qemu_hotplug.c 145.1 KB
Newer Older
1
/*
2
 * qemu_hotplug.c: QEMU device hotplug management
3
 *
4
 * Copyright (C) 2006-2016 Red Hat, Inc.
5 6 7 8 9 10 11 12 13 14 15 16 17
 * Copyright (C) 2006 Daniel P. Berrange
 *
 * This library is free software; you can redistribute it and/or
 * modify it under the terms of the GNU Lesser General Public
 * License as published by the Free Software Foundation; either
 * version 2.1 of the License, or (at your option) any later version.
 *
 * This library is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 * Lesser General Public License for more details.
 *
 * You should have received a copy of the GNU Lesser General Public
18
 * License along with this library.  If not, see
O
Osier Yang 已提交
19
 * <http://www.gnu.org/licenses/>.
20 21 22 23 24 25 26 27
 *
 * Author: Daniel P. Berrange <berrange@redhat.com>
 */


#include <config.h>

#include "qemu_hotplug.h"
28
#include "qemu_hotplugpriv.h"
29
#include "qemu_alias.h"
30 31
#include "qemu_capabilities.h"
#include "qemu_domain.h"
32
#include "qemu_domain_address.h"
33 34
#include "qemu_command.h"
#include "qemu_hostdev.h"
35
#include "qemu_interface.h"
36
#include "qemu_process.h"
37
#include "domain_audit.h"
38
#include "netdev_bandwidth_conf.h"
39
#include "domain_nwfilter.h"
40
#include "virlog.h"
41
#include "datatypes.h"
42
#include "virerror.h"
43
#include "viralloc.h"
44
#include "virpci.h"
E
Eric Blake 已提交
45
#include "virfile.h"
46
#include "virprocess.h"
47
#include "qemu_cgroup.h"
48
#include "locking/domain_lock.h"
49
#include "network/bridge_driver.h"
50 51
#include "virnetdev.h"
#include "virnetdevbridge.h"
A
Ansis Atteka 已提交
52
#include "virnetdevtap.h"
53
#include "virnetdevopenvswitch.h"
54
#include "virnetdevmidonet.h"
55
#include "device_conf.h"
56
#include "virstoragefile.h"
57
#include "virstring.h"
58
#include "virtime.h"
59
#include "storage/storage_driver.h"
60 61

#define VIR_FROM_THIS VIR_FROM_QEMU
62 63 64

VIR_LOG_INIT("qemu.qemu_hotplug");

65
#define CHANGE_MEDIA_TIMEOUT 5000
66

67 68 69 70
/* Wait up to 5 seconds for device removal to finish. */
unsigned long long qemuDomainRemoveDeviceWaitTime = 1000ull * 5;


71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147
/**
 * qemuDomainPrepareDisk:
 * @driver: qemu driver struct
 * @vm: domain object
 * @disk: disk to prepare
 * @overridesrc: Source different than @disk->src when necessary
 * @teardown: Teardown the disk instead of adding it to a vm
 *
 * Setup the locks, cgroups and security permissions on a disk of a VM.
 * If @overridesrc is specified the source struct is used instead of the
 * one present in @disk. If @teardown is true, then the labels and cgroups
 * are removed instead.
 *
 * Returns 0 on success and -1 on error. Reports libvirt error.
 */
static int
qemuDomainPrepareDisk(virQEMUDriverPtr driver,
                      virDomainObjPtr vm,
                      virDomainDiskDefPtr disk,
                      virStorageSourcePtr overridesrc,
                      bool teardown)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    int ret = -1;
    virStorageSourcePtr origsrc = NULL;

    if (overridesrc) {
        origsrc = disk->src;
        disk->src = overridesrc;
    }

    /* just tear down the disk access */
    if (teardown) {
        ret = 0;
        goto rollback_cgroup;
    }

    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
                                vm, disk) < 0)
        goto cleanup;

    if (virSecurityManagerSetDiskLabel(driver->securityManager,
                                       vm->def, disk) < 0)
        goto rollback_lock;

    if (qemuSetupDiskCgroup(vm, disk) < 0)
        goto rollback_label;

    ret = 0;
    goto cleanup;

 rollback_cgroup:
    if (qemuTeardownDiskCgroup(vm, disk) < 0)
        VIR_WARN("Unable to tear down cgroup access on %s",
                 virDomainDiskGetSource(disk));

 rollback_label:
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
        VIR_WARN("Unable to restore security label on %s",
                 virDomainDiskGetSource(disk));

 rollback_lock:
    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s",
                 virDomainDiskGetSource(disk));

 cleanup:
    if (origsrc)
        disk->src = origsrc;

    virObjectUnref(cfg);

    return ret;
}


148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165
static int
qemuHotplugWaitForTrayEject(virQEMUDriverPtr driver,
                            virDomainObjPtr vm,
                            virDomainDiskDefPtr disk,
                            const char *driveAlias,
                            bool force)
{
    unsigned long long now;
    int rc;

    if (virTimeMillisNow(&now) < 0)
        return -1;

    while (disk->tray_status != VIR_DOMAIN_DISK_TRAY_OPEN) {
        if ((rc = virDomainObjWaitUntil(vm, now + CHANGE_MEDIA_TIMEOUT)) < 0)
            return -1;

        if (rc > 0) {
166 167 168 169 170 171
            /* the caller called qemuMonitorEjectMedia which usually reports an
             * error. Report the failure in an off-chance that it didn't. */
            if (!virGetLastError()) {
                virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                               _("timed out waiting for disk tray status update"));
            }
172 173 174 175 176 177 178 179 180 181 182 183 184 185
            return -1;
        }
    }

    /* re-issue ejection command to pop out the media */
    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorEjectMedia(qemuDomainGetMonitor(vm), driveAlias, force);
    if (qemuDomainObjExitMonitor(driver, vm) < 0 || rc < 0)
        return -1;

    return 0;
}


186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206
/**
 * qemuDomainChangeEjectableMedia:
 * @driver: qemu driver structure
 * @vm: domain definition
 * @disk: disk definition to change the source of
 * @newsrc: new disk source to change to
 * @force: force the change of media
 *
 * Change the media in an ejectable device to the one described by
 * @newsrc. This function also removes the old source from the
 * shared device table if appropriate. Note that newsrc is consumed
 * on success and the old source is freed on success.
 *
 * Returns 0 on success, -1 on error and reports libvirt error
 */
int
qemuDomainChangeEjectableMedia(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDiskDefPtr disk,
                               virStorageSourcePtr newsrc,
                               bool force)
207
{
208
    int ret = -1, rc;
209
    char *driveAlias = NULL;
210
    qemuDomainObjPrivatePtr priv = vm->privateData;
211
    qemuDomainDiskPrivatePtr diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
212
    const char *format = NULL;
213
    char *sourcestr = NULL;
214

215
    if (!disk->info.alias) {
216
        virReportError(VIR_ERR_INTERNAL_ERROR,
217
                       _("missing disk device alias name for %s"), disk->dst);
218
        goto cleanup;
219 220
    }

221 222
    if (disk->device != VIR_DOMAIN_DISK_DEVICE_FLOPPY &&
        disk->device != VIR_DOMAIN_DISK_DEVICE_CDROM) {
223 224
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("Removable media not supported for %s device"),
225
                       virDomainDiskDeviceTypeToString(disk->device));
226
        goto cleanup;
227 228
    }

229
    if (qemuDomainPrepareDisk(driver, vm, disk, newsrc, false) < 0)
230
        goto cleanup;
231

232
    if (!(driveAlias = qemuDeviceDriveHostAlias(disk)))
233 234
        goto error;

235 236 237 238
    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorEjectMedia(priv->mon, driveAlias, force);
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
239

240 241 242
    /* If the tray is present and tray change event is supported wait for it to open. */
    if (diskPriv->tray &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_TRAY_MOVED)) {
243 244
        rc = qemuHotplugWaitForTrayEject(driver, vm, disk, driveAlias, force);
        if (rc < 0)
245
            goto error;
246 247 248 249 250
    } else  {
        /* otherwise report possible errors from the attempt to eject the media*/
        if (rc < 0)
            goto error;
    }
251

252
    if (!virStorageSourceIsEmpty(newsrc)) {
253
        if (qemuGetDriveSourceString(newsrc, diskPriv->secinfo, &sourcestr) < 0)
254 255
            goto error;

256 257 258
        if (virStorageSourceGetActualType(newsrc) != VIR_STORAGE_TYPE_DIR) {
            if (newsrc->format > 0) {
                format = virStorageFileFormatTypeToString(newsrc->format);
259
            } else {
260 261
                if (disk->src->format > 0)
                    format = virStorageFileFormatTypeToString(disk->src->format);
262
            }
263
        }
264
        qemuDomainObjEnterMonitor(driver, vm);
265 266 267 268 269
        rc = qemuMonitorChangeMedia(priv->mon,
                                    driveAlias,
                                    sourcestr,
                                    format);
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
270
            goto cleanup;
271
    }
272

273
    virDomainAuditDisk(vm, disk->src, newsrc, "update", rc >= 0);
274

275
    if (rc < 0)
276 277
        goto error;

278 279
    /* remove the old source from shared device list */
    ignore_value(qemuRemoveSharedDisk(driver, disk, vm->def->name));
280
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
281

282 283 284
    virStorageSourceFree(disk->src);
    disk->src = newsrc;
    newsrc = NULL;
285
    ret = 0;
286

287
 cleanup:
288
    VIR_FREE(driveAlias);
289
    VIR_FREE(sourcestr);
290 291
    return ret;

292
 error:
293 294
    virDomainAuditDisk(vm, disk->src, newsrc, "update", false);
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, newsrc, true));
295
    goto cleanup;
296 297
}

298

299 300 301 302 303
static int
qemuDomainAttachVirtioDiskDevice(virConnectPtr conn,
                                 virQEMUDriverPtr driver,
                                 virDomainObjPtr vm,
                                 virDomainDiskDefPtr disk)
304
{
305
    int ret = -1;
306
    int rv;
307
    qemuDomainObjPrivatePtr priv = vm->privateData;
308
    virErrorPtr orig_err;
309 310
    char *devstr = NULL;
    char *drivestr = NULL;
311
    char *drivealias = NULL;
312
    bool releaseaddr = false;
313
    bool driveAdded = false;
314
    bool secobjAdded = false;
315
    bool encobjAdded = false;
316
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
317
    const char *src = virDomainDiskGetSource(disk);
318
    virJSONValuePtr secobjProps = NULL;
319
    virJSONValuePtr encobjProps = NULL;
320 321
    qemuDomainDiskPrivatePtr diskPriv;
    qemuDomainSecretInfoPtr secinfo;
322
    qemuDomainSecretInfoPtr encinfo;
323

324
    if (!disk->info.type) {
325
        if (qemuDomainMachineIsS390CCW(vm->def) &&
326 327 328 329
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
330 331 332 333
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, disk->info, priv->qemuCaps,
                                            disk->dst))
            goto cleanup;
334 335
    }

336
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
337
        goto cleanup;
338

339 340 341
    if (disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
        if (virDomainCCWAddressAssign(&disk->info, priv->ccwaddrs,
                                      !disk->info.addr.ccw.assigned) < 0)
342
            goto error;
343 344 345
    } else if (!disk->info.type ||
                disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &disk->info) < 0)
346
            goto error;
347 348 349 350
    }
    releaseaddr = true;
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
351

J
John Ferlan 已提交
352
    if (qemuDomainSecretDiskPrepare(conn, priv, disk) < 0)
353 354
        goto error;

355 356 357 358 359 360 361
    diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
    secinfo = diskPriv->secinfo;
    if (secinfo && secinfo->type == VIR_DOMAIN_SECRET_INFO_TYPE_AES) {
        if (qemuBuildSecretInfoProps(secinfo, &secobjProps) < 0)
            goto error;
    }

362 363 364 365
    encinfo = diskPriv->encinfo;
    if (encinfo && qemuBuildSecretInfoProps(encinfo, &encobjProps) < 0)
        goto error;

366
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
367
        goto error;
368

369
    if (!(drivealias = qemuDeviceDriveHostAlias(disk)))
370 371 372 373
        goto error;

    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
374

375
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
376 377
        goto error;

378
    qemuDomainObjEnterMonitor(driver, vm);
379

380 381 382 383 384
    if (secobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", secinfo->s.aes.alias,
                                  secobjProps);
        secobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
385
            goto exit_monitor;
386
        secobjAdded = true;
387 388
    }

389 390 391 392 393 394
    if (encobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", encinfo->s.aes.alias,
                                  encobjProps);
        encobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
            goto exit_monitor;
395
        encobjAdded = true;
396 397
    }

398
    if (qemuMonitorAddDrive(priv->mon, drivestr) < 0)
399 400
        goto exit_monitor;
    driveAdded = true;
401 402

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
403
        goto exit_monitor;
404

405 406
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        releaseaddr = false;
407
        goto error;
408
    }
409

410
    virDomainAuditDisk(vm, NULL, disk->src, "attach", true);
411 412

    virDomainDiskInsertPreAlloced(vm->def, disk);
413
    ret = 0;
414

415
 cleanup:
416
    virJSONValueFree(secobjProps);
417
    virJSONValueFree(encobjProps);
418
    qemuDomainSecretDiskDestroy(disk);
419 420
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
421
    VIR_FREE(drivealias);
422 423
    virObjectUnref(cfg);
    return ret;
424

425
 exit_monitor:
426
    orig_err = virSaveLastError();
427
    if (driveAdded && qemuMonitorDriveDel(priv->mon, drivealias) < 0) {
428 429 430
        VIR_WARN("Unable to remove drive %s (%s) after failed "
                 "qemuMonitorAddDevice", drivealias, drivestr);
    }
431 432
    if (secobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, secinfo->s.aes.alias));
433 434
    if (encobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, encinfo->s.aes.alias));
435 436 437 438
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }
439

440 441 442 443 444
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        releaseaddr = false;

    virDomainAuditDisk(vm, NULL, disk->src, "attach", false);

445
 error:
446
    if (releaseaddr)
447
        qemuDomainReleaseDeviceAddress(vm, &disk->info, src);
448

449
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
450
    goto cleanup;
451 452 453
}


454 455 456
int qemuDomainAttachControllerDevice(virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainControllerDefPtr controller)
457 458 459 460 461
{
    int ret = -1;
    const char* type = virDomainControllerTypeToString(controller->type);
    char *devstr = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
462
    bool releaseaddr = false;
463

464 465 466 467 468 469 470
    if (controller->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("'%s' controller cannot be hot plugged."),
                       virDomainControllerTypeToString(controller->type));
        return -1;
    }

471 472 473 474 475 476 477 478
    /* default idx would normally be set by virDomainDefPostParse(),
     * which isn't called in the case of live attach of a single
     * device.
     */
    if (controller->idx == -1)
       controller->idx = virDomainControllerFindUnusedIndex(vm->def,
                                                            controller->type);

479
    if (virDomainControllerFind(vm->def, controller->type, controller->idx) >= 0) {
480 481 482 483
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("target %s:%d already exists"),
                       type, controller->idx);
        return -1;
484 485
    }

486 487 488 489 490 491 492 493 494
    if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE) {
        if (qemuDomainMachineIsS390CCW(vm->def) &&
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW))
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, controller->info,
                                            priv->qemuCaps, "controller"))
495
            goto cleanup;
496
    }
497

498 499 500 501 502 503 504
    if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE ||
        controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &controller->info) < 0)
            goto cleanup;
    } else if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
        if (virDomainCCWAddressAssign(&controller->info, priv->ccwaddrs,
                                      !controller->info.addr.ccw.assigned) < 0)
505 506
            goto cleanup;
    }
507 508 509 510 511 512
    releaseaddr = true;
    if (qemuAssignDeviceControllerAlias(vm->def, priv->qemuCaps, controller) < 0)
        goto cleanup;

    if (!(devstr = qemuBuildControllerDevStr(vm->def, controller, priv->qemuCaps, NULL)))
        goto cleanup;
513

514
    if (VIR_REALLOC_N(vm->def->controllers, vm->def->ncontrollers+1) < 0)
515 516
        goto cleanup;

517
    qemuDomainObjEnterMonitor(driver, vm);
518
    ret = qemuMonitorAddDevice(priv->mon, devstr);
519 520 521 522 523
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        releaseaddr = false;
        ret = -1;
        goto cleanup;
    }
524 525

    if (ret == 0) {
526 527
        if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE)
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
528 529 530
        virDomainControllerInsertPreAlloced(vm->def, controller);
    }

531
 cleanup:
532 533
    if (ret != 0 && releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
534 535 536 537 538 539

    VIR_FREE(devstr);
    return ret;
}

static virDomainControllerDefPtr
540
qemuDomainFindOrCreateSCSIDiskController(virQEMUDriverPtr driver,
541
                                         virDomainObjPtr vm,
542
                                         int controller)
543
{
544
    size_t i;
545
    virDomainControllerDefPtr cont;
546

547
    for (i = 0; i < vm->def->ncontrollers; i++) {
548 549 550 551 552 553 554 555 556 557 558
        cont = vm->def->controllers[i];

        if (cont->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (cont->idx == controller)
            return cont;
    }

    /* No SCSI controller present, for backward compatibility we
     * now hotplug a controller */
559
    if (VIR_ALLOC(cont) < 0)
560 561
        return NULL;
    cont->type = VIR_DOMAIN_CONTROLLER_TYPE_SCSI;
562
    cont->idx = controller;
563 564
    cont->model = -1;

565
    VIR_INFO("No SCSI controller present, hotplugging one");
566 567
    if (qemuDomainAttachControllerDevice(driver,
                                         vm, cont) < 0) {
568 569 570 571 572
        VIR_FREE(cont);
        return NULL;
    }

    if (!virDomainObjIsActive(vm)) {
573 574
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit"));
575 576 577 578 579 580 581 582 583
        /* cont doesn't need freeing here, since the reference
         * now held in def->controllers */
        return NULL;
    }

    return cont;
}


584 585 586 587 588
static int
qemuDomainAttachSCSIDisk(virConnectPtr conn,
                         virQEMUDriverPtr driver,
                         virDomainObjPtr vm,
                         virDomainDiskDefPtr disk)
589
{
590
    size_t i;
591
    qemuDomainObjPrivatePtr priv = vm->privateData;
592
    virErrorPtr orig_err;
593 594
    char *drivestr = NULL;
    char *devstr = NULL;
595
    bool driveAdded = false;
596
    bool encobjAdded = false;
597
    int ret = -1;
598
    int rv;
599
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
600 601 602
    virJSONValuePtr encobjProps = NULL;
    qemuDomainDiskPrivatePtr diskPriv;
    qemuDomainSecretInfoPtr encinfo;
603

604
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
605
        goto cleanup;
606 607 608

    /* We should have an address already, so make sure */
    if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE) {
609 610 611
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("unexpected disk address type %s"),
                       virDomainDeviceAddressTypeToString(disk->info.type));
612 613 614
        goto error;
    }

615 616 617 618 619 620 621 622 623 624 625 626
    /* Let's make sure the disk has a controller defined and loaded before
     * trying to add it. The controller used by the disk must exist before a
     * qemu command line string is generated.
     *
     * Ensure that the given controller and all controllers with a smaller index
     * exist; there must not be any missing index in between.
     */
    for (i = 0; i <= disk->info.addr.drive.controller; i++) {
        if (!qemuDomainFindOrCreateSCSIDiskController(driver, vm, i))
            goto error;
    }

627 628
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
629

J
John Ferlan 已提交
630
    if (qemuDomainSecretDiskPrepare(conn, priv, disk) < 0)
631 632
        goto error;

633 634 635 636 637
    diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
    encinfo = diskPriv->encinfo;
    if (encinfo && qemuBuildSecretInfoProps(encinfo, &encobjProps) < 0)
        goto error;

638 639
    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
640

641
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
642 643
        goto error;

644
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
645 646
        goto error;

647
    qemuDomainObjEnterMonitor(driver, vm);
648

649 650 651 652 653 654
    if (encobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", encinfo->s.aes.alias,
                                  encobjProps);
        encobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
            goto exit_monitor;
655
        encobjAdded = true;
656 657
    }

658
    if (qemuMonitorAddDrive(priv->mon, drivestr) < 0)
659 660
        goto exit_monitor;
    driveAdded = true;
661

662
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
663
        goto exit_monitor;
664

665
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
666
        goto error;
667

668
    virDomainAuditDisk(vm, NULL, disk->src, "attach", true);
669 670

    virDomainDiskInsertPreAlloced(vm->def, disk);
671
    ret = 0;
672

673
 cleanup:
674
    virJSONValueFree(encobjProps);
675
    qemuDomainSecretDiskDestroy(disk);
676 677
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
678 679
    virObjectUnref(cfg);
    return ret;
680

681
 exit_monitor:
682
    /* XXX should call 'drive_del' on error but this does not exist yet */
683 684
    if (driveAdded)
        VIR_WARN("qemuMonitorAddDevice failed on %s (%s)", drivestr, devstr);
685

686 687 688 689 690 691 692 693
    orig_err = virSaveLastError();
    if (encobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, encinfo->s.aes.alias));
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

694 695 696 697
    ignore_value(qemuDomainObjExitMonitor(driver, vm));

    virDomainAuditDisk(vm, NULL, disk->src, "attach", false);

698
 error:
699
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
700
    goto cleanup;
701 702 703
}


704
static int
705
qemuDomainAttachUSBMassStorageDevice(virQEMUDriverPtr driver,
706 707
                                     virDomainObjPtr vm,
                                     virDomainDiskDefPtr disk)
708 709
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
710
    int ret = -1;
711 712
    char *drivestr = NULL;
    char *devstr = NULL;
713
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
714
    const char *src = virDomainDiskGetSource(disk);
715 716 717 718 719 720 721
    bool releaseaddr = false;

    if (priv->usbaddrs) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, &disk->info) < 0)
            goto cleanup;
        releaseaddr = true;
    }
722

723
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
724
        goto cleanup;
725

726
    /* XXX not correct once we allow attaching a USB CDROM */
727
    if (!src) {
728 729
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       "%s", _("disk source path is missing"));
730 731 732
        goto error;
    }

733 734
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
735
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
736 737 738
        goto error;
    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
739

740
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
741 742
        goto error;

743
    qemuDomainObjEnterMonitor(driver, vm);
744 745 746 747 748 749 750 751
    ret = qemuMonitorAddDrive(priv->mon, drivestr);
    if (ret == 0) {
        ret = qemuMonitorAddDevice(priv->mon, devstr);
        if (ret < 0) {
            VIR_WARN("qemuMonitorAddDevice failed on %s (%s)",
                     drivestr, devstr);
            /* XXX should call 'drive_del' on error but this does not
               exist yet */
752 753
        }
    }
754 755 756 757
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        ret = -1;
        goto error;
    }
758

759
    virDomainAuditDisk(vm, NULL, disk->src, "attach", ret >= 0);
760 761 762 763 764 765

    if (ret < 0)
        goto error;

    virDomainDiskInsertPreAlloced(vm->def, disk);

766
 cleanup:
767 768
    if (ret < 0 && releaseaddr)
        virDomainUSBAddressRelease(priv->usbaddrs, &disk->info);
769 770
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
771 772
    virObjectUnref(cfg);
    return ret;
773

774
 error:
775
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
776
    goto cleanup;
777 778 779
}


780 781 782 783 784 785
int
qemuDomainAttachDeviceDiskLive(virConnectPtr conn,
                               virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
786
    size_t i;
787 788 789
    virDomainDiskDefPtr disk = dev->data.disk;
    virDomainDiskDefPtr orig_disk = NULL;
    int ret = -1;
790
    const char *src = virDomainDiskGetSource(disk);
791

792
    if (STRNEQ_NULLABLE(virDomainDiskGetDriver(disk), "qemu")) {
793 794
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("unsupported driver name '%s' for disk '%s'"),
795
                       virDomainDiskGetDriver(disk), src);
796
        goto cleanup;
797 798
    }

799
    if (virStorageTranslateDiskSourcePool(conn, disk) < 0)
800
        goto cleanup;
801 802

    if (qemuAddSharedDevice(driver, dev, vm->def->name) < 0)
803
        goto cleanup;
804 805

    if (qemuSetUnprivSGIO(dev) < 0)
806
        goto cleanup;
807

808
    if (qemuDomainDetermineDiskChain(driver, vm, disk, false, true) < 0)
809
        goto cleanup;
810

811
    switch ((virDomainDiskDevice) disk->device)  {
812 813 814 815 816
    case VIR_DOMAIN_DISK_DEVICE_CDROM:
    case VIR_DOMAIN_DISK_DEVICE_FLOPPY:
        if (!(orig_disk = virDomainDiskFindByBusAndDst(vm->def,
                                                       disk->bus, disk->dst))) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
817 818 819
                           _("No device with bus '%s' and target '%s'. "
                             "cdrom and floppy device hotplug isn't supported "
                             "by libvirt"),
820 821
                           virDomainDiskBusTypeToString(disk->bus),
                           disk->dst);
822
            goto cleanup;
823 824
        }

825
        if (qemuDomainChangeEjectableMedia(driver, vm, orig_disk,
826
                                           disk->src, false) < 0)
827
            goto cleanup;
828

829
        disk->src = NULL;
830
        ret = 0;
831
        break;
832

833 834
    case VIR_DOMAIN_DISK_DEVICE_DISK:
    case VIR_DOMAIN_DISK_DEVICE_LUN:
835
        for (i = 0; i < vm->def->ndisks; i++) {
836 837
            if (virDomainDiskDefCheckDuplicateInfo(vm->def->disks[i], disk) < 0)
                goto cleanup;
838 839
        }

840 841
        switch ((virDomainDiskBus) disk->bus) {
        case VIR_DOMAIN_DISK_BUS_USB:
842 843 844 845 846
            if (disk->device == VIR_DOMAIN_DISK_DEVICE_LUN) {
                virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                               _("disk device='lun' is not supported for usb bus"));
                break;
            }
847
            ret = qemuDomainAttachUSBMassStorageDevice(driver, vm, disk);
848 849 850
            break;

        case VIR_DOMAIN_DISK_BUS_VIRTIO:
851
            ret = qemuDomainAttachVirtioDiskDevice(conn, driver, vm, disk);
852 853 854
            break;

        case VIR_DOMAIN_DISK_BUS_SCSI:
855
            ret = qemuDomainAttachSCSIDisk(conn, driver, vm, disk);
856 857 858 859 860 861 862 863 864
            break;

        case VIR_DOMAIN_DISK_BUS_IDE:
        case VIR_DOMAIN_DISK_BUS_FDC:
        case VIR_DOMAIN_DISK_BUS_XEN:
        case VIR_DOMAIN_DISK_BUS_UML:
        case VIR_DOMAIN_DISK_BUS_SATA:
        case VIR_DOMAIN_DISK_BUS_SD:
        case VIR_DOMAIN_DISK_BUS_LAST:
865 866 867 868 869
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                           _("disk bus '%s' cannot be hotplugged."),
                           virDomainDiskBusTypeToString(disk->bus));
        }
        break;
870 871

    case VIR_DOMAIN_DISK_DEVICE_LAST:
872 873 874
        break;
    }

875
 cleanup:
876 877 878 879 880 881
    if (ret != 0)
        ignore_value(qemuRemoveSharedDevice(driver, dev, vm->def->name));
    return ret;
}


882 883 884 885
int
qemuDomainAttachNetDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr net)
886 887
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
888 889
    char **tapfdName = NULL;
    int *tapfd = NULL;
890
    size_t tapfdSize = 0;
891 892
    char **vhostfdName = NULL;
    int *vhostfd = NULL;
893
    size_t vhostfdSize = 0;
894 895
    char *nicstr = NULL;
    char *netstr = NULL;
A
Ansis Atteka 已提交
896
    virNetDevVPortProfilePtr vport = NULL;
897 898
    int ret = -1;
    int vlan;
899
    bool releaseaddr = false;
900 901
    bool iface_connected = false;
    int actualType;
902
    virNetDevBandwidthPtr actualBandwidth;
903
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
904
    size_t i;
905

906
    /* preallocate new slot for device */
907
    if (VIR_REALLOC_N(vm->def->nets, vm->def->nnets + 1) < 0)
908
        goto cleanup;
909

910 911 912 913
    /* If appropriate, grab a physical device from the configured
     * network's pool of devices, or resolve bridge device name
     * to the one defined in the network definition.
     */
914
    if (networkAllocateActualDevice(vm->def, net) < 0)
915
        goto cleanup;
916 917

    actualType = virDomainNetGetActualType(net);
918 919 920 921 922 923

    if (actualType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* This is really a "smart hostdev", so it should be attached
         * as a hostdev (the hostdev code will reach over into the
         * netdev-specific code as appropriate), then also added to
         * the nets list (see cleanup:) if successful.
924 925 926
         *
         * qemuDomainAttachHostDevice uses a connection to resolve
         * a SCSI hostdev secret, which is not this case, so pass NULL.
927
         */
928
        ret = qemuDomainAttachHostDevice(NULL, driver, vm,
929 930 931 932
                                         virDomainNetGetActualHostdev(net));
        goto cleanup;
    }

933
    /* Currently only TAP/macvtap devices supports multiqueue. */
934 935
    if (net->driver.virtio.queues > 0 &&
        !(actualType == VIR_DOMAIN_NET_TYPE_NETWORK ||
936
          actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
937 938
          actualType == VIR_DOMAIN_NET_TYPE_DIRECT ||
          actualType == VIR_DOMAIN_NET_TYPE_ETHERNET)) {
939 940 941 942 943 944
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("Multiqueue network is not supported for: %s"),
                       virDomainNetTypeToString(actualType));
        return -1;
    }

945 946 947
    /* and only TAP devices support nwfilter rules */
    if (net->filter &&
        !(actualType == VIR_DOMAIN_NET_TYPE_NETWORK ||
948 949
          actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
          actualType == VIR_DOMAIN_NET_TYPE_ETHERNET)) {
950 951 952 953 954 955 956
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("filterref is not supported for "
                         "network interfaces of type %s"),
                       virDomainNetTypeToString(actualType));
        return -1;
    }

957 958
    if (actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
        actualType == VIR_DOMAIN_NET_TYPE_NETWORK) {
959 960 961
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
962
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
963
            goto cleanup;
964 965 966 967
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
            goto cleanup;
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
968 969
        if (qemuInterfaceBridgeConnect(vm->def, driver, net,
                                       tapfd, &tapfdSize) < 0)
970 971
            goto cleanup;
        iface_connected = true;
972 973
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
974
            goto cleanup;
975
    } else if (actualType == VIR_DOMAIN_NET_TYPE_DIRECT) {
976 977 978 979
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
980
            goto cleanup;
981 982
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
983
            goto cleanup;
984
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
985 986 987
        if (qemuInterfaceDirectConnect(vm->def, driver, net,
                                       tapfd, tapfdSize,
                                       VIR_NETDEV_VPORT_PROFILE_OP_CREATE) < 0)
988 989
            goto cleanup;
        iface_connected = true;
990 991
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
992
            goto cleanup;
993
    } else if (actualType == VIR_DOMAIN_NET_TYPE_ETHERNET) {
994 995 996 997
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
998
            goto cleanup;
999 1000 1001 1002 1003 1004 1005 1006
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
            goto cleanup;
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
        if (qemuInterfaceEthernetConnect(vm->def, driver, net,
                                       tapfd, tapfdSize) < 0)
            goto cleanup;
        iface_connected = true;
1007 1008
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
1009
            goto cleanup;
1010 1011
    }

1012 1013
    /* Set device online immediately */
    if (qemuInterfaceStartDevice(net) < 0)
1014
        goto cleanup;
1015

1016 1017 1018 1019 1020 1021 1022 1023 1024 1025 1026 1027
    /* Set bandwidth or warn if requested and not supported. */
    actualBandwidth = virDomainNetGetActualBandwidth(net);
    if (actualBandwidth) {
        if (virNetDevSupportBandwidth(actualType)) {
            if (virNetDevBandwidthSet(net->ifname, actualBandwidth, false) < 0)
                goto cleanup;
        } else {
            VIR_WARN("setting bandwidth on interfaces of "
                     "type '%s' is not implemented yet",
                     virDomainNetTypeToString(actualType));
        }
    }
1028

M
Michal Privoznik 已提交
1029 1030 1031 1032 1033 1034
    for (i = 0; i < tapfdSize; i++) {
        if (virSecurityManagerSetTapFDLabel(driver->securityManager,
                                            vm->def, tapfd[i]) < 0)
            goto cleanup;
    }

1035 1036
    if (qemuAssignDeviceNetAlias(vm->def, net, -1) < 0)
        goto cleanup;
1037

1038
    if (qemuDomainMachineIsS390CCW(vm->def) &&
1039 1040
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        net->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
J
Ján Tomko 已提交
1041 1042
        if (virDomainCCWAddressAssign(&net->info, priv->ccwaddrs,
                                      !net->info.addr.ccw.assigned) < 0)
1043
            goto cleanup;
1044
    } else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390)) {
1045
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
1046 1047
                       _("virtio-s390 net device cannot be hotplugged."));
        goto cleanup;
1048
    } else if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &net->info) < 0) {
1049 1050
        goto cleanup;
    }
1051

1052 1053
    releaseaddr = true;

1054
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1055 1056 1057 1058 1059
        vlan = -1;
    } else {
        vlan = qemuDomainNetVLAN(net);

        if (vlan < 0) {
1060 1061
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("Unable to attach network devices without vlan"));
1062 1063 1064 1065
            goto cleanup;
        }
    }

1066
    if (VIR_ALLOC_N(tapfdName, tapfdSize) < 0 ||
1067
        VIR_ALLOC_N(vhostfdName, vhostfdSize) < 0)
1068 1069 1070
        goto cleanup;

    for (i = 0; i < tapfdSize; i++) {
1071
        if (virAsprintf(&tapfdName[i], "fd-%s%zu", net->info.alias, i) < 0)
1072
            goto cleanup;
1073 1074
    }

1075
    for (i = 0; i < vhostfdSize; i++) {
1076
        if (virAsprintf(&vhostfdName[i], "vhostfd-%s%zu", net->info.alias, i) < 0)
1077
            goto cleanup;
1078 1079
    }

1080
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1081
        if (!(netstr = qemuBuildHostNetStr(net, driver,
1082 1083 1084
                                           ',', -1,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
1085
            goto cleanup;
1086
    } else {
1087
        if (!(netstr = qemuBuildHostNetStr(net, driver,
1088 1089 1090
                                           ' ', vlan,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
1091
            goto cleanup;
1092 1093
    }

1094
    qemuDomainObjEnterMonitor(driver, vm);
1095
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1096 1097 1098
        if (qemuMonitorAddNetdev(priv->mon, netstr,
                                 tapfd, tapfdName, tapfdSize,
                                 vhostfd, vhostfdName, vhostfdSize) < 0) {
1099
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1100
            virDomainAuditNet(vm, NULL, net, "attach", false);
1101
            goto cleanup;
1102 1103
        }
    } else {
1104 1105 1106
        if (qemuMonitorAddHostNetwork(priv->mon, netstr,
                                      tapfd, tapfdName, tapfdSize,
                                      vhostfd, vhostfdName, vhostfdSize) < 0) {
1107
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1108
            virDomainAuditNet(vm, NULL, net, "attach", false);
1109
            goto cleanup;
1110 1111
        }
    }
1112 1113
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
1114

1115 1116 1117 1118
    for (i = 0; i < tapfdSize; i++)
        VIR_FORCE_CLOSE(tapfd[i]);
    for (i = 0; i < vhostfdSize; i++)
        VIR_FORCE_CLOSE(vhostfd[i]);
1119

1120 1121 1122
    if (!(nicstr = qemuBuildNicDevStr(vm->def, net, vlan, 0,
                                      vhostfdSize, priv->qemuCaps)))
        goto try_remove;
1123

1124
    qemuDomainObjEnterMonitor(driver, vm);
1125 1126 1127 1128
    if (qemuMonitorAddDevice(priv->mon, nicstr) < 0) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        virDomainAuditNet(vm, NULL, net, "attach", false);
        goto try_remove;
1129
    }
1130 1131
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
1132

1133 1134 1135
    /* set link state */
    if (net->linkstate == VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) {
        if (!net->info.alias) {
1136 1137
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device alias not found: cannot set link state to down"));
1138
        } else {
1139
            qemuDomainObjEnterMonitor(driver, vm);
1140

1141
            if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1142
                if (qemuMonitorSetLink(priv->mon, net->info.alias, VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) < 0) {
1143
                    ignore_value(qemuDomainObjExitMonitor(driver, vm));
1144 1145 1146 1147
                    virDomainAuditNet(vm, NULL, net, "attach", false);
                    goto try_remove;
                }
            } else {
1148
                virReportError(VIR_ERR_OPERATION_FAILED, "%s",
1149
                               _("setting of link state not supported: Link is up"));
1150 1151
            }

1152 1153
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
1154 1155 1156 1157
        }
        /* link set to down */
    }

1158
    virDomainAuditNet(vm, NULL, net, "attach", true);
1159 1160 1161

    ret = 0;

1162
 cleanup:
1163 1164 1165
    if (!ret) {
        vm->def->nets[vm->def->nnets++] = net;
    } else {
1166 1167
        if (releaseaddr)
            qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
1168

1169
        if (iface_connected) {
1170
            virDomainConfNWFilterTeardown(net);
1171

