qemu_hotplug.c 114.9 KB
Newer Older
1 2 3
/*
 * qemu_hotplug.h: QEMU device hotplug management
 *
4
 * Copyright (C) 2006-2013 Red Hat, Inc.
5 6 7 8 9 10 11 12 13 14 15 16 17
 * Copyright (C) 2006 Daniel P. Berrange
 *
 * This library is free software; you can redistribute it and/or
 * modify it under the terms of the GNU Lesser General Public
 * License as published by the Free Software Foundation; either
 * version 2.1 of the License, or (at your option) any later version.
 *
 * This library is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 * Lesser General Public License for more details.
 *
 * You should have received a copy of the GNU Lesser General Public
18
 * License along with this library.  If not, see
O
Osier Yang 已提交
19
 * <http://www.gnu.org/licenses/>.
20 21 22 23 24 25 26 27 28 29 30 31 32
 *
 * Author: Daniel P. Berrange <berrange@redhat.com>
 */


#include <config.h>

#include "qemu_hotplug.h"
#include "qemu_capabilities.h"
#include "qemu_domain.h"
#include "qemu_command.h"
#include "qemu_bridge_filter.h"
#include "qemu_hostdev.h"
33
#include "domain_audit.h"
34
#include "domain_nwfilter.h"
35
#include "virlog.h"
36
#include "datatypes.h"
37
#include "virerror.h"
38
#include "viralloc.h"
39
#include "virpci.h"
E
Eric Blake 已提交
40
#include "virfile.h"
41
#include "virprocess.h"
42
#include "qemu_cgroup.h"
43
#include "locking/domain_lock.h"
44
#include "network/bridge_driver.h"
45 46
#include "virnetdev.h"
#include "virnetdevbridge.h"
A
Ansis Atteka 已提交
47
#include "virnetdevtap.h"
48
#include "device_conf.h"
49
#include "virstoragefile.h"
50
#include "virstring.h"
51
#include "virtime.h"
52 53

#define VIR_FROM_THIS VIR_FROM_QEMU
54
#define CHANGE_MEDIA_RETRIES 10
55

56
int qemuDomainChangeEjectableMedia(virQEMUDriverPtr driver,
57 58
                                   virDomainObjPtr vm,
                                   virDomainDiskDefPtr disk,
59
                                   virDomainDiskDefPtr origdisk,
60 61
                                   bool force)
{
62
    int ret = -1;
63
    char *driveAlias = NULL;
64
    qemuDomainObjPrivatePtr priv = vm->privateData;
65
    int retries = CHANGE_MEDIA_RETRIES;
66
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
67 68

    if (!origdisk->info.alias) {
69 70
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("missing disk device alias name for %s"), origdisk->dst);
71
        goto cleanup;
72 73 74 75
    }

    if (origdisk->device != VIR_DOMAIN_DISK_DEVICE_FLOPPY &&
        origdisk->device != VIR_DOMAIN_DISK_DEVICE_CDROM) {
76 77
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("Removable media not supported for %s device"),
78
                       virDomainDiskDeviceTypeToString(disk->device));
79
        goto cleanup;
80 81
    }

82
    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
83
                                vm, disk) < 0)
84
        goto cleanup;
85

86
    if (virSecurityManagerSetImageLabel(driver->securityManager,
87
                                        vm->def, disk) < 0) {
88 89
        if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
            VIR_WARN("Unable to release lock on %s", disk->src);
90
        goto cleanup;
91
    }
92

93
    if (!(driveAlias = qemuDeviceDriveHostAlias(origdisk, priv->qemuCaps)))
94 95
        goto error;

96
    qemuDomainObjEnterMonitor(driver, vm);
97
    ret = qemuMonitorEjectMedia(priv->mon, driveAlias, force);
98
    qemuDomainObjExitMonitor(driver, vm);
99

100
    virObjectRef(vm);
101
    /* we don't want to report errors from media tray_open polling */
102
    while (retries) {
103 104 105
        if (origdisk->tray_status == VIR_DOMAIN_DISK_TRAY_OPEN)
            break;

106
        retries--;
107
        virObjectUnlock(vm);
108 109
        VIR_DEBUG("Waiting 500ms for tray to open. Retries left %d", retries);
        usleep(500 * 1000); /* sleep 500ms */
110
        virObjectLock(vm);
111
    }
112
    virObjectUnref(vm);
113

114 115 116
    if (retries <= 0) {
        if (ret == 0) {
            /* If ret == -1, EjectMedia already set an error message */
117
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
118
                           _("Unable to eject media"));
119
        }
120 121 122 123 124 125 126 127
        goto audit;
    }
    ret = 0;

    if (disk->src) {
        /* deliberately don't depend on 'ret' as 'eject' may have failed the
         * first time and we are going to check the drive state anyway */
        const char *format = NULL;
128

129
        if (disk->type != VIR_DOMAIN_DISK_TYPE_DIR) {
130 131 132 133
            if (disk->format > 0)
                format = virStorageFileFormatTypeToString(disk->format);
            else if (origdisk->format > 0)
                format = virStorageFileFormatTypeToString(origdisk->format);
134
        }
135
        qemuDomainObjEnterMonitor(driver, vm);
136 137 138
        ret = qemuMonitorChangeMedia(priv->mon,
                                     driveAlias,
                                     disk->src, format);
139
        qemuDomainObjExitMonitor(driver, vm);
140
    }
141
audit:
142
    virDomainAuditDisk(vm, origdisk->src, disk->src, "update", ret >= 0);
143 144 145 146

    if (ret < 0)
        goto error;

147
    if (virSecurityManagerRestoreImageLabel(driver->securityManager,
148
                                            vm->def, origdisk) < 0)
149 150
        VIR_WARN("Unable to restore security label on ejected image %s", origdisk->src);

151 152 153
    if (virDomainLockDiskDetach(driver->lockManager, vm, origdisk) < 0)
        VIR_WARN("Unable to release lock on disk %s", origdisk->src);

154 155 156 157 158 159 160 161
    VIR_FREE(origdisk->src);
    origdisk->src = disk->src;
    disk->src = NULL;
    origdisk->type = disk->type;


    virDomainDiskDefFree(disk);

162 163 164
cleanup:
    VIR_FREE(driveAlias);
    virObjectUnref(cfg);
165 166 167
    return ret;

error:
168
    if (virSecurityManagerRestoreImageLabel(driver->securityManager,
169
                                            vm->def, disk) < 0)
170
        VIR_WARN("Unable to restore security label on new media %s", disk->src);
171 172 173 174

    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s", disk->src);

175
    goto cleanup;
176 177
}

178
int
179
qemuDomainCheckEjectableMedia(virQEMUDriverPtr driver,
180 181
                             virDomainObjPtr vm,
                             enum qemuDomainAsyncJob asyncJob)
182 183
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
184
    virHashTablePtr table = NULL;
185
    int ret = -1;
186
    size_t i;
187

188 189
    if (qemuDomainObjEnterMonitorAsync(driver, vm, asyncJob) == 0) {
        table = qemuMonitorGetBlockInfo(priv->mon);
190
        qemuDomainObjExitMonitor(driver, vm);
191
    }
192 193 194 195

    if (!table)
        goto cleanup;

196 197
    for (i = 0; i < vm->def->ndisks; i++) {
        virDomainDiskDefPtr disk = vm->def->disks[i];
198
        struct qemuDomainDiskInfo *info;
199

200 201
        if (disk->device == VIR_DOMAIN_DISK_DEVICE_DISK ||
            disk->device == VIR_DOMAIN_DISK_DEVICE_LUN) {
202
                 continue;
203
        }
204

205 206
        info = qemuMonitorBlockInfoLookup(table, disk->info.alias);
        if (!info)
207 208
            goto cleanup;

209
        if (info->tray_open && disk->src)
210 211 212 213 214 215
            VIR_FREE(disk->src);
    }

    ret = 0;

cleanup:
216
    virHashFree(table);
217 218 219
    return ret;
}

220 221 222 223
int qemuDomainAttachVirtioDiskDevice(virConnectPtr conn,
                                     virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainDiskDefPtr disk)
224
{
225 226
    size_t i;
    int ret = -1;
227 228 229 230
    const char* type = virDomainDiskBusTypeToString(disk->bus);
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *devstr = NULL;
    char *drivestr = NULL;
231
    bool releaseaddr = false;
232
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
233

234 235 236 237 238 239 240 241
    if (!disk->info.type) {
        if (STREQLEN(vm->def->os.machine, "s390-ccw", 8) &&
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
    }

242
    for (i = 0; i < vm->def->ndisks; i++) {
243
        if (STREQ(vm->def->disks[i]->dst, disk->dst)) {
244 245
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("target %s already exists"), disk->dst);
246
            goto cleanup;
247 248 249
        }
    }

250
    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
251
                                vm, disk) < 0)
252
        goto cleanup;
253

254
    if (virSecurityManagerSetImageLabel(driver->securityManager,
255
                                        vm->def, disk) < 0) {
256 257
        if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
            VIR_WARN("Unable to release lock on %s", disk->src);
258
        goto cleanup;
259
    }
260

261
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
262 263 264 265
        if (disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
            if (qemuDomainCCWAddressAssign(&disk->info, priv->ccwaddrs,
                                           !disk->info.addr.ccw.assigned) < 0)
                goto error;
266 267
        } else if (!disk->info.type ||
                    disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
268 269 270
            if (qemuDomainPCIAddressEnsureAddr(priv->pciaddrs, &disk->info) < 0)
                goto error;
        }
271
        releaseaddr = true;
272
        if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
273 274
            goto error;

275
        if (!(drivestr = qemuBuildDriveStr(conn, disk, false, priv->qemuCaps)))
276 277
            goto error;

278
        if (!(devstr = qemuBuildDriveDevStr(NULL, disk, 0, priv->qemuCaps)))
279 280 281
            goto error;
    }

282
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
283 284
        goto error;

285
    qemuDomainObjEnterMonitor(driver, vm);
286
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
287 288 289 290
        ret = qemuMonitorAddDrive(priv->mon, drivestr);
        if (ret == 0) {
            ret = qemuMonitorAddDevice(priv->mon, devstr);
            if (ret < 0) {
291 292 293 294 295 296 297 298 299 300
                virErrorPtr orig_err = virSaveLastError();
                if (qemuMonitorDriveDel(priv->mon, drivestr) < 0) {
                    VIR_WARN("Unable to remove drive %s (%s) after failed "
                             "qemuMonitorAddDevice",
                             drivestr, devstr);
                }
                if (orig_err) {
                    virSetError(orig_err);
                    virFreeError(orig_err);
                }
301 302
            }
        }
303 304
    } else if (!disk->info.type ||
                disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
305
        virDevicePCIAddress guestAddr = disk->info.addr.pci;
306 307 308 309
        ret = qemuMonitorAddPCIDisk(priv->mon,
                                    disk->src,
                                    type,
                                    &guestAddr);
310 311
        if (ret == 0) {
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
312
            memcpy(&disk->info.addr.pci, &guestAddr, sizeof(guestAddr));
313
        }
314
    }
315
    qemuDomainObjExitMonitor(driver, vm);
316

317
    virDomainAuditDisk(vm, NULL, disk->src, "attach", ret >= 0);
318 319 320 321 322 323

    if (ret < 0)
        goto error;

    virDomainDiskInsertPreAlloced(vm->def, disk);

324
cleanup:
325 326
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
327 328
    virObjectUnref(cfg);
    return ret;
329 330

error:
331 332
    if (releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, &disk->info, disk->src);
333

334
    if (virSecurityManagerRestoreImageLabel(driver->securityManager,
335
                                            vm->def, disk) < 0)
336 337
        VIR_WARN("Unable to restore security label on %s", disk->src);

338 339 340
    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s", disk->src);

341
    goto cleanup;
342 343 344
}


345
int qemuDomainAttachPciControllerDevice(virQEMUDriverPtr driver,
346
                                        virDomainObjPtr vm,
347
                                        virDomainControllerDefPtr controller)
348 349 350 351 352
{
    int ret = -1;
    const char* type = virDomainControllerTypeToString(controller->type);
    char *devstr = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
353
    bool releaseaddr = false;
354

355 356 357 358 359
    if (virDomainControllerFind(vm->def, controller->type, controller->idx) > 0) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("target %s:%d already exists"),
                       type, controller->idx);
        return -1;
360 361
    }

362
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
363 364
        if (qemuDomainPCIAddressEnsureAddr(priv->pciaddrs, &controller->info) < 0)
            goto cleanup;
365
        releaseaddr = true;
366 367 368
        if (qemuAssignDeviceControllerAlias(controller) < 0)
            goto cleanup;

369 370
        if (controller->type == VIR_DOMAIN_CONTROLLER_TYPE_USB &&
            controller->model == -1 &&
371
            !virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_PIIX3_USB_UHCI)) {
372 373
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("USB controller hotplug unsupported in this QEMU binary"));
374 375 376
            goto cleanup;
        }

377
        if (!(devstr = qemuBuildControllerDevStr(vm->def, controller, priv->qemuCaps, NULL))) {
378 379 380 381
            goto cleanup;
        }
    }

382
    if (VIR_REALLOC_N(vm->def->controllers, vm->def->ncontrollers+1) < 0)
383 384
        goto cleanup;

385
    qemuDomainObjEnterMonitor(driver, vm);
386
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
387 388 389 390 391 392
        ret = qemuMonitorAddDevice(priv->mon, devstr);
    } else {
        ret = qemuMonitorAttachPCIDiskController(priv->mon,
                                                 type,
                                                 &controller->info.addr.pci);
    }
393
    qemuDomainObjExitMonitor(driver, vm);
394 395 396 397 398 399 400

    if (ret == 0) {
        controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
        virDomainControllerInsertPreAlloced(vm->def, controller);
    }

cleanup:
401 402
    if (ret != 0 && releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
403 404 405 406 407 408

    VIR_FREE(devstr);
    return ret;
}

static virDomainControllerDefPtr
409
qemuDomainFindOrCreateSCSIDiskController(virQEMUDriverPtr driver,
410
                                         virDomainObjPtr vm,
411
                                         int controller)
412
{
413
    size_t i;
414
    virDomainControllerDefPtr cont;
415

416
    for (i = 0; i < vm->def->ncontrollers; i++) {
417 418 419 420 421 422 423 424 425 426 427
        cont = vm->def->controllers[i];

        if (cont->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (cont->idx == controller)
            return cont;
    }

    /* No SCSI controller present, for backward compatibility we
     * now hotplug a controller */
428
    if (VIR_ALLOC(cont) < 0)
429 430
        return NULL;
    cont->type = VIR_DOMAIN_CONTROLLER_TYPE_SCSI;
431
    cont->idx = controller;
432 433
    cont->model = -1;

434
    VIR_INFO("No SCSI controller present, hotplugging one");
435
    if (qemuDomainAttachPciControllerDevice(driver,
436
                                            vm, cont) < 0) {
437 438 439 440 441
        VIR_FREE(cont);
        return NULL;
    }

    if (!virDomainObjIsActive(vm)) {
442 443
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit"));
444 445 446 447 448 449 450 451 452
        /* cont doesn't need freeing here, since the reference
         * now held in def->controllers */
        return NULL;
    }

    return cont;
}


453
int qemuDomainAttachSCSIDisk(virConnectPtr conn,
454
                             virQEMUDriverPtr driver,
455
                             virDomainObjPtr vm,
456
                             virDomainDiskDefPtr disk)
457
{
458
    size_t i;
459 460 461 462 463
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainControllerDefPtr cont = NULL;
    char *drivestr = NULL;
    char *devstr = NULL;
    int ret = -1;
464
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
465

466
    for (i = 0; i < vm->def->ndisks; i++) {
467
        if (STREQ(vm->def->disks[i]->dst, disk->dst)) {
468 469
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("target %s already exists"), disk->dst);
470
            goto cleanup;
471 472 473
        }
    }

474
    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
475
                                vm, disk) < 0)
476
        goto cleanup;
477

478
    if (virSecurityManagerSetImageLabel(driver->securityManager,
479
                                        vm->def, disk) < 0) {
480 481
        if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
            VIR_WARN("Unable to release lock on %s", disk->src);
482
        goto cleanup;
483
    }
484 485 486

    /* We should have an address already, so make sure */
    if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE) {
487 488 489
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("unexpected disk address type %s"),
                       virDomainDeviceAddressTypeToString(disk->info.type));
490 491 492
        goto error;
    }

493 494
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
        if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
495
            goto error;
496
        if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
497 498 499
            goto error;
    }

500
    if (!(drivestr = qemuBuildDriveStr(conn, disk, false, priv->qemuCaps)))
501 502
        goto error;

503
    for (i = 0; i <= disk->info.addr.drive.controller; i++) {
504
        cont = qemuDomainFindOrCreateSCSIDiskController(driver, vm, i);
505 506 507 508 509 510 511
        if (!cont)
            goto error;
    }

    /* Tell clang that "cont" is non-NULL.
       This is because disk->info.addr.driver.controller is unsigned,
       and hence the above loop must iterate at least once.  */
512
    sa_assert(cont);
513 514

    if (cont->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
515 516
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("SCSI controller %d was missing its PCI address"), cont->idx);
517 518 519
        goto error;
    }

520
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
521 522
        goto error;

523
    qemuDomainObjEnterMonitor(driver, vm);
524
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
525 526 527 528 529 530 531 532 533 534 535 536 537 538 539 540 541 542 543 544
        ret = qemuMonitorAddDrive(priv->mon, drivestr);
        if (ret == 0) {
            ret = qemuMonitorAddDevice(priv->mon, devstr);
            if (ret < 0) {
                VIR_WARN("qemuMonitorAddDevice failed on %s (%s)",
                         drivestr, devstr);
                /* XXX should call 'drive_del' on error but this does not
                   exist yet */
            }
        }
    } else {
        virDomainDeviceDriveAddress driveAddr;
        ret = qemuMonitorAttachDrive(priv->mon,
                                     drivestr,
                                     &cont->info.addr.pci,
                                     &driveAddr);
        if (ret == 0) {
            /* XXX we should probably validate that the addr matches
             * our existing defined addr instead of overwriting */
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE;
545 546
            disk->info.addr.drive.bus = driveAddr.bus;
            disk->info.addr.drive.unit = driveAddr.unit;
547 548
        }
    }
549
    qemuDomainObjExitMonitor(driver, vm);
550

551
    virDomainAuditDisk(vm, NULL, disk->src, "attach", ret >= 0);
552 553 554 555 556 557

    if (ret < 0)
        goto error;

    virDomainDiskInsertPreAlloced(vm->def, disk);

558
cleanup:
559 560
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
561 562
    virObjectUnref(cfg);
    return ret;
563 564

error:
565
    if (virSecurityManagerRestoreImageLabel(driver->securityManager,
566
                                            vm->def, disk) < 0)
567 568
        VIR_WARN("Unable to restore security label on %s", disk->src);

569 570 571
    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s", disk->src);

572
    goto cleanup;
573 574 575
}


576
int qemuDomainAttachUsbMassstorageDevice(virConnectPtr conn,
577
                                         virQEMUDriverPtr driver,
578
                                         virDomainObjPtr vm,
579
                                         virDomainDiskDefPtr disk)
580 581
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
582 583
    size_t i;
    int ret = -1;
584 585
    char *drivestr = NULL;
    char *devstr = NULL;
586
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
587

588
    for (i = 0; i < vm->def->ndisks; i++) {
589
        if (STREQ(vm->def->disks[i]->dst, disk->dst)) {
590 591
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("target %s already exists"), disk->dst);
592
            goto cleanup;
593 594 595
        }
    }

596
    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
597
                                vm, disk) < 0)
598
        goto cleanup;
599

600
    if (virSecurityManagerSetImageLabel(driver->securityManager,
601
                                        vm->def, disk) < 0) {
602 603
        if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
            VIR_WARN("Unable to release lock on %s", disk->src);
604
        goto cleanup;
605
    }
606

607
    /* XXX not correct once we allow attaching a USB CDROM */
608
    if (!disk->src) {
609 610
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       "%s", _("disk source path is missing"));
611 612 613
        goto error;
    }

614 615
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
        if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
616
            goto error;
617
        if (!(drivestr = qemuBuildDriveStr(conn, disk, false, priv->qemuCaps)))
618
            goto error;
619
        if (!(devstr = qemuBuildDriveDevStr(NULL, disk, 0, priv->qemuCaps)))
620 621 622
            goto error;
    }

623
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
624 625
        goto error;

626
    qemuDomainObjEnterMonitor(driver, vm);
627
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
628 629 630 631 632 633 634 635 636 637 638 639 640
        ret = qemuMonitorAddDrive(priv->mon, drivestr);
        if (ret == 0) {
            ret = qemuMonitorAddDevice(priv->mon, devstr);
            if (ret < 0) {
                VIR_WARN("qemuMonitorAddDevice failed on %s (%s)",
                         drivestr, devstr);
                /* XXX should call 'drive_del' on error but this does not
                   exist yet */
            }
        }
    } else {
        ret = qemuMonitorAddUSBDisk(priv->mon, disk->src);
    }
641
    qemuDomainObjExitMonitor(driver, vm);
642

643
    virDomainAuditDisk(vm, NULL, disk->src, "attach", ret >= 0);
644 645 646 647 648 649

    if (ret < 0)
        goto error;

    virDomainDiskInsertPreAlloced(vm->def, disk);

650
cleanup:
651 652
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
653 654
    virObjectUnref(cfg);
    return ret;
655 656

error:
657
    if (virSecurityManagerRestoreImageLabel(driver->securityManager,
658
                                            vm->def, disk) < 0)
659 660
        VIR_WARN("Unable to restore security label on %s", disk->src);

661 662 663
    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s", disk->src);

664
    goto cleanup;
665 666 667 668 669
}


/* XXX conn required for network -> bridge resolution */
int qemuDomainAttachNetDevice(virConnectPtr conn,
670
                              virQEMUDriverPtr driver,
671
                              virDomainObjPtr vm,
672
                              virDomainNetDefPtr net)
673 674
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
675 676 677 678 679 680
    char **tapfdName = NULL;
    int *tapfd = NULL;
    int tapfdSize = 0;
    char **vhostfdName = NULL;
    int *vhostfd = NULL;
    int vhostfdSize = 0;
681 682
    char *nicstr = NULL;
    char *netstr = NULL;
A
Ansis Atteka 已提交
683
    virNetDevVPortProfilePtr vport = NULL;
684
    int ret = -1;
685
    virDevicePCIAddress guestAddr;
686
    int vlan;
687
    bool releaseaddr = false;
688 689
    bool iface_connected = false;
    int actualType;
690
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
691
    size_t i;
692

693
    /* preallocate new slot for device */
694
    if (VIR_REALLOC_N(vm->def->nets, vm->def->nnets+1) < 0)
695
        goto cleanup;
696

697 698 699 700 701
    /* If appropriate, grab a physical device from the configured
     * network's pool of devices, or resolve bridge device name
     * to the one defined in the network definition.
     */
    if (networkAllocateActualDevice(net) < 0)
702
        goto cleanup;
703 704

    actualType = virDomainNetGetActualType(net);
705 706 707 708 709 710 711 712 713 714 715 716

    if (actualType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* This is really a "smart hostdev", so it should be attached
         * as a hostdev (the hostdev code will reach over into the
         * netdev-specific code as appropriate), then also added to
         * the nets list (see cleanup:) if successful.
         */
        ret = qemuDomainAttachHostDevice(driver, vm,
                                         virDomainNetGetActualHostdev(net));
        goto cleanup;
    }

717
    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_HOST_NET_ADD)) {
718 719
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("installed qemu version does not support host_net_add"));
720 721 722
        goto cleanup;
    }

723 724 725 726 727 728 729 730 731 732
    /* Currently nothing besides TAP devices supports multiqueue. */
    if (net->driver.virtio.queues > 0 &&
        !(actualType == VIR_DOMAIN_NET_TYPE_NETWORK ||
          actualType == VIR_DOMAIN_NET_TYPE_BRIDGE)) {
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("Multiqueue network is not supported for: %s"),
                       virDomainNetTypeToString(actualType));
        return -1;
    }

733 734
    if (actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
        actualType == VIR_DOMAIN_NET_TYPE_NETWORK) {
735 736 737 738
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0 ||
739
            VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
740 741 742
            goto cleanup;
        if (qemuNetworkIfaceConnect(vm->def, conn, driver, net,
                                    priv->qemuCaps, tapfd, &tapfdSize) < 0)
743 744
            goto cleanup;
        iface_connected = true;
745
        if (qemuOpenVhostNet(vm->def, net, priv->qemuCaps, vhostfd, &vhostfdSize) < 0)
746
            goto cleanup;
747
    } else if (actualType == VIR_DOMAIN_NET_TYPE_DIRECT) {
748
        tapfdSize = vhostfdSize = 1;
749
        if (VIR_ALLOC(tapfd) < 0 || VIR_ALLOC(vhostfd) < 0)
750 751 752 753
            goto cleanup;
        if ((tapfd[0] = qemuPhysIfaceConnect(vm->def, driver, net,
                                             priv->qemuCaps,
                                             VIR_NETDEV_VPORT_PROFILE_OP_CREATE)) < 0)
754 755
            goto cleanup;
        iface_connected = true;
756
        if (qemuOpenVhostNet(vm->def, net, priv->qemuCaps, vhostfd, &vhostfdSize) < 0)
757
            goto cleanup;
758
    } else if (actualType == VIR_DOMAIN_NET_TYPE_ETHERNET) {
759
        vhostfdSize = 1;
760
        if (VIR_ALLOC(vhostfd) < 0)
761 762
            goto cleanup;
        if (qemuOpenVhostNet(vm->def, net, priv->qemuCaps, vhostfd, &vhostfdSize) < 0)
763
            goto cleanup;
764 765
    }

766 767
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NET_NAME) ||
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
768 769 770 771
        if (qemuAssignDeviceNetAlias(vm->def, net, -1) < 0)
            goto cleanup;
    }

772 773 774 775 776 777 778 779 780 781 782 783
    if (STREQLEN(vm->def->os.machine, "s390-ccw", 8) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        net->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        if (qemuDomainCCWAddressAssign(&net->info, priv->ccwaddrs,
                                       !net->info.addr.ccw.assigned) < 0)
            goto cleanup;
    } else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                        _("virtio-s390 net device cannot be hotplugged."));
    else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE) &&
             qemuDomainPCIAddressEnsureAddr(priv->pciaddrs, &net->info) < 0)
             goto cleanup;
784

785 786
    releaseaddr = true;

787 788
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
789 790 791 792 793
        vlan = -1;
    } else {
        vlan = qemuDomainNetVLAN(net);

        if (vlan < 0) {
794 795
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("Unable to attach network devices without vlan"));
796 797 798 799
            goto cleanup;
        }
    }

800
    if (VIR_ALLOC_N(tapfdName, tapfdSize) < 0 ||
801
        VIR_ALLOC_N(vhostfdName, vhostfdSize) < 0)
802 803 804
        goto cleanup;

    for (i = 0; i < tapfdSize; i++) {
805
        if (virAsprintf(&tapfdName[i], "fd-%s%zu", net->info.alias, i) < 0)
806
            goto cleanup;
807 808
    }

809
    for (i = 0; i < vhostfdSize; i++) {
810
        if (virAsprintf(&vhostfdName[i], "vhostfd-%s%zu", net->info.alias, i) < 0)
811
            goto cleanup;
812 813
    }

814 815
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
816
        if (!(netstr = qemuBuildHostNetStr(net, driver,
817 818 819
                                           ',', -1,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
820
            goto cleanup;
821
    } else {
822
        if (!(netstr = qemuBuildHostNetStr(net, driver,
823 824 825
                                           ' ', vlan,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
826
            goto cleanup;
827 828
    }

829
    qemuDomainObjEnterMonitor(driver, vm);
830 831
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
832 833 834
        if (qemuMonitorAddNetdev(priv->mon, netstr,
                                 tapfd, tapfdName, tapfdSize,
                                 vhostfd, vhostfdName, vhostfdSize) < 0) {
835
            qemuDomainObjExitMonitor(driver, vm);
836
            virDomainAuditNet(vm, NULL, net, "attach", false);
837
            goto cleanup;
838 839
        }
    } else {
840 841 842
        if (qemuMonitorAddHostNetwork(priv->mon, netstr,
                                      tapfd, tapfdName, tapfdSize,
                                      vhostfd, vhostfdName, vhostfdSize) < 0) {
843
            qemuDomainObjExitMonitor(driver, vm);
844
            virDomainAuditNet(vm, NULL, net, "attach", false);
845
            goto cleanup;
846 847
        }
    }
848
    qemuDomainObjExitMonitor(driver, vm);
849

850 851 852 853
    for (i = 0; i < tapfdSize; i++)
        VIR_FORCE_CLOSE(tapfd[i]);
    for (i = 0; i < vhostfdSize; i++)
        VIR_FORCE_CLOSE(vhostfd[i]);
854 855

    if (!virDomainObjIsActive(vm)) {
856 857
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit"));
858 859 860
        goto cleanup;
    }

861 862
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
        if (!(nicstr = qemuBuildNicDevStr(net, vlan, 0, priv->qemuCaps)))
863 864 865 866 867 868
            goto try_remove;
    } else {
        if (!(nicstr = qemuBuildNicStr(net, NULL, vlan)))
            goto try_remove;
    }

869
    qemuDomainObjEnterMonitor(driver, vm);
870
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
871
        if (qemuMonitorAddDevice(priv->mon, nicstr) < 0) {
872
            qemuDomainObjExitMonitor(driver, vm);
873
            virDomainAuditNet(vm, NULL, net, "attach", false);
874 875 876
            goto try_remove;
        }
    } else {
877
        guestAddr = net->info.addr.pci;
878 879
        if (qemuMonitorAddPCINetwork(priv->mon, nicstr,
                                     &guestAddr) < 0) {
880
            qemuDomainObjExitMonitor(driver, vm);
881
            virDomainAuditNet(vm, NULL, net, "attach", false);
882 883 884 885 886
            goto try_remove;
        }
        net->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
        memcpy(&net->info.addr.pci, &guestAddr, sizeof(guestAddr));
    }
887
    qemuDomainObjExitMonitor(driver, vm);
888

