vmdk.c 83.1 KB
Newer Older
B
bellard 已提交
1 2
/*
 * Block driver for the VMDK format
3
 *
B
bellard 已提交
4
 * Copyright (c) 2004 Fabrice Bellard
5
 * Copyright (c) 2005 Filip Navara
6
 *
B
bellard 已提交
7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24
 * Permission is hereby granted, free of charge, to any person obtaining a copy
 * of this software and associated documentation files (the "Software"), to deal
 * in the Software without restriction, including without limitation the rights
 * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
 * copies of the Software, and to permit persons to whom the Software is
 * furnished to do so, subject to the following conditions:
 *
 * The above copyright notice and this permission notice shall be included in
 * all copies or substantial portions of the Software.
 *
 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL
 * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
 * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
 * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
 * THE SOFTWARE.
 */
25

P
Peter Maydell 已提交
26
#include "qemu/osdep.h"
27
#include "qapi/error.h"
28
#include "block/block_int.h"
29
#include "sysemu/block-backend.h"
30
#include "qapi/qmp/qdict.h"
31
#include "qapi/qmp/qerror.h"
32
#include "qemu/error-report.h"
33
#include "qemu/module.h"
34
#include "qemu/option.h"
35
#include "qemu/bswap.h"
36
#include "migration/blocker.h"
37
#include "qemu/cutils.h"
S
Stefan Weil 已提交
38
#include <zlib.h>
B
bellard 已提交
39 40 41

#define VMDK3_MAGIC (('C' << 24) | ('O' << 16) | ('W' << 8) | 'D')
#define VMDK4_MAGIC (('K' << 24) | ('D' << 16) | ('M' << 8) | 'V')
F
Fam Zheng 已提交
42
#define VMDK4_COMPRESSION_DEFLATE 1
F
Fam Zheng 已提交
43
#define VMDK4_FLAG_NL_DETECT (1 << 0)
44
#define VMDK4_FLAG_RGD (1 << 1)
45 46
/* Zeroed-grain enable bit */
#define VMDK4_FLAG_ZERO_GRAIN   (1 << 2)
F
Fam Zheng 已提交
47 48
#define VMDK4_FLAG_COMPRESS (1 << 16)
#define VMDK4_FLAG_MARKER (1 << 17)
49
#define VMDK4_GD_AT_END 0xffffffffffffffffULL
B
bellard 已提交
50

51 52
#define VMDK_EXTENT_MAX_SECTORS (1ULL << 32)

53
#define VMDK_GTE_ZEROED 0x1
F
Fam Zheng 已提交
54 55 56 57 58 59 60 61

/* VMDK internal error codes */
#define VMDK_OK      0
#define VMDK_ERROR   (-1)
/* Cluster not allocated */
#define VMDK_UNALLOC (-2)
#define VMDK_ZEROED  (-3)

62 63
#define BLOCK_OPT_ZEROED_GRAIN "zeroed_grain"

B
bellard 已提交
64 65 66 67 68 69 70 71 72 73 74
typedef struct {
    uint32_t version;
    uint32_t flags;
    uint32_t disk_sectors;
    uint32_t granularity;
    uint32_t l1dir_offset;
    uint32_t l1dir_size;
    uint32_t file_sectors;
    uint32_t cylinders;
    uint32_t heads;
    uint32_t sectors_per_track;
75
} QEMU_PACKED VMDK3Header;
B
bellard 已提交
76 77 78 79

typedef struct {
    uint32_t version;
    uint32_t flags;
80 81 82 83
    uint64_t capacity;
    uint64_t granularity;
    uint64_t desc_offset;
    uint64_t desc_size;
84 85
    /* Number of GrainTableEntries per GrainTable */
    uint32_t num_gtes_per_gt;
86 87 88
    uint64_t rgd_offset;
    uint64_t gd_offset;
    uint64_t grain_offset;
B
bellard 已提交
89 90
    char filler[1];
    char check_bytes[4];
F
Fam Zheng 已提交
91
    uint16_t compressAlgorithm;
92
} QEMU_PACKED VMDK4Header;
B
bellard 已提交
93 94 95

#define L2_CACHE_SIZE 16

F
Fam Zheng 已提交
96
typedef struct VmdkExtent {
97
    BdrvChild *file;
F
Fam Zheng 已提交
98
    bool flat;
F
Fam Zheng 已提交
99 100
    bool compressed;
    bool has_marker;
101 102
    bool has_zero_grain;
    int version;
F
Fam Zheng 已提交
103 104
    int64_t sectors;
    int64_t end_sector;
105
    int64_t flat_start_offset;
B
bellard 已提交
106
    int64_t l1_table_offset;
107
    int64_t l1_backup_table_offset;
B
bellard 已提交
108
    uint32_t *l1_table;
109
    uint32_t *l1_backup_table;
B
bellard 已提交
110 111 112 113 114 115 116 117
    unsigned int l1_size;
    uint32_t l1_entry_sectors;

    unsigned int l2_size;
    uint32_t *l2_cache;
    uint32_t l2_cache_offsets[L2_CACHE_SIZE];
    uint32_t l2_cache_counts[L2_CACHE_SIZE];

118
    int64_t cluster_sectors;
F
Fam Zheng 已提交
119
    int64_t next_cluster_sector;
F
Fam Zheng 已提交
120
    char *type;
F
Fam Zheng 已提交
121 122 123
} VmdkExtent;

typedef struct BDRVVmdkState {
124
    CoMutex lock;
125
    uint64_t desc_offset;
126
    bool cid_updated;
127
    bool cid_checked;
F
Fam Zheng 已提交
128
    uint32_t cid;
129
    uint32_t parent_cid;
F
Fam Zheng 已提交
130 131 132
    int num_extents;
    /* Extent array with num_extents entries, ascend ordered by address */
    VmdkExtent *extents;
K
Kevin Wolf 已提交
133
    Error *migration_blocker;
F
Fam Zheng 已提交
134
    char *create_type;
B
bellard 已提交
135 136
} BDRVVmdkState;

137 138 139 140 141
typedef struct VmdkMetaData {
    unsigned int l1_index;
    unsigned int l2_index;
    unsigned int l2_offset;
    int valid;
F
Fam Zheng 已提交
142
    uint32_t *l2_cache_entry;
143 144
} VmdkMetaData;

F
Fam Zheng 已提交
145 146 147 148
typedef struct VmdkGrainMarker {
    uint64_t lba;
    uint32_t size;
    uint8_t  data[0];
149
} QEMU_PACKED VmdkGrainMarker;
F
Fam Zheng 已提交
150

151 152 153 154 155 156 157
enum {
    MARKER_END_OF_STREAM    = 0,
    MARKER_GRAIN_TABLE      = 1,
    MARKER_GRAIN_DIRECTORY  = 2,
    MARKER_FOOTER           = 3,
};

B
bellard 已提交
158 159 160 161
static int vmdk_probe(const uint8_t *buf, int buf_size, const char *filename)
{
    uint32_t magic;

F
Fam Zheng 已提交
162
    if (buf_size < 4) {
B
bellard 已提交
163
        return 0;
F
Fam Zheng 已提交
164
    }
B
bellard 已提交
165 166
    magic = be32_to_cpu(*(uint32_t *)buf);
    if (magic == VMDK3_MAGIC ||
167
        magic == VMDK4_MAGIC) {
B
bellard 已提交
168
        return 100;
169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209
    } else {
        const char *p = (const char *)buf;
        const char *end = p + buf_size;
        while (p < end) {
            if (*p == '#') {
                /* skip comment line */
                while (p < end && *p != '\n') {
                    p++;
                }
                p++;
                continue;
            }
            if (*p == ' ') {
                while (p < end && *p == ' ') {
                    p++;
                }
                /* skip '\r' if windows line endings used. */
                if (p < end && *p == '\r') {
                    p++;
                }
                /* only accept blank lines before 'version=' line */
                if (p == end || *p != '\n') {
                    return 0;
                }
                p++;
                continue;
            }
            if (end - p >= strlen("version=X\n")) {
                if (strncmp("version=1\n", p, strlen("version=1\n")) == 0 ||
                    strncmp("version=2\n", p, strlen("version=2\n")) == 0) {
                    return 100;
                }
            }
            if (end - p >= strlen("version=X\r\n")) {
                if (strncmp("version=1\r\n", p, strlen("version=1\r\n")) == 0 ||
                    strncmp("version=2\r\n", p, strlen("version=2\r\n")) == 0) {
                    return 100;
                }
            }
            return 0;
        }
B
bellard 已提交
210
        return 0;
211
    }
B
bellard 已提交
212 213
}

214
#define SECTOR_SIZE 512
F
Fam Zheng 已提交
215 216 217
#define DESC_SIZE (20 * SECTOR_SIZE)    /* 20 sectors of 512 bytes each */
#define BUF_SIZE 4096
#define HEADER_SIZE 512                 /* first sector of 512 bytes */
218

F
Fam Zheng 已提交
219 220 221 222
static void vmdk_free_extents(BlockDriverState *bs)
{
    int i;
    BDRVVmdkState *s = bs->opaque;
F
Fam Zheng 已提交
223
    VmdkExtent *e;
F
Fam Zheng 已提交
224 225

    for (i = 0; i < s->num_extents; i++) {
F
Fam Zheng 已提交
226 227 228 229
        e = &s->extents[i];
        g_free(e->l1_table);
        g_free(e->l2_cache);
        g_free(e->l1_backup_table);
F
Fam Zheng 已提交
230
        g_free(e->type);
K
Kevin Wolf 已提交
231
        if (e->file != bs->file) {
232
            bdrv_unref_child(bs, e->file);
F
Fam Zheng 已提交
233
        }
F
Fam Zheng 已提交
234
    }
235
    g_free(s->extents);
F
Fam Zheng 已提交
236 237
}

238 239 240 241 242 243 244 245
static void vmdk_free_last_extent(BlockDriverState *bs)
{
    BDRVVmdkState *s = bs->opaque;

    if (s->num_extents == 0) {
        return;
    }
    s->num_extents--;
246
    s->extents = g_renew(VmdkExtent, s->extents, s->num_extents);
247 248
}

249 250
/* Return -ve errno, or 0 on success and write CID into *pcid. */
static int vmdk_read_cid(BlockDriverState *bs, int parent, uint32_t *pcid)
B
bellard 已提交
251
{
252
    char *desc;
253
    uint32_t cid;
254
    const char *p_name, *cid_str;
255
    size_t cid_str_size;
256
    BDRVVmdkState *s = bs->opaque;
K
Kevin Wolf 已提交
257
    int ret;
258

259
    desc = g_malloc0(DESC_SIZE);
260
    ret = bdrv_pread(bs->file, s->desc_offset, desc, DESC_SIZE);
K
Kevin Wolf 已提交
261
    if (ret < 0) {
262
        goto out;
263
    }
264 265 266 267 268 269 270 271 272

    if (parent) {
        cid_str = "parentCID";
        cid_str_size = sizeof("parentCID");
    } else {
        cid_str = "CID";
        cid_str_size = sizeof("CID");
    }

K
Kevin Wolf 已提交
273
    desc[DESC_SIZE - 1] = '\0';
F
Fam Zheng 已提交
274
    p_name = strstr(desc, cid_str);
275 276 277
    if (p_name == NULL) {
        ret = -EINVAL;
        goto out;
278
    }
279 280 281 282 283 284 285
    p_name += cid_str_size;
    if (sscanf(p_name, "%" SCNx32, &cid) != 1) {
        ret = -EINVAL;
        goto out;
    }
    *pcid = cid;
    ret = 0;
286

287
out:
288
    g_free(desc);
289
    return ret;
290 291 292 293
}

static int vmdk_write_cid(BlockDriverState *bs, uint32_t cid)
{
294
    char *desc, *tmp_desc;
295
    char *p_name, *tmp_str;
296
    BDRVVmdkState *s = bs->opaque;
297
    int ret = 0;
298

299 300
    desc = g_malloc0(DESC_SIZE);
    tmp_desc = g_malloc0(DESC_SIZE);
301
    ret = bdrv_pread(bs->file, s->desc_offset, desc, DESC_SIZE);
K
Kevin Wolf 已提交
302
    if (ret < 0) {
303
        goto out;
304
    }
305

K
Kevin Wolf 已提交
306
    desc[DESC_SIZE - 1] = '\0';
F
Fam Zheng 已提交
307
    tmp_str = strstr(desc, "parentCID");
K
Kevin Wolf 已提交
308
    if (tmp_str == NULL) {
309 310
        ret = -EINVAL;
        goto out;
K
Kevin Wolf 已提交
311 312
    }

313
    pstrcpy(tmp_desc, DESC_SIZE, tmp_str);
F
Fam Zheng 已提交
314 315
    p_name = strstr(desc, "CID");
    if (p_name != NULL) {
316
        p_name += sizeof("CID");
317 318
        snprintf(p_name, DESC_SIZE - (p_name - desc), "%" PRIx32 "\n", cid);
        pstrcat(desc, DESC_SIZE, tmp_desc);
319 320
    }

321
    ret = bdrv_pwrite_sync(bs->file, s->desc_offset, desc, DESC_SIZE);
K
Kevin Wolf 已提交
322

323 324 325 326
out:
    g_free(desc);
    g_free(tmp_desc);
    return ret;
327 328 329 330 331 332 333
}

static int vmdk_is_cid_valid(BlockDriverState *bs)
{
    BDRVVmdkState *s = bs->opaque;
    uint32_t cur_pcid;

334 335 336
    if (!s->cid_checked && bs->backing) {
        BlockDriverState *p_bs = bs->backing->bs;

337 338 339 340 341 342
        if (strcmp(p_bs->drv->format_name, "vmdk")) {
            /* Backing file is not in vmdk format, so it does not have
             * a CID, which makes the overlay's parent CID invalid */
            return 0;
        }

343 344 345 346
        if (vmdk_read_cid(p_bs, 0, &cur_pcid) != 0) {
            /* read failure: report as not valid */
            return 0;
        }
F
Fam Zheng 已提交
347 348
        if (s->parent_cid != cur_pcid) {
            /* CID not valid */
349
            return 0;
F
Fam Zheng 已提交
350
        }
351
    }
352
    s->cid_checked = true;
F
Fam Zheng 已提交
353
    /* CID valid */
354 355 356
    return 1;
}

K
Kevin Wolf 已提交
357
/* We have nothing to do for VMDK reopen, stubs just return success */
J
Jeff Cody 已提交
358 359 360 361 362
static int vmdk_reopen_prepare(BDRVReopenState *state,
                               BlockReopenQueue *queue, Error **errp)
{
    assert(state != NULL);
    assert(state->bs != NULL);
K
Kevin Wolf 已提交
363
    return 0;
J
Jeff Cody 已提交
364 365
}

366
static int vmdk_parent_open(BlockDriverState *bs)
367
{
368
    char *p_name;
369
    char *desc;
370
    BDRVVmdkState *s = bs->opaque;
371
    int ret;
372

373
    desc = g_malloc0(DESC_SIZE + 1);
374
    ret = bdrv_pread(bs->file, s->desc_offset, desc, DESC_SIZE);
375
    if (ret < 0) {
376
        goto out;
377
    }
378
    ret = 0;
379

F
Fam Zheng 已提交
380 381
    p_name = strstr(desc, "parentFileNameHint");
    if (p_name != NULL) {
382 383 384
        char *end_name;

        p_name += sizeof("parentFileNameHint") + 1;
F
Fam Zheng 已提交
385 386
        end_name = strchr(p_name, '\"');
        if (end_name == NULL) {
387 388
            ret = -EINVAL;
            goto out;
F
Fam Zheng 已提交
389
        }
M
Max Reitz 已提交
390
        if ((end_name - p_name) > sizeof(bs->auto_backing_file) - 1) {
391 392
            ret = -EINVAL;
            goto out;
F
Fam Zheng 已提交
393
        }
394

M
Max Reitz 已提交
395 396 397
        pstrcpy(bs->auto_backing_file, end_name - p_name + 1, p_name);
        pstrcpy(bs->backing_file, sizeof(bs->backing_file),
                bs->auto_backing_file);
398
    }
399

400 401 402
out:
    g_free(desc);
    return ret;
403 404
}

F
Fam Zheng 已提交
405 406
/* Create and append extent to the extent array. Return the added VmdkExtent
 * address. return NULL if allocation failed. */
407
static int vmdk_add_extent(BlockDriverState *bs,
408
                           BdrvChild *file, bool flat, int64_t sectors,
F
Fam Zheng 已提交
409 410
                           int64_t l1_offset, int64_t l1_backup_offset,
                           uint32_t l1_size,
411
                           int l2_size, uint64_t cluster_sectors,
F
Fam Zheng 已提交
412 413
                           VmdkExtent **new_extent,
                           Error **errp)
F
Fam Zheng 已提交
414 415 416
{
    VmdkExtent *extent;
    BDRVVmdkState *s = bs->opaque;
417
    int64_t nb_sectors;
F
Fam Zheng 已提交
418

419 420
    if (cluster_sectors > 0x200000) {
        /* 0x200000 * 512Bytes = 1GB for one cluster is unrealistic */
F
Fam Zheng 已提交
421 422
        error_setg(errp, "Invalid granularity, image may be corrupt");
        return -EFBIG;
423
    }
424 425 426 427 428
    if (l1_size > 512 * 1024 * 1024) {
        /* Although with big capacity and small l1_entry_sectors, we can get a
         * big l1_size, we don't want unbounded value to allocate the table.
         * Limit it to 512M, which is 16PB for default cluster and L2 table
         * size */
F
Fam Zheng 已提交
429
        error_setg(errp, "L1 size too big");
430 431
        return -EFBIG;
    }
432

433
    nb_sectors = bdrv_nb_sectors(file->bs);
434 435
    if (nb_sectors < 0) {
        return nb_sectors;
F
Fam Zheng 已提交
436 437
    }

438
    s->extents = g_renew(VmdkExtent, s->extents, s->num_extents + 1);
F
Fam Zheng 已提交
439 440 441 442 443 444 445 446 447 448 449 450
    extent = &s->extents[s->num_extents];
    s->num_extents++;

    memset(extent, 0, sizeof(VmdkExtent));
    extent->file = file;
    extent->flat = flat;
    extent->sectors = sectors;
    extent->l1_table_offset = l1_offset;
    extent->l1_backup_table_offset = l1_backup_offset;
    extent->l1_size = l1_size;
    extent->l1_entry_sectors = l2_size * cluster_sectors;
    extent->l2_size = l2_size;
451
    extent->cluster_sectors = flat ? sectors : cluster_sectors;
452
    extent->next_cluster_sector = ROUND_UP(nb_sectors, cluster_sectors);
F
Fam Zheng 已提交
453 454 455 456 457 458 459

    if (s->num_extents > 1) {
        extent->end_sector = (*(extent - 1)).end_sector + extent->sectors;
    } else {
        extent->end_sector = extent->sectors;
    }
    bs->total_sectors = extent->end_sector;
460 461 462 463
    if (new_extent) {
        *new_extent = extent;
    }
    return 0;
F
Fam Zheng 已提交
464 465
}

F
Fam Zheng 已提交
466 467
static int vmdk_init_tables(BlockDriverState *bs, VmdkExtent *extent,
                            Error **errp)
468
{
469
    int ret;
470 471
    size_t l1_size;
    int i;
472

B
bellard 已提交
473
    /* read the L1 table */
F
Fam Zheng 已提交
474
    l1_size = extent->l1_size * sizeof(uint32_t);
475 476 477 478 479
    extent->l1_table = g_try_malloc(l1_size);
    if (l1_size && extent->l1_table == NULL) {
        return -ENOMEM;
    }

480
    ret = bdrv_pread(extent->file,
F
Fam Zheng 已提交
481 482 483
                     extent->l1_table_offset,
                     extent->l1_table,
                     l1_size);
484
    if (ret < 0) {
485
        bdrv_refresh_filename(extent->file->bs);
F
Fam Zheng 已提交
486 487
        error_setg_errno(errp, -ret,
                         "Could not read l1 table from extent '%s'",
488
                         extent->file->bs->filename);
489
        goto fail_l1;
F
Fam Zheng 已提交
490 491 492
    }
    for (i = 0; i < extent->l1_size; i++) {
        le32_to_cpus(&extent->l1_table[i]);
B
bellard 已提交
493 494
    }

F
Fam Zheng 已提交
495
    if (extent->l1_backup_table_offset) {
496 497 498 499 500
        extent->l1_backup_table = g_try_malloc(l1_size);
        if (l1_size && extent->l1_backup_table == NULL) {
            ret = -ENOMEM;
            goto fail_l1;
        }
501
        ret = bdrv_pread(extent->file,
F
Fam Zheng 已提交
502 503 504
                         extent->l1_backup_table_offset,
                         extent->l1_backup_table,
                         l1_size);
505
        if (ret < 0) {
506
            bdrv_refresh_filename(extent->file->bs);
F
Fam Zheng 已提交
507 508
            error_setg_errno(errp, -ret,
                             "Could not read l1 backup table from extent '%s'",
509
                             extent->file->bs->filename);
510
            goto fail_l1b;
F
Fam Zheng 已提交
511 512 513
        }
        for (i = 0; i < extent->l1_size; i++) {
            le32_to_cpus(&extent->l1_backup_table[i]);
514 515 516
        }
    }

F
Fam Zheng 已提交
517
    extent->l2_cache =
518
        g_new(uint32_t, extent->l2_size * L2_CACHE_SIZE);
B
bellard 已提交
519
    return 0;
520
 fail_l1b:
521
    g_free(extent->l1_backup_table);
522
 fail_l1:
523
    g_free(extent->l1_table);
524 525 526
    return ret;
}

F
Fam Zheng 已提交
527
static int vmdk_open_vmfs_sparse(BlockDriverState *bs,
528
                                 BdrvChild *file,
F
Fam Zheng 已提交
529
                                 int flags, Error **errp)
530 531 532 533 534 535
{
    int ret;
    uint32_t magic;
    VMDK3Header header;
    VmdkExtent *extent;

536
    ret = bdrv_pread(file, sizeof(magic), &header, sizeof(header));
537
    if (ret < 0) {
538
        bdrv_refresh_filename(file->bs);
F
Fam Zheng 已提交
539 540
        error_setg_errno(errp, -ret,
                         "Could not read header from file '%s'",
541
                         file->bs->filename);
542
        return ret;
543
    }
544 545
    ret = vmdk_add_extent(bs, file, false,
                          le32_to_cpu(header.disk_sectors),
546
                          (int64_t)le32_to_cpu(header.l1dir_offset) << 9,
547 548 549 550
                          0,
                          le32_to_cpu(header.l1dir_size),
                          4096,
                          le32_to_cpu(header.granularity),
F
Fam Zheng 已提交
551 552
                          &extent,
                          errp);
553 554 555
    if (ret < 0) {
        return ret;
    }
F
Fam Zheng 已提交
556
    ret = vmdk_init_tables(bs, extent, errp);
557
    if (ret) {
558 559
        /* free extent allocated by vmdk_add_extent */
        vmdk_free_last_extent(bs);
560 561 562 563
    }
    return ret;
}

564
static int vmdk_open_desc_file(BlockDriverState *bs, int flags, char *buf,
K
Kevin Wolf 已提交
565
                               QDict *options, Error **errp);
F
Fam Zheng 已提交
566

567
static char *vmdk_read_desc(BdrvChild *file, uint64_t desc_offset, Error **errp)
P
Paolo Bonzini 已提交
568 569 570 571 572
{
    int64_t size;
    char *buf;
    int ret;

573
    size = bdrv_getlength(file->bs);
P
Paolo Bonzini 已提交
574 575 576 577 578
    if (size < 0) {
        error_setg_errno(errp, -size, "Could not access file");
        return NULL;
    }

579 580 581 582 583 584 585 586
    if (size < 4) {
        /* Both descriptor file and sparse image must be much larger than 4
         * bytes, also callers of vmdk_read_desc want to compare the first 4
         * bytes with VMDK4_MAGIC, let's error out if less is read. */
        error_setg(errp, "File is too small, not a valid image");
        return NULL;
    }

F
Fam Zheng 已提交
587 588
    size = MIN(size, (1 << 20) - 1);  /* avoid unbounded allocation */
    buf = g_malloc(size + 1);
P
Paolo Bonzini 已提交
589 590 591 592 593 594 595

    ret = bdrv_pread(file, desc_offset, buf, size);
    if (ret < 0) {
        error_setg_errno(errp, -ret, "Could not read from file");
        g_free(buf);
        return NULL;
    }
F
Fam Zheng 已提交
596
    buf[ret] = 0;
P
Paolo Bonzini 已提交
597 598 599 600

    return buf;
}

601
static int vmdk_open_vmdk4(BlockDriverState *bs,
602
                           BdrvChild *file,
K
Kevin Wolf 已提交
603
                           int flags, QDict *options, Error **errp)
604 605 606 607 608 609
{
    int ret;
    uint32_t magic;
    uint32_t l1_size, l1_entry_sectors;
    VMDK4Header header;
    VmdkExtent *extent;
F
Fam Zheng 已提交
610
    BDRVVmdkState *s = bs->opaque;
611
    int64_t l1_backup_offset = 0;
612
    bool compressed;
613

614
    ret = bdrv_pread(file, sizeof(magic), &header, sizeof(header));
615
    if (ret < 0) {
616
        bdrv_refresh_filename(file->bs);
F
Fam Zheng 已提交
617 618
        error_setg_errno(errp, -ret,
                         "Could not read header from file '%s'",
619
                         file->bs->filename);
P
Paolo Bonzini 已提交
620
        return -EINVAL;
621
    }
622
    if (header.capacity == 0) {
623
        uint64_t desc_offset = le64_to_cpu(header.desc_offset);
624
        if (desc_offset) {
625
            char *buf = vmdk_read_desc(file, desc_offset << 9, errp);
626 627 628
            if (!buf) {
                return -EINVAL;
            }
K
Kevin Wolf 已提交
629
            ret = vmdk_open_desc_file(bs, flags, buf, options, errp);
630 631
            g_free(buf);
            return ret;
632
        }
F
Fam Zheng 已提交
633
    }
634

F
Fam Zheng 已提交
635 636 637 638
    if (!s->create_type) {
        s->create_type = g_strdup("monolithicSparse");
    }

639 640 641 642 643 644 645 646 647 648 649 650 651 652 653 654 655 656 657 658 659 660 661 662 663 664
    if (le64_to_cpu(header.gd_offset) == VMDK4_GD_AT_END) {
        /*
         * The footer takes precedence over the header, so read it in. The
         * footer starts at offset -1024 from the end: One sector for the
         * footer, and another one for the end-of-stream marker.
         */
        struct {
            struct {
                uint64_t val;
                uint32_t size;
                uint32_t type;
                uint8_t pad[512 - 16];
            } QEMU_PACKED footer_marker;

            uint32_t magic;
            VMDK4Header header;
            uint8_t pad[512 - 4 - sizeof(VMDK4Header)];

            struct {
                uint64_t val;
                uint32_t size;
                uint32_t type;
                uint8_t pad[512 - 16];
            } QEMU_PACKED eos_marker;
        } QEMU_PACKED footer;

665
        ret = bdrv_pread(file,
K
Kevin Wolf 已提交
666
            bs->file->bs->total_sectors * 512 - 1536,
667 668
            &footer, sizeof(footer));
        if (ret < 0) {
669
            error_setg_errno(errp, -ret, "Failed to read footer");
670 671 672 673 674 675 676 677 678 679 680
            return ret;
        }

        /* Some sanity checks for the footer */
        if (be32_to_cpu(footer.magic) != VMDK4_MAGIC ||
            le32_to_cpu(footer.footer_marker.size) != 0  ||
            le32_to_cpu(footer.footer_marker.type) != MARKER_FOOTER ||
            le64_to_cpu(footer.eos_marker.val) != 0  ||
            le32_to_cpu(footer.eos_marker.size) != 0  ||
            le32_to_cpu(footer.eos_marker.type) != MARKER_END_OF_STREAM)
        {
681
            error_setg(errp, "Invalid footer");
682 683 684 685 686 687
            return -EINVAL;
        }

        header = footer.header;
    }

688 689
    compressed =
        le16_to_cpu(header.compressAlgorithm) == VMDK4_COMPRESSION_DEFLATE;
690
    if (le32_to_cpu(header.version) > 3) {
691 692
        error_setg(errp, "Unsupported VMDK version %" PRIu32,
                   le32_to_cpu(header.version));
693
        return -ENOTSUP;
694 695
    } else if (le32_to_cpu(header.version) == 3 && (flags & BDRV_O_RDWR) &&
               !compressed) {
696 697 698 699 700 701
        /* VMware KB 2064959 explains that version 3 added support for
         * persistent changed block tracking (CBT), and backup software can
         * read it as version=1 if it doesn't care about the changed area
         * information. So we are safe to enable read only. */
        error_setg(errp, "VMDK version 3 must be read only");
        return -EINVAL;
702 703
    }

704
    if (le32_to_cpu(header.num_gtes_per_gt) > 512) {
P
Paolo Bonzini 已提交
705
        error_setg(errp, "L2 table size too big");
706 707 708
        return -EINVAL;
    }

709
    l1_entry_sectors = le32_to_cpu(header.num_gtes_per_gt)
710
                        * le64_to_cpu(header.granularity);
711
    if (l1_entry_sectors == 0) {
712
        error_setg(errp, "L1 entry size is invalid");
713 714
        return -EINVAL;
    }
715 716
    l1_size = (le64_to_cpu(header.capacity) + l1_entry_sectors - 1)
                / l1_entry_sectors;
717 718 719
    if (le32_to_cpu(header.flags) & VMDK4_FLAG_RGD) {
        l1_backup_offset = le64_to_cpu(header.rgd_offset) << 9;
    }
720
    if (bdrv_nb_sectors(file->bs) < le64_to_cpu(header.grain_offset)) {
721 722 723
        error_setg(errp, "File truncated, expecting at least %" PRId64 " bytes",
                   (int64_t)(le64_to_cpu(header.grain_offset)
                             * BDRV_SECTOR_SIZE));
724 725 726
        return -EINVAL;
    }

727
    ret = vmdk_add_extent(bs, file, false,
728 729
                          le64_to_cpu(header.capacity),
                          le64_to_cpu(header.gd_offset) << 9,
730
                          l1_backup_offset,
731
                          l1_size,
732
                          le32_to_cpu(header.num_gtes_per_gt),
733
                          le64_to_cpu(header.granularity),
F
Fam Zheng 已提交
734 735
                          &extent,
                          errp);
736 737 738
    if (ret < 0) {
        return ret;
    }
F
Fam Zheng 已提交
739 740
    extent->compressed =
        le16_to_cpu(header.compressAlgorithm) == VMDK4_COMPRESSION_DEFLATE;
741 742 743 744
    if (extent->compressed) {
        g_free(s->create_type);
        s->create_type = g_strdup("streamOptimized");
    }
F
Fam Zheng 已提交
745
    extent->has_marker = le32_to_cpu(header.flags) & VMDK4_FLAG_MARKER;
746 747
    extent->version = le32_to_cpu(header.version);
    extent->has_zero_grain = le32_to_cpu(header.flags) & VMDK4_FLAG_ZERO_GRAIN;
F
Fam Zheng 已提交
748
    ret = vmdk_init_tables(bs, extent, errp);
749
    if (ret) {
750 751
        /* free extent allocated by vmdk_add_extent */
        vmdk_free_last_extent(bs);
752 753 754 755
    }
    return ret;
}

756 757 758 759 760 761 762 763 764
/* find an option value out of descriptor file */
static int vmdk_parse_description(const char *desc, const char *opt_name,
        char *buf, int buf_size)
{
    char *opt_pos, *opt_end;
    const char *end = desc + strlen(desc);

    opt_pos = strstr(desc, opt_name);
    if (!opt_pos) {
F
Fam Zheng 已提交
765
        return VMDK_ERROR;
766 767 768 769
    }
    /* Skip "=\"" following opt_name */
    opt_pos += strlen(opt_name) + 2;
    if (opt_pos >= end) {
F
Fam Zheng 已提交
770
        return VMDK_ERROR;
771 772 773 774 775 776
    }
    opt_end = opt_pos;
    while (opt_end < end && *opt_end != '"') {
        opt_end++;
    }
    if (opt_end == end || buf_size < opt_end - opt_pos + 1) {
F
Fam Zheng 已提交
777
        return VMDK_ERROR;
778 779
    }
    pstrcpy(buf, opt_end - opt_pos + 1, opt_pos);
F
Fam Zheng 已提交
780
    return VMDK_OK;
781 782
}

783
/* Open an extent file and append to bs array */
784
static int vmdk_open_sparse(BlockDriverState *bs, BdrvChild *file, int flags,
K
Kevin Wolf 已提交
785
                            char *buf, QDict *options, Error **errp)
786 787 788
{
    uint32_t magic;

789
    magic = ldl_be_p(buf);
790 791
    switch (magic) {
        case VMDK3_MAGIC:
F
Fam Zheng 已提交
792
            return vmdk_open_vmfs_sparse(bs, file, flags, errp);
793 794
            break;
        case VMDK4_MAGIC:
K
Kevin Wolf 已提交
795
            return vmdk_open_vmdk4(bs, file, flags, options, errp);
796 797
            break;
        default:
P
Paolo Bonzini 已提交
798 799
            error_setg(errp, "Image not in VMDK format");
            return -EINVAL;
800 801 802 803
            break;
    }
}

804 805 806 807 808 809 810 811 812 813 814
static const char *next_line(const char *s)
{
    while (*s) {
        if (*s == '\n') {
            return s + 1;
        }
        s++;
    }
    return s;
}

815
static int vmdk_parse_extents(const char *desc, BlockDriverState *bs,
K
Kevin Wolf 已提交
816 817
                              const char *desc_file_path, QDict *options,
                              Error **errp)
818 819
{
    int ret;
820
    int matches;
821 822 823
    char access[11];
    char type[11];
    char fname[512];
824
    const char *p, *np;
825 826
    int64_t sectors = 0;
    int64_t flat_offset;
827
    char *extent_path;
828
    BdrvChild *extent_file;
F
Fam Zheng 已提交
829 830
    BDRVVmdkState *s = bs->opaque;
    VmdkExtent *extent;
K
Kevin Wolf 已提交
831
    char extent_opt_prefix[32];
832
    Error *local_err = NULL;
833

834
    for (p = desc; *p; p = next_line(p)) {
835 836
        /* parse extent line in one of below formats:
         *
837 838
         * RW [size in sectors] FLAT "file-name.vmdk" OFFSET
         * RW [size in sectors] SPARSE "file-name.vmdk"
839 840
         * RW [size in sectors] VMFS "file-name.vmdk"
         * RW [size in sectors] VMFSSPARSE "file-name.vmdk"
841 842
         */
        flat_offset = -1;
843 844 845
        matches = sscanf(p, "%10s %" SCNd64 " %10s \"%511[^\n\r\"]\" %" SCNd64,
                         access, &sectors, type, fname, &flat_offset);
        if (matches < 4 || strcmp(access, "RW")) {
846
            continue;
847
        } else if (!strcmp(type, "FLAT")) {
848
            if (matches != 5 || flat_offset < 0) {
849
                goto invalid;
850
            }
F
Fam Zheng 已提交
851
        } else if (!strcmp(type, "VMFS")) {
852
            if (matches == 4) {
853 854
                flat_offset = 0;
            } else {
855
                goto invalid;
856
            }
857
        } else if (matches != 4) {
858
            goto invalid;
859 860 861
        }

        if (sectors <= 0 ||
F
Fam Zheng 已提交
862
            (strcmp(type, "FLAT") && strcmp(type, "SPARSE") &&
P
Paolo Bonzini 已提交
863
             strcmp(type, "VMFS") && strcmp(type, "VMFSSPARSE")) ||
864
            (strcmp(access, "RW"))) {
865
            continue;
866 867
        }

868 869 870
        if (!path_is_absolute(fname) && !path_has_protocol(fname) &&
            !desc_file_path[0])
        {
871
            bdrv_refresh_filename(bs->file->bs);
872
            error_setg(errp, "Cannot use relative extent paths with VMDK "
K
Kevin Wolf 已提交
873
                       "descriptor file '%s'", bs->file->bs->filename);
874 875 876
            return -EINVAL;
        }

877
        extent_path = path_combine(desc_file_path, fname);
K
Kevin Wolf 已提交
878 879 880 881

        ret = snprintf(extent_opt_prefix, 32, "extents.%d", s->num_extents);
        assert(ret < 32);

882 883
        extent_file = bdrv_open_child(extent_path, options, extent_opt_prefix,
                                      bs, &child_file, false, &local_err);
884
        g_free(extent_path);
885 886 887
        if (local_err) {
            error_propagate(errp, local_err);
            return -EINVAL;
888 889
        }

890
        /* save to extents array */
P
Paolo Bonzini 已提交
891
        if (!strcmp(type, "FLAT") || !strcmp(type, "VMFS")) {
892 893
            /* FLAT extent */

894
            ret = vmdk_add_extent(bs, extent_file, true, sectors,
F
Fam Zheng 已提交
895
                            0, 0, 0, 0, 0, &extent, errp);
896
            if (ret < 0) {
897
                bdrv_unref_child(bs, extent_file);
898 899
                return ret;
            }
F
Fam Zheng 已提交
900
            extent->flat_start_offset = flat_offset << 9;
F
Fam Zheng 已提交
901 902
        } else if (!strcmp(type, "SPARSE") || !strcmp(type, "VMFSSPARSE")) {
            /* SPARSE extent and VMFSSPARSE extent are both "COWD" sparse file*/
903
            char *buf = vmdk_read_desc(extent_file, 0, errp);
904 905 906
            if (!buf) {
                ret = -EINVAL;
            } else {
K
Kevin Wolf 已提交
907 908
                ret = vmdk_open_sparse(bs, extent_file, bs->open_flags, buf,
                                       options, errp);
909
            }
910
            g_free(buf);
911
            if (ret) {
912
                bdrv_unref_child(bs, extent_file);
913 914
                return ret;
            }
F
Fam Zheng 已提交
915
            extent = &s->extents[s->num_extents - 1];
916
        } else {
F
Fam Zheng 已提交
917
            error_setg(errp, "Unsupported extent type '%s'", type);
918
            bdrv_unref_child(bs, extent_file);
919 920
            return -ENOTSUP;
        }
F
Fam Zheng 已提交
921
        extent->type = g_strdup(type);
922 923
    }
    return 0;
924 925 926 927 928 929 930 931 932

invalid:
    np = next_line(p);
    assert(np != p);
    if (np[-1] == '\n') {
        np--;
    }
    error_setg(errp, "Invalid extent line: %.*s", (int)(np - p), p);
    return -EINVAL;
933 934
}

935
static int vmdk_open_desc_file(BlockDriverState *bs, int flags, char *buf,
K
Kevin Wolf 已提交
936
                               QDict *options, Error **errp)
937 938 939 940 941 942
{
    int ret;
    char ct[128];
    BDRVVmdkState *s = bs->opaque;

    if (vmdk_parse_description(buf, "createType", ct, sizeof(ct))) {
P
Paolo Bonzini 已提交
943 944
        error_setg(errp, "invalid VMDK image descriptor");
        ret = -EINVAL;
945
        goto exit;
946
    }
F
Fam Zheng 已提交
947
    if (strcmp(ct, "monolithicFlat") &&
P
Paolo Bonzini 已提交
948
        strcmp(ct, "vmfs") &&
F
Fam Zheng 已提交
949
        strcmp(ct, "vmfsSparse") &&
950
        strcmp(ct, "twoGbMaxExtentSparse") &&
F
Fam Zheng 已提交
951
        strcmp(ct, "twoGbMaxExtentFlat")) {
F
Fam Zheng 已提交
952
        error_setg(errp, "Unsupported image type '%s'", ct);
953 954
        ret = -ENOTSUP;
        goto exit;
955
    }
F
Fam Zheng 已提交
956
    s->create_type = g_strdup(ct);
957
    s->desc_offset = 0;
K
Kevin Wolf 已提交
958 959
    ret = vmdk_parse_extents(buf, bs, bs->file->bs->exact_filename, options,
                             errp);
960 961
exit:
    return ret;
962 963
}

M
Max Reitz 已提交
964 965
static int vmdk_open(BlockDriverState *bs, QDict *options, int flags,
                     Error **errp)
966
{
967
    char *buf;
968 969
    int ret;
    BDRVVmdkState *s = bs->opaque;
970
    uint32_t magic;
971
    Error *local_err = NULL;
972

973 974 975 976 977 978
    bs->file = bdrv_open_child(NULL, options, "file", bs, &child_file,
                               false, errp);
    if (!bs->file) {
        return -EINVAL;
    }

979
    buf = vmdk_read_desc(bs->file, 0, errp);
980 981 982 983
    if (!buf) {
        return -EINVAL;
    }

984 985 986 987
    magic = ldl_be_p(buf);
    switch (magic) {
        case VMDK3_MAGIC:
        case VMDK4_MAGIC:
K
Kevin Wolf 已提交
988
            ret = vmdk_open_sparse(bs, bs->file, flags, buf, options,
989
                                   errp);
990 991 992
            s->desc_offset = 0x200;
            break;
        default:
K
Kevin Wolf 已提交
993
            ret = vmdk_open_desc_file(bs, flags, buf, options, errp);
994
            break;
995
    }
996 997 998 999
    if (ret) {
        goto fail;
    }

P
Paolo Bonzini 已提交
1000 1001 1002 1003 1004
    /* try to open parent images, if exist */
    ret = vmdk_parent_open(bs);
    if (ret) {
        goto fail;
    }
1005 1006 1007 1008 1009 1010 1011 1012
    ret = vmdk_read_cid(bs, 0, &s->cid);
    if (ret) {
        goto fail;
    }
    ret = vmdk_read_cid(bs, 1, &s->parent_cid);
    if (ret) {
        goto fail;
    }
1013
    qemu_co_mutex_init(&s->lock);
K
Kevin Wolf 已提交
1014 1015

    /* Disable migration when VMDK images are used */
1016 1017 1018
    error_setg(&s->migration_blocker, "The vmdk format used by node '%s' "
               "does not support live migration",
               bdrv_get_device_or_node_name(bs));
1019 1020 1021 1022 1023 1024 1025
    ret = migrate_add_blocker(s->migration_blocker, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        error_free(s->migration_blocker);
        goto fail;
    }

1026
    g_free(buf);
K
Kevin Wolf 已提交
1027
    return 0;
P
Paolo Bonzini 已提交
1028 1029

fail:
1030
    g_free(buf);
F
Fam Zheng 已提交
1031 1032
    g_free(s->create_type);
    s->create_type = NULL;
P
Paolo Bonzini 已提交
1033 1034
    vmdk_free_extents(bs);
    return ret;
B
bellard 已提交
1035 1036
}

1037

1038
static void vmdk_refresh_limits(BlockDriverState *bs, Error **errp)
1039 1040 1041 1042 1043 1044
{
    BDRVVmdkState *s = bs->opaque;
    int i;

    for (i = 0; i < s->num_extents; i++) {
        if (!s->extents[i].flat) {
1045 1046 1047
            bs->bl.pwrite_zeroes_alignment =
                MAX(bs->bl.pwrite_zeroes_alignment,
                    s->extents[i].cluster_sectors << BDRV_SECTOR_BITS);
1048 1049 1050 1051
        }
    }
}

F
Fam Zheng 已提交
1052 1053 1054 1055 1056 1057 1058 1059 1060 1061
/**
 * get_whole_cluster
 *
 * Copy backing file's cluster that covers @sector_num, otherwise write zero,
 * to the cluster at @cluster_sector_num.
 *
 * If @skip_start_sector < @skip_end_sector, the relative range
 * [@skip_start_sector, @skip_end_sector) is not copied or written, and leave
 * it for call to write user data in the request.
 */
F
Fam Zheng 已提交
1062
static int get_whole_cluster(BlockDriverState *bs,
F
Fam Zheng 已提交
1063
                             VmdkExtent *extent,
1064 1065 1066 1067
                             uint64_t cluster_offset,
                             uint64_t offset,
                             uint64_t skip_start_bytes,
                             uint64_t skip_end_bytes)
1068
{
1069
    int ret = VMDK_OK;
F
Fam Zheng 已提交
1070 1071 1072 1073 1074
    int64_t cluster_bytes;
    uint8_t *whole_grain;

    /* For COW, align request sector_num to cluster start */
    cluster_bytes = extent->cluster_sectors << BDRV_SECTOR_BITS;
1075
    offset = QEMU_ALIGN_DOWN(offset, cluster_bytes);
F
Fam Zheng 已提交
1076
    whole_grain = qemu_blockalign(bs, cluster_bytes);
1077

1078
    if (!bs->backing) {
1079 1080
        memset(whole_grain, 0, skip_start_bytes);
        memset(whole_grain + skip_end_bytes, 0, cluster_bytes - skip_end_bytes);
F
Fam Zheng 已提交
1081 1082
    }

1083
    assert(skip_end_bytes <= cluster_bytes);
1084 1085
    /* we will be here if it's first write on non-exist grain(cluster).
     * try to read from parent image, if exist */
1086
    if (bs->backing && !vmdk_is_cid_valid(bs)) {
F
Fam Zheng 已提交
1087 1088 1089
        ret = VMDK_ERROR;
        goto exit;
    }
1090

F
Fam Zheng 已提交
1091
    /* Read backing data before skip range */
1092
    if (skip_start_bytes > 0) {
1093
        if (bs->backing) {
M
Max Reitz 已提交
1094 1095
            /* qcow2 emits this on bs->file instead of bs->backing */
            BLKDBG_EVENT(extent->file, BLKDBG_COW_READ);
1096
            ret = bdrv_pread(bs->backing, offset, whole_grain,
1097
                             skip_start_bytes);
F
Fam Zheng 已提交
1098 1099 1100 1101 1102
            if (ret < 0) {
                ret = VMDK_ERROR;
                goto exit;
            }
        }
M
Max Reitz 已提交
1103
        BLKDBG_EVENT(extent->file, BLKDBG_COW_WRITE);
1104
        ret = bdrv_pwrite(extent->file, cluster_offset, whole_grain,
1105
                          skip_start_bytes);
K
Kevin Wolf 已提交
1106
        if (ret < 0) {
1107 1108
            ret = VMDK_ERROR;
            goto exit;
K
Kevin Wolf 已提交
1109
        }
F
Fam Zheng 已提交
1110 1111
    }
    /* Read backing data after skip range */
1112
    if (skip_end_bytes < cluster_bytes) {
1113
        if (bs->backing) {
M
Max Reitz 已提交
1114 1115
            /* qcow2 emits this on bs->file instead of bs->backing */
            BLKDBG_EVENT(extent->file, BLKDBG_COW_READ);
1116
            ret = bdrv_pread(bs->backing, offset + skip_end_bytes,
1117 1118
                             whole_grain + skip_end_bytes,
                             cluster_bytes - skip_end_bytes);
F
Fam Zheng 已提交
1119 1120 1121 1122 1123
            if (ret < 0) {
                ret = VMDK_ERROR;
                goto exit;
            }
        }
M
Max Reitz 已提交
1124
        BLKDBG_EVENT(extent->file, BLKDBG_COW_WRITE);
1125
        ret = bdrv_pwrite(extent->file, cluster_offset + skip_end_bytes,
1126 1127
                          whole_grain + skip_end_bytes,
                          cluster_bytes - skip_end_bytes);
K
Kevin Wolf 已提交
1128
        if (ret < 0) {
1129 1130
            ret = VMDK_ERROR;
            goto exit;
1131 1132
        }
    }
F
Fam Zheng 已提交
1133

1134
    ret = VMDK_OK;
1135 1136 1137
exit:
    qemu_vfree(whole_grain);
    return ret;
1138 1139
}

F
Fam Zheng 已提交
1140 1141
static int vmdk_L2update(VmdkExtent *extent, VmdkMetaData *m_data,
                         uint32_t offset)
1142
{
F
Fam Zheng 已提交
1143
    offset = cpu_to_le32(offset);
1144
    /* update L2 table */
M
Max Reitz 已提交
1145
    BLKDBG_EVENT(extent->file, BLKDBG_L2_UPDATE);
1146
    if (bdrv_pwrite_sync(extent->file,
F
Fam Zheng 已提交
1147
                ((int64_t)m_data->l2_offset * 512)
F
Fam Zheng 已提交
1148
                    + (m_data->l2_index * sizeof(offset)),
1149
                &offset, sizeof(offset)) < 0) {
F
Fam Zheng 已提交
1150
        return VMDK_ERROR;
F
Fam Zheng 已提交
1151
    }
1152
    /* update backup L2 table */
F
Fam Zheng 已提交
1153 1154
    if (extent->l1_backup_table_offset != 0) {
        m_data->l2_offset = extent->l1_backup_table[m_data->l1_index];
1155
        if (bdrv_pwrite_sync(extent->file,
F
Fam Zheng 已提交
1156
                    ((int64_t)m_data->l2_offset * 512)
F
Fam Zheng 已提交
1157
                        + (m_data->l2_index * sizeof(offset)),
1158
                    &offset, sizeof(offset)) < 0) {
F
Fam Zheng 已提交
1159
            return VMDK_ERROR;
F
Fam Zheng 已提交
1160
        }
1161
    }
F
Fam Zheng 已提交
1162 1163 1164
    if (m_data->l2_cache_entry) {
        *m_data->l2_cache_entry = offset;
    }
1165

F
Fam Zheng 已提交
1166
    return VMDK_OK;
1167 1168
}

F
Fam Zheng 已提交
1169 1170 1171 1172 1173 1174 1175 1176 1177 1178 1179 1180 1181 1182 1183 1184 1185 1186 1187 1188
/**
 * get_cluster_offset
 *
 * Look up cluster offset in extent file by sector number, and store in
 * @cluster_offset.
 *
 * For flat extents, the start offset as parsed from the description file is
 * returned.
 *
 * For sparse extents, look up in L1, L2 table. If allocate is true, return an
 * offset for a new cluster and update L2 cache. If there is a backing file,
 * COW is done before returning; otherwise, zeroes are written to the allocated
 * cluster. Both COW and zero writing skips the sector range
 * [@skip_start_sector, @skip_end_sector) passed in by caller, because caller
 * has new data to write there.
 *
 * Returns: VMDK_OK if cluster exists and mapped in the image.
 *          VMDK_UNALLOC if cluster is not mapped and @allocate is false.
 *          VMDK_ERROR if failed.
 */
1189
static int get_cluster_offset(BlockDriverState *bs,
F
Fam Zheng 已提交
1190 1191 1192 1193 1194
                              VmdkExtent *extent,
                              VmdkMetaData *m_data,
                              uint64_t offset,
                              bool allocate,
                              uint64_t *cluster_offset,
1195 1196
                              uint64_t skip_start_bytes,
                              uint64_t skip_end_bytes)
B
bellard 已提交
1197 1198 1199
{
    unsigned int l1_index, l2_offset, l2_index;
    int min_index, i, j;
1200
    uint32_t min_count, *l2_table;
1201
    bool zeroed = false;
F
Fam Zheng 已提交
1202
    int64_t ret;
1203
    int64_t cluster_sector;
1204

F
Fam Zheng 已提交
1205
    if (m_data) {
1206
        m_data->valid = 0;
F
Fam Zheng 已提交
1207
    }
1208
    if (extent->flat) {
1209
        *cluster_offset = extent->flat_start_offset;
F
Fam Zheng 已提交
1210
        return VMDK_OK;
1211
    }
1212

F
Fam Zheng 已提交
1213
    offset -= (extent->end_sector - extent->sectors) * SECTOR_SIZE;
F
Fam Zheng 已提交
1214 1215
    l1_index = (offset >> 9) / extent->l1_entry_sectors;
    if (l1_index >= extent->l1_size) {
F
Fam Zheng 已提交
1216
        return VMDK_ERROR;
F
Fam Zheng 已提交
1217 1218 1219
    }
    l2_offset = extent->l1_table[l1_index];
    if (!l2_offset) {
F
Fam Zheng 已提交
1220
        return VMDK_UNALLOC;
F
Fam Zheng 已提交
1221
    }
1222
    for (i = 0; i < L2_CACHE_SIZE; i++) {
F
Fam Zheng 已提交
1223
        if (l2_offset == extent->l2_cache_offsets[i]) {
B
bellard 已提交
1224
            /* increment the hit count */
F
Fam Zheng 已提交
1225
            if (++extent->l2_cache_counts[i] == 0xffffffff) {
1226
                for (j = 0; j < L2_CACHE_SIZE; j++) {
F
Fam Zheng 已提交
1227
                    extent->l2_cache_counts[j] >>= 1;
B
bellard 已提交
1228 1229
                }
            }
F
Fam Zheng 已提交
1230
            l2_table = extent->l2_cache + (i * extent->l2_size);
B
bellard 已提交
1231 1232 1233 1234 1235 1236
            goto found;
        }
    }
    /* not found: load a new entry in the least used one */
    min_index = 0;
    min_count = 0xffffffff;
1237
    for (i = 0; i < L2_CACHE_SIZE; i++) {
F
Fam Zheng 已提交
1238 1239
        if (extent->l2_cache_counts[i] < min_count) {
            min_count = extent->l2_cache_counts[i];
B
bellard 已提交
1240 1241 1242
            min_index = i;
        }
    }
F
Fam Zheng 已提交
1243
    l2_table = extent->l2_cache + (min_index * extent->l2_size);
M
Max Reitz 已提交
1244
    BLKDBG_EVENT(extent->file, BLKDBG_L2_LOAD);
1245
    if (bdrv_pread(extent->file,
F
Fam Zheng 已提交
1246 1247 1248 1249
                (int64_t)l2_offset * 512,
                l2_table,
                extent->l2_size * sizeof(uint32_t)
            ) != extent->l2_size * sizeof(uint32_t)) {
F
Fam Zheng 已提交
1250
        return VMDK_ERROR;
F
Fam Zheng 已提交
1251
    }
1252

F
Fam Zheng 已提交
1253 1254
    extent->l2_cache_offsets[min_index] = l2_offset;
    extent->l2_cache_counts[min_index] = 1;
B
bellard 已提交
1255
 found:
F
Fam Zheng 已提交
1256
    l2_index = ((offset >> 9) / extent->cluster_sectors) % extent->l2_size;
F
Fam Zheng 已提交
1257
    cluster_sector = le32_to_cpu(l2_table[l2_index]);
1258

F
Fam Zheng 已提交
1259
    if (extent->has_zero_grain && cluster_sector == VMDK_GTE_ZEROED) {
1260 1261 1262
        zeroed = true;
    }

F
Fam Zheng 已提交
1263
    if (!cluster_sector || zeroed) {
1264
        if (!allocate) {
1265
            return zeroed ? VMDK_ZEROED : VMDK_UNALLOC;
1266
        }
1267

1268 1269 1270 1271
        if (extent->next_cluster_sector >= VMDK_EXTENT_MAX_SECTORS) {
            return VMDK_ERROR;
        }

F
Fam Zheng 已提交
1272 1273
        cluster_sector = extent->next_cluster_sector;
        extent->next_cluster_sector += extent->cluster_sectors;
1274 1275 1276 1277 1278 1279

        /* First of all we write grain itself, to avoid race condition
         * that may to corrupt the image.
         * This problem may occur because of insufficient space on host disk
         * or inappropriate VM shutdown.
         */
1280 1281
        ret = get_whole_cluster(bs, extent, cluster_sector * BDRV_SECTOR_SIZE,
                                offset, skip_start_bytes, skip_end_bytes);
F
Fam Zheng 已提交
1282 1283
        if (ret) {
            return ret;
1284
        }
1285 1286 1287 1288 1289 1290 1291
        if (m_data) {
            m_data->valid = 1;
            m_data->l1_index = l1_index;
            m_data->l2_index = l2_index;
            m_data->l2_offset = l2_offset;
            m_data->l2_cache_entry = &l2_table[l2_index];
        }
1292
    }
F
Fam Zheng 已提交
1293
    *cluster_offset = cluster_sector << BDRV_SECTOR_BITS;
F
Fam Zheng 已提交
1294
    return VMDK_OK;
B
bellard 已提交
1295 1296
}

F
Fam Zheng 已提交
1297 1298 1299 1300 1301 1302 1303 1304 1305 1306 1307 1308 1309 1310 1311 1312 1313
static VmdkExtent *find_extent(BDRVVmdkState *s,
                                int64_t sector_num, VmdkExtent *start_hint)
{
    VmdkExtent *extent = start_hint;

    if (!extent) {
        extent = &s->extents[0];
    }
    while (extent < &s->extents[s->num_extents]) {
        if (sector_num < extent->end_sector) {
            return extent;
        }
        extent++;
    }
    return NULL;
}

1314 1315 1316
static inline uint64_t vmdk_find_offset_in_cluster(VmdkExtent *extent,
                                                   int64_t offset)
{
1317
    uint64_t extent_begin_offset, extent_relative_offset;
1318 1319 1320 1321 1322
    uint64_t cluster_size = extent->cluster_sectors * BDRV_SECTOR_SIZE;

    extent_begin_offset =
        (extent->end_sector - extent->sectors) * BDRV_SECTOR_SIZE;
    extent_relative_offset = offset - extent_begin_offset;
1323
    return extent_relative_offset % cluster_size;
1324 1325
}

1326 1327 1328 1329 1330
static int coroutine_fn vmdk_co_block_status(BlockDriverState *bs,
                                             bool want_zero,
                                             int64_t offset, int64_t bytes,
                                             int64_t *pnum, int64_t *map,
                                             BlockDriverState **file)
B
bellard 已提交
1331 1332
{
    BDRVVmdkState *s = bs->opaque;
F
Fam Zheng 已提交
1333
    int64_t index_in_cluster, n, ret;
1334
    uint64_t cluster_offset;
F
Fam Zheng 已提交
1335 1336
    VmdkExtent *extent;

1337
    extent = find_extent(s, offset >> BDRV_SECTOR_BITS, NULL);
F
Fam Zheng 已提交
1338
    if (!extent) {
1339
        return -EIO;
F
Fam Zheng 已提交
1340
    }
1341
    qemu_co_mutex_lock(&s->lock);
1342
    ret = get_cluster_offset(bs, extent, NULL, offset, false, &cluster_offset,
F
Fam Zheng 已提交
1343
                             0, 0);
1344
    qemu_co_mutex_unlock(&s->lock);
1345

1346
    index_in_cluster = vmdk_find_offset_in_cluster(extent, offset);
1347 1348 1349 1350 1351 1352 1353 1354 1355 1356 1357 1358
    switch (ret) {
    case VMDK_ERROR:
        ret = -EIO;
        break;
    case VMDK_UNALLOC:
        ret = 0;
        break;
    case VMDK_ZEROED:
        ret = BDRV_BLOCK_ZERO;
        break;
    case VMDK_OK:
        ret = BDRV_BLOCK_DATA;
1359
        if (!extent->compressed) {
1360
            ret |= BDRV_BLOCK_OFFSET_VALID;
1361
            *map = cluster_offset + index_in_cluster;
1362
        }
1363
        *file = extent->file->bs;
1364 1365
        break;
    }
1366

1367 1368
    n = extent->cluster_sectors * BDRV_SECTOR_SIZE - index_in_cluster;
    *pnum = MIN(n, bytes);
F
Fam Zheng 已提交
1369
    return ret;
B
bellard 已提交
1370 1371
}

