2019-06-04 10:11:33 +02:00
// SPDX-License-Identifier: GPL-2.0-only
2017-01-30 21:21:44 +11:00
/*
*
* Copyright 2016 Paul Mackerras , IBM Corp . < paulus @ au1 . ibm . com >
*/
# include <linux/types.h>
# include <linux/string.h>
# include <linux/kvm.h>
# include <linux/kvm_host.h>
2018-10-08 16:30:57 +11:00
# include <linux/anon_inodes.h>
# include <linux/file.h>
# include <linux/debugfs.h>
2020-06-08 21:32:42 -07:00
# include <linux/pgtable.h>
2017-01-30 21:21:44 +11:00
# include <asm/kvm_ppc.h>
# include <asm/kvm_book3s.h>
# include <asm/page.h>
# include <asm/mmu.h>
# include <asm/pgalloc.h>
2017-07-27 11:54:53 +05:30
# include <asm/pte-walk.h>
2019-11-25 08:36:28 +05:30
# include <asm/ultravisor.h>
# include <asm/kvm_book3s_uvmem.h>
2021-06-21 14:20:03 +05:30
# include <asm/plpar_wrappers.h>
2017-01-30 21:21:44 +11:00
/*
* Supported radix tree geometry .
* Like p9 , we support either 5 or 9 bits at the first ( lowest ) level ,
* for a page size of 64 k or 4 k .
*/
static int p9_supported_radix_bits [ 4 ] = { 5 , 9 , 9 , 13 } ;
2018-12-14 16:29:09 +11:00
unsigned long __kvmhv_copy_tofrom_guest_radix ( int lpid , int pid ,
gva_t eaddr , void * to , void * from ,
unsigned long n )
2018-12-14 16:29:05 +11:00
{
treewide: Remove uninitialized_var() usage
Using uninitialized_var() is dangerous as it papers over real bugs[1]
(or can in the future), and suppresses unrelated compiler warnings
(e.g. "unused variable"). If the compiler thinks it is uninitialized,
either simply initialize the variable or make compiler changes.
In preparation for removing[2] the[3] macro[4], remove all remaining
needless uses with the following script:
git grep '\buninitialized_var\b' | cut -d: -f1 | sort -u | \
xargs perl -pi -e \
's/\buninitialized_var\(([^\)]+)\)/\1/g;
s:\s*/\* (GCC be quiet|to make compiler happy) \*/$::g;'
drivers/video/fbdev/riva/riva_hw.c was manually tweaked to avoid
pathological white-space.
No outstanding warnings were found building allmodconfig with GCC 9.3.0
for x86_64, i386, arm64, arm, powerpc, powerpc64le, s390x, mips, sparc64,
alpha, and m68k.
[1] https://lore.kernel.org/lkml/20200603174714.192027-1-glider@google.com/
[2] https://lore.kernel.org/lkml/CA+55aFw+Vbj0i=1TGqCR5vQkCzWJ0QxK6CernOU6eedsudAixw@mail.gmail.com/
[3] https://lore.kernel.org/lkml/CA+55aFwgbgqhbp1fkxvRKEpzyR5J8n1vKT1VZdz9knmPuXhOeg@mail.gmail.com/
[4] https://lore.kernel.org/lkml/CA+55aFz2500WfbKXAx8s67wrm9=yVJu65TpLgN_ybYNv0VEOKA@mail.gmail.com/
Reviewed-by: Leon Romanovsky <leonro@mellanox.com> # drivers/infiniband and mlx4/mlx5
Acked-by: Jason Gunthorpe <jgg@mellanox.com> # IB
Acked-by: Kalle Valo <kvalo@codeaurora.org> # wireless drivers
Reviewed-by: Chao Yu <yuchao0@huawei.com> # erofs
Signed-off-by: Kees Cook <keescook@chromium.org>
2020-06-03 13:09:38 -07:00
int old_pid , old_lpid ;
2018-12-14 16:29:05 +11:00
unsigned long quadrant , ret = n ;
bool is_load = ! ! to ;
2018-12-14 16:29:10 +11:00
/* Can't access quadrants 1 or 2 in non-HV mode, call the HV to do it */
if ( kvmhv_on_pseries ( ) )
return plpar_hcall_norets ( H_COPY_TOFROM_GUEST , lpid , pid , eaddr ,
2020-06-11 17:31:59 +05:30
( to ! = NULL ) ? __pa ( to ) : 0 ,
( from ! = NULL ) ? __pa ( from ) : 0 , n ) ;
2018-12-14 16:29:05 +11:00
2021-08-05 18:26:15 -03:00
if ( eaddr & ( 0xFFFUL < < 52 ) )
return ret ;
2018-12-14 16:29:05 +11:00
quadrant = 1 ;
if ( ! pid )
quadrant = 2 ;
if ( is_load )
from = ( void * ) ( eaddr | ( quadrant < < 62 ) ) ;
else
to = ( void * ) ( eaddr | ( quadrant < < 62 ) ) ;
preempt_disable ( ) ;
2021-11-23 19:52:17 +10:00
asm volatile ( " hwsync " : : : " memory " ) ;
isync ( ) ;
2018-12-14 16:29:05 +11:00
/* switch the lpid first to avoid running host with unallocated pid */
old_lpid = mfspr ( SPRN_LPID ) ;
if ( old_lpid ! = lpid )
mtspr ( SPRN_LPID , lpid ) ;
if ( quadrant = = 1 ) {
old_pid = mfspr ( SPRN_PID ) ;
if ( old_pid ! = pid )
mtspr ( SPRN_PID , pid ) ;
}
isync ( ) ;
KVM: PPC: Book3S HV: Fix copy_tofrom_guest routines
The __kvmhv_copy_tofrom_guest_radix function was introduced along with
nested HV guest support. It uses the platform's Radix MMU quadrants to
provide a nested hypervisor with fast access to its nested guests
memory (H_COPY_TOFROM_GUEST hypercall). It has also since been added
as a fast path for the kvmppc_ld/st routines which are used during
instruction emulation.
The commit def0bfdbd603 ("powerpc: use probe_user_read() and
probe_user_write()") changed the low level copy function from
raw_copy_from_user to probe_user_read, which adds a check to
access_ok. In powerpc that is:
static inline bool __access_ok(unsigned long addr, unsigned long size)
{
return addr < TASK_SIZE_MAX && size <= TASK_SIZE_MAX - addr;
}
and TASK_SIZE_MAX is 0x0010000000000000UL for 64-bit, which means that
setting the two MSBs of the effective address (which correspond to the
quadrant) now cause access_ok to reject the access.
This was not caught earlier because the most common code path via
kvmppc_ld/st contains a fallback (kvm_read_guest) that is likely to
succeed for L1 guests. For nested guests there is no fallback.
Another issue is that probe_user_read (now __copy_from_user_nofault)
does not return the number of bytes not copied in case of failure, so
the destination memory is not being cleared anymore in
kvmhv_copy_from_guest_radix:
ret = kvmhv_copy_tofrom_guest_radix(vcpu, eaddr, to, NULL, n);
if (ret > 0) <-- always false!
memset(to + (n - ret), 0, ret);
This patch fixes both issues by skipping access_ok and open-coding the
low level __copy_to/from_user_inatomic.
Fixes: def0bfdbd603 ("powerpc: use probe_user_read() and probe_user_write()")
Signed-off-by: Fabiano Rosas <farosas@linux.ibm.com>
Reviewed-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Michael Ellerman <mpe@ellerman.id.au>
Link: https://lore.kernel.org/r/20210805212616.2641017-2-farosas@linux.ibm.com
2021-08-05 18:26:14 -03:00
pagefault_disable ( ) ;
2018-12-14 16:29:05 +11:00
if ( is_load )
KVM: PPC: Book3S HV: Fix copy_tofrom_guest routines
The __kvmhv_copy_tofrom_guest_radix function was introduced along with
nested HV guest support. It uses the platform's Radix MMU quadrants to
provide a nested hypervisor with fast access to its nested guests
memory (H_COPY_TOFROM_GUEST hypercall). It has also since been added
as a fast path for the kvmppc_ld/st routines which are used during
instruction emulation.
The commit def0bfdbd603 ("powerpc: use probe_user_read() and
probe_user_write()") changed the low level copy function from
raw_copy_from_user to probe_user_read, which adds a check to
access_ok. In powerpc that is:
static inline bool __access_ok(unsigned long addr, unsigned long size)
{
return addr < TASK_SIZE_MAX && size <= TASK_SIZE_MAX - addr;
}
and TASK_SIZE_MAX is 0x0010000000000000UL for 64-bit, which means that
setting the two MSBs of the effective address (which correspond to the
quadrant) now cause access_ok to reject the access.
This was not caught earlier because the most common code path via
kvmppc_ld/st contains a fallback (kvm_read_guest) that is likely to
succeed for L1 guests. For nested guests there is no fallback.
Another issue is that probe_user_read (now __copy_from_user_nofault)
does not return the number of bytes not copied in case of failure, so
the destination memory is not being cleared anymore in
kvmhv_copy_from_guest_radix:
ret = kvmhv_copy_tofrom_guest_radix(vcpu, eaddr, to, NULL, n);
if (ret > 0) <-- always false!
memset(to + (n - ret), 0, ret);
This patch fixes both issues by skipping access_ok and open-coding the
low level __copy_to/from_user_inatomic.
Fixes: def0bfdbd603 ("powerpc: use probe_user_read() and probe_user_write()")
Signed-off-by: Fabiano Rosas <farosas@linux.ibm.com>
Reviewed-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Michael Ellerman <mpe@ellerman.id.au>
Link: https://lore.kernel.org/r/20210805212616.2641017-2-farosas@linux.ibm.com
2021-08-05 18:26:14 -03:00
ret = __copy_from_user_inatomic ( to , ( const void __user * ) from , n ) ;
2018-12-14 16:29:05 +11:00
else
KVM: PPC: Book3S HV: Fix copy_tofrom_guest routines
The __kvmhv_copy_tofrom_guest_radix function was introduced along with
nested HV guest support. It uses the platform's Radix MMU quadrants to
provide a nested hypervisor with fast access to its nested guests
memory (H_COPY_TOFROM_GUEST hypercall). It has also since been added
as a fast path for the kvmppc_ld/st routines which are used during
instruction emulation.
The commit def0bfdbd603 ("powerpc: use probe_user_read() and
probe_user_write()") changed the low level copy function from
raw_copy_from_user to probe_user_read, which adds a check to
access_ok. In powerpc that is:
static inline bool __access_ok(unsigned long addr, unsigned long size)
{
return addr < TASK_SIZE_MAX && size <= TASK_SIZE_MAX - addr;
}
and TASK_SIZE_MAX is 0x0010000000000000UL for 64-bit, which means that
setting the two MSBs of the effective address (which correspond to the
quadrant) now cause access_ok to reject the access.
This was not caught earlier because the most common code path via
kvmppc_ld/st contains a fallback (kvm_read_guest) that is likely to
succeed for L1 guests. For nested guests there is no fallback.
Another issue is that probe_user_read (now __copy_from_user_nofault)
does not return the number of bytes not copied in case of failure, so
the destination memory is not being cleared anymore in
kvmhv_copy_from_guest_radix:
ret = kvmhv_copy_tofrom_guest_radix(vcpu, eaddr, to, NULL, n);
if (ret > 0) <-- always false!
memset(to + (n - ret), 0, ret);
This patch fixes both issues by skipping access_ok and open-coding the
low level __copy_to/from_user_inatomic.
Fixes: def0bfdbd603 ("powerpc: use probe_user_read() and probe_user_write()")
Signed-off-by: Fabiano Rosas <farosas@linux.ibm.com>
Reviewed-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Michael Ellerman <mpe@ellerman.id.au>
Link: https://lore.kernel.org/r/20210805212616.2641017-2-farosas@linux.ibm.com
2021-08-05 18:26:14 -03:00
ret = __copy_to_user_inatomic ( ( void __user * ) to , from , n ) ;
pagefault_enable ( ) ;
2018-12-14 16:29:05 +11:00
2021-11-23 19:52:17 +10:00
asm volatile ( " hwsync " : : : " memory " ) ;
isync ( ) ;
2018-12-14 16:29:05 +11:00
/* switch the pid first to avoid running host with unallocated pid */
if ( quadrant = = 1 & & pid ! = old_pid )
mtspr ( SPRN_PID , old_pid ) ;
if ( lpid ! = old_lpid )
mtspr ( SPRN_LPID , old_lpid ) ;
isync ( ) ;
preempt_enable ( ) ;
return ret ;
}
static long kvmhv_copy_tofrom_guest_radix ( struct kvm_vcpu * vcpu , gva_t eaddr ,
void * to , void * from , unsigned long n )
{
int lpid = vcpu - > kvm - > arch . lpid ;
int pid = vcpu - > arch . pid ;
/* This would cause a data segment intr so don't allow the access */
if ( eaddr & ( 0x3FFUL < < 52 ) )
return - EINVAL ;
/* Should we be using the nested lpid */
if ( vcpu - > arch . nested )
lpid = vcpu - > arch . nested - > shadow_lpid ;
/* If accessing quadrant 3 then pid is expected to be 0 */
if ( ( ( eaddr > > 62 ) & 0x3 ) = = 0x3 )
pid = 0 ;
eaddr & = ~ ( 0xFFFUL < < 52 ) ;
return __kvmhv_copy_tofrom_guest_radix ( lpid , pid , eaddr , to , from , n ) ;
}
long kvmhv_copy_from_guest_radix ( struct kvm_vcpu * vcpu , gva_t eaddr , void * to ,
unsigned long n )
{
long ret ;
ret = kvmhv_copy_tofrom_guest_radix ( vcpu , eaddr , to , NULL , n ) ;
if ( ret > 0 )
memset ( to + ( n - ret ) , 0 , ret ) ;
return ret ;
}
long kvmhv_copy_to_guest_radix ( struct kvm_vcpu * vcpu , gva_t eaddr , void * from ,
unsigned long n )
{
return kvmhv_copy_tofrom_guest_radix ( vcpu , eaddr , NULL , from , n ) ;
}
2018-10-08 16:31:07 +11:00
int kvmppc_mmu_walk_radix_tree ( struct kvm_vcpu * vcpu , gva_t eaddr ,
struct kvmppc_pte * gpte , u64 root ,
u64 * pte_ret_p )
2017-01-30 21:21:44 +11:00
{
struct kvm * kvm = vcpu - > kvm ;
int ret , level , ps ;
2018-10-08 16:31:07 +11:00
unsigned long rts , bits , offset , index ;
2018-10-08 16:31:00 +11:00
u64 pte , base , gpa ;
__be64 rpte ;
2017-01-30 21:21:44 +11:00
rts = ( ( root & RTS1_MASK ) > > ( RTS1_SHIFT - 3 ) ) |
( ( root & RTS2_MASK ) > > RTS2_SHIFT ) ;
bits = root & RPDS_MASK ;
2018-10-08 16:31:00 +11:00
base = root & RPDB_MASK ;
2017-01-30 21:21:44 +11:00
offset = rts + 31 ;
2018-10-08 16:31:00 +11:00
/* Current implementations only support 52-bit space */
2017-01-30 21:21:44 +11:00
if ( offset ! = 52 )
return - EINVAL ;
2018-10-08 16:31:00 +11:00
/* Walk each level of the radix tree */
2017-01-30 21:21:44 +11:00
for ( level = 3 ; level > = 0 ; - - level ) {
2018-10-08 16:31:07 +11:00
u64 addr ;
2018-10-08 16:31:00 +11:00
/* Check a valid size */
2017-01-30 21:21:44 +11:00
if ( level & & bits ! = p9_supported_radix_bits [ level ] )
return - EINVAL ;
if ( level = = 0 & & ! ( bits = = 5 | | bits = = 9 ) )
return - EINVAL ;
offset - = bits ;
index = ( eaddr > > offset ) & ( ( 1UL < < bits ) - 1 ) ;
2018-10-08 16:31:00 +11:00
/* Check that low bits of page table base are zero */
if ( base & ( ( 1UL < < ( bits + 3 ) ) - 1 ) )
2017-01-30 21:21:44 +11:00
return - EINVAL ;
2018-10-08 16:31:00 +11:00
/* Read the entry from guest memory */
2018-10-08 16:31:07 +11:00
addr = base + ( index * sizeof ( rpte ) ) ;
2020-06-09 12:12:29 +10:00
vcpu - > srcu_idx = srcu_read_lock ( & kvm - > srcu ) ;
2018-10-08 16:31:07 +11:00
ret = kvm_read_guest ( kvm , addr , & rpte , sizeof ( rpte ) ) ;
2020-06-09 12:12:29 +10:00
srcu_read_unlock ( & kvm - > srcu , vcpu - > srcu_idx ) ;
2018-10-08 16:31:07 +11:00
if ( ret ) {
if ( pte_ret_p )
* pte_ret_p = addr ;
2017-01-30 21:21:44 +11:00
return ret ;
2018-10-08 16:31:07 +11:00
}
2017-01-30 21:21:44 +11:00
pte = __be64_to_cpu ( rpte ) ;
if ( ! ( pte & _PAGE_PRESENT ) )
return - ENOENT ;
2018-10-08 16:31:00 +11:00
/* Check if a leaf entry */
2017-01-30 21:21:44 +11:00
if ( pte & _PAGE_PTE )
break ;
2018-10-08 16:31:00 +11:00
/* Get ready to walk the next level */
base = pte & RPDB_MASK ;
bits = pte & RPDS_MASK ;
2017-01-30 21:21:44 +11:00
}
2018-10-08 16:31:00 +11:00
/* Need a leaf at lowest level; 512GB pages not supported */
2017-01-30 21:21:44 +11:00
if ( level < 0 | | level = = 3 )
return - EINVAL ;
2018-10-08 16:31:00 +11:00
/* We found a valid leaf PTE */
/* Offset is now log base 2 of the page size */
2017-01-30 21:21:44 +11:00
gpa = pte & 0x01fffffffffff000ul ;
if ( gpa & ( ( 1ul < < offset ) - 1 ) )
return - EINVAL ;
2018-10-08 16:31:00 +11:00
gpa | = eaddr & ( ( 1ul < < offset ) - 1 ) ;
2017-01-30 21:21:44 +11:00
for ( ps = MMU_PAGE_4K ; ps < MMU_PAGE_COUNT ; + + ps )
if ( offset = = mmu_psize_defs [ ps ] . shift )
break ;
gpte - > page_size = ps ;
2018-10-08 16:31:07 +11:00
gpte - > page_shift = offset ;
2017-01-30 21:21:44 +11:00
gpte - > eaddr = eaddr ;
gpte - > raddr = gpa ;
/* Work out permissions */
gpte - > may_read = ! ! ( pte & _PAGE_READ ) ;
gpte - > may_write = ! ! ( pte & _PAGE_WRITE ) ;
gpte - > may_execute = ! ! ( pte & _PAGE_EXEC ) ;
2018-10-08 16:31:00 +11:00
2018-10-08 16:31:07 +11:00
gpte - > rc = pte & ( _PAGE_ACCESSED | _PAGE_DIRTY ) ;
2018-10-08 16:31:00 +11:00
if ( pte_ret_p )
* pte_ret_p = pte ;
return 0 ;
}
2018-10-08 16:31:07 +11:00
/*
* Used to walk a partition or process table radix tree in guest memory
* Note : We exploit the fact that a partition table and a process
* table have the same layout , a partition - scoped page table and a
* process - scoped page table have the same layout , and the 2 nd
* doubleword of a partition table entry has the same layout as
* the PTCR register .
*/
int kvmppc_mmu_radix_translate_table ( struct kvm_vcpu * vcpu , gva_t eaddr ,
struct kvmppc_pte * gpte , u64 table ,
int table_index , u64 * pte_ret_p )
{
struct kvm * kvm = vcpu - > kvm ;
int ret ;
unsigned long size , ptbl , root ;
struct prtb_entry entry ;
if ( ( table & PRTS_MASK ) > 24 )
return - EINVAL ;
size = 1ul < < ( ( table & PRTS_MASK ) + 12 ) ;
/* Is the table big enough to contain this entry? */
if ( ( table_index * sizeof ( entry ) ) > = size )
return - EINVAL ;
/* Read the table to find the root of the radix tree */
ptbl = ( table & PRTB_MASK ) + ( table_index * sizeof ( entry ) ) ;
2020-06-09 12:12:29 +10:00
vcpu - > srcu_idx = srcu_read_lock ( & kvm - > srcu ) ;
2018-10-08 16:31:07 +11:00
ret = kvm_read_guest ( kvm , ptbl , & entry , sizeof ( entry ) ) ;
2020-06-09 12:12:29 +10:00
srcu_read_unlock ( & kvm - > srcu , vcpu - > srcu_idx ) ;
2018-10-08 16:31:07 +11:00
if ( ret )
return ret ;
/* Root is stored in the first double word */
root = be64_to_cpu ( entry . prtb0 ) ;
return kvmppc_mmu_walk_radix_tree ( vcpu , eaddr , gpte , root , pte_ret_p ) ;
}
2018-10-08 16:31:00 +11:00
int kvmppc_mmu_radix_xlate ( struct kvm_vcpu * vcpu , gva_t eaddr ,
struct kvmppc_pte * gpte , bool data , bool iswrite )
{
u32 pid ;
u64 pte ;
int ret ;
/* Work out effective PID */
switch ( eaddr > > 62 ) {
case 0 :
pid = vcpu - > arch . pid ;
break ;
case 3 :
pid = 0 ;
break ;
default :
return - EINVAL ;
}
ret = kvmppc_mmu_radix_translate_table ( vcpu , eaddr , gpte ,
vcpu - > kvm - > arch . process_table , pid , & pte ) ;
if ( ret )
return ret ;
/* Check privilege (applies only to process scoped translations) */
2017-01-30 21:21:44 +11:00
if ( kvmppc_get_msr ( vcpu ) & MSR_PR ) {
if ( pte & _PAGE_PRIVILEGED ) {
gpte - > may_read = 0 ;
gpte - > may_write = 0 ;
gpte - > may_execute = 0 ;
}
} else {
if ( ! ( pte & _PAGE_PRIVILEGED ) ) {
/* Check AMR/IAMR to see if strict mode is in force */
if ( vcpu - > arch . amr & ( 1ul < < 62 ) )
gpte - > may_read = 0 ;
if ( vcpu - > arch . amr & ( 1ul < < 63 ) )
gpte - > may_write = 0 ;
if ( vcpu - > arch . iamr & ( 1ul < < 62 ) )
gpte - > may_execute = 0 ;
}
}
return 0 ;
}
2018-12-21 14:28:42 +11:00
void kvmppc_radix_tlbie_page ( struct kvm * kvm , unsigned long addr ,
unsigned int pshift , unsigned int lpid )
2017-01-30 21:21:46 +11:00
{
2018-05-17 17:06:28 +10:00
unsigned long psize = PAGE_SIZE ;
2018-10-08 16:31:10 +11:00
int psi ;
long rc ;
unsigned long rb ;
2018-05-17 17:06:28 +10:00
if ( pshift )
psize = 1UL < < pshift ;
2018-10-08 16:31:10 +11:00
else
pshift = PAGE_SHIFT ;
2018-05-17 17:06:28 +10:00
addr & = ~ ( psize - 1 ) ;
2018-10-08 16:31:10 +11:00
if ( ! kvmhv_on_pseries ( ) ) {
radix__flush_tlb_lpid_page ( lpid , addr , psize ) ;
return ;
}
psi = shift_to_mmu_psize ( pshift ) ;
2021-06-21 14:20:03 +05:30
if ( ! firmware_has_feature ( FW_FEATURE_RPT_INVALIDATE ) ) {
rb = addr | ( mmu_get_ap ( psi ) < < PPC_BITLSHIFT ( 58 ) ) ;
rc = plpar_hcall_norets ( H_TLB_INVALIDATE , H_TLBIE_P1_ENC ( 0 , 0 , 1 ) ,
lpid , rb ) ;
} else {
rc = pseries_rpt_invalidate ( lpid , H_RPTI_TARGET_CMMU ,
H_RPTI_TYPE_NESTED |
H_RPTI_TYPE_TLB ,
psize_to_rpti_pgsize ( psi ) ,
addr , addr + psize ) ;
}
2018-10-08 16:31:10 +11:00
if ( rc )
pr_err ( " KVM: TLB page invalidation hcall failed, rc=%ld \n " , rc ) ;
2017-01-30 21:21:46 +11:00
}
2018-10-08 16:31:07 +11:00
static void kvmppc_radix_flush_pwc ( struct kvm * kvm , unsigned int lpid )
2018-02-23 21:40:49 +11:00
{
2018-10-08 16:31:10 +11:00
long rc ;
if ( ! kvmhv_on_pseries ( ) ) {
radix__flush_pwc_lpid ( lpid ) ;
return ;
}
2021-06-21 14:20:03 +05:30
if ( ! firmware_has_feature ( FW_FEATURE_RPT_INVALIDATE ) )
rc = plpar_hcall_norets ( H_TLB_INVALIDATE , H_TLBIE_P1_ENC ( 1 , 0 , 1 ) ,
lpid , TLBIEL_INVAL_SET_LPID ) ;
else
rc = pseries_rpt_invalidate ( lpid , H_RPTI_TARGET_CMMU ,
H_RPTI_TYPE_NESTED |
H_RPTI_TYPE_PWC , H_RPTI_PAGE_ALL ,
0 , - 1UL ) ;
2018-10-08 16:31:10 +11:00
if ( rc )
pr_err ( " KVM: TLB PWC invalidation hcall failed, rc=%ld \n " , rc ) ;
2018-02-23 21:40:49 +11:00
}
2018-05-17 17:06:31 +10:00
static unsigned long kvmppc_radix_update_pte ( struct kvm * kvm , pte_t * ptep ,
2017-01-30 21:21:48 +11:00
unsigned long clr , unsigned long set ,
unsigned long addr , unsigned int shift )
2017-01-30 21:21:46 +11:00
{
2018-07-05 18:47:00 +10:00
return __radix_pte_update ( ptep , clr , set ) ;
2017-01-30 21:21:46 +11:00
}
2020-09-21 11:22:11 +00:00
static void kvmppc_radix_set_pte_at ( struct kvm * kvm , unsigned long addr ,
2017-01-30 21:21:46 +11:00
pte_t * ptep , pte_t pte )
{
radix__set_pte_at ( kvm - > mm , addr , ptep , pte , 0 ) ;
}
static struct kmem_cache * kvm_pte_cache ;
2018-04-16 16:57:15 +05:30
static struct kmem_cache * kvm_pmd_cache ;
2017-01-30 21:21:46 +11:00
static pte_t * kvmppc_pte_alloc ( void )
{
2020-05-13 09:39:15 -04:00
pte_t * pte ;
pte = kmem_cache_alloc ( kvm_pte_cache , GFP_KERNEL ) ;
/* pmd_populate() will only reference _pa(pte). */
kmemleak_ignore ( pte ) ;
return pte ;
2017-01-30 21:21:46 +11:00
}
static void kvmppc_pte_free ( pte_t * ptep )
{
kmem_cache_free ( kvm_pte_cache , ptep ) ;
}
2018-04-16 16:57:15 +05:30
static pmd_t * kvmppc_pmd_alloc ( void )
{
2020-05-13 09:39:15 -04:00
pmd_t * pmd ;
pmd = kmem_cache_alloc ( kvm_pmd_cache , GFP_KERNEL ) ;
/* pud_populate() will only reference _pa(pmd). */
kmemleak_ignore ( pmd ) ;
return pmd ;
2018-04-16 16:57:15 +05:30
}
static void kvmppc_pmd_free ( pmd_t * pmdp )
{
kmem_cache_free ( kvm_pmd_cache , pmdp ) ;
}
2018-10-08 16:31:08 +11:00
/* Called with kvm->mmu_lock held */
void kvmppc_unmap_pte ( struct kvm * kvm , pte_t * pte , unsigned long gpa ,
2018-12-12 15:16:48 +11:00
unsigned int shift ,
const struct kvm_memory_slot * memslot ,
2018-10-08 16:31:07 +11:00
unsigned int lpid )
2018-05-17 17:06:26 +10:00
{
unsigned long old ;
2018-10-08 16:31:08 +11:00
unsigned long gfn = gpa > > PAGE_SHIFT ;
unsigned long page_size = PAGE_SIZE ;
unsigned long hpa ;
2018-05-17 17:06:26 +10:00
old = kvmppc_radix_update_pte ( kvm , pte , ~ 0UL , 0 , gpa , shift ) ;
2018-10-08 16:31:07 +11:00
kvmppc_radix_tlbie_page ( kvm , gpa , shift , lpid ) ;
2018-05-17 17:06:26 +10:00
2018-10-08 16:31:08 +11:00
/* The following only applies to L1 entries */
if ( lpid ! = kvm - > arch . lpid )
return ;
2018-05-17 17:06:26 +10:00
2018-10-08 16:31:08 +11:00
if ( ! memslot ) {
2018-05-17 17:06:26 +10:00
memslot = gfn_to_memslot ( kvm , gfn ) ;
2018-10-08 16:31:02 +11:00
if ( ! memslot )
2018-10-08 16:31:08 +11:00
return ;
2018-05-17 17:06:26 +10:00
}
2019-02-19 14:53:45 +11:00
if ( shift ) { /* 1GB or 2MB page */
2018-10-08 16:31:08 +11:00
page_size = 1ul < < shift ;
2019-02-19 14:53:45 +11:00
if ( shift = = PMD_SHIFT )
kvm - > stat . num_2M_pages - - ;
else if ( shift = = PUD_SHIFT )
kvm - > stat . num_1G_pages - - ;
}
2018-10-08 16:31:08 +11:00
gpa & = ~ ( page_size - 1 ) ;
hpa = old & PTE_RPN_MASK ;
kvmhv_remove_nest_rmap_range ( kvm , memslot , gpa , hpa , page_size ) ;
if ( ( old & _PAGE_DIRTY ) & & memslot - > dirty_bitmap )
kvmppc_update_dirty_map ( memslot , gfn , page_size ) ;
2018-05-17 17:06:26 +10:00
}
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
/*
* kvmppc_free_p ? d are used to free existing page tables , and recursively
* descend and clear and free children .
* Callers are responsible for flushing the PWC .
*
* When page tables are being unmapped / freed as part of page fault path
2020-05-28 10:48:18 +10:00
* ( full = = false ) , valid ptes are generally not expected ; however , there
* is one situation where they arise , which is when dirty page logging is
* turned off for a memslot while the VM is running . The new memslot
* becomes visible to page faults before the memslot commit function
* gets to flush the memslot , which can lead to a 2 MB page mapping being
* installed for a guest physical address where there are already 64 kB
* ( or 4 kB ) mappings ( of sub - pages of the same 2 MB page ) .
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
*/
2018-10-08 16:31:07 +11:00
static void kvmppc_unmap_free_pte ( struct kvm * kvm , pte_t * pte , bool full ,
unsigned int lpid )
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
{
if ( full ) {
2020-02-18 15:36:50 +11:00
memset ( pte , 0 , sizeof ( long ) < < RADIX_PTE_INDEX_SIZE ) ;
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
} else {
pte_t * p = pte ;
unsigned long it ;
for ( it = 0 ; it < PTRS_PER_PTE ; + + it , + + p ) {
if ( pte_val ( * p ) = = 0 )
continue ;
kvmppc_unmap_pte ( kvm , p ,
pte_pfn ( * p ) < < PAGE_SHIFT ,
2018-10-08 16:31:07 +11:00
PAGE_SHIFT , NULL , lpid ) ;
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
}
}
kvmppc_pte_free ( pte ) ;
}
2018-10-08 16:31:07 +11:00
static void kvmppc_unmap_free_pmd ( struct kvm * kvm , pmd_t * pmd , bool full ,
unsigned int lpid )
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
{
unsigned long im ;
pmd_t * p = pmd ;
for ( im = 0 ; im < PTRS_PER_PMD ; + + im , + + p ) {
if ( ! pmd_present ( * p ) )
continue ;
if ( pmd_is_leaf ( * p ) ) {
if ( full ) {
pmd_clear ( p ) ;
} else {
WARN_ON_ONCE ( 1 ) ;
kvmppc_unmap_pte ( kvm , ( pte_t * ) p ,
pte_pfn ( * ( pte_t * ) p ) < < PAGE_SHIFT ,
2018-10-08 16:31:07 +11:00
PMD_SHIFT , NULL , lpid ) ;
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
}
} else {
pte_t * pte ;
pte = pte_offset_map ( p , 0 ) ;
2018-10-08 16:31:07 +11:00
kvmppc_unmap_free_pte ( kvm , pte , full , lpid ) ;
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
pmd_clear ( p ) ;
}
}
kvmppc_pmd_free ( pmd ) ;
}
2018-10-08 16:31:07 +11:00
static void kvmppc_unmap_free_pud ( struct kvm * kvm , pud_t * pud ,
unsigned int lpid )
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
{
unsigned long iu ;
pud_t * p = pud ;
for ( iu = 0 ; iu < PTRS_PER_PUD ; + + iu , + + p ) {
if ( ! pud_present ( * p ) )
continue ;
2019-05-14 11:33:00 +05:30
if ( pud_is_leaf ( * p ) ) {
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
pud_clear ( p ) ;
} else {
pmd_t * pmd ;
pmd = pmd_offset ( p , 0 ) ;
2018-10-08 16:31:07 +11:00
kvmppc_unmap_free_pmd ( kvm , pmd , true , lpid ) ;
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
pud_clear ( p ) ;
}
}
pud_free ( kvm - > mm , pud ) ;
}
2018-10-08 16:31:07 +11:00
void kvmppc_free_pgtable_radix ( struct kvm * kvm , pgd_t * pgd , unsigned int lpid )
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
{
unsigned long ig ;
for ( ig = 0 ; ig < PTRS_PER_PGD ; + + ig , + + pgd ) {
2020-06-04 16:46:44 -07:00
p4d_t * p4d = p4d_offset ( pgd , 0 ) ;
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
pud_t * pud ;
2020-06-04 16:46:44 -07:00
if ( ! p4d_present ( * p4d ) )
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
continue ;
2020-06-04 16:46:44 -07:00
pud = pud_offset ( p4d , 0 ) ;
2018-10-08 16:31:07 +11:00
kvmppc_unmap_free_pud ( kvm , pud , lpid ) ;
2020-06-04 16:46:44 -07:00
p4d_clear ( p4d ) ;
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
}
2018-10-08 16:31:07 +11:00
}
void kvmppc_free_radix ( struct kvm * kvm )
{
if ( kvm - > arch . pgtable ) {
kvmppc_free_pgtable_radix ( kvm , kvm - > arch . pgtable ,
kvm - > arch . lpid ) ;
pgd_free ( kvm - > mm , kvm - > arch . pgtable ) ;
kvm - > arch . pgtable = NULL ;
}
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
}
static void kvmppc_unmap_free_pmd_entry_table ( struct kvm * kvm , pmd_t * pmd ,
2018-10-08 16:31:07 +11:00
unsigned long gpa , unsigned int lpid )
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
{
pte_t * pte = pte_offset_kernel ( pmd , 0 ) ;
/*
* Clearing the pmd entry then flushing the PWC ensures that the pte
* page no longer be cached by the MMU , so can be freed without
* flushing the PWC again .
*/
pmd_clear ( pmd ) ;
2018-10-08 16:31:07 +11:00
kvmppc_radix_flush_pwc ( kvm , lpid ) ;
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
2018-10-08 16:31:07 +11:00
kvmppc_unmap_free_pte ( kvm , pte , false , lpid ) ;
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
}
static void kvmppc_unmap_free_pud_entry_table ( struct kvm * kvm , pud_t * pud ,
2018-10-08 16:31:07 +11:00
unsigned long gpa , unsigned int lpid )
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
{
pmd_t * pmd = pmd_offset ( pud , 0 ) ;
/*
* Clearing the pud entry then flushing the PWC ensures that the pmd
* page and any children pte pages will no longer be cached by the MMU ,
* so can be freed without flushing the PWC again .
*/
pud_clear ( pud ) ;
2018-10-08 16:31:07 +11:00
kvmppc_radix_flush_pwc ( kvm , lpid ) ;
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
2018-10-08 16:31:07 +11:00
kvmppc_unmap_free_pmd ( kvm , pmd , false , lpid ) ;
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
}
2018-05-17 17:06:31 +10:00
/*
* There are a number of bits which may differ between different faults to
* the same partition scope entry . RC bits , in the course of cleaning and
* aging . And the write bit can change , either the access could have been
* upgraded , or a read fault could happen concurrently with a write fault
* that sets those bits first .
*/
# define PTE_BITS_MUST_MATCH (~(_PAGE_WRITE | _PAGE_DIRTY | _PAGE_ACCESSED))
2018-10-08 16:31:07 +11:00
int kvmppc_create_pte ( struct kvm * kvm , pgd_t * pgtable , pte_t pte ,
unsigned long gpa , unsigned int level ,
2018-10-08 16:31:08 +11:00
unsigned long mmu_seq , unsigned int lpid ,
unsigned long * rmapp , struct rmap_nested * * n_rmap )
2017-01-30 21:21:46 +11:00
{
pgd_t * pgd ;
2020-06-04 16:46:44 -07:00
p4d_t * p4d ;
2017-01-30 21:21:46 +11:00
pud_t * pud , * new_pud = NULL ;
pmd_t * pmd , * new_pmd = NULL ;
pte_t * ptep , * new_ptep = NULL ;
int ret ;
/* Traverse the guest's 2nd-level tree, allocate new levels needed */
2018-10-08 16:31:01 +11:00
pgd = pgtable + pgd_index ( gpa ) ;
2020-06-04 16:46:44 -07:00
p4d = p4d_offset ( pgd , gpa ) ;
2017-01-30 21:21:46 +11:00
pud = NULL ;
2020-06-04 16:46:44 -07:00
if ( p4d_present ( * p4d ) )
pud = pud_offset ( p4d , gpa ) ;
2017-01-30 21:21:46 +11:00
else
new_pud = pud_alloc_one ( kvm - > mm , gpa ) ;
pmd = NULL ;
2019-05-14 11:33:00 +05:30
if ( pud & & pud_present ( * pud ) & & ! pud_is_leaf ( * pud ) )
2017-01-30 21:21:46 +11:00
pmd = pmd_offset ( pud , gpa ) ;
2018-02-24 20:14:37 +11:00
else if ( level < = 1 )
2018-04-16 16:57:15 +05:30
new_pmd = kvmppc_pmd_alloc ( ) ;
2017-01-30 21:21:46 +11:00
2018-02-23 21:21:12 +11:00
if ( level = = 0 & & ! ( pmd & & pmd_present ( * pmd ) & & ! pmd_is_leaf ( * pmd ) ) )
2017-01-30 21:21:46 +11:00
new_ptep = kvmppc_pte_alloc ( ) ;
/* Check if we might have been invalidated; let the guest retry if so */
spin_lock ( & kvm - > mmu_lock ) ;
ret = - EAGAIN ;
if ( mmu_notifier_retry ( kvm , mmu_seq ) )
goto out_unlock ;
/* Now traverse again under the lock and change the tree */
ret = - ENOMEM ;
2020-06-04 16:46:44 -07:00
if ( p4d_none ( * p4d ) ) {
2017-01-30 21:21:46 +11:00
if ( ! new_pud )
goto out_unlock ;
2020-06-04 16:46:44 -07:00
p4d_populate ( kvm - > mm , p4d , new_pud ) ;
2017-01-30 21:21:46 +11:00
new_pud = NULL ;
}
2020-06-04 16:46:44 -07:00
pud = pud_offset ( p4d , gpa ) ;
2019-05-14 11:33:00 +05:30
if ( pud_is_leaf ( * pud ) ) {
2018-02-24 20:14:37 +11:00
unsigned long hgpa = gpa & PUD_MASK ;
2018-05-17 17:06:31 +10:00
/* Check if we raced and someone else has set the same thing */
if ( level = = 2 ) {
if ( pud_raw ( * pud ) = = pte_raw ( pte ) ) {
ret = 0 ;
goto out_unlock ;
}
/* Valid 1GB page here already, add our extra bits */
WARN_ON_ONCE ( ( pud_val ( * pud ) ^ pte_val ( pte ) ) &
PTE_BITS_MUST_MATCH ) ;
kvmppc_radix_update_pte ( kvm , ( pte_t * ) pud ,
0 , pte_val ( pte ) , hgpa , PUD_SHIFT ) ;
ret = 0 ;
goto out_unlock ;
}
2018-02-24 20:14:37 +11:00
/*
* If we raced with another CPU which has just put
* a 1 GB pte in after we saw a pmd page , try again .
*/
2018-05-17 17:06:31 +10:00
if ( ! new_pmd ) {
2018-02-24 20:14:37 +11:00
ret = - EAGAIN ;
goto out_unlock ;
}
/* Valid 1GB page here already, remove it */
2018-10-08 16:31:07 +11:00
kvmppc_unmap_pte ( kvm , ( pte_t * ) pud , hgpa , PUD_SHIFT , NULL ,
lpid ) ;
2018-02-24 20:14:37 +11:00
}
if ( level = = 2 ) {
if ( ! pud_none ( * pud ) ) {
/*
* There ' s a page table page here , but we wanted to
* install a large page , so remove and free the page
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
* table page .
2018-02-24 20:14:37 +11:00
*/
2018-10-08 16:31:07 +11:00
kvmppc_unmap_free_pud_entry_table ( kvm , pud , gpa , lpid ) ;
2018-02-24 20:14:37 +11:00
}
kvmppc_radix_set_pte_at ( kvm , gpa , ( pte_t * ) pud , pte ) ;
2018-10-08 16:31:08 +11:00
if ( rmapp & & n_rmap )
kvmhv_insert_nest_rmap ( kvm , rmapp , n_rmap ) ;
2018-02-24 20:14:37 +11:00
ret = 0 ;
goto out_unlock ;
}
2017-01-30 21:21:46 +11:00
if ( pud_none ( * pud ) ) {
if ( ! new_pmd )
goto out_unlock ;
pud_populate ( kvm - > mm , pud , new_pmd ) ;
new_pmd = NULL ;
}
pmd = pmd_offset ( pud , gpa ) ;
2018-02-23 21:21:12 +11:00
if ( pmd_is_leaf ( * pmd ) ) {
unsigned long lgpa = gpa & PMD_MASK ;
2018-05-17 17:06:31 +10:00
/* Check if we raced and someone else has set the same thing */
if ( level = = 1 ) {
if ( pmd_raw ( * pmd ) = = pte_raw ( pte ) ) {
ret = 0 ;
goto out_unlock ;
}
/* Valid 2MB page here already, add our extra bits */
WARN_ON_ONCE ( ( pmd_val ( * pmd ) ^ pte_val ( pte ) ) &
PTE_BITS_MUST_MATCH ) ;
kvmppc_radix_update_pte ( kvm , pmdp_ptep ( pmd ) ,
2018-10-08 16:31:07 +11:00
0 , pte_val ( pte ) , lgpa , PMD_SHIFT ) ;
2018-05-17 17:06:31 +10:00
ret = 0 ;
goto out_unlock ;
}
2018-02-23 21:21:12 +11:00
/*
* If we raced with another CPU which has just put
* a 2 MB pte in after we saw a pte page , try again .
*/
2018-05-17 17:06:31 +10:00
if ( ! new_ptep ) {
2018-02-23 21:21:12 +11:00
ret = - EAGAIN ;
goto out_unlock ;
}
/* Valid 2MB page here already, remove it */
2018-10-08 16:31:07 +11:00
kvmppc_unmap_pte ( kvm , pmdp_ptep ( pmd ) , lgpa , PMD_SHIFT , NULL ,
lpid ) ;
2017-01-30 21:21:46 +11:00
}
2018-02-24 20:14:37 +11:00
if ( level = = 1 ) {
if ( ! pmd_none ( * pmd ) ) {
/*
* There ' s a page table page here , but we wanted to
* install a large page , so remove and free the page
KVM: PPC: Book3S HV: Recursively unmap all page table entries when unmapping
When partition scope mappings are unmapped with kvm_unmap_radix, the
pte is cleared, but the page table structure is left in place. If the
next page fault requests a different page table geometry (e.g., due to
THP promotion or split), kvmppc_create_pte is responsible for changing
the page tables.
When a page table entry is to be converted to a large pte, the page
table entry is cleared, the PWC flushed, then the page table it points
to freed. This will cause pte page tables to leak when a 1GB page is
to replace a pud entry points to a pmd table with pte tables under it:
The pmd table will be freed, but its pte tables will be missed.
Fix this by replacing the simple clear and free code with one that
walks down the page tables and frees children. Care must be taken to
clear the root entry being unmapped then flushing the PWC before
freeing any page tables, as explained in comments.
This requires PWC flush to logically become a flush-all-PWC (which it
already is in hardware, but the KVM API needs to be changed to avoid
confusion).
This code also checks that no unexpected pte entries exist in any page
table being freed, and unmaps those and emits a WARN. This is an
expensive operation for the pte page level, but partition scope
changes are rare, so it's unconditional for now to iron out bugs. It
can be put under a CONFIG option or removed after some time.
Signed-off-by: Nicholas Piggin <npiggin@gmail.com>
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2018-05-17 17:06:27 +10:00
* table page .
2018-02-24 20:14:37 +11:00
*/
2018-10-08 16:31:07 +11:00
kvmppc_unmap_free_pmd_entry_table ( kvm , pmd , gpa , lpid ) ;
2017-01-30 21:21:46 +11:00
}
kvmppc_radix_set_pte_at ( kvm , gpa , pmdp_ptep ( pmd ) , pte ) ;
2018-10-08 16:31:08 +11:00
if ( rmapp & & n_rmap )
kvmhv_insert_nest_rmap ( kvm , rmapp , n_rmap ) ;
2018-02-24 20:14:37 +11:00
ret = 0 ;
goto out_unlock ;
2017-01-30 21:21:46 +11:00
}
2018-02-24 20:14:37 +11:00
if ( pmd_none ( * pmd ) ) {
if ( ! new_ptep )
goto out_unlock ;
pmd_populate ( kvm - > mm , pmd , new_ptep ) ;
new_ptep = NULL ;
}
ptep = pte_offset_kernel ( pmd , gpa ) ;
if ( pte_present ( * ptep ) ) {
/* Check if someone else set the same thing */
if ( pte_raw ( * ptep ) = = pte_raw ( pte ) ) {
ret = 0 ;
goto out_unlock ;
}
2018-05-17 17:06:31 +10:00
/* Valid page here already, add our extra bits */
WARN_ON_ONCE ( ( pte_val ( * ptep ) ^ pte_val ( pte ) ) &
PTE_BITS_MUST_MATCH ) ;
kvmppc_radix_update_pte ( kvm , ptep , 0 , pte_val ( pte ) , gpa , 0 ) ;
ret = 0 ;
goto out_unlock ;
2017-01-30 21:21:46 +11:00
}
2018-02-24 20:14:37 +11:00
kvmppc_radix_set_pte_at ( kvm , gpa , ptep , pte ) ;
2018-10-08 16:31:08 +11:00
if ( rmapp & & n_rmap )
kvmhv_insert_nest_rmap ( kvm , rmapp , n_rmap ) ;
2017-01-30 21:21:46 +11:00
ret = 0 ;
out_unlock :
spin_unlock ( & kvm - > mmu_lock ) ;
if ( new_pud )
pud_free ( kvm - > mm , new_pud ) ;
if ( new_pmd )
2018-04-16 16:57:15 +05:30
kvmppc_pmd_free ( new_pmd ) ;
2017-01-30 21:21:46 +11:00
if ( new_ptep )
kvmppc_pte_free ( new_ptep ) ;
return ret ;
}
2020-05-05 12:47:18 +05:30
bool kvmppc_hv_handle_set_rc ( struct kvm * kvm , bool nested , bool writing ,
2018-10-08 16:31:07 +11:00
unsigned long gpa , unsigned int lpid )
2018-10-08 16:31:01 +11:00
{
unsigned long pgflags ;
unsigned int shift ;
pte_t * ptep ;
/*
* Need to set an R or C bit in the 2 nd - level tables ;
* since we are just helping out the hardware here ,
* it is sufficient to do what the hardware does .
*/
pgflags = _PAGE_ACCESSED ;
if ( writing )
pgflags | = _PAGE_DIRTY ;
2020-05-05 12:47:18 +05:30
if ( nested )
ptep = find_kvm_nested_guest_pte ( kvm , lpid , gpa , & shift ) ;
else
ptep = find_kvm_secondary_pte ( kvm , gpa , & shift ) ;
2018-10-08 16:31:01 +11:00
if ( ptep & & pte_present ( * ptep ) & & ( ! writing | | pte_write ( * ptep ) ) ) {
kvmppc_radix_update_pte ( kvm , ptep , 0 , pgflags , gpa , shift ) ;
return true ;
}
return false ;
}
2018-10-08 16:31:07 +11:00
int kvmppc_book3s_instantiate_page ( struct kvm_vcpu * vcpu ,
unsigned long gpa ,
struct kvm_memory_slot * memslot ,
bool writing , bool kvm_ro ,
pte_t * inserted_pte , unsigned int * levelp )
2017-01-30 21:21:46 +11:00
{
struct kvm * kvm = vcpu - > kvm ;
2018-03-01 15:14:02 +11:00
struct page * page = NULL ;
2018-10-08 16:31:01 +11:00
unsigned long mmu_seq ;
unsigned long hva , gfn = gpa > > PAGE_SHIFT ;
2018-03-01 15:14:02 +11:00
bool upgrade_write = false ;
bool * upgrade_p = & upgrade_write ;
2017-01-30 21:21:46 +11:00
pte_t pte , * ptep ;
unsigned int shift , level ;
2018-10-08 16:31:01 +11:00
int ret ;
2018-12-12 15:16:17 +11:00
bool large_enable ;
2017-01-30 21:21:46 +11:00
2018-03-01 15:14:02 +11:00
/* used to check for invalidations in progress */
mmu_seq = kvm - > mmu_notifier_seq ;
smp_rmb ( ) ;
/*
* Do a fast check first , since __gfn_to_pfn_memslot doesn ' t
* do it with ! atomic & & ! async , which is how we call it .
* We always ask for write permission since the common case
* is that the page is writable .
*/
hva = gfn_to_hva_memslot ( memslot , gfn ) ;
2020-06-07 21:40:55 -07:00
if ( ! kvm_ro & & get_user_page_fast_only ( hva , FOLL_WRITE , & page ) ) {
2018-03-01 15:14:02 +11:00
upgrade_write = true ;
} else {
2018-09-11 20:48:34 +10:00
unsigned long pfn ;
2018-03-01 15:14:02 +11:00
/* Call KVM generic code to do the slow-path check */
pfn = __gfn_to_pfn_memslot ( memslot , gfn , false , NULL ,
2021-02-22 11:45:22 +09:00
writing , upgrade_p , NULL ) ;
2018-03-01 15:14:02 +11:00
if ( is_error_noslot_pfn ( pfn ) )
return - EFAULT ;
page = NULL ;
if ( pfn_valid ( pfn ) ) {
page = pfn_to_page ( pfn ) ;
if ( PageReserved ( page ) )
page = NULL ;
2017-01-30 21:21:46 +11:00
}
2018-03-01 15:14:02 +11:00
}
2017-01-30 21:21:46 +11:00
/*
2018-09-11 20:48:34 +10:00
* Read the PTE from the process ' radix tree and use that
* so we get the shift and attribute bits .
2017-01-30 21:21:46 +11:00
*/
2020-05-05 12:47:24 +05:30
spin_lock ( & kvm - > mmu_lock ) ;
ptep = find_kvm_host_pte ( kvm , mmu_seq , hva , & shift ) ;
2020-04-16 14:23:43 +10:00
pte = __pte ( 0 ) ;
if ( ptep )
2020-05-05 12:47:24 +05:30
pte = READ_ONCE ( * ptep ) ;
spin_unlock ( & kvm - > mmu_lock ) ;
2018-10-04 14:51:11 +10:00
/*
* If the PTE disappeared temporarily due to a THP
* collapse , just return and let the guest try again .
*/
2020-04-16 14:23:43 +10:00
if ( ! pte_present ( pte ) ) {
2018-10-04 14:51:11 +10:00
if ( page )
put_page ( page ) ;
return RESUME_GUEST ;
}
2018-09-11 20:48:34 +10:00
2018-12-12 15:16:17 +11:00
/* If we're logging dirty pages, always map single pages */
large_enable = ! ( memslot - > flags & KVM_MEM_LOG_DIRTY_PAGES ) ;
2018-09-11 20:48:34 +10:00
/* Get pte level from shift/size */
2018-12-12 15:16:17 +11:00
if ( large_enable & & shift = = PUD_SHIFT & &
2018-09-11 20:48:34 +10:00
( gpa & ( PUD_SIZE - PAGE_SIZE ) ) = =
( hva & ( PUD_SIZE - PAGE_SIZE ) ) ) {
level = 2 ;
2018-12-12 15:16:17 +11:00
} else if ( large_enable & & shift = = PMD_SHIFT & &
2018-09-11 20:48:34 +10:00
( gpa & ( PMD_SIZE - PAGE_SIZE ) ) = =
( hva & ( PMD_SIZE - PAGE_SIZE ) ) ) {
level = 1 ;
2018-03-01 15:14:02 +11:00
} else {
2018-09-11 20:48:34 +10:00
level = 0 ;
if ( shift > PAGE_SHIFT ) {
/*
* If the pte maps more than one page , bring over
* bits from the virtual address to get the real
* address of the specific single page we want .
*/
unsigned long rpnmask = ( 1ul < < shift ) - PAGE_SIZE ;
pte = __pte ( pte_val ( pte ) | ( hva & rpnmask ) ) ;
2018-05-17 17:06:30 +10:00
}
2017-01-30 21:21:46 +11:00
}
2018-09-11 20:48:34 +10:00
pte = __pte ( pte_val ( pte ) | _PAGE_EXEC | _PAGE_ACCESSED ) ;
if ( writing | | upgrade_write ) {
if ( pte_val ( pte ) & _PAGE_WRITE )
pte = __pte ( pte_val ( pte ) | _PAGE_DIRTY ) ;
} else {
pte = __pte ( pte_val ( pte ) & ~ ( _PAGE_WRITE | _PAGE_DIRTY ) ) ;
}
2017-01-30 21:21:46 +11:00
/* Allocate space in the tree and write the PTE */
2018-10-08 16:31:01 +11:00
ret = kvmppc_create_pte ( kvm , kvm - > arch . pgtable , pte , gpa , level ,
2018-10-08 16:31:08 +11:00
mmu_seq , kvm - > arch . lpid , NULL , NULL ) ;
2018-10-08 16:31:01 +11:00
if ( inserted_pte )
* inserted_pte = pte ;
if ( levelp )
* levelp = level ;
2017-01-30 21:21:46 +11:00
if ( page ) {
2018-03-01 15:14:02 +11:00
if ( ! ret & & ( pte_val ( pte ) & _PAGE_WRITE ) )
2018-02-23 21:21:12 +11:00
set_page_dirty_lock ( page ) ;
put_page ( page ) ;
2017-01-30 21:21:46 +11:00
}
2018-02-23 21:21:12 +11:00
2019-02-19 14:53:45 +11:00
/* Increment number of large pages if we (successfully) inserted one */
if ( ! ret ) {
if ( level = = 1 )
kvm - > stat . num_2M_pages + + ;
else if ( level = = 2 )
kvm - > stat . num_1G_pages + + ;
}
2018-10-08 16:31:01 +11:00
return ret ;
}
2020-04-27 12:35:11 +08:00
int kvmppc_book3s_radix_page_fault ( struct kvm_vcpu * vcpu ,
2018-10-08 16:31:01 +11:00
unsigned long ea , unsigned long dsisr )
{
struct kvm * kvm = vcpu - > kvm ;
unsigned long gpa , gfn ;
struct kvm_memory_slot * memslot ;
long ret ;
bool writing = ! ! ( dsisr & DSISR_ISSTORE ) ;
bool kvm_ro = false ;
/* Check for unusual errors */
if ( dsisr & DSISR_UNSUPP_MMU ) {
pr_err ( " KVM: Got unsupported MMU fault \n " ) ;
return - EFAULT ;
}
if ( dsisr & DSISR_BADACCESS ) {
/* Reflect to the guest as DSI */
pr_err ( " KVM: Got radix HV page fault with DSISR=%lx \n " , dsisr ) ;
kvmppc_core_queue_data_storage ( vcpu , ea , dsisr ) ;
return RESUME_GUEST ;
}
/* Translate the logical address */
gpa = vcpu - > arch . fault_gpa & ~ 0xfffUL ;
gpa & = ~ 0xF000000000000000ul ;
gfn = gpa > > PAGE_SHIFT ;
if ( ! ( dsisr & DSISR_PRTABLE_FAULT ) )
gpa | = ea & 0xfff ;
2019-11-25 08:36:28 +05:30
if ( kvm - > arch . secure_guest & KVMPPC_SECURE_INIT_DONE )
return kvmppc_send_page_to_uv ( kvm , gfn ) ;
2018-10-08 16:31:01 +11:00
/* Get the corresponding memslot */
memslot = gfn_to_memslot ( kvm , gfn ) ;
/* No memslot means it's an emulated MMIO region */
if ( ! memslot | | ( memslot - > flags & KVM_MEMSLOT_INVALID ) ) {
if ( dsisr & ( DSISR_PRTABLE_FAULT | DSISR_BADACCESS |
DSISR_SET_RC ) ) {
/*
* Bad address in guest page table tree , or other
* unusual error - reflect it to the guest as DSI .
*/
kvmppc_core_queue_data_storage ( vcpu , ea , dsisr ) ;
return RESUME_GUEST ;
}
2020-04-27 12:35:11 +08:00
return kvmppc_hv_emulate_mmio ( vcpu , gpa , ea , writing ) ;
2018-10-08 16:31:01 +11:00
}
if ( memslot - > flags & KVM_MEM_READONLY ) {
if ( writing ) {
/* give the guest a DSI */
kvmppc_core_queue_data_storage ( vcpu , ea , DSISR_ISSTORE |
DSISR_PROTFAULT ) ;
return RESUME_GUEST ;
}
kvm_ro = true ;
}
/* Failed to set the reference/change bits */
if ( dsisr & DSISR_SET_RC ) {
spin_lock ( & kvm - > mmu_lock ) ;
2020-05-05 12:47:18 +05:30
if ( kvmppc_hv_handle_set_rc ( kvm , false , writing ,
gpa , kvm - > arch . lpid ) )
2018-10-08 16:31:01 +11:00
dsisr & = ~ DSISR_SET_RC ;
spin_unlock ( & kvm - > mmu_lock ) ;
if ( ! ( dsisr & ( DSISR_BAD_FAULT_64S | DSISR_NOHPTE |
DSISR_PROTFAULT | DSISR_SET_RC ) ) )
return RESUME_GUEST ;
}
/* Try to insert a pte */
ret = kvmppc_book3s_instantiate_page ( vcpu , gpa , memslot , writing ,
kvm_ro , NULL , NULL ) ;
2018-02-23 21:21:12 +11:00
if ( ret = = 0 | | ret = = - EAGAIN )
ret = RESUME_GUEST ;
2017-01-30 21:21:46 +11:00
return ret ;
}
2018-12-12 15:16:48 +11:00
/* Called with kvm->mmu_lock held */
2021-05-05 22:15:09 +10:00
void kvm_unmap_radix ( struct kvm * kvm , struct kvm_memory_slot * memslot ,
2021-04-01 17:56:53 -07:00
unsigned long gfn )
2017-01-30 21:21:47 +11:00
{
pte_t * ptep ;
unsigned long gpa = gfn < < PAGE_SHIFT ;
unsigned int shift ;
2019-11-25 08:36:28 +05:30
if ( kvm - > arch . secure_guest & KVMPPC_SECURE_INIT_DONE ) {
uv_page_inval ( kvm - > arch . lpid , gpa , PAGE_SHIFT ) ;
2021-05-05 22:15:09 +10:00
return ;
2019-11-25 08:36:28 +05:30
}
2020-05-05 12:47:16 +05:30
ptep = find_kvm_secondary_pte ( kvm , gpa , & shift ) ;
2018-10-08 16:31:02 +11:00
if ( ptep & & pte_present ( * ptep ) )
2018-10-08 16:31:07 +11:00
kvmppc_unmap_pte ( kvm , ptep , gpa , shift , memslot ,
kvm - > arch . lpid ) ;
2017-01-30 21:21:47 +11:00
}
2018-12-12 15:16:48 +11:00
/* Called with kvm->mmu_lock held */
2021-04-01 17:56:53 -07:00
bool kvm_age_radix ( struct kvm * kvm , struct kvm_memory_slot * memslot ,
unsigned long gfn )
2017-01-30 21:21:47 +11:00
{
pte_t * ptep ;
unsigned long gpa = gfn < < PAGE_SHIFT ;
unsigned int shift ;
2021-04-01 17:56:53 -07:00
bool ref = false ;
2018-12-21 14:28:43 +11:00
unsigned long old , * rmapp ;
2017-01-30 21:21:47 +11:00
2019-11-25 08:36:28 +05:30
if ( kvm - > arch . secure_guest & KVMPPC_SECURE_INIT_DONE )
return ref ;
2020-05-05 12:47:16 +05:30
ptep = find_kvm_secondary_pte ( kvm , gpa , & shift ) ;
2017-01-30 21:21:47 +11:00
if ( ptep & & pte_present ( * ptep ) & & pte_young ( * ptep ) ) {
2018-12-21 14:28:43 +11:00
old = kvmppc_radix_update_pte ( kvm , ptep , _PAGE_ACCESSED , 0 ,
gpa , shift ) ;
2017-01-30 21:21:47 +11:00
/* XXX need to flush tlb here? */
2018-12-21 14:28:43 +11:00
/* Also clear bit in ptes in shadow pgtable for nested guests */
rmapp = & memslot - > arch . rmap [ gfn - memslot - > base_gfn ] ;
kvmhv_update_nest_rmap_rc_list ( kvm , rmapp , _PAGE_ACCESSED , 0 ,
old & PTE_RPN_MASK ,
1UL < < shift ) ;
2021-04-01 17:56:53 -07:00
ref = true ;
2017-01-30 21:21:47 +11:00
}
return ref ;
}
2018-12-12 15:16:48 +11:00
/* Called with kvm->mmu_lock held */
2021-04-01 17:56:53 -07:00
bool kvm_test_age_radix ( struct kvm * kvm , struct kvm_memory_slot * memslot ,
unsigned long gfn )
2017-01-30 21:21:47 +11:00
{
pte_t * ptep ;
unsigned long gpa = gfn < < PAGE_SHIFT ;
unsigned int shift ;
2021-04-01 17:56:53 -07:00
bool ref = false ;
2017-01-30 21:21:47 +11:00
2019-11-25 08:36:28 +05:30
if ( kvm - > arch . secure_guest & KVMPPC_SECURE_INIT_DONE )
return ref ;
2020-05-05 12:47:16 +05:30
ptep = find_kvm_secondary_pte ( kvm , gpa , & shift ) ;
2017-01-30 21:21:47 +11:00
if ( ptep & & pte_present ( * ptep ) & & pte_young ( * ptep ) )
2021-04-01 17:56:53 -07:00
ref = true ;
2017-01-30 21:21:47 +11:00
return ref ;
}
2017-01-30 21:21:48 +11:00
/* Returns the number of PAGE_SIZE pages that are dirty */
static int kvm_radix_test_clear_dirty ( struct kvm * kvm ,
struct kvm_memory_slot * memslot , int pagenum )
{
unsigned long gfn = memslot - > base_gfn + pagenum ;
unsigned long gpa = gfn < < PAGE_SHIFT ;
2020-05-28 13:34:56 +05:30
pte_t * ptep , pte ;
2017-01-30 21:21:48 +11:00
unsigned int shift ;
int ret = 0 ;
2018-12-21 14:28:43 +11:00
unsigned long old , * rmapp ;
2017-01-30 21:21:48 +11:00
2019-11-25 08:36:28 +05:30
if ( kvm - > arch . secure_guest & KVMPPC_SECURE_INIT_DONE )
return ret ;
2020-05-28 13:34:56 +05:30
/*
* For performance reasons we don ' t hold kvm - > mmu_lock while walking the
* partition scoped table .
*/
ptep = find_kvm_secondary_pte_unlocked ( kvm , gpa , & shift ) ;
if ( ! ptep )
return 0 ;
pte = READ_ONCE ( * ptep ) ;
if ( pte_present ( pte ) & & pte_dirty ( pte ) ) {
2018-12-21 14:28:43 +11:00
spin_lock ( & kvm - > mmu_lock ) ;
2020-05-28 13:34:56 +05:30
/*
* Recheck the pte again
*/
if ( pte_val ( pte ) ! = pte_val ( * ptep ) ) {
/*
* We have KVM_MEM_LOG_DIRTY_PAGES enabled . Hence we can
* only find PAGE_SIZE pte entries here . We can continue
* to use the pte addr returned by above page table
* walk .
*/
if ( ! pte_present ( * ptep ) | | ! pte_dirty ( * ptep ) ) {
spin_unlock ( & kvm - > mmu_lock ) ;
return 0 ;
}
}
ret = 1 ;
VM_BUG_ON ( shift ) ;
2018-12-21 14:28:43 +11:00
old = kvmppc_radix_update_pte ( kvm , ptep , _PAGE_DIRTY , 0 ,
gpa , shift ) ;
2018-10-08 16:31:07 +11:00
kvmppc_radix_tlbie_page ( kvm , gpa , shift , kvm - > arch . lpid ) ;
2018-12-21 14:28:43 +11:00
/* Also clear bit in ptes in shadow pgtable for nested guests */
rmapp = & memslot - > arch . rmap [ gfn - memslot - > base_gfn ] ;
kvmhv_update_nest_rmap_rc_list ( kvm , rmapp , _PAGE_DIRTY , 0 ,
old & PTE_RPN_MASK ,
1UL < < shift ) ;
spin_unlock ( & kvm - > mmu_lock ) ;
2017-01-30 21:21:48 +11:00
}
return ret ;
}
long kvmppc_hv_get_dirty_log_radix ( struct kvm * kvm ,
struct kvm_memory_slot * memslot , unsigned long * map )
{
unsigned long i , j ;
int npages ;
for ( i = 0 ; i < memslot - > npages ; i = j ) {
npages = kvm_radix_test_clear_dirty ( kvm , memslot , i ) ;
/*
* Note that if npages > 0 then i must be a multiple of npages ,
* since huge pages are only used to back the guest at guest
* real addresses that are a multiple of their size .
* Since we have at most one PTE covering any given guest
* real address , if npages > 1 we can skip to i + npages .
*/
j = i + 1 ;
KVM: PPC: Book3S HV: Unify dirty page map between HPT and radix
Currently, the HPT code in HV KVM maintains a dirty bit per guest page
in the rmap array, whether or not dirty page tracking has been enabled
for the memory slot. In contrast, the radix code maintains a dirty
bit per guest page in memslot->dirty_bitmap, and only does so when
dirty page tracking has been enabled.
This changes the HPT code to maintain the dirty bits in the memslot
dirty_bitmap like radix does. This results in slightly less code
overall, and will mean that we do not lose the dirty bits when
transitioning between HPT and radix mode in future.
There is one minor change to behaviour as a result. With HPT, when
dirty tracking was enabled for a memslot, we would previously clear
all the dirty bits at that point (both in the HPT entries and in the
rmap arrays), meaning that a KVM_GET_DIRTY_LOG ioctl immediately
following would show no pages as dirty (assuming no vcpus have run
in the meantime). With this change, the dirty bits on HPT entries
are not cleared at the point where dirty tracking is enabled, so
KVM_GET_DIRTY_LOG would show as dirty any guest pages that are
resident in the HPT and dirty. This is consistent with what happens
on radix.
This also fixes a bug in the mark_pages_dirty() function for radix
(in the sense that the function no longer exists). In the case where
a large page of 64 normal pages or more is marked dirty, the
addressing of the dirty bitmap was incorrect and could write past
the end of the bitmap. Fortunately this case was never hit in
practice because a 2MB large page is only 32 x 64kB pages, and we
don't support backing the guest with 1GB huge pages at this point.
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2017-10-26 16:39:19 +11:00
if ( npages ) {
set_dirty_bits ( map , i , npages ) ;
2017-11-10 16:43:35 +11:00
j = i + npages ;
KVM: PPC: Book3S HV: Unify dirty page map between HPT and radix
Currently, the HPT code in HV KVM maintains a dirty bit per guest page
in the rmap array, whether or not dirty page tracking has been enabled
for the memory slot. In contrast, the radix code maintains a dirty
bit per guest page in memslot->dirty_bitmap, and only does so when
dirty page tracking has been enabled.
This changes the HPT code to maintain the dirty bits in the memslot
dirty_bitmap like radix does. This results in slightly less code
overall, and will mean that we do not lose the dirty bits when
transitioning between HPT and radix mode in future.
There is one minor change to behaviour as a result. With HPT, when
dirty tracking was enabled for a memslot, we would previously clear
all the dirty bits at that point (both in the HPT entries and in the
rmap arrays), meaning that a KVM_GET_DIRTY_LOG ioctl immediately
following would show no pages as dirty (assuming no vcpus have run
in the meantime). With this change, the dirty bits on HPT entries
are not cleared at the point where dirty tracking is enabled, so
KVM_GET_DIRTY_LOG would show as dirty any guest pages that are
resident in the HPT and dirty. This is consistent with what happens
on radix.
This also fixes a bug in the mark_pages_dirty() function for radix
(in the sense that the function no longer exists). In the case where
a large page of 64 normal pages or more is marked dirty, the
addressing of the dirty bitmap was incorrect and could write past
the end of the bitmap. Fortunately this case was never hit in
practice because a 2MB large page is only 32 x 64kB pages, and we
don't support backing the guest with 1GB huge pages at this point.
Signed-off-by: Paul Mackerras <paulus@ozlabs.org>
2017-10-26 16:39:19 +11:00
}
2017-01-30 21:21:48 +11:00
}
return 0 ;
}
2018-12-12 15:17:17 +11:00
void kvmppc_radix_flush_memslot ( struct kvm * kvm ,
const struct kvm_memory_slot * memslot )
{
unsigned long n ;
pte_t * ptep ;
unsigned long gpa ;
unsigned int shift ;
2019-11-25 08:36:29 +05:30
if ( kvm - > arch . secure_guest & KVMPPC_SECURE_INIT_START )
2019-12-19 13:51:45 -08:00
kvmppc_uvmem_drop_pages ( memslot , kvm , true ) ;
2019-11-25 08:36:29 +05:30
2019-11-25 08:36:28 +05:30
if ( kvm - > arch . secure_guest & KVMPPC_SECURE_INIT_DONE )
return ;
2018-12-12 15:17:17 +11:00
gpa = memslot - > base_gfn < < PAGE_SHIFT ;
spin_lock ( & kvm - > mmu_lock ) ;
for ( n = memslot - > npages ; n ; - - n ) {
2020-05-05 12:47:16 +05:30
ptep = find_kvm_secondary_pte ( kvm , gpa , & shift ) ;
2018-12-12 15:17:17 +11:00
if ( ptep & & pte_present ( * ptep ) )
kvmppc_unmap_pte ( kvm , ptep , gpa , shift , memslot ,
kvm - > arch . lpid ) ;
gpa + = PAGE_SIZE ;
}
2020-05-28 10:56:42 +10:00
/*
* Increase the mmu notifier sequence number to prevent any page
* fault that read the memslot earlier from writing a PTE .
*/
kvm - > mmu_notifier_seq + + ;
2018-12-12 15:17:17 +11:00
spin_unlock ( & kvm - > mmu_lock ) ;
}
2017-01-30 21:21:53 +11:00
static void add_rmmu_ap_encoding ( struct kvm_ppc_rmmu_info * info ,
int psize , int * indexp )
{
if ( ! mmu_psize_defs [ psize ] . shift )
return ;
info - > ap_encodings [ * indexp ] = mmu_psize_defs [ psize ] . shift |
( mmu_psize_defs [ psize ] . ap < < 29 ) ;
+ + ( * indexp ) ;
}
int kvmhv_get_rmmu_info ( struct kvm * kvm , struct kvm_ppc_rmmu_info * info )
{
int i ;
if ( ! radix_enabled ( ) )
return - EINVAL ;
memset ( info , 0 , sizeof ( * info ) ) ;
/* 4k page size */
info - > geometries [ 0 ] . page_shift = 12 ;
info - > geometries [ 0 ] . level_bits [ 0 ] = 9 ;
for ( i = 1 ; i < 4 ; + + i )
info - > geometries [ 0 ] . level_bits [ i ] = p9_supported_radix_bits [ i ] ;
/* 64k page size */
info - > geometries [ 1 ] . page_shift = 16 ;
for ( i = 0 ; i < 4 ; + + i )
info - > geometries [ 1 ] . level_bits [ i ] = p9_supported_radix_bits [ i ] ;
i = 0 ;
add_rmmu_ap_encoding ( info , MMU_PAGE_4K , & i ) ;
add_rmmu_ap_encoding ( info , MMU_PAGE_64K , & i ) ;
add_rmmu_ap_encoding ( info , MMU_PAGE_2M , & i ) ;
add_rmmu_ap_encoding ( info , MMU_PAGE_1G , & i ) ;
return 0 ;
}
int kvmppc_init_vm_radix ( struct kvm * kvm )
{
kvm - > arch . pgtable = pgd_alloc ( kvm - > mm ) ;
if ( ! kvm - > arch . pgtable )
return - ENOMEM ;
return 0 ;
}
2017-01-30 21:21:46 +11:00
static void pte_ctor ( void * addr )
{
2018-04-16 16:57:15 +05:30
memset ( addr , 0 , RADIX_PTE_TABLE_SIZE ) ;
}
static void pmd_ctor ( void * addr )
{
memset ( addr , 0 , RADIX_PMD_TABLE_SIZE ) ;
2017-01-30 21:21:46 +11:00
}
2018-10-08 16:30:57 +11:00
struct debugfs_radix_state {
struct kvm * kvm ;
struct mutex mutex ;
unsigned long gpa ;
2018-10-08 16:31:17 +11:00
int lpid ;
2018-10-08 16:30:57 +11:00
int chars_left ;
int buf_index ;
char buf [ 128 ] ;
u8 hdr ;
} ;
static int debugfs_radix_open ( struct inode * inode , struct file * file )
{
struct kvm * kvm = inode - > i_private ;
struct debugfs_radix_state * p ;
p = kzalloc ( sizeof ( * p ) , GFP_KERNEL ) ;
if ( ! p )
return - ENOMEM ;
kvm_get_kvm ( kvm ) ;
p - > kvm = kvm ;
mutex_init ( & p - > mutex ) ;
file - > private_data = p ;
return nonseekable_open ( inode , file ) ;
}
static int debugfs_radix_release ( struct inode * inode , struct file * file )
{
struct debugfs_radix_state * p = file - > private_data ;
kvm_put_kvm ( p - > kvm ) ;
kfree ( p ) ;
return 0 ;
}
static ssize_t debugfs_radix_read ( struct file * file , char __user * buf ,
size_t len , loff_t * ppos )
{
struct debugfs_radix_state * p = file - > private_data ;
ssize_t ret , r ;
unsigned long n ;
struct kvm * kvm ;
unsigned long gpa ;
pgd_t * pgt ;
2018-10-08 16:31:17 +11:00
struct kvm_nested_guest * nested ;
2020-06-04 16:46:44 -07:00
pgd_t * pgdp ;
p4d_t p4d , * p4dp ;
2018-10-08 16:30:57 +11:00
pud_t pud , * pudp ;
pmd_t pmd , * pmdp ;
pte_t * ptep ;
int shift ;
unsigned long pte ;
kvm = p - > kvm ;
if ( ! kvm_is_radix ( kvm ) )
return 0 ;
ret = mutex_lock_interruptible ( & p - > mutex ) ;
if ( ret )
return ret ;
if ( p - > chars_left ) {
n = p - > chars_left ;
if ( n > len )
n = len ;
r = copy_to_user ( buf , p - > buf + p - > buf_index , n ) ;
n - = r ;
p - > chars_left - = n ;
p - > buf_index + = n ;
buf + = n ;
len - = n ;
ret = n ;
if ( r ) {
if ( ! n )
ret = - EFAULT ;
goto out ;
}
}
gpa = p - > gpa ;
2018-10-08 16:31:17 +11:00
nested = NULL ;
pgt = NULL ;
while ( len ! = 0 & & p - > lpid > = 0 ) {
if ( gpa > = RADIX_PGTABLE_RANGE ) {
gpa = 0 ;
pgt = NULL ;
if ( nested ) {
kvmhv_put_nested ( nested ) ;
nested = NULL ;
}
p - > lpid = kvmhv_nested_next_lpid ( kvm , p - > lpid ) ;
p - > hdr = 0 ;
if ( p - > lpid < 0 )
break ;
}
if ( ! pgt ) {
if ( p - > lpid = = 0 ) {
pgt = kvm - > arch . pgtable ;
} else {
nested = kvmhv_get_nested ( kvm , p - > lpid , false ) ;
if ( ! nested ) {
gpa = RADIX_PGTABLE_RANGE ;
continue ;
}
pgt = nested - > shadow_pgtable ;
}
}
n = 0 ;
2018-10-08 16:30:57 +11:00
if ( ! p - > hdr ) {
2018-10-08 16:31:17 +11:00
if ( p - > lpid > 0 )
n = scnprintf ( p - > buf , sizeof ( p - > buf ) ,
" \n Nested LPID %d: " , p - > lpid ) ;
n + = scnprintf ( p - > buf + n , sizeof ( p - > buf ) - n ,
2018-10-08 16:30:57 +11:00
" pgdir: %lx \n " , ( unsigned long ) pgt ) ;
p - > hdr = 1 ;
goto copy ;
}
pgdp = pgt + pgd_index ( gpa ) ;
2020-06-04 16:46:44 -07:00
p4dp = p4d_offset ( pgdp , gpa ) ;
p4d = READ_ONCE ( * p4dp ) ;
if ( ! ( p4d_val ( p4d ) & _PAGE_PRESENT ) ) {
gpa = ( gpa & P4D_MASK ) + P4D_SIZE ;
2018-10-08 16:30:57 +11:00
continue ;
}
2020-06-04 16:46:44 -07:00
pudp = pud_offset ( & p4d , gpa ) ;
2018-10-08 16:30:57 +11:00
pud = READ_ONCE ( * pudp ) ;
if ( ! ( pud_val ( pud ) & _PAGE_PRESENT ) ) {
gpa = ( gpa & PUD_MASK ) + PUD_SIZE ;
continue ;
}
if ( pud_val ( pud ) & _PAGE_PTE ) {
pte = pud_val ( pud ) ;
shift = PUD_SHIFT ;
goto leaf ;
}
pmdp = pmd_offset ( & pud , gpa ) ;
pmd = READ_ONCE ( * pmdp ) ;
if ( ! ( pmd_val ( pmd ) & _PAGE_PRESENT ) ) {
gpa = ( gpa & PMD_MASK ) + PMD_SIZE ;
continue ;
}
if ( pmd_val ( pmd ) & _PAGE_PTE ) {
pte = pmd_val ( pmd ) ;
shift = PMD_SHIFT ;
goto leaf ;
}
ptep = pte_offset_kernel ( & pmd , gpa ) ;
pte = pte_val ( READ_ONCE ( * ptep ) ) ;
if ( ! ( pte & _PAGE_PRESENT ) ) {
gpa + = PAGE_SIZE ;
continue ;
}
shift = PAGE_SHIFT ;
leaf :
n = scnprintf ( p - > buf , sizeof ( p - > buf ) ,
" %lx: %lx %d \n " , gpa , pte , shift ) ;
gpa + = 1ul < < shift ;
copy :
p - > chars_left = n ;
if ( n > len )
n = len ;
r = copy_to_user ( buf , p - > buf , n ) ;
n - = r ;
p - > chars_left - = n ;
p - > buf_index = n ;
buf + = n ;
len - = n ;
ret + = n ;
if ( r ) {
if ( ! ret )
ret = - EFAULT ;
break ;
}
}
p - > gpa = gpa ;
2018-10-08 16:31:17 +11:00
if ( nested )
kvmhv_put_nested ( nested ) ;
2018-10-08 16:30:57 +11:00
out :
mutex_unlock ( & p - > mutex ) ;
return ret ;
}
static ssize_t debugfs_radix_write ( struct file * file , const char __user * buf ,
size_t len , loff_t * ppos )
{
return - EACCES ;
}
static const struct file_operations debugfs_radix_fops = {
. owner = THIS_MODULE ,
. open = debugfs_radix_open ,
. release = debugfs_radix_release ,
. read = debugfs_radix_read ,
. write = debugfs_radix_write ,
. llseek = generic_file_llseek ,
} ;
void kvmhv_radix_debugfs_init ( struct kvm * kvm )
{
2022-01-11 11:54:04 +11:00
debugfs_create_file ( " radix " , 0400 , kvm - > debugfs_dentry , kvm ,
2020-02-09 11:58:57 +01:00
& debugfs_radix_fops ) ;
2018-10-08 16:30:57 +11:00
}
2017-01-30 21:21:46 +11:00
int kvmppc_radix_init ( void )
{
2018-04-16 16:57:15 +05:30
unsigned long size = sizeof ( void * ) < < RADIX_PTE_INDEX_SIZE ;
2017-01-30 21:21:46 +11:00
kvm_pte_cache = kmem_cache_create ( " kvm-pte " , size , size , 0 , pte_ctor ) ;
if ( ! kvm_pte_cache )
return - ENOMEM ;
2018-04-16 16:57:15 +05:30
size = sizeof ( void * ) < < RADIX_PMD_INDEX_SIZE ;
kvm_pmd_cache = kmem_cache_create ( " kvm-pmd " , size , size , 0 , pmd_ctor ) ;
if ( ! kvm_pmd_cache ) {
kmem_cache_destroy ( kvm_pte_cache ) ;
return - ENOMEM ;
}
2017-01-30 21:21:46 +11:00
return 0 ;
}
void kvmppc_radix_exit ( void )
{
kmem_cache_destroy ( kvm_pte_cache ) ;
2018-04-16 16:57:15 +05:30
kmem_cache_destroy ( kvm_pmd_cache ) ;
2017-01-30 21:21:46 +11:00
}