1172 1173 1174 1175 1176 1177 1178 1179 1180
            if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_DIRECT) {
                ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                                 net->ifname, &net->mac,
                                 virDomainNetGetActualDirectDev(net),
                                 virDomainNetGetActualDirectMode(net),
                                 virDomainNetGetActualVirtPortProfile(net),
                                 cfg->stateDir));
            }

1181
            vport = virDomainNetGetActualVirtPortProfile(net);
1182 1183 1184 1185 1186 1187 1188 1189 1190
            if (vport) {
                if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_MIDONET) {
                    ignore_value(virNetDevMidonetUnbindPort(vport));
                } else if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH) {
                    ignore_value(virNetDevOpenvswitchRemovePort(
                                     virDomainNetGetActualBridgeName(net),
                                     net->ifname));
                }
            }
1191
        }
A
Ansis Atteka 已提交
1192

1193 1194
        virDomainNetRemoveHostdev(vm->def, net);

1195
        networkReleaseActualDevice(vm->def, net);
1196
    }
1197 1198 1199

    VIR_FREE(nicstr);
    VIR_FREE(netstr);
1200
    for (i = 0; tapfd && i < tapfdSize; i++) {
1201
        VIR_FORCE_CLOSE(tapfd[i]);
1202 1203
        if (tapfdName)
            VIR_FREE(tapfdName[i]);
1204 1205 1206
    }
    VIR_FREE(tapfd);
    VIR_FREE(tapfdName);
1207
    for (i = 0; vhostfd && i < vhostfdSize; i++) {
1208
        VIR_FORCE_CLOSE(vhostfd[i]);
1209 1210
        if (vhostfdName)
            VIR_FREE(vhostfdName[i]);
1211 1212 1213
    }
    VIR_FREE(vhostfd);
    VIR_FREE(vhostfdName);
1214
    virObjectUnref(cfg);
1215 1216 1217

    return ret;

1218
 try_remove:
1219 1220 1221 1222
    if (!virDomainObjIsActive(vm))
        goto cleanup;

    if (vlan < 0) {
1223
        if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1224 1225
            char *netdev_name;
            if (virAsprintf(&netdev_name, "host%s", net->info.alias) < 0)
1226
                goto cleanup;
1227
            qemuDomainObjEnterMonitor(driver, vm);
1228 1229 1230
            if (qemuMonitorRemoveNetdev(priv->mon, netdev_name) < 0)
                VIR_WARN("Failed to remove network backend for netdev %s",
                         netdev_name);
1231
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1232 1233
            VIR_FREE(netdev_name);
        } else {
1234
            VIR_WARN("Unable to remove network backend");
1235 1236 1237 1238
        }
    } else {
        char *hostnet_name;
        if (virAsprintf(&hostnet_name, "host%s", net->info.alias) < 0)
1239
            goto cleanup;
1240
        qemuDomainObjEnterMonitor(driver, vm);
1241 1242 1243
        if (qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0)
            VIR_WARN("Failed to remove network backend for vlan %d, net %s",
                     vlan, hostnet_name);
1244
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
1245 1246 1247 1248 1249 1250
        VIR_FREE(hostnet_name);
    }
    goto cleanup;
}


1251
static int
1252
qemuDomainAttachHostPCIDevice(virQEMUDriverPtr driver,
1253 1254
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
1255 1256 1257 1258 1259 1260
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret;
    char *devstr = NULL;
    int configfd = -1;
    char *configfd_name = NULL;
1261
    bool releaseaddr = false;
1262
    bool teardowncgroup = false;
1263
    bool teardownlabel = false;
1264
    int backend;
1265 1266
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    unsigned int flags = 0;
1267

1268
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs + 1) < 0)
1269
        goto cleanup;
1270

1271 1272
    if (!cfg->relaxedACS)
        flags |= VIR_HOSTDEV_STRICT_ACS_CHECK;
1273
    if (qemuHostdevPreparePCIDevices(driver, vm->def->name, vm->def->uuid,
1274 1275
                                     &hostdev, 1, priv->qemuCaps, flags) < 0)
        goto cleanup;
1276

1277
    /* this could have been changed by qemuHostdevPreparePCIDevices */
1278 1279
    backend = hostdev->source.subsys.u.pci.backend;

1280
    switch ((virDomainHostdevSubsysPCIBackendType) backend) {
1281
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO:
1282 1283 1284 1285 1286 1287
        if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_VFIO_PCI)) {
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("VFIO PCI device assignment is not "
                             "supported by this version of qemu"));
            goto error;
        }
1288 1289
        break;

1290 1291 1292 1293 1294 1295 1296 1297 1298 1299
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_DEFAULT:
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_KVM:
        break;

    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_XEN:
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_TYPE_LAST:
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("QEMU does not support device assignment mode '%s'"),
                       virDomainHostdevSubsysPCIBackendTypeToString(backend));
        goto error;
1300
        break;
1301 1302
    }

1303
    /* Temporarily add the hostdev to the domain definition. This is needed
1304 1305 1306 1307
     * because qemuDomainAdjustMaxMemLock() requires the hostdev to be already
     * part of the domain definition, but other functions like
     * qemuAssignDeviceHostdevAlias() used below expect it *not* to be there.
     * A better way to handle this would be nice */
1308
    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;
1309 1310 1311
    if (qemuDomainAdjustMaxMemLock(vm) < 0) {
        vm->def->hostdevs[--(vm->def->nhostdevs)] = NULL;
        goto error;
1312 1313 1314
    }
    vm->def->hostdevs[--(vm->def->nhostdevs)] = NULL;

1315
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
1316 1317 1318
        goto error;
    teardowncgroup = true;

1319 1320 1321
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto error;
1322 1323
    if (backend != VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO)
        teardownlabel = true;
1324

1325 1326 1327 1328 1329 1330 1331 1332 1333 1334 1335 1336
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
        goto error;
    if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, hostdev->info) < 0)
        goto error;
    releaseaddr = true;
    if (backend != VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_PCI_CONFIGFD)) {
        configfd = qemuOpenPCIConfig(hostdev);
        if (configfd >= 0) {
            if (virAsprintf(&configfd_name, "fd-%s",
                            hostdev->info->alias) < 0)
                goto error;
1337
        }
1338
    }
1339

1340 1341 1342 1343 1344
    if (!virDomainObjIsActive(vm)) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit during hotplug"));
        goto error;
    }
1345

1346 1347 1348
    if (!(devstr = qemuBuildPCIHostdevDevStr(vm->def, hostdev, 0,
                                             configfd_name, priv->qemuCaps)))
        goto error;
1349

1350 1351 1352 1353 1354
    qemuDomainObjEnterMonitor(driver, vm);
    ret = qemuMonitorAddDeviceWithFd(priv->mon, devstr,
                                     configfd, configfd_name);
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto error;
1355

1356
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
1357 1358 1359 1360 1361 1362 1363 1364
    if (ret < 0)
        goto error;

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);
1365
    virObjectUnref(cfg);
1366 1367 1368

    return 0;

1369
 error:
1370 1371
    if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
1372 1373 1374 1375
    if (teardownlabel &&
        virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                              vm->def, hostdev, NULL) < 0)
        VIR_WARN("Unable to restore host device labelling on hotplug fail");
1376

1377 1378
    if (releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
1379

1380
    qemuHostdevReAttachPCIDevices(driver, vm->def->name, &hostdev, 1);
1381 1382 1383 1384 1385

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);

1386
 cleanup:
1387
    virObjectUnref(cfg);
1388 1389 1390 1391
    return -1;
}


1392
int qemuDomainAttachRedirdevDevice(virQEMUDriverPtr driver,
1393 1394 1395
                                   virDomainObjPtr vm,
                                   virDomainRedirdevDefPtr redirdev)
{
1396
    int ret = -1;
1397
    qemuDomainObjPrivatePtr priv = vm->privateData;
1398
    virDomainDefPtr def = vm->def;
1399
    char *charAlias = NULL;
1400 1401
    char *devstr = NULL;

1402
    if (qemuAssignDeviceRedirdevAlias(def, redirdev, -1) < 0)
1403 1404 1405 1406 1407
        goto cleanup;

    if (virAsprintf(&charAlias, "char%s", redirdev->info.alias) < 0)
        goto cleanup;

1408
    if (!(devstr = qemuBuildRedirdevDevStr(def, redirdev, priv->qemuCaps)))
1409
        goto cleanup;
1410

1411
    if (VIR_REALLOC_N(def->redirdevs, def->nredirdevs+1) < 0)
1412
        goto cleanup;
1413

1414
    qemuDomainObjEnterMonitor(driver, vm);
1415 1416 1417 1418 1419 1420
    if (qemuMonitorAttachCharDev(priv->mon,
                                 charAlias,
                                 &(redirdev->source.chr)) < 0) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        goto audit;
    }
1421

1422 1423 1424 1425 1426 1427
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0) {
        /* detach associated chardev on error */
        qemuMonitorDetachCharDev(priv->mon, charAlias);
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        goto audit;
    }
1428

1429 1430
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto audit;
1431

1432
    def->redirdevs[def->nredirdevs++] = redirdev;
1433 1434 1435 1436 1437
    ret = 0;
 audit:
    virDomainAuditRedirdev(vm, redirdev, "attach", ret == 0);
 cleanup:
    VIR_FREE(charAlias);
1438
    VIR_FREE(devstr);
1439
    return ret;
1440 1441
}

1442 1443 1444
static int
qemuDomainChrPreInsert(virDomainDefPtr vmdef,
                       virDomainChrDefPtr chr)
1445 1446 1447 1448 1449 1450 1451 1452 1453 1454 1455 1456 1457 1458
{
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
                       _("attaching serial console is not supported"));
        return -1;
    }

    if (virDomainChrFind(vmdef, chr)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("chardev already exists"));
        return -1;
    }

1459
    if (virDomainChrPreAlloc(vmdef, chr) < 0)
1460 1461 1462 1463 1464
        return -1;

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
1465 1466 1467 1468 1469 1470 1471
    if (vmdef->nserials == 0 && vmdef->nconsoles == 0 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
        if (!vmdef->consoles && VIR_ALLOC(vmdef->consoles) < 0)
            return -1;

        if (VIR_ALLOC(vmdef->consoles[0]) < 0) {
            VIR_FREE(vmdef->consoles);
1472 1473
            return -1;
        }
1474 1475 1476 1477 1478 1479 1480 1481 1482 1483 1484 1485
        vmdef->nconsoles++;
    }
    return 0;
}

static void
qemuDomainChrInsertPreAlloced(virDomainDefPtr vmdef,
                              virDomainChrDefPtr chr)
{
    virDomainChrInsertPreAlloced(vmdef, chr);
    if (vmdef->nserials == 1 && vmdef->nconsoles == 0 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
1486 1487 1488 1489 1490 1491
        vmdef->nconsoles = 1;

        /* Create an console alias for the serial port */
        vmdef->consoles[0]->deviceType = VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE;
        vmdef->consoles[0]->targetType = VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL;
    }
1492 1493 1494 1495 1496 1497 1498 1499 1500 1501 1502 1503 1504 1505
}

static void
qemuDomainChrInsertPreAllocCleanup(virDomainDefPtr vmdef,
                                   virDomainChrDefPtr chr)
{
    /* Remove the stub console added by qemuDomainChrPreInsert */
    if (vmdef->nserials == 0 && vmdef->nconsoles == 1 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
        VIR_FREE(vmdef->consoles[0]);
        VIR_FREE(vmdef->consoles);
        vmdef->nconsoles = 0;
    }
}
1506

1507 1508 1509 1510 1511 1512 1513 1514 1515
int
qemuDomainChrInsert(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    if (qemuDomainChrPreInsert(vmdef, chr) < 0) {
        qemuDomainChrInsertPreAllocCleanup(vmdef, chr);
        return -1;
    }
    qemuDomainChrInsertPreAlloced(vmdef, chr);
1516 1517 1518 1519 1520 1521 1522 1523 1524 1525 1526 1527 1528 1529 1530 1531 1532 1533 1534 1535 1536 1537 1538 1539 1540 1541 1542 1543 1544 1545 1546 1547 1548 1549 1550 1551
    return 0;
}

virDomainChrDefPtr
qemuDomainChrRemove(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    virDomainChrDefPtr ret;
    bool removeCompat;

    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("detaching serial console is not supported"));
        return NULL;
    }

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
    removeCompat = vmdef->nserials && vmdef->nconsoles &&
        vmdef->consoles[0]->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        vmdef->consoles[0]->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL &&
        virDomainChrEquals(vmdef->serials[0], chr);

    if (!(ret = virDomainChrRemove(vmdef, chr))) {
        virReportError(VIR_ERR_INVALID_ARG, "%s",
                       _("device not present in domain configuration"));
            return NULL;
    }

    if (removeCompat)
        VIR_DELETE_ELEMENT(vmdef->consoles, 0, vmdef->nconsoles);

    return ret;
}
1552

1553
static int
1554 1555
qemuDomainAttachChrDeviceAssignAddr(virDomainDefPtr def,
                                    qemuDomainObjPrivatePtr priv,
1556 1557
                                    virDomainChrDefPtr chr)
{
1558 1559 1560 1561 1562 1563
    int ret = -1;
    virDomainVirtioSerialAddrSetPtr vioaddrs = NULL;

    if (!(vioaddrs = virDomainVirtioSerialAddrSetCreateFromDomain(def)))
        goto cleanup;

1564 1565
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_VIRTIO) {
1566
        if (virDomainVirtioSerialAddrAutoAssign(NULL, vioaddrs,
1567
                                                &chr->info, true) < 0)
1568 1569
            goto cleanup;
        ret = 1;
1570 1571 1572 1573

    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL &&
               chr->targetType == VIR_DOMAIN_CHR_SERIAL_TARGET_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &chr->info) < 0)
1574 1575
            goto cleanup;
        ret = 1;
1576

1577 1578 1579
    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL &&
               chr->targetType == VIR_DOMAIN_CHR_SERIAL_TARGET_TYPE_USB) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, &chr->info) < 0)
1580 1581
            goto cleanup;
        ret = 1;
1582

1583 1584
    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CHANNEL &&
               chr->targetType == VIR_DOMAIN_CHR_CHANNEL_TARGET_TYPE_VIRTIO) {
1585
        if (virDomainVirtioSerialAddrAutoAssign(NULL, vioaddrs,
1586
                                                &chr->info, false) < 0)
1587 1588
            goto cleanup;
        ret = 1;
1589 1590
    }

1591 1592 1593
    if (ret == 1)
        goto cleanup;

1594 1595 1596 1597
    if (chr->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_SERIAL ||
        chr->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("Unsupported address type for character device"));
1598
        goto cleanup;
1599 1600
    }

1601 1602 1603 1604 1605
    ret = 0;

 cleanup:
    virDomainVirtioSerialAddrSetFree(vioaddrs);
    return ret;
1606 1607
}

1608 1609 1610 1611
int qemuDomainAttachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
1612
    int ret = -1, rc;
1613
    qemuDomainObjPrivatePtr priv = vm->privateData;
1614
    virErrorPtr orig_err;
1615 1616 1617
    virDomainDefPtr vmdef = vm->def;
    char *devstr = NULL;
    char *charAlias = NULL;
1618
    bool chardevAttached = false;
1619
    bool need_release = false;
1620

1621 1622 1623 1624
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CHANNEL &&
        qemuDomainPrepareChannel(chr, priv->channelTargetDir) < 0)
        goto cleanup;

1625
    if (qemuAssignDeviceChrAlias(vmdef, chr, -1) < 0)
1626
        goto cleanup;
1627

1628
    if ((rc = qemuDomainAttachChrDeviceAssignAddr(vm->def, priv, chr)) < 0)
1629 1630 1631
        goto cleanup;
    if (rc == 1)
        need_release = true;
1632

1633
    if (qemuBuildChrDeviceStr(&devstr, vmdef, chr, priv->qemuCaps) < 0)
1634
        goto cleanup;
1635

J
Ján Tomko 已提交
1636
    if (virAsprintf(&charAlias, "char%s", chr->info.alias) < 0)
1637 1638
        goto cleanup;

1639
    if (qemuDomainChrPreInsert(vmdef, chr) < 0)
1640 1641 1642
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
1643
    if (qemuMonitorAttachCharDev(priv->mon, charAlias, &chr->source) < 0)
1644 1645
        goto exit_monitor;
    chardevAttached = true;
1646 1647

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
1648
        goto exit_monitor;
1649

1650 1651
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto audit;
1652

1653
    qemuDomainChrInsertPreAlloced(vmdef, chr);
1654
    ret = 0;
1655 1656
 audit:
    virDomainAuditChardev(vm, NULL, chr, "attach", ret == 0);
1657
 cleanup:
1658
    if (ret < 0 && virDomainObjIsActive(vm))
1659
        qemuDomainChrInsertPreAllocCleanup(vmdef, chr);
1660 1661
    if (ret < 0 && need_release)
        qemuDomainReleaseDeviceAddress(vm, &chr->info, NULL);
1662 1663 1664
    VIR_FREE(charAlias);
    VIR_FREE(devstr);
    return ret;
1665

1666 1667
 exit_monitor:
    orig_err = virSaveLastError();
1668
    /* detach associated chardev on error */
1669 1670 1671 1672 1673 1674 1675
    if (chardevAttached)
        qemuMonitorDetachCharDev(priv->mon, charAlias);
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

1676 1677
    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    goto audit;
1678 1679
}

1680 1681 1682 1683 1684 1685 1686

int
qemuDomainAttachRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
1687
    virErrorPtr orig_err;
1688 1689 1690
    char *devstr = NULL;
    char *charAlias = NULL;
    char *objAlias = NULL;
1691 1692 1693
    bool releaseaddr = false;
    bool chardevAdded = false;
    bool objAdded = false;
1694 1695 1696
    virJSONValuePtr props = NULL;
    const char *type;
    int ret = -1;
1697
    int rv;
1698

1699
    if (qemuAssignDeviceRNGAlias(vm->def, rng) < 0)
1700 1701 1702 1703 1704 1705 1706
        return -1;

    /* preallocate space for the device definition */
    if (VIR_REALLOC_N(vm->def->rngs, vm->def->nrngs + 1) < 0)
        return -1;

    if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE) {
1707
        if (qemuDomainMachineIsS390CCW(vm->def) &&
1708 1709 1710 1711 1712
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
            rng->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        } else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390)) {
            rng->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
        }
1713 1714 1715 1716
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, rng->info, priv->qemuCaps,
                                            rng->source.file))
            return -1;
1717
    }
1718
    releaseaddr = true;
1719 1720 1721 1722 1723 1724 1725 1726 1727 1728 1729 1730 1731 1732 1733 1734 1735 1736 1737 1738 1739 1740 1741 1742 1743 1744 1745 1746 1747

    if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE ||
        rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &rng->info) < 0)
            return -1;
    } else if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
        if (virDomainCCWAddressAssign(&rng->info, priv->ccwaddrs,
                                      !rng->info.addr.ccw.assigned) < 0)
            return -1;
    }

    /* build required metadata */
    if (!(devstr = qemuBuildRNGDevStr(vm->def, rng, priv->qemuCaps)))
        goto cleanup;

    if (qemuBuildRNGBackendProps(rng, priv->qemuCaps, &type, &props) < 0)
        goto cleanup;

    if (virAsprintf(&objAlias, "obj%s", rng->info.alias) < 0)
        goto cleanup;

    if (virAsprintf(&charAlias, "char%s", rng->info.alias) < 0)
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);

    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD &&
        qemuMonitorAttachCharDev(priv->mon, charAlias,
                                 rng->source.chardev) < 0)
1748 1749
        goto exit_monitor;
    chardevAdded = true;
1750

1751 1752 1753 1754 1755
    rv = qemuMonitorAddObject(priv->mon, type, objAlias, props);
    props = NULL; /* qemuMonitorAddObject consumes */
    if (rv < 0)
        goto exit_monitor;
    objAdded = true;
1756 1757

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
1758
        goto exit_monitor;
1759 1760

    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
1761
        releaseaddr = false;
1762 1763 1764
        goto cleanup;
    }

1765
    VIR_APPEND_ELEMENT_INPLACE(vm->def->rngs, vm->def->nrngs, rng);
1766 1767 1768 1769 1770 1771

    ret = 0;

 audit:
    virDomainAuditRNG(vm, NULL, rng, "attach", ret == 0);
 cleanup:
1772
    virJSONValueFree(props);
1773
    if (ret < 0 && releaseaddr)
1774 1775 1776 1777 1778 1779
        qemuDomainReleaseDeviceAddress(vm, &rng->info, NULL);
    VIR_FREE(charAlias);
    VIR_FREE(objAlias);
    VIR_FREE(devstr);
    return ret;

1780 1781 1782 1783 1784
 exit_monitor:
    orig_err = virSaveLastError();
    if (objAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, objAlias));
    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD && chardevAdded)
1785
        ignore_value(qemuMonitorDetachCharDev(priv->mon, charAlias));
1786 1787 1788
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
1789 1790
    }

1791 1792
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        releaseaddr = false;
1793 1794 1795 1796
    goto audit;
}


1797 1798 1799 1800 1801 1802 1803 1804 1805 1806 1807 1808 1809 1810 1811 1812
/**
 * qemuDomainAttachMemory:
 * @driver: qemu driver data
 * @vm: VM object
 * @mem: Definition of the memory device to be attached. @mem is always consumed
 *
 * Attaches memory device described by @mem to domain @vm.
 *
 * Returns 0 on success -1 on error.
 */
int
qemuDomainAttachMemory(virQEMUDriverPtr driver,
                       virDomainObjPtr vm,
                       virDomainMemoryDefPtr mem)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
1813
    virErrorPtr orig_err;
1814
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
1815
    unsigned long long oldmem = virDomainDefGetMemoryTotal(vm->def);
1816
    unsigned long long newmem = oldmem + mem->size;
1817 1818 1819
    char *devstr = NULL;
    char *objalias = NULL;
    const char *backendType;
1820
    bool objAdded = false;
1821
    virJSONValuePtr props = NULL;
1822
    virObjectEventPtr event;
1823 1824
    int id;
    int ret = -1;
1825
    int rv;
1826

1827 1828 1829
    qemuDomainMemoryDeviceAlignSize(vm->def, mem);

    if (qemuDomainDefValidateMemoryHotplug(vm->def, priv->qemuCaps, mem) < 0)
1830 1831
        goto cleanup;

1832
    if (qemuAssignDeviceMemoryAlias(vm->def, mem) < 0)
1833 1834 1835 1836 1837
        goto cleanup;

    if (virAsprintf(&objalias, "mem%s", mem->info.alias) < 0)
        goto cleanup;

1838
    if (!(devstr = qemuBuildMemoryDeviceStr(mem)))
1839 1840 1841 1842 1843 1844 1845 1846 1847 1848 1849 1850 1851
        goto cleanup;

    if (qemuBuildMemoryBackendStr(mem->size, mem->pagesize,
                                  mem->targetNode, mem->sourceNodes, NULL,
                                  vm->def, priv->qemuCaps, cfg,
                                  &backendType, &props, true) < 0)
        goto cleanup;

    if (virDomainMemoryInsert(vm->def, mem) < 0) {
        virJSONValueFree(props);
        goto cleanup;
    }

1852
    if (qemuDomainAdjustMaxMemLock(vm) < 0) {
1853 1854 1855 1856
        virJSONValueFree(props);
        goto removedef;
    }

1857
    qemuDomainObjEnterMonitor(driver, vm);
1858 1859 1860
    rv = qemuMonitorAddObject(priv->mon, backendType, objalias, props);
    props = NULL; /* qemuMonitorAddObject consumes */
    if (rv < 0)
1861
        goto exit_monitor;
1862
    objAdded = true;
1863

1864
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
1865
        goto exit_monitor;
1866 1867 1868 1869

    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        /* we shouldn't touch mem now, as the def might be freed */
        mem = NULL;
1870
        goto audit;
1871 1872
    }

1873
    event = virDomainEventDeviceAddedNewFromObj(vm, objalias);
1874
    qemuDomainEventQueue(driver, event);
1875

1876 1877
    /* fix the balloon size */
    ignore_value(qemuProcessRefreshBalloonState(driver, vm, QEMU_ASYNC_JOB_NONE));
1878

1879 1880 1881 1882 1883 1884 1885 1886 1887
    /* mem is consumed by vm->def */
    mem = NULL;

    /* this step is best effort, removing the device would be so much trouble */
    ignore_value(qemuDomainUpdateMemoryDeviceInfo(driver, vm,
                                                  QEMU_ASYNC_JOB_NONE));

    ret = 0;

1888 1889
 audit:
    virDomainAuditMemory(vm, oldmem, newmem, "update", ret == 0);
1890 1891 1892 1893 1894 1895 1896
 cleanup:
    virObjectUnref(cfg);
    VIR_FREE(devstr);
    VIR_FREE(objalias);
    virDomainMemoryDefFree(mem);
    return ret;

1897
 exit_monitor:
1898 1899 1900 1901 1902 1903 1904
    orig_err = virSaveLastError();
    if (objAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, objalias));
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }
1905 1906
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        mem = NULL;
1907
        goto audit;
1908 1909
    }

1910
 removedef:
1911 1912 1913 1914 1915
    if ((id = virDomainMemoryFindByDef(vm->def, mem)) >= 0)
        mem = virDomainMemoryRemove(vm->def, id);
    else
        mem = NULL;

1916
    /* reset the mlock limit */
1917
    orig_err = virSaveLastError();
1918
    ignore_value(qemuDomainAdjustMaxMemLock(vm));
1919 1920
    virSetError(orig_err);
    virFreeError(orig_err);
1921

1922
    goto audit;
1923 1924 1925
}


1926
static int
1927
qemuDomainAttachHostUSBDevice(virQEMUDriverPtr driver,
1928 1929
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
1930 1931 1932
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *devstr = NULL;
1933
    bool releaseaddr = false;
1934
    bool added = false;
1935
    bool teardowncgroup = false;
1936
    bool teardownlabel = false;
1937 1938
    int ret = -1;

1939 1940 1941 1942 1943 1944
    if (priv->usbaddrs) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, hostdev->info) < 0)
            goto cleanup;
        releaseaddr = true;
    }

1945
    if (qemuHostdevPrepareUSBDevices(driver, vm->def->name, &hostdev, 1, 0) < 0)
1946 1947 1948
        goto cleanup;

    added = true;
1949

1950
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
1951 1952 1953
        goto cleanup;
    teardowncgroup = true;

1954 1955 1956 1957 1958
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto cleanup;
    teardownlabel = true;

1959 1960 1961 1962
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
        goto cleanup;
    if (!(devstr = qemuBuildUSBHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
        goto cleanup;
1963

1964
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs+1) < 0)
1965
        goto cleanup;
1966

1967
    qemuDomainObjEnterMonitor(driver, vm);
1968
    ret = qemuMonitorAddDevice(priv->mon, devstr);
1969 1970 1971 1972
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        ret = -1;
        goto cleanup;
    }
1973
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
1974
    if (ret < 0)
1975
        goto cleanup;
1976 1977 1978

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

1979
    ret = 0;
1980
 cleanup:
1981 1982 1983 1984 1985 1986 1987
    if (ret < 0) {
        if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
            VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
        if (teardownlabel &&
            virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                                  vm->def, hostdev, NULL) < 0)
            VIR_WARN("Unable to restore host device labelling on hotplug fail");
1988
        if (added)
1989
            qemuHostdevReAttachUSBDevices(driver, vm->def->name, &hostdev, 1);
1990 1991
        if (releaseaddr)
            virDomainUSBAddressRelease(priv->usbaddrs, hostdev->info);
1992
    }
1993
    VIR_FREE(devstr);
1994
    return ret;
1995 1996
}

1997

1998
static int
1999 2000
qemuDomainAttachHostSCSIDevice(virConnectPtr conn,
                               virQEMUDriverPtr driver,
2001 2002 2003
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
2004
    size_t i;
2005 2006
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
2007
    virErrorPtr orig_err;
2008 2009
    char *devstr = NULL;
    char *drvstr = NULL;
2010
    bool teardowncgroup = false;
2011
    bool teardownlabel = false;
2012
    bool driveAdded = false;
2013

2014
    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_SCSI_GENERIC)) {
2015 2016 2017 2018 2019
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("SCSI passthrough is not supported by this version of qemu"));
        return -1;
    }

2020 2021 2022 2023 2024 2025 2026 2027 2028 2029 2030
    /* Let's make sure the disk has a controller defined and loaded before
     * trying to add it. The controller used by the disk must exist before a
     * qemu command line string is generated.
     *
     * Ensure that the given controller and all controllers with a smaller index
     * exist; there must not be any missing index in between.
     */
    for (i = 0; i <= hostdev->info->addr.drive.controller; i++) {
        if (!qemuDomainFindOrCreateSCSIDiskController(driver, vm, i))
            return -1;
    }
2031

2032
    if (qemuHostdevPrepareSCSIDevices(driver, vm->def->name,
2033
                                      &hostdev, 1)) {
2034
        virDomainHostdevSubsysSCSIPtr scsisrc = &hostdev->source.subsys.u.scsi;
2035 2036 2037 2038 2039 2040 2041 2042
        if (scsisrc->protocol == VIR_DOMAIN_HOSTDEV_SCSI_PROTOCOL_TYPE_ISCSI) {
            virDomainHostdevSubsysSCSIiSCSIPtr iscsisrc = &scsisrc->u.iscsi;
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("Unable to prepare scsi hostdev for iSCSI: %s"),
                           iscsisrc->path);
        } else {
            virDomainHostdevSubsysSCSIHostPtr scsihostsrc = &scsisrc->u.host;
            virReportError(VIR_ERR_INTERNAL_ERROR,
2043
                           _("Unable to prepare scsi hostdev: %s:%u:%u:%llu"),
2044 2045 2046
                           scsihostsrc->adapter, scsihostsrc->bus,
                           scsihostsrc->target, scsihostsrc->unit);
        }
2047 2048 2049
        return -1;
    }

2050
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
2051 2052 2053
        goto cleanup;
    teardowncgroup = true;

2054 2055 2056 2057 2058
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto cleanup;
    teardownlabel = true;

2059
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
2060 2061
        goto cleanup;

J
John Ferlan 已提交
2062
    if (qemuDomainSecretHostdevPrepare(conn, priv, hostdev) < 0)
2063 2064
        goto cleanup;

2065
    if (!(drvstr = qemuBuildSCSIHostdevDrvStr(hostdev)))
2066 2067 2068 2069 2070
        goto cleanup;

    if (!(devstr = qemuBuildSCSIHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
        goto cleanup;

2071
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs + 1) < 0)
2072 2073 2074 2075
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);

2076
    if (qemuMonitorAddDrive(priv->mon, drvstr) < 0)
2077 2078
        goto exit_monitor;
    driveAdded = true;
2079 2080

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
2081
        goto exit_monitor;
2082 2083

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
2084
        goto cleanup;
2085 2086

    virDomainAuditHostdev(vm, hostdev, "attach", true);
2087 2088 2089 2090

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    ret = 0;
2091

2092
 cleanup:
2093
    qemuDomainSecretHostdevDestroy(hostdev);
2094
    if (ret < 0) {
2095
        qemuHostdevReAttachSCSIDevices(driver, vm->def->name, &hostdev, 1);
2096 2097
        if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
            VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
2098 2099 2100 2101
        if (teardownlabel &&
            virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                                  vm->def, hostdev, NULL) < 0)
            VIR_WARN("Unable to restore host device labelling on hotplug fail");
2102
    }
2103 2104 2105
    VIR_FREE(drvstr);
    VIR_FREE(devstr);
    return ret;
2106

2107
 exit_monitor:
2108
    orig_err = virSaveLastError();
2109
    if (driveAdded && qemuMonitorDriveDel(priv->mon, drvstr) < 0) {
2110 2111 2112
        VIR_WARN("Unable to remove drive %s (%s) after failed "
                 "qemuMonitorAddDevice",
                 drvstr, devstr);
2113
    }
2114 2115 2116 2117 2118 2119 2120 2121 2122
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    virDomainAuditHostdev(vm, hostdev, "attach", false);

    goto cleanup;
2123 2124
}

2125 2126 2127 2128 2129 2130

int
qemuDomainAttachHostDevice(virConnectPtr conn,
                           virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainHostdevDefPtr hostdev)
2131 2132
{
    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
2133 2134 2135
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
2136 2137 2138 2139 2140
        return -1;
    }

    switch (hostdev->source.subsys.type) {
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
2141
        if (qemuDomainAttachHostPCIDevice(driver, vm,
2142
                                          hostdev) < 0)
2143 2144 2145 2146
            goto error;
        break;

    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
2147
        if (qemuDomainAttachHostUSBDevice(driver, vm,
2148
                                          hostdev) < 0)
2149 2150 2151
            goto error;
        break;

2152
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
2153
        if (qemuDomainAttachHostSCSIDevice(conn, driver, vm,
2154 2155 2156 2157
                                           hostdev) < 0)
            goto error;
        break;

2158
    default:
2159 2160 2161
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(hostdev->source.subsys.type));
2162 2163 2164 2165 2166
        goto error;
    }

    return 0;

2167
 error:
2168 2169 2170
    return -1;
}

2171
static int
2172
qemuDomainChangeNetBridge(virDomainObjPtr vm,
2173 2174
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
2175 2176
{
    int ret = -1;
2177 2178
    const char *oldbridge = virDomainNetGetActualBridgeName(olddev);
    const char *newbridge = virDomainNetGetActualBridgeName(newdev);
2179

2180 2181
    if (!oldbridge || !newbridge) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s", _("Missing bridge name"));
2182
        goto cleanup;
2183
    }
2184 2185 2186 2187 2188

    VIR_DEBUG("Change bridge for interface %s: %s -> %s",
              olddev->ifname, oldbridge, newbridge);

    if (virNetDevExists(newbridge) != 1) {
2189 2190
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("bridge %s doesn't exist"), newbridge);
2191
        goto cleanup;
2192 2193 2194 2195 2196
    }

    if (oldbridge) {
        ret = virNetDevBridgeRemovePort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, olddev, NULL, "detach", ret == 0);
2197 2198 2199 2200 2201 2202 2203 2204
        if (ret < 0) {
            /* warn but continue - possibly the old network
             * had been destroyed and reconstructed, leaving the
             * tap device orphaned.
             */
            VIR_WARN("Unable to detach device %s from bridge %s",
                     olddev->ifname, oldbridge);
        }
2205 2206 2207
    }

    ret = virNetDevBridgeAddPort(newbridge, olddev->ifname);
2208
    virDomainAuditNet(vm, NULL, newdev, "attach", ret == 0);
2209 2210 2211 2212
    if (ret < 0) {
        ret = virNetDevBridgeAddPort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, NULL, olddev, "attach", ret == 0);
        if (ret < 0) {
2213
            virReportError(VIR_ERR_OPERATION_FAILED,
2214
                           _("unable to recover former state by adding port "
2215
                             "to bridge %s"), oldbridge);
2216
        }
2217
        goto cleanup;
2218
    }
2219 2220
    /* caller will replace entire olddev with newdev in domain nets list */
    ret = 0;
2221
 cleanup:
2222
    return ret;
2223 2224
}

2225
static int
2226
qemuDomainChangeNetFilter(virDomainObjPtr vm,
2227 2228 2229 2230 2231 2232 2233 2234 2235 2236 2237 2238 2239 2240 2241 2242 2243 2244
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
{
    /* make sure this type of device supports filters. */
    switch (virDomainNetGetActualType(newdev)) {
    case VIR_DOMAIN_NET_TYPE_ETHERNET:
    case VIR_DOMAIN_NET_TYPE_BRIDGE:
    case VIR_DOMAIN_NET_TYPE_NETWORK:
        break;
    default:
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("filters not supported on interfaces of type %s"),
                       virDomainNetTypeToString(virDomainNetGetActualType(newdev)));
        return -1;
    }

    virDomainConfNWFilterTeardown(olddev);

2245
    if (newdev->filter &&
2246
        virDomainConfNWFilterInstantiate(vm->def->uuid, newdev) < 0) {
2247 2248 2249 2250 2251 2252 2253
        virErrorPtr errobj;

        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("failed to add new filter rules to '%s' "
                         "- attempting to restore old rules"),
                       olddev->ifname);
        errobj = virSaveLastError();
2254
        ignore_value(virDomainConfNWFilterInstantiate(vm->def->uuid, olddev));
2255 2256 2257 2258 2259 2260 2261
        virSetError(errobj);
        virFreeError(errobj);
        return -1;
    }
    return 0;
}

2262
int qemuDomainChangeNetLinkState(virQEMUDriverPtr driver,
2263 2264 2265 2266 2267 2268 2269 2270
                                 virDomainObjPtr vm,
                                 virDomainNetDefPtr dev,
                                 int linkstate)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;

    if (!dev->info.alias) {
2271 2272
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("can't change link state: device alias not found"));
2273 2274 2275
        return -1;
    }

2276 2277
    VIR_DEBUG("dev: %s, state: %d", dev->info.alias, linkstate);

2278
    qemuDomainObjEnterMonitor(driver, vm);
2279 2280 2281 2282 2283

    ret = qemuMonitorSetLink(priv->mon, dev->info.alias, linkstate);
    if (ret < 0)
        goto cleanup;

2284 2285 2286 2287 2288 2289 2290 2291 2292 2293 2294 2295 2296 2297 2298
    if (virDomainNetGetActualType(dev) == VIR_DOMAIN_NET_TYPE_ETHERNET) {
        switch (linkstate) {
            case VIR_DOMAIN_NET_INTERFACE_LINK_STATE_UP:
            case VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DEFAULT:
                if ((ret = virNetDevSetOnline(dev->ifname, true)) < 0)
                    goto cleanup;
                break;

            case VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN:
                if ((ret = virNetDevSetOnline(dev->ifname, false)) < 0)
                    goto cleanup;
                break;
            }
    }

2299 2300 2301
    /* modify the device configuration */
    dev->linkstate = linkstate;

2302
 cleanup:
2303 2304
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
2305 2306 2307 2308

    return ret;
}

2309
int
2310
qemuDomainChangeNet(virQEMUDriverPtr driver,
2311 2312
                    virDomainObjPtr vm,
                    virDomainDeviceDefPtr dev)
2313
{
2314
    virDomainNetDefPtr newdev = dev->data.net;
2315
    virDomainNetDefPtr *devslot = NULL;
2316 2317 2318 2319
    virDomainNetDefPtr olddev;
    int oldType, newType;
    bool needReconnect = false;
    bool needBridgeChange = false;
2320
    bool needFilterChange = false;
2321 2322
    bool needLinkStateChange = false;
    bool needReplaceDevDef = false;
2323
    bool needBandwidthSet = false;
2324
    int ret = -1;
2325 2326 2327 2328 2329
    int changeidx = -1;

    if ((changeidx = virDomainNetFindIdx(vm->def, newdev)) < 0)
        goto cleanup;
    devslot = &vm->def->nets[changeidx];
2330

2331
    if (!(olddev = *devslot)) {
2332
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
2333
                       _("cannot find existing network device to modify"));
2334 2335 2336 2337 2338 2339
        goto cleanup;
    }

    oldType = virDomainNetGetActualType(olddev);
    if (oldType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* no changes are possible to a type='hostdev' interface */
2340
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2341 2342 2343 2344 2345 2346 2347 2348 2349 2350 2351 2352 2353 2354 2355 2356 2357 2358 2359 2360 2361 2362
                       _("cannot change config of '%s' network type"),
                       virDomainNetTypeToString(oldType));
        goto cleanup;
    }

    /* Check individual attributes for changes that can't be done to a
     * live netdev. These checks *mostly* go in order of the
     * declarations in virDomainNetDef in order to assure nothing is
     * omitted. (exceptiong where noted in comments - in particular,
     * some things require that a new "actual device" be allocated
     * from the network driver first, but we delay doing that until
     * after we've made as many other checks as possible)
     */

    /* type: this can change (with some restrictions), but the actual
     * type of the new device connection isn't known until after we
     * allocate the "actual" device.
     */

    if (virMacAddrCmp(&olddev->mac, &newdev->mac)) {
        char oldmac[VIR_MAC_STRING_BUFLEN], newmac[VIR_MAC_STRING_BUFLEN];

2363
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2364 2365 2366 2367 2368 2369 2370 2371
                       _("cannot change network interface mac address "
                         "from %s to %s"),
                       virMacAddrFormat(&olddev->mac, oldmac),
                       virMacAddrFormat(&newdev->mac, newmac));
        goto cleanup;
    }

    if (STRNEQ_NULLABLE(olddev->model, newdev->model)) {
2372
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2373 2374 2375 2376
                       _("cannot modify network device model from %s to %s"),
                       olddev->model ? olddev->model : "(default)",
                       newdev->model ? newdev->model : "(default)");
        goto cleanup;
2377 2378
    }

2379 2380 2381 2382
    if (olddev->model && STREQ(olddev->model, "virtio") &&
        (olddev->driver.virtio.name != newdev->driver.virtio.name ||
         olddev->driver.virtio.txmode != newdev->driver.virtio.txmode ||
         olddev->driver.virtio.ioeventfd != newdev->driver.virtio.ioeventfd ||
2383
         olddev->driver.virtio.event_idx != newdev->driver.virtio.event_idx ||
2384 2385 2386 2387 2388 2389 2390
         olddev->driver.virtio.queues != newdev->driver.virtio.queues ||
         olddev->driver.virtio.host.csum != newdev->driver.virtio.host.csum ||
         olddev->driver.virtio.host.gso != newdev->driver.virtio.host.gso ||
         olddev->driver.virtio.host.tso4 != newdev->driver.virtio.host.tso4 ||
         olddev->driver.virtio.host.tso6 != newdev->driver.virtio.host.tso6 ||
         olddev->driver.virtio.host.ecn != newdev->driver.virtio.host.ecn ||
         olddev->driver.virtio.host.ufo != newdev->driver.virtio.host.ufo ||
J
Ján Tomko 已提交
2391
         olddev->driver.virtio.host.mrg_rxbuf != newdev->driver.virtio.host.mrg_rxbuf ||
2392 2393 2394 2395 2396
         olddev->driver.virtio.guest.csum != newdev->driver.virtio.guest.csum ||
         olddev->driver.virtio.guest.tso4 != newdev->driver.virtio.guest.tso4 ||
         olddev->driver.virtio.guest.tso6 != newdev->driver.virtio.guest.tso6 ||
         olddev->driver.virtio.guest.ecn != newdev->driver.virtio.guest.ecn ||
         olddev->driver.virtio.guest.ufo != newdev->driver.virtio.guest.ufo)) {
2397
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2398 2399 2400 2401 2402 2403 2404 2405 2406 2407
                       _("cannot modify virtio network device driver attributes"));
        goto cleanup;
    }

    /* data: this union will be examined later, after allocating new actualdev */
    /* virtPortProfile: will be examined later, after allocating new actualdev */

    if (olddev->tune.sndbuf_specified != newdev->tune.sndbuf_specified ||
        olddev->tune.sndbuf != newdev->tune.sndbuf) {
        needReconnect = true;
2408 2409
    }

2410
    if (STRNEQ_NULLABLE(olddev->script, newdev->script)) {
2411
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2412 2413
                       _("cannot modify network device script attribute"));
        goto cleanup;
2414 2415
    }

2416
    /* ifname: check if it's set in newdev. If not, retain the autogenerated one */
2417
    if (!newdev->ifname && VIR_STRDUP(newdev->ifname, olddev->ifname) < 0)
2418 2419
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->ifname, newdev->ifname)) {
2420
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2421 2422 2423
                       _("cannot modify network device tap name"));
        goto cleanup;
    }
2424

2425 2426 2427 2428 2429 2430 2431 2432 2433 2434 2435
    /* info: if newdev->info is empty, fill it in from olddev,
     * otherwise verify that it matches - nothing is allowed to
     * change. (There is no helper function to do this, so
     * individually check the few feidls of virDomainDeviceInfo that
     * are relevant in this case).
     */
    if (!virDomainDeviceAddressIsValid(&newdev->info,
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) &&
        virDomainDeviceInfoCopy(&newdev->info, &olddev->info) < 0) {
        goto cleanup;
    }
2436
    if (!virPCIDeviceAddressEqual(&olddev->info.addr.pci,
2437
                                  &newdev->info.addr.pci)) {
2438
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2439 2440 2441 2442
                       _("cannot modify network device guest PCI address"));
        goto cleanup;
    }
    /* grab alias from olddev if not set in newdev */
2443 2444
    if (!newdev->info.alias &&
        VIR_STRDUP(newdev->info.alias, olddev->info.alias) < 0)
2445 2446
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->info.alias, newdev->info.alias)) {
2447
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2448 2449 2450 2451
                       _("cannot modify network device alias"));
        goto cleanup;
    }
    if (olddev->info.rombar != newdev->info.rombar) {
2452
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2453 2454 2455 2456
                       _("cannot modify network device rom bar setting"));
        goto cleanup;
    }
    if (STRNEQ_NULLABLE(olddev->info.romfile, newdev->info.romfile)) {
2457
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2458 2459 2460 2461
                       _("cannot modify network rom file"));
        goto cleanup;
    }
    if (olddev->info.bootIndex != newdev->info.bootIndex) {
2462
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2463 2464 2465 2466
                       _("cannot modify network device boot index setting"));
        goto cleanup;
    }
    /* (end of device info checks) */
2467

2468 2469 2470 2471
    if (STRNEQ_NULLABLE(olddev->filter, newdev->filter) ||
        !virNWFilterHashTableEqual(olddev->filterparams, newdev->filterparams)) {
        needFilterChange = true;
    }
2472

2473 2474 2475 2476 2477 2478 2479 2480
    /* bandwidth can be modified, and will be checked later */
    /* vlan can be modified, and will be checked later */
    /* linkstate can be modified */

    /* allocate new actual device to compare to old - we will need to
     * free it if we fail for any reason
     */
    if (newdev->type == VIR_DOMAIN_NET_TYPE_NETWORK &&
2481
        networkAllocateActualDevice(vm->def, newdev) < 0) {
2482 2483 2484 2485 2486 2487 2488
        goto cleanup;
    }

    newType = virDomainNetGetActualType(newdev);

    if (newType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* can't turn it into a type='hostdev' interface */
2489
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2490 2491 2492 2493 2494 2495
                       _("cannot change network interface type to '%s'"),
                       virDomainNetTypeToString(newType));
        goto cleanup;
    }

    if (olddev->type == newdev->type && oldType == newType) {
2496

2497 2498 2499 2500 2501 2502
        /* if type hasn't changed, check the relevant fields for the type */
        switch (newdev->type) {
        case VIR_DOMAIN_NET_TYPE_USER:
            break;

        case VIR_DOMAIN_NET_TYPE_ETHERNET:
2503
            break;
2504

2505 2506 2507
        case VIR_DOMAIN_NET_TYPE_SERVER:
        case VIR_DOMAIN_NET_TYPE_CLIENT:
        case VIR_DOMAIN_NET_TYPE_MCAST:
2508
        case VIR_DOMAIN_NET_TYPE_UDP:
2509 2510 2511 2512 2513 2514 2515 2516 2517 2518 2519 2520 2521 2522 2523 2524 2525 2526 2527 2528 2529 2530 2531 2532 2533 2534 2535 2536 2537 2538 2539 2540 2541
            if (STRNEQ_NULLABLE(olddev->data.socket.address,
                                newdev->data.socket.address) ||
                olddev->data.socket.port != newdev->data.socket.port) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_NETWORK:
            if (STRNEQ(olddev->data.network.name, newdev->data.network.name)) {
                if (virDomainNetGetActualVirtPortProfile(newdev))
                    needReconnect = true;
                else
                    needBridgeChange = true;
            }
            /* other things handled in common code directly below this switch */
            break;

        case VIR_DOMAIN_NET_TYPE_BRIDGE:
            /* all handled in bridge name checked in common code below */
            break;

        case VIR_DOMAIN_NET_TYPE_INTERNAL:
            if (STRNEQ_NULLABLE(olddev->data.internal.name,
                                newdev->data.internal.name)) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_DIRECT:
            /* all handled in common code directly below this switch */
            break;

        default:
2542
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2543 2544 2545
                           _("unable to change config on '%s' network type"),
                           virDomainNetTypeToString(newdev->type));
            break;
2546

2547
        }
2548 2549 2550 2551 2552 2553 2554 2555 2556 2557 2558 2559 2560 2561 2562 2563 2564 2565 2566 2567 2568 2569 2570 2571 2572 2573 2574 2575 2576 2577 2578
    } else {
        /* interface type has changed. There are a few special cases
         * where this can only require a minor (or even no) change,
         * but in most cases we need to do a full reconnection.
         *
         * If we switch (in either direction) between type='bridge'
         * and type='network' (for a traditional managed virtual
         * network that uses a host bridge, i.e. forward
         * mode='route|nat'), we just need to change the bridge.
         */
        if ((oldType == VIR_DOMAIN_NET_TYPE_NETWORK &&
             newType == VIR_DOMAIN_NET_TYPE_BRIDGE) ||
            (oldType == VIR_DOMAIN_NET_TYPE_BRIDGE &&
             newType == VIR_DOMAIN_NET_TYPE_NETWORK)) {

            needBridgeChange = true;

        } else if (oldType == VIR_DOMAIN_NET_TYPE_DIRECT &&
                   newType == VIR_DOMAIN_NET_TYPE_DIRECT) {

            /* this is the case of switching from type='direct' to
             * type='network' for a network that itself uses direct
             * (macvtap) devices. If the physical device and mode are
             * the same, this doesn't require any actual setup
             * change. If the physical device or mode *does* change,
             * that will be caught in the common section below */

        } else {

            /* for all other combinations, we'll need a full reconnect */
            needReconnect = true;
2579 2580

        }
2581
    }
2582

2583 2584 2585 2586 2587 2588 2589 2590 2591 2592 2593
    /* now several things that are in multiple (but not all)
     * different types, and can be safely compared even for those
     * cases where they don't apply to a particular type.
     */
    if (STRNEQ_NULLABLE(virDomainNetGetActualBridgeName(olddev),
                        virDomainNetGetActualBridgeName(newdev))) {
        if (virDomainNetGetActualVirtPortProfile(newdev))
            needReconnect = true;
        else
            needBridgeChange = true;
    }
2594

2595 2596 2597 2598 2599 2600 2601 2602
    if (STRNEQ_NULLABLE(virDomainNetGetActualDirectDev(olddev),
                        virDomainNetGetActualDirectDev(newdev)) ||
        virDomainNetGetActualDirectMode(olddev) != virDomainNetGetActualDirectMode(olddev) ||
        !virNetDevVPortProfileEqual(virDomainNetGetActualVirtPortProfile(olddev),
                                    virDomainNetGetActualVirtPortProfile(newdev)) ||
        !virNetDevVlanEqual(virDomainNetGetActualVlan(olddev),
                            virDomainNetGetActualVlan(newdev))) {
        needReconnect = true;
2603 2604
    }

2605 2606 2607
    if (olddev->linkstate != newdev->linkstate)
        needLinkStateChange = true;

2608 2609 2610 2611
    if (!virNetDevBandwidthEqual(virDomainNetGetActualBandwidth(olddev),
                                 virDomainNetGetActualBandwidth(newdev)))
        needBandwidthSet = true;

2612 2613 2614
    /* FINALLY - actually perform the required actions */

    if (needReconnect) {
2615
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2616 2617 2618
                       _("unable to change config on '%s' network type"),
                       virDomainNetTypeToString(newdev->type));
        goto cleanup;
2619 2620
    }

2621 2622 2623
    if (needBandwidthSet) {
        if (virNetDevBandwidthSet(newdev->ifname,
                                  virDomainNetGetActualBandwidth(newdev),
2624
                                  false) < 0)
2625 2626 2627 2628
            goto cleanup;
        needReplaceDevDef = true;
    }

2629
    if (needBridgeChange) {
2630
        if (qemuDomainChangeNetBridge(vm, olddev, newdev) < 0)
2631 2632 2633
            goto cleanup;
        /* we successfully switched to the new bridge, and we've
         * determined that the rest of newdev is equivalent to olddev,
2634 2635 2636 2637 2638
         * so move newdev into place */
        needReplaceDevDef = true;
    }

    if (needFilterChange) {
2639
        if (qemuDomainChangeNetFilter(vm, olddev, newdev) < 0)
2640 2641 2642 2643
            goto cleanup;
        /* we successfully switched to the new filter, and we've
         * determined that the rest of newdev is equivalent to olddev,
         * so move newdev into place */
2644
        needReplaceDevDef = true;
2645 2646
    }

2647 2648 2649
    if (needLinkStateChange &&
        qemuDomainChangeNetLinkState(driver, vm, olddev, newdev->linkstate) < 0) {
        goto cleanup;
2650 2651
    }

2652 2653 2654 2655
    if (needReplaceDevDef) {
        /* the changes above warrant replacing olddev with newdev in
         * the domain's nets list.
         */
2656 2657 2658

        /* this function doesn't work with HOSTDEV networks yet, thus
         * no need to change the pointer in the hostdev structure */
2659
        networkReleaseActualDevice(vm->def, olddev);
2660 2661 2662 2663 2664 2665 2666 2667
        virDomainNetDefFree(olddev);
        /* move newdev into the nets list, and NULL it out from the
         * virDomainDeviceDef that we were given so that the caller
         * won't delete it on return.
         */
        *devslot = newdev;
        newdev = dev->data.net = NULL;
        dev->type = VIR_DOMAIN_DEVICE_NONE;
2668 2669
    }

2670
    ret = 0;
2671
 cleanup:
2672 2673 2674 2675 2676 2677 2678 2679 2680 2681 2682 2683 2684 2685 2686 2687 2688 2689 2690
    /* When we get here, we will be in one of these two states:
     *
     * 1) newdev has been moved into the domain's list of nets and
     *    newdev set to NULL, and dev->data.net will be NULL (and
     *    dev->type is NONE). olddev will have been completely
     *    released and freed. (aka success) In this case no extra
     *    cleanup is needed.
     *
     * 2) newdev has *not* been moved into the domain's list of nets,
     *    and dev->data.net == newdev (and dev->type == NET). In this *
     *    case, we need to at least release the "actual device" from *
     *    newdev (the caller will free dev->data.net a.k.a. newdev, and
     *    the original olddev is still in used)
     *
     * Note that case (2) isn't necessarily a failure. It may just be
     * that the changes were minor enough that we didn't need to
     * replace the entire device object.
     */
    if (newdev)
2691
        networkReleaseActualDevice(vm->def, newdev);
2692

2693 2694 2695
    return ret;
}

2696 2697 2698
static virDomainGraphicsDefPtr
qemuDomainFindGraphics(virDomainObjPtr vm,
                       virDomainGraphicsDefPtr dev)
2699
{
2700
    size_t i;
2701

2702
    for (i = 0; i < vm->def->ngraphics; i++) {
2703 2704 2705 2706 2707 2708 2709
        if (vm->def->graphics[i]->type == dev->type)
            return vm->def->graphics[i];
    }

    return NULL;
}

2710 2711 2712 2713 2714 2715 2716 2717 2718 2719 2720 2721 2722 2723
int
qemuDomainFindGraphicsIndex(virDomainDefPtr def,
                            virDomainGraphicsDefPtr dev)
{
    size_t i;

    for (i = 0; i < def->ngraphics; i++) {
        if (def->graphics[i]->type == dev->type)
            return i;
    }

    return -1;
}

2724
int
2725
qemuDomainChangeGraphics(virQEMUDriverPtr driver,
2726 2727 2728 2729
                         virDomainObjPtr vm,
                         virDomainGraphicsDefPtr dev)
{
    virDomainGraphicsDefPtr olddev = qemuDomainFindGraphics(vm, dev);
2730
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
2731
    const char *type = virDomainGraphicsTypeToString(dev->type);
2732
    size_t i;
2733
    int ret = -1;
2734 2735

    if (!olddev) {
2736 2737
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("cannot find existing graphics device to modify"));
2738
        goto cleanup;
2739 2740
    }

2741
    if (dev->nListens != olddev->nListens) {
2742 2743 2744
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("cannot change the number of listen addresses "
                         "on '%s' graphics"), type);
2745 2746 2747 2748
        goto cleanup;
    }

    for (i = 0; i < dev->nListens; i++) {
J
Jim Fehlig 已提交
2749
        virDomainGraphicsListenDefPtr newlisten = &dev->listens[i];
2750 2751
        virDomainGraphicsListenDefPtr oldlisten = &olddev->listens[i];

J
Jim Fehlig 已提交
2752
        if (newlisten->type != oldlisten->type) {
2753 2754 2755
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                           _("cannot change the type of listen address "
                             "on '%s' graphics"), type);
2756 2757 2758
            goto cleanup;
        }

2759
        switch (newlisten->type) {
2760
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_ADDRESS:
J
Jim Fehlig 已提交
2761
            if (STRNEQ_NULLABLE(newlisten->address, oldlisten->address)) {
2762 2763 2764
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen address setting "
                                 "on '%s' graphics"), type);
2765 2766
                goto cleanup;
            }
2767

2768 2769 2770
            break;

        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NETWORK:
J
Jim Fehlig 已提交
2771
            if (STRNEQ_NULLABLE(newlisten->network, oldlisten->network)) {
2772 2773 2774
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen address setting "
                                 "on '%s' graphics"), type);
2775 2776
                goto cleanup;
            }
2777

2778 2779
            break;

2780 2781 2782 2783 2784 2785 2786 2787 2788
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_SOCKET:
            if (STRNEQ_NULLABLE(newlisten->socket, oldlisten->socket)) {
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen socket setting "
                                 "on '%s' graphics"), type);
                goto cleanup;
            }
            break;

2789 2790 2791 2792 2793 2794
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NONE:
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_LAST:
            /* nada */
            break;
        }
    }
2795

2796 2797
    switch (dev->type) {
    case VIR_DOMAIN_GRAPHICS_TYPE_VNC:
2798 2799 2800
        if ((olddev->data.vnc.autoport != dev->data.vnc.autoport) ||
            (!dev->data.vnc.autoport &&
             (olddev->data.vnc.port != dev->data.vnc.port))) {
2801
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2802
                           _("cannot change port settings on vnc graphics"));
2803
            goto cleanup;
2804 2805
        }
        if (STRNEQ_NULLABLE(olddev->data.vnc.keymap, dev->data.vnc.keymap)) {
2806
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2807
                           _("cannot change keymap setting on vnc graphics"));
2808
            goto cleanup;
2809 2810
        }

2811 2812 2813
        /* If a password lifetime was, or is set, or action if connected has
         * changed, then we must always run, even if new password matches
         * old password */
2814 2815
        if (olddev->data.vnc.auth.expires ||
            dev->data.vnc.auth.expires ||
2816
            olddev->data.vnc.auth.connected != dev->data.vnc.auth.connected ||
E
Eric Blake 已提交
2817 2818 2819
            STRNEQ_NULLABLE(olddev->data.vnc.auth.passwd,
                            dev->data.vnc.auth.passwd)) {
            VIR_DEBUG("Updating password on VNC server %p %p",
2820
                      dev->data.vnc.auth.passwd, cfg->vncPassword);
E
Eric Blake 已提交
2821 2822 2823
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_VNC,
                                                    &dev->data.vnc.auth,
2824 2825
                                                    cfg->vncPassword,
                                                    QEMU_ASYNC_JOB_NONE);
2826
            if (ret < 0)
2827
                goto cleanup;
2828 2829 2830 2831 2832

            /* Steal the new dev's  char * reference */
            VIR_FREE(olddev->data.vnc.auth.passwd);
            olddev->data.vnc.auth.passwd = dev->data.vnc.auth.passwd;
            dev->data.vnc.auth.passwd = NULL;
2833 2834
            olddev->data.vnc.auth.validTo = dev->data.vnc.auth.validTo;
            olddev->data.vnc.auth.expires = dev->data.vnc.auth.expires;
2835
            olddev->data.vnc.auth.connected = dev->data.vnc.auth.connected;
2836 2837 2838 2839 2840
        } else {
            ret = 0;
        }
        break;

2841
    case VIR_DOMAIN_GRAPHICS_TYPE_SPICE:
2842 2843 2844 2845 2846
        if ((olddev->data.spice.autoport != dev->data.spice.autoport) ||
            (!dev->data.spice.autoport &&
             (olddev->data.spice.port != dev->data.spice.port)) ||
            (!dev->data.spice.autoport &&
             (olddev->data.spice.tlsPort != dev->data.spice.tlsPort))) {
2847
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2848
                           _("cannot change port settings on spice graphics"));
2849
            goto cleanup;
2850
        }
E
Eric Blake 已提交
2851 2852
        if (STRNEQ_NULLABLE(olddev->data.spice.keymap,
                            dev->data.spice.keymap)) {
2853
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2854
                            _("cannot change keymap setting on spice graphics"));
2855
            goto cleanup;
2856 2857
        }

2858 2859 2860 2861 2862
        /* We must reset the password if it has changed but also if:
         * - password lifetime is or was set
         * - the requested action has changed
         * - the action is "disconnect"
         */
2863 2864
        if (olddev->data.spice.auth.expires ||
            dev->data.spice.auth.expires ||
2865
            olddev->data.spice.auth.connected != dev->data.spice.auth.connected ||
2866 2867
            dev->data.spice.auth.connected ==
            VIR_DOMAIN_GRAPHICS_AUTH_CONNECTED_DISCONNECT ||
E
Eric Blake 已提交
2868 2869 2870
            STRNEQ_NULLABLE(olddev->data.spice.auth.passwd,
                            dev->data.spice.auth.passwd)) {
            VIR_DEBUG("Updating password on SPICE server %p %p",
2871
                      dev->data.spice.auth.passwd, cfg->spicePassword);
E
Eric Blake 已提交
2872 2873 2874
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_SPICE,
                                                    &dev->data.spice.auth,
2875 2876
                                                    cfg->spicePassword,
                                                    QEMU_ASYNC_JOB_NONE);
E
Eric Blake 已提交
2877

2878
            if (ret < 0)
2879
                goto cleanup;
2880

E
Eric Blake 已提交
2881
            /* Steal the new dev's char * reference */
2882 2883 2884 2885 2886
            VIR_FREE(olddev->data.spice.auth.passwd);
            olddev->data.spice.auth.passwd = dev->data.spice.auth.passwd;
            dev->data.spice.auth.passwd = NULL;
            olddev->data.spice.auth.validTo = dev->data.spice.auth.validTo;
            olddev->data.spice.auth.expires = dev->data.spice.auth.expires;
2887
            olddev->data.spice.auth.connected = dev->data.spice.auth.connected;
2888
        } else {
2889
            VIR_DEBUG("Not updating since password didn't change");
2890 2891
            ret = 0;
        }
E
Eric Blake 已提交
2892
        break;
2893

2894
    default:
2895
        virReportError(VIR_ERR_INTERNAL_ERROR,
2896
                       _("unable to change config on '%s' graphics type"), type);
2897 2898 2899
        break;
    }

2900
 cleanup:
2901
    virObjectUnref(cfg);
2902 2903 2904 2905
    return ret;
}


2906
static int qemuComparePCIDevice(virDomainDefPtr def ATTRIBUTE_UNUSED,
2907
                                virDomainDeviceDefPtr device ATTRIBUTE_UNUSED,
2908
                                virDomainDeviceInfoPtr info1,
2909 2910
                                void *opaque)
{
2911
    virDomainDeviceInfoPtr info2 = opaque;
2912

2913 2914
    if (info1->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI ||
        info2->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)
2915 2916
        return 0;

2917 2918 2919
    if (info1->addr.pci.domain == info2->addr.pci.domain &&
        info1->addr.pci.bus == info2->addr.pci.bus &&
        info1->addr.pci.slot == info2->addr.pci.slot &&
2920
        info1->addr.pci.function != info2->addr.pci.function)
2921 2922 2923 2924 2925 2926 2927 2928 2929 2930 2931 2932
        return -1;
    return 0;
}

static bool qemuIsMultiFunctionDevice(virDomainDefPtr def,
                                      virDomainDeviceInfoPtr dev)
{
    if (virDomainDeviceInfoIterate(def, qemuComparePCIDevice, dev) < 0)
        return true;
    return false;
}

2933

2934
static int
2935 2936 2937 2938 2939
qemuDomainRemoveDiskDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainDiskDefPtr disk)
{
    virDomainDeviceDef dev;
2940
    virObjectEventPtr event;
2941
    size_t i;
2942
    const char *src = virDomainDiskGetSource(disk);
2943 2944
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drivestr;
2945
    char *objAlias = NULL;
2946
    char *encAlias = NULL;
2947 2948 2949 2950

    VIR_DEBUG("Removing disk %s from domain %p %s",
              disk->info.alias, vm, vm->def->name);

2951 2952 2953 2954 2955 2956
    /* build the actual drive id string as the disk->info.alias doesn't
     * contain the QEMU_DRIVE_HOST_PREFIX that is passed to qemu */
    if (virAsprintf(&drivestr, "%s%s",
                    QEMU_DRIVE_HOST_PREFIX, disk->info.alias) < 0)
        return -1;

2957 2958 2959 2960 2961 2962 2963 2964
    /* Let's look for some markers for a secret object and create an alias
     * object to be used to attempt to delete the object that was created.
     * We cannot just use the disk private secret info since it would have
     * been removed during cleanup of qemuProcessLaunch. Likewise, libvirtd
     * restart wouldn't have them, so no assumption can be made. */
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_OBJECT_SECRET) &&
        qemuDomainSecretDiskCapable(disk->src)) {

2965 2966
        if (!(objAlias =
              qemuDomainGetSecretAESAlias(disk->info.alias, false))) {
2967 2968 2969 2970 2971
            VIR_FREE(drivestr);
            return -1;
        }
    }

2972 2973 2974 2975 2976 2977 2978 2979 2980 2981 2982 2983 2984 2985
    /* Similarly, if this is possible a device using LUKS encryption, we
     * can remove the luks object password too
     */
    if (!virStorageSourceIsEmpty(disk->src) && disk->src->encryption &&
        disk->src->format == VIR_STORAGE_FILE_LUKS) {

        if (!(encAlias =
              qemuDomainGetSecretAESAlias(disk->info.alias, true))) {
            VIR_FREE(objAlias);
            VIR_FREE(drivestr);
            return -1;
        }
    }

2986
    qemuDomainObjEnterMonitor(driver, vm);
2987 2988 2989 2990 2991 2992

    /* If it fails, then so be it - it was a best shot */
    if (objAlias)
        ignore_value(qemuMonitorDelObject(priv->mon, objAlias));
    VIR_FREE(objAlias);

2993 2994 2995 2996 2997
    /* If it fails, then so be it - it was a best shot */
    if (encAlias)
        ignore_value(qemuMonitorDelObject(priv->mon, encAlias));
    VIR_FREE(encAlias);

2998 2999
    qemuMonitorDriveDel(priv->mon, drivestr);
    VIR_FREE(drivestr);
3000 3001
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
3002

3003
    virDomainAuditDisk(vm, disk->src, NULL, "detach", true);
3004

3005
    event = virDomainEventDeviceRemovedNewFromObj(vm, disk->info.alias);
3006
    qemuDomainEventQueue(driver, event);
3007

3008 3009 3010 3011 3012 3013 3014
    for (i = 0; i < vm->def->ndisks; i++) {
        if (vm->def->disks[i] == disk) {
            virDomainDiskRemove(vm->def, i);
            break;
        }
    }

3015
    qemuDomainReleaseDeviceAddress(vm, &disk->info, src);
3016

3017 3018
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
3019
        VIR_WARN("Unable to restore security label on %s", src);
3020 3021

    if (qemuTeardownDiskCgroup(vm, disk) < 0)
3022
        VIR_WARN("Failed to tear down cgroup for disk path %s", src);
3023 3024

    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
3025
        VIR_WARN("Unable to release lock on %s", src);
3026 3027 3028 3029

    dev.type = VIR_DOMAIN_DEVICE_DISK;
    dev.data.disk = disk;
    ignore_value(qemuRemoveSharedDevice(driver, &dev, vm->def->name));
3030 3031
    if (priv->usbaddrs)
        virDomainUSBAddressRelease(priv->usbaddrs, &disk->info);
3032 3033

    virDomainDiskDefFree(disk);
3034
    return 0;
3035 3036 3037
}


3038
static int
3039
qemuDomainRemoveControllerDevice(virQEMUDriverPtr driver,
3040 3041 3042
                                 virDomainObjPtr vm,
                                 virDomainControllerDefPtr controller)
{
3043
    virObjectEventPtr event;
3044 3045 3046 3047 3048
    size_t i;

    VIR_DEBUG("Removing controller %s from domain %p %s",
              controller->info.alias, vm, vm->def->name);

3049
    event = virDomainEventDeviceRemovedNewFromObj(vm, controller->info.alias);
3050
    qemuDomainEventQueue(driver, event);
3051

3052 3053 3054 3055 3056 3057 3058 3059 3060
    for (i = 0; i < vm->def->ncontrollers; i++) {
        if (vm->def->controllers[i] == controller) {
            virDomainControllerRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
    virDomainControllerDefFree(controller);
3061
    return 0;
3062 3063 3064
}


3065 3066 3067 3068 3069 3070
static int
qemuDomainRemoveMemoryDevice(virQEMUDriverPtr driver,
                             virDomainObjPtr vm,
                             virDomainMemoryDefPtr mem)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3071
    unsigned long long oldmem = virDomainDefGetMemoryTotal(vm->def);
3072
    unsigned long long newmem = oldmem - mem->size;
3073 3074 3075 3076 3077 3078 3079 3080
    virObjectEventPtr event;
    char *backendAlias = NULL;
    int rc;
    int idx;

    VIR_DEBUG("Removing memory device %s from domain %p %s",
              mem->info.alias, vm, vm->def->name);

3081 3082
    event = virDomainEventDeviceRemovedNewFromObj(vm, mem->info.alias);
    qemuDomainEventQueue(driver, event);
3083 3084

    if (virAsprintf(&backendAlias, "mem%s", mem->info.alias) < 0)
3085
        return -1;
3086 3087 3088

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelObject(priv->mon, backendAlias);
3089 3090 3091 3092 3093 3094 3095 3096
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        rc = -1;

    VIR_FREE(backendAlias);

    virDomainAuditMemory(vm, oldmem, newmem, "update", rc == 0);
    if (rc < 0)
        return -1;
3097 3098 3099 3100 3101

    if ((idx = virDomainMemoryFindByDef(vm->def, mem)) >= 0)
        virDomainMemoryRemove(vm->def, idx);

    virDomainMemoryDefFree(mem);
3102

3103 3104 3105
    /* fix the balloon size */
    ignore_value(qemuProcessRefreshBalloonState(driver, vm, QEMU_ASYNC_JOB_NONE));

3106
    /* decrease the mlock limit after memory unplug if necessary */
3107
    ignore_value(qemuDomainAdjustMaxMemLock(vm));
3108

3109
    return 0;
3110 3111 3112
}


3113 3114 3115 3116 3117
static void
qemuDomainRemovePCIHostDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
{
3118
    qemuHostdevReAttachPCIDevices(driver, vm->def->name, &hostdev, 1);
3119 3120 3121 3122 3123
    qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
}

static void
qemuDomainRemoveUSBHostDevice(virQEMUDriverPtr driver,
3124
                              virDomainObjPtr vm,
3125 3126
                              virDomainHostdevDefPtr hostdev)
{
3127
    qemuHostdevReAttachUSBDevices(driver, vm->def->name, &hostdev, 1);
3128
    qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
3129 3130 3131 3132 3133 3134 3135
}

static void
qemuDomainRemoveSCSIHostDevice(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
3136
    qemuHostdevReAttachSCSIDevices(driver, vm->def->name, &hostdev, 1);
3137 3138
}

3139
static int
3140 3141 3142 3143
qemuDomainRemoveHostDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainHostdevDefPtr hostdev)
{
3144
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3145
    virDomainNetDefPtr net = NULL;
3146
    virObjectEventPtr event;
3147
    size_t i;
3148 3149 3150
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drivestr = NULL;
3151
    bool is_vfio = false;
3152 3153 3154 3155

    VIR_DEBUG("Removing host device %s from domain %p %s",
              hostdev->info->alias, vm, vm->def->name);

3156 3157 3158 3159 3160
    if (hostdev->source.subsys.type == VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI) {
        int backend = hostdev->source.subsys.u.pci.backend;
        is_vfio = backend == VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO;
    }

3161 3162 3163 3164 3165 3166 3167 3168 3169 3170
    if (hostdev->source.subsys.type == VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI) {
        /* build the actual drive id string as generated during
         * qemuBuildSCSIHostdevDrvStr that is passed to qemu */
        if (virAsprintf(&drivestr, "%s-%s",
                        virDomainDeviceAddressTypeToString(hostdev->info->type),
                        hostdev->info->alias) < 0)
            goto cleanup;

        qemuDomainObjEnterMonitor(driver, vm);
        qemuMonitorDriveDel(priv->mon, drivestr);
3171 3172
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
            goto cleanup;
3173 3174
    }

3175
    event = virDomainEventDeviceRemovedNewFromObj(vm, hostdev->info->alias);
3176
    qemuDomainEventQueue(driver, event);
3177

3178 3179 3180 3181 3182 3183 3184 3185 3186 3187 3188 3189 3190 3191 3192 3193 3194 3195 3196 3197
    if (hostdev->parent.type == VIR_DOMAIN_DEVICE_NET) {
        net = hostdev->parent.data.net;

        for (i = 0; i < vm->def->nnets; i++) {
            if (vm->def->nets[i] == net) {
                virDomainNetRemove(vm->def, i);
                break;
            }
        }
    }

    for (i = 0; i < vm->def->nhostdevs; i++) {
        if (vm->def->hostdevs[i] == hostdev) {
            virDomainHostdevRemove(vm->def, i);
            break;
        }
    }

    virDomainAuditHostdev(vm, hostdev, "detach", true);

3198 3199 3200 3201
    if (!is_vfio &&
        virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                              vm->def, hostdev, NULL) < 0)
        VIR_WARN("Failed to restore host device labelling");
3202

3203 3204 3205
    if (qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Failed to remove host device cgroup ACL");

