virtio-net.c 30.7 KB
Newer Older
A
aliguori 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13
/*
 * Virtio Network Device
 *
 * Copyright IBM, Corp. 2007
 *
 * Authors:
 *  Anthony Liguori   <aliguori@us.ibm.com>
 *
 * This work is licensed under the terms of the GNU GPL, version 2.  See
 * the COPYING file in the top-level directory.
 *
 */

14
#include "iov.h"
A
aliguori 已提交
15 16
#include "virtio.h"
#include "net.h"
17
#include "net/checksum.h"
18
#include "net/tap.h"
19
#include "qemu-error.h"
A
aliguori 已提交
20 21
#include "qemu-timer.h"
#include "virtio-net.h"
22
#include "vhost_net.h"
A
aliguori 已提交
23

24
#define VIRTIO_NET_VM_VERSION    11
25

26
#define MAC_TABLE_ENTRIES    64
27
#define MAX_VLAN    (1 << 12)   /* Per 802.1Q definition */
28

A
aliguori 已提交
29 30 31
typedef struct VirtIONet
{
    VirtIODevice vdev;
32
    uint8_t mac[ETH_ALEN];
33
    uint16_t status;
A
aliguori 已提交
34 35
    VirtQueue *rx_vq;
    VirtQueue *tx_vq;
36
    VirtQueue *ctrl_vq;
M
Mark McLoughlin 已提交
37
    NICState *nic;
A
aliguori 已提交
38
    QEMUTimer *tx_timer;
39
    QEMUBH *tx_bh;
40
    uint32_t tx_timeout;
41
    int32_t tx_burst;
42
    int tx_waiting;
M
Mark McLoughlin 已提交
43
    uint32_t has_vnet_hdr;
44
    uint8_t has_ufo;
45 46 47 48
    struct {
        VirtQueueElement elem;
        ssize_t len;
    } async_tx;
A
aliguori 已提交
49
    int mergeable_rx_bufs;
50 51
    uint8_t promisc;
    uint8_t allmulti;
52 53 54 55
    uint8_t alluni;
    uint8_t nomulti;
    uint8_t nouni;
    uint8_t nobcast;
56
    uint8_t vhost_started;
57
    bool vm_running;
58
    VMChangeStateEntry *vmstate;
59 60
    struct {
        int in_use;
61
        int first_multi;
62 63
        uint8_t multi_overflow;
        uint8_t uni_overflow;
64 65
        uint8_t *macs;
    } mac_table;
66
    uint32_t *vlans;
67
    DeviceState *qdev;
A
aliguori 已提交
68 69 70 71 72 73 74 75 76 77 78
} VirtIONet;

/* TODO
 * - we could suppress RX interrupt if we were so inclined.
 */

static VirtIONet *to_virtio_net(VirtIODevice *vdev)
{
    return (VirtIONet *)vdev;
}

79
static void virtio_net_get_config(VirtIODevice *vdev, uint8_t *config)
A
aliguori 已提交
80 81 82 83
{
    VirtIONet *n = to_virtio_net(vdev);
    struct virtio_net_config netcfg;

84
    netcfg.status = n->status;
85
    memcpy(netcfg.mac, n->mac, ETH_ALEN);
A
aliguori 已提交
86 87 88
    memcpy(config, &netcfg, sizeof(netcfg));
}

89 90 91 92 93 94 95
static void virtio_net_set_config(VirtIODevice *vdev, const uint8_t *config)
{
    VirtIONet *n = to_virtio_net(vdev);
    struct virtio_net_config netcfg;

    memcpy(&netcfg, config, sizeof(netcfg));

96 97
    if (memcmp(netcfg.mac, n->mac, ETH_ALEN)) {
        memcpy(n->mac, netcfg.mac, ETH_ALEN);
M
Mark McLoughlin 已提交
98
        qemu_format_nic_info_str(&n->nic->nc, n->mac);
99 100 101
    }
}

102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122
static void virtio_net_set_status(struct VirtIODevice *vdev, uint8_t status)
{
    VirtIONet *n = to_virtio_net(vdev);
    if (!n->nic->nc.peer) {
        return;
    }
    if (n->nic->nc.peer->info->type != NET_CLIENT_TYPE_TAP) {
        return;
    }

    if (!tap_get_vhost_net(n->nic->nc.peer)) {
        return;
    }
    if (!!n->vhost_started == ((status & VIRTIO_CONFIG_S_DRIVER_OK) &&
                               (n->status & VIRTIO_NET_S_LINK_UP) &&
                               n->vm_running)) {
        return;
    }
    if (!n->vhost_started) {
        int r = vhost_net_start(tap_get_vhost_net(n->nic->nc.peer), &n->vdev);
        if (r < 0) {
123 124
            error_report("unable to start vhost net: %d: "
                         "falling back on userspace virtio", -r);
125 126 127 128 129 130 131 132 133
        } else {
            n->vhost_started = 1;
        }
    } else {
        vhost_net_stop(tap_get_vhost_net(n->nic->nc.peer), &n->vdev);
        n->vhost_started = 0;
    }
}

M
Mark McLoughlin 已提交
134
static void virtio_net_set_link_status(VLANClientState *nc)
135
{
M
Mark McLoughlin 已提交
136
    VirtIONet *n = DO_UPCAST(NICState, nc, nc)->opaque;
137 138
    uint16_t old_status = n->status;

M
Mark McLoughlin 已提交
139
    if (nc->link_down)
140 141 142 143 144 145
        n->status &= ~VIRTIO_NET_S_LINK_UP;
    else
        n->status |= VIRTIO_NET_S_LINK_UP;

    if (n->status != old_status)
        virtio_notify_config(&n->vdev);
146 147

    virtio_net_set_status(&n->vdev, n->vdev.status);
148 149
}

150 151 152 153 154 155 156
static void virtio_net_reset(VirtIODevice *vdev)
{
    VirtIONet *n = to_virtio_net(vdev);

