qemu_hotplug.c 126.0 KB
Newer Older
1
/*
2
 * qemu_hotplug.c: QEMU device hotplug management
3
 *
4
 * Copyright (C) 2006-2014 Red Hat, Inc.
5 6 7 8 9 10 11 12 13 14 15 16 17
 * Copyright (C) 2006 Daniel P. Berrange
 *
 * This library is free software; you can redistribute it and/or
 * modify it under the terms of the GNU Lesser General Public
 * License as published by the Free Software Foundation; either
 * version 2.1 of the License, or (at your option) any later version.
 *
 * This library is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 * Lesser General Public License for more details.
 *
 * You should have received a copy of the GNU Lesser General Public
18
 * License along with this library.  If not, see
O
Osier Yang 已提交
19
 * <http://www.gnu.org/licenses/>.
20 21 22 23 24 25 26 27
 *
 * Author: Daniel P. Berrange <berrange@redhat.com>
 */


#include <config.h>

#include "qemu_hotplug.h"
28
#include "qemu_hotplugpriv.h"
29 30 31 32
#include "qemu_capabilities.h"
#include "qemu_domain.h"
#include "qemu_command.h"
#include "qemu_hostdev.h"
33
#include "domain_audit.h"
34
#include "domain_nwfilter.h"
35
#include "virlog.h"
36
#include "datatypes.h"
37
#include "virerror.h"
38
#include "viralloc.h"
39
#include "virpci.h"
E
Eric Blake 已提交
40
#include "virfile.h"
41
#include "virprocess.h"
42
#include "qemu_cgroup.h"
43
#include "locking/domain_lock.h"
44
#include "network/bridge_driver.h"
45 46
#include "virnetdev.h"
#include "virnetdevbridge.h"
A
Ansis Atteka 已提交
47
#include "virnetdevtap.h"
48
#include "device_conf.h"
49
#include "virstoragefile.h"
50
#include "virstring.h"
51
#include "virtime.h"
52 53

#define VIR_FROM_THIS VIR_FROM_QEMU
54 55 56

VIR_LOG_INIT("qemu.qemu_hotplug");

57
#define CHANGE_MEDIA_RETRIES 10
58

59 60 61 62
/* Wait up to 5 seconds for device removal to finish. */
unsigned long long qemuDomainRemoveDeviceWaitTime = 1000ull * 5;


63
int qemuDomainChangeEjectableMedia(virQEMUDriverPtr driver,
64 65
                                   virDomainObjPtr vm,
                                   virDomainDiskDefPtr disk,
66
                                   virDomainDiskDefPtr origdisk,
67 68
                                   bool force)
{
69
    int ret = -1;
70
    char *driveAlias = NULL;
71
    qemuDomainObjPrivatePtr priv = vm->privateData;
72
    int retries = CHANGE_MEDIA_RETRIES;
73
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
74
    const char *src = NULL;
75 76

    if (!origdisk->info.alias) {
77 78
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("missing disk device alias name for %s"), origdisk->dst);
79
        goto cleanup;
80 81 82 83
    }

    if (origdisk->device != VIR_DOMAIN_DISK_DEVICE_FLOPPY &&
        origdisk->device != VIR_DOMAIN_DISK_DEVICE_CDROM) {
84 85
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("Removable media not supported for %s device"),
86
                       virDomainDiskDeviceTypeToString(disk->device));
87
        goto cleanup;
88 89
    }

90
    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
91
                                vm, disk) < 0)
92
        goto cleanup;
93

94 95
    if (virSecurityManagerSetDiskLabel(driver->securityManager,
                                       vm->def, disk) < 0) {
96
        if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
97 98
            VIR_WARN("Unable to release lock on %s",
                     virDomainDiskGetSource(disk));
99
        goto cleanup;
100
    }
101

102
    if (!(driveAlias = qemuDeviceDriveHostAlias(origdisk, priv->qemuCaps)))
103 104
        goto error;

105
    qemuDomainObjEnterMonitor(driver, vm);
106
    ret = qemuMonitorEjectMedia(priv->mon, driveAlias, force);
107
    qemuDomainObjExitMonitor(driver, vm);
108

109 110 111
    if (ret < 0)
        goto audit;

112
    virObjectRef(vm);
113
    /* we don't want to report errors from media tray_open polling */
114
    while (retries) {
115 116 117
        if (origdisk->tray_status == VIR_DOMAIN_DISK_TRAY_OPEN)
            break;

118
        retries--;
119
        virObjectUnlock(vm);
120 121
        VIR_DEBUG("Waiting 500ms for tray to open. Retries left %d", retries);
        usleep(500 * 1000); /* sleep 500ms */
122
        virObjectLock(vm);
123
    }
124
    virObjectUnref(vm);
125

126
    if (retries <= 0) {
127 128 129
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("Unable to eject media"));
        ret = -1;
130 131 132
        goto audit;
    }

133 134
    src = virDomainDiskGetSource(disk);
    if (src) {
135 136 137
        /* deliberately don't depend on 'ret' as 'eject' may have failed the
         * first time and we are going to check the drive state anyway */
        const char *format = NULL;
138 139
        int type = virDomainDiskGetType(disk);
        int diskFormat = virDomainDiskGetFormat(disk);
140

E
Eric Blake 已提交
141
        if (type != VIR_STORAGE_TYPE_DIR) {
142 143 144 145 146 147 148
            if (diskFormat > 0) {
                format = virStorageFileFormatTypeToString(diskFormat);
            } else {
                diskFormat = virDomainDiskGetFormat(origdisk);
                if (diskFormat > 0)
                    format = virStorageFileFormatTypeToString(diskFormat);
            }
149
        }
150
        qemuDomainObjEnterMonitor(driver, vm);
151 152
        ret = qemuMonitorChangeMedia(priv->mon,
                                     driveAlias,
153
                                     src, format);
154
        qemuDomainObjExitMonitor(driver, vm);
155
    }
156
 audit:
157
    virDomainAuditDisk(vm, origdisk->src, disk->src, "update", ret >= 0);
158 159 160 161

    if (ret < 0)
        goto error;

162 163
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, origdisk) < 0)
164 165
        VIR_WARN("Unable to restore security label on ejected image %s",
                 virDomainDiskGetSource(origdisk));
166

167
    if (virDomainLockDiskDetach(driver->lockManager, vm, origdisk) < 0)
168 169
        VIR_WARN("Unable to release lock on disk %s",
                 virDomainDiskGetSource(origdisk));
170

171 172 173
    if (virDomainDiskSetSource(origdisk, src) < 0)
        goto error;
    virDomainDiskSetType(origdisk, virDomainDiskGetType(disk));
174 175 176

    virDomainDiskDefFree(disk);

177
 cleanup:
178 179
    VIR_FREE(driveAlias);
    virObjectUnref(cfg);
180 181
    return ret;

182
 error:
183 184
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
185
        VIR_WARN("Unable to restore security label on new media %s", src);
186 187

    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
188
        VIR_WARN("Unable to release lock on %s", src);
189

190
    goto cleanup;
191 192
}

193
int
194
qemuDomainCheckEjectableMedia(virQEMUDriverPtr driver,
195
                             virDomainObjPtr vm,
196
                             qemuDomainAsyncJob asyncJob)
197 198
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
199
    virHashTablePtr table = NULL;
200
    int ret = -1;
201
    size_t i;
202

203 204
    if (qemuDomainObjEnterMonitorAsync(driver, vm, asyncJob) == 0) {
        table = qemuMonitorGetBlockInfo(priv->mon);
205
        qemuDomainObjExitMonitor(driver, vm);
206
    }
207 208 209 210

    if (!table)
        goto cleanup;

211 212
    for (i = 0; i < vm->def->ndisks; i++) {
        virDomainDiskDefPtr disk = vm->def->disks[i];
213
        struct qemuDomainDiskInfo *info;
214

215 216
        if (disk->device == VIR_DOMAIN_DISK_DEVICE_DISK ||
            disk->device == VIR_DOMAIN_DISK_DEVICE_LUN) {
217
                 continue;
218
        }
219

220 221
        info = qemuMonitorBlockInfoLookup(table, disk->info.alias);
        if (!info)
222 223
            goto cleanup;

224 225
        if (info->tray_open && virDomainDiskGetSource(disk))
            ignore_value(virDomainDiskSetSource(disk, NULL));
226 227 228 229
    }

    ret = 0;

230
 cleanup:
231
    virHashFree(table);
232 233 234
    return ret;
}

235 236 237 238 239
static int
qemuDomainAttachVirtioDiskDevice(virConnectPtr conn,
                                 virQEMUDriverPtr driver,
                                 virDomainObjPtr vm,
                                 virDomainDiskDefPtr disk)
240
{
241 242
    size_t i;
    int ret = -1;
243 244 245 246
    const char* type = virDomainDiskBusTypeToString(disk->bus);
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *devstr = NULL;
    char *drivestr = NULL;
247
    bool releaseaddr = false;
248
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
249
    const char *src = virDomainDiskGetSource(disk);
250

251 252 253 254 255 256 257 258
    if (!disk->info.type) {
        if (STREQLEN(vm->def->os.machine, "s390-ccw", 8) &&
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
        else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
    }

259
    for (i = 0; i < vm->def->ndisks; i++) {
260
        if (STREQ(vm->def->disks[i]->dst, disk->dst)) {
261 262
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("target %s already exists"), disk->dst);
263
            goto cleanup;
264 265 266
        }
    }

267
    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
268
                                vm, disk) < 0)
269
        goto cleanup;
270

271 272
    if (virSecurityManagerSetDiskLabel(driver->securityManager,
                                       vm->def, disk) < 0) {
273
        if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
274
            VIR_WARN("Unable to release lock on %s", src);
275
        goto cleanup;
276
    }
277

278
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
279
        if (disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
J
Ján Tomko 已提交
280 281
            if (virDomainCCWAddressAssign(&disk->info, priv->ccwaddrs,
                                          !disk->info.addr.ccw.assigned) < 0)
282
                goto error;
283 284
        } else if (!disk->info.type ||
                    disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
285
            if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &disk->info) < 0)
286 287
                goto error;
        }
288
        releaseaddr = true;
289
        if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
290 291
            goto error;

292
        if (!(drivestr = qemuBuildDriveStr(conn, disk, false, priv->qemuCaps)))
293 294
            goto error;

295
        if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
296 297 298
            goto error;
    }

299
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
300 301
        goto error;

302
    qemuDomainObjEnterMonitor(driver, vm);
303
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
304 305 306 307
        ret = qemuMonitorAddDrive(priv->mon, drivestr);
        if (ret == 0) {
            ret = qemuMonitorAddDevice(priv->mon, devstr);
            if (ret < 0) {
308 309 310 311 312 313 314 315 316 317
                virErrorPtr orig_err = virSaveLastError();
                if (qemuMonitorDriveDel(priv->mon, drivestr) < 0) {
                    VIR_WARN("Unable to remove drive %s (%s) after failed "
                             "qemuMonitorAddDevice",
                             drivestr, devstr);
                }
                if (orig_err) {
                    virSetError(orig_err);
                    virFreeError(orig_err);
                }
318 319
            }
        }
320 321
    } else if (!disk->info.type ||
                disk->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
322
        virDevicePCIAddress guestAddr = disk->info.addr.pci;
323
        ret = qemuMonitorAddPCIDisk(priv->mon, src, type, &guestAddr);
324 325
        if (ret == 0) {
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
326
            memcpy(&disk->info.addr.pci, &guestAddr, sizeof(guestAddr));
327
        }
328
    }
329
    qemuDomainObjExitMonitor(driver, vm);
330

331
    virDomainAuditDisk(vm, NULL, disk->src, "attach", ret >= 0);
332 333 334 335 336 337

    if (ret < 0)
        goto error;

    virDomainDiskInsertPreAlloced(vm->def, disk);

338
 cleanup:
339 340
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
341 342
    virObjectUnref(cfg);
    return ret;
343

344
 error:
345
    if (releaseaddr)
346
        qemuDomainReleaseDeviceAddress(vm, &disk->info, src);
347

348 349
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
350
        VIR_WARN("Unable to restore security label on %s", src);
351

352
    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
353
        VIR_WARN("Unable to release lock on %s", src);
354

355
    goto cleanup;
356 357 358
}


359 360 361
int qemuDomainAttachControllerDevice(virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainControllerDefPtr controller)
362 363 364 365 366
{
    int ret = -1;
    const char* type = virDomainControllerTypeToString(controller->type);
    char *devstr = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
367
    bool releaseaddr = false;
368

369
    if (virDomainControllerFind(vm->def, controller->type, controller->idx) >= 0) {
370 371 372 373
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("target %s:%d already exists"),
                       type, controller->idx);
        return -1;
374 375
    }

376
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
377 378 379 380 381 382 383 384 385 386
        if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE) {
            if (STRPREFIX(vm->def->os.machine, "s390-ccw") &&
                virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW))
                controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
            else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
                controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390;
        }

        if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE ||
            controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
387
            if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, &controller->info) < 0)
388 389
                goto cleanup;
        } else if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW) {
J
Ján Tomko 已提交
390 391
            if (virDomainCCWAddressAssign(&controller->info, priv->ccwaddrs,
                                          !controller->info.addr.ccw.assigned) < 0)
392 393
                goto cleanup;
        }
394
        releaseaddr = true;
395 396 397
        if (qemuAssignDeviceControllerAlias(controller) < 0)
            goto cleanup;

398 399
        if (controller->type == VIR_DOMAIN_CONTROLLER_TYPE_USB &&
            controller->model == -1 &&
400
            !virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_PIIX3_USB_UHCI)) {
401 402
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("USB controller hotplug unsupported in this QEMU binary"));
403 404 405
            goto cleanup;
        }

406
        if (!(devstr = qemuBuildControllerDevStr(vm->def, controller, priv->qemuCaps, NULL))) {
407 408 409 410
            goto cleanup;
        }
    }

411
    if (VIR_REALLOC_N(vm->def->controllers, vm->def->ncontrollers+1) < 0)
412 413
        goto cleanup;

414
    qemuDomainObjEnterMonitor(driver, vm);
415
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
416 417 418 419 420 421
        ret = qemuMonitorAddDevice(priv->mon, devstr);
    } else {
        ret = qemuMonitorAttachPCIDiskController(priv->mon,
                                                 type,
                                                 &controller->info.addr.pci);
    }
422
    qemuDomainObjExitMonitor(driver, vm);
423 424

    if (ret == 0) {
425 426
        if (controller->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_NONE)
            controller->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
427 428 429
        virDomainControllerInsertPreAlloced(vm->def, controller);
    }

430
 cleanup:
431 432
    if (ret != 0 && releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
433 434 435 436 437 438

    VIR_FREE(devstr);
    return ret;
}

static virDomainControllerDefPtr
439
qemuDomainFindOrCreateSCSIDiskController(virQEMUDriverPtr driver,
440
                                         virDomainObjPtr vm,
441
                                         int controller)
442
{
443
    size_t i;
444
    virDomainControllerDefPtr cont;
445

446
    for (i = 0; i < vm->def->ncontrollers; i++) {
447 448 449 450 451 452 453 454 455 456 457
        cont = vm->def->controllers[i];

        if (cont->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (cont->idx == controller)
            return cont;
    }

    /* No SCSI controller present, for backward compatibility we
     * now hotplug a controller */
458
    if (VIR_ALLOC(cont) < 0)
459 460
        return NULL;
    cont->type = VIR_DOMAIN_CONTROLLER_TYPE_SCSI;
461
    cont->idx = controller;
462 463
    cont->model = -1;

464
    VIR_INFO("No SCSI controller present, hotplugging one");
465 466
    if (qemuDomainAttachControllerDevice(driver,
                                         vm, cont) < 0) {
467 468 469 470 471
        VIR_FREE(cont);
        return NULL;
    }

    if (!virDomainObjIsActive(vm)) {
472 473
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit"));
474 475 476 477 478 479 480 481 482
        /* cont doesn't need freeing here, since the reference
         * now held in def->controllers */
        return NULL;
    }

    return cont;
}


483 484 485 486 487
static int
qemuDomainAttachSCSIDisk(virConnectPtr conn,
                         virQEMUDriverPtr driver,
                         virDomainObjPtr vm,
                         virDomainDiskDefPtr disk)
488
{
489
    size_t i;
490 491 492 493 494
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainControllerDefPtr cont = NULL;
    char *drivestr = NULL;
    char *devstr = NULL;
    int ret = -1;
495
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
496
    const char *src = virDomainDiskGetSource(disk);
497

498
    for (i = 0; i < vm->def->ndisks; i++) {
499
        if (STREQ(vm->def->disks[i]->dst, disk->dst)) {
500 501
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("target %s already exists"), disk->dst);
502
            goto cleanup;
503 504 505
        }
    }

506
    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
507
                                vm, disk) < 0)
508
        goto cleanup;
509

510 511
    if (virSecurityManagerSetDiskLabel(driver->securityManager,
                                       vm->def, disk) < 0) {
512
        if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
513
            VIR_WARN("Unable to release lock on %s", src);
514
        goto cleanup;
515
    }
516 517 518

    /* We should have an address already, so make sure */
    if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE) {
519 520 521
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("unexpected disk address type %s"),
                       virDomainDeviceAddressTypeToString(disk->info.type));
522 523 524
        goto error;
    }

525 526
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
        if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
527
            goto error;
528
        if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
529 530 531
            goto error;
    }

532
    if (!(drivestr = qemuBuildDriveStr(conn, disk, false, priv->qemuCaps)))
533 534
        goto error;

535
    for (i = 0; i <= disk->info.addr.drive.controller; i++) {
536
        cont = qemuDomainFindOrCreateSCSIDiskController(driver, vm, i);
537 538 539 540 541 542 543
        if (!cont)
            goto error;
    }

    /* Tell clang that "cont" is non-NULL.
       This is because disk->info.addr.driver.controller is unsigned,
       and hence the above loop must iterate at least once.  */
544
    sa_assert(cont);
545

546
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
547 548
        goto error;

549
    qemuDomainObjEnterMonitor(driver, vm);
550
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
551 552 553 554 555 556 557 558 559 560 561
        ret = qemuMonitorAddDrive(priv->mon, drivestr);
        if (ret == 0) {
            ret = qemuMonitorAddDevice(priv->mon, devstr);
            if (ret < 0) {
                VIR_WARN("qemuMonitorAddDevice failed on %s (%s)",
                         drivestr, devstr);
                /* XXX should call 'drive_del' on error but this does not
                   exist yet */
            }
        }
    } else {
562 563 564 565 566 567 568
        if (cont->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("SCSI controller %d was missing its PCI address"),
                           cont->idx);
            goto error;
        }

569 570 571 572 573 574 575 576 577
        virDomainDeviceDriveAddress driveAddr;
        ret = qemuMonitorAttachDrive(priv->mon,
                                     drivestr,
                                     &cont->info.addr.pci,
                                     &driveAddr);
        if (ret == 0) {
            /* XXX we should probably validate that the addr matches
             * our existing defined addr instead of overwriting */
            disk->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE;
578 579
            disk->info.addr.drive.bus = driveAddr.bus;
            disk->info.addr.drive.unit = driveAddr.unit;
580 581
        }
    }
582
    qemuDomainObjExitMonitor(driver, vm);
583

584
    virDomainAuditDisk(vm, NULL, disk->src, "attach", ret >= 0);
585 586 587 588 589 590

    if (ret < 0)
        goto error;

    virDomainDiskInsertPreAlloced(vm->def, disk);

591
 cleanup:
592 593
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
594 595
    virObjectUnref(cfg);
    return ret;
596

597
 error:
598 599
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
600
        VIR_WARN("Unable to restore security label on %s", src);
601

602
    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
603
        VIR_WARN("Unable to release lock on %s", src);
604

605
    goto cleanup;
606 607 608
}


609
static int
610
qemuDomainAttachUSBMassstorageDevice(virConnectPtr conn,
611 612 613
                                     virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainDiskDefPtr disk)
614 615
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
616 617
    size_t i;
    int ret = -1;
618 619
    char *drivestr = NULL;
    char *devstr = NULL;
620
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
621
    const char *src = virDomainDiskGetSource(disk);
622

623
    for (i = 0; i < vm->def->ndisks; i++) {
624
        if (STREQ(vm->def->disks[i]->dst, disk->dst)) {
625 626
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("target %s already exists"), disk->dst);
627
            goto cleanup;
628 629 630
        }
    }

631
    if (virDomainLockDiskAttach(driver->lockManager, cfg->uri,
632
                                vm, disk) < 0)
633
        goto cleanup;
634

635 636
    if (virSecurityManagerSetDiskLabel(driver->securityManager,
                                       vm->def, disk) < 0) {
637
        if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
638
            VIR_WARN("Unable to release lock on %s", src);
639
        goto cleanup;
640
    }
641

642
    /* XXX not correct once we allow attaching a USB CDROM */
643
    if (!src) {
644 645
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       "%s", _("disk source path is missing"));
646 647 648
        goto error;
    }

649 650
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
        if (qemuAssignDeviceDiskAlias(vm->def, disk, priv->qemuCaps) < 0)
651
            goto error;
652
        if (!(drivestr = qemuBuildDriveStr(conn, disk, false, priv->qemuCaps)))
653
            goto error;
654
        if (!(devstr = qemuBuildDriveDevStr(vm->def, disk, 0, priv->qemuCaps)))
655 656 657
            goto error;
    }

658
    if (VIR_REALLOC_N(vm->def->disks, vm->def->ndisks+1) < 0)
659 660
        goto error;

661
    qemuDomainObjEnterMonitor(driver, vm);
662
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
663 664 665 666 667 668 669 670 671 672 673
        ret = qemuMonitorAddDrive(priv->mon, drivestr);
        if (ret == 0) {
            ret = qemuMonitorAddDevice(priv->mon, devstr);
            if (ret < 0) {
                VIR_WARN("qemuMonitorAddDevice failed on %s (%s)",
                         drivestr, devstr);
                /* XXX should call 'drive_del' on error but this does not
                   exist yet */
            }
        }
    } else {
674
        ret = qemuMonitorAddUSBDisk(priv->mon, src);
675
    }
676
    qemuDomainObjExitMonitor(driver, vm);
677

678
    virDomainAuditDisk(vm, NULL, disk->src, "attach", ret >= 0);
679 680 681 682 683 684

    if (ret < 0)
        goto error;

    virDomainDiskInsertPreAlloced(vm->def, disk);

685
 cleanup:
686 687
    VIR_FREE(devstr);
    VIR_FREE(drivestr);
688 689
    virObjectUnref(cfg);
    return ret;
690

691
 error:
692 693
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
694
        VIR_WARN("Unable to restore security label on %s", src);
695

696
    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
697
        VIR_WARN("Unable to release lock on %s", src);
698

699
    goto cleanup;
700 701 702
}


703 704 705 706 707 708 709 710 711 712 713 714
int
qemuDomainAttachDeviceDiskLive(virConnectPtr conn,
                               virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainDiskDefPtr disk = dev->data.disk;
    virDomainDiskDefPtr orig_disk = NULL;
    virDomainDeviceDefPtr dev_copy = NULL;
    virDomainDiskDefPtr tmp = NULL;
    virCapsPtr caps = NULL;
    int ret = -1;
715 716
    const char *driverName = virDomainDiskGetDriver(disk);
    const char *src = virDomainDiskGetSource(disk);
717

718
    if (driverName && !STREQ(driverName, "qemu")) {
719 720
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("unsupported driver name '%s' for disk '%s'"),
721
                       driverName, src);
722 723 724 725 726 727 728 729 730 731 732 733
        goto end;
    }

    if (qemuTranslateDiskSourcePool(conn, disk) < 0)
        goto end;

    if (qemuAddSharedDevice(driver, dev, vm->def->name) < 0)
        goto end;

    if (qemuSetUnprivSGIO(dev) < 0)
        goto end;

734
    if (qemuDomainDetermineDiskChain(driver, vm, disk, false) < 0)
735 736 737 738 739 740 741 742 743 744 745 746 747 748 749 750 751 752 753 754 755 756 757 758 759 760 761 762 763 764 765 766 767 768 769 770 771 772 773 774 775 776 777 778 779 780 781 782 783 784
        goto end;

    if (qemuSetupDiskCgroup(vm, disk) < 0)
        goto end;

    switch (disk->device)  {
    case VIR_DOMAIN_DISK_DEVICE_CDROM:
    case VIR_DOMAIN_DISK_DEVICE_FLOPPY:
        if (!(orig_disk = virDomainDiskFindByBusAndDst(vm->def,
                                                       disk->bus, disk->dst))) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("No device with bus '%s' and target '%s'"),
                           virDomainDiskBusTypeToString(disk->bus),
                           disk->dst);
            goto end;
        }

        if (!(caps = virQEMUDriverGetCapabilities(driver, false)))
            goto end;

        tmp = dev->data.disk;
        dev->data.disk = orig_disk;

        if (!(dev_copy = virDomainDeviceDefCopy(dev, vm->def,
                                                caps, driver->xmlopt))) {
            dev->data.disk = tmp;
            goto end;
        }
        dev->data.disk = tmp;

        ret = qemuDomainChangeEjectableMedia(driver, vm, disk, orig_disk, false);
        /* 'disk' must not be accessed now - it has been free'd.
         * 'orig_disk' now points to the new disk, while 'dev_copy'
         * now points to the old disk */

        /* Need to remove the shared disk entry for the original disk src
         * if the operation is either ejecting or updating.
         */
        if (ret == 0)
            ignore_value(qemuRemoveSharedDevice(driver, dev_copy,
                                                vm->def->name));
        break;
    case VIR_DOMAIN_DISK_DEVICE_DISK:
    case VIR_DOMAIN_DISK_DEVICE_LUN:
        if (disk->bus == VIR_DOMAIN_DISK_BUS_USB) {
            if (disk->device == VIR_DOMAIN_DISK_DEVICE_LUN) {
                virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                               _("disk device='lun' is not supported for usb bus"));
                break;
            }
785
            ret = qemuDomainAttachUSBMassstorageDevice(conn, driver, vm,
786 787 788 789 790 791 792 793 794 795 796 797 798 799 800 801 802 803
                                                       disk);
        } else if (disk->bus == VIR_DOMAIN_DISK_BUS_VIRTIO) {
            ret = qemuDomainAttachVirtioDiskDevice(conn, driver, vm, disk);
        } else if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI) {
            ret = qemuDomainAttachSCSIDisk(conn, driver, vm, disk);
        } else {
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                           _("disk bus '%s' cannot be hotplugged."),
                           virDomainDiskBusTypeToString(disk->bus));
        }
        break;
    default:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("disk device type '%s' cannot be hotplugged"),
                       virDomainDiskDeviceTypeToString(disk->device));
        break;
    }

804 805 806
    if (ret != 0 &&
        qemuTeardownDiskCgroup(vm, disk) < 0) {
        VIR_WARN("Failed to teardown cgroup for disk path %s",
807
                 NULLSTR(src));
808 809
    }

810
 end:
811 812 813 814 815 816 817 818
    if (ret != 0)
        ignore_value(qemuRemoveSharedDevice(driver, dev, vm->def->name));
    virObjectUnref(caps);
    virDomainDeviceDefFree(dev_copy);
    return ret;
}


819 820
/* XXX conn required for network -> bridge resolution */
int qemuDomainAttachNetDevice(virConnectPtr conn,
821
                              virQEMUDriverPtr driver,
822
                              virDomainObjPtr vm,
823
                              virDomainNetDefPtr net)
824 825
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
826 827 828 829 830 831
    char **tapfdName = NULL;
    int *tapfd = NULL;
    int tapfdSize = 0;
    char **vhostfdName = NULL;
    int *vhostfd = NULL;
    int vhostfdSize = 0;
832 833
    char *nicstr = NULL;
    char *netstr = NULL;
A
Ansis Atteka 已提交
834
    virNetDevVPortProfilePtr vport = NULL;
835
    int ret = -1;
836
    virDevicePCIAddress guestAddr;
837
    int vlan;
838
    bool releaseaddr = false;
839 840
    bool iface_connected = false;
    int actualType;
841
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
842
    size_t i;
843

844
    /* preallocate new slot for device */
845
    if (VIR_REALLOC_N(vm->def->nets, vm->def->nnets + 1) < 0)
846
        goto cleanup;
847

848 849 850 851
    /* If appropriate, grab a physical device from the configured
     * network's pool of devices, or resolve bridge device name
     * to the one defined in the network definition.
     */
852
    if (networkAllocateActualDevice(vm->def, net) < 0)
853
        goto cleanup;
854 855

    actualType = virDomainNetGetActualType(net);
856 857 858 859 860 861 862

    if (actualType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* This is really a "smart hostdev", so it should be attached
         * as a hostdev (the hostdev code will reach over into the
         * netdev-specific code as appropriate), then also added to
         * the nets list (see cleanup:) if successful.
         */
863
        ret = qemuDomainAttachHostDevice(conn, driver, vm,
864 865 866 867
                                         virDomainNetGetActualHostdev(net));
        goto cleanup;
    }

868
    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_HOST_NET_ADD)) {
869 870
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("installed qemu version does not support host_net_add"));
871 872 873
        goto cleanup;
    }

874 875 876 877 878 879 880 881 882 883
    /* Currently nothing besides TAP devices supports multiqueue. */
    if (net->driver.virtio.queues > 0 &&
        !(actualType == VIR_DOMAIN_NET_TYPE_NETWORK ||
          actualType == VIR_DOMAIN_NET_TYPE_BRIDGE)) {
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("Multiqueue network is not supported for: %s"),
                       virDomainNetTypeToString(actualType));
        return -1;
    }

884 885
    if (actualType == VIR_DOMAIN_NET_TYPE_BRIDGE ||
        actualType == VIR_DOMAIN_NET_TYPE_NETWORK) {
886 887 888
        tapfdSize = vhostfdSize = net->driver.virtio.queues;
        if (!tapfdSize)
            tapfdSize = vhostfdSize = 1;
889
        if (VIR_ALLOC_N(tapfd, tapfdSize) < 0)
890
            goto cleanup;
891 892 893 894
        memset(tapfd, -1, sizeof(*tapfd) * tapfdSize);
        if (VIR_ALLOC_N(vhostfd, vhostfdSize) < 0)
            goto cleanup;
        memset(vhostfd, -1, sizeof(*vhostfd) * vhostfdSize);
895 896
        if (qemuNetworkIfaceConnect(vm->def, conn, driver, net,
                                    priv->qemuCaps, tapfd, &tapfdSize) < 0)
897 898
            goto cleanup;
        iface_connected = true;
899
        if (qemuOpenVhostNet(vm->def, net, priv->qemuCaps, vhostfd, &vhostfdSize) < 0)
900
            goto cleanup;
901
    } else if (actualType == VIR_DOMAIN_NET_TYPE_DIRECT) {
902
        tapfdSize = vhostfdSize = 1;
903 904 905 906
        if (VIR_ALLOC(tapfd) < 0)
            goto cleanup;
        *tapfd = -1;
        if (VIR_ALLOC(vhostfd) < 0)
907
            goto cleanup;
908
        *vhostfd = -1;
909 910 911
        if ((tapfd[0] = qemuPhysIfaceConnect(vm->def, driver, net,
                                             priv->qemuCaps,
                                             VIR_NETDEV_VPORT_PROFILE_OP_CREATE)) < 0)
912 913
            goto cleanup;
        iface_connected = true;
914
        if (qemuOpenVhostNet(vm->def, net, priv->qemuCaps, vhostfd, &vhostfdSize) < 0)
915
            goto cleanup;
916
    } else if (actualType == VIR_DOMAIN_NET_TYPE_ETHERNET) {
917
        vhostfdSize = 1;
918
        if (VIR_ALLOC(vhostfd) < 0)
919
            goto cleanup;
920
        *vhostfd = -1;
921
        if (qemuOpenVhostNet(vm->def, net, priv->qemuCaps, vhostfd, &vhostfdSize) < 0)
922
            goto cleanup;
923 924
    }

925 926
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NET_NAME) ||
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
927 928 929 930
        if (qemuAssignDeviceNetAlias(vm->def, net, -1) < 0)
            goto cleanup;
    }

931 932 933
    if (STREQLEN(vm->def->os.machine, "s390-ccw", 8) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        net->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW;
J
Ján Tomko 已提交
934 935
        if (virDomainCCWAddressAssign(&net->info, priv->ccwaddrs,
                                      !net->info.addr.ccw.assigned) < 0)
936 937 938 939 940
            goto cleanup;
    } else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_S390))
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                        _("virtio-s390 net device cannot be hotplugged."));
    else if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE) &&
941
             virDomainPCIAddressEnsureAddr(priv->pciaddrs, &net->info) < 0)
942
             goto cleanup;
943

944 945
    releaseaddr = true;

946 947
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
948 949 950 951 952
        vlan = -1;
    } else {
        vlan = qemuDomainNetVLAN(net);

        if (vlan < 0) {
953 954
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("Unable to attach network devices without vlan"));
955 956 957 958
            goto cleanup;
        }
    }

959
    if (VIR_ALLOC_N(tapfdName, tapfdSize) < 0 ||
960
        VIR_ALLOC_N(vhostfdName, vhostfdSize) < 0)
961 962 963
        goto cleanup;

    for (i = 0; i < tapfdSize; i++) {
964
        if (virAsprintf(&tapfdName[i], "fd-%s%zu", net->info.alias, i) < 0)
965
            goto cleanup;
966 967
    }

968
    for (i = 0; i < vhostfdSize; i++) {
969
        if (virAsprintf(&vhostfdName[i], "vhostfd-%s%zu", net->info.alias, i) < 0)
970
            goto cleanup;
971 972
    }

973 974
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
975
        if (!(netstr = qemuBuildHostNetStr(net, driver,
976 977 978
                                           ',', -1,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
979
            goto cleanup;
980
    } else {
981
        if (!(netstr = qemuBuildHostNetStr(net, driver,
982 983 984
                                           ' ', vlan,
                                           tapfdName, tapfdSize,
                                           vhostfdName, vhostfdSize)))
985
            goto cleanup;
986 987
    }

988
    qemuDomainObjEnterMonitor(driver, vm);
989 990
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
991 992 993
        if (qemuMonitorAddNetdev(priv->mon, netstr,
                                 tapfd, tapfdName, tapfdSize,
                                 vhostfd, vhostfdName, vhostfdSize) < 0) {
994
            qemuDomainObjExitMonitor(driver, vm);
995
            virDomainAuditNet(vm, NULL, net, "attach", false);
996
            goto cleanup;
997 998
        }
    } else {
999 1000 1001
        if (qemuMonitorAddHostNetwork(priv->mon, netstr,
                                      tapfd, tapfdName, tapfdSize,
                                      vhostfd, vhostfdName, vhostfdSize) < 0) {
1002
            qemuDomainObjExitMonitor(driver, vm);
1003
            virDomainAuditNet(vm, NULL, net, "attach", false);
1004
            goto cleanup;
1005 1006
        }
    }
1007
    qemuDomainObjExitMonitor(driver, vm);
1008

1009 1010 1011 1012
    for (i = 0; i < tapfdSize; i++)
        VIR_FORCE_CLOSE(tapfd[i]);
    for (i = 0; i < vhostfdSize; i++)
        VIR_FORCE_CLOSE(vhostfd[i]);
1013 1014

    if (!virDomainObjIsActive(vm)) {
1015 1016
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("guest unexpectedly quit"));
1017 1018 1019
        goto cleanup;
    }

1020
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
1021
        if (!(nicstr = qemuBuildNicDevStr(vm->def, net, vlan, 0,
1022
                                          vhostfdSize, priv->qemuCaps)))
1023 1024 1025 1026 1027 1028
            goto try_remove;
    } else {
        if (!(nicstr = qemuBuildNicStr(net, NULL, vlan)))
            goto try_remove;
    }

1029
    qemuDomainObjEnterMonitor(driver, vm);
1030
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
1031
        if (qemuMonitorAddDevice(priv->mon, nicstr) < 0) {
1032
            qemuDomainObjExitMonitor(driver, vm);
1033
            virDomainAuditNet(vm, NULL, net, "attach", false);
1034 1035 1036
            goto try_remove;
        }
    } else {
1037
        guestAddr = net->info.addr.pci;
1038 1039
        if (qemuMonitorAddPCINetwork(priv->mon, nicstr,
                                     &guestAddr) < 0) {
1040
            qemuDomainObjExitMonitor(driver, vm);
1041
            virDomainAuditNet(vm, NULL, net, "attach", false);
1042 1043 1044 1045 1046
            goto try_remove;
        }
        net->info.type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
        memcpy(&net->info.addr.pci, &guestAddr, sizeof(guestAddr));
    }
1047
    qemuDomainObjExitMonitor(driver, vm);
1048

1049 1050 1051
    /* set link state */
    if (net->linkstate == VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) {
        if (!net->info.alias) {
1052 1053
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device alias not found: cannot set link state to down"));
1054
        } else {
1055
            qemuDomainObjEnterMonitor(driver, vm);
1056

1057
            if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV)) {
1058
                if (qemuMonitorSetLink(priv->mon, net->info.alias, VIR_DOMAIN_NET_INTERFACE_LINK_STATE_DOWN) < 0) {
1059
                    qemuDomainObjExitMonitor(driver, vm);
1060 1061 1062 1063
                    virDomainAuditNet(vm, NULL, net, "attach", false);
                    goto try_remove;
                }
            } else {
1064
                virReportError(VIR_ERR_OPERATION_FAILED, "%s",
1065
                               _("setting of link state not supported: Link is up"));
1066 1067
            }

1068
            qemuDomainObjExitMonitor(driver, vm);
1069 1070 1071 1072
        }
        /* link set to down */
    }

1073
    virDomainAuditNet(vm, NULL, net, "attach", true);
1074 1075 1076

    ret = 0;

1077
 cleanup:
1078 1079 1080
    if (!ret) {
        vm->def->nets[vm->def->nnets++] = net;
    } else {
1081 1082
        if (releaseaddr)
            qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
1083

1084
        if (iface_connected) {
1085
            virDomainConfNWFilterTeardown(net);
1086

1087 1088 1089 1090 1091 1092 1093 1094 1095 1096
            if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_DIRECT) {
                ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                                 net->ifname, &net->mac,
                                 virDomainNetGetActualDirectDev(net),
                                 virDomainNetGetActualDirectMode(net),
                                 virDomainNetGetActualVirtPortProfile(net),
                                 cfg->stateDir));
                VIR_FREE(net->ifname);
            }

1097 1098 1099 1100 1101
            vport = virDomainNetGetActualVirtPortProfile(net);
            if (vport && vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH)
               ignore_value(virNetDevOpenvswitchRemovePort(
                               virDomainNetGetActualBridgeName(net), net->ifname));
        }
A
Ansis Atteka 已提交
1102

1103 1104
        virDomainNetRemoveHostdev(vm->def, net);

1105
        networkReleaseActualDevice(vm->def, net);
1106
    }
1107 1108 1109

    VIR_FREE(nicstr);
    VIR_FREE(netstr);
1110
    for (i = 0; tapfd && i < tapfdSize; i++) {
1111
        VIR_FORCE_CLOSE(tapfd[i]);
1112 1113
        if (tapfdName)
            VIR_FREE(tapfdName[i]);
1114 1115 1116
    }
    VIR_FREE(tapfd);
    VIR_FREE(tapfdName);
1117
    for (i = 0; vhostfd && i < vhostfdSize; i++) {
1118
        VIR_FORCE_CLOSE(vhostfd[i]);
1119 1120
        if (vhostfdName)
            VIR_FREE(vhostfdName[i]);
1121 1122 1123
    }
    VIR_FREE(vhostfd);
    VIR_FREE(vhostfdName);
1124
    virObjectUnref(cfg);
1125 1126 1127

    return ret;

1128
 try_remove:
1129 1130 1131 1132
    if (!virDomainObjIsActive(vm))
        goto cleanup;

    if (vlan < 0) {
1133 1134
        if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
1135 1136
            char *netdev_name;
            if (virAsprintf(&netdev_name, "host%s", net->info.alias) < 0)
1137
                goto cleanup;
1138
            qemuDomainObjEnterMonitor(driver, vm);
1139 1140 1141
            if (qemuMonitorRemoveNetdev(priv->mon, netdev_name) < 0)
                VIR_WARN("Failed to remove network backend for netdev %s",
                         netdev_name);
1142
            qemuDomainObjExitMonitor(driver, vm);
1143 1144
            VIR_FREE(netdev_name);
        } else {
1145
            VIR_WARN("Unable to remove network backend");
1146 1147 1148 1149
        }
    } else {
        char *hostnet_name;
        if (virAsprintf(&hostnet_name, "host%s", net->info.alias) < 0)
1150
            goto cleanup;
1151
        qemuDomainObjEnterMonitor(driver, vm);
1152 1153 1154
        if (qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0)
            VIR_WARN("Failed to remove network backend for vlan %d, net %s",
                     vlan, hostnet_name);
1155
        qemuDomainObjExitMonitor(driver, vm);
1156 1157 1158 1159 1160 1161
        VIR_FREE(hostnet_name);
    }
    goto cleanup;
}


1162
static int
1163
qemuDomainAttachHostPCIDevice(virQEMUDriverPtr driver,
1164 1165
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
1166 1167 1168 1169 1170 1171
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret;
    char *devstr = NULL;
    int configfd = -1;
    char *configfd_name = NULL;
1172
    bool releaseaddr = false;
1173
    bool teardowncgroup = false;
1174
    bool teardownlabel = false;
1175
    int backend;
1176
    unsigned long long memKB;
1177 1178
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
    unsigned int flags = 0;
1179

1180
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs + 1) < 0)
1181 1182
        return -1;

1183 1184
    if (!cfg->relaxedACS)
        flags |= VIR_HOSTDEV_STRICT_ACS_CHECK;
1185
    if (qemuPrepareHostdevPCIDevices(driver, vm->def->name, vm->def->uuid,
1186 1187
                                     &hostdev, 1, priv->qemuCaps, flags) < 0)
        goto cleanup;
1188

1189 1190 1191
    /* this could have been changed by qemuPrepareHostdevPCIDevices */
    backend = hostdev->source.subsys.u.pci.backend;

1192
    switch ((virDomainHostdevSubsysPCIBackendType) backend) {
1193
    case VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO:
1194 1195 1196 1197 1198 1199
        if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_VFIO_PCI)) {
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                           _("VFIO PCI device assignment is not "
                             "supported by this version of qemu"));
            goto error;
        }
1200

1201 1202 1203
        /* VFIO requires all of the guest's memory to be locked
         * resident (plus an additional 1GiB to cover IO space). During
         * hotplug, the guest's memory may already be locked, but it
1204
         * doesn't hurt to "change" the limit to the same value.
1205 1206 1207
         * NB: the domain's memory tuning parameters are stored as
         * Kibibytes, but virProcessSetMaxMemLock expects the value in
         * bytes.
1208
         */
1209 1210 1211 1212
        memKB = vm->def->mem.hard_limit
            ? vm->def->mem.hard_limit
            : vm->def->mem.max_balloon + (1024 * 1024);
        virProcessSetMaxMemLock(vm->pid, memKB * 1024);
1213 1214
        break;

1215
    default:
1216
        break;
1217 1218
    }

1219 1220 1221 1222
    if (qemuSetupHostdevCGroup(vm, hostdev) < 0)
        goto error;
    teardowncgroup = true;

1223 1224 1225 1226 1227
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto error;
    teardownlabel = true;

1228
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
1229 1230
        if (qemuAssignDeviceHostdevAlias(vm->def, hostdev, -1) < 0)
            goto error;
1231
        if (virDomainPCIAddressEnsureAddr(priv->pciaddrs, hostdev->info) < 0)
1232
            goto error;
1233
        releaseaddr = true;
1234
        if (backend != VIR_DOMAIN_HOSTDEV_PCI_BACKEND_VFIO &&
1235
            virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_PCI_CONFIGFD)) {
1236 1237 1238
            configfd = qemuOpenPCIConfig(hostdev);
            if (configfd >= 0) {
                if (virAsprintf(&configfd_name, "fd-%s",
1239
                                hostdev->info->alias) < 0)
1240 1241 1242 1243 1244
                    goto error;
            }
        }

        if (!virDomainObjIsActive(vm)) {
1245 1246
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("guest unexpectedly quit during hotplug"));
1247 1248 1249
            goto error;
        }

1250
        if (!(devstr = qemuBuildPCIHostdevDevStr(vm->def, hostdev, configfd_name,
1251
                                                 priv->qemuCaps)))
1252 1253
            goto error;

1254
        qemuDomainObjEnterMonitor(driver, vm);
1255 1256
        ret = qemuMonitorAddDeviceWithFd(priv->mon, devstr,
                                         configfd, configfd_name);
1257
        qemuDomainObjExitMonitor(driver, vm);
1258
    } else {
1259 1260 1261 1262 1263 1264 1265 1266 1267 1268 1269
        virDevicePCIAddressPtr guestAddr = &hostdev->info->addr.pci;
        virDevicePCIAddressPtr hostAddr = &hostdev->source.subsys.u.pci.addr;

        if (hostAddr->domain &&
            !virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_HOST_PCI_MULTIDOMAIN)) {
            virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                           _("non-zero domain='%.4x' in host device "
                             "PCI address not supported in this QEMU binary"),
                           hostAddr->domain);
            goto error;
        }
1270

1271
        qemuDomainObjEnterMonitor(driver, vm);
1272
        ret = qemuMonitorAddPCIHostDevice(priv->mon, hostAddr, guestAddr);
1273
        qemuDomainObjExitMonitor(driver, vm);
1274

1275
        hostdev->info->type = VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI;
1276
    }
1277
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
1278 1279 1280 1281 1282 1283 1284 1285
    if (ret < 0)
        goto error;

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);
1286
    virObjectUnref(cfg);
1287 1288 1289

    return 0;

1290
 error:
1291 1292
    if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
1293 1294 1295 1296
    if (teardownlabel &&
        virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                              vm->def, hostdev, NULL) < 0)
        VIR_WARN("Unable to restore host device labelling on hotplug fail");
1297

1298 1299
    if (releaseaddr)
        qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
1300

1301
    qemuDomainReAttachHostdevDevices(driver, vm->def->name, &hostdev, 1);
1302 1303 1304 1305 1306

    VIR_FREE(devstr);
    VIR_FREE(configfd_name);
    VIR_FORCE_CLOSE(configfd);

1307
 cleanup:
1308
    virObjectUnref(cfg);
1309 1310 1311 1312
    return -1;
}


1313
int qemuDomainAttachRedirdevDevice(virQEMUDriverPtr driver,
1314 1315 1316 1317 1318
                                   virDomainObjPtr vm,
                                   virDomainRedirdevDefPtr redirdev)
{
    int ret;
    qemuDomainObjPrivatePtr priv = vm->privateData;
1319
    virDomainDefPtr def = vm->def;
1320 1321
    char *devstr = NULL;

1322
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
1323 1324
        if (qemuAssignDeviceRedirdevAlias(vm->def, redirdev, -1) < 0)
            goto error;
1325
        if (!(devstr = qemuBuildRedirdevDevStr(def, redirdev, priv->qemuCaps)))
1326 1327 1328
            goto error;
    }

1329
    if (VIR_REALLOC_N(vm->def->redirdevs, vm->def->nredirdevs+1) < 0)
1330 1331
        goto error;

1332
    qemuDomainObjEnterMonitor(driver, vm);
1333
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE))
1334 1335 1336 1337
        ret = qemuMonitorAddDevice(priv->mon, devstr);
    else
        goto error;

1338
    qemuDomainObjExitMonitor(driver, vm);
1339 1340 1341 1342 1343 1344 1345 1346 1347 1348
    virDomainAuditRedirdev(vm, redirdev, "attach", ret == 0);
    if (ret < 0)
        goto error;

    vm->def->redirdevs[vm->def->nredirdevs++] = redirdev;

    VIR_FREE(devstr);

    return 0;

1349
 error:
1350 1351 1352 1353 1354
    VIR_FREE(devstr);
    return -1;

}

1355 1356 1357 1358 1359 1360 1361 1362 1363 1364 1365 1366 1367 1368 1369 1370 1371 1372 1373 1374 1375 1376 1377 1378 1379 1380 1381 1382 1383 1384 1385 1386 1387 1388 1389 1390 1391 1392 1393 1394 1395 1396 1397 1398 1399 1400 1401 1402 1403 1404 1405 1406 1407 1408 1409 1410 1411 1412 1413 1414 1415 1416 1417 1418 1419 1420 1421 1422 1423 1424 1425 1426
int
qemuDomainChrInsert(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
                       _("attaching serial console is not supported"));
        return -1;
    }

    if (virDomainChrFind(vmdef, chr)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("chardev already exists"));
        return -1;
    }

    if (virDomainChrInsert(vmdef, chr) < 0)
        return -1;

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
    if (vmdef->nserials == 1 && vmdef->nconsoles == 0) {
        if ((!vmdef->consoles && VIR_ALLOC(vmdef->consoles) < 0) ||
            VIR_ALLOC(vmdef->consoles[0]) < 0) {
            virDomainChrRemove(vmdef, chr);
            return -1;
        }
        vmdef->nconsoles = 1;

        /* Create an console alias for the serial port */
        vmdef->consoles[0]->deviceType = VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE;
        vmdef->consoles[0]->targetType = VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL;
    }

    return 0;
}

virDomainChrDefPtr
qemuDomainChrRemove(virDomainDefPtr vmdef,
                    virDomainChrDefPtr chr)
{
    virDomainChrDefPtr ret;
    bool removeCompat;

    if (chr->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        chr->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("detaching serial console is not supported"));
        return NULL;
    }

    /* Due to some crazy backcompat stuff, the first serial device is an alias
     * to the first console too. If this is the case, the definition must be
     * duplicated as first console device. */
    removeCompat = vmdef->nserials && vmdef->nconsoles &&
        vmdef->consoles[0]->deviceType == VIR_DOMAIN_CHR_DEVICE_TYPE_CONSOLE &&
        vmdef->consoles[0]->targetType == VIR_DOMAIN_CHR_CONSOLE_TARGET_TYPE_SERIAL &&
        virDomainChrEquals(vmdef->serials[0], chr);

    if (!(ret = virDomainChrRemove(vmdef, chr))) {
        virReportError(VIR_ERR_INVALID_ARG, "%s",
                       _("device not present in domain configuration"));
            return NULL;
    }

    if (removeCompat)
        VIR_DELETE_ELEMENT(vmdef->consoles, 0, vmdef->nconsoles);

    return ret;
}
1427 1428 1429 1430 1431 1432 1433 1434 1435 1436

int qemuDomainAttachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainDefPtr vmdef = vm->def;
    char *devstr = NULL;
    char *charAlias = NULL;
1437
    bool need_remove = false;
1438 1439 1440 1441 1442 1443 1444 1445 1446 1447 1448 1449 1450

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("qemu does not support -device"));
        return ret;
    }

    if (qemuAssignDeviceChrAlias(vmdef, chr, -1) < 0)
        return ret;

    if (qemuBuildChrDeviceStr(&devstr, vm->def, chr, priv->qemuCaps) < 0)
        return ret;

J
Ján Tomko 已提交
1451
    if (virAsprintf(&charAlias, "char%s", chr->info.alias) < 0)
1452 1453 1454 1455
        goto cleanup;

    if (qemuDomainChrInsert(vmdef, chr) < 0)
        goto cleanup;
1456
    need_remove = true;
1457 1458 1459 1460

    qemuDomainObjEnterMonitor(driver, vm);
    if (qemuMonitorAttachCharDev(priv->mon, charAlias, &chr->source) < 0) {
        qemuDomainObjExitMonitor(driver, vm);
1461
        goto audit;
1462 1463 1464 1465 1466 1467
    }

    if (devstr && qemuMonitorAddDevice(priv->mon, devstr) < 0) {
        /* detach associated chardev on error */
        qemuMonitorDetachCharDev(priv->mon, charAlias);
        qemuDomainObjExitMonitor(driver, vm);
1468
        goto audit;
1469 1470 1471 1472
    }
    qemuDomainObjExitMonitor(driver, vm);

    ret = 0;
1473 1474
 audit:
    virDomainAuditChardev(vm, NULL, chr, "attach", ret == 0);
1475
 cleanup:
1476
    if (ret < 0 && need_remove)
1477 1478 1479 1480 1481 1482
        qemuDomainChrRemove(vmdef, chr);
    VIR_FREE(charAlias);
    VIR_FREE(devstr);
    return ret;
}

1483
static int
1484
qemuDomainAttachHostUSBDevice(virQEMUDriverPtr driver,
1485 1486
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
1487 1488 1489
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *devstr = NULL;
1490
    bool added = false;
1491
    bool teardowncgroup = false;
1492
    bool teardownlabel = false;
1493 1494
    int ret = -1;

1495
    if (qemuPrepareHostUSBDevices(driver, vm->def->name, &hostdev, 1, 0) < 0)
1496 1497 1498
        goto cleanup;

    added = true;
1499

1500 1501 1502 1503
    if (qemuSetupHostdevCGroup(vm, hostdev) < 0)
        goto cleanup;
    teardowncgroup = true;

1504 1505 1506 1507 1508
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto cleanup;
    teardownlabel = true;

1509
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
1510
        if (qemuAssignDeviceHostdevAlias(vm->def, hostdev, -1) < 0)
1511
            goto cleanup;
1512
        if (!(devstr = qemuBuildUSBHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
1513
            goto cleanup;
1514 1515
    }

1516
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs+1) < 0)
1517
        goto cleanup;
1518

1519
    qemuDomainObjEnterMonitor(driver, vm);
1520
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE))
1521 1522 1523 1524 1525
        ret = qemuMonitorAddDevice(priv->mon, devstr);
    else
        ret = qemuMonitorAddUSBDeviceExact(priv->mon,
                                           hostdev->source.subsys.u.usb.bus,
                                           hostdev->source.subsys.u.usb.device);
1526
    qemuDomainObjExitMonitor(driver, vm);
1527
    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
1528
    if (ret < 0)
1529
        goto cleanup;
1530 1531 1532

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

1533
    ret = 0;
1534
 cleanup:
1535 1536 1537 1538 1539 1540 1541
    if (ret < 0) {
        if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
            VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
        if (teardownlabel &&
            virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                                  vm->def, hostdev, NULL) < 0)
            VIR_WARN("Unable to restore host device labelling on hotplug fail");
1542
        if (added)
1543
            qemuDomainReAttachHostUSBDevices(driver, vm->def->name, &hostdev, 1);
1544
    }
1545
    VIR_FREE(devstr);
1546
    return ret;
1547 1548
}

1549
static int
1550 1551
qemuDomainAttachHostSCSIDevice(virConnectPtr conn,
                               virQEMUDriverPtr driver,
1552 1553 1554 1555 1556
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
1557
    virDomainControllerDefPtr cont = NULL;
1558 1559
    char *devstr = NULL;
    char *drvstr = NULL;
1560
    bool teardowncgroup = false;
1561
    bool teardownlabel = false;
1562 1563 1564 1565 1566 1567 1568 1569 1570

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DRIVE) ||
        !virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE) ||
        !virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_SCSI_GENERIC)) {
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED, "%s",
                       _("SCSI passthrough is not supported by this version of qemu"));
        return -1;
    }

1571 1572 1573 1574
    cont = qemuDomainFindOrCreateSCSIDiskController(driver, vm, hostdev->info->addr.drive.controller);
    if (!cont)
        return -1;

1575 1576
    if (qemuPrepareHostdevSCSIDevices(driver, vm->def->name,
                                      &hostdev, 1)) {
1577
        virDomainHostdevSubsysSCSIPtr scsisrc = &hostdev->source.subsys.u.scsi;
1578 1579 1580 1581 1582 1583 1584 1585 1586 1587 1588 1589
        if (scsisrc->protocol == VIR_DOMAIN_HOSTDEV_SCSI_PROTOCOL_TYPE_ISCSI) {
            virDomainHostdevSubsysSCSIiSCSIPtr iscsisrc = &scsisrc->u.iscsi;
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("Unable to prepare scsi hostdev for iSCSI: %s"),
                           iscsisrc->path);
        } else {
            virDomainHostdevSubsysSCSIHostPtr scsihostsrc = &scsisrc->u.host;
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("Unable to prepare scsi hostdev: %s:%d:%d:%d"),
                           scsihostsrc->adapter, scsihostsrc->bus,
                           scsihostsrc->target, scsihostsrc->unit);
        }
1590 1591 1592
        return -1;
    }

1593 1594 1595 1596
    if (qemuSetupHostdevCGroup(vm, hostdev) < 0)
        goto cleanup;
    teardowncgroup = true;

1597 1598 1599 1600 1601
    if (virSecurityManagerSetHostdevLabel(driver->securityManager,
                                          vm->def, hostdev, NULL) < 0)
        goto cleanup;
    teardownlabel = true;

1602
    if (qemuAssignDeviceHostdevAlias(vm->def, hostdev, -1) < 0)
1603 1604
        goto cleanup;

1605
    if (!(drvstr = qemuBuildSCSIHostdevDrvStr(conn, hostdev, priv->qemuCaps,
1606
                                              &buildCommandLineCallbacks)))
1607 1608 1609 1610 1611
        goto cleanup;

    if (!(devstr = qemuBuildSCSIHostdevDevStr(vm->def, hostdev, priv->qemuCaps)))
        goto cleanup;

1612
    if (VIR_REALLOC_N(vm->def->hostdevs, vm->def->nhostdevs + 1) < 0)
1613 1614 1615 1616 1617 1618 1619 1620 1621 1622 1623 1624 1625 1626 1627 1628 1629 1630 1631 1632 1633 1634 1635 1636 1637
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
    if ((ret = qemuMonitorAddDrive(priv->mon, drvstr)) == 0) {
        if ((ret = qemuMonitorAddDevice(priv->mon, devstr)) < 0) {
            virErrorPtr orig_err = virSaveLastError();
            if (qemuMonitorDriveDel(priv->mon, drvstr) < 0)
                VIR_WARN("Unable to remove drive %s (%s) after failed "
                         "qemuMonitorAddDevice",
                         drvstr, devstr);
            if (orig_err) {
                virSetError(orig_err);
                virFreeError(orig_err);
            }
        }
    }
    qemuDomainObjExitMonitor(driver, vm);

    virDomainAuditHostdev(vm, hostdev, "attach", ret == 0);
    if (ret < 0)
        goto cleanup;

    vm->def->hostdevs[vm->def->nhostdevs++] = hostdev;

    ret = 0;
1638
 cleanup:
1639
    if (ret < 0) {
1640
        qemuDomainReAttachHostSCSIDevices(driver, vm->def->name, &hostdev, 1);
1641 1642
        if (teardowncgroup && qemuTeardownHostdevCgroup(vm, hostdev) < 0)
            VIR_WARN("Unable to remove host device cgroup ACL on hotplug fail");
1643 1644 1645 1646
        if (teardownlabel &&
            virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                                  vm->def, hostdev, NULL) < 0)
            VIR_WARN("Unable to restore host device labelling on hotplug fail");
1647
    }
1648 1649 1650 1651 1652
    VIR_FREE(drvstr);
    VIR_FREE(devstr);
    return ret;
}

1653 1654
int qemuDomainAttachHostDevice(virConnectPtr conn,
                               virQEMUDriverPtr driver,
1655
                               virDomainObjPtr vm,
1656
                               virDomainHostdevDefPtr hostdev)
1657 1658
{
    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
1659 1660 1661
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
1662 1663 1664 1665 1666
        return -1;
    }

    switch (hostdev->source.subsys.type) {
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
1667
        if (qemuDomainAttachHostPCIDevice(driver, vm,
1668
                                          hostdev) < 0)
1669 1670 1671 1672
            goto error;
        break;

    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
1673
        if (qemuDomainAttachHostUSBDevice(driver, vm,
1674
                                          hostdev) < 0)
1675 1676 1677
            goto error;
        break;

1678
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
1679
        if (qemuDomainAttachHostSCSIDevice(conn, driver, vm,
1680 1681 1682 1683
                                           hostdev) < 0)
            goto error;
        break;

1684
    default:
1685 1686 1687
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(hostdev->source.subsys.type));
1688 1689 1690 1691 1692
        goto error;
    }

    return 0;

1693
 error:
1694 1695 1696
    return -1;
}

1697 1698
static virDomainNetDefPtr *qemuDomainFindNet(virDomainObjPtr vm,
                                             virDomainNetDefPtr dev)
1699
{
1700
    size_t i;
1701 1702

    for (i = 0; i < vm->def->nnets; i++) {
1703
        if (virMacAddrCmp(&vm->def->nets[i]->mac, &dev->mac) == 0)
1704
            return &vm->def->nets[i];
1705 1706 1707 1708 1709
    }

    return NULL;
}

1710 1711 1712 1713 1714 1715 1716 1717 1718 1719 1720 1721 1722 1723
static char *
qemuDomainNetGetBridgeName(virConnectPtr conn, virDomainNetDefPtr net)
{
    char *brname = NULL;
    int actualType = virDomainNetGetActualType(net);

    if (actualType == VIR_DOMAIN_NET_TYPE_BRIDGE) {
        const char *tmpbr = virDomainNetGetActualBridgeName(net);
        if (!tmpbr) {
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("interface is missing bridge name"));
            goto cleanup;
        }
        /* we need a copy, not just a pointer to the original */
1724
        if (VIR_STRDUP(brname, tmpbr) < 0)
1725 1726 1727 1728 1729 1730 1731 1732 1733 1734 1735
            goto cleanup;
    } else if (actualType == VIR_DOMAIN_NET_TYPE_NETWORK) {
        virErrorPtr errobj;
        virNetworkPtr network;

        if (!(network = virNetworkLookupByName(conn, net->data.network.name))) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("Couldn't find network '%s'"),
                           net->data.network.name);
            goto cleanup;
        }
1736
        brname = virNetworkGetBridgeName(network);
1737 1738 1739 1740 1741 1742 1743

        /* Make sure any above failure is preserved */
        errobj = virSaveLastError();
        virNetworkFree(network);
        virSetError(errobj);
        virFreeError(errobj);

1744 1745 1746 1747
    } else {
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("Interface type %d has no bridge name"),
                       virDomainNetGetActualType(net));
1748 1749
    }

1750
 cleanup:
1751 1752 1753 1754 1755 1756 1757 1758
    return brname;
}

static int
qemuDomainChangeNetBridge(virConnectPtr conn,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
1759 1760
{
    int ret = -1;
1761 1762 1763 1764 1765 1766 1767
    char *oldbridge = NULL, *newbridge = NULL;

    if (!(oldbridge = qemuDomainNetGetBridgeName(conn, olddev)))
        goto cleanup;

    if (!(newbridge = qemuDomainNetGetBridgeName(conn, newdev)))
        goto cleanup;
1768 1769 1770 1771 1772

    VIR_DEBUG("Change bridge for interface %s: %s -> %s",
              olddev->ifname, oldbridge, newbridge);

    if (virNetDevExists(newbridge) != 1) {
1773 1774
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("bridge %s doesn't exist"), newbridge);
1775
        goto cleanup;
1776 1777 1778 1779 1780
    }

    if (oldbridge) {
        ret = virNetDevBridgeRemovePort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, olddev, NULL, "detach", ret == 0);
1781 1782 1783 1784 1785 1786 1787 1788
        if (ret < 0) {
            /* warn but continue - possibly the old network
             * had been destroyed and reconstructed, leaving the
             * tap device orphaned.
             */
            VIR_WARN("Unable to detach device %s from bridge %s",
                     olddev->ifname, oldbridge);
        }
1789 1790 1791
    }

    ret = virNetDevBridgeAddPort(newbridge, olddev->ifname);
1792
    virDomainAuditNet(vm, NULL, newdev, "attach", ret == 0);
1793 1794 1795 1796
    if (ret < 0) {
        ret = virNetDevBridgeAddPort(oldbridge, olddev->ifname);
        virDomainAuditNet(vm, NULL, olddev, "attach", ret == 0);
        if (ret < 0) {
1797
            virReportError(VIR_ERR_OPERATION_FAILED,
1798
                           _("unable to recover former state by adding port "
1799
                             "to bridge %s"), oldbridge);
1800
        }
1801
        goto cleanup;
1802
    }
1803 1804
    /* caller will replace entire olddev with newdev in domain nets list */
    ret = 0;
1805
 cleanup:
1806
    VIR_FREE(oldbridge);
1807 1808
    VIR_FREE(newbridge);
    return ret;
1809 1810
}

1811 1812 1813 1814 1815 1816 1817 1818 1819 1820 1821 1822 1823 1824 1825 1826 1827 1828 1829 1830 1831
static int
qemuDomainChangeNetFilter(virConnectPtr conn,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr olddev,
                          virDomainNetDefPtr newdev)
{
    /* make sure this type of device supports filters. */
    switch (virDomainNetGetActualType(newdev)) {
    case VIR_DOMAIN_NET_TYPE_ETHERNET:
    case VIR_DOMAIN_NET_TYPE_BRIDGE:
    case VIR_DOMAIN_NET_TYPE_NETWORK:
        break;
    default:
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("filters not supported on interfaces of type %s"),
                       virDomainNetTypeToString(virDomainNetGetActualType(newdev)));
        return -1;
    }

    virDomainConfNWFilterTeardown(olddev);

1832 1833
    if (newdev->filter &&
        virDomainConfNWFilterInstantiate(conn, vm->def->uuid, newdev) < 0) {
1834 1835 1836 1837 1838 1839 1840 1841 1842 1843 1844 1845 1846 1847 1848
        virErrorPtr errobj;

        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("failed to add new filter rules to '%s' "
                         "- attempting to restore old rules"),
                       olddev->ifname);
        errobj = virSaveLastError();
        ignore_value(virDomainConfNWFilterInstantiate(conn, vm->def->uuid, olddev));
        virSetError(errobj);
        virFreeError(errobj);
        return -1;
    }
    return 0;
}

1849
int qemuDomainChangeNetLinkState(virQEMUDriverPtr driver,
1850 1851 1852 1853 1854 1855 1856 1857 1858 1859
                                 virDomainObjPtr vm,
                                 virDomainNetDefPtr dev,
                                 int linkstate)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;

    VIR_DEBUG("dev: %s, state: %d", dev->info.alias, linkstate);

    if (!dev->info.alias) {
1860 1861
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("can't change link state: device alias not found"));
1862 1863 1864
        return -1;
    }

1865
    qemuDomainObjEnterMonitor(driver, vm);
1866 1867 1868 1869 1870 1871 1872 1873

    ret = qemuMonitorSetLink(priv->mon, dev->info.alias, linkstate);
    if (ret < 0)
        goto cleanup;

    /* modify the device configuration */
    dev->linkstate = linkstate;

1874
 cleanup:
1875
    qemuDomainObjExitMonitor(driver, vm);
1876 1877 1878 1879

    return ret;
}

1880
int
1881
qemuDomainChangeNet(virQEMUDriverPtr driver,
1882 1883 1884
                    virDomainObjPtr vm,
                    virDomainPtr dom,
                    virDomainDeviceDefPtr dev)
1885
{
1886 1887 1888 1889 1890 1891
    virDomainNetDefPtr newdev = dev->data.net;
    virDomainNetDefPtr *devslot = qemuDomainFindNet(vm, newdev);
    virDomainNetDefPtr olddev;
    int oldType, newType;
    bool needReconnect = false;
    bool needBridgeChange = false;
1892
    bool needFilterChange = false;
1893 1894
    bool needLinkStateChange = false;
    bool needReplaceDevDef = false;
1895
    bool needBandwidthSet = false;
1896
    int ret = -1;
1897

1898
    if (!devslot || !(olddev = *devslot)) {
1899
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
1900
                       _("cannot find existing network device to modify"));
1901 1902 1903 1904 1905 1906
        goto cleanup;
    }

    oldType = virDomainNetGetActualType(olddev);
    if (oldType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* no changes are possible to a type='hostdev' interface */
1907
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1908 1909 1910 1911 1912 1913 1914 1915 1916 1917 1918 1919 1920 1921 1922 1923 1924 1925 1926 1927 1928 1929
                       _("cannot change config of '%s' network type"),
                       virDomainNetTypeToString(oldType));
        goto cleanup;
    }

    /* Check individual attributes for changes that can't be done to a
     * live netdev. These checks *mostly* go in order of the
     * declarations in virDomainNetDef in order to assure nothing is
     * omitted. (exceptiong where noted in comments - in particular,
     * some things require that a new "actual device" be allocated
     * from the network driver first, but we delay doing that until
     * after we've made as many other checks as possible)
     */

    /* type: this can change (with some restrictions), but the actual
     * type of the new device connection isn't known until after we
     * allocate the "actual" device.
     */

    if (virMacAddrCmp(&olddev->mac, &newdev->mac)) {
        char oldmac[VIR_MAC_STRING_BUFLEN], newmac[VIR_MAC_STRING_BUFLEN];

1930
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1931 1932 1933 1934 1935 1936 1937 1938
                       _("cannot change network interface mac address "
                         "from %s to %s"),
                       virMacAddrFormat(&olddev->mac, oldmac),
                       virMacAddrFormat(&newdev->mac, newmac));
        goto cleanup;
    }

    if (STRNEQ_NULLABLE(olddev->model, newdev->model)) {
1939
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
1940 1941 1942 1943
                       _("cannot modify network device model from %s to %s"),
                       olddev->model ? olddev->model : "(default)",
                       newdev->model ? newdev->model : "(default)");
        goto cleanup;
1944 1945
    }

1946 1947 1948 1949
    if (olddev->model && STREQ(olddev->model, "virtio") &&
        (olddev->driver.virtio.name != newdev->driver.virtio.name ||
         olddev->driver.virtio.txmode != newdev->driver.virtio.txmode ||
         olddev->driver.virtio.ioeventfd != newdev->driver.virtio.ioeventfd ||
1950 1951
         olddev->driver.virtio.event_idx != newdev->driver.virtio.event_idx ||
         olddev->driver.virtio.queues != newdev->driver.virtio.queues)) {
1952
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1953 1954 1955 1956 1957 1958 1959 1960 1961 1962
                       _("cannot modify virtio network device driver attributes"));
        goto cleanup;
    }

    /* data: this union will be examined later, after allocating new actualdev */
    /* virtPortProfile: will be examined later, after allocating new actualdev */

    if (olddev->tune.sndbuf_specified != newdev->tune.sndbuf_specified ||
        olddev->tune.sndbuf != newdev->tune.sndbuf) {
        needReconnect = true;
1963 1964
    }

1965
    if (STRNEQ_NULLABLE(olddev->script, newdev->script)) {
1966
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1967 1968
                       _("cannot modify network device script attribute"));
        goto cleanup;
1969 1970
    }

1971
    /* ifname: check if it's set in newdev. If not, retain the autogenerated one */
1972
    if (!newdev->ifname && VIR_STRDUP(newdev->ifname, olddev->ifname) < 0)
1973 1974
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->ifname, newdev->ifname)) {
1975
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1976 1977 1978
                       _("cannot modify network device tap name"));
        goto cleanup;
    }
1979

1980 1981 1982 1983 1984 1985 1986 1987 1988 1989 1990 1991 1992
    /* info: if newdev->info is empty, fill it in from olddev,
     * otherwise verify that it matches - nothing is allowed to
     * change. (There is no helper function to do this, so
     * individually check the few feidls of virDomainDeviceInfo that
     * are relevant in this case).
     */
    if (!virDomainDeviceAddressIsValid(&newdev->info,
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI) &&
        virDomainDeviceInfoCopy(&newdev->info, &olddev->info) < 0) {
        goto cleanup;
    }
    if (!virDevicePCIAddressEqual(&olddev->info.addr.pci,
                                  &newdev->info.addr.pci)) {
1993
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
1994 1995 1996 1997
                       _("cannot modify network device guest PCI address"));
        goto cleanup;
    }
    /* grab alias from olddev if not set in newdev */
1998 1999
    if (!newdev->info.alias &&
        VIR_STRDUP(newdev->info.alias, olddev->info.alias) < 0)
2000 2001
        goto cleanup;
    if (STRNEQ_NULLABLE(olddev->info.alias, newdev->info.alias)) {
2002
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2003 2004 2005 2006
                       _("cannot modify network device alias"));
        goto cleanup;
    }
    if (olddev->info.rombar != newdev->info.rombar) {
2007
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2008 2009 2010 2011
                       _("cannot modify network device rom bar setting"));
        goto cleanup;
    }
    if (STRNEQ_NULLABLE(olddev->info.romfile, newdev->info.romfile)) {
2012
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2013 2014 2015 2016
                       _("cannot modify network rom file"));
        goto cleanup;
    }
    if (olddev->info.bootIndex != newdev->info.bootIndex) {
2017
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
2018 2019 2020 2021
                       _("cannot modify network device boot index setting"));
        goto cleanup;
    }
    /* (end of device info checks) */
2022

2023 2024 2025 2026
    if (STRNEQ_NULLABLE(olddev->filter, newdev->filter) ||
        !virNWFilterHashTableEqual(olddev->filterparams, newdev->filterparams)) {
        needFilterChange = true;
    }
2027

2028 2029 2030 2031 2032 2033 2034 2035
    /* bandwidth can be modified, and will be checked later */
    /* vlan can be modified, and will be checked later */
    /* linkstate can be modified */

    /* allocate new actual device to compare to old - we will need to
     * free it if we fail for any reason
     */
    if (newdev->type == VIR_DOMAIN_NET_TYPE_NETWORK &&
2036
        networkAllocateActualDevice(vm->def, newdev) < 0) {
2037 2038 2039 2040 2041 2042 2043
        goto cleanup;
    }

    newType = virDomainNetGetActualType(newdev);

    if (newType == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* can't turn it into a type='hostdev' interface */
2044
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2045 2046 2047 2048 2049 2050
                       _("cannot change network interface type to '%s'"),
                       virDomainNetTypeToString(newType));
        goto cleanup;
    }

    if (olddev->type == newdev->type && oldType == newType) {
2051

2052 2053 2054 2055 2056 2057 2058 2059 2060 2061 2062 2063
        /* if type hasn't changed, check the relevant fields for the type */
        switch (newdev->type) {
        case VIR_DOMAIN_NET_TYPE_USER:
            break;

        case VIR_DOMAIN_NET_TYPE_ETHERNET:
            if (STRNEQ_NULLABLE(olddev->data.ethernet.dev,
                                newdev->data.ethernet.dev) ||
                STRNEQ_NULLABLE(olddev->data.ethernet.ipaddr,
                                newdev->data.ethernet.ipaddr)) {
                needReconnect = true;
            }
2064 2065
        break;

2066 2067 2068 2069 2070 2071 2072 2073 2074 2075 2076 2077 2078 2079 2080 2081 2082 2083 2084 2085 2086 2087 2088 2089 2090 2091 2092 2093 2094 2095 2096 2097 2098 2099 2100 2101
        case VIR_DOMAIN_NET_TYPE_SERVER:
        case VIR_DOMAIN_NET_TYPE_CLIENT:
        case VIR_DOMAIN_NET_TYPE_MCAST:
            if (STRNEQ_NULLABLE(olddev->data.socket.address,
                                newdev->data.socket.address) ||
                olddev->data.socket.port != newdev->data.socket.port) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_NETWORK:
            if (STRNEQ(olddev->data.network.name, newdev->data.network.name)) {
                if (virDomainNetGetActualVirtPortProfile(newdev))
                    needReconnect = true;
                else
                    needBridgeChange = true;
            }
            /* other things handled in common code directly below this switch */
            break;

        case VIR_DOMAIN_NET_TYPE_BRIDGE:
            /* all handled in bridge name checked in common code below */
            break;

        case VIR_DOMAIN_NET_TYPE_INTERNAL:
            if (STRNEQ_NULLABLE(olddev->data.internal.name,
                                newdev->data.internal.name)) {
                needReconnect = true;
            }
            break;

        case VIR_DOMAIN_NET_TYPE_DIRECT:
            /* all handled in common code directly below this switch */
            break;

        default:
2102
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2103 2104 2105
                           _("unable to change config on '%s' network type"),
                           virDomainNetTypeToString(newdev->type));
            break;
2106

2107
        }
2108 2109 2110 2111 2112 2113 2114 2115 2116 2117 2118 2119 2120 2121 2122 2123 2124 2125 2126 2127 2128 2129 2130 2131 2132 2133 2134 2135 2136 2137 2138
    } else {
        /* interface type has changed. There are a few special cases
         * where this can only require a minor (or even no) change,
         * but in most cases we need to do a full reconnection.
         *
         * If we switch (in either direction) between type='bridge'
         * and type='network' (for a traditional managed virtual
         * network that uses a host bridge, i.e. forward
         * mode='route|nat'), we just need to change the bridge.
         */
        if ((oldType == VIR_DOMAIN_NET_TYPE_NETWORK &&
             newType == VIR_DOMAIN_NET_TYPE_BRIDGE) ||
            (oldType == VIR_DOMAIN_NET_TYPE_BRIDGE &&
             newType == VIR_DOMAIN_NET_TYPE_NETWORK)) {

            needBridgeChange = true;

        } else if (oldType == VIR_DOMAIN_NET_TYPE_DIRECT &&
                   newType == VIR_DOMAIN_NET_TYPE_DIRECT) {

            /* this is the case of switching from type='direct' to
             * type='network' for a network that itself uses direct
             * (macvtap) devices. If the physical device and mode are
             * the same, this doesn't require any actual setup
             * change. If the physical device or mode *does* change,
             * that will be caught in the common section below */

        } else {

            /* for all other combinations, we'll need a full reconnect */
            needReconnect = true;
2139 2140

        }
2141
    }
2142

2143 2144 2145 2146 2147 2148 2149 2150 2151 2152 2153
    /* now several things that are in multiple (but not all)
     * different types, and can be safely compared even for those
     * cases where they don't apply to a particular type.
     */
    if (STRNEQ_NULLABLE(virDomainNetGetActualBridgeName(olddev),
                        virDomainNetGetActualBridgeName(newdev))) {
        if (virDomainNetGetActualVirtPortProfile(newdev))
            needReconnect = true;
        else
            needBridgeChange = true;
    }
2154

2155 2156 2157 2158 2159 2160 2161 2162
    if (STRNEQ_NULLABLE(virDomainNetGetActualDirectDev(olddev),
                        virDomainNetGetActualDirectDev(newdev)) ||
        virDomainNetGetActualDirectMode(olddev) != virDomainNetGetActualDirectMode(olddev) ||
        !virNetDevVPortProfileEqual(virDomainNetGetActualVirtPortProfile(olddev),
                                    virDomainNetGetActualVirtPortProfile(newdev)) ||
        !virNetDevVlanEqual(virDomainNetGetActualVlan(olddev),
                            virDomainNetGetActualVlan(newdev))) {
        needReconnect = true;
2163 2164
    }

2165 2166 2167
    if (olddev->linkstate != newdev->linkstate)
        needLinkStateChange = true;

2168 2169 2170 2171
    if (!virNetDevBandwidthEqual(virDomainNetGetActualBandwidth(olddev),
                                 virDomainNetGetActualBandwidth(newdev)))
        needBandwidthSet = true;

2172 2173 2174
    /* FINALLY - actually perform the required actions */

    if (needReconnect) {
2175
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
2176 2177 2178
                       _("unable to change config on '%s' network type"),
                       virDomainNetTypeToString(newdev->type));
        goto cleanup;
2179 2180
    }

2181 2182 2183 2184 2185 2186 2187 2188 2189 2190 2191 2192
    if (needBandwidthSet) {
        if (virNetDevBandwidthSet(newdev->ifname,
                                  virDomainNetGetActualBandwidth(newdev),
                                  false) < 0) {
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("cannot set bandwidth limits on %s"),
                           newdev->ifname);
            goto cleanup;
        }
        needReplaceDevDef = true;
    }

2193 2194 2195 2196 2197
    if (needBridgeChange) {
        if (qemuDomainChangeNetBridge(dom->conn, vm, olddev, newdev) < 0)
            goto cleanup;
        /* we successfully switched to the new bridge, and we've
         * determined that the rest of newdev is equivalent to olddev,
2198 2199 2200 2201 2202 2203 2204 2205 2206 2207
         * so move newdev into place */
        needReplaceDevDef = true;
    }

    if (needFilterChange) {
        if (qemuDomainChangeNetFilter(dom->conn, vm, olddev, newdev) < 0)
            goto cleanup;
        /* we successfully switched to the new filter, and we've
         * determined that the rest of newdev is equivalent to olddev,
         * so move newdev into place */
2208
        needReplaceDevDef = true;
2209 2210
    }

2211 2212 2213
    if (needLinkStateChange &&
        qemuDomainChangeNetLinkState(driver, vm, olddev, newdev->linkstate) < 0) {
        goto cleanup;
2214 2215
    }

2216 2217 2218 2219
    if (needReplaceDevDef) {
        /* the changes above warrant replacing olddev with newdev in
         * the domain's nets list.
         */
2220 2221 2222

        /* this function doesn't work with HOSTDEV networks yet, thus
         * no need to change the pointer in the hostdev structure */
2223
        networkReleaseActualDevice(vm->def, olddev);
2224 2225 2226 2227 2228 2229 2230 2231
        virDomainNetDefFree(olddev);
        /* move newdev into the nets list, and NULL it out from the
         * virDomainDeviceDef that we were given so that the caller
         * won't delete it on return.
         */
        *devslot = newdev;
        newdev = dev->data.net = NULL;
        dev->type = VIR_DOMAIN_DEVICE_NONE;
2232 2233
    }

2234
    ret = 0;
2235
 cleanup:
2236 2237 2238 2239 2240 2241 2242 2243 2244 2245 2246 2247 2248 2249 2250 2251 2252 2253 2254
    /* When we get here, we will be in one of these two states:
     *
     * 1) newdev has been moved into the domain's list of nets and
     *    newdev set to NULL, and dev->data.net will be NULL (and
     *    dev->type is NONE). olddev will have been completely
     *    released and freed. (aka success) In this case no extra
     *    cleanup is needed.
     *
     * 2) newdev has *not* been moved into the domain's list of nets,
     *    and dev->data.net == newdev (and dev->type == NET). In this *
     *    case, we need to at least release the "actual device" from *
     *    newdev (the caller will free dev->data.net a.k.a. newdev, and
     *    the original olddev is still in used)
     *
     * Note that case (2) isn't necessarily a failure. It may just be
     * that the changes were minor enough that we didn't need to
     * replace the entire device object.
     */
    if (newdev)
2255
        networkReleaseActualDevice(vm->def, newdev);
2256

2257 2258 2259 2260
    return ret;
}


2261 2262 2263 2264

static virDomainGraphicsDefPtr qemuDomainFindGraphics(virDomainObjPtr vm,
                                                      virDomainGraphicsDefPtr dev)
{
2265
    size_t i;
2266

2267
    for (i = 0; i < vm->def->ngraphics; i++) {
2268 2269 2270 2271 2272 2273 2274 2275 2276
        if (vm->def->graphics[i]->type == dev->type)
            return vm->def->graphics[i];
    }

    return NULL;
}


int
2277
qemuDomainChangeGraphics(virQEMUDriverPtr driver,
2278 2279 2280 2281 2282
                         virDomainObjPtr vm,
                         virDomainGraphicsDefPtr dev)
{
    virDomainGraphicsDefPtr olddev = qemuDomainFindGraphics(vm, dev);
    int ret = -1;
2283
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
2284
    size_t i;
2285 2286

    if (!olddev) {
2287 2288
        virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                       _("cannot find existing graphics device to modify"));
2289
        goto cleanup;
2290 2291
    }

2292 2293 2294 2295 2296 2297 2298
    if (dev->nListens != olddev->nListens) {
        virReportError(VIR_ERR_INVALID_ARG, "%s",
                       _("cannot change the number of listen addresses"));
        goto cleanup;
    }

    for (i = 0; i < dev->nListens; i++) {
J
Jim Fehlig 已提交
2299
        virDomainGraphicsListenDefPtr newlisten = &dev->listens[i];
2300 2301
        virDomainGraphicsListenDefPtr oldlisten = &olddev->listens[i];

J
Jim Fehlig 已提交
2302
        if (newlisten->type != oldlisten->type) {
2303 2304 2305 2306 2307
            virReportError(VIR_ERR_INVALID_ARG, "%s",
                           _("cannot change the type of listen address"));
            goto cleanup;
        }

2308
        switch ((virDomainGraphicsListenType) newlisten->type) {
2309
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_ADDRESS:
J
Jim Fehlig 已提交
2310
            if (STRNEQ_NULLABLE(newlisten->address, oldlisten->address)) {
2311 2312 2313 2314 2315 2316 2317 2318 2319
                virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                               dev->type == VIR_DOMAIN_GRAPHICS_TYPE_VNC ?
                               _("cannot change listen address setting on vnc graphics") :
                               _("cannot change listen address setting on spice graphics"));
                goto cleanup;
            }
            break;

        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NETWORK:
J
Jim Fehlig 已提交
2320
            if (STRNEQ_NULLABLE(newlisten->network, oldlisten->network)) {
2321 2322 2323 2324 2325 2326 2327 2328 2329 2330 2331 2332 2333 2334
                virReportError(VIR_ERR_INVALID_ARG, "%s",
                               dev->type == VIR_DOMAIN_GRAPHICS_TYPE_VNC ?
                           _("cannot change listen network setting on vnc graphics") :
                           _("cannot change listen network setting on spice graphics"));
                goto cleanup;
            }
            break;

        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_NONE:
        case VIR_DOMAIN_GRAPHICS_LISTEN_TYPE_LAST:
            /* nada */
            break;
        }
    }
2335

2336 2337 2338
    switch (dev->type) {
    case VIR_DOMAIN_GRAPHICS_TYPE_VNC:
        if ((olddev->data.vnc.autoport != dev->data.vnc.autoport) ||
E
Eric Blake 已提交
2339 2340
            (!dev->data.vnc.autoport &&
             (olddev->data.vnc.port != dev->data.vnc.port))) {
2341 2342
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("cannot change port settings on vnc graphics"));
2343
            goto cleanup;
2344 2345
        }
        if (STRNEQ_NULLABLE(olddev->data.vnc.keymap, dev->data.vnc.keymap)) {
2346 2347
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("cannot change keymap setting on vnc graphics"));
2348
            goto cleanup;
2349 2350
        }

2351 2352 2353
        /* If a password lifetime was, or is set, or action if connected has
         * changed, then we must always run, even if new password matches
         * old password */
2354 2355
        if (olddev->data.vnc.auth.expires ||
            dev->data.vnc.auth.expires ||
2356
            olddev->data.vnc.auth.connected != dev->data.vnc.auth.connected ||
E
Eric Blake 已提交
2357 2358 2359
            STRNEQ_NULLABLE(olddev->data.vnc.auth.passwd,
                            dev->data.vnc.auth.passwd)) {
            VIR_DEBUG("Updating password on VNC server %p %p",
2360
                      dev->data.vnc.auth.passwd, cfg->vncPassword);
E
Eric Blake 已提交
2361 2362 2363
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_VNC,
                                                    &dev->data.vnc.auth,
2364
                                                    cfg->vncPassword);
2365
            if (ret < 0)
2366
                goto cleanup;
2367 2368 2369 2370 2371

            /* Steal the new dev's  char * reference */
            VIR_FREE(olddev->data.vnc.auth.passwd);
            olddev->data.vnc.auth.passwd = dev->data.vnc.auth.passwd;
            dev->data.vnc.auth.passwd = NULL;
2372 2373
            olddev->data.vnc.auth.validTo = dev->data.vnc.auth.validTo;
            olddev->data.vnc.auth.expires = dev->data.vnc.auth.expires;
2374
            olddev->data.vnc.auth.connected = dev->data.vnc.auth.connected;
2375 2376 2377 2378 2379
        } else {
            ret = 0;
        }
        break;

2380 2381
    case VIR_DOMAIN_GRAPHICS_TYPE_SPICE:
        if ((olddev->data.spice.autoport != dev->data.spice.autoport) ||
E
Eric Blake 已提交
2382 2383 2384 2385
            (!dev->data.spice.autoport &&
             (olddev->data.spice.port != dev->data.spice.port)) ||
            (!dev->data.spice.autoport &&
             (olddev->data.spice.tlsPort != dev->data.spice.tlsPort))) {
2386 2387
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("cannot change port settings on spice graphics"));
2388
            goto cleanup;
2389
        }
E
Eric Blake 已提交
2390 2391
        if (STRNEQ_NULLABLE(olddev->data.spice.keymap,
                            dev->data.spice.keymap)) {
2392
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
2393
                            _("cannot change keymap setting on spice graphics"));
2394
            goto cleanup;
2395 2396
        }

2397 2398 2399 2400 2401
        /* We must reset the password if it has changed but also if:
         * - password lifetime is or was set
         * - the requested action has changed
         * - the action is "disconnect"
         */
2402 2403
        if (olddev->data.spice.auth.expires ||
            dev->data.spice.auth.expires ||
2404
            olddev->data.spice.auth.connected != dev->data.spice.auth.connected ||
2405 2406
            dev->data.spice.auth.connected ==
            VIR_DOMAIN_GRAPHICS_AUTH_CONNECTED_DISCONNECT ||
E
Eric Blake 已提交
2407 2408 2409
            STRNEQ_NULLABLE(olddev->data.spice.auth.passwd,
                            dev->data.spice.auth.passwd)) {
            VIR_DEBUG("Updating password on SPICE server %p %p",
2410
                      dev->data.spice.auth.passwd, cfg->spicePassword);
E
Eric Blake 已提交
2411 2412 2413
            ret = qemuDomainChangeGraphicsPasswords(driver, vm,
                                                    VIR_DOMAIN_GRAPHICS_TYPE_SPICE,
                                                    &dev->data.spice.auth,
2414
                                                    cfg->spicePassword);
E
Eric Blake 已提交
2415

2416
            if (ret < 0)
2417
                goto cleanup;
2418

E
Eric Blake 已提交
2419
            /* Steal the new dev's char * reference */
2420 2421 2422 2423 2424
            VIR_FREE(olddev->data.spice.auth.passwd);
            olddev->data.spice.auth.passwd = dev->data.spice.auth.passwd;
            dev->data.spice.auth.passwd = NULL;
            olddev->data.spice.auth.validTo = dev->data.spice.auth.validTo;
            olddev->data.spice.auth.expires = dev->data.spice.auth.expires;
2425
            olddev->data.spice.auth.connected = dev->data.spice.auth.connected;
2426
        } else {
2427
            VIR_DEBUG("Not updating since password didn't change");
2428 2429
            ret = 0;
        }
E
Eric Blake 已提交
2430
        break;
2431

2432
    default:
2433 2434 2435
        virReportError(VIR_ERR_INTERNAL_ERROR,
                       _("unable to change config on '%s' graphics type"),
                       virDomainGraphicsTypeToString(dev->type));
2436 2437 2438
        break;
    }

2439
 cleanup:
2440
    virObjectUnref(cfg);
2441 2442 2443 2444
    return ret;
}


2445
static int qemuComparePCIDevice(virDomainDefPtr def ATTRIBUTE_UNUSED,
2446
                                virDomainDeviceDefPtr device ATTRIBUTE_UNUSED,
2447
                                virDomainDeviceInfoPtr info1,
2448 2449
                                void *opaque)
{
2450
    virDomainDeviceInfoPtr info2 = opaque;
2451

2452 2453
    if (info1->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI ||
        info2->type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)
2454 2455
        return 0;

2456 2457 2458
    if (info1->addr.pci.domain == info2->addr.pci.domain &&
        info1->addr.pci.bus == info2->addr.pci.bus &&
        info1->addr.pci.slot == info2->addr.pci.slot &&
2459
        info1->addr.pci.function != info2->addr.pci.function)
2460 2461 2462 2463 2464 2465 2466 2467 2468 2469 2470 2471
        return -1;
    return 0;
}

static bool qemuIsMultiFunctionDevice(virDomainDefPtr def,
                                      virDomainDeviceInfoPtr dev)
{
    if (virDomainDeviceInfoIterate(def, qemuComparePCIDevice, dev) < 0)
        return true;
    return false;
}

2472

2473
static int
2474 2475 2476 2477 2478
qemuDomainRemoveDiskDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainDiskDefPtr disk)
{
    virDomainDeviceDef dev;
2479
    virObjectEventPtr event;
2480
    size_t i;
2481
    const char *src = virDomainDiskGetSource(disk);
2482 2483
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drivestr;
2484 2485 2486 2487

    VIR_DEBUG("Removing disk %s from domain %p %s",
              disk->info.alias, vm, vm->def->name);

2488 2489 2490 2491 2492 2493 2494 2495 2496 2497 2498
    /* build the actual drive id string as the disk->info.alias doesn't
     * contain the QEMU_DRIVE_HOST_PREFIX that is passed to qemu */
    if (virAsprintf(&drivestr, "%s%s",
                    QEMU_DRIVE_HOST_PREFIX, disk->info.alias) < 0)
        return -1;

    qemuDomainObjEnterMonitor(driver, vm);
    qemuMonitorDriveDel(priv->mon, drivestr);
    qemuDomainObjExitMonitor(driver, vm);
    VIR_FREE(drivestr);

2499
    virDomainAuditDisk(vm, disk->src, NULL, "detach", true);
2500

2501 2502 2503 2504
    event = virDomainEventDeviceRemovedNewFromObj(vm, disk->info.alias);
    if (event)
        qemuDomainEventQueue(driver, event);

2505 2506 2507 2508 2509 2510 2511
    for (i = 0; i < vm->def->ndisks; i++) {
        if (vm->def->disks[i] == disk) {
            virDomainDiskRemove(vm->def, i);
            break;
        }
    }

2512
    qemuDomainReleaseDeviceAddress(vm, &disk->info, src);
2513

2514 2515
    if (virSecurityManagerRestoreDiskLabel(driver->securityManager,
                                           vm->def, disk) < 0)
2516
        VIR_WARN("Unable to restore security label on %s", src);
2517 2518

    if (qemuTeardownDiskCgroup(vm, disk) < 0)
2519
        VIR_WARN("Failed to tear down cgroup for disk path %s", src);
2520 2521

    if (virDomainLockDiskDetach(driver->lockManager, vm, disk) < 0)
2522
        VIR_WARN("Unable to release lock on %s", src);
2523 2524 2525 2526 2527 2528

    dev.type = VIR_DOMAIN_DEVICE_DISK;
    dev.data.disk = disk;
    ignore_value(qemuRemoveSharedDevice(driver, &dev, vm->def->name));

    virDomainDiskDefFree(disk);
2529
    return 0;
2530 2531 2532
}


2533
static int
2534
qemuDomainRemoveControllerDevice(virQEMUDriverPtr driver,
2535 2536 2537
                                 virDomainObjPtr vm,
                                 virDomainControllerDefPtr controller)
{
2538
    virObjectEventPtr event;
2539 2540 2541 2542 2543
    size_t i;

    VIR_DEBUG("Removing controller %s from domain %p %s",
              controller->info.alias, vm, vm->def->name);

2544 2545 2546 2547
    event = virDomainEventDeviceRemovedNewFromObj(vm, controller->info.alias);
    if (event)
        qemuDomainEventQueue(driver, event);

2548 2549 2550 2551 2552 2553 2554 2555 2556
    for (i = 0; i < vm->def->ncontrollers; i++) {
        if (vm->def->controllers[i] == controller) {
            virDomainControllerRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &controller->info, NULL);
    virDomainControllerDefFree(controller);
2557
    return 0;
2558 2559 2560
}


2561 2562 2563 2564 2565
static void
qemuDomainRemovePCIHostDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainHostdevDefPtr hostdev)
{
2566
    qemuDomainReAttachHostdevDevices(driver, vm->def->name, &hostdev, 1);
2567 2568 2569 2570 2571
    qemuDomainReleaseDeviceAddress(vm, hostdev->info, NULL);
}

static void
qemuDomainRemoveUSBHostDevice(virQEMUDriverPtr driver,
2572
                              virDomainObjPtr vm,
2573 2574
                              virDomainHostdevDefPtr hostdev)
{
2575
    qemuDomainReAttachHostUSBDevices(driver, vm->def->name, &hostdev, 1);
2576 2577 2578 2579 2580 2581 2582
}

static void
qemuDomainRemoveSCSIHostDevice(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr hostdev)
{
2583
    qemuDomainReAttachHostSCSIDevices(driver, vm->def->name, &hostdev, 1);
2584 2585
}

2586
static int
2587 2588 2589 2590
qemuDomainRemoveHostDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainHostdevDefPtr hostdev)
{
2591
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
2592
    virDomainNetDefPtr net = NULL;
2593
    virObjectEventPtr event;
2594 2595 2596 2597 2598
    size_t i;

    VIR_DEBUG("Removing host device %s from domain %p %s",
              hostdev->info->alias, vm, vm->def->name);

2599 2600 2601 2602
    event = virDomainEventDeviceRemovedNewFromObj(vm, hostdev->info->alias);
    if (event)
        qemuDomainEventQueue(driver, event);

2603 2604 2605 2606 2607 2608 2609 2610 2611 2612 2613 2614 2615 2616 2617 2618 2619 2620 2621 2622
    if (hostdev->parent.type == VIR_DOMAIN_DEVICE_NET) {
        net = hostdev->parent.data.net;

        for (i = 0; i < vm->def->nnets; i++) {
            if (vm->def->nets[i] == net) {
                virDomainNetRemove(vm->def, i);
                break;
            }
        }
    }

    for (i = 0; i < vm->def->nhostdevs; i++) {
        if (vm->def->hostdevs[i] == hostdev) {
            virDomainHostdevRemove(vm->def, i);
            break;
        }
    }

    virDomainAuditHostdev(vm, hostdev, "detach", true);

2623
    switch ((virDomainHostdevSubsysType) hostdev->source.subsys.type) {
2624 2625 2626 2627 2628 2629 2630 2631 2632 2633 2634 2635 2636 2637 2638 2639 2640 2641 2642 2643 2644 2645 2646 2647
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
        qemuDomainRemovePCIHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
        qemuDomainRemoveUSBHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
        qemuDomainRemoveSCSIHostDevice(driver, vm, hostdev);
        break;
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_LAST:
        break;
    }

    if (qemuTeardownHostdevCgroup(vm, hostdev) < 0)
        VIR_WARN("Failed to remove host device cgroup ACL");

    if (virSecurityManagerRestoreHostdevLabel(driver->securityManager,
                                              vm->def, hostdev, NULL) < 0) {
        VIR_WARN("Failed to restore host device labelling");
    }

    virDomainHostdevDefFree(hostdev);

    if (net) {
2648
        networkReleaseActualDevice(vm->def, net);
2649 2650
        virDomainNetDefFree(net);
    }
2651
    virObjectUnref(cfg);
2652
    return 0;
2653 2654 2655
}


2656
static int
2657 2658 2659 2660 2661
qemuDomainRemoveNetDevice(virQEMUDriverPtr driver,
                          virDomainObjPtr vm,
                          virDomainNetDefPtr net)
{
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
2662
    qemuDomainObjPrivatePtr priv = vm->privateData;
2663
    virNetDevVPortProfilePtr vport;
2664
    virObjectEventPtr event;
2665
    char *hostnet_name = NULL;
2666
    size_t i;
2667
    int ret = -1;
2668

2669 2670
    if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
        /* this function handles all hostdev and netdev cleanup */
2671 2672
        ret = qemuDomainRemoveHostDevice(driver, vm,
                                         virDomainNetGetActualHostdev(net));
2673
        goto cleanup;
2674 2675
    }

2676 2677 2678
    VIR_DEBUG("Removing network interface %s from domain %p %s",
              net->info.alias, vm, vm->def->name);

2679 2680 2681 2682 2683 2684 2685 2686 2687 2688 2689 2690 2691 2692 2693 2694 2695 2696 2697 2698 2699 2700 2701 2702 2703 2704
    if (virAsprintf(&hostnet_name, "host%s", net->info.alias) < 0)
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_NETDEV) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
        if (qemuMonitorRemoveNetdev(priv->mon, hostnet_name) < 0) {
            qemuDomainObjExitMonitor(driver, vm);
            virDomainAuditNet(vm, net, NULL, "detach", false);
            goto cleanup;
        }
    } else {
        int vlan;
        if ((vlan = qemuDomainNetVLAN(net)) < 0 ||
            qemuMonitorRemoveHostNetwork(priv->mon, vlan, hostnet_name) < 0) {
            if (vlan < 0) {
                virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                               _("unable to determine original VLAN"));
            }
            qemuDomainObjExitMonitor(driver, vm);
            virDomainAuditNet(vm, net, NULL, "detach", false);
            goto cleanup;
        }
    }
    qemuDomainObjExitMonitor(driver, vm);

2705 2706 2707 2708 2709 2710 2711 2712 2713 2714 2715 2716 2717 2718 2719 2720 2721 2722 2723 2724 2725 2726 2727 2728 2729 2730 2731
    virDomainAuditNet(vm, net, NULL, "detach", true);

    event = virDomainEventDeviceRemovedNewFromObj(vm, net->info.alias);
    if (event)
        qemuDomainEventQueue(driver, event);

    for (i = 0; i < vm->def->nnets; i++) {
        if (vm->def->nets[i] == net) {
            virDomainNetRemove(vm->def, i);
            break;
        }
    }

    qemuDomainReleaseDeviceAddress(vm, &net->info, NULL);
    virDomainConfNWFilterTeardown(net);

    if (virDomainNetGetActualType(net) == VIR_DOMAIN_NET_TYPE_DIRECT) {
        ignore_value(virNetDevMacVLanDeleteWithVPortProfile(
                         net->ifname, &net->mac,
                         virDomainNetGetActualDirectDev(net),
                         virDomainNetGetActualDirectMode(net),
                         virDomainNetGetActualVirtPortProfile(net),
                         cfg->stateDir));
        VIR_FREE(net->ifname);
    }

    if (cfg->macFilter && (net->ifname != NULL)) {
2732 2733 2734
        ignore_value(ebtablesRemoveForwardAllowIn(driver->ebtables,
                                                  net->ifname,
                                                  &net->mac));
2735 2736 2737 2738 2739 2740 2741 2742
    }

    vport = virDomainNetGetActualVirtPortProfile(net);
    if (vport && vport->virtPortType == VIR_NETDEV_VPORT_PROFILE_OPENVSWITCH)
        ignore_value(virNetDevOpenvswitchRemovePort(
                        virDomainNetGetActualBridgeName(net),
                        net->ifname));

2743
    networkReleaseActualDevice(vm->def, net);
2744
    virDomainNetDefFree(net);
2745
    ret = 0;
2746 2747

 cleanup:
2748
    virObjectUnref(cfg);
2749 2750
    VIR_FREE(hostnet_name);
    return ret;
2751 2752 2753
}


2754
static int
2755
qemuDomainRemoveChrDevice(virQEMUDriverPtr driver,
2756 2757 2758
                          virDomainObjPtr vm,
                          virDomainChrDefPtr chr)
{
2759
    virObjectEventPtr event;
2760 2761 2762
    char *charAlias = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    int ret = -1;
2763
    int rc;
2764

2765 2766 2767
    VIR_DEBUG("Removing character device %s from domain %p %s",
              chr->info.alias, vm, vm->def->name);

2768 2769 2770 2771
    if (virAsprintf(&charAlias, "char%s", chr->info.alias) < 0)
        goto cleanup;

    qemuDomainObjEnterMonitor(driver, vm);
2772
    rc = qemuMonitorDetachCharDev(priv->mon, charAlias);
2773 2774
    qemuDomainObjExitMonitor(driver, vm);

2775 2776 2777 2778 2779
    virDomainAuditChardev(vm, chr, NULL, "detach", rc == 0);

    if (rc < 0)
        goto cleanup;

2780 2781 2782 2783
    event = virDomainEventDeviceRemovedNewFromObj(vm, chr->info.alias);
    if (event)
        qemuDomainEventQueue(driver, event);

2784 2785
    qemuDomainChrRemove(vm->def, chr);
    virDomainChrDefFree(chr);
2786 2787 2788 2789 2790
    ret = 0;

 cleanup:
    VIR_FREE(charAlias);
    return ret;
2791 2792 2793
}


2794 2795 2796 2797 2798 2799 2800 2801 2802 2803 2804 2805 2806 2807 2808 2809 2810 2811 2812 2813 2814 2815 2816 2817 2818 2819 2820 2821 2822 2823 2824 2825 2826 2827 2828 2829 2830 2831 2832 2833 2834 2835 2836 2837 2838 2839 2840 2841 2842 2843 2844 2845 2846 2847 2848 2849 2850 2851 2852 2853 2854 2855 2856 2857 2858 2859 2860 2861
void
qemuDomainRemoveDevice(virQEMUDriverPtr driver,
                       virDomainObjPtr vm,
                       virDomainDeviceDefPtr dev)
{
    switch ((virDomainDeviceType) dev->type) {
    case VIR_DOMAIN_DEVICE_DISK:
        qemuDomainRemoveDiskDevice(driver, vm, dev->data.disk);
        break;
    case VIR_DOMAIN_DEVICE_CONTROLLER:
        qemuDomainRemoveControllerDevice(driver, vm, dev->data.controller);
        break;
    case VIR_DOMAIN_DEVICE_NET:
        qemuDomainRemoveNetDevice(driver, vm, dev->data.net);
        break;
    case VIR_DOMAIN_DEVICE_HOSTDEV:
        qemuDomainRemoveHostDevice(driver, vm, dev->data.hostdev);
        break;

    case VIR_DOMAIN_DEVICE_CHR:
        qemuDomainRemoveChrDevice(driver, vm, dev->data.chr);
        break;

    case VIR_DOMAIN_DEVICE_NONE:
    case VIR_DOMAIN_DEVICE_LEASE:
    case VIR_DOMAIN_DEVICE_FS:
    case VIR_DOMAIN_DEVICE_INPUT:
    case VIR_DOMAIN_DEVICE_SOUND:
    case VIR_DOMAIN_DEVICE_VIDEO:
    case VIR_DOMAIN_DEVICE_WATCHDOG:
    case VIR_DOMAIN_DEVICE_GRAPHICS:
    case VIR_DOMAIN_DEVICE_HUB:
    case VIR_DOMAIN_DEVICE_REDIRDEV:
    case VIR_DOMAIN_DEVICE_SMARTCARD:
    case VIR_DOMAIN_DEVICE_MEMBALLOON:
    case VIR_DOMAIN_DEVICE_NVRAM:
    case VIR_DOMAIN_DEVICE_RNG:
    case VIR_DOMAIN_DEVICE_LAST:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("don't know how to remove a %s device"),
                       virDomainDeviceTypeToString(dev->type));
        break;
    }
}


static void
qemuDomainMarkDeviceForRemoval(virDomainObjPtr vm,
                               virDomainDeviceInfoPtr info)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
        priv->unpluggingDevice = info->alias;
    else
        priv->unpluggingDevice = NULL;
}

static void
qemuDomainResetDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    priv->unpluggingDevice = NULL;
}

/* Returns:
 *  -1 on error
 *   0 when DEVICE_DELETED event is unsupported
2862 2863 2864
 *   1 when DEVICE_DELETED arrived before the timeout and the caller is
 *     responsible for finishing the removal
 *   2 device removal did not finish in qemuDomainRemoveDeviceWaitTime
2865 2866 2867 2868 2869 2870 2871 2872 2873 2874 2875 2876
 */
static int
qemuDomainWaitForDeviceRemoval(virDomainObjPtr vm)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    unsigned long long until;

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE_DEL_EVENT))
        return 0;

    if (virTimeMillisNow(&until) < 0)
        return -1;
2877
    until += qemuDomainRemoveDeviceWaitTime;
2878 2879 2880 2881 2882 2883 2884 2885 2886 2887 2888 2889 2890 2891 2892 2893 2894

    while (priv->unpluggingDevice) {
        if (virCondWaitUntil(&priv->unplugFinished,
                             &vm->parent.lock, until) < 0) {
            if (errno == ETIMEDOUT) {
                return 2;
            } else {
                virReportSystemError(errno, "%s",
                                     _("Unable to wait on unplug condition"));
                return -1;
            }
        }
    }

    return 1;
}

2895 2896 2897 2898 2899 2900 2901
/* Returns:
 *  true    there was a thread waiting for devAlias to be removed and this
 *          thread will take care of finishing the removal
 *  false   the thread that started the removal is already gone and delegate
 *          finishing the removal to a new thread
 */
bool
2902 2903 2904 2905 2906 2907 2908 2909
qemuDomainSignalDeviceRemoval(virDomainObjPtr vm,
                              const char *devAlias)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;

    if (STREQ_NULLABLE(priv->unpluggingDevice, devAlias)) {
        qemuDomainResetDeviceRemoval(vm);
        virCondSignal(&priv->unplugFinished);
2910
        return true;
2911
    }
2912
    return false;
2913 2914 2915
}


2916 2917 2918 2919
static int
qemuDomainDetachVirtioDiskDevice(virQEMUDriverPtr driver,
                                 virDomainObjPtr vm,
                                 virDomainDiskDefPtr detach)
2920
{
2921
    int ret = -1;
2922
    qemuDomainObjPrivatePtr priv = vm->privateData;
2923
    int rc;
2924

2925
    if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
2926 2927
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
2928
                       detach->dst);
2929 2930 2931
        goto cleanup;
    }

2932 2933 2934 2935 2936 2937 2938 2939 2940 2941 2942 2943 2944 2945 2946
    if (STREQLEN(vm->def->os.machine, "s390-ccw", 8) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                           _("device cannot be detached without a valid PCI address"));
            goto cleanup;
        }
2947 2948
    }

2949 2950
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

2951
    qemuDomainObjEnterMonitor(driver, vm);
2952
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
2953
        if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
2954
            qemuDomainObjExitMonitor(driver, vm);
2955
            virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
2956 2957 2958 2959 2960
            goto cleanup;
        }
    } else {
        if (qemuMonitorRemovePCIDevice(priv->mon,
                                       &detach->info.addr.pci) < 0) {
2961
            qemuDomainObjExitMonitor(driver, vm);
2962
            virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
2963 2964 2965
            goto cleanup;
        }
    }
2966
    qemuDomainObjExitMonitor(driver, vm);
2967

2968 2969
    rc = qemuDomainWaitForDeviceRemoval(vm);
    if (rc == 0 || rc == 1)
2970 2971 2972
        ret = qemuDomainRemoveDiskDevice(driver, vm, detach);
    else
        ret = 0;
2973

2974
 cleanup:
2975
    qemuDomainResetDeviceRemoval(vm);
2976 2977 2978
    return ret;
}

2979 2980 2981 2982
static int
qemuDomainDetachDiskDevice(virQEMUDriverPtr driver,
                           virDomainObjPtr vm,
                           virDomainDiskDefPtr detach)
2983
{
2984
    int ret = -1;
2985
    qemuDomainObjPrivatePtr priv = vm->privateData;
2986
    int rc;
2987

2988
    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
2989 2990
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("Underlying qemu does not support %s disk removal"),
2991
                       virDomainDiskBusTypeToString(detach->bus));
2992 2993 2994
        goto cleanup;
    }

E
Eric Blake 已提交
2995 2996
    if (detach->mirror) {
        virReportError(VIR_ERR_BLOCK_COPY_ACTIVE,
2997
                       _("disk '%s' is in an active block job"),
E
Eric Blake 已提交
2998 2999 3000 3001
                       detach->dst);
        goto cleanup;
    }

3002 3003
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3004
    qemuDomainObjEnterMonitor(driver, vm);
3005
    if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
3006
        qemuDomainObjExitMonitor(driver, vm);
3007
        virDomainAuditDisk(vm, detach->src, NULL, "detach", false);
3008 3009
        goto cleanup;
    }
3010
    qemuDomainObjExitMonitor(driver, vm);
3011

3012 3013
    rc = qemuDomainWaitForDeviceRemoval(vm);
    if (rc == 0 || rc == 1)
3014 3015 3016
        ret = qemuDomainRemoveDiskDevice(driver, vm, detach);
    else
        ret = 0;
3017

3018
 cleanup:
3019
    qemuDomainResetDeviceRemoval(vm);
3020 3021 3022
    return ret;
}

3023 3024 3025 3026 3027 3028 3029 3030 3031 3032 3033 3034 3035 3036 3037 3038 3039 3040 3041 3042 3043 3044 3045 3046 3047 3048 3049 3050 3051 3052 3053 3054 3055 3056 3057 3058 3059 3060 3061 3062 3063 3064 3065 3066 3067 3068 3069 3070 3071 3072 3073 3074 3075
static int
qemuFindDisk(virDomainDefPtr def, const char *dst)
{
    size_t i;

    for (i = 0; i < def->ndisks; i++) {
        if (STREQ(def->disks[i]->dst, dst)) {
            return i;
        }
    }

    return -1;
}

int
qemuDomainDetachDeviceDiskLive(virQEMUDriverPtr driver,
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainDiskDefPtr disk;
    int ret = -1;
    int idx;

    if ((idx = qemuFindDisk(vm->def, dev->data.disk->dst)) < 0) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("disk %s not found"), dev->data.disk->dst);
        return -1;
    }
    disk = vm->def->disks[idx];

    switch (disk->device) {
    case VIR_DOMAIN_DISK_DEVICE_DISK:
    case VIR_DOMAIN_DISK_DEVICE_LUN:
        if (disk->bus == VIR_DOMAIN_DISK_BUS_VIRTIO)
            ret = qemuDomainDetachVirtioDiskDevice(driver, vm, disk);
        else if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI ||
                 disk->bus == VIR_DOMAIN_DISK_BUS_USB)
            ret = qemuDomainDetachDiskDevice(driver, vm, disk);
        else
            virReportError(VIR_ERR_OPERATION_UNSUPPORTED, "%s",
                           _("This type of disk cannot be hot unplugged"));
        break;
    default:
        virReportError(VIR_ERR_OPERATION_UNSUPPORTED,
                       _("disk device type '%s' cannot be detached"),
                       virDomainDiskDeviceTypeToString(disk->device));
        break;
    }

    return ret;
}


3076 3077 3078
static bool qemuDomainDiskControllerIsBusy(virDomainObjPtr vm,
                                           virDomainControllerDefPtr detach)
{
3079
    size_t i;
3080 3081 3082 3083 3084 3085 3086 3087 3088 3089 3090 3091 3092 3093 3094 3095 3096 3097 3098 3099 3100 3101 3102 3103 3104 3105 3106 3107 3108 3109 3110 3111 3112 3113 3114 3115 3116 3117 3118 3119 3120 3121 3122 3123 3124 3125
    virDomainDiskDefPtr disk;

    for (i = 0; i < vm->def->ndisks; i++) {
        disk = vm->def->disks[i];
        if (disk->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_DRIVE)
            /* the disk does not use disk controller */
            continue;

        /* check whether the disk uses this type controller */
        if (disk->bus == VIR_DOMAIN_DISK_BUS_IDE &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_IDE)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_FDC &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_FDC)
            continue;
        if (disk->bus == VIR_DOMAIN_DISK_BUS_SCSI &&
            detach->type != VIR_DOMAIN_CONTROLLER_TYPE_SCSI)
            continue;

        if (disk->info.addr.drive.controller == detach->idx)
            return true;
    }

    return false;
}

static bool qemuDomainControllerIsBusy(virDomainObjPtr vm,
                                       virDomainControllerDefPtr detach)
{
    switch (detach->type) {
    case VIR_DOMAIN_CONTROLLER_TYPE_IDE:
    case VIR_DOMAIN_CONTROLLER_TYPE_FDC:
    case VIR_DOMAIN_CONTROLLER_TYPE_SCSI:
        return qemuDomainDiskControllerIsBusy(vm, detach);

    case VIR_DOMAIN_CONTROLLER_TYPE_SATA:
    case VIR_DOMAIN_CONTROLLER_TYPE_VIRTIO_SERIAL:
    case VIR_DOMAIN_CONTROLLER_TYPE_CCID:
    default:
        /* libvirt does not support sata controller, and does not support to
         * detach virtio and smart card controller.
         */
        return true;
    }
}

3126 3127 3128
int qemuDomainDetachControllerDevice(virQEMUDriverPtr driver,
                                     virDomainObjPtr vm,
                                     virDomainDeviceDefPtr dev)
3129
{
3130
    int idx, ret = -1;
3131 3132
    virDomainControllerDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
3133
    int rc;
3134

3135 3136 3137
    if ((idx = virDomainControllerFind(vm->def,
                                       dev->data.controller->type,
                                       dev->data.controller->idx)) < 0) {
3138
        virReportError(VIR_ERR_OPERATION_FAILED,
3139
                       _("controller %s:%d not found"),
3140 3141
                       virDomainControllerTypeToString(dev->data.controller->type),
                       dev->data.controller->idx);
3142 3143 3144
        goto cleanup;
    }

3145 3146
    detach = vm->def->controllers[idx];

3147 3148 3149 3150 3151 3152
    if (detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI &&
        detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW &&
        detach->info.type != VIR_DOMAIN_DEVICE_ADDRESS_TYPE_VIRTIO_S390) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("device with '%s' address cannot be detached"),
                       virDomainDeviceAddressTypeToString(detach->info.type));
3153 3154 3155
        goto cleanup;
    }

3156 3157 3158 3159 3160 3161 3162 3163 3164
    if (!virDomainDeviceAddressIsValid(&detach->info, detach->info.type)) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("device with invalid '%s' address cannot be detached"),
                       virDomainDeviceAddressTypeToString(detach->info.type));
        goto cleanup;
    }

    if (detach->info.type == VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI &&
        qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
3165 3166 3167
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %s"),
                       dev->data.disk->dst);
3168 3169 3170
        goto cleanup;
    }

3171
    if (qemuDomainControllerIsBusy(vm, detach)) {
3172 3173
        virReportError(VIR_ERR_OPERATION_FAILED, "%s",
                       _("device cannot be detached: device is busy"));
3174 3175 3176
        goto cleanup;
    }

3177
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
3178 3179 3180 3181
        if (qemuAssignDeviceControllerAlias(detach) < 0)
            goto cleanup;
    }

3182 3183
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3184
    qemuDomainObjEnterMonitor(driver, vm);
3185
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
3186
        if (qemuMonitorDelDevice(priv->mon, detach->info.alias)) {
3187
            qemuDomainObjExitMonitor(driver, vm);
3188 3189 3190 3191 3192
            goto cleanup;
        }
    } else {
        if (qemuMonitorRemovePCIDevice(priv->mon,
                                       &detach->info.addr.pci) < 0) {
3193
            qemuDomainObjExitMonitor(driver, vm);
3194 3195 3196
            goto cleanup;
        }
    }
3197
    qemuDomainObjExitMonitor(driver, vm);
3198

3199 3200
    rc = qemuDomainWaitForDeviceRemoval(vm);
    if (rc == 0 || rc == 1)
3201 3202 3203
        ret = qemuDomainRemoveControllerDevice(driver, vm, detach);
    else
        ret = 0;
3204

3205
 cleanup:
3206
    qemuDomainResetDeviceRemoval(vm);
3207 3208 3209
    return ret;
}

3210
static int
3211
qemuDomainDetachHostPCIDevice(virQEMUDriverPtr driver,
3212
                              virDomainObjPtr vm,
3213
                              virDomainHostdevDefPtr detach)
3214 3215
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3216
    virDomainHostdevSubsysPCIPtr pcisrc = &detach->source.subsys.u.pci;
3217
    int ret;
3218

3219
    if (qemuIsMultiFunctionDevice(vm->def, detach->info)) {
3220 3221
        virReportError(VIR_ERR_OPERATION_FAILED,
                       _("cannot hot unplug multifunction PCI device: %.4x:%.2x:%.2x.%.1x"),
3222 3223
                       pcisrc->addr.domain, pcisrc->addr.bus,
                       pcisrc->addr.slot, pcisrc->addr.function);
3224
        return -1;
3225 3226
    }

3227
    if (!virDomainDeviceAddressIsValid(detach->info,
3228
                                       VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
3229 3230
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a PCI address"));
3231
        return -1;
3232 3233
    }

3234 3235
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

3236
    qemuDomainObjEnterMonitor(driver, vm);
3237
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
3238
        ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
3239
    } else {
3240
        ret = qemuMonitorRemovePCIDevice(priv->mon, &detach->info->addr.pci);
3241
    }
3242
    qemuDomainObjExitMonitor(driver, vm);
3243 3244 3245 3246

    return ret;
}

3247
static int
3248
qemuDomainDetachHostUSBDevice(virQEMUDriverPtr driver,
3249
                              virDomainObjPtr vm,
3250
                              virDomainHostdevDefPtr detach)
3251 3252
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
3253
    int ret;
3254

3255
    if (!detach->info->alias) {
3256 3257
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
3258 3259 3260
        return -1;
    }

3261
    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
3262 3263
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached with this QEMU version"));
3264 3265 3266
        return -1;
    }

3267 3268
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

3269
    qemuDomainObjEnterMonitor(driver, vm);
3270
    ret = qemuMonitorDelDevice(priv->mon, detach->info->alias);
3271
    qemuDomainObjExitMonitor(driver, vm);
3272 3273 3274 3275

    return ret;
}

3276
static int
3277 3278
qemuDomainDetachHostSCSIDevice(virConnectPtr conn,
                               virQEMUDriverPtr driver,
3279 3280 3281 3282 3283 3284 3285 3286 3287 3288 3289 3290 3291 3292 3293 3294 3295 3296 3297 3298
                               virDomainObjPtr vm,
                               virDomainHostdevDefPtr detach)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    char *drvstr = NULL;
    char *devstr = NULL;
    int ret = -1;

    if (!detach->info->alias) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached without a device alias"));
        return -1;
    }

    if (!virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
        virReportError(VIR_ERR_OPERATION_FAILED,
                       "%s", _("device cannot be detached with this QEMU version"));
        return -1;
    }

3299
    if (!(drvstr = qemuBuildSCSIHostdevDrvStr(conn, detach, priv->qemuCaps,
3300
                                              &buildCommandLineCallbacks)))
3301 3302 3303 3304
        goto cleanup;
    if (!(devstr = qemuBuildSCSIHostdevDevStr(vm->def, detach, priv->qemuCaps)))
        goto cleanup;

3305 3306
    qemuDomainMarkDeviceForRemoval(vm, detach->info);

3307 3308 3309 3310 3311 3312 3313 3314 3315 3316 3317 3318 3319 3320 3321 3322
    qemuDomainObjEnterMonitor(driver, vm);
    if ((ret = qemuMonitorDelDevice(priv->mon, detach->info->alias)) == 0) {
        if ((ret = qemuMonitorDriveDel(priv->mon, drvstr)) < 0) {
            virErrorPtr orig_err = virSaveLastError();
            if (qemuMonitorAddDevice(priv->mon, devstr) < 0)
                VIR_WARN("Unable to add device %s (%s) after failed "
                         "qemuMonitorDriveDel",
                         drvstr, devstr);
            if (orig_err) {
                virSetError(orig_err);
                virFreeError(orig_err);
            }
        }
    }
    qemuDomainObjExitMonitor(driver, vm);

3323
 cleanup:
3324 3325 3326 3327 3328 3329
    VIR_FREE(drvstr);
    VIR_FREE(devstr);
    return ret;
}

static int
3330 3331
qemuDomainDetachThisHostDevice(virConnectPtr conn,
                               virQEMUDriverPtr driver,
3332
                               virDomainObjPtr vm,
3333
                               virDomainHostdevDefPtr detach)
3334
{
3335
    int ret = -1;
3336

3337
    switch (detach->source.subsys.type) {
3338
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
3339
        ret = qemuDomainDetachHostPCIDevice(driver, vm, detach);
3340
        break;
3341
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
3342
        ret = qemuDomainDetachHostUSBDevice(driver, vm, detach);
3343
        break;
3344
    case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI:
3345
        ret = qemuDomainDetachHostSCSIDevice(conn, driver, vm, detach);
3346
        break;
3347
    default:
3348 3349 3350
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev subsys type '%s' not supported"),
                       virDomainHostdevSubsysTypeToString(detach->source.subsys.type));
3351 3352 3353
        return -1;
    }

3354
    if (ret < 0) {
3355
        virDomainAuditHostdev(vm, detach, "detach", false);
3356 3357 3358
    } else {
        int rc = qemuDomainWaitForDeviceRemoval(vm);
        if (rc == 0 || rc == 1)
3359
            ret = qemuDomainRemoveHostDevice(driver, vm, detach);
3360
    }
3361

3362 3363
    qemuDomainResetDeviceRemoval(vm);

3364 3365
    return ret;
}
3366

3367
/* search for a hostdev matching dev and detach it */
3368 3369
int qemuDomainDetachHostDevice(virConnectPtr conn,
                               virQEMUDriverPtr driver,
3370 3371 3372 3373 3374
                               virDomainObjPtr vm,
                               virDomainDeviceDefPtr dev)
{
    virDomainHostdevDefPtr hostdev = dev->data.hostdev;
    virDomainHostdevSubsysPtr subsys = &hostdev->source.subsys;
3375
    virDomainHostdevSubsysUSBPtr usbsrc = &subsys->u.usb;
3376
    virDomainHostdevSubsysPCIPtr pcisrc = &subsys->u.pci;
3377
    virDomainHostdevSubsysSCSIPtr scsisrc = &subsys->u.scsi;
3378 3379 3380 3381
    virDomainHostdevDefPtr detach = NULL;
    int idx;

    if (hostdev->mode != VIR_DOMAIN_HOSTDEV_MODE_SUBSYS) {
3382 3383 3384
        virReportError(VIR_ERR_CONFIG_UNSUPPORTED,
                       _("hostdev mode '%s' not supported"),
                       virDomainHostdevModeTypeToString(hostdev->mode));
3385 3386 3387 3388 3389 3390
        return -1;
    }

    idx = virDomainHostdevFind(vm->def, hostdev, &detach);

    if (idx < 0) {
3391
        switch (subsys->type) {
3392
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_PCI:
3393 3394
            virReportError(VIR_ERR_OPERATION_FAILED,
                           _("host pci device %.4x:%.2x:%.2x.%.1x not found"),
3395 3396
                           pcisrc->addr.domain, pcisrc->addr.bus,
                           pcisrc->addr.slot, pcisrc->addr.function);
3397 3398
            break;
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_USB:
3399
            if (usbsrc->bus && usbsrc->device) {
3400 3401
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device %03d.%03d not found"),
3402
                               usbsrc->bus, usbsrc->device);
3403
            } else {
3404 3405
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host usb device vendor=0x%.4x product=0x%.4x not found"),
3406
                               usbsrc->vendor, usbsrc->product);
3407 3408
            }
            break;
3409
        case VIR_DOMAIN_HOSTDEV_SUBSYS_TYPE_SCSI: {
3410 3411 3412 3413 3414 3415 3416 3417 3418 3419 3420 3421 3422 3423
            if (scsisrc->protocol ==
                VIR_DOMAIN_HOSTDEV_SCSI_PROTOCOL_TYPE_ISCSI) {
                virDomainHostdevSubsysSCSIiSCSIPtr iscsisrc = &scsisrc->u.iscsi;
                virReportError(VIR_ERR_OPERATION_FAILED,
                               _("host scsi iSCSI path %s not found"),
                               iscsisrc->path);
            } else {
                 virDomainHostdevSubsysSCSIHostPtr scsihostsrc =
                     &scsisrc->u.host;
                 virReportError(VIR_ERR_OPERATION_FAILED,
                                _("host scsi device %s:%d:%d.%d not found"),
                                scsihostsrc->adapter, scsihostsrc->bus,
                                scsihostsrc->target, scsihostsrc->unit);
            }
3424
            break;
3425
        }
3426
        default:
3427 3428
            virReportError(VIR_ERR_INTERNAL_ERROR,
                           _("unexpected hostdev type %d"), subsys->type);
3429 3430 3431 3432 3433
            break;
        }
        return -1;
    }

3434 3435 3436 3437
    /* If this is a network hostdev, we need to use the higher-level detach
     * function so that mac address / virtualport are reset
     */
    if (detach->parent.type == VIR_DOMAIN_DEVICE_NET)
3438
        return qemuDomainDetachNetDevice(conn, driver, vm, &detach->parent);
3439
    else
3440
        return qemuDomainDetachThisHostDevice(conn, driver, vm, detach);
3441 3442
}

3443
int
3444 3445
qemuDomainDetachNetDevice(virConnectPtr conn,
                          virQEMUDriverPtr driver,
3446 3447 3448
                          virDomainObjPtr vm,
                          virDomainDeviceDefPtr dev)
{
3449
    int detachidx, ret = -1;
3450 3451
    virDomainNetDefPtr detach = NULL;
    qemuDomainObjPrivatePtr priv = vm->privateData;
3452
    int rc;
3453

3454
    if ((detachidx = virDomainNetFindIdx(vm->def, dev->data.net)) < 0)
3455
        goto cleanup;
3456

3457
    detach = vm->def->nets[detachidx];
3458

3459
    if (virDomainNetGetActualType(detach) == VIR_DOMAIN_NET_TYPE_HOSTDEV) {
3460
        /* coverity[negative_returns] */
3461
        ret = qemuDomainDetachThisHostDevice(conn, driver, vm,
3462
                                             virDomainNetGetActualHostdev(detach));
3463 3464
        goto cleanup;
    }
3465 3466 3467 3468 3469 3470 3471 3472 3473 3474 3475 3476 3477 3478 3479
    if (STREQLEN(vm->def->os.machine, "s390-ccw", 8) &&
        virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_VIRTIO_CCW)) {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_CCW)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a CCW address"));
            goto cleanup;
        }
    } else {
        if (!virDomainDeviceAddressIsValid(&detach->info,
                                           VIR_DOMAIN_DEVICE_ADDRESS_TYPE_PCI)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            "%s", _("device cannot be detached without a PCI address"));
            goto cleanup;
        }
3480

3481 3482 3483 3484 3485 3486
        if (qemuIsMultiFunctionDevice(vm->def, &detach->info)) {
            virReportError(VIR_ERR_OPERATION_FAILED,
                            _("cannot hot unplug multifunction PCI device :%s"),
                            dev->data.disk->dst);
            goto cleanup;
        }
3487 3488
    }

3489 3490
    qemuDomainMarkDeviceForRemoval(vm, &detach->info);

3491
    qemuDomainObjEnterMonitor(driver, vm);
3492
    if (virQEMUCapsGet(priv->qemuCaps, QEMU_CAPS_DEVICE)) {
3493
        if (qemuMonitorDelDevice(priv->mon, detach->info.alias) < 0) {
3494
            qemuDomainObjExitMonitor(driver, vm);
3495 3496 3497 3498 3499 3500
            virDomainAuditNet(vm, detach, NULL, "detach", false);
            goto cleanup;
        }
    } else {
        if (qemuMonitorRemovePCIDevice(priv->mon,
                                       &detach->info.addr.pci) < 0) {
3501
            qemuDomainObjExitMonitor(driver, vm);
3502 3503 3504 3505
            virDomainAuditNet(vm, detach, NULL, "detach", false);
            goto cleanup;
        }
    }
3506
    qemuDomainObjExitMonitor(driver, vm);
3507

3508 3509
    rc = qemuDomainWaitForDeviceRemoval(vm);
    if (rc == 0 || rc == 1)
3510 3511 3512
        ret = qemuDomainRemoveNetDevice(driver, vm, detach);
    else
        ret = 0;
3513

3514
 cleanup:
3515
    qemuDomainResetDeviceRemoval(vm);
3516 3517 3518
    return ret;
}

3519
int
3520
qemuDomainChangeGraphicsPasswords(virQEMUDriverPtr driver,
3521 3522 3523 3524 3525 3526 3527 3528
                                  virDomainObjPtr vm,
                                  int type,
                                  virDomainGraphicsAuthDefPtr auth,
                                  const char *defaultPasswd)
{
    qemuDomainObjPrivatePtr priv = vm->privateData;
    time_t now = time(NULL);
    char expire_time [64];
3529
    const char *connected = NULL;
3530 3531
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);
3532

3533
    if (!auth->passwd && !defaultPasswd) {
3534 3535 3536
        ret = 0;
        goto cleanup;
    }
3537

3538 3539 3540
    if (auth->connected)
        connected = virDomainGraphicsAuthConnectedTypeToString(auth->connected);

3541
    qemuDomainObjEnterMonitor(driver, vm);
3542 3543 3544
    ret = qemuMonitorSetPassword(priv->mon,
                                 type,
                                 auth->passwd ? auth->passwd : defaultPasswd,
3545
                                 connected);
3546 3547 3548

    if (ret == -2) {
        if (type != VIR_DOMAIN_GRAPHICS_TYPE_VNC) {
3549 3550
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Graphics password only supported for VNC"));
3551 3552 3553 3554 3555 3556
            ret = -1;
        } else {
            ret = qemuMonitorSetVNCPassword(priv->mon,
                                            auth->passwd ? auth->passwd : defaultPasswd);
        }
    }
3557
    if (ret != 0)
3558
        goto end_job;
3559

3560 3561 3562
    if (auth->expires) {
        time_t lifetime = auth->validTo - now;
        if (lifetime <= 0)
3563
            snprintf(expire_time, sizeof(expire_time), "now");
3564
        else
3565
            snprintf(expire_time, sizeof(expire_time), "%lu", (long unsigned)auth->validTo);
3566
    } else {
3567
        snprintf(expire_time, sizeof(expire_time), "never");
3568 3569 3570 3571 3572 3573 3574
    }

    ret = qemuMonitorExpirePassword(priv->mon, type, expire_time);

    if (ret == -2) {
        /* XXX we could fake this with a timer */
        if (auth->expires) {
3575 3576
            virReportError(VIR_ERR_INTERNAL_ERROR, "%s",
                           _("Expiry of passwords is not supported"));
3577
            ret = -1;
3578 3579
        } else {
            ret = 0;
3580 3581 3582
        }
    }

3583
 end_job:
3584
    qemuDomainObjExitMonitor(driver, vm);
3585
 cleanup:
3586
    virObjectUnref(cfg);
3587 3588
    return ret;
}
3589

3590
int qemuDomainAttachLease(virQEMUDriverPtr driver,
3591 3592 3593
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
3594 3595 3596
    int ret = -1;
    virQEMUDriverConfigPtr cfg = virQEMUDriverGetConfig(driver);

3597
    if (virDomainLeaseInsertPreAlloc(vm->def) < 0)
3598
        goto cleanup;
3599

3600
    if (virDomainLockLeaseAttach(driver->lockManager, cfg->uri,
3601
                                 vm, lease) < 0) {
3602
        virDomainLeaseInsertPreAlloced(vm->def, NULL);
3603
        goto cleanup;
3604 3605 3606
    }

    virDomainLeaseInsertPreAlloced(vm->def, lease);
3607 3608
    ret = 0;

3609
 cleanup:
3610 3611
    virObjectUnref(cfg);
    return ret;
3612 3613
}

3614
int qemuDomainDetachLease(virQEMUDriverPtr driver,
3615 3616 3617
                          virDomainObjPtr vm,
                          virDomainLeaseDefPtr lease)
{
3618
    virDomainLeaseDefPtr det_lease;
3619
    int idx;
3620

3621
    if ((idx = virDomainLeaseIndex(vm->def, lease)) < 0) {
3622 3623 3624
        virReportError(VIR_ERR_INVALID_ARG,
                       _("Lease %s in lockspace %s does not exist"),
                       lease->key, NULLSTR(lease->lockspace));
3625 3626 3627 3628 3629 3630
        return -1;
    }

    if (virDomainLockLeaseDetach(driver->lockManager, vm, lease) < 0)
        return -1;

3631
    det_lease = virDomainLeaseRemoveAt(vm->def, idx);
3632
    virDomainLeaseDefFree(det_lease);
3633 3634
    return 0;
}
3635 3636 3637 3638 3639 3640 3641 3642 3643 3644

int qemuDomainDetachChrDevice(virQEMUDriverPtr driver,
                              virDomainObjPtr vm,
                              virDomainChrDefPtr chr)
{
    int ret = -1;
    qemuDomainObjPrivatePtr priv = vm->privateData;
    virDomainDefPtr vmdef = vm->def;
    virDomainChrDefPtr tmpChr;
    char *devstr = NULL;
3645
    int rc;
3646 3647 3648 3649 3650 3651 3652 3653 3654 3655

    if (!(tmpChr = virDomainChrFind(vmdef, chr))) {
        virReportError(VIR_ERR_OPERATION_INVALID, "%s",
                       _("device not present in domain configuration"));
        return ret;
    }

    if (qemuBuildChrDeviceStr(&devstr, vm->def, chr, priv->qemuCaps) < 0)
        return ret;

3656 3657
    qemuDomainMarkDeviceForRemoval(vm, &tmpChr->info);

3658 3659 3660 3661 3662 3663 3664
    qemuDomainObjEnterMonitor(driver, vm);
    if (devstr && qemuMonitorDelDevice(priv->mon, tmpChr->info.alias) < 0) {
        qemuDomainObjExitMonitor(driver, vm);
        goto cleanup;
    }
    qemuDomainObjExitMonitor(driver, vm);

3665 3666
    rc = qemuDomainWaitForDeviceRemoval(vm);
    if (rc == 0 || rc == 1)
3667 3668 3669
        ret = qemuDomainRemoveChrDevice(driver, vm, tmpChr);
    else
        ret = 0;
3670

3671
 cleanup:
3672
    qemuDomainResetDeviceRemoval(vm);
3673 3674 3675
    VIR_FREE(devstr);
    return ret;
}