld, "vgpreload")) {
1960
        VIR_INFO("Running under valgrind, disabling driver");
1961 1962
        return 0;
    }
1963

1964
    /* Check that the user is root, silently disable if not */
1965
    if (!privileged) {
1966
        VIR_INFO("Not running privileged, disabling driver");
1967 1968 1969 1970 1971
        return 0;
    }

    /* Check that this is a container enabled kernel */
    if (lxcContainerAvailable(0) < 0) {
1972
        VIR_INFO("LXC support not available in this kernel, disabling driver");
1973
        return 0;
1974 1975
    }

1976
    if (VIR_ALLOC(lxc_driver) < 0) {
1977 1978
        return -1;
    }
1979 1980 1981 1982
    if (virMutexInit(&lxc_driver->lock) < 0) {
        VIR_FREE(lxc_driver);
        return -1;
    }
1983
    lxcDriverLock(lxc_driver);
D
Daniel Veillard 已提交
1984

1985 1986 1987
    if (virDomainObjListInit(&lxc_driver->domains) < 0)
        goto cleanup;

1988
    if (VIR_ALLOC(lxc_driver->domainEventCallbacks) < 0)
1989 1990 1991 1992 1993 1994 1995 1996
        goto cleanup;
    if (!(lxc_driver->domainEventQueue = virDomainEventQueueNew()))
        goto cleanup;

    if ((lxc_driver->domainEventTimer =
         virEventAddTimeout(-1, lxcDomainEventFlush, lxc_driver, NULL)) < 0)
        goto cleanup;

A
Amy Griffis 已提交
1997
    lxc_driver->log_libvirtd = 0; /* by default log to container logfile */
1998
    lxc_driver->have_netns = lxcCheckNetNsSupport();
D
Daniel Veillard 已提交
1999

2000 2001 2002
    rc = virCgroupForDriver("lxc", &lxc_driver->cgroup, privileged, 1);
    if (rc < 0) {
        char buf[1024];
2003 2004 2005 2006 2007
        VIR_DEBUG("Unable to create cgroup for LXC driver: %s",
                  virStrerror(-rc, buf, sizeof(buf)));
        /* Don't abort startup. We will explicitly report to
         * the user when they try to start a VM
         */
2008 2009
    }

D
Daniel Veillard 已提交
2010
    /* Call function to load lxc driver configuration information */
2011 2012
    if (lxcLoadDriverConfig(lxc_driver) < 0)
        goto cleanup;
D
Daniel Veillard 已提交
2013

2014 2015
    if ((lxc_driver->caps = lxcCapsInit()) == NULL)
        goto cleanup;
D
Daniel Veillard 已提交
2016

2017 2018 2019
    lxc_driver->caps->privateDataAllocFunc = lxcDomainObjPrivateAlloc;
    lxc_driver->caps->privateDataFreeFunc = lxcDomainObjPrivateFree;

2020
    if (virDomainLoadAllConfigs(lxc_driver->caps,
2021 2022
                                &lxc_driver->domains,
                                lxc_driver->configDir,
2023
                                lxc_driver->autostartDir,
2024
                                0, NULL, NULL) < 0)
2025
        goto cleanup;
2026

2027
    virHashForEach(lxc_driver->domains.objs, lxcReconnectVM, lxc_driver);
2028

2029
    lxcDriverUnlock(lxc_driver);
2030 2031 2032

    lxcAutostartConfigs(lxc_driver);

D
Daniel Veillard 已提交
2033 2034
    return 0;

2035 2036 2037 2038
cleanup:
    lxcDriverUnlock(lxc_driver);
    lxcShutdown();
    return -1;
D
Daniel Veillard 已提交
2039 2040
}

2041 2042 2043 2044 2045 2046 2047 2048 2049 2050 2051 2052 2053 2054 2055 2056 2057 2058 2059 2060 2061 2062 2063 2064 2065 2066
static void lxcNotifyLoadDomain(virDomainObjPtr vm, int newVM, void *opaque)
{
    lxc_driver_t *driver = opaque;

    if (newVM) {
        virDomainEventPtr event =
            virDomainEventNewFromObj(vm,
                                     VIR_DOMAIN_EVENT_DEFINED,
                                     VIR_DOMAIN_EVENT_DEFINED_ADDED);
        if (event)
            lxcDomainEventQueue(driver, event);
    }
}

/**
 * lxcReload:
 *
 * Function to restart the LXC driver, it will recheck the configuration
 * files and perform autostart
 */
static int
lxcReload(void) {
    if (!lxc_driver)
        return 0;

    lxcDriverLock(lxc_driver);
2067
    virDomainLoadAllConfigs(lxc_driver->caps,
2068 2069 2070 2071 2072 2073 2074 2075 2076 2077 2078
                            &lxc_driver->domains,
                            lxc_driver->configDir,
                            lxc_driver->autostartDir,
                            0, lxcNotifyLoadDomain, lxc_driver);
    lxcDriverUnlock(lxc_driver);

    lxcAutostartConfigs(lxc_driver);

    return 0;
}

2079
static int lxcShutdown(void)
D
Daniel Veillard 已提交
2080
{
2081
    if (lxc_driver == NULL)
2082
        return(-1);
2083

2084
    lxcDriverLock(lxc_driver);
2085
    virDomainObjListDeinit(&lxc_driver->domains);
2086

2087 2088 2089 2090 2091 2092
    virDomainEventCallbackListFree(lxc_driver->domainEventCallbacks);
    virDomainEventQueueFree(lxc_driver->domainEventQueue);

    if (lxc_driver->domainEventTimer != -1)
        virEventRemoveTimeout(lxc_driver->domainEventTimer);

2093 2094 2095 2096 2097 2098
    virCapabilitiesFree(lxc_driver->caps);
    VIR_FREE(lxc_driver->configDir);
    VIR_FREE(lxc_driver->autostartDir);
    VIR_FREE(lxc_driver->stateDir);
    VIR_FREE(lxc_driver->logDir);
    lxcDriverUnlock(lxc_driver);
2099
    virMutexDestroy(&lxc_driver->lock);
2100
    VIR_FREE(lxc_driver);
2101 2102 2103

    return 0;
}
D
Daniel Veillard 已提交
2104

2105 2106 2107 2108 2109 2110 2111 2112 2113
/**
 * lxcActive:
 *
 * Checks if the LXC daemon is active, i.e. has an active domain
 *
 * Returns 1 if active, 0 otherwise
 */
static int
lxcActive(void) {
2114
    int active;
2115

2116 2117
    if (lxc_driver == NULL)
        return(0);
2118

2119
    lxcDriverLock(lxc_driver);
2120
    active = virDomainObjListNumOfDomains(&lxc_driver->domains, 1);
2121
    lxcDriverUnlock(lxc_driver);
2122

2123
    return active;
D
Daniel Veillard 已提交
2124 2125
}

2126
static int lxcVersion(virConnectPtr conn ATTRIBUTE_UNUSED, unsigned long *version)
D
Dan Smith 已提交
2127 2128 2129
{
    struct utsname ver;

2130
    uname(&ver);
D
Dan Smith 已提交
2131

2132 2133
    if (virParseVersionString(ver.release, version) < 0) {
        lxcError(VIR_ERR_INTERNAL_ERROR, _("Unknown release: %s"), ver.release);
D
Dan Smith 已提交
2134 2135 2136 2137 2138
        return -1;
    }

    return 0;
}
2139

2140 2141
static char *lxcGetSchedulerType(virDomainPtr domain ATTRIBUTE_UNUSED,
                                 int *nparams)
2142
{
2143 2144
    char *schedulerType = NULL;

2145 2146 2147
    if (nparams)
        *nparams = 1;

2148 2149 2150
    schedulerType = strdup("posix");

    if (schedulerType == NULL)
2151
        virReportOOMError();
2152 2153

    return schedulerType;
2154 2155
}

2156
static int lxcSetSchedulerParameters(virDomainPtr domain,
2157 2158 2159
                                     virSchedParameterPtr params,
                                     int nparams)
{
2160
    lxc_driver_t *driver = domain->conn->privateData;
2161
    int i;
2162 2163 2164
    virCgroupPtr group = NULL;
    virDomainObjPtr vm = NULL;
    int ret = -1;
2165

2166
    if (driver->cgroup == NULL)
2167 2168 2169 2170
        return -1;

    lxcDriverLock(driver);
    vm = virDomainFindByUUID(&driver->domains, domain->uuid);
2171

2172
    if (vm == NULL) {
2173 2174 2175 2176
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(domain->uuid, uuidstr);
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching uuid '%s'"), uuidstr);
2177
        goto cleanup;
2178 2179
    }

2180
    if (virCgroupForDomain(driver->cgroup, vm->def->name, &group, 0) != 0)
2181
        goto cleanup;
2182 2183 2184

    for (i = 0; i < nparams; i++) {
        virSchedParameterPtr param = &params[i];
2185 2186 2187 2188 2189 2190 2191

        if (STRNEQ(param->field, "cpu_shares")) {
            lxcError(VIR_ERR_INVALID_ARG,
                     _("Invalid parameter `%s'"), param->field);
            goto cleanup;
        }

