blob: 1dc0e8c02c70017f323273b42fa82cca621f185b [file] [log] [blame]
Avi Kivity6aa8b732006-12-10 02:21:36 -08001/*
2 * Kernel-based Virtual Machine driver for Linux
3 *
4 * This module enables machines with Intel VT-x extensions to run virtual
5 * machines without emulation or binary translation.
6 *
7 * MMU support
8 *
9 * Copyright (C) 2006 Qumranet, Inc.
10 *
11 * Authors:
12 * Yaniv Kamay <yaniv@qumranet.com>
13 * Avi Kivity <avi@qumranet.com>
14 *
15 * This work is licensed under the terms of the GNU GPL, version 2. See
16 * the COPYING file in the top-level directory.
17 *
18 */
Avi Kivity6aa8b732006-12-10 02:21:36 -080019
20#include "vmx.h"
21#include "kvm.h"
Zhang Xiantao34c16ee2007-10-20 15:34:38 +080022#include "x86.h"
Zhang Xiantao1d737c82007-12-14 09:35:10 +080023#include "mmu.h"
Avi Kivity6aa8b732006-12-10 02:21:36 -080024
Avi Kivitye4956062007-06-28 14:15:57 -040025#include <linux/types.h>
26#include <linux/string.h>
27#include <linux/mm.h>
28#include <linux/highmem.h>
29#include <linux/module.h>
Izik Eidus448353c2007-11-26 14:08:14 +020030#include <linux/swap.h>
Avi Kivitye4956062007-06-28 14:15:57 -040031
32#include <asm/page.h>
33#include <asm/cmpxchg.h>
Avi Kivity4e542372007-11-21 14:08:40 +020034#include <asm/io.h>
Avi Kivitye4956062007-06-28 14:15:57 -040035
Avi Kivity37a7d8b2007-01-05 16:36:56 -080036#undef MMU_DEBUG
37
38#undef AUDIT
39
40#ifdef AUDIT
41static void kvm_mmu_audit(struct kvm_vcpu *vcpu, const char *msg);
42#else
43static void kvm_mmu_audit(struct kvm_vcpu *vcpu, const char *msg) {}
44#endif
45
46#ifdef MMU_DEBUG
47
48#define pgprintk(x...) do { if (dbg) printk(x); } while (0)
49#define rmap_printk(x...) do { if (dbg) printk(x); } while (0)
50
51#else
52
53#define pgprintk(x...) do { } while (0)
54#define rmap_printk(x...) do { } while (0)
55
56#endif
57
58#if defined(MMU_DEBUG) || defined(AUDIT)
59static int dbg = 1;
60#endif
Avi Kivity6aa8b732006-12-10 02:21:36 -080061
Yaozu Dongd6c69ee2007-04-25 14:17:25 +080062#ifndef MMU_DEBUG
63#define ASSERT(x) do { } while (0)
64#else
Avi Kivity6aa8b732006-12-10 02:21:36 -080065#define ASSERT(x) \
66 if (!(x)) { \
67 printk(KERN_WARNING "assertion failed %s:%d: %s\n", \
68 __FILE__, __LINE__, #x); \
69 }
Yaozu Dongd6c69ee2007-04-25 14:17:25 +080070#endif
Avi Kivity6aa8b732006-12-10 02:21:36 -080071
Avi Kivitycea0f0e2007-01-05 16:36:43 -080072#define PT64_PT_BITS 9
73#define PT64_ENT_PER_PAGE (1 << PT64_PT_BITS)
74#define PT32_PT_BITS 10
75#define PT32_ENT_PER_PAGE (1 << PT32_PT_BITS)
Avi Kivity6aa8b732006-12-10 02:21:36 -080076
77#define PT_WRITABLE_SHIFT 1
78
79#define PT_PRESENT_MASK (1ULL << 0)
80#define PT_WRITABLE_MASK (1ULL << PT_WRITABLE_SHIFT)
81#define PT_USER_MASK (1ULL << 2)
82#define PT_PWT_MASK (1ULL << 3)
83#define PT_PCD_MASK (1ULL << 4)
84#define PT_ACCESSED_MASK (1ULL << 5)
85#define PT_DIRTY_MASK (1ULL << 6)
86#define PT_PAGE_SIZE_MASK (1ULL << 7)
87#define PT_PAT_MASK (1ULL << 7)
88#define PT_GLOBAL_MASK (1ULL << 8)
Avi Kivityfe135d22007-12-09 16:15:46 +020089#define PT64_NX_SHIFT 63
90#define PT64_NX_MASK (1ULL << PT64_NX_SHIFT)
Avi Kivity6aa8b732006-12-10 02:21:36 -080091
92#define PT_PAT_SHIFT 7
93#define PT_DIR_PAT_SHIFT 12
94#define PT_DIR_PAT_MASK (1ULL << PT_DIR_PAT_SHIFT)
95
96#define PT32_DIR_PSE36_SIZE 4
97#define PT32_DIR_PSE36_SHIFT 13
Mike Dayd77c26f2007-10-08 09:02:08 -040098#define PT32_DIR_PSE36_MASK \
99 (((1ULL << PT32_DIR_PSE36_SIZE) - 1) << PT32_DIR_PSE36_SHIFT)
Avi Kivity6aa8b732006-12-10 02:21:36 -0800100
101
Avi Kivity6aa8b732006-12-10 02:21:36 -0800102#define PT_FIRST_AVAIL_BITS_SHIFT 9
103#define PT64_SECOND_AVAIL_BITS_SHIFT 52
104
Avi Kivity6aa8b732006-12-10 02:21:36 -0800105#define PT_SHADOW_IO_MARK (1ULL << PT_FIRST_AVAIL_BITS_SHIFT)
106
Avi Kivity6aa8b732006-12-10 02:21:36 -0800107#define VALID_PAGE(x) ((x) != INVALID_PAGE)
108
109#define PT64_LEVEL_BITS 9
110
111#define PT64_LEVEL_SHIFT(level) \
Mike Dayd77c26f2007-10-08 09:02:08 -0400112 (PAGE_SHIFT + (level - 1) * PT64_LEVEL_BITS)
Avi Kivity6aa8b732006-12-10 02:21:36 -0800113
114#define PT64_LEVEL_MASK(level) \
115 (((1ULL << PT64_LEVEL_BITS) - 1) << PT64_LEVEL_SHIFT(level))
116
117#define PT64_INDEX(address, level)\
118 (((address) >> PT64_LEVEL_SHIFT(level)) & ((1 << PT64_LEVEL_BITS) - 1))
119
120
121#define PT32_LEVEL_BITS 10
122
123#define PT32_LEVEL_SHIFT(level) \
Mike Dayd77c26f2007-10-08 09:02:08 -0400124 (PAGE_SHIFT + (level - 1) * PT32_LEVEL_BITS)
Avi Kivity6aa8b732006-12-10 02:21:36 -0800125
126#define PT32_LEVEL_MASK(level) \
127 (((1ULL << PT32_LEVEL_BITS) - 1) << PT32_LEVEL_SHIFT(level))
128
129#define PT32_INDEX(address, level)\
130 (((address) >> PT32_LEVEL_SHIFT(level)) & ((1 << PT32_LEVEL_BITS) - 1))
131
132
Avi Kivity27aba762007-03-09 13:04:31 +0200133#define PT64_BASE_ADDR_MASK (((1ULL << 52) - 1) & ~(u64)(PAGE_SIZE-1))
Avi Kivity6aa8b732006-12-10 02:21:36 -0800134#define PT64_DIR_BASE_ADDR_MASK \
135 (PT64_BASE_ADDR_MASK & ~((1ULL << (PAGE_SHIFT + PT64_LEVEL_BITS)) - 1))
136
137#define PT32_BASE_ADDR_MASK PAGE_MASK
138#define PT32_DIR_BASE_ADDR_MASK \
139 (PAGE_MASK & ~((1ULL << (PAGE_SHIFT + PT32_LEVEL_BITS)) - 1))
140
Avi Kivity79539ce2007-11-21 02:06:21 +0200141#define PT64_PERM_MASK (PT_PRESENT_MASK | PT_WRITABLE_MASK | PT_USER_MASK \
142 | PT64_NX_MASK)
Avi Kivity6aa8b732006-12-10 02:21:36 -0800143
144#define PFERR_PRESENT_MASK (1U << 0)
145#define PFERR_WRITE_MASK (1U << 1)
146#define PFERR_USER_MASK (1U << 2)
Avi Kivity73b10872007-01-26 00:56:41 -0800147#define PFERR_FETCH_MASK (1U << 4)
Avi Kivity6aa8b732006-12-10 02:21:36 -0800148
149#define PT64_ROOT_LEVEL 4
150#define PT32_ROOT_LEVEL 2
151#define PT32E_ROOT_LEVEL 3
152
153#define PT_DIRECTORY_LEVEL 2
154#define PT_PAGE_TABLE_LEVEL 1
155
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800156#define RMAP_EXT 4
157
Avi Kivityfe135d22007-12-09 16:15:46 +0200158#define ACC_EXEC_MASK 1
159#define ACC_WRITE_MASK PT_WRITABLE_MASK
160#define ACC_USER_MASK PT_USER_MASK
161#define ACC_ALL (ACC_EXEC_MASK | ACC_WRITE_MASK | ACC_USER_MASK)
162
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800163struct kvm_rmap_desc {
164 u64 *shadow_ptes[RMAP_EXT];
165 struct kvm_rmap_desc *more;
166};
167
Avi Kivityb5a33a72007-04-15 16:31:09 +0300168static struct kmem_cache *pte_chain_cache;
169static struct kmem_cache *rmap_desc_cache;
Avi Kivityd3d25b02007-05-30 12:34:53 +0300170static struct kmem_cache *mmu_page_header_cache;
Avi Kivityb5a33a72007-04-15 16:31:09 +0300171
Avi Kivityc7addb92007-09-16 18:58:32 +0200172static u64 __read_mostly shadow_trap_nonpresent_pte;
173static u64 __read_mostly shadow_notrap_nonpresent_pte;
174
175void kvm_mmu_set_nonpresent_ptes(u64 trap_pte, u64 notrap_pte)
176{
177 shadow_trap_nonpresent_pte = trap_pte;
178 shadow_notrap_nonpresent_pte = notrap_pte;
179}
180EXPORT_SYMBOL_GPL(kvm_mmu_set_nonpresent_ptes);
181
Avi Kivity6aa8b732006-12-10 02:21:36 -0800182static int is_write_protection(struct kvm_vcpu *vcpu)
183{
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800184 return vcpu->arch.cr0 & X86_CR0_WP;
Avi Kivity6aa8b732006-12-10 02:21:36 -0800185}
186
187static int is_cpuid_PSE36(void)
188{
189 return 1;
190}
191
Avi Kivity73b10872007-01-26 00:56:41 -0800192static int is_nx(struct kvm_vcpu *vcpu)
193{
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800194 return vcpu->arch.shadow_efer & EFER_NX;
Avi Kivity73b10872007-01-26 00:56:41 -0800195}
196
Avi Kivity6aa8b732006-12-10 02:21:36 -0800197static int is_present_pte(unsigned long pte)
198{
199 return pte & PT_PRESENT_MASK;
200}
201
Avi Kivityc7addb92007-09-16 18:58:32 +0200202static int is_shadow_present_pte(u64 pte)
203{
204 pte &= ~PT_SHADOW_IO_MARK;
205 return pte != shadow_trap_nonpresent_pte
206 && pte != shadow_notrap_nonpresent_pte;
207}
208
Avi Kivity6aa8b732006-12-10 02:21:36 -0800209static int is_writeble_pte(unsigned long pte)
210{
211 return pte & PT_WRITABLE_MASK;
212}
213
Avi Kivitye3c5e7ec2007-10-11 12:32:30 +0200214static int is_dirty_pte(unsigned long pte)
215{
216 return pte & PT_DIRTY_MASK;
217}
218
Avi Kivity6aa8b732006-12-10 02:21:36 -0800219static int is_io_pte(unsigned long pte)
220{
221 return pte & PT_SHADOW_IO_MARK;
222}
223
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800224static int is_rmap_pte(u64 pte)
225{
Izik Eidus9647c142007-10-16 14:43:46 +0200226 return pte != shadow_trap_nonpresent_pte
227 && pte != shadow_notrap_nonpresent_pte;
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800228}
229
Avi Kivityda928522007-11-21 13:54:47 +0200230static gfn_t pse36_gfn_delta(u32 gpte)
231{
232 int shift = 32 - PT32_DIR_PSE36_SHIFT - PAGE_SHIFT;
233
234 return (gpte & PT32_DIR_PSE36_MASK) << shift;
235}
236
Avi Kivitye663ee62007-05-31 15:46:04 +0300237static void set_shadow_pte(u64 *sptep, u64 spte)
238{
239#ifdef CONFIG_X86_64
240 set_64bit((unsigned long *)sptep, spte);
241#else
242 set_64bit((unsigned long long *)sptep, spte);
243#endif
244}
245
Avi Kivitye2dec932007-01-05 16:36:54 -0800246static int mmu_topup_memory_cache(struct kvm_mmu_memory_cache *cache,
Avi Kivity2e3e5882007-09-10 11:28:17 +0300247 struct kmem_cache *base_cache, int min)
Avi Kivity714b93d2007-01-05 16:36:53 -0800248{
249 void *obj;
250
251 if (cache->nobjs >= min)
Avi Kivitye2dec932007-01-05 16:36:54 -0800252 return 0;
Avi Kivity714b93d2007-01-05 16:36:53 -0800253 while (cache->nobjs < ARRAY_SIZE(cache->objects)) {
Avi Kivity2e3e5882007-09-10 11:28:17 +0300254 obj = kmem_cache_zalloc(base_cache, GFP_KERNEL);
Avi Kivity714b93d2007-01-05 16:36:53 -0800255 if (!obj)
Avi Kivitye2dec932007-01-05 16:36:54 -0800256 return -ENOMEM;
Avi Kivity714b93d2007-01-05 16:36:53 -0800257 cache->objects[cache->nobjs++] = obj;
258 }
Avi Kivitye2dec932007-01-05 16:36:54 -0800259 return 0;
Avi Kivity714b93d2007-01-05 16:36:53 -0800260}
261
262static void mmu_free_memory_cache(struct kvm_mmu_memory_cache *mc)
263{
264 while (mc->nobjs)
265 kfree(mc->objects[--mc->nobjs]);
266}
267
Avi Kivityc1158e62007-07-20 08:18:27 +0300268static int mmu_topup_memory_cache_page(struct kvm_mmu_memory_cache *cache,
Avi Kivity2e3e5882007-09-10 11:28:17 +0300269 int min)
