block.c 161.6 KB
Newer Older
B
bellard 已提交
1 2
/*
 * QEMU System Emulator block driver
3
 *
B
bellard 已提交
4
 * Copyright (c) 2003 Fabrice Bellard
5
 *
B
bellard 已提交
6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23
 * Permission is hereby granted, free of charge, to any person obtaining a copy
 * of this software and associated documentation files (the "Software"), to deal
 * in the Software without restriction, including without limitation the rights
 * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
 * copies of the Software, and to permit persons to whom the Software is
 * furnished to do so, subject to the following conditions:
 *
 * The above copyright notice and this permission notice shall be included in
 * all copies or substantial portions of the Software.
 *
 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL
 * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
 * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
 * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
 * THE SOFTWARE.
 */
24

P
Peter Maydell 已提交
25
#include "qemu/osdep.h"
26
#include "block/trace.h"
27 28
#include "block/block_int.h"
#include "block/blockjob.h"
29
#include "block/nbd.h"
30
#include "block/qdict.h"
31
#include "qemu/error-report.h"
32
#include "module_block.h"
33
#include "qemu/module.h"
34
#include "qapi/error.h"
35
#include "qapi/qmp/qdict.h"
36
#include "qapi/qmp/qjson.h"
M
Max Reitz 已提交
37
#include "qapi/qmp/qnull.h"
38
#include "qapi/qmp/qstring.h"
39 40
#include "qapi/qobject-output-visitor.h"
#include "qapi/qapi-visit-block-core.h"
41
#include "sysemu/block-backend.h"
42
#include "sysemu/sysemu.h"
43
#include "qemu/notify.h"
44
#include "qemu/option.h"
45
#include "qemu/coroutine.h"
46
#include "block/qapi.h"
47
#include "qemu/timer.h"
48 49
#include "qemu/cutils.h"
#include "qemu/id.h"
B
bellard 已提交
50

J
Juan Quintela 已提交
51
#ifdef CONFIG_BSD
B
bellard 已提交
52
#include <sys/ioctl.h>
B
Blue Swirl 已提交
53
#include <sys/queue.h>
54
#ifndef __DragonFly__
B
bellard 已提交
55 56
#include <sys/disk.h>
#endif
57
#endif
B
bellard 已提交
58

59 60 61 62
#ifdef _WIN32
#include <windows.h>
#endif

63 64
#define NOT_DONE 0x7fffffff /* used while emulated sync operation in progress */

65 66 67
static QTAILQ_HEAD(, BlockDriverState) graph_bdrv_states =
    QTAILQ_HEAD_INITIALIZER(graph_bdrv_states);

68 69 70
static QTAILQ_HEAD(, BlockDriverState) all_bdrv_states =
    QTAILQ_HEAD_INITIALIZER(all_bdrv_states);

71 72
static QLIST_HEAD(, BlockDriver) bdrv_drivers =
    QLIST_HEAD_INITIALIZER(bdrv_drivers);
B
bellard 已提交
73

M
Max Reitz 已提交
74 75 76 77 78 79
static BlockDriverState *bdrv_open_inherit(const char *filename,
                                           const char *reference,
                                           QDict *options, int flags,
                                           BlockDriverState *parent,
                                           const BdrvChildRole *child_role,
                                           Error **errp);
80

81 82 83
/* If non-zero, use only whitelisted block drivers */
static int use_bdrv_whitelist;

84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103
#ifdef _WIN32
static int is_windows_drive_prefix(const char *filename)
{
    return (((filename[0] >= 'a' && filename[0] <= 'z') ||
             (filename[0] >= 'A' && filename[0] <= 'Z')) &&
            filename[1] == ':');
}

int is_windows_drive(const char *filename)
{
    if (is_windows_drive_prefix(filename) &&
        filename[2] == '\0')
        return 1;
    if (strstart(filename, "\\\\.\\", NULL) ||
        strstart(filename, "//./", NULL))
        return 1;
    return 0;
}
#endif

104 105 106
size_t bdrv_opt_mem_align(BlockDriverState *bs)
{
    if (!bs || !bs->drv) {
107 108
        /* page size or 4k (hdd sector size) should be on the safe side */
        return MAX(4096, getpagesize());
109 110 111 112 113
    }

    return bs->bl.opt_mem_alignment;
}

114 115 116
size_t bdrv_min_mem_align(BlockDriverState *bs)
{
    if (!bs || !bs->drv) {
117 118
        /* page size or 4k (hdd sector size) should be on the safe side */
        return MAX(4096, getpagesize());
119 120 121 122 123
    }

    return bs->bl.min_mem_alignment;
}

124
/* check if the path starts with "<protocol>:" */
125
int path_has_protocol(const char *path)
126
{
127 128
    const char *p;

129 130 131 132 133
#ifdef _WIN32
    if (is_windows_drive(path) ||
        is_windows_drive_prefix(path)) {
        return 0;
    }
134 135 136
    p = path + strcspn(path, ":/\\");
#else
    p = path + strcspn(path, ":/");
137 138
#endif

139
    return *p == ':';
140 141
}

B
bellard 已提交
142
int path_is_absolute(const char *path)
143
{
B
bellard 已提交
144 145
#ifdef _WIN32
    /* specific case for names like: "\\.\d:" */
P
Paolo Bonzini 已提交
146
    if (is_windows_drive(path) || is_windows_drive_prefix(path)) {
B
bellard 已提交
147
        return 1;
P
Paolo Bonzini 已提交
148 149
    }
    return (*path == '/' || *path == '\\');
150
#else
P
Paolo Bonzini 已提交
151
    return (*path == '/');
152
#endif
153 154
}

B
bellard 已提交
155 156 157 158 159 160
/* if filename is absolute, just copy it to dest. Otherwise, build a
   path to it by considering it is relative to base_path. URL are
   supported. */
void path_combine(char *dest, int dest_size,
                  const char *base_path,
                  const char *filename)
161
{
B
bellard 已提交
162 163 164 165 166 167 168 169
    const char *p, *p1;
    int len;

    if (dest_size <= 0)
        return;
    if (path_is_absolute(filename)) {
        pstrcpy(dest, dest_size, filename);
    } else {
170 171 172 173 174 175 176 177 178 179
        const char *protocol_stripped = NULL;

        if (path_has_protocol(base_path)) {
            protocol_stripped = strchr(base_path, ':');
            if (protocol_stripped) {
                protocol_stripped++;
            }
        }
        p = protocol_stripped ?: base_path;

180 181 182 183 184 185 186 187 188
        p1 = strrchr(base_path, '/');
#ifdef _WIN32
        {
            const char *p2;
            p2 = strrchr(base_path, '\\');
            if (!p1 || p2 > p1)
                p1 = p2;
        }
#endif
B
bellard 已提交
189 190 191 192 193 194 195 196 197 198 199 200
        if (p1)
            p1++;
        else
            p1 = base_path;
        if (p1 > p)
            p = p1;
        len = p - base_path;
        if (len > dest_size - 1)
            len = dest_size - 1;
        memcpy(dest, base_path, len);
        dest[len] = '\0';
        pstrcat(dest, dest_size, filename);
201 202 203
    }
}

204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238
/*
 * Helper function for bdrv_parse_filename() implementations to remove optional
 * protocol prefixes (especially "file:") from a filename and for putting the
 * stripped filename into the options QDict if there is such a prefix.
 */
void bdrv_parse_filename_strip_prefix(const char *filename, const char *prefix,
                                      QDict *options)
{
    if (strstart(filename, prefix, &filename)) {
        /* Stripping the explicit protocol prefix may result in a protocol
         * prefix being (wrongly) detected (if the filename contains a colon) */
        if (path_has_protocol(filename)) {
            QString *fat_filename;

            /* This means there is some colon before the first slash; therefore,
             * this cannot be an absolute path */
            assert(!path_is_absolute(filename));

            /* And we can thus fix the protocol detection issue by prefixing it
             * by "./" */
            fat_filename = qstring_from_str("./");
            qstring_append(fat_filename, filename);

            assert(!path_has_protocol(qstring_get_str(fat_filename)));

            qdict_put(options, "filename", fat_filename);
        } else {
            /* If no protocol prefix was detected, we can use the shortened
             * filename as-is */
            qdict_put_str(options, "filename", filename);
        }
    }
}


239 240 241
/* Returns whether the image file is opened as read-only. Note that this can
 * return false and writing to the image file is still not possible because the
 * image is inactivated. */
J
Jeff Cody 已提交
242 243 244 245 246
bool bdrv_is_read_only(BlockDriverState *bs)
{
    return bs->read_only;
}

247 248
int bdrv_can_set_read_only(BlockDriverState *bs, bool read_only,
                           bool ignore_allow_rdw, Error **errp)
249
{
250 251 252 253 254 255 256
    /* Do not set read_only if copy_on_read is enabled */
    if (bs->copy_on_read && read_only) {
        error_setg(errp, "Can't set node '%s' to r/o with copy-on-read enabled",
                   bdrv_get_device_or_node_name(bs));
        return -EINVAL;
    }

257
    /* Do not clear read_only if it is prohibited */
258 259 260
    if (!read_only && !(bs->open_flags & BDRV_O_ALLOW_RDWR) &&
        !ignore_allow_rdw)
    {
261 262 263 264 265
        error_setg(errp, "Node '%s' is read only",
                   bdrv_get_device_or_node_name(bs));
        return -EPERM;
    }

266 267 268
    return 0;
}

269 270 271 272 273 274 275 276 277 278 279 280
/*
 * Called by a driver that can only provide a read-only image.
 *
 * Returns 0 if the node is already read-only or it could switch the node to
 * read-only because BDRV_O_AUTO_RDONLY is set.
 *
 * Returns -EACCES if the node is read-write and BDRV_O_AUTO_RDONLY is not set
 * or bdrv_can_set_read_only() forbids making the node read-only. If @errmsg
 * is not NULL, it is used as the error message for the Error object.
 */
int bdrv_apply_auto_read_only(BlockDriverState *bs, const char *errmsg,
                              Error **errp)
281 282 283
{
    int ret = 0;

284 285 286 287 288
    if (!(bs->open_flags & BDRV_O_RDWR)) {
        return 0;
    }
    if (!(bs->open_flags & BDRV_O_AUTO_RDONLY)) {
        goto fail;
289 290
    }

291 292 293
    ret = bdrv_can_set_read_only(bs, true, false, NULL);
    if (ret < 0) {
        goto fail;
294 295
    }

296 297 298
    bs->read_only = true;
    bs->open_flags &= ~BDRV_O_RDWR;

299
    return 0;
300 301 302 303

fail:
    error_setg(errp, "%s", errmsg ?: "Image is read-only");
    return -EACCES;
304 305
}

306 307
void bdrv_get_full_backing_filename_from_filename(const char *backed,
                                                  const char *backing,
308 309
                                                  char *dest, size_t sz,
                                                  Error **errp)
310
{
311 312 313
    if (backing[0] == '\0' || path_has_protocol(backing) ||
        path_is_absolute(backing))
    {
314
        pstrcpy(dest, sz, backing);
315 316 317
    } else if (backed[0] == '\0' || strstart(backed, "json:", NULL)) {
        error_setg(errp, "Cannot use relative backing file names for '%s'",
                   backed);
318
    } else {
319
        path_combine(dest, sz, backed, backing);
320 321 322
    }
}

323 324
void bdrv_get_full_backing_filename(BlockDriverState *bs, char *dest, size_t sz,
                                    Error **errp)
325
{
326 327 328 329
    char *backed = bs->exact_filename[0] ? bs->exact_filename : bs->filename;

    bdrv_get_full_backing_filename_from_filename(backed, bs->backing_file,
                                                 dest, sz, errp);
330 331
}

332 333
void bdrv_register(BlockDriver *bdrv)
{
334
    QLIST_INSERT_HEAD(&bdrv_drivers, bdrv, list);
B
bellard 已提交
335
}
B
bellard 已提交
336

337 338 339 340 341
BlockDriverState *bdrv_new(void)
{
    BlockDriverState *bs;
    int i;

342
    bs = g_new0(BlockDriverState, 1);
F
Fam Zheng 已提交
343
    QLIST_INIT(&bs->dirty_bitmaps);
344 345 346
    for (i = 0; i < BLOCK_OP_TYPE_MAX; i++) {
        QLIST_INIT(&bs->op_blockers[i]);
    }
347
    notifier_with_return_list_init(&bs->before_write_notifiers);
348
    qemu_co_mutex_init(&bs->reqs_lock);
349
    qemu_mutex_init(&bs->dirty_bitmap_mutex);
350
    bs->refcnt = 1;
351
    bs->aio_context = qemu_get_aio_context();
P
Paolo Bonzini 已提交
352

353 354
    qemu_co_queue_init(&bs->flush_queue);

355 356 357 358
    for (i = 0; i < bdrv_drain_all_count; i++) {
        bdrv_drained_begin(bs);
    }

359 360
    QTAILQ_INSERT_TAIL(&all_bdrv_states, bs, bs_list);

B
bellard 已提交
361 362 363
    return bs;
}

364
static BlockDriver *bdrv_do_find_format(const char *format_name)
B
bellard 已提交
365 366
{
    BlockDriver *drv1;
367

368 369
    QLIST_FOREACH(drv1, &bdrv_drivers, list) {
        if (!strcmp(drv1->format_name, format_name)) {
B
bellard 已提交
370
            return drv1;
371
        }
B
bellard 已提交
372
    }
373

B
bellard 已提交
374 375 376
    return NULL;
}

377 378 379 380 381 382 383 384 385 386 387 388 389 390 391 392 393 394 395 396 397
BlockDriver *bdrv_find_format(const char *format_name)
{
    BlockDriver *drv1;
    int i;

    drv1 = bdrv_do_find_format(format_name);
    if (drv1) {
        return drv1;
    }

    /* The driver isn't registered, maybe we need to load a module */
    for (i = 0; i < (int)ARRAY_SIZE(block_driver_modules); ++i) {
        if (!strcmp(block_driver_modules[i].format_name, format_name)) {
            block_module_load_one(block_driver_modules[i].library_name);
            break;
        }
    }

    return bdrv_do_find_format(format_name);
}

398
int bdrv_is_whitelisted(BlockDriver *drv, bool read_only)
399
{
400 401 402 403 404
    static const char *whitelist_rw[] = {
        CONFIG_BDRV_RW_WHITELIST
    };
    static const char *whitelist_ro[] = {
        CONFIG_BDRV_RO_WHITELIST
405 406 407
    };
    const char **p;

408
    if (!whitelist_rw[0] && !whitelist_ro[0]) {
409
        return 1;               /* no whitelist, anything goes */
410
    }
411

412
    for (p = whitelist_rw; *p; p++) {
413 414 415 416
        if (!strcmp(drv->format_name, *p)) {
            return 1;
        }
    }
417 418 419 420 421 422 423
    if (read_only) {
        for (p = whitelist_ro; *p; p++) {
            if (!strcmp(drv->format_name, *p)) {
                return 1;
            }
        }
    }
424 425 426
    return 0;
}

427 428 429 430 431
bool bdrv_uses_whitelist(void)
{
    return use_bdrv_whitelist;
}

432 433 434
typedef struct CreateCo {
    BlockDriver *drv;
    char *filename;
435
    QemuOpts *opts;
436
    int ret;
437
    Error *err;
438 439 440 441
} CreateCo;

static void coroutine_fn bdrv_create_co_entry(void *opaque)
{
442 443 444
    Error *local_err = NULL;
    int ret;

445 446 447
    CreateCo *cco = opaque;
    assert(cco->drv);

448
    ret = cco->drv->bdrv_co_create_opts(cco->filename, cco->opts, &local_err);
449
    error_propagate(&cco->err, local_err);
450
    cco->ret = ret;
451 452
}

453
int bdrv_create(BlockDriver *drv, const char* filename,
454
                QemuOpts *opts, Error **errp)
B
bellard 已提交
455
{
456 457 458 459 460 461
    int ret;

    Coroutine *co;
    CreateCo cco = {
        .drv = drv,
        .filename = g_strdup(filename),
462
        .opts = opts,
463
        .ret = NOT_DONE,
464
        .err = NULL,
465 466
    };

467
    if (!drv->bdrv_co_create_opts) {
468
        error_setg(errp, "Driver '%s' does not support image creation", drv->format_name);
469 470
        ret = -ENOTSUP;
        goto out;
471 472 473 474 475 476
    }

    if (qemu_in_coroutine()) {
        /* Fast-path if already in coroutine context */
        bdrv_create_co_entry(&cco);
    } else {
477 478
        co = qemu_coroutine_create(bdrv_create_co_entry, &cco);
        qemu_coroutine_enter(co);
479
        while (cco.ret == NOT_DONE) {
480
            aio_poll(qemu_get_aio_context(), true);
481 482 483 484
        }
    }

    ret = cco.ret;
485
    if (ret < 0) {
486
        if (cco.err) {
487 488 489 490 491
            error_propagate(errp, cco.err);
        } else {
            error_setg_errno(errp, -ret, "Could not create image");
        }
    }
492

493 494
out:
    g_free(cco.filename);
495
    return ret;
B
bellard 已提交
496 497
}

C
Chunyan Liu 已提交
498
int bdrv_create_file(const char *filename, QemuOpts *opts, Error **errp)
499 500
{
    BlockDriver *drv;
501 502
    Error *local_err = NULL;
    int ret;
503

504
    drv = bdrv_find_protocol(filename, true, errp);
505
    if (drv == NULL) {
506
        return -ENOENT;
507 508
    }

C
Chunyan Liu 已提交
509
    ret = bdrv_create(drv, filename, opts, &local_err);
510
    error_propagate(errp, local_err);
511
    return ret;
512 513
}

514 515 516 517 518 519 520 521 522 523 524 525
/**
 * Try to get @bs's logical and physical block size.
 * On success, store them in @bsz struct and return 0.
 * On failure return -errno.
 * @bs must not be empty.
 */
int bdrv_probe_blocksizes(BlockDriverState *bs, BlockSizes *bsz)
{
    BlockDriver *drv = bs->drv;

    if (drv && drv->bdrv_probe_blocksizes) {
        return drv->bdrv_probe_blocksizes(bs, bsz);
526 527
    } else if (drv && drv->is_filter && bs->file) {
        return bdrv_probe_blocksizes(bs->file->bs, bsz);
528 529 530 531 532 533 534 535 536 537 538 539 540 541 542 543 544
    }

    return -ENOTSUP;
}

/**
 * Try to get @bs's geometry (cyls, heads, sectors).
 * On success, store them in @geo struct and return 0.
 * On failure return -errno.
 * @bs must not be empty.
 */
int bdrv_probe_geometry(BlockDriverState *bs, HDGeometry *geo)
{
    BlockDriver *drv = bs->drv;

    if (drv && drv->bdrv_probe_geometry) {
        return drv->bdrv_probe_geometry(bs, geo);
545 546
    } else if (drv && drv->is_filter && bs->file) {
        return bdrv_probe_geometry(bs->file->bs, geo);
547 548 549 550 551
    }

    return -ENOTSUP;
}

552 553 554 555 556
/*
 * Create a uniquely-named empty temporary file.
 * Return 0 upon success, otherwise a negative errno value.
 */
int get_tmp_filename(char *filename, int size)
B
bellard 已提交
557
{
558
#ifdef _WIN32
559
    char temp_dir[MAX_PATH];
560 561 562 563 564 565
    /* GetTempFileName requires that its output buffer (4th param)
       have length MAX_PATH or greater.  */
    assert(size >= MAX_PATH);
    return (GetTempPath(MAX_PATH, temp_dir)
            && GetTempFileName(temp_dir, "qem", 0, filename)
            ? 0 : -GetLastError());
B
bellard 已提交
566
#else
B
bellard 已提交
567
    int fd;
568
    const char *tmpdir;
A
aurel32 已提交
569
    tmpdir = getenv("TMPDIR");
570 571 572
    if (!tmpdir) {
        tmpdir = "/var/tmp";
    }
573 574 575
    if (snprintf(filename, size, "%s/vl.XXXXXX", tmpdir) >= size) {
        return -EOVERFLOW;
    }
B
bellard 已提交
576
    fd = mkstemp(filename);
577 578 579 580 581
    if (fd < 0) {
        return -errno;
    }
    if (close(fd) != 0) {
        unlink(filename);
582 583 584
        return -errno;
    }
    return 0;
B
bellard 已提交
585
#endif
586
}
B
bellard 已提交
587

588 589 590 591 592 593 594 595 596 597 598 599 600 601 602 603 604 605 606 607 608 609
/*
 * Detect host devices. By convention, /dev/cdrom[N] is always
 * recognized as a host CDROM.
 */
static BlockDriver *find_hdev_driver(const char *filename)
{
    int score_max = 0, score;
    BlockDriver *drv = NULL, *d;

    QLIST_FOREACH(d, &bdrv_drivers, list) {
        if (d->bdrv_probe_device) {
            score = d->bdrv_probe_device(filename);
            if (score > score_max) {
                score_max = score;
                drv = d;
            }
        }
    }

    return drv;
}

610 611 612 613 614 615 616 617 618 619 620 621 622
static BlockDriver *bdrv_do_find_protocol(const char *protocol)
{
    BlockDriver *drv1;

    QLIST_FOREACH(drv1, &bdrv_drivers, list) {
        if (drv1->protocol_name && !strcmp(drv1->protocol_name, protocol)) {
            return drv1;
        }
    }

    return NULL;
}

623
BlockDriver *bdrv_find_protocol(const char *filename,
624 625
                                bool allow_protocol_prefix,
                                Error **errp)
B
bellard 已提交
626 627 628
{
    BlockDriver *drv1;
    char protocol[128];
629
    int len;
B
bellard 已提交
630
    const char *p;
631
    int i;
B
bellard 已提交
632

633 634
    /* TODO Drivers without bdrv_file_open must be specified explicitly */

635 636 637 638 639 640 641 642 643 644 645 646
    /*
     * XXX(hch): we really should not let host device detection
     * override an explicit protocol specification, but moving this
     * later breaks access to device names with colons in them.
     * Thanks to the brain-dead persistent naming schemes on udev-
     * based Linux systems those actually are quite common.
     */
    drv1 = find_hdev_driver(filename);
    if (drv1) {
        return drv1;
    }

647
    if (!path_has_protocol(filename) || !allow_protocol_prefix) {
648
        return &bdrv_file;
649
    }
650

651 652
    p = strchr(filename, ':');
    assert(p != NULL);
653 654 655 656 657
    len = p - filename;
    if (len > sizeof(protocol) - 1)
        len = sizeof(protocol) - 1;
    memcpy(protocol, filename, len);
    protocol[len] = '\0';
658 659 660 661 662 663 664 665 666 667 668

    drv1 = bdrv_do_find_protocol(protocol);
    if (drv1) {
        return drv1;
    }

    for (i = 0; i < (int)ARRAY_SIZE(block_driver_modules); ++i) {
        if (block_driver_modules[i].protocol_name &&
            !strcmp(block_driver_modules[i].protocol_name, protocol)) {
            block_module_load_one(block_driver_modules[i].library_name);
            break;
669
        }
B
bellard 已提交
670
    }
671

672 673 674 675 676
    drv1 = bdrv_do_find_protocol(protocol);
    if (!drv1) {
        error_setg(errp, "Unknown protocol '%s'", protocol);
    }
    return drv1;
B
bellard 已提交
677 678
}

679 680 681 682 683 684
/*
 * Guess image format by probing its contents.
 * This is not a good idea when your image is raw (CVE-2008-2004), but
 * we do it anyway for backward compatibility.
 *
 * @buf         contains the image's first @buf_size bytes.
685 686
 * @buf_size    is the buffer size in bytes (generally BLOCK_PROBE_BUF_SIZE,
 *              but can be smaller if the image file is smaller)
687 688 689 690 691 692
 * @filename    is its filename.
 *
 * For all block drivers, call the bdrv_probe() method to get its
 * probing score.
 * Return the first block driver with the highest probing score.
 */
693 694
BlockDriver *bdrv_probe_all(const uint8_t *buf, int buf_size,
                            const char *filename)
695 696 697 698 699 700 701 702 703 704 705 706 707 708 709 710 711
{
    int score_max = 0, score;
    BlockDriver *drv = NULL, *d;

    QLIST_FOREACH(d, &bdrv_drivers, list) {
        if (d->bdrv_probe) {
            score = d->bdrv_probe(buf, buf_size, filename);
            if (score > score_max) {
                score_max = score;
                drv = d;
            }
        }
    }

    return drv;
}

712
static int find_image_format(BlockBackend *file, const char *filename,
713
                             BlockDriver **pdrv, Error **errp)
714
{
715
    BlockDriver *drv;
716
    uint8_t buf[BLOCK_PROBE_BUF_SIZE];
717
    int ret = 0;
718

719
    /* Return the raw BlockDriver * to scsi-generic devices or empty drives */
720
    if (blk_is_sg(file) || !blk_is_inserted(file) || blk_getlength(file) == 0) {
721
        *pdrv = &bdrv_raw;
722
        return ret;
723
    }
724

725
    ret = blk_pread(file, 0, buf, sizeof(buf));
B
bellard 已提交
726
    if (ret < 0) {
727 728
        error_setg_errno(errp, -ret, "Could not read image for determining its "
                         "format");
729 730
        *pdrv = NULL;
        return ret;
B
bellard 已提交
731 732
    }

733
    drv = bdrv_probe_all(buf, ret, filename);
734
    if (!drv) {
735 736
        error_setg(errp, "Could not determine image format: No compatible "
                   "driver found");
737 738 739 740
        ret = -ENOENT;
    }
    *pdrv = drv;
    return ret;
B
bellard 已提交
741 742
}

743 744
/**
 * Set the current 'total_sectors' value
M
Markus Armbruster 已提交
745
 * Return 0 on success, -errno on error.
746
 */
747
int refresh_total_sectors(BlockDriverState *bs, int64_t hint)
748 749 750
{
    BlockDriver *drv = bs->drv;

M
Max Reitz 已提交
751 752 753 754
    if (!drv) {
        return -ENOMEDIUM;
    }

755
    /* Do not attempt drv->bdrv_getlength() on scsi-generic devices */
756
    if (bdrv_is_sg(bs))
757 758
        return 0;

759 760 761 762 763 764
    /* query actual device if possible, otherwise just trust the hint */
    if (drv->bdrv_getlength) {
        int64_t length = drv->bdrv_getlength(bs);
        if (length < 0) {
            return length;
        }
F
Fam Zheng 已提交
765
        hint = DIV_ROUND_UP(length, BDRV_SECTOR_SIZE);
766 767 768 769 770 771
    }

    bs->total_sectors = hint;
    return 0;
}

772 773 774 775 776 777 778 779 780 781 782 783 784 785
/**
 * Combines a QDict of new block driver @options with any missing options taken
 * from @old_options, so that leaving out an option defaults to its old value.
 */
static void bdrv_join_options(BlockDriverState *bs, QDict *options,
                              QDict *old_options)
{
    if (bs->drv && bs->drv->bdrv_join_options) {
        bs->drv->bdrv_join_options(options, old_options);
    } else {
        qdict_join(options, old_options, false);
    }
}

786 787 788 789 790 791 792 793 794 795 796 797 798 799 800 801 802 803 804 805 806 807 808 809 810
static BlockdevDetectZeroesOptions bdrv_parse_detect_zeroes(QemuOpts *opts,
                                                            int open_flags,
                                                            Error **errp)
{
    Error *local_err = NULL;
    char *value = qemu_opt_get_del(opts, "detect-zeroes");
    BlockdevDetectZeroesOptions detect_zeroes =
        qapi_enum_parse(&BlockdevDetectZeroesOptions_lookup, value,
                        BLOCKDEV_DETECT_ZEROES_OPTIONS_OFF, &local_err);
    g_free(value);
    if (local_err) {
        error_propagate(errp, local_err);
        return detect_zeroes;
    }

    if (detect_zeroes == BLOCKDEV_DETECT_ZEROES_OPTIONS_UNMAP &&
        !(open_flags & BDRV_O_UNMAP))
    {
        error_setg(errp, "setting detect-zeroes to unmap is not allowed "
                   "without setting discard operation to unmap");
    }

    return detect_zeroes;
}

P
Paolo Bonzini 已提交
811 812 813 814 815 816 817 818 819 820 821 822 823 824 825 826 827 828 829 830
/**
 * Set open flags for a given discard mode
 *
 * Return 0 on success, -1 if the discard mode was invalid.
 */
int bdrv_parse_discard_flags(const char *mode, int *flags)
{
    *flags &= ~BDRV_O_UNMAP;

    if (!strcmp(mode, "off") || !strcmp(mode, "ignore")) {
        /* do nothing */
    } else if (!strcmp(mode, "on") || !strcmp(mode, "unmap")) {
        *flags |= BDRV_O_UNMAP;
    } else {
        return -1;
    }

    return 0;
}

831 832 833 834 835
/**
 * Set open flags for a given cache mode
 *
 * Return 0 on success, -1 if the cache mode was invalid.
 */
836
int bdrv_parse_cache_mode(const char *mode, int *flags, bool *writethrough)
837 838 839 840
{
    *flags &= ~BDRV_O_CACHE_MASK;

    if (!strcmp(mode, "off") || !strcmp(mode, "none")) {
841 842
        *writethrough = false;
        *flags |= BDRV_O_NOCACHE;
843
    } else if (!strcmp(mode, "directsync")) {
844
        *writethrough = true;
845
        *flags |= BDRV_O_NOCACHE;
846
    } else if (!strcmp(mode, "writeback")) {
847
        *writethrough = false;
848
    } else if (!strcmp(mode, "unsafe")) {
849
        *writethrough = false;
850 851
        *flags |= BDRV_O_NO_FLUSH;
    } else if (!strcmp(mode, "writethrough")) {
852
        *writethrough = true;
853 854 855 856 857 858 859
    } else {
        return -1;
    }

    return 0;
}

860 861 862 863 864 865
static char *bdrv_child_get_parent_desc(BdrvChild *c)
{
    BlockDriverState *parent = c->opaque;
    return g_strdup(bdrv_get_device_or_node_name(parent));
}

866 867 868
static void bdrv_child_cb_drained_begin(BdrvChild *child)
{
    BlockDriverState *bs = child->opaque;
869
    bdrv_do_drained_begin_quiesce(bs, NULL, false);
870 871
}

872 873 874
static bool bdrv_child_cb_drained_poll(BdrvChild *child)
{
    BlockDriverState *bs = child->opaque;
875
    return bdrv_drain_poll(bs, false, NULL, false);
876 877
}

878 879 880 881 882 883
static void bdrv_child_cb_drained_end(BdrvChild *child)
{
    BlockDriverState *bs = child->opaque;
    bdrv_drained_end(bs);
}

884 885 886 887 888 889 890 891 892 893 894 895
static void bdrv_child_cb_attach(BdrvChild *child)
{
    BlockDriverState *bs = child->opaque;
    bdrv_apply_subtree_drain(child, bs);
}

static void bdrv_child_cb_detach(BdrvChild *child)
{
    BlockDriverState *bs = child->opaque;
    bdrv_unapply_subtree_drain(child, bs);
}

896 897 898 899 900 901 902
static int bdrv_child_cb_inactivate(BdrvChild *child)
{
    BlockDriverState *bs = child->opaque;
    assert(bs->open_flags & BDRV_O_INACTIVE);
    return 0;
}

903
/*
K
Kevin Wolf 已提交
904 905 906
 * Returns the options and flags that a temporary snapshot should get, based on
 * the originally requested flags (the originally requested image will have
 * flags like a backing file)
907
 */
K
Kevin Wolf 已提交
908 909
static void bdrv_temp_snapshot_options(int *child_flags, QDict *child_options,
                                       int parent_flags, QDict *parent_options)
910
{
K
Kevin Wolf 已提交
911 912 913 914 915
    *child_flags = (parent_flags & ~BDRV_O_SNAPSHOT) | BDRV_O_TEMPORARY;

    /* For temporary files, unconditional cache=unsafe is fine */
    qdict_set_default_str(child_options, BDRV_OPT_CACHE_DIRECT, "off");
    qdict_set_default_str(child_options, BDRV_OPT_CACHE_NO_FLUSH, "on");
916

917 918 919
    /* Copy the read-only option from the parent */
    qdict_copy_default(child_options, parent_options, BDRV_OPT_READ_ONLY);

920 921 922
    /* aio=native doesn't work for cache.direct=off, so disable it for the
     * temporary snapshot */
    *child_flags &= ~BDRV_O_NATIVE_AIO;
923 924
}

925
/*
926 927
 * Returns the options and flags that bs->file should get if a protocol driver
 * is expected, based on the given options and flags for the parent BDS
928
 */
929 930
static void bdrv_inherited_options(int *child_flags, QDict *child_options,
                                   int parent_flags, QDict *parent_options)
931
{
932 933
    int flags = parent_flags;

934 935 936
    /* Enable protocol handling, disable format probing for bs->file */
    flags |= BDRV_O_PROTOCOL;

937 938 939 940
    /* If the cache mode isn't explicitly set, inherit direct and no-flush from
     * the parent. */
    qdict_copy_default(child_options, parent_options, BDRV_OPT_CACHE_DIRECT);
    qdict_copy_default(child_options, parent_options, BDRV_OPT_CACHE_NO_FLUSH);
941
    qdict_copy_default(child_options, parent_options, BDRV_OPT_FORCE_SHARE);
942

943 944
    /* Inherit the read-only option from the parent if it's not set */
    qdict_copy_default(child_options, parent_options, BDRV_OPT_READ_ONLY);
K
Kevin Wolf 已提交
945
    qdict_copy_default(child_options, parent_options, BDRV_OPT_AUTO_READ_ONLY);
946

947
    /* Our block drivers take care to send flushes and respect unmap policy,
948 949
     * so we can default to enable both on lower layers regardless of the
     * corresponding parent options. */
950
    qdict_set_default_str(child_options, BDRV_OPT_DISCARD, "unmap");
951 952

    /* Clear flags that only apply to the top layer */
953 954
    flags &= ~(BDRV_O_SNAPSHOT | BDRV_O_NO_BACKING | BDRV_O_COPY_ON_READ |
               BDRV_O_NO_IO);
955

956
    *child_flags = flags;
957 958
}

959
const BdrvChildRole child_file = {
960
    .parent_is_bds   = true,
961
    .get_parent_desc = bdrv_child_get_parent_desc,
962
    .inherit_options = bdrv_inherited_options,
963
    .drained_begin   = bdrv_child_cb_drained_begin,
964
    .drained_poll    = bdrv_child_cb_drained_poll,
965
    .drained_end     = bdrv_child_cb_drained_end,
966 967
    .attach          = bdrv_child_cb_attach,
    .detach          = bdrv_child_cb_detach,
968
    .inactivate      = bdrv_child_cb_inactivate,
969 970 971
};

/*
972 973 974
 * Returns the options and flags that bs->file should get if the use of formats
 * (and not only protocols) is permitted for it, based on the given options and
 * flags for the parent BDS
975
 */
976 977
static void bdrv_inherited_fmt_options(int *child_flags, QDict *child_options,
                                       int parent_flags, QDict *parent_options)
978
{
979 980 981
    child_file.inherit_options(child_flags, child_options,
                               parent_flags, parent_options);

982
    *child_flags &= ~(BDRV_O_PROTOCOL | BDRV_O_NO_IO);
983 984 985
}

const BdrvChildRole child_format = {
986
    .parent_is_bds   = true,
987
    .get_parent_desc = bdrv_child_get_parent_desc,
988
    .inherit_options = bdrv_inherited_fmt_options,
989
    .drained_begin   = bdrv_child_cb_drained_begin,
990
    .drained_poll    = bdrv_child_cb_drained_poll,
991
    .drained_end     = bdrv_child_cb_drained_end,
992 993
    .attach          = bdrv_child_cb_attach,
    .detach          = bdrv_child_cb_detach,
994
    .inactivate      = bdrv_child_cb_inactivate,
995 996
};

997 998 999 1000 1001 1002 1003 1004 1005 1006 1007 1008 1009 1010 1011 1012 1013 1014 1015 1016 1017 1018 1019 1020 1021 1022 1023 1024 1025 1026 1027 1028 1029 1030 1031 1032 1033 1034 1035
static void bdrv_backing_attach(BdrvChild *c)
{
    BlockDriverState *parent = c->opaque;
    BlockDriverState *backing_hd = c->bs;

    assert(!parent->backing_blocker);
    error_setg(&parent->backing_blocker,
               "node is used as backing hd of '%s'",
               bdrv_get_device_or_node_name(parent));

    parent->open_flags &= ~BDRV_O_NO_BACKING;
    pstrcpy(parent->backing_file, sizeof(parent->backing_file),
            backing_hd->filename);
    pstrcpy(parent->backing_format, sizeof(parent->backing_format),
            backing_hd->drv ? backing_hd->drv->format_name : "");

    bdrv_op_block_all(backing_hd, parent->backing_blocker);
    /* Otherwise we won't be able to commit or stream */
    bdrv_op_unblock(backing_hd, BLOCK_OP_TYPE_COMMIT_TARGET,
                    parent->backing_blocker);
    bdrv_op_unblock(backing_hd, BLOCK_OP_TYPE_STREAM,
                    parent->backing_blocker);
    /*
     * We do backup in 3 ways:
     * 1. drive backup
     *    The target bs is new opened, and the source is top BDS
     * 2. blockdev backup
     *    Both the source and the target are top BDSes.
     * 3. internal backup(used for block replication)
     *    Both the source and the target are backing file
     *
     * In case 1 and 2, neither the source nor the target is the backing file.
     * In case 3, we will block the top BDS, so there is only one block job
     * for the top BDS and its backing chain.
     */
    bdrv_op_unblock(backing_hd, BLOCK_OP_TYPE_BACKUP_SOURCE,
                    parent->backing_blocker);
    bdrv_op_unblock(backing_hd, BLOCK_OP_TYPE_BACKUP_TARGET,
                    parent->backing_blocker);
1036 1037

    bdrv_child_cb_attach(c);
1038 1039 1040 1041 1042 1043 1044 1045 1046 1047
}

static void bdrv_backing_detach(BdrvChild *c)
{
    BlockDriverState *parent = c->opaque;

    assert(parent->backing_blocker);
    bdrv_op_unblock_all(c->bs, parent->backing_blocker);
    error_free(parent->backing_blocker);
    parent->backing_blocker = NULL;
1048 1049

    bdrv_child_cb_detach(c);
1050 1051
}

K
Kevin Wolf 已提交
1052
/*
1053 1054
 * Returns the options and flags that bs->backing should get, based on the
 * given options and flags for the parent BDS
K
Kevin Wolf 已提交
1055
 */
1056 1057
static void bdrv_backing_options(int *child_flags, QDict *child_options,
                                 int parent_flags, QDict *parent_options)
K
Kevin Wolf 已提交
1058
{
1059 1060
    int flags = parent_flags;

1061 1062
    /* The cache mode is inherited unmodified for backing files; except WCE,
     * which is only applied on the top level (BlockBackend) */
1063 1064
    qdict_copy_default(child_options, parent_options, BDRV_OPT_CACHE_DIRECT);
    qdict_copy_default(child_options, parent_options, BDRV_OPT_CACHE_NO_FLUSH);
1065
    qdict_copy_default(child_options, parent_options, BDRV_OPT_FORCE_SHARE);
1066

K
Kevin Wolf 已提交
1067
    /* backing files always opened read-only */
1068
    qdict_set_default_str(child_options, BDRV_OPT_READ_ONLY, "on");
K
Kevin Wolf 已提交
1069
    qdict_set_default_str(child_options, BDRV_OPT_AUTO_READ_ONLY, "off");
1070
    flags &= ~BDRV_O_COPY_ON_READ;
K
Kevin Wolf 已提交
1071 1072

    /* snapshot=on is handled on the top layer */
1073
    flags &= ~(BDRV_O_SNAPSHOT | BDRV_O_TEMPORARY);
K
Kevin Wolf 已提交
1074

1075
    *child_flags = flags;
K
Kevin Wolf 已提交
1076 1077
}

1078 1079 1080 1081
static int bdrv_backing_update_filename(BdrvChild *c, BlockDriverState *base,
                                        const char *filename, Error **errp)
{
    BlockDriverState *parent = c->opaque;
1082
    int orig_flags = bdrv_get_flags(parent);
1083 1084
    int ret;

1085 1086 1087 1088 1089 1090 1091
    if (!(orig_flags & BDRV_O_RDWR)) {
        ret = bdrv_reopen(parent, orig_flags | BDRV_O_RDWR, errp);
        if (ret < 0) {
            return ret;
        }
    }

1092 1093 1094
    ret = bdrv_change_backing_file(parent, filename,
                                   base->drv ? base->drv->format_name : "");
    if (ret < 0) {
1095
        error_setg_errno(errp, -ret, "Could not update backing file link");
1096 1097
    }

1098 1099 1100 1101
    if (!(orig_flags & BDRV_O_RDWR)) {
        bdrv_reopen(parent, orig_flags, NULL);
    }

1102 1103 1104
    return ret;
}

K
Kevin Wolf 已提交
1105
const BdrvChildRole child_backing = {
1106
    .parent_is_bds   = true,
1107
    .get_parent_desc = bdrv_child_get_parent_desc,
1108 1109
    .attach          = bdrv_backing_attach,
    .detach          = bdrv_backing_detach,
1110
    .inherit_options = bdrv_backing_options,
1111
    .drained_begin   = bdrv_child_cb_drained_begin,
1112
    .drained_poll    = bdrv_child_cb_drained_poll,
1113
    .drained_end     = bdrv_child_cb_drained_end,
1114
    .inactivate      = bdrv_child_cb_inactivate,
1115
    .update_filename = bdrv_backing_update_filename,
1116 1117
};

K
Kevin Wolf 已提交
1118 1119
static int bdrv_open_flags(BlockDriverState *bs, int flags)
{
K
Kevin Wolf 已提交
1120
    int open_flags = flags;
K
Kevin Wolf 已提交
1121 1122 1123 1124 1125

    /*
     * Clear flags that are internal to the block layer before opening the
     * image.
     */
1126
    open_flags &= ~(BDRV_O_SNAPSHOT | BDRV_O_NO_BACKING | BDRV_O_PROTOCOL);
K
Kevin Wolf 已提交
1127 1128 1129 1130

    /*
     * Snapshots should be writable.
     */
1131
    if (flags & BDRV_O_TEMPORARY) {
K
Kevin Wolf 已提交
1132 1133 1134 1135 1136 1137
        open_flags |= BDRV_O_RDWR;
    }

    return open_flags;
}

1138 1139 1140 1141 1142
static void update_flags_from_options(int *flags, QemuOpts *opts)
{
    *flags &= ~BDRV_O_CACHE_MASK;

    assert(qemu_opt_find(opts, BDRV_OPT_CACHE_NO_FLUSH));
1143
    if (qemu_opt_get_bool_del(opts, BDRV_OPT_CACHE_NO_FLUSH, false)) {
1144 1145 1146 1147
        *flags |= BDRV_O_NO_FLUSH;
    }

    assert(qemu_opt_find(opts, BDRV_OPT_CACHE_DIRECT));
1148
    if (qemu_opt_get_bool_del(opts, BDRV_OPT_CACHE_DIRECT, false)) {
1149 1150
        *flags |= BDRV_O_NOCACHE;
    }
1151 1152 1153 1154

    *flags &= ~BDRV_O_RDWR;

    assert(qemu_opt_find(opts, BDRV_OPT_READ_ONLY));
1155
    if (!qemu_opt_get_bool_del(opts, BDRV_OPT_READ_ONLY, false)) {
1156 1157 1158
        *flags |= BDRV_O_RDWR;
    }

K
Kevin Wolf 已提交
1159 1160 1161 1162
    assert(qemu_opt_find(opts, BDRV_OPT_AUTO_READ_ONLY));
    if (qemu_opt_get_bool_del(opts, BDRV_OPT_AUTO_READ_ONLY, false)) {
        *flags |= BDRV_O_AUTO_RDONLY;
    }
1163 1164 1165 1166 1167
}

static void update_options_from_flags(QDict *options, int flags)
{
    if (!qdict_haskey(options, BDRV_OPT_CACHE_DIRECT)) {
1168
        qdict_put_bool(options, BDRV_OPT_CACHE_DIRECT, flags & BDRV_O_NOCACHE);
1169 1170
    }
    if (!qdict_haskey(options, BDRV_OPT_CACHE_NO_FLUSH)) {
1171 1172
        qdict_put_bool(options, BDRV_OPT_CACHE_NO_FLUSH,
                       flags & BDRV_O_NO_FLUSH);
1173
    }
1174
    if (!qdict_haskey(options, BDRV_OPT_READ_ONLY)) {
1175
        qdict_put_bool(options, BDRV_OPT_READ_ONLY, !(flags & BDRV_O_RDWR));
1176
    }
K
Kevin Wolf 已提交
1177 1178 1179 1180
    if (!qdict_haskey(options, BDRV_OPT_AUTO_READ_ONLY)) {
        qdict_put_bool(options, BDRV_OPT_AUTO_READ_ONLY,
                       flags & BDRV_O_AUTO_RDONLY);
    }
1181 1182
}

1183 1184 1185
static void bdrv_assign_node_name(BlockDriverState *bs,
                                  const char *node_name,
                                  Error **errp)
1186
{
J
Jeff Cody 已提交
1187
    char *gen_node_name = NULL;
1188

J
Jeff Cody 已提交
1189 1190 1191 1192 1193 1194 1195
    if (!node_name) {
        node_name = gen_node_name = id_generate(ID_BLOCK);
    } else if (!id_wellformed(node_name)) {
        /*
         * Check for empty string or invalid characters, but not if it is
         * generated (generated names use characters not available to the user)
         */
K
Kevin Wolf 已提交
1196
        error_setg(errp, "Invalid node name");
1197
        return;
1198 1199
    }

1200
    /* takes care of avoiding namespaces collisions */
1201
    if (blk_by_name(node_name)) {
1202 1203
        error_setg(errp, "node-name=%s is conflicting with a device id",
                   node_name);
J
Jeff Cody 已提交
1204
        goto out;
1205 1206
    }

1207 1208 1209
    /* takes care of avoiding duplicates node names */
    if (bdrv_find_node(node_name)) {
        error_setg(errp, "Duplicate node name");
J
Jeff Cody 已提交
1210
        goto out;
1211 1212
    }

1213 1214 1215 1216 1217 1218
    /* Make sure that the node name isn't truncated */
    if (strlen(node_name) >= sizeof(bs->node_name)) {
        error_setg(errp, "Node name too long");
        goto out;
    }

1219 1220 1221
    /* copy node name into the bs and insert it into the graph list */
    pstrcpy(bs->node_name, sizeof(bs->node_name), node_name);
    QTAILQ_INSERT_TAIL(&graph_bdrv_states, bs, node_list);
J
Jeff Cody 已提交
1222 1223
out:
    g_free(gen_node_name);
1224 1225
}

1226 1227 1228 1229 1230
static int bdrv_open_driver(BlockDriverState *bs, BlockDriver *drv,
                            const char *node_name, QDict *options,
                            int open_flags, Error **errp)
{
    Error *local_err = NULL;
1231
    int i, ret;
1232 1233 1234 1235 1236 1237 1238 1239

    bdrv_assign_node_name(bs, node_name, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        return -EINVAL;
    }

    bs->drv = drv;
K
Kevin Wolf 已提交
1240
    bs->read_only = !(bs->open_flags & BDRV_O_RDWR);
1241 1242 1243 1244 1245
    bs->opaque = g_malloc0(drv->instance_size);

    if (drv->bdrv_file_open) {
        assert(!drv->bdrv_needs_filename || bs->filename[0]);
        ret = drv->bdrv_file_open(bs, options, open_flags, &local_err);
K
Kevin Wolf 已提交
1246
    } else if (drv->bdrv_open) {
1247
        ret = drv->bdrv_open(bs, options, open_flags, &local_err);
K
Kevin Wolf 已提交
1248 1249
    } else {
        ret = 0;
1250 1251 1252 1253 1254 1255 1256 1257 1258 1259
    }

    if (ret < 0) {
        if (local_err) {
            error_propagate(errp, local_err);
        } else if (bs->filename[0]) {
            error_setg_errno(errp, -ret, "Could not open '%s'", bs->filename);
        } else {
            error_setg_errno(errp, -ret, "Could not open image");
        }
1260
        goto open_failed;
1261 1262 1263 1264 1265
    }

    ret = refresh_total_sectors(bs, bs->total_sectors);
    if (ret < 0) {
        error_setg_errno(errp, -ret, "Could not refresh total sector count");
1266
        return ret;
1267 1268 1269 1270 1271
    }

    bdrv_refresh_limits(bs, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
1272
        return -EINVAL;
1273 1274 1275 1276 1277 1278
    }

    assert(bdrv_opt_mem_align(bs) != 0);
    assert(bdrv_min_mem_align(bs) != 0);
    assert(is_power_of_2(bs->bl.request_alignment));

1279 1280 1281 1282 1283 1284
    for (i = 0; i < bs->quiesce_counter; i++) {
        if (drv->bdrv_co_drain_begin) {
            drv->bdrv_co_drain_begin(bs);
        }
    }

1285
    return 0;
1286 1287 1288 1289 1290 1291
open_failed:
    bs->drv = NULL;
    if (bs->file != NULL) {
        bdrv_unref_child(bs, bs->file);
        bs->file = NULL;
    }
1292 1293 1294 1295 1296
    g_free(bs->opaque);
    bs->opaque = NULL;
    return ret;
}

K
Kevin Wolf 已提交
1297 1298 1299 1300 1301 1302 1303 1304 1305 1306 1307 1308 1309 1310 1311 1312
BlockDriverState *bdrv_new_open_driver(BlockDriver *drv, const char *node_name,
                                       int flags, Error **errp)
{
    BlockDriverState *bs;
    int ret;

    bs = bdrv_new();
    bs->open_flags = flags;
    bs->explicit_options = qdict_new();
    bs->options = qdict_new();
    bs->opaque = NULL;

    update_options_from_flags(bs->options, flags);

    ret = bdrv_open_driver(bs, drv, node_name, bs->options, flags, errp);
    if (ret < 0) {
1313
        qobject_unref(bs->explicit_options);
1314
        bs->explicit_options = NULL;
1315
        qobject_unref(bs->options);
1316
        bs->options = NULL;
K
Kevin Wolf 已提交
1317 1318 1319 1320 1321 1322 1323
        bdrv_unref(bs);
        return NULL;
    }

    return bs;
}

1324
QemuOptsList bdrv_runtime_opts = {
1325 1326 1327 1328 1329 1330 1331 1332
    .name = "bdrv_common",
    .head = QTAILQ_HEAD_INITIALIZER(bdrv_runtime_opts.head),
    .desc = {
        {
            .name = "node-name",
            .type = QEMU_OPT_STRING,
            .help = "Node name of the block device node",
        },
K
Kevin Wolf 已提交
1333 1334 1335 1336 1337
        {
            .name = "driver",
            .type = QEMU_OPT_STRING,
            .help = "Block driver to use for the node",
        },
1338 1339 1340 1341 1342 1343 1344 1345 1346 1347
        {
            .name = BDRV_OPT_CACHE_DIRECT,
            .type = QEMU_OPT_BOOL,
            .help = "Bypass software writeback cache on the host",
        },
        {
            .name = BDRV_OPT_CACHE_NO_FLUSH,
            .type = QEMU_OPT_BOOL,
            .help = "Ignore flush requests",
        },
1348 1349 1350 1351 1352
        {
            .name = BDRV_OPT_READ_ONLY,
            .type = QEMU_OPT_BOOL,
            .help = "Node is opened in read-only mode",
        },
K
Kevin Wolf 已提交
1353 1354 1355 1356 1357
        {
            .name = BDRV_OPT_AUTO_READ_ONLY,
            .type = QEMU_OPT_BOOL,
            .help = "Node can become read-only if opening read-write fails",
        },
1358 1359 1360 1361 1362
        {
            .name = "detect-zeroes",
            .type = QEMU_OPT_STRING,
            .help = "try to optimize zero writes (off, on, unmap)",
        },
1363
        {
1364
            .name = BDRV_OPT_DISCARD,
1365 1366 1367
            .type = QEMU_OPT_STRING,
            .help = "discard operation (ignore/off, unmap/on)",
        },
1368 1369 1370 1371 1372
        {
            .name = BDRV_OPT_FORCE_SHARE,
            .type = QEMU_OPT_BOOL,
            .help = "always accept other writers (default: off)",
        },
1373 1374 1375 1376
        { /* end of list */ }
    },
};

1377 1378
/*
 * Common part for opening disk images and files
1379 1380
 *
 * Removes all processed options from *options.
1381
 */
1382
static int bdrv_open_common(BlockDriverState *bs, BlockBackend *file,
K
Kevin Wolf 已提交
1383
                            QDict *options, Error **errp)
1384 1385
{
    int ret, open_flags;
K
Kevin Wolf 已提交
1386
    const char *filename;
K
Kevin Wolf 已提交
1387
    const char *driver_name = NULL;
1388
    const char *node_name = NULL;
1389
    const char *discard;
1390
    QemuOpts *opts;
K
Kevin Wolf 已提交
1391
    BlockDriver *drv;
1392
    Error *local_err = NULL;
1393

1394
    assert(bs->file == NULL);
1395
    assert(options != NULL && bs->options != options);
1396

K
Kevin Wolf 已提交
1397 1398 1399 1400 1401 1402 1403 1404
    opts = qemu_opts_create(&bdrv_runtime_opts, NULL, 0, &error_abort);
    qemu_opts_absorb_qdict(opts, options, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        ret = -EINVAL;
        goto fail_opts;
    }

1405 1406
    update_flags_from_options(&bs->open_flags, opts);

K
Kevin Wolf 已提交
1407 1408 1409 1410
    driver_name = qemu_opt_get(opts, "driver");
    drv = bdrv_find_format(driver_name);
    assert(drv != NULL);

