block.c 163.2 KB
Newer Older
B
bellard 已提交
1 2
/*
 * QEMU System Emulator block driver
3
 *
B
bellard 已提交
4
 * Copyright (c) 2003 Fabrice Bellard
5
 *
B
bellard 已提交
6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23
 * Permission is hereby granted, free of charge, to any person obtaining a copy
 * of this software and associated documentation files (the "Software"), to deal
 * in the Software without restriction, including without limitation the rights
 * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
 * copies of the Software, and to permit persons to whom the Software is
 * furnished to do so, subject to the following conditions:
 *
 * The above copyright notice and this permission notice shall be included in
 * all copies or substantial portions of the Software.
 *
 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL
 * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
 * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
 * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
 * THE SOFTWARE.
 */
24

P
Peter Maydell 已提交
25
#include "qemu/osdep.h"
26
#include "block/trace.h"
27 28
#include "block/block_int.h"
#include "block/blockjob.h"
29
#include "block/nbd.h"
30
#include "block/qdict.h"
31
#include "qemu/error-report.h"
32
#include "module_block.h"
33
#include "qemu/module.h"
34
#include "qapi/error.h"
35
#include "qapi/qmp/qdict.h"
36
#include "qapi/qmp/qjson.h"
M
Max Reitz 已提交
37
#include "qapi/qmp/qnull.h"
38
#include "qapi/qmp/qstring.h"
39 40
#include "qapi/qobject-output-visitor.h"
#include "qapi/qapi-visit-block-core.h"
41
#include "sysemu/block-backend.h"
42
#include "sysemu/sysemu.h"
43
#include "qemu/notify.h"
44
#include "qemu/option.h"
45
#include "qemu/coroutine.h"
46
#include "block/qapi.h"
47
#include "qemu/timer.h"
48 49
#include "qemu/cutils.h"
#include "qemu/id.h"
B
bellard 已提交
50

J
Juan Quintela 已提交
51
#ifdef CONFIG_BSD
B
bellard 已提交
52
#include <sys/ioctl.h>
B
Blue Swirl 已提交
53
#include <sys/queue.h>
54
#ifndef __DragonFly__
B
bellard 已提交
55 56
#include <sys/disk.h>
#endif
57
#endif
B
bellard 已提交
58

59 60 61 62
#ifdef _WIN32
#include <windows.h>
#endif

63 64
#define NOT_DONE 0x7fffffff /* used while emulated sync operation in progress */

65 66 67
static QTAILQ_HEAD(, BlockDriverState) graph_bdrv_states =
    QTAILQ_HEAD_INITIALIZER(graph_bdrv_states);

68 69 70
static QTAILQ_HEAD(, BlockDriverState) all_bdrv_states =
    QTAILQ_HEAD_INITIALIZER(all_bdrv_states);

71 72
static QLIST_HEAD(, BlockDriver) bdrv_drivers =
    QLIST_HEAD_INITIALIZER(bdrv_drivers);
B
bellard 已提交
73

M
Max Reitz 已提交
74 75 76 77 78 79
static BlockDriverState *bdrv_open_inherit(const char *filename,
                                           const char *reference,
                                           QDict *options, int flags,
                                           BlockDriverState *parent,
                                           const BdrvChildRole *child_role,
                                           Error **errp);
80

81 82 83
/* If non-zero, use only whitelisted block drivers */
static int use_bdrv_whitelist;

84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103
#ifdef _WIN32
static int is_windows_drive_prefix(const char *filename)
{
    return (((filename[0] >= 'a' && filename[0] <= 'z') ||
             (filename[0] >= 'A' && filename[0] <= 'Z')) &&
            filename[1] == ':');
}

int is_windows_drive(const char *filename)
{
    if (is_windows_drive_prefix(filename) &&
        filename[2] == '\0')
        return 1;
    if (strstart(filename, "\\\\.\\", NULL) ||
        strstart(filename, "//./", NULL))
        return 1;
    return 0;
}
#endif

104 105 106
size_t bdrv_opt_mem_align(BlockDriverState *bs)
{
    if (!bs || !bs->drv) {
107 108
        /* page size or 4k (hdd sector size) should be on the safe side */
        return MAX(4096, getpagesize());
109 110 111 112 113
    }

    return bs->bl.opt_mem_alignment;
}

114 115 116
size_t bdrv_min_mem_align(BlockDriverState *bs)
{
    if (!bs || !bs->drv) {
117 118
        /* page size or 4k (hdd sector size) should be on the safe side */
        return MAX(4096, getpagesize());
119 120 121 122 123
    }

    return bs->bl.min_mem_alignment;
}

124
/* check if the path starts with "<protocol>:" */
125
int path_has_protocol(const char *path)
126
{
127 128
    const char *p;

129 130 131 132 133
#ifdef _WIN32
    if (is_windows_drive(path) ||
        is_windows_drive_prefix(path)) {
        return 0;
    }
134 135 136
    p = path + strcspn(path, ":/\\");
#else
    p = path + strcspn(path, ":/");
137 138
#endif

139
    return *p == ':';
140 141
}

B
bellard 已提交
142
int path_is_absolute(const char *path)
143
{
B
bellard 已提交
144 145
#ifdef _WIN32
    /* specific case for names like: "\\.\d:" */
P
Paolo Bonzini 已提交
146
    if (is_windows_drive(path) || is_windows_drive_prefix(path)) {
B
bellard 已提交
147
        return 1;
P
Paolo Bonzini 已提交
148 149
    }
    return (*path == '/' || *path == '\\');
150
#else
P
Paolo Bonzini 已提交
151
    return (*path == '/');
152
#endif
153 154
}

B
bellard 已提交
155 156 157 158 159 160
/* if filename is absolute, just copy it to dest. Otherwise, build a
   path to it by considering it is relative to base_path. URL are
   supported. */
void path_combine(char *dest, int dest_size,
                  const char *base_path,
                  const char *filename)
161
{
B
bellard 已提交
162 163 164 165 166 167 168 169
    const char *p, *p1;
    int len;

    if (dest_size <= 0)
        return;
    if (path_is_absolute(filename)) {
        pstrcpy(dest, dest_size, filename);
    } else {
170 171 172 173 174 175 176 177 178 179
        const char *protocol_stripped = NULL;

        if (path_has_protocol(base_path)) {
            protocol_stripped = strchr(base_path, ':');
            if (protocol_stripped) {
                protocol_stripped++;
            }
        }
        p = protocol_stripped ?: base_path;

180 181 182 183 184 185 186 187 188
        p1 = strrchr(base_path, '/');
#ifdef _WIN32
        {
            const char *p2;
            p2 = strrchr(base_path, '\\');
            if (!p1 || p2 > p1)
                p1 = p2;
        }
#endif
B
bellard 已提交
189 190 191 192 193 194 195 196 197 198 199 200
        if (p1)
            p1++;
        else
            p1 = base_path;
        if (p1 > p)
            p = p1;
        len = p - base_path;
        if (len > dest_size - 1)
            len = dest_size - 1;
        memcpy(dest, base_path, len);
        dest[len] = '\0';
        pstrcat(dest, dest_size, filename);
201 202 203
    }
}

204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238
/*
 * Helper function for bdrv_parse_filename() implementations to remove optional
 * protocol prefixes (especially "file:") from a filename and for putting the
 * stripped filename into the options QDict if there is such a prefix.
 */
void bdrv_parse_filename_strip_prefix(const char *filename, const char *prefix,
                                      QDict *options)
{
    if (strstart(filename, prefix, &filename)) {
        /* Stripping the explicit protocol prefix may result in a protocol
         * prefix being (wrongly) detected (if the filename contains a colon) */
        if (path_has_protocol(filename)) {
            QString *fat_filename;

            /* This means there is some colon before the first slash; therefore,
             * this cannot be an absolute path */
            assert(!path_is_absolute(filename));

            /* And we can thus fix the protocol detection issue by prefixing it
             * by "./" */
            fat_filename = qstring_from_str("./");
            qstring_append(fat_filename, filename);

            assert(!path_has_protocol(qstring_get_str(fat_filename)));

            qdict_put(options, "filename", fat_filename);
        } else {
            /* If no protocol prefix was detected, we can use the shortened
             * filename as-is */
            qdict_put_str(options, "filename", filename);
        }
    }
}


239 240 241
/* Returns whether the image file is opened as read-only. Note that this can
 * return false and writing to the image file is still not possible because the
 * image is inactivated. */
J
Jeff Cody 已提交
242 243 244 245 246
bool bdrv_is_read_only(BlockDriverState *bs)
{
    return bs->read_only;
}

247 248
int bdrv_can_set_read_only(BlockDriverState *bs, bool read_only,
                           bool ignore_allow_rdw, Error **errp)
249
{
250 251 252 253 254 255 256
    /* Do not set read_only if copy_on_read is enabled */
    if (bs->copy_on_read && read_only) {
        error_setg(errp, "Can't set node '%s' to r/o with copy-on-read enabled",
                   bdrv_get_device_or_node_name(bs));
        return -EINVAL;
    }

257
    /* Do not clear read_only if it is prohibited */
258 259 260
    if (!read_only && !(bs->open_flags & BDRV_O_ALLOW_RDWR) &&
        !ignore_allow_rdw)
    {
261 262 263 264 265
        error_setg(errp, "Node '%s' is read only",
                   bdrv_get_device_or_node_name(bs));
        return -EPERM;
    }

266 267 268
    return 0;
}

269 270 271 272 273 274 275 276 277 278 279 280
/*
 * Called by a driver that can only provide a read-only image.
 *
 * Returns 0 if the node is already read-only or it could switch the node to
 * read-only because BDRV_O_AUTO_RDONLY is set.
 *
 * Returns -EACCES if the node is read-write and BDRV_O_AUTO_RDONLY is not set
 * or bdrv_can_set_read_only() forbids making the node read-only. If @errmsg
 * is not NULL, it is used as the error message for the Error object.
 */
int bdrv_apply_auto_read_only(BlockDriverState *bs, const char *errmsg,
                              Error **errp)
281 282 283
{
    int ret = 0;

284 285 286 287 288
    if (!(bs->open_flags & BDRV_O_RDWR)) {
        return 0;
    }
    if (!(bs->open_flags & BDRV_O_AUTO_RDONLY)) {
        goto fail;
289 290
    }

291 292 293
    ret = bdrv_can_set_read_only(bs, true, false, NULL);
    if (ret < 0) {
        goto fail;
294 295
    }

296 297 298
    bs->read_only = true;
    bs->open_flags &= ~BDRV_O_RDWR;

299
    return 0;
300 301 302 303

fail:
    error_setg(errp, "%s", errmsg ?: "Image is read-only");
    return -EACCES;
304 305
}

306 307
void bdrv_get_full_backing_filename_from_filename(const char *backed,
                                                  const char *backing,
308 309
                                                  char *dest, size_t sz,
                                                  Error **errp)
310
{
311 312 313
    if (backing[0] == '\0' || path_has_protocol(backing) ||
        path_is_absolute(backing))
    {
314
        pstrcpy(dest, sz, backing);
315 316 317
    } else if (backed[0] == '\0' || strstart(backed, "json:", NULL)) {
        error_setg(errp, "Cannot use relative backing file names for '%s'",
                   backed);
318
    } else {
319
        path_combine(dest, sz, backed, backing);
320 321 322
    }
}

323 324
void bdrv_get_full_backing_filename(BlockDriverState *bs, char *dest, size_t sz,
                                    Error **errp)
325
{
326 327 328 329
    char *backed = bs->exact_filename[0] ? bs->exact_filename : bs->filename;

    bdrv_get_full_backing_filename_from_filename(backed, bs->backing_file,
                                                 dest, sz, errp);
330 331
}

332 333
void bdrv_register(BlockDriver *bdrv)
{
334
    QLIST_INSERT_HEAD(&bdrv_drivers, bdrv, list);
B
bellard 已提交
335
}
B
bellard 已提交
336

337 338 339 340 341
BlockDriverState *bdrv_new(void)
{
    BlockDriverState *bs;
    int i;

342
    bs = g_new0(BlockDriverState, 1);
F
Fam Zheng 已提交
343
    QLIST_INIT(&bs->dirty_bitmaps);
344 345 346
    for (i = 0; i < BLOCK_OP_TYPE_MAX; i++) {
        QLIST_INIT(&bs->op_blockers[i]);
    }
347
    notifier_with_return_list_init(&bs->before_write_notifiers);
348
    qemu_co_mutex_init(&bs->reqs_lock);
349
    qemu_mutex_init(&bs->dirty_bitmap_mutex);
350
    bs->refcnt = 1;
351
    bs->aio_context = qemu_get_aio_context();
P
Paolo Bonzini 已提交
352

353 354
    qemu_co_queue_init(&bs->flush_queue);

355 356 357 358
    for (i = 0; i < bdrv_drain_all_count; i++) {
        bdrv_drained_begin(bs);
    }

359 360
    QTAILQ_INSERT_TAIL(&all_bdrv_states, bs, bs_list);

B
bellard 已提交
361 362 363
    return bs;
}

364
static BlockDriver *bdrv_do_find_format(const char *format_name)
B
bellard 已提交
365 366
{
    BlockDriver *drv1;
367

368 369
    QLIST_FOREACH(drv1, &bdrv_drivers, list) {
        if (!strcmp(drv1->format_name, format_name)) {
B
bellard 已提交
370
            return drv1;
371
        }
B
bellard 已提交
372
    }
373

B
bellard 已提交
374 375 376
    return NULL;
}

377 378 379 380 381 382 383 384 385 386 387 388 389 390 391 392 393 394 395 396 397
BlockDriver *bdrv_find_format(const char *format_name)
{
    BlockDriver *drv1;
    int i;

    drv1 = bdrv_do_find_format(format_name);
    if (drv1) {
        return drv1;
    }

    /* The driver isn't registered, maybe we need to load a module */
    for (i = 0; i < (int)ARRAY_SIZE(block_driver_modules); ++i) {
        if (!strcmp(block_driver_modules[i].format_name, format_name)) {
            block_module_load_one(block_driver_modules[i].library_name);
            break;
        }
    }

    return bdrv_do_find_format(format_name);
}

398
int bdrv_is_whitelisted(BlockDriver *drv, bool read_only)
399
{
400 401 402 403 404
    static const char *whitelist_rw[] = {
        CONFIG_BDRV_RW_WHITELIST
    };
    static const char *whitelist_ro[] = {
        CONFIG_BDRV_RO_WHITELIST
405 406 407
    };
    const char **p;

408
    if (!whitelist_rw[0] && !whitelist_ro[0]) {
409
        return 1;               /* no whitelist, anything goes */
410
    }
411

412
    for (p = whitelist_rw; *p; p++) {
413 414 415 416
        if (!strcmp(drv->format_name, *p)) {
            return 1;
        }
    }
417 418 419 420 421 422 423
    if (read_only) {
        for (p = whitelist_ro; *p; p++) {
            if (!strcmp(drv->format_name, *p)) {
                return 1;
            }
        }
    }
424 425 426
    return 0;
}

427 428 429 430 431
bool bdrv_uses_whitelist(void)
{
    return use_bdrv_whitelist;
}

432 433 434
typedef struct CreateCo {
    BlockDriver *drv;
    char *filename;
435
    QemuOpts *opts;
436
    int ret;
437
    Error *err;
438 439 440 441
} CreateCo;

static void coroutine_fn bdrv_create_co_entry(void *opaque)
{
442 443 444
    Error *local_err = NULL;
    int ret;

445 446 447
    CreateCo *cco = opaque;
    assert(cco->drv);

448
    ret = cco->drv->bdrv_co_create_opts(cco->filename, cco->opts, &local_err);
449
    error_propagate(&cco->err, local_err);
450
    cco->ret = ret;
451 452
}

453
int bdrv_create(BlockDriver *drv, const char* filename,
454
                QemuOpts *opts, Error **errp)
B
bellard 已提交
455
{
456 457 458 459 460 461
    int ret;

    Coroutine *co;
    CreateCo cco = {
        .drv = drv,
        .filename = g_strdup(filename),
462
        .opts = opts,
463
        .ret = NOT_DONE,
464
        .err = NULL,
465 466
    };

467
    if (!drv->bdrv_co_create_opts) {
468
        error_setg(errp, "Driver '%s' does not support image creation", drv->format_name);
469 470
        ret = -ENOTSUP;
        goto out;
471 472 473 474 475 476
    }

    if (qemu_in_coroutine()) {
        /* Fast-path if already in coroutine context */
        bdrv_create_co_entry(&cco);
    } else {
477 478
        co = qemu_coroutine_create(bdrv_create_co_entry, &cco);
        qemu_coroutine_enter(co);
479
        while (cco.ret == NOT_DONE) {
480
            aio_poll(qemu_get_aio_context(), true);
481 482 483 484
        }
    }

    ret = cco.ret;
485
    if (ret < 0) {
486
        if (cco.err) {
487 488 489 490 491
            error_propagate(errp, cco.err);
        } else {
            error_setg_errno(errp, -ret, "Could not create image");
        }
    }
492

493 494
out:
    g_free(cco.filename);
495
    return ret;
B
bellard 已提交
496 497
}

C
Chunyan Liu 已提交
498
int bdrv_create_file(const char *filename, QemuOpts *opts, Error **errp)
499 500
{
    BlockDriver *drv;
501 502
    Error *local_err = NULL;
    int ret;
503

504
    drv = bdrv_find_protocol(filename, true, errp);
505
    if (drv == NULL) {
506
        return -ENOENT;
507 508
    }

C
Chunyan Liu 已提交
509
    ret = bdrv_create(drv, filename, opts, &local_err);
510
    error_propagate(errp, local_err);
511
    return ret;
512 513
}

514 515 516 517 518 519 520 521 522 523 524 525
/**
 * Try to get @bs's logical and physical block size.
 * On success, store them in @bsz struct and return 0.
 * On failure return -errno.
 * @bs must not be empty.
 */
int bdrv_probe_blocksizes(BlockDriverState *bs, BlockSizes *bsz)
{
    BlockDriver *drv = bs->drv;

    if (drv && drv->bdrv_probe_blocksizes) {
        return drv->bdrv_probe_blocksizes(bs, bsz);
526 527
    } else if (drv && drv->is_filter && bs->file) {
        return bdrv_probe_blocksizes(bs->file->bs, bsz);
528 529 530 531 532 533 534 535 536 537 538 539 540 541 542 543 544
    }

    return -ENOTSUP;
}

/**
 * Try to get @bs's geometry (cyls, heads, sectors).
 * On success, store them in @geo struct and return 0.
 * On failure return -errno.
 * @bs must not be empty.
 */
int bdrv_probe_geometry(BlockDriverState *bs, HDGeometry *geo)
{
    BlockDriver *drv = bs->drv;

    if (drv && drv->bdrv_probe_geometry) {
        return drv->bdrv_probe_geometry(bs, geo);
545 546
    } else if (drv && drv->is_filter && bs->file) {
        return bdrv_probe_geometry(bs->file->bs, geo);
547 548 549 550 551
    }

    return -ENOTSUP;
}

552 553 554 555 556
/*
 * Create a uniquely-named empty temporary file.
 * Return 0 upon success, otherwise a negative errno value.
 */
int get_tmp_filename(char *filename, int size)
B
bellard 已提交
557
{
558
#ifdef _WIN32
559
    char temp_dir[MAX_PATH];
560 561 562 563 564 565
    /* GetTempFileName requires that its output buffer (4th param)
       have length MAX_PATH or greater.  */
    assert(size >= MAX_PATH);
    return (GetTempPath(MAX_PATH, temp_dir)
            && GetTempFileName(temp_dir, "qem", 0, filename)
            ? 0 : -GetLastError());
B
bellard 已提交
566
#else
B
bellard 已提交
567
    int fd;
568
    const char *tmpdir;
A
aurel32 已提交
569
    tmpdir = getenv("TMPDIR");
570 571 572
    if (!tmpdir) {
        tmpdir = "/var/tmp";
    }
573 574 575
    if (snprintf(filename, size, "%s/vl.XXXXXX", tmpdir) >= size) {
        return -EOVERFLOW;
    }
B
bellard 已提交
576
    fd = mkstemp(filename);
577 578 579 580 581
    if (fd < 0) {
        return -errno;
    }
    if (close(fd) != 0) {
        unlink(filename);
582 583 584
        return -errno;
    }
    return 0;
B
bellard 已提交
585
#endif
586
}
B
bellard 已提交
587

588 589 590 591 592 593 594 595 596 597 598 599 600 601 602 603 604 605 606 607 608 609
/*
 * Detect host devices. By convention, /dev/cdrom[N] is always
 * recognized as a host CDROM.
 */
static BlockDriver *find_hdev_driver(const char *filename)
{
    int score_max = 0, score;
    BlockDriver *drv = NULL, *d;

    QLIST_FOREACH(d, &bdrv_drivers, list) {
        if (d->bdrv_probe_device) {
            score = d->bdrv_probe_device(filename);
            if (score > score_max) {
                score_max = score;
                drv = d;
            }
        }
    }

    return drv;
}

610 611 612 613 614 615 616 617 618 619 620 621 622
static BlockDriver *bdrv_do_find_protocol(const char *protocol)
{
    BlockDriver *drv1;

    QLIST_FOREACH(drv1, &bdrv_drivers, list) {
        if (drv1->protocol_name && !strcmp(drv1->protocol_name, protocol)) {
            return drv1;
        }
    }

    return NULL;
}

623
BlockDriver *bdrv_find_protocol(const char *filename,
624 625
                                bool allow_protocol_prefix,
                                Error **errp)
B
bellard 已提交
626 627 628
{
    BlockDriver *drv1;
    char protocol[128];
629
    int len;
B
bellard 已提交
630
    const char *p;
631
    int i;
B
bellard 已提交
632

633 634
    /* TODO Drivers without bdrv_file_open must be specified explicitly */

635 636 637 638 639 640 641 642 643 644 645 646
    /*
     * XXX(hch): we really should not let host device detection
     * override an explicit protocol specification, but moving this
     * later breaks access to device names with colons in them.
     * Thanks to the brain-dead persistent naming schemes on udev-
     * based Linux systems those actually are quite common.
     */
    drv1 = find_hdev_driver(filename);
    if (drv1) {
        return drv1;
    }

647
    if (!path_has_protocol(filename) || !allow_protocol_prefix) {
648
        return &bdrv_file;
649
    }
650

651 652
    p = strchr(filename, ':');
    assert(p != NULL);
653 654 655 656 657
    len = p - filename;
    if (len > sizeof(protocol) - 1)
        len = sizeof(protocol) - 1;
    memcpy(protocol, filename, len);
    protocol[len] = '\0';
658 659 660 661 662 663 664 665 666 667 668

    drv1 = bdrv_do_find_protocol(protocol);
    if (drv1) {
        return drv1;
    }

    for (i = 0; i < (int)ARRAY_SIZE(block_driver_modules); ++i) {
        if (block_driver_modules[i].protocol_name &&
            !strcmp(block_driver_modules[i].protocol_name, protocol)) {
            block_module_load_one(block_driver_modules[i].library_name);
            break;
669
        }
B
bellard 已提交
670
    }
671

672 673 674 675 676
    drv1 = bdrv_do_find_protocol(protocol);
    if (!drv1) {
        error_setg(errp, "Unknown protocol '%s'", protocol);
    }
    return drv1;
B
bellard 已提交
677 678
}

679 680 681 682 683 684
/*
 * Guess image format by probing its contents.
 * This is not a good idea when your image is raw (CVE-2008-2004), but
 * we do it anyway for backward compatibility.
 *
 * @buf         contains the image's first @buf_size bytes.
685 686
 * @buf_size    is the buffer size in bytes (generally BLOCK_PROBE_BUF_SIZE,
 *              but can be smaller if the image file is smaller)
687 688 689 690 691 692
 * @filename    is its filename.
 *
 * For all block drivers, call the bdrv_probe() method to get its
 * probing score.
 * Return the first block driver with the highest probing score.
 */
693 694
BlockDriver *bdrv_probe_all(const uint8_t *buf, int buf_size,
                            const char *filename)
695 696 697 698 699 700 701 702 703 704 705 706 707 708 709 710 711
{
    int score_max = 0, score;
    BlockDriver *drv = NULL, *d;

    QLIST_FOREACH(d, &bdrv_drivers, list) {
        if (d->bdrv_probe) {
            score = d->bdrv_probe(buf, buf_size, filename);
            if (score > score_max) {
                score_max = score;
                drv = d;
            }
        }
    }

    return drv;
}

712
static int find_image_format(BlockBackend *file, const char *filename,
713
                             BlockDriver **pdrv, Error **errp)
714
{
715
    BlockDriver *drv;
716
    uint8_t buf[BLOCK_PROBE_BUF_SIZE];
717
    int ret = 0;
718

719
    /* Return the raw BlockDriver * to scsi-generic devices or empty drives */
720
    if (blk_is_sg(file) || !blk_is_inserted(file) || blk_getlength(file) == 0) {
721
        *pdrv = &bdrv_raw;
722
        return ret;
723
    }
724

725
    ret = blk_pread(file, 0, buf, sizeof(buf));
B
bellard 已提交
726
    if (ret < 0) {
727 728
        error_setg_errno(errp, -ret, "Could not read image for determining its "
                         "format");
729 730
        *pdrv = NULL;
        return ret;
B
bellard 已提交
731 732
    }

733
    drv = bdrv_probe_all(buf, ret, filename);
734
    if (!drv) {
735 736
        error_setg(errp, "Could not determine image format: No compatible "
                   "driver found");
737 738 739 740
        ret = -ENOENT;
    }
    *pdrv = drv;
    return ret;
B
bellard 已提交
741 742
}

743 744
/**
 * Set the current 'total_sectors' value
M
Markus Armbruster 已提交
745
 * Return 0 on success, -errno on error.
746
 */
747
int refresh_total_sectors(BlockDriverState *bs, int64_t hint)
748 749 750
{
    BlockDriver *drv = bs->drv;

M
Max Reitz 已提交
751 752 753 754
    if (!drv) {
        return -ENOMEDIUM;
    }

755
    /* Do not attempt drv->bdrv_getlength() on scsi-generic devices */
756
    if (bdrv_is_sg(bs))
757 758
        return 0;

759 760 761 762 763 764
    /* query actual device if possible, otherwise just trust the hint */
    if (drv->bdrv_getlength) {
        int64_t length = drv->bdrv_getlength(bs);
        if (length < 0) {
            return length;
        }
F
Fam Zheng 已提交
765
        hint = DIV_ROUND_UP(length, BDRV_SECTOR_SIZE);
766 767 768 769 770 771
    }

    bs->total_sectors = hint;
    return 0;
}

772 773 774 775 776 777 778 779 780 781 782 783 784 785
/**
 * Combines a QDict of new block driver @options with any missing options taken
 * from @old_options, so that leaving out an option defaults to its old value.
 */
static void bdrv_join_options(BlockDriverState *bs, QDict *options,
                              QDict *old_options)
{
    if (bs->drv && bs->drv->bdrv_join_options) {
        bs->drv->bdrv_join_options(options, old_options);
    } else {
        qdict_join(options, old_options, false);
    }
}

786 787 788 789 790 791 792 793 794 795 796 797 798 799 800 801 802 803 804 805 806 807 808 809 810
static BlockdevDetectZeroesOptions bdrv_parse_detect_zeroes(QemuOpts *opts,
                                                            int open_flags,
                                                            Error **errp)
{
    Error *local_err = NULL;
    char *value = qemu_opt_get_del(opts, "detect-zeroes");
    BlockdevDetectZeroesOptions detect_zeroes =
        qapi_enum_parse(&BlockdevDetectZeroesOptions_lookup, value,
                        BLOCKDEV_DETECT_ZEROES_OPTIONS_OFF, &local_err);
    g_free(value);
    if (local_err) {
        error_propagate(errp, local_err);
        return detect_zeroes;
    }

    if (detect_zeroes == BLOCKDEV_DETECT_ZEROES_OPTIONS_UNMAP &&
        !(open_flags & BDRV_O_UNMAP))
    {
        error_setg(errp, "setting detect-zeroes to unmap is not allowed "
                   "without setting discard operation to unmap");
    }

    return detect_zeroes;
}

P
Paolo Bonzini 已提交
811 812 813 814 815 816 817 818 819 820 821 822 823 824 825 826 827 828 829 830
/**
 * Set open flags for a given discard mode
 *
 * Return 0 on success, -1 if the discard mode was invalid.
 */
int bdrv_parse_discard_flags(const char *mode, int *flags)
{
    *flags &= ~BDRV_O_UNMAP;

    if (!strcmp(mode, "off") || !strcmp(mode, "ignore")) {
        /* do nothing */
    } else if (!strcmp(mode, "on") || !strcmp(mode, "unmap")) {
        *flags |= BDRV_O_UNMAP;
    } else {
        return -1;
    }

    return 0;
}

831 832 833 834 835
/**
 * Set open flags for a given cache mode
 *
 * Return 0 on success, -1 if the cache mode was invalid.
 */
836
int bdrv_parse_cache_mode(const char *mode, int *flags, bool *writethrough)
837 838 839 840
{
    *flags &= ~BDRV_O_CACHE_MASK;

    if (!strcmp(mode, "off") || !strcmp(mode, "none")) {
841 842
        *writethrough = false;
        *flags |= BDRV_O_NOCACHE;
843
    } else if (!strcmp(mode, "directsync")) {
844
        *writethrough = true;
845
        *flags |= BDRV_O_NOCACHE;
846
    } else if (!strcmp(mode, "writeback")) {
847
        *writethrough = false;
848
    } else if (!strcmp(mode, "unsafe")) {
849
        *writethrough = false;
850 851
        *flags |= BDRV_O_NO_FLUSH;
    } else if (!strcmp(mode, "writethrough")) {
852
        *writethrough = true;
853 854 855 856 857 858 859
    } else {
        return -1;
    }

    return 0;
}

860 861 862 863 864 865
static char *bdrv_child_get_parent_desc(BdrvChild *c)
{
    BlockDriverState *parent = c->opaque;
    return g_strdup(bdrv_get_device_or_node_name(parent));
}

866 867 868
static void bdrv_child_cb_drained_begin(BdrvChild *child)
{
    BlockDriverState *bs = child->opaque;
869
    bdrv_do_drained_begin_quiesce(bs, NULL, false);
870 871
}

872 873 874
static bool bdrv_child_cb_drained_poll(BdrvChild *child)
{
    BlockDriverState *bs = child->opaque;
875
    return bdrv_drain_poll(bs, false, NULL, false);
876 877
}

878 879 880 881 882 883
static void bdrv_child_cb_drained_end(BdrvChild *child)
{
    BlockDriverState *bs = child->opaque;
    bdrv_drained_end(bs);
}

884 885 886 887 888 889 890 891 892 893 894 895
static void bdrv_child_cb_attach(BdrvChild *child)
{
    BlockDriverState *bs = child->opaque;
    bdrv_apply_subtree_drain(child, bs);
}

static void bdrv_child_cb_detach(BdrvChild *child)
{
    BlockDriverState *bs = child->opaque;
    bdrv_unapply_subtree_drain(child, bs);
}

896 897 898 899 900 901 902
static int bdrv_child_cb_inactivate(BdrvChild *child)
{
    BlockDriverState *bs = child->opaque;
    assert(bs->open_flags & BDRV_O_INACTIVE);
    return 0;
}

903
/*
K
Kevin Wolf 已提交
904 905 906
 * Returns the options and flags that a temporary snapshot should get, based on
 * the originally requested flags (the originally requested image will have
 * flags like a backing file)
907
 */
K
Kevin Wolf 已提交
908 909
static void bdrv_temp_snapshot_options(int *child_flags, QDict *child_options,
                                       int parent_flags, QDict *parent_options)
910
{
K
Kevin Wolf 已提交
911 912 913 914 915
    *child_flags = (parent_flags & ~BDRV_O_SNAPSHOT) | BDRV_O_TEMPORARY;

    /* For temporary files, unconditional cache=unsafe is fine */
    qdict_set_default_str(child_options, BDRV_OPT_CACHE_DIRECT, "off");
    qdict_set_default_str(child_options, BDRV_OPT_CACHE_NO_FLUSH, "on");
916

917 918 919
    /* Copy the read-only option from the parent */
    qdict_copy_default(child_options, parent_options, BDRV_OPT_READ_ONLY);

920 921 922
    /* aio=native doesn't work for cache.direct=off, so disable it for the
     * temporary snapshot */
    *child_flags &= ~BDRV_O_NATIVE_AIO;
923 924
}

925
/*
926 927
 * Returns the options and flags that bs->file should get if a protocol driver
 * is expected, based on the given options and flags for the parent BDS
928
 */
929 930
static void bdrv_inherited_options(int *child_flags, QDict *child_options,
                                   int parent_flags, QDict *parent_options)
931
{
932 933
    int flags = parent_flags;

934 935 936
    /* Enable protocol handling, disable format probing for bs->file */
    flags |= BDRV_O_PROTOCOL;

937 938 939 940
    /* If the cache mode isn't explicitly set, inherit direct and no-flush from
     * the parent. */
    qdict_copy_default(child_options, parent_options, BDRV_OPT_CACHE_DIRECT);
    qdict_copy_default(child_options, parent_options, BDRV_OPT_CACHE_NO_FLUSH);
941
    qdict_copy_default(child_options, parent_options, BDRV_OPT_FORCE_SHARE);
942

943 944
    /* Inherit the read-only option from the parent if it's not set */
    qdict_copy_default(child_options, parent_options, BDRV_OPT_READ_ONLY);
K
Kevin Wolf 已提交
945
    qdict_copy_default(child_options, parent_options, BDRV_OPT_AUTO_READ_ONLY);
946

947
    /* Our block drivers take care to send flushes and respect unmap policy,
948 949
     * so we can default to enable both on lower layers regardless of the
     * corresponding parent options. */
950
    qdict_set_default_str(child_options, BDRV_OPT_DISCARD, "unmap");
951 952

    /* Clear flags that only apply to the top layer */
953 954
    flags &= ~(BDRV_O_SNAPSHOT | BDRV_O_NO_BACKING | BDRV_O_COPY_ON_READ |
               BDRV_O_NO_IO);
955

956
    *child_flags = flags;
957 958
}

959
const BdrvChildRole child_file = {
960
    .parent_is_bds   = true,
961
    .get_parent_desc = bdrv_child_get_parent_desc,
962
    .inherit_options = bdrv_inherited_options,
963
    .drained_begin   = bdrv_child_cb_drained_begin,
964
    .drained_poll    = bdrv_child_cb_drained_poll,
965
    .drained_end     = bdrv_child_cb_drained_end,
966 967
    .attach          = bdrv_child_cb_attach,
    .detach          = bdrv_child_cb_detach,
968
    .inactivate      = bdrv_child_cb_inactivate,
969 970 971
};

/*
972 973 974
 * Returns the options and flags that bs->file should get if the use of formats
 * (and not only protocols) is permitted for it, based on the given options and
 * flags for the parent BDS
975
 */
976 977
static void bdrv_inherited_fmt_options(int *child_flags, QDict *child_options,
                                       int parent_flags, QDict *parent_options)
978
{
979 980 981
    child_file.inherit_options(child_flags, child_options,
                               parent_flags, parent_options);

982
    *child_flags &= ~(BDRV_O_PROTOCOL | BDRV_O_NO_IO);
983 984 985
}

const BdrvChildRole child_format = {
986
    .parent_is_bds   = true,
987
    .get_parent_desc = bdrv_child_get_parent_desc,
988
    .inherit_options = bdrv_inherited_fmt_options,
989
    .drained_begin   = bdrv_child_cb_drained_begin,
990
    .drained_poll    = bdrv_child_cb_drained_poll,
991
    .drained_end     = bdrv_child_cb_drained_end,
992 993
    .attach          = bdrv_child_cb_attach,
    .detach          = bdrv_child_cb_detach,
994
    .inactivate      = bdrv_child_cb_inactivate,
995 996
};

997 998 999 1000 1001 1002 1003 1004 1005 1006 1007 1008 1009 1010 1011 1012 1013 1014 1015 1016 1017 1018 1019 1020 1021 1022 1023 1024 1025 1026 1027 1028 1029 1030 1031 1032 1033 1034 1035
static void bdrv_backing_attach(BdrvChild *c)
{
    BlockDriverState *parent = c->opaque;
    BlockDriverState *backing_hd = c->bs;

    assert(!parent->backing_blocker);
    error_setg(&parent->backing_blocker,
               "node is used as backing hd of '%s'",
               bdrv_get_device_or_node_name(parent));

    parent->open_flags &= ~BDRV_O_NO_BACKING;
    pstrcpy(parent->backing_file, sizeof(parent->backing_file),
            backing_hd->filename);
    pstrcpy(parent->backing_format, sizeof(parent->backing_format),
            backing_hd->drv ? backing_hd->drv->format_name : "");

    bdrv_op_block_all(backing_hd, parent->backing_blocker);
    /* Otherwise we won't be able to commit or stream */
    bdrv_op_unblock(backing_hd, BLOCK_OP_TYPE_COMMIT_TARGET,
                    parent->backing_blocker);
    bdrv_op_unblock(backing_hd, BLOCK_OP_TYPE_STREAM,
                    parent->backing_blocker);
    /*
     * We do backup in 3 ways:
     * 1. drive backup
     *    The target bs is new opened, and the source is top BDS
     * 2. blockdev backup
     *    Both the source and the target are top BDSes.
     * 3. internal backup(used for block replication)
     *    Both the source and the target are backing file
     *
     * In case 1 and 2, neither the source nor the target is the backing file.
     * In case 3, we will block the top BDS, so there is only one block job
     * for the top BDS and its backing chain.
     */
    bdrv_op_unblock(backing_hd, BLOCK_OP_TYPE_BACKUP_SOURCE,
                    parent->backing_blocker);
    bdrv_op_unblock(backing_hd, BLOCK_OP_TYPE_BACKUP_TARGET,
                    parent->backing_blocker);
1036 1037

    bdrv_child_cb_attach(c);
1038 1039 1040 1041 1042 1043 1044 1045 1046 1047
}

static void bdrv_backing_detach(BdrvChild *c)
{
    BlockDriverState *parent = c->opaque;

    assert(parent->backing_blocker);
    bdrv_op_unblock_all(c->bs, parent->backing_blocker);
    error_free(parent->backing_blocker);
    parent->backing_blocker = NULL;
1048 1049

    bdrv_child_cb_detach(c);
1050 1051
}

K
Kevin Wolf 已提交
1052
/*
1053 1054
 * Returns the options and flags that bs->backing should get, based on the
 * given options and flags for the parent BDS
K
Kevin Wolf 已提交
1055
 */
1056 1057
static void bdrv_backing_options(int *child_flags, QDict *child_options,
                                 int parent_flags, QDict *parent_options)
K
Kevin Wolf 已提交
1058
{
1059 1060
    int flags = parent_flags;

1061 1062
    /* The cache mode is inherited unmodified for backing files; except WCE,
     * which is only applied on the top level (BlockBackend) */
1063 1064
    qdict_copy_default(child_options, parent_options, BDRV_OPT_CACHE_DIRECT);
    qdict_copy_default(child_options, parent_options, BDRV_OPT_CACHE_NO_FLUSH);
1065
    qdict_copy_default(child_options, parent_options, BDRV_OPT_FORCE_SHARE);
1066

K
Kevin Wolf 已提交
1067
    /* backing files always opened read-only */
1068
    qdict_set_default_str(child_options, BDRV_OPT_READ_ONLY, "on");
K
Kevin Wolf 已提交
1069
    qdict_set_default_str(child_options, BDRV_OPT_AUTO_READ_ONLY, "off");
1070
    flags &= ~BDRV_O_COPY_ON_READ;
K
Kevin Wolf 已提交
1071 1072

    /* snapshot=on is handled on the top layer */
1073
    flags &= ~(BDRV_O_SNAPSHOT | BDRV_O_TEMPORARY);
K
Kevin Wolf 已提交
1074

1075
    *child_flags = flags;
K
Kevin Wolf 已提交
1076 1077
}

1078 1079 1080 1081
static int bdrv_backing_update_filename(BdrvChild *c, BlockDriverState *base,
                                        const char *filename, Error **errp)
{
    BlockDriverState *parent = c->opaque;
1082
    bool read_only = bdrv_is_read_only(parent);
1083 1084
    int ret;

1085 1086
    if (read_only) {
        ret = bdrv_reopen_set_read_only(parent, false, errp);
1087 1088 1089 1090 1091
        if (ret < 0) {
            return ret;
        }
    }

1092 1093 1094
    ret = bdrv_change_backing_file(parent, filename,
                                   base->drv ? base->drv->format_name : "");
    if (ret < 0) {
1095
        error_setg_errno(errp, -ret, "Could not update backing file link");
1096 1097
    }

1098 1099
    if (read_only) {
        bdrv_reopen_set_read_only(parent, true, NULL);
1100 1101
    }

1102 1103 1104
    return ret;
}

K
Kevin Wolf 已提交
1105
const BdrvChildRole child_backing = {
1106
    .parent_is_bds   = true,
1107
    .get_parent_desc = bdrv_child_get_parent_desc,
1108 1109
    .attach          = bdrv_backing_attach,
    .detach          = bdrv_backing_detach,
1110
    .inherit_options = bdrv_backing_options,
1111
    .drained_begin   = bdrv_child_cb_drained_begin,
1112
    .drained_poll    = bdrv_child_cb_drained_poll,
1113
    .drained_end     = bdrv_child_cb_drained_end,
1114
    .inactivate      = bdrv_child_cb_inactivate,
1115
    .update_filename = bdrv_backing_update_filename,
1116 1117
};

K
Kevin Wolf 已提交
1118 1119
static int bdrv_open_flags(BlockDriverState *bs, int flags)
{
K
Kevin Wolf 已提交
1120
    int open_flags = flags;
K
Kevin Wolf 已提交
1121 1122 1123 1124 1125

    /*
     * Clear flags that are internal to the block layer before opening the
     * image.
     */
1126
    open_flags &= ~(BDRV_O_SNAPSHOT | BDRV_O_NO_BACKING | BDRV_O_PROTOCOL);
K
Kevin Wolf 已提交
1127 1128 1129 1130

    /*
     * Snapshots should be writable.
     */
1131
    if (flags & BDRV_O_TEMPORARY) {
K
Kevin Wolf 已提交
1132 1133 1134 1135 1136 1137
        open_flags |= BDRV_O_RDWR;
    }

    return open_flags;
}

1138 1139
static void update_flags_from_options(int *flags, QemuOpts *opts)
{
1140
    *flags &= ~(BDRV_O_CACHE_MASK | BDRV_O_RDWR | BDRV_O_AUTO_RDONLY);
1141

1142
    if (qemu_opt_get_bool_del(opts, BDRV_OPT_CACHE_NO_FLUSH, false)) {
1143 1144 1145
        *flags |= BDRV_O_NO_FLUSH;
    }

1146
    if (qemu_opt_get_bool_del(opts, BDRV_OPT_CACHE_DIRECT, false)) {
1147 1148
        *flags |= BDRV_O_NOCACHE;
    }
1149

1150
    if (!qemu_opt_get_bool_del(opts, BDRV_OPT_READ_ONLY, false)) {
1151 1152 1153
        *flags |= BDRV_O_RDWR;
    }

K
Kevin Wolf 已提交
1154 1155 1156
    if (qemu_opt_get_bool_del(opts, BDRV_OPT_AUTO_READ_ONLY, false)) {
        *flags |= BDRV_O_AUTO_RDONLY;
    }
1157 1158 1159 1160 1161
}

static void update_options_from_flags(QDict *options, int flags)
{
    if (!qdict_haskey(options, BDRV_OPT_CACHE_DIRECT)) {
1162
        qdict_put_bool(options, BDRV_OPT_CACHE_DIRECT, flags & BDRV_O_NOCACHE);
1163 1164
    }
    if (!qdict_haskey(options, BDRV_OPT_CACHE_NO_FLUSH)) {
1165 1166
        qdict_put_bool(options, BDRV_OPT_CACHE_NO_FLUSH,
                       flags & BDRV_O_NO_FLUSH);
1167
    }
1168
    if (!qdict_haskey(options, BDRV_OPT_READ_ONLY)) {
1169
        qdict_put_bool(options, BDRV_OPT_READ_ONLY, !(flags & BDRV_O_RDWR));
1170
    }
K
Kevin Wolf 已提交
1171 1172 1173 1174
    if (!qdict_haskey(options, BDRV_OPT_AUTO_READ_ONLY)) {
        qdict_put_bool(options, BDRV_OPT_AUTO_READ_ONLY,
                       flags & BDRV_O_AUTO_RDONLY);
    }
1175 1176
}

1177 1178 1179
static void bdrv_assign_node_name(BlockDriverState *bs,
                                  const char *node_name,
                                  Error **errp)
1180
{
J
Jeff Cody 已提交
1181
    char *gen_node_name = NULL;
1182

J
Jeff Cody 已提交
1183 1184 1185 1186 1187 1188 1189
    if (!node_name) {
        node_name = gen_node_name = id_generate(ID_BLOCK);
    } else if (!id_wellformed(node_name)) {
        /*
         * Check for empty string or invalid characters, but not if it is
         * generated (generated names use characters not available to the user)
         */
K
Kevin Wolf 已提交
1190
        error_setg(errp, "Invalid node name");
1191
        return;
1192 1193
    }

1194
    /* takes care of avoiding namespaces collisions */
1195
    if (blk_by_name(node_name)) {
1196 1197
        error_setg(errp, "node-name=%s is conflicting with a device id",
                   node_name);
J
Jeff Cody 已提交
1198
        goto out;
1199 1200
    }

1201 1202 1203
    /* takes care of avoiding duplicates node names */
    if (bdrv_find_node(node_name)) {
        error_setg(errp, "Duplicate node name");
J
Jeff Cody 已提交
1204
        goto out;
1205 1206
    }

1207 1208 1209 1210 1211 1212
    /* Make sure that the node name isn't truncated */
    if (strlen(node_name) >= sizeof(bs->node_name)) {
        error_setg(errp, "Node name too long");
        goto out;
    }

1213 1214 1215
    /* copy node name into the bs and insert it into the graph list */
    pstrcpy(bs->node_name, sizeof(bs->node_name), node_name);
    QTAILQ_INSERT_TAIL(&graph_bdrv_states, bs, node_list);
J
Jeff Cody 已提交
1216 1217
out:
    g_free(gen_node_name);
1218 1219
}

1220 1221 1222 1223 1224
static int bdrv_open_driver(BlockDriverState *bs, BlockDriver *drv,
                            const char *node_name, QDict *options,
                            int open_flags, Error **errp)
{
    Error *local_err = NULL;
1225
    int i, ret;
1226 1227 1228 1229 1230 1231 1232 1233

    bdrv_assign_node_name(bs, node_name, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        return -EINVAL;
    }

    bs->drv = drv;
K
Kevin Wolf 已提交
1234
    bs->read_only = !(bs->open_flags & BDRV_O_RDWR);
1235 1236 1237 1238 1239
    bs->opaque = g_malloc0(drv->instance_size);

    if (drv->bdrv_file_open) {
        assert(!drv->bdrv_needs_filename || bs->filename[0]);
        ret = drv->bdrv_file_open(bs, options, open_flags, &local_err);
K
Kevin Wolf 已提交
1240
    } else if (drv->bdrv_open) {
1241
        ret = drv->bdrv_open(bs, options, open_flags, &local_err);
K
Kevin Wolf 已提交
1242 1243
    } else {
        ret = 0;
1244 1245 1246 1247 1248 1249 1250 1251 1252 1253
    }

    if (ret < 0) {
        if (local_err) {
            error_propagate(errp, local_err);
        } else if (bs->filename[0]) {
            error_setg_errno(errp, -ret, "Could not open '%s'", bs->filename);
        } else {
            error_setg_errno(errp, -ret, "Could not open image");
        }
1254
        goto open_failed;
1255 1256 1257 1258 1259
    }

    ret = refresh_total_sectors(bs, bs->total_sectors);
    if (ret < 0) {
        error_setg_errno(errp, -ret, "Could not refresh total sector count");
1260
        return ret;
1261 1262 1263 1264 1265
    }

    bdrv_refresh_limits(bs, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
1266
        return -EINVAL;
1267 1268 1269 1270 1271 1272
    }

    assert(bdrv_opt_mem_align(bs) != 0);
    assert(bdrv_min_mem_align(bs) != 0);
    assert(is_power_of_2(bs->bl.request_alignment));

1273 1274 1275 1276 1277 1278
    for (i = 0; i < bs->quiesce_counter; i++) {
        if (drv->bdrv_co_drain_begin) {
            drv->bdrv_co_drain_begin(bs);
        }
    }

1279
    return 0;
1280 1281 1282 1283 1284 1285
open_failed:
    bs->drv = NULL;
    if (bs->file != NULL) {
        bdrv_unref_child(bs, bs->file);
        bs->file = NULL;
    }
1286 1287 1288 1289 1290
    g_free(bs->opaque);
    bs->opaque = NULL;
    return ret;
}

K
Kevin Wolf 已提交
1291 1292 1293 1294 1295 1296 1297 1298 1299 1300 1301 1302 1303 1304 1305 1306
BlockDriverState *bdrv_new_open_driver(BlockDriver *drv, const char *node_name,
                                       int flags, Error **errp)
{
    BlockDriverState *bs;
    int ret;

    bs = bdrv_new();
    bs->open_flags = flags;
    bs->explicit_options = qdict_new();
    bs->options = qdict_new();
    bs->opaque = NULL;

    update_options_from_flags(bs->options, flags);

    ret = bdrv_open_driver(bs, drv, node_name, bs->options, flags, errp);
    if (ret < 0) {
1307
        qobject_unref(bs->explicit_options);
1308
        bs->explicit_options = NULL;
1309
        qobject_unref(bs->options);
1310
        bs->options = NULL;
K
Kevin Wolf 已提交
1311 1312 1313 1314 1315 1316 1317
        bdrv_unref(bs);
        return NULL;
    }

    return bs;
}

1318
QemuOptsList bdrv_runtime_opts = {
1319 1320 1321 1322 1323 1324 1325 1326
    .name = "bdrv_common",
    .head = QTAILQ_HEAD_INITIALIZER(bdrv_runtime_opts.head),
    .desc = {
        {
            .name = "node-name",
            .type = QEMU_OPT_STRING,
            .help = "Node name of the block device node",
        },
K
Kevin Wolf 已提交
1327 1328 1329 1330 1331
        {
            .name = "driver",
            .type = QEMU_OPT_STRING,
            .help = "Block driver to use for the node",
        },
1332 1333 1334 1335 1336 1337 1338 1339 1340 1341
        {
            .name = BDRV_OPT_CACHE_DIRECT,
            .type = QEMU_OPT_BOOL,
            .help = "Bypass software writeback cache on the host",
        },
        {
            .name = BDRV_OPT_CACHE_NO_FLUSH,
            .type = QEMU_OPT_BOOL,
            .help = "Ignore flush requests",
        },
1342 1343 1344 1345 1346
        {
            .name = BDRV_OPT_READ_ONLY,
            .type = QEMU_OPT_BOOL,
            .help = "Node is opened in read-only mode",
        },
K
Kevin Wolf 已提交
1347 1348 1349 1350 1351
        {
            .name = BDRV_OPT_AUTO_READ_ONLY,
            .type = QEMU_OPT_BOOL,
            .help = "Node can become read-only if opening read-write fails",
        },
1352 1353 1354 1355 1356
        {
            .name = "detect-zeroes",
            .type = QEMU_OPT_STRING,
            .help = "try to optimize zero writes (off, on, unmap)",
        },
1357
        {
1358
            .name = BDRV_OPT_DISCARD,
1359 1360 1361
            .type = QEMU_OPT_STRING,
            .help = "discard operation (ignore/off, unmap/on)",
        },
1362 1363 1364 1365 1366
        {
            .name = BDRV_OPT_FORCE_SHARE,
            .type = QEMU_OPT_BOOL,
            .help = "always accept other writers (default: off)",
        },
1367 1368 1369 1370
        { /* end of list */ }
    },
};

1371 1372
/*
 * Common part for opening disk images and files
1373 1374
 *
 * Removes all processed options from *options.
1375
 */
1376
static int bdrv_open_common(BlockDriverState *bs, BlockBackend *file,
K
Kevin Wolf 已提交
1377
                            QDict *options, Error **errp)
1378 1379
{
    int ret, open_flags;
K
Kevin Wolf 已提交
1380
    const char *filename;
K
Kevin Wolf 已提交
1381
    const char *driver_name = NULL;
1382
    const char *node_name = NULL;
1383
    const char *discard;
1384
    QemuOpts *opts;
K
Kevin Wolf 已提交
1385
    BlockDriver *drv;
1386
    Error *local_err = NULL;
1387

1388
    assert(bs->file == NULL);
1389
    assert(options != NULL && bs->options != options);
1390

K
Kevin Wolf 已提交
1391 1392 1393 1394 1395 1396 1397 1398
    opts = qemu_opts_create(&bdrv_runtime_opts, NULL, 0, &error_abort);
    qemu_opts_absorb_qdict(opts, options, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        ret = -EINVAL;
        goto fail_opts;
    }

1399 1400
    update_flags_from_options(&bs->open_flags, opts);

K
Kevin Wolf 已提交
1401 1402 1403 1404
    driver_name = qemu_opt_get(opts, "driver");
    drv = bdrv_find_format(driver_name);
    assert(drv != NULL);

1405 1406 1407 1408 1409 1410 1411 1412 1413 1414
    bs->force_share = qemu_opt_get_bool(opts, BDRV_OPT_FORCE_SHARE, false);

    if (bs->force_share && (bs->open_flags & BDRV_O_RDWR)) {
        error_setg(errp,
                   BDRV_OPT_FORCE_SHARE
                   "=on can only be used with read-only images");
        ret = -EINVAL;
        goto fail_opts;
    }

1415
    if (file != NULL) {
1416
        filename = blk_bs(file)->filename;
1417
    } else {
1418 1419 1420 1421 1422 1423 1424
        /*
         * Caution: while qdict_get_try_str() is fine, getting
         * non-string types would require more care.  When @options
         * come from -blockdev or blockdev_add, its members are typed
         * according to the QAPI schema, but when they come from
         * -drive, they're all QString.
         */
1425 1426 1427
        filename = qdict_get_try_str(options, "filename");
    }

