qemu_hotplug.c 155.8 KB
Newer Older
1
/*
2
 * qemu_hotplug.c: QEMU device hotplug management
3
 *
4
 * Copyright (C) 2006-2016 Red Hat, Inc.
5 6 7 8 9 10 11 12 13 14 15 16 17
 * Copyright (C) 2006 Daniel P. Berrange
 *
 * This library is free software; you can redistribute it and/or
 * modify it under the terms of the GNU Lesser General Public
 * License as published by the Free Software Foundation; either
 * version 2.1 of the License, or (at your option) any later version.
 *
 * This library is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 * Lesser General Public License for more details.
 *
 * You should have received a copy of the GNU Lesser General Public
18
 * License along with this library.  If not, see
O
Osier Yang 已提交
19
 * <http://www.gnu.org/licenses/>.
20 21 22 23 24 25 26 27
 *
 * Author: Daniel P. Berrange <berrange@redhat.com>
 */


#include <config.h>

#include "qemu_hotplug.h"
28
#include "qemu_hotplugpriv.h"
29
#include "qemu_alias.h"
30 31
#include "qemu_capabilities.h"
#include "qemu_domain.h"
32
#include "qemu_domain_address.h"
33 34
#include "qemu_command.h"
#include "qemu_hostdev.h"
35
#include "qemu_interface.h"
36
#include "qemu_process.h"
37
#include "domain_audit.h"
38
#include "netdev_bandwidth_conf.h"
39
#include "domain_nwfilter.h"
40
#include "virlog.h"
41
#include "datatypes.h"
42
#include "virerror.h"
43
#include "viralloc.h"
44
#include "virpci.h"
E
Eric Blake 已提交
45
#include "virfile.h"
46
#include "virprocess.h"
47
#include "qemu_cgroup.h"
48
#include "locking/domain_lock.h"
49
#include "network/bridge_driver.h"
50 51
#include "virnetdev.h"
#include "virnetdevbridge.h"
A
Ansis Atteka 已提交
52
#include "virnetdevtap.h"
53
#include "virnetdevopenvswitch.h"
54
#include "virnetdevmidonet.h"
55
#include "device_conf.h"
56
#include "virstoragefile.h"
57
#include "virstring.h"
58
#include "virtime.h"
59
#include "storage/storage_driver.h"
60 61

#define VIR_FROM_THIS VIR_FROM_QEMU
62 63 64

VIR_LOG_INIT("qemu.qemu_hotplug");

65
#define CHANGE_MEDIA_TIMEOUT 5000
66

67 68 69 70
/* Wait up to 5 seconds for device removal to finish. */
unsigned long long qemuDomainRemoveDeviceWaitTime = 1000ull * 5;


71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147
/**
 * qemuDomainPrepareDisk:
 * @driver: qemu driver struct
 * @vm: domain object
 * @disk: disk to prepare
 * @overridesrc: Source different than @disk->src when necessary
 * @teardown: Teardown the disk instead of adding it to a vm
 *
 * Setup the locks, cgroups and security permissions on a disk of a VM.
 * If @overridesrc is specified the source struct is used instead of the
 * one present in @disk. If @teardown is true, then the labels and cgroups
 * are removed instead.
 *
 * Returns 0 on success and -1 on error. Reports libvirt error.
 */
static int
qemuDomainPrepareDisk(virQEMUDriverPtr driver,
                      virDomainObjPtr vm,
                      virDomainDiskDefPtr disk,
                      virStorageSourcePtr overridesrc,
                      bool teardown)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    int ret = -1;
    virStorageSourcePtr origsrc = NULL;

    if (overridesrc) {
        origsrc = disk->src;
        disk->src = overridesrc;
    }

    /* just tear down the disk access */
    if (teardown) {
        ret = 0;
        goto rollback_cgroup;
    }

    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
                                vm, disk) < 0)
        goto cleanup;

    if (virSecurityManagerSetDiskLabel(driver->securityManager,
                                       vm->def, disk) < 0)
        goto rollback_lock;

    if (qemuSetupDiskCgroup(vm, disk) < 0)
        goto rollback_label;

    ret = 0;
    goto cleanup;

 rollback_cgroup:
    if (qemuTeardownDiskCgroup(vm, disk) < 0)
        VIR_WARN("Unable to tear down cgroup access on %s",
                 virDomainDiskGetSource(disk));

 rollback_label:
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
        VIR_WARN("Unable to restore security label on %s",
                 virDomainDiskGetSource(disk));

 rollback_lock:
    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s",
                 virDomainDiskGetSource(disk));

 cleanup:
    if (origsrc)
        disk->src = origsrc;

    virObjectUnref(cfg);

    return ret;
}


148 149 150 151
static int
qemuHotplugWaitForTrayEject(virQEMUDriverPtr driver,
                            virDomainObjPtr vm,
                            virDomainDiskDefPtr disk,
152
                            const char *driveAlias)
153 154 155 156 157 158 159 160 161 162 163 164
{
    unsigned long long now;
    int rc;

    if (virTimeMillisNow(&now) < 0)
        return -1;

    while (disk->tray_status != VIR_DOMAIN_DISK_TRAY_OPEN) {
        if ((rc = virDomainObjWaitUntil(vm, now + CHANGE_MEDIA_TIMEOUT)) < 0)
            return -1;

        if (rc > 0) {
165 166 167 168 169 170
            /* the caller called qemuMonitorEjectMedia which usually reports an
             * error. Report the failure in an off-chance that it didn't. */
            if (!virGetLastError()) {
                virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                               _("timed out waiting for disk tray status update"));
            }
171 172 173 174 175 176
            return -1;
        }
    }

    /* re-issue ejection command to pop out the media */
    qemuDomainObjEnterMonitor(driver, vm);
177
    rc = qemuMonitorEjectMedia(qemuDomainGetMonitor(vm), driveAlias, false);
178 179 180 181 182 183 184
    if (qemuDomainObjExitMonitor(driver, vm) < 0 || rc < 0)
        return -1;

    return 0;
}


185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205
/**
 * qemuDomainChangeEjectableMedia:
 * @driver: qemu driver structure
 * @vm: domain definition
 * @disk: disk definition to change the source of
 * @newsrc: new disk source to change to
 * @force: force the change of media
 *
 * Change the media in an ejectable device to the one described by
 * @newsrc. This function also removes the old source from the
 * shared device table if appropriate. Note that newsrc is consumed
 * on success and the old source is freed on success.
 *
 * Returns 0 on success, -1 on error and reports libvirt error
 */
int
qemuDomainChangeEjectableMedia(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDiskDefPtr disk,
                               virStorageSourcePtr newsrc,
                               bool force)
206
{
207
    int ret = -1, rc;
208
    char *driveAlias = NULL;
209
    qemuDomainObjPrivatePtr priv = vm->privateData;
210
    qemuDomainDiskPrivatePtr diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
211
    const char *format = NULL;
212
    char *sourcestr = NULL;
213

214
    if (!disk->info.alias) {
215
        virReportError(VIR_ERR_INTERNAL_ERROR,
216
                       _("missing disk device alias name for %s"), disk->dst);
217
        goto cleanup;
218 219
    }

220 221
    if (disk->device != VIR_DOMAIN_DISK_DEVICE_FLOPPY &&
        disk->device != VIR_DOMAIN_DISK_DEVICE_CDROM) {
222 223
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("Removable media not supported for %s device"),
224
                       virDomainDiskDeviceTypeToString(disk->device));
225
        goto cleanup;
226 227
    }

228
    if (qemuDomainPrepareDisk(driver, vm, disk, newsrc, false) < 0)
229
        goto cleanup;
230

231
    if (!(driveAlias = qemuAliasFromDisk(disk)))
232 233
        goto error;

234 235 236 237
    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorEjectMedia(priv->mon, driveAlias, force);
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
238

239
    /* If the tray is present and tray change event is supported wait for it to open. */
240
    if (!force && diskPriv->tray &&
241
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_TRAY_MOVED)) {
242
        rc = qemuHotplugWaitForTrayEject(driver, vm, disk, driveAlias);
243
        if (rc < 0)
244
            goto error;
245 246 247 248 249
    } else  {
        /* otherwise report possible errors from the attempt to eject the media*/
        if (rc < 0)
            goto error;
    }
250

251
    if (!virStorageSourceIsEmpty(newsrc)) {
252
        if (qemuGetDriveSourceString(newsrc, diskPriv->secinfo, &sourcestr) < 0)
253 254
            goto error;

255 256 257
        if (virStorageSourceGetActualType(newsrc) != VIR_STORAGE_TYPE_DIR) {
            if (newsrc->format > 0) {
                format = virStorageFileFormatTypeToString(newsrc->format);
258
            } else {
259 260
                if (disk->src->format > 0)
                    format = virStorageFileFormatTypeToString(disk->src->format);
261
            }
262
        }
263
        qemuDomainObjEnterMonitor(driver, vm);
264 265 266 267 268
        rc = qemuMonitorChangeMedia(priv->mon,
                                    driveAlias,
                                    sourcestr,
                                    format);
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
269
            goto cleanup;
270
    }
271

272
    virDomainAuditDisk(vm, disk->src, newsrc, "update", rc >= 0);
273

274
    if (rc < 0)
275 276
        goto error;

277 278
    /* remove the old source from shared device list */
    ignore_value(qemuRemoveSharedDisk(driver, disk, vm->def->name));
279
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
280

281 282 283
    virStorageSourceFree(disk->src);
    disk->src = newsrc;
    newsrc = NULL;
284
    ret = 0;
285

286
 cleanup:
287
    VIR_FREE(driveAlias);
288
    VIR_FREE(sourcestr);
289 290
    return ret;

291
 error:
292 293
    virDomainAuditDisk(vm, disk->src, newsrc, "update", false);
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, newsrc, true));
294
    goto cleanup;
295 296
}

297

298 299 300 301 302
static int
qemuDomainAttachVirtioDiskDevice(virConnectPtr conn,
                                 virQEMUDriverPtr driver,
                                 virDomainObjPtr vm,
                                 virDomainDiskDefPtr disk)
303
{
304
    int ret = -1;
305
    int rv;
306
    qemuDomainObjPrivatePtr priv = vm->privateData;
307
    virErrorPtr orig_err;
308 309
    char *devstr = NULL;
    char *drivestr = NULL;
310
    char *drivealias = NULL;
311
    bool releaseaddr = false;
312
    bool driveAdded = false;
313
    bool secobjAdded = false;
314
    bool encobjAdded = false;
315
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
316
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
317
    const char *src = virDomainDiskGetSource(disk);
318
    virJSONValuePtr secobjProps = NULL;
319
    virJSONValuePtr encobjProps = NULL;
320 321
    qemuDomainDiskPrivatePtr diskPriv;
    qemuDomainSecretInfoPtr secinfo;
322
    qemuDomainSecretInfoPtr encinfo;
323

324
    if (!disk->info.type) {
325
        if (qemuDomainMachineIsS390CCW(vm->def) &&
326 327 328 329
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
330 331 332 333
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, disk->info, priv->qemuCaps,
                                            disk->dst))
            goto cleanup;
334 335
    }

336
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
337
        goto cleanup;
338

339
    if (disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
340 341 342
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto error;
        if (virDomainCCWAddressAssign(&disk->info, ccwaddrs,
343
                                      !disk->info.addr.ccw.assigned) < 0)
344
            goto error;
345 346 347
    } else if (!disk->info.type ||
                disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &disk->info) < 0)
348
            goto error;
349 350 351 352
    }
    releaseaddr = true;
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
353

J
John Ferlan 已提交
354
    if (qemuDomainSecretDiskPrepare(conn, priv, disk) < 0)
355 356
        goto error;

357 358 359 360 361 362 363
    diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
    secinfo = diskPriv->secinfo;
    if (secinfo && secinfo->type == VIR_DOMAIN_SECRET_INFO_TYPE_AES) {
        if (qemuBuildSecretInfoProps(secinfo, &secobjProps) < 0)
            goto error;
    }

364 365 366 367
    encinfo = diskPriv->encinfo;
    if (encinfo && qemuBuildSecretInfoProps(encinfo, &encobjProps) < 0)
        goto error;

368
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
369
        goto error;
370

371
    if (!(drivealias = qemuAliasFromDisk(disk)))
372 373 374 375
        goto error;

    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
376

377
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
378 379
        goto error;

380
    qemuDomainObjEnterMonitor(driver, vm);
381

382 383 384 385 386
    if (secobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", secinfo->s.aes.alias,
                                  secobjProps);
        secobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
387
            goto exit_monitor;
388
        secobjAdded = true;
389 390
    }

391 392 393 394 395 396
    if (encobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", encinfo->s.aes.alias,
                                  encobjProps);
        encobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
            goto exit_monitor;
397
        encobjAdded = true;
398 399
    }

400
    if (qemuMonitorAddDrive(priv->mon, drivestr) < 0)
401 402
        goto exit_monitor;
    driveAdded = true;
403 404

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
405
        goto exit_monitor;
406

407 408
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        releaseaddr = false;
409
        goto error;
410
    }
411

412
    virDomainAuditDisk(vm, NULL, disk->src, "attach", true);
413 414

    virDomainDiskInsertPreAlloced(vm->def, disk);
415
    ret = 0;
416

417
 cleanup:
418
    virJSONValueFree(secobjProps);
419
    virJSONValueFree(encobjProps);
420
    qemuDomainSecretDiskDestroy(disk);
421
    virDomainCCWAddressSetFree(ccwaddrs);
422 423
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
424
    VIR_FREE(drivealias);
425 426
    virObjectUnref(cfg);
    return ret;
427

428
 exit_monitor:
429
    orig_err = virSaveLastError();
430
    if (driveAdded && qemuMonitorDriveDel(priv->mon, drivealias) < 0) {
431 432 433
        VIR_WARN("Unable to remove drive %s (%s) after failed "
                 "qemuMonitorAddDevice", drivealias, drivestr);
    }
434 435
    if (secobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, secinfo->s.aes.alias));
436 437
    if (encobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, encinfo->s.aes.alias));
438 439 440 441
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }
442

443 444 445 446 447
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        releaseaddr = false;

    virDomainAuditDisk(vm, NULL, disk->src, "attach", false);

448
 error:
449
    if (releaseaddr)
450
        qemuDomainReleaseDeviceAddress(vm, &disk->info, src);
451

452
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
453
    goto cleanup;
454 455 456
}


457 458 459
int qemuDomainAttachControllerDevice(virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainControllerDefPtr controller)
460 461 462 463 464
{
    int ret = -1;
    const char* type = virDomainControllerTypeToString(controller->type);
    char *devstr = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
465
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
466
    bool releaseaddr = false;
467

468 469 470 471 472 473 474
    if (controller->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("'%s' controller cannot be hot plugged."),
                       virDomainControllerTypeToString(controller->type));
        return -1;
    }

475 476 477 478 479 480 481 482
    /* default idx would normally be set by virDomainDefPostParse(),
     * which isn't called in the case of live attach of a single
     * device.
     */
    if (controller->idx == -1)
       controller->idx = virDomainControllerFindUnusedIndex(vm->def,
                                                            controller->type);

483
    if (virDomainControllerFind(vm->def, controller->type, controller->idx) >= 0) {
484 485 486 487
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("target %s:%d already exists"),
                       type, controller->idx);
        return -1;
488 489
    }

490 491 492 493 494 495 496 497 498
    if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE) {
        if (qemuDomainMachineIsS390CCW(vm->def) &&
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW))
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, controller->info,
                                            priv->qemuCaps, "controller"))
499
            goto cleanup;
500
    }
501

502 503 504 505 506
    if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE ||
        controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &controller->info) < 0)
            goto cleanup;
    } else if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
507 508 509
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto cleanup;
        if (virDomainCCWAddressAssign(&controller->info, ccwaddrs,
510
                                      !controller->info.addr.ccw.assigned) < 0)
511 512
            goto cleanup;
    }
513 514 515 516 517 518
    releaseaddr = true;
    if (qemuAssignDeviceControllerAlias(vm->def, priv->qemuCaps, controller) < 0)
        goto cleanup;

    if (!(devstr = qemuBuildControllerDevStr(vm->def, controller, priv->qemuCaps, NULL)))
        goto cleanup;
519

520
    if (VIR_REALLOC_N(vm->def->controllers, vm->def->ncontrollers+1) < 0)
521 522
        goto cleanup;

523
    qemuDomainObjEnterMonitor(driver, vm);
524
    ret = qemuMonitorAddDevice(priv->mon, devstr);
525 526 527 528 529
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        releaseaddr = false;
        ret = -1;
        goto cleanup;
    }
530 531

    if (ret == 0) {
532 533
        if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE)
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
534 535 536
        virDomainControllerInsertPreAlloced(vm->def, controller);
    }

537
 cleanup:
538 539
    if (ret != 0 && releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
540 541

    VIR_FREE(devstr);
542
    virDomainCCWAddressSetFree(ccwaddrs);
543 544 545 546
    return ret;
}

static virDomainControllerDefPtr
547
qemuDomainFindOrCreateSCSIDiskController(virQEMUDriverPtr driver,
548
                                         virDomainObjPtr vm,
549
                                         int controller)
550
{
551
    size_t i;
552
    virDomainControllerDefPtr cont;
553

554
    for (i = 0; i < vm->def->ncontrollers; i++) {
555 556 557 558 559 560 561 562 563 564 565
        cont = vm->def->controllers[i];

        if (cont->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (cont->idx == controller)
            return cont;
    }

    /* No SCSI controller present, for backward compatibility we
     * now hotplug a controller */
566
    if (VIR_ALLOC(cont) < 0)
567 568
        return NULL;
    cont->type = VIR_DOMAIN_CONTROLLER_TYPE_SCSI;
569
    cont->idx = controller;
570 571
    cont->model = -1;

572
    VIR_INFO("No SCSI controller present, hotplugging one");
573 574
    if (qemuDomainAttachControllerDevice(driver,
                                         vm, cont) < 0) {
575 576 577 578 579
        VIR_FREE(cont);
        return NULL;
    }

    if (!virDomainObjIsActive(vm)) {
580 581
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit"));
582 583 584 585 586 587 588 589 590
        /* cont doesn't need freeing here, since the reference
         * now held in def->controllers */
        return NULL;
    }

    return cont;
}


591 592 593 594 595
static int
qemuDomainAttachSCSIDisk(virConnectPtr conn,
                         virQEMUDriverPtr driver,
                         virDomainObjPtr vm,
                         virDomainDiskDefPtr disk)
596
{
597
    size_t i;
598
    qemuDomainObjPrivatePtr priv = vm->privateData;
599
    virErrorPtr orig_err;
600 601
    char *drivestr = NULL;
    char *devstr = NULL;
602
    bool driveAdded = false;
603
    bool encobjAdded = false;
604
    char *drivealias = NULL;
605
    int ret = -1;
606
    int rv;
607
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
608 609 610
    virJSONValuePtr encobjProps = NULL;
    qemuDomainDiskPrivatePtr diskPriv;
    qemuDomainSecretInfoPtr encinfo;
611

612
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
613
        goto cleanup;
614 615 616

    /* We should have an address already, so make sure */
    if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE) {
617 618 619
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("unexpected disk address type %s"),
                       virDomainDeviceAddressTypeToString(disk->info.type));
620 621 622
        goto error;
    }

623 624 625 626 627 628 629 630 631 632 633 634
    /* Let's make sure the disk has a controller defined and loaded before
     * trying to add it. The controller used by the disk must exist before a
     * qemu command line string is generated.
     *
     * Ensure that the given controller and all controllers with a smaller index
     * exist; there must not be any missing index in between.
     */
    for (i = 0; i <= disk->info.addr.drive.controller; i++) {
        if (!qemuDomainFindOrCreateSCSIDiskController(driver, vm, i))
            goto error;
    }

635 636
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
637

J
John Ferlan 已提交
638
    if (qemuDomainSecretDiskPrepare(conn, priv, disk) < 0)
639 640
        goto error;

641 642 643 644 645
    diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
    encinfo = diskPriv->encinfo;
    if (encinfo && qemuBuildSecretInfoProps(encinfo, &encobjProps) < 0)
        goto error;

646 647
    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
648

649
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
650 651
        goto error;

652 653 654
    if (!(drivealias = qemuAliasFromDisk(disk)))
        goto error;

655
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
656 657
        goto error;

658
    qemuDomainObjEnterMonitor(driver, vm);
659

660 661 662 663 664 665
    if (encobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", encinfo->s.aes.alias,
                                  encobjProps);
        encobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
            goto exit_monitor;
666
        encobjAdded = true;
667 668
    }

669
    if (qemuMonitorAddDrive(priv->mon, drivestr) < 0)
670 671
        goto exit_monitor;
    driveAdded = true;
672

