iPXE
Macros | Functions
xengrant.c File Reference

Xen grant tables. More...

#include <stdint.h>
#include <strings.h>
#include <errno.h>
#include <assert.h>
#include <ipxe/io.h>
#include <ipxe/xen.h>
#include <ipxe/xengrant.h>

Go to the source code of this file.

Macros

#define XENGRANT_TRY_VERSION   1
 Grant table version to try setting. More...
 

Functions

 FILE_LICENCE (GPL2_OR_LATER_OR_UBDL)
 
 FILE_SECBOOT (PERMITTED)
 
int xengrant_init (struct xen_hypervisor *xen)
 Initialise grant table. More...
 
int xengrant_alloc (struct xen_hypervisor *xen, grant_ref_t *refs, unsigned int count)
 Allocate grant references. More...
 
void xengrant_free (struct xen_hypervisor *xen, grant_ref_t *refs, unsigned int count)
 Free grant references. More...
 

Detailed Description

Xen grant tables.

Definition in file xengrant.c.

Macro Definition Documentation

◆ XENGRANT_TRY_VERSION

#define XENGRANT_TRY_VERSION   1

Grant table version to try setting.

Using version 1 grant tables limits guests to using 16TB of grantable RAM, and prevents the use of subpage grants. Some versions of the Xen hypervisor refuse to allow the grant table version to be set after the first grant references have been created, so the loaded operating system may be stuck with whatever choice we make here. We therefore currently use version 2 grant tables, since they give the most flexibility to the loaded OS.

Current versions (7.2.0) of the Windows PV drivers have no support for version 2 grant tables, and will merrily create version 1 entries in what the hypervisor believes to be a version 2 table. This causes some confusion.

Avoid this problem by attempting to use version 1 tables, since otherwise we may render Windows unable to boot.

Play nicely with other potential bootloaders by accepting either version 1 or version 2 grant tables (if we are unable to set our requested version).

Definition at line 63 of file xengrant.c.

Function Documentation

◆ FILE_LICENCE()

FILE_LICENCE ( GPL2_OR_LATER_OR_UBDL  )

◆ FILE_SECBOOT()

FILE_SECBOOT ( PERMITTED  )

◆ xengrant_init()

int xengrant_init ( struct xen_hypervisor xen)

Initialise grant table.

Parameters
xenXen hypervisor
Return values
rcReturn status code

Definition at line 71 of file xengrant.c.

71  {
72  struct gnttab_query_size size;
73  struct gnttab_set_version set_version;
74  struct gnttab_get_version get_version;
75  struct grant_entry_v1 *v1;
76  union grant_entry_v2 *v2;
77  unsigned int version;
78  int xenrc;
79  int rc;
80 
81  /* Get grant table size */
82  size.dom = DOMID_SELF;
83  if ( ( xenrc = xengrant_query_size ( xen, &size ) ) != 0 ) {
84  rc = -EXEN ( xenrc );
85  DBGC ( xen, "XENGRANT could not get table size: %s\n",
86  strerror ( rc ) );
87  return rc;
88  }
89  xen->grant.len = ( size.nr_frames * PAGE_SIZE );
90 
91  /* Set grant table version, if applicable */
92  set_version.version = XENGRANT_TRY_VERSION;
93  if ( ( xenrc = xengrant_set_version ( xen, &set_version ) ) != 0 ) {
94  rc = -EXEN ( xenrc );
95  DBGC ( xen, "XENGRANT could not set version %d: %s\n",
97  /* Continue; use whatever version is current */
98  }
99 
100  /* Get grant table version */
101  get_version.dom = DOMID_SELF;
102  get_version.pad = 0;
103  if ( ( xenrc = xengrant_get_version ( xen, &get_version ) ) == 0 ) {
104  version = get_version.version;
105  switch ( version ) {
106 
107  case 0:
108  /* Version not yet specified: will be version 1 */
109  version = 1;
110  break;
111 
112  case 1 :
113  /* Version 1 table: nothing special to do */
114  break;
115 
116  case 2:
117  /* Version 2 table: configure shift appropriately */
118  xen->grant.shift = ( fls ( sizeof ( *v2 ) /
119  sizeof ( *v1 ) ) - 1 );
120  break;
121 
122  default:
123  /* Unsupported version */
124  DBGC ( xen, "XENGRANT detected unsupported version "
125  "%d\n", version );
126  return -ENOTSUP;
127 
128  }
129  } else {
130  rc = -EXEN ( xenrc );
131  DBGC ( xen, "XENGRANT could not get version (assuming v1): "
132  "%s\n", strerror ( rc ) );
133  version = 1;
134  }
135 
136  DBGC ( xen, "XENGRANT using v%d table with %d entries\n",
137  version, xengrant_entries ( xen ) );
138  return 0;
139 }
struct arbelprm_rc_send_wqe rc
Definition: arbel.h:14
uint16_t size
Buffer size.
Definition: dwmac.h:14
#define DBGC(...)
Definition: compiler.h:505
v1
Definition: xengrant.h:94
#define PAGE_SIZE
Page size.
Definition: io.h:28
#define ENOTSUP
Operation not supported.
Definition: errno.h:590
#define EXEN(xenrc)
Convert a Xen status code to an iPXE status code.
Definition: xen.h:87
u32 version
Driver version.
Definition: ath9k_hw.c:1985
char * strerror(int errno)
Retrieve string representation of error number.
Definition: strerror.c:79
Definition: grant_table.h:118
union grant_entry_v2 * v2
Definition: xengrant.h:179
#define XENGRANT_TRY_VERSION
Grant table version to try setting.
Definition: xengrant.c:63
unsigned int shift
Entry size shift (for later version tables)
Definition: xen.h:35
struct xen_grant grant
Grant table.
Definition: xen.h:57
#define DOMID_SELF
Definition: xen.h:568
size_t len
Total grant table length.
Definition: xen.h:33
#define fls(x)
Find last (i.e.
Definition: strings.h:167

References DBGC, DOMID_SELF, ENOTSUP, EXEN, fls, xen_hypervisor::grant, xen_grant::len, PAGE_SIZE, rc, xen_grant::shift, size, strerror(), v1, v2, version, and XENGRANT_TRY_VERSION.

Referenced by hvm_map_grant().

◆ xengrant_alloc()

int xengrant_alloc ( struct xen_hypervisor xen,
grant_ref_t refs,
unsigned int  count 
)

Allocate grant references.

Parameters
xenXen hypervisor
refsGrant references to fill in
countNumber of references
Return values
rcReturn status code

Definition at line 149 of file xengrant.c.

150  {
151  struct grant_entry_header *hdr;
152  unsigned int entries = xengrant_entries ( xen );
153  unsigned int mask = ( entries - 1 );
154  unsigned int check = 0;
155  unsigned int avail;
156  unsigned int ref;
157 
158  /* Fail unless we have enough references available */
159  avail = ( entries - xen->grant.used - GNTTAB_NR_RESERVED_ENTRIES );
160  if ( avail < count ) {
161  DBGC ( xen, "XENGRANT cannot allocate %d references (only %d "
162  "of %d available)\n", count, avail, entries );
163  return -ENOBUFS;
164  }
165  DBGC ( xen, "XENGRANT allocating %d references (from %d of %d "
166  "available)\n", count, avail, entries );
167 
168  /* Update number of references used */
169  xen->grant.used += count;
170 
171  /* Find unused references */
172  for ( ref = xen->grant.ref ; count ; ref = ( ( ref + 1 ) & mask ) ) {
173 
174  /* Sanity check */
175  assert ( check++ < entries );
176 
177  /* Skip reserved references */
179  continue;
180 
181  /* Skip in-use references */
182  hdr = xengrant_header ( xen, ref );
183  if ( readw ( &hdr->flags ) & GTF_type_mask )
184  continue;
185  if ( readw ( &hdr->domid ) == DOMID_SELF )
186  continue;
187 
188  /* Zero reference */
189  xengrant_zero ( xen, hdr );
190 
191  /* Mark reference as in-use. We leave the flags as
192  * empty (to avoid creating a valid grant table entry)
193  * and set the domid to DOMID_SELF.
194  */
195  writew ( DOMID_SELF, &hdr->domid );
196  DBGC2 ( xen, "XENGRANT allocated ref %d\n", ref );
197 
198  /* Record reference */
199  refs[--count] = ref;
200  }
201 
202  /* Update cursor */
203  xen->grant.ref = ref;
204 
205  return 0;
206 }
struct golan_inbox_hdr hdr
Message header.
Definition: CIB_PRM.h:28
uint16_t readw(volatile uint16_t *io_addr)
Read 16-bit word from memory-mapped device.
#define DBGC(...)
Definition: compiler.h:505
#define GNTTAB_NR_RESERVED_ENTRIES
Definition: grant_table.h:136
assert((readw(&hdr->flags) &(GTF_reading|GTF_writing))==0)
static unsigned int count
Number of entries.
Definition: dwmac.h:225
#define GTF_type_mask
Definition: grant_table.h:153
static const char grant_ref_t unsigned int struct io_buffer grant_ref_t * refs
Definition: netfront.h:94
unsigned int ref
Most recently used grant reference.
Definition: xen.h:39
#define ENOBUFS
No buffer space available.
Definition: errno.h:499
#define DBGC2(...)
Definition: compiler.h:522
struct xen_grant grant
Grant table.
Definition: xen.h:57
#define writew
Definition: w89c840.c:159
#define DOMID_SELF
Definition: xen.h:568
static const char grant_ref_t ref
Definition: netfront.h:92
static void xengrant_zero(struct xen_hypervisor *xen, struct grant_entry_header *hdr)
Zero grant table entry.
Definition: xengrant.h:128
unsigned int used
Number of grant table entries in use.
Definition: xen.h:37

References assert(), count, DBGC, DBGC2, DOMID_SELF, ENOBUFS, GNTTAB_NR_RESERVED_ENTRIES, xen_hypervisor::grant, GTF_type_mask, hdr, readw(), xen_grant::ref, ref, refs, xen_grant::used, writew, and xengrant_zero().

Referenced by netfront_probe().

◆ xengrant_free()

void xengrant_free ( struct xen_hypervisor xen,
grant_ref_t refs,
unsigned int  count 
)

Free grant references.

Parameters
xenXen hypervisor
refsGrant references
countNumber of references

Definition at line 215 of file xengrant.c.

216  {
217  struct grant_entry_header *hdr;
218  unsigned int ref;
219  unsigned int i;
220 
221  /* Free references */
222  for ( i = 0 ; i < count ; i++ ) {
223 
224  /* Sanity check */
225  ref = refs[i];
226  assert ( ref < xengrant_entries ( xen ) );
227 
228  /* Zero reference */
229  hdr = xengrant_header ( xen, ref );
230  xengrant_zero ( xen, hdr );
231  DBGC2 ( xen, "XENGRANT freed ref %d\n", ref );
232  }
233 }
struct golan_inbox_hdr hdr
Message header.
Definition: CIB_PRM.h:28
assert((readw(&hdr->flags) &(GTF_reading|GTF_writing))==0)
static unsigned int count
Number of entries.
Definition: dwmac.h:225
static const char grant_ref_t unsigned int struct io_buffer grant_ref_t * refs
Definition: netfront.h:94
#define DBGC2(...)
Definition: compiler.h:522
static const char grant_ref_t ref
Definition: netfront.h:92
static void xengrant_zero(struct xen_hypervisor *xen, struct grant_entry_header *hdr)
Zero grant table entry.
Definition: xengrant.h:128

References assert(), count, DBGC2, hdr, ref, refs, and xengrant_zero().

Referenced by netfront_probe(), and netfront_remove().