1428
    if (drv->bdrv_needs_filename && (!filename || !filename[0])) {
1429 1430
        error_setg(errp, "The '%s' block driver requires a file name",
                   drv->format_name);
1431 1432
        ret = -EINVAL;
        goto fail_opts;
1433 1434
    }

K
Kevin Wolf 已提交
1435 1436
    trace_bdrv_open_common(bs, filename ?: "", bs->open_flags,
                           drv->format_name);
K
Kevin Wolf 已提交
1437

K
Kevin Wolf 已提交
1438
    bs->read_only = !(bs->open_flags & BDRV_O_RDWR);
1439 1440

    if (use_bdrv_whitelist && !bdrv_is_whitelisted(drv, bs->read_only)) {
1441 1442 1443 1444 1445
        error_setg(errp,
                   !bs->read_only && bdrv_is_whitelisted(drv, true)
                        ? "Driver '%s' can only be used for read-only devices"
                        : "Driver '%s' is not whitelisted",
                   drv->format_name);
1446 1447
        ret = -ENOTSUP;
        goto fail_opts;
1448
    }
1449

1450 1451 1452
    /* bdrv_new() and bdrv_close() make it so */
    assert(atomic_read(&bs->copy_on_read) == 0);

K
Kevin Wolf 已提交
1453
    if (bs->open_flags & BDRV_O_COPY_ON_READ) {
1454 1455 1456 1457
        if (!bs->read_only) {
            bdrv_enable_copy_on_read(bs);
        } else {
            error_setg(errp, "Can't use copy-on-read on read-only device");
1458 1459
            ret = -EINVAL;
            goto fail_opts;
1460
        }
1461 1462
    }

1463
    discard = qemu_opt_get(opts, BDRV_OPT_DISCARD);
1464 1465 1466 1467 1468 1469 1470 1471
    if (discard != NULL) {
        if (bdrv_parse_discard_flags(discard, &bs->open_flags) != 0) {
            error_setg(errp, "Invalid discard option");
            ret = -EINVAL;
            goto fail_opts;
        }
    }

1472 1473 1474 1475 1476 1477
    bs->detect_zeroes =
        bdrv_parse_detect_zeroes(opts, bs->open_flags, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        ret = -EINVAL;
        goto fail_opts;
1478 1479
    }

1480 1481 1482 1483 1484
    if (filename != NULL) {
        pstrcpy(bs->filename, sizeof(bs->filename), filename);
    } else {
        bs->filename[0] = '\0';
    }
M
Max Reitz 已提交
1485
    pstrcpy(bs->exact_filename, sizeof(bs->exact_filename), bs->filename);
1486

1487
    /* Open the image, either directly or using a protocol */
K
Kevin Wolf 已提交
1488
    open_flags = bdrv_open_flags(bs, bs->open_flags);
1489
    node_name = qemu_opt_get(opts, "node-name");
1490

1491 1492
    assert(!drv->bdrv_file_open || file == NULL);
    ret = bdrv_open_driver(bs, drv, node_name, options, open_flags, errp);
1493
    if (ret < 0) {
1494
        goto fail_opts;
1495 1496
    }

1497
    qemu_opts_del(opts);
1498 1499
    return 0;

1500 1501
fail_opts:
    qemu_opts_del(opts);
1502 1503 1504
    return ret;
}

1505 1506 1507 1508 1509 1510 1511 1512 1513
static QDict *parse_json_filename(const char *filename, Error **errp)
{
    QObject *options_obj;
    QDict *options;
    int ret;

    ret = strstart(filename, "json:", &filename);
    assert(ret);

1514
    options_obj = qobject_from_json(filename, errp);
1515
    if (!options_obj) {
1516
        error_prepend(errp, "Could not parse the JSON options: ");
1517 1518 1519
        return NULL;
    }

1520
    options = qobject_to(QDict, options_obj);
1521
    if (!options) {
1522
        qobject_unref(options_obj);
1523 1524 1525 1526 1527 1528 1529 1530 1531
        error_setg(errp, "Invalid JSON object given");
        return NULL;
    }

    qdict_flatten(options);

    return options;
}

1532 1533 1534 1535 1536 1537 1538 1539 1540 1541 1542 1543 1544 1545 1546 1547 1548 1549 1550 1551
static void parse_json_protocol(QDict *options, const char **pfilename,
                                Error **errp)
{
    QDict *json_options;
    Error *local_err = NULL;

    /* Parse json: pseudo-protocol */
    if (!*pfilename || !g_str_has_prefix(*pfilename, "json:")) {
        return;
    }

    json_options = parse_json_filename(*pfilename, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        return;
    }

    /* Options given in the filename have lower priority than options
     * specified directly */
    qdict_join(options, json_options, false);
1552
    qobject_unref(json_options);
1553 1554 1555
    *pfilename = NULL;
}

K
Kevin Wolf 已提交
1556
/*
K
Kevin Wolf 已提交
1557 1558
 * Fills in default options for opening images and converts the legacy
 * filename/flags pair to option QDict entries.
1559 1560
 * The BDRV_O_PROTOCOL flag in *flags will be set or cleared accordingly if a
 * block driver has been specified explicitly.
K
Kevin Wolf 已提交
1561
 */
1562
static int bdrv_fill_options(QDict **options, const char *filename,
1563
                             int *flags, Error **errp)
B
bellard 已提交
1564
{
1565
    const char *drvname;
1566
    bool protocol = *flags & BDRV_O_PROTOCOL;
1567
    bool parse_filename = false;
1568
    BlockDriver *drv = NULL;
1569
    Error *local_err = NULL;
B
bellard 已提交
1570

1571 1572 1573 1574 1575 1576 1577
    /*
     * Caution: while qdict_get_try_str() is fine, getting non-string
     * types would require more care.  When @options come from
     * -blockdev or blockdev_add, its members are typed according to
     * the QAPI schema, but when they come from -drive, they're all
     * QString.
     */
1578
    drvname = qdict_get_try_str(*options, "driver");
1579 1580 1581 1582 1583 1584 1585 1586 1587
    if (drvname) {
        drv = bdrv_find_format(drvname);
        if (!drv) {
            error_setg(errp, "Unknown driver '%s'", drvname);
            return -ENOENT;
        }
        /* If the user has explicitly specified the driver, this choice should
         * override the BDRV_O_PROTOCOL flag */
        protocol = drv->bdrv_file_open;
1588 1589 1590 1591 1592 1593 1594 1595
    }

    if (protocol) {
        *flags |= BDRV_O_PROTOCOL;
    } else {
        *flags &= ~BDRV_O_PROTOCOL;
    }

1596 1597 1598
    /* Translate cache options from flags into options */
    update_options_from_flags(*options, *flags);

K
Kevin Wolf 已提交
1599
    /* Fetch the file name from the options QDict if necessary */
1600
    if (protocol && filename) {
K
Kevin Wolf 已提交
1601
        if (!qdict_haskey(*options, "filename")) {
1602
            qdict_put_str(*options, "filename", filename);
K
Kevin Wolf 已提交
1603 1604 1605 1606 1607 1608
            parse_filename = true;
        } else {
            error_setg(errp, "Can't specify 'file' and 'filename' options at "
                             "the same time");
            return -EINVAL;
        }
K
Kevin Wolf 已提交
1609 1610
    }

1611
    /* Find the right block driver */
1612
    /* See cautionary note on accessing @options above */
K
Kevin Wolf 已提交
1613 1614
    filename = qdict_get_try_str(*options, "filename");

1615 1616 1617
    if (!drvname && protocol) {
        if (filename) {
            drv = bdrv_find_protocol(filename, parse_filename, errp);
1618
            if (!drv) {
1619
                return -EINVAL;
1620
            }
1621 1622

            drvname = drv->format_name;
1623
            qdict_put_str(*options, "driver", drvname);
1624 1625 1626
        } else {
            error_setg(errp, "Must specify either driver or file");
            return -EINVAL;
1627
        }
1628 1629
    }

1630
    assert(drv || !protocol);
1631

K
Kevin Wolf 已提交
1632
    /* Driver-specific filename parsing */
1633
    if (drv && drv->bdrv_parse_filename && parse_filename) {
1634
        drv->bdrv_parse_filename(filename, *options, &local_err);
1635
        if (local_err) {
1636
            error_propagate(errp, local_err);
K
Kevin Wolf 已提交
1637
            return -EINVAL;
1638
        }
1639 1640 1641 1642

        if (!drv->bdrv_needs_filename) {
            qdict_del(*options, "filename");
        }
1643 1644
    }

K
Kevin Wolf 已提交
1645 1646 1647
    return 0;
}

1648 1649
static int bdrv_child_check_perm(BdrvChild *c, BlockReopenQueue *q,
                                 uint64_t perm, uint64_t shared,
1650 1651 1652 1653
                                 GSList *ignore_children, Error **errp);
static void bdrv_child_abort_perm_update(BdrvChild *c);
static void bdrv_child_set_perm(BdrvChild *c, uint64_t perm, uint64_t shared);

1654 1655 1656 1657 1658 1659 1660 1661 1662 1663 1664 1665 1666 1667 1668 1669 1670 1671 1672 1673 1674 1675 1676 1677 1678 1679 1680 1681
typedef struct BlockReopenQueueEntry {
     bool prepared;
     BDRVReopenState state;
     QSIMPLEQ_ENTRY(BlockReopenQueueEntry) entry;
} BlockReopenQueueEntry;

/*
 * Return the flags that @bs will have after the reopens in @q have
 * successfully completed. If @q is NULL (or @bs is not contained in @q),
 * return the current flags.
 */
static int bdrv_reopen_get_flags(BlockReopenQueue *q, BlockDriverState *bs)
{
    BlockReopenQueueEntry *entry;

    if (q != NULL) {
        QSIMPLEQ_FOREACH(entry, q, entry) {
            if (entry->state.bs == bs) {
                return entry->state.flags;
            }
        }
    }

    return bs->open_flags;
}

/* Returns whether the image file can be written to after the reopen queue @q
 * has been successfully applied, or right now if @q is NULL. */
1682 1683
static bool bdrv_is_writable_after_reopen(BlockDriverState *bs,
                                          BlockReopenQueue *q)
1684 1685 1686 1687 1688 1689
{
    int flags = bdrv_reopen_get_flags(q, bs);

    return (flags & (BDRV_O_RDWR | BDRV_O_INACTIVE)) == BDRV_O_RDWR;
}

1690 1691 1692 1693 1694 1695 1696 1697 1698 1699
/*
 * Return whether the BDS can be written to.  This is not necessarily
 * the same as !bdrv_is_read_only(bs), as inactivated images may not
 * be written to but do not count as read-only images.
 */
bool bdrv_is_writable(BlockDriverState *bs)
{
    return bdrv_is_writable_after_reopen(bs, NULL);
}

1700
static void bdrv_child_perm(BlockDriverState *bs, BlockDriverState *child_bs,
1701 1702
                            BdrvChild *c, const BdrvChildRole *role,
                            BlockReopenQueue *reopen_queue,
1703 1704 1705 1706
                            uint64_t parent_perm, uint64_t parent_shared,
                            uint64_t *nperm, uint64_t *nshared)
{
    if (bs->drv && bs->drv->bdrv_child_perm) {
1707
        bs->drv->bdrv_child_perm(bs, c, role, reopen_queue,
1708 1709 1710
                                 parent_perm, parent_shared,
                                 nperm, nshared);
    }
1711
    /* TODO Take force_share from reopen_queue */
1712 1713 1714 1715 1716
    if (child_bs && child_bs->force_share) {
        *nshared = BLK_PERM_ALL;
    }
}

1717 1718 1719 1720 1721 1722 1723 1724 1725
/*
 * Check whether permissions on this node can be changed in a way that
 * @cumulative_perms and @cumulative_shared_perms are the new cumulative
 * permissions of all its parents. This involves checking whether all necessary
 * permission changes to child nodes can be performed.
 *
 * A call to this function must always be followed by a call to bdrv_set_perm()
 * or bdrv_abort_perm_update().
 */
1726 1727
static int bdrv_check_perm(BlockDriverState *bs, BlockReopenQueue *q,
                           uint64_t cumulative_perms,
1728 1729
                           uint64_t cumulative_shared_perms,
                           GSList *ignore_children, Error **errp)
1730 1731 1732 1733 1734 1735 1736
{
    BlockDriver *drv = bs->drv;
    BdrvChild *c;
    int ret;

    /* Write permissions never work with read-only images */
    if ((cumulative_perms & (BLK_PERM_WRITE | BLK_PERM_WRITE_UNCHANGED)) &&
1737
        !bdrv_is_writable_after_reopen(bs, q))
1738 1739 1740 1741 1742 1743 1744 1745 1746 1747 1748 1749 1750 1751 1752
    {
        error_setg(errp, "Block node is read-only");
        return -EPERM;
    }

    /* Check this node */
    if (!drv) {
        return 0;
    }

    if (drv->bdrv_check_perm) {
        return drv->bdrv_check_perm(bs, cumulative_perms,
                                    cumulative_shared_perms, errp);
    }

1753
    /* Drivers that never have children can omit .bdrv_child_perm() */
1754
    if (!drv->bdrv_child_perm) {
1755
        assert(QLIST_EMPTY(&bs->children));
1756 1757 1758 1759 1760 1761
        return 0;
    }

    /* Check all children */
    QLIST_FOREACH(c, &bs->children, next) {
        uint64_t cur_perm, cur_shared;
1762
        bdrv_child_perm(bs, c->bs, c, c->role, q,
1763 1764
                        cumulative_perms, cumulative_shared_perms,
                        &cur_perm, &cur_shared);
1765 1766
        ret = bdrv_child_check_perm(c, q, cur_perm, cur_shared,
                                    ignore_children, errp);
1767 1768 1769 1770 1771 1772 1773 1774 1775 1776 1777 1778 1779 1780 1781 1782 1783 1784 1785 1786 1787 1788 1789 1790 1791 1792 1793 1794 1795 1796 1797 1798 1799 1800 1801 1802 1803 1804 1805 1806 1807 1808 1809 1810 1811 1812 1813 1814
        if (ret < 0) {
            return ret;
        }
    }

    return 0;
}

/*
 * Notifies drivers that after a previous bdrv_check_perm() call, the
 * permission update is not performed and any preparations made for it (e.g.
 * taken file locks) need to be undone.
 *
 * This function recursively notifies all child nodes.
 */
static void bdrv_abort_perm_update(BlockDriverState *bs)
{
    BlockDriver *drv = bs->drv;
    BdrvChild *c;

    if (!drv) {
        return;
    }

    if (drv->bdrv_abort_perm_update) {
        drv->bdrv_abort_perm_update(bs);
    }

    QLIST_FOREACH(c, &bs->children, next) {
        bdrv_child_abort_perm_update(c);
    }
}

static void bdrv_set_perm(BlockDriverState *bs, uint64_t cumulative_perms,
                          uint64_t cumulative_shared_perms)
{
    BlockDriver *drv = bs->drv;
    BdrvChild *c;

    if (!drv) {
        return;
    }

    /* Update this node */
    if (drv->bdrv_set_perm) {
        drv->bdrv_set_perm(bs, cumulative_perms, cumulative_shared_perms);
    }

1815
    /* Drivers that never have children can omit .bdrv_child_perm() */
1816
    if (!drv->bdrv_child_perm) {
1817
        assert(QLIST_EMPTY(&bs->children));
1818 1819 1820 1821 1822 1823
        return;
    }

    /* Update all children */
    QLIST_FOREACH(c, &bs->children, next) {
        uint64_t cur_perm, cur_shared;
1824
        bdrv_child_perm(bs, c->bs, c, c->role, NULL,
1825 1826
                        cumulative_perms, cumulative_shared_perms,
                        &cur_perm, &cur_shared);
1827 1828 1829 1830 1831 1832 1833 1834 1835 1836 1837 1838 1839 1840 1841 1842 1843 1844 1845 1846
        bdrv_child_set_perm(c, cur_perm, cur_shared);
    }
}

static void bdrv_get_cumulative_perm(BlockDriverState *bs, uint64_t *perm,
                                     uint64_t *shared_perm)
{
    BdrvChild *c;
    uint64_t cumulative_perms = 0;
    uint64_t cumulative_shared_perms = BLK_PERM_ALL;

    QLIST_FOREACH(c, &bs->parents, next_parent) {
        cumulative_perms |= c->perm;
        cumulative_shared_perms &= c->shared_perm;
    }

    *perm = cumulative_perms;
    *shared_perm = cumulative_shared_perms;
}

1847 1848 1849 1850 1851 1852 1853 1854 1855
static char *bdrv_child_user_desc(BdrvChild *c)
{
    if (c->role->get_parent_desc) {
        return c->role->get_parent_desc(c);
    }

    return g_strdup("another user");
}

F
Fam Zheng 已提交
1856
char *bdrv_perm_names(uint64_t perm)
1857 1858 1859 1860 1861 1862 1863 1864 1865 1866 1867 1868 1869 1870 1871 1872 1873 1874 1875 1876 1877 1878 1879 1880 1881 1882 1883
{
    struct perm_name {
        uint64_t perm;
        const char *name;
    } permissions[] = {
        { BLK_PERM_CONSISTENT_READ, "consistent read" },
        { BLK_PERM_WRITE,           "write" },
        { BLK_PERM_WRITE_UNCHANGED, "write unchanged" },
        { BLK_PERM_RESIZE,          "resize" },
        { BLK_PERM_GRAPH_MOD,       "change children" },
        { 0, NULL }
    };

    char *result = g_strdup("");
    struct perm_name *p;

    for (p = permissions; p->name; p++) {
        if (perm & p->perm) {
            char *old = result;
            result = g_strdup_printf("%s%s%s", old, *old ? ", " : "", p->name);
            g_free(old);
        }
    }

    return result;
}

1884 1885
/*
 * Checks whether a new reference to @bs can be added if the new user requires
1886 1887 1888
 * @new_used_perm/@new_shared_perm as its permissions. If @ignore_children is
 * set, the BdrvChild objects in this list are ignored in the calculations;
 * this allows checking permission updates for an existing reference.
1889 1890 1891
 *
 * Needs to be followed by a call to either bdrv_set_perm() or
 * bdrv_abort_perm_update(). */
1892 1893
static int bdrv_check_update_perm(BlockDriverState *bs, BlockReopenQueue *q,
                                  uint64_t new_used_perm,
1894
                                  uint64_t new_shared_perm,
1895
                                  GSList *ignore_children, Error **errp)
1896 1897
{
    BdrvChild *c;
1898 1899
    uint64_t cumulative_perms = new_used_perm;
    uint64_t cumulative_shared_perms = new_shared_perm;
1900 1901 1902 1903 1904

    /* There is no reason why anyone couldn't tolerate write_unchanged */
    assert(new_shared_perm & BLK_PERM_WRITE_UNCHANGED);

    QLIST_FOREACH(c, &bs->parents, next_parent) {
1905
        if (g_slist_find(ignore_children, c)) {
1906 1907 1908
            continue;
        }

1909 1910 1911 1912 1913 1914 1915 1916 1917 1918 1919 1920 1921 1922 1923 1924 1925 1926 1927
        if ((new_used_perm & c->shared_perm) != new_used_perm) {
            char *user = bdrv_child_user_desc(c);
            char *perm_names = bdrv_perm_names(new_used_perm & ~c->shared_perm);
            error_setg(errp, "Conflicts with use by %s as '%s', which does not "
                             "allow '%s' on %s",
                       user, c->name, perm_names, bdrv_get_node_name(c->bs));
            g_free(user);
            g_free(perm_names);
            return -EPERM;
        }

        if ((c->perm & new_shared_perm) != c->perm) {
            char *user = bdrv_child_user_desc(c);
            char *perm_names = bdrv_perm_names(c->perm & ~new_shared_perm);
            error_setg(errp, "Conflicts with use by %s as '%s', which uses "
                             "'%s' on %s",
                       user, c->name, perm_names, bdrv_get_node_name(c->bs));
            g_free(user);
            g_free(perm_names);
1928 1929
            return -EPERM;
        }
1930 1931 1932

        cumulative_perms |= c->perm;
        cumulative_shared_perms &= c->shared_perm;
1933 1934
    }

1935
    return bdrv_check_perm(bs, q, cumulative_perms, cumulative_shared_perms,
1936
                           ignore_children, errp);
1937 1938 1939 1940
}

/* Needs to be followed by a call to either bdrv_child_set_perm() or
 * bdrv_child_abort_perm_update(). */
1941 1942
static int bdrv_child_check_perm(BdrvChild *c, BlockReopenQueue *q,
                                 uint64_t perm, uint64_t shared,
1943
                                 GSList *ignore_children, Error **errp)
1944
{
1945 1946 1947
    int ret;

    ignore_children = g_slist_prepend(g_slist_copy(ignore_children), c);
1948
    ret = bdrv_check_update_perm(c->bs, q, perm, shared, ignore_children, errp);
1949 1950 1951
    g_slist_free(ignore_children);

    return ret;
1952 1953
}

1954
static void bdrv_child_set_perm(BdrvChild *c, uint64_t perm, uint64_t shared)
1955 1956 1957 1958 1959 1960 1961 1962 1963 1964 1965
{
    uint64_t cumulative_perms, cumulative_shared_perms;

    c->perm = perm;
    c->shared_perm = shared;

    bdrv_get_cumulative_perm(c->bs, &cumulative_perms,
                             &cumulative_shared_perms);
    bdrv_set_perm(c->bs, cumulative_perms, cumulative_shared_perms);
}

1966
static void bdrv_child_abort_perm_update(BdrvChild *c)
1967 1968 1969 1970 1971 1972 1973 1974 1975
{
    bdrv_abort_perm_update(c->bs);
}

int bdrv_child_try_set_perm(BdrvChild *c, uint64_t perm, uint64_t shared,
                            Error **errp)
{
    int ret;

1976
    ret = bdrv_child_check_perm(c, NULL, perm, shared, NULL, errp);
1977 1978 1979 1980 1981 1982 1983
    if (ret < 0) {
        bdrv_child_abort_perm_update(c);
        return ret;
    }

    bdrv_child_set_perm(c, perm, shared);

1984 1985 1986
    return 0;
}

1987 1988
void bdrv_filter_default_perms(BlockDriverState *bs, BdrvChild *c,
                               const BdrvChildRole *role,
1989
                               BlockReopenQueue *reopen_queue,
1990 1991 1992 1993 1994 1995 1996 1997 1998 1999 2000 2001 2002 2003 2004
                               uint64_t perm, uint64_t shared,
                               uint64_t *nperm, uint64_t *nshared)
{
    if (c == NULL) {
        *nperm = perm & DEFAULT_PERM_PASSTHROUGH;
        *nshared = (shared & DEFAULT_PERM_PASSTHROUGH) | DEFAULT_PERM_UNCHANGED;
        return;
    }

    *nperm = (perm & DEFAULT_PERM_PASSTHROUGH) |
             (c->perm & DEFAULT_PERM_UNCHANGED);
    *nshared = (shared & DEFAULT_PERM_PASSTHROUGH) |
               (c->shared_perm & DEFAULT_PERM_UNCHANGED);
}

2005 2006
void bdrv_format_default_perms(BlockDriverState *bs, BdrvChild *c,
                               const BdrvChildRole *role,
2007
                               BlockReopenQueue *reopen_queue,
2008 2009 2010 2011 2012 2013 2014
                               uint64_t perm, uint64_t shared,
                               uint64_t *nperm, uint64_t *nshared)
{
    bool backing = (role == &child_backing);
    assert(role == &child_backing || role == &child_file);

    if (!backing) {
2015 2016
        int flags = bdrv_reopen_get_flags(reopen_queue, bs);

2017 2018
        /* Apart from the modifications below, the same permissions are
         * forwarded and left alone as for filters */
2019 2020
        bdrv_filter_default_perms(bs, c, role, reopen_queue, perm, shared,
                                  &perm, &shared);
2021 2022

        /* Format drivers may touch metadata even if the guest doesn't write */
2023
        if (bdrv_is_writable_after_reopen(bs, reopen_queue)) {
2024 2025 2026 2027 2028
            perm |= BLK_PERM_WRITE | BLK_PERM_RESIZE;
        }

        /* bs->file always needs to be consistent because of the metadata. We
         * can never allow other users to resize or write to it. */
2029 2030 2031
        if (!(flags & BDRV_O_NO_IO)) {
            perm |= BLK_PERM_CONSISTENT_READ;
        }
2032 2033 2034 2035 2036 2037 2038 2039 2040 2041 2042 2043 2044 2045 2046 2047 2048 2049 2050
        shared &= ~(BLK_PERM_WRITE | BLK_PERM_RESIZE);
    } else {
        /* We want consistent read from backing files if the parent needs it.
         * No other operations are performed on backing files. */
        perm &= BLK_PERM_CONSISTENT_READ;

        /* If the parent can deal with changing data, we're okay with a
         * writable and resizable backing file. */
        /* TODO Require !(perm & BLK_PERM_CONSISTENT_READ), too? */
        if (shared & BLK_PERM_WRITE) {
            shared = BLK_PERM_WRITE | BLK_PERM_RESIZE;
        } else {
            shared = 0;
        }

        shared |= BLK_PERM_CONSISTENT_READ | BLK_PERM_GRAPH_MOD |
                  BLK_PERM_WRITE_UNCHANGED;
    }

2051 2052 2053 2054
    if (bs->open_flags & BDRV_O_INACTIVE) {
        shared |= BLK_PERM_WRITE | BLK_PERM_RESIZE;
    }

2055 2056 2057 2058
    *nperm = perm;
    *nshared = shared;
}

2059 2060
static void bdrv_replace_child_noperm(BdrvChild *child,
                                      BlockDriverState *new_bs)
2061 2062
{
    BlockDriverState *old_bs = child->bs;
2063
    int i;
2064

2065 2066 2067
    if (old_bs && new_bs) {
        assert(bdrv_get_aio_context(old_bs) == bdrv_get_aio_context(new_bs));
    }
2068
    if (old_bs) {
2069 2070 2071 2072 2073 2074
        /* Detach first so that the recursive drain sections coming from @child
         * are already gone and we only end the drain sections that came from
         * elsewhere. */
        if (child->role->detach) {
            child->role->detach(child);
        }
2075
        if (old_bs->quiesce_counter && child->role->drained_end) {
2076 2077 2078 2079 2080 2081
            int num = old_bs->quiesce_counter;
            if (child->role->parent_is_bds) {
                num -= bdrv_drain_all_count;
            }
            assert(num >= 0);
            for (i = 0; i < num; i++) {
2082 2083
                child->role->drained_end(child);
            }
2084
        }
2085 2086
        QLIST_REMOVE(child, next_parent);
    }
2087 2088 2089

    child->bs = new_bs;

2090 2091
    if (new_bs) {
        QLIST_INSERT_HEAD(&new_bs->parents, child, next_parent);
2092
        if (new_bs->quiesce_counter && child->role->drained_begin) {
2093 2094 2095 2096 2097 2098
            int num = new_bs->quiesce_counter;
            if (child->role->parent_is_bds) {
                num -= bdrv_drain_all_count;
            }
            assert(num >= 0);
            for (i = 0; i < num; i++) {
2099
                bdrv_parent_drained_begin_single(child, true);
2100
            }
2101
        }
2102

2103 2104 2105
        /* Attach only after starting new drained sections, so that recursive
         * drain sections coming from @child don't get an extra .drained_begin
         * callback. */
2106 2107 2108 2109 2110
        if (child->role->attach) {
            child->role->attach(child);
        }
    }
}
2111

2112 2113 2114 2115 2116 2117 2118 2119 2120 2121 2122 2123
/*
 * Updates @child to change its reference to point to @new_bs, including
 * checking and applying the necessary permisson updates both to the old node
 * and to @new_bs.
 *
 * NULL is passed as @new_bs for removing the reference before freeing @child.
 *
 * If @new_bs is not NULL, bdrv_check_perm() must be called beforehand, as this
 * function uses bdrv_set_perm() to update the permissions according to the new
 * reference that @new_bs gets.
 */
static void bdrv_replace_child(BdrvChild *child, BlockDriverState *new_bs)
2124 2125 2126 2127
{
    BlockDriverState *old_bs = child->bs;
    uint64_t perm, shared_perm;

2128 2129
    bdrv_replace_child_noperm(child, new_bs);

2130
    if (old_bs) {
2131 2132 2133 2134
        /* Update permissions for old node. This is guaranteed to succeed
         * because we're just taking a parent away, so we're loosening
         * restrictions. */
        bdrv_get_cumulative_perm(old_bs, &perm, &shared_perm);
2135
        bdrv_check_perm(old_bs, NULL, perm, shared_perm, NULL, &error_abort);
2136
        bdrv_set_perm(old_bs, perm, shared_perm);
2137
    }
2138

2139
    if (new_bs) {
2140 2141
        bdrv_get_cumulative_perm(new_bs, &perm, &shared_perm);
        bdrv_set_perm(new_bs, perm, shared_perm);
2142 2143 2144
    }
}

2145 2146
BdrvChild *bdrv_root_attach_child(BlockDriverState *child_bs,
                                  const char *child_name,
2147
                                  const BdrvChildRole *child_role,
2148 2149
                                  uint64_t perm, uint64_t shared_perm,
                                  void *opaque, Error **errp)
2150
{
2151 2152 2153
    BdrvChild *child;
    int ret;

2154
    ret = bdrv_check_update_perm(child_bs, NULL, perm, shared_perm, NULL, errp);
2155
    if (ret < 0) {
2156
        bdrv_abort_perm_update(child_bs);
2157 2158 2159 2160
        return NULL;
    }

    child = g_new(BdrvChild, 1);
2161
    *child = (BdrvChild) {
2162 2163 2164 2165 2166 2167
        .bs             = NULL,
        .name           = g_strdup(child_name),
        .role           = child_role,
        .perm           = perm,
        .shared_perm    = shared_perm,
        .opaque         = opaque,
2168 2169
    };

2170
    /* This performs the matching bdrv_set_perm() for the above check. */
2171
    bdrv_replace_child(child, child_bs);
K
Kevin Wolf 已提交
2172 2173

    return child;
2174 2175
}

2176 2177 2178
BdrvChild *bdrv_attach_child(BlockDriverState *parent_bs,
                             BlockDriverState *child_bs,
                             const char *child_name,
2179 2180
                             const BdrvChildRole *child_role,
                             Error **errp)
2181
{
2182
    BdrvChild *child;
2183 2184 2185 2186 2187
    uint64_t perm, shared_perm;

    bdrv_get_cumulative_perm(parent_bs, &perm, &shared_perm);

    assert(parent_bs->drv);
2188
    assert(bdrv_get_aio_context(parent_bs) == bdrv_get_aio_context(child_bs));
2189
    bdrv_child_perm(parent_bs, child_bs, NULL, child_role, NULL,
2190
                    perm, shared_perm, &perm, &shared_perm);
2191 2192

    child = bdrv_root_attach_child(child_bs, child_name, child_role,
2193
                                   perm, shared_perm, parent_bs, errp);
2194 2195 2196 2197
    if (child == NULL) {
        return NULL;
    }

2198 2199 2200 2201
    QLIST_INSERT_HEAD(&parent_bs->children, child, next);
    return child;
}

2202
static void bdrv_detach_child(BdrvChild *child)
K
Kevin Wolf 已提交
2203
{
2204 2205 2206 2207
    if (child->next.le_prev) {
        QLIST_REMOVE(child, next);
        child->next.le_prev = NULL;
    }
2208

2209
    bdrv_replace_child(child, NULL);
2210

2211
    g_free(child->name);
K
Kevin Wolf 已提交
2212 2213 2214
    g_free(child);
}

2215
void bdrv_root_unref_child(BdrvChild *child)
K
Kevin Wolf 已提交
2216
{
2217 2218
    BlockDriverState *child_bs;

2219 2220 2221 2222 2223 2224 2225
    child_bs = child->bs;
    bdrv_detach_child(child);
    bdrv_unref(child_bs);
}

void bdrv_unref_child(BlockDriverState *parent, BdrvChild *child)
{
2226 2227 2228
    if (child == NULL) {
        return;
    }
K
Kevin Wolf 已提交
2229 2230

    if (child->bs->inherits_from == parent) {
2231 2232 2233 2234 2235 2236 2237 2238 2239 2240 2241 2242
        BdrvChild *c;

        /* Remove inherits_from only when the last reference between parent and
         * child->bs goes away. */
        QLIST_FOREACH(c, &parent->children, next) {
            if (c != child && c->bs == child->bs) {
                break;
            }
        }
        if (c == NULL) {
            child->bs->inherits_from = NULL;
        }
K
Kevin Wolf 已提交
2243 2244
    }

2245
    bdrv_root_unref_child(child);
K
Kevin Wolf 已提交
2246 2247
}

2248 2249 2250 2251 2252 2253 2254 2255 2256 2257 2258

static void bdrv_parent_cb_change_media(BlockDriverState *bs, bool load)
{
    BdrvChild *c;
    QLIST_FOREACH(c, &bs->parents, next_parent) {
        if (c->role->change_media) {
            c->role->change_media(c, load);
        }
    }
}

2259 2260 2261 2262 2263 2264 2265 2266 2267 2268 2269 2270
/* Return true if you can reach parent going through child->inherits_from
 * recursively. If parent or child are NULL, return false */
static bool bdrv_inherits_from_recursive(BlockDriverState *child,
                                         BlockDriverState *parent)
{
    while (child && child != parent) {
        child = child->inherits_from;
    }

    return child != NULL;
}

2271 2272 2273 2274
/*
 * Sets the backing file link of a BDS. A new reference is created; callers
 * which don't need their own reference any more must call bdrv_unref().
 */
2275 2276
void bdrv_set_backing_hd(BlockDriverState *bs, BlockDriverState *backing_hd,
                         Error **errp)
F
Fam Zheng 已提交
2277
{
2278 2279 2280
    bool update_inherits_from = bdrv_chain_contains(bs, backing_hd) &&
        bdrv_inherits_from_recursive(backing_hd, bs);

2281 2282 2283
    if (backing_hd) {
        bdrv_ref(backing_hd);
    }
F
Fam Zheng 已提交
2284

2285
    if (bs->backing) {
2286
        bdrv_unref_child(bs, bs->backing);
2287 2288
    }

F
Fam Zheng 已提交
2289
    if (!backing_hd) {
2290
        bs->backing = NULL;
F
Fam Zheng 已提交
2291 2292
        goto out;
    }
2293

2294
    bs->backing = bdrv_attach_child(bs, backing_hd, "backing", &child_backing,
2295
                                    errp);
2296 2297 2298 2299 2300 2301
    /* If backing_hd was already part of bs's backing chain, and
     * inherits_from pointed recursively to bs then let's update it to
     * point directly to bs (else it will become NULL). */
    if (update_inherits_from) {
        backing_hd->inherits_from = bs;
    }
2302 2303 2304
    if (!bs->backing) {
        bdrv_unref(backing_hd);
    }
2305

2306 2307
    bdrv_refresh_filename(bs);

F
Fam Zheng 已提交
2308
out:
2309
    bdrv_refresh_limits(bs, NULL);
F
Fam Zheng 已提交
2310 2311
}

2312 2313 2314
/*
 * Opens the backing file for a BlockDriverState if not yet open
 *
2315 2316 2317 2318 2319 2320
 * bdref_key specifies the key for the image's BlockdevRef in the options QDict.
 * That QDict has to be flattened; therefore, if the BlockdevRef is a QDict
 * itself, all options starting with "${bdref_key}." are considered part of the
 * BlockdevRef.
 *
 * TODO Can this be unified with bdrv_open_image()?
2321
 */
2322 2323
int bdrv_open_backing_file(BlockDriverState *bs, QDict *parent_options,
                           const char *bdref_key, Error **errp)
P
Paolo Bonzini 已提交
2324
{
2325
    char *backing_filename = g_malloc0(PATH_MAX);
2326 2327
    char *bdref_key_dot;
    const char *reference = NULL;
K
Kevin Wolf 已提交
2328
    int ret = 0;
F
Fam Zheng 已提交
2329
    BlockDriverState *backing_hd;
2330 2331
    QDict *options;
    QDict *tmp_parent_options = NULL;
2332
    Error *local_err = NULL;
P
Paolo Bonzini 已提交
2333

2334
    if (bs->backing != NULL) {
2335
        goto free_exit;
P
Paolo Bonzini 已提交
2336 2337
    }

2338
    /* NULL means an empty set of options */
2339 2340 2341
    if (parent_options == NULL) {
        tmp_parent_options = qdict_new();
        parent_options = tmp_parent_options;
2342 2343
    }

P
Paolo Bonzini 已提交
2344
    bs->open_flags &= ~BDRV_O_NO_BACKING;
2345 2346 2347 2348 2349

    bdref_key_dot = g_strdup_printf("%s.", bdref_key);
    qdict_extract_subqdict(parent_options, &options, bdref_key_dot);
    g_free(bdref_key_dot);

2350 2351 2352 2353 2354 2355 2356
    /*
     * Caution: while qdict_get_try_str() is fine, getting non-string
     * types would require more care.  When @parent_options come from
     * -blockdev or blockdev_add, its members are typed according to
     * the QAPI schema, but when they come from -drive, they're all
     * QString.
     */
2357 2358
    reference = qdict_get_try_str(parent_options, bdref_key);
    if (reference || qdict_haskey(options, "file.filename")) {
2359 2360
        backing_filename[0] = '\0';
    } else if (bs->backing_file[0] == '\0' && qdict_size(options) == 0) {
2361
        qobject_unref(options);
2362
        goto free_exit;
F
Fam Zheng 已提交
2363
    } else {
2364 2365 2366 2367 2368
        bdrv_get_full_backing_filename(bs, backing_filename, PATH_MAX,
                                       &local_err);
        if (local_err) {
            ret = -EINVAL;
            error_propagate(errp, local_err);
2369
            qobject_unref(options);
2370 2371
            goto free_exit;
        }
P
Paolo Bonzini 已提交
2372 2373
    }

2374 2375 2376
    if (!bs->drv || !bs->drv->supports_backing) {
        ret = -EINVAL;
        error_setg(errp, "Driver doesn't support backing files");
2377
        qobject_unref(options);
2378 2379 2380
        goto free_exit;
    }

2381 2382
    if (!reference &&
        bs->backing_format[0] != '\0' && !qdict_haskey(options, "driver")) {
2383
        qdict_put_str(options, "driver", bs->backing_format);
P
Paolo Bonzini 已提交
2384 2385
    }

M
Max Reitz 已提交
2386 2387 2388 2389
    backing_hd = bdrv_open_inherit(*backing_filename ? backing_filename : NULL,
                                   reference, options, 0, bs, &child_backing,
                                   errp);
    if (!backing_hd) {
P
Paolo Bonzini 已提交
2390
        bs->open_flags |= BDRV_O_NO_BACKING;
2391
        error_prepend(errp, "Could not open backing file: ");
M
Max Reitz 已提交
2392
        ret = -EINVAL;
2393
        goto free_exit;
P
Paolo Bonzini 已提交
2394
    }
2395
    bdrv_set_aio_context(backing_hd, bdrv_get_aio_context(bs));
2396

2397 2398
    /* Hook up the backing file link; drop our reference, bs owns the
     * backing_hd reference now */
2399
    bdrv_set_backing_hd(bs, backing_hd, &local_err);
2400
    bdrv_unref(backing_hd);
2401
    if (local_err) {
2402
        error_propagate(errp, local_err);
2403 2404 2405
        ret = -EINVAL;
        goto free_exit;
    }
P
Peter Feiner 已提交
2406

2407 2408
    qdict_del(parent_options, bdref_key);

2409 2410
free_exit:
    g_free(backing_filename);
2411
    qobject_unref(tmp_parent_options);
2412
    return ret;
P
Paolo Bonzini 已提交
2413 2414
}

2415 2416 2417 2418
static BlockDriverState *
bdrv_open_child_bs(const char *filename, QDict *options, const char *bdref_key,
                   BlockDriverState *parent, const BdrvChildRole *child_role,
                   bool allow_none, Error **errp)
M
Max Reitz 已提交
2419
{
2420
    BlockDriverState *bs = NULL;
M
Max Reitz 已提交
2421 2422 2423 2424
    QDict *image_options;
    char *bdref_key_dot;
    const char *reference;

2425
    assert(child_role != NULL);
2426

M
Max Reitz 已提交
2427 2428 2429 2430
    bdref_key_dot = g_strdup_printf("%s.", bdref_key);
    qdict_extract_subqdict(options, &image_options, bdref_key_dot);
    g_free(bdref_key_dot);

2431 2432 2433 2434 2435 2436 2437
    /*
     * Caution: while qdict_get_try_str() is fine, getting non-string
     * types would require more care.  When @options come from
     * -blockdev or blockdev_add, its members are typed according to
     * the QAPI schema, but when they come from -drive, they're all
     * QString.
     */
M
Max Reitz 已提交
2438 2439
    reference = qdict_get_try_str(options, bdref_key);
    if (!filename && !reference && !qdict_size(image_options)) {
K
Kevin Wolf 已提交
2440
        if (!allow_none) {
M
Max Reitz 已提交
2441 2442 2443
            error_setg(errp, "A block device must be specified for \"%s\"",
                       bdref_key);
        }
2444
        qobject_unref(image_options);
M
Max Reitz 已提交
2445 2446 2447
        goto done;
    }

M
Max Reitz 已提交
2448 2449 2450
    bs = bdrv_open_inherit(filename, reference, image_options, 0,
                           parent, child_role, errp);
    if (!bs) {
2451 2452 2453
        goto done;
    }

M
Max Reitz 已提交
2454 2455
done:
    qdict_del(options, bdref_key);
2456 2457 2458 2459 2460 2461 2462 2463 2464 2465 2466 2467 2468 2469 2470 2471 2472 2473 2474 2475 2476 2477 2478
    return bs;
}

/*
 * Opens a disk image whose options are given as BlockdevRef in another block
 * device's options.
 *
 * If allow_none is true, no image will be opened if filename is false and no
 * BlockdevRef is given. NULL will be returned, but errp remains unset.
 *
 * bdrev_key specifies the key for the image's BlockdevRef in the options QDict.
 * That QDict has to be flattened; therefore, if the BlockdevRef is a QDict
 * itself, all options starting with "${bdref_key}." are considered part of the
 * BlockdevRef.
 *
 * The BlockdevRef will be removed from the options QDict.
 */
BdrvChild *bdrv_open_child(const char *filename,
                           QDict *options, const char *bdref_key,
                           BlockDriverState *parent,
                           const BdrvChildRole *child_role,
                           bool allow_none, Error **errp)
{
2479
    BdrvChild *c;
2480 2481 2482 2483 2484 2485 2486 2487
    BlockDriverState *bs;

    bs = bdrv_open_child_bs(filename, options, bdref_key, parent, child_role,
                            allow_none, errp);
    if (bs == NULL) {
        return NULL;
    }

2488 2489 2490 2491 2492 2493 2494
    c = bdrv_attach_child(parent, bs, bdref_key, child_role, errp);
    if (!c) {
        bdrv_unref(bs);
        return NULL;
    }

    return c;
K
Kevin Wolf 已提交
2495 2496
}

2497 2498 2499 2500 2501 2502 2503 2504 2505 2506 2507 2508 2509 2510 2511 2512 2513 2514 2515 2516 2517 2518 2519 2520 2521
/* TODO Future callers may need to specify parent/child_role in order for
 * option inheritance to work. Existing callers use it for the root node. */
BlockDriverState *bdrv_open_blockdev_ref(BlockdevRef *ref, Error **errp)
{
    BlockDriverState *bs = NULL;
    Error *local_err = NULL;
    QObject *obj = NULL;
    QDict *qdict = NULL;
    const char *reference = NULL;
    Visitor *v = NULL;

    if (ref->type == QTYPE_QSTRING) {
        reference = ref->u.reference;
    } else {
        BlockdevOptions *options = &ref->u.definition;
        assert(ref->type == QTYPE_QDICT);

        v = qobject_output_visitor_new(&obj);
        visit_type_BlockdevOptions(v, NULL, &options, &local_err);
        if (local_err) {
            error_propagate(errp, local_err);
            goto fail;
        }
        visit_complete(v, &obj);

2522
        qdict = qobject_to(QDict, obj);
2523 2524 2525 2526 2527 2528 2529 2530
        qdict_flatten(qdict);

        /* bdrv_open_inherit() defaults to the values in bdrv_flags (for
         * compatibility with other callers) rather than what we want as the
         * real defaults. Apply the defaults here instead. */
        qdict_set_default_str(qdict, BDRV_OPT_CACHE_DIRECT, "off");
        qdict_set_default_str(qdict, BDRV_OPT_CACHE_NO_FLUSH, "off");
        qdict_set_default_str(qdict, BDRV_OPT_READ_ONLY, "off");
K
Kevin Wolf 已提交
2531 2532
        qdict_set_default_str(qdict, BDRV_OPT_AUTO_READ_ONLY, "off");

2533 2534 2535 2536 2537 2538
    }

    bs = bdrv_open_inherit(NULL, reference, qdict, 0, NULL, NULL, errp);
    obj = NULL;

fail:
2539
    qobject_unref(obj);
2540 2541 2542 2543
    visit_free(v);
    return bs;
}

2544 2545 2546 2547
static BlockDriverState *bdrv_append_temp_snapshot(BlockDriverState *bs,
                                                   int flags,
                                                   QDict *snapshot_options,
                                                   Error **errp)
2548 2549
{
    /* TODO: extra byte is a hack to ensure MAX_PATH space on Windows. */
2550
    char *tmp_filename = g_malloc0(PATH_MAX + 1);
2551
    int64_t total_size;
2552
    QemuOpts *opts = NULL;
2553
    BlockDriverState *bs_snapshot = NULL;
2554
    Error *local_err = NULL;
2555 2556 2557 2558 2559 2560
    int ret;

    /* if snapshot, we create a temporary backing file and open it
       instead of opening 'filename' directly */

    /* Get the required size from the image */
2561 2562 2563
    total_size = bdrv_getlength(bs);
    if (total_size < 0) {
        error_setg_errno(errp, -total_size, "Could not get image size");
2564
        goto out;
2565
    }
2566 2567

    /* Create the temporary image */
2568
    ret = get_tmp_filename(tmp_filename, PATH_MAX + 1);
2569 2570
    if (ret < 0) {
        error_setg_errno(errp, -ret, "Could not get temporary filename");
2571
        goto out;
2572 2573
    }

2574
    opts = qemu_opts_create(bdrv_qcow2.create_opts, NULL, 0,
C
Chunyan Liu 已提交
2575
                            &error_abort);
2576
    qemu_opt_set_number(opts, BLOCK_OPT_SIZE, total_size, &error_abort);
2577
    ret = bdrv_create(&bdrv_qcow2, tmp_filename, opts, errp);
2578
    qemu_opts_del(opts);
2579
    if (ret < 0) {
2580 2581
        error_prepend(errp, "Could not create temporary overlay '%s': ",
                      tmp_filename);
2582
        goto out;
2583 2584
    }

K
Kevin Wolf 已提交
2585
    /* Prepare options QDict for the temporary file */
2586 2587 2588
    qdict_put_str(snapshot_options, "file.driver", "file");
    qdict_put_str(snapshot_options, "file.filename", tmp_filename);
    qdict_put_str(snapshot_options, "driver", "qcow2");
2589

M
Max Reitz 已提交
2590
    bs_snapshot = bdrv_open(NULL, NULL, snapshot_options, flags, errp);
K
Kevin Wolf 已提交
2591
    snapshot_options = NULL;
M
Max Reitz 已提交
2592
    if (!bs_snapshot) {
2593
        goto out;
2594 2595
    }

2596 2597 2598 2599
    /* bdrv_append() consumes a strong reference to bs_snapshot
     * (i.e. it will call bdrv_unref() on it) even on error, so in
     * order to be able to return one, we have to increase
     * bs_snapshot's refcount here */
2600
    bdrv_ref(bs_snapshot);
2601 2602 2603
    bdrv_append(bs_snapshot, bs, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
2604
        bs_snapshot = NULL;
2605 2606
        goto out;
    }
2607 2608

out:
2609
    qobject_unref(snapshot_options);
2610
    g_free(tmp_filename);
2611
    return bs_snapshot;
2612 2613
}

K
Kevin Wolf 已提交
2614 2615
/*
 * Opens a disk image (raw, qcow2, vmdk, ...)
2616 2617 2618 2619
 *
 * options is a QDict of options to pass to the block drivers, or NULL for an
 * empty set of options. The reference to the QDict belongs to the block layer
 * after the call (even on failure), so if the caller intends to reuse the
2620
 * dictionary, it needs to use qobject_ref() before calling bdrv_open.
2621 2622 2623
 *
 * If *pbs is NULL, a new BDS will be created with a pointer to it stored there.
 * If it is not NULL, the referenced BDS will be reused.
2624 2625 2626 2627
 *
 * The reference parameter may be used to specify an existing block device which
 * should be opened. If specified, neither options nor a filename may be given,
 * nor can an existing BDS be reused (that is, *pbs has to be NULL).
K
Kevin Wolf 已提交
2628
 */
M
Max Reitz 已提交
2629 2630 2631 2632 2633 2634
static BlockDriverState *bdrv_open_inherit(const char *filename,
                                           const char *reference,
                                           QDict *options, int flags,
                                           BlockDriverState *parent,
                                           const BdrvChildRole *child_role,
                                           Error **errp)
B
bellard 已提交
2635
{
K
Kevin Wolf 已提交
2636
    int ret;
2637
    BlockBackend *file = NULL;
K
Kevin Wolf 已提交
2638
    BlockDriverState *bs;
2639
    BlockDriver *drv = NULL;
2640
    BdrvChild *child;
2641
    const char *drvname;
2642
    const char *backing;
2643
    Error *local_err = NULL;
K
Kevin Wolf 已提交
2644
    QDict *snapshot_options = NULL;
2645
    int snapshot_flags = 0;
B
bellard 已提交
2646

2647 2648
    assert(!child_role || !flags);
    assert(!child_role == !parent);
2649

2650 2651
    if (reference) {
        bool options_non_empty = options ? qdict_size(options) : false;
2652
        qobject_unref(options);
2653 2654 2655 2656

        if (filename || options_non_empty) {
            error_setg(errp, "Cannot reference an existing block device with "
                       "additional options or a new filename");
M
Max Reitz 已提交
2657
            return NULL;
2658 2659 2660 2661
        }

        bs = bdrv_lookup_bs(reference, reference, errp);
        if (!bs) {
M
Max Reitz 已提交
2662
            return NULL;
2663
        }
2664

2665
        bdrv_ref(bs);
M
Max Reitz 已提交
2666
        return bs;
2667 2668
    }

M
Max Reitz 已提交
2669
    bs = bdrv_new();
2670

2671 2672 2673 2674 2675
    /* NULL means an empty set of options */
    if (options == NULL) {
        options = qdict_new();
    }

K
Kevin Wolf 已提交
2676
    /* json: syntax counts as explicit options, as if in the QDict */
2677 2678 2679 2680 2681
    parse_json_protocol(options, &filename, &local_err);
    if (local_err) {
        goto fail;
    }

K
Kevin Wolf 已提交
2682 2683
    bs->explicit_options = qdict_clone_shallow(options);

2684
    if (child_role) {
2685
        bs->inherits_from = parent;
2686 2687
        child_role->inherit_options(&flags, options,
                                    parent->open_flags, parent->options);
2688 2689
    }

2690
    ret = bdrv_fill_options(&options, filename, &flags, &local_err);
2691 2692 2693 2694
    if (local_err) {
        goto fail;
    }

2695 2696 2697 2698 2699 2700 2701
    /*
     * Set the BDRV_O_RDWR and BDRV_O_ALLOW_RDWR flags.
     * Caution: getting a boolean member of @options requires care.
     * When @options come from -blockdev or blockdev_add, members are
     * typed according to the QAPI schema, but when they come from
     * -drive, they're all QString.
     */
2702 2703 2704 2705 2706
    if (g_strcmp0(qdict_get_try_str(options, BDRV_OPT_READ_ONLY), "on") &&
        !qdict_get_try_bool(options, BDRV_OPT_READ_ONLY, false)) {
        flags |= (BDRV_O_RDWR | BDRV_O_ALLOW_RDWR);
    } else {
        flags &= ~BDRV_O_RDWR;
2707 2708 2709 2710 2711 2712
    }

    if (flags & BDRV_O_SNAPSHOT) {
        snapshot_options = qdict_new();
        bdrv_temp_snapshot_options(&snapshot_flags, snapshot_options,
                                   flags, options);
2713 2714
        /* Let bdrv_backing_options() override "read-only" */
        qdict_del(options, BDRV_OPT_READ_ONLY);
2715 2716 2717
        bdrv_backing_options(&flags, options, flags, options);
    }

K
Kevin Wolf 已提交
2718 2719 2720 2721
    bs->open_flags = flags;
    bs->options = options;
    options = qdict_clone_shallow(options);

2722
    /* Find the right image format driver */
2723
    /* See cautionary note on accessing @options above */
2724 2725 2726 2727 2728 2729 2730 2731 2732 2733 2734
    drvname = qdict_get_try_str(options, "driver");
    if (drvname) {
        drv = bdrv_find_format(drvname);
        if (!drv) {
            error_setg(errp, "Unknown driver: '%s'", drvname);
            goto fail;
        }
    }

    assert(drvname || !(flags & BDRV_O_PROTOCOL));

2735
    /* See cautionary note on accessing @options above */
2736
    backing = qdict_get_try_str(options, "backing");
M
Max Reitz 已提交
2737 2738 2739
    if (qobject_to(QNull, qdict_get(options, "backing")) != NULL ||
        (backing && *backing == '\0'))
    {
M
Max Reitz 已提交
2740 2741 2742 2743
        if (backing) {
            warn_report("Use of \"backing\": \"\" is deprecated; "
                        "use \"backing\": null instead");
        }
2744 2745 2746 2747
        flags |= BDRV_O_NO_BACKING;
        qdict_del(options, "backing");
    }

2748
    /* Open image file without format layer. This BlockBackend is only used for
2749 2750
     * probing, the block drivers will do their own bdrv_open_child() for the
     * same BDS, which is why we put the node name back into options. */
2751
    if ((flags & BDRV_O_PROTOCOL) == 0) {
2752 2753 2754 2755
        BlockDriverState *file_bs;

        file_bs = bdrv_open_child_bs(filename, options, "file", bs,
                                     &child_file, true, &local_err);
K
Kevin Wolf 已提交
2756
        if (local_err) {
2757 2758
            goto fail;
        }
2759
        if (file_bs != NULL) {
2760 2761 2762 2763
            /* Not requesting BLK_PERM_CONSISTENT_READ because we're only
             * looking at the header to guess the image format. This works even
             * in cases where a guest would not see a consistent state. */
            file = blk_new(0, BLK_PERM_ALL);
2764
            blk_insert_bs(file, file_bs, &local_err);
2765
            bdrv_unref(file_bs);
2766 2767 2768
            if (local_err) {
                goto fail;
            }
2769

