kvm.c 25.2 KB
Newer Older
A
Alexander Graf 已提交
1 2 3 4
/*
 * QEMU S390x KVM implementation
 *
 * Copyright (c) 2009 Alexander Graf <agraf@suse.de>
5
 * Copyright IBM Corp. 2012
A
Alexander Graf 已提交
6 7 8 9 10 11 12 13 14 15 16
 *
 * This library is free software; you can redistribute it and/or
 * modify it under the terms of the GNU Lesser General Public
 * License as published by the Free Software Foundation; either
 * version 2 of the License, or (at your option) any later version.
 *
 * This library is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 * Lesser General Public License for more details.
 *
17 18 19 20
 * Contributions after 2012-10-29 are licensed under the terms of the
 * GNU GPL, version 2 or (at your option) any later version.
 *
 * You should have received a copy of the GNU (Lesser) General Public
A
Alexander Graf 已提交
21 22 23 24 25 26 27 28 29 30 31
 * License along with this library; if not, see <http://www.gnu.org/licenses/>.
 */

#include <sys/types.h>
#include <sys/ioctl.h>
#include <sys/mman.h>

#include <linux/kvm.h>
#include <asm/ptrace.h>

#include "qemu-common.h"
32
#include "qemu/timer.h"
33 34
#include "sysemu/sysemu.h"
#include "sysemu/kvm.h"
A
Alexander Graf 已提交
35
#include "cpu.h"
36
#include "sysemu/device_tree.h"
37 38
#include "qapi/qmp/qjson.h"
#include "monitor/monitor.h"
A
Alexander Graf 已提交
39 40 41 42 43 44 45 46 47 48 49 50 51

/* #define DEBUG_KVM */

#ifdef DEBUG_KVM
#define dprintf(fmt, ...) \
    do { fprintf(stderr, fmt, ## __VA_ARGS__); } while (0)
#else
#define dprintf(fmt, ...) \
    do { } while (0)
#endif

#define IPA0_DIAG                       0x8300
#define IPA0_SIGP                       0xae00
52 53 54
#define IPA0_B2                         0xb200
#define IPA0_B9                         0xb900
#define IPA0_EB                         0xeb00
A
Alexander Graf 已提交
55 56

#define PRIV_SCLP_CALL                  0x20
57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74
#define PRIV_CSCH                       0x30
#define PRIV_HSCH                       0x31
#define PRIV_MSCH                       0x32
#define PRIV_SSCH                       0x33
#define PRIV_STSCH                      0x34
#define PRIV_TSCH                       0x35
#define PRIV_TPI                        0x36
#define PRIV_SAL                        0x37
#define PRIV_RSCH                       0x38
#define PRIV_STCRW                      0x39
#define PRIV_STCPS                      0x3a
#define PRIV_RCHP                       0x3b
#define PRIV_SCHM                       0x3c
#define PRIV_CHSC                       0x5f
#define PRIV_SIGA                       0x74
#define PRIV_XSCH                       0x76
#define PRIV_SQBS                       0x8a
#define PRIV_EQBS                       0x9c
A
Alexander Graf 已提交
75 76 77 78 79 80 81 82 83 84 85 86 87 88
#define DIAG_KVM_HYPERCALL              0x500
#define DIAG_KVM_BREAKPOINT             0x501

#define ICPT_INSTRUCTION                0x04
#define ICPT_WAITPSW                    0x1c
#define ICPT_SOFT_INTERCEPT             0x24
#define ICPT_CPU_STOP                   0x28
#define ICPT_IO                         0x40

#define SIGP_RESTART                    0x06
#define SIGP_INITIAL_CPU_RESET          0x0b
#define SIGP_STORE_STATUS_ADDR          0x0e
#define SIGP_SET_ARCH                   0x12

89 90 91 92
const KVMCapabilityInfo kvm_arch_required_capabilities[] = {
    KVM_CAP_LAST_INFO
};

93 94
static int cap_sync_regs;

95
int kvm_arch_init(KVMState *s)
A
Alexander Graf 已提交
96
{
97
    cap_sync_regs = kvm_check_extension(s, KVM_CAP_SYNC_REGS);
A
Alexander Graf 已提交
98 99 100
    return 0;
}

101 102 103 104 105
unsigned long kvm_arch_vcpu_id(CPUState *cpu)
{
    return cpu->cpu_index;
}

A
Andreas Färber 已提交
106
int kvm_arch_init_vcpu(CPUState *cpu)
A
Alexander Graf 已提交
107
{
108 109
    /* nothing todo yet */
    return 0;
A
Alexander Graf 已提交
110 111
}

A
Andreas Färber 已提交
112
void kvm_arch_reset_vcpu(CPUState *cpu)
A
Alexander Graf 已提交
113
{
A
Alexander Graf 已提交
114 115 116 117 118
    /* The initial reset call is needed here to reset in-kernel
     * vcpu data that we can't access directly from QEMU
     * (i.e. with older kernels which don't support sync_regs/ONE_REG).
     * Before this ioctl cpu_synchronize_state() is called in common kvm
     * code (kvm-all) */
J
Jens Freimann 已提交
119 120 121
    if (kvm_vcpu_ioctl(cpu, KVM_S390_INITIAL_RESET, NULL)) {
        perror("Can't reset vcpu\n");
    }
A
Alexander Graf 已提交
122 123
}

