xref: /qemu/migration/postcopy-ram.c (revision 9ab7ef9b66661819086db9d2ca04e22408e5ca16)
1eb59db53SDr. David Alan Gilbert /*
2eb59db53SDr. David Alan Gilbert  * Postcopy migration for RAM
3eb59db53SDr. David Alan Gilbert  *
4eb59db53SDr. David Alan Gilbert  * Copyright 2013-2015 Red Hat, Inc. and/or its affiliates
5eb59db53SDr. David Alan Gilbert  *
6eb59db53SDr. David Alan Gilbert  * Authors:
7eb59db53SDr. David Alan Gilbert  *  Dave Gilbert  <dgilbert@redhat.com>
8eb59db53SDr. David Alan Gilbert  *
9eb59db53SDr. David Alan Gilbert  * This work is licensed under the terms of the GNU GPL, version 2 or later.
10eb59db53SDr. David Alan Gilbert  * See the COPYING file in the top-level directory.
11eb59db53SDr. David Alan Gilbert  *
12eb59db53SDr. David Alan Gilbert  */
13eb59db53SDr. David Alan Gilbert 
14eb59db53SDr. David Alan Gilbert /*
15eb59db53SDr. David Alan Gilbert  * Postcopy is a migration technique where the execution flips from the
16eb59db53SDr. David Alan Gilbert  * source to the destination before all the data has been copied.
17eb59db53SDr. David Alan Gilbert  */
18eb59db53SDr. David Alan Gilbert 
191393a485SPeter Maydell #include "qemu/osdep.h"
2051180423SJuan Quintela #include "exec/target_page.h"
216666c96aSJuan Quintela #include "migration.h"
2208a0aee1SJuan Quintela #include "qemu-file.h"
2320a519a0SJuan Quintela #include "savevm.h"
24be07b0acSJuan Quintela #include "postcopy-ram.h"
257b1e1a22SJuan Quintela #include "ram.h"
26eb59db53SDr. David Alan Gilbert #include "sysemu/sysemu.h"
27371ff5a3SDr. David Alan Gilbert #include "sysemu/balloon.h"
28eb59db53SDr. David Alan Gilbert #include "qemu/error-report.h"
29eb59db53SDr. David Alan Gilbert #include "trace.h"
30eb59db53SDr. David Alan Gilbert 
31e0b266f0SDr. David Alan Gilbert /* Arbitrary limit on size of each discard command,
32e0b266f0SDr. David Alan Gilbert  * keeps them around ~200 bytes
33e0b266f0SDr. David Alan Gilbert  */
34e0b266f0SDr. David Alan Gilbert #define MAX_DISCARDS_PER_COMMAND 12
35e0b266f0SDr. David Alan Gilbert 
36e0b266f0SDr. David Alan Gilbert struct PostcopyDiscardState {
37e0b266f0SDr. David Alan Gilbert     const char *ramblock_name;
38e0b266f0SDr. David Alan Gilbert     uint16_t cur_entry;
39e0b266f0SDr. David Alan Gilbert     /*
40e0b266f0SDr. David Alan Gilbert      * Start and length of a discard range (bytes)
41e0b266f0SDr. David Alan Gilbert      */
42e0b266f0SDr. David Alan Gilbert     uint64_t start_list[MAX_DISCARDS_PER_COMMAND];
43e0b266f0SDr. David Alan Gilbert     uint64_t length_list[MAX_DISCARDS_PER_COMMAND];
44e0b266f0SDr. David Alan Gilbert     unsigned int nsentwords;
45e0b266f0SDr. David Alan Gilbert     unsigned int nsentcmds;
46e0b266f0SDr. David Alan Gilbert };
47e0b266f0SDr. David Alan Gilbert 
48eb59db53SDr. David Alan Gilbert /* Postcopy needs to detect accesses to pages that haven't yet been copied
49eb59db53SDr. David Alan Gilbert  * across, and efficiently map new pages in, the techniques for doing this
50eb59db53SDr. David Alan Gilbert  * are target OS specific.
51eb59db53SDr. David Alan Gilbert  */
52eb59db53SDr. David Alan Gilbert #if defined(__linux__)
53eb59db53SDr. David Alan Gilbert 
54c4faeed2SDr. David Alan Gilbert #include <poll.h>
55eb59db53SDr. David Alan Gilbert #include <sys/ioctl.h>
56eb59db53SDr. David Alan Gilbert #include <sys/syscall.h>
57eb59db53SDr. David Alan Gilbert #include <asm/types.h> /* for __u64 */
58eb59db53SDr. David Alan Gilbert #endif
59eb59db53SDr. David Alan Gilbert 
60d8b9d771SMatthew Fortune #if defined(__linux__) && defined(__NR_userfaultfd) && defined(CONFIG_EVENTFD)
61d8b9d771SMatthew Fortune #include <sys/eventfd.h>
62eb59db53SDr. David Alan Gilbert #include <linux/userfaultfd.h>
63eb59db53SDr. David Alan Gilbert 
64ca6011c2SAlexey Perevalov 
6554ae0886SAlexey Perevalov /**
6654ae0886SAlexey Perevalov  * receive_ufd_features: check userfault fd features, to request only supported
6754ae0886SAlexey Perevalov  * features in the future.
6854ae0886SAlexey Perevalov  *
6954ae0886SAlexey Perevalov  * Returns: true on success
7054ae0886SAlexey Perevalov  *
7154ae0886SAlexey Perevalov  * __NR_userfaultfd - should be checked before
7254ae0886SAlexey Perevalov  *  @features: out parameter will contain uffdio_api.features provided by kernel
7354ae0886SAlexey Perevalov  *              in case of success
7454ae0886SAlexey Perevalov  */
7554ae0886SAlexey Perevalov static bool receive_ufd_features(uint64_t *features)
7654ae0886SAlexey Perevalov {
7754ae0886SAlexey Perevalov     struct uffdio_api api_struct = {0};
7854ae0886SAlexey Perevalov     int ufd;
7954ae0886SAlexey Perevalov     bool ret = true;
8054ae0886SAlexey Perevalov 
8154ae0886SAlexey Perevalov     /* if we are here __NR_userfaultfd should exists */
8254ae0886SAlexey Perevalov     ufd = syscall(__NR_userfaultfd, O_CLOEXEC);
8354ae0886SAlexey Perevalov     if (ufd == -1) {
8454ae0886SAlexey Perevalov         error_report("%s: syscall __NR_userfaultfd failed: %s", __func__,
8554ae0886SAlexey Perevalov                      strerror(errno));
8654ae0886SAlexey Perevalov         return false;
8754ae0886SAlexey Perevalov     }
8854ae0886SAlexey Perevalov 
8954ae0886SAlexey Perevalov     /* ask features */
90eb59db53SDr. David Alan Gilbert     api_struct.api = UFFD_API;
91eb59db53SDr. David Alan Gilbert     api_struct.features = 0;
92eb59db53SDr. David Alan Gilbert     if (ioctl(ufd, UFFDIO_API, &api_struct)) {
935553499fSAlexey Perevalov         error_report("%s: UFFDIO_API failed: %s", __func__,
94eb59db53SDr. David Alan Gilbert                      strerror(errno));
9554ae0886SAlexey Perevalov         ret = false;
9654ae0886SAlexey Perevalov         goto release_ufd;
9754ae0886SAlexey Perevalov     }
9854ae0886SAlexey Perevalov 
9954ae0886SAlexey Perevalov     *features = api_struct.features;
10054ae0886SAlexey Perevalov 
10154ae0886SAlexey Perevalov release_ufd:
10254ae0886SAlexey Perevalov     close(ufd);
10354ae0886SAlexey Perevalov     return ret;
10454ae0886SAlexey Perevalov }
10554ae0886SAlexey Perevalov 
10654ae0886SAlexey Perevalov /**
10754ae0886SAlexey Perevalov  * request_ufd_features: this function should be called only once on a newly
10854ae0886SAlexey Perevalov  * opened ufd, subsequent calls will lead to error.
10954ae0886SAlexey Perevalov  *
11054ae0886SAlexey Perevalov  * Returns: true on succes
11154ae0886SAlexey Perevalov  *
11254ae0886SAlexey Perevalov  * @ufd: fd obtained from userfaultfd syscall
11354ae0886SAlexey Perevalov  * @features: bit mask see UFFD_API_FEATURES
11454ae0886SAlexey Perevalov  */
11554ae0886SAlexey Perevalov static bool request_ufd_features(int ufd, uint64_t features)
11654ae0886SAlexey Perevalov {
11754ae0886SAlexey Perevalov     struct uffdio_api api_struct = {0};
11854ae0886SAlexey Perevalov     uint64_t ioctl_mask;
11954ae0886SAlexey Perevalov 
12054ae0886SAlexey Perevalov     api_struct.api = UFFD_API;
12154ae0886SAlexey Perevalov     api_struct.features = features;
12254ae0886SAlexey Perevalov     if (ioctl(ufd, UFFDIO_API, &api_struct)) {
12354ae0886SAlexey Perevalov         error_report("%s failed: UFFDIO_API failed: %s", __func__,
12454ae0886SAlexey Perevalov                      strerror(errno));
125eb59db53SDr. David Alan Gilbert         return false;
126eb59db53SDr. David Alan Gilbert     }
127eb59db53SDr. David Alan Gilbert 
128eb59db53SDr. David Alan Gilbert     ioctl_mask = (__u64)1 << _UFFDIO_REGISTER |
129eb59db53SDr. David Alan Gilbert                  (__u64)1 << _UFFDIO_UNREGISTER;
130eb59db53SDr. David Alan Gilbert     if ((api_struct.ioctls & ioctl_mask) != ioctl_mask) {
131eb59db53SDr. David Alan Gilbert         error_report("Missing userfault features: %" PRIx64,
132eb59db53SDr. David Alan Gilbert                      (uint64_t)(~api_struct.ioctls & ioctl_mask));
133eb59db53SDr. David Alan Gilbert         return false;
134eb59db53SDr. David Alan Gilbert     }
135eb59db53SDr. David Alan Gilbert 
13654ae0886SAlexey Perevalov     return true;
13754ae0886SAlexey Perevalov }
13854ae0886SAlexey Perevalov 
13954ae0886SAlexey Perevalov static bool ufd_check_and_apply(int ufd, MigrationIncomingState *mis)
14054ae0886SAlexey Perevalov {
14154ae0886SAlexey Perevalov     uint64_t asked_features = 0;
14254ae0886SAlexey Perevalov     static uint64_t supported_features;
14354ae0886SAlexey Perevalov 
14454ae0886SAlexey Perevalov     /*
14554ae0886SAlexey Perevalov      * it's not possible to
14654ae0886SAlexey Perevalov      * request UFFD_API twice per one fd
14754ae0886SAlexey Perevalov      * userfault fd features is persistent
14854ae0886SAlexey Perevalov      */
14954ae0886SAlexey Perevalov     if (!supported_features) {
15054ae0886SAlexey Perevalov         if (!receive_ufd_features(&supported_features)) {
15154ae0886SAlexey Perevalov             error_report("%s failed", __func__);
15254ae0886SAlexey Perevalov             return false;
15354ae0886SAlexey Perevalov         }
15454ae0886SAlexey Perevalov     }
15554ae0886SAlexey Perevalov 
15654ae0886SAlexey Perevalov     /*
15754ae0886SAlexey Perevalov      * request features, even if asked_features is 0, due to
15854ae0886SAlexey Perevalov      * kernel expects UFFD_API before UFFDIO_REGISTER, per
15954ae0886SAlexey Perevalov      * userfault file descriptor
16054ae0886SAlexey Perevalov      */
16154ae0886SAlexey Perevalov     if (!request_ufd_features(ufd, asked_features)) {
16254ae0886SAlexey Perevalov         error_report("%s failed: features %" PRIu64, __func__,
16354ae0886SAlexey Perevalov                      asked_features);
16454ae0886SAlexey Perevalov         return false;
16554ae0886SAlexey Perevalov     }
16654ae0886SAlexey Perevalov 
1677e8cafb7SDr. David Alan Gilbert     if (getpagesize() != ram_pagesize_summary()) {
1687e8cafb7SDr. David Alan Gilbert         bool have_hp = false;
1697e8cafb7SDr. David Alan Gilbert         /* We've got a huge page */
1707e8cafb7SDr. David Alan Gilbert #ifdef UFFD_FEATURE_MISSING_HUGETLBFS
17154ae0886SAlexey Perevalov         have_hp = supported_features & UFFD_FEATURE_MISSING_HUGETLBFS;
1727e8cafb7SDr. David Alan Gilbert #endif
1737e8cafb7SDr. David Alan Gilbert         if (!have_hp) {
1747e8cafb7SDr. David Alan Gilbert             error_report("Userfault on this host does not support huge pages");
1757e8cafb7SDr. David Alan Gilbert             return false;
1767e8cafb7SDr. David Alan Gilbert         }
1777e8cafb7SDr. David Alan Gilbert     }
178eb59db53SDr. David Alan Gilbert     return true;
179eb59db53SDr. David Alan Gilbert }
180eb59db53SDr. David Alan Gilbert 
1818679638bSDr. David Alan Gilbert /* Callback from postcopy_ram_supported_by_host block iterator.
1828679638bSDr. David Alan Gilbert  */
1835d214a92SDr. David Alan Gilbert static int test_ramblock_postcopiable(const char *block_name, void *host_addr,
1848679638bSDr. David Alan Gilbert                              ram_addr_t offset, ram_addr_t length, void *opaque)
1858679638bSDr. David Alan Gilbert {
1865d214a92SDr. David Alan Gilbert     RAMBlock *rb = qemu_ram_block_by_name(block_name);
1875d214a92SDr. David Alan Gilbert     size_t pagesize = qemu_ram_pagesize(rb);
1885d214a92SDr. David Alan Gilbert 
1895d214a92SDr. David Alan Gilbert     if (qemu_ram_is_shared(rb)) {
1908679638bSDr. David Alan Gilbert         error_report("Postcopy on shared RAM (%s) is not yet supported",
1918679638bSDr. David Alan Gilbert                      block_name);
1928679638bSDr. David Alan Gilbert         return 1;
1938679638bSDr. David Alan Gilbert     }
1945d214a92SDr. David Alan Gilbert 
1955d214a92SDr. David Alan Gilbert     if (length % pagesize) {
1965d214a92SDr. David Alan Gilbert         error_report("Postcopy requires RAM blocks to be a page size multiple,"
1975d214a92SDr. David Alan Gilbert                      " block %s is 0x" RAM_ADDR_FMT " bytes with a "
1985d214a92SDr. David Alan Gilbert                      "page size of 0x%zx", block_name, length, pagesize);
1995d214a92SDr. David Alan Gilbert         return 1;
2005d214a92SDr. David Alan Gilbert     }
2018679638bSDr. David Alan Gilbert     return 0;
2028679638bSDr. David Alan Gilbert }
2038679638bSDr. David Alan Gilbert 
20458b7c17eSDr. David Alan Gilbert /*
20558b7c17eSDr. David Alan Gilbert  * Note: This has the side effect of munlock'ing all of RAM, that's
20658b7c17eSDr. David Alan Gilbert  * normally fine since if the postcopy succeeds it gets turned back on at the
20758b7c17eSDr. David Alan Gilbert  * end.
20858b7c17eSDr. David Alan Gilbert  */
209d7651f15SAlexey Perevalov bool postcopy_ram_supported_by_host(MigrationIncomingState *mis)
210eb59db53SDr. David Alan Gilbert {
211eb59db53SDr. David Alan Gilbert     long pagesize = getpagesize();
212eb59db53SDr. David Alan Gilbert     int ufd = -1;
213eb59db53SDr. David Alan Gilbert     bool ret = false; /* Error unless we change it */
214eb59db53SDr. David Alan Gilbert     void *testarea = NULL;
215eb59db53SDr. David Alan Gilbert     struct uffdio_register reg_struct;
216eb59db53SDr. David Alan Gilbert     struct uffdio_range range_struct;
217eb59db53SDr. David Alan Gilbert     uint64_t feature_mask;
218eb59db53SDr. David Alan Gilbert 
21920afaed9SJuan Quintela     if (qemu_target_page_size() > pagesize) {
220eb59db53SDr. David Alan Gilbert         error_report("Target page size bigger than host page size");
221eb59db53SDr. David Alan Gilbert         goto out;
222eb59db53SDr. David Alan Gilbert     }
223eb59db53SDr. David Alan Gilbert 
224eb59db53SDr. David Alan Gilbert     ufd = syscall(__NR_userfaultfd, O_CLOEXEC);
225eb59db53SDr. David Alan Gilbert     if (ufd == -1) {
226eb59db53SDr. David Alan Gilbert         error_report("%s: userfaultfd not available: %s", __func__,
227eb59db53SDr. David Alan Gilbert                      strerror(errno));
228eb59db53SDr. David Alan Gilbert         goto out;
229eb59db53SDr. David Alan Gilbert     }
230eb59db53SDr. David Alan Gilbert 
231eb59db53SDr. David Alan Gilbert     /* Version and features check */
23254ae0886SAlexey Perevalov     if (!ufd_check_and_apply(ufd, mis)) {
233eb59db53SDr. David Alan Gilbert         goto out;
234eb59db53SDr. David Alan Gilbert     }
235eb59db53SDr. David Alan Gilbert 
2368679638bSDr. David Alan Gilbert     /* We don't support postcopy with shared RAM yet */
2375d214a92SDr. David Alan Gilbert     if (qemu_ram_foreach_block(test_ramblock_postcopiable, NULL)) {
2388679638bSDr. David Alan Gilbert         goto out;
2398679638bSDr. David Alan Gilbert     }
2408679638bSDr. David Alan Gilbert 
241eb59db53SDr. David Alan Gilbert     /*
24258b7c17eSDr. David Alan Gilbert      * userfault and mlock don't go together; we'll put it back later if
24358b7c17eSDr. David Alan Gilbert      * it was enabled.
