lg.h 7.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236
  1. #ifndef _LGUEST_H
  2. #define _LGUEST_H
  3. #ifndef __ASSEMBLY__
  4. #include <linux/types.h>
  5. #include <linux/init.h>
  6. #include <linux/stringify.h>
  7. #include <linux/lguest.h>
  8. #include <linux/lguest_launcher.h>
  9. #include <linux/wait.h>
  10. #include <linux/hrtimer.h>
  11. #include <linux/err.h>
  12. #include <asm/lguest.h>
  13. void free_pagetables(void);
  14. int init_pagetables(struct page **switcher_page, unsigned int pages);
  15. struct pgdir
  16. {
  17. unsigned long gpgdir;
  18. pgd_t *pgdir;
  19. };
  20. /* We have two pages shared with guests, per cpu. */
  21. struct lguest_pages
  22. {
  23. /* This is the stack page mapped rw in guest */
  24. char spare[PAGE_SIZE - sizeof(struct lguest_regs)];
  25. struct lguest_regs regs;
  26. /* This is the host state & guest descriptor page, ro in guest */
  27. struct lguest_ro_state state;
  28. } __attribute__((aligned(PAGE_SIZE)));
  29. #define CHANGED_IDT 1
  30. #define CHANGED_GDT 2
  31. #define CHANGED_GDT_TLS 4 /* Actually a subset of CHANGED_GDT */
  32. #define CHANGED_ALL 3
  33. struct lguest;
  34. struct lg_cpu {
  35. unsigned int id;
  36. struct lguest *lg;
  37. struct task_struct *tsk;
  38. struct mm_struct *mm; /* == tsk->mm, but that becomes NULL on exit */
  39. u32 cr2;
  40. int ts;
  41. u32 esp1;
  42. u8 ss1;
  43. /* Bitmap of what has changed: see CHANGED_* above. */
  44. int changed;
  45. unsigned long pending_notify; /* pfn from LHCALL_NOTIFY */
  46. /* At end of a page shared mapped over lguest_pages in guest. */
  47. unsigned long regs_page;
  48. struct lguest_regs *regs;
  49. struct lguest_pages *last_pages;
  50. int cpu_pgd; /* which pgd this cpu is currently using */
  51. /* If a hypercall was asked for, this points to the arguments. */
  52. struct hcall_args *hcall;
  53. u32 next_hcall;
  54. /* Virtual clock device */
  55. struct hrtimer hrt;
  56. /* Do we need to stop what we're doing and return to userspace? */
  57. int break_out;
  58. wait_queue_head_t break_wq;
  59. int halted;
  60. /* Pending virtual interrupts */
  61. DECLARE_BITMAP(irqs_pending, LGUEST_IRQS);
  62. struct lg_cpu_arch arch;
  63. };
  64. /* The private info the thread maintains about the guest. */
  65. struct lguest
  66. {
  67. struct lguest_data __user *lguest_data;
  68. struct lg_cpu cpus[NR_CPUS];
  69. unsigned int nr_cpus;
  70. u32 pfn_limit;
  71. /* This provides the offset to the base of guest-physical
  72. * memory in the Launcher. */
  73. void __user *mem_base;
  74. unsigned long kernel_address;
  75. struct pgdir pgdirs[4];
  76. unsigned long noirq_start, noirq_end;
  77. unsigned int stack_pages;
  78. u32 tsc_khz;
  79. /* Dead? */
  80. const char *dead;
  81. };
  82. extern struct mutex lguest_lock;
  83. /* core.c: */
  84. int lguest_address_ok(const struct lguest *lg,
  85. unsigned long addr, unsigned long len);
  86. void __lgread(struct lg_cpu *, void *, unsigned long, unsigned);
  87. void __lgwrite(struct lg_cpu *, unsigned long, const void *, unsigned);
  88. /*H:035 Using memory-copy operations like that is usually inconvient, so we
  89. * have the following helper macros which read and write a specific type (often
  90. * an unsigned long).
  91. *
  92. * This reads into a variable of the given type then returns that. */
  93. #define lgread(cpu, addr, type) \
  94. ({ type _v; __lgread((cpu), &_v, (addr), sizeof(_v)); _v; })
  95. /* This checks that the variable is of the given type, then writes it out. */
  96. #define lgwrite(cpu, addr, type, val) \
  97. do { \
  98. typecheck(type, val); \
  99. __lgwrite((cpu), (addr), &(val), sizeof(val)); \
  100. } while(0)
  101. /* (end of memory access helper routines) :*/
  102. int run_guest(struct lg_cpu *cpu, unsigned long __user *user);
  103. /* Helper macros to obtain the first 12 or the last 20 bits, this is only the
  104. * first step in the migration to the kernel types. pte_pfn is already defined
  105. * in the kernel. */
  106. #define pgd_flags(x) (pgd_val(x) & ~PAGE_MASK)
  107. #define pgd_pfn(x) (pgd_val(x) >> PAGE_SHIFT)
  108. /* interrupts_and_traps.c: */
  109. void maybe_do_interrupt(struct lg_cpu *cpu);
  110. int deliver_trap(struct lg_cpu *cpu, unsigned int num);
  111. void load_guest_idt_entry(struct lg_cpu *cpu, unsigned int i,
  112. u32 low, u32 hi);
  113. void guest_set_stack(struct lg_cpu *cpu, u32 seg, u32 esp, unsigned int pages);
  114. void pin_stack_pages(struct lg_cpu *cpu);
  115. void setup_default_idt_entries(struct lguest_ro_state *state,
  116. const unsigned long *def);
  117. void copy_traps(const struct lg_cpu *cpu, struct desc_struct *idt,
  118. const unsigned long *def);
  119. void guest_set_clockevent(struct lg_cpu *cpu, unsigned long delta);
  120. void init_clockdev(struct lg_cpu *cpu);
  121. bool check_syscall_vector(struct lguest *lg);
  122. int init_interrupts(void);
  123. void free_interrupts(void);
  124. /* segments.c: */
  125. void setup_default_gdt_entries(struct lguest_ro_state *state);
  126. void setup_guest_gdt(struct lg_cpu *cpu);
  127. void load_guest_gdt(struct lg_cpu *cpu, unsigned long table, u32 num);
  128. void guest_load_tls(struct lg_cpu *cpu, unsigned long tls_array);
  129. void copy_gdt(const struct lg_cpu *cpu, struct desc_struct *gdt);
  130. void copy_gdt_tls(const struct lg_cpu *cpu, struct desc_struct *gdt);
  131. /* page_tables.c: */
  132. int init_guest_pagetable(struct lguest *lg, unsigned long pgtable);
  133. void free_guest_pagetable(struct lguest *lg);
  134. void guest_new_pagetable(struct lg_cpu *cpu, unsigned long pgtable);
  135. void guest_set_pmd(struct lguest *lg, unsigned long gpgdir, u32 i);
  136. void guest_pagetable_clear_all(struct lg_cpu *cpu);
  137. void guest_pagetable_flush_user(struct lg_cpu *cpu);
  138. void guest_set_pte(struct lg_cpu *cpu, unsigned long gpgdir,
  139. unsigned long vaddr, pte_t val);
  140. void map_switcher_in_guest(struct lg_cpu *cpu, struct lguest_pages *pages);
  141. int demand_page(struct lg_cpu *cpu, unsigned long cr2, int errcode);
  142. void pin_page(struct lg_cpu *cpu, unsigned long vaddr);
  143. unsigned long guest_pa(struct lg_cpu *cpu, unsigned long vaddr);
  144. void page_table_guest_data_init(struct lg_cpu *cpu);
  145. /* <arch>/core.c: */
  146. void lguest_arch_host_init(void);
  147. void lguest_arch_host_fini(void);
  148. void lguest_arch_run_guest(struct lg_cpu *cpu);
  149. void lguest_arch_handle_trap(struct lg_cpu *cpu);
  150. int lguest_arch_init_hypercalls(struct lg_cpu *cpu);
  151. int lguest_arch_do_hcall(struct lg_cpu *cpu, struct hcall_args *args);
  152. void lguest_arch_setup_regs(struct lg_cpu *cpu, unsigned long start);
  153. /* <arch>/switcher.S: */
  154. extern char start_switcher_text[], end_switcher_text[], switch_to_guest[];
  155. /* lguest_user.c: */
  156. int lguest_device_init(void);
  157. void lguest_device_remove(void);
  158. /* hypercalls.c: */
  159. void do_hypercalls(struct lg_cpu *cpu);
  160. void write_timestamp(struct lg_cpu *cpu);
  161. /*L:035
  162. * Let's step aside for the moment, to study one important routine that's used
  163. * widely in the Host code.
  164. *
  165. * There are many cases where the Guest can do something invalid, like pass crap
  166. * to a hypercall. Since only the Guest kernel can make hypercalls, it's quite
  167. * acceptable to simply terminate the Guest and give the Launcher a nicely
  168. * formatted reason. It's also simpler for the Guest itself, which doesn't
  169. * need to check most hypercalls for "success"; if you're still running, it
  170. * succeeded.
  171. *
  172. * Once this is called, the Guest will never run again, so most Host code can
  173. * call this then continue as if nothing had happened. This means many
  174. * functions don't have to explicitly return an error code, which keeps the
  175. * code simple.
  176. *
  177. * It also means that this can be called more than once: only the first one is
  178. * remembered. The only trick is that we still need to kill the Guest even if
  179. * we can't allocate memory to store the reason. Linux has a neat way of
  180. * packing error codes into invalid pointers, so we use that here.
  181. *
  182. * Like any macro which uses an "if", it is safely wrapped in a run-once "do {
  183. * } while(0)".
  184. */
  185. #define kill_guest(cpu, fmt...) \
  186. do { \
  187. if (!(cpu)->lg->dead) { \
  188. (cpu)->lg->dead = kasprintf(GFP_ATOMIC, fmt); \
  189. if (!(cpu)->lg->dead) \
  190. (cpu)->lg->dead = ERR_PTR(-ENOMEM); \
  191. } \
  192. } while(0)
  193. /* (End of aside) :*/
  194. #endif /* __ASSEMBLY__ */
  195. #endif /* _LGUEST_H */