xref: /qemu/hw/block/virtio-blk.c (revision ef5bc962)
16e790746SPaolo Bonzini /*
26e790746SPaolo Bonzini  * Virtio Block Device
36e790746SPaolo Bonzini  *
46e790746SPaolo Bonzini  * Copyright IBM, Corp. 2007
56e790746SPaolo Bonzini  *
66e790746SPaolo Bonzini  * Authors:
76e790746SPaolo Bonzini  *  Anthony Liguori   <aliguori@us.ibm.com>
86e790746SPaolo Bonzini  *
96e790746SPaolo Bonzini  * This work is licensed under the terms of the GNU GPL, version 2.  See
106e790746SPaolo Bonzini  * the COPYING file in the top-level directory.
116e790746SPaolo Bonzini  *
126e790746SPaolo Bonzini  */
136e790746SPaolo Bonzini 
146e790746SPaolo Bonzini #include "qemu-common.h"
156e790746SPaolo Bonzini #include "qemu/error-report.h"
166e790746SPaolo Bonzini #include "trace.h"
176e790746SPaolo Bonzini #include "hw/block/block.h"
186e790746SPaolo Bonzini #include "sysemu/blockdev.h"
196e790746SPaolo Bonzini #include "hw/virtio/virtio-blk.h"
206e790746SPaolo Bonzini #ifdef CONFIG_VIRTIO_BLK_DATA_PLANE
216e790746SPaolo Bonzini # include "dataplane/virtio-blk.h"
2284db52d0SStefan Hajnoczi # include "migration/migration.h"
236e790746SPaolo Bonzini #endif
246e790746SPaolo Bonzini #include "block/scsi.h"
256e790746SPaolo Bonzini #ifdef __linux__
266e790746SPaolo Bonzini # include <scsi/sg.h>
276e790746SPaolo Bonzini #endif
286e790746SPaolo Bonzini #include "hw/virtio/virtio-bus.h"
296e790746SPaolo Bonzini 
306e790746SPaolo Bonzini typedef struct VirtIOBlockReq
316e790746SPaolo Bonzini {
326e790746SPaolo Bonzini     VirtIOBlock *dev;
336e790746SPaolo Bonzini     VirtQueueElement elem;
346e790746SPaolo Bonzini     struct virtio_blk_inhdr *in;
356e790746SPaolo Bonzini     struct virtio_blk_outhdr *out;
366e790746SPaolo Bonzini     struct virtio_scsi_inhdr *scsi;
376e790746SPaolo Bonzini     QEMUIOVector qiov;
386e790746SPaolo Bonzini     struct VirtIOBlockReq *next;
396e790746SPaolo Bonzini     BlockAcctCookie acct;
406e790746SPaolo Bonzini } VirtIOBlockReq;
416e790746SPaolo Bonzini 
426e790746SPaolo Bonzini static void virtio_blk_req_complete(VirtIOBlockReq *req, int status)
436e790746SPaolo Bonzini {
446e790746SPaolo Bonzini     VirtIOBlock *s = req->dev;
456e790746SPaolo Bonzini     VirtIODevice *vdev = VIRTIO_DEVICE(s);
466e790746SPaolo Bonzini 
476e790746SPaolo Bonzini     trace_virtio_blk_req_complete(req, status);
486e790746SPaolo Bonzini 
496e790746SPaolo Bonzini     stb_p(&req->in->status, status);
506e790746SPaolo Bonzini     virtqueue_push(s->vq, &req->elem, req->qiov.size + sizeof(*req->in));
516e790746SPaolo Bonzini     virtio_notify(vdev, s->vq);
526e790746SPaolo Bonzini }
536e790746SPaolo Bonzini 
546e790746SPaolo Bonzini static int virtio_blk_handle_rw_error(VirtIOBlockReq *req, int error,
556e790746SPaolo Bonzini     bool is_read)
566e790746SPaolo Bonzini {
576e790746SPaolo Bonzini     BlockErrorAction action = bdrv_get_error_action(req->dev->bs, is_read, error);
586e790746SPaolo Bonzini     VirtIOBlock *s = req->dev;
596e790746SPaolo Bonzini 
606e790746SPaolo Bonzini     if (action == BDRV_ACTION_STOP) {
616e790746SPaolo Bonzini         req->next = s->rq;
626e790746SPaolo Bonzini         s->rq = req;
636e790746SPaolo Bonzini     } else if (action == BDRV_ACTION_REPORT) {
646e790746SPaolo Bonzini         virtio_blk_req_complete(req, VIRTIO_BLK_S_IOERR);
656e790746SPaolo Bonzini         bdrv_acct_done(s->bs, &req->acct);
666e790746SPaolo Bonzini         g_free(req);
676e790746SPaolo Bonzini     }
686e790746SPaolo Bonzini 
696e790746SPaolo Bonzini     bdrv_error_action(s->bs, action, is_read, error);
706e790746SPaolo Bonzini     return action != BDRV_ACTION_IGNORE;
716e790746SPaolo Bonzini }
726e790746SPaolo Bonzini 
736e790746SPaolo Bonzini static void virtio_blk_rw_complete(void *opaque, int ret)
746e790746SPaolo Bonzini {
756e790746SPaolo Bonzini     VirtIOBlockReq *req = opaque;
766e790746SPaolo Bonzini 
776e790746SPaolo Bonzini     trace_virtio_blk_rw_complete(req, ret);
786e790746SPaolo Bonzini 
796e790746SPaolo Bonzini     if (ret) {
806e790746SPaolo Bonzini         bool is_read = !(ldl_p(&req->out->type) & VIRTIO_BLK_T_OUT);
816e790746SPaolo Bonzini         if (virtio_blk_handle_rw_error(req, -ret, is_read))
826e790746SPaolo Bonzini             return;
836e790746SPaolo Bonzini     }
846e790746SPaolo Bonzini 
856e790746SPaolo Bonzini     virtio_blk_req_complete(req, VIRTIO_BLK_S_OK);
866e790746SPaolo Bonzini     bdrv_acct_done(req->dev->bs, &req->acct);
876e790746SPaolo Bonzini     g_free(req);
886e790746SPaolo Bonzini }
896e790746SPaolo Bonzini 
906e790746SPaolo Bonzini static void virtio_blk_flush_complete(void *opaque, int ret)
916e790746SPaolo Bonzini {
926e790746SPaolo Bonzini     VirtIOBlockReq *req = opaque;
936e790746SPaolo Bonzini 
946e790746SPaolo Bonzini     if (ret) {
956e790746SPaolo Bonzini         if (virtio_blk_handle_rw_error(req, -ret, 0)) {
966e790746SPaolo Bonzini             return;
976e790746SPaolo Bonzini         }
986e790746SPaolo Bonzini     }
996e790746SPaolo Bonzini 
1006e790746SPaolo Bonzini     virtio_blk_req_complete(req, VIRTIO_BLK_S_OK);
1016e790746SPaolo Bonzini     bdrv_acct_done(req->dev->bs, &req->acct);
1026e790746SPaolo Bonzini     g_free(req);
1036e790746SPaolo Bonzini }
1046e790746SPaolo Bonzini 
1056e790746SPaolo Bonzini static VirtIOBlockReq *virtio_blk_alloc_request(VirtIOBlock *s)
1066e790746SPaolo Bonzini {
1076e790746SPaolo Bonzini     VirtIOBlockReq *req = g_malloc(sizeof(*req));
1086e790746SPaolo Bonzini     req->dev = s;
1096e790746SPaolo Bonzini     req->qiov.size = 0;
1106e790746SPaolo Bonzini     req->next = NULL;
1116e790746SPaolo Bonzini     return req;
1126e790746SPaolo Bonzini }
1136e790746SPaolo Bonzini 
1146e790746SPaolo Bonzini static VirtIOBlockReq *virtio_blk_get_request(VirtIOBlock *s)
1156e790746SPaolo Bonzini {
1166e790746SPaolo Bonzini     VirtIOBlockReq *req = virtio_blk_alloc_request(s);
1176e790746SPaolo Bonzini 
1186e790746SPaolo Bonzini     if (req != NULL) {
1196e790746SPaolo Bonzini         if (!virtqueue_pop(s->vq, &req->elem)) {
1206e790746SPaolo Bonzini             g_free(req);
1216e790746SPaolo Bonzini             return NULL;
1226e790746SPaolo Bonzini         }
1236e790746SPaolo Bonzini     }
1246e790746SPaolo Bonzini 
1256e790746SPaolo Bonzini     return req;
1266e790746SPaolo Bonzini }
1276e790746SPaolo Bonzini 
1286e790746SPaolo Bonzini static void virtio_blk_handle_scsi(VirtIOBlockReq *req)
1296e790746SPaolo Bonzini {
1306e790746SPaolo Bonzini #ifdef __linux__
1316e790746SPaolo Bonzini     int ret;
1326e790746SPaolo Bonzini     int i;
1336e790746SPaolo Bonzini #endif
1346e790746SPaolo Bonzini     int status = VIRTIO_BLK_S_OK;
1356e790746SPaolo Bonzini 
1366e790746SPaolo Bonzini     /*
1376e790746SPaolo Bonzini      * We require at least one output segment each for the virtio_blk_outhdr
1386e790746SPaolo Bonzini      * and the SCSI command block.