673
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
674
        goto exit_monitor;
675

676
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
677
        goto error;
678

679
    virDomainAuditDisk(vm, NULL, disk->src, "attach", true);
680 681

    virDomainDiskInsertPreAlloced(vm->def, disk);
682
    ret = 0;
683

684
 cleanup:
685
    virJSONValueFree(encobjProps);
686
    qemuDomainSecretDiskDestroy(disk);
687 688
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
689
    VIR_FREE(drivealias);
690 691
    virObjectUnref(cfg);
    return ret;
692

693
 exit_monitor:
694
    orig_err = virSaveLastError();
695 696 697 698
    if (driveAdded && qemuMonitorDriveDel(priv->mon, drivealias) < 0) {
        VIR_WARN("Unable to remove drive %s (%s) after failed "
                 "qemuMonitorAddDevice", drivealias, drivestr);
    }
699 700 701 702 703 704 705
    if (encobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, encinfo->s.aes.alias));
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

706 707 708 709
    ignore_value(qemuDomainObjExitMonitor(driver, vm));

    virDomainAuditDisk(vm, NULL, disk->src, "attach", false);

710
 error:
711
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
712
    goto cleanup;
713 714 715
}


716
static int
717
qemuDomainAttachUSBMassStorageDevice(virQEMUDriverPtr driver,
718 719
                                     virDomainObjPtr vm,
                                     virDomainDiskDefPtr disk)
720 721
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
722
    virErrorPtr orig_err;
723
    int ret = -1;
724
    char *drivealias = NULL;
725 726
    char *drivestr = NULL;
    char *devstr = NULL;
727
    bool driveAdded = false;
728
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
729
    const char *src = virDomainDiskGetSource(disk);
730 731 732 733 734 735 736
    bool releaseaddr = false;

    if (priv->usbaddrs) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, &disk->info) < 0)
            goto cleanup;
        releaseaddr = true;
    }
737

738
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
739
        goto cleanup;
740

741
    /* XXX not correct once we allow attaching a USB CDROM */
742
    if (!src) {
743 744
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       "%s", _("disk source path is missing"));
745 746 747
        goto error;
    }

748 749
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
750

751
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
752
        goto error;
753 754 755 756

    if (!(drivealias = qemuAliasFromDisk(disk)))
        goto error;

757 758
    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
759

760
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
761 762
        goto error;

763
    qemuDomainObjEnterMonitor(driver, vm);
764

765 766 767 768 769 770
    if (qemuMonitorAddDrive(priv->mon, drivestr) < 0)
        goto exit_monitor;
    driveAdded = true;

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
        goto exit_monitor;
771

772
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
773 774
        goto error;

775 776
    virDomainAuditDisk(vm, NULL, disk->src, "attach", true);

777
    virDomainDiskInsertPreAlloced(vm->def, disk);
778
    ret = 0;
779

780
 cleanup:
781 782
    if (ret < 0 && releaseaddr)
        virDomainUSBAddressRelease(priv->usbaddrs, &disk->info);
783
    VIR_FREE(devstr);
784
    VIR_FREE(drivealias);
785
    VIR_FREE(drivestr);
786 787
    virObjectUnref(cfg);
    return ret;
788

789
 exit_monitor:
790 791 792 793 794 795 796 797
    orig_err = virSaveLastError();
    if (driveAdded && qemuMonitorDriveDel(priv->mon, drivealias) < 0) {
        VIR_WARN("Unable to remove drive %s (%s) after failed "
                 "qemuMonitorAddDevice", drivealias, drivestr);
    }
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
798 799 800 801 802
    }

    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    virDomainAuditDisk(vm, NULL, disk->src, "attach", false);

803
 error:
804
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
805
    goto cleanup;
806 807 808
}


809 810 811 812 813 814
int
qemuDomainAttachDeviceDiskLive(virConnectPtr conn,
                               virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
815
    size_t i;
816 817 818
    virDomainDiskDefPtr disk = dev->data.disk;
    virDomainDiskDefPtr orig_disk = NULL;
    int ret = -1;
819
    const char *src = virDomainDiskGetSource(disk);
820

821
    if (STRNEQ_NULLABLE(virDomainDiskGetDriver(disk), "qemu")) {
822 823
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("unsupported driver name '%s' for disk '%s'"),
824
                       virDomainDiskGetDriver(disk), src);
825
        goto cleanup;
826 827
    }

828
    if (virStorageTranslateDiskSourcePool(conn, disk) < 0)
829
        goto cleanup;
830 831

    if (qemuAddSharedDevice(driver, dev, vm->def->name) < 0)
832
        goto cleanup;
833 834

    if (qemuSetUnprivSGIO(dev) < 0)
835
        goto cleanup;
836

837
    if (qemuDomainDetermineDiskChain(driver, vm, disk, false, true) < 0)
838
        goto cleanup;
839

840
    switch ((virDomainDiskDevice) disk->device)  {
841 842 843 844 845
    case VIR_DOMAIN_DISK_DEVICE_CDROM:
    case VIR_DOMAIN_DISK_DEVICE_FLOPPY:
        if (!(orig_disk = virDomainDiskFindByBusAndDst(vm->def,
                                                       disk->bus, disk->dst))) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
846 847 848
                           _("No device with bus '%s' and target '%s'. "
                             "cdrom and floppy device hotplug isn't supported "
                             "by libvirt"),
849 850
                           virDomainDiskBusTypeToString(disk->bus),
                           disk->dst);
851
            goto cleanup;
852 853
        }

854
        if (qemuDomainChangeEjectableMedia(driver, vm, orig_disk,
855
                                           disk->src, false) < 0)
856
            goto cleanup;
857

858
        disk->src = NULL;
859
        ret = 0;
860
        break;
861

862 863
    case VIR_DOMAIN_DISK_DEVICE_DISK:
    case VIR_DOMAIN_DISK_DEVICE_LUN:
864
        for (i = 0; i < vm->def->ndisks; i++) {
865 866
            if (virDomainDiskDefCheckDuplicateInfo(vm->def->disks[i], disk) < 0)
                goto cleanup;
867 868
        }

869 870
        switch ((virDomainDiskBus) disk->bus) {
        case VIR_DOMAIN_DISK_BUS_USB:
871 872 873 874 875
            if (disk->device == VIR_DOMAIN_DISK_DEVICE_LUN) {
                virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                               _("disk device='lun' is not supported for usb bus"));
                break;
            }
876
            ret = qemuDomainAttachUSBMassStorageDevice(driver, vm, disk);
877 878 879
            break;

        case VIR_DOMAIN_DISK_BUS_VIRTIO:
880
            ret = qemuDomainAttachVirtioDiskDevice(conn, driver, vm, disk);
881 882 883
            break;

        case VIR_DOMAIN_DISK_BUS_SCSI:
884
            ret = qemuDomainAttachSCSIDisk(conn, driver, vm, disk);
885 886 887 888 889 890 891 892 893
            break;

        case VIR_DOMAIN_DISK_BUS_IDE:
        case VIR_DOMAIN_DISK_BUS_FDC:
        case VIR_DOMAIN_DISK_BUS_XEN:
        case VIR_DOMAIN_DISK_BUS_UML:
        case VIR_DOMAIN_DISK_BUS_SATA:
        case VIR_DOMAIN_DISK_BUS_SD:
        case VIR_DOMAIN_DISK_BUS_LAST:
894 895 896 897 898
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                           _("disk bus '%s' cannot be hotplugged."),
                           virDomainDiskBusTypeToString(disk->bus));
        }
        break;
899 900

    case VIR_DOMAIN_DISK_DEVICE_LAST:
901 902 903
        break;
    }

904
 cleanup:
905 906 907 908 909 910
    if (ret != 0)
        ignore_value(qemuRemoveSharedDevice(driver, dev, vm->def->name));
    return ret;
}


911 912 913 914
int
qemuDomainAttachNetDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr net)
915 916
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
917 918
    char **tapfdName = NULL;
    int *tapfd = NULL;
919
    size_t tapfdSize = 0;
920 921
    char **vhostfdName = NULL;
    int *vhostfd = NULL;
922
    size_t vhostfdSize = 0;
923 924
    char *nicstr = NULL;
    char *netstr = NULL;
A
Ansis Atteka 已提交
925
    virNetDevVPortProfilePtr vport = NULL;
926 927
    int ret = -1;
    int vlan;
928
    bool releaseaddr = false;
929
    bool iface_connected = false;
930
    virDomainNetType actualType;
931
    virNetDevBandwidthPtr actualBandwidth;
932
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
933
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
934
    size_t i;
935 936 937 938
    char *charDevAlias = NULL;
    bool charDevPlugged = false;
    bool netdevPlugged = false;
    bool hostPlugged = false;
939

940
    /* preallocate new slot for device */
941
    if (VIR_REALLOC_N(vm->def->nets, vm->def->nnets + 1) < 0)
942
        goto cleanup;
943

944 945 946 947
    /* If appropriate, grab a physical device from the configured
     * network's pool of devices, or resolve bridge device name
     * to the one defined in the network definition.
     */
948
    if (networkAllocateActualDevice(vm->def, net) < 0)
949
        goto cleanup;
950 951

    actualType = virDomainNetGetActualType(net);
952

953
    /* Currently only TAP/macvtap devices supports multiqueue. */
954 955
    if (net->driver.virtio.queues > 0 &&
        !(actualType == VIR_DOMAIN_NET_TYPE_NETWORK ||
956
          actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
957 958
          actualType == VIR_DOMAIN_NET_TYPE_DIRECT ||
          actualType == VIR_DOMAIN_NET_TYPE_ETHERNET)) {
959 960 961 962 963 964
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("Multiqueue network is not supported for: %s"),
                       virDomainNetTypeToString(actualType));
        return -1;
    }

965 966 967
    /* and only TAP devices support nwfilter rules */
    if (net->filter &&
        !(actualType == VIR_DOMAIN_NET_TYPE_NETWORK ||
968 969
          actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
          actualType == VIR_DOMAIN_NET_TYPE_ETHERNET)) {
970 971 972 973 974 975 976
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("filterref is not supported for "
                         "network interfaces of type %s"),
                       virDomainNetTypeToString(actualType));
        return -1;
    }

977 978 979
    if (qemuAssignDeviceNetAlias(vm->def, net, -1) < 0)
        goto cleanup;

980 981 982
    switch (actualType) {
    case VIR_DOMAIN_NET_TYPE_BRIDGE:
    case VIR_DOMAIN_NET_TYPE_NETWORK:
983 984 985
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
986
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
987
            goto cleanup;
988 989 990 991
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
            goto cleanup;
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
992 993
        if (qemuInterfaceBridgeConnect(vm->def, driver, net,
                                       tapfd, &tapfdSize) < 0)
994 995
            goto cleanup;
        iface_connected = true;
996 997
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
998
            goto cleanup;
999 1000 1001
        break;

    case VIR_DOMAIN_NET_TYPE_DIRECT:
1002 1003 1004 1005
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
1006
            goto cleanup;
1007 1008
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
1009
            goto cleanup;
1010
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
1011 1012 1013
        if (qemuInterfaceDirectConnect(vm->def, driver, net,
                                       tapfd, tapfdSize,
                                       VIR_NETDEV_VPORT_PROFILE_OP_CREATE) < 0)
1014 1015
            goto cleanup;
        iface_connected = true;
1016 1017
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
1018
            goto cleanup;
1019 1020 1021
        break;

    case VIR_DOMAIN_NET_TYPE_ETHERNET:
1022 1023 1024 1025
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
1026
            goto cleanup;
1027 1028 1029 1030 1031
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
            goto cleanup;
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
        if (qemuInterfaceEthernetConnect(vm->def, driver, net,
1032
                                         tapfd, tapfdSize) < 0)
1033 1034
            goto cleanup;
        iface_connected = true;
1035 1036
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
1037
            goto cleanup;
1038 1039 1040
        break;

    case VIR_DOMAIN_NET_TYPE_HOSTDEV:
1041 1042 1043 1044 1045 1046 1047 1048 1049 1050 1051
        /* This is really a "smart hostdev", so it should be attached
         * as a hostdev (the hostdev code will reach over into the
         * netdev-specific code as appropriate), then also added to
         * the nets list (see cleanup:) if successful.
         *
         * qemuDomainAttachHostDevice uses a connection to resolve
         * a SCSI hostdev secret, which is not this case, so pass NULL.
         */
        ret = qemuDomainAttachHostDevice(NULL, driver, vm,
                                         virDomainNetGetActualHostdev(net));
        goto cleanup;
1052 1053 1054
        break;

    case VIR_DOMAIN_NET_TYPE_VHOSTUSER:
1055 1056 1057 1058 1059 1060
        if (!qemuDomainSupportsNetdev(vm->def, priv->qemuCaps, net)) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           "%s", _("Netdev support unavailable"));
            goto cleanup;
        }

1061
        if (!(charDevAlias = qemuAliasChardevFromDevAlias(net->info.alias)))
1062 1063 1064 1065
            goto cleanup;
        break;

    case VIR_DOMAIN_NET_TYPE_USER:
1066 1067 1068 1069 1070 1071 1072 1073 1074 1075
    case VIR_DOMAIN_NET_TYPE_SERVER:
    case VIR_DOMAIN_NET_TYPE_CLIENT:
    case VIR_DOMAIN_NET_TYPE_MCAST:
    case VIR_DOMAIN_NET_TYPE_INTERNAL:
    case VIR_DOMAIN_NET_TYPE_UDP:
    case VIR_DOMAIN_NET_TYPE_LAST:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("hotplug of interface type of %s is not implemented yet"),
                       virDomainNetTypeToString(actualType));
        goto cleanup;
1076 1077
    }

1078 1079
    /* Set device online immediately */
    if (qemuInterfaceStartDevice(net) < 0)
1080
        goto cleanup;
1081

1082 1083 1084 1085 1086 1087 1088 1089 1090 1091 1092 1093
    /* Set bandwidth or warn if requested and not supported. */
    actualBandwidth = virDomainNetGetActualBandwidth(net);
    if (actualBandwidth) {
        if (virNetDevSupportBandwidth(actualType)) {
            if (virNetDevBandwidthSet(net->ifname, actualBandwidth, false) < 0)
                goto cleanup;
        } else {
            VIR_WARN("setting bandwidth on interfaces of "
                     "type '%s' is not implemented yet",
                     virDomainNetTypeToString(actualType));
        }
    }
1094

M
Michal Privoznik 已提交
1095 1096 1097 1098 1099 1100
    for (i = 0; i < tapfdSize; i++) {
        if (virSecurityManagerSetTapFDLabel(driver->securityManager,
                                            vm->def, tapfd[i]) < 0)
            goto cleanup;
    }

1101
    if (qemuDomainMachineIsS390CCW(vm->def) &&
1102 1103
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        net->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
1104 1105 1106
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto cleanup;
        if (virDomainCCWAddressAssign(&net->info, ccwaddrs,
J
Ján Tomko 已提交
1107
                                      !net->info.addr.ccw.assigned) < 0)
1108
            goto cleanup;
1109
    } else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390)) {
1110
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
1111 1112
                       _("virtio-s390 net device cannot be hotplugged."));
        goto cleanup;
1113
    } else if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &net->info) < 0) {
1114 1115
        goto cleanup;
    }
1116

1117 1118
    releaseaddr = true;

1119
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1120 1121 1122 1123 1124
        vlan = -1;
    } else {
        vlan = qemuDomainNetVLAN(net);

        if (vlan < 0) {
1125 1126
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("Unable to attach network devices without vlan"));
1127 1128 1129 1130
            goto cleanup;
        }
    }

1131
    if (VIR_ALLOC_N(tapfdName, tapfdSize) < 0 ||
1132
        VIR_ALLOC_N(vhostfdName, vhostfdSize) < 0)
1133 1134 1135
        goto cleanup;

    for (i = 0; i < tapfdSize; i++) {
1136
        if (virAsprintf(&tapfdName[i], "fd-%s%zu", net->info.alias, i) < 0)
1137
            goto cleanup;
1138 1139
    }

1140
    for (i = 0; i < vhostfdSize; i++) {
1141
        if (virAsprintf(&vhostfdName[i], "vhostfd-%s%zu", net->info.alias, i) < 0)
1142
            goto cleanup;
1143 1144
    }

1145
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1146
        if (!(netstr = qemuBuildHostNetStr(net, driver,
1147 1148 1149
                                           ',', -1,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
1150
            goto cleanup;
1151
    } else {
1152
        if (!(netstr = qemuBuildHostNetStr(net, driver,
1153 1154 1155
                                           ' ', vlan,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
1156
            goto cleanup;
1157 1158
    }

1159
    qemuDomainObjEnterMonitor(driver, vm);
1160 1161 1162 1163 1164 1165 1166 1167 1168 1169

    if (actualType == VIR_DOMAIN_NET_TYPE_VHOSTUSER) {
        if (qemuMonitorAttachCharDev(priv->mon, charDevAlias, net->data.vhostuser) < 0) {
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
            virDomainAuditNet(vm, NULL, net, "attach", false);
            goto cleanup;
        }
        charDevPlugged = true;
    }

1170
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1171 1172 1173
        if (qemuMonitorAddNetdev(priv->mon, netstr,
                                 tapfd, tapfdName, tapfdSize,
                                 vhostfd, vhostfdName, vhostfdSize) < 0) {
1174
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1175
            virDomainAuditNet(vm, NULL, net, "attach", false);
1176
            goto try_remove;
1177
        }
1178
        netdevPlugged = true;
1179
    } else {
1180 1181 1182
        if (qemuMonitorAddHostNetwork(priv->mon, netstr,
                                      tapfd, tapfdName, tapfdSize,
                                      vhostfd, vhostfdName, vhostfdSize) < 0) {
1183
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1184
            virDomainAuditNet(vm, NULL, net, "attach", false);
1185
            goto try_remove;
1186
        }
1187
        hostPlugged = true;
1188
    }
1189

1190 1191
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
1192

1193 1194 1195 1196
    for (i = 0; i < tapfdSize; i++)
        VIR_FORCE_CLOSE(tapfd[i]);
    for (i = 0; i < vhostfdSize; i++)
        VIR_FORCE_CLOSE(vhostfd[i]);
1197

1198 1199 1200
    if (!(nicstr = qemuBuildNicDevStr(vm->def, net, vlan, 0,
                                      vhostfdSize, priv->qemuCaps)))
        goto try_remove;
1201

1202
    qemuDomainObjEnterMonitor(driver, vm);
1203 1204 1205 1206
    if (qemuMonitorAddDevice(priv->mon, nicstr) < 0) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        virDomainAuditNet(vm, NULL, net, "attach", false);
        goto try_remove;
1207
    }
1208 1209
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
1210

1211 1212 1213
    /* set link state */
    if (net->linkstate == VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) {
        if (!net->info.alias) {
1214 1215
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device alias not found: cannot set link state to down"));
1216
        } else {
1217
            qemuDomainObjEnterMonitor(driver, vm);
1218

1219
            if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1220
                if (qemuMonitorSetLink(priv->mon, net->info.alias, VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) < 0) {
1221
                    ignore_value(qemuDomainObjExitMonitor(driver, vm));
1222 1223 1224 1225
                    virDomainAuditNet(vm, NULL, net, "attach", false);
                    goto try_remove;
                }
            } else {
1226
                virReportError(VIR_ERR_OPERATION_FAILED, "%s",
1227
                               _("setting of link state not supported: Link is up"));
1228 1229
            }

1230 1231
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
1232 1233 1234 1235
        }
        /* link set to down */
    }

1236
    virDomainAuditNet(vm, NULL, net, "attach", true);
1237 1238 1239

    ret = 0;

1240
 cleanup:
1241 1242 1243
    if (!ret) {
        vm->def->nets[vm->def->nnets++] = net;
    } else {
1244 1245
        if (releaseaddr)
            qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
1246

1247
        if (iface_connected) {
1248
            virDomainConfNWFilterTeardown(net);
1249

1250 1251 1252 1253 1254 1255 1256 1257 1258
            if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_DIRECT) {
                ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                                 net->ifname, &net->mac,
                                 virDomainNetGetActualDirectDev(net),
                                 virDomainNetGetActualDirectMode(net),
                                 virDomainNetGetActualVirtPortProfile(net),
                                 cfg->stateDir));
            }

1259
            vport = virDomainNetGetActualVirtPortProfile(net);
1260 1261 1262 1263 1264 1265 1266 1267 1268
            if (vport) {
                if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_MIDONET) {
                    ignore_value(virNetDevMidonetUnbindPort(vport));
                } else if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH) {
                    ignore_value(virNetDevOpenvswitchRemovePort(
                                     virDomainNetGetActualBridgeName(net),
                                     net->ifname));
                }
            }
1269
        }
A
Ansis Atteka 已提交
1270

