qemu_conf.c 40.9 KB
Newer Older
D
Daniel P. Berrange 已提交
1
/*
2
 * qemu_conf.c: QEMU configuration management
D
Daniel P. Berrange 已提交
3
 *
4
 * Copyright (C) 2006-2013 Red Hat, Inc.
D
Daniel P. Berrange 已提交
5 6 7 8 9 10 11 12 13 14 15 16 17
 * Copyright (C) 2006 Daniel P. Berrange
 *
 * This library is free software; you can redistribute it and/or
 * modify it under the terms of the GNU Lesser General Public
 * License as published by the Free Software Foundation; either
 * version 2.1 of the License, or (at your option) any later version.
 *
 * This library is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 * Lesser General Public License for more details.
 *
 * You should have received a copy of the GNU Lesser General Public
18
 * License along with this library.  If not, see
O
Osier Yang 已提交
19
 * <http://www.gnu.org/licenses/>.
D
Daniel P. Berrange 已提交
20 21 22 23
 *
 * Author: Daniel P. Berrange <berrange@redhat.com>
 */

24
#include <config.h>
25

D
Daniel P. Berrange 已提交
26 27 28 29
#include <string.h>
#include <limits.h>
#include <sys/types.h>
#include <sys/stat.h>
30
#include <stdlib.h>
D
Daniel P. Berrange 已提交
31 32 33
#include <unistd.h>
#include <errno.h>
#include <fcntl.h>
34
#include <sys/wait.h>
35
#include <arpa/inet.h>
D
Daniel P. Berrange 已提交
36

37
#include "virerror.h"
38
#include "qemu_conf.h"
39
#include "qemu_command.h"
40
#include "qemu_capabilities.h"
41
#include "qemu_bridge_filter.h"
42
#include "viruuid.h"
43
#include "virbuffer.h"
44
#include "virconf.h"
45
#include "viralloc.h"
46
#include "datatypes.h"
47
#include "virxml.h"
48
#include "nodeinfo.h"
49
#include "virlog.h"
50
#include "cpu/cpu.h"
51
#include "domain_nwfilter.h"
E
Eric Blake 已提交
52
#include "virfile.h"
53
#include "virstring.h"
54
#include "viratomic.h"
55
#include "storage_conf.h"
56
#include "configmake.h"
57

58 59
#define VIR_FROM_THIS VIR_FROM_QEMU

60 61 62 63 64
static virClassPtr virQEMUDriverConfigClass;
static void virQEMUDriverConfigDispose(void *obj);

static int virQEMUConfigOnceInit(void)
{
65 66 67 68
    virQEMUDriverConfigClass = virClassNew(virClassForObject(),
                                           "virQEMUDriverConfig",
                                           sizeof(virQEMUDriverConfig),
                                           virQEMUDriverConfigDispose);
69

70
    if (!virQEMUDriverConfigClass)
71 72 73
        return -1;
    else
        return 0;
74 75 76 77 78
}

VIR_ONCE_GLOBAL_INIT(virQEMUConfig)


79 80
static void
qemuDriverLock(virQEMUDriverPtr driver)
81 82 83
{
    virMutexLock(&driver->lock);
}
84 85
static void
qemuDriverUnlock(virQEMUDriverPtr driver)
86 87 88 89 90
{
    virMutexUnlock(&driver->lock);
}


91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109
virQEMUDriverConfigPtr virQEMUDriverConfigNew(bool privileged)
{
    virQEMUDriverConfigPtr cfg;

    if (virQEMUConfigInitialize() < 0)
        return NULL;

    if (!(cfg = virObjectNew(virQEMUDriverConfigClass)))
        return NULL;

    cfg->privileged = privileged;
    cfg->uri = privileged ? "qemu:///system" : "qemu:///session";

    if (privileged) {
        if (virGetUserID(QEMU_USER, &cfg->user) < 0)
            goto error;
        if (virGetGroupID(QEMU_GROUP, &cfg->group) < 0)
            goto error;
    } else {
110 111
        cfg->user = (uid_t)-1;
        cfg->group = (gid_t)-1;
112 113 114
    }
    cfg->dynamicOwnership = privileged;

115
    cfg->cgroupControllers = -1; /* -1 == auto-detect */
116 117 118 119

    if (privileged) {
        if (virAsprintf(&cfg->logDir,
                        "%s/log/libvirt/qemu", LOCALSTATEDIR) < 0)
120
            goto error;
121

122 123
        if (VIR_STRDUP(cfg->configBaseDir, SYSCONFDIR "/libvirt") < 0)
            goto error;
D
Daniel P. Berrange 已提交
124

125 126
        if (virAsprintf(&cfg->stateDir,
                      "%s/run/libvirt/qemu", LOCALSTATEDIR) < 0)
127
            goto error;
128 129 130

        if (virAsprintf(&cfg->libDir,
                      "%s/lib/libvirt/qemu", LOCALSTATEDIR) < 0)
131
            goto error;
132 133 134

        if (virAsprintf(&cfg->cacheDir,
                      "%s/cache/libvirt/qemu", LOCALSTATEDIR) < 0)
135
            goto error;
136 137
        if (virAsprintf(&cfg->saveDir,
                      "%s/lib/libvirt/qemu/save", LOCALSTATEDIR) < 0)
138
            goto error;
139 140
        if (virAsprintf(&cfg->snapshotDir,
                        "%s/lib/libvirt/qemu/snapshot", LOCALSTATEDIR) < 0)
141
            goto error;
142 143
        if (virAsprintf(&cfg->autoDumpPath,
                        "%s/lib/libvirt/qemu/dump", LOCALSTATEDIR) < 0)
144
            goto error;
145 146 147 148 149 150 151 152 153 154 155
    } else {
        char *rundir;
        char *cachedir;

        cachedir = virGetUserCacheDirectory();
        if (!cachedir)
            goto error;

        if (virAsprintf(&cfg->logDir,
                        "%s/qemu/log", cachedir) < 0) {
            VIR_FREE(cachedir);
156
            goto error;
157 158 159
        }
        if (virAsprintf(&cfg->cacheDir, "%s/qemu/cache", cachedir) < 0) {
            VIR_FREE(cachedir);
160
            goto error;
161 162
        }
        VIR_FREE(cachedir);
163

164 165 166 167 168
        rundir = virGetUserRuntimeDirectory();
        if (!rundir)
            goto error;
        if (virAsprintf(&cfg->stateDir, "%s/qemu/run", rundir) < 0) {
            VIR_FREE(rundir);
169
            goto error;
170 171 172 173 174 175 176
        }
        VIR_FREE(rundir);

        if (!(cfg->configBaseDir = virGetUserConfigDirectory()))
            goto error;

        if (virAsprintf(&cfg->libDir, "%s/qemu/lib", cfg->configBaseDir) < 0)
177
            goto error;
178
        if (virAsprintf(&cfg->saveDir, "%s/qemu/save", cfg->configBaseDir) < 0)
179
            goto error;
180
        if (virAsprintf(&cfg->snapshotDir, "%s/qemu/snapshot", cfg->configBaseDir) < 0)
181
            goto error;
182
        if (virAsprintf(&cfg->autoDumpPath, "%s/qemu/dump", cfg->configBaseDir) < 0)
183
            goto error;
184 185 186
    }

    if (virAsprintf(&cfg->configDir, "%s/qemu", cfg->configBaseDir) < 0)
187
        goto error;
188
    if (virAsprintf(&cfg->autostartDir, "%s/qemu/autostart", cfg->configBaseDir) < 0)
189
        goto error;
190 191


