From: Marc Zyngier <maz@kernel.org>
To: Oliver Upton <oliver.upton@linux.dev>
Cc: kvmarm@lists.linux.dev, kvm@vger.kernel.org,
James Morse <james.morse@arm.com>,
Suzuki K Poulose <suzuki.poulose@arm.com>,
Zenghui Yu <yuzenghui@huawei.com>,
Jing Zhang <jingzhangos@google.com>,
Cornelia Huck <cohuck@redhat.com>
Subject: Re: [PATCH v11 10/12] KVM: arm64: Document vCPU feature selection UAPIs
Date: Wed, 04 Oct 2023 10:36:50 +0100 [thread overview]
Message-ID: <86o7heohjh.wl-maz@kernel.org> (raw)
In-Reply-To: <20231003230408.3405722-11-oliver.upton@linux.dev>
On Wed, 04 Oct 2023 00:04:06 +0100,
Oliver Upton <oliver.upton@linux.dev> wrote:
>
> KVM/arm64 has a couple schemes for handling vCPU feature selection now,
> which is a lot to put on userspace. Add some documentation about how
> these interact and provide some recommendations for how to use the
> writable ID register scheme.
>
> Signed-off-by: Oliver Upton <oliver.upton@linux.dev>
> ---
> Documentation/virt/kvm/api.rst | 4 ++
> Documentation/virt/kvm/arm/index.rst | 1 +
> Documentation/virt/kvm/arm/vcpu-features.rst | 48 ++++++++++++++++++++
> 3 files changed, 53 insertions(+)
> create mode 100644 Documentation/virt/kvm/arm/vcpu-features.rst
>
> diff --git a/Documentation/virt/kvm/api.rst b/Documentation/virt/kvm/api.rst
> index d55c2b68c0a9..8d4050eedb26 100644
> --- a/Documentation/virt/kvm/api.rst
> +++ b/Documentation/virt/kvm/api.rst
> @@ -3370,6 +3370,8 @@ return indicates the attribute is implemented. It does not necessarily
> indicate that the attribute can be read or written in the device's
> current state. "addr" is ignored.
>
> +.. _KVM_ARM_VCPU_INIT:
> +
> 4.82 KVM_ARM_VCPU_INIT
> ----------------------
>
> @@ -6070,6 +6072,8 @@ writes to the CNTVCT_EL0 and CNTPCT_EL0 registers using the SET_ONE_REG
> interface. No error will be returned, but the resulting offset will not be
> applied.
>
> +.. _KVM_ARM_GET_REG_WRITABLE_MASKS:
> +
> 4.139 KVM_ARM_GET_REG_WRITABLE_MASKS
> -------------------------------------------
>
> diff --git a/Documentation/virt/kvm/arm/index.rst b/Documentation/virt/kvm/arm/index.rst
> index e84848432158..7f231c724e16 100644
> --- a/Documentation/virt/kvm/arm/index.rst
> +++ b/Documentation/virt/kvm/arm/index.rst
> @@ -11,3 +11,4 @@ ARM
> hypercalls
> pvtime
> ptp_kvm
> + vcpu-features
> diff --git a/Documentation/virt/kvm/arm/vcpu-features.rst b/Documentation/virt/kvm/arm/vcpu-features.rst
> new file mode 100644
> index 000000000000..2d2f89c5781f
> --- /dev/null
> +++ b/Documentation/virt/kvm/arm/vcpu-features.rst
> @@ -0,0 +1,48 @@
> +.. SPDX-License-Identifier: GPL-2.0
> +
> +===============================
> +vCPU feature selection on arm64
> +===============================
> +
> +KVM/arm64 provides two mechanisms that allow userspace to configure
> +the CPU features presented to the guest.
> +
> +KVM_ARM_VCPU_INIT
> +=================
> +
> +The ``KVM_ARM_VCPU_INIT`` ioctl accepts a bitmap of feature flags
> +(``struct kvm_vcpu_init::features``). Features enabled by this interface are
> +*opt-in* and may change/extend UAPI. See :ref:`KVM_ARM_VCPU_INIT` for complete
> +documentation of the features controlled by the ioctl.
> +
> +Otherwise, all CPU features supported by KVM are described by the architected
> +ID registers.
> +
> +The ID Registers
> +================
> +
> +The Arm architecture specifies a range of *ID Registers* that describe the set
> +of architectural features supported by the CPU implementation. KVM initializes
> +the guest's ID registers to the maximum set of CPU features supported by the
> +system. The ID register values are VM-scoped in KVM, meaning that the values
> +are identical for all vCPUs in a VM.
I'm a bit reluctant to give this guarantee. Case in point: MPIDR_EL1
is part of the Feature ID space, and is definitely *not* a register
that we can make global, even on a fully homogeneous system.
