qemu_conf.c 48.9 KB
Newer Older
D
Daniel P. Berrange 已提交
1
/*
2
 * qemu_conf.c: QEMU configuration management
D
Daniel P. Berrange 已提交
3
 *
4
 * Copyright (C) 2006-2014 Red Hat, Inc.
D
Daniel P. Berrange 已提交
5 6 7 8 9 10 11 12 13 14 15 16 17
 * Copyright (C) 2006 Daniel P. Berrange
 *
 * This library is free software; you can redistribute it and/or
 * modify it under the terms of the GNU Lesser General Public
 * License as published by the Free Software Foundation; either
 * version 2.1 of the License, or (at your option) any later version.
 *
 * This library is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 * Lesser General Public License for more details.
 *
 * You should have received a copy of the GNU Lesser General Public
18
 * License along with this library.  If not, see
O
Osier Yang 已提交
19
 * <http://www.gnu.org/licenses/>.
D
Daniel P. Berrange 已提交
20 21 22 23
 *
 * Author: Daniel P. Berrange <berrange@redhat.com>
 */

24
#include <config.h>
25

D
Daniel P. Berrange 已提交
26 27 28 29
#include <string.h>
#include <limits.h>
#include <sys/types.h>
#include <sys/stat.h>
30
#include <stdlib.h>
D
Daniel P. Berrange 已提交
31 32 33
#include <unistd.h>
#include <errno.h>
#include <fcntl.h>
34
#include <sys/wait.h>
35
#include <arpa/inet.h>
D
Daniel P. Berrange 已提交
36

37
#include "virerror.h"
38
#include "qemu_conf.h"
39
#include "qemu_capabilities.h"
40
#include "qemu_domain.h"
41
#include "viruuid.h"
42
#include "virbuffer.h"
43
#include "virconf.h"
44
#include "viralloc.h"
45
#include "datatypes.h"
46
#include "virxml.h"
47
#include "nodeinfo.h"
48
#include "virlog.h"
49
#include "cpu/cpu.h"
50
#include "domain_nwfilter.h"
E
Eric Blake 已提交
51
#include "virfile.h"
52
#include "virstring.h"
53
#include "viratomic.h"
54
#include "storage_conf.h"
55
#include "configmake.h"
56

57 58
#define VIR_FROM_THIS VIR_FROM_QEMU

59 60
VIR_LOG_INIT("qemu.qemu_conf");

61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76
/* These are only defaults, they can be changed now in qemu.conf and
 * explicitly specified port is checked against these two (makes
 * sense to limit the values).
 *
 * This limitation is mentioned in qemu.conf, so bear in mind that the
 * configuration file should reflect any changes made to these values.
 */
#define QEMU_REMOTE_PORT_MIN 5900
#define QEMU_REMOTE_PORT_MAX 65535

#define QEMU_WEBSOCKET_PORT_MIN 5700
#define QEMU_WEBSOCKET_PORT_MAX 65535

#define QEMU_MIGRATION_PORT_MIN 49152
#define QEMU_MIGRATION_PORT_MAX 49215

77 78 79 80 81
static virClassPtr virQEMUDriverConfigClass;
static void virQEMUDriverConfigDispose(void *obj);

static int virQEMUConfigOnceInit(void)
{
82 83 84 85
    virQEMUDriverConfigClass = virClassNew(virClassForObject(),
                                           "virQEMUDriverConfig",
                                           sizeof(virQEMUDriverConfig),
                                           virQEMUDriverConfigDispose);
86

87
    if (!virQEMUDriverConfigClass)
88 89 90
        return -1;
    else
        return 0;
91 92 93 94 95
}

VIR_ONCE_GLOBAL_INIT(virQEMUConfig)


96 97
static void
qemuDriverLock(virQEMUDriverPtr driver)
98 99 100
{
    virMutexLock(&driver->lock);
}
101 102
static void
qemuDriverUnlock(virQEMUDriverPtr driver)
103 104 105 106
{
    virMutexUnlock(&driver->lock);
}

107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124
void qemuDomainCmdlineDefFree(qemuDomainCmdlineDefPtr def)
{
    size_t i;

    if (!def)
        return;

    for (i = 0; i < def->num_args; i++)
        VIR_FREE(def->args[i]);
    for (i = 0; i < def->num_env; i++) {
        VIR_FREE(def->env_name[i]);
        VIR_FREE(def->env_value[i]);
    }
    VIR_FREE(def->args);
    VIR_FREE(def->env_name);
    VIR_FREE(def->env_value);
    VIR_FREE(def);
}
125

126

127 128
#define VIR_QEMU_OVMF_LOADER_PATH "/usr/share/OVMF/OVMF_CODE.fd"
#define VIR_QEMU_OVMF_NVRAM_PATH "/usr/share/OVMF/OVMF_VARS.fd"
129 130
#define VIR_QEMU_OVMF_SEC_LOADER_PATH "/usr/share/OVMF/OVMF_CODE.secboot.fd"
#define VIR_QEMU_OVMF_SEC_NVRAM_PATH "/usr/share/OVMF/OVMF_VARS.fd"
131 132
#define VIR_QEMU_AAVMF_LOADER_PATH "/usr/share/AAVMF/AAVMF_CODE.fd"
#define VIR_QEMU_AAVMF_NVRAM_PATH "/usr/share/AAVMF/AAVMF_VARS.fd"
133

134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151
virQEMUDriverConfigPtr virQEMUDriverConfigNew(bool privileged)
{
    virQEMUDriverConfigPtr cfg;

    if (virQEMUConfigInitialize() < 0)
        return NULL;

    if (!(cfg = virObjectNew(virQEMUDriverConfigClass)))
        return NULL;

    cfg->uri = privileged ? "qemu:///system" : "qemu:///session";

    if (privileged) {
        if (virGetUserID(QEMU_USER, &cfg->user) < 0)
            goto error;
        if (virGetGroupID(QEMU_GROUP, &cfg->group) < 0)
            goto error;
    } else {
152 153
        cfg->user = (uid_t)-1;
        cfg->group = (gid_t)-1;
154 155 156
    }
    cfg->dynamicOwnership = privileged;

157
    cfg->cgroupControllers = -1; /* -1 == auto-detect */
158 159 160 161

    if (privileged) {
        if (virAsprintf(&cfg->logDir,
                        "%s/log/libvirt/qemu", LOCALSTATEDIR) < 0)
162
            goto error;
163

164 165
        if (VIR_STRDUP(cfg->configBaseDir, SYSCONFDIR "/libvirt") < 0)
            goto error;
D
Daniel P. Berrange 已提交
166

167 168
        if (virAsprintf(&cfg->stateDir,
                      "%s/run/libvirt/qemu", LOCALSTATEDIR) < 0)
169
            goto error;
170 171 172

        if (virAsprintf(&cfg->cacheDir,
                      "%s/cache/libvirt/qemu", LOCALSTATEDIR) < 0)
173
            goto error;
174 175 176 177 178

        if (virAsprintf(&cfg->libDir,
                      "%s/lib/libvirt/qemu", LOCALSTATEDIR) < 0)
            goto error;
        if (virAsprintf(&cfg->saveDir, "%s/save", cfg->libDir) < 0)
179
            goto error;
180
        if (virAsprintf(&cfg->snapshotDir, "%s/snapshot", cfg->libDir) < 0)
181
            goto error;
182
        if (virAsprintf(&cfg->autoDumpPath, "%s/dump", cfg->libDir) < 0)
183
            goto error;
184 185 186
        if (virAsprintf(&cfg->channelTargetDir,
                        "%s/channel/target", cfg->libDir) < 0)
            goto error;
187 188
        if (virAsprintf(&cfg->nvramDir, "%s/nvram", cfg->libDir) < 0)
            goto error;
189 190 191 192 193 194 195 196 197 198 199
    } else {
        char *rundir;
        char *cachedir;

        cachedir = virGetUserCacheDirectory();
        if (!cachedir)
            goto error;

        if (virAsprintf(&cfg->logDir,
                        "%s/qemu/log", cachedir) < 0) {
            VIR_FREE(cachedir);
200
            goto error;
201 202 203
        }
        if (virAsprintf(&cfg->cacheDir, "%s/qemu/cache", cachedir) < 0) {
            VIR_FREE(cachedir);
204
            goto error;
205 206
        }
        VIR_FREE(cachedir);
207

