xref: /openbmc/qemu/net/vhost-vdpa.c (revision b3c09106)
11e0a84eaSCindy Lu /*
21e0a84eaSCindy Lu  * vhost-vdpa.c
31e0a84eaSCindy Lu  *
41e0a84eaSCindy Lu  * Copyright(c) 2017-2018 Intel Corporation.
51e0a84eaSCindy Lu  * Copyright(c) 2020 Red Hat, Inc.
61e0a84eaSCindy Lu  *
71e0a84eaSCindy Lu  * This work is licensed under the terms of the GNU GPL, version 2 or later.
81e0a84eaSCindy Lu  * See the COPYING file in the top-level directory.
91e0a84eaSCindy Lu  *
101e0a84eaSCindy Lu  */
111e0a84eaSCindy Lu 
121e0a84eaSCindy Lu #include "qemu/osdep.h"
131e0a84eaSCindy Lu #include "clients.h"
14bd907ae4SEugenio Pérez #include "hw/virtio/virtio-net.h"
151e0a84eaSCindy Lu #include "net/vhost_net.h"
161e0a84eaSCindy Lu #include "net/vhost-vdpa.h"
171e0a84eaSCindy Lu #include "hw/virtio/vhost-vdpa.h"
181e0a84eaSCindy Lu #include "qemu/config-file.h"
191e0a84eaSCindy Lu #include "qemu/error-report.h"
20bd907ae4SEugenio Pérez #include "qemu/log.h"
21bd907ae4SEugenio Pérez #include "qemu/memalign.h"
221e0a84eaSCindy Lu #include "qemu/option.h"
231e0a84eaSCindy Lu #include "qapi/error.h"
2440237840SJason Wang #include <linux/vhost.h>
251e0a84eaSCindy Lu #include <sys/ioctl.h>
261e0a84eaSCindy Lu #include <err.h>
271e0a84eaSCindy Lu #include "standard-headers/linux/virtio_net.h"
281e0a84eaSCindy Lu #include "monitor/monitor.h"
2969498430SEugenio Pérez #include "migration/migration.h"
3069498430SEugenio Pérez #include "migration/misc.h"
311e0a84eaSCindy Lu #include "hw/virtio/vhost.h"
321e0a84eaSCindy Lu 
331e0a84eaSCindy Lu /* Todo:need to add the multiqueue support here */
341e0a84eaSCindy Lu typedef struct VhostVDPAState {
351e0a84eaSCindy Lu     NetClientState nc;
361e0a84eaSCindy Lu     struct vhost_vdpa vhost_vdpa;
3769498430SEugenio Pérez     Notifier migration_state;
381e0a84eaSCindy Lu     VHostNetState *vhost_net;
392df4dd31SEugenio Pérez 
402df4dd31SEugenio Pérez     /* Control commands shadow buffers */
4117fb889fSEugenio Pérez     void *cvq_cmd_out_buffer;
4217fb889fSEugenio Pérez     virtio_net_ctrl_ack *status;
4317fb889fSEugenio Pérez 
447f211a28SEugenio Pérez     /* The device always have SVQ enabled */
457f211a28SEugenio Pérez     bool always_svq;
46152128d6SEugenio Pérez 
47152128d6SEugenio Pérez     /* The device can isolate CVQ in its own ASID */
48152128d6SEugenio Pérez     bool cvq_isolated;
49152128d6SEugenio Pérez 
501e0a84eaSCindy Lu     bool started;
511e0a84eaSCindy Lu } VhostVDPAState;
521e0a84eaSCindy Lu 
532875a0caSHawkins Jiawei /*
542875a0caSHawkins Jiawei  * The array is sorted alphabetically in ascending order,
552875a0caSHawkins Jiawei  * with the exception of VHOST_INVALID_FEATURE_BIT,
562875a0caSHawkins Jiawei  * which should always be the last entry.
572875a0caSHawkins Jiawei  */
581e0a84eaSCindy Lu const int vdpa_feature_bits[] = {
591e0a84eaSCindy Lu     VIRTIO_F_ANY_LAYOUT,
602875a0caSHawkins Jiawei     VIRTIO_F_IOMMU_PLATFORM,
612875a0caSHawkins Jiawei     VIRTIO_F_NOTIFY_ON_EMPTY,
622875a0caSHawkins Jiawei     VIRTIO_F_RING_PACKED,
632875a0caSHawkins Jiawei     VIRTIO_F_RING_RESET,
641e0a84eaSCindy Lu     VIRTIO_F_VERSION_1,
651e0a84eaSCindy Lu     VIRTIO_NET_F_CSUM,
6651e84244SEugenio Pérez     VIRTIO_NET_F_CTRL_GUEST_OFFLOADS,
672875a0caSHawkins Jiawei     VIRTIO_NET_F_CTRL_MAC_ADDR,
6840237840SJason Wang     VIRTIO_NET_F_CTRL_RX,
6940237840SJason Wang     VIRTIO_NET_F_CTRL_RX_EXTRA,
7040237840SJason Wang     VIRTIO_NET_F_CTRL_VLAN,
7140237840SJason Wang     VIRTIO_NET_F_CTRL_VQ,
722875a0caSHawkins Jiawei     VIRTIO_NET_F_GSO,
732875a0caSHawkins Jiawei     VIRTIO_NET_F_GUEST_CSUM,
742875a0caSHawkins Jiawei     VIRTIO_NET_F_GUEST_ECN,
752875a0caSHawkins Jiawei     VIRTIO_NET_F_GUEST_TSO4,
762875a0caSHawkins Jiawei     VIRTIO_NET_F_GUEST_TSO6,
772875a0caSHawkins Jiawei     VIRTIO_NET_F_GUEST_UFO,
789da16849SAndrew Melnychenko     VIRTIO_NET_F_GUEST_USO4,
799da16849SAndrew Melnychenko     VIRTIO_NET_F_GUEST_USO6,
800145c393SAndrew Melnychenko     VIRTIO_NET_F_HASH_REPORT,
812875a0caSHawkins Jiawei     VIRTIO_NET_F_HOST_ECN,
822875a0caSHawkins Jiawei     VIRTIO_NET_F_HOST_TSO4,
832875a0caSHawkins Jiawei     VIRTIO_NET_F_HOST_TSO6,
842875a0caSHawkins Jiawei     VIRTIO_NET_F_HOST_UFO,
859da16849SAndrew Melnychenko     VIRTIO_NET_F_HOST_USO,
862875a0caSHawkins Jiawei     VIRTIO_NET_F_MQ,
872875a0caSHawkins Jiawei     VIRTIO_NET_F_MRG_RXBUF,
882875a0caSHawkins Jiawei     VIRTIO_NET_F_MTU,
892875a0caSHawkins Jiawei     VIRTIO_NET_F_RSS,
909aa47eddSSi-Wei Liu     VIRTIO_NET_F_STATUS,
912875a0caSHawkins Jiawei     VIRTIO_RING_F_EVENT_IDX,
922875a0caSHawkins Jiawei     VIRTIO_RING_F_INDIRECT_DESC,
932875a0caSHawkins Jiawei 
942875a0caSHawkins Jiawei     /* VHOST_INVALID_FEATURE_BIT should always be the last entry */
951e0a84eaSCindy Lu     VHOST_INVALID_FEATURE_BIT
961e0a84eaSCindy Lu };
971e0a84eaSCindy Lu 
981576dbb5SEugenio Pérez /** Supported device specific feature bits with SVQ */
991576dbb5SEugenio Pérez static const uint64_t vdpa_svq_device_features =
1001576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_CSUM) |
1011576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_GUEST_CSUM) |
1024b4a1378SHawkins Jiawei     BIT_ULL(VIRTIO_NET_F_CTRL_GUEST_OFFLOADS) |
1031576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_MTU) |
1041576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_MAC) |
1051576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_GUEST_TSO4) |
1061576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_GUEST_TSO6) |
1071576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_GUEST_ECN) |
1081576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_GUEST_UFO) |
1091576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_HOST_TSO4) |
1101576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_HOST_TSO6) |
1111576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_HOST_ECN) |
1121576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_HOST_UFO) |
1131576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_MRG_RXBUF) |
1141576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_STATUS) |
1151576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_CTRL_VQ) |
116ea6eec49SHawkins Jiawei     BIT_ULL(VIRTIO_NET_F_CTRL_RX) |
117e213c45aSHawkins Jiawei     BIT_ULL(VIRTIO_NET_F_CTRL_VLAN) |
118d669b7bbSHawkins Jiawei     BIT_ULL(VIRTIO_NET_F_CTRL_RX_EXTRA) |
11972b99a87SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_MQ) |
1201576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_F_ANY_LAYOUT) |
1211576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_CTRL_MAC_ADDR) |
122609ab4c3SEugenio Pérez     /* VHOST_F_LOG_ALL is exposed by SVQ */
123609ab4c3SEugenio Pérez     BIT_ULL(VHOST_F_LOG_ALL) |
124556b67d4SHawkins Jiawei     BIT_ULL(VIRTIO_NET_F_HASH_REPORT) |
1251576dbb5SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_RSC_EXT) |
1260d74e2b7SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_STANDBY) |
1270d74e2b7SEugenio Pérez     BIT_ULL(VIRTIO_NET_F_SPEED_DUPLEX);
1281576dbb5SEugenio Pérez 
129c1a10086SEugenio Pérez #define VHOST_VDPA_NET_CVQ_ASID 1
130c1a10086SEugenio Pérez 
1311e0a84eaSCindy Lu VHostNetState *vhost_vdpa_get_vhost_net(NetClientState *nc)
1321e0a84eaSCindy Lu {
1331e0a84eaSCindy Lu     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
1341e0a84eaSCindy Lu     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
1351e0a84eaSCindy Lu     return s->vhost_net;
1361e0a84eaSCindy Lu }
1371e0a84eaSCindy Lu 
138915bf6ccSEugenio Pérez static size_t vhost_vdpa_net_cvq_cmd_len(void)
139915bf6ccSEugenio Pérez {
140915bf6ccSEugenio Pérez     /*
141915bf6ccSEugenio Pérez      * MAC_TABLE_SET is the ctrl command that produces the longer out buffer.
142915bf6ccSEugenio Pérez      * In buffer is always 1 byte, so it should fit here
143915bf6ccSEugenio Pérez      */
144915bf6ccSEugenio Pérez     return sizeof(struct virtio_net_ctrl_hdr) +
145915bf6ccSEugenio Pérez            2 * sizeof(struct virtio_net_ctrl_mac) +
146915bf6ccSEugenio Pérez            MAC_TABLE_ENTRIES * ETH_ALEN;
147915bf6ccSEugenio Pérez }
148915bf6ccSEugenio Pérez 
149915bf6ccSEugenio Pérez static size_t vhost_vdpa_net_cvq_cmd_page_len(void)
150915bf6ccSEugenio Pérez {
151915bf6ccSEugenio Pérez     return ROUND_UP(vhost_vdpa_net_cvq_cmd_len(), qemu_real_host_page_size());
152915bf6ccSEugenio Pérez }
153915bf6ccSEugenio Pérez 
15436e46472SEugenio Pérez static bool vhost_vdpa_net_valid_svq_features(uint64_t features, Error **errp)
15536e46472SEugenio Pérez {
15636e46472SEugenio Pérez     uint64_t invalid_dev_features =
15736e46472SEugenio Pérez         features & ~vdpa_svq_device_features &
15836e46472SEugenio Pérez         /* Transport are all accepted at this point */
15936e46472SEugenio Pérez         ~MAKE_64BIT_MASK(VIRTIO_TRANSPORT_F_START,
16036e46472SEugenio Pérez                          VIRTIO_TRANSPORT_F_END - VIRTIO_TRANSPORT_F_START);
16136e46472SEugenio Pérez 
16236e46472SEugenio Pérez     if (invalid_dev_features) {
16336e46472SEugenio Pérez         error_setg(errp, "vdpa svq does not work with features 0x%" PRIx64,
16436e46472SEugenio Pérez                    invalid_dev_features);
165258a0394SEugenio Pérez         return false;
16636e46472SEugenio Pérez     }
16736e46472SEugenio Pérez 
168258a0394SEugenio Pérez     return vhost_svq_valid_features(features, errp);
16936e46472SEugenio Pérez }
17036e46472SEugenio Pérez 
1711e0a84eaSCindy Lu static int vhost_vdpa_net_check_device_id(struct vhost_net *net)
1721e0a84eaSCindy Lu {
1731e0a84eaSCindy Lu     uint32_t device_id;
1741e0a84eaSCindy Lu     int ret;
1751e0a84eaSCindy Lu     struct vhost_dev *hdev;
1761e0a84eaSCindy Lu 
1771e0a84eaSCindy Lu     hdev = (struct vhost_dev *)&net->dev;
1781e0a84eaSCindy Lu     ret = hdev->vhost_ops->vhost_get_device_id(hdev, &device_id);
1791e0a84eaSCindy Lu     if (device_id != VIRTIO_ID_NET) {
1801e0a84eaSCindy Lu         return -ENOTSUP;
1811e0a84eaSCindy Lu     }
1821e0a84eaSCindy Lu     return ret;
1831e0a84eaSCindy Lu }
1841e0a84eaSCindy Lu 
18540237840SJason Wang static int vhost_vdpa_add(NetClientState *ncs, void *be,
18640237840SJason Wang                           int queue_pair_index, int nvqs)
1871e0a84eaSCindy Lu {
1881e0a84eaSCindy Lu     VhostNetOptions options;
1891e0a84eaSCindy Lu     struct vhost_net *net = NULL;
1901e0a84eaSCindy Lu     VhostVDPAState *s;
1911e0a84eaSCindy Lu     int ret;
1921e0a84eaSCindy Lu 
1931e0a84eaSCindy Lu     options.backend_type = VHOST_BACKEND_TYPE_VDPA;
1941e0a84eaSCindy Lu     assert(ncs->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
1951e0a84eaSCindy Lu     s = DO_UPCAST(VhostVDPAState, nc, ncs);
1961e0a84eaSCindy Lu     options.net_backend = ncs;
1971e0a84eaSCindy Lu     options.opaque      = be;
1981e0a84eaSCindy Lu     options.busyloop_timeout = 0;
19940237840SJason Wang     options.nvqs = nvqs;
2001e0a84eaSCindy Lu 
2011e0a84eaSCindy Lu     net = vhost_net_init(&options);
2021e0a84eaSCindy Lu     if (!net) {
2031e0a84eaSCindy Lu         error_report("failed to init vhost_net for queue");
204a97ef87aSJason Wang         goto err_init;
2051e0a84eaSCindy Lu     }
2061e0a84eaSCindy Lu     s->vhost_net = net;
2071e0a84eaSCindy Lu     ret = vhost_vdpa_net_check_device_id(net);
2081e0a84eaSCindy Lu     if (ret) {
209a97ef87aSJason Wang         goto err_check;
2101e0a84eaSCindy Lu     }
2111e0a84eaSCindy Lu     return 0;
212a97ef87aSJason Wang err_check:
2131e0a84eaSCindy Lu     vhost_net_cleanup(net);
214ab36edcfSJason Wang     g_free(net);
215a97ef87aSJason Wang err_init:
2161e0a84eaSCindy Lu     return -1;
2171e0a84eaSCindy Lu }
2181e0a84eaSCindy Lu 
2191e0a84eaSCindy Lu static void vhost_vdpa_cleanup(NetClientState *nc)
2201e0a84eaSCindy Lu {
2211e0a84eaSCindy Lu     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
2221e0a84eaSCindy Lu 
223a0d7215eSAni Sinha     /*
224a0d7215eSAni Sinha      * If a peer NIC is attached, do not cleanup anything.
225a0d7215eSAni Sinha      * Cleanup will happen as a part of qemu_cleanup() -> net_cleanup()
226a0d7215eSAni Sinha      * when the guest is shutting down.
227a0d7215eSAni Sinha      */
228a0d7215eSAni Sinha     if (nc->peer && nc->peer->info->type == NET_CLIENT_DRIVER_NIC) {
229a0d7215eSAni Sinha         return;
230a0d7215eSAni Sinha     }
231babf8b87SEugenio Pérez     munmap(s->cvq_cmd_out_buffer, vhost_vdpa_net_cvq_cmd_page_len());
232babf8b87SEugenio Pérez     munmap(s->status, vhost_vdpa_net_cvq_cmd_page_len());
2331e0a84eaSCindy Lu     if (s->vhost_net) {
2341e0a84eaSCindy Lu         vhost_net_cleanup(s->vhost_net);
2351e0a84eaSCindy Lu         g_free(s->vhost_net);
2361e0a84eaSCindy Lu         s->vhost_net = NULL;
2371e0a84eaSCindy Lu     }
23857b3a7d8SCindy Lu      if (s->vhost_vdpa.device_fd >= 0) {
23957b3a7d8SCindy Lu         qemu_close(s->vhost_vdpa.device_fd);
24057b3a7d8SCindy Lu         s->vhost_vdpa.device_fd = -1;
24157b3a7d8SCindy Lu     }
2421e0a84eaSCindy Lu }
2431e0a84eaSCindy Lu 
244d1fd2d31SHawkins Jiawei /** Dummy SetSteeringEBPF to support RSS for vhost-vdpa backend  */
245d1fd2d31SHawkins Jiawei static bool vhost_vdpa_set_steering_ebpf(NetClientState *nc, int prog_fd)
246d1fd2d31SHawkins Jiawei {
247d1fd2d31SHawkins Jiawei     return true;
248d1fd2d31SHawkins Jiawei }
249d1fd2d31SHawkins Jiawei 
2501e0a84eaSCindy Lu static bool vhost_vdpa_has_vnet_hdr(NetClientState *nc)
2511e0a84eaSCindy Lu {
2521e0a84eaSCindy Lu     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
2531e0a84eaSCindy Lu 
2541e0a84eaSCindy Lu     return true;
2551e0a84eaSCindy Lu }
2561e0a84eaSCindy Lu 
2571e0a84eaSCindy Lu static bool vhost_vdpa_has_ufo(NetClientState *nc)
2581e0a84eaSCindy Lu {
2591e0a84eaSCindy Lu     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
2601e0a84eaSCindy Lu     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
2611e0a84eaSCindy Lu     uint64_t features = 0;
2621e0a84eaSCindy Lu     features |= (1ULL << VIRTIO_NET_F_HOST_UFO);
2631e0a84eaSCindy Lu     features = vhost_net_get_features(s->vhost_net, features);
2641e0a84eaSCindy Lu     return !!(features & (1ULL << VIRTIO_NET_F_HOST_UFO));
2651e0a84eaSCindy Lu 
2661e0a84eaSCindy Lu }
2671e0a84eaSCindy Lu 
268ee8a1c63SKevin Wolf static bool vhost_vdpa_check_peer_type(NetClientState *nc, ObjectClass *oc,
269ee8a1c63SKevin Wolf                                        Error **errp)
270ee8a1c63SKevin Wolf {
271ee8a1c63SKevin Wolf     const char *driver = object_class_get_name(oc);
272ee8a1c63SKevin Wolf 
273ee8a1c63SKevin Wolf     if (!g_str_has_prefix(driver, "virtio-net-")) {
274ee8a1c63SKevin Wolf         error_setg(errp, "vhost-vdpa requires frontend driver virtio-net-*");
275ee8a1c63SKevin Wolf         return false;
276ee8a1c63SKevin Wolf     }
277ee8a1c63SKevin Wolf 
278ee8a1c63SKevin Wolf     return true;
279ee8a1c63SKevin Wolf }
280ee8a1c63SKevin Wolf 
281846a1e85SEugenio Pérez /** Dummy receive in case qemu falls back to userland tap networking */
282846a1e85SEugenio Pérez static ssize_t vhost_vdpa_receive(NetClientState *nc, const uint8_t *buf,
283846a1e85SEugenio Pérez                                   size_t size)
284846a1e85SEugenio Pérez {
285bc5add1dSSi-Wei Liu     return size;
286846a1e85SEugenio Pérez }
287846a1e85SEugenio Pérez 
28800ef422eSEugenio Pérez /** From any vdpa net client, get the netclient of the first queue pair */
28900ef422eSEugenio Pérez static VhostVDPAState *vhost_vdpa_net_first_nc_vdpa(VhostVDPAState *s)
29000ef422eSEugenio Pérez {
29100ef422eSEugenio Pérez     NICState *nic = qemu_get_nic(s->nc.peer);
29200ef422eSEugenio Pérez     NetClientState *nc0 = qemu_get_peer(nic->ncs, 0);
29300ef422eSEugenio Pérez 
29400ef422eSEugenio Pérez     return DO_UPCAST(VhostVDPAState, nc, nc0);
29500ef422eSEugenio Pérez }
29600ef422eSEugenio Pérez 
29769498430SEugenio Pérez static void vhost_vdpa_net_log_global_enable(VhostVDPAState *s, bool enable)
29869498430SEugenio Pérez {
29969498430SEugenio Pérez     struct vhost_vdpa *v = &s->vhost_vdpa;
30069498430SEugenio Pérez     VirtIONet *n;
30169498430SEugenio Pérez     VirtIODevice *vdev;
30269498430SEugenio Pérez     int data_queue_pairs, cvq, r;
30369498430SEugenio Pérez 
30469498430SEugenio Pérez     /* We are only called on the first data vqs and only if x-svq is not set */
30569498430SEugenio Pérez     if (s->vhost_vdpa.shadow_vqs_enabled == enable) {
30669498430SEugenio Pérez         return;
30769498430SEugenio Pérez     }
30869498430SEugenio Pérez 
30969498430SEugenio Pérez     vdev = v->dev->vdev;
31069498430SEugenio Pérez     n = VIRTIO_NET(vdev);
31169498430SEugenio Pérez     if (!n->vhost_started) {
31269498430SEugenio Pérez         return;
31369498430SEugenio Pérez     }
31469498430SEugenio Pérez 
31569498430SEugenio Pérez     data_queue_pairs = n->multiqueue ? n->max_queue_pairs : 1;
31669498430SEugenio Pérez     cvq = virtio_vdev_has_feature(vdev, VIRTIO_NET_F_CTRL_VQ) ?
31769498430SEugenio Pérez                                   n->max_ncs - n->max_queue_pairs : 0;
31869498430SEugenio Pérez     /*
31969498430SEugenio Pérez      * TODO: vhost_net_stop does suspend, get_base and reset. We can be smarter
32069498430SEugenio Pérez      * in the future and resume the device if read-only operations between
32169498430SEugenio Pérez      * suspend and reset goes wrong.
32269498430SEugenio Pérez      */
32369498430SEugenio Pérez     vhost_net_stop(vdev, n->nic->ncs, data_queue_pairs, cvq);
32469498430SEugenio Pérez 
32569498430SEugenio Pérez     /* Start will check migration setup_or_active to configure or not SVQ */
32669498430SEugenio Pérez     r = vhost_net_start(vdev, n->nic->ncs, data_queue_pairs, cvq);
32769498430SEugenio Pérez     if (unlikely(r < 0)) {
32869498430SEugenio Pérez         error_report("unable to start vhost net: %s(%d)", g_strerror(-r), -r);
32969498430SEugenio Pérez     }
33069498430SEugenio Pérez }
33169498430SEugenio Pérez 
33269498430SEugenio Pérez static void vdpa_net_migration_state_notifier(Notifier *notifier, void *data)
33369498430SEugenio Pérez {
33469498430SEugenio Pérez     MigrationState *migration = data;
33569498430SEugenio Pérez     VhostVDPAState *s = container_of(notifier, VhostVDPAState,
33669498430SEugenio Pérez                                      migration_state);
33769498430SEugenio Pérez 
33869498430SEugenio Pérez     if (migration_in_setup(migration)) {
33969498430SEugenio Pérez         vhost_vdpa_net_log_global_enable(s, true);
34069498430SEugenio Pérez     } else if (migration_has_failed(migration)) {
34169498430SEugenio Pérez         vhost_vdpa_net_log_global_enable(s, false);
34269498430SEugenio Pérez     }
34369498430SEugenio Pérez }
34469498430SEugenio Pérez 
34500ef422eSEugenio Pérez static void vhost_vdpa_net_data_start_first(VhostVDPAState *s)
34600ef422eSEugenio Pérez {
34700ef422eSEugenio Pérez     struct vhost_vdpa *v = &s->vhost_vdpa;
34800ef422eSEugenio Pérez 
349d9cda213SSteve Sistare     migration_add_notifier(&s->migration_state,
350d9cda213SSteve Sistare                            vdpa_net_migration_state_notifier);
35100ef422eSEugenio Pérez     if (v->shadow_vqs_enabled) {
35200ef422eSEugenio Pérez         v->iova_tree = vhost_iova_tree_new(v->iova_range.first,
35300ef422eSEugenio Pérez                                            v->iova_range.last);
35400ef422eSEugenio Pérez     }
35500ef422eSEugenio Pérez }
35600ef422eSEugenio Pérez 
35700ef422eSEugenio Pérez static int vhost_vdpa_net_data_start(NetClientState *nc)
35800ef422eSEugenio Pérez {
35900ef422eSEugenio Pérez     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
36000ef422eSEugenio Pérez     struct vhost_vdpa *v = &s->vhost_vdpa;
36100ef422eSEugenio Pérez 
36200ef422eSEugenio Pérez     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
36300ef422eSEugenio Pérez 
36469498430SEugenio Pérez     if (s->always_svq ||
36569498430SEugenio Pérez         migration_is_setup_or_active(migrate_get_current()->state)) {
36669498430SEugenio Pérez         v->shadow_vqs_enabled = true;
36769498430SEugenio Pérez         v->shadow_data = true;
36869498430SEugenio Pérez     } else {
36969498430SEugenio Pérez         v->shadow_vqs_enabled = false;
37069498430SEugenio Pérez         v->shadow_data = false;
37169498430SEugenio Pérez     }
37269498430SEugenio Pérez 
37300ef422eSEugenio Pérez     if (v->index == 0) {
37400ef422eSEugenio Pérez         vhost_vdpa_net_data_start_first(s);
37500ef422eSEugenio Pérez         return 0;
37600ef422eSEugenio Pérez     }
37700ef422eSEugenio Pérez 
37800ef422eSEugenio Pérez     if (v->shadow_vqs_enabled) {
37900ef422eSEugenio Pérez         VhostVDPAState *s0 = vhost_vdpa_net_first_nc_vdpa(s);
38000ef422eSEugenio Pérez         v->iova_tree = s0->vhost_vdpa.iova_tree;
38100ef422eSEugenio Pérez     }
38200ef422eSEugenio Pérez 
38300ef422eSEugenio Pérez     return 0;
38400ef422eSEugenio Pérez }
38500ef422eSEugenio Pérez 
3866c482547SEugenio Pérez static int vhost_vdpa_net_data_load(NetClientState *nc)
3876c482547SEugenio Pérez {
3886c482547SEugenio Pérez     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
3896c482547SEugenio Pérez     struct vhost_vdpa *v = &s->vhost_vdpa;
3906c482547SEugenio Pérez     bool has_cvq = v->dev->vq_index_end % 2;
3916c482547SEugenio Pérez 
3926c482547SEugenio Pérez     if (has_cvq) {
3936c482547SEugenio Pérez         return 0;
3946c482547SEugenio Pérez     }
3956c482547SEugenio Pérez 
3966c482547SEugenio Pérez     for (int i = 0; i < v->dev->nvqs; ++i) {
3976c482547SEugenio Pérez         vhost_vdpa_set_vring_ready(v, i + v->dev->vq_index);
3986c482547SEugenio Pérez     }
3996c482547SEugenio Pérez     return 0;
4006c482547SEugenio Pérez }
4016c482547SEugenio Pérez 
40200ef422eSEugenio Pérez static void vhost_vdpa_net_client_stop(NetClientState *nc)
40300ef422eSEugenio Pérez {
40400ef422eSEugenio Pérez     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
40500ef422eSEugenio Pérez     struct vhost_dev *dev;
40600ef422eSEugenio Pérez 
40700ef422eSEugenio Pérez     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
40800ef422eSEugenio Pérez 
40969498430SEugenio Pérez     if (s->vhost_vdpa.index == 0) {
410d9cda213SSteve Sistare         migration_remove_notifier(&s->migration_state);
41169498430SEugenio Pérez     }
41269498430SEugenio Pérez 
41300ef422eSEugenio Pérez     dev = s->vhost_vdpa.dev;
41400ef422eSEugenio Pérez     if (dev->vq_index + dev->nvqs == dev->vq_index_end) {
41500ef422eSEugenio Pérez         g_clear_pointer(&s->vhost_vdpa.iova_tree, vhost_iova_tree_delete);
4160a7a164bSEugenio Pérez     } else {
4170a7a164bSEugenio Pérez         s->vhost_vdpa.iova_tree = NULL;
41800ef422eSEugenio Pérez     }
41900ef422eSEugenio Pérez }
42000ef422eSEugenio Pérez 
4211e0a84eaSCindy Lu static NetClientInfo net_vhost_vdpa_info = {
4221e0a84eaSCindy Lu         .type = NET_CLIENT_DRIVER_VHOST_VDPA,
4231e0a84eaSCindy Lu         .size = sizeof(VhostVDPAState),
424846a1e85SEugenio Pérez         .receive = vhost_vdpa_receive,
42500ef422eSEugenio Pérez         .start = vhost_vdpa_net_data_start,
4266c482547SEugenio Pérez         .load = vhost_vdpa_net_data_load,
42700ef422eSEugenio Pérez         .stop = vhost_vdpa_net_client_stop,
4281e0a84eaSCindy Lu         .cleanup = vhost_vdpa_cleanup,
4291e0a84eaSCindy Lu         .has_vnet_hdr = vhost_vdpa_has_vnet_hdr,
4301e0a84eaSCindy Lu         .has_ufo = vhost_vdpa_has_ufo,
431ee8a1c63SKevin Wolf         .check_peer_type = vhost_vdpa_check_peer_type,
432d1fd2d31SHawkins Jiawei         .set_steering_ebpf = vhost_vdpa_set_steering_ebpf,
4331e0a84eaSCindy Lu };
4341e0a84eaSCindy Lu 
435152128d6SEugenio Pérez static int64_t vhost_vdpa_get_vring_group(int device_fd, unsigned vq_index,
436152128d6SEugenio Pérez                                           Error **errp)
437c1a10086SEugenio Pérez {
438c1a10086SEugenio Pérez     struct vhost_vring_state state = {
439c1a10086SEugenio Pérez         .index = vq_index,
440c1a10086SEugenio Pérez     };
441c1a10086SEugenio Pérez     int r = ioctl(device_fd, VHOST_VDPA_GET_VRING_GROUP, &state);
442c1a10086SEugenio Pérez 
443c1a10086SEugenio Pérez     if (unlikely(r < 0)) {
4440f2bb0bfSEugenio Pérez         r = -errno;
445152128d6SEugenio Pérez         error_setg_errno(errp, errno, "Cannot get VQ %u group", vq_index);
446c1a10086SEugenio Pérez         return r;
447c1a10086SEugenio Pérez     }
448c1a10086SEugenio Pérez 
449c1a10086SEugenio Pérez     return state.num;
450c1a10086SEugenio Pérez }
451c1a10086SEugenio Pérez 
452c1a10086SEugenio Pérez static int vhost_vdpa_set_address_space_id(struct vhost_vdpa *v,
453c1a10086SEugenio Pérez                                            unsigned vq_group,
454c1a10086SEugenio Pérez                                            unsigned asid_num)
455c1a10086SEugenio Pérez {
456c1a10086SEugenio Pérez     struct vhost_vring_state asid = {
457c1a10086SEugenio Pérez         .index = vq_group,
458c1a10086SEugenio Pérez         .num = asid_num,
459c1a10086SEugenio Pérez     };
460c1a10086SEugenio Pérez     int r;
461c1a10086SEugenio Pérez 
462c1a10086SEugenio Pérez     r = ioctl(v->device_fd, VHOST_VDPA_SET_GROUP_ASID, &asid);
463c1a10086SEugenio Pérez     if (unlikely(r < 0)) {
464c1a10086SEugenio Pérez         error_report("Can't set vq group %u asid %u, errno=%d (%s)",
465c1a10086SEugenio Pérez                      asid.index, asid.num, errno, g_strerror(errno));
466c1a10086SEugenio Pérez     }
467c1a10086SEugenio Pérez     return r;
468c1a10086SEugenio Pérez }
469c1a10086SEugenio Pérez 
4702df4dd31SEugenio Pérez static void vhost_vdpa_cvq_unmap_buf(struct vhost_vdpa *v, void *addr)
4712df4dd31SEugenio Pérez {
4722df4dd31SEugenio Pérez     VhostIOVATree *tree = v->iova_tree;
4732df4dd31SEugenio Pérez     DMAMap needle = {
4742df4dd31SEugenio Pérez         /*
4752df4dd31SEugenio Pérez          * No need to specify size or to look for more translations since
4762df4dd31SEugenio Pérez          * this contiguous chunk was allocated by us.