2192
        if (param->type != VIR_DOMAIN_SCHED_FIELD_ULLONG) {
2193
            lxcError(VIR_ERR_INVALID_ARG, "%s",
2194
                 _("Invalid type for cpu_shares tunable, expected a 'ullong'"));
2195 2196
            goto cleanup;
        }
2197

2198 2199 2200 2201
        int rc = virCgroupSetCpuShares(group, params[i].value.ul);
        if (rc != 0) {
            virReportSystemError(-rc, _("failed to set cpu_shares=%llu"),
                                 params[i].value.ul);
2202
            goto cleanup;
2203
        }
2204 2205

        vm->def->cputune.shares = params[i].value.ul;
2206
    }
2207
    ret = 0;
2208

2209
cleanup:
2210
    lxcDriverUnlock(driver);
2211
    virCgroupFree(&group);
2212 2213
    if (vm)
        virDomainObjUnlock(vm);
2214
    return ret;
2215 2216
}

2217
static int lxcGetSchedulerParameters(virDomainPtr domain,
2218 2219 2220
                                     virSchedParameterPtr params,
                                     int *nparams)
{
2221
    lxc_driver_t *driver = domain->conn->privateData;
2222 2223
    virCgroupPtr group = NULL;
    virDomainObjPtr vm = NULL;
2224
    unsigned long long val;
2225
    int ret = -1;
2226

2227
    if (driver->cgroup == NULL)
2228
        return -1;
2229 2230

    if ((*nparams) != 1) {
2231
        lxcError(VIR_ERR_INVALID_ARG,
J
Jim Meyering 已提交
2232
                 "%s", _("Invalid parameter count"));
2233
        return -1;
2234 2235
    }

2236 2237 2238
    lxcDriverLock(driver);
    vm = virDomainFindByUUID(&driver->domains, domain->uuid);

2239
    if (vm == NULL) {
2240 2241 2242 2243
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(domain->uuid, uuidstr);
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("No domain with matching uuid '%s'"), uuidstr);
2244
        goto cleanup;
2245 2246
    }

2247
    if (virCgroupForDomain(driver->cgroup, vm->def->name, &group, 0) != 0)
2248
        goto cleanup;
2249

2250 2251
    if (virCgroupGetCpuShares(group, &val) != 0)
        goto cleanup;
2252
    params[0].value.ul = val;
C
Chris Lalancette 已提交
2253
    if (virStrcpyStatic(params[0].field, "cpu_shares") == NULL) {
2254
        lxcError(VIR_ERR_INTERNAL_ERROR,
C
Chris Lalancette 已提交
2255 2256 2257
                 "%s", _("Field cpu_shares too big for destination"));
        goto cleanup;
    }
2258 2259
    params[0].type = VIR_DOMAIN_SCHED_FIELD_ULLONG;

2260
    ret = 0;
2261

2262
cleanup:
2263
    lxcDriverUnlock(driver);
2264
    virCgroupFree(&group);
2265 2266
    if (vm)
        virDomainObjUnlock(vm);
2267
    return ret;
2268 2269
}

2270 2271 2272 2273 2274 2275 2276 2277 2278 2279 2280 2281 2282 2283 2284 2285 2286 2287
#ifdef __linux__
static int
lxcDomainInterfaceStats(virDomainPtr dom,
                        const char *path,
                        struct _virDomainInterfaceStats *stats)
{
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm;
    int i;
    int ret = -1;

    lxcDriverLock(driver);
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);
    lxcDriverUnlock(driver);

    if (!vm) {
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
2288
        lxcError(VIR_ERR_NO_DOMAIN,
2289 2290 2291 2292 2293
                 _("No domain with matching uuid '%s'"), uuidstr);
        goto cleanup;
    }

    if (!virDomainObjIsActive(vm)) {
2294
        lxcError(VIR_ERR_OPERATION_INVALID,
2295 2296 2297 2298 2299 2300 2301 2302 2303 2304 2305 2306 2307 2308
                 "%s", _("Domain is not running"));
        goto cleanup;
    }

    /* Check the path is one of the domain's network interfaces. */
    for (i = 0 ; i < vm->def->nnets ; i++) {
        if (vm->def->nets[i]->ifname &&
            STREQ(vm->def->nets[i]->ifname, path)) {
            ret = 0;
            break;
        }
    }

    if (ret == 0)
2309
        ret = linuxDomainInterfaceStats(path, stats);
2310
    else
2311
        lxcError(VIR_ERR_INVALID_ARG,
2312 2313 2314 2315 2316 2317 2318 2319 2320 2321 2322 2323
                 _("Invalid path, '%s' is not a known interface"), path);

cleanup:
    if (vm)
        virDomainObjUnlock(vm);
    return ret;
}
#else
static int
lxcDomainInterfaceStats(virDomainPtr dom,
                        const char *path ATTRIBUTE_UNUSED,
                        struct _virDomainInterfaceStats *stats ATTRIBUTE_UNUSED)
2324
    lxcError(VIR_ERR_NO_SUPPORT, "%s", __FUNCTION__);
2325 2326 2327 2328
    return -1;
}
#endif

2329 2330 2331 2332 2333 2334 2335 2336 2337 2338 2339 2340 2341
static int lxcDomainGetAutostart(virDomainPtr dom,
                                   int *autostart) {
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm;
    int ret = -1;

    lxcDriverLock(driver);
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);
    lxcDriverUnlock(driver);

    if (!vm) {
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
2342
        lxcError(VIR_ERR_NO_DOMAIN,
2343
                 _("No domain with matching uuid '%s'"), uuidstr);
2344 2345 2346 2347 2348 2349 2350 2351 2352 2353 2354 2355 2356 2357 2358 2359 2360 2361 2362 2363 2364 2365 2366 2367 2368
        goto cleanup;
    }

    *autostart = vm->autostart;
    ret = 0;

cleanup:
    if (vm)
        virDomainObjUnlock(vm);
    return ret;
}

static int lxcDomainSetAutostart(virDomainPtr dom,
                                   int autostart) {
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm;
    char *configFile = NULL, *autostartLink = NULL;
    int ret = -1;

    lxcDriverLock(driver);
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);

    if (!vm) {
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
2369
        lxcError(VIR_ERR_NO_DOMAIN,
2370
                 _("No domain with matching uuid '%s'"), uuidstr);
2371 2372 2373 2374
        goto cleanup;
    }

    if (!vm->persistent) {
2375
        lxcError(VIR_ERR_OPERATION_INVALID,
2376
                 "%s", _("Cannot set autostart for transient domain"));
2377 2378 2379 2380 2381
        goto cleanup;
    }

    autostart = (autostart != 0);

2382 2383 2384 2385
    if (vm->autostart == autostart) {
        ret = 0;
        goto cleanup;
    }
2386

2387
    configFile = virDomainConfigFile(driver->configDir,
2388 2389 2390
                                     vm->def->name);
    if (configFile == NULL)
        goto cleanup;
2391
    autostartLink = virDomainConfigFile(driver->autostartDir,
2392 2393 2394
                                        vm->def->name);
    if (autostartLink == NULL)
        goto cleanup;
2395

2396 2397
    if (autostart) {
        int err;
2398

2399
        if ((err = virFileMakePath(driver->autostartDir))) {
2400
            virReportSystemError(err,
2401 2402 2403
                                 _("Cannot create autostart directory %s"),
                                 driver->autostartDir);
            goto cleanup;
2404 2405
        }

2406
        if (symlink(configFile, autostartLink) < 0) {
2407
            virReportSystemError(errno,
2408 2409 2410 2411 2412 2413
                                 _("Failed to create symlink '%s to '%s'"),
                                 autostartLink, configFile);
            goto cleanup;
        }
    } else {
        if (unlink(autostartLink) < 0 && errno != ENOENT && errno != ENOTDIR) {
2414
            virReportSystemError(errno,
2415 2416 2417 2418
                                 _("Failed to delete symlink '%s'"),
                                 autostartLink);
            goto cleanup;
        }
2419
    }
2420 2421

    vm->autostart = autostart;
2422 2423 2424 2425 2426 2427 2428 2429 2430 2431 2432
    ret = 0;

cleanup:
    VIR_FREE(configFile);
    VIR_FREE(autostartLink);
    if (vm)
        virDomainObjUnlock(vm);
    lxcDriverUnlock(driver);
    return ret;
}

R
Ryota Ozaki 已提交
2433 2434 2435 2436 2437 2438 2439 2440 2441 2442 2443
static int lxcFreezeContainer(lxc_driver_t *driver, virDomainObjPtr vm)
{
    int timeout = 1000; /* In milliseconds */
    int check_interval = 1; /* In milliseconds */
    int exp = 10;
    int waited_time = 0;
    int ret = -1;
    char *state = NULL;
    virCgroupPtr cgroup = NULL;

    if (!(driver->cgroup &&
2444
          virCgroupForDomain(driver->cgroup, vm->def->name, &cgroup, 0) == 0))
R
Ryota Ozaki 已提交
2445 2446
        return -1;

2447 2448
    /* From here on, we know that cgroup != NULL.  */

R
Ryota Ozaki 已提交
2449 2450 2451 2452 2453 2454 2455 2456 2457 2458 2459 2460 2461 2462 2463 2464 2465 2466 2467 2468 2469
    while (waited_time < timeout) {
        int r;
        /*
         * Writing "FROZEN" to the "freezer.state" freezes the group,
         * i.e., the container, temporarily transiting "FREEZING" state.
         * Once the freezing is completed, the state of the group transits
         * to "FROZEN".
         * (see linux-2.6/Documentation/cgroups/freezer-subsystem.txt)
         */
        r = virCgroupSetFreezerState(cgroup, "FROZEN");

        /*
         * Returning EBUSY explicitly indicates that the group is
         * being freezed but incomplete and other errors are true
         * errors.
         */
        if (r < 0 && r != -EBUSY) {
            VIR_DEBUG("Writing freezer.state failed with errno: %d", r);
            goto error;
        }
        if (r == -EBUSY)
2470
            VIR_DEBUG("Writing freezer.state gets EBUSY");
R
Ryota Ozaki 已提交
2471 2472 2473 2474 2475 2476 2477 2478 2479 2480 2481 2482 2483 2484 2485 2486 2487 2488 2489 2490 2491 2492 2493 2494 2495 2496 2497 2498 2499 2500 2501 2502 2503 2504 2505 2506 2507 2508 2509

        /*
         * Unfortunately, returning 0 (success) is likely to happen
         * even when the freezing has not been completed. Sometimes
         * the state of the group remains "FREEZING" like when
         * returning -EBUSY and even worse may never transit to
         * "FROZEN" even if writing "FROZEN" again.
         *
         * So we don't trust the return value anyway and always
         * decide that the freezing has been complete only with
         * the state actually transit to "FROZEN".
         */
        usleep(check_interval * 1000);

        r = virCgroupGetFreezerState(cgroup, &state);

        if (r < 0) {
            VIR_DEBUG("Reading freezer.state failed with errno: %d", r);
            goto error;
        }
        VIR_DEBUG("Read freezer.state: %s", state);

        if (STREQ(state, "FROZEN")) {
            ret = 0;
            goto cleanup;
        }

        waited_time += check_interval;
        /*
         * Increasing check_interval exponentially starting with
         * small initial value treats nicely two cases; One is
         * a container is under no load and waiting for long period
         * makes no sense. The other is under heavy load. The container
         * may stay longer time in FREEZING or never transit to FROZEN.
         * In that case, eager polling will just waste CPU time.
         */
        check_interval *= exp;
        VIR_FREE(state);
    }
2510
    VIR_DEBUG("lxcFreezeContainer timeout");
R
Ryota Ozaki 已提交
2511 2512 2513 2514 2515 2516 2517 2518 2519 2520
error:
    /*
     * If timeout or an error on reading the state occurs,
     * activate the group again and return an error.
     * This is likely to fall the group back again gracefully.
     */
    virCgroupSetFreezerState(cgroup, "THAWED");
    ret = -1;

cleanup:
2521
    virCgroupFree(&cgroup);
R
Ryota Ozaki 已提交
2522 2523 2524 2525 2526 2527 2528 2529 2530 2531 2532 2533 2534 2535 2536 2537 2538
    VIR_FREE(state);
    return ret;
}

static int lxcDomainSuspend(virDomainPtr dom)
{
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm;
    virDomainEventPtr event = NULL;
    int ret = -1;

    lxcDriverLock(driver);
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);

    if (!vm) {
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
2539
        lxcError(VIR_ERR_NO_DOMAIN,
2540
                 _("No domain with matching uuid '%s'"), uuidstr);
R
Ryota Ozaki 已提交
2541 2542 2543
        goto cleanup;
    }

D
Daniel P. Berrange 已提交
2544
    if (!virDomainObjIsActive(vm)) {
2545
        lxcError(VIR_ERR_OPERATION_INVALID,
2546
                 "%s", _("Domain is not running"));
R
Ryota Ozaki 已提交
2547 2548 2549 2550 2551
        goto cleanup;
    }

    if (vm->state != VIR_DOMAIN_PAUSED) {
        if (lxcFreezeContainer(driver, vm) < 0) {
2552
            lxcError(VIR_ERR_OPERATION_FAILED,
2553
                     "%s", _("Suspend operation failed"));
R
Ryota Ozaki 已提交
2554 2555 2556 2557 2558 2559 2560 2561 2562
            goto cleanup;
        }
        vm->state = VIR_DOMAIN_PAUSED;

        event = virDomainEventNewFromObj(vm,
                                         VIR_DOMAIN_EVENT_SUSPENDED,
                                         VIR_DOMAIN_EVENT_SUSPENDED_PAUSED);
    }

2563
    if (virDomainSaveStatus(driver->caps, driver->stateDir, vm) < 0)
R
Ryota Ozaki 已提交
2564 2565 2566 2567 2568 2569 2570 2571 2572 2573 2574 2575 2576 2577 2578 2579 2580 2581 2582 2583 2584 2585 2586 2587 2588 2589 2590 2591 2592 2593 2594 2595 2596 2597 2598 2599 2600 2601 2602 2603
        goto cleanup;
    ret = 0;

cleanup:
    if (event)
        lxcDomainEventQueue(driver, event);
    if (vm)
        virDomainObjUnlock(vm);
    lxcDriverUnlock(driver);
    return ret;
}

static int lxcUnfreezeContainer(lxc_driver_t *driver, virDomainObjPtr vm)
{
    int ret;
    virCgroupPtr cgroup = NULL;

    if (!(driver->cgroup &&
        virCgroupForDomain(driver->cgroup, vm->def->name, &cgroup, 0) == 0))
        return -1;

    ret = virCgroupSetFreezerState(cgroup, "THAWED");

    virCgroupFree(&cgroup);
    return ret;
}

static int lxcDomainResume(virDomainPtr dom)
{
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm;
    virDomainEventPtr event = NULL;
    int ret = -1;

    lxcDriverLock(driver);
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);

    if (!vm) {
        char uuidstr[VIR_UUID_STRING_BUFLEN];
        virUUIDFormat(dom->uuid, uuidstr);
2604
        lxcError(VIR_ERR_NO_DOMAIN,
2605
                 _("No domain with matching uuid '%s'"), uuidstr);
R
Ryota Ozaki 已提交
2606 2607 2608
        goto cleanup;
    }

D
Daniel P. Berrange 已提交
2609
    if (!virDomainObjIsActive(vm)) {
2610
        lxcError(VIR_ERR_OPERATION_INVALID,
2611
                 "%s", _("Domain is not running"));
R
Ryota Ozaki 已提交
2612 2613 2614 2615 2616
        goto cleanup;
    }

    if (vm->state == VIR_DOMAIN_PAUSED) {
        if (lxcUnfreezeContainer(driver, vm) < 0) {
2617
            lxcError(VIR_ERR_OPERATION_FAILED,
2618
                     "%s", _("Resume operation failed"));
R
Ryota Ozaki 已提交
2619 2620 2621 2622 2623 2624 2625 2626 2627
            goto cleanup;
        }
        vm->state = VIR_DOMAIN_RUNNING;

        event = virDomainEventNewFromObj(vm,
                                         VIR_DOMAIN_EVENT_RESUMED,
                                         VIR_DOMAIN_EVENT_RESUMED_UNPAUSED);
    }

2628
    if (virDomainSaveStatus(driver->caps, driver->stateDir, vm) < 0)
R
Ryota Ozaki 已提交
2629 2630 2631 2632 2633 2634 2635 2636 2637 2638 2639 2640
        goto cleanup;
    ret = 0;

cleanup:
    if (event)
        lxcDomainEventQueue(driver, event);
    if (vm)
        virDomainObjUnlock(vm);
    lxcDriverUnlock(driver);
    return ret;
}

2641 2642 2643 2644 2645 2646 2647 2648 2649 2650 2651 2652 2653 2654 2655 2656 2657 2658 2659 2660 2661 2662 2663 2664 2665 2666 2667 2668 2669 2670 2671 2672 2673 2674 2675 2676 2677 2678 2679 2680 2681 2682 2683 2684 2685 2686 2687
static int
lxcDomainOpenConsole(virDomainPtr dom,
                      const char *devname,
                      virStreamPtr st,
                      unsigned int flags)
{
    lxc_driver_t *driver = dom->conn->privateData;
    virDomainObjPtr vm = NULL;
    char uuidstr[VIR_UUID_STRING_BUFLEN];
    int ret = -1;
    virDomainChrDefPtr chr = NULL;

    virCheckFlags(0, -1);

    lxcDriverLock(driver);
    virUUIDFormat(dom->uuid, uuidstr);
    vm = virDomainFindByUUID(&driver->domains, dom->uuid);
    if (!vm) {
        lxcError(VIR_ERR_NO_DOMAIN,
                 _("no domain with matching uuid '%s'"), uuidstr);
        goto cleanup;
    }

    if (!virDomainObjIsActive(vm)) {
        lxcError(VIR_ERR_OPERATION_INVALID,
                 "%s", _("domain is not running"));
        goto cleanup;
    }

    if (devname) {
        /* XXX support device aliases in future */
        lxcError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                 _("Named device aliases are not supported"));
        goto cleanup;
    } else {
        if (vm->def->console)
            chr = vm->def->console;
        else if (vm->def->nserials)
            chr = vm->def->serials[0];
    }

    if (!chr) {
        lxcError(VIR_ERR_INTERNAL_ERROR, "%s",
                 _("cannot find default console device"));
        goto cleanup;
    }