    /* Reset back to compatibility mode */
    n->promisc = 1;
    n->allmulti = 0;
157 158 159 160
    n->alluni = 0;
    n->nomulti = 0;
    n->nouni = 0;
    n->nobcast = 0;
161

162
    /* Flush any MAC and VLAN filter table state */
163
    n->mac_table.in_use = 0;
164
    n->mac_table.first_multi = 0;
165 166
    n->mac_table.multi_overflow = 0;
    n->mac_table.uni_overflow = 0;
167
    memset(n->mac_table.macs, 0, MAC_TABLE_ENTRIES * ETH_ALEN);
168
    memset(n->vlans, 0, MAX_VLAN >> 3);
169 170
}

M
Mark McLoughlin 已提交
171 172
static int peer_has_vnet_hdr(VirtIONet *n)
{
M
Mark McLoughlin 已提交
173
    if (!n->nic->nc.peer)
M
Mark McLoughlin 已提交
174 175
        return 0;

176
    if (n->nic->nc.peer->info->type != NET_CLIENT_TYPE_TAP)
M
Mark McLoughlin 已提交
177 178
        return 0;

M
Mark McLoughlin 已提交
179
    n->has_vnet_hdr = tap_has_vnet_hdr(n->nic->nc.peer);
M
Mark McLoughlin 已提交
180 181 182 183

    return n->has_vnet_hdr;
}

184 185 186 187 188
static int peer_has_ufo(VirtIONet *n)
{
    if (!peer_has_vnet_hdr(n))
        return 0;

M
Mark McLoughlin 已提交
189
    n->has_ufo = tap_has_ufo(n->nic->nc.peer);
190 191 192 193

    return n->has_ufo;
}

194
static uint32_t virtio_net_get_features(VirtIODevice *vdev, uint32_t features)
A
aliguori 已提交
195
{
M
Mark McLoughlin 已提交
196
    VirtIONet *n = to_virtio_net(vdev);
A
aliguori 已提交
197

198 199
    features |= (1 << VIRTIO_NET_F_MAC);

M
Mark McLoughlin 已提交
200
    if (peer_has_vnet_hdr(n)) {
M
Mark McLoughlin 已提交
201
        tap_using_vnet_hdr(n->nic->nc.peer, 1);
202 203 204 205 206 207 208 209 210 211 212
    } else {
        features &= ~(0x1 << VIRTIO_NET_F_CSUM);
        features &= ~(0x1 << VIRTIO_NET_F_HOST_TSO4);
        features &= ~(0x1 << VIRTIO_NET_F_HOST_TSO6);
        features &= ~(0x1 << VIRTIO_NET_F_HOST_ECN);

        features &= ~(0x1 << VIRTIO_NET_F_GUEST_CSUM);
        features &= ~(0x1 << VIRTIO_NET_F_GUEST_TSO4);
        features &= ~(0x1 << VIRTIO_NET_F_GUEST_TSO6);
        features &= ~(0x1 << VIRTIO_NET_F_GUEST_ECN);
    }
M
Mark McLoughlin 已提交
213

214 215 216
    if (!peer_has_vnet_hdr(n) || !peer_has_ufo(n)) {
        features &= ~(0x1 << VIRTIO_NET_F_GUEST_UFO);
        features &= ~(0x1 << VIRTIO_NET_F_HOST_UFO);
M
Mark McLoughlin 已提交
217 218
    }

219 220 221 222 223 224 225 226
    if (!n->nic->nc.peer ||
        n->nic->nc.peer->info->type != NET_CLIENT_TYPE_TAP) {
        return features;
    }
    if (!tap_get_vhost_net(n->nic->nc.peer)) {
        return features;
    }
    return vhost_net_get_features(tap_get_vhost_net(n->nic->nc.peer), features);
A
aliguori 已提交
227 228
}

229 230 231 232 233 234 235
static uint32_t virtio_net_bad_features(VirtIODevice *vdev)
{
    uint32_t features = 0;

    /* Linux kernel 2.6.25.  It understood MAC (as everyone must),
     * but also these: */
    features |= (1 << VIRTIO_NET_F_MAC);
236 237 238 239
    features |= (1 << VIRTIO_NET_F_CSUM);
    features |= (1 << VIRTIO_NET_F_HOST_TSO4);
    features |= (1 << VIRTIO_NET_F_HOST_TSO6);
    features |= (1 << VIRTIO_NET_F_HOST_ECN);
240

241
    return features;
242 243
}

A
aliguori 已提交
244 245 246 247 248
static void virtio_net_set_features(VirtIODevice *vdev, uint32_t features)
{
    VirtIONet *n = to_virtio_net(vdev);

    n->mergeable_rx_bufs = !!(features & (1 << VIRTIO_NET_F_MRG_RXBUF));
249 250

    if (n->has_vnet_hdr) {
M
Mark McLoughlin 已提交
251
        tap_set_offload(n->nic->nc.peer,
252 253 254
                        (features >> VIRTIO_NET_F_GUEST_CSUM) & 1,
                        (features >> VIRTIO_NET_F_GUEST_TSO4) & 1,
                        (features >> VIRTIO_NET_F_GUEST_TSO6) & 1,
255 256
                        (features >> VIRTIO_NET_F_GUEST_ECN)  & 1,
                        (features >> VIRTIO_NET_F_GUEST_UFO)  & 1);
257
    }
D
David L Stevens 已提交
258 259 260 261 262 263 264
    if (!n->nic->nc.peer ||
        n->nic->nc.peer->info->type != NET_CLIENT_TYPE_TAP) {
        return;
    }
    if (!tap_get_vhost_net(n->nic->nc.peer)) {
        return;
    }
265
    vhost_net_ack_features(tap_get_vhost_net(n->nic->nc.peer), features);
A
aliguori 已提交
266 267
}

268 269 270 271 272 273
static int virtio_net_handle_rx_mode(VirtIONet *n, uint8_t cmd,
                                     VirtQueueElement *elem)
{
    uint8_t on;

    if (elem->out_num != 2 || elem->out_sg[1].iov_len != sizeof(on)) {
274
        error_report("virtio-net ctrl invalid rx mode command");
275 276 277 278 279 280 281 282 283
        exit(1);
    }

    on = ldub_p(elem->out_sg[1].iov_base);

    if (cmd == VIRTIO_NET_CTRL_RX_MODE_PROMISC)
        n->promisc = on;
    else if (cmd == VIRTIO_NET_CTRL_RX_MODE_ALLMULTI)
        n->allmulti = on;
284 285 286 287 288 289 290 291
    else if (cmd == VIRTIO_NET_CTRL_RX_MODE_ALLUNI)
        n->alluni = on;
    else if (cmd == VIRTIO_NET_CTRL_RX_MODE_NOMULTI)
        n->nomulti = on;
    else if (cmd == VIRTIO_NET_CTRL_RX_MODE_NOUNI)
        n->nouni = on;
    else if (cmd == VIRTIO_NET_CTRL_RX_MODE_NOBCAST)
        n->nobcast = on;
292 293 294 295 296 297
    else
        return VIRTIO_NET_ERR;

    return VIRTIO_NET_OK;
}

298 299 300 301 302 303 304 305 306 307 308
static int virtio_net_handle_mac(VirtIONet *n, uint8_t cmd,
                                 VirtQueueElement *elem)
{
    struct virtio_net_ctrl_mac mac_data;

    if (cmd != VIRTIO_NET_CTRL_MAC_TABLE_SET || elem->out_num != 3 ||
        elem->out_sg[1].iov_len < sizeof(mac_data) ||
        elem->out_sg[2].iov_len < sizeof(mac_data))
        return VIRTIO_NET_ERR;

    n->mac_table.in_use = 0;
309
    n->mac_table.first_multi = 0;
310 311
    n->mac_table.uni_overflow = 0;
    n->mac_table.multi_overflow = 0;
312 313 314 315 316 317 318 319 320 321 322 323 324
    memset(n->mac_table.macs, 0, MAC_TABLE_ENTRIES * ETH_ALEN);

    mac_data.entries = ldl_le_p(elem->out_sg[1].iov_base);

    if (sizeof(mac_data.entries) +
        (mac_data.entries * ETH_ALEN) > elem->out_sg[1].iov_len)
        return VIRTIO_NET_ERR;

    if (mac_data.entries <= MAC_TABLE_ENTRIES) {
        memcpy(n->mac_table.macs, elem->out_sg[1].iov_base + sizeof(mac_data),
               mac_data.entries * ETH_ALEN);
        n->mac_table.in_use += mac_data.entries;
    } else {
325
        n->mac_table.uni_overflow = 1;
326 327
    }

328 329
    n->mac_table.first_multi = n->mac_table.in_use;

330 331 332 333 334 335 336 337 338 339 340 341
    mac_data.entries = ldl_le_p(elem->out_sg[2].iov_base);

    if (sizeof(mac_data.entries) +
        (mac_data.entries * ETH_ALEN) > elem->out_sg[2].iov_len)
        return VIRTIO_NET_ERR;

    if (mac_data.entries) {
        if (n->mac_table.in_use + mac_data.entries <= MAC_TABLE_ENTRIES) {
            memcpy(n->mac_table.macs + (n->mac_table.in_use * ETH_ALEN),
                   elem->out_sg[2].iov_base + sizeof(mac_data),
                   mac_data.entries * ETH_ALEN);
            n->mac_table.in_use += mac_data.entries;
342 343 344
        } else {
            n->mac_table.multi_overflow = 1;
        }
345 346 347 348 349
    }

    return VIRTIO_NET_OK;
}

350 351 352 353 354 355
static int virtio_net_handle_vlan_table(VirtIONet *n, uint8_t cmd,
                                        VirtQueueElement *elem)
{
    uint16_t vid;

    if (elem->out_num != 2 || elem->out_sg[1].iov_len != sizeof(vid)) {
356
        error_report("virtio-net ctrl invalid vlan command");
357 358 359 360 361 362 363 364 365 366 367 368 369 370 371 372 373 374
        return VIRTIO_NET_ERR;
    }

    vid = lduw_le_p(elem->out_sg[1].iov_base);

    if (vid >= MAX_VLAN)
        return VIRTIO_NET_ERR;

    if (cmd == VIRTIO_NET_CTRL_VLAN_ADD)
        n->vlans[vid >> 5] |= (1U << (vid & 0x1f));
    else if (cmd == VIRTIO_NET_CTRL_VLAN_DEL)
        n->vlans[vid >> 5] &= ~(1U << (vid & 0x1f));
    else
        return VIRTIO_NET_ERR;

    return VIRTIO_NET_OK;
}

375 376
static void virtio_net_handle_ctrl(VirtIODevice *vdev, VirtQueue *vq)
{
377
    VirtIONet *n = to_virtio_net(vdev);
378 379 380 381 382 383
    struct virtio_net_ctrl_hdr ctrl;
    virtio_net_ctrl_ack status = VIRTIO_NET_ERR;
    VirtQueueElement elem;

    while (virtqueue_pop(vq, &elem)) {
        if ((elem.in_num < 1) || (elem.out_num < 1)) {
384
            error_report("virtio-net ctrl missing headers");
385 386 387 388
            exit(1);
        }

        if (elem.out_sg[0].iov_len < sizeof(ctrl) ||
389
            elem.in_sg[elem.in_num - 1].iov_len < sizeof(status)) {
390
            error_report("virtio-net ctrl header not in correct element");
391 392 393 394 395 396
            exit(1);
        }

        ctrl.class = ldub_p(elem.out_sg[0].iov_base);
        ctrl.cmd = ldub_p(elem.out_sg[0].iov_base + sizeof(ctrl.class));

397 398
        if (ctrl.class == VIRTIO_NET_CTRL_RX_MODE)
            status = virtio_net_handle_rx_mode(n, ctrl.cmd, &elem);
399 400
        else if (ctrl.class == VIRTIO_NET_CTRL_MAC)
            status = virtio_net_handle_mac(n, ctrl.cmd, &elem);
401 402
        else if (ctrl.class == VIRTIO_NET_CTRL_VLAN)
            status = virtio_net_handle_vlan_table(n, ctrl.cmd, &elem);
403

404 405 406 407 408 409 410
        stb_p(elem.in_sg[elem.in_num - 1].iov_base, status);

        virtqueue_push(vq, &elem, sizeof(status));
        virtio_notify(vdev, vq);
    }
}

A
aliguori 已提交
411 412 413 414
/* RX */

static void virtio_net_handle_rx(VirtIODevice *vdev, VirtQueue *vq)
{
415 416
    VirtIONet *n = to_virtio_net(vdev);

M
Mark McLoughlin 已提交
417
    qemu_flush_queued_packets(&n->nic->nc);
418 419 420 421

    /* We now have RX buffers, signal to the IO thread to break out of the
     * select to re-poll the tap file descriptor */
    qemu_notify_event();
A
aliguori 已提交
422 423
}

M
Mark McLoughlin 已提交
424
static int virtio_net_can_receive(VLANClientState *nc)
A
aliguori 已提交
425
{
M
Mark McLoughlin 已提交
426
    VirtIONet *n = DO_UPCAST(NICState, nc, nc)->opaque;
427

A
aliguori 已提交
428 429 430 431
    if (!virtio_queue_ready(n->rx_vq) ||
        !(n->vdev.status & VIRTIO_CONFIG_S_DRIVER_OK))
        return 0;

432 433 434 435 436
    return 1;
}

static int virtio_net_has_buffers(VirtIONet *n, int bufsize)
{
A
aliguori 已提交
437 438 439 440
    if (virtio_queue_empty(n->rx_vq) ||
        (n->mergeable_rx_bufs &&
         !virtqueue_avail_bytes(n->rx_vq, bufsize, 0))) {
        virtio_queue_set_notification(n->rx_vq, 1);
441 442 443 444 445 446 447 448 449

        /* To avoid a race condition where the guest has made some buffers
         * available after the above check but before notification was
         * enabled, check for available buffers again.
         */
        if (virtio_queue_empty(n->rx_vq) ||
            (n->mergeable_rx_bufs &&
             !virtqueue_avail_bytes(n->rx_vq, bufsize, 0)))
            return 0;
A
aliguori 已提交
450 451 452 453 454 455
    }

    virtio_queue_set_notification(n->rx_vq, 0);
    return 1;
}

A
Anthony Liguori 已提交
456 457 458 459 460 461 462 463 464 465 466 467 468 469 470 471 472 473 474 475 476 477 478 479 480 481 482 483
/* dhclient uses AF_PACKET but doesn't pass auxdata to the kernel so
 * it never finds out that the packets don't have valid checksums.  This
 * causes dhclient to get upset.  Fedora's carried a patch for ages to
 * fix this with Xen but it hasn't appeared in an upstream release of
 * dhclient yet.
 *
 * To avoid breaking existing guests, we catch udp packets and add
 * checksums.  This is terrible but it's better than hacking the guest
 * kernels.
 *
 * N.B. if we introduce a zero-copy API, this operation is no longer free so
 * we should provide a mechanism to disable it to avoid polluting the host
 * cache.
 */
static void work_around_broken_dhclient(struct virtio_net_hdr *hdr,
                                        const uint8_t *buf, size_t size)
{
    if ((hdr->flags & VIRTIO_NET_HDR_F_NEEDS_CSUM) && /* missing csum */
        (size > 27 && size < 1500) && /* normal sized MTU */
        (buf[12] == 0x08 && buf[13] == 0x00) && /* ethertype == IPv4 */
        (buf[23] == 17) && /* ip.protocol == UDP */
        (buf[34] == 0 && buf[35] == 67)) { /* udp.srcport == bootps */
        /* FIXME this cast is evil */
        net_checksum_calculate((uint8_t *)buf, size);
        hdr->flags &= ~VIRTIO_NET_HDR_F_NEEDS_CSUM;
    }
}

A
aliguori 已提交
484
static int receive_header(VirtIONet *n, struct iovec *iov, int iovcnt,
A
aliguori 已提交
485
                          const void *buf, size_t size, size_t hdr_len)
A
aliguori 已提交
486
{
487
    struct virtio_net_hdr *hdr = (struct virtio_net_hdr *)iov[0].iov_base;
A
aliguori 已提交
488 489 490 491 492
    int offset = 0;

    hdr->flags = 0;
    hdr->gso_type = VIRTIO_NET_HDR_GSO_NONE;

M
Mark McLoughlin 已提交
493 494 495
    if (n->has_vnet_hdr) {
        memcpy(hdr, buf, sizeof(*hdr));
        offset = sizeof(*hdr);
A
Anthony Liguori 已提交
496
        work_around_broken_dhclient(hdr, buf + offset, size - offset);
M
Mark McLoughlin 已提交
497 498
    }

A
aliguori 已提交
499 500 501 502 503 504 505 506 507
    /* We only ever receive a struct virtio_net_hdr from the tapfd,
     * but we may be passing along a larger header to the guest.
     */
    iov[0].iov_base += hdr_len;
    iov[0].iov_len  -= hdr_len;

    return offset;
}

508 509 510
static int receive_filter(VirtIONet *n, const uint8_t *buf, int size)
{
    static const uint8_t bcast[] = {0xff, 0xff, 0xff, 0xff, 0xff, 0xff};
511
    static const uint8_t vlan[] = {0x81, 0x00};
512
    uint8_t *ptr = (uint8_t *)buf;
513
    int i;
514 515 516 517

    if (n->promisc)
        return 1;

M
Mark McLoughlin 已提交
518 519 520 521
    if (n->has_vnet_hdr) {
        ptr += sizeof(struct virtio_net_hdr);
    }

522 523 524 525 526 527
    if (!memcmp(&ptr[12], vlan, sizeof(vlan))) {
        int vid = be16_to_cpup((uint16_t *)(ptr + 14)) & 0xfff;
        if (!(n->vlans[vid >> 5] & (1U << (vid & 0x1f))))
            return 0;
    }