3206
    switch ((virDomainHostdevSubsysType) hostdev->source.subsys.type) {
3207 3208
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
        qemuDomainRemovePCIHostDevice(driver, vm, hostdev);
3209 3210 3211 3212
        /* QEMU might no longer need to lock as much memory, eg. we just
         * detached the last VFIO device, so adjust the limit here */
        if (qemuDomainAdjustMaxMemLock(vm) < 0)
            VIR_WARN("Failed to adjust locked memory limit");
3213 3214 3215 3216 3217 3218 3219 3220 3221 3222 3223 3224 3225 3226
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
        qemuDomainRemoveUSBHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
        qemuDomainRemoveSCSIHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_LAST:
        break;
    }

    virDomainHostdevDefFree(hostdev);

    if (net) {
3227
        networkReleaseActualDevice(vm->def, net);
3228 3229
        virDomainNetDefFree(net);
    }
3230

3231 3232 3233 3234
    ret = 0;

 cleanup:
    VIR_FREE(drivestr);
3235
    virObjectUnref(cfg);
3236
    return ret;
3237 3238 3239
}


3240
static int
3241 3242 3243 3244 3245
qemuDomainRemoveNetDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr net)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3246
    qemuDomainObjPrivatePtr priv = vm->privateData;
3247
    virNetDevVPortProfilePtr vport;
3248
    virObjectEventPtr event;
3249
    char *hostnet_name = NULL;
3250
    size_t i;
3251
    int ret = -1;
3252

3253 3254
    if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* this function handles all hostdev and netdev cleanup */
3255 3256
        ret = qemuDomainRemoveHostDevice(driver, vm,
                                         virDomainNetGetActualHostdev(net));
3257
        goto cleanup;
3258 3259
    }

3260 3261 3262
    VIR_DEBUG("Removing network interface %s from domain %p %s",
              net->info.alias, vm, vm->def->name);

3263 3264 3265 3266
    if (virAsprintf(&hostnet_name, "host%s", net->info.alias) < 0)
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
3267
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
3268
        if (qemuMonitorRemoveNetdev(priv->mon, hostnet_name) < 0) {
3269 3270
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
3271 3272 3273 3274 3275 3276 3277 3278 3279 3280 3281
            virDomainAuditNet(vm, net, NULL, "detach", false);
            goto cleanup;
        }
    } else {
        int vlan;
        if ((vlan = qemuDomainNetVLAN(net)) < 0 ||
            qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0) {
            if (vlan < 0) {
                virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                               _("unable to determine original VLAN"));
            }
3282 3283
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
3284 3285 3286 3287
            virDomainAuditNet(vm, net, NULL, "detach", false);
            goto cleanup;
        }
    }
3288 3289
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3290

3291 3292 3293
    virDomainAuditNet(vm, net, NULL, "detach", true);

    event = virDomainEventDeviceRemovedNewFromObj(vm, net->info.alias);
3294
    qemuDomainEventQueue(driver, event);
3295 3296 3297 3298 3299 3300 3301 3302 3303 3304 3305

    for (i = 0; i < vm->def->nnets; i++) {
        if (vm->def->nets[i] == net) {
            virDomainNetRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
    virDomainConfNWFilterTeardown(net);

3306 3307 3308 3309 3310 3311
    if (cfg->macFilter && (net->ifname != NULL)) {
        ignore_value(ebtablesRemoveForwardAllowIn(driver->ebtables,
                                                  net->ifname,
                                                  &net->mac));
    }

3312 3313 3314 3315 3316 3317 3318 3319 3320 3321
    if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_DIRECT) {
        ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                         net->ifname, &net->mac,
                         virDomainNetGetActualDirectDev(net),
                         virDomainNetGetActualDirectMode(net),
                         virDomainNetGetActualVirtPortProfile(net),
                         cfg->stateDir));
    }

    vport = virDomainNetGetActualVirtPortProfile(net);
3322 3323 3324 3325 3326 3327 3328 3329 3330
    if (vport) {
        if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_MIDONET) {
            ignore_value(virNetDevMidonetUnbindPort(vport));
        } else if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH) {
            ignore_value(virNetDevOpenvswitchRemovePort(
                             virDomainNetGetActualBridgeName(net),
                             net->ifname));
        }
    }
3331

3332
    networkReleaseActualDevice(vm->def, net);
3333
    virDomainNetDefFree(net);
3334
    ret = 0;
3335 3336

 cleanup:
3337
    virObjectUnref(cfg);
3338 3339
    VIR_FREE(hostnet_name);
    return ret;
3340 3341 3342
}


3343
static int
3344
qemuDomainRemoveChrDevice(virQEMUDriverPtr driver,
3345 3346 3347
                          virDomainObjPtr vm,
                          virDomainChrDefPtr chr)
{
3348
    virObjectEventPtr event;
3349 3350 3351
    char *charAlias = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret = -1;
3352
    int rc;
3353

3354 3355 3356
    VIR_DEBUG("Removing character device %s from domain %p %s",
              chr->info.alias, vm, vm->def->name);

3357 3358 3359 3360
    if (virAsprintf(&charAlias, "char%s", chr->info.alias) < 0)
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
3361
    rc = qemuMonitorDetachCharDev(priv->mon, charAlias);
3362 3363
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3364

3365 3366 3367 3368 3369
    virDomainAuditChardev(vm, chr, NULL, "detach", rc == 0);

    if (rc < 0)
        goto cleanup;

3370
    event = virDomainEventDeviceRemovedNewFromObj(vm, chr->info.alias);
3371
    qemuDomainEventQueue(driver, event);
3372

3373 3374
    qemuDomainChrRemove(vm->def, chr);
    virDomainChrDefFree(chr);
3375 3376 3377 3378 3379
    ret = 0;

 cleanup:
    VIR_FREE(charAlias);
    return ret;
3380 3381 3382
}


3383 3384 3385 3386 3387 3388 3389 3390 3391 3392 3393 3394 3395 3396 3397 3398 3399 3400 3401 3402 3403 3404 3405 3406 3407 3408 3409 3410 3411 3412 3413 3414 3415 3416 3417 3418
static int
qemuDomainRemoveRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
    virObjectEventPtr event;
    char *charAlias = NULL;
    char *objAlias = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    ssize_t idx;
    int ret = -1;
    int rc;

    VIR_DEBUG("Removing RNG device %s from domain %p %s",
              rng->info.alias, vm, vm->def->name);

    if (virAsprintf(&objAlias, "obj%s", rng->info.alias) < 0)
        goto cleanup;

    if (virAsprintf(&charAlias, "char%s", rng->info.alias) < 0)
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelObject(priv->mon, objAlias);

    if (rc == 0 && rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD)
        ignore_value(qemuMonitorDetachCharDev(priv->mon, charAlias));

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;

    virDomainAuditRNG(vm, rng, NULL, "detach", rc == 0);

    if (rc < 0)
        goto cleanup;

3419 3420
    event = virDomainEventDeviceRemovedNewFromObj(vm, rng->info.alias);
    qemuDomainEventQueue(driver, event);
3421 3422 3423 3424 3425 3426 3427 3428 3429 3430 3431 3432 3433 3434

    if ((idx = virDomainRNGFind(vm->def, rng)) >= 0)
        virDomainRNGRemove(vm->def, idx);
    qemuDomainReleaseDeviceAddress(vm, &rng->info, NULL);
    virDomainRNGDefFree(rng);
    ret = 0;

 cleanup:
    VIR_FREE(charAlias);
    VIR_FREE(objAlias);
    return ret;
}


3435
int
3436 3437 3438 3439
qemuDomainRemoveDevice(virQEMUDriverPtr driver,
                       virDomainObjPtr vm,
                       virDomainDeviceDefPtr dev)
{
3440
    int ret = -1;
3441 3442
    switch ((virDomainDeviceType) dev->type) {
    case VIR_DOMAIN_DEVICE_DISK:
3443
        ret = qemuDomainRemoveDiskDevice(driver, vm, dev->data.disk);
3444 3445
        break;
    case VIR_DOMAIN_DEVICE_CONTROLLER:
3446
        ret = qemuDomainRemoveControllerDevice(driver, vm, dev->data.controller);
3447 3448
        break;
    case VIR_DOMAIN_DEVICE_NET:
3449
        ret = qemuDomainRemoveNetDevice(driver, vm, dev->data.net);
3450 3451
        break;
    case VIR_DOMAIN_DEVICE_HOSTDEV:
3452
        ret = qemuDomainRemoveHostDevice(driver, vm, dev->data.hostdev);
3453 3454 3455
        break;

    case VIR_DOMAIN_DEVICE_CHR:
3456
        ret = qemuDomainRemoveChrDevice(driver, vm, dev->data.chr);
3457
        break;
3458
    case VIR_DOMAIN_DEVICE_RNG:
3459
        ret = qemuDomainRemoveRNGDevice(driver, vm, dev->data.rng);
3460
        break;
3461

3462
    case VIR_DOMAIN_DEVICE_MEMORY:
3463 3464
        ret = qemuDomainRemoveMemoryDevice(driver, vm, dev->data.memory);
        break;
3465

3466 3467 3468 3469 3470 3471 3472 3473 3474 3475 3476 3477 3478
    case VIR_DOMAIN_DEVICE_NONE:
    case VIR_DOMAIN_DEVICE_LEASE:
    case VIR_DOMAIN_DEVICE_FS:
    case VIR_DOMAIN_DEVICE_INPUT:
    case VIR_DOMAIN_DEVICE_SOUND:
    case VIR_DOMAIN_DEVICE_VIDEO:
    case VIR_DOMAIN_DEVICE_WATCHDOG:
    case VIR_DOMAIN_DEVICE_GRAPHICS:
    case VIR_DOMAIN_DEVICE_HUB:
    case VIR_DOMAIN_DEVICE_REDIRDEV:
    case VIR_DOMAIN_DEVICE_SMARTCARD:
    case VIR_DOMAIN_DEVICE_MEMBALLOON:
    case VIR_DOMAIN_DEVICE_NVRAM:
3479
    case VIR_DOMAIN_DEVICE_SHMEM:
3480
    case VIR_DOMAIN_DEVICE_TPM:
3481
    case VIR_DOMAIN_DEVICE_PANIC:
J
Ján Tomko 已提交
3482
    case VIR_DOMAIN_DEVICE_IOMMU:
3483 3484 3485 3486 3487 3488
    case VIR_DOMAIN_DEVICE_LAST:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("don't know how to remove a %s device"),
                       virDomainDeviceTypeToString(dev->type));
        break;
    }
3489
    return ret;
3490 3491 3492 3493 3494 3495 3496 3497 3498
}


static void
qemuDomainMarkDeviceForRemoval(virDomainObjPtr vm,
                               virDomainDeviceInfoPtr info)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

3499 3500 3501 3502 3503 3504
    memset(&priv->unplug, 0, sizeof(priv->unplug));

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
        return;

    priv->unplug.alias = info->alias;
3505 3506 3507 3508 3509 3510
}

static void
qemuDomainResetDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3511
    priv->unplug.alias = NULL;
3512 3513 3514
}

/* Returns:
3515 3516
 *  -1 Unplug of the device failed
 *
3517 3518 3519 3520 3521 3522 3523
 *   0 DEVICE_DELETED event is supported and removal of the device did not
 *     finish in qemuDomainRemoveDeviceWaitTime
 *
 *   1 when the caller is responsible for finishing the device removal:
 *      - DEVICE_DELETED event is unsupported
 *      - DEVICE_DELETED event arrived before the timeout time
 *      - we failed to reliably wait for the event and thus use fallback behavior
3524 3525 3526 3527 3528 3529
 */
static int
qemuDomainWaitForDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    unsigned long long until;
3530
    int rc;
3531 3532

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
3533
        return 1;
3534 3535

    if (virTimeMillisNow(&until) < 0)
3536
        return 1;
3537
    until += qemuDomainRemoveDeviceWaitTime;
3538

3539
    while (priv->unplug.alias) {
3540 3541 3542 3543 3544
        if ((rc = virDomainObjWaitUntil(vm, until)) == 1)
            return 0;

        if (rc < 0) {
            VIR_WARN("Failed to wait on unplug condition for domain '%s' "
3545
                     "device '%s'", vm->def->name, priv->unplug.alias);
3546
            return 1;
3547 3548 3549
        }
    }

3550 3551 3552 3553 3554 3555
    if (priv->unplug.status == QEMU_DOMAIN_UNPLUGGING_DEVICE_STATUS_GUEST_REJECTED) {
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("unplug of device was rejected by the guest"));
        return -1;
    }

3556 3557 3558
    return 1;
}

3559 3560 3561 3562 3563 3564 3565
/* Returns:
 *  true    there was a thread waiting for devAlias to be removed and this
 *          thread will take care of finishing the removal
 *  false   the thread that started the removal is already gone and delegate
 *          finishing the removal to a new thread
 */
bool
3566
qemuDomainSignalDeviceRemoval(virDomainObjPtr vm,
3567 3568
                              const char *devAlias,
                              qemuDomainUnpluggingDeviceStatus status)
3569 3570 3571
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

3572
    if (STREQ_NULLABLE(priv->unplug.alias, devAlias)) {
3573
        qemuDomainResetDeviceRemoval(vm);
3574
        priv->unplug.status = status;
3575
        virDomainObjBroadcast(vm);
3576
        return true;
3577
    }
3578
    return false;
3579 3580 3581
}


3582 3583 3584 3585
static int
qemuDomainDetachVirtioDiskDevice(virQEMUDriverPtr driver,
                                 virDomainObjPtr vm,
                                 virDomainDiskDefPtr detach)
3586
{
3587
    int ret = -1;
3588 3589
    qemuDomainObjPrivatePtr priv = vm->privateData;

3590
    if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
3591 3592
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
3593
                       detach->dst);
3594 3595 3596
        goto cleanup;
    }

3597
    if (qemuDomainMachineIsS390CCW(vm->def) &&
3598 3599 3600 3601 3602 3603 3604 3605 3606 3607 3608 3609 3610 3611
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid PCI address"));
            goto cleanup;
        }
3612 3613
    }

3614
    if (!detach->info.alias) {
3615 3616 3617 3618
        if (qemuAssignDeviceDiskAlias(vm->def, detach, priv->qemuCaps) < 0)
            goto cleanup;
    }

3619 3620
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3621
    qemuDomainObjEnterMonitor(driver, vm);
3622 3623
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
3624
            goto cleanup;
3625 3626
        virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
        goto cleanup;
3627
    }
3628 3629
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3630

3631
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
3632
        ret = qemuDomainRemoveDiskDevice(driver, vm, detach);
3633

3634
 cleanup:
3635
    qemuDomainResetDeviceRemoval(vm);
3636 3637 3638
    return ret;
}

3639 3640 3641 3642
static int
qemuDomainDetachDiskDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainDiskDefPtr detach)
3643
{
3644
    int ret = -1;
3645 3646
    qemuDomainObjPrivatePtr priv = vm->privateData;

3647
    if (qemuDomainDiskBlockJobIsActive(detach))
E
Eric Blake 已提交
3648 3649
        goto cleanup;

3650 3651
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3652
    qemuDomainObjEnterMonitor(driver, vm);
3653
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
3654 3655
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
            goto cleanup;
3656
        virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
3657 3658
        goto cleanup;
    }
3659 3660
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3661

3662
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
3663
        ret = qemuDomainRemoveDiskDevice(driver, vm, detach);
3664

3665
 cleanup:
3666
    qemuDomainResetDeviceRemoval(vm);
3667 3668 3669
    return ret;
}

3670 3671 3672 3673 3674 3675
static int
qemuFindDisk(virDomainDefPtr def, const char *dst)
{
    size_t i;

    for (i = 0; i < def->ndisks; i++) {
3676
        if (STREQ(def->disks[i]->dst, dst))
3677 3678 3679 3680 3681 3682 3683 3684 3685 3686 3687 3688 3689 3690 3691 3692 3693 3694 3695 3696 3697 3698 3699 3700 3701 3702 3703 3704 3705 3706 3707 3708 3709 3710 3711 3712 3713 3714 3715 3716 3717 3718 3719 3720 3721
            return i;
    }

    return -1;
}

int
qemuDomainDetachDeviceDiskLive(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainDiskDefPtr disk;
    int ret = -1;
    int idx;

    if ((idx = qemuFindDisk(vm->def, dev->data.disk->dst)) < 0) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("disk %s not found"), dev->data.disk->dst);
        return -1;
    }
    disk = vm->def->disks[idx];

    switch (disk->device) {
    case VIR_DOMAIN_DISK_DEVICE_DISK:
    case VIR_DOMAIN_DISK_DEVICE_LUN:
        if (disk->bus == VIR_DOMAIN_DISK_BUS_VIRTIO)
            ret = qemuDomainDetachVirtioDiskDevice(driver, vm, disk);
        else if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI ||
                 disk->bus == VIR_DOMAIN_DISK_BUS_USB)
            ret = qemuDomainDetachDiskDevice(driver, vm, disk);
        else
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
                           _("This type of disk cannot be hot unplugged"));
        break;
    default:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("disk device type '%s' cannot be detached"),
                       virDomainDiskDeviceTypeToString(disk->device));
        break;
    }

    return ret;
}


3722 3723 3724
static bool qemuDomainDiskControllerIsBusy(virDomainObjPtr vm,
                                           virDomainControllerDefPtr detach)
{
3725
    size_t i;
3726 3727 3728 3729 3730 3731 3732 3733 3734 3735 3736 3737 3738 3739 3740 3741 3742 3743 3744 3745 3746 3747 3748 3749 3750 3751 3752 3753 3754 3755 3756 3757 3758 3759 3760 3761 3762 3763 3764 3765 3766 3767 3768 3769 3770 3771
    virDomainDiskDefPtr disk;

    for (i = 0; i < vm->def->ndisks; i++) {
        disk = vm->def->disks[i];
        if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE)
            /* the disk does not use disk controller */
            continue;

        /* check whether the disk uses this type controller */
        if (disk->bus == VIR_DOMAIN_DISK_BUS_IDE &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_IDE)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_FDC &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_FDC)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (disk->info.addr.drive.controller == detach->idx)
            return true;
    }

    return false;
}

static bool qemuDomainControllerIsBusy(virDomainObjPtr vm,
                                       virDomainControllerDefPtr detach)
{
    switch (detach->type) {
    case VIR_DOMAIN_CONTROLLER_TYPE_IDE:
    case VIR_DOMAIN_CONTROLLER_TYPE_FDC:
    case VIR_DOMAIN_CONTROLLER_TYPE_SCSI:
        return qemuDomainDiskControllerIsBusy(vm, detach);

    case VIR_DOMAIN_CONTROLLER_TYPE_SATA:
    case VIR_DOMAIN_CONTROLLER_TYPE_VIRTIO_SERIAL:
    case VIR_DOMAIN_CONTROLLER_TYPE_CCID:
    default:
        /* libvirt does not support sata controller, and does not support to
         * detach virtio and smart card controller.
         */
        return true;
    }
}

3772 3773 3774
int qemuDomainDetachControllerDevice(virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainDeviceDefPtr dev)
3775
{
3776
    int idx, ret = -1;
3777 3778 3779
    virDomainControllerDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;