1271 1272
        virDomainNetRemoveHostdev(vm->def, net);

1273
        networkReleaseActualDevice(vm->def, net);
1274
    }
1275 1276 1277

    VIR_FREE(nicstr);
    VIR_FREE(netstr);
1278
    for (i = 0; tapfd && i < tapfdSize; i++) {
1279
        VIR_FORCE_CLOSE(tapfd[i]);
1280 1281
        if (tapfdName)
            VIR_FREE(tapfdName[i]);
1282 1283 1284
    }
    VIR_FREE(tapfd);
    VIR_FREE(tapfdName);
1285
    for (i = 0; vhostfd && i < vhostfdSize; i++) {
1286
        VIR_FORCE_CLOSE(vhostfd[i]);
1287 1288
        if (vhostfdName)
            VIR_FREE(vhostfdName[i]);
1289 1290 1291
    }
    VIR_FREE(vhostfd);
    VIR_FREE(vhostfdName);
1292
    VIR_FREE(charDevAlias);
1293
    virObjectUnref(cfg);
1294
    virDomainCCWAddressSetFree(ccwaddrs);
1295 1296 1297

    return ret;

1298
 try_remove:
1299 1300 1301 1302
    if (!virDomainObjIsActive(vm))
        goto cleanup;

    if (vlan < 0) {
1303
        if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1304 1305
            char *netdev_name;
            if (virAsprintf(&netdev_name, "host%s", net->info.alias) < 0)
1306
                goto cleanup;
1307
            qemuDomainObjEnterMonitor(driver, vm);
1308 1309 1310 1311 1312
            if (charDevPlugged &&
                qemuMonitorDetachCharDev(priv->mon, charDevAlias) < 0)
                VIR_WARN("Failed to remove associated chardev %s", charDevAlias);
            if (netdevPlugged &&
                qemuMonitorRemoveNetdev(priv->mon, netdev_name) < 0)
1313 1314
                VIR_WARN("Failed to remove network backend for netdev %s",
                         netdev_name);
1315
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1316 1317
            VIR_FREE(netdev_name);
        } else {
1318
            VIR_WARN("Unable to remove network backend");
1319 1320 1321 1322
        }
    } else {
        char *hostnet_name;
        if (virAsprintf(&hostnet_name, "host%s", net->info.alias) < 0)
1323
            goto cleanup;
1324
        qemuDomainObjEnterMonitor(driver, vm);
1325 1326
        if (hostPlugged &&
            qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0)
1327 1328
            VIR_WARN("Failed to remove network backend for vlan %d, net %s",
                     vlan, hostnet_name);
1329
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
1330 1331 1332 1333 1334 1335
        VIR_FREE(hostnet_name);
    }
    goto cleanup;
}


1336
static int
1337
qemuDomainAttachHostPCIDevice(virQEMUDriverPtr driver,
1338 1339
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
1340 1341 1342 1343 1344 1345
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret;
    char *devstr = NULL;
    int configfd = -1;
    char *configfd_name = NULL;
1346
    bool releaseaddr = false;
1347
    bool teardowncgroup = false;
1348
    bool teardownlabel = false;
1349
    int backend;
1350 1351
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    unsigned int flags = 0;
1352

1353
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs + 1) < 0)
1354
        goto cleanup;
1355

1356 1357
    if (!cfg->relaxedACS)
        flags |= VIR_HOSTDEV_STRICT_ACS_CHECK;
1358
    if (qemuHostdevPreparePCIDevices(driver, vm->def->name, vm->def->uuid,
1359 1360
                                     &hostdev, 1, priv->qemuCaps, flags) < 0)
        goto cleanup;
1361

1362
    /* this could have been changed by qemuHostdevPreparePCIDevices */
1363 1364
    backend = hostdev->source.subsys.u.pci.backend;

1365
    switch ((virDomainHostdevSubsysPCIBackendType) backend) {
1366
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO:
1367 1368 1369 1370 1371 1372
        if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_VFIO_PCI)) {
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("VFIO PCI device assignment is not "
                             "supported by this version of qemu"));
            goto error;
        }
1373 1374
        break;

1375 1376 1377 1378 1379 1380 1381 1382 1383 1384
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_DEFAULT:
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_KVM:
        break;

    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_XEN:
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_TYPE_LAST:
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("QEMU does not support device assignment mode '%s'"),
                       virDomainHostdevSubsysPCIBackendTypeToString(backend));
        goto error;
1385
        break;
1386 1387
    }

1388
    /* Temporarily add the hostdev to the domain definition. This is needed
1389 1390 1391 1392
     * because qemuDomainAdjustMaxMemLock() requires the hostdev to be already
     * part of the domain definition, but other functions like
     * qemuAssignDeviceHostdevAlias() used below expect it *not* to be there.
     * A better way to handle this would be nice */
1393
    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;
1394 1395 1396
    if (qemuDomainAdjustMaxMemLock(vm) < 0) {
        vm->def->hostdevs[--(vm->def->nhostdevs)] = NULL;
        goto error;
1397 1398 1399
    }
    vm->def->hostdevs[--(vm->def->nhostdevs)] = NULL;

1400
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
1401 1402 1403
        goto error;
    teardowncgroup = true;

1404 1405 1406
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto error;
1407 1408
    if (backend != VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO)
        teardownlabel = true;
1409

1410 1411 1412 1413 1414 1415 1416 1417 1418 1419 1420 1421
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
        goto error;
    if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, hostdev->info) < 0)
        goto error;
    releaseaddr = true;
    if (backend != VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_PCI_CONFIGFD)) {
        configfd = qemuOpenPCIConfig(hostdev);
        if (configfd >= 0) {
            if (virAsprintf(&configfd_name, "fd-%s",
                            hostdev->info->alias) < 0)
                goto error;
1422
        }
1423
    }
1424

1425 1426 1427 1428 1429
    if (!virDomainObjIsActive(vm)) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit during hotplug"));
        goto error;
    }
1430

1431 1432 1433
    if (!(devstr = qemuBuildPCIHostdevDevStr(vm->def, hostdev, 0,
                                             configfd_name, priv->qemuCaps)))
        goto error;
1434

1435 1436 1437 1438 1439
    qemuDomainObjEnterMonitor(driver, vm);
    ret = qemuMonitorAddDeviceWithFd(priv->mon, devstr,
                                     configfd, configfd_name);
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto error;
1440

1441
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
1442 1443 1444 1445 1446 1447 1448 1449
    if (ret < 0)
        goto error;

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);
1450
    virObjectUnref(cfg);
1451 1452 1453

    return 0;

1454
 error:
1455 1456
    if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
1457 1458 1459 1460
    if (teardownlabel &&
        virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                              vm->def, hostdev, NULL) < 0)
        VIR_WARN("Unable to restore host device labelling on hotplug fail");
1461

1462 1463
    if (releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
1464

1465
    qemuHostdevReAttachPCIDevices(driver, vm->def->name, &hostdev, 1);
1466 1467 1468 1469 1470

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);

1471
 cleanup:
1472
    virObjectUnref(cfg);
1473 1474 1475 1476
    return -1;
}


1477 1478 1479 1480 1481 1482 1483 1484
static int
qemuDomainGetChardevTLSObjects(virQEMUDriverConfigPtr cfg,
                               qemuDomainObjPrivatePtr priv,
                               virDomainChrSourceDefPtr dev,
                               char *charAlias,
                               virJSONValuePtr *tlsProps,
                               char **tlsAlias)
{
1485 1486
    if (dev->type != VIR_DOMAIN_CHR_TYPE_TCP ||
        dev->data.tcp.haveTLS != VIR_TRISTATE_BOOL_YES)
1487 1488 1489 1490 1491
        return 0;

    if (qemuBuildTLSx509BackendProps(cfg->chardevTLSx509certdir,
                                     dev->data.tcp.listen,
                                     cfg->chardevTLSx509verify,
1492
                                     NULL,
1493 1494 1495 1496 1497 1498 1499 1500 1501 1502 1503 1504
                                     priv->qemuCaps,
                                     tlsProps) < 0)
        return -1;

    if (!(*tlsAlias = qemuAliasTLSObjFromChardevAlias(charAlias)))
        return -1;
    dev->data.tcp.tlscreds = true;

    return 0;
}


1505
int qemuDomainAttachRedirdevDevice(virQEMUDriverPtr driver,
1506 1507 1508
                                   virDomainObjPtr vm,
                                   virDomainRedirdevDefPtr redirdev)
{
1509
    int ret = -1;
1510 1511
    int rc;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
1512
    qemuDomainObjPrivatePtr priv = vm->privateData;
1513
    virDomainDefPtr def = vm->def;
1514
    char *charAlias = NULL;
1515
    char *devstr = NULL;
1516
    bool chardevAdded = false;
1517 1518 1519
    bool tlsobjAdded = false;
    virJSONValuePtr tlsProps = NULL;
    char *tlsAlias = NULL;
1520
    virErrorPtr orig_err;
1521

1522 1523
    qemuDomainPrepareChardevSourceTLS(redirdev->source, cfg);

1524
    if (qemuAssignDeviceRedirdevAlias(def, redirdev, -1) < 0)
1525 1526
        goto cleanup;

1527
    if (!(charAlias = qemuAliasChardevFromDevAlias(redirdev->info.alias)))
1528 1529
        goto cleanup;

1530
    if (!(devstr = qemuBuildRedirdevDevStr(def, redirdev, priv->qemuCaps)))
1531
        goto cleanup;
1532

1533
    if (VIR_REALLOC_N(def->redirdevs, def->nredirdevs+1) < 0)
1534
        goto cleanup;
1535

1536
    if (qemuDomainGetChardevTLSObjects(cfg, priv, redirdev->source,
1537 1538 1539
                                       charAlias, &tlsProps, &tlsAlias) < 0)
        goto cleanup;

1540
    qemuDomainObjEnterMonitor(driver, vm);
1541 1542 1543 1544 1545 1546 1547 1548 1549
    if (tlsAlias) {
        rc = qemuMonitorAddObject(priv->mon, "tls-creds-x509",
                                  tlsAlias, tlsProps);
        tlsProps = NULL; /* qemuMonitorAddObject consumes */
        if (rc < 0)
            goto exit_monitor;
        tlsobjAdded = true;
    }

1550 1551
    if (qemuMonitorAttachCharDev(priv->mon,
                                 charAlias,
1552
                                 redirdev->source) < 0)
1553 1554
        goto exit_monitor;
    chardevAdded = true;
1555

1556 1557
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
        goto exit_monitor;
1558

1559 1560
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto audit;
1561

1562
    def->redirdevs[def->nredirdevs++] = redirdev;
1563 1564 1565 1566
    ret = 0;
 audit:
    virDomainAuditRedirdev(vm, redirdev, "attach", ret == 0);
 cleanup:
1567 1568
    VIR_FREE(tlsAlias);
    virJSONValueFree(tlsProps);
1569
    VIR_FREE(charAlias);
1570
    VIR_FREE(devstr);
1571
    virObjectUnref(cfg);
1572
    return ret;
1573 1574 1575

 exit_monitor:
    orig_err = virSaveLastError();
1576 1577
    if (tlsobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, tlsAlias));
1578 1579 1580 1581 1582 1583 1584 1585 1586
    /* detach associated chardev on error */
    if (chardevAdded)
        ignore_value(qemuMonitorDetachCharDev(priv->mon, charAlias));
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }
    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    goto audit;
1587 1588
}

1589 1590 1591
static int
qemuDomainChrPreInsert(virDomainDefPtr vmdef,
                       virDomainChrDefPtr chr)
1592 1593 1594 1595 1596 1597 1598 1599 1600 1601 1602 1603 1604 1605
{
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
                       _("attaching serial console is not supported"));
        return -1;
    }

    if (virDomainChrFind(vmdef, chr)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("chardev already exists"));
        return -1;
    }

1606
    if (virDomainChrPreAlloc(vmdef, chr) < 0)
1607 1608 1609 1610 1611
        return -1;

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
1612 1613 1614 1615 1616 1617 1618
    if (vmdef->nserials == 0 && vmdef->nconsoles == 0 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
        if (!vmdef->consoles && VIR_ALLOC(vmdef->consoles) < 0)
            return -1;

        if (VIR_ALLOC(vmdef->consoles[0]) < 0) {
            VIR_FREE(vmdef->consoles);
1619 1620
            return -1;
        }
1621 1622 1623 1624 1625 1626 1627 1628 1629 1630 1631 1632
        vmdef->nconsoles++;
    }
    return 0;
}

static void
qemuDomainChrInsertPreAlloced(virDomainDefPtr vmdef,
                              virDomainChrDefPtr chr)
{
    virDomainChrInsertPreAlloced(vmdef, chr);
    if (vmdef->nserials == 1 && vmdef->nconsoles == 0 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
1633 1634 1635 1636 1637 1638
        vmdef->nconsoles = 1;

        /* Create an console alias for the serial port */
        vmdef->consoles[0]->deviceType = VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE;
        vmdef->consoles[0]->targetType = VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL;
    }
1639 1640 1641 1642 1643 1644 1645 1646 1647 1648 1649 1650 1651 1652
}

static void
qemuDomainChrInsertPreAllocCleanup(virDomainDefPtr vmdef,
                                   virDomainChrDefPtr chr)
{
    /* Remove the stub console added by qemuDomainChrPreInsert */
    if (vmdef->nserials == 0 && vmdef->nconsoles == 1 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
        VIR_FREE(vmdef->consoles[0]);
        VIR_FREE(vmdef->consoles);
        vmdef->nconsoles = 0;
    }
}
1653

1654 1655 1656 1657 1658 1659 1660 1661 1662
int
qemuDomainChrInsert(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    if (qemuDomainChrPreInsert(vmdef, chr) < 0) {
        qemuDomainChrInsertPreAllocCleanup(vmdef, chr);
        return -1;
    }
    qemuDomainChrInsertPreAlloced(vmdef, chr);
1663 1664 1665 1666 1667 1668 1669 1670 1671 1672 1673 1674 1675 1676 1677 1678 1679 1680 1681 1682 1683 1684 1685 1686 1687 1688 1689 1690 1691 1692 1693 1694 1695 1696 1697 1698
    return 0;
}

virDomainChrDefPtr
qemuDomainChrRemove(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    virDomainChrDefPtr ret;
    bool removeCompat;

    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("detaching serial console is not supported"));
        return NULL;
    }

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
    removeCompat = vmdef->nserials && vmdef->nconsoles &&
        vmdef->consoles[0]->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        vmdef->consoles[0]->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL &&
        virDomainChrEquals(vmdef->serials[0], chr);

    if (!(ret = virDomainChrRemove(vmdef, chr))) {
        virReportError(VIR_ERR_INVALID_ARG, "%s",
                       _("device not present in domain configuration"));
            return NULL;
    }

    if (removeCompat)
        VIR_DELETE_ELEMENT(vmdef->consoles, 0, vmdef->nconsoles);

    return ret;
}
1699

1700
static int
1701
qemuDomainAttachChrDeviceAssignAddr(virDomainObjPtr vm,
1702 1703
                                    virDomainChrDefPtr chr)
{
1704 1705
    virDomainDefPtr def = vm->def;
    qemuDomainObjPrivatePtr priv = vm->privateData;
1706 1707 1708 1709 1710 1711
    int ret = -1;
    virDomainVirtioSerialAddrSetPtr vioaddrs = NULL;

    if (!(vioaddrs = virDomainVirtioSerialAddrSetCreateFromDomain(def)))
        goto cleanup;

1712 1713
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_VIRTIO) {
1714
        if (virDomainVirtioSerialAddrAutoAssign(NULL, vioaddrs,
1715
                                                &chr->info, true) < 0)
1716 1717
            goto cleanup;
        ret = 1;
1718 1719 1720 1721

    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL &&
               chr->targetType == VIR_DOMAIN_CHR_SERIAL_TARGET_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &chr->info) < 0)
1722 1723
            goto cleanup;
        ret = 1;
1724

1725 1726 1727
    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL &&
               chr->targetType == VIR_DOMAIN_CHR_SERIAL_TARGET_TYPE_USB) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, &chr->info) < 0)
1728 1729
            goto cleanup;
        ret = 1;
1730

1731 1732
    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CHANNEL &&
               chr->targetType == VIR_DOMAIN_CHR_CHANNEL_TARGET_TYPE_VIRTIO) {
1733
        if (virDomainVirtioSerialAddrAutoAssign(NULL, vioaddrs,
1734
                                                &chr->info, false) < 0)
1735 1736
            goto cleanup;
        ret = 1;
1737 1738
    }

1739 1740 1741
    if (ret == 1)
        goto cleanup;

1742 1743 1744 1745
    if (chr->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_SERIAL ||
        chr->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("Unsupported address type for character device"));
1746
        goto cleanup;
1747 1748
    }

1749 1750 1751 1752 1753
    ret = 0;

 cleanup:
    virDomainVirtioSerialAddrSetFree(vioaddrs);
    return ret;
1754 1755
}

1756 1757 1758 1759
int qemuDomainAttachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
1760
    int ret = -1, rc;
1761
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
1762
    qemuDomainObjPrivatePtr priv = vm->privateData;
1763
    virErrorPtr orig_err;
1764 1765
    virDomainDefPtr vmdef = vm->def;
    char *devstr = NULL;
1766
    virDomainChrSourceDefPtr dev = chr->source;
1767
    char *charAlias = NULL;
1768
    bool chardevAttached = false;
1769 1770 1771
    bool tlsobjAdded = false;
    virJSONValuePtr tlsProps = NULL;
    char *tlsAlias = NULL;
1772
    bool need_release = false;
1773

1774 1775 1776 1777
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CHANNEL &&
        qemuDomainPrepareChannel(chr, priv->channelTargetDir) < 0)
        goto cleanup;

1778 1779
    qemuDomainPrepareChardevSourceTLS(dev, cfg);

1780
    if (qemuAssignDeviceChrAlias(vmdef, chr, -1) < 0)
1781
        goto cleanup;
1782

1783
    if ((rc = qemuDomainAttachChrDeviceAssignAddr(vm, chr)) < 0)
1784 1785 1786
        goto cleanup;
    if (rc == 1)
        need_release = true;
1787

1788
    if (qemuBuildChrDeviceStr(&devstr, vmdef, chr, priv->qemuCaps) < 0)
1789
        goto cleanup;
1790

1791
    if (!(charAlias = qemuAliasChardevFromDevAlias(chr->info.alias)))
1792 1793
        goto cleanup;

1794
    if (qemuDomainChrPreInsert(vmdef, chr) < 0)
1795 1796
        goto cleanup;

1797 1798 1799
    if (qemuDomainGetChardevTLSObjects(cfg, priv, dev, charAlias,
                                       &tlsProps, &tlsAlias) < 0)
        goto cleanup;
1800

1801
    qemuDomainObjEnterMonitor(driver, vm);
1802 1803 1804 1805 1806 1807 1808 1809 1810
    if (tlsAlias) {
        rc = qemuMonitorAddObject(priv->mon, "tls-creds-x509",
                                  tlsAlias, tlsProps);
        tlsProps = NULL; /* qemuMonitorAddObject consumes */
        if (rc < 0)
            goto exit_monitor;
        tlsobjAdded = true;
    }

1811
    if (qemuMonitorAttachCharDev(priv->mon, charAlias, chr->source) < 0)
1812 1813
        goto exit_monitor;
    chardevAttached = true;
1814 1815

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
1816
        goto exit_monitor;
1817

1818 1819
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto audit;
1820

1821
    qemuDomainChrInsertPreAlloced(vmdef, chr);
1822
    ret = 0;
1823 1824
 audit:
    virDomainAuditChardev(vm, NULL, chr, "attach", ret == 0);
1825
 cleanup:
1826
    if (ret < 0 && virDomainObjIsActive(vm))
1827
        qemuDomainChrInsertPreAllocCleanup(vmdef, chr);
1828 1829
    if (ret < 0 && need_release)
        qemuDomainReleaseDeviceAddress(vm, &chr->info, NULL);
1830 1831
    VIR_FREE(tlsAlias);
    virJSONValueFree(tlsProps);
1832 1833
    VIR_FREE(charAlias);
    VIR_FREE(devstr);
1834
    virObjectUnref(cfg);
1835
    return ret;
1836

1837 1838
 exit_monitor:
    orig_err = virSaveLastError();
1839 1840
    if (tlsobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, tlsAlias));
1841
    /* detach associated chardev on error */
1842 1843 1844 1845 1846 1847 1848
    if (chardevAttached)
        qemuMonitorDetachCharDev(priv->mon, charAlias);
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