528 529
    if (ptr[0] & 1) { // multicast
        if (!memcmp(ptr, bcast, sizeof(bcast))) {
530 531 532
            return !n->nobcast;
        } else if (n->nomulti) {
            return 0;
533
        } else if (n->allmulti || n->mac_table.multi_overflow) {
534 535
            return 1;
        }
536 537 538 539 540 541

        for (i = n->mac_table.first_multi; i < n->mac_table.in_use; i++) {
            if (!memcmp(ptr, &n->mac_table.macs[i * ETH_ALEN], ETH_ALEN)) {
                return 1;
            }
        }
542
    } else { // unicast
543 544 545
        if (n->nouni) {
            return 0;
        } else if (n->alluni || n->mac_table.uni_overflow) {
546 547
            return 1;
        } else if (!memcmp(ptr, n->mac, ETH_ALEN)) {
548 549
            return 1;
        }
550

551 552 553 554 555
        for (i = 0; i < n->mac_table.first_multi; i++) {
            if (!memcmp(ptr, &n->mac_table.macs[i * ETH_ALEN], ETH_ALEN)) {
                return 1;
            }
        }
556 557
    }

558 559 560
    return 0;
}

M
Mark McLoughlin 已提交
561
static ssize_t virtio_net_receive(VLANClientState *nc, const uint8_t *buf, size_t size)
A
aliguori 已提交
562
{
M
Mark McLoughlin 已提交
563
    VirtIONet *n = DO_UPCAST(NICState, nc, nc)->opaque;
A
aliguori 已提交
564
    struct virtio_net_hdr_mrg_rxbuf *mhdr = NULL;
565
    size_t guest_hdr_len, offset, i, host_hdr_len;
A
aliguori 已提交
566

M
Mark McLoughlin 已提交
567
    if (!virtio_net_can_receive(&n->nic->nc))
568 569
        return -1;

570
    /* hdr_len refers to the header we supply to the guest */
571
    guest_hdr_len = n->mergeable_rx_bufs ?
572 573 574
        sizeof(struct virtio_net_hdr_mrg_rxbuf) : sizeof(struct virtio_net_hdr);


575 576
    host_hdr_len = n->has_vnet_hdr ? sizeof(struct virtio_net_hdr) : 0;
    if (!virtio_net_has_buffers(n, size + guest_hdr_len - host_hdr_len))
577
        return 0;
A
aliguori 已提交
578

579
    if (!receive_filter(n, buf, size))
580
        return size;
581

A
aliguori 已提交
582 583 584 585 586 587 588
    offset = i = 0;

    while (offset < size) {
        VirtQueueElement elem;
        int len, total;
        struct iovec sg[VIRTQUEUE_MAX_SIZE];

A
Amit Shah 已提交
589
        total = 0;
A
aliguori 已提交
590

591
        if (virtqueue_pop(n->rx_vq, &elem) == 0) {
A
aliguori 已提交
592
            if (i == 0)
593
                return -1;
594
            error_report("virtio-net unexpected empty queue: "
595
                    "i %zd mergeable %d offset %zd, size %zd, "
596
                    "guest hdr len %zd, host hdr len %zd guest features 0x%x",
597 598
                    i, n->mergeable_rx_bufs, offset, size,
                    guest_hdr_len, host_hdr_len, n->vdev.guest_features);
A
aliguori 已提交
599 600 601 602
            exit(1);
        }

        if (elem.in_num < 1) {
603
            error_report("virtio-net receive queue contains no in buffers");
A
aliguori 已提交
604 605 606
            exit(1);
        }

607
        if (!n->mergeable_rx_bufs && elem.in_sg[0].iov_len != guest_hdr_len) {
608
            error_report("virtio-net header not in first element");
A
aliguori 已提交
609 610 611 612 613 614 615 616 617 618
            exit(1);
        }

        memcpy(&sg, &elem.in_sg[0], sizeof(sg[0]) * elem.in_num);

        if (i == 0) {
            if (n->mergeable_rx_bufs)
                mhdr = (struct virtio_net_hdr_mrg_rxbuf *)sg[0].iov_base;

            offset += receive_header(n, sg, elem.in_num,
619 620
                                     buf + offset, size - offset, guest_hdr_len);
            total += guest_hdr_len;
A
aliguori 已提交
621 622 623
        }

        /* copy in packet.  ugh */
624 625
        len = iov_from_buf(sg, elem.in_num,
                           buf + offset, size - offset);
A
aliguori 已提交
626
        total += len;
627 628 629 630 631 632
        offset += len;
        /* If buffers can't be merged, at this point we
         * must have consumed the complete packet.
         * Otherwise, drop it. */
        if (!n->mergeable_rx_bufs && offset < size) {
#if 0
633 634 635 636 637
            error_report("virtio-net truncated non-mergeable packet: "
                         "i %zd mergeable %d offset %zd, size %zd, "
                         "guest hdr len %zd, host hdr len %zd",
                         i, n->mergeable_rx_bufs,
                         offset, size, guest_hdr_len, host_hdr_len);
638 639 640
#endif
            return size;
        }
A
aliguori 已提交
641 642 643 644 645 646 647 648 649 650

        /* signal other side */
        virtqueue_fill(n->rx_vq, &elem, total, i++);
    }

    if (mhdr)
        mhdr->num_buffers = i;

    virtqueue_flush(n->rx_vq, i);
    virtio_notify(&n->vdev, n->rx_vq);
651 652

    return size;
A
aliguori 已提交
653 654
}

655
static int32_t virtio_net_flush_tx(VirtIONet *n, VirtQueue *vq);
656

M
Mark McLoughlin 已提交
657
static void virtio_net_tx_complete(VLANClientState *nc, ssize_t len)
658
{
M
Mark McLoughlin 已提交
659
    VirtIONet *n = DO_UPCAST(NICState, nc, nc)->opaque;
660 661 662 663 664 665 666 667 668 669

    virtqueue_push(n->tx_vq, &n->async_tx.elem, n->async_tx.len);
    virtio_notify(&n->vdev, n->tx_vq);

    n->async_tx.elem.out_num = n->async_tx.len = 0;

    virtio_queue_set_notification(n->tx_vq, 1);
    virtio_net_flush_tx(n, n->tx_vq);
}

