vmdk.c 56.2 KB
Newer Older
B
bellard 已提交
1 2
/*
 * Block driver for the VMDK format
3
 *
B
bellard 已提交
4
 * Copyright (c) 2004 Fabrice Bellard
5
 * Copyright (c) 2005 Filip Navara
6
 *
B
bellard 已提交
7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24
 * Permission is hereby granted, free of charge, to any person obtaining a copy
 * of this software and associated documentation files (the "Software"), to deal
 * in the Software without restriction, including without limitation the rights
 * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
 * copies of the Software, and to permit persons to whom the Software is
 * furnished to do so, subject to the following conditions:
 *
 * The above copyright notice and this permission notice shall be included in
 * all copies or substantial portions of the Software.
 *
 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL
 * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
 * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
 * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
 * THE SOFTWARE.
 */
25

P
pbrook 已提交
26
#include "qemu-common.h"
27
#include "block/block_int.h"
28
#include "qemu/module.h"
29
#include "migration/migration.h"
S
Stefan Weil 已提交
30
#include <zlib.h>
B
bellard 已提交
31 32 33

#define VMDK3_MAGIC (('C' << 24) | ('O' << 16) | ('W' << 8) | 'D')
#define VMDK4_MAGIC (('K' << 24) | ('D' << 16) | ('M' << 8) | 'V')
F
Fam Zheng 已提交
34
#define VMDK4_COMPRESSION_DEFLATE 1
F
Fam Zheng 已提交
35
#define VMDK4_FLAG_NL_DETECT (1 << 0)
36
#define VMDK4_FLAG_RGD (1 << 1)
37 38
/* Zeroed-grain enable bit */
#define VMDK4_FLAG_ZERO_GRAIN   (1 << 2)
F
Fam Zheng 已提交
39 40
#define VMDK4_FLAG_COMPRESS (1 << 16)
#define VMDK4_FLAG_MARKER (1 << 17)
41
#define VMDK4_GD_AT_END 0xffffffffffffffffULL
B
bellard 已提交
42

43
#define VMDK_GTE_ZEROED 0x1
F
Fam Zheng 已提交
44 45 46 47 48 49 50 51

/* VMDK internal error codes */
#define VMDK_OK      0
#define VMDK_ERROR   (-1)
/* Cluster not allocated */
#define VMDK_UNALLOC (-2)
#define VMDK_ZEROED  (-3)

52 53
#define BLOCK_OPT_ZEROED_GRAIN "zeroed_grain"

B
bellard 已提交
54 55 56 57 58 59 60 61 62 63 64
typedef struct {
    uint32_t version;
    uint32_t flags;
    uint32_t disk_sectors;
    uint32_t granularity;
    uint32_t l1dir_offset;
    uint32_t l1dir_size;
    uint32_t file_sectors;
    uint32_t cylinders;
    uint32_t heads;
    uint32_t sectors_per_track;
65
} QEMU_PACKED VMDK3Header;
B
bellard 已提交
66 67 68 69

typedef struct {
    uint32_t version;
    uint32_t flags;
70 71 72 73
    uint64_t capacity;
    uint64_t granularity;
    uint64_t desc_offset;
    uint64_t desc_size;
74 75
    /* Number of GrainTableEntries per GrainTable */
    uint32_t num_gtes_per_gt;
76 77 78
    uint64_t rgd_offset;
    uint64_t gd_offset;
    uint64_t grain_offset;
B
bellard 已提交
79 80
    char filler[1];
    char check_bytes[4];
F
Fam Zheng 已提交
81
    uint16_t compressAlgorithm;
82
} QEMU_PACKED VMDK4Header;
B
bellard 已提交
83 84 85

#define L2_CACHE_SIZE 16

F
Fam Zheng 已提交
86 87 88
typedef struct VmdkExtent {
    BlockDriverState *file;
    bool flat;
F
Fam Zheng 已提交
89 90
    bool compressed;
    bool has_marker;
91 92
    bool has_zero_grain;
    int version;
F
Fam Zheng 已提交
93 94
    int64_t sectors;
    int64_t end_sector;
95
    int64_t flat_start_offset;
B
bellard 已提交
96
    int64_t l1_table_offset;
97
    int64_t l1_backup_table_offset;
B
bellard 已提交
98
    uint32_t *l1_table;
99
    uint32_t *l1_backup_table;
B
bellard 已提交
100 101 102 103 104 105 106 107
    unsigned int l1_size;
    uint32_t l1_entry_sectors;

    unsigned int l2_size;
    uint32_t *l2_cache;
    uint32_t l2_cache_offsets[L2_CACHE_SIZE];
    uint32_t l2_cache_counts[L2_CACHE_SIZE];

108
    int64_t cluster_sectors;
F
Fam Zheng 已提交
109 110 111
} VmdkExtent;

typedef struct BDRVVmdkState {
112
    CoMutex lock;
113
    uint64_t desc_offset;
114
    bool cid_updated;
115
    bool cid_checked;
116
    uint32_t parent_cid;
F
Fam Zheng 已提交
117 118 119
    int num_extents;
    /* Extent array with num_extents entries, ascend ordered by address */
    VmdkExtent *extents;
K
Kevin Wolf 已提交
120
    Error *migration_blocker;
B
bellard 已提交
121 122
} BDRVVmdkState;

123 124 125 126 127 128
typedef struct VmdkMetaData {
    uint32_t offset;
    unsigned int l1_index;
    unsigned int l2_index;
    unsigned int l2_offset;
    int valid;
F
Fam Zheng 已提交
129
    uint32_t *l2_cache_entry;
130 131
} VmdkMetaData;

F
Fam Zheng 已提交
132 133 134 135
typedef struct VmdkGrainMarker {
    uint64_t lba;
    uint32_t size;
    uint8_t  data[0];
136
} QEMU_PACKED VmdkGrainMarker;
F
Fam Zheng 已提交
137

138 139 140 141 142 143 144
enum {
    MARKER_END_OF_STREAM    = 0,
    MARKER_GRAIN_TABLE      = 1,
    MARKER_GRAIN_DIRECTORY  = 2,
    MARKER_FOOTER           = 3,
};

B
bellard 已提交
145 146 147 148
static int vmdk_probe(const uint8_t *buf, int buf_size, const char *filename)
{
    uint32_t magic;

F
Fam Zheng 已提交
149
    if (buf_size < 4) {
B
bellard 已提交
150
        return 0;
F
Fam Zheng 已提交
151
    }
B
bellard 已提交
152 153
    magic = be32_to_cpu(*(uint32_t *)buf);
    if (magic == VMDK3_MAGIC ||
154
        magic == VMDK4_MAGIC) {
B
bellard 已提交
155
        return 100;
156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196
    } else {
        const char *p = (const char *)buf;
        const char *end = p + buf_size;
        while (p < end) {
            if (*p == '#') {
                /* skip comment line */
                while (p < end && *p != '\n') {
                    p++;
                }
                p++;
                continue;
            }
            if (*p == ' ') {
                while (p < end && *p == ' ') {
                    p++;
                }
                /* skip '\r' if windows line endings used. */
                if (p < end && *p == '\r') {
                    p++;
                }
                /* only accept blank lines before 'version=' line */
                if (p == end || *p != '\n') {
                    return 0;
                }
                p++;
                continue;
            }
            if (end - p >= strlen("version=X\n")) {
                if (strncmp("version=1\n", p, strlen("version=1\n")) == 0 ||
                    strncmp("version=2\n", p, strlen("version=2\n")) == 0) {
                    return 100;
                }
            }
            if (end - p >= strlen("version=X\r\n")) {
                if (strncmp("version=1\r\n", p, strlen("version=1\r\n")) == 0 ||
                    strncmp("version=2\r\n", p, strlen("version=2\r\n")) == 0) {
                    return 100;
                }
            }
            return 0;
        }
B
bellard 已提交
197
        return 0;
198
    }
B
bellard 已提交
199 200
}

201
#define SECTOR_SIZE 512
F
Fam Zheng 已提交
202 203 204
#define DESC_SIZE (20 * SECTOR_SIZE)    /* 20 sectors of 512 bytes each */
#define BUF_SIZE 4096
#define HEADER_SIZE 512                 /* first sector of 512 bytes */
205

F
Fam Zheng 已提交
206 207 208 209
static void vmdk_free_extents(BlockDriverState *bs)
{
    int i;
    BDRVVmdkState *s = bs->opaque;
F
Fam Zheng 已提交
210
    VmdkExtent *e;
F
Fam Zheng 已提交
211 212

    for (i = 0; i < s->num_extents; i++) {
F
Fam Zheng 已提交
213 214 215 216 217
        e = &s->extents[i];
        g_free(e->l1_table);
        g_free(e->l2_cache);
        g_free(e->l1_backup_table);
        if (e->file != bs->file) {
F
Fam Zheng 已提交
218
            bdrv_unref(e->file);
F
Fam Zheng 已提交
219
        }
F
Fam Zheng 已提交
220
    }
221
    g_free(s->extents);
F
Fam Zheng 已提交
222 223
}

224 225 226 227 228 229 230 231 232 233 234
static void vmdk_free_last_extent(BlockDriverState *bs)
{
    BDRVVmdkState *s = bs->opaque;

    if (s->num_extents == 0) {
        return;
    }
    s->num_extents--;
    s->extents = g_realloc(s->extents, s->num_extents * sizeof(VmdkExtent));
}

235
static uint32_t vmdk_read_cid(BlockDriverState *bs, int parent)
B
bellard 已提交
236
{
237
    char desc[DESC_SIZE];
238
    uint32_t cid = 0xffffffff;
239
    const char *p_name, *cid_str;
240
    size_t cid_str_size;
241
    BDRVVmdkState *s = bs->opaque;
K
Kevin Wolf 已提交
242
    int ret;
243

K
Kevin Wolf 已提交
244 245
    ret = bdrv_pread(bs->file, s->desc_offset, desc, DESC_SIZE);
    if (ret < 0) {
246
        return 0;
247
    }
248 249 250 251 252 253 254 255 256

    if (parent) {
        cid_str = "parentCID";
        cid_str_size = sizeof("parentCID");
    } else {
        cid_str = "CID";
        cid_str_size = sizeof("CID");
    }

K
Kevin Wolf 已提交
257
    desc[DESC_SIZE - 1] = '\0';
F
Fam Zheng 已提交
258 259
    p_name = strstr(desc, cid_str);
    if (p_name != NULL) {
260
        p_name += cid_str_size;
F
Fam Zheng 已提交
261
        sscanf(p_name, "%x", &cid);
262 263 264 265 266 267 268 269 270
    }

    return cid;
}

static int vmdk_write_cid(BlockDriverState *bs, uint32_t cid)
{
    char desc[DESC_SIZE], tmp_desc[DESC_SIZE];
    char *p_name, *tmp_str;
271
    BDRVVmdkState *s = bs->opaque;
K
Kevin Wolf 已提交
272
    int ret;
273

K
Kevin Wolf 已提交
274 275 276
    ret = bdrv_pread(bs->file, s->desc_offset, desc, DESC_SIZE);
    if (ret < 0) {
        return ret;
277
    }
278

K
Kevin Wolf 已提交
279
    desc[DESC_SIZE - 1] = '\0';
F
Fam Zheng 已提交
280
    tmp_str = strstr(desc, "parentCID");
K
Kevin Wolf 已提交
281 282 283 284
    if (tmp_str == NULL) {
        return -EINVAL;
    }

B
blueswir1 已提交
285
    pstrcpy(tmp_desc, sizeof(tmp_desc), tmp_str);
F
Fam Zheng 已提交
286 287
    p_name = strstr(desc, "CID");
    if (p_name != NULL) {
288
        p_name += sizeof("CID");
B
blueswir1 已提交
289 290
        snprintf(p_name, sizeof(desc) - (p_name - desc), "%x\n", cid);
        pstrcat(desc, sizeof(desc), tmp_desc);
291 292
    }

K
Kevin Wolf 已提交
293 294 295
    ret = bdrv_pwrite_sync(bs->file, s->desc_offset, desc, DESC_SIZE);
    if (ret < 0) {
        return ret;
296
    }
K
Kevin Wolf 已提交
297

298 299 300 301 302 303
    return 0;
}

static int vmdk_is_cid_valid(BlockDriverState *bs)
{
    BDRVVmdkState *s = bs->opaque;
K
Kevin Wolf 已提交
304
    BlockDriverState *p_bs = bs->backing_hd;
305 306
    uint32_t cur_pcid;

307
    if (!s->cid_checked && p_bs) {
F
Fam Zheng 已提交
308 309 310
        cur_pcid = vmdk_read_cid(p_bs, 0);
        if (s->parent_cid != cur_pcid) {
            /* CID not valid */
311
            return 0;
F
Fam Zheng 已提交
312
        }
313
    }
314
    s->cid_checked = true;
F
Fam Zheng 已提交
315
    /* CID valid */
316 317 318
    return 1;
}

J
Jeff Cody 已提交
319 320 321 322 323 324 325 326 327 328 329 330 331
/* Queue extents, if any, for reopen() */
static int vmdk_reopen_prepare(BDRVReopenState *state,
                               BlockReopenQueue *queue, Error **errp)
{
    BDRVVmdkState *s;
    int ret = -1;
    int i;
    VmdkExtent *e;

    assert(state != NULL);
    assert(state->bs != NULL);

    if (queue == NULL) {
F
Fam Zheng 已提交
332
        error_setg(errp, "No reopen queue for VMDK extents");
J
Jeff Cody 已提交
333 334 335 336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351
        goto exit;
    }

    s = state->bs->opaque;

    assert(s != NULL);

    for (i = 0; i < s->num_extents; i++) {
        e = &s->extents[i];
        if (e->file != state->bs->file) {
            bdrv_reopen_queue(queue, e->file, state->flags);
        }
    }
    ret = 0;

exit:
    return ret;
}

352
static int vmdk_parent_open(BlockDriverState *bs)
353
{
354
    char *p_name;
355
    char desc[DESC_SIZE + 1];
356
    BDRVVmdkState *s = bs->opaque;
357
    int ret;
358

359
    desc[DESC_SIZE] = '\0';
360 361 362
    ret = bdrv_pread(bs->file, s->desc_offset, desc, DESC_SIZE);
    if (ret < 0) {
        return ret;
363
    }
364

F
Fam Zheng 已提交
365 366
    p_name = strstr(desc, "parentFileNameHint");
    if (p_name != NULL) {
367 368 369
        char *end_name;

        p_name += sizeof("parentFileNameHint") + 1;
F
Fam Zheng 已提交
370 371
        end_name = strchr(p_name, '\"');
        if (end_name == NULL) {
372
            return -EINVAL;
F
Fam Zheng 已提交
373 374
        }
        if ((end_name - p_name) > sizeof(bs->backing_file) - 1) {
375
            return -EINVAL;
F
Fam Zheng 已提交
376
        }
377

K
Kevin Wolf 已提交
378
        pstrcpy(bs->backing_file, end_name - p_name + 1, p_name);
379
    }
380 381 382 383

    return 0;
}

F
Fam Zheng 已提交
384 385
/* Create and append extent to the extent array. Return the added VmdkExtent
 * address. return NULL if allocation failed. */
386
static int vmdk_add_extent(BlockDriverState *bs,
F
Fam Zheng 已提交
387 388 389
                           BlockDriverState *file, bool flat, int64_t sectors,
                           int64_t l1_offset, int64_t l1_backup_offset,
                           uint32_t l1_size,
390
                           int l2_size, uint64_t cluster_sectors,
F
Fam Zheng 已提交
391 392
                           VmdkExtent **new_extent,
                           Error **errp)
F
Fam Zheng 已提交
393 394 395 396
{
    VmdkExtent *extent;
    BDRVVmdkState *s = bs->opaque;

397 398
    if (cluster_sectors > 0x200000) {
        /* 0x200000 * 512Bytes = 1GB for one cluster is unrealistic */
F
Fam Zheng 已提交
399 400
        error_setg(errp, "Invalid granularity, image may be corrupt");
        return -EFBIG;
401
    }
402 403 404 405 406
    if (l1_size > 512 * 1024 * 1024) {
        /* Although with big capacity and small l1_entry_sectors, we can get a
         * big l1_size, we don't want unbounded value to allocate the table.
         * Limit it to 512M, which is 16PB for default cluster and L2 table
         * size */
F
Fam Zheng 已提交
407
        error_setg(errp, "L1 size too big");
408 409
        return -EFBIG;
    }
410

411
    s->extents = g_realloc(s->extents,
F
Fam Zheng 已提交
412 413 414 415 416 417 418 419 420 421 422 423 424
                              (s->num_extents + 1) * sizeof(VmdkExtent));
    extent = &s->extents[s->num_extents];
    s->num_extents++;

    memset(extent, 0, sizeof(VmdkExtent));
    extent->file = file;
    extent->flat = flat;
    extent->sectors = sectors;
    extent->l1_table_offset = l1_offset;
    extent->l1_backup_table_offset = l1_backup_offset;
    extent->l1_size = l1_size;
    extent->l1_entry_sectors = l2_size * cluster_sectors;
    extent->l2_size = l2_size;
425
    extent->cluster_sectors = flat ? sectors : cluster_sectors;
F
Fam Zheng 已提交
426 427 428 429 430 431 432

    if (s->num_extents > 1) {
        extent->end_sector = (*(extent - 1)).end_sector + extent->sectors;
    } else {
        extent->end_sector = extent->sectors;
    }
    bs->total_sectors = extent->end_sector;
433 434 435 436
    if (new_extent) {
        *new_extent = extent;
    }
    return 0;
F
Fam Zheng 已提交
437 438
}

F
Fam Zheng 已提交
439 440
static int vmdk_init_tables(BlockDriverState *bs, VmdkExtent *extent,
                            Error **errp)
441
{
442 443
    int ret;
    int l1_size, i;
444

B
bellard 已提交
445
    /* read the L1 table */
F
Fam Zheng 已提交
446
    l1_size = extent->l1_size * sizeof(uint32_t);
447
    extent->l1_table = g_malloc(l1_size);
448
    ret = bdrv_pread(extent->file,
F
Fam Zheng 已提交
449 450 451
                     extent->l1_table_offset,
                     extent->l1_table,
                     l1_size);
452
    if (ret < 0) {
F
Fam Zheng 已提交
453 454 455
        error_setg_errno(errp, -ret,
                         "Could not read l1 table from extent '%s'",
                         extent->file->filename);
456
        goto fail_l1;
F
Fam Zheng 已提交
457 458 459
    }
    for (i = 0; i < extent->l1_size; i++) {
        le32_to_cpus(&extent->l1_table[i]);
B
bellard 已提交
460 461
    }

F
Fam Zheng 已提交
462
    if (extent->l1_backup_table_offset) {
463
        extent->l1_backup_table = g_malloc(l1_size);
464
        ret = bdrv_pread(extent->file,
F
Fam Zheng 已提交
465 466 467
                         extent->l1_backup_table_offset,
                         extent->l1_backup_table,
                         l1_size);
468
        if (ret < 0) {
F
Fam Zheng 已提交
469 470 471
            error_setg_errno(errp, -ret,
                             "Could not read l1 backup table from extent '%s'",
                             extent->file->filename);
472
            goto fail_l1b;
F
Fam Zheng 已提交
473 474 475
        }
        for (i = 0; i < extent->l1_size; i++) {
            le32_to_cpus(&extent->l1_backup_table[i]);
476 477 478
        }
    }

F
Fam Zheng 已提交
479
    extent->l2_cache =
480
        g_malloc(extent->l2_size * L2_CACHE_SIZE * sizeof(uint32_t));
B
bellard 已提交
481
    return 0;
482
 fail_l1b:
483
    g_free(extent->l1_backup_table);
484
 fail_l1:
485
    g_free(extent->l1_table);
486 487 488
    return ret;
}

F
Fam Zheng 已提交
489 490
static int vmdk_open_vmfs_sparse(BlockDriverState *bs,
                                 BlockDriverState *file,
F
Fam Zheng 已提交
491
                                 int flags, Error **errp)
492 493 494 495 496 497
{
    int ret;
    uint32_t magic;
    VMDK3Header header;
    VmdkExtent *extent;

498
    ret = bdrv_pread(file, sizeof(magic), &header, sizeof(header));
499
    if (ret < 0) {
F
Fam Zheng 已提交
500 501 502
        error_setg_errno(errp, -ret,
                         "Could not read header from file '%s'",
                         file->filename);
503
        return ret;
504
    }
505 506 507 508 509 510 511
    ret = vmdk_add_extent(bs, file, false,
                          le32_to_cpu(header.disk_sectors),
                          le32_to_cpu(header.l1dir_offset) << 9,
                          0,
                          le32_to_cpu(header.l1dir_size),
                          4096,
                          le32_to_cpu(header.granularity),
F
Fam Zheng 已提交
512 513
                          &extent,
                          errp);
514 515 516
    if (ret < 0) {
        return ret;
    }
F
Fam Zheng 已提交
517
    ret = vmdk_init_tables(bs, extent, errp);
518
    if (ret) {
519 520
        /* free extent allocated by vmdk_add_extent */
        vmdk_free_last_extent(bs);
521 522 523 524
    }
    return ret;
}