2688
    if (chr->source.type != VIR_DOMAIN_CHR_TYPE_PTY) {
2689 2690 2691 2692 2693
        lxcError(VIR_ERR_INTERNAL_ERROR,
                 _("character device %s is not using a PTY"), devname);
        goto cleanup;
    }

2694
    if (virFDStreamOpenFile(st, chr->source.data.file.path, 0, 0, O_RDWR) < 0)
2695 2696 2697 2698 2699 2700 2701 2702 2703 2704
        goto cleanup;

    ret = 0;
cleanup:
    if (vm)
        virDomainObjUnlock(vm);
    lxcDriverUnlock(driver);
    return ret;
}

R
Ryota Ozaki 已提交
2705

D
Daniel Veillard 已提交
2706 2707 2708 2709 2710 2711 2712 2713
/* Function Tables */
static virDriver lxcDriver = {
    VIR_DRV_LXC, /* the number virDrvNo */
    "LXC", /* the name of the driver */
    lxcOpen, /* open */
    lxcClose, /* close */
    NULL, /* supports_feature */
    NULL, /* type */
D
Dan Smith 已提交
2714
    lxcVersion, /* version */
2715
    NULL, /* libvirtVersion (impl. in libvirt.c) */
2716
    virGetHostname, /* getHostname */
E
Eric Blake 已提交
2717
    NULL, /* getSysinfo */
D
Daniel Veillard 已提交
2718
    NULL, /* getMaxVcpus */
2719 2720
    nodeGetInfo, /* nodeGetInfo */
    lxcGetCapabilities, /* getCapabilities */
D
Daniel Veillard 已提交
2721 2722
    lxcListDomains, /* listDomains */
    lxcNumDomains, /* numOfDomains */
2723
    lxcDomainCreateAndStart, /* domainCreateXML */
D
Daniel Veillard 已提交
2724 2725 2726
    lxcDomainLookupByID, /* domainLookupByID */
    lxcDomainLookupByUUID, /* domainLookupByUUID */
    lxcDomainLookupByName, /* domainLookupByName */
R
Ryota Ozaki 已提交
2727 2728
    lxcDomainSuspend, /* domainSuspend */
    lxcDomainResume, /* domainResume */
2729
    NULL, /* domainShutdown */
D
Daniel Veillard 已提交
2730
    NULL, /* domainReboot */
2731
    lxcDomainDestroy, /* domainDestroy */
D
Daniel Veillard 已提交
2732
    lxcGetOSType, /* domainGetOSType */
R
Ryota Ozaki 已提交
2733 2734 2735
    lxcDomainGetMaxMemory, /* domainGetMaxMemory */
    lxcDomainSetMaxMemory, /* domainSetMaxMemory */
    lxcDomainSetMemory, /* domainSetMemory */
2736
    NULL, /* domainSetMemoryFlags */
2737 2738 2739 2740
    lxcDomainSetMemoryParameters, /* domainSetMemoryParameters */
    lxcDomainGetMemoryParameters, /* domainGetMemoryParameters */
    NULL, /* domainSetBlkioParameters */
    NULL, /* domainGetBlkioParameters */
D
Daniel Veillard 已提交
2741 2742 2743 2744
    lxcDomainGetInfo, /* domainGetInfo */
    NULL, /* domainSave */
    NULL, /* domainRestore */
    NULL, /* domainCoreDump */
2745
    NULL, /* domainScreenshot */
D
Daniel Veillard 已提交
2746
    NULL, /* domainSetVcpus */
E
Eric Blake 已提交
2747 2748
    NULL, /* domainSetVcpusFlags */
    NULL, /* domainGetVcpusFlags */
D
Daniel Veillard 已提交
2749 2750 2751
    NULL, /* domainPinVcpu */
    NULL, /* domainGetVcpus */
    NULL, /* domainGetMaxVcpus */
2752 2753
    NULL, /* domainGetSecurityLabel */
    NULL, /* nodeGetSecurityModel */
2754
    lxcDomainGetXMLDesc, /* domainGetXMLDesc */
2755 2756
    NULL, /* domainXMLFromNative */
    NULL, /* domainXMLToNative */
D
Daniel Veillard 已提交
2757 2758
    lxcListDefinedDomains, /* listDefinedDomains */
    lxcNumDefinedDomains, /* numOfDefinedDomains */
2759
    lxcDomainStart, /* domainCreate */
2760
    lxcDomainStartWithFlags, /* domainCreateWithFlags */
D
Daniel Veillard 已提交
2761 2762 2763
    lxcDomainDefine, /* domainDefineXML */