A
aliguori 已提交
670
/* TX */
671
static int32_t virtio_net_flush_tx(VirtIONet *n, VirtQueue *vq)
A
aliguori 已提交
672 673
{
    VirtQueueElement elem;
674
    int32_t num_packets = 0;
A
aliguori 已提交
675

676 677 678
    if (!(n->vdev.status & VIRTIO_CONFIG_S_DRIVER_OK)) {
        return num_packets;
    }
A
aliguori 已提交
679

680 681
    if (n->async_tx.elem.out_num) {
        virtio_queue_set_notification(n->tx_vq, 0);
682
        return num_packets;
683 684
    }

A
aliguori 已提交
685
    while (virtqueue_pop(vq, &elem)) {
686
        ssize_t ret, len = 0;
A
aliguori 已提交
687 688 689 690 691 692 693 694 695 696
        unsigned int out_num = elem.out_num;
        struct iovec *out_sg = &elem.out_sg[0];
        unsigned hdr_len;

        /* hdr_len refers to the header received from the guest */
        hdr_len = n->mergeable_rx_bufs ?
            sizeof(struct virtio_net_hdr_mrg_rxbuf) :
            sizeof(struct virtio_net_hdr);

        if (out_num < 1 || out_sg->iov_len != hdr_len) {
697
            error_report("virtio-net header not in first element");
A
aliguori 已提交
698 699 700 701
            exit(1);
        }

        /* ignore the header if GSO is not supported */
M
Mark McLoughlin 已提交
702
        if (!n->has_vnet_hdr) {
A
aliguori 已提交
703 704 705 706 707 708 709 710 711 712
            out_num--;
            out_sg++;
            len += hdr_len;
        } else if (n->mergeable_rx_bufs) {
            /* tapfd expects a struct virtio_net_hdr */
            hdr_len -= sizeof(struct virtio_net_hdr);
            out_sg->iov_len -= hdr_len;
            len += hdr_len;
        }

M
Mark McLoughlin 已提交
713
        ret = qemu_sendv_packet_async(&n->nic->nc, out_sg, out_num,
714 715 716 717 718
                                      virtio_net_tx_complete);
        if (ret == 0) {
            virtio_queue_set_notification(n->tx_vq, 0);
            n->async_tx.elem = elem;
            n->async_tx.len  = len;
719
            return -EBUSY;
720 721 722
        }

        len += ret;
A
aliguori 已提交
723 724 725

        virtqueue_push(vq, &elem, len);
        virtio_notify(&n->vdev, vq);
726 727 728 729

        if (++num_packets >= n->tx_burst) {
            break;
        }
A
aliguori 已提交
730
    }
731
    return num_packets;
A
aliguori 已提交
732 733
}

734
static void virtio_net_handle_tx_timer(VirtIODevice *vdev, VirtQueue *vq)
A
aliguori 已提交
735 736 737
{
    VirtIONet *n = to_virtio_net(vdev);

738
    if (n->tx_waiting) {
A
aliguori 已提交
739 740
        virtio_queue_set_notification(vq, 1);
        qemu_del_timer(n->tx_timer);
741
        n->tx_waiting = 0;
A
aliguori 已提交
742 743 744
        virtio_net_flush_tx(n, vq);
    } else {
        qemu_mod_timer(n->tx_timer,
745
                       qemu_get_clock(vm_clock) + n->tx_timeout);
746
        n->tx_waiting = 1;
A
aliguori 已提交
747 748 749 750
        virtio_queue_set_notification(vq, 0);
    }
}

751 752 753 754 755 756 757 758 759 760 761 762
static void virtio_net_handle_tx_bh(VirtIODevice *vdev, VirtQueue *vq)
{
    VirtIONet *n = to_virtio_net(vdev);

    if (unlikely(n->tx_waiting)) {
        return;
    }
    virtio_queue_set_notification(vq, 0);
    qemu_bh_schedule(n->tx_bh);
    n->tx_waiting = 1;
}

A
aliguori 已提交
763 764 765 766
static void virtio_net_tx_timer(void *opaque)
{
    VirtIONet *n = opaque;

767
    n->tx_waiting = 0;
A
aliguori 已提交
768 769 770 771 772 773 774 775 776

    /* Just in case the driver is not ready on more */
    if (!(n->vdev.status & VIRTIO_CONFIG_S_DRIVER_OK))
        return;

    virtio_queue_set_notification(n->tx_vq, 1);
    virtio_net_flush_tx(n, n->tx_vq);
}

777 778 779 780 781 782 783 784 785 786 787 788 789 790 791 792 793 794 795 796 797 798 799 800 801 802 803 804 805 806 807 808 809 810 811
static void virtio_net_tx_bh(void *opaque)
{
    VirtIONet *n = opaque;
    int32_t ret;

    n->tx_waiting = 0;

    /* Just in case the driver is not ready on more */
    if (unlikely(!(n->vdev.status & VIRTIO_CONFIG_S_DRIVER_OK)))
        return;

    ret = virtio_net_flush_tx(n, n->tx_vq);
    if (ret == -EBUSY) {
        return; /* Notification re-enable handled by tx_complete */
    }

    /* If we flush a full burst of packets, assume there are
     * more coming and immediately reschedule */
    if (ret >= n->tx_burst) {
        qemu_bh_schedule(n->tx_bh);
        n->tx_waiting = 1;
        return;
    }

    /* If less than a full burst, re-enable notification and flush
     * anything that may have come in while we weren't looking.  If
     * we find something, assume the guest is still active and reschedule */
    virtio_queue_set_notification(n->tx_vq, 1);
    if (virtio_net_flush_tx(n, n->tx_vq) > 0) {
        virtio_queue_set_notification(n->tx_vq, 0);
        qemu_bh_schedule(n->tx_bh);
        n->tx_waiting = 1;
    }
}