208 209 210 211 212
        rundir = virGetUserRuntimeDirectory();
        if (!rundir)
            goto error;
        if (virAsprintf(&cfg->stateDir, "%s/qemu/run", rundir) < 0) {
            VIR_FREE(rundir);
213
            goto error;
214 215 216 217 218 219 220
        }
        VIR_FREE(rundir);

        if (!(cfg->configBaseDir = virGetUserConfigDirectory()))
            goto error;

        if (virAsprintf(&cfg->libDir, "%s/qemu/lib", cfg->configBaseDir) < 0)
221
            goto error;
222
        if (virAsprintf(&cfg->saveDir, "%s/qemu/save", cfg->configBaseDir) < 0)
223
            goto error;
224
        if (virAsprintf(&cfg->snapshotDir, "%s/qemu/snapshot", cfg->configBaseDir) < 0)
225
            goto error;
226
        if (virAsprintf(&cfg->autoDumpPath, "%s/qemu/dump", cfg->configBaseDir) < 0)
227
            goto error;
228 229 230
        if (virAsprintf(&cfg->channelTargetDir,
                        "%s/qemu/channel/target", cfg->configBaseDir) < 0)
            goto error;
231 232 233
        if (virAsprintf(&cfg->nvramDir,
                        "%s/qemu/nvram", cfg->configBaseDir) < 0)
            goto error;
234 235 236
    }

    if (virAsprintf(&cfg->configDir, "%s/qemu", cfg->configBaseDir) < 0)
237
        goto error;
238
    if (virAsprintf(&cfg->autostartDir, "%s/qemu/autostart", cfg->configBaseDir) < 0)
239
        goto error;
240

241 242 243 244 245 246
    /* Set the default directory to find TLS X.509 certificates.
     * This will then be used as a fallback if the service specific
     * directory doesn't exist (although we don't check if this exists).
     */
    if (VIR_STRDUP(cfg->defaultTLSx509certdir,
                   SYSCONFDIR "/pki/qemu") < 0)
247
        goto error;
248

249
    if (VIR_STRDUP(cfg->vncListen, "127.0.0.1") < 0)
250
        goto error;
D
Daniel P. Berrange 已提交
251

252 253
    if (VIR_STRDUP(cfg->spiceListen, "127.0.0.1") < 0)
        goto error;
254

255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276
    /*
     * If a "SYSCONFDIR" + "pki/libvirt-<val>" exists, then assume someone
     * has created a val specific area to place service specific certificates.
     *
     * If the service specific directory doesn't exist, 'assume' that the
     * user has created and populated the "SYSCONFDIR" + "pki/libvirt-default".
     */
#define SET_TLS_X509_CERT_DEFAULT(val)                                 \
    do {                                                               \
        if (virFileExists(SYSCONFDIR "/pki/libvirt-"#val)) {           \
            if (VIR_STRDUP(cfg->val ## TLSx509certdir,                 \
                           SYSCONFDIR "/pki/libvirt-"#val) < 0)        \
                goto error;                                            \
        } else {                                                       \
            if (VIR_STRDUP(cfg->val ## TLSx509certdir,                 \
                           cfg->defaultTLSx509certdir) < 0)            \
                goto error;                                            \
        }                                                              \
    } while (false);

    SET_TLS_X509_CERT_DEFAULT(vnc);
    SET_TLS_X509_CERT_DEFAULT(spice);
277
    SET_TLS_X509_CERT_DEFAULT(chardev);
278 279

#undef SET_TLS_X509_CERT_DEFAULT
280

281 282 283
    cfg->remotePortMin = QEMU_REMOTE_PORT_MIN;
    cfg->remotePortMax = QEMU_REMOTE_PORT_MAX;

284 285 286
    cfg->webSocketPortMin = QEMU_WEBSOCKET_PORT_MIN;
    cfg->webSocketPortMax = QEMU_WEBSOCKET_PORT_MAX;

287 288 289
    cfg->migrationPortMin = QEMU_MIGRATION_PORT_MIN;
    cfg->migrationPortMax = QEMU_MIGRATION_PORT_MAX;

290
    /* For privileged driver, try and find hugetlbfs mounts automatically.
291
     * Non-privileged driver requires admin to create a dir for the
292
     * user, chown it, and then let user configure it manually. */
293
    if (privileged &&
294 295 296 297
        virFileFindHugeTLBFS(&cfg->hugetlbfs, &cfg->nhugetlbfs) < 0) {
        /* This however is not implemented on all platforms. */
        virErrorPtr err = virGetLastError();
        if (err && err->code != VIR_ERR_NO_SUPPORT)
298
            goto error;
299
    }
300

301
    if (VIR_STRDUP(cfg->bridgeHelperName, QEMU_BRIDGE_HELPER) < 0)
302
        goto error;
303

304 305 306 307 308 309 310 311 312
    cfg->clearEmulatorCapabilities = true;

    cfg->securityDefaultConfined = true;
    cfg->securityRequireConfined = false;

    cfg->keepAliveInterval = 5;
    cfg->keepAliveCount = 5;
    cfg->seccompSandbox = -1;

313
    cfg->logTimestamp = true;
314
    cfg->glusterDebugLevel = 4;
315
    cfg->stdioLogD = true;
316

317 318 319
    if (!(cfg->namespaces = virBitmapNew(QEMU_DOMAIN_NS_LAST)))
        goto error;

320 321 322 323
#if defined(__linux__)
    if (privileged &&
        virProcessNamespaceAvailable(VIR_PROCESS_NAMESPACE_MNT) == 0 &&
        virBitmapSetBit(cfg->namespaces, QEMU_DOMAIN_NS_MOUNT) < 0)
324
        goto error;
325
#endif /* defined(__linux__) */
326

327
#ifdef DEFAULT_LOADER_NVRAM
328 329 330
    if (virFirmwareParseList(DEFAULT_LOADER_NVRAM,
                             &cfg->firmwares,
                             &cfg->nfirmwares) < 0)
331 332 333
        goto error;

#else
334
    if (VIR_ALLOC_N(cfg->firmwares, 3) < 0)
335
        goto error;
336 337 338
    cfg->nfirmwares = 3;
    if (VIR_ALLOC(cfg->firmwares[0]) < 0 || VIR_ALLOC(cfg->firmwares[1]) < 0 ||
        VIR_ALLOC(cfg->firmwares[2]) < 0)
339 340
        goto error;

341 342 343
    if (VIR_STRDUP(cfg->firmwares[0]->name, VIR_QEMU_AAVMF_LOADER_PATH) < 0 ||
        VIR_STRDUP(cfg->firmwares[0]->nvram, VIR_QEMU_AAVMF_NVRAM_PATH) < 0  ||
        VIR_STRDUP(cfg->firmwares[1]->name, VIR_QEMU_OVMF_LOADER_PATH) < 0 ||
344 345 346
        VIR_STRDUP(cfg->firmwares[1]->nvram, VIR_QEMU_OVMF_NVRAM_PATH) < 0 ||
        VIR_STRDUP(cfg->firmwares[2]->name, VIR_QEMU_OVMF_SEC_LOADER_PATH) < 0 ||
        VIR_STRDUP(cfg->firmwares[2]->nvram, VIR_QEMU_OVMF_SEC_NVRAM_PATH) < 0)
347
        goto error;
348
#endif
349

350 351
    return cfg;

352
 error:
353 354 355 356 357 358 359 360 361
    virObjectUnref(cfg);
    return NULL;
}


static void virQEMUDriverConfigDispose(void *obj)
{
    virQEMUDriverConfigPtr cfg = obj;

362
    virBitmapFree(cfg->namespaces);
363

364
    virStringListFree(cfg->cgroupDeviceACL);
365 366 367 368 369 370 371 372 373 374 375

    VIR_FREE(cfg->configBaseDir);
    VIR_FREE(cfg->configDir);
    VIR_FREE(cfg->autostartDir);
    VIR_FREE(cfg->logDir);
    VIR_FREE(cfg->stateDir);

    VIR_FREE(cfg->libDir);
    VIR_FREE(cfg->cacheDir);
    VIR_FREE(cfg->saveDir);
    VIR_FREE(cfg->snapshotDir);
376
    VIR_FREE(cfg->channelTargetDir);
377
    VIR_FREE(cfg->nvramDir);
378

379
    VIR_FREE(cfg->defaultTLSx509certdir);
380
    VIR_FREE(cfg->defaultTLSx509secretUUID);
381

382 383 384 385 386 387 388 389
    VIR_FREE(cfg->vncTLSx509certdir);
    VIR_FREE(cfg->vncListen);
    VIR_FREE(cfg->vncPassword);
    VIR_FREE(cfg->vncSASLdir);

    VIR_FREE(cfg->spiceTLSx509certdir);
    VIR_FREE(cfg->spiceListen);
    VIR_FREE(cfg->spicePassword);
390
    VIR_FREE(cfg->spiceSASLdir);
391

392
    VIR_FREE(cfg->chardevTLSx509certdir);
393
    VIR_FREE(cfg->chardevTLSx509secretUUID);
394

395 396 397 398 399
    while (cfg->nhugetlbfs) {
        cfg->nhugetlbfs--;
        VIR_FREE(cfg->hugetlbfs[cfg->nhugetlbfs].mnt_dir);
    }
    VIR_FREE(cfg->hugetlbfs);
400
    VIR_FREE(cfg->bridgeHelperName);
401 402 403 404 405

    VIR_FREE(cfg->saveImageFormat);
    VIR_FREE(cfg->dumpImageFormat);
    VIR_FREE(cfg->autoDumpPath);

406
    virStringListFree(cfg->securityDriverNames);
407 408

    VIR_FREE(cfg->lockManagerName);
409

410
    virFirmwareFreeList(cfg->firmwares, cfg->nfirmwares);
411 412
}

413

414 415 416 417 418 419 420 421 422 423 424 425 426 427 428 429 430 431 432 433
static int
virQEMUDriverConfigHugeTLBFSInit(virHugeTLBFSPtr hugetlbfs,
                                 const char *path,
                                 bool deflt)
{
    int ret = -1;

    if (VIR_STRDUP(hugetlbfs->mnt_dir, path) < 0)
        goto cleanup;

    if (virFileGetHugepageSize(path, &hugetlbfs->size) < 0)
        goto cleanup;

    hugetlbfs->deflt = deflt;
    ret = 0;
 cleanup:
    return ret;
}


434 435 436 437 438
int virQEMUDriverConfigLoadFile(virQEMUDriverConfigPtr cfg,
                                const char *filename)
{
    virConfPtr conf = NULL;
    int ret = -1;
439
    int rv;
440
    size_t i, j;
441
    char *stdioHandler = NULL;
442 443 444 445
    char *user = NULL, *group = NULL;
    char **controllers = NULL;
    char **hugetlbfs = NULL;
    char **nvram = NULL;
446
    char *corestr = NULL;
447
    char **namespaces = NULL;
448

D
Daniel P. Berrange 已提交
449 450 451
    /* Just check the file is readable before opening it, otherwise
     * libvirt emits an error.
     */
452
    if (access(filename, R_OK) == -1) {
453
        VIR_INFO("Could not read qemu config file %s", filename);
454
        return 0;
455
    }
D
Daniel P. Berrange 已提交
456

457 458
    if (!(conf = virConfReadFile(filename, 0)))
        goto cleanup;
D
Daniel P. Berrange 已提交
459

460 461 462 463
    if (virConfGetValueString(conf, "default_tls_x509_cert_dir", &cfg->defaultTLSx509certdir) < 0)
        goto cleanup;
    if (virConfGetValueBool(conf, "default_tls_x509_verify", &cfg->defaultTLSx509verify) < 0)
        goto cleanup;
464 465 466 467
    if (virConfGetValueString(conf, "default_tls_x509_secret_uuid",
                              &cfg->defaultTLSx509secretUUID) < 0)
        goto cleanup;

468 469 470 471
    if (virConfGetValueBool(conf, "vnc_auto_unix_socket", &cfg->vncAutoUnixSocket) < 0)
        goto cleanup;
    if (virConfGetValueBool(conf, "vnc_tls", &cfg->vncTLS) < 0)
        goto cleanup;
472
    if ((rv = virConfGetValueBool(conf, "vnc_tls_x509_verify", &cfg->vncTLSx509verify)) < 0)
473
        goto cleanup;
474 475
    if (rv == 0)
        cfg->vncTLSx509verify = cfg->defaultTLSx509verify;
476 477 478 479 480 481 482 483 484 485 486 487 488 489
    if (virConfGetValueString(conf, "vnc_tls_x509_cert_dir", &cfg->vncTLSx509certdir) < 0)
        goto cleanup;
    if (virConfGetValueString(conf, "vnc_listen", &cfg->vncListen) < 0)
        goto cleanup;
    if (virConfGetValueString(conf, "vnc_password", &cfg->vncPassword) < 0)
        goto cleanup;
    if (virConfGetValueBool(conf, "vnc_sasl", &cfg->vncSASL) < 0)
        goto cleanup;
    if (virConfGetValueString(conf, "vnc_sasl_dir", &cfg->vncSASLdir) < 0)
        goto cleanup;
    if (virConfGetValueBool(conf, "vnc_allow_host_audio", &cfg->vncAllowHostAudio) < 0)
        goto cleanup;
    if (virConfGetValueBool(conf, "nographics_allow_host_audio", &cfg->nogfxAllowHostAudio) < 0)
        goto cleanup;
490

491

492 493
    if (virConfGetValueStringList(conf, "security_driver", true, &cfg->securityDriverNames) < 0)
        goto cleanup;
494

495
    for (i = 0; cfg->securityDriverNames && cfg->securityDriverNames[i] != NULL; i++) {
496
        for (j = i + 1; cfg->securityDriverNames[j] != NULL; j++) {
497 498 499 500 501
            if (STREQ(cfg->securityDriverNames[i],
                      cfg->securityDriverNames[j])) {
                virReportError(VIR_ERR_CONF_SYNTAX,
                               _("Duplicate security driver %s"),
                               cfg->securityDriverNames[i]);
502
                goto cleanup;
503 504
            }
        }
505 506
    }

507 508 509 510
    if (virConfGetValueBool(conf, "security_default_confined", &cfg->securityDefaultConfined) < 0)
        goto cleanup;
    if (virConfGetValueBool(conf, "security_require_confined", &cfg->securityRequireConfined) < 0)
        goto cleanup;
511

512 513 514 515 516 517 518 519 520 521 522 523 524 525
    if (virConfGetValueBool(conf, "spice_tls", &cfg->spiceTLS) < 0)
        goto cleanup;
    if (virConfGetValueString(conf, "spice_tls_x509_cert_dir", &cfg->spiceTLSx509certdir) < 0)
        goto cleanup;
    if (virConfGetValueBool(conf, "spice_sasl", &cfg->spiceSASL) < 0)
        goto cleanup;
    if (virConfGetValueString(conf, "spice_sasl_dir", &cfg->spiceSASLdir) < 0)
        goto cleanup;
    if (virConfGetValueString(conf, "spice_listen", &cfg->spiceListen) < 0)
        goto cleanup;
    if (virConfGetValueString(conf, "spice_password", &cfg->spicePassword) < 0)
        goto cleanup;
    if (virConfGetValueBool(conf, "spice_auto_unix_socket", &cfg->spiceAutoUnixSocket) < 0)
        goto cleanup;
526

527 528 529 530 531 532 533 534
    if (virConfGetValueBool(conf, "chardev_tls", &cfg->chardevTLS) < 0)
        goto cleanup;
    if (virConfGetValueString(conf, "chardev_tls_x509_cert_dir", &cfg->chardevTLSx509certdir) < 0)
        goto cleanup;
    if ((rv = virConfGetValueBool(conf, "chardev_tls_x509_verify", &cfg->chardevTLSx509verify)) < 0)
        goto cleanup;
    if (rv == 0)
        cfg->chardevTLSx509verify = cfg->defaultTLSx509verify;
535 536 537 538 539 540 541 542
    if (virConfGetValueString(conf, "chardev_tls_x509_secret_uuid",
                              &cfg->chardevTLSx509secretUUID) < 0)
        goto cleanup;
    if (!cfg->chardevTLSx509secretUUID && cfg->defaultTLSx509secretUUID) {
        if (VIR_STRDUP(cfg->chardevTLSx509secretUUID,
                       cfg->defaultTLSx509secretUUID) < 0)
            goto cleanup;
    }
543

544 545
    if (virConfGetValueUInt(conf, "remote_websocket_port_min", &cfg->webSocketPortMin) < 0)
        goto cleanup;
546 547 548 549 550 551 552 553 554 555 556
    if (cfg->webSocketPortMin < QEMU_WEBSOCKET_PORT_MIN) {
        /* if the port is too low, we can't get the display name
         * to tell to vnc (usually subtract 5700, e.g. localhost:1
         * for port 5701) */
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("%s: remote_websocket_port_min: port must be greater "
                         "than or equal to %d"),
                        filename, QEMU_WEBSOCKET_PORT_MIN);
        goto cleanup;
    }

557 558
    if (virConfGetValueUInt(conf, "remote_websocket_port_max", &cfg->webSocketPortMax) < 0)
        goto cleanup;
559 560 561 562 563 564 565 566 567 568 569 570 571 572 573 574
    if (cfg->webSocketPortMax > QEMU_WEBSOCKET_PORT_MAX ||
        cfg->webSocketPortMax < cfg->webSocketPortMin) {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                        _("%s: remote_websocket_port_max: port must be between "
                          "the minimal port and %d"),
                       filename, QEMU_WEBSOCKET_PORT_MAX);
        goto cleanup;
    }

    if (cfg->webSocketPortMin > cfg->webSocketPortMax) {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                        _("%s: remote_websocket_port_min: min port must not be "
                          "greater than max port"), filename);
        goto cleanup;
    }

575 576
    if (virConfGetValueUInt(conf, "remote_display_port_min", &cfg->remotePortMin) < 0)
        goto cleanup;
577
    if (cfg->remotePortMin < QEMU_REMOTE_PORT_MIN) {
578 579 580 581 582 583 584
        /* if the port is too low, we can't get the display name
         * to tell to vnc (usually subtract 5900, e.g. localhost:1
         * for port 5901) */
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("%s: remote_display_port_min: port must be greater "
                         "than or equal to %d"),
                        filename, QEMU_REMOTE_PORT_MIN);
585
        goto cleanup;
586 587
    }

588 589
    if (virConfGetValueUInt(conf, "remote_display_port_max", &cfg->remotePortMax) < 0)
        goto cleanup;
590 591
    if (cfg->remotePortMax > QEMU_REMOTE_PORT_MAX ||
        cfg->remotePortMax < cfg->remotePortMin) {
592 593 594 595
        virReportError(VIR_ERR_INTERNAL_ERROR,
                        _("%s: remote_display_port_max: port must be between "
                          "the minimal port and %d"),
                       filename, QEMU_REMOTE_PORT_MAX);
596
        goto cleanup;
597 598
    }

599
    if (cfg->remotePortMin > cfg->remotePortMax) {
600
        virReportError(VIR_ERR_INTERNAL_ERROR,
601 602
                        _("%s: remote_display_port_min: min port must not be "
                          "greater than max port"), filename);
603
        goto cleanup;
604 605
    }

606 607
    if (virConfGetValueUInt(conf, "migration_port_min", &cfg->migrationPortMin) < 0)
        goto cleanup;
608 609 610 611 612 613 614
    if (cfg->migrationPortMin <= 0) {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("%s: migration_port_min: port must be greater than 0"),
                        filename);
        goto cleanup;
    }

615 616
    if (virConfGetValueUInt(conf, "migration_port_max", &cfg->migrationPortMax) < 0)
        goto cleanup;
617 618 619 620 621 622 623 624 625
    if (cfg->migrationPortMax > 65535 ||
        cfg->migrationPortMax < cfg->migrationPortMin) {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                        _("%s: migration_port_max: port must be between "
                          "the minimal port %d and 65535"),
                       filename, cfg->migrationPortMin);
        goto cleanup;
    }

626
    if (virConfGetValueString(conf, "user", &user) < 0)
627
        goto cleanup;
628
    if (user && virGetUserID(user, &cfg->user) < 0)
629
        goto cleanup;
630

631 632 633 634
    if (virConfGetValueString(conf, "group", &group) < 0)
        goto cleanup;
    if (group && virGetGroupID(group, &cfg->group) < 0)
        goto cleanup;
635

636 637
    if (virConfGetValueBool(conf, "dynamic_ownership", &cfg->dynamicOwnership) < 0)
        goto cleanup;
638

639 640 641
    if (virConfGetValueStringList(conf,  "cgroup_controllers", false,
                                  &controllers) < 0)
        goto cleanup;
642

643 644 645 646 647 648 649 650 651 652 653
    if (controllers) {
        cfg-> cgroupControllers = 0;
        for (i = 0; controllers[i] != NULL; i++) {
            int ctl;
            if ((ctl = virCgroupControllerTypeFromString(controllers[i])) < 0) {
                virReportError(VIR_ERR_CONF_SYNTAX,
                               _("Unknown cgroup controller '%s'"),
                               controllers[i]);
                goto cleanup;
            }
            cfg->cgroupControllers |= (1 << ctl);
654 655 656
        }
    }

657 658 659 660 661 662 663 664 665 666
    if (virConfGetValueStringList(conf,  "cgroup_device_acl", false,
                                  &cfg->cgroupDeviceACL) < 0)
        goto cleanup;

    if (virConfGetValueString(conf, "save_image_format", &cfg->saveImageFormat) < 0)
        goto cleanup;
    if (virConfGetValueString(conf, "dump_image_format", &cfg->dumpImageFormat) < 0)
        goto cleanup;
    if (virConfGetValueString(conf, "snapshot_image_format", &cfg->snapshotImageFormat) < 0)
        goto cleanup;
667

668 669 670 671 672 673
    if (virConfGetValueString(conf, "auto_dump_path", &cfg->autoDumpPath) < 0)
        goto cleanup;
    if (virConfGetValueBool(conf, "auto_dump_bypass_cache", &cfg->autoDumpBypassCache) < 0)
        goto cleanup;
    if (virConfGetValueBool(conf, "auto_start_bypass_cache", &cfg->autoStartBypassCache) < 0)
        goto cleanup;
674

675 676 677 678
    if (virConfGetValueStringList(conf, "hugetlbfs_mount", true,
                                  &hugetlbfs) < 0)
        goto cleanup;
    if (hugetlbfs) {
679 680 681 682 683 684 685
        /* There already might be something autodetected. Avoid leaking it. */
        while (cfg->nhugetlbfs) {
            cfg->nhugetlbfs--;
            VIR_FREE(cfg->hugetlbfs[cfg->nhugetlbfs].mnt_dir);
        }
        VIR_FREE(cfg->hugetlbfs);

686 687 688 689
        cfg->nhugetlbfs = virStringListLength((const char *const *)hugetlbfs);
        if (hugetlbfs[0] &&
            VIR_ALLOC_N(cfg->hugetlbfs, cfg->nhugetlbfs) < 0)
            goto cleanup;
690

691 692 693
        for (i = 0; hugetlbfs[i] != NULL; i++) {
            if (virQEMUDriverConfigHugeTLBFSInit(&cfg->hugetlbfs[i],
                                                 hugetlbfs[i], i != 0) < 0)
694 695 696 697
                goto cleanup;
        }
    }

698 699
    if (virConfGetValueString(conf, "bridge_helper", &cfg->bridgeHelperName) < 0)
        goto cleanup;
700

701 702
    if (virConfGetValueBool(conf, "mac_filter", &cfg->macFilter) < 0)
        goto cleanup;
703

704 705 706 707 708 709 710 711 712 713 714 715
    if (virConfGetValueBool(conf, "relaxed_acs_check", &cfg->relaxedACS) < 0)
        goto cleanup;
    if (virConfGetValueBool(conf, "clear_emulator_capabilities", &cfg->clearEmulatorCapabilities) < 0)
        goto cleanup;
    if (virConfGetValueBool(conf, "allow_disk_format_probing", &cfg->allowDiskFormatProbing) < 0)
        goto cleanup;
    if (virConfGetValueBool(conf, "set_process_name", &cfg->setProcessName) < 0)
        goto cleanup;
    if (virConfGetValueUInt(conf, "max_processes", &cfg->maxProcesses) < 0)
        goto cleanup;
    if (virConfGetValueUInt(conf, "max_files", &cfg->maxFiles) < 0)
        goto cleanup;
716