24458b7c17eSDr. David Alan Gilbert      */
24558b7c17eSDr. David Alan Gilbert     if (munlockall()) {
24658b7c17eSDr. David Alan Gilbert         error_report("%s: munlockall: %s", __func__,  strerror(errno));
24758b7c17eSDr. David Alan Gilbert         return -1;
24858b7c17eSDr. David Alan Gilbert     }
24958b7c17eSDr. David Alan Gilbert 
25058b7c17eSDr. David Alan Gilbert     /*
251eb59db53SDr. David Alan Gilbert      *  We need to check that the ops we need are supported on anon memory
252eb59db53SDr. David Alan Gilbert      *  To do that we need to register a chunk and see the flags that
253eb59db53SDr. David Alan Gilbert      *  are returned.
254eb59db53SDr. David Alan Gilbert      */
255eb59db53SDr. David Alan Gilbert     testarea = mmap(NULL, pagesize, PROT_READ | PROT_WRITE, MAP_PRIVATE |
256eb59db53SDr. David Alan Gilbert                                     MAP_ANONYMOUS, -1, 0);
257eb59db53SDr. David Alan Gilbert     if (testarea == MAP_FAILED) {
258eb59db53SDr. David Alan Gilbert         error_report("%s: Failed to map test area: %s", __func__,
259eb59db53SDr. David Alan Gilbert                      strerror(errno));
260eb59db53SDr. David Alan Gilbert         goto out;
261eb59db53SDr. David Alan Gilbert     }
262eb59db53SDr. David Alan Gilbert     g_assert(((size_t)testarea & (pagesize-1)) == 0);
263eb59db53SDr. David Alan Gilbert 
264eb59db53SDr. David Alan Gilbert     reg_struct.range.start = (uintptr_t)testarea;
265eb59db53SDr. David Alan Gilbert     reg_struct.range.len = pagesize;
266eb59db53SDr. David Alan Gilbert     reg_struct.mode = UFFDIO_REGISTER_MODE_MISSING;
267eb59db53SDr. David Alan Gilbert 
268eb59db53SDr. David Alan Gilbert     if (ioctl(ufd, UFFDIO_REGISTER, &reg_struct)) {
269eb59db53SDr. David Alan Gilbert         error_report("%s userfault register: %s", __func__, strerror(errno));
270eb59db53SDr. David Alan Gilbert         goto out;
271eb59db53SDr. David Alan Gilbert     }
272eb59db53SDr. David Alan Gilbert 
273eb59db53SDr. David Alan Gilbert     range_struct.start = (uintptr_t)testarea;
274eb59db53SDr. David Alan Gilbert     range_struct.len = pagesize;
275eb59db53SDr. David Alan Gilbert     if (ioctl(ufd, UFFDIO_UNREGISTER, &range_struct)) {
276eb59db53SDr. David Alan Gilbert         error_report("%s userfault unregister: %s", __func__, strerror(errno));
277eb59db53SDr. David Alan Gilbert         goto out;
278eb59db53SDr. David Alan Gilbert     }
279eb59db53SDr. David Alan Gilbert 
280eb59db53SDr. David Alan Gilbert     feature_mask = (__u64)1 << _UFFDIO_WAKE |
281eb59db53SDr. David Alan Gilbert                    (__u64)1 << _UFFDIO_COPY |
282eb59db53SDr. David Alan Gilbert                    (__u64)1 << _UFFDIO_ZEROPAGE;
283eb59db53SDr. David Alan Gilbert     if ((reg_struct.ioctls & feature_mask) != feature_mask) {
284eb59db53SDr. David Alan Gilbert         error_report("Missing userfault map features: %" PRIx64,
285eb59db53SDr. David Alan Gilbert                      (uint64_t)(~reg_struct.ioctls & feature_mask));
286eb59db53SDr. David Alan Gilbert         goto out;
287eb59db53SDr. David Alan Gilbert     }
288eb59db53SDr. David Alan Gilbert 
289eb59db53SDr. David Alan Gilbert     /* Success! */
290eb59db53SDr. David Alan Gilbert     ret = true;
291eb59db53SDr. David Alan Gilbert out:
292eb59db53SDr. David Alan Gilbert     if (testarea) {
293eb59db53SDr. David Alan Gilbert         munmap(testarea, pagesize);
294eb59db53SDr. David Alan Gilbert     }
295eb59db53SDr. David Alan Gilbert     if (ufd != -1) {
296eb59db53SDr. David Alan Gilbert         close(ufd);
297eb59db53SDr. David Alan Gilbert     }
298eb59db53SDr. David Alan Gilbert     return ret;
299eb59db53SDr. David Alan Gilbert }
300eb59db53SDr. David Alan Gilbert 
3011caddf8aSDr. David Alan Gilbert /*
3021caddf8aSDr. David Alan Gilbert  * Setup an area of RAM so that it *can* be used for postcopy later; this
3031caddf8aSDr. David Alan Gilbert  * must be done right at the start prior to pre-copy.
3041caddf8aSDr. David Alan Gilbert  * opaque should be the MIS.
3051caddf8aSDr. David Alan Gilbert  */
3061caddf8aSDr. David Alan Gilbert static int init_range(const char *block_name, void *host_addr,
3071caddf8aSDr. David Alan Gilbert                       ram_addr_t offset, ram_addr_t length, void *opaque)
3081caddf8aSDr. David Alan Gilbert {
3091caddf8aSDr. David Alan Gilbert     trace_postcopy_init_range(block_name, host_addr, offset, length);
3101caddf8aSDr. David Alan Gilbert 
3111caddf8aSDr. David Alan Gilbert     /*
3121caddf8aSDr. David Alan Gilbert      * We need the whole of RAM to be truly empty for postcopy, so things
3131caddf8aSDr. David Alan Gilbert      * like ROMs and any data tables built during init must be zero'd
3141caddf8aSDr. David Alan Gilbert      * - we're going to get the copy from the source anyway.
3151caddf8aSDr. David Alan Gilbert      * (Precopy will just overwrite this data, so doesn't need the discard)
3161caddf8aSDr. David Alan Gilbert      */
317aaa2064cSJuan Quintela     if (ram_discard_range(block_name, 0, length)) {
3181caddf8aSDr. David Alan Gilbert         return -1;
3191caddf8aSDr. David Alan Gilbert     }
3201caddf8aSDr. David Alan Gilbert 
3211caddf8aSDr. David Alan Gilbert     return 0;
3221caddf8aSDr. David Alan Gilbert }
3231caddf8aSDr. David Alan Gilbert 
3241caddf8aSDr. David Alan Gilbert /*
3251caddf8aSDr. David Alan Gilbert  * At the end of migration, undo the effects of init_range
3261caddf8aSDr. David Alan Gilbert  * opaque should be the MIS.
3271caddf8aSDr. David Alan Gilbert  */
3281caddf8aSDr. David Alan Gilbert static int cleanup_range(const char *block_name, void *host_addr,
3291caddf8aSDr. David Alan Gilbert                         ram_addr_t offset, ram_addr_t length, void *opaque)
3301caddf8aSDr. David Alan Gilbert {
3311caddf8aSDr. David Alan Gilbert     MigrationIncomingState *mis = opaque;
3321caddf8aSDr. David Alan Gilbert     struct uffdio_range range_struct;
3331caddf8aSDr. David Alan Gilbert     trace_postcopy_cleanup_range(block_name, host_addr, offset, length);
3341caddf8aSDr. David Alan Gilbert 
3351caddf8aSDr. David Alan Gilbert     /*
3361caddf8aSDr. David Alan Gilbert      * We turned off hugepage for the precopy stage with postcopy enabled
3371caddf8aSDr. David Alan Gilbert      * we can turn it back on now.
3381caddf8aSDr. David Alan Gilbert      */
3391d741439SDr. David Alan Gilbert     qemu_madvise(host_addr, length, QEMU_MADV_HUGEPAGE);
3401caddf8aSDr. David Alan Gilbert 
3411caddf8aSDr. David Alan Gilbert     /*
3421caddf8aSDr. David Alan Gilbert      * We can also turn off userfault now since we should have all the
3431caddf8aSDr. David Alan Gilbert      * pages.   It can be useful to leave it on to debug postcopy
3441caddf8aSDr. David Alan Gilbert      * if you're not sure it's always getting every page.
3451caddf8aSDr. David Alan Gilbert      */
3461caddf8aSDr. David Alan Gilbert     range_struct.start = (uintptr_t)host_addr;
3471caddf8aSDr. David Alan Gilbert     range_struct.len = length;
3481caddf8aSDr. David Alan Gilbert 
3491caddf8aSDr. David Alan Gilbert     if (ioctl(mis->userfault_fd, UFFDIO_UNREGISTER, &range_struct)) {
3501caddf8aSDr. David Alan Gilbert         error_report("%s: userfault unregister %s", __func__, strerror(errno));
3511caddf8aSDr. David Alan Gilbert 
3521caddf8aSDr. David Alan Gilbert         return -1;
3531caddf8aSDr. David Alan Gilbert     }
3541caddf8aSDr. David Alan Gilbert 
3551caddf8aSDr. David Alan Gilbert     return 0;
3561caddf8aSDr. David Alan Gilbert }
3571caddf8aSDr. David Alan Gilbert 
3581caddf8aSDr. David Alan Gilbert /*
3591caddf8aSDr. David Alan Gilbert  * Initialise postcopy-ram, setting the RAM to a state where we can go into
3601caddf8aSDr. David Alan Gilbert  * postcopy later; must be called prior to any precopy.