2770
            qdict_put_str(options, "file", bdrv_get_node_name(file_bs));
2771
        }
2772 2773
    }

2774
    /* Image format probing */
2775
    bs->probed = !drv;
2776
    if (!drv && file) {
2777
        ret = find_image_format(file, filename, &drv, &local_err);
2778
        if (ret < 0) {
2779
            goto fail;
2780
        }
K
Kevin Wolf 已提交
2781 2782 2783 2784 2785 2786 2787 2788 2789 2790 2791
        /*
         * This option update would logically belong in bdrv_fill_options(),
         * but we first need to open bs->file for the probing to work, while
         * opening bs->file already requires the (mostly) final set of options
         * so that cache mode etc. can be inherited.
         *
         * Adding the driver later is somewhat ugly, but it's not an option
         * that would ever be inherited, so it's correct. We just need to make
         * sure to update both bs->options (which has the full effective
         * options for bs) and options (which has file.* already removed).
         */
2792 2793
        qdict_put_str(bs->options, "driver", drv->format_name);
        qdict_put_str(options, "driver", drv->format_name);
2794
    } else if (!drv) {
2795
        error_setg(errp, "Must specify either driver or file");
2796
        goto fail;
B
bellard 已提交
2797
    }
K
Kevin Wolf 已提交
2798

2799 2800 2801 2802 2803 2804
    /* BDRV_O_PROTOCOL must be set iff a protocol BDS is about to be created */
    assert(!!(flags & BDRV_O_PROTOCOL) == !!drv->bdrv_file_open);
    /* file must be NULL if a protocol BDS is about to be created
     * (the inverse results in an error message from bdrv_open_common()) */
    assert(!(flags & BDRV_O_PROTOCOL) || !file);

K
Kevin Wolf 已提交
2805
    /* Open the image */
K
Kevin Wolf 已提交
2806
    ret = bdrv_open_common(bs, file, options, &local_err);
K
Kevin Wolf 已提交
2807
    if (ret < 0) {
2808
        goto fail;
2809 2810
    }

2811
    if (file) {
2812
        blk_unref(file);
2813 2814 2815
        file = NULL;
    }

K
Kevin Wolf 已提交
2816
    /* If there is a backing file, use it */
P
Paolo Bonzini 已提交
2817
    if ((flags & BDRV_O_NO_BACKING) == 0) {
2818
        ret = bdrv_open_backing_file(bs, options, "backing", &local_err);
K
Kevin Wolf 已提交
2819
        if (ret < 0) {
2820
            goto close_and_fail;
K
Kevin Wolf 已提交
2821 2822 2823
        }
    }

2824 2825
    /* Remove all children options and references
     * from bs->options and bs->explicit_options */
2826 2827 2828 2829 2830
    QLIST_FOREACH(child, &bs->children, next) {
        char *child_key_dot;
        child_key_dot = g_strdup_printf("%s.", child->name);
        qdict_extract_subqdict(bs->explicit_options, NULL, child_key_dot);
        qdict_extract_subqdict(bs->options, NULL, child_key_dot);
2831 2832
        qdict_del(bs->explicit_options, child->name);
        qdict_del(bs->options, child->name);
2833 2834 2835
        g_free(child_key_dot);
    }

M
Max Reitz 已提交
2836 2837
    bdrv_refresh_filename(bs);

2838
    /* Check if any unknown options were used */
P
Paolo Bonzini 已提交
2839
    if (qdict_size(options) != 0) {
2840
        const QDictEntry *entry = qdict_first(options);
2841 2842 2843 2844
        if (flags & BDRV_O_PROTOCOL) {
            error_setg(errp, "Block protocol '%s' doesn't support the option "
                       "'%s'", drv->format_name, entry->key);
        } else {
2845 2846 2847
            error_setg(errp,
                       "Block format '%s' does not support the option '%s'",
                       drv->format_name, entry->key);
2848
        }
2849 2850 2851 2852

        goto close_and_fail;
    }

2853
    bdrv_parent_cb_change_media(bs, true);
K
Kevin Wolf 已提交
2854

2855
    qobject_unref(options);
2856
    options = NULL;
2857 2858 2859 2860

    /* For snapshot=on, create a temporary qcow2 overlay. bs points to the
     * temporary snapshot afterwards. */
    if (snapshot_flags) {
2861 2862 2863
        BlockDriverState *snapshot_bs;
        snapshot_bs = bdrv_append_temp_snapshot(bs, snapshot_flags,
                                                snapshot_options, &local_err);
K
Kevin Wolf 已提交
2864
        snapshot_options = NULL;
2865 2866 2867
        if (local_err) {
            goto close_and_fail;
        }
M
Max Reitz 已提交
2868 2869 2870 2871 2872 2873
        /* We are not going to return bs but the overlay on top of it
         * (snapshot_bs); thus, we have to drop the strong reference to bs
         * (which we obtained by calling bdrv_new()). bs will not be deleted,
         * though, because the overlay still has a reference to it. */
        bdrv_unref(bs);
        bs = snapshot_bs;
2874 2875
    }

M
Max Reitz 已提交
2876
    return bs;
K
Kevin Wolf 已提交
2877

2878
fail:
2879
    blk_unref(file);
2880 2881 2882 2883
    qobject_unref(snapshot_options);
    qobject_unref(bs->explicit_options);
    qobject_unref(bs->options);
    qobject_unref(options);
2884
    bs->options = NULL;
2885
    bs->explicit_options = NULL;
M
Max Reitz 已提交
2886
    bdrv_unref(bs);
2887
    error_propagate(errp, local_err);
M
Max Reitz 已提交
2888
    return NULL;
2889

2890
close_and_fail:
M
Max Reitz 已提交
2891
    bdrv_unref(bs);
2892 2893
    qobject_unref(snapshot_options);
    qobject_unref(options);
2894
    error_propagate(errp, local_err);
M
Max Reitz 已提交
2895
    return NULL;
K
Kevin Wolf 已提交
2896 2897
}

M
Max Reitz 已提交
2898 2899
BlockDriverState *bdrv_open(const char *filename, const char *reference,
                            QDict *options, int flags, Error **errp)
2900
{
M
Max Reitz 已提交
2901
    return bdrv_open_inherit(filename, reference, options, flags, NULL,
2902
                             NULL, errp);
2903 2904
}

2905 2906 2907 2908 2909 2910 2911 2912 2913 2914 2915 2916
/*
 * Adds a BlockDriverState to a simple queue for an atomic, transactional
 * reopen of multiple devices.
 *
 * bs_queue can either be an existing BlockReopenQueue that has had QSIMPLE_INIT
 * already performed, or alternatively may be NULL a new BlockReopenQueue will
 * be created and initialized. This newly created BlockReopenQueue should be
 * passed back in for subsequent calls that are intended to be of the same
 * atomic 'set'.
 *
 * bs is the BlockDriverState to add to the reopen queue.
 *
2917 2918 2919
 * options contains the changed options for the associated bs
 * (the BlockReopenQueue takes ownership)
 *
2920 2921 2922 2923 2924
 * flags contains the open flags for the associated bs
 *
 * returns a pointer to bs_queue, which is either the newly allocated
 * bs_queue, or the existing bs_queue being used.
 *
2925
 * bs must be drained between bdrv_reopen_queue() and bdrv_reopen_multiple().
2926
 */
2927 2928 2929 2930 2931 2932
static BlockReopenQueue *bdrv_reopen_queue_child(BlockReopenQueue *bs_queue,
                                                 BlockDriverState *bs,
                                                 QDict *options,
                                                 const BdrvChildRole *role,
                                                 QDict *parent_options,
                                                 int parent_flags)
2933 2934 2935 2936
{
    assert(bs != NULL);

    BlockReopenQueueEntry *bs_entry;
K
Kevin Wolf 已提交
2937
    BdrvChild *child;
2938 2939 2940
    QDict *old_options, *explicit_options, *options_copy;
    int flags;
    QemuOpts *opts;
K
Kevin Wolf 已提交
2941

2942 2943 2944 2945 2946
    /* Make sure that the caller remembered to use a drained section. This is
     * important to avoid graph changes between the recursive queuing here and
     * bdrv_reopen_multiple(). */
    assert(bs->quiesce_counter > 0);

2947 2948 2949 2950 2951
    if (bs_queue == NULL) {
        bs_queue = g_new0(BlockReopenQueue, 1);
        QSIMPLEQ_INIT(bs_queue);
    }

2952 2953 2954 2955
    if (!options) {
        options = qdict_new();
    }

2956 2957 2958 2959 2960 2961 2962
    /* Check if this BlockDriverState is already in the queue */
    QSIMPLEQ_FOREACH(bs_entry, bs_queue, entry) {
        if (bs == bs_entry->state.bs) {
            break;
        }
    }

2963 2964 2965
    /*
     * Precedence of options:
     * 1. Explicitly passed in options (highest)
2966 2967 2968
     * 2. Retained from explicitly set options of bs
     * 3. Inherited from parent node
     * 4. Retained from effective options of bs
2969 2970
     */

K
Kevin Wolf 已提交
2971
    /* Old explicitly set values (don't overwrite by inherited value) */
2972 2973 2974 2975 2976
    if (bs_entry) {
        old_options = qdict_clone_shallow(bs_entry->state.explicit_options);
    } else {
        old_options = qdict_clone_shallow(bs->explicit_options);
    }
K
Kevin Wolf 已提交
2977
    bdrv_join_options(bs, options, old_options);
2978
    qobject_unref(old_options);
K
Kevin Wolf 已提交
2979 2980 2981

    explicit_options = qdict_clone_shallow(options);

2982 2983
    /* Inherit from parent node */
    if (parent_options) {
2984
        flags = 0;
2985
        role->inherit_options(&flags, options, parent_flags, parent_options);
2986 2987
    } else {
        flags = bdrv_get_flags(bs);
2988 2989 2990
    }

    /* Old values are used for options that aren't set yet */
2991
    old_options = qdict_clone_shallow(bs->options);
2992
    bdrv_join_options(bs, options, old_options);
2993
    qobject_unref(old_options);
2994

2995 2996 2997 2998 2999 3000 3001 3002
    /* We have the final set of options so let's update the flags */
    options_copy = qdict_clone_shallow(options);
    opts = qemu_opts_create(&bdrv_runtime_opts, NULL, 0, &error_abort);
    qemu_opts_absorb_qdict(opts, options_copy, NULL);
    update_flags_from_options(&flags, opts);
    qemu_opts_del(opts);
    qobject_unref(options_copy);

3003
    /* bdrv_open_inherit() sets and clears some additional flags internally */
3004
    flags &= ~BDRV_O_PROTOCOL;
3005 3006 3007
    if (flags & BDRV_O_RDWR) {
        flags |= BDRV_O_ALLOW_RDWR;
    }
3008

3009 3010 3011 3012
    if (!bs_entry) {
        bs_entry = g_new0(BlockReopenQueueEntry, 1);
        QSIMPLEQ_INSERT_TAIL(bs_queue, bs_entry, entry);
    } else {
3013 3014
        qobject_unref(bs_entry->state.options);
        qobject_unref(bs_entry->state.explicit_options);
3015 3016 3017 3018 3019 3020 3021
    }

    bs_entry->state.bs = bs;
    bs_entry->state.options = options;
    bs_entry->state.explicit_options = explicit_options;
    bs_entry->state.flags = flags;

3022 3023 3024 3025
    /* This needs to be overwritten in bdrv_reopen_prepare() */
    bs_entry->state.perm = UINT64_MAX;
    bs_entry->state.shared_perm = 0;

K
Kevin Wolf 已提交
3026
    QLIST_FOREACH(child, &bs->children, next) {
3027 3028
        QDict *new_child_options;
        char *child_key_dot;
K
Kevin Wolf 已提交
3029

3030 3031 3032
        /* reopen can only change the options of block devices that were
         * implicitly created and inherited options. For other (referenced)
         * block devices, a syntax like "backing.foo" results in an error. */
K
Kevin Wolf 已提交
3033 3034 3035 3036
        if (child->bs->inherits_from != bs) {
            continue;
        }

3037
        child_key_dot = g_strdup_printf("%s.", child->name);
3038
        qdict_extract_subqdict(explicit_options, NULL, child_key_dot);
3039 3040 3041
        qdict_extract_subqdict(options, &new_child_options, child_key_dot);
        g_free(child_key_dot);

3042
        bdrv_reopen_queue_child(bs_queue, child->bs, new_child_options,
3043
                                child->role, options, flags);
3044 3045 3046 3047 3048
    }

    return bs_queue;
}

3049 3050
BlockReopenQueue *bdrv_reopen_queue(BlockReopenQueue *bs_queue,
                                    BlockDriverState *bs,
3051
                                    QDict *options)
3052
{
3053
    return bdrv_reopen_queue_child(bs_queue, bs, options, NULL, NULL, 0);
3054 3055
}

3056 3057 3058 3059 3060 3061 3062 3063
/*
 * Reopen multiple BlockDriverStates atomically & transactionally.
 *
 * The queue passed in (bs_queue) must have been built up previous
 * via bdrv_reopen_queue().
 *
 * Reopens all BDS specified in the queue, with the appropriate
 * flags.  All devices are prepared for reopen, and failure of any
3064
 * device will cause all device changes to be abandoned, and intermediate
3065 3066 3067 3068 3069
 * data cleaned up.
 *
 * If all devices prepare successfully, then the changes are committed
 * to all devices.
 *
3070 3071
 * All affected nodes must be drained between bdrv_reopen_queue() and
 * bdrv_reopen_multiple().
3072
 */
3073
int bdrv_reopen_multiple(AioContext *ctx, BlockReopenQueue *bs_queue, Error **errp)
3074 3075 3076 3077 3078 3079 3080 3081
{
    int ret = -1;
    BlockReopenQueueEntry *bs_entry, *next;
    Error *local_err = NULL;

    assert(bs_queue != NULL);

    QSIMPLEQ_FOREACH(bs_entry, bs_queue, entry) {
3082
        assert(bs_entry->state.bs->quiesce_counter > 0);
3083 3084 3085 3086 3087 3088 3089 3090 3091 3092 3093 3094 3095 3096 3097 3098 3099 3100
        if (bdrv_reopen_prepare(&bs_entry->state, bs_queue, &local_err)) {
            error_propagate(errp, local_err);
            goto cleanup;
        }
        bs_entry->prepared = true;
    }

    /* If we reach this point, we have success and just need to apply the
     * changes
     */
    QSIMPLEQ_FOREACH(bs_entry, bs_queue, entry) {
        bdrv_reopen_commit(&bs_entry->state);
    }

    ret = 0;

cleanup:
    QSIMPLEQ_FOREACH_SAFE(bs_entry, bs_queue, entry, next) {
3101 3102 3103 3104
        if (ret) {
            if (bs_entry->prepared) {
                bdrv_reopen_abort(&bs_entry->state);
            }
3105
            qobject_unref(bs_entry->state.explicit_options);
3106
            qobject_unref(bs_entry->state.options);
3107 3108 3109 3110
        }
        g_free(bs_entry);
    }
    g_free(bs_queue);
3111

3112 3113 3114
    return ret;
}

3115 3116 3117 3118 3119 3120 3121 3122 3123 3124
int bdrv_reopen_set_read_only(BlockDriverState *bs, bool read_only,
                              Error **errp)
{
    int ret;
    BlockReopenQueue *queue;
    QDict *opts = qdict_new();

    qdict_put_bool(opts, BDRV_OPT_READ_ONLY, read_only);

    bdrv_subtree_drained_begin(bs);
3125
    queue = bdrv_reopen_queue(NULL, bs, opts);
3126 3127 3128 3129 3130 3131
    ret = bdrv_reopen_multiple(bdrv_get_aio_context(bs), queue, errp);
    bdrv_subtree_drained_end(bs);

    return ret;
}

3132 3133 3134 3135 3136 3137 3138 3139 3140 3141 3142 3143 3144 3145 3146 3147 3148 3149 3150 3151 3152 3153 3154 3155 3156 3157 3158 3159 3160 3161 3162 3163 3164 3165 3166 3167 3168 3169 3170 3171 3172 3173 3174 3175 3176 3177
static BlockReopenQueueEntry *find_parent_in_reopen_queue(BlockReopenQueue *q,
                                                          BdrvChild *c)
{
    BlockReopenQueueEntry *entry;

    QSIMPLEQ_FOREACH(entry, q, entry) {
        BlockDriverState *bs = entry->state.bs;
        BdrvChild *child;

        QLIST_FOREACH(child, &bs->children, next) {
            if (child == c) {
                return entry;
            }
        }
    }

    return NULL;
}

static void bdrv_reopen_perm(BlockReopenQueue *q, BlockDriverState *bs,
                             uint64_t *perm, uint64_t *shared)
{
    BdrvChild *c;
    BlockReopenQueueEntry *parent;
    uint64_t cumulative_perms = 0;
    uint64_t cumulative_shared_perms = BLK_PERM_ALL;

    QLIST_FOREACH(c, &bs->parents, next_parent) {
        parent = find_parent_in_reopen_queue(q, c);
        if (!parent) {
            cumulative_perms |= c->perm;
            cumulative_shared_perms &= c->shared_perm;
        } else {
            uint64_t nperm, nshared;

            bdrv_child_perm(parent->state.bs, bs, c, c->role, q,
                            parent->state.perm, parent->state.shared_perm,
                            &nperm, &nshared);

            cumulative_perms |= nperm;
            cumulative_shared_perms &= nshared;
        }
    }
    *perm = cumulative_perms;
    *shared = cumulative_shared_perms;
}
3178 3179 3180 3181 3182 3183 3184 3185 3186 3187 3188 3189 3190 3191 3192 3193 3194 3195 3196 3197 3198 3199 3200 3201

/*
 * Prepares a BlockDriverState for reopen. All changes are staged in the
 * 'opaque' field of the BDRVReopenState, which is used and allocated by
 * the block driver layer .bdrv_reopen_prepare()
 *
 * bs is the BlockDriverState to reopen
 * flags are the new open flags
 * queue is the reopen queue
 *
 * Returns 0 on success, non-zero on error.  On error errp will be set
 * as well.
 *
 * On failure, bdrv_reopen_abort() will be called to clean up any data.
 * It is the responsibility of the caller to then call the abort() or
 * commit() for any other BDS that have been left in a prepare() state
 *
 */
int bdrv_reopen_prepare(BDRVReopenState *reopen_state, BlockReopenQueue *queue,
                        Error **errp)
{
    int ret = -1;
    Error *local_err = NULL;
    BlockDriver *drv;
3202
    QemuOpts *opts;
3203
    QDict *orig_reopen_opts;
3204
    char *discard = NULL;
3205
    bool read_only;
3206
    bool drv_prepared = false;
3207 3208 3209 3210 3211

    assert(reopen_state != NULL);
    assert(reopen_state->bs->drv != NULL);
    drv = reopen_state->bs->drv;

3212 3213 3214 3215 3216
    /* This function and each driver's bdrv_reopen_prepare() remove
     * entries from reopen_state->options as they are processed, so
     * we need to make a copy of the original QDict. */
    orig_reopen_opts = qdict_clone_shallow(reopen_state->options);

3217 3218 3219 3220 3221 3222 3223 3224 3225
    /* Process generic block layer options */
    opts = qemu_opts_create(&bdrv_runtime_opts, NULL, 0, &error_abort);
    qemu_opts_absorb_qdict(opts, reopen_state->options, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        ret = -EINVAL;
        goto error;
    }

3226 3227
    update_flags_from_options(&reopen_state->flags, opts);

3228
    discard = qemu_opt_get_del(opts, BDRV_OPT_DISCARD);
3229 3230 3231 3232 3233 3234 3235 3236
    if (discard != NULL) {
        if (bdrv_parse_discard_flags(discard, &reopen_state->flags) != 0) {
            error_setg(errp, "Invalid discard option");
            ret = -EINVAL;
            goto error;
        }
    }

3237 3238 3239 3240 3241 3242 3243 3244
    reopen_state->detect_zeroes =
        bdrv_parse_detect_zeroes(opts, reopen_state->flags, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        ret = -EINVAL;
        goto error;
    }

3245 3246 3247 3248
    /* All other options (including node-name and driver) must be unchanged.
     * Put them back into the QDict, so that they are checked at the end
     * of this function. */
    qemu_opts_to_qdict(opts, reopen_state->options);
3249

3250 3251 3252 3253
    /* If we are to stay read-only, do not allow permission change
     * to r/w. Attempting to set to r/w may fail if either BDRV_O_ALLOW_RDWR is
     * not set, or if the BDS still has copy_on_read enabled */
    read_only = !(reopen_state->flags & BDRV_O_RDWR);
3254
    ret = bdrv_can_set_read_only(reopen_state->bs, read_only, true, &local_err);
3255 3256
    if (local_err) {
        error_propagate(errp, local_err);
3257 3258 3259
        goto error;
    }

3260 3261 3262
    /* Calculate required permissions after reopening */
    bdrv_reopen_perm(queue, reopen_state->bs,
                     &reopen_state->perm, &reopen_state->shared_perm);
3263 3264 3265

    ret = bdrv_flush(reopen_state->bs);
    if (ret) {
E
Eric Blake 已提交
3266
        error_setg_errno(errp, -ret, "Error flushing drive");
3267 3268 3269 3270 3271 3272 3273 3274 3275
        goto error;
    }

    if (drv->bdrv_reopen_prepare) {
        ret = drv->bdrv_reopen_prepare(reopen_state, queue, &local_err);
        if (ret) {
            if (local_err != NULL) {
                error_propagate(errp, local_err);
            } else {
3276 3277
                error_setg(errp, "failed while preparing to reopen image '%s'",
                           reopen_state->bs->filename);
3278 3279 3280 3281 3282 3283
            }
            goto error;
        }
    } else {
        /* It is currently mandatory to have a bdrv_reopen_prepare()
         * handler for each supported drv. */
3284 3285 3286
        error_setg(errp, "Block format '%s' used by node '%s' "
                   "does not support reopening files", drv->format_name,
                   bdrv_get_device_or_node_name(reopen_state->bs));
3287 3288 3289 3290
        ret = -1;
        goto error;
    }

3291 3292
    drv_prepared = true;

3293 3294 3295 3296 3297 3298 3299
    /* Options that are not handled are only okay if they are unchanged
     * compared to the old state. It is expected that some options are only
     * used for the initial open, but not reopen (e.g. filename) */
    if (qdict_size(reopen_state->options)) {
        const QDictEntry *entry = qdict_first(reopen_state->options);

        do {
3300 3301 3302
            QObject *new = entry->value;
            QObject *old = qdict_get(reopen_state->bs->options, entry->key);

3303 3304 3305 3306 3307 3308 3309 3310 3311 3312 3313 3314 3315 3316 3317 3318 3319 3320
            /* Allow child references (child_name=node_name) as long as they
             * point to the current child (i.e. everything stays the same). */
            if (qobject_type(new) == QTYPE_QSTRING) {
                BdrvChild *child;
                QLIST_FOREACH(child, &reopen_state->bs->children, next) {
                    if (!strcmp(child->name, entry->key)) {
                        break;
                    }
                }

                if (child) {
                    const char *str = qobject_get_try_str(new);
                    if (!strcmp(child->bs->node_name, str)) {
                        continue; /* Found child with this name, skip option */
                    }
                }
            }

3321
            /*
3322 3323 3324 3325 3326 3327 3328 3329 3330 3331 3332 3333 3334 3335
             * TODO: When using -drive to specify blockdev options, all values
             * will be strings; however, when using -blockdev, blockdev-add or
             * filenames using the json:{} pseudo-protocol, they will be
             * correctly typed.
             * In contrast, reopening options are (currently) always strings
             * (because you can only specify them through qemu-io; all other
             * callers do not specify any options).
             * Therefore, when using anything other than -drive to create a BDS,
             * this cannot detect non-string options as unchanged, because
             * qobject_is_equal() always returns false for objects of different
             * type.  In the future, this should be remedied by correctly typing
             * all options.  For now, this is not too big of an issue because
             * the user can simply omit options which cannot be changed anyway,
             * so they will stay unchanged.
3336
             */
3337
            if (!qobject_is_equal(new, old)) {
3338 3339 3340 3341 3342 3343 3344
                error_setg(errp, "Cannot change the option '%s'", entry->key);
                ret = -EINVAL;
                goto error;
            }
        } while ((entry = qdict_next(reopen_state->options, entry)));
    }

3345 3346 3347 3348 3349 3350
    ret = bdrv_check_perm(reopen_state->bs, queue, reopen_state->perm,
                          reopen_state->shared_perm, NULL, errp);
    if (ret < 0) {
        goto error;
    }

3351 3352
    ret = 0;

3353 3354 3355 3356
    /* Restore the original reopen_state->options QDict */
    qobject_unref(reopen_state->options);
    reopen_state->options = qobject_ref(orig_reopen_opts);

3357
error:
3358 3359 3360 3361 3362 3363 3364 3365 3366
    if (ret < 0 && drv_prepared) {
        /* drv->bdrv_reopen_prepare() has succeeded, so we need to
         * call drv->bdrv_reopen_abort() before signaling an error
         * (bdrv_reopen_multiple() will not call bdrv_reopen_abort()
         * when the respective bdrv_reopen_prepare() has failed) */
        if (drv->bdrv_reopen_abort) {
            drv->bdrv_reopen_abort(reopen_state);
        }
    }
3367
    qemu_opts_del(opts);
3368
    qobject_unref(orig_reopen_opts);
3369
    g_free(discard);
3370 3371 3372 3373 3374 3375 3376 3377 3378 3379 3380
    return ret;
}

/*
 * Takes the staged changes for the reopen from bdrv_reopen_prepare(), and
 * makes them final by swapping the staging BlockDriverState contents into
 * the active BlockDriverState contents.
 */
void bdrv_reopen_commit(BDRVReopenState *reopen_state)
{
    BlockDriver *drv;
3381
    BlockDriverState *bs;
3382
    BdrvChild *child;
3383
    bool old_can_write, new_can_write;
3384 3385

    assert(reopen_state != NULL);
3386 3387
    bs = reopen_state->bs;
    drv = bs->drv;
3388 3389
    assert(drv != NULL);

3390 3391 3392
    old_can_write =
        !bdrv_is_read_only(bs) && !(bdrv_get_flags(bs) & BDRV_O_INACTIVE);

3393 3394 3395 3396 3397 3398
    /* If there are any driver level actions to take */
    if (drv->bdrv_reopen_commit) {
        drv->bdrv_reopen_commit(reopen_state);
    }

    /* set BDS specific flags now */
3399
    qobject_unref(bs->explicit_options);
3400
    qobject_unref(bs->options);
K
Kevin Wolf 已提交
3401

3402
    bs->explicit_options   = reopen_state->explicit_options;
3403
    bs->options            = reopen_state->options;
3404 3405
    bs->open_flags         = reopen_state->flags;
    bs->read_only = !(reopen_state->flags & BDRV_O_RDWR);
3406
    bs->detect_zeroes      = reopen_state->detect_zeroes;
3407

3408 3409 3410 3411 3412 3413 3414
    /* Remove child references from bs->options and bs->explicit_options.
     * Child options were already removed in bdrv_reopen_queue_child() */
    QLIST_FOREACH(child, &bs->children, next) {
        qdict_del(bs->explicit_options, child->name);
        qdict_del(bs->options, child->name);
    }

3415
    bdrv_refresh_limits(bs, NULL);
3416

3417 3418 3419
    bdrv_set_perm(reopen_state->bs, reopen_state->perm,
                  reopen_state->shared_perm);

3420 3421 3422 3423 3424 3425 3426 3427 3428 3429 3430 3431 3432 3433
    new_can_write =
        !bdrv_is_read_only(bs) && !(bdrv_get_flags(bs) & BDRV_O_INACTIVE);
    if (!old_can_write && new_can_write && drv->bdrv_reopen_bitmaps_rw) {
        Error *local_err = NULL;
        if (drv->bdrv_reopen_bitmaps_rw(bs, &local_err) < 0) {
            /* This is not fatal, bitmaps just left read-only, so all following
             * writes will fail. User can remove read-only bitmaps to unblock
             * writes.
             */
            error_reportf_err(local_err,
                              "%s: Failed to make dirty bitmaps writable: ",
                              bdrv_get_node_name(bs));
        }
    }
3434 3435 3436 3437 3438 3439 3440 3441 3442 3443 3444 3445 3446 3447 3448 3449 3450
}

/*
 * Abort the reopen, and delete and free the staged changes in
 * reopen_state
 */
void bdrv_reopen_abort(BDRVReopenState *reopen_state)
{
    BlockDriver *drv;

    assert(reopen_state != NULL);
    drv = reopen_state->bs->drv;
    assert(drv != NULL);

    if (drv->bdrv_reopen_abort) {
        drv->bdrv_reopen_abort(reopen_state);
    }
K
Kevin Wolf 已提交
3451

3452
    bdrv_abort_perm_update(reopen_state->bs);
3453 3454 3455
}


M
Max Reitz 已提交
3456
static void bdrv_close(BlockDriverState *bs)
B
bellard 已提交
3457
{
M
Max Reitz 已提交
3458
    BdrvAioNotifier *ban, *ban_next;
3459
    BdrvChild *child, *next;
M
Max Reitz 已提交
3460

M
Max Reitz 已提交
3461
    assert(!bs->job);
3462
    assert(!bs->refcnt);
3463

3464
    bdrv_drained_begin(bs); /* complete I/O */
3465
    bdrv_flush(bs);
3466
    bdrv_drain(bs); /* in case flush left pending I/O */
3467

3468
    if (bs->drv) {
3469 3470 3471
        if (bs->drv->bdrv_close) {
            bs->drv->bdrv_close(bs);
        }
K
Kevin Wolf 已提交
3472
        bs->drv = NULL;
3473
    }
3474

3475
    bdrv_set_backing_hd(bs, NULL, &error_abort);
3476

3477 3478 3479 3480
    if (bs->file != NULL) {
        bdrv_unref_child(bs, bs->file);
        bs->file = NULL;
    }
K
Kevin Wolf 已提交
3481

3482 3483 3484 3485 3486
    QLIST_FOREACH_SAFE(child, &bs->children, next, next) {
        /* TODO Remove bdrv_unref() from drivers' close function and use
         * bdrv_unref_child() here */
        if (child->bs->inherits_from == bs) {
            child->bs->inherits_from = NULL;
3487
        }
3488
        bdrv_detach_child(child);
B
bellard 已提交
3489
    }
Z
Zhi Yong Wu 已提交
3490

3491 3492 3493 3494 3495 3496 3497 3498
    g_free(bs->opaque);
    bs->opaque = NULL;
    atomic_set(&bs->copy_on_read, 0);
    bs->backing_file[0] = '\0';
    bs->backing_format[0] = '\0';
    bs->total_sectors = 0;
    bs->encrypted = false;
    bs->sg = false;
3499 3500
    qobject_unref(bs->options);
    qobject_unref(bs->explicit_options);
3501 3502
    bs->options = NULL;
    bs->explicit_options = NULL;
3503
    qobject_unref(bs->full_open_options);
3504 3505
    bs->full_open_options = NULL;

3506 3507 3508
    bdrv_release_named_dirty_bitmaps(bs);
    assert(QLIST_EMPTY(&bs->dirty_bitmaps));

M
Max Reitz 已提交
3509 3510 3511 3512
    QLIST_FOREACH_SAFE(ban, &bs->aio_notifiers, list, ban_next) {
        g_free(ban);
    }
    QLIST_INIT(&bs->aio_notifiers);
3513
    bdrv_drained_end(bs);
B
bellard 已提交
3514 3515
}

3516 3517
void bdrv_close_all(void)
{
3518
    assert(job_next(NULL) == NULL);
3519
    nbd_export_close_all();
M
Max Reitz 已提交
3520 3521 3522 3523

    /* Drop references from requests still in flight, such as canceled block
     * jobs whose AIO context has not been polled yet */
    bdrv_drain_all();
3524

M
Max Reitz 已提交
3525 3526
    blk_remove_all_bs();
    blockdev_close_all_bdrv_states();
3527

3528
    assert(QTAILQ_EMPTY(&all_bdrv_states));
3529 3530
}

3531 3532 3533 3534 3535 3536 3537 3538
static bool should_update_child(BdrvChild *c, BlockDriverState *to)
{
    BdrvChild *to_c;

    if (c->role->stay_at_node) {
        return false;
    }

3539 3540 3541 3542 3543 3544 3545 3546 3547 3548 3549 3550 3551 3552 3553 3554 3555 3556 3557 3558 3559 3560 3561 3562 3563 3564 3565 3566 3567 3568 3569 3570 3571
    /* If the child @c belongs to the BDS @to, replacing the current
     * c->bs by @to would mean to create a loop.
     *
     * Such a case occurs when appending a BDS to a backing chain.
     * For instance, imagine the following chain:
     *
     *   guest device -> node A -> further backing chain...
     *
     * Now we create a new BDS B which we want to put on top of this
     * chain, so we first attach A as its backing node:
     *
     *                   node B
     *                     |
     *                     v
     *   guest device -> node A -> further backing chain...
     *
     * Finally we want to replace A by B.  When doing that, we want to
     * replace all pointers to A by pointers to B -- except for the
     * pointer from B because (1) that would create a loop, and (2)
     * that pointer should simply stay intact:
     *
     *   guest device -> node B
     *                     |
     *                     v
     *                   node A -> further backing chain...
     *
     * In general, when replacing a node A (c->bs) by a node B (@to),
     * if A is a child of B, that means we cannot replace A by B there
     * because that would create a loop.  Silently detaching A from B
     * is also not really an option.  So overall just leaving A in
     * place there is the most sensible choice. */
    QLIST_FOREACH(to_c, &to->children, next) {
        if (to_c == c) {
3572 3573 3574 3575 3576 3577 3578
            return false;
        }
    }

    return true;
}

3579 3580
void bdrv_replace_node(BlockDriverState *from, BlockDriverState *to,
                       Error **errp)
3581
{
3582
    BdrvChild *c, *next;
3583 3584 3585 3586 3587
    GSList *list = NULL, *p;
    uint64_t old_perm, old_shared;
    uint64_t perm = 0, shared = BLK_PERM_ALL;
    int ret;

3588 3589
    assert(!atomic_read(&from->in_flight));
    assert(!atomic_read(&to->in_flight));
3590

3591 3592 3593
    /* Make sure that @from doesn't go away until we have successfully attached
     * all of its parents to @to. */
    bdrv_ref(from);
3594

3595
    /* Put all parents into @list and calculate their cumulative permissions */
3596
    QLIST_FOREACH_SAFE(c, &from->parents, next_parent, next) {
3597
        assert(c->bs == from);
3598
        if (!should_update_child(c, to)) {
3599 3600
            continue;
        }
3601 3602 3603 3604 3605 3606 3607
        list = g_slist_prepend(list, c);
        perm |= c->perm;
        shared &= c->shared_perm;
    }

    /* Check whether the required permissions can be granted on @to, ignoring
     * all BdrvChild in @list so that they can't block themselves. */
3608
    ret = bdrv_check_update_perm(to, NULL, perm, shared, list, errp);
3609 3610 3611 3612 3613 3614 3615 3616 3617 3618
    if (ret < 0) {
        bdrv_abort_perm_update(to);
        goto out;
    }

    /* Now actually perform the change. We performed the permission check for
     * all elements of @list at once, so set the permissions all at once at the
     * very end. */
    for (p = list; p != NULL; p = p->next) {
        c = p->data;
3619

3620
        bdrv_ref(to);
3621
        bdrv_replace_child_noperm(c, to);
3622 3623
        bdrv_unref(from);
    }
3624 3625 3626 3627 3628 3629 3630

    bdrv_get_cumulative_perm(to, &old_perm, &old_shared);
    bdrv_set_perm(to, old_perm | perm, old_shared | shared);

out:
    g_slist_free(list);
    bdrv_unref(from);
3631 3632
}

3633 3634 3635 3636 3637 3638 3639
/*
 * Add new bs contents at the top of an image chain while the chain is
 * live, while keeping required fields on the top layer.
 *
 * This will modify the BlockDriverState fields, and swap contents
 * between bs_new and bs_top. Both bs_new and bs_top are modified.
 *
3640
 * bs_new must not be attached to a BlockBackend.
3641 3642
 *
 * This function does not create any image files.
3643 3644 3645 3646 3647
 *
 * bdrv_append() takes ownership of a bs_new reference and unrefs it because
 * that's what the callers commonly need. bs_new will be referenced by the old
 * parents of bs_top after bdrv_append() returns. If the caller needs to keep a
 * reference of its own, it must call bdrv_ref().
3648
 */
3649 3650
void bdrv_append(BlockDriverState *bs_new, BlockDriverState *bs_top,
                 Error **errp)
3651
{
3652 3653 3654 3655 3656 3657 3658
    Error *local_err = NULL;

    bdrv_set_backing_hd(bs_new, bs_top, &local_err);
    if (local_err) {
        error_propagate(errp, local_err);
        goto out;
    }
3659

3660
    bdrv_replace_node(bs_top, bs_new, &local_err);
3661 3662 3663 3664 3665
    if (local_err) {
        error_propagate(errp, local_err);
        bdrv_set_backing_hd(bs_new, NULL, &error_abort);
        goto out;
    }
3666

3667 3668
    /* bs_new is now referenced by its new parents, we don't need the
     * additional reference any more. */
3669
out:
3670
    bdrv_unref(bs_new);
3671 3672
}

F
Fam Zheng 已提交
3673
static void bdrv_delete(BlockDriverState *bs)
B
bellard 已提交
3674
{
3675
    assert(!bs->job);
3676
    assert(bdrv_op_blocker_is_empty(bs));
F
Fam Zheng 已提交
3677
    assert(!bs->refcnt);
3678

3679 3680
    bdrv_close(bs);

3681
    /* remove from list, if necessary */
K
Kevin Wolf 已提交
3682 3683 3684
    if (bs->node_name[0] != '\0') {
        QTAILQ_REMOVE(&graph_bdrv_states, bs, node_list);
    }
3685 3686
    QTAILQ_REMOVE(&all_bdrv_states, bs, bs_list);

3687
    g_free(bs);
B
bellard 已提交
3688 3689
}

A
aliguori 已提交
3690 3691 3692
/*
 * Run consistency checks on an image
 *
3693
 * Returns 0 if the check could be completed (it doesn't mean that the image is
3694
 * free of errors) or -errno when an internal error occurred. The results of the
3695
 * check are stored in res.
A
aliguori 已提交
3696
 */
3697 3698
static int coroutine_fn bdrv_co_check(BlockDriverState *bs,
                                      BdrvCheckResult *res, BdrvCheckMode fix)
A
aliguori 已提交
3699
{
3700 3701 3702
    if (bs->drv == NULL) {
        return -ENOMEDIUM;
    }
3703
    if (bs->drv->bdrv_co_check == NULL) {
A
aliguori 已提交
3704 3705 3706
        return -ENOTSUP;
    }

3707
    memset(res, 0, sizeof(*res));
3708 3709 3710 3711 3712 3713 3714 3715 3716 3717 3718 3719 3720 3721 3722 3723 3724 3725 3726 3727 3728 3729 3730 3731 3732 3733 3734 3735 3736 3737 3738 3739 3740 3741 3742 3743 3744
    return bs->drv->bdrv_co_check(bs, res, fix);
}

typedef struct CheckCo {
    BlockDriverState *bs;
    BdrvCheckResult *res;
    BdrvCheckMode fix;
    int ret;
} CheckCo;

static void bdrv_check_co_entry(void *opaque)
{
    CheckCo *cco = opaque;
    cco->ret = bdrv_co_check(cco->bs, cco->res, cco->fix);
}

int bdrv_check(BlockDriverState *bs,
               BdrvCheckResult *res, BdrvCheckMode fix)
{
    Coroutine *co;
    CheckCo cco = {
        .bs = bs,
        .res = res,
        .ret = -EINPROGRESS,
        .fix = fix,
    };

    if (qemu_in_coroutine()) {
        /* Fast-path if already in coroutine context */
        bdrv_check_co_entry(&cco);
    } else {
        co = qemu_coroutine_create(bdrv_check_co_entry, &cco);
        qemu_coroutine_enter(co);
        BDRV_POLL_WHILE(bs, cco.ret == -EINPROGRESS);
    }

    return cco.ret;
A
aliguori 已提交
3745 3746
}

K
Kevin Wolf 已提交
3747 3748 3749 3750 3751 3752 3753 3754 3755 3756 3757 3758
/*
 * Return values:
 * 0        - success
 * -EINVAL  - backing format specified, but no file
 * -ENOSPC  - can't update the backing file because no space is left in the
 *            image file header
 * -ENOTSUP - format driver doesn't support changing the backing file
 */
int bdrv_change_backing_file(BlockDriverState *bs,
    const char *backing_file, const char *backing_fmt)
{
    BlockDriver *drv = bs->drv;
3759
    int ret;
K
Kevin Wolf 已提交
3760

M
Max Reitz 已提交
3761 3762 3763 3764
    if (!drv) {
        return -ENOMEDIUM;
    }

3765 3766 3767 3768 3769
    /* Backing file format doesn't make sense without a backing file */
    if (backing_fmt && !backing_file) {
        return -EINVAL;
    }

K
Kevin Wolf 已提交
3770
    if (drv->bdrv_change_backing_file != NULL) {
3771
        ret = drv->bdrv_change_backing_file(bs, backing_file, backing_fmt);
K
Kevin Wolf 已提交
3772
    } else {
3773
        ret = -ENOTSUP;
K
Kevin Wolf 已提交
3774
    }
3775 3776 3777 3778 3779 3780

    if (ret == 0) {
        pstrcpy(bs->backing_file, sizeof(bs->backing_file), backing_file ?: "");
        pstrcpy(bs->backing_format, sizeof(bs->backing_format), backing_fmt ?: "");
    }
    return ret;
K
Kevin Wolf 已提交
3781 3782
}

3783 3784 3785 3786 3787 3788 3789
/*
 * Finds the image layer in the chain that has 'bs' as its backing file.
 *
 * active is the current topmost image.
 *
 * Returns NULL if bs is not found in active's image chain,
 * or if active == bs.
3790 3791
 *
 * Returns the bottommost base image if bs == NULL.
3792 3793 3794 3795
 */
BlockDriverState *bdrv_find_overlay(BlockDriverState *active,
                                    BlockDriverState *bs)
{
3796 3797
    while (active && bs != backing_bs(active)) {
        active = backing_bs(active);
3798 3799
    }

3800 3801
    return active;
}
3802

3803 3804 3805 3806
/* Given a BDS, searches for the base layer. */
BlockDriverState *bdrv_find_base(BlockDriverState *bs)
{
    return bdrv_find_overlay(bs, NULL);
3807 3808 3809 3810 3811 3812 3813 3814 3815 3816 3817 3818 3819 3820 3821 3822 3823 3824 3825 3826 3827 3828 3829 3830
}

/*
 * Drops images above 'base' up to and including 'top', and sets the image
 * above 'top' to have base as its backing file.
 *
 * Requires that the overlay to 'top' is opened r/w, so that the backing file
 * information in 'bs' can be properly updated.
 *
 * E.g., this will convert the following chain:
 * bottom <- base <- intermediate <- top <- active
 *
 * to
 *
 * bottom <- base <- active
 *
 * It is allowed for bottom==base, in which case it converts:
 *
 * base <- intermediate <- top <- active
 *
 * to
 *
 * base <- active
 *
3831 3832 3833
 * If backing_file_str is non-NULL, it will be used when modifying top's
 * overlay image metadata.
 *
3834 3835 3836 3837
 * Error conditions:
 *  if active == top, that is considered an error
 *
 */
K
Kevin Wolf 已提交
3838 3839
int bdrv_drop_intermediate(BlockDriverState *top, BlockDriverState *base,
                           const char *backing_file_str)
3840
{
3841 3842
    BlockDriverState *explicit_top = top;
    bool update_inherits_from;
3843
    BdrvChild *c, *next;
3844
    Error *local_err = NULL;
3845 3846
    int ret = -EIO;

3847 3848
    bdrv_ref(top);

3849 3850 3851 3852
    if (!top->drv || !base->drv) {
        goto exit;
    }

3853 3854
    /* Make sure that base is in the backing chain of top */
    if (!bdrv_chain_contains(top, base)) {
3855 3856 3857
        goto exit;
    }

3858 3859 3860 3861 3862 3863 3864 3865 3866 3867
    /* If 'base' recursively inherits from 'top' then we should set
     * base->inherits_from to top->inherits_from after 'top' and all
     * other intermediate nodes have been dropped.
     * If 'top' is an implicit node (e.g. "commit_top") we should skip
     * it because no one inherits from it. We use explicit_top for that. */
    while (explicit_top && explicit_top->implicit) {
        explicit_top = backing_bs(explicit_top);
    }
    update_inherits_from = bdrv_inherits_from_recursive(base, explicit_top);

3868
    /* success - we can delete the intermediate states, and link top->base */
K
Kevin Wolf 已提交
3869 3870
    /* TODO Check graph modification op blockers (BLK_PERM_GRAPH_MOD) once
     * we've figured out how they should work. */
3871 3872 3873 3874 3875 3876 3877
    backing_file_str = backing_file_str ? backing_file_str : base->filename;

    QLIST_FOREACH_SAFE(c, &top->parents, next_parent, next) {
        /* Check whether we are allowed to switch c from top to base */
        GSList *ignore_children = g_slist_prepend(NULL, c);
        bdrv_check_update_perm(base, NULL, c->perm, c->shared_perm,
                               ignore_children, &local_err);
3878
        g_slist_free(ignore_children);
3879 3880 3881
        if (local_err) {
            ret = -EPERM;
            error_report_err(local_err);
3882 3883
            goto exit;
        }
3884

3885 3886 3887 3888 3889 3890 3891 3892 3893 3894 3895 3896 3897 3898 3899 3900
        /* If so, update the backing file path in the image file */
        if (c->role->update_filename) {
            ret = c->role->update_filename(c, base, backing_file_str,
                                           &local_err);
            if (ret < 0) {
                bdrv_abort_perm_update(base);
                error_report_err(local_err);
                goto exit;
            }
        }

        /* Do the actual switch in the in-memory graph.
         * Completes bdrv_check_update_perm() transaction internally. */
        bdrv_ref(base);
        bdrv_replace_child(c, base);
        bdrv_unref(top);
3901
    }
3902

3903 3904 3905 3906
    if (update_inherits_from) {
        base->inherits_from = explicit_top->inherits_from;
    }

3907 3908
    ret = 0;
exit:
3909
    bdrv_unref(top);
3910 3911 3912
    return ret;
}

3913 3914 3915 3916 3917
/**
 * Length of a allocated file in bytes. Sparse files are counted by actual
 * allocated space. Return < 0 if error or unknown.
 */
int64_t bdrv_get_allocated_file_size(BlockDriverState *bs)
3918
{
3919 3920 3921
    BlockDriver *drv = bs->drv;
    if (!drv) {
        return -ENOMEDIUM;
3922
    }
3923 3924 3925 3926
    if (drv->bdrv_get_allocated_file_size) {
        return drv->bdrv_get_allocated_file_size(bs);
    }
    if (bs->file) {
K
Kevin Wolf 已提交
3927
        return bdrv_get_allocated_file_size(bs->file->bs);
3928
    }
3929
    return -ENOTSUP;
3930
}
3931

S
Stefan Hajnoczi 已提交
3932 3933 3934 3935 3936 3937 3938 3939 3940 3941 3942 3943 3944 3945 3946 3947 3948 3949 3950 3951 3952 3953 3954 3955 3956 3957 3958 3959 3960 3961 3962 3963 3964 3965 3966
/*
 * bdrv_measure:
 * @drv: Format driver
 * @opts: Creation options for new image
 * @in_bs: Existing image containing data for new image (may be NULL)
 * @errp: Error object
 * Returns: A #BlockMeasureInfo (free using qapi_free_BlockMeasureInfo())
 *          or NULL on error
 *
 * Calculate file size required to create a new image.
 *
 * If @in_bs is given then space for allocated clusters and zero clusters
 * from that image are included in the calculation.  If @opts contains a
 * backing file that is shared by @in_bs then backing clusters may be omitted
 * from the calculation.
 *
 * If @in_bs is NULL then the calculation includes no allocated clusters
 * unless a preallocation option is given in @opts.
 *
 * Note that @in_bs may use a different BlockDriver from @drv.
 *
 * If an error occurs the @errp pointer is set.
 */
BlockMeasureInfo *bdrv_measure(BlockDriver *drv, QemuOpts *opts,
                               BlockDriverState *in_bs, Error **errp)
{
    if (!drv->bdrv_measure) {
        error_setg(errp, "Block driver '%s' does not support size measurement",
                   drv->format_name);
        return NULL;
    }

    return drv->bdrv_measure(opts, in_bs, errp);
}

3967 3968
/**
 * Return number of sectors on success, -errno on error.
3969
 */
3970
int64_t bdrv_nb_sectors(BlockDriverState *bs)
3971
{
3972
    BlockDriver *drv = bs->drv;
3973

3974 3975
    if (!drv)
        return -ENOMEDIUM;
3976

3977 3978 3979 3980
    if (drv->has_variable_length) {
        int ret = refresh_total_sectors(bs, bs->total_sectors);
        if (ret < 0) {
            return ret;
3981 3982
        }
    }
3983
    return bs->total_sectors;
3984
}
B
bellard 已提交
3985

3986 3987 3988
/**
 * Return length in bytes on success, -errno on error.
 * The length is always a multiple of BDRV_SECTOR_SIZE.
3989
 */
3990
int64_t bdrv_getlength(BlockDriverState *bs)
3991
{
3992
    int64_t ret = bdrv_nb_sectors(bs);
3993

3994
    ret = ret > INT64_MAX / BDRV_SECTOR_SIZE ? -EFBIG : ret;
3995
    return ret < 0 ? ret : ret * BDRV_SECTOR_SIZE;
B
bellard 已提交
3996 3997
}

3998 3999
/* return 0 as number of sectors if no device present or error */
void bdrv_get_geometry(BlockDriverState *bs, uint64_t *nb_sectors_ptr)
4000
{
4001
    int64_t nb_sectors = bdrv_nb_sectors(bs);
4002

4003
    *nb_sectors_ptr = nb_sectors < 0 ? 0 : nb_sectors;
4004 4005
}

4006
bool bdrv_is_sg(BlockDriverState *bs)
K
Kevin Wolf 已提交
4007
{
4008
    return bs->sg;
K
Kevin Wolf 已提交
4009 4010
}

4011
bool bdrv_is_encrypted(BlockDriverState *bs)
F
Fam Zheng 已提交
4012
{
4013
    if (bs->backing && bs->backing->bs->encrypted) {
4014
        return true;
4015
    }
4016
    return bs->encrypted;
F
Fam Zheng 已提交
4017 4018
}

4019
const char *bdrv_get_format_name(BlockDriverState *bs)
K
Kevin Wolf 已提交
4020
{
4021
    return bs->drv ? bs->drv->format_name : NULL;
K
Kevin Wolf 已提交
4022 4023
}

4024
static int qsort_strcmp(const void *a, const void *b)
K
Kevin Wolf 已提交
4025
{
4026
    return strcmp(*(char *const *)a, *(char *const *)b);
K
Kevin Wolf 已提交
4027 4028
}

4029 4030
void bdrv_iterate_format(void (*it)(void *opaque, const char *name),
                         void *opaque)
K
Kevin Wolf 已提交
4031
{
4032 4033 4034 4035
    BlockDriver *drv;
    int count = 0;
    int i;
    const char **formats = NULL;
K
Kevin Wolf 已提交
4036

4037 4038 4039 4040 4041 4042 4043
    QLIST_FOREACH(drv, &bdrv_drivers, list) {
        if (drv->format_name) {
            bool found = false;
            int i = count;
            while (formats && i && !found) {
                found = !strcmp(formats[--i], drv->format_name);
            }
4044

4045 4046 4047 4048
            if (!found) {
                formats = g_renew(const char *, formats, count + 1);
                formats[count++] = drv->format_name;
            }
4049
        }
4050
    }
4051

4052 4053 4054 4055 4056 4057 4058 4059 4060 4061 4062 4063 4064 4065 4066 4067 4068 4069
    for (i = 0; i < (int)ARRAY_SIZE(block_driver_modules); i++) {
        const char *format_name = block_driver_modules[i].format_name;

        if (format_name) {
            bool found = false;
            int j = count;

            while (formats && j && !found) {
                found = !strcmp(formats[--j], format_name);
            }

            if (!found) {
                formats = g_renew(const char *, formats, count + 1);
                formats[count++] = format_name;
            }
        }
    }

4070
    qsort(formats, count, sizeof(formats[0]), qsort_strcmp);
K
Kevin Wolf 已提交
4071

4072 4073 4074
    for (i = 0; i < count; i++) {
        it(opaque, formats[i]);
    }
K
Kevin Wolf 已提交
4075

4076 4077
    g_free(formats);
}
K
Kevin Wolf 已提交
4078

4079 4080 4081 4082
/* This function is to find a node in the bs graph */
BlockDriverState *bdrv_find_node(const char *node_name)
{
    BlockDriverState *bs;
4083

4084
    assert(node_name);
K
Kevin Wolf 已提交
4085

4086 4087 4088
    QTAILQ_FOREACH(bs, &graph_bdrv_states, node_list) {
        if (!strcmp(node_name, bs->node_name)) {
            return bs;
K
Kevin Wolf 已提交
4089 4090
        }
    }
4091
    return NULL;
K
Kevin Wolf 已提交
4092 4093
}

4094 4095
/* Put this QMP function here so it can access the static graph_bdrv_states. */
BlockDeviceInfoList *bdrv_named_nodes_list(Error **errp)
K
Kevin Wolf 已提交
4096
{
4097 4098
    BlockDeviceInfoList *list, *entry;
    BlockDriverState *bs;
K
Kevin Wolf 已提交
4099

4100 4101
    list = NULL;
    QTAILQ_FOREACH(bs, &graph_bdrv_states, node_list) {
4102
        BlockDeviceInfo *info = bdrv_block_device_info(NULL, bs, errp);
4103 4104 4105
        if (!info) {
            qapi_free_BlockDeviceInfoList(list);
            return NULL;
4106
        }
4107 4108 4109 4110
        entry = g_malloc0(sizeof(*entry));
        entry->value = info;
        entry->next = list;
        list = entry;
4111 4112
    }

4113 4114
    return list;
}
K
Kevin Wolf 已提交
4115

4116 4117 4118 4119 4120 4121
BlockDriverState *bdrv_lookup_bs(const char *device,
                                 const char *node_name,
                                 Error **errp)
{
    BlockBackend *blk;
    BlockDriverState *bs;
K
Kevin Wolf 已提交
4122

4123 4124
    if (device) {
        blk = blk_by_name(device);
K
Kevin Wolf 已提交
4125

4126
        if (blk) {
4127 4128
            bs = blk_bs(blk);
            if (!bs) {
M
Max Reitz 已提交
4129 4130 4131
                error_setg(errp, "Device '%s' has no medium", device);
            }

4132
            return bs;
4133 4134
        }
    }
K
Kevin Wolf 已提交
4135

4136 4137
    if (node_name) {
        bs = bdrv_find_node(node_name);
4138

4139 4140 4141
        if (bs) {
            return bs;
        }
K
Kevin Wolf 已提交
4142 4143
    }

4144 4145 4146 4147
    error_setg(errp, "Cannot find device=%s nor node_name=%s",
                     device ? device : "",
                     node_name ? node_name : "");
    return NULL;
K
Kevin Wolf 已提交
4148 4149
}

4150 4151 4152
/* If 'base' is in the same chain as 'top', return true. Otherwise,
 * return false.  If either argument is NULL, return false. */
bool bdrv_chain_contains(BlockDriverState *top, BlockDriverState *base)
B
bellard 已提交
4153
{
4154
    while (top && top != base) {
4155
        top = backing_bs(top);
F
Fam Zheng 已提交
4156
    }
4157 4158

    return top != NULL;
F
Fam Zheng 已提交
4159 4160
}

4161
BlockDriverState *bdrv_next_node(BlockDriverState *bs)
F
Fam Zheng 已提交
4162
{
4163 4164
    if (!bs) {
        return QTAILQ_FIRST(&graph_bdrv_states);
F
Fam Zheng 已提交
4165
    }
4166
    return QTAILQ_NEXT(bs, node_list);
B
bellard 已提交
4167 4168
}

4169 4170 4171 4172 4173 4174 4175 4176
BlockDriverState *bdrv_next_all_states(BlockDriverState *bs)
{
    if (!bs) {
        return QTAILQ_FIRST(&all_bdrv_states);
    }
    return QTAILQ_NEXT(bs, bs_list);
}

4177
const char *bdrv_get_node_name(const BlockDriverState *bs)
B
bellard 已提交
4178
{
4179
    return bs->node_name;
4180 4181
}

K
Kevin Wolf 已提交
4182
const char *bdrv_get_parent_name(const BlockDriverState *bs)
4183 4184 4185 4186 4187 4188 4189 4190 4191 4192 4193 4194 4195 4196 4197 4198 4199
{
    BdrvChild *c;
    const char *name;

    /* If multiple parents have a name, just pick the first one. */
    QLIST_FOREACH(c, &bs->parents, next_parent) {
        if (c->role->get_name) {
            name = c->role->get_name(c);
            if (name && *name) {
                return name;
            }
        }
    }

    return NULL;
}

4200 4201
/* TODO check what callers really want: bs->node_name or blk_name() */
const char *bdrv_get_device_name(const BlockDriverState *bs)
4202
{
4203
    return bdrv_get_parent_name(bs) ?: "";
4204
}
B
bellard 已提交
4205

4206 4207 4208 4209 4210
/* This can be used to identify nodes that might not have a device
 * name associated. Since node and device names live in the same
 * namespace, the result is unambiguous. The exception is if both are
 * absent, then this returns an empty (non-null) string. */
const char *bdrv_get_device_or_node_name(const BlockDriverState *bs)
4211
{
4212
    return bdrv_get_parent_name(bs) ?: bs->node_name;
4213 4214
}

4215
int bdrv_get_flags(BlockDriverState *bs)
4216
{
4217
    return bs->open_flags;
4218 4219
}

4220
int bdrv_has_zero_init_1(BlockDriverState *bs)
4221
{
4222
    return 1;
4223 4224
}

4225
int bdrv_has_zero_init(BlockDriverState *bs)
4226
{
M
Max Reitz 已提交
4227 4228 4229
    if (!bs->drv) {
        return 0;
    }
4230

4231 4232
    /* If BS is a copy on write image, it is initialized to
       the contents of the base image, which may not be zeroes.  */
4233
    if (bs->backing) {
4234 4235 4236 4237
        return 0;
    }
    if (bs->drv->bdrv_has_zero_init) {
        return bs->drv->bdrv_has_zero_init(bs);
4238
    }
4239 4240 4241
    if (bs->file && bs->drv->is_filter) {
        return bdrv_has_zero_init(bs->file->bs);
    }
4242 4243 4244

    /* safe default */
    return 0;
4245 4246
}

4247
bool bdrv_unallocated_blocks_are_zero(BlockDriverState *bs)
4248
{
4249
    BlockDriverInfo bdi;
4250

4251
    if (bs->backing) {
4252 4253 4254 4255 4256
        return false;
    }

    if (bdrv_get_info(bs, &bdi) == 0) {
        return bdi.unallocated_blocks_are_zero;
4257 4258
    }

4259
    return false;
4260 4261
}

4262
bool bdrv_can_write_zeroes_with_unmap(BlockDriverState *bs)
4263
{
4264
    if (!(bs->open_flags & BDRV_O_UNMAP)) {
4265 4266
        return false;
    }
4267

4268
    return bs->supported_zero_flags & BDRV_REQ_MAY_UNMAP;
4269 4270
}

4271
const char *bdrv_get_encrypted_filename(BlockDriverState *bs)
4272
{
4273
    if (bs->backing && bs->backing->bs->encrypted)
4274 4275 4276 4277 4278
        return bs->backing_file;
    else if (bs->encrypted)
        return bs->filename;
    else
        return NULL;
4279 4280
}

4281 4282
void bdrv_get_backing_filename(BlockDriverState *bs,
                               char *filename, int filename_size)
4283
{
4284 4285
    pstrcpy(filename, filename_size, bs->backing_file);
}
K
Kevin Wolf 已提交
4286

4287 4288 4289
int bdrv_get_info(BlockDriverState *bs, BlockDriverInfo *bdi)
{
    BlockDriver *drv = bs->drv;
4290 4291
    /* if bs->drv == NULL, bs is closed, so there's nothing to do here */
    if (!drv) {
4292
        return -ENOMEDIUM;
4293 4294 4295 4296 4297
    }
    if (!drv->bdrv_get_info) {
        if (bs->file && drv->is_filter) {
            return bdrv_get_info(bs->file->bs, bdi);
        }
4298
        return -ENOTSUP;
4299
    }
4300 4301 4302
    memset(bdi, 0, sizeof(*bdi));
    return drv->bdrv_get_info(bs, bdi);
}
4303

4304 4305 4306 4307 4308 4309 4310
ImageInfoSpecific *bdrv_get_specific_info(BlockDriverState *bs)
{
    BlockDriver *drv = bs->drv;
    if (drv && drv->bdrv_get_specific_info) {
        return drv->bdrv_get_specific_info(bs);
    }
    return NULL;
4311 4312
}

4313
void bdrv_debug_event(BlockDriverState *bs, BlkdebugEvent event)
4314
{
4315 4316 4317
    if (!bs || !bs->drv || !bs->drv->bdrv_debug_event) {
        return;
    }
4318

4319
    bs->drv->bdrv_debug_event(bs, event);
4320 4321
}

4322 4323
int bdrv_debug_breakpoint(BlockDriverState *bs, const char *event,
                          const char *tag)
4324
{
4325
    while (bs && bs->drv && !bs->drv->bdrv_debug_breakpoint) {
K
Kevin Wolf 已提交
4326
        bs = bs->file ? bs->file->bs : NULL;
4327
    }
4328

4329 4330 4331
    if (bs && bs->drv && bs->drv->bdrv_debug_breakpoint) {
        return bs->drv->bdrv_debug_breakpoint(bs, event, tag);
    }
4332

4333
    return -ENOTSUP;
4334 4335
}

4336
int bdrv_debug_remove_breakpoint(BlockDriverState *bs, const char *tag)
B
bellard 已提交
4337
{
4338
    while (bs && bs->drv && !bs->drv->bdrv_debug_remove_breakpoint) {
K
Kevin Wolf 已提交
4339
        bs = bs->file ? bs->file->bs : NULL;
4340
    }
4341

4342 4343 4344 4345 4346
    if (bs && bs->drv && bs->drv->bdrv_debug_remove_breakpoint) {
        return bs->drv->bdrv_debug_remove_breakpoint(bs, tag);
    }

    return -ENOTSUP;
4347 4348
}

4349
int bdrv_debug_resume(BlockDriverState *bs, const char *tag)
4350
{
4351
    while (bs && (!bs->drv || !bs->drv->bdrv_debug_resume)) {
K
Kevin Wolf 已提交
4352
        bs = bs->file ? bs->file->bs : NULL;
4353
    }
4354

4355 4356 4357
    if (bs && bs->drv && bs->drv->bdrv_debug_resume) {
        return bs->drv->bdrv_debug_resume(bs, tag);
    }
4358

4359
    return -ENOTSUP;
4360 4361
}

4362
bool bdrv_debug_is_suspended(BlockDriverState *bs, const char *tag)
4363
{
4364
    while (bs && bs->drv && !bs->drv->bdrv_debug_is_suspended) {
K
Kevin Wolf 已提交
4365
        bs = bs->file ? bs->file->bs : NULL;
4366
    }
B
bellard 已提交
4367

4368 4369 4370
    if (bs && bs->drv && bs->drv->bdrv_debug_is_suspended) {
        return bs->drv->bdrv_debug_is_suspended(bs, tag);
    }
4371

4372 4373
    return false;
}
4374

4375 4376 4377 4378 4379 4380
/* backing_file can either be relative, or absolute, or a protocol.  If it is
 * relative, it must be relative to the chain.  So, passing in bs->filename
 * from a BDS as backing_file should not be done, as that may be relative to
 * the CWD rather than the chain. */
BlockDriverState *bdrv_find_backing_image(BlockDriverState *bs,
        const char *backing_file)
4381
{
4382 4383 4384 4385 4386 4387
    char *filename_full = NULL;
    char *backing_file_full = NULL;
    char *filename_tmp = NULL;
    int is_protocol = 0;
    BlockDriverState *curr_bs = NULL;
    BlockDriverState *retval = NULL;
4388
    Error *local_error = NULL;
4389

4390 4391
    if (!bs || !bs->drv || !backing_file) {
        return NULL;
4392 4393
    }

4394 4395 4396
    filename_full     = g_malloc(PATH_MAX);
    backing_file_full = g_malloc(PATH_MAX);
    filename_tmp      = g_malloc(PATH_MAX);
4397

4398
    is_protocol = path_has_protocol(backing_file);
4399

4400
    for (curr_bs = bs; curr_bs->backing; curr_bs = curr_bs->backing->bs) {
4401

4402 4403 4404 4405
        /* If either of the filename paths is actually a protocol, then
         * compare unmodified paths; otherwise make paths relative */
        if (is_protocol || path_has_protocol(curr_bs->backing_file)) {
            if (strcmp(backing_file, curr_bs->backing_file) == 0) {
4406
                retval = curr_bs->backing->bs;
4407 4408
                break;
            }
4409 4410 4411 4412 4413 4414 4415 4416 4417 4418 4419 4420
            /* Also check against the full backing filename for the image */
            bdrv_get_full_backing_filename(curr_bs, backing_file_full, PATH_MAX,
                                           &local_error);
            if (local_error == NULL) {
                if (strcmp(backing_file, backing_file_full) == 0) {
                    retval = curr_bs->backing->bs;
                    break;
                }
            } else {
                error_free(local_error);
                local_error = NULL;
            }
4421 4422 4423 4424 4425
        } else {
            /* If not an absolute filename path, make it relative to the current
             * image's filename path */
            path_combine(filename_tmp, PATH_MAX, curr_bs->filename,
                         backing_file);
4426

4427 4428 4429 4430
            /* We are going to compare absolute pathnames */
            if (!realpath(filename_tmp, filename_full)) {
                continue;
            }
P
Paolo Bonzini 已提交
4431

4432 4433 4434 4435
            /* We need to make sure the backing filename we are comparing against
             * is relative to the current image filename (or absolute) */
            path_combine(filename_tmp, PATH_MAX, curr_bs->filename,
                         curr_bs->backing_file);
P
Paolo Bonzini 已提交
4436

4437 4438 4439
            if (!realpath(filename_tmp, backing_file_full)) {
                continue;
            }
K
Kevin Wolf 已提交
4440

4441
            if (strcmp(backing_file_full, filename_full) == 0) {
4442
                retval = curr_bs->backing->bs;
4443 4444 4445
                break;
            }
        }
K
Kevin Wolf 已提交
4446 4447
    }

4448 4449 4450 4451 4452 4453 4454 4455 4456 4457
    g_free(filename_full);
    g_free(backing_file_full);
    g_free(filename_tmp);
    return retval;
}

void bdrv_init(void)
{
    module_call_init(MODULE_INIT_BLOCK);
}
4458

4459 4460 4461 4462
void bdrv_init_with_whitelist(void)
{
    use_bdrv_whitelist = 1;
    bdrv_init();
P
Paolo Bonzini 已提交
4463 4464
}

4465 4466
static void coroutine_fn bdrv_co_invalidate_cache(BlockDriverState *bs,
                                                  Error **errp)
4467
{
4468
    BdrvChild *child, *parent;
4469
    uint64_t perm, shared_perm;
4470 4471
    Error *local_err = NULL;
    int ret;
4472
    BdrvDirtyBitmap *bm;
4473

4474 4475 4476 4477
    if (!bs->drv)  {
        return;
    }

4478
    if (!(bs->open_flags & BDRV_O_INACTIVE)) {
4479 4480 4481
        return;
    }

4482
    QLIST_FOREACH(child, &bs->children, next) {
4483
        bdrv_co_invalidate_cache(child->bs, &local_err);
F
Fam Zheng 已提交
4484 4485 4486 4487
        if (local_err) {
            error_propagate(errp, local_err);
            return;
        }
4488
    }
F
Fam Zheng 已提交
4489

4490 4491 4492 4493 4494 4495 4496 4497 4498 4499 4500 4501 4502
    /*
     * Update permissions, they may differ for inactive nodes.
     *
     * Note that the required permissions of inactive images are always a
     * subset of the permissions required after activating the image. This
     * allows us to just get the permissions upfront without restricting
     * drv->bdrv_invalidate_cache().
     *
     * It also means that in error cases, we don't have to try and revert to
     * the old permissions (which is an operation that could fail, too). We can
     * just keep the extended permissions for the next time that an activation
     * of the image is tried.
     */
4503
    bs->open_flags &= ~BDRV_O_INACTIVE;
4504 4505 4506 4507 4508 4509 4510 4511 4512
    bdrv_get_cumulative_perm(bs, &perm, &shared_perm);
    ret = bdrv_check_perm(bs, NULL, perm, shared_perm, NULL, &local_err);
    if (ret < 0) {
        bs->open_flags |= BDRV_O_INACTIVE;
        error_propagate(errp, local_err);
        return;
    }
    bdrv_set_perm(bs, perm, shared_perm);

4513 4514
    if (bs->drv->bdrv_co_invalidate_cache) {
        bs->drv->bdrv_co_invalidate_cache(bs, &local_err);
F
Fam Zheng 已提交
4515 4516 4517 4518 4519
        if (local_err) {
            bs->open_flags |= BDRV_O_INACTIVE;
            error_propagate(errp, local_err);
            return;
        }
4520
    }
4521

4522 4523 4524 4525 4526 4527
    for (bm = bdrv_dirty_bitmap_next(bs, NULL); bm;
         bm = bdrv_dirty_bitmap_next(bs, bm))
    {
        bdrv_dirty_bitmap_set_migration(bm, false);
    }

4528 4529
    ret = refresh_total_sectors(bs, bs->total_sectors);
    if (ret < 0) {
4530
        bs->open_flags |= BDRV_O_INACTIVE;
4531 4532 4533
        error_setg_errno(errp, -ret, "Could not refresh total sector count");
        return;
    }
4534 4535 4536 4537 4538 4539 4540 4541 4542 4543

    QLIST_FOREACH(parent, &bs->parents, next_parent) {
        if (parent->role->activate) {
            parent->role->activate(parent, &local_err);
            if (local_err) {
                error_propagate(errp, local_err);
                return;
            }
        }
    }
4544 4545
}

4546 4547 4548 4549 4550 4551 4552 4553 4554 4555 4556 4557 4558 4559 4560 4561 4562 4563 4564 4565 4566 4567 4568 4569 4570 4571 4572 4573 4574 4575 4576 4577
typedef struct InvalidateCacheCo {
    BlockDriverState *bs;
    Error **errp;
    bool done;
} InvalidateCacheCo;

static void coroutine_fn bdrv_invalidate_cache_co_entry(void *opaque)
{
    InvalidateCacheCo *ico = opaque;
    bdrv_co_invalidate_cache(ico->bs, ico->errp);
    ico->done = true;
}

void bdrv_invalidate_cache(BlockDriverState *bs, Error **errp)
{
    Coroutine *co;
    InvalidateCacheCo ico = {
        .bs = bs,
        .done = false,
        .errp = errp
    };

    if (qemu_in_coroutine()) {
        /* Fast-path if already in coroutine context */
        bdrv_invalidate_cache_co_entry(&ico);
    } else {
        co = qemu_coroutine_create(bdrv_invalidate_cache_co_entry, &ico);
        qemu_coroutine_enter(co);
        BDRV_POLL_WHILE(bs, !ico.done);
    }
}

4578
void bdrv_invalidate_cache_all(Error **errp)
4579
{
K
Kevin Wolf 已提交
4580
    BlockDriverState *bs;
4581
    Error *local_err = NULL;
K
Kevin Wolf 已提交
4582
    BdrvNextIterator it;
4583

K
Kevin Wolf 已提交
4584
    for (bs = bdrv_first(&it); bs; bs = bdrv_next(&it)) {
4585 4586 4587
        AioContext *aio_context = bdrv_get_aio_context(bs);

        aio_context_acquire(aio_context);
4588
        bdrv_invalidate_cache(bs, &local_err);
4589
        aio_context_release(aio_context);
4590 4591
        if (local_err) {
            error_propagate(errp, local_err);
4592
            bdrv_next_cleanup(&it);
4593 4594
            return;
        }
4595 4596 4597
    }
}

4598 4599 4600 4601 4602 4603 4604 4605 4606 4607 4608 4609 4610 4611 4612 4613 4614
static bool bdrv_has_bds_parent(BlockDriverState *bs, bool only_active)
{
    BdrvChild *parent;

    QLIST_FOREACH(parent, &bs->parents, next_parent) {
        if (parent->role->parent_is_bds) {
            BlockDriverState *parent_bs = parent->opaque;
            if (!only_active || !(parent_bs->open_flags & BDRV_O_INACTIVE)) {
                return true;
            }
        }
    }

    return false;
}

static int bdrv_inactivate_recurse(BlockDriverState *bs)
4615
{
4616
    BdrvChild *child, *parent;
4617
    uint64_t perm, shared_perm;
4618 4619
    int ret;

M
Max Reitz 已提交
4620 4621 4622 4623
    if (!bs->drv) {
        return -ENOMEDIUM;
    }

4624 4625 4626 4627 4628 4629 4630 4631 4632 4633
    /* Make sure that we don't inactivate a child before its parent.
     * It will be covered by recursion from the yet active parent. */
    if (bdrv_has_bds_parent(bs, true)) {
        return 0;
    }

    assert(!(bs->open_flags & BDRV_O_INACTIVE));

    /* Inactivate this node */
    if (bs->drv->bdrv_inactivate) {
4634 4635 4636 4637 4638 4639
        ret = bs->drv->bdrv_inactivate(bs);
        if (ret < 0) {
            return ret;
        }
    }

4640 4641 4642 4643 4644
    QLIST_FOREACH(parent, &bs->parents, next_parent) {
        if (parent->role->inactivate) {
            ret = parent->role->inactivate(parent);
            if (ret < 0) {
                return ret;
4645 4646
            }
        }
4647
    }
4648

4649
    bs->open_flags |= BDRV_O_INACTIVE;
4650

4651 4652 4653 4654
    /* Update permissions, they may differ for inactive nodes */
    bdrv_get_cumulative_perm(bs, &perm, &shared_perm);
    bdrv_check_perm(bs, NULL, perm, shared_perm, NULL, &error_abort);
    bdrv_set_perm(bs, perm, shared_perm);
4655

4656 4657

    /* Recursively inactivate children */
4658
    QLIST_FOREACH(child, &bs->children, next) {
4659
        ret = bdrv_inactivate_recurse(child->bs);
4660 4661 4662 4663 4664
        if (ret < 0) {
            return ret;
        }
    }

4665 4666 4667 4668 4669
    return 0;
}

int bdrv_inactivate_all(void)
{
4670
    BlockDriverState *bs = NULL;
K
Kevin Wolf 已提交
4671
    BdrvNextIterator it;
F
Fam Zheng 已提交
4672
    int ret = 0;
4673
    GSList *aio_ctxs = NULL, *ctx;
4674

K
Kevin Wolf 已提交
4675
    for (bs = bdrv_first(&it); bs; bs = bdrv_next(&it)) {
4676 4677 4678 4679 4680 4681
        AioContext *aio_context = bdrv_get_aio_context(bs);

        if (!g_slist_find(aio_ctxs, aio_context)) {
            aio_ctxs = g_slist_prepend(aio_ctxs, aio_context);
            aio_context_acquire(aio_context);
        }
F
Fam Zheng 已提交
4682
    }
4683

4684 4685 4686 4687 4688 4689 4690 4691 4692 4693 4694
    for (bs = bdrv_first(&it); bs; bs = bdrv_next(&it)) {
        /* Nodes with BDS parents are covered by recursion from the last
         * parent that gets inactivated. Don't inactivate them a second
         * time if that has already happened. */
        if (bdrv_has_bds_parent(bs, false)) {
            continue;
        }
        ret = bdrv_inactivate_recurse(bs);
        if (ret < 0) {
            bdrv_next_cleanup(&it);
            goto out;
4695 4696 4697
        }
    }

F
Fam Zheng 已提交
4698
out:
4699 4700 4701
    for (ctx = aio_ctxs; ctx != NULL; ctx = ctx->next) {
        AioContext *aio_context = ctx->data;
        aio_context_release(aio_context);
F
Fam Zheng 已提交
4702
    }
4703
    g_slist_free(aio_ctxs);
F
Fam Zheng 已提交
4704 4705

    return ret;
4706 4707
}

B
bellard 已提交
4708 4709 4710 4711 4712 4713
/**************************************************************/
/* removable device support */

/**
 * Return TRUE if the media is present
 */
4714
bool bdrv_is_inserted(BlockDriverState *bs)
B
bellard 已提交
4715 4716
{
    BlockDriver *drv = bs->drv;
4717
    BdrvChild *child;
4718

4719 4720 4721
    if (!drv) {
        return false;
    }
4722 4723 4724 4725 4726 4727 4728
    if (drv->bdrv_is_inserted) {
        return drv->bdrv_is_inserted(bs);
    }
    QLIST_FOREACH(child, &bs->children, next) {
        if (!bdrv_is_inserted(child->bs)) {
            return false;
        }
4729
    }
4730
    return true;
B
bellard 已提交
4731 4732 4733 4734 4735
}

/**
 * If eject_flag is TRUE, eject the media. Otherwise, close the tray
 */
4736
void bdrv_eject(BlockDriverState *bs, bool eject_flag)
B
bellard 已提交
4737 4738 4739
{
    BlockDriver *drv = bs->drv;

4740 4741
    if (drv && drv->bdrv_eject) {
        drv->bdrv_eject(bs, eject_flag);
B
bellard 已提交
4742 4743 4744 4745 4746 4747 4748
    }
}

/**
 * Lock or unlock the media (if it is locked, the user won't be able
 * to eject it manually).
 */
4749
void bdrv_lock_medium(BlockDriverState *bs, bool locked)
B
bellard 已提交
4750 4751 4752
{
    BlockDriver *drv = bs->drv;

4753
    trace_bdrv_lock_medium(bs, locked);
S
Stefan Hajnoczi 已提交
4754

4755 4756
    if (drv && drv->bdrv_lock_medium) {
        drv->bdrv_lock_medium(bs, locked);
B
bellard 已提交
4757 4758
    }
}
4759

4760 4761 4762 4763 4764 4765 4766 4767 4768 4769 4770
/* Get a reference to bs */
void bdrv_ref(BlockDriverState *bs)
{
    bs->refcnt++;
}

/* Release a previously grabbed reference to bs.
 * If after releasing, reference count is zero, the BlockDriverState is
 * deleted. */
void bdrv_unref(BlockDriverState *bs)
{
4771 4772 4773
    if (!bs) {
        return;
    }
4774 4775 4776 4777 4778 4779
    assert(bs->refcnt > 0);
    if (--bs->refcnt == 0) {
        bdrv_delete(bs);
    }
}

4780 4781 4782 4783 4784 4785 4786 4787 4788 4789 4790
struct BdrvOpBlocker {
    Error *reason;
    QLIST_ENTRY(BdrvOpBlocker) list;
};

bool bdrv_op_is_blocked(BlockDriverState *bs, BlockOpType op, Error **errp)
{
    BdrvOpBlocker *blocker;
    assert((int) op >= 0 && op < BLOCK_OP_TYPE_MAX);
    if (!QLIST_EMPTY(&bs->op_blockers[op])) {
        blocker = QLIST_FIRST(&bs->op_blockers[op]);
4791 4792 4793
        error_propagate_prepend(errp, error_copy(blocker->reason),
                                "Node '%s' is busy: ",
                                bdrv_get_device_or_node_name(bs));
4794 4795 4796 4797 4798 4799 4800 4801 4802 4803
        return true;
    }
    return false;
}

void bdrv_op_block(BlockDriverState *bs, BlockOpType op, Error *reason)
{
    BdrvOpBlocker *blocker;
    assert((int) op >= 0 && op < BLOCK_OP_TYPE_MAX);

4804
    blocker = g_new0(BdrvOpBlocker, 1);
4805 4806 4807 4808 4809 4810 4811 4812 4813 4814 4815 4816 4817 4818 4819 4820 4821 4822 4823 4824 4825 4826 4827 4828 4829 4830 4831 4832 4833 4834 4835 4836 4837 4838 4839 4840 4841 4842 4843 4844 4845 4846 4847 4848
    blocker->reason = reason;
    QLIST_INSERT_HEAD(&bs->op_blockers[op], blocker, list);
}

void bdrv_op_unblock(BlockDriverState *bs, BlockOpType op, Error *reason)
{
    BdrvOpBlocker *blocker, *next;
    assert((int) op >= 0 && op < BLOCK_OP_TYPE_MAX);
    QLIST_FOREACH_SAFE(blocker, &bs->op_blockers[op], list, next) {
        if (blocker->reason == reason) {
            QLIST_REMOVE(blocker, list);
            g_free(blocker);
        }
    }
}

void bdrv_op_block_all(BlockDriverState *bs, Error *reason)
{
    int i;
    for (i = 0; i < BLOCK_OP_TYPE_MAX; i++) {
        bdrv_op_block(bs, i, reason);
    }
}

void bdrv_op_unblock_all(BlockDriverState *bs, Error *reason)
{
    int i;
    for (i = 0; i < BLOCK_OP_TYPE_MAX; i++) {
        bdrv_op_unblock(bs, i, reason);
    }
}

bool bdrv_op_blocker_is_empty(BlockDriverState *bs)
{
    int i;

    for (i = 0; i < BLOCK_OP_TYPE_MAX; i++) {
        if (!QLIST_EMPTY(&bs->op_blockers[i])) {
            return false;
        }
    }
    return true;
}

4849 4850
void bdrv_img_create(const char *filename, const char *fmt,
                     const char *base_filename, const char *base_fmt,
4851 4852
                     char *options, uint64_t img_size, int flags, bool quiet,
                     Error **errp)
J
Jes Sorensen 已提交
4853
{
4854 4855 4856 4857
    QemuOptsList *create_opts = NULL;
    QemuOpts *opts = NULL;
    const char *backing_fmt, *backing_file;
    int64_t size;
J
Jes Sorensen 已提交
4858
    BlockDriver *drv, *proto_drv;
4859
    Error *local_err = NULL;
J
Jes Sorensen 已提交
4860 4861 4862 4863 4864
    int ret = 0;

    /* Find driver and parse its options */
    drv = bdrv_find_format(fmt);
    if (!drv) {
4865
        error_setg(errp, "Unknown file format '%s'", fmt);
4866
        return;
J
Jes Sorensen 已提交
4867 4868
    }

4869
    proto_drv = bdrv_find_protocol(filename, true, errp);
J
Jes Sorensen 已提交
4870
    if (!proto_drv) {
4871
        return;
J
Jes Sorensen 已提交
4872 4873
    }

4874 4875 4876 4877 4878 4879 4880 4881 4882 4883 4884 4885
    if (!drv->create_opts) {
        error_setg(errp, "Format driver '%s' does not support image creation",
                   drv->format_name);
        return;
    }

    if (!proto_drv->create_opts) {
        error_setg(errp, "Protocol driver '%s' does not support image creation",
                   proto_drv->format_name);
        return;
    }

C
Chunyan Liu 已提交
4886 4887
    create_opts = qemu_opts_append(create_opts, drv->create_opts);
    create_opts = qemu_opts_append(create_opts, proto_drv->create_opts);
J
Jes Sorensen 已提交
4888 4889

    /* Create parameter list with default values */
4890
    opts = qemu_opts_create(create_opts, NULL, 0, &error_abort);
4891
    qemu_opt_set_number(opts, BLOCK_OPT_SIZE, img_size, &error_abort);
J
Jes Sorensen 已提交
4892 4893 4894

    /* Parse -o options */
    if (options) {
4895 4896
        qemu_opts_do_parse(opts, options, NULL, &local_err);
        if (local_err) {
J
Jes Sorensen 已提交
4897 4898 4899 4900 4901
            goto out;
        }
    }

    if (base_filename) {
4902
        qemu_opt_set(opts, BLOCK_OPT_BACKING_FILE, base_filename, &local_err);
4903
        if (local_err) {
4904 4905
            error_setg(errp, "Backing file not supported for file format '%s'",
                       fmt);
J
Jes Sorensen 已提交
4906 4907 4908 4909 4910
            goto out;
        }
    }

    if (base_fmt) {
4911
        qemu_opt_set(opts, BLOCK_OPT_BACKING_FMT, base_fmt, &local_err);
4912
        if (local_err) {
4913 4914
            error_setg(errp, "Backing file format not supported for file "
                             "format '%s'", fmt);
J
Jes Sorensen 已提交
4915 4916 4917 4918
            goto out;
        }
    }

4919 4920 4921
    backing_file = qemu_opt_get(opts, BLOCK_OPT_BACKING_FILE);
    if (backing_file) {
        if (!strcmp(filename, backing_file)) {
4922 4923
            error_setg(errp, "Error: Trying to create an image with the "
                             "same filename as the backing file");
4924 4925 4926 4927
            goto out;
        }
    }

4928
    backing_fmt = qemu_opt_get(opts, BLOCK_OPT_BACKING_FMT);
J
Jes Sorensen 已提交
4929

4930 4931
    /* The size for the image must always be specified, unless we have a backing
     * file and we have not been forbidden from opening it. */
4932
    size = qemu_opt_get_size(opts, BLOCK_OPT_SIZE, img_size);
4933 4934 4935 4936 4937 4938 4939 4940 4941 4942 4943 4944 4945
    if (backing_file && !(flags & BDRV_O_NO_BACKING)) {
        BlockDriverState *bs;
        char *full_backing = g_new0(char, PATH_MAX);
        int back_flags;
        QDict *backing_options = NULL;

        bdrv_get_full_backing_filename_from_filename(filename, backing_file,
                                                     full_backing, PATH_MAX,
                                                     &local_err);
        if (local_err) {
            g_free(full_backing);
            goto out;
        }
4946

4947 4948 4949
        /* backing files always opened read-only */
        back_flags = flags;
        back_flags &= ~(BDRV_O_RDWR | BDRV_O_SNAPSHOT | BDRV_O_NO_BACKING);
J
Jes Sorensen 已提交
4950

4951
        backing_options = qdict_new();
4952 4953 4954
        if (backing_fmt) {
            qdict_put_str(backing_options, "driver", backing_fmt);
        }
4955
        qdict_put_bool(backing_options, BDRV_OPT_FORCE_SHARE, true);
4956

4957 4958 4959 4960 4961 4962 4963 4964 4965 4966 4967 4968 4969 4970 4971 4972 4973 4974 4975 4976 4977 4978 4979 4980 4981
        bs = bdrv_open(full_backing, NULL, backing_options, back_flags,
                       &local_err);
        g_free(full_backing);
        if (!bs && size != -1) {
            /* Couldn't open BS, but we have a size, so it's nonfatal */
            warn_reportf_err(local_err,
                            "Could not verify backing image. "
                            "This may become an error in future versions.\n");
            local_err = NULL;
        } else if (!bs) {
            /* Couldn't open bs, do not have size */
            error_append_hint(&local_err,
                              "Could not open backing image to determine size.\n");
            goto out;
        } else {
            if (size == -1) {
                /* Opened BS, have no size */
                size = bdrv_getlength(bs);
                if (size < 0) {
                    error_setg_errno(errp, -size, "Could not get size of '%s'",
                                     backing_file);
                    bdrv_unref(bs);
                    goto out;
                }
                qemu_opt_set_number(opts, BLOCK_OPT_SIZE, size, &error_abort);
4982
            }
4983
            bdrv_unref(bs);
J
Jes Sorensen 已提交
4984
        }
4985 4986 4987 4988 4989
    } /* (backing_file && !(flags & BDRV_O_NO_BACKING)) */

    if (size == -1) {
        error_setg(errp, "Image creation needs a size parameter");
        goto out;
J
Jes Sorensen 已提交
4990 4991
    }

4992
    if (!quiet) {
4993
        printf("Formatting '%s', fmt=%s ", filename, fmt);
4994
        qemu_opts_print(opts, " ");
4995 4996
        puts("");
    }
4997

C
Chunyan Liu 已提交
4998
    ret = bdrv_create(drv, filename, opts, &local_err);
4999

5000 5001 5002 5003 5004
    if (ret == -EFBIG) {
        /* This is generally a better message than whatever the driver would
         * deliver (especially because of the cluster_size_hint), since that
         * is most probably not much different from "image too large". */
        const char *cluster_size_hint = "";
5005
        if (qemu_opt_get_size(opts, BLOCK_OPT_CLUSTER_SIZE, 0)) {
5006
            cluster_size_hint = " (try using a larger cluster size)";
J
Jes Sorensen 已提交
5007
        }
5008 5009 5010 5011
        error_setg(errp, "The image size is too large for file format '%s'"
                   "%s", fmt, cluster_size_hint);
        error_free(local_err);
        local_err = NULL;
J
Jes Sorensen 已提交
5012 5013 5014
    }

out:
5015 5016
    qemu_opts_del(opts);
    qemu_opts_free(create_opts);
5017
    error_propagate(errp, local_err);
J
Jes Sorensen 已提交
5018
}
5019 5020 5021

AioContext *bdrv_get_aio_context(BlockDriverState *bs)
{
5022
    return bs ? bs->aio_context : qemu_get_aio_context();
5023 5024
}

5025 5026 5027 5028 5029
void bdrv_coroutine_enter(BlockDriverState *bs, Coroutine *co)
{
    aio_co_enter(bdrv_get_aio_context(bs), co);
}

5030 5031 5032 5033 5034 5035
static void bdrv_do_remove_aio_context_notifier(BdrvAioNotifier *ban)
{
    QLIST_REMOVE(ban, list);
    g_free(ban);
}

5036 5037
void bdrv_detach_aio_context(BlockDriverState *bs)
{
5038
    BdrvAioNotifier *baf, *baf_tmp;
5039
    BdrvChild *child;
M
Max Reitz 已提交
5040

5041 5042 5043 5044
    if (!bs->drv) {
        return;
    }

5045 5046 5047 5048 5049 5050 5051 5052
    assert(!bs->walking_aio_notifiers);
    bs->walking_aio_notifiers = true;
    QLIST_FOREACH_SAFE(baf, &bs->aio_notifiers, list, baf_tmp) {
        if (baf->deleted) {
            bdrv_do_remove_aio_context_notifier(baf);
        } else {
            baf->detach_aio_context(baf->opaque);
        }
M
Max Reitz 已提交
5053
    }
5054 5055 5056 5057
    /* Never mind iterating again to check for ->deleted.  bdrv_close() will
     * remove remaining aio notifiers if we aren't called again.
     */
    bs->walking_aio_notifiers = false;
M
Max Reitz 已提交
5058

5059 5060 5061
    if (bs->drv->bdrv_detach_aio_context) {
        bs->drv->bdrv_detach_aio_context(bs);
    }
5062 5063
    QLIST_FOREACH(child, &bs->children, next) {
        bdrv_detach_aio_context(child->bs);
5064 5065 5066 5067 5068 5069 5070 5071
    }

    bs->aio_context = NULL;
}

void bdrv_attach_aio_context(BlockDriverState *bs,
                             AioContext *new_context)
{
5072
    BdrvAioNotifier *ban, *ban_tmp;
5073
    BdrvChild *child;
M
Max Reitz 已提交
5074

5075 5076 5077 5078 5079 5080
    if (!bs->drv) {
        return;
    }

    bs->aio_context = new_context;

5081 5082
    QLIST_FOREACH(child, &bs->children, next) {
        bdrv_attach_aio_context(child->bs, new_context);
5083 5084 5085 5086
    }
    if (bs->drv->bdrv_attach_aio_context) {
        bs->drv->bdrv_attach_aio_context(bs, new_context);
    }
M
Max Reitz 已提交
5087

5088 5089 5090 5091 5092 5093 5094 5095
    assert(!bs->walking_aio_notifiers);
    bs->walking_aio_notifiers = true;
    QLIST_FOREACH_SAFE(ban, &bs->aio_notifiers, list, ban_tmp) {
        if (ban->deleted) {
            bdrv_do_remove_aio_context_notifier(ban);
        } else {
            ban->attached_aio_context(new_context, ban->opaque);
        }
M
Max Reitz 已提交
5096
    }
5097
    bs->walking_aio_notifiers = false;
5098 5099 5100 5101
}

void bdrv_set_aio_context(BlockDriverState *bs, AioContext *new_context)
{
5102
    AioContext *ctx = bdrv_get_aio_context(bs);
5103

5104
    aio_disable_external(ctx);
5105
    bdrv_parent_drained_begin(bs, NULL, false);
5106
    bdrv_drain(bs); /* ensure there are no in-flight requests */
5107

5108 5109 5110 5111
    while (aio_poll(ctx, false)) {
        /* wait for all bottom halves to execute */
    }

5112 5113 5114 5115 5116 5117 5118
    bdrv_detach_aio_context(bs);

    /* This function executes in the old AioContext so acquire the new one in
     * case it runs in a different thread.
     */
    aio_context_acquire(new_context);
    bdrv_attach_aio_context(bs, new_context);
5119
    bdrv_parent_drained_end(bs, NULL, false);
5120
    aio_enable_external(ctx);
5121
    aio_context_release(new_context);
5122
}
5123

M
Max Reitz 已提交
5124 5125 5126 5127 5128 5129 5130 5131 5132 5133 5134 5135 5136 5137 5138 5139 5140 5141 5142 5143 5144 5145 5146 5147 5148
void bdrv_add_aio_context_notifier(BlockDriverState *bs,
        void (*attached_aio_context)(AioContext *new_context, void *opaque),
        void (*detach_aio_context)(void *opaque), void *opaque)
{
    BdrvAioNotifier *ban = g_new(BdrvAioNotifier, 1);
    *ban = (BdrvAioNotifier){
        .attached_aio_context = attached_aio_context,
        .detach_aio_context   = detach_aio_context,
        .opaque               = opaque
    };

    QLIST_INSERT_HEAD(&bs->aio_notifiers, ban, list);
}

void bdrv_remove_aio_context_notifier(BlockDriverState *bs,
                                      void (*attached_aio_context)(AioContext *,
                                                                   void *),
                                      void (*detach_aio_context)(void *),
                                      void *opaque)
{
    BdrvAioNotifier *ban, *ban_next;

    QLIST_FOREACH_SAFE(ban, &bs->aio_notifiers, list, ban_next) {
        if (ban->attached_aio_context == attached_aio_context &&
            ban->detach_aio_context   == detach_aio_context   &&
5149 5150
            ban->opaque               == opaque               &&
            ban->deleted              == false)
M
Max Reitz 已提交
5151
        {
5152 5153 5154 5155 5156
            if (bs->walking_aio_notifiers) {
                ban->deleted = true;
            } else {
                bdrv_do_remove_aio_context_notifier(ban);
            }
M
Max Reitz 已提交
5157 5158 5159 5160 5161 5162 5163
            return;
        }
    }

    abort();
}

5164
int bdrv_amend_options(BlockDriverState *bs, QemuOpts *opts,
5165 5166
                       BlockDriverAmendStatusCB *status_cb, void *cb_opaque,
                       Error **errp)
M
Max Reitz 已提交
5167
{
M
Max Reitz 已提交
5168
    if (!bs->drv) {
5169
        error_setg(errp, "Node is ejected");
M
Max Reitz 已提交
5170 5171
        return -ENOMEDIUM;
    }
C
Chunyan Liu 已提交
5172
    if (!bs->drv->bdrv_amend_options) {
5173 5174
        error_setg(errp, "Block driver '%s' does not support option amendment",
                   bs->drv->format_name);
M
Max Reitz 已提交
5175 5176
        return -ENOTSUP;
    }
5177
    return bs->drv->bdrv_amend_options(bs, opts, status_cb, cb_opaque, errp);
M
Max Reitz 已提交
5178
}
5179

5180 5181 5182 5183
/* This function will be called by the bdrv_recurse_is_first_non_filter method
 * of block filter and by bdrv_is_first_non_filter.
 * It is used to test if the given bs is the candidate or recurse more in the
 * node graph.
5184
 */
5185
bool bdrv_recurse_is_first_non_filter(BlockDriverState *bs,
5186
                                      BlockDriverState *candidate)
5187
{
5188 5189
    /* return false if basic checks fails */
    if (!bs || !bs->drv) {
5190
        return false;
5191 5192
    }

5193 5194 5195 5196 5197
    /* the code reached a non block filter driver -> check if the bs is
     * the same as the candidate. It's the recursion termination condition.
     */
    if (!bs->drv->is_filter) {
        return bs == candidate;
5198
    }
5199
    /* Down this path the driver is a block filter driver */
5200

5201 5202 5203 5204
    /* If the block filter recursion method is defined use it to recurse down
     * the node graph.
     */
    if (bs->drv->bdrv_recurse_is_first_non_filter) {
5205
        return bs->drv->bdrv_recurse_is_first_non_filter(bs, candidate);
5206 5207
    }

5208 5209 5210
    /* the driver is a block filter but don't allow to recurse -> return false
     */
    return false;
5211 5212
}

5213 5214 5215 5216 5217
/* This function checks if the candidate is the first non filter bs down it's
 * bs chain. Since we don't have pointers to parents it explore all bs chains
 * from the top. Some filters can choose not to pass down the recursion.
 */
bool bdrv_is_first_non_filter(BlockDriverState *candidate)
5218
{
K
Kevin Wolf 已提交
5219
    BlockDriverState *bs;
K
Kevin Wolf 已提交
5220
    BdrvNextIterator it;
5221 5222

    /* walk down the bs forest recursively */
K
Kevin Wolf 已提交
5223
    for (bs = bdrv_first(&it); bs; bs = bdrv_next(&it)) {
5224 5225
        bool perm;

5226
        /* try to recurse in this top level bs */
5227
        perm = bdrv_recurse_is_first_non_filter(bs, candidate);
5228 5229 5230

        /* candidate is the first non filter */
        if (perm) {
5231
            bdrv_next_cleanup(&it);
5232 5233 5234 5235 5236
            return true;
        }
    }

    return false;
5237
}
5238

5239 5240
BlockDriverState *check_to_replace_node(BlockDriverState *parent_bs,
                                        const char *node_name, Error **errp)
5241 5242
{
    BlockDriverState *to_replace_bs = bdrv_find_node(node_name);
5243 5244
    AioContext *aio_context;

5245 5246 5247 5248 5249
    if (!to_replace_bs) {
        error_setg(errp, "Node name '%s' not found", node_name);
        return NULL;
    }

5250 5251 5252
    aio_context = bdrv_get_aio_context(to_replace_bs);
    aio_context_acquire(aio_context);

5253
    if (bdrv_op_is_blocked(to_replace_bs, BLOCK_OP_TYPE_REPLACE, errp)) {
5254 5255
        to_replace_bs = NULL;
        goto out;
5256 5257 5258 5259 5260 5261 5262
    }

    /* We don't want arbitrary node of the BDS chain to be replaced only the top
     * most non filter in order to prevent data corruption.
     * Another benefit is that this tests exclude backing files which are
     * blocked by the backing blockers.
     */
5263
    if (!bdrv_recurse_is_first_non_filter(parent_bs, to_replace_bs)) {
5264
        error_setg(errp, "Only top most non filter can be replaced");
5265 5266
        to_replace_bs = NULL;
        goto out;
5267 5268
    }

5269 5270
out:
    aio_context_release(aio_context);
5271 5272
    return to_replace_bs;
}
5273

M
Max Reitz 已提交
5274 5275 5276
static bool append_open_options(QDict *d, BlockDriverState *bs)
{
    const QDictEntry *entry;
5277
    QemuOptDesc *desc;
M
Max Reitz 已提交
5278 5279 5280 5281 5282
    bool found_any = false;

    for (entry = qdict_first(bs->options); entry;
         entry = qdict_next(bs->options, entry))
    {
5283
        /* Exclude all non-driver-specific options */
5284 5285 5286 5287 5288 5289 5290 5291 5292
        for (desc = bdrv_runtime_opts.desc; desc->name; desc++) {
            if (!strcmp(qdict_entry_key(entry), desc->name)) {
                break;
            }
        }
        if (desc->name) {
            continue;
        }

5293 5294
        qdict_put_obj(d, qdict_entry_key(entry),
                      qobject_ref(qdict_entry_value(entry)));
5295
        found_any = true;
M
Max Reitz 已提交
5296 5297 5298 5299 5300 5301 5302 5303 5304 5305 5306 5307 5308 5309 5310 5311 5312 5313 5314 5315 5316 5317 5318 5319 5320 5321 5322 5323 5324
    }

    return found_any;
}

/* Updates the following BDS fields:
 *  - exact_filename: A filename which may be used for opening a block device
 *                    which (mostly) equals the given BDS (even without any
 *                    other options; so reading and writing must return the same
 *                    results, but caching etc. may be different)
 *  - full_open_options: Options which, when given when opening a block device
 *                       (without a filename), result in a BDS (mostly)
 *                       equalling the given one
 *  - filename: If exact_filename is set, it is copied here. Otherwise,
 *              full_open_options is converted to a JSON object, prefixed with
 *              "json:" (for use through the JSON pseudo protocol) and put here.
 */
void bdrv_refresh_filename(BlockDriverState *bs)
{
    BlockDriver *drv = bs->drv;
    QDict *opts;

    if (!drv) {
        return;
    }

    /* This BDS's file name will most probably depend on its file's name, so
     * refresh that first */
    if (bs->file) {
K
Kevin Wolf 已提交
5325
        bdrv_refresh_filename(bs->file->bs);
M
Max Reitz 已提交
5326 5327 5328 5329 5330 5331 5332
    }

    if (drv->bdrv_refresh_filename) {
        /* Obsolete information is of no use here, so drop the old file name
         * information before refreshing it */
        bs->exact_filename[0] = '\0';
        if (bs->full_open_options) {
5333
            qobject_unref(bs->full_open_options);
M
Max Reitz 已提交
5334 5335 5336
            bs->full_open_options = NULL;
        }

5337 5338 5339
        opts = qdict_new();
        append_open_options(opts, bs);
        drv->bdrv_refresh_filename(bs, opts);
5340
        qobject_unref(opts);
M
Max Reitz 已提交
5341 5342 5343 5344 5345 5346
    } else if (bs->file) {
        /* Try to reconstruct valid information from the underlying file */
        bool has_open_options;

        bs->exact_filename[0] = '\0';
        if (bs->full_open_options) {
5347
            qobject_unref(bs->full_open_options);
M
Max Reitz 已提交
5348 5349 5350 5351 5352 5353 5354 5355
            bs->full_open_options = NULL;
        }

        opts = qdict_new();
        has_open_options = append_open_options(opts, bs);

        /* If no specific options have been given for this BDS, the filename of
         * the underlying file should suffice for this one as well */
K
Kevin Wolf 已提交
5356 5357
        if (bs->file->bs->exact_filename[0] && !has_open_options) {
            strcpy(bs->exact_filename, bs->file->bs->exact_filename);
M
Max Reitz 已提交
5358 5359 5360 5361 5362 5363
        }
        /* Reconstructing the full options QDict is simple for most format block
         * drivers, as long as the full options are known for the underlying
         * file BDS. The full options QDict of that file BDS should somehow
         * contain a representation of the filename, therefore the following
         * suffices without querying the (exact_)filename of this BDS. */
K
Kevin Wolf 已提交
5364
        if (bs->file->bs->full_open_options) {
5365
            qdict_put_str(opts, "driver", drv->format_name);
5366 5367
            qdict_put(opts, "file",
                      qobject_ref(bs->file->bs->full_open_options));
M
Max Reitz 已提交
5368 5369 5370

            bs->full_open_options = opts;
        } else {
5371
            qobject_unref(opts);
M
Max Reitz 已提交
5372 5373 5374 5375 5376 5377 5378 5379 5380 5381 5382
        }
    } else if (!bs->full_open_options && qdict_size(bs->options)) {
        /* There is no underlying file BDS (at least referenced by BDS.file),
         * so the full options QDict should be equal to the options given
         * specifically for this block device when it was opened (plus the
         * driver specification).
         * Because those options don't change, there is no need to update
         * full_open_options when it's already set. */

        opts = qdict_new();
        append_open_options(opts, bs);
5383
        qdict_put_str(opts, "driver", drv->format_name);
M
Max Reitz 已提交
5384 5385 5386 5387 5388 5389 5390 5391 5392

        if (bs->exact_filename[0]) {
            /* This may not work for all block protocol drivers (some may
             * require this filename to be parsed), but we have to find some
             * default solution here, so just include it. If some block driver
             * does not support pure options without any filename at all or
             * needs some special format of the options QDict, it needs to
             * implement the driver-specific bdrv_refresh_filename() function.
             */
5393
            qdict_put_str(opts, "filename", bs->exact_filename);
M
Max Reitz 已提交
5394 5395 5396 5397 5398 5399 5400 5401 5402 5403 5404
        }

        bs->full_open_options = opts;
    }

    if (bs->exact_filename[0]) {
        pstrcpy(bs->filename, sizeof(bs->filename), bs->exact_filename);
    } else if (bs->full_open_options) {
        QString *json = qobject_to_json(QOBJECT(bs->full_open_options));
        snprintf(bs->filename, sizeof(bs->filename), "json:%s",
                 qstring_get_str(json));
5405
        qobject_unref(json);
M
Max Reitz 已提交
5406 5407
    }
}
5408 5409 5410 5411 5412 5413 5414 5415 5416 5417 5418 5419 5420 5421 5422 5423 5424 5425 5426 5427 5428 5429 5430 5431 5432 5433 5434 5435 5436 5437 5438 5439 5440 5441 5442 5443 5444 5445 5446 5447 5448 5449 5450 5451 5452 5453 5454 5455 5456

/*
 * Hot add/remove a BDS's child. So the user can take a child offline when
 * it is broken and take a new child online
 */
void bdrv_add_child(BlockDriverState *parent_bs, BlockDriverState *child_bs,
                    Error **errp)
{

    if (!parent_bs->drv || !parent_bs->drv->bdrv_add_child) {
        error_setg(errp, "The node %s does not support adding a child",
                   bdrv_get_device_or_node_name(parent_bs));
        return;
    }

    if (!QLIST_EMPTY(&child_bs->parents)) {
        error_setg(errp, "The node %s already has a parent",
                   child_bs->node_name);
        return;
    }

    parent_bs->drv->bdrv_add_child(parent_bs, child_bs, errp);
}

void bdrv_del_child(BlockDriverState *parent_bs, BdrvChild *child, Error **errp)
{
    BdrvChild *tmp;

    if (!parent_bs->drv || !parent_bs->drv->bdrv_del_child) {
        error_setg(errp, "The node %s does not support removing a child",
                   bdrv_get_device_or_node_name(parent_bs));
        return;
    }

    QLIST_FOREACH(tmp, &parent_bs->children, next) {
        if (tmp == child) {
            break;
        }
    }

    if (!tmp) {
        error_setg(errp, "The node %s does not have a child named %s",
                   bdrv_get_device_or_node_name(parent_bs),
                   bdrv_get_device_or_node_name(child->bs));
        return;
    }

    parent_bs->drv->bdrv_del_child(parent_bs, child, errp);
}
5457 5458 5459 5460 5461 5462 5463 5464 5465 5466 5467 5468 5469 5470 5471 5472 5473 5474 5475 5476 5477 5478

bool bdrv_can_store_new_dirty_bitmap(BlockDriverState *bs, const char *name,
                                     uint32_t granularity, Error **errp)
{
    BlockDriver *drv = bs->drv;

    if (!drv) {
        error_setg_errno(errp, ENOMEDIUM,
                         "Can't store persistent bitmaps to %s",
                         bdrv_get_device_or_node_name(bs));
        return false;
    }

    if (!drv->bdrv_can_store_new_dirty_bitmap) {
        error_setg_errno(errp, ENOTSUP,
                         "Can't store persistent bitmaps to %s",
                         bdrv_get_device_or_node_name(bs));
        return false;
    }

    return drv->bdrv_can_store_new_dirty_bitmap(bs, name, granularity, errp);
}