From: "Daniel P. Berrangé" <berrange@redhat.com>
To: Eric Blake <eblake@redhat.com>
Cc: qemu-devel@nongnu.org, "Paolo Bonzini" <pbonzini@redhat.com>,
"Marc-André Lureau" <marcandre.lureau@redhat.com>,
"Dr. David Alan Gilbert" <dgilbert@redhat.com>,
"Markus Armbruster" <armbru@redhat.com>
Subject: Re: [Qemu-devel] [PATCH v4 7/9] sockets: allow SocketAddress 'fd' to reference numeric file descriptors
Date: Tue, 6 Feb 2018 09:13:37 +0000 [thread overview]
Message-ID: <20180206091337.GA20001@redhat.com> (raw)
In-Reply-To: <d9a1c2af-e5f8-1d46-d5c5-ecb2ce20981a@redhat.com>
On Mon, Feb 05, 2018 at 01:42:50PM -0600, Eric Blake wrote:
> On 02/05/2018 09:24 AM, Daniel P. Berrangé wrote:
> > From: "Daniel P. Berrange" <berrange@redhat.com>
> >
> > The SocketAddress 'fd' kind accepts the name of a file descriptor passed
> > to the monitor with the 'getfd' command. This makes it impossible to use
> > the 'fd' kind in cases where a monitor is not available. This can apply in
> > handling command line argv at startup, or simply if internal code wants to
> > use SocketAddress and pass a numeric FD it has acquired from elsewhere.
> >
> > Fortunately the 'getfd' command mandated that the FD names must not start
> > with a leading digit. We can thus safely extend semantics of the
> > SocketAddress 'fd' kind, to allow a purely numeric name to reference an
> > file descriptor that QEMU already has open. There will be restrictions on
> > when each kind can be used.
> >
> > In codepaths where we are handling a monitor command (ie cur_mon != NULL),
> > we will only support use of named file descriptors as before. Use of FD
> > numbers is still not permitted for monitor commands.
> >
> > In codepaths where we are not handling a monitor command (ie cur_mon ==
> > NULL), we will not support named file descriptors. Instead we can reference
> > FD numers explicitly. This allows the app spawning QEMU to intentionally
> > "leak" a pre-opened socket to QEMU and reference that in a SocketAddress
> > definition, or for code inside QEMU to pass pre-opened FDs around.
> >
> > Reviewed-by: Marc-André Lureau <marcandre.lureau@redhat.com>
> > Signed-off-by: Daniel P. Berrange <berrange@redhat.com>
> > ---
> > qapi/sockets.json | 7 +++
> > tests/test-util-sockets.c | 112 +++++++++++++++++++++++++++++++++++++++++++---
> > util/qemu-sockets.c | 16 +++++--
> > 3 files changed, 126 insertions(+), 9 deletions(-)
> >
> > diff --git a/qapi/sockets.json b/qapi/sockets.json
> > index ac022c6ad0..fc81d8d5e8 100644
> > --- a/qapi/sockets.json
> > +++ b/qapi/sockets.json
> > @@ -123,6 +123,13 @@
> > #
> > # @unix: Unix domain socket
> > #
> > +# @vsock: VMCI address
> > +#
> > +# @fd: decimal is for file descriptor number, otherwise a file descriptor name.
> > +# Named file descriptors are permitted in monitor commands, in combination
> > +# with the 'getfd' command. Decimal file descriptors are permitted at
> > +# startup or other contexts where no monitor context is active.
> > +#
> > # Since: 2.9
>
> There doesn't seem to be any way to introspect if we support decimal fds
> from the command line; is that going to be a problem?
Libvirt needs to know when it can use it, so any suggestions ?
Regards,
Daniel
--
|: https://berrange.com -o- https://www.flickr.com/photos/dberrange :|
|: https://libvirt.org -o- https://fstop138.berrange.com :|
|: https://entangle-photo.org -o- https://www.instagram.com/dberrange :|
next prev parent reply other threads:[~2018-02-06 9:13 UTC|newest]
Thread overview: 19+ messages / expand[flat|nested] mbox.gz Atom feed top
2018-02-05 15:24 [Qemu-devel] [PATCH v4 0/9] Enable passing pre-opened chardev socket FD Daniel P. Berrangé
2018-02-05 15:24 ` [Qemu-devel] [PATCH v4 1/9] char: don't silently skip tn3270 protocol init when TLS is enabled Daniel P. Berrangé
2018-02-05 16:10 ` Cornelia Huck
2018-02-05 15:24 ` [Qemu-devel] [PATCH v4 2/9] cutils: add qemu_strtoi & qemu_strtoui parsers for int/unsigned int types Daniel P. Berrangé
2018-02-05 19:37 ` Eric Blake
2018-02-07 16:29 ` Daniel P. Berrangé
2018-02-05 15:24 ` [Qemu-devel] [PATCH v4 3/9] sockets: pull code for testing IP availability out of specific test Daniel P. Berrangé
2018-02-05 15:24 ` [Qemu-devel] [PATCH v4 4/9] sockets: strengthen test suite IP protocol availability checks Daniel P. Berrangé
2018-02-05 15:24 ` [Qemu-devel] [PATCH v4 5/9] sockets: move fd_is_socket() into common sockets code Daniel P. Berrangé
2018-02-05 16:13 ` Marc-Andre Lureau
2018-02-05 15:24 ` [Qemu-devel] [PATCH v4 6/9] sockets: check that the named file descriptor is a socket Daniel P. Berrangé
2018-02-05 15:24 ` [Qemu-devel] [PATCH v4 7/9] sockets: allow SocketAddress 'fd' to reference numeric file descriptors Daniel P. Berrangé
2018-02-05 19:42 ` Eric Blake
2018-02-06 9:13 ` Daniel P. Berrangé [this message]
2018-02-06 14:48 ` Eric Blake
2018-03-12 12:44 ` Daniel P. Berrangé
2018-02-05 15:24 ` [Qemu-devel] [PATCH v4 8/9] char: refactor parsing of socket address information Daniel P. Berrangé
2018-02-05 15:24 ` [Qemu-devel] [PATCH v4 9/9] char: allow passing pre-opened socket file descriptor at startup Daniel P. Berrangé
2018-02-05 17:33 ` [Qemu-devel] [PATCH v4 0/9] Enable passing pre-opened chardev socket FD no-reply
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20180206091337.GA20001@redhat.com \
--to=berrange@redhat.com \
--cc=armbru@redhat.com \
--cc=dgilbert@redhat.com \
--cc=eblake@redhat.com \
--cc=marcandre.lureau@redhat.com \
--cc=pbonzini@redhat.com \
--cc=qemu-devel@nongnu.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).