    lxcDomainUndefine, /* domainUndefine */
    NULL, /* domainAttachDevice */
2764
    NULL, /* domainAttachDeviceFlags */
D
Daniel Veillard 已提交
2765
    NULL, /* domainDetachDevice */
2766
    NULL, /* domainDetachDeviceFlags */
2767
    NULL, /* domainUpdateDeviceFlags */
2768 2769
    lxcDomainGetAutostart, /* domainGetAutostart */
    lxcDomainSetAutostart, /* domainSetAutostart */
2770 2771 2772
    lxcGetSchedulerType, /* domainGetSchedulerType */
    lxcGetSchedulerParameters, /* domainGetSchedulerParameters */
    lxcSetSchedulerParameters, /* domainSetSchedulerParameters */
D
Daniel Veillard 已提交
2773 2774 2775 2776
    NULL, /* domainMigratePrepare */
    NULL, /* domainMigratePerform */
    NULL, /* domainMigrateFinish */
    NULL, /* domainBlockStats */
2777
    lxcDomainInterfaceStats, /* domainInterfaceStats */
2778
    NULL, /* domainMemoryStats */
D
Daniel P. Berrange 已提交
2779 2780
    NULL, /* domainBlockPeek */
    NULL, /* domainMemoryPeek */
2781
    NULL, /* domainGetBlockInfo */
2782 2783
    nodeGetCellsFreeMemory, /* nodeGetCellsFreeMemory */
    nodeGetFreeMemory,  /* getFreeMemory */
2784 2785
    lxcDomainEventRegister, /* domainEventRegister */
    lxcDomainEventDeregister, /* domainEventDeregister */
D
Daniel Veillard 已提交
2786 2787
    NULL, /* domainMigratePrepare2 */
    NULL, /* domainMigrateFinish2 */
2788
    NULL, /* nodeDeviceDettach */
2789 2790
    NULL, /* nodeDeviceReAttach */
    NULL, /* nodeDeviceReset */
C
Chris Lalancette 已提交
2791
    NULL, /* domainMigratePrepareTunnel */
2792 2793 2794 2795
    lxcIsEncrypted, /* isEncrypted */
    lxcIsSecure, /* isSecure */
    lxcDomainIsActive, /* domainIsActive */
    lxcDomainIsPersistent, /* domainIsPersistent */
2796
    lxcDomainIsUpdated, /* domainIsUpdated */
J
Jiri Denemark 已提交
2797
    NULL, /* cpuCompare */
2798
    NULL, /* cpuBaseline */
2799
    NULL, /* domainGetJobInfo */
2800
    NULL, /* domainAbortJob */
2801
    NULL, /* domainMigrateSetMaxDowntime */
2802
    NULL, /* domainMigrateSetMaxSpeed */
2803 2804
    lxcDomainEventRegisterAny, /* domainEventRegisterAny */
    lxcDomainEventDeregisterAny, /* domainEventDeregisterAny */
2805 2806 2807
    NULL, /* domainManagedSave */
    NULL, /* domainHasManagedSaveImage */
    NULL, /* domainManagedSaveRemove */
C
Chris Lalancette 已提交
2808
    NULL, /* domainSnapshotCreateXML */
2809
    NULL, /* domainSnapshotGetXMLDesc */
C
Chris Lalancette 已提交
2810 2811 2812 2813 2814 2815 2816
    NULL, /* domainSnapshotNum */
    NULL, /* domainSnapshotListNames */
    NULL, /* domainSnapshotLookupByName */
    NULL, /* domainHasCurrentSnapshot */
    NULL, /* domainSnapshotCurrent */
    NULL, /* domainRevertToSnapshot */
    NULL, /* domainSnapshotDelete */
C
Chris Lalancette 已提交
2817
    NULL, /* qemuDomainMonitorCommand */
2818
    lxcDomainOpenConsole, /* domainOpenConsole */
2819
    NULL, /* domainInjectNMI */
D
Daniel Veillard 已提交
2820 2821
};

2822
static virStateDriver lxcStateDriver = {
2823
    .name = "LXC",
2824 2825 2826
    .initialize = lxcStartup,
    .cleanup = lxcShutdown,
    .active = lxcActive,
2827
    .reload = lxcReload,
2828 2829
};

D
Daniel Veillard 已提交
2830 2831 2832
int lxcRegister(void)
{
    virRegisterDriver(&lxcDriver);
2833
    virRegisterStateDriver(&lxcStateDriver);
D
Daniel Veillard 已提交
2834 2835
    return 0;
}