161491cf4SDavid Woodhouse /* 261491cf4SDavid Woodhouse * Xen HVM emulation support in KVM 361491cf4SDavid Woodhouse * 461491cf4SDavid Woodhouse * Copyright © 2019 Oracle and/or its affiliates. All rights reserved. 561491cf4SDavid Woodhouse * Copyright © 2022 Amazon.com, Inc. or its affiliates. All Rights Reserved. 661491cf4SDavid Woodhouse * 761491cf4SDavid Woodhouse * This work is licensed under the terms of the GNU GPL, version 2 or later. 861491cf4SDavid Woodhouse * See the COPYING file in the top-level directory. 961491cf4SDavid Woodhouse * 1061491cf4SDavid Woodhouse */ 1161491cf4SDavid Woodhouse 1261491cf4SDavid Woodhouse #include "qemu/osdep.h" 1355a3f666SJoao Martins #include "qemu/log.h" 1479b7067dSJoao Martins #include "qemu/main-loop.h" 15fb0fd2ceSJoao Martins #include "hw/xen/xen.h" 1661491cf4SDavid Woodhouse #include "sysemu/kvm_int.h" 1761491cf4SDavid Woodhouse #include "sysemu/kvm_xen.h" 1861491cf4SDavid Woodhouse #include "kvm/kvm_i386.h" 19bedcc139SJoao Martins #include "exec/address-spaces.h" 2061491cf4SDavid Woodhouse #include "xen-emu.h" 2155a3f666SJoao Martins #include "trace.h" 2279b7067dSJoao Martins #include "sysemu/runstate.h" 2361491cf4SDavid Woodhouse 24110a0ea5SDavid Woodhouse #include "hw/i386/kvm/xen_overlay.h" 25110a0ea5SDavid Woodhouse 26bedcc139SJoao Martins #include "hw/xen/interface/version.h" 2779b7067dSJoao Martins #include "hw/xen/interface/sched.h" 28fb0fd2ceSJoao Martins #include "hw/xen/interface/memory.h" 29*671bfdcdSJoao Martins #include "hw/xen/interface/hvm/hvm_op.h" 30fb0fd2ceSJoao Martins 31fb0fd2ceSJoao Martins #include "xen-compat.h" 32fb0fd2ceSJoao Martins 33fb0fd2ceSJoao Martins #ifdef TARGET_X86_64 34fb0fd2ceSJoao Martins #define hypercall_compat32(longmode) (!(longmode)) 35fb0fd2ceSJoao Martins #else 36fb0fd2ceSJoao Martins #define hypercall_compat32(longmode) (false) 37fb0fd2ceSJoao Martins #endif 38bedcc139SJoao Martins 39bedcc139SJoao Martins static int kvm_gva_rw(CPUState *cs, uint64_t gva, void *_buf, size_t sz, 40bedcc139SJoao Martins bool is_write) 41bedcc139SJoao Martins { 42bedcc139SJoao Martins uint8_t *buf = (uint8_t *)_buf; 43bedcc139SJoao Martins int ret; 44bedcc139SJoao Martins 45bedcc139SJoao Martins while (sz) { 46bedcc139SJoao Martins struct kvm_translation tr = { 47bedcc139SJoao Martins .linear_address = gva, 48bedcc139SJoao Martins }; 49bedcc139SJoao Martins 50bedcc139SJoao Martins size_t len = TARGET_PAGE_SIZE - (tr.linear_address & ~TARGET_PAGE_MASK); 51bedcc139SJoao Martins if (len > sz) { 52bedcc139SJoao Martins len = sz; 53bedcc139SJoao Martins } 54bedcc139SJoao Martins 55bedcc139SJoao Martins ret = kvm_vcpu_ioctl(cs, KVM_TRANSLATE, &tr); 56bedcc139SJoao Martins if (ret || !tr.valid || (is_write && !tr.writeable)) { 57bedcc139SJoao Martins return -EFAULT; 58bedcc139SJoao Martins } 59bedcc139SJoao Martins 60bedcc139SJoao Martins cpu_physical_memory_rw(tr.physical_address, buf, len, is_write); 61bedcc139SJoao Martins 62bedcc139SJoao Martins buf += len; 63bedcc139SJoao Martins sz -= len; 64bedcc139SJoao Martins gva += len; 65bedcc139SJoao Martins } 66bedcc139SJoao Martins 67bedcc139SJoao Martins return 0; 68bedcc139SJoao Martins } 69bedcc139SJoao Martins 70bedcc139SJoao Martins static inline int kvm_copy_from_gva(CPUState *cs, uint64_t gva, void *buf, 71bedcc139SJoao Martins size_t sz) 72bedcc139SJoao Martins { 73bedcc139SJoao Martins return kvm_gva_rw(cs, gva, buf, sz, false); 74bedcc139SJoao Martins } 75bedcc139SJoao Martins 76bedcc139SJoao Martins static inline int kvm_copy_to_gva(CPUState *cs, uint64_t gva, void *buf, 77bedcc139SJoao Martins size_t sz) 78bedcc139SJoao Martins { 79bedcc139SJoao Martins return kvm_gva_rw(cs, gva, buf, sz, true); 80bedcc139SJoao Martins } 81bedcc139SJoao Martins 82f66b8a83SJoao Martins int kvm_xen_init(KVMState *s, uint32_t hypercall_msr) 8361491cf4SDavid Woodhouse { 8461491cf4SDavid Woodhouse const int required_caps = KVM_XEN_HVM_CONFIG_HYPERCALL_MSR | 8561491cf4SDavid Woodhouse KVM_XEN_HVM_CONFIG_INTERCEPT_HCALL | KVM_XEN_HVM_CONFIG_SHARED_INFO; 8661491cf4SDavid Woodhouse struct kvm_xen_hvm_config cfg = { 87f66b8a83SJoao Martins .msr = hypercall_msr, 8861491cf4SDavid Woodhouse .flags = KVM_XEN_HVM_CONFIG_INTERCEPT_HCALL, 8961491cf4SDavid Woodhouse }; 9061491cf4SDavid Woodhouse int xen_caps, ret; 9161491cf4SDavid Woodhouse 9261491cf4SDavid Woodhouse xen_caps = kvm_check_extension(s, KVM_CAP_XEN_HVM); 9361491cf4SDavid Woodhouse if (required_caps & ~xen_caps) { 9461491cf4SDavid Woodhouse error_report("kvm: Xen HVM guest support not present or insufficient"); 9561491cf4SDavid Woodhouse return -ENOSYS; 9661491cf4SDavid Woodhouse } 9761491cf4SDavid Woodhouse 9861491cf4SDavid Woodhouse if (xen_caps & KVM_XEN_HVM_CONFIG_EVTCHN_SEND) { 9961491cf4SDavid Woodhouse struct kvm_xen_hvm_attr ha = { 10061491cf4SDavid Woodhouse .type = KVM_XEN_ATTR_TYPE_XEN_VERSION, 10161491cf4SDavid Woodhouse .u.xen_version = s->xen_version, 10261491cf4SDavid Woodhouse }; 10361491cf4SDavid Woodhouse (void)kvm_vm_ioctl(s, KVM_XEN_HVM_SET_ATTR, &ha); 10461491cf4SDavid Woodhouse 10561491cf4SDavid Woodhouse cfg.flags |= KVM_XEN_HVM_CONFIG_EVTCHN_SEND; 10661491cf4SDavid Woodhouse } 10761491cf4SDavid Woodhouse 10861491cf4SDavid Woodhouse ret = kvm_vm_ioctl(s, KVM_XEN_HVM_CONFIG, &cfg); 10961491cf4SDavid Woodhouse if (ret < 0) { 11061491cf4SDavid Woodhouse error_report("kvm: Failed to enable Xen HVM support: %s", 11161491cf4SDavid Woodhouse strerror(-ret)); 11261491cf4SDavid Woodhouse return ret; 11361491cf4SDavid Woodhouse } 11461491cf4SDavid Woodhouse 11561491cf4SDavid Woodhouse s->xen_caps = xen_caps; 11661491cf4SDavid Woodhouse return 0; 11761491cf4SDavid Woodhouse } 11861491cf4SDavid Woodhouse 1195e691a95SDavid Woodhouse int kvm_xen_init_vcpu(CPUState *cs) 1205e691a95SDavid Woodhouse { 1215e691a95SDavid Woodhouse int err; 1225e691a95SDavid Woodhouse 1235e691a95SDavid Woodhouse /* 1245e691a95SDavid Woodhouse * The kernel needs to know the Xen/ACPI vCPU ID because that's 1255e691a95SDavid Woodhouse * what the guest uses in hypercalls such as timers. It doesn't 1265e691a95SDavid Woodhouse * match the APIC ID which is generally used for talking to the 1275e691a95SDavid Woodhouse * kernel about vCPUs. And if vCPU threads race with creating 1285e691a95SDavid Woodhouse * their KVM vCPUs out of order, it doesn't necessarily match 1295e691a95SDavid Woodhouse * with the kernel's internal vCPU indices either. 1305e691a95SDavid Woodhouse */ 1315e691a95SDavid Woodhouse if (kvm_xen_has_cap(EVTCHN_SEND)) { 1325e691a95SDavid Woodhouse struct kvm_xen_vcpu_attr va = { 1335e691a95SDavid Woodhouse .type = KVM_XEN_VCPU_ATTR_TYPE_VCPU_ID, 1345e691a95SDavid Woodhouse .u.vcpu_id = cs->cpu_index, 1355e691a95SDavid Woodhouse }; 1365e691a95SDavid Woodhouse err = kvm_vcpu_ioctl(cs, KVM_XEN_VCPU_SET_ATTR, &va); 1375e691a95SDavid Woodhouse if (err) { 1385e691a95SDavid Woodhouse error_report("kvm: Failed to set Xen vCPU ID attribute: %s", 1395e691a95SDavid Woodhouse strerror(-err)); 1405e691a95SDavid Woodhouse return err; 1415e691a95SDavid Woodhouse } 1425e691a95SDavid Woodhouse } 1435e691a95SDavid Woodhouse 1445e691a95SDavid Woodhouse return 0; 1455e691a95SDavid Woodhouse } 1465e691a95SDavid Woodhouse 14761491cf4SDavid Woodhouse uint32_t kvm_xen_get_caps(void) 14861491cf4SDavid Woodhouse { 14961491cf4SDavid Woodhouse return kvm_state->xen_caps; 15061491cf4SDavid Woodhouse } 15155a3f666SJoao Martins 152bedcc139SJoao Martins static bool kvm_xen_hcall_xen_version(struct kvm_xen_exit *exit, X86CPU *cpu, 153bedcc139SJoao Martins int cmd, uint64_t arg) 154bedcc139SJoao Martins { 155bedcc139SJoao Martins int err = 0; 156bedcc139SJoao Martins 157bedcc139SJoao Martins switch (cmd) { 158bedcc139SJoao Martins case XENVER_get_features: { 159bedcc139SJoao Martins struct xen_feature_info fi; 160bedcc139SJoao Martins 161bedcc139SJoao Martins /* No need for 32/64 compat handling */ 162bedcc139SJoao Martins qemu_build_assert(sizeof(fi) == 8); 163bedcc139SJoao Martins 164bedcc139SJoao Martins err = kvm_copy_from_gva(CPU(cpu), arg, &fi, sizeof(fi)); 165bedcc139SJoao Martins if (err) { 166bedcc139SJoao Martins break; 167bedcc139SJoao Martins } 168bedcc139SJoao Martins 169bedcc139SJoao Martins fi.submap = 0; 170bedcc139SJoao Martins if (fi.submap_idx == 0) { 171bedcc139SJoao Martins fi.submap |= 1 << XENFEAT_writable_page_tables | 172bedcc139SJoao Martins 1 << XENFEAT_writable_descriptor_tables | 173bedcc139SJoao Martins 1 << XENFEAT_auto_translated_physmap | 174bedcc139SJoao Martins 1 << XENFEAT_supervisor_mode_kernel; 175bedcc139SJoao Martins } 176bedcc139SJoao Martins 177bedcc139SJoao Martins err = kvm_copy_to_gva(CPU(cpu), arg, &fi, sizeof(fi)); 178bedcc139SJoao Martins break; 179bedcc139SJoao Martins } 180bedcc139SJoao Martins 181bedcc139SJoao Martins default: 182bedcc139SJoao Martins return false; 183bedcc139SJoao Martins } 184bedcc139SJoao Martins 185bedcc139SJoao Martins exit->u.hcall.result = err; 186bedcc139SJoao Martins return true; 187bedcc139SJoao Martins } 188bedcc139SJoao Martins 189fb0fd2ceSJoao Martins static int xen_set_shared_info(uint64_t gfn) 190fb0fd2ceSJoao Martins { 191fb0fd2ceSJoao Martins uint64_t gpa = gfn << TARGET_PAGE_BITS; 192fb0fd2ceSJoao Martins int err; 193fb0fd2ceSJoao Martins 194fb0fd2ceSJoao Martins QEMU_IOTHREAD_LOCK_GUARD(); 195fb0fd2ceSJoao Martins 196fb0fd2ceSJoao Martins /* 197fb0fd2ceSJoao Martins * The xen_overlay device tells KVM about it too, since it had to 198fb0fd2ceSJoao Martins * do that on migration load anyway (unless we're going to jump 199fb0fd2ceSJoao Martins * through lots of hoops to maintain the fiction that this isn't 200fb0fd2ceSJoao Martins * KVM-specific. 201fb0fd2ceSJoao Martins */ 202fb0fd2ceSJoao Martins err = xen_overlay_map_shinfo_page(gpa); 203fb0fd2ceSJoao Martins if (err) { 204fb0fd2ceSJoao Martins return err; 205fb0fd2ceSJoao Martins } 206fb0fd2ceSJoao Martins 207fb0fd2ceSJoao Martins trace_kvm_xen_set_shared_info(gfn); 208fb0fd2ceSJoao Martins 209fb0fd2ceSJoao Martins return err; 210fb0fd2ceSJoao Martins } 211fb0fd2ceSJoao Martins 212fb0fd2ceSJoao Martins static int add_to_physmap_one(uint32_t space, uint64_t idx, uint64_t gfn) 213fb0fd2ceSJoao Martins { 214fb0fd2ceSJoao Martins switch (space) { 215fb0fd2ceSJoao Martins case XENMAPSPACE_shared_info: 216fb0fd2ceSJoao Martins if (idx > 0) { 217fb0fd2ceSJoao Martins return -EINVAL; 218fb0fd2ceSJoao Martins } 219fb0fd2ceSJoao Martins return xen_set_shared_info(gfn); 220fb0fd2ceSJoao Martins 221fb0fd2ceSJoao Martins case XENMAPSPACE_grant_table: 222fb0fd2ceSJoao Martins case XENMAPSPACE_gmfn: 223fb0fd2ceSJoao Martins case XENMAPSPACE_gmfn_range: 224fb0fd2ceSJoao Martins return -ENOTSUP; 225fb0fd2ceSJoao Martins 226fb0fd2ceSJoao Martins case XENMAPSPACE_gmfn_foreign: 227fb0fd2ceSJoao Martins case XENMAPSPACE_dev_mmio: 228fb0fd2ceSJoao Martins return -EPERM; 229fb0fd2ceSJoao Martins 230fb0fd2ceSJoao Martins default: 231fb0fd2ceSJoao Martins return -EINVAL; 232fb0fd2ceSJoao Martins } 233fb0fd2ceSJoao Martins } 234fb0fd2ceSJoao Martins 235fb0fd2ceSJoao Martins static int do_add_to_physmap(struct kvm_xen_exit *exit, X86CPU *cpu, 236fb0fd2ceSJoao Martins uint64_t arg) 237fb0fd2ceSJoao Martins { 238fb0fd2ceSJoao Martins struct xen_add_to_physmap xatp; 239fb0fd2ceSJoao Martins CPUState *cs = CPU(cpu); 240fb0fd2ceSJoao Martins 241fb0fd2ceSJoao Martins if (hypercall_compat32(exit->u.hcall.longmode)) { 242fb0fd2ceSJoao Martins struct compat_xen_add_to_physmap xatp32; 243fb0fd2ceSJoao Martins 244fb0fd2ceSJoao Martins qemu_build_assert(sizeof(struct compat_xen_add_to_physmap) == 16); 245fb0fd2ceSJoao Martins if (kvm_copy_from_gva(cs, arg, &xatp32, sizeof(xatp32))) { 246fb0fd2ceSJoao Martins return -EFAULT; 247fb0fd2ceSJoao Martins } 248fb0fd2ceSJoao Martins xatp.domid = xatp32.domid; 249fb0fd2ceSJoao Martins xatp.size = xatp32.size; 250fb0fd2ceSJoao Martins xatp.space = xatp32.space; 251fb0fd2ceSJoao Martins xatp.idx = xatp32.idx; 252fb0fd2ceSJoao Martins xatp.gpfn = xatp32.gpfn; 253fb0fd2ceSJoao Martins } else { 254fb0fd2ceSJoao Martins if (kvm_copy_from_gva(cs, arg, &xatp, sizeof(xatp))) { 255fb0fd2ceSJoao Martins return -EFAULT; 256fb0fd2ceSJoao Martins } 257fb0fd2ceSJoao Martins } 258fb0fd2ceSJoao Martins 259fb0fd2ceSJoao Martins if (xatp.domid != DOMID_SELF && xatp.domid != xen_domid) { 260fb0fd2ceSJoao Martins return -ESRCH; 261fb0fd2ceSJoao Martins } 262fb0fd2ceSJoao Martins 263fb0fd2ceSJoao Martins return add_to_physmap_one(xatp.space, xatp.idx, xatp.gpfn); 264fb0fd2ceSJoao Martins } 265fb0fd2ceSJoao Martins 266782a7960SDavid Woodhouse static int do_add_to_physmap_batch(struct kvm_xen_exit *exit, X86CPU *cpu, 267782a7960SDavid Woodhouse uint64_t arg) 268782a7960SDavid Woodhouse { 269782a7960SDavid Woodhouse struct xen_add_to_physmap_batch xatpb; 270782a7960SDavid Woodhouse unsigned long idxs_gva, gpfns_gva, errs_gva; 271782a7960SDavid Woodhouse CPUState *cs = CPU(cpu); 272782a7960SDavid Woodhouse size_t op_sz; 273782a7960SDavid Woodhouse 274782a7960SDavid Woodhouse if (hypercall_compat32(exit->u.hcall.longmode)) { 275782a7960SDavid Woodhouse struct compat_xen_add_to_physmap_batch xatpb32; 276782a7960SDavid Woodhouse 277782a7960SDavid Woodhouse qemu_build_assert(sizeof(struct compat_xen_add_to_physmap_batch) == 20); 278782a7960SDavid Woodhouse if (kvm_copy_from_gva(cs, arg, &xatpb32, sizeof(xatpb32))) { 279782a7960SDavid Woodhouse return -EFAULT; 280782a7960SDavid Woodhouse } 281782a7960SDavid Woodhouse xatpb.domid = xatpb32.domid; 282782a7960SDavid Woodhouse xatpb.space = xatpb32.space; 283782a7960SDavid Woodhouse xatpb.size = xatpb32.size; 284782a7960SDavid Woodhouse 285782a7960SDavid Woodhouse idxs_gva = xatpb32.idxs.c; 286782a7960SDavid Woodhouse gpfns_gva = xatpb32.gpfns.c; 287782a7960SDavid Woodhouse errs_gva = xatpb32.errs.c; 288782a7960SDavid Woodhouse op_sz = sizeof(uint32_t); 289782a7960SDavid Woodhouse } else { 290782a7960SDavid Woodhouse if (kvm_copy_from_gva(cs, arg, &xatpb, sizeof(xatpb))) { 291782a7960SDavid Woodhouse return -EFAULT; 292782a7960SDavid Woodhouse } 293782a7960SDavid Woodhouse op_sz = sizeof(unsigned long); 294782a7960SDavid Woodhouse idxs_gva = (unsigned long)xatpb.idxs.p; 295782a7960SDavid Woodhouse gpfns_gva = (unsigned long)xatpb.gpfns.p; 296782a7960SDavid Woodhouse errs_gva = (unsigned long)xatpb.errs.p; 297782a7960SDavid Woodhouse } 298782a7960SDavid Woodhouse 299782a7960SDavid Woodhouse if (xatpb.domid != DOMID_SELF && xatpb.domid != xen_domid) { 300782a7960SDavid Woodhouse return -ESRCH; 301782a7960SDavid Woodhouse } 302782a7960SDavid Woodhouse 303782a7960SDavid Woodhouse /* Explicitly invalid for the batch op. Not that we implement it anyway. */ 304782a7960SDavid Woodhouse if (xatpb.space == XENMAPSPACE_gmfn_range) { 305782a7960SDavid Woodhouse return -EINVAL; 306782a7960SDavid Woodhouse } 307782a7960SDavid Woodhouse 308782a7960SDavid Woodhouse while (xatpb.size--) { 309782a7960SDavid Woodhouse unsigned long idx = 0; 310782a7960SDavid Woodhouse unsigned long gpfn = 0; 311782a7960SDavid Woodhouse int err; 312782a7960SDavid Woodhouse 313782a7960SDavid Woodhouse /* For 32-bit compat this only copies the low 32 bits of each */ 314782a7960SDavid Woodhouse if (kvm_copy_from_gva(cs, idxs_gva, &idx, op_sz) || 315782a7960SDavid Woodhouse kvm_copy_from_gva(cs, gpfns_gva, &gpfn, op_sz)) { 316782a7960SDavid Woodhouse return -EFAULT; 317782a7960SDavid Woodhouse } 318782a7960SDavid Woodhouse idxs_gva += op_sz; 319782a7960SDavid Woodhouse gpfns_gva += op_sz; 320782a7960SDavid Woodhouse 321782a7960SDavid Woodhouse err = add_to_physmap_one(xatpb.space, idx, gpfn); 322782a7960SDavid Woodhouse 323782a7960SDavid Woodhouse if (kvm_copy_to_gva(cs, errs_gva, &err, sizeof(err))) { 324782a7960SDavid Woodhouse return -EFAULT; 325782a7960SDavid Woodhouse } 326782a7960SDavid Woodhouse errs_gva += sizeof(err); 327782a7960SDavid Woodhouse } 328782a7960SDavid Woodhouse return 0; 329782a7960SDavid Woodhouse } 330782a7960SDavid Woodhouse 331fb0fd2ceSJoao Martins static bool kvm_xen_hcall_memory_op(struct kvm_xen_exit *exit, X86CPU *cpu, 332fb0fd2ceSJoao Martins int cmd, uint64_t arg) 333fb0fd2ceSJoao Martins { 334fb0fd2ceSJoao Martins int err; 335fb0fd2ceSJoao Martins 336fb0fd2ceSJoao Martins switch (cmd) { 337fb0fd2ceSJoao Martins case XENMEM_add_to_physmap: 338fb0fd2ceSJoao Martins err = do_add_to_physmap(exit, cpu, arg); 339fb0fd2ceSJoao Martins break; 340fb0fd2ceSJoao Martins 341782a7960SDavid Woodhouse case XENMEM_add_to_physmap_batch: 342782a7960SDavid Woodhouse err = do_add_to_physmap_batch(exit, cpu, arg); 343782a7960SDavid Woodhouse break; 344782a7960SDavid Woodhouse 345fb0fd2ceSJoao Martins default: 346fb0fd2ceSJoao Martins return false; 347fb0fd2ceSJoao Martins } 348fb0fd2ceSJoao Martins 349fb0fd2ceSJoao Martins exit->u.hcall.result = err; 350fb0fd2ceSJoao Martins return true; 351fb0fd2ceSJoao Martins } 352fb0fd2ceSJoao Martins 353*671bfdcdSJoao Martins static bool kvm_xen_hcall_hvm_op(struct kvm_xen_exit *exit, X86CPU *cpu, 354*671bfdcdSJoao Martins int cmd, uint64_t arg) 355*671bfdcdSJoao Martins { 356*671bfdcdSJoao Martins switch (cmd) { 357*671bfdcdSJoao Martins case HVMOP_pagetable_dying: 358*671bfdcdSJoao Martins exit->u.hcall.result = -ENOSYS; 359*671bfdcdSJoao Martins return true; 360*671bfdcdSJoao Martins 361*671bfdcdSJoao Martins default: 362*671bfdcdSJoao Martins return false; 363*671bfdcdSJoao Martins } 364*671bfdcdSJoao Martins } 365*671bfdcdSJoao Martins 36679b7067dSJoao Martins int kvm_xen_soft_reset(void) 36779b7067dSJoao Martins { 368fb0fd2ceSJoao Martins int err; 369fb0fd2ceSJoao Martins 37079b7067dSJoao Martins assert(qemu_mutex_iothread_locked()); 37179b7067dSJoao Martins 37279b7067dSJoao Martins trace_kvm_xen_soft_reset(); 37379b7067dSJoao Martins 374fb0fd2ceSJoao Martins err = xen_overlay_map_shinfo_page(INVALID_GFN); 375fb0fd2ceSJoao Martins if (err) { 376fb0fd2ceSJoao Martins return err; 377fb0fd2ceSJoao Martins } 378fb0fd2ceSJoao Martins 37979b7067dSJoao Martins return 0; 38079b7067dSJoao Martins } 38179b7067dSJoao Martins 38279b7067dSJoao Martins static int schedop_shutdown(CPUState *cs, uint64_t arg) 38379b7067dSJoao Martins { 38479b7067dSJoao Martins struct sched_shutdown shutdown; 38579b7067dSJoao Martins int ret = 0; 38679b7067dSJoao Martins 38779b7067dSJoao Martins /* No need for 32/64 compat handling */ 38879b7067dSJoao Martins qemu_build_assert(sizeof(shutdown) == 4); 38979b7067dSJoao Martins 39079b7067dSJoao Martins if (kvm_copy_from_gva(cs, arg, &shutdown, sizeof(shutdown))) { 39179b7067dSJoao Martins return -EFAULT; 39279b7067dSJoao Martins } 39379b7067dSJoao Martins 39479b7067dSJoao Martins switch (shutdown.reason) { 39579b7067dSJoao Martins case SHUTDOWN_crash: 39679b7067dSJoao Martins cpu_dump_state(cs, stderr, CPU_DUMP_CODE); 39779b7067dSJoao Martins qemu_system_guest_panicked(NULL); 39879b7067dSJoao Martins break; 39979b7067dSJoao Martins 40079b7067dSJoao Martins case SHUTDOWN_reboot: 40179b7067dSJoao Martins qemu_system_reset_request(SHUTDOWN_CAUSE_GUEST_RESET); 40279b7067dSJoao Martins break; 40379b7067dSJoao Martins 40479b7067dSJoao Martins case SHUTDOWN_poweroff: 40579b7067dSJoao Martins qemu_system_shutdown_request(SHUTDOWN_CAUSE_GUEST_SHUTDOWN); 40679b7067dSJoao Martins break; 40779b7067dSJoao Martins 40879b7067dSJoao Martins case SHUTDOWN_soft_reset: 40979b7067dSJoao Martins qemu_mutex_lock_iothread(); 41079b7067dSJoao Martins ret = kvm_xen_soft_reset(); 41179b7067dSJoao Martins qemu_mutex_unlock_iothread(); 41279b7067dSJoao Martins break; 41379b7067dSJoao Martins 41479b7067dSJoao Martins default: 41579b7067dSJoao Martins ret = -EINVAL; 41679b7067dSJoao Martins break; 41779b7067dSJoao Martins } 41879b7067dSJoao Martins 41979b7067dSJoao Martins return ret; 42079b7067dSJoao Martins } 42179b7067dSJoao Martins 42279b7067dSJoao Martins static bool kvm_xen_hcall_sched_op(struct kvm_xen_exit *exit, X86CPU *cpu, 42379b7067dSJoao Martins int cmd, uint64_t arg) 42479b7067dSJoao Martins { 42579b7067dSJoao Martins CPUState *cs = CPU(cpu); 42679b7067dSJoao Martins int err = -ENOSYS; 42779b7067dSJoao Martins 42879b7067dSJoao Martins switch (cmd) { 42979b7067dSJoao Martins case SCHEDOP_shutdown: 43079b7067dSJoao Martins err = schedop_shutdown(cs, arg); 43179b7067dSJoao Martins break; 43279b7067dSJoao Martins 433c789b9efSDavid Woodhouse case SCHEDOP_poll: 434c789b9efSDavid Woodhouse /* 435c789b9efSDavid Woodhouse * Linux will panic if this doesn't work. Just yield; it's not 436c789b9efSDavid Woodhouse * worth overthinking it because with event channel handling 437c789b9efSDavid Woodhouse * in KVM, the kernel will intercept this and it will never 438c789b9efSDavid Woodhouse * reach QEMU anyway. The semantics of the hypercall explicltly 439c789b9efSDavid Woodhouse * permit spurious wakeups. 440c789b9efSDavid Woodhouse */ 441c789b9efSDavid Woodhouse case SCHEDOP_yield: 442c789b9efSDavid Woodhouse sched_yield(); 443c789b9efSDavid Woodhouse err = 0; 444c789b9efSDavid Woodhouse break; 445c789b9efSDavid Woodhouse 44679b7067dSJoao Martins default: 44779b7067dSJoao Martins return false; 44879b7067dSJoao Martins } 44979b7067dSJoao Martins 45079b7067dSJoao Martins exit->u.hcall.result = err; 45179b7067dSJoao Martins return true; 45279b7067dSJoao Martins } 45379b7067dSJoao Martins 45455a3f666SJoao Martins static bool do_kvm_xen_handle_exit(X86CPU *cpu, struct kvm_xen_exit *exit) 45555a3f666SJoao Martins { 45655a3f666SJoao Martins uint16_t code = exit->u.hcall.input; 45755a3f666SJoao Martins 45855a3f666SJoao Martins if (exit->u.hcall.cpl > 0) { 45955a3f666SJoao Martins exit->u.hcall.result = -EPERM; 46055a3f666SJoao Martins return true; 46155a3f666SJoao Martins } 46255a3f666SJoao Martins 46355a3f666SJoao Martins switch (code) { 46479b7067dSJoao Martins case __HYPERVISOR_sched_op: 46579b7067dSJoao Martins return kvm_xen_hcall_sched_op(exit, cpu, exit->u.hcall.params[0], 46679b7067dSJoao Martins exit->u.hcall.params[1]); 467*671bfdcdSJoao Martins case __HYPERVISOR_hvm_op: 468*671bfdcdSJoao Martins return kvm_xen_hcall_hvm_op(exit, cpu, exit->u.hcall.params[0], 469*671bfdcdSJoao Martins exit->u.hcall.params[1]); 470fb0fd2ceSJoao Martins case __HYPERVISOR_memory_op: 471fb0fd2ceSJoao Martins return kvm_xen_hcall_memory_op(exit, cpu, exit->u.hcall.params[0], 472fb0fd2ceSJoao Martins exit->u.hcall.params[1]); 473bedcc139SJoao Martins case __HYPERVISOR_xen_version: 474bedcc139SJoao Martins return kvm_xen_hcall_xen_version(exit, cpu, exit->u.hcall.params[0], 475bedcc139SJoao Martins exit->u.hcall.params[1]); 47655a3f666SJoao Martins default: 47755a3f666SJoao Martins return false; 47855a3f666SJoao Martins } 47955a3f666SJoao Martins } 48055a3f666SJoao Martins 48155a3f666SJoao Martins int kvm_xen_handle_exit(X86CPU *cpu, struct kvm_xen_exit *exit) 48255a3f666SJoao Martins { 48355a3f666SJoao Martins if (exit->type != KVM_EXIT_XEN_HCALL) { 48455a3f666SJoao Martins return -1; 48555a3f666SJoao Martins } 48655a3f666SJoao Martins 487110a0ea5SDavid Woodhouse /* 488110a0ea5SDavid Woodhouse * The kernel latches the guest 32/64 mode when the MSR is used to fill 489110a0ea5SDavid Woodhouse * the hypercall page. So if we see a hypercall in a mode that doesn't 490110a0ea5SDavid Woodhouse * match our own idea of the guest mode, fetch the kernel's idea of the 491110a0ea5SDavid Woodhouse * "long mode" to remain in sync. 492110a0ea5SDavid Woodhouse */ 493110a0ea5SDavid Woodhouse if (exit->u.hcall.longmode != xen_is_long_mode()) { 494110a0ea5SDavid Woodhouse xen_sync_long_mode(); 495110a0ea5SDavid Woodhouse } 496110a0ea5SDavid Woodhouse 49755a3f666SJoao Martins if (!do_kvm_xen_handle_exit(cpu, exit)) { 49855a3f666SJoao Martins /* 49955a3f666SJoao Martins * Some hypercalls will be deliberately "implemented" by returning 50055a3f666SJoao Martins * -ENOSYS. This case is for hypercalls which are unexpected. 50155a3f666SJoao Martins */ 50255a3f666SJoao Martins exit->u.hcall.result = -ENOSYS; 50355a3f666SJoao Martins qemu_log_mask(LOG_UNIMP, "Unimplemented Xen hypercall %" 50455a3f666SJoao Martins PRId64 " (0x%" PRIx64 " 0x%" PRIx64 " 0x%" PRIx64 ")\n", 50555a3f666SJoao Martins (uint64_t)exit->u.hcall.input, 50655a3f666SJoao Martins (uint64_t)exit->u.hcall.params[0], 50755a3f666SJoao Martins (uint64_t)exit->u.hcall.params[1], 50855a3f666SJoao Martins (uint64_t)exit->u.hcall.params[2]); 50955a3f666SJoao Martins } 51055a3f666SJoao Martins 51155a3f666SJoao Martins trace_kvm_xen_hypercall(CPU(cpu)->cpu_index, exit->u.hcall.cpl, 51255a3f666SJoao Martins exit->u.hcall.input, exit->u.hcall.params[0], 51355a3f666SJoao Martins exit->u.hcall.params[1], exit->u.hcall.params[2], 51455a3f666SJoao Martins exit->u.hcall.result); 51555a3f666SJoao Martins return 0; 51655a3f666SJoao Martins } 517