F
Fam Zheng 已提交
525
static int vmdk_open_desc_file(BlockDriverState *bs, int flags,
F
Fam Zheng 已提交
526
                               uint64_t desc_offset, Error **errp);
F
Fam Zheng 已提交
527

528 529
static int vmdk_open_vmdk4(BlockDriverState *bs,
                           BlockDriverState *file,
F
Fam Zheng 已提交
530
                           int flags, Error **errp)
531 532 533 534 535 536
{
    int ret;
    uint32_t magic;
    uint32_t l1_size, l1_entry_sectors;
    VMDK4Header header;
    VmdkExtent *extent;
537
    int64_t l1_backup_offset = 0;
538

539
    ret = bdrv_pread(file, sizeof(magic), &header, sizeof(header));
540
    if (ret < 0) {
F
Fam Zheng 已提交
541 542 543
        error_setg_errno(errp, -ret,
                         "Could not read header from file '%s'",
                         file->filename);
544
    }
545
    if (header.capacity == 0) {
546
        uint64_t desc_offset = le64_to_cpu(header.desc_offset);
547
        if (desc_offset) {
F
Fam Zheng 已提交
548
            return vmdk_open_desc_file(bs, flags, desc_offset << 9, errp);
549
        }
F
Fam Zheng 已提交
550
    }
551 552 553 554 555 556 557 558 559 560 561 562 563 564 565 566 567 568 569 570 571 572 573 574 575 576 577 578 579 580 581 582 583 584 585 586 587 588 589 590 591 592 593 594 595 596 597 598

    if (le64_to_cpu(header.gd_offset) == VMDK4_GD_AT_END) {
        /*
         * The footer takes precedence over the header, so read it in. The
         * footer starts at offset -1024 from the end: One sector for the
         * footer, and another one for the end-of-stream marker.
         */
        struct {
            struct {
                uint64_t val;
                uint32_t size;
                uint32_t type;
                uint8_t pad[512 - 16];
            } QEMU_PACKED footer_marker;

            uint32_t magic;
            VMDK4Header header;
            uint8_t pad[512 - 4 - sizeof(VMDK4Header)];

            struct {
                uint64_t val;
                uint32_t size;
                uint32_t type;
                uint8_t pad[512 - 16];
            } QEMU_PACKED eos_marker;
        } QEMU_PACKED footer;

        ret = bdrv_pread(file,
            bs->file->total_sectors * 512 - 1536,
            &footer, sizeof(footer));
        if (ret < 0) {
            return ret;
        }

        /* Some sanity checks for the footer */
        if (be32_to_cpu(footer.magic) != VMDK4_MAGIC ||
            le32_to_cpu(footer.footer_marker.size) != 0  ||
            le32_to_cpu(footer.footer_marker.type) != MARKER_FOOTER ||
            le64_to_cpu(footer.eos_marker.val) != 0  ||
            le32_to_cpu(footer.eos_marker.size) != 0  ||
            le32_to_cpu(footer.eos_marker.type) != MARKER_END_OF_STREAM)
        {
            return -EINVAL;
        }

        header = footer.header;
    }

599 600 601 602 603 604 605 606 607
    if (le32_to_cpu(header.version) >= 3) {
        char buf[64];
        snprintf(buf, sizeof(buf), "VMDK version %d",
                 le32_to_cpu(header.version));
        qerror_report(QERR_UNKNOWN_BLOCK_FORMAT_FEATURE,
                bs->device_name, "vmdk", buf);
        return -ENOTSUP;
    }

608
    if (le32_to_cpu(header.num_gtes_per_gt) > 512) {
609 610 611 612
        error_report("L2 table size too big");
        return -EINVAL;
    }

613
    l1_entry_sectors = le32_to_cpu(header.num_gtes_per_gt)
614
                        * le64_to_cpu(header.granularity);
615
    if (l1_entry_sectors == 0) {
616 617
        return -EINVAL;
    }
618 619
    l1_size = (le64_to_cpu(header.capacity) + l1_entry_sectors - 1)
                / l1_entry_sectors;
620 621 622
    if (le32_to_cpu(header.flags) & VMDK4_FLAG_RGD) {
        l1_backup_offset = le64_to_cpu(header.rgd_offset) << 9;
    }
623
    ret = vmdk_add_extent(bs, file, false,
624 625
                          le64_to_cpu(header.capacity),
                          le64_to_cpu(header.gd_offset) << 9,
626
                          l1_backup_offset,
627
                          l1_size,
628
                          le32_to_cpu(header.num_gtes_per_gt),
629
                          le64_to_cpu(header.granularity),
F
Fam Zheng 已提交
630 631
                          &extent,
                          errp);
632 633 634
    if (ret < 0) {
        return ret;
    }
F
Fam Zheng 已提交
635 636 637
    extent->compressed =
        le16_to_cpu(header.compressAlgorithm) == VMDK4_COMPRESSION_DEFLATE;
    extent->has_marker = le32_to_cpu(header.flags) & VMDK4_FLAG_MARKER;
638 639
    extent->version = le32_to_cpu(header.version);
    extent->has_zero_grain = le32_to_cpu(header.flags) & VMDK4_FLAG_ZERO_GRAIN;
F
Fam Zheng 已提交
640
    ret = vmdk_init_tables(bs, extent, errp);
641
    if (ret) {
642 643
        /* free extent allocated by vmdk_add_extent */
        vmdk_free_last_extent(bs);
644 645 646 647
    }
    return ret;
}

648 649 650 651 652 653 654 655 656
/* find an option value out of descriptor file */
static int vmdk_parse_description(const char *desc, const char *opt_name,
        char *buf, int buf_size)
{
    char *opt_pos, *opt_end;
    const char *end = desc + strlen(desc);

    opt_pos = strstr(desc, opt_name);
    if (!opt_pos) {
F
Fam Zheng 已提交
657
        return VMDK_ERROR;
658 659 660 661
    }
    /* Skip "=\"" following opt_name */
    opt_pos += strlen(opt_name) + 2;
    if (opt_pos >= end) {
F
Fam Zheng 已提交
662
        return VMDK_ERROR;
663 664 665 666 667 668
    }
    opt_end = opt_pos;
    while (opt_end < end && *opt_end != '"') {
        opt_end++;
    }
    if (opt_end == end || buf_size < opt_end - opt_pos + 1) {
F
Fam Zheng 已提交
669
        return VMDK_ERROR;
670 671
    }
    pstrcpy(buf, opt_end - opt_pos + 1, opt_pos);
F
Fam Zheng 已提交
672
    return VMDK_OK;
673 674
}

675 676 677
/* Open an extent file and append to bs array */
static int vmdk_open_sparse(BlockDriverState *bs,
                            BlockDriverState *file,
F
Fam Zheng 已提交
678
                            int flags, Error **errp)
679 680 681 682 683 684 685 686 687 688
{
    uint32_t magic;

    if (bdrv_pread(file, 0, &magic, sizeof(magic)) != sizeof(magic)) {
        return -EIO;
    }

    magic = be32_to_cpu(magic);
    switch (magic) {
        case VMDK3_MAGIC:
F
Fam Zheng 已提交
689
            return vmdk_open_vmfs_sparse(bs, file, flags, errp);
690 691
            break;
        case VMDK4_MAGIC:
F
Fam Zheng 已提交
692
            return vmdk_open_vmdk4(bs, file, flags, errp);
693 694
            break;
        default:
695
            return -EMEDIUMTYPE;
696 697 698 699
            break;
    }
}

700
static int vmdk_parse_extents(const char *desc, BlockDriverState *bs,
F
Fam Zheng 已提交
701
                              const char *desc_file_path, Error **errp)
702 703 704 705 706 707 708 709
{
    int ret;
    char access[11];
    char type[11];
    char fname[512];
    const char *p = desc;
    int64_t sectors = 0;
    int64_t flat_offset;
710 711
    char extent_path[PATH_MAX];
    BlockDriverState *extent_file;
712 713 714 715 716 717 718 719

    while (*p) {
        /* parse extent line:
         * RW [size in sectors] FLAT "file-name.vmdk" OFFSET
         * or
         * RW [size in sectors] SPARSE "file-name.vmdk"
         */
        flat_offset = -1;
P
Philipp Hahn 已提交
720
        ret = sscanf(p, "%10s %" SCNd64 " %10s \"%511[^\n\r\"]\" %" SCNd64,
721 722 723 724 725
                access, &sectors, type, fname, &flat_offset);
        if (ret < 4 || strcmp(access, "RW")) {
            goto next_line;
        } else if (!strcmp(type, "FLAT")) {
            if (ret != 5 || flat_offset < 0) {
F
Fam Zheng 已提交
726
                error_setg(errp, "Invalid extent lines: \n%s", p);
727 728
                return -EINVAL;
            }
F
Fam Zheng 已提交
729 730
        } else if (!strcmp(type, "VMFS")) {
            flat_offset = 0;
731
        } else if (ret != 4) {
F
Fam Zheng 已提交
732
            error_setg(errp, "Invalid extent lines: \n%s", p);
733 734 735 736
            return -EINVAL;
        }

        if (sectors <= 0 ||
F
Fam Zheng 已提交
737
            (strcmp(type, "FLAT") && strcmp(type, "SPARSE") &&
P
Paolo Bonzini 已提交
738
             strcmp(type, "VMFS") && strcmp(type, "VMFSSPARSE")) ||
739 740 741 742
            (strcmp(access, "RW"))) {
            goto next_line;
        }

743 744
        path_combine(extent_path, sizeof(extent_path),
                desc_file_path, fname);
745
        ret = bdrv_file_open(&extent_file, extent_path, NULL, bs->open_flags,
F
Fam Zheng 已提交
746
                             errp);
747 748 749 750
        if (ret) {
            return ret;
        }

751
        /* save to extents array */
P
Paolo Bonzini 已提交
752
        if (!strcmp(type, "FLAT") || !strcmp(type, "VMFS")) {
753 754 755
            /* FLAT extent */
            VmdkExtent *extent;

756
            ret = vmdk_add_extent(bs, extent_file, true, sectors,
F
Fam Zheng 已提交
757
                            0, 0, 0, 0, 0, &extent, errp);
758 759 760
            if (ret < 0) {
                return ret;
            }
F
Fam Zheng 已提交
761
            extent->flat_start_offset = flat_offset << 9;
F
Fam Zheng 已提交
762 763
        } else if (!strcmp(type, "SPARSE") || !strcmp(type, "VMFSSPARSE")) {
            /* SPARSE extent and VMFSSPARSE extent are both "COWD" sparse file*/
F
Fam Zheng 已提交
764
            ret = vmdk_open_sparse(bs, extent_file, bs->open_flags, errp);
765
            if (ret) {
F
Fam Zheng 已提交
766
                bdrv_unref(extent_file);
767 768
                return ret;
            }
769
        } else {
F
Fam Zheng 已提交
770
            error_setg(errp, "Unsupported extent type '%s'", type);
771 772 773 774
            return -ENOTSUP;
        }
next_line:
        /* move to next line */
F
Fam Zheng 已提交
775 776 777 778 779
        while (*p) {
            if (*p == '\n') {
                p++;
                break;
            }
780 781 782 783 784 785
            p++;
        }
    }
    return 0;
}

F
Fam Zheng 已提交
786
static int vmdk_open_desc_file(BlockDriverState *bs, int flags,
F
Fam Zheng 已提交
787
                               uint64_t desc_offset, Error **errp)
788 789
{
    int ret;
790
    char *buf = NULL;
791 792
    char ct[128];
    BDRVVmdkState *s = bs->opaque;
793
    int64_t size;
794

795 796 797 798 799 800 801 802 803
    size = bdrv_getlength(bs->file);
    if (size < 0) {
        return -EINVAL;
    }

    size = MIN(size, 1 << 20);  /* avoid unbounded allocation */
    buf = g_malloc0(size + 1);

    ret = bdrv_pread(bs->file, desc_offset, buf, size);
804
    if (ret < 0) {
805
        goto exit;
806 807
    }
    if (vmdk_parse_description(buf, "createType", ct, sizeof(ct))) {
808 809
        ret = -EMEDIUMTYPE;
        goto exit;
810
    }
F
Fam Zheng 已提交
811
    if (strcmp(ct, "monolithicFlat") &&
P
Paolo Bonzini 已提交
812
        strcmp(ct, "vmfs") &&
F
Fam Zheng 已提交
813
        strcmp(ct, "vmfsSparse") &&
814
        strcmp(ct, "twoGbMaxExtentSparse") &&
F
Fam Zheng 已提交
815
        strcmp(ct, "twoGbMaxExtentFlat")) {
F
Fam Zheng 已提交
816
        error_setg(errp, "Unsupported image type '%s'", ct);
817 818
        ret = -ENOTSUP;
        goto exit;
819 820
    }
    s->desc_offset = 0;
F
Fam Zheng 已提交
821
    ret = vmdk_parse_extents(buf, bs, bs->file->filename, errp);
822 823 824
exit:
    g_free(buf);
    return ret;
825 826
}

M
Max Reitz 已提交
827 828
static int vmdk_open(BlockDriverState *bs, QDict *options, int flags,
                     Error **errp)
829
{
830 831
    int ret;
    BDRVVmdkState *s = bs->opaque;
832

F
Fam Zheng 已提交
833
    if (vmdk_open_sparse(bs, bs->file, flags, errp) == 0) {
834
        s->desc_offset = 0x200;
P
Paolo Bonzini 已提交
835
    } else {
F
Fam Zheng 已提交
836
        ret = vmdk_open_desc_file(bs, flags, 0, errp);
837
        if (ret) {
P
Paolo Bonzini 已提交
838
            goto fail;
839
        }
840
    }
P
Paolo Bonzini 已提交
841 842 843 844 845 846
    /* try to open parent images, if exist */
    ret = vmdk_parent_open(bs);
    if (ret) {
        goto fail;
    }
    s->parent_cid = vmdk_read_cid(bs, 1);
847
    qemu_co_mutex_init(&s->lock);
K
Kevin Wolf 已提交
848 849 850 851 852 853 854 855

    /* Disable migration when VMDK images are used */
    error_set(&s->migration_blocker,
              QERR_BLOCK_FORMAT_FEATURE_NOT_SUPPORTED,
              "vmdk", bs->device_name, "live migration");
    migrate_add_blocker(s->migration_blocker);

    return 0;
P
Paolo Bonzini 已提交
856 857 858 859

fail:
    vmdk_free_extents(bs);
    return ret;
B
bellard 已提交
860 861
}

F
Fam Zheng 已提交
862 863 864 865 866
static int get_whole_cluster(BlockDriverState *bs,
                VmdkExtent *extent,
                uint64_t cluster_offset,
                uint64_t offset,
                bool allocate)
867
{
868 869
    int ret = VMDK_OK;
    uint8_t *whole_grain = NULL;
870

871 872
    /* we will be here if it's first write on non-exist grain(cluster).
     * try to read from parent image, if exist */
K
Kevin Wolf 已提交
873
    if (bs->backing_hd) {
874 875
        whole_grain =
            qemu_blockalign(bs, extent->cluster_sectors << BDRV_SECTOR_BITS);
F
Fam Zheng 已提交
876
        if (!vmdk_is_cid_valid(bs)) {
877 878
            ret = VMDK_ERROR;
            goto exit;
F
Fam Zheng 已提交
879
        }
880

881 882
        /* floor offset to cluster */
        offset -= offset % (extent->cluster_sectors * 512);
K
Kevin Wolf 已提交
883
        ret = bdrv_read(bs->backing_hd, offset >> 9, whole_grain,
F
Fam Zheng 已提交
884
                extent->cluster_sectors);
K
Kevin Wolf 已提交
885
        if (ret < 0) {
886 887
            ret = VMDK_ERROR;
            goto exit;
K
Kevin Wolf 已提交
888
        }
889

890
        /* Write grain only into the active image */
F
Fam Zheng 已提交
891 892
        ret = bdrv_write(extent->file, cluster_offset, whole_grain,
                extent->cluster_sectors);
K
Kevin Wolf 已提交
893
        if (ret < 0) {
894 895
            ret = VMDK_ERROR;
            goto exit;
896 897
        }
    }
898 899 900
exit:
    qemu_vfree(whole_grain);
    return ret;
901 902
}

F
Fam Zheng 已提交
903
static int vmdk_L2update(VmdkExtent *extent, VmdkMetaData *m_data)
904
{
905 906 907
    uint32_t offset;
    QEMU_BUILD_BUG_ON(sizeof(offset) != sizeof(m_data->offset));
    offset = cpu_to_le32(m_data->offset);
908
    /* update L2 table */
F
Fam Zheng 已提交
909 910 911 912
    if (bdrv_pwrite_sync(
                extent->file,
                ((int64_t)m_data->l2_offset * 512)
                    + (m_data->l2_index * sizeof(m_data->offset)),
913
                &offset, sizeof(offset)) < 0) {
F
Fam Zheng 已提交
914
        return VMDK_ERROR;
F
Fam Zheng 已提交
915
    }
916
    /* update backup L2 table */
F
Fam Zheng 已提交
917 918 919 920 921 922
    if (extent->l1_backup_table_offset != 0) {
        m_data->l2_offset = extent->l1_backup_table[m_data->l1_index];
        if (bdrv_pwrite_sync(
                    extent->file,
                    ((int64_t)m_data->l2_offset * 512)
                        + (m_data->l2_index * sizeof(m_data->offset)),
923
                    &offset, sizeof(offset)) < 0) {
F
Fam Zheng 已提交
924
            return VMDK_ERROR;
F
Fam Zheng 已提交
925
        }
926
    }
F
Fam Zheng 已提交
927 928 929
    if (m_data->l2_cache_entry) {
        *m_data->l2_cache_entry = offset;
    }
930

F
Fam Zheng 已提交
931
    return VMDK_OK;
932 933
}

934
static int get_cluster_offset(BlockDriverState *bs,
F
Fam Zheng 已提交
935 936
                                    VmdkExtent *extent,
                                    VmdkMetaData *m_data,
937 938 939
                                    uint64_t offset,
                                    int allocate,
                                    uint64_t *cluster_offset)
B
bellard 已提交
940 941 942
{
    unsigned int l1_index, l2_offset, l2_index;
    int min_index, i, j;
943
    uint32_t min_count, *l2_table;
944
    bool zeroed = false;
945

F
Fam Zheng 已提交
946
    if (m_data) {
947
        m_data->valid = 0;
F
Fam Zheng 已提交
948
    }
949
    if (extent->flat) {
950
        *cluster_offset = extent->flat_start_offset;
F
Fam Zheng 已提交
951
        return VMDK_OK;
952
    }
953

F
Fam Zheng 已提交
954
    offset -= (extent->end_sector - extent->sectors) * SECTOR_SIZE;
F
Fam Zheng 已提交
955 956
    l1_index = (offset >> 9) / extent->l1_entry_sectors;
    if (l1_index >= extent->l1_size) {
F
Fam Zheng 已提交
957
        return VMDK_ERROR;
F
Fam Zheng 已提交
958 959 960
    }
    l2_offset = extent->l1_table[l1_index];
    if (!l2_offset) {
F
Fam Zheng 已提交
961
        return VMDK_UNALLOC;
F
Fam Zheng 已提交
962
    }
963
    for (i = 0; i < L2_CACHE_SIZE; i++) {
F
Fam Zheng 已提交
964
        if (l2_offset == extent->l2_cache_offsets[i]) {
B
bellard 已提交
965
            /* increment the hit count */
F
Fam Zheng 已提交
966
            if (++extent->l2_cache_counts[i] == 0xffffffff) {
967
                for (j = 0; j < L2_CACHE_SIZE; j++) {
F
Fam Zheng 已提交
968
                    extent->l2_cache_counts[j] >>= 1;
B
bellard 已提交
969 970
                }
            }
F
Fam Zheng 已提交
971
            l2_table = extent->l2_cache + (i * extent->l2_size);
B
bellard 已提交
972 973 974 975 976 977
            goto found;
        }
    }
    /* not found: load a new entry in the least used one */
    min_index = 0;
    min_count = 0xffffffff;
978
    for (i = 0; i < L2_CACHE_SIZE; i++) {
F
Fam Zheng 已提交
979 980
        if (extent->l2_cache_counts[i] < min_count) {
            min_count = extent->l2_cache_counts[i];
B
bellard 已提交
981 982 983
            min_index = i;
        }
    }
F
Fam Zheng 已提交
984 985 986 987 988 989 990
    l2_table = extent->l2_cache + (min_index * extent->l2_size);
    if (bdrv_pread(
                extent->file,
                (int64_t)l2_offset * 512,
                l2_table,
                extent->l2_size * sizeof(uint32_t)
            ) != extent->l2_size * sizeof(uint32_t)) {
F
Fam Zheng 已提交
991
        return VMDK_ERROR;
F
Fam Zheng 已提交
992
    }
993

F
Fam Zheng 已提交
994 995
    extent->l2_cache_offsets[min_index] = l2_offset;
    extent->l2_cache_counts[min_index] = 1;
B
bellard 已提交
996
 found:
F
Fam Zheng 已提交
997
    l2_index = ((offset >> 9) / extent->cluster_sectors) % extent->l2_size;
998
    *cluster_offset = le32_to_cpu(l2_table[l2_index]);
999

F
Fam Zheng 已提交
1000 1001 1002 1003 1004 1005 1006 1007
    if (m_data) {
        m_data->valid = 1;
        m_data->l1_index = l1_index;
        m_data->l2_index = l2_index;
        m_data->offset = *cluster_offset;
        m_data->l2_offset = l2_offset;
        m_data->l2_cache_entry = &l2_table[l2_index];
    }
1008 1009 1010 1011 1012
    if (extent->has_zero_grain && *cluster_offset == VMDK_GTE_ZEROED) {
        zeroed = true;
    }

    if (!*cluster_offset || zeroed) {
1013
        if (!allocate) {
1014
            return zeroed ? VMDK_ZEROED : VMDK_UNALLOC;
1015
        }
1016

F
Fam Zheng 已提交
1017
        /* Avoid the L2 tables update for the images that have snapshots. */
1018
        *cluster_offset = bdrv_getlength(extent->file);
F
Fam Zheng 已提交
1019 1020 1021 1022 1023 1024
        if (!extent->compressed) {
            bdrv_truncate(
                extent->file,
                *cluster_offset + (extent->cluster_sectors << 9)
            );
        }
1025

1026
        *cluster_offset >>= 9;
1027
        l2_table[l2_index] = cpu_to_le32(*cluster_offset);
1028 1029 1030 1031 1032 1033

        /* First of all we write grain itself, to avoid race condition
         * that may to corrupt the image.
         * This problem may occur because of insufficient space on host disk
         * or inappropriate VM shutdown.
         */
F
Fam Zheng 已提交
1034
        if (get_whole_cluster(
F
Fam Zheng 已提交
1035
                bs, extent, *cluster_offset, offset, allocate) == -1) {
F
Fam Zheng 已提交
1036
            return VMDK_ERROR;
F
Fam Zheng 已提交
1037
        }
1038 1039

        if (m_data) {
1040
            m_data->offset = *cluster_offset;
1041
        }
1042
    }
1043
    *cluster_offset <<= 9;
F
Fam Zheng 已提交
1044
    return VMDK_OK;
B
bellard 已提交
1045 1046
}

F
Fam Zheng 已提交
1047 1048 1049 1050 1051 1052 1053 1054 1055 1056 1057 1058 1059 1060 1061 1062 1063
static VmdkExtent *find_extent(BDRVVmdkState *s,
                                int64_t sector_num, VmdkExtent *start_hint)
{
    VmdkExtent *extent = start_hint;

    if (!extent) {
        extent = &s->extents[0];
    }
    while (extent < &s->extents[s->num_extents]) {
        if (sector_num < extent->end_sector) {
            return extent;
        }
        extent++;
    }
    return NULL;
}

1064
static int64_t coroutine_fn vmdk_co_get_block_status(BlockDriverState *bs,
1065
        int64_t sector_num, int nb_sectors, int *pnum)
B
bellard 已提交
1066 1067
{
    BDRVVmdkState *s = bs->opaque;
F
Fam Zheng 已提交
1068 1069 1070 1071 1072 1073 1074 1075
    int64_t index_in_cluster, n, ret;
    uint64_t offset;
    VmdkExtent *extent;

    extent = find_extent(s, sector_num, NULL);
    if (!extent) {
        return 0;
    }
1076
    qemu_co_mutex_lock(&s->lock);
1077 1078
    ret = get_cluster_offset(bs, extent, NULL,
                            sector_num * 512, 0, &offset);
1079
    qemu_co_mutex_unlock(&s->lock);
1080

1081 1082 1083 1084 1085 1086 1087 1088 1089 1090 1091 1092 1093 1094 1095 1096 1097 1098
    switch (ret) {
    case VMDK_ERROR:
        ret = -EIO;
        break;
    case VMDK_UNALLOC:
        ret = 0;
        break;
    case VMDK_ZEROED:
        ret = BDRV_BLOCK_ZERO;
        break;
    case VMDK_OK:
        ret = BDRV_BLOCK_DATA;
        if (extent->file == bs->file) {
            ret |= BDRV_BLOCK_OFFSET_VALID | offset;
        }

        break;
    }
1099 1100 1101

    index_in_cluster = sector_num % extent->cluster_sectors;
    n = extent->cluster_sectors - index_in_cluster;
F
Fam Zheng 已提交
1102
    if (n > nb_sectors) {
B
bellard 已提交
1103
        n = nb_sectors;
F
Fam Zheng 已提交
1104
    }
B
bellard 已提交
1105
    *pnum = n;
F
Fam Zheng 已提交
1106
    return ret;
B
bellard 已提交
1107 1108
}

1109 1110 1111 1112 1113
static int vmdk_write_extent(VmdkExtent *extent, int64_t cluster_offset,
                            int64_t offset_in_cluster, const uint8_t *buf,
                            int nb_sectors, int64_t sector_num)
{
    int ret;
F
Fam Zheng 已提交
1114 1115
    VmdkGrainMarker *data = NULL;
    uLongf buf_len;
1116 1117 1118
    const uint8_t *write_buf = buf;
    int write_len = nb_sectors * 512;

F
Fam Zheng 已提交
1119 1120 1121 1122 1123 1124 1125 1126 1127 1128 1129 1130 1131 1132 1133 1134 1135
    if (extent->compressed) {
        if (!extent->has_marker) {
            ret = -EINVAL;
            goto out;
        }
        buf_len = (extent->cluster_sectors << 9) * 2;
        data = g_malloc(buf_len + sizeof(VmdkGrainMarker));
        if (compress(data->data, &buf_len, buf, nb_sectors << 9) != Z_OK ||
                buf_len == 0) {
            ret = -EINVAL;
            goto out;
        }
        data->lba = sector_num;
        data->size = buf_len;
        write_buf = (uint8_t *)data;
        write_len = buf_len + sizeof(VmdkGrainMarker);
    }
1136 1137 1138 1139 1140 1141 1142 1143 1144 1145
    ret = bdrv_pwrite(extent->file,
                        cluster_offset + offset_in_cluster,
                        write_buf,
                        write_len);
    if (ret != write_len) {
        ret = ret < 0 ? ret : -EIO;
        goto out;
    }
    ret = 0;
 out:
F
Fam Zheng 已提交
1146
    g_free(data);
1147 1148 1149 1150 1151 1152 1153 1154
    return ret;
}

static int vmdk_read_extent(VmdkExtent *extent, int64_t cluster_offset,
                            int64_t offset_in_cluster, uint8_t *buf,
                            int nb_sectors)
{
    int ret;
F
Fam Zheng 已提交
1155 1156 1157 1158 1159 1160 1161
    int cluster_bytes, buf_bytes;
    uint8_t *cluster_buf, *compressed_data;
    uint8_t *uncomp_buf;
    uint32_t data_len;
    VmdkGrainMarker *marker;
    uLongf buf_len;

1162

F
Fam Zheng 已提交
1163 1164 1165 1166 1167 1168 1169 1170 1171 1172 1173 1174 1175 1176 1177
    if (!extent->compressed) {
        ret = bdrv_pread(extent->file,
                          cluster_offset + offset_in_cluster,
                          buf, nb_sectors * 512);
        if (ret == nb_sectors * 512) {
            return 0;
        } else {
            return -EIO;
        }
    }
    cluster_bytes = extent->cluster_sectors * 512;
    /* Read two clusters in case GrainMarker + compressed data > one cluster */
    buf_bytes = cluster_bytes * 2;
    cluster_buf = g_malloc(buf_bytes);
    uncomp_buf = g_malloc(cluster_bytes);
1178
    ret = bdrv_pread(extent->file,
F
Fam Zheng 已提交
1179 1180 1181 1182 1183 1184 1185 1186 1187 1188 1189 1190 1191 1192 1193 1194 1195 1196 1197 1198 1199 1200 1201 1202 1203 1204 1205
                cluster_offset,
                cluster_buf, buf_bytes);
    if (ret < 0) {
        goto out;
    }
    compressed_data = cluster_buf;
    buf_len = cluster_bytes;
    data_len = cluster_bytes;
    if (extent->has_marker) {
        marker = (VmdkGrainMarker *)cluster_buf;
        compressed_data = marker->data;
        data_len = le32_to_cpu(marker->size);
    }
    if (!data_len || data_len > buf_bytes) {
        ret = -EINVAL;
        goto out;
    }
    ret = uncompress(uncomp_buf, &buf_len, compressed_data, data_len);
    if (ret != Z_OK) {
        ret = -EINVAL;
        goto out;

    }
    if (offset_in_cluster < 0 ||
            offset_in_cluster + nb_sectors * 512 > buf_len) {
        ret = -EINVAL;
        goto out;
1206
    }
F
Fam Zheng 已提交
1207 1208 1209 1210 1211 1212 1213
    memcpy(buf, uncomp_buf + offset_in_cluster, nb_sectors * 512);
    ret = 0;

 out:
    g_free(uncomp_buf);
    g_free(cluster_buf);
    return ret;
1214 1215
}

1216
static int vmdk_read(BlockDriverState *bs, int64_t sector_num,
B
bellard 已提交
1217 1218 1219
                    uint8_t *buf, int nb_sectors)
{
    BDRVVmdkState *s = bs->opaque;
F
Fam Zheng 已提交
1220 1221
    int ret;
    uint64_t n, index_in_cluster;
1222
    uint64_t extent_begin_sector, extent_relative_sector_num;
F
Fam Zheng 已提交
1223
    VmdkExtent *extent = NULL;
B
bellard 已提交
1224
    uint64_t cluster_offset;
1225