1411 1412 1413 1414 1415 1416 1417 1418 1419 1420
    bs->force_share = qemu_opt_get_bool(opts, BDRV_OPT_FORCE_SHARE, false);

    if (bs->force_share && (bs->open_flags & BDRV_O_RDWR)) {
        error_setg(errp,
                   BDRV_OPT_FORCE_SHARE
                   "=on can only be used with read-only images");
        ret = -EINVAL;
        goto fail_opts;
    }

1421
    if (file != NULL) {
1422
        filename = blk_bs(file)->filename;
1423
    } else {
1424 1425 1426 1427 1428 1429 1430
        /*
         * Caution: while qdict_get_try_str() is fine, getting
         * non-string types would require more care.  When @options
         * come from -blockdev or blockdev_add, its members are typed
         * according to the QAPI schema, but when they come from
         * -drive, they're all QString.
         */
1431 1432 1433
        filename = qdict_get_try_str(options, "filename");
    }

1434
    if (drv->bdrv_needs_filename && (!filename || !filename[0])) {
1435 1436
        error_setg(errp, "The '%s' block driver requires a file name",
                   drv->format_name);
1437 1438
        ret = -EINVAL;
        goto fail_opts;
1439 1440
    }

K
Kevin Wolf 已提交
1441 1442
    trace_bdrv_open_common(bs, filename ?: "", bs->open_flags,
                           drv->format_name);
K
Kevin Wolf 已提交
1443

K
Kevin Wolf 已提交
1444
    bs->read_only = !(bs->open_flags & BDRV_O_RDWR);
1445 1446

    if (use_bdrv_whitelist && !bdrv_is_whitelisted(drv, bs->read_only)) {
1447 1448 1449 1450 1451
        error_setg(errp,
                   !bs->read_only && bdrv_is_whitelisted(drv, true)
                        ? "Driver '%s' can only be used for read-only devices"
                        : "Driver '%s' is not whitelisted",
                   drv->format_name);
1452 1453
        ret = -ENOTSUP;
        goto fail_opts;
1454
    }
1455

1456 1457 1458
    /* bdrv_new() and bdrv_close() make it so */
    assert(atomic_read(&bs->copy_on_read) == 0);

K
Kevin Wolf 已提交
1459
    if (bs->open_flags & BDRV_O_COPY_ON_READ) {
1460 1461 1462 1463
        if (!bs->read_only) {
            bdrv_enable_copy_on_read(bs);
        } else {
            error_setg(errp, "Can't use copy-on-read on read-only device");
1464 1465
            ret = -EINVAL;
            goto fail_opts;
1466
        }
1467 1468
    }

1469
    discard = qemu_opt_get(opts, BDRV_OPT_DISCARD);
1470 1471 1472 1473 1474 1475 1476 1477
    if (discard != NULL) {
        if (bdrv_parse_discard_flags(discard, &bs->open_flags) != 0) {
            error_setg(errp, "Invalid discard option");
            ret = -EINVAL;
            goto fail_opts;
        }
    }

1478 1479 1480 1481 1482 1483
    bs->detect_zeroes =
        bdrv_parse_detect_zeroes(opts, bs->open_flags, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        ret = -EINVAL;
        goto fail_opts;
1484 1485
    }

1486 1487 1488 1489 1490
    if (filename != NULL) {
        pstrcpy(bs->filename, sizeof(bs->filename), filename);
    } else {
        bs->filename[0] = '\0';
    }
M
Max Reitz 已提交
1491
    pstrcpy(bs->exact_filename, sizeof(bs->exact_filename), bs->filename);
1492

1493
    /* Open the image, either directly or using a protocol */
K
Kevin Wolf 已提交
1494
    open_flags = bdrv_open_flags(bs, bs->open_flags);
1495
    node_name = qemu_opt_get(opts, "node-name");
1496

1497 1498
    assert(!drv->bdrv_file_open || file == NULL);
    ret = bdrv_open_driver(bs, drv, node_name, options, open_flags, errp);
1499
    if (ret < 0) {
1500
        goto fail_opts;
1501 1502
    }

1503
    qemu_opts_del(opts);
1504 1505
    return 0;

1506 1507
fail_opts:
    qemu_opts_del(opts);
1508 1509 1510
    return ret;
}

1511 1512 1513 1514 1515 1516 1517 1518 1519
static QDict *parse_json_filename(const char *filename, Error **errp)
{
    QObject *options_obj;
    QDict *options;
    int ret;

    ret = strstart(filename, "json:", &filename);
    assert(ret);

1520
    options_obj = qobject_from_json(filename, errp);
1521
    if (!options_obj) {
1522
        error_prepend(errp, "Could not parse the JSON options: ");
1523 1524 1525
        return NULL;
    }

1526
    options = qobject_to(QDict, options_obj);
1527
    if (!options) {
1528
        qobject_unref(options_obj);
1529 1530 1531 1532 1533 1534 1535 1536 1537
        error_setg(errp, "Invalid JSON object given");
        return NULL;
    }

    qdict_flatten(options);

    return options;
}

1538 1539 1540 1541 1542 1543 1544 1545 1546 1547 1548 1549 1550 1551 1552 1553 1554 1555 1556 1557
static void parse_json_protocol(QDict *options, const char **pfilename,
                                Error **errp)
{
    QDict *json_options;
    Error *local_err = NULL;

    /* Parse json: pseudo-protocol */
    if (!*pfilename || !g_str_has_prefix(*pfilename, "json:")) {
        return;
    }

    json_options = parse_json_filename(*pfilename, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        return;
    }

    /* Options given in the filename have lower priority than options
     * specified directly */
    qdict_join(options, json_options, false);
1558
    qobject_unref(json_options);
1559 1560 1561
    *pfilename = NULL;
}

K
Kevin Wolf 已提交
1562
/*
K
Kevin Wolf 已提交
1563 1564
 * Fills in default options for opening images and converts the legacy
 * filename/flags pair to option QDict entries.
1565 1566
 * The BDRV_O_PROTOCOL flag in *flags will be set or cleared accordingly if a
 * block driver has been specified explicitly.
K
Kevin Wolf 已提交
1567
 */
1568
static int bdrv_fill_options(QDict **options, const char *filename,
1569
                             int *flags, Error **errp)
B
bellard 已提交
1570
{
1571
    const char *drvname;
1572
    bool protocol = *flags & BDRV_O_PROTOCOL;
1573
    bool parse_filename = false;
1574
    BlockDriver *drv = NULL;
1575
    Error *local_err = NULL;
B
bellard 已提交
1576

1577 1578 1579 1580 1581 1582 1583
    /*
     * Caution: while qdict_get_try_str() is fine, getting non-string
     * types would require more care.  When @options come from
     * -blockdev or blockdev_add, its members are typed according to
     * the QAPI schema, but when they come from -drive, they're all
     * QString.
     */
1584
    drvname = qdict_get_try_str(*options, "driver");
1585 1586 1587 1588 1589 1590 1591 1592 1593
    if (drvname) {
        drv = bdrv_find_format(drvname);
        if (!drv) {
            error_setg(errp, "Unknown driver '%s'", drvname);
            return -ENOENT;
        }
        /* If the user has explicitly specified the driver, this choice should
         * override the BDRV_O_PROTOCOL flag */
        protocol = drv->bdrv_file_open;
1594 1595 1596 1597 1598 1599 1600 1601
    }

    if (protocol) {
        *flags |= BDRV_O_PROTOCOL;
    } else {
        *flags &= ~BDRV_O_PROTOCOL;
    }

1602 1603 1604
    /* Translate cache options from flags into options */
    update_options_from_flags(*options, *flags);

K
Kevin Wolf 已提交
1605
    /* Fetch the file name from the options QDict if necessary */
1606
    if (protocol && filename) {
K
Kevin Wolf 已提交
1607
        if (!qdict_haskey(*options, "filename")) {
1608
            qdict_put_str(*options, "filename", filename);
K
Kevin Wolf 已提交
1609 1610 1611 1612 1613 1614
            parse_filename = true;
        } else {
            error_setg(errp, "Can't specify 'file' and 'filename' options at "
                             "the same time");
            return -EINVAL;
        }
K
Kevin Wolf 已提交
1615 1616
    }

1617
    /* Find the right block driver */
1618
    /* See cautionary note on accessing @options above */
K
Kevin Wolf 已提交
1619 1620
    filename = qdict_get_try_str(*options, "filename");

1621 1622 1623
    if (!drvname && protocol) {
        if (filename) {
            drv = bdrv_find_protocol(filename, parse_filename, errp);
1624
            if (!drv) {
1625
                return -EINVAL;
1626
            }
1627 1628

            drvname = drv->format_name;
1629
            qdict_put_str(*options, "driver", drvname);
1630 1631 1632
        } else {
            error_setg(errp, "Must specify either driver or file");
            return -EINVAL;
1633
        }
1634 1635
    }

1636
    assert(drv || !protocol);
1637

K
Kevin Wolf 已提交
1638
    /* Driver-specific filename parsing */
1639
    if (drv && drv->bdrv_parse_filename && parse_filename) {
1640
        drv->bdrv_parse_filename(filename, *options, &local_err);
1641
        if (local_err) {
1642
            error_propagate(errp, local_err);
K
Kevin Wolf 已提交
1643
            return -EINVAL;
1644
        }
1645 1646 1647 1648

        if (!drv->bdrv_needs_filename) {
            qdict_del(*options, "filename");
        }
1649 1650
    }

K
Kevin Wolf 已提交
1651 1652 1653
    return 0;
}

1654 1655
static int bdrv_child_check_perm(BdrvChild *c, BlockReopenQueue *q,
                                 uint64_t perm, uint64_t shared,
1656 1657 1658 1659
                                 GSList *ignore_children, Error **errp);
static void bdrv_child_abort_perm_update(BdrvChild *c);
static void bdrv_child_set_perm(BdrvChild *c, uint64_t perm, uint64_t shared);

1660 1661 1662 1663 1664 1665 1666 1667 1668 1669 1670 1671 1672 1673 1674 1675 1676 1677 1678 1679 1680 1681 1682 1683 1684 1685 1686 1687
typedef struct BlockReopenQueueEntry {
     bool prepared;
     BDRVReopenState state;
     QSIMPLEQ_ENTRY(BlockReopenQueueEntry) entry;
} BlockReopenQueueEntry;

/*
 * Return the flags that @bs will have after the reopens in @q have
 * successfully completed. If @q is NULL (or @bs is not contained in @q),
 * return the current flags.
 */
static int bdrv_reopen_get_flags(BlockReopenQueue *q, BlockDriverState *bs)
{
    BlockReopenQueueEntry *entry;

    if (q != NULL) {
        QSIMPLEQ_FOREACH(entry, q, entry) {
            if (entry->state.bs == bs) {
                return entry->state.flags;
            }
        }
    }

    return bs->open_flags;
}

/* Returns whether the image file can be written to after the reopen queue @q
 * has been successfully applied, or right now if @q is NULL. */
1688 1689
static bool bdrv_is_writable_after_reopen(BlockDriverState *bs,
                                          BlockReopenQueue *q)
1690 1691 1692 1693 1694 1695
{
    int flags = bdrv_reopen_get_flags(q, bs);

    return (flags & (BDRV_O_RDWR | BDRV_O_INACTIVE)) == BDRV_O_RDWR;
}

1696 1697 1698 1699 1700 1701 1702 1703 1704 1705
/*
 * Return whether the BDS can be written to.  This is not necessarily
 * the same as !bdrv_is_read_only(bs), as inactivated images may not
 * be written to but do not count as read-only images.
 */
bool bdrv_is_writable(BlockDriverState *bs)
{
    return bdrv_is_writable_after_reopen(bs, NULL);
}

1706
static void bdrv_child_perm(BlockDriverState *bs, BlockDriverState *child_bs,
1707 1708
                            BdrvChild *c, const BdrvChildRole *role,
                            BlockReopenQueue *reopen_queue,
1709 1710 1711 1712
                            uint64_t parent_perm, uint64_t parent_shared,
                            uint64_t *nperm, uint64_t *nshared)
{
    if (bs->drv && bs->drv->bdrv_child_perm) {
1713
        bs->drv->bdrv_child_perm(bs, c, role, reopen_queue,
1714 1715 1716
                                 parent_perm, parent_shared,
                                 nperm, nshared);
    }
1717
    /* TODO Take force_share from reopen_queue */
1718 1719 1720 1721 1722
    if (child_bs && child_bs->force_share) {
        *nshared = BLK_PERM_ALL;
    }
}

1723 1724 1725 1726 1727 1728 1729 1730 1731
/*
 * Check whether permissions on this node can be changed in a way that
 * @cumulative_perms and @cumulative_shared_perms are the new cumulative
 * permissions of all its parents. This involves checking whether all necessary
 * permission changes to child nodes can be performed.
 *
 * A call to this function must always be followed by a call to bdrv_set_perm()
 * or bdrv_abort_perm_update().
 */
1732 1733
static int bdrv_check_perm(BlockDriverState *bs, BlockReopenQueue *q,
                           uint64_t cumulative_perms,
1734 1735
                           uint64_t cumulative_shared_perms,
                           GSList *ignore_children, Error **errp)
1736 1737 1738 1739 1740 1741 1742
{
    BlockDriver *drv = bs->drv;
    BdrvChild *c;
    int ret;

    /* Write permissions never work with read-only images */
    if ((cumulative_perms & (BLK_PERM_WRITE | BLK_PERM_WRITE_UNCHANGED)) &&
1743
        !bdrv_is_writable_after_reopen(bs, q))
1744 1745 1746 1747 1748 1749 1750 1751 1752 1753 1754 1755 1756 1757 1758
    {
        error_setg(errp, "Block node is read-only");
        return -EPERM;
    }

    /* Check this node */
    if (!drv) {
        return 0;
    }

    if (drv->bdrv_check_perm) {
        return drv->bdrv_check_perm(bs, cumulative_perms,
                                    cumulative_shared_perms, errp);
    }

1759
    /* Drivers that never have children can omit .bdrv_child_perm() */
1760
    if (!drv->bdrv_child_perm) {
1761
        assert(QLIST_EMPTY(&bs->children));
1762 1763 1764 1765 1766 1767
        return 0;
    }

    /* Check all children */
    QLIST_FOREACH(c, &bs->children, next) {
        uint64_t cur_perm, cur_shared;
1768
        bdrv_child_perm(bs, c->bs, c, c->role, q,
1769 1770
                        cumulative_perms, cumulative_shared_perms,
                        &cur_perm, &cur_shared);
1771 1772
        ret = bdrv_child_check_perm(c, q, cur_perm, cur_shared,
                                    ignore_children, errp);
1773 1774 1775 1776 1777 1778 1779 1780 1781 1782 1783 1784 1785 1786 1787 1788 1789 1790 1791 1792 1793 1794 1795 1796 1797 1798 1799 1800 1801 1802 1803 1804 1805 1806 1807 1808 1809 1810 1811 1812 1813 1814 1815 1816 1817 1818 1819 1820
        if (ret < 0) {
            return ret;
        }
    }

    return 0;
}

/*
 * Notifies drivers that after a previous bdrv_check_perm() call, the
 * permission update is not performed and any preparations made for it (e.g.
 * taken file locks) need to be undone.
 *
 * This function recursively notifies all child nodes.
 */
static void bdrv_abort_perm_update(BlockDriverState *bs)
{
    BlockDriver *drv = bs->drv;
    BdrvChild *c;

    if (!drv) {
        return;
    }

    if (drv->bdrv_abort_perm_update) {
        drv->bdrv_abort_perm_update(bs);
    }

    QLIST_FOREACH(c, &bs->children, next) {
        bdrv_child_abort_perm_update(c);
    }
}

static void bdrv_set_perm(BlockDriverState *bs, uint64_t cumulative_perms,
                          uint64_t cumulative_shared_perms)
{
    BlockDriver *drv = bs->drv;
    BdrvChild *c;

    if (!drv) {
        return;
    }

    /* Update this node */
    if (drv->bdrv_set_perm) {
        drv->bdrv_set_perm(bs, cumulative_perms, cumulative_shared_perms);
    }

1821
    /* Drivers that never have children can omit .bdrv_child_perm() */
1822
    if (!drv->bdrv_child_perm) {
1823
        assert(QLIST_EMPTY(&bs->children));
1824 1825 1826 1827 1828 1829
        return;
    }

    /* Update all children */
    QLIST_FOREACH(c, &bs->children, next) {
        uint64_t cur_perm, cur_shared;
1830
        bdrv_child_perm(bs, c->bs, c, c->role, NULL,
1831 1832
                        cumulative_perms, cumulative_shared_perms,
                        &cur_perm, &cur_shared);
1833 1834 1835 1836 1837 1838 1839 1840 1841 1842 1843 1844 1845 1846 1847 1848 1849 1850 1851 1852
        bdrv_child_set_perm(c, cur_perm, cur_shared);
    }
}

static void bdrv_get_cumulative_perm(BlockDriverState *bs, uint64_t *perm,
                                     uint64_t *shared_perm)
{
    BdrvChild *c;
    uint64_t cumulative_perms = 0;
    uint64_t cumulative_shared_perms = BLK_PERM_ALL;

    QLIST_FOREACH(c, &bs->parents, next_parent) {
        cumulative_perms |= c->perm;
        cumulative_shared_perms &= c->shared_perm;
    }

    *perm = cumulative_perms;
    *shared_perm = cumulative_shared_perms;
}

1853 1854 1855 1856 1857 1858 1859 1860 1861
static char *bdrv_child_user_desc(BdrvChild *c)
{
    if (c->role->get_parent_desc) {
        return c->role->get_parent_desc(c);
    }

    return g_strdup("another user");
}

F
Fam Zheng 已提交
1862
char *bdrv_perm_names(uint64_t perm)
1863 1864 1865 1866 1867 1868 1869 1870 1871 1872 1873 1874 1875 1876 1877 1878 1879 1880 1881 1882 1883 1884 1885 1886 1887 1888 1889
{
    struct perm_name {
        uint64_t perm;
        const char *name;
    } permissions[] = {
        { BLK_PERM_CONSISTENT_READ, "consistent read" },
        { BLK_PERM_WRITE,           "write" },
        { BLK_PERM_WRITE_UNCHANGED, "write unchanged" },
        { BLK_PERM_RESIZE,          "resize" },
        { BLK_PERM_GRAPH_MOD,       "change children" },
        { 0, NULL }
    };

    char *result = g_strdup("");
    struct perm_name *p;

    for (p = permissions; p->name; p++) {
        if (perm & p->perm) {
            char *old = result;
            result = g_strdup_printf("%s%s%s", old, *old ? ", " : "", p->name);
            g_free(old);
        }
    }

    return result;
}

1890 1891
/*
 * Checks whether a new reference to @bs can be added if the new user requires
1892 1893 1894
 * @new_used_perm/@new_shared_perm as its permissions. If @ignore_children is
 * set, the BdrvChild objects in this list are ignored in the calculations;
 * this allows checking permission updates for an existing reference.
1895 1896 1897
 *
 * Needs to be followed by a call to either bdrv_set_perm() or
 * bdrv_abort_perm_update(). */
1898 1899
static int bdrv_check_update_perm(BlockDriverState *bs, BlockReopenQueue *q,
                                  uint64_t new_used_perm,
1900
                                  uint64_t new_shared_perm,
1901
                                  GSList *ignore_children, Error **errp)
1902 1903
{
    BdrvChild *c;
1904 1905
    uint64_t cumulative_perms = new_used_perm;
    uint64_t cumulative_shared_perms = new_shared_perm;
1906 1907 1908 1909 1910

    /* There is no reason why anyone couldn't tolerate write_unchanged */
    assert(new_shared_perm & BLK_PERM_WRITE_UNCHANGED);

    QLIST_FOREACH(c, &bs->parents, next_parent) {
1911
        if (g_slist_find(ignore_children, c)) {
1912 1913 1914
            continue;
        }

1915 1916 1917 1918 1919 1920 1921 1922 1923 1924 1925 1926 1927 1928 1929 1930 1931 1932 1933
        if ((new_used_perm & c->shared_perm) != new_used_perm) {
            char *user = bdrv_child_user_desc(c);
            char *perm_names = bdrv_perm_names(new_used_perm & ~c->shared_perm);
            error_setg(errp, "Conflicts with use by %s as '%s', which does not "
                             "allow '%s' on %s",
                       user, c->name, perm_names, bdrv_get_node_name(c->bs));
            g_free(user);
            g_free(perm_names);
            return -EPERM;
        }

        if ((c->perm & new_shared_perm) != c->perm) {
            char *user = bdrv_child_user_desc(c);
            char *perm_names = bdrv_perm_names(c->perm & ~new_shared_perm);
            error_setg(errp, "Conflicts with use by %s as '%s', which uses "
                             "'%s' on %s",
                       user, c->name, perm_names, bdrv_get_node_name(c->bs));
            g_free(user);
            g_free(perm_names);
1934 1935
            return -EPERM;
        }
1936 1937 1938

        cumulative_perms |= c->perm;
        cumulative_shared_perms &= c->shared_perm;
1939 1940
    }

1941
    return bdrv_check_perm(bs, q, cumulative_perms, cumulative_shared_perms,
1942
                           ignore_children, errp);
1943 1944 1945 1946
}

/* Needs to be followed by a call to either bdrv_child_set_perm() or
 * bdrv_child_abort_perm_update(). */
1947 1948
static int bdrv_child_check_perm(BdrvChild *c, BlockReopenQueue *q,
                                 uint64_t perm, uint64_t shared,
1949
                                 GSList *ignore_children, Error **errp)
1950
{
1951 1952 1953
    int ret;

    ignore_children = g_slist_prepend(g_slist_copy(ignore_children), c);
1954
    ret = bdrv_check_update_perm(c->bs, q, perm, shared, ignore_children, errp);
1955 1956 1957
    g_slist_free(ignore_children);

    return ret;
1958 1959
}

1960
static void bdrv_child_set_perm(BdrvChild *c, uint64_t perm, uint64_t shared)
1961 1962 1963 1964 1965 1966 1967 1968 1969 1970 1971
{
    uint64_t cumulative_perms, cumulative_shared_perms;

    c->perm = perm;
    c->shared_perm = shared;

    bdrv_get_cumulative_perm(c->bs, &cumulative_perms,
                             &cumulative_shared_perms);
    bdrv_set_perm(c->bs, cumulative_perms, cumulative_shared_perms);
}

1972
static void bdrv_child_abort_perm_update(BdrvChild *c)
1973 1974 1975 1976 1977 1978 1979 1980 1981
{
    bdrv_abort_perm_update(c->bs);
}

int bdrv_child_try_set_perm(BdrvChild *c, uint64_t perm, uint64_t shared,
                            Error **errp)
{
    int ret;

1982
    ret = bdrv_child_check_perm(c, NULL, perm, shared, NULL, errp);
1983 1984 1985 1986 1987 1988 1989
    if (ret < 0) {
        bdrv_child_abort_perm_update(c);
        return ret;
    }

    bdrv_child_set_perm(c, perm, shared);

1990 1991 1992
    return 0;
}

1993 1994
void bdrv_filter_default_perms(BlockDriverState *bs, BdrvChild *c,
                               const BdrvChildRole *role,
1995
                               BlockReopenQueue *reopen_queue,
1996 1997 1998 1999 2000 2001 2002 2003 2004 2005 2006 2007 2008 2009 2010
                               uint64_t perm, uint64_t shared,
                               uint64_t *nperm, uint64_t *nshared)
{
    if (c == NULL) {
        *nperm = perm & DEFAULT_PERM_PASSTHROUGH;
        *nshared = (shared & DEFAULT_PERM_PASSTHROUGH) | DEFAULT_PERM_UNCHANGED;
        return;
    }

    *nperm = (perm & DEFAULT_PERM_PASSTHROUGH) |
             (c->perm & DEFAULT_PERM_UNCHANGED);
    *nshared = (shared & DEFAULT_PERM_PASSTHROUGH) |
               (c->shared_perm & DEFAULT_PERM_UNCHANGED);
}

2011 2012
void bdrv_format_default_perms(BlockDriverState *bs, BdrvChild *c,
                               const BdrvChildRole *role,
2013
                               BlockReopenQueue *reopen_queue,
2014 2015 2016 2017 2018 2019 2020
                               uint64_t perm, uint64_t shared,
                               uint64_t *nperm, uint64_t *nshared)
{
    bool backing = (role == &child_backing);
    assert(role == &child_backing || role == &child_file);

    if (!backing) {
2021 2022
        int flags = bdrv_reopen_get_flags(reopen_queue, bs);

2023 2024
        /* Apart from the modifications below, the same permissions are
         * forwarded and left alone as for filters */
2025 2026
        bdrv_filter_default_perms(bs, c, role, reopen_queue, perm, shared,
                                  &perm, &shared);
2027 2028

        /* Format drivers may touch metadata even if the guest doesn't write */
2029
        if (bdrv_is_writable_after_reopen(bs, reopen_queue)) {
2030 2031 2032 2033 2034
            perm |= BLK_PERM_WRITE | BLK_PERM_RESIZE;
        }

        /* bs->file always needs to be consistent because of the metadata. We
         * can never allow other users to resize or write to it. */
2035 2036 2037
        if (!(flags & BDRV_O_NO_IO)) {
            perm |= BLK_PERM_CONSISTENT_READ;
        }
2038 2039 2040 2041 2042 2043 2044 2045 2046 2047 2048 2049 2050 2051 2052 2053 2054 2055 2056
        shared &= ~(BLK_PERM_WRITE | BLK_PERM_RESIZE);
    } else {
        /* We want consistent read from backing files if the parent needs it.
         * No other operations are performed on backing files. */
        perm &= BLK_PERM_CONSISTENT_READ;

        /* If the parent can deal with changing data, we're okay with a
         * writable and resizable backing file. */
        /* TODO Require !(perm & BLK_PERM_CONSISTENT_READ), too? */
        if (shared & BLK_PERM_WRITE) {
            shared = BLK_PERM_WRITE | BLK_PERM_RESIZE;
        } else {
            shared = 0;
        }

        shared |= BLK_PERM_CONSISTENT_READ | BLK_PERM_GRAPH_MOD |
                  BLK_PERM_WRITE_UNCHANGED;
    }

2057 2058 2059 2060
    if (bs->open_flags & BDRV_O_INACTIVE) {
        shared |= BLK_PERM_WRITE | BLK_PERM_RESIZE;
    }

2061 2062 2063 2064
    *nperm = perm;
    *nshared = shared;
}

2065 2066
static void bdrv_replace_child_noperm(BdrvChild *child,
                                      BlockDriverState *new_bs)
2067 2068
{
    BlockDriverState *old_bs = child->bs;
2069
    int i;
2070

2071 2072 2073
    if (old_bs && new_bs) {
        assert(bdrv_get_aio_context(old_bs) == bdrv_get_aio_context(new_bs));
    }
2074
    if (old_bs) {
2075 2076 2077 2078 2079 2080
        /* Detach first so that the recursive drain sections coming from @child
         * are already gone and we only end the drain sections that came from
         * elsewhere. */
        if (child->role->detach) {
            child->role->detach(child);
        }
2081
        if (old_bs->quiesce_counter && child->role->drained_end) {
2082 2083 2084 2085 2086 2087
            int num = old_bs->quiesce_counter;
            if (child->role->parent_is_bds) {
                num -= bdrv_drain_all_count;
            }
            assert(num >= 0);
            for (i = 0; i < num; i++) {
2088 2089
                child->role->drained_end(child);
            }
2090
        }
2091 2092
        QLIST_REMOVE(child, next_parent);
    }
2093 2094 2095

    child->bs = new_bs;

