tap.c 18.3 KB
Newer Older
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25
/*
 * QEMU System Emulator
 *
 * Copyright (c) 2003-2008 Fabrice Bellard
 * Copyright (c) 2009 Red Hat, Inc.
 *
 * Permission is hereby granted, free of charge, to any person obtaining a copy
 * of this software and associated documentation files (the "Software"), to deal
 * in the Software without restriction, including without limitation the rights
 * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
 * copies of the Software, and to permit persons to whom the Software is
 * furnished to do so, subject to the following conditions:
 *
 * The above copyright notice and this permission notice shall be included in
 * all copies or substantial portions of the Software.
 *
 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL
 * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
 * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
 * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
 * THE SOFTWARE.
 */

P
Paolo Bonzini 已提交
26
#include "tap_int.h"
27 28 29 30 31 32

#include "config-host.h"

#include <sys/ioctl.h>
#include <sys/stat.h>
#include <sys/wait.h>
A
Alexander Graf 已提交
33
#include <sys/socket.h>
34 35
#include <net/if.h>

P
Paolo Bonzini 已提交
36
#include "net/net.h"
37
#include "clients.h"
38
#include "monitor.h"
39 40
#include "sysemu.h"
#include "qemu-common.h"
41
#include "qemu-error.h"
42

P
Paolo Bonzini 已提交
43
#include "net/tap.h"
44

45 46
#include "hw/vhost_net.h"

47 48 49 50 51 52
/* Maximum GSO packet size (64k) plus plenty of room for
 * the ethernet and virtio_net headers
 */
#define TAP_BUFSIZE (4096 + 65536)

typedef struct TAPState {
53
    NetClientState nc;
54 55 56 57 58 59 60 61
    int fd;
    char down_script[1024];
    char down_script_arg[128];
    uint8_t buf[TAP_BUFSIZE];
    unsigned int read_poll : 1;
    unsigned int write_poll : 1;
    unsigned int using_vnet_hdr : 1;
    unsigned int has_ufo: 1;
62
    VHostNetState *vhost_net;
63
    unsigned host_vnet_hdr_len;
64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98
} TAPState;

static int launch_script(const char *setup_script, const char *ifname, int fd);

static int tap_can_send(void *opaque);
static void tap_send(void *opaque);
static void tap_writable(void *opaque);

static void tap_update_fd_handler(TAPState *s)
{
    qemu_set_fd_handler2(s->fd,
                         s->read_poll  ? tap_can_send : NULL,
                         s->read_poll  ? tap_send     : NULL,
                         s->write_poll ? tap_writable : NULL,
                         s);
}

static void tap_read_poll(TAPState *s, int enable)
{
    s->read_poll = !!enable;
    tap_update_fd_handler(s);
}

static void tap_write_poll(TAPState *s, int enable)
{
    s->write_poll = !!enable;
    tap_update_fd_handler(s);
}

static void tap_writable(void *opaque)
{
    TAPState *s = opaque;

    tap_write_poll(s, 0);

99
    qemu_flush_queued_packets(&s->nc);
100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117
}

static ssize_t tap_write_packet(TAPState *s, const struct iovec *iov, int iovcnt)
{
    ssize_t len;

    do {
        len = writev(s->fd, iov, iovcnt);
    } while (len == -1 && errno == EINTR);

    if (len == -1 && errno == EAGAIN) {
        tap_write_poll(s, 1);
        return 0;
    }

    return len;
}

118
static ssize_t tap_receive_iov(NetClientState *nc, const struct iovec *iov,
119 120
                               int iovcnt)
{
121
    TAPState *s = DO_UPCAST(TAPState, nc, nc);
122 123
    const struct iovec *iovp = iov;
    struct iovec iov_copy[iovcnt + 1];
124
    struct virtio_net_hdr_mrg_rxbuf hdr = { };
125

126
    if (s->host_vnet_hdr_len && !s->using_vnet_hdr) {
127
        iov_copy[0].iov_base = &hdr;
128
        iov_copy[0].iov_len =  s->host_vnet_hdr_len;
129 130 131 132 133 134 135 136
        memcpy(&iov_copy[1], iov, iovcnt * sizeof(*iov));
        iovp = iov_copy;
        iovcnt++;
    }

    return tap_write_packet(s, iovp, iovcnt);
}

137
static ssize_t tap_receive_raw(NetClientState *nc, const uint8_t *buf, size_t size)
138
{
139
    TAPState *s = DO_UPCAST(TAPState, nc, nc);
140 141
    struct iovec iov[2];
    int iovcnt = 0;
142
    struct virtio_net_hdr_mrg_rxbuf hdr = { };
143