1849 1850
    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    goto audit;
1851 1852
}

1853 1854 1855 1856 1857 1858

int
qemuDomainAttachRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
1859
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
1860
    qemuDomainObjPrivatePtr priv = vm->privateData;
1861
    virErrorPtr orig_err;
1862 1863 1864
    char *devstr = NULL;
    char *charAlias = NULL;
    char *objAlias = NULL;
1865
    char *tlsAlias = NULL;
1866 1867 1868
    bool releaseaddr = false;
    bool chardevAdded = false;
    bool objAdded = false;
1869
    bool tlsobjAdded = false;
1870
    virJSONValuePtr props = NULL;
1871
    virJSONValuePtr tlsProps = NULL;
1872
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
1873 1874
    const char *type;
    int ret = -1;
1875
    int rv;
1876

1877
    if (qemuAssignDeviceRNGAlias(vm->def, rng) < 0)
1878
        goto cleanup;
1879 1880 1881

    /* preallocate space for the device definition */
    if (VIR_REALLOC_N(vm->def->rngs, vm->def->nrngs + 1) < 0)
1882
        goto cleanup;
1883 1884

    if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE) {
1885
        if (qemuDomainMachineIsS390CCW(vm->def) &&
1886 1887 1888 1889 1890
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
            rng->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        } else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390)) {
            rng->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
        }
1891 1892 1893
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, rng->info, priv->qemuCaps,
                                            rng->source.file))
1894
            goto cleanup;
1895
    }
1896
    releaseaddr = true;
1897 1898 1899 1900

    if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE ||
        rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &rng->info) < 0)
1901
            goto cleanup;
1902
    } else if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
1903 1904 1905
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto cleanup;
        if (virDomainCCWAddressAssign(&rng->info, ccwaddrs,
1906
                                      !rng->info.addr.ccw.assigned) < 0)
1907
            goto cleanup;
1908 1909
    }

1910 1911 1912
    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD)
        qemuDomainPrepareChardevSourceTLS(rng->source.chardev, cfg);

1913 1914 1915 1916 1917 1918 1919 1920 1921 1922
    /* build required metadata */
    if (!(devstr = qemuBuildRNGDevStr(vm->def, rng, priv->qemuCaps)))
        goto cleanup;

    if (qemuBuildRNGBackendProps(rng, priv->qemuCaps, &type, &props) < 0)
        goto cleanup;

    if (virAsprintf(&objAlias, "obj%s", rng->info.alias) < 0)
        goto cleanup;

1923
    if (!(charAlias = qemuAliasChardevFromDevAlias(rng->info.alias)))
1924 1925
        goto cleanup;

1926 1927 1928 1929 1930
    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD &&
        qemuDomainGetChardevTLSObjects(cfg, priv, rng->source.chardev,
                                       charAlias, &tlsProps, &tlsAlias) < 0)
        goto cleanup;

1931 1932
    qemuDomainObjEnterMonitor(driver, vm);

1933 1934 1935 1936 1937 1938 1939 1940 1941
    if (tlsAlias) {
        rv = qemuMonitorAddObject(priv->mon, "tls-creds-x509",
                                  tlsAlias, tlsProps);
        tlsProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
            goto exit_monitor;
        tlsobjAdded = true;
    }

1942 1943 1944
    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD &&
        qemuMonitorAttachCharDev(priv->mon, charAlias,
                                 rng->source.chardev) < 0)
1945 1946
        goto exit_monitor;
    chardevAdded = true;
1947

1948 1949 1950 1951 1952
    rv = qemuMonitorAddObject(priv->mon, type, objAlias, props);
    props = NULL; /* qemuMonitorAddObject consumes */
    if (rv < 0)
        goto exit_monitor;
    objAdded = true;
1953 1954

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
1955
        goto exit_monitor;
1956 1957

    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
1958
        releaseaddr = false;
1959 1960 1961
        goto cleanup;
    }

1962
    VIR_APPEND_ELEMENT_INPLACE(vm->def->rngs, vm->def->nrngs, rng);
1963 1964 1965 1966 1967 1968

    ret = 0;

 audit:
    virDomainAuditRNG(vm, NULL, rng, "attach", ret == 0);
 cleanup:
1969
    virJSONValueFree(tlsProps);
1970
    virJSONValueFree(props);
1971
    if (ret < 0 && releaseaddr)
1972
        qemuDomainReleaseDeviceAddress(vm, &rng->info, NULL);
1973
    VIR_FREE(tlsAlias);
1974 1975 1976
    VIR_FREE(charAlias);
    VIR_FREE(objAlias);
    VIR_FREE(devstr);
1977
    virDomainCCWAddressSetFree(ccwaddrs);
1978
    virObjectUnref(cfg);
1979 1980
    return ret;

1981 1982
 exit_monitor:
    orig_err = virSaveLastError();
1983 1984
    if (tlsobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, tlsAlias));
1985 1986 1987
    if (objAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, objAlias));
    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD && chardevAdded)
1988
        ignore_value(qemuMonitorDetachCharDev(priv->mon, charAlias));
1989 1990 1991
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
1992 1993
    }

1994 1995
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        releaseaddr = false;
1996 1997 1998 1999
    goto audit;
}


2000 2001 2002 2003 2004 2005 2006 2007 2008 2009 2010 2011 2012 2013 2014 2015
/**
 * qemuDomainAttachMemory:
 * @driver: qemu driver data
 * @vm: VM object
 * @mem: Definition of the memory device to be attached. @mem is always consumed
 *
 * Attaches memory device described by @mem to domain @vm.
 *
 * Returns 0 on success -1 on error.
 */
int
qemuDomainAttachMemory(virQEMUDriverPtr driver,
                       virDomainObjPtr vm,
                       virDomainMemoryDefPtr mem)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
2016
    virErrorPtr orig_err;
2017
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
2018
    unsigned long long oldmem = virDomainDefGetMemoryTotal(vm->def);
2019
    unsigned long long newmem = oldmem + mem->size;
2020 2021 2022
    char *devstr = NULL;
    char *objalias = NULL;
    const char *backendType;
2023
    bool objAdded = false;
2024
    virJSONValuePtr props = NULL;
2025
    virObjectEventPtr event;
2026 2027
    int id;
    int ret = -1;
2028
    int rv;
2029

2030 2031 2032
    qemuDomainMemoryDeviceAlignSize(vm->def, mem);

    if (qemuDomainDefValidateMemoryHotplug(vm->def, priv->qemuCaps, mem) < 0)
2033 2034
        goto cleanup;

2035
    if (qemuAssignDeviceMemoryAlias(vm->def, mem) < 0)
2036 2037 2038 2039 2040
        goto cleanup;

    if (virAsprintf(&objalias, "mem%s", mem->info.alias) < 0)
        goto cleanup;

2041
    if (!(devstr = qemuBuildMemoryDeviceStr(mem)))
2042 2043 2044 2045 2046 2047 2048 2049 2050 2051 2052 2053 2054
        goto cleanup;

    if (qemuBuildMemoryBackendStr(mem->size, mem->pagesize,
                                  mem->targetNode, mem->sourceNodes, NULL,
                                  vm->def, priv->qemuCaps, cfg,
                                  &backendType, &props, true) < 0)
        goto cleanup;

    if (virDomainMemoryInsert(vm->def, mem) < 0) {
        virJSONValueFree(props);
        goto cleanup;
    }

2055
    if (qemuDomainAdjustMaxMemLock(vm) < 0) {
2056 2057 2058 2059
        virJSONValueFree(props);
        goto removedef;
    }

2060
    qemuDomainObjEnterMonitor(driver, vm);
2061 2062 2063
    rv = qemuMonitorAddObject(priv->mon, backendType, objalias, props);
    props = NULL; /* qemuMonitorAddObject consumes */
    if (rv < 0)
2064
        goto exit_monitor;
2065
    objAdded = true;
2066

2067
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
2068
        goto exit_monitor;
2069 2070 2071 2072

    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        /* we shouldn't touch mem now, as the def might be freed */
        mem = NULL;
2073
        goto audit;
2074 2075
    }

2076
    event = virDomainEventDeviceAddedNewFromObj(vm, objalias);
2077
    qemuDomainEventQueue(driver, event);
2078

2079 2080
    /* fix the balloon size */
    ignore_value(qemuProcessRefreshBalloonState(driver, vm, QEMU_ASYNC_JOB_NONE));
2081

2082 2083 2084 2085 2086 2087 2088 2089 2090
    /* mem is consumed by vm->def */
    mem = NULL;

    /* this step is best effort, removing the device would be so much trouble */
    ignore_value(qemuDomainUpdateMemoryDeviceInfo(driver, vm,
                                                  QEMU_ASYNC_JOB_NONE));

    ret = 0;

2091 2092
 audit:
    virDomainAuditMemory(vm, oldmem, newmem, "update", ret == 0);
2093 2094 2095 2096 2097 2098 2099
 cleanup:
    virObjectUnref(cfg);
    VIR_FREE(devstr);
    VIR_FREE(objalias);
    virDomainMemoryDefFree(mem);
    return ret;

2100
 exit_monitor:
2101 2102 2103 2104 2105 2106 2107
    orig_err = virSaveLastError();
    if (objAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, objalias));
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }
2108 2109
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        mem = NULL;
2110
        goto audit;
2111 2112
    }

2113
 removedef:
2114 2115 2116 2117 2118
    if ((id = virDomainMemoryFindByDef(vm->def, mem)) >= 0)
        mem = virDomainMemoryRemove(vm->def, id);
    else
        mem = NULL;

2119
    /* reset the mlock limit */
2120
    orig_err = virSaveLastError();
2121
    ignore_value(qemuDomainAdjustMaxMemLock(vm));
2122 2123
    virSetError(orig_err);
    virFreeError(orig_err);
2124

2125
    goto audit;
2126 2127 2128
}


2129
static int
2130
qemuDomainAttachHostUSBDevice(virQEMUDriverPtr driver,
2131 2132
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
2133 2134 2135
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *devstr = NULL;
2136
    bool releaseaddr = false;
2137
    bool added = false;
2138
    bool teardowncgroup = false;
2139
    bool teardownlabel = false;
2140 2141
    int ret = -1;

2142 2143 2144 2145 2146 2147
    if (priv->usbaddrs) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, hostdev->info) < 0)
            goto cleanup;
        releaseaddr = true;
    }

2148
    if (qemuHostdevPrepareUSBDevices(driver, vm->def->name, &hostdev, 1, 0) < 0)
2149 2150 2151
        goto cleanup;

    added = true;
2152

2153
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
2154 2155 2156
        goto cleanup;
    teardowncgroup = true;

2157 2158 2159 2160 2161
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto cleanup;
    teardownlabel = true;

2162 2163 2164 2165
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
        goto cleanup;
    if (!(devstr = qemuBuildUSBHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
        goto cleanup;
2166

2167
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs+1) < 0)
2168
        goto cleanup;
2169

2170
    qemuDomainObjEnterMonitor(driver, vm);
2171
    ret = qemuMonitorAddDevice(priv->mon, devstr);
2172 2173 2174 2175
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        ret = -1;
        goto cleanup;
    }
2176
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
2177
    if (ret < 0)
2178
        goto cleanup;
2179 2180 2181

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

2182
    ret = 0;
2183
 cleanup:
2184 2185 2186 2187 2188 2189 2190
    if (ret < 0) {
        if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
            VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
        if (teardownlabel &&
            virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                                  vm->def, hostdev, NULL) < 0)
            VIR_WARN("Unable to restore host device labelling on hotplug fail");
2191
        if (added)
2192
            qemuHostdevReAttachUSBDevices(driver, vm->def->name, &hostdev, 1);
2193 2194
        if (releaseaddr)
            virDomainUSBAddressRelease(priv->usbaddrs, hostdev->info);
2195
    }
2196
    VIR_FREE(devstr);
2197
    return ret;
2198 2199
}

2200

2201
static int
2202 2203
qemuDomainAttachHostSCSIDevice(virConnectPtr conn,
                               virQEMUDriverPtr driver,
2204 2205 2206
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
2207
    size_t i;
2208 2209
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
2210
    virErrorPtr orig_err;
2211 2212
    char *devstr = NULL;
    char *drvstr = NULL;
2213
    char *drivealias = NULL;
2214
    bool teardowncgroup = false;
2215
    bool teardownlabel = false;
2216
    bool driveAdded = false;
2217

2218
    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_SCSI_GENERIC)) {
2219 2220 2221 2222 2223
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("SCSI passthrough is not supported by this version of qemu"));
        return -1;
    }

2224 2225 2226 2227 2228 2229 2230 2231 2232 2233 2234
    /* Let's make sure the disk has a controller defined and loaded before
     * trying to add it. The controller used by the disk must exist before a
     * qemu command line string is generated.
     *
     * Ensure that the given controller and all controllers with a smaller index
     * exist; there must not be any missing index in between.
     */
    for (i = 0; i <= hostdev->info->addr.drive.controller; i++) {
        if (!qemuDomainFindOrCreateSCSIDiskController(driver, vm, i))
            return -1;
    }
2235

2236
    if (qemuHostdevPrepareSCSIDevices(driver, vm->def->name,
2237
                                      &hostdev, 1)) {
2238
        virDomainHostdevSubsysSCSIPtr scsisrc = &hostdev->source.subsys.u.scsi;
2239 2240 2241 2242 2243 2244 2245 2246
        if (scsisrc->protocol == VIR_DOMAIN_HOSTDEV_SCSI_PROTOCOL_TYPE_ISCSI) {
            virDomainHostdevSubsysSCSIiSCSIPtr iscsisrc = &scsisrc->u.iscsi;
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("Unable to prepare scsi hostdev for iSCSI: %s"),
                           iscsisrc->path);
        } else {
            virDomainHostdevSubsysSCSIHostPtr scsihostsrc = &scsisrc->u.host;
            virReportError(VIR_ERR_INTERNAL_ERROR,
2247
                           _("Unable to prepare scsi hostdev: %s:%u:%u:%llu"),
2248 2249 2250
                           scsihostsrc->adapter, scsihostsrc->bus,
                           scsihostsrc->target, scsihostsrc->unit);
        }
2251 2252 2253
        return -1;
    }

2254
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
2255 2256 2257
        goto cleanup;
    teardowncgroup = true;

2258 2259 2260 2261 2262
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto cleanup;
    teardownlabel = true;

2263
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
2264 2265
        goto cleanup;

J
John Ferlan 已提交
2266
    if (qemuDomainSecretHostdevPrepare(conn, priv, hostdev) < 0)
2267 2268
        goto cleanup;

2269
    if (!(drvstr = qemuBuildSCSIHostdevDrvStr(hostdev)))
2270 2271
        goto cleanup;

2272 2273 2274
    if (!(drivealias = qemuAliasFromHostdev(hostdev)))
        goto cleanup;

2275 2276 2277
    if (!(devstr = qemuBuildSCSIHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
        goto cleanup;

2278
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs + 1) < 0)
2279 2280 2281 2282
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);

2283
    if (qemuMonitorAddDrive(priv->mon, drvstr) < 0)
2284 2285
        goto exit_monitor;
    driveAdded = true;
2286 2287

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
2288
        goto exit_monitor;
2289 2290

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
2291
        goto cleanup;
2292 2293

    virDomainAuditHostdev(vm, hostdev, "attach", true);
2294 2295 2296 2297

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    ret = 0;
2298

2299
 cleanup:
2300
    qemuDomainSecretHostdevDestroy(hostdev);
2301
    if (ret < 0) {
2302
        qemuHostdevReAttachSCSIDevices(driver, vm->def->name, &hostdev, 1);
2303 2304
        if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
            VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
2305 2306 2307 2308
        if (teardownlabel &&
            virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                                  vm->def, hostdev, NULL) < 0)
            VIR_WARN("Unable to restore host device labelling on hotplug fail");
2309
    }
2310
    VIR_FREE(drivealias);
2311 2312 2313
    VIR_FREE(drvstr);
    VIR_FREE(devstr);
    return ret;
2314

2315
 exit_monitor:
2316
    orig_err = virSaveLastError();
2317
    if (driveAdded && qemuMonitorDriveDel(priv->mon, drivealias) < 0) {
2318 2319 2320
        VIR_WARN("Unable to remove drive %s (%s) after failed "
                 "qemuMonitorAddDevice",
                 drvstr, devstr);
2321
    }
2322 2323 2324 2325 2326 2327 2328 2329 2330
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    virDomainAuditHostdev(vm, hostdev, "attach", false);

    goto cleanup;
2331 2332
}

2333 2334 2335 2336 2337 2338

int
qemuDomainAttachHostDevice(virConnectPtr conn,
                           virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainHostdevDefPtr hostdev)
2339 2340
{
    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
2341 2342 2343
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
2344 2345 2346 2347 2348
        return -1;
    }

    switch (hostdev->source.subsys.type) {
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
2349
        if (qemuDomainAttachHostPCIDevice(driver, vm,
2350
                                          hostdev) < 0)
2351 2352 2353 2354
            goto error;
        break;

    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
2355
        if (qemuDomainAttachHostUSBDevice(driver, vm,
2356
                                          hostdev) < 0)
2357 2358 2359
            goto error;
        break;

2360
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
2361
        if (qemuDomainAttachHostSCSIDevice(conn, driver, vm,
2362 2363 2364 2365
                                           hostdev) < 0)
            goto error;
        break;

2366
    default:
2367 2368 2369
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(hostdev->source.subsys.type));
2370 2371 2372 2373 2374
        goto error;
    }

    return 0;

2375
 error:
2376 2377 2378
    return -1;
}

2379
static int
2380
qemuDomainChangeNetBridge(virDomainObjPtr vm,
2381 2382
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
2383 2384
{
    int ret = -1;
2385 2386
    const char *oldbridge = virDomainNetGetActualBridgeName(olddev);
    const char *newbridge = virDomainNetGetActualBridgeName(newdev);
2387

2388 2389
    if (!oldbridge || !newbridge) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s", _("Missing bridge name"));
2390
        goto cleanup;
2391
    }
2392 2393 2394 2395 2396

    VIR_DEBUG("Change bridge for interface %s: %s -> %s",
              olddev->ifname, oldbridge, newbridge);

    if (virNetDevExists(newbridge) != 1) {
2397 2398
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("bridge %s doesn't exist"), newbridge);
2399
        goto cleanup;
2400 2401 2402 2403 2404
    }

    if (oldbridge) {
        ret = virNetDevBridgeRemovePort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, olddev, NULL, "detach", ret == 0);
2405 2406 2407 2408 2409 2410 2411 2412
        if (ret < 0) {
            /* warn but continue - possibly the old network
             * had been destroyed and reconstructed, leaving the
             * tap device orphaned.
             */
            VIR_WARN("Unable to detach device %s from bridge %s",
                     olddev->ifname, oldbridge);
        }
2413 2414 2415
    }

    ret = virNetDevBridgeAddPort(newbridge, olddev->ifname);
2416
    virDomainAuditNet(vm, NULL, newdev, "attach", ret == 0);
2417 2418 2419 2420
    if (ret < 0) {
        ret = virNetDevBridgeAddPort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, NULL, olddev, "attach", ret == 0);
        if (ret < 0) {
2421
            virReportError(VIR_ERR_OPERATION_FAILED,
2422
                           _("unable to recover former state by adding port "
2423
                             "to bridge %s"), oldbridge);
2424
        }
2425
        goto cleanup;
2426
    }
2427 2428
    /* caller will replace entire olddev with newdev in domain nets list */
    ret = 0;
2429
 cleanup:
2430
    return ret;
2431 2432
}

2433
static int
2434
qemuDomainChangeNetFilter(virDomainObjPtr vm,
2435 2436 2437 2438 2439 2440 2441 2442 2443 2444 2445 2446 2447 2448 2449 2450 2451 2452
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
{
    /* make sure this type of device supports filters. */
    switch (virDomainNetGetActualType(newdev)) {
    case VIR_DOMAIN_NET_TYPE_ETHERNET:
    case VIR_DOMAIN_NET_TYPE_BRIDGE:
    case VIR_DOMAIN_NET_TYPE_NETWORK:
        break;
    default:
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("filters not supported on interfaces of type %s"),
                       virDomainNetTypeToString(virDomainNetGetActualType(newdev)));
        return -1;
    }

    virDomainConfNWFilterTeardown(olddev);

2453
    if (newdev->filter &&
2454
        virDomainConfNWFilterInstantiate(vm->def->uuid, newdev) < 0) {
2455 2456 2457 2458 2459 2460 2461
        virErrorPtr errobj;