717 718 719 720 721 722 723 724 725 726 727 728 729 730 731
    if (virConfGetValueType(conf, "max_core") == VIR_CONF_STRING) {
        if (virConfGetValueString(conf, "max_core", &corestr) < 0)
            goto cleanup;
        if (STREQ(corestr, "unlimited")) {
            cfg->maxCore = ULLONG_MAX;
        } else {
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                           _("Unknown core size '%s'"),
                           corestr);
            goto cleanup;
        }
    } else if (virConfGetValueULLong(conf, "max_core", &cfg->maxCore) < 0) {
        goto cleanup;
    }

732 733 734
    if (virConfGetValueBool(conf, "dump_guest_core", &cfg->dumpGuestCore) < 0)
        goto cleanup;

735 736 737 738
    if (virConfGetValueString(conf, "lock_manager", &cfg->lockManagerName) < 0)
        goto cleanup;
    if (virConfGetValueString(conf, "stdio_handler", &stdioHandler) < 0)
        goto cleanup;
739 740 741 742 743 744 745 746 747 748 749 750 751 752
    if (stdioHandler) {
        if (STREQ(stdioHandler, "logd")) {
            cfg->stdioLogD = true;
        } else if (STREQ(stdioHandler, "file")) {
            cfg->stdioLogD = false;
        } else {
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                           _("Unknown stdio handler %s"),
                           stdioHandler);
            VIR_FREE(stdioHandler);
            goto cleanup;
        }
        VIR_FREE(stdioHandler);
    }
753

754 755
    if (virConfGetValueUInt(conf, "max_queued", &cfg->maxQueuedJobs) < 0)
        goto cleanup;
756

757 758 759 760
    if (virConfGetValueInt(conf, "keepalive_interval", &cfg->keepAliveInterval) < 0)
        goto cleanup;
    if (virConfGetValueUInt(conf, "keepalive_count", &cfg->keepAliveCount) < 0)
        goto cleanup;
761

762 763
    if (virConfGetValueInt(conf, "seccomp_sandbox", &cfg->seccompSandbox) < 0)
        goto cleanup;
764

765 766
    if (virConfGetValueString(conf, "migration_host", &cfg->migrateHost) < 0)
        goto cleanup;
767 768 769 770 771 772 773 774 775 776 777
    virStringStripIPv6Brackets(cfg->migrateHost);
    if (cfg->migrateHost &&
        (STRPREFIX(cfg->migrateHost, "localhost") ||
         virSocketAddrIsNumericLocalhost(cfg->migrateHost))) {
        virReportError(VIR_ERR_CONF_SYNTAX,
                       _("migration_host must not be the address of"
                         " the local machine: %s"),
                       cfg->migrateHost);
        goto cleanup;
    }

778 779
    if (virConfGetValueString(conf, "migration_address", &cfg->migrationAddress) < 0)
        goto cleanup;
780 781 782 783 784 785 786 787 788 789
    virStringStripIPv6Brackets(cfg->migrationAddress);
    if (cfg->migrationAddress &&
        (STRPREFIX(cfg->migrationAddress, "localhost") ||
         virSocketAddrIsNumericLocalhost(cfg->migrationAddress))) {
        virReportError(VIR_ERR_CONF_SYNTAX,
                       _("migration_address must not be the address of"
                         " the local machine: %s"),
                       cfg->migrationAddress);
        goto cleanup;
    }
790

791 792
    if (virConfGetValueBool(conf, "log_timestamp", &cfg->logTimestamp) < 0)
        goto cleanup;
793

794 795 796
    if (virConfGetValueStringList(conf, "nvram", false, &nvram) < 0)
        goto cleanup;
    if (nvram) {
797
        virFirmwareFreeList(cfg->firmwares, cfg->nfirmwares);
798

799 800
        cfg->nfirmwares = virStringListLength((const char *const *)nvram);
        if (nvram[0] && VIR_ALLOC_N(cfg->firmwares, cfg->nfirmwares) < 0)
801 802
            goto cleanup;

803
        for (i = 0; nvram[i] != NULL; i++) {
804 805
            if (VIR_ALLOC(cfg->firmwares[i]) < 0)
                goto cleanup;
806
            if (virFirmwareParse(nvram[i], cfg->firmwares[i]) < 0)
807 808 809
                goto cleanup;
        }
    }
810 811
    if (virConfGetValueUInt(conf, "gluster_debug_level", &cfg->glusterDebugLevel) < 0)
        goto cleanup;
812

813 814 815 816 817 818 819 820 821 822 823 824 825 826 827 828 829 830 831 832 833 834 835 836 837
    if (virConfGetValueStringList(conf, "namespaces", false, &namespaces) < 0)
        goto cleanup;

    if (namespaces) {
        virBitmapClearAll(cfg->namespaces);

        for (i = 0; namespaces[i]; i++) {
            int ns = qemuDomainNamespaceTypeFromString(namespaces[i]);

            if (ns < 0) {
                virReportError(VIR_ERR_CONF_SYNTAX,
                               _("Unknown namespace: %s"),
                               namespaces[i]);
                goto cleanup;
            }

            if (virBitmapSetBit(cfg->namespaces, ns) < 0) {
                virReportError(VIR_ERR_INTERNAL_ERROR,
                               _("Unable to enable namespace: %s"),
                               namespaces[i]);
                goto cleanup;
            }
        }
    }

838 839
    ret = 0;

840
 cleanup:
841 842 843
    virStringListFree(controllers);
    virStringListFree(hugetlbfs);
    virStringListFree(nvram);
844
    VIR_FREE(corestr);
845 846
    VIR_FREE(user);
    VIR_FREE(group);
847
    virConfFree(conf);
848
    return ret;
D
Daniel P. Berrange 已提交
849
}
850

851 852
virQEMUDriverConfigPtr virQEMUDriverGetConfig(virQEMUDriverPtr driver)
{
853 854 855 856 857
    virQEMUDriverConfigPtr conf;
    qemuDriverLock(driver);
    conf = virObjectRef(driver->config);
    qemuDriverUnlock(driver);
    return conf;
858 859
}

860 861 862 863 864 865
bool
virQEMUDriverIsPrivileged(virQEMUDriverPtr driver)
{
    return driver->privileged;
}

866
virDomainXMLOptionPtr
867
virQEMUDriverCreateXMLConf(virQEMUDriverPtr driver)
868
{
869
    virQEMUDriverDomainDefParserConfig.priv = driver;
870
    return virDomainXMLOptionNew(&virQEMUDriverDomainDefParserConfig,
871 872
                                 &virQEMUDriverPrivateDataCallbacks,
                                 &virQEMUDriverDomainXMLNamespace);
873 874
}

875 876 877

virCapsPtr virQEMUDriverCreateCapabilities(virQEMUDriverPtr driver)
{
878
    size_t i, j;
879 880 881
    virCapsPtr caps;
    virSecurityManagerPtr *sec_managers = NULL;
    /* Security driver data */
882
    const char *doi, *model, *lbl, *type;
883
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
884 885
    const int virtTypes[] = {VIR_DOMAIN_VIRT_KVM,
                             VIR_DOMAIN_VIRT_QEMU,};
886 887

    /* Basic host arch / guest machine capabilities */
888
    if (!(caps = virQEMUCapsInit(driver->qemuCapsCache)))
889
        goto error;
890 891 892 893

    if (virGetHostUUID(caps->host.host_uuid)) {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       "%s", _("cannot get the host uuid"));
894
        goto error;
895 896 897
    }

    /* access sec drivers and create a sec model for each one */
898 899
    if (!(sec_managers = virSecurityManagerGetNested(driver->securityManager)))
        goto error;
900 901 902 903 904 905 906

    /* calculate length */
    for (i = 0; sec_managers[i]; i++)
        ;
    caps->host.nsecModels = i;

    if (VIR_ALLOC_N(caps->host.secModels, caps->host.nsecModels) < 0)
907
        goto error;
908 909

    for (i = 0; sec_managers[i]; i++) {
910
        virCapsHostSecModelPtr sm = &caps->host.secModels[i];
911 912
        doi = virSecurityManagerGetDOI(sec_managers[i]);
        model = virSecurityManagerGetModel(sec_managers[i]);
913 914
        if (VIR_STRDUP(sm->model, model) < 0 ||
            VIR_STRDUP(sm->doi, doi) < 0)
915
            goto error;
916 917 918 919 920 921 922 923 924

        for (j = 0; j < ARRAY_CARDINALITY(virtTypes); j++) {
            lbl = virSecurityManagerGetBaseLabel(sec_managers[i], virtTypes[j]);
            type = virDomainVirtTypeToString(virtTypes[j]);
            if (lbl &&
                virCapabilitiesHostSecModelAddBaseLabel(sm, type, lbl) < 0)
                goto error;
        }

925 926 927 928 929 930 931 932
        VIR_DEBUG("Initialized caps for security driver \"%s\" with "
                  "DOI \"%s\"", model, doi);
    }
    VIR_FREE(sec_managers);

    virObjectUnref(cfg);
    return caps;

933
 error:
934 935 936 937 938 939 940 941 942 943 944 945 946 947 948 949 950 951 952 953 954
    VIR_FREE(sec_managers);
    virObjectUnref(caps);
    virObjectUnref(cfg);
    return NULL;
}


/**
 * virQEMUDriverGetCapabilities:
 *
 * Get a reference to the virCapsPtr instance for the
 * driver. If @refresh is true, the capabilities will be
 * rebuilt first
 *
 * The caller must release the reference with virObjetUnref
 *
 * Returns: a reference to a virCapsPtr instance or NULL
 */
virCapsPtr virQEMUDriverGetCapabilities(virQEMUDriverPtr driver,
                                        bool refresh)
{
955
    virCapsPtr ret = NULL;
956 957 958 959 960
    if (refresh) {
        virCapsPtr caps = NULL;
        if ((caps = virQEMUDriverCreateCapabilities(driver)) == NULL)
            return NULL;

961
        qemuDriverLock(driver);
962 963
        virObjectUnref(driver->caps);
        driver->caps = caps;
964 965
    } else {
        qemuDriverLock(driver);
966 967
    }

968 969 970 971 972 973 974
    if (driver->caps->nguests == 0 && !refresh) {
        VIR_DEBUG("Capabilities didn't detect any guests. Forcing a "
            "refresh.");
        qemuDriverUnlock(driver);
        return virQEMUDriverGetCapabilities(driver, true);
    }

975 976 977
    ret = virObjectRef(driver->caps);
    qemuDriverUnlock(driver);
    return ret;
978 979
}

980
struct _qemuSharedDeviceEntry {
981 982 983 984
    size_t ref;
    char **domains; /* array of domain names */
};

985
/* Construct the hash key for sharedDevices as "major:minor" */
986
char *
987
qemuGetSharedDeviceKey(const char *device_path)
988 989 990 991 992
{
    int maj, min;
    char *key = NULL;
    int rc;

993
    if ((rc = virGetDeviceID(device_path, &maj, &min)) < 0) {
994 995
        virReportSystemError(-rc,
                             _("Unable to get minor number of device '%s'"),
996
                             device_path);
997 998 999
        return NULL;
    }

1000
    if (virAsprintf(&key, "%d:%d", maj, min) < 0)
1001 1002 1003 1004 1005
        return NULL;

    return key;
}

1006 1007 1008
/*
 * Make necessary checks for the need to check and for the current setting
 * of the 'unpriv_sgio' value for the device_path passed.
1009
 *
1010 1011 1012 1013 1014 1015
 * Returns:
 *  0 - Success
 * -1 - Some failure which would already have been messaged
 * -2 - Mismatch with the "shared" sgio setting - needs to be messaged
 *      by caller since it has context of which type of disk resource is
 *      being used and in the future the hostdev information.
1016 1017
 */
static int
1018 1019 1020
qemuCheckUnprivSGIO(virHashTablePtr sharedDevices,
                    const char *device_path,
                    int sgio)
1021 1022 1023
{
    char *sysfs_path = NULL;
    char *key = NULL;
1024
    int val;
1025
    int ret = -1;
1026

1027
    if (!(sysfs_path = virGetUnprivSGIOSysfsPath(device_path, NULL)))
1028 1029
        goto cleanup;

1030 1031 1032
    /* It can't be conflict if unpriv_sgio is not supported by kernel. */
    if (!virFileExists(sysfs_path)) {
        ret = 0;
1033 1034 1035
        goto cleanup;
    }

1036
    if (!(key = qemuGetSharedDeviceKey(device_path)))
1037 1038
        goto cleanup;

1039 1040 1041
    /* It can't be conflict if no other domain is sharing it. */
    if (!(virHashLookup(sharedDevices, key))) {
        ret = 0;
1042 1043 1044
        goto cleanup;
    }

1045
    if (virGetDeviceUnprivSGIO(device_path, NULL, &val) < 0)
1046 1047
        goto cleanup;

1048 1049 1050
    /* Error message on failure needs to be handled in caller
     * since there is more specific knowledge of device
     */
1051
    if (!((val == 0 &&
1052 1053
           (sgio == VIR_DOMAIN_DEVICE_SGIO_FILTERED ||
            sgio == VIR_DOMAIN_DEVICE_SGIO_DEFAULT)) ||
1054
          (val == 1 &&
1055 1056
           sgio == VIR_DOMAIN_DEVICE_SGIO_UNFILTERED))) {
        ret = -2;
1057
        goto cleanup;
1058 1059
    }

1060 1061
    ret = 0;

1062
 cleanup:
1063 1064 1065 1066
    VIR_FREE(sysfs_path);
    VIR_FREE(key);
    return ret;
}
1067

1068

1069 1070 1071 1072 1073 1074 1075 1076 1077 1078 1079 1080 1081 1082 1083 1084 1085 1086 1087 1088 1089 1090 1091 1092 1093 1094 1095 1096 1097 1098 1099 1100 1101 1102 1103 1104 1105 1106 1107
/* Check if a shared device's setting conflicts with the conf
 * used by other domain(s). Currently only checks the sgio
 * setting. Note that this should only be called for disk with
 * block source if the device type is disk.
 *
 * Returns 0 if no conflicts, otherwise returns -1.
 */
static int
qemuCheckSharedDisk(virHashTablePtr sharedDevices,
                    virDomainDiskDefPtr disk)
{
    int ret;

    if (disk->device != VIR_DOMAIN_DISK_DEVICE_LUN)
        return 0;

    if ((ret = qemuCheckUnprivSGIO(sharedDevices, disk->src->path,
                                   disk->sgio)) < 0) {
        if (ret == -2) {
            if (virDomainDiskGetType(disk) == VIR_STORAGE_TYPE_VOLUME) {
                virReportError(VIR_ERR_OPERATION_INVALID,
                               _("sgio of shared disk 'pool=%s' 'volume=%s' "
                                 "conflicts with other active domains"),
                               disk->src->srcpool->pool,
                               disk->src->srcpool->volume);
            } else {
                virReportError(VIR_ERR_OPERATION_INVALID,
                               _("sgio of shared disk '%s' conflicts with "
                                 "other active domains"),
                               disk->src->path);
            }
        }
        return -1;
    }

    return 0;
}


1108
bool
1109 1110 1111
qemuSharedDeviceEntryDomainExists(qemuSharedDeviceEntryPtr entry,
                                  const char *name,
                                  int *idx)
1112 1113 1114 1115 1116 1117 1118 1119 1120 1121 1122 1123 1124 1125 1126
{
    size_t i;

    for (i = 0; i < entry->ref; i++) {
        if (STREQ(entry->domains[i], name)) {
            if (idx)
                *idx = i;
            return true;
        }
    }

    return false;
}

void
1127
qemuSharedDeviceEntryFree(void *payload, const void *name ATTRIBUTE_UNUSED)
1128
{
1129
    qemuSharedDeviceEntryPtr entry = payload;
1130 1131
    size_t i;

1132 1133 1134
    if (!entry)
        return;

1135
    for (i = 0; i < entry->ref; i++)
1136 1137 1138 1139 1140
        VIR_FREE(entry->domains[i]);
    VIR_FREE(entry->domains);
    VIR_FREE(entry);
}

