xref: /openbmc/qemu/hw/ppc/spapr.c (revision 8e7ea787)
153018216SPaolo Bonzini /*
253018216SPaolo Bonzini  * QEMU PowerPC pSeries Logical Partition (aka sPAPR) hardware System Emulator
353018216SPaolo Bonzini  *
453018216SPaolo Bonzini  * Copyright (c) 2004-2007 Fabrice Bellard
553018216SPaolo Bonzini  * Copyright (c) 2007 Jocelyn Mayer
653018216SPaolo Bonzini  * Copyright (c) 2010 David Gibson, IBM Corporation.
753018216SPaolo Bonzini  *
853018216SPaolo Bonzini  * Permission is hereby granted, free of charge, to any person obtaining a copy
953018216SPaolo Bonzini  * of this software and associated documentation files (the "Software"), to deal
1053018216SPaolo Bonzini  * in the Software without restriction, including without limitation the rights
1153018216SPaolo Bonzini  * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
1253018216SPaolo Bonzini  * copies of the Software, and to permit persons to whom the Software is
1353018216SPaolo Bonzini  * furnished to do so, subject to the following conditions:
1453018216SPaolo Bonzini  *
1553018216SPaolo Bonzini  * The above copyright notice and this permission notice shall be included in
1653018216SPaolo Bonzini  * all copies or substantial portions of the Software.
1753018216SPaolo Bonzini  *
1853018216SPaolo Bonzini  * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
1953018216SPaolo Bonzini  * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
2053018216SPaolo Bonzini  * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL
2153018216SPaolo Bonzini  * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
2253018216SPaolo Bonzini  * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
2353018216SPaolo Bonzini  * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
2453018216SPaolo Bonzini  * THE SOFTWARE.
2553018216SPaolo Bonzini  *
2653018216SPaolo Bonzini  */
2753018216SPaolo Bonzini #include "sysemu/sysemu.h"
2853018216SPaolo Bonzini #include "hw/hw.h"
2953018216SPaolo Bonzini #include "elf.h"
3053018216SPaolo Bonzini #include "net/net.h"
3153018216SPaolo Bonzini #include "sysemu/blockdev.h"
3253018216SPaolo Bonzini #include "sysemu/cpus.h"
3353018216SPaolo Bonzini #include "sysemu/kvm.h"
3453018216SPaolo Bonzini #include "kvm_ppc.h"
3553018216SPaolo Bonzini 
3653018216SPaolo Bonzini #include "hw/boards.h"
370d09e41aSPaolo Bonzini #include "hw/ppc/ppc.h"
3853018216SPaolo Bonzini #include "hw/loader.h"
3953018216SPaolo Bonzini 
400d09e41aSPaolo Bonzini #include "hw/ppc/spapr.h"
410d09e41aSPaolo Bonzini #include "hw/ppc/spapr_vio.h"
420d09e41aSPaolo Bonzini #include "hw/pci-host/spapr.h"
430d09e41aSPaolo Bonzini #include "hw/ppc/xics.h"
4453018216SPaolo Bonzini #include "hw/pci/msi.h"
4553018216SPaolo Bonzini 
4653018216SPaolo Bonzini #include "hw/pci/pci.h"
4753018216SPaolo Bonzini 
4853018216SPaolo Bonzini #include "exec/address-spaces.h"
4953018216SPaolo Bonzini #include "hw/usb.h"
5053018216SPaolo Bonzini #include "qemu/config-file.h"
5153018216SPaolo Bonzini 
5253018216SPaolo Bonzini #include <libfdt.h>
5353018216SPaolo Bonzini 
5453018216SPaolo Bonzini /* SLOF memory layout:
5553018216SPaolo Bonzini  *
5653018216SPaolo Bonzini  * SLOF raw image loaded at 0, copies its romfs right below the flat
5753018216SPaolo Bonzini  * device-tree, then position SLOF itself 31M below that
5853018216SPaolo Bonzini  *
5953018216SPaolo Bonzini  * So we set FW_OVERHEAD to 40MB which should account for all of that
6053018216SPaolo Bonzini  * and more
6153018216SPaolo Bonzini  *
6253018216SPaolo Bonzini  * We load our kernel at 4M, leaving space for SLOF initial image
6353018216SPaolo Bonzini  */
6453018216SPaolo Bonzini #define FDT_MAX_SIZE            0x10000
6553018216SPaolo Bonzini #define RTAS_MAX_SIZE           0x10000
6653018216SPaolo Bonzini #define FW_MAX_SIZE             0x400000
6753018216SPaolo Bonzini #define FW_FILE_NAME            "slof.bin"
6853018216SPaolo Bonzini #define FW_OVERHEAD             0x2800000
6953018216SPaolo Bonzini #define KERNEL_LOAD_ADDR        FW_MAX_SIZE
7053018216SPaolo Bonzini 
7153018216SPaolo Bonzini #define MIN_RMA_SLOF            128UL
7253018216SPaolo Bonzini 
7353018216SPaolo Bonzini #define TIMEBASE_FREQ           512000000ULL
7453018216SPaolo Bonzini 
7553018216SPaolo Bonzini #define MAX_CPUS                256
7653018216SPaolo Bonzini #define XICS_IRQS               1024
7753018216SPaolo Bonzini 
7853018216SPaolo Bonzini #define PHANDLE_XICP            0x00001111
7953018216SPaolo Bonzini 
8053018216SPaolo Bonzini #define HTAB_SIZE(spapr)        (1ULL << ((spapr)->htab_shift))
8153018216SPaolo Bonzini 
8253018216SPaolo Bonzini sPAPREnvironment *spapr;
8353018216SPaolo Bonzini 
8453018216SPaolo Bonzini int spapr_allocate_irq(int hint, bool lsi)
8553018216SPaolo Bonzini {
8653018216SPaolo Bonzini     int irq;
8753018216SPaolo Bonzini 
8853018216SPaolo Bonzini     if (hint) {
8953018216SPaolo Bonzini         irq = hint;
9053018216SPaolo Bonzini         /* FIXME: we should probably check for collisions somehow */
9153018216SPaolo Bonzini     } else {
9253018216SPaolo Bonzini         irq = spapr->next_irq++;
9353018216SPaolo Bonzini     }
9453018216SPaolo Bonzini 
9553018216SPaolo Bonzini     /* Configure irq type */
9653018216SPaolo Bonzini     if (!xics_get_qirq(spapr->icp, irq)) {
9753018216SPaolo Bonzini         return 0;
9853018216SPaolo Bonzini     }
9953018216SPaolo Bonzini 
10053018216SPaolo Bonzini     xics_set_irq_type(spapr->icp, irq, lsi);
10153018216SPaolo Bonzini 
10253018216SPaolo Bonzini     return irq;
10353018216SPaolo Bonzini }
10453018216SPaolo Bonzini 
10553018216SPaolo Bonzini /* Allocate block of consequtive IRQs, returns a number of the first */
10653018216SPaolo Bonzini int spapr_allocate_irq_block(int num, bool lsi)
10753018216SPaolo Bonzini {
10853018216SPaolo Bonzini     int first = -1;
10953018216SPaolo Bonzini     int i;
11053018216SPaolo Bonzini 
11153018216SPaolo Bonzini     for (i = 0; i < num; ++i) {
11253018216SPaolo Bonzini         int irq;
11353018216SPaolo Bonzini 
11453018216SPaolo Bonzini         irq = spapr_allocate_irq(0, lsi);
11553018216SPaolo Bonzini         if (!irq) {
11653018216SPaolo Bonzini             return -1;
11753018216SPaolo Bonzini         }
11853018216SPaolo Bonzini 
11953018216SPaolo Bonzini         if (0 == i) {
12053018216SPaolo Bonzini             first = irq;
12153018216SPaolo Bonzini         }
12253018216SPaolo Bonzini 
12353018216SPaolo Bonzini         /* If the above doesn't create a consecutive block then that's
12453018216SPaolo Bonzini          * an internal bug */
12553018216SPaolo Bonzini         assert(irq == (first + i));
12653018216SPaolo Bonzini     }
12753018216SPaolo Bonzini 
12853018216SPaolo Bonzini     return first;
12953018216SPaolo Bonzini }
13053018216SPaolo Bonzini 
13153018216SPaolo Bonzini static int spapr_fixup_cpu_dt(void *fdt, sPAPREnvironment *spapr)
13253018216SPaolo Bonzini {
13353018216SPaolo Bonzini     int ret = 0, offset;
13453018216SPaolo Bonzini     CPUState *cpu;
13553018216SPaolo Bonzini     char cpu_model[32];
13653018216SPaolo Bonzini     int smt = kvmppc_smt_threads();
13753018216SPaolo Bonzini     uint32_t pft_size_prop[] = {0, cpu_to_be32(spapr->htab_shift)};
13853018216SPaolo Bonzini 
13953018216SPaolo Bonzini     assert(spapr->cpu_model);
14053018216SPaolo Bonzini 
141182735efSAndreas Färber     for (cpu = first_cpu; cpu != NULL; cpu = cpu->next_cpu) {
14253018216SPaolo Bonzini         uint32_t associativity[] = {cpu_to_be32(0x5),
14353018216SPaolo Bonzini                                     cpu_to_be32(0x0),
14453018216SPaolo Bonzini                                     cpu_to_be32(0x0),
14553018216SPaolo Bonzini                                     cpu_to_be32(0x0),
14653018216SPaolo Bonzini                                     cpu_to_be32(cpu->numa_node),
14753018216SPaolo Bonzini                                     cpu_to_be32(cpu->cpu_index)};
14853018216SPaolo Bonzini 
14953018216SPaolo Bonzini         if ((cpu->cpu_index % smt) != 0) {
15053018216SPaolo Bonzini             continue;
15153018216SPaolo Bonzini         }
15253018216SPaolo Bonzini 
15353018216SPaolo Bonzini         snprintf(cpu_model, 32, "/cpus/%s@%x", spapr->cpu_model,
15453018216SPaolo Bonzini                  cpu->cpu_index);
15553018216SPaolo Bonzini 
15653018216SPaolo Bonzini         offset = fdt_path_offset(fdt, cpu_model);
15753018216SPaolo Bonzini         if (offset < 0) {
15853018216SPaolo Bonzini             return offset;
15953018216SPaolo Bonzini         }
16053018216SPaolo Bonzini 
16153018216SPaolo Bonzini         if (nb_numa_nodes > 1) {
16253018216SPaolo Bonzini             ret = fdt_setprop(fdt, offset, "ibm,associativity", associativity,
16353018216SPaolo Bonzini                               sizeof(associativity));
16453018216SPaolo Bonzini             if (ret < 0) {
16553018216SPaolo Bonzini                 return ret;
16653018216SPaolo Bonzini             }
16753018216SPaolo Bonzini         }
16853018216SPaolo Bonzini 
16953018216SPaolo Bonzini         ret = fdt_setprop(fdt, offset, "ibm,pft-size",
17053018216SPaolo Bonzini                           pft_size_prop, sizeof(pft_size_prop));
17153018216SPaolo Bonzini         if (ret < 0) {
17253018216SPaolo Bonzini             return ret;
17353018216SPaolo Bonzini         }
17453018216SPaolo Bonzini     }
17553018216SPaolo Bonzini     return ret;
17653018216SPaolo Bonzini }
17753018216SPaolo Bonzini 
17853018216SPaolo Bonzini 
17953018216SPaolo Bonzini static size_t create_page_sizes_prop(CPUPPCState *env, uint32_t *prop,
18053018216SPaolo Bonzini                                      size_t maxsize)
18153018216SPaolo Bonzini {
18253018216SPaolo Bonzini     size_t maxcells = maxsize / sizeof(uint32_t);
18353018216SPaolo Bonzini     int i, j, count;
18453018216SPaolo Bonzini     uint32_t *p = prop;
18553018216SPaolo Bonzini 
18653018216SPaolo Bonzini     for (i = 0; i < PPC_PAGE_SIZES_MAX_SZ; i++) {
18753018216SPaolo Bonzini         struct ppc_one_seg_page_size *sps = &env->sps.sps[i];
18853018216SPaolo Bonzini 
18953018216SPaolo Bonzini         if (!sps->page_shift) {
19053018216SPaolo Bonzini             break;
19153018216SPaolo Bonzini         }
19253018216SPaolo Bonzini         for (count = 0; count < PPC_PAGE_SIZES_MAX_SZ; count++) {
19353018216SPaolo Bonzini             if (sps->enc[count].page_shift == 0) {
19453018216SPaolo Bonzini                 break;
19553018216SPaolo Bonzini             }
19653018216SPaolo Bonzini         }
19753018216SPaolo Bonzini         if ((p - prop) >= (maxcells - 3 - count * 2)) {
19853018216SPaolo Bonzini             break;
19953018216SPaolo Bonzini         }
20053018216SPaolo Bonzini         *(p++) = cpu_to_be32(sps->page_shift);
20153018216SPaolo Bonzini         *(p++) = cpu_to_be32(sps->slb_enc);
20253018216SPaolo Bonzini         *(p++) = cpu_to_be32(count);
20353018216SPaolo Bonzini         for (j = 0; j < count; j++) {
20453018216SPaolo Bonzini             *(p++) = cpu_to_be32(sps->enc[j].page_shift);
20553018216SPaolo Bonzini             *(p++) = cpu_to_be32(sps->enc[j].pte_enc);
20653018216SPaolo Bonzini         }
20753018216SPaolo Bonzini     }
20853018216SPaolo Bonzini 
20953018216SPaolo Bonzini     return (p - prop) * sizeof(uint32_t);
21053018216SPaolo Bonzini }
21153018216SPaolo Bonzini 
21253018216SPaolo Bonzini #define _FDT(exp) \
21353018216SPaolo Bonzini     do { \
21453018216SPaolo Bonzini         int ret = (exp);                                           \
21553018216SPaolo Bonzini         if (ret < 0) {                                             \
21653018216SPaolo Bonzini             fprintf(stderr, "qemu: error creating device tree: %s: %s\n", \
21753018216SPaolo Bonzini                     #exp, fdt_strerror(ret));                      \
21853018216SPaolo Bonzini             exit(1);                                               \
21953018216SPaolo Bonzini         }                                                          \
22053018216SPaolo Bonzini     } while (0)
22153018216SPaolo Bonzini 
22253018216SPaolo Bonzini 
22353018216SPaolo Bonzini static void *spapr_create_fdt_skel(const char *cpu_model,
22453018216SPaolo Bonzini                                    hwaddr initrd_base,
22553018216SPaolo Bonzini                                    hwaddr initrd_size,
22653018216SPaolo Bonzini                                    hwaddr kernel_size,
22753018216SPaolo Bonzini                                    const char *boot_device,
22853018216SPaolo Bonzini                                    const char *kernel_cmdline,
22953018216SPaolo Bonzini                                    uint32_t epow_irq)
23053018216SPaolo Bonzini {
23153018216SPaolo Bonzini     void *fdt;
232182735efSAndreas Färber     CPUState *cs;
23353018216SPaolo Bonzini     uint32_t start_prop = cpu_to_be32(initrd_base);
23453018216SPaolo Bonzini     uint32_t end_prop = cpu_to_be32(initrd_base + initrd_size);
23553018216SPaolo Bonzini     char hypertas_prop[] = "hcall-pft\0hcall-term\0hcall-dabr\0hcall-interrupt"
23653018216SPaolo Bonzini         "\0hcall-tce\0hcall-vio\0hcall-splpar\0hcall-bulk";
23753018216SPaolo Bonzini     char qemu_hypertas_prop[] = "hcall-memop1";
23853018216SPaolo Bonzini     uint32_t refpoints[] = {cpu_to_be32(0x4), cpu_to_be32(0x4)};
23953018216SPaolo Bonzini     uint32_t interrupt_server_ranges_prop[] = {0, cpu_to_be32(smp_cpus)};
24053018216SPaolo Bonzini     char *modelname;
24153018216SPaolo Bonzini     int i, smt = kvmppc_smt_threads();
24253018216SPaolo Bonzini     unsigned char vec5[] = {0x0, 0x0, 0x0, 0x0, 0x0, 0x80};
24353018216SPaolo Bonzini 
24453018216SPaolo Bonzini     fdt = g_malloc0(FDT_MAX_SIZE);
24553018216SPaolo Bonzini     _FDT((fdt_create(fdt, FDT_MAX_SIZE)));
24653018216SPaolo Bonzini 
24753018216SPaolo Bonzini     if (kernel_size) {
24853018216SPaolo Bonzini         _FDT((fdt_add_reservemap_entry(fdt, KERNEL_LOAD_ADDR, kernel_size)));
24953018216SPaolo Bonzini     }
25053018216SPaolo Bonzini     if (initrd_size) {
25153018216SPaolo Bonzini         _FDT((fdt_add_reservemap_entry(fdt, initrd_base, initrd_size)));
25253018216SPaolo Bonzini     }
25353018216SPaolo Bonzini     _FDT((fdt_finish_reservemap(fdt)));
25453018216SPaolo Bonzini 
25553018216SPaolo Bonzini     /* Root node */
25653018216SPaolo Bonzini     _FDT((fdt_begin_node(fdt, "")));
25753018216SPaolo Bonzini     _FDT((fdt_property_string(fdt, "device_type", "chrp")));
25853018216SPaolo Bonzini     _FDT((fdt_property_string(fdt, "model", "IBM pSeries (emulated by qemu)")));
259fa388916SAnthony Liguori     _FDT((fdt_property_string(fdt, "compatible", "qemu,pseries")));
26053018216SPaolo Bonzini 
26153018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#address-cells", 0x2)));
26253018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#size-cells", 0x2)));
26353018216SPaolo Bonzini 
26453018216SPaolo Bonzini     /* /chosen */
