virtio.c 17.4 KB
Newer Older
A
aliguori 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18
/*
 * Virtio Support
 *
 * Copyright IBM, Corp. 2007
 *
 * Authors:
 *  Anthony Liguori   <aliguori@us.ibm.com>
 *
 * This work is licensed under the terms of the GNU GPL, version 2.  See
 * the COPYING file in the top-level directory.
 *
 */

#include <inttypes.h>

#include "virtio.h"
#include "sysemu.h"

19 20 21 22
/* The alignment to use between consumer and producer parts of vring.
 * x86 pagesize again. */
#define VIRTIO_PCI_VRING_ALIGN         4096

A
aliguori 已提交
23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67
/* QEMU doesn't strictly need write barriers since everything runs in
 * lock-step.  We'll leave the calls to wmb() in though to make it obvious for
 * KVM or if kqemu gets SMP support.
 */
#define wmb() do { } while (0)

typedef struct VRingDesc
{
    uint64_t addr;
    uint32_t len;
    uint16_t flags;
    uint16_t next;
} VRingDesc;

typedef struct VRingAvail
{
    uint16_t flags;
    uint16_t idx;
    uint16_t ring[0];
} VRingAvail;

typedef struct VRingUsedElem
{
    uint32_t id;
    uint32_t len;
} VRingUsedElem;

typedef struct VRingUsed
{
    uint16_t flags;
    uint16_t idx;
    VRingUsedElem ring[0];
} VRingUsed;

typedef struct VRing
{
    unsigned int num;
    target_phys_addr_t desc;
    target_phys_addr_t avail;
    target_phys_addr_t used;
} VRing;

struct VirtQueue
{
    VRing vring;
P
Paul Brook 已提交
68
    target_phys_addr_t pa;
A
aliguori 已提交
69 70 71 72 73 74 75 76
    uint16_t last_avail_idx;
    int inuse;
    void (*handle_output)(VirtIODevice *vdev, VirtQueue *vq);
};

#define VIRTIO_PCI_QUEUE_MAX        16

/* virt queue functions */
P
Paul Brook 已提交
77
static void virtqueue_init(VirtQueue *vq)
A
aliguori 已提交
78
{
P
Paul Brook 已提交
79 80
    target_phys_addr_t pa = vq->pa;

A
aliguori 已提交
81 82
    vq->vring.desc = pa;
    vq->vring.avail = pa + vq->vring.num * sizeof(VRingDesc);
83 84 85
    vq->vring.used = vring_align(vq->vring.avail +
                                 offsetof(VRingAvail, ring[vq->vring.num]),
                                 VIRTIO_PCI_VRING_ALIGN);
A
aliguori 已提交
86 87
}

88
static inline uint64_t vring_desc_addr(target_phys_addr_t desc_pa, int i)
A
aliguori 已提交
89 90
{
    target_phys_addr_t pa;
91
    pa = desc_pa + sizeof(VRingDesc) * i + offsetof(VRingDesc, addr);
A
aliguori 已提交
92 93 94
    return ldq_phys(pa);
}

95
static inline uint32_t vring_desc_len(target_phys_addr_t desc_pa, int i)
A
aliguori 已提交
96 97
{
    target_phys_addr_t pa;
98
    pa = desc_pa + sizeof(VRingDesc) * i + offsetof(VRingDesc, len);
A
aliguori 已提交
99 100 101
    return ldl_phys(pa);
}

102
static inline uint16_t vring_desc_flags(target_phys_addr_t desc_pa, int i)
A
aliguori 已提交
103 104
{
    target_phys_addr_t pa;
105
    pa = desc_pa + sizeof(VRingDesc) * i + offsetof(VRingDesc, flags);
A
aliguori 已提交
106 107 108
    return lduw_phys(pa);
}

109
static inline uint16_t vring_desc_next(target_phys_addr_t desc_pa, int i)
A
aliguori 已提交
110 111
{
    target_phys_addr_t pa;
112
    pa = desc_pa + sizeof(VRingDesc) * i + offsetof(VRingDesc, next);
A
aliguori 已提交
113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206
    return lduw_phys(pa);
}

static inline uint16_t vring_avail_flags(VirtQueue *vq)
{
    target_phys_addr_t pa;
    pa = vq->vring.avail + offsetof(VRingAvail, flags);
    return lduw_phys(pa);
}

static inline uint16_t vring_avail_idx(VirtQueue *vq)
{
    target_phys_addr_t pa;
    pa = vq->vring.avail + offsetof(VRingAvail, idx);
    return lduw_phys(pa);
}

static inline uint16_t vring_avail_ring(VirtQueue *vq, int i)
{
    target_phys_addr_t pa;
    pa = vq->vring.avail + offsetof(VRingAvail, ring[i]);
    return lduw_phys(pa);
}

static inline void vring_used_ring_id(VirtQueue *vq, int i, uint32_t val)
{
    target_phys_addr_t pa;
    pa = vq->vring.used + offsetof(VRingUsed, ring[i].id);
    stl_phys(pa, val);
}

static inline void vring_used_ring_len(VirtQueue *vq, int i, uint32_t val)
{
    target_phys_addr_t pa;
    pa = vq->vring.used + offsetof(VRingUsed, ring[i].len);
    stl_phys(pa, val);
}

static uint16_t vring_used_idx(VirtQueue *vq)
{
    target_phys_addr_t pa;
    pa = vq->vring.used + offsetof(VRingUsed, idx);
    return lduw_phys(pa);
}

static inline void vring_used_idx_increment(VirtQueue *vq, uint16_t val)
{
    target_phys_addr_t pa;
    pa = vq->vring.used + offsetof(VRingUsed, idx);
    stw_phys(pa, vring_used_idx(vq) + val);
}

static inline void vring_used_flags_set_bit(VirtQueue *vq, int mask)
{
    target_phys_addr_t pa;
    pa = vq->vring.used + offsetof(VRingUsed, flags);
    stw_phys(pa, lduw_phys(pa) | mask);
}

static inline void vring_used_flags_unset_bit(VirtQueue *vq, int mask)
{
    target_phys_addr_t pa;
    pa = vq->vring.used + offsetof(VRingUsed, flags);
    stw_phys(pa, lduw_phys(pa) & ~mask);
}

void virtio_queue_set_notification(VirtQueue *vq, int enable)
{
    if (enable)
        vring_used_flags_unset_bit(vq, VRING_USED_F_NO_NOTIFY);
    else
        vring_used_flags_set_bit(vq, VRING_USED_F_NO_NOTIFY);
}

int virtio_queue_ready(VirtQueue *vq)
{
    return vq->vring.avail != 0;
}

int virtio_queue_empty(VirtQueue *vq)
{
    return vring_avail_idx(vq) == vq->last_avail_idx;
}

void virtqueue_fill(VirtQueue *vq, const VirtQueueElement *elem,
                    unsigned int len, unsigned int idx)
{
    unsigned int offset;
    int i;

    offset = 0;
    for (i = 0; i < elem->in_num; i++) {
        size_t size = MIN(len - offset, elem->in_sg[i].iov_len);

207 208 209
        cpu_physical_memory_unmap(elem->in_sg[i].iov_base,
                                  elem->in_sg[i].iov_len,
                                  1, size);
A
aliguori 已提交
210

211
        offset += elem->in_sg[i].iov_len;
A
aliguori 已提交
212 213
    }

214 215 216 217 218
    for (i = 0; i < elem->out_num; i++)
        cpu_physical_memory_unmap(elem->out_sg[i].iov_base,
                                  elem->out_sg[i].iov_len,
                                  0, elem->out_sg[i].iov_len);

A
aliguori 已提交
219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245
    idx = (idx + vring_used_idx(vq)) % vq->vring.num;

    /* Get a pointer to the next entry in the used ring. */
    vring_used_ring_id(vq, idx, elem->index);
    vring_used_ring_len(vq, idx, len);
}

void virtqueue_flush(VirtQueue *vq, unsigned int count)
{
    /* Make sure buffer is written before we update index. */
    wmb();
    vring_used_idx_increment(vq, count);
    vq->inuse -= count;
}

void virtqueue_push(VirtQueue *vq, const VirtQueueElement *elem,
                    unsigned int len)
{
    virtqueue_fill(vq, elem, len, 0);
    virtqueue_flush(vq, 1);
}

static int virtqueue_num_heads(VirtQueue *vq, unsigned int idx)
{
    uint16_t num_heads = vring_avail_idx(vq) - idx;

    /* Check it isn't doing very strange things with descriptor numbers. */
A
aliguori 已提交
246 247 248 249 250
    if (num_heads > vq->vring.num) {
        fprintf(stderr, "Guest moved used index from %u to %u",
                idx, vring_avail_idx(vq));
        exit(1);
    }
A
aliguori 已提交
251 252 253 254 255 256 257 258 259 260 261 262 263

    return num_heads;
}

static unsigned int virtqueue_get_head(VirtQueue *vq, unsigned int idx)
{
    unsigned int head;

    /* Grab the next descriptor number they're advertising, and increment
     * the index we've seen. */
    head = vring_avail_ring(vq, idx % vq->vring.num);

    /* If their number is silly, that's a fatal mistake. */
A
aliguori 已提交
264 265 266 267
    if (head >= vq->vring.num) {
        fprintf(stderr, "Guest says index %u is available", head);
        exit(1);
    }
A
aliguori 已提交
268 269 270 271

    return head;
}

272 273
static unsigned virtqueue_next_desc(target_phys_addr_t desc_pa,
                                    unsigned int i, unsigned int max)
A
aliguori 已提交
274 275 276 277
{
    unsigned int next;

    /* If this descriptor says it doesn't chain, we're done. */
278 279
    if (!(vring_desc_flags(desc_pa, i) & VRING_DESC_F_NEXT))
        return max;
A
aliguori 已提交
280 281

    /* Check they're not leading us off end of descriptors. */
282
    next = vring_desc_next(desc_pa, i);
A
aliguori 已提交
283 284 285
    /* Make sure compiler knows to grab that: we don't want it changing! */
    wmb();

286
    if (next >= max) {
A
aliguori 已提交
287 288 289
        fprintf(stderr, "Desc next is %u", next);
        exit(1);
    }
A
aliguori 已提交
290 291 292 293 294 295

    return next;
}

int virtqueue_avail_bytes(VirtQueue *vq, int in_bytes, int out_bytes)
{
296 297
    unsigned int idx;
    int total_bufs, in_total, out_total;
A
aliguori 已提交
298 299 300

    idx = vq->last_avail_idx;

301
    total_bufs = in_total = out_total = 0;
A
aliguori 已提交
302
    while (virtqueue_num_heads(vq, idx)) {
303 304
        unsigned int max, num_bufs, indirect = 0;
        target_phys_addr_t desc_pa;
A
aliguori 已提交
305 306
        int i;

307 308
        max = vq->vring.num;
        num_bufs = total_bufs;
A
aliguori 已提交
309
        i = virtqueue_get_head(vq, idx++);
310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330
        desc_pa = vq->vring.desc;

        if (vring_desc_flags(desc_pa, i) & VRING_DESC_F_INDIRECT) {
            if (vring_desc_len(desc_pa, i) % sizeof(VRingDesc)) {
                fprintf(stderr, "Invalid size for indirect buffer table\n");
                exit(1);
            }

            /* If we've got too many, that implies a descriptor loop. */
            if (num_bufs >= max) {
                fprintf(stderr, "Looped descriptor");
                exit(1);
            }

            /* loop over the indirect descriptor table */
            indirect = 1;
            max = vring_desc_len(desc_pa, i) / sizeof(VRingDesc);
            num_bufs = i = 0;
            desc_pa = vring_desc_addr(desc_pa, i);
        }

A
aliguori 已提交
331 332
        do {
            /* If we've got too many, that implies a descriptor loop. */
333
            if (++num_bufs > max) {
A
aliguori 已提交
334 335 336
                fprintf(stderr, "Looped descriptor");
                exit(1);
            }
A
aliguori 已提交
337

338
            if (vring_desc_flags(desc_pa, i) & VRING_DESC_F_WRITE) {
A
aliguori 已提交
339
                if (in_bytes > 0 &&
340
                    (in_total += vring_desc_len(desc_pa, i)) >= in_bytes)
A
aliguori 已提交
341 342 343
                    return 1;
            } else {
                if (out_bytes > 0 &&
344
                    (out_total += vring_desc_len(desc_pa, i)) >= out_bytes)
A
aliguori 已提交
345 346
                    return 1;
            }
347
        } while ((i = virtqueue_next_desc(desc_pa, i, max)) != max);
348 349 350 351 352

        if (!indirect)
            total_bufs = num_bufs;
        else
            total_bufs++;
A
aliguori 已提交
353 354 355 356 357 358 359
    }

    return 0;
}

int virtqueue_pop(VirtQueue *vq, VirtQueueElement *elem)
{
360 361
    unsigned int i, head, max;
    target_phys_addr_t desc_pa = vq->vring.desc;
362
    target_phys_addr_t len;
A
aliguori 已提交
363 364 365 366 367 368 369

    if (!virtqueue_num_heads(vq, vq->last_avail_idx))
        return 0;

    /* When we start there are none of either input nor output. */
    elem->out_num = elem->in_num = 0;

370 371
    max = vq->vring.num;

A
aliguori 已提交
372
    i = head = virtqueue_get_head(vq, vq->last_avail_idx++);
373 374 375 376 377 378 379 380 381 382 383 384 385

    if (vring_desc_flags(desc_pa, i) & VRING_DESC_F_INDIRECT) {
        if (vring_desc_len(desc_pa, i) % sizeof(VRingDesc)) {
            fprintf(stderr, "Invalid size for indirect buffer table\n");
            exit(1);
        }

        /* loop over the indirect descriptor table */
        max = vring_desc_len(desc_pa, i) / sizeof(VRingDesc);
        desc_pa = vring_desc_addr(desc_pa, i);
        i = 0;
    }

A
aliguori 已提交
386 387
    do {
        struct iovec *sg;
388
        int is_write = 0;
A
aliguori 已提交
389

390 391
        if (vring_desc_flags(desc_pa, i) & VRING_DESC_F_WRITE) {
            elem->in_addr[elem->in_num] = vring_desc_addr(desc_pa, i);
A
aliguori 已提交
392
            sg = &elem->in_sg[elem->in_num++];
393
            is_write = 1;
A
aliguori 已提交
394 395 396 397
        } else
            sg = &elem->out_sg[elem->out_num++];

        /* Grab the first descriptor, and check it's OK. */
398
        sg->iov_len = vring_desc_len(desc_pa, i);
399
        len = sg->iov_len;
A
aliguori 已提交
400

401 402
        sg->iov_base = cpu_physical_memory_map(vring_desc_addr(desc_pa, i),
                                               &len, is_write);
403 404 405

        if (sg->iov_base == NULL || len != sg->iov_len) {
            fprintf(stderr, "virtio: trying to map MMIO memory\n");
A
aliguori 已提交
406 407
            exit(1);
        }
A
aliguori 已提交
408 409

        /* If we've got too many, that implies a descriptor loop. */
410
        if ((elem->in_num + elem->out_num) > max) {
A
aliguori 已提交
411 412 413
            fprintf(stderr, "Looped descriptor");
            exit(1);
        }
414
    } while ((i = virtqueue_next_desc(desc_pa, i, max)) != max);
A
aliguori 已提交
415 416 417 418 419 420 421 422 423 424

    elem->index = head;

    vq->inuse++;

    return elem->in_num + elem->out_num;
}

/* virtio device */

P
Paul Brook 已提交
425
void virtio_update_irq(VirtIODevice *vdev)
A
aliguori 已提交
426
{
P
Paul Brook 已提交
427 428 429
    if (vdev->binding->update_irq) {
        vdev->binding->update_irq(vdev->binding_opaque);
    }
A
aliguori 已提交
430 431
}

P
Paul Brook 已提交
432
void virtio_reset(void *opaque)
A
aliguori 已提交
433 434 435 436 437 438 439 440 441 442 443 444 445 446 447 448 449 450
{
    VirtIODevice *vdev = opaque;
    int i;

    if (vdev->reset)
        vdev->reset(vdev);

    vdev->features = 0;
    vdev->queue_sel = 0;
    vdev->status = 0;
    vdev->isr = 0;
    virtio_update_irq(vdev);

    for(i = 0; i < VIRTIO_PCI_QUEUE_MAX; i++) {
        vdev->vq[i].vring.desc = 0;
        vdev->vq[i].vring.avail = 0;
        vdev->vq[i].vring.used = 0;
        vdev->vq[i].last_avail_idx = 0;
P
Paul Brook 已提交
451
        vdev->vq[i].pa = 0;
A
aliguori 已提交
452 453 454
    }
}

P
Paul Brook 已提交
455
uint32_t virtio_config_readb(VirtIODevice *vdev, uint32_t addr)
A
aliguori 已提交
456 457 458 459 460 461 462 463 464 465 466 467
{
    uint8_t val;

    vdev->get_config(vdev, vdev->config);

    if (addr > (vdev->config_len - sizeof(val)))
        return (uint32_t)-1;

    memcpy(&val, vdev->config + addr, sizeof(val));
    return val;
}

P
Paul Brook 已提交
468
uint32_t virtio_config_readw(VirtIODevice *vdev, uint32_t addr)
A
aliguori 已提交
469 470 471 472 473 474 475 476 477 478 479 480
{
    uint16_t val;

    vdev->get_config(vdev, vdev->config);

    if (addr > (vdev->config_len - sizeof(val)))
        return (uint32_t)-1;

    memcpy(&val, vdev->config + addr, sizeof(val));
    return val;
}

P
Paul Brook 已提交
481
uint32_t virtio_config_readl(VirtIODevice *vdev, uint32_t addr)
A
aliguori 已提交
482 483 484 485 486 487 488 489 490 491 492 493
{
    uint32_t val;

    vdev->get_config(vdev, vdev->config);

    if (addr > (vdev->config_len - sizeof(val)))
        return (uint32_t)-1;

    memcpy(&val, vdev->config + addr, sizeof(val));
    return val;
}

P
Paul Brook 已提交
494
void virtio_config_writeb(VirtIODevice *vdev, uint32_t addr, uint32_t data)
A
aliguori 已提交
495 496 497 498 499 500 501 502 503 504 505 506
{
    uint8_t val = data;

    if (addr > (vdev->config_len - sizeof(val)))
        return;

    memcpy(vdev->config + addr, &val, sizeof(val));

    if (vdev->set_config)
        vdev->set_config(vdev, vdev->config);
}

P
Paul Brook 已提交
507
void virtio_config_writew(VirtIODevice *vdev, uint32_t addr, uint32_t data)
A
aliguori 已提交
508 509 510 511 512 513 514 515 516 517 518 519
{
    uint16_t val = data;

    if (addr > (vdev->config_len - sizeof(val)))
        return;

    memcpy(vdev->config + addr, &val, sizeof(val));

    if (vdev->set_config)
        vdev->set_config(vdev, vdev->config);
}

P
Paul Brook 已提交
520
void virtio_config_writel(VirtIODevice *vdev, uint32_t addr, uint32_t data)
A
aliguori 已提交
521 522 523 524 525 526 527 528 529 530 531 532
{
    uint32_t val = data;

    if (addr > (vdev->config_len - sizeof(val)))
        return;

    memcpy(vdev->config + addr, &val, sizeof(val));

    if (vdev->set_config)
        vdev->set_config(vdev, vdev->config);
}

P
Paul Brook 已提交
533
void virtio_queue_set_addr(VirtIODevice *vdev, int n, target_phys_addr_t addr)
A
aliguori 已提交
534
{
P
Paul Brook 已提交
535 536 537 538 539
    if (addr == 0) {
        virtio_reset(vdev);
    } else {
        vdev->vq[n].pa = addr;
        virtqueue_init(&vdev->vq[n]);
A
aliguori 已提交
540
    }
P
Paul Brook 已提交
541 542 543 544 545 546 547 548 549 550 551
}

target_phys_addr_t virtio_queue_get_addr(VirtIODevice *vdev, int n)
{
    return vdev->vq[n].pa;
}

int virtio_queue_get_num(VirtIODevice *vdev, int n)
{
    return vdev->vq[n].vring.num;
}
A
aliguori 已提交
552

P
Paul Brook 已提交
553 554 555 556
void virtio_queue_notify(VirtIODevice *vdev, int n)
{
    if (n < VIRTIO_PCI_QUEUE_MAX && vdev->vq[n].vring.desc) {
        vdev->vq[n].handle_output(vdev, &vdev->vq[n]);
A
aliguori 已提交
557 558 559 560 561 562 563 564 565 566 567 568 569 570 571 572 573 574 575 576 577 578 579 580
    }
}

VirtQueue *virtio_add_queue(VirtIODevice *vdev, int queue_size,
                            void (*handle_output)(VirtIODevice *, VirtQueue *))
{
    int i;

    for (i = 0; i < VIRTIO_PCI_QUEUE_MAX; i++) {
        if (vdev->vq[i].vring.num == 0)
            break;
    }

    if (i == VIRTIO_PCI_QUEUE_MAX || queue_size > VIRTQUEUE_MAX_SIZE)
        abort();

    vdev->vq[i].vring.num = queue_size;
    vdev->vq[i].handle_output = handle_output;

    return &vdev->vq[i];
}

void virtio_notify(VirtIODevice *vdev, VirtQueue *vq)
{
581 582 583 584
    /* Always notify when queue is empty (when feature acknowledge) */
    if ((vring_avail_flags(vq) & VRING_AVAIL_F_NO_INTERRUPT) &&
        (!(vdev->features & (1 << VIRTIO_F_NOTIFY_ON_EMPTY)) ||
         (vq->inuse || vring_avail_idx(vq) != vq->last_avail_idx)))
A
aliguori 已提交
585 586 587 588 589 590 591 592
        return;

    vdev->isr |= 0x01;
    virtio_update_irq(vdev);
}

void virtio_notify_config(VirtIODevice *vdev)
{
593 594 595
    if (!(vdev->status & VIRTIO_CONFIG_S_DRIVER_OK))
        return;

A
aliguori 已提交
596 597 598 599 600 601 602 603
    vdev->isr |= 0x03;
    virtio_update_irq(vdev);
}

void virtio_save(VirtIODevice *vdev, QEMUFile *f)
{
    int i;

P
Paul Brook 已提交
604 605
    /* FIXME: load/save binding.  */
    //pci_device_save(&vdev->pci_dev, f);
A
aliguori 已提交
606 607 608 609 610 611 612 613 614 615 616 617 618 619 620 621 622 623 624 625

    qemu_put_8s(f, &vdev->status);
    qemu_put_8s(f, &vdev->isr);
    qemu_put_be16s(f, &vdev->queue_sel);
    qemu_put_be32s(f, &vdev->features);
    qemu_put_be32(f, vdev->config_len);
    qemu_put_buffer(f, vdev->config, vdev->config_len);

    for (i = 0; i < VIRTIO_PCI_QUEUE_MAX; i++) {
        if (vdev->vq[i].vring.num == 0)
            break;
    }

    qemu_put_be32(f, i);

    for (i = 0; i < VIRTIO_PCI_QUEUE_MAX; i++) {
        if (vdev->vq[i].vring.num == 0)
            break;

        qemu_put_be32(f, vdev->vq[i].vring.num);
P
Paul Brook 已提交
626
        qemu_put_be64(f, vdev->vq[i].pa);
A
aliguori 已提交
627 628 629 630 631 632 633 634
        qemu_put_be16s(f, &vdev->vq[i].last_avail_idx);
    }
}

void virtio_load(VirtIODevice *vdev, QEMUFile *f)
{
    int num, i;

P
Paul Brook 已提交
635 636
    /* FIXME: load/save binding.  */
    //pci_device_load(&vdev->pci_dev, f);
A
aliguori 已提交
637 638 639 640 641 642 643 644 645 646 647 648

    qemu_get_8s(f, &vdev->status);
    qemu_get_8s(f, &vdev->isr);
    qemu_get_be16s(f, &vdev->queue_sel);
    qemu_get_be32s(f, &vdev->features);
    vdev->config_len = qemu_get_be32(f);
    qemu_get_buffer(f, vdev->config, vdev->config_len);

    num = qemu_get_be32(f);

    for (i = 0; i < num; i++) {
        vdev->vq[i].vring.num = qemu_get_be32(f);
P
Paul Brook 已提交
649
        vdev->vq[i].pa = qemu_get_be64(f);
A
aliguori 已提交
650 651
        qemu_get_be16s(f, &vdev->vq[i].last_avail_idx);

P
Paul Brook 已提交
652 653
        if (vdev->vq[i].pa) {
            virtqueue_init(&vdev->vq[i]);
A
aliguori 已提交
654 655 656 657 658 659
        }
    }

    virtio_update_irq(vdev);
}

660 661 662 663 664 665 666
void virtio_cleanup(VirtIODevice *vdev)
{
    if (vdev->config)
        qemu_free(vdev->config);
    qemu_free(vdev->vq);
}

P
Paul Brook 已提交
667 668
VirtIODevice *virtio_common_init(const char *name, uint16_t device_id,
                                 size_t config_size, size_t struct_size)
A
aliguori 已提交
669 670 671
{
    VirtIODevice *vdev;

P
Paul Brook 已提交
672
    vdev = qemu_mallocz(struct_size);
A
aliguori 已提交
673

P
Paul Brook 已提交
674
    vdev->device_id = device_id;
A
aliguori 已提交
675 676 677 678 679 680 681 682 683 684 685 686
    vdev->status = 0;
    vdev->isr = 0;
    vdev->queue_sel = 0;
    vdev->vq = qemu_mallocz(sizeof(VirtQueue) * VIRTIO_PCI_QUEUE_MAX);

    vdev->name = name;
    vdev->config_len = config_size;
    if (vdev->config_len)
        vdev->config = qemu_mallocz(config_size);
    else
        vdev->config = NULL;

J
Jan Kiszka 已提交
687 688
    qemu_register_reset(virtio_reset, 0, vdev);

A
aliguori 已提交
689 690
    return vdev;
}
P
Paul Brook 已提交
691 692 693 694 695 696 697

void virtio_bind_device(VirtIODevice *vdev, const VirtIOBindings *binding,
                        void *opaque)
{
    vdev->binding = binding;
    vdev->binding_opaque = opaque;
}