xref: /openbmc/qemu/net/vhost-vdpa.c (revision a864a321)
11e0a84eaSCindy Lu /*
21e0a84eaSCindy Lu  * vhost-vdpa.c
31e0a84eaSCindy Lu  *
41e0a84eaSCindy Lu  * Copyright(c) 2017-2018 Intel Corporation.
51e0a84eaSCindy Lu  * Copyright(c) 2020 Red Hat, Inc.
61e0a84eaSCindy Lu  *
71e0a84eaSCindy Lu  * This work is licensed under the terms of the GNU GPL, version 2 or later.
81e0a84eaSCindy Lu  * See the COPYING file in the top-level directory.
91e0a84eaSCindy Lu  *
101e0a84eaSCindy Lu  */
111e0a84eaSCindy Lu 
121e0a84eaSCindy Lu #include "qemu/osdep.h"
131e0a84eaSCindy Lu #include "clients.h"
14bd907ae4SEugenio Pérez #include "hw/virtio/virtio-net.h"
151e0a84eaSCindy Lu #include "net/vhost_net.h"
161e0a84eaSCindy Lu #include "net/vhost-vdpa.h"
171e0a84eaSCindy Lu #include "hw/virtio/vhost-vdpa.h"
181e0a84eaSCindy Lu #include "qemu/config-file.h"
191e0a84eaSCindy Lu #include "qemu/error-report.h"
20bd907ae4SEugenio Pérez #include "qemu/log.h"
21bd907ae4SEugenio Pérez #include "qemu/memalign.h"
221e0a84eaSCindy Lu #include "qemu/option.h"
231e0a84eaSCindy Lu #include "qapi/error.h"
2440237840SJason Wang #include <linux/vhost.h>
251e0a84eaSCindy Lu #include <sys/ioctl.h>
261e0a84eaSCindy Lu #include <err.h>
271e0a84eaSCindy Lu #include "standard-headers/linux/virtio_net.h"
281e0a84eaSCindy Lu #include "monitor/monitor.h"
2969498430SEugenio Pérez #include "migration/migration.h"
3069498430SEugenio Pérez #include "migration/misc.h"
311e0a84eaSCindy Lu #include "hw/virtio/vhost.h"
321e0a84eaSCindy Lu 
331e0a84eaSCindy Lu /* Todo:need to add the multiqueue support here */
341e0a84eaSCindy Lu typedef struct VhostVDPAState {
351e0a84eaSCindy Lu     NetClientState nc;
361e0a84eaSCindy Lu     struct vhost_vdpa vhost_vdpa;
3769498430SEugenio Pérez     Notifier migration_state;
381e0a84eaSCindy Lu     VHostNetState *vhost_net;
392df4dd31SEugenio Pérez 
402df4dd31SEugenio Pérez     /* Control commands shadow buffers */
4117fb889fSEugenio Pérez     void *cvq_cmd_out_buffer;
4217fb889fSEugenio Pérez     virtio_net_ctrl_ack *status;
4317fb889fSEugenio Pérez 
447f211a28SEugenio Pérez     /* The device always have SVQ enabled */
457f211a28SEugenio Pérez     bool always_svq;
46152128d6SEugenio Pérez 
47152128d6SEugenio Pérez     /* The device can isolate CVQ in its own ASID */
48152128d6SEugenio Pérez     bool cvq_isolated;
49152128d6SEugenio Pérez 
501e0a84eaSCindy Lu     bool started;
511e0a84eaSCindy Lu } VhostVDPAState;
521e0a84eaSCindy Lu 
532875a0caSHawkins Jiawei /*
542875a0caSHawkins Jiawei  * The array is sorted alphabetically in ascending order,
552875a0caSHawkins Jiawei  * with the exception of VHOST_INVALID_FEATURE_BIT,
562875a0caSHawkins Jiawei  * which should always be the last entry.
572875a0caSHawkins Jiawei  */
581e0a84eaSCindy Lu const int vdpa_feature_bits[] = {
591e0a84eaSCindy Lu     VIRTIO_F_ANY_LAYOUT,
602875a0caSHawkins Jiawei     VIRTIO_F_IOMMU_PLATFORM,
612875a0caSHawkins Jiawei     VIRTIO_F_NOTIFY_ON_EMPTY,
622875a0caSHawkins Jiawei     VIRTIO_F_RING_PACKED,
632875a0caSHawkins Jiawei     VIRTIO_F_RING_RESET,
641e0a84eaSCindy Lu     VIRTIO_F_VERSION_1,
651e0a84eaSCindy Lu     VIRTIO_NET_F_CSUM,
6651e84244SEugenio Pérez     VIRTIO_NET_F_CTRL_GUEST_OFFLOADS,
672875a0caSHawkins Jiawei     VIRTIO_NET_F_CTRL_MAC_ADDR,
6840237840SJason Wang     VIRTIO_NET_F_CTRL_RX,
6940237840SJason Wang     VIRTIO_NET_F_CTRL_RX_EXTRA,
7040237840SJason Wang     VIRTIO_NET_F_CTRL_VLAN,
7140237840SJason Wang     VIRTIO_NET_F_CTRL_VQ,
722875a0caSHawkins Jiawei     VIRTIO_NET_F_GSO,
732875a0caSHawkins Jiawei     VIRTIO_NET_F_GUEST_CSUM,
742875a0caSHawkins Jiawei     VIRTIO_NET_F_GUEST_ECN,
752875a0caSHawkins Jiawei     VIRTIO_NET_F_GUEST_TSO4,
762875a0caSHawkins Jiawei     VIRTIO_NET_F_GUEST_TSO6,
772875a0caSHawkins Jiawei     VIRTIO_NET_F_GUEST_UFO,
789da16849SAndrew Melnychenko     VIRTIO_NET_F_GUEST_USO4,
799da16849SAndrew Melnychenko     VIRTIO_NET_F_GUEST_USO6,
800145c393SAndrew Melnychenko     VIRTIO_NET_F_HASH_REPORT,
812875a0caSHawkins Jiawei     VIRTIO_NET_F_HOST_ECN,
822875a0caSHawkins Jiawei     VIRTIO_NET_F_HOST_TSO4,
832875a0caSHawkins Jiawei     VIRTIO_NET_F_HOST_TSO6,
842875a0caSHawkins Jiawei     VIRTIO_NET_F_HOST_UFO,
859da16849SAndrew Melnychenko     VIRTIO_NET_F_HOST_USO,
862875a0caSHawkins Jiawei     VIRTIO_NET_F_MQ,
872875a0caSHawkins Jiawei     VIRTIO_NET_F_MRG_RXBUF,
882875a0caSHawkins Jiawei     VIRTIO_NET_F_MTU,
892875a0caSHawkins Jiawei     VIRTIO_NET_F_RSS,
909aa47eddSSi-Wei Liu     VIRTIO_NET_F_STATUS,
912875a0caSHawkins Jiawei     VIRTIO_RING_F_EVENT_IDX,
922875a0caSHawkins Jiawei     VIRTIO_RING_F_INDIRECT_DESC,
932875a0caSHawkins Jiawei 
942875a0caSHawkins Jiawei     /* VHOST_INVALID_FEATURE_BIT should always be the last entry */
951e0a84eaSCindy Lu     VHOST_INVALID_FEATURE_BIT
961e0a84eaSCindy Lu };
971e0a84eaSCindy Lu 
981576dbb5SEugenio Pérez /** Supported device specific feature bits with SVQ */
991576dbb5SEugenio Pérez static const uint64_t vdpa_svq_device_features =
1001576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_CSUM) |
1011576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_GUEST_CSUM) |
1024b4a1378SHawkins Jiawei     BIT_ULL(VIRTIO_NET_F_CTRL_GUEST_OFFLOADS) |
1031576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_MTU) |
1041576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_MAC) |
1051576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_GUEST_TSO4) |
1061576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_GUEST_TSO6) |
1071576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_GUEST_ECN) |
1081576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_GUEST_UFO) |
1091576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_HOST_TSO4) |
1101576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_HOST_TSO6) |
1111576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_HOST_ECN) |
1121576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_HOST_UFO) |
1131576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_MRG_RXBUF) |
1141576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_STATUS) |
1151576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_CTRL_VQ) |
116ea6eec49SHawkins Jiawei     BIT_ULL(VIRTIO_NET_F_CTRL_RX) |
117e213c45aSHawkins Jiawei     BIT_ULL(VIRTIO_NET_F_CTRL_VLAN) |
118d669b7bbSHawkins Jiawei     BIT_ULL(VIRTIO_NET_F_CTRL_RX_EXTRA) |
11972b99a87SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_MQ) |
1201576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_F_ANY_LAYOUT) |
1211576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_CTRL_MAC_ADDR) |
122609ab4c3SEugenio Pérez     /* VHOST_F_LOG_ALL is exposed by SVQ */
123609ab4c3SEugenio Pérez     BIT_ULL(VHOST_F_LOG_ALL) |
1241576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_RSC_EXT) |
1250d74e2b7SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_STANDBY) |
1260d74e2b7SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_SPEED_DUPLEX);
1271576dbb5SEugenio Pérez 
128c1a10086SEugenio Pérez #define VHOST_VDPA_NET_CVQ_ASID 1
129c1a10086SEugenio Pérez 
1301e0a84eaSCindy Lu VHostNetState *vhost_vdpa_get_vhost_net(NetClientState *nc)
1311e0a84eaSCindy Lu {
1321e0a84eaSCindy Lu     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
1331e0a84eaSCindy Lu     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
1341e0a84eaSCindy Lu     return s->vhost_net;
1351e0a84eaSCindy Lu }
1361e0a84eaSCindy Lu 
137915bf6ccSEugenio Pérez static size_t vhost_vdpa_net_cvq_cmd_len(void)
138915bf6ccSEugenio Pérez {
139915bf6ccSEugenio Pérez     /*
140915bf6ccSEugenio Pérez      * MAC_TABLE_SET is the ctrl command that produces the longer out buffer.
141915bf6ccSEugenio Pérez      * In buffer is always 1 byte, so it should fit here
142915bf6ccSEugenio Pérez      */
143915bf6ccSEugenio Pérez     return sizeof(struct virtio_net_ctrl_hdr) +
144915bf6ccSEugenio Pérez            2 * sizeof(struct virtio_net_ctrl_mac) +
145915bf6ccSEugenio Pérez            MAC_TABLE_ENTRIES * ETH_ALEN;
146915bf6ccSEugenio Pérez }
147915bf6ccSEugenio Pérez 
148915bf6ccSEugenio Pérez static size_t vhost_vdpa_net_cvq_cmd_page_len(void)
149915bf6ccSEugenio Pérez {
150915bf6ccSEugenio Pérez     return ROUND_UP(vhost_vdpa_net_cvq_cmd_len(), qemu_real_host_page_size());
151915bf6ccSEugenio Pérez }
152915bf6ccSEugenio Pérez 
15336e46472SEugenio Pérez static bool vhost_vdpa_net_valid_svq_features(uint64_t features, Error **errp)
15436e46472SEugenio Pérez {
15536e46472SEugenio Pérez     uint64_t invalid_dev_features =
15636e46472SEugenio Pérez         features & ~vdpa_svq_device_features &
15736e46472SEugenio Pérez         /* Transport are all accepted at this point */
15836e46472SEugenio Pérez         ~MAKE_64BIT_MASK(VIRTIO_TRANSPORT_F_START,
15936e46472SEugenio Pérez                          VIRTIO_TRANSPORT_F_END - VIRTIO_TRANSPORT_F_START);
16036e46472SEugenio Pérez 
16136e46472SEugenio Pérez     if (invalid_dev_features) {
16236e46472SEugenio Pérez         error_setg(errp, "vdpa svq does not work with features 0x%" PRIx64,
16336e46472SEugenio Pérez                    invalid_dev_features);
164258a0394SEugenio Pérez         return false;
16536e46472SEugenio Pérez     }
16636e46472SEugenio Pérez 
167258a0394SEugenio Pérez     return vhost_svq_valid_features(features, errp);
16836e46472SEugenio Pérez }
16936e46472SEugenio Pérez 
1701e0a84eaSCindy Lu static int vhost_vdpa_net_check_device_id(struct vhost_net *net)
1711e0a84eaSCindy Lu {
1721e0a84eaSCindy Lu     uint32_t device_id;
1731e0a84eaSCindy Lu     int ret;
1741e0a84eaSCindy Lu     struct vhost_dev *hdev;
1751e0a84eaSCindy Lu 
1761e0a84eaSCindy Lu     hdev = (struct vhost_dev *)&net->dev;
1771e0a84eaSCindy Lu     ret = hdev->vhost_ops->vhost_get_device_id(hdev, &device_id);
1781e0a84eaSCindy Lu     if (device_id != VIRTIO_ID_NET) {
1791e0a84eaSCindy Lu         return -ENOTSUP;
1801e0a84eaSCindy Lu     }
1811e0a84eaSCindy Lu     return ret;
1821e0a84eaSCindy Lu }
1831e0a84eaSCindy Lu 
18440237840SJason Wang static int vhost_vdpa_add(NetClientState *ncs, void *be,
18540237840SJason Wang                           int queue_pair_index, int nvqs)
1861e0a84eaSCindy Lu {
1871e0a84eaSCindy Lu     VhostNetOptions options;
1881e0a84eaSCindy Lu     struct vhost_net *net = NULL;
1891e0a84eaSCindy Lu     VhostVDPAState *s;
1901e0a84eaSCindy Lu     int ret;
1911e0a84eaSCindy Lu 
1921e0a84eaSCindy Lu     options.backend_type = VHOST_BACKEND_TYPE_VDPA;
1931e0a84eaSCindy Lu     assert(ncs->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
1941e0a84eaSCindy Lu     s = DO_UPCAST(VhostVDPAState, nc, ncs);
1951e0a84eaSCindy Lu     options.net_backend = ncs;
1961e0a84eaSCindy Lu     options.opaque      = be;
1971e0a84eaSCindy Lu     options.busyloop_timeout = 0;
19840237840SJason Wang     options.nvqs = nvqs;
1991e0a84eaSCindy Lu 
2001e0a84eaSCindy Lu     net = vhost_net_init(&options);
2011e0a84eaSCindy Lu     if (!net) {
2021e0a84eaSCindy Lu         error_report("failed to init vhost_net for queue");
203a97ef87aSJason Wang         goto err_init;
2041e0a84eaSCindy Lu     }
2051e0a84eaSCindy Lu     s->vhost_net = net;
2061e0a84eaSCindy Lu     ret = vhost_vdpa_net_check_device_id(net);
2071e0a84eaSCindy Lu     if (ret) {
208a97ef87aSJason Wang         goto err_check;
2091e0a84eaSCindy Lu     }
2101e0a84eaSCindy Lu     return 0;
211a97ef87aSJason Wang err_check:
2121e0a84eaSCindy Lu     vhost_net_cleanup(net);
213ab36edcfSJason Wang     g_free(net);
214a97ef87aSJason Wang err_init:
2151e0a84eaSCindy Lu     return -1;
2161e0a84eaSCindy Lu }
2171e0a84eaSCindy Lu 
2181e0a84eaSCindy Lu static void vhost_vdpa_cleanup(NetClientState *nc)
2191e0a84eaSCindy Lu {
2201e0a84eaSCindy Lu     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
2211e0a84eaSCindy Lu 
222a0d7215eSAni Sinha     /*
223a0d7215eSAni Sinha      * If a peer NIC is attached, do not cleanup anything.
224a0d7215eSAni Sinha      * Cleanup will happen as a part of qemu_cleanup() -> net_cleanup()
225a0d7215eSAni Sinha      * when the guest is shutting down.
226a0d7215eSAni Sinha      */
227a0d7215eSAni Sinha     if (nc->peer && nc->peer->info->type == NET_CLIENT_DRIVER_NIC) {
228a0d7215eSAni Sinha         return;
229a0d7215eSAni Sinha     }
230babf8b87SEugenio Pérez     munmap(s->cvq_cmd_out_buffer, vhost_vdpa_net_cvq_cmd_page_len());
231babf8b87SEugenio Pérez     munmap(s->status, vhost_vdpa_net_cvq_cmd_page_len());
2321e0a84eaSCindy Lu     if (s->vhost_net) {
2331e0a84eaSCindy Lu         vhost_net_cleanup(s->vhost_net);
2341e0a84eaSCindy Lu         g_free(s->vhost_net);
2351e0a84eaSCindy Lu         s->vhost_net = NULL;
2361e0a84eaSCindy Lu     }
23757b3a7d8SCindy Lu      if (s->vhost_vdpa.device_fd >= 0) {
23857b3a7d8SCindy Lu         qemu_close(s->vhost_vdpa.device_fd);
23957b3a7d8SCindy Lu         s->vhost_vdpa.device_fd = -1;
24057b3a7d8SCindy Lu     }
2411e0a84eaSCindy Lu }
2421e0a84eaSCindy Lu 
2431e0a84eaSCindy Lu static bool vhost_vdpa_has_vnet_hdr(NetClientState *nc)
2441e0a84eaSCindy Lu {
2451e0a84eaSCindy Lu     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
2461e0a84eaSCindy Lu 
2471e0a84eaSCindy Lu     return true;
2481e0a84eaSCindy Lu }
2491e0a84eaSCindy Lu 
2501e0a84eaSCindy Lu static bool vhost_vdpa_has_ufo(NetClientState *nc)
2511e0a84eaSCindy Lu {
2521e0a84eaSCindy Lu     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
2531e0a84eaSCindy Lu     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
2541e0a84eaSCindy Lu     uint64_t features = 0;
2551e0a84eaSCindy Lu     features |= (1ULL << VIRTIO_NET_F_HOST_UFO);
2561e0a84eaSCindy Lu     features = vhost_net_get_features(s->vhost_net, features);
2571e0a84eaSCindy Lu     return !!(features & (1ULL << VIRTIO_NET_F_HOST_UFO));
2581e0a84eaSCindy Lu 
2591e0a84eaSCindy Lu }
2601e0a84eaSCindy Lu 
261ee8a1c63SKevin Wolf static bool vhost_vdpa_check_peer_type(NetClientState *nc, ObjectClass *oc,
262ee8a1c63SKevin Wolf                                        Error **errp)
263ee8a1c63SKevin Wolf {
264ee8a1c63SKevin Wolf     const char *driver = object_class_get_name(oc);
265ee8a1c63SKevin Wolf 
266ee8a1c63SKevin Wolf     if (!g_str_has_prefix(driver, "virtio-net-")) {
267ee8a1c63SKevin Wolf         error_setg(errp, "vhost-vdpa requires frontend driver virtio-net-*");
268ee8a1c63SKevin Wolf         return false;
269ee8a1c63SKevin Wolf     }
270ee8a1c63SKevin Wolf 
271ee8a1c63SKevin Wolf     return true;
272ee8a1c63SKevin Wolf }
273ee8a1c63SKevin Wolf 
274846a1e85SEugenio Pérez /** Dummy receive in case qemu falls back to userland tap networking */
275846a1e85SEugenio Pérez static ssize_t vhost_vdpa_receive(NetClientState *nc, const uint8_t *buf,
276846a1e85SEugenio Pérez                                   size_t size)
277846a1e85SEugenio Pérez {
278bc5add1dSSi-Wei Liu     return size;
279846a1e85SEugenio Pérez }
280846a1e85SEugenio Pérez 
28100ef422eSEugenio Pérez /** From any vdpa net client, get the netclient of the first queue pair */
28200ef422eSEugenio Pérez static VhostVDPAState *vhost_vdpa_net_first_nc_vdpa(VhostVDPAState *s)
28300ef422eSEugenio Pérez {
28400ef422eSEugenio Pérez     NICState *nic = qemu_get_nic(s->nc.peer);
28500ef422eSEugenio Pérez     NetClientState *nc0 = qemu_get_peer(nic->ncs, 0);
28600ef422eSEugenio Pérez 
28700ef422eSEugenio Pérez     return DO_UPCAST(VhostVDPAState, nc, nc0);
28800ef422eSEugenio Pérez }
28900ef422eSEugenio Pérez 
29069498430SEugenio Pérez static void vhost_vdpa_net_log_global_enable(VhostVDPAState *s, bool enable)
29169498430SEugenio Pérez {
29269498430SEugenio Pérez     struct vhost_vdpa *v = &s->vhost_vdpa;
29369498430SEugenio Pérez     VirtIONet *n;
29469498430SEugenio Pérez     VirtIODevice *vdev;
29569498430SEugenio Pérez     int data_queue_pairs, cvq, r;
29669498430SEugenio Pérez 
29769498430SEugenio Pérez     /* We are only called on the first data vqs and only if x-svq is not set */
29869498430SEugenio Pérez     if (s->vhost_vdpa.shadow_vqs_enabled == enable) {
29969498430SEugenio Pérez         return;
30069498430SEugenio Pérez     }
30169498430SEugenio Pérez 
30269498430SEugenio Pérez     vdev = v->dev->vdev;
30369498430SEugenio Pérez     n = VIRTIO_NET(vdev);
30469498430SEugenio Pérez     if (!n->vhost_started) {
30569498430SEugenio Pérez         return;
30669498430SEugenio Pérez     }
30769498430SEugenio Pérez 
30869498430SEugenio Pérez     data_queue_pairs = n->multiqueue ? n->max_queue_pairs : 1;
30969498430SEugenio Pérez     cvq = virtio_vdev_has_feature(vdev, VIRTIO_NET_F_CTRL_VQ) ?
31069498430SEugenio Pérez                                   n->max_ncs - n->max_queue_pairs : 0;
31169498430SEugenio Pérez     /*
31269498430SEugenio Pérez      * TODO: vhost_net_stop does suspend, get_base and reset. We can be smarter
31369498430SEugenio Pérez      * in the future and resume the device if read-only operations between
31469498430SEugenio Pérez      * suspend and reset goes wrong.
31569498430SEugenio Pérez      */
31669498430SEugenio Pérez     vhost_net_stop(vdev, n->nic->ncs, data_queue_pairs, cvq);
31769498430SEugenio Pérez 
31869498430SEugenio Pérez     /* Start will check migration setup_or_active to configure or not SVQ */
31969498430SEugenio Pérez     r = vhost_net_start(vdev, n->nic->ncs, data_queue_pairs, cvq);
32069498430SEugenio Pérez     if (unlikely(r < 0)) {
32169498430SEugenio Pérez         error_report("unable to start vhost net: %s(%d)", g_strerror(-r), -r);
32269498430SEugenio Pérez     }
32369498430SEugenio Pérez }
32469498430SEugenio Pérez 
32569498430SEugenio Pérez static void vdpa_net_migration_state_notifier(Notifier *notifier, void *data)
32669498430SEugenio Pérez {
32769498430SEugenio Pérez     MigrationState *migration = data;
32869498430SEugenio Pérez     VhostVDPAState *s = container_of(notifier, VhostVDPAState,
32969498430SEugenio Pérez                                      migration_state);
33069498430SEugenio Pérez 
33169498430SEugenio Pérez     if (migration_in_setup(migration)) {
33269498430SEugenio Pérez         vhost_vdpa_net_log_global_enable(s, true);
33369498430SEugenio Pérez     } else if (migration_has_failed(migration)) {
33469498430SEugenio Pérez         vhost_vdpa_net_log_global_enable(s, false);
33569498430SEugenio Pérez     }
33669498430SEugenio Pérez }
33769498430SEugenio Pérez 
33800ef422eSEugenio Pérez static void vhost_vdpa_net_data_start_first(VhostVDPAState *s)
33900ef422eSEugenio Pérez {
34000ef422eSEugenio Pérez     struct vhost_vdpa *v = &s->vhost_vdpa;
34100ef422eSEugenio Pérez 
34269498430SEugenio Pérez     add_migration_state_change_notifier(&s->migration_state);
34300ef422eSEugenio Pérez     if (v->shadow_vqs_enabled) {
34400ef422eSEugenio Pérez         v->iova_tree = vhost_iova_tree_new(v->iova_range.first,
34500ef422eSEugenio Pérez                                            v->iova_range.last);
34600ef422eSEugenio Pérez     }
34700ef422eSEugenio Pérez }
34800ef422eSEugenio Pérez 
34900ef422eSEugenio Pérez static int vhost_vdpa_net_data_start(NetClientState *nc)
35000ef422eSEugenio Pérez {
35100ef422eSEugenio Pérez     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
35200ef422eSEugenio Pérez     struct vhost_vdpa *v = &s->vhost_vdpa;
35300ef422eSEugenio Pérez 
35400ef422eSEugenio Pérez     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
35500ef422eSEugenio Pérez 
35669498430SEugenio Pérez     if (s->always_svq ||
35769498430SEugenio Pérez         migration_is_setup_or_active(migrate_get_current()->state)) {
35869498430SEugenio Pérez         v->shadow_vqs_enabled = true;
35969498430SEugenio Pérez         v->shadow_data = true;
36069498430SEugenio Pérez     } else {
36169498430SEugenio Pérez         v->shadow_vqs_enabled = false;
36269498430SEugenio Pérez         v->shadow_data = false;
36369498430SEugenio Pérez     }
36469498430SEugenio Pérez 
36500ef422eSEugenio Pérez     if (v->index == 0) {
36600ef422eSEugenio Pérez         vhost_vdpa_net_data_start_first(s);
36700ef422eSEugenio Pérez         return 0;
36800ef422eSEugenio Pérez     }
36900ef422eSEugenio Pérez 
37000ef422eSEugenio Pérez     if (v->shadow_vqs_enabled) {
37100ef422eSEugenio Pérez         VhostVDPAState *s0 = vhost_vdpa_net_first_nc_vdpa(s);
37200ef422eSEugenio Pérez         v->iova_tree = s0->vhost_vdpa.iova_tree;
37300ef422eSEugenio Pérez     }
37400ef422eSEugenio Pérez 
37500ef422eSEugenio Pérez     return 0;
37600ef422eSEugenio Pérez }
37700ef422eSEugenio Pérez 
3786c482547SEugenio Pérez static int vhost_vdpa_net_data_load(NetClientState *nc)
3796c482547SEugenio Pérez {
3806c482547SEugenio Pérez     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
3816c482547SEugenio Pérez     struct vhost_vdpa *v = &s->vhost_vdpa;
3826c482547SEugenio Pérez     bool has_cvq = v->dev->vq_index_end % 2;
3836c482547SEugenio Pérez 
3846c482547SEugenio Pérez     if (has_cvq) {
3856c482547SEugenio Pérez         return 0;
3866c482547SEugenio Pérez     }
3876c482547SEugenio Pérez 
3886c482547SEugenio Pérez     for (int i = 0; i < v->dev->nvqs; ++i) {
3896c482547SEugenio Pérez         vhost_vdpa_set_vring_ready(v, i + v->dev->vq_index);
3906c482547SEugenio Pérez     }
3916c482547SEugenio Pérez     return 0;
3926c482547SEugenio Pérez }
3936c482547SEugenio Pérez 
39400ef422eSEugenio Pérez static void vhost_vdpa_net_client_stop(NetClientState *nc)
39500ef422eSEugenio Pérez {
39600ef422eSEugenio Pérez     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
39700ef422eSEugenio Pérez     struct vhost_dev *dev;
39800ef422eSEugenio Pérez 
39900ef422eSEugenio Pérez     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
40000ef422eSEugenio Pérez 
40169498430SEugenio Pérez     if (s->vhost_vdpa.index == 0) {
40269498430SEugenio Pérez         remove_migration_state_change_notifier(&s->migration_state);
40369498430SEugenio Pérez     }
40469498430SEugenio Pérez 
40500ef422eSEugenio Pérez     dev = s->vhost_vdpa.dev;
40600ef422eSEugenio Pérez     if (dev->vq_index + dev->nvqs == dev->vq_index_end) {
40700ef422eSEugenio Pérez         g_clear_pointer(&s->vhost_vdpa.iova_tree, vhost_iova_tree_delete);
4080a7a164bSEugenio Pérez     } else {
4090a7a164bSEugenio Pérez         s->vhost_vdpa.iova_tree = NULL;
41000ef422eSEugenio Pérez     }
41100ef422eSEugenio Pérez }
41200ef422eSEugenio Pérez 
4131e0a84eaSCindy Lu static NetClientInfo net_vhost_vdpa_info = {
4141e0a84eaSCindy Lu         .type = NET_CLIENT_DRIVER_VHOST_VDPA,
4151e0a84eaSCindy Lu         .size = sizeof(VhostVDPAState),
416846a1e85SEugenio Pérez         .receive = vhost_vdpa_receive,
41700ef422eSEugenio Pérez         .start = vhost_vdpa_net_data_start,
4186c482547SEugenio Pérez         .load = vhost_vdpa_net_data_load,
41900ef422eSEugenio Pérez         .stop = vhost_vdpa_net_client_stop,
4201e0a84eaSCindy Lu         .cleanup = vhost_vdpa_cleanup,
4211e0a84eaSCindy Lu         .has_vnet_hdr = vhost_vdpa_has_vnet_hdr,
4221e0a84eaSCindy Lu         .has_ufo = vhost_vdpa_has_ufo,
423ee8a1c63SKevin Wolf         .check_peer_type = vhost_vdpa_check_peer_type,
4241e0a84eaSCindy Lu };
4251e0a84eaSCindy Lu 
426152128d6SEugenio Pérez static int64_t vhost_vdpa_get_vring_group(int device_fd, unsigned vq_index,
427152128d6SEugenio Pérez                                           Error **errp)
428c1a10086SEugenio Pérez {
429c1a10086SEugenio Pérez     struct vhost_vring_state state = {
430c1a10086SEugenio Pérez         .index = vq_index,
431c1a10086SEugenio Pérez     };
432c1a10086SEugenio Pérez     int r = ioctl(device_fd, VHOST_VDPA_GET_VRING_GROUP, &state);
433c1a10086SEugenio Pérez 
434c1a10086SEugenio Pérez     if (unlikely(r < 0)) {
4350f2bb0bfSEugenio Pérez         r = -errno;
436152128d6SEugenio Pérez         error_setg_errno(errp, errno, "Cannot get VQ %u group", vq_index);
437c1a10086SEugenio Pérez         return r;
438c1a10086SEugenio Pérez     }
439c1a10086SEugenio Pérez 
440c1a10086SEugenio Pérez     return state.num;
441c1a10086SEugenio Pérez }
442c1a10086SEugenio Pérez 
443c1a10086SEugenio Pérez static int vhost_vdpa_set_address_space_id(struct vhost_vdpa *v,
444c1a10086SEugenio Pérez                                            unsigned vq_group,
445c1a10086SEugenio Pérez                                            unsigned asid_num)
446c1a10086SEugenio Pérez {
447c1a10086SEugenio Pérez     struct vhost_vring_state asid = {
448c1a10086SEugenio Pérez         .index = vq_group,
449c1a10086SEugenio Pérez         .num = asid_num,
450c1a10086SEugenio Pérez     };
451c1a10086SEugenio Pérez     int r;
452c1a10086SEugenio Pérez 
453c1a10086SEugenio Pérez     r = ioctl(v->device_fd, VHOST_VDPA_SET_GROUP_ASID, &asid);
454c1a10086SEugenio Pérez     if (unlikely(r < 0)) {
455c1a10086SEugenio Pérez         error_report("Can't set vq group %u asid %u, errno=%d (%s)",
456c1a10086SEugenio Pérez                      asid.index, asid.num, errno, g_strerror(errno));
457c1a10086SEugenio Pérez     }
458c1a10086SEugenio Pérez     return r;
459c1a10086SEugenio Pérez }
460c1a10086SEugenio Pérez 
4612df4dd31SEugenio Pérez static void vhost_vdpa_cvq_unmap_buf(struct vhost_vdpa *v, void *addr)
4622df4dd31SEugenio Pérez {
4632df4dd31SEugenio Pérez     VhostIOVATree *tree = v->iova_tree;
4642df4dd31SEugenio Pérez     DMAMap needle = {
4652df4dd31SEugenio Pérez         /*
4662df4dd31SEugenio Pérez          * No need to specify size or to look for more translations since
4672df4dd31SEugenio Pérez          * this contiguous chunk was allocated by us.
4682df4dd31SEugenio Pérez          */
4692df4dd31SEugenio Pérez         .translated_addr = (hwaddr)(uintptr_t)addr,
4702df4dd31SEugenio Pérez     };
4712df4dd31SEugenio Pérez     const DMAMap *map = vhost_iova_tree_find_iova(tree, &needle);
4722df4dd31SEugenio Pérez     int r;
4732df4dd31SEugenio Pérez 
4742df4dd31SEugenio Pérez     if (unlikely(!map)) {
4752df4dd31SEugenio Pérez         error_report("Cannot locate expected map");
4762df4dd31SEugenio Pérez         return;
4772df4dd31SEugenio Pérez     }
4782df4dd31SEugenio Pérez 
479cd831ed5SEugenio Pérez     r = vhost_vdpa_dma_unmap(v, v->address_space_id, map->iova, map->size + 1);
4802df4dd31SEugenio Pérez     if (unlikely(r != 0)) {
4812df4dd31SEugenio Pérez         error_report("Device cannot unmap: %s(%d)", g_strerror(r), r);
4822df4dd31SEugenio Pérez     }
4832df4dd31SEugenio Pérez 
48469292a8eSEugenio Pérez     vhost_iova_tree_remove(tree, *map);
4852df4dd31SEugenio Pérez }
4862df4dd31SEugenio Pérez 
4877a7f87e9SEugenio Pérez /** Map CVQ buffer. */
4887a7f87e9SEugenio Pérez static int vhost_vdpa_cvq_map_buf(struct vhost_vdpa *v, void *buf, size_t size,
4897a7f87e9SEugenio Pérez                                   bool write)
4902df4dd31SEugenio Pérez {
4912df4dd31SEugenio Pérez     DMAMap map = {};
4922df4dd31SEugenio Pérez     int r;
4932df4dd31SEugenio Pérez 
4942df4dd31SEugenio Pérez     map.translated_addr = (hwaddr)(uintptr_t)buf;
4957a7f87e9SEugenio Pérez     map.size = size - 1;
4962df4dd31SEugenio Pérez     map.perm = write ? IOMMU_RW : IOMMU_RO,
4972df4dd31SEugenio Pérez     r = vhost_iova_tree_map_alloc(v->iova_tree, &map);
4982df4dd31SEugenio Pérez     if (unlikely(r != IOVA_OK)) {
4992df4dd31SEugenio Pérez         error_report("Cannot map injected element");
5007a7f87e9SEugenio Pérez         return r;
5012df4dd31SEugenio Pérez     }
5022df4dd31SEugenio Pérez 
503cd831ed5SEugenio Pérez     r = vhost_vdpa_dma_map(v, v->address_space_id, map.iova,
504cd831ed5SEugenio Pérez                            vhost_vdpa_net_cvq_cmd_page_len(), buf, !write);
5052df4dd31SEugenio Pérez     if (unlikely(r < 0)) {
5062df4dd31SEugenio Pérez         goto dma_map_err;
5072df4dd31SEugenio Pérez     }
5082df4dd31SEugenio Pérez 
5097a7f87e9SEugenio Pérez     return 0;
5102df4dd31SEugenio Pérez 
5112df4dd31SEugenio Pérez dma_map_err:
51269292a8eSEugenio Pérez     vhost_iova_tree_remove(v->iova_tree, map);
5137a7f87e9SEugenio Pérez     return r;
5142df4dd31SEugenio Pérez }
5152df4dd31SEugenio Pérez 
5167a7f87e9SEugenio Pérez static int vhost_vdpa_net_cvq_start(NetClientState *nc)
5172df4dd31SEugenio Pérez {
51800ef422eSEugenio Pérez     VhostVDPAState *s, *s0;
519c1a10086SEugenio Pérez     struct vhost_vdpa *v;
520c1a10086SEugenio Pérez     int64_t cvq_group;
521152128d6SEugenio Pérez     int r;
522152128d6SEugenio Pérez     Error *err = NULL;
5232df4dd31SEugenio Pérez 
5247a7f87e9SEugenio Pérez     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
5257a7f87e9SEugenio Pérez 
5267a7f87e9SEugenio Pérez     s = DO_UPCAST(VhostVDPAState, nc, nc);
527c1a10086SEugenio Pérez     v = &s->vhost_vdpa;
528c1a10086SEugenio Pérez 
52969498430SEugenio Pérez     s0 = vhost_vdpa_net_first_nc_vdpa(s);
53069498430SEugenio Pérez     v->shadow_data = s0->vhost_vdpa.shadow_vqs_enabled;
531b40eba9cSEugenio Pérez     v->shadow_vqs_enabled = s0->vhost_vdpa.shadow_vqs_enabled;
532c1a10086SEugenio Pérez     s->vhost_vdpa.address_space_id = VHOST_VDPA_GUEST_PA_ASID;
533c1a10086SEugenio Pérez 
53469498430SEugenio Pérez     if (s->vhost_vdpa.shadow_data) {
535c1a10086SEugenio Pérez         /* SVQ is already configured for all virtqueues */
536c1a10086SEugenio Pérez         goto out;
537c1a10086SEugenio Pérez     }
538c1a10086SEugenio Pérez 
539c1a10086SEugenio Pérez     /*
540c1a10086SEugenio Pérez      * If we early return in these cases SVQ will not be enabled. The migration
541c1a10086SEugenio Pérez      * will be blocked as long as vhost-vdpa backends will not offer _F_LOG.
542c1a10086SEugenio Pérez      */
543152128d6SEugenio Pérez     if (!vhost_vdpa_net_valid_svq_features(v->dev->features, NULL)) {
544c1a10086SEugenio Pérez         return 0;
545c1a10086SEugenio Pérez     }
546c1a10086SEugenio Pérez 
547152128d6SEugenio Pérez     if (!s->cvq_isolated) {
548152128d6SEugenio Pérez         return 0;
549152128d6SEugenio Pérez     }
550152128d6SEugenio Pérez 
551152128d6SEugenio Pérez     cvq_group = vhost_vdpa_get_vring_group(v->device_fd,
552152128d6SEugenio Pérez                                            v->dev->vq_index_end - 1,
553152128d6SEugenio Pérez                                            &err);
554c1a10086SEugenio Pérez     if (unlikely(cvq_group < 0)) {
555152128d6SEugenio Pérez         error_report_err(err);
556c1a10086SEugenio Pérez         return cvq_group;
557c1a10086SEugenio Pérez     }
558c1a10086SEugenio Pérez 
559c1a10086SEugenio Pérez     r = vhost_vdpa_set_address_space_id(v, cvq_group, VHOST_VDPA_NET_CVQ_ASID);
560c1a10086SEugenio Pérez     if (unlikely(r < 0)) {
561c1a10086SEugenio Pérez         return r;
562c1a10086SEugenio Pérez     }
563c1a10086SEugenio Pérez 
564c1a10086SEugenio Pérez     v->shadow_vqs_enabled = true;
565c1a10086SEugenio Pérez     s->vhost_vdpa.address_space_id = VHOST_VDPA_NET_CVQ_ASID;
566c1a10086SEugenio Pérez 
567c1a10086SEugenio Pérez out:
5687a7f87e9SEugenio Pérez     if (!s->vhost_vdpa.shadow_vqs_enabled) {
5697a7f87e9SEugenio Pérez         return 0;
5702df4dd31SEugenio Pérez     }
5712df4dd31SEugenio Pérez 
57200ef422eSEugenio Pérez     if (s0->vhost_vdpa.iova_tree) {
57300ef422eSEugenio Pérez         /*
57400ef422eSEugenio Pérez          * SVQ is already configured for all virtqueues.  Reuse IOVA tree for
57500ef422eSEugenio Pérez          * simplicity, whether CVQ shares ASID with guest or not, because:
57600ef422eSEugenio Pérez          * - Memory listener need access to guest's memory addresses allocated
57700ef422eSEugenio Pérez          *   in the IOVA tree.
57800ef422eSEugenio Pérez          * - There should be plenty of IOVA address space for both ASID not to
57900ef422eSEugenio Pérez          *   worry about collisions between them.  Guest's translations are
58000ef422eSEugenio Pérez          *   still validated with virtio virtqueue_pop so there is no risk for
58100ef422eSEugenio Pérez          *   the guest to access memory that it shouldn't.
58200ef422eSEugenio Pérez          *
58300ef422eSEugenio Pérez          * To allocate a iova tree per ASID is doable but it complicates the
58400ef422eSEugenio Pérez          * code and it is not worth it for the moment.
58500ef422eSEugenio Pérez          */
58600ef422eSEugenio Pérez         v->iova_tree = s0->vhost_vdpa.iova_tree;
58700ef422eSEugenio Pérez     } else {
58800ef422eSEugenio Pérez         v->iova_tree = vhost_iova_tree_new(v->iova_range.first,
58900ef422eSEugenio Pérez                                            v->iova_range.last);
59000ef422eSEugenio Pérez     }
59100ef422eSEugenio Pérez 
5927a7f87e9SEugenio Pérez     r = vhost_vdpa_cvq_map_buf(&s->vhost_vdpa, s->cvq_cmd_out_buffer,
5937a7f87e9SEugenio Pérez                                vhost_vdpa_net_cvq_cmd_page_len(), false);
5947a7f87e9SEugenio Pérez     if (unlikely(r < 0)) {
5957a7f87e9SEugenio Pérez         return r;
5967a7f87e9SEugenio Pérez     }
5977a7f87e9SEugenio Pérez 
59817fb889fSEugenio Pérez     r = vhost_vdpa_cvq_map_buf(&s->vhost_vdpa, s->status,
5997a7f87e9SEugenio Pérez                                vhost_vdpa_net_cvq_cmd_page_len(), true);
6007a7f87e9SEugenio Pérez     if (unlikely(r < 0)) {
6012df4dd31SEugenio Pérez         vhost_vdpa_cvq_unmap_buf(&s->vhost_vdpa, s->cvq_cmd_out_buffer);
6022df4dd31SEugenio Pérez     }
6032df4dd31SEugenio Pérez 
6047a7f87e9SEugenio Pérez     return r;
6057a7f87e9SEugenio Pérez }
6067a7f87e9SEugenio Pérez 
6077a7f87e9SEugenio Pérez static void vhost_vdpa_net_cvq_stop(NetClientState *nc)
6087a7f87e9SEugenio Pérez {
6097a7f87e9SEugenio Pérez     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
6107a7f87e9SEugenio Pérez 
6117a7f87e9SEugenio Pérez     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
6127a7f87e9SEugenio Pérez 
6137a7f87e9SEugenio Pérez     if (s->vhost_vdpa.shadow_vqs_enabled) {
6147a7f87e9SEugenio Pérez         vhost_vdpa_cvq_unmap_buf(&s->vhost_vdpa, s->cvq_cmd_out_buffer);
61517fb889fSEugenio Pérez         vhost_vdpa_cvq_unmap_buf(&s->vhost_vdpa, s->status);
616c1a10086SEugenio Pérez     }
61700ef422eSEugenio Pérez 
61800ef422eSEugenio Pérez     vhost_vdpa_net_client_stop(nc);
6192df4dd31SEugenio Pérez }
6202df4dd31SEugenio Pérez 
6210e6bff0dSHawkins Jiawei static ssize_t vhost_vdpa_net_cvq_add(VhostVDPAState *s,
6220e6bff0dSHawkins Jiawei                                     const struct iovec *out_sg, size_t out_num,
6230e6bff0dSHawkins Jiawei                                     const struct iovec *in_sg, size_t in_num)
624be4278b6SEugenio Pérez {
625be4278b6SEugenio Pérez     VhostShadowVirtqueue *svq = g_ptr_array_index(s->vhost_vdpa.shadow_vqs, 0);
626be4278b6SEugenio Pérez     int r;
627be4278b6SEugenio Pérez 
6280e6bff0dSHawkins Jiawei     r = vhost_svq_add(svq, out_sg, out_num, in_sg, in_num, NULL);
629be4278b6SEugenio Pérez     if (unlikely(r != 0)) {
630be4278b6SEugenio Pérez         if (unlikely(r == -ENOSPC)) {
631be4278b6SEugenio Pérez             qemu_log_mask(LOG_GUEST_ERROR, "%s: No space on device queue\n",
632be4278b6SEugenio Pérez                           __func__);
633be4278b6SEugenio Pérez         }
634*a864a321SHawkins Jiawei     }
635*a864a321SHawkins Jiawei 
636be4278b6SEugenio Pérez     return r;
637be4278b6SEugenio Pérez }
638be4278b6SEugenio Pérez 
639be4278b6SEugenio Pérez /*
640*a864a321SHawkins Jiawei  * Convenience wrapper to poll SVQ for multiple control commands.
641*a864a321SHawkins Jiawei  *
642*a864a321SHawkins Jiawei  * Caller should hold the BQL when invoking this function, and should take
643*a864a321SHawkins Jiawei  * the answer before SVQ pulls by itself when BQL is released.
644be4278b6SEugenio Pérez  */
645*a864a321SHawkins Jiawei static ssize_t vhost_vdpa_net_svq_poll(VhostVDPAState *s, size_t cmds_in_flight)
646*a864a321SHawkins Jiawei {
647*a864a321SHawkins Jiawei     VhostShadowVirtqueue *svq = g_ptr_array_index(s->vhost_vdpa.shadow_vqs, 0);
648*a864a321SHawkins Jiawei     return vhost_svq_poll(svq, cmds_in_flight);
649be4278b6SEugenio Pérez }
650be4278b6SEugenio Pérez 
651f73c0c43SEugenio Pérez static ssize_t vhost_vdpa_net_load_cmd(VhostVDPAState *s, uint8_t class,
6522848c6aaSHawkins Jiawei                                        uint8_t cmd, const struct iovec *data_sg,
6532848c6aaSHawkins Jiawei                                        size_t data_num)
654f73c0c43SEugenio Pérez {
655f73c0c43SEugenio Pérez     const struct virtio_net_ctrl_hdr ctrl = {
656f73c0c43SEugenio Pérez         .class = class,
657f73c0c43SEugenio Pérez         .cmd = cmd,
658f73c0c43SEugenio Pérez     };
6592848c6aaSHawkins Jiawei     size_t data_size = iov_size(data_sg, data_num);
6600e6bff0dSHawkins Jiawei     /* Buffers for the device */
6610e6bff0dSHawkins Jiawei     const struct iovec out = {
6620e6bff0dSHawkins Jiawei         .iov_base = s->cvq_cmd_out_buffer,
6630e6bff0dSHawkins Jiawei         .iov_len = sizeof(ctrl) + data_size,
6640e6bff0dSHawkins Jiawei     };
6650e6bff0dSHawkins Jiawei     const struct iovec in = {
6660e6bff0dSHawkins Jiawei         .iov_base = s->status,
6670e6bff0dSHawkins Jiawei         .iov_len = sizeof(*s->status),
6680e6bff0dSHawkins Jiawei     };
669*a864a321SHawkins Jiawei     ssize_t r;
670f73c0c43SEugenio Pérez 
671f73c0c43SEugenio Pérez     assert(data_size < vhost_vdpa_net_cvq_cmd_page_len() - sizeof(ctrl));
672f73c0c43SEugenio Pérez 
6732848c6aaSHawkins Jiawei     /* pack the CVQ command header */
674f73c0c43SEugenio Pérez     memcpy(s->cvq_cmd_out_buffer, &ctrl, sizeof(ctrl));
675f73c0c43SEugenio Pérez 
6762848c6aaSHawkins Jiawei     /* pack the CVQ command command-specific-data */
6772848c6aaSHawkins Jiawei     iov_to_buf(data_sg, data_num, 0,
6782848c6aaSHawkins Jiawei                s->cvq_cmd_out_buffer + sizeof(ctrl), data_size);
6792848c6aaSHawkins Jiawei 
680*a864a321SHawkins Jiawei     r = vhost_vdpa_net_cvq_add(s, &out, 1, &in, 1);
681*a864a321SHawkins Jiawei     if (unlikely(r < 0)) {
682*a864a321SHawkins Jiawei         return r;
683*a864a321SHawkins Jiawei     }
684*a864a321SHawkins Jiawei 
685*a864a321SHawkins Jiawei     /*
686*a864a321SHawkins Jiawei      * We can poll here since we've had BQL from the time
687*a864a321SHawkins Jiawei      * we sent the descriptor.
688*a864a321SHawkins Jiawei      */
689*a864a321SHawkins Jiawei     return vhost_vdpa_net_svq_poll(s, 1);
690f73c0c43SEugenio Pérez }
691f73c0c43SEugenio Pérez 
692f73c0c43SEugenio Pérez static int vhost_vdpa_net_load_mac(VhostVDPAState *s, const VirtIONet *n)
693f73c0c43SEugenio Pérez {
69402d3bf09SHawkins Jiawei     if (virtio_vdev_has_feature(&n->parent_obj, VIRTIO_NET_F_CTRL_MAC_ADDR)) {
6952848c6aaSHawkins Jiawei         const struct iovec data = {
6962848c6aaSHawkins Jiawei             .iov_base = (void *)n->mac,
6972848c6aaSHawkins Jiawei             .iov_len = sizeof(n->mac),
6982848c6aaSHawkins Jiawei         };
699f73c0c43SEugenio Pérez         ssize_t dev_written = vhost_vdpa_net_load_cmd(s, VIRTIO_NET_CTRL_MAC,
700f73c0c43SEugenio Pérez                                                   VIRTIO_NET_CTRL_MAC_ADDR_SET,
7012848c6aaSHawkins Jiawei                                                   &data, 1);
702f73c0c43SEugenio Pérez         if (unlikely(dev_written < 0)) {
703f73c0c43SEugenio Pérez             return dev_written;
704f73c0c43SEugenio Pérez         }
705b479bc3cSHawkins Jiawei         if (*s->status != VIRTIO_NET_OK) {
706b479bc3cSHawkins Jiawei             return -EIO;
707b479bc3cSHawkins Jiawei         }
708f73c0c43SEugenio Pérez     }
709f73c0c43SEugenio Pérez 
7100ddcecb8SHawkins Jiawei     /*
7110ddcecb8SHawkins Jiawei      * According to VirtIO standard, "The device MUST have an
7120ddcecb8SHawkins Jiawei      * empty MAC filtering table on reset.".
7130ddcecb8SHawkins Jiawei      *
7140ddcecb8SHawkins Jiawei      * Therefore, there is no need to send this CVQ command if the
7150ddcecb8SHawkins Jiawei      * driver also sets an empty MAC filter table, which aligns with
7160ddcecb8SHawkins Jiawei      * the device's defaults.
7170ddcecb8SHawkins Jiawei      *
7180ddcecb8SHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
7190ddcecb8SHawkins Jiawei      * configuration only at live migration.
7200ddcecb8SHawkins Jiawei      */
7210ddcecb8SHawkins Jiawei     if (!virtio_vdev_has_feature(&n->parent_obj, VIRTIO_NET_F_CTRL_RX) ||
7220ddcecb8SHawkins Jiawei         n->mac_table.in_use == 0) {
7230ddcecb8SHawkins Jiawei         return 0;
7240ddcecb8SHawkins Jiawei     }
7250ddcecb8SHawkins Jiawei 
7260ddcecb8SHawkins Jiawei     uint32_t uni_entries = n->mac_table.first_multi,
7270ddcecb8SHawkins Jiawei              uni_macs_size = uni_entries * ETH_ALEN,
7280ddcecb8SHawkins Jiawei              mul_entries = n->mac_table.in_use - uni_entries,
7290ddcecb8SHawkins Jiawei              mul_macs_size = mul_entries * ETH_ALEN;
7300ddcecb8SHawkins Jiawei     struct virtio_net_ctrl_mac uni = {
7310ddcecb8SHawkins Jiawei         .entries = cpu_to_le32(uni_entries),
7320ddcecb8SHawkins Jiawei     };
7330ddcecb8SHawkins Jiawei     struct virtio_net_ctrl_mac mul = {
7340ddcecb8SHawkins Jiawei         .entries = cpu_to_le32(mul_entries),
7350ddcecb8SHawkins Jiawei     };
7360ddcecb8SHawkins Jiawei     const struct iovec data[] = {
7370ddcecb8SHawkins Jiawei         {
7380ddcecb8SHawkins Jiawei             .iov_base = &uni,
7390ddcecb8SHawkins Jiawei             .iov_len = sizeof(uni),
7400ddcecb8SHawkins Jiawei         }, {
7410ddcecb8SHawkins Jiawei             .iov_base = n->mac_table.macs,
7420ddcecb8SHawkins Jiawei             .iov_len = uni_macs_size,
7430ddcecb8SHawkins Jiawei         }, {
7440ddcecb8SHawkins Jiawei             .iov_base = &mul,
7450ddcecb8SHawkins Jiawei             .iov_len = sizeof(mul),
7460ddcecb8SHawkins Jiawei         }, {
7470ddcecb8SHawkins Jiawei             .iov_base = &n->mac_table.macs[uni_macs_size],
7480ddcecb8SHawkins Jiawei             .iov_len = mul_macs_size,
7490ddcecb8SHawkins Jiawei         },
7500ddcecb8SHawkins Jiawei     };
7510ddcecb8SHawkins Jiawei     ssize_t dev_written = vhost_vdpa_net_load_cmd(s,
7520ddcecb8SHawkins Jiawei                                 VIRTIO_NET_CTRL_MAC,
7530ddcecb8SHawkins Jiawei                                 VIRTIO_NET_CTRL_MAC_TABLE_SET,
7540ddcecb8SHawkins Jiawei                                 data, ARRAY_SIZE(data));
7550ddcecb8SHawkins Jiawei     if (unlikely(dev_written < 0)) {
7560ddcecb8SHawkins Jiawei         return dev_written;
7570ddcecb8SHawkins Jiawei     }
7580ddcecb8SHawkins Jiawei     if (*s->status != VIRTIO_NET_OK) {
7590ddcecb8SHawkins Jiawei         return -EIO;
7600ddcecb8SHawkins Jiawei     }
7610ddcecb8SHawkins Jiawei 
762f73c0c43SEugenio Pérez     return 0;
763f73c0c43SEugenio Pérez }
764f73c0c43SEugenio Pérez 
765f64c7cdaSEugenio Pérez static int vhost_vdpa_net_load_mq(VhostVDPAState *s,
766f64c7cdaSEugenio Pérez                                   const VirtIONet *n)
767f64c7cdaSEugenio Pérez {
768f64c7cdaSEugenio Pérez     struct virtio_net_ctrl_mq mq;
769f64c7cdaSEugenio Pérez     ssize_t dev_written;
770f64c7cdaSEugenio Pérez 
77102d3bf09SHawkins Jiawei     if (!virtio_vdev_has_feature(&n->parent_obj, VIRTIO_NET_F_MQ)) {
772f64c7cdaSEugenio Pérez         return 0;
773f64c7cdaSEugenio Pérez     }
774f64c7cdaSEugenio Pérez 
775f64c7cdaSEugenio Pérez     mq.virtqueue_pairs = cpu_to_le16(n->curr_queue_pairs);
7762848c6aaSHawkins Jiawei     const struct iovec data = {
7772848c6aaSHawkins Jiawei         .iov_base = &mq,
7782848c6aaSHawkins Jiawei         .iov_len = sizeof(mq),
7792848c6aaSHawkins Jiawei     };
780f64c7cdaSEugenio Pérez     dev_written = vhost_vdpa_net_load_cmd(s, VIRTIO_NET_CTRL_MQ,
7812848c6aaSHawkins Jiawei                                           VIRTIO_NET_CTRL_MQ_VQ_PAIRS_SET,
7822848c6aaSHawkins Jiawei                                           &data, 1);
783f64c7cdaSEugenio Pérez     if (unlikely(dev_written < 0)) {
784f64c7cdaSEugenio Pérez         return dev_written;
785f64c7cdaSEugenio Pérez     }
786f45fd95eSHawkins Jiawei     if (*s->status != VIRTIO_NET_OK) {
787f45fd95eSHawkins Jiawei         return -EIO;
788f45fd95eSHawkins Jiawei     }
789f64c7cdaSEugenio Pérez 
790f45fd95eSHawkins Jiawei     return 0;
791f64c7cdaSEugenio Pérez }
792f64c7cdaSEugenio Pérez 
7930b58d368SHawkins Jiawei static int vhost_vdpa_net_load_offloads(VhostVDPAState *s,
7940b58d368SHawkins Jiawei                                         const VirtIONet *n)
7950b58d368SHawkins Jiawei {
7960b58d368SHawkins Jiawei     uint64_t offloads;
7970b58d368SHawkins Jiawei     ssize_t dev_written;
7980b58d368SHawkins Jiawei 
7990b58d368SHawkins Jiawei     if (!virtio_vdev_has_feature(&n->parent_obj,
8000b58d368SHawkins Jiawei                                  VIRTIO_NET_F_CTRL_GUEST_OFFLOADS)) {
8010b58d368SHawkins Jiawei         return 0;
8020b58d368SHawkins Jiawei     }
8030b58d368SHawkins Jiawei 
8040b58d368SHawkins Jiawei     if (n->curr_guest_offloads == virtio_net_supported_guest_offloads(n)) {
8050b58d368SHawkins Jiawei         /*
8060b58d368SHawkins Jiawei          * According to VirtIO standard, "Upon feature negotiation
8070b58d368SHawkins Jiawei          * corresponding offload gets enabled to preserve
8080b58d368SHawkins Jiawei          * backward compatibility.".
8090b58d368SHawkins Jiawei          *
8100b58d368SHawkins Jiawei          * Therefore, there is no need to send this CVQ command if the
8110b58d368SHawkins Jiawei          * driver also enables all supported offloads, which aligns with
8120b58d368SHawkins Jiawei          * the device's defaults.
8130b58d368SHawkins Jiawei          *
8140b58d368SHawkins Jiawei          * Note that the device's defaults can mismatch the driver's
8150b58d368SHawkins Jiawei          * configuration only at live migration.
8160b58d368SHawkins Jiawei          */
8170b58d368SHawkins Jiawei         return 0;
8180b58d368SHawkins Jiawei     }
8190b58d368SHawkins Jiawei 
8200b58d368SHawkins Jiawei     offloads = cpu_to_le64(n->curr_guest_offloads);
8212848c6aaSHawkins Jiawei     const struct iovec data = {
8222848c6aaSHawkins Jiawei         .iov_base = &offloads,
8232848c6aaSHawkins Jiawei         .iov_len = sizeof(offloads),
8242848c6aaSHawkins Jiawei     };
8250b58d368SHawkins Jiawei     dev_written = vhost_vdpa_net_load_cmd(s, VIRTIO_NET_CTRL_GUEST_OFFLOADS,
8260b58d368SHawkins Jiawei                                           VIRTIO_NET_CTRL_GUEST_OFFLOADS_SET,
8272848c6aaSHawkins Jiawei                                           &data, 1);
8280b58d368SHawkins Jiawei     if (unlikely(dev_written < 0)) {
8290b58d368SHawkins Jiawei         return dev_written;
8300b58d368SHawkins Jiawei     }
8316f348071SHawkins Jiawei     if (*s->status != VIRTIO_NET_OK) {
8326f348071SHawkins Jiawei         return -EIO;
8336f348071SHawkins Jiawei     }
8340b58d368SHawkins Jiawei 
8356f348071SHawkins Jiawei     return 0;
8360b58d368SHawkins Jiawei }
8370b58d368SHawkins Jiawei 
838b12f907eSHawkins Jiawei static int vhost_vdpa_net_load_rx_mode(VhostVDPAState *s,
839b12f907eSHawkins Jiawei                                        uint8_t cmd,
840b12f907eSHawkins Jiawei                                        uint8_t on)
841b12f907eSHawkins Jiawei {
842b12f907eSHawkins Jiawei     const struct iovec data = {
843b12f907eSHawkins Jiawei         .iov_base = &on,
844b12f907eSHawkins Jiawei         .iov_len = sizeof(on),
845b12f907eSHawkins Jiawei     };
84624e59cfeSHawkins Jiawei     ssize_t dev_written;
84724e59cfeSHawkins Jiawei 
84824e59cfeSHawkins Jiawei     dev_written = vhost_vdpa_net_load_cmd(s, VIRTIO_NET_CTRL_RX,
849b12f907eSHawkins Jiawei                                           cmd, &data, 1);
85024e59cfeSHawkins Jiawei     if (unlikely(dev_written < 0)) {
85124e59cfeSHawkins Jiawei         return dev_written;
85224e59cfeSHawkins Jiawei     }
85324e59cfeSHawkins Jiawei     if (*s->status != VIRTIO_NET_OK) {
85424e59cfeSHawkins Jiawei         return -EIO;
85524e59cfeSHawkins Jiawei     }
85624e59cfeSHawkins Jiawei 
85724e59cfeSHawkins Jiawei     return 0;
858b12f907eSHawkins Jiawei }
859b12f907eSHawkins Jiawei 
860b12f907eSHawkins Jiawei static int vhost_vdpa_net_load_rx(VhostVDPAState *s,
861b12f907eSHawkins Jiawei                                   const VirtIONet *n)
862b12f907eSHawkins Jiawei {
86324e59cfeSHawkins Jiawei     ssize_t r;
864b12f907eSHawkins Jiawei 
865b12f907eSHawkins Jiawei     if (!virtio_vdev_has_feature(&n->parent_obj, VIRTIO_NET_F_CTRL_RX)) {
866b12f907eSHawkins Jiawei         return 0;
867b12f907eSHawkins Jiawei     }
868b12f907eSHawkins Jiawei 
869b12f907eSHawkins Jiawei     /*
870b12f907eSHawkins Jiawei      * According to virtio_net_reset(), device turns promiscuous mode
871b12f907eSHawkins Jiawei      * on by default.
872b12f907eSHawkins Jiawei      *
8730a19d879SMichael Tokarev      * Additionally, according to VirtIO standard, "Since there are
874b12f907eSHawkins Jiawei      * no guarantees, it can use a hash filter or silently switch to
875b12f907eSHawkins Jiawei      * allmulti or promiscuous mode if it is given too many addresses.".
876b12f907eSHawkins Jiawei      * QEMU marks `n->mac_table.uni_overflow` if guest sets too many
877b12f907eSHawkins Jiawei      * non-multicast MAC addresses, indicating that promiscuous mode
878b12f907eSHawkins Jiawei      * should be enabled.
879b12f907eSHawkins Jiawei      *
880b12f907eSHawkins Jiawei      * Therefore, QEMU should only send this CVQ command if the
881b12f907eSHawkins Jiawei      * `n->mac_table.uni_overflow` is not marked and `n->promisc` is off,
882b12f907eSHawkins Jiawei      * which sets promiscuous mode on, different from the device's defaults.
883b12f907eSHawkins Jiawei      *
884b12f907eSHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
885b12f907eSHawkins Jiawei      * configuration only at live migration.
886b12f907eSHawkins Jiawei      */
887b12f907eSHawkins Jiawei     if (!n->mac_table.uni_overflow && !n->promisc) {
88824e59cfeSHawkins Jiawei         r = vhost_vdpa_net_load_rx_mode(s, VIRTIO_NET_CTRL_RX_PROMISC, 0);
88924e59cfeSHawkins Jiawei         if (unlikely(r < 0)) {
89024e59cfeSHawkins Jiawei             return r;
891b12f907eSHawkins Jiawei         }
892b12f907eSHawkins Jiawei     }
893b12f907eSHawkins Jiawei 
894b12f907eSHawkins Jiawei     /*
895b12f907eSHawkins Jiawei      * According to virtio_net_reset(), device turns all-multicast mode
896b12f907eSHawkins Jiawei      * off by default.
897b12f907eSHawkins Jiawei      *
898b12f907eSHawkins Jiawei      * According to VirtIO standard, "Since there are no guarantees,
899b12f907eSHawkins Jiawei      * it can use a hash filter or silently switch to allmulti or
900b12f907eSHawkins Jiawei      * promiscuous mode if it is given too many addresses.". QEMU marks
901b12f907eSHawkins Jiawei      * `n->mac_table.multi_overflow` if guest sets too many
902b12f907eSHawkins Jiawei      * non-multicast MAC addresses.
903b12f907eSHawkins Jiawei      *
904b12f907eSHawkins Jiawei      * Therefore, QEMU should only send this CVQ command if the
905b12f907eSHawkins Jiawei      * `n->mac_table.multi_overflow` is marked or `n->allmulti` is on,
906b12f907eSHawkins Jiawei      * which sets all-multicast mode on, different from the device's defaults.
907b12f907eSHawkins Jiawei      *
908b12f907eSHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
909b12f907eSHawkins Jiawei      * configuration only at live migration.
910b12f907eSHawkins Jiawei      */
911b12f907eSHawkins Jiawei     if (n->mac_table.multi_overflow || n->allmulti) {
91224e59cfeSHawkins Jiawei         r = vhost_vdpa_net_load_rx_mode(s, VIRTIO_NET_CTRL_RX_ALLMULTI, 1);
91324e59cfeSHawkins Jiawei         if (unlikely(r < 0)) {
91424e59cfeSHawkins Jiawei             return r;
915b12f907eSHawkins Jiawei         }
916b12f907eSHawkins Jiawei     }
917b12f907eSHawkins Jiawei 
9184fd180c7SHawkins Jiawei     if (!virtio_vdev_has_feature(&n->parent_obj, VIRTIO_NET_F_CTRL_RX_EXTRA)) {
9194fd180c7SHawkins Jiawei         return 0;
9204fd180c7SHawkins Jiawei     }
9214fd180c7SHawkins Jiawei 
9224fd180c7SHawkins Jiawei     /*
9234fd180c7SHawkins Jiawei      * According to virtio_net_reset(), device turns all-unicast mode
9244fd180c7SHawkins Jiawei      * off by default.
9254fd180c7SHawkins Jiawei      *
9264fd180c7SHawkins Jiawei      * Therefore, QEMU should only send this CVQ command if the driver
9274fd180c7SHawkins Jiawei      * sets all-unicast mode on, different from the device's defaults.
9284fd180c7SHawkins Jiawei      *
9294fd180c7SHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
9304fd180c7SHawkins Jiawei      * configuration only at live migration.
9314fd180c7SHawkins Jiawei      */
9324fd180c7SHawkins Jiawei     if (n->alluni) {
93324e59cfeSHawkins Jiawei         r = vhost_vdpa_net_load_rx_mode(s, VIRTIO_NET_CTRL_RX_ALLUNI, 1);
93424e59cfeSHawkins Jiawei         if (r < 0) {
93524e59cfeSHawkins Jiawei             return r;
9364fd180c7SHawkins Jiawei         }
9374fd180c7SHawkins Jiawei     }
9384fd180c7SHawkins Jiawei 
9394fd180c7SHawkins Jiawei     /*
9404fd180c7SHawkins Jiawei      * According to virtio_net_reset(), device turns non-multicast mode
9414fd180c7SHawkins Jiawei      * off by default.
9424fd180c7SHawkins Jiawei      *
9434fd180c7SHawkins Jiawei      * Therefore, QEMU should only send this CVQ command if the driver
9444fd180c7SHawkins Jiawei      * sets non-multicast mode on, different from the device's defaults.
9454fd180c7SHawkins Jiawei      *
9464fd180c7SHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
9474fd180c7SHawkins Jiawei      * configuration only at live migration.
9484fd180c7SHawkins Jiawei      */
9494fd180c7SHawkins Jiawei     if (n->nomulti) {
95024e59cfeSHawkins Jiawei         r = vhost_vdpa_net_load_rx_mode(s, VIRTIO_NET_CTRL_RX_NOMULTI, 1);
95124e59cfeSHawkins Jiawei         if (r < 0) {
95224e59cfeSHawkins Jiawei             return r;
9534fd180c7SHawkins Jiawei         }
9544fd180c7SHawkins Jiawei     }
9554fd180c7SHawkins Jiawei 
9564fd180c7SHawkins Jiawei     /*
9574fd180c7SHawkins Jiawei      * According to virtio_net_reset(), device turns non-unicast mode
9584fd180c7SHawkins Jiawei      * off by default.
9594fd180c7SHawkins Jiawei      *
9604fd180c7SHawkins Jiawei      * Therefore, QEMU should only send this CVQ command if the driver
9614fd180c7SHawkins Jiawei      * sets non-unicast mode on, different from the device's defaults.
9624fd180c7SHawkins Jiawei      *
9634fd180c7SHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
9644fd180c7SHawkins Jiawei      * configuration only at live migration.
9654fd180c7SHawkins Jiawei      */
9664fd180c7SHawkins Jiawei     if (n->nouni) {
96724e59cfeSHawkins Jiawei         r = vhost_vdpa_net_load_rx_mode(s, VIRTIO_NET_CTRL_RX_NOUNI, 1);
96824e59cfeSHawkins Jiawei         if (r < 0) {
96924e59cfeSHawkins Jiawei             return r;
9704fd180c7SHawkins Jiawei         }
9714fd180c7SHawkins Jiawei     }
9724fd180c7SHawkins Jiawei 
9734fd180c7SHawkins Jiawei     /*
9744fd180c7SHawkins Jiawei      * According to virtio_net_reset(), device turns non-broadcast mode
9754fd180c7SHawkins Jiawei      * off by default.
9764fd180c7SHawkins Jiawei      *
9774fd180c7SHawkins Jiawei      * Therefore, QEMU should only send this CVQ command if the driver
9784fd180c7SHawkins Jiawei      * sets non-broadcast mode on, different from the device's defaults.
9794fd180c7SHawkins Jiawei      *
9804fd180c7SHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
9814fd180c7SHawkins Jiawei      * configuration only at live migration.
9824fd180c7SHawkins Jiawei      */
9834fd180c7SHawkins Jiawei     if (n->nobcast) {
98424e59cfeSHawkins Jiawei         r = vhost_vdpa_net_load_rx_mode(s, VIRTIO_NET_CTRL_RX_NOBCAST, 1);
98524e59cfeSHawkins Jiawei         if (r < 0) {
98624e59cfeSHawkins Jiawei             return r;
9874fd180c7SHawkins Jiawei         }
9884fd180c7SHawkins Jiawei     }
9894fd180c7SHawkins Jiawei 
990b12f907eSHawkins Jiawei     return 0;
991b12f907eSHawkins Jiawei }
992b12f907eSHawkins Jiawei 
9938f7e9967SHawkins Jiawei static int vhost_vdpa_net_load_single_vlan(VhostVDPAState *s,
9948f7e9967SHawkins Jiawei                                            const VirtIONet *n,
9958f7e9967SHawkins Jiawei                                            uint16_t vid)
9968f7e9967SHawkins Jiawei {
9978f7e9967SHawkins Jiawei     const struct iovec data = {
9988f7e9967SHawkins Jiawei         .iov_base = &vid,
9998f7e9967SHawkins Jiawei         .iov_len = sizeof(vid),
10008f7e9967SHawkins Jiawei     };
10018f7e9967SHawkins Jiawei     ssize_t dev_written = vhost_vdpa_net_load_cmd(s, VIRTIO_NET_CTRL_VLAN,
10028f7e9967SHawkins Jiawei                                                   VIRTIO_NET_CTRL_VLAN_ADD,
10038f7e9967SHawkins Jiawei                                                   &data, 1);
10048f7e9967SHawkins Jiawei     if (unlikely(dev_written < 0)) {
10058f7e9967SHawkins Jiawei         return dev_written;
10068f7e9967SHawkins Jiawei     }
10078f7e9967SHawkins Jiawei     if (unlikely(*s->status != VIRTIO_NET_OK)) {
10088f7e9967SHawkins Jiawei         return -EIO;
10098f7e9967SHawkins Jiawei     }
10108f7e9967SHawkins Jiawei 
10118f7e9967SHawkins Jiawei     return 0;
10128f7e9967SHawkins Jiawei }
10138f7e9967SHawkins Jiawei 
10148f7e9967SHawkins Jiawei static int vhost_vdpa_net_load_vlan(VhostVDPAState *s,
10158f7e9967SHawkins Jiawei                                     const VirtIONet *n)
10168f7e9967SHawkins Jiawei {
10178f7e9967SHawkins Jiawei     int r;
10188f7e9967SHawkins Jiawei 
10198f7e9967SHawkins Jiawei     if (!virtio_vdev_has_feature(&n->parent_obj, VIRTIO_NET_F_CTRL_VLAN)) {
10208f7e9967SHawkins Jiawei         return 0;
10218f7e9967SHawkins Jiawei     }
10228f7e9967SHawkins Jiawei 
10238f7e9967SHawkins Jiawei     for (int i = 0; i < MAX_VLAN >> 5; i++) {
10248f7e9967SHawkins Jiawei         for (int j = 0; n->vlans[i] && j <= 0x1f; j++) {
10258f7e9967SHawkins Jiawei             if (n->vlans[i] & (1U << j)) {
10268f7e9967SHawkins Jiawei                 r = vhost_vdpa_net_load_single_vlan(s, n, (i << 5) + j);
10278f7e9967SHawkins Jiawei                 if (unlikely(r != 0)) {
10288f7e9967SHawkins Jiawei                     return r;
10298f7e9967SHawkins Jiawei                 }
10308f7e9967SHawkins Jiawei             }
10318f7e9967SHawkins Jiawei         }
10328f7e9967SHawkins Jiawei     }
10338f7e9967SHawkins Jiawei 
10348f7e9967SHawkins Jiawei     return 0;
10358f7e9967SHawkins Jiawei }
10368f7e9967SHawkins Jiawei 
1037f3fada59SEugenio Pérez static int vhost_vdpa_net_cvq_load(NetClientState *nc)
1038dd036d8dSEugenio Pérez {
1039dd036d8dSEugenio Pérez     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
1040f73c0c43SEugenio Pérez     struct vhost_vdpa *v = &s->vhost_vdpa;
1041dd036d8dSEugenio Pérez     const VirtIONet *n;
1042f73c0c43SEugenio Pérez     int r;
1043dd036d8dSEugenio Pérez 
1044dd036d8dSEugenio Pérez     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
1045dd036d8dSEugenio Pérez 
10466c482547SEugenio Pérez     vhost_vdpa_set_vring_ready(v, v->dev->vq_index);
1047dd036d8dSEugenio Pérez 
10486c482547SEugenio Pérez     if (v->shadow_vqs_enabled) {
1049dd036d8dSEugenio Pérez         n = VIRTIO_NET(v->dev->vdev);
1050f73c0c43SEugenio Pérez         r = vhost_vdpa_net_load_mac(s, n);
1051f73c0c43SEugenio Pérez         if (unlikely(r < 0)) {
1052f73c0c43SEugenio Pérez             return r;
1053dd036d8dSEugenio Pérez         }
1054f64c7cdaSEugenio Pérez         r = vhost_vdpa_net_load_mq(s, n);
1055f64c7cdaSEugenio Pérez         if (unlikely(r)) {
1056f64c7cdaSEugenio Pérez             return r;
1057f64c7cdaSEugenio Pérez         }
10580b58d368SHawkins Jiawei         r = vhost_vdpa_net_load_offloads(s, n);
10590b58d368SHawkins Jiawei         if (unlikely(r)) {
10600b58d368SHawkins Jiawei             return r;
10610b58d368SHawkins Jiawei         }
1062b12f907eSHawkins Jiawei         r = vhost_vdpa_net_load_rx(s, n);
1063b12f907eSHawkins Jiawei         if (unlikely(r)) {
1064b12f907eSHawkins Jiawei             return r;
1065b12f907eSHawkins Jiawei         }
10668f7e9967SHawkins Jiawei         r = vhost_vdpa_net_load_vlan(s, n);
10678f7e9967SHawkins Jiawei         if (unlikely(r)) {
10688f7e9967SHawkins Jiawei             return r;
10698f7e9967SHawkins Jiawei         }
10706c482547SEugenio Pérez     }
10716c482547SEugenio Pérez 
10726c482547SEugenio Pérez     for (int i = 0; i < v->dev->vq_index; ++i) {
10736c482547SEugenio Pérez         vhost_vdpa_set_vring_ready(v, i);
10746c482547SEugenio Pérez     }
1075dd036d8dSEugenio Pérez 
1076dd036d8dSEugenio Pérez     return 0;
1077dd036d8dSEugenio Pérez }
1078dd036d8dSEugenio Pérez 
1079f8972b56SEugenio Pérez static NetClientInfo net_vhost_vdpa_cvq_info = {
1080f8972b56SEugenio Pérez     .type = NET_CLIENT_DRIVER_VHOST_VDPA,
1081f8972b56SEugenio Pérez     .size = sizeof(VhostVDPAState),
1082f8972b56SEugenio Pérez     .receive = vhost_vdpa_receive,
10837a7f87e9SEugenio Pérez     .start = vhost_vdpa_net_cvq_start,
1084f3fada59SEugenio Pérez     .load = vhost_vdpa_net_cvq_load,
10857a7f87e9SEugenio Pérez     .stop = vhost_vdpa_net_cvq_stop,
1086f8972b56SEugenio Pérez     .cleanup = vhost_vdpa_cleanup,
1087f8972b56SEugenio Pérez     .has_vnet_hdr = vhost_vdpa_has_vnet_hdr,
1088f8972b56SEugenio Pérez     .has_ufo = vhost_vdpa_has_ufo,
1089f8972b56SEugenio Pérez     .check_peer_type = vhost_vdpa_check_peer_type,
1090f8972b56SEugenio Pérez };
1091f8972b56SEugenio Pérez 
1092fee364e4SHawkins Jiawei /*
1093fee364e4SHawkins Jiawei  * Forward the excessive VIRTIO_NET_CTRL_MAC_TABLE_SET CVQ command to
1094fee364e4SHawkins Jiawei  * vdpa device.
1095fee364e4SHawkins Jiawei  *
1096fee364e4SHawkins Jiawei  * Considering that QEMU cannot send the entire filter table to the
1097fee364e4SHawkins Jiawei  * vdpa device, it should send the VIRTIO_NET_CTRL_RX_PROMISC CVQ
1098fee364e4SHawkins Jiawei  * command to enable promiscuous mode to receive all packets,
1099fee364e4SHawkins Jiawei  * according to VirtIO standard, "Since there are no guarantees,
1100fee364e4SHawkins Jiawei  * it can use a hash filter or silently switch to allmulti or
1101fee364e4SHawkins Jiawei  * promiscuous mode if it is given too many addresses.".
1102fee364e4SHawkins Jiawei  *
1103fee364e4SHawkins Jiawei  * Since QEMU ignores MAC addresses beyond `MAC_TABLE_ENTRIES` and
1104fee364e4SHawkins Jiawei  * marks `n->mac_table.x_overflow` accordingly, it should have
1105fee364e4SHawkins Jiawei  * the same effect on the device model to receive
1106fee364e4SHawkins Jiawei  * (`MAC_TABLE_ENTRIES` + 1) or more non-multicast MAC addresses.
1107fee364e4SHawkins Jiawei  * The same applies to multicast MAC addresses.
1108fee364e4SHawkins Jiawei  *
1109fee364e4SHawkins Jiawei  * Therefore, QEMU can provide the device model with a fake
1110fee364e4SHawkins Jiawei  * VIRTIO_NET_CTRL_MAC_TABLE_SET command with (`MAC_TABLE_ENTRIES` + 1)
1111fee364e4SHawkins Jiawei  * non-multicast MAC addresses and (`MAC_TABLE_ENTRIES` + 1) multicast
1112fee364e4SHawkins Jiawei  * MAC addresses. This ensures that the device model marks
1113fee364e4SHawkins Jiawei  * `n->mac_table.uni_overflow` and `n->mac_table.multi_overflow`,
1114fee364e4SHawkins Jiawei  * allowing all packets to be received, which aligns with the
1115fee364e4SHawkins Jiawei  * state of the vdpa device.
1116fee364e4SHawkins Jiawei  */
1117fee364e4SHawkins Jiawei static int vhost_vdpa_net_excessive_mac_filter_cvq_add(VhostVDPAState *s,
1118fee364e4SHawkins Jiawei                                                        VirtQueueElement *elem,
1119327dedb8SHawkins Jiawei                                                        struct iovec *out,
1120327dedb8SHawkins Jiawei                                                        const struct iovec *in)
1121fee364e4SHawkins Jiawei {
1122fee364e4SHawkins Jiawei     struct virtio_net_ctrl_mac mac_data, *mac_ptr;
1123fee364e4SHawkins Jiawei     struct virtio_net_ctrl_hdr *hdr_ptr;
1124fee364e4SHawkins Jiawei     uint32_t cursor;
1125fee364e4SHawkins Jiawei     ssize_t r;
1126327dedb8SHawkins Jiawei     uint8_t on = 1;
1127fee364e4SHawkins Jiawei 
1128fee364e4SHawkins Jiawei     /* parse the non-multicast MAC address entries from CVQ command */
1129fee364e4SHawkins Jiawei     cursor = sizeof(*hdr_ptr);
1130fee364e4SHawkins Jiawei     r = iov_to_buf(elem->out_sg, elem->out_num, cursor,
1131fee364e4SHawkins Jiawei                    &mac_data, sizeof(mac_data));
1132fee364e4SHawkins Jiawei     if (unlikely(r != sizeof(mac_data))) {
1133fee364e4SHawkins Jiawei         /*
1134fee364e4SHawkins Jiawei          * If the CVQ command is invalid, we should simulate the vdpa device
1135fee364e4SHawkins Jiawei          * to reject the VIRTIO_NET_CTRL_MAC_TABLE_SET CVQ command
1136fee364e4SHawkins Jiawei          */
1137fee364e4SHawkins Jiawei         *s->status = VIRTIO_NET_ERR;
1138fee364e4SHawkins Jiawei         return sizeof(*s->status);
1139fee364e4SHawkins Jiawei     }
1140fee364e4SHawkins Jiawei     cursor += sizeof(mac_data) + le32_to_cpu(mac_data.entries) * ETH_ALEN;
1141fee364e4SHawkins Jiawei 
1142fee364e4SHawkins Jiawei     /* parse the multicast MAC address entries from CVQ command */
1143fee364e4SHawkins Jiawei     r = iov_to_buf(elem->out_sg, elem->out_num, cursor,
1144fee364e4SHawkins Jiawei                    &mac_data, sizeof(mac_data));
1145fee364e4SHawkins Jiawei     if (r != sizeof(mac_data)) {
1146fee364e4SHawkins Jiawei         /*
1147fee364e4SHawkins Jiawei          * If the CVQ command is invalid, we should simulate the vdpa device
1148fee364e4SHawkins Jiawei          * to reject the VIRTIO_NET_CTRL_MAC_TABLE_SET CVQ command
1149fee364e4SHawkins Jiawei          */
1150fee364e4SHawkins Jiawei         *s->status = VIRTIO_NET_ERR;
1151fee364e4SHawkins Jiawei         return sizeof(*s->status);
1152fee364e4SHawkins Jiawei     }
1153fee364e4SHawkins Jiawei     cursor += sizeof(mac_data) + le32_to_cpu(mac_data.entries) * ETH_ALEN;
1154fee364e4SHawkins Jiawei 
1155fee364e4SHawkins Jiawei     /* validate the CVQ command */
1156fee364e4SHawkins Jiawei     if (iov_size(elem->out_sg, elem->out_num) != cursor) {
1157fee364e4SHawkins Jiawei         /*
1158fee364e4SHawkins Jiawei          * If the CVQ command is invalid, we should simulate the vdpa device
1159fee364e4SHawkins Jiawei          * to reject the VIRTIO_NET_CTRL_MAC_TABLE_SET CVQ command
1160fee364e4SHawkins Jiawei          */
1161fee364e4SHawkins Jiawei         *s->status = VIRTIO_NET_ERR;
1162fee364e4SHawkins Jiawei         return sizeof(*s->status);
1163fee364e4SHawkins Jiawei     }
1164fee364e4SHawkins Jiawei 
1165fee364e4SHawkins Jiawei     /*
1166fee364e4SHawkins Jiawei      * According to VirtIO standard, "Since there are no guarantees,
1167fee364e4SHawkins Jiawei      * it can use a hash filter or silently switch to allmulti or
1168fee364e4SHawkins Jiawei      * promiscuous mode if it is given too many addresses.".
1169fee364e4SHawkins Jiawei      *
1170fee364e4SHawkins Jiawei      * Therefore, considering that QEMU is unable to send the entire
1171fee364e4SHawkins Jiawei      * filter table to the vdpa device, it should send the
1172fee364e4SHawkins Jiawei      * VIRTIO_NET_CTRL_RX_PROMISC CVQ command to enable promiscuous mode
1173fee364e4SHawkins Jiawei      */
1174327dedb8SHawkins Jiawei     hdr_ptr = out->iov_base;
1175327dedb8SHawkins Jiawei     out->iov_len = sizeof(*hdr_ptr) + sizeof(on);
1176327dedb8SHawkins Jiawei 
1177327dedb8SHawkins Jiawei     hdr_ptr->class = VIRTIO_NET_CTRL_RX;
1178327dedb8SHawkins Jiawei     hdr_ptr->cmd = VIRTIO_NET_CTRL_RX_PROMISC;
1179327dedb8SHawkins Jiawei     iov_from_buf(out, 1, sizeof(*hdr_ptr), &on, sizeof(on));
1180327dedb8SHawkins Jiawei     r = vhost_vdpa_net_cvq_add(s, out, 1, in, 1);
1181fee364e4SHawkins Jiawei     if (unlikely(r < 0)) {
1182fee364e4SHawkins Jiawei         return r;
1183fee364e4SHawkins Jiawei     }
1184*a864a321SHawkins Jiawei 
1185*a864a321SHawkins Jiawei     /*
1186*a864a321SHawkins Jiawei      * We can poll here since we've had BQL from the time
1187*a864a321SHawkins Jiawei      * we sent the descriptor.
1188*a864a321SHawkins Jiawei      */
1189*a864a321SHawkins Jiawei     r = vhost_vdpa_net_svq_poll(s, 1);
1190*a864a321SHawkins Jiawei     if (unlikely(r < sizeof(*s->status))) {
1191*a864a321SHawkins Jiawei         return r;
1192*a864a321SHawkins Jiawei     }
1193fee364e4SHawkins Jiawei     if (*s->status != VIRTIO_NET_OK) {
1194fee364e4SHawkins Jiawei         return sizeof(*s->status);
1195fee364e4SHawkins Jiawei     }
1196fee364e4SHawkins Jiawei 
1197fee364e4SHawkins Jiawei     /*
1198fee364e4SHawkins Jiawei      * QEMU should also send a fake VIRTIO_NET_CTRL_MAC_TABLE_SET CVQ
1199fee364e4SHawkins Jiawei      * command to the device model, including (`MAC_TABLE_ENTRIES` + 1)
1200fee364e4SHawkins Jiawei      * non-multicast MAC addresses and (`MAC_TABLE_ENTRIES` + 1)
1201fee364e4SHawkins Jiawei      * multicast MAC addresses.
1202fee364e4SHawkins Jiawei      *
1203fee364e4SHawkins Jiawei      * By doing so, the device model can mark `n->mac_table.uni_overflow`
1204fee364e4SHawkins Jiawei      * and `n->mac_table.multi_overflow`, enabling all packets to be
1205fee364e4SHawkins Jiawei      * received, which aligns with the state of the vdpa device.
1206fee364e4SHawkins Jiawei      */
1207fee364e4SHawkins Jiawei     cursor = 0;
1208fee364e4SHawkins Jiawei     uint32_t fake_uni_entries = MAC_TABLE_ENTRIES + 1,
1209fee364e4SHawkins Jiawei              fake_mul_entries = MAC_TABLE_ENTRIES + 1,
1210fee364e4SHawkins Jiawei              fake_cvq_size = sizeof(struct virtio_net_ctrl_hdr) +
1211fee364e4SHawkins Jiawei                              sizeof(mac_data) + fake_uni_entries * ETH_ALEN +
1212fee364e4SHawkins Jiawei                              sizeof(mac_data) + fake_mul_entries * ETH_ALEN;
1213fee364e4SHawkins Jiawei 
1214fee364e4SHawkins Jiawei     assert(fake_cvq_size < vhost_vdpa_net_cvq_cmd_page_len());
1215fee364e4SHawkins Jiawei     out->iov_len = fake_cvq_size;
1216fee364e4SHawkins Jiawei 
1217fee364e4SHawkins Jiawei     /* pack the header for fake CVQ command */
1218fee364e4SHawkins Jiawei     hdr_ptr = out->iov_base + cursor;
1219fee364e4SHawkins Jiawei     hdr_ptr->class = VIRTIO_NET_CTRL_MAC;
1220fee364e4SHawkins Jiawei     hdr_ptr->cmd = VIRTIO_NET_CTRL_MAC_TABLE_SET;
1221fee364e4SHawkins Jiawei     cursor += sizeof(*hdr_ptr);
1222fee364e4SHawkins Jiawei 
1223fee364e4SHawkins Jiawei     /*
1224fee364e4SHawkins Jiawei      * Pack the non-multicast MAC addresses part for fake CVQ command.
1225fee364e4SHawkins Jiawei      *
1226fee364e4SHawkins Jiawei      * According to virtio_net_handle_mac(), QEMU doesn't verify the MAC
12270a19d879SMichael Tokarev      * addresses provided in CVQ command. Therefore, only the entries
1228fee364e4SHawkins Jiawei      * field need to be prepared in the CVQ command.
1229fee364e4SHawkins Jiawei      */
1230fee364e4SHawkins Jiawei     mac_ptr = out->iov_base + cursor;
1231fee364e4SHawkins Jiawei     mac_ptr->entries = cpu_to_le32(fake_uni_entries);
1232fee364e4SHawkins Jiawei     cursor += sizeof(*mac_ptr) + fake_uni_entries * ETH_ALEN;
1233fee364e4SHawkins Jiawei 
1234fee364e4SHawkins Jiawei     /*
1235fee364e4SHawkins Jiawei      * Pack the multicast MAC addresses part for fake CVQ command.
1236fee364e4SHawkins Jiawei      *
1237fee364e4SHawkins Jiawei      * According to virtio_net_handle_mac(), QEMU doesn't verify the MAC
12380a19d879SMichael Tokarev      * addresses provided in CVQ command. Therefore, only the entries
1239fee364e4SHawkins Jiawei      * field need to be prepared in the CVQ command.
1240fee364e4SHawkins Jiawei      */
1241fee364e4SHawkins Jiawei     mac_ptr = out->iov_base + cursor;
1242fee364e4SHawkins Jiawei     mac_ptr->entries = cpu_to_le32(fake_mul_entries);
1243fee364e4SHawkins Jiawei 
1244fee364e4SHawkins Jiawei     /*
1245fee364e4SHawkins Jiawei      * Simulating QEMU poll a vdpa device used buffer
1246fee364e4SHawkins Jiawei      * for VIRTIO_NET_CTRL_MAC_TABLE_SET CVQ command
1247fee364e4SHawkins Jiawei      */
1248fee364e4SHawkins Jiawei     return sizeof(*s->status);
1249fee364e4SHawkins Jiawei }
1250fee364e4SHawkins Jiawei 
12512df4dd31SEugenio Pérez /**
12522df4dd31SEugenio Pérez  * Validate and copy control virtqueue commands.
12532df4dd31SEugenio Pérez  *
12542df4dd31SEugenio Pérez  * Following QEMU guidelines, we offer a copy of the buffers to the device to
12552df4dd31SEugenio Pérez  * prevent TOCTOU bugs.
1256bd907ae4SEugenio Pérez  */
1257bd907ae4SEugenio Pérez static int vhost_vdpa_net_handle_ctrl_avail(VhostShadowVirtqueue *svq,
1258bd907ae4SEugenio Pérez                                             VirtQueueElement *elem,
1259bd907ae4SEugenio Pérez                                             void *opaque)
1260bd907ae4SEugenio Pérez {
12612df4dd31SEugenio Pérez     VhostVDPAState *s = opaque;
1262be4278b6SEugenio Pérez     size_t in_len;
126345c41018SHawkins Jiawei     const struct virtio_net_ctrl_hdr *ctrl;
1264bd907ae4SEugenio Pérez     virtio_net_ctrl_ack status = VIRTIO_NET_ERR;
12657a7f87e9SEugenio Pérez     /* Out buffer sent to both the vdpa device and the device model */
12667a7f87e9SEugenio Pérez     struct iovec out = {
12677a7f87e9SEugenio Pérez         .iov_base = s->cvq_cmd_out_buffer,
12687a7f87e9SEugenio Pérez     };
12692df4dd31SEugenio Pérez     /* in buffer used for device model */
12700e6bff0dSHawkins Jiawei     const struct iovec model_in = {
12712df4dd31SEugenio Pérez         .iov_base = &status,
12722df4dd31SEugenio Pérez         .iov_len = sizeof(status),
12732df4dd31SEugenio Pérez     };
12740e6bff0dSHawkins Jiawei     /* in buffer used for vdpa device */
12750e6bff0dSHawkins Jiawei     const struct iovec vdpa_in = {
12760e6bff0dSHawkins Jiawei         .iov_base = s->status,
12770e6bff0dSHawkins Jiawei         .iov_len = sizeof(*s->status),
12780e6bff0dSHawkins Jiawei     };
1279be4278b6SEugenio Pérez     ssize_t dev_written = -EINVAL;
1280bd907ae4SEugenio Pérez 
12817a7f87e9SEugenio Pérez     out.iov_len = iov_to_buf(elem->out_sg, elem->out_num, 0,
12827a7f87e9SEugenio Pérez                              s->cvq_cmd_out_buffer,
1283fee364e4SHawkins Jiawei                              vhost_vdpa_net_cvq_cmd_page_len());
128445c41018SHawkins Jiawei 
128545c41018SHawkins Jiawei     ctrl = s->cvq_cmd_out_buffer;
128645c41018SHawkins Jiawei     if (ctrl->class == VIRTIO_NET_CTRL_ANNOUNCE) {
12873f9a3eebSEugenio Pérez         /*
12883f9a3eebSEugenio Pérez          * Guest announce capability is emulated by qemu, so don't forward to
12893f9a3eebSEugenio Pérez          * the device.
12903f9a3eebSEugenio Pérez          */
12913f9a3eebSEugenio Pérez         dev_written = sizeof(status);
12923f9a3eebSEugenio Pérez         *s->status = VIRTIO_NET_OK;
1293fee364e4SHawkins Jiawei     } else if (unlikely(ctrl->class == VIRTIO_NET_CTRL_MAC &&
1294fee364e4SHawkins Jiawei                         ctrl->cmd == VIRTIO_NET_CTRL_MAC_TABLE_SET &&
1295fee364e4SHawkins Jiawei                         iov_size(elem->out_sg, elem->out_num) > out.iov_len)) {
1296fee364e4SHawkins Jiawei         /*
1297fee364e4SHawkins Jiawei          * Due to the size limitation of the out buffer sent to the vdpa device,
1298fee364e4SHawkins Jiawei          * which is determined by vhost_vdpa_net_cvq_cmd_page_len(), excessive
1299fee364e4SHawkins Jiawei          * MAC addresses set by the driver for the filter table can cause
1300fee364e4SHawkins Jiawei          * truncation of the CVQ command in QEMU. As a result, the vdpa device
1301fee364e4SHawkins Jiawei          * rejects the flawed CVQ command.
1302fee364e4SHawkins Jiawei          *
1303fee364e4SHawkins Jiawei          * Therefore, QEMU must handle this situation instead of sending
13040a19d879SMichael Tokarev          * the CVQ command directly.
1305fee364e4SHawkins Jiawei          */
1306fee364e4SHawkins Jiawei         dev_written = vhost_vdpa_net_excessive_mac_filter_cvq_add(s, elem,
1307327dedb8SHawkins Jiawei                                                             &out, &vdpa_in);
1308fee364e4SHawkins Jiawei         if (unlikely(dev_written < 0)) {
1309fee364e4SHawkins Jiawei             goto out;
1310fee364e4SHawkins Jiawei         }
13113f9a3eebSEugenio Pérez     } else {
1312*a864a321SHawkins Jiawei         ssize_t r;
1313*a864a321SHawkins Jiawei         r = vhost_vdpa_net_cvq_add(s, &out, 1, &vdpa_in, 1);
1314*a864a321SHawkins Jiawei         if (unlikely(r < 0)) {
1315*a864a321SHawkins Jiawei             dev_written = r;
1316bd907ae4SEugenio Pérez             goto out;
1317bd907ae4SEugenio Pérez         }
1318*a864a321SHawkins Jiawei 
1319*a864a321SHawkins Jiawei         /*
1320*a864a321SHawkins Jiawei          * We can poll here since we've had BQL from the time
1321*a864a321SHawkins Jiawei          * we sent the descriptor.
1322*a864a321SHawkins Jiawei          */
1323*a864a321SHawkins Jiawei         dev_written = vhost_vdpa_net_svq_poll(s, 1);
13243f9a3eebSEugenio Pérez     }
1325bd907ae4SEugenio Pérez 
1326bd907ae4SEugenio Pérez     if (unlikely(dev_written < sizeof(status))) {
1327bd907ae4SEugenio Pérez         error_report("Insufficient written data (%zu)", dev_written);
13282df4dd31SEugenio Pérez         goto out;
13292df4dd31SEugenio Pérez     }
13302df4dd31SEugenio Pérez 
133117fb889fSEugenio Pérez     if (*s->status != VIRTIO_NET_OK) {
1332d45243bcSEugenio Pérez         goto out;
13332df4dd31SEugenio Pérez     }
13342df4dd31SEugenio Pérez 
13352df4dd31SEugenio Pérez     status = VIRTIO_NET_ERR;
13360e6bff0dSHawkins Jiawei     virtio_net_handle_ctrl_iov(svq->vdev, &model_in, 1, &out, 1);
13372df4dd31SEugenio Pérez     if (status != VIRTIO_NET_OK) {
13382df4dd31SEugenio Pérez         error_report("Bad CVQ processing in model");
1339bd907ae4SEugenio Pérez     }
1340bd907ae4SEugenio Pérez 
1341bd907ae4SEugenio Pérez out:
1342bd907ae4SEugenio Pérez     in_len = iov_from_buf(elem->in_sg, elem->in_num, 0, &status,
1343bd907ae4SEugenio Pérez                           sizeof(status));
1344bd907ae4SEugenio Pérez     if (unlikely(in_len < sizeof(status))) {
1345bd907ae4SEugenio Pérez         error_report("Bad device CVQ written length");
1346bd907ae4SEugenio Pérez     }
1347bd907ae4SEugenio Pérez     vhost_svq_push_elem(svq, elem, MIN(in_len, sizeof(status)));
1348031b1abaSHawkins Jiawei     /*
1349031b1abaSHawkins Jiawei      * `elem` belongs to vhost_vdpa_net_handle_ctrl_avail() only when
1350031b1abaSHawkins Jiawei      * the function successfully forwards the CVQ command, indicated
1351031b1abaSHawkins Jiawei      * by a non-negative value of `dev_written`. Otherwise, it still
1352031b1abaSHawkins Jiawei      * belongs to SVQ.
1353031b1abaSHawkins Jiawei      * This function should only free the `elem` when it owns.
1354031b1abaSHawkins Jiawei      */
1355031b1abaSHawkins Jiawei     if (dev_written >= 0) {
1356bd907ae4SEugenio Pérez         g_free(elem);
1357031b1abaSHawkins Jiawei     }
1358be4278b6SEugenio Pérez     return dev_written < 0 ? dev_written : 0;
1359bd907ae4SEugenio Pérez }
1360bd907ae4SEugenio Pérez 
1361bd907ae4SEugenio Pérez static const VhostShadowVirtqueueOps vhost_vdpa_net_svq_ops = {
1362bd907ae4SEugenio Pérez     .avail_handler = vhost_vdpa_net_handle_ctrl_avail,
1363bd907ae4SEugenio Pérez };
1364bd907ae4SEugenio Pérez 
1365152128d6SEugenio Pérez /**
1366152128d6SEugenio Pérez  * Probe if CVQ is isolated
1367152128d6SEugenio Pérez  *
1368152128d6SEugenio Pérez  * @device_fd         The vdpa device fd
1369152128d6SEugenio Pérez  * @features          Features offered by the device.
1370152128d6SEugenio Pérez  * @cvq_index         The control vq pair index
1371152128d6SEugenio Pérez  *
1372152128d6SEugenio Pérez  * Returns <0 in case of failure, 0 if false and 1 if true.
1373152128d6SEugenio Pérez  */
1374152128d6SEugenio Pérez static int vhost_vdpa_probe_cvq_isolation(int device_fd, uint64_t features,
1375152128d6SEugenio Pérez                                           int cvq_index, Error **errp)
1376152128d6SEugenio Pérez {
1377152128d6SEugenio Pérez     uint64_t backend_features;
1378152128d6SEugenio Pérez     int64_t cvq_group;
1379152128d6SEugenio Pérez     uint8_t status = VIRTIO_CONFIG_S_ACKNOWLEDGE |
1380845ec38aSEugenio Pérez                      VIRTIO_CONFIG_S_DRIVER;
1381152128d6SEugenio Pérez     int r;
1382152128d6SEugenio Pérez 
1383152128d6SEugenio Pérez     ERRP_GUARD();
1384152128d6SEugenio Pérez 
1385152128d6SEugenio Pérez     r = ioctl(device_fd, VHOST_GET_BACKEND_FEATURES, &backend_features);
1386152128d6SEugenio Pérez     if (unlikely(r < 0)) {
1387152128d6SEugenio Pérez         error_setg_errno(errp, errno, "Cannot get vdpa backend_features");
1388152128d6SEugenio Pérez         return r;
1389152128d6SEugenio Pérez     }
1390152128d6SEugenio Pérez 
1391152128d6SEugenio Pérez     if (!(backend_features & BIT_ULL(VHOST_BACKEND_F_IOTLB_ASID))) {
1392152128d6SEugenio Pérez         return 0;
1393152128d6SEugenio Pérez     }
1394152128d6SEugenio Pérez 
1395845ec38aSEugenio Pérez     r = ioctl(device_fd, VHOST_VDPA_SET_STATUS, &status);
1396152128d6SEugenio Pérez     if (unlikely(r)) {
1397845ec38aSEugenio Pérez         error_setg_errno(errp, -r, "Cannot set device status");
1398f1085882SEugenio Pérez         goto out;
1399152128d6SEugenio Pérez     }
1400152128d6SEugenio Pérez 
1401845ec38aSEugenio Pérez     r = ioctl(device_fd, VHOST_SET_FEATURES, &features);
1402845ec38aSEugenio Pérez     if (unlikely(r)) {
1403845ec38aSEugenio Pérez         error_setg_errno(errp, -r, "Cannot set features");
1404845ec38aSEugenio Pérez         goto out;
1405845ec38aSEugenio Pérez     }
1406845ec38aSEugenio Pérez 
1407845ec38aSEugenio Pérez     status |= VIRTIO_CONFIG_S_FEATURES_OK;
1408152128d6SEugenio Pérez     r = ioctl(device_fd, VHOST_VDPA_SET_STATUS, &status);
1409152128d6SEugenio Pérez     if (unlikely(r)) {
1410845ec38aSEugenio Pérez         error_setg_errno(errp, -r, "Cannot set device status");
1411152128d6SEugenio Pérez         goto out;
1412152128d6SEugenio Pérez     }
1413152128d6SEugenio Pérez 
1414152128d6SEugenio Pérez     cvq_group = vhost_vdpa_get_vring_group(device_fd, cvq_index, errp);
1415152128d6SEugenio Pérez     if (unlikely(cvq_group < 0)) {
1416152128d6SEugenio Pérez         if (cvq_group != -ENOTSUP) {
1417152128d6SEugenio Pérez             r = cvq_group;
1418152128d6SEugenio Pérez             goto out;
1419152128d6SEugenio Pérez         }
1420152128d6SEugenio Pérez 
1421152128d6SEugenio Pérez         /*
1422152128d6SEugenio Pérez          * The kernel report VHOST_BACKEND_F_IOTLB_ASID if the vdpa frontend
1423152128d6SEugenio Pérez          * support ASID even if the parent driver does not.  The CVQ cannot be
1424152128d6SEugenio Pérez          * isolated in this case.
1425152128d6SEugenio Pérez          */
1426152128d6SEugenio Pérez         error_free(*errp);
1427152128d6SEugenio Pérez         *errp = NULL;
1428152128d6SEugenio Pérez         r = 0;
1429152128d6SEugenio Pérez         goto out;
1430152128d6SEugenio Pérez     }
1431152128d6SEugenio Pérez 
1432152128d6SEugenio Pérez     for (int i = 0; i < cvq_index; ++i) {
1433152128d6SEugenio Pérez         int64_t group = vhost_vdpa_get_vring_group(device_fd, i, errp);
1434152128d6SEugenio Pérez         if (unlikely(group < 0)) {
1435152128d6SEugenio Pérez             r = group;
1436152128d6SEugenio Pérez             goto out;
1437152128d6SEugenio Pérez         }
1438152128d6SEugenio Pérez 
1439152128d6SEugenio Pérez         if (group == (int64_t)cvq_group) {
1440152128d6SEugenio Pérez             r = 0;
1441152128d6SEugenio Pérez             goto out;
1442152128d6SEugenio Pérez         }
1443152128d6SEugenio Pérez     }
1444152128d6SEugenio Pérez 
1445152128d6SEugenio Pérez     r = 1;
1446152128d6SEugenio Pérez 
1447152128d6SEugenio Pérez out:
1448152128d6SEugenio Pérez     status = 0;
1449152128d6SEugenio Pérez     ioctl(device_fd, VHOST_VDPA_SET_STATUS, &status);
1450152128d6SEugenio Pérez     return r;
1451152128d6SEugenio Pérez }
1452152128d6SEugenio Pérez 
1453654790b6SJason Wang static NetClientState *net_vhost_vdpa_init(NetClientState *peer,
1454654790b6SJason Wang                                        const char *device,
1455654790b6SJason Wang                                        const char *name,
145640237840SJason Wang                                        int vdpa_device_fd,
145740237840SJason Wang                                        int queue_pair_index,
145840237840SJason Wang                                        int nvqs,
14591576dbb5SEugenio Pérez                                        bool is_datapath,
14601576dbb5SEugenio Pérez                                        bool svq,
14615c1ebd4cSEugenio Pérez                                        struct vhost_vdpa_iova_range iova_range,
1462152128d6SEugenio Pérez                                        uint64_t features,
1463152128d6SEugenio Pérez                                        Error **errp)
14641e0a84eaSCindy Lu {
14651e0a84eaSCindy Lu     NetClientState *nc = NULL;
14661e0a84eaSCindy Lu     VhostVDPAState *s;
14671e0a84eaSCindy Lu     int ret = 0;
14681e0a84eaSCindy Lu     assert(name);
1469e77db790SStefan Hajnoczi     int cvq_isolated = 0;
1470152128d6SEugenio Pérez 
147140237840SJason Wang     if (is_datapath) {
147240237840SJason Wang         nc = qemu_new_net_client(&net_vhost_vdpa_info, peer, device,
147340237840SJason Wang                                  name);
147440237840SJason Wang     } else {
1475152128d6SEugenio Pérez         cvq_isolated = vhost_vdpa_probe_cvq_isolation(vdpa_device_fd, features,
1476152128d6SEugenio Pérez                                                       queue_pair_index * 2,
1477152128d6SEugenio Pérez                                                       errp);
1478152128d6SEugenio Pérez         if (unlikely(cvq_isolated < 0)) {
1479152128d6SEugenio Pérez             return NULL;
1480152128d6SEugenio Pérez         }
1481152128d6SEugenio Pérez 
1482f8972b56SEugenio Pérez         nc = qemu_new_net_control_client(&net_vhost_vdpa_cvq_info, peer,
148340237840SJason Wang                                          device, name);
148440237840SJason Wang     }
148553b85d95SLaurent Vivier     qemu_set_info_str(nc, TYPE_VHOST_VDPA);
14861e0a84eaSCindy Lu     s = DO_UPCAST(VhostVDPAState, nc, nc);
14877327813dSJason Wang 
14881e0a84eaSCindy Lu     s->vhost_vdpa.device_fd = vdpa_device_fd;
148940237840SJason Wang     s->vhost_vdpa.index = queue_pair_index;
14907f211a28SEugenio Pérez     s->always_svq = svq;
149169498430SEugenio Pérez     s->migration_state.notify = vdpa_net_migration_state_notifier;
14921576dbb5SEugenio Pérez     s->vhost_vdpa.shadow_vqs_enabled = svq;
1493a585fad2SEugenio Pérez     s->vhost_vdpa.iova_range = iova_range;
14946188d78aSEugenio Pérez     s->vhost_vdpa.shadow_data = svq;
14955c1ebd4cSEugenio Pérez     if (queue_pair_index == 0) {
14965c1ebd4cSEugenio Pérez         vhost_vdpa_net_valid_svq_features(features,
14975c1ebd4cSEugenio Pérez                                           &s->vhost_vdpa.migration_blocker);
14985c1ebd4cSEugenio Pérez     } else if (!is_datapath) {
1499babf8b87SEugenio Pérez         s->cvq_cmd_out_buffer = mmap(NULL, vhost_vdpa_net_cvq_cmd_page_len(),
1500babf8b87SEugenio Pérez                                      PROT_READ | PROT_WRITE,
1501babf8b87SEugenio Pérez                                      MAP_SHARED | MAP_ANONYMOUS, -1, 0);
1502babf8b87SEugenio Pérez         s->status = mmap(NULL, vhost_vdpa_net_cvq_cmd_page_len(),
1503babf8b87SEugenio Pérez                          PROT_READ | PROT_WRITE, MAP_SHARED | MAP_ANONYMOUS,
1504babf8b87SEugenio Pérez                          -1, 0);
15052df4dd31SEugenio Pérez 
1506bd907ae4SEugenio Pérez         s->vhost_vdpa.shadow_vq_ops = &vhost_vdpa_net_svq_ops;
1507bd907ae4SEugenio Pérez         s->vhost_vdpa.shadow_vq_ops_opaque = s;
1508152128d6SEugenio Pérez         s->cvq_isolated = cvq_isolated;
15098bc0049eSEugenio Pérez     }
151040237840SJason Wang     ret = vhost_vdpa_add(nc, (void *)&s->vhost_vdpa, queue_pair_index, nvqs);
151174af5eecSJason Wang     if (ret) {
151274af5eecSJason Wang         qemu_del_net_client(nc);
1513654790b6SJason Wang         return NULL;
151474af5eecSJason Wang     }
1515654790b6SJason Wang     return nc;
15161e0a84eaSCindy Lu }
15171e0a84eaSCindy Lu 
15188170ab3fSEugenio Pérez static int vhost_vdpa_get_features(int fd, uint64_t *features, Error **errp)
15198170ab3fSEugenio Pérez {
15208170ab3fSEugenio Pérez     int ret = ioctl(fd, VHOST_GET_FEATURES, features);
15218170ab3fSEugenio Pérez     if (unlikely(ret < 0)) {
15228170ab3fSEugenio Pérez         error_setg_errno(errp, errno,
15238170ab3fSEugenio Pérez                          "Fail to query features from vhost-vDPA device");
15248170ab3fSEugenio Pérez     }
15258170ab3fSEugenio Pérez     return ret;
15268170ab3fSEugenio Pérez }
15278170ab3fSEugenio Pérez 
15288170ab3fSEugenio Pérez static int vhost_vdpa_get_max_queue_pairs(int fd, uint64_t features,
15298170ab3fSEugenio Pérez                                           int *has_cvq, Error **errp)
153040237840SJason Wang {
153140237840SJason Wang     unsigned long config_size = offsetof(struct vhost_vdpa_config, buf);
1532cd523a41SStefano Garzarella     g_autofree struct vhost_vdpa_config *config = NULL;
153340237840SJason Wang     __virtio16 *max_queue_pairs;
153440237840SJason Wang     int ret;
153540237840SJason Wang 
153640237840SJason Wang     if (features & (1 << VIRTIO_NET_F_CTRL_VQ)) {
153740237840SJason Wang         *has_cvq = 1;
153840237840SJason Wang     } else {
153940237840SJason Wang         *has_cvq = 0;
154040237840SJason Wang     }
154140237840SJason Wang 
154240237840SJason Wang     if (features & (1 << VIRTIO_NET_F_MQ)) {
154340237840SJason Wang         config = g_malloc0(config_size + sizeof(*max_queue_pairs));
154440237840SJason Wang         config->off = offsetof(struct virtio_net_config, max_virtqueue_pairs);
154540237840SJason Wang         config->len = sizeof(*max_queue_pairs);
154640237840SJason Wang 
154740237840SJason Wang         ret = ioctl(fd, VHOST_VDPA_GET_CONFIG, config);
154840237840SJason Wang         if (ret) {
154940237840SJason Wang             error_setg(errp, "Fail to get config from vhost-vDPA device");
155040237840SJason Wang             return -ret;
155140237840SJason Wang         }
155240237840SJason Wang 
155340237840SJason Wang         max_queue_pairs = (__virtio16 *)&config->buf;
155440237840SJason Wang 
155540237840SJason Wang         return lduw_le_p(max_queue_pairs);
155640237840SJason Wang     }
155740237840SJason Wang 
155840237840SJason Wang     return 1;
155940237840SJason Wang }
156040237840SJason Wang 
15611e0a84eaSCindy Lu int net_init_vhost_vdpa(const Netdev *netdev, const char *name,
15621e0a84eaSCindy Lu                         NetClientState *peer, Error **errp)
15631e0a84eaSCindy Lu {
15641e0a84eaSCindy Lu     const NetdevVhostVDPAOptions *opts;
15658170ab3fSEugenio Pérez     uint64_t features;
1566654790b6SJason Wang     int vdpa_device_fd;
1567eb3cb751SEugenio Pérez     g_autofree NetClientState **ncs = NULL;
1568a585fad2SEugenio Pérez     struct vhost_vdpa_iova_range iova_range;
1569eb3cb751SEugenio Pérez     NetClientState *nc;
1570aed5da45SEugenio Pérez     int queue_pairs, r, i = 0, has_cvq = 0;
15711e0a84eaSCindy Lu 
15721e0a84eaSCindy Lu     assert(netdev->type == NET_CLIENT_DRIVER_VHOST_VDPA);
15731e0a84eaSCindy Lu     opts = &netdev->u.vhost_vdpa;
15747480874aSMarkus Armbruster     if (!opts->vhostdev && !opts->vhostfd) {
15758801ccd0SSi-Wei Liu         error_setg(errp,
15768801ccd0SSi-Wei Liu                    "vhost-vdpa: neither vhostdev= nor vhostfd= was specified");
1577c8295404SEugenio Pérez         return -1;
1578c8295404SEugenio Pérez     }
15797327813dSJason Wang 
15807480874aSMarkus Armbruster     if (opts->vhostdev && opts->vhostfd) {
15818801ccd0SSi-Wei Liu         error_setg(errp,
15828801ccd0SSi-Wei Liu                    "vhost-vdpa: vhostdev= and vhostfd= are mutually exclusive");
15838801ccd0SSi-Wei Liu         return -1;
15848801ccd0SSi-Wei Liu     }
15858801ccd0SSi-Wei Liu 
15867480874aSMarkus Armbruster     if (opts->vhostdev) {
15870351152bSEugenio Pérez         vdpa_device_fd = qemu_open(opts->vhostdev, O_RDWR, errp);
15887327813dSJason Wang         if (vdpa_device_fd == -1) {
15897327813dSJason Wang             return -errno;
15907327813dSJason Wang         }
15915107fd3eSPeter Maydell     } else {
15925107fd3eSPeter Maydell         /* has_vhostfd */
15938801ccd0SSi-Wei Liu         vdpa_device_fd = monitor_fd_param(monitor_cur(), opts->vhostfd, errp);
15948801ccd0SSi-Wei Liu         if (vdpa_device_fd == -1) {
15958801ccd0SSi-Wei Liu             error_prepend(errp, "vhost-vdpa: unable to parse vhostfd: ");
15968801ccd0SSi-Wei Liu             return -1;
15978801ccd0SSi-Wei Liu         }
15988801ccd0SSi-Wei Liu     }
15997327813dSJason Wang 
16008170ab3fSEugenio Pérez     r = vhost_vdpa_get_features(vdpa_device_fd, &features, errp);
16018170ab3fSEugenio Pérez     if (unlikely(r < 0)) {
1602aed5da45SEugenio Pérez         goto err;
16038170ab3fSEugenio Pérez     }
16048170ab3fSEugenio Pérez 
16058170ab3fSEugenio Pérez     queue_pairs = vhost_vdpa_get_max_queue_pairs(vdpa_device_fd, features,
160640237840SJason Wang                                                  &has_cvq, errp);
160740237840SJason Wang     if (queue_pairs < 0) {
16087327813dSJason Wang         qemu_close(vdpa_device_fd);
160940237840SJason Wang         return queue_pairs;
16107327813dSJason Wang     }
16117327813dSJason Wang 
1612bf7a2ad8SLongpeng     r = vhost_vdpa_get_iova_range(vdpa_device_fd, &iova_range);
1613bf7a2ad8SLongpeng     if (unlikely(r < 0)) {
1614bf7a2ad8SLongpeng         error_setg(errp, "vhost-vdpa: get iova range failed: %s",
1615bf7a2ad8SLongpeng                    strerror(-r));
1616bf7a2ad8SLongpeng         goto err;
1617bf7a2ad8SLongpeng     }
1618bf7a2ad8SLongpeng 
161900ef422eSEugenio Pérez     if (opts->x_svq && !vhost_vdpa_net_valid_svq_features(features, errp)) {
162000ef422eSEugenio Pérez         goto err;
16211576dbb5SEugenio Pérez     }
16221576dbb5SEugenio Pérez 
162340237840SJason Wang     ncs = g_malloc0(sizeof(*ncs) * queue_pairs);
162440237840SJason Wang 
162540237840SJason Wang     for (i = 0; i < queue_pairs; i++) {
162640237840SJason Wang         ncs[i] = net_vhost_vdpa_init(peer, TYPE_VHOST_VDPA, name,
16271576dbb5SEugenio Pérez                                      vdpa_device_fd, i, 2, true, opts->x_svq,
1628152128d6SEugenio Pérez                                      iova_range, features, errp);
162940237840SJason Wang         if (!ncs[i])
163040237840SJason Wang             goto err;
163140237840SJason Wang     }
163240237840SJason Wang 
163340237840SJason Wang     if (has_cvq) {
163440237840SJason Wang         nc = net_vhost_vdpa_init(peer, TYPE_VHOST_VDPA, name,
16351576dbb5SEugenio Pérez                                  vdpa_device_fd, i, 1, false,
1636152128d6SEugenio Pérez                                  opts->x_svq, iova_range, features, errp);
163740237840SJason Wang         if (!nc)
163840237840SJason Wang             goto err;
163940237840SJason Wang     }
164040237840SJason Wang 
1641654790b6SJason Wang     return 0;
164240237840SJason Wang 
164340237840SJason Wang err:
164440237840SJason Wang     if (i) {
16459bd05507SSi-Wei Liu         for (i--; i >= 0; i--) {
16469bd05507SSi-Wei Liu             qemu_del_net_client(ncs[i]);
16479bd05507SSi-Wei Liu         }
164840237840SJason Wang     }
16491576dbb5SEugenio Pérez 
165040237840SJason Wang     qemu_close(vdpa_device_fd);
165140237840SJason Wang 
165240237840SJason Wang     return -1;
16531e0a84eaSCindy Lu }
1654