2008-07-30 12:06:12 -07:00
/*
* Copyright © 2008 Intel Corporation
*
* Permission is hereby granted , free of charge , to any person obtaining a
* copy of this software and associated documentation files ( the " Software " ) ,
* to deal in the Software without restriction , including without limitation
* the rights to use , copy , modify , merge , publish , distribute , sublicense ,
* and / or sell copies of the Software , and to permit persons to whom the
* Software is furnished to do so , subject to the following conditions :
*
* The above copyright notice and this permission notice ( including the next
* paragraph ) shall be included in all copies or substantial portions of the
* Software .
*
* THE SOFTWARE IS PROVIDED " AS IS " , WITHOUT WARRANTY OF ANY KIND , EXPRESS OR
* IMPLIED , INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY ,
* FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT . IN NO EVENT SHALL
* THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM , DAMAGES OR OTHER
* LIABILITY , WHETHER IN AN ACTION OF CONTRACT , TORT OR OTHERWISE , ARISING
* FROM , OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS
* IN THE SOFTWARE .
*
* Authors :
* Eric Anholt < eric @ anholt . net >
*
*/
# include <linux/types.h>
# include <linux/slab.h>
# include <linux/mm.h>
# include <linux/uaccess.h>
# include <linux/fs.h>
# include <linux/file.h>
# include <linux/module.h>
# include <linux/mman.h>
# include <linux/pagemap.h>
2011-06-27 16:18:18 -07:00
# include <linux/shmem_fs.h>
2011-11-25 15:21:02 +00:00
# include <linux/dma-buf.h>
2012-10-02 18:01:07 +01:00
# include <drm/drmP.h>
2008-07-30 12:06:12 -07:00
/** @file drm_gem.c
*
* This file provides some of the base ioctls and library routines for
* the graphics memory manager implemented by each device driver .
*
* Because various devices have different requirements in terms of
* synchronization and migration strategies , implementing that is left up to
* the driver , and all that the general API provides should be generic - -
* allocating objects , reading / writing data with the cpu , freeing objects .
* Even there , platform - dependent optimizations for reading / writing data with
* the CPU mean we ' ll likely hook those out to driver - specific calls . However ,
* the DRI2 implementation wants to have at least allocate / mmap be generic .
*
* The goal was to have swap - backed object allocation managed through
* struct file . However , file descriptors as handles to a struct file have
* two major failings :
* - Process limits prevent more than 1024 or so being used at a time by
* default .
* - Inability to allocate high fds will aggravate the X Server ' s select ( )
* handling , and likely that of many GL client applications as well .
*
* This led to a plan of using our own integer IDs ( called handles , following
* DRM terminology ) to mimic fds , and implement the fd syscalls we need as
* ioctls . The objects themselves will still include the struct file so
* that we can transition to fds if the required kernel infrastructure shows
* up at a later date , and as our interface with shmfs for memory allocation .
*/
2008-11-05 10:31:53 -08:00
/*
* We make up offsets for buffer objects so we can recognize them at
* mmap time .
*/
2010-05-27 13:40:27 -06:00
/* pgoff in mmap is an unsigned long, so we need to make sure that
* the faked up offset will fit
*/
# if BITS_PER_LONG == 64
2008-11-05 10:31:53 -08:00
# define DRM_FILE_PAGE_OFFSET_START ((0xFFFFFFFFUL >> PAGE_SHIFT) + 1)
# define DRM_FILE_PAGE_OFFSET_SIZE ((0xFFFFFFFFUL >> PAGE_SHIFT) * 16)
2010-05-27 13:40:27 -06:00
# else
# define DRM_FILE_PAGE_OFFSET_START ((0xFFFFFFFUL >> PAGE_SHIFT) + 1)
# define DRM_FILE_PAGE_OFFSET_SIZE ((0xFFFFFFFUL >> PAGE_SHIFT) * 16)
# endif
2008-11-05 10:31:53 -08:00
2008-07-30 12:06:12 -07:00
/**
* Initialize the GEM device fields
*/
int
drm_gem_init ( struct drm_device * dev )
{
2008-11-05 10:31:53 -08:00
struct drm_gem_mm * mm ;
2008-07-30 12:06:12 -07:00
spin_lock_init ( & dev - > object_name_lock ) ;
idr_init ( & dev - > object_name_idr ) ;
2008-11-05 10:31:53 -08:00
2009-03-24 12:23:04 -07:00
mm = kzalloc ( sizeof ( struct drm_gem_mm ) , GFP_KERNEL ) ;
2008-11-05 10:31:53 -08:00
if ( ! mm ) {
DRM_ERROR ( " out of memory \n " ) ;
return - ENOMEM ;
}
dev - > mm_private = mm ;
2011-01-12 21:11:33 +00:00
if ( drm_ht_create ( & mm - > offset_hash , 12 ) ) {
2009-03-24 12:23:04 -07:00
kfree ( mm ) ;
2008-11-05 10:31:53 -08:00
return - ENOMEM ;
}
if ( drm_mm_init ( & mm - > offset_manager , DRM_FILE_PAGE_OFFSET_START ,
DRM_FILE_PAGE_OFFSET_SIZE ) ) {
drm_ht_remove ( & mm - > offset_hash ) ;
2009-03-24 12:23:04 -07:00
kfree ( mm ) ;
2008-11-05 10:31:53 -08:00
return - ENOMEM ;
}
2008-07-30 12:06:12 -07:00
return 0 ;
}
2008-11-05 10:31:53 -08:00
void
drm_gem_destroy ( struct drm_device * dev )
{
struct drm_gem_mm * mm = dev - > mm_private ;
drm_mm_takedown ( & mm - > offset_manager ) ;
drm_ht_remove ( & mm - > offset_hash ) ;
2009-03-24 12:23:04 -07:00
kfree ( mm ) ;
2008-11-05 10:31:53 -08:00
dev - > mm_private = NULL ;
}
2010-04-09 19:05:04 +00:00
/**
2011-06-07 14:17:51 +01:00
* Initialize an already allocated GEM object of the specified size with
2010-04-09 19:05:04 +00:00
* shmfs backing store .
*/
int drm_gem_object_init ( struct drm_device * dev ,
struct drm_gem_object * obj , size_t size )
{
BUG_ON ( ( size & ( PAGE_SIZE - 1 ) ) ! = 0 ) ;
obj - > dev = dev ;
obj - > filp = shmem_file_setup ( " drm mm object " , size , VM_NORESERVE ) ;
if ( IS_ERR ( obj - > filp ) )
2012-01-29 16:45:32 +00:00
return PTR_ERR ( obj - > filp ) ;
2010-04-09 19:05:04 +00:00
kref_init ( & obj - > refcount ) ;
2010-09-27 16:17:17 +10:00
atomic_set ( & obj - > handle_count , 0 ) ;
2010-04-09 19:05:04 +00:00
obj - > size = size ;
return 0 ;
}
EXPORT_SYMBOL ( drm_gem_object_init ) ;
2011-06-07 14:17:51 +01:00
/**
* Initialize an already allocated GEM object of the specified size with
* no GEM provided backing store . Instead the caller is responsible for
* backing the object and handling it .
*/
int drm_gem_private_object_init ( struct drm_device * dev ,
struct drm_gem_object * obj , size_t size )
{
BUG_ON ( ( size & ( PAGE_SIZE - 1 ) ) ! = 0 ) ;
obj - > dev = dev ;
obj - > filp = NULL ;
kref_init ( & obj - > refcount ) ;
atomic_set ( & obj - > handle_count , 0 ) ;
obj - > size = size ;
return 0 ;
}
EXPORT_SYMBOL ( drm_gem_private_object_init ) ;
2008-07-30 12:06:12 -07:00
/**
* Allocate a GEM object of the specified size with shmfs backing store
*/
struct drm_gem_object *
drm_gem_object_alloc ( struct drm_device * dev , size_t size )
{
struct drm_gem_object * obj ;
2009-06-10 12:43:49 -07:00
obj = kzalloc ( sizeof ( * obj ) , GFP_KERNEL ) ;
2009-07-13 23:20:21 +02:00
if ( ! obj )
goto free ;
2008-07-30 12:06:12 -07:00
2010-04-09 19:05:04 +00:00
if ( drm_gem_object_init ( dev , obj , size ) ! = 0 )
2009-07-13 23:20:21 +02:00
goto free ;
2008-07-30 12:06:12 -07:00
if ( dev - > driver - > gem_init_object ! = NULL & &
dev - > driver - > gem_init_object ( obj ) ! = 0 ) {
2009-07-13 23:20:21 +02:00
goto fput ;
2008-07-30 12:06:12 -07:00
}
return obj ;
2009-07-13 23:20:21 +02:00
fput :
2010-04-09 19:05:04 +00:00
/* Object_init mangles the global counters - readjust them. */
2009-07-13 23:20:21 +02:00
fput ( obj - > filp ) ;
free :
kfree ( obj ) ;
return NULL ;
2008-07-30 12:06:12 -07:00
}
EXPORT_SYMBOL ( drm_gem_object_alloc ) ;
2012-05-20 17:31:16 +01:00
static void
drm_gem_remove_prime_handles ( struct drm_gem_object * obj , struct drm_file * filp )
{
if ( obj - > import_attach ) {
drm/prime: keep a reference from the handle to exported dma-buf (v6)
Currently we have a problem with this:
1. i915: create gem object
2. i915: export gem object to prime
3. radeon: import gem object
4. close prime fd
5. radeon: unref object
6. i915: unref object
i915 has an imported object reference in its file priv, that isn't
cleaned up properly until fd close. The reference gets added at step 2,
but at step 6 we don't have enough info to clean it up.
The solution is to take a reference on the dma-buf when we export it,
and drop the reference when the gem handle goes away.
So when we export a dma_buf from a gem object, we keep track of it
with the handle, we take a reference to the dma_buf. When we close
the handle (i.e. userspace is finished with the buffer), we drop
the reference to the dma_buf, and it gets collected.
This patch isn't meant to fix any other problem or bikesheds, and it doesn't
fix any races with other scenarios.
v1.1: move export symbol line back up.
v2: okay I had to do a bit more, as the first patch showed a leak
on one of my tests, that I found using the dma-buf debugfs support,
the problem case is exporting a buffer twice with the same handle,
we'd add another export handle for it unnecessarily, however
we now fail if we try to export the same object with a different gem handle,
however I'm not sure if that is a case I want to support, and I've
gotten the code to WARN_ON if we hit something like that.
v2.1: rebase this patch, write better commit msg.
v3: cleanup error handling, track import vs export in linked list,
these two patches were separate previously, but seem to work better
like this.
v4: danvet is correct, this code is no longer useful, since the buffer
better exist, so remove it.
v5: always take a reference to the dma buf object, import or export.
(Imre Deak contributed this originally)
v6: square the circle, remove import vs export tracking now
that there is no difference
Reviewed-by: Daniel Vetter <daniel.vetter@ffwll.ch>
Cc: stable@vger.kernel.org
Signed-off-by: Dave Airlie <airlied@redhat.com>
2013-04-22 09:54:36 +10:00
drm_prime_remove_buf_handle ( & filp - > prime ,
2012-05-20 17:31:16 +01:00
obj - > import_attach - > dmabuf ) ;
}
if ( obj - > export_dma_buf ) {
drm/prime: keep a reference from the handle to exported dma-buf (v6)
Currently we have a problem with this:
1. i915: create gem object
2. i915: export gem object to prime
3. radeon: import gem object
4. close prime fd
5. radeon: unref object
6. i915: unref object
i915 has an imported object reference in its file priv, that isn't
cleaned up properly until fd close. The reference gets added at step 2,
but at step 6 we don't have enough info to clean it up.
The solution is to take a reference on the dma-buf when we export it,
and drop the reference when the gem handle goes away.
So when we export a dma_buf from a gem object, we keep track of it
with the handle, we take a reference to the dma_buf. When we close
the handle (i.e. userspace is finished with the buffer), we drop
the reference to the dma_buf, and it gets collected.
This patch isn't meant to fix any other problem or bikesheds, and it doesn't
fix any races with other scenarios.
v1.1: move export symbol line back up.
v2: okay I had to do a bit more, as the first patch showed a leak
on one of my tests, that I found using the dma-buf debugfs support,
the problem case is exporting a buffer twice with the same handle,
we'd add another export handle for it unnecessarily, however
we now fail if we try to export the same object with a different gem handle,
however I'm not sure if that is a case I want to support, and I've
gotten the code to WARN_ON if we hit something like that.
v2.1: rebase this patch, write better commit msg.
v3: cleanup error handling, track import vs export in linked list,
these two patches were separate previously, but seem to work better
like this.
v4: danvet is correct, this code is no longer useful, since the buffer
better exist, so remove it.
v5: always take a reference to the dma buf object, import or export.
(Imre Deak contributed this originally)
v6: square the circle, remove import vs export tracking now
that there is no difference
Reviewed-by: Daniel Vetter <daniel.vetter@ffwll.ch>
Cc: stable@vger.kernel.org
Signed-off-by: Dave Airlie <airlied@redhat.com>
2013-04-22 09:54:36 +10:00
drm_prime_remove_buf_handle ( & filp - > prime ,
2012-05-20 17:31:16 +01:00
obj - > export_dma_buf ) ;
}
}
2008-07-30 12:06:12 -07:00
/**
* Removes the mapping from handle to filp for this object .
*/
2011-02-07 12:16:14 +10:00
int
2009-08-23 12:40:55 +03:00
drm_gem_handle_delete ( struct drm_file * filp , u32 handle )
2008-07-30 12:06:12 -07:00
{
struct drm_device * dev ;
struct drm_gem_object * obj ;
/* This is gross. The idr system doesn't let us try a delete and
* return an error code . It just spews if you fail at deleting .
* So , we have to grab a lock around finding the object and then
* doing the delete on it and dropping the refcount , or the user
* could race us to double - decrement the refcount and cause a
* use - after - free later . Given the frequency of our handle lookups ,
* we may want to use ida for number allocation and a hash table
* for the pointers , anyway .
*/
spin_lock ( & filp - > table_lock ) ;
/* Check if we currently have a reference on the object */
obj = idr_find ( & filp - > object_idr , handle ) ;
if ( obj = = NULL ) {
spin_unlock ( & filp - > table_lock ) ;
return - EINVAL ;
}
dev = obj - > dev ;
/* Release reference and decrement refcount. */
idr_remove ( & filp - > object_idr , handle ) ;
spin_unlock ( & filp - > table_lock ) ;
2012-05-20 17:31:16 +01:00
drm_gem_remove_prime_handles ( obj , filp ) ;
2011-11-25 15:21:02 +00:00
2011-06-09 00:24:59 +00:00
if ( dev - > driver - > gem_close_object )
dev - > driver - > gem_close_object ( obj , filp ) ;
2010-02-09 05:49:12 +00:00
drm_gem_object_handle_unreference_unlocked ( obj ) ;
2008-07-30 12:06:12 -07:00
return 0 ;
}
2011-02-07 12:16:14 +10:00
EXPORT_SYMBOL ( drm_gem_handle_delete ) ;
2008-07-30 12:06:12 -07:00
/**
* Create a handle for this object . This adds a handle reference
* to the object , which includes a regular reference count . Callers
* will likely want to dereference the object afterwards .
*/
int
drm_gem_handle_create ( struct drm_file * file_priv ,
struct drm_gem_object * obj ,
2009-08-23 12:40:55 +03:00
u32 * handlep )
2008-07-30 12:06:12 -07:00
{
2011-06-09 00:24:59 +00:00
struct drm_device * dev = obj - > dev ;
int ret ;
2008-07-30 12:06:12 -07:00
/*
2013-02-27 17:04:08 -08:00
* Get the user - visible handle using idr . Preload and perform
* allocation under our spinlock .
2008-07-30 12:06:12 -07:00
*/
2013-02-27 17:04:08 -08:00
idr_preload ( GFP_KERNEL ) ;
2008-07-30 12:06:12 -07:00
spin_lock ( & file_priv - > table_lock ) ;
2013-02-27 17:04:08 -08:00
ret = idr_alloc ( & file_priv - > object_idr , obj , 1 , 0 , GFP_NOWAIT ) ;
2008-07-30 12:06:12 -07:00
spin_unlock ( & file_priv - > table_lock ) ;
2013-02-27 17:04:08 -08:00
idr_preload_end ( ) ;
if ( ret < 0 )
2008-07-30 12:06:12 -07:00
return ret ;
2013-02-27 17:04:08 -08:00
* handlep = ret ;
2008-07-30 12:06:12 -07:00
drm_gem_object_handle_reference ( obj ) ;
2011-06-09 00:24:59 +00:00
if ( dev - > driver - > gem_open_object ) {
ret = dev - > driver - > gem_open_object ( obj , file_priv ) ;
if ( ret ) {
drm_gem_handle_delete ( file_priv , * handlep ) ;
return ret ;
}
}
2008-07-30 12:06:12 -07:00
return 0 ;
}
EXPORT_SYMBOL ( drm_gem_handle_create ) ;
2011-08-10 08:09:07 -05:00
/**
* drm_gem_free_mmap_offset - release a fake mmap offset for an object
* @ obj : obj in question
*
* This routine frees fake offsets allocated by drm_gem_create_mmap_offset ( ) .
*/
void
drm_gem_free_mmap_offset ( struct drm_gem_object * obj )
{
struct drm_device * dev = obj - > dev ;
struct drm_gem_mm * mm = dev - > mm_private ;
struct drm_map_list * list = & obj - > map_list ;
drm_ht_remove_item ( & mm - > offset_hash , & list - > hash ) ;
drm_mm_put_block ( list - > file_offset_node ) ;
kfree ( list - > map ) ;
list - > map = NULL ;
}
EXPORT_SYMBOL ( drm_gem_free_mmap_offset ) ;
/**
* drm_gem_create_mmap_offset - create a fake mmap offset for an object
* @ obj : obj in question
*
* GEM memory mapping works by handing back to userspace a fake mmap offset
* it can use in a subsequent mmap ( 2 ) call . The DRM core code then looks
* up the object based on the offset and sets up the various memory mapping
* structures .
*
* This routine allocates and attaches a fake offset for @ obj .
*/
int
drm_gem_create_mmap_offset ( struct drm_gem_object * obj )
{
struct drm_device * dev = obj - > dev ;
struct drm_gem_mm * mm = dev - > mm_private ;
struct drm_map_list * list ;
struct drm_local_map * map ;
2012-05-17 13:27:21 +02:00
int ret ;
2011-08-10 08:09:07 -05:00
/* Set the object up for mmap'ing */
list = & obj - > map_list ;
list - > map = kzalloc ( sizeof ( struct drm_map_list ) , GFP_KERNEL ) ;
if ( ! list - > map )
return - ENOMEM ;
map = list - > map ;
map - > type = _DRM_GEM ;
map - > size = obj - > size ;
map - > handle = obj ;
/* Get a DRM GEM mmap offset allocated... */
list - > file_offset_node = drm_mm_search_free ( & mm - > offset_manager ,
2012-07-10 11:15:23 +01:00
obj - > size / PAGE_SIZE , 0 , false ) ;
2011-08-10 08:09:07 -05:00
if ( ! list - > file_offset_node ) {
DRM_ERROR ( " failed to allocate offset for bo %d \n " , obj - > name ) ;
ret = - ENOSPC ;
goto out_free_list ;
}
list - > file_offset_node = drm_mm_get_block ( list - > file_offset_node ,
obj - > size / PAGE_SIZE , 0 ) ;
if ( ! list - > file_offset_node ) {
ret = - ENOMEM ;
goto out_free_list ;
}
list - > hash . key = list - > file_offset_node - > start ;
ret = drm_ht_insert_item ( & mm - > offset_hash , & list - > hash ) ;
if ( ret ) {
DRM_ERROR ( " failed to add to map hash \n " ) ;
goto out_free_mm ;
}
return 0 ;
out_free_mm :
drm_mm_put_block ( list - > file_offset_node ) ;
out_free_list :
kfree ( list - > map ) ;
list - > map = NULL ;
return ret ;
}
EXPORT_SYMBOL ( drm_gem_create_mmap_offset ) ;
2008-07-30 12:06:12 -07:00
/** Returns a reference to the object named by the handle. */
struct drm_gem_object *
drm_gem_object_lookup ( struct drm_device * dev , struct drm_file * filp ,
2009-08-23 12:40:55 +03:00
u32 handle )
2008-07-30 12:06:12 -07:00
{
struct drm_gem_object * obj ;
spin_lock ( & filp - > table_lock ) ;
/* Check if we currently have a reference on the object */
obj = idr_find ( & filp - > object_idr , handle ) ;
if ( obj = = NULL ) {
spin_unlock ( & filp - > table_lock ) ;
return NULL ;
}
drm_gem_object_reference ( obj ) ;
spin_unlock ( & filp - > table_lock ) ;
return obj ;
}
EXPORT_SYMBOL ( drm_gem_object_lookup ) ;
/**
* Releases the handle to an mm object .
*/
int
drm_gem_close_ioctl ( struct drm_device * dev , void * data ,
struct drm_file * file_priv )
{
struct drm_gem_close * args = data ;
int ret ;
if ( ! ( dev - > driver - > driver_features & DRIVER_GEM ) )
return - ENODEV ;
ret = drm_gem_handle_delete ( file_priv , args - > handle ) ;
return ret ;
}
/**
* Create a global name for an object , returning the name .
*
* Note that the name does not hold a reference ; when the object
* is freed , the name goes away .
*/
int
drm_gem_flink_ioctl ( struct drm_device * dev , void * data ,
struct drm_file * file_priv )
{
struct drm_gem_flink * args = data ;
struct drm_gem_object * obj ;
int ret ;
if ( ! ( dev - > driver - > driver_features & DRIVER_GEM ) )
return - ENODEV ;
obj = drm_gem_object_lookup ( dev , file_priv , args - > handle ) ;
if ( obj = = NULL )
2010-08-04 14:19:46 +01:00
return - ENOENT ;
2008-07-30 12:06:12 -07:00
2013-02-27 17:04:08 -08:00
idr_preload ( GFP_KERNEL ) ;
2008-07-30 12:06:12 -07:00
spin_lock ( & dev - > object_name_lock ) ;
2009-02-11 14:26:28 +00:00
if ( ! obj - > name ) {
2013-02-27 17:04:08 -08:00
ret = idr_alloc ( & dev - > object_name_idr , obj , 1 , 0 , GFP_NOWAIT ) ;
obj - > name = ret ;
2009-02-11 14:26:28 +00:00
args - > name = ( uint64_t ) obj - > name ;
2008-07-30 12:06:12 -07:00
spin_unlock ( & dev - > object_name_lock ) ;
2013-02-27 17:04:08 -08:00
idr_preload_end ( ) ;
2008-07-30 12:06:12 -07:00
2013-02-27 17:04:08 -08:00
if ( ret < 0 )
2009-02-11 14:26:28 +00:00
goto err ;
2013-02-27 17:04:08 -08:00
ret = 0 ;
2008-07-30 12:06:12 -07:00
2009-02-11 14:26:28 +00:00
/* Allocate a reference for the name table. */
drm_gem_object_reference ( obj ) ;
} else {
args - > name = ( uint64_t ) obj - > name ;
spin_unlock ( & dev - > object_name_lock ) ;
2013-02-27 17:04:08 -08:00
idr_preload_end ( ) ;
2009-02-11 14:26:28 +00:00
ret = 0 ;
}
2009-02-09 11:31:41 +00:00
err :
2010-02-09 05:49:12 +00:00
drm_gem_object_unreference_unlocked ( obj ) ;
2009-02-09 11:31:41 +00:00
return ret ;
2008-07-30 12:06:12 -07:00
}
/**
* Open an object using the global name , returning a handle and the size .
*
* This handle ( of course ) holds a reference to the object , so the object
* will not go away until the handle is deleted .
*/
int
drm_gem_open_ioctl ( struct drm_device * dev , void * data ,
struct drm_file * file_priv )
{
struct drm_gem_open * args = data ;
struct drm_gem_object * obj ;
int ret ;
2009-08-23 12:40:55 +03:00
u32 handle ;
2008-07-30 12:06:12 -07:00
if ( ! ( dev - > driver - > driver_features & DRIVER_GEM ) )
return - ENODEV ;
spin_lock ( & dev - > object_name_lock ) ;
obj = idr_find ( & dev - > object_name_idr , ( int ) args - > name ) ;
if ( obj )
drm_gem_object_reference ( obj ) ;
spin_unlock ( & dev - > object_name_lock ) ;
if ( ! obj )
return - ENOENT ;
ret = drm_gem_handle_create ( file_priv , obj , & handle ) ;
2010-02-09 05:49:12 +00:00
drm_gem_object_unreference_unlocked ( obj ) ;
2008-07-30 12:06:12 -07:00
if ( ret )
return ret ;
args - > handle = handle ;
args - > size = obj - > size ;
return 0 ;
}
/**
* Called at device open time , sets up the structure for handling refcounting
* of mm objects .
*/
void
drm_gem_open ( struct drm_device * dev , struct drm_file * file_private )
{
idr_init ( & file_private - > object_idr ) ;
spin_lock_init ( & file_private - > table_lock ) ;
}
/**
* Called at device close to release the file ' s
* handle references on objects .
*/
static int
drm_gem_object_release_handle ( int id , void * ptr , void * data )
{
2011-06-09 00:24:59 +00:00
struct drm_file * file_priv = data ;
2008-07-30 12:06:12 -07:00
struct drm_gem_object * obj = ptr ;
2011-06-09 00:24:59 +00:00
struct drm_device * dev = obj - > dev ;
2012-05-20 17:31:16 +01:00
drm_gem_remove_prime_handles ( obj , file_priv ) ;
2011-11-25 15:21:02 +00:00
2011-06-09 00:24:59 +00:00
if ( dev - > driver - > gem_close_object )
dev - > driver - > gem_close_object ( obj , file_priv ) ;
2008-07-30 12:06:12 -07:00
2010-02-09 05:49:12 +00:00
drm_gem_object_handle_unreference_unlocked ( obj ) ;
2008-07-30 12:06:12 -07:00
return 0 ;
}
/**
* Called at close time when the filp is going away .
*
* Releases any remaining references on objects by this filp .
*/
void
drm_gem_release ( struct drm_device * dev , struct drm_file * file_private )
{
idr_for_each ( & file_private - > object_idr ,
2011-06-09 00:24:59 +00:00
& drm_gem_object_release_handle , file_private ) ;
2008-07-30 12:06:12 -07:00
idr_destroy ( & file_private - > object_idr ) ;
}
2010-04-09 19:05:05 +00:00
void
drm_gem_object_release ( struct drm_gem_object * obj )
2010-02-09 05:49:11 +00:00
{
2011-06-07 14:17:51 +01:00
if ( obj - > filp )
fput ( obj - > filp ) ;
2010-02-09 05:49:11 +00:00
}
2010-04-09 19:05:05 +00:00
EXPORT_SYMBOL ( drm_gem_object_release ) ;
2010-02-09 05:49:11 +00:00
2008-07-30 12:06:12 -07:00
/**
* Called after the last reference to the object has been lost .
2010-02-09 05:49:11 +00:00
* Must be called holding struct_ mutex
2008-07-30 12:06:12 -07:00
*
* Frees the object
*/
void
drm_gem_object_free ( struct kref * kref )
{
struct drm_gem_object * obj = ( struct drm_gem_object * ) kref ;
struct drm_device * dev = obj - > dev ;
BUG_ON ( ! mutex_is_locked ( & dev - > struct_mutex ) ) ;
if ( dev - > driver - > gem_free_object ! = NULL )
dev - > driver - > gem_free_object ( obj ) ;
}
EXPORT_SYMBOL ( drm_gem_object_free ) ;
2010-02-09 05:49:11 +00:00
static void drm_gem_object_ref_bug ( struct kref * list_kref )
{
BUG ( ) ;
}
2008-07-30 12:06:12 -07:00
/**
* Called after the last handle to the object has been closed
*
* Removes any name for the object . Note that this must be
* called before drm_gem_object_free or we ' ll be touching
* freed memory
*/
2010-09-27 16:17:17 +10:00
void drm_gem_object_handle_free ( struct drm_gem_object * obj )
2008-07-30 12:06:12 -07:00
{
struct drm_device * dev = obj - > dev ;
/* Remove any name for this object */
spin_lock ( & dev - > object_name_lock ) ;
if ( obj - > name ) {
idr_remove ( & dev - > object_name_idr , obj - > name ) ;
2009-02-11 14:26:28 +00:00
obj - > name = 0 ;
2008-07-30 12:06:12 -07:00
spin_unlock ( & dev - > object_name_lock ) ;
/*
* The object name held a reference to this object , drop
* that now .
2010-02-09 05:49:11 +00:00
*
* This cannot be the last reference , since the handle holds one too .
2008-07-30 12:06:12 -07:00
*/
2010-02-09 05:49:11 +00:00
kref_put ( & obj - > refcount , drm_gem_object_ref_bug ) ;
2008-07-30 12:06:12 -07:00
} else
spin_unlock ( & dev - > object_name_lock ) ;
}
EXPORT_SYMBOL ( drm_gem_object_handle_free ) ;
2009-02-11 14:01:46 -08:00
void drm_gem_vm_open ( struct vm_area_struct * vma )
{
struct drm_gem_object * obj = vma - > vm_private_data ;
drm_gem_object_reference ( obj ) ;
2010-09-27 21:28:30 +01:00
mutex_lock ( & obj - > dev - > struct_mutex ) ;
2012-05-01 11:04:51 -05:00
drm_vm_open_locked ( obj - > dev , vma ) ;
2010-09-27 21:28:30 +01:00
mutex_unlock ( & obj - > dev - > struct_mutex ) ;
2009-02-11 14:01:46 -08:00
}
EXPORT_SYMBOL ( drm_gem_vm_open ) ;
void drm_gem_vm_close ( struct vm_area_struct * vma )
{
struct drm_gem_object * obj = vma - > vm_private_data ;
2011-03-17 22:33:33 +00:00
struct drm_device * dev = obj - > dev ;
2009-02-11 14:01:46 -08:00
2011-03-17 22:33:33 +00:00
mutex_lock ( & dev - > struct_mutex ) ;
2012-05-01 11:04:51 -05:00
drm_vm_close_locked ( obj - > dev , vma ) ;
2010-09-27 21:28:30 +01:00
drm_gem_object_unreference ( obj ) ;
2011-03-17 22:33:33 +00:00
mutex_unlock ( & dev - > struct_mutex ) ;
2009-02-11 14:01:46 -08:00
}
EXPORT_SYMBOL ( drm_gem_vm_close ) ;
2008-11-05 10:31:53 -08:00
/**
* drm_gem_mmap - memory map routine for GEM objects
* @ filp : DRM file pointer
* @ vma : VMA for the area to be mapped
*
* If a driver supports GEM object mapping , mmap calls on the DRM file
* descriptor will end up here .
*
* If we find the object based on the offset passed in ( vma - > vm_pgoff will
* contain the fake offset we created when the GTT map ioctl was called on
* the object ) , we set up the driver fault handler so that any accesses
* to the object can be trapped , to perform migration , GTT binding , surface
* register allocation , or performance monitoring .
*/
int drm_gem_mmap ( struct file * filp , struct vm_area_struct * vma )
{
struct drm_file * priv = filp - > private_data ;
struct drm_device * dev = priv - > minor - > dev ;
struct drm_gem_mm * mm = dev - > mm_private ;
2009-02-02 16:55:46 +11:00
struct drm_local_map * map = NULL ;
2008-11-05 10:31:53 -08:00
struct drm_gem_object * obj ;
struct drm_hash_item * hash ;
int ret = 0 ;
2012-02-20 14:18:07 +00:00
if ( drm_device_is_unplugged ( dev ) )
return - ENODEV ;
2008-11-05 10:31:53 -08:00
mutex_lock ( & dev - > struct_mutex ) ;
if ( drm_ht_find_item ( & mm - > offset_hash , vma - > vm_pgoff , & hash ) ) {
mutex_unlock ( & dev - > struct_mutex ) ;
return drm_mmap ( filp , vma ) ;
}
map = drm_hash_entry ( hash , struct drm_map_list , hash ) - > map ;
if ( ! map | |
( ( map - > flags & _DRM_RESTRICTED ) & & ! capable ( CAP_SYS_ADMIN ) ) ) {
ret = - EPERM ;
goto out_unlock ;
}
/* Check for valid size. */
if ( map - > size < vma - > vm_end - vma - > vm_start ) {
ret = - EINVAL ;
goto out_unlock ;
}
obj = map - > handle ;
if ( ! obj - > dev - > driver - > gem_vm_ops ) {
ret = - EINVAL ;
goto out_unlock ;
}
mm: kill vma flag VM_RESERVED and mm->reserved_vm counter
A long time ago, in v2.4, VM_RESERVED kept swapout process off VMA,
currently it lost original meaning but still has some effects:
| effect | alternative flags
-+------------------------+---------------------------------------------
1| account as reserved_vm | VM_IO
2| skip in core dump | VM_IO, VM_DONTDUMP
3| do not merge or expand | VM_IO, VM_DONTEXPAND, VM_HUGETLB, VM_PFNMAP
4| do not mlock | VM_IO, VM_DONTEXPAND, VM_HUGETLB, VM_PFNMAP
This patch removes reserved_vm counter from mm_struct. Seems like nobody
cares about it, it does not exported into userspace directly, it only
reduces total_vm showed in proc.
Thus VM_RESERVED can be replaced with VM_IO or pair VM_DONTEXPAND | VM_DONTDUMP.
remap_pfn_range() and io_remap_pfn_range() set VM_IO|VM_DONTEXPAND|VM_DONTDUMP.
remap_vmalloc_range() set VM_DONTEXPAND | VM_DONTDUMP.
[akpm@linux-foundation.org: drivers/vfio/pci/vfio_pci.c fixup]
Signed-off-by: Konstantin Khlebnikov <khlebnikov@openvz.org>
Cc: Alexander Viro <viro@zeniv.linux.org.uk>
Cc: Carsten Otte <cotte@de.ibm.com>
Cc: Chris Metcalf <cmetcalf@tilera.com>
Cc: Cyrill Gorcunov <gorcunov@openvz.org>
Cc: Eric Paris <eparis@redhat.com>
Cc: H. Peter Anvin <hpa@zytor.com>
Cc: Hugh Dickins <hughd@google.com>
Cc: Ingo Molnar <mingo@redhat.com>
Cc: James Morris <james.l.morris@oracle.com>
Cc: Jason Baron <jbaron@redhat.com>
Cc: Kentaro Takeda <takedakn@nttdata.co.jp>
Cc: Matt Helsley <matthltc@us.ibm.com>
Cc: Nick Piggin <npiggin@kernel.dk>
Cc: Oleg Nesterov <oleg@redhat.com>
Cc: Peter Zijlstra <a.p.zijlstra@chello.nl>
Cc: Robert Richter <robert.richter@amd.com>
Cc: Suresh Siddha <suresh.b.siddha@intel.com>
Cc: Tetsuo Handa <penguin-kernel@I-love.SAKURA.ne.jp>
Cc: Venkatesh Pallipadi <venki@google.com>
Acked-by: Linus Torvalds <torvalds@linux-foundation.org>
Signed-off-by: Andrew Morton <akpm@linux-foundation.org>
Signed-off-by: Linus Torvalds <torvalds@linux-foundation.org>
2012-10-08 16:29:02 -07:00
vma - > vm_flags | = VM_IO | VM_PFNMAP | VM_DONTEXPAND | VM_DONTDUMP ;
2008-11-05 10:31:53 -08:00
vma - > vm_ops = obj - > dev - > driver - > gem_vm_ops ;
vma - > vm_private_data = map - > handle ;
2009-11-17 14:08:54 -08:00
vma - > vm_page_prot = pgprot_writecombine ( vm_get_page_prot ( vma - > vm_flags ) ) ;
2008-11-05 10:31:53 -08:00
2009-02-11 14:01:46 -08:00
/* Take a ref for this mapping of the object, so that the fault
* handler can dereference the mmap offset ' s pointer to the object .
* This reference is cleaned up by the corresponding vm_close
* ( which should happen whether the vma was created by this call , or
* by a vm_open due to mremap or partial unmap or whatever ) .
*/
drm_gem_object_reference ( obj ) ;
2012-05-01 11:04:51 -05:00
drm_vm_open_locked ( dev , vma ) ;
2008-11-05 10:31:53 -08:00
out_unlock :
mutex_unlock ( & dev - > struct_mutex ) ;
return ret ;
}
EXPORT_SYMBOL ( drm_gem_mmap ) ;