2096 2097
    if (new_bs) {
        QLIST_INSERT_HEAD(&new_bs->parents, child, next_parent);
2098
        if (new_bs->quiesce_counter && child->role->drained_begin) {
2099 2100 2101 2102 2103 2104
            int num = new_bs->quiesce_counter;
            if (child->role->parent_is_bds) {
                num -= bdrv_drain_all_count;
            }
            assert(num >= 0);
            for (i = 0; i < num; i++) {
2105
                bdrv_parent_drained_begin_single(child, true);
2106
            }
2107
        }
2108

2109 2110 2111
        /* Attach only after starting new drained sections, so that recursive
         * drain sections coming from @child don't get an extra .drained_begin
         * callback. */
2112 2113 2114 2115 2116
        if (child->role->attach) {
            child->role->attach(child);
        }
    }
}
2117

2118 2119 2120 2121 2122 2123 2124 2125 2126 2127 2128 2129
/*
 * Updates @child to change its reference to point to @new_bs, including
 * checking and applying the necessary permisson updates both to the old node
 * and to @new_bs.
 *
 * NULL is passed as @new_bs for removing the reference before freeing @child.
 *
 * If @new_bs is not NULL, bdrv_check_perm() must be called beforehand, as this
 * function uses bdrv_set_perm() to update the permissions according to the new
 * reference that @new_bs gets.
 */
static void bdrv_replace_child(BdrvChild *child, BlockDriverState *new_bs)
2130 2131 2132 2133
{
    BlockDriverState *old_bs = child->bs;
    uint64_t perm, shared_perm;

2134 2135
    bdrv_replace_child_noperm(child, new_bs);

2136
    if (old_bs) {
2137 2138 2139 2140
        /* Update permissions for old node. This is guaranteed to succeed
         * because we're just taking a parent away, so we're loosening
         * restrictions. */
        bdrv_get_cumulative_perm(old_bs, &perm, &shared_perm);
2141
        bdrv_check_perm(old_bs, NULL, perm, shared_perm, NULL, &error_abort);
2142
        bdrv_set_perm(old_bs, perm, shared_perm);
2143
    }
2144

2145
    if (new_bs) {
2146 2147
        bdrv_get_cumulative_perm(new_bs, &perm, &shared_perm);
        bdrv_set_perm(new_bs, perm, shared_perm);
2148 2149 2150
    }
}

2151 2152
BdrvChild *bdrv_root_attach_child(BlockDriverState *child_bs,
                                  const char *child_name,
2153
                                  const BdrvChildRole *child_role,
2154 2155
                                  uint64_t perm, uint64_t shared_perm,
                                  void *opaque, Error **errp)
2156
{
2157 2158 2159
    BdrvChild *child;
    int ret;

2160
    ret = bdrv_check_update_perm(child_bs, NULL, perm, shared_perm, NULL, errp);
2161
    if (ret < 0) {
2162
        bdrv_abort_perm_update(child_bs);
2163 2164 2165 2166
        return NULL;
    }

    child = g_new(BdrvChild, 1);
2167
    *child = (BdrvChild) {
2168 2169 2170 2171 2172 2173
        .bs             = NULL,
        .name           = g_strdup(child_name),
        .role           = child_role,
        .perm           = perm,
        .shared_perm    = shared_perm,
        .opaque         = opaque,
2174 2175
    };

2176
    /* This performs the matching bdrv_set_perm() for the above check. */
2177
    bdrv_replace_child(child, child_bs);
K
Kevin Wolf 已提交
2178 2179

    return child;
2180 2181
}

2182 2183 2184
BdrvChild *bdrv_attach_child(BlockDriverState *parent_bs,
                             BlockDriverState *child_bs,
                             const char *child_name,
2185 2186
                             const BdrvChildRole *child_role,
                             Error **errp)
2187
{
2188
    BdrvChild *child;
2189 2190 2191 2192 2193
    uint64_t perm, shared_perm;

    bdrv_get_cumulative_perm(parent_bs, &perm, &shared_perm);

    assert(parent_bs->drv);
2194
    assert(bdrv_get_aio_context(parent_bs) == bdrv_get_aio_context(child_bs));
2195
    bdrv_child_perm(parent_bs, child_bs, NULL, child_role, NULL,
2196
                    perm, shared_perm, &perm, &shared_perm);
2197 2198

    child = bdrv_root_attach_child(child_bs, child_name, child_role,
2199
                                   perm, shared_perm, parent_bs, errp);
2200 2201 2202 2203
    if (child == NULL) {
        return NULL;
    }

2204 2205 2206 2207
    QLIST_INSERT_HEAD(&parent_bs->children, child, next);
    return child;
}

2208
static void bdrv_detach_child(BdrvChild *child)
K
Kevin Wolf 已提交
2209
{
2210 2211 2212 2213
    if (child->next.le_prev) {
        QLIST_REMOVE(child, next);
        child->next.le_prev = NULL;
    }
2214

2215
    bdrv_replace_child(child, NULL);
2216

2217
    g_free(child->name);
K
Kevin Wolf 已提交
2218 2219 2220
    g_free(child);
}

2221
void bdrv_root_unref_child(BdrvChild *child)
K
Kevin Wolf 已提交
2222
{
2223 2224
    BlockDriverState *child_bs;

2225 2226 2227 2228 2229 2230 2231
    child_bs = child->bs;
    bdrv_detach_child(child);
    bdrv_unref(child_bs);
}

void bdrv_unref_child(BlockDriverState *parent, BdrvChild *child)
{
2232 2233 2234
    if (child == NULL) {
        return;
    }
K
Kevin Wolf 已提交
2235 2236

    if (child->bs->inherits_from == parent) {
2237 2238 2239 2240 2241 2242 2243 2244 2245 2246 2247 2248
        BdrvChild *c;

        /* Remove inherits_from only when the last reference between parent and
         * child->bs goes away. */
        QLIST_FOREACH(c, &parent->children, next) {
            if (c != child && c->bs == child->bs) {
                break;
            }
        }
        if (c == NULL) {
            child->bs->inherits_from = NULL;
        }
K
Kevin Wolf 已提交
2249 2250
    }

2251
    bdrv_root_unref_child(child);
K
Kevin Wolf 已提交
2252 2253
}

2254 2255 2256 2257 2258 2259 2260 2261 2262 2263 2264

static void bdrv_parent_cb_change_media(BlockDriverState *bs, bool load)
{
    BdrvChild *c;
    QLIST_FOREACH(c, &bs->parents, next_parent) {
        if (c->role->change_media) {
            c->role->change_media(c, load);
        }
    }
}

2265 2266 2267 2268
/*
 * Sets the backing file link of a BDS. A new reference is created; callers
 * which don't need their own reference any more must call bdrv_unref().
 */
2269 2270
void bdrv_set_backing_hd(BlockDriverState *bs, BlockDriverState *backing_hd,
                         Error **errp)
F
Fam Zheng 已提交
2271
{
2272 2273 2274
    if (backing_hd) {
        bdrv_ref(backing_hd);
    }
F
Fam Zheng 已提交
2275

2276
    if (bs->backing) {
2277
        bdrv_unref_child(bs, bs->backing);
2278 2279
    }

F
Fam Zheng 已提交
2280
    if (!backing_hd) {
2281
        bs->backing = NULL;
F
Fam Zheng 已提交
2282 2283
        goto out;
    }
2284

2285
    bs->backing = bdrv_attach_child(bs, backing_hd, "backing", &child_backing,
2286 2287 2288 2289
                                    errp);
    if (!bs->backing) {
        bdrv_unref(backing_hd);
    }
2290

2291 2292
    bdrv_refresh_filename(bs);

F
Fam Zheng 已提交
2293
out:
2294
    bdrv_refresh_limits(bs, NULL);
F
Fam Zheng 已提交
2295 2296
}

2297 2298 2299
/*
 * Opens the backing file for a BlockDriverState if not yet open
 *
2300 2301 2302 2303 2304 2305
 * bdref_key specifies the key for the image's BlockdevRef in the options QDict.
 * That QDict has to be flattened; therefore, if the BlockdevRef is a QDict
 * itself, all options starting with "${bdref_key}." are considered part of the
 * BlockdevRef.
 *
 * TODO Can this be unified with bdrv_open_image()?
2306
 */
2307 2308
int bdrv_open_backing_file(BlockDriverState *bs, QDict *parent_options,
                           const char *bdref_key, Error **errp)
P
Paolo Bonzini 已提交
2309
{
2310
    char *backing_filename = g_malloc0(PATH_MAX);
2311 2312
    char *bdref_key_dot;
    const char *reference = NULL;
K
Kevin Wolf 已提交
2313
    int ret = 0;
F
Fam Zheng 已提交
2314
    BlockDriverState *backing_hd;
2315 2316
    QDict *options;
    QDict *tmp_parent_options = NULL;
2317
    Error *local_err = NULL;
P
Paolo Bonzini 已提交
2318

2319
    if (bs->backing != NULL) {
2320
        goto free_exit;
P
Paolo Bonzini 已提交
2321 2322
    }

2323
    /* NULL means an empty set of options */
2324 2325 2326
    if (parent_options == NULL) {
        tmp_parent_options = qdict_new();
        parent_options = tmp_parent_options;
2327 2328
    }

P
Paolo Bonzini 已提交
2329
    bs->open_flags &= ~BDRV_O_NO_BACKING;
2330 2331 2332 2333 2334

    bdref_key_dot = g_strdup_printf("%s.", bdref_key);
    qdict_extract_subqdict(parent_options, &options, bdref_key_dot);
    g_free(bdref_key_dot);

2335 2336 2337 2338 2339 2340 2341
    /*
     * Caution: while qdict_get_try_str() is fine, getting non-string
     * types would require more care.  When @parent_options come from
     * -blockdev or blockdev_add, its members are typed according to
     * the QAPI schema, but when they come from -drive, they're all
     * QString.
     */
2342 2343
    reference = qdict_get_try_str(parent_options, bdref_key);
    if (reference || qdict_haskey(options, "file.filename")) {
2344 2345
        backing_filename[0] = '\0';
    } else if (bs->backing_file[0] == '\0' && qdict_size(options) == 0) {
2346
        qobject_unref(options);
2347
        goto free_exit;
F
Fam Zheng 已提交
2348
    } else {
2349 2350 2351 2352 2353
        bdrv_get_full_backing_filename(bs, backing_filename, PATH_MAX,
                                       &local_err);
        if (local_err) {
            ret = -EINVAL;
            error_propagate(errp, local_err);
2354
            qobject_unref(options);
2355 2356
            goto free_exit;
        }
P
Paolo Bonzini 已提交
2357 2358
    }

2359 2360 2361
    if (!bs->drv || !bs->drv->supports_backing) {
        ret = -EINVAL;
        error_setg(errp, "Driver doesn't support backing files");
2362
        qobject_unref(options);
2363 2364 2365
        goto free_exit;
    }

2366 2367
    if (!reference &&
        bs->backing_format[0] != '\0' && !qdict_haskey(options, "driver")) {
2368
        qdict_put_str(options, "driver", bs->backing_format);
P
Paolo Bonzini 已提交
2369 2370
    }

M
Max Reitz 已提交
2371 2372 2373 2374
    backing_hd = bdrv_open_inherit(*backing_filename ? backing_filename : NULL,
                                   reference, options, 0, bs, &child_backing,
                                   errp);
    if (!backing_hd) {
P
Paolo Bonzini 已提交
2375
        bs->open_flags |= BDRV_O_NO_BACKING;
2376
        error_prepend(errp, "Could not open backing file: ");
M
Max Reitz 已提交
2377
        ret = -EINVAL;
2378
        goto free_exit;
P
Paolo Bonzini 已提交
2379
    }
2380
    bdrv_set_aio_context(backing_hd, bdrv_get_aio_context(bs));
2381

2382 2383
    /* Hook up the backing file link; drop our reference, bs owns the
     * backing_hd reference now */
2384
    bdrv_set_backing_hd(bs, backing_hd, &local_err);
2385
    bdrv_unref(backing_hd);
2386
    if (local_err) {
2387
        error_propagate(errp, local_err);
2388 2389 2390
        ret = -EINVAL;
        goto free_exit;
    }
P
Peter Feiner 已提交
2391

2392 2393
    qdict_del(parent_options, bdref_key);

2394 2395
free_exit:
    g_free(backing_filename);
2396
    qobject_unref(tmp_parent_options);
2397
    return ret;
P
Paolo Bonzini 已提交
2398 2399
}

2400 2401 2402 2403
static BlockDriverState *
bdrv_open_child_bs(const char *filename, QDict *options, const char *bdref_key,
                   BlockDriverState *parent, const BdrvChildRole *child_role,
                   bool allow_none, Error **errp)
M
Max Reitz 已提交
2404
{
2405
    BlockDriverState *bs = NULL;
M
Max Reitz 已提交
2406 2407 2408 2409
    QDict *image_options;
    char *bdref_key_dot;
    const char *reference;

2410
    assert(child_role != NULL);
2411

M
Max Reitz 已提交
2412 2413 2414 2415
    bdref_key_dot = g_strdup_printf("%s.", bdref_key);
    qdict_extract_subqdict(options, &image_options, bdref_key_dot);
    g_free(bdref_key_dot);

2416 2417 2418 2419 2420 2421 2422
    /*
     * Caution: while qdict_get_try_str() is fine, getting non-string
     * types would require more care.  When @options come from
     * -blockdev or blockdev_add, its members are typed according to
     * the QAPI schema, but when they come from -drive, they're all
     * QString.
     */
M
Max Reitz 已提交
2423 2424
    reference = qdict_get_try_str(options, bdref_key);
    if (!filename && !reference && !qdict_size(image_options)) {
K
Kevin Wolf 已提交
2425
        if (!allow_none) {
M
Max Reitz 已提交
2426 2427 2428
            error_setg(errp, "A block device must be specified for \"%s\"",
                       bdref_key);
        }
2429
        qobject_unref(image_options);
M
Max Reitz 已提交
2430 2431 2432
        goto done;
    }

M
Max Reitz 已提交
2433 2434 2435
    bs = bdrv_open_inherit(filename, reference, image_options, 0,
                           parent, child_role, errp);
    if (!bs) {
2436 2437 2438
        goto done;
    }

M
Max Reitz 已提交
2439 2440
done:
    qdict_del(options, bdref_key);
2441 2442 2443 2444 2445 2446 2447 2448 2449 2450 2451 2452 2453 2454 2455 2456 2457 2458 2459 2460 2461 2462 2463
    return bs;
}

/*
 * Opens a disk image whose options are given as BlockdevRef in another block
 * device's options.
 *
 * If allow_none is true, no image will be opened if filename is false and no
 * BlockdevRef is given. NULL will be returned, but errp remains unset.
 *
 * bdrev_key specifies the key for the image's BlockdevRef in the options QDict.
 * That QDict has to be flattened; therefore, if the BlockdevRef is a QDict
 * itself, all options starting with "${bdref_key}." are considered part of the
 * BlockdevRef.
 *
 * The BlockdevRef will be removed from the options QDict.
 */
BdrvChild *bdrv_open_child(const char *filename,
                           QDict *options, const char *bdref_key,
                           BlockDriverState *parent,
                           const BdrvChildRole *child_role,
                           bool allow_none, Error **errp)
{
2464
    BdrvChild *c;
2465 2466 2467 2468 2469 2470 2471 2472
    BlockDriverState *bs;

    bs = bdrv_open_child_bs(filename, options, bdref_key, parent, child_role,
                            allow_none, errp);
    if (bs == NULL) {
        return NULL;
    }

2473 2474 2475 2476 2477 2478 2479
    c = bdrv_attach_child(parent, bs, bdref_key, child_role, errp);
    if (!c) {
        bdrv_unref(bs);
        return NULL;
    }

    return c;
K
Kevin Wolf 已提交
2480 2481
}

2482 2483 2484 2485 2486 2487 2488 2489 2490 2491 2492 2493 2494 2495 2496 2497 2498 2499 2500 2501 2502 2503 2504 2505 2506
/* TODO Future callers may need to specify parent/child_role in order for
 * option inheritance to work. Existing callers use it for the root node. */
BlockDriverState *bdrv_open_blockdev_ref(BlockdevRef *ref, Error **errp)
{
    BlockDriverState *bs = NULL;
    Error *local_err = NULL;
    QObject *obj = NULL;
    QDict *qdict = NULL;
    const char *reference = NULL;
    Visitor *v = NULL;

    if (ref->type == QTYPE_QSTRING) {
        reference = ref->u.reference;
    } else {
        BlockdevOptions *options = &ref->u.definition;
        assert(ref->type == QTYPE_QDICT);

        v = qobject_output_visitor_new(&obj);
        visit_type_BlockdevOptions(v, NULL, &options, &local_err);
        if (local_err) {
            error_propagate(errp, local_err);
            goto fail;
        }
        visit_complete(v, &obj);

2507
        qdict = qobject_to(QDict, obj);
2508 2509 2510 2511 2512 2513 2514 2515
        qdict_flatten(qdict);

        /* bdrv_open_inherit() defaults to the values in bdrv_flags (for
         * compatibility with other callers) rather than what we want as the
         * real defaults. Apply the defaults here instead. */
        qdict_set_default_str(qdict, BDRV_OPT_CACHE_DIRECT, "off");
        qdict_set_default_str(qdict, BDRV_OPT_CACHE_NO_FLUSH, "off");
        qdict_set_default_str(qdict, BDRV_OPT_READ_ONLY, "off");
K
Kevin Wolf 已提交
2516 2517
        qdict_set_default_str(qdict, BDRV_OPT_AUTO_READ_ONLY, "off");

2518 2519 2520 2521 2522 2523
    }

    bs = bdrv_open_inherit(NULL, reference, qdict, 0, NULL, NULL, errp);
    obj = NULL;

fail:
2524
    qobject_unref(obj);
2525 2526 2527 2528
    visit_free(v);
    return bs;
}

2529 2530 2531 2532
static BlockDriverState *bdrv_append_temp_snapshot(BlockDriverState *bs,
                                                   int flags,
                                                   QDict *snapshot_options,
                                                   Error **errp)
2533 2534
{
    /* TODO: extra byte is a hack to ensure MAX_PATH space on Windows. */
2535
    char *tmp_filename = g_malloc0(PATH_MAX + 1);
2536
    int64_t total_size;
2537
    QemuOpts *opts = NULL;
2538
    BlockDriverState *bs_snapshot = NULL;
2539
    Error *local_err = NULL;
2540 2541 2542 2543 2544 2545
    int ret;

    /* if snapshot, we create a temporary backing file and open it
       instead of opening 'filename' directly */

    /* Get the required size from the image */
2546 2547 2548
    total_size = bdrv_getlength(bs);
    if (total_size < 0) {
        error_setg_errno(errp, -total_size, "Could not get image size");
2549
        goto out;
2550
    }
2551 2552

    /* Create the temporary image */
2553
    ret = get_tmp_filename(tmp_filename, PATH_MAX + 1);
2554 2555
    if (ret < 0) {
        error_setg_errno(errp, -ret, "Could not get temporary filename");
2556
        goto out;
2557 2558
    }

2559
    opts = qemu_opts_create(bdrv_qcow2.create_opts, NULL, 0,
C
Chunyan Liu 已提交
2560
                            &error_abort);
2561
    qemu_opt_set_number(opts, BLOCK_OPT_SIZE, total_size, &error_abort);
2562
    ret = bdrv_create(&bdrv_qcow2, tmp_filename, opts, errp);
2563
    qemu_opts_del(opts);
2564
    if (ret < 0) {
2565 2566
        error_prepend(errp, "Could not create temporary overlay '%s': ",
                      tmp_filename);
2567
        goto out;
2568 2569
    }

K
Kevin Wolf 已提交
2570
    /* Prepare options QDict for the temporary file */
2571 2572 2573
    qdict_put_str(snapshot_options, "file.driver", "file");
    qdict_put_str(snapshot_options, "file.filename", tmp_filename);
    qdict_put_str(snapshot_options, "driver", "qcow2");
2574

M
Max Reitz 已提交
2575
    bs_snapshot = bdrv_open(NULL, NULL, snapshot_options, flags, errp);
K
Kevin Wolf 已提交
2576
    snapshot_options = NULL;
M
Max Reitz 已提交
2577
    if (!bs_snapshot) {
2578
        goto out;
2579 2580
    }

2581 2582 2583 2584
    /* bdrv_append() consumes a strong reference to bs_snapshot
     * (i.e. it will call bdrv_unref() on it) even on error, so in
     * order to be able to return one, we have to increase
     * bs_snapshot's refcount here */
2585
    bdrv_ref(bs_snapshot);
2586 2587 2588
    bdrv_append(bs_snapshot, bs, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
2589
        bs_snapshot = NULL;
2590 2591
        goto out;
    }
2592 2593

out:
2594
    qobject_unref(snapshot_options);
2595
    g_free(tmp_filename);
2596
    return bs_snapshot;
2597 2598
}

K
Kevin Wolf 已提交
2599 2600
/*
 * Opens a disk image (raw, qcow2, vmdk, ...)
2601 2602 2603 2604
 *
 * options is a QDict of options to pass to the block drivers, or NULL for an
 * empty set of options. The reference to the QDict belongs to the block layer
 * after the call (even on failure), so if the caller intends to reuse the
2605
 * dictionary, it needs to use qobject_ref() before calling bdrv_open.
2606 2607 2608
 *
 * If *pbs is NULL, a new BDS will be created with a pointer to it stored there.
 * If it is not NULL, the referenced BDS will be reused.
2609 2610 2611 2612
 *
 * The reference parameter may be used to specify an existing block device which
 * should be opened. If specified, neither options nor a filename may be given,
 * nor can an existing BDS be reused (that is, *pbs has to be NULL).
K
Kevin Wolf 已提交
2613
 */
M
Max Reitz 已提交
2614 2615 2616 2617 2618 2619
static BlockDriverState *bdrv_open_inherit(const char *filename,
                                           const char *reference,
                                           QDict *options, int flags,
                                           BlockDriverState *parent,
                                           const BdrvChildRole *child_role,
                                           Error **errp)
B
bellard 已提交
2620
{
K
Kevin Wolf 已提交
2621
    int ret;
2622
    BlockBackend *file = NULL;
K
Kevin Wolf 已提交
2623
    BlockDriverState *bs;
2624
    BlockDriver *drv = NULL;
2625
    BdrvChild *child;
2626
    const char *drvname;
2627
    const char *backing;
2628
    Error *local_err = NULL;
K
Kevin Wolf 已提交
2629
    QDict *snapshot_options = NULL;
2630
    int snapshot_flags = 0;
B
bellard 已提交
2631

2632 2633
    assert(!child_role || !flags);
    assert(!child_role == !parent);
2634

2635 2636
    if (reference) {
        bool options_non_empty = options ? qdict_size(options) : false;
2637
        qobject_unref(options);
2638 2639 2640 2641

        if (filename || options_non_empty) {
            error_setg(errp, "Cannot reference an existing block device with "
                       "additional options or a new filename");
M
Max Reitz 已提交
2642
            return NULL;
2643 2644 2645 2646
        }

        bs = bdrv_lookup_bs(reference, reference, errp);
        if (!bs) {
M
Max Reitz 已提交
2647
            return NULL;
2648
        }
2649

2650
        bdrv_ref(bs);
M
Max Reitz 已提交
2651
        return bs;
2652 2653
    }

M
Max Reitz 已提交
2654
    bs = bdrv_new();
2655

2656 2657 2658 2659 2660
    /* NULL means an empty set of options */
    if (options == NULL) {
        options = qdict_new();
    }

K
Kevin Wolf 已提交
2661
    /* json: syntax counts as explicit options, as if in the QDict */
2662 2663 2664 2665 2666
    parse_json_protocol(options, &filename, &local_err);
    if (local_err) {
        goto fail;
    }

K
Kevin Wolf 已提交
2667 2668
    bs->explicit_options = qdict_clone_shallow(options);

2669
    if (child_role) {
2670
        bs->inherits_from = parent;
2671 2672
        child_role->inherit_options(&flags, options,
                                    parent->open_flags, parent->options);
2673 2674
    }

2675
    ret = bdrv_fill_options(&options, filename, &flags, &local_err);
2676 2677 2678 2679
    if (local_err) {
        goto fail;
    }

2680 2681 2682 2683 2684 2685 2686
    /*
     * Set the BDRV_O_RDWR and BDRV_O_ALLOW_RDWR flags.
     * Caution: getting a boolean member of @options requires care.
     * When @options come from -blockdev or blockdev_add, members are
     * typed according to the QAPI schema, but when they come from
     * -drive, they're all QString.
     */
2687 2688 2689 2690 2691
    if (g_strcmp0(qdict_get_try_str(options, BDRV_OPT_READ_ONLY), "on") &&
        !qdict_get_try_bool(options, BDRV_OPT_READ_ONLY, false)) {
        flags |= (BDRV_O_RDWR | BDRV_O_ALLOW_RDWR);
    } else {
        flags &= ~BDRV_O_RDWR;
2692 2693 2694 2695 2696 2697
    }

    if (flags & BDRV_O_SNAPSHOT) {
        snapshot_options = qdict_new();
        bdrv_temp_snapshot_options(&snapshot_flags, snapshot_options,
                                   flags, options);
2698 2699
        /* Let bdrv_backing_options() override "read-only" */
        qdict_del(options, BDRV_OPT_READ_ONLY);
2700 2701 2702
        bdrv_backing_options(&flags, options, flags, options);
    }

K
Kevin Wolf 已提交
2703 2704 2705 2706
    bs->open_flags = flags;
    bs->options = options;
    options = qdict_clone_shallow(options);

2707
    /* Find the right image format driver */
2708
    /* See cautionary note on accessing @options above */
2709 2710 2711 2712 2713 2714 2715 2716 2717 2718 2719
    drvname = qdict_get_try_str(options, "driver");
    if (drvname) {
        drv = bdrv_find_format(drvname);
        if (!drv) {
            error_setg(errp, "Unknown driver: '%s'", drvname);
            goto fail;
        }
    }

    assert(drvname || !(flags & BDRV_O_PROTOCOL));

2720
    /* See cautionary note on accessing @options above */
2721
    backing = qdict_get_try_str(options, "backing");
M
Max Reitz 已提交
2722 2723 2724
    if (qobject_to(QNull, qdict_get(options, "backing")) != NULL ||
        (backing && *backing == '\0'))
    {
M
Max Reitz 已提交
2725 2726 2727 2728
        if (backing) {
            warn_report("Use of \"backing\": \"\" is deprecated; "
                        "use \"backing\": null instead");
        }
2729 2730 2731 2732
        flags |= BDRV_O_NO_BACKING;
        qdict_del(options, "backing");
    }