1396e790746SPaolo Bonzini      *
1406e790746SPaolo Bonzini      * We also at least require the virtio_blk_inhdr, the virtio_scsi_inhdr
1416e790746SPaolo Bonzini      * and the sense buffer pointer in the input segments.
1426e790746SPaolo Bonzini      */
1436e790746SPaolo Bonzini     if (req->elem.out_num < 2 || req->elem.in_num < 3) {
1446e790746SPaolo Bonzini         virtio_blk_req_complete(req, VIRTIO_BLK_S_IOERR);
1456e790746SPaolo Bonzini         g_free(req);
1466e790746SPaolo Bonzini         return;
1476e790746SPaolo Bonzini     }
1486e790746SPaolo Bonzini 
1496e790746SPaolo Bonzini     /*
1506e790746SPaolo Bonzini      * The scsi inhdr is placed in the second-to-last input segment, just
1516e790746SPaolo Bonzini      * before the regular inhdr.
1526e790746SPaolo Bonzini      */
1536e790746SPaolo Bonzini     req->scsi = (void *)req->elem.in_sg[req->elem.in_num - 2].iov_base;
1546e790746SPaolo Bonzini 
1556e790746SPaolo Bonzini     if (!req->dev->blk.scsi) {
1566e790746SPaolo Bonzini         status = VIRTIO_BLK_S_UNSUPP;
1576e790746SPaolo Bonzini         goto fail;
1586e790746SPaolo Bonzini     }
1596e790746SPaolo Bonzini 
1606e790746SPaolo Bonzini     /*
1616e790746SPaolo Bonzini      * No support for bidirection commands yet.
1626e790746SPaolo Bonzini      */
1636e790746SPaolo Bonzini     if (req->elem.out_num > 2 && req->elem.in_num > 3) {
1646e790746SPaolo Bonzini         status = VIRTIO_BLK_S_UNSUPP;
1656e790746SPaolo Bonzini         goto fail;
1666e790746SPaolo Bonzini     }
1676e790746SPaolo Bonzini 
1686e790746SPaolo Bonzini #ifdef __linux__
1696e790746SPaolo Bonzini     struct sg_io_hdr hdr;
1706e790746SPaolo Bonzini     memset(&hdr, 0, sizeof(struct sg_io_hdr));
1716e790746SPaolo Bonzini     hdr.interface_id = 'S';
1726e790746SPaolo Bonzini     hdr.cmd_len = req->elem.out_sg[1].iov_len;
1736e790746SPaolo Bonzini     hdr.cmdp = req->elem.out_sg[1].iov_base;
1746e790746SPaolo Bonzini     hdr.dxfer_len = 0;
1756e790746SPaolo Bonzini 
1766e790746SPaolo Bonzini     if (req->elem.out_num > 2) {
1776e790746SPaolo Bonzini         /*
1786e790746SPaolo Bonzini          * If there are more than the minimally required 2 output segments
1796e790746SPaolo Bonzini          * there is write payload starting from the third iovec.
1806e790746SPaolo Bonzini          */
1816e790746SPaolo Bonzini         hdr.dxfer_direction = SG_DXFER_TO_DEV;
1826e790746SPaolo Bonzini         hdr.iovec_count = req->elem.out_num - 2;
1836e790746SPaolo Bonzini 
1846e790746SPaolo Bonzini         for (i = 0; i < hdr.iovec_count; i++)
1856e790746SPaolo Bonzini             hdr.dxfer_len += req->elem.out_sg[i + 2].iov_len;
1866e790746SPaolo Bonzini 
1876e790746SPaolo Bonzini         hdr.dxferp = req->elem.out_sg + 2;
1886e790746SPaolo Bonzini 
1896e790746SPaolo Bonzini     } else if (req->elem.in_num > 3) {
1906e790746SPaolo Bonzini         /*
1916e790746SPaolo Bonzini          * If we have more than 3 input segments the guest wants to actually
1926e790746SPaolo Bonzini          * read data.
1936e790746SPaolo Bonzini          */
1946e790746SPaolo Bonzini         hdr.dxfer_direction = SG_DXFER_FROM_DEV;
1956e790746SPaolo Bonzini         hdr.iovec_count = req->elem.in_num - 3;
1966e790746SPaolo Bonzini         for (i = 0; i < hdr.iovec_count; i++)
1976e790746SPaolo Bonzini             hdr.dxfer_len += req->elem.in_sg[i].iov_len;
1986e790746SPaolo Bonzini 
1996e790746SPaolo Bonzini         hdr.dxferp = req->elem.in_sg;
2006e790746SPaolo Bonzini     } else {
2016e790746SPaolo Bonzini         /*
2026e790746SPaolo Bonzini          * Some SCSI commands don't actually transfer any data.