1141 1142 1143 1144 1145 1146 1147 1148 1149 1150 1151 1152

static int
qemuSharedDeviceEntryInsert(virQEMUDriverPtr driver,
                            const char *key,
                            const char *name)
{
    qemuSharedDeviceEntry *entry = NULL;

    if ((entry = virHashLookup(driver->sharedDevices, key))) {
        /* Nothing to do if the shared scsi host device is already
         * recorded in the table.
         */
J
Ján Tomko 已提交
1153 1154 1155 1156 1157 1158 1159
        if (!qemuSharedDeviceEntryDomainExists(entry, name, NULL)) {
            if (VIR_EXPAND_N(entry->domains, entry->ref, 1) < 0 ||
                VIR_STRDUP(entry->domains[entry->ref - 1], name) < 0) {
                /* entry is owned by the hash table here */
                entry = NULL;
                goto error;
            }
1160 1161 1162 1163 1164
        }
    } else {
        if (VIR_ALLOC(entry) < 0 ||
            VIR_ALLOC_N(entry->domains, 1) < 0 ||
            VIR_STRDUP(entry->domains[0], name) < 0)
J
Ján Tomko 已提交
1165
            goto error;
1166 1167 1168 1169

        entry->ref = 1;

        if (virHashAddEntry(driver->sharedDevices, key, entry))
J
Ján Tomko 已提交
1170
            goto error;
1171 1172
    }

J
Ján Tomko 已提交
1173
    return 0;
1174

J
Ján Tomko 已提交
1175
 error:
1176
    qemuSharedDeviceEntryFree(entry, NULL);
J
Ján Tomko 已提交
1177
    return -1;
1178 1179
}

1180 1181

/* qemuAddSharedDisk:
1182
 * @driver: Pointer to qemu driver struct
1183
 * @src: disk source
1184 1185 1186
 * @name: The domain name
 *
 * Increase ref count and add the domain name into the list which
1187
 * records all the domains that use the shared device if the entry
1188
 * already exists, otherwise add a new entry.
1189
 */
1190 1191 1192 1193
static int
qemuAddSharedDisk(virQEMUDriverPtr driver,
                  virDomainDiskDefPtr disk,
                  const char *name)
1194 1195
{
    char *key = NULL;
1196
    int ret = -1;
1197

1198 1199 1200
    if (virStorageSourceIsEmpty(disk->src) ||
        !disk->src->shared ||
        !virStorageSourceIsBlockLocal(disk->src))
1201
        return 0;
1202

1203
    qemuDriverLock(driver);
1204

1205 1206 1207 1208 1209 1210 1211 1212 1213 1214 1215 1216 1217 1218 1219 1220 1221 1222
    if (qemuCheckSharedDisk(driver->sharedDevices, disk) < 0)
        goto cleanup;

    if (!(key = qemuGetSharedDeviceKey(virDomainDiskGetSource(disk))))
        goto cleanup;

    if (qemuSharedDeviceEntryInsert(driver, key, name) < 0)
        goto cleanup;

    ret = 0;

 cleanup:
    qemuDriverUnlock(driver);
    VIR_FREE(key);
    return ret;
}


1223 1224 1225 1226
static bool
qemuIsSharedHostdev(virDomainHostdevDefPtr hostdev)
{
    return (hostdev->shareable &&
1227 1228 1229
            (virHostdevIsSCSIDevice(hostdev) &&
             hostdev->source.subsys.u.scsi.protocol !=
             VIR_DOMAIN_HOSTDEV_SCSI_PROTOCOL_TYPE_ISCSI));
1230 1231 1232
}


1233
static char *
J
John Ferlan 已提交
1234
qemuGetHostdevPath(virDomainHostdevDefPtr hostdev)
1235 1236 1237 1238 1239
{
    virDomainHostdevSubsysSCSIPtr scsisrc = &hostdev->source.subsys.u.scsi;
    virDomainHostdevSubsysSCSIHostPtr scsihostsrc = &scsisrc->u.host;
    char *dev_name = NULL;
    char *dev_path = NULL;
1240

1241 1242 1243 1244 1245 1246
    if (!(dev_name = virSCSIDeviceGetDevName(NULL,
                                             scsihostsrc->adapter,
                                             scsihostsrc->bus,
                                             scsihostsrc->target,
                                             scsihostsrc->unit)))
        goto cleanup;
1247

J
John Ferlan 已提交
1248 1249 1250 1251 1252 1253 1254 1255
    ignore_value(virAsprintf(&dev_path, "/dev/%s", dev_name));

 cleanup:
    VIR_FREE(dev_name);
    return dev_path;
}


1256 1257 1258 1259 1260
static int
qemuAddSharedHostdev(virQEMUDriverPtr driver,
                     virDomainHostdevDefPtr hostdev,
                     const char *name)
{
J
John Ferlan 已提交
1261
    char *dev_path = NULL;
1262 1263 1264
    char *key = NULL;
    int ret = -1;

1265
    if (!qemuIsSharedHostdev(hostdev))
1266 1267
        return 0;

J
John Ferlan 已提交
1268 1269 1270 1271 1272
    if (!(dev_path = qemuGetHostdevPath(hostdev)))
        goto cleanup;

    if (!(key = qemuGetSharedDeviceKey(dev_path)))
        goto cleanup;
1273 1274 1275 1276 1277

    qemuDriverLock(driver);
    ret = qemuSharedDeviceEntryInsert(driver, key, name);
    qemuDriverUnlock(driver);

J
John Ferlan 已提交
1278 1279
 cleanup:
    VIR_FREE(dev_path);
1280
    VIR_FREE(key);
1281
    return ret;
1282 1283
}

1284 1285 1286 1287 1288 1289 1290 1291 1292 1293 1294 1295 1296 1297 1298 1299 1300 1301 1302 1303 1304 1305 1306 1307 1308

static int
qemuSharedDeviceEntryRemove(virQEMUDriverPtr driver,
                            const char *key,
                            const char *name)
{
    qemuSharedDeviceEntryPtr entry = NULL;
    int idx;

    if (!(entry = virHashLookup(driver->sharedDevices, key)))
        return -1;

    /* Nothing to do if the shared disk is not recored in the table. */
    if (!qemuSharedDeviceEntryDomainExists(entry, name, &idx))
        return 0;

    if (entry->ref != 1)
        VIR_DELETE_ELEMENT(entry->domains, idx, entry->ref);
    else
        ignore_value(virHashRemoveEntry(driver->sharedDevices, key));

    return 0;
}


1309 1310 1311 1312 1313 1314 1315 1316 1317 1318 1319 1320 1321 1322 1323 1324 1325 1326 1327 1328 1329 1330 1331 1332 1333 1334
/* qemuAddSharedDevice:
 * @driver: Pointer to qemu driver struct
 * @dev: The device def
 * @name: The domain name
 *
 * Increase ref count and add the domain name into the list which
 * records all the domains that use the shared device if the entry
 * already exists, otherwise add a new entry.
 */
int
qemuAddSharedDevice(virQEMUDriverPtr driver,
                    virDomainDeviceDefPtr dev,
                    const char *name)
{
    /* Currently the only conflicts we have to care about for
     * the shared disk and shared host device is "sgio" setting,
     * which is only valid for block disk and scsi host device.
     */
    if (dev->type == VIR_DOMAIN_DEVICE_DISK)
        return qemuAddSharedDisk(driver, dev->data.disk, name);
    else if (dev->type == VIR_DOMAIN_DEVICE_HOSTDEV)
        return qemuAddSharedHostdev(driver, dev->data.hostdev, name);
    else
        return 0;
}

1335

1336
int
1337 1338 1339
qemuRemoveSharedDisk(virQEMUDriverPtr driver,
                     virDomainDiskDefPtr disk,
                     const char *name)
1340 1341
{
    char *key = NULL;
1342
    int ret = -1;
1343

1344 1345 1346
    if (virStorageSourceIsEmpty(disk->src) ||
        !disk->src->shared ||
        !virStorageSourceIsBlockLocal(disk->src))
1347
        return 0;
1348

1349
    qemuDriverLock(driver);
1350

1351 1352 1353 1354 1355 1356 1357 1358 1359 1360 1361 1362 1363 1364 1365 1366 1367 1368 1369
    if (!(key = qemuGetSharedDeviceKey(virDomainDiskGetSource(disk))))
        goto cleanup;

    if (qemuSharedDeviceEntryRemove(driver, key, name) < 0)
        goto cleanup;

    ret = 0;
 cleanup:
    qemuDriverUnlock(driver);
    VIR_FREE(key);
    return ret;
}


static int
qemuRemoveSharedHostdev(virQEMUDriverPtr driver,
                        virDomainHostdevDefPtr hostdev,
                        const char *name)
{
J
John Ferlan 已提交
1370
    char *dev_path = NULL;
1371
    char *key = NULL;
1372
    int ret = -1;
1373

1374
    if (!qemuIsSharedHostdev(hostdev))
1375 1376
        return 0;