889 890 891
    /* set link state */
    if (net->linkstate == VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) {
        if (!net->info.alias) {
892 893
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device alias not found: cannot set link state to down"));
894
        } else {
895
            qemuDomainObjEnterMonitor(driver, vm);
896

897
            if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
898
                if (qemuMonitorSetLink(priv->mon, net->info.alias, VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) < 0) {
899
                    qemuDomainObjExitMonitor(driver, vm);
900 901 902 903
                    virDomainAuditNet(vm, NULL, net, "attach", false);
                    goto try_remove;
                }
            } else {
904
                virReportError(VIR_ERR_OPERATION_FAILED, "%s",
905
                               _("setting of link state not supported: Link is up"));
906 907
            }

908
            qemuDomainObjExitMonitor(driver, vm);
909 910 911 912
        }
        /* link set to down */
    }

913
    virDomainAuditNet(vm, NULL, net, "attach", true);
914 915 916 917

    ret = 0;

cleanup:
918 919 920
    if (!ret) {
        vm->def->nets[vm->def->nnets++] = net;
    } else {
921 922
        if (releaseaddr)
            qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
923

924
        if (iface_connected) {
925
            virDomainConfNWFilterTeardown(net);
926

927 928 929 930 931 932 933 934 935 936
            if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_DIRECT) {
                ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                                 net->ifname, &net->mac,
                                 virDomainNetGetActualDirectDev(net),
                                 virDomainNetGetActualDirectMode(net),
                                 virDomainNetGetActualVirtPortProfile(net),
                                 cfg->stateDir));
                VIR_FREE(net->ifname);
            }

937 938 939 940 941
            vport = virDomainNetGetActualVirtPortProfile(net);
            if (vport && vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH)
               ignore_value(virNetDevOpenvswitchRemovePort(
                               virDomainNetGetActualBridgeName(net), net->ifname));
        }
A
Ansis Atteka 已提交
942

943 944
        networkReleaseActualDevice(net);
    }
945 946 947

    VIR_FREE(nicstr);
    VIR_FREE(netstr);
948
    for (i = 0; tapfd && i < tapfdSize; i++) {
949
        VIR_FORCE_CLOSE(tapfd[i]);
950 951
        if (tapfdName)
            VIR_FREE(tapfdName[i]);
952 953 954
    }
    VIR_FREE(tapfd);
    VIR_FREE(tapfdName);
955
    for (i = 0; vhostfd && i < vhostfdSize; i++) {
956
        VIR_FORCE_CLOSE(vhostfd[i]);
957 958
        if (vhostfdName)
            VIR_FREE(vhostfdName[i]);
959 960 961
    }
    VIR_FREE(vhostfd);
    VIR_FREE(vhostfdName);
962
    virObjectUnref(cfg);
963 964 965 966 967 968 969 970

    return ret;

try_remove:
    if (!virDomainObjIsActive(vm))
        goto cleanup;

    if (vlan < 0) {
971 972
        if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
973 974
            char *netdev_name;
            if (virAsprintf(&netdev_name, "host%s", net->info.alias) < 0)
975
                goto cleanup;
976
            qemuDomainObjEnterMonitor(driver, vm);
977 978 979
            if (qemuMonitorRemoveNetdev(priv->mon, netdev_name) < 0)
                VIR_WARN("Failed to remove network backend for netdev %s",
                         netdev_name);
980
            qemuDomainObjExitMonitor(driver, vm);
981 982
            VIR_FREE(netdev_name);
        } else {
983
            VIR_WARN("Unable to remove network backend");
984 985 986 987
        }
    } else {
        char *hostnet_name;
        if (virAsprintf(&hostnet_name, "host%s", net->info.alias) < 0)
988
            goto cleanup;
989
        qemuDomainObjEnterMonitor(driver, vm);
990 991 992
        if (qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0)
            VIR_WARN("Failed to remove network backend for vlan %d, net %s",
                     vlan, hostnet_name);
993
        qemuDomainObjExitMonitor(driver, vm);
994 995 996 997 998 999
        VIR_FREE(hostnet_name);
    }
    goto cleanup;
}


1000
int qemuDomainAttachHostPciDevice(virQEMUDriverPtr driver,
1001
                                  virDomainObjPtr vm,
1002
                                  virDomainHostdevDefPtr hostdev)
1003 1004 1005 1006 1007 1008
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret;
    char *devstr = NULL;
    int configfd = -1;
    char *configfd_name = NULL;
1009
    bool releaseaddr = false;
1010

1011
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs+1) < 0)
1012 1013
        return -1;

1014 1015
    if (qemuPrepareHostdevPCIDevices(driver, vm->def->name, vm->def->uuid,
                                     &hostdev, 1) < 0)
1016 1017
        return -1;

1018
    if (hostdev->source.subsys.u.pci.backend
1019
        == VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO) {
1020 1021 1022 1023 1024 1025
        if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_VFIO_PCI)) {
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("VFIO PCI device assignment is not "
                             "supported by this version of qemu"));
            goto error;
        }
1026 1027 1028 1029

        /* VFIO requires all of the guest's memory to be locked resident.
         * In this case, the guest's memory may already be locked, but it
         * doesn't hurt to "change" the limit to the same value.
1030
         */
1031 1032 1033 1034
        vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;
        virProcessSetMaxMemLock(vm->pid,
                                qemuDomainMemoryLimit(vm->def) * 1024);
        vm->def->hostdevs[vm->def->nhostdevs--] = NULL;
1035 1036
    }

1037
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
1038 1039
        if (qemuAssignDeviceHostdevAlias(vm->def, hostdev, -1) < 0)
            goto error;
1040
        if (qemuDomainPCIAddressEnsureAddr(priv->pciaddrs, hostdev->info) < 0)
1041
            goto error;
1042
        releaseaddr = true;
1043
        if ((hostdev->source.subsys.u.pci.backend
1044
             != VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO) &&
1045
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_PCI_CONFIGFD)) {
1046 1047 1048
            configfd = qemuOpenPCIConfig(hostdev);
            if (configfd >= 0) {
                if (virAsprintf(&configfd_name, "fd-%s",
1049
                                hostdev->info->alias) < 0)
1050 1051 1052 1053 1054
                    goto error;
            }
        }

        if (!virDomainObjIsActive(vm)) {
1055 1056
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("guest unexpectedly quit during hotplug"));
1057 1058 1059
            goto error;
        }

1060
        if (!(devstr = qemuBuildPCIHostdevDevStr(hostdev, configfd_name,
1061
                                                 priv->qemuCaps)))
1062 1063
            goto error;

1064
        qemuDomainObjEnterMonitor(driver, vm);
1065 1066
        ret = qemuMonitorAddDeviceWithFd(priv->mon, devstr,
                                         configfd, configfd_name);
1067
        qemuDomainObjExitMonitor(driver, vm);
1068
    } else {
1069
        virDevicePCIAddress guestAddr = hostdev->info->addr.pci;
1070

1071
        qemuDomainObjEnterMonitor(driver, vm);
1072
        ret = qemuMonitorAddPCIHostDevice(priv->mon,
1073
                                          &hostdev->source.subsys.u.pci.addr,
1074
                                          &guestAddr);
1075
        qemuDomainObjExitMonitor(driver, vm);
1076

1077 1078
        hostdev->info->type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
        memcpy(&hostdev->info->addr.pci, &guestAddr, sizeof(guestAddr));
1079
    }
1080
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
1081 1082 1083 1084 1085 1086 1087 1088 1089 1090 1091 1092
    if (ret < 0)
        goto error;

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);

    return 0;

error:
1093 1094
    if (releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
1095

1096
    qemuDomainReAttachHostdevDevices(driver, vm->def->name, &hostdev, 1);
1097 1098 1099 1100 1101 1102 1103 1104 1105

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);

    return -1;
}


1106
int qemuDomainAttachRedirdevDevice(virQEMUDriverPtr driver,
1107 1108 1109 1110 1111
                                   virDomainObjPtr vm,
                                   virDomainRedirdevDefPtr redirdev)
{
    int ret;
    qemuDomainObjPrivatePtr priv = vm->privateData;
1112
    virDomainDefPtr def = vm->def;
1113 1114
    char *devstr = NULL;

1115
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
1116 1117
        if (qemuAssignDeviceRedirdevAlias(vm->def, redirdev, -1) < 0)
            goto error;
1118
        if (!(devstr = qemuBuildRedirdevDevStr(def, redirdev, priv->qemuCaps)))
1119 1120 1121
            goto error;
    }

1122
    if (VIR_REALLOC_N(vm->def->redirdevs, vm->def->nredirdevs+1) < 0)
1123 1124
        goto error;

1125
    qemuDomainObjEnterMonitor(driver, vm);
1126
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE))
1127 1128 1129 1130
        ret = qemuMonitorAddDevice(priv->mon, devstr);
    else
        goto error;

1131
    qemuDomainObjExitMonitor(driver, vm);
1132 1133 1134 1135 1136 1137 1138 1139 1140 1141 1142 1143 1144 1145 1146 1147
    virDomainAuditRedirdev(vm, redirdev, "attach", ret == 0);
    if (ret < 0)
        goto error;

    vm->def->redirdevs[vm->def->nredirdevs++] = redirdev;

    VIR_FREE(devstr);

    return 0;

error:
    VIR_FREE(devstr);
    return -1;

}

1148 1149 1150 1151 1152 1153 1154 1155 1156 1157 1158 1159 1160 1161 1162 1163 1164 1165 1166 1167 1168 1169 1170 1171 1172 1173 1174 1175 1176 1177 1178 1179 1180 1181 1182 1183 1184 1185 1186 1187 1188 1189 1190 1191 1192 1193 1194 1195 1196 1197 1198 1199 1200 1201 1202 1203 1204 1205 1206 1207 1208 1209 1210 1211 1212 1213 1214 1215 1216 1217 1218 1219
int
qemuDomainChrInsert(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
                       _("attaching serial console is not supported"));
        return -1;
    }

    if (virDomainChrFind(vmdef, chr)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("chardev already exists"));
        return -1;
    }

    if (virDomainChrInsert(vmdef, chr) < 0)
        return -1;

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
    if (vmdef->nserials == 1 && vmdef->nconsoles == 0) {
        if ((!vmdef->consoles && VIR_ALLOC(vmdef->consoles) < 0) ||
            VIR_ALLOC(vmdef->consoles[0]) < 0) {
            virDomainChrRemove(vmdef, chr);
            return -1;
        }
        vmdef->nconsoles = 1;

        /* Create an console alias for the serial port */
        vmdef->consoles[0]->deviceType = VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE;
        vmdef->consoles[0]->targetType = VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL;
    }

    return 0;
}

virDomainChrDefPtr
qemuDomainChrRemove(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    virDomainChrDefPtr ret;
    bool removeCompat;

    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("detaching serial console is not supported"));
        return NULL;
    }

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
    removeCompat = vmdef->nserials && vmdef->nconsoles &&
        vmdef->consoles[0]->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        vmdef->consoles[0]->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL &&
        virDomainChrEquals(vmdef->serials[0], chr);

    if (!(ret = virDomainChrRemove(vmdef, chr))) {
        virReportError(VIR_ERR_INVALID_ARG, "%s",
                       _("device not present in domain configuration"));
            return NULL;
    }

    if (removeCompat)
        VIR_DELETE_ELEMENT(vmdef->consoles, 0, vmdef->nconsoles);

    return ret;
}
1220 1221 1222 1223 1224 1225 1226 1227 1228 1229

int qemuDomainAttachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainDefPtr vmdef = vm->def;
    char *devstr = NULL;
    char *charAlias = NULL;
1230
    bool need_remove = false;
1231 1232 1233 1234 1235 1236 1237 1238 1239 1240 1241 1242 1243 1244 1245 1246 1247 1248 1249 1250

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("qemu does not support -device"));
        return ret;
    }

    if (qemuAssignDeviceChrAlias(vmdef, chr, -1) < 0)
        return ret;

    if (qemuBuildChrDeviceStr(&devstr, vm->def, chr, priv->qemuCaps) < 0)
        return ret;

    if (virAsprintf(&charAlias, "char%s", chr->info.alias) < 0) {
        virReportOOMError();
        goto cleanup;
    }

    if (qemuDomainChrInsert(vmdef, chr) < 0)
        goto cleanup;
1251
    need_remove = true;
1252 1253 1254 1255 1256 1257 1258 1259 1260 1261 1262 1263 1264 1265 1266 1267 1268

    qemuDomainObjEnterMonitor(driver, vm);
    if (qemuMonitorAttachCharDev(priv->mon, charAlias, &chr->source) < 0) {
        qemuDomainObjExitMonitor(driver, vm);
        goto cleanup;
    }

    if (devstr && qemuMonitorAddDevice(priv->mon, devstr) < 0) {
        /* detach associated chardev on error */
        qemuMonitorDetachCharDev(priv->mon, charAlias);
        qemuDomainObjExitMonitor(driver, vm);
        goto cleanup;
    }
    qemuDomainObjExitMonitor(driver, vm);

    ret = 0;
cleanup:
1269
    if (ret < 0 && need_remove)
1270 1271 1272 1273 1274 1275
        qemuDomainChrRemove(vmdef, chr);
    VIR_FREE(charAlias);
    VIR_FREE(devstr);
    return ret;
}

1276
int qemuDomainAttachHostUsbDevice(virQEMUDriverPtr driver,
1277
                                  virDomainObjPtr vm,
1278
                                  virDomainHostdevDefPtr hostdev)
1279 1280
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
1281 1282
    virUSBDeviceList *list = NULL;
    virUSBDevicePtr usb = NULL;
1283
    char *devstr = NULL;
1284 1285 1286 1287 1288 1289 1290 1291 1292 1293 1294 1295 1296 1297 1298 1299 1300
    bool added = false;
    int ret = -1;

    if (qemuFindHostdevUSBDevice(hostdev, true, &usb) < 0)
        return -1;

    if (!(list = virUSBDeviceListNew()))
        goto cleanup;

    if (virUSBDeviceListAdd(list, usb) < 0)
        goto cleanup;

    if (qemuPrepareHostdevUSBDevices(driver, vm->def->name, list) < 0)
        goto cleanup;

    added = true;
    virUSBDeviceListSteal(list, usb);
1301

1302
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
1303
        if (qemuAssignDeviceHostdevAlias(vm->def, hostdev, -1) < 0)
1304
            goto cleanup;
1305
        if (!(devstr = qemuBuildUSBHostdevDevStr(hostdev, priv->qemuCaps)))
1306
            goto cleanup;
1307 1308
    }

1309
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs+1) < 0)
1310
        goto cleanup;
1311

1312
    qemuDomainObjEnterMonitor(driver, vm);
1313
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE))
1314 1315 1316 1317 1318
        ret = qemuMonitorAddDevice(priv->mon, devstr);
    else
        ret = qemuMonitorAddUSBDeviceExact(priv->mon,
                                           hostdev->source.subsys.u.usb.bus,
                                           hostdev->source.subsys.u.usb.device);
1319
    qemuDomainObjExitMonitor(driver, vm);
1320
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
1321
    if (ret < 0)
1322
        goto cleanup;
1323 1324 1325

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

1326 1327 1328 1329 1330 1331
    ret = 0;
cleanup:
    if (added)
        virUSBDeviceListSteal(driver->activeUsbHostdevs, usb);
    virUSBDeviceFree(usb);
    virObjectUnref(list);
1332
    VIR_FREE(devstr);
1333
    return ret;
1334 1335
}

1336 1337 1338 1339 1340 1341 1342 1343 1344 1345 1346 1347 1348 1349 1350 1351 1352 1353 1354 1355 1356 1357 1358 1359 1360 1361 1362 1363 1364 1365 1366 1367
static int
qemuDomainAttachHostScsiDevice(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *devstr = NULL;
    char *drvstr = NULL;

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DRIVE) ||
        !virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE) ||
        !virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_SCSI_GENERIC)) {
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("SCSI passthrough is not supported by this version of qemu"));
        return -1;
    }

    if (qemuPrepareHostdevSCSIDevices(driver, vm->def->name,
                                      &hostdev, 1)) {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("Unable to prepare scsi hostdev: %s:%d:%d:%d"),
                       hostdev->source.subsys.u.scsi.adapter,
                       hostdev->source.subsys.u.scsi.bus,
                       hostdev->source.subsys.u.scsi.target,
                       hostdev->source.subsys.u.scsi.unit);
        return -1;
    }

    if (qemuAssignDeviceHostdevAlias(vm->def, hostdev, 0) < 0)
        goto cleanup;

1368 1369
    if (!(drvstr = qemuBuildSCSIHostdevDrvStr(hostdev, priv->qemuCaps,
                                              &buildCommandLineCallbacks)))
1370 1371 1372 1373 1374
        goto cleanup;

    if (!(devstr = qemuBuildSCSIHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
        goto cleanup;

1375
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs + 1) < 0)
1376 1377 1378 1379 1380 1381 1382 1383 1384 1385 1386 1387 1388 1389 1390 1391 1392 1393 1394 1395 1396 1397 1398 1399 1400 1401 1402 1403 1404 1405 1406 1407 1408
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
    if ((ret = qemuMonitorAddDrive(priv->mon, drvstr)) == 0) {
        if ((ret = qemuMonitorAddDevice(priv->mon, devstr)) < 0) {
            virErrorPtr orig_err = virSaveLastError();
            if (qemuMonitorDriveDel(priv->mon, drvstr) < 0)
                VIR_WARN("Unable to remove drive %s (%s) after failed "
                         "qemuMonitorAddDevice",
                         drvstr, devstr);
            if (orig_err) {
                virSetError(orig_err);
                virFreeError(orig_err);
            }
        }
    }
    qemuDomainObjExitMonitor(driver, vm);

    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
    if (ret < 0)
        goto cleanup;

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    ret = 0;
cleanup:
    if (ret < 0)
        qemuDomainReAttachHostScsiDevices(driver, vm->def->name, &hostdev, 1);
    VIR_FREE(drvstr);
    VIR_FREE(devstr);
    return ret;
}

1409
int qemuDomainAttachHostDevice(virQEMUDriverPtr driver,
1410
                               virDomainObjPtr vm,
1411
                               virDomainHostdevDefPtr hostdev)
1412 1413
{
    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
1414 1415 1416
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
1417 1418 1419
        return -1;
    }

1420
    if (qemuSetupHostdevCGroup(vm, hostdev) < 0)
1421
        return -1;
1422

1423
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
1424
                                          vm->def, hostdev, NULL) < 0)
1425
        goto cleanup;
1426 1427 1428 1429

    switch (hostdev->source.subsys.type) {
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
        if (qemuDomainAttachHostPciDevice(driver, vm,
1430
                                          hostdev) < 0)
1431 1432 1433 1434 1435
            goto error;
        break;

    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
        if (qemuDomainAttachHostUsbDevice(driver, vm,
1436
                                          hostdev) < 0)
1437 1438 1439
            goto error;
        break;

1440 1441 1442 1443 1444 1445
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
        if (qemuDomainAttachHostScsiDevice(driver, vm,
                                           hostdev) < 0)
            goto error;
        break;

1446
    default:
1447 1448 1449
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(hostdev->source.subsys.type));
1450 1451 1452 1453 1454 1455
        goto error;
    }

    return 0;

error:
1456
    if (virSecurityManagerRestoreHostdevLabel(driver->securityManager,
1457
                                              vm->def, hostdev, NULL) < 0)
1458
        VIR_WARN("Unable to restore host device labelling on hotplug fail");
1459

1460
cleanup:
1461 1462
    if (qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
1463 1464 1465
    return -1;
}

1466 1467
static virDomainNetDefPtr *qemuDomainFindNet(virDomainObjPtr vm,
                                             virDomainNetDefPtr dev)
1468
{
1469
    size_t i;
1470 1471

    for (i = 0; i < vm->def->nnets; i++) {
1472
        if (virMacAddrCmp(&vm->def->nets[i]->mac, &dev->mac) == 0)
1473
            return &vm->def->nets[i];
1474 1475 1476 1477 1478
    }

    return NULL;
}

1479 1480 1481 1482 1483 1484 1485 1486 1487 1488 1489 1490 1491 1492
static char *
qemuDomainNetGetBridgeName(virConnectPtr conn, virDomainNetDefPtr net)
{
    char *brname = NULL;
    int actualType = virDomainNetGetActualType(net);

    if (actualType == VIR_DOMAIN_NET_TYPE_BRIDGE) {
        const char *tmpbr = virDomainNetGetActualBridgeName(net);
        if (!tmpbr) {
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("interface is missing bridge name"));
            goto cleanup;
        }
        /* we need a copy, not just a pointer to the original */
1493
        if (VIR_STRDUP(brname, tmpbr) < 0)
1494 1495 1496 1497 1498 1499 1500 1501 1502 1503 1504 1505 1506 1507 1508 1509 1510 1511 1512 1513 1514 1515 1516 1517 1518 1519 1520 1521
            goto cleanup;
    } else if (actualType == VIR_DOMAIN_NET_TYPE_NETWORK) {
        int active;
        virErrorPtr errobj;
        virNetworkPtr network;

        if (!(network = virNetworkLookupByName(conn, net->data.network.name))) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("Couldn't find network '%s'"),
                           net->data.network.name);
            goto cleanup;
        }

        active = virNetworkIsActive(network);
        if (active == 1) {
            brname = virNetworkGetBridgeName(network);
        } else if (active == 0) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("Network '%s' is not active."),
                           net->data.network.name);
        }

        /* Make sure any above failure is preserved */
        errobj = virSaveLastError();
        virNetworkFree(network);
        virSetError(errobj);
        virFreeError(errobj);

1522 1523 1524 1525
    } else {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("Interface type %d has no bridge name"),
                       virDomainNetGetActualType(net));
1526 1527 1528 1529 1530 1531 1532 1533 1534 1535 1536
    }

cleanup:
    return brname;
}

static int
qemuDomainChangeNetBridge(virConnectPtr conn,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
1537 1538
{
    int ret = -1;
1539 1540 1541 1542 1543 1544 1545
    char *oldbridge = NULL, *newbridge = NULL;

    if (!(oldbridge = qemuDomainNetGetBridgeName(conn, olddev)))
        goto cleanup;

    if (!(newbridge = qemuDomainNetGetBridgeName(conn, newdev)))
        goto cleanup;
1546 1547 1548 1549 1550

    VIR_DEBUG("Change bridge for interface %s: %s -> %s",
              olddev->ifname, oldbridge, newbridge);

    if (virNetDevExists(newbridge) != 1) {
1551 1552
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("bridge %s doesn't exist"), newbridge);
1553
        goto cleanup;
1554 1555 1556 1557 1558
    }

    if (oldbridge) {
        ret = virNetDevBridgeRemovePort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, olddev, NULL, "detach", ret == 0);
1559 1560 1561 1562 1563 1564 1565 1566
        if (ret < 0) {
            /* warn but continue - possibly the old network
             * had been destroyed and reconstructed, leaving the
             * tap device orphaned.
             */
            VIR_WARN("Unable to detach device %s from bridge %s",
                     olddev->ifname, oldbridge);
        }
1567 1568 1569
    }

    ret = virNetDevBridgeAddPort(newbridge, olddev->ifname);
1570
    virDomainAuditNet(vm, NULL, newdev, "attach", ret == 0);
1571 1572 1573 1574
    if (ret < 0) {
        ret = virNetDevBridgeAddPort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, NULL, olddev, "attach", ret == 0);
        if (ret < 0) {
1575
            virReportError(VIR_ERR_OPERATION_FAILED,
1576
                           _("unable to recover former state by adding port "
1577
                             "to bridge %s"), oldbridge);
1578
        }
1579
        goto cleanup;
1580
    }
1581 1582 1583
    /* caller will replace entire olddev with newdev in domain nets list */
    ret = 0;
cleanup:
1584
    VIR_FREE(oldbridge);
1585 1586
    VIR_FREE(newbridge);
    return ret;
1587 1588
}

1589 1590 1591 1592 1593 1594 1595 1596 1597 1598 1599 1600 1601 1602 1603 1604 1605 1606 1607 1608 1609
static int
qemuDomainChangeNetFilter(virConnectPtr conn,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
{
    /* make sure this type of device supports filters. */
    switch (virDomainNetGetActualType(newdev)) {
    case VIR_DOMAIN_NET_TYPE_ETHERNET:
    case VIR_DOMAIN_NET_TYPE_BRIDGE:
    case VIR_DOMAIN_NET_TYPE_NETWORK:
        break;
    default:
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("filters not supported on interfaces of type %s"),
                       virDomainNetTypeToString(virDomainNetGetActualType(newdev)));
        return -1;
    }

    virDomainConfNWFilterTeardown(olddev);

1610 1611
    if (newdev->filter &&
        virDomainConfNWFilterInstantiate(conn, vm->def->uuid, newdev) < 0) {
1612 1613 1614 1615 1616 1617 1618 1619 1620 1621 1622 1623 1624 1625 1626
        virErrorPtr errobj;

        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("failed to add new filter rules to '%s' "
                         "- attempting to restore old rules"),
                       olddev->ifname);
        errobj = virSaveLastError();
        ignore_value(virDomainConfNWFilterInstantiate(conn, vm->def->uuid, olddev));
        virSetError(errobj);
        virFreeError(errobj);
        return -1;
    }
    return 0;
}

1627
int qemuDomainChangeNetLinkState(virQEMUDriverPtr driver,
1628 1629 1630 1631 1632 1633 1634 1635 1636 1637
                                 virDomainObjPtr vm,
                                 virDomainNetDefPtr dev,
                                 int linkstate)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;

    VIR_DEBUG("dev: %s, state: %d", dev->info.alias, linkstate);

    if (!dev->info.alias) {
1638 1639
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("can't change link state: device alias not found"));
1640 1641 1642
        return -1;
    }

1643
    qemuDomainObjEnterMonitor(driver, vm);
1644 1645 1646 1647 1648 1649 1650 1651 1652

    ret = qemuMonitorSetLink(priv->mon, dev->info.alias, linkstate);
    if (ret < 0)
        goto cleanup;

    /* modify the device configuration */
    dev->linkstate = linkstate;

cleanup:
1653
    qemuDomainObjExitMonitor(driver, vm);
1654 1655 1656 1657

    return ret;
}

1658
int
1659
qemuDomainChangeNet(virQEMUDriverPtr driver,
1660 1661 1662
                    virDomainObjPtr vm,
                    virDomainPtr dom,
                    virDomainDeviceDefPtr dev)
1663
{
1664 1665 1666 1667 1668 1669
    virDomainNetDefPtr newdev = dev->data.net;
    virDomainNetDefPtr *devslot = qemuDomainFindNet(vm, newdev);
    virDomainNetDefPtr olddev;
    int oldType, newType;
    bool needReconnect = false;
    bool needBridgeChange = false;
1670
    bool needFilterChange = false;
1671 1672 1673
    bool needLinkStateChange = false;
    bool needReplaceDevDef = false;
    int ret = -1;
1674

1675
    if (!devslot || !(olddev = *devslot)) {
1676
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
1677
                       _("cannot find existing network device to modify"));
1678 1679 1680 1681 1682 1683
        goto cleanup;
    }

    oldType = virDomainNetGetActualType(olddev);
    if (oldType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* no changes are possible to a type='hostdev' interface */
1684
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1685 1686 1687 1688 1689 1690 1691 1692 1693 1694 1695 1696 1697 1698 1699 1700 1701 1702 1703 1704 1705 1706
                       _("cannot change config of '%s' network type"),
                       virDomainNetTypeToString(oldType));
        goto cleanup;
    }

    /* Check individual attributes for changes that can't be done to a
     * live netdev. These checks *mostly* go in order of the
     * declarations in virDomainNetDef in order to assure nothing is
     * omitted. (exceptiong where noted in comments - in particular,
     * some things require that a new "actual device" be allocated
     * from the network driver first, but we delay doing that until
     * after we've made as many other checks as possible)
     */

    /* type: this can change (with some restrictions), but the actual
     * type of the new device connection isn't known until after we
     * allocate the "actual" device.
     */

    if (virMacAddrCmp(&olddev->mac, &newdev->mac)) {
        char oldmac[VIR_MAC_STRING_BUFLEN], newmac[VIR_MAC_STRING_BUFLEN];

1707
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1708 1709 1710 1711 1712 1713 1714 1715
                       _("cannot change network interface mac address "
                         "from %s to %s"),
                       virMacAddrFormat(&olddev->mac, oldmac),
                       virMacAddrFormat(&newdev->mac, newmac));
        goto cleanup;
    }

    if (STRNEQ_NULLABLE(olddev->model, newdev->model)) {
1716
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1717 1718 1719 1720
                       _("cannot modify network device model from %s to %s"),
                       olddev->model ? olddev->model : "(default)",
                       newdev->model ? newdev->model : "(default)");
        goto cleanup;
1721 1722
    }

1723 1724 1725 1726 1727
    if (olddev->model && STREQ(olddev->model, "virtio") &&
        (olddev->driver.virtio.name != newdev->driver.virtio.name ||
         olddev->driver.virtio.txmode != newdev->driver.virtio.txmode ||
         olddev->driver.virtio.ioeventfd != newdev->driver.virtio.ioeventfd ||
         olddev->driver.virtio.event_idx != newdev->driver.virtio.event_idx)) {
1728
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1729 1730 1731 1732 1733 1734 1735 1736 1737 1738
                       _("cannot modify virtio network device driver attributes"));
        goto cleanup;
    }

    /* data: this union will be examined later, after allocating new actualdev */
    /* virtPortProfile: will be examined later, after allocating new actualdev */

    if (olddev->tune.sndbuf_specified != newdev->tune.sndbuf_specified ||
        olddev->tune.sndbuf != newdev->tune.sndbuf) {
        needReconnect = true;
1739 1740
    }

1741
    if (STRNEQ_NULLABLE(olddev->script, newdev->script)) {
1742
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1743 1744
                       _("cannot modify network device script attribute"));
        goto cleanup;
1745 1746
    }

1747
    /* ifname: check if it's set in newdev. If not, retain the autogenerated one */
1748
    if (!newdev->ifname && VIR_STRDUP(newdev->ifname, olddev->ifname) < 0)
1749 1750
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->ifname, newdev->ifname)) {
1751
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1752 1753 1754
                       _("cannot modify network device tap name"));
        goto cleanup;
    }
1755

1756 1757 1758 1759 1760 1761 1762 1763 1764 1765 1766 1767 1768
    /* info: if newdev->info is empty, fill it in from olddev,
     * otherwise verify that it matches - nothing is allowed to
     * change. (There is no helper function to do this, so
     * individually check the few feidls of virDomainDeviceInfo that
     * are relevant in this case).
     */
    if (!virDomainDeviceAddressIsValid(&newdev->info,
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) &&
        virDomainDeviceInfoCopy(&newdev->info, &olddev->info) < 0) {
        goto cleanup;
    }
    if (!virDevicePCIAddressEqual(&olddev->info.addr.pci,
                                  &newdev->info.addr.pci)) {
1769
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1770 1771 1772 1773
                       _("cannot modify network device guest PCI address"));
        goto cleanup;
    }
    /* grab alias from olddev if not set in newdev */
1774 1775
    if (!newdev->info.alias &&
        VIR_STRDUP(newdev->info.alias, olddev->info.alias) < 0)
1776 1777
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->info.alias, newdev->info.alias)) {
1778
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1779 1780 1781 1782
                       _("cannot modify network device alias"));
        goto cleanup;
    }
    if (olddev->info.rombar != newdev->info.rombar) {
1783
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1784 1785 1786 1787
                       _("cannot modify network device rom bar setting"));
        goto cleanup;
    }
    if (STRNEQ_NULLABLE(olddev->info.romfile, newdev->info.romfile)) {
1788
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1789 1790 1791 1792
                       _("cannot modify network rom file"));
        goto cleanup;
    }
    if (olddev->info.bootIndex != newdev->info.bootIndex) {
1793
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1794 1795 1796 1797
                       _("cannot modify network device boot index setting"));
        goto cleanup;
    }
    /* (end of device info checks) */
1798

1799 1800 1801 1802
    if (STRNEQ_NULLABLE(olddev->filter, newdev->filter) ||
        !virNWFilterHashTableEqual(olddev->filterparams, newdev->filterparams)) {
        needFilterChange = true;
    }
1803

1804 1805 1806 1807 1808 1809 1810 1811 1812 1813 1814 1815 1816 1817 1818 1819
    /* bandwidth can be modified, and will be checked later */
    /* vlan can be modified, and will be checked later */
    /* linkstate can be modified */

    /* allocate new actual device to compare to old - we will need to
     * free it if we fail for any reason
     */
    if (newdev->type == VIR_DOMAIN_NET_TYPE_NETWORK &&
        networkAllocateActualDevice(newdev) < 0) {
        goto cleanup;
    }

    newType = virDomainNetGetActualType(newdev);

    if (newType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* can't turn it into a type='hostdev' interface */
1820
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1821 1822 1823 1824 1825 1826
                       _("cannot change network interface type to '%s'"),
                       virDomainNetTypeToString(newType));
        goto cleanup;
    }

    if (olddev->type == newdev->type && oldType == newType) {
1827

1828 1829 1830 1831 1832 1833 1834 1835 1836 1837 1838 1839
        /* if type hasn't changed, check the relevant fields for the type */
        switch (newdev->type) {
        case VIR_DOMAIN_NET_TYPE_USER:
            break;

        case VIR_DOMAIN_NET_TYPE_ETHERNET:
            if (STRNEQ_NULLABLE(olddev->data.ethernet.dev,
                                newdev->data.ethernet.dev) ||
                STRNEQ_NULLABLE(olddev->data.ethernet.ipaddr,
                                newdev->data.ethernet.ipaddr)) {
                needReconnect = true;
            }
1840 1841
        break;

1842 1843 1844 1845 1846 1847 1848 1849 1850 1851 1852 1853 1854 1855 1856 1857 1858 1859 1860 1861 1862 1863 1864 1865 1866 1867 1868 1869 1870 1871 1872 1873 1874 1875 1876 1877
        case VIR_DOMAIN_NET_TYPE_SERVER:
        case VIR_DOMAIN_NET_TYPE_CLIENT:
        case VIR_DOMAIN_NET_TYPE_MCAST:
            if (STRNEQ_NULLABLE(olddev->data.socket.address,
                                newdev->data.socket.address) ||
                olddev->data.socket.port != newdev->data.socket.port) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_NETWORK:
            if (STRNEQ(olddev->data.network.name, newdev->data.network.name)) {
                if (virDomainNetGetActualVirtPortProfile(newdev))
                    needReconnect = true;
                else
                    needBridgeChange = true;
            }
            /* other things handled in common code directly below this switch */
            break;

        case VIR_DOMAIN_NET_TYPE_BRIDGE:
            /* all handled in bridge name checked in common code below */
            break;

        case VIR_DOMAIN_NET_TYPE_INTERNAL:
            if (STRNEQ_NULLABLE(olddev->data.internal.name,
                                newdev->data.internal.name)) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_DIRECT:
            /* all handled in common code directly below this switch */
            break;

        default:
1878
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1879 1880 1881
                           _("unable to change config on '%s' network type"),
                           virDomainNetTypeToString(newdev->type));
            break;
1882

1883
        }
1884 1885 1886 1887 1888 1889 1890 1891 1892 1893 1894 1895 1896 1897 1898 1899 1900 1901 1902 1903 1904 1905 1906 1907 1908 1909 1910 1911 1912 1913 1914
    } else {
        /* interface type has changed. There are a few special cases
         * where this can only require a minor (or even no) change,
         * but in most cases we need to do a full reconnection.
         *
         * If we switch (in either direction) between type='bridge'
         * and type='network' (for a traditional managed virtual
         * network that uses a host bridge, i.e. forward
         * mode='route|nat'), we just need to change the bridge.
         */
        if ((oldType == VIR_DOMAIN_NET_TYPE_NETWORK &&
             newType == VIR_DOMAIN_NET_TYPE_BRIDGE) ||
            (oldType == VIR_DOMAIN_NET_TYPE_BRIDGE &&
             newType == VIR_DOMAIN_NET_TYPE_NETWORK)) {

            needBridgeChange = true;

        } else if (oldType == VIR_DOMAIN_NET_TYPE_DIRECT &&
                   newType == VIR_DOMAIN_NET_TYPE_DIRECT) {

            /* this is the case of switching from type='direct' to
             * type='network' for a network that itself uses direct
             * (macvtap) devices. If the physical device and mode are
             * the same, this doesn't require any actual setup
             * change. If the physical device or mode *does* change,
             * that will be caught in the common section below */

        } else {

            /* for all other combinations, we'll need a full reconnect */
            needReconnect = true;
1915 1916

        }
1917
    }
1918

1919 1920 1921 1922 1923 1924 1925 1926 1927 1928 1929
    /* now several things that are in multiple (but not all)
     * different types, and can be safely compared even for those
     * cases where they don't apply to a particular type.
     */
    if (STRNEQ_NULLABLE(virDomainNetGetActualBridgeName(olddev),
                        virDomainNetGetActualBridgeName(newdev))) {
        if (virDomainNetGetActualVirtPortProfile(newdev))
            needReconnect = true;
        else
            needBridgeChange = true;
    }
1930

1931 1932 1933 1934 1935 1936 1937 1938 1939 1940
    if (STRNEQ_NULLABLE(virDomainNetGetActualDirectDev(olddev),
                        virDomainNetGetActualDirectDev(newdev)) ||
        virDomainNetGetActualDirectMode(olddev) != virDomainNetGetActualDirectMode(olddev) ||
        !virNetDevVPortProfileEqual(virDomainNetGetActualVirtPortProfile(olddev),
                                    virDomainNetGetActualVirtPortProfile(newdev)) ||
        !virNetDevBandwidthEqual(virDomainNetGetActualBandwidth(olddev),
                                 virDomainNetGetActualBandwidth(newdev)) ||
        !virNetDevVlanEqual(virDomainNetGetActualVlan(olddev),
                            virDomainNetGetActualVlan(newdev))) {
        needReconnect = true;
1941 1942
    }

1943 1944 1945 1946 1947 1948
    if (olddev->linkstate != newdev->linkstate)
        needLinkStateChange = true;

    /* FINALLY - actually perform the required actions */

    if (needReconnect) {
1949
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1950 1951 1952
                       _("unable to change config on '%s' network type"),
                       virDomainNetTypeToString(newdev->type));
        goto cleanup;
1953 1954
    }

1955 1956 1957 1958 1959
    if (needBridgeChange) {
        if (qemuDomainChangeNetBridge(dom->conn, vm, olddev, newdev) < 0)
            goto cleanup;
        /* we successfully switched to the new bridge, and we've
         * determined that the rest of newdev is equivalent to olddev,
1960 1961 1962 1963 1964 1965 1966 1967 1968 1969
         * so move newdev into place */
        needReplaceDevDef = true;
    }

    if (needFilterChange) {
        if (qemuDomainChangeNetFilter(dom->conn, vm, olddev, newdev) < 0)
            goto cleanup;
        /* we successfully switched to the new filter, and we've
         * determined that the rest of newdev is equivalent to olddev,
         * so move newdev into place */
1970
        needReplaceDevDef = true;
1971 1972
    }

1973 1974 1975
    if (needLinkStateChange &&
        qemuDomainChangeNetLinkState(driver, vm, olddev, newdev->linkstate) < 0) {
        goto cleanup;
1976 1977
    }

1978 1979 1980 1981 1982 1983 1984 1985 1986 1987 1988 1989 1990
    if (needReplaceDevDef) {
        /* the changes above warrant replacing olddev with newdev in
         * the domain's nets list.
         */
        networkReleaseActualDevice(olddev);
        virDomainNetDefFree(olddev);
        /* move newdev into the nets list, and NULL it out from the
         * virDomainDeviceDef that we were given so that the caller
         * won't delete it on return.
         */
        *devslot = newdev;
        newdev = dev->data.net = NULL;
        dev->type = VIR_DOMAIN_DEVICE_NONE;
1991 1992
    }

1993 1994 1995 1996 1997 1998 1999 2000 2001 2002 2003 2004 2005 2006 2007 2008 2009 2010 2011 2012 2013 2014 2015
    ret = 0;
cleanup:
    /* When we get here, we will be in one of these two states:
     *
     * 1) newdev has been moved into the domain's list of nets and
     *    newdev set to NULL, and dev->data.net will be NULL (and
     *    dev->type is NONE). olddev will have been completely
     *    released and freed. (aka success) In this case no extra
     *    cleanup is needed.
     *
     * 2) newdev has *not* been moved into the domain's list of nets,
     *    and dev->data.net == newdev (and dev->type == NET). In this *
     *    case, we need to at least release the "actual device" from *
     *    newdev (the caller will free dev->data.net a.k.a. newdev, and
     *    the original olddev is still in used)
     *
     * Note that case (2) isn't necessarily a failure. It may just be
     * that the changes were minor enough that we didn't need to
     * replace the entire device object.
     */
    if (newdev)
        networkReleaseActualDevice(newdev);

2016 2017 2018 2019
    return ret;
}


2020 2021 2022 2023

static virDomainGraphicsDefPtr qemuDomainFindGraphics(virDomainObjPtr vm,
                                                      virDomainGraphicsDefPtr dev)
{
2024
    size_t i;
2025

2026
    for (i = 0; i < vm->def->ngraphics; i++) {
2027 2028 2029 2030 2031 2032 2033 2034 2035
        if (vm->def->graphics[i]->type == dev->type)
            return vm->def->graphics[i];
    }

    return NULL;
}


int
2036
qemuDomainChangeGraphics(virQEMUDriverPtr driver,
2037 2038 2039 2040 2041
                         virDomainObjPtr vm,
                         virDomainGraphicsDefPtr dev)
{
    virDomainGraphicsDefPtr olddev = qemuDomainFindGraphics(vm, dev);
    int ret = -1;
2042
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
2043
    size_t i;
2044 2045

    if (!olddev) {
2046 2047
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("cannot find existing graphics device to modify"));
2048
        goto cleanup;
2049 2050
    }

2051 2052 2053 2054 2055 2056 2057
    if (dev->nListens != olddev->nListens) {
        virReportError(VIR_ERR_INVALID_ARG, "%s",
                       _("cannot change the number of listen addresses"));
        goto cleanup;
    }

    for (i = 0; i < dev->nListens; i++) {
J
Jim Fehlig 已提交
2058
        virDomainGraphicsListenDefPtr newlisten = &dev->listens[i];
2059 2060
        virDomainGraphicsListenDefPtr oldlisten = &olddev->listens[i];

J
Jim Fehlig 已提交
2061
        if (newlisten->type != oldlisten->type) {
2062 2063 2064 2065 2066
            virReportError(VIR_ERR_INVALID_ARG, "%s",
                           _("cannot change the type of listen address"));
            goto cleanup;
        }

J
Jim Fehlig 已提交
2067
        switch ((enum virDomainGraphicsListenType) newlisten->type) {
2068
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_ADDRESS:
J
Jim Fehlig 已提交
2069
            if (STRNEQ_NULLABLE(newlisten->address, oldlisten->address)) {
2070 2071 2072 2073 2074 2075 2076 2077 2078
                virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                               dev->type == VIR_DOMAIN_GRAPHICS_TYPE_VNC ?
                               _("cannot change listen address setting on vnc graphics") :
                               _("cannot change listen address setting on spice graphics"));
                goto cleanup;
            }
            break;

        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NETWORK:
J
Jim Fehlig 已提交
2079
            if (STRNEQ_NULLABLE(newlisten->network, oldlisten->network)) {
2080 2081 2082 2083 2084 2085 2086 2087 2088 2089 2090 2091 2092 2093
                virReportError(VIR_ERR_INVALID_ARG, "%s",
                               dev->type == VIR_DOMAIN_GRAPHICS_TYPE_VNC ?
                           _("cannot change listen network setting on vnc graphics") :
                           _("cannot change listen network setting on spice graphics"));
                goto cleanup;
            }
            break;

        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NONE:
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_LAST:
            /* nada */
            break;
        }
    }
2094

2095 2096 2097
    switch (dev->type) {
    case VIR_DOMAIN_GRAPHICS_TYPE_VNC:
        if ((olddev->data.vnc.autoport != dev->data.vnc.autoport) ||
E
Eric Blake 已提交
2098 2099
            (!dev->data.vnc.autoport &&
             (olddev->data.vnc.port != dev->data.vnc.port))) {
2100 2101
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("cannot change port settings on vnc graphics"));
2102
            goto cleanup;
2103 2104
        }
        if (STRNEQ_NULLABLE(olddev->data.vnc.keymap, dev->data.vnc.keymap)) {
2105 2106
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("cannot change keymap setting on vnc graphics"));
2107
            goto cleanup;
2108 2109
        }

2110 2111 2112
        /* If a password lifetime was, or is set, or action if connected has
         * changed, then we must always run, even if new password matches
         * old password */
2113 2114
        if (olddev->data.vnc.auth.expires ||
            dev->data.vnc.auth.expires ||
2115
            olddev->data.vnc.auth.connected != dev->data.vnc.auth.connected ||
E
Eric Blake 已提交
2116 2117 2118
            STRNEQ_NULLABLE(olddev->data.vnc.auth.passwd,
                            dev->data.vnc.auth.passwd)) {
            VIR_DEBUG("Updating password on VNC server %p %p",
2119
                      dev->data.vnc.auth.passwd, cfg->vncPassword);
E
Eric Blake 已提交
2120 2121 2122
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_VNC,
                                                    &dev->data.vnc.auth,
2123
                                                    cfg->vncPassword);
2124
            if (ret < 0)
2125
                goto cleanup;
2126 2127 2128 2129 2130

            /* Steal the new dev's  char * reference */
            VIR_FREE(olddev->data.vnc.auth.passwd);
            olddev->data.vnc.auth.passwd = dev->data.vnc.auth.passwd;
            dev->data.vnc.auth.passwd = NULL;
2131 2132
            olddev->data.vnc.auth.validTo = dev->data.vnc.auth.validTo;
            olddev->data.vnc.auth.expires = dev->data.vnc.auth.expires;
2133
            olddev->data.vnc.auth.connected = dev->data.vnc.auth.connected;
2134 2135 2136 2137 2138
        } else {
            ret = 0;
        }
        break;

2139 2140
    case VIR_DOMAIN_GRAPHICS_TYPE_SPICE:
        if ((olddev->data.spice.autoport != dev->data.spice.autoport) ||
E
Eric Blake 已提交
2141 2142 2143 2144
            (!dev->data.spice.autoport &&
             (olddev->data.spice.port != dev->data.spice.port)) ||
            (!dev->data.spice.autoport &&
             (olddev->data.spice.tlsPort != dev->data.spice.tlsPort))) {
2145 2146
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("cannot change port settings on spice graphics"));
2147
            goto cleanup;
2148
        }
E
Eric Blake 已提交
2149 2150
        if (STRNEQ_NULLABLE(olddev->data.spice.keymap,
                            dev->data.spice.keymap)) {
2151
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
2152
                            _("cannot change keymap setting on spice graphics"));
2153
            goto cleanup;
2154 2155
        }

2156 2157 2158 2159 2160
        /* We must reset the password if it has changed but also if:
         * - password lifetime is or was set
         * - the requested action has changed
         * - the action is "disconnect"
         */
2161 2162
        if (olddev->data.spice.auth.expires ||
            dev->data.spice.auth.expires ||
2163
            olddev->data.spice.auth.connected != dev->data.spice.auth.connected ||
2164 2165
            dev->data.spice.auth.connected ==
            VIR_DOMAIN_GRAPHICS_AUTH_CONNECTED_DISCONNECT ||
E
Eric Blake 已提交
2166 2167 2168
            STRNEQ_NULLABLE(olddev->data.spice.auth.passwd,
                            dev->data.spice.auth.passwd)) {
            VIR_DEBUG("Updating password on SPICE server %p %p",
2169
                      dev->data.spice.auth.passwd, cfg->spicePassword);
E
Eric Blake 已提交
2170 2171 2172
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_SPICE,
                                                    &dev->data.spice.auth,
2173
                                                    cfg->spicePassword);
E
Eric Blake 已提交
2174

2175
            if (ret < 0)
2176
                goto cleanup;
2177

E
Eric Blake 已提交
2178
            /* Steal the new dev's char * reference */
2179 2180 2181 2182 2183
            VIR_FREE(olddev->data.spice.auth.passwd);
            olddev->data.spice.auth.passwd = dev->data.spice.auth.passwd;
            dev->data.spice.auth.passwd = NULL;
            olddev->data.spice.auth.validTo = dev->data.spice.auth.validTo;
            olddev->data.spice.auth.expires = dev->data.spice.auth.expires;
2184
            olddev->data.spice.auth.connected = dev->data.spice.auth.connected;
2185
        } else {
2186
            VIR_DEBUG("Not updating since password didn't change");
2187 2188
            ret = 0;
        }
E
Eric Blake 已提交
2189
        break;
2190

2191
    default:
2192 2193 2194
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("unable to change config on '%s' graphics type"),
                       virDomainGraphicsTypeToString(dev->type));
2195 2196 2197
        break;
    }

2198 2199
cleanup:
    virObjectUnref(cfg);
2200 2201 2202 2203
    return ret;
}


2204
static int qemuComparePCIDevice(virDomainDefPtr def ATTRIBUTE_UNUSED,
2205
                                virDomainDeviceDefPtr device ATTRIBUTE_UNUSED,
2206
                                virDomainDeviceInfoPtr info1,
2207 2208
                                void *opaque)
{
2209
    virDomainDeviceInfoPtr info2 = opaque;
2210

2211 2212
    if (info1->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI ||
        info2->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)
2213 2214
        return 0;

2215 2216 2217
    if (info1->addr.pci.domain == info2->addr.pci.domain &&
        info1->addr.pci.bus == info2->addr.pci.bus &&
        info1->addr.pci.slot == info2->addr.pci.slot &&
2218
        info1->addr.pci.function != info2->addr.pci.function)
2219 2220 2221 2222 2223 2224 2225 2226 2227 2228 2229 2230
        return -1;
    return 0;
}

static bool qemuIsMultiFunctionDevice(virDomainDefPtr def,
                                      virDomainDeviceInfoPtr dev)
{
    if (virDomainDeviceInfoIterate(def, qemuComparePCIDevice, dev) < 0)
        return true;
    return false;
}

2231

2232 2233 2234 2235 2236 2237
static void
qemuDomainRemoveDiskDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainDiskDefPtr disk)
{
    virDomainDeviceDef dev;
2238
    virDomainEventPtr event;
2239 2240 2241 2242 2243 2244 2245
    size_t i;

    VIR_DEBUG("Removing disk %s from domain %p %s",
              disk->info.alias, vm, vm->def->name);

    virDomainAuditDisk(vm, disk->src, NULL, "detach", true);

2246 2247 2248 2249
    event = virDomainEventDeviceRemovedNewFromObj(vm, disk->info.alias);
    if (event)
        qemuDomainEventQueue(driver, event);

2250 2251 2252 2253 2254 2255 2256 2257 2258 2259 2260 2261 2262 2263 2264 2265 2266 2267 2268 2269 2270 2271 2272 2273 2274 2275 2276
    for (i = 0; i < vm->def->ndisks; i++) {
        if (vm->def->disks[i] == disk) {
            virDomainDiskRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &disk->info, disk->src);

    if (virSecurityManagerRestoreImageLabel(driver->securityManager,
                                            vm->def, disk) < 0)
        VIR_WARN("Unable to restore security label on %s", disk->src);

    if (qemuTeardownDiskCgroup(vm, disk) < 0)
        VIR_WARN("Failed to tear down cgroup for disk path %s", disk->src);

    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s", disk->src);

    dev.type = VIR_DOMAIN_DEVICE_DISK;
    dev.data.disk = disk;
    ignore_value(qemuRemoveSharedDevice(driver, &dev, vm->def->name));

    virDomainDiskDefFree(disk);
}


2277
static void
2278
qemuDomainRemoveControllerDevice(virQEMUDriverPtr driver,
2279 2280 2281
                                 virDomainObjPtr vm,
                                 virDomainControllerDefPtr controller)
{
2282
    virDomainEventPtr event;
2283 2284 2285 2286 2287
    size_t i;

    VIR_DEBUG("Removing controller %s from domain %p %s",
              controller->info.alias, vm, vm->def->name);

2288 2289 2290 2291
    event = virDomainEventDeviceRemovedNewFromObj(vm, controller->info.alias);
    if (event)
        qemuDomainEventQueue(driver, event);

2292 2293 2294 2295 2296 2297 2298 2299 2300 2301 2302 2303
    for (i = 0; i < vm->def->ncontrollers; i++) {
        if (vm->def->controllers[i] == controller) {
            virDomainControllerRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
    virDomainControllerDefFree(controller);
}


2304 2305 2306 2307 2308 2309 2310
static void
qemuDomainRemoveNetDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr net)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    virNetDevVPortProfilePtr vport;
2311
    virDomainEventPtr event;
2312 2313 2314 2315 2316 2317 2318
    size_t i;

    VIR_DEBUG("Removing network interface %s from domain %p %s",
              net->info.alias, vm, vm->def->name);

    virDomainAuditNet(vm, net, NULL, "detach", true);

2319 2320 2321 2322
    event = virDomainEventDeviceRemovedNewFromObj(vm, net->info.alias);
    if (event)
        qemuDomainEventQueue(driver, event);

2323 2324 2325 2326 2327 2328 2329 2330 2331 2332 2333 2334 2335 2336 2337 2338 2339 2340 2341 2342 2343 2344 2345 2346 2347 2348 2349 2350 2351 2352 2353 2354 2355 2356 2357 2358 2359 2360 2361 2362 2363 2364
    for (i = 0; i < vm->def->nnets; i++) {
        if (vm->def->nets[i] == net) {
            virDomainNetRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
    virDomainConfNWFilterTeardown(net);

    if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_DIRECT) {
        ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                         net->ifname, &net->mac,
                         virDomainNetGetActualDirectDev(net),
                         virDomainNetGetActualDirectMode(net),
                         virDomainNetGetActualVirtPortProfile(net),
                         cfg->stateDir));
        VIR_FREE(net->ifname);
    }

    if (cfg->macFilter && (net->ifname != NULL)) {
        if ((errno = networkDisallowMacOnPort(driver,
                                              net->ifname,
                                              &net->mac))) {
            virReportSystemError(errno,
             _("failed to remove ebtables rule on '%s'"),
                                 net->ifname);
        }
    }

    vport = virDomainNetGetActualVirtPortProfile(net);
    if (vport && vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH)
        ignore_value(virNetDevOpenvswitchRemovePort(
                        virDomainNetGetActualBridgeName(net),
                        net->ifname));

    networkReleaseActualDevice(net);
    virDomainNetDefFree(net);
    virObjectUnref(cfg);
}


2365 2366 2367 2368 2369 2370 2371 2372 2373 2374 2375 2376 2377 2378 2379 2380 2381 2382 2383 2384 2385 2386 2387 2388 2389 2390 2391 2392 2393 2394 2395 2396 2397 2398 2399 2400 2401 2402 2403 2404 2405 2406 2407 2408 2409 2410 2411 2412 2413 2414 2415 2416 2417 2418 2419 2420 2421 2422 2423 2424 2425 2426 2427 2428 2429 2430 2431 2432 2433 2434 2435 2436 2437 2438
static void
qemuDomainRemovePCIHostDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    virDomainHostdevSubsysPtr subsys = &hostdev->source.subsys;
    virPCIDevicePtr pci;
    virPCIDevicePtr activePci;

    /*
     * For SRIOV net host devices, unset mac and port profile before
     * reset and reattach device
     */
    if (hostdev->parent.data.net)
        qemuDomainHostdevNetConfigRestore(hostdev, cfg->stateDir);

    virObjectLock(driver->activePciHostdevs);
    virObjectLock(driver->inactivePciHostdevs);
    pci = virPCIDeviceNew(subsys->u.pci.addr.domain, subsys->u.pci.addr.bus,
                          subsys->u.pci.addr.slot, subsys->u.pci.addr.function);
    if (pci) {
        activePci = virPCIDeviceListSteal(driver->activePciHostdevs, pci);
        if (activePci &&
            virPCIDeviceReset(activePci, driver->activePciHostdevs,
                              driver->inactivePciHostdevs) == 0) {
            qemuReattachPciDevice(activePci, driver);
        } else {
            /* reset of the device failed, treat it as if it was returned */
            virPCIDeviceFree(activePci);
        }
        virPCIDeviceFree(pci);
    }
    virObjectUnlock(driver->activePciHostdevs);
    virObjectUnlock(driver->inactivePciHostdevs);

    qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
    virObjectUnref(cfg);
}

static void
qemuDomainRemoveUSBHostDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm ATTRIBUTE_UNUSED,
                              virDomainHostdevDefPtr hostdev)
{
    virDomainHostdevSubsysPtr subsys = &hostdev->source.subsys;
    virUSBDevicePtr usb;

    usb = virUSBDeviceNew(subsys->u.usb.bus, subsys->u.usb.device, NULL);
    if (usb) {
        virObjectLock(driver->activeUsbHostdevs);
        virUSBDeviceListDel(driver->activeUsbHostdevs, usb);
        virObjectUnlock(driver->activeUsbHostdevs);
        virUSBDeviceFree(usb);
    } else {
        VIR_WARN("Unable to find device %03d.%03d in list of used USB devices",
                 subsys->u.usb.bus, subsys->u.usb.device);
    }
}

static void
qemuDomainRemoveSCSIHostDevice(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
    qemuDomainReAttachHostScsiDevices(driver, vm->def->name, &hostdev, 1);
}

static void
qemuDomainRemoveHostDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainHostdevDefPtr hostdev)
{
    virDomainNetDefPtr net = NULL;
2439
    virDomainEventPtr event;
2440 2441 2442 2443 2444
    size_t i;

    VIR_DEBUG("Removing host device %s from domain %p %s",
              hostdev->info->alias, vm, vm->def->name);

2445 2446 2447 2448
    event = virDomainEventDeviceRemovedNewFromObj(vm, hostdev->info->alias);
    if (event)
        qemuDomainEventQueue(driver, event);

2449 2450 2451 2452 2453 2454 2455 2456 2457 2458 2459 2460 2461 2462 2463 2464 2465 2466 2467 2468 2469 2470 2471 2472 2473 2474 2475 2476 2477 2478 2479 2480 2481 2482 2483 2484 2485 2486 2487 2488 2489 2490 2491 2492 2493 2494 2495 2496 2497 2498 2499
    if (hostdev->parent.type == VIR_DOMAIN_DEVICE_NET) {
        net = hostdev->parent.data.net;

        for (i = 0; i < vm->def->nnets; i++) {
            if (vm->def->nets[i] == net) {
                virDomainNetRemove(vm->def, i);
                break;
            }
        }
    }

    for (i = 0; i < vm->def->nhostdevs; i++) {
        if (vm->def->hostdevs[i] == hostdev) {
            virDomainHostdevRemove(vm->def, i);
            break;
        }
    }

    virDomainAuditHostdev(vm, hostdev, "detach", true);

    switch ((enum virDomainHostdevSubsysType) hostdev->source.subsys.type) {
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
        qemuDomainRemovePCIHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
        qemuDomainRemoveUSBHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
        qemuDomainRemoveSCSIHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_LAST:
        break;
    }

    if (qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Failed to remove host device cgroup ACL");

    if (virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                              vm->def, hostdev, NULL) < 0) {
        VIR_WARN("Failed to restore host device labelling");
    }

    virDomainHostdevDefFree(hostdev);

    if (net) {
        networkReleaseActualDevice(net);
        virDomainNetDefFree(net);
    }
}


