2010-01-18 19:14:55 +05:30
/*
* Copyright ( C ) 2006 , 2007 , 2009 Rusty Russell , IBM Corporation
2011-01-31 13:06:37 +05:30
* Copyright ( C ) 2009 , 2010 , 2011 Red Hat , Inc .
* Copyright ( C ) 2009 , 2010 , 2011 Amit Shah < amit . shah @ redhat . com >
2007-10-22 11:03:39 +10:00
*
* This program is free software ; you can redistribute it and / or modify
* it under the terms of the GNU General Public License as published by
* the Free Software Foundation ; either version 2 of the License , or
* ( at your option ) any later version .
*
* This program is distributed in the hope that it will be useful ,
* but WITHOUT ANY WARRANTY ; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE . See the
* GNU General Public License for more details .
*
* You should have received a copy of the GNU General Public License
* along with this program ; if not , write to the Free Software
* Foundation , Inc . , 59 Temple Place , Suite 330 , Boston , MA 02111 - 1307 USA
*/
2009-12-21 21:36:04 +05:30
# include <linux/cdev.h>
2009-12-21 22:36:21 +05:30
# include <linux/debugfs.h>
2011-09-22 23:44:23 +05:30
# include <linux/completion.h>
2009-12-21 21:36:04 +05:30
# include <linux/device.h>
2007-10-22 11:03:39 +10:00
# include <linux/err.h>
2011-09-14 13:06:41 +05:30
# include <linux/freezer.h>
2009-12-21 21:49:30 +05:30
# include <linux/fs.h>
2012-08-09 21:30:39 +09:00
# include <linux/splice.h>
# include <linux/pagemap.h>
2007-10-22 11:03:39 +10:00
# include <linux/init.h>
2010-01-18 19:15:05 +05:30
# include <linux/list.h>
2009-12-21 21:49:30 +05:30
# include <linux/poll.h>
# include <linux/sched.h>
include cleanup: Update gfp.h and slab.h includes to prepare for breaking implicit slab.h inclusion from percpu.h
percpu.h is included by sched.h and module.h and thus ends up being
included when building most .c files. percpu.h includes slab.h which
in turn includes gfp.h making everything defined by the two files
universally available and complicating inclusion dependencies.
percpu.h -> slab.h dependency is about to be removed. Prepare for
this change by updating users of gfp and slab facilities include those
headers directly instead of assuming availability. As this conversion
needs to touch large number of source files, the following script is
used as the basis of conversion.
http://userweb.kernel.org/~tj/misc/slabh-sweep.py
The script does the followings.
* Scan files for gfp and slab usages and update includes such that
only the necessary includes are there. ie. if only gfp is used,
gfp.h, if slab is used, slab.h.
* When the script inserts a new include, it looks at the include
blocks and try to put the new include such that its order conforms
to its surrounding. It's put in the include block which contains
core kernel includes, in the same order that the rest are ordered -
alphabetical, Christmas tree, rev-Xmas-tree or at the end if there
doesn't seem to be any matching order.
* If the script can't find a place to put a new include (mostly
because the file doesn't have fitting include block), it prints out
an error message indicating which .h file needs to be added to the
file.
The conversion was done in the following steps.
1. The initial automatic conversion of all .c files updated slightly
over 4000 files, deleting around 700 includes and adding ~480 gfp.h
and ~3000 slab.h inclusions. The script emitted errors for ~400
files.
2. Each error was manually checked. Some didn't need the inclusion,
some needed manual addition while adding it to implementation .h or
embedding .c file was more appropriate for others. This step added
inclusions to around 150 files.
3. The script was run again and the output was compared to the edits
from #2 to make sure no file was left behind.
4. Several build tests were done and a couple of problems were fixed.
e.g. lib/decompress_*.c used malloc/free() wrappers around slab
APIs requiring slab.h to be added manually.
5. The script was run on all .h files but without automatically
editing them as sprinkling gfp.h and slab.h inclusions around .h
files could easily lead to inclusion dependency hell. Most gfp.h
inclusion directives were ignored as stuff from gfp.h was usually
wildly available and often used in preprocessor macros. Each
slab.h inclusion directive was examined and added manually as
necessary.
6. percpu.h was updated not to include slab.h.
7. Build test were done on the following configurations and failures
were fixed. CONFIG_GCOV_KERNEL was turned off for all tests (as my
distributed build env didn't work with gcov compiles) and a few
more options had to be turned off depending on archs to make things
build (like ipr on powerpc/64 which failed due to missing writeq).
* x86 and x86_64 UP and SMP allmodconfig and a custom test config.
* powerpc and powerpc64 SMP allmodconfig
* sparc and sparc64 SMP allmodconfig
* ia64 SMP allmodconfig
* s390 SMP allmodconfig
* alpha SMP allmodconfig
* um on x86_64 SMP allmodconfig
8. percpu.h modifications were reverted so that it could be applied as
a separate patch and serve as bisection point.
Given the fact that I had only a couple of failures from tests on step
6, I'm fairly confident about the coverage of this conversion patch.
If there is a breakage, it's likely to be something in one of the arch
headers which should be easily discoverable easily on most builds of
the specific arch.
Signed-off-by: Tejun Heo <tj@kernel.org>
Guess-its-ok-by: Christoph Lameter <cl@linux-foundation.org>
Cc: Ingo Molnar <mingo@redhat.com>
Cc: Lee Schermerhorn <Lee.Schermerhorn@hp.com>
2010-03-24 17:04:11 +09:00
# include <linux/slab.h>
2010-01-18 19:15:05 +05:30
# include <linux/spinlock.h>
2007-10-22 11:03:39 +10:00
# include <linux/virtio.h>
# include <linux/virtio_console.h>
2009-12-21 21:49:30 +05:30
# include <linux/wait.h>
2009-12-21 21:03:25 +05:30
# include <linux/workqueue.h>
2011-07-03 13:35:48 -04:00
# include <linux/module.h>
2011-02-01 09:31:25 +05:30
# include "../tty/hvc/hvc_console.h"
2007-10-22 11:03:39 +10:00
2010-01-18 19:15:05 +05:30
/*
* This is a global struct for storing common data for all the devices
* this driver handles .
*
* Mainly , it has a linked list for all the consoles in one place so
* that callbacks from hvc for get_chars ( ) , put_chars ( ) work properly
* across multiple devices and multiple ports per device .
*/
struct ports_driver_data {
2009-12-21 21:36:04 +05:30
/* Used for registering chardevs */
struct class * class ;
2009-12-21 22:36:21 +05:30
/* Used for exporting per-port information to debugfs */
struct dentry * debugfs_dir ;
2010-09-02 18:11:49 +05:30
/* List of all the devices we're handling */
struct list_head portdevs ;
2009-12-21 21:36:04 +05:30
/* Number of devices this driver is handling */
unsigned int index ;
2010-01-18 19:15:06 +05:30
/*
* This is used to keep track of the number of hvc consoles
* spawned by this driver . This number is given as the first
* argument to hvc_alloc ( ) . To correctly map an initial
* console spawned via hvc_instantiate to the console being
* hooked up via hvc_alloc , we need to pass the same vtermno .
*
* We also just assume the first console being initialised was
* the first one that got used as the initial console .
*/
unsigned int next_vtermno ;
2010-01-18 19:15:05 +05:30
/* All the console devices handled by this driver */
struct list_head consoles ;
} ;
static struct ports_driver_data pdrvdata ;
DEFINE_SPINLOCK ( pdrvdata_lock ) ;
2011-09-22 23:44:23 +05:30
DECLARE_COMPLETION ( early_console_added ) ;
2010-01-18 19:15:05 +05:30
2010-01-18 19:15:09 +05:30
/* This struct holds information that's relevant only for console ports */
struct console {
/* We'll place all consoles in a list in the pdrvdata struct */
struct list_head list ;
/* The hvc device associated with this console port */
struct hvc_struct * hvc ;
2010-05-06 02:05:08 +05:30
/* The size of the console */
struct winsize ws ;
2010-01-18 19:15:09 +05:30
/*
* This number identifies the number that we used to register
* with hvc in hvc_instantiate ( ) and hvc_alloc ( ) ; this is the
* number passed on by the hvc callbacks to us to
* differentiate between the other console ports handled by
* this driver
*/
u32 vtermno ;
} ;
2010-01-18 19:15:01 +05:30
struct port_buffer {
char * buf ;
/* size of the buffer in *buf above */
size_t size ;
/* used length of the buffer */
size_t len ;
/* offset in the buf from which to consume data */
size_t offset ;
} ;
2009-12-21 21:03:25 +05:30
/*
* This is a per - device struct that stores data common to all the
* ports for that device ( vdev - > priv ) .
*/
struct ports_device {
2010-09-02 18:11:49 +05:30
/* Next portdev in the list, head is in the pdrvdata struct */
struct list_head list ;
2009-12-21 21:03:25 +05:30
/*
* Workqueue handlers where we process deferred work after
* notification
*/
struct work_struct control_work ;
struct list_head ports ;
/* To protect the list of ports */
spinlock_t ports_lock ;
/* To protect the vq operations for the control channel */
spinlock_t cvq_lock ;
/* The current config space is stored here */
2010-05-19 22:15:46 -06:00
struct virtio_console_config config ;
2009-12-21 21:03:25 +05:30
/* The virtio device we're associated with */
struct virtio_device * vdev ;
/*
* A couple of virtqueues for the control channel : one for
* guest - > host transfers , one for host - > guest transfers
*/
struct virtqueue * c_ivq , * c_ovq ;
/* Array of per-port IO virtqueues */
struct virtqueue * * in_vqs , * * out_vqs ;
2009-12-21 21:36:04 +05:30
/* Used for numbering devices for sysfs and debugfs */
unsigned int drv_index ;
/* Major number for this device. Ports will be created as minors. */
int chr_major ;
2009-12-21 21:03:25 +05:30
} ;
2011-09-14 13:06:46 +05:30
struct port_stats {
unsigned long bytes_sent , bytes_received , bytes_discarded ;
} ;
2010-01-18 19:15:07 +05:30
/* This struct holds the per-port data */
2010-01-18 19:15:00 +05:30
struct port {
2009-12-21 21:03:25 +05:30
/* Next port in the list, head is in the ports_device */
struct list_head list ;
2010-01-18 19:15:07 +05:30
/* Pointer to the parent virtio_console device */
struct ports_device * portdev ;
2010-01-18 19:15:01 +05:30
/* The current buffer from which data has to be fed to readers */
struct port_buffer * inbuf ;
2010-01-18 19:15:00 +05:30
2010-01-18 19:15:12 +05:30
/*
* To protect the operations on the in_vq associated with this
* port . Has to be a spinlock because it can be called from
* interrupt context ( get_char ( ) ) .
*/
spinlock_t inbuf_lock ;
2010-05-19 22:15:50 -06:00
/* Protect the operations on the out_vq. */
spinlock_t outvq_lock ;
2010-01-18 19:15:07 +05:30
/* The IO vqs for this port */
struct virtqueue * in_vq , * out_vq ;
2009-12-21 22:36:21 +05:30
/* File in the debugfs directory that exposes this port's information */
struct dentry * debugfs_file ;
2011-09-14 13:06:46 +05:30
/*
* Keep count of the bytes sent , received and discarded for
* this port for accounting and debugging purposes . These
* counts are not reset across port open / close events .
*/
struct port_stats stats ;
2010-01-18 19:15:09 +05:30
/*
* The entries in this struct will be valid if this port is
* hooked up to an hvc console
*/
struct console cons ;
2009-12-21 21:03:25 +05:30
2009-12-21 21:36:04 +05:30
/* Each port associates with a separate char device */
2010-09-02 18:20:59 +05:30
struct cdev * cdev ;
2009-12-21 21:36:04 +05:30
struct device * dev ;
2010-09-02 18:38:29 +05:30
/* Reference-counting to handle port hot-unplugs and file operations */
struct kref kref ;
2009-12-21 21:49:30 +05:30
/* A waitqueue for poll() or blocking read operations */
wait_queue_head_t waitqueue ;
2009-12-21 21:57:40 +05:30
/* The 'name' of the port that we expose via sysfs properties */
char * name ;
2010-09-02 18:47:52 +05:30
/* We can notify apps of host connect / disconnect events via SIGIO */
struct fasync_struct * async_queue ;
2009-12-21 21:03:25 +05:30
/* The 'id' to identify the port with the Host */
u32 id ;
2009-12-21 21:49:30 +05:30
2010-05-19 22:15:50 -06:00
bool outvq_full ;
2009-12-21 21:49:30 +05:30
/* Is the host device open */
bool host_connected ;
2009-11-26 11:25:38 +05:30
/* We should allow only one process to open a port */
bool guest_connected ;
2010-01-18 19:15:00 +05:30
} ;
2007-10-22 11:03:39 +10:00
2010-01-18 19:14:56 +05:30
/* This is the very early arch-specified put chars function. */
static int ( * early_put_chars ) ( u32 , const char * , int ) ;
2010-01-18 19:15:05 +05:30
static struct port * find_port_by_vtermno ( u32 vtermno )
{
struct port * port ;
2010-01-18 19:15:09 +05:30
struct console * cons ;
2010-01-18 19:15:05 +05:30
unsigned long flags ;
spin_lock_irqsave ( & pdrvdata_lock , flags ) ;
2010-01-18 19:15:09 +05:30
list_for_each_entry ( cons , & pdrvdata . consoles , list ) {
if ( cons - > vtermno = = vtermno ) {
port = container_of ( cons , struct port , cons ) ;
2010-01-18 19:15:05 +05:30
goto out ;
2010-01-18 19:15:09 +05:30
}
2010-01-18 19:15:05 +05:30
}
port = NULL ;
out :
spin_unlock_irqrestore ( & pdrvdata_lock , flags ) ;
return port ;
}
2010-09-02 18:20:58 +05:30
static struct port * find_port_by_devt_in_portdev ( struct ports_device * portdev ,
dev_t dev )
{
struct port * port ;
unsigned long flags ;
spin_lock_irqsave ( & portdev - > ports_lock , flags ) ;
list_for_each_entry ( port , & portdev - > ports , list )
2010-09-02 18:20:59 +05:30
if ( port - > cdev - > dev = = dev )
2010-09-02 18:20:58 +05:30
goto out ;
port = NULL ;
out :
spin_unlock_irqrestore ( & portdev - > ports_lock , flags ) ;
return port ;
}
static struct port * find_port_by_devt ( dev_t dev )
{
struct ports_device * portdev ;
struct port * port ;
unsigned long flags ;
spin_lock_irqsave ( & pdrvdata_lock , flags ) ;
list_for_each_entry ( portdev , & pdrvdata . portdevs , list ) {
port = find_port_by_devt_in_portdev ( portdev , dev ) ;
if ( port )
goto out ;
}
port = NULL ;
out :
spin_unlock_irqrestore ( & pdrvdata_lock , flags ) ;
return port ;
}
2009-12-21 21:03:25 +05:30
static struct port * find_port_by_id ( struct ports_device * portdev , u32 id )
{
struct port * port ;
unsigned long flags ;
spin_lock_irqsave ( & portdev - > ports_lock , flags ) ;
list_for_each_entry ( port , & portdev - > ports , list )
if ( port - > id = = id )
goto out ;
port = NULL ;
out :
spin_unlock_irqrestore ( & portdev - > ports_lock , flags ) ;
return port ;
}
2010-01-18 19:15:12 +05:30
static struct port * find_port_by_vq ( struct ports_device * portdev ,
struct virtqueue * vq )
{
struct port * port ;
unsigned long flags ;
2009-12-21 21:03:25 +05:30
spin_lock_irqsave ( & portdev - > ports_lock , flags ) ;
list_for_each_entry ( port , & portdev - > ports , list )
2010-01-18 19:15:12 +05:30
if ( port - > in_vq = = vq | | port - > out_vq = = vq )
goto out ;
port = NULL ;
out :
2009-12-21 21:03:25 +05:30
spin_unlock_irqrestore ( & portdev - > ports_lock , flags ) ;
2010-01-18 19:15:12 +05:30
return port ;
}
2009-12-21 21:03:25 +05:30
static bool is_console_port ( struct port * port )
{
if ( port - > cons . hvc )
return true ;
return false ;
}
static inline bool use_multiport ( struct ports_device * portdev )
{
/*
* This condition can be true when put_chars is called from
* early_init
*/
if ( ! portdev - > vdev )
return 0 ;
return portdev - > vdev - > features [ 0 ] & ( 1 < < VIRTIO_CONSOLE_F_MULTIPORT ) ;
}
2010-01-18 19:15:01 +05:30
static void free_buf ( struct port_buffer * buf )
{
kfree ( buf - > buf ) ;
kfree ( buf ) ;
}
static struct port_buffer * alloc_buf ( size_t buf_size )
{
struct port_buffer * buf ;
buf = kmalloc ( sizeof ( * buf ) , GFP_KERNEL ) ;
if ( ! buf )
goto fail ;
buf - > buf = kzalloc ( buf_size , GFP_KERNEL ) ;
if ( ! buf - > buf )
goto free_buf ;
buf - > len = 0 ;
buf - > offset = 0 ;
buf - > size = buf_size ;
return buf ;
free_buf :
kfree ( buf ) ;
fail :
return NULL ;
}
2010-01-18 19:15:03 +05:30
/* Callers should take appropriate locks */
2011-09-14 13:06:42 +05:30
static struct port_buffer * get_inbuf ( struct port * port )
2010-01-18 19:15:03 +05:30
{
struct port_buffer * buf ;
unsigned int len ;
2011-09-14 13:06:43 +05:30
if ( port - > inbuf )
return port - > inbuf ;
buf = virtqueue_get_buf ( port - > in_vq , & len ) ;
2010-01-18 19:15:03 +05:30
if ( buf ) {
buf - > len = len ;
buf - > offset = 0 ;
2011-09-14 13:06:46 +05:30
port - > stats . bytes_received + = len ;
2010-01-18 19:15:03 +05:30
}
return buf ;
}
2010-01-18 19:15:02 +05:30
/*
* Create a scatter - gather list representing our input buffer and put
* it in the queue .
*
* Callers should take appropriate locks .
*/
2010-01-18 19:15:12 +05:30
static int add_inbuf ( struct virtqueue * vq , struct port_buffer * buf )
2010-01-18 19:15:02 +05:30
{
struct scatterlist sg [ 1 ] ;
2010-01-18 19:15:12 +05:30
int ret ;
2010-01-18 19:15:07 +05:30
2010-01-18 19:15:02 +05:30
sg_init_one ( sg , buf - > buf , buf - > size ) ;
2012-01-12 15:44:42 +10:30
ret = virtqueue_add_buf ( vq , sg , 0 , 1 , buf , GFP_ATOMIC ) ;
2010-04-12 16:18:32 +03:00
virtqueue_kick ( vq ) ;
2010-01-18 19:15:12 +05:30
return ret ;
}
2009-12-21 22:15:30 +05:30
/* Discard any unread data this port has. Callers lockers. */
static void discard_port_data ( struct port * port )
{
struct port_buffer * buf ;
2011-09-14 13:06:45 +05:30
unsigned int err ;
2009-12-21 22:15:30 +05:30
2011-03-04 14:04:33 +10:30
if ( ! port - > portdev ) {
/* Device has been unplugged. vqs are already gone. */
return ;
}
2011-09-14 13:06:45 +05:30
buf = get_inbuf ( port ) ;
2009-12-21 22:15:30 +05:30
2011-09-14 13:06:44 +05:30
err = 0 ;
2010-02-12 10:32:18 +05:30
while ( buf ) {
2011-09-14 13:06:46 +05:30
port - > stats . bytes_discarded + = buf - > len - buf - > offset ;
2011-09-14 13:06:45 +05:30
if ( add_inbuf ( port - > in_vq , buf ) < 0 ) {
2011-09-14 13:06:44 +05:30
err + + ;
2010-02-12 10:32:18 +05:30
free_buf ( buf ) ;
}
2011-09-14 13:06:45 +05:30
port - > inbuf = NULL ;
buf = get_inbuf ( port ) ;
2009-12-21 22:15:30 +05:30
}
2011-09-14 13:06:44 +05:30
if ( err )
2010-02-12 10:32:18 +05:30
dev_warn ( port - > dev , " Errors adding %d buffers back to vq \n " ,
2011-09-14 13:06:44 +05:30
err ) ;
2009-12-21 22:15:30 +05:30
}
2010-01-18 19:15:12 +05:30
static bool port_has_data ( struct port * port )
{
unsigned long flags ;
bool ret ;
2011-09-14 13:06:43 +05:30
ret = false ;
2010-01-18 19:15:12 +05:30
spin_lock_irqsave ( & port - > inbuf_lock , flags ) ;
2010-02-12 10:32:18 +05:30
port - > inbuf = get_inbuf ( port ) ;
2011-09-14 13:06:43 +05:30
if ( port - > inbuf )
2010-02-12 10:32:18 +05:30
ret = true ;
2011-09-14 13:06:43 +05:30
2010-01-18 19:15:12 +05:30
spin_unlock_irqrestore ( & port - > inbuf_lock , flags ) ;
return ret ;
}
2010-05-19 22:15:46 -06:00
static ssize_t __send_control_msg ( struct ports_device * portdev , u32 port_id ,
unsigned int event , unsigned int value )
2009-12-21 21:03:25 +05:30
{
struct scatterlist sg [ 1 ] ;
struct virtio_console_control cpkt ;
struct virtqueue * vq ;
2010-02-24 10:36:51 +05:30
unsigned int len ;
2009-12-21 21:03:25 +05:30
2010-05-19 22:15:46 -06:00
if ( ! use_multiport ( portdev ) )
2009-12-21 21:03:25 +05:30
return 0 ;
2010-05-19 22:15:46 -06:00
cpkt . id = port_id ;
2009-12-21 21:03:25 +05:30
cpkt . event = event ;
cpkt . value = value ;
2010-05-19 22:15:46 -06:00
vq = portdev - > c_ovq ;
2009-12-21 21:03:25 +05:30
sg_init_one ( sg , & cpkt , sizeof ( cpkt ) ) ;
2012-01-12 15:44:42 +10:30
if ( virtqueue_add_buf ( vq , sg , 1 , 0 , & cpkt , GFP_ATOMIC ) > = 0 ) {
2010-04-12 16:18:32 +03:00
virtqueue_kick ( vq ) ;
while ( ! virtqueue_get_buf ( vq , & len ) )
2009-12-21 21:03:25 +05:30
cpu_relax ( ) ;
}
return 0 ;
}
2010-05-19 22:15:46 -06:00
static ssize_t send_control_msg ( struct port * port , unsigned int event ,
unsigned int value )
{
2010-09-02 18:11:42 +05:30
/* Did the port get unplugged before userspace closed it? */
if ( port - > portdev )
return __send_control_msg ( port - > portdev , port - > id , event , value ) ;
return 0 ;
2010-05-19 22:15:46 -06:00
}
2012-08-09 21:30:39 +09:00
struct buffer_token {
union {
void * buf ;
struct scatterlist * sg ;
} u ;
2012-08-09 21:31:20 +09:00
/* If sgpages == 0 then buf is used, else sg is used */
unsigned int sgpages ;
2012-08-09 21:30:39 +09:00
} ;
2012-08-09 21:31:20 +09:00
static void reclaim_sg_pages ( struct scatterlist * sg , unsigned int nrpages )
2012-08-09 21:30:39 +09:00
{
int i ;
struct page * page ;
2012-08-09 21:31:20 +09:00
for ( i = 0 ; i < nrpages ; i + + ) {
2012-08-09 21:30:39 +09:00
page = sg_page ( & sg [ i ] ) ;
if ( ! page )
break ;
put_page ( page ) ;
}
kfree ( sg ) ;
}
2010-05-19 22:15:50 -06:00
/* Callers must take the port->outvq_lock */
static void reclaim_consumed_buffers ( struct port * port )
{
2012-08-09 21:30:39 +09:00
struct buffer_token * tok ;
2010-05-19 22:15:50 -06:00
unsigned int len ;
2011-03-04 14:04:33 +10:30
if ( ! port - > portdev ) {
/* Device has been unplugged. vqs are already gone. */
return ;
}
2012-08-09 21:30:39 +09:00
while ( ( tok = virtqueue_get_buf ( port - > out_vq , & len ) ) ) {
if ( tok - > sgpages )
2012-08-09 21:31:20 +09:00
reclaim_sg_pages ( tok - > u . sg , tok - > sgpages ) ;
2012-08-09 21:30:39 +09:00
else
kfree ( tok - > u . buf ) ;
kfree ( tok ) ;
2010-05-19 22:15:50 -06:00
port - > outvq_full = false ;
}
}
2012-08-09 21:30:39 +09:00
static ssize_t __send_to_port ( struct port * port , struct scatterlist * sg ,
int nents , size_t in_count ,
struct buffer_token * tok , bool nonblock )
2009-12-21 17:28:51 +05:30
{
struct virtqueue * out_vq ;
ssize_t ret ;
2010-05-19 22:15:50 -06:00
unsigned long flags ;
2009-12-21 17:28:51 +05:30
unsigned int len ;
out_vq = port - > out_vq ;
2010-05-19 22:15:50 -06:00
spin_lock_irqsave ( & port - > outvq_lock , flags ) ;
reclaim_consumed_buffers ( port ) ;
2012-08-09 21:30:39 +09:00
ret = virtqueue_add_buf ( out_vq , sg , nents , 0 , tok , GFP_ATOMIC ) ;
2009-12-21 17:28:51 +05:30
/* Tell Host to go! */
2010-04-12 16:18:32 +03:00
virtqueue_kick ( out_vq ) ;
2009-12-21 17:28:51 +05:30
if ( ret < 0 ) {
2010-04-08 09:46:16 -06:00
in_count = 0 ;
2010-05-19 22:15:50 -06:00
goto done ;
2009-12-21 17:28:51 +05:30
}
2010-05-19 22:15:50 -06:00
if ( ret = = 0 )
port - > outvq_full = true ;
if ( nonblock )
goto done ;
/*
* Wait till the host acknowledges it pushed out the data we
2010-10-20 13:45:43 +10:30
* sent . This is done for data from the hvc_console ; the tty
* operations are performed with spinlocks held so we can ' t
* sleep here . An alternative would be to copy the data to a
* buffer and relax the spinning requirement . The downside is
* we need to kmalloc a GFP_ATOMIC buffer each time the
* console driver writes something out .
2010-05-19 22:15:50 -06:00
*/
2010-04-12 16:18:32 +03:00
while ( ! virtqueue_get_buf ( out_vq , & len ) )
2009-12-21 17:28:51 +05:30
cpu_relax ( ) ;
2010-05-19 22:15:50 -06:00
done :
spin_unlock_irqrestore ( & port - > outvq_lock , flags ) ;
2011-09-14 13:06:46 +05:30
port - > stats . bytes_sent + = in_count ;
2010-05-19 22:15:50 -06:00
/*
* We ' re expected to return the amount of data we wrote - - all
* of it
*/
2010-04-08 09:46:16 -06:00
return in_count ;
2009-12-21 17:28:51 +05:30
}
2012-08-09 21:30:39 +09:00
static ssize_t send_buf ( struct port * port , void * in_buf , size_t in_count ,
bool nonblock )
{
struct scatterlist sg [ 1 ] ;
struct buffer_token * tok ;
tok = kmalloc ( sizeof ( * tok ) , GFP_ATOMIC ) ;
if ( ! tok )
return - ENOMEM ;
2012-08-09 21:31:20 +09:00
tok - > sgpages = 0 ;
2012-08-09 21:30:39 +09:00
tok - > u . buf = in_buf ;
sg_init_one ( sg , in_buf , in_count ) ;
return __send_to_port ( port , sg , 1 , in_count , tok , nonblock ) ;
}
static ssize_t send_pages ( struct port * port , struct scatterlist * sg , int nents ,
size_t in_count , bool nonblock )
{
struct buffer_token * tok ;
tok = kmalloc ( sizeof ( * tok ) , GFP_ATOMIC ) ;
if ( ! tok )
return - ENOMEM ;
2012-08-09 21:31:20 +09:00
tok - > sgpages = nents ;
2012-08-09 21:30:39 +09:00
tok - > u . sg = sg ;
return __send_to_port ( port , sg , nents , in_count , tok , nonblock ) ;
}
2010-01-18 19:15:12 +05:30
/*
* Give out the data that ' s requested from the buffer that we have
* queued up .
*/
2009-12-21 21:26:45 +05:30
static ssize_t fill_readbuf ( struct port * port , char * out_buf , size_t out_count ,
bool to_user )
2010-01-18 19:15:12 +05:30
{
struct port_buffer * buf ;
unsigned long flags ;
if ( ! out_count | | ! port_has_data ( port ) )
return 0 ;
buf = port - > inbuf ;
2009-12-21 21:26:45 +05:30
out_count = min ( out_count , buf - > len - buf - > offset ) ;
2010-01-18 19:15:12 +05:30
2009-12-21 21:26:45 +05:30
if ( to_user ) {
ssize_t ret ;
ret = copy_to_user ( out_buf , buf - > buf + buf - > offset , out_count ) ;
if ( ret )
return - EFAULT ;
} else {
memcpy ( out_buf , buf - > buf + buf - > offset , out_count ) ;
}
2010-01-18 19:15:12 +05:30
buf - > offset + = out_count ;
if ( buf - > offset = = buf - > len ) {
/*
* We ' re done using all the data in this buffer .
* Re - queue so that the Host can send us more data .
*/
spin_lock_irqsave ( & port - > inbuf_lock , flags ) ;
port - > inbuf = NULL ;
if ( add_inbuf ( port - > in_vq , buf ) < 0 )
2009-12-21 21:36:04 +05:30
dev_warn ( port - > dev , " failed add_buf \n " ) ;
2010-01-18 19:15:12 +05:30
spin_unlock_irqrestore ( & port - > inbuf_lock , flags ) ;
}
2009-12-21 21:26:45 +05:30
/* Return the number of bytes actually copied */
2010-01-18 19:15:12 +05:30
return out_count ;
2010-01-18 19:15:02 +05:30
}
2009-12-21 21:49:30 +05:30
/* The condition that must be true for polling to end */
2010-05-19 22:15:49 -06:00
static bool will_read_block ( struct port * port )
2009-12-21 21:49:30 +05:30
{
2010-09-02 18:11:43 +05:30
if ( ! port - > guest_connected ) {
/* Port got hot-unplugged. Let's exit. */
return false ;
}
2010-05-19 22:15:49 -06:00
return ! port_has_data ( port ) & & port - > host_connected ;
2009-12-21 21:49:30 +05:30
}
2010-05-19 22:15:50 -06:00
static bool will_write_block ( struct port * port )
{
bool ret ;
2010-05-27 13:24:40 +05:30
if ( ! port - > guest_connected ) {
/* Port got hot-unplugged. Let's exit. */
return false ;
}
2010-05-19 22:15:50 -06:00
if ( ! port - > host_connected )
return true ;
spin_lock_irq ( & port - > outvq_lock ) ;
/*
* Check if the Host has consumed any buffers since we last
* sent data ( this is only applicable for nonblocking ports ) .
*/
reclaim_consumed_buffers ( port ) ;
ret = port - > outvq_full ;
spin_unlock_irq ( & port - > outvq_lock ) ;
return ret ;
}
2009-12-21 21:49:30 +05:30
static ssize_t port_fops_read ( struct file * filp , char __user * ubuf ,
size_t count , loff_t * offp )
{
struct port * port ;
ssize_t ret ;
port = filp - > private_data ;
if ( ! port_has_data ( port ) ) {
/*
* If nothing ' s connected on the host just return 0 in
* case of list_empty ; this tells the userspace app
* that there ' s no connection
*/
if ( ! port - > host_connected )
return 0 ;
if ( filp - > f_flags & O_NONBLOCK )
return - EAGAIN ;
2011-09-14 13:06:41 +05:30
ret = wait_event_freezable ( port - > waitqueue ,
! will_read_block ( port ) ) ;
2009-12-21 21:49:30 +05:30
if ( ret < 0 )
return ret ;
}
2010-09-02 18:11:45 +05:30
/* Port got hot-unplugged. */
if ( ! port - > guest_connected )
return - ENODEV ;
2009-12-21 21:49:30 +05:30
/*
* We could ' ve received a disconnection message while we were
* waiting for more data .
*
* This check is not clubbed in the if ( ) statement above as we
* might receive some data as well as the host could get
* disconnected after we got woken up from our wait . So we
* really want to give off whatever data we have and only then
* check for host_connected .
*/
if ( ! port_has_data ( port ) & & ! port - > host_connected )
return 0 ;
return fill_readbuf ( port , ubuf , count , true ) ;
}
2012-08-09 21:31:00 +09:00
static int wait_port_writable ( struct port * port , bool nonblock )
{
int ret ;
if ( will_write_block ( port ) ) {
if ( nonblock )
return - EAGAIN ;
ret = wait_event_freezable ( port - > waitqueue ,
! will_write_block ( port ) ) ;
if ( ret < 0 )
return ret ;
}
/* Port got hot-unplugged. */
if ( ! port - > guest_connected )
return - ENODEV ;
return 0 ;
}
2009-12-21 21:49:30 +05:30
static ssize_t port_fops_write ( struct file * filp , const char __user * ubuf ,
size_t count , loff_t * offp )
{
struct port * port ;
char * buf ;
ssize_t ret ;
2010-05-19 22:15:50 -06:00
bool nonblock ;
2009-12-21 21:49:30 +05:30
2010-09-14 13:26:16 +05:30
/* Userspace could be out to fool us */
if ( ! count )
return 0 ;
2009-12-21 21:49:30 +05:30
port = filp - > private_data ;
2010-05-19 22:15:50 -06:00
nonblock = filp - > f_flags & O_NONBLOCK ;
2012-08-09 21:31:00 +09:00
ret = wait_port_writable ( port , nonblock ) ;
if ( ret < 0 )
return ret ;
2010-05-19 22:15:50 -06:00
2009-12-21 21:49:30 +05:30
count = min ( ( size_t ) ( 32 * 1024 ) , count ) ;
buf = kmalloc ( count , GFP_KERNEL ) ;
if ( ! buf )
return - ENOMEM ;
ret = copy_from_user ( buf , ubuf , count ) ;
if ( ret ) {
ret = - EFAULT ;
goto free_buf ;
}
2010-10-20 13:45:43 +10:30
/*
* We now ask send_buf ( ) to not spin for generic ports - - we
* can re - use the same code path that non - blocking file
* descriptors take for blocking file descriptors since the
* wait is already done and we ' re certain the write will go
* through to the host .
*/
nonblock = true ;
2010-05-19 22:15:50 -06:00
ret = send_buf ( port , buf , count , nonblock ) ;
if ( nonblock & & ret > 0 )
goto out ;
2009-12-21 21:49:30 +05:30
free_buf :
kfree ( buf ) ;
2010-05-19 22:15:50 -06:00
out :
2009-12-21 21:49:30 +05:30
return ret ;
}
2012-08-09 21:30:39 +09:00
struct sg_list {
unsigned int n ;
2012-08-09 21:31:20 +09:00
unsigned int size ;
2012-08-09 21:30:39 +09:00
size_t len ;
struct scatterlist * sg ;
} ;
static int pipe_to_sg ( struct pipe_inode_info * pipe , struct pipe_buffer * buf ,
struct splice_desc * sd )
{
struct sg_list * sgl = sd - > u . data ;
2012-08-09 21:30:50 +09:00
unsigned int offset , len ;
2012-08-09 21:30:39 +09:00
2012-08-09 21:31:20 +09:00
if ( sgl - > n = = sgl - > size )
2012-08-09 21:30:39 +09:00
return 0 ;
/* Try lock this page */
if ( buf - > ops - > steal ( pipe , buf ) = = 0 ) {
/* Get reference and unlock page for moving */
get_page ( buf - > page ) ;
unlock_page ( buf - > page ) ;
len = min ( buf - > len , sd - > len ) ;
sg_set_page ( & ( sgl - > sg [ sgl - > n ] ) , buf - > page , len , buf - > offset ) ;
2012-08-09 21:30:50 +09:00
} else {
/* Failback to copying a page */
struct page * page = alloc_page ( GFP_KERNEL ) ;
char * src = buf - > ops - > map ( pipe , buf , 1 ) ;
char * dst ;
if ( ! page )
return - ENOMEM ;
dst = kmap ( page ) ;
offset = sd - > pos & ~ PAGE_MASK ;
len = sd - > len ;
if ( len + offset > PAGE_SIZE )
len = PAGE_SIZE - offset ;
memcpy ( dst + offset , src + buf - > offset , len ) ;
kunmap ( page ) ;
buf - > ops - > unmap ( pipe , buf , src ) ;
sg_set_page ( & ( sgl - > sg [ sgl - > n ] ) , page , len , offset ) ;
2012-08-09 21:30:39 +09:00
}
2012-08-09 21:30:50 +09:00
sgl - > n + + ;
sgl - > len + = len ;
2012-08-09 21:30:39 +09:00
return len ;
}
/* Faster zero-copy write by splicing */
static ssize_t port_fops_splice_write ( struct pipe_inode_info * pipe ,
struct file * filp , loff_t * ppos ,
size_t len , unsigned int flags )
{
struct port * port = filp - > private_data ;
struct sg_list sgl ;
ssize_t ret ;
struct splice_desc sd = {
. total_len = len ,
. flags = flags ,
. pos = * ppos ,
. u . data = & sgl ,
} ;
2012-08-09 21:31:00 +09:00
ret = wait_port_writable ( port , filp - > f_flags & O_NONBLOCK ) ;
if ( ret < 0 )
return ret ;
2012-08-09 21:30:39 +09:00
sgl . n = 0 ;
sgl . len = 0 ;
2012-08-09 21:31:20 +09:00
sgl . size = pipe - > nrbufs ;
sgl . sg = kmalloc ( sizeof ( struct scatterlist ) * sgl . size , GFP_KERNEL ) ;
2012-08-09 21:30:39 +09:00
if ( unlikely ( ! sgl . sg ) )
return - ENOMEM ;
2012-08-09 21:31:20 +09:00
sg_init_table ( sgl . sg , sgl . size ) ;
2012-08-09 21:30:39 +09:00
ret = __splice_from_pipe ( pipe , & sd , pipe_to_sg ) ;
if ( likely ( ret > 0 ) )
ret = send_pages ( port , sgl . sg , sgl . n , sgl . len , true ) ;
return ret ;
}
2009-12-21 21:49:30 +05:30
static unsigned int port_fops_poll ( struct file * filp , poll_table * wait )
{
struct port * port ;
unsigned int ret ;
port = filp - > private_data ;
poll_wait ( filp , & port - > waitqueue , wait ) ;
2010-09-02 18:11:44 +05:30
if ( ! port - > guest_connected ) {
/* Port got unplugged */
return POLLHUP ;
}
2009-12-21 21:49:30 +05:30
ret = 0 ;
2010-09-16 14:43:08 +05:30
if ( ! will_read_block ( port ) )
2009-12-21 21:49:30 +05:30
ret | = POLLIN | POLLRDNORM ;
2010-05-19 22:15:50 -06:00
if ( ! will_write_block ( port ) )
2009-12-21 21:49:30 +05:30
ret | = POLLOUT ;
if ( ! port - > host_connected )
ret | = POLLHUP ;
return ret ;
}
2010-09-02 18:38:29 +05:30
static void remove_port ( struct kref * kref ) ;
2009-12-21 21:49:30 +05:30
static int port_fops_release ( struct inode * inode , struct file * filp )
{
struct port * port ;
port = filp - > private_data ;
/* Notify host of port being closed */
send_control_msg ( port , VIRTIO_CONSOLE_PORT_OPEN , 0 ) ;
2009-12-21 22:15:30 +05:30
spin_lock_irq ( & port - > inbuf_lock ) ;
2009-11-26 11:25:38 +05:30
port - > guest_connected = false ;
2009-12-21 22:15:30 +05:30
discard_port_data ( port ) ;
spin_unlock_irq ( & port - > inbuf_lock ) ;
2010-05-19 22:15:50 -06:00
spin_lock_irq ( & port - > outvq_lock ) ;
reclaim_consumed_buffers ( port ) ;
spin_unlock_irq ( & port - > outvq_lock ) ;
2010-09-02 18:38:29 +05:30
/*
* Locks aren ' t necessary here as a port can ' t be opened after
* unplug , and if a port isn ' t unplugged , a kref would already
* exist for the port . Plus , taking ports_lock here would
* create a dependency on other locks taken by functions
* inside remove_port if we ' re the last holder of the port ,
* creating many problems .
*/
kref_put ( & port - > kref , remove_port ) ;
2009-12-21 21:49:30 +05:30
return 0 ;
}
static int port_fops_open ( struct inode * inode , struct file * filp )
{
struct cdev * cdev = inode - > i_cdev ;
struct port * port ;
2010-09-02 18:11:48 +05:30
int ret ;
2009-12-21 21:49:30 +05:30
2010-09-02 18:20:58 +05:30
port = find_port_by_devt ( cdev - > dev ) ;
2009-12-21 21:49:30 +05:30
filp - > private_data = port ;
2010-09-02 18:38:29 +05:30
/* Prevent against a port getting hot-unplugged at the same time */
spin_lock_irq ( & port - > portdev - > ports_lock ) ;
kref_get ( & port - > kref ) ;
spin_unlock_irq ( & port - > portdev - > ports_lock ) ;
2009-12-21 21:49:30 +05:30
/*
* Don ' t allow opening of console port devices - - that ' s done
* via / dev / hvc
*/
2010-09-02 18:11:48 +05:30
if ( is_console_port ( port ) ) {
ret = - ENXIO ;
goto out ;
}
2009-12-21 21:49:30 +05:30
2009-11-26 11:25:38 +05:30
/* Allow only one process to open a particular port at a time */
spin_lock_irq ( & port - > inbuf_lock ) ;
if ( port - > guest_connected ) {
spin_unlock_irq ( & port - > inbuf_lock ) ;
2010-09-02 18:11:48 +05:30
ret = - EMFILE ;
goto out ;
2009-11-26 11:25:38 +05:30
}
port - > guest_connected = true ;
spin_unlock_irq ( & port - > inbuf_lock ) ;
2010-05-19 22:15:50 -06:00
spin_lock_irq ( & port - > outvq_lock ) ;
/*
* There might be a chance that we missed reclaiming a few
* buffers in the window of the port getting previously closed
* and opening now .
*/
reclaim_consumed_buffers ( port ) ;
spin_unlock_irq ( & port - > outvq_lock ) ;
2010-09-16 14:43:09 +05:30
nonseekable_open ( inode , filp ) ;
2009-12-21 21:49:30 +05:30
/* Notify host of port being opened */
send_control_msg ( filp - > private_data , VIRTIO_CONSOLE_PORT_OPEN , 1 ) ;
return 0 ;
2010-09-02 18:11:48 +05:30
out :
2010-09-02 18:38:29 +05:30
kref_put ( & port - > kref , remove_port ) ;
2010-09-02 18:11:48 +05:30
return ret ;
2009-12-21 21:49:30 +05:30
}
2010-09-02 18:47:52 +05:30
static int port_fops_fasync ( int fd , struct file * filp , int mode )
{
struct port * port ;
port = filp - > private_data ;
return fasync_helper ( fd , filp , mode , & port - > async_queue ) ;
}
2009-12-21 21:49:30 +05:30
/*
* The file operations that we support : programs in the guest can open
* a console device , read from it , write to it , poll for data and
* close it . The devices are at
* / dev / vport < device number > p < port number >
*/
static const struct file_operations port_fops = {
. owner = THIS_MODULE ,
. open = port_fops_open ,
. read = port_fops_read ,
. write = port_fops_write ,
2012-08-09 21:30:39 +09:00
. splice_write = port_fops_splice_write ,
2009-12-21 21:49:30 +05:30
. poll = port_fops_poll ,
. release = port_fops_release ,
2010-09-02 18:47:52 +05:30
. fasync = port_fops_fasync ,
2010-09-16 14:43:09 +05:30
. llseek = no_llseek ,
2009-12-21 21:49:30 +05:30
} ;
2010-01-18 19:14:55 +05:30
/*
* The put_chars ( ) callback is pretty straightforward .
2007-10-22 11:03:39 +10:00
*
2010-01-18 19:14:55 +05:30
* We turn the characters into a scatter - gather list , add it to the
* output queue and then kick the Host . Then we sit here waiting for
* it to finish : inefficient in theory , but in practice
* implementations will do it immediately ( lguest ' s Launcher does ) .
*/
2007-10-22 11:03:39 +10:00
static int put_chars ( u32 vtermno , const char * buf , int count )
{
2010-01-18 19:15:00 +05:30
struct port * port ;
2010-01-18 19:15:05 +05:30
2010-03-23 18:23:15 +05:30
if ( unlikely ( early_put_chars ) )
return early_put_chars ( vtermno , buf , count ) ;
2010-01-18 19:15:05 +05:30
port = find_port_by_vtermno ( vtermno ) ;
if ( ! port )
2010-05-19 22:15:47 -06:00
return - EPIPE ;
2007-10-22 11:03:39 +10:00
2010-05-19 22:15:50 -06:00
return send_buf ( port , ( void * ) buf , count , false ) ;
2007-10-22 11:03:39 +10:00
}
2010-01-18 19:14:55 +05:30
/*
* get_chars ( ) is the callback from the hvc_console infrastructure
* when an interrupt is received .
2007-10-22 11:03:39 +10:00
*
2010-01-18 19:15:12 +05:30
* We call out to fill_readbuf that gets us the required data from the
* buffers that are queued up .
2010-01-18 19:14:55 +05:30
*/
2007-10-22 11:03:39 +10:00
static int get_chars ( u32 vtermno , char * buf , int count )
{
2010-01-18 19:15:00 +05:30
struct port * port ;
2010-05-19 22:15:47 -06:00
/* If we've not set up the port yet, we have no input to give. */
if ( unlikely ( early_put_chars ) )
return 0 ;
2010-01-18 19:15:05 +05:30
port = find_port_by_vtermno ( vtermno ) ;
if ( ! port )
2010-05-19 22:15:47 -06:00
return - EPIPE ;
2010-01-18 19:15:00 +05:30
2007-10-22 11:03:39 +10:00
/* If we don't have an input queue yet, we can't get input. */
2010-01-18 19:15:00 +05:30
BUG_ON ( ! port - > in_vq ) ;
2007-10-22 11:03:39 +10:00
2009-12-21 21:26:45 +05:30
return fill_readbuf ( port , buf , count , false ) ;
2007-10-22 11:03:39 +10:00
}
2010-01-18 19:15:08 +05:30
static void resize_console ( struct port * port )
2008-11-25 13:36:26 +01:00
{
2010-01-18 19:15:08 +05:30
struct virtio_device * vdev ;
2008-11-25 13:36:26 +01:00
2010-03-19 17:36:44 +05:30
/* The port could have been hot-unplugged */
2010-05-06 02:05:08 +05:30
if ( ! port | | ! is_console_port ( port ) )
2010-03-19 17:36:44 +05:30
return ;
2010-01-18 19:15:08 +05:30
vdev = port - > portdev - > vdev ;
2010-05-06 02:05:08 +05:30
if ( virtio_has_feature ( vdev , VIRTIO_CONSOLE_F_SIZE ) )
hvc_resize ( port - > cons . hvc , port - > cons . ws ) ;
2008-11-25 13:36:26 +01:00
}
2010-01-18 19:15:05 +05:30
/* We set the configuration at this point, since we now have a tty */
2008-06-20 15:24:15 +02:00
static int notifier_add_vio ( struct hvc_struct * hp , int data )
{
2010-01-18 19:15:05 +05:30
struct port * port ;
port = find_port_by_vtermno ( hp - > vtermno ) ;
if ( ! port )
return - EINVAL ;
2008-06-20 15:24:15 +02:00
hp - > irq_requested = 1 ;
2010-01-18 19:15:08 +05:30
resize_console ( port ) ;
2008-11-25 13:36:26 +01:00
2008-06-20 15:24:15 +02:00
return 0 ;
}
static void notifier_del_vio ( struct hvc_struct * hp , int data )
{
hp - > irq_requested = 0 ;
}
2009-12-21 21:03:25 +05:30
/* The operations for console ports. */
2009-11-28 12:20:26 +05:30
static const struct hv_ops hv_ops = {
2010-01-18 19:14:56 +05:30
. get_chars = get_chars ,
. put_chars = put_chars ,
. notifier_add = notifier_add_vio ,
. notifier_del = notifier_del_vio ,
. notifier_hangup = notifier_del_vio ,
} ;
/*
* Console drivers are initialized very early so boot messages can go
* out , so we do things slightly differently from the generic virtio
* initialization of the net and block drivers .
*
* At this stage , the console is output - only . It ' s too early to set
* up a virtqueue , so we let the drivers do some boutique early - output
* thing .
*/
int __init virtio_cons_early_init ( int ( * put_chars ) ( u32 , const char * , int ) )
{
early_put_chars = put_chars ;
return hvc_instantiate ( 0 , 0 , & hv_ops ) ;
}
2009-12-21 21:03:25 +05:30
int init_port_console ( struct port * port )
2010-01-18 19:15:10 +05:30
{
int ret ;
/*
* The Host ' s telling us this port is a console port . Hook it
* up with an hvc console .
*
* To set up and manage our virtual console , we call
* hvc_alloc ( ) .
*
* The first argument of hvc_alloc ( ) is the virtual console
* number . The second argument is the parameter for the
* notification mechanism ( like irq number ) . We currently
* leave this as zero , virtqueues have implicit notifications .
*
* The third argument is a " struct hv_ops " containing the
* put_chars ( ) get_chars ( ) , notifier_add ( ) and notifier_del ( )
* pointers . The final argument is the output buffer size : we
* can do any size , so we put PAGE_SIZE here .
*/
port - > cons . vtermno = pdrvdata . next_vtermno ;
port - > cons . hvc = hvc_alloc ( port - > cons . vtermno , 0 , & hv_ops , PAGE_SIZE ) ;
if ( IS_ERR ( port - > cons . hvc ) ) {
ret = PTR_ERR ( port - > cons . hvc ) ;
2010-01-18 16:35:23 +05:30
dev_err ( port - > dev ,
" error %d allocating hvc for port \n " , ret ) ;
2010-01-18 19:15:10 +05:30
port - > cons . hvc = NULL ;
return ret ;
}
spin_lock_irq ( & pdrvdata_lock ) ;
pdrvdata . next_vtermno + + ;
list_add_tail ( & port - > cons . list , & pdrvdata . consoles ) ;
spin_unlock_irq ( & pdrvdata_lock ) ;
2009-11-26 11:25:38 +05:30
port - > guest_connected = true ;
2010-01-18 19:15:10 +05:30
2010-05-19 22:15:49 -06:00
/*
* Start using the new console output if this is the first
* console to come up .
*/
if ( early_put_chars )
early_put_chars = NULL ;
2009-12-21 21:49:30 +05:30
/* Notify host of port being opened */
send_control_msg ( port , VIRTIO_CONSOLE_PORT_OPEN , 1 ) ;
2010-01-18 19:15:10 +05:30
return 0 ;
}
2009-12-21 21:57:40 +05:30
static ssize_t show_port_name ( struct device * dev ,
struct device_attribute * attr , char * buffer )
{
struct port * port ;
port = dev_get_drvdata ( dev ) ;
return sprintf ( buffer , " %s \n " , port - > name ) ;
}
static DEVICE_ATTR ( name , S_IRUGO , show_port_name , NULL ) ;
static struct attribute * port_sysfs_entries [ ] = {
& dev_attr_name . attr ,
NULL
} ;
static struct attribute_group port_attribute_group = {
. name = NULL , /* put in device directory */
. attrs = port_sysfs_entries ,
} ;
2009-12-21 22:36:21 +05:30
static ssize_t debugfs_read ( struct file * filp , char __user * ubuf ,
size_t count , loff_t * offp )
{
struct port * port ;
char * buf ;
ssize_t ret , out_offset , out_count ;
out_count = 1024 ;
buf = kmalloc ( out_count , GFP_KERNEL ) ;
if ( ! buf )
return - ENOMEM ;
port = filp - > private_data ;
out_offset = 0 ;
out_offset + = snprintf ( buf + out_offset , out_count ,
" name: %s \n " , port - > name ? port - > name : " " ) ;
out_offset + = snprintf ( buf + out_offset , out_count - out_offset ,
" guest_connected: %d \n " , port - > guest_connected ) ;
out_offset + = snprintf ( buf + out_offset , out_count - out_offset ,
" host_connected: %d \n " , port - > host_connected ) ;
2010-05-19 22:15:50 -06:00
out_offset + = snprintf ( buf + out_offset , out_count - out_offset ,
" outvq_full: %d \n " , port - > outvq_full ) ;
2011-09-14 13:06:46 +05:30
out_offset + = snprintf ( buf + out_offset , out_count - out_offset ,
" bytes_sent: %lu \n " , port - > stats . bytes_sent ) ;
out_offset + = snprintf ( buf + out_offset , out_count - out_offset ,
" bytes_received: %lu \n " ,
port - > stats . bytes_received ) ;
out_offset + = snprintf ( buf + out_offset , out_count - out_offset ,
" bytes_discarded: %lu \n " ,
port - > stats . bytes_discarded ) ;
2009-12-21 22:36:21 +05:30
out_offset + = snprintf ( buf + out_offset , out_count - out_offset ,
" is_console: %s \n " ,
is_console_port ( port ) ? " yes " : " no " ) ;
out_offset + = snprintf ( buf + out_offset , out_count - out_offset ,
" console_vtermno: %u \n " , port - > cons . vtermno ) ;
ret = simple_read_from_buffer ( ubuf , count , offp , buf , out_offset ) ;
kfree ( buf ) ;
return ret ;
}
static const struct file_operations port_debugfs_ops = {
. owner = THIS_MODULE ,
2012-04-05 14:25:11 -07:00
. open = simple_open ,
2009-12-21 22:36:21 +05:30
. read = debugfs_read ,
} ;
2010-05-06 02:05:08 +05:30
static void set_console_size ( struct port * port , u16 rows , u16 cols )
{
if ( ! port | | ! is_console_port ( port ) )
return ;
port - > cons . ws . ws_row = rows ;
port - > cons . ws . ws_col = cols ;
}
2010-05-19 22:15:48 -06:00
static unsigned int fill_queue ( struct virtqueue * vq , spinlock_t * lock )
{
struct port_buffer * buf ;
unsigned int nr_added_bufs ;
int ret ;
nr_added_bufs = 0 ;
do {
buf = alloc_buf ( PAGE_SIZE ) ;
if ( ! buf )
break ;
spin_lock_irq ( lock ) ;
ret = add_inbuf ( vq , buf ) ;
if ( ret < 0 ) {
spin_unlock_irq ( lock ) ;
free_buf ( buf ) ;
break ;
}
nr_added_bufs + + ;
spin_unlock_irq ( lock ) ;
} while ( ret > 0 ) ;
return nr_added_bufs ;
}
2010-09-02 18:47:52 +05:30
static void send_sigio_to_port ( struct port * port )
{
if ( port - > async_queue & & port - > guest_connected )
kill_fasync ( & port - > async_queue , SIGIO , POLL_OUT ) ;
}
2010-05-19 22:15:48 -06:00
static int add_port ( struct ports_device * portdev , u32 id )
{
char debugfs_name [ 16 ] ;
struct port * port ;
struct port_buffer * buf ;
dev_t devt ;
unsigned int nr_added_bufs ;
int err ;
port = kmalloc ( sizeof ( * port ) , GFP_KERNEL ) ;
if ( ! port ) {
err = - ENOMEM ;
goto fail ;
}
2010-09-02 18:38:29 +05:30
kref_init ( & port - > kref ) ;
2010-05-19 22:15:48 -06:00
port - > portdev = portdev ;
port - > id = id ;
port - > name = NULL ;
port - > inbuf = NULL ;
port - > cons . hvc = NULL ;
2010-09-02 18:47:52 +05:30
port - > async_queue = NULL ;
2010-05-19 22:15:48 -06:00
2010-05-06 02:05:08 +05:30
port - > cons . ws . ws_row = port - > cons . ws . ws_col = 0 ;
2010-05-19 22:15:48 -06:00
port - > host_connected = port - > guest_connected = false ;
2011-09-14 13:06:46 +05:30
port - > stats = ( struct port_stats ) { 0 } ;
2010-05-19 22:15:48 -06:00
2010-05-19 22:15:50 -06:00
port - > outvq_full = false ;
2010-05-19 22:15:48 -06:00
port - > in_vq = portdev - > in_vqs [ port - > id ] ;
port - > out_vq = portdev - > out_vqs [ port - > id ] ;
2010-09-02 18:20:59 +05:30
port - > cdev = cdev_alloc ( ) ;
if ( ! port - > cdev ) {
dev_err ( & port - > portdev - > vdev - > dev , " Error allocating cdev \n " ) ;
err = - ENOMEM ;
goto free_port ;
}
port - > cdev - > ops = & port_fops ;
2010-05-19 22:15:48 -06:00
devt = MKDEV ( portdev - > chr_major , id ) ;
2010-09-02 18:20:59 +05:30
err = cdev_add ( port - > cdev , devt , 1 ) ;
2010-05-19 22:15:48 -06:00
if ( err < 0 ) {
dev_err ( & port - > portdev - > vdev - > dev ,
" Error %d adding cdev for port %u \n " , err , id ) ;
2010-09-02 18:20:59 +05:30
goto free_cdev ;
2010-05-19 22:15:48 -06:00
}
port - > dev = device_create ( pdrvdata . class , & port - > portdev - > vdev - > dev ,
devt , port , " vport%up%u " ,
port - > portdev - > drv_index , id ) ;
if ( IS_ERR ( port - > dev ) ) {
err = PTR_ERR ( port - > dev ) ;
dev_err ( & port - > portdev - > vdev - > dev ,
" Error %d creating device for port %u \n " ,
err , id ) ;
goto free_cdev ;
}
spin_lock_init ( & port - > inbuf_lock ) ;
2010-05-19 22:15:50 -06:00
spin_lock_init ( & port - > outvq_lock ) ;
2010-05-19 22:15:48 -06:00
init_waitqueue_head ( & port - > waitqueue ) ;
/* Fill the in_vq with buffers so the host can send us data. */
nr_added_bufs = fill_queue ( port - > in_vq , & port - > inbuf_lock ) ;
if ( ! nr_added_bufs ) {
dev_err ( port - > dev , " Error allocating inbufs \n " ) ;
err = - ENOMEM ;
goto free_device ;
}
/*
* If we ' re not using multiport support , this has to be a console port
*/
if ( ! use_multiport ( port - > portdev ) ) {
err = init_port_console ( port ) ;
if ( err )
goto free_inbufs ;
}
spin_lock_irq ( & portdev - > ports_lock ) ;
list_add_tail ( & port - > list , & port - > portdev - > ports ) ;
spin_unlock_irq ( & portdev - > ports_lock ) ;
/*
* Tell the Host we ' re set so that it can send us various
* configuration parameters for this port ( eg , port name ,
* caching , whether this is a console port , etc . )
*/
send_control_msg ( port , VIRTIO_CONSOLE_PORT_READY , 1 ) ;
if ( pdrvdata . debugfs_dir ) {
/*
* Finally , create the debugfs file that we can use to
* inspect a port ' s state at any time
*/
sprintf ( debugfs_name , " vport%up%u " ,
port - > portdev - > drv_index , id ) ;
port - > debugfs_file = debugfs_create_file ( debugfs_name , 0444 ,
pdrvdata . debugfs_dir ,
port ,
& port_debugfs_ops ) ;
}
return 0 ;
free_inbufs :
while ( ( buf = virtqueue_detach_unused_buf ( port - > in_vq ) ) )
free_buf ( buf ) ;
free_device :
device_destroy ( pdrvdata . class , port - > dev - > devt ) ;
free_cdev :
2010-09-02 18:20:59 +05:30
cdev_del ( port - > cdev ) ;
2010-05-19 22:15:48 -06:00
free_port :
kfree ( port ) ;
fail :
/* The host might want to notify management sw about port add failure */
drivers/char: Eliminate use after free
In each case, the first argument to send_control_msg or __send_control_msg,
respectively, has either not been successfully allocated or has been freed
at the point of the call. In the first case, the first argument, port, is
only used to access the portdev and id fields, in order to call
__send_control_msg. Thus it seems possible instead to call
__send_control_msg directly. In the second case, the call to
__send_control_msg is moved up to a place where it seems like the first
argument, portdev, has been initialized sufficiently to make the call to
__send_control_msg meaningful.
This has only been compile tested.
A simplified version of the semantic match that finds this problem is as
follows: (http://coccinelle.lip6.fr/)
// <smpl>
@free@
expression E;
position p;
@@
kfree@p(E)
@@
expression free.E, subE<=free.E, E1;
position free.p;
@@
kfree@p(E)
...
(
subE = E1
|
* E
)
// </smpl>
Signed-off-by: Julia Lawall <julia@diku.dk>
Acked-by: Amit Shah <amit.shah@redhat.com>
Signed-off-by: Rusty Russell <rusty@rustcorp.com.au>
2010-05-15 11:45:53 +02:00
__send_control_msg ( portdev , id , VIRTIO_CONSOLE_PORT_READY , 0 ) ;
2010-05-19 22:15:48 -06:00
return err ;
}
2010-09-02 18:38:29 +05:30
/* No users remain, remove all port-specific data. */
static void remove_port ( struct kref * kref )
{
struct port * port ;
port = container_of ( kref , struct port , kref ) ;
sysfs_remove_group ( & port - > dev - > kobj , & port_attribute_group ) ;
device_destroy ( pdrvdata . class , port - > dev - > devt ) ;
cdev_del ( port - > cdev ) ;
kfree ( port - > name ) ;
debugfs_remove ( port - > debugfs_file ) ;
kfree ( port ) ;
}
2011-12-22 16:58:27 +05:30
static void remove_port_data ( struct port * port )
{
struct port_buffer * buf ;
/* Remove unused data this port might have received. */
discard_port_data ( port ) ;
reclaim_consumed_buffers ( port ) ;
/* Remove buffers we queued up for the Host to send us data in. */
while ( ( buf = virtqueue_detach_unused_buf ( port - > in_vq ) ) )
free_buf ( buf ) ;
}
2010-09-02 18:38:29 +05:30
/*
* Port got unplugged . Remove port from portdev ' s list and drop the
* kref reference . If no userspace has this port opened , it will
* result in immediate removal the port .
*/
static void unplug_port ( struct port * port )
2009-12-21 22:27:31 +05:30
{
2010-09-02 18:38:29 +05:30
spin_lock_irq ( & port - > portdev - > ports_lock ) ;
list_del ( & port - > list ) ;
spin_unlock_irq ( & port - > portdev - > ports_lock ) ;
2010-05-27 13:24:39 +05:30
if ( port - > guest_connected ) {
port - > guest_connected = false ;
port - > host_connected = false ;
wake_up_interruptible ( & port - > waitqueue ) ;
2010-09-02 18:47:54 +05:30
/* Let the app know the port is going down. */
send_sigio_to_port ( port ) ;
2010-05-27 13:24:39 +05:30
}
2009-12-21 22:27:31 +05:30
if ( is_console_port ( port ) ) {
spin_lock_irq ( & pdrvdata_lock ) ;
list_del ( & port - > cons . list ) ;
spin_unlock_irq ( & pdrvdata_lock ) ;
hvc_remove ( port - > cons . hvc ) ;
}
2011-12-22 16:58:27 +05:30
remove_port_data ( port ) ;
2010-02-12 10:32:15 +05:30
2010-09-02 18:38:29 +05:30
/*
* We should just assume the device itself has gone off - -
* else a close on an open port later will try to send out a
* control message .
*/
port - > portdev = NULL ;
2009-12-21 22:36:21 +05:30
2010-09-02 18:38:29 +05:30
/*
* Locks around here are not necessary - a port can ' t be
* opened after we removed the port struct from ports_list
* above .
*/
kref_put ( & port - > kref , remove_port ) ;
2009-12-21 22:27:31 +05:30
}
2009-12-21 21:03:25 +05:30
/* Any private messages that the Host and Guest want to share */
static void handle_control_message ( struct ports_device * portdev ,
struct port_buffer * buf )
{
struct virtio_console_control * cpkt ;
struct port * port ;
2009-12-21 21:57:40 +05:30
size_t name_size ;
int err ;
2009-12-21 21:03:25 +05:30
cpkt = ( struct virtio_console_control * ) ( buf - > buf + buf - > offset ) ;
port = find_port_by_id ( portdev , cpkt - > id ) ;
2010-05-19 22:15:48 -06:00
if ( ! port & & cpkt - > event ! = VIRTIO_CONSOLE_PORT_ADD ) {
2009-12-21 21:03:25 +05:30
/* No valid header at start of buffer. Drop it. */
dev_dbg ( & portdev - > vdev - > dev ,
" Invalid index %u in control packet \n " , cpkt - > id ) ;
return ;
}
switch ( cpkt - > event ) {
2010-05-19 22:15:48 -06:00
case VIRTIO_CONSOLE_PORT_ADD :
if ( port ) {
2010-05-19 22:15:49 -06:00
dev_dbg ( & portdev - > vdev - > dev ,
" Port %u already added \n " , port - > id ) ;
2010-05-19 22:15:48 -06:00
send_control_msg ( port , VIRTIO_CONSOLE_PORT_READY , 1 ) ;
break ;
}
if ( cpkt - > id > = portdev - > config . max_nr_ports ) {
dev_warn ( & portdev - > vdev - > dev ,
" Request for adding port with out-of-bound id %u, max. supported id: %u \n " ,
cpkt - > id , portdev - > config . max_nr_ports - 1 ) ;
break ;
}
add_port ( portdev , cpkt - > id ) ;
break ;
case VIRTIO_CONSOLE_PORT_REMOVE :
2010-09-02 18:38:29 +05:30
unplug_port ( port ) ;
2010-05-19 22:15:48 -06:00
break ;
2009-12-21 21:03:25 +05:30
case VIRTIO_CONSOLE_CONSOLE_PORT :
if ( ! cpkt - > value )
break ;
if ( is_console_port ( port ) )
break ;
init_port_console ( port ) ;
2011-09-22 23:44:23 +05:30
complete ( & early_console_added ) ;
2009-12-21 21:03:25 +05:30
/*
* Could remove the port here in case init fails - but
* have to notify the host first .
*/
break ;
2010-05-06 02:05:09 +05:30
case VIRTIO_CONSOLE_RESIZE : {
struct {
__u16 rows ;
__u16 cols ;
} size ;
2009-12-21 21:03:25 +05:30
if ( ! is_console_port ( port ) )
break ;
2010-05-06 02:05:09 +05:30
memcpy ( & size , buf - > buf + buf - > offset + sizeof ( * cpkt ) ,
sizeof ( size ) ) ;
set_console_size ( port , size . rows , size . cols ) ;
2009-12-21 21:03:25 +05:30
port - > cons . hvc - > irq_requested = 1 ;
resize_console ( port ) ;
break ;
2010-05-06 02:05:09 +05:30
}
2009-12-21 21:49:30 +05:30
case VIRTIO_CONSOLE_PORT_OPEN :
port - > host_connected = cpkt - > value ;
wake_up_interruptible ( & port - > waitqueue ) ;
2010-05-19 22:15:50 -06:00
/*
* If the host port got closed and the host had any
* unconsumed buffers , we ' ll be able to reclaim them
* now .
*/
spin_lock_irq ( & port - > outvq_lock ) ;
reclaim_consumed_buffers ( port ) ;
spin_unlock_irq ( & port - > outvq_lock ) ;
2010-09-02 18:47:52 +05:30
/*
* If the guest is connected , it ' ll be interested in
* knowing the host connection state changed .
*/
send_sigio_to_port ( port ) ;
2009-12-21 21:49:30 +05:30
break ;
2009-12-21 21:57:40 +05:30
case VIRTIO_CONSOLE_PORT_NAME :
2011-09-14 13:06:40 +05:30
/*
* If we woke up after hibernation , we can get this
* again . Skip it in that case .
*/
if ( port - > name )
break ;
2009-12-21 21:57:40 +05:30
/*
* Skip the size of the header and the cpkt to get the size
* of the name that was sent
*/
name_size = buf - > len - buf - > offset - sizeof ( * cpkt ) + 1 ;
port - > name = kmalloc ( name_size , GFP_KERNEL ) ;
if ( ! port - > name ) {
dev_err ( port - > dev ,
" Not enough space to store port name \n " ) ;
break ;
}
strncpy ( port - > name , buf - > buf + buf - > offset + sizeof ( * cpkt ) ,
name_size - 1 ) ;
port - > name [ name_size - 1 ] = 0 ;
/*
* Since we only have one sysfs attribute , ' name ' ,
* create it only if we have a name for the port .
*/
err = sysfs_create_group ( & port - > dev - > kobj ,
& port_attribute_group ) ;
2010-03-19 17:36:43 +05:30
if ( err ) {
2009-12-21 21:57:40 +05:30
dev_err ( port - > dev ,
" Error %d creating sysfs device attributes \n " ,
err ) ;
2010-03-19 17:36:43 +05:30
} else {
/*
* Generate a udev event so that appropriate
* symlinks can be created based on udev
* rules .
*/
kobject_uevent ( & port - > dev - > kobj , KOBJ_CHANGE ) ;
}
2009-12-21 21:57:40 +05:30
break ;
2009-12-21 21:03:25 +05:30
}
}
static void control_work_handler ( struct work_struct * work )
{
struct ports_device * portdev ;
struct virtqueue * vq ;
struct port_buffer * buf ;
unsigned int len ;
portdev = container_of ( work , struct ports_device , control_work ) ;
vq = portdev - > c_ivq ;
spin_lock ( & portdev - > cvq_lock ) ;
2010-04-12 16:18:32 +03:00
while ( ( buf = virtqueue_get_buf ( vq , & len ) ) ) {
2009-12-21 21:03:25 +05:30
spin_unlock ( & portdev - > cvq_lock ) ;
buf - > len = len ;
buf - > offset = 0 ;
handle_control_message ( portdev , buf ) ;
spin_lock ( & portdev - > cvq_lock ) ;
if ( add_inbuf ( portdev - > c_ivq , buf ) < 0 ) {
dev_warn ( & portdev - > vdev - > dev ,
" Error adding buffer to queue \n " ) ;
free_buf ( buf ) ;
}
}
spin_unlock ( & portdev - > cvq_lock ) ;
}
2011-01-31 13:06:36 +05:30
static void out_intr ( struct virtqueue * vq )
{
struct port * port ;
port = find_port_by_vq ( vq - > vdev - > priv , vq ) ;
if ( ! port )
return ;
wake_up_interruptible ( & port - > waitqueue ) ;
}
2009-12-21 21:03:25 +05:30
static void in_intr ( struct virtqueue * vq )
{
struct port * port ;
unsigned long flags ;
port = find_port_by_vq ( vq - > vdev - > priv , vq ) ;
if ( ! port )
return ;
spin_lock_irqsave ( & port - > inbuf_lock , flags ) ;
2011-09-14 13:06:43 +05:30
port - > inbuf = get_inbuf ( port ) ;
2009-12-21 21:03:25 +05:30
2009-12-21 22:15:30 +05:30
/*
* Don ' t queue up data when port is closed . This condition
* can be reached when a console port is not yet connected ( no
* tty is spawned ) and the host sends out data to console
* ports . For generic serial ports , the host won ' t
* ( shouldn ' t ) send data till the guest is connected .
*/
if ( ! port - > guest_connected )
discard_port_data ( port ) ;
2009-12-21 21:03:25 +05:30
spin_unlock_irqrestore ( & port - > inbuf_lock , flags ) ;
2009-12-21 21:49:30 +05:30
wake_up_interruptible ( & port - > waitqueue ) ;
2010-09-02 18:47:53 +05:30
/* Send a SIGIO indicating new data in case the process asked for it */
send_sigio_to_port ( port ) ;
2009-12-21 21:03:25 +05:30
if ( is_console_port ( port ) & & hvc_poll ( port - > cons . hvc ) )
hvc_kick ( ) ;
}
static void control_intr ( struct virtqueue * vq )
{
struct ports_device * portdev ;
portdev = vq - > vdev - > priv ;
schedule_work ( & portdev - > control_work ) ;
}
2009-12-21 22:22:08 +05:30
static void config_intr ( struct virtio_device * vdev )
{
struct ports_device * portdev ;
portdev = vdev - > priv ;
2010-05-19 22:15:48 -06:00
2010-05-06 02:05:07 +05:30
if ( ! use_multiport ( portdev ) ) {
2010-05-06 02:05:08 +05:30
struct port * port ;
u16 rows , cols ;
vdev - > config - > get ( vdev ,
offsetof ( struct virtio_console_config , cols ) ,
& cols , sizeof ( u16 ) ) ;
vdev - > config - > get ( vdev ,
offsetof ( struct virtio_console_config , rows ) ,
& rows , sizeof ( u16 ) ) ;
port = find_port_by_id ( portdev , 0 ) ;
set_console_size ( port , rows , cols ) ;
2010-05-06 02:05:07 +05:30
/*
* We ' ll use this way of resizing only for legacy
* support . For newer userspace
* ( VIRTIO_CONSOLE_F_MULTPORT + ) , use control messages
* to indicate console size changes so that it can be
* done per - port .
*/
2010-05-06 02:05:08 +05:30
resize_console ( port ) ;
2010-05-06 02:05:07 +05:30
}
2009-12-21 22:22:08 +05:30
}
2010-01-18 19:15:11 +05:30
static int init_vqs ( struct ports_device * portdev )
{
vq_callback_t * * io_callbacks ;
char * * io_names ;
struct virtqueue * * vqs ;
2009-12-21 21:03:25 +05:30
u32 i , j , nr_ports , nr_queues ;
2010-01-18 19:15:11 +05:30
int err ;
2009-12-21 21:03:25 +05:30
nr_ports = portdev - > config . max_nr_ports ;
nr_queues = use_multiport ( portdev ) ? ( nr_ports + 1 ) * 2 : 2 ;
2010-01-18 19:15:11 +05:30
vqs = kmalloc ( nr_queues * sizeof ( struct virtqueue * ) , GFP_KERNEL ) ;
io_callbacks = kmalloc ( nr_queues * sizeof ( vq_callback_t * ) , GFP_KERNEL ) ;
io_names = kmalloc ( nr_queues * sizeof ( char * ) , GFP_KERNEL ) ;
portdev - > in_vqs = kmalloc ( nr_ports * sizeof ( struct virtqueue * ) ,
GFP_KERNEL ) ;
portdev - > out_vqs = kmalloc ( nr_ports * sizeof ( struct virtqueue * ) ,
GFP_KERNEL ) ;
2010-11-06 10:06:50 +01:00
if ( ! vqs | | ! io_callbacks | | ! io_names | | ! portdev - > in_vqs | |
2011-09-14 13:06:39 +05:30
! portdev - > out_vqs ) {
2010-01-18 19:15:11 +05:30
err = - ENOMEM ;
2010-11-06 10:06:50 +01:00
goto free ;
2010-01-18 19:15:11 +05:30
}
2009-12-21 21:03:25 +05:30
/*
* For backward compat ( newer host but older guest ) , the host
* spawns a console port first and also inits the vqs for port
* 0 before others .
*/
j = 0 ;
io_callbacks [ j ] = in_intr ;
2011-01-31 13:06:36 +05:30
io_callbacks [ j + 1 ] = out_intr ;
2009-12-21 21:03:25 +05:30
io_names [ j ] = " input " ;
io_names [ j + 1 ] = " output " ;
j + = 2 ;
if ( use_multiport ( portdev ) ) {
io_callbacks [ j ] = control_intr ;
io_callbacks [ j + 1 ] = NULL ;
io_names [ j ] = " control-i " ;
io_names [ j + 1 ] = " control-o " ;
for ( i = 1 ; i < nr_ports ; i + + ) {
j + = 2 ;
io_callbacks [ j ] = in_intr ;
2011-01-31 13:06:36 +05:30
io_callbacks [ j + 1 ] = out_intr ;
2009-12-21 21:03:25 +05:30
io_names [ j ] = " input " ;
io_names [ j + 1 ] = " output " ;
}
}
2010-01-18 19:15:11 +05:30
/* Find the queues. */
err = portdev - > vdev - > config - > find_vqs ( portdev - > vdev , nr_queues , vqs ,
io_callbacks ,
( const char * * ) io_names ) ;
if ( err )
2010-11-06 10:06:50 +01:00
goto free ;
2010-01-18 19:15:11 +05:30
2009-12-21 21:03:25 +05:30
j = 0 ;
2010-01-18 19:15:11 +05:30
portdev - > in_vqs [ 0 ] = vqs [ 0 ] ;
portdev - > out_vqs [ 0 ] = vqs [ 1 ] ;
2009-12-21 21:03:25 +05:30
j + = 2 ;
if ( use_multiport ( portdev ) ) {
portdev - > c_ivq = vqs [ j ] ;
portdev - > c_ovq = vqs [ j + 1 ] ;
for ( i = 1 ; i < nr_ports ; i + + ) {
j + = 2 ;
portdev - > in_vqs [ i ] = vqs [ j ] ;
portdev - > out_vqs [ i ] = vqs [ j + 1 ] ;
}
}
2010-01-18 19:15:11 +05:30
kfree ( io_names ) ;
2010-11-06 10:06:50 +01:00
kfree ( io_callbacks ) ;
2010-01-18 19:15:11 +05:30
kfree ( vqs ) ;
return 0 ;
2010-11-06 10:06:50 +01:00
free :
2010-01-18 19:15:11 +05:30
kfree ( portdev - > out_vqs ) ;
kfree ( portdev - > in_vqs ) ;
2010-11-06 10:06:50 +01:00
kfree ( io_names ) ;
kfree ( io_callbacks ) ;
2010-01-18 19:15:11 +05:30
kfree ( vqs ) ;
2010-11-06 10:06:50 +01:00
2010-01-18 19:15:11 +05:30
return err ;
}
2009-12-21 21:36:04 +05:30
static const struct file_operations portdev_fops = {
. owner = THIS_MODULE ,
} ;
2011-12-22 16:58:27 +05:30
static void remove_vqs ( struct ports_device * portdev )
{
portdev - > vdev - > config - > del_vqs ( portdev - > vdev ) ;
kfree ( portdev - > in_vqs ) ;
kfree ( portdev - > out_vqs ) ;
}
static void remove_controlq_data ( struct ports_device * portdev )
{
struct port_buffer * buf ;
unsigned int len ;
if ( ! use_multiport ( portdev ) )
return ;
while ( ( buf = virtqueue_get_buf ( portdev - > c_ivq , & len ) ) )
free_buf ( buf ) ;
while ( ( buf = virtqueue_detach_unused_buf ( portdev - > c_ivq ) ) )
free_buf ( buf ) ;
}
2010-01-18 19:15:07 +05:30
/*
* Once we ' re further in boot , we get probed like any other virtio
* device .
2009-12-21 21:03:25 +05:30
*
* If the host also supports multiple console ports , we check the
* config space to see how many ports the host has spawned . We
* initialize each port found .
2010-01-18 19:15:07 +05:30
*/
static int __devinit virtcons_probe ( struct virtio_device * vdev )
{
struct ports_device * portdev ;
int err ;
2009-12-21 21:03:25 +05:30
bool multiport ;
2011-09-22 23:44:23 +05:30
bool early = early_put_chars ! = NULL ;
/* Ensure to read early_put_chars now */
barrier ( ) ;
2010-01-18 19:15:07 +05:30
portdev = kmalloc ( sizeof ( * portdev ) , GFP_KERNEL ) ;
if ( ! portdev ) {
err = - ENOMEM ;
goto fail ;
}
/* Attach this portdev to this virtio_device, and vice-versa. */
portdev - > vdev = vdev ;
vdev - > priv = portdev ;
2009-12-21 21:36:04 +05:30
spin_lock_irq ( & pdrvdata_lock ) ;
portdev - > drv_index = pdrvdata . index + + ;
spin_unlock_irq ( & pdrvdata_lock ) ;
portdev - > chr_major = register_chrdev ( 0 , " virtio-portsdev " ,
& portdev_fops ) ;
if ( portdev - > chr_major < 0 ) {
dev_err ( & vdev - > dev ,
" Error %d registering chrdev for device %u \n " ,
portdev - > chr_major , portdev - > drv_index ) ;
err = portdev - > chr_major ;
goto free ;
}
2009-12-21 21:03:25 +05:30
multiport = false ;
portdev - > config . max_nr_ports = 1 ;
2011-08-14 17:52:31 +03:00
if ( virtio_config_val ( vdev , VIRTIO_CONSOLE_F_MULTIPORT ,
offsetof ( struct virtio_console_config ,
max_nr_ports ) ,
& portdev - > config . max_nr_ports ) = = 0 )
2009-12-21 21:03:25 +05:30
multiport = true ;
2010-01-18 19:15:11 +05:30
err = init_vqs ( portdev ) ;
if ( err < 0 ) {
dev_err ( & vdev - > dev , " Error %d initializing vqs \n " , err ) ;
2009-12-21 21:36:04 +05:30
goto free_chrdev ;
2010-01-18 19:15:11 +05:30
}
2010-01-18 19:15:07 +05:30
2009-12-21 21:03:25 +05:30
spin_lock_init ( & portdev - > ports_lock ) ;
INIT_LIST_HEAD ( & portdev - > ports ) ;
if ( multiport ) {
2010-02-24 10:37:44 +05:30
unsigned int nr_added_bufs ;
2009-12-21 21:03:25 +05:30
spin_lock_init ( & portdev - > cvq_lock ) ;
INIT_WORK ( & portdev - > control_work , & control_work_handler ) ;
2010-02-24 10:37:44 +05:30
nr_added_bufs = fill_queue ( portdev - > c_ivq , & portdev - > cvq_lock ) ;
if ( ! nr_added_bufs ) {
2010-02-12 10:32:17 +05:30
dev_err ( & vdev - > dev ,
" Error allocating buffers for control queue \n " ) ;
err = - ENOMEM ;
goto free_vqs ;
}
2010-05-19 22:15:49 -06:00
} else {
/*
* For backward compatibility : Create a console port
* if we ' re running on older host .
*/
add_port ( portdev , 0 ) ;
2009-12-21 21:03:25 +05:30
}
2010-09-02 18:11:49 +05:30
spin_lock_irq ( & pdrvdata_lock ) ;
list_add_tail ( & portdev - > list , & pdrvdata . portdevs ) ;
spin_unlock_irq ( & pdrvdata_lock ) ;
2010-05-19 22:15:48 -06:00
__send_control_msg ( portdev , VIRTIO_CONSOLE_BAD_ID ,
VIRTIO_CONSOLE_DEVICE_READY , 1 ) ;
2011-09-22 23:44:23 +05:30
/*
* If there was an early virtio console , assume that there are no
* other consoles . We need to wait until the hvc_alloc matches the
* hvc_instantiate , otherwise tty_open will complain , resulting in
* a " Warning: unable to open an initial console " boot failure .
* Without multiport this is done in add_port above . With multiport
* this might take some host < - > guest communication - thus we have to
* wait .
*/
if ( multiport & & early )
wait_for_completion ( & early_console_added ) ;
2007-10-22 11:03:39 +10:00
return 0 ;
2010-02-12 10:32:17 +05:30
free_vqs :
drivers/char: Eliminate use after free
In each case, the first argument to send_control_msg or __send_control_msg,
respectively, has either not been successfully allocated or has been freed
at the point of the call. In the first case, the first argument, port, is
only used to access the portdev and id fields, in order to call
__send_control_msg. Thus it seems possible instead to call
__send_control_msg directly. In the second case, the call to
__send_control_msg is moved up to a place where it seems like the first
argument, portdev, has been initialized sufficiently to make the call to
__send_control_msg meaningful.
This has only been compile tested.
A simplified version of the semantic match that finds this problem is as
follows: (http://coccinelle.lip6.fr/)
// <smpl>
@free@
expression E;
position p;
@@
kfree@p(E)
@@
expression free.E, subE<=free.E, E1;
position free.p;
@@
kfree@p(E)
...
(
subE = E1
|
* E
)
// </smpl>
Signed-off-by: Julia Lawall <julia@diku.dk>
Acked-by: Amit Shah <amit.shah@redhat.com>
Signed-off-by: Rusty Russell <rusty@rustcorp.com.au>
2010-05-15 11:45:53 +02:00
/* The host might want to notify mgmt sw about device add failure */
__send_control_msg ( portdev , VIRTIO_CONSOLE_BAD_ID ,
VIRTIO_CONSOLE_DEVICE_READY , 0 ) ;
2011-12-22 16:58:27 +05:30
remove_vqs ( portdev ) ;
2009-12-21 21:36:04 +05:30
free_chrdev :
unregister_chrdev ( portdev - > chr_major , " virtio-portsdev " ) ;
2007-10-22 11:03:39 +10:00
free :
2010-01-18 19:15:07 +05:30
kfree ( portdev ) ;
2007-10-22 11:03:39 +10:00
fail :
return err ;
}
2010-02-12 10:32:16 +05:30
static void virtcons_remove ( struct virtio_device * vdev )
{
struct ports_device * portdev ;
struct port * port , * port2 ;
portdev = vdev - > priv ;
2010-09-02 18:11:49 +05:30
spin_lock_irq ( & pdrvdata_lock ) ;
list_del ( & portdev - > list ) ;
spin_unlock_irq ( & pdrvdata_lock ) ;
2010-09-02 18:11:40 +05:30
/* Disable interrupts for vqs */
vdev - > config - > reset ( vdev ) ;
/* Finish up work that's lined up */
2010-02-12 10:32:16 +05:30
cancel_work_sync ( & portdev - > control_work ) ;
list_for_each_entry_safe ( port , port2 , & portdev - > ports , list )
2010-09-02 18:38:29 +05:30
unplug_port ( port ) ;
2010-02-12 10:32:16 +05:30
unregister_chrdev ( portdev - > chr_major , " virtio-portsdev " ) ;
2010-09-02 18:38:30 +05:30
/*
* When yanking out a device , we immediately lose the
* ( device - side ) queues . So there ' s no point in keeping the
* guest side around till we drop our final reference . This
* also means that any ports which are in an open state will
* have to just stop using the port , as the vqs are going
* away .
*/
2011-12-22 16:58:27 +05:30
remove_controlq_data ( portdev ) ;
remove_vqs ( portdev ) ;
2010-02-12 10:32:16 +05:30
kfree ( portdev ) ;
}
2007-10-22 11:03:39 +10:00
static struct virtio_device_id id_table [ ] = {
{ VIRTIO_ID_CONSOLE , VIRTIO_DEV_ANY_ID } ,
{ 0 } ,
} ;
2008-11-25 13:36:26 +01:00
static unsigned int features [ ] = {
VIRTIO_CONSOLE_F_SIZE ,
2010-05-19 22:15:46 -06:00
VIRTIO_CONSOLE_F_MULTIPORT ,
2008-11-25 13:36:26 +01:00
} ;
2011-12-22 16:58:28 +05:30
# ifdef CONFIG_PM
static int virtcons_freeze ( struct virtio_device * vdev )
{
struct ports_device * portdev ;
struct port * port ;
portdev = vdev - > priv ;
vdev - > config - > reset ( vdev ) ;
2012-01-06 16:19:08 +05:30
virtqueue_disable_cb ( portdev - > c_ivq ) ;
2011-12-22 16:58:28 +05:30
cancel_work_sync ( & portdev - > control_work ) ;
2012-01-06 16:19:08 +05:30
/*
* Once more : if control_work_handler ( ) was running , it would
* enable the cb as the last step .
*/
virtqueue_disable_cb ( portdev - > c_ivq ) ;
2011-12-22 16:58:28 +05:30
remove_controlq_data ( portdev ) ;
list_for_each_entry ( port , & portdev - > ports , list ) {
2012-01-06 16:19:08 +05:30
virtqueue_disable_cb ( port - > in_vq ) ;
virtqueue_disable_cb ( port - > out_vq ) ;
2011-12-22 16:58:28 +05:30
/*
* We ' ll ask the host later if the new invocation has
* the port opened or closed .
*/
port - > host_connected = false ;
remove_port_data ( port ) ;
}
remove_vqs ( portdev ) ;
return 0 ;
}
static int virtcons_restore ( struct virtio_device * vdev )
{
struct ports_device * portdev ;
struct port * port ;
int ret ;
portdev = vdev - > priv ;
ret = init_vqs ( portdev ) ;
if ( ret )
return ret ;
if ( use_multiport ( portdev ) )
fill_queue ( portdev - > c_ivq , & portdev - > cvq_lock ) ;
list_for_each_entry ( port , & portdev - > ports , list ) {
port - > in_vq = portdev - > in_vqs [ port - > id ] ;
port - > out_vq = portdev - > out_vqs [ port - > id ] ;
fill_queue ( port - > in_vq , & port - > inbuf_lock ) ;
/* Get port open/close status on the host */
send_control_msg ( port , VIRTIO_CONSOLE_PORT_READY , 1 ) ;
2012-04-25 14:40:39 +05:30
/*
* If a port was open at the time of suspending , we
* have to let the host know that it ' s still open .
*/
if ( port - > guest_connected )
send_control_msg ( port , VIRTIO_CONSOLE_PORT_OPEN , 1 ) ;
2011-12-22 16:58:28 +05:30
}
return 0 ;
}
# endif
2007-10-22 11:03:39 +10:00
static struct virtio_driver virtio_console = {
2008-11-25 13:36:26 +01:00
. feature_table = features ,
. feature_table_size = ARRAY_SIZE ( features ) ,
2007-10-22 11:03:39 +10:00
. driver . name = KBUILD_MODNAME ,
. driver . owner = THIS_MODULE ,
. id_table = id_table ,
. probe = virtcons_probe ,
2010-02-12 10:32:16 +05:30
. remove = virtcons_remove ,
2009-12-21 22:22:08 +05:30
. config_changed = config_intr ,
2011-12-22 16:58:28 +05:30
# ifdef CONFIG_PM
. freeze = virtcons_freeze ,
. restore = virtcons_restore ,
# endif
2007-10-22 11:03:39 +10:00
} ;
static int __init init ( void )
{
2009-12-21 21:36:04 +05:30
int err ;
pdrvdata . class = class_create ( THIS_MODULE , " virtio-ports " ) ;
if ( IS_ERR ( pdrvdata . class ) ) {
err = PTR_ERR ( pdrvdata . class ) ;
pr_err ( " Error %d creating virtio-ports class \n " , err ) ;
return err ;
}
2009-12-21 22:36:21 +05:30
pdrvdata . debugfs_dir = debugfs_create_dir ( " virtio-ports " , NULL ) ;
if ( ! pdrvdata . debugfs_dir ) {
pr_warning ( " Error %ld creating debugfs dir for virtio-ports \n " ,
PTR_ERR ( pdrvdata . debugfs_dir ) ) ;
}
2010-01-18 19:15:05 +05:30
INIT_LIST_HEAD ( & pdrvdata . consoles ) ;
2010-09-02 18:11:49 +05:30
INIT_LIST_HEAD ( & pdrvdata . portdevs ) ;
2010-01-18 19:15:05 +05:30
2012-09-01 23:49:37 +04:00
err = register_virtio_driver ( & virtio_console ) ;
if ( err < 0 ) {
pr_err ( " Error %d registering virtio driver \n " , err ) ;
goto free ;
}
return 0 ;
free :
if ( pdrvdata . debugfs_dir )
debugfs_remove_recursive ( pdrvdata . debugfs_dir ) ;
class_destroy ( pdrvdata . class ) ;
return err ;
2007-10-22 11:03:39 +10:00
}
2010-02-12 10:32:16 +05:30
static void __exit fini ( void )
{
unregister_virtio_driver ( & virtio_console ) ;
class_destroy ( pdrvdata . class ) ;
if ( pdrvdata . debugfs_dir )
debugfs_remove_recursive ( pdrvdata . debugfs_dir ) ;
}
2007-10-22 11:03:39 +10:00
module_init ( init ) ;
2010-02-12 10:32:16 +05:30
module_exit ( fini ) ;
2007-10-22 11:03:39 +10:00
MODULE_DEVICE_TABLE ( virtio , id_table ) ;
MODULE_DESCRIPTION ( " Virtio console driver " ) ;
MODULE_LICENSE ( " GPL " ) ;