26553018216SPaolo Bonzini     _FDT((fdt_begin_node(fdt, "chosen")));
26653018216SPaolo Bonzini 
26753018216SPaolo Bonzini     /* Set Form1_affinity */
26853018216SPaolo Bonzini     _FDT((fdt_property(fdt, "ibm,architecture-vec-5", vec5, sizeof(vec5))));
26953018216SPaolo Bonzini 
27053018216SPaolo Bonzini     _FDT((fdt_property_string(fdt, "bootargs", kernel_cmdline)));
27153018216SPaolo Bonzini     _FDT((fdt_property(fdt, "linux,initrd-start",
27253018216SPaolo Bonzini                        &start_prop, sizeof(start_prop))));
27353018216SPaolo Bonzini     _FDT((fdt_property(fdt, "linux,initrd-end",
27453018216SPaolo Bonzini                        &end_prop, sizeof(end_prop))));
27553018216SPaolo Bonzini     if (kernel_size) {
27653018216SPaolo Bonzini         uint64_t kprop[2] = { cpu_to_be64(KERNEL_LOAD_ADDR),
27753018216SPaolo Bonzini                               cpu_to_be64(kernel_size) };
27853018216SPaolo Bonzini 
27953018216SPaolo Bonzini         _FDT((fdt_property(fdt, "qemu,boot-kernel", &kprop, sizeof(kprop))));
28053018216SPaolo Bonzini     }
28153018216SPaolo Bonzini     if (boot_device) {
28253018216SPaolo Bonzini         _FDT((fdt_property_string(fdt, "qemu,boot-device", boot_device)));
28353018216SPaolo Bonzini     }
28453018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "qemu,graphic-width", graphic_width)));
28553018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "qemu,graphic-height", graphic_height)));
28653018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "qemu,graphic-depth", graphic_depth)));
28753018216SPaolo Bonzini 
28853018216SPaolo Bonzini     _FDT((fdt_end_node(fdt)));
28953018216SPaolo Bonzini 
29053018216SPaolo Bonzini     /* cpus */
29153018216SPaolo Bonzini     _FDT((fdt_begin_node(fdt, "cpus")));
29253018216SPaolo Bonzini 
29353018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#address-cells", 0x1)));
29453018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#size-cells", 0x0)));
29553018216SPaolo Bonzini 
29653018216SPaolo Bonzini     modelname = g_strdup(cpu_model);
29753018216SPaolo Bonzini 
29853018216SPaolo Bonzini     for (i = 0; i < strlen(modelname); i++) {
29953018216SPaolo Bonzini         modelname[i] = toupper(modelname[i]);
30053018216SPaolo Bonzini     }
30153018216SPaolo Bonzini 
30253018216SPaolo Bonzini     /* This is needed during FDT finalization */
30353018216SPaolo Bonzini     spapr->cpu_model = g_strdup(modelname);
30453018216SPaolo Bonzini 
305182735efSAndreas Färber     for (cs = first_cpu; cs != NULL; cs = cs->next_cpu) {
306182735efSAndreas Färber         PowerPCCPU *cpu = POWERPC_CPU(cs);
307182735efSAndreas Färber         CPUPPCState *env = &cpu->env;
308182735efSAndreas Färber         PowerPCCPUClass *pcc = POWERPC_CPU_GET_CLASS(cs);
309182735efSAndreas Färber         int index = cs->cpu_index;
31053018216SPaolo Bonzini         uint32_t servers_prop[smp_threads];
31153018216SPaolo Bonzini         uint32_t gservers_prop[smp_threads * 2];
31253018216SPaolo Bonzini         char *nodename;
31353018216SPaolo Bonzini         uint32_t segs[] = {cpu_to_be32(28), cpu_to_be32(40),
31453018216SPaolo Bonzini                            0xffffffff, 0xffffffff};
31553018216SPaolo Bonzini         uint32_t tbfreq = kvm_enabled() ? kvmppc_get_tbfreq() : TIMEBASE_FREQ;
31653018216SPaolo Bonzini         uint32_t cpufreq = kvm_enabled() ? kvmppc_get_clockfreq() : 1000000000;
31753018216SPaolo Bonzini         uint32_t page_sizes_prop[64];
31853018216SPaolo Bonzini         size_t page_sizes_prop_size;
31953018216SPaolo Bonzini 
32053018216SPaolo Bonzini         if ((index % smt) != 0) {
32153018216SPaolo Bonzini             continue;
32253018216SPaolo Bonzini         }
32353018216SPaolo Bonzini 
32453018216SPaolo Bonzini         nodename = g_strdup_printf("%s@%x", modelname, index);
32553018216SPaolo Bonzini 
32653018216SPaolo Bonzini         _FDT((fdt_begin_node(fdt, nodename)));
32753018216SPaolo Bonzini 
32853018216SPaolo Bonzini         g_free(nodename);
32953018216SPaolo Bonzini 
33053018216SPaolo Bonzini         _FDT((fdt_property_cell(fdt, "reg", index)));
33153018216SPaolo Bonzini         _FDT((fdt_property_string(fdt, "device_type", "cpu")));
33253018216SPaolo Bonzini 
33353018216SPaolo Bonzini         _FDT((fdt_property_cell(fdt, "cpu-version", env->spr[SPR_PVR])));
3340cbad81fSDavid Gibson         _FDT((fdt_property_cell(fdt, "d-cache-block-size",
33553018216SPaolo Bonzini                                 env->dcache_line_size)));
3360cbad81fSDavid Gibson         _FDT((fdt_property_cell(fdt, "d-cache-line-size",
3370cbad81fSDavid Gibson                                 env->dcache_line_size)));
3380cbad81fSDavid Gibson         _FDT((fdt_property_cell(fdt, "i-cache-block-size",
33953018216SPaolo Bonzini                                 env->icache_line_size)));
3400cbad81fSDavid Gibson         _FDT((fdt_property_cell(fdt, "i-cache-line-size",
3410cbad81fSDavid Gibson                                 env->icache_line_size)));
3420cbad81fSDavid Gibson 
3430cbad81fSDavid Gibson         if (pcc->l1_dcache_size) {
3440cbad81fSDavid Gibson             _FDT((fdt_property_cell(fdt, "d-cache-size", pcc->l1_dcache_size)));
3450cbad81fSDavid Gibson         } else {
3460cbad81fSDavid Gibson             fprintf(stderr, "Warning: Unknown L1 dcache size for cpu\n");
3470cbad81fSDavid Gibson         }
3480cbad81fSDavid Gibson         if (pcc->l1_icache_size) {
3490cbad81fSDavid Gibson             _FDT((fdt_property_cell(fdt, "i-cache-size", pcc->l1_icache_size)));
3500cbad81fSDavid Gibson         } else {
3510cbad81fSDavid Gibson             fprintf(stderr, "Warning: Unknown L1 icache size for cpu\n");
3520cbad81fSDavid Gibson         }
3530cbad81fSDavid Gibson 
35453018216SPaolo Bonzini         _FDT((fdt_property_cell(fdt, "timebase-frequency", tbfreq)));
35553018216SPaolo Bonzini         _FDT((fdt_property_cell(fdt, "clock-frequency", cpufreq)));
35653018216SPaolo Bonzini         _FDT((fdt_property_cell(fdt, "ibm,slb-size", env->slb_nr)));
35753018216SPaolo Bonzini         _FDT((fdt_property_string(fdt, "status", "okay")));
35853018216SPaolo Bonzini         _FDT((fdt_property(fdt, "64-bit", NULL, 0)));
35953018216SPaolo Bonzini 
36053018216SPaolo Bonzini         /* Build interrupt servers and gservers properties */
36153018216SPaolo Bonzini         for (i = 0; i < smp_threads; i++) {
36253018216SPaolo Bonzini             servers_prop[i] = cpu_to_be32(index + i);
36353018216SPaolo Bonzini             /* Hack, direct the group queues back to cpu 0 */
36453018216SPaolo Bonzini             gservers_prop[i*2] = cpu_to_be32(index + i);
36553018216SPaolo Bonzini             gservers_prop[i*2 + 1] = 0;
36653018216SPaolo Bonzini         }
36753018216SPaolo Bonzini         _FDT((fdt_property(fdt, "ibm,ppc-interrupt-server#s",
36853018216SPaolo Bonzini                            servers_prop, sizeof(servers_prop))));
36953018216SPaolo Bonzini         _FDT((fdt_property(fdt, "ibm,ppc-interrupt-gserver#s",
37053018216SPaolo Bonzini                            gservers_prop, sizeof(gservers_prop))));
37153018216SPaolo Bonzini 
37253018216SPaolo Bonzini         if (env->mmu_model & POWERPC_MMU_1TSEG) {
37353018216SPaolo Bonzini             _FDT((fdt_property(fdt, "ibm,processor-segment-sizes",
37453018216SPaolo Bonzini                                segs, sizeof(segs))));
37553018216SPaolo Bonzini         }
37653018216SPaolo Bonzini 
37753018216SPaolo Bonzini         /* Advertise VMX/VSX (vector extensions) if available
37853018216SPaolo Bonzini          *   0 / no property == no vector extensions
37953018216SPaolo Bonzini          *   1               == VMX / Altivec available
38053018216SPaolo Bonzini          *   2               == VSX available */
38153018216SPaolo Bonzini         if (env->insns_flags & PPC_ALTIVEC) {
38253018216SPaolo Bonzini             uint32_t vmx = (env->insns_flags2 & PPC2_VSX) ? 2 : 1;
38353018216SPaolo Bonzini 
38453018216SPaolo Bonzini             _FDT((fdt_property_cell(fdt, "ibm,vmx", vmx)));
38553018216SPaolo Bonzini         }
38653018216SPaolo Bonzini 
38753018216SPaolo Bonzini         /* Advertise DFP (Decimal Floating Point) if available
38853018216SPaolo Bonzini          *   0 / no property == no DFP
38953018216SPaolo Bonzini          *   1               == DFP available */
39053018216SPaolo Bonzini         if (env->insns_flags2 & PPC2_DFP) {
39153018216SPaolo Bonzini             _FDT((fdt_property_cell(fdt, "ibm,dfp", 1)));
39253018216SPaolo Bonzini         }
39353018216SPaolo Bonzini 
39453018216SPaolo Bonzini         page_sizes_prop_size = create_page_sizes_prop(env, page_sizes_prop,
39553018216SPaolo Bonzini                                                       sizeof(page_sizes_prop));
39653018216SPaolo Bonzini         if (page_sizes_prop_size) {
39753018216SPaolo Bonzini             _FDT((fdt_property(fdt, "ibm,segment-page-sizes",
39853018216SPaolo Bonzini                                page_sizes_prop, page_sizes_prop_size)));
39953018216SPaolo Bonzini         }
40053018216SPaolo Bonzini 
40153018216SPaolo Bonzini         _FDT((fdt_end_node(fdt)));
40253018216SPaolo Bonzini     }
40353018216SPaolo Bonzini 
40453018216SPaolo Bonzini     g_free(modelname);
40553018216SPaolo Bonzini 
40653018216SPaolo Bonzini     _FDT((fdt_end_node(fdt)));
40753018216SPaolo Bonzini 
40853018216SPaolo Bonzini     /* RTAS */
40953018216SPaolo Bonzini     _FDT((fdt_begin_node(fdt, "rtas")));
41053018216SPaolo Bonzini 
41153018216SPaolo Bonzini     _FDT((fdt_property(fdt, "ibm,hypertas-functions", hypertas_prop,
41253018216SPaolo Bonzini                        sizeof(hypertas_prop))));
41353018216SPaolo Bonzini     _FDT((fdt_property(fdt, "qemu,hypertas-functions", qemu_hypertas_prop,
41453018216SPaolo Bonzini                        sizeof(qemu_hypertas_prop))));
41553018216SPaolo Bonzini 
41653018216SPaolo Bonzini     _FDT((fdt_property(fdt, "ibm,associativity-reference-points",
41753018216SPaolo Bonzini         refpoints, sizeof(refpoints))));
41853018216SPaolo Bonzini 
41953018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "rtas-error-log-max", RTAS_ERROR_LOG_MAX)));
42053018216SPaolo Bonzini 
42153018216SPaolo Bonzini     _FDT((fdt_end_node(fdt)));
42253018216SPaolo Bonzini 
42353018216SPaolo Bonzini     /* interrupt controller */
42453018216SPaolo Bonzini     _FDT((fdt_begin_node(fdt, "interrupt-controller")));
42553018216SPaolo Bonzini 
42653018216SPaolo Bonzini     _FDT((fdt_property_string(fdt, "device_type",
42753018216SPaolo Bonzini                               "PowerPC-External-Interrupt-Presentation")));
42853018216SPaolo Bonzini     _FDT((fdt_property_string(fdt, "compatible", "IBM,ppc-xicp")));
42953018216SPaolo Bonzini     _FDT((fdt_property(fdt, "interrupt-controller", NULL, 0)));
43053018216SPaolo Bonzini     _FDT((fdt_property(fdt, "ibm,interrupt-server-ranges",
43153018216SPaolo Bonzini                        interrupt_server_ranges_prop,
43253018216SPaolo Bonzini                        sizeof(interrupt_server_ranges_prop))));
43353018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#interrupt-cells", 2)));
43453018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "linux,phandle", PHANDLE_XICP)));
43553018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "phandle", PHANDLE_XICP)));
43653018216SPaolo Bonzini 
43753018216SPaolo Bonzini     _FDT((fdt_end_node(fdt)));
43853018216SPaolo Bonzini 
43953018216SPaolo Bonzini     /* vdevice */
44053018216SPaolo Bonzini     _FDT((fdt_begin_node(fdt, "vdevice")));
44153018216SPaolo Bonzini 
44253018216SPaolo Bonzini     _FDT((fdt_property_string(fdt, "device_type", "vdevice")));
44353018216SPaolo Bonzini     _FDT((fdt_property_string(fdt, "compatible", "IBM,vdevice")));
44453018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#address-cells", 0x1)));
44553018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#size-cells", 0x0)));
44653018216SPaolo Bonzini     _FDT((fdt_property_cell(fdt, "#interrupt-cells", 0x2)));
44753018216SPaolo Bonzini     _FDT((fdt_property(fdt, "interrupt-controller", NULL, 0)));
44853018216SPaolo Bonzini 
44953018216SPaolo Bonzini     _FDT((fdt_end_node(fdt)));
45053018216SPaolo Bonzini 
45153018216SPaolo Bonzini     /* event-sources */
45253018216SPaolo Bonzini     spapr_events_fdt_skel(fdt, epow_irq);
45353018216SPaolo Bonzini 
45453018216SPaolo Bonzini     _FDT((fdt_end_node(fdt))); /* close root node */
45553018216SPaolo Bonzini     _FDT((fdt_finish(fdt)));
45653018216SPaolo Bonzini 
45753018216SPaolo Bonzini     return fdt;
45853018216SPaolo Bonzini }
45953018216SPaolo Bonzini 
46053018216SPaolo Bonzini static int spapr_populate_memory(sPAPREnvironment *spapr, void *fdt)
46153018216SPaolo Bonzini {
46253018216SPaolo Bonzini     uint32_t associativity[] = {cpu_to_be32(0x4), cpu_to_be32(0x0),
46353018216SPaolo Bonzini                                 cpu_to_be32(0x0), cpu_to_be32(0x0),
46453018216SPaolo Bonzini                                 cpu_to_be32(0x0)};
46553018216SPaolo Bonzini     char mem_name[32];
46653018216SPaolo Bonzini     hwaddr node0_size, mem_start;
46753018216SPaolo Bonzini     uint64_t mem_reg_property[2];
46853018216SPaolo Bonzini     int i, off;
46953018216SPaolo Bonzini 
47053018216SPaolo Bonzini     /* memory node(s) */
47153018216SPaolo Bonzini     node0_size = (nb_numa_nodes > 1) ? node_mem[0] : ram_size;
47253018216SPaolo Bonzini     if (spapr->rma_size > node0_size) {
47353018216SPaolo Bonzini         spapr->rma_size = node0_size;
47453018216SPaolo Bonzini     }
47553018216SPaolo Bonzini 
47653018216SPaolo Bonzini     /* RMA */
47753018216SPaolo Bonzini     mem_reg_property[0] = 0;
47853018216SPaolo Bonzini     mem_reg_property[1] = cpu_to_be64(spapr->rma_size);
47953018216SPaolo Bonzini     off = fdt_add_subnode(fdt, 0, "memory@0");
48053018216SPaolo Bonzini     _FDT(off);
48153018216SPaolo Bonzini     _FDT((fdt_setprop_string(fdt, off, "device_type", "memory")));
48253018216SPaolo Bonzini     _FDT((fdt_setprop(fdt, off, "reg", mem_reg_property,
48353018216SPaolo Bonzini                       sizeof(mem_reg_property))));
48453018216SPaolo Bonzini     _FDT((fdt_setprop(fdt, off, "ibm,associativity", associativity,
48553018216SPaolo Bonzini                       sizeof(associativity))));
48653018216SPaolo Bonzini 
48753018216SPaolo Bonzini     /* RAM: Node 0 */
48853018216SPaolo Bonzini     if (node0_size > spapr->rma_size) {
48953018216SPaolo Bonzini         mem_reg_property[0] = cpu_to_be64(spapr->rma_size);
49053018216SPaolo Bonzini         mem_reg_property[1] = cpu_to_be64(node0_size - spapr->rma_size);
49153018216SPaolo Bonzini 
49253018216SPaolo Bonzini         sprintf(mem_name, "memory@" TARGET_FMT_lx, spapr->rma_size);
49353018216SPaolo Bonzini         off = fdt_add_subnode(fdt, 0, mem_name);
49453018216SPaolo Bonzini         _FDT(off);
49553018216SPaolo Bonzini         _FDT((fdt_setprop_string(fdt, off, "device_type", "memory")));
49653018216SPaolo Bonzini         _FDT((fdt_setprop(fdt, off, "reg", mem_reg_property,
49753018216SPaolo Bonzini                           sizeof(mem_reg_property))));
49853018216SPaolo Bonzini         _FDT((fdt_setprop(fdt, off, "ibm,associativity", associativity,
49953018216SPaolo Bonzini                           sizeof(associativity))));
50053018216SPaolo Bonzini     }
50153018216SPaolo Bonzini 
50253018216SPaolo Bonzini     /* RAM: Node 1 and beyond */
50353018216SPaolo Bonzini     mem_start = node0_size;
50453018216SPaolo Bonzini     for (i = 1; i < nb_numa_nodes; i++) {
50553018216SPaolo Bonzini         mem_reg_property[0] = cpu_to_be64(mem_start);
50653018216SPaolo Bonzini         mem_reg_property[1] = cpu_to_be64(node_mem[i]);
50753018216SPaolo Bonzini         associativity[3] = associativity[4] = cpu_to_be32(i);
50853018216SPaolo Bonzini         sprintf(mem_name, "memory@" TARGET_FMT_lx, mem_start);
50953018216SPaolo Bonzini         off = fdt_add_subnode(fdt, 0, mem_name);
51053018216SPaolo Bonzini         _FDT(off);
51153018216SPaolo Bonzini         _FDT((fdt_setprop_string(fdt, off, "device_type", "memory")));
51253018216SPaolo Bonzini         _FDT((fdt_setprop(fdt, off, "reg", mem_reg_property,
51353018216SPaolo Bonzini                           sizeof(mem_reg_property))));
51453018216SPaolo Bonzini         _FDT((fdt_setprop(fdt, off, "ibm,associativity", associativity,
51553018216SPaolo Bonzini                           sizeof(associativity))));
51653018216SPaolo Bonzini         mem_start += node_mem[i];
51753018216SPaolo Bonzini     }
51853018216SPaolo Bonzini 
51953018216SPaolo Bonzini     return 0;
52053018216SPaolo Bonzini }
52153018216SPaolo Bonzini 
52253018216SPaolo Bonzini static void spapr_finalize_fdt(sPAPREnvironment *spapr,
52353018216SPaolo Bonzini                                hwaddr fdt_addr,
52453018216SPaolo Bonzini                                hwaddr rtas_addr,
52553018216SPaolo Bonzini                                hwaddr rtas_size)
52653018216SPaolo Bonzini {
52753018216SPaolo Bonzini     int ret;
52853018216SPaolo Bonzini     void *fdt;
52953018216SPaolo Bonzini     sPAPRPHBState *phb;
53053018216SPaolo Bonzini 
53153018216SPaolo Bonzini     fdt = g_malloc(FDT_MAX_SIZE);
53253018216SPaolo Bonzini 
53353018216SPaolo Bonzini     /* open out the base tree into a temp buffer for the final tweaks */
53453018216SPaolo Bonzini     _FDT((fdt_open_into(spapr->fdt_skel, fdt, FDT_MAX_SIZE)));
53553018216SPaolo Bonzini 
53653018216SPaolo Bonzini     ret = spapr_populate_memory(spapr, fdt);
53753018216SPaolo Bonzini     if (ret < 0) {
53853018216SPaolo Bonzini         fprintf(stderr, "couldn't setup memory nodes in fdt\n");
53953018216SPaolo Bonzini         exit(1);
54053018216SPaolo Bonzini     }
54153018216SPaolo Bonzini 
54253018216SPaolo Bonzini     ret = spapr_populate_vdevice(spapr->vio_bus, fdt);
54353018216SPaolo Bonzini     if (ret < 0) {
54453018216SPaolo Bonzini         fprintf(stderr, "couldn't setup vio devices in fdt\n");
54553018216SPaolo Bonzini         exit(1);
54653018216SPaolo Bonzini     }
54753018216SPaolo Bonzini 
54853018216SPaolo Bonzini     QLIST_FOREACH(phb, &spapr->phbs, list) {
54953018216SPaolo Bonzini         ret = spapr_populate_pci_dt(phb, PHANDLE_XICP, fdt);
55053018216SPaolo Bonzini     }
55153018216SPaolo Bonzini 
55253018216SPaolo Bonzini     if (ret < 0) {
55353018216SPaolo Bonzini         fprintf(stderr, "couldn't setup PCI devices in fdt\n");
55453018216SPaolo Bonzini         exit(1);
55553018216SPaolo Bonzini     }
55653018216SPaolo Bonzini 
55753018216SPaolo Bonzini     /* RTAS */
55853018216SPaolo Bonzini     ret = spapr_rtas_device_tree_setup(fdt, rtas_addr, rtas_size);
55953018216SPaolo Bonzini     if (ret < 0) {
56053018216SPaolo Bonzini         fprintf(stderr, "Couldn't set up RTAS device tree properties\n");
56153018216SPaolo Bonzini     }
56253018216SPaolo Bonzini 
56353018216SPaolo Bonzini     /* Advertise NUMA via ibm,associativity */
56453018216SPaolo Bonzini     ret = spapr_fixup_cpu_dt(fdt, spapr);
56553018216SPaolo Bonzini     if (ret < 0) {
56653018216SPaolo Bonzini         fprintf(stderr, "Couldn't finalize CPU device tree properties\n");
56753018216SPaolo Bonzini     }
56853018216SPaolo Bonzini 
56953018216SPaolo Bonzini     if (!spapr->has_graphics) {
57053018216SPaolo Bonzini         spapr_populate_chosen_stdout(fdt, spapr->vio_bus);
57153018216SPaolo Bonzini     }
57253018216SPaolo Bonzini 
57353018216SPaolo Bonzini     _FDT((fdt_pack(fdt)));
57453018216SPaolo Bonzini 
57553018216SPaolo Bonzini     if (fdt_totalsize(fdt) > FDT_MAX_SIZE) {
57653018216SPaolo Bonzini         hw_error("FDT too big ! 0x%x bytes (max is 0x%x)\n",
57753018216SPaolo Bonzini                  fdt_totalsize(fdt), FDT_MAX_SIZE);
57853018216SPaolo Bonzini         exit(1);
57953018216SPaolo Bonzini     }
58053018216SPaolo Bonzini 
58153018216SPaolo Bonzini     cpu_physical_memory_write(fdt_addr, fdt, fdt_totalsize(fdt));
58253018216SPaolo Bonzini 
58353018216SPaolo Bonzini     g_free(fdt);
58453018216SPaolo Bonzini }
58553018216SPaolo Bonzini 
58653018216SPaolo Bonzini static uint64_t translate_kernel_address(void *opaque, uint64_t addr)
58753018216SPaolo Bonzini {
58853018216SPaolo Bonzini     return (addr & 0x0fffffff) + KERNEL_LOAD_ADDR;
58953018216SPaolo Bonzini }
59053018216SPaolo Bonzini 
59153018216SPaolo Bonzini static void emulate_spapr_hypercall(PowerPCCPU *cpu)
59253018216SPaolo Bonzini {
59353018216SPaolo Bonzini     CPUPPCState *env = &cpu->env;
59453018216SPaolo Bonzini 
59553018216SPaolo Bonzini     if (msr_pr) {
59653018216SPaolo Bonzini         hcall_dprintf("Hypercall made with MSR[PR]=1\n");
59753018216SPaolo Bonzini         env->gpr[3] = H_PRIVILEGE;
59853018216SPaolo Bonzini     } else {
59953018216SPaolo Bonzini         env->gpr[3] = spapr_hypercall(cpu, env->gpr[3], &env->gpr[4]);
60053018216SPaolo Bonzini     }
60153018216SPaolo Bonzini }
60253018216SPaolo Bonzini 
60353018216SPaolo Bonzini static void spapr_reset_htab(sPAPREnvironment *spapr)
60453018216SPaolo Bonzini {
60553018216SPaolo Bonzini     long shift;
60653018216SPaolo Bonzini 
60753018216SPaolo Bonzini     /* allocate hash page table.  For now we always make this 16mb,
60853018216SPaolo Bonzini      * later we should probably make it scale to the size of guest
60953018216SPaolo Bonzini      * RAM */
61053018216SPaolo Bonzini 
61153018216SPaolo Bonzini     shift = kvmppc_reset_htab(spapr->htab_shift);
61253018216SPaolo Bonzini 
61353018216SPaolo Bonzini     if (shift > 0) {
61453018216SPaolo Bonzini         /* Kernel handles htab, we don't need to allocate one */
61553018216SPaolo Bonzini         spapr->htab_shift = shift;
61653018216SPaolo Bonzini     } else {
61753018216SPaolo Bonzini         if (!spapr->htab) {
61853018216SPaolo Bonzini             /* Allocate an htab if we don't yet have one */
61953018216SPaolo Bonzini             spapr->htab = qemu_memalign(HTAB_SIZE(spapr), HTAB_SIZE(spapr));
62053018216SPaolo Bonzini         }
62153018216SPaolo Bonzini 
62253018216SPaolo Bonzini         /* And clear it */
62353018216SPaolo Bonzini         memset(spapr->htab, 0, HTAB_SIZE(spapr));
62453018216SPaolo Bonzini     }
62553018216SPaolo Bonzini 
62653018216SPaolo Bonzini     /* Update the RMA size if necessary */
62753018216SPaolo Bonzini     if (spapr->vrma_adjust) {
62853018216SPaolo Bonzini         spapr->rma_size = kvmppc_rma_size(ram_size, spapr->htab_shift);
62953018216SPaolo Bonzini     }
63053018216SPaolo Bonzini }
63153018216SPaolo Bonzini 
63253018216SPaolo Bonzini static void ppc_spapr_reset(void)
63353018216SPaolo Bonzini {
634182735efSAndreas Färber     PowerPCCPU *first_ppc_cpu;
635259186a7SAndreas Färber 
63653018216SPaolo Bonzini     /* Reset the hash table & recalc the RMA */
63753018216SPaolo Bonzini     spapr_reset_htab(spapr);
63853018216SPaolo Bonzini 
63953018216SPaolo Bonzini     qemu_devices_reset();
64053018216SPaolo Bonzini 
64153018216SPaolo Bonzini     /* Load the fdt */
64253018216SPaolo Bonzini     spapr_finalize_fdt(spapr, spapr->fdt_addr, spapr->rtas_addr,
64353018216SPaolo Bonzini                        spapr->rtas_size);
64453018216SPaolo Bonzini 
64553018216SPaolo Bonzini     /* Set up the entry state */
646182735efSAndreas Färber     first_ppc_cpu = POWERPC_CPU(first_cpu);
647182735efSAndreas Färber     first_ppc_cpu->env.gpr[3] = spapr->fdt_addr;
648182735efSAndreas Färber     first_ppc_cpu->env.gpr[5] = 0;
649182735efSAndreas Färber     first_cpu->halted = 0;
650182735efSAndreas Färber     first_ppc_cpu->env.nip = spapr->entry_point;
65153018216SPaolo Bonzini 
65253018216SPaolo Bonzini }
65353018216SPaolo Bonzini 
65453018216SPaolo Bonzini static void spapr_cpu_reset(void *opaque)
65553018216SPaolo Bonzini {
65653018216SPaolo Bonzini     PowerPCCPU *cpu = opaque;
657259186a7SAndreas Färber     CPUState *cs = CPU(cpu);
65853018216SPaolo Bonzini     CPUPPCState *env = &cpu->env;
65953018216SPaolo Bonzini 
660259186a7SAndreas Färber     cpu_reset(cs);
66153018216SPaolo Bonzini 
66253018216SPaolo Bonzini     /* All CPUs start halted.  CPU0 is unhalted from the machine level
66353018216SPaolo Bonzini      * reset code and the rest are explicitly started up by the guest
66453018216SPaolo Bonzini      * using an RTAS call */
665259186a7SAndreas Färber     cs->halted = 1;
66653018216SPaolo Bonzini 
66753018216SPaolo Bonzini     env->spr[SPR_HIOR] = 0;
66853018216SPaolo Bonzini 
66953018216SPaolo Bonzini     env->external_htab = spapr->htab;
67053018216SPaolo Bonzini     env->htab_base = -1;
67153018216SPaolo Bonzini     env->htab_mask = HTAB_SIZE(spapr) - 1;
672ec4936e1SStefan Weil     env->spr[SPR_SDR1] = (target_ulong)(uintptr_t)spapr->htab |
67353018216SPaolo Bonzini         (spapr->htab_shift - 18);
67453018216SPaolo Bonzini }
67553018216SPaolo Bonzini 
67653018216SPaolo Bonzini static void spapr_create_nvram(sPAPREnvironment *spapr)
67753018216SPaolo Bonzini {
6782ff3de68SMarkus Armbruster     DeviceState *dev = qdev_create(&spapr->vio_bus->bus, "spapr-nvram");
6792ff3de68SMarkus Armbruster     const char *drivename = qemu_opt_get(qemu_get_machine_opts(), "nvram");
68053018216SPaolo Bonzini 
68153018216SPaolo Bonzini     if (drivename) {
68253018216SPaolo Bonzini         BlockDriverState *bs;
68353018216SPaolo Bonzini 
68453018216SPaolo Bonzini         bs = bdrv_find(drivename);
68553018216SPaolo Bonzini         if (!bs) {
68653018216SPaolo Bonzini             fprintf(stderr, "No such block device \"%s\" for nvram\n",
68753018216SPaolo Bonzini                     drivename);
68853018216SPaolo Bonzini             exit(1);
68953018216SPaolo Bonzini         }
69053018216SPaolo Bonzini         qdev_prop_set_drive_nofail(dev, "drive", bs);
69153018216SPaolo Bonzini     }
69253018216SPaolo Bonzini 
69353018216SPaolo Bonzini     qdev_init_nofail(dev);
69453018216SPaolo Bonzini 
69553018216SPaolo Bonzini     spapr->nvram = (struct sPAPRNVRAM *)dev;
69653018216SPaolo Bonzini }
69753018216SPaolo Bonzini 
69853018216SPaolo Bonzini /* Returns whether we want to use VGA or not */
69953018216SPaolo Bonzini static int spapr_vga_init(PCIBus *pci_bus)
70053018216SPaolo Bonzini {
70153018216SPaolo Bonzini     switch (vga_interface_type) {
70253018216SPaolo Bonzini     case VGA_NONE:
70353018216SPaolo Bonzini     case VGA_STD:
70453018216SPaolo Bonzini         return pci_vga_init(pci_bus) != NULL;
70553018216SPaolo Bonzini     default:
70653018216SPaolo Bonzini         fprintf(stderr, "This vga model is not supported,"
70753018216SPaolo Bonzini                 "currently it only supports -vga std\n");
70853018216SPaolo Bonzini         exit(0);
70953018216SPaolo Bonzini         break;
71053018216SPaolo Bonzini     }
71153018216SPaolo Bonzini }
71253018216SPaolo Bonzini 
71353018216SPaolo Bonzini /* pSeries LPAR / sPAPR hardware init */
71453018216SPaolo Bonzini static void ppc_spapr_init(QEMUMachineInitArgs *args)
71553018216SPaolo Bonzini {
71653018216SPaolo Bonzini     ram_addr_t ram_size = args->ram_size;
71753018216SPaolo Bonzini     const char *cpu_model = args->cpu_model;
71853018216SPaolo Bonzini     const char *kernel_filename = args->kernel_filename;
71953018216SPaolo Bonzini     const char *kernel_cmdline = args->kernel_cmdline;
72053018216SPaolo Bonzini     const char *initrd_filename = args->initrd_filename;
72153018216SPaolo Bonzini     const char *boot_device = args->boot_device;
72253018216SPaolo Bonzini     PowerPCCPU *cpu;
72353018216SPaolo Bonzini     CPUPPCState *env;
72453018216SPaolo Bonzini     PCIHostState *phb;
72553018216SPaolo Bonzini     int i;
72653018216SPaolo Bonzini     MemoryRegion *sysmem = get_system_memory();
72753018216SPaolo Bonzini     MemoryRegion *ram = g_new(MemoryRegion, 1);
72853018216SPaolo Bonzini     hwaddr rma_alloc_size;
72953018216SPaolo Bonzini     uint32_t initrd_base = 0;
73053018216SPaolo Bonzini     long kernel_size = 0, initrd_size = 0;
73153018216SPaolo Bonzini     long load_limit, rtas_limit, fw_size;
73253018216SPaolo Bonzini     char *filename;
73353018216SPaolo Bonzini 
73453018216SPaolo Bonzini     msi_supported = true;
73553018216SPaolo Bonzini 
73653018216SPaolo Bonzini     spapr = g_malloc0(sizeof(*spapr));
73753018216SPaolo Bonzini     QLIST_INIT(&spapr->phbs);
73853018216SPaolo Bonzini 
73953018216SPaolo Bonzini     cpu_ppc_hypercall = emulate_spapr_hypercall;
74053018216SPaolo Bonzini 
74153018216SPaolo Bonzini     /* Allocate RMA if necessary */
74253018216SPaolo Bonzini     rma_alloc_size = kvmppc_alloc_rma("ppc_spapr.rma", sysmem);
74353018216SPaolo Bonzini 
74453018216SPaolo Bonzini     if (rma_alloc_size == -1) {
74553018216SPaolo Bonzini         hw_error("qemu: Unable to create RMA\n");
74653018216SPaolo Bonzini         exit(1);
74753018216SPaolo Bonzini     }
74853018216SPaolo Bonzini 
74953018216SPaolo Bonzini     if (rma_alloc_size && (rma_alloc_size < ram_size)) {
75053018216SPaolo Bonzini         spapr->rma_size = rma_alloc_size;
75153018216SPaolo Bonzini     } else {
75253018216SPaolo Bonzini         spapr->rma_size = ram_size;
75353018216SPaolo Bonzini 
75453018216SPaolo Bonzini         /* With KVM, we don't actually know whether KVM supports an
75553018216SPaolo Bonzini          * unbounded RMA (PR KVM) or is limited by the hash table size
75653018216SPaolo Bonzini          * (HV KVM using VRMA), so we always assume the latter
75753018216SPaolo Bonzini          *
75853018216SPaolo Bonzini          * In that case, we also limit the initial allocations for RTAS
75953018216SPaolo Bonzini          * etc... to 256M since we have no way to know what the VRMA size
76053018216SPaolo Bonzini          * is going to be as it depends on the size of the hash table
76153018216SPaolo Bonzini          * isn't determined yet.
76253018216SPaolo Bonzini          */
76353018216SPaolo Bonzini         if (kvm_enabled()) {
76453018216SPaolo Bonzini             spapr->vrma_adjust = 1;
76553018216SPaolo Bonzini             spapr->rma_size = MIN(spapr->rma_size, 0x10000000);
76653018216SPaolo Bonzini         }
76753018216SPaolo Bonzini     }
76853018216SPaolo Bonzini 
76953018216SPaolo Bonzini     /* We place the device tree and RTAS just below either the top of the RMA,
77053018216SPaolo Bonzini      * or just below 2GB, whichever is lowere, so that it can be
77153018216SPaolo Bonzini      * processed with 32-bit real mode code if necessary */
77253018216SPaolo Bonzini     rtas_limit = MIN(spapr->rma_size, 0x80000000);
77353018216SPaolo Bonzini     spapr->rtas_addr = rtas_limit - RTAS_MAX_SIZE;
77453018216SPaolo Bonzini     spapr->fdt_addr = spapr->rtas_addr - FDT_MAX_SIZE;
77553018216SPaolo Bonzini     load_limit = spapr->fdt_addr - FW_OVERHEAD;
77653018216SPaolo Bonzini 
77753018216SPaolo Bonzini     /* We aim for a hash table of size 1/128 the size of RAM.  The
77853018216SPaolo Bonzini      * normal rule of thumb is 1/64 the size of RAM, but that's much
77953018216SPaolo Bonzini      * more than needed for the Linux guests we support. */
78053018216SPaolo Bonzini     spapr->htab_shift = 18; /* Minimum architected size */
78153018216SPaolo Bonzini     while (spapr->htab_shift <= 46) {
78253018216SPaolo Bonzini         if ((1ULL << (spapr->htab_shift + 7)) >= ram_size) {
78353018216SPaolo Bonzini             break;
78453018216SPaolo Bonzini         }
78553018216SPaolo Bonzini         spapr->htab_shift++;
78653018216SPaolo Bonzini     }
78753018216SPaolo Bonzini 
7887b565160SDavid Gibson     /* Set up Interrupt Controller before we create the VCPUs */
7897b565160SDavid Gibson     spapr->icp = xics_system_init(smp_cpus * kvmppc_smt_threads() / smp_threads,
7907b565160SDavid Gibson                                   XICS_IRQS);
7917b565160SDavid Gibson     spapr->next_irq = XICS_IRQ_BASE;
7927b565160SDavid Gibson 
79353018216SPaolo Bonzini     /* init CPUs */
79453018216SPaolo Bonzini     if (cpu_model == NULL) {
79553018216SPaolo Bonzini         cpu_model = kvm_enabled() ? "host" : "POWER7";
79653018216SPaolo Bonzini     }
79753018216SPaolo Bonzini     for (i = 0; i < smp_cpus; i++) {
79853018216SPaolo Bonzini         cpu = cpu_ppc_init(cpu_model);
79953018216SPaolo Bonzini         if (cpu == NULL) {
80053018216SPaolo Bonzini             fprintf(stderr, "Unable to find PowerPC CPU definition\n");
80153018216SPaolo Bonzini             exit(1);
80253018216SPaolo Bonzini         }
80353018216SPaolo Bonzini         env = &cpu->env;
80453018216SPaolo Bonzini 
8057b565160SDavid Gibson         xics_cpu_setup(spapr->icp, cpu);
8067b565160SDavid Gibson 
80753018216SPaolo Bonzini         /* Set time-base frequency to 512 MHz */
80853018216SPaolo Bonzini         cpu_ppc_tb_init(env, TIMEBASE_FREQ);
80953018216SPaolo Bonzini 
8102cf3eb6dSFabien Chouteau         /* PAPR always has exception vectors in RAM not ROM. To ensure this,
8112cf3eb6dSFabien Chouteau          * MSR[IP] should never be set.
8122cf3eb6dSFabien Chouteau          */
8132cf3eb6dSFabien Chouteau         env->msr_mask &= ~(1 << 6);
81453018216SPaolo Bonzini 
81553018216SPaolo Bonzini         /* Tell KVM that we're in PAPR mode */
81653018216SPaolo Bonzini         if (kvm_enabled()) {
81753018216SPaolo Bonzini             kvmppc_set_papr(cpu);
81853018216SPaolo Bonzini         }
81953018216SPaolo Bonzini 
82053018216SPaolo Bonzini         qemu_register_reset(spapr_cpu_reset, cpu);
82153018216SPaolo Bonzini     }
82253018216SPaolo Bonzini 
82353018216SPaolo Bonzini     /* allocate RAM */
82453018216SPaolo Bonzini     spapr->ram_limit = ram_size;
82553018216SPaolo Bonzini     if (spapr->ram_limit > rma_alloc_size) {
82653018216SPaolo Bonzini         ram_addr_t nonrma_base = rma_alloc_size;
82753018216SPaolo Bonzini         ram_addr_t nonrma_size = spapr->ram_limit - rma_alloc_size;
82853018216SPaolo Bonzini 
8292c9b15caSPaolo Bonzini         memory_region_init_ram(ram, NULL, "ppc_spapr.ram", nonrma_size);
83053018216SPaolo Bonzini         vmstate_register_ram_global(ram);
83153018216SPaolo Bonzini         memory_region_add_subregion(sysmem, nonrma_base, ram);
83253018216SPaolo Bonzini     }
83353018216SPaolo Bonzini 
83453018216SPaolo Bonzini     filename = qemu_find_file(QEMU_FILE_TYPE_BIOS, "spapr-rtas.bin");
83553018216SPaolo Bonzini     spapr->rtas_size = load_image_targphys(filename, spapr->rtas_addr,
83653018216SPaolo Bonzini                                            rtas_limit - spapr->rtas_addr);
83753018216SPaolo Bonzini     if (spapr->rtas_size < 0) {
83853018216SPaolo Bonzini         hw_error("qemu: could not load LPAR rtas '%s'\n", filename);
83953018216SPaolo Bonzini         exit(1);
84053018216SPaolo Bonzini     }
84153018216SPaolo Bonzini     if (spapr->rtas_size > RTAS_MAX_SIZE) {
84253018216SPaolo Bonzini         hw_error("RTAS too big ! 0x%lx bytes (max is 0x%x)\n",
84353018216SPaolo Bonzini                  spapr->rtas_size, RTAS_MAX_SIZE);
84453018216SPaolo Bonzini         exit(1);
84553018216SPaolo Bonzini     }
84653018216SPaolo Bonzini     g_free(filename);
84753018216SPaolo Bonzini 
84853018216SPaolo Bonzini     /* Set up EPOW events infrastructure */
84953018216SPaolo Bonzini     spapr_events_init(spapr);
85053018216SPaolo Bonzini 
85153018216SPaolo Bonzini     /* Set up IOMMU */
85253018216SPaolo Bonzini     spapr_iommu_init();
85353018216SPaolo Bonzini 
85453018216SPaolo Bonzini     /* Set up VIO bus */
85553018216SPaolo Bonzini     spapr->vio_bus = spapr_vio_bus_init();
85653018216SPaolo Bonzini 
85753018216SPaolo Bonzini     for (i = 0; i < MAX_SERIAL_PORTS; i++) {
85853018216SPaolo Bonzini         if (serial_hds[i]) {
85953018216SPaolo Bonzini             spapr_vty_create(spapr->vio_bus, serial_hds[i]);
86053018216SPaolo Bonzini         }
86153018216SPaolo Bonzini     }
86253018216SPaolo Bonzini 
86353018216SPaolo Bonzini     /* We always have at least the nvram device on VIO */
86453018216SPaolo Bonzini     spapr_create_nvram(spapr);
86553018216SPaolo Bonzini 
86653018216SPaolo Bonzini     /* Set up PCI */
86753018216SPaolo Bonzini     spapr_pci_rtas_init();
86853018216SPaolo Bonzini 
86989dfd6e1SDavid Gibson     phb = spapr_create_phb(spapr, 0);
87053018216SPaolo Bonzini 
87153018216SPaolo Bonzini     for (i = 0; i < nb_nics; i++) {
87253018216SPaolo Bonzini         NICInfo *nd = &nd_table[i];
87353018216SPaolo Bonzini 
87453018216SPaolo Bonzini         if (!nd->model) {
87553018216SPaolo Bonzini             nd->model = g_strdup("ibmveth");
87653018216SPaolo Bonzini         }
87753018216SPaolo Bonzini 
87853018216SPaolo Bonzini         if (strcmp(nd->model, "ibmveth") == 0) {
87953018216SPaolo Bonzini             spapr_vlan_create(spapr->vio_bus, nd);
88053018216SPaolo Bonzini         } else {
88129b358f9SDavid Gibson             pci_nic_init_nofail(&nd_table[i], phb->bus, nd->model, NULL);
88253018216SPaolo Bonzini         }
88353018216SPaolo Bonzini     }
88453018216SPaolo Bonzini 
88553018216SPaolo Bonzini     for (i = 0; i <= drive_get_max_bus(IF_SCSI); i++) {
88653018216SPaolo Bonzini         spapr_vscsi_create(spapr->vio_bus);
88753018216SPaolo Bonzini     }
88853018216SPaolo Bonzini 
88953018216SPaolo Bonzini     /* Graphics */
89053018216SPaolo Bonzini     if (spapr_vga_init(phb->bus)) {
89153018216SPaolo Bonzini         spapr->has_graphics = true;
89253018216SPaolo Bonzini     }
89353018216SPaolo Bonzini 
89453018216SPaolo Bonzini     if (usb_enabled(spapr->has_graphics)) {
89553018216SPaolo Bonzini         pci_create_simple(phb->bus, -1, "pci-ohci");
89653018216SPaolo Bonzini         if (spapr->has_graphics) {
89753018216SPaolo Bonzini             usbdevice_create("keyboard");
89853018216SPaolo Bonzini             usbdevice_create("mouse");
89953018216SPaolo Bonzini         }
90053018216SPaolo Bonzini     }
90153018216SPaolo Bonzini 
90253018216SPaolo Bonzini     if (spapr->rma_size < (MIN_RMA_SLOF << 20)) {
90353018216SPaolo Bonzini         fprintf(stderr, "qemu: pSeries SLOF firmware requires >= "
90453018216SPaolo Bonzini                 "%ldM guest RMA (Real Mode Area memory)\n", MIN_RMA_SLOF);
90553018216SPaolo Bonzini         exit(1);
90653018216SPaolo Bonzini     }
90753018216SPaolo Bonzini 
90853018216SPaolo Bonzini     if (kernel_filename) {
90953018216SPaolo Bonzini         uint64_t lowaddr = 0;
91053018216SPaolo Bonzini 
91153018216SPaolo Bonzini         kernel_size = load_elf(kernel_filename, translate_kernel_address, NULL,
91253018216SPaolo Bonzini                                NULL, &lowaddr, NULL, 1, ELF_MACHINE, 0);
91353018216SPaolo Bonzini         if (kernel_size < 0) {
91453018216SPaolo Bonzini             kernel_size = load_image_targphys(kernel_filename,
91553018216SPaolo Bonzini                                               KERNEL_LOAD_ADDR,
91653018216SPaolo Bonzini                                               load_limit - KERNEL_LOAD_ADDR);
91753018216SPaolo Bonzini         }
91853018216SPaolo Bonzini         if (kernel_size < 0) {
91953018216SPaolo Bonzini             fprintf(stderr, "qemu: could not load kernel '%s'\n",
92053018216SPaolo Bonzini                     kernel_filename);
92153018216SPaolo Bonzini             exit(1);
92253018216SPaolo Bonzini         }
92353018216SPaolo Bonzini 
92453018216SPaolo Bonzini         /* load initrd */
92553018216SPaolo Bonzini         if (initrd_filename) {
92653018216SPaolo Bonzini             /* Try to locate the initrd in the gap between the kernel
92753018216SPaolo Bonzini              * and the firmware. Add a bit of space just in case
92853018216SPaolo Bonzini              */
92953018216SPaolo Bonzini             initrd_base = (KERNEL_LOAD_ADDR + kernel_size + 0x1ffff) & ~0xffff;
93053018216SPaolo Bonzini             initrd_size = load_image_targphys(initrd_filename, initrd_base,
93153018216SPaolo Bonzini                                               load_limit - initrd_base);
93253018216SPaolo Bonzini             if (initrd_size < 0) {
93353018216SPaolo Bonzini                 fprintf(stderr, "qemu: could not load initial ram disk '%s'\n",
93453018216SPaolo Bonzini                         initrd_filename);
93553018216SPaolo Bonzini                 exit(1);
93653018216SPaolo Bonzini             }
93753018216SPaolo Bonzini         } else {
93853018216SPaolo Bonzini             initrd_base = 0;
93953018216SPaolo Bonzini             initrd_size = 0;
94053018216SPaolo Bonzini         }
94153018216SPaolo Bonzini     }
94253018216SPaolo Bonzini 
943*8e7ea787SAndreas Färber     if (bios_name == NULL) {
944*8e7ea787SAndreas Färber         bios_name = FW_FILE_NAME;
945*8e7ea787SAndreas Färber     }
946*8e7ea787SAndreas Färber     filename = qemu_find_file(QEMU_FILE_TYPE_BIOS, bios_name);
94753018216SPaolo Bonzini     fw_size = load_image_targphys(filename, 0, FW_MAX_SIZE);
94853018216SPaolo Bonzini     if (fw_size < 0) {
94953018216SPaolo Bonzini         hw_error("qemu: could not load LPAR rtas '%s'\n", filename);
95053018216SPaolo Bonzini         exit(1);
95153018216SPaolo Bonzini     }
95253018216SPaolo Bonzini     g_free(filename);
95353018216SPaolo Bonzini 
95453018216SPaolo Bonzini     spapr->entry_point = 0x100;
95553018216SPaolo Bonzini 
95653018216SPaolo Bonzini     /* Prepare the device tree */
95753018216SPaolo Bonzini     spapr->fdt_skel = spapr_create_fdt_skel(cpu_model,
95853018216SPaolo Bonzini                                             initrd_base, initrd_size,
95953018216SPaolo Bonzini                                             kernel_size,
96053018216SPaolo Bonzini                                             boot_device, kernel_cmdline,
96153018216SPaolo Bonzini                                             spapr->epow_irq);
96253018216SPaolo Bonzini     assert(spapr->fdt_skel != NULL);
96353018216SPaolo Bonzini }
96453018216SPaolo Bonzini 
96553018216SPaolo Bonzini static QEMUMachine spapr_machine = {
96653018216SPaolo Bonzini     .name = "pseries",
96753018216SPaolo Bonzini     .desc = "pSeries Logical Partition (PAPR compliant)",
968159f8286SDavid Gibson     .is_default = 1,
96953018216SPaolo Bonzini     .init = ppc_spapr_init,
97053018216SPaolo Bonzini     .reset = ppc_spapr_reset,
97153018216SPaolo Bonzini     .block_default_type = IF_SCSI,
97253018216SPaolo Bonzini     .max_cpus = MAX_CPUS,
97353018216SPaolo Bonzini     .no_parallel = 1,
97453018216SPaolo Bonzini     .boot_order = NULL,
97553018216SPaolo Bonzini };
97653018216SPaolo Bonzini 
97753018216SPaolo Bonzini static void spapr_machine_init(void)
97853018216SPaolo Bonzini {
97953018216SPaolo Bonzini     qemu_register_machine(&spapr_machine);
98053018216SPaolo Bonzini }
98153018216SPaolo Bonzini 
98253018216SPaolo Bonzini machine_init(spapr_machine_init);
983