virtio.c 35.8 KB
Newer Older
A
aliguori 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15
/*
 * Virtio Support
 *
 * Copyright IBM, Corp. 2007
 *
 * Authors:
 *  Anthony Liguori   <aliguori@us.ibm.com>
 *
 * This work is licensed under the terms of the GNU GPL, version 2.  See
 * the COPYING file in the top-level directory.
 *
 */

#include <inttypes.h>

16
#include "trace.h"
17
#include "exec/address-spaces.h"
18
#include "qemu/error-report.h"
P
Paolo Bonzini 已提交
19
#include "hw/virtio/virtio.h"
20
#include "qemu/atomic.h"
P
Paolo Bonzini 已提交
21
#include "hw/virtio/virtio-bus.h"
22
#include "migration/migration.h"
23
#include "hw/virtio/virtio-access.h"
A
aliguori 已提交
24

25 26 27 28 29
/*
 * The alignment to use between consumer and producer parts of vring.
 * x86 pagesize again. This is the default, used by transports like PCI
 * which don't provide a means for the guest to tell the host the alignment.
 */
30 31
#define VIRTIO_PCI_VRING_ALIGN         4096

A
aliguori 已提交
32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62
typedef struct VRingDesc
{
    uint64_t addr;
    uint32_t len;
    uint16_t flags;
    uint16_t next;
} VRingDesc;

typedef struct VRingAvail
{
    uint16_t flags;
    uint16_t idx;
    uint16_t ring[0];
} VRingAvail;

typedef struct VRingUsedElem
{
    uint32_t id;
    uint32_t len;
} VRingUsedElem;

typedef struct VRingUsed
{
    uint16_t flags;
    uint16_t idx;
    VRingUsedElem ring[0];
} VRingUsed;

typedef struct VRing
{
    unsigned int num;
63
    unsigned int align;
A
Avi Kivity 已提交
64 65 66
    hwaddr desc;
    hwaddr avail;
    hwaddr used;
A
aliguori 已提交
67 68 69 70 71
} VRing;

struct VirtQueue
{
    VRing vring;
A
Avi Kivity 已提交
72
    hwaddr pa;
A
aliguori 已提交
73
    uint16_t last_avail_idx;
M
Michael S. Tsirkin 已提交
74 75 76 77 78 79 80 81 82
    /* Last used index value we have signalled on */
    uint16_t signalled_used;

    /* Last used index value we have signalled on */
    bool signalled_used_valid;

    /* Notification enabled? */
    bool notification;

83 84
    uint16_t queue_index;

A
aliguori 已提交
85
    int inuse;
M
Michael S. Tsirkin 已提交
86

87
    uint16_t vector;
A
aliguori 已提交
88
    void (*handle_output)(VirtIODevice *vdev, VirtQueue *vq);
89 90 91
    VirtIODevice *vdev;
    EventNotifier guest_notifier;
    EventNotifier host_notifier;
A
aliguori 已提交
92 93 94
};

/* virt queue functions */
P
Paul Brook 已提交
95
static void virtqueue_init(VirtQueue *vq)
A
aliguori 已提交
96
{
A
Avi Kivity 已提交
97
    hwaddr pa = vq->pa;
P
Paul Brook 已提交
98

A
aliguori 已提交
99 100
    vq->vring.desc = pa;
    vq->vring.avail = pa + vq->vring.num * sizeof(VRingDesc);
101 102
    vq->vring.used = vring_align(vq->vring.avail +
                                 offsetof(VRingAvail, ring[vq->vring.num]),
103
                                 vq->vring.align);
A
aliguori 已提交
104 105
}

106 107
static inline uint64_t vring_desc_addr(VirtIODevice *vdev, hwaddr desc_pa,
                                       int i)
A
aliguori 已提交
108
{
A
Avi Kivity 已提交
109
    hwaddr pa;
110
    pa = desc_pa + sizeof(VRingDesc) * i + offsetof(VRingDesc, addr);
111
    return virtio_ldq_phys(vdev, pa);
A
aliguori 已提交
112 113
}

114
static inline uint32_t vring_desc_len(VirtIODevice *vdev, hwaddr desc_pa, int i)
A
aliguori 已提交
115
{
A
Avi Kivity 已提交
116
    hwaddr pa;
117
    pa = desc_pa + sizeof(VRingDesc) * i + offsetof(VRingDesc, len);
118
    return virtio_ldl_phys(vdev, pa);
A
aliguori 已提交
119 120
}

121 122
static inline uint16_t vring_desc_flags(VirtIODevice *vdev, hwaddr desc_pa,
                                        int i)
A
aliguori 已提交
123
{
A
Avi Kivity 已提交
124
    hwaddr pa;
125
    pa = desc_pa + sizeof(VRingDesc) * i + offsetof(VRingDesc, flags);
126
    return virtio_lduw_phys(vdev, pa);
A
aliguori 已提交
127 128
}

129 130
static inline uint16_t vring_desc_next(VirtIODevice *vdev, hwaddr desc_pa,
                                       int i)
A
aliguori 已提交
131
{
A
Avi Kivity 已提交
132
    hwaddr pa;
133
    pa = desc_pa + sizeof(VRingDesc) * i + offsetof(VRingDesc, next);
134
    return virtio_lduw_phys(vdev, pa);
A
aliguori 已提交
135 136 137 138
}

static inline uint16_t vring_avail_flags(VirtQueue *vq)
{
A
Avi Kivity 已提交
139
    hwaddr pa;
A
aliguori 已提交
140
    pa = vq->vring.avail + offsetof(VRingAvail, flags);
141
    return virtio_lduw_phys(vq->vdev, pa);
A
aliguori 已提交
142 143 144 145
}

static inline uint16_t vring_avail_idx(VirtQueue *vq)
{
A
Avi Kivity 已提交
146
    hwaddr pa;
A
aliguori 已提交
147
    pa = vq->vring.avail + offsetof(VRingAvail, idx);
148
    return virtio_lduw_phys(vq->vdev, pa);
A
aliguori 已提交
149 150 151 152
}

static inline uint16_t vring_avail_ring(VirtQueue *vq, int i)
{
A
Avi Kivity 已提交
153
    hwaddr pa;
A
aliguori 已提交
154
    pa = vq->vring.avail + offsetof(VRingAvail, ring[i]);
155
    return virtio_lduw_phys(vq->vdev, pa);
A
aliguori 已提交
156 157
}

M
Michael S. Tsirkin 已提交
158 159 160 161 162
static inline uint16_t vring_used_event(VirtQueue *vq)
{
    return vring_avail_ring(vq, vq->vring.num);
}

A
aliguori 已提交
163 164
static inline void vring_used_ring_id(VirtQueue *vq, int i, uint32_t val)
{
A
Avi Kivity 已提交
165
    hwaddr pa;
A
aliguori 已提交
166
    pa = vq->vring.used + offsetof(VRingUsed, ring[i].id);
167
    virtio_stl_phys(vq->vdev, pa, val);
A
aliguori 已提交
168 169 170 171
}

static inline void vring_used_ring_len(VirtQueue *vq, int i, uint32_t val)
{
A
Avi Kivity 已提交
172
    hwaddr pa;
A
aliguori 已提交
173
    pa = vq->vring.used + offsetof(VRingUsed, ring[i].len);
174
    virtio_stl_phys(vq->vdev, pa, val);
A
aliguori 已提交
175 176 177 178
}

static uint16_t vring_used_idx(VirtQueue *vq)
{
A
Avi Kivity 已提交
179
    hwaddr pa;
A
aliguori 已提交
180
    pa = vq->vring.used + offsetof(VRingUsed, idx);
181
    return virtio_lduw_phys(vq->vdev, pa);
A
aliguori 已提交
182 183
}

M
Michael S. Tsirkin 已提交
184
static inline void vring_used_idx_set(VirtQueue *vq, uint16_t val)
A
aliguori 已提交
185
{
A
Avi Kivity 已提交
186
    hwaddr pa;
A
aliguori 已提交
187
    pa = vq->vring.used + offsetof(VRingUsed, idx);
188
    virtio_stw_phys(vq->vdev, pa, val);
A
aliguori 已提交
189 190 191 192
}

static inline void vring_used_flags_set_bit(VirtQueue *vq, int mask)
{
193
    VirtIODevice *vdev = vq->vdev;
A
Avi Kivity 已提交
194
    hwaddr pa;
A
aliguori 已提交
195
    pa = vq->vring.used + offsetof(VRingUsed, flags);
196
    virtio_stw_phys(vdev, pa, virtio_lduw_phys(vdev, pa) | mask);
A
aliguori 已提交
197 198 199 200
}

static inline void vring_used_flags_unset_bit(VirtQueue *vq, int mask)
{
201
    VirtIODevice *vdev = vq->vdev;
A
Avi Kivity 已提交
202
    hwaddr pa;
A
aliguori 已提交
203
    pa = vq->vring.used + offsetof(VRingUsed, flags);
204
    virtio_stw_phys(vdev, pa, virtio_lduw_phys(vdev, pa) & ~mask);
A
aliguori 已提交
205 206
}

M
Michael S. Tsirkin 已提交
207 208
static inline void vring_avail_event(VirtQueue *vq, uint16_t val)
{
A
Avi Kivity 已提交
209
    hwaddr pa;
M
Michael S. Tsirkin 已提交
210 211 212 213
    if (!vq->notification) {
        return;
    }
    pa = vq->vring.used + offsetof(VRingUsed, ring[vq->vring.num]);
214
    virtio_stw_phys(vq->vdev, pa, val);
M
Michael S. Tsirkin 已提交
215 216
}

A
aliguori 已提交
217 218
void virtio_queue_set_notification(VirtQueue *vq, int enable)
{
M
Michael S. Tsirkin 已提交
219 220 221 222
    vq->notification = enable;
    if (vq->vdev->guest_features & (1 << VIRTIO_RING_F_EVENT_IDX)) {
        vring_avail_event(vq, vring_avail_idx(vq));
    } else if (enable) {
A
aliguori 已提交
223
        vring_used_flags_unset_bit(vq, VRING_USED_F_NO_NOTIFY);
M
Michael S. Tsirkin 已提交
224
    } else {
A
aliguori 已提交
225
        vring_used_flags_set_bit(vq, VRING_USED_F_NO_NOTIFY);
M
Michael S. Tsirkin 已提交
226
    }
227 228 229 230
    if (enable) {
        /* Expose avail event/used flags before caller checks the avail idx. */
        smp_mb();
    }
A
aliguori 已提交
231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248
}

int virtio_queue_ready(VirtQueue *vq)
{
    return vq->vring.avail != 0;
}

int virtio_queue_empty(VirtQueue *vq)
{
    return vring_avail_idx(vq) == vq->last_avail_idx;
}

void virtqueue_fill(VirtQueue *vq, const VirtQueueElement *elem,
                    unsigned int len, unsigned int idx)
{
    unsigned int offset;
    int i;

249 250
    trace_virtqueue_fill(vq, elem, len, idx);

A
aliguori 已提交
251 252 253 254
    offset = 0;
    for (i = 0; i < elem->in_num; i++) {
        size_t size = MIN(len - offset, elem->in_sg[i].iov_len);

255 256 257
        cpu_physical_memory_unmap(elem->in_sg[i].iov_base,
                                  elem->in_sg[i].iov_len,
                                  1, size);
A
aliguori 已提交
258

259
        offset += size;
A
aliguori 已提交
260 261
    }

262 263 264 265 266
    for (i = 0; i < elem->out_num; i++)
        cpu_physical_memory_unmap(elem->out_sg[i].iov_base,
                                  elem->out_sg[i].iov_len,
                                  0, elem->out_sg[i].iov_len);

A
aliguori 已提交
267 268 269 270 271 272 273 274 275
    idx = (idx + vring_used_idx(vq)) % vq->vring.num;

    /* Get a pointer to the next entry in the used ring. */
    vring_used_ring_id(vq, idx, elem->index);
    vring_used_ring_len(vq, idx, len);
}

void virtqueue_flush(VirtQueue *vq, unsigned int count)
{
M
Michael S. Tsirkin 已提交
276
    uint16_t old, new;
A
aliguori 已提交
277
    /* Make sure buffer is written before we update index. */
278
    smp_wmb();
279
    trace_virtqueue_flush(vq, count);
M
Michael S. Tsirkin 已提交
280 281 282
    old = vring_used_idx(vq);
    new = old + count;
    vring_used_idx_set(vq, new);
A
aliguori 已提交
283
    vq->inuse -= count;
M
Michael S. Tsirkin 已提交
284 285
    if (unlikely((int16_t)(new - vq->signalled_used) < (uint16_t)(new - old)))
        vq->signalled_used_valid = false;
A
aliguori 已提交
286 287 288 289 290 291 292 293 294 295 296 297 298 299
}

void virtqueue_push(VirtQueue *vq, const VirtQueueElement *elem,
                    unsigned int len)
{
    virtqueue_fill(vq, elem, len, 0);
    virtqueue_flush(vq, 1);
}

static int virtqueue_num_heads(VirtQueue *vq, unsigned int idx)
{
    uint16_t num_heads = vring_avail_idx(vq) - idx;

    /* Check it isn't doing very strange things with descriptor numbers. */
A
aliguori 已提交
300
    if (num_heads > vq->vring.num) {
301 302
        error_report("Guest moved used index from %u to %u",
                     idx, vring_avail_idx(vq));
A
aliguori 已提交
303 304
        exit(1);
    }
305 306 307 308 309
    /* On success, callers read a descriptor at vq->last_avail_idx.
     * Make sure descriptor read does not bypass avail index read. */
    if (num_heads) {
        smp_rmb();
    }
A
aliguori 已提交
310 311 312 313 314 315 316 317 318 319 320 321 322

    return num_heads;
}

static unsigned int virtqueue_get_head(VirtQueue *vq, unsigned int idx)
{
    unsigned int head;

    /* Grab the next descriptor number they're advertising, and increment
     * the index we've seen. */
    head = vring_avail_ring(vq, idx % vq->vring.num);

    /* If their number is silly, that's a fatal mistake. */
A
aliguori 已提交
323
    if (head >= vq->vring.num) {
324
        error_report("Guest says index %u is available", head);
A
aliguori 已提交
325 326
        exit(1);
    }
A
aliguori 已提交
327 328 329 330

    return head;
}

331
static unsigned virtqueue_next_desc(VirtIODevice *vdev, hwaddr desc_pa,
332
                                    unsigned int i, unsigned int max)
A
aliguori 已提交
333 334 335 336
{
    unsigned int next;

    /* If this descriptor says it doesn't chain, we're done. */
337
    if (!(vring_desc_flags(vdev, desc_pa, i) & VRING_DESC_F_NEXT)) {
338
        return max;
339
    }
A
aliguori 已提交
340 341