3780 3781 3782
    if ((idx = virDomainControllerFind(vm->def,
                                       dev->data.controller->type,
                                       dev->data.controller->idx)) < 0) {
3783
        virReportError(VIR_ERR_OPERATION_FAILED,
3784
                       _("controller %s:%d not found"),
3785 3786
                       virDomainControllerTypeToString(dev->data.controller->type),
                       dev->data.controller->idx);
3787 3788 3789
        goto cleanup;
    }

3790 3791
    detach = vm->def->controllers[idx];

3792 3793 3794 3795 3796 3797
    if (detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI &&
        detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW &&
        detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("device with '%s' address cannot be detached"),
                       virDomainDeviceAddressTypeToString(detach->info.type));
3798 3799 3800
        goto cleanup;
    }

3801 3802 3803 3804 3805 3806 3807 3808 3809
    if (!virDomainDeviceAddressIsValid(&detach->info, detach->info.type)) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("device with invalid '%s' address cannot be detached"),
                       virDomainDeviceAddressTypeToString(detach->info.type));
        goto cleanup;
    }

    if (detach->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI &&
        qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
3810 3811 3812
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
                       dev->data.disk->dst);
3813 3814 3815
        goto cleanup;
    }

3816
    if (qemuDomainControllerIsBusy(vm, detach)) {
3817 3818
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("device cannot be detached: device is busy"));
3819 3820 3821
        goto cleanup;
    }

3822
    if (!detach->info.alias) {
3823
        if (qemuAssignDeviceControllerAlias(vm->def, priv->qemuCaps, detach) < 0)
3824 3825 3826
            goto cleanup;
    }

3827 3828
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3829
    qemuDomainObjEnterMonitor(driver, vm);
3830 3831 3832
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias)) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        goto cleanup;
3833
    }
3834 3835
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3836

3837
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
3838
        ret = qemuDomainRemoveControllerDevice(driver, vm, detach);
3839

3840
 cleanup:
3841
    qemuDomainResetDeviceRemoval(vm);
3842 3843 3844
    return ret;
}

3845
static int
3846
qemuDomainDetachHostPCIDevice(virQEMUDriverPtr driver,
3847
                              virDomainObjPtr vm,
3848
                              virDomainHostdevDefPtr detach)
3849 3850
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3851
    virDomainHostdevSubsysPCIPtr pcisrc = &detach->source.subsys.u.pci;
3852
    int ret;
3853

3854
    if (qemuIsMultiFunctionDevice(vm->def, detach->info)) {
3855 3856
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %.4x:%.2x:%.2x.%.1x"),
3857 3858
                       pcisrc->addr.domain, pcisrc->addr.bus,
                       pcisrc->addr.slot, pcisrc->addr.function);
3859
        return -1;
3860 3861
    }

3862
    if (!virDomainDeviceAddressIsValid(detach->info,
3863
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
3864 3865
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a PCI address"));
3866
        return -1;
3867 3868
    }

3869 3870
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

3871
    qemuDomainObjEnterMonitor(driver, vm);
3872
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
3873 3874
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
3875 3876 3877 3878

    return ret;
}

3879
static int
3880
qemuDomainDetachHostUSBDevice(virQEMUDriverPtr driver,
3881
                              virDomainObjPtr vm,
3882
                              virDomainHostdevDefPtr detach)
3883 3884
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3885
    int ret;
3886

3887
    if (!detach->info->alias) {
3888 3889
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
3890 3891 3892
        return -1;
    }

3893 3894
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

3895
    qemuDomainObjEnterMonitor(driver, vm);
3896
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
3897 3898
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
3899 3900 3901 3902

    return ret;
}

3903
static int
3904
qemuDomainDetachHostSCSIDevice(virQEMUDriverPtr driver,
3905 3906 3907 3908 3909 3910 3911 3912 3913 3914 3915 3916
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr detach)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret = -1;

    if (!detach->info->alias) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
        return -1;
    }

3917 3918
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

3919
    qemuDomainObjEnterMonitor(driver, vm);
3920 3921 3922 3923
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
3924 3925 3926 3927 3928

    return ret;
}

static int
3929
qemuDomainDetachThisHostDevice(virQEMUDriverPtr driver,
3930
                               virDomainObjPtr vm,
3931
                               virDomainHostdevDefPtr detach)
3932
{
3933
    int ret = -1;
3934

3935
    if (!detach->info->alias) {
3936
        if (qemuAssignDeviceHostdevAlias(vm->def, &detach->info->alias, -1) < 0)
3937 3938 3939
            return -1;
    }

3940
    switch (detach->source.subsys.type) {
3941
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
3942
        ret = qemuDomainDetachHostPCIDevice(driver, vm, detach);
3943
        break;
3944
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
3945
        ret = qemuDomainDetachHostUSBDevice(driver, vm, detach);
3946
        break;
3947
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
3948
        ret = qemuDomainDetachHostSCSIDevice(driver, vm, detach);
3949
        break;
3950
    default:
3951 3952 3953
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(detach->source.subsys.type));
3954 3955 3956
        return -1;
    }

3957
    if (ret < 0) {
3958 3959
        if (virDomainObjIsActive(vm))
            virDomainAuditHostdev(vm, detach, "detach", false);
3960 3961
    } else if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1) {
        ret = qemuDomainRemoveHostDevice(driver, vm, detach);
3962
    }
3963

3964 3965
    qemuDomainResetDeviceRemoval(vm);

3966 3967
    return ret;
}
3968

3969
/* search for a hostdev matching dev and detach it */
3970
int qemuDomainDetachHostDevice(virQEMUDriverPtr driver,
3971 3972 3973 3974 3975
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainHostdevDefPtr hostdev = dev->data.hostdev;
    virDomainHostdevSubsysPtr subsys = &hostdev->source.subsys;
3976
    virDomainHostdevSubsysUSBPtr usbsrc = &subsys->u.usb;
3977
    virDomainHostdevSubsysPCIPtr pcisrc = &subsys->u.pci;
3978
    virDomainHostdevSubsysSCSIPtr scsisrc = &subsys->u.scsi;
3979 3980 3981 3982
    virDomainHostdevDefPtr detach = NULL;
    int idx;

    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
3983 3984 3985
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
3986 3987 3988 3989 3990 3991
        return -1;
    }

    idx = virDomainHostdevFind(vm->def, hostdev, &detach);

    if (idx < 0) {
3992
        switch (subsys->type) {
3993
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
3994 3995
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("host pci device %.4x:%.2x:%.2x.%.1x not found"),
3996 3997
                           pcisrc->addr.domain, pcisrc->addr.bus,
                           pcisrc->addr.slot, pcisrc->addr.function);
3998 3999
            break;
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
4000
            if (usbsrc->bus && usbsrc->device) {
4001 4002
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device %03d.%03d not found"),
4003
                               usbsrc->bus, usbsrc->device);
4004
            } else {
4005 4006
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device vendor=0x%.4x product=0x%.4x not found"),
4007
                               usbsrc->vendor, usbsrc->product);
4008 4009
            }
            break;
4010
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI: {
4011 4012 4013 4014 4015 4016 4017 4018 4019 4020
            if (scsisrc->protocol ==
                VIR_DOMAIN_HOSTDEV_SCSI_PROTOCOL_TYPE_ISCSI) {
                virDomainHostdevSubsysSCSIiSCSIPtr iscsisrc = &scsisrc->u.iscsi;
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host scsi iSCSI path %s not found"),
                               iscsisrc->path);
            } else {
                 virDomainHostdevSubsysSCSIHostPtr scsihostsrc =
                     &scsisrc->u.host;
                 virReportError(VIR_ERR_OPERATION_FAILED,
4021
                                _("host scsi device %s:%u:%u.%llu not found"),
4022 4023 4024
                                scsihostsrc->adapter, scsihostsrc->bus,
                                scsihostsrc->target, scsihostsrc->unit);
            }
4025
            break;
4026
        }
4027
        default:
4028 4029
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("unexpected hostdev type %d"), subsys->type);
4030 4031 4032 4033 4034
            break;
        }
        return -1;
    }

4035 4036 4037 4038
    /* If this is a network hostdev, we need to use the higher-level detach
     * function so that mac address / virtualport are reset
     */
    if (detach->parent.type == VIR_DOMAIN_DEVICE_NET)
4039
        return qemuDomainDetachNetDevice(driver, vm, &detach->parent);
4040
    else
4041
        return qemuDomainDetachThisHostDevice(driver, vm, detach);
4042 4043
}

4044
int
4045
qemuDomainDetachNetDevice(virQEMUDriverPtr driver,
4046 4047 4048
                          virDomainObjPtr vm,
                          virDomainDeviceDefPtr dev)
{
4049
    int detachidx, ret = -1;
4050 4051 4052
    virDomainNetDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;

4053
    if ((detachidx = virDomainNetFindIdx(vm->def, dev->data.net)) < 0)
4054
        goto cleanup;
4055

4056
    detach = vm->def->nets[detachidx];
4057

4058
    if (virDomainNetGetActualType(detach) == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
4059
        /* coverity[negative_returns] */
4060
        ret = qemuDomainDetachThisHostDevice(driver, vm,
4061
                                             virDomainNetGetActualHostdev(detach));
4062 4063
        goto cleanup;
    }
4064
    if (qemuDomainMachineIsS390CCW(vm->def) &&
4065 4066 4067 4068 4069 4070 4071 4072 4073 4074 4075 4076 4077 4078
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a PCI address"));
            goto cleanup;
        }
4079

4080 4081 4082 4083 4084 4085
        if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            _("cannot hot unplug multifunction PCI device :%s"),
                            dev->data.disk->dst);
            goto cleanup;
        }
4086 4087
    }

4088
    if (!detach->info.alias) {
4089 4090 4091 4092
        if (qemuAssignDeviceNetAlias(vm->def, detach, -1) < 0)
            goto cleanup;
    }

4093 4094
    if (virDomainNetGetActualBandwidth(detach) &&
        virNetDevSupportBandwidth(virDomainNetGetActualType(detach)) &&
4095 4096 4097 4098
        virNetDevBandwidthClear(detach->ifname) < 0)
        VIR_WARN("cannot clear bandwidth setting for device : %s",
                 detach->ifname);

4099 4100 4101
    /* deactivate the tap/macvtap device on the host, which could also
     * affect the parent device (e.g. macvtap passthrough mode sets
     * the parent device offline)
4102 4103 4104
     */
    ignore_value(qemuInterfaceStopDevice(detach));

4105 4106
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

4107
    qemuDomainObjEnterMonitor(driver, vm);
4108 4109
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
4110
            goto cleanup;
4111 4112
        virDomainAuditNet(vm, detach, NULL, "detach", false);
        goto cleanup;
4113
    }
4114 4115
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
4116

4117
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4118
        ret = qemuDomainRemoveNetDevice(driver, vm, detach);
4119

4120
 cleanup:
4121
    qemuDomainResetDeviceRemoval(vm);
4122 4123 4124
    return ret;
}

4125
int
4126
qemuDomainChangeGraphicsPasswords(virQEMUDriverPtr driver,
4127 4128 4129
                                  virDomainObjPtr vm,
                                  int type,
                                  virDomainGraphicsAuthDefPtr auth,
4130 4131
                                  const char *defaultPasswd,
                                  int asyncJob)
4132 4133 4134
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    time_t now = time(NULL);
4135 4136
    const char *expire;
    char *validTo = NULL;
4137
    const char *connected = NULL;
4138
    const char *password;
4139 4140
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
4141

4142
    if (!auth->passwd && !defaultPasswd) {
4143 4144 4145
        ret = 0;
        goto cleanup;
    }
4146
    password = auth->passwd ? auth->passwd : defaultPasswd;
4147

4148 4149 4150
    if (auth->connected)
        connected = virDomainGraphicsAuthConnectedTypeToString(auth->connected);

4151 4152
    if (qemuDomainObjEnterMonitorAsync(driver, vm, asyncJob) < 0)
        goto cleanup;
4153
    ret = qemuMonitorSetPassword(priv->mon, type, password, connected);
4154 4155 4156

    if (ret == -2) {
        if (type != VIR_DOMAIN_GRAPHICS_TYPE_VNC) {
4157 4158
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Graphics password only supported for VNC"));
4159 4160
            ret = -1;
        } else {
4161
            ret = qemuMonitorSetVNCPassword(priv->mon, password);
4162 4163
        }
    }
4164
    if (ret != 0)
4165
        goto end_job;
4166

4167 4168 4169
    if (password[0] == '\0' ||
        (auth->expires && auth->validTo <= now)) {
        expire = "now";
4170
    } else if (auth->expires) {
4171 4172 4173
        if (virAsprintf(&validTo, "%lu", (unsigned long) auth->validTo) < 0)
            goto end_job;
        expire = validTo;
4174
    } else {
4175
        expire = "never";
4176 4177
    }

4178
    ret = qemuMonitorExpirePassword(priv->mon, type, expire);
4179 4180 4181 4182

    if (ret == -2) {
        /* XXX we could fake this with a timer */
        if (auth->expires) {
4183 4184
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Expiry of passwords is not supported"));
4185
            ret = -1;
4186 4187
        } else {
            ret = 0;
4188 4189 4190
        }
    }

4191
 end_job:
4192 4193
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
4194
 cleanup:
4195
    VIR_FREE(validTo);
4196
    virObjectUnref(cfg);
4197 4198
    return ret;
}
4199

4200
int qemuDomainAttachLease(virQEMUDriverPtr driver,
4201 4202 4203
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
4204 4205 4206
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);

4207
    if (virDomainLeaseInsertPreAlloc(vm->def) < 0)
4208
        goto cleanup;
4209

4210
    if (virDomainLockLeaseAttach(driver->lockManager, cfg->uri,
4211
                                 vm, lease) < 0) {
4212
        virDomainLeaseInsertPreAlloced(vm->def, NULL);
4213
        goto cleanup;
4214 4215 4216
    }

    virDomainLeaseInsertPreAlloced(vm->def, lease);
4217 4218
    ret = 0;

4219
 cleanup:
4220 4221
    virObjectUnref(cfg);
    return ret;
4222 4223
}

4224
int qemuDomainDetachLease(virQEMUDriverPtr driver,
4225 4226 4227
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
4228
    virDomainLeaseDefPtr det_lease;
4229
    int idx;
4230

4231
    if ((idx = virDomainLeaseIndex(vm->def, lease)) < 0) {
4232 4233 4234
        virReportError(VIR_ERR_INVALID_ARG,
                       _("Lease %s in lockspace %s does not exist"),
                       lease->key, NULLSTR(lease->lockspace));
4235 4236 4237 4238 4239 4240
        return -1;
    }

    if (virDomainLockLeaseDetach(driver->lockManager, vm, lease) < 0)
        return -1;

4241
    det_lease = virDomainLeaseRemoveAt(vm->def, idx);
4242
    virDomainLeaseDefFree(det_lease);
4243 4244
    return 0;
}
4245 4246 4247 4248 4249 4250 4251 4252 4253 4254 4255 4256 4257 4258 4259 4260 4261

int qemuDomainDetachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainDefPtr vmdef = vm->def;
    virDomainChrDefPtr tmpChr;
    char *devstr = NULL;

    if (!(tmpChr = virDomainChrFind(vmdef, chr))) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return ret;
    }

P
Pavel Hrdina 已提交
4262 4263 4264 4265 4266
    if (!tmpChr->info.alias && qemuAssignDeviceChrAlias(vmdef, tmpChr, -1) < 0)
        return ret;

    sa_assert(tmpChr->info.alias);

4267
    if (qemuBuildChrDeviceStr(&devstr, vmdef, chr, priv->qemuCaps) < 0)
4268 4269
        return ret;

4270 4271
    qemuDomainMarkDeviceForRemoval(vm, &tmpChr->info);

4272 4273
    qemuDomainObjEnterMonitor(driver, vm);
    if (devstr && qemuMonitorDelDevice(priv->mon, tmpChr->info.alias) < 0) {
4274
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
4275 4276
        goto cleanup;
    }
4277 4278
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
4279

4280
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1) {
4281
        qemuDomainReleaseDeviceAddress(vm, &tmpChr->info, NULL);
4282
        ret = qemuDomainRemoveChrDevice(driver, vm, tmpChr);
4283 4284
    }

4285
 cleanup:
4286
    qemuDomainResetDeviceRemoval(vm);
4287 4288 4289
    VIR_FREE(devstr);
    return ret;
}
4290 4291 4292 4293 4294 4295 4296 4297 4298 4299 4300 4301 4302 4303 4304 4305 4306 4307 4308 4309 4310 4311 4312 4313 4314 4315 4316 4317 4318 4319 4320 4321 4322 4323


int
qemuDomainDetachRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    ssize_t idx;
    virDomainRNGDefPtr tmpRNG;
    int rc;
    int ret = -1;

    if ((idx = virDomainRNGFind(vm->def, rng) < 0)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return -1;
    }

    tmpRNG = vm->def->rngs[idx];

    if (!tmpRNG->info.alias) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("alias not set for RNG device"));
        return -1;
    }

    qemuDomainMarkDeviceForRemoval(vm, &tmpRNG->info);

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelDevice(priv->mon, tmpRNG->info.alias);
    if (qemuDomainObjExitMonitor(driver, vm) || rc < 0)
        goto cleanup;

4324
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4325 4326 4327 4328 4329 4330
        ret = qemuDomainRemoveRNGDevice(driver, vm, tmpRNG);

 cleanup:
    qemuDomainResetDeviceRemoval(vm);
    return ret;
}
4331 4332 4333 4334 4335 4336 4337 4338 4339 4340 4341 4342 4343


int
qemuDomainDetachMemoryDevice(virQEMUDriverPtr driver,
                             virDomainObjPtr vm,
                             virDomainMemoryDefPtr memdef)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainMemoryDefPtr mem;
    int idx;
    int rc;
    int ret = -1;

4344
    qemuDomainMemoryDeviceAlignSize(vm->def, memdef);
4345 4346 4347 4348 4349 4350 4351 4352 4353 4354 4355 4356 4357 4358 4359 4360 4361 4362 4363 4364 4365 4366

    if ((idx = virDomainMemoryFindByDef(vm->def, memdef)) < 0) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return -1;
    }

    mem = vm->def->mems[idx];

    if (!mem->info.alias) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("alias for the memory device was not found"));
        return -1;
    }

    qemuDomainMarkDeviceForRemoval(vm, &mem->info);

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelDevice(priv->mon, mem->info.alias);
    if (qemuDomainObjExitMonitor(driver, vm) < 0 || rc < 0)
        goto cleanup;

4367
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4368 4369 4370 4371 4372 4373
        ret = qemuDomainRemoveMemoryDevice(driver, vm, mem);

 cleanup:
    qemuDomainResetDeviceRemoval(vm);
    return ret;
}