        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("failed to add new filter rules to '%s' "
                         "- attempting to restore old rules"),
                       olddev->ifname);
        errobj = virSaveLastError();
2462
        ignore_value(virDomainConfNWFilterInstantiate(vm->def->uuid, olddev));
2463 2464 2465 2466 2467 2468 2469
        virSetError(errobj);
        virFreeError(errobj);
        return -1;
    }
    return 0;
}

2470
int qemuDomainChangeNetLinkState(virQEMUDriverPtr driver,
2471 2472 2473 2474 2475 2476 2477 2478
                                 virDomainObjPtr vm,
                                 virDomainNetDefPtr dev,
                                 int linkstate)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;

    if (!dev->info.alias) {
2479 2480
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("can't change link state: device alias not found"));
2481 2482 2483
        return -1;
    }

2484 2485
    VIR_DEBUG("dev: %s, state: %d", dev->info.alias, linkstate);

2486
    qemuDomainObjEnterMonitor(driver, vm);
2487 2488 2489 2490 2491 2492 2493 2494

    ret = qemuMonitorSetLink(priv->mon, dev->info.alias, linkstate);
    if (ret < 0)
        goto cleanup;

    /* modify the device configuration */
    dev->linkstate = linkstate;

2495
 cleanup:
2496 2497
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
2498 2499 2500 2501

    return ret;
}

2502
int
2503
qemuDomainChangeNet(virQEMUDriverPtr driver,
2504 2505
                    virDomainObjPtr vm,
                    virDomainDeviceDefPtr dev)
2506
{
2507
    virDomainNetDefPtr newdev = dev->data.net;
2508
    virDomainNetDefPtr *devslot = NULL;
2509
    virDomainNetDefPtr olddev;
2510
    virDomainNetType oldType, newType;
2511 2512
    bool needReconnect = false;
    bool needBridgeChange = false;
2513
    bool needFilterChange = false;
2514 2515
    bool needLinkStateChange = false;
    bool needReplaceDevDef = false;
2516
    bool needBandwidthSet = false;
2517
    int ret = -1;
2518 2519 2520 2521 2522
    int changeidx = -1;

    if ((changeidx = virDomainNetFindIdx(vm->def, newdev)) < 0)
        goto cleanup;
    devslot = &vm->def->nets[changeidx];
2523

2524
    if (!(olddev = *devslot)) {
2525
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
2526
                       _("cannot find existing network device to modify"));
2527 2528 2529 2530 2531 2532
        goto cleanup;
    }

    oldType = virDomainNetGetActualType(olddev);
    if (oldType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* no changes are possible to a type='hostdev' interface */
2533
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2534 2535 2536 2537 2538 2539 2540 2541 2542 2543 2544 2545 2546 2547 2548 2549 2550 2551 2552 2553 2554 2555
                       _("cannot change config of '%s' network type"),
                       virDomainNetTypeToString(oldType));
        goto cleanup;
    }

    /* Check individual attributes for changes that can't be done to a
     * live netdev. These checks *mostly* go in order of the
     * declarations in virDomainNetDef in order to assure nothing is
     * omitted. (exceptiong where noted in comments - in particular,
     * some things require that a new "actual device" be allocated
     * from the network driver first, but we delay doing that until
     * after we've made as many other checks as possible)
     */

    /* type: this can change (with some restrictions), but the actual
     * type of the new device connection isn't known until after we
     * allocate the "actual" device.
     */

    if (virMacAddrCmp(&olddev->mac, &newdev->mac)) {
        char oldmac[VIR_MAC_STRING_BUFLEN], newmac[VIR_MAC_STRING_BUFLEN];

2556
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2557 2558 2559 2560 2561 2562 2563 2564
                       _("cannot change network interface mac address "
                         "from %s to %s"),
                       virMacAddrFormat(&olddev->mac, oldmac),
                       virMacAddrFormat(&newdev->mac, newmac));
        goto cleanup;
    }

    if (STRNEQ_NULLABLE(olddev->model, newdev->model)) {
2565
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2566 2567 2568 2569
                       _("cannot modify network device model from %s to %s"),
                       olddev->model ? olddev->model : "(default)",
                       newdev->model ? newdev->model : "(default)");
        goto cleanup;
2570 2571
    }

2572 2573 2574 2575
    if (olddev->model && STREQ(olddev->model, "virtio") &&
        (olddev->driver.virtio.name != newdev->driver.virtio.name ||
         olddev->driver.virtio.txmode != newdev->driver.virtio.txmode ||
         olddev->driver.virtio.ioeventfd != newdev->driver.virtio.ioeventfd ||
2576
         olddev->driver.virtio.event_idx != newdev->driver.virtio.event_idx ||
2577 2578 2579 2580 2581 2582 2583
         olddev->driver.virtio.queues != newdev->driver.virtio.queues ||
         olddev->driver.virtio.host.csum != newdev->driver.virtio.host.csum ||
         olddev->driver.virtio.host.gso != newdev->driver.virtio.host.gso ||
         olddev->driver.virtio.host.tso4 != newdev->driver.virtio.host.tso4 ||
         olddev->driver.virtio.host.tso6 != newdev->driver.virtio.host.tso6 ||
         olddev->driver.virtio.host.ecn != newdev->driver.virtio.host.ecn ||
         olddev->driver.virtio.host.ufo != newdev->driver.virtio.host.ufo ||
J
Ján Tomko 已提交
2584
         olddev->driver.virtio.host.mrg_rxbuf != newdev->driver.virtio.host.mrg_rxbuf ||
2585 2586 2587 2588 2589
         olddev->driver.virtio.guest.csum != newdev->driver.virtio.guest.csum ||
         olddev->driver.virtio.guest.tso4 != newdev->driver.virtio.guest.tso4 ||
         olddev->driver.virtio.guest.tso6 != newdev->driver.virtio.guest.tso6 ||
         olddev->driver.virtio.guest.ecn != newdev->driver.virtio.guest.ecn ||
         olddev->driver.virtio.guest.ufo != newdev->driver.virtio.guest.ufo)) {
2590
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2591 2592 2593 2594 2595 2596 2597 2598 2599 2600
                       _("cannot modify virtio network device driver attributes"));
        goto cleanup;
    }

    /* data: this union will be examined later, after allocating new actualdev */
    /* virtPortProfile: will be examined later, after allocating new actualdev */

    if (olddev->tune.sndbuf_specified != newdev->tune.sndbuf_specified ||
        olddev->tune.sndbuf != newdev->tune.sndbuf) {
        needReconnect = true;
2601 2602
    }

2603
    if (STRNEQ_NULLABLE(olddev->script, newdev->script)) {
2604
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2605 2606
                       _("cannot modify network device script attribute"));
        goto cleanup;
2607 2608
    }

2609
    /* ifname: check if it's set in newdev. If not, retain the autogenerated one */
2610
    if (!newdev->ifname && VIR_STRDUP(newdev->ifname, olddev->ifname) < 0)
2611 2612
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->ifname, newdev->ifname)) {
2613
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2614 2615 2616
                       _("cannot modify network device tap name"));
        goto cleanup;
    }
2617

2618 2619 2620 2621 2622 2623 2624 2625 2626 2627 2628
    /* info: if newdev->info is empty, fill it in from olddev,
     * otherwise verify that it matches - nothing is allowed to
     * change. (There is no helper function to do this, so
     * individually check the few feidls of virDomainDeviceInfo that
     * are relevant in this case).
     */
    if (!virDomainDeviceAddressIsValid(&newdev->info,
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) &&
        virDomainDeviceInfoCopy(&newdev->info, &olddev->info) < 0) {
        goto cleanup;
    }
2629
    if (!virPCIDeviceAddressEqual(&olddev->info.addr.pci,
2630
                                  &newdev->info.addr.pci)) {
2631
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2632 2633 2634 2635
                       _("cannot modify network device guest PCI address"));
        goto cleanup;
    }
    /* grab alias from olddev if not set in newdev */
2636 2637
    if (!newdev->info.alias &&
        VIR_STRDUP(newdev->info.alias, olddev->info.alias) < 0)
2638 2639
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->info.alias, newdev->info.alias)) {
2640
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2641 2642 2643 2644
                       _("cannot modify network device alias"));
        goto cleanup;
    }
    if (olddev->info.rombar != newdev->info.rombar) {
2645
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2646 2647 2648 2649
                       _("cannot modify network device rom bar setting"));
        goto cleanup;
    }
    if (STRNEQ_NULLABLE(olddev->info.romfile, newdev->info.romfile)) {
2650
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2651 2652 2653 2654
                       _("cannot modify network rom file"));
        goto cleanup;
    }
    if (olddev->info.bootIndex != newdev->info.bootIndex) {
2655
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2656 2657 2658 2659
                       _("cannot modify network device boot index setting"));
        goto cleanup;
    }
    /* (end of device info checks) */
2660

2661 2662 2663 2664
    if (STRNEQ_NULLABLE(olddev->filter, newdev->filter) ||
        !virNWFilterHashTableEqual(olddev->filterparams, newdev->filterparams)) {
        needFilterChange = true;
    }
2665

2666 2667 2668 2669 2670 2671 2672 2673
    /* bandwidth can be modified, and will be checked later */
    /* vlan can be modified, and will be checked later */
    /* linkstate can be modified */

    /* allocate new actual device to compare to old - we will need to
     * free it if we fail for any reason
     */
    if (newdev->type == VIR_DOMAIN_NET_TYPE_NETWORK &&
2674
        networkAllocateActualDevice(vm->def, newdev) < 0) {
2675 2676 2677 2678 2679 2680 2681
        goto cleanup;
    }

    newType = virDomainNetGetActualType(newdev);

    if (newType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* can't turn it into a type='hostdev' interface */
2682
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2683 2684 2685 2686 2687 2688
                       _("cannot change network interface type to '%s'"),
                       virDomainNetTypeToString(newType));
        goto cleanup;
    }

    if (olddev->type == newdev->type && oldType == newType) {
2689

2690 2691 2692 2693 2694 2695
        /* if type hasn't changed, check the relevant fields for the type */
        switch (newdev->type) {
        case VIR_DOMAIN_NET_TYPE_USER:
            break;

        case VIR_DOMAIN_NET_TYPE_ETHERNET:
2696
            break;
2697

2698 2699 2700
        case VIR_DOMAIN_NET_TYPE_SERVER:
        case VIR_DOMAIN_NET_TYPE_CLIENT:
        case VIR_DOMAIN_NET_TYPE_MCAST:
2701
        case VIR_DOMAIN_NET_TYPE_UDP:
2702 2703 2704 2705 2706 2707 2708 2709 2710 2711 2712 2713 2714 2715 2716 2717 2718 2719 2720 2721 2722 2723 2724 2725 2726 2727 2728 2729 2730 2731 2732 2733 2734
            if (STRNEQ_NULLABLE(olddev->data.socket.address,
                                newdev->data.socket.address) ||
                olddev->data.socket.port != newdev->data.socket.port) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_NETWORK:
            if (STRNEQ(olddev->data.network.name, newdev->data.network.name)) {
                if (virDomainNetGetActualVirtPortProfile(newdev))
                    needReconnect = true;
                else
                    needBridgeChange = true;
            }
            /* other things handled in common code directly below this switch */
            break;

        case VIR_DOMAIN_NET_TYPE_BRIDGE:
            /* all handled in bridge name checked in common code below */
            break;

        case VIR_DOMAIN_NET_TYPE_INTERNAL:
            if (STRNEQ_NULLABLE(olddev->data.internal.name,
                                newdev->data.internal.name)) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_DIRECT:
            /* all handled in common code directly below this switch */
            break;

        default:
2735
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2736 2737 2738
                           _("unable to change config on '%s' network type"),
                           virDomainNetTypeToString(newdev->type));
            break;
2739

2740
        }
2741 2742 2743 2744 2745 2746 2747 2748 2749 2750 2751 2752 2753 2754 2755 2756 2757 2758 2759 2760 2761 2762 2763 2764 2765 2766 2767 2768 2769 2770 2771
    } else {
        /* interface type has changed. There are a few special cases
         * where this can only require a minor (or even no) change,
         * but in most cases we need to do a full reconnection.
         *
         * If we switch (in either direction) between type='bridge'
         * and type='network' (for a traditional managed virtual
         * network that uses a host bridge, i.e. forward
         * mode='route|nat'), we just need to change the bridge.
         */
        if ((oldType == VIR_DOMAIN_NET_TYPE_NETWORK &&
             newType == VIR_DOMAIN_NET_TYPE_BRIDGE) ||
            (oldType == VIR_DOMAIN_NET_TYPE_BRIDGE &&
             newType == VIR_DOMAIN_NET_TYPE_NETWORK)) {

            needBridgeChange = true;

        } else if (oldType == VIR_DOMAIN_NET_TYPE_DIRECT &&
                   newType == VIR_DOMAIN_NET_TYPE_DIRECT) {

            /* this is the case of switching from type='direct' to
             * type='network' for a network that itself uses direct
             * (macvtap) devices. If the physical device and mode are
             * the same, this doesn't require any actual setup
             * change. If the physical device or mode *does* change,
             * that will be caught in the common section below */

        } else {

            /* for all other combinations, we'll need a full reconnect */
            needReconnect = true;
2772 2773

        }
2774
    }
2775

2776 2777 2778 2779 2780 2781 2782 2783 2784 2785 2786
    /* now several things that are in multiple (but not all)
     * different types, and can be safely compared even for those
     * cases where they don't apply to a particular type.
     */
    if (STRNEQ_NULLABLE(virDomainNetGetActualBridgeName(olddev),
                        virDomainNetGetActualBridgeName(newdev))) {
        if (virDomainNetGetActualVirtPortProfile(newdev))
            needReconnect = true;
        else
            needBridgeChange = true;
    }
2787

2788 2789 2790 2791 2792 2793 2794 2795
    if (STRNEQ_NULLABLE(virDomainNetGetActualDirectDev(olddev),
                        virDomainNetGetActualDirectDev(newdev)) ||
        virDomainNetGetActualDirectMode(olddev) != virDomainNetGetActualDirectMode(olddev) ||
        !virNetDevVPortProfileEqual(virDomainNetGetActualVirtPortProfile(olddev),
                                    virDomainNetGetActualVirtPortProfile(newdev)) ||
        !virNetDevVlanEqual(virDomainNetGetActualVlan(olddev),
                            virDomainNetGetActualVlan(newdev))) {
        needReconnect = true;
2796 2797
    }

2798 2799 2800
    if (olddev->linkstate != newdev->linkstate)
        needLinkStateChange = true;

2801 2802 2803 2804
    if (!virNetDevBandwidthEqual(virDomainNetGetActualBandwidth(olddev),
                                 virDomainNetGetActualBandwidth(newdev)))
        needBandwidthSet = true;

2805 2806 2807
    /* FINALLY - actually perform the required actions */

    if (needReconnect) {
2808
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2809 2810 2811
                       _("unable to change config on '%s' network type"),
                       virDomainNetTypeToString(newdev->type));
        goto cleanup;
2812 2813
    }

2814 2815 2816
    if (needBandwidthSet) {
        if (virNetDevBandwidthSet(newdev->ifname,
                                  virDomainNetGetActualBandwidth(newdev),
2817
                                  false) < 0)
2818 2819 2820 2821
            goto cleanup;
        needReplaceDevDef = true;
    }

2822
    if (needBridgeChange) {
2823
        if (qemuDomainChangeNetBridge(vm, olddev, newdev) < 0)
2824 2825 2826
            goto cleanup;
        /* we successfully switched to the new bridge, and we've
         * determined that the rest of newdev is equivalent to olddev,
2827 2828 2829 2830 2831
         * so move newdev into place */
        needReplaceDevDef = true;
    }

    if (needFilterChange) {
2832
        if (qemuDomainChangeNetFilter(vm, olddev, newdev) < 0)
2833 2834 2835 2836
            goto cleanup;
        /* we successfully switched to the new filter, and we've
         * determined that the rest of newdev is equivalent to olddev,
         * so move newdev into place */
2837
        needReplaceDevDef = true;
2838 2839
    }

2840 2841 2842
    if (needLinkStateChange &&
        qemuDomainChangeNetLinkState(driver, vm, olddev, newdev->linkstate) < 0) {
        goto cleanup;
2843 2844
    }

2845 2846 2847 2848
    if (needReplaceDevDef) {
        /* the changes above warrant replacing olddev with newdev in
         * the domain's nets list.
         */
2849 2850 2851

        /* this function doesn't work with HOSTDEV networks yet, thus
         * no need to change the pointer in the hostdev structure */
2852
        networkReleaseActualDevice(vm->def, olddev);
2853 2854 2855 2856 2857 2858 2859 2860
        virDomainNetDefFree(olddev);
        /* move newdev into the nets list, and NULL it out from the
         * virDomainDeviceDef that we were given so that the caller
         * won't delete it on return.
         */
        *devslot = newdev;
        newdev = dev->data.net = NULL;
        dev->type = VIR_DOMAIN_DEVICE_NONE;
2861 2862
    }

2863
    ret = 0;
2864
 cleanup:
2865 2866 2867 2868 2869 2870 2871 2872 2873 2874 2875 2876 2877 2878 2879 2880 2881 2882 2883
    /* When we get here, we will be in one of these two states:
     *
     * 1) newdev has been moved into the domain's list of nets and
     *    newdev set to NULL, and dev->data.net will be NULL (and
     *    dev->type is NONE). olddev will have been completely
     *    released and freed. (aka success) In this case no extra
     *    cleanup is needed.
     *
     * 2) newdev has *not* been moved into the domain's list of nets,
     *    and dev->data.net == newdev (and dev->type == NET). In this *
     *    case, we need to at least release the "actual device" from *
     *    newdev (the caller will free dev->data.net a.k.a. newdev, and
     *    the original olddev is still in used)
     *
     * Note that case (2) isn't necessarily a failure. It may just be
     * that the changes were minor enough that we didn't need to
     * replace the entire device object.
     */
    if (newdev)
2884
        networkReleaseActualDevice(vm->def, newdev);
2885

2886 2887 2888
    return ret;
}

2889 2890 2891
static virDomainGraphicsDefPtr
qemuDomainFindGraphics(virDomainObjPtr vm,
                       virDomainGraphicsDefPtr dev)
2892
{
2893
    size_t i;
2894

2895
    for (i = 0; i < vm->def->ngraphics; i++) {
2896 2897 2898 2899 2900 2901 2902
        if (vm->def->graphics[i]->type == dev->type)
            return vm->def->graphics[i];
    }

    return NULL;
}

2903 2904 2905 2906 2907 2908 2909 2910 2911 2912 2913 2914 2915 2916
int
qemuDomainFindGraphicsIndex(virDomainDefPtr def,
                            virDomainGraphicsDefPtr dev)
{
    size_t i;

    for (i = 0; i < def->ngraphics; i++) {
        if (def->graphics[i]->type == dev->type)
            return i;
    }

    return -1;
}

2917
int
2918
qemuDomainChangeGraphics(virQEMUDriverPtr driver,
2919 2920 2921 2922
                         virDomainObjPtr vm,
                         virDomainGraphicsDefPtr dev)
{
    virDomainGraphicsDefPtr olddev = qemuDomainFindGraphics(vm, dev);
2923
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
2924
    const char *type = virDomainGraphicsTypeToString(dev->type);
2925
    size_t i;
2926
    int ret = -1;
2927 2928

    if (!olddev) {
2929 2930
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("cannot find existing graphics device to modify"));
2931
        goto cleanup;
2932 2933
    }

2934
    if (dev->nListens != olddev->nListens) {
2935 2936 2937
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("cannot change the number of listen addresses "
                         "on '%s' graphics"), type);
2938 2939 2940 2941
        goto cleanup;
    }

    for (i = 0; i < dev->nListens; i++) {
J
Jim Fehlig 已提交
2942
        virDomainGraphicsListenDefPtr newlisten = &dev->listens[i];
2943 2944
        virDomainGraphicsListenDefPtr oldlisten = &olddev->listens[i];

J
Jim Fehlig 已提交
2945
        if (newlisten->type != oldlisten->type) {
2946 2947 2948
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                           _("cannot change the type of listen address "
                             "on '%s' graphics"), type);
2949 2950 2951
            goto cleanup;
        }

2952
        switch (newlisten->type) {
2953
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_ADDRESS:
J
Jim Fehlig 已提交
2954
            if (STRNEQ_NULLABLE(newlisten->address, oldlisten->address)) {
2955 2956 2957
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen address setting "
                                 "on '%s' graphics"), type);
2958 2959
                goto cleanup;
            }
2960

2961 2962 2963
            break;

        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NETWORK:
J
Jim Fehlig 已提交
2964
            if (STRNEQ_NULLABLE(newlisten->network, oldlisten->network)) {
2965 2966 2967
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen address setting "
                                 "on '%s' graphics"), type);
2968 2969
                goto cleanup;
            }
2970