2036e790746SPaolo Bonzini          */
2046e790746SPaolo Bonzini         hdr.dxfer_direction = SG_DXFER_NONE;
2056e790746SPaolo Bonzini     }
2066e790746SPaolo Bonzini 
2076e790746SPaolo Bonzini     hdr.sbp = req->elem.in_sg[req->elem.in_num - 3].iov_base;
2086e790746SPaolo Bonzini     hdr.mx_sb_len = req->elem.in_sg[req->elem.in_num - 3].iov_len;
2096e790746SPaolo Bonzini 
2106e790746SPaolo Bonzini     ret = bdrv_ioctl(req->dev->bs, SG_IO, &hdr);
2116e790746SPaolo Bonzini     if (ret) {
2126e790746SPaolo Bonzini         status = VIRTIO_BLK_S_UNSUPP;
2136e790746SPaolo Bonzini         goto fail;
2146e790746SPaolo Bonzini     }
2156e790746SPaolo Bonzini 
2166e790746SPaolo Bonzini     /*
2176e790746SPaolo Bonzini      * From SCSI-Generic-HOWTO: "Some lower level drivers (e.g. ide-scsi)
2186e790746SPaolo Bonzini      * clear the masked_status field [hence status gets cleared too, see
2196e790746SPaolo Bonzini      * block/scsi_ioctl.c] even when a CHECK_CONDITION or COMMAND_TERMINATED
2206e790746SPaolo Bonzini      * status has occurred.  However they do set DRIVER_SENSE in driver_status
2216e790746SPaolo Bonzini      * field. Also a (sb_len_wr > 0) indicates there is a sense buffer.
2226e790746SPaolo Bonzini      */
2236e790746SPaolo Bonzini     if (hdr.status == 0 && hdr.sb_len_wr > 0) {
2246e790746SPaolo Bonzini         hdr.status = CHECK_CONDITION;
2256e790746SPaolo Bonzini     }
2266e790746SPaolo Bonzini 
2276e790746SPaolo Bonzini     stl_p(&req->scsi->errors,
2286e790746SPaolo Bonzini           hdr.status | (hdr.msg_status << 8) |
2296e790746SPaolo Bonzini           (hdr.host_status << 16) | (hdr.driver_status << 24));
2306e790746SPaolo Bonzini     stl_p(&req->scsi->residual, hdr.resid);
2316e790746SPaolo Bonzini     stl_p(&req->scsi->sense_len, hdr.sb_len_wr);
2326e790746SPaolo Bonzini     stl_p(&req->scsi->data_len, hdr.dxfer_len);
2336e790746SPaolo Bonzini 
2346e790746SPaolo Bonzini     virtio_blk_req_complete(req, status);
2356e790746SPaolo Bonzini     g_free(req);
2366e790746SPaolo Bonzini     return;
2376e790746SPaolo Bonzini #else
2386e790746SPaolo Bonzini     abort();
2396e790746SPaolo Bonzini #endif
2406e790746SPaolo Bonzini 
2416e790746SPaolo Bonzini fail:
2426e790746SPaolo Bonzini     /* Just put anything nonzero so that the ioctl fails in the guest.  */
2436e790746SPaolo Bonzini     stl_p(&req->scsi->errors, 255);
2446e790746SPaolo Bonzini     virtio_blk_req_complete(req, status);
2456e790746SPaolo Bonzini     g_free(req);
2466e790746SPaolo Bonzini }
2476e790746SPaolo Bonzini 
2486e790746SPaolo Bonzini typedef struct MultiReqBuffer {
2496e790746SPaolo Bonzini     BlockRequest        blkreq[32];
2506e790746SPaolo Bonzini     unsigned int        num_writes;
2516e790746SPaolo Bonzini } MultiReqBuffer;
2526e790746SPaolo Bonzini 
2536e790746SPaolo Bonzini static void virtio_submit_multiwrite(BlockDriverState *bs, MultiReqBuffer *mrb)
2546e790746SPaolo Bonzini {
2556e790746SPaolo Bonzini     int i, ret;
2566e790746SPaolo Bonzini 
2576e790746SPaolo Bonzini     if (!mrb->num_writes) {
2586e790746SPaolo Bonzini         return;
2596e790746SPaolo Bonzini     }
2606e790746SPaolo Bonzini 
2616e790746SPaolo Bonzini     ret = bdrv_aio_multiwrite(bs, mrb->blkreq, mrb->num_writes);
2626e790746SPaolo Bonzini     if (ret != 0) {
2636e790746SPaolo Bonzini         for (i = 0; i < mrb->num_writes; i++) {
2646e790746SPaolo Bonzini             if (mrb->blkreq[i].error) {
2656e790746SPaolo Bonzini                 virtio_blk_rw_complete(mrb->blkreq[i].opaque, -EIO);
2666e790746SPaolo Bonzini             }
2676e790746SPaolo Bonzini         }
2686e790746SPaolo Bonzini     }
2696e790746SPaolo Bonzini 
2706e790746SPaolo Bonzini     mrb->num_writes = 0;
2716e790746SPaolo Bonzini }
2726e790746SPaolo Bonzini 
2736e790746SPaolo Bonzini static void virtio_blk_handle_flush(VirtIOBlockReq *req, MultiReqBuffer *mrb)
2746e790746SPaolo Bonzini {
2756e790746SPaolo Bonzini     bdrv_acct_start(req->dev->bs, &req->acct, 0, BDRV_ACCT_FLUSH);
2766e790746SPaolo Bonzini 
2776e790746SPaolo Bonzini     /*
2786e790746SPaolo Bonzini      * Make sure all outstanding writes are posted to the backing device.