3611caddf8aSDr. David Alan Gilbert  * called from arch_init's similarly named ram_postcopy_incoming_init
3621caddf8aSDr. David Alan Gilbert  */
3631caddf8aSDr. David Alan Gilbert int postcopy_ram_incoming_init(MigrationIncomingState *mis, size_t ram_pages)
3641caddf8aSDr. David Alan Gilbert {
365aaa2064cSJuan Quintela     if (qemu_ram_foreach_block(init_range, NULL)) {
3661caddf8aSDr. David Alan Gilbert         return -1;
3671caddf8aSDr. David Alan Gilbert     }
3681caddf8aSDr. David Alan Gilbert 
3691caddf8aSDr. David Alan Gilbert     return 0;
3701caddf8aSDr. David Alan Gilbert }
3711caddf8aSDr. David Alan Gilbert 
3721caddf8aSDr. David Alan Gilbert /*
3731caddf8aSDr. David Alan Gilbert  * At the end of a migration where postcopy_ram_incoming_init was called.
3741caddf8aSDr. David Alan Gilbert  */
3751caddf8aSDr. David Alan Gilbert int postcopy_ram_incoming_cleanup(MigrationIncomingState *mis)
3761caddf8aSDr. David Alan Gilbert {
377c4faeed2SDr. David Alan Gilbert     trace_postcopy_ram_incoming_cleanup_entry();
378c4faeed2SDr. David Alan Gilbert 
379c4faeed2SDr. David Alan Gilbert     if (mis->have_fault_thread) {
3801caddf8aSDr. David Alan Gilbert         if (qemu_ram_foreach_block(cleanup_range, mis)) {
3811caddf8aSDr. David Alan Gilbert             return -1;
3821caddf8aSDr. David Alan Gilbert         }
383*9ab7ef9bSPeter Xu         /* Let the fault thread quit */
38464f615feSPeter Xu         atomic_set(&mis->fault_thread_quit, 1);
385*9ab7ef9bSPeter Xu         postcopy_fault_thread_notify(mis);
386c4faeed2SDr. David Alan Gilbert         trace_postcopy_ram_incoming_cleanup_join();
387c4faeed2SDr. David Alan Gilbert         qemu_thread_join(&mis->fault_thread);
388*9ab7ef9bSPeter Xu 
389c4faeed2SDr. David Alan Gilbert         trace_postcopy_ram_incoming_cleanup_closeuf();
390c4faeed2SDr. David Alan Gilbert         close(mis->userfault_fd);
39164f615feSPeter Xu         close(mis->userfault_event_fd);
392c4faeed2SDr. David Alan Gilbert         mis->have_fault_thread = false;
393c4faeed2SDr. David Alan Gilbert     }
394c4faeed2SDr. David Alan Gilbert 
395371ff5a3SDr. David Alan Gilbert     qemu_balloon_inhibit(false);
396371ff5a3SDr. David Alan Gilbert 
39758b7c17eSDr. David Alan Gilbert     if (enable_mlock) {
39858b7c17eSDr. David Alan Gilbert         if (os_mlock() < 0) {
39958b7c17eSDr. David Alan Gilbert             error_report("mlock: %s", strerror(errno));
40058b7c17eSDr. David Alan Gilbert             /*
40158b7c17eSDr. David Alan Gilbert              * It doesn't feel right to fail at this point, we have a valid
40258b7c17eSDr. David Alan Gilbert              * VM state.
40358b7c17eSDr. David Alan Gilbert              */
40458b7c17eSDr. David Alan Gilbert         }
40558b7c17eSDr. David Alan Gilbert     }
40658b7c17eSDr. David Alan Gilbert 
407c4faeed2SDr. David Alan Gilbert     postcopy_state_set(POSTCOPY_INCOMING_END);
4081caddf8aSDr. David Alan Gilbert 
409696ed9a9SDr. David Alan Gilbert     if (mis->postcopy_tmp_page) {
410df9ff5e1SDr. David Alan Gilbert         munmap(mis->postcopy_tmp_page, mis->largest_page_size);
411696ed9a9SDr. David Alan Gilbert         mis->postcopy_tmp_page = NULL;
412696ed9a9SDr. David Alan Gilbert     }
41341d84210SDr. David Alan Gilbert     if (mis->postcopy_tmp_zero_page) {
41441d84210SDr. David Alan Gilbert         munmap(mis->postcopy_tmp_zero_page, mis->largest_page_size);
41541d84210SDr. David Alan Gilbert         mis->postcopy_tmp_zero_page = NULL;
41641d84210SDr. David Alan Gilbert     }
417c4faeed2SDr. David Alan Gilbert     trace_postcopy_ram_incoming_cleanup_exit();
4181caddf8aSDr. David Alan Gilbert     return 0;
4191caddf8aSDr. David Alan Gilbert }
4201caddf8aSDr. David Alan Gilbert 
421f0a227adSDr. David Alan Gilbert /*
422f9527107SDr. David Alan Gilbert  * Disable huge pages on an area
423f9527107SDr. David Alan Gilbert  */
424f9527107SDr. David Alan Gilbert static int nhp_range(const char *block_name, void *host_addr,
425f9527107SDr. David Alan Gilbert                     ram_addr_t offset, ram_addr_t length, void *opaque)
426f9527107SDr. David Alan Gilbert {
427f9527107SDr. David Alan Gilbert     trace_postcopy_nhp_range(block_name, host_addr, offset, length);
428f9527107SDr. David Alan Gilbert 
429f9527107SDr. David Alan Gilbert     /*
430f9527107SDr. David Alan Gilbert      * Before we do discards we need to ensure those discards really
431f9527107SDr. David Alan Gilbert      * do delete areas of the page, even if THP thinks a hugepage would
432f9527107SDr. David Alan Gilbert      * be a good idea, so force hugepages off.
433f9527107SDr. David Alan Gilbert      */
4341d741439SDr. David Alan Gilbert     qemu_madvise(host_addr, length, QEMU_MADV_NOHUGEPAGE);
435f9527107SDr. David Alan Gilbert 
436f9527107SDr. David Alan Gilbert     return 0;
437f9527107SDr. David Alan Gilbert }
438f9527107SDr. David Alan Gilbert 
439f9527107SDr. David Alan Gilbert /*
440f9527107SDr. David Alan Gilbert  * Userfault requires us to mark RAM as NOHUGEPAGE prior to discard
441f9527107SDr. David Alan Gilbert  * however leaving it until after precopy means that most of the precopy
442f9527107SDr. David Alan Gilbert  * data is still THPd
443f9527107SDr. David Alan Gilbert  */
444f9527107SDr. David Alan Gilbert int postcopy_ram_prepare_discard(MigrationIncomingState *mis)
445f9527107SDr. David Alan Gilbert {
446f9527107SDr. David Alan Gilbert     if (qemu_ram_foreach_block(nhp_range, mis)) {
447f9527107SDr. David Alan Gilbert         return -1;
448f9527107SDr. David Alan Gilbert     }
449f9527107SDr. David Alan Gilbert 
450f9527107SDr. David Alan Gilbert     postcopy_state_set(POSTCOPY_INCOMING_DISCARD);
451f9527107SDr. David Alan Gilbert 
452f9527107SDr. David Alan Gilbert     return 0;
453f9527107SDr. David Alan Gilbert }
454f9527107SDr. David Alan Gilbert 
455f9527107SDr. David Alan Gilbert /*
456f0a227adSDr. David Alan Gilbert  * Mark the given area of RAM as requiring notification to unwritten areas
457f0a227adSDr. David Alan Gilbert  * Used as a  callback on qemu_ram_foreach_block.
458f0a227adSDr. David Alan Gilbert  *   host_addr: Base of area to mark
459f0a227adSDr. David Alan Gilbert  *   offset: Offset in the whole ram arena
460f0a227adSDr. David Alan Gilbert  *   length: Length of the section
461f0a227adSDr. David Alan Gilbert  *   opaque: MigrationIncomingState pointer
462f0a227adSDr. David Alan Gilbert  * Returns 0 on success
463f0a227adSDr. David Alan Gilbert  */
464f0a227adSDr. David Alan Gilbert static int ram_block_enable_notify(const char *block_name, void *host_addr,
465f0a227adSDr. David Alan Gilbert                                    ram_addr_t offset, ram_addr_t length,
466f0a227adSDr. David Alan Gilbert                                    void *opaque)
467f0a227adSDr. David Alan Gilbert {
468f0a227adSDr. David Alan Gilbert     MigrationIncomingState *mis = opaque;
469f0a227adSDr. David Alan Gilbert     struct uffdio_register reg_struct;
470f0a227adSDr. David Alan Gilbert 
471f0a227adSDr. David Alan Gilbert     reg_struct.range.start = (uintptr_t)host_addr;
472f0a227adSDr. David Alan Gilbert     reg_struct.range.len = length;
473f0a227adSDr. David Alan Gilbert     reg_struct.mode = UFFDIO_REGISTER_MODE_MISSING;
474f0a227adSDr. David Alan Gilbert 
475f0a227adSDr. David Alan Gilbert     /* Now tell our userfault_fd that it's responsible for this area */
476f0a227adSDr. David Alan Gilbert     if (ioctl(mis->userfault_fd, UFFDIO_REGISTER, &reg_struct)) {
477f0a227adSDr. David Alan Gilbert         error_report("%s userfault register: %s", __func__, strerror(errno));
478f0a227adSDr. David Alan Gilbert         return -1;
479f0a227adSDr. David Alan Gilbert     }
480665414adSDr. David Alan Gilbert     if (!(reg_struct.ioctls & ((__u64)1 << _UFFDIO_COPY))) {
481665414adSDr. David Alan Gilbert         error_report("%s userfault: Region doesn't support COPY", __func__);
482665414adSDr. David Alan Gilbert         return -1;
483665414adSDr. David Alan Gilbert     }
484f0a227adSDr. David Alan Gilbert 
485f0a227adSDr. David Alan Gilbert     return 0;
486f0a227adSDr. David Alan Gilbert }
487f0a227adSDr. David Alan Gilbert 
488f0a227adSDr. David Alan Gilbert /*
489f0a227adSDr. David Alan Gilbert  * Handle faults detected by the USERFAULT markings
490f0a227adSDr. David Alan Gilbert  */
491f0a227adSDr. David Alan Gilbert static void *postcopy_ram_fault_thread(void *opaque)
492f0a227adSDr. David Alan Gilbert {
493f0a227adSDr. David Alan Gilbert     MigrationIncomingState *mis = opaque;
494c4faeed2SDr. David Alan Gilbert     struct uffd_msg msg;
495c4faeed2SDr. David Alan Gilbert     int ret;
496c4faeed2SDr. David Alan Gilbert     RAMBlock *rb = NULL;
497c4faeed2SDr. David Alan Gilbert     RAMBlock *last_rb = NULL; /* last RAMBlock we sent part of */
498f0a227adSDr. David Alan Gilbert 
499c4faeed2SDr. David Alan Gilbert     trace_postcopy_ram_fault_thread_entry();
500f0a227adSDr. David Alan Gilbert     qemu_sem_post(&mis->fault_thread_sem);
501c4faeed2SDr. David Alan Gilbert 
502c4faeed2SDr. David Alan Gilbert     while (true) {
503c4faeed2SDr. David Alan Gilbert         ram_addr_t rb_offset;
504c4faeed2SDr. David Alan Gilbert         struct pollfd pfd[2];
505c4faeed2SDr. David Alan Gilbert 
506c4faeed2SDr. David Alan Gilbert         /*
507c4faeed2SDr. David Alan Gilbert          * We're mainly waiting for the kernel to give us a faulting HVA,
508c4faeed2SDr. David Alan Gilbert          * however we can be told to quit via userfault_quit_fd which is
509c4faeed2SDr. David Alan Gilbert          * an eventfd
510c4faeed2SDr. David Alan Gilbert          */
511c4faeed2SDr. David Alan Gilbert         pfd[0].fd = mis->userfault_fd;
512c4faeed2SDr. David Alan Gilbert         pfd[0].events = POLLIN;
513c4faeed2SDr. David Alan Gilbert         pfd[0].revents = 0;
51464f615feSPeter Xu         pfd[1].fd = mis->userfault_event_fd;
515c4faeed2SDr. David Alan Gilbert         pfd[1].events = POLLIN; /* Waiting for eventfd to go positive */
516c4faeed2SDr. David Alan Gilbert         pfd[1].revents = 0;
517c4faeed2SDr. David Alan Gilbert 
518c4faeed2SDr. David Alan Gilbert         if (poll(pfd, 2, -1 /* Wait forever */) == -1) {
519c4faeed2SDr. David Alan Gilbert             error_report("%s: userfault poll: %s", __func__, strerror(errno));
520c4faeed2SDr. David Alan Gilbert             break;
521f0a227adSDr. David Alan Gilbert         }
522f0a227adSDr. David Alan Gilbert 
523c4faeed2SDr. David Alan Gilbert         if (pfd[1].revents) {
52464f615feSPeter Xu             uint64_t tmp64 = 0;
52564f615feSPeter Xu 
52664f615feSPeter Xu             /* Consume the signal */
52764f615feSPeter Xu             if (read(mis->userfault_event_fd, &tmp64, 8) != 8) {
52864f615feSPeter Xu                 /* Nothing obviously nicer than posting this error. */
52964f615feSPeter Xu                 error_report("%s: read() failed", __func__);
53064f615feSPeter Xu             }
53164f615feSPeter Xu 
53264f615feSPeter Xu             if (atomic_read(&mis->fault_thread_quit)) {
533c4faeed2SDr. David Alan Gilbert                 trace_postcopy_ram_fault_thread_quit();
534c4faeed2SDr. David Alan Gilbert                 break;
535c4faeed2SDr. David Alan Gilbert             }
53664f615feSPeter Xu         }
537c4faeed2SDr. David Alan Gilbert 
538c4faeed2SDr. David Alan Gilbert         ret = read(mis->userfault_fd, &msg, sizeof(msg));
539c4faeed2SDr. David Alan Gilbert         if (ret != sizeof(msg)) {
540c4faeed2SDr. David Alan Gilbert             if (errno == EAGAIN) {
541c4faeed2SDr. David Alan Gilbert                 /*
542c4faeed2SDr. David Alan Gilbert                  * if a wake up happens on the other thread just after
543c4faeed2SDr. David Alan Gilbert                  * the poll, there is nothing to read.
544c4faeed2SDr. David Alan Gilbert                  */
545c4faeed2SDr. David Alan Gilbert                 continue;
546c4faeed2SDr. David Alan Gilbert             }
547c4faeed2SDr. David Alan Gilbert             if (ret < 0) {
548c4faeed2SDr. David Alan Gilbert                 error_report("%s: Failed to read full userfault message: %s",
549c4faeed2SDr. David Alan Gilbert                              __func__, strerror(errno));
550c4faeed2SDr. David Alan Gilbert                 break;
551c4faeed2SDr. David Alan Gilbert             } else {
552c4faeed2SDr. David Alan Gilbert                 error_report("%s: Read %d bytes from userfaultfd expected %zd",
553c4faeed2SDr. David Alan Gilbert                              __func__, ret, sizeof(msg));
554c4faeed2SDr. David Alan Gilbert                 break; /* Lost alignment, don't know what we'd read next */
555c4faeed2SDr. David Alan Gilbert             }
556c4faeed2SDr. David Alan Gilbert         }
557c4faeed2SDr. David Alan Gilbert         if (msg.event != UFFD_EVENT_PAGEFAULT) {
558c4faeed2SDr. David Alan Gilbert             error_report("%s: Read unexpected event %ud from userfaultfd",
559c4faeed2SDr. David Alan Gilbert                          __func__, msg.event);
560c4faeed2SDr. David Alan Gilbert             continue; /* It's not a page fault, shouldn't happen */
561c4faeed2SDr. David Alan Gilbert         }
562c4faeed2SDr. David Alan Gilbert 
563c4faeed2SDr. David Alan Gilbert         rb = qemu_ram_block_from_host(
564c4faeed2SDr. David Alan Gilbert                  (void *)(uintptr_t)msg.arg.pagefault.address,
565f615f396SPaolo Bonzini                  true, &rb_offset);
566c4faeed2SDr. David Alan Gilbert         if (!rb) {
567c4faeed2SDr. David Alan Gilbert             error_report("postcopy_ram_fault_thread: Fault outside guest: %"
568c4faeed2SDr. David Alan Gilbert                          PRIx64, (uint64_t)msg.arg.pagefault.address);
569c4faeed2SDr. David Alan Gilbert             break;
570c4faeed2SDr. David Alan Gilbert         }
571c4faeed2SDr. David Alan Gilbert 
572332847f0SDr. David Alan Gilbert         rb_offset &= ~(qemu_ram_pagesize(rb) - 1);
573c4faeed2SDr. David Alan Gilbert         trace_postcopy_ram_fault_thread_request(msg.arg.pagefault.address,
574c4faeed2SDr. David Alan Gilbert                                                 qemu_ram_get_idstr(rb),
575ee86981bSPeter Maydell                                                 rb_offset);
576c4faeed2SDr. David Alan Gilbert 
577c4faeed2SDr. David Alan Gilbert         /*
578c4faeed2SDr. David Alan Gilbert          * Send the request to the source - we want to request one
579c4faeed2SDr. David Alan Gilbert          * of our host page sizes (which is >= TPS)
580c4faeed2SDr. David Alan Gilbert          */
581c4faeed2SDr. David Alan Gilbert         if (rb != last_rb) {
582c4faeed2SDr. David Alan Gilbert             last_rb = rb;
583c4faeed2SDr. David Alan Gilbert             migrate_send_rp_req_pages(mis, qemu_ram_get_idstr(rb),
584332847f0SDr. David Alan Gilbert                                      rb_offset, qemu_ram_pagesize(rb));
585c4faeed2SDr. David Alan Gilbert         } else {
586c4faeed2SDr. David Alan Gilbert             /* Save some space */
587c4faeed2SDr. David Alan Gilbert             migrate_send_rp_req_pages(mis, NULL,
588332847f0SDr. David Alan Gilbert                                      rb_offset, qemu_ram_pagesize(rb));
589c4faeed2SDr. David Alan Gilbert         }
590c4faeed2SDr. David Alan Gilbert     }
591c4faeed2SDr. David Alan Gilbert     trace_postcopy_ram_fault_thread_exit();
592f0a227adSDr. David Alan Gilbert     return NULL;
593f0a227adSDr. David Alan Gilbert }
594f0a227adSDr. David Alan Gilbert 
595f0a227adSDr. David Alan Gilbert int postcopy_ram_enable_notify(MigrationIncomingState *mis)
596f0a227adSDr. David Alan Gilbert {
597c4faeed2SDr. David Alan Gilbert     /* Open the fd for the kernel to give us userfaults */
598c4faeed2SDr. David Alan Gilbert     mis->userfault_fd = syscall(__NR_userfaultfd, O_CLOEXEC | O_NONBLOCK);
599c4faeed2SDr. David Alan Gilbert     if (mis->userfault_fd == -1) {
600c4faeed2SDr. David Alan Gilbert         error_report("%s: Failed to open userfault fd: %s", __func__,
601c4faeed2SDr. David Alan Gilbert                      strerror(errno));
602c4faeed2SDr. David Alan Gilbert         return -1;
603c4faeed2SDr. David Alan Gilbert     }
604c4faeed2SDr. David Alan Gilbert 
605c4faeed2SDr. David Alan Gilbert     /*
606c4faeed2SDr. David Alan Gilbert      * Although the host check already tested the API, we need to
607c4faeed2SDr. David Alan Gilbert      * do the check again as an ABI handshake on the new fd.
608c4faeed2SDr. David Alan Gilbert      */
60954ae0886SAlexey Perevalov     if (!ufd_check_and_apply(mis->userfault_fd, mis)) {
610c4faeed2SDr. David Alan Gilbert         return -1;
611c4faeed2SDr. David Alan Gilbert     }
612c4faeed2SDr. David Alan Gilbert 
613c4faeed2SDr. David Alan Gilbert     /* Now an eventfd we use to tell the fault-thread to quit */
61464f615feSPeter Xu     mis->userfault_event_fd = eventfd(0, EFD_CLOEXEC);
61564f615feSPeter Xu     if (mis->userfault_event_fd == -1) {
61664f615feSPeter Xu         error_report("%s: Opening userfault_event_fd: %s", __func__,
617c4faeed2SDr. David Alan Gilbert                      strerror(errno));
618c4faeed2SDr. David Alan Gilbert         close(mis->userfault_fd);
619c4faeed2SDr. David Alan Gilbert         return -1;
620c4faeed2SDr. David Alan Gilbert     }
621c4faeed2SDr. David Alan Gilbert 
622f0a227adSDr. David Alan Gilbert     qemu_sem_init(&mis->fault_thread_sem, 0);
623f0a227adSDr. David Alan Gilbert     qemu_thread_create(&mis->fault_thread, "postcopy/fault",
624f0a227adSDr. David Alan Gilbert                        postcopy_ram_fault_thread, mis, QEMU_THREAD_JOINABLE);
625f0a227adSDr. David Alan Gilbert     qemu_sem_wait(&mis->fault_thread_sem);
626f0a227adSDr. David Alan Gilbert     qemu_sem_destroy(&mis->fault_thread_sem);
627c4faeed2SDr. David Alan Gilbert     mis->have_fault_thread = true;
628f0a227adSDr. David Alan Gilbert 
629f0a227adSDr. David Alan Gilbert     /* Mark so that we get notified of accesses to unwritten areas */
630f0a227adSDr. David Alan Gilbert     if (qemu_ram_foreach_block(ram_block_enable_notify, mis)) {
631f0a227adSDr. David Alan Gilbert         return -1;
632f0a227adSDr. David Alan Gilbert     }
633f0a227adSDr. David Alan Gilbert 
634371ff5a3SDr. David Alan Gilbert     /*
635371ff5a3SDr. David Alan Gilbert      * Ballooning can mark pages as absent while we're postcopying
636371ff5a3SDr. David Alan Gilbert      * that would cause false userfaults.
637371ff5a3SDr. David Alan Gilbert      */
638371ff5a3SDr. David Alan Gilbert     qemu_balloon_inhibit(true);
639371ff5a3SDr. David Alan Gilbert 
640c4faeed2SDr. David Alan Gilbert     trace_postcopy_ram_enable_notify();
641c4faeed2SDr. David Alan Gilbert 
642f0a227adSDr. David Alan Gilbert     return 0;
643f0a227adSDr. David Alan Gilbert }
644f0a227adSDr. David Alan Gilbert 
645727b9d7eSAlexey Perevalov static int qemu_ufd_copy_ioctl(int userfault_fd, void *host_addr,
646f9494614SAlexey Perevalov                                void *from_addr, uint64_t pagesize, RAMBlock *rb)
647727b9d7eSAlexey Perevalov {
648f9494614SAlexey Perevalov     int ret;
649727b9d7eSAlexey Perevalov     if (from_addr) {
650727b9d7eSAlexey Perevalov         struct uffdio_copy copy_struct;
651727b9d7eSAlexey Perevalov         copy_struct.dst = (uint64_t)(uintptr_t)host_addr;
652727b9d7eSAlexey Perevalov         copy_struct.src = (uint64_t)(uintptr_t)from_addr;
653727b9d7eSAlexey Perevalov         copy_struct.len = pagesize;
654727b9d7eSAlexey Perevalov         copy_struct.mode = 0;
655f9494614SAlexey Perevalov         ret = ioctl(userfault_fd, UFFDIO_COPY, &copy_struct);
656727b9d7eSAlexey Perevalov     } else {
657727b9d7eSAlexey Perevalov         struct uffdio_zeropage zero_struct;
658727b9d7eSAlexey Perevalov         zero_struct.range.start = (uint64_t)(uintptr_t)host_addr;
659727b9d7eSAlexey Perevalov         zero_struct.range.len = pagesize;
660727b9d7eSAlexey Perevalov         zero_struct.mode = 0;
661f9494614SAlexey Perevalov         ret = ioctl(userfault_fd, UFFDIO_ZEROPAGE, &zero_struct);
662727b9d7eSAlexey Perevalov     }
663f9494614SAlexey Perevalov     if (!ret) {
664f9494614SAlexey Perevalov         ramblock_recv_bitmap_set_range(rb, host_addr,
665f9494614SAlexey Perevalov                                        pagesize / qemu_target_page_size());
666f9494614SAlexey Perevalov     }
667f9494614SAlexey Perevalov     return ret;
668727b9d7eSAlexey Perevalov }
669727b9d7eSAlexey Perevalov 
670696ed9a9SDr. David Alan Gilbert /*
671696ed9a9SDr. David Alan Gilbert  * Place a host page (from) at (host) atomically
672696ed9a9SDr. David Alan Gilbert  * returns 0 on success
673696ed9a9SDr. David Alan Gilbert  */
674df9ff5e1SDr. David Alan Gilbert int postcopy_place_page(MigrationIncomingState *mis, void *host, void *from,
6758be4620bSAlexey Perevalov                         RAMBlock *rb)
676696ed9a9SDr. David Alan Gilbert {
6778be4620bSAlexey Perevalov     size_t pagesize = qemu_ram_pagesize(rb);
678696ed9a9SDr. David Alan Gilbert 
679696ed9a9SDr. David Alan Gilbert     /* copy also acks to the kernel waking the stalled thread up
680696ed9a9SDr. David Alan Gilbert      * TODO: We can inhibit that ack and only do it if it was requested
681696ed9a9SDr. David Alan Gilbert      * which would be slightly cheaper, but we'd have to be careful
682696ed9a9SDr. David Alan Gilbert      * of the order of updating our page state.
