xref: /openbmc/qemu/hw/ppc/spapr.c (revision 6ca1502e)
153018216SPaolo Bonzini /*
253018216SPaolo Bonzini  * QEMU PowerPC pSeries Logical Partition (aka sPAPR) hardware System Emulator
353018216SPaolo Bonzini  *
453018216SPaolo Bonzini  * Copyright (c) 2004-2007 Fabrice Bellard
553018216SPaolo Bonzini  * Copyright (c) 2007 Jocelyn Mayer
653018216SPaolo Bonzini  * Copyright (c) 2010 David Gibson, IBM Corporation.
753018216SPaolo Bonzini  *
853018216SPaolo Bonzini  * Permission is hereby granted, free of charge, to any person obtaining a copy
953018216SPaolo Bonzini  * of this software and associated documentation files (the "Software"), to deal
1053018216SPaolo Bonzini  * in the Software without restriction, including without limitation the rights
1153018216SPaolo Bonzini  * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
1253018216SPaolo Bonzini  * copies of the Software, and to permit persons to whom the Software is
1353018216SPaolo Bonzini  * furnished to do so, subject to the following conditions:
1453018216SPaolo Bonzini  *
1553018216SPaolo Bonzini  * The above copyright notice and this permission notice shall be included in
1653018216SPaolo Bonzini  * all copies or substantial portions of the Software.
1753018216SPaolo Bonzini  *
1853018216SPaolo Bonzini  * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
1953018216SPaolo Bonzini  * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
2053018216SPaolo Bonzini  * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL
2153018216SPaolo Bonzini  * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
2253018216SPaolo Bonzini  * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
2353018216SPaolo Bonzini  * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
2453018216SPaolo Bonzini  * THE SOFTWARE.
2553018216SPaolo Bonzini  *
2653018216SPaolo Bonzini  */
2753018216SPaolo Bonzini #include "sysemu/sysemu.h"
2853018216SPaolo Bonzini #include "hw/hw.h"
2971461b0fSAlexey Kardashevskiy #include "hw/fw-path-provider.h"
3053018216SPaolo Bonzini #include "elf.h"
3153018216SPaolo Bonzini #include "net/net.h"
3253018216SPaolo Bonzini #include "sysemu/blockdev.h"
3353018216SPaolo Bonzini #include "sysemu/cpus.h"
3453018216SPaolo Bonzini #include "sysemu/kvm.h"
3553018216SPaolo Bonzini #include "kvm_ppc.h"
364be21d56SDavid Gibson #include "mmu-hash64.h"
373794d548SAlexey Kardashevskiy #include "qom/cpu.h"
3853018216SPaolo Bonzini 
3953018216SPaolo Bonzini #include "hw/boards.h"
400d09e41aSPaolo Bonzini #include "hw/ppc/ppc.h"
4153018216SPaolo Bonzini #include "hw/loader.h"
4253018216SPaolo Bonzini 
430d09e41aSPaolo Bonzini #include "hw/ppc/spapr.h"
440d09e41aSPaolo Bonzini #include "hw/ppc/spapr_vio.h"
450d09e41aSPaolo Bonzini #include "hw/pci-host/spapr.h"
460d09e41aSPaolo Bonzini #include "hw/ppc/xics.h"
4753018216SPaolo Bonzini #include "hw/pci/msi.h"
4853018216SPaolo Bonzini 
4953018216SPaolo Bonzini #include "hw/pci/pci.h"
5071461b0fSAlexey Kardashevskiy #include "hw/scsi/scsi.h"
5171461b0fSAlexey Kardashevskiy #include "hw/virtio/virtio-scsi.h"
5253018216SPaolo Bonzini 
5353018216SPaolo Bonzini #include "exec/address-spaces.h"
5453018216SPaolo Bonzini #include "hw/usb.h"
5553018216SPaolo Bonzini #include "qemu/config-file.h"
56135a129aSAneesh Kumar K.V #include "qemu/error-report.h"
572a6593cbSAlexey Kardashevskiy #include "trace.h"
5853018216SPaolo Bonzini 
5953018216SPaolo Bonzini #include <libfdt.h>
6053018216SPaolo Bonzini 
6153018216SPaolo Bonzini /* SLOF memory layout:
6253018216SPaolo Bonzini  *
6353018216SPaolo Bonzini  * SLOF raw image loaded at 0, copies its romfs right below the flat
6453018216SPaolo Bonzini  * device-tree, then position SLOF itself 31M below that
6553018216SPaolo Bonzini  *
6653018216SPaolo Bonzini  * So we set FW_OVERHEAD to 40MB which should account for all of that
6753018216SPaolo Bonzini  * and more
6853018216SPaolo Bonzini  *
6953018216SPaolo Bonzini  * We load our kernel at 4M, leaving space for SLOF initial image
7053018216SPaolo Bonzini  */
713bf6eeddSAlexey Kardashevskiy #define FDT_MAX_SIZE            0x40000
7253018216SPaolo Bonzini #define RTAS_MAX_SIZE           0x10000
7353018216SPaolo Bonzini #define FW_MAX_SIZE             0x400000
7453018216SPaolo Bonzini #define FW_FILE_NAME            "slof.bin"
7553018216SPaolo Bonzini #define FW_OVERHEAD             0x2800000
7653018216SPaolo Bonzini #define KERNEL_LOAD_ADDR        FW_MAX_SIZE
7753018216SPaolo Bonzini 
7853018216SPaolo Bonzini #define MIN_RMA_SLOF            128UL
7953018216SPaolo Bonzini 
8053018216SPaolo Bonzini #define TIMEBASE_FREQ           512000000ULL
8153018216SPaolo Bonzini 
8253018216SPaolo Bonzini #define MAX_CPUS                256
8353018216SPaolo Bonzini 
8453018216SPaolo Bonzini #define PHANDLE_XICP            0x00001111
8553018216SPaolo Bonzini 
8653018216SPaolo Bonzini #define HTAB_SIZE(spapr)        (1ULL << ((spapr)->htab_shift))
8753018216SPaolo Bonzini 
88*6ca1502eSAlexey Kardashevskiy typedef struct sPAPRMachineState sPAPRMachineState;
89748abce9SEduardo Habkost 
9029ee3247SAlexey Kardashevskiy #define TYPE_SPAPR_MACHINE      "spapr-machine"
91748abce9SEduardo Habkost #define SPAPR_MACHINE(obj) \
92*6ca1502eSAlexey Kardashevskiy     OBJECT_CHECK(sPAPRMachineState, (obj), TYPE_SPAPR_MACHINE)
93748abce9SEduardo Habkost 
94748abce9SEduardo Habkost /**
95*6ca1502eSAlexey Kardashevskiy  * sPAPRMachineState:
96748abce9SEduardo Habkost  */
97*6ca1502eSAlexey Kardashevskiy struct sPAPRMachineState {
98748abce9SEduardo Habkost     /*< private >*/
99748abce9SEduardo Habkost     MachineState parent_obj;
10023825581SEduardo Habkost 
10123825581SEduardo Habkost     /*< public >*/
10223825581SEduardo Habkost     char *kvm_type;
103748abce9SEduardo Habkost };
104748abce9SEduardo Habkost 
10553018216SPaolo Bonzini sPAPREnvironment *spapr;
10653018216SPaolo Bonzini 
10753018216SPaolo Bonzini int spapr_allocate_irq(int hint, bool lsi)
10853018216SPaolo Bonzini {
10953018216SPaolo Bonzini     int irq;
11053018216SPaolo Bonzini 
11153018216SPaolo Bonzini     if (hint) {
11253018216SPaolo Bonzini         irq = hint;
113f1c2dc7cSAlexey Kardashevskiy         if (hint >= spapr->next_irq) {
114f1c2dc7cSAlexey Kardashevskiy             spapr->next_irq = hint + 1;
115f1c2dc7cSAlexey Kardashevskiy         }
11653018216SPaolo Bonzini         /* FIXME: we should probably check for collisions somehow */
11753018216SPaolo Bonzini     } else {
11853018216SPaolo Bonzini         irq = spapr->next_irq++;
11953018216SPaolo Bonzini     }
12053018216SPaolo Bonzini 
12153018216SPaolo Bonzini     /* Configure irq type */
12253018216SPaolo Bonzini     if (!xics_get_qirq(spapr->icp, irq)) {
12353018216SPaolo Bonzini         return 0;
12453018216SPaolo Bonzini     }
12553018216SPaolo Bonzini 
12653018216SPaolo Bonzini     xics_set_irq_type(spapr->icp, irq, lsi);
12753018216SPaolo Bonzini 
12853018216SPaolo Bonzini     return irq;
12953018216SPaolo Bonzini }
13053018216SPaolo Bonzini 
131f1c2dc7cSAlexey Kardashevskiy /*
132f1c2dc7cSAlexey Kardashevskiy  * Allocate block of consequtive IRQs, returns a number of the first.
133f1c2dc7cSAlexey Kardashevskiy  * If msi==true, aligns the first IRQ number to num.
134f1c2dc7cSAlexey Kardashevskiy  */
135f1c2dc7cSAlexey Kardashevskiy int spapr_allocate_irq_block(int num, bool lsi, bool msi)
13653018216SPaolo Bonzini {
13753018216SPaolo Bonzini     int first = -1;
138f1c2dc7cSAlexey Kardashevskiy     int i, hint = 0;
139f1c2dc7cSAlexey Kardashevskiy 
140f1c2dc7cSAlexey Kardashevskiy     /*
141f1c2dc7cSAlexey Kardashevskiy      * MSIMesage::data is used for storing VIRQ so
142f1c2dc7cSAlexey Kardashevskiy      * it has to be aligned to num to support multiple
143f1c2dc7cSAlexey Kardashevskiy      * MSI vectors. MSI-X is not affected by this.
144f1c2dc7cSAlexey Kardashevskiy      * The hint is used for the first IRQ, the rest should
14573f395faSStefan Weil      * be allocated continuously.
146f1c2dc7cSAlexey Kardashevskiy      */
147f1c2dc7cSAlexey Kardashevskiy     if (msi) {
148f1c2dc7cSAlexey Kardashevskiy         assert((num == 1) || (num == 2) || (num == 4) ||
149f1c2dc7cSAlexey Kardashevskiy                (num == 8) || (num == 16) || (num == 32));
150f1c2dc7cSAlexey Kardashevskiy         hint = (spapr->next_irq + num - 1) & ~(num - 1);
151f1c2dc7cSAlexey Kardashevskiy     }
15253018216SPaolo Bonzini 
15353018216SPaolo Bonzini     for (i = 0; i < num; ++i) {
15453018216SPaolo Bonzini         int irq;
15553018216SPaolo Bonzini 
156f1c2dc7cSAlexey Kardashevskiy         irq = spapr_allocate_irq(hint, lsi);
15753018216SPaolo Bonzini         if (!irq) {
15853018216SPaolo Bonzini             return -1;
15953018216SPaolo Bonzini         }
16053018216SPaolo Bonzini 
16153018216SPaolo Bonzini         if (0 == i) {
16253018216SPaolo Bonzini             first = irq;
163f1c2dc7cSAlexey Kardashevskiy             hint = 0;
16453018216SPaolo Bonzini         }
16553018216SPaolo Bonzini 
16653018216SPaolo Bonzini         /* If the above doesn't create a consecutive block then that's
16753018216SPaolo Bonzini          * an internal bug */
16853018216SPaolo Bonzini         assert(irq == (first + i));
16953018216SPaolo Bonzini     }
17053018216SPaolo Bonzini 
17153018216SPaolo Bonzini     return first;
17253018216SPaolo Bonzini }
17353018216SPaolo Bonzini 
174c04d6cfaSAnthony Liguori static XICSState *try_create_xics(const char *type, int nr_servers,
175c04d6cfaSAnthony Liguori                                   int nr_irqs)
176c04d6cfaSAnthony Liguori {
177c04d6cfaSAnthony Liguori     DeviceState *dev;
178c04d6cfaSAnthony Liguori 
179c04d6cfaSAnthony Liguori     dev = qdev_create(NULL, type);
180c04d6cfaSAnthony Liguori     qdev_prop_set_uint32(dev, "nr_servers", nr_servers);
181c04d6cfaSAnthony Liguori     qdev_prop_set_uint32(dev, "nr_irqs", nr_irqs);
182c04d6cfaSAnthony Liguori     if (qdev_init(dev) < 0) {
183c04d6cfaSAnthony Liguori         return NULL;
184c04d6cfaSAnthony Liguori     }
185c04d6cfaSAnthony Liguori 
1865a3d7b23SAlexey Kardashevskiy     return XICS_COMMON(dev);
187c04d6cfaSAnthony Liguori }
188c04d6cfaSAnthony Liguori 
189c04d6cfaSAnthony Liguori static XICSState *xics_system_init(int nr_servers, int nr_irqs)
190c04d6cfaSAnthony Liguori {
191c04d6cfaSAnthony Liguori     XICSState *icp = NULL;
192c04d6cfaSAnthony Liguori 
19311ad93f6SDavid Gibson     if (kvm_enabled()) {
19411ad93f6SDavid Gibson         QemuOpts *machine_opts = qemu_get_machine_opts();
19511ad93f6SDavid Gibson         bool irqchip_allowed = qemu_opt_get_bool(machine_opts,
19611ad93f6SDavid Gibson                                                 "kernel_irqchip", true);
19711ad93f6SDavid Gibson         bool irqchip_required = qemu_opt_get_bool(machine_opts,
19811ad93f6SDavid Gibson                                                   "kernel_irqchip", false);
19911ad93f6SDavid Gibson         if (irqchip_allowed) {
20011ad93f6SDavid Gibson             icp = try_create_xics(TYPE_KVM_XICS, nr_servers, nr_irqs);
20111ad93f6SDavid Gibson         }
20211ad93f6SDavid Gibson 
20311ad93f6SDavid Gibson         if (irqchip_required && !icp) {
20411ad93f6SDavid Gibson             perror("Failed to create in-kernel XICS\n");
20511ad93f6SDavid Gibson             abort();
20611ad93f6SDavid Gibson         }
20711ad93f6SDavid Gibson     }
20811ad93f6SDavid Gibson 
20911ad93f6SDavid Gibson     if (!icp) {
210c04d6cfaSAnthony Liguori         icp = try_create_xics(TYPE_XICS, nr_servers, nr_irqs);
21111ad93f6SDavid Gibson     }
21211ad93f6SDavid Gibson 
213c04d6cfaSAnthony Liguori     if (!icp) {
214c04d6cfaSAnthony Liguori         perror("Failed to create XICS\n");
215c04d6cfaSAnthony Liguori         abort();
216c04d6cfaSAnthony Liguori     }
217c04d6cfaSAnthony Liguori 
218c04d6cfaSAnthony Liguori     return icp;
219c04d6cfaSAnthony Liguori }
220c04d6cfaSAnthony Liguori 
221833d4668SAlexey Kardashevskiy static int spapr_fixup_cpu_smt_dt(void *fdt, int offset, PowerPCCPU *cpu,
222833d4668SAlexey Kardashevskiy                                   int smt_threads)
223833d4668SAlexey Kardashevskiy {
224833d4668SAlexey Kardashevskiy     int i, ret = 0;
225833d4668SAlexey Kardashevskiy     uint32_t servers_prop[smt_threads];
226833d4668SAlexey Kardashevskiy     uint32_t gservers_prop[smt_threads * 2];
227833d4668SAlexey Kardashevskiy     int index = ppc_get_vcpu_dt_id(cpu);
228833d4668SAlexey Kardashevskiy 
2296d9412eaSAlexey Kardashevskiy     if (cpu->cpu_version) {
2306d9412eaSAlexey Kardashevskiy         ret = fdt_setprop(fdt, offset, "cpu-version",
2316d9412eaSAlexey Kardashevskiy                           &cpu->cpu_version, sizeof(cpu->cpu_version));
2326d9412eaSAlexey Kardashevskiy         if (ret < 0) {
2336d9412eaSAlexey Kardashevskiy             return ret;
2346d9412eaSAlexey Kardashevskiy         }
2356d9412eaSAlexey Kardashevskiy     }
2366d9412eaSAlexey Kardashevskiy 
237833d4668SAlexey Kardashevskiy     /* Build interrupt servers and gservers properties */
238833d4668SAlexey Kardashevskiy     for (i = 0; i < smt_threads; i++) {
239833d4668SAlexey Kardashevskiy         servers_prop[i] = cpu_to_be32(index + i);
240833d4668SAlexey Kardashevskiy         /* Hack, direct the group queues back to cpu 0 */
241833d4668SAlexey Kardashevskiy         gservers_prop[i*2] = cpu_to_be32(index + i);
242833d4668SAlexey Kardashevskiy         gservers_prop[i*2 + 1] = 0;
243833d4668SAlexey Kardashevskiy     }
244833d4668SAlexey Kardashevskiy     ret = fdt_setprop(fdt, offset, "ibm,ppc-interrupt-server#s",
245833d4668SAlexey Kardashevskiy                       servers_prop, sizeof(servers_prop));
246833d4668SAlexey Kardashevskiy     if (ret < 0) {
247833d4668SAlexey Kardashevskiy         return ret;
248833d4668SAlexey Kardashevskiy     }
249833d4668SAlexey Kardashevskiy     ret = fdt_setprop(fdt, offset, "ibm,ppc-interrupt-gserver#s",
250833d4668SAlexey Kardashevskiy                       gservers_prop, sizeof(gservers_prop));
251833d4668SAlexey Kardashevskiy 
252833d4668SAlexey Kardashevskiy     return ret;
253833d4668SAlexey Kardashevskiy }
254833d4668SAlexey Kardashevskiy 
25553018216SPaolo Bonzini static int spapr_fixup_cpu_dt(void *fdt, sPAPREnvironment *spapr)
25653018216SPaolo Bonzini {
25782677ed2SAlexey Kardashevskiy     int ret = 0, offset, cpus_offset;
25882677ed2SAlexey Kardashevskiy     CPUState *cs;
25953018216SPaolo Bonzini     char cpu_model[32];
26053018216SPaolo Bonzini     int smt = kvmppc_smt_threads();
26153018216SPaolo Bonzini     uint32_t pft_size_prop[] = {0, cpu_to_be32(spapr->htab_shift)};
26253018216SPaolo Bonzini 
26382677ed2SAlexey Kardashevskiy     CPU_FOREACH(cs) {
26482677ed2SAlexey Kardashevskiy         PowerPCCPU *cpu = POWERPC_CPU(cs);
26582677ed2SAlexey Kardashevskiy         DeviceClass *dc = DEVICE_GET_CLASS(cs);
26682677ed2SAlexey Kardashevskiy         int index = ppc_get_vcpu_dt_id(cpu);
26753018216SPaolo Bonzini         uint32_t associativity[] = {cpu_to_be32(0x5),
26853018216SPaolo Bonzini                                     cpu_to_be32(0x0),
26953018216SPaolo Bonzini                                     cpu_to_be32(0x0),
27053018216SPaolo Bonzini                                     cpu_to_be32(0x0),
27182677ed2SAlexey Kardashevskiy                                     cpu_to_be32(cs->numa_node),
2720f20ba62SAlexey Kardashevskiy                                     cpu_to_be32(index)};
27353018216SPaolo Bonzini 
2740f20ba62SAlexey Kardashevskiy         if ((index % smt) != 0) {
27553018216SPaolo Bonzini             continue;
27653018216SPaolo Bonzini         }
27753018216SPaolo Bonzini 
27882677ed2SAlexey Kardashevskiy         snprintf(cpu_model, 32, "%s@%x", dc->fw_name, index);
27953018216SPaolo Bonzini 
28082677ed2SAlexey Kardashevskiy         cpus_offset = fdt_path_offset(fdt, "/cpus");
28182677ed2SAlexey Kardashevskiy         if (cpus_offset < 0) {
28282677ed2SAlexey Kardashevskiy             cpus_offset = fdt_add_subnode(fdt, fdt_path_offset(fdt, "/"),
28382677ed2SAlexey Kardashevskiy                                           "cpus");
28482677ed2SAlexey Kardashevskiy             if (cpus_offset < 0) {
28582677ed2SAlexey Kardashevskiy                 return cpus_offset;
28682677ed2SAlexey Kardashevskiy             }
28782677ed2SAlexey Kardashevskiy         }
28882677ed2SAlexey Kardashevskiy         offset = fdt_subnode_offset(fdt, cpus_offset, cpu_model);
28982677ed2SAlexey Kardashevskiy         if (offset < 0) {
29082677ed2SAlexey Kardashevskiy             offset = fdt_add_subnode(fdt, cpus_offset, cpu_model);
29153018216SPaolo Bonzini             if (offset < 0) {
29253018216SPaolo Bonzini                 return offset;
29353018216SPaolo Bonzini             }
29482677ed2SAlexey Kardashevskiy         }
29553018216SPaolo Bonzini 
29653018216SPaolo Bonzini         if (nb_numa_nodes > 1) {
29753018216SPaolo Bonzini             ret = fdt_setprop(fdt, offset, "ibm,associativity", associativity,
29853018216SPaolo Bonzini                               sizeof(associativity));
29953018216SPaolo Bonzini             if (ret < 0) {
30053018216SPaolo Bonzini                 return ret;
30153018216SPaolo Bonzini             }
30253018216SPaolo Bonzini         }
30353018216SPaolo Bonzini 
30453018216SPaolo Bonzini         ret = fdt_setprop(fdt, offset, "ibm,pft-size",
30553018216SPaolo Bonzini                           pft_size_prop, sizeof(pft_size_prop));
30653018216SPaolo Bonzini         if (ret < 0) {
30753018216SPaolo Bonzini             return ret;
30853018216SPaolo Bonzini         }
309833d4668SAlexey Kardashevskiy 
31082677ed2SAlexey Kardashevskiy         ret = spapr_fixup_cpu_smt_dt(fdt, offset, cpu,
3112a48d993SAlexey Kardashevskiy                                      ppc_get_compat_smt_threads(cpu));
312833d4668SAlexey Kardashevskiy         if (ret < 0) {
313833d4668SAlexey Kardashevskiy             return ret;
314833d4668SAlexey Kardashevskiy         }
31553018216SPaolo Bonzini     }
31653018216SPaolo Bonzini     return ret;
31753018216SPaolo Bonzini }
31853018216SPaolo Bonzini 
31953018216SPaolo Bonzini 
32053018216SPaolo Bonzini static size_t create_page_sizes_prop(CPUPPCState *env, uint32_t *prop,
32153018216SPaolo Bonzini                                      size_t maxsize)
32253018216SPaolo Bonzini {
32353018216SPaolo Bonzini     size_t maxcells = maxsize / sizeof(uint32_t);
32453018216SPaolo Bonzini     int i, j, count;
32553018216SPaolo Bonzini     uint32_t *p = prop;
32653018216SPaolo Bonzini 
32753018216SPaolo Bonzini     for (i = 0; i < PPC_PAGE_SIZES_MAX_SZ; i++) {
32853018216SPaolo Bonzini         struct ppc_one_seg_page_size *sps = &env->sps.sps[i];
32953018216SPaolo Bonzini 
33053018216SPaolo Bonzini         if (!sps->page_shift) {
33153018216SPaolo Bonzini             break;
33253018216SPaolo Bonzini         }
33353018216SPaolo Bonzini         for (count = 0; count < PPC_PAGE_SIZES_MAX_SZ; count++) {
33453018216SPaolo Bonzini             if (sps->enc[count].page_shift == 0) {
33553018216SPaolo Bonzini                 break;
33653018216SPaolo Bonzini             }
33753018216SPaolo Bonzini         }
33853018216SPaolo Bonzini         if ((p - prop) >= (maxcells - 3 - count * 2)) {
33953018216SPaolo Bonzini             break;
34053018216SPaolo Bonzini         }
34153018216SPaolo Bonzini         *(p++) = cpu_to_be32(sps->page_shift);
34253018216SPaolo Bonzini         *(p++) = cpu_to_be32(sps->slb_enc);
34353018216SPaolo Bonzini         *(p++) = cpu_to_be32(count);
34453018216SPaolo Bonzini         for (j = 0; j < count; j++) {
34553018216SPaolo Bonzini             *(p++) = cpu_to_be32(sps->enc[j].page_shift);
34653018216SPaolo Bonzini             *(p++) = cpu_to_be32(sps->enc[j].pte_enc);
34753018216SPaolo Bonzini         }
34853018216SPaolo Bonzini     }
34953018216SPaolo Bonzini 
35053018216SPaolo Bonzini     return (p - prop) * sizeof(uint32_t);
35153018216SPaolo Bonzini }
35253018216SPaolo Bonzini 
35353018216SPaolo Bonzini #define _FDT(exp) \
35453018216SPaolo Bonzini     do { \
35553018216SPaolo Bonzini         int ret = (exp);                                           \
35653018216SPaolo Bonzini         if (ret < 0) {                                             \
35753018216SPaolo Bonzini             fprintf(stderr, "qemu: error creating device tree: %s: %s\n", \
35853018216SPaolo Bonzini                     #exp, fdt_strerror(ret));                      \
35953018216SPaolo Bonzini             exit(1);                                               \
36053018216SPaolo Bonzini         }                                                          \
36153018216SPaolo Bonzini     } while (0)
36253018216SPaolo Bonzini 
363a1d59c0fSAlexey Kardashevskiy static void add_str(GString *s, const gchar *s1)
364a1d59c0fSAlexey Kardashevskiy {
365a1d59c0fSAlexey Kardashevskiy     g_string_append_len(s, s1, strlen(s1) + 1);
366a1d59c0fSAlexey Kardashevskiy }
36753018216SPaolo Bonzini 
3683bbf37f2SAndreas Färber static void *spapr_create_fdt_skel(hwaddr initrd_base,
36953018216SPaolo Bonzini                                    hwaddr initrd_size,
37053018216SPaolo Bonzini                                    hwaddr kernel_size,
37116457e7fSBenjamin Herrenschmidt                                    bool little_endian,
37253018216SPaolo Bonzini                                    const char *boot_device,
37353018216SPaolo Bonzini                                    const char *kernel_cmdline,
37453018216SPaolo Bonzini                                    uint32_t epow_irq)
37553018216SPaolo Bonzini {
37653018216SPaolo Bonzini     void *fdt;
377182735efSAndreas Färber     CPUState *cs;
37853018216SPaolo Bonzini     uint32_t start_prop = cpu_to_be32(initrd_base);
37953018216SPaolo Bonzini     uint32_t end_prop = cpu_to_be32(initrd_base + initrd_size);
380a1d59c0fSAlexey Kardashevskiy     GString *hypertas = g_string_sized_new(256);
381a1d59c0fSAlexey Kardashevskiy     GString *qemu_hypertas = g_string_sized_new(256);
38253018216SPaolo Bonzini     uint32_t refpoints[] = {cpu_to_be32(0x4), cpu_to_be32(0x4)};
38353018216SPaolo Bonzini     uint32_t interrupt_server_ranges_prop[] = {0, cpu_to_be32(smp_cpus)};
384833d4668SAlexey Kardashevskiy     int smt = kvmppc_smt_threads();
38553018216SPaolo Bonzini     unsigned char vec5[] = {0x0, 0x0, 0x0, 0x0, 0x0, 0x80};
38610582ff8SAlexey Kardashevskiy     QemuOpts *opts = qemu_opts_find(qemu_find_opts("smp-opts"), NULL);
38710582ff8SAlexey Kardashevskiy     unsigned sockets = opts ? qemu_opt_get_number(opts, "sockets", 0) : 0;
38810582ff8SAlexey Kardashevskiy     uint32_t cpus_per_socket = sockets ? (smp_cpus / sockets) : 1;
38953018216SPaolo Bonzini 
390a1d59c0fSAlexey Kardashevskiy     add_str(hypertas, "hcall-pft");
391a1d59c0fSAlexey Kardashevskiy     add_str(hypertas, "hcall-term");
392a1d59c0fSAlexey Kardashevskiy     add_str(hypertas, "hcall-dabr");
393a1d59c0fSAlexey Kardashevskiy     add_str(hypertas, "hcall-interrupt");
394a1d59c0fSAlexey Kardashevskiy     add_str(hypertas, "hcall-tce");
395a1d59c0fSAlexey Kardashevskiy     add_str(hypertas, "hcall-vio");
396a1d59c0fSAlexey Kardashevskiy     add_str(hypertas, "hcall-splpar");
397a1d59c0fSAlexey Kardashevskiy     add_str(hypertas, "hcall-bulk");
398a1d59c0fSAlexey Kardashevskiy     add_str(hypertas, "hcall-set-mode");
399a1d59c0fSAlexey Kardashevskiy     add_str(qemu_hypertas, "hcall-memop1");
400a1d59c0fSAlexey Kardashevskiy 
40153018216SPaolo Bonzini     fdt = g_malloc0(FDT_MAX_SIZE);
40253018216SPaolo Bonzini     _FDT((fdt_create(fdt, FDT_MAX_SIZE)));
40353018216SPaolo Bonzini 
40453018216SPaolo Bonzini     if (kernel_size) {
40553018216SPaolo Bonzini         _FDT((fdt_add_reservemap_entry(fdt, KERNEL_LOAD_ADDR, kernel_size)));
40653018216SPaolo Bonzini     }
40753018216SPaolo Bonzini     if (initrd_size) {
40853018216SPaolo Bonzini         _FDT((fdt_add_reservemap_entry(fdt, initrd_base, initrd_size)));
40953018216SPaolo Bonzini     }
41053018216SPaolo Bonzini     _FDT((fdt_finish_reservemap(fdt)));
41153018216SPaolo Bonzini 
41253018216SPaolo Bonzini     /* Root node */
41353018216SPaolo Bonzini     _FDT((fdt_begin_node(fdt, "")));
41453018216SPaolo Bonzini     _FDT((fdt_property_string(fdt, "device_type", "chrp")));
41553018216SPaolo Bonzini     _FDT((fdt_property_string(fdt, "model", "IBM pSeries (emulated by qemu)")));
416fa388916SAnthony Liguori     _FDT((fdt_property_string(fdt, "compatible", "qemu,pseries")));
41753018216SPaolo Bonzini 
41853018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#address-cells", 0x2)));
41953018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#size-cells", 0x2)));
42053018216SPaolo Bonzini 
42153018216SPaolo Bonzini     /* /chosen */
42253018216SPaolo Bonzini     _FDT((fdt_begin_node(fdt, "chosen")));
42353018216SPaolo Bonzini 
42453018216SPaolo Bonzini     /* Set Form1_affinity */
42553018216SPaolo Bonzini     _FDT((fdt_property(fdt, "ibm,architecture-vec-5", vec5, sizeof(vec5))));
42653018216SPaolo Bonzini 
42753018216SPaolo Bonzini     _FDT((fdt_property_string(fdt, "bootargs", kernel_cmdline)));
42853018216SPaolo Bonzini     _FDT((fdt_property(fdt, "linux,initrd-start",
42953018216SPaolo Bonzini                        &start_prop, sizeof(start_prop))));
43053018216SPaolo Bonzini     _FDT((fdt_property(fdt, "linux,initrd-end",
43153018216SPaolo Bonzini                        &end_prop, sizeof(end_prop))));
43253018216SPaolo Bonzini     if (kernel_size) {
43353018216SPaolo Bonzini         uint64_t kprop[2] = { cpu_to_be64(KERNEL_LOAD_ADDR),
43453018216SPaolo Bonzini                               cpu_to_be64(kernel_size) };
43553018216SPaolo Bonzini 
43653018216SPaolo Bonzini         _FDT((fdt_property(fdt, "qemu,boot-kernel", &kprop, sizeof(kprop))));
43716457e7fSBenjamin Herrenschmidt         if (little_endian) {
43816457e7fSBenjamin Herrenschmidt             _FDT((fdt_property(fdt, "qemu,boot-kernel-le", NULL, 0)));
43916457e7fSBenjamin Herrenschmidt         }
44053018216SPaolo Bonzini     }
44153018216SPaolo Bonzini     if (boot_device) {
44253018216SPaolo Bonzini         _FDT((fdt_property_string(fdt, "qemu,boot-device", boot_device)));
44353018216SPaolo Bonzini     }
444cc84c0f3SAvik Sil     if (boot_menu) {
445cc84c0f3SAvik Sil         _FDT((fdt_property_cell(fdt, "qemu,boot-menu", boot_menu)));
446cc84c0f3SAvik Sil     }
44753018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "qemu,graphic-width", graphic_width)));
44853018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "qemu,graphic-height", graphic_height)));
44953018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "qemu,graphic-depth", graphic_depth)));
45053018216SPaolo Bonzini 
45153018216SPaolo Bonzini     _FDT((fdt_end_node(fdt)));
45253018216SPaolo Bonzini 
45353018216SPaolo Bonzini     /* cpus */
45453018216SPaolo Bonzini     _FDT((fdt_begin_node(fdt, "cpus")));
45553018216SPaolo Bonzini 
45653018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#address-cells", 0x1)));
45753018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#size-cells", 0x0)));
45853018216SPaolo Bonzini 
459bdc44640SAndreas Färber     CPU_FOREACH(cs) {
460182735efSAndreas Färber         PowerPCCPU *cpu = POWERPC_CPU(cs);
461182735efSAndreas Färber         CPUPPCState *env = &cpu->env;
4623bbf37f2SAndreas Färber         DeviceClass *dc = DEVICE_GET_CLASS(cs);
463182735efSAndreas Färber         PowerPCCPUClass *pcc = POWERPC_CPU_GET_CLASS(cs);
4640f20ba62SAlexey Kardashevskiy         int index = ppc_get_vcpu_dt_id(cpu);
46553018216SPaolo Bonzini         char *nodename;
46653018216SPaolo Bonzini         uint32_t segs[] = {cpu_to_be32(28), cpu_to_be32(40),
46753018216SPaolo Bonzini                            0xffffffff, 0xffffffff};
46853018216SPaolo Bonzini         uint32_t tbfreq = kvm_enabled() ? kvmppc_get_tbfreq() : TIMEBASE_FREQ;
46953018216SPaolo Bonzini         uint32_t cpufreq = kvm_enabled() ? kvmppc_get_clockfreq() : 1000000000;
47053018216SPaolo Bonzini         uint32_t page_sizes_prop[64];
47153018216SPaolo Bonzini         size_t page_sizes_prop_size;
47253018216SPaolo Bonzini 
47353018216SPaolo Bonzini         if ((index % smt) != 0) {
47453018216SPaolo Bonzini             continue;
47553018216SPaolo Bonzini         }
47653018216SPaolo Bonzini 
4773bbf37f2SAndreas Färber         nodename = g_strdup_printf("%s@%x", dc->fw_name, index);
47853018216SPaolo Bonzini 
47953018216SPaolo Bonzini         _FDT((fdt_begin_node(fdt, nodename)));
48053018216SPaolo Bonzini 
48153018216SPaolo Bonzini         g_free(nodename);
48253018216SPaolo Bonzini 
48353018216SPaolo Bonzini         _FDT((fdt_property_cell(fdt, "reg", index)));
48453018216SPaolo Bonzini         _FDT((fdt_property_string(fdt, "device_type", "cpu")));
48553018216SPaolo Bonzini 
48653018216SPaolo Bonzini         _FDT((fdt_property_cell(fdt, "cpu-version", env->spr[SPR_PVR])));
4870cbad81fSDavid Gibson         _FDT((fdt_property_cell(fdt, "d-cache-block-size",
48853018216SPaolo Bonzini                                 env->dcache_line_size)));
4890cbad81fSDavid Gibson         _FDT((fdt_property_cell(fdt, "d-cache-line-size",
4900cbad81fSDavid Gibson                                 env->dcache_line_size)));
4910cbad81fSDavid Gibson         _FDT((fdt_property_cell(fdt, "i-cache-block-size",
49253018216SPaolo Bonzini                                 env->icache_line_size)));
4930cbad81fSDavid Gibson         _FDT((fdt_property_cell(fdt, "i-cache-line-size",
4940cbad81fSDavid Gibson                                 env->icache_line_size)));
4950cbad81fSDavid Gibson 
4960cbad81fSDavid Gibson         if (pcc->l1_dcache_size) {
4970cbad81fSDavid Gibson             _FDT((fdt_property_cell(fdt, "d-cache-size", pcc->l1_dcache_size)));
4980cbad81fSDavid Gibson         } else {
4990cbad81fSDavid Gibson             fprintf(stderr, "Warning: Unknown L1 dcache size for cpu\n");
5000cbad81fSDavid Gibson         }
5010cbad81fSDavid Gibson         if (pcc->l1_icache_size) {
5020cbad81fSDavid Gibson             _FDT((fdt_property_cell(fdt, "i-cache-size", pcc->l1_icache_size)));
5030cbad81fSDavid Gibson         } else {
5040cbad81fSDavid Gibson             fprintf(stderr, "Warning: Unknown L1 icache size for cpu\n");
5050cbad81fSDavid Gibson         }
5060cbad81fSDavid Gibson 
50753018216SPaolo Bonzini         _FDT((fdt_property_cell(fdt, "timebase-frequency", tbfreq)));
50853018216SPaolo Bonzini         _FDT((fdt_property_cell(fdt, "clock-frequency", cpufreq)));
50953018216SPaolo Bonzini         _FDT((fdt_property_cell(fdt, "ibm,slb-size", env->slb_nr)));
51053018216SPaolo Bonzini         _FDT((fdt_property_string(fdt, "status", "okay")));
51153018216SPaolo Bonzini         _FDT((fdt_property(fdt, "64-bit", NULL, 0)));
51253018216SPaolo Bonzini 
513dcb861cbSAlexey Kardashevskiy         if (env->spr_cb[SPR_PURR].oea_read) {
514dcb861cbSAlexey Kardashevskiy             _FDT((fdt_property(fdt, "ibm,purr", NULL, 0)));
515dcb861cbSAlexey Kardashevskiy         }
516dcb861cbSAlexey Kardashevskiy 
51753018216SPaolo Bonzini         if (env->mmu_model & POWERPC_MMU_1TSEG) {
51853018216SPaolo Bonzini             _FDT((fdt_property(fdt, "ibm,processor-segment-sizes",
51953018216SPaolo Bonzini                                segs, sizeof(segs))));
52053018216SPaolo Bonzini         }
52153018216SPaolo Bonzini 
52253018216SPaolo Bonzini         /* Advertise VMX/VSX (vector extensions) if available
52353018216SPaolo Bonzini          *   0 / no property == no vector extensions
52453018216SPaolo Bonzini          *   1               == VMX / Altivec available
52553018216SPaolo Bonzini          *   2               == VSX available */
52653018216SPaolo Bonzini         if (env->insns_flags & PPC_ALTIVEC) {
52753018216SPaolo Bonzini             uint32_t vmx = (env->insns_flags2 & PPC2_VSX) ? 2 : 1;
52853018216SPaolo Bonzini 
52953018216SPaolo Bonzini             _FDT((fdt_property_cell(fdt, "ibm,vmx", vmx)));
53053018216SPaolo Bonzini         }
53153018216SPaolo Bonzini 
53253018216SPaolo Bonzini         /* Advertise DFP (Decimal Floating Point) if available
53353018216SPaolo Bonzini          *   0 / no property == no DFP
53453018216SPaolo Bonzini          *   1               == DFP available */
53553018216SPaolo Bonzini         if (env->insns_flags2 & PPC2_DFP) {
53653018216SPaolo Bonzini             _FDT((fdt_property_cell(fdt, "ibm,dfp", 1)));
53753018216SPaolo Bonzini         }
53853018216SPaolo Bonzini 
53953018216SPaolo Bonzini         page_sizes_prop_size = create_page_sizes_prop(env, page_sizes_prop,
54053018216SPaolo Bonzini                                                       sizeof(page_sizes_prop));
54153018216SPaolo Bonzini         if (page_sizes_prop_size) {
54253018216SPaolo Bonzini             _FDT((fdt_property(fdt, "ibm,segment-page-sizes",
54353018216SPaolo Bonzini                                page_sizes_prop, page_sizes_prop_size)));
54453018216SPaolo Bonzini         }
54553018216SPaolo Bonzini 
54610582ff8SAlexey Kardashevskiy         _FDT((fdt_property_cell(fdt, "ibm,chip-id",
54710582ff8SAlexey Kardashevskiy                                 cs->cpu_index / cpus_per_socket)));
54810582ff8SAlexey Kardashevskiy 
54953018216SPaolo Bonzini         _FDT((fdt_end_node(fdt)));
55053018216SPaolo Bonzini     }
55153018216SPaolo Bonzini 
55253018216SPaolo Bonzini     _FDT((fdt_end_node(fdt)));
55353018216SPaolo Bonzini 
55453018216SPaolo Bonzini     /* RTAS */
55553018216SPaolo Bonzini     _FDT((fdt_begin_node(fdt, "rtas")));
55653018216SPaolo Bonzini 
557da95324eSAlexey Kardashevskiy     if (!kvm_enabled() || kvmppc_spapr_use_multitce()) {
558da95324eSAlexey Kardashevskiy         add_str(hypertas, "hcall-multi-tce");
559da95324eSAlexey Kardashevskiy     }
560a1d59c0fSAlexey Kardashevskiy     _FDT((fdt_property(fdt, "ibm,hypertas-functions", hypertas->str,
561a1d59c0fSAlexey Kardashevskiy                        hypertas->len)));
562a1d59c0fSAlexey Kardashevskiy     g_string_free(hypertas, TRUE);
563a1d59c0fSAlexey Kardashevskiy     _FDT((fdt_property(fdt, "qemu,hypertas-functions", qemu_hypertas->str,
564a1d59c0fSAlexey Kardashevskiy                        qemu_hypertas->len)));
565a1d59c0fSAlexey Kardashevskiy     g_string_free(qemu_hypertas, TRUE);
56653018216SPaolo Bonzini 
56753018216SPaolo Bonzini     _FDT((fdt_property(fdt, "ibm,associativity-reference-points",
56853018216SPaolo Bonzini         refpoints, sizeof(refpoints))));
56953018216SPaolo Bonzini 
57053018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "rtas-error-log-max", RTAS_ERROR_LOG_MAX)));
57153018216SPaolo Bonzini 
57253018216SPaolo Bonzini     _FDT((fdt_end_node(fdt)));
57353018216SPaolo Bonzini 
57453018216SPaolo Bonzini     /* interrupt controller */
57553018216SPaolo Bonzini     _FDT((fdt_begin_node(fdt, "interrupt-controller")));
57653018216SPaolo Bonzini 
57753018216SPaolo Bonzini     _FDT((fdt_property_string(fdt, "device_type",
57853018216SPaolo Bonzini                               "PowerPC-External-Interrupt-Presentation")));
57953018216SPaolo Bonzini     _FDT((fdt_property_string(fdt, "compatible", "IBM,ppc-xicp")));
58053018216SPaolo Bonzini     _FDT((fdt_property(fdt, "interrupt-controller", NULL, 0)));
58153018216SPaolo Bonzini     _FDT((fdt_property(fdt, "ibm,interrupt-server-ranges",
58253018216SPaolo Bonzini                        interrupt_server_ranges_prop,
58353018216SPaolo Bonzini                        sizeof(interrupt_server_ranges_prop))));
58453018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#interrupt-cells", 2)));
58553018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "linux,phandle", PHANDLE_XICP)));
58653018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "phandle", PHANDLE_XICP)));
58753018216SPaolo Bonzini 
58853018216SPaolo Bonzini     _FDT((fdt_end_node(fdt)));
58953018216SPaolo Bonzini 
59053018216SPaolo Bonzini     /* vdevice */
59153018216SPaolo Bonzini     _FDT((fdt_begin_node(fdt, "vdevice")));
59253018216SPaolo Bonzini 
59353018216SPaolo Bonzini     _FDT((fdt_property_string(fdt, "device_type", "vdevice")));
59453018216SPaolo Bonzini     _FDT((fdt_property_string(fdt, "compatible", "IBM,vdevice")));
59553018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#address-cells", 0x1)));
59653018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#size-cells", 0x0)));
59753018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#interrupt-cells", 0x2)));
59853018216SPaolo Bonzini     _FDT((fdt_property(fdt, "interrupt-controller", NULL, 0)));
59953018216SPaolo Bonzini 
60053018216SPaolo Bonzini     _FDT((fdt_end_node(fdt)));
60153018216SPaolo Bonzini 
60253018216SPaolo Bonzini     /* event-sources */
60353018216SPaolo Bonzini     spapr_events_fdt_skel(fdt, epow_irq);
60453018216SPaolo Bonzini 
605f7d69146SAlexander Graf     /* /hypervisor node */
606f7d69146SAlexander Graf     if (kvm_enabled()) {
607f7d69146SAlexander Graf         uint8_t hypercall[16];
608f7d69146SAlexander Graf 
609f7d69146SAlexander Graf         /* indicate KVM hypercall interface */
610f7d69146SAlexander Graf         _FDT((fdt_begin_node(fdt, "hypervisor")));
611f7d69146SAlexander Graf         _FDT((fdt_property_string(fdt, "compatible", "linux,kvm")));
612f7d69146SAlexander Graf         if (kvmppc_has_cap_fixup_hcalls()) {
613f7d69146SAlexander Graf             /*
614f7d69146SAlexander Graf              * Older KVM versions with older guest kernels were broken with the
615f7d69146SAlexander Graf              * magic page, don't allow the guest to map it.
616f7d69146SAlexander Graf              */
617f7d69146SAlexander Graf             kvmppc_get_hypercall(first_cpu->env_ptr, hypercall,
618f7d69146SAlexander Graf                                  sizeof(hypercall));
619f7d69146SAlexander Graf             _FDT((fdt_property(fdt, "hcall-instructions", hypercall,
620f7d69146SAlexander Graf                               sizeof(hypercall))));
621f7d69146SAlexander Graf         }
622f7d69146SAlexander Graf         _FDT((fdt_end_node(fdt)));
623f7d69146SAlexander Graf     }
624f7d69146SAlexander Graf 
62553018216SPaolo Bonzini     _FDT((fdt_end_node(fdt))); /* close root node */
62653018216SPaolo Bonzini     _FDT((fdt_finish(fdt)));
62753018216SPaolo Bonzini 
62853018216SPaolo Bonzini     return fdt;
62953018216SPaolo Bonzini }
63053018216SPaolo Bonzini 
6312a6593cbSAlexey Kardashevskiy int spapr_h_cas_compose_response(target_ulong addr, target_ulong size)
6322a6593cbSAlexey Kardashevskiy {
6332a6593cbSAlexey Kardashevskiy     void *fdt, *fdt_skel;
6342a6593cbSAlexey Kardashevskiy     sPAPRDeviceTreeUpdateHeader hdr = { .version_id = 1 };
6352a6593cbSAlexey Kardashevskiy 
6362a6593cbSAlexey Kardashevskiy     size -= sizeof(hdr);
6372a6593cbSAlexey Kardashevskiy 
6382a6593cbSAlexey Kardashevskiy     /* Create sceleton */
6392a6593cbSAlexey Kardashevskiy     fdt_skel = g_malloc0(size);
6402a6593cbSAlexey Kardashevskiy     _FDT((fdt_create(fdt_skel, size)));
6412a6593cbSAlexey Kardashevskiy     _FDT((fdt_begin_node(fdt_skel, "")));
6422a6593cbSAlexey Kardashevskiy     _FDT((fdt_end_node(fdt_skel)));
6432a6593cbSAlexey Kardashevskiy     _FDT((fdt_finish(fdt_skel)));
6442a6593cbSAlexey Kardashevskiy     fdt = g_malloc0(size);
6452a6593cbSAlexey Kardashevskiy     _FDT((fdt_open_into(fdt_skel, fdt, size)));
6462a6593cbSAlexey Kardashevskiy     g_free(fdt_skel);
6472a6593cbSAlexey Kardashevskiy 
6483794d548SAlexey Kardashevskiy     /* Fix skeleton up */
6493794d548SAlexey Kardashevskiy     _FDT((spapr_fixup_cpu_dt(fdt, spapr)));
6502a6593cbSAlexey Kardashevskiy 
6512a6593cbSAlexey Kardashevskiy     /* Pack resulting tree */
6522a6593cbSAlexey Kardashevskiy     _FDT((fdt_pack(fdt)));
6532a6593cbSAlexey Kardashevskiy 
6542a6593cbSAlexey Kardashevskiy     if (fdt_totalsize(fdt) + sizeof(hdr) > size) {
6552a6593cbSAlexey Kardashevskiy         trace_spapr_cas_failed(size);
6562a6593cbSAlexey Kardashevskiy         return -1;
6572a6593cbSAlexey Kardashevskiy     }
6582a6593cbSAlexey Kardashevskiy 
6592a6593cbSAlexey Kardashevskiy     cpu_physical_memory_write(addr, &hdr, sizeof(hdr));
6602a6593cbSAlexey Kardashevskiy     cpu_physical_memory_write(addr + sizeof(hdr), fdt, fdt_totalsize(fdt));
6612a6593cbSAlexey Kardashevskiy     trace_spapr_cas_continue(fdt_totalsize(fdt) + sizeof(hdr));
6622a6593cbSAlexey Kardashevskiy     g_free(fdt);
6632a6593cbSAlexey Kardashevskiy 
6642a6593cbSAlexey Kardashevskiy     return 0;
6652a6593cbSAlexey Kardashevskiy }
6662a6593cbSAlexey Kardashevskiy 
66753018216SPaolo Bonzini static int spapr_populate_memory(sPAPREnvironment *spapr, void *fdt)
66853018216SPaolo Bonzini {
66953018216SPaolo Bonzini     uint32_t associativity[] = {cpu_to_be32(0x4), cpu_to_be32(0x0),
67053018216SPaolo Bonzini                                 cpu_to_be32(0x0), cpu_to_be32(0x0),
67153018216SPaolo Bonzini                                 cpu_to_be32(0x0)};
67253018216SPaolo Bonzini     char mem_name[32];
6735fe269b1SPaul Mackerras     hwaddr node0_size, mem_start, node_size;
67453018216SPaolo Bonzini     uint64_t mem_reg_property[2];
67553018216SPaolo Bonzini     int i, off;
67653018216SPaolo Bonzini 
67753018216SPaolo Bonzini     /* memory node(s) */
6788c85901eSWanlong Gao     if (nb_numa_nodes > 1 && numa_info[0].node_mem < ram_size) {
6798c85901eSWanlong Gao         node0_size = numa_info[0].node_mem;
6805fe269b1SPaul Mackerras     } else {
6815fe269b1SPaul Mackerras         node0_size = ram_size;
6825fe269b1SPaul Mackerras     }
68353018216SPaolo Bonzini 
68453018216SPaolo Bonzini     /* RMA */
68553018216SPaolo Bonzini     mem_reg_property[0] = 0;
68653018216SPaolo Bonzini     mem_reg_property[1] = cpu_to_be64(spapr->rma_size);
68753018216SPaolo Bonzini     off = fdt_add_subnode(fdt, 0, "memory@0");
68853018216SPaolo Bonzini     _FDT(off);
68953018216SPaolo Bonzini     _FDT((fdt_setprop_string(fdt, off, "device_type", "memory")));
69053018216SPaolo Bonzini     _FDT((fdt_setprop(fdt, off, "reg", mem_reg_property,
69153018216SPaolo Bonzini                       sizeof(mem_reg_property))));
69253018216SPaolo Bonzini     _FDT((fdt_setprop(fdt, off, "ibm,associativity", associativity,
69353018216SPaolo Bonzini                       sizeof(associativity))));
69453018216SPaolo Bonzini 
69553018216SPaolo Bonzini     /* RAM: Node 0 */
69653018216SPaolo Bonzini     if (node0_size > spapr->rma_size) {
69753018216SPaolo Bonzini         mem_reg_property[0] = cpu_to_be64(spapr->rma_size);
69853018216SPaolo Bonzini         mem_reg_property[1] = cpu_to_be64(node0_size - spapr->rma_size);
69953018216SPaolo Bonzini 
70053018216SPaolo Bonzini         sprintf(mem_name, "memory@" TARGET_FMT_lx, spapr->rma_size);
70153018216SPaolo Bonzini         off = fdt_add_subnode(fdt, 0, mem_name);
70253018216SPaolo Bonzini         _FDT(off);
70353018216SPaolo Bonzini         _FDT((fdt_setprop_string(fdt, off, "device_type", "memory")));
70453018216SPaolo Bonzini         _FDT((fdt_setprop(fdt, off, "reg", mem_reg_property,
70553018216SPaolo Bonzini                           sizeof(mem_reg_property))));
70653018216SPaolo Bonzini         _FDT((fdt_setprop(fdt, off, "ibm,associativity", associativity,
70753018216SPaolo Bonzini                           sizeof(associativity))));
70853018216SPaolo Bonzini     }
70953018216SPaolo Bonzini 
71053018216SPaolo Bonzini     /* RAM: Node 1 and beyond */
71153018216SPaolo Bonzini     mem_start = node0_size;
71253018216SPaolo Bonzini     for (i = 1; i < nb_numa_nodes; i++) {
71353018216SPaolo Bonzini         mem_reg_property[0] = cpu_to_be64(mem_start);
7145fe269b1SPaul Mackerras         if (mem_start >= ram_size) {
7155fe269b1SPaul Mackerras             node_size = 0;
7165fe269b1SPaul Mackerras         } else {
7178c85901eSWanlong Gao             node_size = numa_info[i].node_mem;
7185fe269b1SPaul Mackerras             if (node_size > ram_size - mem_start) {
7195fe269b1SPaul Mackerras                 node_size = ram_size - mem_start;
7205fe269b1SPaul Mackerras             }
7215fe269b1SPaul Mackerras         }
7225fe269b1SPaul Mackerras         mem_reg_property[1] = cpu_to_be64(node_size);
72353018216SPaolo Bonzini         associativity[3] = associativity[4] = cpu_to_be32(i);
72453018216SPaolo Bonzini         sprintf(mem_name, "memory@" TARGET_FMT_lx, mem_start);
72553018216SPaolo Bonzini         off = fdt_add_subnode(fdt, 0, mem_name);
72653018216SPaolo Bonzini         _FDT(off);
72753018216SPaolo Bonzini         _FDT((fdt_setprop_string(fdt, off, "device_type", "memory")));
72853018216SPaolo Bonzini         _FDT((fdt_setprop(fdt, off, "reg", mem_reg_property,
72953018216SPaolo Bonzini                           sizeof(mem_reg_property))));
73053018216SPaolo Bonzini         _FDT((fdt_setprop(fdt, off, "ibm,associativity", associativity,
73153018216SPaolo Bonzini                           sizeof(associativity))));
7325fe269b1SPaul Mackerras         mem_start += node_size;
73353018216SPaolo Bonzini     }
73453018216SPaolo Bonzini 
73553018216SPaolo Bonzini     return 0;
73653018216SPaolo Bonzini }
73753018216SPaolo Bonzini 
73853018216SPaolo Bonzini static void spapr_finalize_fdt(sPAPREnvironment *spapr,
73953018216SPaolo Bonzini                                hwaddr fdt_addr,
74053018216SPaolo Bonzini                                hwaddr rtas_addr,
74153018216SPaolo Bonzini                                hwaddr rtas_size)
74253018216SPaolo Bonzini {
74371461b0fSAlexey Kardashevskiy     int ret, i;
74471461b0fSAlexey Kardashevskiy     size_t cb = 0;
74571461b0fSAlexey Kardashevskiy     char *bootlist;
74653018216SPaolo Bonzini     void *fdt;
74753018216SPaolo Bonzini     sPAPRPHBState *phb;
74853018216SPaolo Bonzini 
74953018216SPaolo Bonzini     fdt = g_malloc(FDT_MAX_SIZE);
75053018216SPaolo Bonzini 
75153018216SPaolo Bonzini     /* open out the base tree into a temp buffer for the final tweaks */
75253018216SPaolo Bonzini     _FDT((fdt_open_into(spapr->fdt_skel, fdt, FDT_MAX_SIZE)));
75353018216SPaolo Bonzini 
75453018216SPaolo Bonzini     ret = spapr_populate_memory(spapr, fdt);
75553018216SPaolo Bonzini     if (ret < 0) {
75653018216SPaolo Bonzini         fprintf(stderr, "couldn't setup memory nodes in fdt\n");
75753018216SPaolo Bonzini         exit(1);
75853018216SPaolo Bonzini     }
75953018216SPaolo Bonzini 
76053018216SPaolo Bonzini     ret = spapr_populate_vdevice(spapr->vio_bus, fdt);
76153018216SPaolo Bonzini     if (ret < 0) {
76253018216SPaolo Bonzini         fprintf(stderr, "couldn't setup vio devices in fdt\n");
76353018216SPaolo Bonzini         exit(1);
76453018216SPaolo Bonzini     }
76553018216SPaolo Bonzini 
76653018216SPaolo Bonzini     QLIST_FOREACH(phb, &spapr->phbs, list) {
76753018216SPaolo Bonzini         ret = spapr_populate_pci_dt(phb, PHANDLE_XICP, fdt);
76853018216SPaolo Bonzini     }
76953018216SPaolo Bonzini 
77053018216SPaolo Bonzini     if (ret < 0) {
77153018216SPaolo Bonzini         fprintf(stderr, "couldn't setup PCI devices in fdt\n");
77253018216SPaolo Bonzini         exit(1);
77353018216SPaolo Bonzini     }
77453018216SPaolo Bonzini 
77553018216SPaolo Bonzini     /* RTAS */
77653018216SPaolo Bonzini     ret = spapr_rtas_device_tree_setup(fdt, rtas_addr, rtas_size);
77753018216SPaolo Bonzini     if (ret < 0) {
77853018216SPaolo Bonzini         fprintf(stderr, "Couldn't set up RTAS device tree properties\n");
77953018216SPaolo Bonzini     }
78053018216SPaolo Bonzini 
78153018216SPaolo Bonzini     /* Advertise NUMA via ibm,associativity */
78253018216SPaolo Bonzini     ret = spapr_fixup_cpu_dt(fdt, spapr);
78353018216SPaolo Bonzini     if (ret < 0) {
78453018216SPaolo Bonzini         fprintf(stderr, "Couldn't finalize CPU device tree properties\n");
78553018216SPaolo Bonzini     }
78653018216SPaolo Bonzini 
78771461b0fSAlexey Kardashevskiy     bootlist = get_boot_devices_list(&cb, true);
78871461b0fSAlexey Kardashevskiy     if (cb && bootlist) {
78971461b0fSAlexey Kardashevskiy         int offset = fdt_path_offset(fdt, "/chosen");
79071461b0fSAlexey Kardashevskiy         if (offset < 0) {
79171461b0fSAlexey Kardashevskiy             exit(1);
79271461b0fSAlexey Kardashevskiy         }
79371461b0fSAlexey Kardashevskiy         for (i = 0; i < cb; i++) {
79471461b0fSAlexey Kardashevskiy             if (bootlist[i] == '\n') {
79571461b0fSAlexey Kardashevskiy                 bootlist[i] = ' ';
79671461b0fSAlexey Kardashevskiy             }
79771461b0fSAlexey Kardashevskiy 
79871461b0fSAlexey Kardashevskiy         }
79971461b0fSAlexey Kardashevskiy         ret = fdt_setprop_string(fdt, offset, "qemu,boot-list", bootlist);
80071461b0fSAlexey Kardashevskiy     }
80171461b0fSAlexey Kardashevskiy 
80253018216SPaolo Bonzini     if (!spapr->has_graphics) {
80353018216SPaolo Bonzini         spapr_populate_chosen_stdout(fdt, spapr->vio_bus);
80453018216SPaolo Bonzini     }
80553018216SPaolo Bonzini 
80653018216SPaolo Bonzini     _FDT((fdt_pack(fdt)));
80753018216SPaolo Bonzini 
80853018216SPaolo Bonzini     if (fdt_totalsize(fdt) > FDT_MAX_SIZE) {
80953018216SPaolo Bonzini         hw_error("FDT too big ! 0x%x bytes (max is 0x%x)\n",
81053018216SPaolo Bonzini                  fdt_totalsize(fdt), FDT_MAX_SIZE);
81153018216SPaolo Bonzini         exit(1);
81253018216SPaolo Bonzini     }
81353018216SPaolo Bonzini 
81453018216SPaolo Bonzini     cpu_physical_memory_write(fdt_addr, fdt, fdt_totalsize(fdt));
81553018216SPaolo Bonzini 
81653018216SPaolo Bonzini     g_free(fdt);
81753018216SPaolo Bonzini }
81853018216SPaolo Bonzini 
81953018216SPaolo Bonzini static uint64_t translate_kernel_address(void *opaque, uint64_t addr)
82053018216SPaolo Bonzini {
82153018216SPaolo Bonzini     return (addr & 0x0fffffff) + KERNEL_LOAD_ADDR;
82253018216SPaolo Bonzini }
82353018216SPaolo Bonzini 
82453018216SPaolo Bonzini static void emulate_spapr_hypercall(PowerPCCPU *cpu)
82553018216SPaolo Bonzini {
82653018216SPaolo Bonzini     CPUPPCState *env = &cpu->env;
82753018216SPaolo Bonzini 
82853018216SPaolo Bonzini     if (msr_pr) {
82953018216SPaolo Bonzini         hcall_dprintf("Hypercall made with MSR[PR]=1\n");
83053018216SPaolo Bonzini         env->gpr[3] = H_PRIVILEGE;
83153018216SPaolo Bonzini     } else {
83253018216SPaolo Bonzini         env->gpr[3] = spapr_hypercall(cpu, env->gpr[3], &env->gpr[4]);
83353018216SPaolo Bonzini     }
83453018216SPaolo Bonzini }
83553018216SPaolo Bonzini 
83653018216SPaolo Bonzini static void spapr_reset_htab(sPAPREnvironment *spapr)
83753018216SPaolo Bonzini {
83853018216SPaolo Bonzini     long shift;
83953018216SPaolo Bonzini 
84053018216SPaolo Bonzini     /* allocate hash page table.  For now we always make this 16mb,
84153018216SPaolo Bonzini      * later we should probably make it scale to the size of guest
84253018216SPaolo Bonzini      * RAM */
84353018216SPaolo Bonzini 
84453018216SPaolo Bonzini     shift = kvmppc_reset_htab(spapr->htab_shift);
84553018216SPaolo Bonzini 
84653018216SPaolo Bonzini     if (shift > 0) {
84753018216SPaolo Bonzini         /* Kernel handles htab, we don't need to allocate one */
84853018216SPaolo Bonzini         spapr->htab_shift = shift;
8497c43bca0SAneesh Kumar K.V         kvmppc_kern_htab = true;
85053018216SPaolo Bonzini     } else {
85153018216SPaolo Bonzini         if (!spapr->htab) {
85253018216SPaolo Bonzini             /* Allocate an htab if we don't yet have one */
85353018216SPaolo Bonzini             spapr->htab = qemu_memalign(HTAB_SIZE(spapr), HTAB_SIZE(spapr));
85453018216SPaolo Bonzini         }
85553018216SPaolo Bonzini 
85653018216SPaolo Bonzini         /* And clear it */
85753018216SPaolo Bonzini         memset(spapr->htab, 0, HTAB_SIZE(spapr));
85853018216SPaolo Bonzini     }
85953018216SPaolo Bonzini 
86053018216SPaolo Bonzini     /* Update the RMA size if necessary */
86153018216SPaolo Bonzini     if (spapr->vrma_adjust) {
8628c85901eSWanlong Gao         hwaddr node0_size = (nb_numa_nodes > 1) ?
8638c85901eSWanlong Gao             numa_info[0].node_mem : ram_size;
864c4177479SAlexey Kardashevskiy         spapr->rma_size = kvmppc_rma_size(node0_size, spapr->htab_shift);
86553018216SPaolo Bonzini     }
86653018216SPaolo Bonzini }
86753018216SPaolo Bonzini 
86853018216SPaolo Bonzini static void ppc_spapr_reset(void)
86953018216SPaolo Bonzini {
870182735efSAndreas Färber     PowerPCCPU *first_ppc_cpu;
871259186a7SAndreas Färber 
87253018216SPaolo Bonzini     /* Reset the hash table & recalc the RMA */
87353018216SPaolo Bonzini     spapr_reset_htab(spapr);
87453018216SPaolo Bonzini 
87553018216SPaolo Bonzini     qemu_devices_reset();
87653018216SPaolo Bonzini 
87753018216SPaolo Bonzini     /* Load the fdt */
87853018216SPaolo Bonzini     spapr_finalize_fdt(spapr, spapr->fdt_addr, spapr->rtas_addr,
87953018216SPaolo Bonzini                        spapr->rtas_size);
88053018216SPaolo Bonzini 
88153018216SPaolo Bonzini     /* Set up the entry state */
882182735efSAndreas Färber     first_ppc_cpu = POWERPC_CPU(first_cpu);
883182735efSAndreas Färber     first_ppc_cpu->env.gpr[3] = spapr->fdt_addr;
884182735efSAndreas Färber     first_ppc_cpu->env.gpr[5] = 0;
885182735efSAndreas Färber     first_cpu->halted = 0;
886182735efSAndreas Färber     first_ppc_cpu->env.nip = spapr->entry_point;
88753018216SPaolo Bonzini 
88853018216SPaolo Bonzini }
88953018216SPaolo Bonzini 
89053018216SPaolo Bonzini static void spapr_cpu_reset(void *opaque)
89153018216SPaolo Bonzini {
89253018216SPaolo Bonzini     PowerPCCPU *cpu = opaque;
893259186a7SAndreas Färber     CPUState *cs = CPU(cpu);
89453018216SPaolo Bonzini     CPUPPCState *env = &cpu->env;
89553018216SPaolo Bonzini 
896259186a7SAndreas Färber     cpu_reset(cs);
89753018216SPaolo Bonzini 
89853018216SPaolo Bonzini     /* All CPUs start halted.  CPU0 is unhalted from the machine level
89953018216SPaolo Bonzini      * reset code and the rest are explicitly started up by the guest
90053018216SPaolo Bonzini      * using an RTAS call */
901259186a7SAndreas Färber     cs->halted = 1;
90253018216SPaolo Bonzini 
90353018216SPaolo Bonzini     env->spr[SPR_HIOR] = 0;
90453018216SPaolo Bonzini 
9054be21d56SDavid Gibson     env->external_htab = (uint8_t *)spapr->htab;
9065736245cSAneesh Kumar K.V     if (kvm_enabled() && !env->external_htab) {
9075736245cSAneesh Kumar K.V         /*
9085736245cSAneesh Kumar K.V          * HV KVM, set external_htab to 1 so our ppc_hash64_load_hpte*
9095736245cSAneesh Kumar K.V          * functions do the right thing.
9105736245cSAneesh Kumar K.V          */
9115736245cSAneesh Kumar K.V         env->external_htab = (void *)1;
9125736245cSAneesh Kumar K.V     }
91353018216SPaolo Bonzini     env->htab_base = -1;
914f3c75d42SAneesh Kumar K.V     /*
915f3c75d42SAneesh Kumar K.V      * htab_mask is the mask used to normalize hash value to PTEG index.
916f3c75d42SAneesh Kumar K.V      * htab_shift is log2 of hash table size.
917f3c75d42SAneesh Kumar K.V      * We have 8 hpte per group, and each hpte is 16 bytes.
918f3c75d42SAneesh Kumar K.V      * ie have 128 bytes per hpte entry.
919f3c75d42SAneesh Kumar K.V      */
920f3c75d42SAneesh Kumar K.V     env->htab_mask = (1ULL << ((spapr)->htab_shift - 7)) - 1;
921ec4936e1SStefan Weil     env->spr[SPR_SDR1] = (target_ulong)(uintptr_t)spapr->htab |
92253018216SPaolo Bonzini         (spapr->htab_shift - 18);
92353018216SPaolo Bonzini }
92453018216SPaolo Bonzini 
92553018216SPaolo Bonzini static void spapr_create_nvram(sPAPREnvironment *spapr)
92653018216SPaolo Bonzini {
9272ff3de68SMarkus Armbruster     DeviceState *dev = qdev_create(&spapr->vio_bus->bus, "spapr-nvram");
9283978b863SPaolo Bonzini     DriveInfo *dinfo = drive_get(IF_PFLASH, 0, 0);
92953018216SPaolo Bonzini 
9303978b863SPaolo Bonzini     if (dinfo) {
9313978b863SPaolo Bonzini         qdev_prop_set_drive_nofail(dev, "drive", dinfo->bdrv);
93253018216SPaolo Bonzini     }
93353018216SPaolo Bonzini 
93453018216SPaolo Bonzini     qdev_init_nofail(dev);
93553018216SPaolo Bonzini 
93653018216SPaolo Bonzini     spapr->nvram = (struct sPAPRNVRAM *)dev;
93753018216SPaolo Bonzini }
93853018216SPaolo Bonzini 
93953018216SPaolo Bonzini /* Returns whether we want to use VGA or not */
94053018216SPaolo Bonzini static int spapr_vga_init(PCIBus *pci_bus)
94153018216SPaolo Bonzini {
94253018216SPaolo Bonzini     switch (vga_interface_type) {
94353018216SPaolo Bonzini     case VGA_NONE:
9447effdaa3SMark Wu         return false;
9457effdaa3SMark Wu     case VGA_DEVICE:
9467effdaa3SMark Wu         return true;
94753018216SPaolo Bonzini     case VGA_STD:
94853018216SPaolo Bonzini         return pci_vga_init(pci_bus) != NULL;
94953018216SPaolo Bonzini     default:
95053018216SPaolo Bonzini         fprintf(stderr, "This vga model is not supported,"
95153018216SPaolo Bonzini                 "currently it only supports -vga std\n");
95253018216SPaolo Bonzini         exit(0);
95353018216SPaolo Bonzini     }
95453018216SPaolo Bonzini }
95553018216SPaolo Bonzini 
9564be21d56SDavid Gibson static const VMStateDescription vmstate_spapr = {
9574be21d56SDavid Gibson     .name = "spapr",
95898a8b524SAlexey Kardashevskiy     .version_id = 2,
9594be21d56SDavid Gibson     .minimum_version_id = 1,
9604be21d56SDavid Gibson     .fields = (VMStateField[]) {
9614be21d56SDavid Gibson         VMSTATE_UINT32(next_irq, sPAPREnvironment),
9624be21d56SDavid Gibson 
9634be21d56SDavid Gibson         /* RTC offset */
9644be21d56SDavid Gibson         VMSTATE_UINT64(rtc_offset, sPAPREnvironment),
96598a8b524SAlexey Kardashevskiy         VMSTATE_PPC_TIMEBASE_V(tb, sPAPREnvironment, 2),
9664be21d56SDavid Gibson         VMSTATE_END_OF_LIST()
9674be21d56SDavid Gibson     },
9684be21d56SDavid Gibson };
9694be21d56SDavid Gibson 
9704be21d56SDavid Gibson #define HPTE(_table, _i)   (void *)(((uint64_t *)(_table)) + ((_i) * 2))
9714be21d56SDavid Gibson #define HPTE_VALID(_hpte)  (tswap64(*((uint64_t *)(_hpte))) & HPTE64_V_VALID)
9724be21d56SDavid Gibson #define HPTE_DIRTY(_hpte)  (tswap64(*((uint64_t *)(_hpte))) & HPTE64_V_HPTE_DIRTY)
9734be21d56SDavid Gibson #define CLEAN_HPTE(_hpte)  ((*(uint64_t *)(_hpte)) &= tswap64(~HPTE64_V_HPTE_DIRTY))
9744be21d56SDavid Gibson 
9754be21d56SDavid Gibson static int htab_save_setup(QEMUFile *f, void *opaque)
9764be21d56SDavid Gibson {
9774be21d56SDavid Gibson     sPAPREnvironment *spapr = opaque;
9784be21d56SDavid Gibson 
9794be21d56SDavid Gibson     /* "Iteration" header */
9804be21d56SDavid Gibson     qemu_put_be32(f, spapr->htab_shift);
9814be21d56SDavid Gibson 
982e68cb8b4SAlexey Kardashevskiy     if (spapr->htab) {
983e68cb8b4SAlexey Kardashevskiy         spapr->htab_save_index = 0;
984e68cb8b4SAlexey Kardashevskiy         spapr->htab_first_pass = true;
985e68cb8b4SAlexey Kardashevskiy     } else {
986e68cb8b4SAlexey Kardashevskiy         assert(kvm_enabled());
987e68cb8b4SAlexey Kardashevskiy 
988e68cb8b4SAlexey Kardashevskiy         spapr->htab_fd = kvmppc_get_htab_fd(false);
989e68cb8b4SAlexey Kardashevskiy         if (spapr->htab_fd < 0) {
990e68cb8b4SAlexey Kardashevskiy             fprintf(stderr, "Unable to open fd for reading hash table from KVM: %s\n",
991e68cb8b4SAlexey Kardashevskiy                     strerror(errno));
992e68cb8b4SAlexey Kardashevskiy             return -1;
993e68cb8b4SAlexey Kardashevskiy         }
9944be21d56SDavid Gibson     }
9954be21d56SDavid Gibson 
996e68cb8b4SAlexey Kardashevskiy 
997e68cb8b4SAlexey Kardashevskiy     return 0;
998e68cb8b4SAlexey Kardashevskiy }
9994be21d56SDavid Gibson 
10004be21d56SDavid Gibson static void htab_save_first_pass(QEMUFile *f, sPAPREnvironment *spapr,
10014be21d56SDavid Gibson                                  int64_t max_ns)
10024be21d56SDavid Gibson {
10034be21d56SDavid Gibson     int htabslots = HTAB_SIZE(spapr) / HASH_PTE_SIZE_64;
10044be21d56SDavid Gibson     int index = spapr->htab_save_index;
1005bc72ad67SAlex Bligh     int64_t starttime = qemu_clock_get_ns(QEMU_CLOCK_REALTIME);
10064be21d56SDavid Gibson 
10074be21d56SDavid Gibson     assert(spapr->htab_first_pass);
10084be21d56SDavid Gibson 
10094be21d56SDavid Gibson     do {
10104be21d56SDavid Gibson         int chunkstart;
10114be21d56SDavid Gibson 
10124be21d56SDavid Gibson         /* Consume invalid HPTEs */
10134be21d56SDavid Gibson         while ((index < htabslots)
10144be21d56SDavid Gibson                && !HPTE_VALID(HPTE(spapr->htab, index))) {
10154be21d56SDavid Gibson             index++;
10164be21d56SDavid Gibson             CLEAN_HPTE(HPTE(spapr->htab, index));
10174be21d56SDavid Gibson         }
10184be21d56SDavid Gibson 
10194be21d56SDavid Gibson         /* Consume valid HPTEs */
10204be21d56SDavid Gibson         chunkstart = index;
10214be21d56SDavid Gibson         while ((index < htabslots)
10224be21d56SDavid Gibson                && HPTE_VALID(HPTE(spapr->htab, index))) {
10234be21d56SDavid Gibson             index++;
10244be21d56SDavid Gibson             CLEAN_HPTE(HPTE(spapr->htab, index));
10254be21d56SDavid Gibson         }
10264be21d56SDavid Gibson 
10274be21d56SDavid Gibson         if (index > chunkstart) {
10284be21d56SDavid Gibson             int n_valid = index - chunkstart;
10294be21d56SDavid Gibson 
10304be21d56SDavid Gibson             qemu_put_be32(f, chunkstart);
10314be21d56SDavid Gibson             qemu_put_be16(f, n_valid);
10324be21d56SDavid Gibson             qemu_put_be16(f, 0);
10334be21d56SDavid Gibson             qemu_put_buffer(f, HPTE(spapr->htab, chunkstart),
10344be21d56SDavid Gibson                             HASH_PTE_SIZE_64 * n_valid);
10354be21d56SDavid Gibson 
1036bc72ad67SAlex Bligh             if ((qemu_clock_get_ns(QEMU_CLOCK_REALTIME) - starttime) > max_ns) {
10374be21d56SDavid Gibson                 break;
10384be21d56SDavid Gibson             }
10394be21d56SDavid Gibson         }
10404be21d56SDavid Gibson     } while ((index < htabslots) && !qemu_file_rate_limit(f));
10414be21d56SDavid Gibson 
10424be21d56SDavid Gibson     if (index >= htabslots) {
10434be21d56SDavid Gibson         assert(index == htabslots);
10444be21d56SDavid Gibson         index = 0;
10454be21d56SDavid Gibson         spapr->htab_first_pass = false;
10464be21d56SDavid Gibson     }
10474be21d56SDavid Gibson     spapr->htab_save_index = index;
10484be21d56SDavid Gibson }
10494be21d56SDavid Gibson 
1050e68cb8b4SAlexey Kardashevskiy static int htab_save_later_pass(QEMUFile *f, sPAPREnvironment *spapr,
10514be21d56SDavid Gibson                                 int64_t max_ns)
10524be21d56SDavid Gibson {
10534be21d56SDavid Gibson     bool final = max_ns < 0;
10544be21d56SDavid Gibson     int htabslots = HTAB_SIZE(spapr) / HASH_PTE_SIZE_64;
10554be21d56SDavid Gibson     int examined = 0, sent = 0;
10564be21d56SDavid Gibson     int index = spapr->htab_save_index;
1057bc72ad67SAlex Bligh     int64_t starttime = qemu_clock_get_ns(QEMU_CLOCK_REALTIME);
10584be21d56SDavid Gibson 
10594be21d56SDavid Gibson     assert(!spapr->htab_first_pass);
10604be21d56SDavid Gibson 
10614be21d56SDavid Gibson     do {
10624be21d56SDavid Gibson         int chunkstart, invalidstart;
10634be21d56SDavid Gibson 
10644be21d56SDavid Gibson         /* Consume non-dirty HPTEs */
10654be21d56SDavid Gibson         while ((index < htabslots)
10664be21d56SDavid Gibson                && !HPTE_DIRTY(HPTE(spapr->htab, index))) {
10674be21d56SDavid Gibson             index++;
10684be21d56SDavid Gibson             examined++;
10694be21d56SDavid Gibson         }
10704be21d56SDavid Gibson 
10714be21d56SDavid Gibson         chunkstart = index;
10724be21d56SDavid Gibson         /* Consume valid dirty HPTEs */
10734be21d56SDavid Gibson         while ((index < htabslots)
10744be21d56SDavid Gibson                && HPTE_DIRTY(HPTE(spapr->htab, index))
10754be21d56SDavid Gibson                && HPTE_VALID(HPTE(spapr->htab, index))) {
10764be21d56SDavid Gibson             CLEAN_HPTE(HPTE(spapr->htab, index));
10774be21d56SDavid Gibson             index++;
10784be21d56SDavid Gibson             examined++;
10794be21d56SDavid Gibson         }
10804be21d56SDavid Gibson 
10814be21d56SDavid Gibson         invalidstart = index;
10824be21d56SDavid Gibson         /* Consume invalid dirty HPTEs */
10834be21d56SDavid Gibson         while ((index < htabslots)
10844be21d56SDavid Gibson                && HPTE_DIRTY(HPTE(spapr->htab, index))
10854be21d56SDavid Gibson                && !HPTE_VALID(HPTE(spapr->htab, index))) {
10864be21d56SDavid Gibson             CLEAN_HPTE(HPTE(spapr->htab, index));
10874be21d56SDavid Gibson             index++;
10884be21d56SDavid Gibson             examined++;
10894be21d56SDavid Gibson         }
10904be21d56SDavid Gibson 
10914be21d56SDavid Gibson         if (index > chunkstart) {
10924be21d56SDavid Gibson             int n_valid = invalidstart - chunkstart;
10934be21d56SDavid Gibson             int n_invalid = index - invalidstart;
10944be21d56SDavid Gibson 
10954be21d56SDavid Gibson             qemu_put_be32(f, chunkstart);
10964be21d56SDavid Gibson             qemu_put_be16(f, n_valid);
10974be21d56SDavid Gibson             qemu_put_be16(f, n_invalid);
10984be21d56SDavid Gibson             qemu_put_buffer(f, HPTE(spapr->htab, chunkstart),
10994be21d56SDavid Gibson                             HASH_PTE_SIZE_64 * n_valid);
11004be21d56SDavid Gibson             sent += index - chunkstart;
11014be21d56SDavid Gibson 
1102bc72ad67SAlex Bligh             if (!final && (qemu_clock_get_ns(QEMU_CLOCK_REALTIME) - starttime) > max_ns) {
11034be21d56SDavid Gibson                 break;
11044be21d56SDavid Gibson             }
11054be21d56SDavid Gibson         }
11064be21d56SDavid Gibson 
11074be21d56SDavid Gibson         if (examined >= htabslots) {
11084be21d56SDavid Gibson             break;
11094be21d56SDavid Gibson         }
11104be21d56SDavid Gibson 
11114be21d56SDavid Gibson         if (index >= htabslots) {
11124be21d56SDavid Gibson             assert(index == htabslots);
11134be21d56SDavid Gibson             index = 0;
11144be21d56SDavid Gibson         }
11154be21d56SDavid Gibson     } while ((examined < htabslots) && (!qemu_file_rate_limit(f) || final));
11164be21d56SDavid Gibson 
11174be21d56SDavid Gibson     if (index >= htabslots) {
11184be21d56SDavid Gibson         assert(index == htabslots);
11194be21d56SDavid Gibson         index = 0;
11204be21d56SDavid Gibson     }
11214be21d56SDavid Gibson 
11224be21d56SDavid Gibson     spapr->htab_save_index = index;
11234be21d56SDavid Gibson 
1124e68cb8b4SAlexey Kardashevskiy     return (examined >= htabslots) && (sent == 0) ? 1 : 0;
11254be21d56SDavid Gibson }
11264be21d56SDavid Gibson 
1127e68cb8b4SAlexey Kardashevskiy #define MAX_ITERATION_NS    5000000 /* 5 ms */
1128e68cb8b4SAlexey Kardashevskiy #define MAX_KVM_BUF_SIZE    2048
1129e68cb8b4SAlexey Kardashevskiy 
11304be21d56SDavid Gibson static int htab_save_iterate(QEMUFile *f, void *opaque)
11314be21d56SDavid Gibson {
11324be21d56SDavid Gibson     sPAPREnvironment *spapr = opaque;
1133e68cb8b4SAlexey Kardashevskiy     int rc = 0;
11344be21d56SDavid Gibson 
11354be21d56SDavid Gibson     /* Iteration header */
11364be21d56SDavid Gibson     qemu_put_be32(f, 0);
11374be21d56SDavid Gibson 
1138e68cb8b4SAlexey Kardashevskiy     if (!spapr->htab) {
1139e68cb8b4SAlexey Kardashevskiy         assert(kvm_enabled());
1140e68cb8b4SAlexey Kardashevskiy 
1141e68cb8b4SAlexey Kardashevskiy         rc = kvmppc_save_htab(f, spapr->htab_fd,
1142e68cb8b4SAlexey Kardashevskiy                               MAX_KVM_BUF_SIZE, MAX_ITERATION_NS);
1143e68cb8b4SAlexey Kardashevskiy         if (rc < 0) {
1144e68cb8b4SAlexey Kardashevskiy             return rc;
1145e68cb8b4SAlexey Kardashevskiy         }
1146e68cb8b4SAlexey Kardashevskiy     } else  if (spapr->htab_first_pass) {
11474be21d56SDavid Gibson         htab_save_first_pass(f, spapr, MAX_ITERATION_NS);
11484be21d56SDavid Gibson     } else {
1149e68cb8b4SAlexey Kardashevskiy         rc = htab_save_later_pass(f, spapr, MAX_ITERATION_NS);
11504be21d56SDavid Gibson     }
11514be21d56SDavid Gibson 
11524be21d56SDavid Gibson     /* End marker */
11534be21d56SDavid Gibson     qemu_put_be32(f, 0);
11544be21d56SDavid Gibson     qemu_put_be16(f, 0);
11554be21d56SDavid Gibson     qemu_put_be16(f, 0);
11564be21d56SDavid Gibson 
1157e68cb8b4SAlexey Kardashevskiy     return rc;
11584be21d56SDavid Gibson }
11594be21d56SDavid Gibson 
11604be21d56SDavid Gibson static int htab_save_complete(QEMUFile *f, void *opaque)
11614be21d56SDavid Gibson {
11624be21d56SDavid Gibson     sPAPREnvironment *spapr = opaque;
11634be21d56SDavid Gibson 
11644be21d56SDavid Gibson     /* Iteration header */
11654be21d56SDavid Gibson     qemu_put_be32(f, 0);
11664be21d56SDavid Gibson 
1167e68cb8b4SAlexey Kardashevskiy     if (!spapr->htab) {
1168e68cb8b4SAlexey Kardashevskiy         int rc;
1169e68cb8b4SAlexey Kardashevskiy 
1170e68cb8b4SAlexey Kardashevskiy         assert(kvm_enabled());
1171e68cb8b4SAlexey Kardashevskiy 
1172e68cb8b4SAlexey Kardashevskiy         rc = kvmppc_save_htab(f, spapr->htab_fd, MAX_KVM_BUF_SIZE, -1);
1173e68cb8b4SAlexey Kardashevskiy         if (rc < 0) {
1174e68cb8b4SAlexey Kardashevskiy             return rc;
1175e68cb8b4SAlexey Kardashevskiy         }
1176e68cb8b4SAlexey Kardashevskiy         close(spapr->htab_fd);
1177e68cb8b4SAlexey Kardashevskiy         spapr->htab_fd = -1;
1178e68cb8b4SAlexey Kardashevskiy     } else {
11794be21d56SDavid Gibson         htab_save_later_pass(f, spapr, -1);
1180e68cb8b4SAlexey Kardashevskiy     }
11814be21d56SDavid Gibson 
11824be21d56SDavid Gibson     /* End marker */
11834be21d56SDavid Gibson     qemu_put_be32(f, 0);
11844be21d56SDavid Gibson     qemu_put_be16(f, 0);
11854be21d56SDavid Gibson     qemu_put_be16(f, 0);
11864be21d56SDavid Gibson 
11874be21d56SDavid Gibson     return 0;
11884be21d56SDavid Gibson }
11894be21d56SDavid Gibson 
11904be21d56SDavid Gibson static int htab_load(QEMUFile *f, void *opaque, int version_id)
11914be21d56SDavid Gibson {
11924be21d56SDavid Gibson     sPAPREnvironment *spapr = opaque;
11934be21d56SDavid Gibson     uint32_t section_hdr;
1194e68cb8b4SAlexey Kardashevskiy     int fd = -1;
11954be21d56SDavid Gibson 
11964be21d56SDavid Gibson     if (version_id < 1 || version_id > 1) {
11974be21d56SDavid Gibson         fprintf(stderr, "htab_load() bad version\n");
11984be21d56SDavid Gibson         return -EINVAL;
11994be21d56SDavid Gibson     }
12004be21d56SDavid Gibson 
12014be21d56SDavid Gibson     section_hdr = qemu_get_be32(f);
12024be21d56SDavid Gibson 
12034be21d56SDavid Gibson     if (section_hdr) {
12044be21d56SDavid Gibson         /* First section, just the hash shift */
12054be21d56SDavid Gibson         if (spapr->htab_shift != section_hdr) {
12064be21d56SDavid Gibson             return -EINVAL;
12074be21d56SDavid Gibson         }
12084be21d56SDavid Gibson         return 0;
12094be21d56SDavid Gibson     }
12104be21d56SDavid Gibson 
1211e68cb8b4SAlexey Kardashevskiy     if (!spapr->htab) {
1212e68cb8b4SAlexey Kardashevskiy         assert(kvm_enabled());
1213e68cb8b4SAlexey Kardashevskiy 
1214e68cb8b4SAlexey Kardashevskiy         fd = kvmppc_get_htab_fd(true);
1215e68cb8b4SAlexey Kardashevskiy         if (fd < 0) {
1216e68cb8b4SAlexey Kardashevskiy             fprintf(stderr, "Unable to open fd to restore KVM hash table: %s\n",
1217e68cb8b4SAlexey Kardashevskiy                     strerror(errno));
1218e68cb8b4SAlexey Kardashevskiy         }
1219e68cb8b4SAlexey Kardashevskiy     }
1220e68cb8b4SAlexey Kardashevskiy 
12214be21d56SDavid Gibson     while (true) {
12224be21d56SDavid Gibson         uint32_t index;
12234be21d56SDavid Gibson         uint16_t n_valid, n_invalid;
12244be21d56SDavid Gibson 
12254be21d56SDavid Gibson         index = qemu_get_be32(f);
12264be21d56SDavid Gibson         n_valid = qemu_get_be16(f);
12274be21d56SDavid Gibson         n_invalid = qemu_get_be16(f);
12284be21d56SDavid Gibson 
12294be21d56SDavid Gibson         if ((index == 0) && (n_valid == 0) && (n_invalid == 0)) {
12304be21d56SDavid Gibson             /* End of Stream */
12314be21d56SDavid Gibson             break;
12324be21d56SDavid Gibson         }
12334be21d56SDavid Gibson 
1234e68cb8b4SAlexey Kardashevskiy         if ((index + n_valid + n_invalid) >
12354be21d56SDavid Gibson             (HTAB_SIZE(spapr) / HASH_PTE_SIZE_64)) {
12364be21d56SDavid Gibson             /* Bad index in stream */
12374be21d56SDavid Gibson             fprintf(stderr, "htab_load() bad index %d (%hd+%hd entries) "
1238e68cb8b4SAlexey Kardashevskiy                     "in htab stream (htab_shift=%d)\n", index, n_valid, n_invalid,
1239e68cb8b4SAlexey Kardashevskiy                     spapr->htab_shift);
12404be21d56SDavid Gibson             return -EINVAL;
12414be21d56SDavid Gibson         }
12424be21d56SDavid Gibson 
1243e68cb8b4SAlexey Kardashevskiy         if (spapr->htab) {
12444be21d56SDavid Gibson             if (n_valid) {
12454be21d56SDavid Gibson                 qemu_get_buffer(f, HPTE(spapr->htab, index),
12464be21d56SDavid Gibson                                 HASH_PTE_SIZE_64 * n_valid);
12474be21d56SDavid Gibson             }
12484be21d56SDavid Gibson             if (n_invalid) {
12494be21d56SDavid Gibson                 memset(HPTE(spapr->htab, index + n_valid), 0,
12504be21d56SDavid Gibson                        HASH_PTE_SIZE_64 * n_invalid);
12514be21d56SDavid Gibson             }
1252e68cb8b4SAlexey Kardashevskiy         } else {
1253e68cb8b4SAlexey Kardashevskiy             int rc;
1254e68cb8b4SAlexey Kardashevskiy 
1255e68cb8b4SAlexey Kardashevskiy             assert(fd >= 0);
1256e68cb8b4SAlexey Kardashevskiy 
1257e68cb8b4SAlexey Kardashevskiy             rc = kvmppc_load_htab_chunk(f, fd, index, n_valid, n_invalid);
1258e68cb8b4SAlexey Kardashevskiy             if (rc < 0) {
1259e68cb8b4SAlexey Kardashevskiy                 return rc;
1260e68cb8b4SAlexey Kardashevskiy             }
1261e68cb8b4SAlexey Kardashevskiy         }
1262e68cb8b4SAlexey Kardashevskiy     }
1263e68cb8b4SAlexey Kardashevskiy 
1264e68cb8b4SAlexey Kardashevskiy     if (!spapr->htab) {
1265e68cb8b4SAlexey Kardashevskiy         assert(fd >= 0);
1266e68cb8b4SAlexey Kardashevskiy         close(fd);
12674be21d56SDavid Gibson     }
12684be21d56SDavid Gibson 
12694be21d56SDavid Gibson     return 0;
12704be21d56SDavid Gibson }
12714be21d56SDavid Gibson 
12724be21d56SDavid Gibson static SaveVMHandlers savevm_htab_handlers = {
12734be21d56SDavid Gibson     .save_live_setup = htab_save_setup,
12744be21d56SDavid Gibson     .save_live_iterate = htab_save_iterate,
12754be21d56SDavid Gibson     .save_live_complete = htab_save_complete,
12764be21d56SDavid Gibson     .load_state = htab_load,
12774be21d56SDavid Gibson };
12784be21d56SDavid Gibson 
127953018216SPaolo Bonzini /* pSeries LPAR / sPAPR hardware init */
12803ef96221SMarcel Apfelbaum static void ppc_spapr_init(MachineState *machine)
128153018216SPaolo Bonzini {
12823ef96221SMarcel Apfelbaum     ram_addr_t ram_size = machine->ram_size;
12833ef96221SMarcel Apfelbaum     const char *cpu_model = machine->cpu_model;
12843ef96221SMarcel Apfelbaum     const char *kernel_filename = machine->kernel_filename;
12853ef96221SMarcel Apfelbaum     const char *kernel_cmdline = machine->kernel_cmdline;
12863ef96221SMarcel Apfelbaum     const char *initrd_filename = machine->initrd_filename;
12873ef96221SMarcel Apfelbaum     const char *boot_device = machine->boot_order;
128853018216SPaolo Bonzini     PowerPCCPU *cpu;
128953018216SPaolo Bonzini     CPUPPCState *env;
129053018216SPaolo Bonzini     PCIHostState *phb;
129153018216SPaolo Bonzini     int i;
129253018216SPaolo Bonzini     MemoryRegion *sysmem = get_system_memory();
129353018216SPaolo Bonzini     MemoryRegion *ram = g_new(MemoryRegion, 1);
129453018216SPaolo Bonzini     hwaddr rma_alloc_size;
12958c85901eSWanlong Gao     hwaddr node0_size = (nb_numa_nodes > 1) ? numa_info[0].node_mem : ram_size;
129653018216SPaolo Bonzini     uint32_t initrd_base = 0;
129753018216SPaolo Bonzini     long kernel_size = 0, initrd_size = 0;
129853018216SPaolo Bonzini     long load_limit, rtas_limit, fw_size;
129916457e7fSBenjamin Herrenschmidt     bool kernel_le = false;
130053018216SPaolo Bonzini     char *filename;
130153018216SPaolo Bonzini 
130253018216SPaolo Bonzini     msi_supported = true;
130353018216SPaolo Bonzini 
130453018216SPaolo Bonzini     spapr = g_malloc0(sizeof(*spapr));
130553018216SPaolo Bonzini     QLIST_INIT(&spapr->phbs);
130653018216SPaolo Bonzini 
130753018216SPaolo Bonzini     cpu_ppc_hypercall = emulate_spapr_hypercall;
130853018216SPaolo Bonzini 
130953018216SPaolo Bonzini     /* Allocate RMA if necessary */
131053018216SPaolo Bonzini     rma_alloc_size = kvmppc_alloc_rma("ppc_spapr.rma", sysmem);
131153018216SPaolo Bonzini 
131253018216SPaolo Bonzini     if (rma_alloc_size == -1) {
131353018216SPaolo Bonzini         hw_error("qemu: Unable to create RMA\n");
131453018216SPaolo Bonzini         exit(1);
131553018216SPaolo Bonzini     }
131653018216SPaolo Bonzini 
1317c4177479SAlexey Kardashevskiy     if (rma_alloc_size && (rma_alloc_size < node0_size)) {
131853018216SPaolo Bonzini         spapr->rma_size = rma_alloc_size;
131953018216SPaolo Bonzini     } else {
1320c4177479SAlexey Kardashevskiy         spapr->rma_size = node0_size;
132153018216SPaolo Bonzini 
132253018216SPaolo Bonzini         /* With KVM, we don't actually know whether KVM supports an
132353018216SPaolo Bonzini          * unbounded RMA (PR KVM) or is limited by the hash table size
132453018216SPaolo Bonzini          * (HV KVM using VRMA), so we always assume the latter
132553018216SPaolo Bonzini          *
132653018216SPaolo Bonzini          * In that case, we also limit the initial allocations for RTAS
132753018216SPaolo Bonzini          * etc... to 256M since we have no way to know what the VRMA size
132853018216SPaolo Bonzini          * is going to be as it depends on the size of the hash table
132953018216SPaolo Bonzini          * isn't determined yet.
133053018216SPaolo Bonzini          */
133153018216SPaolo Bonzini         if (kvm_enabled()) {
133253018216SPaolo Bonzini             spapr->vrma_adjust = 1;
133353018216SPaolo Bonzini             spapr->rma_size = MIN(spapr->rma_size, 0x10000000);
133453018216SPaolo Bonzini         }
133553018216SPaolo Bonzini     }
133653018216SPaolo Bonzini 
1337c4177479SAlexey Kardashevskiy     if (spapr->rma_size > node0_size) {
1338c4177479SAlexey Kardashevskiy         fprintf(stderr, "Error: Numa node 0 has to span the RMA (%#08"HWADDR_PRIx")\n",
1339c4177479SAlexey Kardashevskiy                 spapr->rma_size);
1340c4177479SAlexey Kardashevskiy         exit(1);
1341c4177479SAlexey Kardashevskiy     }
1342c4177479SAlexey Kardashevskiy 
134353018216SPaolo Bonzini     /* We place the device tree and RTAS just below either the top of the RMA,
134453018216SPaolo Bonzini      * or just below 2GB, whichever is lowere, so that it can be
134553018216SPaolo Bonzini      * processed with 32-bit real mode code if necessary */
134653018216SPaolo Bonzini     rtas_limit = MIN(spapr->rma_size, 0x80000000);
134753018216SPaolo Bonzini     spapr->rtas_addr = rtas_limit - RTAS_MAX_SIZE;
134853018216SPaolo Bonzini     spapr->fdt_addr = spapr->rtas_addr - FDT_MAX_SIZE;
134953018216SPaolo Bonzini     load_limit = spapr->fdt_addr - FW_OVERHEAD;
135053018216SPaolo Bonzini 
135153018216SPaolo Bonzini     /* We aim for a hash table of size 1/128 the size of RAM.  The
135253018216SPaolo Bonzini      * normal rule of thumb is 1/64 the size of RAM, but that's much
135353018216SPaolo Bonzini      * more than needed for the Linux guests we support. */
135453018216SPaolo Bonzini     spapr->htab_shift = 18; /* Minimum architected size */
135553018216SPaolo Bonzini     while (spapr->htab_shift <= 46) {
135653018216SPaolo Bonzini         if ((1ULL << (spapr->htab_shift + 7)) >= ram_size) {
135753018216SPaolo Bonzini             break;
135853018216SPaolo Bonzini         }
135953018216SPaolo Bonzini         spapr->htab_shift++;
136053018216SPaolo Bonzini     }
136153018216SPaolo Bonzini 
13627b565160SDavid Gibson     /* Set up Interrupt Controller before we create the VCPUs */
13637b565160SDavid Gibson     spapr->icp = xics_system_init(smp_cpus * kvmppc_smt_threads() / smp_threads,
13647b565160SDavid Gibson                                   XICS_IRQS);
13657b565160SDavid Gibson     spapr->next_irq = XICS_IRQ_BASE;
13667b565160SDavid Gibson 
136753018216SPaolo Bonzini     /* init CPUs */
136853018216SPaolo Bonzini     if (cpu_model == NULL) {
136953018216SPaolo Bonzini         cpu_model = kvm_enabled() ? "host" : "POWER7";
137053018216SPaolo Bonzini     }
137153018216SPaolo Bonzini     for (i = 0; i < smp_cpus; i++) {
137253018216SPaolo Bonzini         cpu = cpu_ppc_init(cpu_model);
137353018216SPaolo Bonzini         if (cpu == NULL) {
137453018216SPaolo Bonzini             fprintf(stderr, "Unable to find PowerPC CPU definition\n");
137553018216SPaolo Bonzini             exit(1);
137653018216SPaolo Bonzini         }
137753018216SPaolo Bonzini         env = &cpu->env;
137853018216SPaolo Bonzini 
137953018216SPaolo Bonzini         /* Set time-base frequency to 512 MHz */
138053018216SPaolo Bonzini         cpu_ppc_tb_init(env, TIMEBASE_FREQ);
138153018216SPaolo Bonzini 
13822cf3eb6dSFabien Chouteau         /* PAPR always has exception vectors in RAM not ROM. To ensure this,
13832cf3eb6dSFabien Chouteau          * MSR[IP] should never be set.
13842cf3eb6dSFabien Chouteau          */
13852cf3eb6dSFabien Chouteau         env->msr_mask &= ~(1 << 6);
138653018216SPaolo Bonzini 
138753018216SPaolo Bonzini         /* Tell KVM that we're in PAPR mode */
138853018216SPaolo Bonzini         if (kvm_enabled()) {
138953018216SPaolo Bonzini             kvmppc_set_papr(cpu);
139053018216SPaolo Bonzini         }
139153018216SPaolo Bonzini 
13926d9412eaSAlexey Kardashevskiy         if (cpu->max_compat) {
13936d9412eaSAlexey Kardashevskiy             if (ppc_set_compat(cpu, cpu->max_compat) < 0) {
13946d9412eaSAlexey Kardashevskiy                 exit(1);
13956d9412eaSAlexey Kardashevskiy             }
13966d9412eaSAlexey Kardashevskiy         }
13976d9412eaSAlexey Kardashevskiy 
139824408a7dSAlexey Kardashevskiy         xics_cpu_setup(spapr->icp, cpu);
139924408a7dSAlexey Kardashevskiy 
140053018216SPaolo Bonzini         qemu_register_reset(spapr_cpu_reset, cpu);
140153018216SPaolo Bonzini     }
140253018216SPaolo Bonzini 
140353018216SPaolo Bonzini     /* allocate RAM */
140453018216SPaolo Bonzini     spapr->ram_limit = ram_size;
140553018216SPaolo Bonzini     if (spapr->ram_limit > rma_alloc_size) {
140653018216SPaolo Bonzini         ram_addr_t nonrma_base = rma_alloc_size;
140753018216SPaolo Bonzini         ram_addr_t nonrma_size = spapr->ram_limit - rma_alloc_size;
140853018216SPaolo Bonzini 
14092c9b15caSPaolo Bonzini         memory_region_init_ram(ram, NULL, "ppc_spapr.ram", nonrma_size);
141053018216SPaolo Bonzini         vmstate_register_ram_global(ram);
141153018216SPaolo Bonzini         memory_region_add_subregion(sysmem, nonrma_base, ram);
141253018216SPaolo Bonzini     }
141353018216SPaolo Bonzini 
141453018216SPaolo Bonzini     filename = qemu_find_file(QEMU_FILE_TYPE_BIOS, "spapr-rtas.bin");
141553018216SPaolo Bonzini     spapr->rtas_size = load_image_targphys(filename, spapr->rtas_addr,
141653018216SPaolo Bonzini                                            rtas_limit - spapr->rtas_addr);
141753018216SPaolo Bonzini     if (spapr->rtas_size < 0) {
141853018216SPaolo Bonzini         hw_error("qemu: could not load LPAR rtas '%s'\n", filename);
141953018216SPaolo Bonzini         exit(1);
142053018216SPaolo Bonzini     }
142153018216SPaolo Bonzini     if (spapr->rtas_size > RTAS_MAX_SIZE) {
142253018216SPaolo Bonzini         hw_error("RTAS too big ! 0x%lx bytes (max is 0x%x)\n",
142353018216SPaolo Bonzini                  spapr->rtas_size, RTAS_MAX_SIZE);
142453018216SPaolo Bonzini         exit(1);
142553018216SPaolo Bonzini     }
142653018216SPaolo Bonzini     g_free(filename);
142753018216SPaolo Bonzini 
142853018216SPaolo Bonzini     /* Set up EPOW events infrastructure */
142953018216SPaolo Bonzini     spapr_events_init(spapr);
143053018216SPaolo Bonzini 
143153018216SPaolo Bonzini     /* Set up VIO bus */
143253018216SPaolo Bonzini     spapr->vio_bus = spapr_vio_bus_init();
143353018216SPaolo Bonzini 
143453018216SPaolo Bonzini     for (i = 0; i < MAX_SERIAL_PORTS; i++) {
143553018216SPaolo Bonzini         if (serial_hds[i]) {
143653018216SPaolo Bonzini             spapr_vty_create(spapr->vio_bus, serial_hds[i]);
143753018216SPaolo Bonzini         }
143853018216SPaolo Bonzini     }
143953018216SPaolo Bonzini 
144053018216SPaolo Bonzini     /* We always have at least the nvram device on VIO */
144153018216SPaolo Bonzini     spapr_create_nvram(spapr);
144253018216SPaolo Bonzini 
144353018216SPaolo Bonzini     /* Set up PCI */
1444f1c2dc7cSAlexey Kardashevskiy     spapr_pci_msi_init(spapr, SPAPR_PCI_MSI_WINDOW);
144553018216SPaolo Bonzini     spapr_pci_rtas_init();
144653018216SPaolo Bonzini 
144789dfd6e1SDavid Gibson     phb = spapr_create_phb(spapr, 0);
144853018216SPaolo Bonzini 
144953018216SPaolo Bonzini     for (i = 0; i < nb_nics; i++) {
145053018216SPaolo Bonzini         NICInfo *nd = &nd_table[i];
145153018216SPaolo Bonzini 
145253018216SPaolo Bonzini         if (!nd->model) {
145353018216SPaolo Bonzini             nd->model = g_strdup("ibmveth");
145453018216SPaolo Bonzini         }
145553018216SPaolo Bonzini 
145653018216SPaolo Bonzini         if (strcmp(nd->model, "ibmveth") == 0) {
145753018216SPaolo Bonzini             spapr_vlan_create(spapr->vio_bus, nd);
145853018216SPaolo Bonzini         } else {
145929b358f9SDavid Gibson             pci_nic_init_nofail(&nd_table[i], phb->bus, nd->model, NULL);
146053018216SPaolo Bonzini         }
146153018216SPaolo Bonzini     }
146253018216SPaolo Bonzini 
146353018216SPaolo Bonzini     for (i = 0; i <= drive_get_max_bus(IF_SCSI); i++) {
146453018216SPaolo Bonzini         spapr_vscsi_create(spapr->vio_bus);
146553018216SPaolo Bonzini     }
146653018216SPaolo Bonzini 
146753018216SPaolo Bonzini     /* Graphics */
146853018216SPaolo Bonzini     if (spapr_vga_init(phb->bus)) {
146953018216SPaolo Bonzini         spapr->has_graphics = true;
147053018216SPaolo Bonzini     }
147153018216SPaolo Bonzini 
147253018216SPaolo Bonzini     if (usb_enabled(spapr->has_graphics)) {
147353018216SPaolo Bonzini         pci_create_simple(phb->bus, -1, "pci-ohci");
147453018216SPaolo Bonzini         if (spapr->has_graphics) {
147553018216SPaolo Bonzini             usbdevice_create("keyboard");
147653018216SPaolo Bonzini             usbdevice_create("mouse");
147753018216SPaolo Bonzini         }
147853018216SPaolo Bonzini     }
147953018216SPaolo Bonzini 
148053018216SPaolo Bonzini     if (spapr->rma_size < (MIN_RMA_SLOF << 20)) {
148153018216SPaolo Bonzini         fprintf(stderr, "qemu: pSeries SLOF firmware requires >= "
148253018216SPaolo Bonzini                 "%ldM guest RMA (Real Mode Area memory)\n", MIN_RMA_SLOF);
148353018216SPaolo Bonzini         exit(1);
148453018216SPaolo Bonzini     }
148553018216SPaolo Bonzini 
148653018216SPaolo Bonzini     if (kernel_filename) {
148753018216SPaolo Bonzini         uint64_t lowaddr = 0;
148853018216SPaolo Bonzini 
148953018216SPaolo Bonzini         kernel_size = load_elf(kernel_filename, translate_kernel_address, NULL,
149053018216SPaolo Bonzini                                NULL, &lowaddr, NULL, 1, ELF_MACHINE, 0);
14913b66da82SAlexey Kardashevskiy         if (kernel_size == ELF_LOAD_WRONG_ENDIAN) {
149216457e7fSBenjamin Herrenschmidt             kernel_size = load_elf(kernel_filename,
149316457e7fSBenjamin Herrenschmidt                                    translate_kernel_address, NULL,
149416457e7fSBenjamin Herrenschmidt                                    NULL, &lowaddr, NULL, 0, ELF_MACHINE, 0);
149516457e7fSBenjamin Herrenschmidt             kernel_le = kernel_size > 0;
149616457e7fSBenjamin Herrenschmidt         }
149716457e7fSBenjamin Herrenschmidt         if (kernel_size < 0) {
14983b66da82SAlexey Kardashevskiy             fprintf(stderr, "qemu: error loading %s: %s\n",
14993b66da82SAlexey Kardashevskiy                     kernel_filename, load_elf_strerror(kernel_size));
150053018216SPaolo Bonzini             exit(1);
150153018216SPaolo Bonzini         }
150253018216SPaolo Bonzini 
150353018216SPaolo Bonzini         /* load initrd */
150453018216SPaolo Bonzini         if (initrd_filename) {
150553018216SPaolo Bonzini             /* Try to locate the initrd in the gap between the kernel
150653018216SPaolo Bonzini              * and the firmware. Add a bit of space just in case
150753018216SPaolo Bonzini              */
150853018216SPaolo Bonzini             initrd_base = (KERNEL_LOAD_ADDR + kernel_size + 0x1ffff) & ~0xffff;
150953018216SPaolo Bonzini             initrd_size = load_image_targphys(initrd_filename, initrd_base,
151053018216SPaolo Bonzini                                               load_limit - initrd_base);
151153018216SPaolo Bonzini             if (initrd_size < 0) {
151253018216SPaolo Bonzini                 fprintf(stderr, "qemu: could not load initial ram disk '%s'\n",
151353018216SPaolo Bonzini                         initrd_filename);
151453018216SPaolo Bonzini                 exit(1);
151553018216SPaolo Bonzini             }
151653018216SPaolo Bonzini         } else {
151753018216SPaolo Bonzini             initrd_base = 0;
151853018216SPaolo Bonzini             initrd_size = 0;
151953018216SPaolo Bonzini         }
152053018216SPaolo Bonzini     }
152153018216SPaolo Bonzini 
15228e7ea787SAndreas Färber     if (bios_name == NULL) {
15238e7ea787SAndreas Färber         bios_name = FW_FILE_NAME;
15248e7ea787SAndreas Färber     }
15258e7ea787SAndreas Färber     filename = qemu_find_file(QEMU_FILE_TYPE_BIOS, bios_name);
152653018216SPaolo Bonzini     fw_size = load_image_targphys(filename, 0, FW_MAX_SIZE);
152753018216SPaolo Bonzini     if (fw_size < 0) {
152853018216SPaolo Bonzini         hw_error("qemu: could not load LPAR rtas '%s'\n", filename);
152953018216SPaolo Bonzini         exit(1);
153053018216SPaolo Bonzini     }
153153018216SPaolo Bonzini     g_free(filename);
153253018216SPaolo Bonzini 
153353018216SPaolo Bonzini     spapr->entry_point = 0x100;
153453018216SPaolo Bonzini 
15354be21d56SDavid Gibson     vmstate_register(NULL, 0, &vmstate_spapr, spapr);
15364be21d56SDavid Gibson     register_savevm_live(NULL, "spapr/htab", -1, 1,
15374be21d56SDavid Gibson                          &savevm_htab_handlers, spapr);
15384be21d56SDavid Gibson 
153953018216SPaolo Bonzini     /* Prepare the device tree */
15403bbf37f2SAndreas Färber     spapr->fdt_skel = spapr_create_fdt_skel(initrd_base, initrd_size,
154116457e7fSBenjamin Herrenschmidt                                             kernel_size, kernel_le,
154253018216SPaolo Bonzini                                             boot_device, kernel_cmdline,
154353018216SPaolo Bonzini                                             spapr->epow_irq);
154453018216SPaolo Bonzini     assert(spapr->fdt_skel != NULL);
154553018216SPaolo Bonzini }
154653018216SPaolo Bonzini 
1547135a129aSAneesh Kumar K.V static int spapr_kvm_type(const char *vm_type)
1548135a129aSAneesh Kumar K.V {
1549135a129aSAneesh Kumar K.V     if (!vm_type) {
1550135a129aSAneesh Kumar K.V         return 0;
1551135a129aSAneesh Kumar K.V     }
1552135a129aSAneesh Kumar K.V 
1553135a129aSAneesh Kumar K.V     if (!strcmp(vm_type, "HV")) {
1554135a129aSAneesh Kumar K.V         return 1;
1555135a129aSAneesh Kumar K.V     }
1556135a129aSAneesh Kumar K.V 
1557135a129aSAneesh Kumar K.V     if (!strcmp(vm_type, "PR")) {
1558135a129aSAneesh Kumar K.V         return 2;
1559135a129aSAneesh Kumar K.V     }
1560135a129aSAneesh Kumar K.V 
1561135a129aSAneesh Kumar K.V     error_report("Unknown kvm-type specified '%s'", vm_type);
1562135a129aSAneesh Kumar K.V     exit(1);
1563135a129aSAneesh Kumar K.V }
1564135a129aSAneesh Kumar K.V 
156571461b0fSAlexey Kardashevskiy /*
156671461b0fSAlexey Kardashevskiy  * Implementation of an interface to adjust firmware patch
156771461b0fSAlexey Kardashevskiy  * for the bootindex property handling.
156871461b0fSAlexey Kardashevskiy  */
156971461b0fSAlexey Kardashevskiy static char *spapr_get_fw_dev_path(FWPathProvider *p, BusState *bus,
157071461b0fSAlexey Kardashevskiy                                    DeviceState *dev)
157171461b0fSAlexey Kardashevskiy {
157271461b0fSAlexey Kardashevskiy #define CAST(type, obj, name) \
157371461b0fSAlexey Kardashevskiy     ((type *)object_dynamic_cast(OBJECT(obj), (name)))
157471461b0fSAlexey Kardashevskiy     SCSIDevice *d = CAST(SCSIDevice,  dev, TYPE_SCSI_DEVICE);
157571461b0fSAlexey Kardashevskiy     sPAPRPHBState *phb = CAST(sPAPRPHBState, dev, TYPE_SPAPR_PCI_HOST_BRIDGE);
157671461b0fSAlexey Kardashevskiy 
157771461b0fSAlexey Kardashevskiy     if (d) {
157871461b0fSAlexey Kardashevskiy         void *spapr = CAST(void, bus->parent, "spapr-vscsi");
157971461b0fSAlexey Kardashevskiy         VirtIOSCSI *virtio = CAST(VirtIOSCSI, bus->parent, TYPE_VIRTIO_SCSI);
158071461b0fSAlexey Kardashevskiy         USBDevice *usb = CAST(USBDevice, bus->parent, TYPE_USB_DEVICE);
158171461b0fSAlexey Kardashevskiy 
158271461b0fSAlexey Kardashevskiy         if (spapr) {
158371461b0fSAlexey Kardashevskiy             /*
158471461b0fSAlexey Kardashevskiy              * Replace "channel@0/disk@0,0" with "disk@8000000000000000":
158571461b0fSAlexey Kardashevskiy              * We use SRP luns of the form 8000 | (bus << 8) | (id << 5) | lun
158671461b0fSAlexey Kardashevskiy              * in the top 16 bits of the 64-bit LUN
158771461b0fSAlexey Kardashevskiy              */
158871461b0fSAlexey Kardashevskiy             unsigned id = 0x8000 | (d->id << 8) | d->lun;
158971461b0fSAlexey Kardashevskiy             return g_strdup_printf("%s@%"PRIX64, qdev_fw_name(dev),
159071461b0fSAlexey Kardashevskiy                                    (uint64_t)id << 48);
159171461b0fSAlexey Kardashevskiy         } else if (virtio) {
159271461b0fSAlexey Kardashevskiy             /*
159371461b0fSAlexey Kardashevskiy              * We use SRP luns of the form 01000000 | (target << 8) | lun
159471461b0fSAlexey Kardashevskiy              * in the top 32 bits of the 64-bit LUN
159571461b0fSAlexey Kardashevskiy              * Note: the quote above is from SLOF and it is wrong,
159671461b0fSAlexey Kardashevskiy              * the actual binding is:
159771461b0fSAlexey Kardashevskiy              * swap 0100 or 10 << or 20 << ( target lun-id -- srplun )
159871461b0fSAlexey Kardashevskiy              */
159971461b0fSAlexey Kardashevskiy             unsigned id = 0x1000000 | (d->id << 16) | d->lun;
160071461b0fSAlexey Kardashevskiy             return g_strdup_printf("%s@%"PRIX64, qdev_fw_name(dev),
160171461b0fSAlexey Kardashevskiy                                    (uint64_t)id << 32);
160271461b0fSAlexey Kardashevskiy         } else if (usb) {
160371461b0fSAlexey Kardashevskiy             /*
160471461b0fSAlexey Kardashevskiy              * We use SRP luns of the form 01000000 | (usb-port << 16) | lun
160571461b0fSAlexey Kardashevskiy              * in the top 32 bits of the 64-bit LUN
160671461b0fSAlexey Kardashevskiy              */
160771461b0fSAlexey Kardashevskiy             unsigned usb_port = atoi(usb->port->path);
160871461b0fSAlexey Kardashevskiy             unsigned id = 0x1000000 | (usb_port << 16) | d->lun;
160971461b0fSAlexey Kardashevskiy             return g_strdup_printf("%s@%"PRIX64, qdev_fw_name(dev),
161071461b0fSAlexey Kardashevskiy                                    (uint64_t)id << 32);
161171461b0fSAlexey Kardashevskiy         }
161271461b0fSAlexey Kardashevskiy     }
161371461b0fSAlexey Kardashevskiy 
161471461b0fSAlexey Kardashevskiy     if (phb) {
161571461b0fSAlexey Kardashevskiy         /* Replace "pci" with "pci@800000020000000" */
161671461b0fSAlexey Kardashevskiy         return g_strdup_printf("pci@%"PRIX64, phb->buid);
161771461b0fSAlexey Kardashevskiy     }
161871461b0fSAlexey Kardashevskiy 
161971461b0fSAlexey Kardashevskiy     return NULL;
162071461b0fSAlexey Kardashevskiy }
162171461b0fSAlexey Kardashevskiy 
162223825581SEduardo Habkost static char *spapr_get_kvm_type(Object *obj, Error **errp)
162323825581SEduardo Habkost {
1624*6ca1502eSAlexey Kardashevskiy     sPAPRMachineState *sm = SPAPR_MACHINE(obj);
162523825581SEduardo Habkost 
162623825581SEduardo Habkost     return g_strdup(sm->kvm_type);
162723825581SEduardo Habkost }
162823825581SEduardo Habkost 
162923825581SEduardo Habkost static void spapr_set_kvm_type(Object *obj, const char *value, Error **errp)
163023825581SEduardo Habkost {
1631*6ca1502eSAlexey Kardashevskiy     sPAPRMachineState *sm = SPAPR_MACHINE(obj);
163223825581SEduardo Habkost 
163323825581SEduardo Habkost     g_free(sm->kvm_type);
163423825581SEduardo Habkost     sm->kvm_type = g_strdup(value);
163523825581SEduardo Habkost }
163623825581SEduardo Habkost 
163723825581SEduardo Habkost static void spapr_machine_initfn(Object *obj)
163823825581SEduardo Habkost {
163923825581SEduardo Habkost     object_property_add_str(obj, "kvm-type",
164023825581SEduardo Habkost                             spapr_get_kvm_type, spapr_set_kvm_type, NULL);
164123825581SEduardo Habkost }
164223825581SEduardo Habkost 
164329ee3247SAlexey Kardashevskiy static void spapr_machine_class_init(ObjectClass *oc, void *data)
164453018216SPaolo Bonzini {
164529ee3247SAlexey Kardashevskiy     MachineClass *mc = MACHINE_CLASS(oc);
164671461b0fSAlexey Kardashevskiy     FWPathProviderClass *fwc = FW_PATH_PROVIDER_CLASS(oc);
164729ee3247SAlexey Kardashevskiy 
1648958db90cSMarcel Apfelbaum     mc->name = "pseries";
1649958db90cSMarcel Apfelbaum     mc->desc = "pSeries Logical Partition (PAPR compliant)";
1650958db90cSMarcel Apfelbaum     mc->is_default = 1;
1651958db90cSMarcel Apfelbaum     mc->init = ppc_spapr_init;
1652958db90cSMarcel Apfelbaum     mc->reset = ppc_spapr_reset;
1653958db90cSMarcel Apfelbaum     mc->block_default_type = IF_SCSI;
1654958db90cSMarcel Apfelbaum     mc->max_cpus = MAX_CPUS;
1655958db90cSMarcel Apfelbaum     mc->no_parallel = 1;
1656958db90cSMarcel Apfelbaum     mc->default_boot_order = NULL;
1657958db90cSMarcel Apfelbaum     mc->kvm_type = spapr_kvm_type;
165800b4fbe2SMarcel Apfelbaum 
165971461b0fSAlexey Kardashevskiy     fwc->get_dev_path = spapr_get_fw_dev_path;
166053018216SPaolo Bonzini }
166153018216SPaolo Bonzini 
166229ee3247SAlexey Kardashevskiy static const TypeInfo spapr_machine_info = {
166329ee3247SAlexey Kardashevskiy     .name          = TYPE_SPAPR_MACHINE,
166429ee3247SAlexey Kardashevskiy     .parent        = TYPE_MACHINE,
1665*6ca1502eSAlexey Kardashevskiy     .instance_size = sizeof(sPAPRMachineState),
166623825581SEduardo Habkost     .instance_init = spapr_machine_initfn,
166729ee3247SAlexey Kardashevskiy     .class_init    = spapr_machine_class_init,
166871461b0fSAlexey Kardashevskiy     .interfaces = (InterfaceInfo[]) {
166971461b0fSAlexey Kardashevskiy         { TYPE_FW_PATH_PROVIDER },
167071461b0fSAlexey Kardashevskiy         { }
167171461b0fSAlexey Kardashevskiy     },
167229ee3247SAlexey Kardashevskiy };
167329ee3247SAlexey Kardashevskiy 
167429ee3247SAlexey Kardashevskiy static void spapr_machine_register_types(void)
167529ee3247SAlexey Kardashevskiy {
167629ee3247SAlexey Kardashevskiy     type_register_static(&spapr_machine_info);
167729ee3247SAlexey Kardashevskiy }
167829ee3247SAlexey Kardashevskiy 
167929ee3247SAlexey Kardashevskiy type_init(spapr_machine_register_types)
1680