xref: /qemu/target/i386/kvm/xen-emu.c (revision 105b47fdf2d0ed18d73cebb055f4cbc1c88a8b30)
161491cf4SDavid Woodhouse /*
261491cf4SDavid Woodhouse  * Xen HVM emulation support in KVM
361491cf4SDavid Woodhouse  *
461491cf4SDavid Woodhouse  * Copyright © 2019 Oracle and/or its affiliates. All rights reserved.
561491cf4SDavid Woodhouse  * Copyright © 2022 Amazon.com, Inc. or its affiliates. All Rights Reserved.
661491cf4SDavid Woodhouse  *
761491cf4SDavid Woodhouse  * This work is licensed under the terms of the GNU GPL, version 2 or later.
861491cf4SDavid Woodhouse  * See the COPYING file in the top-level directory.
961491cf4SDavid Woodhouse  *
1061491cf4SDavid Woodhouse  */
1161491cf4SDavid Woodhouse 
1261491cf4SDavid Woodhouse #include "qemu/osdep.h"
1355a3f666SJoao Martins #include "qemu/log.h"
1479b7067dSJoao Martins #include "qemu/main-loop.h"
15fb0fd2ceSJoao Martins #include "hw/xen/xen.h"
1661491cf4SDavid Woodhouse #include "sysemu/kvm_int.h"
1761491cf4SDavid Woodhouse #include "sysemu/kvm_xen.h"
1861491cf4SDavid Woodhouse #include "kvm/kvm_i386.h"
19bedcc139SJoao Martins #include "exec/address-spaces.h"
2061491cf4SDavid Woodhouse #include "xen-emu.h"
2155a3f666SJoao Martins #include "trace.h"
2279b7067dSJoao Martins #include "sysemu/runstate.h"
2361491cf4SDavid Woodhouse 
24110a0ea5SDavid Woodhouse #include "hw/i386/kvm/xen_overlay.h"
25110a0ea5SDavid Woodhouse 
26bedcc139SJoao Martins #include "hw/xen/interface/version.h"
2779b7067dSJoao Martins #include "hw/xen/interface/sched.h"
28fb0fd2ceSJoao Martins #include "hw/xen/interface/memory.h"
29671bfdcdSJoao Martins #include "hw/xen/interface/hvm/hvm_op.h"
30*105b47fdSAnkur Arora #include "hw/xen/interface/hvm/params.h"
31d70bd6a4SJoao Martins #include "hw/xen/interface/vcpu.h"
323b06f29bSJoao Martins #include "hw/xen/interface/event_channel.h"
33fb0fd2ceSJoao Martins 
34fb0fd2ceSJoao Martins #include "xen-compat.h"
35fb0fd2ceSJoao Martins 
36fb0fd2ceSJoao Martins #ifdef TARGET_X86_64
37fb0fd2ceSJoao Martins #define hypercall_compat32(longmode) (!(longmode))
38fb0fd2ceSJoao Martins #else
39fb0fd2ceSJoao Martins #define hypercall_compat32(longmode) (false)
40fb0fd2ceSJoao Martins #endif
41bedcc139SJoao Martins 
42f0689302SJoao Martins static bool kvm_gva_to_gpa(CPUState *cs, uint64_t gva, uint64_t *gpa,
43f0689302SJoao Martins                            size_t *len, bool is_write)
44bedcc139SJoao Martins {
45bedcc139SJoao Martins         struct kvm_translation tr = {
46bedcc139SJoao Martins             .linear_address = gva,
47bedcc139SJoao Martins         };
48bedcc139SJoao Martins 
49f0689302SJoao Martins         if (len) {
50f0689302SJoao Martins             *len = TARGET_PAGE_SIZE - (gva & ~TARGET_PAGE_MASK);
51f0689302SJoao Martins         }
52f0689302SJoao Martins 
53f0689302SJoao Martins         if (kvm_vcpu_ioctl(cs, KVM_TRANSLATE, &tr) || !tr.valid ||
54f0689302SJoao Martins             (is_write && !tr.writeable)) {
55f0689302SJoao Martins             return false;
56f0689302SJoao Martins         }
57f0689302SJoao Martins         *gpa = tr.physical_address;
58f0689302SJoao Martins         return true;
59f0689302SJoao Martins }
60f0689302SJoao Martins 
61f0689302SJoao Martins static int kvm_gva_rw(CPUState *cs, uint64_t gva, void *_buf, size_t sz,
62f0689302SJoao Martins                       bool is_write)
63f0689302SJoao Martins {
64f0689302SJoao Martins     uint8_t *buf = (uint8_t *)_buf;
65f0689302SJoao Martins     uint64_t gpa;
66f0689302SJoao Martins     size_t len;
67f0689302SJoao Martins 
68f0689302SJoao Martins     while (sz) {
69f0689302SJoao Martins         if (!kvm_gva_to_gpa(cs, gva, &gpa, &len, is_write)) {
70f0689302SJoao Martins             return -EFAULT;
71f0689302SJoao Martins         }
72bedcc139SJoao Martins         if (len > sz) {
73bedcc139SJoao Martins             len = sz;
74bedcc139SJoao Martins         }
75bedcc139SJoao Martins 
76f0689302SJoao Martins         cpu_physical_memory_rw(gpa, buf, len, is_write);
77bedcc139SJoao Martins 
78bedcc139SJoao Martins         buf += len;
79bedcc139SJoao Martins         sz -= len;
80bedcc139SJoao Martins         gva += len;
81bedcc139SJoao Martins     }
82bedcc139SJoao Martins 
83bedcc139SJoao Martins     return 0;
84bedcc139SJoao Martins }
85bedcc139SJoao Martins 
86bedcc139SJoao Martins static inline int kvm_copy_from_gva(CPUState *cs, uint64_t gva, void *buf,
87bedcc139SJoao Martins                                     size_t sz)
88bedcc139SJoao Martins {
89bedcc139SJoao Martins     return kvm_gva_rw(cs, gva, buf, sz, false);
90bedcc139SJoao Martins }
91bedcc139SJoao Martins 
92bedcc139SJoao Martins static inline int kvm_copy_to_gva(CPUState *cs, uint64_t gva, void *buf,
93bedcc139SJoao Martins                                   size_t sz)
94bedcc139SJoao Martins {
95bedcc139SJoao Martins     return kvm_gva_rw(cs, gva, buf, sz, true);
96bedcc139SJoao Martins }
97bedcc139SJoao Martins 
98f66b8a83SJoao Martins int kvm_xen_init(KVMState *s, uint32_t hypercall_msr)
9961491cf4SDavid Woodhouse {
10061491cf4SDavid Woodhouse     const int required_caps = KVM_XEN_HVM_CONFIG_HYPERCALL_MSR |
10161491cf4SDavid Woodhouse         KVM_XEN_HVM_CONFIG_INTERCEPT_HCALL | KVM_XEN_HVM_CONFIG_SHARED_INFO;
10261491cf4SDavid Woodhouse     struct kvm_xen_hvm_config cfg = {
103f66b8a83SJoao Martins         .msr = hypercall_msr,
10461491cf4SDavid Woodhouse         .flags = KVM_XEN_HVM_CONFIG_INTERCEPT_HCALL,
10561491cf4SDavid Woodhouse     };
10661491cf4SDavid Woodhouse     int xen_caps, ret;
10761491cf4SDavid Woodhouse 
10861491cf4SDavid Woodhouse     xen_caps = kvm_check_extension(s, KVM_CAP_XEN_HVM);
10961491cf4SDavid Woodhouse     if (required_caps & ~xen_caps) {
11061491cf4SDavid Woodhouse         error_report("kvm: Xen HVM guest support not present or insufficient");
11161491cf4SDavid Woodhouse         return -ENOSYS;
11261491cf4SDavid Woodhouse     }
11361491cf4SDavid Woodhouse 
11461491cf4SDavid Woodhouse     if (xen_caps & KVM_XEN_HVM_CONFIG_EVTCHN_SEND) {
11561491cf4SDavid Woodhouse         struct kvm_xen_hvm_attr ha = {
11661491cf4SDavid Woodhouse             .type = KVM_XEN_ATTR_TYPE_XEN_VERSION,
11761491cf4SDavid Woodhouse             .u.xen_version = s->xen_version,
11861491cf4SDavid Woodhouse         };
11961491cf4SDavid Woodhouse         (void)kvm_vm_ioctl(s, KVM_XEN_HVM_SET_ATTR, &ha);
12061491cf4SDavid Woodhouse 
12161491cf4SDavid Woodhouse         cfg.flags |= KVM_XEN_HVM_CONFIG_EVTCHN_SEND;
12261491cf4SDavid Woodhouse     }
12361491cf4SDavid Woodhouse 
12461491cf4SDavid Woodhouse     ret = kvm_vm_ioctl(s, KVM_XEN_HVM_CONFIG, &cfg);
12561491cf4SDavid Woodhouse     if (ret < 0) {
12661491cf4SDavid Woodhouse         error_report("kvm: Failed to enable Xen HVM support: %s",
12761491cf4SDavid Woodhouse                      strerror(-ret));
12861491cf4SDavid Woodhouse         return ret;
12961491cf4SDavid Woodhouse     }
13061491cf4SDavid Woodhouse 
13161491cf4SDavid Woodhouse     s->xen_caps = xen_caps;
13261491cf4SDavid Woodhouse     return 0;
13361491cf4SDavid Woodhouse }
13461491cf4SDavid Woodhouse 
1355e691a95SDavid Woodhouse int kvm_xen_init_vcpu(CPUState *cs)
1365e691a95SDavid Woodhouse {
137c345104cSJoao Martins     X86CPU *cpu = X86_CPU(cs);
138c345104cSJoao Martins     CPUX86State *env = &cpu->env;
1395e691a95SDavid Woodhouse     int err;
1405e691a95SDavid Woodhouse 
1415e691a95SDavid Woodhouse     /*
1425e691a95SDavid Woodhouse      * The kernel needs to know the Xen/ACPI vCPU ID because that's
1435e691a95SDavid Woodhouse      * what the guest uses in hypercalls such as timers. It doesn't
1445e691a95SDavid Woodhouse      * match the APIC ID which is generally used for talking to the
1455e691a95SDavid Woodhouse      * kernel about vCPUs. And if vCPU threads race with creating
1465e691a95SDavid Woodhouse      * their KVM vCPUs out of order, it doesn't necessarily match
1475e691a95SDavid Woodhouse      * with the kernel's internal vCPU indices either.
1485e691a95SDavid Woodhouse      */
1495e691a95SDavid Woodhouse     if (kvm_xen_has_cap(EVTCHN_SEND)) {
1505e691a95SDavid Woodhouse         struct kvm_xen_vcpu_attr va = {
1515e691a95SDavid Woodhouse             .type = KVM_XEN_VCPU_ATTR_TYPE_VCPU_ID,
1525e691a95SDavid Woodhouse             .u.vcpu_id = cs->cpu_index,
1535e691a95SDavid Woodhouse         };
1545e691a95SDavid Woodhouse         err = kvm_vcpu_ioctl(cs, KVM_XEN_VCPU_SET_ATTR, &va);
1555e691a95SDavid Woodhouse         if (err) {
1565e691a95SDavid Woodhouse             error_report("kvm: Failed to set Xen vCPU ID attribute: %s",
1575e691a95SDavid Woodhouse                          strerror(-err));
1585e691a95SDavid Woodhouse             return err;
1595e691a95SDavid Woodhouse         }
1605e691a95SDavid Woodhouse     }
1615e691a95SDavid Woodhouse 
162c345104cSJoao Martins     env->xen_vcpu_info_gpa = INVALID_GPA;
163c345104cSJoao Martins     env->xen_vcpu_info_default_gpa = INVALID_GPA;
164f0689302SJoao Martins     env->xen_vcpu_time_info_gpa = INVALID_GPA;
1655092db87SJoao Martins     env->xen_vcpu_runstate_gpa = INVALID_GPA;
166c345104cSJoao Martins 
1675e691a95SDavid Woodhouse     return 0;
1685e691a95SDavid Woodhouse }
1695e691a95SDavid Woodhouse 
17061491cf4SDavid Woodhouse uint32_t kvm_xen_get_caps(void)
17161491cf4SDavid Woodhouse {
17261491cf4SDavid Woodhouse     return kvm_state->xen_caps;
17361491cf4SDavid Woodhouse }
17455a3f666SJoao Martins 
175bedcc139SJoao Martins static bool kvm_xen_hcall_xen_version(struct kvm_xen_exit *exit, X86CPU *cpu,
176bedcc139SJoao Martins                                      int cmd, uint64_t arg)
177bedcc139SJoao Martins {
178bedcc139SJoao Martins     int err = 0;
179bedcc139SJoao Martins 
180bedcc139SJoao Martins     switch (cmd) {
181bedcc139SJoao Martins     case XENVER_get_features: {
182bedcc139SJoao Martins         struct xen_feature_info fi;
183bedcc139SJoao Martins 
184bedcc139SJoao Martins         /* No need for 32/64 compat handling */
185bedcc139SJoao Martins         qemu_build_assert(sizeof(fi) == 8);
186bedcc139SJoao Martins 
187bedcc139SJoao Martins         err = kvm_copy_from_gva(CPU(cpu), arg, &fi, sizeof(fi));
188bedcc139SJoao Martins         if (err) {
189bedcc139SJoao Martins             break;
190bedcc139SJoao Martins         }
191bedcc139SJoao Martins 
192bedcc139SJoao Martins         fi.submap = 0;
193bedcc139SJoao Martins         if (fi.submap_idx == 0) {
194bedcc139SJoao Martins             fi.submap |= 1 << XENFEAT_writable_page_tables |
195bedcc139SJoao Martins                          1 << XENFEAT_writable_descriptor_tables |
196bedcc139SJoao Martins                          1 << XENFEAT_auto_translated_physmap |
197*105b47fdSAnkur Arora                          1 << XENFEAT_supervisor_mode_kernel |
198*105b47fdSAnkur Arora                          1 << XENFEAT_hvm_callback_vector;
199bedcc139SJoao Martins         }
200bedcc139SJoao Martins 
201bedcc139SJoao Martins         err = kvm_copy_to_gva(CPU(cpu), arg, &fi, sizeof(fi));
202bedcc139SJoao Martins         break;
203bedcc139SJoao Martins     }
204bedcc139SJoao Martins 
205bedcc139SJoao Martins     default:
206bedcc139SJoao Martins         return false;
207bedcc139SJoao Martins     }
208bedcc139SJoao Martins 
209bedcc139SJoao Martins     exit->u.hcall.result = err;
210bedcc139SJoao Martins     return true;
211bedcc139SJoao Martins }
212bedcc139SJoao Martins 
213c345104cSJoao Martins static int kvm_xen_set_vcpu_attr(CPUState *cs, uint16_t type, uint64_t gpa)
214c345104cSJoao Martins {
215c345104cSJoao Martins     struct kvm_xen_vcpu_attr xhsi;
216c345104cSJoao Martins 
217c345104cSJoao Martins     xhsi.type = type;
218c345104cSJoao Martins     xhsi.u.gpa = gpa;
219c345104cSJoao Martins 
220c345104cSJoao Martins     trace_kvm_xen_set_vcpu_attr(cs->cpu_index, type, gpa);
221c345104cSJoao Martins 
222c345104cSJoao Martins     return kvm_vcpu_ioctl(cs, KVM_XEN_VCPU_SET_ATTR, &xhsi);
223c345104cSJoao Martins }
224c345104cSJoao Martins 
225*105b47fdSAnkur Arora static int kvm_xen_set_vcpu_callback_vector(CPUState *cs)
226*105b47fdSAnkur Arora {
227*105b47fdSAnkur Arora     uint8_t vector = X86_CPU(cs)->env.xen_vcpu_callback_vector;
228*105b47fdSAnkur Arora     struct kvm_xen_vcpu_attr xva;
229*105b47fdSAnkur Arora 
230*105b47fdSAnkur Arora     xva.type = KVM_XEN_VCPU_ATTR_TYPE_UPCALL_VECTOR;
231*105b47fdSAnkur Arora     xva.u.vector = vector;
232*105b47fdSAnkur Arora 
233*105b47fdSAnkur Arora     trace_kvm_xen_set_vcpu_callback(cs->cpu_index, vector);
234*105b47fdSAnkur Arora 
235*105b47fdSAnkur Arora     return kvm_vcpu_ioctl(cs, KVM_XEN_HVM_SET_ATTR, &xva);
236*105b47fdSAnkur Arora }
237*105b47fdSAnkur Arora 
238*105b47fdSAnkur Arora static void do_set_vcpu_callback_vector(CPUState *cs, run_on_cpu_data data)
239*105b47fdSAnkur Arora {
240*105b47fdSAnkur Arora     X86CPU *cpu = X86_CPU(cs);
241*105b47fdSAnkur Arora     CPUX86State *env = &cpu->env;
242*105b47fdSAnkur Arora 
243*105b47fdSAnkur Arora     env->xen_vcpu_callback_vector = data.host_int;
244*105b47fdSAnkur Arora 
245*105b47fdSAnkur Arora     if (kvm_xen_has_cap(EVTCHN_SEND)) {
246*105b47fdSAnkur Arora         kvm_xen_set_vcpu_callback_vector(cs);
247*105b47fdSAnkur Arora     }
248*105b47fdSAnkur Arora }
249*105b47fdSAnkur Arora 
250c345104cSJoao Martins static void do_set_vcpu_info_default_gpa(CPUState *cs, run_on_cpu_data data)
251c345104cSJoao Martins {
252c345104cSJoao Martins     X86CPU *cpu = X86_CPU(cs);
253c345104cSJoao Martins     CPUX86State *env = &cpu->env;
254c345104cSJoao Martins 
255c345104cSJoao Martins     env->xen_vcpu_info_default_gpa = data.host_ulong;
256c345104cSJoao Martins 
257c345104cSJoao Martins     /* Changing the default does nothing if a vcpu_info was explicitly set. */
258c345104cSJoao Martins     if (env->xen_vcpu_info_gpa == INVALID_GPA) {
259c345104cSJoao Martins         kvm_xen_set_vcpu_attr(cs, KVM_XEN_VCPU_ATTR_TYPE_VCPU_INFO,
260c345104cSJoao Martins                               env->xen_vcpu_info_default_gpa);
261c345104cSJoao Martins     }
262c345104cSJoao Martins }
263c345104cSJoao Martins 
264c345104cSJoao Martins static void do_set_vcpu_info_gpa(CPUState *cs, run_on_cpu_data data)
265c345104cSJoao Martins {
266c345104cSJoao Martins     X86CPU *cpu = X86_CPU(cs);
267c345104cSJoao Martins     CPUX86State *env = &cpu->env;
268c345104cSJoao Martins 
269c345104cSJoao Martins     env->xen_vcpu_info_gpa = data.host_ulong;
270c345104cSJoao Martins 
271c345104cSJoao Martins     kvm_xen_set_vcpu_attr(cs, KVM_XEN_VCPU_ATTR_TYPE_VCPU_INFO,
272c345104cSJoao Martins                           env->xen_vcpu_info_gpa);
273c345104cSJoao Martins }
274c345104cSJoao Martins 
275f0689302SJoao Martins static void do_set_vcpu_time_info_gpa(CPUState *cs, run_on_cpu_data data)
276f0689302SJoao Martins {
277f0689302SJoao Martins     X86CPU *cpu = X86_CPU(cs);
278f0689302SJoao Martins     CPUX86State *env = &cpu->env;
279f0689302SJoao Martins 
280f0689302SJoao Martins     env->xen_vcpu_time_info_gpa = data.host_ulong;
281f0689302SJoao Martins 
282f0689302SJoao Martins     kvm_xen_set_vcpu_attr(cs, KVM_XEN_VCPU_ATTR_TYPE_VCPU_TIME_INFO,
283f0689302SJoao Martins                           env->xen_vcpu_time_info_gpa);
284f0689302SJoao Martins }
285f0689302SJoao Martins 
2865092db87SJoao Martins static void do_set_vcpu_runstate_gpa(CPUState *cs, run_on_cpu_data data)
2875092db87SJoao Martins {
2885092db87SJoao Martins     X86CPU *cpu = X86_CPU(cs);
2895092db87SJoao Martins     CPUX86State *env = &cpu->env;
2905092db87SJoao Martins 
2915092db87SJoao Martins     env->xen_vcpu_runstate_gpa = data.host_ulong;
2925092db87SJoao Martins 
2935092db87SJoao Martins     kvm_xen_set_vcpu_attr(cs, KVM_XEN_VCPU_ATTR_TYPE_RUNSTATE_ADDR,
2945092db87SJoao Martins                           env->xen_vcpu_runstate_gpa);
2955092db87SJoao Martins }
2965092db87SJoao Martins 
297c345104cSJoao Martins static void do_vcpu_soft_reset(CPUState *cs, run_on_cpu_data data)
298c345104cSJoao Martins {
299c345104cSJoao Martins     X86CPU *cpu = X86_CPU(cs);
300c345104cSJoao Martins     CPUX86State *env = &cpu->env;
301c345104cSJoao Martins 
302c345104cSJoao Martins     env->xen_vcpu_info_gpa = INVALID_GPA;
303c345104cSJoao Martins     env->xen_vcpu_info_default_gpa = INVALID_GPA;
304f0689302SJoao Martins     env->xen_vcpu_time_info_gpa = INVALID_GPA;
3055092db87SJoao Martins     env->xen_vcpu_runstate_gpa = INVALID_GPA;
306*105b47fdSAnkur Arora     env->xen_vcpu_callback_vector = 0;
307c345104cSJoao Martins 
308c345104cSJoao Martins     kvm_xen_set_vcpu_attr(cs, KVM_XEN_VCPU_ATTR_TYPE_VCPU_INFO, INVALID_GPA);
309f0689302SJoao Martins     kvm_xen_set_vcpu_attr(cs, KVM_XEN_VCPU_ATTR_TYPE_VCPU_TIME_INFO,
310f0689302SJoao Martins                           INVALID_GPA);
3115092db87SJoao Martins     kvm_xen_set_vcpu_attr(cs, KVM_XEN_VCPU_ATTR_TYPE_RUNSTATE_ADDR,
3125092db87SJoao Martins                           INVALID_GPA);
313*105b47fdSAnkur Arora     if (kvm_xen_has_cap(EVTCHN_SEND)) {
314*105b47fdSAnkur Arora         kvm_xen_set_vcpu_callback_vector(cs);
315*105b47fdSAnkur Arora     }
3165092db87SJoao Martins 
317c345104cSJoao Martins }
318c345104cSJoao Martins 
319fb0fd2ceSJoao Martins static int xen_set_shared_info(uint64_t gfn)
320fb0fd2ceSJoao Martins {
321fb0fd2ceSJoao Martins     uint64_t gpa = gfn << TARGET_PAGE_BITS;
322c345104cSJoao Martins     int i, err;
323fb0fd2ceSJoao Martins 
324fb0fd2ceSJoao Martins     QEMU_IOTHREAD_LOCK_GUARD();
325fb0fd2ceSJoao Martins 
326fb0fd2ceSJoao Martins     /*
327fb0fd2ceSJoao Martins      * The xen_overlay device tells KVM about it too, since it had to
328fb0fd2ceSJoao Martins      * do that on migration load anyway (unless we're going to jump
329fb0fd2ceSJoao Martins      * through lots of hoops to maintain the fiction that this isn't
330fb0fd2ceSJoao Martins      * KVM-specific.
331fb0fd2ceSJoao Martins      */
332fb0fd2ceSJoao Martins     err = xen_overlay_map_shinfo_page(gpa);
333fb0fd2ceSJoao Martins     if (err) {
334fb0fd2ceSJoao Martins             return err;
335fb0fd2ceSJoao Martins     }
336fb0fd2ceSJoao Martins 
337fb0fd2ceSJoao Martins     trace_kvm_xen_set_shared_info(gfn);
338fb0fd2ceSJoao Martins 
339c345104cSJoao Martins     for (i = 0; i < XEN_LEGACY_MAX_VCPUS; i++) {
340c345104cSJoao Martins         CPUState *cpu = qemu_get_cpu(i);
341c345104cSJoao Martins         if (cpu) {
342c345104cSJoao Martins             async_run_on_cpu(cpu, do_set_vcpu_info_default_gpa,
343c345104cSJoao Martins                              RUN_ON_CPU_HOST_ULONG(gpa));
344c345104cSJoao Martins         }
345c345104cSJoao Martins         gpa += sizeof(vcpu_info_t);
346c345104cSJoao Martins     }
347c345104cSJoao Martins 
348fb0fd2ceSJoao Martins     return err;
349fb0fd2ceSJoao Martins }
350fb0fd2ceSJoao Martins 
351fb0fd2ceSJoao Martins static int add_to_physmap_one(uint32_t space, uint64_t idx, uint64_t gfn)
352fb0fd2ceSJoao Martins {
353fb0fd2ceSJoao Martins     switch (space) {
354fb0fd2ceSJoao Martins     case XENMAPSPACE_shared_info:
355fb0fd2ceSJoao Martins         if (idx > 0) {
356fb0fd2ceSJoao Martins             return -EINVAL;
357fb0fd2ceSJoao Martins         }
358fb0fd2ceSJoao Martins         return xen_set_shared_info(gfn);
359fb0fd2ceSJoao Martins 
360fb0fd2ceSJoao Martins     case XENMAPSPACE_grant_table:
361fb0fd2ceSJoao Martins     case XENMAPSPACE_gmfn:
362fb0fd2ceSJoao Martins     case XENMAPSPACE_gmfn_range:
363fb0fd2ceSJoao Martins         return -ENOTSUP;
364fb0fd2ceSJoao Martins 
365fb0fd2ceSJoao Martins     case XENMAPSPACE_gmfn_foreign:
366fb0fd2ceSJoao Martins     case XENMAPSPACE_dev_mmio:
367fb0fd2ceSJoao Martins         return -EPERM;
368fb0fd2ceSJoao Martins 
369fb0fd2ceSJoao Martins     default:
370fb0fd2ceSJoao Martins         return -EINVAL;
371fb0fd2ceSJoao Martins     }
372fb0fd2ceSJoao Martins }
373fb0fd2ceSJoao Martins 
374fb0fd2ceSJoao Martins static int do_add_to_physmap(struct kvm_xen_exit *exit, X86CPU *cpu,
375fb0fd2ceSJoao Martins                              uint64_t arg)
376fb0fd2ceSJoao Martins {
377fb0fd2ceSJoao Martins     struct xen_add_to_physmap xatp;
378fb0fd2ceSJoao Martins     CPUState *cs = CPU(cpu);
379fb0fd2ceSJoao Martins 
380fb0fd2ceSJoao Martins     if (hypercall_compat32(exit->u.hcall.longmode)) {
381fb0fd2ceSJoao Martins         struct compat_xen_add_to_physmap xatp32;
382fb0fd2ceSJoao Martins 
383fb0fd2ceSJoao Martins         qemu_build_assert(sizeof(struct compat_xen_add_to_physmap) == 16);
384fb0fd2ceSJoao Martins         if (kvm_copy_from_gva(cs, arg, &xatp32, sizeof(xatp32))) {
385fb0fd2ceSJoao Martins             return -EFAULT;
386fb0fd2ceSJoao Martins         }
387fb0fd2ceSJoao Martins         xatp.domid = xatp32.domid;
388fb0fd2ceSJoao Martins         xatp.size = xatp32.size;
389fb0fd2ceSJoao Martins         xatp.space = xatp32.space;
390fb0fd2ceSJoao Martins         xatp.idx = xatp32.idx;
391fb0fd2ceSJoao Martins         xatp.gpfn = xatp32.gpfn;
392fb0fd2ceSJoao Martins     } else {
393fb0fd2ceSJoao Martins         if (kvm_copy_from_gva(cs, arg, &xatp, sizeof(xatp))) {
394fb0fd2ceSJoao Martins             return -EFAULT;
395fb0fd2ceSJoao Martins         }
396fb0fd2ceSJoao Martins     }
397fb0fd2ceSJoao Martins 
398fb0fd2ceSJoao Martins     if (xatp.domid != DOMID_SELF && xatp.domid != xen_domid) {
399fb0fd2ceSJoao Martins         return -ESRCH;
400fb0fd2ceSJoao Martins     }
401fb0fd2ceSJoao Martins 
402fb0fd2ceSJoao Martins     return add_to_physmap_one(xatp.space, xatp.idx, xatp.gpfn);
403fb0fd2ceSJoao Martins }
404fb0fd2ceSJoao Martins 
405782a7960SDavid Woodhouse static int do_add_to_physmap_batch(struct kvm_xen_exit *exit, X86CPU *cpu,
406782a7960SDavid Woodhouse                                    uint64_t arg)
407782a7960SDavid Woodhouse {
408782a7960SDavid Woodhouse     struct xen_add_to_physmap_batch xatpb;
409782a7960SDavid Woodhouse     unsigned long idxs_gva, gpfns_gva, errs_gva;
410782a7960SDavid Woodhouse     CPUState *cs = CPU(cpu);
411782a7960SDavid Woodhouse     size_t op_sz;
412782a7960SDavid Woodhouse 
413782a7960SDavid Woodhouse     if (hypercall_compat32(exit->u.hcall.longmode)) {
414782a7960SDavid Woodhouse         struct compat_xen_add_to_physmap_batch xatpb32;
415782a7960SDavid Woodhouse 
416782a7960SDavid Woodhouse         qemu_build_assert(sizeof(struct compat_xen_add_to_physmap_batch) == 20);
417782a7960SDavid Woodhouse         if (kvm_copy_from_gva(cs, arg, &xatpb32, sizeof(xatpb32))) {
418782a7960SDavid Woodhouse             return -EFAULT;
419782a7960SDavid Woodhouse         }
420782a7960SDavid Woodhouse         xatpb.domid = xatpb32.domid;
421782a7960SDavid Woodhouse         xatpb.space = xatpb32.space;
422782a7960SDavid Woodhouse         xatpb.size = xatpb32.size;
423782a7960SDavid Woodhouse 
424782a7960SDavid Woodhouse         idxs_gva = xatpb32.idxs.c;
425782a7960SDavid Woodhouse         gpfns_gva = xatpb32.gpfns.c;
426782a7960SDavid Woodhouse         errs_gva = xatpb32.errs.c;
427782a7960SDavid Woodhouse         op_sz = sizeof(uint32_t);
428782a7960SDavid Woodhouse     } else {
429782a7960SDavid Woodhouse         if (kvm_copy_from_gva(cs, arg, &xatpb, sizeof(xatpb))) {
430782a7960SDavid Woodhouse             return -EFAULT;
431782a7960SDavid Woodhouse         }
432782a7960SDavid Woodhouse         op_sz = sizeof(unsigned long);
433782a7960SDavid Woodhouse         idxs_gva = (unsigned long)xatpb.idxs.p;
434782a7960SDavid Woodhouse         gpfns_gva = (unsigned long)xatpb.gpfns.p;
435782a7960SDavid Woodhouse         errs_gva = (unsigned long)xatpb.errs.p;
436782a7960SDavid Woodhouse     }
437782a7960SDavid Woodhouse 
438782a7960SDavid Woodhouse     if (xatpb.domid != DOMID_SELF && xatpb.domid != xen_domid) {
439782a7960SDavid Woodhouse         return -ESRCH;
440782a7960SDavid Woodhouse     }
441782a7960SDavid Woodhouse 
442782a7960SDavid Woodhouse     /* Explicitly invalid for the batch op. Not that we implement it anyway. */
443782a7960SDavid Woodhouse     if (xatpb.space == XENMAPSPACE_gmfn_range) {
444782a7960SDavid Woodhouse         return -EINVAL;
445782a7960SDavid Woodhouse     }
446782a7960SDavid Woodhouse 
447782a7960SDavid Woodhouse     while (xatpb.size--) {
448782a7960SDavid Woodhouse         unsigned long idx = 0;
449782a7960SDavid Woodhouse         unsigned long gpfn = 0;
450782a7960SDavid Woodhouse         int err;
451782a7960SDavid Woodhouse 
452782a7960SDavid Woodhouse         /* For 32-bit compat this only copies the low 32 bits of each */
453782a7960SDavid Woodhouse         if (kvm_copy_from_gva(cs, idxs_gva, &idx, op_sz) ||
454782a7960SDavid Woodhouse             kvm_copy_from_gva(cs, gpfns_gva, &gpfn, op_sz)) {
455782a7960SDavid Woodhouse             return -EFAULT;
456782a7960SDavid Woodhouse         }
457782a7960SDavid Woodhouse         idxs_gva += op_sz;
458782a7960SDavid Woodhouse         gpfns_gva += op_sz;
459782a7960SDavid Woodhouse 
460782a7960SDavid Woodhouse         err = add_to_physmap_one(xatpb.space, idx, gpfn);
461782a7960SDavid Woodhouse 
462782a7960SDavid Woodhouse         if (kvm_copy_to_gva(cs, errs_gva, &err, sizeof(err))) {
463782a7960SDavid Woodhouse             return -EFAULT;
464782a7960SDavid Woodhouse         }
465782a7960SDavid Woodhouse         errs_gva += sizeof(err);
466782a7960SDavid Woodhouse     }
467782a7960SDavid Woodhouse     return 0;
468782a7960SDavid Woodhouse }
469782a7960SDavid Woodhouse 
470fb0fd2ceSJoao Martins static bool kvm_xen_hcall_memory_op(struct kvm_xen_exit *exit, X86CPU *cpu,
471fb0fd2ceSJoao Martins                                    int cmd, uint64_t arg)
472fb0fd2ceSJoao Martins {
473fb0fd2ceSJoao Martins     int err;
474fb0fd2ceSJoao Martins 
475fb0fd2ceSJoao Martins     switch (cmd) {
476fb0fd2ceSJoao Martins     case XENMEM_add_to_physmap:
477fb0fd2ceSJoao Martins         err = do_add_to_physmap(exit, cpu, arg);
478fb0fd2ceSJoao Martins         break;
479fb0fd2ceSJoao Martins 
480782a7960SDavid Woodhouse     case XENMEM_add_to_physmap_batch:
481782a7960SDavid Woodhouse         err = do_add_to_physmap_batch(exit, cpu, arg);
482782a7960SDavid Woodhouse         break;
483782a7960SDavid Woodhouse 
484fb0fd2ceSJoao Martins     default:
485fb0fd2ceSJoao Martins         return false;
486fb0fd2ceSJoao Martins     }
487fb0fd2ceSJoao Martins 
488fb0fd2ceSJoao Martins     exit->u.hcall.result = err;
489fb0fd2ceSJoao Martins     return true;
490fb0fd2ceSJoao Martins }
491fb0fd2ceSJoao Martins 
492*105b47fdSAnkur Arora static int kvm_xen_hcall_evtchn_upcall_vector(struct kvm_xen_exit *exit,
493*105b47fdSAnkur Arora                                               X86CPU *cpu, uint64_t arg)
494*105b47fdSAnkur Arora {
495*105b47fdSAnkur Arora     struct xen_hvm_evtchn_upcall_vector up;
496*105b47fdSAnkur Arora     CPUState *target_cs;
497*105b47fdSAnkur Arora 
498*105b47fdSAnkur Arora     /* No need for 32/64 compat handling */
499*105b47fdSAnkur Arora     qemu_build_assert(sizeof(up) == 8);
500*105b47fdSAnkur Arora 
501*105b47fdSAnkur Arora     if (kvm_copy_from_gva(CPU(cpu), arg, &up, sizeof(up))) {
502*105b47fdSAnkur Arora         return -EFAULT;
503*105b47fdSAnkur Arora     }
504*105b47fdSAnkur Arora 
505*105b47fdSAnkur Arora     if (up.vector < 0x10) {
506*105b47fdSAnkur Arora         return -EINVAL;
507*105b47fdSAnkur Arora     }
508*105b47fdSAnkur Arora 
509*105b47fdSAnkur Arora     target_cs = qemu_get_cpu(up.vcpu);
510*105b47fdSAnkur Arora     if (!target_cs) {
511*105b47fdSAnkur Arora         return -EINVAL;
512*105b47fdSAnkur Arora     }
513*105b47fdSAnkur Arora 
514*105b47fdSAnkur Arora     async_run_on_cpu(target_cs, do_set_vcpu_callback_vector,
515*105b47fdSAnkur Arora                      RUN_ON_CPU_HOST_INT(up.vector));
516*105b47fdSAnkur Arora     return 0;
517*105b47fdSAnkur Arora }
518*105b47fdSAnkur Arora 
519671bfdcdSJoao Martins static bool kvm_xen_hcall_hvm_op(struct kvm_xen_exit *exit, X86CPU *cpu,
520671bfdcdSJoao Martins                                  int cmd, uint64_t arg)
521671bfdcdSJoao Martins {
522*105b47fdSAnkur Arora     int ret = -ENOSYS;
523671bfdcdSJoao Martins     switch (cmd) {
524*105b47fdSAnkur Arora     case HVMOP_set_evtchn_upcall_vector:
525*105b47fdSAnkur Arora         ret = kvm_xen_hcall_evtchn_upcall_vector(exit, cpu,
526*105b47fdSAnkur Arora                                                  exit->u.hcall.params[0]);
527*105b47fdSAnkur Arora         break;
528*105b47fdSAnkur Arora 
529671bfdcdSJoao Martins     case HVMOP_pagetable_dying:
530*105b47fdSAnkur Arora         ret = -ENOSYS;
531*105b47fdSAnkur Arora         break;
532671bfdcdSJoao Martins 
533671bfdcdSJoao Martins     default:
534671bfdcdSJoao Martins         return false;
535671bfdcdSJoao Martins     }
536*105b47fdSAnkur Arora 
537*105b47fdSAnkur Arora     exit->u.hcall.result = ret;
538*105b47fdSAnkur Arora     return true;
539671bfdcdSJoao Martins }
540671bfdcdSJoao Martins 
541c345104cSJoao Martins static int vcpuop_register_vcpu_info(CPUState *cs, CPUState *target,
542c345104cSJoao Martins                                      uint64_t arg)
543c345104cSJoao Martins {
544c345104cSJoao Martins     struct vcpu_register_vcpu_info rvi;
545c345104cSJoao Martins     uint64_t gpa;
546c345104cSJoao Martins 
547c345104cSJoao Martins     /* No need for 32/64 compat handling */
548c345104cSJoao Martins     qemu_build_assert(sizeof(rvi) == 16);
549c345104cSJoao Martins     qemu_build_assert(sizeof(struct vcpu_info) == 64);
550c345104cSJoao Martins 
551c345104cSJoao Martins     if (!target) {
552c345104cSJoao Martins         return -ENOENT;
553c345104cSJoao Martins     }
554c345104cSJoao Martins 
555c345104cSJoao Martins     if (kvm_copy_from_gva(cs, arg, &rvi, sizeof(rvi))) {
556c345104cSJoao Martins         return -EFAULT;
557c345104cSJoao Martins     }
558c345104cSJoao Martins 
559c345104cSJoao Martins     if (rvi.offset > TARGET_PAGE_SIZE - sizeof(struct vcpu_info)) {
560c345104cSJoao Martins         return -EINVAL;
561c345104cSJoao Martins     }
562c345104cSJoao Martins 
563c345104cSJoao Martins     gpa = ((rvi.mfn << TARGET_PAGE_BITS) + rvi.offset);
564c345104cSJoao Martins     async_run_on_cpu(target, do_set_vcpu_info_gpa, RUN_ON_CPU_HOST_ULONG(gpa));
565c345104cSJoao Martins     return 0;
566c345104cSJoao Martins }
567c345104cSJoao Martins 
568f0689302SJoao Martins static int vcpuop_register_vcpu_time_info(CPUState *cs, CPUState *target,
569f0689302SJoao Martins                                           uint64_t arg)
570f0689302SJoao Martins {
571f0689302SJoao Martins     struct vcpu_register_time_memory_area tma;
572f0689302SJoao Martins     uint64_t gpa;
573f0689302SJoao Martins     size_t len;
574f0689302SJoao Martins 
575f0689302SJoao Martins     /* No need for 32/64 compat handling */
576f0689302SJoao Martins     qemu_build_assert(sizeof(tma) == 8);
577f0689302SJoao Martins     qemu_build_assert(sizeof(struct vcpu_time_info) == 32);
578f0689302SJoao Martins 
579f0689302SJoao Martins     if (!target) {
580f0689302SJoao Martins         return -ENOENT;
581f0689302SJoao Martins     }
582f0689302SJoao Martins 
583f0689302SJoao Martins     if (kvm_copy_from_gva(cs, arg, &tma, sizeof(tma))) {
584f0689302SJoao Martins         return -EFAULT;
585f0689302SJoao Martins     }
586f0689302SJoao Martins 
587f0689302SJoao Martins     /*
588f0689302SJoao Martins      * Xen actually uses the GVA and does the translation through the guest
589f0689302SJoao Martins      * page tables each time. But Linux/KVM uses the GPA, on the assumption
590f0689302SJoao Martins      * that guests only ever use *global* addresses (kernel virtual addresses)
591f0689302SJoao Martins      * for it. If Linux is changed to redo the GVA→GPA translation each time,
592f0689302SJoao Martins      * it will offer a new vCPU attribute for that, and we'll use it instead.
593f0689302SJoao Martins      */
594f0689302SJoao Martins     if (!kvm_gva_to_gpa(cs, tma.addr.p, &gpa, &len, false) ||
595f0689302SJoao Martins         len < sizeof(struct vcpu_time_info)) {
596f0689302SJoao Martins         return -EFAULT;
597f0689302SJoao Martins     }
598f0689302SJoao Martins 
599f0689302SJoao Martins     async_run_on_cpu(target, do_set_vcpu_time_info_gpa,
600f0689302SJoao Martins                      RUN_ON_CPU_HOST_ULONG(gpa));
601f0689302SJoao Martins     return 0;
602f0689302SJoao Martins }
603f0689302SJoao Martins 
6045092db87SJoao Martins static int vcpuop_register_runstate_info(CPUState *cs, CPUState *target,
6055092db87SJoao Martins                                          uint64_t arg)
6065092db87SJoao Martins {
6075092db87SJoao Martins     struct vcpu_register_runstate_memory_area rma;
6085092db87SJoao Martins     uint64_t gpa;
6095092db87SJoao Martins     size_t len;
6105092db87SJoao Martins 
6115092db87SJoao Martins     /* No need for 32/64 compat handling */
6125092db87SJoao Martins     qemu_build_assert(sizeof(rma) == 8);
6135092db87SJoao Martins     /* The runstate area actually does change size, but Linux copes. */
6145092db87SJoao Martins 
6155092db87SJoao Martins     if (!target) {
6165092db87SJoao Martins         return -ENOENT;
6175092db87SJoao Martins     }
6185092db87SJoao Martins 
6195092db87SJoao Martins     if (kvm_copy_from_gva(cs, arg, &rma, sizeof(rma))) {
6205092db87SJoao Martins         return -EFAULT;
6215092db87SJoao Martins     }
6225092db87SJoao Martins 
6235092db87SJoao Martins     /* As with vcpu_time_info, Xen actually uses the GVA but KVM doesn't. */
6245092db87SJoao Martins     if (!kvm_gva_to_gpa(cs, rma.addr.p, &gpa, &len, false)) {
6255092db87SJoao Martins         return -EFAULT;
6265092db87SJoao Martins     }
6275092db87SJoao Martins 
6285092db87SJoao Martins     async_run_on_cpu(target, do_set_vcpu_runstate_gpa,
6295092db87SJoao Martins                      RUN_ON_CPU_HOST_ULONG(gpa));
6305092db87SJoao Martins     return 0;
6315092db87SJoao Martins }
6325092db87SJoao Martins 
633d70bd6a4SJoao Martins static bool kvm_xen_hcall_vcpu_op(struct kvm_xen_exit *exit, X86CPU *cpu,
634d70bd6a4SJoao Martins                                   int cmd, int vcpu_id, uint64_t arg)
635d70bd6a4SJoao Martins {
636c345104cSJoao Martins     CPUState *dest = qemu_get_cpu(vcpu_id);
637c345104cSJoao Martins     CPUState *cs = CPU(cpu);
638d70bd6a4SJoao Martins     int err;
639d70bd6a4SJoao Martins 
640d70bd6a4SJoao Martins     switch (cmd) {
6415092db87SJoao Martins     case VCPUOP_register_runstate_memory_area:
6425092db87SJoao Martins         err = vcpuop_register_runstate_info(cs, dest, arg);
6435092db87SJoao Martins         break;
644f0689302SJoao Martins     case VCPUOP_register_vcpu_time_memory_area:
645f0689302SJoao Martins         err = vcpuop_register_vcpu_time_info(cs, dest, arg);
646f0689302SJoao Martins         break;
647d70bd6a4SJoao Martins     case VCPUOP_register_vcpu_info:
648c345104cSJoao Martins         err = vcpuop_register_vcpu_info(cs, dest, arg);
649d70bd6a4SJoao Martins         break;
650d70bd6a4SJoao Martins 
651d70bd6a4SJoao Martins     default:
652d70bd6a4SJoao Martins         return false;
653d70bd6a4SJoao Martins     }
654d70bd6a4SJoao Martins 
655d70bd6a4SJoao Martins     exit->u.hcall.result = err;
656d70bd6a4SJoao Martins     return true;
657d70bd6a4SJoao Martins }
658d70bd6a4SJoao Martins 
6593b06f29bSJoao Martins static bool kvm_xen_hcall_evtchn_op(struct kvm_xen_exit *exit,
6603b06f29bSJoao Martins                                     int cmd, uint64_t arg)
6613b06f29bSJoao Martins {
6623b06f29bSJoao Martins     int err = -ENOSYS;
6633b06f29bSJoao Martins 
6643b06f29bSJoao Martins     switch (cmd) {
6653b06f29bSJoao Martins     case EVTCHNOP_init_control:
6663b06f29bSJoao Martins     case EVTCHNOP_expand_array:
6673b06f29bSJoao Martins     case EVTCHNOP_set_priority:
6683b06f29bSJoao Martins         /* We do not support FIFO channels at this point */
6693b06f29bSJoao Martins         err = -ENOSYS;
6703b06f29bSJoao Martins         break;
6713b06f29bSJoao Martins 
6723b06f29bSJoao Martins     default:
6733b06f29bSJoao Martins         return false;
6743b06f29bSJoao Martins     }
6753b06f29bSJoao Martins 
6763b06f29bSJoao Martins     exit->u.hcall.result = err;
6773b06f29bSJoao Martins     return true;
6783b06f29bSJoao Martins }
6793b06f29bSJoao Martins 
68079b7067dSJoao Martins int kvm_xen_soft_reset(void)
68179b7067dSJoao Martins {
682c345104cSJoao Martins     CPUState *cpu;
683fb0fd2ceSJoao Martins     int err;
684fb0fd2ceSJoao Martins 
68579b7067dSJoao Martins     assert(qemu_mutex_iothread_locked());
68679b7067dSJoao Martins 
68779b7067dSJoao Martins     trace_kvm_xen_soft_reset();
68879b7067dSJoao Martins 
689c345104cSJoao Martins     CPU_FOREACH(cpu) {
690c345104cSJoao Martins         async_run_on_cpu(cpu, do_vcpu_soft_reset, RUN_ON_CPU_NULL);
691c345104cSJoao Martins     }
692c345104cSJoao Martins 
693fb0fd2ceSJoao Martins     err = xen_overlay_map_shinfo_page(INVALID_GFN);
694fb0fd2ceSJoao Martins     if (err) {
695fb0fd2ceSJoao Martins         return err;
696fb0fd2ceSJoao Martins     }
697fb0fd2ceSJoao Martins 
69879b7067dSJoao Martins     return 0;
69979b7067dSJoao Martins }
70079b7067dSJoao Martins 
70179b7067dSJoao Martins static int schedop_shutdown(CPUState *cs, uint64_t arg)
70279b7067dSJoao Martins {
70379b7067dSJoao Martins     struct sched_shutdown shutdown;
70479b7067dSJoao Martins     int ret = 0;
70579b7067dSJoao Martins 
70679b7067dSJoao Martins     /* No need for 32/64 compat handling */
70779b7067dSJoao Martins     qemu_build_assert(sizeof(shutdown) == 4);
70879b7067dSJoao Martins 
70979b7067dSJoao Martins     if (kvm_copy_from_gva(cs, arg, &shutdown, sizeof(shutdown))) {
71079b7067dSJoao Martins         return -EFAULT;
71179b7067dSJoao Martins     }
71279b7067dSJoao Martins 
71379b7067dSJoao Martins     switch (shutdown.reason) {
71479b7067dSJoao Martins     case SHUTDOWN_crash:
71579b7067dSJoao Martins         cpu_dump_state(cs, stderr, CPU_DUMP_CODE);
71679b7067dSJoao Martins         qemu_system_guest_panicked(NULL);
71779b7067dSJoao Martins         break;
71879b7067dSJoao Martins 
71979b7067dSJoao Martins     case SHUTDOWN_reboot:
72079b7067dSJoao Martins         qemu_system_reset_request(SHUTDOWN_CAUSE_GUEST_RESET);
72179b7067dSJoao Martins         break;
72279b7067dSJoao Martins 
72379b7067dSJoao Martins     case SHUTDOWN_poweroff:
72479b7067dSJoao Martins         qemu_system_shutdown_request(SHUTDOWN_CAUSE_GUEST_SHUTDOWN);
72579b7067dSJoao Martins         break;
72679b7067dSJoao Martins 
72779b7067dSJoao Martins     case SHUTDOWN_soft_reset:
72879b7067dSJoao Martins         qemu_mutex_lock_iothread();
72979b7067dSJoao Martins         ret = kvm_xen_soft_reset();
73079b7067dSJoao Martins         qemu_mutex_unlock_iothread();
73179b7067dSJoao Martins         break;
73279b7067dSJoao Martins 
73379b7067dSJoao Martins     default:
73479b7067dSJoao Martins         ret = -EINVAL;
73579b7067dSJoao Martins         break;
73679b7067dSJoao Martins     }
73779b7067dSJoao Martins 
73879b7067dSJoao Martins     return ret;
73979b7067dSJoao Martins }
74079b7067dSJoao Martins 
74179b7067dSJoao Martins static bool kvm_xen_hcall_sched_op(struct kvm_xen_exit *exit, X86CPU *cpu,
74279b7067dSJoao Martins                                    int cmd, uint64_t arg)
74379b7067dSJoao Martins {
74479b7067dSJoao Martins     CPUState *cs = CPU(cpu);
74579b7067dSJoao Martins     int err = -ENOSYS;
74679b7067dSJoao Martins 
74779b7067dSJoao Martins     switch (cmd) {
74879b7067dSJoao Martins     case SCHEDOP_shutdown:
74979b7067dSJoao Martins         err = schedop_shutdown(cs, arg);
75079b7067dSJoao Martins         break;
75179b7067dSJoao Martins 
752c789b9efSDavid Woodhouse     case SCHEDOP_poll:
753c789b9efSDavid Woodhouse         /*
754c789b9efSDavid Woodhouse          * Linux will panic if this doesn't work. Just yield; it's not
755c789b9efSDavid Woodhouse          * worth overthinking it because with event channel handling
756c789b9efSDavid Woodhouse          * in KVM, the kernel will intercept this and it will never
757c789b9efSDavid Woodhouse          * reach QEMU anyway. The semantics of the hypercall explicltly
758c789b9efSDavid Woodhouse          * permit spurious wakeups.
759c789b9efSDavid Woodhouse          */
760c789b9efSDavid Woodhouse     case SCHEDOP_yield:
761c789b9efSDavid Woodhouse         sched_yield();
762c789b9efSDavid Woodhouse         err = 0;
763c789b9efSDavid Woodhouse         break;
764c789b9efSDavid Woodhouse 
76579b7067dSJoao Martins     default:
76679b7067dSJoao Martins         return false;
76779b7067dSJoao Martins     }
76879b7067dSJoao Martins 
76979b7067dSJoao Martins     exit->u.hcall.result = err;
77079b7067dSJoao Martins     return true;
77179b7067dSJoao Martins }
77279b7067dSJoao Martins 
77355a3f666SJoao Martins static bool do_kvm_xen_handle_exit(X86CPU *cpu, struct kvm_xen_exit *exit)
77455a3f666SJoao Martins {
77555a3f666SJoao Martins     uint16_t code = exit->u.hcall.input;
77655a3f666SJoao Martins 
77755a3f666SJoao Martins     if (exit->u.hcall.cpl > 0) {
77855a3f666SJoao Martins         exit->u.hcall.result = -EPERM;
77955a3f666SJoao Martins         return true;
78055a3f666SJoao Martins     }
78155a3f666SJoao Martins 
78255a3f666SJoao Martins     switch (code) {
78379b7067dSJoao Martins     case __HYPERVISOR_sched_op:
78479b7067dSJoao Martins         return kvm_xen_hcall_sched_op(exit, cpu, exit->u.hcall.params[0],
78579b7067dSJoao Martins                                       exit->u.hcall.params[1]);
7863b06f29bSJoao Martins     case __HYPERVISOR_event_channel_op:
7873b06f29bSJoao Martins         return kvm_xen_hcall_evtchn_op(exit, exit->u.hcall.params[0],
7883b06f29bSJoao Martins                                        exit->u.hcall.params[1]);
789d70bd6a4SJoao Martins     case __HYPERVISOR_vcpu_op:
790d70bd6a4SJoao Martins         return kvm_xen_hcall_vcpu_op(exit, cpu,
791d70bd6a4SJoao Martins                                      exit->u.hcall.params[0],
792d70bd6a4SJoao Martins                                      exit->u.hcall.params[1],
793d70bd6a4SJoao Martins                                      exit->u.hcall.params[2]);
794671bfdcdSJoao Martins     case __HYPERVISOR_hvm_op:
795671bfdcdSJoao Martins         return kvm_xen_hcall_hvm_op(exit, cpu, exit->u.hcall.params[0],
796671bfdcdSJoao Martins                                     exit->u.hcall.params[1]);
797fb0fd2ceSJoao Martins     case __HYPERVISOR_memory_op:
798fb0fd2ceSJoao Martins         return kvm_xen_hcall_memory_op(exit, cpu, exit->u.hcall.params[0],
799fb0fd2ceSJoao Martins                                        exit->u.hcall.params[1]);
800bedcc139SJoao Martins     case __HYPERVISOR_xen_version:
801bedcc139SJoao Martins         return kvm_xen_hcall_xen_version(exit, cpu, exit->u.hcall.params[0],
802bedcc139SJoao Martins                                          exit->u.hcall.params[1]);
80355a3f666SJoao Martins     default:
80455a3f666SJoao Martins         return false;
80555a3f666SJoao Martins     }
80655a3f666SJoao Martins }
80755a3f666SJoao Martins 
80855a3f666SJoao Martins int kvm_xen_handle_exit(X86CPU *cpu, struct kvm_xen_exit *exit)
80955a3f666SJoao Martins {
81055a3f666SJoao Martins     if (exit->type != KVM_EXIT_XEN_HCALL) {
81155a3f666SJoao Martins         return -1;
81255a3f666SJoao Martins     }
81355a3f666SJoao Martins 
814110a0ea5SDavid Woodhouse     /*
815110a0ea5SDavid Woodhouse      * The kernel latches the guest 32/64 mode when the MSR is used to fill
816110a0ea5SDavid Woodhouse      * the hypercall page. So if we see a hypercall in a mode that doesn't
817110a0ea5SDavid Woodhouse      * match our own idea of the guest mode, fetch the kernel's idea of the
818110a0ea5SDavid Woodhouse      * "long mode" to remain in sync.
819110a0ea5SDavid Woodhouse      */
820110a0ea5SDavid Woodhouse     if (exit->u.hcall.longmode != xen_is_long_mode()) {
821110a0ea5SDavid Woodhouse         xen_sync_long_mode();
822110a0ea5SDavid Woodhouse     }
823110a0ea5SDavid Woodhouse 
82455a3f666SJoao Martins     if (!do_kvm_xen_handle_exit(cpu, exit)) {
82555a3f666SJoao Martins         /*
82655a3f666SJoao Martins          * Some hypercalls will be deliberately "implemented" by returning
82755a3f666SJoao Martins          * -ENOSYS. This case is for hypercalls which are unexpected.
82855a3f666SJoao Martins          */
82955a3f666SJoao Martins         exit->u.hcall.result = -ENOSYS;
83055a3f666SJoao Martins         qemu_log_mask(LOG_UNIMP, "Unimplemented Xen hypercall %"
83155a3f666SJoao Martins                       PRId64 " (0x%" PRIx64 " 0x%" PRIx64 " 0x%" PRIx64 ")\n",
83255a3f666SJoao Martins                       (uint64_t)exit->u.hcall.input,
83355a3f666SJoao Martins                       (uint64_t)exit->u.hcall.params[0],
83455a3f666SJoao Martins                       (uint64_t)exit->u.hcall.params[1],
83555a3f666SJoao Martins                       (uint64_t)exit->u.hcall.params[2]);
83655a3f666SJoao Martins     }
83755a3f666SJoao Martins 
83855a3f666SJoao Martins     trace_kvm_xen_hypercall(CPU(cpu)->cpu_index, exit->u.hcall.cpl,
83955a3f666SJoao Martins                             exit->u.hcall.input, exit->u.hcall.params[0],
84055a3f666SJoao Martins                             exit->u.hcall.params[1], exit->u.hcall.params[2],
84155a3f666SJoao Martins                             exit->u.hcall.result);
84255a3f666SJoao Martins     return 0;
84355a3f666SJoao Martins }
844c345104cSJoao Martins 
845c345104cSJoao Martins int kvm_put_xen_state(CPUState *cs)
846c345104cSJoao Martins {
847c345104cSJoao Martins     X86CPU *cpu = X86_CPU(cs);
848c345104cSJoao Martins     CPUX86State *env = &cpu->env;
849c345104cSJoao Martins     uint64_t gpa;
850c345104cSJoao Martins     int ret;
851c345104cSJoao Martins 
852c345104cSJoao Martins     gpa = env->xen_vcpu_info_gpa;
853c345104cSJoao Martins     if (gpa == INVALID_GPA) {
854c345104cSJoao Martins         gpa = env->xen_vcpu_info_default_gpa;
855c345104cSJoao Martins     }
856c345104cSJoao Martins 
857c345104cSJoao Martins     if (gpa != INVALID_GPA) {
858c345104cSJoao Martins         ret = kvm_xen_set_vcpu_attr(cs, KVM_XEN_VCPU_ATTR_TYPE_VCPU_INFO, gpa);
859c345104cSJoao Martins         if (ret < 0) {
860c345104cSJoao Martins             return ret;
861c345104cSJoao Martins         }
862c345104cSJoao Martins     }
863c345104cSJoao Martins 
864f0689302SJoao Martins     gpa = env->xen_vcpu_time_info_gpa;
865f0689302SJoao Martins     if (gpa != INVALID_GPA) {
866f0689302SJoao Martins         ret = kvm_xen_set_vcpu_attr(cs, KVM_XEN_VCPU_ATTR_TYPE_VCPU_TIME_INFO,
867f0689302SJoao Martins                                     gpa);
868f0689302SJoao Martins         if (ret < 0) {
869f0689302SJoao Martins             return ret;
870f0689302SJoao Martins         }
871f0689302SJoao Martins     }
872f0689302SJoao Martins 
8735092db87SJoao Martins     gpa = env->xen_vcpu_runstate_gpa;
8745092db87SJoao Martins     if (gpa != INVALID_GPA) {
8755092db87SJoao Martins         ret = kvm_xen_set_vcpu_attr(cs, KVM_XEN_VCPU_ATTR_TYPE_RUNSTATE_ADDR,
8765092db87SJoao Martins                                     gpa);
8775092db87SJoao Martins         if (ret < 0) {
8785092db87SJoao Martins             return ret;
8795092db87SJoao Martins         }
8805092db87SJoao Martins     }
8815092db87SJoao Martins 
882*105b47fdSAnkur Arora     if (!kvm_xen_has_cap(EVTCHN_SEND)) {
883*105b47fdSAnkur Arora         return 0;
884*105b47fdSAnkur Arora     }
885*105b47fdSAnkur Arora 
886*105b47fdSAnkur Arora     if (env->xen_vcpu_callback_vector) {
887*105b47fdSAnkur Arora         ret = kvm_xen_set_vcpu_callback_vector(cs);
888*105b47fdSAnkur Arora         if (ret < 0) {
889*105b47fdSAnkur Arora             return ret;
890*105b47fdSAnkur Arora         }
891*105b47fdSAnkur Arora     }
892*105b47fdSAnkur Arora 
893c345104cSJoao Martins     return 0;
894c345104cSJoao Martins }
895c345104cSJoao Martins 
896c345104cSJoao Martins int kvm_get_xen_state(CPUState *cs)
897c345104cSJoao Martins {
898c345104cSJoao Martins     X86CPU *cpu = X86_CPU(cs);
899c345104cSJoao Martins     CPUX86State *env = &cpu->env;
900c345104cSJoao Martins     uint64_t gpa;
901c345104cSJoao Martins 
902c345104cSJoao Martins     /*
903c345104cSJoao Martins      * The kernel does not mark vcpu_info as dirty when it delivers interrupts
904c345104cSJoao Martins      * to it. It's up to userspace to *assume* that any page shared thus is
905c345104cSJoao Martins      * always considered dirty. The shared_info page is different since it's
906c345104cSJoao Martins      * an overlay and migrated separately anyway.
907c345104cSJoao Martins      */
908c345104cSJoao Martins     gpa = env->xen_vcpu_info_gpa;
909c345104cSJoao Martins     if (gpa == INVALID_GPA) {
910c345104cSJoao Martins         gpa = env->xen_vcpu_info_default_gpa;
911c345104cSJoao Martins     }
912c345104cSJoao Martins     if (gpa != INVALID_GPA) {
913c345104cSJoao Martins         MemoryRegionSection mrs = memory_region_find(get_system_memory(),
914c345104cSJoao Martins                                                      gpa,
915c345104cSJoao Martins                                                      sizeof(struct vcpu_info));
916c345104cSJoao Martins         if (mrs.mr &&
917c345104cSJoao Martins             !int128_lt(mrs.size, int128_make64(sizeof(struct vcpu_info)))) {
918c345104cSJoao Martins             memory_region_set_dirty(mrs.mr, mrs.offset_within_region,
919c345104cSJoao Martins                                     sizeof(struct vcpu_info));
920c345104cSJoao Martins         }
921c345104cSJoao Martins     }
922c345104cSJoao Martins 
923c345104cSJoao Martins     return 0;
924c345104cSJoao Martins }
925