J
John Ferlan 已提交
1377 1378 1379 1380 1381
    if (!(dev_path = qemuGetHostdevPath(hostdev)))
        goto cleanup;

    if (!(key = qemuGetSharedDeviceKey(dev_path)))
        goto cleanup;
1382

1383 1384
    qemuDriverLock(driver);
    ret = qemuSharedDeviceEntryRemove(driver, key, name);
1385
    qemuDriverUnlock(driver);
1386

J
John Ferlan 已提交
1387 1388
 cleanup:
    VIR_FREE(dev_path);
1389
    VIR_FREE(key);
1390
    return ret;
1391
}
1392

1393 1394 1395 1396 1397 1398 1399 1400 1401 1402 1403 1404 1405 1406 1407 1408 1409 1410 1411 1412 1413 1414 1415 1416

/* qemuRemoveSharedDevice:
 * @driver: Pointer to qemu driver struct
 * @device: The device def
 * @name: The domain name
 *
 * Decrease ref count and remove the domain name from the list which
 * records all the domains that use the shared device if ref is not
 * 1, otherwise remove the entry.
 */
int
qemuRemoveSharedDevice(virQEMUDriverPtr driver,
                       virDomainDeviceDefPtr dev,
                       const char *name)
{
    if (dev->type == VIR_DOMAIN_DEVICE_DISK)
        return qemuRemoveSharedDisk(driver, dev->data.disk, name);
    else if (dev->type == VIR_DOMAIN_DEVICE_HOSTDEV)
        return qemuRemoveSharedHostdev(driver, dev->data.hostdev, name);
    else
        return 0;
}


1417
int
1418
qemuSetUnprivSGIO(virDomainDeviceDefPtr dev)
1419
{
1420 1421
    virDomainDiskDefPtr disk = NULL;
    virDomainHostdevDefPtr hostdev = NULL;
1422
    char *sysfs_path = NULL;
1423
    const char *path = NULL;
1424
    int val = -1;
1425
    int ret = -1;
1426 1427 1428 1429

    /* "sgio" is only valid for block disk; cdrom
     * and floopy disk can have empty source.
     */
1430 1431 1432
    if (dev->type == VIR_DOMAIN_DEVICE_DISK) {
        disk = dev->data.disk;

1433
        if (disk->device != VIR_DOMAIN_DISK_DEVICE_LUN ||
1434
            !virStorageSourceIsBlockLocal(disk->src))
1435 1436
            return 0;

1437
        path = virDomainDiskGetSource(disk);
1438 1439 1440
    } else if (dev->type == VIR_DOMAIN_DEVICE_HOSTDEV) {
        hostdev = dev->data.hostdev;

1441 1442
        if (!qemuIsSharedHostdev(hostdev))
            return 0;
1443

1444
        if (hostdev->source.subsys.u.scsi.sgio) {
1445 1446 1447
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("'sgio' is not supported for SCSI "
                             "generic device yet "));
1448
            goto cleanup;
1449
        }
1450

1451
        return 0;
1452
    } else {
1453
        return 0;
1454
    }
1455

1456
    if (!(sysfs_path = virGetUnprivSGIOSysfsPath(path, NULL)))
1457
        goto cleanup;
1458 1459

    /* By default, filter the SG_IO commands, i.e. set unpriv_sgio to 0.  */
1460
    val = (disk->sgio == VIR_DOMAIN_DEVICE_SGIO_UNFILTERED);
1461 1462 1463 1464 1465

    /* Do not do anything if unpriv_sgio is not supported by the kernel and the
     * whitelist is enabled.  But if requesting unfiltered access, always call
     * virSetDeviceUnprivSGIO, to report an error for unsupported unpriv_sgio.
     */
1466 1467
    if ((virFileExists(sysfs_path) || val == 1) &&
        virSetDeviceUnprivSGIO(path, NULL, val) < 0)
1468 1469 1470
        goto cleanup;

    ret = 0;
1471

1472
 cleanup:
1473 1474 1475
    VIR_FREE(sysfs_path);
    return ret;
}
1476

1477 1478
int qemuDriverAllocateID(virQEMUDriverPtr driver)
{
E
Erik Skultety 已提交
1479
    return virAtomicIntInc(&driver->lastvmid);
1480
}
1481

1482 1483 1484 1485 1486

int
qemuTranslateSnapshotDiskSourcePool(virConnectPtr conn ATTRIBUTE_UNUSED,
                                    virDomainSnapshotDiskDefPtr def)
{
1487
    if (def->src->type != VIR_STORAGE_TYPE_VOLUME)
1488 1489 1490 1491 1492 1493
        return 0;

    virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                   _("Snapshots are not yet supported with 'pool' volumes"));
    return -1;
}
1494 1495

char *
1496
qemuGetBaseHugepagePath(virHugeTLBFSPtr hugepage)
1497 1498 1499 1500 1501 1502 1503 1504 1505
{
    char *ret;

    if (virAsprintf(&ret, "%s/libvirt/qemu", hugepage->mnt_dir) < 0)
        return NULL;

    return ret;
}

1506

1507 1508 1509 1510 1511 1512
char *
qemuGetDomainHugepagePath(const virDomainDef *def,
                          virHugeTLBFSPtr hugepage)
{
    char *base = qemuGetBaseHugepagePath(hugepage);
    char *domPath = virDomainObjGetShortName(def);
1513
    char *ret = NULL;
1514 1515 1516 1517 1518 1519 1520 1521 1522

    if (base && domPath)
        ignore_value(virAsprintf(&ret, "%s/%s", base, domPath));
    VIR_FREE(domPath);
    VIR_FREE(base);
    return ret;
}


1523
/**
1524 1525
 * qemuGetDomainDefaultHugepath:
 * @def: domain definition
1526 1527 1528 1529 1530 1531 1532
 * @hugetlbfs: array of configured hugepages
 * @nhugetlbfs: number of item in the array
 *
 * Callers must ensure that @hugetlbfs contains at least one entry.
 *
 * Returns 0 on success, -1 otherwise.
 * */
1533
char *
1534 1535 1536
qemuGetDomainDefaultHugepath(const virDomainDef *def,
                             virHugeTLBFSPtr hugetlbfs,
                             size_t nhugetlbfs)
1537 1538 1539 1540 1541 1542 1543 1544 1545 1546
{
    size_t i;

    for (i = 0; i < nhugetlbfs; i++)
        if (hugetlbfs[i].deflt)
            break;

    if (i == nhugetlbfs)
        i = 0;

1547
    return qemuGetDomainHugepagePath(def, &hugetlbfs[i]);
1548
}
1549 1550 1551


/**
1552
 * qemuGetDomainHupageMemPath: Construct HP enabled memory backend path
1553 1554 1555 1556 1557 1558 1559 1560 1561
 *
 * If no specific hugepage size is requested (@pagesize is zero)
 * the default hugepage size is used).
 * The resulting path is stored at @memPath.
 *
 * Returns 0 on success,
 *        -1 otherwise.
 */
int
1562 1563 1564 1565
qemuGetDomainHupageMemPath(const virDomainDef *def,
                           virQEMUDriverConfigPtr cfg,
                           unsigned long long pagesize,
                           char **memPath)
1566 1567 1568 1569 1570 1571 1572 1573 1574 1575 1576
{
    size_t i = 0;

    if (!cfg->nhugetlbfs) {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       "%s", _("hugetlbfs filesystem is not mounted "
                               "or disabled by administrator config"));
        return -1;
    }

    if (!pagesize) {
1577 1578 1579
        if (!(*memPath = qemuGetDomainDefaultHugepath(def,
                                                      cfg->hugetlbfs,
                                                      cfg->nhugetlbfs)))
1580 1581 1582 1583 1584 1585 1586 1587 1588 1589 1590 1591 1592 1593 1594
            return -1;
    } else {
        for (i = 0; i < cfg->nhugetlbfs; i++) {
            if (cfg->hugetlbfs[i].size == pagesize)
                break;
        }

        if (i == cfg->nhugetlbfs) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("Unable to find any usable hugetlbfs "
                             "mount for %llu KiB"),
                           pagesize);
            return -1;
        }

1595
        if (!(*memPath = qemuGetDomainHugepagePath(def, &cfg->hugetlbfs[i])))
1596 1597 1598 1599 1600
            return -1;
    }

    return 0;
}