Avi Kivityc1158e62007-07-20 08:18:27 +0300270{
271 struct page *page;
272
273 if (cache->nobjs >= min)
274 return 0;
275 while (cache->nobjs < ARRAY_SIZE(cache->objects)) {
Avi Kivity2e3e5882007-09-10 11:28:17 +0300276 page = alloc_page(GFP_KERNEL);
Avi Kivityc1158e62007-07-20 08:18:27 +0300277 if (!page)
278 return -ENOMEM;
279 set_page_private(page, 0);
280 cache->objects[cache->nobjs++] = page_address(page);
281 }
282 return 0;
283}
284
285static void mmu_free_memory_cache_page(struct kvm_mmu_memory_cache *mc)
286{
287 while (mc->nobjs)
Avi Kivityc4d198d2007-07-21 09:06:46 +0300288 free_page((unsigned long)mc->objects[--mc->nobjs]);
Avi Kivityc1158e62007-07-20 08:18:27 +0300289}
290
Avi Kivity8c438502007-04-16 11:53:17 +0300291static int mmu_topup_memory_caches(struct kvm_vcpu *vcpu)
292{
293 int r;
294
Avi Kivity22d95b12007-09-14 20:26:06 +0300295 kvm_mmu_free_some_pages(vcpu);
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800296 r = mmu_topup_memory_cache(&vcpu->arch.mmu_pte_chain_cache,
Avi Kivity2e3e5882007-09-10 11:28:17 +0300297 pte_chain_cache, 4);
298 if (r)
299 goto out;
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800300 r = mmu_topup_memory_cache(&vcpu->arch.mmu_rmap_desc_cache,
Avi Kivity2e3e5882007-09-10 11:28:17 +0300301 rmap_desc_cache, 1);
302 if (r)
303 goto out;
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800304 r = mmu_topup_memory_cache_page(&vcpu->arch.mmu_page_cache, 8);
Avi Kivity2e3e5882007-09-10 11:28:17 +0300305 if (r)
306 goto out;
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800307 r = mmu_topup_memory_cache(&vcpu->arch.mmu_page_header_cache,
Avi Kivity2e3e5882007-09-10 11:28:17 +0300308 mmu_page_header_cache, 4);
309out:
Avi Kivity8c438502007-04-16 11:53:17 +0300310 return r;
311}
312
Avi Kivity714b93d2007-01-05 16:36:53 -0800313static void mmu_free_memory_caches(struct kvm_vcpu *vcpu)
314{
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800315 mmu_free_memory_cache(&vcpu->arch.mmu_pte_chain_cache);
316 mmu_free_memory_cache(&vcpu->arch.mmu_rmap_desc_cache);
317 mmu_free_memory_cache_page(&vcpu->arch.mmu_page_cache);
318 mmu_free_memory_cache(&vcpu->arch.mmu_page_header_cache);
Avi Kivity714b93d2007-01-05 16:36:53 -0800319}
320
321static void *mmu_memory_cache_alloc(struct kvm_mmu_memory_cache *mc,
322 size_t size)
323{
324 void *p;
325
326 BUG_ON(!mc->nobjs);
327 p = mc->objects[--mc->nobjs];
328 memset(p, 0, size);
329 return p;
330}
331
Avi Kivity714b93d2007-01-05 16:36:53 -0800332static struct kvm_pte_chain *mmu_alloc_pte_chain(struct kvm_vcpu *vcpu)
333{
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800334 return mmu_memory_cache_alloc(&vcpu->arch.mmu_pte_chain_cache,
Avi Kivity714b93d2007-01-05 16:36:53 -0800335 sizeof(struct kvm_pte_chain));
336}
337
Avi Kivity90cb0522007-07-17 13:04:56 +0300338static void mmu_free_pte_chain(struct kvm_pte_chain *pc)
Avi Kivity714b93d2007-01-05 16:36:53 -0800339{
Avi Kivity90cb0522007-07-17 13:04:56 +0300340 kfree(pc);
Avi Kivity714b93d2007-01-05 16:36:53 -0800341}
342
343static struct kvm_rmap_desc *mmu_alloc_rmap_desc(struct kvm_vcpu *vcpu)
344{
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800345 return mmu_memory_cache_alloc(&vcpu->arch.mmu_rmap_desc_cache,
Avi Kivity714b93d2007-01-05 16:36:53 -0800346 sizeof(struct kvm_rmap_desc));
347}
348
Avi Kivity90cb0522007-07-17 13:04:56 +0300349static void mmu_free_rmap_desc(struct kvm_rmap_desc *rd)
Avi Kivity714b93d2007-01-05 16:36:53 -0800350{
Avi Kivity90cb0522007-07-17 13:04:56 +0300351 kfree(rd);
Avi Kivity714b93d2007-01-05 16:36:53 -0800352}
353
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800354/*
Izik Eidus290fc382007-09-27 14:11:22 +0200355 * Take gfn and return the reverse mapping to it.
356 * Note: gfn must be unaliased before this function get called
357 */
358
359static unsigned long *gfn_to_rmap(struct kvm *kvm, gfn_t gfn)
360{
361 struct kvm_memory_slot *slot;
362
363 slot = gfn_to_memslot(kvm, gfn);
364 return &slot->rmap[gfn - slot->base_gfn];
365}
366
367/*
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800368 * Reverse mapping data structures:
369 *
Izik Eidus290fc382007-09-27 14:11:22 +0200370 * If rmapp bit zero is zero, then rmapp point to the shadw page table entry
371 * that points to page_address(page).
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800372 *
Izik Eidus290fc382007-09-27 14:11:22 +0200373 * If rmapp bit zero is one, (then rmap & ~1) points to a struct kvm_rmap_desc
374 * containing more mappings.
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800375 */
Izik Eidus290fc382007-09-27 14:11:22 +0200376static void rmap_add(struct kvm_vcpu *vcpu, u64 *spte, gfn_t gfn)
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800377{
Avi Kivity4db35312007-11-21 15:28:32 +0200378 struct kvm_mmu_page *sp;
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800379 struct kvm_rmap_desc *desc;
Izik Eidus290fc382007-09-27 14:11:22 +0200380 unsigned long *rmapp;
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800381 int i;
382
383 if (!is_rmap_pte(*spte))
384 return;
Izik Eidus290fc382007-09-27 14:11:22 +0200385 gfn = unalias_gfn(vcpu->kvm, gfn);
Avi Kivity4db35312007-11-21 15:28:32 +0200386 sp = page_header(__pa(spte));
387 sp->gfns[spte - sp->spt] = gfn;
Izik Eidus290fc382007-09-27 14:11:22 +0200388 rmapp = gfn_to_rmap(vcpu->kvm, gfn);
389 if (!*rmapp) {
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800390 rmap_printk("rmap_add: %p %llx 0->1\n", spte, *spte);
Izik Eidus290fc382007-09-27 14:11:22 +0200391 *rmapp = (unsigned long)spte;
392 } else if (!(*rmapp & 1)) {
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800393 rmap_printk("rmap_add: %p %llx 1->many\n", spte, *spte);
Avi Kivity714b93d2007-01-05 16:36:53 -0800394 desc = mmu_alloc_rmap_desc(vcpu);
Izik Eidus290fc382007-09-27 14:11:22 +0200395 desc->shadow_ptes[0] = (u64 *)*rmapp;
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800396 desc->shadow_ptes[1] = spte;
Izik Eidus290fc382007-09-27 14:11:22 +0200397 *rmapp = (unsigned long)desc | 1;
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800398 } else {
399 rmap_printk("rmap_add: %p %llx many->many\n", spte, *spte);
Izik Eidus290fc382007-09-27 14:11:22 +0200400 desc = (struct kvm_rmap_desc *)(*rmapp & ~1ul);
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800401 while (desc->shadow_ptes[RMAP_EXT-1] && desc->more)
402 desc = desc->more;
403 if (desc->shadow_ptes[RMAP_EXT-1]) {
Avi Kivity714b93d2007-01-05 16:36:53 -0800404 desc->more = mmu_alloc_rmap_desc(vcpu);
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800405 desc = desc->more;
406 }
407 for (i = 0; desc->shadow_ptes[i]; ++i)
408 ;
409 desc->shadow_ptes[i] = spte;
410 }
411}
412
Izik Eidus290fc382007-09-27 14:11:22 +0200413static void rmap_desc_remove_entry(unsigned long *rmapp,
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800414 struct kvm_rmap_desc *desc,
415 int i,
416 struct kvm_rmap_desc *prev_desc)
417{
418 int j;
419
420 for (j = RMAP_EXT - 1; !desc->shadow_ptes[j] && j > i; --j)
421 ;
422 desc->shadow_ptes[i] = desc->shadow_ptes[j];
Al Viro11718b4d2007-02-09 16:39:20 +0000423 desc->shadow_ptes[j] = NULL;
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800424 if (j != 0)
425 return;
426 if (!prev_desc && !desc->more)
Izik Eidus290fc382007-09-27 14:11:22 +0200427 *rmapp = (unsigned long)desc->shadow_ptes[0];
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800428 else
429 if (prev_desc)
430 prev_desc->more = desc->more;
431 else
Izik Eidus290fc382007-09-27 14:11:22 +0200432 *rmapp = (unsigned long)desc->more | 1;
Avi Kivity90cb0522007-07-17 13:04:56 +0300433 mmu_free_rmap_desc(desc);
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800434}
435
Izik Eidus290fc382007-09-27 14:11:22 +0200436static void rmap_remove(struct kvm *kvm, u64 *spte)
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800437{
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800438 struct kvm_rmap_desc *desc;
439 struct kvm_rmap_desc *prev_desc;
Avi Kivity4db35312007-11-21 15:28:32 +0200440 struct kvm_mmu_page *sp;
Avi Kivity76c35c62007-11-21 15:32:41 +0200441 struct page *page;
Izik Eidus290fc382007-09-27 14:11:22 +0200442 unsigned long *rmapp;
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800443 int i;
444
445 if (!is_rmap_pte(*spte))
446 return;
Avi Kivity4db35312007-11-21 15:28:32 +0200447 sp = page_header(__pa(spte));
Avi Kivity76c35c62007-11-21 15:32:41 +0200448 page = pfn_to_page((*spte & PT64_BASE_ADDR_MASK) >> PAGE_SHIFT);
Izik Eidus448353c2007-11-26 14:08:14 +0200449 mark_page_accessed(page);
Izik Eidusb4231d62007-11-20 11:49:33 +0200450 if (is_writeble_pte(*spte))
Avi Kivity76c35c62007-11-21 15:32:41 +0200451 kvm_release_page_dirty(page);
Izik Eidusb4231d62007-11-20 11:49:33 +0200452 else
Avi Kivity76c35c62007-11-21 15:32:41 +0200453 kvm_release_page_clean(page);
Avi Kivity4db35312007-11-21 15:28:32 +0200454 rmapp = gfn_to_rmap(kvm, sp->gfns[spte - sp->spt]);
Izik Eidus290fc382007-09-27 14:11:22 +0200455 if (!*rmapp) {
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800456 printk(KERN_ERR "rmap_remove: %p %llx 0->BUG\n", spte, *spte);
457 BUG();
Izik Eidus290fc382007-09-27 14:11:22 +0200458 } else if (!(*rmapp & 1)) {
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800459 rmap_printk("rmap_remove: %p %llx 1->0\n", spte, *spte);
Izik Eidus290fc382007-09-27 14:11:22 +0200460 if ((u64 *)*rmapp != spte) {
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800461 printk(KERN_ERR "rmap_remove: %p %llx 1->BUG\n",
462 spte, *spte);
463 BUG();
464 }
Izik Eidus290fc382007-09-27 14:11:22 +0200465 *rmapp = 0;
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800466 } else {
467 rmap_printk("rmap_remove: %p %llx many->many\n", spte, *spte);
Izik Eidus290fc382007-09-27 14:11:22 +0200468 desc = (struct kvm_rmap_desc *)(*rmapp & ~1ul);
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800469 prev_desc = NULL;
470 while (desc) {
471 for (i = 0; i < RMAP_EXT && desc->shadow_ptes[i]; ++i)
472 if (desc->shadow_ptes[i] == spte) {
