xref: /qemu/cpu-common.c (revision 8a8dc2679065fb82d0e03453caee9aba38e92af9)
1267f685bSPaolo Bonzini /*
2267f685bSPaolo Bonzini  * CPU thread main loop - common bits for user and system mode emulation
3267f685bSPaolo Bonzini  *
4267f685bSPaolo Bonzini  *  Copyright (c) 2003-2005 Fabrice Bellard
5267f685bSPaolo Bonzini  *
6267f685bSPaolo Bonzini  * This library is free software; you can redistribute it and/or
7267f685bSPaolo Bonzini  * modify it under the terms of the GNU Lesser General Public
8267f685bSPaolo Bonzini  * License as published by the Free Software Foundation; either
9d6ea4236SChetan Pant  * version 2.1 of the License, or (at your option) any later version.
10267f685bSPaolo Bonzini  *
11267f685bSPaolo Bonzini  * This library is distributed in the hope that it will be useful,
12267f685bSPaolo Bonzini  * but WITHOUT ANY WARRANTY; without even the implied warranty of
13267f685bSPaolo Bonzini  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
14267f685bSPaolo Bonzini  * Lesser General Public License for more details.
15267f685bSPaolo Bonzini  *
16267f685bSPaolo Bonzini  * You should have received a copy of the GNU Lesser General Public
17267f685bSPaolo Bonzini  * License along with this library; if not, see <http://www.gnu.org/licenses/>.
18267f685bSPaolo Bonzini  */
19267f685bSPaolo Bonzini 
20267f685bSPaolo Bonzini #include "qemu/osdep.h"
2153f5ed95SPaolo Bonzini #include "qemu/main-loop.h"
22267f685bSPaolo Bonzini #include "exec/cpu-common.h"
232e5b09fdSMarkus Armbruster #include "hw/core/cpu.h"
24267f685bSPaolo Bonzini #include "sysemu/cpus.h"
256e8a355dSDaniel Brodsky #include "qemu/lockable.h"
26*8a8dc267SPhilippe Mathieu-Daudé #include "trace/trace-root.h"
27267f685bSPaolo Bonzini 
28267f685bSPaolo Bonzini static QemuMutex qemu_cpu_list_lock;
29ab129972SPaolo Bonzini static QemuCond exclusive_cond;
30ab129972SPaolo Bonzini static QemuCond exclusive_resume;
31d148d90eSSergey Fedorov static QemuCond qemu_work_cond;
32267f685bSPaolo Bonzini 
33c265e976SPaolo Bonzini /* >= 1 if a thread is inside start_exclusive/end_exclusive.  Written
34c265e976SPaolo Bonzini  * under qemu_cpu_list_lock, read with atomic operations.
35c265e976SPaolo Bonzini  */
36ab129972SPaolo Bonzini static int pending_cpus;
37ab129972SPaolo Bonzini 
38267f685bSPaolo Bonzini void qemu_init_cpu_list(void)
39267f685bSPaolo Bonzini {
40ab129972SPaolo Bonzini     /* This is needed because qemu_init_cpu_list is also called by the
41ab129972SPaolo Bonzini      * child process in a fork.  */
42ab129972SPaolo Bonzini     pending_cpus = 0;
43ab129972SPaolo Bonzini 
44267f685bSPaolo Bonzini     qemu_mutex_init(&qemu_cpu_list_lock);
45ab129972SPaolo Bonzini     qemu_cond_init(&exclusive_cond);
46ab129972SPaolo Bonzini     qemu_cond_init(&exclusive_resume);
47d148d90eSSergey Fedorov     qemu_cond_init(&qemu_work_cond);
48267f685bSPaolo Bonzini }
49267f685bSPaolo Bonzini 
50267f685bSPaolo Bonzini void cpu_list_lock(void)
51267f685bSPaolo Bonzini {
52267f685bSPaolo Bonzini     qemu_mutex_lock(&qemu_cpu_list_lock);
53267f685bSPaolo Bonzini }
54267f685bSPaolo Bonzini 
55267f685bSPaolo Bonzini void cpu_list_unlock(void)
56267f685bSPaolo Bonzini {
57267f685bSPaolo Bonzini     qemu_mutex_unlock(&qemu_cpu_list_lock);
58267f685bSPaolo Bonzini }
59267f685bSPaolo Bonzini 
60267f685bSPaolo Bonzini static bool cpu_index_auto_assigned;
61267f685bSPaolo Bonzini 
62267f685bSPaolo Bonzini static int cpu_get_free_index(void)
63267f685bSPaolo Bonzini {
64267f685bSPaolo Bonzini     CPUState *some_cpu;
65716386e3SAlex Bennée     int max_cpu_index = 0;
66267f685bSPaolo Bonzini 
67267f685bSPaolo Bonzini     cpu_index_auto_assigned = true;
68267f685bSPaolo Bonzini     CPU_FOREACH(some_cpu) {
69716386e3SAlex Bennée         if (some_cpu->cpu_index >= max_cpu_index) {
70716386e3SAlex Bennée             max_cpu_index = some_cpu->cpu_index + 1;
71267f685bSPaolo Bonzini         }
72716386e3SAlex Bennée     }
73716386e3SAlex Bennée     return max_cpu_index;
74267f685bSPaolo Bonzini }
75267f685bSPaolo Bonzini 
76421a75e2SPhilippe Mathieu-Daudé CPUTailQ cpus = QTAILQ_HEAD_INITIALIZER(cpus);
77ab1a161fSHyman Huang(黄勇) static unsigned int cpu_list_generation_id;
78ab1a161fSHyman Huang(黄勇) 
79ab1a161fSHyman Huang(黄勇) unsigned int cpu_list_generation_id_get(void)
80ab1a161fSHyman Huang(黄勇) {
81ab1a161fSHyman Huang(黄勇)     return cpu_list_generation_id;
82ab1a161fSHyman Huang(黄勇) }
83421a75e2SPhilippe Mathieu-Daudé 
84267f685bSPaolo Bonzini void cpu_list_add(CPUState *cpu)
85267f685bSPaolo Bonzini {
866e8a355dSDaniel Brodsky     QEMU_LOCK_GUARD(&qemu_cpu_list_lock);
87267f685bSPaolo Bonzini     if (cpu->cpu_index == UNASSIGNED_CPU_INDEX) {
88267f685bSPaolo Bonzini         cpu->cpu_index = cpu_get_free_index();
89267f685bSPaolo Bonzini         assert(cpu->cpu_index != UNASSIGNED_CPU_INDEX);
90267f685bSPaolo Bonzini     } else {
91267f685bSPaolo Bonzini         assert(!cpu_index_auto_assigned);
92267f685bSPaolo Bonzini     }
93068a5ea0SEmilio G. Cota     QTAILQ_INSERT_TAIL_RCU(&cpus, cpu, node);
94ab1a161fSHyman Huang(黄勇)     cpu_list_generation_id++;
95267f685bSPaolo Bonzini }
96267f685bSPaolo Bonzini 
97267f685bSPaolo Bonzini void cpu_list_remove(CPUState *cpu)
98267f685bSPaolo Bonzini {
996e8a355dSDaniel Brodsky     QEMU_LOCK_GUARD(&qemu_cpu_list_lock);
100267f685bSPaolo Bonzini     if (!QTAILQ_IN_USE(cpu, node)) {
101267f685bSPaolo Bonzini         /* there is nothing to undo since cpu_exec_init() hasn't been called */
102267f685bSPaolo Bonzini         return;
103267f685bSPaolo Bonzini     }
104267f685bSPaolo Bonzini 
105068a5ea0SEmilio G. Cota     QTAILQ_REMOVE_RCU(&cpus, cpu, node);
106267f685bSPaolo Bonzini     cpu->cpu_index = UNASSIGNED_CPU_INDEX;
107ab1a161fSHyman Huang(黄勇)     cpu_list_generation_id++;
108267f685bSPaolo Bonzini }
109d148d90eSSergey Fedorov 
110421a75e2SPhilippe Mathieu-Daudé CPUState *qemu_get_cpu(int index)
111421a75e2SPhilippe Mathieu-Daudé {
112421a75e2SPhilippe Mathieu-Daudé     CPUState *cpu;
113421a75e2SPhilippe Mathieu-Daudé 
114421a75e2SPhilippe Mathieu-Daudé     CPU_FOREACH(cpu) {
115421a75e2SPhilippe Mathieu-Daudé         if (cpu->cpu_index == index) {
116421a75e2SPhilippe Mathieu-Daudé             return cpu;
117421a75e2SPhilippe Mathieu-Daudé         }
118421a75e2SPhilippe Mathieu-Daudé     }
119421a75e2SPhilippe Mathieu-Daudé 
120421a75e2SPhilippe Mathieu-Daudé     return NULL;
121421a75e2SPhilippe Mathieu-Daudé }
122421a75e2SPhilippe Mathieu-Daudé 
123421a75e2SPhilippe Mathieu-Daudé /* current CPU in the current thread. It is only valid inside cpu_exec() */
124421a75e2SPhilippe Mathieu-Daudé __thread CPUState *current_cpu;
125421a75e2SPhilippe Mathieu-Daudé 
126d148d90eSSergey Fedorov struct qemu_work_item {
1270c0fcc20SEmilio G. Cota     QSIMPLEQ_ENTRY(qemu_work_item) node;
128d148d90eSSergey Fedorov     run_on_cpu_func func;
12914e6fe12SPaolo Bonzini     run_on_cpu_data data;
13053f5ed95SPaolo Bonzini     bool free, exclusive, done;
131d148d90eSSergey Fedorov };
132d148d90eSSergey Fedorov 
133d148d90eSSergey Fedorov static void queue_work_on_cpu(CPUState *cpu, struct qemu_work_item *wi)
134d148d90eSSergey Fedorov {
135d148d90eSSergey Fedorov     qemu_mutex_lock(&cpu->work_mutex);
1360c0fcc20SEmilio G. Cota     QSIMPLEQ_INSERT_TAIL(&cpu->work_list, wi, node);
137d148d90eSSergey Fedorov     wi->done = false;
138d148d90eSSergey Fedorov     qemu_mutex_unlock(&cpu->work_mutex);
139d148d90eSSergey Fedorov 
140d148d90eSSergey Fedorov     qemu_cpu_kick(cpu);
141d148d90eSSergey Fedorov }
142d148d90eSSergey Fedorov 
14314e6fe12SPaolo Bonzini void do_run_on_cpu(CPUState *cpu, run_on_cpu_func func, run_on_cpu_data data,
144d148d90eSSergey Fedorov                    QemuMutex *mutex)
145d148d90eSSergey Fedorov {
146d148d90eSSergey Fedorov     struct qemu_work_item wi;
147d148d90eSSergey Fedorov 
148d148d90eSSergey Fedorov     if (qemu_cpu_is_self(cpu)) {
149d148d90eSSergey Fedorov         func(cpu, data);
150d148d90eSSergey Fedorov         return;
151d148d90eSSergey Fedorov     }
152d148d90eSSergey Fedorov 
153d148d90eSSergey Fedorov     wi.func = func;
154d148d90eSSergey Fedorov     wi.data = data;
1550e55539cSPaolo Bonzini     wi.done = false;
156d148d90eSSergey Fedorov     wi.free = false;
15753f5ed95SPaolo Bonzini     wi.exclusive = false;
158d148d90eSSergey Fedorov 
159d148d90eSSergey Fedorov     queue_work_on_cpu(cpu, &wi);
160d73415a3SStefan Hajnoczi     while (!qatomic_mb_read(&wi.done)) {
161d148d90eSSergey Fedorov         CPUState *self_cpu = current_cpu;
162d148d90eSSergey Fedorov 
163d148d90eSSergey Fedorov         qemu_cond_wait(&qemu_work_cond, mutex);
164d148d90eSSergey Fedorov         current_cpu = self_cpu;
165d148d90eSSergey Fedorov     }
166d148d90eSSergey Fedorov }
167d148d90eSSergey Fedorov 
16814e6fe12SPaolo Bonzini void async_run_on_cpu(CPUState *cpu, run_on_cpu_func func, run_on_cpu_data data)
169d148d90eSSergey Fedorov {
170d148d90eSSergey Fedorov     struct qemu_work_item *wi;
171d148d90eSSergey Fedorov 
172b21e2380SMarkus Armbruster     wi = g_new0(struct qemu_work_item, 1);
173d148d90eSSergey Fedorov     wi->func = func;
174d148d90eSSergey Fedorov     wi->data = data;
175d148d90eSSergey Fedorov     wi->free = true;
176d148d90eSSergey Fedorov 
177d148d90eSSergey Fedorov     queue_work_on_cpu(cpu, wi);
178d148d90eSSergey Fedorov }
179d148d90eSSergey Fedorov 
180ab129972SPaolo Bonzini /* Wait for pending exclusive operations to complete.  The CPU list lock
181ab129972SPaolo Bonzini    must be held.  */
182ab129972SPaolo Bonzini static inline void exclusive_idle(void)
183ab129972SPaolo Bonzini {
184ab129972SPaolo Bonzini     while (pending_cpus) {
185ab129972SPaolo Bonzini         qemu_cond_wait(&exclusive_resume, &qemu_cpu_list_lock);
186ab129972SPaolo Bonzini     }
187ab129972SPaolo Bonzini }
188ab129972SPaolo Bonzini 
189ab129972SPaolo Bonzini /* Start an exclusive operation.