A
aliguori 已提交
812 813 814 815
static void virtio_net_save(QEMUFile *f, void *opaque)
{
    VirtIONet *n = opaque;

816 817 818
    /* At this point, backend must be stopped, otherwise
     * it might keep writing to memory. */
    assert(!n->vhost_started);
A
aliguori 已提交
819 820
    virtio_save(&n->vdev, f);

821
    qemu_put_buffer(f, n->mac, ETH_ALEN);
822
    qemu_put_be32(f, n->tx_waiting);
823
    qemu_put_be32(f, n->mergeable_rx_bufs);
824
    qemu_put_be16(f, n->status);
825 826
    qemu_put_byte(f, n->promisc);
    qemu_put_byte(f, n->allmulti);
827 828
    qemu_put_be32(f, n->mac_table.in_use);
    qemu_put_buffer(f, n->mac_table.macs, n->mac_table.in_use * ETH_ALEN);
829
    qemu_put_buffer(f, (uint8_t *)n->vlans, MAX_VLAN >> 3);
M
Mark McLoughlin 已提交
830
    qemu_put_be32(f, n->has_vnet_hdr);
831 832
    qemu_put_byte(f, n->mac_table.multi_overflow);
    qemu_put_byte(f, n->mac_table.uni_overflow);
833 834 835 836
    qemu_put_byte(f, n->alluni);
    qemu_put_byte(f, n->nomulti);
    qemu_put_byte(f, n->nouni);
    qemu_put_byte(f, n->nobcast);
837
    qemu_put_byte(f, n->has_ufo);
A
aliguori 已提交
838 839 840 841 842
}

static int virtio_net_load(QEMUFile *f, void *opaque, int version_id)
{
    VirtIONet *n = opaque;
843
    int i;
A
aliguori 已提交
844

845
    if (version_id < 2 || version_id > VIRTIO_NET_VM_VERSION)
A
aliguori 已提交
846 847 848 849
        return -EINVAL;

    virtio_load(&n->vdev, f);

850
    qemu_get_buffer(f, n->mac, ETH_ALEN);
851
    n->tx_waiting = qemu_get_be32(f);
852
    n->mergeable_rx_bufs = qemu_get_be32(f);
A
aliguori 已提交
853

854 855 856
    if (version_id >= 3)
        n->status = qemu_get_be16(f);

857
    if (version_id >= 4) {
858 859 860 861 862 863 864
        if (version_id < 8) {
            n->promisc = qemu_get_be32(f);
            n->allmulti = qemu_get_be32(f);
        } else {
            n->promisc = qemu_get_byte(f);
            n->allmulti = qemu_get_byte(f);
        }
865 866
    }

867 868 869 870 871 872 873 874
    if (version_id >= 5) {
        n->mac_table.in_use = qemu_get_be32(f);
        /* MAC_TABLE_ENTRIES may be different from the saved image */
        if (n->mac_table.in_use <= MAC_TABLE_ENTRIES) {
            qemu_get_buffer(f, n->mac_table.macs,
                            n->mac_table.in_use * ETH_ALEN);
        } else if (n->mac_table.in_use) {
            qemu_fseek(f, n->mac_table.in_use * ETH_ALEN, SEEK_CUR);
875
            n->mac_table.multi_overflow = n->mac_table.uni_overflow = 1;
876 877 878 879
            n->mac_table.in_use = 0;
        }
    }
 
880 881 882
    if (version_id >= 6)
        qemu_get_buffer(f, (uint8_t *)n->vlans, MAX_VLAN >> 3);

M
Mark McLoughlin 已提交
883 884
    if (version_id >= 7) {
        if (qemu_get_be32(f) && !peer_has_vnet_hdr(n)) {
885
            error_report("virtio-net: saved image requires vnet_hdr=on");
M
Mark McLoughlin 已提交
886 887 888 889
            return -1;
        }

        if (n->has_vnet_hdr) {
M
Mark McLoughlin 已提交
890 891
            tap_using_vnet_hdr(n->nic->nc.peer, 1);
            tap_set_offload(n->nic->nc.peer,
892 893 894 895 896
                    (n->vdev.guest_features >> VIRTIO_NET_F_GUEST_CSUM) & 1,
                    (n->vdev.guest_features >> VIRTIO_NET_F_GUEST_TSO4) & 1,
                    (n->vdev.guest_features >> VIRTIO_NET_F_GUEST_TSO6) & 1,
                    (n->vdev.guest_features >> VIRTIO_NET_F_GUEST_ECN)  & 1,
                    (n->vdev.guest_features >> VIRTIO_NET_F_GUEST_UFO)  & 1);
M
Mark McLoughlin 已提交
897
        }
898 899
    }

900 901 902 903 904
    if (version_id >= 9) {
        n->mac_table.multi_overflow = qemu_get_byte(f);
        n->mac_table.uni_overflow = qemu_get_byte(f);
    }

905 906 907 908 909 910 911
    if (version_id >= 10) {
        n->alluni = qemu_get_byte(f);
        n->nomulti = qemu_get_byte(f);
        n->nouni = qemu_get_byte(f);
        n->nobcast = qemu_get_byte(f);
    }

912 913
    if (version_id >= 11) {
        if (qemu_get_byte(f) && !peer_has_ufo(n)) {
914
            error_report("virtio-net: saved image requires TUN_F_UFO support");
915 916 917 918
            return -1;
        }
    }

919 920 921 922 923 924 925 926
    /* Find the first multicast entry in the saved MAC filter */
    for (i = 0; i < n->mac_table.in_use; i++) {
        if (n->mac_table.macs[i * ETH_ALEN] & 1) {
            break;
        }
    }
    n->mac_table.first_multi = i;

