qemu_hotplug.c 114.9 KB
Newer Older
1 2 3
/*
 * qemu_hotplug.h: QEMU device hotplug management
 *
4
 * Copyright (C) 2006-2013 Red Hat, Inc.
5 6 7 8 9 10 11 12 13 14 15 16 17
 * Copyright (C) 2006 Daniel P. Berrange
 *
 * This library is free software; you can redistribute it and/or
 * modify it under the terms of the GNU Lesser General Public
 * License as published by the Free Software Foundation; either
 * version 2.1 of the License, or (at your option) any later version.
 *
 * This library is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 * Lesser General Public License for more details.
 *
 * You should have received a copy of the GNU Lesser General Public
18
 * License along with this library.  If not, see
O
Osier Yang 已提交
19
 * <http://www.gnu.org/licenses/>.
20 21 22 23 24 25 26 27 28 29 30 31 32
 *
 * Author: Daniel P. Berrange <berrange@redhat.com>
 */


#include <config.h>

#include "qemu_hotplug.h"
#include "qemu_capabilities.h"
#include "qemu_domain.h"
#include "qemu_command.h"
#include "qemu_bridge_filter.h"
#include "qemu_hostdev.h"
33
#include "domain_audit.h"
34
#include "domain_nwfilter.h"
35
#include "virlog.h"
36
#include "datatypes.h"
37
#include "virerror.h"
38
#include "viralloc.h"
39
#include "virpci.h"
E
Eric Blake 已提交
40
#include "virfile.h"
41
#include "virprocess.h"
42
#include "qemu_cgroup.h"
43
#include "locking/domain_lock.h"
44
#include "network/bridge_driver.h"
45 46
#include "virnetdev.h"
#include "virnetdevbridge.h"
A
Ansis Atteka 已提交
47
#include "virnetdevtap.h"
48
#include "device_conf.h"
49
#include "virstoragefile.h"
50
#include "virstring.h"
51
#include "virtime.h"
52 53

#define VIR_FROM_THIS VIR_FROM_QEMU
54
#define CHANGE_MEDIA_RETRIES 10
55

56
int qemuDomainChangeEjectableMedia(virQEMUDriverPtr driver,
57 58
                                   virDomainObjPtr vm,
                                   virDomainDiskDefPtr disk,
59
                                   virDomainDiskDefPtr origdisk,
60 61
                                   bool force)
{
62
    int ret = -1;
63
    char *driveAlias = NULL;
64
    qemuDomainObjPrivatePtr priv = vm->privateData;
65
    int retries = CHANGE_MEDIA_RETRIES;
66
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
67 68

    if (!origdisk->info.alias) {
69 70
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("missing disk device alias name for %s"), origdisk->dst);
71
        goto cleanup;
72 73 74 75
    }

    if (origdisk->device != VIR_DOMAIN_DISK_DEVICE_FLOPPY &&
        origdisk->device != VIR_DOMAIN_DISK_DEVICE_CDROM) {
76 77
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("Removable media not supported for %s device"),
78
                       virDomainDiskDeviceTypeToString(disk->device));
79
        goto cleanup;
80 81
    }

82
    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
83
                                vm, disk) < 0)
84
        goto cleanup;
85

86
    if (virSecurityManagerSetImageLabel(driver->securityManager,
87
                                        vm->def, disk) < 0) {
88 89
        if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
            VIR_WARN("Unable to release lock on %s", disk->src);
90
        goto cleanup;
91
    }
92

93
    if (!(driveAlias = qemuDeviceDriveHostAlias(origdisk, priv->qemuCaps)))
94 95
        goto error;

96
    qemuDomainObjEnterMonitor(driver, vm);
97
    ret = qemuMonitorEjectMedia(priv->mon, driveAlias, force);
98
    qemuDomainObjExitMonitor(driver, vm);
99

100
    virObjectRef(vm);
101
    /* we don't want to report errors from media tray_open polling */
102
    while (retries) {
103 104 105
        if (origdisk->tray_status == VIR_DOMAIN_DISK_TRAY_OPEN)
            break;

106
        retries--;
107
        virObjectUnlock(vm);
108 109
        VIR_DEBUG("Waiting 500ms for tray to open. Retries left %d", retries);
        usleep(500 * 1000); /* sleep 500ms */
110
        virObjectLock(vm);
111
    }
112
    virObjectUnref(vm);
113

114 115 116
    if (retries <= 0) {
        if (ret == 0) {
            /* If ret == -1, EjectMedia already set an error message */
117
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
118
                           _("Unable to eject media"));
119
        }
120 121 122 123 124 125 126 127
        goto audit;
    }
    ret = 0;

    if (disk->src) {
        /* deliberately don't depend on 'ret' as 'eject' may have failed the
         * first time and we are going to check the drive state anyway */
        const char *format = NULL;
128

129
        if (disk->type != VIR_DOMAIN_DISK_TYPE_DIR) {
130 131 132 133
            if (disk->format > 0)
                format = virStorageFileFormatTypeToString(disk->format);
            else if (origdisk->format > 0)
                format = virStorageFileFormatTypeToString(origdisk->format);
134
        }
135
        qemuDomainObjEnterMonitor(driver, vm);
136 137 138
        ret = qemuMonitorChangeMedia(priv->mon,
                                     driveAlias,
                                     disk->src, format);
139
        qemuDomainObjExitMonitor(driver, vm);
140
    }
141
audit:
142
    virDomainAuditDisk(vm, origdisk->src, disk->src, "update", ret >= 0);
143 144 145 146

    if (ret < 0)
        goto error;

147
    if (virSecurityManagerRestoreImageLabel(driver->securityManager,
148
                                            vm->def, origdisk) < 0)
149 150
        VIR_WARN("Unable to restore security label on ejected image %s", origdisk->src);

151 152 153
    if (virDomainLockDiskDetach(driver->lockManager, vm, origdisk) < 0)
        VIR_WARN("Unable to release lock on disk %s", origdisk->src);

154 155 156 157 158 159 160 161
    VIR_FREE(origdisk->src);
    origdisk->src = disk->src;
    disk->src = NULL;
    origdisk->type = disk->type;


    virDomainDiskDefFree(disk);

162 163 164
cleanup:
    VIR_FREE(driveAlias);
    virObjectUnref(cfg);
165 166 167
    return ret;

error:
168
    if (virSecurityManagerRestoreImageLabel(driver->securityManager,
169
                                            vm->def, disk) < 0)
170
        VIR_WARN("Unable to restore security label on new media %s", disk->src);
171 172 173 174

    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s", disk->src);

175
    goto cleanup;
176 177
}

178
int
179
qemuDomainCheckEjectableMedia(virQEMUDriverPtr driver,
180 181
                             virDomainObjPtr vm,
                             enum qemuDomainAsyncJob asyncJob)
182 183
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
184
    virHashTablePtr table = NULL;
185
    int ret = -1;
186
    size_t i;
187

188 189
    if (qemuDomainObjEnterMonitorAsync(driver, vm, asyncJob) == 0) {
        table = qemuMonitorGetBlockInfo(priv->mon);
190
        qemuDomainObjExitMonitor(driver, vm);
191
    }
192 193 194 195

    if (!table)
        goto cleanup;

196 197
    for (i = 0; i < vm->def->ndisks; i++) {
        virDomainDiskDefPtr disk = vm->def->disks[i];
198
        struct qemuDomainDiskInfo *info;
199

200 201
        if (disk->device == VIR_DOMAIN_DISK_DEVICE_DISK ||
            disk->device == VIR_DOMAIN_DISK_DEVICE_LUN) {
202
                 continue;
203
        }
204

205 206
        info = qemuMonitorBlockInfoLookup(table, disk->info.alias);
        if (!info)
207 208
            goto cleanup;

209
        if (info->tray_open && disk->src)
210 211 212 213 214 215
            VIR_FREE(disk->src);
    }

    ret = 0;

cleanup:
216
    virHashFree(table);
217 218 219
    return ret;
}

220 221 222 223
int qemuDomainAttachVirtioDiskDevice(virConnectPtr conn,
                                     virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainDiskDefPtr disk)
224
{
225 226
    size_t i;
    int ret = -1;
227 228 229 230
    const char* type = virDomainDiskBusTypeToString(disk->bus);
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *devstr = NULL;
    char *drivestr = NULL;
231
    bool releaseaddr = false;
232
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
233

234 235 236 237 238 239 240 241
    if (!disk->info.type) {
        if (STREQLEN(vm->def->os.machine, "s390-ccw", 8) &&
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
    }

242
    for (i = 0; i < vm->def->ndisks; i++) {
243
        if (STREQ(vm->def->disks[i]->dst, disk->dst)) {
244 245
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("target %s already exists"), disk->dst);
246
            goto cleanup;
247 248 249
        }
    }

250
    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
251
                                vm, disk) < 0)
252
        goto cleanup;
253

254
    if (virSecurityManagerSetImageLabel(driver->securityManager,
255
                                        vm->def, disk) < 0) {
256 257
        if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
            VIR_WARN("Unable to release lock on %s", disk->src);
258
        goto cleanup;
259
    }
260

261
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
262 263 264 265
        if (disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
            if (qemuDomainCCWAddressAssign(&disk->info, priv->ccwaddrs,
                                           !disk->info.addr.ccw.assigned) < 0)
                goto error;
266 267
        } else if (!disk->info.type ||
                    disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
268 269 270
            if (qemuDomainPCIAddressEnsureAddr(priv->pciaddrs, &disk->info) < 0)
                goto error;
        }
271
        releaseaddr = true;
272
        if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
273 274
            goto error;

275
        if (!(drivestr = qemuBuildDriveStr(conn, disk, false, priv->qemuCaps)))
276 277
            goto error;

278
        if (!(devstr = qemuBuildDriveDevStr(NULL, disk, 0, priv->qemuCaps)))
279 280 281
            goto error;
    }

282
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
283 284
        goto error;

285
    qemuDomainObjEnterMonitor(driver, vm);
286
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
287 288 289 290
        ret = qemuMonitorAddDrive(priv->mon, drivestr);
        if (ret == 0) {
            ret = qemuMonitorAddDevice(priv->mon, devstr);
            if (ret < 0) {
291 292 293 294 295 296 297 298 299 300
                virErrorPtr orig_err = virSaveLastError();
                if (qemuMonitorDriveDel(priv->mon, drivestr) < 0) {
                    VIR_WARN("Unable to remove drive %s (%s) after failed "
                             "qemuMonitorAddDevice",
                             drivestr, devstr);
                }
                if (orig_err) {
                    virSetError(orig_err);
                    virFreeError(orig_err);
                }
301 302
            }
        }
303 304
    } else if (!disk->info.type ||
                disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
305
        virDevicePCIAddress guestAddr = disk->info.addr.pci;
306 307 308 309
        ret = qemuMonitorAddPCIDisk(priv->mon,
                                    disk->src,
                                    type,
                                    &guestAddr);
310 311
        if (ret == 0) {
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
312
            memcpy(&disk->info.addr.pci, &guestAddr, sizeof(guestAddr));
313
        }
314
    }
315
    qemuDomainObjExitMonitor(driver, vm);
316

317
    virDomainAuditDisk(vm, NULL, disk->src, "attach", ret >= 0);
318 319 320 321 322 323

    if (ret < 0)
        goto error;

    virDomainDiskInsertPreAlloced(vm->def, disk);

324
cleanup:
325 326
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
327 328
    virObjectUnref(cfg);
    return ret;
329 330

error:
331 332
    if (releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, &disk->info, disk->src);
333

334
    if (virSecurityManagerRestoreImageLabel(driver->securityManager,
335
                                            vm->def, disk) < 0)
336 337
        VIR_WARN("Unable to restore security label on %s", disk->src);

338 339 340
    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s", disk->src);

341
    goto cleanup;
342 343 344
}


345
int qemuDomainAttachPciControllerDevice(virQEMUDriverPtr driver,
346
                                        virDomainObjPtr vm,
347
                                        virDomainControllerDefPtr controller)
348 349 350 351 352
{
    int ret = -1;
    const char* type = virDomainControllerTypeToString(controller->type);
    char *devstr = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
353
    bool releaseaddr = false;
354

355 356 357 358 359
    if (virDomainControllerFind(vm->def, controller->type, controller->idx) > 0) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("target %s:%d already exists"),
                       type, controller->idx);
        return -1;
360 361
    }

362
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
363 364
        if (qemuDomainPCIAddressEnsureAddr(priv->pciaddrs, &controller->info) < 0)
            goto cleanup;
365
        releaseaddr = true;
366 367 368
        if (qemuAssignDeviceControllerAlias(controller) < 0)
            goto cleanup;

369 370
        if (controller->type == VIR_DOMAIN_CONTROLLER_TYPE_USB &&
            controller->model == -1 &&
371
            !virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_PIIX3_USB_UHCI)) {
372 373
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("USB controller hotplug unsupported in this QEMU binary"));
374 375 376
            goto cleanup;
        }

377
        if (!(devstr = qemuBuildControllerDevStr(vm->def, controller, priv->qemuCaps, NULL))) {
378 379 380 381
            goto cleanup;
        }
    }

382
    if (VIR_REALLOC_N(vm->def->controllers, vm->def->ncontrollers+1) < 0)
383 384
        goto cleanup;

385
    qemuDomainObjEnterMonitor(driver, vm);
386
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
387 388 389 390 391 392
        ret = qemuMonitorAddDevice(priv->mon, devstr);
    } else {
        ret = qemuMonitorAttachPCIDiskController(priv->mon,
                                                 type,
                                                 &controller->info.addr.pci);
    }
393
    qemuDomainObjExitMonitor(driver, vm);
394 395 396 397 398 399 400

    if (ret == 0) {
        controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
        virDomainControllerInsertPreAlloced(vm->def, controller);
    }

cleanup:
401 402
    if (ret != 0 && releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
403 404 405 406 407 408

    VIR_FREE(devstr);
    return ret;
}

static virDomainControllerDefPtr
409
qemuDomainFindOrCreateSCSIDiskController(virQEMUDriverPtr driver,
410
                                         virDomainObjPtr vm,
411
                                         int controller)
412
{
413
    size_t i;
414
    virDomainControllerDefPtr cont;
415

416
    for (i = 0; i < vm->def->ncontrollers; i++) {
417 418 419 420 421 422 423 424 425 426 427
        cont = vm->def->controllers[i];

        if (cont->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (cont->idx == controller)
            return cont;
    }

    /* No SCSI controller present, for backward compatibility we
     * now hotplug a controller */
428
    if (VIR_ALLOC(cont) < 0)
429 430
        return NULL;
    cont->type = VIR_DOMAIN_CONTROLLER_TYPE_SCSI;
431
    cont->idx = controller;
432 433
    cont->model = -1;

434
    VIR_INFO("No SCSI controller present, hotplugging one");
435
    if (qemuDomainAttachPciControllerDevice(driver,
436
                                            vm, cont) < 0) {
437 438 439 440 441
        VIR_FREE(cont);
        return NULL;
    }

    if (!virDomainObjIsActive(vm)) {
442 443
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit"));
444 445 446 447 448 449 450 451 452
        /* cont doesn't need freeing here, since the reference
         * now held in def->controllers */
        return NULL;
    }

    return cont;
}


453
int qemuDomainAttachSCSIDisk(virConnectPtr conn,
454
                             virQEMUDriverPtr driver,
455
                             virDomainObjPtr vm,
456
                             virDomainDiskDefPtr disk)
457
{
458
    size_t i;
459 460 461 462 463
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainControllerDefPtr cont = NULL;
    char *drivestr = NULL;
    char *devstr = NULL;
    int ret = -1;
464
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
465

466
    for (i = 0; i < vm->def->ndisks; i++) {
467
        if (STREQ(vm->def->disks[i]->dst, disk->dst)) {
468 469
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("target %s already exists"), disk->dst);
470
            goto cleanup;
471 472 473
        }
    }

474
    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
475
                                vm, disk) < 0)
476
        goto cleanup;
477

478
    if (virSecurityManagerSetImageLabel(driver->securityManager,
479
                                        vm->def, disk) < 0) {
480 481
        if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
            VIR_WARN("Unable to release lock on %s", disk->src);
482
        goto cleanup;
483
    }
484 485 486

    /* We should have an address already, so make sure */
    if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE) {
487 488 489
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("unexpected disk address type %s"),
                       virDomainDeviceAddressTypeToString(disk->info.type));
490 491 492
        goto error;
    }

493 494
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
        if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
495
            goto error;
496
        if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
497 498 499
            goto error;
    }

500
    if (!(drivestr = qemuBuildDriveStr(conn, disk, false, priv->qemuCaps)))
501 502
        goto error;

503
    for (i = 0; i <= disk->info.addr.drive.controller; i++) {
504
        cont = qemuDomainFindOrCreateSCSIDiskController(driver, vm, i);
505 506 507 508 509 510 511
        if (!cont)
            goto error;
    }

    /* Tell clang that "cont" is non-NULL.
       This is because disk->info.addr.driver.controller is unsigned,
       and hence the above loop must iterate at least once.  */
512
    sa_assert(cont);
513 514

    if (cont->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
515 516
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("SCSI controller %d was missing its PCI address"), cont->idx);
517 518 519
        goto error;
    }

520
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
521 522
        goto error;

523
    qemuDomainObjEnterMonitor(driver, vm);
524
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
525 526 527 528 529 530 531 532 533 534 535 536 537 538 539 540 541 542 543 544
        ret = qemuMonitorAddDrive(priv->mon, drivestr);
        if (ret == 0) {
            ret = qemuMonitorAddDevice(priv->mon, devstr);
            if (ret < 0) {
                VIR_WARN("qemuMonitorAddDevice failed on %s (%s)",
                         drivestr, devstr);
                /* XXX should call 'drive_del' on error but this does not
                   exist yet */
            }
        }
    } else {
        virDomainDeviceDriveAddress driveAddr;
        ret = qemuMonitorAttachDrive(priv->mon,
                                     drivestr,
                                     &cont->info.addr.pci,
                                     &driveAddr);
        if (ret == 0) {
            /* XXX we should probably validate that the addr matches
             * our existing defined addr instead of overwriting */
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE;
545 546
            disk->info.addr.drive.bus = driveAddr.bus;
            disk->info.addr.drive.unit = driveAddr.unit;
547 548
        }
    }
549
    qemuDomainObjExitMonitor(driver, vm);
550

551
    virDomainAuditDisk(vm, NULL, disk->src, "attach", ret >= 0);
552 553 554 555 556 557

    if (ret < 0)
        goto error;

    virDomainDiskInsertPreAlloced(vm->def, disk);

558
cleanup:
559 560
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
561 562
    virObjectUnref(cfg);
    return ret;
563 564

error:
565
    if (virSecurityManagerRestoreImageLabel(driver->securityManager,
566
                                            vm->def, disk) < 0)
567 568
        VIR_WARN("Unable to restore security label on %s", disk->src);

569 570 571
    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s", disk->src);

572
    goto cleanup;
573 574 575
}


576
int qemuDomainAttachUsbMassstorageDevice(virConnectPtr conn,
577
                                         virQEMUDriverPtr driver,
578
                                         virDomainObjPtr vm,
579
                                         virDomainDiskDefPtr disk)
580 581
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
582 583
    size_t i;
    int ret = -1;
584 585
    char *drivestr = NULL;
    char *devstr = NULL;
586
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
587

588
    for (i = 0; i < vm->def->ndisks; i++) {
589
        if (STREQ(vm->def->disks[i]->dst, disk->dst)) {
590 591
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("target %s already exists"), disk->dst);
592
            goto cleanup;
593 594 595
        }
    }

596
    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
597
                                vm, disk) < 0)
598
        goto cleanup;
599

600
    if (virSecurityManagerSetImageLabel(driver->securityManager,
601
                                        vm->def, disk) < 0) {
602 603
        if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
            VIR_WARN("Unable to release lock on %s", disk->src);
604
        goto cleanup;
605
    }
606

607
    /* XXX not correct once we allow attaching a USB CDROM */
608
    if (!disk->src) {
609 610
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       "%s", _("disk source path is missing"));
611 612 613
        goto error;
    }

614 615
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
        if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
616
            goto error;
617
        if (!(drivestr = qemuBuildDriveStr(conn, disk, false, priv->qemuCaps)))
618
            goto error;
619
        if (!(devstr = qemuBuildDriveDevStr(NULL, disk, 0, priv->qemuCaps)))
620 621 622
            goto error;
    }

623
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
624 625
        goto error;

626
    qemuDomainObjEnterMonitor(driver, vm);
627
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
628 629 630 631 632 633 634 635 636 637 638 639 640
        ret = qemuMonitorAddDrive(priv->mon, drivestr);
        if (ret == 0) {
            ret = qemuMonitorAddDevice(priv->mon, devstr);
            if (ret < 0) {
                VIR_WARN("qemuMonitorAddDevice failed on %s (%s)",
                         drivestr, devstr);
                /* XXX should call 'drive_del' on error but this does not
                   exist yet */
            }
        }
    } else {
        ret = qemuMonitorAddUSBDisk(priv->mon, disk->src);
    }
641
    qemuDomainObjExitMonitor(driver, vm);
642

643
    virDomainAuditDisk(vm, NULL, disk->src, "attach", ret >= 0);
644 645 646 647 648 649

    if (ret < 0)
        goto error;

    virDomainDiskInsertPreAlloced(vm->def, disk);

650
cleanup:
651 652
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
653 654
    virObjectUnref(cfg);
    return ret;
655 656

error:
657
    if (virSecurityManagerRestoreImageLabel(driver->securityManager,
658
                                            vm->def, disk) < 0)
659 660
        VIR_WARN("Unable to restore security label on %s", disk->src);

661 662 663
    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s", disk->src);

664
    goto cleanup;
665 666 667 668 669
}


/* XXX conn required for network -> bridge resolution */
int qemuDomainAttachNetDevice(virConnectPtr conn,
670
                              virQEMUDriverPtr driver,
671
                              virDomainObjPtr vm,
672
                              virDomainNetDefPtr net)
673 674
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
675 676 677 678 679 680
    char **tapfdName = NULL;
    int *tapfd = NULL;
    int tapfdSize = 0;
    char **vhostfdName = NULL;
    int *vhostfd = NULL;
    int vhostfdSize = 0;
681 682
    char *nicstr = NULL;
    char *netstr = NULL;
A
Ansis Atteka 已提交
683
    virNetDevVPortProfilePtr vport = NULL;
684
    int ret = -1;
685
    virDevicePCIAddress guestAddr;
686
    int vlan;
687
    bool releaseaddr = false;
688 689
    bool iface_connected = false;
    int actualType;
690
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
691
    size_t i;
692

693
    /* preallocate new slot for device */
694
    if (VIR_REALLOC_N(vm->def->nets, vm->def->nnets+1) < 0)
695
        goto cleanup;
696

697 698 699 700 701
    /* If appropriate, grab a physical device from the configured
     * network's pool of devices, or resolve bridge device name
     * to the one defined in the network definition.
     */
    if (networkAllocateActualDevice(net) < 0)
702
        goto cleanup;
703 704

    actualType = virDomainNetGetActualType(net);
705 706 707 708 709 710 711 712 713 714 715 716

    if (actualType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* This is really a "smart hostdev", so it should be attached
         * as a hostdev (the hostdev code will reach over into the
         * netdev-specific code as appropriate), then also added to
         * the nets list (see cleanup:) if successful.
         */
        ret = qemuDomainAttachHostDevice(driver, vm,
                                         virDomainNetGetActualHostdev(net));
        goto cleanup;
    }

717
    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_HOST_NET_ADD)) {
718 719
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("installed qemu version does not support host_net_add"));
720 721 722
        goto cleanup;
    }

723 724 725 726 727 728 729 730 731 732
    /* Currently nothing besides TAP devices supports multiqueue. */
    if (net->driver.virtio.queues > 0 &&
        !(actualType == VIR_DOMAIN_NET_TYPE_NETWORK ||
          actualType == VIR_DOMAIN_NET_TYPE_BRIDGE)) {
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("Multiqueue network is not supported for: %s"),
                       virDomainNetTypeToString(actualType));
        return -1;
    }

733 734
    if (actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
        actualType == VIR_DOMAIN_NET_TYPE_NETWORK) {
735 736 737 738
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0 ||
739
            VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
740 741 742
            goto cleanup;
        if (qemuNetworkIfaceConnect(vm->def, conn, driver, net,
                                    priv->qemuCaps, tapfd, &tapfdSize) < 0)
743 744
            goto cleanup;
        iface_connected = true;
745
        if (qemuOpenVhostNet(vm->def, net, priv->qemuCaps, vhostfd, &vhostfdSize) < 0)
746
            goto cleanup;
747
    } else if (actualType == VIR_DOMAIN_NET_TYPE_DIRECT) {
748
        tapfdSize = vhostfdSize = 1;
749
        if (VIR_ALLOC(tapfd) < 0 || VIR_ALLOC(vhostfd) < 0)
750 751 752 753
            goto cleanup;
        if ((tapfd[0] = qemuPhysIfaceConnect(vm->def, driver, net,
                                             priv->qemuCaps,
                                             VIR_NETDEV_VPORT_PROFILE_OP_CREATE)) < 0)
754 755
            goto cleanup;
        iface_connected = true;
756
        if (qemuOpenVhostNet(vm->def, net, priv->qemuCaps, vhostfd, &vhostfdSize) < 0)
757
            goto cleanup;
758
    } else if (actualType == VIR_DOMAIN_NET_TYPE_ETHERNET) {
759
        vhostfdSize = 1;
760
        if (VIR_ALLOC(vhostfd) < 0)
761 762
            goto cleanup;
        if (qemuOpenVhostNet(vm->def, net, priv->qemuCaps, vhostfd, &vhostfdSize) < 0)
763
            goto cleanup;
764 765
    }

766 767
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NET_NAME) ||
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
768 769 770 771
        if (qemuAssignDeviceNetAlias(vm->def, net, -1) < 0)
            goto cleanup;
    }

772 773 774 775 776 777 778 779 780 781 782 783
    if (STREQLEN(vm->def->os.machine, "s390-ccw", 8) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        net->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        if (qemuDomainCCWAddressAssign(&net->info, priv->ccwaddrs,
                                       !net->info.addr.ccw.assigned) < 0)
            goto cleanup;
    } else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                        _("virtio-s390 net device cannot be hotplugged."));
    else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE) &&
             qemuDomainPCIAddressEnsureAddr(priv->pciaddrs, &net->info) < 0)
             goto cleanup;
784

785 786
    releaseaddr = true;

787 788
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
789 790 791 792 793
        vlan = -1;
    } else {
        vlan = qemuDomainNetVLAN(net);

        if (vlan < 0) {
794 795
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("Unable to attach network devices without vlan"));
796 797 798 799
            goto cleanup;
        }
    }

800
    if (VIR_ALLOC_N(tapfdName, tapfdSize) < 0 ||
801
        VIR_ALLOC_N(vhostfdName, vhostfdSize) < 0)
802 803 804
        goto cleanup;

    for (i = 0; i < tapfdSize; i++) {
805
        if (virAsprintf(&tapfdName[i], "fd-%s%zu", net->info.alias, i) < 0)
806
            goto cleanup;
807 808
    }

809
    for (i = 0; i < vhostfdSize; i++) {
810
        if (virAsprintf(&vhostfdName[i], "vhostfd-%s%zu", net->info.alias, i) < 0)
811
            goto cleanup;
812 813
    }

814 815
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
816
        if (!(netstr = qemuBuildHostNetStr(net, driver,
817 818 819
                                           ',', -1,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
820
            goto cleanup;
821
    } else {
822
        if (!(netstr = qemuBuildHostNetStr(net, driver,
823 824 825
                                           ' ', vlan,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
826
            goto cleanup;
827 828
    }

829
    qemuDomainObjEnterMonitor(driver, vm);
830 831
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
832 833 834
        if (qemuMonitorAddNetdev(priv->mon, netstr,
                                 tapfd, tapfdName, tapfdSize,
                                 vhostfd, vhostfdName, vhostfdSize) < 0) {
835
            qemuDomainObjExitMonitor(driver, vm);
836
            virDomainAuditNet(vm, NULL, net, "attach", false);
837
            goto cleanup;
838 839
        }
    } else {
840 841 842
        if (qemuMonitorAddHostNetwork(priv->mon, netstr,
                                      tapfd, tapfdName, tapfdSize,
                                      vhostfd, vhostfdName, vhostfdSize) < 0) {
843
            qemuDomainObjExitMonitor(driver, vm);
844
            virDomainAuditNet(vm, NULL, net, "attach", false);
845
            goto cleanup;
846 847
        }
    }
848
    qemuDomainObjExitMonitor(driver, vm);
849

850 851 852 853
    for (i = 0; i < tapfdSize; i++)
        VIR_FORCE_CLOSE(tapfd[i]);
    for (i = 0; i < vhostfdSize; i++)
        VIR_FORCE_CLOSE(vhostfd[i]);
854 855

    if (!virDomainObjIsActive(vm)) {
856 857
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit"));
858 859 860
        goto cleanup;
    }

861
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
862
        if (!(nicstr = qemuBuildNicDevStr(vm->def, net, vlan, 0, priv->qemuCaps)))
863 864 865 866 867 868
            goto try_remove;
    } else {
        if (!(nicstr = qemuBuildNicStr(net, NULL, vlan)))
            goto try_remove;
    }

869
    qemuDomainObjEnterMonitor(driver, vm);
870
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
871
        if (qemuMonitorAddDevice(priv->mon, nicstr) < 0) {
872
            qemuDomainObjExitMonitor(driver, vm);
873
            virDomainAuditNet(vm, NULL, net, "attach", false);
874 875 876
            goto try_remove;
        }
    } else {
877
        guestAddr = net->info.addr.pci;
878 879
        if (qemuMonitorAddPCINetwork(priv->mon, nicstr,
                                     &guestAddr) < 0) {
880
            qemuDomainObjExitMonitor(driver, vm);
881
            virDomainAuditNet(vm, NULL, net, "attach", false);
882 883 884 885 886
            goto try_remove;
        }
        net->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
        memcpy(&net->info.addr.pci, &guestAddr, sizeof(guestAddr));
    }
887
    qemuDomainObjExitMonitor(driver, vm);
888

889 890 891
    /* set link state */
    if (net->linkstate == VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) {
        if (!net->info.alias) {
892 893
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device alias not found: cannot set link state to down"));
894
        } else {
895
            qemuDomainObjEnterMonitor(driver, vm);
896

897
            if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
898
                if (qemuMonitorSetLink(priv->mon, net->info.alias, VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) < 0) {
899
                    qemuDomainObjExitMonitor(driver, vm);
900 901 902 903
                    virDomainAuditNet(vm, NULL, net, "attach", false);
                    goto try_remove;
                }
            } else {
904
                virReportError(VIR_ERR_OPERATION_FAILED, "%s",
905
                               _("setting of link state not supported: Link is up"));
906 907
            }

908
            qemuDomainObjExitMonitor(driver, vm);
909 910 911 912
        }
        /* link set to down */
    }

913
    virDomainAuditNet(vm, NULL, net, "attach", true);
914 915 916 917

    ret = 0;

cleanup:
918 919 920
    if (!ret) {
        vm->def->nets[vm->def->nnets++] = net;
    } else {
921 922
        if (releaseaddr)
            qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
923

924
        if (iface_connected) {
925
            virDomainConfNWFilterTeardown(net);
926

927 928 929 930 931 932 933 934 935 936
            if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_DIRECT) {
                ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                                 net->ifname, &net->mac,
                                 virDomainNetGetActualDirectDev(net),
                                 virDomainNetGetActualDirectMode(net),
                                 virDomainNetGetActualVirtPortProfile(net),
                                 cfg->stateDir));
                VIR_FREE(net->ifname);
            }

937 938 939 940 941
            vport = virDomainNetGetActualVirtPortProfile(net);
            if (vport && vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH)
               ignore_value(virNetDevOpenvswitchRemovePort(
                               virDomainNetGetActualBridgeName(net), net->ifname));
        }
A
Ansis Atteka 已提交
942

943 944
        networkReleaseActualDevice(net);
    }
945 946 947

    VIR_FREE(nicstr);
    VIR_FREE(netstr);
948
    for (i = 0; tapfd && i < tapfdSize; i++) {
949
        VIR_FORCE_CLOSE(tapfd[i]);
950 951
        if (tapfdName)
            VIR_FREE(tapfdName[i]);
952 953 954
    }
    VIR_FREE(tapfd);
    VIR_FREE(tapfdName);
955
    for (i = 0; vhostfd && i < vhostfdSize; i++) {
956
        VIR_FORCE_CLOSE(vhostfd[i]);
957 958
        if (vhostfdName)
            VIR_FREE(vhostfdName[i]);
959 960 961
    }
    VIR_FREE(vhostfd);
    VIR_FREE(vhostfdName);
962
    virObjectUnref(cfg);
963 964 965 966 967 968 969 970

    return ret;

try_remove:
    if (!virDomainObjIsActive(vm))
        goto cleanup;

    if (vlan < 0) {
971 972
        if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
973 974
            char *netdev_name;
            if (virAsprintf(&netdev_name, "host%s", net->info.alias) < 0)
975
                goto cleanup;
976
            qemuDomainObjEnterMonitor(driver, vm);
977 978 979
            if (qemuMonitorRemoveNetdev(priv->mon, netdev_name) < 0)
                VIR_WARN("Failed to remove network backend for netdev %s",
                         netdev_name);
980
            qemuDomainObjExitMonitor(driver, vm);
981 982
            VIR_FREE(netdev_name);
        } else {
983
            VIR_WARN("Unable to remove network backend");
984 985 986 987
        }
    } else {
        char *hostnet_name;
        if (virAsprintf(&hostnet_name, "host%s", net->info.alias) < 0)
988
            goto cleanup;
989
        qemuDomainObjEnterMonitor(driver, vm);
990 991 992
        if (qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0)
            VIR_WARN("Failed to remove network backend for vlan %d, net %s",
                     vlan, hostnet_name);
993
        qemuDomainObjExitMonitor(driver, vm);
994 995 996 997 998 999
        VIR_FREE(hostnet_name);
    }
    goto cleanup;
}


1000
int qemuDomainAttachHostPciDevice(virQEMUDriverPtr driver,
1001
                                  virDomainObjPtr vm,
1002
                                  virDomainHostdevDefPtr hostdev)
1003 1004 1005 1006 1007 1008
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret;
    char *devstr = NULL;
    int configfd = -1;
    char *configfd_name = NULL;
1009
    bool releaseaddr = false;
1010

1011
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs+1) < 0)
1012 1013
        return -1;

1014 1015
    if (qemuPrepareHostdevPCIDevices(driver, vm->def->name, vm->def->uuid,
                                     &hostdev, 1) < 0)
1016 1017
        return -1;

1018
    if (hostdev->source.subsys.u.pci.backend
1019
        == VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO) {
1020 1021 1022 1023 1024 1025
        if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_VFIO_PCI)) {
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("VFIO PCI device assignment is not "
                             "supported by this version of qemu"));
            goto error;
        }
1026 1027 1028 1029

        /* VFIO requires all of the guest's memory to be locked resident.
         * In this case, the guest's memory may already be locked, but it
         * doesn't hurt to "change" the limit to the same value.
1030
         */
1031 1032 1033 1034
        vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;
        virProcessSetMaxMemLock(vm->pid,
                                qemuDomainMemoryLimit(vm->def) * 1024);
        vm->def->hostdevs[vm->def->nhostdevs--] = NULL;
1035 1036
    }

1037
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
1038 1039
        if (qemuAssignDeviceHostdevAlias(vm->def, hostdev, -1) < 0)
            goto error;
1040
        if (qemuDomainPCIAddressEnsureAddr(priv->pciaddrs, hostdev->info) < 0)
1041
            goto error;
1042
        releaseaddr = true;
1043
        if ((hostdev->source.subsys.u.pci.backend
1044
             != VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO) &&
1045
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_PCI_CONFIGFD)) {
1046 1047 1048
            configfd = qemuOpenPCIConfig(hostdev);
            if (configfd >= 0) {
                if (virAsprintf(&configfd_name, "fd-%s",
1049
                                hostdev->info->alias) < 0)
1050 1051 1052 1053 1054
                    goto error;
            }
        }

        if (!virDomainObjIsActive(vm)) {
1055 1056
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("guest unexpectedly quit during hotplug"));
1057 1058 1059
            goto error;
        }

1060
        if (!(devstr = qemuBuildPCIHostdevDevStr(vm->def, hostdev, configfd_name,
1061
                                                 priv->qemuCaps)))
1062 1063
            goto error;

1064
        qemuDomainObjEnterMonitor(driver, vm);
1065 1066
        ret = qemuMonitorAddDeviceWithFd(priv->mon, devstr,
                                         configfd, configfd_name);
1067
        qemuDomainObjExitMonitor(driver, vm);
1068
    } else {
1069
        virDevicePCIAddress guestAddr = hostdev->info->addr.pci;
1070

1071
        qemuDomainObjEnterMonitor(driver, vm);
1072
        ret = qemuMonitorAddPCIHostDevice(priv->mon,
1073
                                          &hostdev->source.subsys.u.pci.addr,
1074
                                          &guestAddr);
1075
        qemuDomainObjExitMonitor(driver, vm);
1076

1077 1078
        hostdev->info->type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
        memcpy(&hostdev->info->addr.pci, &guestAddr, sizeof(guestAddr));
1079
    }
1080
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
1081 1082 1083 1084 1085 1086 1087 1088 1089 1090 1091 1092
    if (ret < 0)
        goto error;

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);

    return 0;

error:
1093 1094
    if (releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
1095

1096
    qemuDomainReAttachHostdevDevices(driver, vm->def->name, &hostdev, 1);
1097 1098 1099 1100 1101 1102 1103 1104 1105

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);

    return -1;
}


1106
int qemuDomainAttachRedirdevDevice(virQEMUDriverPtr driver,
1107 1108 1109 1110 1111
                                   virDomainObjPtr vm,
                                   virDomainRedirdevDefPtr redirdev)
{
    int ret;
    qemuDomainObjPrivatePtr priv = vm->privateData;
1112
    virDomainDefPtr def = vm->def;
1113 1114
    char *devstr = NULL;

1115
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
1116 1117
        if (qemuAssignDeviceRedirdevAlias(vm->def, redirdev, -1) < 0)
            goto error;
1118
        if (!(devstr = qemuBuildRedirdevDevStr(def, redirdev, priv->qemuCaps)))
1119 1120 1121
            goto error;
    }

1122
    if (VIR_REALLOC_N(vm->def->redirdevs, vm->def->nredirdevs+1) < 0)
1123 1124
        goto error;

1125
    qemuDomainObjEnterMonitor(driver, vm);
1126
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE))
1127 1128 1129 1130
        ret = qemuMonitorAddDevice(priv->mon, devstr);
    else
        goto error;

1131
    qemuDomainObjExitMonitor(driver, vm);
1132 1133 1134 1135 1136 1137 1138 1139 1140 1141 1142 1143 1144 1145 1146 1147
    virDomainAuditRedirdev(vm, redirdev, "attach", ret == 0);
    if (ret < 0)
        goto error;

    vm->def->redirdevs[vm->def->nredirdevs++] = redirdev;

    VIR_FREE(devstr);

    return 0;

error:
    VIR_FREE(devstr);
    return -1;

}

1148 1149 1150 1151 1152 1153 1154 1155 1156 1157 1158 1159 1160 1161 1162 1163 1164 1165 1166 1167 1168 1169 1170 1171 1172 1173 1174 1175 1176 1177 1178 1179 1180 1181 1182 1183 1184 1185 1186 1187 1188 1189 1190 1191 1192 1193 1194 1195 1196 1197 1198 1199 1200 1201 1202 1203 1204 1205 1206 1207 1208 1209 1210 1211 1212 1213 1214 1215 1216 1217 1218 1219
int
qemuDomainChrInsert(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
                       _("attaching serial console is not supported"));
        return -1;
    }

    if (virDomainChrFind(vmdef, chr)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("chardev already exists"));
        return -1;
    }

    if (virDomainChrInsert(vmdef, chr) < 0)
        return -1;

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
    if (vmdef->nserials == 1 && vmdef->nconsoles == 0) {
        if ((!vmdef->consoles && VIR_ALLOC(vmdef->consoles) < 0) ||
            VIR_ALLOC(vmdef->consoles[0]) < 0) {
            virDomainChrRemove(vmdef, chr);
            return -1;
        }
        vmdef->nconsoles = 1;

        /* Create an console alias for the serial port */
        vmdef->consoles[0]->deviceType = VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE;
        vmdef->consoles[0]->targetType = VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL;
    }

    return 0;
}

virDomainChrDefPtr
qemuDomainChrRemove(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    virDomainChrDefPtr ret;
    bool removeCompat;

    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("detaching serial console is not supported"));
        return NULL;
    }

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
    removeCompat = vmdef->nserials && vmdef->nconsoles &&
        vmdef->consoles[0]->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        vmdef->consoles[0]->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL &&
        virDomainChrEquals(vmdef->serials[0], chr);

    if (!(ret = virDomainChrRemove(vmdef, chr))) {
        virReportError(VIR_ERR_INVALID_ARG, "%s",
                       _("device not present in domain configuration"));
            return NULL;
    }

    if (removeCompat)
        VIR_DELETE_ELEMENT(vmdef->consoles, 0, vmdef->nconsoles);

    return ret;
}
1220 1221 1222 1223 1224 1225 1226 1227 1228 1229

int qemuDomainAttachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainDefPtr vmdef = vm->def;
    char *devstr = NULL;
    char *charAlias = NULL;
1230
    bool need_remove = false;
1231 1232 1233 1234 1235 1236 1237 1238 1239 1240 1241 1242 1243 1244 1245 1246 1247 1248 1249 1250

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("qemu does not support -device"));
        return ret;
    }

    if (qemuAssignDeviceChrAlias(vmdef, chr, -1) < 0)
        return ret;

    if (qemuBuildChrDeviceStr(&devstr, vm->def, chr, priv->qemuCaps) < 0)
        return ret;

    if (virAsprintf(&charAlias, "char%s", chr->info.alias) < 0) {
        virReportOOMError();
        goto cleanup;
    }

    if (qemuDomainChrInsert(vmdef, chr) < 0)
        goto cleanup;
1251
    need_remove = true;
1252 1253 1254 1255 1256 1257 1258 1259 1260 1261 1262 1263 1264 1265 1266 1267 1268

    qemuDomainObjEnterMonitor(driver, vm);
    if (qemuMonitorAttachCharDev(priv->mon, charAlias, &chr->source) < 0) {
        qemuDomainObjExitMonitor(driver, vm);
        goto cleanup;
    }

    if (devstr && qemuMonitorAddDevice(priv->mon, devstr) < 0) {
        /* detach associated chardev on error */
        qemuMonitorDetachCharDev(priv->mon, charAlias);
        qemuDomainObjExitMonitor(driver, vm);
        goto cleanup;
    }
    qemuDomainObjExitMonitor(driver, vm);

    ret = 0;
cleanup:
1269
    if (ret < 0 && need_remove)
1270 1271 1272 1273 1274 1275
        qemuDomainChrRemove(vmdef, chr);
    VIR_FREE(charAlias);
    VIR_FREE(devstr);
    return ret;
}

1276
int qemuDomainAttachHostUsbDevice(virQEMUDriverPtr driver,
1277
                                  virDomainObjPtr vm,
1278
                                  virDomainHostdevDefPtr hostdev)
1279 1280
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
1281 1282
    virUSBDeviceList *list = NULL;
    virUSBDevicePtr usb = NULL;
1283
    char *devstr = NULL;
1284 1285 1286 1287 1288 1289 1290 1291 1292 1293 1294 1295 1296 1297 1298 1299 1300
    bool added = false;
    int ret = -1;

    if (qemuFindHostdevUSBDevice(hostdev, true, &usb) < 0)
        return -1;

    if (!(list = virUSBDeviceListNew()))
        goto cleanup;

    if (virUSBDeviceListAdd(list, usb) < 0)
        goto cleanup;

    if (qemuPrepareHostdevUSBDevices(driver, vm->def->name, list) < 0)
        goto cleanup;

    added = true;
    virUSBDeviceListSteal(list, usb);
1301

1302
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
1303
        if (qemuAssignDeviceHostdevAlias(vm->def, hostdev, -1) < 0)
1304
            goto cleanup;
1305
        if (!(devstr = qemuBuildUSBHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
1306
            goto cleanup;
1307 1308
    }

1309
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs+1) < 0)
1310
        goto cleanup;
1311