2796e790746SPaolo Bonzini      */
2806e790746SPaolo Bonzini     virtio_submit_multiwrite(req->dev->bs, mrb);
2816e790746SPaolo Bonzini     bdrv_aio_flush(req->dev->bs, virtio_blk_flush_complete, req);
2826e790746SPaolo Bonzini }
2836e790746SPaolo Bonzini 
2846e790746SPaolo Bonzini static void virtio_blk_handle_write(VirtIOBlockReq *req, MultiReqBuffer *mrb)
2856e790746SPaolo Bonzini {
2866e790746SPaolo Bonzini     BlockRequest *blkreq;
2876e790746SPaolo Bonzini     uint64_t sector;
2886e790746SPaolo Bonzini 
2896e790746SPaolo Bonzini     sector = ldq_p(&req->out->sector);
2906e790746SPaolo Bonzini 
2916e790746SPaolo Bonzini     bdrv_acct_start(req->dev->bs, &req->acct, req->qiov.size, BDRV_ACCT_WRITE);
2926e790746SPaolo Bonzini 
2936e790746SPaolo Bonzini     trace_virtio_blk_handle_write(req, sector, req->qiov.size / 512);
2946e790746SPaolo Bonzini 
2956e790746SPaolo Bonzini     if (sector & req->dev->sector_mask) {
2966e790746SPaolo Bonzini         virtio_blk_rw_complete(req, -EIO);
2976e790746SPaolo Bonzini         return;
2986e790746SPaolo Bonzini     }
2996e790746SPaolo Bonzini     if (req->qiov.size % req->dev->conf->logical_block_size) {
3006e790746SPaolo Bonzini         virtio_blk_rw_complete(req, -EIO);
3016e790746SPaolo Bonzini         return;
3026e790746SPaolo Bonzini     }
3036e790746SPaolo Bonzini 
3046e790746SPaolo Bonzini     if (mrb->num_writes == 32) {
3056e790746SPaolo Bonzini         virtio_submit_multiwrite(req->dev->bs, mrb);
3066e790746SPaolo Bonzini     }
3076e790746SPaolo Bonzini 
3086e790746SPaolo Bonzini     blkreq = &mrb->blkreq[mrb->num_writes];
3096e790746SPaolo Bonzini     blkreq->sector = sector;
3106e790746SPaolo Bonzini     blkreq->nb_sectors = req->qiov.size / BDRV_SECTOR_SIZE;
3116e790746SPaolo Bonzini     blkreq->qiov = &req->qiov;
3126e790746SPaolo Bonzini     blkreq->cb = virtio_blk_rw_complete;
3136e790746SPaolo Bonzini     blkreq->opaque = req;
3146e790746SPaolo Bonzini     blkreq->error = 0;
3156e790746SPaolo Bonzini 
3166e790746SPaolo Bonzini     mrb->num_writes++;
3176e790746SPaolo Bonzini }
3186e790746SPaolo Bonzini 
3196e790746SPaolo Bonzini static void virtio_blk_handle_read(VirtIOBlockReq *req)
3206e790746SPaolo Bonzini {
3216e790746SPaolo Bonzini     uint64_t sector;
3226e790746SPaolo Bonzini 
3236e790746SPaolo Bonzini     sector = ldq_p(&req->out->sector);
3246e790746SPaolo Bonzini 
3256e790746SPaolo Bonzini     bdrv_acct_start(req->dev->bs, &req->acct, req->qiov.size, BDRV_ACCT_READ);
3266e790746SPaolo Bonzini 
3276e790746SPaolo Bonzini     trace_virtio_blk_handle_read(req, sector, req->qiov.size / 512);
3286e790746SPaolo Bonzini 
3296e790746SPaolo Bonzini     if (sector & req->dev->sector_mask) {
3306e790746SPaolo Bonzini         virtio_blk_rw_complete(req, -EIO);
3316e790746SPaolo Bonzini         return;
3326e790746SPaolo Bonzini     }
3336e790746SPaolo Bonzini     if (req->qiov.size % req->dev->conf->logical_block_size) {
3346e790746SPaolo Bonzini         virtio_blk_rw_complete(req, -EIO);
3356e790746SPaolo Bonzini         return;
3366e790746SPaolo Bonzini     }
3376e790746SPaolo Bonzini     bdrv_aio_readv(req->dev->bs, sector, &req->qiov,
3386e790746SPaolo Bonzini                    req->qiov.size / BDRV_SECTOR_SIZE,
3396e790746SPaolo Bonzini                    virtio_blk_rw_complete, req);
3406e790746SPaolo Bonzini }
3416e790746SPaolo Bonzini 
3426e790746SPaolo Bonzini static void virtio_blk_handle_request(VirtIOBlockReq *req,
3436e790746SPaolo Bonzini     MultiReqBuffer *mrb)
3446e790746SPaolo Bonzini {
3456e790746SPaolo Bonzini     uint32_t type;
3466e790746SPaolo Bonzini 
3476e790746SPaolo Bonzini     if (req->elem.out_num < 1 || req->elem.in_num < 1) {
3486e790746SPaolo Bonzini         error_report("virtio-blk missing headers");
3496e790746SPaolo Bonzini         exit(1);
3506e790746SPaolo Bonzini     }
3516e790746SPaolo Bonzini 
3526e790746SPaolo Bonzini     if (req->elem.out_sg[0].iov_len < sizeof(*req->out) ||
3536e790746SPaolo Bonzini         req->elem.in_sg[req->elem.in_num - 1].iov_len < sizeof(*req->in)) {
3546e790746SPaolo Bonzini         error_report("virtio-blk header not in correct element");
3556e790746SPaolo Bonzini         exit(1);
3566e790746SPaolo Bonzini     }
3576e790746SPaolo Bonzini 
3586e790746SPaolo Bonzini     req->out = (void *)req->elem.out_sg[0].iov_base;
3596e790746SPaolo Bonzini     req->in = (void *)req->elem.in_sg[req->elem.in_num - 1].iov_base;
3606e790746SPaolo Bonzini 
3616e790746SPaolo Bonzini     type = ldl_p(&req->out->type);
3626e790746SPaolo Bonzini 
3636e790746SPaolo Bonzini     if (type & VIRTIO_BLK_T_FLUSH) {
3646e790746SPaolo Bonzini         virtio_blk_handle_flush(req, mrb);
3656e790746SPaolo Bonzini     } else if (type & VIRTIO_BLK_T_SCSI_CMD) {
3666e790746SPaolo Bonzini         virtio_blk_handle_scsi(req);
3676e790746SPaolo Bonzini     } else if (type & VIRTIO_BLK_T_GET_ID) {
3686e790746SPaolo Bonzini         VirtIOBlock *s = req->dev;
3696e790746SPaolo Bonzini 
3706e790746SPaolo Bonzini         /*
3716e790746SPaolo Bonzini          * NB: per existing s/n string convention the string is
3726e790746SPaolo Bonzini          * terminated by '\0' only when shorter than buffer.
3736e790746SPaolo Bonzini          */
3746e790746SPaolo Bonzini         strncpy(req->elem.in_sg[0].iov_base,
3756e790746SPaolo Bonzini                 s->blk.serial ? s->blk.serial : "",
3766e790746SPaolo Bonzini                 MIN(req->elem.in_sg[0].iov_len, VIRTIO_BLK_ID_BYTES));
3776e790746SPaolo Bonzini         virtio_blk_req_complete(req, VIRTIO_BLK_S_OK);
3786e790746SPaolo Bonzini         g_free(req);
3796e790746SPaolo Bonzini     } else if (type & VIRTIO_BLK_T_OUT) {
3806e790746SPaolo Bonzini         qemu_iovec_init_external(&req->qiov, &req->elem.out_sg[1],
3816e790746SPaolo Bonzini                                  req->elem.out_num - 1);
3826e790746SPaolo Bonzini         virtio_blk_handle_write(req, mrb);
3836e790746SPaolo Bonzini     } else if (type == VIRTIO_BLK_T_IN || type == VIRTIO_BLK_T_BARRIER) {
3846e790746SPaolo Bonzini         /* VIRTIO_BLK_T_IN is 0, so we can't just & it. */
3856e790746SPaolo Bonzini         qemu_iovec_init_external(&req->qiov, &req->elem.in_sg[0],
3866e790746SPaolo Bonzini                                  req->elem.in_num - 1);
3876e790746SPaolo Bonzini         virtio_blk_handle_read(req);
3886e790746SPaolo Bonzini     } else {
3896e790746SPaolo Bonzini         virtio_blk_req_complete(req, VIRTIO_BLK_S_UNSUPP);
3906e790746SPaolo Bonzini         g_free(req);
3916e790746SPaolo Bonzini     }
3926e790746SPaolo Bonzini }
3936e790746SPaolo Bonzini 
3946e790746SPaolo Bonzini static void virtio_blk_handle_output(VirtIODevice *vdev, VirtQueue *vq)
3956e790746SPaolo Bonzini {
3966e790746SPaolo Bonzini     VirtIOBlock *s = VIRTIO_BLK(vdev);
3976e790746SPaolo Bonzini     VirtIOBlockReq *req;
3986e790746SPaolo Bonzini     MultiReqBuffer mrb = {
3996e790746SPaolo Bonzini         .num_writes = 0,
4006e790746SPaolo Bonzini     };
4016e790746SPaolo Bonzini 
4026e790746SPaolo Bonzini #ifdef CONFIG_VIRTIO_BLK_DATA_PLANE
4036e790746SPaolo Bonzini     /* Some guests kick before setting VIRTIO_CONFIG_S_DRIVER_OK so start
4046e790746SPaolo Bonzini      * dataplane here instead of waiting for .set_status().
4056e790746SPaolo Bonzini      */
4066e790746SPaolo Bonzini     if (s->dataplane) {
4076e790746SPaolo Bonzini         virtio_blk_data_plane_start(s->dataplane);
4086e790746SPaolo Bonzini         return;
4096e790746SPaolo Bonzini     }
4106e790746SPaolo Bonzini #endif
4116e790746SPaolo Bonzini 
4126e790746SPaolo Bonzini     while ((req = virtio_blk_get_request(s))) {
4136e790746SPaolo Bonzini         virtio_blk_handle_request(req, &mrb);
4146e790746SPaolo Bonzini     }
4156e790746SPaolo Bonzini 
4166e790746SPaolo Bonzini     virtio_submit_multiwrite(s->bs, &mrb);
4176e790746SPaolo Bonzini 
4186e790746SPaolo Bonzini     /*
4196e790746SPaolo Bonzini      * FIXME: Want to check for completions before returning to guest mode,
4206e790746SPaolo Bonzini      * so cached reads and writes are reported as quickly as possible. But
4216e790746SPaolo Bonzini      * that should be done in the generic block layer.
4226e790746SPaolo Bonzini      */
4236e790746SPaolo Bonzini }
4246e790746SPaolo Bonzini 
4256e790746SPaolo Bonzini static void virtio_blk_dma_restart_bh(void *opaque)
4266e790746SPaolo Bonzini {
4276e790746SPaolo Bonzini     VirtIOBlock *s = opaque;
4286e790746SPaolo Bonzini     VirtIOBlockReq *req = s->rq;
4296e790746SPaolo Bonzini     MultiReqBuffer mrb = {
4306e790746SPaolo Bonzini         .num_writes = 0,
4316e790746SPaolo Bonzini     };
4326e790746SPaolo Bonzini 
4336e790746SPaolo Bonzini     qemu_bh_delete(s->bh);
4346e790746SPaolo Bonzini     s->bh = NULL;
4356e790746SPaolo Bonzini 
4366e790746SPaolo Bonzini     s->rq = NULL;
4376e790746SPaolo Bonzini 
4386e790746SPaolo Bonzini     while (req) {
4396e790746SPaolo Bonzini         virtio_blk_handle_request(req, &mrb);
4406e790746SPaolo Bonzini         req = req->next;
4416e790746SPaolo Bonzini     }
4426e790746SPaolo Bonzini 
4436e790746SPaolo Bonzini     virtio_submit_multiwrite(s->bs, &mrb);
4446e790746SPaolo Bonzini }
4456e790746SPaolo Bonzini 
4466e790746SPaolo Bonzini static void virtio_blk_dma_restart_cb(void *opaque, int running,
4476e790746SPaolo Bonzini                                       RunState state)
4486e790746SPaolo Bonzini {
4496e790746SPaolo Bonzini     VirtIOBlock *s = opaque;
4506e790746SPaolo Bonzini 
4516e790746SPaolo Bonzini     if (!running) {
4526e790746SPaolo Bonzini         return;
4536e790746SPaolo Bonzini     }
4546e790746SPaolo Bonzini 
4556e790746SPaolo Bonzini     if (!s->bh) {
4566e790746SPaolo Bonzini         s->bh = qemu_bh_new(virtio_blk_dma_restart_bh, s);
4576e790746SPaolo Bonzini         qemu_bh_schedule(s->bh);
4586e790746SPaolo Bonzini     }
4596e790746SPaolo Bonzini }
4606e790746SPaolo Bonzini 
4616e790746SPaolo Bonzini static void virtio_blk_reset(VirtIODevice *vdev)
4626e790746SPaolo Bonzini {
4636e790746SPaolo Bonzini     VirtIOBlock *s = VIRTIO_BLK(vdev);
4646e790746SPaolo Bonzini 
465*ef5bc962SPaolo Bonzini #ifdef CONFIG_VIRTIO_BLK_DATA_PLANE
4666e790746SPaolo Bonzini     if (s->dataplane) {
4676e790746SPaolo Bonzini         virtio_blk_data_plane_stop(s->dataplane);
4686e790746SPaolo Bonzini     }
4696e790746SPaolo Bonzini #endif
4706e790746SPaolo Bonzini 
4716e790746SPaolo Bonzini     /*
4726e790746SPaolo Bonzini      * This should cancel pending requests, but can't do nicely until there
4736e790746SPaolo Bonzini      * are per-device request lists.
4746e790746SPaolo Bonzini      */
4756e790746SPaolo Bonzini     bdrv_drain_all();
476*ef5bc962SPaolo Bonzini     bdrv_set_enable_write_cache(s->bs, s->original_wce);
4776e790746SPaolo Bonzini }
4786e790746SPaolo Bonzini 
4796e790746SPaolo Bonzini /* coalesce internal state, copy to pci i/o region 0
4806e790746SPaolo Bonzini  */
4816e790746SPaolo Bonzini static void virtio_blk_update_config(VirtIODevice *vdev, uint8_t *config)
4826e790746SPaolo Bonzini {
4836e790746SPaolo Bonzini     VirtIOBlock *s = VIRTIO_BLK(vdev);
4846e790746SPaolo Bonzini     struct virtio_blk_config blkcfg;
4856e790746SPaolo Bonzini     uint64_t capacity;
4866e790746SPaolo Bonzini     int blk_size = s->conf->logical_block_size;
4876e790746SPaolo Bonzini 
4886e790746SPaolo Bonzini     bdrv_get_geometry(s->bs, &capacity);
4896e790746SPaolo Bonzini     memset(&blkcfg, 0, sizeof(blkcfg));
4906e790746SPaolo Bonzini     stq_raw(&blkcfg.capacity, capacity);
4916e790746SPaolo Bonzini     stl_raw(&blkcfg.seg_max, 128 - 2);
4926e790746SPaolo Bonzini     stw_raw(&blkcfg.cylinders, s->conf->cyls);
4936e790746SPaolo Bonzini     stl_raw(&blkcfg.blk_size, blk_size);
4946e790746SPaolo Bonzini     stw_raw(&blkcfg.min_io_size, s->conf->min_io_size / blk_size);
4956e790746SPaolo Bonzini     stw_raw(&blkcfg.opt_io_size, s->conf->opt_io_size / blk_size);
4966e790746SPaolo Bonzini     blkcfg.heads = s->conf->heads;
4976e790746SPaolo Bonzini     /*
4986e790746SPaolo Bonzini      * We must ensure that the block device capacity is a multiple of
499e03ba136SPeter Maydell      * the logical block size. If that is not the case, let's use
5006e790746SPaolo Bonzini      * sector_mask to adopt the geometry to have a correct picture.