B
bellard 已提交
1226
    while (nb_sectors > 0) {
F
Fam Zheng 已提交
1227 1228 1229 1230
        extent = find_extent(s, sector_num, extent);
        if (!extent) {
            return -EIO;
        }
1231 1232 1233
        ret = get_cluster_offset(
                            bs, extent, NULL,
                            sector_num << 9, 0, &cluster_offset);
1234 1235 1236
        extent_begin_sector = extent->end_sector - extent->sectors;
        extent_relative_sector_num = sector_num - extent_begin_sector;
        index_in_cluster = extent_relative_sector_num % extent->cluster_sectors;
F
Fam Zheng 已提交
1237
        n = extent->cluster_sectors - index_in_cluster;
F
Fam Zheng 已提交
1238
        if (n > nb_sectors) {
B
bellard 已提交
1239
            n = nb_sectors;
F
Fam Zheng 已提交
1240
        }
1241
        if (ret != VMDK_OK) {
1242
            /* if not allocated, try to read from parent image, if exist */
1243
            if (bs->backing_hd && ret != VMDK_ZEROED) {
F
Fam Zheng 已提交
1244
                if (!vmdk_is_cid_valid(bs)) {
1245
                    return -EINVAL;
F
Fam Zheng 已提交
1246
                }
K
Kevin Wolf 已提交
1247
                ret = bdrv_read(bs->backing_hd, sector_num, buf, n);
F
Fam Zheng 已提交
1248
                if (ret < 0) {
1249
                    return ret;
F
Fam Zheng 已提交
1250
                }
1251 1252 1253
            } else {
                memset(buf, 0, 512 * n);
            }
B
bellard 已提交
1254
        } else {
1255 1256 1257 1258
            ret = vmdk_read_extent(extent,
                            cluster_offset, index_in_cluster * 512,
                            buf, n);
            if (ret) {
1259 1260
                return ret;
            }
B
bellard 已提交
1261 1262 1263 1264 1265 1266 1267 1268
        }
        nb_sectors -= n;
        sector_num += n;
        buf += n * 512;
    }
    return 0;
}

1269 1270 1271 1272 1273 1274 1275 1276 1277 1278 1279
static coroutine_fn int vmdk_co_read(BlockDriverState *bs, int64_t sector_num,
                                     uint8_t *buf, int nb_sectors)
{
    int ret;
    BDRVVmdkState *s = bs->opaque;
    qemu_co_mutex_lock(&s->lock);
    ret = vmdk_read(bs, sector_num, buf, nb_sectors);
    qemu_co_mutex_unlock(&s->lock);
    return ret;
}

F
Fam Zheng 已提交
1280 1281 1282
/**
 * vmdk_write:
 * @zeroed:       buf is ignored (data is zero), use zeroed_grain GTE feature
1283 1284 1285 1286
 *                if possible, otherwise return -ENOTSUP.
 * @zero_dry_run: used for zeroed == true only, don't update L2 table, just try
 *                with each cluster. By dry run we can find if the zero write
 *                is possible without modifying image data.
F
Fam Zheng 已提交
1287 1288 1289
 *
 * Returns: error code with 0 for success.
 */
1290
static int vmdk_write(BlockDriverState *bs, int64_t sector_num,
F
Fam Zheng 已提交
1291 1292
                      const uint8_t *buf, int nb_sectors,
                      bool zeroed, bool zero_dry_run)
B
bellard 已提交
1293
{
1294
    BDRVVmdkState *s = bs->opaque;
F
Fam Zheng 已提交
1295
    VmdkExtent *extent = NULL;
1296
    int n, ret;
F
Fam Zheng 已提交
1297
    int64_t index_in_cluster;
1298
    uint64_t extent_begin_sector, extent_relative_sector_num;
1299
    uint64_t cluster_offset;
F
Fam Zheng 已提交
1300
    VmdkMetaData m_data;
1301

1302
    if (sector_num > bs->total_sectors) {
F
Fam Zheng 已提交
1303
        error_report("Wrong offset: sector_num=0x%" PRIx64
1304
                " total_sectors=0x%" PRIx64 "\n",
1305
                sector_num, bs->total_sectors);
1306
        return -EIO;
1307 1308
    }

1309
    while (nb_sectors > 0) {
F
Fam Zheng 已提交
1310 1311 1312 1313
        extent = find_extent(s, sector_num, extent);
        if (!extent) {
            return -EIO;
        }
1314
        ret = get_cluster_offset(
F
Fam Zheng 已提交
1315 1316 1317
                                bs,
                                extent,
                                &m_data,
F
Fam Zheng 已提交
1318
                                sector_num << 9, !extent->compressed,
1319
                                &cluster_offset);
F
Fam Zheng 已提交
1320
        if (extent->compressed) {
F
Fam Zheng 已提交
1321
            if (ret == VMDK_OK) {
F
Fam Zheng 已提交
1322
                /* Refuse write to allocated cluster for streamOptimized */
F
Fam Zheng 已提交
1323 1324
                error_report("Could not write to allocated cluster"
                              " for streamOptimized");
F
Fam Zheng 已提交
1325 1326 1327 1328 1329 1330 1331 1332 1333 1334 1335
                return -EIO;
            } else {
                /* allocate */
                ret = get_cluster_offset(
                                        bs,
                                        extent,
                                        &m_data,
                                        sector_num << 9, 1,
                                        &cluster_offset);
            }
        }
F
Fam Zheng 已提交
1336
        if (ret == VMDK_ERROR) {
1337
            return -EINVAL;
F
Fam Zheng 已提交
1338
        }
1339 1340 1341
        extent_begin_sector = extent->end_sector - extent->sectors;
        extent_relative_sector_num = sector_num - extent_begin_sector;
        index_in_cluster = extent_relative_sector_num % extent->cluster_sectors;
F
Fam Zheng 已提交
1342 1343 1344 1345
        n = extent->cluster_sectors - index_in_cluster;
        if (n > nb_sectors) {
            n = nb_sectors;
        }
F
Fam Zheng 已提交
1346 1347 1348 1349 1350 1351 1352 1353 1354 1355 1356 1357 1358 1359 1360 1361 1362 1363 1364 1365 1366 1367 1368 1369 1370 1371 1372 1373
        if (zeroed) {
            /* Do zeroed write, buf is ignored */
            if (extent->has_zero_grain &&
                    index_in_cluster == 0 &&
                    n >= extent->cluster_sectors) {
                n = extent->cluster_sectors;
                if (!zero_dry_run) {
                    m_data.offset = VMDK_GTE_ZEROED;
                    /* update L2 tables */
                    if (vmdk_L2update(extent, &m_data) != VMDK_OK) {
                        return -EIO;
                    }
                }
            } else {
                return -ENOTSUP;
            }
        } else {
            ret = vmdk_write_extent(extent,
                            cluster_offset, index_in_cluster * 512,
                            buf, n, sector_num);
            if (ret) {
                return ret;
            }
            if (m_data.valid) {
                /* update L2 tables */
                if (vmdk_L2update(extent, &m_data) != VMDK_OK) {
                    return -EIO;
                }
F
Fam Zheng 已提交
1374
            }
1375
        }
1376 1377 1378
        nb_sectors -= n;
        sector_num += n;
        buf += n * 512;
1379

F
Fam Zheng 已提交
1380 1381
        /* update CID on the first write every time the virtual disk is
         * opened */
1382
        if (!s->cid_updated) {
K
Kevin Wolf 已提交
1383 1384 1385 1386
            ret = vmdk_write_cid(bs, time(NULL));
            if (ret < 0) {
                return ret;
            }
1387
            s->cid_updated = true;
1388
        }
1389 1390
    }
    return 0;
B
bellard 已提交
1391 1392
}

1393 1394 1395 1396 1397 1398
static coroutine_fn int vmdk_co_write(BlockDriverState *bs, int64_t sector_num,
                                      const uint8_t *buf, int nb_sectors)
{
    int ret;
    BDRVVmdkState *s = bs->opaque;
    qemu_co_mutex_lock(&s->lock);
F
Fam Zheng 已提交
1399 1400 1401 1402 1403 1404 1405 1406 1407 1408 1409 1410
    ret = vmdk_write(bs, sector_num, buf, nb_sectors, false, false);
    qemu_co_mutex_unlock(&s->lock);
    return ret;
}

static int coroutine_fn vmdk_co_write_zeroes(BlockDriverState *bs,
                                             int64_t sector_num,
                                             int nb_sectors)
{
    int ret;
    BDRVVmdkState *s = bs->opaque;
    qemu_co_mutex_lock(&s->lock);
1411 1412
    /* write zeroes could fail if sectors not aligned to cluster, test it with
     * dry_run == true before really updating image */
F
Fam Zheng 已提交
1413 1414 1415 1416
    ret = vmdk_write(bs, sector_num, NULL, nb_sectors, true, true);
    if (!ret) {
        ret = vmdk_write(bs, sector_num, NULL, nb_sectors, true, false);
    }
1417 1418 1419 1420
    qemu_co_mutex_unlock(&s->lock);
    return ret;
}

1421
static int vmdk_create_extent(const char *filename, int64_t filesize,
1422
                              bool flat, bool compress, bool zeroed_grain)
1423
{
F
Fam Zheng 已提交
1424 1425
    int ret, i;
    int fd = 0;
1426 1427
    VMDK4Header header;
    uint32_t tmp, magic, grains, gd_size, gt_size, gt_count;
1428

1429 1430 1431
    fd = qemu_open(filename,
                   O_WRONLY | O_CREAT | O_TRUNC | O_BINARY | O_LARGEFILE,
                   0644);
F
Fam Zheng 已提交
1432 1433
    if (fd < 0) {
        return -errno;
1434
    }
F
Fam Zheng 已提交
1435 1436 1437 1438 1439 1440
    if (flat) {
        ret = ftruncate(fd, filesize);
        if (ret < 0) {
            ret = -errno;
        }
        goto exit;
1441
    }
1442 1443
    magic = cpu_to_be32(VMDK4_MAGIC);
    memset(&header, 0, sizeof(header));
1444
    header.version = zeroed_grain ? 2 : 1;
F
Fam Zheng 已提交
1445
    header.flags = VMDK4_FLAG_RGD | VMDK4_FLAG_NL_DETECT
1446 1447
                   | (compress ? VMDK4_FLAG_COMPRESS | VMDK4_FLAG_MARKER : 0)
                   | (zeroed_grain ? VMDK4_FLAG_ZERO_GRAIN : 0);
1448
    header.compressAlgorithm = compress ? VMDK4_COMPRESSION_DEFLATE : 0;
F
Fam Zheng 已提交
1449
    header.capacity = filesize / 512;
A
Alexander Graf 已提交
1450
    header.granularity = 128;
1451
    header.num_gtes_per_gt = 512;
1452

F
Fam Zheng 已提交
1453
    grains = (filesize / 512 + header.granularity - 1) / header.granularity;
1454
    gt_size = ((header.num_gtes_per_gt * sizeof(uint32_t)) + 511) >> 9;
F
Fam Zheng 已提交
1455
    gt_count =
1456
        (grains + header.num_gtes_per_gt - 1) / header.num_gtes_per_gt;
1457 1458 1459 1460 1461 1462 1463 1464 1465 1466
    gd_size = (gt_count * sizeof(uint32_t) + 511) >> 9;

    header.desc_offset = 1;
    header.desc_size = 20;
    header.rgd_offset = header.desc_offset + header.desc_size;
    header.gd_offset = header.rgd_offset + gd_size + (gt_size * gt_count);
    header.grain_offset =
       ((header.gd_offset + gd_size + (gt_size * gt_count) +
         header.granularity - 1) / header.granularity) *
        header.granularity;
A
Alexander Graf 已提交
1467 1468 1469 1470 1471
    /* swap endianness for all header fields */
    header.version = cpu_to_le32(header.version);
    header.flags = cpu_to_le32(header.flags);
    header.capacity = cpu_to_le64(header.capacity);
    header.granularity = cpu_to_le64(header.granularity);
1472
    header.num_gtes_per_gt = cpu_to_le32(header.num_gtes_per_gt);
1473 1474 1475 1476 1477
    header.desc_offset = cpu_to_le64(header.desc_offset);
    header.desc_size = cpu_to_le64(header.desc_size);
    header.rgd_offset = cpu_to_le64(header.rgd_offset);
    header.gd_offset = cpu_to_le64(header.gd_offset);
    header.grain_offset = cpu_to_le64(header.grain_offset);
1478
    header.compressAlgorithm = cpu_to_le16(header.compressAlgorithm);
1479 1480 1481 1482 1483

    header.check_bytes[0] = 0xa;
    header.check_bytes[1] = 0x20;
    header.check_bytes[2] = 0xd;
    header.check_bytes[3] = 0xa;
1484 1485

    /* write all the data */
1486 1487
    ret = qemu_write_full(fd, &magic, sizeof(magic));
    if (ret != sizeof(magic)) {
J
Juan Quintela 已提交
1488
        ret = -errno;
1489 1490 1491 1492
        goto exit;
    }
    ret = qemu_write_full(fd, &header, sizeof(header));
    if (ret != sizeof(header)) {
J
Juan Quintela 已提交
1493
        ret = -errno;
1494 1495
        goto exit;
    }
1496

A
Alexander Graf 已提交
1497
    ret = ftruncate(fd, le64_to_cpu(header.grain_offset) << 9);
1498
    if (ret < 0) {
J
Juan Quintela 已提交
1499
        ret = -errno;
1500 1501
        goto exit;
    }
1502 1503 1504

    /* write grain directory */
    lseek(fd, le64_to_cpu(header.rgd_offset) << 9, SEEK_SET);
A
Alexander Graf 已提交
1505
    for (i = 0, tmp = le64_to_cpu(header.rgd_offset) + gd_size;
1506 1507 1508
         i < gt_count; i++, tmp += gt_size) {
        ret = qemu_write_full(fd, &tmp, sizeof(tmp));
        if (ret != sizeof(tmp)) {
J
Juan Quintela 已提交
1509
            ret = -errno;
1510 1511 1512
            goto exit;
        }
    }
1513

1514 1515
    /* write backup grain directory */
    lseek(fd, le64_to_cpu(header.gd_offset) << 9, SEEK_SET);
A
Alexander Graf 已提交
1516
    for (i = 0, tmp = le64_to_cpu(header.gd_offset) + gd_size;
1517 1518 1519
         i < gt_count; i++, tmp += gt_size) {
        ret = qemu_write_full(fd, &tmp, sizeof(tmp));
        if (ret != sizeof(tmp)) {
J
Juan Quintela 已提交
1520
            ret = -errno;
1521 1522 1523
            goto exit;
        }
    }
1524

F
Fam Zheng 已提交
1525 1526
    ret = 0;
 exit:
1527
    qemu_close(fd);
F
Fam Zheng 已提交
1528 1529 1530 1531
    return ret;
}

static int filename_decompose(const char *filename, char *path, char *prefix,
F
Fam Zheng 已提交
1532
                              char *postfix, size_t buf_len, Error **errp)
F
Fam Zheng 已提交
1533 1534 1535 1536
{
    const char *p, *q;

    if (filename == NULL || !strlen(filename)) {
F
Fam Zheng 已提交
1537
        error_setg(errp, "No filename provided");
F
Fam Zheng 已提交
1538
        return VMDK_ERROR;
F
Fam Zheng 已提交
1539 1540 1541 1542 1543 1544 1545 1546 1547 1548 1549
    }
    p = strrchr(filename, '/');
    if (p == NULL) {
        p = strrchr(filename, '\\');
    }
    if (p == NULL) {
        p = strrchr(filename, ':');
    }
    if (p != NULL) {
        p++;
        if (p - filename >= buf_len) {
F
Fam Zheng 已提交
1550
            return VMDK_ERROR;
F
Fam Zheng 已提交
1551 1552 1553 1554 1555 1556 1557 1558 1559 1560 1561 1562
        }
        pstrcpy(path, p - filename + 1, filename);
    } else {
        p = filename;
        path[0] = '\0';
    }
    q = strrchr(p, '.');
    if (q == NULL) {
        pstrcpy(prefix, buf_len, p);
        postfix[0] = '\0';
    } else {
        if (q - p >= buf_len) {
F
Fam Zheng 已提交
1563
            return VMDK_ERROR;
F
Fam Zheng 已提交
1564 1565 1566 1567
        }
        pstrcpy(prefix, q - p + 1, p);
        pstrcpy(postfix, buf_len, q);
    }
F
Fam Zheng 已提交
1568
    return VMDK_OK;
F
Fam Zheng 已提交
1569 1570
}

1571 1572
static int vmdk_create(const char *filename, QEMUOptionParameter *options,
                       Error **errp)
F
Fam Zheng 已提交
1573 1574 1575 1576
{
    int fd, idx = 0;
    char desc[BUF_SIZE];
    int64_t total_size = 0, filesize;
1577
    const char *adapter_type = NULL;
F
Fam Zheng 已提交
1578 1579 1580 1581
    const char *backing_file = NULL;
    const char *fmt = NULL;
    int flags = 0;
    int ret = 0;
1582
    bool flat, split, compress;
F
Fam Zheng 已提交
1583 1584 1585 1586 1587 1588
    char ext_desc_lines[BUF_SIZE] = "";
    char path[PATH_MAX], prefix[PATH_MAX], postfix[PATH_MAX];
    const int64_t split_size = 0x80000000;  /* VMDK has constant split size */
    const char *desc_extent_line;
    char parent_desc_line[BUF_SIZE] = "";
    uint32_t parent_cid = 0xffffffff;
1589
    uint32_t number_heads = 16;
1590
    bool zeroed_grain = false;
F
Fam Zheng 已提交
1591 1592 1593 1594 1595 1596 1597 1598 1599 1600 1601 1602 1603 1604 1605 1606
    const char desc_template[] =
        "# Disk DescriptorFile\n"
        "version=1\n"
        "CID=%x\n"
        "parentCID=%x\n"
        "createType=\"%s\"\n"
        "%s"
        "\n"
        "# Extent description\n"
        "%s"
        "\n"
        "# The Disk Data Base\n"
        "#DDB\n"
        "\n"
        "ddb.virtualHWVersion = \"%d\"\n"
        "ddb.geometry.cylinders = \"%" PRId64 "\"\n"
1607
        "ddb.geometry.heads = \"%d\"\n"
F
Fam Zheng 已提交
1608
        "ddb.geometry.sectors = \"63\"\n"
1609
        "ddb.adapterType = \"%s\"\n";
F
Fam Zheng 已提交
1610

F
Fam Zheng 已提交
1611
    if (filename_decompose(filename, path, prefix, postfix, PATH_MAX, errp)) {
F
Fam Zheng 已提交
1612 1613 1614 1615 1616 1617
        return -EINVAL;
    }
    /* Read out options */
    while (options && options->name) {
        if (!strcmp(options->name, BLOCK_OPT_SIZE)) {
            total_size = options->value.n;
1618 1619
        } else if (!strcmp(options->name, BLOCK_OPT_ADAPTER_TYPE)) {
            adapter_type = options->value.s;
F
Fam Zheng 已提交
1620 1621 1622 1623 1624 1625
        } else if (!strcmp(options->name, BLOCK_OPT_BACKING_FILE)) {
            backing_file = options->value.s;
        } else if (!strcmp(options->name, BLOCK_OPT_COMPAT6)) {
            flags |= options->value.n ? BLOCK_FLAG_COMPAT6 : 0;
        } else if (!strcmp(options->name, BLOCK_OPT_SUBFMT)) {
            fmt = options->value.s;
1626 1627
        } else if (!strcmp(options->name, BLOCK_OPT_ZEROED_GRAIN)) {
            zeroed_grain |= options->value.n;
F
Fam Zheng 已提交
1628 1629 1630
        }
        options++;
    }
1631 1632 1633 1634 1635 1636
    if (!adapter_type) {
        adapter_type = "ide";
    } else if (strcmp(adapter_type, "ide") &&
               strcmp(adapter_type, "buslogic") &&
               strcmp(adapter_type, "lsilogic") &&
               strcmp(adapter_type, "legacyESX")) {
F
Fam Zheng 已提交
1637
        error_setg(errp, "Unknown adapter type: '%s'", adapter_type);
1638 1639 1640 1641 1642 1643 1644
        return -EINVAL;
    }
    if (strcmp(adapter_type, "ide") != 0) {
        /* that's the number of heads with which vmware operates when
           creating, exporting, etc. vmdk files with a non-ide adapter type */
        number_heads = 255;
    }
F
Fam Zheng 已提交
1645 1646 1647 1648 1649 1650
    if (!fmt) {
        /* Default format to monolithicSparse */
        fmt = "monolithicSparse";
    } else if (strcmp(fmt, "monolithicFlat") &&
               strcmp(fmt, "monolithicSparse") &&
               strcmp(fmt, "twoGbMaxExtentSparse") &&
1651 1652
               strcmp(fmt, "twoGbMaxExtentFlat") &&
               strcmp(fmt, "streamOptimized")) {
F
Fam Zheng 已提交
1653
        error_setg(errp, "Unknown subformat: '%s'", fmt);
F
Fam Zheng 已提交
1654 1655 1656 1657 1658 1659
        return -EINVAL;
    }
    split = !(strcmp(fmt, "twoGbMaxExtentFlat") &&
              strcmp(fmt, "twoGbMaxExtentSparse"));
    flat = !(strcmp(fmt, "monolithicFlat") &&
             strcmp(fmt, "twoGbMaxExtentFlat"));
1660
    compress = !strcmp(fmt, "streamOptimized");
F
Fam Zheng 已提交
1661 1662 1663 1664 1665 1666
    if (flat) {
        desc_extent_line = "RW %lld FLAT \"%s\" 0\n";
    } else {
        desc_extent_line = "RW %lld SPARSE \"%s\"\n";
    }
    if (flat && backing_file) {
F
Fam Zheng 已提交
1667
        error_setg(errp, "Flat image can't have backing file");
F
Fam Zheng 已提交
1668 1669
        return -ENOTSUP;
    }
1670 1671 1672 1673
    if (flat && zeroed_grain) {
        error_setg(errp, "Flat image can't enable zeroed grain");
        return -ENOTSUP;
    }
F
Fam Zheng 已提交
1674 1675
    if (backing_file) {
        BlockDriverState *bs = bdrv_new("");
F
Fam Zheng 已提交
1676
        ret = bdrv_open(bs, backing_file, NULL, 0, NULL, errp);
F
Fam Zheng 已提交
1677
        if (ret != 0) {
F
Fam Zheng 已提交
1678
            bdrv_unref(bs);
F
Fam Zheng 已提交
1679 1680 1681
            return ret;
        }
        if (strcmp(bs->drv->format_name, "vmdk")) {
F
Fam Zheng 已提交
1682
            bdrv_unref(bs);
F
Fam Zheng 已提交
1683 1684 1685
            return -EINVAL;
        }
        parent_cid = vmdk_read_cid(bs, 0);
F
Fam Zheng 已提交
1686
        bdrv_unref(bs);
F
Fam Zheng 已提交
1687
        snprintf(parent_desc_line, sizeof(parent_desc_line),
1688
                "parentFileNameHint=\"%s\"", backing_file);
F
Fam Zheng 已提交
1689 1690 1691 1692 1693 1694 1695 1696 1697 1698 1699 1700 1701 1702 1703 1704 1705 1706 1707 1708 1709 1710 1711 1712 1713 1714
    }