A
Andreas Färber 已提交
124
int kvm_arch_put_registers(CPUState *cs, int level)
A
Alexander Graf 已提交
125
{
A
Andreas Färber 已提交
126 127
    S390CPU *cpu = S390_CPU(cs);
    CPUS390XState *env = &cpu->env;
128
    struct kvm_one_reg reg;
129
    struct kvm_sregs sregs;
A
Alexander Graf 已提交
130 131 132 133
    struct kvm_regs regs;
    int ret;
    int i;

134
    /* always save the PSW  and the GPRS*/
A
Andreas Färber 已提交
135 136
    cs->kvm_run->psw_addr = env->psw.addr;
    cs->kvm_run->psw_mask = env->psw.mask;
A
Alexander Graf 已提交
137

A
Andreas Färber 已提交
138
    if (cap_sync_regs && cs->kvm_run->kvm_valid_regs & KVM_SYNC_GPRS) {
139
        for (i = 0; i < 16; i++) {
A
Andreas Färber 已提交
140 141
            cs->kvm_run->s.regs.gprs[i] = env->regs[i];
            cs->kvm_run->kvm_dirty_regs |= KVM_SYNC_GPRS;
142 143 144 145 146
        }
    } else {
        for (i = 0; i < 16; i++) {
            regs.gprs[i] = env->regs[i];
        }
147
        ret = kvm_vcpu_ioctl(cs, KVM_SET_REGS, &regs);
148 149 150
        if (ret < 0) {
            return ret;
        }
A
Alexander Graf 已提交
151 152
    }

153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176
    if (env->runtime_reg_dirty_mask == KVM_S390_RUNTIME_DIRTY_FULL) {
        reg.id = KVM_REG_S390_CPU_TIMER;
        reg.addr = (__u64)&(env->cputm);
        ret = kvm_vcpu_ioctl(cs, KVM_SET_ONE_REG, &reg);
        if (ret < 0) {
            return ret;
        }

        reg.id = KVM_REG_S390_CLOCK_COMP;
        reg.addr = (__u64)&(env->ckc);
        ret = kvm_vcpu_ioctl(cs, KVM_SET_ONE_REG, &reg);
        if (ret < 0) {
            return ret;
        }

        reg.id = KVM_REG_S390_TODPR;
        reg.addr = (__u64)&(env->todpr);
        ret = kvm_vcpu_ioctl(cs, KVM_SET_ONE_REG, &reg);
        if (ret < 0) {
            return ret;
        }
    }
    env->runtime_reg_dirty_mask = KVM_S390_RUNTIME_DIRTY_NONE;

177 178 179
    /* Do we need to save more than that? */
    if (level == KVM_PUT_RUNTIME_STATE) {
        return 0;
A
Alexander Graf 已提交
180 181
    }

182
    if (cap_sync_regs &&
A
Andreas Färber 已提交
183 184
        cs->kvm_run->kvm_valid_regs & KVM_SYNC_ACRS &&
        cs->kvm_run->kvm_valid_regs & KVM_SYNC_CRS) {
185
        for (i = 0; i < 16; i++) {
A
Andreas Färber 已提交
186 187
            cs->kvm_run->s.regs.acrs[i] = env->aregs[i];
            cs->kvm_run->s.regs.crs[i] = env->cregs[i];
188
        }
A
Andreas Färber 已提交
189 190
        cs->kvm_run->kvm_dirty_regs |= KVM_SYNC_ACRS;
        cs->kvm_run->kvm_dirty_regs |= KVM_SYNC_CRS;
191 192 193 194 195
    } else {
        for (i = 0; i < 16; i++) {
            sregs.acrs[i] = env->aregs[i];
            sregs.crs[i] = env->cregs[i];
        }
196
        ret = kvm_vcpu_ioctl(cs, KVM_SET_SREGS, &sregs);
197 198 199 200
        if (ret < 0) {
            return ret;
        }
    }
A
Alexander Graf 已提交
201

202
    /* Finally the prefix */
A
Andreas Färber 已提交
203 204 205
    if (cap_sync_regs && cs->kvm_run->kvm_valid_regs & KVM_SYNC_PREFIX) {
        cs->kvm_run->s.regs.prefix = env->psa;
        cs->kvm_run->kvm_dirty_regs |= KVM_SYNC_PREFIX;
206 207 208 209
    } else {
        /* prefix is only supported via sync regs */
    }
    return 0;
A
Alexander Graf 已提交
210 211
}

