From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from bombadil.infradead.org (bombadil.infradead.org [198.137.202.133]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.lore.kernel.org (Postfix) with ESMTPS id BB492C54F4D for ; Mon, 27 Jul 2026 16:36:13 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=lists.infradead.org; s=bombadil.20210309; h=Sender:List-Subscribe:List-Help :List-Post:List-Archive:List-Unsubscribe:List-Id:Content-Transfer-Encoding: MIME-Version:References:In-Reply-To:Message-Id:Date:Subject:Cc:To:From: Reply-To:Content-Type:Content-ID:Content-Description:Resent-Date:Resent-From: Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:List-Owner; bh=9oMbvUI7C1siUwXvUcaud+TZMyswTmjE42kCumzJgSU=; b=4yaq866T7k78uGO0tTmxlTWd9V fqSFsW0UFEo3DueSLq6HDWK6ltrFKbC1MkrnUksR2Exhlui0W0vbs+VhdeiiBQPwdUu00xEsxKT0K cWfbK4yDYxHjGdrvClxZEAVewGBzHajSe6HKPeZGn0hDUGQqFtuToP0RNboC/wrzoQy1SxwPHTnVa f7+igWHhvfHMzWTf+E/6y0PJEdkAJhRiG15WCmR4KKHfrLuGbDWNBouVrZicKewZFUhrs8jXJVD+U 9FHu3k5EnxMvIu9WeYFw4CCevCsDDnKLOmi9NrDG8DL6IMNfpkC6xpm1YXipT4AyvKN8Gjc0BmrVO L5uE6FGA==; Received: from localhost ([::1] helo=bombadil.infradead.org) by bombadil.infradead.org with esmtp (Exim 4.99.1 #2 (Red Hat Linux)) id 1woOJ1-00000003Mwx-2aSU; Mon, 27 Jul 2026 16:35:55 +0000 Received: from foss.arm.com ([217.140.110.172]) by bombadil.infradead.org with esmtp (Exim 4.99.1 #2 (Red Hat Linux)) id 1woOIp-00000003MSR-2BgO for linux-arm-kernel@lists.infradead.org; Mon, 27 Jul 2026 16:35:45 +0000 Received: from usa-sjc-imap-foss1.foss.arm.com (unknown [10.121.207.14]) by usa-sjc-mx-foss1.foss.arm.com (Postfix) with ESMTP id CE8901756; Mon, 27 Jul 2026 09:35:38 -0700 (PDT) Received: from login2.euhpc2.arm.com (login2.euhpc2.arm.com [10.58.100.22]) by usa-sjc-imap-foss1.foss.arm.com (Postfix) with ESMTPA id 055553F86F; Mon, 27 Jul 2026 09:35:41 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=arm.com; s=foss; t=1785170142; bh=TkZASnohoqIW928NQ74/vHgVP5UjHKfdICXG6TmOe58=; h=From:To:Cc:Subject:Date:In-Reply-To:References:From; b=NM/EepuJrEjTBGHIX2NaJ2Dzw91LgivDmSw12Hegnk/C9qfj7hg6OCeo1moLX0kc/ 1wSeBk9Y4+RCowcMEJ0WRGOjQ6k5cmOE8JOg8yJkR5I1YA0lGseR2TiQGWO+AxIcVp uPC2VBDGlFcwsfa61E2LAIz6T8PN8onEHgolgfwg= From: Vladimir Murzin To: linux-arm-kernel@lists.infradead.org Cc: mark.rutland@arm.com, maz@kernel.org, will@kernel.org, catalin.marinas@arm.com, ruanjinjie@huawei.com, liaochang1@huawei.com Subject: [RFC PATCH v2 18/45] arm64: replace local_daif helpers Date: Mon, 27 Jul 2026 17:34:26 +0100 Message-Id: <20260727163453.7969-19-vladimir.murzin@arm.com> X-Mailer: git-send-email 2.24.0 In-Reply-To: <20260727163453.7969-1-vladimir.murzin@arm.com> References: <20260727163453.7969-1-vladimir.murzin@arm.com> MIME-Version: 1.0 Content-Transfer-Encoding: 8bit X-CRM114-Version: 20100106-BlameMichelson ( TRE 0.9.0 (BSD) ) MR-646709E3 X-CRM114-CacheID: sfid-20260727_093543_649233_FC746928 X-CRM114-Status: GOOD ( 26.36 ) X-BeenThere: linux-arm-kernel@lists.infradead.org X-Mailman-Version: 2.1.34 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Sender: "linux-arm-kernel" Errors-To: linux-arm-kernel-bounces+linux-arm-kernel=archiver.kernel.org@lists.infradead.org From: Ada Couprie Diaz Replace existing `local_daif_...` usage with the new `local_all_irqs...` helpers, adding the necessary save-state struct where required. Slightly rework `apei_claim_sea()`'s handling of interrupt masking to fit with the new APIs. Currently, it saves the DAIF flags to restore later and the `local_irq` ones to check if interrupts are disabled. It then masks AIF to signal the SEA (forcing DAIF masking), and will unmask to IF (re-enabling PMR masking if pseudo-NMIs are in use) if it interrupted a task with interrupts unmaksed, restoring with the DAIF flags from the beginning afterwards. As we want to preserve a "mask/unmask" process, change the logic from "mask AIF/unmask A/unmask IF" to "mask IF/mask A/unmask A/unmask IF" : first mask with `local_irq_save()`, mask/unmask further around the SEA signaling, and restore at the end with `local_irq_restore()`. Now that both APIs properly work with DAIF and PMR, this works as expected and also removes the need for a "save flags without masking" function for the new helpers, as this was the only user. Remove the use of GIC_PRIO_PSR_I_SET in `kvm/hyp/nvhe/switch.c`, as we now check both PMR and DAIF everywhere and we don't need to signal interrupts being masked in DAIF in the PMR anymore. Signed-off-by: Ada Couprie Diaz Signed-off-by: Vladimir Murzin --- arch/arm64/kernel/acpi.c | 15 +++++++-------- arch/arm64/kernel/hibernate.c | 14 +++++++------- arch/arm64/kernel/machine_kexec.c | 4 ++-- arch/arm64/kernel/setup.c | 4 ++-- arch/arm64/kernel/smp.c | 14 +++++++------- arch/arm64/kernel/suspend.c | 14 +++++++------- arch/arm64/kvm/hyp/nvhe/switch.c | 2 +- arch/arm64/kvm/hyp/vgic-v3-sr.c | 7 ++++--- arch/arm64/kvm/hyp/vhe/switch.c | 14 ++++++++------ arch/arm64/mm/mmu.c | 7 ++++--- 10 files changed, 49 insertions(+), 46 deletions(-) diff --git a/arch/arm64/kernel/acpi.c b/arch/arm64/kernel/acpi.c index 681aa2bbc399..ea9a9da7e412 100644 --- a/arch/arm64/kernel/acpi.c +++ b/arch/arm64/kernel/acpi.c @@ -33,7 +33,7 @@ #include #include #include -#include +#include #include int acpi_noirq = 1; /* skip ACPI IRQ initialization */ @@ -391,15 +391,14 @@ int apei_claim_sea(struct pt_regs *regs) int err = -ENOENT; bool return_to_irqs_enabled; unsigned long current_flags; + arm64_exc_hwstates_t hwstate; if (!IS_ENABLED(CONFIG_ACPI_APEI_GHES)) return err; - current_flags = local_daif_save_flags(); - - /* current_flags isn't useful here as daif doesn't tell us about pNMI */ - return_to_irqs_enabled = !irqs_disabled_flags(arch_local_save_flags()); + local_irq_save(current_flags); + return_to_irqs_enabled = !irqs_disabled_flags(current_flags); if (regs) return_to_irqs_enabled = !regs_irqs_disabled(regs); @@ -407,10 +406,11 @@ int apei_claim_sea(struct pt_regs *regs) * SEA can interrupt SError, mask it and describe this as an NMI so * that APEI defers the handling. */ - local_daif_restore(DAIF_ERRCTX); + hwstate = local_exceptions_save_mask(ERROR_CONTEXT); nmi_enter(); err = ghes_notify_sea(); nmi_exit(); + local_exceptions_restore(hwstate); /* * APEI NMI-like notifications are deferred to irq_work. Unless @@ -418,7 +418,6 @@ int apei_claim_sea(struct pt_regs *regs) */ if (!err) { if (return_to_irqs_enabled) { - local_daif_restore(DAIF_PROCCTX_NOIRQ); __irq_enter(); irq_work_run(); __irq_exit(); @@ -428,7 +427,7 @@ int apei_claim_sea(struct pt_regs *regs) } } - local_daif_restore(current_flags); + local_irq_restore(current_flags); return