qemu_hotplug.c 145.9 KB
Newer Older
1
/*
2
 * qemu_hotplug.c: QEMU device hotplug management
3
 *
4
 * Copyright (C) 2006-2016 Red Hat, Inc.
5 6 7 8 9 10 11 12 13 14 15 16 17
 * Copyright (C) 2006 Daniel P. Berrange
 *
 * This library is free software; you can redistribute it and/or
 * modify it under the terms of the GNU Lesser General Public
 * License as published by the Free Software Foundation; either
 * version 2.1 of the License, or (at your option) any later version.
 *
 * This library is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 * Lesser General Public License for more details.
 *
 * You should have received a copy of the GNU Lesser General Public
18
 * License along with this library.  If not, see
O
Osier Yang 已提交
19
 * <http://www.gnu.org/licenses/>.
20 21 22 23 24 25 26 27
 *
 * Author: Daniel P. Berrange <berrange@redhat.com>
 */


#include <config.h>

#include "qemu_hotplug.h"
28
#include "qemu_hotplugpriv.h"
29
#include "qemu_alias.h"
30 31
#include "qemu_capabilities.h"
#include "qemu_domain.h"
32
#include "qemu_domain_address.h"
33 34
#include "qemu_command.h"
#include "qemu_hostdev.h"
35
#include "qemu_interface.h"
36
#include "qemu_process.h"
37
#include "domain_audit.h"
38
#include "netdev_bandwidth_conf.h"
39
#include "domain_nwfilter.h"
40
#include "virlog.h"
41
#include "datatypes.h"
42
#include "virerror.h"
43
#include "viralloc.h"
44
#include "virpci.h"
E
Eric Blake 已提交
45
#include "virfile.h"
46
#include "virprocess.h"
47
#include "qemu_cgroup.h"
48
#include "locking/domain_lock.h"
49
#include "network/bridge_driver.h"
50 51
#include "virnetdev.h"
#include "virnetdevbridge.h"
A
Ansis Atteka 已提交
52
#include "virnetdevtap.h"
53
#include "virnetdevopenvswitch.h"
54
#include "virnetdevmidonet.h"
55
#include "device_conf.h"
56
#include "virstoragefile.h"
57
#include "virstring.h"
58
#include "virtime.h"
59
#include "storage/storage_driver.h"
60 61

#define VIR_FROM_THIS VIR_FROM_QEMU
62 63 64

VIR_LOG_INIT("qemu.qemu_hotplug");

65
#define CHANGE_MEDIA_TIMEOUT 5000
66

67 68 69 70
/* Wait up to 5 seconds for device removal to finish. */
unsigned long long qemuDomainRemoveDeviceWaitTime = 1000ull * 5;


71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147
/**
 * qemuDomainPrepareDisk:
 * @driver: qemu driver struct
 * @vm: domain object
 * @disk: disk to prepare
 * @overridesrc: Source different than @disk->src when necessary
 * @teardown: Teardown the disk instead of adding it to a vm
 *
 * Setup the locks, cgroups and security permissions on a disk of a VM.
 * If @overridesrc is specified the source struct is used instead of the
 * one present in @disk. If @teardown is true, then the labels and cgroups
 * are removed instead.
 *
 * Returns 0 on success and -1 on error. Reports libvirt error.
 */
static int
qemuDomainPrepareDisk(virQEMUDriverPtr driver,
                      virDomainObjPtr vm,
                      virDomainDiskDefPtr disk,
                      virStorageSourcePtr overridesrc,
                      bool teardown)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    int ret = -1;
    virStorageSourcePtr origsrc = NULL;

    if (overridesrc) {
        origsrc = disk->src;
        disk->src = overridesrc;
    }

    /* just tear down the disk access */
    if (teardown) {
        ret = 0;
        goto rollback_cgroup;
    }

    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
                                vm, disk) < 0)
        goto cleanup;

    if (virSecurityManagerSetDiskLabel(driver->securityManager,
                                       vm->def, disk) < 0)
        goto rollback_lock;

    if (qemuSetupDiskCgroup(vm, disk) < 0)
        goto rollback_label;

    ret = 0;
    goto cleanup;

 rollback_cgroup:
    if (qemuTeardownDiskCgroup(vm, disk) < 0)
        VIR_WARN("Unable to tear down cgroup access on %s",
                 virDomainDiskGetSource(disk));

 rollback_label:
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
        VIR_WARN("Unable to restore security label on %s",
                 virDomainDiskGetSource(disk));

 rollback_lock:
    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
        VIR_WARN("Unable to release lock on %s",
                 virDomainDiskGetSource(disk));

 cleanup:
    if (origsrc)
        disk->src = origsrc;

    virObjectUnref(cfg);

    return ret;
}


148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165
static int
qemuHotplugWaitForTrayEject(virQEMUDriverPtr driver,
                            virDomainObjPtr vm,
                            virDomainDiskDefPtr disk,
                            const char *driveAlias,
                            bool force)
{
    unsigned long long now;
    int rc;

    if (virTimeMillisNow(&now) < 0)
        return -1;

    while (disk->tray_status != VIR_DOMAIN_DISK_TRAY_OPEN) {
        if ((rc = virDomainObjWaitUntil(vm, now + CHANGE_MEDIA_TIMEOUT)) < 0)
            return -1;

        if (rc > 0) {
166 167 168 169 170 171
            /* the caller called qemuMonitorEjectMedia which usually reports an
             * error. Report the failure in an off-chance that it didn't. */
            if (!virGetLastError()) {
                virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                               _("timed out waiting for disk tray status update"));
            }
172 173 174 175 176 177 178 179 180 181 182 183 184 185
            return -1;
        }
    }

    /* re-issue ejection command to pop out the media */
    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorEjectMedia(qemuDomainGetMonitor(vm), driveAlias, force);
    if (qemuDomainObjExitMonitor(driver, vm) < 0 || rc < 0)
        return -1;

    return 0;
}


186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206
/**
 * qemuDomainChangeEjectableMedia:
 * @driver: qemu driver structure
 * @vm: domain definition
 * @disk: disk definition to change the source of
 * @newsrc: new disk source to change to
 * @force: force the change of media
 *
 * Change the media in an ejectable device to the one described by
 * @newsrc. This function also removes the old source from the
 * shared device table if appropriate. Note that newsrc is consumed
 * on success and the old source is freed on success.
 *
 * Returns 0 on success, -1 on error and reports libvirt error
 */
int
qemuDomainChangeEjectableMedia(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDiskDefPtr disk,
                               virStorageSourcePtr newsrc,
                               bool force)
207
{
208
    int ret = -1, rc;
209
    char *driveAlias = NULL;
210
    qemuDomainObjPrivatePtr priv = vm->privateData;
211
    qemuDomainDiskPrivatePtr diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
212
    const char *format = NULL;
213
    char *sourcestr = NULL;
214

215
    if (!disk->info.alias) {
216
        virReportError(VIR_ERR_INTERNAL_ERROR,
217
                       _("missing disk device alias name for %s"), disk->dst);
218
        goto cleanup;
219 220
    }

221 222
    if (disk->device != VIR_DOMAIN_DISK_DEVICE_FLOPPY &&
        disk->device != VIR_DOMAIN_DISK_DEVICE_CDROM) {
223 224
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("Removable media not supported for %s device"),
225
                       virDomainDiskDeviceTypeToString(disk->device));
226
        goto cleanup;
227 228
    }

229
    if (qemuDomainPrepareDisk(driver, vm, disk, newsrc, false) < 0)
230
        goto cleanup;
231

232
    if (!(driveAlias = qemuAliasFromDisk(disk)))
233 234
        goto error;

235 236 237 238
    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorEjectMedia(priv->mon, driveAlias, force);
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
239

240 241 242
    /* If the tray is present and tray change event is supported wait for it to open. */
    if (diskPriv->tray &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_TRAY_MOVED)) {
243 244
        rc = qemuHotplugWaitForTrayEject(driver, vm, disk, driveAlias, force);
        if (rc < 0)
245
            goto error;
246 247 248 249 250
    } else  {
        /* otherwise report possible errors from the attempt to eject the media*/
        if (rc < 0)
            goto error;
    }
251

252
    if (!virStorageSourceIsEmpty(newsrc)) {
253
        if (qemuGetDriveSourceString(newsrc, diskPriv->secinfo, &sourcestr) < 0)
254 255
            goto error;

256 257 258
        if (virStorageSourceGetActualType(newsrc) != VIR_STORAGE_TYPE_DIR) {
            if (newsrc->format > 0) {
                format = virStorageFileFormatTypeToString(newsrc->format);
259
            } else {
260 261
                if (disk->src->format > 0)
                    format = virStorageFileFormatTypeToString(disk->src->format);
262
            }
263
        }
264
        qemuDomainObjEnterMonitor(driver, vm);
265 266 267 268 269
        rc = qemuMonitorChangeMedia(priv->mon,
                                    driveAlias,
                                    sourcestr,
                                    format);
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
270
            goto cleanup;
271
    }
272

273
    virDomainAuditDisk(vm, disk->src, newsrc, "update", rc >= 0);
274

275
    if (rc < 0)
276 277
        goto error;

278 279
    /* remove the old source from shared device list */
    ignore_value(qemuRemoveSharedDisk(driver, disk, vm->def->name));
280
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
281

282 283 284
    virStorageSourceFree(disk->src);
    disk->src = newsrc;
    newsrc = NULL;
285
    ret = 0;
286

287
 cleanup:
288
    VIR_FREE(driveAlias);
289
    VIR_FREE(sourcestr);
290 291
    return ret;

292
 error:
293 294
    virDomainAuditDisk(vm, disk->src, newsrc, "update", false);
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, newsrc, true));
295
    goto cleanup;
296 297
}

298

299 300 301 302 303
static int
qemuDomainAttachVirtioDiskDevice(virConnectPtr conn,
                                 virQEMUDriverPtr driver,
                                 virDomainObjPtr vm,
                                 virDomainDiskDefPtr disk)
304
{
305
    int ret = -1;
306
    int rv;
307
    qemuDomainObjPrivatePtr priv = vm->privateData;
308
    virErrorPtr orig_err;
309 310
    char *devstr = NULL;
    char *drivestr = NULL;
311
    char *drivealias = NULL;
312
    bool releaseaddr = false;
313
    bool driveAdded = false;
314
    bool secobjAdded = false;
315
    bool encobjAdded = false;
316
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
317
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
318
    const char *src = virDomainDiskGetSource(disk);
319
    virJSONValuePtr secobjProps = NULL;
320
    virJSONValuePtr encobjProps = NULL;
321 322
    qemuDomainDiskPrivatePtr diskPriv;
    qemuDomainSecretInfoPtr secinfo;
323
    qemuDomainSecretInfoPtr encinfo;
324

325
    if (!disk->info.type) {
326
        if (qemuDomainMachineIsS390CCW(vm->def) &&
327 328 329 330
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
331 332 333 334
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, disk->info, priv->qemuCaps,
                                            disk->dst))
            goto cleanup;
335 336
    }

337
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
338
        goto cleanup;
339

340
    if (disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
341 342 343
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto error;
        if (virDomainCCWAddressAssign(&disk->info, ccwaddrs,
344
                                      !disk->info.addr.ccw.assigned) < 0)
345
            goto error;
346 347 348
    } else if (!disk->info.type ||
                disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &disk->info) < 0)
349
            goto error;
350 351 352 353
    }
    releaseaddr = true;
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
354

J
John Ferlan 已提交
355
    if (qemuDomainSecretDiskPrepare(conn, priv, disk) < 0)
356 357
        goto error;

358 359 360 361 362 363 364
    diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
    secinfo = diskPriv->secinfo;
    if (secinfo && secinfo->type == VIR_DOMAIN_SECRET_INFO_TYPE_AES) {
        if (qemuBuildSecretInfoProps(secinfo, &secobjProps) < 0)
            goto error;
    }

365 366 367 368
    encinfo = diskPriv->encinfo;
    if (encinfo && qemuBuildSecretInfoProps(encinfo, &encobjProps) < 0)
        goto error;

369
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
370
        goto error;
371

372
    if (!(drivealias = qemuAliasFromDisk(disk)))
373 374 375 376
        goto error;

    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
377

378
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
379 380
        goto error;

381
    qemuDomainObjEnterMonitor(driver, vm);
382

383 384 385 386 387
    if (secobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", secinfo->s.aes.alias,
                                  secobjProps);
        secobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
388
            goto exit_monitor;
389
        secobjAdded = true;
390 391
    }

392 393 394 395 396 397
    if (encobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", encinfo->s.aes.alias,
                                  encobjProps);
        encobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
            goto exit_monitor;
398
        encobjAdded = true;
399 400
    }

401
    if (qemuMonitorAddDrive(priv->mon, drivestr) < 0)
402 403
        goto exit_monitor;
    driveAdded = true;
404 405

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
406
        goto exit_monitor;
407

408 409
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        releaseaddr = false;
410
        goto error;
411
    }
412

413
    virDomainAuditDisk(vm, NULL, disk->src, "attach", true);
414 415

    virDomainDiskInsertPreAlloced(vm->def, disk);
416
    ret = 0;
417

418
 cleanup:
419
    virJSONValueFree(secobjProps);
420
    virJSONValueFree(encobjProps);
421
    qemuDomainSecretDiskDestroy(disk);
422
    virDomainCCWAddressSetFree(ccwaddrs);
423 424
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
425
    VIR_FREE(drivealias);
426 427
    virObjectUnref(cfg);
    return ret;
428

429
 exit_monitor:
430
    orig_err = virSaveLastError();
431
    if (driveAdded && qemuMonitorDriveDel(priv->mon, drivealias) < 0) {
432 433 434
        VIR_WARN("Unable to remove drive %s (%s) after failed "
                 "qemuMonitorAddDevice", drivealias, drivestr);
    }
435 436
    if (secobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, secinfo->s.aes.alias));
437 438
    if (encobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, encinfo->s.aes.alias));
439 440 441 442
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }
443

444 445 446 447 448
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        releaseaddr = false;

    virDomainAuditDisk(vm, NULL, disk->src, "attach", false);

449
 error:
450
    if (releaseaddr)
451
        qemuDomainReleaseDeviceAddress(vm, &disk->info, src);
452

453
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
454
    goto cleanup;
455 456 457
}


458 459 460
int qemuDomainAttachControllerDevice(virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainControllerDefPtr controller)
461 462 463 464 465
{
    int ret = -1;
    const char* type = virDomainControllerTypeToString(controller->type);
    char *devstr = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
466
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
467
    bool releaseaddr = false;
468

469 470 471 472 473 474 475
    if (controller->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("'%s' controller cannot be hot plugged."),
                       virDomainControllerTypeToString(controller->type));
        return -1;
    }

476 477 478 479 480 481 482 483
    /* default idx would normally be set by virDomainDefPostParse(),
     * which isn't called in the case of live attach of a single
     * device.
     */
    if (controller->idx == -1)
       controller->idx = virDomainControllerFindUnusedIndex(vm->def,
                                                            controller->type);

484
    if (virDomainControllerFind(vm->def, controller->type, controller->idx) >= 0) {
485 486 487 488
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("target %s:%d already exists"),
                       type, controller->idx);
        return -1;
489 490
    }

491 492 493 494 495 496 497 498 499
    if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE) {
        if (qemuDomainMachineIsS390CCW(vm->def) &&
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW))
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, controller->info,
                                            priv->qemuCaps, "controller"))
500
            goto cleanup;
501
    }
502

503 504 505 506 507
    if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE ||
        controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &controller->info) < 0)
            goto cleanup;
    } else if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
508 509 510
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto cleanup;
        if (virDomainCCWAddressAssign(&controller->info, ccwaddrs,
511
                                      !controller->info.addr.ccw.assigned) < 0)
512 513
            goto cleanup;
    }
514 515 516 517 518 519
    releaseaddr = true;
    if (qemuAssignDeviceControllerAlias(vm->def, priv->qemuCaps, controller) < 0)
        goto cleanup;

    if (!(devstr = qemuBuildControllerDevStr(vm->def, controller, priv->qemuCaps, NULL)))
        goto cleanup;
520

521
    if (VIR_REALLOC_N(vm->def->controllers, vm->def->ncontrollers+1) < 0)
522 523
        goto cleanup;

524
    qemuDomainObjEnterMonitor(driver, vm);
525
    ret = qemuMonitorAddDevice(priv->mon, devstr);
526 527 528 529 530
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        releaseaddr = false;
        ret = -1;
        goto cleanup;
    }
531 532

    if (ret == 0) {
533 534
        if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE)
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
535 536 537
        virDomainControllerInsertPreAlloced(vm->def, controller);
    }

538
 cleanup:
539 540
    if (ret != 0 && releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
541 542

    VIR_FREE(devstr);
543
    virDomainCCWAddressSetFree(ccwaddrs);
544 545 546 547
    return ret;
}

static virDomainControllerDefPtr
548
qemuDomainFindOrCreateSCSIDiskController(virQEMUDriverPtr driver,
549
                                         virDomainObjPtr vm,
550
                                         int controller)
551
{
552
    size_t i;
553
    virDomainControllerDefPtr cont;
554

555
    for (i = 0; i < vm->def->ncontrollers; i++) {
556 557 558 559 560 561 562 563 564 565 566
        cont = vm->def->controllers[i];

        if (cont->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (cont->idx == controller)
            return cont;
    }

    /* No SCSI controller present, for backward compatibility we
     * now hotplug a controller */
567
    if (VIR_ALLOC(cont) < 0)
568 569
        return NULL;
    cont->type = VIR_DOMAIN_CONTROLLER_TYPE_SCSI;
570
    cont->idx = controller;
571 572
    cont->model = -1;

573
    VIR_INFO("No SCSI controller present, hotplugging one");
574 575
    if (qemuDomainAttachControllerDevice(driver,
                                         vm, cont) < 0) {
576 577 578 579 580
        VIR_FREE(cont);
        return NULL;
    }

    if (!virDomainObjIsActive(vm)) {
581 582
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit"));
583 584 585 586 587 588 589 590 591
        /* cont doesn't need freeing here, since the reference
         * now held in def->controllers */
        return NULL;
    }

    return cont;
}


592 593 594 595 596
static int
qemuDomainAttachSCSIDisk(virConnectPtr conn,
                         virQEMUDriverPtr driver,
                         virDomainObjPtr vm,
                         virDomainDiskDefPtr disk)
597
{
598
    size_t i;
599
    qemuDomainObjPrivatePtr priv = vm->privateData;
600
    virErrorPtr orig_err;
601 602
    char *drivestr = NULL;
    char *devstr = NULL;
603
    bool driveAdded = false;
604
    bool encobjAdded = false;
605
    int ret = -1;
606
    int rv;
607
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
608 609 610
    virJSONValuePtr encobjProps = NULL;
    qemuDomainDiskPrivatePtr diskPriv;
    qemuDomainSecretInfoPtr encinfo;
611

612
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
613
        goto cleanup;
614 615 616

    /* We should have an address already, so make sure */
    if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE) {
617 618 619
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("unexpected disk address type %s"),
                       virDomainDeviceAddressTypeToString(disk->info.type));
620 621 622
        goto error;
    }

623 624 625 626 627 628 629 630 631 632 633 634
    /* Let's make sure the disk has a controller defined and loaded before
     * trying to add it. The controller used by the disk must exist before a
     * qemu command line string is generated.
     *
     * Ensure that the given controller and all controllers with a smaller index
     * exist; there must not be any missing index in between.
     */
    for (i = 0; i <= disk->info.addr.drive.controller; i++) {
        if (!qemuDomainFindOrCreateSCSIDiskController(driver, vm, i))
            goto error;
    }

635 636
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
637

J
John Ferlan 已提交
638
    if (qemuDomainSecretDiskPrepare(conn, priv, disk) < 0)
639 640
        goto error;

641 642 643 644 645
    diskPriv = QEMU_DOMAIN_DISK_PRIVATE(disk);
    encinfo = diskPriv->encinfo;
    if (encinfo && qemuBuildSecretInfoProps(encinfo, &encobjProps) < 0)
        goto error;

646 647
    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
648

649
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
650 651
        goto error;

652
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
653 654
        goto error;

655
    qemuDomainObjEnterMonitor(driver, vm);
656

657 658 659 660 661 662
    if (encobjProps) {
        rv = qemuMonitorAddObject(priv->mon, "secret", encinfo->s.aes.alias,
                                  encobjProps);
        encobjProps = NULL; /* qemuMonitorAddObject consumes */
        if (rv < 0)
            goto exit_monitor;
663
        encobjAdded = true;
664 665
    }

666
    if (qemuMonitorAddDrive(priv->mon, drivestr) < 0)
667 668
        goto exit_monitor;
    driveAdded = true;
669

670
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
671
        goto exit_monitor;
672

673
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
674
        goto error;
675

676
    virDomainAuditDisk(vm, NULL, disk->src, "attach", true);
677 678

    virDomainDiskInsertPreAlloced(vm->def, disk);
679
    ret = 0;
680

681
 cleanup:
682
    virJSONValueFree(encobjProps);
683
    qemuDomainSecretDiskDestroy(disk);
684 685
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
686 687
    virObjectUnref(cfg);
    return ret;
688

689
 exit_monitor:
690
    /* XXX should call 'drive_del' on error but this does not exist yet */
691 692
    if (driveAdded)
        VIR_WARN("qemuMonitorAddDevice failed on %s (%s)", drivestr, devstr);
693

694 695 696 697 698 699 700 701
    orig_err = virSaveLastError();
    if (encobjAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, encinfo->s.aes.alias));
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

702 703 704 705
    ignore_value(qemuDomainObjExitMonitor(driver, vm));

    virDomainAuditDisk(vm, NULL, disk->src, "attach", false);

706
 error:
707
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
708
    goto cleanup;
709 710 711
}


712
static int
713
qemuDomainAttachUSBMassStorageDevice(virQEMUDriverPtr driver,
714 715
                                     virDomainObjPtr vm,
                                     virDomainDiskDefPtr disk)
716 717
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
718
    int ret = -1;
719 720
    char *drivestr = NULL;
    char *devstr = NULL;
721
    bool driveAdded = false;
722
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
723
    const char *src = virDomainDiskGetSource(disk);
724 725 726 727 728 729 730
    bool releaseaddr = false;

    if (priv->usbaddrs) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, &disk->info) < 0)
            goto cleanup;
        releaseaddr = true;
    }
731

732
    if (qemuDomainPrepareDisk(driver, vm, disk, NULL, false) < 0)
733
        goto cleanup;
734

735
    /* XXX not correct once we allow attaching a USB CDROM */
736
    if (!src) {
737 738
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       "%s", _("disk source path is missing"));
739 740 741
        goto error;
    }

742 743
    if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
        goto error;
744
    if (!(drivestr = qemuBuildDriveStr(disk, false, priv->qemuCaps)))
745 746 747
        goto error;
    if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
        goto error;
748

749
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
750 751
        goto error;

752
    qemuDomainObjEnterMonitor(driver, vm);
753

754 755 756 757 758 759
    if (qemuMonitorAddDrive(priv->mon, drivestr) < 0)
        goto exit_monitor;
    driveAdded = true;

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
        goto exit_monitor;
760

761
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
762 763
        goto error;

764 765
    virDomainAuditDisk(vm, NULL, disk->src, "attach", true);

766
    virDomainDiskInsertPreAlloced(vm->def, disk);
767
    ret = 0;
768

769
 cleanup:
770 771
    if (ret < 0 && releaseaddr)
        virDomainUSBAddressRelease(priv->usbaddrs, &disk->info);
772 773
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
774 775
    virObjectUnref(cfg);
    return ret;
776

777 778 779 780 781 782 783 784 785 786 787
 exit_monitor:
    if (driveAdded) {
        VIR_WARN("qemuMonitorAddDevice failed on %s (%s)",
                 drivestr, devstr);
        /* XXX should call 'drive_del' on error but this does not
           exist yet */
    }

    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    virDomainAuditDisk(vm, NULL, disk->src, "attach", false);

788
 error:
789
    ignore_value(qemuDomainPrepareDisk(driver, vm, disk, NULL, true));
790
    goto cleanup;
791 792 793
}


794 795 796 797 798 799
int
qemuDomainAttachDeviceDiskLive(virConnectPtr conn,
                               virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
800
    size_t i;
801 802 803
    virDomainDiskDefPtr disk = dev->data.disk;
    virDomainDiskDefPtr orig_disk = NULL;
    int ret = -1;
804
    const char *src = virDomainDiskGetSource(disk);
805

806
    if (STRNEQ_NULLABLE(virDomainDiskGetDriver(disk), "qemu")) {
807 808
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("unsupported driver name '%s' for disk '%s'"),
809
                       virDomainDiskGetDriver(disk), src);
810
        goto cleanup;
811 812
    }

813
    if (virStorageTranslateDiskSourcePool(conn, disk) < 0)
814
        goto cleanup;
815 816

    if (qemuAddSharedDevice(driver, dev, vm->def->name) < 0)
817
        goto cleanup;
818 819

    if (qemuSetUnprivSGIO(dev) < 0)
820
        goto cleanup;
821

822
    if (qemuDomainDetermineDiskChain(driver, vm, disk, false, true) < 0)
823
        goto cleanup;
824

825
    switch ((virDomainDiskDevice) disk->device)  {
826 827 828 829 830
    case VIR_DOMAIN_DISK_DEVICE_CDROM:
    case VIR_DOMAIN_DISK_DEVICE_FLOPPY:
        if (!(orig_disk = virDomainDiskFindByBusAndDst(vm->def,
                                                       disk->bus, disk->dst))) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
831 832 833
                           _("No device with bus '%s' and target '%s'. "
                             "cdrom and floppy device hotplug isn't supported "
                             "by libvirt"),
834 835
                           virDomainDiskBusTypeToString(disk->bus),
                           disk->dst);
836
            goto cleanup;
837 838
        }

839
        if (qemuDomainChangeEjectableMedia(driver, vm, orig_disk,
840
                                           disk->src, false) < 0)
841
            goto cleanup;
842

843
        disk->src = NULL;
844
        ret = 0;
845
        break;
846

847 848
    case VIR_DOMAIN_DISK_DEVICE_DISK:
    case VIR_DOMAIN_DISK_DEVICE_LUN:
849
        for (i = 0; i < vm->def->ndisks; i++) {
850 851
            if (virDomainDiskDefCheckDuplicateInfo(vm->def->disks[i], disk) < 0)
                goto cleanup;
852 853
        }

854 855
        switch ((virDomainDiskBus) disk->bus) {
        case VIR_DOMAIN_DISK_BUS_USB:
856 857 858 859 860
            if (disk->device == VIR_DOMAIN_DISK_DEVICE_LUN) {
                virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                               _("disk device='lun' is not supported for usb bus"));
                break;
            }
861
            ret = qemuDomainAttachUSBMassStorageDevice(driver, vm, disk);
862 863 864
            break;

        case VIR_DOMAIN_DISK_BUS_VIRTIO:
865
            ret = qemuDomainAttachVirtioDiskDevice(conn, driver, vm, disk);
866 867 868
            break;

        case VIR_DOMAIN_DISK_BUS_SCSI:
869
            ret = qemuDomainAttachSCSIDisk(conn, driver, vm, disk);
870 871 872 873 874 875 876 877 878
            break;

        case VIR_DOMAIN_DISK_BUS_IDE:
        case VIR_DOMAIN_DISK_BUS_FDC:
        case VIR_DOMAIN_DISK_BUS_XEN:
        case VIR_DOMAIN_DISK_BUS_UML:
        case VIR_DOMAIN_DISK_BUS_SATA:
        case VIR_DOMAIN_DISK_BUS_SD:
        case VIR_DOMAIN_DISK_BUS_LAST:
879 880 881 882 883
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                           _("disk bus '%s' cannot be hotplugged."),
                           virDomainDiskBusTypeToString(disk->bus));
        }
        break;
884 885

    case VIR_DOMAIN_DISK_DEVICE_LAST:
886 887 888
        break;
    }

889
 cleanup:
890 891 892 893 894 895
    if (ret != 0)
        ignore_value(qemuRemoveSharedDevice(driver, dev, vm->def->name));
    return ret;
}


896 897 898 899
int
qemuDomainAttachNetDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr net)
900 901
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
902 903
    char **tapfdName = NULL;
    int *tapfd = NULL;
904
    size_t tapfdSize = 0;
905 906
    char **vhostfdName = NULL;
    int *vhostfd = NULL;
907
    size_t vhostfdSize = 0;
908 909
    char *nicstr = NULL;
    char *netstr = NULL;
A
Ansis Atteka 已提交
910
    virNetDevVPortProfilePtr vport = NULL;
911 912
    int ret = -1;
    int vlan;
913
    bool releaseaddr = false;
914 915
    bool iface_connected = false;
    int actualType;
916
    virNetDevBandwidthPtr actualBandwidth;
917
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
918
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
919
    size_t i;
920

921
    /* preallocate new slot for device */
922
    if (VIR_REALLOC_N(vm->def->nets, vm->def->nnets + 1) < 0)
923
        goto cleanup;
924

925 926 927 928
    /* If appropriate, grab a physical device from the configured
     * network's pool of devices, or resolve bridge device name
     * to the one defined in the network definition.
     */
929
    if (networkAllocateActualDevice(vm->def, net) < 0)
930
        goto cleanup;
931 932

    actualType = virDomainNetGetActualType(net);
933 934 935 936 937 938

    if (actualType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* This is really a "smart hostdev", so it should be attached
         * as a hostdev (the hostdev code will reach over into the
         * netdev-specific code as appropriate), then also added to
         * the nets list (see cleanup:) if successful.
939 940 941
         *
         * qemuDomainAttachHostDevice uses a connection to resolve
         * a SCSI hostdev secret, which is not this case, so pass NULL.
942
         */
943
        ret = qemuDomainAttachHostDevice(NULL, driver, vm,
944 945 946 947
                                         virDomainNetGetActualHostdev(net));
        goto cleanup;
    }

948
    /* Currently only TAP/macvtap devices supports multiqueue. */
949 950
    if (net->driver.virtio.queues > 0 &&
        !(actualType == VIR_DOMAIN_NET_TYPE_NETWORK ||
951
          actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
952 953
          actualType == VIR_DOMAIN_NET_TYPE_DIRECT ||
          actualType == VIR_DOMAIN_NET_TYPE_ETHERNET)) {
954 955 956 957 958 959
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("Multiqueue network is not supported for: %s"),
                       virDomainNetTypeToString(actualType));
        return -1;
    }

960 961 962
    /* and only TAP devices support nwfilter rules */
    if (net->filter &&
        !(actualType == VIR_DOMAIN_NET_TYPE_NETWORK ||
963 964
          actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
          actualType == VIR_DOMAIN_NET_TYPE_ETHERNET)) {
965 966 967 968 969 970 971
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("filterref is not supported for "
                         "network interfaces of type %s"),
                       virDomainNetTypeToString(actualType));
        return -1;
    }

972 973
    if (actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
        actualType == VIR_DOMAIN_NET_TYPE_NETWORK) {
974 975 976
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
977
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
978
            goto cleanup;
979 980 981 982
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
            goto cleanup;
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
983 984
        if (qemuInterfaceBridgeConnect(vm->def, driver, net,
                                       tapfd, &tapfdSize) < 0)
985 986
            goto cleanup;
        iface_connected = true;
987 988
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
989
            goto cleanup;
990
    } else if (actualType == VIR_DOMAIN_NET_TYPE_DIRECT) {
991 992 993 994
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
995
            goto cleanup;
996 997
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
998
            goto cleanup;
999
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
1000 1001 1002
        if (qemuInterfaceDirectConnect(vm->def, driver, net,
                                       tapfd, tapfdSize,
                                       VIR_NETDEV_VPORT_PROFILE_OP_CREATE) < 0)
1003 1004
            goto cleanup;
        iface_connected = true;
1005 1006
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
1007
            goto cleanup;
1008
    } else if (actualType == VIR_DOMAIN_NET_TYPE_ETHERNET) {
1009 1010 1011 1012
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
1013
            goto cleanup;
1014 1015 1016 1017 1018 1019 1020 1021
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
            goto cleanup;
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
        if (qemuInterfaceEthernetConnect(vm->def, driver, net,
                                       tapfd, tapfdSize) < 0)
            goto cleanup;
        iface_connected = true;
1022 1023
        if (qemuInterfaceOpenVhostNet(vm->def, net, priv->qemuCaps,
                                      vhostfd, &vhostfdSize) < 0)
1024
            goto cleanup;
1025 1026
    }

1027 1028
    /* Set device online immediately */
    if (qemuInterfaceStartDevice(net) < 0)
1029
        goto cleanup;
1030

1031 1032 1033 1034 1035 1036 1037 1038 1039 1040 1041 1042
    /* Set bandwidth or warn if requested and not supported. */
    actualBandwidth = virDomainNetGetActualBandwidth(net);
    if (actualBandwidth) {
        if (virNetDevSupportBandwidth(actualType)) {
            if (virNetDevBandwidthSet(net->ifname, actualBandwidth, false) < 0)
                goto cleanup;
        } else {
            VIR_WARN("setting bandwidth on interfaces of "
                     "type '%s' is not implemented yet",
                     virDomainNetTypeToString(actualType));
        }
    }
1043

M
Michal Privoznik 已提交
1044 1045 1046 1047 1048 1049
    for (i = 0; i < tapfdSize; i++) {
        if (virSecurityManagerSetTapFDLabel(driver->securityManager,
                                            vm->def, tapfd[i]) < 0)
            goto cleanup;
    }

1050 1051
    if (qemuAssignDeviceNetAlias(vm->def, net, -1) < 0)
        goto cleanup;
1052

1053
    if (qemuDomainMachineIsS390CCW(vm->def) &&
1054 1055
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        net->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
1056 1057 1058
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto cleanup;
        if (virDomainCCWAddressAssign(&net->info, ccwaddrs,
J
Ján Tomko 已提交
1059
                                      !net->info.addr.ccw.assigned) < 0)
1060
            goto cleanup;
1061
    } else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390)) {
1062
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
1063 1064
                       _("virtio-s390 net device cannot be hotplugged."));
        goto cleanup;
1065
    } else if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &net->info) < 0) {
1066 1067
        goto cleanup;
    }
1068

1069 1070
    releaseaddr = true;

1071
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1072 1073 1074 1075 1076
        vlan = -1;
    } else {
        vlan = qemuDomainNetVLAN(net);

        if (vlan < 0) {
1077 1078
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("Unable to attach network devices without vlan"));
1079 1080 1081 1082
            goto cleanup;
        }
    }

1083
    if (VIR_ALLOC_N(tapfdName, tapfdSize) < 0 ||
1084
        VIR_ALLOC_N(vhostfdName, vhostfdSize) < 0)
1085 1086 1087
        goto cleanup;

    for (i = 0; i < tapfdSize; i++) {
1088
        if (virAsprintf(&tapfdName[i], "fd-%s%zu", net->info.alias, i) < 0)
1089
            goto cleanup;
1090 1091
    }

1092
    for (i = 0; i < vhostfdSize; i++) {
1093
        if (virAsprintf(&vhostfdName[i], "vhostfd-%s%zu", net->info.alias, i) < 0)
1094
            goto cleanup;
1095 1096
    }

1097
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1098
        if (!(netstr = qemuBuildHostNetStr(net, driver,
1099 1100 1101
                                           ',', -1,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
1102
            goto cleanup;
1103
    } else {
1104
        if (!(netstr = qemuBuildHostNetStr(net, driver,
1105 1106 1107
                                           ' ', vlan,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
1108
            goto cleanup;
1109 1110
    }

1111
    qemuDomainObjEnterMonitor(driver, vm);
1112
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1113 1114 1115
        if (qemuMonitorAddNetdev(priv->mon, netstr,
                                 tapfd, tapfdName, tapfdSize,
                                 vhostfd, vhostfdName, vhostfdSize) < 0) {
1116
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1117
            virDomainAuditNet(vm, NULL, net, "attach", false);
1118
            goto cleanup;
1119 1120
        }
    } else {
1121 1122 1123
        if (qemuMonitorAddHostNetwork(priv->mon, netstr,
                                      tapfd, tapfdName, tapfdSize,
                                      vhostfd, vhostfdName, vhostfdSize) < 0) {
1124
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1125
            virDomainAuditNet(vm, NULL, net, "attach", false);
1126
            goto cleanup;
1127 1128
        }
    }
1129 1130
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
1131

1132 1133 1134 1135
    for (i = 0; i < tapfdSize; i++)
        VIR_FORCE_CLOSE(tapfd[i]);
    for (i = 0; i < vhostfdSize; i++)
        VIR_FORCE_CLOSE(vhostfd[i]);
1136

1137 1138 1139
    if (!(nicstr = qemuBuildNicDevStr(vm->def, net, vlan, 0,
                                      vhostfdSize, priv->qemuCaps)))
        goto try_remove;
1140

1141
    qemuDomainObjEnterMonitor(driver, vm);
1142 1143 1144 1145
    if (qemuMonitorAddDevice(priv->mon, nicstr) < 0) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        virDomainAuditNet(vm, NULL, net, "attach", false);
        goto try_remove;
1146
    }
1147 1148
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
1149

1150 1151 1152
    /* set link state */
    if (net->linkstate == VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) {
        if (!net->info.alias) {
1153 1154
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device alias not found: cannot set link state to down"));
1155
        } else {
1156
            qemuDomainObjEnterMonitor(driver, vm);
1157

1158
            if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1159
                if (qemuMonitorSetLink(priv->mon, net->info.alias, VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) < 0) {
1160
                    ignore_value(qemuDomainObjExitMonitor(driver, vm));
1161 1162 1163 1164
                    virDomainAuditNet(vm, NULL, net, "attach", false);
                    goto try_remove;
                }
            } else {
1165
                virReportError(VIR_ERR_OPERATION_FAILED, "%s",
1166
                               _("setting of link state not supported: Link is up"));
1167 1168
            }

1169 1170
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
1171 1172 1173 1174
        }
        /* link set to down */
    }

1175
    virDomainAuditNet(vm, NULL, net, "attach", true);
1176 1177 1178

    ret = 0;

1179
 cleanup:
1180 1181 1182
    if (!ret) {
        vm->def->nets[vm->def->nnets++] = net;
    } else {
1183 1184
        if (releaseaddr)
            qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
1185

1186
        if (iface_connected) {
1187
            virDomainConfNWFilterTeardown(net);
1188

1189 1190 1191 1192 1193 1194 1195 1196 1197
            if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_DIRECT) {
                ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                                 net->ifname, &net->mac,
                                 virDomainNetGetActualDirectDev(net),
                                 virDomainNetGetActualDirectMode(net),
                                 virDomainNetGetActualVirtPortProfile(net),
                                 cfg->stateDir));
            }

1198
            vport = virDomainNetGetActualVirtPortProfile(net);
1199 1200 1201 1202 1203 1204 1205 1206 1207
            if (vport) {
                if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_MIDONET) {
                    ignore_value(virNetDevMidonetUnbindPort(vport));
                } else if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH) {
                    ignore_value(virNetDevOpenvswitchRemovePort(
                                     virDomainNetGetActualBridgeName(net),
                                     net->ifname));
                }
            }
1208
        }
A
Ansis Atteka 已提交
1209

1210 1211
        virDomainNetRemoveHostdev(vm->def, net);

1212
        networkReleaseActualDevice(vm->def, net);
1213
    }
1214 1215 1216

    VIR_FREE(nicstr);
    VIR_FREE(netstr);
1217
    for (i = 0; tapfd && i < tapfdSize; i++) {
1218
        VIR_FORCE_CLOSE(tapfd[i]);
1219 1220
        if (tapfdName)
            VIR_FREE(tapfdName[i]);
1221 1222 1223
    }
    VIR_FREE(tapfd);
    VIR_FREE(tapfdName);
1224
    for (i = 0; vhostfd && i < vhostfdSize; i++) {
1225
        VIR_FORCE_CLOSE(vhostfd[i]);
1226 1227
        if (vhostfdName)
            VIR_FREE(vhostfdName[i]);
1228 1229 1230
    }
    VIR_FREE(vhostfd);
    VIR_FREE(vhostfdName);
1231
    virObjectUnref(cfg);
1232
    virDomainCCWAddressSetFree(ccwaddrs);
1233 1234 1235

    return ret;

1236
 try_remove:
1237 1238 1239 1240
    if (!virDomainObjIsActive(vm))
        goto cleanup;

    if (vlan < 0) {
1241
        if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1242 1243
            char *netdev_name;
            if (virAsprintf(&netdev_name, "host%s", net->info.alias) < 0)
1244
                goto cleanup;
1245
            qemuDomainObjEnterMonitor(driver, vm);
1246 1247 1248
            if (qemuMonitorRemoveNetdev(priv->mon, netdev_name) < 0)
                VIR_WARN("Failed to remove network backend for netdev %s",
                         netdev_name);
1249
            ignore_value(qemuDomainObjExitMonitor(driver, vm));
1250 1251
            VIR_FREE(netdev_name);
        } else {
1252
            VIR_WARN("Unable to remove network backend");
1253 1254 1255 1256
        }
    } else {
        char *hostnet_name;
        if (virAsprintf(&hostnet_name, "host%s", net->info.alias) < 0)
1257
            goto cleanup;
1258
        qemuDomainObjEnterMonitor(driver, vm);
1259 1260 1261
        if (qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0)
            VIR_WARN("Failed to remove network backend for vlan %d, net %s",
                     vlan, hostnet_name);
1262
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
1263 1264 1265 1266 1267 1268
        VIR_FREE(hostnet_name);
    }
    goto cleanup;
}


1269
static int
1270
qemuDomainAttachHostPCIDevice(virQEMUDriverPtr driver,
1271 1272
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
1273 1274 1275 1276 1277 1278
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret;
    char *devstr = NULL;
    int configfd = -1;
    char *configfd_name = NULL;
1279
    bool releaseaddr = false;
1280
    bool teardowncgroup = false;
1281
    bool teardownlabel = false;
1282
    int backend;
1283 1284
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    unsigned int flags = 0;
1285

1286
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs + 1) < 0)
1287
        goto cleanup;
1288

1289 1290
    if (!cfg->relaxedACS)
        flags |= VIR_HOSTDEV_STRICT_ACS_CHECK;
1291
    if (qemuHostdevPreparePCIDevices(driver, vm->def->name, vm->def->uuid,
1292 1293
                                     &hostdev, 1, priv->qemuCaps, flags) < 0)
        goto cleanup;
1294

1295
    /* this could have been changed by qemuHostdevPreparePCIDevices */
1296 1297
    backend = hostdev->source.subsys.u.pci.backend;

1298
    switch ((virDomainHostdevSubsysPCIBackendType) backend) {
1299
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO:
1300 1301 1302 1303 1304 1305
        if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_VFIO_PCI)) {
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("VFIO PCI device assignment is not "
                             "supported by this version of qemu"));
            goto error;
        }
1306 1307
        break;

1308 1309 1310 1311 1312 1313 1314 1315 1316 1317
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_DEFAULT:
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_KVM:
        break;

    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_XEN:
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_TYPE_LAST:
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("QEMU does not support device assignment mode '%s'"),
                       virDomainHostdevSubsysPCIBackendTypeToString(backend));
        goto error;
1318
        break;
1319 1320
    }

1321
    /* Temporarily add the hostdev to the domain definition. This is needed
1322 1323 1324 1325
     * because qemuDomainAdjustMaxMemLock() requires the hostdev to be already
     * part of the domain definition, but other functions like
     * qemuAssignDeviceHostdevAlias() used below expect it *not* to be there.
     * A better way to handle this would be nice */
1326
    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;
1327 1328 1329
    if (qemuDomainAdjustMaxMemLock(vm) < 0) {
        vm->def->hostdevs[--(vm->def->nhostdevs)] = NULL;
        goto error;
1330 1331 1332
    }
    vm->def->hostdevs[--(vm->def->nhostdevs)] = NULL;

1333
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
1334 1335 1336
        goto error;
    teardowncgroup = true;

1337 1338 1339
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto error;
1340 1341
    if (backend != VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO)
        teardownlabel = true;
1342

1343 1344 1345 1346 1347 1348 1349 1350 1351 1352 1353 1354
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
        goto error;
    if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, hostdev->info) < 0)
        goto error;
    releaseaddr = true;
    if (backend != VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_PCI_CONFIGFD)) {
        configfd = qemuOpenPCIConfig(hostdev);
        if (configfd >= 0) {
            if (virAsprintf(&configfd_name, "fd-%s",
                            hostdev->info->alias) < 0)
                goto error;
1355
        }
1356
    }
1357

1358 1359 1360 1361 1362
    if (!virDomainObjIsActive(vm)) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit during hotplug"));
        goto error;
    }
1363

1364 1365 1366
    if (!(devstr = qemuBuildPCIHostdevDevStr(vm->def, hostdev, 0,
                                             configfd_name, priv->qemuCaps)))
        goto error;
1367

1368 1369 1370 1371 1372
    qemuDomainObjEnterMonitor(driver, vm);
    ret = qemuMonitorAddDeviceWithFd(priv->mon, devstr,
                                     configfd, configfd_name);
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto error;
1373

1374
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
1375 1376 1377 1378 1379 1380 1381 1382
    if (ret < 0)
        goto error;

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);
1383
    virObjectUnref(cfg);
1384 1385 1386

    return 0;

1387
 error:
1388 1389
    if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
1390 1391 1392 1393
    if (teardownlabel &&
        virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                              vm->def, hostdev, NULL) < 0)
        VIR_WARN("Unable to restore host device labelling on hotplug fail");
1394

1395 1396
    if (releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
1397

1398
    qemuHostdevReAttachPCIDevices(driver, vm->def->name, &hostdev, 1);
1399 1400 1401 1402 1403

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);

1404
 cleanup:
1405
    virObjectUnref(cfg);
1406 1407 1408 1409
    return -1;
}


1410
int qemuDomainAttachRedirdevDevice(virQEMUDriverPtr driver,
1411 1412 1413
                                   virDomainObjPtr vm,
                                   virDomainRedirdevDefPtr redirdev)
{
1414
    int ret = -1;
1415
    qemuDomainObjPrivatePtr priv = vm->privateData;
1416
    virDomainDefPtr def = vm->def;
1417
    char *charAlias = NULL;
1418 1419
    char *devstr = NULL;

1420
    if (qemuAssignDeviceRedirdevAlias(def, redirdev, -1) < 0)
1421 1422 1423 1424 1425
        goto cleanup;

    if (virAsprintf(&charAlias, "char%s", redirdev->info.alias) < 0)
        goto cleanup;

1426
    if (!(devstr = qemuBuildRedirdevDevStr(def, redirdev, priv->qemuCaps)))
1427
        goto cleanup;
1428

1429
    if (VIR_REALLOC_N(def->redirdevs, def->nredirdevs+1) < 0)
1430
        goto cleanup;
1431

1432
    qemuDomainObjEnterMonitor(driver, vm);
1433 1434 1435 1436 1437 1438
    if (qemuMonitorAttachCharDev(priv->mon,
                                 charAlias,
                                 &(redirdev->source.chr)) < 0) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        goto audit;
    }
1439

1440 1441 1442 1443 1444 1445
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0) {
        /* detach associated chardev on error */
        qemuMonitorDetachCharDev(priv->mon, charAlias);
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        goto audit;
    }
1446

1447 1448
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto audit;
1449

1450
    def->redirdevs[def->nredirdevs++] = redirdev;
1451 1452 1453 1454 1455
    ret = 0;
 audit:
    virDomainAuditRedirdev(vm, redirdev, "attach", ret == 0);
 cleanup:
    VIR_FREE(charAlias);
1456
    VIR_FREE(devstr);
1457
    return ret;
1458 1459
}

1460 1461 1462
static int
qemuDomainChrPreInsert(virDomainDefPtr vmdef,
                       virDomainChrDefPtr chr)
1463 1464 1465 1466 1467 1468 1469 1470 1471 1472 1473 1474 1475 1476
{
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
                       _("attaching serial console is not supported"));
        return -1;
    }

    if (virDomainChrFind(vmdef, chr)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("chardev already exists"));
        return -1;
    }

1477
    if (virDomainChrPreAlloc(vmdef, chr) < 0)
1478 1479 1480 1481 1482
        return -1;

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
1483 1484 1485 1486 1487 1488 1489
    if (vmdef->nserials == 0 && vmdef->nconsoles == 0 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
        if (!vmdef->consoles && VIR_ALLOC(vmdef->consoles) < 0)
            return -1;

        if (VIR_ALLOC(vmdef->consoles[0]) < 0) {
            VIR_FREE(vmdef->consoles);
1490 1491
            return -1;
        }
1492 1493 1494 1495 1496 1497 1498 1499 1500 1501 1502 1503
        vmdef->nconsoles++;
    }
    return 0;
}

static void
qemuDomainChrInsertPreAlloced(virDomainDefPtr vmdef,
                              virDomainChrDefPtr chr)
{
    virDomainChrInsertPreAlloced(vmdef, chr);
    if (vmdef->nserials == 1 && vmdef->nconsoles == 0 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
1504 1505 1506 1507 1508 1509
        vmdef->nconsoles = 1;

        /* Create an console alias for the serial port */
        vmdef->consoles[0]->deviceType = VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE;
        vmdef->consoles[0]->targetType = VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL;
    }
1510 1511 1512 1513 1514 1515 1516 1517 1518 1519 1520 1521 1522 1523
}

static void
qemuDomainChrInsertPreAllocCleanup(virDomainDefPtr vmdef,
                                   virDomainChrDefPtr chr)
{
    /* Remove the stub console added by qemuDomainChrPreInsert */
    if (vmdef->nserials == 0 && vmdef->nconsoles == 1 &&
        chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL) {
        VIR_FREE(vmdef->consoles[0]);
        VIR_FREE(vmdef->consoles);
        vmdef->nconsoles = 0;
    }
}
1524

1525 1526 1527 1528 1529 1530 1531 1532 1533
int
qemuDomainChrInsert(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    if (qemuDomainChrPreInsert(vmdef, chr) < 0) {
        qemuDomainChrInsertPreAllocCleanup(vmdef, chr);
        return -1;
    }
    qemuDomainChrInsertPreAlloced(vmdef, chr);
1534 1535 1536 1537 1538 1539 1540 1541 1542 1543 1544 1545 1546 1547 1548 1549 1550 1551 1552 1553 1554 1555 1556 1557 1558 1559 1560 1561 1562 1563 1564 1565 1566 1567 1568 1569
    return 0;
}

virDomainChrDefPtr
qemuDomainChrRemove(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    virDomainChrDefPtr ret;
    bool removeCompat;

    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("detaching serial console is not supported"));
        return NULL;
    }

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
    removeCompat = vmdef->nserials && vmdef->nconsoles &&
        vmdef->consoles[0]->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        vmdef->consoles[0]->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL &&
        virDomainChrEquals(vmdef->serials[0], chr);

    if (!(ret = virDomainChrRemove(vmdef, chr))) {
        virReportError(VIR_ERR_INVALID_ARG, "%s",
                       _("device not present in domain configuration"));
            return NULL;
    }

    if (removeCompat)
        VIR_DELETE_ELEMENT(vmdef->consoles, 0, vmdef->nconsoles);

    return ret;
}
1570

1571
static int
1572 1573
qemuDomainAttachChrDeviceAssignAddr(virDomainDefPtr def,
                                    qemuDomainObjPrivatePtr priv,
1574 1575
                                    virDomainChrDefPtr chr)
{
1576 1577 1578 1579 1580 1581
    int ret = -1;
    virDomainVirtioSerialAddrSetPtr vioaddrs = NULL;

    if (!(vioaddrs = virDomainVirtioSerialAddrSetCreateFromDomain(def)))
        goto cleanup;

1582 1583
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_VIRTIO) {
1584
        if (virDomainVirtioSerialAddrAutoAssign(NULL, vioaddrs,
1585
                                                &chr->info, true) < 0)
1586 1587
            goto cleanup;
        ret = 1;
1588 1589 1590 1591

    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL &&
               chr->targetType == VIR_DOMAIN_CHR_SERIAL_TARGET_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &chr->info) < 0)
1592 1593
            goto cleanup;
        ret = 1;
1594

1595 1596 1597
    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_SERIAL &&
               chr->targetType == VIR_DOMAIN_CHR_SERIAL_TARGET_TYPE_USB) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, &chr->info) < 0)
1598 1599
            goto cleanup;
        ret = 1;
1600

1601 1602
    } else if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CHANNEL &&
               chr->targetType == VIR_DOMAIN_CHR_CHANNEL_TARGET_TYPE_VIRTIO) {
1603
        if (virDomainVirtioSerialAddrAutoAssign(NULL, vioaddrs,
1604
                                                &chr->info, false) < 0)
1605 1606
            goto cleanup;
        ret = 1;
1607 1608
    }

1609 1610 1611
    if (ret == 1)
        goto cleanup;

1612 1613 1614 1615
    if (chr->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_SERIAL ||
        chr->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("Unsupported address type for character device"));
1616
        goto cleanup;
1617 1618
    }

1619 1620 1621 1622 1623
    ret = 0;

 cleanup:
    virDomainVirtioSerialAddrSetFree(vioaddrs);
    return ret;
1624 1625
}

1626 1627 1628 1629
int qemuDomainAttachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
1630
    int ret = -1, rc;
1631
    qemuDomainObjPrivatePtr priv = vm->privateData;
1632
    virErrorPtr orig_err;
1633 1634 1635
    virDomainDefPtr vmdef = vm->def;
    char *devstr = NULL;
    char *charAlias = NULL;
1636
    bool chardevAttached = false;
1637
    bool need_release = false;
1638

1639 1640 1641 1642
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CHANNEL &&
        qemuDomainPrepareChannel(chr, priv->channelTargetDir) < 0)
        goto cleanup;

1643
    if (qemuAssignDeviceChrAlias(vmdef, chr, -1) < 0)
1644
        goto cleanup;
1645

1646
    if ((rc = qemuDomainAttachChrDeviceAssignAddr(vm->def, priv, chr)) < 0)
1647 1648 1649
        goto cleanup;
    if (rc == 1)
        need_release = true;
1650

1651
    if (qemuBuildChrDeviceStr(&devstr, vmdef, chr, priv->qemuCaps) < 0)
1652
        goto cleanup;
1653

J
Ján Tomko 已提交
1654
    if (virAsprintf(&charAlias, "char%s", chr->info.alias) < 0)
1655 1656
        goto cleanup;

1657
    if (qemuDomainChrPreInsert(vmdef, chr) < 0)
1658 1659 1660
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
1661
    if (qemuMonitorAttachCharDev(priv->mon, charAlias, &chr->source) < 0)
1662 1663
        goto exit_monitor;
    chardevAttached = true;
1664 1665

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
1666
        goto exit_monitor;
1667

1668 1669
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto audit;
1670

1671
    qemuDomainChrInsertPreAlloced(vmdef, chr);
1672
    ret = 0;
1673 1674
 audit:
    virDomainAuditChardev(vm, NULL, chr, "attach", ret == 0);
1675
 cleanup:
1676
    if (ret < 0 && virDomainObjIsActive(vm))
1677
        qemuDomainChrInsertPreAllocCleanup(vmdef, chr);
1678 1679
    if (ret < 0 && need_release)
        qemuDomainReleaseDeviceAddress(vm, &chr->info, NULL);
1680 1681 1682
    VIR_FREE(charAlias);
    VIR_FREE(devstr);
    return ret;
1683

1684 1685
 exit_monitor:
    orig_err = virSaveLastError();
1686
    /* detach associated chardev on error */
1687 1688 1689 1690 1691 1692 1693
    if (chardevAttached)
        qemuMonitorDetachCharDev(priv->mon, charAlias);
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

1694 1695
    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    goto audit;
1696 1697
}

1698 1699 1700 1701 1702 1703 1704

int
qemuDomainAttachRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
1705
    virErrorPtr orig_err;
1706 1707 1708
    char *devstr = NULL;
    char *charAlias = NULL;
    char *objAlias = NULL;
1709 1710 1711
    bool releaseaddr = false;
    bool chardevAdded = false;
    bool objAdded = false;
1712
    virJSONValuePtr props = NULL;
1713
    virDomainCCWAddressSetPtr ccwaddrs = NULL;
1714 1715
    const char *type;
    int ret = -1;
1716
    int rv;
1717

1718
    if (qemuAssignDeviceRNGAlias(vm->def, rng) < 0)
1719 1720 1721 1722 1723 1724 1725
        return -1;

    /* preallocate space for the device definition */
    if (VIR_REALLOC_N(vm->def->rngs, vm->def->nrngs + 1) < 0)
        return -1;

    if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE) {
1726
        if (qemuDomainMachineIsS390CCW(vm->def) &&
1727 1728 1729 1730 1731
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
            rng->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        } else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390)) {
            rng->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
        }
1732 1733 1734 1735
    } else {
        if (!qemuCheckCCWS390AddressSupport(vm->def, rng->info, priv->qemuCaps,
                                            rng->source.file))
            return -1;
1736
    }
1737
    releaseaddr = true;
1738 1739 1740 1741 1742 1743

    if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE ||
        rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &rng->info) < 0)
            return -1;
    } else if (rng->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
1744 1745 1746
        if (!(ccwaddrs = qemuDomainCCWAddrSetCreateFromDomain(vm->def)))
            goto cleanup;
        if (virDomainCCWAddressAssign(&rng->info, ccwaddrs,
1747
                                      !rng->info.addr.ccw.assigned) < 0)
1748
            goto cleanup;
1749 1750 1751 1752 1753 1754 1755 1756 1757 1758 1759 1760 1761 1762 1763 1764 1765 1766 1767 1768
    }

    /* build required metadata */
    if (!(devstr = qemuBuildRNGDevStr(vm->def, rng, priv->qemuCaps)))
        goto cleanup;

    if (qemuBuildRNGBackendProps(rng, priv->qemuCaps, &type, &props) < 0)
        goto cleanup;

    if (virAsprintf(&objAlias, "obj%s", rng->info.alias) < 0)
        goto cleanup;

    if (virAsprintf(&charAlias, "char%s", rng->info.alias) < 0)
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);

    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD &&
        qemuMonitorAttachCharDev(priv->mon, charAlias,
                                 rng->source.chardev) < 0)
1769 1770
        goto exit_monitor;
    chardevAdded = true;
1771

1772 1773 1774 1775 1776
    rv = qemuMonitorAddObject(priv->mon, type, objAlias, props);
    props = NULL; /* qemuMonitorAddObject consumes */
    if (rv < 0)
        goto exit_monitor;
    objAdded = true;
1777 1778

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
1779
        goto exit_monitor;
1780 1781

    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
1782
        releaseaddr = false;
1783 1784 1785
        goto cleanup;
    }

1786
    VIR_APPEND_ELEMENT_INPLACE(vm->def->rngs, vm->def->nrngs, rng);
1787 1788 1789 1790 1791 1792

    ret = 0;

 audit:
    virDomainAuditRNG(vm, NULL, rng, "attach", ret == 0);
 cleanup:
1793
    virJSONValueFree(props);
1794
    if (ret < 0 && releaseaddr)
1795 1796 1797 1798
        qemuDomainReleaseDeviceAddress(vm, &rng->info, NULL);
    VIR_FREE(charAlias);
    VIR_FREE(objAlias);
    VIR_FREE(devstr);
1799
    virDomainCCWAddressSetFree(ccwaddrs);
1800 1801
    return ret;

1802 1803 1804 1805 1806
 exit_monitor:
    orig_err = virSaveLastError();
    if (objAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, objAlias));
    if (rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD && chardevAdded)
1807
        ignore_value(qemuMonitorDetachCharDev(priv->mon, charAlias));
1808 1809 1810
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
1811 1812
    }

1813 1814
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        releaseaddr = false;
1815 1816 1817 1818
    goto audit;
}


1819 1820 1821 1822 1823 1824 1825 1826 1827 1828 1829 1830 1831 1832 1833 1834
/**
 * qemuDomainAttachMemory:
 * @driver: qemu driver data
 * @vm: VM object
 * @mem: Definition of the memory device to be attached. @mem is always consumed
 *
 * Attaches memory device described by @mem to domain @vm.
 *
 * Returns 0 on success -1 on error.
 */
int
qemuDomainAttachMemory(virQEMUDriverPtr driver,
                       virDomainObjPtr vm,
                       virDomainMemoryDefPtr mem)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
1835
    virErrorPtr orig_err;
1836
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
1837
    unsigned long long oldmem = virDomainDefGetMemoryTotal(vm->def);
1838
    unsigned long long newmem = oldmem + mem->size;
1839 1840 1841
    char *devstr = NULL;
    char *objalias = NULL;
    const char *backendType;
1842
    bool objAdded = false;
1843
    virJSONValuePtr props = NULL;
1844
    virObjectEventPtr event;
1845 1846
    int id;
    int ret = -1;
1847
    int rv;
1848

1849 1850 1851
    qemuDomainMemoryDeviceAlignSize(vm->def, mem);

    if (qemuDomainDefValidateMemoryHotplug(vm->def, priv->qemuCaps, mem) < 0)
1852 1853
        goto cleanup;

1854
    if (qemuAssignDeviceMemoryAlias(vm->def, mem) < 0)
1855 1856 1857 1858 1859
        goto cleanup;

    if (virAsprintf(&objalias, "mem%s", mem->info.alias) < 0)
        goto cleanup;

1860
    if (!(devstr = qemuBuildMemoryDeviceStr(mem)))
1861 1862 1863 1864 1865 1866 1867 1868 1869 1870 1871 1872 1873
        goto cleanup;

    if (qemuBuildMemoryBackendStr(mem->size, mem->pagesize,
                                  mem->targetNode, mem->sourceNodes, NULL,
                                  vm->def, priv->qemuCaps, cfg,
                                  &backendType, &props, true) < 0)
        goto cleanup;

    if (virDomainMemoryInsert(vm->def, mem) < 0) {
        virJSONValueFree(props);
        goto cleanup;
    }

1874
    if (qemuDomainAdjustMaxMemLock(vm) < 0) {
1875 1876 1877 1878
        virJSONValueFree(props);
        goto removedef;
    }

1879
    qemuDomainObjEnterMonitor(driver, vm);
1880 1881 1882
    rv = qemuMonitorAddObject(priv->mon, backendType, objalias, props);
    props = NULL; /* qemuMonitorAddObject consumes */
    if (rv < 0)
1883
        goto exit_monitor;
1884
    objAdded = true;
1885

1886
    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
1887
        goto exit_monitor;
1888 1889 1890 1891

    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        /* we shouldn't touch mem now, as the def might be freed */
        mem = NULL;
1892
        goto audit;
1893 1894
    }

1895
    event = virDomainEventDeviceAddedNewFromObj(vm, objalias);
1896
    qemuDomainEventQueue(driver, event);
1897

1898 1899
    /* fix the balloon size */
    ignore_value(qemuProcessRefreshBalloonState(driver, vm, QEMU_ASYNC_JOB_NONE));
1900

1901 1902 1903 1904 1905 1906 1907 1908 1909
    /* mem is consumed by vm->def */
    mem = NULL;

    /* this step is best effort, removing the device would be so much trouble */
    ignore_value(qemuDomainUpdateMemoryDeviceInfo(driver, vm,
                                                  QEMU_ASYNC_JOB_NONE));

    ret = 0;

1910 1911
 audit:
    virDomainAuditMemory(vm, oldmem, newmem, "update", ret == 0);
1912 1913 1914 1915 1916 1917 1918
 cleanup:
    virObjectUnref(cfg);
    VIR_FREE(devstr);
    VIR_FREE(objalias);
    virDomainMemoryDefFree(mem);
    return ret;

1919
 exit_monitor:
1920 1921 1922 1923 1924 1925 1926
    orig_err = virSaveLastError();
    if (objAdded)
        ignore_value(qemuMonitorDelObject(priv->mon, objalias));
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }
1927 1928
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        mem = NULL;
1929
        goto audit;
1930 1931
    }

1932
 removedef:
1933 1934 1935 1936 1937
    if ((id = virDomainMemoryFindByDef(vm->def, mem)) >= 0)
        mem = virDomainMemoryRemove(vm->def, id);
    else
        mem = NULL;

1938
    /* reset the mlock limit */
1939
    orig_err = virSaveLastError();
1940
    ignore_value(qemuDomainAdjustMaxMemLock(vm));
1941 1942
    virSetError(orig_err);
    virFreeError(orig_err);
1943

1944
    goto audit;
1945 1946 1947
}


1948
static int
1949
qemuDomainAttachHostUSBDevice(virQEMUDriverPtr driver,
1950 1951
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
1952 1953 1954
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *devstr = NULL;
1955
    bool releaseaddr = false;
1956
    bool added = false;
1957
    bool teardowncgroup = false;
1958
    bool teardownlabel = false;
1959 1960
    int ret = -1;

1961 1962 1963 1964 1965 1966
    if (priv->usbaddrs) {
        if (virDomainUSBAddressEnsure(priv->usbaddrs, hostdev->info) < 0)
            goto cleanup;
        releaseaddr = true;
    }

1967
    if (qemuHostdevPrepareUSBDevices(driver, vm->def->name, &hostdev, 1, 0) < 0)
1968 1969 1970
        goto cleanup;

    added = true;
1971

1972
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
1973 1974 1975
        goto cleanup;
    teardowncgroup = true;

1976 1977 1978 1979 1980
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto cleanup;
    teardownlabel = true;

1981 1982 1983 1984
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
        goto cleanup;
    if (!(devstr = qemuBuildUSBHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
        goto cleanup;
1985

1986
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs+1) < 0)
1987
        goto cleanup;
1988

1989
    qemuDomainObjEnterMonitor(driver, vm);
1990
    ret = qemuMonitorAddDevice(priv->mon, devstr);
1991 1992 1993 1994
    if (qemuDomainObjExitMonitor(driver, vm) < 0) {
        ret = -1;
        goto cleanup;
    }
1995
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
1996
    if (ret < 0)
1997
        goto cleanup;
1998 1999 2000

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

2001
    ret = 0;
2002
 cleanup:
2003 2004 2005 2006 2007 2008 2009
    if (ret < 0) {
        if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
            VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
        if (teardownlabel &&
            virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                                  vm->def, hostdev, NULL) < 0)
            VIR_WARN("Unable to restore host device labelling on hotplug fail");
2010
        if (added)
2011
            qemuHostdevReAttachUSBDevices(driver, vm->def->name, &hostdev, 1);
2012 2013
        if (releaseaddr)
            virDomainUSBAddressRelease(priv->usbaddrs, hostdev->info);
2014
    }
2015
    VIR_FREE(devstr);
2016
    return ret;
2017 2018
}

2019

2020
static int
2021 2022
qemuDomainAttachHostSCSIDevice(virConnectPtr conn,
                               virQEMUDriverPtr driver,
2023 2024 2025
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
2026
    size_t i;
2027 2028
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
2029
    virErrorPtr orig_err;
2030 2031
    char *devstr = NULL;
    char *drvstr = NULL;
2032
    bool teardowncgroup = false;
2033
    bool teardownlabel = false;
2034
    bool driveAdded = false;
2035

2036
    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_SCSI_GENERIC)) {
2037 2038 2039 2040 2041
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("SCSI passthrough is not supported by this version of qemu"));
        return -1;
    }

2042 2043 2044 2045 2046 2047 2048 2049 2050 2051 2052
    /* Let's make sure the disk has a controller defined and loaded before
     * trying to add it. The controller used by the disk must exist before a
     * qemu command line string is generated.
     *
     * Ensure that the given controller and all controllers with a smaller index
     * exist; there must not be any missing index in between.
     */
    for (i = 0; i <= hostdev->info->addr.drive.controller; i++) {
        if (!qemuDomainFindOrCreateSCSIDiskController(driver, vm, i))
            return -1;
    }
2053

2054
    if (qemuHostdevPrepareSCSIDevices(driver, vm->def->name,
2055
                                      &hostdev, 1)) {
2056
        virDomainHostdevSubsysSCSIPtr scsisrc = &hostdev->source.subsys.u.scsi;
2057 2058 2059 2060 2061 2062 2063 2064
        if (scsisrc->protocol == VIR_DOMAIN_HOSTDEV_SCSI_PROTOCOL_TYPE_ISCSI) {
            virDomainHostdevSubsysSCSIiSCSIPtr iscsisrc = &scsisrc->u.iscsi;
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("Unable to prepare scsi hostdev for iSCSI: %s"),
                           iscsisrc->path);
        } else {
            virDomainHostdevSubsysSCSIHostPtr scsihostsrc = &scsisrc->u.host;
            virReportError(VIR_ERR_INTERNAL_ERROR,
2065
                           _("Unable to prepare scsi hostdev: %s:%u:%u:%llu"),
2066 2067 2068
                           scsihostsrc->adapter, scsihostsrc->bus,
                           scsihostsrc->target, scsihostsrc->unit);
        }
2069 2070 2071
        return -1;
    }

2072
    if (qemuSetupHostdevCgroup(vm, hostdev) < 0)
2073 2074 2075
        goto cleanup;
    teardowncgroup = true;

2076 2077 2078 2079 2080
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto cleanup;
    teardownlabel = true;

2081
    if (qemuAssignDeviceHostdevAlias(vm->def, &hostdev->info->alias, -1) < 0)
2082 2083
        goto cleanup;

J
John Ferlan 已提交
2084
    if (qemuDomainSecretHostdevPrepare(conn, priv, hostdev) < 0)
2085 2086
        goto cleanup;

2087
    if (!(drvstr = qemuBuildSCSIHostdevDrvStr(hostdev)))
2088 2089 2090 2091 2092
        goto cleanup;

    if (!(devstr = qemuBuildSCSIHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
        goto cleanup;

2093
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs + 1) < 0)
2094 2095 2096 2097
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);

2098
    if (qemuMonitorAddDrive(priv->mon, drvstr) < 0)
2099 2100
        goto exit_monitor;
    driveAdded = true;
2101 2102

    if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
2103
        goto exit_monitor;
2104 2105

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
2106
        goto cleanup;
2107 2108

    virDomainAuditHostdev(vm, hostdev, "attach", true);
2109 2110 2111 2112

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    ret = 0;
2113

2114
 cleanup:
2115
    qemuDomainSecretHostdevDestroy(hostdev);
2116
    if (ret < 0) {
2117
        qemuHostdevReAttachSCSIDevices(driver, vm->def->name, &hostdev, 1);
2118 2119
        if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
            VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
2120 2121 2122 2123
        if (teardownlabel &&
            virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                                  vm->def, hostdev, NULL) < 0)
            VIR_WARN("Unable to restore host device labelling on hotplug fail");
2124
    }
2125 2126 2127
    VIR_FREE(drvstr);
    VIR_FREE(devstr);
    return ret;
2128

2129
 exit_monitor:
2130
    orig_err = virSaveLastError();
2131
    if (driveAdded && qemuMonitorDriveDel(priv->mon, drvstr) < 0) {
2132 2133 2134
        VIR_WARN("Unable to remove drive %s (%s) after failed "
                 "qemuMonitorAddDevice",
                 drvstr, devstr);
2135
    }
2136 2137 2138 2139 2140 2141 2142 2143 2144
    if (orig_err) {
        virSetError(orig_err);
        virFreeError(orig_err);
    }

    ignore_value(qemuDomainObjExitMonitor(driver, vm));
    virDomainAuditHostdev(vm, hostdev, "attach", false);

    goto cleanup;
2145 2146
}

2147 2148 2149 2150 2151 2152

int
qemuDomainAttachHostDevice(virConnectPtr conn,
                           virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainHostdevDefPtr hostdev)
2153 2154
{
    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
2155 2156 2157
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
2158 2159 2160 2161 2162
        return -1;
    }

    switch (hostdev->source.subsys.type) {
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
2163
        if (qemuDomainAttachHostPCIDevice(driver, vm,
2164
                                          hostdev) < 0)
2165 2166 2167 2168
            goto error;
        break;

    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
2169
        if (qemuDomainAttachHostUSBDevice(driver, vm,
2170
                                          hostdev) < 0)
2171 2172 2173
            goto error;
        break;

2174
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
2175
        if (qemuDomainAttachHostSCSIDevice(conn, driver, vm,
2176 2177 2178 2179
                                           hostdev) < 0)
            goto error;
        break;

2180
    default:
2181 2182 2183
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(hostdev->source.subsys.type));
2184 2185 2186 2187 2188
        goto error;
    }

    return 0;

2189
 error:
2190 2191 2192
    return -1;
}

2193
static int
2194
qemuDomainChangeNetBridge(virDomainObjPtr vm,
2195 2196
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
2197 2198
{
    int ret = -1;
2199 2200
    const char *oldbridge = virDomainNetGetActualBridgeName(olddev);
    const char *newbridge = virDomainNetGetActualBridgeName(newdev);
2201

2202 2203
    if (!oldbridge || !newbridge) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s", _("Missing bridge name"));
2204
        goto cleanup;
2205
    }
2206 2207 2208 2209 2210

    VIR_DEBUG("Change bridge for interface %s: %s -> %s",
              olddev->ifname, oldbridge, newbridge);

    if (virNetDevExists(newbridge) != 1) {
2211 2212
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("bridge %s doesn't exist"), newbridge);
2213
        goto cleanup;
2214 2215 2216 2217 2218
    }

    if (oldbridge) {
        ret = virNetDevBridgeRemovePort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, olddev, NULL, "detach", ret == 0);
2219 2220 2221 2222 2223 2224 2225 2226
        if (ret < 0) {
            /* warn but continue - possibly the old network
             * had been destroyed and reconstructed, leaving the
             * tap device orphaned.
             */
            VIR_WARN("Unable to detach device %s from bridge %s",
                     olddev->ifname, oldbridge);
        }
2227 2228 2229
    }

    ret = virNetDevBridgeAddPort(newbridge, olddev->ifname);
2230
    virDomainAuditNet(vm, NULL, newdev, "attach", ret == 0);
2231 2232 2233 2234
    if (ret < 0) {
        ret = virNetDevBridgeAddPort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, NULL, olddev, "attach", ret == 0);
        if (ret < 0) {
2235
            virReportError(VIR_ERR_OPERATION_FAILED,
2236
                           _("unable to recover former state by adding port "
2237
                             "to bridge %s"), oldbridge);
2238
        }
2239
        goto cleanup;
2240
    }
2241 2242
    /* caller will replace entire olddev with newdev in domain nets list */
    ret = 0;
2243
 cleanup:
2244
    return ret;
2245 2246
}

2247
static int
2248
qemuDomainChangeNetFilter(virDomainObjPtr vm,
2249 2250 2251 2252 2253 2254 2255 2256 2257 2258 2259 2260 2261 2262 2263 2264 2265 2266
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
{
    /* make sure this type of device supports filters. */
    switch (virDomainNetGetActualType(newdev)) {
    case VIR_DOMAIN_NET_TYPE_ETHERNET:
    case VIR_DOMAIN_NET_TYPE_BRIDGE:
    case VIR_DOMAIN_NET_TYPE_NETWORK:
        break;
    default:
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("filters not supported on interfaces of type %s"),
                       virDomainNetTypeToString(virDomainNetGetActualType(newdev)));
        return -1;
    }

    virDomainConfNWFilterTeardown(olddev);

2267
    if (newdev->filter &&
2268
        virDomainConfNWFilterInstantiate(vm->def->uuid, newdev) < 0) {
2269 2270 2271 2272 2273 2274 2275
        virErrorPtr errobj;

        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("failed to add new filter rules to '%s' "
                         "- attempting to restore old rules"),
                       olddev->ifname);
        errobj = virSaveLastError();
2276
        ignore_value(virDomainConfNWFilterInstantiate(vm->def->uuid, olddev));
2277 2278 2279 2280 2281 2282 2283
        virSetError(errobj);
        virFreeError(errobj);
        return -1;
    }
    return 0;
}

2284
int qemuDomainChangeNetLinkState(virQEMUDriverPtr driver,
2285 2286 2287 2288 2289 2290 2291 2292
                                 virDomainObjPtr vm,
                                 virDomainNetDefPtr dev,
                                 int linkstate)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;

    if (!dev->info.alias) {
2293 2294
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("can't change link state: device alias not found"));
2295 2296 2297
        return -1;
    }

2298 2299
    VIR_DEBUG("dev: %s, state: %d", dev->info.alias, linkstate);

2300
    qemuDomainObjEnterMonitor(driver, vm);
2301 2302 2303 2304 2305

    ret = qemuMonitorSetLink(priv->mon, dev->info.alias, linkstate);
    if (ret < 0)
        goto cleanup;

2306 2307 2308 2309 2310 2311 2312 2313 2314 2315 2316 2317 2318 2319 2320
    if (virDomainNetGetActualType(dev) == VIR_DOMAIN_NET_TYPE_ETHERNET) {
        switch (linkstate) {
            case VIR_DOMAIN_NET_INTERFACE_LINK_STATE_UP:
            case VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DEFAULT:
                if ((ret = virNetDevSetOnline(dev->ifname, true)) < 0)
                    goto cleanup;
                break;

            case VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN:
                if ((ret = virNetDevSetOnline(dev->ifname, false)) < 0)
                    goto cleanup;
                break;
            }
    }

2321 2322 2323
    /* modify the device configuration */
    dev->linkstate = linkstate;

2324
 cleanup:
2325 2326
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
2327 2328 2329 2330

    return ret;
}

2331
int
2332
qemuDomainChangeNet(virQEMUDriverPtr driver,
2333 2334
                    virDomainObjPtr vm,
                    virDomainDeviceDefPtr dev)
2335
{
2336
    virDomainNetDefPtr newdev = dev->data.net;
2337
    virDomainNetDefPtr *devslot = NULL;
2338 2339 2340 2341
    virDomainNetDefPtr olddev;
    int oldType, newType;
    bool needReconnect = false;
    bool needBridgeChange = false;
2342
    bool needFilterChange = false;
2343 2344
    bool needLinkStateChange = false;
    bool needReplaceDevDef = false;
2345
    bool needBandwidthSet = false;
2346
    int ret = -1;
2347 2348 2349 2350 2351
    int changeidx = -1;

    if ((changeidx = virDomainNetFindIdx(vm->def, newdev)) < 0)
        goto cleanup;
    devslot = &vm->def->nets[changeidx];
2352

2353
    if (!(olddev = *devslot)) {
2354
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
2355
                       _("cannot find existing network device to modify"));
2356 2357 2358 2359 2360 2361
        goto cleanup;
    }

    oldType = virDomainNetGetActualType(olddev);
    if (oldType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* no changes are possible to a type='hostdev' interface */
2362
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2363 2364 2365 2366 2367 2368 2369 2370 2371 2372 2373 2374 2375 2376 2377 2378 2379 2380 2381 2382 2383 2384
                       _("cannot change config of '%s' network type"),
                       virDomainNetTypeToString(oldType));
        goto cleanup;
    }

    /* Check individual attributes for changes that can't be done to a
     * live netdev. These checks *mostly* go in order of the
     * declarations in virDomainNetDef in order to assure nothing is
     * omitted. (exceptiong where noted in comments - in particular,
     * some things require that a new "actual device" be allocated
     * from the network driver first, but we delay doing that until
     * after we've made as many other checks as possible)
     */

    /* type: this can change (with some restrictions), but the actual
     * type of the new device connection isn't known until after we
     * allocate the "actual" device.
     */

    if (virMacAddrCmp(&olddev->mac, &newdev->mac)) {
        char oldmac[VIR_MAC_STRING_BUFLEN], newmac[VIR_MAC_STRING_BUFLEN];

2385
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2386 2387 2388 2389 2390 2391 2392 2393
                       _("cannot change network interface mac address "
                         "from %s to %s"),
                       virMacAddrFormat(&olddev->mac, oldmac),
                       virMacAddrFormat(&newdev->mac, newmac));
        goto cleanup;
    }

    if (STRNEQ_NULLABLE(olddev->model, newdev->model)) {
2394
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2395 2396 2397 2398
                       _("cannot modify network device model from %s to %s"),
                       olddev->model ? olddev->model : "(default)",
                       newdev->model ? newdev->model : "(default)");
        goto cleanup;
2399 2400
    }

2401 2402 2403 2404
    if (olddev->model && STREQ(olddev->model, "virtio") &&
        (olddev->driver.virtio.name != newdev->driver.virtio.name ||
         olddev->driver.virtio.txmode != newdev->driver.virtio.txmode ||
         olddev->driver.virtio.ioeventfd != newdev->driver.virtio.ioeventfd ||
2405
         olddev->driver.virtio.event_idx != newdev->driver.virtio.event_idx ||
2406 2407 2408 2409 2410 2411 2412
         olddev->driver.virtio.queues != newdev->driver.virtio.queues ||
         olddev->driver.virtio.host.csum != newdev->driver.virtio.host.csum ||
         olddev->driver.virtio.host.gso != newdev->driver.virtio.host.gso ||
         olddev->driver.virtio.host.tso4 != newdev->driver.virtio.host.tso4 ||
         olddev->driver.virtio.host.tso6 != newdev->driver.virtio.host.tso6 ||
         olddev->driver.virtio.host.ecn != newdev->driver.virtio.host.ecn ||
         olddev->driver.virtio.host.ufo != newdev->driver.virtio.host.ufo ||
J
Ján Tomko 已提交
2413
         olddev->driver.virtio.host.mrg_rxbuf != newdev->driver.virtio.host.mrg_rxbuf ||
2414 2415 2416 2417 2418
         olddev->driver.virtio.guest.csum != newdev->driver.virtio.guest.csum ||
         olddev->driver.virtio.guest.tso4 != newdev->driver.virtio.guest.tso4 ||
         olddev->driver.virtio.guest.tso6 != newdev->driver.virtio.guest.tso6 ||
         olddev->driver.virtio.guest.ecn != newdev->driver.virtio.guest.ecn ||
         olddev->driver.virtio.guest.ufo != newdev->driver.virtio.guest.ufo)) {
2419
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2420 2421 2422 2423 2424 2425 2426 2427 2428 2429
                       _("cannot modify virtio network device driver attributes"));
        goto cleanup;
    }

    /* data: this union will be examined later, after allocating new actualdev */
    /* virtPortProfile: will be examined later, after allocating new actualdev */

    if (olddev->tune.sndbuf_specified != newdev->tune.sndbuf_specified ||
        olddev->tune.sndbuf != newdev->tune.sndbuf) {
        needReconnect = true;
2430 2431
    }

2432
    if (STRNEQ_NULLABLE(olddev->script, newdev->script)) {
2433
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2434 2435
                       _("cannot modify network device script attribute"));
        goto cleanup;
2436 2437
    }

2438
    /* ifname: check if it's set in newdev. If not, retain the autogenerated one */
2439
    if (!newdev->ifname && VIR_STRDUP(newdev->ifname, olddev->ifname) < 0)
2440 2441
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->ifname, newdev->ifname)) {
2442
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2443 2444 2445
                       _("cannot modify network device tap name"));
        goto cleanup;
    }
2446

2447 2448 2449 2450 2451 2452 2453 2454 2455 2456 2457
    /* info: if newdev->info is empty, fill it in from olddev,
     * otherwise verify that it matches - nothing is allowed to
     * change. (There is no helper function to do this, so
     * individually check the few feidls of virDomainDeviceInfo that
     * are relevant in this case).
     */
    if (!virDomainDeviceAddressIsValid(&newdev->info,
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) &&
        virDomainDeviceInfoCopy(&newdev->info, &olddev->info) < 0) {
        goto cleanup;
    }
2458
    if (!virPCIDeviceAddressEqual(&olddev->info.addr.pci,
2459
                                  &newdev->info.addr.pci)) {
2460
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2461 2462 2463 2464
                       _("cannot modify network device guest PCI address"));
        goto cleanup;
    }
    /* grab alias from olddev if not set in newdev */
2465 2466
    if (!newdev->info.alias &&
        VIR_STRDUP(newdev->info.alias, olddev->info.alias) < 0)
2467 2468
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->info.alias, newdev->info.alias)) {
2469
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2470 2471 2472 2473
                       _("cannot modify network device alias"));
        goto cleanup;
    }
    if (olddev->info.rombar != newdev->info.rombar) {
2474
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2475 2476 2477 2478
                       _("cannot modify network device rom bar setting"));
        goto cleanup;
    }
    if (STRNEQ_NULLABLE(olddev->info.romfile, newdev->info.romfile)) {
2479
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2480 2481 2482 2483
                       _("cannot modify network rom file"));
        goto cleanup;
    }
    if (olddev->info.bootIndex != newdev->info.bootIndex) {
2484
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2485 2486 2487 2488
                       _("cannot modify network device boot index setting"));
        goto cleanup;
    }
    /* (end of device info checks) */
2489

2490 2491 2492 2493
    if (STRNEQ_NULLABLE(olddev->filter, newdev->filter) ||
        !virNWFilterHashTableEqual(olddev->filterparams, newdev->filterparams)) {
        needFilterChange = true;
    }
2494

2495 2496 2497 2498 2499 2500 2501 2502
    /* bandwidth can be modified, and will be checked later */
    /* vlan can be modified, and will be checked later */
    /* linkstate can be modified */

    /* allocate new actual device to compare to old - we will need to
     * free it if we fail for any reason
     */
    if (newdev->type == VIR_DOMAIN_NET_TYPE_NETWORK &&
2503
        networkAllocateActualDevice(vm->def, newdev) < 0) {
2504 2505 2506 2507 2508 2509 2510
        goto cleanup;
    }

    newType = virDomainNetGetActualType(newdev);

    if (newType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* can't turn it into a type='hostdev' interface */
2511
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2512 2513 2514 2515 2516 2517
                       _("cannot change network interface type to '%s'"),
                       virDomainNetTypeToString(newType));
        goto cleanup;
    }

    if (olddev->type == newdev->type && oldType == newType) {
2518

2519 2520 2521 2522 2523 2524
        /* if type hasn't changed, check the relevant fields for the type */
        switch (newdev->type) {
        case VIR_DOMAIN_NET_TYPE_USER:
            break;

        case VIR_DOMAIN_NET_TYPE_ETHERNET:
2525
            break;
2526

2527 2528 2529
        case VIR_DOMAIN_NET_TYPE_SERVER:
        case VIR_DOMAIN_NET_TYPE_CLIENT:
        case VIR_DOMAIN_NET_TYPE_MCAST:
2530
        case VIR_DOMAIN_NET_TYPE_UDP:
2531 2532 2533 2534 2535 2536 2537 2538 2539 2540 2541 2542 2543 2544 2545 2546 2547 2548 2549 2550 2551 2552 2553 2554 2555 2556 2557 2558 2559 2560 2561 2562 2563
            if (STRNEQ_NULLABLE(olddev->data.socket.address,
                                newdev->data.socket.address) ||
                olddev->data.socket.port != newdev->data.socket.port) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_NETWORK:
            if (STRNEQ(olddev->data.network.name, newdev->data.network.name)) {
                if (virDomainNetGetActualVirtPortProfile(newdev))
                    needReconnect = true;
                else
                    needBridgeChange = true;
            }
            /* other things handled in common code directly below this switch */
            break;

        case VIR_DOMAIN_NET_TYPE_BRIDGE:
            /* all handled in bridge name checked in common code below */
            break;

        case VIR_DOMAIN_NET_TYPE_INTERNAL:
            if (STRNEQ_NULLABLE(olddev->data.internal.name,
                                newdev->data.internal.name)) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_DIRECT:
            /* all handled in common code directly below this switch */
            break;

        default:
2564
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2565 2566 2567
                           _("unable to change config on '%s' network type"),
                           virDomainNetTypeToString(newdev->type));
            break;
2568

2569
        }
2570 2571 2572 2573 2574 2575 2576 2577 2578 2579 2580 2581 2582 2583 2584 2585 2586 2587 2588 2589 2590 2591 2592 2593 2594 2595 2596 2597 2598 2599 2600
    } else {
        /* interface type has changed. There are a few special cases
         * where this can only require a minor (or even no) change,
         * but in most cases we need to do a full reconnection.
         *
         * If we switch (in either direction) between type='bridge'
         * and type='network' (for a traditional managed virtual
         * network that uses a host bridge, i.e. forward
         * mode='route|nat'), we just need to change the bridge.
         */
        if ((oldType == VIR_DOMAIN_NET_TYPE_NETWORK &&
             newType == VIR_DOMAIN_NET_TYPE_BRIDGE) ||
            (oldType == VIR_DOMAIN_NET_TYPE_BRIDGE &&
             newType == VIR_DOMAIN_NET_TYPE_NETWORK)) {

            needBridgeChange = true;

        } else if (oldType == VIR_DOMAIN_NET_TYPE_DIRECT &&
                   newType == VIR_DOMAIN_NET_TYPE_DIRECT) {

            /* this is the case of switching from type='direct' to
             * type='network' for a network that itself uses direct
             * (macvtap) devices. If the physical device and mode are
             * the same, this doesn't require any actual setup
             * change. If the physical device or mode *does* change,
             * that will be caught in the common section below */

        } else {

            /* for all other combinations, we'll need a full reconnect */
            needReconnect = true;
2601 2602

        }
2603
    }
2604

2605 2606 2607 2608 2609 2610 2611 2612 2613 2614 2615
    /* now several things that are in multiple (but not all)
     * different types, and can be safely compared even for those
     * cases where they don't apply to a particular type.
     */
    if (STRNEQ_NULLABLE(virDomainNetGetActualBridgeName(olddev),
                        virDomainNetGetActualBridgeName(newdev))) {
        if (virDomainNetGetActualVirtPortProfile(newdev))
            needReconnect = true;
        else
            needBridgeChange = true;
    }
2616

2617 2618 2619 2620 2621 2622 2623 2624
    if (STRNEQ_NULLABLE(virDomainNetGetActualDirectDev(olddev),
                        virDomainNetGetActualDirectDev(newdev)) ||
        virDomainNetGetActualDirectMode(olddev) != virDomainNetGetActualDirectMode(olddev) ||
        !virNetDevVPortProfileEqual(virDomainNetGetActualVirtPortProfile(olddev),
                                    virDomainNetGetActualVirtPortProfile(newdev)) ||
        !virNetDevVlanEqual(virDomainNetGetActualVlan(olddev),
                            virDomainNetGetActualVlan(newdev))) {
        needReconnect = true;
2625 2626
    }

2627 2628 2629
    if (olddev->linkstate != newdev->linkstate)
        needLinkStateChange = true;

2630 2631 2632 2633
    if (!virNetDevBandwidthEqual(virDomainNetGetActualBandwidth(olddev),
                                 virDomainNetGetActualBandwidth(newdev)))
        needBandwidthSet = true;

2634 2635 2636
    /* FINALLY - actually perform the required actions */

    if (needReconnect) {
2637
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2638 2639 2640
                       _("unable to change config on '%s' network type"),
                       virDomainNetTypeToString(newdev->type));
        goto cleanup;
2641 2642
    }

2643 2644 2645
    if (needBandwidthSet) {
        if (virNetDevBandwidthSet(newdev->ifname,
                                  virDomainNetGetActualBandwidth(newdev),
2646
                                  false) < 0)
2647 2648 2649 2650
            goto cleanup;
        needReplaceDevDef = true;
    }

2651
    if (needBridgeChange) {
2652
        if (qemuDomainChangeNetBridge(vm, olddev, newdev) < 0)
2653 2654 2655
            goto cleanup;
        /* we successfully switched to the new bridge, and we've
         * determined that the rest of newdev is equivalent to olddev,
2656 2657 2658 2659 2660
         * so move newdev into place */
        needReplaceDevDef = true;
    }

    if (needFilterChange) {
2661
        if (qemuDomainChangeNetFilter(vm, olddev, newdev) < 0)
2662 2663 2664 2665
            goto cleanup;
        /* we successfully switched to the new filter, and we've
         * determined that the rest of newdev is equivalent to olddev,
         * so move newdev into place */
2666
        needReplaceDevDef = true;
2667 2668
    }

2669 2670 2671
    if (needLinkStateChange &&
        qemuDomainChangeNetLinkState(driver, vm, olddev, newdev->linkstate) < 0) {
        goto cleanup;
2672 2673
    }

2674 2675 2676 2677
    if (needReplaceDevDef) {
        /* the changes above warrant replacing olddev with newdev in
         * the domain's nets list.
         */
2678 2679 2680

        /* this function doesn't work with HOSTDEV networks yet, thus
         * no need to change the pointer in the hostdev structure */
2681
        networkReleaseActualDevice(vm->def, olddev);
2682 2683 2684 2685 2686 2687 2688 2689
        virDomainNetDefFree(olddev);
        /* move newdev into the nets list, and NULL it out from the
         * virDomainDeviceDef that we were given so that the caller
         * won't delete it on return.
         */
        *devslot = newdev;
        newdev = dev->data.net = NULL;
        dev->type = VIR_DOMAIN_DEVICE_NONE;
2690 2691
    }

2692
    ret = 0;
2693
 cleanup:
2694 2695 2696 2697 2698 2699 2700 2701 2702 2703 2704 2705 2706 2707 2708 2709 2710 2711 2712
    /* When we get here, we will be in one of these two states:
     *
     * 1) newdev has been moved into the domain's list of nets and
     *    newdev set to NULL, and dev->data.net will be NULL (and
     *    dev->type is NONE). olddev will have been completely
     *    released and freed. (aka success) In this case no extra
     *    cleanup is needed.
     *
     * 2) newdev has *not* been moved into the domain's list of nets,
     *    and dev->data.net == newdev (and dev->type == NET). In this *
     *    case, we need to at least release the "actual device" from *
     *    newdev (the caller will free dev->data.net a.k.a. newdev, and
     *    the original olddev is still in used)
     *
     * Note that case (2) isn't necessarily a failure. It may just be
     * that the changes were minor enough that we didn't need to
     * replace the entire device object.
     */
    if (newdev)
2713
        networkReleaseActualDevice(vm->def, newdev);
2714

2715 2716 2717
    return ret;
}

2718 2719 2720
static virDomainGraphicsDefPtr
qemuDomainFindGraphics(virDomainObjPtr vm,
                       virDomainGraphicsDefPtr dev)
2721
{
2722
    size_t i;
2723

2724
    for (i = 0; i < vm->def->ngraphics; i++) {
2725 2726 2727 2728 2729 2730 2731
        if (vm->def->graphics[i]->type == dev->type)
            return vm->def->graphics[i];
    }

    return NULL;
}

2732 2733 2734 2735 2736 2737 2738 2739 2740 2741 2742 2743 2744 2745
int
qemuDomainFindGraphicsIndex(virDomainDefPtr def,
                            virDomainGraphicsDefPtr dev)
{
    size_t i;

    for (i = 0; i < def->ngraphics; i++) {
        if (def->graphics[i]->type == dev->type)
            return i;
    }

    return -1;
}

2746
int
2747
qemuDomainChangeGraphics(virQEMUDriverPtr driver,
2748 2749 2750 2751
                         virDomainObjPtr vm,
                         virDomainGraphicsDefPtr dev)
{
    virDomainGraphicsDefPtr olddev = qemuDomainFindGraphics(vm, dev);
2752
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
2753
    const char *type = virDomainGraphicsTypeToString(dev->type);
2754
    size_t i;
2755
    int ret = -1;
2756 2757

    if (!olddev) {
2758 2759
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("cannot find existing graphics device to modify"));
2760
        goto cleanup;
2761 2762
    }

2763
    if (dev->nListens != olddev->nListens) {
2764 2765 2766
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("cannot change the number of listen addresses "
                         "on '%s' graphics"), type);
2767 2768 2769 2770
        goto cleanup;
    }

    for (i = 0; i < dev->nListens; i++) {
J
Jim Fehlig 已提交
2771
        virDomainGraphicsListenDefPtr newlisten = &dev->listens[i];
2772 2773
        virDomainGraphicsListenDefPtr oldlisten = &olddev->listens[i];

J
Jim Fehlig 已提交
2774
        if (newlisten->type != oldlisten->type) {
2775 2776 2777
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                           _("cannot change the type of listen address "
                             "on '%s' graphics"), type);
2778 2779 2780
            goto cleanup;
        }

2781
        switch (newlisten->type) {
2782
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_ADDRESS:
J
Jim Fehlig 已提交
2783
            if (STRNEQ_NULLABLE(newlisten->address, oldlisten->address)) {
2784 2785 2786
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen address setting "
                                 "on '%s' graphics"), type);
2787 2788
                goto cleanup;
            }
2789

2790 2791 2792
            break;

        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NETWORK:
J
Jim Fehlig 已提交
2793
            if (STRNEQ_NULLABLE(newlisten->network, oldlisten->network)) {
2794 2795 2796
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen address setting "
                                 "on '%s' graphics"), type);
2797 2798
                goto cleanup;
            }
2799

2800 2801
            break;

2802 2803 2804 2805 2806 2807 2808 2809 2810
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_SOCKET:
            if (STRNEQ_NULLABLE(newlisten->socket, oldlisten->socket)) {
                virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                               _("cannot change listen socket setting "
                                 "on '%s' graphics"), type);
                goto cleanup;
            }
            break;

2811 2812 2813 2814 2815 2816
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NONE:
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_LAST:
            /* nada */
            break;
        }
    }
2817

2818 2819
    switch (dev->type) {
    case VIR_DOMAIN_GRAPHICS_TYPE_VNC:
2820 2821 2822
        if ((olddev->data.vnc.autoport != dev->data.vnc.autoport) ||
            (!dev->data.vnc.autoport &&
             (olddev->data.vnc.port != dev->data.vnc.port))) {
2823
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2824
                           _("cannot change port settings on vnc graphics"));
2825
            goto cleanup;
2826 2827
        }
        if (STRNEQ_NULLABLE(olddev->data.vnc.keymap, dev->data.vnc.keymap)) {
2828
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2829
                           _("cannot change keymap setting on vnc graphics"));
2830
            goto cleanup;
2831 2832
        }

2833 2834 2835
        /* If a password lifetime was, or is set, or action if connected has
         * changed, then we must always run, even if new password matches
         * old password */
2836 2837
        if (olddev->data.vnc.auth.expires ||
            dev->data.vnc.auth.expires ||
2838
            olddev->data.vnc.auth.connected != dev->data.vnc.auth.connected ||
E
Eric Blake 已提交
2839 2840 2841
            STRNEQ_NULLABLE(olddev->data.vnc.auth.passwd,
                            dev->data.vnc.auth.passwd)) {
            VIR_DEBUG("Updating password on VNC server %p %p",
2842
                      dev->data.vnc.auth.passwd, cfg->vncPassword);
E
Eric Blake 已提交
2843 2844 2845
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_VNC,
                                                    &dev->data.vnc.auth,
2846 2847
                                                    cfg->vncPassword,
                                                    QEMU_ASYNC_JOB_NONE);
2848
            if (ret < 0)
2849
                goto cleanup;
2850 2851 2852 2853 2854

            /* Steal the new dev's  char * reference */
            VIR_FREE(olddev->data.vnc.auth.passwd);
            olddev->data.vnc.auth.passwd = dev->data.vnc.auth.passwd;
            dev->data.vnc.auth.passwd = NULL;
2855 2856
            olddev->data.vnc.auth.validTo = dev->data.vnc.auth.validTo;
            olddev->data.vnc.auth.expires = dev->data.vnc.auth.expires;
2857
            olddev->data.vnc.auth.connected = dev->data.vnc.auth.connected;
2858 2859 2860 2861 2862
        } else {
            ret = 0;
        }
        break;

2863
    case VIR_DOMAIN_GRAPHICS_TYPE_SPICE:
2864 2865 2866 2867 2868
        if ((olddev->data.spice.autoport != dev->data.spice.autoport) ||
            (!dev->data.spice.autoport &&
             (olddev->data.spice.port != dev->data.spice.port)) ||
            (!dev->data.spice.autoport &&
             (olddev->data.spice.tlsPort != dev->data.spice.tlsPort))) {
2869
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2870
                           _("cannot change port settings on spice graphics"));
2871
            goto cleanup;
2872
        }
E
Eric Blake 已提交
2873 2874
        if (STRNEQ_NULLABLE(olddev->data.spice.keymap,
                            dev->data.spice.keymap)) {
2875
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2876
                            _("cannot change keymap setting on spice graphics"));
2877
            goto cleanup;
2878 2879
        }

2880 2881 2882 2883 2884
        /* We must reset the password if it has changed but also if:
         * - password lifetime is or was set
         * - the requested action has changed
         * - the action is "disconnect"
         */
2885 2886
        if (olddev->data.spice.auth.expires ||
            dev->data.spice.auth.expires ||
2887
            olddev->data.spice.auth.connected != dev->data.spice.auth.connected ||
2888 2889
            dev->data.spice.auth.connected ==
            VIR_DOMAIN_GRAPHICS_AUTH_CONNECTED_DISCONNECT ||
E
Eric Blake 已提交
2890 2891 2892
            STRNEQ_NULLABLE(olddev->data.spice.auth.passwd,
                            dev->data.spice.auth.passwd)) {
            VIR_DEBUG("Updating password on SPICE server %p %p",
2893
                      dev->data.spice.auth.passwd, cfg->spicePassword);
E
Eric Blake 已提交
2894 2895 2896
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_SPICE,
                                                    &dev->data.spice.auth,
2897 2898
                                                    cfg->spicePassword,
                                                    QEMU_ASYNC_JOB_NONE);
E
Eric Blake 已提交
2899

2900
            if (ret < 0)
2901
                goto cleanup;
2902

E
Eric Blake 已提交
2903
            /* Steal the new dev's char * reference */
2904 2905 2906 2907 2908
            VIR_FREE(olddev->data.spice.auth.passwd);
            olddev->data.spice.auth.passwd = dev->data.spice.auth.passwd;
            dev->data.spice.auth.passwd = NULL;
            olddev->data.spice.auth.validTo = dev->data.spice.auth.validTo;
            olddev->data.spice.auth.expires = dev->data.spice.auth.expires;
2909
            olddev->data.spice.auth.connected = dev->data.spice.auth.connected;
2910
        } else {
2911
            VIR_DEBUG("Not updating since password didn't change");
2912 2913
            ret = 0;
        }
E
Eric Blake 已提交
2914
        break;
2915

2916
    default:
2917
        virReportError(VIR_ERR_INTERNAL_ERROR,
2918
                       _("unable to change config on '%s' graphics type"), type);
2919 2920 2921
        break;
    }

2922
 cleanup:
2923
    virObjectUnref(cfg);
2924 2925 2926 2927
    return ret;
}


2928
static int qemuComparePCIDevice(virDomainDefPtr def ATTRIBUTE_UNUSED,
2929
                                virDomainDeviceDefPtr device ATTRIBUTE_UNUSED,
2930
                                virDomainDeviceInfoPtr info1,
2931 2932
                                void *opaque)
{
2933
    virDomainDeviceInfoPtr info2 = opaque;
2934

2935 2936
    if (info1->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI ||
        info2->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)
2937 2938
        return 0;

2939 2940 2941
    if (info1->addr.pci.domain == info2->addr.pci.domain &&
        info1->addr.pci.bus == info2->addr.pci.bus &&
        info1->addr.pci.slot == info2->addr.pci.slot &&
2942
        info1->addr.pci.function != info2->addr.pci.function)
2943 2944 2945 2946 2947 2948 2949 2950 2951 2952 2953 2954
        return -1;
    return 0;
}

static bool qemuIsMultiFunctionDevice(virDomainDefPtr def,
                                      virDomainDeviceInfoPtr dev)
{
    if (virDomainDeviceInfoIterate(def, qemuComparePCIDevice, dev) < 0)
        return true;
    return false;
}

2955

2956
static int
2957 2958 2959 2960 2961
qemuDomainRemoveDiskDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainDiskDefPtr disk)
{
    virDomainDeviceDef dev;
2962
    virObjectEventPtr event;
2963
    size_t i;
2964
    const char *src = virDomainDiskGetSource(disk);
2965 2966
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drivestr;
2967
    char *objAlias = NULL;
2968
    char *encAlias = NULL;
2969 2970 2971 2972

    VIR_DEBUG("Removing disk %s from domain %p %s",
              disk->info.alias, vm, vm->def->name);

2973 2974
    /* build the actual drive id string as the disk->info.alias doesn't
     * contain the QEMU_DRIVE_HOST_PREFIX that is passed to qemu */
2975
    if (!(drivestr = qemuAliasFromDisk(disk)))
2976 2977
        return -1;

2978 2979 2980 2981 2982 2983 2984 2985
    /* Let's look for some markers for a secret object and create an alias
     * object to be used to attempt to delete the object that was created.
     * We cannot just use the disk private secret info since it would have
     * been removed during cleanup of qemuProcessLaunch. Likewise, libvirtd
     * restart wouldn't have them, so no assumption can be made. */
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_OBJECT_SECRET) &&
        qemuDomainSecretDiskCapable(disk->src)) {

2986 2987
        if (!(objAlias =
              qemuDomainGetSecretAESAlias(disk->info.alias, false))) {
2988 2989 2990 2991 2992
            VIR_FREE(drivestr);
            return -1;
        }
    }

2993 2994 2995 2996
    /* Similarly, if this is possible a device using LUKS encryption, we
     * can remove the luks object password too
     */
    if (!virStorageSourceIsEmpty(disk->src) && disk->src->encryption &&
2997
        disk->src->encryption->format == VIR_STORAGE_ENCRYPTION_FORMAT_LUKS) {
2998 2999 3000 3001 3002 3003 3004 3005 3006

        if (!(encAlias =
              qemuDomainGetSecretAESAlias(disk->info.alias, true))) {
            VIR_FREE(objAlias);
            VIR_FREE(drivestr);
            return -1;
        }
    }

3007
    qemuDomainObjEnterMonitor(driver, vm);
3008 3009 3010 3011 3012 3013

    /* If it fails, then so be it - it was a best shot */
    if (objAlias)
        ignore_value(qemuMonitorDelObject(priv->mon, objAlias));
    VIR_FREE(objAlias);

3014 3015 3016 3017 3018
    /* If it fails, then so be it - it was a best shot */
    if (encAlias)
        ignore_value(qemuMonitorDelObject(priv->mon, encAlias));
    VIR_FREE(encAlias);

3019 3020
    qemuMonitorDriveDel(priv->mon, drivestr);
    VIR_FREE(drivestr);
3021 3022
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
3023

3024
    virDomainAuditDisk(vm, disk->src, NULL, "detach", true);
3025

3026
    event = virDomainEventDeviceRemovedNewFromObj(vm, disk->info.alias);
3027
    qemuDomainEventQueue(driver, event);
3028

3029 3030 3031 3032 3033 3034 3035
    for (i = 0; i < vm->def->ndisks; i++) {
        if (vm->def->disks[i] == disk) {
            virDomainDiskRemove(vm->def, i);
            break;
        }
    }

3036
    qemuDomainReleaseDeviceAddress(vm, &disk->info, src);
3037

3038 3039
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
3040
        VIR_WARN("Unable to restore security label on %s", src);
3041 3042

    if (qemuTeardownDiskCgroup(vm, disk) < 0)
3043
        VIR_WARN("Failed to tear down cgroup for disk path %s", src);
3044 3045

    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
3046
        VIR_WARN("Unable to release lock on %s", src);
3047 3048 3049 3050

    dev.type = VIR_DOMAIN_DEVICE_DISK;
    dev.data.disk = disk;
    ignore_value(qemuRemoveSharedDevice(driver, &dev, vm->def->name));
3051 3052
    if (priv->usbaddrs)
        virDomainUSBAddressRelease(priv->usbaddrs, &disk->info);
3053 3054

    virDomainDiskDefFree(disk);
3055
    return 0;
3056 3057 3058
}


3059
static int
3060
qemuDomainRemoveControllerDevice(virQEMUDriverPtr driver,
3061 3062 3063
                                 virDomainObjPtr vm,
                                 virDomainControllerDefPtr controller)
{
3064
    virObjectEventPtr event;
3065 3066 3067 3068 3069
    size_t i;

    VIR_DEBUG("Removing controller %s from domain %p %s",
              controller->info.alias, vm, vm->def->name);

3070
    event = virDomainEventDeviceRemovedNewFromObj(vm, controller->info.alias);
3071
    qemuDomainEventQueue(driver, event);
3072

3073 3074 3075 3076 3077 3078 3079 3080 3081
    for (i = 0; i < vm->def->ncontrollers; i++) {
        if (vm->def->controllers[i] == controller) {
            virDomainControllerRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
    virDomainControllerDefFree(controller);
3082
    return 0;
3083 3084 3085
}


3086 3087 3088 3089 3090 3091
static int
qemuDomainRemoveMemoryDevice(virQEMUDriverPtr driver,
                             virDomainObjPtr vm,
                             virDomainMemoryDefPtr mem)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3092
    unsigned long long oldmem = virDomainDefGetMemoryTotal(vm->def);
3093
    unsigned long long newmem = oldmem - mem->size;
3094 3095 3096 3097 3098 3099 3100 3101
    virObjectEventPtr event;
    char *backendAlias = NULL;
    int rc;
    int idx;

    VIR_DEBUG("Removing memory device %s from domain %p %s",
              mem->info.alias, vm, vm->def->name);

3102 3103
    event = virDomainEventDeviceRemovedNewFromObj(vm, mem->info.alias);
    qemuDomainEventQueue(driver, event);
3104 3105

    if (virAsprintf(&backendAlias, "mem%s", mem->info.alias) < 0)
3106
        return -1;
3107 3108 3109

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelObject(priv->mon, backendAlias);
3110 3111 3112 3113 3114 3115 3116 3117
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        rc = -1;

    VIR_FREE(backendAlias);

    virDomainAuditMemory(vm, oldmem, newmem, "update", rc == 0);
    if (rc < 0)
        return -1;
3118 3119 3120 3121 3122

    if ((idx = virDomainMemoryFindByDef(vm->def, mem)) >= 0)
        virDomainMemoryRemove(vm->def, idx);

    virDomainMemoryDefFree(mem);
3123

3124 3125 3126
    /* fix the balloon size */
    ignore_value(qemuProcessRefreshBalloonState(driver, vm, QEMU_ASYNC_JOB_NONE));

3127
    /* decrease the mlock limit after memory unplug if necessary */
3128
    ignore_value(qemuDomainAdjustMaxMemLock(vm));
3129

3130
    return 0;
3131 3132 3133
}


3134 3135 3136 3137 3138
static void
qemuDomainRemovePCIHostDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
{
3139
    qemuHostdevReAttachPCIDevices(driver, vm->def->name, &hostdev, 1);
3140 3141 3142 3143 3144
    qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
}

static void
qemuDomainRemoveUSBHostDevice(virQEMUDriverPtr driver,
3145
                              virDomainObjPtr vm,
3146 3147
                              virDomainHostdevDefPtr hostdev)
{
3148
    qemuHostdevReAttachUSBDevices(driver, vm->def->name, &hostdev, 1);
3149
    qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
3150 3151 3152 3153 3154 3155 3156
}

static void
qemuDomainRemoveSCSIHostDevice(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
3157
    qemuHostdevReAttachSCSIDevices(driver, vm->def->name, &hostdev, 1);
3158 3159
}

3160
static int
3161 3162 3163 3164
qemuDomainRemoveHostDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainHostdevDefPtr hostdev)
{
3165
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3166
    virDomainNetDefPtr net = NULL;
3167
    virObjectEventPtr event;
3168
    size_t i;
3169 3170 3171
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drivestr = NULL;
3172
    bool is_vfio = false;
3173 3174 3175 3176

    VIR_DEBUG("Removing host device %s from domain %p %s",
              hostdev->info->alias, vm, vm->def->name);

3177 3178 3179 3180 3181
    if (hostdev->source.subsys.type == VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI) {
        int backend = hostdev->source.subsys.u.pci.backend;
        is_vfio = backend == VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO;
    }

3182 3183 3184 3185 3186 3187 3188 3189 3190 3191
    if (hostdev->source.subsys.type == VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI) {
        /* build the actual drive id string as generated during
         * qemuBuildSCSIHostdevDrvStr that is passed to qemu */
        if (virAsprintf(&drivestr, "%s-%s",
                        virDomainDeviceAddressTypeToString(hostdev->info->type),
                        hostdev->info->alias) < 0)
            goto cleanup;

        qemuDomainObjEnterMonitor(driver, vm);
        qemuMonitorDriveDel(priv->mon, drivestr);
3192 3193
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
            goto cleanup;
3194 3195
    }

3196
    event = virDomainEventDeviceRemovedNewFromObj(vm, hostdev->info->alias);
3197
    qemuDomainEventQueue(driver, event);
3198

3199 3200 3201 3202 3203 3204 3205 3206 3207 3208 3209 3210 3211 3212 3213 3214 3215 3216 3217 3218
    if (hostdev->parent.type == VIR_DOMAIN_DEVICE_NET) {
        net = hostdev->parent.data.net;

        for (i = 0; i < vm->def->nnets; i++) {
            if (vm->def->nets[i] == net) {
                virDomainNetRemove(vm->def, i);
                break;
            }
        }
    }

    for (i = 0; i < vm->def->nhostdevs; i++) {
        if (vm->def->hostdevs[i] == hostdev) {
            virDomainHostdevRemove(vm->def, i);
            break;
        }
    }

    virDomainAuditHostdev(vm, hostdev, "detach", true);

3219 3220 3221 3222
    if (!is_vfio &&
        virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                              vm->def, hostdev, NULL) < 0)
        VIR_WARN("Failed to restore host device labelling");
3223

3224 3225 3226
    if (qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Failed to remove host device cgroup ACL");

3227
    switch ((virDomainHostdevSubsysType) hostdev->source.subsys.type) {
3228 3229
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
        qemuDomainRemovePCIHostDevice(driver, vm, hostdev);
3230 3231 3232 3233
        /* QEMU might no longer need to lock as much memory, eg. we just
         * detached the last VFIO device, so adjust the limit here */
        if (qemuDomainAdjustMaxMemLock(vm) < 0)
            VIR_WARN("Failed to adjust locked memory limit");
3234 3235 3236 3237 3238 3239 3240 3241 3242 3243 3244 3245 3246 3247
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
        qemuDomainRemoveUSBHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
        qemuDomainRemoveSCSIHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_LAST:
        break;
    }

    virDomainHostdevDefFree(hostdev);

    if (net) {
3248
        networkReleaseActualDevice(vm->def, net);
3249 3250
        virDomainNetDefFree(net);
    }
3251

3252 3253 3254 3255
    ret = 0;

 cleanup:
    VIR_FREE(drivestr);
3256
    virObjectUnref(cfg);
3257
    return ret;
3258 3259 3260
}


3261
static int
3262 3263 3264 3265 3266
qemuDomainRemoveNetDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr net)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3267
    qemuDomainObjPrivatePtr priv = vm->privateData;
3268
    virNetDevVPortProfilePtr vport;
3269
    virObjectEventPtr event;
3270
    char *hostnet_name = NULL;
3271
    size_t i;
3272
    int ret = -1;
3273

3274 3275
    if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* this function handles all hostdev and netdev cleanup */
3276 3277
        ret = qemuDomainRemoveHostDevice(driver, vm,
                                         virDomainNetGetActualHostdev(net));
3278
        goto cleanup;
3279 3280
    }

3281 3282 3283
    VIR_DEBUG("Removing network interface %s from domain %p %s",
              net->info.alias, vm, vm->def->name);

3284 3285 3286 3287
    if (virAsprintf(&hostnet_name, "host%s", net->info.alias) < 0)
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
3288
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
3289
        if (qemuMonitorRemoveNetdev(priv->mon, hostnet_name) < 0) {
3290 3291
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
3292 3293 3294 3295 3296 3297 3298 3299 3300 3301 3302
            virDomainAuditNet(vm, net, NULL, "detach", false);
            goto cleanup;
        }
    } else {
        int vlan;
        if ((vlan = qemuDomainNetVLAN(net)) < 0 ||
            qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0) {
            if (vlan < 0) {
                virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                               _("unable to determine original VLAN"));
            }
3303 3304
            if (qemuDomainObjExitMonitor(driver, vm) < 0)
                goto cleanup;
3305 3306 3307 3308
            virDomainAuditNet(vm, net, NULL, "detach", false);
            goto cleanup;
        }
    }
3309 3310
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3311

3312 3313 3314
    virDomainAuditNet(vm, net, NULL, "detach", true);

    event = virDomainEventDeviceRemovedNewFromObj(vm, net->info.alias);
3315
    qemuDomainEventQueue(driver, event);
3316 3317 3318 3319 3320 3321 3322 3323 3324 3325 3326

    for (i = 0; i < vm->def->nnets; i++) {
        if (vm->def->nets[i] == net) {
            virDomainNetRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
    virDomainConfNWFilterTeardown(net);

3327 3328 3329 3330 3331 3332
    if (cfg->macFilter && (net->ifname != NULL)) {
        ignore_value(ebtablesRemoveForwardAllowIn(driver->ebtables,
                                                  net->ifname,
                                                  &net->mac));
    }

3333 3334 3335 3336 3337 3338 3339 3340 3341 3342
    if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_DIRECT) {
        ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                         net->ifname, &net->mac,
                         virDomainNetGetActualDirectDev(net),
                         virDomainNetGetActualDirectMode(net),
                         virDomainNetGetActualVirtPortProfile(net),
                         cfg->stateDir));
    }

    vport = virDomainNetGetActualVirtPortProfile(net);
3343 3344 3345 3346 3347 3348 3349 3350 3351
    if (vport) {
        if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_MIDONET) {
            ignore_value(virNetDevMidonetUnbindPort(vport));
        } else if (vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH) {
            ignore_value(virNetDevOpenvswitchRemovePort(
                             virDomainNetGetActualBridgeName(net),
                             net->ifname));
        }
    }
3352

3353
    networkReleaseActualDevice(vm->def, net);
3354
    virDomainNetDefFree(net);
3355
    ret = 0;
3356 3357

 cleanup:
3358
    virObjectUnref(cfg);
3359 3360
    VIR_FREE(hostnet_name);
    return ret;
3361 3362 3363
}


3364
static int
3365
qemuDomainRemoveChrDevice(virQEMUDriverPtr driver,
3366 3367 3368
                          virDomainObjPtr vm,
                          virDomainChrDefPtr chr)
{
3369
    virObjectEventPtr event;
3370 3371 3372
    char *charAlias = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret = -1;
3373
    int rc;
3374

3375 3376 3377
    VIR_DEBUG("Removing character device %s from domain %p %s",
              chr->info.alias, vm, vm->def->name);

3378 3379 3380 3381
    if (virAsprintf(&charAlias, "char%s", chr->info.alias) < 0)
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
3382
    rc = qemuMonitorDetachCharDev(priv->mon, charAlias);
3383 3384
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3385

3386 3387 3388 3389 3390
    virDomainAuditChardev(vm, chr, NULL, "detach", rc == 0);

    if (rc < 0)
        goto cleanup;

3391
    event = virDomainEventDeviceRemovedNewFromObj(vm, chr->info.alias);
3392
    qemuDomainEventQueue(driver, event);
3393

3394 3395
    qemuDomainChrRemove(vm->def, chr);
    virDomainChrDefFree(chr);
3396 3397 3398 3399 3400
    ret = 0;

 cleanup:
    VIR_FREE(charAlias);
    return ret;
3401 3402 3403
}


3404 3405 3406 3407 3408 3409 3410 3411 3412 3413 3414 3415 3416 3417 3418 3419 3420 3421 3422 3423 3424 3425 3426 3427 3428 3429 3430 3431 3432 3433 3434 3435 3436 3437 3438 3439
static int
qemuDomainRemoveRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
    virObjectEventPtr event;
    char *charAlias = NULL;
    char *objAlias = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    ssize_t idx;
    int ret = -1;
    int rc;

    VIR_DEBUG("Removing RNG device %s from domain %p %s",
              rng->info.alias, vm, vm->def->name);

    if (virAsprintf(&objAlias, "obj%s", rng->info.alias) < 0)
        goto cleanup;

    if (virAsprintf(&charAlias, "char%s", rng->info.alias) < 0)
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelObject(priv->mon, objAlias);

    if (rc == 0 && rng->backend == VIR_DOMAIN_RNG_BACKEND_EGD)
        ignore_value(qemuMonitorDetachCharDev(priv->mon, charAlias));

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;

    virDomainAuditRNG(vm, rng, NULL, "detach", rc == 0);

    if (rc < 0)
        goto cleanup;

3440 3441
    event = virDomainEventDeviceRemovedNewFromObj(vm, rng->info.alias);
    qemuDomainEventQueue(driver, event);
3442 3443 3444 3445 3446 3447 3448 3449 3450 3451 3452 3453 3454 3455

    if ((idx = virDomainRNGFind(vm->def, rng)) >= 0)
        virDomainRNGRemove(vm->def, idx);
    qemuDomainReleaseDeviceAddress(vm, &rng->info, NULL);
    virDomainRNGDefFree(rng);
    ret = 0;

 cleanup:
    VIR_FREE(charAlias);
    VIR_FREE(objAlias);
    return ret;
}


3456
int
3457 3458 3459 3460
qemuDomainRemoveDevice(virQEMUDriverPtr driver,
                       virDomainObjPtr vm,
                       virDomainDeviceDefPtr dev)
{
3461
    int ret = -1;
3462 3463
    switch ((virDomainDeviceType) dev->type) {
    case VIR_DOMAIN_DEVICE_DISK:
3464
        ret = qemuDomainRemoveDiskDevice(driver, vm, dev->data.disk);
3465 3466
        break;
    case VIR_DOMAIN_DEVICE_CONTROLLER:
3467
        ret = qemuDomainRemoveControllerDevice(driver, vm, dev->data.controller);
3468 3469
        break;
    case VIR_DOMAIN_DEVICE_NET:
3470
        ret = qemuDomainRemoveNetDevice(driver, vm, dev->data.net);
3471 3472
        break;
    case VIR_DOMAIN_DEVICE_HOSTDEV:
3473
        ret = qemuDomainRemoveHostDevice(driver, vm, dev->data.hostdev);
3474 3475 3476
        break;

    case VIR_DOMAIN_DEVICE_CHR:
3477
        ret = qemuDomainRemoveChrDevice(driver, vm, dev->data.chr);
3478
        break;
3479
    case VIR_DOMAIN_DEVICE_RNG:
3480
        ret = qemuDomainRemoveRNGDevice(driver, vm, dev->data.rng);
3481
        break;
3482

3483
    case VIR_DOMAIN_DEVICE_MEMORY:
3484 3485
        ret = qemuDomainRemoveMemoryDevice(driver, vm, dev->data.memory);
        break;
3486

3487 3488 3489 3490 3491 3492 3493 3494 3495 3496 3497 3498 3499
    case VIR_DOMAIN_DEVICE_NONE:
    case VIR_DOMAIN_DEVICE_LEASE:
    case VIR_DOMAIN_DEVICE_FS:
    case VIR_DOMAIN_DEVICE_INPUT:
    case VIR_DOMAIN_DEVICE_SOUND:
    case VIR_DOMAIN_DEVICE_VIDEO:
    case VIR_DOMAIN_DEVICE_WATCHDOG:
    case VIR_DOMAIN_DEVICE_GRAPHICS:
    case VIR_DOMAIN_DEVICE_HUB:
    case VIR_DOMAIN_DEVICE_REDIRDEV:
    case VIR_DOMAIN_DEVICE_SMARTCARD:
    case VIR_DOMAIN_DEVICE_MEMBALLOON:
    case VIR_DOMAIN_DEVICE_NVRAM:
3500
    case VIR_DOMAIN_DEVICE_SHMEM:
3501
    case VIR_DOMAIN_DEVICE_TPM:
3502
    case VIR_DOMAIN_DEVICE_PANIC:
J
Ján Tomko 已提交
3503
    case VIR_DOMAIN_DEVICE_IOMMU:
3504 3505 3506 3507 3508 3509
    case VIR_DOMAIN_DEVICE_LAST:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("don't know how to remove a %s device"),
                       virDomainDeviceTypeToString(dev->type));
        break;
    }
3510
    return ret;
3511 3512 3513 3514 3515 3516 3517 3518 3519
}


static void
qemuDomainMarkDeviceForRemoval(virDomainObjPtr vm,
                               virDomainDeviceInfoPtr info)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

3520 3521 3522 3523 3524 3525
    memset(&priv->unplug, 0, sizeof(priv->unplug));

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
        return;

    priv->unplug.alias = info->alias;
3526 3527 3528 3529 3530 3531
}

static void
qemuDomainResetDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3532
    priv->unplug.alias = NULL;
3533 3534 3535
}

/* Returns:
3536 3537
 *  -1 Unplug of the device failed
 *
3538 3539 3540 3541 3542 3543 3544
 *   0 DEVICE_DELETED event is supported and removal of the device did not
 *     finish in qemuDomainRemoveDeviceWaitTime
 *
 *   1 when the caller is responsible for finishing the device removal:
 *      - DEVICE_DELETED event is unsupported
 *      - DEVICE_DELETED event arrived before the timeout time
 *      - we failed to reliably wait for the event and thus use fallback behavior
3545 3546 3547 3548 3549 3550
 */
static int
qemuDomainWaitForDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    unsigned long long until;
3551
    int rc;
3552 3553

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
3554
        return 1;
3555 3556

    if (virTimeMillisNow(&until) < 0)
3557
        return 1;
3558
    until += qemuDomainRemoveDeviceWaitTime;
3559

3560
    while (priv->unplug.alias) {
3561 3562 3563 3564 3565
        if ((rc = virDomainObjWaitUntil(vm, until)) == 1)
            return 0;

        if (rc < 0) {
            VIR_WARN("Failed to wait on unplug condition for domain '%s' "
3566
                     "device '%s'", vm->def->name, priv->unplug.alias);
3567
            return 1;
3568 3569 3570
        }
    }

3571 3572 3573 3574 3575 3576
    if (priv->unplug.status == QEMU_DOMAIN_UNPLUGGING_DEVICE_STATUS_GUEST_REJECTED) {
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("unplug of device was rejected by the guest"));
        return -1;
    }

3577 3578 3579
    return 1;
}

3580 3581 3582 3583 3584 3585 3586
/* Returns:
 *  true    there was a thread waiting for devAlias to be removed and this
 *          thread will take care of finishing the removal
 *  false   the thread that started the removal is already gone and delegate
 *          finishing the removal to a new thread
 */
bool
3587
qemuDomainSignalDeviceRemoval(virDomainObjPtr vm,
3588 3589
                              const char *devAlias,
                              qemuDomainUnpluggingDeviceStatus status)
3590 3591 3592
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

3593
    if (STREQ_NULLABLE(priv->unplug.alias, devAlias)) {
3594
        qemuDomainResetDeviceRemoval(vm);
3595
        priv->unplug.status = status;
3596
        virDomainObjBroadcast(vm);
3597
        return true;
3598
    }
3599
    return false;
3600 3601 3602
}


3603 3604 3605 3606
static int
qemuDomainDetachVirtioDiskDevice(virQEMUDriverPtr driver,
                                 virDomainObjPtr vm,
                                 virDomainDiskDefPtr detach)
3607
{
3608
    int ret = -1;
3609 3610
    qemuDomainObjPrivatePtr priv = vm->privateData;

3611
    if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
3612 3613
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
3614
                       detach->dst);
3615 3616 3617
        goto cleanup;
    }

3618
    if (qemuDomainMachineIsS390CCW(vm->def) &&
3619 3620 3621 3622 3623 3624 3625 3626 3627 3628 3629 3630 3631 3632
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid PCI address"));
            goto cleanup;
        }
3633 3634
    }

3635
    if (!detach->info.alias) {
3636 3637 3638 3639
        if (qemuAssignDeviceDiskAlias(vm->def, detach, priv->qemuCaps) < 0)
            goto cleanup;
    }

3640 3641
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3642
    qemuDomainObjEnterMonitor(driver, vm);
3643 3644
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
3645
            goto cleanup;
3646 3647
        virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
        goto cleanup;
3648
    }
3649 3650
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3651

3652
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
3653
        ret = qemuDomainRemoveDiskDevice(driver, vm, detach);
3654

3655
 cleanup:
3656
    qemuDomainResetDeviceRemoval(vm);
3657 3658 3659
    return ret;
}

3660 3661 3662 3663
static int
qemuDomainDetachDiskDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainDiskDefPtr detach)
3664
{
3665
    int ret = -1;
3666 3667
    qemuDomainObjPrivatePtr priv = vm->privateData;

3668
    if (qemuDomainDiskBlockJobIsActive(detach))
E
Eric Blake 已提交
3669 3670
        goto cleanup;

3671 3672
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3673
    qemuDomainObjEnterMonitor(driver, vm);
3674
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
3675 3676
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
            goto cleanup;
3677
        virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
3678 3679
        goto cleanup;
    }
3680 3681
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3682

3683
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
3684
        ret = qemuDomainRemoveDiskDevice(driver, vm, detach);
3685

3686
 cleanup:
3687
    qemuDomainResetDeviceRemoval(vm);
3688 3689 3690
    return ret;
}

3691 3692 3693 3694 3695 3696
static int
qemuFindDisk(virDomainDefPtr def, const char *dst)
{
    size_t i;

    for (i = 0; i < def->ndisks; i++) {
3697
        if (STREQ(def->disks[i]->dst, dst))
3698 3699 3700 3701 3702 3703 3704 3705 3706 3707 3708 3709 3710 3711 3712 3713 3714 3715 3716 3717 3718 3719 3720 3721 3722 3723 3724 3725 3726 3727 3728 3729 3730 3731 3732 3733 3734 3735 3736 3737 3738 3739 3740 3741 3742
            return i;
    }

    return -1;
}

int
qemuDomainDetachDeviceDiskLive(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainDiskDefPtr disk;
    int ret = -1;
    int idx;

    if ((idx = qemuFindDisk(vm->def, dev->data.disk->dst)) < 0) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("disk %s not found"), dev->data.disk->dst);
        return -1;
    }
    disk = vm->def->disks[idx];

    switch (disk->device) {
    case VIR_DOMAIN_DISK_DEVICE_DISK:
    case VIR_DOMAIN_DISK_DEVICE_LUN:
        if (disk->bus == VIR_DOMAIN_DISK_BUS_VIRTIO)
            ret = qemuDomainDetachVirtioDiskDevice(driver, vm, disk);
        else if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI ||
                 disk->bus == VIR_DOMAIN_DISK_BUS_USB)
            ret = qemuDomainDetachDiskDevice(driver, vm, disk);
        else
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
                           _("This type of disk cannot be hot unplugged"));
        break;
    default:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("disk device type '%s' cannot be detached"),
                       virDomainDiskDeviceTypeToString(disk->device));
        break;
    }

    return ret;
}


3743 3744 3745
static bool qemuDomainDiskControllerIsBusy(virDomainObjPtr vm,
                                           virDomainControllerDefPtr detach)
{
3746
    size_t i;
3747 3748 3749 3750 3751 3752 3753 3754 3755 3756 3757 3758 3759 3760 3761 3762 3763 3764 3765 3766 3767 3768 3769 3770 3771 3772 3773 3774 3775 3776 3777 3778 3779 3780 3781 3782 3783 3784 3785 3786 3787 3788 3789 3790 3791 3792
    virDomainDiskDefPtr disk;

    for (i = 0; i < vm->def->ndisks; i++) {
        disk = vm->def->disks[i];
        if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE)
            /* the disk does not use disk controller */
            continue;

        /* check whether the disk uses this type controller */
        if (disk->bus == VIR_DOMAIN_DISK_BUS_IDE &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_IDE)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_FDC &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_FDC)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (disk->info.addr.drive.controller == detach->idx)
            return true;
    }

    return false;
}

static bool qemuDomainControllerIsBusy(virDomainObjPtr vm,
                                       virDomainControllerDefPtr detach)
{
    switch (detach->type) {
    case VIR_DOMAIN_CONTROLLER_TYPE_IDE:
    case VIR_DOMAIN_CONTROLLER_TYPE_FDC:
    case VIR_DOMAIN_CONTROLLER_TYPE_SCSI:
        return qemuDomainDiskControllerIsBusy(vm, detach);

    case VIR_DOMAIN_CONTROLLER_TYPE_SATA:
    case VIR_DOMAIN_CONTROLLER_TYPE_VIRTIO_SERIAL:
    case VIR_DOMAIN_CONTROLLER_TYPE_CCID:
    default:
        /* libvirt does not support sata controller, and does not support to
         * detach virtio and smart card controller.
         */
        return true;
    }
}

3793 3794 3795
int qemuDomainDetachControllerDevice(virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainDeviceDefPtr dev)
3796
{
3797
    int idx, ret = -1;
3798 3799 3800
    virDomainControllerDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;

3801 3802 3803
    if ((idx = virDomainControllerFind(vm->def,
                                       dev->data.controller->type,
                                       dev->data.controller->idx)) < 0) {
3804
        virReportError(VIR_ERR_OPERATION_FAILED,
3805
                       _("controller %s:%d not found"),
3806 3807
                       virDomainControllerTypeToString(dev->data.controller->type),
                       dev->data.controller->idx);
3808 3809 3810
        goto cleanup;
    }

3811 3812
    detach = vm->def->controllers[idx];

3813 3814 3815 3816 3817 3818
    if (detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI &&
        detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW &&
        detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("device with '%s' address cannot be detached"),
                       virDomainDeviceAddressTypeToString(detach->info.type));
3819 3820 3821
        goto cleanup;
    }

3822 3823 3824 3825 3826 3827 3828 3829 3830
    if (!virDomainDeviceAddressIsValid(&detach->info, detach->info.type)) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("device with invalid '%s' address cannot be detached"),
                       virDomainDeviceAddressTypeToString(detach->info.type));
        goto cleanup;
    }

    if (detach->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI &&
        qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
3831 3832 3833
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
                       dev->data.disk->dst);
3834 3835 3836
        goto cleanup;
    }

3837
    if (qemuDomainControllerIsBusy(vm, detach)) {
3838 3839
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("device cannot be detached: device is busy"));
3840 3841 3842
        goto cleanup;
    }

3843
    if (!detach->info.alias) {
3844
        if (qemuAssignDeviceControllerAlias(vm->def, priv->qemuCaps, detach) < 0)
3845 3846 3847
            goto cleanup;
    }

3848 3849
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3850
    qemuDomainObjEnterMonitor(driver, vm);
3851 3852 3853
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias)) {
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
        goto cleanup;
3854
    }
3855 3856
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
3857

3858
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
3859
        ret = qemuDomainRemoveControllerDevice(driver, vm, detach);
3860

3861
 cleanup:
3862
    qemuDomainResetDeviceRemoval(vm);
3863 3864 3865
    return ret;
}

3866
static int
3867
qemuDomainDetachHostPCIDevice(virQEMUDriverPtr driver,
3868
                              virDomainObjPtr vm,
3869
                              virDomainHostdevDefPtr detach)
3870 3871
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3872
    virDomainHostdevSubsysPCIPtr pcisrc = &detach->source.subsys.u.pci;
3873
    int ret;
3874

3875
    if (qemuIsMultiFunctionDevice(vm->def, detach->info)) {
3876 3877
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %.4x:%.2x:%.2x.%.1x"),
3878 3879
                       pcisrc->addr.domain, pcisrc->addr.bus,
                       pcisrc->addr.slot, pcisrc->addr.function);
3880
        return -1;
3881 3882
    }

3883
    if (!virDomainDeviceAddressIsValid(detach->info,
3884
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
3885 3886
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a PCI address"));
3887
        return -1;
3888 3889
    }

3890 3891
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

3892
    qemuDomainObjEnterMonitor(driver, vm);
3893
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
3894 3895
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
3896 3897 3898 3899

    return ret;
}

3900
static int
3901
qemuDomainDetachHostUSBDevice(virQEMUDriverPtr driver,
3902
                              virDomainObjPtr vm,
3903
                              virDomainHostdevDefPtr detach)
3904 3905
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3906
    int ret;
3907

3908
    if (!detach->info->alias) {
3909 3910
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
3911 3912 3913
        return -1;
    }

3914 3915
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

3916
    qemuDomainObjEnterMonitor(driver, vm);
3917
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
3918 3919
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
3920 3921 3922 3923

    return ret;
}

3924
static int
3925
qemuDomainDetachHostSCSIDevice(virQEMUDriverPtr driver,
3926 3927 3928 3929 3930 3931 3932 3933 3934 3935 3936 3937
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr detach)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret = -1;

    if (!detach->info->alias) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
        return -1;
    }

3938 3939
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

3940
    qemuDomainObjEnterMonitor(driver, vm);
3941 3942 3943 3944
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);

    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        return -1;
3945 3946 3947 3948 3949

    return ret;
}

static int
3950
qemuDomainDetachThisHostDevice(virQEMUDriverPtr driver,
3951
                               virDomainObjPtr vm,
3952
                               virDomainHostdevDefPtr detach)
3953
{
3954
    int ret = -1;
3955

3956
    if (!detach->info->alias) {
3957
        if (qemuAssignDeviceHostdevAlias(vm->def, &detach->info->alias, -1) < 0)
3958 3959 3960
            return -1;
    }

3961
    switch (detach->source.subsys.type) {
3962
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
3963
        ret = qemuDomainDetachHostPCIDevice(driver, vm, detach);
3964
        break;
3965
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
3966
        ret = qemuDomainDetachHostUSBDevice(driver, vm, detach);
3967
        break;
3968
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
3969
        ret = qemuDomainDetachHostSCSIDevice(driver, vm, detach);
3970
        break;
3971
    default:
3972 3973 3974
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(detach->source.subsys.type));
3975 3976 3977
        return -1;
    }

3978
    if (ret < 0) {
3979 3980
        if (virDomainObjIsActive(vm))
            virDomainAuditHostdev(vm, detach, "detach", false);
3981 3982
    } else if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1) {
        ret = qemuDomainRemoveHostDevice(driver, vm, detach);
3983
    }
3984

3985 3986
    qemuDomainResetDeviceRemoval(vm);

3987 3988
    return ret;
}
3989

3990
/* search for a hostdev matching dev and detach it */
3991
int qemuDomainDetachHostDevice(virQEMUDriverPtr driver,
3992 3993 3994 3995 3996
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainHostdevDefPtr hostdev = dev->data.hostdev;
    virDomainHostdevSubsysPtr subsys = &hostdev->source.subsys;
3997
    virDomainHostdevSubsysUSBPtr usbsrc = &subsys->u.usb;
3998
    virDomainHostdevSubsysPCIPtr pcisrc = &subsys->u.pci;
3999
    virDomainHostdevSubsysSCSIPtr scsisrc = &subsys->u.scsi;
4000 4001 4002 4003
    virDomainHostdevDefPtr detach = NULL;
    int idx;

    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
4004 4005 4006
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
4007 4008 4009 4010 4011 4012
        return -1;
    }

    idx = virDomainHostdevFind(vm->def, hostdev, &detach);

    if (idx < 0) {
4013
        switch (subsys->type) {
4014
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
4015 4016
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("host pci device %.4x:%.2x:%.2x.%.1x not found"),
4017 4018
                           pcisrc->addr.domain, pcisrc->addr.bus,
                           pcisrc->addr.slot, pcisrc->addr.function);
4019 4020
            break;
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
4021
            if (usbsrc->bus && usbsrc->device) {
4022 4023
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device %03d.%03d not found"),
4024
                               usbsrc->bus, usbsrc->device);
4025
            } else {
4026 4027
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device vendor=0x%.4x product=0x%.4x not found"),
4028
                               usbsrc->vendor, usbsrc->product);
4029 4030
            }
            break;
4031
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI: {
4032 4033 4034 4035 4036 4037 4038 4039 4040 4041
            if (scsisrc->protocol ==
                VIR_DOMAIN_HOSTDEV_SCSI_PROTOCOL_TYPE_ISCSI) {
                virDomainHostdevSubsysSCSIiSCSIPtr iscsisrc = &scsisrc->u.iscsi;
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host scsi iSCSI path %s not found"),
                               iscsisrc->path);
            } else {
                 virDomainHostdevSubsysSCSIHostPtr scsihostsrc =
                     &scsisrc->u.host;
                 virReportError(VIR_ERR_OPERATION_FAILED,
4042
                                _("host scsi device %s:%u:%u.%llu not found"),
4043 4044 4045
                                scsihostsrc->adapter, scsihostsrc->bus,
                                scsihostsrc->target, scsihostsrc->unit);
            }
4046
            break;
4047
        }
4048
        default:
4049 4050
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("unexpected hostdev type %d"), subsys->type);
4051 4052 4053 4054 4055
            break;
        }
        return -1;
    }

4056 4057 4058 4059
    /* If this is a network hostdev, we need to use the higher-level detach
     * function so that mac address / virtualport are reset
     */
    if (detach->parent.type == VIR_DOMAIN_DEVICE_NET)
4060
        return qemuDomainDetachNetDevice(driver, vm, &detach->parent);
4061
    else
4062
        return qemuDomainDetachThisHostDevice(driver, vm, detach);
4063 4064
}

4065
int
4066
qemuDomainDetachNetDevice(virQEMUDriverPtr driver,
4067 4068 4069
                          virDomainObjPtr vm,
                          virDomainDeviceDefPtr dev)
{
4070
    int detachidx, ret = -1;
4071 4072 4073
    virDomainNetDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;

4074
    if ((detachidx = virDomainNetFindIdx(vm->def, dev->data.net)) < 0)
4075
        goto cleanup;
4076

4077
    detach = vm->def->nets[detachidx];
4078

4079
    if (virDomainNetGetActualType(detach) == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
4080
        /* coverity[negative_returns] */
4081
        ret = qemuDomainDetachThisHostDevice(driver, vm,
4082
                                             virDomainNetGetActualHostdev(detach));
4083 4084
        goto cleanup;
    }
4085
    if (qemuDomainMachineIsS390CCW(vm->def) &&
4086 4087 4088 4089 4090 4091 4092 4093 4094 4095 4096 4097 4098 4099
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a PCI address"));
            goto cleanup;
        }
4100

4101 4102 4103 4104 4105 4106
        if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            _("cannot hot unplug multifunction PCI device :%s"),
                            dev->data.disk->dst);
            goto cleanup;
        }
4107 4108
    }

4109
    if (!detach->info.alias) {
4110 4111 4112 4113
        if (qemuAssignDeviceNetAlias(vm->def, detach, -1) < 0)
            goto cleanup;
    }

4114 4115
    if (virDomainNetGetActualBandwidth(detach) &&
        virNetDevSupportBandwidth(virDomainNetGetActualType(detach)) &&
4116 4117 4118 4119
        virNetDevBandwidthClear(detach->ifname) < 0)
        VIR_WARN("cannot clear bandwidth setting for device : %s",
                 detach->ifname);

4120 4121 4122
    /* deactivate the tap/macvtap device on the host, which could also
     * affect the parent device (e.g. macvtap passthrough mode sets
     * the parent device offline)
4123 4124 4125
     */
    ignore_value(qemuInterfaceStopDevice(detach));

4126 4127
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

4128
    qemuDomainObjEnterMonitor(driver, vm);
4129 4130
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
        if (qemuDomainObjExitMonitor(driver, vm) < 0)
4131
            goto cleanup;
4132 4133
        virDomainAuditNet(vm, detach, NULL, "detach", false);
        goto cleanup;
4134
    }
4135 4136
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
4137

4138
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4139
        ret = qemuDomainRemoveNetDevice(driver, vm, detach);
4140

4141
 cleanup:
4142
    qemuDomainResetDeviceRemoval(vm);
4143 4144 4145
    return ret;
}

4146
int
4147
qemuDomainChangeGraphicsPasswords(virQEMUDriverPtr driver,
4148 4149 4150
                                  virDomainObjPtr vm,
                                  int type,
                                  virDomainGraphicsAuthDefPtr auth,
4151 4152
                                  const char *defaultPasswd,
                                  int asyncJob)
4153 4154 4155
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    time_t now = time(NULL);
4156 4157
    const char *expire;
    char *validTo = NULL;
4158
    const char *connected = NULL;
4159
    const char *password;
4160 4161
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
4162

4163
    if (!auth->passwd && !defaultPasswd) {
4164 4165 4166
        ret = 0;
        goto cleanup;
    }
4167
    password = auth->passwd ? auth->passwd : defaultPasswd;
4168

4169 4170 4171
    if (auth->connected)
        connected = virDomainGraphicsAuthConnectedTypeToString(auth->connected);

4172 4173
    if (qemuDomainObjEnterMonitorAsync(driver, vm, asyncJob) < 0)
        goto cleanup;
4174
    ret = qemuMonitorSetPassword(priv->mon, type, password, connected);
4175 4176 4177

    if (ret == -2) {
        if (type != VIR_DOMAIN_GRAPHICS_TYPE_VNC) {
4178 4179
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Graphics password only supported for VNC"));
4180 4181
            ret = -1;
        } else {
4182
            ret = qemuMonitorSetVNCPassword(priv->mon, password);
4183 4184
        }
    }
4185
    if (ret != 0)
4186
        goto end_job;
4187

4188 4189 4190
    if (password[0] == '\0' ||
        (auth->expires && auth->validTo <= now)) {
        expire = "now";
4191
    } else if (auth->expires) {
4192 4193 4194
        if (virAsprintf(&validTo, "%lu", (unsigned long) auth->validTo) < 0)
            goto end_job;
        expire = validTo;
4195
    } else {
4196
        expire = "never";
4197 4198
    }

4199
    ret = qemuMonitorExpirePassword(priv->mon, type, expire);
4200 4201 4202 4203

    if (ret == -2) {
        /* XXX we could fake this with a timer */
        if (auth->expires) {
4204 4205
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Expiry of passwords is not supported"));
4206
            ret = -1;
4207 4208
        } else {
            ret = 0;
4209 4210 4211
        }
    }

4212
 end_job:
4213 4214
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        ret = -1;
4215
 cleanup:
4216
    VIR_FREE(validTo);
4217
    virObjectUnref(cfg);
4218 4219
    return ret;
}
4220

4221
int qemuDomainAttachLease(virQEMUDriverPtr driver,
4222 4223 4224
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
4225 4226 4227
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);

4228
    if (virDomainLeaseInsertPreAlloc(vm->def) < 0)
4229
        goto cleanup;
4230

4231
    if (virDomainLockLeaseAttach(driver->lockManager, cfg->uri,
4232
                                 vm, lease) < 0) {
4233
        virDomainLeaseInsertPreAlloced(vm->def, NULL);
4234
        goto cleanup;
4235 4236 4237
    }

    virDomainLeaseInsertPreAlloced(vm->def, lease);
4238 4239
    ret = 0;

4240
 cleanup:
4241 4242
    virObjectUnref(cfg);
    return ret;
4243 4244
}

4245
int qemuDomainDetachLease(virQEMUDriverPtr driver,
4246 4247 4248
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
4249
    virDomainLeaseDefPtr det_lease;
4250
    int idx;
4251

4252
    if ((idx = virDomainLeaseIndex(vm->def, lease)) < 0) {
4253 4254 4255
        virReportError(VIR_ERR_INVALID_ARG,
                       _("Lease %s in lockspace %s does not exist"),
                       lease->key, NULLSTR(lease->lockspace));
4256 4257 4258 4259 4260 4261
        return -1;
    }

    if (virDomainLockLeaseDetach(driver->lockManager, vm, lease) < 0)
        return -1;

4262
    det_lease = virDomainLeaseRemoveAt(vm->def, idx);
4263
    virDomainLeaseDefFree(det_lease);
4264 4265
    return 0;
}
4266 4267 4268 4269 4270 4271 4272 4273 4274 4275 4276 4277 4278 4279 4280 4281 4282

int qemuDomainDetachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainDefPtr vmdef = vm->def;
    virDomainChrDefPtr tmpChr;
    char *devstr = NULL;

    if (!(tmpChr = virDomainChrFind(vmdef, chr))) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return ret;
    }

P
Pavel Hrdina 已提交
4283 4284 4285 4286 4287
    if (!tmpChr->info.alias && qemuAssignDeviceChrAlias(vmdef, tmpChr, -1) < 0)
        return ret;

    sa_assert(tmpChr->info.alias);

4288
    if (qemuBuildChrDeviceStr(&devstr, vmdef, chr, priv->qemuCaps) < 0)
4289 4290
        return ret;

4291 4292
    qemuDomainMarkDeviceForRemoval(vm, &tmpChr->info);

4293 4294
    qemuDomainObjEnterMonitor(driver, vm);
    if (devstr && qemuMonitorDelDevice(priv->mon, tmpChr->info.alias) < 0) {
4295
        ignore_value(qemuDomainObjExitMonitor(driver, vm));
4296 4297
        goto cleanup;
    }
4298 4299
    if (qemuDomainObjExitMonitor(driver, vm) < 0)
        goto cleanup;
4300

4301
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1) {
4302
        qemuDomainReleaseDeviceAddress(vm, &tmpChr->info, NULL);
4303
        ret = qemuDomainRemoveChrDevice(driver, vm, tmpChr);
4304 4305
    }

4306
 cleanup:
4307
    qemuDomainResetDeviceRemoval(vm);
4308 4309 4310
    VIR_FREE(devstr);
    return ret;
}
4311 4312 4313 4314 4315 4316 4317 4318 4319 4320 4321 4322 4323 4324 4325 4326 4327 4328 4329 4330 4331 4332 4333 4334 4335 4336 4337 4338 4339 4340 4341 4342 4343 4344


int
qemuDomainDetachRNGDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainRNGDefPtr rng)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    ssize_t idx;
    virDomainRNGDefPtr tmpRNG;
    int rc;
    int ret = -1;

    if ((idx = virDomainRNGFind(vm->def, rng) < 0)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return -1;
    }

    tmpRNG = vm->def->rngs[idx];

    if (!tmpRNG->info.alias) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("alias not set for RNG device"));
        return -1;
    }

    qemuDomainMarkDeviceForRemoval(vm, &tmpRNG->info);

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelDevice(priv->mon, tmpRNG->info.alias);
    if (qemuDomainObjExitMonitor(driver, vm) || rc < 0)
        goto cleanup;

4345
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4346 4347 4348 4349 4350 4351
        ret = qemuDomainRemoveRNGDevice(driver, vm, tmpRNG);

 cleanup:
    qemuDomainResetDeviceRemoval(vm);
    return ret;
}
4352 4353 4354 4355 4356 4357 4358 4359 4360 4361 4362 4363 4364


int
qemuDomainDetachMemoryDevice(virQEMUDriverPtr driver,
                             virDomainObjPtr vm,
                             virDomainMemoryDefPtr memdef)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainMemoryDefPtr mem;
    int idx;
    int rc;
    int ret = -1;

4365
    qemuDomainMemoryDeviceAlignSize(vm->def, memdef);
4366 4367 4368 4369 4370 4371 4372 4373 4374 4375 4376 4377 4378 4379 4380 4381 4382 4383 4384 4385 4386 4387

    if ((idx = virDomainMemoryFindByDef(vm->def, memdef)) < 0) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return -1;
    }

    mem = vm->def->mems[idx];

    if (!mem->info.alias) {
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("alias for the memory device was not found"));
        return -1;
    }

    qemuDomainMarkDeviceForRemoval(vm, &mem->info);

    qemuDomainObjEnterMonitor(driver, vm);
    rc = qemuMonitorDelDevice(priv->mon, mem->info.alias);
    if (qemuDomainObjExitMonitor(driver, vm) < 0 || rc < 0)
        goto cleanup;

4388
    if ((ret = qemuDomainWaitForDeviceRemoval(vm)) == 1)
4389 4390 4391 4392 4393 4394
        ret = qemuDomainRemoveMemoryDevice(driver, vm, mem);

 cleanup:
    qemuDomainResetDeviceRemoval(vm);
    return ret;
}