4772df4dd31SEugenio Pérez          */
4782df4dd31SEugenio Pérez         .translated_addr = (hwaddr)(uintptr_t)addr,
4792df4dd31SEugenio Pérez     };
4802df4dd31SEugenio Pérez     const DMAMap *map = vhost_iova_tree_find_iova(tree, &needle);
4812df4dd31SEugenio Pérez     int r;
4822df4dd31SEugenio Pérez 
4832df4dd31SEugenio Pérez     if (unlikely(!map)) {
4842df4dd31SEugenio Pérez         error_report("Cannot locate expected map");
4852df4dd31SEugenio Pérez         return;
4862df4dd31SEugenio Pérez     }
4872df4dd31SEugenio Pérez 
488cd831ed5SEugenio Pérez     r = vhost_vdpa_dma_unmap(v, v->address_space_id, map->iova, map->size + 1);
4892df4dd31SEugenio Pérez     if (unlikely(r != 0)) {
4902df4dd31SEugenio Pérez         error_report("Device cannot unmap: %s(%d)", g_strerror(r), r);
4912df4dd31SEugenio Pérez     }
4922df4dd31SEugenio Pérez 
49369292a8eSEugenio Pérez     vhost_iova_tree_remove(tree, *map);
4942df4dd31SEugenio Pérez }
4952df4dd31SEugenio Pérez 
4967a7f87e9SEugenio Pérez /** Map CVQ buffer. */
4977a7f87e9SEugenio Pérez static int vhost_vdpa_cvq_map_buf(struct vhost_vdpa *v, void *buf, size_t size,
4987a7f87e9SEugenio Pérez                                   bool write)
4992df4dd31SEugenio Pérez {
5002df4dd31SEugenio Pérez     DMAMap map = {};
5012df4dd31SEugenio Pérez     int r;
5022df4dd31SEugenio Pérez 
5032df4dd31SEugenio Pérez     map.translated_addr = (hwaddr)(uintptr_t)buf;
5047a7f87e9SEugenio Pérez     map.size = size - 1;
5052df4dd31SEugenio Pérez     map.perm = write ? IOMMU_RW : IOMMU_RO,
5062df4dd31SEugenio Pérez     r = vhost_iova_tree_map_alloc(v->iova_tree, &map);
5072df4dd31SEugenio Pérez     if (unlikely(r != IOVA_OK)) {
5082df4dd31SEugenio Pérez         error_report("Cannot map injected element");
5097a7f87e9SEugenio Pérez         return r;
5102df4dd31SEugenio Pérez     }
5112df4dd31SEugenio Pérez 
512cd831ed5SEugenio Pérez     r = vhost_vdpa_dma_map(v, v->address_space_id, map.iova,
513cd831ed5SEugenio Pérez                            vhost_vdpa_net_cvq_cmd_page_len(), buf, !write);
5142df4dd31SEugenio Pérez     if (unlikely(r < 0)) {
5152df4dd31SEugenio Pérez         goto dma_map_err;
5162df4dd31SEugenio Pérez     }
5172df4dd31SEugenio Pérez 
5187a7f87e9SEugenio Pérez     return 0;
5192df4dd31SEugenio Pérez 
5202df4dd31SEugenio Pérez dma_map_err:
52169292a8eSEugenio Pérez     vhost_iova_tree_remove(v->iova_tree, map);
5227a7f87e9SEugenio Pérez     return r;
5232df4dd31SEugenio Pérez }
5242df4dd31SEugenio Pérez 
5257a7f87e9SEugenio Pérez static int vhost_vdpa_net_cvq_start(NetClientState *nc)
5262df4dd31SEugenio Pérez {
52700ef422eSEugenio Pérez     VhostVDPAState *s, *s0;
528c1a10086SEugenio Pérez     struct vhost_vdpa *v;
529c1a10086SEugenio Pérez     int64_t cvq_group;
530152128d6SEugenio Pérez     int r;
531152128d6SEugenio Pérez     Error *err = NULL;
5322df4dd31SEugenio Pérez 
5337a7f87e9SEugenio Pérez     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
5347a7f87e9SEugenio Pérez 
5357a7f87e9SEugenio Pérez     s = DO_UPCAST(VhostVDPAState, nc, nc);
536c1a10086SEugenio Pérez     v = &s->vhost_vdpa;
537c1a10086SEugenio Pérez 
53869498430SEugenio Pérez     s0 = vhost_vdpa_net_first_nc_vdpa(s);
53969498430SEugenio Pérez     v->shadow_data = s0->vhost_vdpa.shadow_vqs_enabled;
540b40eba9cSEugenio Pérez     v->shadow_vqs_enabled = s0->vhost_vdpa.shadow_vqs_enabled;
541c1a10086SEugenio Pérez     s->vhost_vdpa.address_space_id = VHOST_VDPA_GUEST_PA_ASID;
542c1a10086SEugenio Pérez 
54369498430SEugenio Pérez     if (s->vhost_vdpa.shadow_data) {
544c1a10086SEugenio Pérez         /* SVQ is already configured for all virtqueues */
545c1a10086SEugenio Pérez         goto out;
546c1a10086SEugenio Pérez     }
547c1a10086SEugenio Pérez 
548c1a10086SEugenio Pérez     /*
549c1a10086SEugenio Pérez      * If we early return in these cases SVQ will not be enabled. The migration
550c1a10086SEugenio Pérez      * will be blocked as long as vhost-vdpa backends will not offer _F_LOG.
551c1a10086SEugenio Pérez      */
552152128d6SEugenio Pérez     if (!vhost_vdpa_net_valid_svq_features(v->dev->features, NULL)) {
553c1a10086SEugenio Pérez         return 0;
554c1a10086SEugenio Pérez     }
555c1a10086SEugenio Pérez 
556152128d6SEugenio Pérez     if (!s->cvq_isolated) {
557152128d6SEugenio Pérez         return 0;
558152128d6SEugenio Pérez     }
559152128d6SEugenio Pérez 
560152128d6SEugenio Pérez     cvq_group = vhost_vdpa_get_vring_group(v->device_fd,
561152128d6SEugenio Pérez                                            v->dev->vq_index_end - 1,
562152128d6SEugenio Pérez                                            &err);
563c1a10086SEugenio Pérez     if (unlikely(cvq_group < 0)) {
564152128d6SEugenio Pérez         error_report_err(err);
565c1a10086SEugenio Pérez         return cvq_group;
566c1a10086SEugenio Pérez     }
567c1a10086SEugenio Pérez 
568c1a10086SEugenio Pérez     r = vhost_vdpa_set_address_space_id(v, cvq_group, VHOST_VDPA_NET_CVQ_ASID);
569c1a10086SEugenio Pérez     if (unlikely(r < 0)) {
570c1a10086SEugenio Pérez         return r;
571c1a10086SEugenio Pérez     }
572c1a10086SEugenio Pérez 
573c1a10086SEugenio Pérez     v->shadow_vqs_enabled = true;
574c1a10086SEugenio Pérez     s->vhost_vdpa.address_space_id = VHOST_VDPA_NET_CVQ_ASID;
575c1a10086SEugenio Pérez 
576c1a10086SEugenio Pérez out:
5777a7f87e9SEugenio Pérez     if (!s->vhost_vdpa.shadow_vqs_enabled) {
5787a7f87e9SEugenio Pérez         return 0;
5792df4dd31SEugenio Pérez     }
5802df4dd31SEugenio Pérez 
58100ef422eSEugenio Pérez     if (s0->vhost_vdpa.iova_tree) {
58200ef422eSEugenio Pérez         /*
58300ef422eSEugenio Pérez          * SVQ is already configured for all virtqueues.  Reuse IOVA tree for
58400ef422eSEugenio Pérez          * simplicity, whether CVQ shares ASID with guest or not, because:
58500ef422eSEugenio Pérez          * - Memory listener need access to guest's memory addresses allocated
58600ef422eSEugenio Pérez          *   in the IOVA tree.
58700ef422eSEugenio Pérez          * - There should be plenty of IOVA address space for both ASID not to
58800ef422eSEugenio Pérez          *   worry about collisions between them.  Guest's translations are
58900ef422eSEugenio Pérez          *   still validated with virtio virtqueue_pop so there is no risk for
59000ef422eSEugenio Pérez          *   the guest to access memory that it shouldn't.
59100ef422eSEugenio Pérez          *
59200ef422eSEugenio Pérez          * To allocate a iova tree per ASID is doable but it complicates the
59300ef422eSEugenio Pérez          * code and it is not worth it for the moment.
59400ef422eSEugenio Pérez          */
59500ef422eSEugenio Pérez         v->iova_tree = s0->vhost_vdpa.iova_tree;
59600ef422eSEugenio Pérez     } else {
59700ef422eSEugenio Pérez         v->iova_tree = vhost_iova_tree_new(v->iova_range.first,
59800ef422eSEugenio Pérez                                            v->iova_range.last);
59900ef422eSEugenio Pérez     }
60000ef422eSEugenio Pérez 
6017a7f87e9SEugenio Pérez     r = vhost_vdpa_cvq_map_buf(&s->vhost_vdpa, s->cvq_cmd_out_buffer,
6027a7f87e9SEugenio Pérez                                vhost_vdpa_net_cvq_cmd_page_len(), false);
6037a7f87e9SEugenio Pérez     if (unlikely(r < 0)) {
6047a7f87e9SEugenio Pérez         return r;
6057a7f87e9SEugenio Pérez     }
6067a7f87e9SEugenio Pérez 
60717fb889fSEugenio Pérez     r = vhost_vdpa_cvq_map_buf(&s->vhost_vdpa, s->status,
6087a7f87e9SEugenio Pérez                                vhost_vdpa_net_cvq_cmd_page_len(), true);
6097a7f87e9SEugenio Pérez     if (unlikely(r < 0)) {
6102df4dd31SEugenio Pérez         vhost_vdpa_cvq_unmap_buf(&s->vhost_vdpa, s->cvq_cmd_out_buffer);
6112df4dd31SEugenio Pérez     }
6122df4dd31SEugenio Pérez 
6137a7f87e9SEugenio Pérez     return r;
6147a7f87e9SEugenio Pérez }
6157a7f87e9SEugenio Pérez 
6167a7f87e9SEugenio Pérez static void vhost_vdpa_net_cvq_stop(NetClientState *nc)
6177a7f87e9SEugenio Pérez {
6187a7f87e9SEugenio Pérez     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
6197a7f87e9SEugenio Pérez 
6207a7f87e9SEugenio Pérez     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
6217a7f87e9SEugenio Pérez 
6227a7f87e9SEugenio Pérez     if (s->vhost_vdpa.shadow_vqs_enabled) {
6237a7f87e9SEugenio Pérez         vhost_vdpa_cvq_unmap_buf(&s->vhost_vdpa, s->cvq_cmd_out_buffer);
62417fb889fSEugenio Pérez         vhost_vdpa_cvq_unmap_buf(&s->vhost_vdpa, s->status);
625c1a10086SEugenio Pérez     }
62600ef422eSEugenio Pérez 
62700ef422eSEugenio Pérez     vhost_vdpa_net_client_stop(nc);
6282df4dd31SEugenio Pérez }
6292df4dd31SEugenio Pérez 
6300e6bff0dSHawkins Jiawei static ssize_t vhost_vdpa_net_cvq_add(VhostVDPAState *s,
6310e6bff0dSHawkins Jiawei                                     const struct iovec *out_sg, size_t out_num,
6320e6bff0dSHawkins Jiawei                                     const struct iovec *in_sg, size_t in_num)
633be4278b6SEugenio Pérez {
634be4278b6SEugenio Pérez     VhostShadowVirtqueue *svq = g_ptr_array_index(s->vhost_vdpa.shadow_vqs, 0);
635be4278b6SEugenio Pérez     int r;
636be4278b6SEugenio Pérez 
6370e6bff0dSHawkins Jiawei     r = vhost_svq_add(svq, out_sg, out_num, in_sg, in_num, NULL);
638be4278b6SEugenio Pérez     if (unlikely(r != 0)) {
639be4278b6SEugenio Pérez         if (unlikely(r == -ENOSPC)) {
640be4278b6SEugenio Pérez             qemu_log_mask(LOG_GUEST_ERROR, "%s: No space on device queue\n",
641be4278b6SEugenio Pérez                           __func__);
642be4278b6SEugenio Pérez         }
643a864a321SHawkins Jiawei     }
644a864a321SHawkins Jiawei 
645be4278b6SEugenio Pérez     return r;
646be4278b6SEugenio Pérez }
647be4278b6SEugenio Pérez 
648be4278b6SEugenio Pérez /*
649a864a321SHawkins Jiawei  * Convenience wrapper to poll SVQ for multiple control commands.
650a864a321SHawkins Jiawei  *
651a864a321SHawkins Jiawei  * Caller should hold the BQL when invoking this function, and should take
652a864a321SHawkins Jiawei  * the answer before SVQ pulls by itself when BQL is released.
653be4278b6SEugenio Pérez  */
654a864a321SHawkins Jiawei static ssize_t vhost_vdpa_net_svq_poll(VhostVDPAState *s, size_t cmds_in_flight)
655a864a321SHawkins Jiawei {
656a864a321SHawkins Jiawei     VhostShadowVirtqueue *svq = g_ptr_array_index(s->vhost_vdpa.shadow_vqs, 0);
657a864a321SHawkins Jiawei     return vhost_svq_poll(svq, cmds_in_flight);
658be4278b6SEugenio Pérez }
659be4278b6SEugenio Pérez 
6601d7e2a8fSHawkins Jiawei static void vhost_vdpa_net_load_cursor_reset(VhostVDPAState *s,
6611d7e2a8fSHawkins Jiawei                                              struct iovec *out_cursor,
6621d7e2a8fSHawkins Jiawei                                              struct iovec *in_cursor)
6631d7e2a8fSHawkins Jiawei {
6641d7e2a8fSHawkins Jiawei     /* reset the cursor of the output buffer for the device */
6651d7e2a8fSHawkins Jiawei     out_cursor->iov_base = s->cvq_cmd_out_buffer;
6661d7e2a8fSHawkins Jiawei     out_cursor->iov_len = vhost_vdpa_net_cvq_cmd_page_len();
6671d7e2a8fSHawkins Jiawei 
6681d7e2a8fSHawkins Jiawei     /* reset the cursor of the in buffer for the device */
6691d7e2a8fSHawkins Jiawei     in_cursor->iov_base = s->status;
6701d7e2a8fSHawkins Jiawei     in_cursor->iov_len = vhost_vdpa_net_cvq_cmd_page_len();
6711d7e2a8fSHawkins Jiawei }
6721d7e2a8fSHawkins Jiawei 
673acec5f68SHawkins Jiawei /*
674acec5f68SHawkins Jiawei  * Poll SVQ for multiple pending control commands and check the device's ack.
675acec5f68SHawkins Jiawei  *
676acec5f68SHawkins Jiawei  * Caller should hold the BQL when invoking this function.
677acec5f68SHawkins Jiawei  *
678acec5f68SHawkins Jiawei  * @s: The VhostVDPAState
679acec5f68SHawkins Jiawei  * @len: The length of the pending status shadow buffer
680acec5f68SHawkins Jiawei  */
681acec5f68SHawkins Jiawei static ssize_t vhost_vdpa_net_svq_flush(VhostVDPAState *s, size_t len)
682acec5f68SHawkins Jiawei {
683acec5f68SHawkins Jiawei     /* device uses a one-byte length ack for each control command */
684acec5f68SHawkins Jiawei     ssize_t dev_written = vhost_vdpa_net_svq_poll(s, len);
685acec5f68SHawkins Jiawei     if (unlikely(dev_written != len)) {
686acec5f68SHawkins Jiawei         return -EIO;
687acec5f68SHawkins Jiawei     }
688acec5f68SHawkins Jiawei 
689acec5f68SHawkins Jiawei     /* check the device's ack */
690acec5f68SHawkins Jiawei     for (int i = 0; i < len; ++i) {
691acec5f68SHawkins Jiawei         if (s->status[i] != VIRTIO_NET_OK) {
692acec5f68SHawkins Jiawei             return -EIO;
693acec5f68SHawkins Jiawei         }
694acec5f68SHawkins Jiawei     }
695acec5f68SHawkins Jiawei     return 0;
696acec5f68SHawkins Jiawei }
697acec5f68SHawkins Jiawei 
6981d7e2a8fSHawkins Jiawei static ssize_t vhost_vdpa_net_load_cmd(VhostVDPAState *s,
6991d7e2a8fSHawkins Jiawei                                        struct iovec *out_cursor,
7001d7e2a8fSHawkins Jiawei                                        struct iovec *in_cursor, uint8_t class,
7012848c6aaSHawkins Jiawei                                        uint8_t cmd, const struct iovec *data_sg,
7022848c6aaSHawkins Jiawei                                        size_t data_num)
703f73c0c43SEugenio Pérez {
704f73c0c43SEugenio Pérez     const struct virtio_net_ctrl_hdr ctrl = {
705f73c0c43SEugenio Pérez         .class = class,
706f73c0c43SEugenio Pérez         .cmd = cmd,
707f73c0c43SEugenio Pérez     };
708acec5f68SHawkins Jiawei     size_t data_size = iov_size(data_sg, data_num), cmd_size;
7091d7e2a8fSHawkins Jiawei     struct iovec out, in;
710a864a321SHawkins Jiawei     ssize_t r;
711acec5f68SHawkins Jiawei     unsigned dummy_cursor_iov_cnt;
712acec5f68SHawkins Jiawei     VhostShadowVirtqueue *svq = g_ptr_array_index(s->vhost_vdpa.shadow_vqs, 0);
713f73c0c43SEugenio Pérez 
714f73c0c43SEugenio Pérez     assert(data_size < vhost_vdpa_net_cvq_cmd_page_len() - sizeof(ctrl));
715acec5f68SHawkins Jiawei     cmd_size = sizeof(ctrl) + data_size;
716acec5f68SHawkins Jiawei     if (vhost_svq_available_slots(svq) < 2 ||
717acec5f68SHawkins Jiawei         iov_size(out_cursor, 1) < cmd_size) {
718acec5f68SHawkins Jiawei         /*
719acec5f68SHawkins Jiawei          * It is time to flush all pending control commands if SVQ is full
720acec5f68SHawkins Jiawei          * or control commands shadow buffers are full.
721acec5f68SHawkins Jiawei          *
722acec5f68SHawkins Jiawei          * We can poll here since we've had BQL from the time
723acec5f68SHawkins Jiawei          * we sent the descriptor.
724acec5f68SHawkins Jiawei          */
725acec5f68SHawkins Jiawei         r = vhost_vdpa_net_svq_flush(s, in_cursor->iov_base -
726acec5f68SHawkins Jiawei                                      (void *)s->status);
727acec5f68SHawkins Jiawei         if (unlikely(r < 0)) {
728acec5f68SHawkins Jiawei             return r;
729f73c0c43SEugenio Pérez         }
730f73c0c43SEugenio Pérez 
731acec5f68SHawkins Jiawei         vhost_vdpa_net_load_cursor_reset(s, out_cursor, in_cursor);
732acec5f68SHawkins Jiawei     }
733f73c0c43SEugenio Pérez 
734f73c0c43SEugenio Pérez     /* pack the CVQ command header */
7351d7e2a8fSHawkins Jiawei     iov_from_buf(out_cursor, 1, 0, &ctrl, sizeof(ctrl));
736f73c0c43SEugenio Pérez     /* pack the CVQ command command-specific-data */
737f73c0c43SEugenio Pérez     iov_to_buf(data_sg, data_num, 0,
7381d7e2a8fSHawkins Jiawei                out_cursor->iov_base + sizeof(ctrl), data_size);
7391d7e2a8fSHawkins Jiawei 
7401d7e2a8fSHawkins Jiawei     /* extract the required buffer from the cursor for output */
741acec5f68SHawkins Jiawei     iov_copy(&out, 1, out_cursor, 1, 0, cmd_size);
7421d7e2a8fSHawkins Jiawei     /* extract the required buffer from the cursor for input */
7431d7e2a8fSHawkins Jiawei     iov_copy(&in, 1, in_cursor, 1, 0, sizeof(*s->status));
744f73c0c43SEugenio Pérez 
745a864a321SHawkins Jiawei     r = vhost_vdpa_net_cvq_add(s, &out, 1, &in, 1);
746a864a321SHawkins Jiawei     if (unlikely(r < 0)) {
747a864a321SHawkins Jiawei         return r;
748a864a321SHawkins Jiawei     }
749a864a321SHawkins Jiawei 
750acec5f68SHawkins Jiawei     /* iterate the cursors */
751acec5f68SHawkins Jiawei     dummy_cursor_iov_cnt = 1;
752acec5f68SHawkins Jiawei     iov_discard_front(&out_cursor, &dummy_cursor_iov_cnt, cmd_size);
753acec5f68SHawkins Jiawei     dummy_cursor_iov_cnt = 1;
754acec5f68SHawkins Jiawei     iov_discard_front(&in_cursor, &dummy_cursor_iov_cnt, sizeof(*s->status));
755acec5f68SHawkins Jiawei 
756acec5f68SHawkins Jiawei     return 0;
757f73c0c43SEugenio Pérez }
758f73c0c43SEugenio Pérez 
7591d7e2a8fSHawkins Jiawei static int vhost_vdpa_net_load_mac(VhostVDPAState *s, const VirtIONet *n,
7601d7e2a8fSHawkins Jiawei                                    struct iovec *out_cursor,
7611d7e2a8fSHawkins Jiawei                                    struct iovec *in_cursor)
762f73c0c43SEugenio Pérez {
76302d3bf09SHawkins Jiawei     if (virtio_vdev_has_feature(&n->parent_obj, VIRTIO_NET_F_CTRL_MAC_ADDR)) {
7642848c6aaSHawkins Jiawei         const struct iovec data = {
7652848c6aaSHawkins Jiawei             .iov_base = (void *)n->mac,
7662848c6aaSHawkins Jiawei             .iov_len = sizeof(n->mac),
7672848c6aaSHawkins Jiawei         };
768acec5f68SHawkins Jiawei         ssize_t r = vhost_vdpa_net_load_cmd(s, out_cursor, in_cursor,
7691d7e2a8fSHawkins Jiawei                                             VIRTIO_NET_CTRL_MAC,
770f73c0c43SEugenio Pérez                                             VIRTIO_NET_CTRL_MAC_ADDR_SET,
7712848c6aaSHawkins Jiawei                                             &data, 1);
772acec5f68SHawkins Jiawei         if (unlikely(r < 0)) {
773acec5f68SHawkins Jiawei             return r;
774b479bc3cSHawkins Jiawei         }
775f73c0c43SEugenio Pérez     }
776f73c0c43SEugenio Pérez 
7770ddcecb8SHawkins Jiawei     /*
7780ddcecb8SHawkins Jiawei      * According to VirtIO standard, "The device MUST have an
7790ddcecb8SHawkins Jiawei      * empty MAC filtering table on reset.".
7800ddcecb8SHawkins Jiawei      *
7810ddcecb8SHawkins Jiawei      * Therefore, there is no need to send this CVQ command if the
7820ddcecb8SHawkins Jiawei      * driver also sets an empty MAC filter table, which aligns with
7830ddcecb8SHawkins Jiawei      * the device's defaults.
7840ddcecb8SHawkins Jiawei      *
7850ddcecb8SHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
7860ddcecb8SHawkins Jiawei      * configuration only at live migration.
7870ddcecb8SHawkins Jiawei      */
7880ddcecb8SHawkins Jiawei     if (!virtio_vdev_has_feature(&n->parent_obj, VIRTIO_NET_F_CTRL_RX) ||
7890ddcecb8SHawkins Jiawei         n->mac_table.in_use == 0) {
7900ddcecb8SHawkins Jiawei         return 0;
7910ddcecb8SHawkins Jiawei     }
7920ddcecb8SHawkins Jiawei 
7930ddcecb8SHawkins Jiawei     uint32_t uni_entries = n->mac_table.first_multi,
7940ddcecb8SHawkins Jiawei              uni_macs_size = uni_entries * ETH_ALEN,
7950ddcecb8SHawkins Jiawei              mul_entries = n->mac_table.in_use - uni_entries,
7960ddcecb8SHawkins Jiawei              mul_macs_size = mul_entries * ETH_ALEN;
7970ddcecb8SHawkins Jiawei     struct virtio_net_ctrl_mac uni = {
7980ddcecb8SHawkins Jiawei         .entries = cpu_to_le32(uni_entries),
7990ddcecb8SHawkins Jiawei     };
8000ddcecb8SHawkins Jiawei     struct virtio_net_ctrl_mac mul = {
8010ddcecb8SHawkins Jiawei         .entries = cpu_to_le32(mul_entries),
8020ddcecb8SHawkins Jiawei     };
8030ddcecb8SHawkins Jiawei     const struct iovec data[] = {
8040ddcecb8SHawkins Jiawei         {
8050ddcecb8SHawkins Jiawei             .iov_base = &uni,
8060ddcecb8SHawkins Jiawei             .iov_len = sizeof(uni),
8070ddcecb8SHawkins Jiawei         }, {
8080ddcecb8SHawkins Jiawei             .iov_base = n->mac_table.macs,
8090ddcecb8SHawkins Jiawei             .iov_len = uni_macs_size,
8100ddcecb8SHawkins Jiawei         }, {
8110ddcecb8SHawkins Jiawei             .iov_base = &mul,
8120ddcecb8SHawkins Jiawei             .iov_len = sizeof(mul),
8130ddcecb8SHawkins Jiawei         }, {
8140ddcecb8SHawkins Jiawei             .iov_base = &n->mac_table.macs[uni_macs_size],
8150ddcecb8SHawkins Jiawei             .iov_len = mul_macs_size,
8160ddcecb8SHawkins Jiawei         },
8170ddcecb8SHawkins Jiawei     };
818acec5f68SHawkins Jiawei     ssize_t r = vhost_vdpa_net_load_cmd(s, out_cursor, in_cursor,
8190ddcecb8SHawkins Jiawei                                         VIRTIO_NET_CTRL_MAC,
8200ddcecb8SHawkins Jiawei                                         VIRTIO_NET_CTRL_MAC_TABLE_SET,
8210ddcecb8SHawkins Jiawei                                         data, ARRAY_SIZE(data));
822acec5f68SHawkins Jiawei     if (unlikely(r < 0)) {
823acec5f68SHawkins Jiawei         return r;
8240ddcecb8SHawkins Jiawei     }
8250ddcecb8SHawkins Jiawei 
826f73c0c43SEugenio Pérez     return 0;
827f73c0c43SEugenio Pérez }
828f73c0c43SEugenio Pérez 
8298b98c15fSHawkins Jiawei static int vhost_vdpa_net_load_rss(VhostVDPAState *s, const VirtIONet *n,
8308b98c15fSHawkins Jiawei                                    struct iovec *out_cursor,
831*b3c09106SHawkins Jiawei                                    struct iovec *in_cursor, bool do_rss)
8328b98c15fSHawkins Jiawei {
8338b98c15fSHawkins Jiawei     struct virtio_net_rss_config cfg = {};
8348b98c15fSHawkins Jiawei     ssize_t r;
8358b98c15fSHawkins Jiawei     g_autofree uint16_t *table = NULL;
8368b98c15fSHawkins Jiawei 
8378b98c15fSHawkins Jiawei     /*
8388b98c15fSHawkins Jiawei      * According to VirtIO standard, "Initially the device has all hash
8398b98c15fSHawkins Jiawei      * types disabled and reports only VIRTIO_NET_HASH_REPORT_NONE.".
8408b98c15fSHawkins Jiawei      *
8418b98c15fSHawkins Jiawei      * Therefore, there is no need to send this CVQ command if the
8428b98c15fSHawkins Jiawei      * driver disables the all hash types, which aligns with
8438b98c15fSHawkins Jiawei      * the device's defaults.
8448b98c15fSHawkins Jiawei      *
8458b98c15fSHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
8468b98c15fSHawkins Jiawei      * configuration only at live migration.
8478b98c15fSHawkins Jiawei      */
8488b98c15fSHawkins Jiawei     if (!n->rss_data.enabled ||
8498b98c15fSHawkins Jiawei         n->rss_data.hash_types == VIRTIO_NET_HASH_REPORT_NONE) {
8508b98c15fSHawkins Jiawei         return 0;
8518b98c15fSHawkins Jiawei     }
8528b98c15fSHawkins Jiawei 
8538b98c15fSHawkins Jiawei     table = g_malloc_n(n->rss_data.indirections_len,
8548b98c15fSHawkins Jiawei                        sizeof(n->rss_data.indirections_table[0]));
8558b98c15fSHawkins Jiawei     cfg.hash_types = cpu_to_le32(n->rss_data.hash_types);
8568b98c15fSHawkins Jiawei 
857*b3c09106SHawkins Jiawei     if (do_rss) {
858*b3c09106SHawkins Jiawei         /*
859*b3c09106SHawkins Jiawei          * According to VirtIO standard, "Number of entries in indirection_table
860*b3c09106SHawkins Jiawei          * is (indirection_table_mask + 1)".
861*b3c09106SHawkins Jiawei          */
862*b3c09106SHawkins Jiawei         cfg.indirection_table_mask = cpu_to_le16(n->rss_data.indirections_len -
863*b3c09106SHawkins Jiawei                                                  1);
864*b3c09106SHawkins Jiawei         cfg.unclassified_queue = cpu_to_le16(n->rss_data.default_queue);
865*b3c09106SHawkins Jiawei         for (int i = 0; i < n->rss_data.indirections_len; ++i) {
866*b3c09106SHawkins Jiawei             table[i] = cpu_to_le16(n->rss_data.indirections_table[i]);
867*b3c09106SHawkins Jiawei         }
868*b3c09106SHawkins Jiawei         cfg.max_tx_vq = cpu_to_le16(n->curr_queue_pairs);
869*b3c09106SHawkins Jiawei     } else {
8708b98c15fSHawkins Jiawei         /*
8718b98c15fSHawkins Jiawei          * According to VirtIO standard, "Field reserved MUST contain zeroes.
8728b98c15fSHawkins Jiawei          * It is defined to make the structure to match the layout of
8738b98c15fSHawkins Jiawei          * virtio_net_rss_config structure, defined in 5.1.6.5.7.".
8748b98c15fSHawkins Jiawei          *
8758b98c15fSHawkins Jiawei          * Therefore, we need to zero the fields in
8768b98c15fSHawkins Jiawei          * struct virtio_net_rss_config, which corresponds to the
8778b98c15fSHawkins Jiawei          * `reserved` field in struct virtio_net_hash_config.
8788b98c15fSHawkins Jiawei          *
8798b98c15fSHawkins Jiawei          * Note that all other fields are zeroed at their definitions,
8808b98c15fSHawkins Jiawei          * except for the `indirection_table` field, where the actual data
8818b98c15fSHawkins Jiawei          * is stored in the `table` variable to ensure compatibility
8828b98c15fSHawkins Jiawei          * with RSS case. Therefore, we need to zero the `table` variable here.
8838b98c15fSHawkins Jiawei          */
8848b98c15fSHawkins Jiawei         table[0] = 0;
885*b3c09106SHawkins Jiawei     }
8868b98c15fSHawkins Jiawei 
8878b98c15fSHawkins Jiawei     /*
8888b98c15fSHawkins Jiawei      * Considering that virtio_net_handle_rss() currently does not restore
8898b98c15fSHawkins Jiawei      * the hash key length parsed from the CVQ command sent from the guest
8908b98c15fSHawkins Jiawei      * into n->rss_data and uses the maximum key length in other code, so
8918b98c15fSHawkins Jiawei      * we also employ the maximum key length here.
8928b98c15fSHawkins Jiawei      */
8938b98c15fSHawkins Jiawei     cfg.hash_key_length = sizeof(n->rss_data.key);
8948b98c15fSHawkins Jiawei 
8958b98c15fSHawkins Jiawei     const struct iovec data[] = {
8968b98c15fSHawkins Jiawei         {
8978b98c15fSHawkins Jiawei             .iov_base = &cfg,
8988b98c15fSHawkins Jiawei             .iov_len = offsetof(struct virtio_net_rss_config,
8998b98c15fSHawkins Jiawei                                 indirection_table),
9008b98c15fSHawkins Jiawei         }, {
9018b98c15fSHawkins Jiawei             .iov_base = table,
9028b98c15fSHawkins Jiawei             .iov_len = n->rss_data.indirections_len *
9038b98c15fSHawkins Jiawei                        sizeof(n->rss_data.indirections_table[0]),
9048b98c15fSHawkins Jiawei         }, {
9058b98c15fSHawkins Jiawei             .iov_base = &cfg.max_tx_vq,
9068b98c15fSHawkins Jiawei             .iov_len = offsetof(struct virtio_net_rss_config, hash_key_data) -
9078b98c15fSHawkins Jiawei                        offsetof(struct virtio_net_rss_config, max_tx_vq),
9088b98c15fSHawkins Jiawei         }, {
9098b98c15fSHawkins Jiawei             .iov_base = (void *)n->rss_data.key,
9108b98c15fSHawkins Jiawei             .iov_len = sizeof(n->rss_data.key),
9118b98c15fSHawkins Jiawei         }
9128b98c15fSHawkins Jiawei     };
9138b98c15fSHawkins Jiawei 
9148b98c15fSHawkins Jiawei     r = vhost_vdpa_net_load_cmd(s, out_cursor, in_cursor,
9158b98c15fSHawkins Jiawei                                 VIRTIO_NET_CTRL_MQ,
916*b3c09106SHawkins Jiawei                                 do_rss ? VIRTIO_NET_CTRL_MQ_RSS_CONFIG :
9178b98c15fSHawkins Jiawei                                 VIRTIO_NET_CTRL_MQ_HASH_CONFIG,
9188b98c15fSHawkins Jiawei                                 data, ARRAY_SIZE(data));
9198b98c15fSHawkins Jiawei     if (unlikely(r < 0)) {
9208b98c15fSHawkins Jiawei         return r;
9218b98c15fSHawkins Jiawei     }
9228b98c15fSHawkins Jiawei 
9238b98c15fSHawkins Jiawei     return 0;
9248b98c15fSHawkins Jiawei }
9258b98c15fSHawkins Jiawei 
926f64c7cdaSEugenio Pérez static int vhost_vdpa_net_load_mq(VhostVDPAState *s,
9271d7e2a8fSHawkins Jiawei                                   const VirtIONet *n,
9281d7e2a8fSHawkins Jiawei                                   struct iovec *out_cursor,
9291d7e2a8fSHawkins Jiawei                                   struct iovec *in_cursor)
930f64c7cdaSEugenio Pérez {
931f64c7cdaSEugenio Pérez     struct virtio_net_ctrl_mq mq;
932acec5f68SHawkins Jiawei     ssize_t r;
933f64c7cdaSEugenio Pérez 
93402d3bf09SHawkins Jiawei     if (!virtio_vdev_has_feature(&n->parent_obj, VIRTIO_NET_F_MQ)) {
935f64c7cdaSEugenio Pérez         return 0;
936f64c7cdaSEugenio Pérez     }
937f64c7cdaSEugenio Pérez 
938f64c7cdaSEugenio Pérez     mq.virtqueue_pairs = cpu_to_le16(n->curr_queue_pairs);
9392848c6aaSHawkins Jiawei     const struct iovec data = {
9402848c6aaSHawkins Jiawei         .iov_base = &mq,
9412848c6aaSHawkins Jiawei         .iov_len = sizeof(mq),
9422848c6aaSHawkins Jiawei     };
943acec5f68SHawkins Jiawei     r = vhost_vdpa_net_load_cmd(s, out_cursor, in_cursor,
9441d7e2a8fSHawkins Jiawei                                 VIRTIO_NET_CTRL_MQ,
9452848c6aaSHawkins Jiawei                                 VIRTIO_NET_CTRL_MQ_VQ_PAIRS_SET,
9462848c6aaSHawkins Jiawei                                 &data, 1);
947acec5f68SHawkins Jiawei     if (unlikely(r < 0)) {
948acec5f68SHawkins Jiawei         return r;
949f45fd95eSHawkins Jiawei     }
950f64c7cdaSEugenio Pérez 
951*b3c09106SHawkins Jiawei     if (virtio_vdev_has_feature(&n->parent_obj, VIRTIO_NET_F_RSS)) {
952*b3c09106SHawkins Jiawei         /* load the receive-side scaling state */
953*b3c09106SHawkins Jiawei         r = vhost_vdpa_net_load_rss(s, n, out_cursor, in_cursor, true);
9548b98c15fSHawkins Jiawei         if (unlikely(r < 0)) {
9558b98c15fSHawkins Jiawei             return r;
9568b98c15fSHawkins Jiawei         }
957*b3c09106SHawkins Jiawei     } else if (virtio_vdev_has_feature(&n->parent_obj,
958*b3c09106SHawkins Jiawei                                        VIRTIO_NET_F_HASH_REPORT)) {
959*b3c09106SHawkins Jiawei         /* load the hash calculation state */
960*b3c09106SHawkins Jiawei         r = vhost_vdpa_net_load_rss(s, n, out_cursor, in_cursor, false);
961*b3c09106SHawkins Jiawei         if (unlikely(r < 0)) {
962*b3c09106SHawkins Jiawei             return r;
963*b3c09106SHawkins Jiawei         }
964*b3c09106SHawkins Jiawei     }
9658b98c15fSHawkins Jiawei 
966f45fd95eSHawkins Jiawei     return 0;
967f64c7cdaSEugenio Pérez }
968f64c7cdaSEugenio Pérez 
9690b58d368SHawkins Jiawei static int vhost_vdpa_net_load_offloads(VhostVDPAState *s,
9701d7e2a8fSHawkins Jiawei                                         const VirtIONet *n,
9711d7e2a8fSHawkins Jiawei                                         struct iovec *out_cursor,
9721d7e2a8fSHawkins Jiawei                                         struct iovec *in_cursor)
9730b58d368SHawkins Jiawei {
9740b58d368SHawkins Jiawei     uint64_t offloads;
975acec5f68SHawkins Jiawei     ssize_t r;
9760b58d368SHawkins Jiawei 
9770b58d368SHawkins Jiawei     if (!virtio_vdev_has_feature(&n->parent_obj,
9780b58d368SHawkins Jiawei                                  VIRTIO_NET_F_CTRL_GUEST_OFFLOADS)) {
9790b58d368SHawkins Jiawei         return 0;
9800b58d368SHawkins Jiawei     }
9810b58d368SHawkins Jiawei 
9820b58d368SHawkins Jiawei     if (n->curr_guest_offloads == virtio_net_supported_guest_offloads(n)) {
9830b58d368SHawkins Jiawei         /*
9840b58d368SHawkins Jiawei          * According to VirtIO standard, "Upon feature negotiation
9850b58d368SHawkins Jiawei          * corresponding offload gets enabled to preserve
9860b58d368SHawkins Jiawei          * backward compatibility.".
9870b58d368SHawkins Jiawei          *
9880b58d368SHawkins Jiawei          * Therefore, there is no need to send this CVQ command if the
9890b58d368SHawkins Jiawei          * driver also enables all supported offloads, which aligns with
9900b58d368SHawkins Jiawei          * the device's defaults.
9910b58d368SHawkins Jiawei          *
9920b58d368SHawkins Jiawei          * Note that the device's defaults can mismatch the driver's
9930b58d368SHawkins Jiawei          * configuration only at live migration.
9940b58d368SHawkins Jiawei          */
9950b58d368SHawkins Jiawei         return 0;
9960b58d368SHawkins Jiawei     }
9970b58d368SHawkins Jiawei 
9980b58d368SHawkins Jiawei     offloads = cpu_to_le64(n->curr_guest_offloads);
9992848c6aaSHawkins Jiawei     const struct iovec data = {
10002848c6aaSHawkins Jiawei         .iov_base = &offloads,
10012848c6aaSHawkins Jiawei         .iov_len = sizeof(offloads),
10022848c6aaSHawkins Jiawei     };
1003acec5f68SHawkins Jiawei     r = vhost_vdpa_net_load_cmd(s, out_cursor, in_cursor,
10041d7e2a8fSHawkins Jiawei                                 VIRTIO_NET_CTRL_GUEST_OFFLOADS,
10050b58d368SHawkins Jiawei                                 VIRTIO_NET_CTRL_GUEST_OFFLOADS_SET,
10062848c6aaSHawkins Jiawei                                 &data, 1);
1007acec5f68SHawkins Jiawei     if (unlikely(r < 0)) {
1008acec5f68SHawkins Jiawei         return r;
10096f348071SHawkins Jiawei     }
10100b58d368SHawkins Jiawei 
10116f348071SHawkins Jiawei     return 0;
10120b58d368SHawkins Jiawei }
10130b58d368SHawkins Jiawei 
1014b12f907eSHawkins Jiawei static int vhost_vdpa_net_load_rx_mode(VhostVDPAState *s,
10151d7e2a8fSHawkins Jiawei                                        struct iovec *out_cursor,
10161d7e2a8fSHawkins Jiawei                                        struct iovec *in_cursor,
1017b12f907eSHawkins Jiawei                                        uint8_t cmd,
1018b12f907eSHawkins Jiawei                                        uint8_t on)
1019b12f907eSHawkins Jiawei {
1020b12f907eSHawkins Jiawei     const struct iovec data = {
1021b12f907eSHawkins Jiawei         .iov_base = &on,
1022b12f907eSHawkins Jiawei         .iov_len = sizeof(on),
1023b12f907eSHawkins Jiawei     };
1024acec5f68SHawkins Jiawei     ssize_t r;
102524e59cfeSHawkins Jiawei 
1026acec5f68SHawkins Jiawei     r = vhost_vdpa_net_load_cmd(s, out_cursor, in_cursor,
1027acec5f68SHawkins Jiawei                                 VIRTIO_NET_CTRL_RX, cmd, &data, 1);
1028acec5f68SHawkins Jiawei     if (unlikely(r < 0)) {
1029acec5f68SHawkins Jiawei         return r;
103024e59cfeSHawkins Jiawei     }
103124e59cfeSHawkins Jiawei 
103224e59cfeSHawkins Jiawei     return 0;
1033b12f907eSHawkins Jiawei }
1034b12f907eSHawkins Jiawei 
1035b12f907eSHawkins Jiawei static int vhost_vdpa_net_load_rx(VhostVDPAState *s,
10361d7e2a8fSHawkins Jiawei                                   const VirtIONet *n,
10371d7e2a8fSHawkins Jiawei                                   struct iovec *out_cursor,
10381d7e2a8fSHawkins Jiawei                                   struct iovec *in_cursor)
1039b12f907eSHawkins Jiawei {
104024e59cfeSHawkins Jiawei     ssize_t r;
1041b12f907eSHawkins Jiawei 
1042b12f907eSHawkins Jiawei     if (!virtio_vdev_has_feature(&n->parent_obj, VIRTIO_NET_F_CTRL_RX)) {
1043b12f907eSHawkins Jiawei         return 0;
1044b12f907eSHawkins Jiawei     }
1045b12f907eSHawkins Jiawei 
1046b12f907eSHawkins Jiawei     /*
1047b12f907eSHawkins Jiawei      * According to virtio_net_reset(), device turns promiscuous mode
1048b12f907eSHawkins Jiawei      * on by default.
1049b12f907eSHawkins Jiawei      *
10500a19d879SMichael Tokarev      * Additionally, according to VirtIO standard, "Since there are
1051b12f907eSHawkins Jiawei      * no guarantees, it can use a hash filter or silently switch to
1052b12f907eSHawkins Jiawei      * allmulti or promiscuous mode if it is given too many addresses.".
1053b12f907eSHawkins Jiawei      * QEMU marks `n->mac_table.uni_overflow` if guest sets too many
1054b12f907eSHawkins Jiawei      * non-multicast MAC addresses, indicating that promiscuous mode
1055b12f907eSHawkins Jiawei      * should be enabled.
1056b12f907eSHawkins Jiawei      *
1057b12f907eSHawkins Jiawei      * Therefore, QEMU should only send this CVQ command if the
1058b12f907eSHawkins Jiawei      * `n->mac_table.uni_overflow` is not marked and `n->promisc` is off,
1059b12f907eSHawkins Jiawei      * which sets promiscuous mode on, different from the device's defaults.
1060b12f907eSHawkins Jiawei      *
1061b12f907eSHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
1062b12f907eSHawkins Jiawei      * configuration only at live migration.
1063b12f907eSHawkins Jiawei      */
1064b12f907eSHawkins Jiawei     if (!n->mac_table.uni_overflow && !n->promisc) {
10651d7e2a8fSHawkins Jiawei         r = vhost_vdpa_net_load_rx_mode(s, out_cursor, in_cursor,
1066b12f907eSHawkins Jiawei                                         VIRTIO_NET_CTRL_RX_PROMISC, 0);
106724e59cfeSHawkins Jiawei         if (unlikely(r < 0)) {
106824e59cfeSHawkins Jiawei             return r;
1069b12f907eSHawkins Jiawei         }
1070b12f907eSHawkins Jiawei     }
1071b12f907eSHawkins Jiawei 
1072b12f907eSHawkins Jiawei     /*
1073b12f907eSHawkins Jiawei      * According to virtio_net_reset(), device turns all-multicast mode
1074b12f907eSHawkins Jiawei      * off by default.
1075b12f907eSHawkins Jiawei      *
1076b12f907eSHawkins Jiawei      * According to VirtIO standard, "Since there are no guarantees,
1077b12f907eSHawkins Jiawei      * it can use a hash filter or silently switch to allmulti or
1078b12f907eSHawkins Jiawei      * promiscuous mode if it is given too many addresses.". QEMU marks
1079b12f907eSHawkins Jiawei      * `n->mac_table.multi_overflow` if guest sets too many
1080b12f907eSHawkins Jiawei      * non-multicast MAC addresses.
1081b12f907eSHawkins Jiawei      *
1082b12f907eSHawkins Jiawei      * Therefore, QEMU should only send this CVQ command if the
1083b12f907eSHawkins Jiawei      * `n->mac_table.multi_overflow` is marked or `n->allmulti` is on,
1084b12f907eSHawkins Jiawei      * which sets all-multicast mode on, different from the device's defaults.
1085b12f907eSHawkins Jiawei      *
1086b12f907eSHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
1087b12f907eSHawkins Jiawei      * configuration only at live migration.
1088b12f907eSHawkins Jiawei      */
1089b12f907eSHawkins Jiawei     if (n->mac_table.multi_overflow || n->allmulti) {
10901d7e2a8fSHawkins Jiawei         r = vhost_vdpa_net_load_rx_mode(s, out_cursor, in_cursor,
1091b12f907eSHawkins Jiawei                                         VIRTIO_NET_CTRL_RX_ALLMULTI, 1);
109224e59cfeSHawkins Jiawei         if (unlikely(r < 0)) {
109324e59cfeSHawkins Jiawei             return r;
1094b12f907eSHawkins Jiawei         }
1095b12f907eSHawkins Jiawei     }
1096b12f907eSHawkins Jiawei 
10974fd180c7SHawkins Jiawei     if (!virtio_vdev_has_feature(&n->parent_obj, VIRTIO_NET_F_CTRL_RX_EXTRA)) {
10984fd180c7SHawkins Jiawei         return 0;
10994fd180c7SHawkins Jiawei     }
11004fd180c7SHawkins Jiawei 
11014fd180c7SHawkins Jiawei     /*
11024fd180c7SHawkins Jiawei      * According to virtio_net_reset(), device turns all-unicast mode
11034fd180c7SHawkins Jiawei      * off by default.
11044fd180c7SHawkins Jiawei      *
11054fd180c7SHawkins Jiawei      * Therefore, QEMU should only send this CVQ command if the driver
11064fd180c7SHawkins Jiawei      * sets all-unicast mode on, different from the device's defaults.
11074fd180c7SHawkins Jiawei      *
11084fd180c7SHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
11094fd180c7SHawkins Jiawei      * configuration only at live migration.
11104fd180c7SHawkins Jiawei      */
11114fd180c7SHawkins Jiawei     if (n->alluni) {
11121d7e2a8fSHawkins Jiawei         r = vhost_vdpa_net_load_rx_mode(s, out_cursor, in_cursor,
11134fd180c7SHawkins Jiawei                                         VIRTIO_NET_CTRL_RX_ALLUNI, 1);
111424e59cfeSHawkins Jiawei         if (r < 0) {
111524e59cfeSHawkins Jiawei             return r;
11164fd180c7SHawkins Jiawei         }
11174fd180c7SHawkins Jiawei     }
11184fd180c7SHawkins Jiawei 
11194fd180c7SHawkins Jiawei     /*
11204fd180c7SHawkins Jiawei      * According to virtio_net_reset(), device turns non-multicast mode
11214fd180c7SHawkins Jiawei      * off by default.
11224fd180c7SHawkins Jiawei      *
11234fd180c7SHawkins Jiawei      * Therefore, QEMU should only send this CVQ command if the driver
11244fd180c7SHawkins Jiawei      * sets non-multicast mode on, different from the device's defaults.
11254fd180c7SHawkins Jiawei      *
11264fd180c7SHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
11274fd180c7SHawkins Jiawei      * configuration only at live migration.
11284fd180c7SHawkins Jiawei      */
11294fd180c7SHawkins Jiawei     if (n->nomulti) {
11301d7e2a8fSHawkins Jiawei         r = vhost_vdpa_net_load_rx_mode(s, out_cursor, in_cursor,
11314fd180c7SHawkins Jiawei                                         VIRTIO_NET_CTRL_RX_NOMULTI, 1);
113224e59cfeSHawkins Jiawei         if (r < 0) {
113324e59cfeSHawkins Jiawei             return r;
11344fd180c7SHawkins Jiawei         }
11354fd180c7SHawkins Jiawei     }
11364fd180c7SHawkins Jiawei 
11374fd180c7SHawkins Jiawei     /*
11384fd180c7SHawkins Jiawei      * According to virtio_net_reset(), device turns non-unicast mode
11394fd180c7SHawkins Jiawei      * off by default.
11404fd180c7SHawkins Jiawei      *
11414fd180c7SHawkins Jiawei      * Therefore, QEMU should only send this CVQ command if the driver
11424fd180c7SHawkins Jiawei      * sets non-unicast mode on, different from the device's defaults.
11434fd180c7SHawkins Jiawei      *
11444fd180c7SHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
11454fd180c7SHawkins Jiawei      * configuration only at live migration.
11464fd180c7SHawkins Jiawei      */
11474fd180c7SHawkins Jiawei     if (n->nouni) {
11481d7e2a8fSHawkins Jiawei         r = vhost_vdpa_net_load_rx_mode(s, out_cursor, in_cursor,
11494fd180c7SHawkins Jiawei                                         VIRTIO_NET_CTRL_RX_NOUNI, 1);
115024e59cfeSHawkins Jiawei         if (r < 0) {
115124e59cfeSHawkins Jiawei             return r;
11524fd180c7SHawkins Jiawei         }
11534fd180c7SHawkins Jiawei     }
11544fd180c7SHawkins Jiawei 
11554fd180c7SHawkins Jiawei     /*
11564fd180c7SHawkins Jiawei      * According to virtio_net_reset(), device turns non-broadcast mode
11574fd180c7SHawkins Jiawei      * off by default.
11584fd180c7SHawkins Jiawei      *
11594fd180c7SHawkins Jiawei      * Therefore, QEMU should only send this CVQ command if the driver
11604fd180c7SHawkins Jiawei      * sets non-broadcast mode on, different from the device's defaults.
11614fd180c7SHawkins Jiawei      *
11624fd180c7SHawkins Jiawei      * Note that the device's defaults can mismatch the driver's
11634fd180c7SHawkins Jiawei      * configuration only at live migration.
11644fd180c7SHawkins Jiawei      */
11654fd180c7SHawkins Jiawei     if (n->nobcast) {
11661d7e2a8fSHawkins Jiawei         r = vhost_vdpa_net_load_rx_mode(s, out_cursor, in_cursor,
11674fd180c7SHawkins Jiawei                                         VIRTIO_NET_CTRL_RX_NOBCAST, 1);
116824e59cfeSHawkins Jiawei         if (r < 0) {
116924e59cfeSHawkins Jiawei             return r;
11704fd180c7SHawkins Jiawei         }
11714fd180c7SHawkins Jiawei     }
11724fd180c7SHawkins Jiawei 
1173b12f907eSHawkins Jiawei     return 0;
1174b12f907eSHawkins Jiawei }
1175b12f907eSHawkins Jiawei 
11768f7e9967SHawkins Jiawei static int vhost_vdpa_net_load_single_vlan(VhostVDPAState *s,
11778f7e9967SHawkins Jiawei                                            const VirtIONet *n,
11781d7e2a8fSHawkins Jiawei                                            struct iovec *out_cursor,
11791d7e2a8fSHawkins Jiawei                                            struct iovec *in_cursor,
11808f7e9967SHawkins Jiawei                                            uint16_t vid)
11818f7e9967SHawkins Jiawei {
11828f7e9967SHawkins Jiawei     const struct iovec data = {
11838f7e9967SHawkins Jiawei         .iov_base = &vid,
11848f7e9967SHawkins Jiawei         .iov_len = sizeof(vid),
11858f7e9967SHawkins Jiawei     };
1186acec5f68SHawkins Jiawei     ssize_t r = vhost_vdpa_net_load_cmd(s, out_cursor, in_cursor,
11871d7e2a8fSHawkins Jiawei                                         VIRTIO_NET_CTRL_VLAN,
11888f7e9967SHawkins Jiawei                                         VIRTIO_NET_CTRL_VLAN_ADD,
11898f7e9967SHawkins Jiawei                                         &data, 1);
1190acec5f68SHawkins Jiawei     if (unlikely(r < 0)) {
1191acec5f68SHawkins Jiawei         return r;
11928f7e9967SHawkins Jiawei     }
11938f7e9967SHawkins Jiawei 
11948f7e9967SHawkins Jiawei     return 0;
11958f7e9967SHawkins Jiawei }
11968f7e9967SHawkins Jiawei 
11978f7e9967SHawkins Jiawei static int vhost_vdpa_net_load_vlan(VhostVDPAState *s,
11981d7e2a8fSHawkins Jiawei                                     const VirtIONet *n,
11991d7e2a8fSHawkins Jiawei                                     struct iovec *out_cursor,
12001d7e2a8fSHawkins Jiawei                                     struct iovec *in_cursor)
12018f7e9967SHawkins Jiawei {
12028f7e9967SHawkins Jiawei     int r;
12038f7e9967SHawkins Jiawei 
12048f7e9967SHawkins Jiawei     if (!virtio_vdev_has_feature(&n->parent_obj, VIRTIO_NET_F_CTRL_VLAN)) {
12058f7e9967SHawkins Jiawei         return 0;
12068f7e9967SHawkins Jiawei     }
12078f7e9967SHawkins Jiawei 
12088f7e9967SHawkins Jiawei     for (int i = 0; i < MAX_VLAN >> 5; i++) {
12098f7e9967SHawkins Jiawei         for (int j = 0; n->vlans[i] && j <= 0x1f; j++) {
12108f7e9967SHawkins Jiawei             if (n->vlans[i] & (1U << j)) {
12111d7e2a8fSHawkins Jiawei                 r = vhost_vdpa_net_load_single_vlan(s, n, out_cursor,
12121d7e2a8fSHawkins Jiawei                                                     in_cursor, (i << 5) + j);
12138f7e9967SHawkins Jiawei                 if (unlikely(r != 0)) {
12148f7e9967SHawkins Jiawei                     return r;
12158f7e9967SHawkins Jiawei                 }
12168f7e9967SHawkins Jiawei             }
12178f7e9967SHawkins Jiawei         }
12188f7e9967SHawkins Jiawei     }
12198f7e9967SHawkins Jiawei 
12208f7e9967SHawkins Jiawei     return 0;
12218f7e9967SHawkins Jiawei }
12228f7e9967SHawkins Jiawei 
1223f3fada59SEugenio Pérez static int vhost_vdpa_net_cvq_load(NetClientState *nc)
1224dd036d8dSEugenio Pérez {
1225dd036d8dSEugenio Pérez     VhostVDPAState *s = DO_UPCAST(VhostVDPAState, nc, nc);
1226f73c0c43SEugenio Pérez     struct vhost_vdpa *v = &s->vhost_vdpa;
1227dd036d8dSEugenio Pérez     const VirtIONet *n;
1228f73c0c43SEugenio Pérez     int r;
12291d7e2a8fSHawkins Jiawei     struct iovec out_cursor, in_cursor;
1230dd036d8dSEugenio Pérez 
1231dd036d8dSEugenio Pérez     assert(nc->info->type == NET_CLIENT_DRIVER_VHOST_VDPA);
1232dd036d8dSEugenio Pérez 
12336c482547SEugenio Pérez     vhost_vdpa_set_vring_ready(v, v->dev->vq_index);
1234dd036d8dSEugenio Pérez 
12356c482547SEugenio Pérez     if (v->shadow_vqs_enabled) {
1236dd036d8dSEugenio Pérez         n = VIRTIO_NET(v->dev->vdev);
12371d7e2a8fSHawkins Jiawei         vhost_vdpa_net_load_cursor_reset(s, &out_cursor, &in_cursor);
12381d7e2a8fSHawkins Jiawei         r = vhost_vdpa_net_load_mac(s, n, &out_cursor, &in_cursor);
1239f73c0c43SEugenio Pérez         if (unlikely(r < 0)) {
1240f73c0c43SEugenio Pérez             return r;
1241dd036d8dSEugenio Pérez         }
12421d7e2a8fSHawkins Jiawei         r = vhost_vdpa_net_load_mq(s, n, &out_cursor, &in_cursor);
1243f64c7cdaSEugenio Pérez         if (unlikely(r)) {
1244f64c7cdaSEugenio Pérez             return r;
1245f64c7cdaSEugenio Pérez         }
12461d7e2a8fSHawkins Jiawei         r = vhost_vdpa_net_load_offloads(s, n, &out_cursor, &in_cursor);
12470b58d368SHawkins Jiawei         if (unlikely(r)) {
12480b58d368SHawkins Jiawei             return r;
12490b58d368SHawkins Jiawei         }
12501d7e2a8fSHawkins Jiawei         r = vhost_vdpa_net_load_rx(s, n, &out_cursor, &in_cursor);
1251b12f907eSHawkins Jiawei         if (unlikely(r)) {
1252b12f907eSHawkins Jiawei             return r;
1253b12f907eSHawkins Jiawei         }
12541d7e2a8fSHawkins Jiawei         r = vhost_vdpa_net_load_vlan(s, n, &out_cursor, &in_cursor);
12558f7e9967SHawkins Jiawei         if (unlikely(r)) {
12568f7e9967SHawkins Jiawei             return r;
12578f7e9967SHawkins Jiawei         }
1258acec5f68SHawkins Jiawei 
1259acec5f68SHawkins Jiawei         /*
1260acec5f68SHawkins Jiawei          * We need to poll and check all pending device's used buffers.
1261acec5f68SHawkins Jiawei          *
1262acec5f68SHawkins Jiawei          * We can poll here since we've had BQL from the time
1263acec5f68SHawkins Jiawei          * we sent the descriptor.
1264acec5f68SHawkins Jiawei          */
1265acec5f68SHawkins Jiawei         r = vhost_vdpa_net_svq_flush(s, in_cursor.iov_base - (void *)s->status);
1266fee364e4SHawkins Jiawei         if (unlikely(r)) {
1267fee364e4SHawkins Jiawei             return r;
1268fee364e4SHawkins Jiawei         }
12696c482547SEugenio Pérez     }
12706c482547SEugenio Pérez 
12716c482547SEugenio Pérez     for (int i = 0; i < v->dev->vq_index; ++i) {
12726c482547SEugenio Pérez         vhost_vdpa_set_vring_ready(v, i);
12736c482547SEugenio Pérez     }
1274dd036d8dSEugenio Pérez 
1275dd036d8dSEugenio Pérez     return 0;
1276dd036d8dSEugenio Pérez }
1277dd036d8dSEugenio Pérez 
1278f8972b56SEugenio Pérez static NetClientInfo net_vhost_vdpa_cvq_info = {
1279f8972b56SEugenio Pérez     .type = NET_CLIENT_DRIVER_VHOST_VDPA,
1280f8972b56SEugenio Pérez     .size = sizeof(VhostVDPAState),
1281f8972b56SEugenio Pérez     .receive = vhost_vdpa_receive,
12827a7f87e9SEugenio Pérez     .start = vhost_vdpa_net_cvq_start,
1283f3fada59SEugenio Pérez     .load = vhost_vdpa_net_cvq_load,
12847a7f87e9SEugenio Pérez     .stop = vhost_vdpa_net_cvq_stop,
1285f8972b56SEugenio Pérez     .cleanup = vhost_vdpa_cleanup,
1286f8972b56SEugenio Pérez     .has_vnet_hdr = vhost_vdpa_has_vnet_hdr,
1287f8972b56SEugenio Pérez     .has_ufo = vhost_vdpa_has_ufo,
1288f8972b56SEugenio Pérez     .check_peer_type = vhost_vdpa_check_peer_type,
1289d1fd2d31SHawkins Jiawei     .set_steering_ebpf = vhost_vdpa_set_steering_ebpf,
1290f8972b56SEugenio Pérez };
1291f8972b56SEugenio Pérez 
1292fee364e4SHawkins Jiawei /*
1293fee364e4SHawkins Jiawei  * Forward the excessive VIRTIO_NET_CTRL_MAC_TABLE_SET CVQ command to
1294fee364e4SHawkins Jiawei  * vdpa device.
1295fee364e4SHawkins Jiawei  *
1296fee364e4SHawkins Jiawei  * Considering that QEMU cannot send the entire filter table to the
1297fee364e4SHawkins Jiawei  * vdpa device, it should send the VIRTIO_NET_CTRL_RX_PROMISC CVQ
1298fee364e4SHawkins Jiawei  * command to enable promiscuous mode to receive all packets,
1299fee364e4SHawkins Jiawei  * according to VirtIO standard, "Since there are no guarantees,
1300fee364e4SHawkins Jiawei  * it can use a hash filter or silently switch to allmulti or
1301fee364e4SHawkins Jiawei  * promiscuous mode if it is given too many addresses.".
1302fee364e4SHawkins Jiawei  *
1303fee364e4SHawkins Jiawei  * Since QEMU ignores MAC addresses beyond `MAC_TABLE_ENTRIES` and
1304fee364e4SHawkins Jiawei  * marks `n->mac_table.x_overflow` accordingly, it should have
1305fee364e4SHawkins Jiawei  * the same effect on the device model to receive
1306fee364e4SHawkins Jiawei  * (`MAC_TABLE_ENTRIES` + 1) or more non-multicast MAC addresses.
1307fee364e4SHawkins Jiawei  * The same applies to multicast MAC addresses.
1308fee364e4SHawkins Jiawei  *
1309fee364e4SHawkins Jiawei  * Therefore, QEMU can provide the device model with a fake
1310fee364e4SHawkins Jiawei  * VIRTIO_NET_CTRL_MAC_TABLE_SET command with (`MAC_TABLE_ENTRIES` + 1)
1311fee364e4SHawkins Jiawei  * non-multicast MAC addresses and (`MAC_TABLE_ENTRIES` + 1) multicast
1312fee364e4SHawkins Jiawei  * MAC addresses. This ensures that the device model marks
1313fee364e4SHawkins Jiawei  * `n->mac_table.uni_overflow` and `n->mac_table.multi_overflow`,
1314fee364e4SHawkins Jiawei  * allowing all packets to be received, which aligns with the
1315fee364e4SHawkins Jiawei  * state of the vdpa device.
1316fee364e4SHawkins Jiawei  */
1317fee364e4SHawkins Jiawei static int vhost_vdpa_net_excessive_mac_filter_cvq_add(VhostVDPAState *s,
1318fee364e4SHawkins Jiawei                                                        VirtQueueElement *elem,
1319327dedb8SHawkins Jiawei                                                        struct iovec *out,
1320327dedb8SHawkins Jiawei                                                        const struct iovec *in)
1321fee364e4SHawkins Jiawei {
1322fee364e4SHawkins Jiawei     struct virtio_net_ctrl_mac mac_data, *mac_ptr;
1323fee364e4SHawkins Jiawei     struct virtio_net_ctrl_hdr *hdr_ptr;
1324fee364e4SHawkins Jiawei     uint32_t cursor;
1325fee364e4SHawkins Jiawei     ssize_t r;
1326327dedb8SHawkins Jiawei     uint8_t on = 1;
1327fee364e4SHawkins Jiawei 
1328fee364e4SHawkins Jiawei     /* parse the non-multicast MAC address entries from CVQ command */
1329fee364e4SHawkins Jiawei     cursor = sizeof(*hdr_ptr);
1330fee364e4SHawkins Jiawei     r = iov_to_buf(elem->out_sg, elem->out_num, cursor,
1331fee364e4SHawkins Jiawei                    &mac_data, sizeof(mac_data));
1332fee364e4SHawkins Jiawei     if (unlikely(r != sizeof(mac_data))) {
1333fee364e4SHawkins Jiawei         /*
1334fee364e4SHawkins Jiawei          * If the CVQ command is invalid, we should simulate the vdpa device
1335fee364e4SHawkins Jiawei          * to reject the VIRTIO_NET_CTRL_MAC_TABLE_SET CVQ command
1336fee364e4SHawkins Jiawei          */
1337fee364e4SHawkins Jiawei         *s->status = VIRTIO_NET_ERR;
1338fee364e4SHawkins Jiawei         return sizeof(*s->status);
1339fee364e4SHawkins Jiawei     }
1340fee364e4SHawkins Jiawei     cursor += sizeof(mac_data) + le32_to_cpu(mac_data.entries) * ETH_ALEN;
1341fee364e4SHawkins Jiawei 
1342fee364e4SHawkins Jiawei     /* parse the multicast MAC address entries from CVQ command */
1343fee364e4SHawkins Jiawei     r = iov_to_buf(elem->out_sg, elem->out_num, cursor,
1344fee364e4SHawkins Jiawei                    &mac_data, sizeof(mac_data));
1345fee364e4SHawkins Jiawei     if (r != sizeof(mac_data)) {
1346fee364e4SHawkins Jiawei         /*
1347fee364e4SHawkins Jiawei          * If the CVQ command is invalid, we should simulate the vdpa device
1348fee364e4SHawkins Jiawei          * to reject the VIRTIO_NET_CTRL_MAC_TABLE_SET CVQ command
1349fee364e4SHawkins Jiawei          */
1350fee364e4SHawkins Jiawei         *s->status = VIRTIO_NET_ERR;
1351fee364e4SHawkins Jiawei         return sizeof(*s->status);
1352fee364e4SHawkins Jiawei     }
1353fee364e4SHawkins Jiawei     cursor += sizeof(mac_data) + le32_to_cpu(mac_data.entries) * ETH_ALEN;
1354fee364e4SHawkins Jiawei 
1355fee364e4SHawkins Jiawei     /* validate the CVQ command */
1356fee364e4SHawkins Jiawei     if (iov_size(elem->out_sg, elem->out_num) != cursor) {
1357fee364e4SHawkins Jiawei         /*
1358fee364e4SHawkins Jiawei          * If the CVQ command is invalid, we should simulate the vdpa device
1359fee364e4SHawkins Jiawei          * to reject the VIRTIO_NET_CTRL_MAC_TABLE_SET CVQ command
1360fee364e4SHawkins Jiawei          */
1361fee364e4SHawkins Jiawei         *s->status = VIRTIO_NET_ERR;
1362fee364e4SHawkins Jiawei         return sizeof(*s->status);
1363fee364e4SHawkins Jiawei     }
1364fee364e4SHawkins Jiawei 
1365fee364e4SHawkins Jiawei     /*
1366fee364e4SHawkins Jiawei      * According to VirtIO standard, "Since there are no guarantees,
1367fee364e4SHawkins Jiawei      * it can use a hash filter or silently switch to allmulti or
1368fee364e4SHawkins Jiawei      * promiscuous mode if it is given too many addresses.".
1369fee364e4SHawkins Jiawei      *
1370fee364e4SHawkins Jiawei      * Therefore, considering that QEMU is unable to send the entire
1371fee364e4SHawkins Jiawei      * filter table to the vdpa device, it should send the
1372fee364e4SHawkins Jiawei      * VIRTIO_NET_CTRL_RX_PROMISC CVQ command to enable promiscuous mode
1373fee364e4SHawkins Jiawei      */
1374327dedb8SHawkins Jiawei     hdr_ptr = out->iov_base;
1375327dedb8SHawkins Jiawei     out->iov_len = sizeof(*hdr_ptr) + sizeof(on);
1376327dedb8SHawkins Jiawei 
1377327dedb8SHawkins Jiawei     hdr_ptr->class = VIRTIO_NET_CTRL_RX;
1378327dedb8SHawkins Jiawei     hdr_ptr->cmd = VIRTIO_NET_CTRL_RX_PROMISC;
1379327dedb8SHawkins Jiawei     iov_from_buf(out, 1, sizeof(*hdr_ptr), &on, sizeof(on));
1380327dedb8SHawkins Jiawei     r = vhost_vdpa_net_cvq_add(s, out, 1, in, 1);
1381fee364e4SHawkins Jiawei     if (unlikely(r < 0)) {
1382fee364e4SHawkins Jiawei         return r;
1383fee364e4SHawkins Jiawei     }
1384a864a321SHawkins Jiawei 
1385a864a321SHawkins Jiawei     /*
1386a864a321SHawkins Jiawei      * We can poll here since we've had BQL from the time
1387a864a321SHawkins Jiawei      * we sent the descriptor.