190758e1b2bSPaolo Bonzini    Must only be called from outside cpu_exec.  */
191ab129972SPaolo Bonzini void start_exclusive(void)
192ab129972SPaolo Bonzini {
193ab129972SPaolo Bonzini     CPUState *other_cpu;
194c265e976SPaolo Bonzini     int running_cpus;
195ab129972SPaolo Bonzini 
196df8a6880SIlya Leoshkevich     if (current_cpu->exclusive_context_count) {
197df8a6880SIlya Leoshkevich         current_cpu->exclusive_context_count++;
198df8a6880SIlya Leoshkevich         return;
199df8a6880SIlya Leoshkevich     }
200df8a6880SIlya Leoshkevich 
201ab129972SPaolo Bonzini     qemu_mutex_lock(&qemu_cpu_list_lock);
202ab129972SPaolo Bonzini     exclusive_idle();
203ab129972SPaolo Bonzini 
204ab129972SPaolo Bonzini     /* Make all other cpus stop executing.  */
205d73415a3SStefan Hajnoczi     qatomic_set(&pending_cpus, 1);
206c265e976SPaolo Bonzini 
207c265e976SPaolo Bonzini     /* Write pending_cpus before reading other_cpu->running.  */
208c265e976SPaolo Bonzini     smp_mb();
209c265e976SPaolo Bonzini     running_cpus = 0;
210ab129972SPaolo Bonzini     CPU_FOREACH(other_cpu) {
211d73415a3SStefan Hajnoczi         if (qatomic_read(&other_cpu->running)) {
212c265e976SPaolo Bonzini             other_cpu->has_waiter = true;
213c265e976SPaolo Bonzini             running_cpus++;
214ab129972SPaolo Bonzini             qemu_cpu_kick(other_cpu);
215ab129972SPaolo Bonzini         }
216ab129972SPaolo Bonzini     }
217c265e976SPaolo Bonzini 
218d73415a3SStefan Hajnoczi     qatomic_set(&pending_cpus, running_cpus + 1);
219ab129972SPaolo Bonzini     while (pending_cpus > 1) {
220ab129972SPaolo Bonzini         qemu_cond_wait(&exclusive_cond, &qemu_cpu_list_lock);
221ab129972SPaolo Bonzini     }
222758e1b2bSPaolo Bonzini 
223758e1b2bSPaolo Bonzini     /* Can release mutex, no one will enter another exclusive
224758e1b2bSPaolo Bonzini      * section until end_exclusive resets pending_cpus to 0.
225758e1b2bSPaolo Bonzini      */
226758e1b2bSPaolo Bonzini     qemu_mutex_unlock(&qemu_cpu_list_lock);
227cfbc3c60SEmilio G. Cota 
228df8a6880SIlya Leoshkevich     current_cpu->exclusive_context_count = 1;
229ab129972SPaolo Bonzini }
230ab129972SPaolo Bonzini 
231758e1b2bSPaolo Bonzini /* Finish an exclusive operation.  */
232ab129972SPaolo Bonzini void end_exclusive(void)
233ab129972SPaolo Bonzini {
234df8a6880SIlya Leoshkevich     current_cpu->exclusive_context_count--;
235df8a6880SIlya Leoshkevich     if (current_cpu->exclusive_context_count) {
236df8a6880SIlya Leoshkevich         return;
237df8a6880SIlya Leoshkevich     }
238cfbc3c60SEmilio G. Cota 
239758e1b2bSPaolo Bonzini     qemu_mutex_lock(&qemu_cpu_list_lock);
240d73415a3SStefan Hajnoczi     qatomic_set(&pending_cpus, 0);
241ab129972SPaolo Bonzini     qemu_cond_broadcast(&exclusive_resume);
242ab129972SPaolo Bonzini     qemu_mutex_unlock(&qemu_cpu_list_lock);
243ab129972SPaolo Bonzini }
244ab129972SPaolo Bonzini 
245ab129972SPaolo Bonzini /* Wait for exclusive ops to finish, and begin cpu execution.  */
246ab129972SPaolo Bonzini void cpu_exec_start(CPUState *cpu)
247ab129972SPaolo Bonzini {
248d73415a3SStefan Hajnoczi     qatomic_set(&cpu->running, true);
249c265e976SPaolo Bonzini 
250c265e976SPaolo Bonzini     /* Write cpu->running before reading pending_cpus.  */
251c265e976SPaolo Bonzini     smp_mb();
252c265e976SPaolo Bonzini 
253c265e976SPaolo Bonzini     /* 1. start_exclusive saw cpu->running == true and pending_cpus >= 1.
254c265e976SPaolo Bonzini      * After taking the lock we'll see cpu->has_waiter == true and run---not
255c265e976SPaolo Bonzini      * for long because start_exclusive kicked us.  cpu_exec_end will
256c265e976SPaolo Bonzini      * decrement pending_cpus and signal the waiter.
257c265e976SPaolo Bonzini      *
258c265e976SPaolo Bonzini      * 2. start_exclusive saw cpu->running == false but pending_cpus >= 1.
259c265e976SPaolo Bonzini      * This includes the case when an exclusive item is running now.
260c265e976SPaolo Bonzini      * Then we'll see cpu->has_waiter == false and wait for the item to
261c265e976SPaolo Bonzini      * complete.
262c265e976SPaolo Bonzini      *
263c265e976SPaolo Bonzini      * 3. pending_cpus == 0.  Then start_exclusive is definitely going to
264c265e976SPaolo Bonzini      * see cpu->running == true, and it will kick the CPU.
265c265e976SPaolo Bonzini      */
266d73415a3SStefan Hajnoczi     if (unlikely(qatomic_read(&pending_cpus))) {
2676e8a355dSDaniel Brodsky         QEMU_LOCK_GUARD(&qemu_cpu_list_lock);
268c265e976SPaolo Bonzini         if (!cpu->has_waiter) {
269c265e976SPaolo Bonzini             /* Not counted in pending_cpus, let the exclusive item
270c265e976SPaolo Bonzini              * run.  Since we have the lock, just set cpu->running to true
271c265e976SPaolo Bonzini              * while holding it; no need to check pending_cpus again.
272c265e976SPaolo Bonzini              */
273d73415a3SStefan Hajnoczi             qatomic_set(&cpu->running, false);
274ab129972SPaolo Bonzini             exclusive_idle();
275c265e976SPaolo Bonzini             /* Now pending_cpus is zero.  */
276d73415a3SStefan Hajnoczi             qatomic_set(&cpu->running, true);
277c265e976SPaolo Bonzini         } else {
278c265e976SPaolo Bonzini             /* Counted in pending_cpus, go ahead and release the
279c265e976SPaolo Bonzini              * waiter at cpu_exec_end.
280c265e976SPaolo Bonzini              */
281c265e976SPaolo Bonzini         }
282ab129972SPaolo Bonzini     }
283c265e976SPaolo Bonzini }
284ab129972SPaolo Bonzini 
285ab129972SPaolo Bonzini /* Mark cpu as not executing, and release pending exclusive ops.  */
286ab129972SPaolo Bonzini void cpu_exec_end(CPUState *cpu)
287ab129972SPaolo Bonzini {
288d73415a3SStefan Hajnoczi     qatomic_set(&cpu->running, false);
289c265e976SPaolo Bonzini 
290c265e976SPaolo Bonzini     /* Write cpu->running before reading pending_cpus.  */
291c265e976SPaolo Bonzini     smp_mb();
292c265e976SPaolo Bonzini 
293c265e976SPaolo Bonzini     /* 1. start_exclusive saw cpu->running == true.  Then it will increment
294c265e976SPaolo Bonzini      * pending_cpus and wait for exclusive_cond.  After taking the lock
295c265e976SPaolo Bonzini      * we'll see cpu->has_waiter == true.
296c265e976SPaolo Bonzini      *
297c265e976SPaolo Bonzini      * 2. start_exclusive saw cpu->running == false but here pending_cpus >= 1.
298c265e976SPaolo Bonzini      * This includes the case when an exclusive item started after setting
299c265e976SPaolo Bonzini      * cpu->running to false and before we read pending_cpus.  Then we'll see
300c265e976SPaolo Bonzini      * cpu->has_waiter == false and not touch pending_cpus.  The next call to
301c265e976SPaolo Bonzini      * cpu_exec_start will run exclusive_idle if still necessary, thus waiting
302c265e976SPaolo Bonzini      * for the item to complete.
303c265e976SPaolo Bonzini      *
304c265e976SPaolo Bonzini      * 3. pending_cpus == 0.  Then start_exclusive is definitely going to
305c265e976SPaolo Bonzini      * see cpu->running == false, and it can ignore this CPU until the
306c265e976SPaolo Bonzini      * next cpu_exec_start.
307c265e976SPaolo Bonzini      */
308d73415a3SStefan Hajnoczi     if (unlikely(qatomic_read(&pending_cpus))) {
3096e8a355dSDaniel Brodsky         QEMU_LOCK_GUARD(&qemu_cpu_list_lock);
310c265e976SPaolo Bonzini         if (cpu->has_waiter) {
311c265e976SPaolo Bonzini             cpu->has_waiter = false;
312d73415a3SStefan Hajnoczi             qatomic_set(&pending_cpus, pending_cpus - 1);
313ab129972SPaolo Bonzini             if (pending_cpus == 1) {
314ab129972SPaolo Bonzini                 qemu_cond_signal(&exclusive_cond);
315ab129972SPaolo Bonzini             }
316ab129972SPaolo Bonzini         }
317ab129972SPaolo Bonzini     }
318c265e976SPaolo Bonzini }
319ab129972SPaolo Bonzini 
32014e6fe12SPaolo Bonzini void async_safe_run_on_cpu(CPUState *cpu, run_on_cpu_func func,
32114e6fe12SPaolo Bonzini                            run_on_cpu_data data)
32253f5ed95SPaolo Bonzini {
32353f5ed95SPaolo Bonzini     struct qemu_work_item *wi;
32453f5ed95SPaolo Bonzini 
325b21e2380SMarkus Armbruster     wi = g_new0(struct qemu_work_item, 1);
32653f5ed95SPaolo Bonzini     wi->func = func;
32753f5ed95SPaolo Bonzini     wi->data = data;
32853f5ed95SPaolo Bonzini     wi->free = true;
32953f5ed95SPaolo Bonzini     wi->exclusive = true;
33053f5ed95SPaolo Bonzini 
33153f5ed95SPaolo Bonzini     queue_work_on_cpu(cpu, wi);
33253f5ed95SPaolo Bonzini }
33353f5ed95SPaolo Bonzini 
334d148d90eSSergey Fedorov void process_queued_cpu_work(CPUState *cpu)
335d148d90eSSergey Fedorov {
336d148d90eSSergey Fedorov     struct qemu_work_item *wi;
337d148d90eSSergey Fedorov 
3380c0fcc20SEmilio G. Cota     qemu_mutex_lock(&cpu->work_mutex);
3390c0fcc20SEmilio G. Cota     if (QSIMPLEQ_EMPTY(&cpu->work_list)) {
3400c0fcc20SEmilio G. Cota         qemu_mutex_unlock(&cpu->work_mutex);
341d148d90eSSergey Fedorov         return;
342d148d90eSSergey Fedorov     }
3430c0fcc20SEmilio G. Cota     while (!QSIMPLEQ_EMPTY(&cpu->work_list)) {
3440c0fcc20SEmilio G. Cota         wi = QSIMPLEQ_FIRST(&cpu->work_list);
3450c0fcc20SEmilio G. Cota         QSIMPLEQ_REMOVE_HEAD(&cpu->work_list, node);
346d148d90eSSergey Fedorov         qemu_mutex_unlock(&cpu->work_mutex);
34753f5ed95SPaolo Bonzini         if (wi->exclusive) {
34853f5ed95SPaolo Bonzini             /* Running work items outside the BQL avoids the following deadlock:
34953f5ed95SPaolo Bonzini              * 1) start_exclusive() is called with the BQL taken while another
35053f5ed95SPaolo Bonzini              * CPU is running; 2) cpu_exec in the other CPU tries to takes the
35153f5ed95SPaolo Bonzini              * BQL, so it goes to sleep; start_exclusive() is sleeping too, so
35253f5ed95SPaolo Bonzini              * neither CPU can proceed.