A
Andreas Färber 已提交
212
int kvm_arch_get_registers(CPUState *cs)
213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249
{
    S390CPU *cpu = S390_CPU(cs);
    CPUS390XState *env = &cpu->env;
    struct kvm_one_reg reg;
    int r;

    r = kvm_s390_get_registers_partial(cs);
    if (r < 0) {
        return r;
    }

    reg.id = KVM_REG_S390_CPU_TIMER;
    reg.addr = (__u64)&(env->cputm);
    r = kvm_vcpu_ioctl(cs, KVM_GET_ONE_REG, &reg);
    if (r < 0) {
        return r;
    }

    reg.id = KVM_REG_S390_CLOCK_COMP;
    reg.addr = (__u64)&(env->ckc);
    r = kvm_vcpu_ioctl(cs, KVM_GET_ONE_REG, &reg);
    if (r < 0) {
        return r;
    }

    reg.id = KVM_REG_S390_TODPR;
    reg.addr = (__u64)&(env->todpr);
    r = kvm_vcpu_ioctl(cs, KVM_GET_ONE_REG, &reg);
    if (r < 0) {
        return r;
    }

    env->runtime_reg_dirty_mask = KVM_S390_RUNTIME_DIRTY_FULL;
    return 0;
}

int kvm_s390_get_registers_partial(CPUState *cs)
A
Alexander Graf 已提交
250
{
A
Andreas Färber 已提交
251 252
    S390CPU *cpu = S390_CPU(cs);
    CPUS390XState *env = &cpu->env;
253
    struct kvm_sregs sregs;
A
Alexander Graf 已提交
254
    struct kvm_regs regs;
255
    int ret;
A
Alexander Graf 已提交
256 257
    int i;

258 259 260 261
    if (env->runtime_reg_dirty_mask) {
        return 0;
    }

262
    /* get the PSW */
A
Andreas Färber 已提交
263 264
    env->psw.addr = cs->kvm_run->psw_addr;
    env->psw.mask = cs->kvm_run->psw_mask;
265 266

    /* the GPRS */
A
Andreas Färber 已提交
267
    if (cap_sync_regs && cs->kvm_run->kvm_valid_regs & KVM_SYNC_GPRS) {
268
        for (i = 0; i < 16; i++) {
A
Andreas Färber 已提交
269
            env->regs[i] = cs->kvm_run->s.regs.gprs[i];
270 271
        }
    } else {
272
        ret = kvm_vcpu_ioctl(cs, KVM_GET_REGS, &regs);
273 274 275 276 277 278
        if (ret < 0) {
            return ret;
        }
         for (i = 0; i < 16; i++) {
            env->regs[i] = regs.gprs[i];
        }
A
Alexander Graf 已提交
279 280
    }

281 282
    /* The ACRS and CRS */
    if (cap_sync_regs &&
A
Andreas Färber 已提交
283 284
        cs->kvm_run->kvm_valid_regs & KVM_SYNC_ACRS &&
        cs->kvm_run->kvm_valid_regs & KVM_SYNC_CRS) {
285
        for (i = 0; i < 16; i++) {
A
Andreas Färber 已提交
286 287
            env->aregs[i] = cs->kvm_run->s.regs.acrs[i];
            env->cregs[i] = cs->kvm_run->s.regs.crs[i];
288 289
        }
    } else {
290
        ret = kvm_vcpu_ioctl(cs, KVM_GET_SREGS, &sregs);
291 292 293 294 295 296 297
        if (ret < 0) {
            return ret;
        }
         for (i = 0; i < 16; i++) {
            env->aregs[i] = sregs.acrs[i];
            env->cregs[i] = sregs.crs[i];
        }
A
Alexander Graf 已提交
298 299
    }

300
    /* Finally the prefix */
A
Andreas Färber 已提交
301 302
    if (cap_sync_regs && cs->kvm_run->kvm_valid_regs & KVM_SYNC_PREFIX) {
        env->psa = cs->kvm_run->s.regs.prefix;
303 304 305
    } else {
        /* no prefix without sync regs */
    }
A
Alexander Graf 已提交
306

307
    env->runtime_reg_dirty_mask = KVM_S390_RUNTIME_DIRTY_PARTIAL;
A
Alexander Graf 已提交
308 309 310
    return 0;
}

311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333 334
/*
 * Legacy layout for s390:
 * Older S390 KVM requires the topmost vma of the RAM to be
 * smaller than an system defined value, which is at least 256GB.
 * Larger systems have larger values. We put the guest between
 * the end of data segment (system break) and this value. We
 * use 32GB as a base to have enough room for the system break
 * to grow. We also have to use MAP parameters that avoid
 * read-only mapping of guest pages.
 */
static void *legacy_s390_alloc(ram_addr_t size)
{
    void *mem;

    mem = mmap((void *) 0x800000000ULL, size,
               PROT_EXEC|PROT_READ|PROT_WRITE,
               MAP_SHARED | MAP_ANONYMOUS | MAP_FIXED, -1, 0);
    if (mem == MAP_FAILED) {
        fprintf(stderr, "Allocating RAM failed\n");
        abort();
    }
    return mem;
}

335
void *kvm_arch_ram_alloc(ram_addr_t size)
336 337 338 339 340 341 342 343 344 345
{
    /* Can we use the standard allocation ? */
    if (kvm_check_extension(kvm_state, KVM_CAP_S390_GMAP) &&
        kvm_check_extension(kvm_state, KVM_CAP_S390_COW)) {
        return NULL;
    } else {
        return legacy_s390_alloc(size);
    }
}

A
Andreas Färber 已提交
346
int kvm_arch_insert_sw_breakpoint(CPUState *cs, struct kvm_sw_breakpoint *bp)
A
Alexander Graf 已提交
347 348 349
{
    static const uint8_t diag_501[] = {0x83, 0x24, 0x05, 0x01};

350 351
    if (cpu_memory_rw_debug(cs, bp->pc, (uint8_t *)&bp->saved_insn, 4, 0) ||
        cpu_memory_rw_debug(cs, bp->pc, (uint8_t *)diag_501, 4, 1)) {
A
Alexander Graf 已提交
352 353 354 355 356
        return -EINVAL;
    }
    return 0;
}

A
Andreas Färber 已提交
357
int kvm_arch_remove_sw_breakpoint(CPUState *cs, struct kvm_sw_breakpoint *bp)
A
Alexander Graf 已提交
358 359 360 361
{
    uint8_t t[4];
    static const uint8_t diag_501[] = {0x83, 0x24, 0x05, 0x01};

362
    if (cpu_memory_rw_debug(cs, bp->pc, t, 4, 0)) {
A
Alexander Graf 已提交
363 364 365
        return -EINVAL;
    } else if (memcmp(t, diag_501, 4)) {
        return -EINVAL;
366
    } else if (cpu_memory_rw_debug(cs, bp->pc, (uint8_t *)&bp->saved_insn, 1, 1)) {
A
Alexander Graf 已提交
367 368 369 370 371 372
        return -EINVAL;
    }

    return 0;
}

A
Andreas Färber 已提交
373
void kvm_arch_pre_run(CPUState *cpu, struct kvm_run *run)
A
Alexander Graf 已提交
374 375 376
{
}

A
Andreas Färber 已提交
377
void kvm_arch_post_run(CPUState *cpu, struct kvm_run *run)
A
Alexander Graf 已提交
378 379 380
{
}

A
Andreas Färber 已提交
381
int kvm_arch_process_async_events(CPUState *cs)
M
Marcelo Tosatti 已提交
382
{
383
    return cs->halted;
M
Marcelo Tosatti 已提交
384 385
}

386
void kvm_s390_interrupt_internal(S390CPU *cpu, int type, uint32_t parm,
387
                                 uint64_t parm64, int vm)
A
Alexander Graf 已提交
388
{
389
    CPUState *cs = CPU(cpu);
A
Alexander Graf 已提交
390 391 392
    struct kvm_s390_interrupt kvmint;
    int r;

393
    if (!cs->kvm_state) {
A
Alexander Graf 已提交
394 395 396 397 398 399 400 401
        return;
    }

    kvmint.type = type;
    kvmint.parm = parm;
    kvmint.parm64 = parm64;

    if (vm) {
402
        r = kvm_vm_ioctl(cs->kvm_state, KVM_S390_INTERRUPT, &kvmint);
A
Alexander Graf 已提交
403
    } else {
404
        r = kvm_vcpu_ioctl(cs, KVM_S390_INTERRUPT, &kvmint);
A
Alexander Graf 已提交
405 406 407 408 409 410 411 412
    }

    if (r < 0) {
        fprintf(stderr, "KVM failed to inject interrupt\n");
        exit(1);
    }
}

413
void kvm_s390_virtio_irq(S390CPU *cpu, int config_change, uint64_t token)
A
Alexander Graf 已提交
414
{
415
    kvm_s390_interrupt_internal(cpu, KVM_S390_INT_VIRTIO, config_change,
A
Alexander Graf 已提交
416 417 418
                                token, 1);
}

419
void kvm_s390_interrupt(S390CPU *cpu, int type, uint32_t code)
A
Alexander Graf 已提交
420
{
421
    kvm_s390_interrupt_internal(cpu, type, code, 0, 0);
A
Alexander Graf 已提交
422 423
}

424
static void enter_pgmcheck(S390CPU *cpu, uint16_t code)
A
Alexander Graf 已提交
425
{
426
    kvm_s390_interrupt(cpu, KVM_S390_PROGRAM_INT, code);
A
Alexander Graf 已提交
427 428
}

A
Andreas Färber 已提交
429
static inline void setcc(S390CPU *cpu, uint64_t cc)
A
Alexander Graf 已提交
430
{
A
Andreas Färber 已提交
431 432 433 434 435
    CPUS390XState *env = &cpu->env;
    CPUState *cs = CPU(cpu);

    cs->kvm_run->psw_mask &= ~(3ull << 44);
    cs->kvm_run->psw_mask |= (cc & 3) << 44;
A
Alexander Graf 已提交
436 437 438 439 440

    env->psw.mask &= ~(3ul << 44);
    env->psw.mask |= (cc & 3) << 44;
}

441
static int kvm_sclp_service_call(S390CPU *cpu, struct kvm_run *run,
442
                                 uint16_t ipbh0)
A
Alexander Graf 已提交
443
{
444
    CPUS390XState *env = &cpu->env;
A
Alexander Graf 已提交
445 446 447 448
    uint32_t sccb;
    uint64_t code;
    int r = 0;

449
    cpu_synchronize_state(CPU(cpu));
A
Alexander Graf 已提交
450 451 452
    sccb = env->regs[ipbh0 & 0xf];
    code = env->regs[(ipbh0 & 0xf0) >> 4];

H
Heinz Graalfs 已提交
453
    r = sclp_service_call(sccb, code);
454
    if (r < 0) {
455
        enter_pgmcheck(cpu, -r);
A
Alexander Graf 已提交
456
    }
A
Andreas Färber 已提交
457
    setcc(cpu, r);
A
Alexander Graf 已提交
458

A
Alexander Graf 已提交
459 460 461
    return 0;
}

462 463 464 465 466 467
static int kvm_handle_css_inst(S390CPU *cpu, struct kvm_run *run,
                               uint8_t ipa0, uint8_t ipa1, uint8_t ipb)
{
    int r = 0;
    int no_cc = 0;
    CPUS390XState *env = &cpu->env;
468
    CPUState *cs = CPU(cpu);
469 470 471 472 473

    if (ipa0 != 0xb2) {
        /* Not handled for now. */
        return -1;
    }
474 475 476 477

    kvm_s390_get_registers_partial(cs);
    cs->kvm_vcpu_dirty = true;

478 479 480 481 482 483 484 485 486 487 488 489 490 491 492 493 494 495 496 497 498 499 500 501 502 503 504 505 506 507 508 509 510 511 512 513 514 515 516 517 518 519 520 521 522 523 524 525 526 527 528 529 530 531 532 533 534 535 536 537 538 539 540 541 542 543 544 545 546 547 548 549 550 551 552 553 554 555 556 557 558 559 560 561 562 563 564 565 566 567 568 569 570 571 572 573 574 575 576 577 578
    switch (ipa1) {
    case PRIV_XSCH:
        r = ioinst_handle_xsch(env, env->regs[1]);
        break;
    case PRIV_CSCH:
        r = ioinst_handle_csch(env, env->regs[1]);
        break;
    case PRIV_HSCH:
        r = ioinst_handle_hsch(env, env->regs[1]);
        break;
    case PRIV_MSCH:
        r = ioinst_handle_msch(env, env->regs[1], run->s390_sieic.ipb);
        break;
    case PRIV_SSCH:
        r = ioinst_handle_ssch(env, env->regs[1], run->s390_sieic.ipb);
        break;
    case PRIV_STCRW:
        r = ioinst_handle_stcrw(env, run->s390_sieic.ipb);
        break;
    case PRIV_STSCH:
        r = ioinst_handle_stsch(env, env->regs[1], run->s390_sieic.ipb);
        break;
    case PRIV_TSCH:
        /* We should only get tsch via KVM_EXIT_S390_TSCH. */
        fprintf(stderr, "Spurious tsch intercept\n");
        break;
    case PRIV_CHSC:
        r = ioinst_handle_chsc(env, run->s390_sieic.ipb);
        break;
    case PRIV_TPI:
        /* This should have been handled by kvm already. */
        fprintf(stderr, "Spurious tpi intercept\n");
        break;
    case PRIV_SCHM:
        no_cc = 1;
        r = ioinst_handle_schm(env, env->regs[1], env->regs[2],
                               run->s390_sieic.ipb);
        break;
    case PRIV_RSCH:
        r = ioinst_handle_rsch(env, env->regs[1]);
        break;
    case PRIV_RCHP:
        r = ioinst_handle_rchp(env, env->regs[1]);
        break;
    case PRIV_STCPS:
        /* We do not provide this instruction, it is suppressed. */
        no_cc = 1;
        r = 0;
        break;
    case PRIV_SAL:
        no_cc = 1;
        r = ioinst_handle_sal(env, env->regs[1]);
        break;
    default:
        r = -1;
        break;
    }

    if (r >= 0) {
        if (!no_cc) {
            setcc(cpu, r);
        }
        r = 0;
    } else if (r < -1) {
        r = 0;
    }
    return r;
}

static int is_ioinst(uint8_t ipa0, uint8_t ipa1, uint8_t ipb)
{
    int ret = 0;
    uint16_t ipa = (ipa0 << 8) | ipa1;

    switch (ipa) {
    case IPA0_B2 | PRIV_CSCH:
    case IPA0_B2 | PRIV_HSCH:
    case IPA0_B2 | PRIV_MSCH:
    case IPA0_B2 | PRIV_SSCH:
    case IPA0_B2 | PRIV_STSCH:
    case IPA0_B2 | PRIV_TPI:
    case IPA0_B2 | PRIV_SAL:
    case IPA0_B2 | PRIV_RSCH:
    case IPA0_B2 | PRIV_STCRW:
    case IPA0_B2 | PRIV_STCPS:
    case IPA0_B2 | PRIV_RCHP:
    case IPA0_B2 | PRIV_SCHM:
    case IPA0_B2 | PRIV_CHSC:
    case IPA0_B2 | PRIV_SIGA:
    case IPA0_B2 | PRIV_XSCH:
    case IPA0_B9 | PRIV_EQBS:
    case IPA0_EB | PRIV_SQBS:
        ret = 1;
        break;
    }

    return ret;
}

static int handle_priv(S390CPU *cpu, struct kvm_run *run,
                       uint8_t ipa0, uint8_t ipa1)
A
Alexander Graf 已提交
579 580 581
{
    int r = 0;
    uint16_t ipbh0 = (run->s390_sieic.ipb & 0xffff0000) >> 16;
582
    uint8_t ipb = run->s390_sieic.ipb & 0xff;
A
Alexander Graf 已提交
583 584 585 586

    dprintf("KVM: PRIV: %d\n", ipa1);
    switch (ipa1) {
        case PRIV_SCLP_CALL:
587
            r = kvm_sclp_service_call(cpu, run, ipbh0);
A
Alexander Graf 已提交
588 589
            break;
        default:
590 591 592 593 594 595 596 597 598 599
            if (is_ioinst(ipa0, ipa1, ipb)) {
                r = kvm_handle_css_inst(cpu, run, ipa0, ipa1, ipb);
                if (r == -1) {
                    setcc(cpu, 3);
                    r = 0;
                }
            } else {
                dprintf("KVM: unknown PRIV: 0x%x\n", ipa1);
                r = -1;
            }
A
Alexander Graf 已提交
600 601 602 603 604 605
            break;
    }

    return r;
}

606
static int handle_hypercall(S390CPU *cpu, struct kvm_run *run)
A
Alexander Graf 已提交
607
{
608 609
    CPUState *cs = CPU(cpu);
    CPUS390XState *env = &cpu->env;
610 611 612

    kvm_s390_get_registers_partial(cs);
    cs->kvm_vcpu_dirty = true;
613
    env->regs[2] = s390_virtio_hypercall(env);
A
Alexander Graf 已提交
614

615
    return 0;
A
Alexander Graf 已提交
616 617
}

618
static int handle_diag(S390CPU *cpu, struct kvm_run *run, int ipb_code)
A
Alexander Graf 已提交
619 620 621 622 623
{
    int r = 0;

    switch (ipb_code) {
        case DIAG_KVM_HYPERCALL:
624
            r = handle_hypercall(cpu, run);
A
Alexander Graf 已提交
625 626 627 628 629 630 631 632 633 634 635 636 637
            break;
        case DIAG_KVM_BREAKPOINT:
            sleep(10);
            break;
        default:
            dprintf("KVM: unknown DIAG: 0x%x\n", ipb_code);
            r = -1;
            break;
    }

    return r;
}

638
static int s390_cpu_restart(S390CPU *cpu)
A
Alexander Graf 已提交
639
{
640
    kvm_s390_interrupt(cpu, KVM_S390_RESTART, 0);
641
    s390_add_running_cpu(cpu);
642
    qemu_cpu_kick(CPU(cpu));
643
    dprintf("DONE: SIGP cpu restart: %p\n", &cpu->env);
A
Alexander Graf 已提交
644 645 646
    return 0;
}

647
static int s390_store_status(CPUS390XState *env, uint32_t parameter)
A
Alexander Graf 已提交
648 649 650 651 652 653
{
    /* XXX */
    fprintf(stderr, "XXX SIGP store status\n");
    return -1;
}

654
static int s390_cpu_initial_reset(S390CPU *cpu)
A
Alexander Graf 已提交
655
{
656
    CPUState *cs = CPU(cpu);
657
    CPUS390XState *env = &cpu->env;
658 659
    int i;

660
    s390_del_running_cpu(cpu);
661
    if (kvm_vcpu_ioctl(cs, KVM_S390_INITIAL_RESET, NULL) < 0) {
662 663 664 665
        perror("cannot init reset vcpu");
    }

    /* Manually zero out all registers */
666
    cpu_synchronize_state(cs);
667 668 669 670 671 672
    for (i = 0; i < 16; i++) {
        env->regs[i] = 0;
    }

    dprintf("DONE: SIGP initial reset: %p\n", env);
    return 0;
A
Alexander Graf 已提交
673 674
}

A
Andreas Färber 已提交
675
static int handle_sigp(S390CPU *cpu, struct kvm_run *run, uint8_t ipa1)
A
Alexander Graf 已提交
676
{
A
Andreas Färber 已提交
677
    CPUS390XState *env = &cpu->env;
A
Alexander Graf 已提交
678 679 680 681 682
    uint8_t order_code;
    uint32_t parameter;
    uint16_t cpu_addr;
    uint8_t t;
    int r = -1;
683
    S390CPU *target_cpu;
684
    CPUS390XState *target_env;
A
Alexander Graf 已提交
685

686
    cpu_synchronize_state(CPU(cpu));
A
Alexander Graf 已提交
687 688 689 690 691 692 693 694 695 696 697 698 699 700 701 702 703

    /* get order code */
    order_code = run->s390_sieic.ipb >> 28;
    if (order_code > 0) {
        order_code = env->regs[order_code];
    }
    order_code += (run->s390_sieic.ipb & 0x0fff0000) >> 16;

    /* get parameters */
    t = (ipa1 & 0xf0) >> 4;
    if (!(t % 2)) {
        t++;
    }

    parameter = env->regs[t] & 0x7ffffe00;
    cpu_addr = env->regs[ipa1 & 0x0f];

704 705
    target_cpu = s390_cpu_addr2state(cpu_addr);
    if (target_cpu == NULL) {
A
Alexander Graf 已提交
706 707
        goto out;
    }
708
    target_env = &target_cpu->env;
A
Alexander Graf 已提交
709 710 711

    switch (order_code) {
        case SIGP_RESTART:
712
            r = s390_cpu_restart(target_cpu);
A
Alexander Graf 已提交
713 714 715 716 717 718 719 720
            break;
        case SIGP_STORE_STATUS_ADDR:
            r = s390_store_status(target_env, parameter);
            break;
        case SIGP_SET_ARCH:
            /* make the caller panic */
            return -1;
        case SIGP_INITIAL_CPU_RESET:
721
            r = s390_cpu_initial_reset(target_cpu);
A
Alexander Graf 已提交
722 723
            break;
        default:
724
            fprintf(stderr, "KVM: unknown SIGP: 0x%x\n", order_code);
A
Alexander Graf 已提交
725 726 727 728
            break;
    }

out:
A
Andreas Färber 已提交
729
    setcc(cpu, r ? 3 : 0);
A
Alexander Graf 已提交
730 731 732
    return 0;
}

733
static int handle_instruction(S390CPU *cpu, struct kvm_run *run)
A
Alexander Graf 已提交
734 735 736 737
{
    unsigned int ipa0 = (run->s390_sieic.ipa & 0xff00);
    uint8_t ipa1 = run->s390_sieic.ipa & 0x00ff;
    int ipb_code = (run->s390_sieic.ipb & 0x0fff0000) >> 16;
738
    int r = -1;
A
Alexander Graf 已提交
739 740 741

    dprintf("handle_instruction 0x%x 0x%x\n", run->s390_sieic.ipa, run->s390_sieic.ipb);
    switch (ipa0) {
742 743 744 745 746 747
    case IPA0_B2:
    case IPA0_B9:
    case IPA0_EB:
        r = handle_priv(cpu, run, ipa0 >> 8, ipa1);
        break;
    case IPA0_DIAG:
748
        r = handle_diag(cpu, run, ipb_code);
749 750 751 752
        break;
    case IPA0_SIGP:
        r = handle_sigp(cpu, run, ipa1);
        break;
A
Alexander Graf 已提交
753 754 755
    }

    if (r < 0) {
756
        enter_pgmcheck(cpu, 0x0001);
A
Alexander Graf 已提交
757
    }
A
Alexander Graf 已提交
758
    return 0;
A
Alexander Graf 已提交
759 760
}

A
Andreas Färber 已提交
761
static bool is_special_wait_psw(CPUState *cs)
762 763
{
    /* signal quiesce */
A
Andreas Färber 已提交
764
    return cs->kvm_run->psw_addr == 0xfffUL;
765 766
}

767
static int handle_intercept(S390CPU *cpu)
A
Alexander Graf 已提交
768
{
A
Andreas Färber 已提交
769 770
    CPUState *cs = CPU(cpu);
    struct kvm_run *run = cs->kvm_run;
A
Alexander Graf 已提交
771 772 773
    int icpt_code = run->s390_sieic.icptcode;
    int r = 0;

A
Alexander Graf 已提交
774
    dprintf("intercept: 0x%x (at 0x%lx)\n", icpt_code,
A
Andreas Färber 已提交
775
            (long)cs->kvm_run->psw_addr);
A
Alexander Graf 已提交
776 777
    switch (icpt_code) {
        case ICPT_INSTRUCTION:
778
            r = handle_instruction(cpu, run);
A
Alexander Graf 已提交
779 780
            break;
        case ICPT_WAITPSW:
781 782 783 784 785 786 787 788 789 790 791 792
            /* disabled wait, since enabled wait is handled in kernel */
            if (s390_del_running_cpu(cpu) == 0) {
                if (is_special_wait_psw(cs)) {
                    qemu_system_shutdown_request();
                } else {
                    QObject *data;

                    data = qobject_from_jsonf("{ 'action': %s }", "pause");
                    monitor_protocol_event(QEVENT_GUEST_PANICKED, data);
                    qobject_decref(data);
                    vm_stop(RUN_STATE_GUEST_PANICKED);
                }
793 794 795
            }
            r = EXCP_HALTED;
            break;
796
        case ICPT_CPU_STOP:
797
            if (s390_del_running_cpu(cpu) == 0) {
798 799 800
                qemu_system_shutdown_request();
            }
            r = EXCP_HALTED;
A
Alexander Graf 已提交
801 802 803 804 805 806 807 808 809 810 811 812 813 814 815 816 817 818
            break;
        case ICPT_SOFT_INTERCEPT:
            fprintf(stderr, "KVM unimplemented icpt SOFT\n");
            exit(1);
            break;
        case ICPT_IO:
            fprintf(stderr, "KVM unimplemented icpt IO\n");
            exit(1);
            break;
        default:
            fprintf(stderr, "Unknown intercept code: %d\n", icpt_code);
            exit(1);
            break;
    }

    return r;
}

819 820 821 822 823 824 825
static int handle_tsch(S390CPU *cpu)
{
    CPUS390XState *env = &cpu->env;
    CPUState *cs = CPU(cpu);
    struct kvm_run *run = cs->kvm_run;
    int ret;

826 827 828
    kvm_s390_get_registers_partial(cs);
    cs->kvm_vcpu_dirty = true;

829 830 831 832 833 834 835 836 837 838 839 840 841 842 843 844 845 846 847 848 849 850 851 852 853 854 855 856 857
    ret = ioinst_handle_tsch(env, env->regs[1], run->s390_tsch.ipb);
    if (ret >= 0) {
        /* Success; set condition code. */
        setcc(cpu, ret);
        ret = 0;
    } else if (ret < -1) {
        /*
         * Failure.
         * If an I/O interrupt had been dequeued, we have to reinject it.
         */
        if (run->s390_tsch.dequeued) {
            uint16_t subchannel_id = run->s390_tsch.subchannel_id;
            uint16_t subchannel_nr = run->s390_tsch.subchannel_nr;
            uint32_t io_int_parm = run->s390_tsch.io_int_parm;
            uint32_t io_int_word = run->s390_tsch.io_int_word;
            uint32_t type = ((subchannel_id & 0xff00) << 24) |
                ((subchannel_id & 0x00060) << 22) | (subchannel_nr << 16);

            kvm_s390_interrupt_internal(cpu, type,
                                        ((uint32_t)subchannel_id << 16)
                                        | subchannel_nr,
                                        ((uint64_t)io_int_parm << 32)
                                        | io_int_word, 1);
        }
        ret = 0;
    }
    return ret;
}

A
Andreas Färber 已提交
858
int kvm_arch_handle_exit(CPUState *cs, struct kvm_run *run)
A
Alexander Graf 已提交
859
{
A
Andreas Färber 已提交
860
    S390CPU *cpu = S390_CPU(cs);
A
Alexander Graf 已提交
861 862 863 864
    int ret = 0;

    switch (run->exit_reason) {
        case KVM_EXIT_S390_SIEIC:
865
            ret = handle_intercept(cpu);
A
Alexander Graf 已提交
866 867
            break;
        case KVM_EXIT_S390_RESET:
868
            qemu_system_reset_request();
A
Alexander Graf 已提交
869
            break;
870 871 872
        case KVM_EXIT_S390_TSCH:
            ret = handle_tsch(cpu);
            break;
A
Alexander Graf 已提交
873 874 875 876 877
        default:
            fprintf(stderr, "Unknown KVM exit: %d\n", run->exit_reason);
            break;
    }

878 879 880
    if (ret == 0) {
        ret = EXCP_INTERRUPT;
    }
A
Alexander Graf 已提交
881 882
    return ret;
}
883

A
Andreas Färber 已提交
884
bool kvm_arch_stop_on_emulation_error(CPUState *cpu)
885 886 887
{
    return true;
}
888

A
Andreas Färber 已提交
889
int kvm_arch_on_sigbus_vcpu(CPUState *cpu, int code, void *addr)
890 891 892 893 894 895 896 897
{
    return 1;
}

int kvm_arch_on_sigbus(int code, void *addr)
{
    return 1;
}
898 899 900 901 902 903 904 905 906 907 908 909 910 911 912 913 914 915 916 917 918 919 920 921 922 923 924 925 926 927

void kvm_s390_io_interrupt(S390CPU *cpu, uint16_t subchannel_id,
                           uint16_t subchannel_nr, uint32_t io_int_parm,
                           uint32_t io_int_word)
{
    uint32_t type;

    type = ((subchannel_id & 0xff00) << 24) |
        ((subchannel_id & 0x00060) << 22) | (subchannel_nr << 16);
    kvm_s390_interrupt_internal(cpu, type,
                                ((uint32_t)subchannel_id << 16) | subchannel_nr,
                                ((uint64_t)io_int_parm << 32) | io_int_word, 1);
}

void kvm_s390_crw_mchk(S390CPU *cpu)
{
    kvm_s390_interrupt_internal(cpu, KVM_S390_MCHK, 1 << 28,
                                0x00400f1d40330000, 1);
}

void kvm_s390_enable_css_support(S390CPU *cpu)
{
    struct kvm_enable_cap cap = {};
    int r;

    /* Activate host kernel channel subsystem support. */
    cap.cap = KVM_CAP_S390_CSS_SUPPORT;
    r = kvm_vcpu_ioctl(CPU(cpu), KVM_ENABLE_CAP, &cap);
    assert(r == 0);
}
928 929 930 931

void kvm_arch_init_irq_routing(KVMState *s)
{
}
C
Cornelia Huck 已提交
932

933 934
int kvm_s390_assign_subch_ioeventfd(EventNotifier *notifier, uint32_t sch,
                                    int vq, bool assign)
C
Cornelia Huck 已提交
935 936 937 938
{
    struct kvm_ioeventfd kick = {
        .flags = KVM_IOEVENTFD_FLAG_VIRTIO_CCW_NOTIFY |
        KVM_IOEVENTFD_FLAG_DATAMATCH,
939
        .fd = event_notifier_get_fd(notifier),
C
Cornelia Huck 已提交
940 941 942 943 944 945 946 947 948 949 950 951
        .datamatch = vq,
        .addr = sch,
        .len = 8,
    };
    if (!kvm_check_extension(kvm_state, KVM_CAP_IOEVENTFD)) {
        return -ENOSYS;
    }
    if (!assign) {
        kick.flags |= KVM_IOEVENTFD_FLAG_DEASSIGN;
    }
    return kvm_vm_ioctl(kvm_state, KVM_IOEVENTFD, &kick);
}