I'd also like to give us more flexibility to change the implementation
in the future without having to change the API again. IMO, the fact
that we make our life simpler by only tracking a single copy is an
implementation detail, not something that userspace should rely on.
I would simply turn the "The ID register values are VM-scoped" into
"The ID register values may be VM-scoped", which gives us that
flexibility.
> +
> +KVM allows userspace to *opt-out* of certain CPU features described by the ID
> +registers by writing values to them via the ``KVM_SET_ONE_REG`` ioctl. The ID
> +registers are mutable until the VM has started, i.e. userspace has called
> +``KVM_RUN`` on at least one vCPU in the VM. Userspace can discover what fields
> +are mutable in the ID registers using the ``KVM_ARM_GET_REG_WRITABLE_MASKS``.
> +See the :ref:`ioctl documentation <KVM_ARM_GET_REG_WRITABLE_MASKS>` for more
> +details.
> +
> +Userspace is allowed to *limit* or *mask* CPU features according to the rules
> +outlined by the architecture in DDI0487J 'D19.1.3 Principles of the ID scheme
nit: consider spelling out the *full* version of the ARM ARM (DDI
0487J.a), just in case we get a J.b this side of Xmas and that this
reference is renumbered...
> +for fields in ID register'. KVM does not allow ID register values that exceed
> +the capabilities of the system.
> +
> +.. warning::
> + It is **strongly recommended** that userspace modify the ID register values
> + before accessing the rest of the vCPU's CPU register state. KVM may use the
> + ID register values to control feature emulation. Interleaving ID register
> + modification with other system register accesses may lead to unpredictable
> + behavior.
Thanks,
M.
--
Without deviation from the norm, progress is not possible.
next prev parent reply other threads:[~2023-10-04 9:36 UTC|newest]
Thread overview: 22+ messages / expand[flat|nested] mbox.gz Atom feed top
2023-10-03 23:03 [PATCH v11 00/12] KVM: arm64: Enable 'writable' ID registers Oliver Upton
2023-10-03 23:03 ` [PATCH v11 01/12] KVM: arm64: Allow userspace to get the writable masks for feature " Oliver Upton
2023-10-03 23:03 ` [PATCH v11 02/12] KVM: arm64: Document KVM_ARM_GET_REG_WRITABLE_MASKS Oliver Upton
2023-10-03 23:03 ` [PATCH v11 03/12] KVM: arm64: Use guest ID register values for the sake of emulation Oliver Upton
2023-10-03 23:04 ` [PATCH v11 04/12] KVM: arm64: Reject attempts to set invalid debug arch version Oliver Upton
2023-10-03 23:04 ` [PATCH v11 05/12] KVM: arm64: Bump up the default KVM sanitised debug version to v8p8 Oliver Upton
2023-10-04 8:57 ` Marc Zyngier
2023-10-04 17:08 ` Oliver Upton
2023-10-04 17:46 ` Marc Zyngier
2023-10-03 23:04 ` [PATCH v11 06/12] KVM: arm64: Allow userspace to change ID_AA64ISAR{0-2}_EL1 Oliver Upton
2023-10-03 23:04 ` [PATCH v11 07/12] KVM: arm64: Allow userspace to change ID_AA64MMFR{0-2}_EL1 Oliver Upton
2023-10-03 23:04 ` [PATCH v11 08/12] KVM: arm64: Allow userspace to change ID_AA64PFR0_EL1 Oliver Upton
2023-10-03 23:04 ` [PATCH v11 09/12] KVM: arm64: Allow userspace to change ID_AA64ZFR0_EL1 Oliver Upton
2023-10-03 23:04 ` [PATCH v11 10/12] KVM: arm64: Document vCPU feature selection UAPIs Oliver Upton
2023-10-04 9:36 ` Marc Zyngier [this message]
2023-10-04 16:52 ` Oliver Upton
2023-10-04 17:48 ` Marc Zyngier
2023-10-03 23:04 ` [PATCH v11 11/12] KVM: arm64: selftests: Import automatic generation of sysreg defs Oliver Upton
2023-10-03 23:04 ` [PATCH v11 12/12] KVM: arm64: selftests: Test for setting ID register from usersapce Oliver Upton
2023-10-04 9:40 ` [PATCH v11 00/12] KVM: arm64: Enable 'writable' ID registers Marc Zyngier
2023-10-04 16:53 ` Oliver Upton
2023-10-04 17:46 ` Oliver Upton
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=86o7heohjh.wl-maz@kernel.org \
--to=maz@kernel.org \
--cc=cohuck@redhat.com \
--cc=james.morse@arm.com \
--cc=jingzhangos@google.com \
--cc=kvm@vger.kernel.org \
--cc=kvmarm@lists.linux.dev \
--cc=oliver.upton@linux.dev \
--cc=suzuki.poulose@arm.com \
--cc=yuzenghui@huawei.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox