From: Paolo Bonzini <pbonzini@redhat.com>
To: Peter Xu <peterx@redhat.com>, kvm@vger.kernel.org
Cc: "Radim Krčmář" <rkrcmar@redhat.com>,
"Alex Williamson" <alex.williamson@redhat.com>,
"Eduardo Habkost" <ehabkost@redhat.com>
Subject: Re: [PATCH] kvm: Check irqchip mode before assign irqfd
Date: Mon, 20 May 2019 14:54:53 +0200 [thread overview]
Message-ID: <94af836c-762b-5986-2b94-bb979398a3df@redhat.com> (raw)
In-Reply-To: <20190505085642.6773-1-peterx@redhat.com>
On 05/05/19 10:56, Peter Xu wrote:
> When assigning kvm irqfd we didn't check the irqchip mode but we allow
> KVM_IRQFD to succeed with all the irqchip modes. However it does not
> make much sense to create irqfd even without the kernel chips. Let's
> provide a arch-dependent helper to check whether a specific irqfd is
> allowed by the arch. At least for x86, it should make sense to check:
>
> - when irqchip mode is NONE, all irqfds should be disallowed, and,
>
> - when irqchip mode is SPLIT, irqfds that are with resamplefd should
> be disallowed.
>
> For either of the case, previously we'll silently ignore the irq or
> the irq ack event if the irqchip mode is incorrect. However that can
> cause misterious guest behaviors and it can be hard to triage. Let's
> fail KVM_IRQFD even earlier to detect these incorrect configurations.
>
> CC: Paolo Bonzini <pbonzini@redhat.com>
> CC: Radim Krčmář <rkrcmar@redhat.com>
> CC: Alex Williamson <alex.williamson@redhat.com>
> CC: Eduardo Habkost <ehabkost@redhat.com>
> Signed-off-by: Peter Xu <peterx@redhat.com>
> ---
> arch/x86/kvm/irq.c | 7 +++++++
> arch/x86/kvm/irq.h | 1 +
> virt/kvm/eventfd.c | 9 +++++++++
> 3 files changed, 17 insertions(+)
>
> diff --git a/arch/x86/kvm/irq.c b/arch/x86/kvm/irq.c
> index faa264822cee..007bc654f928 100644
> --- a/arch/x86/kvm/irq.c
> +++ b/arch/x86/kvm/irq.c
> @@ -172,3 +172,10 @@ void __kvm_migrate_timers(struct kvm_vcpu *vcpu)
> __kvm_migrate_apic_timer(vcpu);
> __kvm_migrate_pit_timer(vcpu);
> }
> +
> +bool kvm_arch_irqfd_allowed(struct kvm *kvm, struct kvm_irqfd *args)
> +{
> + bool resample = args->flags & KVM_IRQFD_FLAG_RESAMPLE;
> +
> + return resample ? irqchip_kernel(kvm) : irqchip_in_kernel(kvm);
> +}
> diff --git a/arch/x86/kvm/irq.h b/arch/x86/kvm/irq.h
> index d5005cc26521..fd210cdd4983 100644
> --- a/arch/x86/kvm/irq.h
> +++ b/arch/x86/kvm/irq.h
> @@ -114,6 +114,7 @@ static inline int irqchip_in_kernel(struct kvm *kvm)
> return mode != KVM_IRQCHIP_NONE;
> }
>
> +bool kvm_arch_irqfd_allowed(struct kvm *kvm, struct kvm_irqfd *args);
> void kvm_inject_pending_timer_irqs(struct kvm_vcpu *vcpu);
> void kvm_inject_apic_timer_irqs(struct kvm_vcpu *vcpu);
> void kvm_apic_nmi_wd_deliver(struct kvm_vcpu *vcpu);
> diff --git a/virt/kvm/eventfd.c b/virt/kvm/eventfd.c
> index 001aeda4c154..3972a9564c76 100644
> --- a/virt/kvm/eventfd.c
> +++ b/virt/kvm/eventfd.c
> @@ -44,6 +44,12 @@
>
> static struct workqueue_struct *irqfd_cleanup_wq;
>
> +bool __attribute__((weak))
> +kvm_arch_irqfd_allowed(struct kvm *kvm, struct kvm_irqfd *args)
> +{
> + return true;
> +}
> +
> static void
> irqfd_inject(struct work_struct *work)
> {
> @@ -297,6 +303,9 @@ kvm_irqfd_assign(struct kvm *kvm, struct kvm_irqfd *args)
> if (!kvm_arch_intc_initialized(kvm))
> return -EAGAIN;
>
> + if (!kvm_arch_irqfd_allowed(kvm, args))
> + return -EINVAL;
> +
> irqfd = kzalloc(sizeof(*irqfd), GFP_KERNEL_ACCOUNT);
> if (!irqfd)
> return -ENOMEM;
>
Queued, thanks.
Paolo
prev parent reply other threads:[~2019-05-20 12:54 UTC|newest]
Thread overview: 4+ messages / expand[flat|nested] mbox.gz Atom feed top
2019-05-05 8:56 [PATCH] kvm: Check irqchip mode before assign irqfd Peter Xu
2019-05-05 9:20 ` Peter Xu
2019-05-17 2:23 ` Peter Xu
2019-05-20 12:54 ` Paolo Bonzini [this message]
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=94af836c-762b-5986-2b94-bb979398a3df@redhat.com \
--to=pbonzini@redhat.com \
--cc=alex.williamson@redhat.com \
--cc=ehabkost@redhat.com \
--cc=kvm@vger.kernel.org \
--cc=peterx@redhat.com \
--cc=rkrcmar@redhat.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox