monitor.c 116.9 KB
Newer Older
B
bellard 已提交
1 2
/*
 * QEMU monitor
3
 *
B
bellard 已提交
4
 * Copyright (c) 2003-2004 Fabrice Bellard
5
 *
B
bellard 已提交
6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23
 * Permission is hereby granted, free of charge, to any person obtaining a copy
 * of this software and associated documentation files (the "Software"), to deal
 * in the Software without restriction, including without limitation the rights
 * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
 * copies of the Software, and to permit persons to whom the Software is
 * furnished to do so, subject to the following conditions:
 *
 * The above copyright notice and this permission notice shall be included in
 * all copies or substantial portions of the Software.
 *
 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL
 * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
 * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
 * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
 * THE SOFTWARE.
 */
P
Peter Maydell 已提交
24
#include "qemu/osdep.h"
25
#include <dirent.h>
26 27
#include "qemu-common.h"
#include "cpu.h"
P
pbrook 已提交
28
#include "hw/hw.h"
29
#include "monitor/qdev.h"
P
pbrook 已提交
30
#include "hw/usb.h"
P
Paolo Bonzini 已提交
31
#include "hw/i386/pc.h"
32
#include "hw/pci/pci.h"
P
Paolo Bonzini 已提交
33
#include "sysemu/watchdog.h"
34
#include "hw/loader.h"
35
#include "exec/gdbstub.h"
P
Paolo Bonzini 已提交
36
#include "net/net.h"
37
#include "net/slirp.h"
38
#include "sysemu/char.h"
39
#include "ui/qemu-spice.h"
40
#include "sysemu/sysemu.h"
41
#include "sysemu/numa.h"
42
#include "monitor/monitor.h"
43
#include "qemu/readline.h"
44
#include "ui/console.h"
45
#include "ui/input.h"
46
#include "sysemu/blockdev.h"
47
#include "sysemu/block-backend.h"
P
pbrook 已提交
48
#include "audio/audio.h"
49
#include "disas/disas.h"
50
#include "sysemu/balloon.h"
51
#include "qemu/timer.h"
52
#include "migration/migration.h"
53
#include "sysemu/kvm.h"
54
#include "qemu/acl.h"
55
#include "sysemu/tpm.h"
56
#include "qapi/qmp/qerror.h"
E
Eric Blake 已提交
57
#include "qapi/qmp/types.h"
58 59 60
#include "qapi/qmp/qjson.h"
#include "qapi/qmp/json-streamer.h"
#include "qapi/qmp/json-parser.h"
61
#include "qom/object_interfaces.h"
62
#include "cpu.h"
63
#include "trace.h"
64
#include "trace/control.h"
65
#include "monitor/hmp-target.h"
66
#ifdef CONFIG_TRACE_SIMPLE
67
#include "trace/simple.h"
68
#endif
69
#include "exec/memory.h"
70
#include "exec/exec-all.h"
71
#include "qemu/log.h"
A
Anthony Liguori 已提交
72 73
#include "qmp-commands.h"
#include "hmp.h"
74
#include "qemu/thread.h"
75
#include "block/qapi.h"
76 77
#include "qapi/qmp-event.h"
#include "qapi-event.h"
78
#include "qmp-introspect.h"
79
#include "sysemu/block-backend.h"
80
#include "sysemu/qtest.h"
81
#include "qemu/cutils.h"
82
#include "qapi/qmp/dispatch.h"
T
ths 已提交
83

84
/* for hmp_info_irq/pic */
85
#if defined(TARGET_SPARC)
P
Paolo Bonzini 已提交
86
#include "hw/sparc/sun4m.h"
87
#endif
P
Paolo Bonzini 已提交
88
#include "hw/lm32/lm32_pic.h"
89

J
Jason J. Herne 已提交
90 91 92 93
#if defined(TARGET_S390X)
#include "hw/s390x/storage-keys.h"
#endif

94 95
/*
 * Supported types:
96
 *
97
 * 'F'          filename
B
bellard 已提交
98
 * 'B'          block device name
99
 * 's'          string (accept optional quote)
100
 * 'S'          it just appends the rest of the string (accept optional quote)
101 102 103 104 105
 * 'O'          option string of the form NAME=VALUE,...
 *              parsed according to QemuOptsList given by its name
 *              Example: 'device:O' uses qemu_device_opts.
 *              Restriction: only lists with empty desc are supported
 *              TODO lift the restriction
B
bellard 已提交
106 107
 * 'i'          32 bit integer
 * 'l'          target long (32 or 64 bit)
108 109
 * 'M'          Non-negative target long (32 or 64 bit), in user mode the
 *              value is multiplied by 2^20 (think Mebibyte)
110
 * 'o'          octets (aka bytes)
111 112 113 114
 *              user mode accepts an optional E, e, P, p, T, t, G, g, M, m,
 *              K, k suffix, which multiplies the value by 2^60 for suffixes E
 *              and e, 2^50 for suffixes P and p, 2^40 for suffixes T and t,
 *              2^30 for suffixes G and g, 2^20 for M and m, 2^10 for K and k
115 116 117
 * 'T'          double
 *              user mode accepts an optional ms, us, ns suffix,
 *              which divides the value by 1e3, 1e6, 1e9, respectively
118 119
 * '/'          optional gdb-like print format (like "/10x")
 *
120 121
 * '?'          optional type (for all types, except '/')
 * '.'          other form of optional type (for 'i' and 'l')
122 123
 * 'b'          boolean
 *              user mode accepts "on" or "off"
124
 * '-'          optional parameter (eg. '-f')
125 126 127
 *
 */

A
Anthony Liguori 已提交
128
typedef struct mon_cmd_t {
B
bellard 已提交
129
    const char *name;
130
    const char *args_type;
B
bellard 已提交
131 132
    const char *params;
    const char *help;
L
Luiz Capitulino 已提交
133
    union {
134
        void (*cmd)(Monitor *mon, const QDict *qdict);
135
        void (*cmd_new)(QDict *params, QObject **ret_data, Error **errp);
L
Luiz Capitulino 已提交
136
    } mhandler;
137 138 139 140 141
    /* @sub_table is a list of 2nd level of commands. If it do not exist,
     * mhandler should be used. If it exist, sub_table[?].mhandler should be
     * used, and mhandler of 1st level plays the role of help function.
     */
    struct mon_cmd_t *sub_table;
142
    void (*command_completion)(ReadLineState *rs, int nb_args, const char *str);
A
Anthony Liguori 已提交
143
} mon_cmd_t;
B
bellard 已提交
144

145
/* file descriptors passed via SCM_RIGHTS */
A
Anthony Liguori 已提交
146 147
typedef struct mon_fd_t mon_fd_t;
struct mon_fd_t {
148 149
    char *name;
    int fd;
A
Anthony Liguori 已提交
150
    QLIST_ENTRY(mon_fd_t) next;
151 152
};

153 154 155 156 157 158 159 160 161 162 163 164 165 166
/* file descriptor associated with a file descriptor set */
typedef struct MonFdsetFd MonFdsetFd;
struct MonFdsetFd {
    int fd;
    bool removed;
    char *opaque;
    QLIST_ENTRY(MonFdsetFd) next;
};

/* file descriptor set containing fds passed via SCM_RIGHTS */
typedef struct MonFdset MonFdset;
struct MonFdset {
    int64_t id;
    QLIST_HEAD(, MonFdsetFd) fds;
167
    QLIST_HEAD(, MonFdsetFd) dup_fds;
168 169 170
    QLIST_ENTRY(MonFdset) next;
};

171
typedef struct {
L
Luiz Capitulino 已提交
172 173
    QObject *id;
    JSONMessageParser parser;
174 175 176 177 178 179
    /*
     * When a client connects, we're in capabilities negotiation mode.
     * When command qmp_capabilities succeeds, we go into command
     * mode.
     */
    bool in_command_mode;       /* are we in command mode? */
180
} MonitorQMP;
L
Luiz Capitulino 已提交
181

182 183 184 185 186
/*
 * To prevent flooding clients, events can be throttled. The
 * throttling is calculated globally, rather than per-Monitor
 * instance.
 */
187
typedef struct MonitorQAPIEventState {
188 189
    QAPIEvent event;    /* Throttling state for this event type and... */
    QDict *data;        /* ... data, see qapi_event_throttle_equal() */
190
    QEMUTimer *timer;   /* Timer for handling delayed events */
191
    QDict *qdict;       /* Delayed event (if any) */
192
} MonitorQAPIEventState;
193

194 195 196 197
typedef struct {
    int64_t rate;       /* Minimum time (in ns) between two events */
} MonitorQAPIEventConf;

198 199
struct Monitor {
    CharDriverState *chr;
G
Gerd Hoffmann 已提交
200
    int reset_seen;
201 202
    int flags;
    int suspend_cnt;
203
    bool skip_flush;
204 205

    QemuMutex out_lock;
206
    QString *outbuf;
207 208 209 210 211
    guint out_watch;

    /* Read under either BQL or out_lock, written with BQL+out_lock.  */
    int mux_out;

212
    ReadLineState *rs;
213
    MonitorQMP qmp;
214
    CPUState *mon_cpu;
215
    BlockCompletionFunc *password_completion_cb;
216
    void *password_opaque;
217
    mon_cmd_t *cmd_table;
A
Anthony Liguori 已提交
218
    QLIST_HEAD(,mon_fd_t) fds;
B
Blue Swirl 已提交
219
    QLIST_ENTRY(Monitor) entry;
220 221
};

222 223 224
/* QMP checker flags */
#define QMP_ACCEPT_UNKNOWNS 1

P
Paolo Bonzini 已提交
225 226 227
/* Protects mon_list, monitor_event_state.  */
static QemuMutex monitor_lock;

B
Blue Swirl 已提交
228
static QLIST_HEAD(mon_list, Monitor) mon_list;
229
static QLIST_HEAD(mon_fdsets, MonFdset) mon_fdsets;
230
static int mon_refcount;
231

232 233
static mon_cmd_t mon_cmds[];
static mon_cmd_t info_cmds[];
B
bellard 已提交
234

235 236
static const mon_cmd_t qmp_cmds[];

237
Monitor *cur_mon;
A
aliguori 已提交
238

239 240
static QEMUClockType event_clock_type = QEMU_CLOCK_REALTIME;

241 242
static void monitor_command_cb(void *opaque, const char *cmdline,
                               void *readline_opaque);
243

244 245 246 247
/**
 * Is @mon a QMP monitor?
 */
static inline bool monitor_is_qmp(const Monitor *mon)
248 249 250 251
{
    return (mon->flags & MONITOR_USE_CONTROL);
}

252 253 254 255
/**
 * Is the current monitor, if any, a QMP monitor?
 */
bool monitor_cur_is_qmp(void)
256
{
257
    return cur_mon && monitor_is_qmp(cur_mon);
258 259
}

A
Anthony Liguori 已提交
260
void monitor_read_command(Monitor *mon, int show_prompt)
261
{
262 263 264
    if (!mon->rs)
        return;

265 266 267 268
    readline_start(mon->rs, "(qemu) ", 0, monitor_command_cb, NULL);
    if (show_prompt)
        readline_show_prompt(mon->rs);
}
B
bellard 已提交
269

A
Anthony Liguori 已提交
270 271
int monitor_read_password(Monitor *mon, ReadLineFunc *readline_func,
                          void *opaque)
272
{
273
    if (mon->rs) {
274 275 276 277 278 279 280
        readline_start(mon->rs, "Password: ", 1, readline_func, opaque);
        /* prompt is printed on return from the command handler */
        return 0;
    } else {
        monitor_printf(mon, "terminal does not support password prompting\n");
        return -ENOTTY;
    }
281 282
}

283 284
static void monitor_flush_locked(Monitor *mon);

G
Gerd Hoffmann 已提交
285 286 287
static gboolean monitor_unblocked(GIOChannel *chan, GIOCondition cond,
                                  void *opaque)
{
288 289
    Monitor *mon = opaque;

290 291 292 293
    qemu_mutex_lock(&mon->out_lock);
    mon->out_watch = 0;
    monitor_flush_locked(mon);
    qemu_mutex_unlock(&mon->out_lock);
G
Gerd Hoffmann 已提交
294 295 296
    return FALSE;
}

297 298
/* Called with mon->out_lock held.  */
static void monitor_flush_locked(Monitor *mon)
299
{
G
Gerd Hoffmann 已提交
300
    int rc;
301 302 303
    size_t len;
    const char *buf;

304 305 306 307
    if (mon->skip_flush) {
        return;
    }

308 309
    buf = qstring_get_str(mon->outbuf);
    len = qstring_get_length(mon->outbuf);
G
Gerd Hoffmann 已提交
310

311
    if (len && !mon->mux_out) {
312
        rc = qemu_chr_fe_write(mon->chr, (const uint8_t *) buf, len);
313 314
        if ((rc < 0 && errno != EAGAIN) || (rc == len)) {
            /* all flushed or error */
315 316
            QDECREF(mon->outbuf);
            mon->outbuf = qstring_new();
G
Gerd Hoffmann 已提交
317 318 319
            return;
        }
        if (rc > 0) {
E
Eric Blake 已提交
320
            /* partial write */
321 322 323
            QString *tmp = qstring_from_str(buf + rc);
            QDECREF(mon->outbuf);
            mon->outbuf = tmp;
G
Gerd Hoffmann 已提交
324
        }
325
        if (mon->out_watch == 0) {
326
            mon->out_watch = qemu_chr_fe_add_watch(mon->chr, G_IO_OUT|G_IO_HUP,
327
                                                   monitor_unblocked, mon);
328
        }
329 330 331
    }
}

332 333 334 335 336 337 338
void monitor_flush(Monitor *mon)
{
    qemu_mutex_lock(&mon->out_lock);
    monitor_flush_locked(mon);
    qemu_mutex_unlock(&mon->out_lock);
}

339
/* flush at every end of line */
A
aliguori 已提交
340
static void monitor_puts(Monitor *mon, const char *str)
341
{
T
ths 已提交
342
    char c;
343

344
    qemu_mutex_lock(&mon->out_lock);
345 346 347 348
    for(;;) {
        c = *str++;
        if (c == '\0')
            break;
349 350 351 352 353
        if (c == '\n') {
            qstring_append_chr(mon->outbuf, '\r');
        }
        qstring_append_chr(mon->outbuf, c);
        if (c == '\n') {
354
            monitor_flush_locked(mon);
355
        }
356
    }
357
    qemu_mutex_unlock(&mon->out_lock);
358 359
}

A
aliguori 已提交
360
void monitor_vprintf(Monitor *mon, const char *fmt, va_list ap)
B
bellard 已提交
361
{
362
    char *buf;
363

364 365 366
    if (!mon)
        return;

367
    if (monitor_is_qmp(mon)) {
368
        return;
369
    }
370

371
    buf = g_strdup_vprintf(fmt, ap);
372
    monitor_puts(mon, buf);
373
    g_free(buf);
B
bellard 已提交
374 375
}

A
aliguori 已提交
376
void monitor_printf(Monitor *mon, const char *fmt, ...)
B
bellard 已提交
377
{
378 379
    va_list ap;
    va_start(ap, fmt);
A
aliguori 已提交
380
    monitor_vprintf(mon, fmt, ap);
381
    va_end(ap);
B
bellard 已提交
382 383
}

384
int monitor_fprintf(FILE *stream, const char *fmt, ...)
B
bellard 已提交
385 386 387
{
    va_list ap;
    va_start(ap, fmt);
A
aliguori 已提交
388
    monitor_vprintf((Monitor *)stream, fmt, ap);
B
bellard 已提交
389 390 391 392
    va_end(ap);
    return 0;
}

L
Luiz Capitulino 已提交
393 394 395 396
static void monitor_json_emitter(Monitor *mon, const QObject *data)
{
    QString *json;

397 398
    json = mon->flags & MONITOR_USE_PRETTY ? qobject_to_json_pretty(data) :
                                             qobject_to_json(data);
L
Luiz Capitulino 已提交
399 400
    assert(json != NULL);

401 402
    qstring_append_chr(json, '\n');
    monitor_puts(mon, qstring_get_str(json));
403

L
Luiz Capitulino 已提交
404 405 406
    QDECREF(json);
}

407
static QDict *build_qmp_error_dict(Error *err)
408 409 410
{
    QObject *obj;

411
    obj = qobject_from_jsonf("{ 'error': { 'class': %s, 'desc': %s } }",
E
Eric Blake 已提交
412
                             QapiErrorClass_lookup[error_get_class(err)],
413
                             error_get_pretty(err));
414 415 416 417

    return qobject_to_qdict(obj);
}

418
static void monitor_protocol_emitter(Monitor *mon, QObject *data,
419
                                     Error *err)
L
Luiz Capitulino 已提交
420 421 422
{
    QDict *qmp;

423 424
    trace_monitor_protocol_emitter(mon);

425
    if (!err) {
L
Luiz Capitulino 已提交
426
        /* success response */
427
        qmp = qdict_new();
L
Luiz Capitulino 已提交
428 429 430 431
        if (data) {
            qobject_incref(data);
            qdict_put_obj(qmp, "return", data);
        } else {
432 433
            /* return an empty QDict by default */
            qdict_put(qmp, "return", qdict_new());
L
Luiz Capitulino 已提交
434 435 436
        }
    } else {
        /* error response */
437
        qmp = build_qmp_error_dict(err);
L
Luiz Capitulino 已提交
438 439
    }

440 441 442
    if (mon->qmp.id) {
        qdict_put_obj(qmp, "id", mon->qmp.id);
        mon->qmp.id = NULL;
L
Luiz Capitulino 已提交
443 444
    }

L
Luiz Capitulino 已提交
445 446 447 448
    monitor_json_emitter(mon, QOBJECT(qmp));
    QDECREF(qmp);
}

449

450
static MonitorQAPIEventConf monitor_qapi_event_conf[QAPI_EVENT__MAX] = {
451 452 453 454 455 456 457 458 459
    /* Limit guest-triggerable events to 1 per second */
    [QAPI_EVENT_RTC_CHANGE]        = { 1000 * SCALE_MS },
    [QAPI_EVENT_WATCHDOG]          = { 1000 * SCALE_MS },
    [QAPI_EVENT_BALLOON_CHANGE]    = { 1000 * SCALE_MS },
    [QAPI_EVENT_QUORUM_REPORT_BAD] = { 1000 * SCALE_MS },
    [QAPI_EVENT_QUORUM_FAILURE]    = { 1000 * SCALE_MS },
    [QAPI_EVENT_VSERPORT_CHANGE]   = { 1000 * SCALE_MS },
};

460
GHashTable *monitor_qapi_event_state;
461 462

/*
463
 * Emits the event to every monitor instance, @event is only used for trace
P
Paolo Bonzini 已提交
464
 * Called with monitor_lock held.
465
 */
466
static void monitor_qapi_event_emit(QAPIEvent event, QDict *qdict)
467 468 469
{
    Monitor *mon;

470
    trace_monitor_protocol_event_emit(event, qdict);
471
    QLIST_FOREACH(mon, &mon_list, entry) {
472
        if (monitor_is_qmp(mon) && mon->qmp.in_command_mode) {
473
            monitor_json_emitter(mon, QOBJECT(qdict));
474 475 476 477
        }
    }
}

478 479
static void monitor_qapi_event_handler(void *opaque);

480 481 482 483 484
/*
 * Queue a new event for emission to Monitor instances,
 * applying any rate limiting if required.
 */
static void
485
monitor_qapi_event_queue(QAPIEvent event, QDict *qdict, Error **errp)
486
{
487
    MonitorQAPIEventConf *evconf;
488
    MonitorQAPIEventState *evstate;
489

490
    assert(event < QAPI_EVENT__MAX);
491 492
    evconf = &monitor_qapi_event_conf[event];
    trace_monitor_protocol_event_queue(event, qdict, evconf->rate);
493

P
Paolo Bonzini 已提交
494
    qemu_mutex_lock(&monitor_lock);
495

496
    if (!evconf->rate) {
497
        /* Unthrottled event */
498
        monitor_qapi_event_emit(event, qdict);
499
    } else {
500 501
        QDict *data = qobject_to_qdict(qdict_get(qdict, "data"));
        MonitorQAPIEventState key = { .event = event, .data = data };
502 503 504 505 506

        evstate = g_hash_table_lookup(monitor_qapi_event_state, &key);
        assert(!evstate || timer_pending(evstate->timer));

        if (evstate) {
507
            /*
508
             * Timer is pending for (at least) evconf->rate ns after
509 510
             * last send.  Store event for sending when timer fires,
             * replacing a prior stored event if any.
511
             */
512
            QDECREF(evstate->qdict);
513 514
            evstate->qdict = qdict;
            QINCREF(evstate->qdict);
515
        } else {
516
            /*
517
             * Last send was (at least) evconf->rate ns ago.
518
             * Send immediately, and arm the timer to call
519
             * monitor_qapi_event_handler() in evconf->rate ns.  Any
520 521
             * events arriving before then will be delayed until then.
             */
522
            int64_t now = qemu_clock_get_ns(event_clock_type);
523

524
            monitor_qapi_event_emit(event, qdict);
525 526 527

            evstate = g_new(MonitorQAPIEventState, 1);
            evstate->event = event;
528 529
            evstate->data = data;
            QINCREF(evstate->data);
530
            evstate->qdict = NULL;
531
            evstate->timer = timer_new_ns(event_clock_type,
532 533 534
                                          monitor_qapi_event_handler,
                                          evstate);
            g_hash_table_add(monitor_qapi_event_state, evstate);
535
            timer_mod_ns(evstate->timer, now + evconf->rate);
536 537
        }
    }
538

P
Paolo Bonzini 已提交
539
    qemu_mutex_unlock(&monitor_lock);
540 541 542
}

/*
543
 * This function runs evconf->rate ns after sending a throttled
544 545
 * event.
 * If another event has since been stored, send it.
546
 */
547
static void monitor_qapi_event_handler(void *opaque)
548
{
549
    MonitorQAPIEventState *evstate = opaque;
550
    MonitorQAPIEventConf *evconf = &monitor_qapi_event_conf[evstate->event];
551

552
    trace_monitor_protocol_event_handler(evstate->event, evstate->qdict);
P
Paolo Bonzini 已提交
553
    qemu_mutex_lock(&monitor_lock);
554

555
    if (evstate->qdict) {
556
        int64_t now = qemu_clock_get_ns(event_clock_type);
557

558 559 560
        monitor_qapi_event_emit(evstate->event, evstate->qdict);
        QDECREF(evstate->qdict);
        evstate->qdict = NULL;
561
        timer_mod_ns(evstate->timer, now + evconf->rate);
562 563
    } else {
        g_hash_table_remove(monitor_qapi_event_state, evstate);
564
        QDECREF(evstate->data);
565 566
        timer_free(evstate->timer);
        g_free(evstate);
567
    }
568

P
Paolo Bonzini 已提交
569
    qemu_mutex_unlock(&monitor_lock);
570 571
}

572
static unsigned int qapi_event_throttle_hash(const void *key)
573
{
574
    const MonitorQAPIEventState *evstate = key;
575
    unsigned int hash = evstate->event * 255;
576

577 578 579 580
    if (evstate->event == QAPI_EVENT_VSERPORT_CHANGE) {
        hash += g_str_hash(qdict_get_str(evstate->data, "id"));
    }

581 582 583 584
    if (evstate->event == QAPI_EVENT_QUORUM_REPORT_BAD) {
        hash += g_str_hash(qdict_get_str(evstate->data, "node-name"));
    }

585
    return hash;
586
}
587

588 589 590 591 592
static gboolean qapi_event_throttle_equal(const void *a, const void *b)
{
    const MonitorQAPIEventState *eva = a;
    const MonitorQAPIEventState *evb = b;

593 594 595 596 597 598 599 600 601
    if (eva->event != evb->event) {
        return FALSE;
    }

    if (eva->event == QAPI_EVENT_VSERPORT_CHANGE) {
        return !strcmp(qdict_get_str(eva->data, "id"),
                       qdict_get_str(evb->data, "id"));
    }

602 603 604 605 606
    if (eva->event == QAPI_EVENT_QUORUM_REPORT_BAD) {
        return !strcmp(qdict_get_str(eva->data, "node-name"),
                       qdict_get_str(evb->data, "node-name"));
    }

607
    return TRUE;
608 609 610 611
}

static void monitor_qapi_event_init(void)
{
612 613 614 615
    if (qtest_enabled()) {
        event_clock_type = QEMU_CLOCK_VIRTUAL;
    }

616 617
    monitor_qapi_event_state = g_hash_table_new(qapi_event_throttle_hash,
                                                qapi_event_throttle_equal);
618
    qmp_event_set_func_emit(monitor_qapi_event_queue);
619 620
}

621
void qmp_qmp_capabilities(Error **errp)
622
{
623
    cur_mon->qmp.in_command_mode = true;
624 625
}

626
static void handle_hmp_command(Monitor *mon, const char *cmdline);
627

628 629 630
static void monitor_data_init(Monitor *mon)
{
    memset(mon, 0, sizeof(Monitor));
631
    qemu_mutex_init(&mon->out_lock);
632
    mon->outbuf = qstring_new();
633 634
    /* Use *mon_cmds by default. */
    mon->cmd_table = mon_cmds;
635 636 637 638
}

static void monitor_data_destroy(Monitor *mon)
{
639 640 641 642 643 644 645
    if (mon->chr) {
        qemu_chr_add_handlers(mon->chr, NULL, NULL, NULL, NULL);
    }
    if (monitor_is_qmp(mon)) {
        json_message_parser_destroy(&mon->qmp.parser);
    }
    g_free(mon->rs);
646
    QDECREF(mon->outbuf);
647
    qemu_mutex_destroy(&mon->out_lock);
648 649
}

650 651
char *qmp_human_monitor_command(const char *command_line, bool has_cpu_index,
                                int64_t cpu_index, Error **errp)
652
{
653
    char *output = NULL;
654 655
    Monitor *old_mon, hmp;

656
    monitor_data_init(&hmp);
657
    hmp.skip_flush = true;
658 659 660 661

    old_mon = cur_mon;
    cur_mon = &hmp;

662 663
    if (has_cpu_index) {
        int ret = monitor_set_cpu(cpu_index);
664 665
        if (ret < 0) {
            cur_mon = old_mon;
666 667
            error_setg(errp, QERR_INVALID_PARAMETER_VALUE, "cpu-index",
                       "a CPU number");
668 669 670 671
            goto out;
        }
    }

672
    handle_hmp_command(&hmp, command_line);
673 674
    cur_mon = old_mon;

675
    qemu_mutex_lock(&hmp.out_lock);
676 677
    if (qstring_get_length(hmp.outbuf) > 0) {
        output = g_strdup(qstring_get_str(hmp.outbuf));
678 679
    } else {
        output = g_strdup("");
680
    }
681
    qemu_mutex_unlock(&hmp.out_lock);
682 683

out:
684
    monitor_data_destroy(&hmp);
685
    return output;
686 687
}

B
bellard 已提交
688 689 690 691 692 693 694 695 696 697 698 699 700 701 702 703 704 705 706 707
static int compare_cmd(const char *name, const char *list)
{
    const char *p, *pstart;
    int len;
    len = strlen(name);
    p = list;
    for(;;) {
        pstart = p;
        p = strchr(p, '|');
        if (!p)
            p = pstart + strlen(pstart);
        if ((p - pstart) == len && !memcmp(pstart, name, len))
            return 1;
        if (*p == '\0')
            break;
        p++;
    }
    return 0;
}

708 709 710 711 712 713 714 715 716 717 718 719 720 721 722 723 724 725 726 727 728 729 730 731 732 733 734 735 736 737 738 739 740 741 742
static int get_str(char *buf, int buf_size, const char **pp)
{
    const char *p;
    char *q;
    int c;

    q = buf;
    p = *pp;
    while (qemu_isspace(*p)) {
        p++;
    }
    if (*p == '\0') {
    fail:
        *q = '\0';
        *pp = p;
        return -1;
    }
    if (*p == '\"') {
        p++;
        while (*p != '\0' && *p != '\"') {
            if (*p == '\\') {
                p++;
                c = *p++;
                switch (c) {
                case 'n':
                    c = '\n';
                    break;
                case 'r':
                    c = '\r';
                    break;
                case '\\':
                case '\'':
                case '\"':
                    break;
                default:
P
Peter Maydell 已提交
743
                    printf("unsupported escape code: '\\%c'\n", c);
744 745 746 747 748 749 750 751 752 753 754 755 756
                    goto fail;
                }
                if ((q - buf) < buf_size - 1) {
                    *q++ = c;
                }
            } else {
                if ((q - buf) < buf_size - 1) {
                    *q++ = *p;
                }
                p++;
            }
        }
        if (*p != '\"') {
P
Peter Maydell 已提交
757
            printf("unterminated string\n");
758 759 760 761 762 763 764 765 766 767 768 769 770 771 772 773 774 775
            goto fail;
        }
        p++;
    } else {
        while (*p != '\0' && !qemu_isspace(*p)) {
            if ((q - buf) < buf_size - 1) {
                *q++ = *p;
            }
            p++;
        }
    }
    *q = '\0';
    *pp = p;
    return 0;
}

#define MAX_ARGS 16

W
Wenchao Xia 已提交
776 777 778 779 780 781 782 783 784 785 786 787 788 789 790 791 792 793 794 795 796 797 798 799 800 801 802
static void free_cmdline_args(char **args, int nb_args)
{
    int i;

    assert(nb_args <= MAX_ARGS);

    for (i = 0; i < nb_args; i++) {
        g_free(args[i]);
    }

}

/*
 * Parse the command line to get valid args.
 * @cmdline: command line to be parsed.
 * @pnb_args: location to store the number of args, must NOT be NULL.
 * @args: location to store the args, which should be freed by caller, must
 *        NOT be NULL.
 *
 * Returns 0 on success, negative on failure.
 *
 * NOTE: this parser is an approximate form of the real command parser. Number
 *       of args have a limit of MAX_ARGS. If cmdline contains more, it will
 *       return with failure.
 */
static int parse_cmdline(const char *cmdline,
                         int *pnb_args, char **args)
803 804 805 806 807 808 809 810 811 812 813 814 815 816 817
{
    const char *p;
    int nb_args, ret;
    char buf[1024];

    p = cmdline;
    nb_args = 0;
    for (;;) {
        while (qemu_isspace(*p)) {
            p++;
        }
        if (*p == '\0') {
            break;
        }
        if (nb_args >= MAX_ARGS) {
W
Wenchao Xia 已提交
818
            goto fail;
819 820 821
        }
        ret = get_str(buf, sizeof(buf), &p);
        if (ret < 0) {
W
Wenchao Xia 已提交
822
            goto fail;
823
        }
W
Wenchao Xia 已提交
824 825
        args[nb_args] = g_strdup(buf);
        nb_args++;
826 827
    }
    *pnb_args = nb_args;
W
Wenchao Xia 已提交
828 829 830 831 832
    return 0;

 fail:
    free_cmdline_args(args, nb_args);
    return -1;
833 834
}

835 836 837 838 839 840 841 842 843 844 845 846 847 848
static void help_cmd_dump_one(Monitor *mon,
                              const mon_cmd_t *cmd,
                              char **prefix_args,
                              int prefix_args_nb)
{
    int i;

    for (i = 0; i < prefix_args_nb; i++) {
        monitor_printf(mon, "%s ", prefix_args[i]);
    }
    monitor_printf(mon, "%s %s -- %s\n", cmd->name, cmd->params, cmd->help);
}

/* @args[@arg_index] is the valid command need to find in @cmds */
A
Anthony Liguori 已提交
849
static void help_cmd_dump(Monitor *mon, const mon_cmd_t *cmds,
850
                          char **args, int nb_args, int arg_index)
B
bellard 已提交
851
{
A
Anthony Liguori 已提交
852
    const mon_cmd_t *cmd;
B
bellard 已提交
853

854 855 856 857 858 859 860 861 862 863 864 865 866 867 868 869 870 871 872 873
    /* No valid arg need to compare with, dump all in *cmds */
    if (arg_index >= nb_args) {
        for (cmd = cmds; cmd->name != NULL; cmd++) {
            help_cmd_dump_one(mon, cmd, args, arg_index);
        }
        return;
    }

    /* Find one entry to dump */
    for (cmd = cmds; cmd->name != NULL; cmd++) {
        if (compare_cmd(args[arg_index], cmd->name)) {
            if (cmd->sub_table) {
                /* continue with next arg */
                help_cmd_dump(mon, cmd->sub_table,
                              args, nb_args, arg_index + 1);
            } else {
                help_cmd_dump_one(mon, cmd, args, arg_index);
            }
            break;
        }
B
bellard 已提交
874 875 876
    }
}

A
aliguori 已提交
877
static void help_cmd(Monitor *mon, const char *name)
B
bellard 已提交
878
{
879 880 881 882 883 884 885
    char *args[MAX_ARGS];
    int nb_args = 0;

    /* 1. parse user input */
    if (name) {
        /* special case for log, directly dump and return */
        if (!strcmp(name, "log")) {
886
            const QEMULogItem *item;
A
aliguori 已提交
887 888
            monitor_printf(mon, "Log items (comma separated):\n");
            monitor_printf(mon, "%-10s %s\n", "none", "remove all logs");
889
            for (item = qemu_log_items; item->mask != 0; item++) {
A
aliguori 已提交
890
                monitor_printf(mon, "%-10s %s\n", item->name, item->help);
891
            }
892 893 894 895 896
            return;
        }

        if (parse_cmdline(name, &nb_args, args) < 0) {
            return;
897
        }
B
bellard 已提交
898
    }
899 900 901 902 903

    /* 2. dump the contents according to parsed args */
    help_cmd_dump(mon, mon->cmd_table, args, nb_args, 0);

    free_cmdline_args(args, nb_args);
B
bellard 已提交
904 905
}

906
static void do_help_cmd(Monitor *mon, const QDict *qdict)
907
{
908
    help_cmd(mon, qdict_get_try_str(qdict, "name"));
909 910
}

911
static void hmp_trace_event(Monitor *mon, const QDict *qdict)
912 913 914
{
    const char *tp_name = qdict_get_str(qdict, "name");
    bool new_state = qdict_get_bool(qdict, "option");
915 916
    bool has_vcpu = qdict_haskey(qdict, "vcpu");
    int vcpu = qdict_get_try_int(qdict, "vcpu", 0);
917
    Error *local_err = NULL;
918

919 920 921 922 923 924
    if (vcpu < 0) {
        monitor_printf(mon, "argument vcpu must be positive");
        return;
    }

    qmp_trace_event_set_state(tp_name, new_state, true, true, has_vcpu, vcpu, &local_err);
925
    if (local_err) {
926
        error_report_err(local_err);
927
    }
928
}
929

M
Michael Roth 已提交
930
#ifdef CONFIG_TRACE_SIMPLE
931
static void hmp_trace_file(Monitor *mon, const QDict *qdict)
932 933 934 935 936 937 938 939 940 941 942 943 944 945 946 947 948 949 950 951 952
{
    const char *op = qdict_get_try_str(qdict, "op");
    const char *arg = qdict_get_try_str(qdict, "arg");

    if (!op) {
        st_print_trace_file_status((FILE *)mon, &monitor_fprintf);
    } else if (!strcmp(op, "on")) {
        st_set_trace_file_enabled(true);
    } else if (!strcmp(op, "off")) {
        st_set_trace_file_enabled(false);
    } else if (!strcmp(op, "flush")) {
        st_flush_trace_buffer();
    } else if (!strcmp(op, "set")) {
        if (arg) {
            st_set_trace_file(arg);
        }
    } else {
        monitor_printf(mon, "unexpected argument \"%s\"\n", op);
        help_cmd(mon, "trace-file");
    }
}
953 954
#endif

955
static void hmp_info_help(Monitor *mon, const QDict *qdict)
B
bellard 已提交
956
{
957
    help_cmd(mon, "info");
B
bellard 已提交
958 959
}

960
static void query_commands_cb(QmpCommand *cmd, void *opaque)
961
{
962
    CommandInfoList *info, **list = opaque;
963

964 965
    if (!cmd->enabled) {
        return;
966 967
    }

968 969 970 971 972 973 974 975 976 977 978 979 980 981
    info = g_malloc0(sizeof(*info));
    info->value = g_malloc0(sizeof(*info->value));
    info->value->name = g_strdup(cmd->name);
    info->next = *list;
    *list = info;
}

CommandInfoList *qmp_query_commands(Error **errp)
{
    CommandInfoList *list = NULL;

    qmp_for_each_command(query_commands_cb, &list);

    return list;
982 983
}

984 985 986
EventInfoList *qmp_query_events(Error **errp)
{
    EventInfoList *info, *ev_list = NULL;
W
Wenchao Xia 已提交
987
    QAPIEvent e;
988

989
    for (e = 0 ; e < QAPI_EVENT__MAX ; e++) {
W
Wenchao Xia 已提交
990
        const char *event_name = QAPIEvent_lookup[e];
991 992 993 994 995 996 997 998 999 1000 1001 1002
        assert(event_name != NULL);
        info = g_malloc0(sizeof(*info));
        info->value = g_malloc0(sizeof(*info->value));
        info->value->name = g_strdup(event_name);

        info->next = ev_list;
        ev_list = info;
    }

    return ev_list;
}

1003 1004 1005 1006 1007 1008 1009 1010 1011 1012 1013 1014 1015 1016 1017
/*
 * Minor hack: generated marshalling suppressed for this command
 * ('gen': false in the schema) so we can parse the JSON string
 * directly into QObject instead of first parsing it with
 * visit_type_SchemaInfoList() into a SchemaInfoList, then marshal it
 * to QObject with generated output marshallers, every time.  Instead,
 * we do it in test-qmp-input-visitor.c, just to make sure
 * qapi-introspect.py's output actually conforms to the schema.
 */
static void qmp_query_qmp_schema(QDict *qdict, QObject **ret_data,
                                 Error **errp)
{
    *ret_data = qobject_from_json(qmp_schema_json);
}

1018 1019 1020 1021 1022 1023 1024 1025 1026 1027 1028 1029 1030 1031 1032 1033 1034 1035 1036 1037 1038 1039 1040 1041 1042 1043 1044 1045
/*
 * We used to define commands in qmp-commands.hx in addition to the
 * QAPI schema.  This permitted defining some of them only in certain
 * configurations.  query-commands has always reflected that (good,
 * because it lets QMP clients figure out what's actually available),
 * while query-qmp-schema never did (not so good).  This function is a
 * hack to keep the configuration-specific commands defined exactly as
 * before, even though qmp-commands.hx is gone.
 *
 * FIXME Educate the QAPI schema on configuration-specific commands,
 * and drop this hack.
 */
static void qmp_unregister_commands_hack(void)
{
#ifndef CONFIG_SPICE
    qmp_unregister_command("query-spice");
#endif
#ifndef TARGET_I386
    qmp_unregister_command("rtc-reset-reinjection");
#endif
#ifndef TARGET_S390X
    qmp_unregister_command("dump-skeys");
#endif
#ifndef TARGET_ARM
    qmp_unregister_command("query-gic-capabilities");
#endif
}

1046 1047 1048 1049 1050 1051 1052 1053
static void qmp_init_marshal(void)
{
    qmp_register_command("query-qmp-schema", qmp_query_qmp_schema,
                         QCO_NO_OPTIONS);
    qmp_register_command("device_add", qmp_device_add,
                         QCO_NO_OPTIONS);
    qmp_register_command("netdev_add", qmp_netdev_add,
                         QCO_NO_OPTIONS);
1054 1055 1056

    /* call it after the rest of qapi_init() */
    register_module_init(qmp_unregister_commands_hack, MODULE_INIT_QAPI);
1057 1058 1059 1060
}

qapi_init(qmp_init_marshal);

1061 1062
/* set the current CPU defined by the user */
int monitor_set_cpu(int cpu_index)
B
bellard 已提交
1063
{
1064
    CPUState *cpu;
B
bellard 已提交
1065

1066 1067 1068
    cpu = qemu_get_cpu(cpu_index);
    if (cpu == NULL) {
        return -1;
B
bellard 已提交
1069
    }
1070
    cur_mon->mon_cpu = cpu;
1071
    return 0;
B
bellard 已提交
1072 1073
}

1074
CPUState *mon_get_cpu(void)
B
bellard 已提交
1075
{
1076
    if (!cur_mon->mon_cpu) {
1077
        monitor_set_cpu(0);
B
bellard 已提交
1078
    }
1079
    cpu_synchronize_state(cur_mon->mon_cpu);
1080 1081 1082
    return cur_mon->mon_cpu;
}

1083
CPUArchState *mon_get_cpu_env(void)
1084 1085
{
    return mon_get_cpu()->env_ptr;
B
bellard 已提交
1086 1087
}

1088 1089
int monitor_get_cpu_index(void)
{
1090
    return mon_get_cpu()->cpu_index;
1091 1092
}

1093
static void hmp_info_registers(Monitor *mon, const QDict *qdict)
1094
{
1095
    cpu_dump_state(mon_get_cpu(), (FILE *)mon, monitor_fprintf, CPU_DUMP_FPU);
1096 1097
}

1098
static void hmp_info_jit(Monitor *mon, const QDict *qdict)
B
bellard 已提交
1099
{
A
aliguori 已提交
1100
    dump_exec_info((FILE *)mon, monitor_fprintf);
1101
    dump_drift_info((FILE *)mon, monitor_fprintf);
B
bellard 已提交
1102 1103
}

1104
static void hmp_info_opcount(Monitor *mon, const QDict *qdict)
1105 1106 1107 1108
{
    dump_opcount_info((FILE *)mon, monitor_fprintf);
}