192 193
    if (VIR_STRDUP(cfg->vncListen, "127.0.0.1") < 0)
        goto error;
194

195 196
    if (VIR_STRDUP(cfg->vncTLSx509certdir, SYSCONFDIR "/pki/libvirt-vnc") < 0)
        goto error;
D
Daniel P. Berrange 已提交
197

198 199
    if (VIR_STRDUP(cfg->spiceListen, "127.0.0.1") < 0)
        goto error;
200

201 202
    if (VIR_STRDUP(cfg->spiceTLSx509certdir , SYSCONFDIR "/pki/libvirt-spice") < 0)
        goto error;
203

204 205 206
    cfg->remotePortMin = QEMU_REMOTE_PORT_MIN;
    cfg->remotePortMax = QEMU_REMOTE_PORT_MAX;

207 208 209
    cfg->webSocketPortMin = QEMU_WEBSOCKET_PORT_MIN;
    cfg->webSocketPortMax = QEMU_WEBSOCKET_PORT_MAX;

210
#if defined HAVE_MNTENT_H && defined HAVE_GETMNTENT_R
211 212 213
    /* For privileged driver, try and find hugepage mount automatically.
     * Non-privileged driver requires admin to create a dir for the
     * user, chown it, and then let user configure it manually */
214 215
    if (privileged &&
        !(cfg->hugetlbfsMount = virFileFindMountPoint("hugetlbfs"))) {
216
        if (errno != ENOENT) {
217
            virReportSystemError(errno, "%s",
218
                                 _("unable to find hugetlbfs mountpoint"));
219
            goto error;
220 221 222
        }
    }
#endif
223 224
    if (VIR_STRDUP(cfg->bridgeHelperName, "/usr/libexec/qemu-bridge-helper") < 0)
        goto error;
225

226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271
    cfg->clearEmulatorCapabilities = true;

    cfg->securityDefaultConfined = true;
    cfg->securityRequireConfined = false;

    cfg->keepAliveInterval = 5;
    cfg->keepAliveCount = 5;
    cfg->seccompSandbox = -1;

    return cfg;

error:
    virObjectUnref(cfg);
    return NULL;
}


static void virQEMUDriverConfigDispose(void *obj)
{
    virQEMUDriverConfigPtr cfg = obj;


    virStringFreeList(cfg->cgroupDeviceACL);

    VIR_FREE(cfg->configBaseDir);
    VIR_FREE(cfg->configDir);
    VIR_FREE(cfg->autostartDir);
    VIR_FREE(cfg->logDir);
    VIR_FREE(cfg->stateDir);

    VIR_FREE(cfg->libDir);
    VIR_FREE(cfg->cacheDir);
    VIR_FREE(cfg->saveDir);
    VIR_FREE(cfg->snapshotDir);

    VIR_FREE(cfg->vncTLSx509certdir);
    VIR_FREE(cfg->vncListen);
    VIR_FREE(cfg->vncPassword);
    VIR_FREE(cfg->vncSASLdir);

    VIR_FREE(cfg->spiceTLSx509certdir);
    VIR_FREE(cfg->spiceListen);
    VIR_FREE(cfg->spicePassword);

    VIR_FREE(cfg->hugetlbfsMount);
    VIR_FREE(cfg->hugepagePath);
272
    VIR_FREE(cfg->bridgeHelperName);
273 274 275 276 277 278 279 280 281 282

    VIR_FREE(cfg->saveImageFormat);
    VIR_FREE(cfg->dumpImageFormat);
    VIR_FREE(cfg->autoDumpPath);

    virStringFreeList(cfg->securityDriverNames);

    VIR_FREE(cfg->lockManagerName);
}

283

284 285 286 287 288 289
int virQEMUDriverConfigLoadFile(virQEMUDriverConfigPtr cfg,
                                const char *filename)
{
    virConfPtr conf = NULL;
    virConfValuePtr p;
    int ret = -1;
290
    size_t i;
291

D
Daniel P. Berrange 已提交
292 293 294
    /* Just check the file is readable before opening it, otherwise
     * libvirt emits an error.
     */
295
    if (access(filename, R_OK) == -1) {
296
        VIR_INFO("Could not read qemu config file %s", filename);
297
        return 0;
298
    }
D
Daniel P. Berrange 已提交
299

300 301
    if (!(conf = virConfReadFile(filename, 0)))
        goto cleanup;
D
Daniel P. Berrange 已提交
302

303 304 305 306 307
#define CHECK_TYPE(name,typ)                          \
    if (p && p->type != (typ)) {                      \
        virReportError(VIR_ERR_INTERNAL_ERROR,        \
                       "%s: %s: expected type " #typ, \
                       filename, (name));             \
308
        goto cleanup;                                 \
309 310 311 312 313 314 315 316
    }

#define GET_VALUE_LONG(NAME, VAR)     \
    p = virConfGetValue(conf, NAME);  \
    CHECK_TYPE(NAME, VIR_CONF_LONG);  \
    if (p)                            \
        VAR = p->l;

317 318 319 320 321 322
#define GET_VALUE_BOOL(NAME, VAR)     \
    p = virConfGetValue(conf, NAME);  \
    CHECK_TYPE(NAME, VIR_CONF_LONG);  \
    if (p)                            \
        VAR = p->l != 0;

323 324 325 326 327
#define GET_VALUE_STR(NAME, VAR)           \
    p = virConfGetValue(conf, NAME);       \
    CHECK_TYPE(NAME, VIR_CONF_STRING);     \
    if (p && p->str) {                     \
        VIR_FREE(VAR);                     \
328 329
        if (VIR_STRDUP(VAR, p->str) < 0)   \
            goto cleanup;                  \
330 331
    }

332 333 334 335 336 337 338 339 340
    GET_VALUE_BOOL("vnc_auto_unix_socket", cfg->vncAutoUnixSocket);
    GET_VALUE_BOOL("vnc_tls", cfg->vncTLS);
    GET_VALUE_BOOL("vnc_tls_x509_verify", cfg->vncTLSx509verify);
    GET_VALUE_STR("vnc_tls_x509_cert_dir", cfg->vncTLSx509certdir);
    GET_VALUE_STR("vnc_listen", cfg->vncListen);
    GET_VALUE_STR("vnc_password", cfg->vncPassword);
    GET_VALUE_BOOL("vnc_sasl", cfg->vncSASL);
    GET_VALUE_STR("vnc_sasl_dir", cfg->vncSASLdir);
    GET_VALUE_BOOL("vnc_allow_host_audio", cfg->vncAllowHostAudio);
341
    GET_VALUE_BOOL("nographics_allow_host_audio", cfg->nogfxAllowHostAudio);
342

343
    p = virConfGetValue(conf, "security_driver");
344 345 346 347
    if (p && p->type == VIR_CONF_LIST) {
        size_t len;
        virConfValuePtr pp;

J
Ján Tomko 已提交
348
        /* Calc length and check items */
349 350
        for (len = 0, pp = p->list; pp; len++, pp = pp->next) {
            if (pp->type != VIR_CONF_STRING) {
351 352 353
                virReportError(VIR_ERR_CONF_SYNTAX, "%s",
                               _("security_driver must be a list of strings"));
                goto cleanup;
354 355 356
            }
        }

357
        if (VIR_ALLOC_N(cfg->securityDriverNames, len + 1) < 0)
358
            goto cleanup;
359 360

        for (i = 0, pp = p->list; pp; i++, pp = pp->next) {
361 362
            if (VIR_STRDUP(cfg->securityDriverNames[i], pp->str) < 0)
                goto cleanup;
363
        }
364
        cfg->securityDriverNames[len] = NULL;
365
    } else {
366
        CHECK_TYPE("security_driver", VIR_CONF_STRING);
367
        if (p && p->str) {
368
            if (VIR_ALLOC_N(cfg->securityDriverNames, 2) < 0)
369
                goto cleanup;
370 371
            if (VIR_STRDUP(cfg->securityDriverNames[0], p->str) < 0)
                goto cleanup;
372

373
            cfg->securityDriverNames[1] = NULL;
374
        }
375 376
    }

377 378
    GET_VALUE_BOOL("security_default_confined", cfg->securityDefaultConfined);
    GET_VALUE_BOOL("security_require_confined", cfg->securityRequireConfined);
379

380 381 382 383
    GET_VALUE_BOOL("spice_tls", cfg->spiceTLS);
    GET_VALUE_STR("spice_tls_x509_cert_dir", cfg->spiceTLSx509certdir);
    GET_VALUE_STR("spice_listen", cfg->spiceListen);
    GET_VALUE_STR("spice_password", cfg->spicePassword);
384 385


386 387 388 389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414
    GET_VALUE_LONG("remote_websocket_port_min", cfg->webSocketPortMin);
    if (cfg->webSocketPortMin < QEMU_WEBSOCKET_PORT_MIN) {
        /* if the port is too low, we can't get the display name
         * to tell to vnc (usually subtract 5700, e.g. localhost:1
         * for port 5701) */
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("%s: remote_websocket_port_min: port must be greater "
                         "than or equal to %d"),
                        filename, QEMU_WEBSOCKET_PORT_MIN);
        goto cleanup;
    }

    GET_VALUE_LONG("remote_websocket_port_max", cfg->webSocketPortMax);
    if (cfg->webSocketPortMax > QEMU_WEBSOCKET_PORT_MAX ||
        cfg->webSocketPortMax < cfg->webSocketPortMin) {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                        _("%s: remote_websocket_port_max: port must be between "
                          "the minimal port and %d"),
                       filename, QEMU_WEBSOCKET_PORT_MAX);
        goto cleanup;
    }

    if (cfg->webSocketPortMin > cfg->webSocketPortMax) {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                        _("%s: remote_websocket_port_min: min port must not be "
                          "greater than max port"), filename);
        goto cleanup;
    }

415 416
    GET_VALUE_LONG("remote_display_port_min", cfg->remotePortMin);
    if (cfg->remotePortMin < QEMU_REMOTE_PORT_MIN) {
417 418 419 420 421 422 423
        /* if the port is too low, we can't get the display name
         * to tell to vnc (usually subtract 5900, e.g. localhost:1
         * for port 5901) */
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("%s: remote_display_port_min: port must be greater "
                         "than or equal to %d"),
                        filename, QEMU_REMOTE_PORT_MIN);
424
        goto cleanup;
425 426
    }

427 428 429
    GET_VALUE_LONG("remote_display_port_max", cfg->remotePortMax);
    if (cfg->remotePortMax > QEMU_REMOTE_PORT_MAX ||
        cfg->remotePortMax < cfg->remotePortMin) {
430 431 432 433
        virReportError(VIR_ERR_INTERNAL_ERROR,
                        _("%s: remote_display_port_max: port must be between "
                          "the minimal port and %d"),
                       filename, QEMU_REMOTE_PORT_MAX);
434
        goto cleanup;
435 436
    }

437
    if (cfg->remotePortMin > cfg->remotePortMax) {
438
        virReportError(VIR_ERR_INTERNAL_ERROR,
439 440
                        _("%s: remote_display_port_min: min port must not be "
                          "greater than max port"), filename);
441
        goto cleanup;
442 443
    }

444 445
    p = virConfGetValue(conf, "user");
    CHECK_TYPE("user", VIR_CONF_STRING);
446 447
    if (p && p->str &&
        virGetUserID(p->str, &cfg->user) < 0)
448
        goto cleanup;
449

450 451
    p = virConfGetValue(conf, "group");
    CHECK_TYPE("group", VIR_CONF_STRING);
452 453
    if (p && p->str &&
        virGetGroupID(p->str, &cfg->group) < 0)
454
        goto cleanup;
455

456
    GET_VALUE_BOOL("dynamic_ownership", cfg->dynamicOwnership);
457

458 459
    p = virConfGetValue(conf, "cgroup_controllers");
    CHECK_TYPE("cgroup_controllers", VIR_CONF_LIST);
460
    if (p) {
461
        cfg->cgroupControllers = 0;
462 463 464 465
        virConfValuePtr pp;
        for (i = 0, pp = p->list; pp; ++i, pp = pp->next) {
            int ctl;
            if (pp->type != VIR_CONF_STRING) {
466 467 468 469
                virReportError(VIR_ERR_CONF_SYNTAX, "%s",
                               _("cgroup_controllers must be a "
                                 "list of strings"));
                goto cleanup;
470
            }
471 472 473 474 475

            if ((ctl = virCgroupControllerTypeFromString(pp->str)) < 0) {
                virReportError(VIR_ERR_CONF_SYNTAX,
                               _("Unknown cgroup controller '%s'"), pp->str);
                goto cleanup;
476
            }
477
            cfg->cgroupControllers |= (1 << ctl);
478 479 480
        }
    }

481 482
    p = virConfGetValue(conf, "cgroup_device_acl");
    CHECK_TYPE("cgroup_device_acl", VIR_CONF_LIST);
483 484 485 486 487
    if (p) {
        int len = 0;
        virConfValuePtr pp;
        for (pp = p->list; pp; pp = pp->next)
            len++;
488
        if (VIR_ALLOC_N(cfg->cgroupDeviceACL, 1+len) < 0)
489
            goto cleanup;
490

491 492
        for (i = 0, pp = p->list; pp; ++i, pp = pp->next) {
            if (pp->type != VIR_CONF_STRING) {
493 494 495 496
                virReportError(VIR_ERR_CONF_SYNTAX, "%s",
                               _("cgroup_device_acl must be a "
                                 "list of strings"));
                goto cleanup;
497
            }
498 499
            if (VIR_STRDUP(cfg->cgroupDeviceACL[i], pp->str) < 0)
                goto cleanup;
500
        }
501
        cfg->cgroupDeviceACL[i] = NULL;
502 503
    }

504 505 506 507 508
    GET_VALUE_STR("save_image_format", cfg->saveImageFormat);
    GET_VALUE_STR("dump_image_format", cfg->dumpImageFormat);
    GET_VALUE_STR("auto_dump_path", cfg->autoDumpPath);
    GET_VALUE_BOOL("auto_dump_bypass_cache", cfg->autoDumpBypassCache);
    GET_VALUE_BOOL("auto_start_bypass_cache", cfg->autoStartBypassCache);
509

510
    GET_VALUE_STR("hugetlbfs_mount", cfg->hugetlbfsMount);
511
    GET_VALUE_STR("bridge_helper", cfg->bridgeHelperName);
512

513 514 515 516 517 518 519 520
    GET_VALUE_BOOL("mac_filter", cfg->macFilter);

    GET_VALUE_BOOL("relaxed_acs_check", cfg->relaxedACS);
    GET_VALUE_BOOL("clear_emulator_capabilities", cfg->clearEmulatorCapabilities);
    GET_VALUE_BOOL("allow_disk_format_probing", cfg->allowDiskFormatProbing);
    GET_VALUE_BOOL("set_process_name", cfg->setProcessName);
    GET_VALUE_LONG("max_processes", cfg->maxProcesses);
    GET_VALUE_LONG("max_files", cfg->maxFiles);
521

522 523 524 525 526 527 528 529
    GET_VALUE_STR("lock_manager", cfg->lockManagerName);

    GET_VALUE_LONG("max_queued", cfg->maxQueuedJobs);

    GET_VALUE_LONG("keepalive_interval", cfg->keepAliveInterval);
    GET_VALUE_LONG("keepalive_count", cfg->keepAliveCount);

    GET_VALUE_LONG("seccomp_sandbox", cfg->seccompSandbox);
530

531 532 533
    ret = 0;

cleanup:
534
    virConfFree(conf);
535
    return ret;
D
Daniel P. Berrange 已提交
536
}
537
#undef GET_VALUE_BOOL
538 539
#undef GET_VALUE_LONG
#undef GET_VALUE_STRING
540

541 542
virQEMUDriverConfigPtr virQEMUDriverGetConfig(virQEMUDriverPtr driver)
{
543 544 545 546 547
    virQEMUDriverConfigPtr conf;
    qemuDriverLock(driver);
    conf = virObjectRef(driver->config);
    qemuDriverUnlock(driver);
    return conf;
548 549
}

550
virDomainXMLOptionPtr
551
virQEMUDriverCreateXMLConf(virQEMUDriverPtr driver)
552
{
553
    virQEMUDriverDomainDefParserConfig.priv = driver;
554
    return virDomainXMLOptionNew(&virQEMUDriverDomainDefParserConfig,
555 556
                                 &virQEMUDriverPrivateDataCallbacks,
                                 &virQEMUDriverDomainXMLNamespace);
557 558
}

559 560 561 562 563 564 565 566 567 568 569

virCapsPtr virQEMUDriverCreateCapabilities(virQEMUDriverPtr driver)
{
    size_t i;
    virCapsPtr caps;
    virSecurityManagerPtr *sec_managers = NULL;
    /* Security driver data */
    const char *doi, *model;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);

    /* Basic host arch / guest machine capabilities */
570
    if (!(caps = virQEMUCapsInit(driver->qemuCapsCache)))
571
        goto error;
572 573 574 575

    if (virGetHostUUID(caps->host.host_uuid)) {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       "%s", _("cannot get the host uuid"));
576
        goto error;
577 578 579
    }

    /* access sec drivers and create a sec model for each one */
580 581
    if (!(sec_managers = virSecurityManagerGetNested(driver->securityManager)))
        goto error;
582 583 584 585 586 587 588

    /* calculate length */
    for (i = 0; sec_managers[i]; i++)
        ;
    caps->host.nsecModels = i;

    if (VIR_ALLOC_N(caps->host.secModels, caps->host.nsecModels) < 0)
589
        goto error;
590 591 592 593

    for (i = 0; sec_managers[i]; i++) {
        doi = virSecurityManagerGetDOI(sec_managers[i]);
        model = virSecurityManagerGetModel(sec_managers[i]);
594 595 596
        if (VIR_STRDUP(caps->host.secModels[i].model, model) < 0 ||
            VIR_STRDUP(caps->host.secModels[i].doi, doi) < 0)
            goto error;
597 598 599 600 601 602 603 604
        VIR_DEBUG("Initialized caps for security driver \"%s\" with "
                  "DOI \"%s\"", model, doi);
    }
    VIR_FREE(sec_managers);

    virObjectUnref(cfg);
    return caps;

605
error:
606 607 608 609 610 611 612 613 614 615 616 617 618 619 620 621 622 623 624 625 626
    VIR_FREE(sec_managers);
    virObjectUnref(caps);
    virObjectUnref(cfg);
    return NULL;
}


/**
 * virQEMUDriverGetCapabilities:
 *
 * Get a reference to the virCapsPtr instance for the
 * driver. If @refresh is true, the capabilities will be
 * rebuilt first
 *
 * The caller must release the reference with virObjetUnref
 *
 * Returns: a reference to a virCapsPtr instance or NULL
 */
virCapsPtr virQEMUDriverGetCapabilities(virQEMUDriverPtr driver,
                                        bool refresh)
{
627
    virCapsPtr ret = NULL;
628 629 630 631 632
    if (refresh) {
        virCapsPtr caps = NULL;
        if ((caps = virQEMUDriverCreateCapabilities(driver)) == NULL)
            return NULL;

633
        qemuDriverLock(driver);
634 635
        virObjectUnref(driver->caps);
        driver->caps = caps;
636 637
    } else {
        qemuDriverLock(driver);
638 639
    }

640 641 642
    ret = virObjectRef(driver->caps);
    qemuDriverUnlock(driver);
    return ret;
643 644
}

645
struct _qemuSharedDeviceEntry {
646 647 648 649
    size_t ref;
    char **domains; /* array of domain names */
};

650
/* Construct the hash key for sharedDevices as "major:minor" */
651
char *
652
qemuGetSharedDeviceKey(const char *device_path)
653 654 655 656 657
{
    int maj, min;
    char *key = NULL;
    int rc;

658
    if ((rc = virGetDeviceID(device_path, &maj, &min)) < 0) {
659 660
        virReportSystemError(-rc,
                             _("Unable to get minor number of device '%s'"),
661
                             device_path);
662 663 664
        return NULL;
    }

665
    if (virAsprintf(&key, "%d:%d", maj, min) < 0)
666 667 668 669 670
        return NULL;

    return key;
}

671
/* Check if a shared device's setting conflicts with the conf
672 673
 * used by other domain(s). Currently only checks the sgio
 * setting. Note that this should only be called for disk with
674
 * block source if the device type is disk.
675 676 677 678
 *
 * Returns 0 if no conflicts, otherwise returns -1.
 */
static int
679 680
qemuCheckSharedDevice(virHashTablePtr sharedDevices,
                      virDomainDeviceDefPtr dev)
681
{
682 683
    virDomainDiskDefPtr disk = NULL;
    virDomainHostdevDefPtr hostdev = NULL;
684 685
    char *sysfs_path = NULL;
    char *key = NULL;
686 687 688
    char *hostdev_name = NULL;
    char *hostdev_path = NULL;
    char *device_path = NULL;
689
    int val;
690 691
    int ret = 0;

692 693 694 695 696 697 698 699 700 701 702 703 704 705 706 707 708 709 710
    if (dev->type == VIR_DOMAIN_DEVICE_DISK) {
        disk = dev->data.disk;

        /* The only conflicts between shared disk we care about now
         * is sgio setting, which is only valid for device='lun'.
         */
        if (disk->device != VIR_DOMAIN_DISK_DEVICE_LUN)
            return 0;

        device_path = disk->src;
    } else if (dev->type == VIR_DOMAIN_DEVICE_HOSTDEV) {
        hostdev = dev->data.hostdev;

        if (!(hostdev_name = virSCSIDeviceGetDevName(hostdev->source.subsys.u.scsi.adapter,
                                                     hostdev->source.subsys.u.scsi.bus,
                                                     hostdev->source.subsys.u.scsi.target,
                                                     hostdev->source.subsys.u.scsi.unit)))
            goto cleanup;

711
        if (virAsprintf(&hostdev_path, "/dev/%s", hostdev_name) < 0)
712 713 714 715
            goto cleanup;

        device_path = hostdev_path;
    } else {
716
        return 0;
717
    }
718

719
    if (!(sysfs_path = virGetUnprivSGIOSysfsPath(device_path, NULL))) {
720 721 722 723 724 725 726 727 728 729
        ret = -1;
        goto cleanup;
    }

    /* It can't be conflict if unpriv_sgio is not supported
     * by kernel.
     */
    if (!virFileExists(sysfs_path))
        goto cleanup;

730
    if (!(key = qemuGetSharedDeviceKey(device_path))) {
731 732 733 734 735 736 737
        ret = -1;
        goto cleanup;
    }

    /* It can't be conflict if no other domain is
     * is sharing it.
     */
738
    if (!(virHashLookup(sharedDevices, key)))
739 740
        goto cleanup;

741
    if (virGetDeviceUnprivSGIO(device_path, NULL, &val) < 0) {
742 743 744 745 746
        ret = -1;
        goto cleanup;
    }

    if ((val == 0 &&
747 748
         (disk->sgio == VIR_DOMAIN_DEVICE_SGIO_FILTERED ||
          disk->sgio == VIR_DOMAIN_DEVICE_SGIO_DEFAULT)) ||
749
        (val == 1 &&
750
         disk->sgio == VIR_DOMAIN_DEVICE_SGIO_UNFILTERED))
751 752
        goto cleanup;

753 754 755 756 757 758 759 760 761 762 763 764
    if (dev->type == VIR_DOMAIN_DEVICE_DISK) {
        if (disk->type == VIR_DOMAIN_DISK_TYPE_VOLUME) {
            virReportError(VIR_ERR_OPERATION_INVALID,
                           _("sgio of shared disk 'pool=%s' 'volume=%s' conflicts "
                             "with other active domains"),
                           disk->srcpool->pool,
                           disk->srcpool->volume);
        } else {
            virReportError(VIR_ERR_OPERATION_INVALID,
                           _("sgio of shared disk '%s' conflicts with other "
                             "active domains"), disk->src);
        }
765 766
    } else {
        virReportError(VIR_ERR_OPERATION_INVALID,
767 768 769 770 771 772
                       _("sgio of shared scsi host device '%s-%d-%d-%d' conflicts "
                          "with other active domains"),
                       hostdev->source.subsys.u.scsi.adapter,
                       hostdev->source.subsys.u.scsi.bus,
                       hostdev->source.subsys.u.scsi.target,
                       hostdev->source.subsys.u.scsi.unit);
773 774
    }

775 776
    ret = -1;
cleanup:
777 778
    VIR_FREE(hostdev_name);
    VIR_FREE(hostdev_path);
779 780 781 782
    VIR_FREE(sysfs_path);
    VIR_FREE(key);
    return ret;
}
783
bool
784 785 786
qemuSharedDeviceEntryDomainExists(qemuSharedDeviceEntryPtr entry,
                                  const char *name,
                                  int *idx)
787 788 789 790 791 792 793 794 795 796 797 798 799 800 801
{
    size_t i;

    for (i = 0; i < entry->ref; i++) {
        if (STREQ(entry->domains[i], name)) {
            if (idx)
                *idx = i;
            return true;
        }
    }

    return false;
}

void
802
qemuSharedDeviceEntryFree(void *payload, const void *name ATTRIBUTE_UNUSED)
803
{
804
    qemuSharedDeviceEntryPtr entry = payload;
805 806
    size_t i;

807 808 809
    if (!entry)
        return;

810 811 812 813 814 815 816
    for (i = 0; i < entry->ref; i++) {
        VIR_FREE(entry->domains[i]);
    }
    VIR_FREE(entry->domains);
    VIR_FREE(entry);
}

817 818
static qemuSharedDeviceEntryPtr
qemuSharedDeviceEntryCopy(const qemuSharedDeviceEntryPtr entry)
819
{
820
    qemuSharedDeviceEntryPtr ret = NULL;
821 822
    size_t i;

823
    if (VIR_ALLOC(ret) < 0)
824 825
        return NULL;

826
    if (VIR_ALLOC_N(ret->domains, entry->ref) < 0)
827 828 829
        goto cleanup;

    for (i = 0; i < entry->ref; i++) {
830
        if (VIR_STRDUP(ret->domains[i], entry->domains[i]) < 0)
831 832 833 834 835 836 837
            goto cleanup;
        ret->ref++;
    }

    return ret;

cleanup:
838
    qemuSharedDeviceEntryFree(ret, NULL);
839 840 841
    return NULL;
}

842
/* qemuAddSharedDevice:
843
 * @driver: Pointer to qemu driver struct
844
 * @dev: The device def
845 846 847
 * @name: The domain name
 *
 * Increase ref count and add the domain name into the list which
848
 * records all the domains that use the shared device if the entry
849
 * already exists, otherwise add a new entry.
850 851
 */
int
852 853 854
qemuAddSharedDevice(virQEMUDriverPtr driver,
                    virDomainDeviceDefPtr dev,
                    const char *name)
855
{
856 857
    qemuSharedDeviceEntry *entry = NULL;
    qemuSharedDeviceEntry *new_entry = NULL;
858 859 860 861
    virDomainDiskDefPtr disk = NULL;
    virDomainHostdevDefPtr hostdev = NULL;
    char *dev_name = NULL;
    char *dev_path = NULL;
862
    char *key = NULL;
863
    int ret = -1;
864

865 866 867
    /* Currently the only conflicts we have to care about for
     * the shared disk and shared host device is "sgio" setting,
     * which is only valid for block disk and scsi host device.
868
     */
869 870 871
    if (dev->type == VIR_DOMAIN_DEVICE_DISK) {
        disk = dev->data.disk;

872
        if (!disk->shared || !virDomainDiskSourceIsBlockType(disk))
873 874 875 876 877 878 879 880 881
            return 0;
    } else if (dev->type == VIR_DOMAIN_DEVICE_HOSTDEV) {
        hostdev = dev->data.hostdev;

        if (!hostdev->shareable ||
            !(hostdev->mode == VIR_DOMAIN_HOSTDEV_MODE_SUBSYS &&
              hostdev->source.subsys.type == VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI))
            return 0;
    } else {
882
        return 0;
883
    }
884

885
    qemuDriverLock(driver);
886 887
    if (qemuCheckSharedDevice(driver->sharedDevices, dev) < 0)
        goto cleanup;
888

889
    if (dev->type == VIR_DOMAIN_DEVICE_DISK) {
890 891 892 893 894 895 896 897 898
        if (!(key = qemuGetSharedDeviceKey(disk->src)))
            goto cleanup;
    } else {
        if (!(dev_name = virSCSIDeviceGetDevName(hostdev->source.subsys.u.scsi.adapter,
                                                 hostdev->source.subsys.u.scsi.bus,
                                                 hostdev->source.subsys.u.scsi.target,
                                                 hostdev->source.subsys.u.scsi.unit)))
            goto cleanup;

899
        if (virAsprintf(&dev_path, "/dev/%s", dev_name) < 0)
900 901 902 903 904
            goto cleanup;

        if (!(key = qemuGetSharedDeviceKey(dev_path)))
            goto cleanup;
    }
905

906
    if ((entry = virHashLookup(driver->sharedDevices, key))) {
907 908
        /* Nothing to do if the shared scsi host device is already
         * recorded in the table.
909
         */
910
        if (qemuSharedDeviceEntryDomainExists(entry, name, NULL)) {
911 912 913 914
            ret = 0;
            goto cleanup;
        }

915
        if (!(new_entry = qemuSharedDeviceEntryCopy(entry)))
916 917
            goto cleanup;

918 919
        if (VIR_EXPAND_N(new_entry->domains, new_entry->ref, 1) < 0 ||
            VIR_STRDUP(new_entry->domains[new_entry->ref - 1], name) < 0) {
920
            qemuSharedDeviceEntryFree(new_entry, NULL);
921 922 923
            goto cleanup;
        }

924 925
        if (virHashUpdateEntry(driver->sharedDevices, key, new_entry) < 0) {
            qemuSharedDeviceEntryFree(new_entry, NULL);
926 927
            goto cleanup;
        }
928
    } else {
929 930 931
        if (VIR_ALLOC(entry) < 0 ||
            VIR_ALLOC_N(entry->domains, 1) < 0 ||
            VIR_STRDUP(entry->domains[0], name) < 0) {
932
            qemuSharedDeviceEntryFree(entry, NULL);
933 934 935 936 937
            goto cleanup;
        }

        entry->ref = 1;

938
        if (virHashAddEntry(driver->sharedDevices, key, entry))
939
            goto cleanup;
940 941
    }

942 943
    ret = 0;
cleanup:
944
    qemuDriverUnlock(driver);
945 946
    VIR_FREE(dev_name);
    VIR_FREE(dev_path);
947
    VIR_FREE(key);
948
    return ret;
949 950
}

951
/* qemuRemoveSharedDevice:
952
 * @driver: Pointer to qemu driver struct
953
 * @device: The device def
954 955 956
 * @name: The domain name
 *
 * Decrease ref count and remove the domain name from the list which
957 958
 * records all the domains that use the shared device if ref is not
 * 1, otherwise remove the entry.
959 960
 */
int
961 962 963
qemuRemoveSharedDevice(virQEMUDriverPtr driver,
                       virDomainDeviceDefPtr dev,
                       const char *name)
964
{
965 966
    qemuSharedDeviceEntryPtr entry = NULL;
    qemuSharedDeviceEntryPtr new_entry = NULL;
967 968
    virDomainDiskDefPtr disk = NULL;
    virDomainHostdevDefPtr hostdev = NULL;
969
    char *key = NULL;
970 971
    char *dev_name = NULL;
    char *dev_path = NULL;
972
    int ret = -1;
973
    int idx;
974

975 976 977
    if (dev->type == VIR_DOMAIN_DEVICE_DISK) {
        disk = dev->data.disk;

978
        if (!disk->shared || !virDomainDiskSourceIsBlockType(disk))
979 980 981 982 983 984 985 986 987
            return 0;
    } else if (dev->type == VIR_DOMAIN_DEVICE_HOSTDEV) {
        hostdev = dev->data.hostdev;

        if (!hostdev->shareable ||
            !(hostdev->mode == VIR_DOMAIN_HOSTDEV_MODE_SUBSYS &&
              hostdev->source.subsys.type == VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI))
            return 0;
    } else {
988
        return 0;
989
    }
990

991
    qemuDriverLock(driver);
992 993 994 995 996 997 998 999 1000 1001 1002

    if (dev->type == VIR_DOMAIN_DEVICE_DISK) {
        if (!(key = qemuGetSharedDeviceKey(disk->src)))
            goto cleanup;
    } else {
        if (!(dev_name = virSCSIDeviceGetDevName(hostdev->source.subsys.u.scsi.adapter,
                                                 hostdev->source.subsys.u.scsi.bus,
                                                 hostdev->source.subsys.u.scsi.target,
                                                 hostdev->source.subsys.u.scsi.unit)))
            goto cleanup;

1003
        if (virAsprintf(&dev_path, "/dev/%s", dev_name) < 0)
1004 1005 1006 1007 1008
            goto cleanup;

        if (!(key = qemuGetSharedDeviceKey(dev_path)))
            goto cleanup;
    }
1009

1010
    if (!(entry = virHashLookup(driver->sharedDevices, key)))
1011
        goto cleanup;
1012

1013 1014 1015
    /* Nothing to do if the shared disk is not recored in
     * the table.
     */
1016
    if (!qemuSharedDeviceEntryDomainExists(entry, name, &idx)) {
1017 1018 1019 1020 1021
        ret = 0;
        goto cleanup;
    }

    if (entry->ref != 1) {
1022
        if (!(new_entry = qemuSharedDeviceEntryCopy(entry)))
1023 1024 1025 1026 1027 1028 1029 1030 1031
            goto cleanup;

        if (idx != new_entry->ref - 1)
            memmove(&new_entry->domains[idx],
                    &new_entry->domains[idx + 1],
                    sizeof(*new_entry->domains) * (new_entry->ref - idx - 1));

        VIR_SHRINK_N(new_entry->domains, new_entry->ref, 1);

1032 1033
        if (virHashUpdateEntry(driver->sharedDevices, key, new_entry) < 0){
            qemuSharedDeviceEntryFree(new_entry, NULL);
1034
            goto cleanup;
1035
        }
1036
    } else {
1037
        if (virHashRemoveEntry(driver->sharedDevices, key) < 0)
1038
            goto cleanup;
1039 1040
    }

1041 1042
    ret = 0;
cleanup:
1043
    qemuDriverUnlock(driver);
1044 1045
    VIR_FREE(dev_name);
    VIR_FREE(dev_path);
1046
    VIR_FREE(key);
1047
    return ret;
1048
}
1049

1050
int
1051
qemuSetUnprivSGIO(virDomainDeviceDefPtr dev)
1052
{
1053 1054
    virDomainDiskDefPtr disk = NULL;
    virDomainHostdevDefPtr hostdev = NULL;
1055
    char *sysfs_path = NULL;
1056 1057 1058
    char *path = NULL;
    char *hostdev_name = NULL;
    char *hostdev_path = NULL;
1059 1060 1061 1062 1063 1064
    int val = -1;
    int ret = 0;

    /* "sgio" is only valid for block disk; cdrom
     * and floopy disk can have empty source.
     */
1065 1066 1067
    if (dev->type == VIR_DOMAIN_DEVICE_DISK) {
        disk = dev->data.disk;

1068
        if (disk->device != VIR_DOMAIN_DISK_DEVICE_LUN ||
1069
            !virDomainDiskSourceIsBlockType(disk))
1070 1071 1072 1073 1074 1075 1076 1077 1078 1079 1080 1081 1082 1083 1084 1085 1086
            return 0;

        path = disk->src;
    } else if (dev->type == VIR_DOMAIN_DEVICE_HOSTDEV) {
        hostdev = dev->data.hostdev;

        if (!hostdev->shareable ||
            !(hostdev->mode == VIR_DOMAIN_HOSTDEV_MODE_SUBSYS &&
              hostdev->source.subsys.type == VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI))
            return 0;

        if (!(hostdev_name = virSCSIDeviceGetDevName(hostdev->source.subsys.u.scsi.adapter,
                                                     hostdev->source.subsys.u.scsi.bus,
                                                     hostdev->source.subsys.u.scsi.target,
                                                     hostdev->source.subsys.u.scsi.unit)))
            goto cleanup;

1087
        if (virAsprintf(&hostdev_path, "/dev/%s", hostdev_name) < 0)
1088 1089 1090 1091
            goto cleanup;

        path = hostdev_path;
    } else {
1092
        return 0;
1093
    }
1094

1095 1096 1097 1098 1099
    sysfs_path = virGetUnprivSGIOSysfsPath(path, NULL);
    if (sysfs_path == NULL) {
        ret = -1;
        goto cleanup;
    }
1100 1101

    /* By default, filter the SG_IO commands, i.e. set unpriv_sgio to 0.  */
1102 1103 1104 1105 1106 1107

    if (dev->type == VIR_DOMAIN_DEVICE_DISK)
        val = (disk->sgio == VIR_DOMAIN_DEVICE_SGIO_UNFILTERED);
    else
        val = (hostdev->source.subsys.u.scsi.sgio ==
               VIR_DOMAIN_DEVICE_SGIO_UNFILTERED);
1108 1109 1110 1111 1112 1113

    /* Do not do anything if unpriv_sgio is not supported by the kernel and the
     * whitelist is enabled.  But if requesting unfiltered access, always call
     * virSetDeviceUnprivSGIO, to report an error for unsupported unpriv_sgio.
     */
    if ((virFileExists(sysfs_path) || val == 1) &&
1114
        virSetDeviceUnprivSGIO(path, NULL, val) < 0)
1115 1116
        ret = -1;

1117
cleanup:
1118
    VIR_FREE(sysfs_path);
1119 1120
    VIR_FREE(hostdev_name);
    VIR_FREE(hostdev_path);
1121 1122
    return ret;
}
1123

1124 1125 1126 1127
int qemuDriverAllocateID(virQEMUDriverPtr driver)
{
    return virAtomicIntInc(&driver->nextvmid);
}
1128

1129 1130 1131 1132 1133 1134 1135 1136 1137 1138 1139 1140 1141 1142 1143 1144 1145 1146 1147 1148 1149 1150 1151 1152 1153 1154 1155 1156 1157 1158 1159 1160 1161 1162 1163 1164 1165 1166 1167 1168 1169 1170 1171 1172 1173 1174 1175 1176 1177 1178 1179 1180 1181 1182 1183 1184 1185 1186 1187 1188 1189
static int
qemuAddISCSIPoolSourceHost(virDomainDiskDefPtr def,
                           virStoragePoolDefPtr pooldef)
{
    int ret = -1;
    char **tokens = NULL;

    /* Only support one host */
    if (pooldef->source.nhost != 1) {
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("Expected exactly 1 host for the storage pool"));
        goto cleanup;
    }

    /* iscsi pool only supports one host */
    def->nhosts = 1;

    if (VIR_ALLOC_N(def->hosts, def->nhosts) < 0)
        goto cleanup;

    if (VIR_STRDUP(def->hosts[0].name, pooldef->source.hosts[0].name) < 0)
        goto cleanup;

    if (virAsprintf(&def->hosts[0].port, "%d",
                    pooldef->source.hosts[0].port ?
                    pooldef->source.hosts[0].port :
                    3260) < 0)
        goto cleanup;

    /* iscsi volume has name like "unit:0:0:1" */
    if (!(tokens = virStringSplit(def->srcpool->volume, ":", 0)))
        goto cleanup;

    if (virStringListLength(tokens) != 4) {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("unexpected iscsi volume name '%s'"),
                       def->srcpool->volume);
        goto cleanup;
    }

    /* iscsi pool has only one source device path */
    if (virAsprintf(&def->src, "%s/%s",
                    pooldef->source.devices[0].path,
                    tokens[3]) < 0)
        goto cleanup;

    /* Storage pool have not supported these 2 attributes yet,
     * use the defaults.
     */
    def->hosts[0].transport = VIR_DOMAIN_DISK_PROTO_TRANS_TCP;
    def->hosts[0].socket = NULL;

    def->protocol = VIR_DOMAIN_DISK_PROTOCOL_ISCSI;

    ret = 0;

cleanup:
    virStringFreeList(tokens);
    return ret;
}

1190 1191 1192 1193 1194 1195 1196 1197 1198 1199 1200 1201 1202 1203 1204 1205 1206 1207 1208 1209 1210 1211 1212 1213 1214 1215 1216 1217 1218 1219 1220 1221 1222 1223 1224 1225 1226 1227 1228 1229 1230 1231 1232 1233 1234 1235 1236 1237 1238 1239 1240 1241
static int
qemuTranslateDiskSourcePoolAuth(virDomainDiskDefPtr def,
                                virStoragePoolDefPtr pooldef)
{
    int ret = -1;

    /* Only necessary when authentication set */
    if (pooldef->source.authType == VIR_STORAGE_POOL_AUTH_NONE) {
        ret = 0;
        goto cleanup;
    }

    /* Copy the authentication information from the storage pool
     * into the virDomainDiskDef
     */
    if (pooldef->source.authType == VIR_STORAGE_POOL_AUTH_CHAP) {
        if (VIR_STRDUP(def->auth.username,
                       pooldef->source.auth.chap.username) < 0)
            goto cleanup;
        if (pooldef->source.auth.chap.secret.uuidUsable) {
            def->auth.secretType = VIR_DOMAIN_DISK_SECRET_TYPE_UUID;
            memcpy(def->auth.secret.uuid,
                   pooldef->source.auth.chap.secret.uuid,
                   VIR_UUID_BUFLEN);
        } else {
            if (VIR_STRDUP(def->auth.secret.usage,
                           pooldef->source.auth.chap.secret.usage) < 0)
                goto cleanup;
            def->auth.secretType = VIR_DOMAIN_DISK_SECRET_TYPE_USAGE;
        }
    } else if (pooldef->source.authType == VIR_STORAGE_POOL_AUTH_CEPHX) {
        if (VIR_STRDUP(def->auth.username,
                       pooldef->source.auth.cephx.username) < 0)
            goto cleanup;
        if (pooldef->source.auth.cephx.secret.uuidUsable) {
            def->auth.secretType = VIR_DOMAIN_DISK_SECRET_TYPE_UUID;
            memcpy(def->auth.secret.uuid,
                   pooldef->source.auth.cephx.secret.uuid,
                   VIR_UUID_BUFLEN);
        } else {
            if (VIR_STRDUP(def->auth.secret.usage,
                           pooldef->source.auth.cephx.secret.usage) < 0)
                goto cleanup;
            def->auth.secretType = VIR_DOMAIN_DISK_SECRET_TYPE_USAGE;
        }
    }
    ret = 0;

cleanup:
    return ret;
}

1242 1243 1244 1245
int
qemuTranslateDiskSourcePool(virConnectPtr conn,
                            virDomainDiskDefPtr def)
{
1246
    virStoragePoolDefPtr pooldef = NULL;
1247 1248
    virStoragePoolPtr pool = NULL;
    virStorageVolPtr vol = NULL;
1249
    char *poolxml = NULL;
1250 1251
    virStorageVolInfo info;
    int ret = -1;
1252
    virErrorPtr savedError = NULL;
1253 1254 1255 1256 1257 1258 1259 1260 1261 1262 1263 1264 1265 1266 1267 1268 1269 1270 1271 1272 1273 1274 1275 1276 1277 1278 1279 1280 1281

    if (def->type != VIR_DOMAIN_DISK_TYPE_VOLUME)
        return 0;

    if (!def->srcpool)
        return 0;

    if (!(pool = virStoragePoolLookupByName(conn, def->srcpool->pool)))
        return -1;

    if (!(vol = virStorageVolLookupByName(pool, def->srcpool->volume)))
        goto cleanup;

    if (virStorageVolGetInfo(vol, &info) < 0)
        goto cleanup;

    if (def->startupPolicy &&
        info.type != VIR_STORAGE_VOL_FILE) {
        virReportError(VIR_ERR_XML_ERROR, "%s",
                       _("'startupPolicy' is only valid for 'file' type volume"));
        goto cleanup;
    }

    switch (info.type) {
    case VIR_STORAGE_VOL_FILE:
    case VIR_STORAGE_VOL_DIR:
        if (!(def->src = virStorageVolGetPath(vol)))
            goto cleanup;
        break;
1282 1283 1284 1285 1286 1287 1288 1289 1290 1291 1292 1293 1294 1295 1296 1297 1298 1299 1300 1301 1302 1303 1304 1305 1306 1307 1308 1309 1310
    case VIR_STORAGE_VOL_BLOCK:
        if (!(poolxml = virStoragePoolGetXMLDesc(pool, 0)))
            goto cleanup;

        if (!(pooldef = virStoragePoolDefParseString(poolxml)))
            goto cleanup;

        if (def->srcpool->mode && pooldef->type != VIR_STORAGE_POOL_ISCSI) {
            virReportError(VIR_ERR_XML_ERROR, "%s",
                           _("disk source mode is only valid when "
                             "storage pool is of iscsi type"));
            goto cleanup;
        }

        def->srcpool->pooltype = pooldef->type;
        if (pooldef->type == VIR_STORAGE_POOL_ISCSI) {
            /* Default to use the LUN's path on host */
            if (!def->srcpool->mode)
                def->srcpool->mode = VIR_DOMAIN_DISK_SOURCE_POOL_MODE_HOST;

            if (def->srcpool->mode ==
                VIR_DOMAIN_DISK_SOURCE_POOL_MODE_DIRECT) {
                if (qemuAddISCSIPoolSourceHost(def, pooldef) < 0)
                    goto cleanup;
            } else if (def->srcpool->mode ==
                       VIR_DOMAIN_DISK_SOURCE_POOL_MODE_HOST) {
                if (!(def->src = virStorageVolGetPath(vol)))
                    goto cleanup;
            }
1311 1312 1313

            if (qemuTranslateDiskSourcePoolAuth(def, pooldef) < 0)
                goto cleanup;
1314 1315 1316 1317 1318 1319
        } else {
            if (!(def->src = virStorageVolGetPath(vol)))
                goto cleanup;
        }

        break;
1320 1321 1322 1323 1324 1325 1326 1327 1328
    case VIR_STORAGE_VOL_NETWORK:
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("Using network volume as disk source is not supported"));
        goto cleanup;
    }

    def->srcpool->voltype = info.type;
    ret = 0;
cleanup:
1329 1330 1331 1332 1333 1334 1335 1336 1337 1338 1339
    if (ret < 0)
        savedError = virSaveLastError();
    if (pool)
        virStoragePoolFree(pool);
    if (vol)
        virStorageVolFree(vol);
    if (savedError) {
        virSetError(savedError);
        virFreeError(savedError);
    }

1340 1341
    VIR_FREE(poolxml);
    virStoragePoolDefFree(pooldef);
1342 1343
    return ret;
}