1312
    qemuDomainObjEnterMonitor(driver, vm);
1313
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE))
1314 1315 1316 1317 1318
        ret = qemuMonitorAddDevice(priv->mon, devstr);
    else
        ret = qemuMonitorAddUSBDeviceExact(priv->mon,
                                           hostdev->source.subsys.u.usb.bus,
                                           hostdev->source.subsys.u.usb.device);
1319
    qemuDomainObjExitMonitor(driver, vm);
1320
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
1321
    if (ret < 0)
1322
        goto cleanup;
1323 1324 1325

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

1326 1327 1328 1329 1330 1331
    ret = 0;
cleanup:
    if (added)
        virUSBDeviceListSteal(driver->activeUsbHostdevs, usb);
    virUSBDeviceFree(usb);
    virObjectUnref(list);
1332
    VIR_FREE(devstr);
1333
    return ret;
1334 1335
}

1336 1337 1338 1339 1340 1341 1342 1343 1344 1345 1346 1347 1348 1349 1350 1351 1352 1353 1354 1355 1356 1357 1358 1359 1360 1361 1362 1363 1364 1365 1366 1367
static int
qemuDomainAttachHostScsiDevice(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *devstr = NULL;
    char *drvstr = NULL;

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DRIVE) ||
        !virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE) ||
        !virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_SCSI_GENERIC)) {
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("SCSI passthrough is not supported by this version of qemu"));
        return -1;
    }

    if (qemuPrepareHostdevSCSIDevices(driver, vm->def->name,
                                      &hostdev, 1)) {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("Unable to prepare scsi hostdev: %s:%d:%d:%d"),
                       hostdev->source.subsys.u.scsi.adapter,
                       hostdev->source.subsys.u.scsi.bus,
                       hostdev->source.subsys.u.scsi.target,
                       hostdev->source.subsys.u.scsi.unit);
        return -1;
    }

    if (qemuAssignDeviceHostdevAlias(vm->def, hostdev, 0) < 0)
        goto cleanup;

1368 1369
    if (!(drvstr = qemuBuildSCSIHostdevDrvStr(hostdev, priv->qemuCaps,
                                              &buildCommandLineCallbacks)))
1370 1371 1372 1373 1374
        goto cleanup;

    if (!(devstr = qemuBuildSCSIHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
        goto cleanup;

1375
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs + 1) < 0)
1376 1377 1378 1379 1380 1381 1382 1383 1384 1385 1386 1387 1388 1389 1390 1391 1392 1393 1394 1395 1396 1397 1398 1399 1400 1401 1402 1403 1404 1405 1406 1407 1408
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
    if ((ret = qemuMonitorAddDrive(priv->mon, drvstr)) == 0) {
        if ((ret = qemuMonitorAddDevice(priv->mon, devstr)) < 0) {
            virErrorPtr orig_err = virSaveLastError();
            if (qemuMonitorDriveDel(priv->mon, drvstr) < 0)
                VIR_WARN("Unable to remove drive %s (%s) after failed "
                         "qemuMonitorAddDevice",
                         drvstr, devstr);
            if (orig_err) {
                virSetError(orig_err);
                virFreeError(orig_err);
            }
        }
    }
    qemuDomainObjExitMonitor(driver, vm);

    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
    if (ret < 0)
        goto cleanup;

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    ret = 0;
cleanup:
    if (ret < 0)
        qemuDomainReAttachHostScsiDevices(driver, vm->def->name, &hostdev, 1);
    VIR_FREE(drvstr);
    VIR_FREE(devstr);
    return ret;
}

1409
int qemuDomainAttachHostDevice(virQEMUDriverPtr driver,
1410
                               virDomainObjPtr vm,
1411
                               virDomainHostdevDefPtr hostdev)
1412 1413
{
    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
1414 1415 1416
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
1417 1418 1419
        return -1;
    }

1420
    if (qemuSetupHostdevCGroup(vm, hostdev) < 0)
1421
        return -1;
1422

1423
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
1424
                                          vm->def, hostdev, NULL) < 0)
1425
        goto cleanup;
1426 1427 1428 1429

    switch (hostdev->source.subsys.type) {
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
        if (qemuDomainAttachHostPciDevice(driver, vm,
1430
                                          hostdev) < 0)
1431 1432 1433 1434 1435
            goto error;
        break;

    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
        if (qemuDomainAttachHostUsbDevice(driver, vm,
1436
                                          hostdev) < 0)
1437 1438 1439
            goto error;
        break;

1440 1441 1442 1443 1444 1445
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
        if (qemuDomainAttachHostScsiDevice(driver, vm,
                                           hostdev) < 0)
            goto error;
        break;

1446
    default:
1447 1448 1449
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(hostdev->source.subsys.type));
1450 1451 1452 1453 1454 1455
        goto error;
    }

    return 0;

error:
1456
    if (virSecurityManagerRestoreHostdevLabel(driver->securityManager,
1457
                                              vm->def, hostdev, NULL) < 0)
1458
        VIR_WARN("Unable to restore host device labelling on hotplug fail");
1459

1460
cleanup:
1461 1462
    if (qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
1463 1464 1465
    return -1;
}

1466 1467
static virDomainNetDefPtr *qemuDomainFindNet(virDomainObjPtr vm,
                                             virDomainNetDefPtr dev)
1468
{
1469
    size_t i;
1470 1471

    for (i = 0; i < vm->def->nnets; i++) {
1472
        if (virMacAddrCmp(&vm->def->nets[i]->mac, &dev->mac) == 0)
1473
            return &vm->def->nets[i];
1474 1475 1476 1477 1478
    }

    return NULL;
}

1479 1480 1481 1482 1483 1484 1485 1486 1487 1488 1489 1490 1491 1492
static char *
qemuDomainNetGetBridgeName(virConnectPtr conn, virDomainNetDefPtr net)
{
    char *brname = NULL;
    int actualType = virDomainNetGetActualType(net);

    if (actualType == VIR_DOMAIN_NET_TYPE_BRIDGE) {
        const char *tmpbr = virDomainNetGetActualBridgeName(net);
        if (!tmpbr) {
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("interface is missing bridge name"));
            goto cleanup;
        }
        /* we need a copy, not just a pointer to the original */
1493
        if (VIR_STRDUP(brname, tmpbr) < 0)
1494 1495 1496 1497 1498 1499 1500 1501 1502 1503 1504 1505 1506 1507 1508 1509 1510 1511 1512 1513 1514 1515 1516 1517 1518 1519 1520 1521
            goto cleanup;
    } else if (actualType == VIR_DOMAIN_NET_TYPE_NETWORK) {
        int active;
        virErrorPtr errobj;
        virNetworkPtr network;

        if (!(network = virNetworkLookupByName(conn, net->data.network.name))) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("Couldn't find network '%s'"),
                           net->data.network.name);
            goto cleanup;
        }

        active = virNetworkIsActive(network);
        if (active == 1) {
            brname = virNetworkGetBridgeName(network);
        } else if (active == 0) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("Network '%s' is not active."),
                           net->data.network.name);
        }

        /* Make sure any above failure is preserved */
        errobj = virSaveLastError();
        virNetworkFree(network);
        virSetError(errobj);
        virFreeError(errobj);

1522 1523 1524 1525
    } else {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("Interface type %d has no bridge name"),
                       virDomainNetGetActualType(net));
1526 1527 1528 1529 1530 1531 1532 1533 1534 1535 1536
    }

cleanup:
    return brname;
}

static int
qemuDomainChangeNetBridge(virConnectPtr conn,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
1537 1538
{
    int ret = -1;
1539 1540 1541 1542 1543 1544 1545
    char *oldbridge = NULL, *newbridge = NULL;

    if (!(oldbridge = qemuDomainNetGetBridgeName(conn, olddev)))
        goto cleanup;

    if (!(newbridge = qemuDomainNetGetBridgeName(conn, newdev)))
        goto cleanup;
1546 1547 1548 1549 1550

    VIR_DEBUG("Change bridge for interface %s: %s -> %s",
              olddev->ifname, oldbridge, newbridge);

    if (virNetDevExists(newbridge) != 1) {
1551 1552
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("bridge %s doesn't exist"), newbridge);
1553
        goto cleanup;
1554 1555 1556 1557 1558
    }

    if (oldbridge) {
        ret = virNetDevBridgeRemovePort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, olddev, NULL, "detach", ret == 0);
1559 1560 1561 1562 1563 1564 1565 1566
        if (ret < 0) {
            /* warn but continue - possibly the old network
             * had been destroyed and reconstructed, leaving the
             * tap device orphaned.
             */
            VIR_WARN("Unable to detach device %s from bridge %s",
                     olddev->ifname, oldbridge);
        }
1567 1568 1569
    }

    ret = virNetDevBridgeAddPort(newbridge, olddev->ifname);
1570
    virDomainAuditNet(vm, NULL, newdev, "attach", ret == 0);
1571 1572 1573 1574
    if (ret < 0) {
        ret = virNetDevBridgeAddPort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, NULL, olddev, "attach", ret == 0);
        if (ret < 0) {
1575
            virReportError(VIR_ERR_OPERATION_FAILED,
1576
                           _("unable to recover former state by adding port "
1577
                             "to bridge %s"), oldbridge);
1578
        }
1579
        goto cleanup;
1580
    }
1581 1582 1583
    /* caller will replace entire olddev with newdev in domain nets list */
    ret = 0;
cleanup:
1584
    VIR_FREE(oldbridge);
1585 1586
    VIR_FREE(newbridge);
    return ret;
1587 1588
}

1589 1590 1591 1592 1593 1594 1595 1596 1597 1598 1599 1600 1601 1602 1603 1604 1605 1606 1607 1608 1609 1610 1611 1612 1613 1614 1615 1616 1617 1618 1619 1620 1621 1622 1623 1624 1625
static int
qemuDomainChangeNetFilter(virConnectPtr conn,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
{
    /* make sure this type of device supports filters. */
    switch (virDomainNetGetActualType(newdev)) {
    case VIR_DOMAIN_NET_TYPE_ETHERNET:
    case VIR_DOMAIN_NET_TYPE_BRIDGE:
    case VIR_DOMAIN_NET_TYPE_NETWORK:
        break;
    default:
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("filters not supported on interfaces of type %s"),
                       virDomainNetTypeToString(virDomainNetGetActualType(newdev)));
        return -1;
    }

    virDomainConfNWFilterTeardown(olddev);

    if (virDomainConfNWFilterInstantiate(conn, vm->def->uuid, newdev) < 0) {
        virErrorPtr errobj;

        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("failed to add new filter rules to '%s' "
                         "- attempting to restore old rules"),
                       olddev->ifname);
        errobj = virSaveLastError();
        ignore_value(virDomainConfNWFilterInstantiate(conn, vm->def->uuid, olddev));
        virSetError(errobj);
        virFreeError(errobj);
        return -1;
    }
    return 0;
}

1626
int qemuDomainChangeNetLinkState(virQEMUDriverPtr driver,
1627 1628 1629 1630 1631 1632 1633 1634 1635 1636
                                 virDomainObjPtr vm,
                                 virDomainNetDefPtr dev,
                                 int linkstate)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;

    VIR_DEBUG("dev: %s, state: %d", dev->info.alias, linkstate);

    if (!dev->info.alias) {
1637 1638
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("can't change link state: device alias not found"));
1639 1640 1641
        return -1;
    }

1642
    qemuDomainObjEnterMonitor(driver, vm);
1643 1644 1645 1646 1647 1648 1649 1650 1651

    ret = qemuMonitorSetLink(priv->mon, dev->info.alias, linkstate);
    if (ret < 0)
        goto cleanup;

    /* modify the device configuration */
    dev->linkstate = linkstate;

cleanup:
1652
    qemuDomainObjExitMonitor(driver, vm);
1653 1654 1655 1656

    return ret;
}

1657
int
1658
qemuDomainChangeNet(virQEMUDriverPtr driver,
1659 1660 1661
                    virDomainObjPtr vm,
                    virDomainPtr dom,
                    virDomainDeviceDefPtr dev)
1662
{
1663 1664 1665 1666 1667 1668
    virDomainNetDefPtr newdev = dev->data.net;
    virDomainNetDefPtr *devslot = qemuDomainFindNet(vm, newdev);
    virDomainNetDefPtr olddev;
    int oldType, newType;
    bool needReconnect = false;
    bool needBridgeChange = false;
1669
    bool needFilterChange = false;
1670 1671 1672
    bool needLinkStateChange = false;
    bool needReplaceDevDef = false;
    int ret = -1;
1673

1674
    if (!devslot || !(olddev = *devslot)) {
1675
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
1676
                       _("cannot find existing network device to modify"));
1677 1678 1679 1680 1681 1682
        goto cleanup;
    }

    oldType = virDomainNetGetActualType(olddev);
    if (oldType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* no changes are possible to a type='hostdev' interface */
1683
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1684 1685 1686 1687 1688 1689 1690 1691 1692 1693 1694 1695 1696 1697 1698 1699 1700 1701 1702 1703 1704 1705
                       _("cannot change config of '%s' network type"),
                       virDomainNetTypeToString(oldType));
        goto cleanup;
    }

    /* Check individual attributes for changes that can't be done to a
     * live netdev. These checks *mostly* go in order of the
     * declarations in virDomainNetDef in order to assure nothing is
     * omitted. (exceptiong where noted in comments - in particular,
     * some things require that a new "actual device" be allocated
     * from the network driver first, but we delay doing that until
     * after we've made as many other checks as possible)
     */

    /* type: this can change (with some restrictions), but the actual
     * type of the new device connection isn't known until after we
     * allocate the "actual" device.
     */

    if (virMacAddrCmp(&olddev->mac, &newdev->mac)) {
        char oldmac[VIR_MAC_STRING_BUFLEN], newmac[VIR_MAC_STRING_BUFLEN];

1706
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1707 1708 1709 1710 1711 1712 1713 1714
                       _("cannot change network interface mac address "
                         "from %s to %s"),
                       virMacAddrFormat(&olddev->mac, oldmac),
                       virMacAddrFormat(&newdev->mac, newmac));
        goto cleanup;
    }

    if (STRNEQ_NULLABLE(olddev->model, newdev->model)) {
1715
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1716 1717 1718 1719
                       _("cannot modify network device model from %s to %s"),
                       olddev->model ? olddev->model : "(default)",
                       newdev->model ? newdev->model : "(default)");
        goto cleanup;
1720 1721
    }

1722 1723 1724 1725 1726
    if (olddev->model && STREQ(olddev->model, "virtio") &&
        (olddev->driver.virtio.name != newdev->driver.virtio.name ||
         olddev->driver.virtio.txmode != newdev->driver.virtio.txmode ||
         olddev->driver.virtio.ioeventfd != newdev->driver.virtio.ioeventfd ||
         olddev->driver.virtio.event_idx != newdev->driver.virtio.event_idx)) {
1727
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1728 1729 1730 1731 1732 1733 1734 1735 1736 1737
                       _("cannot modify virtio network device driver attributes"));
        goto cleanup;
    }

    /* data: this union will be examined later, after allocating new actualdev */
    /* virtPortProfile: will be examined later, after allocating new actualdev */

    if (olddev->tune.sndbuf_specified != newdev->tune.sndbuf_specified ||
        olddev->tune.sndbuf != newdev->tune.sndbuf) {
        needReconnect = true;
1738 1739
    }

1740
    if (STRNEQ_NULLABLE(olddev->script, newdev->script)) {
1741
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1742 1743
                       _("cannot modify network device script attribute"));
        goto cleanup;
1744 1745
    }

1746
    /* ifname: check if it's set in newdev. If not, retain the autogenerated one */
1747
    if (!newdev->ifname && VIR_STRDUP(newdev->ifname, olddev->ifname) < 0)
1748 1749
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->ifname, newdev->ifname)) {
1750
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1751 1752 1753
                       _("cannot modify network device tap name"));
        goto cleanup;
    }
1754

1755 1756 1757 1758 1759 1760 1761 1762 1763 1764 1765 1766 1767
    /* info: if newdev->info is empty, fill it in from olddev,
     * otherwise verify that it matches - nothing is allowed to
     * change. (There is no helper function to do this, so
     * individually check the few feidls of virDomainDeviceInfo that
     * are relevant in this case).
     */
    if (!virDomainDeviceAddressIsValid(&newdev->info,
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) &&
        virDomainDeviceInfoCopy(&newdev->info, &olddev->info) < 0) {
        goto cleanup;
    }
    if (!virDevicePCIAddressEqual(&olddev->info.addr.pci,
                                  &newdev->info.addr.pci)) {
1768
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1769 1770 1771 1772
                       _("cannot modify network device guest PCI address"));
        goto cleanup;
    }
    /* grab alias from olddev if not set in newdev */
1773 1774
    if (!newdev->info.alias &&
        VIR_STRDUP(newdev->info.alias, olddev->info.alias) < 0)
1775 1776
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->info.alias, newdev->info.alias)) {
1777
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1778 1779 1780 1781
                       _("cannot modify network device alias"));
        goto cleanup;
    }
    if (olddev->info.rombar != newdev->info.rombar) {
1782
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1783 1784 1785 1786
                       _("cannot modify network device rom bar setting"));
        goto cleanup;
    }
    if (STRNEQ_NULLABLE(olddev->info.romfile, newdev->info.romfile)) {
1787
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1788 1789 1790 1791
                       _("cannot modify network rom file"));
        goto cleanup;
    }
    if (olddev->info.bootIndex != newdev->info.bootIndex) {
1792
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1793 1794 1795 1796
                       _("cannot modify network device boot index setting"));
        goto cleanup;
    }
    /* (end of device info checks) */
1797

1798 1799 1800 1801
    if (STRNEQ_NULLABLE(olddev->filter, newdev->filter) ||
        !virNWFilterHashTableEqual(olddev->filterparams, newdev->filterparams)) {
        needFilterChange = true;
    }
1802

1803 1804 1805 1806 1807 1808 1809 1810 1811 1812 1813 1814 1815 1816 1817 1818
    /* bandwidth can be modified, and will be checked later */
    /* vlan can be modified, and will be checked later */
    /* linkstate can be modified */

    /* allocate new actual device to compare to old - we will need to
     * free it if we fail for any reason
     */
    if (newdev->type == VIR_DOMAIN_NET_TYPE_NETWORK &&
        networkAllocateActualDevice(newdev) < 0) {
        goto cleanup;
    }

    newType = virDomainNetGetActualType(newdev);

    if (newType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* can't turn it into a type='hostdev' interface */
1819
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1820 1821 1822 1823 1824 1825
                       _("cannot change network interface type to '%s'"),
                       virDomainNetTypeToString(newType));
        goto cleanup;
    }

    if (olddev->type == newdev->type && oldType == newType) {
1826

1827 1828 1829 1830 1831 1832 1833 1834 1835 1836 1837 1838
        /* if type hasn't changed, check the relevant fields for the type */
        switch (newdev->type) {
        case VIR_DOMAIN_NET_TYPE_USER:
            break;

        case VIR_DOMAIN_NET_TYPE_ETHERNET:
            if (STRNEQ_NULLABLE(olddev->data.ethernet.dev,
                                newdev->data.ethernet.dev) ||
                STRNEQ_NULLABLE(olddev->data.ethernet.ipaddr,
                                newdev->data.ethernet.ipaddr)) {
                needReconnect = true;
            }
1839 1840
        break;

1841 1842 1843 1844 1845 1846 1847 1848 1849 1850 1851 1852 1853 1854 1855 1856 1857 1858 1859 1860 1861 1862 1863 1864 1865 1866 1867 1868 1869 1870 1871 1872 1873 1874 1875 1876
        case VIR_DOMAIN_NET_TYPE_SERVER:
        case VIR_DOMAIN_NET_TYPE_CLIENT:
        case VIR_DOMAIN_NET_TYPE_MCAST:
            if (STRNEQ_NULLABLE(olddev->data.socket.address,
                                newdev->data.socket.address) ||
                olddev->data.socket.port != newdev->data.socket.port) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_NETWORK:
            if (STRNEQ(olddev->data.network.name, newdev->data.network.name)) {
                if (virDomainNetGetActualVirtPortProfile(newdev))
                    needReconnect = true;
                else
                    needBridgeChange = true;
            }
            /* other things handled in common code directly below this switch */
            break;

        case VIR_DOMAIN_NET_TYPE_BRIDGE:
            /* all handled in bridge name checked in common code below */
            break;

        case VIR_DOMAIN_NET_TYPE_INTERNAL:
            if (STRNEQ_NULLABLE(olddev->data.internal.name,
                                newdev->data.internal.name)) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_DIRECT:
            /* all handled in common code directly below this switch */
            break;

        default:
1877
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1878 1879 1880
                           _("unable to change config on '%s' network type"),
                           virDomainNetTypeToString(newdev->type));
            break;
1881

1882
        }
1883 1884 1885 1886 1887 1888 1889 1890 1891 1892 1893 1894 1895 1896 1897 1898 1899 1900 1901 1902 1903 1904 1905 1906 1907 1908 1909 1910 1911 1912 1913
    } else {
        /* interface type has changed. There are a few special cases
         * where this can only require a minor (or even no) change,
         * but in most cases we need to do a full reconnection.
         *
         * If we switch (in either direction) between type='bridge'
         * and type='network' (for a traditional managed virtual
         * network that uses a host bridge, i.e. forward
         * mode='route|nat'), we just need to change the bridge.
         */
        if ((oldType == VIR_DOMAIN_NET_TYPE_NETWORK &&
             newType == VIR_DOMAIN_NET_TYPE_BRIDGE) ||
            (oldType == VIR_DOMAIN_NET_TYPE_BRIDGE &&
             newType == VIR_DOMAIN_NET_TYPE_NETWORK)) {

            needBridgeChange = true;

        } else if (oldType == VIR_DOMAIN_NET_TYPE_DIRECT &&
                   newType == VIR_DOMAIN_NET_TYPE_DIRECT) {

            /* this is the case of switching from type='direct' to
             * type='network' for a network that itself uses direct
             * (macvtap) devices. If the physical device and mode are
             * the same, this doesn't require any actual setup
             * change. If the physical device or mode *does* change,
             * that will be caught in the common section below */

        } else {

            /* for all other combinations, we'll need a full reconnect */
            needReconnect = true;
1914 1915

        }
1916
    }
1917

1918 1919 1920 1921 1922 1923 1924 1925 1926 1927 1928
    /* now several things that are in multiple (but not all)
     * different types, and can be safely compared even for those
     * cases where they don't apply to a particular type.
     */
    if (STRNEQ_NULLABLE(virDomainNetGetActualBridgeName(olddev),
                        virDomainNetGetActualBridgeName(newdev))) {
        if (virDomainNetGetActualVirtPortProfile(newdev))
            needReconnect = true;
        else
            needBridgeChange = true;
    }
1929

1930 1931 1932 1933 1934 1935 1936 1937 1938 1939
    if (STRNEQ_NULLABLE(virDomainNetGetActualDirectDev(olddev),
                        virDomainNetGetActualDirectDev(newdev)) ||
        virDomainNetGetActualDirectMode(olddev) != virDomainNetGetActualDirectMode(olddev) ||
        !virNetDevVPortProfileEqual(virDomainNetGetActualVirtPortProfile(olddev),
                                    virDomainNetGetActualVirtPortProfile(newdev)) ||
        !virNetDevBandwidthEqual(virDomainNetGetActualBandwidth(olddev),
                                 virDomainNetGetActualBandwidth(newdev)) ||
        !virNetDevVlanEqual(virDomainNetGetActualVlan(olddev),
                            virDomainNetGetActualVlan(newdev))) {
        needReconnect = true;
1940 1941
    }

1942 1943 1944 1945 1946 1947
    if (olddev->linkstate != newdev->linkstate)
        needLinkStateChange = true;

    /* FINALLY - actually perform the required actions */

    if (needReconnect) {
1948
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1949 1950 1951
                       _("unable to change config on '%s' network type"),
                       virDomainNetTypeToString(newdev->type));
        goto cleanup;
1952 1953
    }

1954 1955 1956 1957 1958
    if (needBridgeChange) {
        if (qemuDomainChangeNetBridge(dom->conn, vm, olddev, newdev) < 0)
            goto cleanup;
        /* we successfully switched to the new bridge, and we've
         * determined that the rest of newdev is equivalent to olddev,
1959 1960 1961 1962 1963 1964 1965 1966 1967 1968
         * so move newdev into place */
        needReplaceDevDef = true;
    }

    if (needFilterChange) {
        if (qemuDomainChangeNetFilter(dom->conn, vm, olddev, newdev) < 0)
            goto cleanup;
        /* we successfully switched to the new filter, and we've
         * determined that the rest of newdev is equivalent to olddev,
         * so move newdev into place */
1969
        needReplaceDevDef = true;
1970 1971
    }

1972 1973 1974
    if (needLinkStateChange &&
        qemuDomainChangeNetLinkState(driver, vm, olddev, newdev->linkstate) < 0) {
        goto cleanup;
1975 1976
    }

1977 1978 1979 1980 1981 1982 1983 1984 1985 1986 1987 1988 1989
    if (needReplaceDevDef) {
        /* the changes above warrant replacing olddev with newdev in
         * the domain's nets list.
         */
        networkReleaseActualDevice(olddev);
        virDomainNetDefFree(olddev);
        /* move newdev into the nets list, and NULL it out from the
         * virDomainDeviceDef that we were given so that the caller
         * won't delete it on return.
         */
        *devslot = newdev;
        newdev = dev->data.net = NULL;
        dev->type = VIR_DOMAIN_DEVICE_NONE;
1990 1991
    }

1992 1993 1994 1995 1996 1997 1998 1999 2000 2001 2002 2003 2004 2005 2006 2007 2008 2009 2010 2011 2012 2013 2014
    ret = 0;
cleanup:
    /* When we get here, we will be in one of these two states:
     *
     * 1) newdev has been moved into the domain's list of nets and
     *    newdev set to NULL, and dev->data.net will be NULL (and
     *    dev->type is NONE). olddev will have been completely
     *    released and freed. (aka success) In this case no extra
     *    cleanup is needed.
     *
     * 2) newdev has *not* been moved into the domain's list of nets,
     *    and dev->data.net == newdev (and dev->type == NET). In this *
     *    case, we need to at least release the "actual device" from *
     *    newdev (the caller will free dev->data.net a.k.a. newdev, and
     *    the original olddev is still in used)
     *
     * Note that case (2) isn't necessarily a failure. It may just be
     * that the changes were minor enough that we didn't need to
     * replace the entire device object.
     */
    if (newdev)
        networkReleaseActualDevice(newdev);

2015 2016 2017 2018
    return ret;
}


2019 2020 2021 2022

static virDomainGraphicsDefPtr qemuDomainFindGraphics(virDomainObjPtr vm,
                                                      virDomainGraphicsDefPtr dev)
{
2023
    size_t i;
2024

2025
    for (i = 0; i < vm->def->ngraphics; i++) {
2026 2027 2028 2029 2030 2031 2032 2033 2034
        if (vm->def->graphics[i]->type == dev->type)
            return vm->def->graphics[i];
    }

    return NULL;
}


int
2035
qemuDomainChangeGraphics(virQEMUDriverPtr driver,
2036 2037 2038 2039 2040
                         virDomainObjPtr vm,
                         virDomainGraphicsDefPtr dev)
{
    virDomainGraphicsDefPtr olddev = qemuDomainFindGraphics(vm, dev);
    int ret = -1;
2041
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
2042
    size_t i;
2043 2044

    if (!olddev) {
2045 2046
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("cannot find existing graphics device to modify"));
2047
        goto cleanup;
2048 2049
    }

2050 2051 2052 2053 2054 2055 2056
    if (dev->nListens != olddev->nListens) {
        virReportError(VIR_ERR_INVALID_ARG, "%s",
                       _("cannot change the number of listen addresses"));
        goto cleanup;
    }

    for (i = 0; i < dev->nListens; i++) {
J
Jim Fehlig 已提交
2057
        virDomainGraphicsListenDefPtr newlisten = &dev->listens[i];
2058 2059
        virDomainGraphicsListenDefPtr oldlisten = &olddev->listens[i];

J
Jim Fehlig 已提交
2060
        if (newlisten->type != oldlisten->type) {
2061 2062 2063 2064 2065
            virReportError(VIR_ERR_INVALID_ARG, "%s",
                           _("cannot change the type of listen address"));
            goto cleanup;
        }

J
Jim Fehlig 已提交
2066
        switch ((enum virDomainGraphicsListenType) newlisten->type) {
2067
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_ADDRESS:
J
Jim Fehlig 已提交
2068
            if (STRNEQ_NULLABLE(newlisten->address, oldlisten->address)) {
2069 2070 2071 2072 2073 2074 2075 2076 2077
                virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                               dev->type == VIR_DOMAIN_GRAPHICS_TYPE_VNC ?
                               _("cannot change listen address setting on vnc graphics") :
                               _("cannot change listen address setting on spice graphics"));
                goto cleanup;
            }
            break;

        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NETWORK:
J
Jim Fehlig 已提交
2078
            if (STRNEQ_NULLABLE(newlisten->network, oldlisten->network)) {
2079 2080 2081 2082 2083 2084 2085 2086 2087 2088 2089 2090 2091 2092
                virReportError(VIR_ERR_INVALID_ARG, "%s",
                               dev->type == VIR_DOMAIN_GRAPHICS_TYPE_VNC ?
                           _("cannot change listen network setting on vnc graphics") :
                           _("cannot change listen network setting on spice graphics"));
                goto cleanup;
            }
            break;

        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NONE:
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_LAST:
            /* nada */
            break;
        }
    }
2093

