1f5f9c6eaSPhilippe Mathieu-Daudé /*
2f5f9c6eaSPhilippe Mathieu-Daudé * Protected Virtualization functions
3f5f9c6eaSPhilippe Mathieu-Daudé *
4f5f9c6eaSPhilippe Mathieu-Daudé * Copyright IBM Corp. 2020
5f5f9c6eaSPhilippe Mathieu-Daudé * Author(s):
6f5f9c6eaSPhilippe Mathieu-Daudé * Janosch Frank <frankja@linux.ibm.com>
7f5f9c6eaSPhilippe Mathieu-Daudé *
8f5f9c6eaSPhilippe Mathieu-Daudé * This work is licensed under the terms of the GNU GPL, version 2 or (at
9f5f9c6eaSPhilippe Mathieu-Daudé * your option) any later version. See the COPYING file in the top-level
10f5f9c6eaSPhilippe Mathieu-Daudé * directory.
11f5f9c6eaSPhilippe Mathieu-Daudé */
12f5f9c6eaSPhilippe Mathieu-Daudé #include "qemu/osdep.h"
13f5f9c6eaSPhilippe Mathieu-Daudé
14f5f9c6eaSPhilippe Mathieu-Daudé #include <linux/kvm.h>
15f5f9c6eaSPhilippe Mathieu-Daudé
16f5f9c6eaSPhilippe Mathieu-Daudé #include "qemu/units.h"
17f5f9c6eaSPhilippe Mathieu-Daudé #include "qapi/error.h"
18f5f9c6eaSPhilippe Mathieu-Daudé #include "qemu/error-report.h"
19f5f9c6eaSPhilippe Mathieu-Daudé #include "sysemu/kvm.h"
20f5f9c6eaSPhilippe Mathieu-Daudé #include "sysemu/cpus.h"
21f5f9c6eaSPhilippe Mathieu-Daudé #include "qom/object_interfaces.h"
22f5f9c6eaSPhilippe Mathieu-Daudé #include "exec/confidential-guest-support.h"
23f5f9c6eaSPhilippe Mathieu-Daudé #include "hw/s390x/ipl.h"
24f5f9c6eaSPhilippe Mathieu-Daudé #include "hw/s390x/sclp.h"
25f5f9c6eaSPhilippe Mathieu-Daudé #include "target/s390x/kvm/kvm_s390x.h"
26f5f9c6eaSPhilippe Mathieu-Daudé #include "target/s390x/kvm/pv.h"
27f5f9c6eaSPhilippe Mathieu-Daudé
28f5f9c6eaSPhilippe Mathieu-Daudé static bool info_valid;
29f5f9c6eaSPhilippe Mathieu-Daudé static struct kvm_s390_pv_info_vm info_vm;
30f5f9c6eaSPhilippe Mathieu-Daudé static struct kvm_s390_pv_info_dump info_dump;
31f5f9c6eaSPhilippe Mathieu-Daudé
__s390_pv_cmd(uint32_t cmd,const char * cmdname,void * data,int * pvrc)327af51621SThomas Huth static int __s390_pv_cmd(uint32_t cmd, const char *cmdname, void *data,
337af51621SThomas Huth int *pvrc)
34f5f9c6eaSPhilippe Mathieu-Daudé {
35f5f9c6eaSPhilippe Mathieu-Daudé struct kvm_pv_cmd pv_cmd = {
36f5f9c6eaSPhilippe Mathieu-Daudé .cmd = cmd,
37f5f9c6eaSPhilippe Mathieu-Daudé .data = (uint64_t)data,
38f5f9c6eaSPhilippe Mathieu-Daudé };
39f5f9c6eaSPhilippe Mathieu-Daudé int rc;
40f5f9c6eaSPhilippe Mathieu-Daudé
41f5f9c6eaSPhilippe Mathieu-Daudé do {
42f5f9c6eaSPhilippe Mathieu-Daudé rc = kvm_vm_ioctl(kvm_state, KVM_S390_PV_COMMAND, &pv_cmd);
43f5f9c6eaSPhilippe Mathieu-Daudé } while (rc == -EINTR);
44f5f9c6eaSPhilippe Mathieu-Daudé
45f5f9c6eaSPhilippe Mathieu-Daudé if (rc) {
46f5f9c6eaSPhilippe Mathieu-Daudé error_report("KVM PV command %d (%s) failed: header rc %x rrc %x "
47f5f9c6eaSPhilippe Mathieu-Daudé "IOCTL rc: %d", cmd, cmdname, pv_cmd.rc, pv_cmd.rrc,
48f5f9c6eaSPhilippe Mathieu-Daudé rc);
49f5f9c6eaSPhilippe Mathieu-Daudé }
507af51621SThomas Huth if (pvrc) {
517af51621SThomas Huth *pvrc = pv_cmd.rc;
527af51621SThomas Huth }
53f5f9c6eaSPhilippe Mathieu-Daudé return rc;
54f5f9c6eaSPhilippe Mathieu-Daudé }
55f5f9c6eaSPhilippe Mathieu-Daudé
56f5f9c6eaSPhilippe Mathieu-Daudé /*
57f5f9c6eaSPhilippe Mathieu-Daudé * This macro lets us pass the command as a string to the function so
58f5f9c6eaSPhilippe Mathieu-Daudé * we can print it on an error.
59f5f9c6eaSPhilippe Mathieu-Daudé */
607af51621SThomas Huth #define s390_pv_cmd(cmd, data) __s390_pv_cmd(cmd, #cmd, data, NULL)
617af51621SThomas Huth #define s390_pv_cmd_pvrc(cmd, data, pvrc) __s390_pv_cmd(cmd, #cmd, data, pvrc)
62f5f9c6eaSPhilippe Mathieu-Daudé #define s390_pv_cmd_exit(cmd, data) \
63f5f9c6eaSPhilippe Mathieu-Daudé { \
64f5f9c6eaSPhilippe Mathieu-Daudé int rc; \
65f5f9c6eaSPhilippe Mathieu-Daudé \
667af51621SThomas Huth rc = __s390_pv_cmd(cmd, #cmd, data, NULL); \
67f5f9c6eaSPhilippe Mathieu-Daudé if (rc) { \
68f5f9c6eaSPhilippe Mathieu-Daudé exit(1); \
69f5f9c6eaSPhilippe Mathieu-Daudé } \
70f5f9c6eaSPhilippe Mathieu-Daudé }
71f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_query_info(void)72f5f9c6eaSPhilippe Mathieu-Daudé int s390_pv_query_info(void)
73f5f9c6eaSPhilippe Mathieu-Daudé {
74f5f9c6eaSPhilippe Mathieu-Daudé struct kvm_s390_pv_info info = {
75f5f9c6eaSPhilippe Mathieu-Daudé .header.id = KVM_PV_INFO_VM,
76f5f9c6eaSPhilippe Mathieu-Daudé .header.len_max = sizeof(info.header) + sizeof(info.vm),
77f5f9c6eaSPhilippe Mathieu-Daudé };
78f5f9c6eaSPhilippe Mathieu-Daudé int rc;
79f5f9c6eaSPhilippe Mathieu-Daudé
80f5f9c6eaSPhilippe Mathieu-Daudé /* Info API's first user is dump so they are bundled */
81f5f9c6eaSPhilippe Mathieu-Daudé if (!kvm_s390_get_protected_dump()) {
82f5f9c6eaSPhilippe Mathieu-Daudé return 0;
83f5f9c6eaSPhilippe Mathieu-Daudé }
84f5f9c6eaSPhilippe Mathieu-Daudé
85f5f9c6eaSPhilippe Mathieu-Daudé rc = s390_pv_cmd(KVM_PV_INFO, &info);
86f5f9c6eaSPhilippe Mathieu-Daudé if (rc) {
87f5f9c6eaSPhilippe Mathieu-Daudé error_report("KVM PV INFO cmd %x failed: %s",
88f5f9c6eaSPhilippe Mathieu-Daudé info.header.id, strerror(-rc));
89f5f9c6eaSPhilippe Mathieu-Daudé return rc;
90f5f9c6eaSPhilippe Mathieu-Daudé }
91f5f9c6eaSPhilippe Mathieu-Daudé memcpy(&info_vm, &info.vm, sizeof(info.vm));
92f5f9c6eaSPhilippe Mathieu-Daudé
93f5f9c6eaSPhilippe Mathieu-Daudé info.header.id = KVM_PV_INFO_DUMP;
94f5f9c6eaSPhilippe Mathieu-Daudé info.header.len_max = sizeof(info.header) + sizeof(info.dump);
95f5f9c6eaSPhilippe Mathieu-Daudé rc = s390_pv_cmd(KVM_PV_INFO, &info);
96f5f9c6eaSPhilippe Mathieu-Daudé if (rc) {
97f5f9c6eaSPhilippe Mathieu-Daudé error_report("KVM PV INFO cmd %x failed: %s",
98f5f9c6eaSPhilippe Mathieu-Daudé info.header.id, strerror(-rc));
99f5f9c6eaSPhilippe Mathieu-Daudé return rc;
100f5f9c6eaSPhilippe Mathieu-Daudé }
101f5f9c6eaSPhilippe Mathieu-Daudé
102f5f9c6eaSPhilippe Mathieu-Daudé memcpy(&info_dump, &info.dump, sizeof(info.dump));
103f5f9c6eaSPhilippe Mathieu-Daudé info_valid = true;
104f5f9c6eaSPhilippe Mathieu-Daudé
105f5f9c6eaSPhilippe Mathieu-Daudé return rc;
106f5f9c6eaSPhilippe Mathieu-Daudé }
107f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_vm_enable(void)108f5f9c6eaSPhilippe Mathieu-Daudé int s390_pv_vm_enable(void)
109f5f9c6eaSPhilippe Mathieu-Daudé {
110f5f9c6eaSPhilippe Mathieu-Daudé return s390_pv_cmd(KVM_PV_ENABLE, NULL);
111f5f9c6eaSPhilippe Mathieu-Daudé }
112f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_vm_disable(void)113f5f9c6eaSPhilippe Mathieu-Daudé void s390_pv_vm_disable(void)
114f5f9c6eaSPhilippe Mathieu-Daudé {
115f5f9c6eaSPhilippe Mathieu-Daudé s390_pv_cmd_exit(KVM_PV_DISABLE, NULL);
116f5f9c6eaSPhilippe Mathieu-Daudé }
117f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_do_unprot_async_fn(void * p)118f5f9c6eaSPhilippe Mathieu-Daudé static void *s390_pv_do_unprot_async_fn(void *p)
119f5f9c6eaSPhilippe Mathieu-Daudé {
120f5f9c6eaSPhilippe Mathieu-Daudé s390_pv_cmd_exit(KVM_PV_ASYNC_CLEANUP_PERFORM, NULL);
121f5f9c6eaSPhilippe Mathieu-Daudé return NULL;
122f5f9c6eaSPhilippe Mathieu-Daudé }
123f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_vm_try_disable_async(S390CcwMachineState * ms)124f5f9c6eaSPhilippe Mathieu-Daudé bool s390_pv_vm_try_disable_async(S390CcwMachineState *ms)
125f5f9c6eaSPhilippe Mathieu-Daudé {
126f5f9c6eaSPhilippe Mathieu-Daudé /*
127f5f9c6eaSPhilippe Mathieu-Daudé * t is only needed to create the thread; once qemu_thread_create
128f5f9c6eaSPhilippe Mathieu-Daudé * returns, it can safely be discarded.
129f5f9c6eaSPhilippe Mathieu-Daudé */
130f5f9c6eaSPhilippe Mathieu-Daudé QemuThread t;
131f5f9c6eaSPhilippe Mathieu-Daudé
132f5f9c6eaSPhilippe Mathieu-Daudé /*
133f5f9c6eaSPhilippe Mathieu-Daudé * If the feature is not present or if the VM is not larger than 2 GiB,
134f5f9c6eaSPhilippe Mathieu-Daudé * KVM_PV_ASYNC_CLEANUP_PREPARE fill fail; no point in attempting it.
135f5f9c6eaSPhilippe Mathieu-Daudé */
136f5f9c6eaSPhilippe Mathieu-Daudé if ((MACHINE(ms)->maxram_size <= 2 * GiB) ||
137f5f9c6eaSPhilippe Mathieu-Daudé !kvm_check_extension(kvm_state, KVM_CAP_S390_PROTECTED_ASYNC_DISABLE)) {
138f5f9c6eaSPhilippe Mathieu-Daudé return false;
139f5f9c6eaSPhilippe Mathieu-Daudé }
140f5f9c6eaSPhilippe Mathieu-Daudé if (s390_pv_cmd(KVM_PV_ASYNC_CLEANUP_PREPARE, NULL) != 0) {
141f5f9c6eaSPhilippe Mathieu-Daudé return false;
142f5f9c6eaSPhilippe Mathieu-Daudé }
143f5f9c6eaSPhilippe Mathieu-Daudé
144f5f9c6eaSPhilippe Mathieu-Daudé qemu_thread_create(&t, "async_cleanup", s390_pv_do_unprot_async_fn, NULL,
145f5f9c6eaSPhilippe Mathieu-Daudé QEMU_THREAD_DETACHED);
146f5f9c6eaSPhilippe Mathieu-Daudé
147f5f9c6eaSPhilippe Mathieu-Daudé return true;
148f5f9c6eaSPhilippe Mathieu-Daudé }
149f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_set_sec_parms(uint64_t origin,uint64_t length,Error ** errp)1507af51621SThomas Huth int s390_pv_set_sec_parms(uint64_t origin, uint64_t length, Error **errp)
151f5f9c6eaSPhilippe Mathieu-Daudé {
1527af51621SThomas Huth int ret, pvrc;
153f5f9c6eaSPhilippe Mathieu-Daudé struct kvm_s390_pv_sec_parm args = {
154f5f9c6eaSPhilippe Mathieu-Daudé .origin = origin,
155f5f9c6eaSPhilippe Mathieu-Daudé .length = length,
156f5f9c6eaSPhilippe Mathieu-Daudé };
157f5f9c6eaSPhilippe Mathieu-Daudé
1587af51621SThomas Huth ret = s390_pv_cmd_pvrc(KVM_PV_SET_SEC_PARMS, &args, &pvrc);
1597af51621SThomas Huth if (ret) {
1607af51621SThomas Huth error_setg(errp, "Failed to set secure execution parameters");
1617af51621SThomas Huth if (pvrc == 0x108) {
1627af51621SThomas Huth error_append_hint(errp, "Please check whether the image is "
1637af51621SThomas Huth "correctly encrypted for this host\n");
1647af51621SThomas Huth }
1657af51621SThomas Huth }
1667af51621SThomas Huth
1677af51621SThomas Huth return ret;
168f5f9c6eaSPhilippe Mathieu-Daudé }
169f5f9c6eaSPhilippe Mathieu-Daudé
170f5f9c6eaSPhilippe Mathieu-Daudé /*
171f5f9c6eaSPhilippe Mathieu-Daudé * Called for each component in the SE type IPL parameter block 0.
172f5f9c6eaSPhilippe Mathieu-Daudé */
s390_pv_unpack(uint64_t addr,uint64_t size,uint64_t tweak)173f5f9c6eaSPhilippe Mathieu-Daudé int s390_pv_unpack(uint64_t addr, uint64_t size, uint64_t tweak)
174f5f9c6eaSPhilippe Mathieu-Daudé {
175f5f9c6eaSPhilippe Mathieu-Daudé struct kvm_s390_pv_unp args = {
176f5f9c6eaSPhilippe Mathieu-Daudé .addr = addr,
177f5f9c6eaSPhilippe Mathieu-Daudé .size = size,
178f5f9c6eaSPhilippe Mathieu-Daudé .tweak = tweak,
179f5f9c6eaSPhilippe Mathieu-Daudé };
180f5f9c6eaSPhilippe Mathieu-Daudé
181f5f9c6eaSPhilippe Mathieu-Daudé return s390_pv_cmd(KVM_PV_UNPACK, &args);
182f5f9c6eaSPhilippe Mathieu-Daudé }
183f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_prep_reset(void)184f5f9c6eaSPhilippe Mathieu-Daudé void s390_pv_prep_reset(void)
185f5f9c6eaSPhilippe Mathieu-Daudé {
186f5f9c6eaSPhilippe Mathieu-Daudé s390_pv_cmd_exit(KVM_PV_PREP_RESET, NULL);
187f5f9c6eaSPhilippe Mathieu-Daudé }
188f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_verify(void)189f5f9c6eaSPhilippe Mathieu-Daudé int s390_pv_verify(void)
190f5f9c6eaSPhilippe Mathieu-Daudé {
191f5f9c6eaSPhilippe Mathieu-Daudé return s390_pv_cmd(KVM_PV_VERIFY, NULL);
192f5f9c6eaSPhilippe Mathieu-Daudé }
193f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_unshare(void)194f5f9c6eaSPhilippe Mathieu-Daudé void s390_pv_unshare(void)
195f5f9c6eaSPhilippe Mathieu-Daudé {
196f5f9c6eaSPhilippe Mathieu-Daudé s390_pv_cmd_exit(KVM_PV_UNSHARE_ALL, NULL);
197f5f9c6eaSPhilippe Mathieu-Daudé }
198f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_inject_reset_error(CPUState * cs)199f5f9c6eaSPhilippe Mathieu-Daudé void s390_pv_inject_reset_error(CPUState *cs)
200f5f9c6eaSPhilippe Mathieu-Daudé {
201f5f9c6eaSPhilippe Mathieu-Daudé int r1 = (cs->kvm_run->s390_sieic.ipa & 0x00f0) >> 4;
202f5f9c6eaSPhilippe Mathieu-Daudé CPUS390XState *env = &S390_CPU(cs)->env;
203f5f9c6eaSPhilippe Mathieu-Daudé
204f5f9c6eaSPhilippe Mathieu-Daudé /* Report that we are unable to enter protected mode */
205f5f9c6eaSPhilippe Mathieu-Daudé env->regs[r1 + 1] = DIAG_308_RC_INVAL_FOR_PV;
206f5f9c6eaSPhilippe Mathieu-Daudé }
207f5f9c6eaSPhilippe Mathieu-Daudé
kvm_s390_pv_dmp_get_size_cpu(void)208f5f9c6eaSPhilippe Mathieu-Daudé uint64_t kvm_s390_pv_dmp_get_size_cpu(void)
209f5f9c6eaSPhilippe Mathieu-Daudé {
210f5f9c6eaSPhilippe Mathieu-Daudé return info_dump.dump_cpu_buffer_len;
211f5f9c6eaSPhilippe Mathieu-Daudé }
212f5f9c6eaSPhilippe Mathieu-Daudé
kvm_s390_pv_dmp_get_size_completion_data(void)213f5f9c6eaSPhilippe Mathieu-Daudé uint64_t kvm_s390_pv_dmp_get_size_completion_data(void)
214f5f9c6eaSPhilippe Mathieu-Daudé {
215f5f9c6eaSPhilippe Mathieu-Daudé return info_dump.dump_config_finalize_len;
216f5f9c6eaSPhilippe Mathieu-Daudé }
217f5f9c6eaSPhilippe Mathieu-Daudé
kvm_s390_pv_dmp_get_size_mem_state(void)218f5f9c6eaSPhilippe Mathieu-Daudé uint64_t kvm_s390_pv_dmp_get_size_mem_state(void)
219f5f9c6eaSPhilippe Mathieu-Daudé {
220f5f9c6eaSPhilippe Mathieu-Daudé return info_dump.dump_config_mem_buffer_per_1m;
221f5f9c6eaSPhilippe Mathieu-Daudé }
222f5f9c6eaSPhilippe Mathieu-Daudé
kvm_s390_pv_info_basic_valid(void)223f5f9c6eaSPhilippe Mathieu-Daudé bool kvm_s390_pv_info_basic_valid(void)
224f5f9c6eaSPhilippe Mathieu-Daudé {
225f5f9c6eaSPhilippe Mathieu-Daudé return info_valid;
226f5f9c6eaSPhilippe Mathieu-Daudé }
227f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_dump_cmd(uint64_t subcmd,uint64_t uaddr,uint64_t gaddr,uint64_t len)228f5f9c6eaSPhilippe Mathieu-Daudé static int s390_pv_dump_cmd(uint64_t subcmd, uint64_t uaddr, uint64_t gaddr,
229f5f9c6eaSPhilippe Mathieu-Daudé uint64_t len)
230f5f9c6eaSPhilippe Mathieu-Daudé {
231f5f9c6eaSPhilippe Mathieu-Daudé struct kvm_s390_pv_dmp dmp = {
232f5f9c6eaSPhilippe Mathieu-Daudé .subcmd = subcmd,
233f5f9c6eaSPhilippe Mathieu-Daudé .buff_addr = uaddr,
234f5f9c6eaSPhilippe Mathieu-Daudé .buff_len = len,
235f5f9c6eaSPhilippe Mathieu-Daudé .gaddr = gaddr,
236f5f9c6eaSPhilippe Mathieu-Daudé };
237f5f9c6eaSPhilippe Mathieu-Daudé int ret;
238f5f9c6eaSPhilippe Mathieu-Daudé
239f5f9c6eaSPhilippe Mathieu-Daudé ret = s390_pv_cmd(KVM_PV_DUMP, (void *)&dmp);
240f5f9c6eaSPhilippe Mathieu-Daudé if (ret) {
241f5f9c6eaSPhilippe Mathieu-Daudé error_report("KVM DUMP command %ld failed", subcmd);
242f5f9c6eaSPhilippe Mathieu-Daudé }
243f5f9c6eaSPhilippe Mathieu-Daudé return ret;
244f5f9c6eaSPhilippe Mathieu-Daudé }
245f5f9c6eaSPhilippe Mathieu-Daudé
kvm_s390_dump_cpu(S390CPU * cpu,void * buff)246f5f9c6eaSPhilippe Mathieu-Daudé int kvm_s390_dump_cpu(S390CPU *cpu, void *buff)
247f5f9c6eaSPhilippe Mathieu-Daudé {
248f5f9c6eaSPhilippe Mathieu-Daudé struct kvm_s390_pv_dmp dmp = {
249f5f9c6eaSPhilippe Mathieu-Daudé .subcmd = KVM_PV_DUMP_CPU,
250f5f9c6eaSPhilippe Mathieu-Daudé .buff_addr = (uint64_t)buff,
251f5f9c6eaSPhilippe Mathieu-Daudé .gaddr = 0,
252f5f9c6eaSPhilippe Mathieu-Daudé .buff_len = info_dump.dump_cpu_buffer_len,
253f5f9c6eaSPhilippe Mathieu-Daudé };
254f5f9c6eaSPhilippe Mathieu-Daudé struct kvm_pv_cmd pv = {
255f5f9c6eaSPhilippe Mathieu-Daudé .cmd = KVM_PV_DUMP,
256f5f9c6eaSPhilippe Mathieu-Daudé .data = (uint64_t)&dmp,
257f5f9c6eaSPhilippe Mathieu-Daudé };
258f5f9c6eaSPhilippe Mathieu-Daudé
259f5f9c6eaSPhilippe Mathieu-Daudé return kvm_vcpu_ioctl(CPU(cpu), KVM_S390_PV_CPU_COMMAND, &pv);
260f5f9c6eaSPhilippe Mathieu-Daudé }
261f5f9c6eaSPhilippe Mathieu-Daudé
kvm_s390_dump_init(void)262f5f9c6eaSPhilippe Mathieu-Daudé int kvm_s390_dump_init(void)
263f5f9c6eaSPhilippe Mathieu-Daudé {
264f5f9c6eaSPhilippe Mathieu-Daudé return s390_pv_dump_cmd(KVM_PV_DUMP_INIT, 0, 0, 0);
265f5f9c6eaSPhilippe Mathieu-Daudé }
266f5f9c6eaSPhilippe Mathieu-Daudé
kvm_s390_dump_mem_state(uint64_t gaddr,size_t len,void * dest)267f5f9c6eaSPhilippe Mathieu-Daudé int kvm_s390_dump_mem_state(uint64_t gaddr, size_t len, void *dest)
268f5f9c6eaSPhilippe Mathieu-Daudé {
269f5f9c6eaSPhilippe Mathieu-Daudé return s390_pv_dump_cmd(KVM_PV_DUMP_CONFIG_STOR_STATE, (uint64_t)dest,
270f5f9c6eaSPhilippe Mathieu-Daudé gaddr, len);
271f5f9c6eaSPhilippe Mathieu-Daudé }
272f5f9c6eaSPhilippe Mathieu-Daudé
kvm_s390_dump_completion_data(void * buff)273f5f9c6eaSPhilippe Mathieu-Daudé int kvm_s390_dump_completion_data(void *buff)
274f5f9c6eaSPhilippe Mathieu-Daudé {
275f5f9c6eaSPhilippe Mathieu-Daudé return s390_pv_dump_cmd(KVM_PV_DUMP_COMPLETE, (uint64_t)buff, 0,
276f5f9c6eaSPhilippe Mathieu-Daudé info_dump.dump_config_finalize_len);
277f5f9c6eaSPhilippe Mathieu-Daudé }
278f5f9c6eaSPhilippe Mathieu-Daudé
279f5f9c6eaSPhilippe Mathieu-Daudé #define TYPE_S390_PV_GUEST "s390-pv-guest"
280f5f9c6eaSPhilippe Mathieu-Daudé OBJECT_DECLARE_SIMPLE_TYPE(S390PVGuest, S390_PV_GUEST)
281f5f9c6eaSPhilippe Mathieu-Daudé
282f5f9c6eaSPhilippe Mathieu-Daudé /**
283f5f9c6eaSPhilippe Mathieu-Daudé * S390PVGuest:
284f5f9c6eaSPhilippe Mathieu-Daudé *
285f5f9c6eaSPhilippe Mathieu-Daudé * The S390PVGuest object is basically a dummy used to tell the
286f5f9c6eaSPhilippe Mathieu-Daudé * confidential guest support system to use s390's PV mechanism.
287f5f9c6eaSPhilippe Mathieu-Daudé *
288f5f9c6eaSPhilippe Mathieu-Daudé * # $QEMU \
289f5f9c6eaSPhilippe Mathieu-Daudé * -object s390-pv-guest,id=pv0 \
290f5f9c6eaSPhilippe Mathieu-Daudé * -machine ...,confidential-guest-support=pv0
291f5f9c6eaSPhilippe Mathieu-Daudé */
292f5f9c6eaSPhilippe Mathieu-Daudé struct S390PVGuest {
293f5f9c6eaSPhilippe Mathieu-Daudé ConfidentialGuestSupport parent_obj;
294f5f9c6eaSPhilippe Mathieu-Daudé };
295f5f9c6eaSPhilippe Mathieu-Daudé
296f5f9c6eaSPhilippe Mathieu-Daudé typedef struct S390PVGuestClass S390PVGuestClass;
297f5f9c6eaSPhilippe Mathieu-Daudé
298f5f9c6eaSPhilippe Mathieu-Daudé struct S390PVGuestClass {
299f5f9c6eaSPhilippe Mathieu-Daudé ConfidentialGuestSupportClass parent_class;
300f5f9c6eaSPhilippe Mathieu-Daudé };
301f5f9c6eaSPhilippe Mathieu-Daudé
302f5f9c6eaSPhilippe Mathieu-Daudé /*
303f5f9c6eaSPhilippe Mathieu-Daudé * If protected virtualization is enabled, the amount of data that the
304f5f9c6eaSPhilippe Mathieu-Daudé * Read SCP Info Service Call can use is limited to one page. The
305f5f9c6eaSPhilippe Mathieu-Daudé * available space also depends on the Extended-Length SCCB (ELS)
306f5f9c6eaSPhilippe Mathieu-Daudé * feature which can take more buffer space to store feature
307f5f9c6eaSPhilippe Mathieu-Daudé * information. This impacts the maximum number of CPUs supported in
308f5f9c6eaSPhilippe Mathieu-Daudé * the machine.
309f5f9c6eaSPhilippe Mathieu-Daudé */
s390_pv_get_max_cpus(void)310f5f9c6eaSPhilippe Mathieu-Daudé static uint32_t s390_pv_get_max_cpus(void)
311f5f9c6eaSPhilippe Mathieu-Daudé {
312f5f9c6eaSPhilippe Mathieu-Daudé int offset_cpu = s390_has_feat(S390_FEAT_EXTENDED_LENGTH_SCCB) ?
313f5f9c6eaSPhilippe Mathieu-Daudé offsetof(ReadInfo, entries) : SCLP_READ_SCP_INFO_FIXED_CPU_OFFSET;
314f5f9c6eaSPhilippe Mathieu-Daudé
315f5f9c6eaSPhilippe Mathieu-Daudé return (TARGET_PAGE_SIZE - offset_cpu) / sizeof(CPUEntry);
316f5f9c6eaSPhilippe Mathieu-Daudé }
317f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_check_cpus(Error ** errp)318f5f9c6eaSPhilippe Mathieu-Daudé static bool s390_pv_check_cpus(Error **errp)
319f5f9c6eaSPhilippe Mathieu-Daudé {
320f5f9c6eaSPhilippe Mathieu-Daudé MachineState *ms = MACHINE(qdev_get_machine());
321f5f9c6eaSPhilippe Mathieu-Daudé uint32_t pv_max_cpus = s390_pv_get_max_cpus();
322f5f9c6eaSPhilippe Mathieu-Daudé
323f5f9c6eaSPhilippe Mathieu-Daudé if (ms->smp.max_cpus > pv_max_cpus) {
324f5f9c6eaSPhilippe Mathieu-Daudé error_setg(errp, "Protected VMs support a maximum of %d CPUs",
325f5f9c6eaSPhilippe Mathieu-Daudé pv_max_cpus);
326f5f9c6eaSPhilippe Mathieu-Daudé return false;
327f5f9c6eaSPhilippe Mathieu-Daudé }
328f5f9c6eaSPhilippe Mathieu-Daudé
329f5f9c6eaSPhilippe Mathieu-Daudé return true;
330f5f9c6eaSPhilippe Mathieu-Daudé }
331f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_guest_check(ConfidentialGuestSupport * cgs,Error ** errp)332f5f9c6eaSPhilippe Mathieu-Daudé static bool s390_pv_guest_check(ConfidentialGuestSupport *cgs, Error **errp)
333f5f9c6eaSPhilippe Mathieu-Daudé {
334f5f9c6eaSPhilippe Mathieu-Daudé return s390_pv_check_cpus(errp);
335f5f9c6eaSPhilippe Mathieu-Daudé }
336f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_kvm_init(ConfidentialGuestSupport * cgs,Error ** errp)337*a14a2b01SXiaoyao Li static int s390_pv_kvm_init(ConfidentialGuestSupport *cgs, Error **errp)
338f5f9c6eaSPhilippe Mathieu-Daudé {
339f5f9c6eaSPhilippe Mathieu-Daudé if (!object_dynamic_cast(OBJECT(cgs), TYPE_S390_PV_GUEST)) {
340f5f9c6eaSPhilippe Mathieu-Daudé return 0;
341f5f9c6eaSPhilippe Mathieu-Daudé }
342f5f9c6eaSPhilippe Mathieu-Daudé
343*a14a2b01SXiaoyao Li if (!kvm_enabled()) {
344*a14a2b01SXiaoyao Li error_setg(errp, "Protected Virtualization requires KVM");
345*a14a2b01SXiaoyao Li return -1;
346*a14a2b01SXiaoyao Li }
347*a14a2b01SXiaoyao Li
348f5f9c6eaSPhilippe Mathieu-Daudé if (!s390_has_feat(S390_FEAT_UNPACK)) {
349f5f9c6eaSPhilippe Mathieu-Daudé error_setg(errp,
350f5f9c6eaSPhilippe Mathieu-Daudé "CPU model does not support Protected Virtualization");
351f5f9c6eaSPhilippe Mathieu-Daudé return -1;
352f5f9c6eaSPhilippe Mathieu-Daudé }
353f5f9c6eaSPhilippe Mathieu-Daudé
354f5f9c6eaSPhilippe Mathieu-Daudé if (!s390_pv_guest_check(cgs, errp)) {
355f5f9c6eaSPhilippe Mathieu-Daudé return -1;
356f5f9c6eaSPhilippe Mathieu-Daudé }
357f5f9c6eaSPhilippe Mathieu-Daudé
358f5f9c6eaSPhilippe Mathieu-Daudé cgs->ready = true;
359f5f9c6eaSPhilippe Mathieu-Daudé
360f5f9c6eaSPhilippe Mathieu-Daudé return 0;
361f5f9c6eaSPhilippe Mathieu-Daudé }
362f5f9c6eaSPhilippe Mathieu-Daudé
363f5f9c6eaSPhilippe Mathieu-Daudé OBJECT_DEFINE_TYPE_WITH_INTERFACES(S390PVGuest,
364f5f9c6eaSPhilippe Mathieu-Daudé s390_pv_guest,
365f5f9c6eaSPhilippe Mathieu-Daudé S390_PV_GUEST,
366f5f9c6eaSPhilippe Mathieu-Daudé CONFIDENTIAL_GUEST_SUPPORT,
367f5f9c6eaSPhilippe Mathieu-Daudé { TYPE_USER_CREATABLE },
368f5f9c6eaSPhilippe Mathieu-Daudé { NULL })
369f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_guest_class_init(ObjectClass * oc,void * data)370f5f9c6eaSPhilippe Mathieu-Daudé static void s390_pv_guest_class_init(ObjectClass *oc, void *data)
371f5f9c6eaSPhilippe Mathieu-Daudé {
372*a14a2b01SXiaoyao Li ConfidentialGuestSupportClass *klass = CONFIDENTIAL_GUEST_SUPPORT_CLASS(oc);
373*a14a2b01SXiaoyao Li
374*a14a2b01SXiaoyao Li klass->kvm_init = s390_pv_kvm_init;
375f5f9c6eaSPhilippe Mathieu-Daudé }
376f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_guest_init(Object * obj)377f5f9c6eaSPhilippe Mathieu-Daudé static void s390_pv_guest_init(Object *obj)
378f5f9c6eaSPhilippe Mathieu-Daudé {
379f5f9c6eaSPhilippe Mathieu-Daudé }
380f5f9c6eaSPhilippe Mathieu-Daudé
s390_pv_guest_finalize(Object * obj)381f5f9c6eaSPhilippe Mathieu-Daudé static void s390_pv_guest_finalize(Object *obj)
382f5f9c6eaSPhilippe Mathieu-Daudé {
383f5f9c6eaSPhilippe Mathieu-Daudé }
384