2971 2972
            break;

2973 2974 2975 2976 2977 2978 2979 2980 2981
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_SOCKET:
            if (STRNEQ_NULLABLE(newlisten->socket, oldlisten->socket)) {
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen socket setting "
                                 "on '%s' graphics"), type);
                goto cleanup;
            }
            break;

2982 2983 2984 2985 2986 2987
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NONE:
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_LAST:
            /* nada */
            break;
        }
    }
2988

2989 2990
    switch (dev->type) {
    case VIR_DOMAIN_GRAPHICS_TYPE_VNC:
2991 2992 2993
        if ((olddev->data.vnc.autoport != dev->data.vnc.autoport) ||
            (!dev->data.vnc.autoport &&
             (olddev->data.vnc.port != dev->data.vnc.port))) {
2994
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2995
                           _("cannot change port settings on vnc graphics"));
2996
            goto cleanup;
2997 2998
        }
        if (STRNEQ_NULLABLE(olddev->data.vnc.keymap, dev->data.vnc.keymap)) {
2999
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
3000
                           _("cannot change keymap setting on vnc graphics"));
3001
            goto cleanup;
3002 3003
        }

3004 3005 3006
        /* If a password lifetime was, or is set, or action if connected has
         * changed, then we must always run, even if new password matches
         * old password */
3007 3008
        if (olddev->data.vnc.auth.expires ||
            dev->data.vnc.auth.expires ||
3009
            olddev->data.vnc.auth.connected != dev->data.vnc.auth.connected ||
E
Eric Blake 已提交
3010 3011 3012
            STRNEQ_NULLABLE(olddev->data.vnc.auth.passwd,
                            dev->data.vnc.auth.passwd)) {
            VIR_DEBUG("Updating password on VNC server %p %p",
3013
                      dev->data.vnc.auth.passwd, cfg->vncPassword);
E
Eric Blake 已提交
3014 3015 3016
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_VNC,
                                                    &dev->data.vnc.auth,
3017 3018
                                                    cfg->vncPassword,
                                                    QEMU_ASYNC_JOB_NONE);
3019
            if (ret < 0)
3020
                goto cleanup;
3021 3022 3023 3024 3025

            /* Steal the new dev's  char * reference */
            VIR_FREE(olddev->data.vnc.auth.passwd);
            olddev->data.vnc.auth.passwd = dev->data.vnc.auth.passwd;
            dev->data.vnc.auth.passwd = NULL;
3026 3027
            olddev->data.vnc.auth.validTo = dev->data.vnc.auth.validTo;
            olddev->data.vnc.auth.expires = dev->data.vnc.auth.expires;
3028
            olddev->data.vnc.auth.connected = dev->data.vnc.auth.connected;
3029 3030 3031 3032 3033
        } else {
            ret = 0;
        }
        break;

3034
    case VIR_DOMAIN_GRAPHICS_TYPE_SPICE:
3035 3036 3037 3038 3039
        if ((olddev->data.spice.autoport != dev->data.spice.autoport) ||
            (!dev->data.spice.autoport &&
             (olddev->data.spice.port != dev->data.spice.port)) ||
            (!dev->data.spice.autoport &&
             (olddev->data.spice.tlsPort != dev->data.spice.tlsPort))) {
3040
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
3041
                           _("cannot change port settings on spice graphics"));
3042
            goto cleanup;
3043
        }
E
Eric Blake 已提交
3044 3045
        if (STRNEQ_NULLABLE(olddev->data.spice.keymap,
                            dev->data.spice.keymap)) {
3046
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
3047
                            _("cannot change keymap setting on spice graphics"));
3048
            goto cleanup;
3049 3050
        }

3051 3052 3053 3054 3055
        /* We must reset the password if it has changed but also if:
         * - password lifetime is or was set
         * - the requested action has changed
         * - the action is "disconnect"
         */
3056 3057
        if (olddev->data.spice.auth.expires ||
            dev->data.spice.auth.expires ||
3058
            olddev->data.spice.auth.connected != dev->data.spice.auth.connected ||
3059 3060
            dev->data.spice.auth.connected ==
            VIR_DOMAIN_GRAPHICS_AUTH_CONNECTED_DISCONNECT ||
E
Eric Blake 已提交
3061 3062 3063
            STRNEQ_NULLABLE(olddev->data.spice.auth.passwd,
                            dev->data.spice.auth.passwd)) {
            VIR_DEBUG("Updating password on SPICE server %p %p",
3064
                      dev->data.spice.auth.passwd, cfg->spicePassword);
E
Eric Blake 已提交
3065 3066 3067
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_SPICE,
                                                    &dev->data.spice.auth,
3068 3069
                                                    cfg->spicePassword,
                                                    QEMU_ASYNC_JOB_NONE);
E
Eric Blake 已提交
3070

3071
            if (ret < 0)
3072
                goto cleanup;
3073

E
Eric Blake 已提交
3074
            /* Steal the new dev's char * reference */
3075 3076 3077 3078 3079
            VIR_FREE(olddev->data.spice.auth.passwd);
            olddev->data.spice.auth.passwd = dev->data.spice.auth.passwd;
            dev->data.spice.auth.passwd = NULL;
            olddev->data.spice.auth.validTo = dev->data.spice.auth.validTo;
            olddev->data.spice.auth.expires = dev->data.spice.auth.expires;
3080
            olddev->data.spice.auth.connected = dev->data.spice.auth.connected;
3081
        } else {
3082
            VIR_DEBUG("Not updating since password didn't change");
3083 3084
            ret = 0;
        }
E
Eric Blake 已提交
3085
        break;
3086

3087
    default:
3088
        virReportError(VIR_ERR_INTERNAL_ERROR,
3089
                       _("unable to change config on '%s' graphics type"), type);
3090 3091 3092
        break;
    }

3093
 cleanup:
3094
    virObjectUnref(cfg);
3095 3096 3097 3098
    return ret;
}


3099
static int qemuComparePCIDevice(virDomainDefPtr def ATTRIBUTE_UNUSED,
3100
                                virDomainDeviceDefPtr device ATTRIBUTE_UNUSED,
3101
                                virDomainDeviceInfoPtr info1,
3102 3103
                                void *opaque)
{
3104
    virDomainDeviceInfoPtr info2 = opaque;
3105

3106 3107
    if (info1->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI ||
        info2->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)
3108 3109
        return 0;

3110 3111 3112
    if (info1->addr.pci.domain == info2->addr.pci.domain &&
        info1->addr.pci.bus == info2->addr.pci.bus &&
        info1->addr.pci.slot == info2->addr.pci.slot &&
3113
        info1->addr.pci.function != info2->addr.pci.function)
3114 3115 3116 3117 3118 3119 3120 3121 3122 3123 3124 3125
        return -1;
    return 0;
}

static bool qemuIsMultiFunctionDevice(virDomainDefPtr def,
                                      virDomainDeviceInfoPtr dev)
{
    if (virDomainDeviceInfoIterate(def, qemuComparePCIDevice, dev) < 0)
        return true;
    return false;
}

3126

3127
static int
3128 3129 3130 3131 3132
qemuDomainRemoveDiskDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainDiskDefPtr disk)
{
    virDomainDeviceDef dev;
3133
    virObjectEventPtr event;
3134
    size_t i;
3135
    const char *src = virDomainDiskGetSource(disk);
3136 3137
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drivestr;
3138
    char *objAlias = NULL;
3139
    char *encAlias = NULL;
3140 3141 3142 3143

    VIR_DEBUG("Removing disk %s from domain %p %s",
              disk->info.alias, vm, vm->def->name);

3144 3145
    /* build the actual drive id string as the disk->info.alias doesn't
     * contain the QEMU_DRIVE_HOST_PREFIX that is passed to qemu */
3146
    if (!(drivestr = qemuAliasFromDisk(disk)))
3147 3148
        return -1;

3149 3150 3151 3152 3153 3154 3155 3156
    /* Let's look for some markers for a secret object and create an alias
     * object to be used to attempt to delete the object that was created.
     * We cannot just use the disk private secret info since it would have
     * been removed during cleanup of qemuProcessLaunch. Likewise, libvirtd
     * restart wouldn't have them, so no assumption can be made. */
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_OBJECT_SECRET) &&
        qemuDomainSecretDiskCapable(disk->src)) {

3157 3158
        if (!(objAlias =
              qemuDomainGetSecretAESAlias(disk->info.alias, false))) {
3159 3160 3161 3162 3163
            VIR_FREE(drivestr);
            return -1;
        }
    }

3164 3165 3166 3167
    /* Similarly, if this is possible a device using LUKS encryption, we
     * can remove the luks object password too
     */
    if (!virStorageSourceIsEmpty(disk->src) && disk->src->encryption &&
3168
        disk->src->encryption->format == VIR_STORAGE_ENCRYPTION_FORMAT_LUKS) {
3169 3170 3171 3172 3173 3174 3175 3176 3177

        if (!(encAlias =
              qemuDomainGetSecretAESAlias(disk->info.alias, true))) {
            VIR_FREE(objAlias);
            VIR_FREE(drivestr);
            return -1;
        }
    }

3178
    qemuDomainObjEnterMonitor(driver, vm);
3179

3180 3181 3182
    qemuMonitorDriveDel(priv->mon, drivestr);
    VIR_FREE(drivestr);

3183 3184 3185 3186 3187
    /* If it fails, then so be it - it was a best shot */
    if (objAlias)
        ignore_value(qemuMonitorDelObject(priv->mon, objAlias));
    VIR_FREE(objAlias);

3188 3189 3190 3191 3192
    /* If it fails, then so be it - it was a best shot */
    if (encAlias)
        ignore_value(qemuMonitorDelObject(priv->mon, encAlias));
    VIR_FREE(encAlias);

3193 3194
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
3195

3196
    virDomainAuditDisk(vm, disk->src, NULL, "detach", true);
3197

3198
    event = virDomainEventDeviceRemovedNewFromObj(vm, disk->info.alias);
3199
    qemuDomainEventQueue(driver, event);
3200

3201 3202 3203 3204 3205 3206 3207
    for (i = 0; i < vm->def->ndisks; i++) {
        if (vm->def->disks[i] == disk) {
            virDomainDiskRemove(vm->def, i);
            break;
        }
    }

3208
    qemuDomainReleaseDeviceAddress(vm, &disk->info, src);
3209

3210 3211
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
3212
        VIR_WARN("Unable to restore security label on %s", src);
3213 3214

    if (qemuTeardownDiskCgroup(vm, disk) < 0)
3215
        VIR_WARN("Failed to tear down cgroup for disk path %s", src);
3216 3217

    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
3218
        VIR_WARN("Unable to release lock on %s", src);
3219 3220 3221 3222

    dev.type = VIR_DOMAIN_DEVICE_DISK;
    dev.data.disk = disk;
    ignore_value(qemuRemoveSharedDevice(driver, &dev, vm->def->name));
3223 3224
    if (priv->usbaddrs)
        virDomainUSBAddressRelease(priv->usbaddrs, &disk->info);
3225 3226

    virDomainDiskDefFree(disk);
3227
    return 0;
3228 3229 3230
}


3231
static int
3232
qemuDomainRemoveControllerDevice(virQEMUDriverPtr driver,
3233 3234 3235
                                 virDomainObjPtr vm,
                                 virDomainControllerDefPtr controller)
{
3236
    virObjectEventPtr event;
3237 3238 3239 3240 3241
    size_t i;

    VIR_DEBUG("Removing controller %s from domain %p %s",
              controller->info.alias, vm, vm->def->name);

3242
    event = virDomainEventDeviceRemovedNewFromObj(vm, controller->info.alias);
3243
    qemuDomainEventQueue(driver, event);
3244

3245 3246 3247 3248 3249 3250 3251 3252 3253
    for (i = 0; i < vm->def->ncontrollers; i++) {
        if (vm->def->controllers[i] == controller) {
            virDomainControllerRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
    virDomainControllerDefFree(controller);
3254
    return 0;
3255 3256 3257
}


3258 3259 3260 3261 3262 3263
static int
qemuDomainRemoveMemoryDevice(virQEMUDriverPtr driver,
                             virDomainObjPtr vm,
                             virDomainMemoryDefPtr mem)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3264
    unsigned long long oldmem = virDomainDefGetMemoryTotal(vm->def);
3265
    unsigned long long newmem = oldmem - mem->size;
3266 3267 3268 3269 3270 3271 3272 3273
    virObjectEventPtr event;
    char *backendAlias = NULL;
    int rc;
    int idx;

    VIR_DEBUG("Removing memory device %s from domain %p %s",
              mem->info.alias, vm, vm->def->name);

3274 3275
    event = virDomainEventDeviceRemovedNewFromObj(vm, mem->info.alias);
    qemuDomainEventQueue(driver, event);
3276 3277

    if (virAsprintf(&backendAlias, "mem%s", mem->info.alias) < 0)
3278
        return -1;
3279 3280 3281

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelObject(priv->mon, backendAlias);
3282 3283 3284 3285 3286 3287 3288 3289
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        rc = -1;

    VIR_FREE(backendAlias);

    virDomainAuditMemory(vm, oldmem, newmem, "update", rc == 0);
    if (rc < 0)
        return -1;
3290 3291 3292 3293 3294

    if ((idx = virDomainMemoryFindByDef(vm->def, mem)) >= 0)
        virDomainMemoryRemove(vm->def, idx);

    virDomainMemoryDefFree(mem);
3295

3296 3297 3298
    /* fix the balloon size */
    ignore_value(qemuProcessRefreshBalloonState(driver, vm, QEMU_ASYNC_JOB_NONE));

3299
    /* decrease the mlock limit after memory unplug if necessary */
3300
    ignore_value(qemuDomainAdjustMaxMemLock(vm));
3301

3302
    return 0;
3303 3304 3305
}


3306 3307 3308 3309 3310
static void
qemuDomainRemovePCIHostDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
{
3311
    qemuHostdevReAttachPCIDevices(driver, vm->def->name, &hostdev, 1);
3312 3313 3314 3315 3316
    qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
}

static void
qemuDomainRemoveUSBHostDevice(virQEMUDriverPtr driver,
3317
                              virDomainObjPtr vm,
3318 3319
                              virDomainHostdevDefPtr hostdev)
{
3320
    qemuHostdevReAttachUSBDevices(driver, vm->def->name, &hostdev, 1);
3321
    qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
3322 3323 3324 3325 3326 3327 3328
}

static void
qemuDomainRemoveSCSIHostDevice(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
3329
    qemuHostdevReAttachSCSIDevices(driver, vm->def->name, &hostdev, 1);
3330 3331
}

3332
static int
3333 3334 3335 3336
qemuDomainRemoveHostDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainHostdevDefPtr hostdev)
{
3337
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3338
    virDomainNetDefPtr net = NULL;
3339
    virObjectEventPtr event;
3340
    size_t i;
3341 3342
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
J
John Ferlan 已提交
3343
    char *drivealias = NULL;
3344
    bool is_vfio = false;
3345 3346 3347 3348

    VIR_DEBUG("Removing host device %s from domain %p %s",
              hostdev->info->alias, vm, vm->def->name);

3349 3350 3351 3352 3353
    if (hostdev->source.subsys.type == VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI) {
        int backend = hostdev->source.subsys.u.pci.backend;
        is_vfio = backend == VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO;
    }

3354
    if (hostdev->source.subsys.type == VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI) {
J
John Ferlan 已提交
3355
        if (!(drivealias = qemuAliasFromHostdev(hostdev)))
3356 3357 3358
            goto cleanup;

        qemuDomainObjEnterMonitor(driver, vm);
J
John Ferlan 已提交
3359
        qemuMonitorDriveDel(priv->mon, drivealias);
3360 3361
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
            goto cleanup;
3362 3363
    }

3364
    event = virDomainEventDeviceRemovedNewFromObj(vm, hostdev->info->alias);
3365
    qemuDomainEventQueue(driver, event);
3366

3367 3368 3369 3370 3371 3372 3373 3374 3375 3376 3377 3378 3379 3380 3381 3382 3383 3384 3385 3386
    if (hostdev->parent.type == VIR_DOMAIN_DEVICE_NET) {
        net = hostdev->parent.data.net;

        for (i = 0; i < vm->def->nnets; i++) {
            if (vm->def->nets[i] == net) {
                virDomainNetRemove(vm->def, i);
                break;
            }
        }
    }

    for (i = 0; i < vm->def->nhostdevs; i++) {
        if (vm->def->hostdevs[i] == hostdev) {
            virDomainHostdevRemove(vm->def, i);
            break;
        }
    }

    virDomainAuditHostdev(vm, hostdev, "detach", true);

3387 3388 3389 3390
    if (!is_vfio &&
        virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                              vm->def, hostdev, NULL) < 0)
        VIR_WARN("Failed to restore host device labelling");
3391

3392 3393 3394
    if (qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Failed to remove host device cgroup ACL");

3395
    switch ((virDomainHostdevSubsysType) hostdev->source.subsys.type) {
3396 3397
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
        qemuDomainRemovePCIHostDevice(driver, vm, hostdev);
3398 3399 3400 3401
        /* QEMU might no longer need to lock as much memory, eg. we just
         * detached the last VFIO device, so adjust the limit here */
        if (qemuDomainAdjustMaxMemLock(vm) < 0)
            VIR_WARN("Failed to adjust locked memory limit");
3402 3403 3404 3405 3406 3407 3408 3409 3410 3411 3412 3413 3414 3415
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
        qemuDomainRemoveUSBHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
        qemuDomainRemoveSCSIHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_LAST:
        break;
    }

    virDomainHostdevDefFree(hostdev);

    if (net) {
3416
        networkReleaseActualDevice(vm->def, net);
3417 3418
        virDomainNetDefFree(net);
    }
3419

3420 3421 3422
    ret = 0;

 cleanup:
J
John Ferlan 已提交
3423
    VIR_FREE(drivealias);
3424
    virObjectUnref(cfg);
3425
    return ret;
3426 3427 3428
}


3429
static int
3430 3431 3432 3433 3434
qemuDomainRemoveNetDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr net)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3435
    qemuDomainObjPrivatePtr priv = vm->privateData;
3436
    virNetDevVPortProfilePtr vport;
3437
    virObjectEventPtr event;
3438
    char *hostnet_name = NULL;
3439
    char *charDevAlias = NULL;
3440
    size_t i;
3441
    int ret = -1;
3442
    int actualType = virDomainNetGetActualType(net);
3443

3444
    if (actualType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
3445
        /* this function handles all hostdev and netdev cleanup */
3446 3447
        ret = qemuDomainRemoveHostDevice(driver, vm,
                                         virDomainNetGetActualHostdev(net));
3448
        goto cleanup;
3449 3450
    }

3451 3452 3453
    VIR_DEBUG("Removing network interface %s from domain %p %s",
              net->info.alias, vm, vm->def->name);

3454
    if (virAsprintf(&hostnet_name, "host%s", net->info.alias) < 0 ||
3455
        !(charDevAlias = qemuAliasChardevFromDevAlias(net->info.alias)))
3456 3457
        goto cleanup;

3458

3459
    qemuDomainObjEnterMonitor(driver, vm);
3460
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
3461
        if (qemuMonitorRemoveNetdev(priv->mon, hostnet_name) < 0) {
3462 3463
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
3464 3465 3466 3467 3468 3469 3470 3471 3472 3473 3474
            virDomainAuditNet(vm, net, NULL, "detach", false);
            goto cleanup;
        }
    } else {
        int vlan;
        if ((vlan = qemuDomainNetVLAN(net)) < 0 ||
            qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0) {
            if (vlan < 0) {
                virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                               _("unable to determine original VLAN"));
            }
3475 3476
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
3477 3478 3479 3480
            virDomainAuditNet(vm, net, NULL, "detach", false);
            goto cleanup;
        }
    }
3481 3482 3483 3484 3485 3486 3487 3488 3489 3490 3491

    if (actualType == VIR_DOMAIN_NET_TYPE_VHOSTUSER) {
        /* vhostuser has a chardev too */
        if (qemuMonitorDetachCharDev(priv->mon, charDevAlias) < 0) {
            /* well, this is a messy situation. Guest visible PCI device has
             * been removed, netdev too but chardev not. The best seems to be
             * to just ignore the error and carry on.
             */
        }
    }

3492 3493
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3494

3495 3496 3497
    virDomainAuditNet(vm, net, NULL, "detach", true);

    event = virDomainEventDeviceRemovedNewFromObj(vm, net->info.alias);
3498
    qemuDomainEventQueue(driver, event);
3499 3500 3501 3502 3503 3504 3505 3506 3507 3508 3509

    for (i = 0; i < vm->def->nnets; i++) {
        if (vm->def->nets[i] == net) {
            virDomainNetRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
    virDomainConfNWFilterTeardown(net);