Izik Eidus290fc382007-09-27 14:11:22 +0200473 rmap_desc_remove_entry(rmapp,
Avi Kivity714b93d2007-01-05 16:36:53 -0800474 desc, i,
Avi Kivitycd4a4e52007-01-05 16:36:38 -0800475 prev_desc);
476 return;
477 }
478 prev_desc = desc;
479 desc = desc->more;
480 }
481 BUG();
482 }
483}
484
Izik Eidus98348e92007-10-16 14:42:30 +0200485static u64 *rmap_next(struct kvm *kvm, unsigned long *rmapp, u64 *spte)
Avi Kivity374cbac2007-01-05 16:36:43 -0800486{
Avi Kivity374cbac2007-01-05 16:36:43 -0800487 struct kvm_rmap_desc *desc;
Izik Eidus98348e92007-10-16 14:42:30 +0200488 struct kvm_rmap_desc *prev_desc;
489 u64 *prev_spte;
490 int i;
491
492 if (!*rmapp)
493 return NULL;
494 else if (!(*rmapp & 1)) {
495 if (!spte)
496 return (u64 *)*rmapp;
497 return NULL;
498 }
499 desc = (struct kvm_rmap_desc *)(*rmapp & ~1ul);
500 prev_desc = NULL;
501 prev_spte = NULL;
502 while (desc) {
503 for (i = 0; i < RMAP_EXT && desc->shadow_ptes[i]; ++i) {
504 if (prev_spte == spte)
505 return desc->shadow_ptes[i];
506 prev_spte = desc->shadow_ptes[i];
507 }
508 desc = desc->more;
509 }
510 return NULL;
511}
512
513static void rmap_write_protect(struct kvm *kvm, u64 gfn)
514{
Izik Eidus290fc382007-09-27 14:11:22 +0200515 unsigned long *rmapp;
Avi Kivity374cbac2007-01-05 16:36:43 -0800516 u64 *spte;
517
Anthony Liguori4a4c9922007-10-10 20:08:41 -0500518 gfn = unalias_gfn(kvm, gfn);
519 rmapp = gfn_to_rmap(kvm, gfn);
Avi Kivity374cbac2007-01-05 16:36:43 -0800520
Izik Eidus98348e92007-10-16 14:42:30 +0200521 spte = rmap_next(kvm, rmapp, NULL);
522 while (spte) {
Avi Kivity374cbac2007-01-05 16:36:43 -0800523 BUG_ON(!spte);
Avi Kivity374cbac2007-01-05 16:36:43 -0800524 BUG_ON(!(*spte & PT_PRESENT_MASK));
Avi Kivity374cbac2007-01-05 16:36:43 -0800525 rmap_printk("rmap_write_protect: spte %p %llx\n", spte, *spte);
Izik Eidus9647c142007-10-16 14:43:46 +0200526 if (is_writeble_pte(*spte))
527 set_shadow_pte(spte, *spte & ~PT_WRITABLE_MASK);
Anthony Liguori4a4c9922007-10-10 20:08:41 -0500528 kvm_flush_remote_tlbs(kvm);
Izik Eidus9647c142007-10-16 14:43:46 +0200529 spte = rmap_next(kvm, rmapp, spte);
Avi Kivity374cbac2007-01-05 16:36:43 -0800530 }
531}
532
Yaozu Dongd6c69ee2007-04-25 14:17:25 +0800533#ifdef MMU_DEBUG
Avi Kivity47ad8e62007-05-06 15:50:58 +0300534static int is_empty_shadow_page(u64 *spt)
Avi Kivity6aa8b732006-12-10 02:21:36 -0800535{
Avi Kivity139bdb22007-01-05 16:36:50 -0800536 u64 *pos;
537 u64 *end;
538
Avi Kivity47ad8e62007-05-06 15:50:58 +0300539 for (pos = spt, end = pos + PAGE_SIZE / sizeof(u64); pos != end; pos++)
Avi Kivityc7addb92007-09-16 18:58:32 +0200540 if ((*pos & ~PT_SHADOW_IO_MARK) != shadow_trap_nonpresent_pte) {
Avi Kivity139bdb22007-01-05 16:36:50 -0800541 printk(KERN_ERR "%s: %p %llx\n", __FUNCTION__,
542 pos, *pos);
Avi Kivity6aa8b732006-12-10 02:21:36 -0800543 return 0;
Avi Kivity139bdb22007-01-05 16:36:50 -0800544 }
Avi Kivity6aa8b732006-12-10 02:21:36 -0800545 return 1;
546}
Yaozu Dongd6c69ee2007-04-25 14:17:25 +0800547#endif
Avi Kivity6aa8b732006-12-10 02:21:36 -0800548
Avi Kivity4db35312007-11-21 15:28:32 +0200549static void kvm_mmu_free_page(struct kvm *kvm, struct kvm_mmu_page *sp)
Avi Kivity260746c2007-01-05 16:36:49 -0800550{
Avi Kivity4db35312007-11-21 15:28:32 +0200551 ASSERT(is_empty_shadow_page(sp->spt));
552 list_del(&sp->link);
553 __free_page(virt_to_page(sp->spt));
554 __free_page(virt_to_page(sp->gfns));
555 kfree(sp);
Avi Kivity90cb0522007-07-17 13:04:56 +0300556 ++kvm->n_free_mmu_pages;
Avi Kivity260746c2007-01-05 16:36:49 -0800557}
558
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800559static unsigned kvm_page_table_hashfn(gfn_t gfn)
560{
561 return gfn;
562}
563
Avi Kivity25c0de22007-01-05 16:36:42 -0800564static struct kvm_mmu_page *kvm_mmu_alloc_page(struct kvm_vcpu *vcpu,
565 u64 *parent_pte)
Avi Kivity6aa8b732006-12-10 02:21:36 -0800566{
Avi Kivity4db35312007-11-21 15:28:32 +0200567 struct kvm_mmu_page *sp;
Avi Kivity6aa8b732006-12-10 02:21:36 -0800568
Avi Kivityd3d25b02007-05-30 12:34:53 +0300569 if (!vcpu->kvm->n_free_mmu_pages)
Avi Kivity25c0de22007-01-05 16:36:42 -0800570 return NULL;
Avi Kivity6aa8b732006-12-10 02:21:36 -0800571
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800572 sp = mmu_memory_cache_alloc(&vcpu->arch.mmu_page_header_cache, sizeof *sp);
573 sp->spt = mmu_memory_cache_alloc(&vcpu->arch.mmu_page_cache, PAGE_SIZE);
574 sp->gfns = mmu_memory_cache_alloc(&vcpu->arch.mmu_page_cache, PAGE_SIZE);
Avi Kivity4db35312007-11-21 15:28:32 +0200575 set_page_private(virt_to_page(sp->spt), (unsigned long)sp);
576 list_add(&sp->link, &vcpu->kvm->active_mmu_pages);
577 ASSERT(is_empty_shadow_page(sp->spt));
578 sp->slot_bitmap = 0;
579 sp->multimapped = 0;
580 sp->parent_pte = parent_pte;
Avi Kivityebeace82007-01-05 16:36:47 -0800581 --vcpu->kvm->n_free_mmu_pages;
Avi Kivity4db35312007-11-21 15:28:32 +0200582 return sp;
Avi Kivity6aa8b732006-12-10 02:21:36 -0800583}
584
Avi Kivity714b93d2007-01-05 16:36:53 -0800585static void mmu_page_add_parent_pte(struct kvm_vcpu *vcpu,
Avi Kivity4db35312007-11-21 15:28:32 +0200586 struct kvm_mmu_page *sp, u64 *parent_pte)
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800587{
588 struct kvm_pte_chain *pte_chain;
589 struct hlist_node *node;
590 int i;
591
592 if (!parent_pte)
593 return;
Avi Kivity4db35312007-11-21 15:28:32 +0200594 if (!sp->multimapped) {
595 u64 *old = sp->parent_pte;
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800596
597 if (!old) {
Avi Kivity4db35312007-11-21 15:28:32 +0200598 sp->parent_pte = parent_pte;
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800599 return;
600 }
Avi Kivity4db35312007-11-21 15:28:32 +0200601 sp->multimapped = 1;
Avi Kivity714b93d2007-01-05 16:36:53 -0800602 pte_chain = mmu_alloc_pte_chain(vcpu);
Avi Kivity4db35312007-11-21 15:28:32 +0200603 INIT_HLIST_HEAD(&sp->parent_ptes);
604 hlist_add_head(&pte_chain->link, &sp->parent_ptes);
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800605 pte_chain->parent_ptes[0] = old;
606 }
Avi Kivity4db35312007-11-21 15:28:32 +0200607 hlist_for_each_entry(pte_chain, node, &sp->parent_ptes, link) {
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800608 if (pte_chain->parent_ptes[NR_PTE_CHAIN_ENTRIES-1])
609 continue;
610 for (i = 0; i < NR_PTE_CHAIN_ENTRIES; ++i)
611 if (!pte_chain->parent_ptes[i]) {
612 pte_chain->parent_ptes[i] = parent_pte;
613 return;
614 }
615 }
Avi Kivity714b93d2007-01-05 16:36:53 -0800616 pte_chain = mmu_alloc_pte_chain(vcpu);
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800617 BUG_ON(!pte_chain);
Avi Kivity4db35312007-11-21 15:28:32 +0200618 hlist_add_head(&pte_chain->link, &sp->parent_ptes);
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800619 pte_chain->parent_ptes[0] = parent_pte;
620}
621
Avi Kivity4db35312007-11-21 15:28:32 +0200622static void mmu_page_remove_parent_pte(struct kvm_mmu_page *sp,
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800623 u64 *parent_pte)
624{
625 struct kvm_pte_chain *pte_chain;
626 struct hlist_node *node;
627 int i;
628
Avi Kivity4db35312007-11-21 15:28:32 +0200629 if (!sp->multimapped) {
630 BUG_ON(sp->parent_pte != parent_pte);
631 sp->parent_pte = NULL;
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800632 return;
633 }
Avi Kivity4db35312007-11-21 15:28:32 +0200634 hlist_for_each_entry(pte_chain, node, &sp->parent_ptes, link)
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800635 for (i = 0; i < NR_PTE_CHAIN_ENTRIES; ++i) {
636 if (!pte_chain->parent_ptes[i])
637 break;
638 if (pte_chain->parent_ptes[i] != parent_pte)
639 continue;
Avi Kivity697fe2e2007-01-05 16:36:46 -0800640 while (i + 1 < NR_PTE_CHAIN_ENTRIES
641 && pte_chain->parent_ptes[i + 1]) {
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800642 pte_chain->parent_ptes[i]
643 = pte_chain->parent_ptes[i + 1];
644 ++i;
645 }
646 pte_chain->parent_ptes[i] = NULL;
Avi Kivity697fe2e2007-01-05 16:36:46 -0800647 if (i == 0) {
648 hlist_del(&pte_chain->link);
Avi Kivity90cb0522007-07-17 13:04:56 +0300649 mmu_free_pte_chain(pte_chain);
Avi Kivity4db35312007-11-21 15:28:32 +0200650 if (hlist_empty(&sp->parent_ptes)) {
651 sp->multimapped = 0;
652 sp->parent_pte = NULL;
Avi Kivity697fe2e2007-01-05 16:36:46 -0800653 }
654 }
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800655 return;
656 }
657 BUG();
658}
659
Avi Kivity4db35312007-11-21 15:28:32 +0200660static struct kvm_mmu_page *kvm_mmu_lookup_page(struct kvm *kvm, gfn_t gfn)
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800661{
662 unsigned index;
663 struct hlist_head *bucket;
Avi Kivity4db35312007-11-21 15:28:32 +0200664 struct kvm_mmu_page *sp;
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800665 struct hlist_node *node;
666
667 pgprintk("%s: looking for gfn %lx\n", __FUNCTION__, gfn);
668 index = kvm_page_table_hashfn(gfn) % KVM_NUM_MMU_PAGES;
Anthony Liguorif67a46f2007-10-10 19:25:50 -0500669 bucket = &kvm->mmu_page_hash[index];
Avi Kivity4db35312007-11-21 15:28:32 +0200670 hlist_for_each_entry(sp, node, bucket, hash_link)
671 if (sp->gfn == gfn && !sp->role.metaphysical) {
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800672 pgprintk("%s: found role %x\n",
Avi Kivity4db35312007-11-21 15:28:32 +0200673 __FUNCTION__, sp->role.word);
674 return sp;
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800675 }
676 return NULL;
677}
678
679static struct kvm_mmu_page *kvm_mmu_get_page(struct kvm_vcpu *vcpu,
680 gfn_t gfn,
681 gva_t gaddr,
682 unsigned level,
683 int metaphysical,
Avi Kivity41074d02007-12-09 17:00:02 +0200684 unsigned access,
Marcelo Tosatti78190262007-12-11 19:12:27 -0500685 u64 *parent_pte,
686 bool *new_page)
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800687{
688 union kvm_mmu_page_role role;
689 unsigned index;
690 unsigned quadrant;
691 struct hlist_head *bucket;
Avi Kivity4db35312007-11-21 15:28:32 +0200692 struct kvm_mmu_page *sp;
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800693 struct hlist_node *node;
694
695 role.word = 0;
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800696 role.glevels = vcpu->arch.mmu.root_level;
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800697 role.level = level;
698 role.metaphysical = metaphysical;
Avi Kivity41074d02007-12-09 17:00:02 +0200699 role.access = access;
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800700 if (vcpu->arch.mmu.root_level <= PT32_ROOT_LEVEL) {
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800701 quadrant = gaddr >> (PAGE_SHIFT + (PT64_PT_BITS * level));
702 quadrant &= (1 << ((PT32_PT_BITS - PT64_PT_BITS) * level)) - 1;
703 role.quadrant = quadrant;
704 }
705 pgprintk("%s: looking gfn %lx role %x\n", __FUNCTION__,
706 gfn, role.word);
707 index = kvm_page_table_hashfn(gfn) % KVM_NUM_MMU_PAGES;
708 bucket = &vcpu->kvm->mmu_page_hash[index];
Avi Kivity4db35312007-11-21 15:28:32 +0200709 hlist_for_each_entry(sp, node, bucket, hash_link)
710 if (sp->gfn == gfn && sp->role.word == role.word) {
711 mmu_page_add_parent_pte(vcpu, sp, parent_pte);
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800712 pgprintk("%s: found\n", __FUNCTION__);
Avi Kivity4db35312007-11-21 15:28:32 +0200713 return sp;
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800714 }
Avi Kivity4db35312007-11-21 15:28:32 +0200715 sp = kvm_mmu_alloc_page(vcpu, parent_pte);
716 if (!sp)
717 return sp;
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800718 pgprintk("%s: adding gfn %lx role %x\n", __FUNCTION__, gfn, role.word);
Avi Kivity4db35312007-11-21 15:28:32 +0200719 sp->gfn = gfn;
720 sp->role = role;
721 hlist_add_head(&sp->hash_link, bucket);
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800722 vcpu->arch.mmu.prefetch_page(vcpu, sp);
Avi Kivity374cbac2007-01-05 16:36:43 -0800723 if (!metaphysical)
Anthony Liguori4a4c9922007-10-10 20:08:41 -0500724 rmap_write_protect(vcpu->kvm, gfn);
Marcelo Tosatti78190262007-12-11 19:12:27 -0500725 if (new_page)
726 *new_page = 1;
Avi Kivity4db35312007-11-21 15:28:32 +0200727 return sp;
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800728}
729
Avi Kivity90cb0522007-07-17 13:04:56 +0300730static void kvm_mmu_page_unlink_children(struct kvm *kvm,
Avi Kivity4db35312007-11-21 15:28:32 +0200731 struct kvm_mmu_page *sp)
Avi Kivitya4360362007-01-05 16:36:45 -0800732{
Avi Kivity697fe2e2007-01-05 16:36:46 -0800733 unsigned i;
734 u64 *pt;
735 u64 ent;
736
Avi Kivity4db35312007-11-21 15:28:32 +0200737 pt = sp->spt;
Avi Kivity697fe2e2007-01-05 16:36:46 -0800738
Avi Kivity4db35312007-11-21 15:28:32 +0200739 if (sp->role.level == PT_PAGE_TABLE_LEVEL) {
Avi Kivity697fe2e2007-01-05 16:36:46 -0800740 for (i = 0; i < PT64_ENT_PER_PAGE; ++i) {
Avi Kivityc7addb92007-09-16 18:58:32 +0200741 if (is_shadow_present_pte(pt[i]))
Izik Eidus290fc382007-09-27 14:11:22 +0200742 rmap_remove(kvm, &pt[i]);
Avi Kivityc7addb92007-09-16 18:58:32 +0200743 pt[i] = shadow_trap_nonpresent_pte;
Avi Kivity697fe2e2007-01-05 16:36:46 -0800744 }
Avi Kivity90cb0522007-07-17 13:04:56 +0300745 kvm_flush_remote_tlbs(kvm);
Avi Kivity697fe2e2007-01-05 16:36:46 -0800746 return;
747 }
748
749 for (i = 0; i < PT64_ENT_PER_PAGE; ++i) {
750 ent = pt[i];
751
Avi Kivityc7addb92007-09-16 18:58:32 +0200752 pt[i] = shadow_trap_nonpresent_pte;
753 if (!is_shadow_present_pte(ent))
Avi Kivity697fe2e2007-01-05 16:36:46 -0800754 continue;
755 ent &= PT64_BASE_ADDR_MASK;
Avi Kivity90cb0522007-07-17 13:04:56 +0300756 mmu_page_remove_parent_pte(page_header(ent), &pt[i]);
Avi Kivity697fe2e2007-01-05 16:36:46 -0800757 }
Avi Kivity90cb0522007-07-17 13:04:56 +0300758 kvm_flush_remote_tlbs(kvm);
Avi Kivitya4360362007-01-05 16:36:45 -0800759}
760
Avi Kivity4db35312007-11-21 15:28:32 +0200761static void kvm_mmu_put_page(struct kvm_mmu_page *sp, u64 *parent_pte)
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800762{
Avi Kivity4db35312007-11-21 15:28:32 +0200763 mmu_page_remove_parent_pte(sp, parent_pte);
Avi Kivitya4360362007-01-05 16:36:45 -0800764}
765
Avi Kivity12b7d282007-09-23 14:10:49 +0200766static void kvm_mmu_reset_last_pte_updated(struct kvm *kvm)
767{
768 int i;
769
770 for (i = 0; i < KVM_MAX_VCPUS; ++i)
771 if (kvm->vcpus[i])
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800772 kvm->vcpus[i]->arch.last_pte_updated = NULL;
Avi Kivity12b7d282007-09-23 14:10:49 +0200773}
774
Avi Kivity4db35312007-11-21 15:28:32 +0200775static void kvm_mmu_zap_page(struct kvm *kvm, struct kvm_mmu_page *sp)
Avi Kivitya4360362007-01-05 16:36:45 -0800776{
777 u64 *parent_pte;
778
Avi Kivity4cee5762007-11-18 16:37:07 +0200779 ++kvm->stat.mmu_shadow_zapped;
Avi Kivity4db35312007-11-21 15:28:32 +0200780 while (sp->multimapped || sp->parent_pte) {
781 if (!sp->multimapped)
782 parent_pte = sp->parent_pte;
Avi Kivitya4360362007-01-05 16:36:45 -0800783 else {
784 struct kvm_pte_chain *chain;
785
Avi Kivity4db35312007-11-21 15:28:32 +0200786 chain = container_of(sp->parent_ptes.first,
Avi Kivitya4360362007-01-05 16:36:45 -0800787 struct kvm_pte_chain, link);
788 parent_pte = chain->parent_ptes[0];
789 }
Avi Kivity697fe2e2007-01-05 16:36:46 -0800790 BUG_ON(!parent_pte);
Avi Kivity4db35312007-11-21 15:28:32 +0200791 kvm_mmu_put_page(sp, parent_pte);
Avi Kivityc7addb92007-09-16 18:58:32 +0200792 set_shadow_pte(parent_pte, shadow_trap_nonpresent_pte);
Avi Kivitya4360362007-01-05 16:36:45 -0800793 }
Avi Kivity4db35312007-11-21 15:28:32 +0200794 kvm_mmu_page_unlink_children(kvm, sp);
795 if (!sp->root_count) {
796 hlist_del(&sp->hash_link);
797 kvm_mmu_free_page(kvm, sp);
Avi Kivity36868f72007-03-26 19:31:52 +0200798 } else
Avi Kivity4db35312007-11-21 15:28:32 +0200799 list_move(&sp->link, &kvm->active_mmu_pages);
Avi Kivity12b7d282007-09-23 14:10:49 +0200800 kvm_mmu_reset_last_pte_updated(kvm);
Avi Kivitya4360362007-01-05 16:36:45 -0800801}
802
Izik Eidus82ce2c92007-10-02 18:52:55 +0200803/*
804 * Changing the number of mmu pages allocated to the vm
805 * Note: if kvm_nr_mmu_pages is too small, you will get dead lock
806 */
807void kvm_mmu_change_mmu_pages(struct kvm *kvm, unsigned int kvm_nr_mmu_pages)
808{
809 /*
810 * If we set the number of mmu pages to be smaller be than the
811 * number of actived pages , we must to free some mmu pages before we
812 * change the value
813 */
814
815 if ((kvm->n_alloc_mmu_pages - kvm->n_free_mmu_pages) >
816 kvm_nr_mmu_pages) {
817 int n_used_mmu_pages = kvm->n_alloc_mmu_pages
818 - kvm->n_free_mmu_pages;
819
820 while (n_used_mmu_pages > kvm_nr_mmu_pages) {
821 struct kvm_mmu_page *page;
822
823 page = container_of(kvm->active_mmu_pages.prev,
824 struct kvm_mmu_page, link);
825 kvm_mmu_zap_page(kvm, page);
826 n_used_mmu_pages--;
827 }
828 kvm->n_free_mmu_pages = 0;
829 }
830 else
831 kvm->n_free_mmu_pages += kvm_nr_mmu_pages
832 - kvm->n_alloc_mmu_pages;
833
834 kvm->n_alloc_mmu_pages = kvm_nr_mmu_pages;
835}
836
Anthony Liguorif67a46f2007-10-10 19:25:50 -0500837static int kvm_mmu_unprotect_page(struct kvm *kvm, gfn_t gfn)
Avi Kivitya4360362007-01-05 16:36:45 -0800838{
839 unsigned index;
840 struct hlist_head *bucket;
Avi Kivity4db35312007-11-21 15:28:32 +0200841 struct kvm_mmu_page *sp;
Avi Kivitya4360362007-01-05 16:36:45 -0800842 struct hlist_node *node, *n;
843 int r;
844
845 pgprintk("%s: looking for gfn %lx\n", __FUNCTION__, gfn);
846 r = 0;
847 index = kvm_page_table_hashfn(gfn) % KVM_NUM_MMU_PAGES;
Anthony Liguorif67a46f2007-10-10 19:25:50 -0500848 bucket = &kvm->mmu_page_hash[index];
Avi Kivity4db35312007-11-21 15:28:32 +0200849 hlist_for_each_entry_safe(sp, node, n, bucket, hash_link)
850 if (sp->gfn == gfn && !sp->role.metaphysical) {
Avi Kivity697fe2e2007-01-05 16:36:46 -0800851 pgprintk("%s: gfn %lx role %x\n", __FUNCTION__, gfn,
Avi Kivity4db35312007-11-21 15:28:32 +0200852 sp->role.word);
853 kvm_mmu_zap_page(kvm, sp);
Avi Kivitya4360362007-01-05 16:36:45 -0800854 r = 1;
855 }
856 return r;
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800857}
858
Anthony Liguorif67a46f2007-10-10 19:25:50 -0500859static void mmu_unshadow(struct kvm *kvm, gfn_t gfn)
Avi Kivity97a0a012007-05-31 15:08:29 +0300860{
Avi Kivity4db35312007-11-21 15:28:32 +0200861 struct kvm_mmu_page *sp;
Avi Kivity97a0a012007-05-31 15:08:29 +0300862
Avi Kivity4db35312007-11-21 15:28:32 +0200863 while ((sp = kvm_mmu_lookup_page(kvm, gfn)) != NULL) {
864 pgprintk("%s: zap %lx %x\n", __FUNCTION__, gfn, sp->role.word);
865 kvm_mmu_zap_page(kvm, sp);
Avi Kivity97a0a012007-05-31 15:08:29 +0300866 }
867}
868
Avi Kivity38c335f2007-11-21 14:20:22 +0200869static void page_header_update_slot(struct kvm *kvm, void *pte, gfn_t gfn)
Avi Kivity6aa8b732006-12-10 02:21:36 -0800870{
Avi Kivity38c335f2007-11-21 14:20:22 +0200871 int slot = memslot_id(kvm, gfn_to_memslot(kvm, gfn));
Avi Kivity4db35312007-11-21 15:28:32 +0200872 struct kvm_mmu_page *sp = page_header(__pa(pte));
Avi Kivity6aa8b732006-12-10 02:21:36 -0800873
Avi Kivity4db35312007-11-21 15:28:32 +0200874 __set_bit(slot, &sp->slot_bitmap);
Avi Kivity6aa8b732006-12-10 02:21:36 -0800875}
876
Avi Kivity039576c2007-03-20 12:46:50 +0200877struct page *gva_to_page(struct kvm_vcpu *vcpu, gva_t gva)
878{
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800879 gpa_t gpa = vcpu->arch.mmu.gva_to_gpa(vcpu, gva);
Avi Kivity039576c2007-03-20 12:46:50 +0200880
881 if (gpa == UNMAPPED_GVA)
882 return NULL;
Avi Kivity1d28f5f2007-11-21 15:01:44 +0200883 return gfn_to_page(vcpu->kvm, gpa >> PAGE_SHIFT);
Avi Kivity039576c2007-03-20 12:46:50 +0200884}
885
Avi Kivity1c4f1fd2007-12-09 17:40:31 +0200886static void mmu_set_spte(struct kvm_vcpu *vcpu, u64 *shadow_pte,
887 unsigned pt_access, unsigned pte_access,
888 int user_fault, int write_fault, int dirty,
889 int *ptwrite, gfn_t gfn)
890{
891 u64 spte;
892 int was_rmapped = is_rmap_pte(*shadow_pte);
893 struct page *page;
894
Avi Kivitybc750ba2007-12-09 18:39:41 +0200895 pgprintk("%s: spte %llx access %x write_fault %d"
Avi Kivity1c4f1fd2007-12-09 17:40:31 +0200896 " user_fault %d gfn %lx\n",
Avi Kivitybc750ba2007-12-09 18:39:41 +0200897 __FUNCTION__, *shadow_pte, pt_access,
Avi Kivity1c4f1fd2007-12-09 17:40:31 +0200898 write_fault, user_fault, gfn);
899
900 /*
901 * We don't set the accessed bit, since we sometimes want to see
902 * whether the guest actually used the pte (in order to detect
903 * demand paging).
904 */
905 spte = PT_PRESENT_MASK | PT_DIRTY_MASK;
906 if (!dirty)
907 pte_access &= ~ACC_WRITE_MASK;
908 if (!(pte_access & ACC_EXEC_MASK))
909 spte |= PT64_NX_MASK;
910
911 page = gfn_to_page(vcpu->kvm, gfn);
912
913 spte |= PT_PRESENT_MASK;
914 if (pte_access & ACC_USER_MASK)
915 spte |= PT_USER_MASK;
916
917 if (is_error_page(page)) {
918 set_shadow_pte(shadow_pte,
919 shadow_trap_nonpresent_pte | PT_SHADOW_IO_MARK);
920 kvm_release_page_clean(page);
921 return;
922 }
923
924 spte |= page_to_phys(page);
925
926 if ((pte_access & ACC_WRITE_MASK)
927 || (write_fault && !is_write_protection(vcpu) && !user_fault)) {
928 struct kvm_mmu_page *shadow;
929
930 spte |= PT_WRITABLE_MASK;
931 if (user_fault) {
932 mmu_unshadow(vcpu->kvm, gfn);
933 goto unshadowed;
934 }
935
936 shadow = kvm_mmu_lookup_page(vcpu->kvm, gfn);
937 if (shadow) {
938 pgprintk("%s: found shadow page for %lx, marking ro\n",
939 __FUNCTION__, gfn);
940 pte_access &= ~ACC_WRITE_MASK;
941 if (is_writeble_pte(spte)) {
942 spte &= ~PT_WRITABLE_MASK;
943 kvm_x86_ops->tlb_flush(vcpu);
944 }
945 if (write_fault)
946 *ptwrite = 1;
947 }
948 }
949
950unshadowed:
951
952 if (pte_access & ACC_WRITE_MASK)
953 mark_page_dirty(vcpu->kvm, gfn);
954
955 pgprintk("%s: setting spte %llx\n", __FUNCTION__, spte);
956 set_shadow_pte(shadow_pte, spte);
957 page_header_update_slot(vcpu->kvm, shadow_pte, gfn);
958 if (!was_rmapped) {
959 rmap_add(vcpu, shadow_pte, gfn);
960 if (!is_rmap_pte(*shadow_pte))
961 kvm_release_page_clean(page);
962 }
963 else
964 kvm_release_page_clean(page);
965 if (!ptwrite || !*ptwrite)
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800966 vcpu->arch.last_pte_updated = shadow_pte;
Avi Kivity1c4f1fd2007-12-09 17:40:31 +0200967}
968
Avi Kivity6aa8b732006-12-10 02:21:36 -0800969static void nonpaging_new_cr3(struct kvm_vcpu *vcpu)
970{
971}
972
Avi Kivitye8332402007-12-09 18:43:00 +0200973static int nonpaging_map(struct kvm_vcpu *vcpu, gva_t v, int write, gfn_t gfn)
Avi Kivity6aa8b732006-12-10 02:21:36 -0800974{
975 int level = PT32E_ROOT_LEVEL;
Zhang Xiantaoad312c72007-12-13 23:50:52 +0800976 hpa_t table_addr = vcpu->arch.mmu.root_hpa;
Avi Kivitye8332402007-12-09 18:43:00 +0200977 int pt_write = 0;
Avi Kivity6aa8b732006-12-10 02:21:36 -0800978
979 for (; ; level--) {
980 u32 index = PT64_INDEX(v, level);
981 u64 *table;
982
983 ASSERT(VALID_PAGE(table_addr));
984 table = __va(table_addr);
985
986 if (level == 1) {
Avi Kivitye8332402007-12-09 18:43:00 +0200987 mmu_set_spte(vcpu, &table[index], ACC_ALL, ACC_ALL,
988 0, write, 1, &pt_write, gfn);
989 return pt_write || is_io_pte(table[index]);
Avi Kivity6aa8b732006-12-10 02:21:36 -0800990 }
991
Avi Kivityc7addb92007-09-16 18:58:32 +0200992 if (table[index] == shadow_trap_nonpresent_pte) {
Avi Kivity25c0de22007-01-05 16:36:42 -0800993 struct kvm_mmu_page *new_table;
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800994 gfn_t pseudo_gfn;
Avi Kivity6aa8b732006-12-10 02:21:36 -0800995
Avi Kivitycea0f0e2007-01-05 16:36:43 -0800996 pseudo_gfn = (v & PT64_DIR_BASE_ADDR_MASK)
997 >> PAGE_SHIFT;
998 new_table = kvm_mmu_get_page(vcpu, pseudo_gfn,
999 v, level - 1,
Marcelo Tosatti78190262007-12-11 19:12:27 -05001000 1, ACC_ALL, &table[index],
1001 NULL);
Avi Kivity25c0de22007-01-05 16:36:42 -08001002 if (!new_table) {
Avi Kivity6aa8b732006-12-10 02:21:36 -08001003 pgprintk("nonpaging_map: ENOMEM\n");
1004 return -ENOMEM;
1005 }
1006
Avi Kivity47ad8e62007-05-06 15:50:58 +03001007 table[index] = __pa(new_table->spt) | PT_PRESENT_MASK
Avi Kivity25c0de22007-01-05 16:36:42 -08001008 | PT_WRITABLE_MASK | PT_USER_MASK;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001009 }
1010 table_addr = table[index] & PT64_BASE_ADDR_MASK;
1011 }
1012}
1013
Avi Kivityc7addb92007-09-16 18:58:32 +02001014static void nonpaging_prefetch_page(struct kvm_vcpu *vcpu,
1015 struct kvm_mmu_page *sp)
1016{
1017 int i;
1018
1019 for (i = 0; i < PT64_ENT_PER_PAGE; ++i)
1020 sp->spt[i] = shadow_trap_nonpresent_pte;
1021}
1022
Avi Kivity17ac10a2007-01-05 16:36:40 -08001023static void mmu_free_roots(struct kvm_vcpu *vcpu)
1024{
1025 int i;
Avi Kivity4db35312007-11-21 15:28:32 +02001026 struct kvm_mmu_page *sp;
Avi Kivity17ac10a2007-01-05 16:36:40 -08001027
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001028 if (!VALID_PAGE(vcpu->arch.mmu.root_hpa))
Avi Kivity7b53aa52007-06-05 12:17:03 +03001029 return;
Avi Kivity17ac10a2007-01-05 16:36:40 -08001030#ifdef CONFIG_X86_64
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001031 if (vcpu->arch.mmu.shadow_root_level == PT64_ROOT_LEVEL) {
1032 hpa_t root = vcpu->arch.mmu.root_hpa;
Avi Kivity17ac10a2007-01-05 16:36:40 -08001033
Avi Kivity4db35312007-11-21 15:28:32 +02001034 sp = page_header(root);
1035 --sp->root_count;
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001036 vcpu->arch.mmu.root_hpa = INVALID_PAGE;
Avi Kivity17ac10a2007-01-05 16:36:40 -08001037 return;
1038 }
1039#endif
1040 for (i = 0; i < 4; ++i) {
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001041 hpa_t root = vcpu->arch.mmu.pae_root[i];
Avi Kivity17ac10a2007-01-05 16:36:40 -08001042
Avi Kivity417726a2007-04-12 17:35:58 +03001043 if (root) {
Avi Kivity417726a2007-04-12 17:35:58 +03001044 root &= PT64_BASE_ADDR_MASK;
Avi Kivity4db35312007-11-21 15:28:32 +02001045 sp = page_header(root);
1046 --sp->root_count;
Avi Kivity417726a2007-04-12 17:35:58 +03001047 }
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001048 vcpu->arch.mmu.pae_root[i] = INVALID_PAGE;
Avi Kivity17ac10a2007-01-05 16:36:40 -08001049 }
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001050 vcpu->arch.mmu.root_hpa = INVALID_PAGE;
Avi Kivity17ac10a2007-01-05 16:36:40 -08001051}
1052
1053static void mmu_alloc_roots(struct kvm_vcpu *vcpu)
1054{
1055 int i;
Avi Kivitycea0f0e2007-01-05 16:36:43 -08001056 gfn_t root_gfn;
Avi Kivity4db35312007-11-21 15:28:32 +02001057 struct kvm_mmu_page *sp;
Avi Kivity3bb65a22007-01-05 16:36:51 -08001058
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001059 root_gfn = vcpu->arch.cr3 >> PAGE_SHIFT;
Avi Kivity17ac10a2007-01-05 16:36:40 -08001060
1061#ifdef CONFIG_X86_64
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001062 if (vcpu->arch.mmu.shadow_root_level == PT64_ROOT_LEVEL) {
1063 hpa_t root = vcpu->arch.mmu.root_hpa;
Avi Kivity17ac10a2007-01-05 16:36:40 -08001064
1065 ASSERT(!VALID_PAGE(root));
Avi Kivity4db35312007-11-21 15:28:32 +02001066 sp = kvm_mmu_get_page(vcpu, root_gfn, 0,
Marcelo Tosatti78190262007-12-11 19:12:27 -05001067 PT64_ROOT_LEVEL, 0, ACC_ALL, NULL, NULL);
Avi Kivity4db35312007-11-21 15:28:32 +02001068 root = __pa(sp->spt);
1069 ++sp->root_count;
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001070 vcpu->arch.mmu.root_hpa = root;
Avi Kivity17ac10a2007-01-05 16:36:40 -08001071 return;
1072 }
1073#endif
1074 for (i = 0; i < 4; ++i) {
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001075 hpa_t root = vcpu->arch.mmu.pae_root[i];
Avi Kivity17ac10a2007-01-05 16:36:40 -08001076
1077 ASSERT(!VALID_PAGE(root));
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001078 if (vcpu->arch.mmu.root_level == PT32E_ROOT_LEVEL) {
1079 if (!is_present_pte(vcpu->arch.pdptrs[i])) {
1080 vcpu->arch.mmu.pae_root[i] = 0;
Avi Kivity417726a2007-04-12 17:35:58 +03001081 continue;
1082 }
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001083 root_gfn = vcpu->arch.pdptrs[i] >> PAGE_SHIFT;
1084 } else if (vcpu->arch.mmu.root_level == 0)
Avi Kivitycea0f0e2007-01-05 16:36:43 -08001085 root_gfn = 0;
Avi Kivity4db35312007-11-21 15:28:32 +02001086 sp = kvm_mmu_get_page(vcpu, root_gfn, i << 30,
1087 PT32_ROOT_LEVEL, !is_paging(vcpu),
Marcelo Tosatti78190262007-12-11 19:12:27 -05001088 ACC_ALL, NULL, NULL);
Avi Kivity4db35312007-11-21 15:28:32 +02001089 root = __pa(sp->spt);
1090 ++sp->root_count;
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001091 vcpu->arch.mmu.pae_root[i] = root | PT_PRESENT_MASK;
Avi Kivity17ac10a2007-01-05 16:36:40 -08001092 }
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001093 vcpu->arch.mmu.root_hpa = __pa(vcpu->arch.mmu.pae_root);
Avi Kivity17ac10a2007-01-05 16:36:40 -08001094}
1095
Avi Kivity6aa8b732006-12-10 02:21:36 -08001096static gpa_t nonpaging_gva_to_gpa(struct kvm_vcpu *vcpu, gva_t vaddr)
1097{
1098 return vaddr;
1099}
1100
1101static int nonpaging_page_fault(struct kvm_vcpu *vcpu, gva_t gva,
Avi Kivity3f3e7122007-11-21 14:54:16 +02001102 u32 error_code)
Avi Kivity6aa8b732006-12-10 02:21:36 -08001103{
Avi Kivitye8332402007-12-09 18:43:00 +02001104 gfn_t gfn;
Avi Kivitye2dec932007-01-05 16:36:54 -08001105 int r;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001106
Avi Kivitye8332402007-12-09 18:43:00 +02001107 pgprintk("%s: gva %lx error %x\n", __FUNCTION__, gva, error_code);
Avi Kivitye2dec932007-01-05 16:36:54 -08001108 r = mmu_topup_memory_caches(vcpu);
1109 if (r)
1110 return r;
Avi Kivity714b93d2007-01-05 16:36:53 -08001111
Avi Kivity6aa8b732006-12-10 02:21:36 -08001112 ASSERT(vcpu);
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001113 ASSERT(VALID_PAGE(vcpu->arch.mmu.root_hpa));
Avi Kivity6aa8b732006-12-10 02:21:36 -08001114
Avi Kivitye8332402007-12-09 18:43:00 +02001115 gfn = gva >> PAGE_SHIFT;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001116
Avi Kivitye8332402007-12-09 18:43:00 +02001117 return nonpaging_map(vcpu, gva & PAGE_MASK,
1118 error_code & PFERR_WRITE_MASK, gfn);
Avi Kivity6aa8b732006-12-10 02:21:36 -08001119}
1120
Avi Kivity6aa8b732006-12-10 02:21:36 -08001121static void nonpaging_free(struct kvm_vcpu *vcpu)
1122{
Avi Kivity17ac10a2007-01-05 16:36:40 -08001123 mmu_free_roots(vcpu);
Avi Kivity6aa8b732006-12-10 02:21:36 -08001124}
1125
1126static int nonpaging_init_context(struct kvm_vcpu *vcpu)
1127{
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001128 struct kvm_mmu *context = &vcpu->arch.mmu;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001129
1130 context->new_cr3 = nonpaging_new_cr3;
1131 context->page_fault = nonpaging_page_fault;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001132 context->gva_to_gpa = nonpaging_gva_to_gpa;
1133 context->free = nonpaging_free;
Avi Kivityc7addb92007-09-16 18:58:32 +02001134 context->prefetch_page = nonpaging_prefetch_page;
Avi Kivitycea0f0e2007-01-05 16:36:43 -08001135 context->root_level = 0;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001136 context->shadow_root_level = PT32E_ROOT_LEVEL;
Avi Kivity17c3ba92007-06-04 15:58:30 +03001137 context->root_hpa = INVALID_PAGE;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001138 return 0;
1139}
1140
Avi Kivityd835dfe2007-11-21 02:57:59 +02001141void kvm_mmu_flush_tlb(struct kvm_vcpu *vcpu)
Avi Kivity6aa8b732006-12-10 02:21:36 -08001142{
Avi Kivity1165f5f2007-04-19 17:27:43 +03001143 ++vcpu->stat.tlb_flush;
Christian Ehrhardtcbdd1be2007-09-09 15:41:59 +03001144 kvm_x86_ops->tlb_flush(vcpu);
Avi Kivity6aa8b732006-12-10 02:21:36 -08001145}
1146
1147static void paging_new_cr3(struct kvm_vcpu *vcpu)
1148{
Avi Kivity374cbac2007-01-05 16:36:43 -08001149 pgprintk("%s: cr3 %lx\n", __FUNCTION__, vcpu->cr3);
Avi Kivitycea0f0e2007-01-05 16:36:43 -08001150 mmu_free_roots(vcpu);
Avi Kivity6aa8b732006-12-10 02:21:36 -08001151}
1152
Avi Kivity6aa8b732006-12-10 02:21:36 -08001153static void inject_page_fault(struct kvm_vcpu *vcpu,
1154 u64 addr,
1155 u32 err_code)
1156{
Avi Kivityc3c91fe2007-11-25 14:04:58 +02001157 kvm_inject_page_fault(vcpu, addr, err_code);
Avi Kivity6aa8b732006-12-10 02:21:36 -08001158}
1159
Avi Kivity6aa8b732006-12-10 02:21:36 -08001160static void paging_free(struct kvm_vcpu *vcpu)
1161{
1162 nonpaging_free(vcpu);
1163}
1164
1165#define PTTYPE 64
1166#include "paging_tmpl.h"
1167#undef PTTYPE
1168
1169#define PTTYPE 32
1170#include "paging_tmpl.h"
1171#undef PTTYPE
1172
Avi Kivity17ac10a2007-01-05 16:36:40 -08001173static int paging64_init_context_common(struct kvm_vcpu *vcpu, int level)
Avi Kivity6aa8b732006-12-10 02:21:36 -08001174{
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001175 struct kvm_mmu *context = &vcpu->arch.mmu;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001176
1177 ASSERT(is_pae(vcpu));
1178 context->new_cr3 = paging_new_cr3;
1179 context->page_fault = paging64_page_fault;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001180 context->gva_to_gpa = paging64_gva_to_gpa;
Avi Kivityc7addb92007-09-16 18:58:32 +02001181 context->prefetch_page = paging64_prefetch_page;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001182 context->free = paging_free;
Avi Kivity17ac10a2007-01-05 16:36:40 -08001183 context->root_level = level;
1184 context->shadow_root_level = level;
Avi Kivity17c3ba92007-06-04 15:58:30 +03001185 context->root_hpa = INVALID_PAGE;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001186 return 0;
1187}
1188
Avi Kivity17ac10a2007-01-05 16:36:40 -08001189static int paging64_init_context(struct kvm_vcpu *vcpu)
1190{
1191 return paging64_init_context_common(vcpu, PT64_ROOT_LEVEL);
1192}
1193
Avi Kivity6aa8b732006-12-10 02:21:36 -08001194static int paging32_init_context(struct kvm_vcpu *vcpu)
1195{
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001196 struct kvm_mmu *context = &vcpu->arch.mmu;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001197
1198 context->new_cr3 = paging_new_cr3;
1199 context->page_fault = paging32_page_fault;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001200 context->gva_to_gpa = paging32_gva_to_gpa;
1201 context->free = paging_free;
Avi Kivityc7addb92007-09-16 18:58:32 +02001202 context->prefetch_page = paging32_prefetch_page;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001203 context->root_level = PT32_ROOT_LEVEL;
1204 context->shadow_root_level = PT32E_ROOT_LEVEL;
Avi Kivity17c3ba92007-06-04 15:58:30 +03001205 context->root_hpa = INVALID_PAGE;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001206 return 0;
1207}
1208
1209static int paging32E_init_context(struct kvm_vcpu *vcpu)
1210{
Avi Kivity17ac10a2007-01-05 16:36:40 -08001211 return paging64_init_context_common(vcpu, PT32E_ROOT_LEVEL);
Avi Kivity6aa8b732006-12-10 02:21:36 -08001212}
1213
1214static int init_kvm_mmu(struct kvm_vcpu *vcpu)
1215{
1216 ASSERT(vcpu);
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001217 ASSERT(!VALID_PAGE(vcpu->arch.mmu.root_hpa));
Avi Kivity6aa8b732006-12-10 02:21:36 -08001218
1219 if (!is_paging(vcpu))
1220 return nonpaging_init_context(vcpu);
Avi Kivitya9058ec2006-12-29 16:49:37 -08001221 else if (is_long_mode(vcpu))
Avi Kivity6aa8b732006-12-10 02:21:36 -08001222 return paging64_init_context(vcpu);
1223 else if (is_pae(vcpu))
1224 return paging32E_init_context(vcpu);
1225 else
1226 return paging32_init_context(vcpu);
1227}
1228
1229static void destroy_kvm_mmu(struct kvm_vcpu *vcpu)
1230{
1231 ASSERT(vcpu);
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001232 if (VALID_PAGE(vcpu->arch.mmu.root_hpa)) {
1233 vcpu->arch.mmu.free(vcpu);
1234 vcpu->arch.mmu.root_hpa = INVALID_PAGE;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001235 }
1236}
1237
1238int kvm_mmu_reset_context(struct kvm_vcpu *vcpu)
1239{
Avi Kivity17c3ba92007-06-04 15:58:30 +03001240 destroy_kvm_mmu(vcpu);
1241 return init_kvm_mmu(vcpu);
1242}
Eddie Dong8668a3c2007-10-10 14:26:45 +08001243EXPORT_SYMBOL_GPL(kvm_mmu_reset_context);
Avi Kivity17c3ba92007-06-04 15:58:30 +03001244
1245int kvm_mmu_load(struct kvm_vcpu *vcpu)
1246{
Avi Kivity714b93d2007-01-05 16:36:53 -08001247 int r;
1248
Shaohua Li11ec2802007-07-23 14:51:37 +08001249 mutex_lock(&vcpu->kvm->lock);
Avi Kivitye2dec932007-01-05 16:36:54 -08001250 r = mmu_topup_memory_caches(vcpu);
Avi Kivity17c3ba92007-06-04 15:58:30 +03001251 if (r)
1252 goto out;
1253 mmu_alloc_roots(vcpu);
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001254 kvm_x86_ops->set_cr3(vcpu, vcpu->arch.mmu.root_hpa);
Avi Kivity17c3ba92007-06-04 15:58:30 +03001255 kvm_mmu_flush_tlb(vcpu);
Avi Kivity714b93d2007-01-05 16:36:53 -08001256out:
Shaohua Li11ec2802007-07-23 14:51:37 +08001257 mutex_unlock(&vcpu->kvm->lock);
Avi Kivity714b93d2007-01-05 16:36:53 -08001258 return r;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001259}
Avi Kivity17c3ba92007-06-04 15:58:30 +03001260EXPORT_SYMBOL_GPL(kvm_mmu_load);
1261
1262void kvm_mmu_unload(struct kvm_vcpu *vcpu)
1263{
1264 mmu_free_roots(vcpu);
1265}
Avi Kivity6aa8b732006-12-10 02:21:36 -08001266
Avi Kivity09072da2007-05-01 14:16:52 +03001267static void mmu_pte_write_zap_pte(struct kvm_vcpu *vcpu,
Avi Kivity4db35312007-11-21 15:28:32 +02001268 struct kvm_mmu_page *sp,
Avi Kivityac1b7142007-03-08 17:13:32 +02001269 u64 *spte)
1270{
1271 u64 pte;
1272 struct kvm_mmu_page *child;
1273
1274 pte = *spte;
Avi Kivityc7addb92007-09-16 18:58:32 +02001275 if (is_shadow_present_pte(pte)) {
Avi Kivity4db35312007-11-21 15:28:32 +02001276 if (sp->role.level == PT_PAGE_TABLE_LEVEL)
Izik Eidus290fc382007-09-27 14:11:22 +02001277 rmap_remove(vcpu->kvm, spte);
Avi Kivityac1b7142007-03-08 17:13:32 +02001278 else {
1279 child = page_header(pte & PT64_BASE_ADDR_MASK);
Avi Kivity90cb0522007-07-17 13:04:56 +03001280 mmu_page_remove_parent_pte(child, spte);
Avi Kivityac1b7142007-03-08 17:13:32 +02001281 }
1282 }
Avi Kivityc7addb92007-09-16 18:58:32 +02001283 set_shadow_pte(spte, shadow_trap_nonpresent_pte);
Avi Kivityac1b7142007-03-08 17:13:32 +02001284}
1285
Avi Kivity00284252007-05-01 16:53:31 +03001286static void mmu_pte_write_new_pte(struct kvm_vcpu *vcpu,
Avi Kivity4db35312007-11-21 15:28:32 +02001287 struct kvm_mmu_page *sp,
Avi Kivity00284252007-05-01 16:53:31 +03001288 u64 *spte,
Avi Kivityc7addb92007-09-16 18:58:32 +02001289 const void *new, int bytes,
1290 int offset_in_pte)
Avi Kivity00284252007-05-01 16:53:31 +03001291{
Avi Kivity4db35312007-11-21 15:28:32 +02001292 if (sp->role.level != PT_PAGE_TABLE_LEVEL) {
Avi Kivity4cee5762007-11-18 16:37:07 +02001293 ++vcpu->kvm->stat.mmu_pde_zapped;
Avi Kivity00284252007-05-01 16:53:31 +03001294 return;
Avi Kivity4cee5762007-11-18 16:37:07 +02001295 }
Avi Kivity00284252007-05-01 16:53:31 +03001296
Avi Kivity4cee5762007-11-18 16:37:07 +02001297 ++vcpu->kvm->stat.mmu_pte_updated;
Avi Kivity4db35312007-11-21 15:28:32 +02001298 if (sp->role.glevels == PT32_ROOT_LEVEL)
1299 paging32_update_pte(vcpu, sp, spte, new, bytes, offset_in_pte);
Avi Kivity00284252007-05-01 16:53:31 +03001300 else
Avi Kivity4db35312007-11-21 15:28:32 +02001301 paging64_update_pte(vcpu, sp, spte, new, bytes, offset_in_pte);
Avi Kivity00284252007-05-01 16:53:31 +03001302}
1303
Avi Kivity79539ce2007-11-21 02:06:21 +02001304static bool need_remote_flush(u64 old, u64 new)
1305{
1306 if (!is_shadow_present_pte(old))
1307 return false;
1308 if (!is_shadow_present_pte(new))
1309 return true;
1310 if ((old ^ new) & PT64_BASE_ADDR_MASK)
1311 return true;
1312 old ^= PT64_NX_MASK;
1313 new ^= PT64_NX_MASK;
1314 return (old & ~new & PT64_PERM_MASK) != 0;
1315}
1316
1317static void mmu_pte_write_flush_tlb(struct kvm_vcpu *vcpu, u64 old, u64 new)
1318{
1319 if (need_remote_flush(old, new))
1320 kvm_flush_remote_tlbs(vcpu->kvm);
1321 else
1322 kvm_mmu_flush_tlb(vcpu);
1323}
1324
Avi Kivity12b7d282007-09-23 14:10:49 +02001325static bool last_updated_pte_accessed(struct kvm_vcpu *vcpu)
1326{
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001327 u64 *spte = vcpu->arch.last_pte_updated;
Avi Kivity12b7d282007-09-23 14:10:49 +02001328
1329 return !!(spte && (*spte & PT_ACCESSED_MASK));
1330}
1331
Avi Kivity09072da2007-05-01 14:16:52 +03001332void kvm_mmu_pte_write(struct kvm_vcpu *vcpu, gpa_t gpa,
Shaohua Life551882007-07-23 14:51:39 +08001333 const u8 *new, int bytes)
Avi Kivityda4a00f2007-01-05 16:36:44 -08001334{
Avi Kivity9b7a0322007-01-05 16:36:45 -08001335 gfn_t gfn = gpa >> PAGE_SHIFT;
Avi Kivity4db35312007-11-21 15:28:32 +02001336 struct kvm_mmu_page *sp;
Avi Kivity0e7bc4b2007-01-05 16:36:48 -08001337 struct hlist_node *node, *n;
Avi Kivity9b7a0322007-01-05 16:36:45 -08001338 struct hlist_head *bucket;
1339 unsigned index;
Avi Kivity79539ce2007-11-21 02:06:21 +02001340 u64 entry;
Avi Kivity9b7a0322007-01-05 16:36:45 -08001341 u64 *spte;
Avi Kivity9b7a0322007-01-05 16:36:45 -08001342 unsigned offset = offset_in_page(gpa);
Avi Kivity0e7bc4b2007-01-05 16:36:48 -08001343 unsigned pte_size;
Avi Kivity9b7a0322007-01-05 16:36:45 -08001344 unsigned page_offset;
Avi Kivity0e7bc4b2007-01-05 16:36:48 -08001345 unsigned misaligned;
Avi Kivityfce06572007-05-01 16:44:05 +03001346 unsigned quadrant;
Avi Kivity9b7a0322007-01-05 16:36:45 -08001347 int level;
Avi Kivity86a5ba02007-01-05 16:36:50 -08001348 int flooded = 0;
Avi Kivityac1b7142007-03-08 17:13:32 +02001349 int npte;
Avi Kivity9b7a0322007-01-05 16:36:45 -08001350
Avi Kivityda4a00f2007-01-05 16:36:44 -08001351 pgprintk("%s: gpa %llx bytes %d\n", __FUNCTION__, gpa, bytes);
Avi Kivity4cee5762007-11-18 16:37:07 +02001352 ++vcpu->kvm->stat.mmu_pte_write;
Avi Kivityc7addb92007-09-16 18:58:32 +02001353 kvm_mmu_audit(vcpu, "pre pte write");
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001354 if (gfn == vcpu->arch.last_pt_write_gfn
Avi Kivity12b7d282007-09-23 14:10:49 +02001355 && !last_updated_pte_accessed(vcpu)) {
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001356 ++vcpu->arch.last_pt_write_count;
1357 if (vcpu->arch.last_pt_write_count >= 3)
Avi Kivity86a5ba02007-01-05 16:36:50 -08001358 flooded = 1;
1359 } else {
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001360 vcpu->arch.last_pt_write_gfn = gfn;
1361 vcpu->arch.last_pt_write_count = 1;
1362 vcpu->arch.last_pte_updated = NULL;
Avi Kivity86a5ba02007-01-05 16:36:50 -08001363 }
Avi Kivity9b7a0322007-01-05 16:36:45 -08001364 index = kvm_page_table_hashfn(gfn) % KVM_NUM_MMU_PAGES;
1365 bucket = &vcpu->kvm->mmu_page_hash[index];
Avi Kivity4db35312007-11-21 15:28:32 +02001366 hlist_for_each_entry_safe(sp, node, n, bucket, hash_link) {
1367 if (sp->gfn != gfn || sp->role.metaphysical)
Avi Kivity9b7a0322007-01-05 16:36:45 -08001368 continue;
Avi Kivity4db35312007-11-21 15:28:32 +02001369 pte_size = sp->role.glevels == PT32_ROOT_LEVEL ? 4 : 8;
Avi Kivity0e7bc4b2007-01-05 16:36:48 -08001370 misaligned = (offset ^ (offset + bytes - 1)) & ~(pte_size - 1);
Avi Kivitye925c5b2007-04-30 14:47:02 +03001371 misaligned |= bytes < 4;
Avi Kivity86a5ba02007-01-05 16:36:50 -08001372 if (misaligned || flooded) {
Avi Kivity0e7bc4b2007-01-05 16:36:48 -08001373 /*
1374 * Misaligned accesses are too much trouble to fix
1375 * up; also, they usually indicate a page is not used
1376 * as a page table.
Avi Kivity86a5ba02007-01-05 16:36:50 -08001377 *
1378 * If we're seeing too many writes to a page,
1379 * it may no longer be a page table, or we may be
1380 * forking, in which case it is better to unmap the
1381 * page.
Avi Kivity0e7bc4b2007-01-05 16:36:48 -08001382 */
1383 pgprintk("misaligned: gpa %llx bytes %d role %x\n",
Avi Kivity4db35312007-11-21 15:28:32 +02001384 gpa, bytes, sp->role.word);
1385 kvm_mmu_zap_page(vcpu->kvm, sp);
Avi Kivity4cee5762007-11-18 16:37:07 +02001386 ++vcpu->kvm->stat.mmu_flooded;
Avi Kivity0e7bc4b2007-01-05 16:36:48 -08001387 continue;
1388 }
Avi Kivity9b7a0322007-01-05 16:36:45 -08001389 page_offset = offset;
Avi Kivity4db35312007-11-21 15:28:32 +02001390 level = sp->role.level;
Avi Kivityac1b7142007-03-08 17:13:32 +02001391 npte = 1;
Avi Kivity4db35312007-11-21 15:28:32 +02001392 if (sp->role.glevels == PT32_ROOT_LEVEL) {
Avi Kivityac1b7142007-03-08 17:13:32 +02001393 page_offset <<= 1; /* 32->64 */
1394 /*
1395 * A 32-bit pde maps 4MB while the shadow pdes map
1396 * only 2MB. So we need to double the offset again
1397 * and zap two pdes instead of one.
1398 */
1399 if (level == PT32_ROOT_LEVEL) {
Avi Kivity6b8d0f92007-04-18 11:18:18 +03001400 page_offset &= ~7; /* kill rounding error */
Avi Kivityac1b7142007-03-08 17:13:32 +02001401 page_offset <<= 1;
1402 npte = 2;
1403 }
Avi Kivityfce06572007-05-01 16:44:05 +03001404 quadrant = page_offset >> PAGE_SHIFT;
Avi Kivity9b7a0322007-01-05 16:36:45 -08001405 page_offset &= ~PAGE_MASK;
Avi Kivity4db35312007-11-21 15:28:32 +02001406 if (quadrant != sp->role.quadrant)
Avi Kivityfce06572007-05-01 16:44:05 +03001407 continue;
Avi Kivity9b7a0322007-01-05 16:36:45 -08001408 }
Avi Kivity4db35312007-11-21 15:28:32 +02001409 spte = &sp->spt[page_offset / sizeof(*spte)];
Avi Kivityac1b7142007-03-08 17:13:32 +02001410 while (npte--) {
Avi Kivity79539ce2007-11-21 02:06:21 +02001411 entry = *spte;
Avi Kivity4db35312007-11-21 15:28:32 +02001412 mmu_pte_write_zap_pte(vcpu, sp, spte);
1413 mmu_pte_write_new_pte(vcpu, sp, spte, new, bytes,
Avi Kivityc7addb92007-09-16 18:58:32 +02001414 page_offset & (pte_size - 1));
Avi Kivity79539ce2007-11-21 02:06:21 +02001415 mmu_pte_write_flush_tlb(vcpu, entry, *spte);
Avi Kivityac1b7142007-03-08 17:13:32 +02001416 ++spte;
Avi Kivity9b7a0322007-01-05 16:36:45 -08001417 }
Avi Kivity9b7a0322007-01-05 16:36:45 -08001418 }
Avi Kivityc7addb92007-09-16 18:58:32 +02001419 kvm_mmu_audit(vcpu, "post pte write");
Avi Kivityda4a00f2007-01-05 16:36:44 -08001420}
1421
Avi Kivitya4360362007-01-05 16:36:45 -08001422int kvm_mmu_unprotect_page_virt(struct kvm_vcpu *vcpu, gva_t gva)
1423{
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001424 gpa_t gpa = vcpu->arch.mmu.gva_to_gpa(vcpu, gva);
Avi Kivitya4360362007-01-05 16:36:45 -08001425
Anthony Liguorif67a46f2007-10-10 19:25:50 -05001426 return kvm_mmu_unprotect_page(vcpu->kvm, gpa >> PAGE_SHIFT);
Avi Kivitya4360362007-01-05 16:36:45 -08001427}
1428
Avi Kivity22d95b12007-09-14 20:26:06 +03001429void __kvm_mmu_free_some_pages(struct kvm_vcpu *vcpu)
Avi Kivityebeace82007-01-05 16:36:47 -08001430{
1431 while (vcpu->kvm->n_free_mmu_pages < KVM_REFILL_PAGES) {
Avi Kivity4db35312007-11-21 15:28:32 +02001432 struct kvm_mmu_page *sp;
Avi Kivityebeace82007-01-05 16:36:47 -08001433
Avi Kivity4db35312007-11-21 15:28:32 +02001434 sp = container_of(vcpu->kvm->active_mmu_pages.prev,
1435 struct kvm_mmu_page, link);
1436 kvm_mmu_zap_page(vcpu->kvm, sp);
Avi Kivity4cee5762007-11-18 16:37:07 +02001437 ++vcpu->kvm->stat.mmu_recycled;
Avi Kivityebeace82007-01-05 16:36:47 -08001438 }
1439}
Avi Kivityebeace82007-01-05 16:36:47 -08001440
Avi Kivity30677142007-10-28 18:48:59 +02001441int kvm_mmu_page_fault(struct kvm_vcpu *vcpu, gva_t cr2, u32 error_code)
1442{
1443 int r;
1444 enum emulation_result er;
1445
1446 mutex_lock(&vcpu->kvm->lock);
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001447 r = vcpu->arch.mmu.page_fault(vcpu, cr2, error_code);
Avi Kivity30677142007-10-28 18:48:59 +02001448 if (r < 0)
1449 goto out;
1450
1451 if (!r) {
1452 r = 1;
1453 goto out;
1454 }
1455
Avi Kivityb733bfb2007-10-28 18:52:05 +02001456 r = mmu_topup_memory_caches(vcpu);
1457 if (r)
1458 goto out;
1459
Avi Kivity30677142007-10-28 18:48:59 +02001460 er = emulate_instruction(vcpu, vcpu->run, cr2, error_code, 0);
1461 mutex_unlock(&vcpu->kvm->lock);
1462
1463 switch (er) {
1464 case EMULATE_DONE:
1465 return 1;
1466 case EMULATE_DO_MMIO:
1467 ++vcpu->stat.mmio_exits;
1468 return 0;
1469 case EMULATE_FAIL:
1470 kvm_report_emulation_failure(vcpu, "pagetable");
1471 return 1;
1472 default:
1473 BUG();
1474 }
1475out:
1476 mutex_unlock(&vcpu->kvm->lock);
1477 return r;
1478}
1479EXPORT_SYMBOL_GPL(kvm_mmu_page_fault);
1480
Avi Kivity6aa8b732006-12-10 02:21:36 -08001481static void free_mmu_pages(struct kvm_vcpu *vcpu)
1482{
Avi Kivity4db35312007-11-21 15:28:32 +02001483 struct kvm_mmu_page *sp;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001484
Avi Kivityf51234c2007-01-05 16:36:52 -08001485 while (!list_empty(&vcpu->kvm->active_mmu_pages)) {
Avi Kivity4db35312007-11-21 15:28:32 +02001486 sp = container_of(vcpu->kvm->active_mmu_pages.next,
1487 struct kvm_mmu_page, link);
1488 kvm_mmu_zap_page(vcpu->kvm, sp);
Avi Kivityf51234c2007-01-05 16:36:52 -08001489 }
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001490 free_page((unsigned long)vcpu->arch.mmu.pae_root);
Avi Kivity6aa8b732006-12-10 02:21:36 -08001491}
1492
1493static int alloc_mmu_pages(struct kvm_vcpu *vcpu)
1494{
Avi Kivity17ac10a2007-01-05 16:36:40 -08001495 struct page *page;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001496 int i;
1497
1498 ASSERT(vcpu);
1499
Izik Eidus82ce2c92007-10-02 18:52:55 +02001500 if (vcpu->kvm->n_requested_mmu_pages)
1501 vcpu->kvm->n_free_mmu_pages = vcpu->kvm->n_requested_mmu_pages;
1502 else
1503 vcpu->kvm->n_free_mmu_pages = vcpu->kvm->n_alloc_mmu_pages;
Avi Kivity17ac10a2007-01-05 16:36:40 -08001504 /*
1505 * When emulating 32-bit mode, cr3 is only 32 bits even on x86_64.
1506 * Therefore we need to allocate shadow page tables in the first
1507 * 4GB of memory, which happens to fit the DMA32 zone.
1508 */
1509 page = alloc_page(GFP_KERNEL | __GFP_DMA32);
1510 if (!page)
1511 goto error_1;
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001512 vcpu->arch.mmu.pae_root = page_address(page);
Avi Kivity17ac10a2007-01-05 16:36:40 -08001513 for (i = 0; i < 4; ++i)
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001514 vcpu->arch.mmu.pae_root[i] = INVALID_PAGE;
Avi Kivity17ac10a2007-01-05 16:36:40 -08001515
Avi Kivity6aa8b732006-12-10 02:21:36 -08001516 return 0;
1517
1518error_1:
1519 free_mmu_pages(vcpu);
1520 return -ENOMEM;
1521}
1522
Ingo Molnar8018c272006-12-29 16:50:01 -08001523int kvm_mmu_create(struct kvm_vcpu *vcpu)
Avi Kivity6aa8b732006-12-10 02:21:36 -08001524{
Avi Kivity6aa8b732006-12-10 02:21:36 -08001525 ASSERT(vcpu);
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001526 ASSERT(!VALID_PAGE(vcpu->arch.mmu.root_hpa));
Avi Kivity6aa8b732006-12-10 02:21:36 -08001527
Ingo Molnar8018c272006-12-29 16:50:01 -08001528 return alloc_mmu_pages(vcpu);
1529}
Avi Kivity6aa8b732006-12-10 02:21:36 -08001530
Ingo Molnar8018c272006-12-29 16:50:01 -08001531int kvm_mmu_setup(struct kvm_vcpu *vcpu)
1532{
1533 ASSERT(vcpu);
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001534 ASSERT(!VALID_PAGE(vcpu->arch.mmu.root_hpa));
Avi Kivity2c264952006-12-22 01:05:28 -08001535
Ingo Molnar8018c272006-12-29 16:50:01 -08001536 return init_kvm_mmu(vcpu);
Avi Kivity6aa8b732006-12-10 02:21:36 -08001537}
1538
1539void kvm_mmu_destroy(struct kvm_vcpu *vcpu)
1540{
1541 ASSERT(vcpu);
1542
1543 destroy_kvm_mmu(vcpu);
1544 free_mmu_pages(vcpu);
Avi Kivity714b93d2007-01-05 16:36:53 -08001545 mmu_free_memory_caches(vcpu);
Avi Kivity6aa8b732006-12-10 02:21:36 -08001546}
1547
Avi Kivity90cb0522007-07-17 13:04:56 +03001548void kvm_mmu_slot_remove_write_access(struct kvm *kvm, int slot)
Avi Kivity6aa8b732006-12-10 02:21:36 -08001549{
Avi Kivity4db35312007-11-21 15:28:32 +02001550 struct kvm_mmu_page *sp;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001551
Avi Kivity4db35312007-11-21 15:28:32 +02001552 list_for_each_entry(sp, &kvm->active_mmu_pages, link) {
Avi Kivity6aa8b732006-12-10 02:21:36 -08001553 int i;
1554 u64 *pt;
1555
Avi Kivity4db35312007-11-21 15:28:32 +02001556 if (!test_bit(slot, &sp->slot_bitmap))
Avi Kivity6aa8b732006-12-10 02:21:36 -08001557 continue;
1558
Avi Kivity4db35312007-11-21 15:28:32 +02001559 pt = sp->spt;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001560 for (i = 0; i < PT64_ENT_PER_PAGE; ++i)
1561 /* avoid RMW */
Izik Eidus9647c142007-10-16 14:43:46 +02001562 if (pt[i] & PT_WRITABLE_MASK)
Avi Kivity6aa8b732006-12-10 02:21:36 -08001563 pt[i] &= ~PT_WRITABLE_MASK;
Avi Kivity6aa8b732006-12-10 02:21:36 -08001564 }
1565}
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001566
Avi Kivity90cb0522007-07-17 13:04:56 +03001567void kvm_mmu_zap_all(struct kvm *kvm)
Dor Laore0fa8262007-03-30 13:06:33 +03001568{
Avi Kivity4db35312007-11-21 15:28:32 +02001569 struct kvm_mmu_page *sp, *node;
Dor Laore0fa8262007-03-30 13:06:33 +03001570
Avi Kivity4db35312007-11-21 15:28:32 +02001571 list_for_each_entry_safe(sp, node, &kvm->active_mmu_pages, link)
1572 kvm_mmu_zap_page(kvm, sp);
Dor Laore0fa8262007-03-30 13:06:33 +03001573
Avi Kivity90cb0522007-07-17 13:04:56 +03001574 kvm_flush_remote_tlbs(kvm);
Dor Laore0fa8262007-03-30 13:06:33 +03001575}
1576
Avi Kivityb5a33a72007-04-15 16:31:09 +03001577void kvm_mmu_module_exit(void)
1578{
1579 if (pte_chain_cache)
1580 kmem_cache_destroy(pte_chain_cache);
1581 if (rmap_desc_cache)
1582 kmem_cache_destroy(rmap_desc_cache);
Avi Kivityd3d25b02007-05-30 12:34:53 +03001583 if (mmu_page_header_cache)
1584 kmem_cache_destroy(mmu_page_header_cache);
Avi Kivityb5a33a72007-04-15 16:31:09 +03001585}
1586
1587int kvm_mmu_module_init(void)
1588{
1589 pte_chain_cache = kmem_cache_create("kvm_pte_chain",
1590 sizeof(struct kvm_pte_chain),
Paul Mundt20c2df82007-07-20 10:11:58 +09001591 0, 0, NULL);
Avi Kivityb5a33a72007-04-15 16:31:09 +03001592 if (!pte_chain_cache)
1593 goto nomem;
1594 rmap_desc_cache = kmem_cache_create("kvm_rmap_desc",
1595 sizeof(struct kvm_rmap_desc),
Paul Mundt20c2df82007-07-20 10:11:58 +09001596 0, 0, NULL);
Avi Kivityb5a33a72007-04-15 16:31:09 +03001597 if (!rmap_desc_cache)
1598 goto nomem;
1599
Avi Kivityd3d25b02007-05-30 12:34:53 +03001600 mmu_page_header_cache = kmem_cache_create("kvm_mmu_page_header",
1601 sizeof(struct kvm_mmu_page),
Paul Mundt20c2df82007-07-20 10:11:58 +09001602 0, 0, NULL);
Avi Kivityd3d25b02007-05-30 12:34:53 +03001603 if (!mmu_page_header_cache)
1604 goto nomem;
1605
Avi Kivityb5a33a72007-04-15 16:31:09 +03001606 return 0;
1607
1608nomem:
1609 kvm_mmu_module_exit();
1610 return -ENOMEM;
1611}
1612
Zhang Xiantao3ad82a72007-11-20 13:11:38 +08001613/*
1614 * Caculate mmu pages needed for kvm.
1615 */
1616unsigned int kvm_mmu_calculate_mmu_pages(struct kvm *kvm)
1617{
1618 int i;
1619 unsigned int nr_mmu_pages;
1620 unsigned int nr_pages = 0;
1621
1622 for (i = 0; i < kvm->nmemslots; i++)
1623 nr_pages += kvm->memslots[i].npages;
1624
1625 nr_mmu_pages = nr_pages * KVM_PERMILLE_MMU_PAGES / 1000;
1626 nr_mmu_pages = max(nr_mmu_pages,
1627 (unsigned int) KVM_MIN_ALLOC_MMU_PAGES);
1628
1629 return nr_mmu_pages;
1630}
1631
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001632#ifdef AUDIT
1633
1634static const char *audit_msg;
1635
1636static gva_t canonicalize(gva_t gva)
1637{
1638#ifdef CONFIG_X86_64
1639 gva = (long long)(gva << 16) >> 16;
1640#endif
1641 return gva;
1642}
1643
1644static void audit_mappings_page(struct kvm_vcpu *vcpu, u64 page_pte,
1645 gva_t va, int level)
1646{
1647 u64 *pt = __va(page_pte & PT64_BASE_ADDR_MASK);
1648 int i;
1649 gva_t va_delta = 1ul << (PAGE_SHIFT + 9 * (level - 1));
1650
1651 for (i = 0; i < PT64_ENT_PER_PAGE; ++i, va += va_delta) {
1652 u64 ent = pt[i];
1653
Avi Kivityc7addb92007-09-16 18:58:32 +02001654 if (ent == shadow_trap_nonpresent_pte)
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001655 continue;
1656
1657 va = canonicalize(va);
Avi Kivityc7addb92007-09-16 18:58:32 +02001658 if (level > 1) {
1659 if (ent == shadow_notrap_nonpresent_pte)
1660 printk(KERN_ERR "audit: (%s) nontrapping pte"
1661 " in nonleaf level: levels %d gva %lx"
1662 " level %d pte %llx\n", audit_msg,
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001663 vcpu->arch.mmu.root_level, va, level, ent);
Avi Kivityc7addb92007-09-16 18:58:32 +02001664
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001665 audit_mappings_page(vcpu, ent, va, level - 1);
Avi Kivityc7addb92007-09-16 18:58:32 +02001666 } else {
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001667 gpa_t gpa = vcpu->arch.mmu.gva_to_gpa(vcpu, va);
Avi Kivity1d28f5f2007-11-21 15:01:44 +02001668 struct page *page = gpa_to_page(vcpu, gpa);
1669 hpa_t hpa = page_to_phys(page);
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001670
Avi Kivityc7addb92007-09-16 18:58:32 +02001671 if (is_shadow_present_pte(ent)
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001672 && (ent & PT64_BASE_ADDR_MASK) != hpa)
Avi Kivityc7addb92007-09-16 18:58:32 +02001673 printk(KERN_ERR "xx audit error: (%s) levels %d"
1674 " gva %lx gpa %llx hpa %llx ent %llx %d\n",
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001675 audit_msg, vcpu->arch.mmu.root_level,
Mike Dayd77c26f2007-10-08 09:02:08 -04001676 va, gpa, hpa, ent,
1677 is_shadow_present_pte(ent));
Avi Kivityc7addb92007-09-16 18:58:32 +02001678 else if (ent == shadow_notrap_nonpresent_pte
1679 && !is_error_hpa(hpa))
1680 printk(KERN_ERR "audit: (%s) notrap shadow,"
1681 " valid guest gva %lx\n", audit_msg, va);
Izik Eidusb4231d62007-11-20 11:49:33 +02001682 kvm_release_page_clean(page);
Avi Kivityc7addb92007-09-16 18:58:32 +02001683
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001684 }
1685 }
1686}
1687
1688static void audit_mappings(struct kvm_vcpu *vcpu)
1689{
Avi Kivity1ea252a2007-03-08 11:48:09 +02001690 unsigned i;
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001691
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001692 if (vcpu->arch.mmu.root_level == 4)
1693 audit_mappings_page(vcpu, vcpu->arch.mmu.root_hpa, 0, 4);
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001694 else
1695 for (i = 0; i < 4; ++i)
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001696 if (vcpu->arch.mmu.pae_root[i] & PT_PRESENT_MASK)
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001697 audit_mappings_page(vcpu,
Zhang Xiantaoad312c72007-12-13 23:50:52 +08001698 vcpu->arch.mmu.pae_root[i],
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001699 i << 30,
1700 2);
1701}
1702
1703static int count_rmaps(struct kvm_vcpu *vcpu)
1704{
1705 int nmaps = 0;
1706 int i, j, k;
1707
1708 for (i = 0; i < KVM_MEMORY_SLOTS; ++i) {
1709 struct kvm_memory_slot *m = &vcpu->kvm->memslots[i];
1710 struct kvm_rmap_desc *d;
1711
1712 for (j = 0; j < m->npages; ++j) {
Izik Eidus290fc382007-09-27 14:11:22 +02001713 unsigned long *rmapp = &m->rmap[j];
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001714
Izik Eidus290fc382007-09-27 14:11:22 +02001715 if (!*rmapp)
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001716 continue;
Izik Eidus290fc382007-09-27 14:11:22 +02001717 if (!(*rmapp & 1)) {
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001718 ++nmaps;
1719 continue;
1720 }
Izik Eidus290fc382007-09-27 14:11:22 +02001721 d = (struct kvm_rmap_desc *)(*rmapp & ~1ul);
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001722 while (d) {
1723 for (k = 0; k < RMAP_EXT; ++k)
1724 if (d->shadow_ptes[k])
1725 ++nmaps;
1726 else
1727 break;
1728 d = d->more;
1729 }
1730 }
1731 }
1732 return nmaps;
1733}
1734
1735static int count_writable_mappings(struct kvm_vcpu *vcpu)
1736{
1737 int nmaps = 0;
Avi Kivity4db35312007-11-21 15:28:32 +02001738 struct kvm_mmu_page *sp;
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001739 int i;
1740
Avi Kivity4db35312007-11-21 15:28:32 +02001741 list_for_each_entry(sp, &vcpu->kvm->active_mmu_pages, link) {
1742 u64 *pt = sp->spt;
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001743
Avi Kivity4db35312007-11-21 15:28:32 +02001744 if (sp->role.level != PT_PAGE_TABLE_LEVEL)
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001745 continue;
1746
1747 for (i = 0; i < PT64_ENT_PER_PAGE; ++i) {
1748 u64 ent = pt[i];
1749
1750 if (!(ent & PT_PRESENT_MASK))
1751 continue;
1752 if (!(ent & PT_WRITABLE_MASK))
1753 continue;
1754 ++nmaps;
1755 }
1756 }
1757 return nmaps;
1758}
1759
1760static void audit_rmap(struct kvm_vcpu *vcpu)
1761{
1762 int n_rmap = count_rmaps(vcpu);
1763 int n_actual = count_writable_mappings(vcpu);
1764
1765 if (n_rmap != n_actual)
1766 printk(KERN_ERR "%s: (%s) rmap %d actual %d\n",
1767 __FUNCTION__, audit_msg, n_rmap, n_actual);
1768}
1769
1770static void audit_write_protection(struct kvm_vcpu *vcpu)
1771{
Avi Kivity4db35312007-11-21 15:28:32 +02001772 struct kvm_mmu_page *sp;
Izik Eidus290fc382007-09-27 14:11:22 +02001773 struct kvm_memory_slot *slot;
1774 unsigned long *rmapp;
1775 gfn_t gfn;
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001776
Avi Kivity4db35312007-11-21 15:28:32 +02001777 list_for_each_entry(sp, &vcpu->kvm->active_mmu_pages, link) {
1778 if (sp->role.metaphysical)
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001779 continue;
1780
Avi Kivity4db35312007-11-21 15:28:32 +02001781 slot = gfn_to_memslot(vcpu->kvm, sp->gfn);
1782 gfn = unalias_gfn(vcpu->kvm, sp->gfn);
Izik Eidus290fc382007-09-27 14:11:22 +02001783 rmapp = &slot->rmap[gfn - slot->base_gfn];
1784 if (*rmapp)
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001785 printk(KERN_ERR "%s: (%s) shadow page has writable"
1786 " mappings: gfn %lx role %x\n",
Avi Kivity4db35312007-11-21 15:28:32 +02001787 __FUNCTION__, audit_msg, sp->gfn,
1788 sp->role.word);
Avi Kivity37a7d8b2007-01-05 16:36:56 -08001789 }
1790}
1791
1792static void kvm_mmu_audit(struct kvm_vcpu *vcpu, const char *msg)
1793{
1794 int olddbg = dbg;
1795
1796 dbg = 0;
1797 audit_msg = msg;
1798 audit_rmap(vcpu);
1799 audit_write_protection(vcpu);
1800 audit_mappings(vcpu);
1801 dbg = olddbg;
1802}
1803
1804#endif