144
    if (s->host_vnet_hdr_len) {
145
        iov[iovcnt].iov_base = &hdr;
146
        iov[iovcnt].iov_len  = s->host_vnet_hdr_len;
147 148 149 150 151 152 153 154 155 156
        iovcnt++;
    }

    iov[iovcnt].iov_base = (char *)buf;
    iov[iovcnt].iov_len  = size;
    iovcnt++;

    return tap_write_packet(s, iov, iovcnt);
}

157
static ssize_t tap_receive(NetClientState *nc, const uint8_t *buf, size_t size)
158
{
159
    TAPState *s = DO_UPCAST(TAPState, nc, nc);
160 161
    struct iovec iov[1];

162
    if (s->host_vnet_hdr_len && !s->using_vnet_hdr) {
163
        return tap_receive_raw(nc, buf, size);
164 165 166 167 168 169 170 171 172 173 174 175
    }

    iov[0].iov_base = (char *)buf;
    iov[0].iov_len  = size;

    return tap_write_packet(s, iov, 1);
}

static int tap_can_send(void *opaque)
{
    TAPState *s = opaque;

176
    return qemu_can_send_packet(&s->nc);
177 178
}

179 180
#ifndef __sun__
ssize_t tap_read_packet(int tapfd, uint8_t *buf, int maxlen)
181 182 183 184 185
{
    return read(tapfd, buf, maxlen);
}
#endif

186
static void tap_send_completed(NetClientState *nc, ssize_t len)
187
{
188
    TAPState *s = DO_UPCAST(TAPState, nc, nc);
189 190 191 192 193 194 195 196
    tap_read_poll(s, 1);
}

static void tap_send(void *opaque)
{
    TAPState *s = opaque;
    int size;

M
Mark McLoughlin 已提交
197 198 199 200 201 202 203 204
    do {
        uint8_t *buf = s->buf;

        size = tap_read_packet(s->fd, s->buf, sizeof(s->buf));
        if (size <= 0) {
            break;
        }

205 206 207
        if (s->host_vnet_hdr_len && !s->using_vnet_hdr) {
            buf  += s->host_vnet_hdr_len;
            size -= s->host_vnet_hdr_len;
M
Mark McLoughlin 已提交
208 209
        }

210
        size = qemu_send_packet_async(&s->nc, buf, size, tap_send_completed);
M
Mark McLoughlin 已提交
211 212 213
        if (size == 0) {
            tap_read_poll(s, 0);
        }
214
    } while (size > 0 && qemu_can_send_packet(&s->nc));
215 216
}

217
int tap_has_ufo(NetClientState *nc)
218
{
219
    TAPState *s = DO_UPCAST(TAPState, nc, nc);
220

221
    assert(nc->info->type == NET_CLIENT_OPTIONS_KIND_TAP);
222 223 224 225

    return s->has_ufo;
}

226
int tap_has_vnet_hdr(NetClientState *nc)
227
{
228
    TAPState *s = DO_UPCAST(TAPState, nc, nc);
229

230
    assert(nc->info->type == NET_CLIENT_OPTIONS_KIND_TAP);
231

232
    return !!s->host_vnet_hdr_len;
233 234
}

235
int tap_has_vnet_hdr_len(NetClientState *nc, int len)
236 237 238
{
    TAPState *s = DO_UPCAST(TAPState, nc, nc);

239
    assert(nc->info->type == NET_CLIENT_OPTIONS_KIND_TAP);
240 241 242 243

    return tap_probe_vnet_hdr_len(s->fd, len);
}

244
void tap_set_vnet_hdr_len(NetClientState *nc, int len)
245 246 247
{
    TAPState *s = DO_UPCAST(TAPState, nc, nc);

