xref: /openbmc/qemu/ui/console.c (revision 8fb3c76c)
1 /*
2  * QEMU graphical console
3  *
4  * Copyright (c) 2004 Fabrice Bellard
5  *
6  * Permission is hereby granted, free of charge, to any person obtaining a copy
7  * of this software and associated documentation files (the "Software"), to deal
8  * in the Software without restriction, including without limitation the rights
9  * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
10  * copies of the Software, and to permit persons to whom the Software is
11  * furnished to do so, subject to the following conditions:
12  *
13  * The above copyright notice and this permission notice shall be included in
14  * all copies or substantial portions of the Software.
15  *
16  * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
17  * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
18  * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL
19  * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
20  * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
21  * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
22  * THE SOFTWARE.
23  */
24 #include "qemu-common.h"
25 #include "ui/console.h"
26 #include "hw/qdev-core.h"
27 #include "qemu/timer.h"
28 #include "qmp-commands.h"
29 #include "sysemu/char.h"
30 #include "trace.h"
31 #include "exec/memory.h"
32 
33 #define DEFAULT_BACKSCROLL 512
34 #define CONSOLE_CURSOR_PERIOD 500
35 
36 typedef struct TextAttributes {
37     uint8_t fgcol:4;
38     uint8_t bgcol:4;
39     uint8_t bold:1;
40     uint8_t uline:1;
41     uint8_t blink:1;
42     uint8_t invers:1;
43     uint8_t unvisible:1;
44 } TextAttributes;
45 
46 typedef struct TextCell {
47     uint8_t ch;
48     TextAttributes t_attrib;
49 } TextCell;
50 
51 #define MAX_ESC_PARAMS 3
52 
53 enum TTYState {
54     TTY_STATE_NORM,
55     TTY_STATE_ESC,
56     TTY_STATE_CSI,
57 };
58 
59 typedef struct QEMUFIFO {
60     uint8_t *buf;
61     int buf_size;
62     int count, wptr, rptr;
63 } QEMUFIFO;
64 
65 static int qemu_fifo_write(QEMUFIFO *f, const uint8_t *buf, int len1)
66 {
67     int l, len;
68 
69     l = f->buf_size - f->count;
70     if (len1 > l)
71         len1 = l;
72     len = len1;
73     while (len > 0) {
74         l = f->buf_size - f->wptr;
75         if (l > len)
76             l = len;
77         memcpy(f->buf + f->wptr, buf, l);
78         f->wptr += l;
79         if (f->wptr >= f->buf_size)
80             f->wptr = 0;
81         buf += l;
82         len -= l;
83     }
84     f->count += len1;
85     return len1;
86 }
87 
88 static int qemu_fifo_read(QEMUFIFO *f, uint8_t *buf, int len1)
89 {
90     int l, len;
91 
92     if (len1 > f->count)
93         len1 = f->count;
94     len = len1;
95     while (len > 0) {
96         l = f->buf_size - f->rptr;
97         if (l > len)
98             l = len;
99         memcpy(buf, f->buf + f->rptr, l);
100         f->rptr += l;
101         if (f->rptr >= f->buf_size)
102             f->rptr = 0;
103         buf += l;
104         len -= l;
105     }
106     f->count -= len1;
107     return len1;
108 }
109 
110 typedef enum {
111     GRAPHIC_CONSOLE,
112     TEXT_CONSOLE,
113     TEXT_CONSOLE_FIXED_SIZE
114 } console_type_t;
115 
116 struct QemuConsole {
117     Object parent;
118 
119     int index;
120     console_type_t console_type;
121     DisplayState *ds;
122     DisplaySurface *surface;
123     int dcls;
124 
125     /* Graphic console state.  */
126     Object *device;
127     uint32_t head;
128     QemuUIInfo ui_info;
129     const GraphicHwOps *hw_ops;
130     void *hw;
131 
132     /* Text console state */
133     int width;
134     int height;
135     int total_height;
136     int backscroll_height;
137     int x, y;
138     int x_saved, y_saved;
139     int y_displayed;
140     int y_base;
141     TextAttributes t_attrib_default; /* default text attributes */
142     TextAttributes t_attrib; /* currently active text attributes */
143     TextCell *cells;
144     int text_x[2], text_y[2], cursor_invalidate;
145     int echo;
146 
147     int update_x0;
148     int update_y0;
149     int update_x1;
150     int update_y1;
151 
152     enum TTYState state;
153     int esc_params[MAX_ESC_PARAMS];
154     int nb_esc_params;
155 
156     CharDriverState *chr;
157     /* fifo for key pressed */
158     QEMUFIFO out_fifo;
159     uint8_t out_fifo_buf[16];
160     QEMUTimer *kbd_timer;
161 };
162 
163 struct DisplayState {
164     QEMUTimer *gui_timer;
165     uint64_t last_update;
166     uint64_t update_interval;
167     bool refreshing;
168     bool have_gfx;
169     bool have_text;
170 
171     QLIST_HEAD(, DisplayChangeListener) listeners;
172 };
173 
174 static DisplayState *display_state;
175 static QemuConsole *active_console;
176 static QemuConsole **consoles;
177 static int nb_consoles = 0;
178 static bool cursor_visible_phase;
179 static QEMUTimer *cursor_timer;
180 
181 static void text_console_do_init(CharDriverState *chr, DisplayState *ds);
182 static void dpy_refresh(DisplayState *s);
183 static DisplayState *get_alloc_displaystate(void);
184 static void text_console_update_cursor_timer(void);
185 static void text_console_update_cursor(void *opaque);
186 
187 static void gui_update(void *opaque)
188 {
189     uint64_t interval = GUI_REFRESH_INTERVAL_IDLE;
190     uint64_t dcl_interval;
191     DisplayState *ds = opaque;
192     DisplayChangeListener *dcl;
193     int i;
194 
195     ds->refreshing = true;
196     dpy_refresh(ds);
197     ds->refreshing = false;
198 
199     QLIST_FOREACH(dcl, &ds->listeners, next) {
200         dcl_interval = dcl->update_interval ?
201             dcl->update_interval : GUI_REFRESH_INTERVAL_DEFAULT;
202         if (interval > dcl_interval) {
203             interval = dcl_interval;
204         }
205     }
206     if (ds->update_interval != interval) {
207         ds->update_interval = interval;
208         for (i = 0; i < nb_consoles; i++) {
209             if (consoles[i]->hw_ops->update_interval) {
210                 consoles[i]->hw_ops->update_interval(consoles[i]->hw, interval);
211             }
212         }
213         trace_console_refresh(interval);
214     }
215     ds->last_update = qemu_clock_get_ms(QEMU_CLOCK_REALTIME);
216     timer_mod(ds->gui_timer, ds->last_update + interval);
217 }
218 
219 static void gui_setup_refresh(DisplayState *ds)
220 {
221     DisplayChangeListener *dcl;
222     bool need_timer = false;
223     bool have_gfx = false;
224     bool have_text = false;
225 
226     QLIST_FOREACH(dcl, &ds->listeners, next) {
227         if (dcl->ops->dpy_refresh != NULL) {
228             need_timer = true;
229         }
230         if (dcl->ops->dpy_gfx_update != NULL) {
231             have_gfx = true;
232         }
233         if (dcl->ops->dpy_text_update != NULL) {
234             have_text = true;
235         }
236     }
237 
238     if (need_timer && ds->gui_timer == NULL) {
239         ds->gui_timer = timer_new_ms(QEMU_CLOCK_REALTIME, gui_update, ds);
240         timer_mod(ds->gui_timer, qemu_clock_get_ms(QEMU_CLOCK_REALTIME));
241     }
242     if (!need_timer && ds->gui_timer != NULL) {
243         timer_del(ds->gui_timer);
244         timer_free(ds->gui_timer);
245         ds->gui_timer = NULL;
246     }
247 
248     ds->have_gfx = have_gfx;
249     ds->have_text = have_text;
250 }
251 
252 void graphic_hw_update(QemuConsole *con)
253 {
254     if (!con) {
255         con = active_console;
256     }
257     if (con && con->hw_ops->gfx_update) {
258         con->hw_ops->gfx_update(con->hw);
259     }
260 }
261 
262 void graphic_hw_invalidate(QemuConsole *con)
263 {
264     if (!con) {
265         con = active_console;
266     }
267     if (con && con->hw_ops->invalidate) {
268         con->hw_ops->invalidate(con->hw);
269     }
270 }
271 
272 static void ppm_save(const char *filename, struct DisplaySurface *ds,
273                      Error **errp)
274 {
275     int width = pixman_image_get_width(ds->image);
276     int height = pixman_image_get_height(ds->image);
277     int fd;
278     FILE *f;
279     int y;
280     int ret;
281     pixman_image_t *linebuf;
282 
283     trace_ppm_save(filename, ds);
284     fd = qemu_open(filename, O_WRONLY | O_CREAT | O_TRUNC | O_BINARY, 0666);
285     if (fd == -1) {
286         error_setg(errp, "failed to open file '%s': %s", filename,
287                    strerror(errno));
288         return;
289     }
290     f = fdopen(fd, "wb");
291     ret = fprintf(f, "P6\n%d %d\n%d\n", width, height, 255);
292     if (ret < 0) {
293         linebuf = NULL;
294         goto write_err;
295     }
296     linebuf = qemu_pixman_linebuf_create(PIXMAN_BE_r8g8b8, width);
297     for (y = 0; y < height; y++) {
298         qemu_pixman_linebuf_fill(linebuf, ds->image, width, 0, y);
299         clearerr(f);
300         ret = fwrite(pixman_image_get_data(linebuf), 1,
301                      pixman_image_get_stride(linebuf), f);