35353f5ed95SPaolo Bonzini              */
35453f5ed95SPaolo Bonzini             qemu_mutex_unlock_iothread();
35553f5ed95SPaolo Bonzini             start_exclusive();
356d148d90eSSergey Fedorov             wi->func(cpu, wi->data);
35753f5ed95SPaolo Bonzini             end_exclusive();
35853f5ed95SPaolo Bonzini             qemu_mutex_lock_iothread();
35953f5ed95SPaolo Bonzini         } else {
36053f5ed95SPaolo Bonzini             wi->func(cpu, wi->data);
36153f5ed95SPaolo Bonzini         }
362d148d90eSSergey Fedorov         qemu_mutex_lock(&cpu->work_mutex);
363d148d90eSSergey Fedorov         if (wi->free) {
364d148d90eSSergey Fedorov             g_free(wi);
365d148d90eSSergey Fedorov         } else {
366d73415a3SStefan Hajnoczi             qatomic_mb_set(&wi->done, true);
367d148d90eSSergey Fedorov         }
368d148d90eSSergey Fedorov     }
369d148d90eSSergey Fedorov     qemu_mutex_unlock(&cpu->work_mutex);
370d148d90eSSergey Fedorov     qemu_cond_broadcast(&qemu_work_cond);
371d148d90eSSergey Fedorov }
372*8a8dc267SPhilippe Mathieu-Daudé 
373*8a8dc267SPhilippe Mathieu-Daudé /* Add a breakpoint.  */
374*8a8dc267SPhilippe Mathieu-Daudé int cpu_breakpoint_insert(CPUState *cpu, vaddr pc, int flags,
375*8a8dc267SPhilippe Mathieu-Daudé                           CPUBreakpoint **breakpoint)
376*8a8dc267SPhilippe Mathieu-Daudé {
377*8a8dc267SPhilippe Mathieu-Daudé     CPUClass *cc = CPU_GET_CLASS(cpu);
378*8a8dc267SPhilippe Mathieu-Daudé     CPUBreakpoint *bp;
379*8a8dc267SPhilippe Mathieu-Daudé 
380*8a8dc267SPhilippe Mathieu-Daudé     if (cc->gdb_adjust_breakpoint) {
381*8a8dc267SPhilippe Mathieu-Daudé         pc = cc->gdb_adjust_breakpoint(cpu, pc);
382*8a8dc267SPhilippe Mathieu-Daudé     }
383*8a8dc267SPhilippe Mathieu-Daudé 
384*8a8dc267SPhilippe Mathieu-Daudé     bp = g_malloc(sizeof(*bp));
385*8a8dc267SPhilippe Mathieu-Daudé 
386*8a8dc267SPhilippe Mathieu-Daudé     bp->pc = pc;
387*8a8dc267SPhilippe Mathieu-Daudé     bp->flags = flags;
388*8a8dc267SPhilippe Mathieu-Daudé 
389*8a8dc267SPhilippe Mathieu-Daudé     /* keep all GDB-injected breakpoints in front */
390*8a8dc267SPhilippe Mathieu-Daudé     if (flags & BP_GDB) {
391*8a8dc267SPhilippe Mathieu-Daudé         QTAILQ_INSERT_HEAD(&cpu->breakpoints, bp, entry);
392*8a8dc267SPhilippe Mathieu-Daudé     } else {
393*8a8dc267SPhilippe Mathieu-Daudé         QTAILQ_INSERT_TAIL(&cpu->breakpoints, bp, entry);
394*8a8dc267SPhilippe Mathieu-Daudé     }
395*8a8dc267SPhilippe Mathieu-Daudé 
396*8a8dc267SPhilippe Mathieu-Daudé     if (breakpoint) {
397*8a8dc267SPhilippe Mathieu-Daudé         *breakpoint = bp;
398*8a8dc267SPhilippe Mathieu-Daudé     }
399*8a8dc267SPhilippe Mathieu-Daudé 