248
    assert(nc->info->type == NET_CLIENT_OPTIONS_KIND_TAP);
249 250 251 252 253 254 255
    assert(len == sizeof(struct virtio_net_hdr_mrg_rxbuf) ||
           len == sizeof(struct virtio_net_hdr));

    tap_fd_set_vnet_hdr_len(s->fd, len);
    s->host_vnet_hdr_len = len;
}

256
void tap_using_vnet_hdr(NetClientState *nc, int using_vnet_hdr)
257
{
258
    TAPState *s = DO_UPCAST(TAPState, nc, nc);
259 260 261

    using_vnet_hdr = using_vnet_hdr != 0;

262
    assert(nc->info->type == NET_CLIENT_OPTIONS_KIND_TAP);
263
    assert(!!s->host_vnet_hdr_len == using_vnet_hdr);
264 265 266 267

    s->using_vnet_hdr = using_vnet_hdr;
}

268
void tap_set_offload(NetClientState *nc, int csum, int tso4,
269 270
                     int tso6, int ecn, int ufo)
{
271
    TAPState *s = DO_UPCAST(TAPState, nc, nc);
272 273 274
    if (s->fd < 0) {
        return;
    }
275

276
    tap_fd_set_offload(s->fd, csum, tso4, tso6, ecn, ufo);
277 278
}

279
static void tap_cleanup(NetClientState *nc)
280
{
281
    TAPState *s = DO_UPCAST(TAPState, nc, nc);
282

283 284
    if (s->vhost_net) {
        vhost_net_cleanup(s->vhost_net);
285
        s->vhost_net = NULL;
286 287
    }

288
    qemu_purge_queued_packets(nc);
289 290 291 292 293 294 295

    if (s->down_script[0])
        launch_script(s->down_script, s->down_script_arg, s->fd);

    tap_read_poll(s, 0);
    tap_write_poll(s, 0);
    close(s->fd);
296
    s->fd = -1;
297 298
}

299
static void tap_poll(NetClientState *nc, bool enable)
300 301 302 303 304 305
{
    TAPState *s = DO_UPCAST(TAPState, nc, nc);
    tap_read_poll(s, enable);
    tap_write_poll(s, enable);
}

306
int tap_get_fd(NetClientState *nc)
307 308
{
    TAPState *s = DO_UPCAST(TAPState, nc, nc);
309
    assert(nc->info->type == NET_CLIENT_OPTIONS_KIND_TAP);
310 311 312
    return s->fd;
}

313 314
/* fd support */

315
static NetClientInfo net_tap_info = {
316
    .type = NET_CLIENT_OPTIONS_KIND_TAP,
317 318 319 320
    .size = sizeof(TAPState),
    .receive = tap_receive,
    .receive_raw = tap_receive_raw,
    .receive_iov = tap_receive_iov,
321
    .poll = tap_poll,
322 323 324
    .cleanup = tap_cleanup,
};

325
static TAPState *net_tap_fd_init(NetClientState *peer,
326 327 328 329 330
                                 const char *model,
                                 const char *name,
                                 int fd,
                                 int vnet_hdr)
{
331
    NetClientState *nc;
332 333
    TAPState *s;

334
    nc = qemu_new_net_client(&net_tap_info, peer, model, name);
335 336 337

    s = DO_UPCAST(TAPState, nc, nc);

338
    s->fd = fd;
339
    s->host_vnet_hdr_len = vnet_hdr ? sizeof(struct virtio_net_hdr) : 0;
340
    s->using_vnet_hdr = 0;
341
    s->has_ufo = tap_probe_has_ufo(s->fd);
342
    tap_set_offload(&s->nc, 0, 0, 0, 0, 0);
343 344 345 346 347 348 349
    /*
     * Make sure host header length is set correctly in tap:
     * it might have been modified by another instance of qemu.
     */
    if (tap_probe_vnet_hdr_len(s->fd, s->host_vnet_hdr_len)) {
        tap_fd_set_vnet_hdr_len(s->fd, s->host_vnet_hdr_len);
    }
350
    tap_read_poll(s, 1);
351
    s->vhost_net = NULL;
352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369 370 371 372 373 374 375 376
    return s;
}

static int launch_script(const char *setup_script, const char *ifname, int fd)
{
    int pid, status;
    char *args[3];
    char **parg;

    /* try to launch network script */
    pid = fork();
    if (pid == 0) {
        int open_max = sysconf(_SC_OPEN_MAX), i;

        for (i = 0; i < open_max; i++) {
            if (i != STDIN_FILENO &&
                i != STDOUT_FILENO &&
                i != STDERR_FILENO &&
                i != fd) {
                close(i);
            }
        }
        parg = args;
        *parg++ = (char *)setup_script;
        *parg++ = (char *)ifname;
377
        *parg = NULL;
378 379 380 381 382 383 384 385 386 387 388 389 390 391 392
        execv(setup_script, args);
        _exit(1);
    } else if (pid > 0) {
        while (waitpid(pid, &status, 0) != pid) {
            /* loop */
        }

        if (WIFEXITED(status) && WEXITSTATUS(status) == 0) {
            return 0;
        }
    }
    fprintf(stderr, "%s: could not launch network script\n", setup_script);
    return -1;
}

C
Corey Bryant 已提交
393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417 418 419 420 421 422 423 424 425 426 427 428 429 430 431 432 433 434 435 436 437 438 439 440 441 442 443 444 445 446 447 448 449 450 451 452 453 454 455 456 457 458 459 460 461 462 463 464 465 466 467 468 469 470 471 472 473 474 475 476 477 478 479 480 481 482 483 484 485 486 487 488 489 490 491 492 493 494 495 496 497 498 499 500 501 502 503 504 505 506 507 508 509 510 511 512 513 514 515 516 517 518 519 520 521 522
static int recv_fd(int c)
{
    int fd;
    uint8_t msgbuf[CMSG_SPACE(sizeof(fd))];
    struct msghdr msg = {
        .msg_control = msgbuf,
        .msg_controllen = sizeof(msgbuf),
    };
    struct cmsghdr *cmsg;
    struct iovec iov;
    uint8_t req[1];
    ssize_t len;

    cmsg = CMSG_FIRSTHDR(&msg);
    cmsg->cmsg_level = SOL_SOCKET;
    cmsg->cmsg_type = SCM_RIGHTS;
    cmsg->cmsg_len = CMSG_LEN(sizeof(fd));
    msg.msg_controllen = cmsg->cmsg_len;

    iov.iov_base = req;
    iov.iov_len = sizeof(req);

    msg.msg_iov = &iov;
    msg.msg_iovlen = 1;

    len = recvmsg(c, &msg, 0);
    if (len > 0) {
        memcpy(&fd, CMSG_DATA(cmsg), sizeof(fd));
        return fd;
    }

    return len;
}

static int net_bridge_run_helper(const char *helper, const char *bridge)
{
    sigset_t oldmask, mask;
    int pid, status;
    char *args[5];
    char **parg;
    int sv[2];

    sigemptyset(&mask);
    sigaddset(&mask, SIGCHLD);
    sigprocmask(SIG_BLOCK, &mask, &oldmask);

    if (socketpair(PF_UNIX, SOCK_STREAM, 0, sv) == -1) {
        return -1;
    }

    /* try to launch bridge helper */
    pid = fork();
    if (pid == 0) {
        int open_max = sysconf(_SC_OPEN_MAX), i;
        char fd_buf[6+10];
        char br_buf[6+IFNAMSIZ] = {0};
        char helper_cmd[PATH_MAX + sizeof(fd_buf) + sizeof(br_buf) + 15];

        for (i = 0; i < open_max; i++) {
            if (i != STDIN_FILENO &&
                i != STDOUT_FILENO &&
                i != STDERR_FILENO &&
                i != sv[1]) {
                close(i);
            }
        }

        snprintf(fd_buf, sizeof(fd_buf), "%s%d", "--fd=", sv[1]);

        if (strrchr(helper, ' ') || strrchr(helper, '\t')) {
            /* assume helper is a command */

            if (strstr(helper, "--br=") == NULL) {
                snprintf(br_buf, sizeof(br_buf), "%s%s", "--br=", bridge);
            }

            snprintf(helper_cmd, sizeof(helper_cmd), "%s %s %s %s",
                     helper, "--use-vnet", fd_buf, br_buf);

            parg = args;
            *parg++ = (char *)"sh";
            *parg++ = (char *)"-c";
            *parg++ = helper_cmd;
            *parg++ = NULL;

            execv("/bin/sh", args);
        } else {
            /* assume helper is just the executable path name */

            snprintf(br_buf, sizeof(br_buf), "%s%s", "--br=", bridge);

            parg = args;
            *parg++ = (char *)helper;
            *parg++ = (char *)"--use-vnet";
            *parg++ = fd_buf;
            *parg++ = br_buf;
            *parg++ = NULL;

            execv(helper, args);
        }
        _exit(1);

    } else if (pid > 0) {
        int fd;

        close(sv[1]);

        do {
            fd = recv_fd(sv[0]);
        } while (fd == -1 && errno == EINTR);

        close(sv[0]);

        while (waitpid(pid, &status, 0) != pid) {
            /* loop */
        }
        sigprocmask(SIG_SETMASK, &oldmask, NULL);
        if (fd < 0) {
            fprintf(stderr, "failed to recv file descriptor\n");
            return -1;
        }

        if (WIFEXITED(status) && WEXITSTATUS(status) == 0) {
            return fd;
        }
    }
    fprintf(stderr, "failed to launch bridge helper\n");
    return -1;
}

523
int net_init_bridge(const NetClientOptions *opts, const char *name,
524
                    NetClientState *peer)
C
Corey Bryant 已提交
525
{
526 527 528
    const NetdevBridgeOptions *bridge;
    const char *helper, *br;

C
Corey Bryant 已提交
529 530 531
    TAPState *s;
    int fd, vnet_hdr;

532 533 534 535 536
    assert(opts->kind == NET_CLIENT_OPTIONS_KIND_BRIDGE);
    bridge = opts->bridge;

    helper = bridge->has_helper ? bridge->helper : DEFAULT_BRIDGE_HELPER;
    br     = bridge->has_br     ? bridge->br     : DEFAULT_BRIDGE_INTERFACE;
C
Corey Bryant 已提交
537

538
    fd = net_bridge_run_helper(helper, br);
C
Corey Bryant 已提交
539 540 541 542 543 544 545 546
    if (fd == -1) {
        return -1;
    }

    fcntl(fd, F_SETFL, O_NONBLOCK);

    vnet_hdr = tap_probe_vnet_hdr(fd);

547
    s = net_tap_fd_init(peer, "bridge", name, fd, vnet_hdr);
C
Corey Bryant 已提交
548 549 550 551 552
    if (!s) {
        close(fd);
        return -1;
    }

553 554
    snprintf(s->nc.info_str, sizeof(s->nc.info_str), "helper=%s,br=%s", helper,
             br);
C
Corey Bryant 已提交
555 556 557 558

    return 0;
}

559 560 561
static int net_tap_init(const NetdevTapOptions *tap, int *vnet_hdr,
                        const char *setup_script, char *ifname,
                        size_t ifname_sz)
562 563 564
{
    int fd, vnet_hdr_required;

565 566 567 568 569
    if (tap->has_ifname) {
        pstrcpy(ifname, ifname_sz, tap->ifname);
    } else {
        assert(ifname_sz > 0);
        ifname[0] = '\0';
570 571
    }

572 573
    if (tap->has_vnet_hdr) {
        *vnet_hdr = tap->vnet_hdr;
574 575
        vnet_hdr_required = *vnet_hdr;
    } else {
576
        *vnet_hdr = 1;
577 578 579
        vnet_hdr_required = 0;
    }

580
    TFR(fd = tap_open(ifname, ifname_sz, vnet_hdr, vnet_hdr_required));
581 582 583 584 585 586 587 588 589 590 591 592 593 594 595
    if (fd < 0) {
        return -1;
    }

    if (setup_script &&
        setup_script[0] != '\0' &&
        strcmp(setup_script, "no") != 0 &&
        launch_script(setup_script, ifname, fd)) {
        close(fd);
        return -1;
    }

    return fd;
}

596
int net_init_tap(const NetClientOptions *opts, const char *name,
597
                 NetClientState *peer)
598
{
599 600
    const NetdevTapOptions *tap;

601
    int fd, vnet_hdr = 0;
C
Corey Bryant 已提交
602
    const char *model;
603 604 605 606 607 608 609 610
    TAPState *s;

    /* for the no-fd, no-helper case */
    const char *script = NULL; /* suppress wrong "uninit'd use" gcc warning */
    char ifname[128];

    assert(opts->kind == NET_CLIENT_OPTIONS_KIND_TAP);
    tap = opts->tap;
611

612 613 614
    if (tap->has_fd) {
        if (tap->has_ifname || tap->has_script || tap->has_downscript ||
            tap->has_vnet_hdr || tap->has_helper) {
C
Corey Bryant 已提交
615 616
            error_report("ifname=, script=, downscript=, vnet_hdr=, "
                         "and helper= are invalid with fd=");
617 618 619
            return -1;
        }

620
        fd = monitor_handle_fd_param(cur_mon, tap->fd);
621 622 623 624 625 626 627
        if (fd == -1) {
            return -1;
        }

        fcntl(fd, F_SETFL, O_NONBLOCK);

        vnet_hdr = tap_probe_vnet_hdr(fd);
C
Corey Bryant 已提交
628 629 630

        model = "tap";

631 632 633
    } else if (tap->has_helper) {
        if (tap->has_ifname || tap->has_script || tap->has_downscript ||
            tap->has_vnet_hdr) {
C
Corey Bryant 已提交
634 635 636 637 638
            error_report("ifname=, script=, downscript=, and vnet_hdr= "
                         "are invalid with helper=");
            return -1;
        }

639
        fd = net_bridge_run_helper(tap->helper, DEFAULT_BRIDGE_INTERFACE);
C
Corey Bryant 已提交
640 641 642 643 644 645 646 647 648 649
        if (fd == -1) {
            return -1;
        }

        fcntl(fd, F_SETFL, O_NONBLOCK);

        vnet_hdr = tap_probe_vnet_hdr(fd);

        model = "bridge";

650
    } else {
651 652
        script = tap->has_script ? tap->script : DEFAULT_NETWORK_SCRIPT;
        fd = net_tap_init(tap, &vnet_hdr, script, ifname, sizeof ifname);
653 654 655
        if (fd == -1) {
            return -1;
        }
C
Corey Bryant 已提交
656 657

        model = "tap";
658 659
    }

660
    s = net_tap_fd_init(peer, model, name, fd, vnet_hdr);
661 662 663 664 665
    if (!s) {
        close(fd);
        return -1;
    }

666
    if (tap_set_sndbuf(s->fd, tap) < 0) {
667 668 669
        return -1;
    }

670
    if (tap->has_fd) {
671
        snprintf(s->nc.info_str, sizeof(s->nc.info_str), "fd=%d", fd);
672 673 674
    } else if (tap->has_helper) {
        snprintf(s->nc.info_str, sizeof(s->nc.info_str), "helper=%s",
                 tap->helper);
675
    } else {
676
        const char *downscript;
677

678 679
        downscript = tap->has_downscript ? tap->downscript :
                                           DEFAULT_NETWORK_DOWN_SCRIPT;
680

681
        snprintf(s->nc.info_str, sizeof(s->nc.info_str),
682 683
                 "ifname=%s,script=%s,downscript=%s", ifname, script,
                 downscript);
684 685 686 687 688 689 690

        if (strcmp(downscript, "no") != 0) {
            snprintf(s->down_script, sizeof(s->down_script), "%s", downscript);
            snprintf(s->down_script_arg, sizeof(s->down_script_arg), "%s", ifname);
        }
    }

691 692 693 694 695
    if (tap->has_vhost ? tap->vhost :
        tap->has_vhostfd || (tap->has_vhostforce && tap->vhostforce)) {
        int vhostfd;

        if (tap->has_vhostfd) {
696
            vhostfd = monitor_handle_fd_param(cur_mon, tap->vhostfd);
697
            if (vhostfd == -1) {
698 699 700 701 702
                return -1;
            }
        } else {
            vhostfd = -1;
        }
703 704 705

        s->vhost_net = vhost_net_init(&s->nc, vhostfd,
                                      tap->has_vhostforce && tap->vhostforce);
706 707 708 709
        if (!s->vhost_net) {
            error_report("vhost-net requested but could not be initialized");
            return -1;
        }
710
    } else if (tap->has_vhostfd) {
711 712 713 714
        error_report("vhostfd= is not valid without vhost");
        return -1;
    }

715 716
    return 0;
}
717

718
VHostNetState *tap_get_vhost_net(NetClientState *nc)
719 720
{
    TAPState *s = DO_UPCAST(TAPState, nc, nc);
721
    assert(nc->info->type == NET_CLIENT_OPTIONS_KIND_TAP);
722 723
    return s->vhost_net;
}