302         (void)ret;
303         if (ferror(f)) {
304             goto write_err;
305         }
306     }
307 
308 out:
309     qemu_pixman_image_unref(linebuf);
310     fclose(f);
311     return;
312 
313 write_err:
314     error_setg(errp, "failed to write to file '%s': %s", filename,
315                strerror(errno));
316     unlink(filename);
317     goto out;
318 }
319 
320 void qmp_screendump(const char *filename, Error **errp)
321 {
322     QemuConsole *con = qemu_console_lookup_by_index(0);
323     DisplaySurface *surface;
324 
325     if (con == NULL) {
326         error_setg(errp, "There is no QemuConsole I can screendump from.");
327         return;
328     }
329 
330     graphic_hw_update(con);
331     surface = qemu_console_surface(con);
332     ppm_save(filename, surface, errp);
333 }
334 
335 void graphic_hw_text_update(QemuConsole *con, console_ch_t *chardata)
336 {
337     if (!con) {
338         con = active_console;
339     }
340     if (con && con->hw_ops->text_update) {
341         con->hw_ops->text_update(con->hw, chardata);
342     }
343 }
344 
345 static void vga_fill_rect(QemuConsole *con,
346                           int posx, int posy, int width, int height,
347                           pixman_color_t color)
348 {
349     DisplaySurface *surface = qemu_console_surface(con);
350     pixman_rectangle16_t rect = {
351         .x = posx, .y = posy, .width = width, .height = height
352     };
353 
354     pixman_image_fill_rectangles(PIXMAN_OP_SRC, surface->image,
355                                  &color, 1, &rect);
356 }
357 
358 /* copy from (xs, ys) to (xd, yd) a rectangle of size (w, h) */
359 static void vga_bitblt(QemuConsole *con,
360                        int xs, int ys, int xd, int yd, int w, int h)
361 {
362     DisplaySurface *surface = qemu_console_surface(con);
363 
364     pixman_image_composite(PIXMAN_OP_SRC,
365                            surface->image, NULL, surface->image,
366                            xs, ys, 0, 0, xd, yd, w, h);
367 }
368 
369 /***********************************************************/
370 /* basic char display */
371 
372 #define FONT_HEIGHT 16
373 #define FONT_WIDTH 8
374 
375 #include "vgafont.h"
376 
377 #ifndef CONFIG_CURSES
378 enum color_names {
379     COLOR_BLACK   = 0,
380     COLOR_RED     = 1,
381     COLOR_GREEN   = 2,
382     COLOR_YELLOW  = 3,
383     COLOR_BLUE    = 4,
384     COLOR_MAGENTA = 5,
385     COLOR_CYAN    = 6,
386     COLOR_WHITE   = 7
387 };
388 #endif
389 
390 #define QEMU_RGB(r, g, b)                                               \
391     { .red = r << 8, .green = g << 8, .blue = b << 8, .alpha = 0xffff }
392 
393 static const pixman_color_t color_table_rgb[2][8] = {
394     {   /* dark */
395         QEMU_RGB(0x00, 0x00, 0x00),  /* black */
396         QEMU_RGB(0xaa, 0x00, 0x00),  /* red */
397         QEMU_RGB(0x00, 0xaa, 0x00),  /* green */
398         QEMU_RGB(0xaa, 0xaa, 0x00),  /* yellow */
399         QEMU_RGB(0x00, 0x00, 0xaa),  /* blue */
400         QEMU_RGB(0xaa, 0x00, 0xaa),  /* magenta */
401         QEMU_RGB(0x00, 0xaa, 0xaa),  /* cyan */
402         QEMU_RGB(0xaa, 0xaa, 0xaa),  /* white */
403     },
404     {   /* bright */
405         QEMU_RGB(0x00, 0x00, 0x00),  /* black */
406         QEMU_RGB(0xff, 0x00, 0x00),  /* red */
407         QEMU_RGB(0x00, 0xff, 0x00),  /* green */
408         QEMU_RGB(0xff, 0xff, 0x00),  /* yellow */
409         QEMU_RGB(0x00, 0x00, 0xff),  /* blue */
410         QEMU_RGB(0xff, 0x00, 0xff),  /* magenta */
411         QEMU_RGB(0x00, 0xff, 0xff),  /* cyan */
412         QEMU_RGB(0xff, 0xff, 0xff),  /* white */
413     }
414 };
415 
416 static void vga_putcharxy(QemuConsole *s, int x, int y, int ch,
417                           TextAttributes *t_attrib)
418 {
419     static pixman_image_t *glyphs[256];
420     DisplaySurface *surface = qemu_console_surface(s);
421     pixman_color_t fgcol, bgcol;
422 
423     if (t_attrib->invers) {
424         bgcol = color_table_rgb[t_attrib->bold][t_attrib->fgcol];
425         fgcol = color_table_rgb[t_attrib->bold][t_attrib->bgcol];
426     } else {
427         fgcol = color_table_rgb[t_attrib->bold][t_attrib->fgcol];
428         bgcol = color_table_rgb[t_attrib->bold][t_attrib->bgcol];
429     }
430 
431     if (!glyphs[ch]) {
432         glyphs[ch] = qemu_pixman_glyph_from_vgafont(FONT_HEIGHT, vgafont16, ch);
433     }
434     qemu_pixman_glyph_render(glyphs[ch], surface->image,
435                              &fgcol, &bgcol, x, y, FONT_WIDTH, FONT_HEIGHT);
436 }
437 
438 static void text_console_resize(QemuConsole *s)
439 {
440     TextCell *cells, *c, *c1;
441     int w1, x, y, last_width;
442 
443     last_width = s->width;
444     s->width = surface_width(s->surface) / FONT_WIDTH;
445     s->height = surface_height(s->surface) / FONT_HEIGHT;
446 
447     w1 = last_width;
448     if (s->width < w1)
449         w1 = s->width;
450 
451     cells = g_malloc(s->width * s->total_height * sizeof(TextCell));
452     for(y = 0; y < s->total_height; y++) {
453         c = &cells[y * s->width];
454         if (w1 > 0) {
455             c1 = &s->cells[y * last_width];
456             for(x = 0; x < w1; x++) {
457                 *c++ = *c1++;
458             }
459         }
460         for(x = w1; x < s->width; x++) {
461             c->ch = ' ';
462             c->t_attrib = s->t_attrib_default;
463             c++;
464         }
465     }
466     g_free(s->cells);
467     s->cells = cells;
468 }
469 
470 static inline void text_update_xy(QemuConsole *s, int x, int y)
471 {
472     s->text_x[0] = MIN(s->text_x[0], x);
473     s->text_x[1] = MAX(s->text_x[1], x);
474     s->text_y[0] = MIN(s->text_y[0], y);
475     s->text_y[1] = MAX(s->text_y[1], y);
476 }
477 
478 static void invalidate_xy(QemuConsole *s, int x, int y)
479 {
480     if (!qemu_console_is_visible(s)) {
481         return;
482     }
483     if (s->update_x0 > x * FONT_WIDTH)
484         s->update_x0 = x * FONT_WIDTH;
485     if (s->update_y0 > y * FONT_HEIGHT)
486         s->update_y0 = y * FONT_HEIGHT;
487     if (s->update_x1 < (x + 1) * FONT_WIDTH)
488         s->update_x1 = (x + 1) * FONT_WIDTH;
489     if (s->update_y1 < (y + 1) * FONT_HEIGHT)
490         s->update_y1 = (y + 1) * FONT_HEIGHT;
491 }
492 
493 static void update_xy(QemuConsole *s, int x, int y)
494 {
495     TextCell *c;
496     int y1, y2;
497 
498     if (s->ds->have_text) {
499         text_update_xy(s, x, y);
500     }
501 
502     y1 = (s->y_base + y) % s->total_height;
503     y2 = y1 - s->y_displayed;
504     if (y2 < 0) {
505         y2 += s->total_height;
506     }
507     if (y2 < s->height) {
508         c = &s->cells[y1 * s->width + x];
509         vga_putcharxy(s, x, y2, c->ch,
510                       &(c->t_attrib));
511         invalidate_xy(s, x, y2);
512     }
513 }
514 
515 static void console_show_cursor(QemuConsole *s, int show)
516 {
517     TextCell *c;
518     int y, y1;
519     int x = s->x;
520 
521     if (s->ds->have_text) {
522         s->cursor_invalidate = 1;
523     }
524 
525     if (x >= s->width) {
526         x = s->width - 1;
527     }
528     y1 = (s->y_base + s->y) % s->total_height;
529     y = y1 - s->y_displayed;
530     if (y < 0) {
531         y += s->total_height;
532     }
533     if (y < s->height) {
534         c = &s->cells[y1 * s->width + x];
535         if (show && cursor_visible_phase) {
536             TextAttributes t_attrib = s->t_attrib_default;
537             t_attrib.invers = !(t_attrib.invers); /* invert fg and bg */
538             vga_putcharxy(s, x, y, c->ch, &t_attrib);
539         } else {
540             vga_putcharxy(s, x, y, c->ch, &(c->t_attrib));
541         }
542         invalidate_xy(s, x, y);
543     }
544 }
545 
546 static void console_refresh(QemuConsole *s)
547 {
548     DisplaySurface *surface = qemu_console_surface(s);
549     TextCell *c;
550     int x, y, y1;
551 
552     if (s->ds->have_text) {
553         s->text_x[0] = 0;
554         s->text_y[0] = 0;
555         s->text_x[1] = s->width - 1;
556         s->text_y[1] = s->height - 1;
557         s->cursor_invalidate = 1;
558     }
559 
560     vga_fill_rect(s, 0, 0, surface_width(surface), surface_height(surface),
561                   color_table_rgb[0][COLOR_BLACK]);
562     y1 = s->y_displayed;
563     for (y = 0; y < s->height; y++) {
564         c = s->cells + y1 * s->width;
565         for (x = 0; x < s->width; x++) {
566             vga_putcharxy(s, x, y, c->ch,
567                           &(c->t_attrib));
568             c++;
569         }
570         if (++y1 == s->total_height) {
571             y1 = 0;
572         }
573     }
574     console_show_cursor(s, 1);
575     dpy_gfx_update(s, 0, 0,
576                    surface_width(surface), surface_height(surface));
577 }
578 
579 static void console_scroll(QemuConsole *s, int ydelta)
580 {
581     int i, y1;
582 
583     if (ydelta > 0) {
584         for(i = 0; i < ydelta; i++) {
585             if (s->y_displayed == s->y_base)
586                 break;
587             if (++s->y_displayed == s->total_height)
588                 s->y_displayed = 0;
589         }
590     } else {
591         ydelta = -ydelta;
592         i = s->backscroll_height;
593         if (i > s->total_height - s->height)
594             i = s->total_height - s->height;
595         y1 = s->y_base - i;
596         if (y1 < 0)
597             y1 += s->total_height;
598         for(i = 0; i < ydelta; i++) {
599             if (s->y_displayed == y1)
600                 break;
601             if (--s->y_displayed < 0)
602                 s->y_displayed = s->total_height - 1;
603         }
604     }
605     console_refresh(s);
606 }
607 
608 static void console_put_lf(QemuConsole *s)
609 {
610     TextCell *c;
611     int x, y1;
612 
613     s->y++;
614     if (s->y >= s->height) {
615         s->y = s->height - 1;
616 
617         if (s->y_displayed == s->y_base) {
618             if (++s->y_displayed == s->total_height)
619                 s->y_displayed = 0;
620         }
621         if (++s->y_base == s->total_height)
622             s->y_base = 0;
623         if (s->backscroll_height < s->total_height)
624             s->backscroll_height++;
625         y1 = (s->y_base + s->height - 1) % s->total_height;
626         c = &s->cells[y1 * s->width];
627         for(x = 0; x < s->width; x++) {
628             c->ch = ' ';
629             c->t_attrib = s->t_attrib_default;
630             c++;
631         }
632         if (s->y_displayed == s->y_base) {
633             if (s->ds->have_text) {
634                 s->text_x[0] = 0;
635                 s->text_y[0] = 0;
636                 s->text_x[1] = s->width - 1;
637                 s->text_y[1] = s->height - 1;
638             }
639 
640             vga_bitblt(s, 0, FONT_HEIGHT, 0, 0,
641                        s->width * FONT_WIDTH,
642                        (s->height - 1) * FONT_HEIGHT);
643             vga_fill_rect(s, 0, (s->height - 1) * FONT_HEIGHT,
644                           s->width * FONT_WIDTH, FONT_HEIGHT,
645                           color_table_rgb[0][s->t_attrib_default.bgcol]);
646             s->update_x0 = 0;
647             s->update_y0 = 0;
648             s->update_x1 = s->width * FONT_WIDTH;
649             s->update_y1 = s->height * FONT_HEIGHT;
650         }
651     }
652 }
653 
654 /* Set console attributes depending on the current escape codes.
655  * NOTE: I know this code is not very efficient (checking every color for it
656  * self) but it is more readable and better maintainable.
657  */
658 static void console_handle_escape(QemuConsole *s)
659 {
660     int i;
661 
662     for (i=0; i<s->nb_esc_params; i++) {
663         switch (s->esc_params[i]) {
664             case 0: /* reset all console attributes to default */
665                 s->t_attrib = s->t_attrib_default;
666                 break;
667             case 1:
668                 s->t_attrib.bold = 1;
669                 break;
670             case 4:
671                 s->t_attrib.uline = 1;
672                 break;
673             case 5:
674                 s->t_attrib.blink = 1;
675                 break;
676             case 7:
677                 s->t_attrib.invers = 1;
678                 break;
679             case 8:
680                 s->t_attrib.unvisible = 1;
681                 break;
682             case 22:
683                 s->t_attrib.bold = 0;
684                 break;
685             case 24:
686                 s->t_attrib.uline = 0;
687                 break;
688             case 25:
689                 s->t_attrib.blink = 0;
690                 break;
691             case 27:
692                 s->t_attrib.invers = 0;
693                 break;
694             case 28:
695                 s->t_attrib.unvisible = 0;
696                 break;
697             /* set foreground color */
698             case 30:
699                 s->t_attrib.fgcol=COLOR_BLACK;
700                 break;
701             case 31:
702                 s->t_attrib.fgcol=COLOR_RED;
703                 break;
704             case 32:
705                 s->t_attrib.fgcol=COLOR_GREEN;
706                 break;
707             case 33:
708                 s->t_attrib.fgcol=COLOR_YELLOW;
709                 break;
710             case 34:
711                 s->t_attrib.fgcol=COLOR_BLUE;
712                 break;
713             case 35:
714                 s->t_attrib.fgcol=COLOR_MAGENTA;
715                 break;
716             case 36:
717                 s->t_attrib.fgcol=COLOR_CYAN;
718                 break;
719             case 37:
720                 s->t_attrib.fgcol=COLOR_WHITE;
721                 break;
722             /* set background color */
723             case 40:
724                 s->t_attrib.bgcol=COLOR_BLACK;
725                 break;
726             case 41:
727                 s->t_attrib.bgcol=COLOR_RED;
728                 break;
729             case 42:
730                 s->t_attrib.bgcol=COLOR_GREEN;
731                 break;
732             case 43:
733                 s->t_attrib.bgcol=COLOR_YELLOW;
734                 break;
735             case 44:
736                 s->t_attrib.bgcol=COLOR_BLUE;
737                 break;
738             case 45:
739                 s->t_attrib.bgcol=COLOR_MAGENTA;
740                 break;
741             case 46:
742                 s->t_attrib.bgcol=COLOR_CYAN;
743                 break;
744             case 47:
745                 s->t_attrib.bgcol=COLOR_WHITE;
746                 break;
747         }
748     }
749 }
750 
751 static void console_clear_xy(QemuConsole *s, int x, int y)
752 {
753     int y1 = (s->y_base + y) % s->total_height;
754     TextCell *c = &s->cells[y1 * s->width + x];
755     c->ch = ' ';
756     c->t_attrib = s->t_attrib_default;
757     update_xy(s, x, y);
758 }
759 
760 /* set cursor, checking bounds */
761 static void set_cursor(QemuConsole *s, int x, int y)
762 {
763     if (x < 0) {
764         x = 0;
765     }
766     if (y < 0) {
767         y = 0;
768     }
769     if (y >= s->height) {
770         y = s->height - 1;
771     }
772     if (x >= s->width) {
773         x = s->width - 1;
774     }
775 
776     s->x = x;
777     s->y = y;
778 }
779 
780 static void console_putchar(QemuConsole *s, int ch)
781 {
782     TextCell *c;
783     int y1, i;
784     int x, y;
785 
786     switch(s->state) {
787     case TTY_STATE_NORM:
788         switch(ch) {
789         case '\r':  /* carriage return */
790             s->x = 0;
791             break;
792         case '\n':  /* newline */
793             console_put_lf(s);
794             break;
795         case '\b':  /* backspace */
796             if (s->x > 0)
797                 s->x--;
798             break;
799         case '\t':  /* tabspace */
800             if (s->x + (8 - (s->x % 8)) > s->width) {
801                 s->x = 0;
802                 console_put_lf(s);
803             } else {
804                 s->x = s->x + (8 - (s->x % 8));
805             }
806             break;
807         case '\a':  /* alert aka. bell */
808             /* TODO: has to be implemented */
809             break;
810         case 14:
811             /* SI (shift in), character set 0 (ignored) */
812             break;
813         case 15:
814             /* SO (shift out), character set 1 (ignored) */
815             break;
816         case 27:    /* esc (introducing an escape sequence) */
817             s->state = TTY_STATE_ESC;
818             break;
819         default:
820             if (s->x >= s->width) {
821                 /* line wrap */
822                 s->x = 0;
823                 console_put_lf(s);
824             }
825             y1 = (s->y_base + s->y) % s->total_height;
826             c = &s->cells[y1 * s->width + s->x];
827             c->ch = ch;
828             c->t_attrib = s->t_attrib;
829             update_xy(s, s->x, s->y);
830             s->x++;
831             break;
832         }
833         break;
834     case TTY_STATE_ESC: /* check if it is a terminal escape sequence */
835         if (ch == '[') {
836             for(i=0;i<MAX_ESC_PARAMS;i++)
837                 s->esc_params[i] = 0;
838             s->nb_esc_params = 0;
839             s->state = TTY_STATE_CSI;
840         } else {
841             s->state = TTY_STATE_NORM;
842         }
843         break;
844     case TTY_STATE_CSI: /* handle escape sequence parameters */
845         if (ch >= '0' && ch <= '9') {
846             if (s->nb_esc_params < MAX_ESC_PARAMS) {
847                 int *param = &s->esc_params[s->nb_esc_params];
848                 int digit = (ch - '0');
849 
850                 *param = (*param <= (INT_MAX - digit) / 10) ?
851                          *param * 10 + digit : INT_MAX;
852             }
853         } else {
854             if (s->nb_esc_params < MAX_ESC_PARAMS)
855                 s->nb_esc_params++;
856             if (ch == ';')
857                 break;
858             trace_console_putchar_csi(s->esc_params[0], s->esc_params[1],
859                                       ch, s->nb_esc_params);
860             s->state = TTY_STATE_NORM;
861             switch(ch) {
862             case 'A':
863                 /* move cursor up */
864                 if (s->esc_params[0] == 0) {
865                     s->esc_params[0] = 1;
866                 }
867                 set_cursor(s, s->x, s->y - s->esc_params[0]);
868                 break;
869             case 'B':
870                 /* move cursor down */
871                 if (s->esc_params[0] == 0) {
872                     s->esc_params[0] = 1;
873                 }
874                 set_cursor(s, s->x, s->y + s->esc_params[0]);
875                 break;
876             case 'C':
877                 /* move cursor right */
878                 if (s->esc_params[0] == 0) {
879                     s->esc_params[0] = 1;
880                 }
881                 set_cursor(s, s->x + s->esc_params[0], s->y);
882                 break;
883             case 'D':
884                 /* move cursor left */
885                 if (s->esc_params[0] == 0) {
886                     s->esc_params[0] = 1;
887                 }
888                 set_cursor(s, s->x - s->esc_params[0], s->y);
889                 break;
890             case 'G':
891                 /* move cursor to column */
892                 set_cursor(s, s->esc_params[0] - 1, s->y);
893                 break;
894             case 'f':
895             case 'H':
896                 /* move cursor to row, column */
897                 set_cursor(s, s->esc_params[1] - 1, s->esc_params[0] - 1);
898                 break;
899             case 'J':
900                 switch (s->esc_params[0]) {
901                 case 0:
902                     /* clear to end of screen */
903                     for (y = s->y; y < s->height; y++) {
904                         for (x = 0; x < s->width; x++) {
905                             if (y == s->y && x < s->x) {
906                                 continue;
907                             }
908                             console_clear_xy(s, x, y);
909                         }
910                     }
911                     break;
912                 case 1:
913                     /* clear from beginning of screen */
914                     for (y = 0; y <= s->y; y++) {
915                         for (x = 0; x < s->width; x++) {
916                             if (y == s->y && x > s->x) {
917                                 break;
918                             }
919                             console_clear_xy(s, x, y);
920                         }
921                     }
922                     break;
923                 case 2:
924                     /* clear entire screen */
925                     for (y = 0; y <= s->height; y++) {
926                         for (x = 0; x < s->width; x++) {
927                             console_clear_xy(s, x, y);
928                         }
929                     }
930                     break;
931                 }
932                 break;
933             case 'K':
934                 switch (s->esc_params[0]) {
935                 case 0:
936                     /* clear to eol */
937                     for(x = s->x; x < s->width; x++) {
938                         console_clear_xy(s, x, s->y);
939                     }
940                     break;
941                 case 1:
942                     /* clear from beginning of line */
943                     for (x = 0; x <= s->x; x++) {
944                         console_clear_xy(s, x, s->y);
945                     }
946                     break;
947                 case 2:
948                     /* clear entire line */
949                     for(x = 0; x < s->width; x++) {
950                         console_clear_xy(s, x, s->y);
951                     }
952                     break;
953                 }
954                 break;
955             case 'm':
956                 console_handle_escape(s);
957                 break;
958             case 'n':
959                 /* report cursor position */
960                 /* TODO: send ESC[row;colR */
961                 break;
962             case 's':
963                 /* save cursor position */
964                 s->x_saved = s->x;
965                 s->y_saved = s->y;
966                 break;
967             case 'u':
968                 /* restore cursor position */
969                 s->x = s->x_saved;
970                 s->y = s->y_saved;
971                 break;
972             default:
973                 trace_console_putchar_unhandled(ch);
974                 break;
975             }
976             break;
977         }
978     }
979 }
980 
981 void console_select(unsigned int index)
982 {
983     DisplayChangeListener *dcl;
984     QemuConsole *s;
985 
986     trace_console_select(index);
987     s = qemu_console_lookup_by_index(index);
988     if (s) {
989         DisplayState *ds = s->ds;
990 
991         active_console = s;
992         if (ds->have_gfx) {
993             QLIST_FOREACH(dcl, &ds->listeners, next) {
994                 if (dcl->con != NULL) {
995                     continue;
996                 }
997                 if (dcl->ops->dpy_gfx_switch) {
998                     dcl->ops->dpy_gfx_switch(dcl, s->surface);
999                 }
1000             }
1001             dpy_gfx_update(s, 0, 0, surface_width(s->surface),
1002                            surface_height(s->surface));
1003         }
1004         if (ds->have_text) {
1005             dpy_text_resize(s, s->width, s->height);
1006         }
1007         text_console_update_cursor(NULL);
1008     }
1009 }
1010 
1011 static int console_puts(CharDriverState *chr, const uint8_t *buf, int len)
1012 {
1013     QemuConsole *s = chr->opaque;
1014     int i;
1015 
1016     s->update_x0 = s->width * FONT_WIDTH;
1017     s->update_y0 = s->height * FONT_HEIGHT;
1018     s->update_x1 = 0;
1019     s->update_y1 = 0;
1020     console_show_cursor(s, 0);
1021     for(i = 0; i < len; i++) {
1022         console_putchar(s, buf[i]);
1023     }
1024     console_show_cursor(s, 1);
1025     if (s->ds->have_gfx && s->update_x0 < s->update_x1) {
1026         dpy_gfx_update(s, s->update_x0, s->update_y0,
1027                        s->update_x1 - s->update_x0,
1028                        s->update_y1 - s->update_y0);
1029     }
1030     return len;
1031 }
1032 
1033 static void kbd_send_chars(void *opaque)
1034 {
1035     QemuConsole *s = opaque;
1036     int len;
1037     uint8_t buf[16];
1038 
1039     len = qemu_chr_be_can_write(s->chr);
1040     if (len > s->out_fifo.count)
1041         len = s->out_fifo.count;
1042     if (len > 0) {
1043         if (len > sizeof(buf))
1044             len = sizeof(buf);
1045         qemu_fifo_read(&s->out_fifo, buf, len);
1046         qemu_chr_be_write(s->chr, buf, len);
1047     }
1048     /* characters are pending: we send them a bit later (XXX:
1049        horrible, should change char device API) */
1050     if (s->out_fifo.count > 0) {
1051         timer_mod(s->kbd_timer, qemu_clock_get_ms(QEMU_CLOCK_REALTIME) + 1);
1052     }
1053 }
1054 
1055 /* called when an ascii key is pressed */
1056 void kbd_put_keysym_console(QemuConsole *s, int keysym)
1057 {
1058     uint8_t buf[16], *q;
1059     int c;
1060 
1061     if (!s || (s->console_type == GRAPHIC_CONSOLE))
1062         return;
1063 
1064     switch(keysym) {
1065     case QEMU_KEY_CTRL_UP:
1066         console_scroll(s, -1);
1067         break;
1068     case QEMU_KEY_CTRL_DOWN:
1069         console_scroll(s, 1);
1070         break;
1071     case QEMU_KEY_CTRL_PAGEUP:
1072         console_scroll(s, -10);
1073         break;
1074     case QEMU_KEY_CTRL_PAGEDOWN:
1075         console_scroll(s, 10);
1076         break;
1077     default:
1078         /* convert the QEMU keysym to VT100 key string */
1079         q = buf;
1080         if (keysym >= 0xe100 && keysym <= 0xe11f) {
1081             *q++ = '\033';
1082             *q++ = '[';
1083             c = keysym - 0xe100;
1084             if (c >= 10)
1085                 *q++ = '0' + (c / 10);
1086             *q++ = '0' + (c % 10);
1087             *q++ = '~';
1088         } else if (keysym >= 0xe120 && keysym <= 0xe17f) {
1089             *q++ = '\033';
1090             *q++ = '[';
1091             *q++ = keysym & 0xff;
1092         } else if (s->echo && (keysym == '\r' || keysym == '\n')) {
1093             console_puts(s->chr, (const uint8_t *) "\r", 1);
1094             *q++ = '\n';
1095         } else {
1096             *q++ = keysym;
1097         }
1098         if (s->echo) {
1099             console_puts(s->chr, buf, q - buf);
1100         }
1101         if (s->chr->chr_read) {
1102             qemu_fifo_write(&s->out_fifo, buf, q - buf);
1103             kbd_send_chars(s);
1104         }
1105         break;
1106     }
1107 }
1108 
1109 static const int qcode_to_keysym[Q_KEY_CODE_MAX] = {
1110     [Q_KEY_CODE_UP]     = QEMU_KEY_UP,
1111     [Q_KEY_CODE_DOWN]   = QEMU_KEY_DOWN,
1112     [Q_KEY_CODE_RIGHT]  = QEMU_KEY_RIGHT,
1113     [Q_KEY_CODE_LEFT]   = QEMU_KEY_LEFT,
1114     [Q_KEY_CODE_HOME]   = QEMU_KEY_HOME,
1115     [Q_KEY_CODE_END]    = QEMU_KEY_END,
1116     [Q_KEY_CODE_PGUP]   = QEMU_KEY_PAGEUP,
1117     [Q_KEY_CODE_PGDN]   = QEMU_KEY_PAGEDOWN,
1118     [Q_KEY_CODE_DELETE] = QEMU_KEY_DELETE,
1119 };
1120 
1121 bool kbd_put_qcode_console(QemuConsole *s, int qcode)
1122 {
1123     int keysym;
1124 
1125     keysym = qcode_to_keysym[qcode];
1126     if (keysym == 0) {
1127         return false;
1128     }
1129     kbd_put_keysym_console(s, keysym);
1130     return true;
1131 }
1132 
1133 void kbd_put_string_console(QemuConsole *s, const char *str, int len)
1134 {
1135     int i;
1136 
1137     for (i = 0; i < len && str[i]; i++) {
1138         kbd_put_keysym_console(s, str[i]);
1139     }
1140 }
1141 
1142 void kbd_put_keysym(int keysym)
1143 {
1144     kbd_put_keysym_console(active_console, keysym);
1145 }
1146 
1147 static void text_console_invalidate(void *opaque)
1148 {
1149     QemuConsole *s = (QemuConsole *) opaque;
1150 
1151     if (s->ds->have_text && s->console_type == TEXT_CONSOLE) {
1152         text_console_resize(s);
1153     }
1154     console_refresh(s);
1155 }
1156 
1157 static void text_console_update(void *opaque, console_ch_t *chardata)
1158 {
1159     QemuConsole *s = (QemuConsole *) opaque;
1160     int i, j, src;
1161 
1162     if (s->text_x[0] <= s->text_x[1]) {
1163         src = (s->y_base + s->text_y[0]) * s->width;
1164         chardata += s->text_y[0] * s->width;
1165         for (i = s->text_y[0]; i <= s->text_y[1]; i ++)
1166             for (j = 0; j < s->width; j ++, src ++)
1167                 console_write_ch(chardata ++, s->cells[src].ch |
1168                                 (s->cells[src].t_attrib.fgcol << 12) |
1169                                 (s->cells[src].t_attrib.bgcol << 8) |
1170                                 (s->cells[src].t_attrib.bold << 21));
1171         dpy_text_update(s, s->text_x[0], s->text_y[0],
1172                         s->text_x[1] - s->text_x[0], i - s->text_y[0]);
1173         s->text_x[0] = s->width;
1174         s->text_y[0] = s->height;
1175         s->text_x[1] = 0;
1176         s->text_y[1] = 0;
1177     }
1178     if (s->cursor_invalidate) {
1179         dpy_text_cursor(s, s->x, s->y);
1180         s->cursor_invalidate = 0;
1181     }
1182 }
1183 
1184 static QemuConsole *new_console(DisplayState *ds, console_type_t console_type,
1185                                 uint32_t head)
1186 {
1187     Object *obj;
1188     QemuConsole *s;
1189     int i;
1190 
1191     obj = object_new(TYPE_QEMU_CONSOLE);
1192     s = QEMU_CONSOLE(obj);
1193     s->head = head;
1194     object_property_add_link(obj, "device", TYPE_DEVICE,
1195                              (Object **)&s->device,
1196                              object_property_allow_set_link,
1197                              OBJ_PROP_LINK_UNREF_ON_RELEASE,
1198                              &error_abort);
1199     object_property_add_uint32_ptr(obj, "head",
1200                                    &s->head, &error_abort);
1201 
1202     if (!active_console || ((active_console->console_type != GRAPHIC_CONSOLE) &&
1203         (console_type == GRAPHIC_CONSOLE))) {
1204         active_console = s;
1205     }
1206     s->ds = ds;
1207     s->console_type = console_type;
1208 
1209     consoles = g_realloc(consoles, sizeof(*consoles) * (nb_consoles+1));
1210     if (console_type != GRAPHIC_CONSOLE) {
1211         s->index = nb_consoles;
1212         consoles[nb_consoles++] = s;
1213     } else {
1214         /* HACK: Put graphical consoles before text consoles.  */
1215         for (i = nb_consoles; i > 0; i--) {
1216             if (consoles[i - 1]->console_type == GRAPHIC_CONSOLE)
1217                 break;
1218             consoles[i] = consoles[i - 1];
1219             consoles[i]->index = i;
1220         }
1221         s->index = i;
1222         consoles[i] = s;
1223         nb_consoles++;
1224     }
1225     return s;
1226 }
1227 
1228 static void qemu_alloc_display(DisplaySurface *surface, int width, int height)
1229 {
1230     qemu_pixman_image_unref(surface->image);
1231     surface->image = NULL;
1232 
1233     surface->format = PIXMAN_x8r8g8b8;
1234     surface->image = pixman_image_create_bits(surface->format,
1235                                               width, height,
1236                                               NULL, width * 4);
1237     assert(surface->image != NULL);
1238 
1239     surface->flags = QEMU_ALLOCATED_FLAG;
1240 }
1241 
1242 DisplaySurface *qemu_create_displaysurface(int width, int height)
1243 {
1244     DisplaySurface *surface = g_new0(DisplaySurface, 1);
1245 
1246     trace_displaysurface_create(surface, width, height);
1247     qemu_alloc_display(surface, width, height);
1248     return surface;
1249 }
1250 
1251 DisplaySurface *qemu_create_displaysurface_from(int width, int height,
1252                                                 pixman_format_code_t format,
1253                                                 int linesize, uint8_t *data)
1254 {
1255     DisplaySurface *surface = g_new0(DisplaySurface, 1);
1256 
1257     trace_displaysurface_create_from(surface, width, height, format);
1258     surface->format = format;
1259     surface->image = pixman_image_create_bits(surface->format,
1260                                               width, height,
1261                                               (void *)data, linesize);
1262     assert(surface->image != NULL);
1263 
1264     return surface;
1265 }
1266 
1267 static void qemu_unmap_displaysurface_guestmem(pixman_image_t *image,
1268                                                void *unused)
1269 {
1270     void *data = pixman_image_get_data(image);
1271     uint32_t size = pixman_image_get_stride(image) *
1272         pixman_image_get_height(image);
1273     cpu_physical_memory_unmap(data, size, 0, 0);
1274 }
1275 
1276 DisplaySurface *qemu_create_displaysurface_guestmem(int width, int height,
1277                                                     pixman_format_code_t format,
1278                                                     int linesize, uint64_t addr)
1279 {
1280     DisplaySurface *surface;
1281     hwaddr size;
1282     void *data;
1283 
1284     if (linesize == 0) {
1285         linesize = width * PIXMAN_FORMAT_BPP(format) / 8;
1286     }
1287 
1288     size = linesize * height;
1289     data = cpu_physical_memory_map(addr, &size, 0);
1290     if (size != linesize * height) {
1291         cpu_physical_memory_unmap(data, size, 0, 0);
1292         return NULL;
1293     }
1294 
1295     surface = qemu_create_displaysurface_from
1296         (width, height, format, linesize, data);
1297     pixman_image_set_destroy_function
1298         (surface->image, qemu_unmap_displaysurface_guestmem, NULL);
1299 
1300     return surface;
1301 }
1302 
1303 static DisplaySurface *qemu_create_message_surface(int w, int h,
1304                                                    const char *msg)
1305 {
1306     DisplaySurface *surface = qemu_create_displaysurface(w, h);
1307     pixman_color_t bg = color_table_rgb[0][COLOR_BLACK];
1308     pixman_color_t fg = color_table_rgb[0][COLOR_WHITE];
1309     pixman_image_t *glyph;
1310     int len, x, y, i;
1311 
1312     len = strlen(msg);
1313     x = (w / FONT_WIDTH  - len) / 2;
1314     y = (h / FONT_HEIGHT - 1)   / 2;
1315     for (i = 0; i < len; i++) {
1316         glyph = qemu_pixman_glyph_from_vgafont(FONT_HEIGHT, vgafont16, msg[i]);
1317         qemu_pixman_glyph_render(glyph, surface->image, &fg, &bg,
1318                                  x+i, y, FONT_WIDTH, FONT_HEIGHT);
1319         qemu_pixman_image_unref(glyph);
1320     }
1321     return surface;
1322 }
1323 
1324 void qemu_free_displaysurface(DisplaySurface *surface)
1325 {
1326     if (surface == NULL) {
1327         return;
1328     }
1329     trace_displaysurface_free(surface);
1330     qemu_pixman_image_unref(surface->image);
1331     g_free(surface);
1332 }
1333 
1334 void register_displaychangelistener(DisplayChangeListener *dcl)
1335 {
1336     static const char nodev[] =
1337         "This VM has no graphic display device.";
1338     static DisplaySurface *dummy;
1339     QemuConsole *con;
1340 
1341     trace_displaychangelistener_register(dcl, dcl->ops->dpy_name);
1342     dcl->ds = get_alloc_displaystate();
1343     QLIST_INSERT_HEAD(&dcl->ds->listeners, dcl, next);
1344     gui_setup_refresh(dcl->ds);
1345     if (dcl->con) {
1346         dcl->con->dcls++;
1347         con = dcl->con;
1348     } else {
1349         con = active_console;
1350     }
1351     if (dcl->ops->dpy_gfx_switch) {
1352         if (con) {
1353             dcl->ops->dpy_gfx_switch(dcl, con->surface);
1354         } else {
1355             if (!dummy) {
1356                 dummy = qemu_create_message_surface(640, 480, nodev);
1357             }
1358             dcl->ops->dpy_gfx_switch(dcl, dummy);
1359         }
1360     }
1361     text_console_update_cursor(NULL);
1362 }
1363 
1364 void update_displaychangelistener(DisplayChangeListener *dcl,
1365                                   uint64_t interval)
1366 {
1367     DisplayState *ds = dcl->ds;
1368 
1369     dcl->update_interval = interval;
1370     if (!ds->refreshing && ds->update_interval > interval) {
1371         timer_mod(ds->gui_timer, ds->last_update + interval);
1372     }
1373 }
1374 
1375 void unregister_displaychangelistener(DisplayChangeListener *dcl)
1376 {
1377     DisplayState *ds = dcl->ds;
1378     trace_displaychangelistener_unregister(dcl, dcl->ops->dpy_name);
1379     if (dcl->con) {
1380         dcl->con->dcls--;
1381     }
1382     QLIST_REMOVE(dcl, next);
1383     gui_setup_refresh(ds);
1384 }
1385 
1386 int dpy_set_ui_info(QemuConsole *con, QemuUIInfo *info)
1387 {
1388     assert(con != NULL);
1389     con->ui_info = *info;
1390     if (con->hw_ops->ui_info) {
1391         return con->hw_ops->ui_info(con->hw, con->head, info);
1392     }
1393     return -1;
1394 }
1395 
1396 void dpy_gfx_update(QemuConsole *con, int x, int y, int w, int h)
1397 {
1398     DisplayState *s = con->ds;
1399     DisplayChangeListener *dcl;
1400     int width = surface_width(con->surface);
1401     int height = surface_height(con->surface);
1402 
1403     x = MAX(x, 0);
1404     y = MAX(y, 0);
1405     x = MIN(x, width);
1406     y = MIN(y, height);
1407     w = MIN(w, width - x);
1408     h = MIN(h, height - y);
1409 
1410     if (!qemu_console_is_visible(con)) {
1411         return;
1412     }
1413     QLIST_FOREACH(dcl, &s->listeners, next) {
1414         if (con != (dcl->con ? dcl->con : active_console)) {
1415             continue;
1416         }
1417         if (dcl->ops->dpy_gfx_update) {
1418             dcl->ops->dpy_gfx_update(dcl, x, y, w, h);
1419         }
1420     }
1421 }
1422 
1423 void dpy_gfx_replace_surface(QemuConsole *con,
1424                              DisplaySurface *surface)
1425 {
1426     DisplayState *s = con->ds;
1427     DisplaySurface *old_surface = con->surface;
1428     DisplayChangeListener *dcl;
1429 
1430     con->surface = surface;
1431     QLIST_FOREACH(dcl, &s->listeners, next) {
1432         if (con != (dcl->con ? dcl->con : active_console)) {
1433             continue;
1434         }
1435         if (dcl->ops->dpy_gfx_switch) {
1436             dcl->ops->dpy_gfx_switch(dcl, surface);
1437         }
1438     }
1439     qemu_free_displaysurface(old_surface);
1440 }
1441 
1442 static void dpy_refresh(DisplayState *s)
1443 {
1444     DisplayChangeListener *dcl;
1445 
1446     QLIST_FOREACH(dcl, &s->listeners, next) {
1447         if (dcl->ops->dpy_refresh) {
1448             dcl->ops->dpy_refresh(dcl);
1449         }
1450     }
1451 }
1452 
1453 void dpy_gfx_copy(QemuConsole *con, int src_x, int src_y,
1454                   int dst_x, int dst_y, int w, int h)
1455 {
1456     DisplayState *s = con->ds;
1457     DisplayChangeListener *dcl;
1458 
1459     if (!qemu_console_is_visible(con)) {
1460         return;
1461     }
1462     QLIST_FOREACH(dcl, &s->listeners, next) {
1463         if (con != (dcl->con ? dcl->con : active_console)) {
1464             continue;
1465         }
1466         if (dcl->ops->dpy_gfx_copy) {
1467             dcl->ops->dpy_gfx_copy(dcl, src_x, src_y, dst_x, dst_y, w, h);
1468         } else { /* TODO */
1469             dcl->ops->dpy_gfx_update(dcl, dst_x, dst_y, w, h);
1470         }
1471     }
1472 }
1473 
1474 void dpy_text_cursor(QemuConsole *con, int x, int y)
1475 {
1476     DisplayState *s = con->ds;
1477     DisplayChangeListener *dcl;
1478 
1479     if (!qemu_console_is_visible(con)) {
1480         return;
1481     }
1482     QLIST_FOREACH(dcl, &s->listeners, next) {
1483         if (con != (dcl->con ? dcl->con : active_console)) {
1484             continue;
1485         }
1486         if (dcl->ops->dpy_text_cursor) {
1487             dcl->ops->dpy_text_cursor(dcl, x, y);
1488         }
1489     }
1490 }
1491 
1492 void dpy_text_update(QemuConsole *con, int x, int y, int w, int h)
1493 {
1494     DisplayState *s = con->ds;
1495     DisplayChangeListener *dcl;
1496 
1497     if (!qemu_console_is_visible(con)) {
1498         return;
1499     }
1500     QLIST_FOREACH(dcl, &s->listeners, next) {
1501         if (con != (dcl->con ? dcl->con : active_console)) {
1502             continue;
1503         }
1504         if (dcl->ops->dpy_text_update) {
1505             dcl->ops->dpy_text_update(dcl, x, y, w, h);
1506         }
1507     }
1508 }
1509 
1510 void dpy_text_resize(QemuConsole *con, int w, int h)
1511 {
1512     DisplayState *s = con->ds;
1513     struct DisplayChangeListener *dcl;
1514 
1515     if (!qemu_console_is_visible(con)) {
1516         return;
1517     }
1518     QLIST_FOREACH(dcl, &s->listeners, next) {
1519         if (con != (dcl->con ? dcl->con : active_console)) {
1520             continue;
1521         }
1522         if (dcl->ops->dpy_text_resize) {
1523             dcl->ops->dpy_text_resize(dcl, w, h);
1524         }
1525     }
1526 }
1527 
1528 void dpy_mouse_set(QemuConsole *con, int x, int y, int on)
1529 {
1530     DisplayState *s = con->ds;
1531     DisplayChangeListener *dcl;
1532 
1533     if (!qemu_console_is_visible(con)) {
1534         return;
1535     }
1536     QLIST_FOREACH(dcl, &s->listeners, next) {
1537         if (con != (dcl->con ? dcl->con : active_console)) {
1538             continue;
1539         }
1540         if (dcl->ops->dpy_mouse_set) {
1541             dcl->ops->dpy_mouse_set(dcl, x, y, on);
1542         }
1543     }
1544 }
1545 
1546 void dpy_cursor_define(QemuConsole *con, QEMUCursor *cursor)
1547 {
1548     DisplayState *s = con->ds;
1549     DisplayChangeListener *dcl;
1550 
1551     if (!qemu_console_is_visible(con)) {
1552         return;
1553     }
1554     QLIST_FOREACH(dcl, &s->listeners, next) {
1555         if (con != (dcl->con ? dcl->con : active_console)) {
1556             continue;
1557         }
1558         if (dcl->ops->dpy_cursor_define) {
1559             dcl->ops->dpy_cursor_define(dcl, cursor);
1560         }
1561     }
1562 }
1563 
1564 bool dpy_cursor_define_supported(QemuConsole *con)
1565 {
1566     DisplayState *s = con->ds;
1567     DisplayChangeListener *dcl;
1568 
1569     QLIST_FOREACH(dcl, &s->listeners, next) {
1570         if (dcl->ops->dpy_cursor_define) {
1571             return true;
1572         }
1573     }
1574     return false;
1575 }
1576 
1577 /*
1578  * Call dpy_gfx_update for all dirity scanlines.  Works for
1579  * DisplaySurfaces backed by guest memory (i.e. the ones created
1580  * using qemu_create_displaysurface_guestmem).
1581  */
1582 void dpy_gfx_update_dirty(QemuConsole *con,
1583                           MemoryRegion *address_space,
1584                           hwaddr base,
1585                           bool invalidate)
1586 {
1587     DisplaySurface *ds = qemu_console_surface(con);
1588     int width = surface_stride(ds);
1589     int height = surface_height(ds);
1590     hwaddr size = width * height;
1591     MemoryRegionSection mem_section;
1592     MemoryRegion *mem;
1593     ram_addr_t addr;
1594     int first, last, i;
1595     bool dirty;
1596 
1597     mem_section = memory_region_find(address_space, base, size);
1598     mem = mem_section.mr;
1599     if (int128_get64(mem_section.size) != size ||
1600         !memory_region_is_ram(mem_section.mr)) {
1601         goto out;
1602     }
1603     assert(mem);
1604 
1605     memory_region_sync_dirty_bitmap(mem);
1606     addr = mem_section.offset_within_region;
1607 
1608     first = -1;
1609     last = -1;
1610     for (i = 0; i < height; i++, addr += width) {
1611         dirty = invalidate ||
1612             memory_region_get_dirty(mem, addr, width, DIRTY_MEMORY_VGA);
1613         if (dirty) {
1614             if (first == -1) {
1615                 first = i;
1616             }
1617             last = i;
1618         }
1619         if (first != -1 && !dirty) {
1620             assert(last != -1 && last >= first);
1621             dpy_gfx_update(con, 0, first, surface_width(ds),
1622                            last - first + 1);
1623             first = -1;
1624         }
1625     }
1626     if (first != -1) {
1627         assert(last != -1 && last >= first);
1628         dpy_gfx_update(con, 0, first, surface_width(ds),
1629                        last - first + 1);
1630     }
1631 
1632     memory_region_reset_dirty(mem, mem_section.offset_within_region, size,
1633                               DIRTY_MEMORY_VGA);
1634 out:
1635     memory_region_unref(mem);
1636 }
1637 
1638 /***********************************************************/
1639 /* register display */
1640 
1641 /* console.c internal use only */
1642 static DisplayState *get_alloc_displaystate(void)
1643 {
1644     if (!display_state) {
1645         display_state = g_new0(DisplayState, 1);
1646         cursor_timer = timer_new_ms(QEMU_CLOCK_REALTIME,
1647                                     text_console_update_cursor, NULL);
1648     }
1649     return display_state;
1650 }
1651 
1652 /*
1653  * Called by main(), after creating QemuConsoles
1654  * and before initializing ui (sdl/vnc/...).
1655  */
1656 DisplayState *init_displaystate(void)
1657 {
1658     gchar *name;
1659     int i;
1660 
1661     get_alloc_displaystate();
1662     for (i = 0; i < nb_consoles; i++) {
1663         if (consoles[i]->console_type != GRAPHIC_CONSOLE &&
1664             consoles[i]->ds == NULL) {
1665             text_console_do_init(consoles[i]->chr, display_state);
1666         }
1667 
1668         /* Hook up into the qom tree here (not in new_console()), once
1669          * all QemuConsoles are created and the order / numbering
1670          * doesn't change any more */
1671         name = g_strdup_printf("console[%d]", i);
1672         object_property_add_child(container_get(object_get_root(), "/backend"),
1673                                   name, OBJECT(consoles[i]), &error_abort);
1674         g_free(name);
1675     }
1676 
1677     return display_state;
1678 }
1679 
1680 void graphic_console_set_hwops(QemuConsole *con,
1681                                const GraphicHwOps *hw_ops,
1682                                void *opaque)
1683 {
1684     con->hw_ops = hw_ops;
1685     con->hw = opaque;
1686 }
1687 
1688 QemuConsole *graphic_console_init(DeviceState *dev, uint32_t head,
1689                                   const GraphicHwOps *hw_ops,
1690                                   void *opaque)
1691 {
1692     static const char noinit[] =
1693         "Guest has not initialized the display (yet).";
1694     int width = 640;
1695     int height = 480;
1696     QemuConsole *s;
1697     DisplayState *ds;
1698 
1699     ds = get_alloc_displaystate();
1700     trace_console_gfx_new();
1701     s = new_console(ds, GRAPHIC_CONSOLE, head);
1702     graphic_console_set_hwops(s, hw_ops, opaque);
1703     if (dev) {
1704         object_property_set_link(OBJECT(s), OBJECT(dev), "device",
1705                                  &error_abort);
1706     }
1707 
1708     s->surface = qemu_create_message_surface(width, height, noinit);
1709     return s;
1710 }
1711 
1712 QemuConsole *qemu_console_lookup_by_index(unsigned int index)
1713 {
1714     if (index >= nb_consoles) {
1715         return NULL;
1716     }
1717     return consoles[index];
1718 }
1719 
1720 QemuConsole *qemu_console_lookup_by_device(DeviceState *dev, uint32_t head)
1721 {
1722     Object *obj;
1723     uint32_t h;
1724     int i;
1725 
1726     for (i = 0; i < nb_consoles; i++) {
1727         if (!consoles[i]) {
1728             continue;
1729         }
1730         obj = object_property_get_link(OBJECT(consoles[i]),
1731                                        "device", &error_abort);
1732         if (DEVICE(obj) != dev) {
1733             continue;
1734         }
1735         h = object_property_get_int(OBJECT(consoles[i]),
1736                                     "head", &error_abort);
1737         if (h != head) {
1738             continue;
1739         }
1740         return consoles[i];
1741     }
1742     return NULL;
1743 }
1744 
1745 bool qemu_console_is_visible(QemuConsole *con)
1746 {
1747     return (con == active_console) || (con->dcls > 0);
1748 }
1749 
1750 bool qemu_console_is_graphic(QemuConsole *con)
1751 {
1752     if (con == NULL) {
1753         con = active_console;
1754     }
1755     return con && (con->console_type == GRAPHIC_CONSOLE);
1756 }
1757 
1758 bool qemu_console_is_fixedsize(QemuConsole *con)
1759 {
1760     if (con == NULL) {
1761         con = active_console;
1762     }
1763     return con && (con->console_type != TEXT_CONSOLE);
1764 }
1765 
1766 int qemu_console_get_index(QemuConsole *con)
1767 {
1768     if (con == NULL) {
1769         con = active_console;
1770     }
1771     return con ? con->index : -1;
1772 }
1773 
1774 uint32_t qemu_console_get_head(QemuConsole *con)
1775 {
1776     if (con == NULL) {
1777         con = active_console;
1778     }
1779     return con ? con->head : -1;
1780 }
1781 
1782 QemuUIInfo *qemu_console_get_ui_info(QemuConsole *con)
1783 {
1784     assert(con != NULL);
1785     return &con->ui_info;
1786 }
1787 
1788 int qemu_console_get_width(QemuConsole *con, int fallback)
1789 {
1790     if (con == NULL) {
1791         con = active_console;
1792     }
1793     return con ? surface_width(con->surface) : fallback;
1794 }
1795 
1796 int qemu_console_get_height(QemuConsole *con, int fallback)
1797 {
1798     if (con == NULL) {
1799         con = active_console;
1800     }
1801     return con ? surface_height(con->surface) : fallback;
1802 }
1803 
1804 static void text_console_set_echo(CharDriverState *chr, bool echo)
1805 {
1806     QemuConsole *s = chr->opaque;
1807 
1808     s->echo = echo;
1809 }
1810 
1811 static void text_console_update_cursor_timer(void)
1812 {
1813     timer_mod(cursor_timer, qemu_clock_get_ms(QEMU_CLOCK_REALTIME)
1814               + CONSOLE_CURSOR_PERIOD / 2);
1815 }
1816 
1817 static void text_console_update_cursor(void *opaque)
1818 {
1819     QemuConsole *s;
1820     int i, count = 0;
1821 
1822     cursor_visible_phase = !cursor_visible_phase;
1823 
1824     for (i = 0; i < nb_consoles; i++) {
1825         s = consoles[i];
1826         if (qemu_console_is_graphic(s) ||
1827             !qemu_console_is_visible(s)) {
1828             continue;
1829         }
1830         count++;
1831         graphic_hw_invalidate(s);
1832     }
1833 
1834     if (count) {
1835         text_console_update_cursor_timer();
1836     }
1837 }
1838 
1839 static const GraphicHwOps text_console_ops = {
1840     .invalidate  = text_console_invalidate,
1841     .text_update = text_console_update,
1842 };
1843 
1844 static void text_console_do_init(CharDriverState *chr, DisplayState *ds)
1845 {
1846     QemuConsole *s;
1847     int g_width = 80 * FONT_WIDTH;
1848     int g_height = 24 * FONT_HEIGHT;
1849 
1850     s = chr->opaque;
1851 
1852     chr->chr_write = console_puts;
1853 
1854     s->out_fifo.buf = s->out_fifo_buf;
1855     s->out_fifo.buf_size = sizeof(s->out_fifo_buf);
1856     s->kbd_timer = timer_new_ms(QEMU_CLOCK_REALTIME, kbd_send_chars, s);
1857     s->ds = ds;
1858 
1859     s->y_displayed = 0;
1860     s->y_base = 0;
1861     s->total_height = DEFAULT_BACKSCROLL;
1862     s->x = 0;
1863     s->y = 0;
1864     if (!s->surface) {
1865         if (active_console && active_console->surface) {
1866             g_width = surface_width(active_console->surface);
1867             g_height = surface_height(active_console->surface);
1868         }
1869         s->surface = qemu_create_displaysurface(g_width, g_height);
1870     }
1871 
1872     s->hw_ops = &text_console_ops;
1873     s->hw = s;
1874 
1875     /* Set text attribute defaults */
1876     s->t_attrib_default.bold = 0;
1877     s->t_attrib_default.uline = 0;
1878     s->t_attrib_default.blink = 0;
1879     s->t_attrib_default.invers = 0;
1880     s->t_attrib_default.unvisible = 0;
1881     s->t_attrib_default.fgcol = COLOR_WHITE;
1882     s->t_attrib_default.bgcol = COLOR_BLACK;
1883     /* set current text attributes to default */
1884     s->t_attrib = s->t_attrib_default;
1885     text_console_resize(s);
1886 
1887     if (chr->label) {
1888         char msg[128];
1889         int len;
1890 
1891         s->t_attrib.bgcol = COLOR_BLUE;
1892         len = snprintf(msg, sizeof(msg), "%s console\r\n", chr->label);
1893         console_puts(chr, (uint8_t*)msg, len);
1894         s->t_attrib = s->t_attrib_default;
1895     }
1896 
1897     qemu_chr_be_generic_open(chr);
1898     if (chr->init)
1899         chr->init(chr);
1900 }
1901 
1902 static CharDriverState *text_console_init(ChardevVC *vc)
1903 {
1904     CharDriverState *chr;
1905     QemuConsole *s;
1906     unsigned width = 0;
1907     unsigned height = 0;
1908 
1909     chr = qemu_chr_alloc();
1910 
1911     if (vc->has_width) {
1912         width = vc->width;
1913     } else if (vc->has_cols) {
1914         width = vc->cols * FONT_WIDTH;
1915     }
1916 
1917     if (vc->has_height) {
1918         height = vc->height;
1919     } else if (vc->has_rows) {
1920         height = vc->rows * FONT_HEIGHT;
1921     }
1922 
1923     trace_console_txt_new(width, height);
1924     if (width == 0 || height == 0) {
1925         s = new_console(NULL, TEXT_CONSOLE, 0);
1926     } else {
1927         s = new_console(NULL, TEXT_CONSOLE_FIXED_SIZE, 0);
1928         s->surface = qemu_create_displaysurface(width, height);
1929     }
1930 
1931     if (!s) {
1932         g_free(chr);
1933         return NULL;
1934     }
1935 
1936     s->chr = chr;
1937     chr->opaque = s;
1938     chr->chr_set_echo = text_console_set_echo;
1939     /* console/chardev init sometimes completes elsewhere in a 2nd
1940      * stage, so defer OPENED events until they are fully initialized
1941      */
1942     chr->explicit_be_open = true;
1943 
1944     if (display_state) {
1945         text_console_do_init(chr, display_state);
1946     }
1947     return chr;
1948 }
1949 
1950 static VcHandler *vc_handler = text_console_init;
1951 
1952 CharDriverState *vc_init(ChardevVC *vc)
1953 {
1954     return vc_handler(vc);
1955 }
1956 
1957 void register_vc_handler(VcHandler *handler)
1958 {
1959     vc_handler = handler;
1960 }
1961 
1962 void qemu_console_resize(QemuConsole *s, int width, int height)
1963 {
1964     DisplaySurface *surface;
1965 
1966     assert(s->console_type == GRAPHIC_CONSOLE);
1967     surface = qemu_create_displaysurface(width, height);
1968     dpy_gfx_replace_surface(s, surface);
1969 }
1970 
1971 void qemu_console_copy(QemuConsole *con, int src_x, int src_y,
1972                        int dst_x, int dst_y, int w, int h)
1973 {
1974     assert(con->console_type == GRAPHIC_CONSOLE);
1975     dpy_gfx_copy(con, src_x, src_y, dst_x, dst_y, w, h);
1976 }
1977 
1978 DisplaySurface *qemu_console_surface(QemuConsole *console)
1979 {
1980     return console->surface;
1981 }
1982 
1983 DisplayState *qemu_console_displaystate(QemuConsole *console)
1984 {
1985     return console->ds;
1986 }
1987 
1988 PixelFormat qemu_different_endianness_pixelformat(int bpp)
1989 {
1990     pixman_format_code_t fmt = qemu_default_pixman_format(bpp, false);
1991     PixelFormat pf = qemu_pixelformat_from_pixman(fmt);
1992     return pf;
1993 }
1994 
1995 PixelFormat qemu_default_pixelformat(int bpp)
1996 {
1997     pixman_format_code_t fmt = qemu_default_pixman_format(bpp, true);
1998     PixelFormat pf = qemu_pixelformat_from_pixman(fmt);
1999     return pf;
2000 }
2001 
2002 static void qemu_chr_parse_vc(QemuOpts *opts, ChardevBackend *backend,
2003                               Error **errp)
2004 {
2005     int val;
2006 
2007     backend->vc = g_new0(ChardevVC, 1);
2008 
2009     val = qemu_opt_get_number(opts, "width", 0);
2010     if (val != 0) {
2011         backend->vc->has_width = true;
2012         backend->vc->width = val;
2013     }
2014 
2015     val = qemu_opt_get_number(opts, "height", 0);
2016     if (val != 0) {
2017         backend->vc->has_height = true;
2018         backend->vc->height = val;
2019     }
2020 
2021     val = qemu_opt_get_number(opts, "cols", 0);
2022     if (val != 0) {
2023         backend->vc->has_cols = true;
2024         backend->vc->cols = val;
2025     }
2026 
2027     val = qemu_opt_get_number(opts, "rows", 0);
2028     if (val != 0) {
2029         backend->vc->has_rows = true;
2030         backend->vc->rows = val;
2031     }
2032 }
2033 
2034 static const TypeInfo qemu_console_info = {
2035     .name = TYPE_QEMU_CONSOLE,
2036     .parent = TYPE_OBJECT,
2037     .instance_size = sizeof(QemuConsole),
2038     .class_size = sizeof(QemuConsoleClass),
2039 };
2040 
2041 
2042 static void register_types(void)
2043 {
2044     type_register_static(&qemu_console_info);
2045     register_char_driver("vc", CHARDEV_BACKEND_KIND_VC, qemu_chr_parse_vc);
2046 }
2047 
2048 type_init(register_types);
2049