927
    if (n->tx_waiting) {
928 929 930 931 932 933
        if (n->tx_timer) {
            qemu_mod_timer(n->tx_timer,
                           qemu_get_clock(vm_clock) + n->tx_timeout);
        } else {
            qemu_bh_schedule(n->tx_bh);
        }
A
aliguori 已提交
934 935 936 937
    }
    return 0;
}

M
Mark McLoughlin 已提交
938
static void virtio_net_cleanup(VLANClientState *nc)
939
{
M
Mark McLoughlin 已提交
940
    VirtIONet *n = DO_UPCAST(NICState, nc, nc)->opaque;
941

M
Mark McLoughlin 已提交
942
    n->nic = NULL;
943 944
}

M
Mark McLoughlin 已提交
945 946 947 948 949 950 951 952 953
static NetClientInfo net_virtio_info = {
    .type = NET_CLIENT_TYPE_NIC,
    .size = sizeof(NICState),
    .can_receive = virtio_net_can_receive,
    .receive = virtio_net_receive,
        .cleanup = virtio_net_cleanup,
    .link_status_changed = virtio_net_set_link_status,
};

954 955 956
static void virtio_net_vmstate_change(void *opaque, int running, int reason)
{
    VirtIONet *n = opaque;
957
    n->vm_running = running;
958
    /* This is called when vm is started/stopped,
959
     * it will start/stop vhost backend if appropriate
960
     * e.g. after migration. */
961
    virtio_net_set_status(&n->vdev, n->vdev.status);
962 963
}

964 965
VirtIODevice *virtio_net_init(DeviceState *dev, NICConf *conf,
                              virtio_net_conf *net)
A
aliguori 已提交
966 967 968
{
    VirtIONet *n;

P
Paul Brook 已提交
969 970 971
    n = (VirtIONet *)virtio_common_init("virtio-net", VIRTIO_ID_NET,
                                        sizeof(struct virtio_net_config),
                                        sizeof(VirtIONet));
A
aliguori 已提交
972

973 974
    n->vdev.get_config = virtio_net_get_config;
    n->vdev.set_config = virtio_net_set_config;
A
aliguori 已提交
975 976
    n->vdev.get_features = virtio_net_get_features;
    n->vdev.set_features = virtio_net_set_features;
977
    n->vdev.bad_features = virtio_net_bad_features;
978
    n->vdev.reset = virtio_net_reset;
979
    n->vdev.set_status = virtio_net_set_status;
A
aliguori 已提交
980
    n->rx_vq = virtio_add_queue(&n->vdev, 256, virtio_net_handle_rx);
981 982

    if (net->tx && strcmp(net->tx, "timer") && strcmp(net->tx, "bh")) {
983 984 985 986
        error_report("virtio-net: "
                     "Unknown option tx=%s, valid options: \"timer\" \"bh\"",
                     net->tx);
        error_report("Defaulting to \"bh\"");
987 988 989 990 991 992 993 994 995 996
    }

    if (net->tx && !strcmp(net->tx, "timer")) {
        n->tx_vq = virtio_add_queue(&n->vdev, 256, virtio_net_handle_tx_timer);
        n->tx_timer = qemu_new_timer(vm_clock, virtio_net_tx_timer, n);
        n->tx_timeout = net->txtimer;
    } else {
        n->tx_vq = virtio_add_queue(&n->vdev, 256, virtio_net_handle_tx_bh);
        n->tx_bh = qemu_bh_new(virtio_net_tx_bh, n);
    }
997
    n->ctrl_vq = virtio_add_queue(&n->vdev, 64, virtio_net_handle_ctrl);
998
    qemu_macaddr_default_if_unset(&conf->macaddr);
999
    memcpy(&n->mac[0], &conf->macaddr, sizeof(n->mac));
1000
    n->status = VIRTIO_NET_S_LINK_UP;
A
aliguori 已提交
1001

M
Mark McLoughlin 已提交
1002 1003 1004
    n->nic = qemu_new_nic(&net_virtio_info, conf, dev->info->name, dev->id, n);

    qemu_format_nic_info_str(&n->nic->nc, conf->macaddr.a);
1005

1006
    n->tx_waiting = 0;
1007
    n->tx_burst = net->txburst;
A
aliguori 已提交
1008
    n->mergeable_rx_bufs = 0;
1009
    n->promisc = 1; /* for compatibility */
A
aliguori 已提交
1010

1011 1012
    n->mac_table.macs = qemu_mallocz(MAC_TABLE_ENTRIES * ETH_ALEN);

1013 1014
    n->vlans = qemu_mallocz(MAX_VLAN >> 3);

1015 1016
    n->qdev = dev;
    register_savevm(dev, "virtio-net", -1, VIRTIO_NET_VM_VERSION,
A
aliguori 已提交
1017
                    virtio_net_save, virtio_net_load, n);
1018
    n->vmstate = qemu_add_vm_change_state_handler(virtio_net_vmstate_change, n);
P
Paul Brook 已提交
1019

P
Paul Brook 已提交
1020
    return &n->vdev;
P
Paul Brook 已提交
1021
}
1022 1023 1024 1025

void virtio_net_exit(VirtIODevice *vdev)
{
    VirtIONet *n = DO_UPCAST(VirtIONet, vdev, vdev);
1026 1027
    qemu_del_vm_change_state_handler(n->vmstate);

1028 1029
    /* This will stop vhost backend if appropriate. */
    virtio_net_set_status(vdev, 0);
1030

M
Mark McLoughlin 已提交
1031
    qemu_purge_queued_packets(&n->nic->nc);
1032

1033
    unregister_savevm(n->qdev, "virtio-net", n);
1034 1035 1036 1037

    qemu_free(n->mac_table.macs);
    qemu_free(n->vlans);

1038 1039 1040 1041 1042 1043
    if (n->tx_timer) {
        qemu_del_timer(n->tx_timer);
        qemu_free_timer(n->tx_timer);
    } else {
        qemu_bh_delete(n->tx_bh);
    }
1044 1045

    virtio_cleanup(&n->vdev);
M
Mark McLoughlin 已提交
1046
    qemu_del_vlan_client(&n->nic->nc);
1047
}