2733
    /* Open image file without format layer. This BlockBackend is only used for
2734 2735
     * probing, the block drivers will do their own bdrv_open_child() for the
     * same BDS, which is why we put the node name back into options. */
2736
    if ((flags & BDRV_O_PROTOCOL) == 0) {
2737 2738 2739 2740
        BlockDriverState *file_bs;

        file_bs = bdrv_open_child_bs(filename, options, "file", bs,
                                     &child_file, true, &local_err);
K
Kevin Wolf 已提交
2741
        if (local_err) {
2742 2743
            goto fail;
        }
2744
        if (file_bs != NULL) {
2745 2746 2747 2748
            /* Not requesting BLK_PERM_CONSISTENT_READ because we're only
             * looking at the header to guess the image format. This works even
             * in cases where a guest would not see a consistent state. */
            file = blk_new(0, BLK_PERM_ALL);
2749
            blk_insert_bs(file, file_bs, &local_err);
2750
            bdrv_unref(file_bs);
2751 2752 2753
            if (local_err) {
                goto fail;
            }
2754

2755
            qdict_put_str(options, "file", bdrv_get_node_name(file_bs));
2756
        }
2757 2758
    }

2759
    /* Image format probing */
2760
    bs->probed = !drv;
2761
    if (!drv && file) {
2762
        ret = find_image_format(file, filename, &drv, &local_err);
2763
        if (ret < 0) {
2764
            goto fail;
2765
        }
K
Kevin Wolf 已提交
2766 2767 2768 2769 2770 2771 2772 2773 2774 2775 2776
        /*
         * This option update would logically belong in bdrv_fill_options(),
         * but we first need to open bs->file for the probing to work, while
         * opening bs->file already requires the (mostly) final set of options
         * so that cache mode etc. can be inherited.
         *
         * Adding the driver later is somewhat ugly, but it's not an option
         * that would ever be inherited, so it's correct. We just need to make
         * sure to update both bs->options (which has the full effective
         * options for bs) and options (which has file.* already removed).
         */
2777 2778
        qdict_put_str(bs->options, "driver", drv->format_name);
        qdict_put_str(options, "driver", drv->format_name);
2779
    } else if (!drv) {
2780
        error_setg(errp, "Must specify either driver or file");
2781
        goto fail;
B
bellard 已提交
2782
    }
K
Kevin Wolf 已提交
2783

2784 2785 2786 2787 2788 2789
    /* BDRV_O_PROTOCOL must be set iff a protocol BDS is about to be created */
    assert(!!(flags & BDRV_O_PROTOCOL) == !!drv->bdrv_file_open);
    /* file must be NULL if a protocol BDS is about to be created
     * (the inverse results in an error message from bdrv_open_common()) */
    assert(!(flags & BDRV_O_PROTOCOL) || !file);

K
Kevin Wolf 已提交
2790
    /* Open the image */
K
Kevin Wolf 已提交
2791
    ret = bdrv_open_common(bs, file, options, &local_err);
K
Kevin Wolf 已提交
2792
    if (ret < 0) {
2793
        goto fail;
2794 2795
    }

2796
    if (file) {
2797
        blk_unref(file);
2798 2799 2800
        file = NULL;
    }

K
Kevin Wolf 已提交
2801
    /* If there is a backing file, use it */
P
Paolo Bonzini 已提交
2802
    if ((flags & BDRV_O_NO_BACKING) == 0) {
2803
        ret = bdrv_open_backing_file(bs, options, "backing", &local_err);
K
Kevin Wolf 已提交
2804
        if (ret < 0) {
2805
            goto close_and_fail;
K
Kevin Wolf 已提交
2806 2807 2808
        }
    }

2809 2810
    /* Remove all children options and references
     * from bs->options and bs->explicit_options */
2811 2812 2813 2814 2815
    QLIST_FOREACH(child, &bs->children, next) {
        char *child_key_dot;
        child_key_dot = g_strdup_printf("%s.", child->name);
        qdict_extract_subqdict(bs->explicit_options, NULL, child_key_dot);
        qdict_extract_subqdict(bs->options, NULL, child_key_dot);
2816 2817
        qdict_del(bs->explicit_options, child->name);
        qdict_del(bs->options, child->name);
2818 2819 2820
        g_free(child_key_dot);
    }

M
Max Reitz 已提交
2821 2822
    bdrv_refresh_filename(bs);

2823
    /* Check if any unknown options were used */
P
Paolo Bonzini 已提交
2824
    if (qdict_size(options) != 0) {
2825
        const QDictEntry *entry = qdict_first(options);
2826 2827 2828 2829
        if (flags & BDRV_O_PROTOCOL) {
            error_setg(errp, "Block protocol '%s' doesn't support the option "
                       "'%s'", drv->format_name, entry->key);
        } else {
2830 2831 2832
            error_setg(errp,
                       "Block format '%s' does not support the option '%s'",
                       drv->format_name, entry->key);
2833
        }
2834 2835 2836 2837

        goto close_and_fail;
    }

2838
    bdrv_parent_cb_change_media(bs, true);
K
Kevin Wolf 已提交
2839

2840
    qobject_unref(options);
2841
    options = NULL;
2842 2843 2844 2845

    /* For snapshot=on, create a temporary qcow2 overlay. bs points to the
     * temporary snapshot afterwards. */
    if (snapshot_flags) {
2846 2847 2848
        BlockDriverState *snapshot_bs;
        snapshot_bs = bdrv_append_temp_snapshot(bs, snapshot_flags,
                                                snapshot_options, &local_err);
K
Kevin Wolf 已提交
2849
        snapshot_options = NULL;
2850 2851 2852
        if (local_err) {
            goto close_and_fail;
        }
M
Max Reitz 已提交
2853 2854 2855 2856 2857 2858
        /* We are not going to return bs but the overlay on top of it
         * (snapshot_bs); thus, we have to drop the strong reference to bs
         * (which we obtained by calling bdrv_new()). bs will not be deleted,
         * though, because the overlay still has a reference to it. */
        bdrv_unref(bs);
        bs = snapshot_bs;
2859 2860
    }

M
Max Reitz 已提交
2861
    return bs;
K
Kevin Wolf 已提交
2862

2863
fail:
2864
    blk_unref(file);
2865 2866 2867 2868
    qobject_unref(snapshot_options);
    qobject_unref(bs->explicit_options);
    qobject_unref(bs->options);
    qobject_unref(options);
2869
    bs->options = NULL;
2870
    bs->explicit_options = NULL;
M
Max Reitz 已提交
2871
    bdrv_unref(bs);
2872
    error_propagate(errp, local_err);
M
Max Reitz 已提交
2873
    return NULL;
2874

2875
close_and_fail:
M
Max Reitz 已提交
2876
    bdrv_unref(bs);
2877 2878
    qobject_unref(snapshot_options);
    qobject_unref(options);
2879
    error_propagate(errp, local_err);
M
Max Reitz 已提交
2880
    return NULL;
K
Kevin Wolf 已提交
2881 2882
}

M
Max Reitz 已提交
2883 2884
BlockDriverState *bdrv_open(const char *filename, const char *reference,
                            QDict *options, int flags, Error **errp)
2885
{
M
Max Reitz 已提交
2886
    return bdrv_open_inherit(filename, reference, options, flags, NULL,
2887
                             NULL, errp);
2888 2889
}

2890 2891 2892 2893 2894 2895 2896 2897 2898 2899 2900 2901
/*
 * Adds a BlockDriverState to a simple queue for an atomic, transactional
 * reopen of multiple devices.
 *
 * bs_queue can either be an existing BlockReopenQueue that has had QSIMPLE_INIT
 * already performed, or alternatively may be NULL a new BlockReopenQueue will
 * be created and initialized. This newly created BlockReopenQueue should be
 * passed back in for subsequent calls that are intended to be of the same
 * atomic 'set'.
 *
 * bs is the BlockDriverState to add to the reopen queue.
 *
2902 2903 2904
 * options contains the changed options for the associated bs
 * (the BlockReopenQueue takes ownership)
 *
2905 2906 2907 2908 2909
 * flags contains the open flags for the associated bs
 *
 * returns a pointer to bs_queue, which is either the newly allocated
 * bs_queue, or the existing bs_queue being used.
 *
2910
 * bs must be drained between bdrv_reopen_queue() and bdrv_reopen_multiple().
2911
 */
2912 2913 2914 2915 2916 2917 2918
static BlockReopenQueue *bdrv_reopen_queue_child(BlockReopenQueue *bs_queue,
                                                 BlockDriverState *bs,
                                                 QDict *options,
                                                 int flags,
                                                 const BdrvChildRole *role,
                                                 QDict *parent_options,
                                                 int parent_flags)
2919 2920 2921 2922
{
    assert(bs != NULL);

    BlockReopenQueueEntry *bs_entry;
K
Kevin Wolf 已提交
2923
    BdrvChild *child;
K
Kevin Wolf 已提交
2924
    QDict *old_options, *explicit_options;
K
Kevin Wolf 已提交
2925

2926 2927 2928 2929 2930
    /* Make sure that the caller remembered to use a drained section. This is
     * important to avoid graph changes between the recursive queuing here and
     * bdrv_reopen_multiple(). */
    assert(bs->quiesce_counter > 0);

2931 2932 2933 2934 2935
    if (bs_queue == NULL) {
        bs_queue = g_new0(BlockReopenQueue, 1);
        QSIMPLEQ_INIT(bs_queue);
    }

2936 2937 2938 2939
    if (!options) {
        options = qdict_new();
    }

2940 2941 2942 2943 2944 2945 2946
    /* Check if this BlockDriverState is already in the queue */
    QSIMPLEQ_FOREACH(bs_entry, bs_queue, entry) {
        if (bs == bs_entry->state.bs) {
            break;
        }
    }

2947 2948 2949
    /*
     * Precedence of options:
     * 1. Explicitly passed in options (highest)
2950
     * 2. Set in flags (only for top level)
K
Kevin Wolf 已提交
2951
     * 3. Retained from explicitly set options of bs
2952
     * 4. Inherited from parent node
2953 2954 2955
     * 5. Retained from effective options of bs
     */

2956 2957 2958 2959 2960 2961 2962 2963 2964 2965
    if (!parent_options) {
        /*
         * Any setting represented by flags is always updated. If the
         * corresponding QDict option is set, it takes precedence. Otherwise
         * the flag is translated into a QDict option. The old setting of bs is
         * not considered.
         */
        update_options_from_flags(options, flags);
    }

K
Kevin Wolf 已提交
2966
    /* Old explicitly set values (don't overwrite by inherited value) */
2967 2968 2969 2970 2971
    if (bs_entry) {
        old_options = qdict_clone_shallow(bs_entry->state.explicit_options);
    } else {
        old_options = qdict_clone_shallow(bs->explicit_options);
    }
K
Kevin Wolf 已提交
2972
    bdrv_join_options(bs, options, old_options);
2973
    qobject_unref(old_options);
K
Kevin Wolf 已提交
2974 2975 2976

    explicit_options = qdict_clone_shallow(options);

2977 2978
    /* Inherit from parent node */
    if (parent_options) {
F
Fam Zheng 已提交
2979 2980
        QemuOpts *opts;
        QDict *options_copy;
2981
        assert(!flags);
2982
        role->inherit_options(&flags, options, parent_flags, parent_options);
F
Fam Zheng 已提交
2983 2984 2985 2986 2987
        options_copy = qdict_clone_shallow(options);
        opts = qemu_opts_create(&bdrv_runtime_opts, NULL, 0, &error_abort);
        qemu_opts_absorb_qdict(opts, options_copy, NULL);
        update_flags_from_options(&flags, opts);
        qemu_opts_del(opts);
2988
        qobject_unref(options_copy);
2989 2990 2991
    }

    /* Old values are used for options that aren't set yet */
2992
    old_options = qdict_clone_shallow(bs->options);
2993
    bdrv_join_options(bs, options, old_options);
2994
    qobject_unref(old_options);
2995

2996
    /* bdrv_open_inherit() sets and clears some additional flags internally */
2997
    flags &= ~BDRV_O_PROTOCOL;
2998 2999 3000
    if (flags & BDRV_O_RDWR) {
        flags |= BDRV_O_ALLOW_RDWR;
    }
3001

3002 3003 3004 3005
    if (!bs_entry) {
        bs_entry = g_new0(BlockReopenQueueEntry, 1);
        QSIMPLEQ_INSERT_TAIL(bs_queue, bs_entry, entry);
    } else {
3006 3007
        qobject_unref(bs_entry->state.options);
        qobject_unref(bs_entry->state.explicit_options);
3008 3009 3010 3011 3012 3013 3014
    }

    bs_entry->state.bs = bs;
    bs_entry->state.options = options;
    bs_entry->state.explicit_options = explicit_options;
    bs_entry->state.flags = flags;

3015 3016 3017 3018
    /* This needs to be overwritten in bdrv_reopen_prepare() */
    bs_entry->state.perm = UINT64_MAX;
    bs_entry->state.shared_perm = 0;

K
Kevin Wolf 已提交
3019
    QLIST_FOREACH(child, &bs->children, next) {
3020 3021
        QDict *new_child_options;
        char *child_key_dot;
K
Kevin Wolf 已提交
3022

3023 3024 3025
        /* reopen can only change the options of block devices that were
         * implicitly created and inherited options. For other (referenced)
         * block devices, a syntax like "backing.foo" results in an error. */
K
Kevin Wolf 已提交
3026 3027 3028 3029
        if (child->bs->inherits_from != bs) {
            continue;
        }

3030
        child_key_dot = g_strdup_printf("%s.", child->name);
3031
        qdict_extract_subqdict(explicit_options, NULL, child_key_dot);
3032 3033 3034
        qdict_extract_subqdict(options, &new_child_options, child_key_dot);
        g_free(child_key_dot);

3035 3036
        bdrv_reopen_queue_child(bs_queue, child->bs, new_child_options, 0,
                                child->role, options, flags);
3037 3038 3039 3040 3041
    }

    return bs_queue;
}

3042 3043 3044 3045 3046 3047 3048 3049
BlockReopenQueue *bdrv_reopen_queue(BlockReopenQueue *bs_queue,
                                    BlockDriverState *bs,
                                    QDict *options, int flags)
{
    return bdrv_reopen_queue_child(bs_queue, bs, options, flags,
                                   NULL, NULL, 0);
}

3050 3051 3052 3053 3054 3055 3056 3057
/*
 * Reopen multiple BlockDriverStates atomically & transactionally.
 *
 * The queue passed in (bs_queue) must have been built up previous
 * via bdrv_reopen_queue().
 *
 * Reopens all BDS specified in the queue, with the appropriate
 * flags.  All devices are prepared for reopen, and failure of any
3058
 * device will cause all device changes to be abandoned, and intermediate
3059 3060 3061 3062 3063
 * data cleaned up.
 *
 * If all devices prepare successfully, then the changes are committed
 * to all devices.
 *
3064 3065
 * All affected nodes must be drained between bdrv_reopen_queue() and
 * bdrv_reopen_multiple().
3066
 */
3067
int bdrv_reopen_multiple(AioContext *ctx, BlockReopenQueue *bs_queue, Error **errp)
3068 3069 3070 3071 3072 3073 3074 3075
{
    int ret = -1;
    BlockReopenQueueEntry *bs_entry, *next;
    Error *local_err = NULL;

    assert(bs_queue != NULL);

    QSIMPLEQ_FOREACH(bs_entry, bs_queue, entry) {
3076
        assert(bs_entry->state.bs->quiesce_counter > 0);
3077 3078 3079 3080 3081 3082 3083 3084 3085 3086 3087 3088 3089 3090 3091 3092 3093 3094
        if (bdrv_reopen_prepare(&bs_entry->state, bs_queue, &local_err)) {
            error_propagate(errp, local_err);
            goto cleanup;
        }
        bs_entry->prepared = true;
    }

    /* If we reach this point, we have success and just need to apply the
     * changes
     */
    QSIMPLEQ_FOREACH(bs_entry, bs_queue, entry) {
        bdrv_reopen_commit(&bs_entry->state);
    }

    ret = 0;

cleanup:
    QSIMPLEQ_FOREACH_SAFE(bs_entry, bs_queue, entry, next) {
3095 3096 3097 3098
        if (ret) {
            if (bs_entry->prepared) {
                bdrv_reopen_abort(&bs_entry->state);
            }
3099
            qobject_unref(bs_entry->state.explicit_options);
3100
            qobject_unref(bs_entry->state.options);
3101 3102 3103 3104
        }
        g_free(bs_entry);
    }
    g_free(bs_queue);
3105

3106 3107 3108 3109 3110 3111 3112 3113 3114
    return ret;
}


/* Reopen a single BlockDriverState with the specified flags. */
int bdrv_reopen(BlockDriverState *bs, int bdrv_flags, Error **errp)
{
    int ret = -1;
    Error *local_err = NULL;
3115
    BlockReopenQueue *queue;
3116

3117 3118 3119
    bdrv_subtree_drained_begin(bs);

    queue = bdrv_reopen_queue(NULL, bs, NULL, bdrv_flags);
3120
    ret = bdrv_reopen_multiple(bdrv_get_aio_context(bs), queue, &local_err);
3121 3122 3123
    if (local_err != NULL) {
        error_propagate(errp, local_err);
    }
3124 3125 3126

    bdrv_subtree_drained_end(bs);

3127 3128 3129
    return ret;
}

3130 3131 3132 3133 3134 3135 3136 3137 3138 3139 3140 3141 3142 3143 3144 3145 3146 3147 3148 3149 3150 3151 3152 3153 3154 3155 3156 3157 3158 3159 3160 3161 3162 3163 3164 3165 3166 3167 3168 3169 3170 3171 3172 3173 3174 3175
static BlockReopenQueueEntry *find_parent_in_reopen_queue(BlockReopenQueue *q,
                                                          BdrvChild *c)
{
    BlockReopenQueueEntry *entry;

    QSIMPLEQ_FOREACH(entry, q, entry) {
        BlockDriverState *bs = entry->state.bs;
        BdrvChild *child;

        QLIST_FOREACH(child, &bs->children, next) {
            if (child == c) {
                return entry;
            }
        }
    }

    return NULL;
}

static void bdrv_reopen_perm(BlockReopenQueue *q, BlockDriverState *bs,
                             uint64_t *perm, uint64_t *shared)
{
    BdrvChild *c;
    BlockReopenQueueEntry *parent;
    uint64_t cumulative_perms = 0;
    uint64_t cumulative_shared_perms = BLK_PERM_ALL;

    QLIST_FOREACH(c, &bs->parents, next_parent) {
        parent = find_parent_in_reopen_queue(q, c);
        if (!parent) {
            cumulative_perms |= c->perm;
            cumulative_shared_perms &= c->shared_perm;
        } else {
            uint64_t nperm, nshared;

            bdrv_child_perm(parent->state.bs, bs, c, c->role, q,
                            parent->state.perm, parent->state.shared_perm,
                            &nperm, &nshared);

            cumulative_perms |= nperm;
            cumulative_shared_perms &= nshared;
        }
    }
    *perm = cumulative_perms;
    *shared = cumulative_shared_perms;
}
3176 3177 3178 3179 3180 3181 3182 3183 3184 3185 3186 3187 3188 3189 3190 3191 3192 3193 3194 3195 3196 3197 3198 3199

/*
 * Prepares a BlockDriverState for reopen. All changes are staged in the
 * 'opaque' field of the BDRVReopenState, which is used and allocated by
 * the block driver layer .bdrv_reopen_prepare()
 *
 * bs is the BlockDriverState to reopen
 * flags are the new open flags
 * queue is the reopen queue
 *
 * Returns 0 on success, non-zero on error.  On error errp will be set
 * as well.
 *
 * On failure, bdrv_reopen_abort() will be called to clean up any data.
 * It is the responsibility of the caller to then call the abort() or
 * commit() for any other BDS that have been left in a prepare() state
 *
 */
int bdrv_reopen_prepare(BDRVReopenState *reopen_state, BlockReopenQueue *queue,
                        Error **errp)
{
    int ret = -1;
    Error *local_err = NULL;
    BlockDriver *drv;
3200
    QemuOpts *opts;
3201
    QDict *orig_reopen_opts;
3202
    char *discard = NULL;
3203
    bool read_only;
3204 3205 3206 3207 3208

    assert(reopen_state != NULL);
    assert(reopen_state->bs->drv != NULL);
    drv = reopen_state->bs->drv;

3209 3210 3211 3212 3213
    /* This function and each driver's bdrv_reopen_prepare() remove
     * entries from reopen_state->options as they are processed, so
     * we need to make a copy of the original QDict. */
    orig_reopen_opts = qdict_clone_shallow(reopen_state->options);

3214 3215 3216 3217 3218 3219 3220 3221 3222
    /* Process generic block layer options */
    opts = qemu_opts_create(&bdrv_runtime_opts, NULL, 0, &error_abort);
    qemu_opts_absorb_qdict(opts, reopen_state->options, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        ret = -EINVAL;
        goto error;
    }

3223 3224
    update_flags_from_options(&reopen_state->flags, opts);

3225
    discard = qemu_opt_get_del(opts, BDRV_OPT_DISCARD);
3226 3227 3228 3229 3230 3231 3232 3233
    if (discard != NULL) {
        if (bdrv_parse_discard_flags(discard, &reopen_state->flags) != 0) {
            error_setg(errp, "Invalid discard option");
            ret = -EINVAL;
            goto error;
        }
    }

3234 3235 3236 3237 3238 3239 3240 3241
    reopen_state->detect_zeroes =
        bdrv_parse_detect_zeroes(opts, reopen_state->flags, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        ret = -EINVAL;
        goto error;
    }

3242 3243 3244 3245
    /* All other options (including node-name and driver) must be unchanged.
     * Put them back into the QDict, so that they are checked at the end
     * of this function. */
    qemu_opts_to_qdict(opts, reopen_state->options);
3246

3247 3248 3249 3250
    /* If we are to stay read-only, do not allow permission change
     * to r/w. Attempting to set to r/w may fail if either BDRV_O_ALLOW_RDWR is
     * not set, or if the BDS still has copy_on_read enabled */
    read_only = !(reopen_state->flags & BDRV_O_RDWR);
3251
    ret = bdrv_can_set_read_only(reopen_state->bs, read_only, true, &local_err);
3252 3253
    if (local_err) {
        error_propagate(errp, local_err);
3254 3255 3256
        goto error;
    }

3257 3258 3259
    /* Calculate required permissions after reopening */
    bdrv_reopen_perm(queue, reopen_state->bs,
                     &reopen_state->perm, &reopen_state->shared_perm);
3260 3261 3262

    ret = bdrv_flush(reopen_state->bs);
    if (ret) {
E
Eric Blake 已提交
3263
        error_setg_errno(errp, -ret, "Error flushing drive");
3264 3265 3266 3267 3268 3269 3270 3271 3272
        goto error;
    }

    if (drv->bdrv_reopen_prepare) {
        ret = drv->bdrv_reopen_prepare(reopen_state, queue, &local_err);
        if (ret) {
            if (local_err != NULL) {
                error_propagate(errp, local_err);
            } else {
3273 3274
                error_setg(errp, "failed while preparing to reopen image '%s'",
                           reopen_state->bs->filename);
3275 3276 3277 3278 3279 3280
            }
            goto error;
        }
    } else {
        /* It is currently mandatory to have a bdrv_reopen_prepare()
         * handler for each supported drv. */
3281 3282 3283
        error_setg(errp, "Block format '%s' used by node '%s' "
                   "does not support reopening files", drv->format_name,
                   bdrv_get_device_or_node_name(reopen_state->bs));
3284 3285 3286 3287
        ret = -1;
        goto error;
    }

3288 3289 3290 3291 3292 3293 3294
    /* Options that are not handled are only okay if they are unchanged
     * compared to the old state. It is expected that some options are only
     * used for the initial open, but not reopen (e.g. filename) */
    if (qdict_size(reopen_state->options)) {
        const QDictEntry *entry = qdict_first(reopen_state->options);

        do {
3295 3296 3297
            QObject *new = entry->value;
            QObject *old = qdict_get(reopen_state->bs->options, entry->key);

3298 3299 3300 3301 3302 3303 3304 3305 3306 3307 3308 3309 3310 3311 3312 3313 3314 3315
            /* Allow child references (child_name=node_name) as long as they
             * point to the current child (i.e. everything stays the same). */
            if (qobject_type(new) == QTYPE_QSTRING) {
                BdrvChild *child;
                QLIST_FOREACH(child, &reopen_state->bs->children, next) {
                    if (!strcmp(child->name, entry->key)) {
                        break;
                    }
                }

                if (child) {
                    const char *str = qobject_get_try_str(new);
                    if (!strcmp(child->bs->node_name, str)) {
                        continue; /* Found child with this name, skip option */
                    }
                }
            }

3316
            /*
3317 3318 3319 3320 3321 3322 3323 3324 3325 3326 3327 3328 3329 3330
             * TODO: When using -drive to specify blockdev options, all values
             * will be strings; however, when using -blockdev, blockdev-add or
             * filenames using the json:{} pseudo-protocol, they will be
             * correctly typed.
             * In contrast, reopening options are (currently) always strings
             * (because you can only specify them through qemu-io; all other
             * callers do not specify any options).
             * Therefore, when using anything other than -drive to create a BDS,
             * this cannot detect non-string options as unchanged, because
             * qobject_is_equal() always returns false for objects of different
             * type.  In the future, this should be remedied by correctly typing
             * all options.  For now, this is not too big of an issue because
             * the user can simply omit options which cannot be changed anyway,
             * so they will stay unchanged.
3331
             */
3332
            if (!qobject_is_equal(new, old)) {
3333 3334 3335 3336 3337 3338 3339
                error_setg(errp, "Cannot change the option '%s'", entry->key);
                ret = -EINVAL;
                goto error;
            }
        } while ((entry = qdict_next(reopen_state->options, entry)));
    }

3340 3341 3342 3343 3344 3345
    ret = bdrv_check_perm(reopen_state->bs, queue, reopen_state->perm,
                          reopen_state->shared_perm, NULL, errp);
    if (ret < 0) {
        goto error;
    }

3346 3347
    ret = 0;

3348 3349 3350 3351
    /* Restore the original reopen_state->options QDict */
    qobject_unref(reopen_state->options);
    reopen_state->options = qobject_ref(orig_reopen_opts);

3352
error:
3353
    qemu_opts_del(opts);
3354
    qobject_unref(orig_reopen_opts);
3355
    g_free(discard);
3356 3357 3358 3359 3360 3361 3362 3363 3364 3365 3366
    return ret;
}

/*
 * Takes the staged changes for the reopen from bdrv_reopen_prepare(), and
 * makes them final by swapping the staging BlockDriverState contents into
 * the active BlockDriverState contents.
 */
void bdrv_reopen_commit(BDRVReopenState *reopen_state)
{
    BlockDriver *drv;
3367
    BlockDriverState *bs;
3368
    BdrvChild *child;
3369
    bool old_can_write, new_can_write;
3370 3371

    assert(reopen_state != NULL);
3372 3373
    bs = reopen_state->bs;
    drv = bs->drv;
3374 3375
    assert(drv != NULL);

3376 3377 3378
    old_can_write =
        !bdrv_is_read_only(bs) && !(bdrv_get_flags(bs) & BDRV_O_INACTIVE);

3379 3380 3381 3382 3383 3384
    /* If there are any driver level actions to take */
    if (drv->bdrv_reopen_commit) {
        drv->bdrv_reopen_commit(reopen_state);
    }

    /* set BDS specific flags now */
3385
    qobject_unref(bs->explicit_options);
3386
    qobject_unref(bs->options);
K
Kevin Wolf 已提交
3387

3388
    bs->explicit_options   = reopen_state->explicit_options;
3389
    bs->options            = reopen_state->options;
3390 3391
    bs->open_flags         = reopen_state->flags;
    bs->read_only = !(reopen_state->flags & BDRV_O_RDWR);
3392
    bs->detect_zeroes      = reopen_state->detect_zeroes;
3393

3394 3395 3396 3397 3398 3399 3400
    /* Remove child references from bs->options and bs->explicit_options.
     * Child options were already removed in bdrv_reopen_queue_child() */
    QLIST_FOREACH(child, &bs->children, next) {
        qdict_del(bs->explicit_options, child->name);
        qdict_del(bs->options, child->name);
    }

3401
    bdrv_refresh_limits(bs, NULL);
3402

3403 3404 3405
    bdrv_set_perm(reopen_state->bs, reopen_state->perm,
                  reopen_state->shared_perm);

3406 3407 3408 3409 3410 3411 3412 3413 3414 3415 3416 3417 3418 3419
    new_can_write =
        !bdrv_is_read_only(bs) && !(bdrv_get_flags(bs) & BDRV_O_INACTIVE);
    if (!old_can_write && new_can_write && drv->bdrv_reopen_bitmaps_rw) {
        Error *local_err = NULL;
        if (drv->bdrv_reopen_bitmaps_rw(bs, &local_err) < 0) {
            /* This is not fatal, bitmaps just left read-only, so all following
             * writes will fail. User can remove read-only bitmaps to unblock
             * writes.
             */
            error_reportf_err(local_err,
                              "%s: Failed to make dirty bitmaps writable: ",
                              bdrv_get_node_name(bs));
        }
    }
3420 3421 3422 3423 3424 3425 3426 3427 3428 3429 3430 3431 3432 3433 3434 3435 3436
}

/*
 * Abort the reopen, and delete and free the staged changes in
 * reopen_state
 */
void bdrv_reopen_abort(BDRVReopenState *reopen_state)
{
    BlockDriver *drv;

    assert(reopen_state != NULL);
    drv = reopen_state->bs->drv;
    assert(drv != NULL);

    if (drv->bdrv_reopen_abort) {
        drv->bdrv_reopen_abort(reopen_state);
    }
K
Kevin Wolf 已提交
3437

3438
    bdrv_abort_perm_update(reopen_state->bs);
3439 3440 3441
}


M
Max Reitz 已提交
3442
static void bdrv_close(BlockDriverState *bs)
B
bellard 已提交
3443
{
M
Max Reitz 已提交
3444
    BdrvAioNotifier *ban, *ban_next;
3445
    BdrvChild *child, *next;
M
Max Reitz 已提交
3446

M
Max Reitz 已提交
3447
    assert(!bs->job);
3448
    assert(!bs->refcnt);
3449

3450
    bdrv_drained_begin(bs); /* complete I/O */
3451
    bdrv_flush(bs);
3452
    bdrv_drain(bs); /* in case flush left pending I/O */
3453

3454
    if (bs->drv) {
3455 3456 3457
        if (bs->drv->bdrv_close) {
            bs->drv->bdrv_close(bs);
        }
K
Kevin Wolf 已提交
3458
        bs->drv = NULL;
3459
    }
3460

3461
    bdrv_set_backing_hd(bs, NULL, &error_abort);
3462

3463 3464 3465 3466
    if (bs->file != NULL) {
        bdrv_unref_child(bs, bs->file);
        bs->file = NULL;
    }
K
Kevin Wolf 已提交
3467

3468 3469 3470 3471 3472
    QLIST_FOREACH_SAFE(child, &bs->children, next, next) {
        /* TODO Remove bdrv_unref() from drivers' close function and use
         * bdrv_unref_child() here */
        if (child->bs->inherits_from == bs) {
            child->bs->inherits_from = NULL;
3473
        }
3474
        bdrv_detach_child(child);
B
bellard 已提交
3475
    }
Z
Zhi Yong Wu 已提交
3476

3477 3478 3479 3480 3481 3482 3483 3484
    g_free(bs->opaque);
    bs->opaque = NULL;
    atomic_set(&bs->copy_on_read, 0);
    bs->backing_file[0] = '\0';
    bs->backing_format[0] = '\0';
    bs->total_sectors = 0;
    bs->encrypted = false;
    bs->sg = false;
3485 3486
    qobject_unref(bs->options);
    qobject_unref(bs->explicit_options);
3487 3488
    bs->options = NULL;
    bs->explicit_options = NULL;
3489
    qobject_unref(bs->full_open_options);
3490 3491
    bs->full_open_options = NULL;

3492 3493 3494
    bdrv_release_named_dirty_bitmaps(bs);
    assert(QLIST_EMPTY(&bs->dirty_bitmaps));

M
Max Reitz 已提交
3495 3496 3497 3498
    QLIST_FOREACH_SAFE(ban, &bs->aio_notifiers, list, ban_next) {
        g_free(ban);
    }
    QLIST_INIT(&bs->aio_notifiers);
3499
    bdrv_drained_end(bs);
B
bellard 已提交
3500 3501
}

3502 3503
void bdrv_close_all(void)
{
3504
    assert(job_next(NULL) == NULL);
3505
    nbd_export_close_all();
M
Max Reitz 已提交
3506 3507 3508 3509

    /* Drop references from requests still in flight, such as canceled block
     * jobs whose AIO context has not been polled yet */
    bdrv_drain_all();
3510

M
Max Reitz 已提交
3511 3512
    blk_remove_all_bs();
    blockdev_close_all_bdrv_states();
3513

3514
    assert(QTAILQ_EMPTY(&all_bdrv_states));
3515 3516
}

3517 3518 3519 3520 3521 3522 3523 3524
static bool should_update_child(BdrvChild *c, BlockDriverState *to)
{
    BdrvChild *to_c;

    if (c->role->stay_at_node) {
        return false;
    }

3525 3526 3527 3528 3529 3530 3531 3532 3533 3534 3535 3536 3537 3538 3539 3540 3541 3542 3543 3544 3545 3546 3547 3548 3549 3550 3551 3552 3553 3554 3555 3556 3557
    /* If the child @c belongs to the BDS @to, replacing the current
     * c->bs by @to would mean to create a loop.
     *
     * Such a case occurs when appending a BDS to a backing chain.
     * For instance, imagine the following chain:
     *
     *   guest device -> node A -> further backing chain...
     *
     * Now we create a new BDS B which we want to put on top of this
     * chain, so we first attach A as its backing node:
     *
     *                   node B
     *                     |
     *                     v
     *   guest device -> node A -> further backing chain...
     *
     * Finally we want to replace A by B.  When doing that, we want to
     * replace all pointers to A by pointers to B -- except for the
     * pointer from B because (1) that would create a loop, and (2)
     * that pointer should simply stay intact:
     *
     *   guest device -> node B
     *                     |
     *                     v
     *                   node A -> further backing chain...
     *
     * In general, when replacing a node A (c->bs) by a node B (@to),
     * if A is a child of B, that means we cannot replace A by B there
     * because that would create a loop.  Silently detaching A from B
     * is also not really an option.  So overall just leaving A in
     * place there is the most sensible choice. */
    QLIST_FOREACH(to_c, &to->children, next) {
        if (to_c == c) {
3558 3559 3560 3561 3562 3563 3564
            return false;
        }
    }

    return true;
}

3565 3566
void bdrv_replace_node(BlockDriverState *from, BlockDriverState *to,
                       Error **errp)
3567
{
3568
    BdrvChild *c, *next;
3569 3570 3571 3572 3573
    GSList *list = NULL, *p;
    uint64_t old_perm, old_shared;
    uint64_t perm = 0, shared = BLK_PERM_ALL;
    int ret;

3574 3575
    assert(!atomic_read(&from->in_flight));
    assert(!atomic_read(&to->in_flight));
3576

3577 3578 3579
    /* Make sure that @from doesn't go away until we have successfully attached
     * all of its parents to @to. */
    bdrv_ref(from);
3580

3581
    /* Put all parents into @list and calculate their cumulative permissions */
3582
    QLIST_FOREACH_SAFE(c, &from->parents, next_parent, next) {
3583
        assert(c->bs == from);
3584
        if (!should_update_child(c, to)) {
3585 3586
            continue;
        }
3587 3588 3589 3590 3591 3592 3593
        list = g_slist_prepend(list, c);
        perm |= c->perm;
        shared &= c->shared_perm;
    }

    /* Check whether the required permissions can be granted on @to, ignoring
     * all BdrvChild in @list so that they can't block themselves. */
3594
    ret = bdrv_check_update_perm(to, NULL, perm, shared, list, errp);
3595 3596 3597 3598 3599 3600 3601 3602 3603 3604
    if (ret < 0) {
        bdrv_abort_perm_update(to);
        goto out;
    }

    /* Now actually perform the change. We performed the permission check for
     * all elements of @list at once, so set the permissions all at once at the
     * very end. */
    for (p = list; p != NULL; p = p->next) {
        c = p->data;
3605

3606
        bdrv_ref(to);
3607
        bdrv_replace_child_noperm(c, to);
3608 3609
        bdrv_unref(from);
    }
3610 3611 3612 3613 3614 3615 3616

    bdrv_get_cumulative_perm(to, &old_perm, &old_shared);
    bdrv_set_perm(to, old_perm | perm, old_shared | shared);

out:
    g_slist_free(list);
    bdrv_unref(from);
3617 3618
}

3619 3620 3621 3622 3623 3624 3625
/*
 * Add new bs contents at the top of an image chain while the chain is
 * live, while keeping required fields on the top layer.
 *
 * This will modify the BlockDriverState fields, and swap contents
 * between bs_new and bs_top. Both bs_new and bs_top are modified.
 *
3626
 * bs_new must not be attached to a BlockBackend.
3627 3628
 *
 * This function does not create any image files.
3629 3630 3631 3632 3633
 *
 * bdrv_append() takes ownership of a bs_new reference and unrefs it because
 * that's what the callers commonly need. bs_new will be referenced by the old
 * parents of bs_top after bdrv_append() returns. If the caller needs to keep a
 * reference of its own, it must call bdrv_ref().
3634
 */
3635 3636
void bdrv_append(BlockDriverState *bs_new, BlockDriverState *bs_top,
                 Error **errp)
3637
{
3638 3639 3640 3641 3642 3643 3644
    Error *local_err = NULL;

    bdrv_set_backing_hd(bs_new, bs_top, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        goto out;
    }
3645

3646
    bdrv_replace_node(bs_top, bs_new, &local_err);
3647 3648 3649 3650 3651
    if (local_err) {
        error_propagate(errp, local_err);
        bdrv_set_backing_hd(bs_new, NULL, &error_abort);
        goto out;
    }
3652

3653 3654
    /* bs_new is now referenced by its new parents, we don't need the
     * additional reference any more. */
3655
out:
3656
    bdrv_unref(bs_new);
3657 3658
}

F
Fam Zheng 已提交
3659
static void bdrv_delete(BlockDriverState *bs)
B
bellard 已提交
3660
{
3661
    assert(!bs->job);
3662
    assert(bdrv_op_blocker_is_empty(bs));
F
Fam Zheng 已提交
3663
    assert(!bs->refcnt);
3664

3665 3666
    bdrv_close(bs);

3667
    /* remove from list, if necessary */
K
Kevin Wolf 已提交
3668 3669 3670
    if (bs->node_name[0] != '\0') {
        QTAILQ_REMOVE(&graph_bdrv_states, bs, node_list);
    }
3671 3672
    QTAILQ_REMOVE(&all_bdrv_states, bs, bs_list);

3673
    g_free(bs);
B
bellard 已提交
3674 3675
}

A
aliguori 已提交
3676 3677 3678
/*
 * Run consistency checks on an image
 *
3679
 * Returns 0 if the check could be completed (it doesn't mean that the image is
3680
 * free of errors) or -errno when an internal error occurred. The results of the
3681
 * check are stored in res.
A
aliguori 已提交
3682
 */
3683 3684
static int coroutine_fn bdrv_co_check(BlockDriverState *bs,
                                      BdrvCheckResult *res, BdrvCheckMode fix)
A
aliguori 已提交
3685
{
3686 3687 3688
    if (bs->drv == NULL) {
        return -ENOMEDIUM;
    }
3689
    if (bs->drv->bdrv_co_check == NULL) {
A
aliguori 已提交
3690 3691 3692
        return -ENOTSUP;
    }

3693
    memset(res, 0, sizeof(*res));
3694 3695 3696 3697 3698 3699 3700 3701 3702 3703 3704 3705 3706 3707 3708 3709 3710 3711 3712 3713 3714 3715 3716 3717 3718 3719 3720 3721 3722 3723 3724 3725 3726 3727 3728 3729 3730
    return bs->drv->bdrv_co_check(bs, res, fix);
}

typedef struct CheckCo {
    BlockDriverState *bs;
    BdrvCheckResult *res;
    BdrvCheckMode fix;
    int ret;
} CheckCo;

static void bdrv_check_co_entry(void *opaque)
{
    CheckCo *cco = opaque;
    cco->ret = bdrv_co_check(cco->bs, cco->res, cco->fix);
}

int bdrv_check(BlockDriverState *bs,
               BdrvCheckResult *res, BdrvCheckMode fix)
{
    Coroutine *co;
    CheckCo cco = {
        .bs = bs,
        .res = res,
        .ret = -EINPROGRESS,
        .fix = fix,
    };

    if (qemu_in_coroutine()) {
        /* Fast-path if already in coroutine context */
        bdrv_check_co_entry(&cco);
    } else {
        co = qemu_coroutine_create(bdrv_check_co_entry, &cco);
        qemu_coroutine_enter(co);
        BDRV_POLL_WHILE(bs, cco.ret == -EINPROGRESS);
    }

    return cco.ret;
A
aliguori 已提交
3731 3732
}

K
Kevin Wolf 已提交
3733 3734 3735 3736 3737 3738 3739 3740 3741 3742 3743 3744
/*
 * Return values:
 * 0        - success
 * -EINVAL  - backing format specified, but no file
 * -ENOSPC  - can't update the backing file because no space is left in the
 *            image file header
 * -ENOTSUP - format driver doesn't support changing the backing file
 */
int bdrv_change_backing_file(BlockDriverState *bs,
    const char *backing_file, const char *backing_fmt)
{
    BlockDriver *drv = bs->drv;
3745
    int ret;
K
Kevin Wolf 已提交
3746

M
Max Reitz 已提交
3747 3748 3749 3750
    if (!drv) {
        return -ENOMEDIUM;
    }

3751 3752 3753 3754 3755
    /* Backing file format doesn't make sense without a backing file */
    if (backing_fmt && !backing_file) {
        return -EINVAL;
    }

K
Kevin Wolf 已提交
3756
    if (drv->bdrv_change_backing_file != NULL) {
3757
        ret = drv->bdrv_change_backing_file(bs, backing_file, backing_fmt);
K
Kevin Wolf 已提交
3758
    } else {
3759
        ret = -ENOTSUP;
K
Kevin Wolf 已提交
3760
    }
3761 3762 3763 3764 3765 3766

    if (ret == 0) {
        pstrcpy(bs->backing_file, sizeof(bs->backing_file), backing_file ?: "");
        pstrcpy(bs->backing_format, sizeof(bs->backing_format), backing_fmt ?: "");
    }
    return ret;
K
Kevin Wolf 已提交
3767 3768
}

3769 3770 3771 3772 3773 3774 3775
/*
 * Finds the image layer in the chain that has 'bs' as its backing file.
 *
 * active is the current topmost image.
 *
 * Returns NULL if bs is not found in active's image chain,
 * or if active == bs.
3776 3777
 *
 * Returns the bottommost base image if bs == NULL.
3778 3779 3780 3781
 */
BlockDriverState *bdrv_find_overlay(BlockDriverState *active,
                                    BlockDriverState *bs)
{
3782 3783
    while (active && bs != backing_bs(active)) {
        active = backing_bs(active);
3784 3785
    }

3786 3787
    return active;
}
3788

3789 3790 3791 3792
/* Given a BDS, searches for the base layer. */
BlockDriverState *bdrv_find_base(BlockDriverState *bs)
{
    return bdrv_find_overlay(bs, NULL);
3793 3794 3795 3796 3797 3798 3799 3800 3801 3802 3803 3804 3805 3806 3807 3808 3809 3810 3811 3812 3813 3814 3815 3816
}

/*
 * Drops images above 'base' up to and including 'top', and sets the image
 * above 'top' to have base as its backing file.
 *
 * Requires that the overlay to 'top' is opened r/w, so that the backing file
 * information in 'bs' can be properly updated.
 *
 * E.g., this will convert the following chain:
 * bottom <- base <- intermediate <- top <- active
 *
 * to
 *
 * bottom <- base <- active
 *
 * It is allowed for bottom==base, in which case it converts:
 *
 * base <- intermediate <- top <- active
 *
 * to
 *
 * base <- active
 *
3817 3818 3819
 * If backing_file_str is non-NULL, it will be used when modifying top's
 * overlay image metadata.
 *
3820 3821 3822 3823
 * Error conditions:
 *  if active == top, that is considered an error
 *
 */
K
Kevin Wolf 已提交
3824 3825
int bdrv_drop_intermediate(BlockDriverState *top, BlockDriverState *base,
                           const char *backing_file_str)
3826
{
3827
    BdrvChild *c, *next;
3828
    Error *local_err = NULL;
3829 3830
    int ret = -EIO;

3831 3832
    bdrv_ref(top);

3833 3834 3835 3836
    if (!top->drv || !base->drv) {
        goto exit;
    }

3837 3838
    /* Make sure that base is in the backing chain of top */
    if (!bdrv_chain_contains(top, base)) {
3839 3840 3841 3842
        goto exit;
    }

    /* success - we can delete the intermediate states, and link top->base */
K
Kevin Wolf 已提交
3843 3844
    /* TODO Check graph modification op blockers (BLK_PERM_GRAPH_MOD) once
     * we've figured out how they should work. */
3845 3846 3847 3848 3849 3850 3851
    backing_file_str = backing_file_str ? backing_file_str : base->filename;

    QLIST_FOREACH_SAFE(c, &top->parents, next_parent, next) {
        /* Check whether we are allowed to switch c from top to base */
        GSList *ignore_children = g_slist_prepend(NULL, c);
        bdrv_check_update_perm(base, NULL, c->perm, c->shared_perm,
                               ignore_children, &local_err);
3852
        g_slist_free(ignore_children);
3853 3854 3855
        if (local_err) {
            ret = -EPERM;
            error_report_err(local_err);
3856 3857
            goto exit;
        }
3858

3859 3860 3861 3862 3863 3864 3865 3866 3867 3868 3869 3870 3871 3872 3873 3874
        /* If so, update the backing file path in the image file */
        if (c->role->update_filename) {
            ret = c->role->update_filename(c, base, backing_file_str,
                                           &local_err);
            if (ret < 0) {
                bdrv_abort_perm_update(base);
                error_report_err(local_err);
                goto exit;
            }
        }

        /* Do the actual switch in the in-memory graph.
         * Completes bdrv_check_update_perm() transaction internally. */
        bdrv_ref(base);
        bdrv_replace_child(c, base);
        bdrv_unref(top);
3875
    }
3876 3877 3878

    ret = 0;
exit:
3879
    bdrv_unref(top);
3880 3881 3882
    return ret;
}

3883 3884 3885 3886 3887
/**
 * Length of a allocated file in bytes. Sparse files are counted by actual
 * allocated space. Return < 0 if error or unknown.
 */
int64_t bdrv_get_allocated_file_size(BlockDriverState *bs)
3888
{
3889 3890 3891
    BlockDriver *drv = bs->drv;
    if (!drv) {
        return -ENOMEDIUM;
3892
    }
3893 3894 3895 3896
    if (drv->bdrv_get_allocated_file_size) {
        return drv->bdrv_get_allocated_file_size(bs);
    }
    if (bs->file) {
K
Kevin Wolf 已提交
3897
        return bdrv_get_allocated_file_size(bs->file->bs);
3898
    }
3899
    return -ENOTSUP;
3900
}
3901

S
Stefan Hajnoczi 已提交
3902 3903 3904 3905 3906 3907 3908 3909 3910 3911 3912 3913 3914 3915 3916 3917 3918 3919 3920 3921 3922 3923 3924 3925 3926 3927 3928 3929 3930 3931 3932 3933 3934 3935 3936
/*
 * bdrv_measure:
 * @drv: Format driver
 * @opts: Creation options for new image
 * @in_bs: Existing image containing data for new image (may be NULL)
 * @errp: Error object
 * Returns: A #BlockMeasureInfo (free using qapi_free_BlockMeasureInfo())
 *          or NULL on error
 *
 * Calculate file size required to create a new image.
 *
 * If @in_bs is given then space for allocated clusters and zero clusters
 * from that image are included in the calculation.  If @opts contains a
 * backing file that is shared by @in_bs then backing clusters may be omitted
 * from the calculation.
 *
 * If @in_bs is NULL then the calculation includes no allocated clusters
 * unless a preallocation option is given in @opts.
 *
 * Note that @in_bs may use a different BlockDriver from @drv.
 *
 * If an error occurs the @errp pointer is set.
 */
BlockMeasureInfo *bdrv_measure(BlockDriver *drv, QemuOpts *opts,
                               BlockDriverState *in_bs, Error **errp)
{
    if (!drv->bdrv_measure) {
        error_setg(errp, "Block driver '%s' does not support size measurement",
                   drv->format_name);
        return NULL;
    }

    return drv->bdrv_measure(opts, in_bs, errp);
}

3937 3938
/**
 * Return number of sectors on success, -errno on error.
3939
 */
3940
int64_t bdrv_nb_sectors(BlockDriverState *bs)
3941
{
3942
    BlockDriver *drv = bs->drv;
3943

3944 3945
    if (!drv)
        return -ENOMEDIUM;
3946

3947 3948 3949 3950
    if (drv->has_variable_length) {
        int ret = refresh_total_sectors(bs, bs->total_sectors);
        if (ret < 0) {
            return ret;
3951 3952
        }
    }
3953
    return bs->total_sectors;
3954
}
B
bellard 已提交
3955

3956 3957 3958
/**
 * Return length in bytes on success, -errno on error.
 * The length is always a multiple of BDRV_SECTOR_SIZE.
3959
 */
3960
int64_t bdrv_getlength(BlockDriverState *bs)
3961
{
3962
    int64_t ret = bdrv_nb_sectors(bs);
3963

3964
    ret = ret > INT64_MAX / BDRV_SECTOR_SIZE ? -EFBIG : ret;
3965
    return ret < 0 ? ret : ret * BDRV_SECTOR_SIZE;
B
bellard 已提交
3966 3967
}

3968 3969
/* return 0 as number of sectors if no device present or error */
void bdrv_get_geometry(BlockDriverState *bs, uint64_t *nb_sectors_ptr)
3970
{
3971
    int64_t nb_sectors = bdrv_nb_sectors(bs);
3972

3973
    *nb_sectors_ptr = nb_sectors < 0 ? 0 : nb_sectors;
3974 3975
}

3976
bool bdrv_is_sg(BlockDriverState *bs)
K
Kevin Wolf 已提交
3977
{
3978
    return bs->sg;
K
Kevin Wolf 已提交
3979 3980
}

3981
bool bdrv_is_encrypted(BlockDriverState *bs)
F
Fam Zheng 已提交
3982
{
3983
    if (bs->backing && bs->backing->bs->encrypted) {
3984
        return true;
3985
    }
3986
    return bs->encrypted;
F
Fam Zheng 已提交
3987 3988
}

3989
const char *bdrv_get_format_name(BlockDriverState *bs)
K
Kevin Wolf 已提交
3990
{
3991
    return bs->drv ? bs->drv->format_name : NULL;
K
Kevin Wolf 已提交
3992 3993
}

3994
static int qsort_strcmp(const void *a, const void *b)
K
Kevin Wolf 已提交
3995
{
3996
    return strcmp(*(char *const *)a, *(char *const *)b);
K
Kevin Wolf 已提交
3997 3998
}

3999 4000
void bdrv_iterate_format(void (*it)(void *opaque, const char *name),
                         void *opaque)
K
Kevin Wolf 已提交
4001
{
4002 4003 4004 4005
    BlockDriver *drv;
    int count = 0;
    int i;
    const char **formats = NULL;
K
Kevin Wolf 已提交
4006

4007 4008 4009 4010 4011 4012 4013
    QLIST_FOREACH(drv, &bdrv_drivers, list) {
        if (drv->format_name) {
            bool found = false;
            int i = count;
            while (formats && i && !found) {
                found = !strcmp(formats[--i], drv->format_name);
            }
4014

4015 4016 4017 4018
            if (!found) {
                formats = g_renew(const char *, formats, count + 1);
                formats[count++] = drv->format_name;
            }
4019
        }
4020
    }
4021

4022 4023 4024 4025 4026 4027 4028 4029 4030 4031 4032 4033 4034 4035 4036 4037 4038 4039
    for (i = 0; i < (int)ARRAY_SIZE(block_driver_modules); i++) {
        const char *format_name = block_driver_modules[i].format_name;

        if (format_name) {
            bool found = false;
            int j = count;

            while (formats && j && !found) {
                found = !strcmp(formats[--j], format_name);
            }

            if (!found) {
                formats = g_renew(const char *, formats, count + 1);
                formats[count++] = format_name;
            }
        }
    }

4040
    qsort(formats, count, sizeof(formats[0]), qsort_strcmp);
K
Kevin Wolf 已提交
4041

4042 4043 4044
    for (i = 0; i < count; i++) {
        it(opaque, formats[i]);
    }
K
Kevin Wolf 已提交
4045

4046 4047
    g_free(formats);
}
K
Kevin Wolf 已提交
4048

4049 4050 4051 4052
/* This function is to find a node in the bs graph */
BlockDriverState *bdrv_find_node(const char *node_name)
{
    BlockDriverState *bs;
4053

4054
    assert(node_name);
K
Kevin Wolf 已提交
4055

4056 4057 4058
    QTAILQ_FOREACH(bs, &graph_bdrv_states, node_list) {
        if (!strcmp(node_name, bs->node_name)) {
            return bs;
K
Kevin Wolf 已提交
4059 4060
        }
    }
4061
    return NULL;
K
Kevin Wolf 已提交
4062 4063
}

4064 4065
/* Put this QMP function here so it can access the static graph_bdrv_states. */
BlockDeviceInfoList *bdrv_named_nodes_list(Error **errp)
K
Kevin Wolf 已提交
4066
{
4067 4068
    BlockDeviceInfoList *list, *entry;
    BlockDriverState *bs;
K
Kevin Wolf 已提交
4069

4070 4071
    list = NULL;
    QTAILQ_FOREACH(bs, &graph_bdrv_states, node_list) {
4072
        BlockDeviceInfo *info = bdrv_block_device_info(NULL, bs, errp);
4073 4074 4075
        if (!info) {
            qapi_free_BlockDeviceInfoList(list);
            return NULL;
4076
        }
4077 4078 4079 4080
        entry = g_malloc0(sizeof(*entry));
        entry->value = info;
        entry->next = list;
        list = entry;
4081 4082
    }

4083 4084
    return list;
}
K
Kevin Wolf 已提交
4085

4086 4087 4088 4089 4090 4091
BlockDriverState *bdrv_lookup_bs(const char *device,
                                 const char *node_name,
                                 Error **errp)
{
    BlockBackend *blk;
    BlockDriverState *bs;
K
Kevin Wolf 已提交
4092

4093 4094
    if (device) {
        blk = blk_by_name(device);
K
Kevin Wolf 已提交
4095

4096
        if (blk) {
4097 4098
            bs = blk_bs(blk);
            if (!bs) {
M
Max Reitz 已提交
4099 4100 4101
                error_setg(errp, "Device '%s' has no medium", device);
            }

4102
            return bs;
4103 4104
        }
    }
K
Kevin Wolf 已提交
4105

4106 4107
    if (node_name) {
        bs = bdrv_find_node(node_name);
4108

4109 4110 4111
        if (bs) {
            return bs;
        }
K
Kevin Wolf 已提交
4112 4113
    }

4114 4115 4116 4117
    error_setg(errp, "Cannot find device=%s nor node_name=%s",
                     device ? device : "",
                     node_name ? node_name : "");
    return NULL;
K
Kevin Wolf 已提交
4118 4119
}

4120 4121 4122
/* If 'base' is in the same chain as 'top', return true. Otherwise,
 * return false.  If either argument is NULL, return false. */
bool bdrv_chain_contains(BlockDriverState *top, BlockDriverState *base)
B
bellard 已提交
4123
{
4124
    while (top && top != base) {
4125
        top = backing_bs(top);
F
Fam Zheng 已提交
4126
    }
4127 4128

    return top != NULL;
F
Fam Zheng 已提交
4129 4130
}

4131
BlockDriverState *bdrv_next_node(BlockDriverState *bs)
F
Fam Zheng 已提交
4132
{
4133 4134
    if (!bs) {
        return QTAILQ_FIRST(&graph_bdrv_states);
F
Fam Zheng 已提交
4135
    }
4136
    return QTAILQ_NEXT(bs, node_list);
B
bellard 已提交
4137 4138
}

4139 4140 4141 4142 4143 4144 4145 4146
BlockDriverState *bdrv_next_all_states(BlockDriverState *bs)
{
    if (!bs) {
        return QTAILQ_FIRST(&all_bdrv_states);
    }
    return QTAILQ_NEXT(bs, bs_list);
}

4147
const char *bdrv_get_node_name(const BlockDriverState *bs)
B
bellard 已提交
4148
{
4149
    return bs->node_name;
4150 4151
}

K
Kevin Wolf 已提交
4152
const char *bdrv_get_parent_name(const BlockDriverState *bs)
4153 4154 4155 4156 4157 4158 4159 4160 4161 4162 4163 4164 4165 4166 4167 4168 4169
{
    BdrvChild *c;
    const char *name;

    /* If multiple parents have a name, just pick the first one. */
    QLIST_FOREACH(c, &bs->parents, next_parent) {
        if (c->role->get_name) {
            name = c->role->get_name(c);
            if (name && *name) {
                return name;
            }
        }
    }

    return NULL;
}

4170 4171
/* TODO check what callers really want: bs->node_name or blk_name() */
const char *bdrv_get_device_name(const BlockDriverState *bs)
4172
{
4173
    return bdrv_get_parent_name(bs) ?: "";
4174
}
B
bellard 已提交
4175

4176 4177 4178 4179 4180
/* This can be used to identify nodes that might not have a device
 * name associated. Since node and device names live in the same
 * namespace, the result is unambiguous. The exception is if both are
 * absent, then this returns an empty (non-null) string. */
const char *bdrv_get_device_or_node_name(const BlockDriverState *bs)
4181
{
4182
    return bdrv_get_parent_name(bs) ?: bs->node_name;
4183 4184
}

4185
int bdrv_get_flags(BlockDriverState *bs)
4186
{
4187
    return bs->open_flags;
4188 4189
}

4190
int bdrv_has_zero_init_1(BlockDriverState *bs)
4191
{
4192
    return 1;
4193 4194
}

4195
int bdrv_has_zero_init(BlockDriverState *bs)
4196
{
M
Max Reitz 已提交
4197 4198 4199
    if (!bs->drv) {
        return 0;
    }
4200

4201 4202
    /* If BS is a copy on write image, it is initialized to
       the contents of the base image, which may not be zeroes.  */
4203
    if (bs->backing) {
4204 4205 4206 4207
        return 0;
    }
    if (bs->drv->bdrv_has_zero_init) {
        return bs->drv->bdrv_has_zero_init(bs);
4208
    }
4209 4210 4211
    if (bs->file && bs->drv->is_filter) {
        return bdrv_has_zero_init(bs->file->bs);
    }
4212 4213 4214

    /* safe default */
    return 0;
4215 4216
}

4217
bool bdrv_unallocated_blocks_are_zero(BlockDriverState *bs)
4218
{
4219
    BlockDriverInfo bdi;
4220

4221
    if (bs->backing) {
4222 4223 4224 4225 4226
        return false;
    }

    if (bdrv_get_info(bs, &bdi) == 0) {
        return bdi.unallocated_blocks_are_zero;
4227 4228
    }

4229
    return false;
4230 4231
}

4232
bool bdrv_can_write_zeroes_with_unmap(BlockDriverState *bs)
4233
{
4234
    if (!(bs->open_flags & BDRV_O_UNMAP)) {
4235 4236
        return false;
    }
4237

4238
    return bs->supported_zero_flags & BDRV_REQ_MAY_UNMAP;
4239 4240
}

4241
const char *bdrv_get_encrypted_filename(BlockDriverState *bs)
4242
{
4243
    if (bs->backing && bs->backing->bs->encrypted)
4244 4245 4246 4247 4248
        return bs->backing_file;
    else if (bs->encrypted)
        return bs->filename;
    else
        return NULL;
4249 4250
}

4251 4252
void bdrv_get_backing_filename(BlockDriverState *bs,
                               char *filename, int filename_size)
4253
{
4254 4255
    pstrcpy(filename, filename_size, bs->backing_file);
}
K
Kevin Wolf 已提交
4256

4257 4258 4259
int bdrv_get_info(BlockDriverState *bs, BlockDriverInfo *bdi)
{
    BlockDriver *drv = bs->drv;
4260 4261
    /* if bs->drv == NULL, bs is closed, so there's nothing to do here */
    if (!drv) {
4262
        return -ENOMEDIUM;
4263 4264 4265 4266 4267
    }
    if (!drv->bdrv_get_info) {
        if (bs->file && drv->is_filter) {
            return bdrv_get_info(bs->file->bs, bdi);
        }
4268
        return -ENOTSUP;
4269
    }
4270 4271 4272
    memset(bdi, 0, sizeof(*bdi));
    return drv->bdrv_get_info(bs, bdi);
}
4273

4274 4275 4276 4277 4278 4279 4280
ImageInfoSpecific *bdrv_get_specific_info(BlockDriverState *bs)
{
    BlockDriver *drv = bs->drv;
    if (drv && drv->bdrv_get_specific_info) {
        return drv->bdrv_get_specific_info(bs);
    }
    return NULL;
4281 4282
}

4283
void bdrv_debug_event(BlockDriverState *bs, BlkdebugEvent event)
4284
{
4285 4286 4287
    if (!bs || !bs->drv || !bs->drv->bdrv_debug_event) {
        return;
    }
4288

4289
    bs->drv->bdrv_debug_event(bs, event);
4290 4291
}

4292 4293
int bdrv_debug_breakpoint(BlockDriverState *bs, const char *event,
                          const char *tag)
4294
{
4295
    while (bs && bs->drv && !bs->drv->bdrv_debug_breakpoint) {
K
Kevin Wolf 已提交
4296
        bs = bs->file ? bs->file->bs : NULL;
4297
    }
4298

4299 4300 4301
    if (bs && bs->drv && bs->drv->bdrv_debug_breakpoint) {
        return bs->drv->bdrv_debug_breakpoint(bs, event, tag);
    }
4302

4303
    return -ENOTSUP;
4304 4305
}

4306
int bdrv_debug_remove_breakpoint(BlockDriverState *bs, const char *tag)
B
bellard 已提交
4307
{
4308
    while (bs && bs->drv && !bs->drv->bdrv_debug_remove_breakpoint) {
K
Kevin Wolf 已提交
4309
        bs = bs->file ? bs->file->bs : NULL;
4310
    }
4311

4312 4313 4314 4315 4316
    if (bs && bs->drv && bs->drv->bdrv_debug_remove_breakpoint) {
        return bs->drv->bdrv_debug_remove_breakpoint(bs, tag);
    }

    return -ENOTSUP;
4317 4318
}

4319
int bdrv_debug_resume(BlockDriverState *bs, const char *tag)
4320
{
4321
    while (bs && (!bs->drv || !bs->drv->bdrv_debug_resume)) {
K
Kevin Wolf 已提交
4322
        bs = bs->file ? bs->file->bs : NULL;
4323
    }
4324

4325 4326 4327
    if (bs && bs->drv && bs->drv->bdrv_debug_resume) {
        return bs->drv->bdrv_debug_resume(bs, tag);
    }
4328

4329
    return -ENOTSUP;
4330 4331
}

4332
bool bdrv_debug_is_suspended(BlockDriverState *bs, const char *tag)
4333
{
4334
    while (bs && bs->drv && !bs->drv->bdrv_debug_is_suspended) {
K
Kevin Wolf 已提交
4335
        bs = bs->file ? bs->file->bs : NULL;
4336
    }
B
bellard 已提交
4337

4338 4339 4340
    if (bs && bs->drv && bs->drv->bdrv_debug_is_suspended) {
        return bs->drv->bdrv_debug_is_suspended(bs, tag);
    }
4341

4342 4343
    return false;
}
4344

4345 4346 4347 4348 4349 4350
/* backing_file can either be relative, or absolute, or a protocol.  If it is
 * relative, it must be relative to the chain.  So, passing in bs->filename
 * from a BDS as backing_file should not be done, as that may be relative to
 * the CWD rather than the chain. */
BlockDriverState *bdrv_find_backing_image(BlockDriverState *bs,
        const char *backing_file)
4351
{
4352 4353 4354 4355 4356 4357
    char *filename_full = NULL;
    char *backing_file_full = NULL;
    char *filename_tmp = NULL;
    int is_protocol = 0;
    BlockDriverState *curr_bs = NULL;
    BlockDriverState *retval = NULL;
4358
    Error *local_error = NULL;
4359

4360 4361
    if (!bs || !bs->drv || !backing_file) {
        return NULL;
4362 4363
    }

4364 4365 4366
    filename_full     = g_malloc(PATH_MAX);
    backing_file_full = g_malloc(PATH_MAX);
    filename_tmp      = g_malloc(PATH_MAX);
4367

4368
    is_protocol = path_has_protocol(backing_file);
4369

4370
    for (curr_bs = bs; curr_bs->backing; curr_bs = curr_bs->backing->bs) {
4371

4372 4373 4374 4375
        /* If either of the filename paths is actually a protocol, then
         * compare unmodified paths; otherwise make paths relative */
        if (is_protocol || path_has_protocol(curr_bs->backing_file)) {
            if (strcmp(backing_file, curr_bs->backing_file) == 0) {
4376
                retval = curr_bs->backing->bs;
4377 4378
                break;
            }
4379 4380 4381 4382 4383 4384 4385 4386 4387 4388 4389 4390
            /* Also check against the full backing filename for the image */
            bdrv_get_full_backing_filename(curr_bs, backing_file_full, PATH_MAX,
                                           &local_error);
            if (local_error == NULL) {
                if (strcmp(backing_file, backing_file_full) == 0) {
                    retval = curr_bs->backing->bs;
                    break;
                }
            } else {
                error_free(local_error);
                local_error = NULL;
            }
4391 4392 4393 4394 4395
        } else {
            /* If not an absolute filename path, make it relative to the current
             * image's filename path */
            path_combine(filename_tmp, PATH_MAX, curr_bs->filename,
                         backing_file);
4396

4397 4398 4399 4400
            /* We are going to compare absolute pathnames */
            if (!realpath(filename_tmp, filename_full)) {
                continue;
            }
P
Paolo Bonzini 已提交
4401

4402 4403 4404 4405
            /* We need to make sure the backing filename we are comparing against
             * is relative to the current image filename (or absolute) */
            path_combine(filename_tmp, PATH_MAX, curr_bs->filename,
                         curr_bs->backing_file);
P
Paolo Bonzini 已提交
4406

4407 4408 4409
            if (!realpath(filename_tmp, backing_file_full)) {
                continue;
            }
K
Kevin Wolf 已提交
4410

4411
            if (strcmp(backing_file_full, filename_full) == 0) {
4412
                retval = curr_bs->backing->bs;
4413 4414 4415
                break;
            }
        }
K
Kevin Wolf 已提交
4416 4417
    }

4418 4419 4420 4421 4422 4423 4424 4425 4426 4427
    g_free(filename_full);
    g_free(backing_file_full);
    g_free(filename_tmp);
    return retval;
}

void bdrv_init(void)
{
    module_call_init(MODULE_INIT_BLOCK);
}
4428

4429 4430 4431 4432
void bdrv_init_with_whitelist(void)
{
    use_bdrv_whitelist = 1;
    bdrv_init();
P
Paolo Bonzini 已提交
4433 4434
}

4435 4436
static void coroutine_fn bdrv_co_invalidate_cache(BlockDriverState *bs,
                                                  Error **errp)
4437
{
4438
    BdrvChild *child, *parent;
4439
    uint64_t perm, shared_perm;
4440 4441
    Error *local_err = NULL;
    int ret;
4442
    BdrvDirtyBitmap *bm;
4443

4444 4445 4446 4447
    if (!bs->drv)  {
        return;
    }

4448
    if (!(bs->open_flags & BDRV_O_INACTIVE)) {
4449 4450 4451
        return;
    }

4452
    QLIST_FOREACH(child, &bs->children, next) {
4453
        bdrv_co_invalidate_cache(child->bs, &local_err);
F
Fam Zheng 已提交
4454 4455 4456 4457
        if (local_err) {
            error_propagate(errp, local_err);
            return;
        }
4458
    }
F
Fam Zheng 已提交
4459

4460 4461 4462 4463 4464 4465 4466 4467 4468 4469 4470 4471 4472
    /*
     * Update permissions, they may differ for inactive nodes.
     *
     * Note that the required permissions of inactive images are always a
     * subset of the permissions required after activating the image. This
     * allows us to just get the permissions upfront without restricting
     * drv->bdrv_invalidate_cache().
     *
     * It also means that in error cases, we don't have to try and revert to
     * the old permissions (which is an operation that could fail, too). We can
     * just keep the extended permissions for the next time that an activation
     * of the image is tried.
     */
4473
    bs->open_flags &= ~BDRV_O_INACTIVE;
4474 4475 4476 4477 4478 4479 4480 4481 4482
    bdrv_get_cumulative_perm(bs, &perm, &shared_perm);
    ret = bdrv_check_perm(bs, NULL, perm, shared_perm, NULL, &local_err);
    if (ret < 0) {
        bs->open_flags |= BDRV_O_INACTIVE;
        error_propagate(errp, local_err);
        return;
    }
    bdrv_set_perm(bs, perm, shared_perm);

4483 4484
    if (bs->drv->bdrv_co_invalidate_cache) {
        bs->drv->bdrv_co_invalidate_cache(bs, &local_err);
F
Fam Zheng 已提交
4485 4486 4487 4488 4489
        if (local_err) {
            bs->open_flags |= BDRV_O_INACTIVE;
            error_propagate(errp, local_err);
            return;
        }
4490
    }
4491

4492 4493 4494 4495 4496 4497
    for (bm = bdrv_dirty_bitmap_next(bs, NULL); bm;
         bm = bdrv_dirty_bitmap_next(bs, bm))
    {
        bdrv_dirty_bitmap_set_migration(bm, false);
    }

4498 4499
    ret = refresh_total_sectors(bs, bs->total_sectors);
    if (ret < 0) {
4500
        bs->open_flags |= BDRV_O_INACTIVE;
4501 4502 4503
        error_setg_errno(errp, -ret, "Could not refresh total sector count");
        return;
    }
4504 4505 4506 4507 4508 4509 4510 4511 4512 4513

    QLIST_FOREACH(parent, &bs->parents, next_parent) {
        if (parent->role->activate) {
            parent->role->activate(parent, &local_err);
            if (local_err) {
                error_propagate(errp, local_err);
                return;
            }
        }
    }
4514 4515
}

4516 4517 4518 4519 4520 4521 4522 4523 4524 4525 4526 4527 4528 4529 4530 4531 4532 4533 4534 4535 4536 4537 4538 4539 4540 4541 4542 4543 4544 4545 4546 4547
typedef struct InvalidateCacheCo {
    BlockDriverState *bs;
    Error **errp;
    bool done;
} InvalidateCacheCo;

static void coroutine_fn bdrv_invalidate_cache_co_entry(void *opaque)
{
    InvalidateCacheCo *ico = opaque;
    bdrv_co_invalidate_cache(ico->bs, ico->errp);
    ico->done = true;
}

void bdrv_invalidate_cache(BlockDriverState *bs, Error **errp)
{
    Coroutine *co;
    InvalidateCacheCo ico = {
        .bs = bs,
        .done = false,
        .errp = errp
    };

    if (qemu_in_coroutine()) {
        /* Fast-path if already in coroutine context */
        bdrv_invalidate_cache_co_entry(&ico);
    } else {
        co = qemu_coroutine_create(bdrv_invalidate_cache_co_entry, &ico);
        qemu_coroutine_enter(co);
        BDRV_POLL_WHILE(bs, !ico.done);
    }
}

4548
void bdrv_invalidate_cache_all(Error **errp)
4549
{
K
Kevin Wolf 已提交
4550
    BlockDriverState *bs;
4551
    Error *local_err = NULL;
K
Kevin Wolf 已提交
4552
    BdrvNextIterator it;
4553

K
Kevin Wolf 已提交
4554
    for (bs = bdrv_first(&it); bs; bs = bdrv_next(&it)) {
4555 4556 4557
        AioContext *aio_context = bdrv_get_aio_context(bs);

        aio_context_acquire(aio_context);
4558
        bdrv_invalidate_cache(bs, &local_err);
4559
        aio_context_release(aio_context);
4560 4561
        if (local_err) {
            error_propagate(errp, local_err);
4562
            bdrv_next_cleanup(&it);
4563 4564
            return;
        }
4565 4566 4567
    }
}

F
Fam Zheng 已提交
4568 4569
static int bdrv_inactivate_recurse(BlockDriverState *bs,
                                   bool setting_flag)
4570
{
4571
    BdrvChild *child, *parent;
4572 4573
    int ret;

M
Max Reitz 已提交
4574 4575 4576 4577
    if (!bs->drv) {
        return -ENOMEDIUM;
    }

F
Fam Zheng 已提交
4578
    if (!setting_flag && bs->drv->bdrv_inactivate) {
4579 4580 4581 4582 4583 4584
        ret = bs->drv->bdrv_inactivate(bs);
        if (ret < 0) {
            return ret;
        }
    }

4585
    if (setting_flag && !(bs->open_flags & BDRV_O_INACTIVE)) {
4586 4587
        uint64_t perm, shared_perm;

4588 4589 4590 4591 4592 4593 4594 4595
        QLIST_FOREACH(parent, &bs->parents, next_parent) {
            if (parent->role->inactivate) {
                ret = parent->role->inactivate(parent);
                if (ret < 0) {
                    return ret;
                }
            }
        }
4596

4597 4598
        bs->open_flags |= BDRV_O_INACTIVE;

4599 4600
        /* Update permissions, they may differ for inactive nodes */
        bdrv_get_cumulative_perm(bs, &perm, &shared_perm);
4601
        bdrv_check_perm(bs, NULL, perm, shared_perm, NULL, &error_abort);
4602
        bdrv_set_perm(bs, perm, shared_perm);
F
Fam Zheng 已提交
4603
    }
4604 4605 4606 4607 4608 4609 4610 4611

    QLIST_FOREACH(child, &bs->children, next) {
        ret = bdrv_inactivate_recurse(child->bs, setting_flag);
        if (ret < 0) {
            return ret;
        }
    }

4612 4613 4614 4615 4616
    return 0;
}

int bdrv_inactivate_all(void)
{
4617
    BlockDriverState *bs = NULL;
K
Kevin Wolf 已提交
4618
    BdrvNextIterator it;
F
Fam Zheng 已提交
4619 4620
    int ret = 0;
    int pass;
4621
    GSList *aio_ctxs = NULL, *ctx;
4622

K
Kevin Wolf 已提交
4623
    for (bs = bdrv_first(&it); bs; bs = bdrv_next(&it)) {
4624 4625 4626 4627 4628 4629
        AioContext *aio_context = bdrv_get_aio_context(bs);

        if (!g_slist_find(aio_ctxs, aio_context)) {
            aio_ctxs = g_slist_prepend(aio_ctxs, aio_context);
            aio_context_acquire(aio_context);
        }
F
Fam Zheng 已提交
4630
    }
4631

F
Fam Zheng 已提交
4632 4633 4634 4635 4636
    /* We do two passes of inactivation. The first pass calls to drivers'
     * .bdrv_inactivate callbacks recursively so all cache is flushed to disk;
     * the second pass sets the BDRV_O_INACTIVE flag so that no further write
     * is allowed. */
    for (pass = 0; pass < 2; pass++) {
K
Kevin Wolf 已提交
4637
        for (bs = bdrv_first(&it); bs; bs = bdrv_next(&it)) {
F
Fam Zheng 已提交
4638 4639
            ret = bdrv_inactivate_recurse(bs, pass);
            if (ret < 0) {
4640
                bdrv_next_cleanup(&it);
F
Fam Zheng 已提交
4641 4642
                goto out;
            }
4643 4644 4645
        }
    }

F
Fam Zheng 已提交
4646
out:
4647 4648 4649
    for (ctx = aio_ctxs; ctx != NULL; ctx = ctx->next) {
        AioContext *aio_context = ctx->data;
        aio_context_release(aio_context);
F
Fam Zheng 已提交
4650
    }
4651
    g_slist_free(aio_ctxs);
F
Fam Zheng 已提交
4652 4653

    return ret;
4654 4655
}

B
bellard 已提交
4656 4657 4658 4659 4660 4661
/**************************************************************/
/* removable device support */

/**
 * Return TRUE if the media is present
 */
4662
bool bdrv_is_inserted(BlockDriverState *bs)
B
bellard 已提交
4663 4664
{
    BlockDriver *drv = bs->drv;
4665
    BdrvChild *child;
4666

4667 4668 4669
    if (!drv) {
        return false;
    }
4670 4671 4672 4673 4674 4675 4676
    if (drv->bdrv_is_inserted) {
        return drv->bdrv_is_inserted(bs);
    }
    QLIST_FOREACH(child, &bs->children, next) {
        if (!bdrv_is_inserted(child->bs)) {
            return false;
        }
4677
    }
4678
    return true;
B
bellard 已提交
4679 4680 4681 4682 4683
}

/**
 * If eject_flag is TRUE, eject the media. Otherwise, close the tray
 */
4684
void bdrv_eject(BlockDriverState *bs, bool eject_flag)
B
bellard 已提交
4685 4686 4687
{
    BlockDriver *drv = bs->drv;

4688 4689
    if (drv && drv->bdrv_eject) {
        drv->bdrv_eject(bs, eject_flag);
B
bellard 已提交
4690 4691 4692 4693 4694 4695 4696
    }
}

/**
 * Lock or unlock the media (if it is locked, the user won't be able
 * to eject it manually).
 */
4697
void bdrv_lock_medium(BlockDriverState *bs, bool locked)
B
bellard 已提交
4698 4699 4700
{
    BlockDriver *drv = bs->drv;

4701
    trace_bdrv_lock_medium(bs, locked);
S
Stefan Hajnoczi 已提交
4702

4703 4704
    if (drv && drv->bdrv_lock_medium) {
        drv->bdrv_lock_medium(bs, locked);
B
bellard 已提交
4705 4706
    }
}
4707

4708 4709 4710 4711 4712 4713 4714 4715 4716 4717 4718
/* Get a reference to bs */
void bdrv_ref(BlockDriverState *bs)
{
    bs->refcnt++;
}

/* Release a previously grabbed reference to bs.
 * If after releasing, reference count is zero, the BlockDriverState is
 * deleted. */
void bdrv_unref(BlockDriverState *bs)
{
4719 4720 4721
    if (!bs) {
        return;
    }
4722 4723 4724 4725 4726 4727
    assert(bs->refcnt > 0);
    if (--bs->refcnt == 0) {
        bdrv_delete(bs);
    }
}

4728 4729 4730 4731 4732 4733 4734 4735 4736 4737 4738
struct BdrvOpBlocker {
    Error *reason;
    QLIST_ENTRY(BdrvOpBlocker) list;
};

bool bdrv_op_is_blocked(BlockDriverState *bs, BlockOpType op, Error **errp)
{
    BdrvOpBlocker *blocker;
    assert((int) op >= 0 && op < BLOCK_OP_TYPE_MAX);
    if (!QLIST_EMPTY(&bs->op_blockers[op])) {
        blocker = QLIST_FIRST(&bs->op_blockers[op]);
4739 4740 4741
        error_propagate_prepend(errp, error_copy(blocker->reason),
                                "Node '%s' is busy: ",
                                bdrv_get_device_or_node_name(bs));
4742 4743 4744 4745 4746 4747 4748 4749 4750 4751
        return true;
    }
    return false;
}

void bdrv_op_block(BlockDriverState *bs, BlockOpType op, Error *reason)
{
    BdrvOpBlocker *blocker;
    assert((int) op >= 0 && op < BLOCK_OP_TYPE_MAX);

4752
    blocker = g_new0(BdrvOpBlocker, 1);
4753 4754 4755 4756 4757 4758 4759 4760 4761 4762 4763 4764 4765 4766 4767 4768 4769 4770 4771 4772 4773 4774 4775 4776 4777 4778 4779 4780 4781 4782 4783 4784 4785 4786 4787 4788 4789 4790 4791 4792 4793 4794 4795 4796
    blocker->reason = reason;
    QLIST_INSERT_HEAD(&bs->op_blockers[op], blocker, list);
}

void bdrv_op_unblock(BlockDriverState *bs, BlockOpType op, Error *reason)
{
    BdrvOpBlocker *blocker, *next;
    assert((int) op >= 0 && op < BLOCK_OP_TYPE_MAX);
    QLIST_FOREACH_SAFE(blocker, &bs->op_blockers[op], list, next) {
        if (blocker->reason == reason) {
            QLIST_REMOVE(blocker, list);
            g_free(blocker);
        }
    }
}

void bdrv_op_block_all(BlockDriverState *bs, Error *reason)
{
    int i;
    for (i = 0; i < BLOCK_OP_TYPE_MAX; i++) {
        bdrv_op_block(bs, i, reason);
    }
}

void bdrv_op_unblock_all(BlockDriverState *bs, Error *reason)
{
    int i;
    for (i = 0; i < BLOCK_OP_TYPE_MAX; i++) {
        bdrv_op_unblock(bs, i, reason);
    }
}

bool bdrv_op_blocker_is_empty(BlockDriverState *bs)
{
    int i;

    for (i = 0; i < BLOCK_OP_TYPE_MAX; i++) {
        if (!QLIST_EMPTY(&bs->op_blockers[i])) {
            return false;
        }
    }
    return true;
}

4797 4798
void bdrv_img_create(const char *filename, const char *fmt,
                     const char *base_filename, const char *base_fmt,
4799 4800
                     char *options, uint64_t img_size, int flags, bool quiet,
                     Error **errp)
J
Jes Sorensen 已提交
4801
{
4802 4803 4804 4805
    QemuOptsList *create_opts = NULL;
    QemuOpts *opts = NULL;
    const char *backing_fmt, *backing_file;
    int64_t size;
J
Jes Sorensen 已提交
4806
    BlockDriver *drv, *proto_drv;
4807
    Error *local_err = NULL;
J
Jes Sorensen 已提交
4808 4809 4810 4811 4812
    int ret = 0;

    /* Find driver and parse its options */
    drv = bdrv_find_format(fmt);
    if (!drv) {
4813
        error_setg(errp, "Unknown file format '%s'", fmt);
4814
        return;
J
Jes Sorensen 已提交
4815 4816
    }

4817
    proto_drv = bdrv_find_protocol(filename, true, errp);
J
Jes Sorensen 已提交
4818
    if (!proto_drv) {
4819
        return;
J
Jes Sorensen 已提交
4820 4821
    }

4822 4823 4824 4825 4826 4827 4828 4829 4830 4831 4832 4833
    if (!drv->create_opts) {
        error_setg(errp, "Format driver '%s' does not support image creation",
                   drv->format_name);
        return;
    }

    if (!proto_drv->create_opts) {
        error_setg(errp, "Protocol driver '%s' does not support image creation",
                   proto_drv->format_name);
        return;
    }

C
Chunyan Liu 已提交
4834 4835
    create_opts = qemu_opts_append(create_opts, drv->create_opts);
    create_opts = qemu_opts_append(create_opts, proto_drv->create_opts);
J
Jes Sorensen 已提交
4836 4837

    /* Create parameter list with default values */
4838
    opts = qemu_opts_create(create_opts, NULL, 0, &error_abort);
4839
    qemu_opt_set_number(opts, BLOCK_OPT_SIZE, img_size, &error_abort);
J
Jes Sorensen 已提交
4840 4841 4842

    /* Parse -o options */
    if (options) {
4843 4844
        qemu_opts_do_parse(opts, options, NULL, &local_err);
        if (local_err) {
J
Jes Sorensen 已提交
4845 4846 4847 4848 4849
            goto out;
        }
    }

    if (base_filename) {
4850
        qemu_opt_set(opts, BLOCK_OPT_BACKING_FILE, base_filename, &local_err);
4851
        if (local_err) {
4852 4853
            error_setg(errp, "Backing file not supported for file format '%s'",
                       fmt);
J
Jes Sorensen 已提交
4854 4855 4856 4857 4858
            goto out;
        }
    }

    if (base_fmt) {
4859
        qemu_opt_set(opts, BLOCK_OPT_BACKING_FMT, base_fmt, &local_err);
4860
        if (local_err) {
4861 4862
            error_setg(errp, "Backing file format not supported for file "
                             "format '%s'", fmt);
J
Jes Sorensen 已提交
4863 4864 4865 4866
            goto out;
        }
    }

4867 4868 4869
    backing_file = qemu_opt_get(opts, BLOCK_OPT_BACKING_FILE);
    if (backing_file) {
        if (!strcmp(filename, backing_file)) {
4870 4871
            error_setg(errp, "Error: Trying to create an image with the "
                             "same filename as the backing file");
4872 4873 4874 4875
            goto out;
        }
    }

4876
    backing_fmt = qemu_opt_get(opts, BLOCK_OPT_BACKING_FMT);
J
Jes Sorensen 已提交
4877

4878 4879
    /* The size for the image must always be specified, unless we have a backing
     * file and we have not been forbidden from opening it. */
4880
    size = qemu_opt_get_size(opts, BLOCK_OPT_SIZE, img_size);
4881 4882 4883 4884 4885 4886 4887 4888 4889 4890 4891 4892 4893
    if (backing_file && !(flags & BDRV_O_NO_BACKING)) {
        BlockDriverState *bs;
        char *full_backing = g_new0(char, PATH_MAX);
        int back_flags;
        QDict *backing_options = NULL;

        bdrv_get_full_backing_filename_from_filename(filename, backing_file,
                                                     full_backing, PATH_MAX,
                                                     &local_err);
        if (local_err) {
            g_free(full_backing);
            goto out;
        }
4894

4895 4896 4897
        /* backing files always opened read-only */
        back_flags = flags;
        back_flags &= ~(BDRV_O_RDWR | BDRV_O_SNAPSHOT | BDRV_O_NO_BACKING);
J
Jes Sorensen 已提交
4898

4899
        backing_options = qdict_new();
4900 4901 4902
        if (backing_fmt) {
            qdict_put_str(backing_options, "driver", backing_fmt);
        }
4903
        qdict_put_bool(backing_options, BDRV_OPT_FORCE_SHARE, true);
4904

4905 4906 4907 4908 4909 4910 4911 4912 4913 4914 4915 4916 4917 4918 4919 4920 4921 4922 4923 4924 4925 4926 4927 4928 4929
        bs = bdrv_open(full_backing, NULL, backing_options, back_flags,
                       &local_err);
        g_free(full_backing);
        if (!bs && size != -1) {
            /* Couldn't open BS, but we have a size, so it's nonfatal */
            warn_reportf_err(local_err,
                            "Could not verify backing image. "
                            "This may become an error in future versions.\n");
            local_err = NULL;
        } else if (!bs) {
            /* Couldn't open bs, do not have size */
            error_append_hint(&local_err,
                              "Could not open backing image to determine size.\n");
            goto out;
        } else {
            if (size == -1) {
                /* Opened BS, have no size */
                size = bdrv_getlength(bs);
                if (size < 0) {
                    error_setg_errno(errp, -size, "Could not get size of '%s'",
                                     backing_file);
                    bdrv_unref(bs);
                    goto out;
                }
                qemu_opt_set_number(opts, BLOCK_OPT_SIZE, size, &error_abort);
4930
            }
4931
            bdrv_unref(bs);
J
Jes Sorensen 已提交
4932
        }
4933 4934 4935 4936 4937
    } /* (backing_file && !(flags & BDRV_O_NO_BACKING)) */

    if (size == -1) {
        error_setg(errp, "Image creation needs a size parameter");
        goto out;
J
Jes Sorensen 已提交
4938 4939
    }

4940
    if (!quiet) {
4941
        printf("Formatting '%s', fmt=%s ", filename, fmt);
4942
        qemu_opts_print(opts, " ");
4943 4944
        puts("");
    }
4945

C
Chunyan Liu 已提交
4946
    ret = bdrv_create(drv, filename, opts, &local_err);
4947

4948 4949 4950 4951 4952
    if (ret == -EFBIG) {
        /* This is generally a better message than whatever the driver would
         * deliver (especially because of the cluster_size_hint), since that
         * is most probably not much different from "image too large". */
        const char *cluster_size_hint = "";
4953
        if (qemu_opt_get_size(opts, BLOCK_OPT_CLUSTER_SIZE, 0)) {
4954
            cluster_size_hint = " (try using a larger cluster size)";
J
Jes Sorensen 已提交
4955
        }
4956 4957 4958 4959
        error_setg(errp, "The image size is too large for file format '%s'"
                   "%s", fmt, cluster_size_hint);
        error_free(local_err);
        local_err = NULL;
J
Jes Sorensen 已提交
4960 4961 4962
    }

out:
4963 4964
    qemu_opts_del(opts);
    qemu_opts_free(create_opts);
4965
    error_propagate(errp, local_err);
J
Jes Sorensen 已提交
4966
}
4967 4968 4969

AioContext *bdrv_get_aio_context(BlockDriverState *bs)
{
4970
    return bs ? bs->aio_context : qemu_get_aio_context();
4971 4972
}

4973 4974 4975 4976 4977
void bdrv_coroutine_enter(BlockDriverState *bs, Coroutine *co)
{
    aio_co_enter(bdrv_get_aio_context(bs), co);
}

4978 4979 4980 4981 4982 4983
static void bdrv_do_remove_aio_context_notifier(BdrvAioNotifier *ban)
{
    QLIST_REMOVE(ban, list);
    g_free(ban);
}

4984 4985
void bdrv_detach_aio_context(BlockDriverState *bs)
{
4986
    BdrvAioNotifier *baf, *baf_tmp;
4987
    BdrvChild *child;
M
Max Reitz 已提交
4988

4989 4990 4991 4992
    if (!bs->drv) {
        return;
    }

4993 4994 4995 4996 4997 4998 4999 5000
    assert(!bs->walking_aio_notifiers);
    bs->walking_aio_notifiers = true;
    QLIST_FOREACH_SAFE(baf, &bs->aio_notifiers, list, baf_tmp) {
        if (baf->deleted) {
            bdrv_do_remove_aio_context_notifier(baf);
        } else {
            baf->detach_aio_context(baf->opaque);
        }
M
Max Reitz 已提交
5001
    }
5002 5003 5004 5005
    /* Never mind iterating again to check for ->deleted.  bdrv_close() will
     * remove remaining aio notifiers if we aren't called again.
     */
    bs->walking_aio_notifiers = false;
M
Max Reitz 已提交
5006

5007 5008 5009
    if (bs->drv->bdrv_detach_aio_context) {
        bs->drv->bdrv_detach_aio_context(bs);
    }
5010 5011
    QLIST_FOREACH(child, &bs->children, next) {
        bdrv_detach_aio_context(child->bs);
5012 5013 5014 5015 5016 5017 5018 5019
    }

    bs->aio_context = NULL;
}

void bdrv_attach_aio_context(BlockDriverState *bs,
                             AioContext *new_context)
{
5020
    BdrvAioNotifier *ban, *ban_tmp;
5021
    BdrvChild *child;
M
Max Reitz 已提交
5022

5023 5024 5025 5026 5027 5028
    if (!bs->drv) {
        return;
    }

    bs->aio_context = new_context;

5029 5030
    QLIST_FOREACH(child, &bs->children, next) {
        bdrv_attach_aio_context(child->bs, new_context);
5031 5032 5033 5034
    }
    if (bs->drv->bdrv_attach_aio_context) {
        bs->drv->bdrv_attach_aio_context(bs, new_context);
    }
M
Max Reitz 已提交
5035

5036 5037 5038 5039 5040 5041 5042 5043
    assert(!bs->walking_aio_notifiers);
    bs->walking_aio_notifiers = true;
    QLIST_FOREACH_SAFE(ban, &bs->aio_notifiers, list, ban_tmp) {
        if (ban->deleted) {
            bdrv_do_remove_aio_context_notifier(ban);
        } else {
            ban->attached_aio_context(new_context, ban->opaque);
        }
M
Max Reitz 已提交
5044
    }
5045
    bs->walking_aio_notifiers = false;
5046 5047 5048 5049
}

void bdrv_set_aio_context(BlockDriverState *bs, AioContext *new_context)
{
5050
    AioContext *ctx = bdrv_get_aio_context(bs);
5051

5052
    aio_disable_external(ctx);
5053
    bdrv_parent_drained_begin(bs, NULL, false);
5054
    bdrv_drain(bs); /* ensure there are no in-flight requests */
5055

5056 5057 5058 5059
    while (aio_poll(ctx, false)) {
        /* wait for all bottom halves to execute */
    }

5060 5061 5062 5063 5064 5065 5066
    bdrv_detach_aio_context(bs);

    /* This function executes in the old AioContext so acquire the new one in
     * case it runs in a different thread.
     */
    aio_context_acquire(new_context);
    bdrv_attach_aio_context(bs, new_context);
5067
    bdrv_parent_drained_end(bs, NULL, false);
5068
    aio_enable_external(ctx);
5069
    aio_context_release(new_context);
5070
}
5071

M
Max Reitz 已提交
5072 5073 5074 5075 5076 5077 5078 5079 5080 5081 5082 5083 5084 5085 5086 5087 5088 5089 5090 5091 5092 5093 5094 5095 5096
void bdrv_add_aio_context_notifier(BlockDriverState *bs,
        void (*attached_aio_context)(AioContext *new_context, void *opaque),
        void (*detach_aio_context)(void *opaque), void *opaque)
{
    BdrvAioNotifier *ban = g_new(BdrvAioNotifier, 1);
    *ban = (BdrvAioNotifier){
        .attached_aio_context = attached_aio_context,
        .detach_aio_context   = detach_aio_context,
        .opaque               = opaque
    };

    QLIST_INSERT_HEAD(&bs->aio_notifiers, ban, list);
}

void bdrv_remove_aio_context_notifier(BlockDriverState *bs,
                                      void (*attached_aio_context)(AioContext *,
                                                                   void *),
                                      void (*detach_aio_context)(void *),
                                      void *opaque)
{
    BdrvAioNotifier *ban, *ban_next;

    QLIST_FOREACH_SAFE(ban, &bs->aio_notifiers, list, ban_next) {
        if (ban->attached_aio_context == attached_aio_context &&
            ban->detach_aio_context   == detach_aio_context   &&
5097 5098
            ban->opaque               == opaque               &&
            ban->deleted              == false)
M
Max Reitz 已提交
5099
        {
5100 5101 5102 5103 5104
            if (bs->walking_aio_notifiers) {
                ban->deleted = true;
            } else {
                bdrv_do_remove_aio_context_notifier(ban);
            }
M
Max Reitz 已提交
5105 5106 5107 5108 5109 5110 5111
            return;
        }
    }

    abort();
}

5112
int bdrv_amend_options(BlockDriverState *bs, QemuOpts *opts,
5113 5114
                       BlockDriverAmendStatusCB *status_cb, void *cb_opaque,
                       Error **errp)
M
Max Reitz 已提交
5115
{
M
Max Reitz 已提交
5116
    if (!bs->drv) {
5117
        error_setg(errp, "Node is ejected");
M
Max Reitz 已提交
5118 5119
        return -ENOMEDIUM;
    }
C
Chunyan Liu 已提交
5120
    if (!bs->drv->bdrv_amend_options) {
5121 5122
        error_setg(errp, "Block driver '%s' does not support option amendment",
                   bs->drv->format_name);
M
Max Reitz 已提交
5123 5124
        return -ENOTSUP;
    }
5125
    return bs->drv->bdrv_amend_options(bs, opts, status_cb, cb_opaque, errp);
M
Max Reitz 已提交
5126
}
5127

5128 5129 5130 5131
/* This function will be called by the bdrv_recurse_is_first_non_filter method
 * of block filter and by bdrv_is_first_non_filter.
 * It is used to test if the given bs is the candidate or recurse more in the
 * node graph.
5132
 */
5133
bool bdrv_recurse_is_first_non_filter(BlockDriverState *bs,
5134
                                      BlockDriverState *candidate)
5135
{
5136 5137
    /* return false if basic checks fails */
    if (!bs || !bs->drv) {
5138
        return false;
5139 5140
    }

5141 5142 5143 5144 5145
    /* the code reached a non block filter driver -> check if the bs is
     * the same as the candidate. It's the recursion termination condition.
     */
    if (!bs->drv->is_filter) {
        return bs == candidate;
5146
    }
5147
    /* Down this path the driver is a block filter driver */
5148

5149 5150 5151 5152
    /* If the block filter recursion method is defined use it to recurse down
     * the node graph.
     */
    if (bs->drv->bdrv_recurse_is_first_non_filter) {
5153
        return bs->drv->bdrv_recurse_is_first_non_filter(bs, candidate);
5154 5155
    }

5156 5157 5158
    /* the driver is a block filter but don't allow to recurse -> return false
     */
    return false;
5159 5160
}

5161 5162 5163 5164 5165
/* This function checks if the candidate is the first non filter bs down it's
 * bs chain. Since we don't have pointers to parents it explore all bs chains
 * from the top. Some filters can choose not to pass down the recursion.
 */
bool bdrv_is_first_non_filter(BlockDriverState *candidate)
5166
{
K
Kevin Wolf 已提交
5167
    BlockDriverState *bs;
K
Kevin Wolf 已提交
5168
    BdrvNextIterator it;
5169 5170

    /* walk down the bs forest recursively */
K
Kevin Wolf 已提交
5171
    for (bs = bdrv_first(&it); bs; bs = bdrv_next(&it)) {
5172 5173
        bool perm;

5174
        /* try to recurse in this top level bs */
5175
        perm = bdrv_recurse_is_first_non_filter(bs, candidate);
5176 5177 5178

        /* candidate is the first non filter */
        if (perm) {
5179
            bdrv_next_cleanup(&it);
5180 5181 5182 5183 5184
            return true;
        }
    }

    return false;
5185
}
5186

5187 5188
BlockDriverState *check_to_replace_node(BlockDriverState *parent_bs,
                                        const char *node_name, Error **errp)
5189 5190
{
    BlockDriverState *to_replace_bs = bdrv_find_node(node_name);
5191 5192
    AioContext *aio_context;

5193 5194 5195 5196 5197
    if (!to_replace_bs) {
        error_setg(errp, "Node name '%s' not found", node_name);
        return NULL;
    }

5198 5199 5200
    aio_context = bdrv_get_aio_context(to_replace_bs);
    aio_context_acquire(aio_context);

5201
    if (bdrv_op_is_blocked(to_replace_bs, BLOCK_OP_TYPE_REPLACE, errp)) {
5202 5203
        to_replace_bs = NULL;
        goto out;
5204 5205 5206 5207 5208 5209 5210
    }

    /* We don't want arbitrary node of the BDS chain to be replaced only the top
     * most non filter in order to prevent data corruption.
     * Another benefit is that this tests exclude backing files which are
     * blocked by the backing blockers.
     */
5211
    if (!bdrv_recurse_is_first_non_filter(parent_bs, to_replace_bs)) {
5212
        error_setg(errp, "Only top most non filter can be replaced");
5213 5214
        to_replace_bs = NULL;
        goto out;
5215 5216
    }

5217 5218
out:
    aio_context_release(aio_context);
5219 5220
    return to_replace_bs;
}
5221

M
Max Reitz 已提交
5222 5223 5224
static bool append_open_options(QDict *d, BlockDriverState *bs)
{
    const QDictEntry *entry;
5225
    QemuOptDesc *desc;
M
Max Reitz 已提交
5226 5227 5228 5229 5230
    bool found_any = false;

    for (entry = qdict_first(bs->options); entry;
         entry = qdict_next(bs->options, entry))
    {
5231
        /* Exclude all non-driver-specific options */
5232 5233 5234 5235 5236 5237 5238 5239 5240
        for (desc = bdrv_runtime_opts.desc; desc->name; desc++) {
            if (!strcmp(qdict_entry_key(entry), desc->name)) {
                break;
            }
        }
        if (desc->name) {
            continue;
        }

5241 5242
        qdict_put_obj(d, qdict_entry_key(entry),
                      qobject_ref(qdict_entry_value(entry)));
5243
        found_any = true;
M
Max Reitz 已提交
5244 5245 5246 5247 5248 5249 5250 5251 5252 5253 5254 5255 5256 5257 5258 5259 5260 5261 5262 5263 5264 5265 5266 5267 5268 5269 5270 5271 5272
    }

    return found_any;
}

/* Updates the following BDS fields:
 *  - exact_filename: A filename which may be used for opening a block device
 *                    which (mostly) equals the given BDS (even without any
 *                    other options; so reading and writing must return the same
 *                    results, but caching etc. may be different)
 *  - full_open_options: Options which, when given when opening a block device
 *                       (without a filename), result in a BDS (mostly)
 *                       equalling the given one
 *  - filename: If exact_filename is set, it is copied here. Otherwise,
 *              full_open_options is converted to a JSON object, prefixed with
 *              "json:" (for use through the JSON pseudo protocol) and put here.
 */
void bdrv_refresh_filename(BlockDriverState *bs)
{
    BlockDriver *drv = bs->drv;
    QDict *opts;

    if (!drv) {
        return;
    }

    /* This BDS's file name will most probably depend on its file's name, so
     * refresh that first */
    if (bs->file) {
K
Kevin Wolf 已提交
5273
        bdrv_refresh_filename(bs->file->bs);
M
Max Reitz 已提交
5274 5275 5276 5277 5278 5279 5280
    }

    if (drv->bdrv_refresh_filename) {
        /* Obsolete information is of no use here, so drop the old file name
         * information before refreshing it */
        bs->exact_filename[0] = '\0';
        if (bs->full_open_options) {
5281
            qobject_unref(bs->full_open_options);
M
Max Reitz 已提交
5282 5283 5284
            bs->full_open_options = NULL;
        }

5285 5286 5287
        opts = qdict_new();
        append_open_options(opts, bs);
        drv->bdrv_refresh_filename(bs, opts);
5288
        qobject_unref(opts);
M
Max Reitz 已提交
5289 5290 5291 5292 5293 5294
    } else if (bs->file) {
        /* Try to reconstruct valid information from the underlying file */
        bool has_open_options;

        bs->exact_filename[0] = '\0';
        if (bs->full_open_options) {
5295
            qobject_unref(bs->full_open_options);
M
Max Reitz 已提交
5296 5297 5298 5299 5300 5301 5302 5303
            bs->full_open_options = NULL;
        }

        opts = qdict_new();
        has_open_options = append_open_options(opts, bs);

        /* If no specific options have been given for this BDS, the filename of
         * the underlying file should suffice for this one as well */
K
Kevin Wolf 已提交
5304 5305
        if (bs->file->bs->exact_filename[0] && !has_open_options) {
            strcpy(bs->exact_filename, bs->file->bs->exact_filename);
M
Max Reitz 已提交
5306 5307 5308 5309 5310 5311
        }
        /* Reconstructing the full options QDict is simple for most format block
         * drivers, as long as the full options are known for the underlying
         * file BDS. The full options QDict of that file BDS should somehow
         * contain a representation of the filename, therefore the following
         * suffices without querying the (exact_)filename of this BDS. */
K
Kevin Wolf 已提交
5312
        if (bs->file->bs->full_open_options) {
5313
            qdict_put_str(opts, "driver", drv->format_name);
5314 5315
            qdict_put(opts, "file",
                      qobject_ref(bs->file->bs->full_open_options));
M
Max Reitz 已提交
5316 5317 5318

            bs->full_open_options = opts;
        } else {
5319
            qobject_unref(opts);
M
Max Reitz 已提交
5320 5321 5322 5323 5324 5325 5326 5327 5328 5329 5330
        }
    } else if (!bs->full_open_options && qdict_size(bs->options)) {
        /* There is no underlying file BDS (at least referenced by BDS.file),
         * so the full options QDict should be equal to the options given
         * specifically for this block device when it was opened (plus the
         * driver specification).
         * Because those options don't change, there is no need to update
         * full_open_options when it's already set. */

        opts = qdict_new();
        append_open_options(opts, bs);
5331
        qdict_put_str(opts, "driver", drv->format_name);
M
Max Reitz 已提交
5332 5333 5334 5335 5336 5337 5338 5339 5340

        if (bs->exact_filename[0]) {
            /* This may not work for all block protocol drivers (some may
             * require this filename to be parsed), but we have to find some
             * default solution here, so just include it. If some block driver
             * does not support pure options without any filename at all or
             * needs some special format of the options QDict, it needs to
             * implement the driver-specific bdrv_refresh_filename() function.
             */
5341
            qdict_put_str(opts, "filename", bs->exact_filename);
M
Max Reitz 已提交
5342 5343 5344 5345 5346 5347 5348 5349 5350 5351 5352
        }

        bs->full_open_options = opts;
    }

    if (bs->exact_filename[0]) {
        pstrcpy(bs->filename, sizeof(bs->filename), bs->exact_filename);
    } else if (bs->full_open_options) {
        QString *json = qobject_to_json(QOBJECT(bs->full_open_options));
        snprintf(bs->filename, sizeof(bs->filename), "json:%s",
                 qstring_get_str(json));
5353
        qobject_unref(json);
M
Max Reitz 已提交
5354 5355
    }
}
5356 5357 5358 5359 5360 5361 5362 5363 5364 5365 5366 5367 5368 5369 5370 5371 5372 5373 5374 5375 5376 5377 5378 5379 5380 5381 5382 5383 5384 5385 5386 5387 5388 5389 5390 5391 5392 5393 5394 5395 5396 5397 5398 5399 5400 5401 5402 5403 5404

/*
 * Hot add/remove a BDS's child. So the user can take a child offline when
 * it is broken and take a new child online
 */
void bdrv_add_child(BlockDriverState *parent_bs, BlockDriverState *child_bs,
                    Error **errp)
{

    if (!parent_bs->drv || !parent_bs->drv->bdrv_add_child) {
        error_setg(errp, "The node %s does not support adding a child",
                   bdrv_get_device_or_node_name(parent_bs));
        return;
    }

    if (!QLIST_EMPTY(&child_bs->parents)) {
        error_setg(errp, "The node %s already has a parent",
                   child_bs->node_name);
        return;
    }

    parent_bs->drv->bdrv_add_child(parent_bs, child_bs, errp);
}

void bdrv_del_child(BlockDriverState *parent_bs, BdrvChild *child, Error **errp)
{
    BdrvChild *tmp;

    if (!parent_bs->drv || !parent_bs->drv->bdrv_del_child) {
        error_setg(errp, "The node %s does not support removing a child",
                   bdrv_get_device_or_node_name(parent_bs));
        return;
    }

    QLIST_FOREACH(tmp, &parent_bs->children, next) {
        if (tmp == child) {
            break;
        }
    }

    if (!tmp) {
        error_setg(errp, "The node %s does not have a child named %s",
                   bdrv_get_device_or_node_name(parent_bs),
                   bdrv_get_device_or_node_name(child->bs));
        return;
    }

    parent_bs->drv->bdrv_del_child(parent_bs, child, errp);
}
5405 5406 5407 5408 5409 5410 5411 5412 5413 5414 5415 5416 5417 5418 5419 5420 5421 5422 5423 5424 5425 5426

bool bdrv_can_store_new_dirty_bitmap(BlockDriverState *bs, const char *name,
                                     uint32_t granularity, Error **errp)
{
    BlockDriver *drv = bs->drv;

    if (!drv) {
        error_setg_errno(errp, ENOMEDIUM,
                         "Can't store persistent bitmaps to %s",
                         bdrv_get_device_or_node_name(bs));
        return false;
    }

    if (!drv->bdrv_can_store_new_dirty_bitmap) {
        error_setg_errno(errp, ENOTSUP,
                         "Can't store persistent bitmaps to %s",
                         bdrv_get_device_or_node_name(bs));
        return false;
    }

    return drv->bdrv_can_store_new_dirty_bitmap(bs, name, granularity, errp);
}