1372
static int vmdk_write_extent(VmdkExtent *extent, int64_t cluster_offset,
1373 1374 1375
                            int64_t offset_in_cluster, QEMUIOVector *qiov,
                            uint64_t qiov_offset, uint64_t n_bytes,
                            uint64_t offset)
1376 1377
{
    int ret;
F
Fam Zheng 已提交
1378 1379
    VmdkGrainMarker *data = NULL;
    uLongf buf_len;
1380 1381
    QEMUIOVector local_qiov;
    struct iovec iov;
1382 1383
    int64_t write_offset;
    int64_t write_end_sector;
1384

F
Fam Zheng 已提交
1385
    if (extent->compressed) {
1386 1387
        void *compressed_data;

F
Fam Zheng 已提交
1388 1389 1390 1391 1392 1393
        if (!extent->has_marker) {
            ret = -EINVAL;
            goto out;
        }
        buf_len = (extent->cluster_sectors << 9) * 2;
        data = g_malloc(buf_len + sizeof(VmdkGrainMarker));
1394 1395 1396 1397 1398 1399 1400

        compressed_data = g_malloc(n_bytes);
        qemu_iovec_to_buf(qiov, qiov_offset, compressed_data, n_bytes);
        ret = compress(data->data, &buf_len, compressed_data, n_bytes);
        g_free(compressed_data);

        if (ret != Z_OK || buf_len == 0) {
F
Fam Zheng 已提交
1401 1402 1403
            ret = -EINVAL;
            goto out;
        }
1404

1405 1406
        data->lba = cpu_to_le64(offset >> BDRV_SECTOR_BITS);
        data->size = cpu_to_le32(buf_len);
1407 1408 1409 1410 1411 1412 1413

        n_bytes = buf_len + sizeof(VmdkGrainMarker);
        iov = (struct iovec) {
            .iov_base   = data,
            .iov_len    = n_bytes,
        };
        qemu_iovec_init_external(&local_qiov, &iov, 1);
M
Max Reitz 已提交
1414 1415

        BLKDBG_EVENT(extent->file, BLKDBG_WRITE_COMPRESSED);
1416 1417 1418
    } else {
        qemu_iovec_init(&local_qiov, qiov->niov);
        qemu_iovec_concat(&local_qiov, qiov, qiov_offset, n_bytes);
M
Max Reitz 已提交
1419 1420

        BLKDBG_EVENT(extent->file, BLKDBG_WRITE_AIO);
F
Fam Zheng 已提交
1421
    }
1422

1423
    write_offset = cluster_offset + offset_in_cluster;
1424
    ret = bdrv_co_pwritev(extent->file, write_offset, n_bytes,
1425
                          &local_qiov, 0);
1426

1427
    write_end_sector = DIV_ROUND_UP(write_offset + n_bytes, BDRV_SECTOR_SIZE);
1428

1429 1430 1431 1432 1433 1434
    if (extent->compressed) {
        extent->next_cluster_sector = write_end_sector;
    } else {
        extent->next_cluster_sector = MAX(extent->next_cluster_sector,
                                          write_end_sector);
    }
1435

1436
    if (ret < 0) {
1437 1438 1439 1440
        goto out;
    }
    ret = 0;
 out:
F
Fam Zheng 已提交
1441
    g_free(data);
1442 1443 1444
    if (!extent->compressed) {
        qemu_iovec_destroy(&local_qiov);
    }
1445 1446 1447 1448
    return ret;
}

static int vmdk_read_extent(VmdkExtent *extent, int64_t cluster_offset,
1449 1450
                            int64_t offset_in_cluster, QEMUIOVector *qiov,
                            int bytes)
1451 1452
{
    int ret;
F
Fam Zheng 已提交
1453 1454 1455 1456 1457 1458 1459
    int cluster_bytes, buf_bytes;
    uint8_t *cluster_buf, *compressed_data;
    uint8_t *uncomp_buf;
    uint32_t data_len;
    VmdkGrainMarker *marker;
    uLongf buf_len;

1460

F
Fam Zheng 已提交
1461
    if (!extent->compressed) {
M
Max Reitz 已提交
1462
        BLKDBG_EVENT(extent->file, BLKDBG_READ_AIO);
1463
        ret = bdrv_co_preadv(extent->file,
1464 1465 1466 1467
                             cluster_offset + offset_in_cluster, bytes,
                             qiov, 0);
        if (ret < 0) {
            return ret;
F
Fam Zheng 已提交
1468
        }
1469
        return 0;
F
Fam Zheng 已提交
1470 1471 1472 1473 1474 1475
    }
    cluster_bytes = extent->cluster_sectors * 512;
    /* Read two clusters in case GrainMarker + compressed data > one cluster */
    buf_bytes = cluster_bytes * 2;
    cluster_buf = g_malloc(buf_bytes);
    uncomp_buf = g_malloc(cluster_bytes);
M
Max Reitz 已提交
1476
    BLKDBG_EVENT(extent->file, BLKDBG_READ_COMPRESSED);
1477
    ret = bdrv_pread(extent->file,
F
Fam Zheng 已提交
1478 1479 1480 1481 1482 1483 1484 1485 1486 1487 1488 1489 1490 1491 1492 1493 1494 1495 1496 1497 1498 1499 1500 1501
                cluster_offset,
                cluster_buf, buf_bytes);
    if (ret < 0) {
        goto out;
    }
    compressed_data = cluster_buf;
    buf_len = cluster_bytes;
    data_len = cluster_bytes;
    if (extent->has_marker) {
        marker = (VmdkGrainMarker *)cluster_buf;
        compressed_data = marker->data;
        data_len = le32_to_cpu(marker->size);
    }
    if (!data_len || data_len > buf_bytes) {
        ret = -EINVAL;
        goto out;
    }
    ret = uncompress(uncomp_buf, &buf_len, compressed_data, data_len);
    if (ret != Z_OK) {
        ret = -EINVAL;
        goto out;

    }
    if (offset_in_cluster < 0 ||
1502
            offset_in_cluster + bytes > buf_len) {
F
Fam Zheng 已提交
1503 1504
        ret = -EINVAL;
        goto out;
1505
    }
1506
    qemu_iovec_from_buf(qiov, 0, uncomp_buf + offset_in_cluster, bytes);
F
Fam Zheng 已提交
1507 1508 1509 1510 1511 1512
    ret = 0;

 out:
    g_free(uncomp_buf);
    g_free(cluster_buf);
    return ret;
1513 1514
}

1515 1516 1517
static int coroutine_fn
vmdk_co_preadv(BlockDriverState *bs, uint64_t offset, uint64_t bytes,
               QEMUIOVector *qiov, int flags)
B
bellard 已提交
1518 1519
{
    BDRVVmdkState *s = bs->opaque;
F
Fam Zheng 已提交
1520
    int ret;
1521
    uint64_t n_bytes, offset_in_cluster;
F
Fam Zheng 已提交
1522
    VmdkExtent *extent = NULL;
1523
    QEMUIOVector local_qiov;
B
bellard 已提交
1524
    uint64_t cluster_offset;
1525
    uint64_t bytes_done = 0;
1526

1527 1528 1529 1530 1531
    qemu_iovec_init(&local_qiov, qiov->niov);
    qemu_co_mutex_lock(&s->lock);

    while (bytes > 0) {
        extent = find_extent(s, offset >> BDRV_SECTOR_BITS, extent);
F
Fam Zheng 已提交
1532
        if (!extent) {
1533 1534
            ret = -EIO;
            goto fail;
F
Fam Zheng 已提交
1535
        }
F
Fam Zheng 已提交
1536
        ret = get_cluster_offset(bs, extent, NULL,
1537 1538 1539 1540 1541 1542
                                 offset, false, &cluster_offset, 0, 0);
        offset_in_cluster = vmdk_find_offset_in_cluster(extent, offset);

        n_bytes = MIN(bytes, extent->cluster_sectors * BDRV_SECTOR_SIZE
                             - offset_in_cluster);

1543
        if (ret != VMDK_OK) {
1544
            /* if not allocated, try to read from parent image, if exist */
1545
            if (bs->backing && ret != VMDK_ZEROED) {
F
Fam Zheng 已提交
1546
                if (!vmdk_is_cid_valid(bs)) {
1547 1548
                    ret = -EINVAL;
                    goto fail;
F
Fam Zheng 已提交
1549
                }
1550 1551 1552 1553

                qemu_iovec_reset(&local_qiov);
                qemu_iovec_concat(&local_qiov, qiov, bytes_done, n_bytes);

M
Max Reitz 已提交
1554 1555
                /* qcow2 emits this on bs->file instead of bs->backing */
                BLKDBG_EVENT(bs->file, BLKDBG_READ_BACKING_AIO);
1556
                ret = bdrv_co_preadv(bs->backing, offset, n_bytes,
1557
                                     &local_qiov, 0);
F
Fam Zheng 已提交
1558
                if (ret < 0) {
1559
                    goto fail;
F
Fam Zheng 已提交
1560
                }
1561
            } else {
1562
                qemu_iovec_memset(qiov, bytes_done, 0, n_bytes);
1563
            }
B
bellard 已提交
1564
        } else {
1565 1566 1567 1568 1569
            qemu_iovec_reset(&local_qiov);
            qemu_iovec_concat(&local_qiov, qiov, bytes_done, n_bytes);

            ret = vmdk_read_extent(extent, cluster_offset, offset_in_cluster,
                                   &local_qiov, n_bytes);
1570
            if (ret) {
1571
                goto fail;
1572
            }
B
bellard 已提交
1573
        }
1574 1575 1576
        bytes -= n_bytes;
        offset += n_bytes;
        bytes_done += n_bytes;
B
bellard 已提交
1577 1578
    }

1579 1580
    ret = 0;
fail:
1581
    qemu_co_mutex_unlock(&s->lock);
1582 1583
    qemu_iovec_destroy(&local_qiov);

1584 1585 1586
    return ret;
}

F
Fam Zheng 已提交
1587 1588 1589
/**
 * vmdk_write:
 * @zeroed:       buf is ignored (data is zero), use zeroed_grain GTE feature
1590 1591 1592 1593
 *                if possible, otherwise return -ENOTSUP.
 * @zero_dry_run: used for zeroed == true only, don't update L2 table, just try
 *                with each cluster. By dry run we can find if the zero write
 *                is possible without modifying image data.
F
Fam Zheng 已提交
1594 1595 1596
 *
 * Returns: error code with 0 for success.
 */
1597 1598 1599
static int vmdk_pwritev(BlockDriverState *bs, uint64_t offset,
                       uint64_t bytes, QEMUIOVector *qiov,
                       bool zeroed, bool zero_dry_run)
B
bellard 已提交
1600
{
1601
    BDRVVmdkState *s = bs->opaque;
F
Fam Zheng 已提交
1602
    VmdkExtent *extent = NULL;
F
Fam Zheng 已提交
1603
    int ret;
1604
    int64_t offset_in_cluster, n_bytes;
1605
    uint64_t cluster_offset;
1606
    uint64_t bytes_done = 0;
F
Fam Zheng 已提交
1607
    VmdkMetaData m_data;
1608

1609 1610
    if (DIV_ROUND_UP(offset, BDRV_SECTOR_SIZE) > bs->total_sectors) {
        error_report("Wrong offset: offset=0x%" PRIx64
1611
                     " total_sectors=0x%" PRIx64,
1612
                     offset, bs->total_sectors);
1613
        return -EIO;
1614 1615
    }

1616 1617
    while (bytes > 0) {
        extent = find_extent(s, offset >> BDRV_SECTOR_BITS, extent);
F
Fam Zheng 已提交
1618 1619 1620
        if (!extent) {
            return -EIO;
        }
1621 1622 1623 1624 1625
        offset_in_cluster = vmdk_find_offset_in_cluster(extent, offset);
        n_bytes = MIN(bytes, extent->cluster_sectors * BDRV_SECTOR_SIZE
                             - offset_in_cluster);

        ret = get_cluster_offset(bs, extent, &m_data, offset,
F
Fam Zheng 已提交
1626
                                 !(extent->compressed || zeroed),
1627 1628
                                 &cluster_offset, offset_in_cluster,
                                 offset_in_cluster + n_bytes);
F
Fam Zheng 已提交
1629
        if (extent->compressed) {
F
Fam Zheng 已提交
1630
            if (ret == VMDK_OK) {
F
Fam Zheng 已提交
1631
                /* Refuse write to allocated cluster for streamOptimized */
F
Fam Zheng 已提交
1632 1633
                error_report("Could not write to allocated cluster"
                              " for streamOptimized");
F
Fam Zheng 已提交
1634 1635 1636
                return -EIO;
            } else {
                /* allocate */
1637
                ret = get_cluster_offset(bs, extent, &m_data, offset,
F
Fam Zheng 已提交
1638
                                         true, &cluster_offset, 0, 0);
F
Fam Zheng 已提交
1639 1640
            }
        }
F
Fam Zheng 已提交
1641
        if (ret == VMDK_ERROR) {
1642
            return -EINVAL;
F
Fam Zheng 已提交
1643
        }
F
Fam Zheng 已提交
1644 1645 1646
        if (zeroed) {
            /* Do zeroed write, buf is ignored */
            if (extent->has_zero_grain &&
1647 1648 1649
                    offset_in_cluster == 0 &&
                    n_bytes >= extent->cluster_sectors * BDRV_SECTOR_SIZE) {
                n_bytes = extent->cluster_sectors * BDRV_SECTOR_SIZE;
F
Fam Zheng 已提交
1650 1651
                if (!zero_dry_run) {
                    /* update L2 tables */
F
Fam Zheng 已提交
1652 1653
                    if (vmdk_L2update(extent, &m_data, VMDK_GTE_ZEROED)
                            != VMDK_OK) {
F
Fam Zheng 已提交
1654 1655 1656 1657 1658 1659 1660
                        return -EIO;
                    }
                }
            } else {
                return -ENOTSUP;
            }
        } else {
1661 1662
            ret = vmdk_write_extent(extent, cluster_offset, offset_in_cluster,
                                    qiov, bytes_done, n_bytes, offset);
F
Fam Zheng 已提交
1663 1664 1665 1666 1667
            if (ret) {
                return ret;
            }
            if (m_data.valid) {
                /* update L2 tables */
F
Fam Zheng 已提交
1668 1669 1670
                if (vmdk_L2update(extent, &m_data,
                                  cluster_offset >> BDRV_SECTOR_BITS)
                        != VMDK_OK) {
F
Fam Zheng 已提交
1671 1672
                    return -EIO;
                }
F
Fam Zheng 已提交
1673
            }
1674
        }
1675 1676 1677
        bytes -= n_bytes;
        offset += n_bytes;
        bytes_done += n_bytes;
1678

F
Fam Zheng 已提交
1679 1680
        /* update CID on the first write every time the virtual disk is
         * opened */
1681
        if (!s->cid_updated) {
F
Fam Zheng 已提交
1682
            ret = vmdk_write_cid(bs, g_random_int());
K
Kevin Wolf 已提交
1683 1684 1685
            if (ret < 0) {
                return ret;
            }
1686
            s->cid_updated = true;
1687
        }
1688 1689
    }
    return 0;
B
bellard 已提交
1690 1691
}

1692 1693 1694
static int coroutine_fn
vmdk_co_pwritev(BlockDriverState *bs, uint64_t offset, uint64_t bytes,
                QEMUIOVector *qiov, int flags)
1695 1696 1697 1698
{
    int ret;
    BDRVVmdkState *s = bs->opaque;
    qemu_co_mutex_lock(&s->lock);
1699
    ret = vmdk_pwritev(bs, offset, bytes, qiov, false, false);
F
Fam Zheng 已提交
1700 1701 1702 1703
    qemu_co_mutex_unlock(&s->lock);
    return ret;
}

1704 1705 1706
static int coroutine_fn
vmdk_co_pwritev_compressed(BlockDriverState *bs, uint64_t offset,
                           uint64_t bytes, QEMUIOVector *qiov)
1707
{
1708 1709 1710 1711 1712 1713 1714 1715 1716 1717 1718 1719 1720 1721 1722 1723 1724 1725 1726 1727 1728
    if (bytes == 0) {
        /* The caller will write bytes 0 to signal EOF.
         * When receive it, we align EOF to a sector boundary. */
        BDRVVmdkState *s = bs->opaque;
        int i, ret;
        int64_t length;

        for (i = 0; i < s->num_extents; i++) {
            length = bdrv_getlength(s->extents[i].file->bs);
            if (length < 0) {
                return length;
            }
            length = QEMU_ALIGN_UP(length, BDRV_SECTOR_SIZE);
            ret = bdrv_truncate(s->extents[i].file, length,
                                PREALLOC_MODE_OFF, NULL);
            if (ret < 0) {
                return ret;
            }
        }
        return 0;
    }
1729
    return vmdk_co_pwritev(bs, offset, bytes, qiov, 0);
1730 1731
}

1732 1733 1734 1735
static int coroutine_fn vmdk_co_pwrite_zeroes(BlockDriverState *bs,
                                              int64_t offset,
                                              int bytes,
                                              BdrvRequestFlags flags)
F
Fam Zheng 已提交
1736 1737 1738
{
    int ret;
    BDRVVmdkState *s = bs->opaque;
1739

F
Fam Zheng 已提交
1740
    qemu_co_mutex_lock(&s->lock);
1741 1742
    /* write zeroes could fail if sectors not aligned to cluster, test it with
     * dry_run == true before really updating image */
1743
    ret = vmdk_pwritev(bs, offset, bytes, NULL, true, true);
F
Fam Zheng 已提交
1744
    if (!ret) {
1745
        ret = vmdk_pwritev(bs, offset, bytes, NULL, true, false);
F
Fam Zheng 已提交
1746
    }
1747 1748 1749 1750
    qemu_co_mutex_unlock(&s->lock);
    return ret;
}

F
Fam Zheng 已提交
1751 1752 1753 1754
static int vmdk_init_extent(BlockBackend *blk,
                            int64_t filesize, bool flat,
                            bool compress, bool zeroed_grain,
                            Error **errp)
1755
{
F
Fam Zheng 已提交
1756
    int ret, i;
1757
    VMDK4Header header;
1758 1759 1760
    uint32_t tmp, magic, grains, gd_sectors, gt_size, gt_count;
    uint32_t *gd_buf = NULL;
    int gd_buf_size;
1761

F
Fam Zheng 已提交
1762
    if (flat) {
1763
        ret = blk_truncate(blk, filesize, PREALLOC_MODE_OFF, errp);
F
Fam Zheng 已提交
1764
        goto exit;
1765
    }
1766 1767
    magic = cpu_to_be32(VMDK4_MAGIC);
    memset(&header, 0, sizeof(header));
1768 1769 1770 1771 1772 1773 1774
    if (compress) {
        header.version = 3;
    } else if (zeroed_grain) {
        header.version = 2;
    } else {
        header.version = 1;
    }
F
Fam Zheng 已提交
1775
    header.flags = VMDK4_FLAG_RGD | VMDK4_FLAG_NL_DETECT
1776 1777
                   | (compress ? VMDK4_FLAG_COMPRESS | VMDK4_FLAG_MARKER : 0)
                   | (zeroed_grain ? VMDK4_FLAG_ZERO_GRAIN : 0);
1778
    header.compressAlgorithm = compress ? VMDK4_COMPRESSION_DEFLATE : 0;
1779
    header.capacity = filesize / BDRV_SECTOR_SIZE;
A
Alexander Graf 已提交
1780
    header.granularity = 128;
1781
    header.num_gtes_per_gt = BDRV_SECTOR_SIZE;
1782

1783 1784 1785 1786 1787
    grains = DIV_ROUND_UP(filesize / BDRV_SECTOR_SIZE, header.granularity);
    gt_size = DIV_ROUND_UP(header.num_gtes_per_gt * sizeof(uint32_t),
                           BDRV_SECTOR_SIZE);
    gt_count = DIV_ROUND_UP(grains, header.num_gtes_per_gt);
    gd_sectors = DIV_ROUND_UP(gt_count * sizeof(uint32_t), BDRV_SECTOR_SIZE);
1788 1789 1790 1791

    header.desc_offset = 1;
    header.desc_size = 20;
    header.rgd_offset = header.desc_offset + header.desc_size;
1792
    header.gd_offset = header.rgd_offset + gd_sectors + (gt_size * gt_count);
1793
    header.grain_offset =
1794 1795
        ROUND_UP(header.gd_offset + gd_sectors + (gt_size * gt_count),
                 header.granularity);
A
Alexander Graf 已提交
1796 1797 1798 1799 1800
    /* swap endianness for all header fields */
    header.version = cpu_to_le32(header.version);
    header.flags = cpu_to_le32(header.flags);
    header.capacity = cpu_to_le64(header.capacity);
    header.granularity = cpu_to_le64(header.granularity);
1801
    header.num_gtes_per_gt = cpu_to_le32(header.num_gtes_per_gt);
1802 1803 1804 1805 1806
    header.desc_offset = cpu_to_le64(header.desc_offset);
    header.desc_size = cpu_to_le64(header.desc_size);
    header.rgd_offset = cpu_to_le64(header.rgd_offset);
    header.gd_offset = cpu_to_le64(header.gd_offset);
    header.grain_offset = cpu_to_le64(header.grain_offset);
1807
    header.compressAlgorithm = cpu_to_le16(header.compressAlgorithm);
1808 1809 1810 1811 1812

    header.check_bytes[0] = 0xa;
    header.check_bytes[1] = 0x20;
    header.check_bytes[2] = 0xd;
    header.check_bytes[3] = 0xa;
1813 1814

    /* write all the data */
1815
    ret = blk_pwrite(blk, 0, &magic, sizeof(magic), 0);
1816
    if (ret < 0) {
1817
        error_setg(errp, QERR_IO_ERROR);
1818 1819
        goto exit;
    }
1820
    ret = blk_pwrite(blk, sizeof(magic), &header, sizeof(header), 0);
1821
    if (ret < 0) {
1822
        error_setg(errp, QERR_IO_ERROR);
1823 1824
        goto exit;
    }
1825

1826 1827
    ret = blk_truncate(blk, le64_to_cpu(header.grain_offset) << 9,
                       PREALLOC_MODE_OFF, errp);
1828 1829 1830
    if (ret < 0) {
        goto exit;
    }
1831 1832

    /* write grain directory */
1833 1834 1835
    gd_buf_size = gd_sectors * BDRV_SECTOR_SIZE;
    gd_buf = g_malloc0(gd_buf_size);
    for (i = 0, tmp = le64_to_cpu(header.rgd_offset) + gd_sectors;
1836
         i < gt_count; i++, tmp += gt_size) {
1837 1838
        gd_buf[i] = cpu_to_le32(tmp);
    }
1839
    ret = blk_pwrite(blk, le64_to_cpu(header.rgd_offset) * BDRV_SECTOR_SIZE,
1840
                     gd_buf, gd_buf_size, 0);
1841
    if (ret < 0) {
1842
        error_setg(errp, QERR_IO_ERROR);
1843
        goto exit;
1844
    }
1845

1846
    /* write backup grain directory */
1847
    for (i = 0, tmp = le64_to_cpu(header.gd_offset) + gd_sectors;
1848
         i < gt_count; i++, tmp += gt_size) {
1849 1850
        gd_buf[i] = cpu_to_le32(tmp);
    }
1851
    ret = blk_pwrite(blk, le64_to_cpu(header.gd_offset) * BDRV_SECTOR_SIZE,
1852
                     gd_buf, gd_buf_size, 0);
1853
    if (ret < 0) {
1854
        error_setg(errp, QERR_IO_ERROR);
1855
    }
1856

F
Fam Zheng 已提交
1857
    ret = 0;
F
Fam Zheng 已提交
1858 1859 1860 1861 1862 1863 1864 1865 1866 1867 1868 1869 1870 1871 1872 1873 1874 1875 1876 1877 1878 1879 1880 1881 1882 1883 1884 1885 1886 1887 1888 1889
exit:
    g_free(gd_buf);
    return ret;
}

static int vmdk_create_extent(const char *filename, int64_t filesize,
                              bool flat, bool compress, bool zeroed_grain,
                              BlockBackend **pbb,
                              QemuOpts *opts, Error **errp)
{
    int ret;
    BlockBackend *blk = NULL;
    Error *local_err = NULL;

    ret = bdrv_create_file(filename, opts, &local_err);
    if (ret < 0) {
        error_propagate(errp, local_err);
        goto exit;
    }

    blk = blk_new_open(filename, NULL, NULL,
                       BDRV_O_RDWR | BDRV_O_RESIZE | BDRV_O_PROTOCOL,
                       &local_err);
    if (blk == NULL) {
        error_propagate(errp, local_err);
        ret = -EIO;
        goto exit;
    }

    blk_set_allow_write_beyond_eof(blk, true);

    ret = vmdk_init_extent(blk, filesize, flat, compress, zeroed_grain, errp);
1890
exit:
1891
    if (blk) {
F
Fam Zheng 已提交
1892 1893 1894 1895 1896 1897
        if (pbb) {
            *pbb = blk;
        } else {
            blk_unref(blk);
            blk = NULL;
        }
1898
    }
F
Fam Zheng 已提交
1899 1900 1901 1902
    return ret;
}

static int filename_decompose(const char *filename, char *path, char *prefix,
F
Fam Zheng 已提交
1903
                              char *postfix, size_t buf_len, Error **errp)
F
Fam Zheng 已提交
1904 1905 1906 1907
{
    const char *p, *q;

    if (filename == NULL || !strlen(filename)) {
F
Fam Zheng 已提交
1908
        error_setg(errp, "No filename provided");
F
Fam Zheng 已提交
1909
        return VMDK_ERROR;
F
Fam Zheng 已提交
1910 1911 1912 1913 1914 1915 1916 1917 1918 1919 1920
    }
    p = strrchr(filename, '/');
    if (p == NULL) {
        p = strrchr(filename, '\\');
    }
    if (p == NULL) {
        p = strrchr(filename, ':');
    }
    if (p != NULL) {
        p++;
        if (p - filename >= buf_len) {
F
Fam Zheng 已提交
1921
            return VMDK_ERROR;
F
Fam Zheng 已提交
1922 1923 1924 1925 1926 1927 1928 1929 1930 1931 1932 1933
        }
        pstrcpy(path, p - filename + 1, filename);
    } else {
        p = filename;
        path[0] = '\0';
    }
    q = strrchr(p, '.');
    if (q == NULL) {
        pstrcpy(prefix, buf_len, p);
        postfix[0] = '\0';
    } else {
        if (q - p >= buf_len) {
F
Fam Zheng 已提交
1934
            return VMDK_ERROR;
F
Fam Zheng 已提交
1935 1936 1937 1938
        }
        pstrcpy(prefix, q - p + 1, p);
        pstrcpy(postfix, buf_len, q);
    }
F
Fam Zheng 已提交
1939
    return VMDK_OK;
F
Fam Zheng 已提交
1940 1941
}

1942 1943 1944 1945 1946 1947 1948 1949 1950 1951 1952 1953 1954 1955 1956 1957 1958 1959 1960 1961 1962 1963 1964 1965 1966 1967 1968 1969 1970 1971 1972 1973 1974 1975 1976
/*
 * idx == 0: get or create the descriptor file (also the image file if in a
 *           non-split format.
 * idx >= 1: get the n-th extent if in a split subformat
 */
typedef BlockBackend *(*vmdk_create_extent_fn)(int64_t size,
                                               int idx,
                                               bool flat,
                                               bool split,
                                               bool compress,
                                               bool zeroed_grain,
                                               void *opaque,
                                               Error **errp);

static void vmdk_desc_add_extent(GString *desc,
                                 const char *extent_line_fmt,
                                 int64_t size, const char *filename)
{
    char *basename = g_path_get_basename(filename);

    g_string_append_printf(desc, extent_line_fmt,
                           DIV_ROUND_UP(size, BDRV_SECTOR_SIZE), basename);
    g_free(basename);
}

static int coroutine_fn vmdk_co_do_create(int64_t size,
                                          BlockdevVmdkSubformat subformat,
                                          BlockdevVmdkAdapterType adapter_type,
                                          const char *backing_file,
                                          const char *hw_version,
                                          bool compat6,
                                          bool zeroed_grain,
                                          vmdk_create_extent_fn extent_fn,
                                          void *opaque,
                                          Error **errp)
F
Fam Zheng 已提交
1977
{
1978 1979
    int extent_idx;
    BlockBackend *blk = NULL;
1980
    BlockBackend *extent_blk;
F
Fam Zheng 已提交
1981
    Error *local_err = NULL;
1982
    char *desc = NULL;
F
Fam Zheng 已提交
1983
    int ret = 0;
1984
    bool flat, split, compress;
1985
    GString *ext_desc_lines;
F
Fam Zheng 已提交
1986
    const int64_t split_size = 0x80000000;  /* VMDK has constant split size */
1987 1988 1989
    int64_t extent_size;
    int64_t created_size = 0;
    const char *extent_line_fmt;
1990
    char *parent_desc_line = g_malloc0(BUF_SIZE);
F
Fam Zheng 已提交
1991
    uint32_t parent_cid = 0xffffffff;
1992
    uint32_t number_heads = 16;
1993
    uint32_t desc_offset = 0, desc_len;
F
Fam Zheng 已提交
1994 1995 1996
    const char desc_template[] =
        "# Disk DescriptorFile\n"
        "version=1\n"
1997 1998
        "CID=%" PRIx32 "\n"
        "parentCID=%" PRIx32 "\n"
F
Fam Zheng 已提交
1999 2000 2001 2002 2003 2004 2005 2006 2007
        "createType=\"%s\"\n"
        "%s"
        "\n"
        "# Extent description\n"
        "%s"
        "\n"
        "# The Disk Data Base\n"
        "#DDB\n"
        "\n"
2008
        "ddb.virtualHWVersion = \"%s\"\n"
F
Fam Zheng 已提交
2009
        "ddb.geometry.cylinders = \"%" PRId64 "\"\n"
2010
        "ddb.geometry.heads = \"%" PRIu32 "\"\n"
F
Fam Zheng 已提交
2011
        "ddb.geometry.sectors = \"63\"\n"
2012
        "ddb.adapterType = \"%s\"\n";
F
Fam Zheng 已提交
2013

2014 2015
    ext_desc_lines = g_string_new(NULL);

F
Fam Zheng 已提交
2016
    /* Read out options */
2017 2018
    if (compat6) {
        if (hw_version) {
2019 2020 2021 2022 2023
            error_setg(errp,
                       "compat6 cannot be enabled with hwversion set");
            ret = -EINVAL;
            goto exit;
        }
2024
        hw_version = "6";
2025
    }
2026 2027
    if (!hw_version) {
        hw_version = "4";
F
Fam Zheng 已提交
2028
    }
2029

2030
    if (adapter_type != BLOCKDEV_VMDK_ADAPTER_TYPE_IDE) {
2031 2032 2033 2034
        /* that's the number of heads with which vmware operates when
           creating, exporting, etc. vmdk files with a non-ide adapter type */
        number_heads = 255;
    }
2035 2036 2037 2038 2039 2040
    split = (subformat == BLOCKDEV_VMDK_SUBFORMAT_TWOGBMAXEXTENTFLAT) ||
            (subformat == BLOCKDEV_VMDK_SUBFORMAT_TWOGBMAXEXTENTSPARSE);
    flat = (subformat == BLOCKDEV_VMDK_SUBFORMAT_MONOLITHICFLAT) ||
           (subformat == BLOCKDEV_VMDK_SUBFORMAT_TWOGBMAXEXTENTFLAT);
    compress = subformat == BLOCKDEV_VMDK_SUBFORMAT_STREAMOPTIMIZED;

F
Fam Zheng 已提交
2041
    if (flat) {
2042
        extent_line_fmt = "RW %" PRId64 " FLAT \"%s\" 0\n";
F
Fam Zheng 已提交
2043
    } else {
2044
        extent_line_fmt = "RW %" PRId64 " SPARSE \"%s\"\n";
F
Fam Zheng 已提交
2045 2046
    }
    if (flat && backing_file) {
F
Fam Zheng 已提交
2047
        error_setg(errp, "Flat image can't have backing file");
2048 2049
        ret = -ENOTSUP;
        goto exit;
F
Fam Zheng 已提交
2050
    }
2051 2052
    if (flat && zeroed_grain) {
        error_setg(errp, "Flat image can't enable zeroed grain");
2053 2054
        ret = -ENOTSUP;
        goto exit;
2055
    }
2056 2057 2058 2059 2060 2061 2062 2063 2064 2065 2066 2067 2068 2069 2070 2071 2072 2073 2074 2075 2076 2077 2078 2079

    /* Create extents */
    if (split) {
        extent_size = split_size;
    } else {
        extent_size = size;
    }
    if (!split && !flat) {
        created_size = extent_size;
    } else {
        created_size = 0;
    }
    /* Get the descriptor file BDS */
    blk = extent_fn(created_size, 0, flat, split, compress, zeroed_grain,
                    opaque, errp);
    if (!blk) {
        ret = -EIO;
        goto exit;
    }
    if (!split && !flat) {
        vmdk_desc_add_extent(ext_desc_lines, extent_line_fmt, created_size,
                             blk_bs(blk)->filename);
    }

F
Fam Zheng 已提交
2080
    if (backing_file) {
2081
        BlockBackend *backing;
2082 2083 2084 2085
        char *full_backing =
            bdrv_get_full_backing_filename_from_filename(blk_bs(blk)->filename,
                                                         backing_file,
                                                         &local_err);
2086 2087 2088 2089 2090
        if (local_err) {
            error_propagate(errp, local_err);
            ret = -ENOENT;
            goto exit;
        }
2091
        assert(full_backing);
2092

2093 2094
        backing = blk_new_open(full_backing, NULL, NULL,
                               BDRV_O_NO_BACKING, errp);
2095
        g_free(full_backing);
2096
        if (backing == NULL) {
2097
            ret = -EIO;
2098
            goto exit;
F
Fam Zheng 已提交
2099
        }
2100 2101 2102 2103
        if (strcmp(blk_bs(backing)->drv->format_name, "vmdk")) {
            error_setg(errp, "Invalid backing file format: %s. Must be vmdk",
                       blk_bs(backing)->drv->format_name);
            blk_unref(backing);
2104 2105
            ret = -EINVAL;
            goto exit;
F
Fam Zheng 已提交
2106
        }
2107 2108
        ret = vmdk_read_cid(blk_bs(backing), 0, &parent_cid);
        blk_unref(backing);
2109
        if (ret) {
2110
            error_setg(errp, "Failed to read parent CID");
2111 2112
            goto exit;
        }
2113
        snprintf(parent_desc_line, BUF_SIZE,
2114
                "parentFileNameHint=\"%s\"", backing_file);
F
Fam Zheng 已提交
2115
    }
2116 2117 2118 2119 2120 2121
    extent_idx = 1;
    while (created_size < size) {
        int64_t cur_size = MIN(size - created_size, extent_size);
        extent_blk = extent_fn(cur_size, extent_idx, flat, split, compress,
                               zeroed_grain, opaque, errp);
        if (!extent_blk) {
2122 2123
            ret = -EINVAL;
            goto exit;
F
Fam Zheng 已提交
2124
        }
2125 2126 2127 2128 2129
        vmdk_desc_add_extent(ext_desc_lines, extent_line_fmt, cur_size,
                             blk_bs(extent_blk)->filename);
        created_size += cur_size;
        extent_idx++;
        blk_unref(extent_blk);
F
Fam Zheng 已提交
2130
    }
2131 2132 2133 2134 2135 2136 2137 2138 2139 2140 2141

    /* Check whether we got excess extents */
    extent_blk = extent_fn(-1, extent_idx, flat, split, compress, zeroed_grain,
                           opaque, NULL);
    if (extent_blk) {
        blk_unref(extent_blk);
        error_setg(errp, "List of extents contains unused extents");
        ret = -EINVAL;
        goto exit;
    }

F
Fam Zheng 已提交
2142
    /* generate descriptor file */
2143
    desc = g_strdup_printf(desc_template,
F
Fam Zheng 已提交
2144
                           g_random_int(),
2145
                           parent_cid,
2146
                           BlockdevVmdkSubformat_str(subformat),
2147 2148
                           parent_desc_line,
                           ext_desc_lines->str,
2149
                           hw_version,
2150
                           size /
2151
                               (int64_t)(63 * number_heads * BDRV_SECTOR_SIZE),
2152
                           number_heads,
2153
                           BlockdevVmdkAdapterType_str(adapter_type));
2154 2155 2156 2157
    desc_len = strlen(desc);
    /* the descriptor offset = 0x200 */
    if (!split && !flat) {
        desc_offset = 0x200;
2158 2159 2160 2161 2162 2163 2164 2165 2166 2167 2168
    }

    ret = blk_pwrite(blk, desc_offset, desc, desc_len, 0);
    if (ret < 0) {
        error_setg_errno(errp, -ret, "Could not write description");
        goto exit;
    }
    /* bdrv_pwrite write padding zeros to align to sector, we don't need that
     * for description file */
    if (desc_offset == 0) {
        ret = blk_truncate(blk, desc_len, PREALLOC_MODE_OFF, errp);
2169 2170 2171
        if (ret < 0) {
            goto exit;
        }
F
Fam Zheng 已提交
2172
    }
2173 2174 2175 2176 2177 2178 2179 2180 2181 2182
    ret = 0;
exit:
    if (blk) {
        blk_unref(blk);
    }
    g_free(desc);
    g_free(parent_desc_line);
    g_string_free(ext_desc_lines, true);
    return ret;
}
2183

2184 2185 2186 2187 2188 2189 2190 2191 2192 2193 2194 2195 2196 2197 2198 2199 2200 2201
typedef struct {
    char *path;
    char *prefix;
    char *postfix;
    QemuOpts *opts;
} VMDKCreateOptsData;

static BlockBackend *vmdk_co_create_opts_cb(int64_t size, int idx,
                                            bool flat, bool split, bool compress,
                                            bool zeroed_grain, void *opaque,
                                            Error **errp)
{
    BlockBackend *blk = NULL;
    BlockDriverState *bs = NULL;
    VMDKCreateOptsData *data = opaque;
    char *ext_filename = NULL;
    char *rel_filename = NULL;

2202 2203 2204 2205 2206 2207
    /* We're done, don't create excess extents. */
    if (size == -1) {
        assert(errp == NULL);
        return NULL;
    }

2208 2209 2210 2211 2212 2213 2214 2215 2216 2217 2218 2219 2220 2221 2222 2223 2224
    if (idx == 0) {
        rel_filename = g_strdup_printf("%s%s", data->prefix, data->postfix);
    } else if (split) {
        rel_filename = g_strdup_printf("%s-%c%03d%s",
                                       data->prefix,
                                       flat ? 'f' : 's', idx, data->postfix);
    } else {
        assert(idx == 1);
        rel_filename = g_strdup_printf("%s-flat%s", data->prefix, data->postfix);
    }

    ext_filename = g_strdup_printf("%s%s", data->path, rel_filename);
    g_free(rel_filename);

    if (vmdk_create_extent(ext_filename, size,
                           flat, compress, zeroed_grain, &blk, data->opts,
                           errp)) {
2225
        goto exit;
F
Fam Zheng 已提交
2226
    }
2227 2228 2229 2230 2231
    bdrv_unref(bs);
exit:
    g_free(ext_filename);
    return blk;
}
2232

2233 2234 2235 2236 2237 2238 2239 2240 2241 2242 2243 2244 2245 2246 2247 2248 2249 2250 2251 2252 2253 2254 2255
static int coroutine_fn vmdk_co_create_opts(const char *filename, QemuOpts *opts,
                                            Error **errp)
{
    Error *local_err = NULL;
    char *desc = NULL;
    int64_t total_size = 0;
    char *adapter_type = NULL;
    BlockdevVmdkAdapterType adapter_type_enum;
    char *backing_file = NULL;
    char *hw_version = NULL;
    char *fmt = NULL;
    BlockdevVmdkSubformat subformat;
    int ret = 0;
    char *path = g_malloc0(PATH_MAX);
    char *prefix = g_malloc0(PATH_MAX);
    char *postfix = g_malloc0(PATH_MAX);
    char *desc_line = g_malloc0(BUF_SIZE);
    char *ext_filename = g_malloc0(PATH_MAX);
    char *desc_filename = g_malloc0(PATH_MAX);
    char *parent_desc_line = g_malloc0(BUF_SIZE);
    bool zeroed_grain;
    bool compat6;
    VMDKCreateOptsData data;
2256

2257 2258
    if (filename_decompose(filename, path, prefix, postfix, PATH_MAX, errp)) {
        ret = -EINVAL;
2259
        goto exit;
F
Fam Zheng 已提交
2260
    }
2261 2262 2263 2264 2265 2266 2267 2268 2269 2270
    /* Read out options */
    total_size = ROUND_UP(qemu_opt_get_size_del(opts, BLOCK_OPT_SIZE, 0),
                          BDRV_SECTOR_SIZE);
    adapter_type = qemu_opt_get_del(opts, BLOCK_OPT_ADAPTER_TYPE);
    backing_file = qemu_opt_get_del(opts, BLOCK_OPT_BACKING_FILE);
    hw_version = qemu_opt_get_del(opts, BLOCK_OPT_HWVERSION);
    compat6 = qemu_opt_get_bool_del(opts, BLOCK_OPT_COMPAT6, false);
    if (strcmp(hw_version, "undefined") == 0) {
        g_free(hw_version);
        hw_version = g_strdup("4");
2271
    }
2272 2273 2274 2275 2276 2277 2278 2279 2280 2281 2282 2283 2284 2285 2286
    fmt = qemu_opt_get_del(opts, BLOCK_OPT_SUBFMT);
    zeroed_grain = qemu_opt_get_bool_del(opts, BLOCK_OPT_ZEROED_GRAIN, false);

    if (adapter_type) {
        adapter_type_enum = qapi_enum_parse(&BlockdevVmdkAdapterType_lookup,
                                            adapter_type,
                                            BLOCKDEV_VMDK_ADAPTER_TYPE_IDE,
                                            &local_err);
        if (local_err) {
            error_propagate(errp, local_err);
            ret = -EINVAL;
            goto exit;
        }
    } else {
        adapter_type_enum = BLOCKDEV_VMDK_ADAPTER_TYPE_IDE;
2287
    }
2288 2289 2290 2291 2292 2293 2294 2295 2296 2297 2298 2299 2300 2301 2302 2303 2304 2305 2306 2307 2308 2309 2310 2311 2312 2313

    if (!fmt) {
        /* Default format to monolithicSparse */
        subformat = BLOCKDEV_VMDK_SUBFORMAT_MONOLITHICSPARSE;
    } else {
        subformat = qapi_enum_parse(&BlockdevVmdkSubformat_lookup,
                                    fmt,
                                    BLOCKDEV_VMDK_SUBFORMAT_MONOLITHICSPARSE,
                                    &local_err);
        if (local_err) {
            error_propagate(errp, local_err);
            ret = -EINVAL;
            goto exit;
        }
    }
    data = (VMDKCreateOptsData){
        .prefix = prefix,
        .postfix = postfix,
        .path = path,
        .opts = opts,
    };
    ret = vmdk_co_do_create(total_size, subformat, adapter_type_enum,
                            backing_file, hw_version, compat6, zeroed_grain,
                            vmdk_co_create_opts_cb, &data, errp);

exit:
2314 2315
    g_free(adapter_type);
    g_free(backing_file);
2316
    g_free(hw_version);
2317
    g_free(fmt);
2318
    g_free(desc);
2319 2320 2321 2322 2323 2324 2325
    g_free(path);
    g_free(prefix);
    g_free(postfix);
    g_free(desc_line);
    g_free(ext_filename);
    g_free(desc_filename);
    g_free(parent_desc_line);
2326 2327 2328 2329 2330 2331 2332 2333 2334 2335 2336 2337 2338 2339 2340 2341 2342 2343 2344 2345 2346 2347 2348 2349 2350 2351 2352 2353 2354 2355 2356 2357 2358 2359 2360 2361 2362 2363 2364 2365 2366 2367 2368
    return ret;
}

static BlockBackend *vmdk_co_create_cb(int64_t size, int idx,
                                       bool flat, bool split, bool compress,
                                       bool zeroed_grain, void *opaque,
                                       Error **errp)
{
    int ret;
    BlockDriverState *bs;
    BlockBackend *blk;
    BlockdevCreateOptionsVmdk *opts = opaque;

    if (idx == 0) {
        bs = bdrv_open_blockdev_ref(opts->file, errp);
    } else {
        int i;
        BlockdevRefList *list = opts->extents;
        for (i = 1; i < idx; i++) {
            if (!list || !list->next) {
                error_setg(errp, "Extent [%d] not specified", i);
                return NULL;
            }
            list = list->next;
        }
        if (!list) {
            error_setg(errp, "Extent [%d] not specified", idx - 1);
            return NULL;
        }
        bs = bdrv_open_blockdev_ref(list->value, errp);
    }
    if (!bs) {
        return NULL;
    }
    blk = blk_new(BLK_PERM_CONSISTENT_READ | BLK_PERM_WRITE | BLK_PERM_RESIZE,
                  BLK_PERM_ALL);
    if (blk_insert_bs(blk, bs, errp)) {
        bdrv_unref(bs);
        return NULL;
    }
    blk_set_allow_write_beyond_eof(blk, true);
    bdrv_unref(bs);

2369 2370 2371 2372 2373 2374
    if (size != -1) {
        ret = vmdk_init_extent(blk, size, flat, compress, zeroed_grain, errp);
        if (ret) {
            blk_unref(blk);
            blk = NULL;
        }
2375 2376 2377 2378 2379 2380 2381 2382 2383 2384 2385 2386 2387 2388 2389 2390 2391 2392 2393 2394 2395 2396 2397 2398 2399 2400 2401 2402 2403 2404 2405
    }
    return blk;
}

static int coroutine_fn vmdk_co_create(BlockdevCreateOptions *create_options,
                                       Error **errp)
{
    int ret;
    BlockdevCreateOptionsVmdk *opts;

    opts = &create_options->u.vmdk;

    /* Validate options */
    if (!QEMU_IS_ALIGNED(opts->size, BDRV_SECTOR_SIZE)) {
        error_setg(errp, "Image size must be a multiple of 512 bytes");
        ret = -EINVAL;
        goto out;
    }

    ret = vmdk_co_do_create(opts->size,
                            opts->subformat,
                            opts->adapter_type,
                            opts->backing_file,
                            opts->hwversion,
                            false,
                            opts->zeroed_grain,
                            vmdk_co_create_cb,
                            opts, errp);
    return ret;

out:
2406
    return ret;
2407 2408
}

B
bellard 已提交
2409
static void vmdk_close(BlockDriverState *bs)
B
bellard 已提交
2410
{
K
Kevin Wolf 已提交
2411 2412
    BDRVVmdkState *s = bs->opaque;

F
Fam Zheng 已提交
2413
    vmdk_free_extents(bs);
F
Fam Zheng 已提交
2414
    g_free(s->create_type);
K
Kevin Wolf 已提交
2415 2416 2417

    migrate_del_blocker(s->migration_blocker);
    error_free(s->migration_blocker);
B
bellard 已提交
2418 2419
}

P
Paolo Bonzini 已提交
2420
static coroutine_fn int vmdk_co_flush(BlockDriverState *bs)
P
pbrook 已提交
2421
{
F
Fam Zheng 已提交
2422
    BDRVVmdkState *s = bs->opaque;
2423 2424
    int i, err;
    int ret = 0;
F
Fam Zheng 已提交
2425 2426

    for (i = 0; i < s->num_extents; i++) {
2427
        err = bdrv_co_flush(s->extents[i].file->bs);
F
Fam Zheng 已提交
2428 2429 2430 2431 2432
        if (err < 0) {
            ret = err;
        }
    }
    return ret;
P
pbrook 已提交
2433 2434
}

2435 2436 2437 2438 2439 2440 2441
static int64_t vmdk_get_allocated_file_size(BlockDriverState *bs)
{
    int i;
    int64_t ret = 0;
    int64_t r;
    BDRVVmdkState *s = bs->opaque;

K
Kevin Wolf 已提交
2442
    ret = bdrv_get_allocated_file_size(bs->file->bs);
2443 2444 2445 2446
    if (ret < 0) {
        return ret;
    }
    for (i = 0; i < s->num_extents; i++) {
K
Kevin Wolf 已提交
2447
        if (s->extents[i].file == bs->file) {
2448 2449
            continue;
        }
2450
        r = bdrv_get_allocated_file_size(s->extents[i].file->bs);
2451 2452 2453 2454 2455 2456 2457
        if (r < 0) {
            return r;
        }
        ret += r;
    }
    return ret;
}
2458

F
Fam Zheng 已提交
2459 2460 2461 2462 2463 2464 2465 2466 2467
static int vmdk_has_zero_init(BlockDriverState *bs)
{
    int i;
    BDRVVmdkState *s = bs->opaque;

    /* If has a flat extent and its underlying storage doesn't have zero init,
     * return 0. */
    for (i = 0; i < s->num_extents; i++) {
        if (s->extents[i].flat) {
2468
            if (!bdrv_has_zero_init(s->extents[i].file->bs)) {
F
Fam Zheng 已提交
2469 2470 2471 2472 2473 2474 2475
                return 0;
            }
        }
    }
    return 1;
}

F
Fam Zheng 已提交
2476 2477 2478 2479
static ImageInfo *vmdk_get_extent_info(VmdkExtent *extent)
{
    ImageInfo *info = g_new0(ImageInfo, 1);

2480
    bdrv_refresh_filename(extent->file->bs);
F
Fam Zheng 已提交
2481
    *info = (ImageInfo){
2482
        .filename         = g_strdup(extent->file->bs->filename),
F
Fam Zheng 已提交
2483 2484 2485 2486 2487 2488 2489 2490 2491 2492 2493
        .format           = g_strdup(extent->type),
        .virtual_size     = extent->sectors * BDRV_SECTOR_SIZE,
        .compressed       = extent->compressed,
        .has_compressed   = extent->compressed,
        .cluster_size     = extent->cluster_sectors * BDRV_SECTOR_SIZE,
        .has_cluster_size = !extent->flat,
    };

    return info;
}

2494 2495 2496
static int coroutine_fn vmdk_co_check(BlockDriverState *bs,
                                      BdrvCheckResult *result,
                                      BdrvCheckMode fix)
2497 2498 2499 2500
{
    BDRVVmdkState *s = bs->opaque;
    VmdkExtent *extent = NULL;
    int64_t sector_num = 0;
2501
    int64_t total_sectors = bdrv_nb_sectors(bs);
2502 2503 2504 2505 2506 2507 2508 2509 2510 2511 2512 2513 2514 2515 2516 2517
    int ret;
    uint64_t cluster_offset;

    if (fix) {
        return -ENOTSUP;
    }

    for (;;) {
        if (sector_num >= total_sectors) {
            return 0;
        }
        extent = find_extent(s, sector_num, extent);
        if (!extent) {
            fprintf(stderr,
                    "ERROR: could not find extent for sector %" PRId64 "\n",
                    sector_num);
2518
            ret = -EINVAL;
2519 2520 2521 2522
            break;
        }
        ret = get_cluster_offset(bs, extent, NULL,
                                 sector_num << BDRV_SECTOR_BITS,
F
Fam Zheng 已提交
2523
                                 false, &cluster_offset, 0, 0);
2524 2525 2526 2527 2528 2529
        if (ret == VMDK_ERROR) {
            fprintf(stderr,
                    "ERROR: could not get cluster_offset for sector %"
                    PRId64 "\n", sector_num);
            break;
        }
2530 2531 2532 2533 2534 2535 2536 2537 2538 2539 2540 2541 2542 2543 2544 2545
        if (ret == VMDK_OK) {
            int64_t extent_len = bdrv_getlength(extent->file->bs);
            if (extent_len < 0) {
                fprintf(stderr,
                        "ERROR: could not get extent file length for sector %"
                        PRId64 "\n", sector_num);
                ret = extent_len;
                break;
            }
            if (cluster_offset >= extent_len) {
                fprintf(stderr,
                        "ERROR: cluster offset for sector %"
                        PRId64 " points after EOF\n", sector_num);
                ret = -EINVAL;
                break;
            }
2546 2547 2548 2549 2550
        }
        sector_num += extent->cluster_sectors;
    }

    result->corruptions++;
2551
    return ret;
2552 2553
}

2554 2555
static ImageInfoSpecific *vmdk_get_specific_info(BlockDriverState *bs,
                                                 Error **errp)
F
Fam Zheng 已提交
2556 2557 2558 2559 2560 2561 2562
{
    int i;
    BDRVVmdkState *s = bs->opaque;
    ImageInfoSpecific *spec_info = g_new0(ImageInfoSpecific, 1);
    ImageInfoList **next;

    *spec_info = (ImageInfoSpecific){
2563
        .type = IMAGE_INFO_SPECIFIC_KIND_VMDK,
2564 2565
        .u = {
            .vmdk.data = g_new0(ImageInfoSpecificVmdk, 1),
F
Fam Zheng 已提交
2566 2567 2568
        },
    };

2569
    *spec_info->u.vmdk.data = (ImageInfoSpecificVmdk) {
F
Fam Zheng 已提交
2570 2571 2572 2573 2574
        .create_type = g_strdup(s->create_type),
        .cid = s->cid,
        .parent_cid = s->parent_cid,
    };

2575
    next = &spec_info->u.vmdk.data->extents;
F
Fam Zheng 已提交
2576 2577 2578 2579 2580 2581 2582 2583 2584 2585
    for (i = 0; i < s->num_extents; i++) {
        *next = g_new0(ImageInfoList, 1);
        (*next)->value = vmdk_get_extent_info(&s->extents[i]);
        (*next)->next = NULL;
        next = &(*next)->next;
    }

    return spec_info;
}

2586 2587 2588 2589 2590 2591 2592
static bool vmdk_extents_type_eq(const VmdkExtent *a, const VmdkExtent *b)
{
    return a->flat == b->flat &&
           a->compressed == b->compressed &&
           (a->flat || a->cluster_sectors == b->cluster_sectors);
}

F
Fam Zheng 已提交
2593 2594 2595 2596 2597
static int vmdk_get_info(BlockDriverState *bs, BlockDriverInfo *bdi)
{
    int i;
    BDRVVmdkState *s = bs->opaque;
    assert(s->num_extents);
2598

F
Fam Zheng 已提交
2599 2600
    /* See if we have multiple extents but they have different cases */
    for (i = 1; i < s->num_extents; i++) {
2601
        if (!vmdk_extents_type_eq(&s->extents[0], &s->extents[i])) {
F
Fam Zheng 已提交
2602 2603 2604
            return -ENOTSUP;
        }
    }
2605 2606 2607 2608
    bdi->needs_compressed_writes = s->extents[0].compressed;
    if (!s->extents[0].flat) {
        bdi->cluster_size = s->extents[0].cluster_sectors << BDRV_SECTOR_BITS;
    }
F
Fam Zheng 已提交
2609 2610 2611
    return 0;
}

2612 2613 2614 2615 2616 2617 2618 2619 2620 2621 2622 2623 2624 2625 2626 2627 2628
static void vmdk_gather_child_options(BlockDriverState *bs, QDict *target,
                                      bool backing_overridden)
{
    /* No children but file and backing can be explicitly specified (TODO) */
    qdict_put(target, "file",
              qobject_ref(bs->file->bs->full_open_options));

    if (backing_overridden) {
        if (bs->backing) {
            qdict_put(target, "backing",
                      qobject_ref(bs->backing->bs->full_open_options));
        } else {
            qdict_put_null(target, "backing");
        }
    }
}

2629 2630 2631 2632 2633 2634 2635 2636 2637 2638 2639 2640 2641 2642 2643 2644 2645 2646 2647 2648 2649 2650 2651 2652 2653 2654
static QemuOptsList vmdk_create_opts = {
    .name = "vmdk-create-opts",
    .head = QTAILQ_HEAD_INITIALIZER(vmdk_create_opts.head),
    .desc = {
        {
            .name = BLOCK_OPT_SIZE,
            .type = QEMU_OPT_SIZE,
            .help = "Virtual disk size"
        },
        {
            .name = BLOCK_OPT_ADAPTER_TYPE,
            .type = QEMU_OPT_STRING,
            .help = "Virtual adapter type, can be one of "
                    "ide (default), lsilogic, buslogic or legacyESX"
        },
        {
            .name = BLOCK_OPT_BACKING_FILE,
            .type = QEMU_OPT_STRING,
            .help = "File name of a base image"
        },
        {
            .name = BLOCK_OPT_COMPAT6,
            .type = QEMU_OPT_BOOL,
            .help = "VMDK version 6 image",
            .def_value_str = "off"
        },
2655 2656 2657 2658 2659 2660
        {
            .name = BLOCK_OPT_HWVERSION,
            .type = QEMU_OPT_STRING,
            .help = "VMDK hardware version",
            .def_value_str = "undefined"
        },
2661 2662 2663 2664 2665 2666 2667 2668 2669 2670 2671 2672 2673 2674 2675
        {
            .name = BLOCK_OPT_SUBFMT,
            .type = QEMU_OPT_STRING,
            .help =
                "VMDK flat extent format, can be one of "
                "{monolithicSparse (default) | monolithicFlat | twoGbMaxExtentSparse | twoGbMaxExtentFlat | streamOptimized} "
        },
        {
            .name = BLOCK_OPT_ZEROED_GRAIN,
            .type = QEMU_OPT_BOOL,
            .help = "Enable efficient zero writes "
                    "using the zeroed-grain GTE feature"
        },
        { /* end of list */ }
    }
2676 2677
};

2678
static BlockDriver bdrv_vmdk = {
F
Fam Zheng 已提交
2679 2680 2681 2682
    .format_name                  = "vmdk",
    .instance_size                = sizeof(BDRVVmdkState),
    .bdrv_probe                   = vmdk_probe,
    .bdrv_open                    = vmdk_open,
2683
    .bdrv_co_check                = vmdk_co_check,
F
Fam Zheng 已提交
2684
    .bdrv_reopen_prepare          = vmdk_reopen_prepare,
2685
    .bdrv_child_perm              = bdrv_format_default_perms,
2686
    .bdrv_co_preadv               = vmdk_co_preadv,
2687
    .bdrv_co_pwritev              = vmdk_co_pwritev,
2688
    .bdrv_co_pwritev_compressed   = vmdk_co_pwritev_compressed,
2689
    .bdrv_co_pwrite_zeroes        = vmdk_co_pwrite_zeroes,
F
Fam Zheng 已提交
2690
    .bdrv_close                   = vmdk_close,
2691
    .bdrv_co_create_opts          = vmdk_co_create_opts,
2692
    .bdrv_co_create               = vmdk_co_create,
F
Fam Zheng 已提交
2693
    .bdrv_co_flush_to_disk        = vmdk_co_flush,
2694
    .bdrv_co_block_status         = vmdk_co_block_status,
F
Fam Zheng 已提交
2695 2696
    .bdrv_get_allocated_file_size = vmdk_get_allocated_file_size,
    .bdrv_has_zero_init           = vmdk_has_zero_init,
F
Fam Zheng 已提交
2697
    .bdrv_get_specific_info       = vmdk_get_specific_info,
2698
    .bdrv_refresh_limits          = vmdk_refresh_limits,
F
Fam Zheng 已提交
2699
    .bdrv_get_info                = vmdk_get_info,
2700
    .bdrv_gather_child_options    = vmdk_gather_child_options,
F
Fam Zheng 已提交
2701

2702
    .supports_backing             = true,
2703
    .create_opts                  = &vmdk_create_opts,
B
bellard 已提交
2704
};
2705 2706 2707 2708 2709 2710 2711

static void bdrv_vmdk_init(void)
{
    bdrv_register(&bdrv_vmdk);
}

block_init(bdrv_vmdk_init);