3510 3511 3512 3513 3514 3515
    if (cfg->macFilter && (net->ifname != NULL)) {
        ignore_value(ebtablesRemoveForwardAllowIn(driver->ebtables,
                                                  net->ifname,
                                                  &net->mac));
    }

3516
    if (actualType == VIR_DOMAIN_NET_TYPE_DIRECT) {
3517 3518 3519 3520 3521 3522 3523 3524 3525
        ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                         net->ifname, &net->mac,
                         virDomainNetGetActualDirectDev(net),
                         virDomainNetGetActualDirectMode(net),
                         virDomainNetGetActualVirtPortProfile(net),
                         cfg->stateDir));
    }

    vport = virDomainNetGetActualVirtPortProfile(net);
3526 3527 3528 3529 3530 3531 3532 3533 3534
    if (vport) {
        if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_MIDONET) {
            ignore_value(virNetDevMidonetUnbindPort(vport));
        } else if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH) {
            ignore_value(virNetDevOpenvswitchRemovePort(
                             virDomainNetGetActualBridgeName(net),
                             net->ifname));
        }
    }
3535

3536
    networkReleaseActualDevice(vm->def, net);
3537
    virDomainNetDefFree(net);
3538
    ret = 0;
3539 3540

 cleanup:
3541
    virObjectUnref(cfg);
3542
    VIR_FREE(charDevAlias);
3543 3544
    VIR_FREE(hostnet_name);
    return ret;
3545 3546 3547
}


3548
static int
3549
qemuDomainRemoveChrDevice(virQEMUDriverPtr driver,
3550 3551 3552
                          virDomainObjPtr vm,
                          virDomainChrDefPtr chr)
{
3553
    virObjectEventPtr event;
3554
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3555
    char *charAlias = NULL;
3556
    char *tlsAlias = NULL;
3557 3558
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret = -1;
3559
    int rc;
3560

3561 3562 3563
    VIR_DEBUG("Removing character device %s from domain %p %s",
              chr->info.alias, vm, vm->def->name);

3564
    if (!(charAlias = qemuAliasChardevFromDevAlias(chr->info.alias)))
3565 3566
        goto cleanup;

3567 3568 3569 3570 3571
    if (chr->source->type == VIR_DOMAIN_CHR_TYPE_TCP &&
        chr->source->data.tcp.haveTLS == VIR_TRISTATE_BOOL_YES &&
        !(tlsAlias = qemuAliasTLSObjFromChardevAlias(charAlias)))
        goto cleanup;

3572
    qemuDomainObjEnterMonitor(driver, vm);
3573
    rc = qemuMonitorDetachCharDev(priv->mon, charAlias);
3574 3575 3576 3577

    if (tlsAlias && qemuMonitorDelObject(priv->mon, tlsAlias) < 0)
        goto exit_monitor;

3578 3579
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3580

3581 3582 3583 3584 3585
    virDomainAuditChardev(vm, chr, NULL, "detach", rc == 0);

    if (rc < 0)
        goto cleanup;

3586
    event = virDomainEventDeviceRemovedNewFromObj(vm, chr->info.alias);
3587
    qemuDomainEventQueue(driver, event);
3588

3589 3590
    qemuDomainChrRemove(vm->def, chr);
    virDomainChrDefFree(chr);
3591 3592 3593 3594
    ret = 0;

 cleanup:
    VIR_FREE(charAlias);
3595 3596
    VIR_FREE(tlsAlias);
    virObjectUnref(cfg);
3597
    return ret;
3598 3599 3600 3601

 exit_monitor:
    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    goto cleanup;
3602 3603 3604
}


3605 3606 3607 3608 3609 3610 3611 3612
static int
qemuDomainRemoveRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
    virObjectEventPtr event;
    char *charAlias = NULL;
    char *objAlias = NULL;
3613
    char *tlsAlias = NULL;
3614 3615 3616 3617 3618 3619 3620 3621
    qemuDomainObjPrivatePtr priv = vm->privateData;
    ssize_t idx;
    int ret = -1;
    int rc;

    VIR_DEBUG("Removing RNG device %s from domain %p %s",
              rng->info.alias, vm, vm->def->name);

3622

3623 3624 3625
    if (virAsprintf(&objAlias, "obj%s", rng->info.alias) < 0)
        goto cleanup;

3626
    if (!(charAlias = qemuAliasChardevFromDevAlias(rng->info.alias)))
3627 3628
        goto cleanup;

3629 3630 3631 3632
    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD &&
        !(tlsAlias = qemuAliasTLSObjFromChardevAlias(charAlias)))
        goto cleanup;

3633
    qemuDomainObjEnterMonitor(driver, vm);
3634

3635 3636
    rc = qemuMonitorDelObject(priv->mon, objAlias);

3637
    if (rc == 0 && rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD) {
3638
        ignore_value(qemuMonitorDetachCharDev(priv->mon, charAlias));
3639 3640 3641
        if (tlsAlias)
            ignore_value(qemuMonitorDelObject(priv->mon, tlsAlias));
    }
3642 3643 3644 3645 3646 3647 3648 3649 3650

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;

    virDomainAuditRNG(vm, rng, NULL, "detach", rc == 0);

    if (rc < 0)
        goto cleanup;

3651 3652
    event = virDomainEventDeviceRemovedNewFromObj(vm, rng->info.alias);
    qemuDomainEventQueue(driver, event);
3653 3654 3655 3656 3657 3658 3659 3660 3661 3662

    if ((idx = virDomainRNGFind(vm->def, rng)) >= 0)
        virDomainRNGRemove(vm->def, idx);
    qemuDomainReleaseDeviceAddress(vm, &rng->info, NULL);
    virDomainRNGDefFree(rng);
    ret = 0;

 cleanup:
    VIR_FREE(charAlias);
    VIR_FREE(objAlias);
3663
    VIR_FREE(tlsAlias);
3664 3665 3666 3667
    return ret;
}


3668
int
3669 3670 3671 3672
qemuDomainRemoveDevice(virQEMUDriverPtr driver,
                       virDomainObjPtr vm,
                       virDomainDeviceDefPtr dev)
{
3673
    int ret = -1;
3674 3675
    switch ((virDomainDeviceType) dev->type) {
    case VIR_DOMAIN_DEVICE_DISK:
3676
        ret = qemuDomainRemoveDiskDevice(driver, vm, dev->data.disk);
3677 3678
        break;
    case VIR_DOMAIN_DEVICE_CONTROLLER:
3679
        ret = qemuDomainRemoveControllerDevice(driver, vm, dev->data.controller);
3680 3681
        break;
    case VIR_DOMAIN_DEVICE_NET:
3682
        ret = qemuDomainRemoveNetDevice(driver, vm, dev->data.net);
3683 3684
        break;
    case VIR_DOMAIN_DEVICE_HOSTDEV:
3685
        ret = qemuDomainRemoveHostDevice(driver, vm, dev->data.hostdev);
3686 3687 3688
        break;

    case VIR_DOMAIN_DEVICE_CHR:
3689
        ret = qemuDomainRemoveChrDevice(driver, vm, dev->data.chr);
3690
        break;
3691
    case VIR_DOMAIN_DEVICE_RNG:
3692
        ret = qemuDomainRemoveRNGDevice(driver, vm, dev->data.rng);
3693
        break;
3694

3695
    case VIR_DOMAIN_DEVICE_MEMORY:
3696 3697
        ret = qemuDomainRemoveMemoryDevice(driver, vm, dev->data.memory);
        break;
3698

3699 3700 3701 3702 3703 3704 3705 3706 3707 3708 3709 3710 3711
    case VIR_DOMAIN_DEVICE_NONE:
    case VIR_DOMAIN_DEVICE_LEASE:
    case VIR_DOMAIN_DEVICE_FS:
    case VIR_DOMAIN_DEVICE_INPUT:
    case VIR_DOMAIN_DEVICE_SOUND:
    case VIR_DOMAIN_DEVICE_VIDEO:
    case VIR_DOMAIN_DEVICE_WATCHDOG:
    case VIR_DOMAIN_DEVICE_GRAPHICS:
    case VIR_DOMAIN_DEVICE_HUB:
    case VIR_DOMAIN_DEVICE_REDIRDEV:
    case VIR_DOMAIN_DEVICE_SMARTCARD:
    case VIR_DOMAIN_DEVICE_MEMBALLOON:
    case VIR_DOMAIN_DEVICE_NVRAM:
3712
    case VIR_DOMAIN_DEVICE_SHMEM:
3713
    case VIR_DOMAIN_DEVICE_TPM:
3714
    case VIR_DOMAIN_DEVICE_PANIC:
J
Ján Tomko 已提交
3715
    case VIR_DOMAIN_DEVICE_IOMMU:
3716 3717 3718 3719 3720 3721
    case VIR_DOMAIN_DEVICE_LAST:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("don't know how to remove a %s device"),
                       virDomainDeviceTypeToString(dev->type));
        break;
    }
3722
    return ret;
3723 3724 3725 3726
}


static void
3727 3728
qemuDomainMarkDeviceAliasForRemoval(virDomainObjPtr vm,
                                    const char *alias)
3729 3730 3731
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

3732 3733 3734 3735 3736
    memset(&priv->unplug, 0, sizeof(priv->unplug));

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
        return;

3737
    priv->unplug.alias = alias;
3738 3739
}

3740 3741 3742 3743 3744 3745 3746 3747 3748 3749

static void
qemuDomainMarkDeviceForRemoval(virDomainObjPtr vm,
                               virDomainDeviceInfoPtr info)

{
    qemuDomainMarkDeviceAliasForRemoval(vm, info->alias);
}


3750 3751 3752 3753
static void
qemuDomainResetDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3754
    priv->unplug.alias = NULL;
3755 3756 3757
}

/* Returns:
3758 3759
 *  -1 Unplug of the device failed
 *
3760 3761 3762 3763 3764 3765 3766
 *   0 DEVICE_DELETED event is supported and removal of the device did not
 *     finish in qemuDomainRemoveDeviceWaitTime
 *
 *   1 when the caller is responsible for finishing the device removal:
 *      - DEVICE_DELETED event is unsupported
 *      - DEVICE_DELETED event arrived before the timeout time
 *      - we failed to reliably wait for the event and thus use fallback behavior
3767 3768 3769 3770 3771 3772
 */
static int
qemuDomainWaitForDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    unsigned long long until;
3773
    int rc;
3774 3775

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
3776
        return 1;
3777 3778

    if (virTimeMillisNow(&until) < 0)
3779
        return 1;
3780
    until += qemuDomainRemoveDeviceWaitTime;
3781

3782
    while (priv->unplug.alias) {
3783 3784 3785 3786 3787
        if ((rc = virDomainObjWaitUntil(vm, until)) == 1)
            return 0;

        if (rc < 0) {
            VIR_WARN("Failed to wait on unplug condition for domain '%s' "
3788
                     "device '%s'", vm->def->name, priv->unplug.alias);
3789
            return 1;
3790 3791 3792
        }
    }

3793 3794 3795 3796 3797 3798
    if (priv->unplug.status == QEMU_DOMAIN_UNPLUGGING_DEVICE_STATUS_GUEST_REJECTED) {
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("unplug of device was rejected by the guest"));
        return -1;
    }

3799 3800 3801
    return 1;
}

3802 3803 3804 3805 3806 3807 3808
/* Returns:
 *  true    there was a thread waiting for devAlias to be removed and this
 *          thread will take care of finishing the removal
 *  false   the thread that started the removal is already gone and delegate
 *          finishing the removal to a new thread
 */
bool
3809
qemuDomainSignalDeviceRemoval(virDomainObjPtr vm,
3810 3811
                              const char *devAlias,
                              qemuDomainUnpluggingDeviceStatus status)
3812 3813 3814
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

3815
    if (STREQ_NULLABLE(priv->unplug.alias, devAlias)) {
3816
        qemuDomainResetDeviceRemoval(vm);
3817
        priv->unplug.status = status;
3818
        virDomainObjBroadcast(vm);
3819
        return true;
3820
    }
3821
    return false;
3822 3823 3824
}


3825 3826 3827 3828
static int
qemuDomainDetachVirtioDiskDevice(virQEMUDriverPtr driver,
                                 virDomainObjPtr vm,
                                 virDomainDiskDefPtr detach)
3829
{
3830
    int ret = -1;
3831 3832
    qemuDomainObjPrivatePtr priv = vm->privateData;

3833
    if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
3834 3835
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
3836
                       detach->dst);
3837 3838 3839
        goto cleanup;
    }

3840
    if (qemuDomainMachineIsS390CCW(vm->def) &&
3841 3842 3843 3844 3845 3846 3847 3848 3849 3850 3851 3852 3853 3854
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid PCI address"));
            goto cleanup;
        }
3855 3856
    }

3857
    if (!detach->info.alias) {
3858 3859 3860 3861
        if (qemuAssignDeviceDiskAlias(vm->def, detach, priv->qemuCaps) < 0)
            goto cleanup;
    }

3862 3863
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3864
    qemuDomainObjEnterMonitor(driver, vm);
3865 3866
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
3867
            goto cleanup;
3868 3869
        virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
        goto cleanup;
3870
    }
3871 3872
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3873

3874
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
3875
        ret = qemuDomainRemoveDiskDevice(driver, vm, detach);
3876

3877
 cleanup:
3878
    qemuDomainResetDeviceRemoval(vm);
3879 3880 3881
    return ret;
}

3882 3883 3884 3885
static int
qemuDomainDetachDiskDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainDiskDefPtr detach)
3886
{
3887
    int ret = -1;
3888 3889
    qemuDomainObjPrivatePtr priv = vm->privateData;

3890
    if (qemuDomainDiskBlockJobIsActive(detach))
E
Eric Blake 已提交
3891 3892
        goto cleanup;

3893 3894
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3895
    qemuDomainObjEnterMonitor(driver, vm);
3896
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
3897 3898
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
            goto cleanup;
3899
        virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
3900 3901
        goto cleanup;
    }
3902 3903
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3904

3905
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
3906
        ret = qemuDomainRemoveDiskDevice(driver, vm, detach);
3907

3908
 cleanup:
3909
    qemuDomainResetDeviceRemoval(vm);
3910 3911 3912
    return ret;
}

3913 3914 3915 3916 3917 3918
static int
qemuFindDisk(virDomainDefPtr def, const char *dst)
{
    size_t i;

    for (i = 0; i < def->ndisks; i++) {
3919
        if (STREQ(def->disks[i]->dst, dst))
3920 3921 3922 3923 3924 3925 3926 3927 3928 3929 3930 3931 3932 3933 3934 3935 3936 3937 3938 3939 3940 3941 3942 3943 3944 3945 3946 3947 3948 3949 3950 3951 3952 3953 3954 3955 3956 3957 3958 3959 3960 3961 3962 3963 3964
            return i;
    }

    return -1;
}

int
qemuDomainDetachDeviceDiskLive(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainDiskDefPtr disk;
    int ret = -1;
    int idx;

    if ((idx = qemuFindDisk(vm->def, dev->data.disk->dst)) < 0) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("disk %s not found"), dev->data.disk->dst);
        return -1;
    }
    disk = vm->def->disks[idx];

    switch (disk->device) {
    case VIR_DOMAIN_DISK_DEVICE_DISK:
    case VIR_DOMAIN_DISK_DEVICE_LUN:
        if (disk->bus == VIR_DOMAIN_DISK_BUS_VIRTIO)
            ret = qemuDomainDetachVirtioDiskDevice(driver, vm, disk);
        else if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI ||
                 disk->bus == VIR_DOMAIN_DISK_BUS_USB)
            ret = qemuDomainDetachDiskDevice(driver, vm, disk);
        else
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
                           _("This type of disk cannot be hot unplugged"));
        break;
    default:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("disk device type '%s' cannot be detached"),
                       virDomainDiskDeviceTypeToString(disk->device));
        break;
    }

    return ret;
}


3965 3966 3967
static bool qemuDomainDiskControllerIsBusy(virDomainObjPtr vm,
                                           virDomainControllerDefPtr detach)
{
3968
    size_t i;
3969 3970 3971 3972 3973 3974 3975 3976 3977 3978 3979 3980 3981 3982 3983 3984 3985 3986 3987 3988 3989 3990 3991 3992 3993 3994 3995 3996 3997 3998 3999 4000 4001 4002 4003 4004 4005 4006 4007 4008 4009 4010 4011 4012 4013 4014
    virDomainDiskDefPtr disk;

    for (i = 0; i < vm->def->ndisks; i++) {
        disk = vm->def->disks[i];
        if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE)
            /* the disk does not use disk controller */
            continue;

        /* check whether the disk uses this type controller */
        if (disk->bus == VIR_DOMAIN_DISK_BUS_IDE &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_IDE)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_FDC &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_FDC)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (disk->info.addr.drive.controller == detach->idx)
            return true;
    }

    return false;
}

static bool qemuDomainControllerIsBusy(virDomainObjPtr vm,
                                       virDomainControllerDefPtr detach)
{
    switch (detach->type) {
    case VIR_DOMAIN_CONTROLLER_TYPE_IDE:
    case VIR_DOMAIN_CONTROLLER_TYPE_FDC:
    case VIR_DOMAIN_CONTROLLER_TYPE_SCSI:
        return qemuDomainDiskControllerIsBusy(vm, detach);

    case VIR_DOMAIN_CONTROLLER_TYPE_SATA:
    case VIR_DOMAIN_CONTROLLER_TYPE_VIRTIO_SERIAL:
    case VIR_DOMAIN_CONTROLLER_TYPE_CCID:
    default:
        /* libvirt does not support sata controller, and does not support to
         * detach virtio and smart card controller.
         */
        return true;
    }
}

4015 4016 4017
int qemuDomainDetachControllerDevice(virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainDeviceDefPtr dev)
4018
{
4019
    int idx, ret = -1;
4020 4021 4022
    virDomainControllerDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;

4023 4024 4025
    if ((idx = virDomainControllerFind(vm->def,
                                       dev->data.controller->type,
                                       dev->data.controller->idx)) < 0) {
4026
        virReportError(VIR_ERR_OPERATION_FAILED,
4027
                       _("controller %s:%d not found"),
4028 4029
                       virDomainControllerTypeToString(dev->data.controller->type),
                       dev->data.controller->idx);
4030 4031 4032
        goto cleanup;
    }

4033 4034
    detach = vm->def->controllers[idx];

4035 4036 4037 4038 4039 4040
    if (detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI &&
        detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW &&
        detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("device with '%s' address cannot be detached"),
                       virDomainDeviceAddressTypeToString(detach->info.type));
4041 4042 4043
        goto cleanup;
    }

4044 4045 4046 4047 4048 4049 4050 4051 4052
    if (!virDomainDeviceAddressIsValid(&detach->info, detach->info.type)) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("device with invalid '%s' address cannot be detached"),
                       virDomainDeviceAddressTypeToString(detach->info.type));
        goto cleanup;
    }

    if (detach->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI &&
        qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
4053 4054 4055
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
                       dev->data.disk->dst);
4056 4057 4058
        goto cleanup;
    }

4059
    if (qemuDomainControllerIsBusy(vm, detach)) {
4060 4061
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("device cannot be detached: device is busy"));
4062 4063 4064
        goto cleanup;
    }

4065
    if (!detach->info.alias) {
4066
        if (qemuAssignDeviceControllerAlias(vm->def, priv->qemuCaps, detach) < 0)
4067 4068 4069
            goto cleanup;
    }

4070 4071
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

4072
    qemuDomainObjEnterMonitor(driver, vm);
4073 4074 4075
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias)) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        goto cleanup;
4076
    }
4077 4078
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
4079

4080
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4081
        ret = qemuDomainRemoveControllerDevice(driver, vm, detach);
4082

4083
 cleanup:
4084
    qemuDomainResetDeviceRemoval(vm);
4085 4086 4087
    return ret;
}

4088
static int
4089
qemuDomainDetachHostPCIDevice(virQEMUDriverPtr driver,
4090
                              virDomainObjPtr vm,
4091
                              virDomainHostdevDefPtr detach)
4092 4093
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
4094
    virDomainHostdevSubsysPCIPtr pcisrc = &detach->source.subsys.u.pci;
4095
    int ret;
4096

4097
    if (qemuIsMultiFunctionDevice(vm->def, detach->info)) {
4098 4099
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %.4x:%.2x:%.2x.%.1x"),
4100 4101
                       pcisrc->addr.domain, pcisrc->addr.bus,
                       pcisrc->addr.slot, pcisrc->addr.function);
4102
        return -1;
4103 4104
    }