    /* Create extents */
    filesize = total_size;
    while (filesize > 0) {
        char desc_line[BUF_SIZE];
        char ext_filename[PATH_MAX];
        char desc_filename[PATH_MAX];
        int64_t size = filesize;

        if (split && size > split_size) {
            size = split_size;
        }
        if (split) {
            snprintf(desc_filename, sizeof(desc_filename), "%s-%c%03d%s",
                    prefix, flat ? 'f' : 's', ++idx, postfix);
        } else if (flat) {
            snprintf(desc_filename, sizeof(desc_filename), "%s-flat%s",
                    prefix, postfix);
        } else {
            snprintf(desc_filename, sizeof(desc_filename), "%s%s",
                    prefix, postfix);
        }
        snprintf(ext_filename, sizeof(ext_filename), "%s%s",
                path, desc_filename);

1715 1716
        if (vmdk_create_extent(ext_filename, size,
                               flat, compress, zeroed_grain)) {
F
Fam Zheng 已提交
1717 1718 1719 1720 1721 1722 1723 1724 1725 1726 1727 1728 1729 1730 1731 1732 1733
            return -EINVAL;
        }
        filesize -= size;

        /* Format description line */
        snprintf(desc_line, sizeof(desc_line),
                    desc_extent_line, size / 512, desc_filename);
        pstrcat(ext_desc_lines, sizeof(ext_desc_lines), desc_line);
    }
    /* generate descriptor file */
    snprintf(desc, sizeof(desc), desc_template,
            (unsigned int)time(NULL),
            parent_cid,
            fmt,
            parent_desc_line,
            ext_desc_lines,
            (flags & BLOCK_FLAG_COMPAT6 ? 6 : 4),
1734 1735
            total_size / (int64_t)(63 * number_heads * 512), number_heads,
                adapter_type);
F
Fam Zheng 已提交
1736
    if (split || flat) {
1737 1738 1739
        fd = qemu_open(filename,
                       O_WRONLY | O_CREAT | O_TRUNC | O_BINARY | O_LARGEFILE,
                       0644);
F
Fam Zheng 已提交
1740
    } else {
1741 1742 1743
        fd = qemu_open(filename,
                       O_WRONLY | O_BINARY | O_LARGEFILE,
                       0644);
F
Fam Zheng 已提交
1744 1745 1746 1747 1748 1749 1750 1751 1752
    }
    if (fd < 0) {
        return -errno;
    }
    /* the descriptor offset = 0x200 */
    if (!split && !flat && 0x200 != lseek(fd, 0x200, SEEK_SET)) {
        ret = -errno;
        goto exit;
    }
1753 1754
    ret = qemu_write_full(fd, desc, strlen(desc));
    if (ret != strlen(desc)) {
J
Juan Quintela 已提交
1755
        ret = -errno;
1756 1757 1758 1759
        goto exit;
    }
    ret = 0;
exit:
1760
    qemu_close(fd);
1761
    return ret;
1762 1763
}

B
bellard 已提交
1764
static void vmdk_close(BlockDriverState *bs)
B
bellard 已提交
1765
{
K
Kevin Wolf 已提交
1766 1767
    BDRVVmdkState *s = bs->opaque;

F
Fam Zheng 已提交
1768
    vmdk_free_extents(bs);
K
Kevin Wolf 已提交
1769 1770 1771

    migrate_del_blocker(s->migration_blocker);
    error_free(s->migration_blocker);
B
bellard 已提交
1772 1773
}

P
Paolo Bonzini 已提交
1774
static coroutine_fn int vmdk_co_flush(BlockDriverState *bs)
P
pbrook 已提交
1775
{
F
Fam Zheng 已提交
1776
    BDRVVmdkState *s = bs->opaque;
1777 1778
    int i, err;
    int ret = 0;
F
Fam Zheng 已提交
1779 1780

    for (i = 0; i < s->num_extents; i++) {
P
Paolo Bonzini 已提交
1781
        err = bdrv_co_flush(s->extents[i].file);
F
Fam Zheng 已提交
1782 1783 1784 1785 1786
        if (err < 0) {
            ret = err;
        }
    }
    return ret;
P
pbrook 已提交
1787 1788
}

1789 1790 1791 1792 1793 1794 1795 1796 1797 1798 1799 1800 1801 1802 1803 1804 1805 1806 1807 1808 1809 1810 1811
static int64_t vmdk_get_allocated_file_size(BlockDriverState *bs)
{
    int i;
    int64_t ret = 0;
    int64_t r;
    BDRVVmdkState *s = bs->opaque;

    ret = bdrv_get_allocated_file_size(bs->file);
    if (ret < 0) {
        return ret;
    }
    for (i = 0; i < s->num_extents; i++) {
        if (s->extents[i].file == bs->file) {
            continue;
        }
        r = bdrv_get_allocated_file_size(s->extents[i].file);
        if (r < 0) {
            return r;
        }
        ret += r;
    }
    return ret;
}
1812

F
Fam Zheng 已提交
1813 1814 1815 1816 1817 1818 1819 1820 1821 1822 1823 1824 1825 1826 1827 1828 1829
static int vmdk_has_zero_init(BlockDriverState *bs)
{
    int i;
    BDRVVmdkState *s = bs->opaque;

    /* If has a flat extent and its underlying storage doesn't have zero init,
     * return 0. */
    for (i = 0; i < s->num_extents; i++) {
        if (s->extents[i].flat) {
            if (!bdrv_has_zero_init(s->extents[i].file)) {
                return 0;
            }
        }
    }
    return 1;
}

1830
static QEMUOptionParameter vmdk_create_options[] = {
1831 1832 1833 1834 1835
    {
        .name = BLOCK_OPT_SIZE,
        .type = OPT_SIZE,
        .help = "Virtual disk size"
    },
1836 1837 1838 1839 1840 1841
    {
        .name = BLOCK_OPT_ADAPTER_TYPE,
        .type = OPT_STRING,
        .help = "Virtual adapter type, can be one of "
                "ide (default), lsilogic, buslogic or legacyESX"
    },
1842 1843 1844 1845 1846 1847 1848 1849 1850 1851
    {
        .name = BLOCK_OPT_BACKING_FILE,
        .type = OPT_STRING,
        .help = "File name of a base image"
    },
    {
        .name = BLOCK_OPT_COMPAT6,
        .type = OPT_FLAG,
        .help = "VMDK version 6 image"
    },
F
Fam Zheng 已提交
1852 1853 1854 1855 1856
    {
        .name = BLOCK_OPT_SUBFMT,
        .type = OPT_STRING,
        .help =
            "VMDK flat extent format, can be one of "
1857
            "{monolithicSparse (default) | monolithicFlat | twoGbMaxExtentSparse | twoGbMaxExtentFlat | streamOptimized} "
F
Fam Zheng 已提交
1858
    },
1859 1860 1861 1862 1863
    {
        .name = BLOCK_OPT_ZEROED_GRAIN,
        .type = OPT_FLAG,
        .help = "Enable efficient zero writes using the zeroed-grain GTE feature"
    },
1864 1865 1866
    { NULL }
};

1867
static BlockDriver bdrv_vmdk = {
F
Fam Zheng 已提交
1868 1869 1870 1871 1872 1873 1874 1875 1876 1877 1878
    .format_name                  = "vmdk",
    .instance_size                = sizeof(BDRVVmdkState),
    .bdrv_probe                   = vmdk_probe,
    .bdrv_open                    = vmdk_open,
    .bdrv_reopen_prepare          = vmdk_reopen_prepare,
    .bdrv_read                    = vmdk_co_read,
    .bdrv_write                   = vmdk_co_write,
    .bdrv_co_write_zeroes         = vmdk_co_write_zeroes,
    .bdrv_close                   = vmdk_close,
    .bdrv_create                  = vmdk_create,
    .bdrv_co_flush_to_disk        = vmdk_co_flush,
1879
    .bdrv_co_get_block_status     = vmdk_co_get_block_status,
F
Fam Zheng 已提交
1880 1881 1882 1883
    .bdrv_get_allocated_file_size = vmdk_get_allocated_file_size,
    .bdrv_has_zero_init           = vmdk_has_zero_init,

    .create_options               = vmdk_create_options,
B
bellard 已提交
1884
};
1885 1886 1887 1888 1889 1890 1891

static void bdrv_vmdk_init(void)
{
    bdrv_register(&bdrv_vmdk);
}

block_init(bdrv_vmdk_init);