400*8a8dc267SPhilippe Mathieu-Daudé     trace_breakpoint_insert(cpu->cpu_index, pc, flags);
401*8a8dc267SPhilippe Mathieu-Daudé     return 0;
402*8a8dc267SPhilippe Mathieu-Daudé }
403*8a8dc267SPhilippe Mathieu-Daudé 
404*8a8dc267SPhilippe Mathieu-Daudé /* Remove a specific breakpoint.  */
405*8a8dc267SPhilippe Mathieu-Daudé int cpu_breakpoint_remove(CPUState *cpu, vaddr pc, int flags)
406*8a8dc267SPhilippe Mathieu-Daudé {
407*8a8dc267SPhilippe Mathieu-Daudé     CPUClass *cc = CPU_GET_CLASS(cpu);
408*8a8dc267SPhilippe Mathieu-Daudé     CPUBreakpoint *bp;
409*8a8dc267SPhilippe Mathieu-Daudé 
410*8a8dc267SPhilippe Mathieu-Daudé     if (cc->gdb_adjust_breakpoint) {
411*8a8dc267SPhilippe Mathieu-Daudé         pc = cc->gdb_adjust_breakpoint(cpu, pc);
412*8a8dc267SPhilippe Mathieu-Daudé     }
413*8a8dc267SPhilippe Mathieu-Daudé 
414*8a8dc267SPhilippe Mathieu-Daudé     QTAILQ_FOREACH(bp, &cpu->breakpoints, entry) {
415*8a8dc267SPhilippe Mathieu-Daudé         if (bp->pc == pc && bp->flags == flags) {
416*8a8dc267SPhilippe Mathieu-Daudé             cpu_breakpoint_remove_by_ref(cpu, bp);
417*8a8dc267SPhilippe Mathieu-Daudé             return 0;
418*8a8dc267SPhilippe Mathieu-Daudé         }
419*8a8dc267SPhilippe Mathieu-Daudé     }
420*8a8dc267SPhilippe Mathieu-Daudé     return -ENOENT;
421*8a8dc267SPhilippe Mathieu-Daudé }
422*8a8dc267SPhilippe Mathieu-Daudé 
423*8a8dc267SPhilippe Mathieu-Daudé /* Remove a specific breakpoint by reference.  */
424*8a8dc267SPhilippe Mathieu-Daudé void cpu_breakpoint_remove_by_ref(CPUState *cpu, CPUBreakpoint *bp)
425*8a8dc267SPhilippe Mathieu-Daudé {
426*8a8dc267SPhilippe Mathieu-Daudé     QTAILQ_REMOVE(&cpu->breakpoints, bp, entry);
427*8a8dc267SPhilippe Mathieu-Daudé 
428*8a8dc267SPhilippe Mathieu-Daudé     trace_breakpoint_remove(cpu->cpu_index, bp->pc, bp->flags);
429*8a8dc267SPhilippe Mathieu-Daudé     g_free(bp);
430*8a8dc267SPhilippe Mathieu-Daudé }
431*8a8dc267SPhilippe Mathieu-Daudé 
432*8a8dc267SPhilippe Mathieu-Daudé /* Remove all matching breakpoints. */
433*8a8dc267SPhilippe Mathieu-Daudé void cpu_breakpoint_remove_all(CPUState *cpu, int mask)
434*8a8dc267SPhilippe Mathieu-Daudé {
435*8a8dc267SPhilippe Mathieu-Daudé     CPUBreakpoint *bp, *next;
436*8a8dc267SPhilippe Mathieu-Daudé 
437*8a8dc267SPhilippe Mathieu-Daudé     QTAILQ_FOREACH_SAFE(bp, &cpu->breakpoints, entry, next) {
438*8a8dc267SPhilippe Mathieu-Daudé         if (bp->flags & mask) {
439*8a8dc267SPhilippe Mathieu-Daudé             cpu_breakpoint_remove_by_ref(cpu, bp);
440*8a8dc267SPhilippe Mathieu-Daudé         }
441*8a8dc267SPhilippe Mathieu-Daudé     }
442*8a8dc267SPhilippe Mathieu-Daudé }
443