4105
    if (!virDomainDeviceAddressIsValid(detach->info,
4106
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
4107 4108
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a PCI address"));
4109
        return -1;
4110 4111
    }

4112 4113
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

4114
    qemuDomainObjEnterMonitor(driver, vm);
4115
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
4116 4117
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
4118 4119 4120 4121

    return ret;
}

4122
static int
4123
qemuDomainDetachHostUSBDevice(virQEMUDriverPtr driver,
4124
                              virDomainObjPtr vm,
4125
                              virDomainHostdevDefPtr detach)
4126 4127
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
4128
    int ret;
4129

4130
    if (!detach->info->alias) {
4131 4132
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
4133 4134 4135
        return -1;
    }

4136 4137
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

4138
    qemuDomainObjEnterMonitor(driver, vm);
4139
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
4140 4141
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
4142 4143 4144 4145

    return ret;
}

4146
static int
4147
qemuDomainDetachHostSCSIDevice(virQEMUDriverPtr driver,
4148 4149 4150 4151 4152 4153 4154 4155 4156 4157 4158 4159
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr detach)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret = -1;

    if (!detach->info->alias) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
        return -1;
    }

4160 4161
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

4162
    qemuDomainObjEnterMonitor(driver, vm);
4163 4164 4165 4166
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
4167 4168 4169 4170 4171

    return ret;
}

static int
4172
qemuDomainDetachThisHostDevice(virQEMUDriverPtr driver,
4173
                               virDomainObjPtr vm,
4174
                               virDomainHostdevDefPtr detach)
4175
{
4176
    int ret = -1;
4177

4178
    if (!detach->info->alias) {
4179
        if (qemuAssignDeviceHostdevAlias(vm->def, &detach->info->alias, -1) < 0)
4180 4181 4182
            return -1;
    }

4183
    switch (detach->source.subsys.type) {
4184
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
4185
        ret = qemuDomainDetachHostPCIDevice(driver, vm, detach);
4186
        break;
4187
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
4188
        ret = qemuDomainDetachHostUSBDevice(driver, vm, detach);
4189
        break;
4190
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
4191
        ret = qemuDomainDetachHostSCSIDevice(driver, vm, detach);
4192
        break;
4193
    default:
4194 4195 4196
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(detach->source.subsys.type));
4197 4198 4199
        return -1;
    }

4200
    if (ret < 0) {
4201 4202
        if (virDomainObjIsActive(vm))
            virDomainAuditHostdev(vm, detach, "detach", false);
4203 4204
    } else if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1) {
        ret = qemuDomainRemoveHostDevice(driver, vm, detach);
4205
    }
4206

4207 4208
    qemuDomainResetDeviceRemoval(vm);

4209 4210
    return ret;
}
4211

4212
/* search for a hostdev matching dev and detach it */
4213
int qemuDomainDetachHostDevice(virQEMUDriverPtr driver,
4214 4215 4216 4217 4218
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainHostdevDefPtr hostdev = dev->data.hostdev;
    virDomainHostdevSubsysPtr subsys = &hostdev->source.subsys;
4219
    virDomainHostdevSubsysUSBPtr usbsrc = &subsys->u.usb;
4220
    virDomainHostdevSubsysPCIPtr pcisrc = &subsys->u.pci;
4221
    virDomainHostdevSubsysSCSIPtr scsisrc = &subsys->u.scsi;
4222 4223 4224 4225
    virDomainHostdevDefPtr detach = NULL;
    int idx;

    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
4226 4227 4228
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
4229 4230 4231 4232 4233 4234
        return -1;
    }

    idx = virDomainHostdevFind(vm->def, hostdev, &detach);

    if (idx < 0) {
4235
        switch (subsys->type) {
4236
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
4237 4238
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("host pci device %.4x:%.2x:%.2x.%.1x not found"),
4239 4240
                           pcisrc->addr.domain, pcisrc->addr.bus,
                           pcisrc->addr.slot, pcisrc->addr.function);
4241 4242
            break;
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
4243
            if (usbsrc->bus && usbsrc->device) {
4244 4245
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device %03d.%03d not found"),
4246
                               usbsrc->bus, usbsrc->device);
4247
            } else {
4248 4249
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device vendor=0x%.4x product=0x%.4x not found"),
4250
                               usbsrc->vendor, usbsrc->product);
4251 4252
            }
            break;
4253
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI: {
4254 4255 4256 4257 4258 4259 4260 4261 4262 4263
            if (scsisrc->protocol ==
                VIR_DOMAIN_HOSTDEV_SCSI_PROTOCOL_TYPE_ISCSI) {
                virDomainHostdevSubsysSCSIiSCSIPtr iscsisrc = &scsisrc->u.iscsi;
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host scsi iSCSI path %s not found"),
                               iscsisrc->path);
            } else {
                 virDomainHostdevSubsysSCSIHostPtr scsihostsrc =
                     &scsisrc->u.host;
                 virReportError(VIR_ERR_OPERATION_FAILED,
4264
                                _("host scsi device %s:%u:%u.%llu not found"),
4265 4266 4267
                                scsihostsrc->adapter, scsihostsrc->bus,
                                scsihostsrc->target, scsihostsrc->unit);
            }
4268
            break;
4269
        }
4270
        default:
4271 4272
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("unexpected hostdev type %d"), subsys->type);
4273 4274 4275 4276 4277
            break;
        }
        return -1;
    }

4278 4279 4280 4281
    /* If this is a network hostdev, we need to use the higher-level detach
     * function so that mac address / virtualport are reset
     */
    if (detach->parent.type == VIR_DOMAIN_DEVICE_NET)
4282
        return qemuDomainDetachNetDevice(driver, vm, &detach->parent);
4283
    else
4284
        return qemuDomainDetachThisHostDevice(driver, vm, detach);
4285 4286
}

4287
int
4288
qemuDomainDetachNetDevice(virQEMUDriverPtr driver,
4289 4290 4291
                          virDomainObjPtr vm,
                          virDomainDeviceDefPtr dev)
{
4292
    int detachidx, ret = -1;
4293 4294 4295
    virDomainNetDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;

4296
    if ((detachidx = virDomainNetFindIdx(vm->def, dev->data.net)) < 0)
4297
        goto cleanup;
4298

4299
    detach = vm->def->nets[detachidx];
4300

4301
    if (virDomainNetGetActualType(detach) == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
4302
        /* coverity[negative_returns] */
4303
        ret = qemuDomainDetachThisHostDevice(driver, vm,
4304
                                             virDomainNetGetActualHostdev(detach));
4305 4306
        goto cleanup;
    }
4307
    if (qemuDomainMachineIsS390CCW(vm->def) &&
4308 4309 4310 4311 4312 4313 4314 4315 4316 4317 4318 4319 4320 4321
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a PCI address"));
            goto cleanup;
        }
4322

4323 4324 4325 4326 4327 4328
        if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            _("cannot hot unplug multifunction PCI device :%s"),
                            dev->data.disk->dst);
            goto cleanup;
        }
4329 4330
    }

4331
    if (!detach->info.alias) {
4332 4333 4334 4335
        if (qemuAssignDeviceNetAlias(vm->def, detach, -1) < 0)
            goto cleanup;
    }

4336 4337
    if (virDomainNetGetActualBandwidth(detach) &&
        virNetDevSupportBandwidth(virDomainNetGetActualType(detach)) &&
4338 4339 4340 4341
        virNetDevBandwidthClear(detach->ifname) < 0)
        VIR_WARN("cannot clear bandwidth setting for device : %s",
                 detach->ifname);

4342 4343 4344
    /* deactivate the tap/macvtap device on the host, which could also
     * affect the parent device (e.g. macvtap passthrough mode sets
     * the parent device offline)
4345 4346 4347
     */
    ignore_value(qemuInterfaceStopDevice(detach));

4348 4349
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

4350
    qemuDomainObjEnterMonitor(driver, vm);
4351 4352
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
4353
            goto cleanup;
4354 4355
        virDomainAuditNet(vm, detach, NULL, "detach", false);
        goto cleanup;
4356
    }
4357 4358
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
4359

4360
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4361
        ret = qemuDomainRemoveNetDevice(driver, vm, detach);
4362

4363
 cleanup:
4364
    qemuDomainResetDeviceRemoval(vm);
4365 4366 4367
    return ret;
}

4368
int
4369
qemuDomainChangeGraphicsPasswords(virQEMUDriverPtr driver,
4370 4371 4372
                                  virDomainObjPtr vm,
                                  int type,
                                  virDomainGraphicsAuthDefPtr auth,
4373 4374
                                  const char *defaultPasswd,
                                  int asyncJob)
4375 4376 4377
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    time_t now = time(NULL);
4378 4379
    const char *expire;
    char *validTo = NULL;
4380
    const char *connected = NULL;
4381
    const char *password;
4382 4383
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
4384

4385
    if (!auth->passwd && !defaultPasswd) {
4386 4387 4388
        ret = 0;
        goto cleanup;
    }
4389
    password = auth->passwd ? auth->passwd : defaultPasswd;
4390

4391 4392 4393
    if (auth->connected)
        connected = virDomainGraphicsAuthConnectedTypeToString(auth->connected);

4394 4395
    if (qemuDomainObjEnterMonitorAsync(driver, vm, asyncJob) < 0)
        goto cleanup;
4396
    ret = qemuMonitorSetPassword(priv->mon, type, password, connected);
4397 4398 4399

    if (ret == -2) {
        if (type != VIR_DOMAIN_GRAPHICS_TYPE_VNC) {
4400 4401
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Graphics password only supported for VNC"));
4402 4403
            ret = -1;
        } else {
4404
            ret = qemuMonitorSetVNCPassword(priv->mon, password);
4405 4406
        }
    }
4407
    if (ret != 0)
4408
        goto end_job;
4409

4410 4411 4412
    if (password[0] == '\0' ||
        (auth->expires && auth->validTo <= now)) {
        expire = "now";
4413
    } else if (auth->expires) {
4414 4415 4416
        if (virAsprintf(&validTo, "%lu", (unsigned long) auth->validTo) < 0)
            goto end_job;
        expire = validTo;
4417
    } else {
4418
        expire = "never";
4419 4420
    }

4421
    ret = qemuMonitorExpirePassword(priv->mon, type, expire);
4422 4423 4424 4425

    if (ret == -2) {
        /* XXX we could fake this with a timer */
        if (auth->expires) {
4426 4427
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Expiry of passwords is not supported"));
4428
            ret = -1;
4429 4430
        } else {
            ret = 0;
4431 4432 4433
        }
    }

4434
 end_job:
4435 4436
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
4437
 cleanup:
4438
    VIR_FREE(validTo);
4439
    virObjectUnref(cfg);
4440 4441
    return ret;
}
4442

4443
int qemuDomainAttachLease(virQEMUDriverPtr driver,
4444 4445 4446
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
4447 4448 4449
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);

4450
    if (virDomainLeaseInsertPreAlloc(vm->def) < 0)
4451
        goto cleanup;
4452

4453
    if (virDomainLockLeaseAttach(driver->lockManager, cfg->uri,
4454
                                 vm, lease) < 0) {
4455
        virDomainLeaseInsertPreAlloced(vm->def, NULL);
4456
        goto cleanup;
4457 4458 4459
    }

    virDomainLeaseInsertPreAlloced(vm->def, lease);
4460 4461
    ret = 0;

4462
 cleanup:
4463 4464
    virObjectUnref(cfg);
    return ret;
4465 4466
}

4467
int qemuDomainDetachLease(virQEMUDriverPtr driver,
4468 4469 4470
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
4471
    virDomainLeaseDefPtr det_lease;
4472
    int idx;
4473

4474
    if ((idx = virDomainLeaseIndex(vm->def, lease)) < 0) {
4475 4476 4477
        virReportError(VIR_ERR_INVALID_ARG,
                       _("Lease %s in lockspace %s does not exist"),
                       lease->key, NULLSTR(lease->lockspace));
4478 4479 4480 4481 4482 4483
        return -1;
    }

    if (virDomainLockLeaseDetach(driver->lockManager, vm, lease) < 0)
        return -1;

4484
    det_lease = virDomainLeaseRemoveAt(vm->def, idx);
4485
    virDomainLeaseDefFree(det_lease);
4486 4487
    return 0;
}
4488 4489 4490 4491 4492 4493 4494 4495 4496 4497 4498 4499 4500 4501

int qemuDomainDetachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainDefPtr vmdef = vm->def;
    virDomainChrDefPtr tmpChr;
    char *devstr = NULL;

    if (!(tmpChr = virDomainChrFind(vmdef, chr))) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
4502
        goto cleanup;
4503 4504
    }

P
Pavel Hrdina 已提交
4505
    if (!tmpChr->info.alias && qemuAssignDeviceChrAlias(vmdef, tmpChr, -1) < 0)
4506
        goto cleanup;
P
Pavel Hrdina 已提交
4507 4508 4509

    sa_assert(tmpChr->info.alias);

4510
    if (qemuBuildChrDeviceStr(&devstr, vmdef, chr, priv->qemuCaps) < 0)
4511
        goto cleanup;
4512

4513 4514
    qemuDomainMarkDeviceForRemoval(vm, &tmpChr->info);

4515
    qemuDomainObjEnterMonitor(driver, vm);
4516 4517 4518 4519
    if (devstr && qemuMonitorDelDevice(priv->mon, tmpChr->info.alias) < 0) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        goto cleanup;
    }
4520 4521
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
4522

4523
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1) {
4524
        qemuDomainReleaseDeviceAddress(vm, &tmpChr->info, NULL);
4525
        ret = qemuDomainRemoveChrDevice(driver, vm, tmpChr);
4526 4527
    }

4528
 cleanup:
4529
    qemuDomainResetDeviceRemoval(vm);
4530 4531 4532
    VIR_FREE(devstr);
    return ret;
}
4533 4534 4535 4536 4537 4538 4539 4540 4541 4542 4543 4544 4545 4546 4547 4548 4549 4550 4551 4552 4553 4554 4555 4556 4557 4558 4559 4560 4561 4562 4563 4564 4565 4566


int
qemuDomainDetachRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    ssize_t idx;
    virDomainRNGDefPtr tmpRNG;
    int rc;
    int ret = -1;

    if ((idx = virDomainRNGFind(vm->def, rng) < 0)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return -1;
    }

    tmpRNG = vm->def->rngs[idx];

    if (!tmpRNG->info.alias) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("alias not set for RNG device"));
        return -1;
    }

    qemuDomainMarkDeviceForRemoval(vm, &tmpRNG->info);

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelDevice(priv->mon, tmpRNG->info.alias);
    if (qemuDomainObjExitMonitor(driver, vm) || rc < 0)
        goto cleanup;

4567
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4568 4569 4570 4571 4572 4573
        ret = qemuDomainRemoveRNGDevice(driver, vm, tmpRNG);

 cleanup:
    qemuDomainResetDeviceRemoval(vm);
    return ret;
}
4574 4575 4576 4577 4578 4579 4580 4581 4582 4583 4584 4585 4586


int
qemuDomainDetachMemoryDevice(virQEMUDriverPtr driver,
                             virDomainObjPtr vm,
                             virDomainMemoryDefPtr memdef)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainMemoryDefPtr mem;
    int idx;
    int rc;
    int ret = -1;

4587
    qemuDomainMemoryDeviceAlignSize(vm->def, memdef);
4588 4589 4590 4591 4592 4593 4594 4595 4596 4597 4598 4599 4600 4601 4602 4603 4604 4605 4606 4607 4608 4609

    if ((idx = virDomainMemoryFindByDef(vm->def, memdef)) < 0) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return -1;
    }

    mem = vm->def->mems[idx];

    if (!mem->info.alias) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("alias for the memory device was not found"));
        return -1;
    }

    qemuDomainMarkDeviceForRemoval(vm, &mem->info);

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelDevice(priv->mon, mem->info.alias);
    if (qemuDomainObjExitMonitor(driver, vm) < 0 || rc < 0)
        goto cleanup;

4610
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4611 4612 4613 4614 4615 4616
        ret = qemuDomainRemoveMemoryDevice(driver, vm, mem);

 cleanup:
    qemuDomainResetDeviceRemoval(vm);
    return ret;
}
4617 4618 4619 4620 4621 4622 4623 4624 4625 4626 4627 4628 4629 4630 4631 4632 4633 4634 4635 4636 4637 4638 4639 4640 4641 4642 4643 4644 4645 4646 4647 4648 4649 4650 4651 4652 4653 4654 4655 4656 4657 4658 4659 4660 4661 4662 4663 4664 4665 4666 4667 4668 4669 4670 4671 4672 4673 4674 4675 4676 4677 4678 4679 4680 4681 4682 4683 4684 4685 4686 4687 4688 4689 4690 4691 4692 4693 4694 4695 4696 4697 4698 4699 4700 4701 4702 4703 4704 4705 4706 4707 4708 4709 4710 4711 4712 4713 4714 4715 4716 4717 4718 4719 4720 4721 4722 4723 4724


static int
qemuDomainRemoveVcpu(virQEMUDriverPtr driver,
                     virDomainObjPtr vm,
                     unsigned int vcpu)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainVcpuDefPtr vcpuinfo = virDomainDefGetVcpu(vm->def, vcpu);
    qemuDomainVcpuPrivatePtr vcpupriv = QEMU_DOMAIN_VCPU_PRIVATE(vcpuinfo);
    int oldvcpus = virDomainDefGetVcpus(vm->def);
    unsigned int nvcpus = vcpupriv->vcpus;
    size_t i;

    if (qemuDomainRefreshVcpuInfo(driver, vm, QEMU_ASYNC_JOB_NONE, false) < 0)
        return -1;

    /* validation requires us to set the expected state prior to calling it */
    for (i = vcpu; i < vcpu + nvcpus; i++) {
        vcpuinfo = virDomainDefGetVcpu(vm->def, i);
        vcpuinfo->online = false;
    }

    if (qemuDomainValidateVcpuInfo(vm) < 0) {
        /* rollback vcpu count if the setting has failed */
        virDomainAuditVcpu(vm, oldvcpus, oldvcpus - nvcpus, "update", false);

        for (i = vcpu; i < vcpu + nvcpus; i++) {
            vcpuinfo = virDomainDefGetVcpu(vm->def, i);
            vcpuinfo->online = true;
        }
        return -1;
    }

    virDomainAuditVcpu(vm, oldvcpus, oldvcpus - nvcpus, "update", true);

    for (i = vcpu; i < vcpu + nvcpus; i++) {
        vcpuinfo = virDomainDefGetVcpu(vm->def, i);
        if (virCgroupDelThread(priv->cgroup, VIR_CGROUP_THREAD_VCPU, i) < 0)
            return -1;
    }

    return 0;
}


void
qemuDomainRemoveVcpuAlias(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          const char *alias)
{
    virDomainVcpuDefPtr vcpu;
    qemuDomainVcpuPrivatePtr vcpupriv;
    size_t i;

    for (i = 0; i < virDomainDefGetVcpusMax(vm->def); i++) {
        vcpu = virDomainDefGetVcpu(vm->def, i);
        vcpupriv = QEMU_DOMAIN_VCPU_PRIVATE(vcpu);

        if (STREQ_NULLABLE(alias, vcpupriv->alias)) {
            qemuDomainRemoveVcpu(driver, vm, i);
            return;
        }
    }
}


int
qemuDomainHotplugDelVcpu(virQEMUDriverPtr driver,
                         virDomainObjPtr vm,
                         unsigned int vcpu)
{
    virDomainVcpuDefPtr vcpuinfo = virDomainDefGetVcpu(vm->def, vcpu);
    qemuDomainVcpuPrivatePtr vcpupriv = QEMU_DOMAIN_VCPU_PRIVATE(vcpuinfo);
    int oldvcpus = virDomainDefGetVcpus(vm->def);
    unsigned int nvcpus = vcpupriv->vcpus;
    int rc;

    if (!vcpupriv->alias) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("vcpu '%u' can't be unplugged"), vcpu);
        return -1;
    }

    qemuDomainMarkDeviceAliasForRemoval(vm, vcpupriv->alias);

    qemuDomainObjEnterMonitor(driver, vm);

    rc = qemuMonitorDelDevice(qemuDomainGetMonitor(vm), vcpupriv->alias);

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;

    if (rc < 0) {
        virDomainAuditVcpu(vm, oldvcpus, oldvcpus - nvcpus, "update", false);
        return -1;
    }

    if ((rc = qemuDomainWaitForDeviceRemoval(vm)) <= 0) {
        if (rc == 0)
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("vcpu unplug request timed out"));

        return -1;
    }

    return qemuDomainRemoveVcpu(driver, vm, vcpu);
}