1109
static void hmp_info_history(Monitor *mon, const QDict *qdict)
B
bellard 已提交
1110 1111
{
    int i;
1112
    const char *str;
1113

1114 1115
    if (!mon->rs)
        return;
1116 1117
    i = 0;
    for(;;) {
1118
        str = readline_get_history(mon->rs, i);
1119 1120
        if (!str)
            break;
A
aliguori 已提交
1121
        monitor_printf(mon, "%d: '%s'\n", i, str);
B
bellard 已提交
1122
        i++;
B
bellard 已提交
1123 1124 1125
    }
}

1126
static void hmp_info_cpustats(Monitor *mon, const QDict *qdict)
1127
{
1128
    cpu_dump_statistics(mon_get_cpu(), (FILE *)mon, &monitor_fprintf, 0);
1129 1130
}

1131
static void hmp_info_trace_events(Monitor *mon, const QDict *qdict)
1132
{
1133
    const char *name = qdict_get_try_str(qdict, "name");
1134 1135
    bool has_vcpu = qdict_haskey(qdict, "vcpu");
    int vcpu = qdict_get_try_int(qdict, "vcpu", 0);
1136
    TraceEventInfoList *events;
1137
    TraceEventInfoList *elem;
1138 1139 1140 1141 1142
    Error *local_err = NULL;

    if (name == NULL) {
        name = "*";
    }
1143 1144 1145 1146
    if (vcpu < 0) {
        monitor_printf(mon, "argument vcpu must be positive");
        return;
    }
1147

1148
    events = qmp_trace_event_get_state(name, has_vcpu, vcpu, &local_err);
1149 1150 1151 1152
    if (local_err) {
        error_report_err(local_err);
        return;
    }
1153 1154 1155 1156 1157 1158 1159

    for (elem = events; elem != NULL; elem = elem->next) {
        monitor_printf(mon, "%s : state %u\n",
                       elem->value->name,
                       elem->value->state == TRACE_EVENT_STATE_ENABLED ? 1 : 0);
    }
    qapi_free_TraceEventInfoList(events);
1160 1161
}

1162 1163 1164 1165 1166
void qmp_client_migrate_info(const char *protocol, const char *hostname,
                             bool has_port, int64_t port,
                             bool has_tls_port, int64_t tls_port,
                             bool has_cert_subject, const char *cert_subject,
                             Error **errp)
G
Gerd Hoffmann 已提交
1167 1168
{
    if (strcmp(protocol, "spice") == 0) {
1169 1170
        if (!qemu_using_spice(errp)) {
            return;
G
Gerd Hoffmann 已提交
1171 1172
        }

1173
        if (!has_port && !has_tls_port) {
1174
            error_setg(errp, QERR_MISSING_PARAMETER, "port/tls-port");
1175
            return;
1176 1177
        }

1178 1179 1180 1181
        if (qemu_spice_migrate_info(hostname,
                                    has_port ? port : -1,
                                    has_tls_port ? tls_port : -1,
                                    cert_subject)) {
1182
            error_setg(errp, QERR_UNDEFINED_ERROR);
1183
            return;
G
Gerd Hoffmann 已提交
1184
        }
1185
        return;
G
Gerd Hoffmann 已提交
1186 1187
    }

1188
    error_setg(errp, QERR_INVALID_PARAMETER_VALUE, "protocol", "spice");
G
Gerd Hoffmann 已提交
1189 1190
}

1191
static void hmp_logfile(Monitor *mon, const QDict *qdict)
P
pbrook 已提交
1192
{
1193 1194 1195 1196 1197 1198
    Error *err = NULL;

    qemu_set_log_filename(qdict_get_str(qdict, "filename"), &err);
    if (err) {
        error_report_err(err);
    }
P
pbrook 已提交
1199 1200
}

1201
static void hmp_log(Monitor *mon, const QDict *qdict)
1202 1203
{
    int mask;
1204
    const char *items = qdict_get_str(qdict, "items");
1205

1206
    if (!strcmp(items, "none")) {
1207 1208
        mask = 0;
    } else {
1209
        mask = qemu_str_to_log_mask(items);
1210
        if (!mask) {
A
aliguori 已提交
1211
            help_cmd(mon, "log");
1212 1213 1214
            return;
        }
    }
1215
    qemu_set_log(mask);
1216 1217
}

1218
static void hmp_singlestep(Monitor *mon, const QDict *qdict)
1219
{
1220
    const char *option = qdict_get_try_str(qdict, "option");
1221 1222 1223 1224 1225 1226 1227 1228 1229
    if (!option || !strcmp(option, "on")) {
        singlestep = 1;
    } else if (!strcmp(option, "off")) {
        singlestep = 0;
    } else {
        monitor_printf(mon, "unexpected option %s\n", option);
    }
}

1230
static void hmp_gdbserver(Monitor *mon, const QDict *qdict)
1231
{
1232
    const char *device = qdict_get_try_str(qdict, "device");
1233 1234 1235 1236 1237 1238
    if (!device)
        device = "tcp::" DEFAULT_GDBSTUB_PORT;
    if (gdbserver_start(device) < 0) {
        monitor_printf(mon, "Could not open gdbserver on device '%s'\n",
                       device);
    } else if (strcmp(device, "none") == 0) {
1239
        monitor_printf(mon, "Disabled gdbserver\n");
1240
    } else {
1241 1242
        monitor_printf(mon, "Waiting for gdb connection on device '%s'\n",
                       device);
1243 1244 1245
    }
}

1246
static void hmp_watchdog_action(Monitor *mon, const QDict *qdict)
R
Richard W.M. Jones 已提交
1247
{
1248
    const char *action = qdict_get_str(qdict, "action");
R
Richard W.M. Jones 已提交
1249 1250 1251 1252 1253
    if (select_watchdog_action(action) == -1) {
        monitor_printf(mon, "Unknown watchdog action '%s'\n", action);
    }
}

A
aliguori 已提交
1254
static void monitor_printc(Monitor *mon, int c)
1255
{
A
aliguori 已提交
1256
    monitor_printf(mon, "'");
1257 1258
    switch(c) {
    case '\'':
A
aliguori 已提交
1259
        monitor_printf(mon, "\\'");
1260 1261
        break;
    case '\\':
A
aliguori 已提交
1262
        monitor_printf(mon, "\\\\");
1263 1264
        break;
    case '\n':
A
aliguori 已提交
1265
        monitor_printf(mon, "\\n");
1266 1267
        break;
    case '\r':
A
aliguori 已提交
1268
        monitor_printf(mon, "\\r");
1269 1270 1271
        break;
    default:
        if (c >= 32 && c <= 126) {
A
aliguori 已提交
1272
            monitor_printf(mon, "%c", c);
1273
        } else {
A
aliguori 已提交
1274
            monitor_printf(mon, "\\x%02x", c);
1275 1276 1277
        }
        break;
    }
A
aliguori 已提交
1278
    monitor_printf(mon, "'");
1279 1280
}

A
aliguori 已提交
1281
static void memory_dump(Monitor *mon, int count, int format, int wsize,
A
Avi Kivity 已提交
1282
                        hwaddr addr, int is_physical)
1283
{
1284
    int l, line_size, i, max_digits, len;
1285 1286 1287 1288
    uint8_t buf[16];
    uint64_t v;

    if (format == 'i') {
1289
        int flags = 0;
1290
#ifdef TARGET_I386
1291
        CPUArchState *env = mon_get_cpu_env();
1292
        if (wsize == 2) {
1293
            flags = 1;
1294 1295 1296
        } else if (wsize == 4) {
            flags = 0;
        } else {
B
bellard 已提交
1297
            /* as default we use the current CS size */
1298
            flags = 0;
B
bellard 已提交
1299 1300
            if (env) {
#ifdef TARGET_X86_64
1301
                if ((env->efer & MSR_EFER_LMA) &&
B
bellard 已提交
1302 1303 1304 1305 1306 1307 1308
                    (env->segs[R_CS].flags & DESC_L_MASK))
                    flags = 2;
                else
#endif
                if (!(env->segs[R_CS].flags & DESC_B_MASK))
                    flags = 1;
            }
1309
        }
1310 1311
#endif
#ifdef TARGET_PPC
1312
        CPUArchState *env = mon_get_cpu_env();
1313 1314
        flags = msr_le << 16;
        flags |= env->bfd_mach;
1315
#endif
1316
        monitor_disas(mon, mon_get_cpu(), addr, count, is_physical, flags);
1317 1318 1319 1320 1321 1322 1323 1324 1325 1326 1327 1328 1329 1330 1331 1332 1333 1334 1335 1336 1337 1338 1339 1340 1341 1342 1343 1344
        return;
    }

    len = wsize * count;
    if (wsize == 1)
        line_size = 8;
    else
        line_size = 16;
    max_digits = 0;

    switch(format) {
    case 'o':
        max_digits = (wsize * 8 + 2) / 3;
        break;
    default:
    case 'x':
        max_digits = (wsize * 8) / 4;
        break;
    case 'u':
    case 'd':
        max_digits = (wsize * 8 * 10 + 32) / 33;
        break;
    case 'c':
        wsize = 1;
        break;
    }

    while (len > 0) {
1345
        if (is_physical)
A
aliguori 已提交
1346
            monitor_printf(mon, TARGET_FMT_plx ":", addr);
1347
        else
A
aliguori 已提交
1348
            monitor_printf(mon, TARGET_FMT_lx ":", (target_ulong)addr);
1349 1350 1351 1352
        l = len;
        if (l > line_size)
            l = line_size;
        if (is_physical) {
1353
            cpu_physical_memory_read(addr, buf, l);
1354
        } else {
1355
            if (cpu_memory_rw_debug(mon_get_cpu(), addr, buf, l, 0) < 0) {
A
aliguori 已提交
1356
                monitor_printf(mon, " Cannot access memory\n");
1357 1358
                break;
            }
1359
        }
1360
        i = 0;
1361 1362 1363 1364
        while (i < l) {
            switch(wsize) {
            default:
            case 1:
1365
                v = ldub_p(buf + i);
1366 1367
                break;
            case 2:
1368
                v = lduw_p(buf + i);
1369 1370
                break;
            case 4:
1371
                v = (uint32_t)ldl_p(buf + i);
1372 1373
                break;
            case 8:
1374
                v = ldq_p(buf + i);
1375 1376
                break;
            }
A
aliguori 已提交
1377
            monitor_printf(mon, " ");
1378 1379
            switch(format) {
            case 'o':
A
aliguori 已提交
1380
                monitor_printf(mon, "%#*" PRIo64, max_digits, v);
1381 1382
                break;
            case 'x':
A
aliguori 已提交
1383
                monitor_printf(mon, "0x%0*" PRIx64, max_digits, v);
1384 1385
                break;
            case 'u':
A
aliguori 已提交
1386
                monitor_printf(mon, "%*" PRIu64, max_digits, v);
1387 1388
                break;
            case 'd':
A
aliguori 已提交
1389
                monitor_printf(mon, "%*" PRId64, max_digits, v);
1390 1391
                break;
            case 'c':
A
aliguori 已提交
1392
                monitor_printc(mon, v);
1393 1394 1395 1396
                break;
            }
            i += wsize;
        }
A
aliguori 已提交
1397
        monitor_printf(mon, "\n");
1398 1399 1400 1401 1402
        addr += l;
        len -= l;
    }
}

1403
static void hmp_memory_dump(Monitor *mon, const QDict *qdict)
1404
{
1405 1406 1407 1408 1409
    int count = qdict_get_int(qdict, "count");
    int format = qdict_get_int(qdict, "format");
    int size = qdict_get_int(qdict, "size");
    target_long addr = qdict_get_int(qdict, "addr");

A
aliguori 已提交
1410
    memory_dump(mon, count, format, size, addr, 0);
1411 1412
}

1413
static void hmp_physical_memory_dump(Monitor *mon, const QDict *qdict)
1414
{
1415 1416 1417
    int count = qdict_get_int(qdict, "count");
    int format = qdict_get_int(qdict, "format");
    int size = qdict_get_int(qdict, "size");
A
Avi Kivity 已提交
1418
    hwaddr addr = qdict_get_int(qdict, "addr");
1419

A
aliguori 已提交
1420
    memory_dump(mon, count, format, size, addr, 1);
1421 1422
}

1423
static void do_print(Monitor *mon, const QDict *qdict)
1424
{
1425
    int format = qdict_get_int(qdict, "format");
A
Avi Kivity 已提交
1426
    hwaddr val = qdict_get_int(qdict, "val");
1427

1428 1429
    switch(format) {
    case 'o':
A
Avi Kivity 已提交
1430
        monitor_printf(mon, "%#" HWADDR_PRIo, val);
1431 1432
        break;
    case 'x':
A
Avi Kivity 已提交
1433
        monitor_printf(mon, "%#" HWADDR_PRIx, val);
1434 1435
        break;
    case 'u':
A
Avi Kivity 已提交
1436
        monitor_printf(mon, "%" HWADDR_PRIu, val);
1437 1438 1439
        break;
    default:
    case 'd':
A
Avi Kivity 已提交
1440
        monitor_printf(mon, "%" HWADDR_PRId, val);
1441 1442
        break;
    case 'c':
A
aliguori 已提交
1443
        monitor_printc(mon, val);
1444 1445
        break;
    }
A
aliguori 已提交
1446
    monitor_printf(mon, "\n");
1447 1448
}

1449
static void hmp_sum(Monitor *mon, const QDict *qdict)
B
bellard 已提交
1450 1451 1452
{
    uint32_t addr;
    uint16_t sum;
1453 1454
    uint32_t start = qdict_get_int(qdict, "start");
    uint32_t size = qdict_get_int(qdict, "size");
B
bellard 已提交
1455 1456 1457

    sum = 0;
    for(addr = start; addr < (start + size); addr++) {
1458 1459
        uint8_t val = address_space_ldub(&address_space_memory, addr,
                                         MEMTXATTRS_UNSPECIFIED, NULL);
B
bellard 已提交
1460 1461
        /* BSD sum algorithm ('sum' Unix command) */
        sum = (sum >> 1) | (sum << 15);
1462
        sum += val;
B
bellard 已提交
1463
    }
A
aliguori 已提交
1464
    monitor_printf(mon, "%05d\n", sum);
B
bellard 已提交
1465 1466
}

B
bellard 已提交
1467 1468
static int mouse_button_state;

1469
static void hmp_mouse_move(Monitor *mon, const QDict *qdict)
B
bellard 已提交
1470
{
1471
    int dx, dy, dz, button;
1472 1473 1474
    const char *dx_str = qdict_get_str(qdict, "dx_str");
    const char *dy_str = qdict_get_str(qdict, "dy_str");
    const char *dz_str = qdict_get_try_str(qdict, "dz_str");
1475

B
bellard 已提交
1476 1477
    dx = strtol(dx_str, NULL, 0);
    dy = strtol(dy_str, NULL, 0);
1478 1479 1480 1481
    qemu_input_queue_rel(NULL, INPUT_AXIS_X, dx);
    qemu_input_queue_rel(NULL, INPUT_AXIS_Y, dy);

    if (dz_str) {
B
bellard 已提交
1482
        dz = strtol(dz_str, NULL, 0);
1483
        if (dz != 0) {
G
Gerd Hoffmann 已提交
1484
            button = (dz > 0) ? INPUT_BUTTON_WHEEL_UP : INPUT_BUTTON_WHEEL_DOWN;
1485 1486 1487 1488 1489 1490
            qemu_input_queue_btn(NULL, button, true);
            qemu_input_event_sync();
            qemu_input_queue_btn(NULL, button, false);
        }
    }
    qemu_input_event_sync();
B
bellard 已提交
1491 1492
}

1493
static void hmp_mouse_button(Monitor *mon, const QDict *qdict)
B
bellard 已提交
1494
{
1495
    static uint32_t bmap[INPUT_BUTTON__MAX] = {
1496 1497 1498 1499
        [INPUT_BUTTON_LEFT]       = MOUSE_EVENT_LBUTTON,
        [INPUT_BUTTON_MIDDLE]     = MOUSE_EVENT_MBUTTON,
        [INPUT_BUTTON_RIGHT]      = MOUSE_EVENT_RBUTTON,
    };
1500
    int button_state = qdict_get_int(qdict, "button_state");
1501 1502 1503 1504 1505 1506

    if (mouse_button_state == button_state) {
        return;
    }
    qemu_input_update_buttons(NULL, bmap, mouse_button_state, button_state);
    qemu_input_event_sync();
B
bellard 已提交
1507 1508 1509
    mouse_button_state = button_state;
}

1510
static void hmp_ioport_read(Monitor *mon, const QDict *qdict)
B
bellard 已提交
1511
{
1512 1513 1514
    int size = qdict_get_int(qdict, "size");
    int addr = qdict_get_int(qdict, "addr");
    int has_index = qdict_haskey(qdict, "index");
B
bellard 已提交
1515 1516 1517 1518
    uint32_t val;
    int suffix;

    if (has_index) {
1519
        int index = qdict_get_int(qdict, "index");
1520
        cpu_outb(addr & IOPORTS_MASK, index & 0xff);
B
bellard 已提交
1521 1522 1523 1524 1525 1526 1527
        addr++;
    }
    addr &= 0xffff;

    switch(size) {
    default:
    case 1:
1528
        val = cpu_inb(addr);
B
bellard 已提交
1529 1530 1531
        suffix = 'b';
        break;
    case 2:
1532
        val = cpu_inw(addr);
B
bellard 已提交
1533 1534 1535
        suffix = 'w';
        break;
    case 4:
1536
        val = cpu_inl(addr);
B
bellard 已提交
1537 1538 1539
        suffix = 'l';
        break;
    }
A
aliguori 已提交
1540 1541
    monitor_printf(mon, "port%c[0x%04x] = %#0*x\n",
                   suffix, addr, size * 2, val);
B
bellard 已提交
1542
}
B
bellard 已提交
1543

1544
static void hmp_ioport_write(Monitor *mon, const QDict *qdict)
J
Jan Kiszka 已提交
1545
{
1546 1547 1548 1549
    int size = qdict_get_int(qdict, "size");
    int addr = qdict_get_int(qdict, "addr");
    int val = qdict_get_int(qdict, "val");

J
Jan Kiszka 已提交
1550 1551 1552 1553 1554
    addr &= IOPORTS_MASK;

    switch (size) {
    default:
    case 1:
1555
        cpu_outb(addr, val);
J
Jan Kiszka 已提交
1556 1557
        break;
    case 2:
1558
        cpu_outw(addr, val);
J
Jan Kiszka 已提交
1559 1560
        break;
    case 4:
1561
        cpu_outl(addr, val);
J
Jan Kiszka 已提交
1562 1563 1564 1565
        break;
    }
}

1566
static void hmp_boot_set(Monitor *mon, const QDict *qdict)
1567
{
1568
    Error *local_err = NULL;
1569
    const char *bootdevice = qdict_get_str(qdict, "bootdevice");
1570

1571 1572
    qemu_boot_set(bootdevice, &local_err);
    if (local_err) {
1573
        error_report_err(local_err);
1574
    } else {
1575
        monitor_printf(mon, "boot device list now set to %s\n", bootdevice);
1576 1577 1578
    }
}

1579
static void hmp_info_mtree(Monitor *mon, const QDict *qdict)
B
Blue Swirl 已提交
1580 1581 1582 1583
{
    mtree_info((fprintf_function)monitor_printf, mon);
}

1584
static void hmp_info_numa(Monitor *mon, const QDict *qdict)
1585
{
1586
    int i;
1587
    CPUState *cpu;
1588
    uint64_t *node_mem;
1589

1590 1591
    node_mem = g_new0(uint64_t, nb_numa_nodes);
    query_numa_node_mem(node_mem);
1592 1593 1594
    monitor_printf(mon, "%d nodes\n", nb_numa_nodes);
    for (i = 0; i < nb_numa_nodes; i++) {
        monitor_printf(mon, "node %d cpus:", i);
A
Andreas Färber 已提交
1595
        CPU_FOREACH(cpu) {
1596
            if (cpu->numa_node == i) {
1597
                monitor_printf(mon, " %d", cpu->cpu_index);
1598 1599 1600 1601
            }
        }
        monitor_printf(mon, "\n");
        monitor_printf(mon, "node %d size: %" PRId64 " MB\n", i,
1602
                       node_mem[i] >> 20);
1603
    }
1604
    g_free(node_mem);
1605 1606
}

B
bellard 已提交
1607 1608
#ifdef CONFIG_PROFILER

1609
int64_t tcg_time;
A
Aurelien Jarno 已提交
1610 1611
int64_t dev_time;

1612
static void hmp_info_profile(Monitor *mon, const QDict *qdict)
B
bellard 已提交
1613
{
A
aliguori 已提交
1614
    monitor_printf(mon, "async time  %" PRId64 " (%0.3f)\n",
1615
                   dev_time, dev_time / (double)NANOSECONDS_PER_SECOND);
A
aliguori 已提交
1616
    monitor_printf(mon, "qemu time   %" PRId64 " (%0.3f)\n",
1617
                   tcg_time, tcg_time / (double)NANOSECONDS_PER_SECOND);
1618
    tcg_time = 0;
B
bellard 已提交
1619 1620 1621
    dev_time = 0;
}
#else
1622
static void hmp_info_profile(Monitor *mon, const QDict *qdict)
B
bellard 已提交
1623
{
A
aliguori 已提交
1624
    monitor_printf(mon, "Internal profiler not compiled\n");
B
bellard 已提交
1625 1626 1627
}
#endif

B
bellard 已提交
1628
/* Capture support */
B
Blue Swirl 已提交
1629
static QLIST_HEAD (capture_list_head, CaptureState) capture_head;
B
bellard 已提交
1630

1631
static void hmp_info_capture(Monitor *mon, const QDict *qdict)
B
bellard 已提交
1632 1633 1634 1635 1636
{
    int i;
    CaptureState *s;

    for (s = capture_head.lh_first, i = 0; s; s = s->entries.le_next, ++i) {
A
aliguori 已提交
1637
        monitor_printf(mon, "[%d]: ", i);
B
bellard 已提交
1638 1639 1640 1641
        s->ops.info (s->opaque);
    }
}

1642
static void hmp_stopcapture(Monitor *mon, const QDict *qdict)
B
bellard 已提交
1643 1644
{
    int i;
1645
    int n = qdict_get_int(qdict, "n");
B
bellard 已提交
1646 1647 1648 1649 1650
    CaptureState *s;

    for (s = capture_head.lh_first, i = 0; s; s = s->entries.le_next, ++i) {
        if (i == n) {
            s->ops.destroy (s->opaque);
B
Blue Swirl 已提交
1651
            QLIST_REMOVE (s, entries);
1652
            g_free (s);
B
bellard 已提交
1653 1654 1655 1656 1657
            return;
        }
    }
}

1658
static void hmp_wavcapture(Monitor *mon, const QDict *qdict)
1659 1660 1661 1662 1663 1664 1665 1666
{
    const char *path = qdict_get_str(qdict, "path");
    int has_freq = qdict_haskey(qdict, "freq");
    int freq = qdict_get_try_int(qdict, "freq", -1);
    int has_bits = qdict_haskey(qdict, "bits");
    int bits = qdict_get_try_int(qdict, "bits", -1);
    int has_channels = qdict_haskey(qdict, "nchannels");
    int nchannels = qdict_get_try_int(qdict, "nchannels", -1);
B
bellard 已提交
1667 1668
    CaptureState *s;

1669
    s = g_malloc0 (sizeof (*s));
B
bellard 已提交
1670 1671 1672 1673 1674 1675

    freq = has_freq ? freq : 44100;
    bits = has_bits ? bits : 16;
    nchannels = has_channels ? nchannels : 2;

    if (wav_start_capture (s, path, freq, bits, nchannels)) {
1676
        monitor_printf(mon, "Failed to add wave capture\n");
1677
        g_free (s);
1678
        return;
B
bellard 已提交
1679
    }
B
Blue Swirl 已提交
1680
    QLIST_INSERT_HEAD (&capture_head, s, entries);
B
bellard 已提交
1681 1682
}

J
Jan Kiszka 已提交
1683
static qemu_acl *find_acl(Monitor *mon, const char *name)
1684
{
J
Jan Kiszka 已提交
1685
    qemu_acl *acl = qemu_acl_find(name);
1686 1687

    if (!acl) {
J
Jan Kiszka 已提交
1688
        monitor_printf(mon, "acl: unknown list '%s'\n", name);
1689
    }
J
Jan Kiszka 已提交
1690 1691 1692
    return acl;
}

1693
static void hmp_acl_show(Monitor *mon, const QDict *qdict)
J
Jan Kiszka 已提交
1694
{
1695
    const char *aclname = qdict_get_str(qdict, "aclname");
J
Jan Kiszka 已提交
1696 1697 1698
    qemu_acl *acl = find_acl(mon, aclname);
    qemu_acl_entry *entry;
    int i = 0;
1699

J
Jan Kiszka 已提交
1700
    if (acl) {
1701
        monitor_printf(mon, "policy: %s\n",
1702
                       acl->defaultDeny ? "deny" : "allow");
B
Blue Swirl 已提交
1703
        QTAILQ_FOREACH(entry, &acl->entries, next) {
1704 1705
            i++;
            monitor_printf(mon, "%d: %s %s\n", i,
J
Jan Kiszka 已提交
1706
                           entry->deny ? "deny" : "allow", entry->match);
1707
        }
J
Jan Kiszka 已提交
1708 1709 1710
    }
}

1711
static void hmp_acl_reset(Monitor *mon, const QDict *qdict)
J
Jan Kiszka 已提交
1712
{
1713
    const char *aclname = qdict_get_str(qdict, "aclname");
J
Jan Kiszka 已提交
1714 1715 1716
    qemu_acl *acl = find_acl(mon, aclname);

    if (acl) {
1717 1718
        qemu_acl_reset(acl);
        monitor_printf(mon, "acl: removed all rules\n");
J
Jan Kiszka 已提交
1719 1720 1721
    }
}

1722
static void hmp_acl_policy(Monitor *mon, const QDict *qdict)
J
Jan Kiszka 已提交
1723
{
1724 1725
    const char *aclname = qdict_get_str(qdict, "aclname");
    const char *policy = qdict_get_str(qdict, "policy");
J
Jan Kiszka 已提交
1726
    qemu_acl *acl = find_acl(mon, aclname);
1727

J
Jan Kiszka 已提交
1728 1729
    if (acl) {
        if (strcmp(policy, "allow") == 0) {
1730 1731
            acl->defaultDeny = 0;
            monitor_printf(mon, "acl: policy set to 'allow'\n");
J
Jan Kiszka 已提交
1732
        } else if (strcmp(policy, "deny") == 0) {
1733 1734 1735
            acl->defaultDeny = 1;
            monitor_printf(mon, "acl: policy set to 'deny'\n");
        } else {
J
Jan Kiszka 已提交
1736 1737
            monitor_printf(mon, "acl: unknown policy '%s', "
                           "expected 'deny' or 'allow'\n", policy);
1738
        }
J
Jan Kiszka 已提交
1739 1740
    }
}
1741

1742
static void hmp_acl_add(Monitor *mon, const QDict *qdict)
J
Jan Kiszka 已提交
1743
{
1744 1745 1746 1747 1748
    const char *aclname = qdict_get_str(qdict, "aclname");
    const char *match = qdict_get_str(qdict, "match");
    const char *policy = qdict_get_str(qdict, "policy");
    int has_index = qdict_haskey(qdict, "index");
    int index = qdict_get_try_int(qdict, "index", -1);
J
Jan Kiszka 已提交
1749 1750 1751 1752 1753 1754 1755 1756 1757 1758 1759
    qemu_acl *acl = find_acl(mon, aclname);
    int deny, ret;

    if (acl) {
        if (strcmp(policy, "allow") == 0) {
            deny = 0;
        } else if (strcmp(policy, "deny") == 0) {
            deny = 1;
        } else {
            monitor_printf(mon, "acl: unknown policy '%s', "
                           "expected 'deny' or 'allow'\n", policy);
1760 1761 1762 1763 1764 1765 1766 1767 1768 1769
            return;
        }
        if (has_index)
            ret = qemu_acl_insert(acl, deny, match, index);
        else
            ret = qemu_acl_append(acl, deny, match);
        if (ret < 0)
            monitor_printf(mon, "acl: unable to add acl entry\n");
        else
            monitor_printf(mon, "acl: added rule at position %d\n", ret);
J
Jan Kiszka 已提交
1770 1771
    }
}
1772

1773
static void hmp_acl_remove(Monitor *mon, const QDict *qdict)
J
Jan Kiszka 已提交
1774
{
1775 1776
    const char *aclname = qdict_get_str(qdict, "aclname");
    const char *match = qdict_get_str(qdict, "match");
J
Jan Kiszka 已提交
1777 1778
    qemu_acl *acl = find_acl(mon, aclname);
    int ret;
1779

J
Jan Kiszka 已提交
1780
    if (acl) {
1781 1782 1783 1784 1785
        ret = qemu_acl_remove(acl, match);
        if (ret < 0)
            monitor_printf(mon, "acl: no matching acl entry\n");
        else
            monitor_printf(mon, "acl: removed rule at position %d\n", ret);
1786 1787 1788
    }
}

C
Corey Bryant 已提交
1789
void qmp_getfd(const char *fdname, Error **errp)
1790
{
A
Anthony Liguori 已提交
1791
    mon_fd_t *monfd;
1792 1793
    int fd;

C
Corey Bryant 已提交
1794
    fd = qemu_chr_fe_get_msgfd(cur_mon->chr);
1795
    if (fd == -1) {
1796
        error_setg(errp, QERR_FD_NOT_SUPPLIED);
C
Corey Bryant 已提交
1797
        return;
1798 1799 1800
    }

    if (qemu_isdigit(fdname[0])) {
1801
        close(fd);
1802 1803
        error_setg(errp, QERR_INVALID_PARAMETER_VALUE, "fdname",
                   "a name not starting with a digit");
C
Corey Bryant 已提交
1804
        return;
1805 1806
    }

C
Corey Bryant 已提交
1807
    QLIST_FOREACH(monfd, &cur_mon->fds, next) {
1808 1809 1810 1811 1812 1813
        if (strcmp(monfd->name, fdname) != 0) {
            continue;
        }

        close(monfd->fd);
        monfd->fd = fd;
C
Corey Bryant 已提交
1814
        return;
1815 1816
    }

1817 1818
    monfd = g_malloc0(sizeof(mon_fd_t));
    monfd->name = g_strdup(fdname);
1819 1820
    monfd->fd = fd;

C
Corey Bryant 已提交
1821
    QLIST_INSERT_HEAD(&cur_mon->fds, monfd, next);
1822 1823
}

C
Corey Bryant 已提交
1824
void qmp_closefd(const char *fdname, Error **errp)
1825
{
A
Anthony Liguori 已提交
1826
    mon_fd_t *monfd;
1827

C
Corey Bryant 已提交
1828
    QLIST_FOREACH(monfd, &cur_mon->fds, next) {
1829 1830 1831 1832
        if (strcmp(monfd->name, fdname) != 0) {
            continue;
        }

B
Blue Swirl 已提交
1833
        QLIST_REMOVE(monfd, next);
1834
        close(monfd->fd);
1835 1836
        g_free(monfd->name);
        g_free(monfd);
C
Corey Bryant 已提交
1837
        return;
1838 1839
    }

1840
    error_setg(errp, QERR_FD_NOT_FOUND, fdname);
1841 1842
}

1843
static void hmp_loadvm(Monitor *mon, const QDict *qdict)
J
Juan Quintela 已提交
1844
{
1845
    int saved_vm_running  = runstate_is_running();
1846
    const char *name = qdict_get_str(qdict, "name");
J
Juan Quintela 已提交
1847

1848
    vm_stop(RUN_STATE_RESTORE_VM);
J
Juan Quintela 已提交
1849

1850
    if (load_vmstate(name) == 0 && saved_vm_running) {
J
Juan Quintela 已提交
1851
        vm_start();
1852
    }
J
Juan Quintela 已提交
1853 1854
}

1855
int monitor_get_fd(Monitor *mon, const char *fdname, Error **errp)
1856
{
A
Anthony Liguori 已提交
1857
    mon_fd_t *monfd;
1858

B
Blue Swirl 已提交
1859
    QLIST_FOREACH(monfd, &mon->fds, next) {
1860 1861 1862 1863 1864 1865 1866 1867 1868
        int fd;

        if (strcmp(monfd->name, fdname) != 0) {
            continue;
        }

        fd = monfd->fd;

        /* caller takes ownership of fd */
B
Blue Swirl 已提交
1869
        QLIST_REMOVE(monfd, next);
1870 1871
        g_free(monfd->name);
        g_free(monfd);
1872 1873 1874 1875

        return fd;
    }

1876
    error_setg(errp, "File descriptor named '%s' has not been found", fdname);
1877 1878 1879
    return -1;
}

1880 1881 1882 1883 1884 1885
static void monitor_fdset_cleanup(MonFdset *mon_fdset)
{
    MonFdsetFd *mon_fdset_fd;
    MonFdsetFd *mon_fdset_fd_next;

    QLIST_FOREACH_SAFE(mon_fdset_fd, &mon_fdset->fds, next, mon_fdset_fd_next) {
1886 1887 1888
        if ((mon_fdset_fd->removed ||
                (QLIST_EMPTY(&mon_fdset->dup_fds) && mon_refcount == 0)) &&
                runstate_is_running()) {
1889 1890 1891 1892 1893 1894 1895
            close(mon_fdset_fd->fd);
            g_free(mon_fdset_fd->opaque);
            QLIST_REMOVE(mon_fdset_fd, next);
            g_free(mon_fdset_fd);
        }
    }

1896
    if (QLIST_EMPTY(&mon_fdset->fds) && QLIST_EMPTY(&mon_fdset->dup_fds)) {
1897 1898 1899 1900 1901
        QLIST_REMOVE(mon_fdset, next);
        g_free(mon_fdset);
    }
}

1902 1903 1904 1905 1906 1907 1908 1909 1910 1911
static void monitor_fdsets_cleanup(void)
{
    MonFdset *mon_fdset;
    MonFdset *mon_fdset_next;

    QLIST_FOREACH_SAFE(mon_fdset, &mon_fdsets, next, mon_fdset_next) {
        monitor_fdset_cleanup(mon_fdset);
    }
}

1912 1913 1914 1915 1916 1917 1918 1919 1920
AddfdInfo *qmp_add_fd(bool has_fdset_id, int64_t fdset_id, bool has_opaque,
                      const char *opaque, Error **errp)
{
    int fd;
    Monitor *mon = cur_mon;
    AddfdInfo *fdinfo;

    fd = qemu_chr_fe_get_msgfd(mon->chr);
    if (fd == -1) {
1921
        error_setg(errp, QERR_FD_NOT_SUPPLIED);
1922 1923 1924
        goto error;
    }

1925 1926 1927 1928
    fdinfo = monitor_fdset_add_fd(fd, has_fdset_id, fdset_id,
                                  has_opaque, opaque, errp);
    if (fdinfo) {
        return fdinfo;
1929 1930 1931 1932 1933 1934 1935 1936 1937 1938 1939 1940 1941 1942 1943 1944 1945 1946 1947 1948 1949 1950 1951 1952 1953 1954 1955 1956 1957 1958 1959 1960 1961 1962 1963 1964 1965 1966 1967 1968 1969 1970 1971 1972
    }

error:
    if (fd != -1) {
        close(fd);
    }
    return NULL;
}

void qmp_remove_fd(int64_t fdset_id, bool has_fd, int64_t fd, Error **errp)
{
    MonFdset *mon_fdset;
    MonFdsetFd *mon_fdset_fd;
    char fd_str[60];

    QLIST_FOREACH(mon_fdset, &mon_fdsets, next) {
        if (mon_fdset->id != fdset_id) {
            continue;
        }
        QLIST_FOREACH(mon_fdset_fd, &mon_fdset->fds, next) {
            if (has_fd) {
                if (mon_fdset_fd->fd != fd) {
                    continue;
                }
                mon_fdset_fd->removed = true;
                break;
            } else {
                mon_fdset_fd->removed = true;
            }
        }
        if (has_fd && !mon_fdset_fd) {
            goto error;
        }
        monitor_fdset_cleanup(mon_fdset);
        return;
    }

error:
    if (has_fd) {
        snprintf(fd_str, sizeof(fd_str), "fdset-id:%" PRId64 ", fd:%" PRId64,
                 fdset_id, fd);
    } else {
        snprintf(fd_str, sizeof(fd_str), "fdset-id:%" PRId64, fdset_id);
    }
1973
    error_setg(errp, QERR_FD_NOT_FOUND, fd_str);
1974 1975 1976 1977 1978 1979 1980 1981 1982 1983 1984 1985 1986 1987 1988 1989 1990 1991 1992 1993 1994 1995 1996 1997 1998 1999 2000 2001 2002 2003 2004 2005 2006 2007 2008 2009 2010 2011 2012 2013 2014
}

FdsetInfoList *qmp_query_fdsets(Error **errp)
{
    MonFdset *mon_fdset;
    MonFdsetFd *mon_fdset_fd;
    FdsetInfoList *fdset_list = NULL;

    QLIST_FOREACH(mon_fdset, &mon_fdsets, next) {
        FdsetInfoList *fdset_info = g_malloc0(sizeof(*fdset_info));
        FdsetFdInfoList *fdsetfd_list = NULL;

        fdset_info->value = g_malloc0(sizeof(*fdset_info->value));
        fdset_info->value->fdset_id = mon_fdset->id;

        QLIST_FOREACH(mon_fdset_fd, &mon_fdset->fds, next) {
            FdsetFdInfoList *fdsetfd_info;

            fdsetfd_info = g_malloc0(sizeof(*fdsetfd_info));
            fdsetfd_info->value = g_malloc0(sizeof(*fdsetfd_info->value));
            fdsetfd_info->value->fd = mon_fdset_fd->fd;
            if (mon_fdset_fd->opaque) {
                fdsetfd_info->value->has_opaque = true;
                fdsetfd_info->value->opaque = g_strdup(mon_fdset_fd->opaque);
            } else {
                fdsetfd_info->value->has_opaque = false;
            }

            fdsetfd_info->next = fdsetfd_list;
            fdsetfd_list = fdsetfd_info;
        }

        fdset_info->value->fds = fdsetfd_list;

        fdset_info->next = fdset_list;
        fdset_list = fdset_info;
    }

    return fdset_list;
}

2015 2016 2017 2018 2019 2020 2021 2022 2023 2024 2025 2026 2027 2028 2029 2030 2031 2032 2033 2034 2035 2036 2037 2038 2039 2040
AddfdInfo *monitor_fdset_add_fd(int fd, bool has_fdset_id, int64_t fdset_id,
                                bool has_opaque, const char *opaque,
                                Error **errp)
{
    MonFdset *mon_fdset = NULL;
    MonFdsetFd *mon_fdset_fd;
    AddfdInfo *fdinfo;

    if (has_fdset_id) {
        QLIST_FOREACH(mon_fdset, &mon_fdsets, next) {
            /* Break if match found or match impossible due to ordering by ID */
            if (fdset_id <= mon_fdset->id) {
                if (fdset_id < mon_fdset->id) {
                    mon_fdset = NULL;
                }
                break;
            }
        }
    }

    if (mon_fdset == NULL) {
        int64_t fdset_id_prev = -1;
        MonFdset *mon_fdset_cur = QLIST_FIRST(&mon_fdsets);

        if (has_fdset_id) {
            if (fdset_id < 0) {
2041 2042
                error_setg(errp, QERR_INVALID_PARAMETER_VALUE, "fdset-id",
                           "a non-negative value");
2043 2044 2045 2046 2047 2048 2049 2050 2051 2052 2053 2054 2055 2056 2057 2058 2059 2060 2061 2062 2063 2064 2065 2066 2067 2068 2069 2070 2071 2072 2073 2074 2075 2076 2077 2078 2079 2080 2081 2082 2083 2084 2085 2086 2087 2088 2089 2090 2091 2092 2093 2094 2095
                return NULL;
            }
            /* Use specified fdset ID */
            QLIST_FOREACH(mon_fdset, &mon_fdsets, next) {
                mon_fdset_cur = mon_fdset;
                if (fdset_id < mon_fdset_cur->id) {
                    break;
                }
            }
        } else {
            /* Use first available fdset ID */
            QLIST_FOREACH(mon_fdset, &mon_fdsets, next) {
                mon_fdset_cur = mon_fdset;
                if (fdset_id_prev == mon_fdset_cur->id - 1) {
                    fdset_id_prev = mon_fdset_cur->id;
                    continue;
                }
                break;
            }
        }

        mon_fdset = g_malloc0(sizeof(*mon_fdset));
        if (has_fdset_id) {
            mon_fdset->id = fdset_id;
        } else {
            mon_fdset->id = fdset_id_prev + 1;
        }

        /* The fdset list is ordered by fdset ID */
        if (!mon_fdset_cur) {
            QLIST_INSERT_HEAD(&mon_fdsets, mon_fdset, next);
        } else if (mon_fdset->id < mon_fdset_cur->id) {
            QLIST_INSERT_BEFORE(mon_fdset_cur, mon_fdset, next);
        } else {
            QLIST_INSERT_AFTER(mon_fdset_cur, mon_fdset, next);
        }
    }

    mon_fdset_fd = g_malloc0(sizeof(*mon_fdset_fd));
    mon_fdset_fd->fd = fd;
    mon_fdset_fd->removed = false;
    if (has_opaque) {
        mon_fdset_fd->opaque = g_strdup(opaque);
    }
    QLIST_INSERT_HEAD(&mon_fdset->fds, mon_fdset_fd, next);

    fdinfo = g_malloc0(sizeof(*fdinfo));
    fdinfo->fdset_id = mon_fdset->id;
    fdinfo->fd = mon_fdset_fd->fd;

    return fdinfo;
}

2096 2097
int monitor_fdset_get_fd(int64_t fdset_id, int flags)
{
2098
#ifndef _WIN32
2099 2100 2101 2102 2103 2104 2105 2106 2107 2108 2109 2110 2111 2112 2113 2114 2115 2116 2117 2118 2119 2120 2121 2122 2123 2124 2125 2126 2127 2128 2129 2130 2131 2132 2133 2134 2135 2136 2137 2138 2139 2140 2141 2142 2143 2144 2145 2146 2147 2148 2149 2150 2151 2152 2153 2154 2155 2156 2157 2158 2159 2160
    MonFdset *mon_fdset;
    MonFdsetFd *mon_fdset_fd;
    int mon_fd_flags;

    QLIST_FOREACH(mon_fdset, &mon_fdsets, next) {
        if (mon_fdset->id != fdset_id) {
            continue;
        }
        QLIST_FOREACH(mon_fdset_fd, &mon_fdset->fds, next) {
            mon_fd_flags = fcntl(mon_fdset_fd->fd, F_GETFL);
            if (mon_fd_flags == -1) {
                return -1;
            }

            if ((flags & O_ACCMODE) == (mon_fd_flags & O_ACCMODE)) {
                return mon_fdset_fd->fd;
            }
        }
        errno = EACCES;
        return -1;
    }
#endif

    errno = ENOENT;
    return -1;
}

int monitor_fdset_dup_fd_add(int64_t fdset_id, int dup_fd)
{
    MonFdset *mon_fdset;
    MonFdsetFd *mon_fdset_fd_dup;

    QLIST_FOREACH(mon_fdset, &mon_fdsets, next) {
        if (mon_fdset->id != fdset_id) {
            continue;
        }
        QLIST_FOREACH(mon_fdset_fd_dup, &mon_fdset->dup_fds, next) {
            if (mon_fdset_fd_dup->fd == dup_fd) {
                return -1;
            }
        }
        mon_fdset_fd_dup = g_malloc0(sizeof(*mon_fdset_fd_dup));
        mon_fdset_fd_dup->fd = dup_fd;
        QLIST_INSERT_HEAD(&mon_fdset->dup_fds, mon_fdset_fd_dup, next);
        return 0;
    }
    return -1;
}

static int monitor_fdset_dup_fd_find_remove(int dup_fd, bool remove)
{
    MonFdset *mon_fdset;
    MonFdsetFd *mon_fdset_fd_dup;

    QLIST_FOREACH(mon_fdset, &mon_fdsets, next) {
        QLIST_FOREACH(mon_fdset_fd_dup, &mon_fdset->dup_fds, next) {
            if (mon_fdset_fd_dup->fd == dup_fd) {
                if (remove) {
                    QLIST_REMOVE(mon_fdset_fd_dup, next);
                    if (QLIST_EMPTY(&mon_fdset->dup_fds)) {
                        monitor_fdset_cleanup(mon_fdset);
                    }
M
Michael S. Tsirkin 已提交
2161 2162 2163
                    return -1;
                } else {
                    return mon_fdset->id;
2164 2165 2166 2167 2168 2169 2170 2171 2172 2173 2174 2175
                }
            }
        }
    }
    return -1;
}

int monitor_fdset_dup_fd_find(int dup_fd)
{
    return monitor_fdset_dup_fd_find_remove(dup_fd, false);
}

M
Michael S. Tsirkin 已提交
2176
void monitor_fdset_dup_fd_remove(int dup_fd)
2177
{
M
Michael S. Tsirkin 已提交
2178
    monitor_fdset_dup_fd_find_remove(dup_fd, true);
2179 2180
}

2181
int monitor_fd_param(Monitor *mon, const char *fdname, Error **errp)
2182 2183 2184
{
    int fd;
    Error *local_err = NULL;
2185

2186
    if (!qemu_isdigit(fdname[0]) && mon) {
2187
        fd = monitor_get_fd(mon, fdname, &local_err);
2188 2189
    } else {
        fd = qemu_parse_fd(fdname);
2190
        if (fd == -1) {
2191 2192
            error_setg(&local_err, "Invalid file descriptor number '%s'",
                       fdname);
2193
        }
2194 2195 2196 2197
    }
    if (local_err) {
        error_propagate(errp, local_err);
        assert(fd == -1);
2198
    } else {
2199
        assert(fd != -1);
2200 2201 2202 2203 2204
    }

    return fd;
}

2205
/* Please update hmp-commands.hx when adding or changing commands */
2206
static mon_cmd_t info_cmds[] = {
2207 2208
#include "hmp-commands-info.h"
    { NULL, NULL, },
B
bellard 已提交
2209 2210
};

W
Wenchao Xia 已提交
2211 2212 2213 2214 2215 2216
/* mon_cmds and info_cmds would be sorted at runtime */
static mon_cmd_t mon_cmds[] = {
#include "hmp-commands.h"
    { NULL, NULL, },
};

2217
static const mon_cmd_t qmp_cmds[] = {
2218
#include "qmp-commands-old.h"
2219 2220 2221
    { /* NULL */ },
};

2222 2223 2224
/*******************************************************************/

static const char *pch;
2225
static sigjmp_buf expr_env;
2226 2227


2228 2229
static void GCC_FMT_ATTR(2, 3) QEMU_NORETURN
expr_error(Monitor *mon, const char *fmt, ...)
B
bellard 已提交
2230
{
2231 2232 2233 2234 2235
    va_list ap;
    va_start(ap, fmt);
    monitor_vprintf(mon, fmt, ap);
    monitor_printf(mon, "\n");
    va_end(ap);
2236
    siglongjmp(expr_env, 1);
2237 2238
}

2239
/* return 0 if OK, -1 if not found */
B
bellard 已提交
2240
static int get_monitor_def(target_long *pval, const char *name)
2241
{
2242
    const MonitorDef *md = target_monitor_defs();
B
bellard 已提交
2243
    void *ptr;
2244 2245
    uint64_t tmp = 0;
    int ret;
B
bellard 已提交
2246

2247 2248 2249 2250 2251
    if (md == NULL) {
        return -1;
    }

    for(; md->name != NULL; md++) {
2252 2253
        if (compare_cmd(name, md->name)) {
            if (md->get_value) {
2254
                *pval = md->get_value(md, md->offset);
2255
            } else {
2256
                CPUArchState *env = mon_get_cpu_env();
B
bellard 已提交
2257
                ptr = (uint8_t *)env + md->offset;
B
bellard 已提交
2258 2259 2260 2261 2262 2263 2264 2265 2266 2267 2268
                switch(md->type) {
                case MD_I32:
                    *pval = *(int32_t *)ptr;
                    break;
                case MD_TLONG:
                    *pval = *(target_long *)ptr;
                    break;
                default:
                    *pval = 0;
                    break;
                }
2269 2270 2271 2272
            }
            return 0;
        }
    }
2273 2274 2275 2276 2277 2278 2279

    ret = target_get_monitor_def(mon_get_cpu(), name, &tmp);
    if (!ret) {
        *pval = (target_long) tmp;
    }

    return ret;
2280 2281 2282 2283
}

static void next(void)
{
2284
    if (*pch != '\0') {
2285
        pch++;
2286
        while (qemu_isspace(*pch))
2287 2288 2289 2290
            pch++;
    }
}

A
aliguori 已提交
2291
static int64_t expr_sum(Monitor *mon);
2292

A
aliguori 已提交
2293
static int64_t expr_unary(Monitor *mon)
2294
{
B
blueswir1 已提交
2295
    int64_t n;
2296
    char *p;
B
bellard 已提交
2297
    int ret;
2298 2299 2300 2301

    switch(*pch) {
    case '+':
        next();
A
aliguori 已提交
2302
        n = expr_unary(mon);
2303 2304 2305
        break;
    case '-':
        next();
A
aliguori 已提交
2306
        n = -expr_unary(mon);
2307 2308 2309
        break;
    case '~':
        next();
A
aliguori 已提交
2310
        n = ~expr_unary(mon);
2311 2312 2313
        break;
    case '(':
        next();
A
aliguori 已提交
2314
        n = expr_sum(mon);
2315
        if (*pch != ')') {
A
aliguori 已提交
2316
            expr_error(mon, "')' expected");
2317 2318 2319
        }
        next();
        break;
B
bellard 已提交
2320 2321 2322
    case '\'':
        pch++;
        if (*pch == '\0')
A
aliguori 已提交
2323
            expr_error(mon, "character constant expected");
B
bellard 已提交
2324 2325 2326
        n = *pch;
        pch++;
        if (*pch != '\'')
A
aliguori 已提交
2327
            expr_error(mon, "missing terminating \' character");
B
bellard 已提交
2328 2329
        next();
        break;
2330 2331 2332
    case '$':
        {
            char buf[128], *q;
2333
            target_long reg=0;
2334

2335 2336 2337 2338 2339
            pch++;
            q = buf;
            while ((*pch >= 'a' && *pch <= 'z') ||
                   (*pch >= 'A' && *pch <= 'Z') ||
                   (*pch >= '0' && *pch <= '9') ||
B
bellard 已提交
2340
                   *pch == '_' || *pch == '.') {
2341 2342 2343 2344
                if ((q - buf) < sizeof(buf) - 1)
                    *q++ = *pch;
                pch++;
            }
2345
            while (qemu_isspace(*pch))
2346 2347
                pch++;
            *q = 0;
2348
            ret = get_monitor_def(&reg, buf);
2349
            if (ret < 0)
A
aliguori 已提交
2350
                expr_error(mon, "unknown register");
2351
            n = reg;
2352 2353 2354
        }
        break;
    case '\0':
A
aliguori 已提交
2355
        expr_error(mon, "unexpected end of expression");
2356 2357 2358
        n = 0;
        break;
    default:
2359
        errno = 0;
B
bellard 已提交
2360
        n = strtoull(pch, &p, 0);
2361 2362 2363
        if (errno == ERANGE) {
            expr_error(mon, "number too large");
        }
2364
        if (pch == p) {
2365
            expr_error(mon, "invalid char '%c' in expression", *p);
2366 2367
        }
        pch = p;
2368
        while (qemu_isspace(*pch))
2369 2370 2371 2372 2373 2374 2375
            pch++;
        break;
    }
    return n;
}


A
aliguori 已提交
2376
static int64_t expr_prod(Monitor *mon)
2377
{
B
blueswir1 已提交
2378
    int64_t val, val2;
B
bellard 已提交
2379
    int op;
2380

A
aliguori 已提交
2381
    val = expr_unary(mon);
2382 2383 2384 2385 2386
    for(;;) {
        op = *pch;
        if (op != '*' && op != '/' && op != '%')
            break;
        next();
A
aliguori 已提交
2387
        val2 = expr_unary(mon);
2388 2389 2390 2391 2392 2393 2394
        switch(op) {
        default:
        case '*':
            val *= val2;
            break;
        case '/':
        case '%':
2395
            if (val2 == 0)
A
aliguori 已提交
2396
                expr_error(mon, "division by zero");
2397 2398 2399 2400 2401 2402 2403 2404 2405 2406
            if (op == '/')
                val /= val2;
            else
                val %= val2;
            break;
        }
    }
    return val;
}

A
aliguori 已提交
2407
static int64_t expr_logic(Monitor *mon)
2408
{
B
blueswir1 已提交
2409
    int64_t val, val2;
B
bellard 已提交
2410
    int op;
2411

A
aliguori 已提交
2412
    val = expr_prod(mon);
2413 2414 2415 2416 2417
    for(;;) {
        op = *pch;
        if (op != '&' && op != '|' && op != '^')
            break;
        next();
A
aliguori 已提交
2418
        val2 = expr_prod(mon);
2419 2420 2421 2422 2423 2424 2425 2426 2427 2428 2429 2430 2431 2432 2433 2434
        switch(op) {
        default:
        case '&':
            val &= val2;
            break;
        case '|':
            val |= val2;
            break;
        case '^':
            val ^= val2;
            break;
        }
    }
    return val;
}

A
aliguori 已提交
2435
static int64_t expr_sum(Monitor *mon)
2436
{
B
blueswir1 已提交
2437
    int64_t val, val2;
B
bellard 已提交
2438
    int op;
2439

A
aliguori 已提交
2440
    val = expr_logic(mon);
2441 2442 2443 2444 2445
    for(;;) {
        op = *pch;
        if (op != '+' && op != '-')
            break;
        next();
A
aliguori 已提交
2446
        val2 = expr_logic(mon);
2447 2448 2449 2450 2451 2452 2453 2454
        if (op == '+')
            val += val2;
        else
            val -= val2;
    }
    return val;
}

A
aliguori 已提交
2455
static int get_expr(Monitor *mon, int64_t *pval, const char **pp)
2456 2457
{
    pch = *pp;
2458
    if (sigsetjmp(expr_env, 0)) {
2459 2460 2461
        *pp = pch;
        return -1;
    }
2462
    while (qemu_isspace(*pch))
2463
        pch++;
A
aliguori 已提交
2464
    *pval = expr_sum(mon);
2465 2466 2467 2468
    *pp = pch;
    return 0;
}

2469 2470 2471 2472 2473 2474 2475 2476 2477 2478 2479 2480 2481 2482 2483 2484 2485 2486 2487 2488 2489
static int get_double(Monitor *mon, double *pval, const char **pp)
{
    const char *p = *pp;
    char *tailp;
    double d;

    d = strtod(p, &tailp);
    if (tailp == p) {
        monitor_printf(mon, "Number expected\n");
        return -1;
    }
    if (d != d || d - d != 0) {
        /* NaN or infinity */
        monitor_printf(mon, "Bad number\n");
        return -1;
    }
    *pval = d;
    *pp = tailp;
    return 0;
}

2490 2491 2492 2493 2494 2495 2496 2497 2498 2499 2500 2501 2502 2503 2504 2505 2506 2507 2508 2509 2510 2511 2512 2513 2514 2515
/*
 * Store the command-name in cmdname, and return a pointer to
 * the remaining of the command string.
 */
static const char *get_command_name(const char *cmdline,
                                    char *cmdname, size_t nlen)
{
    size_t len;
    const char *p, *pstart;

    p = cmdline;
    while (qemu_isspace(*p))
        p++;
    if (*p == '\0')
        return NULL;
    pstart = p;
    while (*p != '\0' && *p != '/' && !qemu_isspace(*p))
        p++;
    len = p - pstart;
    if (len > nlen - 1)
        len = nlen - 1;
    memcpy(cmdname, pstart, len);
    cmdname[len] = '\0';
    return p;
}

2516 2517 2518 2519 2520 2521 2522 2523 2524 2525 2526 2527 2528 2529 2530 2531 2532 2533 2534
/**
 * Read key of 'type' into 'key' and return the current
 * 'type' pointer.
 */
static char *key_get_info(const char *type, char **key)
{
    size_t len;
    char *p, *str;

    if (*type == ',')
        type++;

    p = strchr(type, ':');
    if (!p) {
        *key = NULL;
        return NULL;
    }
    len = p - type;

2535
    str = g_malloc(len + 1);
2536 2537 2538 2539 2540 2541 2542
    memcpy(str, type, len);
    str[len] = '\0';

    *key = str;
    return ++p;
}

2543 2544 2545
static int default_fmt_format = 'x';
static int default_fmt_size = 4;

2546 2547 2548 2549 2550 2551 2552 2553 2554 2555 2556 2557
static int is_valid_option(const char *c, const char *typestr)
{
    char option[3];
  
    option[0] = '-';
    option[1] = *c;
    option[2] = '\0';
  
    typestr = strstr(typestr, option);
    return (typestr != NULL);
}

2558 2559
static const mon_cmd_t *search_dispatch_table(const mon_cmd_t *disp_table,
                                              const char *cmdname)
2560 2561 2562
{
    const mon_cmd_t *cmd;

2563
    for (cmd = disp_table; cmd->name != NULL; cmd++) {
2564 2565 2566 2567 2568 2569 2570 2571
        if (compare_cmd(cmdname, cmd->name)) {
            return cmd;
        }
    }

    return NULL;
}

L
Luiz Capitulino 已提交
2572 2573
static const mon_cmd_t *qmp_find_cmd(const char *cmdname)
{
2574
    return search_dispatch_table(qmp_cmds, cmdname);
L
Luiz Capitulino 已提交
2575 2576
}

2577
/*
2578 2579 2580 2581 2582 2583 2584 2585
 * Parse command name from @cmdp according to command table @table.
 * If blank, return NULL.
 * Else, if no valid command can be found, report to @mon, and return
 * NULL.
 * Else, change @cmdp to point right behind the name, and return its
 * command table entry.
 * Do not assume the return value points into @table!  It doesn't when
 * the command is found in a sub-command table.
2586
 */
A
Anthony Liguori 已提交
2587
static const mon_cmd_t *monitor_parse_command(Monitor *mon,
2588 2589
                                              const char **cmdp,
                                              mon_cmd_t *table)
2590
{
2591
    const char *p;
A
Anthony Liguori 已提交
2592
    const mon_cmd_t *cmd;
2593
    char cmdname[256];
B
bellard 已提交
2594

2595
    /* extract the command name */
2596
    p = get_command_name(*cmdp, cmdname, sizeof(cmdname));
2597
    if (!p)
2598
        return NULL;
2599

2600
    cmd = search_dispatch_table(table, cmdname);
2601
    if (!cmd) {
2602
        monitor_printf(mon, "unknown command: '%.*s'\n",
2603
                       (int)(p - *cmdp), *cmdp);
2604
        return NULL;
2605 2606
    }

2607 2608 2609 2610
    /* filter out following useless space */
    while (qemu_isspace(*p)) {
        p++;
    }
2611 2612

    *cmdp = p;
2613
    /* search sub command */
2614 2615
    if (cmd->sub_table != NULL && *p != '\0') {
        return monitor_parse_command(mon, cmdp, cmd->sub_table);
2616 2617
    }

2618 2619 2620 2621 2622 2623 2624 2625 2626 2627 2628 2629 2630 2631 2632 2633 2634 2635 2636 2637 2638
    return cmd;
}

/*
 * Parse arguments for @cmd.
 * If it can't be parsed, report to @mon, and return NULL.
 * Else, insert command arguments into a QDict, and return it.
 * Note: On success, caller has to free the QDict structure.
 */

static QDict *monitor_parse_arguments(Monitor *mon,
                                      const char **endp,
                                      const mon_cmd_t *cmd)
{
    const char *typestr;
    char *key;
    int c;
    const char *p = *endp;
    char buf[1024];
    QDict *qdict = qdict_new();

2639 2640
    /* parse the parameters */
    typestr = cmd->args_type;
B
bellard 已提交
2641
    for(;;) {
2642 2643
        typestr = key_get_info(typestr, &key);
        if (!typestr)
B
bellard 已提交
2644
            break;
2645
        c = *typestr;
2646 2647 2648
        typestr++;
        switch(c) {
        case 'F':
B
bellard 已提交
2649
        case 'B':
2650 2651 2652
        case 's':
            {
                int ret;
2653

2654
                while (qemu_isspace(*p))
2655 2656 2657 2658 2659
                    p++;
                if (*typestr == '?') {
                    typestr++;
                    if (*p == '\0') {
                        /* no optional string: NULL argument */
2660
                        break;
2661 2662 2663 2664
                    }
                }
                ret = get_str(buf, sizeof(buf), &p);
                if (ret < 0) {
B
bellard 已提交
2665 2666
                    switch(c) {
                    case 'F':
A
aliguori 已提交
2667
                        monitor_printf(mon, "%s: filename expected\n",
2668
                                       cmd->name);
B
bellard 已提交
2669 2670
                        break;
                    case 'B':
A
aliguori 已提交
2671
                        monitor_printf(mon, "%s: block device name expected\n",
2672
                                       cmd->name);
B
bellard 已提交
2673 2674
                        break;
                    default:
2675
                        monitor_printf(mon, "%s: string expected\n", cmd->name);
B
bellard 已提交
2676 2677
                        break;
                    }
2678 2679
                    goto fail;
                }
2680
                qdict_put(qdict, key, qstring_from_str(buf));
2681
            }
B
bellard 已提交
2682
            break;
2683 2684 2685 2686 2687 2688 2689 2690 2691 2692 2693 2694 2695 2696 2697 2698 2699
        case 'O':
            {
                QemuOptsList *opts_list;
                QemuOpts *opts;

                opts_list = qemu_find_opts(key);
                if (!opts_list || opts_list->desc->name) {
                    goto bad_type;
                }
                while (qemu_isspace(*p)) {
                    p++;
                }
                if (!*p)
                    break;
                if (get_str(buf, sizeof(buf), &p) < 0) {
                    goto fail;
                }
2700
                opts = qemu_opts_parse_noisily(opts_list, buf, true);
2701 2702 2703 2704 2705 2706 2707
                if (!opts) {
                    goto fail;
                }
                qemu_opts_to_qdict(opts, qdict);
                qemu_opts_del(opts);
            }
            break;
2708 2709 2710
        case '/':
            {
                int count, format, size;
2711

2712
                while (qemu_isspace(*p))
2713 2714 2715 2716 2717
                    p++;
                if (*p == '/') {
                    /* format found */
                    p++;
                    count = 1;
2718
                    if (qemu_isdigit(*p)) {
2719
                        count = 0;
2720
                        while (qemu_isdigit(*p)) {
2721 2722 2723 2724 2725 2726 2727 2728 2729 2730 2731 2732 2733 2734 2735 2736 2737 2738 2739 2740 2741 2742 2743 2744 2745 2746 2747 2748 2749 2750 2751 2752 2753 2754 2755 2756 2757 2758
                            count = count * 10 + (*p - '0');
                            p++;
                        }
                    }
                    size = -1;
                    format = -1;
                    for(;;) {
                        switch(*p) {
                        case 'o':
                        case 'd':
                        case 'u':
                        case 'x':
                        case 'i':
                        case 'c':
                            format = *p++;
                            break;
                        case 'b':
                            size = 1;
                            p++;
                            break;
                        case 'h':
                            size = 2;
                            p++;
                            break;
                        case 'w':
                            size = 4;
                            p++;
                            break;
                        case 'g':
                        case 'L':
                            size = 8;
                            p++;
                            break;
                        default:
                            goto next;
                        }
                    }
                next:
2759
                    if (*p != '\0' && !qemu_isspace(*p)) {
A
aliguori 已提交
2760 2761
                        monitor_printf(mon, "invalid char in format: '%c'\n",
                                       *p);
2762 2763 2764 2765
                        goto fail;
                    }
                    if (format < 0)
                        format = default_fmt_format;
2766 2767 2768 2769
                    if (format != 'i') {
                        /* for 'i', not specifying a size gives -1 as size */
                        if (size < 0)
                            size = default_fmt_size;
A
aurel32 已提交
2770
                        default_fmt_size = size;
2771
                    }
2772 2773 2774 2775
                    default_fmt_format = format;
                } else {
                    count = 1;
                    format = default_fmt_format;
2776 2777 2778 2779 2780
                    if (format != 'i') {
                        size = default_fmt_size;
                    } else {
                        size = -1;
                    }
2781
                }
2782 2783 2784
                qdict_put(qdict, "count", qint_from_int(count));
                qdict_put(qdict, "format", qint_from_int(format));
                qdict_put(qdict, "size", qint_from_int(size));
2785
            }
B
bellard 已提交
2786
            break;
2787
        case 'i':
B
bellard 已提交
2788
        case 'l':
2789
        case 'M':
2790
            {
B
blueswir1 已提交
2791
                int64_t val;
2792

2793
                while (qemu_isspace(*p))
2794
                    p++;
B
bellard 已提交
2795 2796
                if (*typestr == '?' || *typestr == '.') {
                    if (*typestr == '?') {
2797 2798 2799 2800
                        if (*p == '\0') {
                            typestr++;
                            break;
                        }
B
bellard 已提交
2801 2802 2803
                    } else {
                        if (*p == '.') {
                            p++;
2804
                            while (qemu_isspace(*p))
B
bellard 已提交
2805 2806
                                p++;
                        } else {
2807 2808
                            typestr++;
                            break;
B
bellard 已提交
2809 2810
                        }
                    }
B
bellard 已提交
2811
                    typestr++;
2812
                }
A
aliguori 已提交
2813
                if (get_expr(mon, &val, &p))
2814
                    goto fail;
2815 2816
                /* Check if 'i' is greater than 32-bit */
                if ((c == 'i') && ((val >> 32) & 0xffffffff)) {
2817
                    monitor_printf(mon, "\'%s\' has failed: ", cmd->name);
2818 2819
                    monitor_printf(mon, "integer is for 32-bit values\n");
                    goto fail;
2820
                } else if (c == 'M') {
2821 2822 2823 2824
                    if (val < 0) {
                        monitor_printf(mon, "enter a positive value\n");
                        goto fail;
                    }
2825
                    val <<= 20;
2826
                }
2827
                qdict_put(qdict, key, qint_from_int(val));
2828 2829
            }
            break;
2830 2831
        case 'o':
            {
2832
                int64_t val;
2833 2834 2835 2836 2837 2838 2839 2840 2841 2842 2843
                char *end;

                while (qemu_isspace(*p)) {
                    p++;
                }
                if (*typestr == '?') {
                    typestr++;
                    if (*p == '\0') {
                        break;
                    }
                }
2844
                val = qemu_strtosz(p, &end);
2845 2846 2847 2848 2849 2850 2851 2852
                if (val < 0) {
                    monitor_printf(mon, "invalid size\n");
                    goto fail;
                }
                qdict_put(qdict, key, qint_from_int(val));
                p = end;
            }
            break;
2853
        case 'T':
2854 2855 2856 2857 2858 2859 2860 2861 2862 2863 2864 2865 2866 2867
            {
                double val;

                while (qemu_isspace(*p))
                    p++;
                if (*typestr == '?') {
                    typestr++;
                    if (*p == '\0') {
                        break;
                    }
                }
                if (get_double(mon, &val, &p) < 0) {
                    goto fail;
                }
2868
                if (p[0] && p[1] == 's') {
2869 2870 2871 2872 2873 2874 2875 2876 2877
                    switch (*p) {
                    case 'm':
                        val /= 1e3; p += 2; break;
                    case 'u':
                        val /= 1e6; p += 2; break;
                    case 'n':
                        val /= 1e9; p += 2; break;
                    }
                }
2878 2879 2880 2881 2882 2883 2884
                if (*p && !qemu_isspace(*p)) {
                    monitor_printf(mon, "Unknown unit suffix\n");
                    goto fail;
                }
                qdict_put(qdict, key, qfloat_from_double(val));
            }
            break;
2885 2886 2887
        case 'b':
            {
                const char *beg;
E
Eric Blake 已提交
2888
                bool val;
2889 2890 2891 2892 2893 2894 2895 2896 2897

                while (qemu_isspace(*p)) {
                    p++;
                }
                beg = p;
                while (qemu_isgraph(*p)) {
                    p++;
                }
                if (p - beg == 2 && !memcmp(beg, "on", p - beg)) {
E
Eric Blake 已提交
2898
                    val = true;
2899
                } else if (p - beg == 3 && !memcmp(beg, "off", p - beg)) {
E
Eric Blake 已提交
2900
                    val = false;
2901 2902 2903 2904
                } else {
                    monitor_printf(mon, "Expected 'on' or 'off'\n");
                    goto fail;
                }
E
Eric Blake 已提交
2905
                qdict_put(qdict, key, qbool_from_bool(val));
2906 2907
            }
            break;
2908 2909
        case '-':
            {
2910
                const char *tmp = p;
2911
                int skip_key = 0;
2912
                /* option */
2913

2914 2915 2916
                c = *typestr++;
                if (c == '\0')
                    goto bad_type;
2917
                while (qemu_isspace(*p))
2918 2919 2920
                    p++;
                if (*p == '-') {
                    p++;
2921 2922 2923 2924
                    if(c != *p) {
                        if(!is_valid_option(p, typestr)) {
                  
                            monitor_printf(mon, "%s: unsupported option -%c\n",
2925
                                           cmd->name, *p);
2926 2927 2928 2929 2930 2931 2932 2933
                            goto fail;
                        } else {
                            skip_key = 1;
                        }
                    }
                    if(skip_key) {
                        p = tmp;
                    } else {
2934
                        /* has option */
2935
                        p++;
E
Eric Blake 已提交
2936
                        qdict_put(qdict, key, qbool_from_bool(true));
2937 2938 2939 2940
                    }
                }
            }
            break;
2941 2942 2943 2944 2945 2946 2947 2948 2949 2950 2951 2952 2953 2954 2955 2956 2957 2958
        case 'S':
            {
                /* package all remaining string */
                int len;

                while (qemu_isspace(*p)) {
                    p++;
                }
                if (*typestr == '?') {
                    typestr++;
                    if (*p == '\0') {
                        /* no remaining string: NULL argument */
                        break;
                    }
                }
                len = strlen(p);
                if (len <= 0) {
                    monitor_printf(mon, "%s: string expected\n",
2959
                                   cmd->name);
2960
                    goto fail;
2961 2962 2963 2964 2965
                }
                qdict_put(qdict, key, qstring_from_str(p));
                p += len;
            }
            break;
2966 2967
        default:
        bad_type:
2968
            monitor_printf(mon, "%s: unknown type '%c'\n", cmd->name, c);
2969 2970
            goto fail;
        }
2971
        g_free(key);
2972
        key = NULL;
B
bellard 已提交
2973
    }
2974
    /* check that all arguments were parsed */
2975
    while (qemu_isspace(*p))
2976 2977
        p++;
    if (*p != '\0') {
A
aliguori 已提交
2978
        monitor_printf(mon, "%s: extraneous characters at the end of line\n",
2979
                       cmd->name);
2980
        goto fail;
B
bellard 已提交
2981
    }
2982

2983
    return qdict;
G
Gerd Hoffmann 已提交
2984

2985
fail:
2986
    QDECREF(qdict);
2987
    g_free(key);
2988 2989 2990
    return NULL;
}

2991
static void handle_hmp_command(Monitor *mon, const char *cmdline)
2992 2993
{
    QDict *qdict;
A
Anthony Liguori 已提交
2994
    const mon_cmd_t *cmd;
2995

2996 2997 2998 2999
    cmd = monitor_parse_command(mon, &cmdline, mon->cmd_table);
    if (!cmd) {
        return;
    }
3000

3001 3002
    qdict = monitor_parse_arguments(mon, &cmdline, cmd);
    if (!qdict) {
3003 3004
        monitor_printf(mon, "Try \"help %s\" for more information\n",
                       cmd->name);
3005
        return;
3006 3007
    }

3008
    cmd->mhandler.cmd(mon, qdict);
3009
    QDECREF(qdict);
B
bellard 已提交
3010 3011
}

3012
static void cmd_completion(Monitor *mon, const char *name, const char *list)
B
bellard 已提交
3013 3014 3015 3016 3017 3018 3019 3020 3021 3022 3023 3024 3025 3026 3027 3028 3029
{
    const char *p, *pstart;
    char cmd[128];
    int len;

    p = list;
    for(;;) {
        pstart = p;
        p = strchr(p, '|');
        if (!p)
            p = pstart + strlen(pstart);
        len = p - pstart;
        if (len > sizeof(cmd) - 2)
            len = sizeof(cmd) - 2;
        memcpy(cmd, pstart, len);
        cmd[len] = '\0';
        if (name[0] == '\0' || !strncmp(name, cmd, strlen(name))) {
3030
            readline_add_completion(mon->rs, cmd);
B
bellard 已提交
3031 3032 3033 3034 3035 3036 3037
        }
        if (*p == '\0')
            break;
        p++;
    }
}

3038
static void file_completion(Monitor *mon, const char *input)
B
bellard 已提交
3039 3040 3041 3042 3043 3044 3045 3046
{
    DIR *ffs;
    struct dirent *d;
    char path[1024];
    char file[1024], file_prefix[1024];
    int input_path_len;
    const char *p;

3047
    p = strrchr(input, '/');
B
bellard 已提交
3048 3049 3050
    if (!p) {
        input_path_len = 0;
        pstrcpy(file_prefix, sizeof(file_prefix), input);
B
blueswir1 已提交
3051
        pstrcpy(path, sizeof(path), ".");
B
bellard 已提交
3052 3053 3054 3055 3056 3057 3058 3059
    } else {
        input_path_len = p - input + 1;
        memcpy(path, input, input_path_len);
        if (input_path_len > sizeof(path) - 1)
            input_path_len = sizeof(path) - 1;
        path[input_path_len] = '\0';
        pstrcpy(file_prefix, sizeof(file_prefix), p + 1);
    }
B
Bandan Das 已提交
3060

B
bellard 已提交
3061 3062 3063 3064 3065 3066 3067 3068
    ffs = opendir(path);
    if (!ffs)
        return;
    for(;;) {
        struct stat sb;
        d = readdir(ffs);
        if (!d)
            break;
3069 3070 3071 3072 3073

        if (strcmp(d->d_name, ".") == 0 || strcmp(d->d_name, "..") == 0) {
            continue;
        }

B
bellard 已提交
3074 3075
        if (strstart(d->d_name, file_prefix, NULL)) {
            memcpy(file, input, input_path_len);
B
blueswir1 已提交
3076 3077 3078
            if (input_path_len < sizeof(file))
                pstrcpy(file + input_path_len, sizeof(file) - input_path_len,
                        d->d_name);
B
bellard 已提交
3079 3080 3081
            /* stat the file to find out if it's a directory.
             * In that case add a slash to speed up typing long paths
             */
3082
            if (stat(file, &sb) == 0 && S_ISDIR(sb.st_mode)) {
B
blueswir1 已提交
3083
                pstrcat(file, sizeof(file), "/");
3084
            }
3085
            readline_add_completion(mon->rs, file);
B
bellard 已提交
3086 3087 3088 3089 3090
        }
    }
    closedir(ffs);
}

3091 3092 3093 3094 3095 3096
static const char *next_arg_type(const char *typestr)
{
    const char *p = strchr(typestr, ':');
    return (p != NULL ? ++p : typestr);
}

3097 3098 3099 3100 3101 3102 3103 3104 3105 3106 3107
static void add_completion_option(ReadLineState *rs, const char *str,
                                  const char *option)
{
    if (!str || !option) {
        return;
    }
    if (!strncmp(option, str, strlen(str))) {
        readline_add_completion(rs, option);
    }
}

3108 3109 3110 3111 3112 3113 3114 3115 3116 3117 3118 3119 3120 3121 3122 3123 3124 3125 3126 3127 3128 3129 3130
void chardev_add_completion(ReadLineState *rs, int nb_args, const char *str)
{
    size_t len;
    ChardevBackendInfoList *list, *start;

    if (nb_args != 2) {
        return;
    }
    len = strlen(str);
    readline_set_completion_index(rs, len);

    start = list = qmp_query_chardev_backends(NULL);
    while (list) {
        const char *chr_name = list->value->name;

        if (!strncmp(chr_name, str, len)) {
            readline_add_completion(rs, chr_name);
        }
        list = list->next;
    }
    qapi_free_ChardevBackendInfoList(start);
}

3131 3132 3133 3134 3135 3136 3137 3138 3139 3140
void netdev_add_completion(ReadLineState *rs, int nb_args, const char *str)
{
    size_t len;
    int i;

    if (nb_args != 2) {
        return;
    }
    len = strlen(str);
    readline_set_completion_index(rs, len);
3141 3142
    for (i = 0; NetClientDriver_lookup[i]; i++) {
        add_completion_option(rs, str, NetClientDriver_lookup[i]);
3143 3144 3145
    }
}

3146
void device_add_completion(ReadLineState *rs, int nb_args, const char *str)
3147 3148 3149 3150
{
    GSList *list, *elt;
    size_t len;

3151 3152 3153 3154
    if (nb_args != 2) {
        return;
    }

3155 3156 3157 3158 3159 3160 3161 3162
    len = strlen(str);
    readline_set_completion_index(rs, len);
    list = elt = object_class_get_list(TYPE_DEVICE, false);
    while (elt) {
        const char *name;
        DeviceClass *dc = OBJECT_CLASS_CHECK(DeviceClass, elt->data,
                                             TYPE_DEVICE);
        name = object_class_get_name(OBJECT_CLASS(dc));
3163 3164 3165

        if (!dc->cannot_instantiate_with_device_add_yet
            && !strncmp(name, str, len)) {
3166 3167 3168 3169 3170 3171 3172
            readline_add_completion(rs, name);
        }
        elt = elt->next;
    }
    g_slist_free(list);
}

3173
void object_add_completion(ReadLineState *rs, int nb_args, const char *str)
3174 3175 3176 3177
{
    GSList *list, *elt;
    size_t len;

3178 3179 3180 3181
    if (nb_args != 2) {
        return;
    }

3182 3183 3184 3185 3186 3187 3188 3189 3190 3191 3192 3193 3194 3195 3196
    len = strlen(str);
    readline_set_completion_index(rs, len);
    list = elt = object_class_get_list(TYPE_USER_CREATABLE, false);
    while (elt) {
        const char *name;

        name = object_class_get_name(OBJECT_CLASS(elt->data));
        if (!strncmp(name, str, len) && strcmp(name, TYPE_USER_CREATABLE)) {
            readline_add_completion(rs, name);
        }
        elt = elt->next;
    }
    g_slist_free(list);
}

3197 3198 3199
static void peripheral_device_del_completion(ReadLineState *rs,
                                             const char *str, size_t len)
{
3200 3201
    Object *peripheral = container_get(qdev_get_machine(), "/peripheral");
    GSList *list, *item;
3202

3203 3204
    list = qdev_build_hotpluggable_device_list(peripheral);
    if (!list) {
3205 3206 3207 3208 3209 3210 3211 3212 3213 3214 3215 3216 3217 3218
        return;
    }

    for (item = list; item; item = g_slist_next(item)) {
        DeviceState *dev = item->data;

        if (dev->id && !strncmp(str, dev->id, len)) {
            readline_add_completion(rs, dev->id);
        }
    }

    g_slist_free(list);
}

3219 3220 3221 3222 3223 3224 3225 3226 3227 3228 3229 3230 3231 3232 3233 3234 3235 3236 3237 3238 3239 3240 3241
void chardev_remove_completion(ReadLineState *rs, int nb_args, const char *str)
{
    size_t len;
    ChardevInfoList *list, *start;

    if (nb_args != 2) {
        return;
    }
    len = strlen(str);
    readline_set_completion_index(rs, len);

    start = list = qmp_query_chardev(NULL);
    while (list) {
        ChardevInfo *chr = list->value;

        if (!strncmp(chr->label, str, len)) {
            readline_add_completion(rs, chr->label);
        }
        list = list->next;
    }
    qapi_free_ChardevInfoList(start);
}

3242 3243 3244 3245 3246 3247 3248 3249 3250 3251 3252 3253 3254 3255 3256 3257 3258 3259 3260 3261 3262 3263 3264 3265 3266 3267 3268 3269 3270 3271 3272
static void ringbuf_completion(ReadLineState *rs, const char *str)
{
    size_t len;
    ChardevInfoList *list, *start;

    len = strlen(str);
    readline_set_completion_index(rs, len);

    start = list = qmp_query_chardev(NULL);
    while (list) {
        ChardevInfo *chr_info = list->value;

        if (!strncmp(chr_info->label, str, len)) {
            CharDriverState *chr = qemu_chr_find(chr_info->label);
            if (chr && chr_is_ringbuf(chr)) {
                readline_add_completion(rs, chr_info->label);
            }
        }
        list = list->next;
    }
    qapi_free_ChardevInfoList(start);
}

void ringbuf_write_completion(ReadLineState *rs, int nb_args, const char *str)
{
    if (nb_args != 2) {
        return;
    }
    ringbuf_completion(rs, str);
}

3273 3274 3275 3276 3277 3278 3279 3280 3281 3282
void device_del_completion(ReadLineState *rs, int nb_args, const char *str)
{
    size_t len;

    if (nb_args != 2) {
        return;
    }

    len = strlen(str);
    readline_set_completion_index(rs, len);
3283
    peripheral_device_del_completion(rs, str, len);
3284 3285
}

3286
void object_del_completion(ReadLineState *rs, int nb_args, const char *str)
3287 3288 3289 3290
{
    ObjectPropertyInfoList *list, *start;
    size_t len;

3291 3292 3293
    if (nb_args != 2) {
        return;
    }
3294 3295 3296 3297 3298 3299 3300 3301 3302 3303 3304 3305 3306 3307 3308 3309
    len = strlen(str);
    readline_set_completion_index(rs, len);

    start = list = qmp_qom_list("/objects", NULL);
    while (list) {
        ObjectPropertyInfo *info = list->value;

        if (!strncmp(info->type, "child<", 5)
            && !strncmp(info->name, str, len)) {
            readline_add_completion(rs, info->name);
        }
        list = list->next;
    }
    qapi_free_ObjectPropertyInfoList(start);
}

3310 3311 3312 3313 3314 3315 3316 3317 3318 3319 3320 3321 3322 3323 3324
void sendkey_completion(ReadLineState *rs, int nb_args, const char *str)
{
    int i;
    char *sep;
    size_t len;

    if (nb_args != 2) {
        return;
    }
    sep = strrchr(str, '-');
    if (sep) {
        str = sep + 1;
    }
    len = strlen(str);
    readline_set_completion_index(rs, len);
3325
    for (i = 0; i < Q_KEY_CODE__MAX; i++) {
3326 3327 3328 3329 3330 3331
        if (!strncmp(str, QKeyCode_lookup[i], len)) {
            readline_add_completion(rs, QKeyCode_lookup[i]);
        }
    }
}

3332 3333 3334 3335 3336 3337 3338
void set_link_completion(ReadLineState *rs, int nb_args, const char *str)
{
    size_t len;

    len = strlen(str);
    readline_set_completion_index(rs, len);
    if (nb_args == 2) {
3339
        NetClientState *ncs[MAX_QUEUE_NUM];
3340 3341
        int count, i;
        count = qemu_find_net_clients_except(NULL, ncs,
3342
                                             NET_CLIENT_DRIVER_NONE,
3343
                                             MAX_QUEUE_NUM);
3344
        for (i = 0; i < MIN(count, MAX_QUEUE_NUM); i++) {
3345 3346 3347 3348 3349 3350 3351 3352 3353 3354 3355
            const char *name = ncs[i]->name;
            if (!strncmp(str, name, len)) {
                readline_add_completion(rs, name);
            }
        }
    } else if (nb_args == 3) {
        add_completion_option(rs, str, "on");
        add_completion_option(rs, str, "off");
    }
}

3356 3357 3358
void netdev_del_completion(ReadLineState *rs, int nb_args, const char *str)
{
    int len, count, i;
3359
    NetClientState *ncs[MAX_QUEUE_NUM];
3360 3361 3362 3363 3364 3365 3366

    if (nb_args != 2) {
        return;
    }

    len = strlen(str);
    readline_set_completion_index(rs, len);
3367
    count = qemu_find_net_clients_except(NULL, ncs, NET_CLIENT_DRIVER_NIC,
3368
                                         MAX_QUEUE_NUM);
3369
    for (i = 0; i < MIN(count, MAX_QUEUE_NUM); i++) {
3370 3371 3372 3373 3374 3375 3376 3377 3378 3379 3380 3381
        QemuOpts *opts;
        const char *name = ncs[i]->name;
        if (strncmp(str, name, len)) {
            continue;
        }
        opts = qemu_opts_find(qemu_find_opts_err("netdev", NULL), name);
        if (opts) {
            readline_add_completion(rs, name);
        }
    }
}

3382 3383 3384 3385 3386 3387 3388 3389 3390 3391 3392 3393 3394 3395 3396 3397 3398
void info_trace_events_completion(ReadLineState *rs, int nb_args, const char *str)
{
    size_t len;

    len = strlen(str);
    readline_set_completion_index(rs, len);
    if (nb_args == 2) {
        TraceEventID id;
        for (id = 0; id < trace_event_count(); id++) {
            const char *event_name = trace_event_get_name(trace_event_id(id));
            if (!strncmp(str, event_name, len)) {
                readline_add_completion(rs, event_name);
            }
        }
    }
}

3399 3400 3401 3402 3403 3404 3405 3406 3407 3408 3409 3410 3411 3412 3413 3414 3415 3416 3417 3418
void trace_event_completion(ReadLineState *rs, int nb_args, const char *str)
{
    size_t len;

    len = strlen(str);
    readline_set_completion_index(rs, len);
    if (nb_args == 2) {
        TraceEventID id;
        for (id = 0; id < trace_event_count(); id++) {
            const char *event_name = trace_event_get_name(trace_event_id(id));
            if (!strncmp(str, event_name, len)) {
                readline_add_completion(rs, event_name);
            }
        }
    } else if (nb_args == 3) {
        add_completion_option(rs, str, "on");
        add_completion_option(rs, str, "off");
    }
}

3419 3420
void watchdog_action_completion(ReadLineState *rs, int nb_args, const char *str)
{
3421 3422
    int i;

3423 3424 3425 3426
    if (nb_args != 2) {
        return;
    }
    readline_set_completion_index(rs, strlen(str));
3427 3428 3429
    for (i = 0; WatchdogExpirationAction_lookup[i]; i++) {
        add_completion_option(rs, str, WatchdogExpirationAction_lookup[i]);
    }
3430 3431
}

3432 3433 3434 3435 3436 3437 3438 3439 3440
void migrate_set_capability_completion(ReadLineState *rs, int nb_args,
                                       const char *str)
{
    size_t len;

    len = strlen(str);
    readline_set_completion_index(rs, len);
    if (nb_args == 2) {
        int i;
3441
        for (i = 0; i < MIGRATION_CAPABILITY__MAX; i++) {
3442 3443 3444 3445 3446 3447 3448 3449 3450 3451 3452
            const char *name = MigrationCapability_lookup[i];
            if (!strncmp(str, name, len)) {
                readline_add_completion(rs, name);
            }
        }
    } else if (nb_args == 3) {
        add_completion_option(rs, str, "on");
        add_completion_option(rs, str, "off");
    }
}

3453 3454 3455 3456 3457 3458 3459 3460 3461
void migrate_set_parameter_completion(ReadLineState *rs, int nb_args,
                                      const char *str)
{
    size_t len;

    len = strlen(str);
    readline_set_completion_index(rs, len);
    if (nb_args == 2) {
        int i;
3462
        for (i = 0; i < MIGRATION_PARAMETER__MAX; i++) {
3463 3464 3465 3466 3467 3468 3469 3470
            const char *name = MigrationParameter_lookup[i];
            if (!strncmp(str, name, len)) {
                readline_add_completion(rs, name);
            }
        }
    }
}

3471 3472 3473 3474 3475 3476 3477 3478 3479 3480 3481 3482 3483 3484 3485 3486
void host_net_add_completion(ReadLineState *rs, int nb_args, const char *str)
{
    int i;
    size_t len;
    if (nb_args != 2) {
        return;
    }
    len = strlen(str);
    readline_set_completion_index(rs, len);
    for (i = 0; host_net_devices[i]; i++) {
        if (!strncmp(host_net_devices[i], str, len)) {
            readline_add_completion(rs, host_net_devices[i]);
        }
    }
}

3487 3488
void host_net_remove_completion(ReadLineState *rs, int nb_args, const char *str)
{
3489
    NetClientState *ncs[MAX_QUEUE_NUM];
3490 3491 3492 3493 3494 3495
    int count, i, len;

    len = strlen(str);
    readline_set_completion_index(rs, len);
    if (nb_args == 2) {
        count = qemu_find_net_clients_except(NULL, ncs,
3496
                                             NET_CLIENT_DRIVER_NONE,
3497
                                             MAX_QUEUE_NUM);
3498
        for (i = 0; i < MIN(count, MAX_QUEUE_NUM); i++) {
3499 3500 3501 3502 3503 3504 3505 3506 3507 3508 3509 3510 3511 3512
            int id;
            char name[16];

            if (net_hub_id_for_client(ncs[i], &id)) {
                continue;
            }
            snprintf(name, sizeof(name), "%d", id);
            if (!strncmp(str, name, len)) {
                readline_add_completion(rs, name);
            }
        }
        return;
    } else if (nb_args == 3) {
        count = qemu_find_net_clients_except(NULL, ncs,
3513
                                             NET_CLIENT_DRIVER_NIC,
3514
                                             MAX_QUEUE_NUM);
3515
        for (i = 0; i < MIN(count, MAX_QUEUE_NUM); i++) {
3516
            int id;
3517 3518
            const char *name;

3519
            if (ncs[i]->info->type == NET_CLIENT_DRIVER_HUBPORT ||
3520 3521 3522
                net_hub_id_for_client(ncs[i], &id)) {
                continue;
            }
3523 3524 3525 3526 3527 3528 3529 3530 3531
            name = ncs[i]->name;
            if (!strncmp(str, name, len)) {
                readline_add_completion(rs, name);
            }
        }
        return;
    }
}

3532 3533 3534
static void vm_completion(ReadLineState *rs, const char *str)
{
    size_t len;
K
Kevin Wolf 已提交
3535
    BlockDriverState *bs;
K
Kevin Wolf 已提交
3536
    BdrvNextIterator it;
3537 3538 3539

    len = strlen(str);
    readline_set_completion_index(rs, len);
K
Kevin Wolf 已提交
3540

K
Kevin Wolf 已提交
3541
    for (bs = bdrv_first(&it); bs; bs = bdrv_next(&it)) {
3542
        SnapshotInfoList *snapshots, *snapshot;
3543 3544
        AioContext *ctx = bdrv_get_aio_context(bs);
        bool ok = false;
3545

3546 3547 3548
        aio_context_acquire(ctx);
        if (bdrv_can_snapshot(bs)) {
            ok = bdrv_query_snapshot_info_list(bs, &snapshots, NULL) == 0;
3549
        }
3550 3551
        aio_context_release(ctx);
        if (!ok) {
3552 3553
            continue;
        }
3554

3555 3556 3557 3558 3559 3560 3561 3562 3563 3564 3565 3566 3567 3568 3569 3570 3571 3572 3573 3574 3575 3576 3577 3578 3579 3580 3581 3582 3583 3584 3585
        snapshot = snapshots;
        while (snapshot) {
            char *completion = snapshot->value->name;
            if (!strncmp(str, completion, len)) {
                readline_add_completion(rs, completion);
            }
            completion = snapshot->value->id;
            if (!strncmp(str, completion, len)) {
                readline_add_completion(rs, completion);
            }
            snapshot = snapshot->next;
        }
        qapi_free_SnapshotInfoList(snapshots);
    }

}

void delvm_completion(ReadLineState *rs, int nb_args, const char *str)
{
    if (nb_args == 2) {
        vm_completion(rs, str);
    }
}

void loadvm_completion(ReadLineState *rs, int nb_args, const char *str)
{
    if (nb_args == 2) {
        vm_completion(rs, str);
    }
}

3586 3587 3588 3589
static void monitor_find_completion_by_table(Monitor *mon,
                                             const mon_cmd_t *cmd_table,
                                             char **args,
                                             int nb_args)
B
bellard 已提交
3590 3591
{
    const char *cmdname;
3592
    int i;
3593
    const char *ptype, *str, *name;
A
Anthony Liguori 已提交
3594
    const mon_cmd_t *cmd;
3595
    BlockBackend *blk = NULL;
B
bellard 已提交
3596 3597 3598 3599 3600 3601 3602

    if (nb_args <= 1) {
        /* command completion */
        if (nb_args == 0)
            cmdname = "";
        else
            cmdname = args[0];
3603
        readline_set_completion_index(mon->rs, strlen(cmdname));
3604
        for (cmd = cmd_table; cmd->name != NULL; cmd++) {
3605
            cmd_completion(mon, cmdname, cmd->name);
B
bellard 已提交
3606 3607 3608
        }
    } else {
        /* find the command */
3609
        for (cmd = cmd_table; cmd->name != NULL; cmd++) {
3610 3611 3612
            if (compare_cmd(args[0], cmd->name)) {
                break;
            }
B
bellard 已提交
3613
        }
3614
        if (!cmd->name) {
3615
            return;
3616 3617
        }

3618 3619
        if (cmd->sub_table) {
            /* do the job again */
3620 3621 3622
            monitor_find_completion_by_table(mon, cmd->sub_table,
                                             &args[1], nb_args - 1);
            return;
3623
        }
3624
        if (cmd->command_completion) {
3625 3626
            cmd->command_completion(mon->rs, nb_args, args[nb_args - 1]);
            return;
3627
        }
3628

3629
        ptype = next_arg_type(cmd->args_type);
B
bellard 已提交
3630 3631
        for(i = 0; i < nb_args - 2; i++) {
            if (*ptype != '\0') {
3632
                ptype = next_arg_type(ptype);
B
bellard 已提交
3633
                while (*ptype == '?')
3634
                    ptype = next_arg_type(ptype);
B
bellard 已提交
3635 3636 3637
            }
        }
        str = args[nb_args - 1];
K
Kevin Wolf 已提交
3638
        while (*ptype == '-' && ptype[1] != '\0') {
3639
            ptype = next_arg_type(ptype);
3640
        }
B
bellard 已提交
3641 3642 3643
        switch(*ptype) {
        case 'F':
            /* file completion */
3644
            readline_set_completion_index(mon->rs, strlen(str));
3645
            file_completion(mon, str);
B
bellard 已提交
3646 3647 3648
            break;
        case 'B':
            /* block device name completion */
3649
            readline_set_completion_index(mon->rs, strlen(str));
3650 3651
            while ((blk = blk_next(blk)) != NULL) {
                name = blk_name(blk);
3652 3653 3654 3655 3656
                if (str[0] == '\0' ||
                    !strncmp(name, str, strlen(str))) {
                    readline_add_completion(mon->rs, name);
                }
            }
B
bellard 已提交
3657
            break;
B
bellard 已提交
3658
        case 's':
3659
        case 'S':
3660
            if (!strcmp(cmd->name, "help|?")) {
3661 3662
                monitor_find_completion_by_table(mon, cmd_table,
                                                 &args[1], nb_args - 1);
B
bellard 已提交
3663 3664
            }
            break;
B
bellard 已提交
3665 3666 3667 3668
        default:
            break;
        }
    }
3669 3670
}

3671
static void monitor_find_completion(void *opaque,
3672 3673
                                    const char *cmdline)
{
3674
    Monitor *mon = opaque;
3675 3676 3677 3678 3679 3680 3681 3682 3683 3684 3685 3686 3687 3688 3689 3690 3691 3692 3693 3694
    char *args[MAX_ARGS];
    int nb_args, len;

    /* 1. parse the cmdline */
    if (parse_cmdline(cmdline, &nb_args, args) < 0) {
        return;
    }

    /* if the line ends with a space, it means we want to complete the
       next arg */
    len = strlen(cmdline);
    if (len > 0 && qemu_isspace(cmdline[len - 1])) {
        if (nb_args >= MAX_ARGS) {
            goto cleanup;
        }
        args[nb_args++] = g_strdup("");
    }

    /* 2. auto complete according to args */
    monitor_find_completion_by_table(mon, mon->cmd_table, args, nb_args);
3695 3696

cleanup:
W
Wenchao Xia 已提交
3697
    free_cmdline_args(args, nb_args);
B
bellard 已提交
3698 3699
}

3700
static int monitor_can_read(void *opaque)
B
bellard 已提交
3701
{
3702 3703
    Monitor *mon = opaque;

J
Jan Kiszka 已提交
3704
    return (mon->suspend_cnt == 0) ? 1 : 0;
B
bellard 已提交
3705 3706
}

3707
static bool invalid_qmp_mode(const Monitor *mon, const char *cmd,
3708
                             Error **errp)
L
Luiz Capitulino 已提交
3709
{
3710
    bool is_cap = g_str_equal(cmd, "qmp_capabilities");
3711 3712

    if (is_cap && mon->qmp.in_command_mode) {
3713 3714
        error_set(errp, ERROR_CLASS_COMMAND_NOT_FOUND,
                  "Capabilities negotiation is already complete, command "
3715
                  "'%s' ignored", cmd);
3716 3717
        return true;
    }
3718
    if (!is_cap && !mon->qmp.in_command_mode) {
3719 3720
        error_set(errp, ERROR_CLASS_COMMAND_NOT_FOUND,
                  "Expecting capabilities negotiation with "
3721
                  "'qmp_capabilities' before command '%s'", cmd);
3722 3723 3724
        return true;
    }
    return false;
L
Luiz Capitulino 已提交
3725 3726
}

3727 3728 3729 3730 3731 3732 3733 3734 3735 3736
/*
 * Argument validation rules:
 *
 * 1. The argument must exist in cmd_args qdict
 * 2. The argument type must be the expected one
 *
 * Special case: If the argument doesn't exist in cmd_args and
 *               the QMP_ACCEPT_UNKNOWNS flag is set, then the
 *               checking is skipped for it.
 */
3737 3738 3739
static void check_client_args_type(const QDict *client_args,
                                   const QDict *cmd_args, int flags,
                                   Error **errp)
L
Luiz Capitulino 已提交
3740
{
3741
    const QDictEntry *ent;
L
Luiz Capitulino 已提交
3742

3743 3744 3745 3746 3747 3748 3749 3750 3751 3752 3753 3754 3755
    for (ent = qdict_first(client_args); ent;ent = qdict_next(client_args,ent)){
        QObject *obj;
        QString *arg_type;
        const QObject *client_arg = qdict_entry_value(ent);
        const char *client_arg_name = qdict_entry_key(ent);

        obj = qdict_get(cmd_args, client_arg_name);
        if (!obj) {
            if (flags & QMP_ACCEPT_UNKNOWNS) {
                /* handler accepts unknowns */
                continue;
            }
            /* client arg doesn't exist */
3756
            error_setg(errp, QERR_INVALID_PARAMETER, client_arg_name);
3757
            return;
3758
        }
L
Luiz Capitulino 已提交
3759

3760 3761
        arg_type = qobject_to_qstring(obj);
        assert(arg_type != NULL);
L
Luiz Capitulino 已提交
3762

3763 3764
        /* check if argument's type is correct */
        switch (qstring_get_str(arg_type)[0]) {
L
Luiz Capitulino 已提交
3765 3766 3767
        case 'F':
        case 'B':
        case 's':
3768
            if (qobject_type(client_arg) != QTYPE_QSTRING) {
3769 3770
                error_setg(errp, QERR_INVALID_PARAMETER_TYPE,
                           client_arg_name, "string");
3771
                return;
L
Luiz Capitulino 已提交
3772
            }
3773
        break;
L
Luiz Capitulino 已提交
3774 3775
        case 'i':
        case 'l':
3776
        case 'M':
3777
        case 'o':
3778
            if (qobject_type(client_arg) != QTYPE_QINT) {
3779 3780
                error_setg(errp, QERR_INVALID_PARAMETER_TYPE,
                           client_arg_name, "int");
3781
                return;
L
Luiz Capitulino 已提交
3782 3783
            }
            break;
3784
        case 'T':
3785 3786
            if (qobject_type(client_arg) != QTYPE_QINT &&
                qobject_type(client_arg) != QTYPE_QFLOAT) {
3787 3788
                error_setg(errp, QERR_INVALID_PARAMETER_TYPE,
                           client_arg_name, "number");
3789
                return;
3790 3791
            }
            break;
3792
        case 'b':
L
Luiz Capitulino 已提交
3793
        case '-':
3794
            if (qobject_type(client_arg) != QTYPE_QBOOL) {
3795 3796
                error_setg(errp, QERR_INVALID_PARAMETER_TYPE,
                           client_arg_name, "bool");
3797
                return;
L
Luiz Capitulino 已提交
3798 3799
            }
            break;
3800
        case 'O':
3801 3802
            assert(flags & QMP_ACCEPT_UNKNOWNS);
            break;
3803 3804 3805
        case 'q':
            /* Any QObject can be passed.  */
            break;
3806 3807 3808 3809 3810 3811
        case '/':
        case '.':
            /*
             * These types are not supported by QMP and thus are not
             * handled here. Fall through.
             */
L
Luiz Capitulino 已提交
3812 3813
        default:
            abort();
3814 3815 3816 3817
        }
    }
}

3818 3819 3820 3821
/*
 * - Check if the client has passed all mandatory args
 * - Set special flags for argument validation
 */
3822 3823 3824
static void check_mandatory_args(const QDict *cmd_args,
                                 const QDict *client_args, int *flags,
                                 Error **errp)
3825 3826 3827 3828 3829 3830 3831 3832 3833 3834 3835 3836 3837 3838
{
    const QDictEntry *ent;

    for (ent = qdict_first(cmd_args); ent; ent = qdict_next(cmd_args, ent)) {
        const char *cmd_arg_name = qdict_entry_key(ent);
        QString *type = qobject_to_qstring(qdict_entry_value(ent));
        assert(type != NULL);

        if (qstring_get_str(type)[0] == 'O') {
            assert((*flags & QMP_ACCEPT_UNKNOWNS) == 0);
            *flags |= QMP_ACCEPT_UNKNOWNS;
        } else if (qstring_get_str(type)[0] != '-' &&
                   qstring_get_str(type)[1] != '?' &&
                   !qdict_haskey(client_args, cmd_arg_name)) {
3839
            error_setg(errp, QERR_MISSING_PARAMETER, cmd_arg_name);
3840
            return;
3841
        }
L
Luiz Capitulino 已提交
3842 3843 3844
    }
}

3845
static QDict *qdict_from_args_type(const char *args_type)
L
Luiz Capitulino 已提交
3846
{
3847 3848 3849 3850 3851 3852 3853 3854 3855 3856 3857 3858 3859 3860 3861 3862 3863 3864 3865 3866 3867 3868 3869 3870 3871 3872 3873 3874 3875 3876 3877 3878 3879 3880 3881 3882 3883 3884 3885 3886 3887
    int i;
    QDict *qdict;
    QString *key, *type, *cur_qs;

    assert(args_type != NULL);

    qdict = qdict_new();

    if (args_type == NULL || args_type[0] == '\0') {
        /* no args, empty qdict */
        goto out;
    }

    key = qstring_new();
    type = qstring_new();

    cur_qs = key;

    for (i = 0;; i++) {
        switch (args_type[i]) {
            case ',':
            case '\0':
                qdict_put(qdict, qstring_get_str(key), type);
                QDECREF(key);
                if (args_type[i] == '\0') {
                    goto out;
                }
                type = qstring_new(); /* qdict has ref */
                cur_qs = key = qstring_new();
                break;
            case ':':
                cur_qs = type;
                break;
            default:
                qstring_append_chr(cur_qs, args_type[i]);
                break;
        }
    }

out:
    return qdict;
L
Luiz Capitulino 已提交
3888 3889
}

3890 3891 3892 3893
/*
 * Client argument checking rules:
 *
 * 1. Client must provide all mandatory arguments
3894 3895 3896
 * 2. Each argument provided by the client must be expected
 * 3. Each argument provided by the client must have the type expected
 *    by the command
3897
 */
3898 3899
static void qmp_check_client_args(const mon_cmd_t *cmd, QDict *client_args,
                                  Error **errp)
3900
{
3901 3902
    Error *err = NULL;
    int flags;
3903 3904 3905 3906 3907
    QDict *cmd_args;

    cmd_args = qdict_from_args_type(cmd->args_type);

    flags = 0;
3908
    check_mandatory_args(cmd_args, client_args, &flags, &err);
3909 3910 3911 3912
    if (err) {
        goto out;
    }

3913
    check_client_args_type(client_args, cmd_args, flags, &err);
3914 3915

out:
3916
    error_propagate(errp, err);
3917
    QDECREF(cmd_args);
3918 3919
}

L
Luiz Capitulino 已提交
3920
/*
3921
 * Input object checking rules
L
Luiz Capitulino 已提交
3922
 *
3923 3924 3925 3926 3927 3928
 * 1. Input object must be a dict
 * 2. The "execute" key must exist
 * 3. The "execute" key must be a string
 * 4. If the "arguments" key exists, it must be a dict
 * 5. If the "id" key exists, it can be anything (ie. json-value)
 * 6. Any argument not listed above is considered invalid
L
Luiz Capitulino 已提交
3929
 */
3930
static QDict *qmp_check_input_obj(QObject *input_obj, Error **errp)
L
Luiz Capitulino 已提交
3931
{
3932 3933 3934
    const QDictEntry *ent;
    int has_exec_key = 0;
    QDict *input_dict;
L
Luiz Capitulino 已提交
3935

3936
    if (qobject_type(input_obj) != QTYPE_QDICT) {
3937
        error_setg(errp, QERR_QMP_BAD_INPUT_OBJECT, "object");
3938
        return NULL;
L
Luiz Capitulino 已提交
3939 3940
    }

3941
    input_dict = qobject_to_qdict(input_obj);
L
Luiz Capitulino 已提交
3942

3943 3944 3945
    for (ent = qdict_first(input_dict); ent; ent = qdict_next(input_dict, ent)){
        const char *arg_name = qdict_entry_key(ent);
        const QObject *arg_obj = qdict_entry_value(ent);
L
Luiz Capitulino 已提交
3946

3947 3948
        if (!strcmp(arg_name, "execute")) {
            if (qobject_type(arg_obj) != QTYPE_QSTRING) {
3949 3950
                error_setg(errp, QERR_QMP_BAD_INPUT_OBJECT_MEMBER,
                           "execute", "string");
3951
                return NULL;
3952
            }
3953 3954 3955
            has_exec_key = 1;
        } else if (!strcmp(arg_name, "arguments")) {
            if (qobject_type(arg_obj) != QTYPE_QDICT) {
3956 3957
                error_setg(errp, QERR_QMP_BAD_INPUT_OBJECT_MEMBER,
                           "arguments", "object");
3958
                return NULL;
L
Luiz Capitulino 已提交
3959
            }
3960 3961
        } else if (!strcmp(arg_name, "id")) {
            /* Any string is acceptable as "id", so nothing to check */
L
Luiz Capitulino 已提交
3962
        } else {
3963
            error_setg(errp, QERR_QMP_EXTRA_MEMBER, arg_name);
3964
            return NULL;
L
Luiz Capitulino 已提交
3965 3966 3967
        }
    }

3968
    if (!has_exec_key) {
3969
        error_setg(errp, QERR_QMP_BAD_INPUT_OBJECT, "execute");
3970 3971
        return NULL;
    }
L
Luiz Capitulino 已提交
3972

3973
    return input_dict;
3974 3975
}

P
Paolo Bonzini 已提交
3976
static void handle_qmp_command(JSONMessageParser *parser, GQueue *tokens)
L
Luiz Capitulino 已提交
3977
{
3978
    Error *local_err = NULL;
3979
    QObject *obj, *data;
L
Luiz Capitulino 已提交
3980 3981
    QDict *input, *args;
    const mon_cmd_t *cmd;
3982
    QmpCommand *qcmd;
3983
    const char *cmd_name;
L
Luiz Capitulino 已提交
3984 3985
    Monitor *mon = cur_mon;

3986
    args = input = NULL;
3987
    data = NULL;
L
Luiz Capitulino 已提交
3988 3989 3990 3991

    obj = json_parser_parse(tokens, NULL);
    if (!obj) {
        // FIXME: should be triggered in json_parser_parse()
3992
        error_setg(&local_err, QERR_JSON_PARSING);
L
Luiz Capitulino 已提交
3993 3994 3995
        goto err_out;
    }

3996
    input = qmp_check_input_obj(obj, &local_err);
3997
    if (!input) {
L
Luiz Capitulino 已提交
3998 3999 4000 4001
        qobject_decref(obj);
        goto err_out;
    }

4002 4003
    mon->qmp.id = qdict_get(input, "id");
    qobject_incref(mon->qmp.id);
L
Luiz Capitulino 已提交
4004

4005
    cmd_name = qdict_get_str(input, "execute");
4006
    trace_handle_qmp_command(mon, cmd_name);
4007
    cmd = qmp_find_cmd(cmd_name);
4008 4009
    qcmd = qmp_find_command(cmd_name);
    if (!qcmd || !cmd) {
4010 4011
        error_set(&local_err, ERROR_CLASS_COMMAND_NOT_FOUND,
                  "The command %s has not been found", cmd_name);
4012
        goto err_out;
L
Luiz Capitulino 已提交
4013
    }
4014
    if (invalid_qmp_mode(mon, cmd_name, &local_err)) {
4015 4016
        goto err_out;
    }
L
Luiz Capitulino 已提交
4017 4018 4019 4020 4021 4022 4023 4024 4025

    obj = qdict_get(input, "arguments");
    if (!obj) {
        args = qdict_new();
    } else {
        args = qobject_to_qdict(obj);
        QINCREF(args);
    }

4026 4027
    qmp_check_client_args(cmd, args, &local_err);
    if (local_err) {
L
Luiz Capitulino 已提交
4028 4029 4030
        goto err_out;
    }

4031
    qcmd->fn(args, &data, &local_err);
L
Luiz Capitulino 已提交
4032 4033

err_out:
4034
    monitor_protocol_emitter(mon, data, local_err);
4035
    qobject_decref(data);
4036
    error_free(local_err);
4037
    QDECREF(input);
L
Luiz Capitulino 已提交
4038 4039 4040
    QDECREF(args);
}

4041
static void monitor_qmp_read(void *opaque, const uint8_t *buf, int size)
L
Luiz Capitulino 已提交
4042 4043 4044 4045 4046
{
    Monitor *old_mon = cur_mon;

    cur_mon = opaque;

4047
    json_message_parser_feed(&cur_mon->qmp.parser, (const char *) buf, size);
L
Luiz Capitulino 已提交
4048 4049 4050 4051

    cur_mon = old_mon;
}

4052
static void monitor_read(void *opaque, const uint8_t *buf, int size)
B
bellard 已提交
4053
{
4054
    Monitor *old_mon = cur_mon;
4055
    int i;
A
aliguori 已提交
4056

4057 4058
    cur_mon = opaque;

4059 4060 4061 4062 4063 4064 4065
    if (cur_mon->rs) {
        for (i = 0; i < size; i++)
            readline_handle_byte(cur_mon->rs, buf[i]);
    } else {
        if (size == 0 || buf[size - 1] != 0)
            monitor_printf(cur_mon, "corrupted command\n");
        else
4066
            handle_hmp_command(cur_mon, (char *)buf);
4067
    }
B
bellard 已提交
4068

4069 4070
    cur_mon = old_mon;
}
4071

4072 4073
static void monitor_command_cb(void *opaque, const char *cmdline,
                               void *readline_opaque)
B
bellard 已提交
4074
{
4075 4076
    Monitor *mon = opaque;

4077
    monitor_suspend(mon);
4078
    handle_hmp_command(mon, cmdline);
4079
    monitor_resume(mon);
4080 4081
}

4082
int monitor_suspend(Monitor *mon)
4083
{
4084 4085
    if (!mon->rs)
        return -ENOTTY;
4086
    mon->suspend_cnt++;
4087
    return 0;
4088 4089
}

A
aliguori 已提交
4090
void monitor_resume(Monitor *mon)
4091
{
4092 4093
    if (!mon->rs)
        return;
4094 4095
    if (--mon->suspend_cnt == 0)
        readline_show_prompt(mon->rs);
B
bellard 已提交
4096 4097
}

4098 4099
static QObject *get_qmp_greeting(void)
{
L
Luiz Capitulino 已提交
4100
    QObject *ver = NULL;
4101

4102
    qmp_marshal_query_version(NULL, &ver, NULL);
4103 4104 4105

    return qobject_from_jsonf("{'QMP': {'version': %p, 'capabilities': []}}",
                              ver);
4106 4107
}

4108
static void monitor_qmp_event(void *opaque, int event)
L
Luiz Capitulino 已提交
4109
{
4110 4111
    QObject *data;
    Monitor *mon = opaque;
L
Luiz Capitulino 已提交
4112

4113 4114
    switch (event) {
    case CHR_EVENT_OPENED:
4115
        mon->qmp.in_command_mode = false;
4116
        data = get_qmp_greeting();
L
Luiz Capitulino 已提交
4117 4118
        monitor_json_emitter(mon, data);
        qobject_decref(data);
4119
        mon_refcount++;
4120 4121
        break;
    case CHR_EVENT_CLOSED:
4122 4123
        json_message_parser_destroy(&mon->qmp.parser);
        json_message_parser_init(&mon->qmp.parser, handle_qmp_command);
4124 4125
        mon_refcount--;
        monitor_fdsets_cleanup();
4126
        break;
L
Luiz Capitulino 已提交
4127 4128 4129
    }
}

4130
static void monitor_event(void *opaque, int event)
4131
{
A
aliguori 已提交
4132 4133
    Monitor *mon = opaque;

4134 4135
    switch (event) {
    case CHR_EVENT_MUX_IN:
4136
        qemu_mutex_lock(&mon->out_lock);
G
Gerd Hoffmann 已提交
4137
        mon->mux_out = 0;
4138
        qemu_mutex_unlock(&mon->out_lock);
G
Gerd Hoffmann 已提交
4139 4140 4141 4142 4143 4144 4145
        if (mon->reset_seen) {
            readline_restart(mon->rs);
            monitor_resume(mon);
            monitor_flush(mon);
        } else {
            mon->suspend_cnt = 0;
        }
4146 4147 4148
        break;

    case CHR_EVENT_MUX_OUT:
G
Gerd Hoffmann 已提交
4149 4150 4151 4152 4153 4154 4155 4156 4157
        if (mon->reset_seen) {
            if (mon->suspend_cnt == 0) {
                monitor_printf(mon, "\n");
            }
            monitor_flush(mon);
            monitor_suspend(mon);
        } else {
            mon->suspend_cnt++;
        }
4158
        qemu_mutex_lock(&mon->out_lock);
G
Gerd Hoffmann 已提交
4159
        mon->mux_out = 1;
4160
        qemu_mutex_unlock(&mon->out_lock);
4161
        break;
4162

4163
    case CHR_EVENT_OPENED:
4164 4165
        monitor_printf(mon, "QEMU %s monitor - type 'help' for more "
                       "information\n", QEMU_VERSION);
G
Gerd Hoffmann 已提交
4166
        if (!mon->mux_out) {
4167
            readline_restart(mon->rs);
4168
            readline_show_prompt(mon->rs);
G
Gerd Hoffmann 已提交
4169 4170
        }
        mon->reset_seen = 1;
4171 4172 4173 4174 4175 4176
        mon_refcount++;
        break;

    case CHR_EVENT_CLOSED:
        mon_refcount--;
        monitor_fdsets_cleanup();
4177 4178
        break;
    }
4179 4180
}

4181 4182 4183 4184 4185 4186 4187 4188 4189 4190 4191 4192 4193 4194 4195 4196 4197 4198 4199
static int
compare_mon_cmd(const void *a, const void *b)
{
    return strcmp(((const mon_cmd_t *)a)->name,
            ((const mon_cmd_t *)b)->name);
}

static void sortcmdlist(void)
{
    int array_num;
    int elem_size = sizeof(mon_cmd_t);

    array_num = sizeof(mon_cmds)/elem_size-1;
    qsort((void *)mon_cmds, array_num, elem_size, compare_mon_cmd);

    array_num = sizeof(info_cmds)/elem_size-1;
    qsort((void *)info_cmds, array_num, elem_size, compare_mon_cmd);
}

4200 4201 4202
/* These functions just adapt the readline interface in a typesafe way.  We
 * could cast function pointers but that discards compiler checks.
 */
S
Stefan Weil 已提交
4203 4204
static void GCC_FMT_ATTR(2, 3) monitor_readline_printf(void *opaque,
                                                       const char *fmt, ...)
4205 4206 4207 4208 4209 4210 4211 4212 4213 4214 4215 4216
{
    va_list ap;
    va_start(ap, fmt);
    monitor_vprintf(opaque, fmt, ap);
    va_end(ap);
}

static void monitor_readline_flush(void *opaque)
{
    monitor_flush(opaque);
}

P
Paolo Bonzini 已提交
4217 4218 4219 4220 4221
static void __attribute__((constructor)) monitor_lock_init(void)
{
    qemu_mutex_init(&monitor_lock);
}

4222
void monitor_init(CharDriverState *chr, int flags)
B
bellard 已提交
4223
{
4224
    static int is_first_init = 1;
4225
    Monitor *mon;
T
ths 已提交
4226 4227

    if (is_first_init) {
4228
        monitor_qapi_event_init();
4229
        sortcmdlist();
T
ths 已提交
4230 4231
        is_first_init = 0;
    }
4232

4233 4234
    mon = g_malloc(sizeof(*mon));
    monitor_data_init(mon);
T
ths 已提交
4235

4236
    mon->chr = chr;
4237
    mon->flags = flags;
4238
    if (flags & MONITOR_USE_READLINE) {
4239 4240 4241 4242
        mon->rs = readline_init(monitor_readline_printf,
                                monitor_readline_flush,
                                mon,
                                monitor_find_completion);
4243 4244
        monitor_read_command(mon, 0);
    }
4245

4246
    if (monitor_is_qmp(mon)) {
4247 4248
        qemu_chr_add_handlers(chr, monitor_can_read, monitor_qmp_read,
                              monitor_qmp_event, mon);
4249
        qemu_chr_fe_set_echo(chr, true);
4250
        json_message_parser_init(&mon->qmp.parser, handle_qmp_command);
L
Luiz Capitulino 已提交
4251 4252 4253 4254
    } else {
        qemu_chr_add_handlers(chr, monitor_can_read, monitor_read,
                              monitor_event, mon);
    }
4255

P
Paolo Bonzini 已提交
4256
    qemu_mutex_lock(&monitor_lock);
B
Blue Swirl 已提交
4257
    QLIST_INSERT_HEAD(&mon_list, mon, entry);
P
Paolo Bonzini 已提交
4258
    qemu_mutex_unlock(&monitor_lock);
B
bellard 已提交
4259 4260
}

4261 4262 4263 4264 4265 4266 4267 4268 4269 4270 4271 4272 4273
void monitor_cleanup(void)
{
    Monitor *mon, *next;

    qemu_mutex_lock(&monitor_lock);
    QLIST_FOREACH_SAFE(mon, &mon_list, entry, next) {
        QLIST_REMOVE(mon, entry);
        monitor_data_destroy(mon);
        g_free(mon);
    }
    qemu_mutex_unlock(&monitor_lock);
}

4274 4275
static void bdrv_password_cb(void *opaque, const char *password,
                             void *readline_opaque)
B
bellard 已提交
4276
{
4277 4278
    Monitor *mon = opaque;
    BlockDriverState *bs = readline_opaque;
4279
    int ret = 0;
4280
    Error *local_err = NULL;
B
bellard 已提交
4281

4282 4283
    bdrv_add_key(bs, password, &local_err);
    if (local_err) {
4284
        error_report_err(local_err);
4285
        ret = -EPERM;
B
bellard 已提交
4286
    }
4287 4288
    if (mon->password_completion_cb)
        mon->password_completion_cb(mon->password_opaque, ret);
4289

4290
    monitor_read_command(mon, 1);
B
bellard 已提交
4291
}
4292

4293
int monitor_read_bdrv_key_start(Monitor *mon, BlockDriverState *bs,
4294
                                BlockCompletionFunc *completion_cb,
4295
                                void *opaque)
4296
{
4297 4298
    int err;

A
aliguori 已提交
4299 4300
    monitor_printf(mon, "%s (%s) is encrypted.\n", bdrv_get_device_name(bs),
                   bdrv_get_encrypted_filename(bs));
4301

4302 4303
    mon->password_completion_cb = completion_cb;
    mon->password_opaque = opaque;
4304

4305 4306 4307 4308
    err = monitor_read_password(mon, bdrv_password_cb, bs);

    if (err && completion_cb)
        completion_cb(opaque, err);
4309 4310

    return err;
4311
}
L
Luiz Capitulino 已提交
4312 4313

int monitor_read_block_device_key(Monitor *mon, const char *device,
4314
                                  BlockCompletionFunc *completion_cb,
L
Luiz Capitulino 已提交
4315 4316
                                  void *opaque)
{
4317
    Error *err = NULL;
4318
    BlockBackend *blk;
L
Luiz Capitulino 已提交
4319

4320 4321
    blk = blk_by_name(device);
    if (!blk) {
L
Luiz Capitulino 已提交
4322 4323 4324
        monitor_printf(mon, "Device not found %s\n", device);
        return -1;
    }
M
Max Reitz 已提交
4325 4326 4327 4328
    if (!blk_bs(blk)) {
        monitor_printf(mon, "Device '%s' has no medium\n", device);
        return -1;
    }
L
Luiz Capitulino 已提交
4329

4330 4331 4332 4333 4334 4335 4336 4337 4338 4339
    bdrv_add_key(blk_bs(blk), NULL, &err);
    if (err) {
        error_free(err);
        return monitor_read_bdrv_key_start(mon, blk_bs(blk), completion_cb, opaque);
    }

    if (completion_cb) {
        completion_cb(opaque, 0);
    }
    return 0;
L
Luiz Capitulino 已提交
4340
}
4341 4342 4343 4344 4345 4346 4347 4348 4349 4350 4351 4352 4353 4354 4355 4356 4357 4358 4359 4360 4361 4362

QemuOptsList qemu_mon_opts = {
    .name = "mon",
    .implied_opt_name = "chardev",
    .head = QTAILQ_HEAD_INITIALIZER(qemu_mon_opts.head),
    .desc = {
        {
            .name = "mode",
            .type = QEMU_OPT_STRING,
        },{
            .name = "chardev",
            .type = QEMU_OPT_STRING,
        },{
            .name = "default",
            .type = QEMU_OPT_BOOL,
        },{
            .name = "pretty",
            .type = QEMU_OPT_BOOL,
        },
        { /* end of list */ }
    },
};
4363 4364 4365 4366

#ifndef TARGET_I386
void qmp_rtc_reset_reinjection(Error **errp)
{
4367
    error_setg(errp, QERR_FEATURE_DISABLED, "rtc-reset-reinjection");
4368 4369
}
#endif
4370 4371 4372 4373 4374 4375 4376

#ifndef TARGET_S390X
void qmp_dump_skeys(const char *filename, Error **errp)
{
    error_setg(errp, QERR_FEATURE_DISABLED, "dump-skeys");
}
#endif
4377 4378 4379 4380 4381 4382 4383 4384

#ifndef TARGET_ARM
GICCapabilityList *qmp_query_gic_capabilities(Error **errp)
{
    error_setg(errp, QERR_FEATURE_DISABLED, "query-gic-capabilities");
    return NULL;
}
#endif
I
Igor Mammedov 已提交
4385 4386 4387 4388 4389 4390 4391 4392 4393 4394 4395 4396 4397

HotpluggableCPUList *qmp_query_hotpluggable_cpus(Error **errp)
{
    MachineState *ms = MACHINE(qdev_get_machine());
    MachineClass *mc = MACHINE_GET_CLASS(ms);

    if (!mc->query_hotpluggable_cpus) {
        error_setg(errp, QERR_FEATURE_DISABLED, "query-hotpluggable-cpus");
        return NULL;
    }

    return mc->query_hotpluggable_cpus(ms);
}