683696ed9a9SDr. David Alan Gilbert      */
684f9494614SAlexey Perevalov     if (qemu_ufd_copy_ioctl(mis->userfault_fd, host, from, pagesize, rb)) {
685696ed9a9SDr. David Alan Gilbert         int e = errno;
686df9ff5e1SDr. David Alan Gilbert         error_report("%s: %s copy host: %p from: %p (size: %zd)",
687df9ff5e1SDr. David Alan Gilbert                      __func__, strerror(e), host, from, pagesize);
688696ed9a9SDr. David Alan Gilbert 
689696ed9a9SDr. David Alan Gilbert         return -e;
690696ed9a9SDr. David Alan Gilbert     }
691696ed9a9SDr. David Alan Gilbert 
692696ed9a9SDr. David Alan Gilbert     trace_postcopy_place_page(host);
693696ed9a9SDr. David Alan Gilbert     return 0;
694696ed9a9SDr. David Alan Gilbert }
695696ed9a9SDr. David Alan Gilbert 
696696ed9a9SDr. David Alan Gilbert /*
697696ed9a9SDr. David Alan Gilbert  * Place a zero page at (host) atomically
698696ed9a9SDr. David Alan Gilbert  * returns 0 on success
699696ed9a9SDr. David Alan Gilbert  */
700df9ff5e1SDr. David Alan Gilbert int postcopy_place_page_zero(MigrationIncomingState *mis, void *host,
7018be4620bSAlexey Perevalov                              RAMBlock *rb)
702696ed9a9SDr. David Alan Gilbert {
703df9ff5e1SDr. David Alan Gilbert     trace_postcopy_place_page_zero(host);
704696ed9a9SDr. David Alan Gilbert 
7058be4620bSAlexey Perevalov     if (qemu_ram_pagesize(rb) == getpagesize()) {
706f9494614SAlexey Perevalov         if (qemu_ufd_copy_ioctl(mis->userfault_fd, host, NULL, getpagesize(),
707f9494614SAlexey Perevalov                                 rb)) {
708696ed9a9SDr. David Alan Gilbert             int e = errno;
709696ed9a9SDr. David Alan Gilbert             error_report("%s: %s zero host: %p",
710696ed9a9SDr. David Alan Gilbert                          __func__, strerror(e), host);
711696ed9a9SDr. David Alan Gilbert 
712696ed9a9SDr. David Alan Gilbert             return -e;
713696ed9a9SDr. David Alan Gilbert         }
714df9ff5e1SDr. David Alan Gilbert     } else {
71541d84210SDr. David Alan Gilbert         /* The kernel can't use UFFDIO_ZEROPAGE for hugepages */
71641d84210SDr. David Alan Gilbert         if (!mis->postcopy_tmp_zero_page) {
71741d84210SDr. David Alan Gilbert             mis->postcopy_tmp_zero_page = mmap(NULL, mis->largest_page_size,
71841d84210SDr. David Alan Gilbert                                                PROT_READ | PROT_WRITE,
71941d84210SDr. David Alan Gilbert                                                MAP_PRIVATE | MAP_ANONYMOUS,
72041d84210SDr. David Alan Gilbert                                                -1, 0);
72141d84210SDr. David Alan Gilbert             if (mis->postcopy_tmp_zero_page == MAP_FAILED) {
72241d84210SDr. David Alan Gilbert                 int e = errno;
72341d84210SDr. David Alan Gilbert                 mis->postcopy_tmp_zero_page = NULL;
72441d84210SDr. David Alan Gilbert                 error_report("%s: %s mapping large zero page",
72541d84210SDr. David Alan Gilbert                              __func__, strerror(e));
72641d84210SDr. David Alan Gilbert                 return -e;
72741d84210SDr. David Alan Gilbert             }
72841d84210SDr. David Alan Gilbert             memset(mis->postcopy_tmp_zero_page, '\0', mis->largest_page_size);
72941d84210SDr. David Alan Gilbert         }
73041d84210SDr. David Alan Gilbert         return postcopy_place_page(mis, host, mis->postcopy_tmp_zero_page,
7318be4620bSAlexey Perevalov                                    rb);
732df9ff5e1SDr. David Alan Gilbert     }
733696ed9a9SDr. David Alan Gilbert 
734696ed9a9SDr. David Alan Gilbert     return 0;
735696ed9a9SDr. David Alan Gilbert }
736696ed9a9SDr. David Alan Gilbert 
737696ed9a9SDr. David Alan Gilbert /*
738696ed9a9SDr. David Alan Gilbert  * Returns a target page of memory that can be mapped at a later point in time
739696ed9a9SDr. David Alan Gilbert  * using postcopy_place_page
740696ed9a9SDr. David Alan Gilbert  * The same address is used repeatedly, postcopy_place_page just takes the
741696ed9a9SDr. David Alan Gilbert  * backing page away.
742696ed9a9SDr. David Alan Gilbert  * Returns: Pointer to allocated page
743696ed9a9SDr. David Alan Gilbert  *
744696ed9a9SDr. David Alan Gilbert  */
745696ed9a9SDr. David Alan Gilbert void *postcopy_get_tmp_page(MigrationIncomingState *mis)
746696ed9a9SDr. David Alan Gilbert {
747696ed9a9SDr. David Alan Gilbert     if (!mis->postcopy_tmp_page) {
748df9ff5e1SDr. David Alan Gilbert         mis->postcopy_tmp_page = mmap(NULL, mis->largest_page_size,
749696ed9a9SDr. David Alan Gilbert                              PROT_READ | PROT_WRITE, MAP_PRIVATE |
750696ed9a9SDr. David Alan Gilbert                              MAP_ANONYMOUS, -1, 0);
7510e8b3cdfSEvgeny Yakovlev         if (mis->postcopy_tmp_page == MAP_FAILED) {
7520e8b3cdfSEvgeny Yakovlev             mis->postcopy_tmp_page = NULL;
753696ed9a9SDr. David Alan Gilbert             error_report("%s: %s", __func__, strerror(errno));
754696ed9a9SDr. David Alan Gilbert             return NULL;
755696ed9a9SDr. David Alan Gilbert         }
756696ed9a9SDr. David Alan Gilbert     }
757696ed9a9SDr. David Alan Gilbert 
758696ed9a9SDr. David Alan Gilbert     return mis->postcopy_tmp_page;
759696ed9a9SDr. David Alan Gilbert }
760696ed9a9SDr. David Alan Gilbert 
761eb59db53SDr. David Alan Gilbert #else
762eb59db53SDr. David Alan Gilbert /* No target OS support, stubs just fail */
763d7651f15SAlexey Perevalov bool postcopy_ram_supported_by_host(MigrationIncomingState *mis)
764eb59db53SDr. David Alan Gilbert {
765eb59db53SDr. David Alan Gilbert     error_report("%s: No OS support", __func__);
766eb59db53SDr. David Alan Gilbert     return false;
767eb59db53SDr. David Alan Gilbert }
768eb59db53SDr. David Alan Gilbert 
7691caddf8aSDr. David Alan Gilbert int postcopy_ram_incoming_init(MigrationIncomingState *mis, size_t ram_pages)
7701caddf8aSDr. David Alan Gilbert {
7711caddf8aSDr. David Alan Gilbert     error_report("postcopy_ram_incoming_init: No OS support");
7721caddf8aSDr. David Alan Gilbert     return -1;
7731caddf8aSDr. David Alan Gilbert }
7741caddf8aSDr. David Alan Gilbert 
7751caddf8aSDr. David Alan Gilbert int postcopy_ram_incoming_cleanup(MigrationIncomingState *mis)
7761caddf8aSDr. David Alan Gilbert {
7771caddf8aSDr. David Alan Gilbert     assert(0);
7781caddf8aSDr. David Alan Gilbert     return -1;
7791caddf8aSDr. David Alan Gilbert }
7801caddf8aSDr. David Alan Gilbert 
781f9527107SDr. David Alan Gilbert int postcopy_ram_prepare_discard(MigrationIncomingState *mis)
782f9527107SDr. David Alan Gilbert {
783f9527107SDr. David Alan Gilbert     assert(0);
784f9527107SDr. David Alan Gilbert     return -1;
785f9527107SDr. David Alan Gilbert }
786f9527107SDr. David Alan Gilbert 
787f0a227adSDr. David Alan Gilbert int postcopy_ram_enable_notify(MigrationIncomingState *mis)
788f0a227adSDr. David Alan Gilbert {
789f0a227adSDr. David Alan Gilbert     assert(0);
790f0a227adSDr. David Alan Gilbert     return -1;
791f0a227adSDr. David Alan Gilbert }
792696ed9a9SDr. David Alan Gilbert 
793df9ff5e1SDr. David Alan Gilbert int postcopy_place_page(MigrationIncomingState *mis, void *host, void *from,
7948be4620bSAlexey Perevalov                         RAMBlock *rb)
795696ed9a9SDr. David Alan Gilbert {
796696ed9a9SDr. David Alan Gilbert     assert(0);
797696ed9a9SDr. David Alan Gilbert     return -1;
798696ed9a9SDr. David Alan Gilbert }
799696ed9a9SDr. David Alan Gilbert 
800df9ff5e1SDr. David Alan Gilbert int postcopy_place_page_zero(MigrationIncomingState *mis, void *host,
8018be4620bSAlexey Perevalov                         RAMBlock *rb)
802696ed9a9SDr. David Alan Gilbert {
803696ed9a9SDr. David Alan Gilbert     assert(0);
804696ed9a9SDr. David Alan Gilbert     return -1;
805696ed9a9SDr. David Alan Gilbert }
806696ed9a9SDr. David Alan Gilbert 
807696ed9a9SDr. David Alan Gilbert void *postcopy_get_tmp_page(MigrationIncomingState *mis)
808696ed9a9SDr. David Alan Gilbert {
809696ed9a9SDr. David Alan Gilbert     assert(0);
810696ed9a9SDr. David Alan Gilbert     return NULL;
811696ed9a9SDr. David Alan Gilbert }
812696ed9a9SDr. David Alan Gilbert 
813eb59db53SDr. David Alan Gilbert #endif
814eb59db53SDr. David Alan Gilbert 
815e0b266f0SDr. David Alan Gilbert /* ------------------------------------------------------------------------- */
816e0b266f0SDr. David Alan Gilbert 
817*9ab7ef9bSPeter Xu void postcopy_fault_thread_notify(MigrationIncomingState *mis)
818*9ab7ef9bSPeter Xu {
819*9ab7ef9bSPeter Xu     uint64_t tmp64 = 1;
820*9ab7ef9bSPeter Xu 
821*9ab7ef9bSPeter Xu     /*
822*9ab7ef9bSPeter Xu      * Wakeup the fault_thread.  It's an eventfd that should currently
823*9ab7ef9bSPeter Xu      * be at 0, we're going to increment it to 1
824*9ab7ef9bSPeter Xu      */
825*9ab7ef9bSPeter Xu     if (write(mis->userfault_event_fd, &tmp64, 8) != 8) {
826*9ab7ef9bSPeter Xu         /* Not much we can do here, but may as well report it */
827*9ab7ef9bSPeter Xu         error_report("%s: incrementing failed: %s", __func__,
828*9ab7ef9bSPeter Xu                      strerror(errno));
829*9ab7ef9bSPeter Xu     }
830*9ab7ef9bSPeter Xu }
831*9ab7ef9bSPeter Xu 
832e0b266f0SDr. David Alan Gilbert /**
833e0b266f0SDr. David Alan Gilbert  * postcopy_discard_send_init: Called at the start of each RAMBlock before
834e0b266f0SDr. David Alan Gilbert  *   asking to discard individual ranges.
835e0b266f0SDr. David Alan Gilbert  *
836e0b266f0SDr. David Alan Gilbert  * @ms: The current migration state.
837e0b266f0SDr. David Alan Gilbert  * @offset: the bitmap offset of the named RAMBlock in the migration
838e0b266f0SDr. David Alan Gilbert  *   bitmap.
839e0b266f0SDr. David Alan Gilbert  * @name: RAMBlock that discards will operate on.
840e0b266f0SDr. David Alan Gilbert  *
841e0b266f0SDr. David Alan Gilbert  * returns: a new PDS.
842e0b266f0SDr. David Alan Gilbert  */
843e0b266f0SDr. David Alan Gilbert PostcopyDiscardState *postcopy_discard_send_init(MigrationState *ms,
844e0b266f0SDr. David Alan Gilbert                                                  const char *name)
845e0b266f0SDr. David Alan Gilbert {
846e0b266f0SDr. David Alan Gilbert     PostcopyDiscardState *res = g_malloc0(sizeof(PostcopyDiscardState));
847e0b266f0SDr. David Alan Gilbert 
848e0b266f0SDr. David Alan Gilbert     if (res) {
849e0b266f0SDr. David Alan Gilbert         res->ramblock_name = name;
850e0b266f0SDr. David Alan Gilbert     }
851e0b266f0SDr. David Alan Gilbert 
852e0b266f0SDr. David Alan Gilbert     return res;
853e0b266f0SDr. David Alan Gilbert }
854e0b266f0SDr. David Alan Gilbert 
855e0b266f0SDr. David Alan Gilbert /**
856e0b266f0SDr. David Alan Gilbert  * postcopy_discard_send_range: Called by the bitmap code for each chunk to
857e0b266f0SDr. David Alan Gilbert  *   discard. May send a discard message, may just leave it queued to
858e0b266f0SDr. David Alan Gilbert  *   be sent later.
859e0b266f0SDr. David Alan Gilbert  *
860e0b266f0SDr. David Alan Gilbert  * @ms: Current migration state.
861e0b266f0SDr. David Alan Gilbert  * @pds: Structure initialised by postcopy_discard_send_init().
862e0b266f0SDr. David Alan Gilbert  * @start,@length: a range of pages in the migration bitmap in the
863e0b266f0SDr. David Alan Gilbert  *   RAM block passed to postcopy_discard_send_init() (length=1 is one page)
864e0b266f0SDr. David Alan Gilbert  */
865e0b266f0SDr. David Alan Gilbert void postcopy_discard_send_range(MigrationState *ms, PostcopyDiscardState *pds,
866e0b266f0SDr. David Alan Gilbert                                 unsigned long start, unsigned long length)
867e0b266f0SDr. David Alan Gilbert {
86820afaed9SJuan Quintela     size_t tp_size = qemu_target_page_size();
869e0b266f0SDr. David Alan Gilbert     /* Convert to byte offsets within the RAM block */
8706b6712efSJuan Quintela     pds->start_list[pds->cur_entry] = start  * tp_size;
87120afaed9SJuan Quintela     pds->length_list[pds->cur_entry] = length * tp_size;
872e0b266f0SDr. David Alan Gilbert     trace_postcopy_discard_send_range(pds->ramblock_name, start, length);
873e0b266f0SDr. David Alan Gilbert     pds->cur_entry++;
874e0b266f0SDr. David Alan Gilbert     pds->nsentwords++;
875e0b266f0SDr. David Alan Gilbert 
876e0b266f0SDr. David Alan Gilbert     if (pds->cur_entry == MAX_DISCARDS_PER_COMMAND) {
877e0b266f0SDr. David Alan Gilbert         /* Full set, ship it! */
87889a02a9fSzhanghailiang         qemu_savevm_send_postcopy_ram_discard(ms->to_dst_file,
87989a02a9fSzhanghailiang                                               pds->ramblock_name,
880e0b266f0SDr. David Alan Gilbert                                               pds->cur_entry,
881e0b266f0SDr. David Alan Gilbert                                               pds->start_list,
882e0b266f0SDr. David Alan Gilbert                                               pds->length_list);
883e0b266f0SDr. David Alan Gilbert         pds->nsentcmds++;
884e0b266f0SDr. David Alan Gilbert         pds->cur_entry = 0;
885e0b266f0SDr. David Alan Gilbert     }
886e0b266f0SDr. David Alan Gilbert }
887e0b266f0SDr. David Alan Gilbert 
888e0b266f0SDr. David Alan Gilbert /**
889e0b266f0SDr. David Alan Gilbert  * postcopy_discard_send_finish: Called at the end of each RAMBlock by the
890e0b266f0SDr. David Alan Gilbert  * bitmap code. Sends any outstanding discard messages, frees the PDS
891e0b266f0SDr. David Alan Gilbert  *
892e0b266f0SDr. David Alan Gilbert  * @ms: Current migration state.
893e0b266f0SDr. David Alan Gilbert  * @pds: Structure initialised by postcopy_discard_send_init().
894e0b266f0SDr. David Alan Gilbert  */
895e0b266f0SDr. David Alan Gilbert void postcopy_discard_send_finish(MigrationState *ms, PostcopyDiscardState *pds)
896e0b266f0SDr. David Alan Gilbert {
897e0b266f0SDr. David Alan Gilbert     /* Anything unsent? */
898e0b266f0SDr. David Alan Gilbert     if (pds->cur_entry) {
89989a02a9fSzhanghailiang         qemu_savevm_send_postcopy_ram_discard(ms->to_dst_file,
90089a02a9fSzhanghailiang                                               pds->ramblock_name,
901e0b266f0SDr. David Alan Gilbert                                               pds->cur_entry,
902e0b266f0SDr. David Alan Gilbert                                               pds->start_list,
903e0b266f0SDr. David Alan Gilbert                                               pds->length_list);
904e0b266f0SDr. David Alan Gilbert         pds->nsentcmds++;
905e0b266f0SDr. David Alan Gilbert     }
906e0b266f0SDr. David Alan Gilbert 
907e0b266f0SDr. David Alan Gilbert     trace_postcopy_discard_send_finish(pds->ramblock_name, pds->nsentwords,
908e0b266f0SDr. David Alan Gilbert                                        pds->nsentcmds);
909e0b266f0SDr. David Alan Gilbert 
910e0b266f0SDr. David Alan Gilbert     g_free(pds);
911e0b266f0SDr. David Alan Gilbert }
912bac3b212SJuan Quintela 
913bac3b212SJuan Quintela /*
914bac3b212SJuan Quintela  * Current state of incoming postcopy; note this is not part of
915bac3b212SJuan Quintela  * MigrationIncomingState since it's state is used during cleanup
916bac3b212SJuan Quintela  * at the end as MIS is being freed.
917bac3b212SJuan Quintela  */
918bac3b212SJuan Quintela static PostcopyState incoming_postcopy_state;
919bac3b212SJuan Quintela 
920bac3b212SJuan Quintela PostcopyState  postcopy_state_get(void)
921bac3b212SJuan Quintela {
922bac3b212SJuan Quintela     return atomic_mb_read(&incoming_postcopy_state);
923bac3b212SJuan Quintela }
924bac3b212SJuan Quintela 
925bac3b212SJuan Quintela /* Set the state and return the old state */
926bac3b212SJuan Quintela PostcopyState postcopy_state_set(PostcopyState new_state)
927bac3b212SJuan Quintela {
928bac3b212SJuan Quintela     return atomic_xchg(&incoming_postcopy_state, new_state);
929bac3b212SJuan Quintela }
930