5016e790746SPaolo Bonzini      * For those devices where the capacity is ok for the given geometry
502e03ba136SPeter Maydell      * we don't touch the sector value of the geometry, since some devices
5036e790746SPaolo Bonzini      * (like s390 dasd) need a specific value. Here the capacity is already
5046e790746SPaolo Bonzini      * cyls*heads*secs*blk_size and the sector value is not block size
5056e790746SPaolo Bonzini      * divided by 512 - instead it is the amount of blk_size blocks
5066e790746SPaolo Bonzini      * per track (cylinder).
5076e790746SPaolo Bonzini      */
5086e790746SPaolo Bonzini     if (bdrv_getlength(s->bs) /  s->conf->heads / s->conf->secs % blk_size) {
5096e790746SPaolo Bonzini         blkcfg.sectors = s->conf->secs & ~s->sector_mask;
5106e790746SPaolo Bonzini     } else {
5116e790746SPaolo Bonzini         blkcfg.sectors = s->conf->secs;
5126e790746SPaolo Bonzini     }
5136e790746SPaolo Bonzini     blkcfg.size_max = 0;
5146e790746SPaolo Bonzini     blkcfg.physical_block_exp = get_physical_block_exp(s->conf);
5156e790746SPaolo Bonzini     blkcfg.alignment_offset = 0;
5166e790746SPaolo Bonzini     blkcfg.wce = bdrv_enable_write_cache(s->bs);
5176e790746SPaolo Bonzini     memcpy(config, &blkcfg, sizeof(struct virtio_blk_config));
5186e790746SPaolo Bonzini }
5196e790746SPaolo Bonzini 
5206e790746SPaolo Bonzini static void virtio_blk_set_config(VirtIODevice *vdev, const uint8_t *config)
5216e790746SPaolo Bonzini {
5226e790746SPaolo Bonzini     VirtIOBlock *s = VIRTIO_BLK(vdev);
5236e790746SPaolo Bonzini     struct virtio_blk_config blkcfg;
5246e790746SPaolo Bonzini 
5256e790746SPaolo Bonzini     memcpy(&blkcfg, config, sizeof(blkcfg));
5266e790746SPaolo Bonzini     bdrv_set_enable_write_cache(s->bs, blkcfg.wce != 0);
5276e790746SPaolo Bonzini }
5286e790746SPaolo Bonzini 
5296e790746SPaolo Bonzini static uint32_t virtio_blk_get_features(VirtIODevice *vdev, uint32_t features)
5306e790746SPaolo Bonzini {
5316e790746SPaolo Bonzini     VirtIOBlock *s = VIRTIO_BLK(vdev);
5326e790746SPaolo Bonzini 
5336e790746SPaolo Bonzini     features |= (1 << VIRTIO_BLK_F_SEG_MAX);
5346e790746SPaolo Bonzini     features |= (1 << VIRTIO_BLK_F_GEOMETRY);
5356e790746SPaolo Bonzini     features |= (1 << VIRTIO_BLK_F_TOPOLOGY);
5366e790746SPaolo Bonzini     features |= (1 << VIRTIO_BLK_F_BLK_SIZE);
5376e790746SPaolo Bonzini     features |= (1 << VIRTIO_BLK_F_SCSI);
5386e790746SPaolo Bonzini 
5396e790746SPaolo Bonzini     if (s->blk.config_wce) {
5406e790746SPaolo Bonzini         features |= (1 << VIRTIO_BLK_F_CONFIG_WCE);
5416e790746SPaolo Bonzini     }
5426e790746SPaolo Bonzini     if (bdrv_enable_write_cache(s->bs))
5436e790746SPaolo Bonzini         features |= (1 << VIRTIO_BLK_F_WCE);
5446e790746SPaolo Bonzini 
5456e790746SPaolo Bonzini     if (bdrv_is_read_only(s->bs))
5466e790746SPaolo Bonzini         features |= 1 << VIRTIO_BLK_F_RO;
5476e790746SPaolo Bonzini 
5486e790746SPaolo Bonzini     return features;
5496e790746SPaolo Bonzini }
5506e790746SPaolo Bonzini 
5516e790746SPaolo Bonzini static void virtio_blk_set_status(VirtIODevice *vdev, uint8_t status)
5526e790746SPaolo Bonzini {
5536e790746SPaolo Bonzini     VirtIOBlock *s = VIRTIO_BLK(vdev);
5546e790746SPaolo Bonzini     uint32_t features;
5556e790746SPaolo Bonzini 
5566e790746SPaolo Bonzini #ifdef CONFIG_VIRTIO_BLK_DATA_PLANE
5576e790746SPaolo Bonzini     if (s->dataplane && !(status & (VIRTIO_CONFIG_S_DRIVER |
5586e790746SPaolo Bonzini                                     VIRTIO_CONFIG_S_DRIVER_OK))) {
5596e790746SPaolo Bonzini         virtio_blk_data_plane_stop(s->dataplane);
5606e790746SPaolo Bonzini     }
5616e790746SPaolo Bonzini #endif
5626e790746SPaolo Bonzini 
5636e790746SPaolo Bonzini     if (!(status & VIRTIO_CONFIG_S_DRIVER_OK)) {
5646e790746SPaolo Bonzini         return;
5656e790746SPaolo Bonzini     }
5666e790746SPaolo Bonzini 
5676e790746SPaolo Bonzini     features = vdev->guest_features;
568*ef5bc962SPaolo Bonzini 
569*ef5bc962SPaolo Bonzini     /* A guest that supports VIRTIO_BLK_F_CONFIG_WCE must be able to send
570*ef5bc962SPaolo Bonzini      * cache flushes.  Thus, the "auto writethrough" behavior is never
571*ef5bc962SPaolo Bonzini      * necessary for guests that support the VIRTIO_BLK_F_CONFIG_WCE feature.
572*ef5bc962SPaolo Bonzini      * Leaving it enabled would break the following sequence:
573*ef5bc962SPaolo Bonzini      *
574*ef5bc962SPaolo Bonzini      *     Guest started with "-drive cache=writethrough"
575*ef5bc962SPaolo Bonzini      *     Guest sets status to 0
576*ef5bc962SPaolo Bonzini      *     Guest sets DRIVER bit in status field
577*ef5bc962SPaolo Bonzini      *     Guest reads host features (WCE=0, CONFIG_WCE=1)
578*ef5bc962SPaolo Bonzini      *     Guest writes guest features (WCE=0, CONFIG_WCE=1)
579*ef5bc962SPaolo Bonzini      *     Guest writes 1 to the WCE configuration field (writeback mode)
580*ef5bc962SPaolo Bonzini      *     Guest sets DRIVER_OK bit in status field
581*ef5bc962SPaolo Bonzini      *
582*ef5bc962SPaolo Bonzini      * s->bs would erroneously be placed in writethrough mode.
583*ef5bc962SPaolo Bonzini      */
584*ef5bc962SPaolo Bonzini     if (!(features & (1 << VIRTIO_BLK_F_CONFIG_WCE))) {
5856e790746SPaolo Bonzini         bdrv_set_enable_write_cache(s->bs, !!(features & (1 << VIRTIO_BLK_F_WCE)));
5866e790746SPaolo Bonzini     }
587*ef5bc962SPaolo Bonzini }
5886e790746SPaolo Bonzini 
5896e790746SPaolo Bonzini static void virtio_blk_save(QEMUFile *f, void *opaque)
5906e790746SPaolo Bonzini {
5916e790746SPaolo Bonzini     VirtIOBlock *s = opaque;
5926e790746SPaolo Bonzini     VirtIODevice *vdev = VIRTIO_DEVICE(s);
5936e790746SPaolo Bonzini     VirtIOBlockReq *req = s->rq;
5946e790746SPaolo Bonzini 
5956e790746SPaolo Bonzini     virtio_save(vdev, f);
5966e790746SPaolo Bonzini 
5976e790746SPaolo Bonzini     while (req) {
5986e790746SPaolo Bonzini         qemu_put_sbyte(f, 1);
5996e790746SPaolo Bonzini         qemu_put_buffer(f, (unsigned char*)&req->elem, sizeof(req->elem));
6006e790746SPaolo Bonzini         req = req->next;
6016e790746SPaolo Bonzini     }
6026e790746SPaolo Bonzini     qemu_put_sbyte(f, 0);
6036e790746SPaolo Bonzini }
6046e790746SPaolo Bonzini 
6056e790746SPaolo Bonzini static int virtio_blk_load(QEMUFile *f, void *opaque, int version_id)
6066e790746SPaolo Bonzini {
6076e790746SPaolo Bonzini     VirtIOBlock *s = opaque;
6086e790746SPaolo Bonzini     VirtIODevice *vdev = VIRTIO_DEVICE(s);
6096e790746SPaolo Bonzini     int ret;
6106e790746SPaolo Bonzini 
6116e790746SPaolo Bonzini     if (version_id != 2)
6126e790746SPaolo Bonzini         return -EINVAL;
6136e790746SPaolo Bonzini 
6146e790746SPaolo Bonzini     ret = virtio_load(vdev, f);
6156e790746SPaolo Bonzini     if (ret) {
6166e790746SPaolo Bonzini         return ret;
6176e790746SPaolo Bonzini     }
6186e790746SPaolo Bonzini 
6196e790746SPaolo Bonzini     while (qemu_get_sbyte(f)) {
6206e790746SPaolo Bonzini         VirtIOBlockReq *req = virtio_blk_alloc_request(s);
6216e790746SPaolo Bonzini         qemu_get_buffer(f, (unsigned char*)&req->elem, sizeof(req->elem));
6226e790746SPaolo Bonzini         req->next = s->rq;
6236e790746SPaolo Bonzini         s->rq = req;
6246e790746SPaolo Bonzini 
6256e790746SPaolo Bonzini         virtqueue_map_sg(req->elem.in_sg, req->elem.in_addr,
6266e790746SPaolo Bonzini             req->elem.in_num, 1);
6276e790746SPaolo Bonzini         virtqueue_map_sg(req->elem.out_sg, req->elem.out_addr,
6286e790746SPaolo Bonzini             req->elem.out_num, 0);
6296e790746SPaolo Bonzini     }
6306e790746SPaolo Bonzini 
6316e790746SPaolo Bonzini     return 0;
6326e790746SPaolo Bonzini }
6336e790746SPaolo Bonzini 
6346e790746SPaolo Bonzini static void virtio_blk_resize(void *opaque)
6356e790746SPaolo Bonzini {
6366e790746SPaolo Bonzini     VirtIODevice *vdev = VIRTIO_DEVICE(opaque);
6376e790746SPaolo Bonzini 
6386e790746SPaolo Bonzini     virtio_notify_config(vdev);
6396e790746SPaolo Bonzini }
6406e790746SPaolo Bonzini 
6416e790746SPaolo Bonzini static const BlockDevOps virtio_block_ops = {
6426e790746SPaolo Bonzini     .resize_cb = virtio_blk_resize,
6436e790746SPaolo Bonzini };
6446e790746SPaolo Bonzini 
6456e790746SPaolo Bonzini void virtio_blk_set_conf(DeviceState *dev, VirtIOBlkConf *blk)
6466e790746SPaolo Bonzini {
6476e790746SPaolo Bonzini     VirtIOBlock *s = VIRTIO_BLK(dev);
6486e790746SPaolo Bonzini     memcpy(&(s->blk), blk, sizeof(struct VirtIOBlkConf));
6496e790746SPaolo Bonzini }
6506e790746SPaolo Bonzini 
65184db52d0SStefan Hajnoczi #ifdef CONFIG_VIRTIO_BLK_DATA_PLANE
65284db52d0SStefan Hajnoczi /* Disable dataplane thread during live migration since it does not
65384db52d0SStefan Hajnoczi  * update the dirty memory bitmap yet.
65484db52d0SStefan Hajnoczi  */
65584db52d0SStefan Hajnoczi static void virtio_blk_migration_state_changed(Notifier *notifier, void *data)
65684db52d0SStefan Hajnoczi {
65784db52d0SStefan Hajnoczi     VirtIOBlock *s = container_of(notifier, VirtIOBlock,
65884db52d0SStefan Hajnoczi                                   migration_state_notifier);
65984db52d0SStefan Hajnoczi     MigrationState *mig = data;
66084db52d0SStefan Hajnoczi 
66184db52d0SStefan Hajnoczi     if (migration_in_setup(mig)) {
66284db52d0SStefan Hajnoczi         if (!s->dataplane) {
66384db52d0SStefan Hajnoczi             return;
66484db52d0SStefan Hajnoczi         }
66584db52d0SStefan Hajnoczi         virtio_blk_data_plane_destroy(s->dataplane);
66684db52d0SStefan Hajnoczi         s->dataplane = NULL;
66784db52d0SStefan Hajnoczi     } else if (migration_has_finished(mig) ||
66884db52d0SStefan Hajnoczi                migration_has_failed(mig)) {
66984db52d0SStefan Hajnoczi         if (s->dataplane) {
67084db52d0SStefan Hajnoczi             return;
67184db52d0SStefan Hajnoczi         }
67284db52d0SStefan Hajnoczi         bdrv_drain_all(); /* complete in-flight non-dataplane requests */
67384db52d0SStefan Hajnoczi         virtio_blk_data_plane_create(VIRTIO_DEVICE(s), &s->blk,
67484db52d0SStefan Hajnoczi                                      &s->dataplane);
67584db52d0SStefan Hajnoczi     }
67684db52d0SStefan Hajnoczi }
67784db52d0SStefan Hajnoczi #endif /* CONFIG_VIRTIO_BLK_DATA_PLANE */
67884db52d0SStefan Hajnoczi 
6796e790746SPaolo Bonzini static int virtio_blk_device_init(VirtIODevice *vdev)
6806e790746SPaolo Bonzini {
6816e790746SPaolo Bonzini     DeviceState *qdev = DEVICE(vdev);
6826e790746SPaolo Bonzini     VirtIOBlock *s = VIRTIO_BLK(vdev);
6836e790746SPaolo Bonzini     VirtIOBlkConf *blk = &(s->blk);
6846e790746SPaolo Bonzini     static int virtio_blk_id;
6856e790746SPaolo Bonzini 
6866e790746SPaolo Bonzini     if (!blk->conf.bs) {
6876e790746SPaolo Bonzini         error_report("drive property not set");
6886e790746SPaolo Bonzini         return -1;
6896e790746SPaolo Bonzini     }
6906e790746SPaolo Bonzini     if (!bdrv_is_inserted(blk->conf.bs)) {
6916e790746SPaolo Bonzini         error_report("Device needs media, but drive is empty");
6926e790746SPaolo Bonzini         return -1;
6936e790746SPaolo Bonzini     }
6946e790746SPaolo Bonzini 
6956e790746SPaolo Bonzini     blkconf_serial(&blk->conf, &blk->serial);
696*ef5bc962SPaolo Bonzini     s->original_wce = bdrv_enable_write_cache(blk->conf.bs);
6976e790746SPaolo Bonzini     if (blkconf_geometry(&blk->conf, NULL, 65535, 255, 255) < 0) {
6986e790746SPaolo Bonzini         return -1;
6996e790746SPaolo Bonzini     }
7006e790746SPaolo Bonzini 
7016e790746SPaolo Bonzini     virtio_init(vdev, "virtio-blk", VIRTIO_ID_BLOCK,
7026e790746SPaolo Bonzini                 sizeof(struct virtio_blk_config));
7036e790746SPaolo Bonzini 
7046e790746SPaolo Bonzini     s->bs = blk->conf.bs;
7056e790746SPaolo Bonzini     s->conf = &blk->conf;
7066e790746SPaolo Bonzini     memcpy(&(s->blk), blk, sizeof(struct VirtIOBlkConf));
7076e790746SPaolo Bonzini     s->rq = NULL;
7086e790746SPaolo Bonzini     s->sector_mask = (s->conf->logical_block_size / BDRV_SECTOR_SIZE) - 1;
7096e790746SPaolo Bonzini 
7106e790746SPaolo Bonzini     s->vq = virtio_add_queue(vdev, 128, virtio_blk_handle_output);
7116e790746SPaolo Bonzini #ifdef CONFIG_VIRTIO_BLK_DATA_PLANE
7126e790746SPaolo Bonzini     if (!virtio_blk_data_plane_create(vdev, blk, &s->dataplane)) {
7136a1a8cc7SKONRAD Frederic         virtio_cleanup(vdev);
7146e790746SPaolo Bonzini         return -1;
7156e790746SPaolo Bonzini     }
71684db52d0SStefan Hajnoczi     s->migration_state_notifier.notify = virtio_blk_migration_state_changed;
71784db52d0SStefan Hajnoczi     add_migration_state_change_notifier(&s->migration_state_notifier);
7186e790746SPaolo Bonzini #endif
7196e790746SPaolo Bonzini 
7206e790746SPaolo Bonzini     s->change = qemu_add_vm_change_state_handler(virtio_blk_dma_restart_cb, s);
7216e790746SPaolo Bonzini     register_savevm(qdev, "virtio-blk", virtio_blk_id++, 2,
7226e790746SPaolo Bonzini                     virtio_blk_save, virtio_blk_load, s);
7236e790746SPaolo Bonzini     bdrv_set_dev_ops(s->bs, &virtio_block_ops, s);
7246e790746SPaolo Bonzini     bdrv_set_buffer_alignment(s->bs, s->conf->logical_block_size);
7256e790746SPaolo Bonzini 
7266e790746SPaolo Bonzini     bdrv_iostatus_enable(s->bs);
7276e790746SPaolo Bonzini 
7286e790746SPaolo Bonzini     add_boot_device_path(s->conf->bootindex, qdev, "/disk@0,0");
7296e790746SPaolo Bonzini     return 0;
7306e790746SPaolo Bonzini }
7316e790746SPaolo Bonzini 
7326e790746SPaolo Bonzini static int virtio_blk_device_exit(DeviceState *dev)
7336e790746SPaolo Bonzini {
7346e790746SPaolo Bonzini     VirtIODevice *vdev = VIRTIO_DEVICE(dev);
7356e790746SPaolo Bonzini     VirtIOBlock *s = VIRTIO_BLK(dev);
7366e790746SPaolo Bonzini #ifdef CONFIG_VIRTIO_BLK_DATA_PLANE
73784db52d0SStefan Hajnoczi     remove_migration_state_change_notifier(&s->migration_state_notifier);
7386e790746SPaolo Bonzini     virtio_blk_data_plane_destroy(s->dataplane);
7396e790746SPaolo Bonzini     s->dataplane = NULL;
7406e790746SPaolo Bonzini #endif
7416e790746SPaolo Bonzini     qemu_del_vm_change_state_handler(s->change);
7426e790746SPaolo Bonzini     unregister_savevm(dev, "virtio-blk", s);
7436e790746SPaolo Bonzini     blockdev_mark_auto_del(s->bs);
7446a1a8cc7SKONRAD Frederic     virtio_cleanup(vdev);
7456e790746SPaolo Bonzini     return 0;
7466e790746SPaolo Bonzini }
7476e790746SPaolo Bonzini 
7486e790746SPaolo Bonzini static Property virtio_blk_properties[] = {
7496e790746SPaolo Bonzini     DEFINE_VIRTIO_BLK_PROPERTIES(VirtIOBlock, blk),
7506e790746SPaolo Bonzini     DEFINE_PROP_END_OF_LIST(),
7516e790746SPaolo Bonzini };
7526e790746SPaolo Bonzini 
7536e790746SPaolo Bonzini static void virtio_blk_class_init(ObjectClass *klass, void *data)
7546e790746SPaolo Bonzini {
7556e790746SPaolo Bonzini     DeviceClass *dc = DEVICE_CLASS(klass);
7566e790746SPaolo Bonzini     VirtioDeviceClass *vdc = VIRTIO_DEVICE_CLASS(klass);
7576e790746SPaolo Bonzini     dc->exit = virtio_blk_device_exit;
7586e790746SPaolo Bonzini     dc->props = virtio_blk_properties;
759125ee0edSMarcel Apfelbaum     set_bit(DEVICE_CATEGORY_STORAGE, dc->categories);
7606e790746SPaolo Bonzini     vdc->init = virtio_blk_device_init;
7616e790746SPaolo Bonzini     vdc->get_config = virtio_blk_update_config;
7626e790746SPaolo Bonzini     vdc->set_config = virtio_blk_set_config;
7636e790746SPaolo Bonzini     vdc->get_features = virtio_blk_get_features;
7646e790746SPaolo Bonzini     vdc->set_status = virtio_blk_set_status;
7656e790746SPaolo Bonzini     vdc->reset = virtio_blk_reset;
7666e790746SPaolo Bonzini }
7676e790746SPaolo Bonzini 
7686e790746SPaolo Bonzini static const TypeInfo virtio_device_info = {
7696e790746SPaolo Bonzini     .name = TYPE_VIRTIO_BLK,
7706e790746SPaolo Bonzini     .parent = TYPE_VIRTIO_DEVICE,
7716e790746SPaolo Bonzini     .instance_size = sizeof(VirtIOBlock),
7726e790746SPaolo Bonzini     .class_init = virtio_blk_class_init,
7736e790746SPaolo Bonzini };
7746e790746SPaolo Bonzini 
7756e790746SPaolo Bonzini static void virtio_register_types(void)
7766e790746SPaolo Bonzini {
7776e790746SPaolo Bonzini     type_register_static(&virtio_device_info);
7786e790746SPaolo Bonzini }
7796e790746SPaolo Bonzini 
7806e790746SPaolo Bonzini type_init(virtio_register_types)
781