err; } diff --git a/arch/arm64/kernel/hibernate.c b/arch/arm64/kernel/hibernate.c index 7bf117427777..74848a89ba37 100644 --- a/arch/arm64/kernel/hibernate.c +++ b/arch/arm64/kernel/hibernate.c @@ -20,7 +20,7 @@ #include #include #include -#include +#include #include #include #include @@ -332,16 +332,16 @@ static void swsusp_mte_restore_tags(void) int swsusp_arch_suspend(void) { - int ret = 0; - unsigned long flags; struct sleep_stack_data state; + arm64_exc_hwstates_t hwstate; + int ret = 0; if (cpus_are_stuck_in_kernel()) { pr_err("Can't hibernate: no mechanism to offline secondary CPUs.\n"); return -EBUSY; } - flags = local_daif_save(); + hwstate = local_exceptions_save_mask(CRITICAL_CONTEXT); if (__cpu_suspend_enter(&state)) { /* make the crash dump kernel image visible/saveable */ @@ -349,7 +349,7 @@ int swsusp_arch_suspend(void) ret = swsusp_mte_save_tags(); if (ret) { - local_daif_restore(flags); + local_exceptions_restore(hwstate); return ret; } @@ -393,7 +393,7 @@ int swsusp_arch_suspend(void) spectre_v4_enable_mitigation(NULL); } - local_daif_restore(flags); + local_exceptions_restore(hwstate); return ret; } @@ -477,7 +477,7 @@ int __nocfi swsusp_arch_resume(void) * swsusp_arch_resume(), and expects to be re-entered in the * same state : with all DAIF exceptions masked. */ - local_daif_save(); + local_exceptions_save_mask(CRITICAL_CONTEXT); hibernate_exit(virt_to_phys(tmp_pg_dir), resume_hdr.ttbr1_el1, resume_hdr.reenter_kernel, restore_pblist, resume_hdr.__hyp_stub_vectors, virt_to_phys(zero_page)); diff --git a/arch/arm64/kernel/machine_kexec.c b/arch/arm64/kernel/machine_kexec.c index c5693a32e49b..550221255325 100644 --- a/arch/arm64/kernel/machine_kexec.c +++ b/arch/arm64/kernel/machine_kexec.c @@ -17,7 +17,7 @@ #include #include -#include +#include #include #include #include @@ -173,7 +173,7 @@ void machine_kexec(struct kimage *kimage) pr_info("Bye!\n"); - local_daif_mask(); + local_exceptions_final_mask(); /* * Both restart and kernel_reloc will shutdown the MMU, disable data diff --git a/arch/arm64/kernel/setup.c b/arch/arm64/kernel/setup.c index 23c05dc7a8f2..4d825e72ae66 100644 --- a/arch/arm64/kernel/setup.c +++ b/arch/arm64/kernel/setup.c @@ -37,7 +37,7 @@ #include #include #include -#include +#include #include #include #include @@ -311,7 +311,7 @@ void __init __no_sanitize_address setup_arch(char **cmdline_p) * IRQ and FIQ will be unmasked after the root irqchip has been * detected and initialized. */ - local_daif_restore(DAIF_PROCCTX_NOIRQ); + local_exceptions_cpu_init_mask(NOIRQ_CONTEXT); /* * TTBR0 is only used for the identity mapping at this stage. Make it diff --git a/arch/arm64/kernel/smp.c b/arch/arm64/kernel/smp.c index 1e08537df67b..a3ca6afbf5a2 100644 --- a/arch/arm64/kernel/smp.c +++ b/arch/arm64/kernel/smp.c @@ -42,7 +42,7 @@ #include #include #include -#include +#include #include #include #include @@ -263,7 +263,7 @@ asmlinkage notrace void secondary_start_kernel(void) * as the root irqchip has already been detected and initialized we can * unmask IRQ and FIQ at the same time. */ - local_daif_restore(DAIF_PROCCTX); + local_exceptions_cpu_init_mask(PROCESS_CONTEXT); /* * OK, it's off to the idle thread for us @@ -370,7 +370,7 @@ void __noreturn cpu_die(void) idle_task_exit(); - local_daif_mask(); + local_exceptions_final_mask(); /* Tell cpuhp_bp_sync_dead() that this CPU is now safe to dispose of */ cpuhp_ap_report_dead(); @@ -870,7 +870,7 @@ static void __noreturn local_cpu_stop(unsigned int cpu) { set_cpu_online(cpu, false); - local_daif_mask(); + local_exceptions_final_mask(); sdei_mask_local_cpu(); cpu_park_loop(); } @@ -889,14 +889,14 @@ static void __noreturn ipi_cpu_crash_stop(unsigned int cpu, struct pt_regs *regs { #ifdef CONFIG_KEXEC_CORE /* - * Use local_daif_mask() instead of local_irq_disable() to make sure - * that pseudo-NMIs are disabled. The "crash stop" code starts with + * Use local_exceptions_final_mask() instead of local_irq_disable() to make + * sure that pseudo-NMIs are disabled. The "crash stop" code starts with * an IRQ and falls back to NMI (which might be pseudo). If the IRQ * finally goes through right as we're timing out then the NMI could * interrupt us. It's better to prevent the NMI and let the IRQ * finish since the pt_regs will be better. */ - local_daif_mask(); + local_exceptions_final_mask(); crash_save_cpu(regs, cpu); diff --git a/arch/arm64/kernel/suspend.c b/arch/arm64/kernel/suspend.c index c41724a40b75..61012b783279 100644 --- a/arch/arm64/kernel/suspend.c +++ b/arch/arm64/kernel/suspend.c @@ -9,7 +9,7 @@ #include #include #include -#include +#include #include #include #include @@ -69,7 +69,7 @@ void notrace __cpu_suspend_exit(void) /* * Restore HW breakpoint registers to sane values * before debug exceptions are possibly reenabled - * by cpu_suspend()s local_daif_restore() call. + * by cpu_suspend()s local_exceptions_restore() call. */ if (hw_breakpoint_restore) hw_breakpoint_restore(cpu); @@ -97,7 +97,7 @@ void notrace __cpu_suspend_exit(void) int cpu_suspend(unsigned long arg, int (*fn)(unsigned long)) { int ret = 0; - unsigned long flags; + arm64_exc_hwstates_t hwstate; struct sleep_stack_data state; /* @@ -119,12 +119,12 @@ int cpu_suspend(unsigned long arg, int (*fn)(unsigned long)) * * Strictly speaking the trace_hardirqs_off() here is superfluous, * hardirqs should be firmly off by now. This really ought to use - * something like raw_local_daif_save(). + * something like raw_local_exceptions_save_mask(). * * This also unmasks interrupts in PMR in order to reliably * resume if we're using pseudo-NMIs. */ - flags = local_daif_save(); + hwstate = local_exceptions_save_mask(CRITICAL_CONTEXT); /* * Function graph tracer state gets inconsistent when the kernel @@ -158,11 +158,11 @@ int cpu_suspend(unsigned long arg, int (*fn)(unsigned long)) unpause_graph_tracing(); /* - * Restore pstate flags. OS lock and mdscr have been already + * Restore interrupt masks. OS lock and mdscr have been already * restored, so from this point onwards, debugging is fully * reenabled if it was enabled when core started shutdown. */ - local_daif_restore(flags); + local_exceptions_restore(hwstate); return ret; } diff --git a/arch/arm64/kvm/hyp/nvhe/switch.c b/arch/arm64/kvm/hyp/nvhe/switch.c index 7318e3e6a5f3..50566b455c80 100644 --- a/arch/arm64/kvm/hyp/nvhe/switch.c +++ b/arch/arm64/kvm/hyp/nvhe/switch.c @@ -270,7 +270,7 @@ int __kvm_vcpu_run(struct kvm_vcpu *vcpu) * Naturally, we want to avoid this. */ if (system_uses_irq_prio_masking()) { - gic_write_pmr(GIC_PRIO_IRQON | GIC_PRIO_PSR_I_SET); + gic_write_pmr(GIC_PRIO_IRQON); pmr_sync(); } diff --git a/arch/arm64/kvm/hyp/vgic-v3-sr.c b/arch/arm64/kvm/hyp/vgic-v3-sr.c index c4d2f1feea8b..c2145ebc37e6 100644 --- a/arch/arm64/kvm/hyp/vgic-v3-sr.c +++ b/arch/arm64/kvm/hyp/vgic-v3-sr.c @@ -10,6 +10,7 @@ #include #include +#include #include #include #include @@ -445,8 +446,8 @@ void __vgic_v3_init_lrs(void) */ u64 __vgic_v3_get_gic_config(void) { + arm64_exc_hwstates_t hwstate; u64 val, sre; - unsigned long flags = 0; /* * In compat mode, we cannot access ICC_SRE_EL1 at any EL @@ -476,7 +477,7 @@ u64 __vgic_v3_get_gic_config(void) * of the exception entry to EL2. */ if (has_vhe()) { - flags = local_daif_save(); + hwstate = local_exceptions_save_mask(CRITICAL_CONTEXT); } else { sysreg_clear_set_hcr(0, HCR_AMO | HCR_FMO | HCR_IMO); isb(); @@ -491,7 +492,7 @@ u64 __vgic_v3_get_gic_config(void) isb(); if (has_vhe()) { - local_daif_restore(flags); + local_exceptions_restore(hwstate); } else { sysreg_clear_set_hcr(HCR_AMO | HCR_FMO | HCR_IMO, 0); isb(); diff --git a/arch/arm64/kvm/hyp/vhe/switch.c b/arch/arm64/kvm/hyp/vhe/switch.c index bbe9cebd3d9d..1174e0fe7ea8 100644 --- a/arch/arm64/kvm/hyp/vhe/switch.c +++ b/arch/arm64/kvm/hyp/vhe/switch.c @@ -17,6 +17,7 @@ #include #include +#include #include #include #include @@ -629,9 +630,10 @@ NOKPROBE_SYMBOL(__kvm_vcpu_run_vhe); int __kvm_vcpu_run(struct kvm_vcpu *vcpu) { + arm64_exc_hwstates_t hwstate; int ret; - local_daif_mask(); + hwstate = local_exceptions_save_mask(CRITICAL_CONTEXT); /* * Having IRQs masked via PMR when entering the guest means the GIC @@ -639,18 +641,18 @@ int __kvm_vcpu_run(struct kvm_vcpu *vcpu) * only way to get out will be via guest exceptions. * Naturally, we want to avoid this. * - * local_daif_mask() already sets GIC_PRIO_PSR_I_SET, we just need a - * dsb to ensure the redistributor is forwards EL2 IRQs to the CPU. + * local_exceptions_save_mask(), via helpers, sets + * GIC_PRIO_IRQON along with pmr_sync(), so we can be shure + * that redistributor forwards EL2 IRQs to the CPU. */ - pmr_sync(); ret = __kvm_vcpu_run_vhe(vcpu); /* - * local_daif_restore() takes care to properly restore PSTATE.DAIF + * local_exceptions_restore() takes care to properly restore PSTATE.DAIF * and the GIC PMR if the host is using IRQ priorities. */ - local_daif_restore(DAIF_PROCCTX_NOIRQ); + local_exceptions_restore(hwstate); return ret; } diff --git a/arch/arm64/mm/mmu.c b/arch/arm64/mm/mmu.c index 18a8b0d3714e..fad1cbe41f84 100644 --- a/arch/arm64/mm/mmu.c +++ b/arch/arm64/mm/mmu.c @@ -32,6 +32,7 @@ #include #include +#include #include #include #include @@ -2314,7 +2315,7 @@ void __cpu_replace_ttbr1(pgd_t *pgdp, bool cnp) typedef void (ttbr_replace_func)(phys_addr_t); extern ttbr_replace_func idmap_cpu_replace_ttbr1; ttbr_replace_func *replace_phys; - unsigned long daif; + arm64_exc_hwstates_t hwstate; /* phys_to_ttbr() zeros lower 2 bits of ttbr with 52-bit PA */ phys_addr_t ttbr1 = phys_to_ttbr(virt_to_phys(pgdp)); @@ -2330,9 +2331,9 @@ void __cpu_replace_ttbr1(pgd_t *pgdp, bool cnp) * We really don't want to take *any* exceptions while TTBR1 is * in the process of being replaced so mask everything. */ - daif = local_daif_save(); + hwstate = local_exceptions_save_mask(CRITICAL_CONTEXT); replace_phys(ttbr1); - local_daif_restore(daif); + local_exceptions_restore(hwstate); cpu_uninstall_idmap(); } -- 2.34.1