1388a864a321SHawkins Jiawei      */
1389a864a321SHawkins Jiawei     r = vhost_vdpa_net_svq_poll(s, 1);
1390a864a321SHawkins Jiawei     if (unlikely(r < sizeof(*s->status))) {
1391a864a321SHawkins Jiawei         return r;
1392a864a321SHawkins Jiawei     }
1393fee364e4SHawkins Jiawei     if (*s->status != VIRTIO_NET_OK) {
1394fee364e4SHawkins Jiawei         return sizeof(*s->status);
1395fee364e4SHawkins Jiawei     }
1396fee364e4SHawkins Jiawei 
1397fee364e4SHawkins Jiawei     /*
1398fee364e4SHawkins Jiawei      * QEMU should also send a fake VIRTIO_NET_CTRL_MAC_TABLE_SET CVQ
1399fee364e4SHawkins Jiawei      * command to the device model, including (`MAC_TABLE_ENTRIES` + 1)
1400fee364e4SHawkins Jiawei      * non-multicast MAC addresses and (`MAC_TABLE_ENTRIES` + 1)
1401fee364e4SHawkins Jiawei      * multicast MAC addresses.
1402fee364e4SHawkins Jiawei      *
1403fee364e4SHawkins Jiawei      * By doing so, the device model can mark `n->mac_table.uni_overflow`
1404fee364e4SHawkins Jiawei      * and `n->mac_table.multi_overflow`, enabling all packets to be
1405fee364e4SHawkins Jiawei      * received, which aligns with the state of the vdpa device.
1406fee364e4SHawkins Jiawei      */
1407fee364e4SHawkins Jiawei     cursor = 0;
1408fee364e4SHawkins Jiawei     uint32_t fake_uni_entries = MAC_TABLE_ENTRIES + 1,
1409fee364e4SHawkins Jiawei              fake_mul_entries = MAC_TABLE_ENTRIES + 1,
1410fee364e4SHawkins Jiawei              fake_cvq_size = sizeof(struct virtio_net_ctrl_hdr) +
1411fee364e4SHawkins Jiawei                              sizeof(mac_data) + fake_uni_entries * ETH_ALEN +
1412fee364e4SHawkins Jiawei                              sizeof(mac_data) + fake_mul_entries * ETH_ALEN;
1413fee364e4SHawkins Jiawei 
1414fee364e4SHawkins Jiawei     assert(fake_cvq_size < vhost_vdpa_net_cvq_cmd_page_len());
1415fee364e4SHawkins Jiawei     out->iov_len = fake_cvq_size;
1416fee364e4SHawkins Jiawei 
1417fee364e4SHawkins Jiawei     /* pack the header for fake CVQ command */
1418fee364e4SHawkins Jiawei     hdr_ptr = out->iov_base + cursor;
1419fee364e4SHawkins Jiawei     hdr_ptr->class = VIRTIO_NET_CTRL_MAC;
1420fee364e4SHawkins Jiawei     hdr_ptr->cmd = VIRTIO_NET_CTRL_MAC_TABLE_SET;
1421fee364e4SHawkins Jiawei     cursor += sizeof(*hdr_ptr);
1422fee364e4SHawkins Jiawei 
1423fee364e4SHawkins Jiawei     /*
1424fee364e4SHawkins Jiawei      * Pack the non-multicast MAC addresses part for fake CVQ command.
1425fee364e4SHawkins Jiawei      *
1426fee364e4SHawkins Jiawei      * According to virtio_net_handle_mac(), QEMU doesn't verify the MAC
14270a19d879SMichael Tokarev      * addresses provided in CVQ command. Therefore, only the entries
1428fee364e4SHawkins Jiawei      * field need to be prepared in the CVQ command.
1429fee364e4SHawkins Jiawei      */
1430fee364e4SHawkins Jiawei     mac_ptr = out->iov_base + cursor;
1431fee364e4SHawkins Jiawei     mac_ptr->entries = cpu_to_le32(fake_uni_entries);
1432fee364e4SHawkins Jiawei     cursor += sizeof(*mac_ptr) + fake_uni_entries * ETH_ALEN;
1433fee364e4SHawkins Jiawei 
1434fee364e4SHawkins Jiawei     /*
1435fee364e4SHawkins Jiawei      * Pack the multicast MAC addresses part for fake CVQ command.
1436fee364e4SHawkins Jiawei      *
1437fee364e4SHawkins Jiawei      * According to virtio_net_handle_mac(), QEMU doesn't verify the MAC
14380a19d879SMichael Tokarev      * addresses provided in CVQ command. Therefore, only the entries
1439fee364e4SHawkins Jiawei      * field need to be prepared in the CVQ command.
1440fee364e4SHawkins Jiawei      */
1441fee364e4SHawkins Jiawei     mac_ptr = out->iov_base + cursor;
1442fee364e4SHawkins Jiawei     mac_ptr->entries = cpu_to_le32(fake_mul_entries);
1443fee364e4SHawkins Jiawei 
1444fee364e4SHawkins Jiawei     /*
1445fee364e4SHawkins Jiawei      * Simulating QEMU poll a vdpa device used buffer
1446fee364e4SHawkins Jiawei      * for VIRTIO_NET_CTRL_MAC_TABLE_SET CVQ command
1447fee364e4SHawkins Jiawei      */
1448fee364e4SHawkins Jiawei     return sizeof(*s->status);
1449fee364e4SHawkins Jiawei }
1450fee364e4SHawkins Jiawei 
14512df4dd31SEugenio Pérez /**
14522df4dd31SEugenio Pérez  * Validate and copy control virtqueue commands.
14532df4dd31SEugenio Pérez  *
14542df4dd31SEugenio Pérez  * Following QEMU guidelines, we offer a copy of the buffers to the device to
14552df4dd31SEugenio Pérez  * prevent TOCTOU bugs.
1456bd907ae4SEugenio Pérez  */
1457bd907ae4SEugenio Pérez static int vhost_vdpa_net_handle_ctrl_avail(VhostShadowVirtqueue *svq,
1458bd907ae4SEugenio Pérez                                             VirtQueueElement *elem,
1459bd907ae4SEugenio Pérez                                             void *opaque)
1460bd907ae4SEugenio Pérez {
14612df4dd31SEugenio Pérez     VhostVDPAState *s = opaque;
1462be4278b6SEugenio Pérez     size_t in_len;
146345c41018SHawkins Jiawei     const struct virtio_net_ctrl_hdr *ctrl;
1464bd907ae4SEugenio Pérez     virtio_net_ctrl_ack status = VIRTIO_NET_ERR;
14657a7f87e9SEugenio Pérez     /* Out buffer sent to both the vdpa device and the device model */
14667a7f87e9SEugenio Pérez     struct iovec out = {
14677a7f87e9SEugenio Pérez         .iov_base = s->cvq_cmd_out_buffer,
14687a7f87e9SEugenio Pérez     };
14692df4dd31SEugenio Pérez     /* in buffer used for device model */
14700e6bff0dSHawkins Jiawei     const struct iovec model_in = {
14712df4dd31SEugenio Pérez         .iov_base = &status,
14722df4dd31SEugenio Pérez         .iov_len = sizeof(status),
14732df4dd31SEugenio Pérez     };
14740e6bff0dSHawkins Jiawei     /* in buffer used for vdpa device */
14750e6bff0dSHawkins Jiawei     const struct iovec vdpa_in = {
14760e6bff0dSHawkins Jiawei         .iov_base = s->status,
14770e6bff0dSHawkins Jiawei         .iov_len = sizeof(*s->status),
14780e6bff0dSHawkins Jiawei     };
1479be4278b6SEugenio Pérez     ssize_t dev_written = -EINVAL;
1480bd907ae4SEugenio Pérez 
14817a7f87e9SEugenio Pérez     out.iov_len = iov_to_buf(elem->out_sg, elem->out_num, 0,
14827a7f87e9SEugenio Pérez                              s->cvq_cmd_out_buffer,
1483fee364e4SHawkins Jiawei                              vhost_vdpa_net_cvq_cmd_page_len());
148445c41018SHawkins Jiawei 
148545c41018SHawkins Jiawei     ctrl = s->cvq_cmd_out_buffer;
148645c41018SHawkins Jiawei     if (ctrl->class == VIRTIO_NET_CTRL_ANNOUNCE) {
14873f9a3eebSEugenio Pérez         /*
14883f9a3eebSEugenio Pérez          * Guest announce capability is emulated by qemu, so don't forward to
14893f9a3eebSEugenio Pérez          * the device.
14903f9a3eebSEugenio Pérez          */
14913f9a3eebSEugenio Pérez         dev_written = sizeof(status);
14923f9a3eebSEugenio Pérez         *s->status = VIRTIO_NET_OK;
1493fee364e4SHawkins Jiawei     } else if (unlikely(ctrl->class == VIRTIO_NET_CTRL_MAC &&
1494fee364e4SHawkins Jiawei                         ctrl->cmd == VIRTIO_NET_CTRL_MAC_TABLE_SET &&
1495fee364e4SHawkins Jiawei                         iov_size(elem->out_sg, elem->out_num) > out.iov_len)) {
1496fee364e4SHawkins Jiawei         /*
1497fee364e4SHawkins Jiawei          * Due to the size limitation of the out buffer sent to the vdpa device,
1498fee364e4SHawkins Jiawei          * which is determined by vhost_vdpa_net_cvq_cmd_page_len(), excessive
1499fee364e4SHawkins Jiawei          * MAC addresses set by the driver for the filter table can cause
1500fee364e4SHawkins Jiawei          * truncation of the CVQ command in QEMU. As a result, the vdpa device
1501fee364e4SHawkins Jiawei          * rejects the flawed CVQ command.
1502fee364e4SHawkins Jiawei          *
1503fee364e4SHawkins Jiawei          * Therefore, QEMU must handle this situation instead of sending
15040a19d879SMichael Tokarev          * the CVQ command directly.
1505fee364e4SHawkins Jiawei          */
1506fee364e4SHawkins Jiawei         dev_written = vhost_vdpa_net_excessive_mac_filter_cvq_add(s, elem,
1507327dedb8SHawkins Jiawei                                                             &out, &vdpa_in);
1508fee364e4SHawkins Jiawei         if (unlikely(dev_written < 0)) {
1509fee364e4SHawkins Jiawei             goto out;
1510fee364e4SHawkins Jiawei         }
15113f9a3eebSEugenio Pérez     } else {
1512a864a321SHawkins Jiawei         ssize_t r;
1513a864a321SHawkins Jiawei         r = vhost_vdpa_net_cvq_add(s, &out, 1, &vdpa_in, 1);
1514a864a321SHawkins Jiawei         if (unlikely(r < 0)) {
1515a864a321SHawkins Jiawei             dev_written = r;
1516bd907ae4SEugenio Pérez             goto out;
1517bd907ae4SEugenio Pérez         }
1518a864a321SHawkins Jiawei 
1519a864a321SHawkins Jiawei         /*
1520a864a321SHawkins Jiawei          * We can poll here since we've had BQL from the time
1521a864a321SHawkins Jiawei          * we sent the descriptor.
1522a864a321SHawkins Jiawei          */
1523a864a321SHawkins Jiawei         dev_written = vhost_vdpa_net_svq_poll(s, 1);
15243f9a3eebSEugenio Pérez     }
1525bd907ae4SEugenio Pérez 
1526bd907ae4SEugenio Pérez     if (unlikely(dev_written < sizeof(status))) {
1527bd907ae4SEugenio Pérez         error_report("Insufficient written data (%zu)", dev_written);
15282df4dd31SEugenio Pérez         goto out;
15292df4dd31SEugenio Pérez     }
15302df4dd31SEugenio Pérez 
153117fb889fSEugenio Pérez     if (*s->status != VIRTIO_NET_OK) {
1532d45243bcSEugenio Pérez         goto out;
15332df4dd31SEugenio Pérez     }
15342df4dd31SEugenio Pérez 
15352df4dd31SEugenio Pérez     status = VIRTIO_NET_ERR;
15360e6bff0dSHawkins Jiawei     virtio_net_handle_ctrl_iov(svq->vdev, &model_in, 1, &out, 1);
15372df4dd31SEugenio Pérez     if (status != VIRTIO_NET_OK) {
15382df4dd31SEugenio Pérez         error_report("Bad CVQ processing in model");
1539bd907ae4SEugenio Pérez     }
1540bd907ae4SEugenio Pérez 
1541bd907ae4SEugenio Pérez out:
1542bd907ae4SEugenio Pérez     in_len = iov_from_buf(elem->in_sg, elem->in_num, 0, &status,
1543bd907ae4SEugenio Pérez                           sizeof(status));
1544bd907ae4SEugenio Pérez     if (unlikely(in_len < sizeof(status))) {
1545bd907ae4SEugenio Pérez         error_report("Bad device CVQ written length");
1546bd907ae4SEugenio Pérez     }
1547bd907ae4SEugenio Pérez     vhost_svq_push_elem(svq, elem, MIN(in_len, sizeof(status)));
1548031b1abaSHawkins Jiawei     /*
1549031b1abaSHawkins Jiawei      * `elem` belongs to vhost_vdpa_net_handle_ctrl_avail() only when
1550031b1abaSHawkins Jiawei      * the function successfully forwards the CVQ command, indicated
1551031b1abaSHawkins Jiawei      * by a non-negative value of `dev_written`. Otherwise, it still
1552031b1abaSHawkins Jiawei      * belongs to SVQ.
1553031b1abaSHawkins Jiawei      * This function should only free the `elem` when it owns.
1554031b1abaSHawkins Jiawei      */
1555031b1abaSHawkins Jiawei     if (dev_written >= 0) {
1556bd907ae4SEugenio Pérez         g_free(elem);
1557031b1abaSHawkins Jiawei     }
1558be4278b6SEugenio Pérez     return dev_written < 0 ? dev_written : 0;
1559bd907ae4SEugenio Pérez }
1560bd907ae4SEugenio Pérez 
1561bd907ae4SEugenio Pérez static const VhostShadowVirtqueueOps vhost_vdpa_net_svq_ops = {
1562bd907ae4SEugenio Pérez     .avail_handler = vhost_vdpa_net_handle_ctrl_avail,
1563bd907ae4SEugenio Pérez };
1564bd907ae4SEugenio Pérez 
1565152128d6SEugenio Pérez /**
1566152128d6SEugenio Pérez  * Probe if CVQ is isolated
1567152128d6SEugenio Pérez  *
1568152128d6SEugenio Pérez  * @device_fd         The vdpa device fd
1569152128d6SEugenio Pérez  * @features          Features offered by the device.
1570152128d6SEugenio Pérez  * @cvq_index         The control vq pair index
1571152128d6SEugenio Pérez  *
1572152128d6SEugenio Pérez  * Returns <0 in case of failure, 0 if false and 1 if true.
1573152128d6SEugenio Pérez  */
1574152128d6SEugenio Pérez static int vhost_vdpa_probe_cvq_isolation(int device_fd, uint64_t features,
1575152128d6SEugenio Pérez                                           int cvq_index, Error **errp)
1576152128d6SEugenio Pérez {
1577152128d6SEugenio Pérez     uint64_t backend_features;
1578152128d6SEugenio Pérez     int64_t cvq_group;
1579152128d6SEugenio Pérez     uint8_t status = VIRTIO_CONFIG_S_ACKNOWLEDGE |
1580845ec38aSEugenio Pérez                      VIRTIO_CONFIG_S_DRIVER;
1581152128d6SEugenio Pérez     int r;
1582152128d6SEugenio Pérez 
1583152128d6SEugenio Pérez     ERRP_GUARD();
1584152128d6SEugenio Pérez 
1585152128d6SEugenio Pérez     r = ioctl(device_fd, VHOST_GET_BACKEND_FEATURES, &backend_features);
1586152128d6SEugenio Pérez     if (unlikely(r < 0)) {
1587152128d6SEugenio Pérez         error_setg_errno(errp, errno, "Cannot get vdpa backend_features");
1588152128d6SEugenio Pérez         return r;
1589152128d6SEugenio Pérez     }
1590152128d6SEugenio Pérez 
1591152128d6SEugenio Pérez     if (!(backend_features & BIT_ULL(VHOST_BACKEND_F_IOTLB_ASID))) {
1592152128d6SEugenio Pérez         return 0;
1593152128d6SEugenio Pérez     }
1594152128d6SEugenio Pérez 
1595845ec38aSEugenio Pérez     r = ioctl(device_fd, VHOST_VDPA_SET_STATUS, &status);
1596152128d6SEugenio Pérez     if (unlikely(r)) {
1597845ec38aSEugenio Pérez         error_setg_errno(errp, -r, "Cannot set device status");
1598f1085882SEugenio Pérez         goto out;
1599152128d6SEugenio Pérez     }
1600152128d6SEugenio Pérez 
1601845ec38aSEugenio Pérez     r = ioctl(device_fd, VHOST_SET_FEATURES, &features);
1602845ec38aSEugenio Pérez     if (unlikely(r)) {
1603845ec38aSEugenio Pérez         error_setg_errno(errp, -r, "Cannot set features");
1604845ec38aSEugenio Pérez         goto out;
1605845ec38aSEugenio Pérez     }
1606845ec38aSEugenio Pérez 
1607845ec38aSEugenio Pérez     status |= VIRTIO_CONFIG_S_FEATURES_OK;
1608152128d6SEugenio Pérez     r = ioctl(device_fd, VHOST_VDPA_SET_STATUS, &status);
1609152128d6SEugenio Pérez     if (unlikely(r)) {
1610845ec38aSEugenio Pérez         error_setg_errno(errp, -r, "Cannot set device status");
1611152128d6SEugenio Pérez         goto out;
1612152128d6SEugenio Pérez     }
1613152128d6SEugenio Pérez 
1614152128d6SEugenio Pérez     cvq_group = vhost_vdpa_get_vring_group(device_fd, cvq_index, errp);
1615152128d6SEugenio Pérez     if (unlikely(cvq_group < 0)) {
1616152128d6SEugenio Pérez         if (cvq_group != -ENOTSUP) {
1617152128d6SEugenio Pérez             r = cvq_group;
1618152128d6SEugenio Pérez             goto out;
1619152128d6SEugenio Pérez         }
1620152128d6SEugenio Pérez 
1621152128d6SEugenio Pérez         /*
1622152128d6SEugenio Pérez          * The kernel report VHOST_BACKEND_F_IOTLB_ASID if the vdpa frontend
1623152128d6SEugenio Pérez          * support ASID even if the parent driver does not.  The CVQ cannot be
1624152128d6SEugenio Pérez          * isolated in this case.
1625152128d6SEugenio Pérez          */
1626152128d6SEugenio Pérez         error_free(*errp);
1627152128d6SEugenio Pérez         *errp = NULL;
1628152128d6SEugenio Pérez         r = 0;
1629152128d6SEugenio Pérez         goto out;
1630152128d6SEugenio Pérez     }
1631152128d6SEugenio Pérez 
1632152128d6SEugenio Pérez     for (int i = 0; i < cvq_index; ++i) {
1633152128d6SEugenio Pérez         int64_t group = vhost_vdpa_get_vring_group(device_fd, i, errp);
1634152128d6SEugenio Pérez         if (unlikely(group < 0)) {
1635152128d6SEugenio Pérez             r = group;
1636152128d6SEugenio Pérez             goto out;
1637152128d6SEugenio Pérez         }
1638152128d6SEugenio Pérez 
1639152128d6SEugenio Pérez         if (group == (int64_t)cvq_group) {
1640152128d6SEugenio Pérez             r = 0;
1641152128d6SEugenio Pérez             goto out;
1642152128d6SEugenio Pérez         }
1643152128d6SEugenio Pérez     }
1644152128d6SEugenio Pérez 
1645152128d6SEugenio Pérez     r = 1;
1646152128d6SEugenio Pérez 
1647152128d6SEugenio Pérez out:
1648152128d6SEugenio Pérez     status = 0;
1649152128d6SEugenio Pérez     ioctl(device_fd, VHOST_VDPA_SET_STATUS, &status);
1650152128d6SEugenio Pérez     return r;
1651152128d6SEugenio Pérez }
1652152128d6SEugenio Pérez 
1653654790b6SJason Wang static NetClientState *net_vhost_vdpa_init(NetClientState *peer,
1654654790b6SJason Wang                                        const char *device,
1655654790b6SJason Wang                                        const char *name,
165640237840SJason Wang                                        int vdpa_device_fd,
165740237840SJason Wang                                        int queue_pair_index,
165840237840SJason Wang                                        int nvqs,
16591576dbb5SEugenio Pérez                                        bool is_datapath,
16601576dbb5SEugenio Pérez                                        bool svq,
16615c1ebd4cSEugenio Pérez                                        struct vhost_vdpa_iova_range iova_range,
1662152128d6SEugenio Pérez                                        uint64_t features,
1663152128d6SEugenio Pérez                                        Error **errp)
16641e0a84eaSCindy Lu {
16651e0a84eaSCindy Lu     NetClientState *nc = NULL;
16661e0a84eaSCindy Lu     VhostVDPAState *s;
16671e0a84eaSCindy Lu     int ret = 0;
16681e0a84eaSCindy Lu     assert(name);
1669e77db790SStefan Hajnoczi     int cvq_isolated = 0;
1670152128d6SEugenio Pérez 
167140237840SJason Wang     if (is_datapath) {
167240237840SJason Wang         nc = qemu_new_net_client(&net_vhost_vdpa_info, peer, device,
167340237840SJason Wang                                  name);
167440237840SJason Wang     } else {
1675152128d6SEugenio Pérez         cvq_isolated = vhost_vdpa_probe_cvq_isolation(vdpa_device_fd, features,
1676152128d6SEugenio Pérez                                                       queue_pair_index * 2,
1677152128d6SEugenio Pérez                                                       errp);
1678152128d6SEugenio Pérez         if (unlikely(cvq_isolated < 0)) {
1679152128d6SEugenio Pérez             return NULL;
1680152128d6SEugenio Pérez         }
1681152128d6SEugenio Pérez 
1682f8972b56SEugenio Pérez         nc = qemu_new_net_control_client(&net_vhost_vdpa_cvq_info, peer,
168340237840SJason Wang                                          device, name);
168440237840SJason Wang     }
168553b85d95SLaurent Vivier     qemu_set_info_str(nc, TYPE_VHOST_VDPA);
16861e0a84eaSCindy Lu     s = DO_UPCAST(VhostVDPAState, nc, nc);
16877327813dSJason Wang 
16881e0a84eaSCindy Lu     s->vhost_vdpa.device_fd = vdpa_device_fd;
168940237840SJason Wang     s->vhost_vdpa.index = queue_pair_index;
16907f211a28SEugenio Pérez     s->always_svq = svq;
1691d9cda213SSteve Sistare     s->migration_state.notify = NULL;
16921576dbb5SEugenio Pérez     s->vhost_vdpa.shadow_vqs_enabled = svq;
1693a585fad2SEugenio Pérez     s->vhost_vdpa.iova_range = iova_range;
16946188d78aSEugenio Pérez     s->vhost_vdpa.shadow_data = svq;
16955c1ebd4cSEugenio Pérez     if (queue_pair_index == 0) {
16965c1ebd4cSEugenio Pérez         vhost_vdpa_net_valid_svq_features(features,
16975c1ebd4cSEugenio Pérez                                           &s->vhost_vdpa.migration_blocker);
16985c1ebd4cSEugenio Pérez     } else if (!is_datapath) {
1699babf8b87SEugenio Pérez         s->cvq_cmd_out_buffer = mmap(NULL, vhost_vdpa_net_cvq_cmd_page_len(),
1700babf8b87SEugenio Pérez                                      PROT_READ | PROT_WRITE,
1701babf8b87SEugenio Pérez                                      MAP_SHARED | MAP_ANONYMOUS, -1, 0);
1702babf8b87SEugenio Pérez         s->status = mmap(NULL, vhost_vdpa_net_cvq_cmd_page_len(),
1703babf8b87SEugenio Pérez                          PROT_READ | PROT_WRITE, MAP_SHARED | MAP_ANONYMOUS,
1704babf8b87SEugenio Pérez                          -1, 0);
17052df4dd31SEugenio Pérez 
1706bd907ae4SEugenio Pérez         s->vhost_vdpa.shadow_vq_ops = &vhost_vdpa_net_svq_ops;
1707bd907ae4SEugenio Pérez         s->vhost_vdpa.shadow_vq_ops_opaque = s;
1708152128d6SEugenio Pérez         s->cvq_isolated = cvq_isolated;
17098bc0049eSEugenio Pérez     }
171040237840SJason Wang     ret = vhost_vdpa_add(nc, (void *)&s->vhost_vdpa, queue_pair_index, nvqs);
171174af5eecSJason Wang     if (ret) {
171274af5eecSJason Wang         qemu_del_net_client(nc);
1713654790b6SJason Wang         return NULL;
171474af5eecSJason Wang     }
1715654790b6SJason Wang     return nc;
17161e0a84eaSCindy Lu }
17171e0a84eaSCindy Lu 
17188170ab3fSEugenio Pérez static int vhost_vdpa_get_features(int fd, uint64_t *features, Error **errp)
17198170ab3fSEugenio Pérez {
17208170ab3fSEugenio Pérez     int ret = ioctl(fd, VHOST_GET_FEATURES, features);
17218170ab3fSEugenio Pérez     if (unlikely(ret < 0)) {
17228170ab3fSEugenio Pérez         error_setg_errno(errp, errno,
17238170ab3fSEugenio Pérez                          "Fail to query features from vhost-vDPA device");
17248170ab3fSEugenio Pérez     }
17258170ab3fSEugenio Pérez     return ret;
17268170ab3fSEugenio Pérez }
17278170ab3fSEugenio Pérez 
17288170ab3fSEugenio Pérez static int vhost_vdpa_get_max_queue_pairs(int fd, uint64_t features,
17298170ab3fSEugenio Pérez                                           int *has_cvq, Error **errp)
173040237840SJason Wang {
173140237840SJason Wang     unsigned long config_size = offsetof(struct vhost_vdpa_config, buf);
1732cd523a41SStefano Garzarella     g_autofree struct vhost_vdpa_config *config = NULL;
173340237840SJason Wang     __virtio16 *max_queue_pairs;
173440237840SJason Wang     int ret;
173540237840SJason Wang 
173640237840SJason Wang     if (features & (1 << VIRTIO_NET_F_CTRL_VQ)) {
173740237840SJason Wang         *has_cvq = 1;
173840237840SJason Wang     } else {
173940237840SJason Wang         *has_cvq = 0;
174040237840SJason Wang     }
174140237840SJason Wang 
174240237840SJason Wang     if (features & (1 << VIRTIO_NET_F_MQ)) {
174340237840SJason Wang         config = g_malloc0(config_size + sizeof(*max_queue_pairs));
174440237840SJason Wang         config->off = offsetof(struct virtio_net_config, max_virtqueue_pairs);
174540237840SJason Wang         config->len = sizeof(*max_queue_pairs);
174640237840SJason Wang 
174740237840SJason Wang         ret = ioctl(fd, VHOST_VDPA_GET_CONFIG, config);
174840237840SJason Wang         if (ret) {
174940237840SJason Wang             error_setg(errp, "Fail to get config from vhost-vDPA device");
175040237840SJason Wang             return -ret;
175140237840SJason Wang         }
175240237840SJason Wang 
175340237840SJason Wang         max_queue_pairs = (__virtio16 *)&config->buf;
175440237840SJason Wang 
175540237840SJason Wang         return lduw_le_p(max_queue_pairs);
175640237840SJason Wang     }
175740237840SJason Wang 
175840237840SJason Wang     return 1;
175940237840SJason Wang }
176040237840SJason Wang 
17611e0a84eaSCindy Lu int net_init_vhost_vdpa(const Netdev *netdev, const char *name,
17621e0a84eaSCindy Lu                         NetClientState *peer, Error **errp)
17631e0a84eaSCindy Lu {
17641e0a84eaSCindy Lu     const NetdevVhostVDPAOptions *opts;
17658170ab3fSEugenio Pérez     uint64_t features;
1766654790b6SJason Wang     int vdpa_device_fd;
1767eb3cb751SEugenio Pérez     g_autofree NetClientState **ncs = NULL;
1768a585fad2SEugenio Pérez     struct vhost_vdpa_iova_range iova_range;
1769eb3cb751SEugenio Pérez     NetClientState *nc;
1770aed5da45SEugenio Pérez     int queue_pairs, r, i = 0, has_cvq = 0;
17711e0a84eaSCindy Lu 
17721e0a84eaSCindy Lu     assert(netdev->type == NET_CLIENT_DRIVER_VHOST_VDPA);
17731e0a84eaSCindy Lu     opts = &netdev->u.vhost_vdpa;
17747480874aSMarkus Armbruster     if (!opts->vhostdev && !opts->vhostfd) {
17758801ccd0SSi-Wei Liu         error_setg(errp,
17768801ccd0SSi-Wei Liu                    "vhost-vdpa: neither vhostdev= nor vhostfd= was specified");
1777c8295404SEugenio Pérez         return -1;
1778c8295404SEugenio Pérez     }
17797327813dSJason Wang 
17807480874aSMarkus Armbruster     if (opts->vhostdev && opts->vhostfd) {
17818801ccd0SSi-Wei Liu         error_setg(errp,
17828801ccd0SSi-Wei Liu                    "vhost-vdpa: vhostdev= and vhostfd= are mutually exclusive");
17838801ccd0SSi-Wei Liu         return -1;
17848801ccd0SSi-Wei Liu     }
17858801ccd0SSi-Wei Liu 
17867480874aSMarkus Armbruster     if (opts->vhostdev) {
17870351152bSEugenio Pérez         vdpa_device_fd = qemu_open(opts->vhostdev, O_RDWR, errp);
17887327813dSJason Wang         if (vdpa_device_fd == -1) {
17897327813dSJason Wang             return -errno;
17907327813dSJason Wang         }
17915107fd3eSPeter Maydell     } else {
17925107fd3eSPeter Maydell         /* has_vhostfd */
17938801ccd0SSi-Wei Liu         vdpa_device_fd = monitor_fd_param(monitor_cur(), opts->vhostfd, errp);
17948801ccd0SSi-Wei Liu         if (vdpa_device_fd == -1) {
17958801ccd0SSi-Wei Liu             error_prepend(errp, "vhost-vdpa: unable to parse vhostfd: ");
17968801ccd0SSi-Wei Liu             return -1;
17978801ccd0SSi-Wei Liu         }
17988801ccd0SSi-Wei Liu     }
17997327813dSJason Wang 
18008170ab3fSEugenio Pérez     r = vhost_vdpa_get_features(vdpa_device_fd, &features, errp);
18018170ab3fSEugenio Pérez     if (unlikely(r < 0)) {
1802aed5da45SEugenio Pérez         goto err;
18038170ab3fSEugenio Pérez     }
18048170ab3fSEugenio Pérez 
18058170ab3fSEugenio Pérez     queue_pairs = vhost_vdpa_get_max_queue_pairs(vdpa_device_fd, features,
180640237840SJason Wang                                                  &has_cvq, errp);
180740237840SJason Wang     if (queue_pairs < 0) {
18087327813dSJason Wang         qemu_close(vdpa_device_fd);
180940237840SJason Wang         return queue_pairs;
18107327813dSJason Wang     }
18117327813dSJason Wang 
1812bf7a2ad8SLongpeng     r = vhost_vdpa_get_iova_range(vdpa_device_fd, &iova_range);
1813bf7a2ad8SLongpeng     if (unlikely(r < 0)) {
1814bf7a2ad8SLongpeng         error_setg(errp, "vhost-vdpa: get iova range failed: %s",
1815bf7a2ad8SLongpeng                    strerror(-r));
1816bf7a2ad8SLongpeng         goto err;
1817bf7a2ad8SLongpeng     }
1818bf7a2ad8SLongpeng 
181900ef422eSEugenio Pérez     if (opts->x_svq && !vhost_vdpa_net_valid_svq_features(features, errp)) {
182000ef422eSEugenio Pérez         goto err;
18211576dbb5SEugenio Pérez     }
18221576dbb5SEugenio Pérez 
182340237840SJason Wang     ncs = g_malloc0(sizeof(*ncs) * queue_pairs);
182440237840SJason Wang 
182540237840SJason Wang     for (i = 0; i < queue_pairs; i++) {
182640237840SJason Wang         ncs[i] = net_vhost_vdpa_init(peer, TYPE_VHOST_VDPA, name,
18271576dbb5SEugenio Pérez                                      vdpa_device_fd, i, 2, true, opts->x_svq,
1828152128d6SEugenio Pérez                                      iova_range, features, errp);
182940237840SJason Wang         if (!ncs[i])
183040237840SJason Wang             goto err;
183140237840SJason Wang     }
183240237840SJason Wang 
183340237840SJason Wang     if (has_cvq) {
183440237840SJason Wang         nc = net_vhost_vdpa_init(peer, TYPE_VHOST_VDPA, name,
18351576dbb5SEugenio Pérez                                  vdpa_device_fd, i, 1, false,
1836152128d6SEugenio Pérez                                  opts->x_svq, iova_range, features, errp);
183740237840SJason Wang         if (!nc)
183840237840SJason Wang             goto err;
183940237840SJason Wang     }
184040237840SJason Wang 
1841654790b6SJason Wang     return 0;
184240237840SJason Wang 
184340237840SJason Wang err:
184440237840SJason Wang     if (i) {
18459bd05507SSi-Wei Liu         for (i--; i >= 0; i--) {
18469bd05507SSi-Wei Liu             qemu_del_net_client(ncs[i]);
18479bd05507SSi-Wei Liu         }
184840237840SJason Wang     }
18491576dbb5SEugenio Pérez 
185040237840SJason Wang     qemu_close(vdpa_device_fd);
185140237840SJason Wang 
185240237840SJason Wang     return -1;
18531e0a84eaSCindy Lu }
1854