    /* Check they're not leading us off end of descriptors. */
342
    next = vring_desc_next(vdev, desc_pa, i);
A
aliguori 已提交
343
    /* Make sure compiler knows to grab that: we don't want it changing! */
344
    smp_wmb();
A
aliguori 已提交
345

346
    if (next >= max) {
347
        error_report("Desc next is %u", next);
A
aliguori 已提交
348 349
        exit(1);
    }
A
aliguori 已提交
350 351 352 353

    return next;
}

354
void virtqueue_get_avail_bytes(VirtQueue *vq, unsigned int *in_bytes,
355 356
                               unsigned int *out_bytes,
                               unsigned max_in_bytes, unsigned max_out_bytes)
A
aliguori 已提交
357
{
358
    unsigned int idx;
359
    unsigned int total_bufs, in_total, out_total;
A
aliguori 已提交
360 361 362

    idx = vq->last_avail_idx;

363
    total_bufs = in_total = out_total = 0;
A
aliguori 已提交
364
    while (virtqueue_num_heads(vq, idx)) {
365
        VirtIODevice *vdev = vq->vdev;
366
        unsigned int max, num_bufs, indirect = 0;
A
Avi Kivity 已提交
367
        hwaddr desc_pa;
A
aliguori 已提交
368 369
        int i;

370 371
        max = vq->vring.num;
        num_bufs = total_bufs;
A
aliguori 已提交
372
        i = virtqueue_get_head(vq, idx++);
373 374
        desc_pa = vq->vring.desc;

375 376
        if (vring_desc_flags(vdev, desc_pa, i) & VRING_DESC_F_INDIRECT) {
            if (vring_desc_len(vdev, desc_pa, i) % sizeof(VRingDesc)) {
377
                error_report("Invalid size for indirect buffer table");
378 379 380 381 382
                exit(1);
            }

            /* If we've got too many, that implies a descriptor loop. */
            if (num_bufs >= max) {
383
                error_report("Looped descriptor");
384 385 386 387 388
                exit(1);
            }

            /* loop over the indirect descriptor table */
            indirect = 1;
389 390
            max = vring_desc_len(vdev, desc_pa, i) / sizeof(VRingDesc);
            desc_pa = vring_desc_addr(vdev, desc_pa, i);
391
            num_bufs = i = 0;
392 393
        }

A
aliguori 已提交
394 395
        do {
            /* If we've got too many, that implies a descriptor loop. */
396
            if (++num_bufs > max) {
397
                error_report("Looped descriptor");
A
aliguori 已提交
398 399
                exit(1);
            }
A
aliguori 已提交
400

401 402
            if (vring_desc_flags(vdev, desc_pa, i) & VRING_DESC_F_WRITE) {
                in_total += vring_desc_len(vdev, desc_pa, i);
A
aliguori 已提交
403
            } else {
404
                out_total += vring_desc_len(vdev, desc_pa, i);
A
aliguori 已提交
405
            }
406 407 408
            if (in_total >= max_in_bytes && out_total >= max_out_bytes) {
                goto done;
            }
409
        } while ((i = virtqueue_next_desc(vdev, desc_pa, i, max)) != max);
410 411 412 413 414

        if (!indirect)
            total_bufs = num_bufs;
        else
            total_bufs++;
A
aliguori 已提交
415
    }
416
done:
417 418 419 420 421 422 423
    if (in_bytes) {
        *in_bytes = in_total;
    }
    if (out_bytes) {
        *out_bytes = out_total;
    }
}
A
aliguori 已提交
424

425 426 427 428 429
int virtqueue_avail_bytes(VirtQueue *vq, unsigned int in_bytes,
                          unsigned int out_bytes)
{
    unsigned int in_total, out_total;

430 431
    virtqueue_get_avail_bytes(vq, &in_total, &out_total, in_bytes, out_bytes);
    return in_bytes <= in_total && out_bytes <= out_total;
A
aliguori 已提交
432 433
}

A
Avi Kivity 已提交
434
void virtqueue_map_sg(struct iovec *sg, hwaddr *addr,
K
Kevin Wolf 已提交
435 436 437
    size_t num_sg, int is_write)
{
    unsigned int i;
A
Avi Kivity 已提交
438
    hwaddr len;
K
Kevin Wolf 已提交
439

440
    if (num_sg > VIRTQUEUE_MAX_SIZE) {
441 442 443 444 445
        error_report("virtio: map attempt out of bounds: %zd > %d",
                     num_sg, VIRTQUEUE_MAX_SIZE);
        exit(1);
    }

K
Kevin Wolf 已提交
446 447 448 449
    for (i = 0; i < num_sg; i++) {
        len = sg[i].iov_len;
        sg[i].iov_base = cpu_physical_memory_map(addr[i], &len, is_write);
        if (sg[i].iov_base == NULL || len != sg[i].iov_len) {
M
Michael Tokarev 已提交
450
            error_report("virtio: error trying to map MMIO memory");
K
Kevin Wolf 已提交
451 452 453 454 455
            exit(1);
        }
    }
}

A
aliguori 已提交
456 457
int virtqueue_pop(VirtQueue *vq, VirtQueueElement *elem)
{
458
    unsigned int i, head, max;
A
Avi Kivity 已提交
459
    hwaddr desc_pa = vq->vring.desc;
460
    VirtIODevice *vdev = vq->vdev;
A
aliguori 已提交
461 462 463 464 465 466 467

    if (!virtqueue_num_heads(vq, vq->last_avail_idx))
        return 0;

    /* When we start there are none of either input nor output. */
    elem->out_num = elem->in_num = 0;

468 469
    max = vq->vring.num;

A
aliguori 已提交
470
    i = head = virtqueue_get_head(vq, vq->last_avail_idx++);
471
    if (vdev->guest_features & (1 << VIRTIO_RING_F_EVENT_IDX)) {
M
Michael S. Tsirkin 已提交
472 473
        vring_avail_event(vq, vring_avail_idx(vq));
    }
474

475 476
    if (vring_desc_flags(vdev, desc_pa, i) & VRING_DESC_F_INDIRECT) {
        if (vring_desc_len(vdev, desc_pa, i) % sizeof(VRingDesc)) {
477
            error_report("Invalid size for indirect buffer table");
478 479 480 481
            exit(1);
        }

        /* loop over the indirect descriptor table */
482 483
        max = vring_desc_len(vdev, desc_pa, i) / sizeof(VRingDesc);
        desc_pa = vring_desc_addr(vdev, desc_pa, i);
484 485 486
        i = 0;
    }

K
Kevin Wolf 已提交
487
    /* Collect all the descriptors */
A
aliguori 已提交
488 489 490
    do {
        struct iovec *sg;

491
        if (vring_desc_flags(vdev, desc_pa, i) & VRING_DESC_F_WRITE) {
492 493 494 495
            if (elem->in_num >= ARRAY_SIZE(elem->in_sg)) {
                error_report("Too many write descriptors in indirect table");
                exit(1);
            }
496
            elem->in_addr[elem->in_num] = vring_desc_addr(vdev, desc_pa, i);
A
aliguori 已提交
497
            sg = &elem->in_sg[elem->in_num++];
K
Kevin Wolf 已提交
498
        } else {
499 500 501 502
            if (elem->out_num >= ARRAY_SIZE(elem->out_sg)) {
                error_report("Too many read descriptors in indirect table");
                exit(1);
            }
503
            elem->out_addr[elem->out_num] = vring_desc_addr(vdev, desc_pa, i);
A
aliguori 已提交
504
            sg = &elem->out_sg[elem->out_num++];
K
Kevin Wolf 已提交
505
        }
A
aliguori 已提交
506

507
        sg->iov_len = vring_desc_len(vdev, desc_pa, i);
A
aliguori 已提交
508 509

        /* If we've got too many, that implies a descriptor loop. */
510
        if ((elem->in_num + elem->out_num) > max) {
511
            error_report("Looped descriptor");
A
aliguori 已提交
512 513
            exit(1);
        }
514
    } while ((i = virtqueue_next_desc(vdev, desc_pa, i, max)) != max);
A
aliguori 已提交
515

K
Kevin Wolf 已提交
516 517 518 519
    /* Now map what we have collected */
    virtqueue_map_sg(elem->in_sg, elem->in_addr, elem->in_num, 1);
    virtqueue_map_sg(elem->out_sg, elem->out_addr, elem->out_num, 0);

A
aliguori 已提交
520 521 522 523
    elem->index = head;

    vq->inuse++;

524
    trace_virtqueue_pop(vq, elem, elem->in_num, elem->out_num);
A
aliguori 已提交
525 526 527 528
    return elem->in_num + elem->out_num;
}

/* virtio device */
529 530
static void virtio_notify_vector(VirtIODevice *vdev, uint16_t vector)
{
K
KONRAD Frederic 已提交
531 532 533 534 535
    BusState *qbus = qdev_get_parent_bus(DEVICE(vdev));
    VirtioBusClass *k = VIRTIO_BUS_GET_CLASS(qbus);

    if (k->notify) {
        k->notify(qbus->parent, vector);
536 537
    }
}
A
aliguori 已提交
538

P
Paul Brook 已提交
539
void virtio_update_irq(VirtIODevice *vdev)
A
aliguori 已提交
540
{
541
    virtio_notify_vector(vdev, VIRTIO_NO_VECTOR);
A
aliguori 已提交
542 543
}

544 545
void virtio_set_status(VirtIODevice *vdev, uint8_t val)
{
546
    VirtioDeviceClass *k = VIRTIO_DEVICE_GET_CLASS(vdev);
547 548
    trace_virtio_set_status(vdev, val);

549 550
    if (k->set_status) {
        k->set_status(vdev, val);
551 552 553 554
    }
    vdev->status = val;
}

555 556 557 558 559 560 561 562 563 564 565 566 567 568 569 570 571 572 573 574 575
bool target_words_bigendian(void);
static enum virtio_device_endian virtio_default_endian(void)
{
    if (target_words_bigendian()) {
        return VIRTIO_DEVICE_ENDIAN_BIG;
    } else {
        return VIRTIO_DEVICE_ENDIAN_LITTLE;
    }
}

static enum virtio_device_endian virtio_current_cpu_endian(void)
{
    CPUClass *cc = CPU_GET_CLASS(current_cpu);

    if (cc->virtio_is_big_endian(current_cpu)) {
        return VIRTIO_DEVICE_ENDIAN_BIG;
    } else {
        return VIRTIO_DEVICE_ENDIAN_LITTLE;
    }
}

P
Paul Brook 已提交
576
void virtio_reset(void *opaque)
A
aliguori 已提交
577 578
{
    VirtIODevice *vdev = opaque;
579
    VirtioDeviceClass *k = VIRTIO_DEVICE_GET_CLASS(vdev);
A
aliguori 已提交
580 581
    int i;

582
    virtio_set_status(vdev, 0);
583 584 585 586 587 588 589
    if (current_cpu) {
        /* Guest initiated reset */
        vdev->device_endian = virtio_current_cpu_endian();
    } else {
        /* System reset */
        vdev->device_endian = virtio_default_endian();
    }
590

591 592 593
    if (k->reset) {
        k->reset(vdev);
    }
A
aliguori 已提交
594

595
    vdev->guest_features = 0;
A
aliguori 已提交
596 597 598
    vdev->queue_sel = 0;
    vdev->status = 0;
    vdev->isr = 0;
599 600
    vdev->config_vector = VIRTIO_NO_VECTOR;
    virtio_notify_vector(vdev, vdev->config_vector);
A
aliguori 已提交
601 602 603 604 605 606

    for(i = 0; i < VIRTIO_PCI_QUEUE_MAX; i++) {
        vdev->vq[i].vring.desc = 0;
        vdev->vq[i].vring.avail = 0;
        vdev->vq[i].vring.used = 0;
        vdev->vq[i].last_avail_idx = 0;
P
Paul Brook 已提交
607
        vdev->vq[i].pa = 0;
608
        vdev->vq[i].vector = VIRTIO_NO_VECTOR;
M
Michael S. Tsirkin 已提交
609 610 611
        vdev->vq[i].signalled_used = 0;
        vdev->vq[i].signalled_used_valid = false;
        vdev->vq[i].notification = true;
A
aliguori 已提交
612 613 614
    }
}

P
Paul Brook 已提交
615
uint32_t virtio_config_readb(VirtIODevice *vdev, uint32_t addr)
A
aliguori 已提交
616
{
617
    VirtioDeviceClass *k = VIRTIO_DEVICE_GET_CLASS(vdev);
A
aliguori 已提交
618 619
    uint8_t val;

620
    if (addr + sizeof(val) > vdev->config_len) {
A
aliguori 已提交
621
        return (uint32_t)-1;
622 623 624
    }

    k->get_config(vdev, vdev->config);
A
aliguori 已提交
625

626
    val = ldub_p(vdev->config + addr);
A
aliguori 已提交
627 628 629
    return val;
}

P
Paul Brook 已提交
630
uint32_t virtio_config_readw(VirtIODevice *vdev, uint32_t addr)
A
aliguori 已提交
631
{
632
    VirtioDeviceClass *k = VIRTIO_DEVICE_GET_CLASS(vdev);
A
aliguori 已提交
633 634
    uint16_t val;

635
    if (addr + sizeof(val) > vdev->config_len) {
A
aliguori 已提交
636
        return (uint32_t)-1;
637 638 639
    }

    k->get_config(vdev, vdev->config);
A
aliguori 已提交
640

641
    val = lduw_p(vdev->config + addr);
A
aliguori 已提交
642 643 644
    return val;
}

P
Paul Brook 已提交
645
uint32_t virtio_config_readl(VirtIODevice *vdev, uint32_t addr)
A
aliguori 已提交
646
{
647
    VirtioDeviceClass *k = VIRTIO_DEVICE_GET_CLASS(vdev);
A
aliguori 已提交
648 649
    uint32_t val;

650
    if (addr + sizeof(val) > vdev->config_len) {
A
aliguori 已提交
651
        return (uint32_t)-1;
652 653 654
    }

    k->get_config(vdev, vdev->config);
A
aliguori 已提交
655

656
    val = ldl_p(vdev->config + addr);
A
aliguori 已提交
657 658 659
    return val;
}

P
Paul Brook 已提交
660
void virtio_config_writeb(VirtIODevice *vdev, uint32_t addr, uint32_t data)
A
aliguori 已提交
661
{
662
    VirtioDeviceClass *k = VIRTIO_DEVICE_GET_CLASS(vdev);
A
aliguori 已提交
663 664
    uint8_t val = data;

665
    if (addr + sizeof(val) > vdev->config_len) {
A
aliguori 已提交
666
        return;
667
    }
A
aliguori 已提交
668

669
    stb_p(vdev->config + addr, val);
A
aliguori 已提交
670

671 672 673
    if (k->set_config) {
        k->set_config(vdev, vdev->config);
    }
A
aliguori 已提交
674 675
}

P
Paul Brook 已提交
676
void virtio_config_writew(VirtIODevice *vdev, uint32_t addr, uint32_t data)
A
aliguori 已提交
677
{
678
    VirtioDeviceClass *k = VIRTIO_DEVICE_GET_CLASS(vdev);
A
aliguori 已提交
679 680
    uint16_t val = data;

681
    if (addr + sizeof(val) > vdev->config_len) {
A
aliguori 已提交
682
        return;
683
    }
A
aliguori 已提交
684

685
    stw_p(vdev->config + addr, val);
A
aliguori 已提交
686

687 688 689
    if (k->set_config) {
        k->set_config(vdev, vdev->config);
    }
A
aliguori 已提交
690 691
}

P
Paul Brook 已提交
692
void virtio_config_writel(VirtIODevice *vdev, uint32_t addr, uint32_t data)
A
aliguori 已提交
693
{
694
    VirtioDeviceClass *k = VIRTIO_DEVICE_GET_CLASS(vdev);
A
aliguori 已提交
695 696
    uint32_t val = data;

697
    if (addr + sizeof(val) > vdev->config_len) {
A
aliguori 已提交
698
        return;
699
    }
A
aliguori 已提交
700

701
    stl_p(vdev->config + addr, val);
A
aliguori 已提交
702

703 704 705
    if (k->set_config) {
        k->set_config(vdev, vdev->config);
    }
A
aliguori 已提交
706 707
}

A
Avi Kivity 已提交
708
void virtio_queue_set_addr(VirtIODevice *vdev, int n, hwaddr addr)
A
aliguori 已提交
709
{
710 711
    vdev->vq[n].pa = addr;
    virtqueue_init(&vdev->vq[n]);
P
Paul Brook 已提交
712 713
}

A
Avi Kivity 已提交
714
hwaddr virtio_queue_get_addr(VirtIODevice *vdev, int n)
P
Paul Brook 已提交
715 716 717 718
{
    return vdev->vq[n].pa;
}

719 720
void virtio_queue_set_num(VirtIODevice *vdev, int n, int num)
{
721 722 723 724 725 726 727
    /* Don't allow guest to flip queue between existent and
     * nonexistent states, or to set it to an invalid size.
     */
    if (!!num != !!vdev->vq[n].vring.num ||
        num > VIRTQUEUE_MAX_SIZE ||
        num < 0) {
        return;
728
    }
729 730
    vdev->vq[n].vring.num = num;
    virtqueue_init(&vdev->vq[n]);
731 732
}

P
Paul Brook 已提交
733 734 735 736
int virtio_queue_get_num(VirtIODevice *vdev, int n)
{
    return vdev->vq[n].vring.num;
}
A
aliguori 已提交
737

P
Paolo Bonzini 已提交
738 739 740 741 742 743 744
int virtio_queue_get_id(VirtQueue *vq)
{
    VirtIODevice *vdev = vq->vdev;
    assert(vq >= &vdev->vq[0] && vq < &vdev->vq[VIRTIO_PCI_QUEUE_MAX]);
    return vq - &vdev->vq[0];
}

745 746 747 748 749 750 751 752 753 754 755 756 757 758 759
void virtio_queue_set_align(VirtIODevice *vdev, int n, int align)
{
    BusState *qbus = qdev_get_parent_bus(DEVICE(vdev));
    VirtioBusClass *k = VIRTIO_BUS_GET_CLASS(qbus);

    /* Check that the transport told us it was going to do this
     * (so a buggy transport will immediately assert rather than
     * silently failing to migrate this state)
     */
    assert(k->has_variable_vring_alignment);

    vdev->vq[n].vring.align = align;
    virtqueue_init(&vdev->vq[n]);
}

760 761 762 763 764 765 766 767 768
void virtio_queue_notify_vq(VirtQueue *vq)
{
    if (vq->vring.desc) {
        VirtIODevice *vdev = vq->vdev;
        trace_virtio_queue_notify(vdev, vq - vdev->vq, vq);
        vq->handle_output(vdev, vq);
    }
}

P
Paul Brook 已提交
769 770
void virtio_queue_notify(VirtIODevice *vdev, int n)
{
771
    virtio_queue_notify_vq(&vdev->vq[n]);
A
aliguori 已提交
772 773
}

774 775 776 777 778 779 780 781 782 783 784 785
uint16_t virtio_queue_vector(VirtIODevice *vdev, int n)
{
    return n < VIRTIO_PCI_QUEUE_MAX ? vdev->vq[n].vector :
        VIRTIO_NO_VECTOR;
}

void virtio_queue_set_vector(VirtIODevice *vdev, int n, uint16_t vector)
{
    if (n < VIRTIO_PCI_QUEUE_MAX)
        vdev->vq[n].vector = vector;
}

A
aliguori 已提交
786 787 788 789 790 791 792 793 794 795 796 797 798 799
VirtQueue *virtio_add_queue(VirtIODevice *vdev, int queue_size,
                            void (*handle_output)(VirtIODevice *, VirtQueue *))
{
    int i;

    for (i = 0; i < VIRTIO_PCI_QUEUE_MAX; i++) {
        if (vdev->vq[i].vring.num == 0)
            break;
    }

    if (i == VIRTIO_PCI_QUEUE_MAX || queue_size > VIRTQUEUE_MAX_SIZE)
        abort();

    vdev->vq[i].vring.num = queue_size;
800
    vdev->vq[i].vring.align = VIRTIO_PCI_VRING_ALIGN;
A
aliguori 已提交
801 802 803 804 805
    vdev->vq[i].handle_output = handle_output;

    return &vdev->vq[i];
}

806 807 808 809 810 811 812 813 814
void virtio_del_queue(VirtIODevice *vdev, int n)
{
    if (n < 0 || n >= VIRTIO_PCI_QUEUE_MAX) {
        abort();
    }

    vdev->vq[n].vring.num = 0;
}

815 816
void virtio_irq(VirtQueue *vq)
{
817
    trace_virtio_irq(vq);
818 819 820 821
    vq->vdev->isr |= 0x01;
    virtio_notify_vector(vq->vdev, vq->vector);
}

M
Michael S. Tsirkin 已提交
822 823 824 825
/* Assuming a given event_idx value from the other size, if
 * we have just incremented index from old to new_idx,
 * should we trigger an event? */
static inline int vring_need_event(uint16_t event, uint16_t new, uint16_t old)
A
aliguori 已提交
826
{
M
Michael S. Tsirkin 已提交
827 828 829 830 831 832 833 834 835 836 837 838
	/* Note: Xen has similar logic for notification hold-off
	 * in include/xen/interface/io/ring.h with req_event and req_prod
	 * corresponding to event_idx + 1 and new respectively.
	 * Note also that req_event and req_prod in Xen start at 1,
	 * event indexes in virtio start at 0. */
	return (uint16_t)(new - event - 1) < (uint16_t)(new - old);
}

static bool vring_notify(VirtIODevice *vdev, VirtQueue *vq)
{
    uint16_t old, new;
    bool v;
839 840
    /* We need to expose used array entries before checking used event. */
    smp_mb();
841
    /* Always notify when queue is empty (when feature acknowledge) */
M
Michael S. Tsirkin 已提交
842 843 844 845 846 847 848 849 850 851 852 853 854 855 856 857 858 859 860
    if (((vdev->guest_features & (1 << VIRTIO_F_NOTIFY_ON_EMPTY)) &&
         !vq->inuse && vring_avail_idx(vq) == vq->last_avail_idx)) {
        return true;
    }

    if (!(vdev->guest_features & (1 << VIRTIO_RING_F_EVENT_IDX))) {
        return !(vring_avail_flags(vq) & VRING_AVAIL_F_NO_INTERRUPT);
    }

    v = vq->signalled_used_valid;
    vq->signalled_used_valid = true;
    old = vq->signalled_used;
    new = vq->signalled_used = vring_used_idx(vq);
    return !v || vring_need_event(vring_used_event(vq), new, old);
}

void virtio_notify(VirtIODevice *vdev, VirtQueue *vq)
{
    if (!vring_notify(vdev, vq)) {
A
aliguori 已提交
861
        return;
M
Michael S. Tsirkin 已提交
862
    }
A
aliguori 已提交
863

864
    trace_virtio_notify(vdev, vq);
A
aliguori 已提交
865
    vdev->isr |= 0x01;
866
    virtio_notify_vector(vdev, vq->vector);
A
aliguori 已提交
867 868 869 870
}

void virtio_notify_config(VirtIODevice *vdev)
{
871 872 873
    if (!(vdev->status & VIRTIO_CONFIG_S_DRIVER_OK))
        return;

A
aliguori 已提交
874
    vdev->isr |= 0x03;
875
    virtio_notify_vector(vdev, vdev->config_vector);
A
aliguori 已提交
876 877
}

878 879 880 881 882 883 884 885 886 887 888 889 890 891 892 893 894 895
static bool virtio_device_endian_needed(void *opaque)
{
    VirtIODevice *vdev = opaque;

    assert(vdev->device_endian != VIRTIO_DEVICE_ENDIAN_UNKNOWN);
    return vdev->device_endian != virtio_default_endian();
}

static const VMStateDescription vmstate_virtio_device_endian = {
    .name = "virtio/device_endian",
    .version_id = 1,
    .minimum_version_id = 1,
    .fields = (VMStateField[]) {
        VMSTATE_UINT8(device_endian, VirtIODevice),
        VMSTATE_END_OF_LIST()
    }
};

896 897 898 899 900 901 902
static const VMStateDescription vmstate_virtio = {
    .name = "virtio",
    .version_id = 1,
    .minimum_version_id = 1,
    .minimum_version_id_old = 1,
    .fields = (VMStateField[]) {
        VMSTATE_END_OF_LIST()
903 904 905 906 907 908 909
    },
    .subsections = (VMStateSubsection[]) {
        {
            .vmsd = &vmstate_virtio_device_endian,
            .needed = &virtio_device_endian_needed
        },
        { 0 }
910 911 912
    }
};

A
aliguori 已提交
913 914
void virtio_save(VirtIODevice *vdev, QEMUFile *f)
{
K
KONRAD Frederic 已提交
915 916
    BusState *qbus = qdev_get_parent_bus(DEVICE(vdev));
    VirtioBusClass *k = VIRTIO_BUS_GET_CLASS(qbus);
917
    VirtioDeviceClass *vdc = VIRTIO_DEVICE_GET_CLASS(vdev);
A
aliguori 已提交
918 919
    int i;

K
KONRAD Frederic 已提交
920 921 922
    if (k->save_config) {
        k->save_config(qbus->parent, f);
    }
A
aliguori 已提交
923 924 925 926

    qemu_put_8s(f, &vdev->status);
    qemu_put_8s(f, &vdev->isr);
    qemu_put_be16s(f, &vdev->queue_sel);
927
    qemu_put_be32s(f, &vdev->guest_features);
A
aliguori 已提交
928 929 930 931 932 933 934 935 936 937 938 939 940 941 942
    qemu_put_be32(f, vdev->config_len);
    qemu_put_buffer(f, vdev->config, vdev->config_len);

    for (i = 0; i < VIRTIO_PCI_QUEUE_MAX; i++) {
        if (vdev->vq[i].vring.num == 0)
            break;
    }

    qemu_put_be32(f, i);

    for (i = 0; i < VIRTIO_PCI_QUEUE_MAX; i++) {
        if (vdev->vq[i].vring.num == 0)
            break;

        qemu_put_be32(f, vdev->vq[i].vring.num);
943 944 945
        if (k->has_variable_vring_alignment) {
            qemu_put_be32(f, vdev->vq[i].vring.align);
        }
P
Paul Brook 已提交
946
        qemu_put_be64(f, vdev->vq[i].pa);
A
aliguori 已提交
947
        qemu_put_be16s(f, &vdev->vq[i].last_avail_idx);
K
KONRAD Frederic 已提交
948 949 950
        if (k->save_queue) {
            k->save_queue(qbus->parent, i, f);
        }
A
aliguori 已提交
951
    }
952 953 954 955

    if (vdc->save != NULL) {
        vdc->save(vdev, f);
    }
956 957 958

    /* Subsections */
    vmstate_save_state(f, &vmstate_virtio, vdev);
A
aliguori 已提交
959 960
}

961 962
int virtio_set_features(VirtIODevice *vdev, uint32_t val)
{
K
KONRAD Frederic 已提交
963 964
    BusState *qbus = qdev_get_parent_bus(DEVICE(vdev));
    VirtioBusClass *vbusk = VIRTIO_BUS_GET_CLASS(qbus);
965
    VirtioDeviceClass *k = VIRTIO_DEVICE_GET_CLASS(vdev);
K
KONRAD Frederic 已提交
966
    uint32_t supported_features = vbusk->get_features(qbus->parent);
967 968 969
    bool bad = (val & ~supported_features) != 0;

    val &= supported_features;
970 971
    if (k->set_features) {
        k->set_features(vdev, val);
972 973 974 975 976
    }
    vdev->guest_features = val;
    return bad ? -1 : 0;
}

977
int virtio_load(VirtIODevice *vdev, QEMUFile *f, int version_id)
A
aliguori 已提交
978
{
979
    int i, ret;
980
    int32_t config_len;
981
    uint32_t num;
982
    uint32_t features;
983
    uint32_t supported_features;
K
KONRAD Frederic 已提交
984 985
    BusState *qbus = qdev_get_parent_bus(DEVICE(vdev));
    VirtioBusClass *k = VIRTIO_BUS_GET_CLASS(qbus);
986
    VirtioDeviceClass *vdc = VIRTIO_DEVICE_GET_CLASS(vdev);
A
aliguori 已提交
987

988 989 990 991 992 993
    /*
     * We poison the endianness to ensure it does not get used before
     * subsections have been loaded.
     */
    vdev->device_endian = VIRTIO_DEVICE_ENDIAN_UNKNOWN;

K
KONRAD Frederic 已提交
994 995
    if (k->load_config) {
        ret = k->load_config(qbus->parent, f);
996 997 998
        if (ret)
            return ret;
    }
A
aliguori 已提交
999 1000 1001 1002

    qemu_get_8s(f, &vdev->status);
    qemu_get_8s(f, &vdev->isr);
    qemu_get_be16s(f, &vdev->queue_sel);
1003 1004 1005
    if (vdev->queue_sel >= VIRTIO_PCI_QUEUE_MAX) {
        return -1;
    }
1006
    qemu_get_be32s(f, &features);
1007 1008

    if (virtio_set_features(vdev, features) < 0) {
K
KONRAD Frederic 已提交
1009
        supported_features = k->get_features(qbus->parent);
1010 1011
        error_report("Features 0x%x unsupported. Allowed features: 0x%x",
                     features, supported_features);
1012 1013
        return -1;
    }
1014
    config_len = qemu_get_be32(f);
1015 1016 1017 1018 1019 1020 1021 1022 1023 1024 1025

    /*
     * There are cases where the incoming config can be bigger or smaller
     * than what we have; so load what we have space for, and skip
     * any excess that's in the stream.
     */
    qemu_get_buffer(f, vdev->config, MIN(config_len, vdev->config_len));

    while (config_len > vdev->config_len) {
        qemu_get_byte(f);
        config_len--;
1026
    }
A
aliguori 已提交
1027 1028 1029

    num = qemu_get_be32(f);

1030 1031 1032 1033 1034
    if (num > VIRTIO_PCI_QUEUE_MAX) {
        error_report("Invalid number of PCI queues: 0x%x", num);
        return -1;
    }

A
aliguori 已提交
1035 1036
    for (i = 0; i < num; i++) {
        vdev->vq[i].vring.num = qemu_get_be32(f);
1037 1038 1039
        if (k->has_variable_vring_alignment) {
            vdev->vq[i].vring.align = qemu_get_be32(f);
        }
P
Paul Brook 已提交
1040
        vdev->vq[i].pa = qemu_get_be64(f);
A
aliguori 已提交
1041
        qemu_get_be16s(f, &vdev->vq[i].last_avail_idx);
M
Michael S. Tsirkin 已提交
1042 1043
        vdev->vq[i].signalled_used_valid = false;
        vdev->vq[i].notification = true;
A
aliguori 已提交
1044

P
Paul Brook 已提交
1045 1046
        if (vdev->vq[i].pa) {
            virtqueue_init(&vdev->vq[i]);
M
Michael S. Tsirkin 已提交
1047 1048
        } else if (vdev->vq[i].last_avail_idx) {
            error_report("VQ %d address 0x0 "
1049
                         "inconsistent with Host index 0x%x",
M
Michael S. Tsirkin 已提交
1050 1051
                         i, vdev->vq[i].last_avail_idx);
                return -1;
1052
	}
K
KONRAD Frederic 已提交
1053 1054
        if (k->load_queue) {
            ret = k->load_queue(qbus->parent, i, f);
1055 1056
            if (ret)
                return ret;
1057
        }
A
aliguori 已提交
1058 1059
    }

1060
    virtio_notify_vector(vdev, VIRTIO_NO_VECTOR);
1061 1062

    if (vdc->load != NULL) {
1063 1064 1065 1066
        ret = vdc->load(vdev, f, version_id);
        if (ret) {
            return ret;
        }
1067 1068
    }

1069 1070 1071 1072 1073 1074 1075 1076 1077 1078 1079 1080 1081 1082 1083 1084 1085 1086 1087 1088 1089 1090 1091 1092 1093 1094 1095
    /* Subsections */
    ret = vmstate_load_state(f, &vmstate_virtio, vdev, 1);
    if (ret) {
        return ret;
    }

    if (vdev->device_endian == VIRTIO_DEVICE_ENDIAN_UNKNOWN) {
        vdev->device_endian = virtio_default_endian();
    }

    for (i = 0; i < num; i++) {
        if (vdev->vq[i].pa) {
            uint16_t nheads;
            nheads = vring_avail_idx(&vdev->vq[i]) - vdev->vq[i].last_avail_idx;
            /* Check it isn't doing strange things with descriptor numbers. */
            if (nheads > vdev->vq[i].vring.num) {
                error_report("VQ %d size 0x%x Guest index 0x%x "
                             "inconsistent with Host index 0x%x: delta 0x%x",
                             i, vdev->vq[i].vring.num,
                             vring_avail_idx(&vdev->vq[i]),
                             vdev->vq[i].last_avail_idx, nheads);
                return -1;
            }
        }
    }

    return 0;
A
aliguori 已提交
1096 1097
}

1098
void virtio_cleanup(VirtIODevice *vdev)
1099
{
1100
    qemu_del_vm_change_state_handler(vdev->vmstate);
1101
    g_free(vdev->config);
1102
    g_free(vdev->vq);
1103 1104
}

1105
static void virtio_vmstate_change(void *opaque, int running, RunState state)
1106 1107
{
    VirtIODevice *vdev = opaque;
K
KONRAD Frederic 已提交
1108 1109
    BusState *qbus = qdev_get_parent_bus(DEVICE(vdev));
    VirtioBusClass *k = VIRTIO_BUS_GET_CLASS(qbus);
1110
    bool backend_run = running && (vdev->status & VIRTIO_CONFIG_S_DRIVER_OK);
1111 1112 1113 1114

    if (running) {
        vdev->vm_running = running;
    }
1115 1116 1117 1118 1119

    if (backend_run) {
        virtio_set_status(vdev, vdev->status);
    }

K
KONRAD Frederic 已提交
1120 1121
    if (k->vmstate_change) {
        k->vmstate_change(qbus->parent, backend_run);
1122 1123 1124 1125 1126
    }

    if (!backend_run) {
        virtio_set_status(vdev, vdev->status);
    }
1127 1128 1129 1130

    if (!running) {
        vdev->vm_running = running;
    }
1131 1132
}

1133 1134
void virtio_init(VirtIODevice *vdev, const char *name,
                 uint16_t device_id, size_t config_size)
A
aliguori 已提交
1135
{
1136
    int i;
P
Paul Brook 已提交
1137
    vdev->device_id = device_id;
A
aliguori 已提交
1138 1139 1140
    vdev->status = 0;
    vdev->isr = 0;
    vdev->queue_sel = 0;
1141
    vdev->config_vector = VIRTIO_NO_VECTOR;
1142
    vdev->vq = g_malloc0(sizeof(VirtQueue) * VIRTIO_PCI_QUEUE_MAX);
1143
    vdev->vm_running = runstate_is_running();
1144
    for (i = 0; i < VIRTIO_PCI_QUEUE_MAX; i++) {
1145
        vdev->vq[i].vector = VIRTIO_NO_VECTOR;
1146
        vdev->vq[i].vdev = vdev;
1147
        vdev->vq[i].queue_index = i;
1148
    }
A
aliguori 已提交
1149 1150 1151

    vdev->name = name;
    vdev->config_len = config_size;
1152
    if (vdev->config_len) {
1153
        vdev->config = g_malloc0(config_size);
1154
    } else {
A
aliguori 已提交
1155
        vdev->config = NULL;
1156 1157 1158
    }
    vdev->vmstate = qemu_add_vm_change_state_handler(virtio_vmstate_change,
                                                     vdev);
1159
    vdev->device_endian = virtio_default_endian();
1160
}
A
aliguori 已提交
1161

A
Avi Kivity 已提交
1162
hwaddr virtio_queue_get_desc_addr(VirtIODevice *vdev, int n)
1163 1164 1165 1166
{
    return vdev->vq[n].vring.desc;
}

A
Avi Kivity 已提交
1167
hwaddr virtio_queue_get_avail_addr(VirtIODevice *vdev, int n)
1168 1169 1170 1171
{
    return vdev->vq[n].vring.avail;
}

A
Avi Kivity 已提交
1172
hwaddr virtio_queue_get_used_addr(VirtIODevice *vdev, int n)
1173 1174 1175 1176
{
    return vdev->vq[n].vring.used;
}

A
Avi Kivity 已提交
1177
hwaddr virtio_queue_get_ring_addr(VirtIODevice *vdev, int n)
1178 1179 1180 1181
{
    return vdev->vq[n].vring.desc;
}

A
Avi Kivity 已提交
1182
hwaddr virtio_queue_get_desc_size(VirtIODevice *vdev, int n)
1183 1184 1185 1186
{
    return sizeof(VRingDesc) * vdev->vq[n].vring.num;
}

A
Avi Kivity 已提交
1187
hwaddr virtio_queue_get_avail_size(VirtIODevice *vdev, int n)
1188 1189
{
    return offsetof(VRingAvail, ring) +
1190
        sizeof(uint64_t) * vdev->vq[n].vring.num;
1191 1192
}

A
Avi Kivity 已提交
1193
hwaddr virtio_queue_get_used_size(VirtIODevice *vdev, int n)
1194 1195 1196 1197 1198
{
    return offsetof(VRingUsed, ring) +
        sizeof(VRingUsedElem) * vdev->vq[n].vring.num;
}

A
Avi Kivity 已提交
1199
hwaddr virtio_queue_get_ring_size(VirtIODevice *vdev, int n)
1200 1201 1202 1203 1204 1205 1206 1207 1208 1209 1210 1211 1212 1213 1214
{
    return vdev->vq[n].vring.used - vdev->vq[n].vring.desc +
	    virtio_queue_get_used_size(vdev, n);
}

uint16_t virtio_queue_get_last_avail_idx(VirtIODevice *vdev, int n)
{
    return vdev->vq[n].last_avail_idx;
}

void virtio_queue_set_last_avail_idx(VirtIODevice *vdev, int n, uint16_t idx)
{
    vdev->vq[n].last_avail_idx = idx;
}

1215 1216 1217 1218 1219
void virtio_queue_invalidate_signalled_used(VirtIODevice *vdev, int n)
{
    vdev->vq[n].signalled_used_valid = false;
}

1220 1221 1222 1223 1224
VirtQueue *virtio_get_queue(VirtIODevice *vdev, int n)
{
    return vdev->vq + n;
}

1225 1226 1227 1228 1229
uint16_t virtio_get_queue_index(VirtQueue *vq)
{
    return vq->queue_index;
}

1230 1231 1232 1233 1234 1235 1236 1237 1238 1239 1240 1241 1242 1243 1244 1245 1246 1247 1248 1249 1250 1251 1252 1253
static void virtio_queue_guest_notifier_read(EventNotifier *n)
{
    VirtQueue *vq = container_of(n, VirtQueue, guest_notifier);
    if (event_notifier_test_and_clear(n)) {
        virtio_irq(vq);
    }
}

void virtio_queue_set_guest_notifier_fd_handler(VirtQueue *vq, bool assign,
                                                bool with_irqfd)
{
    if (assign && !with_irqfd) {
        event_notifier_set_handler(&vq->guest_notifier,
                                   virtio_queue_guest_notifier_read);
    } else {
        event_notifier_set_handler(&vq->guest_notifier, NULL);
    }
    if (!assign) {
        /* Test and clear notifier before closing it,
         * in case poll callback didn't have time to run. */
        virtio_queue_guest_notifier_read(&vq->guest_notifier);
    }
}

1254 1255 1256 1257
EventNotifier *virtio_queue_get_guest_notifier(VirtQueue *vq)
{
    return &vq->guest_notifier;
}
1258 1259 1260 1261 1262 1263 1264 1265 1266

static void virtio_queue_host_notifier_read(EventNotifier *n)
{
    VirtQueue *vq = container_of(n, VirtQueue, host_notifier);
    if (event_notifier_test_and_clear(n)) {
        virtio_queue_notify_vq(vq);
    }
}

P
Paolo Bonzini 已提交
1267 1268
void virtio_queue_set_host_notifier_fd_handler(VirtQueue *vq, bool assign,
                                               bool set_handler)
1269
{
P
Paolo Bonzini 已提交
1270
    if (assign && set_handler) {
1271 1272 1273 1274
        event_notifier_set_handler(&vq->host_notifier,
                                   virtio_queue_host_notifier_read);
    } else {
        event_notifier_set_handler(&vq->host_notifier, NULL);
P
Paolo Bonzini 已提交
1275 1276
    }
    if (!assign) {
1277 1278 1279 1280 1281 1282
        /* Test and clear notifier before after disabling event,
         * in case poll callback didn't have time to run. */
        virtio_queue_host_notifier_read(&vq->host_notifier);
    }
}

1283 1284 1285 1286
EventNotifier *virtio_queue_get_host_notifier(VirtQueue *vq)
{
    return &vq->host_notifier;
}
1287

1288 1289
void virtio_device_set_child_bus_name(VirtIODevice *vdev, char *bus_name)
{
1290
    g_free(vdev->bus_name);
1291
    vdev->bus_name = g_strdup(bus_name);
1292 1293
}

1294 1295 1296 1297 1298 1299 1300 1301 1302 1303 1304 1305
static void virtio_device_realize(DeviceState *dev, Error **errp)
{
    VirtIODevice *vdev = VIRTIO_DEVICE(dev);
    VirtioDeviceClass *vdc = VIRTIO_DEVICE_GET_CLASS(dev);
    Error *err = NULL;

    if (vdc->realize != NULL) {
        vdc->realize(dev, &err);
        if (err != NULL) {
            error_propagate(errp, err);
            return;
        }
1306
    }
1307
    virtio_bus_device_plugged(vdev);
1308 1309
}

1310
static void virtio_device_unrealize(DeviceState *dev, Error **errp)
1311
{
1312
    VirtIODevice *vdev = VIRTIO_DEVICE(dev);
1313 1314
    VirtioDeviceClass *vdc = VIRTIO_DEVICE_GET_CLASS(dev);
    Error *err = NULL;
1315

1316 1317
    virtio_bus_device_unplugged(vdev);

1318 1319 1320 1321 1322 1323
    if (vdc->unrealize != NULL) {
        vdc->unrealize(dev, &err);
        if (err != NULL) {
            error_propagate(errp, err);
            return;
        }
1324
    }
1325

1326 1327
    g_free(vdev->bus_name);
    vdev->bus_name = NULL;
1328 1329
}

1330 1331 1332 1333
static void virtio_device_class_init(ObjectClass *klass, void *data)
{
    /* Set the default value here. */
    DeviceClass *dc = DEVICE_CLASS(klass);
1334 1335 1336

    dc->realize = virtio_device_realize;
    dc->unrealize = virtio_device_unrealize;
1337 1338 1339 1340 1341 1342 1343 1344 1345 1346 1347 1348 1349 1350 1351 1352 1353 1354
    dc->bus_type = TYPE_VIRTIO_BUS;
}

static const TypeInfo virtio_device_info = {
    .name = TYPE_VIRTIO_DEVICE,
    .parent = TYPE_DEVICE,
    .instance_size = sizeof(VirtIODevice),
    .class_init = virtio_device_class_init,
    .abstract = true,
    .class_size = sizeof(VirtioDeviceClass),
};

static void virtio_register_types(void)
{
    type_register_static(&virtio_device_info);
}

type_init(virtio_register_types)