2500
static void
2501
qemuDomainRemoveChrDevice(virQEMUDriverPtr driver,
2502 2503 2504
                          virDomainObjPtr vm,
                          virDomainChrDefPtr chr)
{
2505 2506
    virDomainEventPtr event;

2507 2508 2509
    VIR_DEBUG("Removing character device %s from domain %p %s",
              chr->info.alias, vm, vm->def->name);

2510 2511 2512 2513
    event = virDomainEventDeviceRemovedNewFromObj(vm, chr->info.alias);
    if (event)
        qemuDomainEventQueue(driver, event);

2514 2515 2516 2517 2518
    qemuDomainChrRemove(vm->def, chr);
    virDomainChrDefFree(chr);
}


2519 2520 2521 2522 2523 2524 2525 2526 2527 2528 2529 2530 2531 2532 2533 2534 2535 2536 2537 2538 2539 2540 2541 2542 2543 2544 2545 2546 2547 2548 2549 2550 2551 2552 2553 2554 2555 2556 2557 2558 2559 2560 2561 2562 2563 2564 2565 2566 2567 2568 2569 2570 2571 2572 2573 2574 2575 2576 2577 2578 2579 2580 2581 2582 2583 2584 2585 2586 2587 2588 2589 2590 2591 2592 2593 2594 2595 2596 2597 2598 2599 2600 2601 2602 2603 2604 2605 2606 2607 2608 2609 2610 2611 2612 2613 2614 2615 2616 2617 2618 2619 2620 2621 2622 2623 2624 2625 2626 2627 2628 2629 2630 2631 2632 2633 2634
void
qemuDomainRemoveDevice(virQEMUDriverPtr driver,
                       virDomainObjPtr vm,
                       virDomainDeviceDefPtr dev)
{
    switch ((virDomainDeviceType) dev->type) {
    case VIR_DOMAIN_DEVICE_DISK:
        qemuDomainRemoveDiskDevice(driver, vm, dev->data.disk);
        break;
    case VIR_DOMAIN_DEVICE_CONTROLLER:
        qemuDomainRemoveControllerDevice(driver, vm, dev->data.controller);
        break;
    case VIR_DOMAIN_DEVICE_NET:
        qemuDomainRemoveNetDevice(driver, vm, dev->data.net);
        break;
    case VIR_DOMAIN_DEVICE_HOSTDEV:
        qemuDomainRemoveHostDevice(driver, vm, dev->data.hostdev);
        break;

    case VIR_DOMAIN_DEVICE_CHR:
        qemuDomainRemoveChrDevice(driver, vm, dev->data.chr);
        break;

    case VIR_DOMAIN_DEVICE_NONE:
    case VIR_DOMAIN_DEVICE_LEASE:
    case VIR_DOMAIN_DEVICE_FS:
    case VIR_DOMAIN_DEVICE_INPUT:
    case VIR_DOMAIN_DEVICE_SOUND:
    case VIR_DOMAIN_DEVICE_VIDEO:
    case VIR_DOMAIN_DEVICE_WATCHDOG:
    case VIR_DOMAIN_DEVICE_GRAPHICS:
    case VIR_DOMAIN_DEVICE_HUB:
    case VIR_DOMAIN_DEVICE_REDIRDEV:
    case VIR_DOMAIN_DEVICE_SMARTCARD:
    case VIR_DOMAIN_DEVICE_MEMBALLOON:
    case VIR_DOMAIN_DEVICE_NVRAM:
    case VIR_DOMAIN_DEVICE_RNG:
    case VIR_DOMAIN_DEVICE_LAST:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("don't know how to remove a %s device"),
                       virDomainDeviceTypeToString(dev->type));
        break;
    }
}


/* Wait up to 5 seconds for device removal to finish. */
#define QEMU_REMOVAL_WAIT_TIME (1000ull * 5)

static void
qemuDomainMarkDeviceForRemoval(virDomainObjPtr vm,
                               virDomainDeviceInfoPtr info)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
        priv->unpluggingDevice = info->alias;
    else
        priv->unpluggingDevice = NULL;
}

static void
qemuDomainResetDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    priv->unpluggingDevice = NULL;
}

/* Returns:
 *  -1 on error
 *   0 when DEVICE_DELETED event is unsupported
 *   1 when device removal finished
 *   2 device removal did not finish in QEMU_REMOVAL_WAIT_TIME
 */
static int
qemuDomainWaitForDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    unsigned long long until;

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
        return 0;

    if (virTimeMillisNow(&until) < 0)
        return -1;
    until += QEMU_REMOVAL_WAIT_TIME;

    while (priv->unpluggingDevice) {
        if (virCondWaitUntil(&priv->unplugFinished,
                             &vm->parent.lock, until) < 0) {
            if (errno == ETIMEDOUT) {
                return 2;
            } else {
                virReportSystemError(errno, "%s",
                                     _("Unable to wait on unplug condition"));
                return -1;
            }
        }
    }

    return 1;
}

void
qemuDomainSignalDeviceRemoval(virDomainObjPtr vm,
                              const char *devAlias)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

    if (STREQ_NULLABLE(priv->unpluggingDevice, devAlias)) {
        qemuDomainResetDeviceRemoval(vm);
        virCondSignal(&priv->unplugFinished);
    }
}


2635 2636
int qemuDomainDetachVirtioDiskDevice(virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
2637
                                     virDomainDiskDefPtr detach)
2638
{
2639
    int ret = -1;
2640 2641 2642
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drivestr = NULL;

2643
    if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
2644 2645
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
2646
                       detach->dst);
2647 2648 2649
        goto cleanup;
    }

2650 2651 2652 2653 2654 2655 2656 2657 2658 2659 2660 2661 2662 2663 2664
    if (STREQLEN(vm->def->os.machine, "s390-ccw", 8) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid PCI address"));
            goto cleanup;
        }
2665 2666 2667 2668 2669
    }

    /* build the actual drive id string as the disk->info.alias doesn't
     * contain the QEMU_DRIVE_HOST_PREFIX that is passed to qemu */
    if (virAsprintf(&drivestr, "%s%s",
2670
                    QEMU_DRIVE_HOST_PREFIX, detach->info.alias) < 0)
2671 2672
        goto cleanup;

2673 2674
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

2675
    qemuDomainObjEnterMonitor(driver, vm);
2676
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
2677
        if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
2678
            qemuDomainObjExitMonitor(driver, vm);
2679
            virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
2680 2681 2682 2683 2684
            goto cleanup;
        }
    } else {
        if (qemuMonitorRemovePCIDevice(priv->mon,
                                       &detach->info.addr.pci) < 0) {
2685
            qemuDomainObjExitMonitor(driver, vm);
2686
            virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
2687 2688 2689 2690 2691 2692 2693
            goto cleanup;
        }
    }

    /* disconnect guest from host device */
    qemuMonitorDriveDel(priv->mon, drivestr);

2694
    qemuDomainObjExitMonitor(driver, vm);
2695

2696 2697
    if (!qemuDomainWaitForDeviceRemoval(vm))
        qemuDomainRemoveDiskDevice(driver, vm, detach);
2698 2699 2700
    ret = 0;

cleanup:
2701
    qemuDomainResetDeviceRemoval(vm);
2702 2703 2704 2705
    VIR_FREE(drivestr);
    return ret;
}

2706
int qemuDomainDetachDiskDevice(virQEMUDriverPtr driver,
2707
                               virDomainObjPtr vm,
2708
                               virDomainDiskDefPtr detach)
2709
{
2710
    int ret = -1;
2711 2712 2713
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drivestr = NULL;

2714
    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
2715 2716
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("Underlying qemu does not support %s disk removal"),
2717
                       virDomainDiskBusTypeToString(detach->bus));
2718 2719 2720
        goto cleanup;
    }

E
Eric Blake 已提交
2721 2722 2723 2724 2725 2726 2727
    if (detach->mirror) {
        virReportError(VIR_ERR_BLOCK_COPY_ACTIVE,
                       _("disk '%s' is in an active block copy job"),
                       detach->dst);
        goto cleanup;
    }

2728 2729 2730
    /* build the actual drive id string as the disk->info.alias doesn't
     * contain the QEMU_DRIVE_HOST_PREFIX that is passed to qemu */
    if (virAsprintf(&drivestr, "%s%s",
2731
                    QEMU_DRIVE_HOST_PREFIX, detach->info.alias) < 0)
2732 2733
        goto cleanup;

2734 2735
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

2736
    qemuDomainObjEnterMonitor(driver, vm);
2737
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
2738
        qemuDomainObjExitMonitor(driver, vm);
2739
        virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
2740 2741 2742 2743 2744 2745
        goto cleanup;
    }

    /* disconnect guest from host device */
    qemuMonitorDriveDel(priv->mon, drivestr);

2746
    qemuDomainObjExitMonitor(driver, vm);
2747

2748 2749
    if (!qemuDomainWaitForDeviceRemoval(vm))
        qemuDomainRemoveDiskDevice(driver, vm, detach);
2750 2751 2752
    ret = 0;

cleanup:
2753
    qemuDomainResetDeviceRemoval(vm);
2754 2755 2756 2757
    VIR_FREE(drivestr);
    return ret;
}

2758 2759 2760
static bool qemuDomainDiskControllerIsBusy(virDomainObjPtr vm,
                                           virDomainControllerDefPtr detach)
{
2761
    size_t i;
2762 2763 2764 2765 2766 2767 2768 2769 2770 2771 2772 2773 2774 2775 2776 2777 2778 2779 2780 2781 2782 2783 2784 2785 2786 2787 2788 2789 2790 2791 2792 2793 2794 2795 2796 2797 2798 2799 2800 2801 2802 2803 2804 2805 2806 2807
    virDomainDiskDefPtr disk;

    for (i = 0; i < vm->def->ndisks; i++) {
        disk = vm->def->disks[i];
        if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE)
            /* the disk does not use disk controller */
            continue;

        /* check whether the disk uses this type controller */
        if (disk->bus == VIR_DOMAIN_DISK_BUS_IDE &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_IDE)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_FDC &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_FDC)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (disk->info.addr.drive.controller == detach->idx)
            return true;
    }

    return false;
}

static bool qemuDomainControllerIsBusy(virDomainObjPtr vm,
                                       virDomainControllerDefPtr detach)
{
    switch (detach->type) {
    case VIR_DOMAIN_CONTROLLER_TYPE_IDE:
    case VIR_DOMAIN_CONTROLLER_TYPE_FDC:
    case VIR_DOMAIN_CONTROLLER_TYPE_SCSI:
        return qemuDomainDiskControllerIsBusy(vm, detach);

    case VIR_DOMAIN_CONTROLLER_TYPE_SATA:
    case VIR_DOMAIN_CONTROLLER_TYPE_VIRTIO_SERIAL:
    case VIR_DOMAIN_CONTROLLER_TYPE_CCID:
    default:
        /* libvirt does not support sata controller, and does not support to
         * detach virtio and smart card controller.
         */
        return true;
    }
}

2808
int qemuDomainDetachPciControllerDevice(virQEMUDriverPtr driver,
2809
                                        virDomainObjPtr vm,
2810
                                        virDomainDeviceDefPtr dev)
2811
{
2812
    int idx, ret = -1;
2813 2814 2815
    virDomainControllerDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;

2816 2817 2818
    if ((idx = virDomainControllerFind(vm->def,
                                       dev->data.controller->type,
                                       dev->data.controller->idx)) < 0) {
2819
        virReportError(VIR_ERR_OPERATION_FAILED,
2820
                       _("controller %s:%d not found"),
2821 2822
                       virDomainControllerTypeToString(dev->data.controller->type),
                       dev->data.controller->idx);
2823 2824 2825
        goto cleanup;
    }

2826 2827
    detach = vm->def->controllers[idx];

2828 2829
    if (!virDomainDeviceAddressIsValid(&detach->info,
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
2830 2831
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("device cannot be detached without a PCI address"));
2832 2833 2834
        goto cleanup;
    }

2835
    if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
2836 2837 2838
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
                       dev->data.disk->dst);
2839 2840 2841
        goto cleanup;
    }

2842
    if (qemuDomainControllerIsBusy(vm, detach)) {
2843 2844
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("device cannot be detached: device is busy"));
2845 2846 2847
        goto cleanup;
    }

2848
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
2849 2850 2851 2852
        if (qemuAssignDeviceControllerAlias(detach) < 0)
            goto cleanup;
    }

2853 2854
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

2855
    qemuDomainObjEnterMonitor(driver, vm);
2856
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
2857
        if (qemuMonitorDelDevice(priv->mon, detach->info.alias)) {
2858
            qemuDomainObjExitMonitor(driver, vm);
2859 2860 2861 2862 2863
            goto cleanup;
        }
    } else {
        if (qemuMonitorRemovePCIDevice(priv->mon,
                                       &detach->info.addr.pci) < 0) {
2864
            qemuDomainObjExitMonitor(driver, vm);
2865 2866 2867
            goto cleanup;
        }
    }
2868
    qemuDomainObjExitMonitor(driver, vm);
2869

2870 2871
    if (!qemuDomainWaitForDeviceRemoval(vm))
        qemuDomainRemoveControllerDevice(driver, vm, detach);
2872 2873 2874 2875

    ret = 0;

cleanup:
2876
    qemuDomainResetDeviceRemoval(vm);
2877 2878 2879
    return ret;
}

2880
static int
2881
qemuDomainDetachHostPciDevice(virQEMUDriverPtr driver,
2882
                              virDomainObjPtr vm,
2883
                              virDomainHostdevDefPtr detach)
2884 2885
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
2886
    virDomainHostdevSubsysPtr subsys = &detach->source.subsys;
2887
    int ret;
2888

2889
    if (qemuIsMultiFunctionDevice(vm->def, detach->info)) {
2890 2891
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %.4x:%.2x:%.2x.%.1x"),
2892 2893
                       subsys->u.pci.addr.domain, subsys->u.pci.addr.bus,
                       subsys->u.pci.addr.slot, subsys->u.pci.addr.function);
2894
        return -1;
2895 2896
    }

2897
    if (!virDomainDeviceAddressIsValid(detach->info,
2898
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
2899 2900
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a PCI address"));
2901
        return -1;
2902 2903
    }

2904 2905
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

2906
    qemuDomainObjEnterMonitor(driver, vm);
2907
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
2908
        ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
2909
    } else {
2910
        ret = qemuMonitorRemovePCIDevice(priv->mon, &detach->info->addr.pci);
2911
    }
2912
    qemuDomainObjExitMonitor(driver, vm);
2913 2914 2915 2916

    return ret;
}

2917
static int
2918
qemuDomainDetachHostUsbDevice(virQEMUDriverPtr driver,
2919
                              virDomainObjPtr vm,
2920
                              virDomainHostdevDefPtr detach)
2921 2922
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
2923
    int ret;
2924

2925
    if (!detach->info->alias) {
2926 2927
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
2928 2929 2930
        return -1;
    }

2931
    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
2932 2933
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached with this QEMU version"));
2934 2935 2936
        return -1;
    }

2937 2938
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

2939
    qemuDomainObjEnterMonitor(driver, vm);
2940
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
2941
    qemuDomainObjExitMonitor(driver, vm);
2942 2943 2944 2945

    return ret;
}

2946 2947 2948 2949 2950 2951 2952 2953 2954 2955 2956 2957 2958 2959 2960 2961 2962 2963 2964 2965 2966 2967
static int
qemuDomainDetachHostScsiDevice(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr detach)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drvstr = NULL;
    char *devstr = NULL;
    int ret = -1;

    if (!detach->info->alias) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
        return -1;
    }

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached with this QEMU version"));
        return -1;
    }

2968 2969
    if (!(drvstr = qemuBuildSCSIHostdevDrvStr(detach, priv->qemuCaps,
                                              &buildCommandLineCallbacks)))
2970 2971 2972 2973
        goto cleanup;
    if (!(devstr = qemuBuildSCSIHostdevDevStr(vm->def, detach, priv->qemuCaps)))
        goto cleanup;

2974 2975
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

2976 2977 2978 2979 2980 2981 2982 2983 2984 2985 2986 2987 2988 2989 2990 2991 2992 2993 2994 2995 2996 2997 2998 2999 3000
    qemuDomainObjEnterMonitor(driver, vm);
    if ((ret = qemuMonitorDelDevice(priv->mon, detach->info->alias)) == 0) {
        if ((ret = qemuMonitorDriveDel(priv->mon, drvstr)) < 0) {
            virErrorPtr orig_err = virSaveLastError();
            if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
                VIR_WARN("Unable to add device %s (%s) after failed "
                         "qemuMonitorDriveDel",
                         drvstr, devstr);
            if (orig_err) {
                virSetError(orig_err);
                virFreeError(orig_err);
            }
        }
    }
    qemuDomainObjExitMonitor(driver, vm);

cleanup:
    VIR_FREE(drvstr);
    VIR_FREE(devstr);
    return ret;
}

static int
qemuDomainDetachThisHostDevice(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
3001
                               virDomainHostdevDefPtr detach)
3002
{
3003
    int ret = -1;
3004

3005
    switch (detach->source.subsys.type) {
3006
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
3007 3008
        ret = qemuDomainDetachHostPciDevice(driver, vm, detach);
        break;
3009
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
3010
        ret = qemuDomainDetachHostUsbDevice(driver, vm, detach);
3011
        break;
3012 3013 3014
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
        ret = qemuDomainDetachHostScsiDevice(driver, vm, detach);
        break;
3015
    default:
3016 3017 3018
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(detach->source.subsys.type));
3019 3020 3021
        return -1;
    }

3022 3023
    if (ret < 0)
        virDomainAuditHostdev(vm, detach, "detach", false);
3024
    else if (!qemuDomainWaitForDeviceRemoval(vm))
3025
        qemuDomainRemoveHostDevice(driver, vm, detach);
3026

3027 3028
    qemuDomainResetDeviceRemoval(vm);

3029 3030
    return ret;
}
3031

3032
/* search for a hostdev matching dev and detach it */
3033
int qemuDomainDetachHostDevice(virQEMUDriverPtr driver,
3034 3035 3036 3037 3038 3039 3040 3041 3042
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainHostdevDefPtr hostdev = dev->data.hostdev;
    virDomainHostdevSubsysPtr subsys = &hostdev->source.subsys;
    virDomainHostdevDefPtr detach = NULL;
    int idx;

    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
3043 3044 3045
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
3046 3047 3048 3049 3050 3051
        return -1;
    }

    idx = virDomainHostdevFind(vm->def, hostdev, &detach);

    if (idx < 0) {
3052
        switch (subsys->type) {
3053
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
3054 3055
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("host pci device %.4x:%.2x:%.2x.%.1x not found"),
3056 3057
                           subsys->u.pci.addr.domain, subsys->u.pci.addr.bus,
                           subsys->u.pci.addr.slot, subsys->u.pci.addr.function);
3058 3059 3060
            break;
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
            if (subsys->u.usb.bus && subsys->u.usb.device) {
3061 3062 3063
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device %03d.%03d not found"),
                               subsys->u.usb.bus, subsys->u.usb.device);
3064
            } else {
3065 3066 3067
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device vendor=0x%.4x product=0x%.4x not found"),
                               subsys->u.usb.vendor, subsys->u.usb.product);
3068 3069
            }
            break;
3070 3071 3072 3073 3074 3075
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("host scsi device %s:%d:%d.%d not found"),
                           subsys->u.scsi.adapter, subsys->u.scsi.bus,
                           subsys->u.scsi.target, subsys->u.scsi.unit);
            break;
3076
        default:
3077 3078
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("unexpected hostdev type %d"), subsys->type);
3079 3080 3081 3082 3083
            break;
        }
        return -1;
    }

3084 3085 3086 3087 3088 3089
    /* If this is a network hostdev, we need to use the higher-level detach
     * function so that mac address / virtualport are reset
     */
    if (detach->parent.type == VIR_DOMAIN_DEVICE_NET)
        return qemuDomainDetachNetDevice(driver, vm, &detach->parent);
    else
3090
        return qemuDomainDetachThisHostDevice(driver, vm, detach);
3091 3092
}

3093
int
3094
qemuDomainDetachNetDevice(virQEMUDriverPtr driver,
3095 3096 3097
                          virDomainObjPtr vm,
                          virDomainDeviceDefPtr dev)
{
3098
    int detachidx, ret = -1;
3099 3100 3101 3102
    virDomainNetDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int vlan;
    char *hostnet_name = NULL;
3103
    char mac[VIR_MAC_STRING_BUFLEN];
3104

3105 3106 3107 3108 3109 3110
    detachidx = virDomainNetFindIdx(vm->def, dev->data.net);
    if (detachidx == -2) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("multiple devices matching mac address %s found"),
                       virMacAddrFormat(&dev->data.net->mac, mac));
        goto cleanup;
3111
    }
3112
    else if (detachidx < 0) {
3113
        virReportError(VIR_ERR_OPERATION_FAILED,
3114 3115
                       _("network device %s not found"),
                       virMacAddrFormat(&dev->data.net->mac, mac));
3116 3117
        goto cleanup;
    }
3118
    detach = vm->def->nets[detachidx];
3119

3120
    if (virDomainNetGetActualType(detach) == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
3121
        /* coverity[negative_returns] */
3122
        ret = qemuDomainDetachThisHostDevice(driver, vm,
3123
                                             virDomainNetGetActualHostdev(detach));
3124 3125
        goto cleanup;
    }
3126 3127 3128 3129 3130 3131 3132 3133 3134 3135 3136 3137 3138 3139 3140
    if (STREQLEN(vm->def->os.machine, "s390-ccw", 8) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a PCI address"));
            goto cleanup;
        }
3141

3142 3143 3144 3145 3146 3147
        if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            _("cannot hot unplug multifunction PCI device :%s"),
                            dev->data.disk->dst);
            goto cleanup;
        }
3148 3149 3150
    }

    if ((vlan = qemuDomainNetVLAN(detach)) < 0) {
3151 3152
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("unable to determine original VLAN"));
3153 3154 3155
        goto cleanup;
    }

3156
    if (virAsprintf(&hostnet_name, "host%s", detach->info.alias) < 0)
3157 3158
        goto cleanup;

3159 3160
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3161
    qemuDomainObjEnterMonitor(driver, vm);
3162
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
3163
        if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
3164
            qemuDomainObjExitMonitor(driver, vm);
3165 3166 3167 3168 3169 3170
            virDomainAuditNet(vm, detach, NULL, "detach", false);
            goto cleanup;
        }
    } else {
        if (qemuMonitorRemovePCIDevice(priv->mon,
                                       &detach->info.addr.pci) < 0) {
3171
            qemuDomainObjExitMonitor(driver, vm);
3172 3173 3174 3175 3176
            virDomainAuditNet(vm, detach, NULL, "detach", false);
            goto cleanup;
        }
    }

3177 3178
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
3179
        if (qemuMonitorRemoveNetdev(priv->mon, hostnet_name) < 0) {
3180
            qemuDomainObjExitMonitor(driver, vm);
3181 3182 3183 3184 3185
            virDomainAuditNet(vm, detach, NULL, "detach", false);
            goto cleanup;
        }
    } else {
        if (qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0) {
3186
            qemuDomainObjExitMonitor(driver, vm);
3187 3188 3189 3190
            virDomainAuditNet(vm, detach, NULL, "detach", false);
            goto cleanup;
        }
    }
3191
    qemuDomainObjExitMonitor(driver, vm);
3192

3193 3194 3195
    if (!qemuDomainWaitForDeviceRemoval(vm))
        qemuDomainRemoveNetDevice(driver, vm, detach);

3196
    ret = 0;
3197

3198
cleanup:
3199
    qemuDomainResetDeviceRemoval(vm);
3200 3201 3202 3203
    VIR_FREE(hostnet_name);
    return ret;
}

3204
int
3205
qemuDomainChangeGraphicsPasswords(virQEMUDriverPtr driver,
3206 3207 3208 3209 3210 3211 3212 3213
                                  virDomainObjPtr vm,
                                  int type,
                                  virDomainGraphicsAuthDefPtr auth,
                                  const char *defaultPasswd)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    time_t now = time(NULL);
    char expire_time [64];
3214
    const char *connected = NULL;
3215
    const char *password;
3216 3217
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3218

3219
    if (!auth->passwd && !defaultPasswd) {
3220 3221 3222
        ret = 0;
        goto cleanup;
    }
3223
    password = auth->passwd ? auth->passwd : defaultPasswd;
3224

3225 3226 3227
    if (auth->connected)
        connected = virDomainGraphicsAuthConnectedTypeToString(auth->connected);

3228
    qemuDomainObjEnterMonitor(driver, vm);
3229
    ret = qemuMonitorSetPassword(priv->mon, type, password, connected);
3230 3231 3232

    if (ret == -2) {
        if (type != VIR_DOMAIN_GRAPHICS_TYPE_VNC) {
3233 3234
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Graphics password only supported for VNC"));
3235 3236
            ret = -1;
        } else {
3237
            ret = qemuMonitorSetVNCPassword(priv->mon, password);
3238 3239
        }
    }
3240
    if (ret != 0)
3241
        goto end_job;
3242

3243 3244 3245
    if (password[0] == '\0') {
        snprintf(expire_time, sizeof(expire_time), "now");
    } else if (auth->expires) {
3246 3247
        time_t lifetime = auth->validTo - now;
        if (lifetime <= 0)
3248
            snprintf(expire_time, sizeof(expire_time), "now");
3249
        else
3250
            snprintf(expire_time, sizeof(expire_time), "%lu", (long unsigned)auth->validTo);
3251
    } else {
3252
        snprintf(expire_time, sizeof(expire_time), "never");
3253 3254 3255 3256 3257 3258 3259
    }

    ret = qemuMonitorExpirePassword(priv->mon, type, expire_time);

    if (ret == -2) {
        /* XXX we could fake this with a timer */
        if (auth->expires) {
3260 3261
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Expiry of passwords is not supported"));
3262
            ret = -1;
3263 3264
        } else {
            ret = 0;
3265 3266 3267
        }
    }

3268
end_job:
3269
    qemuDomainObjExitMonitor(driver, vm);
3270 3271
cleanup:
    virObjectUnref(cfg);
3272 3273
    return ret;
}
3274

3275
int qemuDomainAttachLease(virQEMUDriverPtr driver,
3276 3277 3278
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
3279 3280 3281
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);

3282
    if (virDomainLeaseInsertPreAlloc(vm->def) < 0)
3283
        goto cleanup;
3284

3285
    if (virDomainLockLeaseAttach(driver->lockManager, cfg->uri,
3286
                                 vm, lease) < 0) {
3287
        virDomainLeaseInsertPreAlloced(vm->def, NULL);
3288
        goto cleanup;
3289 3290 3291
    }

    virDomainLeaseInsertPreAlloced(vm->def, lease);
3292 3293 3294 3295 3296
    ret = 0;

cleanup:
    virObjectUnref(cfg);
    return ret;
3297 3298
}

3299
int qemuDomainDetachLease(virQEMUDriverPtr driver,
3300 3301 3302
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
3303
    virDomainLeaseDefPtr det_lease;
3304
    int idx;
3305

3306
    if ((idx = virDomainLeaseIndex(vm->def, lease)) < 0) {
3307 3308 3309
        virReportError(VIR_ERR_INVALID_ARG,
                       _("Lease %s in lockspace %s does not exist"),
                       lease->key, NULLSTR(lease->lockspace));
3310 3311 3312 3313 3314 3315
        return -1;
    }

    if (virDomainLockLeaseDetach(driver->lockManager, vm, lease) < 0)
        return -1;

3316
    det_lease = virDomainLeaseRemoveAt(vm->def, idx);
3317
    virDomainLeaseDefFree(det_lease);
3318 3319
    return 0;
}
3320 3321 3322 3323 3324 3325 3326 3327 3328 3329 3330 3331 3332 3333 3334 3335 3336 3337 3338 3339 3340

int qemuDomainDetachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainDefPtr vmdef = vm->def;
    virDomainChrDefPtr tmpChr;
    char *charAlias = NULL;
    char *devstr = NULL;

    if (!(tmpChr = virDomainChrFind(vmdef, chr))) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return ret;
    }

    if (qemuBuildChrDeviceStr(&devstr, vm->def, chr, priv->qemuCaps) < 0)
        return ret;

3341 3342
    if (virAsprintf(&charAlias, "char%s", tmpChr->info.alias) < 0)
        goto cleanup;
3343

3344 3345
    qemuDomainMarkDeviceForRemoval(vm, &tmpChr->info);

3346 3347 3348 3349 3350 3351 3352 3353 3354 3355 3356 3357
    qemuDomainObjEnterMonitor(driver, vm);
    if (devstr && qemuMonitorDelDevice(priv->mon, tmpChr->info.alias) < 0) {
        qemuDomainObjExitMonitor(driver, vm);
        goto cleanup;
    }

    if (qemuMonitorDetachCharDev(priv->mon, charAlias) < 0) {
        qemuDomainObjExitMonitor(driver, vm);
        goto cleanup;
    }
    qemuDomainObjExitMonitor(driver, vm);

3358 3359
    if (!qemuDomainWaitForDeviceRemoval(vm))
        qemuDomainRemoveChrDevice(driver, vm, tmpChr);
3360 3361 3362
    ret = 0;

cleanup:
3363
    qemuDomainResetDeviceRemoval(vm);
3364 3365 3366 3367
    VIR_FREE(devstr);
    VIR_FREE(charAlias);
    return ret;
}