xref: /openbmc/qemu/net/tap.c (revision 301fbbaf03fb114a1e45833987ddfd7bbb403963)
1 /*
2  * QEMU System Emulator
3  *
4  * Copyright (c) 2003-2008 Fabrice Bellard
5  * Copyright (c) 2009 Red Hat, Inc.
6  *
7  * Permission is hereby granted, free of charge, to any person obtaining a copy
8  * of this software and associated documentation files (the "Software"), to deal
9  * in the Software without restriction, including without limitation the rights
10  * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
11  * copies of the Software, and to permit persons to whom the Software is
12  * furnished to do so, subject to the following conditions:
13  *
14  * The above copyright notice and this permission notice shall be included in
15  * all copies or substantial portions of the Software.
16  *
17  * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
18  * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
19  * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL
20  * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
21  * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
22  * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
23  * THE SOFTWARE.
24  */
25 
26 #include "qemu/osdep.h"
27 #include "tap_int.h"
28 
29 
30 #include <sys/ioctl.h>
31 #include <sys/wait.h>
32 #include <sys/socket.h>
33 #include <net/if.h>
34 
35 #include "net/eth.h"
36 #include "net/net.h"
37 #include "clients.h"
38 #include "monitor/monitor.h"
39 #include "system/system.h"
40 #include "qapi/error.h"
41 #include "qemu/cutils.h"
42 #include "qemu/error-report.h"
43 #include "qemu/main-loop.h"
44 #include "qemu/sockets.h"
45 #include "hw/virtio/vhost.h"
46 
47 #include "net/tap.h"
48 
49 #include "net/vhost_net.h"
50 
51 static const int kernel_feature_bits[] = {
52     VIRTIO_F_NOTIFY_ON_EMPTY,
53     VIRTIO_RING_F_INDIRECT_DESC,
54     VIRTIO_RING_F_EVENT_IDX,
55     VIRTIO_NET_F_MRG_RXBUF,
56     VIRTIO_F_VERSION_1,
57     VIRTIO_NET_F_MTU,
58     VIRTIO_F_IOMMU_PLATFORM,
59     VIRTIO_F_RING_PACKED,
60     VIRTIO_F_RING_RESET,
61     VIRTIO_F_IN_ORDER,
62     VIRTIO_F_NOTIFICATION_DATA,
63     VIRTIO_NET_F_RSC_EXT,
64     VIRTIO_NET_F_HASH_REPORT,
65     VHOST_INVALID_FEATURE_BIT
66 };
67 
68 typedef struct TAPState {
69     NetClientState nc;
70     int fd;
71     char down_script[1024];
72     char down_script_arg[128];
73     uint8_t buf[NET_BUFSIZE];
74     bool read_poll;
75     bool write_poll;
76     bool using_vnet_hdr;
77     bool has_ufo;
78     bool has_uso;
79     bool enabled;
80     VHostNetState *vhost_net;
81     unsigned host_vnet_hdr_len;
82     Notifier exit;
83 } TAPState;
84 
85 static void launch_script(const char *setup_script, const char *ifname,
86                           int fd, Error **errp);
87 
88 static void tap_send(void *opaque);
89 static void tap_writable(void *opaque);
90 
91 static void tap_update_fd_handler(TAPState *s)
92 {
93     qemu_set_fd_handler(s->fd,
94                         s->read_poll && s->enabled ? tap_send : NULL,
95                         s->write_poll && s->enabled ? tap_writable : NULL,
96                         s);
97 }
98 
99 static void tap_read_poll(TAPState *s, bool enable)
100 {
101     s->read_poll = enable;
102     tap_update_fd_handler(s);
103 }
104 
105 static void tap_write_poll(TAPState *s, bool enable)
106 {
107     s->write_poll = enable;
108     tap_update_fd_handler(s);
109 }
110 
111 static void tap_writable(void *opaque)
112 {
113     TAPState *s = opaque;
114 
115     tap_write_poll(s, false);
116 
117     qemu_flush_queued_packets(&s->nc);
118 }
119 
120 static ssize_t tap_write_packet(TAPState *s, const struct iovec *iov, int iovcnt)
121 {
122     ssize_t len;
123 
124     len = RETRY_ON_EINTR(writev(s->fd, iov, iovcnt));
125 
126     if (len == -1 && errno == EAGAIN) {
127         tap_write_poll(s, true);
128         return 0;
129     }
130 
131     return len;
132 }
133 
134 static ssize_t tap_receive_iov(NetClientState *nc, const struct iovec *iov,
135                                int iovcnt)
136 {
137     TAPState *s = DO_UPCAST(TAPState, nc, nc);
138     const struct iovec *iovp = iov;
139     g_autofree struct iovec *iov_copy = NULL;
140     struct virtio_net_hdr hdr = { };
141 
142     if (s->host_vnet_hdr_len && !s->using_vnet_hdr) {
143         iov_copy = g_new(struct iovec, iovcnt + 1);
144         iov_copy[0].iov_base = &hdr;
145         iov_copy[0].iov_len =  s->host_vnet_hdr_len;
146         memcpy(&iov_copy[1], iov, iovcnt * sizeof(*iov));
147         iovp = iov_copy;
148         iovcnt++;
149     }
150 
151     return tap_write_packet(s, iovp, iovcnt);
152 }
153 
154 static ssize_t tap_receive(NetClientState *nc, const uint8_t *buf, size_t size)
155 {
156     struct iovec iov = {
157         .iov_base = (void *)buf,
158         .iov_len = size
159     };
160 
161     return tap_receive_iov(nc, &iov, 1);
162 }
163 
164 #ifndef __sun__
165 ssize_t tap_read_packet(int tapfd, uint8_t *buf, int maxlen)
166 {
167     return read(tapfd, buf, maxlen);
168 }
169 #endif
170 
171 static void tap_send_completed(NetClientState *nc, ssize_t len)
172 {
173     TAPState *s = DO_UPCAST(TAPState, nc, nc);
174     tap_read_poll(s, true);
175 }
176 
177 static void tap_send(void *opaque)
178 {
179     TAPState *s = opaque;
180     int size;
181     int packets = 0;
182 
183     while (true) {
184         uint8_t *buf = s->buf;
185         uint8_t min_pkt[ETH_ZLEN];
186         size_t min_pktsz = sizeof(min_pkt);
187 
188         size = tap_read_packet(s->fd, s->buf, sizeof(s->buf));
189         if (size <= 0) {
190             break;
191         }
192 
193         if (s->host_vnet_hdr_len && !s->using_vnet_hdr) {
194             buf  += s->host_vnet_hdr_len;
195             size -= s->host_vnet_hdr_len;
196         }
197 
198         if (net_peer_needs_padding(&s->nc)) {
199             if (eth_pad_short_frame(min_pkt, &min_pktsz, buf, size)) {
200                 buf = min_pkt;
201                 size = min_pktsz;
202             }
203         }
204 
205         size = qemu_send_packet_async(&s->nc, buf, size, tap_send_completed);
206         if (size == 0) {
207             tap_read_poll(s, false);
208             break;
209         } else if (size < 0) {
210             break;
211         }
212 
213         /*
214          * When the host keeps receiving more packets while tap_send() is
215          * running we can hog the BQL.  Limit the number of
216          * packets that are processed per tap_send() callback to prevent
217          * stalling the guest.
218          */
219         packets++;
220         if (packets >= 50) {
221             break;
222         }
223     }
224 }
225 
226 static bool tap_has_ufo(NetClientState *nc)
227 {
228     TAPState *s = DO_UPCAST(TAPState, nc, nc);
229 
230     assert(nc->info->type == NET_CLIENT_DRIVER_TAP);
231 
232     return s->has_ufo;
233 }
234 
235 static bool tap_has_uso(NetClientState *nc)
236 {
237     TAPState *s = DO_UPCAST(TAPState, nc, nc);
238 
239     assert(nc->info->type == NET_CLIENT_DRIVER_TAP);
240 
241     return s->has_uso;
242 }
243 
244 static bool tap_has_vnet_hdr(NetClientState *nc)
245 {
246     TAPState *s = DO_UPCAST(TAPState, nc, nc);
247 
248     assert(nc->info->type == NET_CLIENT_DRIVER_TAP);
249 
250     return !!s->host_vnet_hdr_len;
251 }
252 
253 static bool tap_has_vnet_hdr_len(NetClientState *nc, int len)
254 {
255     return tap_has_vnet_hdr(nc);
256 }
257 
258 static void tap_set_vnet_hdr_len(NetClientState *nc, int len)
259 {
260     TAPState *s = DO_UPCAST(TAPState, nc, nc);
261 
262     assert(nc->info->type == NET_CLIENT_DRIVER_TAP);
263 
264     tap_fd_set_vnet_hdr_len(s->fd, len);
265     s->host_vnet_hdr_len = len;
266     s->using_vnet_hdr = true;
267 }
268 
269 static int tap_set_vnet_le(NetClientState *nc, bool is_le)
270 {
271     TAPState *s = DO_UPCAST(TAPState, nc, nc);
272 
273     return tap_fd_set_vnet_le(s->fd, is_le);
274 }
275 
276 static int tap_set_vnet_be(NetClientState *nc, bool is_be)
277 {
278     TAPState *s = DO_UPCAST(TAPState, nc, nc);
279 
280     return tap_fd_set_vnet_be(s->fd, is_be);
281 }
282 
283 static void tap_set_offload(NetClientState *nc, int csum, int tso4,
284                      int tso6, int ecn, int ufo, int uso4, int uso6)
285 {
286     TAPState *s = DO_UPCAST(TAPState, nc, nc);
287     if (s->fd < 0) {
288         return;
289     }
290 
291     tap_fd_set_offload(s->fd, csum, tso4, tso6, ecn, ufo, uso4, uso6);
292 }
293 
294 static void tap_exit_notify(Notifier *notifier, void *data)
295 {
296     TAPState *s = container_of(notifier, TAPState, exit);
297     Error *err = NULL;
298 
299     if (s->down_script[0]) {
300         launch_script(s->down_script, s->down_script_arg, s->fd, &err);
301         if (err) {
302             error_report_err(err);
303         }
304     }
305 }
306 
307 static void tap_cleanup(NetClientState *nc)
308 {
309     TAPState *s = DO_UPCAST(TAPState, nc, nc);
310 
311     if (s->vhost_net) {
312         vhost_net_cleanup(s->vhost_net);
313         g_free(s->vhost_net);
314         s->vhost_net = NULL;
315     }
316 
317     qemu_purge_queued_packets(nc);
318 
319     tap_exit_notify(&s->exit, NULL);
320     qemu_remove_exit_notifier(&s->exit);
321 
322     tap_read_poll(s, false);
323     tap_write_poll(s, false);
324     close(s->fd);
325     s->fd = -1;
326 }
327 
328 static void tap_poll(NetClientState *nc, bool enable)
329 {
330     TAPState *s = DO_UPCAST(TAPState, nc, nc);
331     tap_read_poll(s, enable);
332     tap_write_poll(s, enable);
333 }
334 
335 static bool tap_set_steering_ebpf(NetClientState *nc, int prog_fd)
336 {
337     TAPState *s = DO_UPCAST(TAPState, nc, nc);
338     assert(nc->info->type == NET_CLIENT_DRIVER_TAP);
339 
340     return tap_fd_set_steering_ebpf(s->fd, prog_fd) == 0;
341 }
342 
343 int tap_get_fd(NetClientState *nc)
344 {
345     TAPState *s = DO_UPCAST(TAPState, nc, nc);
346     assert(nc->info->type == NET_CLIENT_DRIVER_TAP);
347     return s->fd;
348 }
349 
350 /*
351  * tap_get_vhost_net() can return NULL if a tap net-device backend is
352  * created with 'vhost=off' option, 'vhostforce=off' or no vhost or
353  * vhostforce or vhostfd options at all. Please see net_init_tap_one().
354  */
355 static VHostNetState *tap_get_vhost_net(NetClientState *nc)
356 {
357     TAPState *s = DO_UPCAST(TAPState, nc, nc);
358     assert(nc->info->type == NET_CLIENT_DRIVER_TAP);
359     return s->vhost_net;
360 }
361 
362 /* fd support */
363 
364 static NetClientInfo net_tap_info = {
365     .type = NET_CLIENT_DRIVER_TAP,
366     .size = sizeof(TAPState),
367     .receive = tap_receive,
368     .receive_iov = tap_receive_iov,
369     .poll = tap_poll,
370     .cleanup = tap_cleanup,
371     .has_ufo = tap_has_ufo,
372     .has_uso = tap_has_uso,
373     .has_vnet_hdr = tap_has_vnet_hdr,
374     .has_vnet_hdr_len = tap_has_vnet_hdr_len,
375     .set_offload = tap_set_offload,
376     .set_vnet_hdr_len = tap_set_vnet_hdr_len,
377     .set_vnet_le = tap_set_vnet_le,
378     .set_vnet_be = tap_set_vnet_be,
379     .set_steering_ebpf = tap_set_steering_ebpf,
380     .get_vhost_net = tap_get_vhost_net,
381 };
382 
383 static TAPState *net_tap_fd_init(NetClientState *peer,
384                                  const char *model,
385                                  const char *name,
386                                  int fd,
387                                  int vnet_hdr)
388 {
389     NetClientState *nc;
390     TAPState *s;
391 
392     nc = qemu_new_net_client(&net_tap_info, peer, model, name);
393 
394     s = DO_UPCAST(TAPState, nc, nc);
395 
396     s->fd = fd;
397     s->host_vnet_hdr_len = vnet_hdr ? sizeof(struct virtio_net_hdr) : 0;
398     s->using_vnet_hdr = false;
399     s->has_ufo = tap_probe_has_ufo(s->fd);
400     s->has_uso = tap_probe_has_uso(s->fd);
401     s->enabled = true;
402     tap_set_offload(&s->nc, 0, 0, 0, 0, 0, 0, 0);
403     /*
404      * Make sure host header length is set correctly in tap:
405      * it might have been modified by another instance of qemu.
406      */
407     if (vnet_hdr) {
408         tap_fd_set_vnet_hdr_len(s->fd, s->host_vnet_hdr_len);
409     }
410     tap_read_poll(s, true);
411     s->vhost_net = NULL;
412 
413     s->exit.notify = tap_exit_notify;
414     qemu_add_exit_notifier(&s->exit);
415 
416     return s;
417 }
418 
419 static void close_all_fds_after_fork(int excluded_fd)
420 {
421     const int skip_fd[] = {STDIN_FILENO, STDOUT_FILENO, STDERR_FILENO,
422                            excluded_fd};
423     unsigned int nskip = ARRAY_SIZE(skip_fd);
424 
425     /*
426      * skip_fd must be an ordered array of distinct fds, exclude
427      * excluded_fd if already included in the [STDIN_FILENO - STDERR_FILENO]
428      * range
429      */
430     if (excluded_fd <= STDERR_FILENO) {
431         nskip--;
432     }
433 
434     qemu_close_all_open_fd(skip_fd, nskip);
435 }
436 
437 static void launch_script(const char *setup_script, const char *ifname,
438                           int fd, Error **errp)
439 {
440     int pid, status;
441     char *args[3];
442     char **parg;
443 
444     /* try to launch network script */
445     pid = fork();
446     if (pid < 0) {
447         error_setg_errno(errp, errno, "could not launch network script %s",
448                          setup_script);
449         return;
450     }
451     if (pid == 0) {
452         close_all_fds_after_fork(fd);
453         parg = args;
454         *parg++ = (char *)setup_script;
455         *parg++ = (char *)ifname;
456         *parg = NULL;
457         execv(setup_script, args);
458         _exit(1);
459     } else {
460         while (waitpid(pid, &status, 0) != pid) {
461             /* loop */
462         }
463 
464         if (WIFEXITED(status) && WEXITSTATUS(status) == 0) {
465             return;
466         }
467         error_setg(errp, "network script %s failed with status %d",
468                    setup_script, status);
469     }
470 }
471 
472 static int recv_fd(int c)
473 {
474     int fd;
475     uint8_t msgbuf[CMSG_SPACE(sizeof(fd))];
476     struct msghdr msg = {
477         .msg_control = msgbuf,
478         .msg_controllen = sizeof(msgbuf),
479     };
480     struct cmsghdr *cmsg;
481     struct iovec iov;
482     uint8_t req[1];
483     ssize_t len;
484 
485     cmsg = CMSG_FIRSTHDR(&msg);
486     cmsg->cmsg_level = SOL_SOCKET;
487     cmsg->cmsg_type = SCM_RIGHTS;
488     cmsg->cmsg_len = CMSG_LEN(sizeof(fd));
489     msg.msg_controllen = cmsg->cmsg_len;
490 
491     iov.iov_base = req;
492     iov.iov_len = sizeof(req);
493 
494     msg.msg_iov = &iov;
495     msg.msg_iovlen = 1;
496 
497     len = recvmsg(c, &msg, 0);
498     if (len > 0) {
499         memcpy(&fd, CMSG_DATA(cmsg), sizeof(fd));
500         return fd;
501     }
502 
503     return len;
504 }
505 
506 static int net_bridge_run_helper(const char *helper, const char *bridge,
507                                  Error **errp)
508 {
509     sigset_t oldmask, mask;
510     g_autofree char *default_helper = NULL;
511     int pid, status;
512     char *args[5];
513     char **parg;
514     int sv[2];
515 
516     sigemptyset(&mask);
517     sigaddset(&mask, SIGCHLD);
518     sigprocmask(SIG_BLOCK, &mask, &oldmask);
519 
520     if (!helper) {
521         helper = default_helper = get_relocated_path(DEFAULT_BRIDGE_HELPER);
522     }
523 
524     if (socketpair(PF_UNIX, SOCK_STREAM, 0, sv) == -1) {
525         error_setg_errno(errp, errno, "socketpair() failed");
526         return -1;
527     }
528 
529     /* try to launch bridge helper */
530     pid = fork();
531     if (pid < 0) {
532         error_setg_errno(errp, errno, "Can't fork bridge helper");
533         return -1;
534     }
535     if (pid == 0) {
536         char *fd_buf = NULL;
537         char *br_buf = NULL;
538         char *helper_cmd = NULL;
539 
540         close_all_fds_after_fork(sv[1]);
541         fd_buf = g_strdup_printf("%s%d", "--fd=", sv[1]);
542 
543         if (strrchr(helper, ' ') || strrchr(helper, '\t')) {
544             /* assume helper is a command */
545 
546             if (strstr(helper, "--br=") == NULL) {
547                 br_buf = g_strdup_printf("%s%s", "--br=", bridge);
548             }
549 
550             helper_cmd = g_strdup_printf("%s %s %s %s", helper,
551                             "--use-vnet", fd_buf, br_buf ? br_buf : "");
552 
553             parg = args;
554             *parg++ = (char *)"sh";
555             *parg++ = (char *)"-c";
556             *parg++ = helper_cmd;
557             *parg++ = NULL;
558 
559             execv("/bin/sh", args);
560             g_free(helper_cmd);
561         } else {
562             /* assume helper is just the executable path name */
563 
564             br_buf = g_strdup_printf("%s%s", "--br=", bridge);
565 
566             parg = args;
567             *parg++ = (char *)helper;
568             *parg++ = (char *)"--use-vnet";
569             *parg++ = fd_buf;
570             *parg++ = br_buf;
571             *parg++ = NULL;
572 
573             execv(helper, args);
574         }
575         g_free(fd_buf);
576         g_free(br_buf);
577         _exit(1);
578 
579     } else {
580         int fd;
581         int saved_errno;
582 
583         close(sv[1]);
584 
585         fd = RETRY_ON_EINTR(recv_fd(sv[0]));
586         saved_errno = errno;
587 
588         close(sv[0]);
589 
590         while (waitpid(pid, &status, 0) != pid) {
591             /* loop */
592         }
593         sigprocmask(SIG_SETMASK, &oldmask, NULL);
594         if (fd < 0) {
595             error_setg_errno(errp, saved_errno,
596                              "failed to recv file descriptor");
597             return -1;
598         }
599         if (!WIFEXITED(status) || WEXITSTATUS(status) != 0) {
600             error_setg(errp, "bridge helper failed");
601             return -1;
602         }
603         return fd;
604     }
605 }
606 
607 int net_init_bridge(const Netdev *netdev, const char *name,
608                     NetClientState *peer, Error **errp)
609 {
610     const NetdevBridgeOptions *bridge;
611     const char *helper, *br;
612     TAPState *s;
613     int fd, vnet_hdr;
614 
615     assert(netdev->type == NET_CLIENT_DRIVER_BRIDGE);
616     bridge = &netdev->u.bridge;
617     helper = bridge->helper;
618     br     = bridge->br ?: DEFAULT_BRIDGE_INTERFACE;
619 
620     fd = net_bridge_run_helper(helper, br, errp);
621     if (fd == -1) {
622         return -1;
623     }
624 
625     if (!g_unix_set_fd_nonblocking(fd, true, NULL)) {
626         error_setg_errno(errp, errno, "Failed to set FD nonblocking");
627         return -1;
628     }
629     vnet_hdr = tap_probe_vnet_hdr(fd, errp);
630     if (vnet_hdr < 0) {
631         close(fd);
632         return -1;
633     }
634     s = net_tap_fd_init(peer, "bridge", name, fd, vnet_hdr);
635 
636     qemu_set_info_str(&s->nc, "helper=%s,br=%s", helper, br);
637 
638     return 0;
639 }
640 
641 static int net_tap_init(const NetdevTapOptions *tap, int *vnet_hdr,
642                         const char *setup_script, char *ifname,
643                         size_t ifname_sz, int mq_required, Error **errp)
644 {
645     Error *err = NULL;
646     int fd, vnet_hdr_required;
647 
648     if (tap->has_vnet_hdr) {
649         *vnet_hdr = tap->vnet_hdr;
650         vnet_hdr_required = *vnet_hdr;
651     } else {
652         *vnet_hdr = 1;
653         vnet_hdr_required = 0;
654     }
655 
656     fd = RETRY_ON_EINTR(tap_open(ifname, ifname_sz, vnet_hdr, vnet_hdr_required,
657                       mq_required, errp));
658     if (fd < 0) {
659         return -1;
660     }
661 
662     if (setup_script &&
663         setup_script[0] != '\0' &&
664         strcmp(setup_script, "no") != 0) {
665         launch_script(setup_script, ifname, fd, &err);
666         if (err) {
667             error_propagate(errp, err);
668             close(fd);
669             return -1;
670         }
671     }
672 
673     return fd;
674 }
675 
676 #define MAX_TAP_QUEUES 1024
677 
678 static void net_init_tap_one(const NetdevTapOptions *tap, NetClientState *peer,
679                              const char *model, const char *name,
680                              const char *ifname, const char *script,
681                              const char *downscript, const char *vhostfdname,
682                              int vnet_hdr, int fd, Error **errp)
683 {
684     Error *err = NULL;
685     TAPState *s = net_tap_fd_init(peer, model, name, fd, vnet_hdr);
686     int vhostfd;
687 
688     tap_set_sndbuf(s->fd, tap, &err);
689     if (err) {
690         error_propagate(errp, err);
691         goto failed;
692     }
693 
694     if (tap->fd || tap->fds) {
695         qemu_set_info_str(&s->nc, "fd=%d", fd);
696     } else if (tap->helper) {
697         qemu_set_info_str(&s->nc, "helper=%s", tap->helper);
698     } else {
699         qemu_set_info_str(&s->nc, "ifname=%s,script=%s,downscript=%s", ifname,
700                           script, downscript);
701 
702         if (strcmp(downscript, "no") != 0) {
703             snprintf(s->down_script, sizeof(s->down_script), "%s", downscript);
704             snprintf(s->down_script_arg, sizeof(s->down_script_arg),
705                      "%s", ifname);
706         }
707     }
708 
709     if (tap->has_vhost ? tap->vhost :
710         vhostfdname || (tap->has_vhostforce && tap->vhostforce)) {
711         VhostNetOptions options;
712 
713         options.backend_type = VHOST_BACKEND_TYPE_KERNEL;
714         options.net_backend = &s->nc;
715         if (tap->has_poll_us) {
716             options.busyloop_timeout = tap->poll_us;
717         } else {
718             options.busyloop_timeout = 0;
719         }
720 
721         if (vhostfdname) {
722             vhostfd = monitor_fd_param(monitor_cur(), vhostfdname, &err);
723             if (vhostfd == -1) {
724                 error_propagate(errp, err);
725                 goto failed;
726             }
727             if (!g_unix_set_fd_nonblocking(vhostfd, true, NULL)) {
728                 error_setg_errno(errp, errno, "%s: Can't use file descriptor %d",
729                                  name, fd);
730                 goto failed;
731             }
732         } else {
733             vhostfd = open("/dev/vhost-net", O_RDWR);
734             if (vhostfd < 0) {
735                 error_setg_errno(errp, errno,
736                                  "tap: open vhost char device failed");
737                 goto failed;
738             }
739             if (!g_unix_set_fd_nonblocking(vhostfd, true, NULL)) {
740                 error_setg_errno(errp, errno, "Failed to set FD nonblocking");
741                 goto failed;
742             }
743         }
744         options.opaque = (void *)(uintptr_t)vhostfd;
745         options.nvqs = 2;
746         options.feature_bits = kernel_feature_bits;
747         options.get_acked_features = NULL;
748         options.save_acked_features = NULL;
749         options.max_tx_queue_size = 0;
750         options.is_vhost_user = false;
751 
752         s->vhost_net = vhost_net_init(&options);
753         if (!s->vhost_net) {
754             error_setg(errp,
755                        "vhost-net requested but could not be initialized");
756             goto failed;
757         }
758     } else if (vhostfdname) {
759         error_setg(errp, "vhostfd(s)= is not valid without vhost");
760         goto failed;
761     }
762 
763     return;
764 
765 failed:
766     qemu_del_net_client(&s->nc);
767 }
768 
769 static int get_fds(char *str, char *fds[], int max)
770 {
771     char *ptr = str, *this;
772     size_t len = strlen(str);
773     int i = 0;
774 
775     while (i < max && ptr < str + len) {
776         this = strchr(ptr, ':');
777 
778         if (this == NULL) {
779             fds[i] = g_strdup(ptr);
780         } else {
781             fds[i] = g_strndup(ptr, this - ptr);
782         }
783 
784         i++;
785         if (this == NULL) {
786             break;
787         } else {
788             ptr = this + 1;
789         }
790     }
791 
792     return i;
793 }
794 
795 int net_init_tap(const Netdev *netdev, const char *name,
796                  NetClientState *peer, Error **errp)
797 {
798     const NetdevTapOptions *tap;
799     int fd, vnet_hdr = 0, i = 0, queues;
800     /* for the no-fd, no-helper case */
801     const char *script;
802     const char *downscript;
803     Error *err = NULL;
804     const char *vhostfdname;
805     char ifname[128];
806     int ret = 0;
807 
808     assert(netdev->type == NET_CLIENT_DRIVER_TAP);
809     tap = &netdev->u.tap;
810     queues = tap->has_queues ? tap->queues : 1;
811     vhostfdname = tap->vhostfd;
812     script = tap->script;
813     downscript = tap->downscript;
814 
815     /* QEMU hubs do not support multiqueue tap, in this case peer is set.
816      * For -netdev, peer is always NULL. */
817     if (peer && (tap->has_queues || tap->fds || tap->vhostfds)) {
818         error_setg(errp, "Multiqueue tap cannot be used with hubs");
819         return -1;
820     }
821 
822     if (tap->fd) {
823         if (tap->ifname || tap->script || tap->downscript ||
824             tap->has_vnet_hdr || tap->helper || tap->has_queues ||
825             tap->fds || tap->vhostfds) {
826             error_setg(errp, "ifname=, script=, downscript=, vnet_hdr=, "
827                        "helper=, queues=, fds=, and vhostfds= "
828                        "are invalid with fd=");
829             return -1;
830         }
831 
832         fd = monitor_fd_param(monitor_cur(), tap->fd, errp);
833         if (fd == -1) {
834             return -1;
835         }
836 
837         if (!g_unix_set_fd_nonblocking(fd, true, NULL)) {
838             error_setg_errno(errp, errno, "%s: Can't use file descriptor %d",
839                              name, fd);
840             close(fd);
841             return -1;
842         }
843 
844         vnet_hdr = tap_probe_vnet_hdr(fd, errp);
845         if (vnet_hdr < 0) {
846             close(fd);
847             return -1;
848         }
849 
850         net_init_tap_one(tap, peer, "tap", name, NULL,
851                          script, downscript,
852                          vhostfdname, vnet_hdr, fd, &err);
853         if (err) {
854             error_propagate(errp, err);
855             close(fd);
856             return -1;
857         }
858     } else if (tap->fds) {
859         char **fds;
860         char **vhost_fds;
861         int nfds = 0, nvhosts = 0;
862 
863         if (tap->ifname || tap->script || tap->downscript ||
864             tap->has_vnet_hdr || tap->helper || tap->has_queues ||
865             tap->vhostfd) {
866             error_setg(errp, "ifname=, script=, downscript=, vnet_hdr=, "
867                        "helper=, queues=, and vhostfd= "
868                        "are invalid with fds=");
869             return -1;
870         }
871 
872         fds = g_new0(char *, MAX_TAP_QUEUES);
873         vhost_fds = g_new0(char *, MAX_TAP_QUEUES);
874 
875         nfds = get_fds(tap->fds, fds, MAX_TAP_QUEUES);
876         if (tap->vhostfds) {
877             nvhosts = get_fds(tap->vhostfds, vhost_fds, MAX_TAP_QUEUES);
878             if (nfds != nvhosts) {
879                 error_setg(errp, "The number of fds passed does not match "
880                            "the number of vhostfds passed");
881                 ret = -1;
882                 goto free_fail;
883             }
884         }
885 
886         for (i = 0; i < nfds; i++) {
887             fd = monitor_fd_param(monitor_cur(), fds[i], errp);
888             if (fd == -1) {
889                 ret = -1;
890                 goto free_fail;
891             }
892 
893             ret = g_unix_set_fd_nonblocking(fd, true, NULL);
894             if (!ret) {
895                 error_setg_errno(errp, errno, "%s: Can't use file descriptor %d",
896                                  name, fd);
897                 goto free_fail;
898             }
899 
900             if (i == 0) {
901                 vnet_hdr = tap_probe_vnet_hdr(fd, errp);
902                 if (vnet_hdr < 0) {
903                     ret = -1;
904                     goto free_fail;
905                 }
906             } else if (vnet_hdr != tap_probe_vnet_hdr(fd, NULL)) {
907                 error_setg(errp,
908                            "vnet_hdr not consistent across given tap fds");
909                 ret = -1;
910                 goto free_fail;
911             }
912 
913             net_init_tap_one(tap, peer, "tap", name, ifname,
914                              script, downscript,
915                              tap->vhostfds ? vhost_fds[i] : NULL,
916                              vnet_hdr, fd, &err);
917             if (err) {
918                 error_propagate(errp, err);
919                 ret = -1;
920                 goto free_fail;
921             }
922         }
923 
924 free_fail:
925         for (i = 0; i < nvhosts; i++) {
926             g_free(vhost_fds[i]);
927         }
928         for (i = 0; i < nfds; i++) {
929             g_free(fds[i]);
930         }
931         g_free(fds);
932         g_free(vhost_fds);
933         return ret;
934     } else if (tap->helper) {
935         if (tap->ifname || tap->script || tap->downscript ||
936             tap->has_vnet_hdr || tap->has_queues || tap->vhostfds) {
937             error_setg(errp, "ifname=, script=, downscript=, vnet_hdr=, "
938                        "queues=, and vhostfds= are invalid with helper=");
939             return -1;
940         }
941 
942         fd = net_bridge_run_helper(tap->helper,
943                                    tap->br ?: DEFAULT_BRIDGE_INTERFACE,
944                                    errp);
945         if (fd == -1) {
946             return -1;
947         }
948 
949         if (!g_unix_set_fd_nonblocking(fd, true, NULL)) {
950             error_setg_errno(errp, errno, "Failed to set FD nonblocking");
951             return -1;
952         }
953         vnet_hdr = tap_probe_vnet_hdr(fd, errp);
954         if (vnet_hdr < 0) {
955             close(fd);
956             return -1;
957         }
958 
959         net_init_tap_one(tap, peer, "bridge", name, ifname,
960                          script, downscript, vhostfdname,
961                          vnet_hdr, fd, &err);
962         if (err) {
963             error_propagate(errp, err);
964             close(fd);
965             return -1;
966         }
967     } else {
968         g_autofree char *default_script = NULL;
969         g_autofree char *default_downscript = NULL;
970         if (tap->vhostfds) {
971             error_setg(errp, "vhostfds= is invalid if fds= wasn't specified");
972             return -1;
973         }
974 
975         if (!script) {
976             script = default_script = get_relocated_path(DEFAULT_NETWORK_SCRIPT);
977         }
978         if (!downscript) {
979             downscript = default_downscript =
980                                  get_relocated_path(DEFAULT_NETWORK_DOWN_SCRIPT);
981         }
982 
983         if (tap->ifname) {
984             pstrcpy(ifname, sizeof ifname, tap->ifname);
985         } else {
986             ifname[0] = '\0';
987         }
988 
989         for (i = 0; i < queues; i++) {
990             fd = net_tap_init(tap, &vnet_hdr, i >= 1 ? "no" : script,
991                               ifname, sizeof ifname, queues > 1, errp);
992             if (fd == -1) {
993                 return -1;
994             }
995 
996             if (queues > 1 && i == 0 && !tap->ifname) {
997                 if (tap_fd_get_ifname(fd, ifname)) {
998                     error_setg(errp, "Fail to get ifname");
999                     close(fd);
1000                     return -1;
1001                 }
1002             }
1003 
1004             net_init_tap_one(tap, peer, "tap", name, ifname,
1005                              i >= 1 ? "no" : script,
1006                              i >= 1 ? "no" : downscript,
1007                              vhostfdname, vnet_hdr, fd, &err);
1008             if (err) {
1009                 error_propagate(errp, err);
1010                 close(fd);
1011                 return -1;
1012             }
1013         }
1014     }
1015 
1016     return 0;
1017 }
1018 
1019 int tap_enable(NetClientState *nc)
1020 {
1021     TAPState *s = DO_UPCAST(TAPState, nc, nc);
1022     int ret;
1023 
1024     if (s->enabled) {
1025         return 0;
1026     } else {
1027         ret = tap_fd_enable(s->fd);
1028         if (ret == 0) {
1029             s->enabled = true;
1030             tap_update_fd_handler(s);
1031         }
1032         return ret;
1033     }
1034 }
1035 
1036 int tap_disable(NetClientState *nc)
1037 {
1038     TAPState *s = DO_UPCAST(TAPState, nc, nc);
1039     int ret;
1040 
1041     if (s->enabled == 0) {
1042         return 0;
1043     } else {
1044         ret = tap_fd_disable(s->fd);
1045         if (ret == 0) {
1046             qemu_purge_queued_packets(nc);
1047             s->enabled = false;
1048             tap_update_fd_handler(s);
1049         }
1050         return ret;
1051     }
1052 }
1053