2094 2095 2096
    switch (dev->type) {
    case VIR_DOMAIN_GRAPHICS_TYPE_VNC:
        if ((olddev->data.vnc.autoport != dev->data.vnc.autoport) ||
E
Eric Blake 已提交
2097 2098
            (!dev->data.vnc.autoport &&
             (olddev->data.vnc.port != dev->data.vnc.port))) {
2099 2100
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("cannot change port settings on vnc graphics"));
2101
            goto cleanup;
2102 2103
        }
        if (STRNEQ_NULLABLE(olddev->data.vnc.keymap, dev->data.vnc.keymap)) {
2104 2105
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("cannot change keymap setting on vnc graphics"));
2106
            goto cleanup;
2107 2108
        }

2109 2110 2111
        /* If a password lifetime was, or is set, or action if connected has
         * changed, then we must always run, even if new password matches
         * old password */
2112 2113
        if (olddev->data.vnc.auth.expires ||
            dev->data.vnc.auth.expires ||
2114
            olddev->data.vnc.auth.connected != dev->data.vnc.auth.connected ||
E
Eric Blake 已提交
2115 2116 2117
            STRNEQ_NULLABLE(olddev->data.vnc.auth.passwd,
                            dev->data.vnc.auth.passwd)) {
            VIR_DEBUG("Updating password on VNC server %p %p",
2118
                      dev->data.vnc.auth.passwd, cfg->vncPassword);
E
Eric Blake 已提交
2119 2120 2121
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_VNC,
                                                    &dev->data.vnc.auth,
2122
                                                    cfg->vncPassword);
2123
            if (ret < 0)
2124
                goto cleanup;
2125 2126 2127 2128 2129

            /* Steal the new dev's  char * reference */
            VIR_FREE(olddev->data.vnc.auth.passwd);
            olddev->data.vnc.auth.passwd = dev->data.vnc.auth.passwd;
            dev->data.vnc.auth.passwd = NULL;
2130 2131
            olddev->data.vnc.auth.validTo = dev->data.vnc.auth.validTo;
            olddev->data.vnc.auth.expires = dev->data.vnc.auth.expires;
2132
            olddev->data.vnc.auth.connected = dev->data.vnc.auth.connected;
2133 2134 2135 2136 2137
        } else {
            ret = 0;
        }
        break;

2138 2139
    case VIR_DOMAIN_GRAPHICS_TYPE_SPICE:
        if ((olddev->data.spice.autoport != dev->data.spice.autoport) ||
E
Eric Blake 已提交
2140 2141 2142 2143
            (!dev->data.spice.autoport &&
             (olddev->data.spice.port != dev->data.spice.port)) ||
            (!dev->data.spice.autoport &&
             (olddev->data.spice.tlsPort != dev->data.spice.tlsPort))) {
2144 2145
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("cannot change port settings on spice graphics"));
2146
            goto cleanup;
2147
        }
E
Eric Blake 已提交
2148 2149
        if (STRNEQ_NULLABLE(olddev->data.spice.keymap,
                            dev->data.spice.keymap)) {
2150
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
2151
                            _("cannot change keymap setting on spice graphics"));
2152
            goto cleanup;
2153 2154
        }

2155 2156 2157 2158 2159
        /* We must reset the password if it has changed but also if:
         * - password lifetime is or was set
         * - the requested action has changed
         * - the action is "disconnect"
         */
2160 2161
        if (olddev->data.spice.auth.expires ||
            dev->data.spice.auth.expires ||
2162
            olddev->data.spice.auth.connected != dev->data.spice.auth.connected ||
2163 2164
            dev->data.spice.auth.connected ==
            VIR_DOMAIN_GRAPHICS_AUTH_CONNECTED_DISCONNECT ||
E
Eric Blake 已提交
2165 2166 2167
            STRNEQ_NULLABLE(olddev->data.spice.auth.passwd,
                            dev->data.spice.auth.passwd)) {
            VIR_DEBUG("Updating password on SPICE server %p %p",
2168
                      dev->data.spice.auth.passwd, cfg->spicePassword);
E
Eric Blake 已提交
2169 2170 2171
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_SPICE,
                                                    &dev->data.spice.auth,
2172
                                                    cfg->spicePassword);
E
Eric Blake 已提交
2173

2174
            if (ret < 0)
2175
                goto cleanup;
2176

E
Eric Blake 已提交
2177
            /* Steal the new dev's char * reference */
2178 2179 2180 2181 2182
            VIR_FREE(olddev->data.spice.auth.passwd);
            olddev->data.spice.auth.passwd = dev->data.spice.auth.passwd;
            dev->data.spice.auth.passwd = NULL;
            olddev->data.spice.auth.validTo = dev->data.spice.auth.validTo;
            olddev->data.spice.auth.expires = dev->data.spice.auth.expires;
2183
            olddev->data.spice.auth.connected = dev->data.spice.auth.connected;
2184
        } else {
2185
            VIR_DEBUG("Not updating since password didn't change");
2186 2187
            ret = 0;
        }
E
Eric Blake 已提交
2188
        break;
2189

2190
    default:
2191 2192 2193
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("unable to change config on '%s' graphics type"),
                       virDomainGraphicsTypeToString(dev->type));
2194 2195 2196
        break;
    }

2197 2198
cleanup:
    virObjectUnref(cfg);
2199 2200 2201 2202
    return ret;
}


2203
static int qemuComparePCIDevice(virDomainDefPtr def ATTRIBUTE_UNUSED,
2204
                                virDomainDeviceDefPtr device ATTRIBUTE_UNUSED,
2205
                                virDomainDeviceInfoPtr info1,
2206 2207
                                void *opaque)
{
2208
    virDomainDeviceInfoPtr info2 = opaque;
2209

2210 2211
    if (info1->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI ||
        info2->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)
2212 2213
        return 0;

2214 2215 2216
    if (info1->addr.pci.domain == info2->addr.pci.domain &&
        info1->addr.pci.bus == info2->addr.pci.bus &&
        info1->addr.pci.slot == info2->addr.pci.slot &&
2217
        info1->addr.pci.function != info2->addr.pci.function)
2218 2219 2220 2221 2222 2223 2224 2225 2226 2227 2228 2229
        return -1;
    return 0;
}

static bool qemuIsMultiFunctionDevice(virDomainDefPtr def,
                                      virDomainDeviceInfoPtr dev)
{
    if (virDomainDeviceInfoIterate(def, qemuComparePCIDevice, dev) < 0)
        return true;
    return false;
}

2230

2231 2232 2233 2234 2235 2236
static void
qemuDomainRemoveDiskDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainDiskDefPtr disk)
{
    virDomainDeviceDef dev;
2237
    virDomainEventPtr event;
2238 2239 2240 2241 2242 2243 2244
    size_t i;

    VIR_DEBUG("Removing disk %s from domain %p %s",
              disk->info.alias, vm, vm->def->name);

    virDomainAuditDisk(vm, disk->src, NULL, "detach", true);

2245 2246 2247 2248
    event = virDomainEventDeviceRemovedNewFromObj(vm, disk->info.alias);
    if (event)
        qemuDomainEventQueue(driver, event);

2249 2250 2251 2252 2253 2254 2255 2256 2257 2258 2259 2260 2261 2262 2263 2264 2265 2266 2267 2268 2269 2270 2271 2272 2273 2274 2275
    for (i = 0; i < vm->def->ndisks; i++) {
        if (vm->def->disks[i] == disk) {
            virDomainDiskRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &disk->info, disk->src);

    if (virSecurityManagerRestoreImageLabel(driver->securityManager,
                                            vm->def, disk) < 0)
        VIR_WARN("Unable to restore security label on %s", disk->src);

    if (qemuTeardownDiskCgroup(vm, disk) < 0)
        VIR_WARN("Failed to tear down cgroup for disk path %s", disk->src);

    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s", disk->src);

    dev.type = VIR_DOMAIN_DEVICE_DISK;
    dev.data.disk = disk;
    ignore_value(qemuRemoveSharedDevice(driver, &dev, vm->def->name));

    virDomainDiskDefFree(disk);
}


2276
static void
2277
qemuDomainRemoveControllerDevice(virQEMUDriverPtr driver,
2278 2279 2280
                                 virDomainObjPtr vm,
                                 virDomainControllerDefPtr controller)
{
2281
    virDomainEventPtr event;
2282 2283 2284 2285 2286
    size_t i;

    VIR_DEBUG("Removing controller %s from domain %p %s",
              controller->info.alias, vm, vm->def->name);

2287 2288 2289 2290
    event = virDomainEventDeviceRemovedNewFromObj(vm, controller->info.alias);
    if (event)
        qemuDomainEventQueue(driver, event);

2291 2292 2293 2294 2295 2296 2297 2298 2299 2300 2301 2302
    for (i = 0; i < vm->def->ncontrollers; i++) {
        if (vm->def->controllers[i] == controller) {
            virDomainControllerRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
    virDomainControllerDefFree(controller);
}


2303 2304 2305 2306 2307 2308 2309
static void
qemuDomainRemoveNetDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr net)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    virNetDevVPortProfilePtr vport;
2310
    virDomainEventPtr event;
2311 2312 2313 2314 2315 2316 2317
    size_t i;

    VIR_DEBUG("Removing network interface %s from domain %p %s",
              net->info.alias, vm, vm->def->name);

    virDomainAuditNet(vm, net, NULL, "detach", true);

2318 2319 2320 2321
    event = virDomainEventDeviceRemovedNewFromObj(vm, net->info.alias);
    if (event)
        qemuDomainEventQueue(driver, event);

2322 2323 2324 2325 2326 2327 2328 2329 2330 2331 2332 2333 2334 2335 2336 2337 2338 2339 2340 2341 2342 2343 2344 2345 2346 2347 2348 2349 2350 2351 2352 2353 2354 2355 2356 2357 2358 2359 2360 2361 2362 2363
    for (i = 0; i < vm->def->nnets; i++) {
        if (vm->def->nets[i] == net) {
            virDomainNetRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
    virDomainConfNWFilterTeardown(net);

    if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_DIRECT) {
        ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                         net->ifname, &net->mac,
                         virDomainNetGetActualDirectDev(net),
                         virDomainNetGetActualDirectMode(net),
                         virDomainNetGetActualVirtPortProfile(net),
                         cfg->stateDir));
        VIR_FREE(net->ifname);
    }

    if (cfg->macFilter && (net->ifname != NULL)) {
        if ((errno = networkDisallowMacOnPort(driver,
                                              net->ifname,
                                              &net->mac))) {
            virReportSystemError(errno,
             _("failed to remove ebtables rule on '%s'"),
                                 net->ifname);
        }
    }

    vport = virDomainNetGetActualVirtPortProfile(net);
    if (vport && vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH)
        ignore_value(virNetDevOpenvswitchRemovePort(
                        virDomainNetGetActualBridgeName(net),
                        net->ifname));

    networkReleaseActualDevice(net);
    virDomainNetDefFree(net);
    virObjectUnref(cfg);
}


2364 2365 2366 2367 2368 2369 2370 2371 2372 2373 2374 2375 2376 2377 2378 2379 2380 2381 2382 2383 2384 2385 2386 2387 2388 2389 2390 2391 2392 2393 2394 2395 2396 2397 2398 2399 2400 2401 2402 2403 2404 2405 2406 2407 2408 2409 2410 2411 2412 2413 2414 2415 2416 2417 2418 2419 2420 2421 2422 2423 2424 2425 2426 2427 2428 2429 2430 2431 2432 2433 2434 2435 2436 2437
static void
qemuDomainRemovePCIHostDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    virDomainHostdevSubsysPtr subsys = &hostdev->source.subsys;
    virPCIDevicePtr pci;
    virPCIDevicePtr activePci;

    /*
     * For SRIOV net host devices, unset mac and port profile before
     * reset and reattach device
     */
    if (hostdev->parent.data.net)
        qemuDomainHostdevNetConfigRestore(hostdev, cfg->stateDir);

    virObjectLock(driver->activePciHostdevs);
    virObjectLock(driver->inactivePciHostdevs);
    pci = virPCIDeviceNew(subsys->u.pci.addr.domain, subsys->u.pci.addr.bus,
                          subsys->u.pci.addr.slot, subsys->u.pci.addr.function);
    if (pci) {
        activePci = virPCIDeviceListSteal(driver->activePciHostdevs, pci);
        if (activePci &&
            virPCIDeviceReset(activePci, driver->activePciHostdevs,
                              driver->inactivePciHostdevs) == 0) {
            qemuReattachPciDevice(activePci, driver);
        } else {
            /* reset of the device failed, treat it as if it was returned */
            virPCIDeviceFree(activePci);
        }
        virPCIDeviceFree(pci);
    }
    virObjectUnlock(driver->activePciHostdevs);
    virObjectUnlock(driver->inactivePciHostdevs);

    qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
    virObjectUnref(cfg);
}

static void
qemuDomainRemoveUSBHostDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm ATTRIBUTE_UNUSED,
                              virDomainHostdevDefPtr hostdev)
{
    virDomainHostdevSubsysPtr subsys = &hostdev->source.subsys;
    virUSBDevicePtr usb;

    usb = virUSBDeviceNew(subsys->u.usb.bus, subsys->u.usb.device, NULL);
    if (usb) {
        virObjectLock(driver->activeUsbHostdevs);
        virUSBDeviceListDel(driver->activeUsbHostdevs, usb);
        virObjectUnlock(driver->activeUsbHostdevs);
        virUSBDeviceFree(usb);
    } else {
        VIR_WARN("Unable to find device %03d.%03d in list of used USB devices",
                 subsys->u.usb.bus, subsys->u.usb.device);
    }
}

static void
qemuDomainRemoveSCSIHostDevice(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
    qemuDomainReAttachHostScsiDevices(driver, vm->def->name, &hostdev, 1);
}

static void
qemuDomainRemoveHostDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainHostdevDefPtr hostdev)
{
    virDomainNetDefPtr net = NULL;
2438
    virDomainEventPtr event;
2439 2440 2441 2442 2443
    size_t i;

    VIR_DEBUG("Removing host device %s from domain %p %s",
              hostdev->info->alias, vm, vm->def->name);

2444 2445 2446 2447
    event = virDomainEventDeviceRemovedNewFromObj(vm, hostdev->info->alias);
    if (event)
        qemuDomainEventQueue(driver, event);

2448 2449 2450 2451 2452 2453 2454 2455 2456 2457 2458 2459 2460 2461 2462 2463 2464 2465 2466 2467 2468 2469 2470 2471 2472 2473 2474 2475 2476 2477 2478 2479 2480 2481 2482 2483 2484 2485 2486 2487 2488 2489 2490 2491 2492 2493 2494 2495 2496 2497 2498
    if (hostdev->parent.type == VIR_DOMAIN_DEVICE_NET) {
        net = hostdev->parent.data.net;

        for (i = 0; i < vm->def->nnets; i++) {
            if (vm->def->nets[i] == net) {
                virDomainNetRemove(vm->def, i);
                break;
            }
        }
    }

    for (i = 0; i < vm->def->nhostdevs; i++) {
        if (vm->def->hostdevs[i] == hostdev) {
            virDomainHostdevRemove(vm->def, i);
            break;
        }
    }

    virDomainAuditHostdev(vm, hostdev, "detach", true);

    switch ((enum virDomainHostdevSubsysType) hostdev->source.subsys.type) {
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
        qemuDomainRemovePCIHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
        qemuDomainRemoveUSBHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
        qemuDomainRemoveSCSIHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_LAST:
        break;
    }

    if (qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Failed to remove host device cgroup ACL");

    if (virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                              vm->def, hostdev, NULL) < 0) {
        VIR_WARN("Failed to restore host device labelling");
    }

    virDomainHostdevDefFree(hostdev);

    if (net) {
        networkReleaseActualDevice(net);
        virDomainNetDefFree(net);
    }
}


2499
static void
2500
qemuDomainRemoveChrDevice(virQEMUDriverPtr driver,
2501 2502 2503
                          virDomainObjPtr vm,
                          virDomainChrDefPtr chr)
{
2504 2505
    virDomainEventPtr event;

2506 2507 2508
    VIR_DEBUG("Removing character device %s from domain %p %s",
              chr->info.alias, vm, vm->def->name);

2509 2510 2511 2512
    event = virDomainEventDeviceRemovedNewFromObj(vm, chr->info.alias);
    if (event)
        qemuDomainEventQueue(driver, event);

2513 2514 2515 2516 2517
    qemuDomainChrRemove(vm->def, chr);
    virDomainChrDefFree(chr);
}


2518 2519 2520 2521 2522 2523 2524 2525 2526 2527 2528 2529 2530 2531 2532 2533 2534 2535 2536 2537 2538 2539 2540 2541 2542 2543 2544 2545 2546 2547 2548 2549 2550 2551 2552 2553 2554 2555 2556 2557 2558 2559 2560 2561 2562 2563 2564 2565 2566 2567 2568 2569 2570 2571 2572 2573 2574 2575 2576 2577 2578 2579 2580 2581 2582 2583 2584 2585 2586 2587 2588 2589 2590 2591 2592 2593 2594 2595 2596 2597 2598 2599 2600 2601 2602 2603 2604 2605 2606 2607 2608 2609 2610 2611 2612 2613 2614 2615 2616 2617 2618 2619 2620 2621 2622 2623 2624 2625 2626 2627 2628 2629 2630 2631 2632 2633
void
qemuDomainRemoveDevice(virQEMUDriverPtr driver,
                       virDomainObjPtr vm,
                       virDomainDeviceDefPtr dev)
{
    switch ((virDomainDeviceType) dev->type) {
    case VIR_DOMAIN_DEVICE_DISK:
        qemuDomainRemoveDiskDevice(driver, vm, dev->data.disk);
        break;
    case VIR_DOMAIN_DEVICE_CONTROLLER:
        qemuDomainRemoveControllerDevice(driver, vm, dev->data.controller);
        break;
    case VIR_DOMAIN_DEVICE_NET:
        qemuDomainRemoveNetDevice(driver, vm, dev->data.net);
        break;
    case VIR_DOMAIN_DEVICE_HOSTDEV:
        qemuDomainRemoveHostDevice(driver, vm, dev->data.hostdev);
        break;

    case VIR_DOMAIN_DEVICE_CHR:
        qemuDomainRemoveChrDevice(driver, vm, dev->data.chr);
        break;

    case VIR_DOMAIN_DEVICE_NONE:
    case VIR_DOMAIN_DEVICE_LEASE:
    case VIR_DOMAIN_DEVICE_FS:
    case VIR_DOMAIN_DEVICE_INPUT:
    case VIR_DOMAIN_DEVICE_SOUND:
    case VIR_DOMAIN_DEVICE_VIDEO:
    case VIR_DOMAIN_DEVICE_WATCHDOG:
    case VIR_DOMAIN_DEVICE_GRAPHICS:
    case VIR_DOMAIN_DEVICE_HUB:
    case VIR_DOMAIN_DEVICE_REDIRDEV:
    case VIR_DOMAIN_DEVICE_SMARTCARD:
    case VIR_DOMAIN_DEVICE_MEMBALLOON:
    case VIR_DOMAIN_DEVICE_NVRAM:
    case VIR_DOMAIN_DEVICE_RNG:
    case VIR_DOMAIN_DEVICE_LAST:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("don't know how to remove a %s device"),
                       virDomainDeviceTypeToString(dev->type));
        break;
    }
}


/* Wait up to 5 seconds for device removal to finish. */
#define QEMU_REMOVAL_WAIT_TIME (1000ull * 5)

static void
qemuDomainMarkDeviceForRemoval(virDomainObjPtr vm,
                               virDomainDeviceInfoPtr info)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
        priv->unpluggingDevice = info->alias;
    else
        priv->unpluggingDevice = NULL;
}

static void
qemuDomainResetDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    priv->unpluggingDevice = NULL;
}

/* Returns:
 *  -1 on error
 *   0 when DEVICE_DELETED event is unsupported
 *   1 when device removal finished
 *   2 device removal did not finish in QEMU_REMOVAL_WAIT_TIME
 */
static int
qemuDomainWaitForDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    unsigned long long until;

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
        return 0;

    if (virTimeMillisNow(&until) < 0)
        return -1;
    until += QEMU_REMOVAL_WAIT_TIME;

    while (priv->unpluggingDevice) {
        if (virCondWaitUntil(&priv->unplugFinished,
                             &vm->parent.lock, until) < 0) {
            if (errno == ETIMEDOUT) {
                return 2;
            } else {
                virReportSystemError(errno, "%s",
                                     _("Unable to wait on unplug condition"));
                return -1;
            }
        }
    }

    return 1;
}

void
qemuDomainSignalDeviceRemoval(virDomainObjPtr vm,
                              const char *devAlias)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

    if (STREQ_NULLABLE(priv->unpluggingDevice, devAlias)) {
        qemuDomainResetDeviceRemoval(vm);
        virCondSignal(&priv->unplugFinished);
    }
}


2634 2635
int qemuDomainDetachVirtioDiskDevice(virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
2636
                                     virDomainDiskDefPtr detach)
2637
{
2638
    int ret = -1;
2639 2640 2641
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drivestr = NULL;

2642
    if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
2643 2644
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
2645
                       detach->dst);
2646 2647 2648
        goto cleanup;
    }

2649 2650 2651 2652 2653 2654 2655 2656 2657 2658 2659 2660 2661 2662 2663
    if (STREQLEN(vm->def->os.machine, "s390-ccw", 8) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid PCI address"));
            goto cleanup;
        }
2664 2665 2666 2667 2668
    }

    /* build the actual drive id string as the disk->info.alias doesn't
     * contain the QEMU_DRIVE_HOST_PREFIX that is passed to qemu */
    if (virAsprintf(&drivestr, "%s%s",
2669
                    QEMU_DRIVE_HOST_PREFIX, detach->info.alias) < 0)
2670 2671
        goto cleanup;

2672 2673
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

2674
    qemuDomainObjEnterMonitor(driver, vm);
2675
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
2676
        if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
2677
            qemuDomainObjExitMonitor(driver, vm);
2678
            virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
2679 2680 2681 2682 2683
            goto cleanup;
        }
    } else {
        if (qemuMonitorRemovePCIDevice(priv->mon,
                                       &detach->info.addr.pci) < 0) {
2684
            qemuDomainObjExitMonitor(driver, vm);
2685
            virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
2686 2687 2688 2689 2690 2691 2692
            goto cleanup;
        }
    }

    /* disconnect guest from host device */
    qemuMonitorDriveDel(priv->mon, drivestr);

2693
    qemuDomainObjExitMonitor(driver, vm);
2694

2695 2696
    if (!qemuDomainWaitForDeviceRemoval(vm))
        qemuDomainRemoveDiskDevice(driver, vm, detach);
2697 2698 2699
    ret = 0;

cleanup:
2700
    qemuDomainResetDeviceRemoval(vm);
2701 2702 2703 2704
    VIR_FREE(drivestr);
    return ret;
}

2705
int qemuDomainDetachDiskDevice(virQEMUDriverPtr driver,
2706
                               virDomainObjPtr vm,
2707
                               virDomainDiskDefPtr detach)
2708
{
2709
    int ret = -1;
2710 2711 2712
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drivestr = NULL;

2713
    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
2714 2715
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("Underlying qemu does not support %s disk removal"),
2716
                       virDomainDiskBusTypeToString(detach->bus));
2717 2718 2719
        goto cleanup;
    }

E
Eric Blake 已提交
2720 2721 2722 2723 2724 2725 2726
    if (detach->mirror) {
        virReportError(VIR_ERR_BLOCK_COPY_ACTIVE,
                       _("disk '%s' is in an active block copy job"),
                       detach->dst);
        goto cleanup;
    }

2727 2728 2729
    /* build the actual drive id string as the disk->info.alias doesn't
     * contain the QEMU_DRIVE_HOST_PREFIX that is passed to qemu */
    if (virAsprintf(&drivestr, "%s%s",
2730
                    QEMU_DRIVE_HOST_PREFIX, detach->info.alias) < 0)
2731 2732
        goto cleanup;

2733 2734
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

2735
    qemuDomainObjEnterMonitor(driver, vm);
2736
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
2737
        qemuDomainObjExitMonitor(driver, vm);
2738
        virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
2739 2740 2741 2742 2743 2744
        goto cleanup;
    }

    /* disconnect guest from host device */
    qemuMonitorDriveDel(priv->mon, drivestr);

2745
    qemuDomainObjExitMonitor(driver, vm);
2746

2747 2748
    if (!qemuDomainWaitForDeviceRemoval(vm))
        qemuDomainRemoveDiskDevice(driver, vm, detach);
2749 2750 2751
    ret = 0;

cleanup:
2752
    qemuDomainResetDeviceRemoval(vm);
2753 2754 2755 2756
    VIR_FREE(drivestr);
    return ret;
}

2757 2758 2759
static bool qemuDomainDiskControllerIsBusy(virDomainObjPtr vm,
                                           virDomainControllerDefPtr detach)
{
2760
    size_t i;
2761 2762 2763 2764 2765 2766 2767 2768 2769 2770 2771 2772 2773 2774 2775 2776 2777 2778 2779 2780 2781 2782 2783 2784 2785 2786 2787 2788 2789 2790 2791 2792 2793 2794 2795 2796 2797 2798 2799 2800 2801 2802 2803 2804 2805 2806
    virDomainDiskDefPtr disk;

    for (i = 0; i < vm->def->ndisks; i++) {
        disk = vm->def->disks[i];
        if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE)
            /* the disk does not use disk controller */
            continue;

        /* check whether the disk uses this type controller */
        if (disk->bus == VIR_DOMAIN_DISK_BUS_IDE &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_IDE)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_FDC &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_FDC)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (disk->info.addr.drive.controller == detach->idx)
            return true;
    }

    return false;
}

static bool qemuDomainControllerIsBusy(virDomainObjPtr vm,
                                       virDomainControllerDefPtr detach)
{
    switch (detach->type) {
    case VIR_DOMAIN_CONTROLLER_TYPE_IDE:
    case VIR_DOMAIN_CONTROLLER_TYPE_FDC:
    case VIR_DOMAIN_CONTROLLER_TYPE_SCSI:
        return qemuDomainDiskControllerIsBusy(vm, detach);

    case VIR_DOMAIN_CONTROLLER_TYPE_SATA:
    case VIR_DOMAIN_CONTROLLER_TYPE_VIRTIO_SERIAL:
    case VIR_DOMAIN_CONTROLLER_TYPE_CCID:
    default:
        /* libvirt does not support sata controller, and does not support to
         * detach virtio and smart card controller.
         */
        return true;
    }
}

2807
int qemuDomainDetachPciControllerDevice(virQEMUDriverPtr driver,
2808
                                        virDomainObjPtr vm,
2809
                                        virDomainDeviceDefPtr dev)
2810
{
2811
    int idx, ret = -1;
2812 2813 2814
    virDomainControllerDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;

2815 2816 2817
    if ((idx = virDomainControllerFind(vm->def,
                                       dev->data.controller->type,
                                       dev->data.controller->idx)) < 0) {
2818
        virReportError(VIR_ERR_OPERATION_FAILED,
2819
                       _("controller %s:%d not found"),
2820 2821
                       virDomainControllerTypeToString(dev->data.controller->type),
                       dev->data.controller->idx);
2822 2823 2824
        goto cleanup;
    }

2825 2826
    detach = vm->def->controllers[idx];

2827 2828
    if (!virDomainDeviceAddressIsValid(&detach->info,
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
2829 2830
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("device cannot be detached without a PCI address"));
2831 2832 2833
        goto cleanup;
    }

2834
    if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
2835 2836 2837
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
                       dev->data.disk->dst);
2838 2839 2840
        goto cleanup;
    }

2841
    if (qemuDomainControllerIsBusy(vm, detach)) {
2842 2843
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("device cannot be detached: device is busy"));
2844 2845 2846
        goto cleanup;
    }

2847
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
2848 2849 2850 2851
        if (qemuAssignDeviceControllerAlias(detach) < 0)
            goto cleanup;
    }

2852 2853
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

2854
    qemuDomainObjEnterMonitor(driver, vm);
2855
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
2856
        if (qemuMonitorDelDevice(priv->mon, detach->info.alias)) {
2857
            qemuDomainObjExitMonitor(driver, vm);
2858 2859 2860 2861 2862
            goto cleanup;
        }
    } else {
        if (qemuMonitorRemovePCIDevice(priv->mon,
                                       &detach->info.addr.pci) < 0) {
2863
            qemuDomainObjExitMonitor(driver, vm);
2864 2865 2866
            goto cleanup;
        }
    }
2867
    qemuDomainObjExitMonitor(driver, vm);
2868

2869 2870
    if (!qemuDomainWaitForDeviceRemoval(vm))
        qemuDomainRemoveControllerDevice(driver, vm, detach);
2871 2872 2873 2874

    ret = 0;

cleanup:
2875
    qemuDomainResetDeviceRemoval(vm);
2876 2877 2878
    return ret;
}

2879
static int
2880
qemuDomainDetachHostPciDevice(virQEMUDriverPtr driver,
2881
                              virDomainObjPtr vm,
2882
                              virDomainHostdevDefPtr detach)
2883 2884
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
2885
    virDomainHostdevSubsysPtr subsys = &detach->source.subsys;
2886
    int ret;
2887

2888
    if (qemuIsMultiFunctionDevice(vm->def, detach->info)) {
2889 2890
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %.4x:%.2x:%.2x.%.1x"),
2891 2892
                       subsys->u.pci.addr.domain, subsys->u.pci.addr.bus,
                       subsys->u.pci.addr.slot, subsys->u.pci.addr.function);
2893
        return -1;
2894 2895
    }

2896
    if (!virDomainDeviceAddressIsValid(detach->info,
2897
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
2898 2899
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a PCI address"));
2900
        return -1;
2901 2902
    }

2903 2904
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

2905
    qemuDomainObjEnterMonitor(driver, vm);
2906
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
2907
        ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
2908
    } else {
2909
        ret = qemuMonitorRemovePCIDevice(priv->mon, &detach->info->addr.pci);
2910
    }
2911
    qemuDomainObjExitMonitor(driver, vm);
2912 2913 2914 2915

    return ret;
}

2916
static int
2917
qemuDomainDetachHostUsbDevice(virQEMUDriverPtr driver,
2918
                              virDomainObjPtr vm,
2919
                              virDomainHostdevDefPtr detach)
2920 2921
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
2922
    int ret;
2923

2924
    if (!detach->info->alias) {
2925 2926
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
2927 2928 2929
        return -1;
    }

2930
    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
2931 2932
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached with this QEMU version"));
2933 2934 2935
        return -1;
    }

2936 2937
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

2938
    qemuDomainObjEnterMonitor(driver, vm);
2939
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
2940
    qemuDomainObjExitMonitor(driver, vm);
2941 2942 2943 2944

    return ret;
}

2945 2946 2947 2948 2949 2950 2951 2952 2953 2954 2955 2956 2957 2958 2959 2960 2961 2962 2963 2964 2965 2966
static int
qemuDomainDetachHostScsiDevice(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr detach)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drvstr = NULL;
    char *devstr = NULL;
    int ret = -1;

    if (!detach->info->alias) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
        return -1;
    }

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached with this QEMU version"));
        return -1;
    }

2967 2968
    if (!(drvstr = qemuBuildSCSIHostdevDrvStr(detach, priv->qemuCaps,
                                              &buildCommandLineCallbacks)))
2969 2970 2971 2972
        goto cleanup;
    if (!(devstr = qemuBuildSCSIHostdevDevStr(vm->def, detach, priv->qemuCaps)))
        goto cleanup;

2973 2974
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

2975 2976 2977 2978 2979 2980 2981 2982 2983 2984 2985 2986 2987 2988 2989 2990 2991 2992 2993 2994 2995 2996 2997 2998 2999
    qemuDomainObjEnterMonitor(driver, vm);
    if ((ret = qemuMonitorDelDevice(priv->mon, detach->info->alias)) == 0) {
        if ((ret = qemuMonitorDriveDel(priv->mon, drvstr)) < 0) {
            virErrorPtr orig_err = virSaveLastError();
            if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
                VIR_WARN("Unable to add device %s (%s) after failed "
                         "qemuMonitorDriveDel",
                         drvstr, devstr);
            if (orig_err) {
                virSetError(orig_err);
                virFreeError(orig_err);
            }
        }
    }
    qemuDomainObjExitMonitor(driver, vm);

cleanup:
    VIR_FREE(drvstr);
    VIR_FREE(devstr);
    return ret;
}

static int
qemuDomainDetachThisHostDevice(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
3000
                               virDomainHostdevDefPtr detach)
3001
{
3002
    int ret = -1;
3003

3004
    switch (detach->source.subsys.type) {
3005
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
3006 3007
        ret = qemuDomainDetachHostPciDevice(driver, vm, detach);
        break;
3008
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
3009
        ret = qemuDomainDetachHostUsbDevice(driver, vm, detach);
3010
        break;
3011 3012 3013
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
        ret = qemuDomainDetachHostScsiDevice(driver, vm, detach);
        break;
3014
    default:
3015 3016 3017
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(detach->source.subsys.type));
3018 3019 3020
        return -1;
    }

3021 3022
    if (ret < 0)
        virDomainAuditHostdev(vm, detach, "detach", false);
3023
    else if (!qemuDomainWaitForDeviceRemoval(vm))
3024
        qemuDomainRemoveHostDevice(driver, vm, detach);
3025

3026 3027
    qemuDomainResetDeviceRemoval(vm);

3028 3029
    return ret;
}
3030

3031
/* search for a hostdev matching dev and detach it */
3032
int qemuDomainDetachHostDevice(virQEMUDriverPtr driver,
3033 3034 3035 3036 3037 3038 3039 3040 3041
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainHostdevDefPtr hostdev = dev->data.hostdev;
    virDomainHostdevSubsysPtr subsys = &hostdev->source.subsys;
    virDomainHostdevDefPtr detach = NULL;
    int idx;

    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
3042 3043 3044
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
3045 3046 3047 3048 3049 3050
        return -1;
    }

    idx = virDomainHostdevFind(vm->def, hostdev, &detach);

    if (idx < 0) {
3051
        switch (subsys->type) {
3052
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
3053 3054
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("host pci device %.4x:%.2x:%.2x.%.1x not found"),
3055 3056
                           subsys->u.pci.addr.domain, subsys->u.pci.addr.bus,
                           subsys->u.pci.addr.slot, subsys->u.pci.addr.function);
3057 3058 3059
            break;
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
            if (subsys->u.usb.bus && subsys->u.usb.device) {
3060 3061 3062
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device %03d.%03d not found"),
                               subsys->u.usb.bus, subsys->u.usb.device);
3063
            } else {
3064 3065 3066
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device vendor=0x%.4x product=0x%.4x not found"),
                               subsys->u.usb.vendor, subsys->u.usb.product);
3067 3068
            }
            break;
3069 3070 3071 3072 3073 3074
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("host scsi device %s:%d:%d.%d not found"),
                           subsys->u.scsi.adapter, subsys->u.scsi.bus,
                           subsys->u.scsi.target, subsys->u.scsi.unit);
            break;
3075
        default:
3076 3077
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("unexpected hostdev type %d"), subsys->type);
3078 3079 3080 3081 3082
            break;
        }
        return -1;
    }

3083 3084 3085 3086 3087 3088
    /* If this is a network hostdev, we need to use the higher-level detach
     * function so that mac address / virtualport are reset
     */
    if (detach->parent.type == VIR_DOMAIN_DEVICE_NET)
        return qemuDomainDetachNetDevice(driver, vm, &detach->parent);
    else
3089
        return qemuDomainDetachThisHostDevice(driver, vm, detach);
3090 3091
}

3092
int
3093
qemuDomainDetachNetDevice(virQEMUDriverPtr driver,
3094 3095 3096
                          virDomainObjPtr vm,
                          virDomainDeviceDefPtr dev)
{
3097
    int detachidx, ret = -1;
3098 3099 3100 3101
    virDomainNetDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int vlan;
    char *hostnet_name = NULL;
3102
    char mac[VIR_MAC_STRING_BUFLEN];
3103

3104 3105 3106 3107 3108 3109
    detachidx = virDomainNetFindIdx(vm->def, dev->data.net);
    if (detachidx == -2) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("multiple devices matching mac address %s found"),
                       virMacAddrFormat(&dev->data.net->mac, mac));
        goto cleanup;
3110
    }
3111
    else if (detachidx < 0) {
3112
        virReportError(VIR_ERR_OPERATION_FAILED,
3113 3114
                       _("network device %s not found"),
                       virMacAddrFormat(&dev->data.net->mac, mac));
3115 3116
        goto cleanup;
    }
3117
    detach = vm->def->nets[detachidx];
3118

3119
    if (virDomainNetGetActualType(detach) == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
3120
        /* coverity[negative_returns] */
3121
        ret = qemuDomainDetachThisHostDevice(driver, vm,
3122
                                             virDomainNetGetActualHostdev(detach));
3123 3124
        goto cleanup;
    }
3125 3126 3127 3128 3129 3130 3131 3132 3133 3134 3135 3136 3137 3138 3139
    if (STREQLEN(vm->def->os.machine, "s390-ccw", 8) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a PCI address"));
            goto cleanup;
        }
3140

3141 3142 3143 3144 3145 3146
        if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            _("cannot hot unplug multifunction PCI device :%s"),
                            dev->data.disk->dst);
            goto cleanup;
        }
3147 3148 3149
    }

    if ((vlan = qemuDomainNetVLAN(detach)) < 0) {
3150 3151
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("unable to determine original VLAN"));
3152 3153 3154
        goto cleanup;
    }

3155
    if (virAsprintf(&hostnet_name, "host%s", detach->info.alias) < 0)
3156 3157
        goto cleanup;

3158 3159
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3160
    qemuDomainObjEnterMonitor(driver, vm);
3161
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
3162
        if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
3163
            qemuDomainObjExitMonitor(driver, vm);
3164 3165 3166 3167 3168 3169
            virDomainAuditNet(vm, detach, NULL, "detach", false);
            goto cleanup;
        }
    } else {
        if (qemuMonitorRemovePCIDevice(priv->mon,
                                       &detach->info.addr.pci) < 0) {
3170
            qemuDomainObjExitMonitor(driver, vm);
3171 3172 3173 3174 3175
            virDomainAuditNet(vm, detach, NULL, "detach", false);
            goto cleanup;
        }
    }

3176 3177
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
3178
        if (qemuMonitorRemoveNetdev(priv->mon, hostnet_name) < 0) {
3179
            qemuDomainObjExitMonitor(driver, vm);
3180 3181 3182 3183 3184
            virDomainAuditNet(vm, detach, NULL, "detach", false);
            goto cleanup;
        }
    } else {
        if (qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0) {
3185
            qemuDomainObjExitMonitor(driver, vm);
3186 3187 3188 3189
            virDomainAuditNet(vm, detach, NULL, "detach", false);
            goto cleanup;
        }
    }
3190
    qemuDomainObjExitMonitor(driver, vm);
3191

3192 3193 3194
    if (!qemuDomainWaitForDeviceRemoval(vm))
        qemuDomainRemoveNetDevice(driver, vm, detach);

3195
    ret = 0;
3196

3197
cleanup:
3198
    qemuDomainResetDeviceRemoval(vm);
3199 3200 3201 3202
    VIR_FREE(hostnet_name);
    return ret;
}

3203
int
3204
qemuDomainChangeGraphicsPasswords(virQEMUDriverPtr driver,
3205 3206 3207 3208 3209 3210 3211 3212
                                  virDomainObjPtr vm,
                                  int type,
                                  virDomainGraphicsAuthDefPtr auth,
                                  const char *defaultPasswd)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    time_t now = time(NULL);
    char expire_time [64];
3213
    const char *connected = NULL;
3214 3215
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3216

3217
    if (!auth->passwd && !defaultPasswd) {
3218 3219 3220
        ret = 0;
        goto cleanup;
    }
3221

3222 3223 3224
    if (auth->connected)
        connected = virDomainGraphicsAuthConnectedTypeToString(auth->connected);

3225
    qemuDomainObjEnterMonitor(driver, vm);
3226 3227 3228
    ret = qemuMonitorSetPassword(priv->mon,
                                 type,
                                 auth->passwd ? auth->passwd : defaultPasswd,
3229
                                 connected);
3230 3231 3232

    if (ret == -2) {
        if (type != VIR_DOMAIN_GRAPHICS_TYPE_VNC) {
3233 3234
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Graphics password only supported for VNC"));
3235 3236 3237 3238 3239 3240
            ret = -1;
        } else {
            ret = qemuMonitorSetVNCPassword(priv->mon,
                                            auth->passwd ? auth->passwd : defaultPasswd);
        }
    }
3241
    if (ret != 0)
3242
        goto end_job;
3243

3244 3245 3246
    if (auth->expires) {
        time_t lifetime = auth->validTo - now;
        if (lifetime <= 0)
3247
            snprintf(expire_time, sizeof(expire_time), "now");
3248
        else
3249
            snprintf(expire_time, sizeof(expire_time), "%lu", (long unsigned)auth->validTo);
3250
    } else {
3251
        snprintf(expire_time, sizeof(expire_time), "never");
3252 3253 3254 3255 3256 3257 3258
    }

    ret = qemuMonitorExpirePassword(priv->mon, type, expire_time);

    if (ret == -2) {
        /* XXX we could fake this with a timer */
        if (auth->expires) {
3259 3260
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Expiry of passwords is not supported"));
3261
            ret = -1;
3262 3263
        } else {
            ret = 0;
3264 3265 3266
        }
    }

3267
end_job:
3268
    qemuDomainObjExitMonitor(driver, vm);
3269 3270
cleanup:
    virObjectUnref(cfg);
3271 3272
    return ret;
}
3273

3274
int qemuDomainAttachLease(virQEMUDriverPtr driver,
3275 3276 3277
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
3278 3279 3280
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);

3281
    if (virDomainLeaseInsertPreAlloc(vm->def) < 0)
3282
        goto cleanup;
3283

3284
    if (virDomainLockLeaseAttach(driver->lockManager, cfg->uri,
3285
                                 vm, lease) < 0) {
3286
        virDomainLeaseInsertPreAlloced(vm->def, NULL);
3287
        goto cleanup;
3288 3289 3290
    }

    virDomainLeaseInsertPreAlloced(vm->def, lease);
3291 3292 3293 3294 3295
    ret = 0;

cleanup:
    virObjectUnref(cfg);
    return ret;
3296 3297
}

3298
int qemuDomainDetachLease(virQEMUDriverPtr driver,
3299 3300 3301
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
3302
    virDomainLeaseDefPtr det_lease;
3303
    int idx;
3304

3305
    if ((idx = virDomainLeaseIndex(vm->def, lease)) < 0) {
3306 3307 3308
        virReportError(VIR_ERR_INVALID_ARG,
                       _("Lease %s in lockspace %s does not exist"),
                       lease->key, NULLSTR(lease->lockspace));
3309 3310 3311 3312 3313 3314
        return -1;
    }

    if (virDomainLockLeaseDetach(driver->lockManager, vm, lease) < 0)
        return -1;

3315
    det_lease = virDomainLeaseRemoveAt(vm->def, idx);
3316
    virDomainLeaseDefFree(det_lease);
3317 3318
    return 0;
}
3319 3320 3321 3322 3323 3324 3325 3326 3327 3328 3329 3330 3331 3332 3333 3334 3335 3336 3337 3338 3339

int qemuDomainDetachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainDefPtr vmdef = vm->def;
    virDomainChrDefPtr tmpChr;
    char *charAlias = NULL;
    char *devstr = NULL;

    if (!(tmpChr = virDomainChrFind(vmdef, chr))) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return ret;
    }

    if (qemuBuildChrDeviceStr(&devstr, vm->def, chr, priv->qemuCaps) < 0)
        return ret;

3340 3341
    if (virAsprintf(&charAlias, "char%s", tmpChr->info.alias) < 0)
        goto cleanup;
3342

3343 3344
    qemuDomainMarkDeviceForRemoval(vm, &tmpChr->info);

3345 3346 3347 3348 3349 3350 3351 3352 3353 3354 3355 3356
    qemuDomainObjEnterMonitor(driver, vm);
    if (devstr && qemuMonitorDelDevice(priv->mon, tmpChr->info.alias) < 0) {
        qemuDomainObjExitMonitor(driver, vm);
        goto cleanup;
    }

    if (qemuMonitorDetachCharDev(priv->mon, charAlias) < 0) {
        qemuDomainObjExitMonitor(driver, vm);
        goto cleanup;
    }
    qemuDomainObjExitMonitor(driver, vm);

3357 3358
    if (!qemuDomainWaitForDeviceRemoval(vm))
        qemuDomainRemoveChrDevice(driver, vm, tmpChr);
3359 3360 3361
    ret = 0;

cleanup:
3362
    qemuDomainResetDeviceRemoval(vm);
3363 3364 3365 3366
    VIR_FREE(devstr);
    VIR_FREE(charAlias);
    return ret;
}