From: "Denis V. Lunev" <den@openvz.org>
To: qemu-devel@nongnu.org
Cc: qemu-block@nongnu.org, "Denis V. Lunev" <den@openvz.org>,
"John Snow" <jsnow@redhat.com>,
"Peter Maydell" <peter.maydell@linaro.org>,
"Philippe Mathieu-Daudé" <philmd@oss.qualcomm.com>
Subject: [PATCH v2 13/17] tests/qtest/ide-test: cover a rejected CHS translation in the stream
Date: Thu, 20 Aug 2026 12:08:40 +0200 [thread overview]
Message-ID: <20260820100844.411717-14-den@openvz.org> (raw)
In-Reply-To: <20260820100844.411717-1-den@openvz.org>
From: Denis V. Lunev <den@openvz.org>
ide_drive_post_load() refuses a logical CHS translation that no command
could have selected, as the fields are a divisor in ide_set_sector() and a
factor in ide_get_sector(). Nothing exercised that, a fixed QEMU having no
way to produce such a stream.
Migrate a guest that selected a translation to a file, replace the number
of sectors per logical track in the subsection with a zero, and let a
destination read the result back. The load has to fail rather than take
the value, so the destination is asked not to exit on a failed incoming
migration and its migration status is what the test looks at.
Cc: John Snow <jsnow@redhat.com>
Cc: Peter Maydell <peter.maydell@linaro.org>
Cc: Philippe Mathieu-Daudé <philmd@oss.qualcomm.com>
Signed-off-by: Denis V. Lunev <den@openvz.org>
---
tests/qtest/ide-test.c | 81 ++++++++++++++++++++++++++++++++++++++++++
1 file changed, 81 insertions(+)
diff --git a/tests/qtest/ide-test.c b/tests/qtest/ide-test.c
index 19e9734d3c..4fa58ac525 100644
--- a/tests/qtest/ide-test.c
+++ b/tests/qtest/ide-test.c
@@ -1483,6 +1483,86 @@ static void test_migrate_chs_snapshot(void)
unlink(img);
}
+/* A migration stream holds NUL bytes, so this cannot be a string search */
+static char *ide_stream_find(char *stream, gsize len, const char *name)
+{
+ gsize name_len = strlen(name);
+ gsize i;
+
+ if (len < name_len) {
+ return NULL;
+ }
+ for (i = 0; i <= len - name_len; i++) {
+ if (memcmp(stream + i, name, name_len) == 0) {
+ return stream + i;
+ }
+ }
+
+ return NULL;
+}
+
+/* A translation no command could have selected has to be refused on load */
+static void test_migrate_chs_rejected(void)
+{
+ const char *name = "ide_drive/chs_translation";
+ QTestState *src, *dst;
+ QPCIDevice *dev;
+ QPCIBar bmdma_bar, ide_bar;
+ g_autofree char *path = NULL;
+ g_autofree char *uri = NULL;
+ g_autofree char *dst_args = NULL;
+ g_autofree char *stream = NULL;
+ char *subsection;
+ gsize len;
+ int fd;
+
+ fd = g_file_open_tmp("qtest-ide-stream.XXXXXX", &path, NULL);
+ g_assert(fd >= 0);
+ close(fd);
+ uri = g_strdup_printf("file:%s", path);
+
+ src = ide_test_start(
+ "-blockdev driver=file,node-name=hda,filename=%s "
+ "-device ide-hd,drive=hda,bus=ide.0,unit=0 ",
+ tmp_path[0]);
+ dev = get_pci_device(src, &bmdma_bar, &ide_bar);
+
+ ide_set_translation(dev, ide_bar, 8, 32);
+ qtest_qmp_assert_success(src, "{ 'execute': 'migrate',"
+ " 'arguments': { 'uri': %s } }", uri);
+ qtest_qmp_eventwait(src, "STOP");
+ ide_migration_wait(src, "completed");
+ free_pci_device(dev);
+ ide_test_quit(src);
+
+ /*
+ * Behind the name come version, heads and sectors, each big endian 32 bit.
+ * The name recurs in the description at the end of the stream, so the
+ * first match is the one carrying data.
+ */
+ g_assert(g_file_get_contents(path, &stream, &len, NULL));
+ subsection = ide_stream_find(stream, len, name);
+ g_assert(subsection);
+ g_assert_cmpint(subsection - stream + strlen(name) + 12, <=, len);
+ memset(subsection + strlen(name) + 8, 0, 4);
+ g_assert(g_file_set_contents(path, stream, len, NULL));
+
+ dst_args = g_strdup_printf(
+ "-machine pc "
+ "-blockdev driver=file,node-name=hda,filename=%s "
+ "-device ide-hd,drive=hda,bus=ide.0,unit=0 -incoming defer",
+ tmp_path[0]);
+ dst = qtest_init(dst_args);
+
+ qtest_qmp_assert_success(dst, "{ 'execute': 'migrate-incoming',"
+ " 'arguments': { 'uri': %s,"
+ " 'exit-on-error': false } }", uri);
+ ide_migration_wait(dst, "failed");
+
+ qtest_quit(dst);
+ unlink(path);
+}
+
static void test_cdrom_pio(void)
{
cdrom_read_impl(1, CDROM_PIO);
@@ -1558,6 +1638,7 @@ int main(int argc, char **argv)
qtest_add_func("/ide/migration/chs_translation",
test_migrate_chs_translation);
qtest_add_func("/ide/migration/chs_snapshot", test_migrate_chs_snapshot);
+ qtest_add_func("/ide/migration/chs_rejected", test_migrate_chs_rejected);
qtest_add_func("/ide/identify", test_identify);
--
2.53.0
next prev parent reply other threads:[~2026-08-20 10:10 UTC|newest]
Thread overview: 21+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-08-20 10:08 [PATCH v2 00/17] hw/ide: fix the logical CHS translation a guest selects Denis V. Lunev
2026-08-20 10:08 ` [PATCH v2 01/17] hw/ide: reject an unsupported CHS translation Denis V. Lunev
2026-08-20 10:08 ` [PATCH v2 02/17] tests/qtest/ide-test: cover a CHS translation with zero sectors Denis V. Lunev
2026-08-20 10:08 ` [PATCH v2 03/17] tests/qtest/libqos/ahci: allow a count and an expected error Denis V. Lunev
2026-08-20 10:08 ` [PATCH v2 04/17] tests/qtest/ahci: cover the sector count of INITIALIZE DEVICE PARAMETERS Denis V. Lunev
2026-08-20 10:08 ` [PATCH v2 05/17] hw/ide: report the default CHS translation in IDENTIFY DEVICE Denis V. Lunev
2026-08-20 10:08 ` [PATCH v2 06/17] hw/ide: name the retired IDENTIFY DEVICE words the device fills in Denis V. Lunev
2026-08-20 10:08 ` [PATCH v2 07/17] hw/ide: factor out the IDENTIFY DEVICE current geometry words Denis V. Lunev
2026-08-20 11:07 ` Philippe Mathieu-Daudé
2026-08-20 10:08 ` [PATCH v2 08/17] hw/ide: keep the IDENTIFY DEVICE current geometry in sync Denis V. Lunev
2026-08-20 10:08 ` [PATCH v2 09/17] hw/ide: restore the power-on device state before loading Denis V. Lunev
2026-08-20 10:08 ` [PATCH v2 10/17] hw/ide: migrate the logical CHS translation Denis V. Lunev
2026-08-20 10:08 ` [PATCH v2 11/17] hw/ide: migrate the power-on defaults revert flag Denis V. Lunev
2026-08-20 10:08 ` [PATCH v2 12/17] tests/qtest/ide-test: cover the CHS translation across migration Denis V. Lunev
2026-08-20 10:08 ` Denis V. Lunev [this message]
2026-08-20 10:08 ` [PATCH v2 14/17] tests/qtest/ide-test: cover the IDENTIFY DEVICE geometry words Denis V. Lunev
2026-08-20 10:08 ` [PATCH v2 15/17] hw/ide: revert the CHS translation on a hardware reset Denis V. Lunev
2026-08-20 10:08 ` [PATCH v2 16/17] tests/qtest/ide-test: cover the CHS translation across resets Denis V. Lunev
2026-08-20 10:08 ` [PATCH v2 17/17] hw/ide: drop a redundant interrupt from INITIALIZE DEVICE PARAMETERS Denis V. Lunev
2026-08-20 11:08 ` Philippe Mathieu-Daudé
2026-08-20 13:09 ` [PATCH v2 00/17] hw/ide: fix the logical CHS translation a guest selects Denis V. Lunev
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20260820100844.411717-14-den@openvz.org \
--to=den@openvz.org \
--cc=jsnow@redhat.com \
--cc=peter.maydell@linaro.org \
--cc=philmd@oss.qualcomm.com \
--cc=qemu-block@nongnu.org \
--cc=qemu-devel@nongnu.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.