qemu-devel.nongnu.org archive mirror
 help / color / mirror / Atom feed
From: Laurent Vivier <lvivier@redhat.com>
To: "Michael S. Tsirkin" <mst@redhat.com>
Cc: "Amit Shah" <amit@kernel.org>, "Jason Wang" <jasowang@redhat.com>,
	qemu-devel@nongnu.org, virtualization@lists.linux-foundation.org,
	"Philippe Mathieu-Daudé" <philmd@redhat.com>,
	"Martin Wilck" <mwilck@suse.com>
Subject: Re: [PATCH v2] virtio-rng: return available data with O_NONBLOCK
Date: Tue, 11 Aug 2020 15:53:54 +0200	[thread overview]
Message-ID: <a9179d2b-35fb-26ab-1afd-9952cc3ae008@redhat.com> (raw)
In-Reply-To: <20200811090814-mutt-send-email-mst@kernel.org>

On 11/08/2020 15:14, Michael S. Tsirkin wrote:
> On Tue, Aug 11, 2020 at 03:00:14PM +0200, Laurent Vivier wrote:
>> No problem. This code is tricky and it took me several months to really
>> start to understand it ...
> 
> Oh great, we actually have someone who understands the code!
> Maybe you can help me understand: virtio_read
> takes the buf pointer and puts it in the vq.
> It can then return to caller (e.g. on a signal).
> Device can meanwhile write into the buffer.
> 
> It looks like if another call then happens, and that
> other call uses a different buffer, virtio rng
> will happily return the data written into the
> original buf pointer, confusing the caller.
> 
> Is that right?
> 

Yes.

hw_random core uses two bufers:

- rng_fillbuf that is used with a blocking access and protected by the
reading_mutex. I think this cannot be interrupted by a kill because it's
in  hwrng_fillfn() and it's kthread.

- rng_buffer that is used in rng_dev_read() and can be interrupted (it
is also protected by reading_mutex)

But if rng_dev_read() is called with O_NONBLOCK or interrupted and then
rng_fillbuf starts they can be mixed.

We have also the first use of rng_buffer in add_early_randomness() that
use a different size than in rng_dev_read() with the same buffer (and
this size is 16 whereas the hwrng read API says it must be at least 32...).

The problem here is core has been developped with synchronicity in mind,
whereas virtio is asynchronous by definition.

I think we should add some internal buffers in virtio-rng backend. This
would improve performance (we are at 1 MB/s, I sent a patch to improve
that, but this doesn't fix the problems above), and allows hw_random
core to use memory that doesn't need to be compatible with virt_to_page().

Thanks,
Laurent



  reply	other threads:[~2020-08-11 13:55 UTC|newest]

Thread overview: 16+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2020-07-15 13:32 [PATCH v2] virtio-rng: return available data with O_NONBLOCK mwilck
2020-08-11 10:23 ` Reminder: " Martin Wilck
2020-08-11 10:37 ` Philippe Mathieu-Daudé
2020-08-11 12:02   ` Laurent Vivier
2020-08-11 12:22     ` Martin Wilck
2020-08-11 12:39       ` Laurent Vivier
2020-08-11 12:53         ` Martin Wilck
2020-08-11 13:00           ` Laurent Vivier
2020-08-11 13:14             ` Michael S. Tsirkin
2020-08-11 13:53               ` Laurent Vivier [this message]
2020-08-11 14:49                 ` Michael S. Tsirkin
2020-08-11 15:00                   ` Laurent Vivier
2020-08-11 14:12           ` Martin Wilck
2020-08-11 11:26 ` Michael S. Tsirkin
2020-08-11 12:07   ` Martin Wilck
2020-08-11 12:58     ` Michael S. Tsirkin

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=a9179d2b-35fb-26ab-1afd-9952cc3ae008@redhat.com \
    --to=lvivier@redhat.com \
    --cc=amit@kernel.org \
    --cc=jasowang@redhat.com \
    --cc=mst@redhat.com \
    --cc=mwilck@suse.com \
    --cc=philmd@redhat.com \
    --cc=qemu-devel@nongnu.org \
    --cc=virtualization@lists.linux-foundation.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).