From patchwork Wed Dec 6 20:03:24 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845320 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="y9skui57"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVDh3Wm5z9s81 for ; Thu, 7 Dec 2017 07:13:40 +1100 (AEDT) Received: from localhost ([::1]:57553 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMg4Y-0008Ne-Ib for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:13:38 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49493) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfvX-0005fj-EZ for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:20 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvU-0002Lz-81 for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:19 -0500 Received: from mail-sn1nam01on0071.outbound.protection.outlook.com ([104.47.32.71]:52950 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfvU-0002Lp-0c for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:16 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=Q8Hw83gf7H9EmKYA5ZPgh/lOGLqHVBKjBRxbfTZwH7c=; b=y9skui574kQqlJBa71L/9dWLnfbVBdrjKJWOnD7UjdN8Cy1KU0yQoDlB8d1RviQEW1kT1Q818iXSko6nQzipQhPRTdhW7eZNGQZk8IbBRDmIeGdmYW0pc5Pc9jvII14sNPtGXuk+7oeXrpUlmg1KwnFZPNuWc231c8KsUMR3Wi4= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:10 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:24 -0600 Message-Id: <20171206200346.116537-2-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: df01fa6b-895c-41f8-8c03-08d53ce48505 X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:wTdW7Niot++OwmWBrX2WsEPgKdaZt2DKdf0VxHOIIzNg2GN3DDSOzrepmFseRWmNyUj+/WxpK871fchboUEx9mD/s4FfU2if5eIQJ4Yx8+f5ytZR64Q5eOxyfA5v6k/te0r8jb/lZXFIqF8W2LCkbk8Ow2zKhqG3GZlQSirX95ZCp0qLym6XQR9/232Ulwxr6839jrCvfF4UgpcWKqFyrV12SegEVaDrTaUPy2qGhsDW+4m2g2Z98rsVbxX4OVDW; 25:QnyjhHWvpWxd75QnQcYbQJZ8dC5r/VAegZrJluy8F6cNXsLfD4MuJXowPKGao1ttP/DST6m4Itc+rMlrGlkC3mImn7QZNGpyR6kfiVIJKzE0CNuwDTPk2/Gk8cEm4UfJ9fNoSjGaUqZWp45u/2B94ZS7TvqjCF51xWmLwZ0bUHAeHnn8ak+MFt4CFSLLH+T2io8w3HVeCPikjwCKAcweZHijdCYXCcOrinM5s+SXaXcHxA8j+auWq/PpHeN4/Xgz6XO03Yq91YM8R+HLBft11KprX6AmUpNHDSGE0dNHrU8wSUSyBH6TgDcljM0rWzKQfD2BpPvEFkYGXPp9I3VYPw==; 31:/ttqMPleAnVUWPkWRXbhEvsnH7WpAxUflUok/vD5TkJSaEGDZt1ZiDAhC7sqCY+kbmlArnbpV3QJuOnZFZ2dQlbtHNF5onyZF59JmsSjblD0TjuDDiq+6o9Ve81kK0ayJRsGRwfCnX2m+l6qalrFlxVhd3Wrry7JhOC9PYkIRlNO3H4YlHV8h7zDhw4xbFdJM5FyhFrcAKhTkGS3RmSDGAcicNfwW2HfQU6dxXKtrqo= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:xg/QqIMbS94Yq588Eg7or9fxWsk8jk4++bSCMbBvk+OhfcNxWTcHri7AIqnkBj9g33WLrwGTGwPhrH67W/P5dYynLVhyvp04W/H4BIbbtlQAPs44Dp2+qUFcwFedOTwhjYokBQENEAZqx12qrhzslaREbDUSz1of5t9Z8jJmpmIVj/t7UuvXNIirQP/kUOEbVcGDtOWOOXr3Tbte3+j5mfMQUrwxnn2elqZXHF0mrVoFCKSjxRRsXzbUkc+DPKv8UhnHgQLHRt0BjYcA2PQUidNCcG/E+KsyfHKevbRm3t5Of2/7VP6wB/hrh/R2Bag7J1awr46CjgqChmBVI5LcoSun7C12zIcHMdXp59FxBdGPS4wNDWeHqzk1yQ5oXxXcqRx9G/agQ7ZoDqO/aaCiY+IoNquXqIekfrso8vOhSSHYzXZvQZvri9+cUN0GyCqWE/Qwx+ZtUlKqwFCCswpIifZEz9yf9zlmxk+jpHqvOo9FZeafP1Ta0CK98kVlpRUC; 4:FRloA8qQollPeksTDPO3mEJYWNWP3c53lhK9y4LV11piqvbSlFRkGhiFlbTAyeH4SsdkmzMc9POlarJOg8at10rvo7mggScIfpnsuHquqY1ttgUoTXKST9fDV9c+OS07omdyyM/Gx0Rz8Un9uit2gMDlu4C1xo0N3WA6AUnUS+ECFwETTxqsu+60A73NeWUVE0QcEdPte0/oAr/qLA/+M97qSmq2p7rmAcwyhB8dM0IG6RErHziev3ykDiuJjbjhmtYjuk0VflTVxjcyDT3WR6MaeUlUjj4lFasxClixWcFLzLCksCs4IVYKQhbAfruHt0onQPF9iux9oiGIyyHQ+Q== X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110)(192813158149592); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:S/r3oGGX/7JYJNfK/31UBSLjBnIx4Az3X5k7L8UlD?= JuybrecZPhqclnE8n7+QFOWcfmLaKH1AvB2hjmC3DAZoJoUTIAgOc054S+sU2lGY6rznrdlkNqg7f/Myo9obnVQCxLUZbPM2GItDutS8lvEG0cwxVdFYfzXf0cStszFKmiyCtLM/E5WHX4ReXnfMwmAd1UnXHFJCip8jRyhx4mXiK+xfagOfXyJST+AdfvgVRB1VVk0OvEyIZQzpNgBM3oqTZX0yV8R7BJaOtovKpW7eWICL5O+yKZNk36FV0VuGDrRjOl0eD1Qgu0ridMv0Yao1AqqcjbeSC7R0a5SVfZZBdGFnRr+2g/9tQ7xkbUnx6gPmUn+FBSx6BtUbrqy6RD4Ww/xOAP+f/xwhDq35mWUukqoEsmf6W59CJFt3xQG8spYpzrLmzLl6sPqTRzqZ2QAL58G4mOIBO7992yM3YKcOW0zJxcKxZvB8rJxu9LQ2CIix2ER5rtpDagS88DQEHOSk0YLB/K4/4rzq5kQKW20zdctQ1Jn7nCRpgkvV4o3M2xw5Yvd+92D53kn7IHBARDOfknlXbFy1UyXq6plkd1zPTaDaMSmgpauVdEX9rQPQQa3SOAbKzb5JJAO3QdM3phwn6OEUsCDsTbiJuHOabpmBrsWYWwnU6Fdn0/VbUU4617AY3I1uLT+/T47iC2Ue7Le2xFrzXeWWzJziMQsAhYsqe8ixF/Vi4E0Y86Shf4iCBUJNaxVw4msSgxk7dykzAO4tlmCqUTwEHgqquJdZ7KCCmo3rHnLggEs6mfuw6byvSWpQJH0BC4soE2XfLgg8dHDK9ldFXymPpWVOLK7b2wO4OJipMuRn8e3wIUuMkzkz9C4Qxrx5h03IiLVpzCAyN9n4h+9SWgsBpbAikvfy+rucnKs1op3UZL/+jl0B+fuWIdg5XCCzGrckqW07++ayGHBmbTkmP4ZO01EdgNg+24SjuZHsZMowJ1x4i5n65LdqcIED+kdxZy+C1SxfzcmUcf43XUmO9gXRs4cDktX8IfotGSeXXhqJE9gIB/UDfg+Eh/9Ds5vm3kp3k50MHUfljQW3MgJazNsLgURJB9WHN8dBxiBkRphwK1Q7iOpHchO/JQ0rssCKu89TvOjV7YtCJRYoBevITOWJh0603MLuI1qEIh0EuOCfxTk46gFXkuFi1FQgsUeoLNwRK0O0PfAPByShexn+X0IrRu+XmKGozj2xg== X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:/1OvGSaeZUMQzkudBTsSTcjrptEzwBVwmkGDmaNEWmoISZ5EC/T6clpPi4qz5BUY3mgYGfNd8moReLUKYvatVKiumqSyZ1iYoXGLBDxDgmteGRaJT0McAB71hLfgJp9OPyiiiNzWKZQDr4vuBvV6mCLGklgvSVYtB92cqXIBOE4L4kpmU9q4FbcY84t9JAWD7DJyg5FeNDc1/EMzSf/+QiQNaBO+i9jKvNxa9uhW7mP3TWMCmRZ7QK5LAvwz7v2vwM5+POSu8vTviNVUXUvQLe7ouDls5w1fI55ceSXldiMdrZMRAPcnVF+r7Vq0Tp5CX+CrAmuGxKdDwfPuxM9CwT0yUFvm7bsEitPyMo7DmhU=; 5:0mS+XQ7Ogg7ovVWC5zsDipSe98M8mlwVd6TrQVghuJpKdbUjitBXdvudxsWcgEi3mtmbXtl+xYPuaF1WLXrnSKmbOWYRG0XEAClPqdW/ZF9iijuG7rIe5jc1SIr+Dj9xndAcOx+XQpHMQPUplqRWpBCFoqSDxwDMR1YldXkTQ6M=; 24:i7Tc+Sdc/IR2AzhMckG1IHhQwm+SoHVpN1enDfdXr78LNg8CJsvhHJ1D2VfCiR2/ECIDV0eXuLs/Cq93723Q62FzbV9b9STrYqFOIrMQ5jc=; 7:/xz40ie2cHBT0LA4ynk3pchbCX0ZfRQNxfYvJfjzC3vj2xA+gci1QMbRTmpJrwhslQZ308ijXOg+OsaVRdf8lCvY+DFyMFktpvKiFpYUirectnzlWh8HlLsQkLKeofJ3ACopfkEFOKKxs3C32A//wus/U2SdgzGh+DD8Jr/RcE2/8cb8R/pn3vKH546ZKilbM4FcP4KXUNdr3KNhyxOWzbGI7RmxG5ZgkeyPWprLJT3yOKtbdjOh6Gg5O2f5ZXV3 SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:XLdtFvj9jiaDeHQA+XNlThGzsH/8hojZHnITktnpreq33sRsbtytzP+Z7UBMrAyUrUjVixyWBvAmuJ5nqyzrMQYbcSEefp8aS6NI6tKC7tHmvgGKzvcZXgKM8VeqxVwkBjugGhHJARWNhZi99ctIbGPisFlTHHElkSEawLH408WWXsZqqcG6eCAJyDlOV3Ei93ujZkq1Aezm81WXzSv7ODA5ahqTbZOD4csQRJ0HU6PMcma+KRj5yxT2JqjEQni+ X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:10.7549 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: df01fa6b-895c-41f8-8c03-08d53ce48505 X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.71 Subject: [Qemu-devel] [PATCH v5 01/23] memattrs: add debug attribute X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" The debug attribute will be set when qemu attempts to access the guest memory for debug (e.g memory access from gdbstub, memory dump commands etc). When guest memory is encrypted, the debug access will need to go through the memory encryption APIs. Cc: Alistair Francis Cc: Peter Maydell Cc: Edgar E. Iglesias" Cc: Richard Henderson Cc: Paolo Bonzini Signed-off-by: Brijesh Singh --- include/exec/memattrs.h | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/include/exec/memattrs.h b/include/exec/memattrs.h index d4a16420984b..721362e06292 100644 --- a/include/exec/memattrs.h +++ b/include/exec/memattrs.h @@ -37,6 +37,8 @@ typedef struct MemTxAttrs { unsigned int user:1; /* Requester ID (for MSI for example) */ unsigned int requester_id:16; + /* Debug memory access for encrypted guest */ + unsigned int debug:1; } MemTxAttrs; /* Bus masters which don't specify any attributes will get this, @@ -56,4 +58,6 @@ typedef struct MemTxAttrs { #define MEMTX_DECODE_ERROR (1U << 1) /* nothing at that address */ typedef uint32_t MemTxResult; +/* Access the guest memory for debug purposes */ +#define MEMTXATTRS_DEBUG ((MemTxAttrs) { .debug = 1 }) #endif From patchwork Wed Dec 6 20:03:25 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845334 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="k/U4zSS9"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVTH30Qsz9s72 for ; Thu, 7 Dec 2017 07:24:35 +1100 (AEDT) Received: from localhost ([::1]:57638 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMgF7-0002VR-EU for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:24:33 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49529) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfva-0005k7-81 for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:23 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvW-0002Mh-PQ for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:22 -0500 Received: from mail-sn1nam01on0083.outbound.protection.outlook.com ([104.47.32.83]:38343 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfvW-0002MW-Gh for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:18 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=+XmUivdY8jsXQyZB+oGMmrd2yL2lnQMXfyTEpsC/XaY=; b=k/U4zSS9LuSxoIG96p3j3IuqJ1yI/yYry1IGWvetcf3A57j5i9tIsIDFSUEVxUFzfD5oHAlc8lEwsb9DiD8zo7gZr8N5TlZ288wBoFVb3bvWtwfvKKUWt0kOhS+bjLS3POqW5okVoCHbyU0hum98LQrS70VagjFCE1tIZdDWIPw= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:12 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:25 -0600 Message-Id: <20171206200346.116537-3-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: 3237ff97-8693-4a9a-f2dd-08d53ce48631 X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:P5qHwIUDoywioDsk6gtQWoizhJmdobuq8unlhf3gJTMmkTevfXwOyQzOBpTIrM/xXXgSdLfingtWzJ0R+0NdGEKiQ2HW8CmgJB41EchzRZhEYRRZWthmjejT+tUQ4mXgG9vniEQL7IER+PwRSLAWfGPbBcSJysex1n3AjcZMfV7pvTSnekxCP0wrQBQwhXaZ9AvzJfTy8dT6DPgzK1UUO1ee2YvWLqdu4eZSkHAYLfu/rs2dzrILxAjbxdZirlCS; 25:L0pZfmSxc/a3S1gnOlkTto/WFXGIFCot+shO/1d+QlJTh0CMyAp+8X++qQJE6XCq/LdXdIy/tCGupzeTDFQjBycpsk6Eel0mOv5t9EBJKTJHiCdsI6kou3St28ukXLgi3IZ2ry/H4arozjhfeZrOhUAK9C8YNDse45zoGCRdJ9vD+zCMCUjXOqdG2z3McRqPeLhFhb3Km1DdSyC2rAraLHif7ARJMt+xDBBJrYDmAbmlva8btRDPHUB8IKhIz5Kc2cSzKm4RR6I25vr1exs3aj/DUUOitl+vfGi4R0nYPOFQljT3sm/QCQxzPbhPOi8xwd8qmhmUCPBIx5u851xBWQ==; 31:Lkrpl6Im67UUxaiN9IOQyS/4/smzieSwZN6ePReKZxdOl9NyDtzzNnn8oynwiJfMnjeQjvAHTfXFkTOtrCgijhJNPjPaw01yeA4edXlpD0G1yhg99YKbq2evpnCCgGhAe27ec/HUR1pw4G8ZVx0uHNZdRyrNi2+caHqSD2vocIR+gwHXRBWlH6rAU+y16X4PVPaxl+K3h+NrTX3QGHQb6ChMEqaN46qmEr79GjY01JE= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:r6AHCNvolh64QEsaoVr2E1VCHaPsDBmH+LuR1wm2OymGmQa58w/tQucKKH8lpRZCc55mKE2SRw8qFJbAydaz8BgGTTLq+SPkWt/wsM6eh2Xgi2tB7Kz7kMLKaUBnECPvA+WGcSPcaIb3vviwDj+eq/lXG/rLQMQq3i0qy7hLo6EA8eCfoB8VNB5nud+9eRWGaSIac9gPIB1VwU614wQekN47xyxfa2Is3oaU/4b+q84bBJcQDYXSzspUhyjXRmox37XVhJyKZSYjQIvr2TMi4ba1MzHzS7VX3rlsnd89IhFD4T0r7rzCX4sW3dr9QI7Ng3vuNjuQyL/ji4WLDREBKUMjtE4ffWwg3CuYhhurtU8MpODOz36LqW3qZHOprvPf4NtXSMLIRwWfmCAAwZzy+zZGBGelIQmKcJ+WTfiaBXto2ibygxmL5JzMqKW5hCF+lD1MWWtP5gEKfnzK86bTJs/fdjmGsyHMXfcGd1ZSbSN5T8DgxAhuEG7rjcVVah/G; 4:RzgGTqWSbv0Bn/9Dy1gPO3VxriVQW1Pfgc/OuNFtQux3W56lw+LXwJpI5Y7ObAbjK+SvxTdcK9eZrB9blpVRXYdnTJ1BS4TzRA2yfgufsZkDEeLukCfytSH+rlLyaoMWo5uKPVUMcWC9xmsSR/gEce+wZSNBYN9vYubQ2aDZydSziBRF32gK6Mkqpux69xZXCorskSGwRQcfeRoXovEr5DSw/Ti38fYx/WgSSBtqVxWRLGYlXh22aW0DUyCc6ixUuIfjTeHbZXYCqoLFVnIwk6mGV784wPpkTvjJvecG6LoqKcZ5ZtnGn4owUkaJRM46 X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(575784001)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:IlaaZzQOC0R+4771UYhA/436JJTf2sLRjJv434zda?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:RQVqZu9tSllxXoLOnLzNn5+6pNztiUxkVxXOnpOYUjnOh2ygu+2q2Bj6c0/MsOi1Xqixm1cqDddxGuw0UhrWW+uS53FHE7vhP4dfk77RbSwNZcSPG+GmQ/P/sSA8kNYaNK5aCbAyNc1xMgdlJYH2y9yFcVz8+OoytbJgg2Brr79Q/8PY8gPD1PioDsRb94yx2S4Pm+xduhqI06cPfZp/M/Qg5iiKtkEDtcx9tX7Z5F2wFLaTfqw6/K5d+2wsiI7ShlxCpmTYK7l0cbeB/rZNhRzXBpTphf8lmMw3LhELutRKJp44E7Q6goPHBj/zdZFbueegisVekK6yLz5ppT2bIsMrNpKa6QNfWIUPuWGycx0=; 5:k4R9kilYVXB+0OVBtZiOA7Ic8oC8jHTgNneUTrq5+WAt5kXyW2mYjhJI6/gtv8J3H/mJO+UPxEyohy6W53f4KS9OMWZxKzIv8RsfjESX9nHhXxirEP2Uq5vHFabS6HPOLIno1iVDMzYXRaGr+jOfKTfciK/8KAXHY+9vqwRHwcQ=; 24:3Xr/z0p77vyjRm+olSUNVHxsmQjjCIvZ5EsHVVnsskZm/EHV8ZheHKA2evqNYjHMws6gIg1p8rE870sDVo9QddXbJw7c1xc6OURWLXiZg5Q=; 7:d17V8BzptarzJjQzi3x7TxjOfHBEGJFeG/TS2hPhBOydiPZ/CZevOUkUNeSrWhybMZJeVRGSd3Vy4b712i9UfNOke1i6bPczLy1iCuao5DJejgLrwSw51RHjEBtD/Sqd2YVI5XN3BhqfGzKhbDwGE+0+04yQmKHH99AJCNltYbVnxW2T41xrVkNvw0AsaVaRs2X0vkB7VYLKzMOH0ej68McYDSPQJEJEhPsTketOCSECXM4Gce0mFDXlqVKWB4cr SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:LHaDWX5Eq3LCCCkuQ+DCpqNndrU9kgd+7oyGmpYTkkd7agPjLX0qz+KqvFvl0klfj6Z0S9tADD08HtMvHRjyBbrXV2lLucq6+F8iCJJtVZ/gHkPNjBnSN1vE1OWVVoyQxQBn4f4IoM+p9ZTppHLRxEM+6A6U9foEFu+1/0/USmtWRZHNJRfxMcIfPBfLtU1Y3LbhXmXC/1x1cyltYzRvTmVvntJiIYBc0dB2xpTVLDkWtFaqM3vBzwE7PI3JE1m9 X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:12.7392 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: 3237ff97-8693-4a9a-f2dd-08d53ce48631 X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.83 Subject: [Qemu-devel] [PATCH v5 02/23] exec: add ram_debug_ops support X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" Currently, the guest memory access for the debug purpose is performed using the memcpy(). Lets extend the 'struct MemoryRegion' to include ram_debug_ops callbacks. The ram_debug_ops can be used to override memcpy() with something else. The feature can be used by encrypted guest -- which can register callbacks to override memcpy() with memory encryption/decryption APIs. a typical usage: mem_read(uint8_t *dst, uint8_t *src, uint32_t len, MemTxAttrs *attrs); mem_write(uint8_t *dst, uint8_t *src, uint32_t len, MemTxAttrs *attrs); MemoryRegionRAMReadWriteOps ops; ops.read = mem_read; ops.write = mem_write; memory_region_init_ram(mem, NULL, "memory", size, NULL); memory_region_set_ram_debug_ops(mem, ops); Cc: Paolo Bonzini Cc: Peter Crosthwaite Cc: Richard Henderson Signed-off-by: Brijesh Singh --- exec.c | 65 ++++++++++++++++++++++++++++++++++++++------------- include/exec/memory.h | 27 +++++++++++++++++++++ 2 files changed, 76 insertions(+), 16 deletions(-) diff --git a/exec.c b/exec.c index 03238a3449d9..9b0ab1648945 100644 --- a/exec.c +++ b/exec.c @@ -2981,7 +2981,11 @@ static MemTxResult flatview_write_continue(FlatView *fv, hwaddr addr, } else { /* RAM case */ ptr = qemu_ram_ptr_length(mr->ram_block, addr1, &l, false); - memcpy(ptr, buf, l); + if (attrs.debug && mr->ram_debug_ops) { + mr->ram_debug_ops->write(ptr, buf, l, attrs); + } else { + memcpy(ptr, buf, l); + } invalidate_and_set_dirty(mr, addr1, l); } @@ -3079,7 +3083,10 @@ MemTxResult flatview_read_continue(FlatView *fv, hwaddr addr, } else { /* RAM case */ ptr = qemu_ram_ptr_length(mr->ram_block, addr1, &l, false); - memcpy(buf, ptr, l); + if (attrs.debug && mr->ram_debug_ops) + mr->ram_debug_ops->read(buf, ptr, l, attrs); + else + memcpy(buf, ptr, l); } if (release_lock) { @@ -3149,11 +3156,13 @@ void cpu_physical_memory_rw(hwaddr addr, uint8_t *buf, enum write_rom_type { WRITE_DATA, + READ_DATA, FLUSH_CACHE, }; -static inline void cpu_physical_memory_write_rom_internal(AddressSpace *as, - hwaddr addr, const uint8_t *buf, int len, enum write_rom_type type) +static inline void cpu_physical_memory_rw_debug_internal(AddressSpace *as, + hwaddr addr, uint8_t *buf, int len, MemTxAttrs attrs, + enum write_rom_type type) { hwaddr l; uint8_t *ptr; @@ -3168,12 +3177,33 @@ static inline void cpu_physical_memory_write_rom_internal(AddressSpace *as, if (!(memory_region_is_ram(mr) || memory_region_is_romd(mr))) { l = memory_access_size(mr, l, addr1); + /* Pass MMIO down to address address_space_rw */ + switch (type) { + case READ_DATA: + case WRITE_DATA: + address_space_rw(as, addr1, attrs, buf, l, + type == WRITE_DATA); + break; + case FLUSH_CACHE: + break; + } } else { /* ROM/RAM case */ ptr = qemu_map_ram_ptr(mr->ram_block, addr1); switch (type) { + case READ_DATA: + if (mr->ram_debug_ops) { + mr->ram_debug_ops->read(buf, ptr, l, attrs); + } else { + memcpy(buf, ptr, l); + } + break; case WRITE_DATA: - memcpy(ptr, buf, l); + if (mr->ram_debug_ops) { + mr->ram_debug_ops->write(ptr, buf, l, attrs); + } else { + memcpy(ptr, buf, l); + } invalidate_and_set_dirty(mr, addr1, l); break; case FLUSH_CACHE: @@ -3192,7 +3222,8 @@ static inline void cpu_physical_memory_write_rom_internal(AddressSpace *as, void cpu_physical_memory_write_rom(AddressSpace *as, hwaddr addr, const uint8_t *buf, int len) { - cpu_physical_memory_write_rom_internal(as, addr, buf, len, WRITE_DATA); + cpu_physical_memory_rw_debug_internal(as, addr, (uint8_t *)buf, len, + MEMTXATTRS_UNSPECIFIED, WRITE_DATA); } void cpu_flush_icache_range(hwaddr start, int len) @@ -3207,8 +3238,10 @@ void cpu_flush_icache_range(hwaddr start, int len) return; } - cpu_physical_memory_write_rom_internal(&address_space_memory, - start, NULL, len, FLUSH_CACHE); + cpu_physical_memory_rw_debug_internal(&address_space_memory, + start, NULL, len, + MEMTXATTRS_UNSPECIFIED, + FLUSH_CACHE); } typedef struct { @@ -3514,6 +3547,7 @@ int cpu_memory_rw_debug(CPUState *cpu, target_ulong addr, int l; hwaddr phys_addr; target_ulong page; + int type = is_write ? WRITE_DATA : READ_DATA; cpu_synchronize_state(cpu); while (len > 0) { @@ -3523,6 +3557,10 @@ int cpu_memory_rw_debug(CPUState *cpu, target_ulong addr, page = addr & TARGET_PAGE_MASK; phys_addr = cpu_get_phys_page_attrs_debug(cpu, page, &attrs); asidx = cpu_asidx_from_attrs(cpu, attrs); + + /* set debug attribute */ + attrs.debug = 1; + /* if no physical page mapped, return an error */ if (phys_addr == -1) return -1; @@ -3530,14 +3568,9 @@ int cpu_memory_rw_debug(CPUState *cpu, target_ulong addr, if (l > len) l = len; phys_addr += (addr & ~TARGET_PAGE_MASK); - if (is_write) { - cpu_physical_memory_write_rom(cpu->cpu_ases[asidx].as, - phys_addr, buf, l); - } else { - address_space_rw(cpu->cpu_ases[asidx].as, phys_addr, - MEMTXATTRS_UNSPECIFIED, - buf, l, 0); - } + cpu_physical_memory_rw_debug_internal(cpu->cpu_ases[asidx].as, + phys_addr, buf, l, attrs, + type); len -= l; buf += l; addr += l; diff --git a/include/exec/memory.h b/include/exec/memory.h index 5ed4042f877d..546a67bf0dac 100644 --- a/include/exec/memory.h +++ b/include/exec/memory.h @@ -215,6 +215,18 @@ typedef struct IOMMUMemoryRegionClass { typedef struct CoalescedMemoryRange CoalescedMemoryRange; typedef struct MemoryRegionIoeventfd MemoryRegionIoeventfd; +/* Memory Region RAM debug callback */ +typedef struct MemoryRegionRAMReadWriteOps MemoryRegionRAMReadWriteOps; + +struct MemoryRegionRAMReadWriteOps { + /* Write data into guest memory */ + int (*write) (uint8_t *dest, const uint8_t *src, + uint32_t len, MemTxAttrs attrs); + /* Read data from guest memory */ + int (*read) (uint8_t *dest, const uint8_t *src, + uint32_t len, MemTxAttrs attrs); +}; + struct MemoryRegion { Object parent_obj; @@ -254,6 +266,7 @@ struct MemoryRegion { const char *name; unsigned ioeventfd_nb; MemoryRegionIoeventfd *ioeventfds; + const MemoryRegionRAMReadWriteOps *ram_debug_ops; }; struct IOMMUMemoryRegion { @@ -621,6 +634,20 @@ void memory_region_init_rom_device_nomigrate(MemoryRegion *mr, Error **errp); /** + * memory_region_set_ram_debug_ops: Set debug access ops for a given memory region + * + * @mr: the #MemoryRegion to be initialized + * @ops: a function that will be used for when accessing @target region during + * debug + */ +static inline void +memory_region_set_ram_debug_ops(MemoryRegion *mr, + const MemoryRegionRAMReadWriteOps *ops) +{ + mr->ram_debug_ops = ops; +} + +/** * memory_region_init_reservation: Initialize a memory region that reserves * I/O space. * From patchwork Wed Dec 6 20:03:26 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845323 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="hrIfsh3q"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVJ76jTRz9s81 for ; Thu, 7 Dec 2017 07:16:38 +1100 (AEDT) Received: from localhost ([::1]:57576 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMg7P-0002Gg-UC for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:16:36 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49544) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfvb-0005kz-GY for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:25 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvY-0002NY-91 for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:23 -0500 Received: from mail-sn1nam01on0054.outbound.protection.outlook.com ([104.47.32.54]:7443 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfvY-0002N2-2Z for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:20 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=anmrqTX+FUsrpv3BwtL7FoNdTzUw2ejFQUxgVJqIZyE=; b=hrIfsh3qYrHfm909vbjn3fYonesulbfmIq8tX/HtvthZDILXpm+Di3imluGNLXTlzl5Gv8xBR+7k8KhyhTilAGwZYEGCG9BIjtDFO+aZ8/I6kuvE9xKO6mXcjxBbhQGy1z/G5lf1vhRHEkDgXkETYMVoXoHerUySgIOpwIa+QyQ= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:14 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:26 -0600 Message-Id: <20171206200346.116537-4-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: 6f462c9f-b2a7-4581-2f79-08d53ce48795 X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:8XIlnP8eT0OQyued1nZx1R4ZTM4UkFJ5QDmOBIjw1c6JyI2hOSRaH8vMJ6UjKwkC64LuWnr5gboTYN78dUT65hq6gOHkzW+eIe05zyTO4htI8qfsyrZ9Wu3pk5iZhhWPollqJRv3eESp8z4OrEBkESJzOnz1Cd0GPBcC1555uDbmLwUKhxOU4FRNkT+glfyMOGTFUGb5+f9Yitak/EWTRqrC07vDQdoyOA4h3h9/LbHb6a103QBoCmw2/apLMF7E; 25:w5vDN+k+/0zDINPQNHOJwkumrWWIDAdVyDbeXjIxSCbx2CNaF4FmuR9WmTQYW/nlD4nHbJVhn3YhDe9CUL/g9/kgDl7vF9gcbAV8e+JWzUdqj6dqrAD482hjtng2vjoQHe/EUQeqJw6Mv6J0nlC0HhnPE69B2rT5xUN6XQhSrvLTbqH5eKAOjpnTodozalkKMP422/gWHlCzWdA1DrZ0nH1q7oaPXlSN6sOx5HuwsJ270E+uNkWlzmQ2ECPioXsg9hBjAx/HJ+SKd/++dau7n19Cey9IqFKA01kzKLz1rgKpi+uJsAlKUbsByoWxbgyDFe+uIpjTBpgmmWajRmjBQQ==; 31:QhJS944OxEkq2i0EYceS3nnE4JJEz1ARjHieQA/WWNECuTaOmUl0FbhUxvcGhDXS6+3LC3thsYWR4fPJ7iawY3mvhlWjJzPxy66XJpPdlyRA0aqbDR1yjj39yhsKoh4fAqn1wDgomrb4woI+h5bi5jNLyMWvshc8jGfg9N3Yi6PC01dVd7pSTet3XBXObzdaAVXSNnCQ0W/Ie/hr3gvpiPOuKK5MPeJ74dSdTurf8dM= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:OJEwk/e4lL/cnLoxiSn0yI68CsxkPH7yzm1v6+pmohukgZBM26RCkAWNMHkJvH+J9CBR8WmayJrskZNwF9JnZm9dh7We5P2IzX5gRLDeFrUwVe80o38xO7jLNQl+ZoOPDyvZxprqIaHsRnQagFVFM44uqVLuUlUdNE1l8/V3nM6sgQwH0/hsWgno+stFVdtA+wjZ7vPeYg6h0MWQYbgGYcWP+B35Lyz4ORhFzbqmZKp2ROZvhHfm2sgLStiiTYRSBlJw/e3mbW6KzVZUI/7EfPE4Af4T+v1pDrYDxAjsmdNMz/ANW+jvX7LlE28MOgGp X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(575784001)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:uTLf+ZI7SaF/OuLkhto6ICRRGNFWg6l7C9486qwmf?= j2F3mRsIGZXyX8L2OttzYvtDxxUl/iza6h01PvwydLO5cO3FYJ7NSLZb036dccLvjOqvcKyDCt1q5sRqQd/7avW+jr1S7xyQargDee/+cIKdaL5+3f3H6OGIVEYHz5n7YR5syDybzLcDzmkuZmfxb2zeVmWZaLd567SUL91grAsYg+lx3RlVMmJugcpzL/9Q4SJjqAW8fcu6B/TNBHyPJba0Tkq8Y5Ym1BU8paUSmZnfIBDBWN/bpboFXlPzjn+vkO+tn5SwnLrah6NB0LqZwrVa2TCvBV7EqWNqKDCwT9PuD7gxFMY2M6wNhxK98HdZ74xNxtJJZw2W7un5wYnb51dIXnoDO5luI7Vz5T9b4S7F04GUWj/gzb4XPMPG/ofHv6iV25INcLV/5khHnuCyYIVeKcJqUIq+LOVYEAVAe8VrFdiceKLzWxgwWft23phhnLrbF4UNtxRHoRWvL0o/dQxjZNZWpy38AiHOzcG2hiCzwTs4zgtlMPaJ22T8FucEHHT9kUtKSMyIK7Z0pl+GLzkMQ9il7oYa2d2ccZBcAYji9Y9Y/AknsgsSHTNJLwcQnzj7TELxVfj5VqH/OExwyMncN5Es8qJRHJr1ZX62W1XtFxAn7VBJ0lD43rtSckyWvS3ehgJQPcVjA2qfF855/wn/gflgUVgVAkNw5kRODKGm7Zpu7TcpMuAWI5mXO4L1n+j4ZPefAL2BY5fx7LWxrcC9HqOqvbd690aWCE4h6JwKlQ0RMl2aNZlmx3+BCojaNFwzYpjChSPXGEJxZQ5QWEv5XHSU2U3SW3IlNwsdePahERTilGe6VMp9/QYI3/550YfmtNc1BPsy6QSytT1KQRy+WSolbpz3fV12iJUPqu13WE83bxX8ccC/6QjHLVR3D3bAh+tT9ZMA/El3CsXX33FsPPZ70Pxrc7sIrw3eFkHxHj6Yl38U25WjJE3pjIkoKb/9KTVDiqH/HEkvRzMQM18lkFcYiA42ZfnOKycojAxO1ZjbrKZrG+SI4IYiMh2H6F/Nony8ot3iysPQ0o0m7v/vngodbvJsOPrtmaUCWQHgC90933QSALJ+aNuFTwfCtkB8gjwjMqOjUcEmhRxE15e5ruIC+2cxumKaIFbolP8auqUc8daYjlEwNvPBHSOP9ElZxCgK/4w0kbIY+L1dvIPSLy7Xrn9vcpMfzAqZsyEFwsShgIZcslV3YQNaHmtrBI= X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:sUcfK7s9DNzTLrAEoM3UlmuQG//WE3RAmeBDfU47t92LnXXUnqPPedljFivv4Elm5NqA1Zx2zjw0uwKRkzO7uonQhTdiLLk+Y8Au/AcVC9DEJeG0o3nribNIZi3kpqEbtld+KEmhxleBUyHd7kh6xr3u5BqOxehBC2W7gTNx2kAiEfI9N2/7/qpi8Cxoe8iY+ngQ4++PkgkYGp6tUP5XvG6KQr+q0LIbGQ2/fFIpccHNm7uX5iUf6rX+1CLbE5wB3H9qA60nHEqb2Ev3l5yu7EhoXcPE4xyPQg6TMZgTlfNnmJlkDkZ/plNJ95lAFQGlowxV1Bip2WZp+VPbzecSgs1JKbiD5WT8aeNjPgH5Ns0=; 5:kRTRb+Sfoh3IC4pxPgQ0eFca1aWVUMx/pEh5STnc50lhJzqDF9gfINNZiFKfK2xoaqmNKYnWJmXJOV8bqPNcIGQ3s98arYUWaV1BqTdTp3Hc3zOp3HG5P/zM5r74vOR4PDJtW2LvNg+5aYF5KKTmCOmwOUZBwVbmzH6CswoY398=; 24:AFom5UA+MyozOnNo3ucka9BjEPyZqPpCeCddt8vSP2eUPDWeBjzY56yQv9BLHZpmganOHUHGGJYGTRmPtzbtMhqUuAapTurujQ4k4bgZi+c=; 7:AyklLCcomnkOHJ7qNW61sqyXR6WU22wogMvbC5T5Iw8lN45LMR0YlIqmiVlNkJMT8l4zaQZsCXnXzbZHyrxREnHdpGqbQVQ9Gi6AGXnSbAkDSysetELc3VjtBpkoFhWFvQccV5hTR1MmNwX3mytYnbJiPOpoPb86sDnn9+kFHv+IeJAzkNBUcOBDTEqMHojK1BAPoLyhNEdd3dwoBdtMMu8TdFWDMjo+sVEFWJHR+OKO6qq3EOj5ygz1V5Zhm2Dj SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:Q1DSYw9/3YLk5wrAv9jRSTpbxa8hpb9M5auoj7u02/VjYplHATUt7C//IwWvNSGRlT5MmK2RUEn7IG/HnCLwWClIHtLdCSTasksafMx/wD5NfB9LqH2kVUr//Ttgqu7VywhcXQzKqOgJV2Ytr+jd/tq2XLXPN289FMteflRgCu3EXql3vJVMksdWA0tT8Dfx0naN5N4cNnoisK5ADoP1nBzssaLeGiIPihaMD9JM7cq64qtyHPXrQcmpRu58rYeN X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:14.7548 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: 6f462c9f-b2a7-4581-2f79-08d53ce48795 X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.54 Subject: [Qemu-devel] [PATCH v5 03/23] exec: add debug version of physical memory read and write API X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" Adds the following new APIs - cpu_physical_memory_read_debug - cpu_physical_memory_write_debug - cpu_physical_memory_rw_debug - ldl_phys_debug - ldq_phys_debug Cc: Paolo Bonzini Cc: Peter Crosthwaite Cc: Richard Henderson Signed-off-by: Brijesh Singh Reviewed-by: Paolo Bonzini --- exec.c | 31 +++++++++++++++++++++++++++++++ include/exec/cpu-common.h | 15 +++++++++++++++ 2 files changed, 46 insertions(+) diff --git a/exec.c b/exec.c index 9b0ab1648945..e1837cad61f9 100644 --- a/exec.c +++ b/exec.c @@ -3540,6 +3540,37 @@ void address_space_cache_destroy(MemoryRegionCache *cache) #define RCU_READ_UNLOCK() rcu_read_unlock() #include "memory_ldst.inc.c" +uint32_t ldl_phys_debug(CPUState *cpu, hwaddr addr) +{ + MemTxAttrs attrs = MEMTXATTRS_DEBUG; + int asidx = cpu_asidx_from_attrs(cpu, attrs); + uint32_t val; + + cpu_physical_memory_rw_debug_internal(cpu->cpu_ases[asidx].as, + addr, (void *) &val, + 4, attrs, READ_DATA); + return tswap32(val); +} + +uint64_t ldq_phys_debug(CPUState *cpu, hwaddr addr) +{ + MemTxAttrs attrs = MEMTXATTRS_DEBUG; + int asidx = cpu_asidx_from_attrs(cpu, attrs); + uint64_t val; + + cpu_physical_memory_rw_debug_internal(cpu->cpu_ases[asidx].as, + addr, (void *) &val, + 8, attrs, READ_DATA); + return val; +} + +void cpu_physical_memory_rw_debug(hwaddr addr, uint8_t *buf, + int len, int is_write) +{ + address_space_rw(&address_space_memory, addr, MEMTXATTRS_DEBUG, buf, + len, is_write); +} + /* virtual memory access for debug (includes writing to ROM) */ int cpu_memory_rw_debug(CPUState *cpu, target_ulong addr, uint8_t *buf, int len, int is_write) diff --git a/include/exec/cpu-common.h b/include/exec/cpu-common.h index 74341b19d26a..fa01385d4f1b 100644 --- a/include/exec/cpu-common.h +++ b/include/exec/cpu-common.h @@ -77,11 +77,26 @@ size_t qemu_ram_pagesize_largest(void); void cpu_physical_memory_rw(hwaddr addr, uint8_t *buf, int len, int is_write); +void cpu_physical_memory_rw_debug(hwaddr addr, uint8_t *buf, + int len, int is_write); static inline void cpu_physical_memory_read(hwaddr addr, void *buf, int len) { cpu_physical_memory_rw(addr, buf, len, 0); } +static inline void cpu_physical_memory_read_debug(hwaddr addr, + void *buf, int len) +{ + cpu_physical_memory_rw_debug(addr, buf, len, 0); +} +static inline void cpu_physical_memory_write_debug(hwaddr addr, + const void *buf, int len) +{ + cpu_physical_memory_rw_debug(addr, (void *)buf, len, 1); +} +uint32_t ldl_phys_debug(CPUState *cpu, hwaddr addr); +uint64_t ldq_phys_debug(CPUState *cpu, hwaddr addr); + static inline void cpu_physical_memory_write(hwaddr addr, const void *buf, int len) { From patchwork Wed Dec 6 20:03:27 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845336 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="iXNRLZP1"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVWv0W0tz9s72 for ; Thu, 7 Dec 2017 07:26:51 +1100 (AEDT) Received: from localhost ([::1]:57652 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMgHJ-00044y-41 for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:26:49 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49581) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfvf-0005qg-8L for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:30 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvc-0002Pv-06 for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:27 -0500 Received: from mail-dm3nam03on0082.outbound.protection.outlook.com ([104.47.41.82]:38528 helo=NAM03-DM3-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfvb-0002PH-Mc for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:23 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=T4NgeT4/p+wPFTZznhXj6/7z8MB1pdcei4jzqLu/s3o=; b=iXNRLZP1xtmlTF+9JZf4Z1RSMayIdArNWKuSeDWTgkSuNjDZ1v5XkoSbRMCuK2nCF5/dYiE5b1g3nCX7dDeUE4qIn44F72fy2CpyzTq7Z1RE0n1rS1DlA0wtdCDCozYxd4ZAN9dIbcNSWqm46t23hBaZwfp3EAuKvE4Yc4GxuuQ= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:17 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:27 -0600 Message-Id: <20171206200346.116537-5-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: c8639998-4f64-4c29-81f7-08d53ce488cd X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:ymUWZ1ueIEZCuBITOBkaiAdfYLoCoSMblI/6tU3XAK1sdHyldQx8T/lT29saSWX0ptSXzKkUian11OP/zs2G44bwEQ1poYfvG5cMtLEa/L/A+toOyt/vJ/q2vZUocjEFPIYn5cmLo1bM63ScohL1ad8Hmyc6uZVgXlWm9TkcUWngfqPOGcyJezm77G5xDzrJzHEw/gyc7HCvedow37X8/ipSRo0Ze9gpqisLx6UL+Vmw1uEEgaP75BREbCevQAPC; 25:AGY9YWOFFbfEr5cf3IpNVdwK/5KAkzuXvnA/AU+L+EC7rTGLhe/QawZbkIzy89H6iIS/tK2+St2eGqVHPbO/vib5OLV1gtiAqpAkdGzmjWXJAkc9Ej5zgd8L6JdKPfRopedtrnz673UE2S5wGqu5mO63l6zS3SVg4d2UQtVRUEiWeh5DRkXVmOJjDAXJh0ImqZzP5KnlpjxJoEnZQW8hIf5u33gaKy5BQ4+96zyp0pdXV+eqo96JArhXDSNBmiNDcZItEed4z0CbX/fn32soYghGu7ntTSoWdAHuw2vwa17XL2U8ZcmgXTyX4x4+gQzrDJXyr9z1GDujr+OHWmy5vA==; 31:3bL7Hn/O7gxg3YlCGDa5rVPSMDPnR31uVQra5C9PH114jOnV8zP32a6+dDvp0sX5XnMvuVC1K0icGUFjGQcdePrrk+h6L9i+K1bUgfVXaTkRjiY4YtNM6aqZEJGkQQSi/N21i9SMIvUX6dJqwzQHhqDfOVQkQVnqEG/Pd7SXAagxP8x+vEw6WFcpVEhLTF8ACN+Dwi/oGHoxMbJ0qj07AouVCx8nPEeYMsAJCWSEnWI= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:JROx6RgVqFSyGKULAZTnLDtc09y5Mqj4/HSDuNvkJ5X1Y3WUouMKnIOsyeLh76dRer3yH8qyEXP5FCFpAvlDxu30XUgQMAGDcRUC30yEe0Up1R3q8mABVNQ1ZFvUKnpp3PGijNywgm1buoXL+ZoujLhYvrN5RJzgRgRfYAg5LEvfdHWCCOY4TjzWo55Ai/QJkwJt3IBCFMeelOQArhZQgGU9e48zWvJV6JBJdNeEiHIGJMnC6A6gqBKG1V4y5Su72bSTUn9Qmb4QtgPbFc4ADi0tsEkxRepO8jqW19O8I01nnSSd278302X1WgK1YLK6 X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(575784001)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:ZNEx2amRlfJU485arMhlFILnSffWa8qtkxLbDqA1k?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:VNyIK24ZPO5+0lrNKIYNCCJGNgXFV3JTemywob+j3SJsxWNi1qsYj69RgAHzK06yGjj0WuKBEIuKqRPyy/1cEYFXWAWNztC/YIIbQ2UriNssciblBu576TkNNe/dVBLvGYtLxqVfuzvNjkqQRFQjzuk5wAcMH3V6STwts/isXDlaW4Q81W7oXWhAUkPPLV+/c2JLGYAXDeiuqhOLyR6Yqx3hAj5nQLuBksGrShC4L6IL9ENbW1E9FNDHhLGGGDHQl3VSnKvmqQbXPIEFKW7wDmeJGCf/RTuVRTebJ/uDMMKXEsK77aOJIFOFuV9LQ3krWyDcZv5VUs0SYQt/hRHaPWXnr8Ix/SRIW2kEzOXc6Co=; 5:S8gaCayphUEijQSDqEXwtjtYprICuMmXhIGkDEdlwDrZLkaSMklhhTOxB7F+XT7t9OWcsOj+56JP9/DsdV1w6V6GNY+sredAa8SSuwxW3BbnG9cgezHcoNfzDAZmtLKTRuBqDVMHLExHgXiyJZcEGYU7exFOel4WSbMrlnKSdL8=; 24:CBYu3h1jHGAhHN0l7t8LVBP2BF5HFltwyj7MIdwf2zk2ErbQp+lbKsF8Oct9zAJMor5yJzfDGuwqpeI3y4zGqNfUTFMyF1LTrlcA/8Zee8M=; 7:5idyZuuzfhv5Ojz2dh92HER/g2E59znxMSDmh8OT90PSvCmZXJYg/aYYsrKAmlg7E75QQpqpw9BepnJT+HIAUPLI2cpmTKi7uTPPCtX7HYrXb4lQrVrQ+nS8OXNodCfkCb/FfbrXkVp02L9tpt7ybEBJe9uwqMxIyreNs5QXKFWxlsUeS7KMTDCDcqb6V3/f63YeE/ACBCtZQHn94YR3+31meKDNMccdS2z5KFVxuMtnuNq3rY5mhDFxXg59GrHI SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:4sj7b5Shr4DLOCTTcPu/E4QWqRW8CTBgAaTS3lni1yT6SDbLZDchpf44xRW80j37jqsiG1vu+358MomvJ/7QRFsyQtGeLQZlh4c36tP4UBn+JW5Wpkqe/0/3yNntQb8MTsVsBe7CUvRk8fQOIM51BCtVtvDxTJKCIQqMOocT8LtWxPASpXdbi8/XF1LGYn9McjdJauXKwJ1K5RIsI4ecfoc2xhrl87x8gnR2ZAbnuxpA3lntCQiNfi6eRTQ0O2r5 X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:17.1141 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: c8639998-4f64-4c29-81f7-08d53ce488cd X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.41.82 Subject: [Qemu-devel] [PATCH v5 04/23] monitor/i386: use debug APIs when accessing guest memory X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" Updates HMP commands to use the debug version of APIs when accessing the guest memory. Cc: Paolo Bonzini Cc: Peter Crosthwaite Cc: Richard Henderson Cc: "Dr. David Alan Gilbert" Cc: Markus Armbruster Cc: Eduardo Habkost Signed-off-by: Brijesh Singh --- cpus.c | 2 +- disas.c | 2 +- monitor.c | 2 +- target/i386/helper.c | 14 ++++++------ target/i386/monitor.c | 59 +++++++++++++++++++++++++++------------------------ 5 files changed, 41 insertions(+), 38 deletions(-) diff --git a/cpus.c b/cpus.c index 114c29b6a0d3..d1e7e28993e8 100644 --- a/cpus.c +++ b/cpus.c @@ -2026,7 +2026,7 @@ void qmp_pmemsave(int64_t addr, int64_t size, const char *filename, l = sizeof(buf); if (l > size) l = size; - cpu_physical_memory_read(addr, buf, l); + cpu_physical_memory_read_debug(addr, buf, l); if (fwrite(buf, 1, l, f) != l) { error_setg(errp, QERR_IO_ERROR); goto exit; diff --git a/disas.c b/disas.c index d4ad1089efb3..fcedbf263302 100644 --- a/disas.c +++ b/disas.c @@ -586,7 +586,7 @@ static int physical_read_memory(bfd_vma memaddr, bfd_byte *myaddr, int length, struct disassemble_info *info) { - cpu_physical_memory_read(memaddr, myaddr, length); + cpu_physical_memory_read_debug(memaddr, myaddr, length); return 0; } diff --git a/monitor.c b/monitor.c index e36fb5308d34..d8f05b9f88fa 100644 --- a/monitor.c +++ b/monitor.c @@ -1359,7 +1359,7 @@ static void memory_dump(Monitor *mon, int count, int format, int wsize, if (l > line_size) l = line_size; if (is_physical) { - cpu_physical_memory_read(addr, buf, l); + cpu_physical_memory_read_debug(addr, buf, l); } else { if (cpu_memory_rw_debug(cs, addr, buf, l, 0) < 0) { monitor_printf(mon, " Cannot access memory\n"); diff --git a/target/i386/helper.c b/target/i386/helper.c index f63eb3d3f4fb..5dc9e8839bc8 100644 --- a/target/i386/helper.c +++ b/target/i386/helper.c @@ -757,7 +757,7 @@ hwaddr x86_cpu_get_phys_page_debug(CPUState *cs, vaddr addr) if (la57) { pml5e_addr = ((env->cr[3] & ~0xfff) + (((addr >> 48) & 0x1ff) << 3)) & a20_mask; - pml5e = x86_ldq_phys(cs, pml5e_addr); + pml5e = ldq_phys_debug(cs, pml5e_addr); if (!(pml5e & PG_PRESENT_MASK)) { return -1; } @@ -767,7 +767,7 @@ hwaddr x86_cpu_get_phys_page_debug(CPUState *cs, vaddr addr) pml4e_addr = ((pml5e & PG_ADDRESS_MASK) + (((addr >> 39) & 0x1ff) << 3)) & a20_mask; - pml4e = x86_ldq_phys(cs, pml4e_addr); + pml4e = ldq_phys_debug(cs, pml4e_addr); if (!(pml4e & PG_PRESENT_MASK)) { return -1; } @@ -788,14 +788,14 @@ hwaddr x86_cpu_get_phys_page_debug(CPUState *cs, vaddr addr) { pdpe_addr = ((env->cr[3] & ~0x1f) + ((addr >> 27) & 0x18)) & a20_mask; - pdpe = x86_ldq_phys(cs, pdpe_addr); + pdpe = ldq_phys_debug(cs, pdpe_addr); if (!(pdpe & PG_PRESENT_MASK)) return -1; } pde_addr = ((pdpe & PG_ADDRESS_MASK) + (((addr >> 21) & 0x1ff) << 3)) & a20_mask; - pde = x86_ldq_phys(cs, pde_addr); + pde = ldq_phys_debug(cs, pde_addr); if (!(pde & PG_PRESENT_MASK)) { return -1; } @@ -808,7 +808,7 @@ hwaddr x86_cpu_get_phys_page_debug(CPUState *cs, vaddr addr) pte_addr = ((pde & PG_ADDRESS_MASK) + (((addr >> 12) & 0x1ff) << 3)) & a20_mask; page_size = 4096; - pte = x86_ldq_phys(cs, pte_addr); + pte = ldq_phys_debug(cs, pte_addr); } if (!(pte & PG_PRESENT_MASK)) { return -1; @@ -818,7 +818,7 @@ hwaddr x86_cpu_get_phys_page_debug(CPUState *cs, vaddr addr) /* page directory entry */ pde_addr = ((env->cr[3] & ~0xfff) + ((addr >> 20) & 0xffc)) & a20_mask; - pde = x86_ldl_phys(cs, pde_addr); + pde = ldl_phys_debug(cs, pde_addr); if (!(pde & PG_PRESENT_MASK)) return -1; if ((pde & PG_PSE_MASK) && (env->cr[4] & CR4_PSE_MASK)) { @@ -827,7 +827,7 @@ hwaddr x86_cpu_get_phys_page_debug(CPUState *cs, vaddr addr) } else { /* page directory entry */ pte_addr = ((pde & ~0xfff) + ((addr >> 10) & 0xffc)) & a20_mask; - pte = x86_ldl_phys(cs, pte_addr); + pte = ldl_phys_debug(cs, pte_addr); if (!(pte & PG_PRESENT_MASK)) { return -1; } diff --git a/target/i386/monitor.c b/target/i386/monitor.c index 75e155ffb1c4..96890547f6b4 100644 --- a/target/i386/monitor.c +++ b/target/i386/monitor.c @@ -66,7 +66,7 @@ static void tlb_info_32(Monitor *mon, CPUArchState *env) pgd = env->cr[3] & ~0xfff; for(l1 = 0; l1 < 1024; l1++) { - cpu_physical_memory_read(pgd + l1 * 4, &pde, 4); + cpu_physical_memory_read_debug(pgd + l1 * 4, &pde, 4); pde = le32_to_cpu(pde); if (pde & PG_PRESENT_MASK) { if ((pde & PG_PSE_MASK) && (env->cr[4] & CR4_PSE_MASK)) { @@ -74,7 +74,8 @@ static void tlb_info_32(Monitor *mon, CPUArchState *env) print_pte(mon, env, (l1 << 22), pde, ~((1 << 21) - 1)); } else { for(l2 = 0; l2 < 1024; l2++) { - cpu_physical_memory_read((pde & ~0xfff) + l2 * 4, &pte, 4); + cpu_physical_memory_read_debug((pde & ~0xfff) + l2 * 4, + &pte, 4); pte = le32_to_cpu(pte); if (pte & PG_PRESENT_MASK) { print_pte(mon, env, (l1 << 22) + (l2 << 12), @@ -95,12 +96,12 @@ static void tlb_info_pae32(Monitor *mon, CPUArchState *env) pdp_addr = env->cr[3] & ~0x1f; for (l1 = 0; l1 < 4; l1++) { - cpu_physical_memory_read(pdp_addr + l1 * 8, &pdpe, 8); + cpu_physical_memory_read_debug(pdp_addr + l1 * 8, &pdpe, 8); pdpe = le64_to_cpu(pdpe); if (pdpe & PG_PRESENT_MASK) { pd_addr = pdpe & 0x3fffffffff000ULL; for (l2 = 0; l2 < 512; l2++) { - cpu_physical_memory_read(pd_addr + l2 * 8, &pde, 8); + cpu_physical_memory_read_debug(pd_addr + l2 * 8, &pde, 8); pde = le64_to_cpu(pde); if (pde & PG_PRESENT_MASK) { if (pde & PG_PSE_MASK) { @@ -110,7 +111,8 @@ static void tlb_info_pae32(Monitor *mon, CPUArchState *env) } else { pt_addr = pde & 0x3fffffffff000ULL; for (l3 = 0; l3 < 512; l3++) { - cpu_physical_memory_read(pt_addr + l3 * 8, &pte, 8); + cpu_physical_memory_read_debug(pt_addr + l3 * 8, + &pte, 8); pte = le64_to_cpu(pte); if (pte & PG_PRESENT_MASK) { print_pte(mon, env, (l1 << 30) + (l2 << 21) @@ -135,7 +137,7 @@ static void tlb_info_la48(Monitor *mon, CPUArchState *env, uint64_t pdp_addr, pd_addr, pt_addr; for (l1 = 0; l1 < 512; l1++) { - cpu_physical_memory_read(pml4_addr + l1 * 8, &pml4e, 8); + cpu_physical_memory_read_debug(pml4_addr + l1 * 8, &pml4e, 8); pml4e = le64_to_cpu(pml4e); if (!(pml4e & PG_PRESENT_MASK)) { continue; @@ -143,7 +145,7 @@ static void tlb_info_la48(Monitor *mon, CPUArchState *env, pdp_addr = pml4e & 0x3fffffffff000ULL; for (l2 = 0; l2 < 512; l2++) { - cpu_physical_memory_read(pdp_addr + l2 * 8, &pdpe, 8); + cpu_physical_memory_read_debug(pdp_addr + l2 * 8, &pdpe, 8); pdpe = le64_to_cpu(pdpe); if (!(pdpe & PG_PRESENT_MASK)) { continue; @@ -158,7 +160,7 @@ static void tlb_info_la48(Monitor *mon, CPUArchState *env, pd_addr = pdpe & 0x3fffffffff000ULL; for (l3 = 0; l3 < 512; l3++) { - cpu_physical_memory_read(pd_addr + l3 * 8, &pde, 8); + cpu_physical_memory_read_debug(pd_addr + l3 * 8, &pde, 8); pde = le64_to_cpu(pde); if (!(pde & PG_PRESENT_MASK)) { continue; @@ -173,9 +175,7 @@ static void tlb_info_la48(Monitor *mon, CPUArchState *env, pt_addr = pde & 0x3fffffffff000ULL; for (l4 = 0; l4 < 512; l4++) { - cpu_physical_memory_read(pt_addr - + l4 * 8, - &pte, 8); + cpu_physical_memory_read_debug(pt_addr + l4 * 8, &pte, 8); pte = le64_to_cpu(pte); if (pte & PG_PRESENT_MASK) { print_pte(mon, env, (l0 << 48) + (l1 << 39) + @@ -196,7 +196,7 @@ static void tlb_info_la57(Monitor *mon, CPUArchState *env) pml5_addr = env->cr[3] & 0x3fffffffff000ULL; for (l0 = 0; l0 < 512; l0++) { - cpu_physical_memory_read(pml5_addr + l0 * 8, &pml5e, 8); + cpu_physical_memory_read_debug(pml5_addr + l0 * 8, &pml5e, 8); pml5e = le64_to_cpu(pml5e); if (pml5e & PG_PRESENT_MASK) { tlb_info_la48(mon, env, l0, pml5e & 0x3fffffffff000ULL); @@ -271,7 +271,7 @@ static void mem_info_32(Monitor *mon, CPUArchState *env) last_prot = 0; start = -1; for(l1 = 0; l1 < 1024; l1++) { - cpu_physical_memory_read(pgd + l1 * 4, &pde, 4); + cpu_physical_memory_read_debug(pgd + l1 * 4, &pde, 4); pde = le32_to_cpu(pde); end = l1 << 22; if (pde & PG_PRESENT_MASK) { @@ -280,7 +280,8 @@ static void mem_info_32(Monitor *mon, CPUArchState *env) mem_print(mon, &start, &last_prot, end, prot); } else { for(l2 = 0; l2 < 1024; l2++) { - cpu_physical_memory_read((pde & ~0xfff) + l2 * 4, &pte, 4); + cpu_physical_memory_read_debug((pde & ~0xfff) + l2 * 4, + &pte, 4); pte = le32_to_cpu(pte); end = (l1 << 22) + (l2 << 12); if (pte & PG_PRESENT_MASK) { @@ -313,13 +314,13 @@ static void mem_info_pae32(Monitor *mon, CPUArchState *env) last_prot = 0; start = -1; for (l1 = 0; l1 < 4; l1++) { - cpu_physical_memory_read(pdp_addr + l1 * 8, &pdpe, 8); + cpu_physical_memory_read_debug(pdp_addr + l1 * 8, &pdpe, 8); pdpe = le64_to_cpu(pdpe); end = l1 << 30; if (pdpe & PG_PRESENT_MASK) { pd_addr = pdpe & 0x3fffffffff000ULL; for (l2 = 0; l2 < 512; l2++) { - cpu_physical_memory_read(pd_addr + l2 * 8, &pde, 8); + cpu_physical_memory_read_debug(pd_addr + l2 * 8, &pde, 8); pde = le64_to_cpu(pde); end = (l1 << 30) + (l2 << 21); if (pde & PG_PRESENT_MASK) { @@ -330,7 +331,8 @@ static void mem_info_pae32(Monitor *mon, CPUArchState *env) } else { pt_addr = pde & 0x3fffffffff000ULL; for (l3 = 0; l3 < 512; l3++) { - cpu_physical_memory_read(pt_addr + l3 * 8, &pte, 8); + cpu_physical_memory_read_debug(pt_addr + l3 * 8, + &pte, 8); pte = le64_to_cpu(pte); end = (l1 << 30) + (l2 << 21) + (l3 << 12); if (pte & PG_PRESENT_MASK) { @@ -369,13 +371,13 @@ static void mem_info_la48(Monitor *mon, CPUArchState *env) last_prot = 0; start = -1; for (l1 = 0; l1 < 512; l1++) { - cpu_physical_memory_read(pml4_addr + l1 * 8, &pml4e, 8); + cpu_physical_memory_read_debug(pml4_addr + l1 * 8, &pml4e, 8); pml4e = le64_to_cpu(pml4e); end = l1 << 39; if (pml4e & PG_PRESENT_MASK) { pdp_addr = pml4e & 0x3fffffffff000ULL; for (l2 = 0; l2 < 512; l2++) { - cpu_physical_memory_read(pdp_addr + l2 * 8, &pdpe, 8); + cpu_physical_memory_read_debug(pdp_addr + l2 * 8, &pdpe, 8); pdpe = le64_to_cpu(pdpe); end = (l1 << 39) + (l2 << 30); if (pdpe & PG_PRESENT_MASK) { @@ -387,7 +389,8 @@ static void mem_info_la48(Monitor *mon, CPUArchState *env) } else { pd_addr = pdpe & 0x3fffffffff000ULL; for (l3 = 0; l3 < 512; l3++) { - cpu_physical_memory_read(pd_addr + l3 * 8, &pde, 8); + cpu_physical_memory_read_debug(pd_addr + l3 * 8, + &pde, 8); pde = le64_to_cpu(pde); end = (l1 << 39) + (l2 << 30) + (l3 << 21); if (pde & PG_PRESENT_MASK) { @@ -399,9 +402,9 @@ static void mem_info_la48(Monitor *mon, CPUArchState *env) } else { pt_addr = pde & 0x3fffffffff000ULL; for (l4 = 0; l4 < 512; l4++) { - cpu_physical_memory_read(pt_addr - + l4 * 8, - &pte, 8); + cpu_physical_memory_read_debug(pt_addr + + l4 * 8, + &pte, 8); pte = le64_to_cpu(pte); end = (l1 << 39) + (l2 << 30) + (l3 << 21) + (l4 << 12); @@ -446,7 +449,7 @@ static void mem_info_la57(Monitor *mon, CPUArchState *env) last_prot = 0; start = -1; for (l0 = 0; l0 < 512; l0++) { - cpu_physical_memory_read(pml5_addr + l0 * 8, &pml5e, 8); + cpu_physical_memory_read_debug(pml5_addr + l0 * 8, &pml5e, 8); pml5e = le64_to_cpu(pml5e); end = l0 << 48; if (!(pml5e & PG_PRESENT_MASK)) { @@ -457,7 +460,7 @@ static void mem_info_la57(Monitor *mon, CPUArchState *env) pml4_addr = pml5e & 0x3fffffffff000ULL; for (l1 = 0; l1 < 512; l1++) { - cpu_physical_memory_read(pml4_addr + l1 * 8, &pml4e, 8); + cpu_physical_memory_read_debug(pml4_addr + l1 * 8, &pml4e, 8); pml4e = le64_to_cpu(pml4e); end = (l0 << 48) + (l1 << 39); if (!(pml4e & PG_PRESENT_MASK)) { @@ -468,7 +471,7 @@ static void mem_info_la57(Monitor *mon, CPUArchState *env) pdp_addr = pml4e & 0x3fffffffff000ULL; for (l2 = 0; l2 < 512; l2++) { - cpu_physical_memory_read(pdp_addr + l2 * 8, &pdpe, 8); + cpu_physical_memory_read_debug(pdp_addr + l2 * 8, &pdpe, 8); pdpe = le64_to_cpu(pdpe); end = (l0 << 48) + (l1 << 39) + (l2 << 30); if (pdpe & PG_PRESENT_MASK) { @@ -487,7 +490,7 @@ static void mem_info_la57(Monitor *mon, CPUArchState *env) pd_addr = pdpe & 0x3fffffffff000ULL; for (l3 = 0; l3 < 512; l3++) { - cpu_physical_memory_read(pd_addr + l3 * 8, &pde, 8); + cpu_physical_memory_read_debug(pd_addr + l3 * 8, &pde, 8); pde = le64_to_cpu(pde); end = (l0 << 48) + (l1 << 39) + (l2 << 30) + (l3 << 21); if (pde & PG_PRESENT_MASK) { @@ -506,7 +509,7 @@ static void mem_info_la57(Monitor *mon, CPUArchState *env) pt_addr = pde & 0x3fffffffff000ULL; for (l4 = 0; l4 < 512; l4++) { - cpu_physical_memory_read(pt_addr + l4 * 8, &pte, 8); + cpu_physical_memory_read_debug(pt_addr + l4 * 8, &pte, 8); pte = le64_to_cpu(pte); end = (l0 << 48) + (l1 << 39) + (l2 << 30) + (l3 << 21) + (l4 << 12); From patchwork Wed Dec 6 20:03:28 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845326 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="hxXZr7z7"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVMh3fZFz9s72 for ; Thu, 7 Dec 2017 07:19:44 +1100 (AEDT) Received: from localhost ([::1]:57597 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMgAP-0005hq-RU for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:19:41 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49591) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfvg-0005r4-Bl for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:30 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvd-0002Qc-56 for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:28 -0500 Received: from mail-dm3nam03on0083.outbound.protection.outlook.com ([104.47.41.83]:51680 helo=NAM03-DM3-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfvc-0002Q6-TM for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:25 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=LDKSMpx/6j3Xapqxaz+BPc0m0qFyyY0vRY6p2U4m+mA=; b=hxXZr7z7PzzXhJQ++j8cPQJ5P8UZSpvjxwEBTpxbLKDi3BKdUbI8cWFILN16aNObCBWhQRZ3nj+6hno3Zh9LXY8D0pfebL53OyUMjCFruNAX7RM6iuIb6W9Hd4XP8gsXvjk3QCzm24/U8mFUvaHsPgIk+98i55UC3qvAQj0YVRs= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:19 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:28 -0600 Message-Id: <20171206200346.116537-6-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: 008a5f95-38fe-4450-2ee7-08d53ce48aa3 X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:+1kB4Z3dFnPIOCPLVydMVBIYaJ3VJe9P77CepSO7zkwOCZPWkABvniU1GkddjEr1T4LRwe6iZyss9vdYHG4dmrgcV45deppYbnbBr0nnbFgDiQb1OkM0NMyGnsYK1FLjbf1J6j371fny0UKJrYQuI3BpTmGIfsCTgIblTEXBqW30Sq6OMpZwy1Feee/zKpFBeliwfUoigCVtm2X1YseXsdmQ3OexTIEk8tveaVeqEI2jlv/oVXIBSIe9fwWv79MU; 25:ijFRGRcubFiVQp7Masj3XkcGDnNf+mmjHd/B2WEH0gIxM7dWLS8UcYQjag4m42p+FkwCi+tTS67gIlbwgVNBgTJ2IB6W0O3pkby4FZzMqykjxkeJtWtwaeGElkw2c2KrmtDdcVRSvyB1rfN0HhCMSi633cOEjWCKZauSjzPXF8mqm/9HR7dUFbF7byVWKtIg9FzL/A4eqSvU0gJOX5POw2yVx6R0QYo9nVMOjsKncmil/SXmcPHyxEU1bjHRuJuXh6yYiWzM1squqNkY/YAnB3EsptBVqGdYHDV1njYn/Ef6eXLGgLhewXb3rFiOfNV+OHY654zmV9gnueurxOLO7g==; 31:Z3WZ19DJcT2m//9e5m1GRyVSU8xUsJdwNxmET4kIuNJXHh9Zpo1XADby4iIxBFh4AjyfFs4d5sffpjtRxsEwJQfBLyZSVhUCGB5MjlHoxqKxaCr3IUTd+reXha9UtNKwIFThy+5IV/gH3+7ZE5ifKEawsLszt3UNXBlDUkFJLNvWxSVVnD0f4SLmij1ORfMklrn1bWw7K2/CZcGaQRC3kqJATrnuPm7g0N+UN+TGpzg= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:P2bBQzjzK1dR9vspOPGn+MCI1owbh1moEUoAznNM6B4jjBDnuobnoTgRUEwcnZonr134WSCjRojq74J0yNROUPDCoJjAxM2K0sGwj+/hK34y0LI+9w7IT5gvWA1WpLI0lQejw7jjXKJ/2vyBgMT4cJINOZ/Bf1WZHpQlYXLUg2qK/+Ccn3UpjP4+R79KGVGMIVZza0LGW5pcq0d5pAt4WmcVGo71lStrnwPJPyWKLsdXV9lUZIOmUlq+P0QWdMZMGkP4rAgMtbPzIxZ6WLSS0YcV/IIyLIPGK1N8ieCSYK6ak7fR8xxT1L+p/IlZC5UQ X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(6306002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:XU1Hq9fYW7VsgwDHUo1f0GyyzkqO0SLChmCzRAJ0u?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:0Q7tXi8e3j2FJB2WW8v9hvOme0eungEZaC9DaM7STSBmh4Dy1XC0jLwbvh8AHgP4lXK9K6Hqr+zESw1GhIY0k/qUwHTdAe+Vao0j4Q3G+VVsSe83CNaargdT0KpXj0cRGtIxFVLfBJFmHRAMJlA5/zsrLG7wrY15NK0YMILfc72tyvwoTUTFqfWw7kugyNTydJTipMSlXjfanp/DiCrv1DbCpGITNYXSSgcTfT00Ck90J+haDRGThG+JsppzX0WrIrkikHhVTaN576rtupu6zpVOFwguP/LyhOmyZxg3UkCDEhVh+vL7bdzIKSNmp8MsiS/bqBIOGDO/6jozSV/rMZlIcXaBI0f6mNFYAVLUQ88=; 5:Oavuhc2hXokdmtXeF+bPu3RWZ0UgZPnKWsK3wAF1mXvMBQqFpBu1GGzx7n4Ak+yqwirk9y/27dOLh3W4gmLwP32oQq8Yz4ce/2wIT+VVdfP4pTk/nJ/ZiyhwWWiihcx7ko+fgl3Bb8m39avyInHjzds0VR6Y7GYLT8+lEEjsF7I=; 24:UyoiR1jYT++Lke/WABo4yAb3AylOrocz7IlAfq5QPLPmQxp7VRlv5MduPKmf6usjdH+Z/F0V1Intf6xr3XJJe0ppibvfRbH9nBaZS2Mp2Qg=; 7:p2X9TlW+uIjtyt7eW+3O7VSw5dm9IYxUgCWgh7hYnkDjlgqeNPVJfisNZw7EyM13k5/qHzJ7HyjCjOAOekxMHG3mjx7P3ParjjnI3b9OHX1tg9xJgDh5cDviGO3WdLkQaaaT/dVynbVnIvrXAQjr4oEoFozFTYNmGIfiaFX+0NyOZC7MT/Gc7mvdu/SIfyOPn3eAh7NPv5JNlc2TxUNM46GLAUtPZCaU3iGuK1C606OCZ9qoEZC2TgwbWVhpTGD8 SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:sge2sooL6ySDk63t+t7ZEZiwkxJmMbhuFdW2W+Uy4npHrWWxjhmy571IiKPgiYok5y3Lt5UfwHlnFNGxJ4NbumUT02oXA1bDqmPjw36LCCEL+/sT5EoaudtC8gMumWrjfw+/pcZWKhu8t4618xFAsrtDT8l5pG3mCsIVjiGx6yOhXegkkXAkd8r7UPix0uZnEtFKcQovtlwRBi/yxw2tZ6d9Km3vsRf5AYBpy6tXEY+FnZGrSSzDQJuazjlI02/Z X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:19.8953 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: 008a5f95-38fe-4450-2ee7-08d53ce48aa3 X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.41.83 Subject: [Qemu-devel] [PATCH v5 05/23] target/i386: add memory encryption feature cpuid support X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" AMD EPYC processors support memory encryption feature. The feature is reported through CPUID 8000_001F[EAX]. Fn8000_001F [EAX]: Bit 0 Secure Memory Encryption (SME) supported Bit 1 Secure Encrypted Virtualization (SEV) supported Bit 2 Page flush MSR supported Bit 3 Ecrypted State (SEV-ES) support when memory encryption feature is reported, CPUID 8000_001F[EBX] should provide additional information regarding the feature (such as which page table bit is used to mark pages as encrypted etc). The information in EBX and ECX may vary from one family to another hence we use the host cpuid to populate the EBX information. The details for memory encryption CPUID is available in AMD APM (http://support.amd.com/TechDocs/24593.pdf) Section 15.34.1 Cc: Paolo Bonzini Cc: Richard Henderson Cc: Eduardo Habkost Signed-off-by: Brijesh Singh --- target/i386/cpu.c | 36 ++++++++++++++++++++++++++++++++++++ target/i386/cpu.h | 6 ++++++ 2 files changed, 42 insertions(+) diff --git a/target/i386/cpu.c b/target/i386/cpu.c index 045d66191f28..0cc7bb88ce2d 100644 --- a/target/i386/cpu.c +++ b/target/i386/cpu.c @@ -233,6 +233,7 @@ static void x86_cpu_vendor_words2str(char *dst, uint32_t vendor1, #define TCG_EXT4_FEATURES 0 #define TCG_SVM_FEATURES 0 #define TCG_KVM_FEATURES 0 +#define TCG_MEM_ENCRYPT_FEATURES 0 #define TCG_7_0_EBX_FEATURES (CPUID_7_0_EBX_SMEP | CPUID_7_0_EBX_SMAP | \ CPUID_7_0_EBX_BMI1 | CPUID_7_0_EBX_BMI2 | CPUID_7_0_EBX_ADX | \ CPUID_7_0_EBX_PCOMMIT | CPUID_7_0_EBX_CLFLUSHOPT | \ @@ -528,6 +529,20 @@ static FeatureWordInfo feature_word_info[FEATURE_WORDS] = { .cpuid_reg = R_EDX, .tcg_features = ~0U, }, + [FEAT_MEM_ENCRYPT] = { + .feat_names = { + "sme", "sev", "page-flush-msr", "sev-es", + NULL, NULL, NULL, NULL, + NULL, NULL, NULL, NULL, + NULL, NULL, NULL, NULL, + NULL, NULL, NULL, NULL, + NULL, NULL, NULL, NULL, + NULL, NULL, NULL, NULL, + NULL, NULL, NULL, NULL, + }, + .cpuid_eax = 0x8000001F, .cpuid_reg = R_EAX, + .tcg_features = TCG_MEM_ENCRYPT_FEATURES, + } }; typedef struct X86RegisterInfo32 { @@ -1562,6 +1577,9 @@ static X86CPUDefinition builtin_x86_defs[] = { CPUID_XSAVE_XGETBV1, .features[FEAT_6_EAX] = CPUID_6_EAX_ARAT, + /* Missing: SEV_ES */ + .features[FEAT_MEM_ENCRYPT] = + CPUID_8000_001F_EAX_SME | CPUID_8000_001F_EAX_SEV, .xlevel = 0x8000000A, .model_id = "AMD EPYC Processor", }, @@ -3110,6 +3128,19 @@ void cpu_x86_cpuid(CPUX86State *env, uint32_t index, uint32_t count, *edx = 0; } break; + case 0x8000001F: + if (env->features[FEAT_MEM_ENCRYPT] & CPUID_8000_001F_EAX_SEV) { + *eax = env->features[FEAT_MEM_ENCRYPT]; + host_cpuid(0x8000001F, 0, NULL, ebx, NULL, NULL); + *ecx = 0; + *edx = 0; + } else { + *eax = 0; + *ebx = 0; + *ecx = 0; + *edx = 0; + } + break; case 0xC0000000: *eax = env->cpuid_xlevel2; *ebx = 0; @@ -3549,10 +3580,15 @@ static void x86_cpu_expand_features(X86CPU *cpu, Error **errp) x86_cpu_adjust_feat_level(cpu, FEAT_C000_0001_EDX); x86_cpu_adjust_feat_level(cpu, FEAT_SVM); x86_cpu_adjust_feat_level(cpu, FEAT_XSAVE); + x86_cpu_adjust_feat_level(cpu, FEAT_MEM_ENCRYPT); /* SVM requires CPUID[0x8000000A] */ if (env->features[FEAT_8000_0001_ECX] & CPUID_EXT3_SVM) { x86_cpu_adjust_level(cpu, &env->cpuid_min_xlevel, 0x8000000A); } + /* SEV requires CPUID[0x8000001F] */ + if ((env->features[FEAT_MEM_ENCRYPT] & CPUID_8000_001F_EAX_SEV)) { + x86_cpu_adjust_level(cpu, &env->cpuid_min_xlevel, 0x8000001F); + } } /* Set cpuid_*level* based on cpuid_min_*level, if not explicitly set */ diff --git a/target/i386/cpu.h b/target/i386/cpu.h index b086b1528b89..a99e89c368ba 100644 --- a/target/i386/cpu.h +++ b/target/i386/cpu.h @@ -463,6 +463,7 @@ typedef enum FeatureWord { FEAT_6_EAX, /* CPUID[6].EAX */ FEAT_XSAVE_COMP_LO, /* CPUID[EAX=0xd,ECX=0].EAX */ FEAT_XSAVE_COMP_HI, /* CPUID[EAX=0xd,ECX=0].EDX */ + FEAT_MEM_ENCRYPT, /* CPUID[8000_001F].EAX */ FEATURE_WORDS, } FeatureWord; @@ -649,6 +650,11 @@ typedef uint32_t FeatureWordArray[FEATURE_WORDS]; #define CPUID_6_EAX_ARAT (1U << 2) +#define CPUID_8000_001F_EAX_SME (1U << 0) /* SME */ +#define CPUID_8000_001F_EAX_SEV (1U << 1) /* SEV */ +#define CPUID_8000_001F_EAX_PAGE_FLUSH_MSR (1U << 2) /* Page flush MSR */ +#define CPUID_8000_001F_EAX_SEV_ES (1U << 3) /* SEV-ES */ + /* CPUID[0x80000007].EDX flags: */ #define CPUID_APM_INVTSC (1U << 8) From patchwork Wed Dec 6 20:03:29 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845331 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="ACylgiO4"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVQb2wT6z9s72 for ; Thu, 7 Dec 2017 07:22:14 +1100 (AEDT) Received: from localhost ([::1]:57621 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMgCp-0007w1-DL for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:22:11 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49622) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfvi-0005r6-BX for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:31 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvf-0002Ri-5S for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:30 -0500 Received: from mail-dm3nam03on0084.outbound.protection.outlook.com ([104.47.41.84]:45015 helo=NAM03-DM3-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfve-0002RD-V3 for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:27 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=i9SjOLwvNESO6woDFXMKL8R8lJh+PJZcRAOo/sSQg0U=; b=ACylgiO4j/kfjT1C7Gtl8HhK1nFCNyfXdQqHPR8QxeMeUuBockAAd4ZXCc512GzqM5ihXthou4MX315/TTZvkqJwk6YlgkGFfeglKZ+uOcyCg56Fs9Gg3YiugLzyFAAK0ofpjZYLvU5euLVJxjJ2JpV4M5/lECqDLtAQ2zbWaGI= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:22 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:29 -0600 Message-Id: <20171206200346.116537-7-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: 7298eea1-4906-4543-f80f-08d53ce48bd1 X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:WJB6UY/NmfuFO5BEcAkOElgnnhg835PYWeulBwqSYA16I+yVQYA8xkOQAK6nztcp2jDtNt6PHdAKcohEpr0SZlLT8ZCVM96N3cAaBtYJ5Sfd0I8gwzarl8ngY1gGzphkcIKxNJ+TExmWJct56rZ8xQyGFIJsq00ELOfc/bU+JAXycdpvRz4mlxJw5R1cwjqIc1cXzBy06gEJUvE6RU+/PX0MieQ1ZYiSAdKFRmsD/aK2sgAhWoK+GNhj1tXNX52v; 25:Gqs7Mb+LYy7ByGgl72mevyo2dElWAsjLgCrQH9/wgMWCx/Yam7S369SLy2hicU3JFEkUNtYWPRIUU7IEc1m2/JTpqZi8xTEdJE5DEoxyHgWrFmp/IEbCfHpyB1i9EV/94xjmHeRrwWAPvoqD0M8bK/Roj9P/fEsaLCFxrCmxq09N+99KfIVp5XnPB6V7FHrPson7Tk3/A/d3OiaDim8F6CgtnfKttA0BJYT8NqvsjOna5+rGyjwBuWvjF9Iu/jU66Bkt3HRaLOyK/Fc5zJHIKxk5J+3jUlYS/0vDVH8TJJv6XfvoPtL2v45Hxe0BF4hh3vSRt8ydz/wAsBYiYIeIvw==; 31:XCwHPQ2o3JR6U2TkywQIYz2vJ01HGBRehPCDdwZUbgpeCOWBmrbiMUOMyhP9orTlQDe6jGAAmJbPHoBPBVwcnVUAfsiXBrUV7Q1eyeDuVac+RELfCJwE2fFjnhzYUx1wFBkbDqtYs9y802heaH3ZNZpe7gNz6VsN0Z8Au6E5gSkavahXi5DXYN0p7xWz/iVGhL4LSVWjJVNL6vhpL4Jlx33FizLLfMRGj4iP8o6kQ0M= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:z7M3rVsrRZ4iFLULum+MQnIdUgbStZVKd2W/xKahlzoYwFWDxDvIpDjlRpFIUEHvQnjNUd/zg392yQLwrnxbjR3jBiFfkbJr4pwdv1+/S6H4/k0d6IYag28jtXVT5WU9oLqYLEGsRFQ1u8T3q99+l6lrt7q4dRo3PvvCMbWAx8WSeUSb/vhCcbM9hHOuFZjt/RHD6Nq2kboVq9+6E0MfMvhcwt8FwiboBZKW0k0Qn0omU5gr4EZKGMvwXKGRzKhXd4wZ6xYZkKozwu2yVFY3Uu8cn8+JbgOthm7IzZxrGffQcUUQNfdxIptw/vs/pWcWt37ObwljhYq4A2tuTAIc2LNjYDRcgR1+i6lQKDy47Uq9NlzUd47kXJJlyL73HFwb4ZZ4+D+HtmUWMx82QE1adQ7wnhmerNYyiwf7JG1SEXn5a0uVJfYnKVB9f3KkWLqBBeYoBrJM8o51v4wHA7MtulqCwno9PGGmghyNBpUbmF6Q0h2nKSD3M+w3bfrdchvb; 4:RL0KzTyP1cYc5u4A3PkQmec1Nol8XNeBrKvV91STyU8cAw78Z2m68rddbcc5QwporoN8WU+d9p7MGLFO1awdLj08cisJGFJ/zydGv0/JT1LY4iyCBKPA2qRIGh6oPwL2lprNQEUsmGXOaz7DbztbguZUoI0Dry+m9vTOvkl67/rsEvSxjFYyLiGFaaQxcWN7fmKhWDhTgtwk7Kx+BmYbA3bAgTrUCyTI1DgtQRJQjSlQJ8HDgLbC80N8kXNG94YDT+8O/uU5AikedzAvcmyMNVFwgE5wXGBf/VezvrYXgpZ7iezF2n7CAL9QRa0y9cvV X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:4s0EUPsIgSHuUrTp5a9KjCzn+ZsOBFX7fnnhBMbaq?= kNzhhXAVO1e1Tb22Vj58a6TjfM+oW5WAGMoyprpGnYlwwINsaTssAD8ZOsDFUI0H1ZIs6PFsnsSNhJ8UKbCN4kEOECOrkE1CJ1d0FlgX13WebWTh+GrBJ60uvkpNzqm2UxuN8Zb+tiE+Naw2aLqfapsxxmn69dZicdVYTF8eDk41MI4xFNQi0cPzNnUz+ay/AkbuLDuPcmhPhURdH6XpRBZBw6B6XbRPqEv7Ga4obGF2oK1LlWHgNgwkLV3dFpz2T9+3Lb9JAl9RHYC63ibIGJ3mLv45y8UD7JEHgKstLBToaNVZgx+OR95Gn8TS14UCXNwNJjXYOYVaB2uya546BH7XQq4F0kxHYRdR4GzC8FnFsyAMZwQ9mAC+B4n2caLhHIhBEaa/+z7IKKtk6d9x69SJMOX2vFxqgHrj8vJfyPR2Wd2hZdDTmRlhd0JBtcMuwM88qwj2gUXWE2RM2mDFfxioxwN0SgF9/RUffax8McisPhb57bL6/IPFmgNyz4FFNY3QAlqUOFaUFUHi568cBQYstS9sUtyCUg1iozqSAbSJq5pbCvT6+aJKlpUf2T2L9IUVgSCJuaIAIgbEgtAQpS0I1x5f4I48rEnkFJoX/TWYTnHNuQGM2ruWwSLJ4uU+cANr/081tJsJIYESIQsAk4aXQwhKt8u8D2oeGR4CIzoSrEmnIGM43z7FoIIJABBQKP4utgH1kOG4NsjPPsQisAkJKZPJ3tydK4fJB+lx1HkfX4K4FMd7YXlk0NYdt4SPTctcChiV4rSTVOzR/B36eApO/8EonTm3v9PQYFJFTRSwNJsCUGWqIl1AdK/FLPUhBGMJkEtdTQ8meN94rm33hRE8blAPkHJ6mAe2DFCW9snlleQcqsBWWqZ/MNGHPZXLkGHdBMpBaFjNbl73VMWi8AdeCKsKhj1tNoNa5p+1s+XG8D+HmJ6zFuxnyDxRD9V2CKYsN2ZOXgwj8seydAhnJwFqeO2e+2UER+Sa0ZYaA6E72b64EmJoermN6k+0n4DvUnXbZpIYZKccxDYPPcl0UjTdEvGwQyN2ZX/cjBqwpukF6CUs713vUXbtUElzYqUTNlXSGmANmpV0kh+7ajIAgDwyWoS71UDYS+ilh4ctMCpdO74E/ovZ1db+jRHbo91MW12HUXtip38s+b29emO8OMT X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:pstIeARByUbtQmVmBaAV9Y372O+hQImidUlSskmlUrfe/C0dWFTHd7W3r+PURDP+ka6p7A+v4Dr/DlYEd2e1ZsvInfxjYmp5pZch9camC9ZNlTInXHlQII9rqvTzhRxA+9xYtwhICR0FWHyJyApPei5ZNHhV/SfpJaA8VveF3V3Ylc07hp7hhIysQ6L3MtEzKjfNEDhuN2qqUtqGT3AdiR/+jY1vfaResYAx1qICGTVodknCMLYUSVoEkT5IAKMseHj3YeXQjtMzWfx7x0021Gwma3wkz0qrEbpDzy16cqQl+hC41D2aLuW8khGGIADtR3HuuExAdglrwSXWXsOzYBicdHv7KuqYcHfA55xlSaA=; 5:b4qYUyimN/K7qffK76aGJuzLnf6twnFFCDSp85JFcG+VMbOkVl7czmmcpjHfI6HW+SulkjWTN8fU4Bie52yl+5MYimZ7zwjufELsqOta8ihVjzff9ekyVv1MhhHI3XtiPwAUiP+ZiHaFGgoRuUf4oZRcp29I2lM6EWeq7+KQ9NA=; 24:OHoUW95SJYjF0RbBnsmzOVeMHy3wzjGc9At5ZUKiOnHc9KgcEwKGe5ikJz2yDVZerlONiDByVbTXGIUNBp65Nygcke7snojtUfI8xPJGDBY=; 7:jE1zKWR/iD/TIMYMNjxrqw7ikSwwICysKAZ3Tj2H3pCB35YNf4S2en33MV6SuIUDzJf1ifxZFGG/J0uFNhyTTZJKqot9Kv8VYbP9JZWkRawRSWOE9zkF/17QtT9LPwbnutJVUc5GiXJlcpNtowImn6l5jv2ylDVpTyZ4CJAGnvhk/Xyr3ooiqbtmQJQFT8TTYmNrasZlgMM5IREzjvTuMmYtWcvi5oZZecyAHyUbc9umSWN5ffpxa/3KdOd5uiwG SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:KwAQPIDocbL1YBzfn/dp+LOJMiR+gXkTVvvbUokwu50zSxepWeESMZqmvh/IsGaEmVZkvyW+2zN7wFQpkmI//SXFKx1LeDAGrFrlP0OCldmvb0ZusXXzIH5JqrTqsIjl5IYfvJ4Rqw1n4b4EvQvS4vqvkKUJkh7sD9+OTNRBjTltNAZyQp2vYcqFurlZfulsnozJaSdaoCqI22O+gJM0V30X0xfn9e7nhrWdCcUHAtH/xsz+t3vePtY4C3CO63kj X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:22.1765 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: 7298eea1-4906-4543-f80f-08d53ce48bd1 X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.41.84 Subject: [Qemu-devel] [PATCH v5 06/23] machine: add -memory-encryption property X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" When CPU supports memory encryption feature, the property can be used to specify the encryption object to use when launching an encrypted guest. Cc: Paolo Bonzini Cc: Eduardo Habkost Cc: Marcel Apfelbaum Cc: Stefan Hajnoczi Signed-off-by: Brijesh Singh --- hw/core/machine.c | 22 ++++++++++++++++++++++ include/hw/boards.h | 1 + qemu-options.hx | 2 ++ 3 files changed, 25 insertions(+) diff --git a/hw/core/machine.c b/hw/core/machine.c index 36c2fb069c01..132c57bc5124 100644 --- a/hw/core/machine.c +++ b/hw/core/machine.c @@ -335,6 +335,22 @@ static bool machine_get_enforce_config_section(Object *obj, Error **errp) return ms->enforce_config_section; } +static char *machine_get_memory_encryption(Object *obj, Error **errp) +{ + MachineState *ms = MACHINE(obj); + + return g_strdup(ms->memory_encryption); +} + +static void machine_set_memory_encryption(Object *obj, const char *value, + Error **errp) +{ + MachineState *ms = MACHINE(obj); + + g_free(ms->memory_encryption); + ms->memory_encryption = g_strdup(value); +} + static void error_on_sysbus_device(SysBusDevice *sbdev, void *opaque) { error_report("Option '-device %s' cannot be handled by this machine", @@ -598,6 +614,12 @@ static void machine_class_init(ObjectClass *oc, void *data) &error_abort); object_class_property_set_description(oc, "enforce-config-section", "Set on to enforce configuration section migration", &error_abort); + + object_class_property_add_str(oc, "memory-encryption", + machine_get_memory_encryption, machine_set_memory_encryption, + &error_abort); + object_class_property_set_description(oc, "memory-encryption", + "Set memory encyption object to use", &error_abort); } static void machine_class_base_init(ObjectClass *oc, void *data) diff --git a/include/hw/boards.h b/include/hw/boards.h index 156b16f7a6b5..41fa5779557c 100644 --- a/include/hw/boards.h +++ b/include/hw/boards.h @@ -238,6 +238,7 @@ struct MachineState { bool suppress_vmdesc; bool enforce_config_section; bool enable_graphics; + char *memory_encryption; ram_addr_t ram_size; ram_addr_t maxram_size; diff --git a/qemu-options.hx b/qemu-options.hx index f11c4ac960ff..5385832707e0 100644 --- a/qemu-options.hx +++ b/qemu-options.hx @@ -104,6 +104,8 @@ code to send configuration section even if the machine-type sets the @option{migration.send-configuration} property to @var{off}. NOTE: this parameter is deprecated. Please use @option{-global} @option{migration.send-configuration}=@var{on|off} instead. +@item memory-encryption=@var{} +Memory encryption object to use. The default is none. @end table ETEXI From patchwork Wed Dec 6 20:03:30 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845312 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="LcduYb6Z"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysV3J1sk7z9sP9 for ; Thu, 7 Dec 2017 07:05:30 +1100 (AEDT) Received: from localhost ([::1]:57482 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfwd-0005zr-9S for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:05:27 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49649) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfvl-0005tg-6P for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:36 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvi-0002TL-0B for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:33 -0500 Received: from mail-dm3nam03on0044.outbound.protection.outlook.com ([104.47.41.44]:26668 helo=NAM03-DM3-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfvh-0002Ss-Pg for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:29 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=sSYlPcLH6dVQDCEsSSjknA/F7oMGCMfZuvAakeiTmpM=; b=LcduYb6ZyoJaVjp90TujiKXmlcYCXh66HnCT+BtrXjGpCXuTvHalvwiGDY+6bH50mOJYctVKairyf0JI856n0a0Mau0+9a4jHij80etd9W66y+UaW8TFkwZtAua3DVZZikxo0/KPxc1ldof458CUCyum8TIJI5ZxOlS2izuF4pY= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:24 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:30 -0600 Message-Id: <20171206200346.116537-8-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: 6988fce2-0707-41d4-2386-08d53ce48d03 X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:zzBAzoFf2T8e+gAhvy5xhKxLVYrd00F2PbKf6V9jg98VXkc/bin9SmTvBG9UsXZ6+VKyiytIq0cIZA7Cr+M0CuDYrflvG24v3Romi+ahiusS9k68Cuxfbw57Y6+hhrvQMbaaUdmcKeuStP6aShhwfbOenRs6wcgd412uvoPGjxRoGyConBYXhbhOht+7tPWmdk0itAisr++/PImouDd+Ht4+A8LnAuriI2XpaUCVONIyEIvHDbTOjaUvcI6vbWvQ; 25:jutzq+sZTRWPuvmfhiJk8MzGtwmAelRlY9FjQVhKvmyft9sAH4r1VzmC1/JN3phDv1qOJw+OdiVOcMOY5vETqBf0iLVmBUAV/0pefzbCo6b6HCuTaDB60B81igz+uIDPb5RL2+Uk85SMUzVSxL+xNlyvheF0DB4FNtJKXaamiWB6QWdEZivBRmv+HlO8XtFFK3WfETnSwjHKXpVmi7H8ZWu9b31FzpDJW2SljsqLsyI8+8QxSCmkI+x2lGD9SfV7axeSGT2NWPsZpmzaAlcNflwd9i+B01kprC0q8D+3Ko0NtKToZdn3PvAOWWy/cAz8i+A0HCrTS4kjEl6Ln+IvqA==; 31:Ppb7SvPsg/ADZRMlk9sFiQ9T2vTd+2n8+DYloLVCwtwl2R7yDw6pWAtEVNBNH8N22Hy1Su9auf3k/y++8pATKPbB01ygvClFgVmZ0TVRfcMyF+nnHRo8UW5Ik7YhOD/mAr+Ji51oNhCoKgp3P98oV5RqDOOYE2NDBcEJ1B+mjRbv7dhzS+lxFqL+bZbv5PlTdgLvBa0wywFmCC9dtdQWSazOjnVK7/GmvBaYmcEsHs8= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:uNhsm5afZu89XvcX2+vSWE1X6/N+qBl4SbZ+trL4hZJQWkifF9ROfFycVpbBYmmrWAMzK5Xsd2LjQerbaPIhBbi+bDeFv93Vxn+1F9kiYC1b9+AOIWstKmx7/zFz3XvX/biZnCff5aURuolQmNyhZgXE0ANmS8w0zVlXy3+97knJemkY+bnlEapsN3yX+LLcDVm2de2/502pNz7PSzke1vkmTjvFq/1PGTCR6d9pJJkC7E8k4AiQD7r6BIVagfeg6T261a/WyG4Sci6Z3OoTigF+WDdzqhlsGduI0JSd3s+dJDxdi9A6i/nqEYGLwDtadFXLA8nYU26gNfsT63uICFWygdsiWBsuB40mv3218pFLxXNCiNsPcutJqxVeTrgi X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110)(190383065149520)(104084551191319); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(15650500001)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:B7tpZZfnz+uDRSm+HVsODrOu3rWw4Xd+UcKRvWfPr?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:qLbp1imo7IPWiOMOMy8IptdPNWXf6SjHqu7uR2OVM9uo9yAgQ72afN6GFp8J39ievuMIuN6GjQqL8No90KAtycfrm6v+AOW+RHkNl59U0h8rNTbDEOaYdXR2CyzPiOlc3/teYQc/RSZv8f992diAALqa1kj3kNNhoB5xXqNDOEQI//a9ZcC9+3fQWlLlIvvHLOBOm6/lP1l9GMgew2aENWLdVSYJlpIUrFdAvNhLuS25z+BpgRtiGYB7TC9cIaxXyLXiAuNCjE88JHHCYlSxdKJofokp8zsTEbqZ4jhIc5IkvdW0Bdm8/n9Ew9ODmiQCcUfzcm5xvtT+42J7MEg+BopmrjIp7STm4LlEpmsDwAo=; 5:WphGFJUN6lS+F6Dv+v2QHHHo0a/5HFzWBGiX+SvIMvJwZW5jCTUV51mXTG3S47Us04WbuYe71ZO7FWWE0MRGI8Ws4DjAbuYcjeEpKEZmz2jKEqlOIYcxeOwO6gqCESNfxdcAauVy3k7t1qogOmFcl98ydoDUXLLrTXZiXrybIeM=; 24:IoPLCww9Nt/N/R/nVG5Tr5cHmqCHJrtwF38ijCyAQmzxDDe2lTmeAI95yAaJCuEz7ISJndkoRFZLZUIV1uUA4GzCQ4xl3fmJqDL2yugosSI=; 7:zYN5ul+cLVNet0cw5GfyVFK+sc+WQT8cQ7bs2ggQsVLjcoPQclufKc/GByHY5KMMlv8GH4Q6inwq0K0alDONOgqrSkxBw8D09ROiAjHSRPgoGS38PRxFo6Hzn0raheCbH7HFbCfFqV1lghupS4bJ0hP2hYZ7ag4u0o4ybVZWhUF2v+XrnyvbSgC/Hq8m/ULQ3rIdiBy/rC5IwkFjs6J+BP4rTeOtaeaVukGr6nYQs+a8JYL9FwxvHyKp6sUHT6OU SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:K74Jv3pwCtVYsQyj3+0F3cJvB6cvgeCuY//jKsFB734UxQjRMSHzan4h3GQcYVty5oYLlB7ZX7OHgho6yT3+R8bdsZSzOGvUG/Py9+E3zNe2BGixHMzqEJplQFCZBar9vwopIFsgyQ2z4vksSpgN7/Cit8R8HD6bfI2QKI4Im0T12oDZL8TGJhi8nY8uV1Lr+51r6WdVrjrjxYfpoq55MhgpgqZIIb6Ifz713tNW7ZT4MWPU/7JQeOZxFgcKoAuc X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:24.1921 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: 6988fce2-0707-41d4-2386-08d53ce48d03 X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.41.44 Subject: [Qemu-devel] [PATCH v5 07/23] kvm: update kvm.h to include memory encryption ioctls X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" Updates kmv.h to include memory encryption ioctls and SEV commands. Cc: Christian Borntraeger Cc: Cornelia Huck Cc: Paolo Bonzini Signed-off-by: Brijesh Singh --- linux-headers/linux/kvm.h | 90 +++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 90 insertions(+) diff --git a/linux-headers/linux/kvm.h b/linux-headers/linux/kvm.h index dd8a91801e82..04b5801d0354 100644 --- a/linux-headers/linux/kvm.h +++ b/linux-headers/linux/kvm.h @@ -1356,6 +1356,96 @@ struct kvm_s390_ucas_mapping { /* Available with KVM_CAP_S390_CMMA_MIGRATION */ #define KVM_S390_GET_CMMA_BITS _IOWR(KVMIO, 0xb8, struct kvm_s390_cmma_log) #define KVM_S390_SET_CMMA_BITS _IOW(KVMIO, 0xb9, struct kvm_s390_cmma_log) +/* Memory Encryption Commands */ +#define KVM_MEMORY_ENCRYPT_OP _IOWR(KVMIO, 0xba, unsigned long) + +struct kvm_enc_region { + __u64 addr; + __u64 size; +}; + +#define KVM_MEMORY_ENCRYPT_REG_REGION _IOR(KVMIO, 0xbb, struct kvm_enc_region) +#define KVM_MEMORY_ENCRYPT_UNREG_REGION _IOR(KVMIO, 0xbc, struct kvm_enc_region) + +/* Secure Encrypted Virtualization command */ +enum sev_cmd_id { + /* Guest initialization commands */ + KVM_SEV_INIT = 0, + KVM_SEV_ES_INIT, + /* Guest launch commands */ + KVM_SEV_LAUNCH_START, + KVM_SEV_LAUNCH_UPDATE_DATA, + KVM_SEV_LAUNCH_UPDATE_VMSA, + KVM_SEV_LAUNCH_SECRET, + KVM_SEV_LAUNCH_MEASURE, + KVM_SEV_LAUNCH_FINISH, + /* Guest migration commands (outgoing) */ + KVM_SEV_SEND_START, + KVM_SEV_SEND_UPDATE_DATA, + KVM_SEV_SEND_UPDATE_VMSA, + KVM_SEV_SEND_FINISH, + /* Guest migration commands (incoming) */ + KVM_SEV_RECEIVE_START, + KVM_SEV_RECEIVE_UPDATE_DATA, + KVM_SEV_RECEIVE_UPDATE_VMSA, + KVM_SEV_RECEIVE_FINISH, + /* Guest status and debug commands */ + KVM_SEV_GUEST_STATUS, + KVM_SEV_DBG_DECRYPT, + KVM_SEV_DBG_ENCRYPT, + /* Guest certificates commands */ + KVM_SEV_CERT_EXPORT, + + KVM_SEV_NR_MAX, +}; + +struct kvm_sev_cmd { + __u32 id; + __u64 data; + __u32 error; + __u32 sev_fd; +}; + +struct kvm_sev_launch_start { + __u32 handle; + __u32 policy; + __u64 dh_uaddr; + __u32 dh_len; + __u64 session_uaddr; + __u32 session_len; +}; + +struct kvm_sev_launch_update_data { + __u64 uaddr; + __u32 len; +}; + + +struct kvm_sev_launch_secret { + __u64 hdr_uaddr; + __u32 hdr_len; + __u64 guest_uaddr; + __u32 guest_len; + __u64 trans_uaddr; + __u32 trans_len; +}; + +struct kvm_sev_launch_measure { + __u64 uaddr; + __u32 len; +}; + +struct kvm_sev_guest_status { + __u32 handle; + __u32 policy; + __u32 state; +}; + +struct kvm_sev_dbg { + __u64 src_uaddr; + __u64 dst_uaddr; + __u32 len; +}; #define KVM_DEV_ASSIGN_ENABLE_IOMMU (1 << 0) #define KVM_DEV_ASSIGN_PCI_2_3 (1 << 1) From patchwork Wed Dec 6 20:03:31 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845313 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="5Nc7zy8F"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysV4S104Pz9s71 for ; Thu, 7 Dec 2017 07:06:32 +1100 (AEDT) Received: from localhost ([::1]:57499 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfxe-0007iw-4F for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:06:30 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49674) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfvm-0005xJ-VE for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:36 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvj-0002U0-O9 for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:34 -0500 Received: from mail-sn1nam01on0045.outbound.protection.outlook.com ([104.47.32.45]:39626 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfvj-0002Tj-82 for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:31 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=bWUpQjAaYex+LtQrHLs4hdux9ZBdL8MLW6amvzN34BA=; b=5Nc7zy8FjCqe11XvymWPA46BeI5aWvxF/Pxl5pvwHW24NoC7L2SPn0JHdE1StPXv9XScXF8G+m5K4UWm6PcbbQOcHQd/YOXDlXgE6uKRqbzAKd1+Q5DJfwT01Fjoe9aZZqZlV+PewQWLjPlZLUzhJvvSSNJYZSnhMimSQ//IrZs= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:26 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:31 -0600 Message-Id: <20171206200346.116537-9-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: 0f603ebd-6590-48c0-d863-08d53ce48e3d X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:8n6W4hl2KjAFzVQTQZH/Xm0VOoNxdIn0wzCjqT0v6y7RzbgxkL3Vj3gg8mwrT5wHvqPaM6/0AAhpUGt3AFTStdJ2Pz0NrcZuAvkrbaKYOxgzNzVm6MKBa+6IAMpC737n2A4tTxtBzncpc7Lsq1C1zf/HqPNSP9BR3jhdQqtrcQ9bAmf728UbrY7IHKxbSId0hUxaQpsutKdab9rGeRSKYdZBJyX+P4FVXh6O7eEJR+Uy/l3ddWjknHDJEONtRZ7x; 25:tWIudzFePipHTmPBACyf2XowzKdtjGMQ0OdV+RgnCpKAJfnoFZEagKl403tj8bNPMXlZ8tURk21lE9roUesdW8Y4wTEIUrPAk5hrEBT4oNYfirSezt6HCZkl0UY3FQixEub/mBWdbbOnhPGXu0CG0HilYWvzJjGWIZIPLnAvgmnM4eFmLAmuUPuXs36+4t/kR/v7+UkLCHdJ80co++LhgG6U0+Xta/0zoTv9DGosf0O4Xhh7ZzBzkl5ZM084KNzMVQOqdk5+Dd48kPZwAHkbi3+/6oOHga2Ei5lSSrIgHG4umz56XF3Ux8vdt2vG/NmBffdv5Dre3NNcgzO6PWAtlQ==; 31:x93wvqZyKUQfrhf//M9VyINAi61giBIUq5o2i2Wms/n1XJItan4Td3is5HZle+Vqn3uLBLnA3D5kKsZ5se5Yepf9gycsRl+4WA9myUz5RQuCwa39OEgjrWHR/jQm84q3i9F49/R5G7YBHnS4slJ8umvzNgZhE5rozaEHSdwSS5TlVnGWEt+N6CjrSqD5Bu7XPMSX2d5fY2PLgVXTEClY5eifp4yjaY2+FugAIy0b31A= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:NXRaOh5w+Xf1QCkCnWaOZ2nhcDfK2mKGIZhgM3aifec8XX2uCTF8Zd2JMPmk8ny3ZJ5J4JyVPkn5u46Dnoyxo5PMINu6V4MytQPzFYTICJMdZnJ+YnOz4LZziZB/9/wex2ZhuiVAhuMRVQBCbQ7UC6/zT/cAPKX6aaPhhsY+6B3DRHJTlGha/KZr8ES+OO7vGToARSIoT68SJezO2tkreFp0xhEYp8Z3OXsIoo35XR9FmuUASDBfe7vMLiLhvapeRr6ZDDfY31SFNHRnfUjiwYCercfQ4zqcScW0N23RdAWe7YmxShPJ2LOIKWLBx6q5jbvL12t/F9fxhuNT0x/x1hqYAWeY07GDDrzkfWJdXuwy6BPNf+TVGhcAdGkDCr5HH6iBYoCOU7w9DaP36Uot0n5vMJzjDDvIMvRRc+BLs83EEbuPMNA2fTJus2WciZNSiYTqMZIZkg4c54kGEwekpRgstlV4f2jD7HkfTJPvMw+Tr6kBatnl80aJ1woSjq6N; 4:mUMlj2HiVqO46v40CH+lgmyDc1TBp7gA9reqg4zUuCe/t6TVgYJr4wMQL4T78hIC8aIBFKpTXjGUbMaCbNBSkkqhBDbVLOeACW1y35SR7ySqBKQAZuuA6fPFZitAhM6cQhsBUOWQAKNEwLGUWcydPO+2SfhOT8wg3bynlS8aSHB24yvmcDMaiR8ADDdPIC6q/A7RmhmjsTApcPs8N9eHrX26pC06AwXk5TfsHPRSXp2hsSi/K/gYboPGuh1L72gJdSvuzxMyHdcAfoqox1OG0kp4RcF9+2yquJGtHZ/eapslB02OY0m+GQoOdEKrrOjv X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(979002)(376002)(39860400002)(346002)(366004)(199004)(189003)(1720100001)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(6306002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002)(966005)(969003)(989001)(999001)(1009001)(1019001); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:0289zDcKgSEGvQcRnHkq5lLNRxU3Ci9Dt6VnIZkBC?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:KJmXdeB4Pb/oHDAZW4i2y8vjW1pKVsQE7SS6Hj9UROLNHt+fOB/ZA6wKjyTFFoVlHYUN0iUfIoYuDlO55L/G5Hez69Nl5OqHIr1QE2+QF0hsspZUYriGHj81lwAtGRf5kcPZGEgkZ/ZiDCHiThm3o5T+UAIi6mwDG5Qf6+jjSdnf5vUWSMJZazwbpdqoQlt5Wird5LAaMSbTjmKrT9r8URGcJpva3nreIBgtXMS+VoYFEPJqkiTyVPcaSgcSE5z7h+xQFHg5euJHnxR2kFNIJ9RUeWpFzuFA7ZQsox4TbHx4YwhE//Q3/dWl+YLAU41xGpEOdPBGUjTR/w9SMhrVAKKjCT6W1QVvVUiTyL9+wio=; 5:K5fJlE7ykuCQ8TRj7WKVh40Xsea9niRxPSACTNExdw34W1M+YTiqI4zlM538cDEXyojgjgaGfAMtfa5NZ9iRf0Ba43wCC+xjRIbvFAD+ztV/pDlIteGq/6Ck5+E7sqlMsX8XTRz9ICp8ZGDeumpLIAHxy8uANlMF+B+KtG5wc7Y=; 24:nWvMTvWijcX/WlaUIl3o0H2v9bNXPaT/hVBwHmSskyHR4Gl58qgaTsMghAzmXZRYQsQPoCGib7gWBRS5NxgzkIi8XMeDk4kj4BuxX6UCioU=; 7:FftoVGIHg17xLnT3PP1Fywl98T7vvo1yDlwHWL5yPcD9/q84MWEbHiCwmuk1jJBDpUpfveg6T+FFUW3/TNZJ/vAD1XHkx2PL96e6eaJUHlOgbV6E9Ts81W4lEddD8kCE/J7qjxFsJ+niUPeaN537BSa8sXPFjsdw5rQGg63lCZO71Tu15DJnp3swhUWSZhEdDCwGA5rtkyzCyjj8TRDicvUY6CgtcF1TtycPKT/EnvBNxGxRzfkzPyEJNaIb0OQy SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:EeOFDSNhFGHE5jbnM6CFIL96w6W0uJtwX5fNdDHpvaFbM2zPJnQd30tT4+ieFU7rz40Vrfo5kkXrjSn7sotC4KvuxUfJdNXyYrmfaYeYqOTNCGKVrdtk36tsAZCZlny3pWn0vohrVljlAcMQmj1SKR86yXqCaS66CVq2NefaO9VGw82ysa6vKKeUXXlfEnsMVLRxSagaVmdRygX5ttEFqY1QBFspCQ8Fn1UNN5miD+RIrzZn2vCOdF/oDOVFAYx6 X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:26.2233 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: 0f603ebd-6590-48c0-d863-08d53ce48e3d X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.45 Subject: [Qemu-devel] [PATCH v5 08/23] docs: add AMD Secure Encrypted Virtualization (SEV) X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" Create a documentation entry to describe the AMD Secure Encrypted Virtualization (SEV) feature. Cc: Paolo Bonzini Signed-off-by: Brijesh Singh --- docs/amd-memory-encryption.txt | 92 ++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 92 insertions(+) create mode 100644 docs/amd-memory-encryption.txt diff --git a/docs/amd-memory-encryption.txt b/docs/amd-memory-encryption.txt new file mode 100644 index 000000000000..72a92b6c6353 --- /dev/null +++ b/docs/amd-memory-encryption.txt @@ -0,0 +1,92 @@ +Secure Encrypted Virtualization (SEV) is a feature found on AMD processors. + +SEV is an extension to the AMD-V architecture which supports running encrypted +virtual machine (VMs) under the control of KVM. Encrypted VMs have their pages +(code and data) secured such that only the guest itself has access to the +unencrypted version. Each encrypted VM is associated with a unique encryption +key; if its data is accessed to a different entity using a different key the +encrypted guests data will be incorrectly decrypted, leading to unintelligible +data. + +The key management of this feature is handled by separate processor known as +AMD secure processor (AMD-SP) which is present in AMD SOCs. Firmware running +inside the AMD-SP provide commands to support common VM lifecycle. This +includes commands for launching, snapshotting, migrating and debugging the +encrypted guest. Those SEV command can be issued via KVM_MEMORY_ENCRYPT_OP +ioctls. + +Launching +--------- +Boot images (such as bios) must be encrypted before guest can be booted. +MEMORY_ENCRYPT_OP ioctl provides commands to encrypt the images :LAUNCH_START, +LAUNCH_UPDATE_DATA, LAUNCH_MEASURE and LAUNCH_FINISH. These four commands +together generate a fresh memory encryption key for the VM, encrypt the boot +images and provide a measurement than can be used as an attestation of the +successful launch. + +LAUNCH_START is called first to create a cryptographic launch context within +the firmware. To create this context, guest owner must provides guest policy, +its public Diffie-Hellman key (PDH) and session parameters. These inputs +should be treated as binary blob and must be passed as-is to the SEV firmware. + +The guest policy is passed as plaintext and hypervisor may able to read it +but should not modify it (any modification of the policy bits will result +in bad measurement). The guest policy is a 4-byte data structure containing +several flags that restricts what can be done on running SEV guest. +See KM Spec section 3 and 6.2 for more details. + +Guest owners provided DH certificate and session parameters will be used to +establish a cryptographic session with the guest owner to negotiate keys used +for the attestation. + +LAUNCH_UPDATE_DATA encrypts the memory region using the cryptographic context +created via LAUNCH_START command. If required, this command can be called +multiple times to encrypt different memory regions. The command also calculates +the measurement of the memory contents as it encrypts. + +LAUNCH_MEASURE command can be used to retrieve the measurement of encrypted +memory. This measurement is a signature of the memory contents that can be +sent to the guest owner as an attestation that the memory was encrypted +correctly by the firmware. The guest owner may wait to provide the guest +confidential information until it can verify the attestation measurement. +Since the guest owner knows the initial contents of the guest at boot, the +attestation measurement can be verified by comparing it to what the guest owner +expects. + +LAUNCH_FINISH command finalizes the guest launch and destroy's the cryptographic +context. + +See SEV KM API Spec [1] 'Launching a guest' usage flow (Appendix A) for the +complete flow chart. + +Debugging +----------- +Since memory contents of SEV guest is encrypted hence hypervisor access to the +guest memory will get a cipher text. If guest policy allows debugging, then +hypervisor can use DEBUG_DECRYPT and DEBUG_ENCRYPT commands access the guest +memory region for debug purposes. + +Snapshot/Restore +----------------- +TODO + +Live Migration +---------------- +TODO + +References +----------------- + +AMD Memory Encryption whitepaper: +http://amd-dev.wpengine.netdna-cdn.com/wordpress/media/2013/12/AMD_Memory_Encryption_Whitepaper_v7-Public.pdf + +Secure Encrypted Virutualization Key Management: +[1] http://support.amd.com/TechDocs/55766_SEV-KM API_Specification.pdf + +KVM Forum slides: +http://www.linux-kvm.org/images/7/74/02x08A-Thomas_Lendacky-AMDs_Virtualizatoin_Memory_Encryption_Technology.pdf + +AMD64 Architecture Programmer's Manual: + http://support.amd.com/TechDocs/24593.pdf + SME is section 7.10 + SEV is section 15.34 From patchwork Wed Dec 6 20:03:32 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845333 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="I2jvfUbT"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVSn58Hhz9s72 for ; Thu, 7 Dec 2017 07:24:09 +1100 (AEDT) Received: from localhost ([::1]:57636 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMgEh-0001xb-Qv for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:24:07 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49696) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfvo-0005z3-PS for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:38 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvl-0002Ut-HD for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:36 -0500 Received: from mail-sn1nam01on0050.outbound.protection.outlook.com ([104.47.32.50]:47424 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfvl-0002UU-93 for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:33 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=unkDPa+rStOHxrexQXR267xFawfL6ru/VkXF1v33oTc=; b=I2jvfUbTDmO/D65HWzYEKtpnKFl/VvesZfF10Mly7fJJGBT3pq3QNdl2bNwHcDpdCanoCTJbZWh11vgrIU8yxutPTWbCL/E/6DF+Xf4e7EjH0UhMxz2Ef+VE+LNkQnMsnyVwUsnKHks5efnyU81DBpVHbc6TaFp+pI//8PydLaQ= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:28 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:32 -0600 Message-Id: <20171206200346.116537-10-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: f18df670-21d1-44d3-8d36-08d53ce48f78 X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:jsKf16S023De14eVka2slWNx1hqEV/VwACHwGT+HVn3wIIn+2ultWRsIlafNqjG3cSGlYDv4jWjiT5Bns2kS5APVMpY/Kk35zLNDbbe++wWIchE3m4kGbD/gQU7oXMWhueJYw/X3+b5ZY1N5VF7kbMfbVMX+e6Bs/NgCbjWVb+Z9xa8s1AaAHLJfNxksDjtpkHoav/1fsy07jGSxNESyqaqHxMqnpvVl7NqsVG6XycuWd1R9Opa5EOdQ24RaUnJp; 25:pw7NRukMdQVPMLYuOkLKr+HwPg8ECotRDCuBj40WoP6mDaMgZZAb6rdqfQZVJ69q1C9vR7+dlYClkM8X4JcEXzKlApDLKmPGo1SL5uJW749HTVdF4d6vhyNHzzmkNfxUJ4jhFdJ/R6+D8fMpIdvK5hZyfohL8Cu0tYFpYEUzj8ex1jbKLIVaWPyoWbtkO9zK0KwRU/M445Cfj3MIq4MjsiKJdskpAdP7h35qWmWyedux6U1QszTBsjzB/HZ21ugbGK2esCiPsCNWA1b7KtIX3X7ts3I211AJGirzgOmgLCwbnjCVXiKwE6/44kCoX93MbUnhQk0lRaW31xyaGnVb6A==; 31:drEwI3gwLSzuRM0JqODfkr+J01f7OjHt98TVc7bRaU6w2NvQysQzDDzi1DNIKDcXlfIcIu9zTYSzEoaE9JfywE5vTCx/u2zFeDqpoaesrFoDviTtNtEQwmL7rAv0RP7TPutvf4qpSX/Z3Um2LU2/Bxz3Lb5s8iuWm4/XEO9GN7T+0sio57w04rSMerhUxzzN7fBpqTYF4tlk/GBad0kLqlC3skbpeQgIpnvWH/1dhzM= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:LheBpCrAIoprIc63h3XAtgh5vumcCcXsegJlyPUepG/Vk2co4BGrFGWqC1w1+qWkee09I1XajoacZcHGnLmOqVQDD1wRyjTuY1sAqxzY6r+OeL9qL6eXv9WEZtr0Z4kO+nXu9UEJEhOC31uApuC3iPPW/2fTfnI3wxqgWQ2FNZrAavKna55mGctAKGCHAAbpzY3pDUqOoF8DNhJ+NL7jJSJajIzkO1ySB0DpsBl6XPNwLl9o/vy6uEPqkzmv+HXDQrboe+YoBwSk7NlP35o9JOFxQwPXcXp9jjoSVzcMFAPzZQilLg8wp3YY68qyO7YgizyeuA9cEi3+A87ypmUy+g== X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110)(17755550239193); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:7zMdrti0FX48tW+V1PUd9KPNqfhOYDnjg/b3o1KdX?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:hu8TPZzdHPhcOQFuGxSxjGw0LdbtYPvR6qdEbLX4YnfbLJJ0K8alhenvM/Ipq6wqQ3QXjT6NqFvGYN7X2EHDuLEb5K4zXMGiaRC089z+wBrqkhl8H05R0oT+4DNaDhlAEB3JvN31ZScc2R9ZLPtjFjfdYuGLeNQ/5NvCDX0m0INlSi+isGkXJijZ8P4p4CYesNDpyqvEofLJwx4A89AO/Wdx5kzYU5y9wA9LvXjR//Aa3W7DEo3rgC174naWPsVhRzjYw1l9BQdzmEAQ184MShC/1BePo++5xKEp/BAT3r0t79CdyxYEtbAfyBioUinrydNxgD9x9v2OHT0+V6wO+4tj70j94OnOdukuud79Ikw=; 5:CCGxs2NrtNcayLaqQYEe2t1J4Iao2K8vth6Ap2nTYOpnGlrBFbxJD3w8aa3skC0Gpx7NUaKGHDzqAZEEQShPjo9LOdeuc3dYRiHIMJkKO25xWBSTMZAx12d+ykcQ9y+RPLbXK19bnvsUzQxbDyU1oXCYj8mqFFGgd/JirftDKnw=; 24:j8b1Yq90FLt6wBRFF7KD03NCGtIzxyA/RzWVm9OxPcoOT3/irMowCe05SnOgdq7NAKngJEAlT2DYnwDZ525eYSw0yWU6blxolH44Nih7ex8=; 7:yGEDnqWHD6/Q+hzo4ppsASBDbqd8y3nLipckv19jKZ+kESXkwCNs1GHtR9WQaWJSeYFfzdYkx/7OUxzhxh0yzEvwLH+k7nNy6RMqrE8+fpYurvFb9ByeK9nT/3q9+cZ8q03RjdyxjWUwZdQG0lk07LEV54vmRwIBebXA3dzDIkEFNuR7TMNiqa9zdxevtmPzrfDjnJXHetRTCaHMA8a11rlT/hfvH7oxuLV49p3WVGwxCLQRBlBMbHr/rE4Z0WkD SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:IEQg++TQwOZ7lbwrqzTlKqXRBPkweGOoMuQpbt5G/+WETESZZGlCLxmotciNjjfQwGzVZ/s+agEOcAGlpZkxOiv8SFiwrpZxJXGJeYW/i/Awzy08r67LZZ5chNS4kZAPbbMubp2a9S82hyTzbm2JWp0j5nswCcpWEwYPGQS2k/nUGWz5R9CgGRhBDIJJfjl/N4e49Wrl42m2urpxDff8mlvW94+2Ls+uUwQhFyiSLQal/eRG0nQy6MJOuP80EWeK X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:28.2858 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: f18df670-21d1-44d3-8d36-08d53ce48f78 X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.50 Subject: [Qemu-devel] [PATCH v5 09/23] accel: add Secure Encrypted Virtulization (SEV) object X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" Add a new memory encryption object 'sev-guest'. The object will be used to create enrypted VMs on AMD EPYC CPU. The object provides the properties to pass guest owner's public Diffie-hellman key, guest policy and session information required to create the memory encryption context within the SEV firmware. e.g to launch SEV guest # $QEMU \ -object sev-guest,id=sev0 \ -machine ....,memory-encryption=sev0 Cc: Paolo Bonzini Signed-off-by: Brijesh Singh --- accel/kvm/Makefile.objs | 2 +- accel/kvm/sev.c | 179 +++++++++++++++++++++++++++++++++++++++++ docs/amd-memory-encryption.txt | 17 ++++ include/sysemu/sev.h | 53 ++++++++++++ qemu-options.hx | 34 ++++++++ 5 files changed, 284 insertions(+), 1 deletion(-) create mode 100644 accel/kvm/sev.c create mode 100644 include/sysemu/sev.h diff --git a/accel/kvm/Makefile.objs b/accel/kvm/Makefile.objs index 85351e7de7e8..666ceef3dae3 100644 --- a/accel/kvm/Makefile.objs +++ b/accel/kvm/Makefile.objs @@ -1 +1 @@ -obj-$(CONFIG_KVM) += kvm-all.o +obj-$(CONFIG_KVM) += kvm-all.o sev.o diff --git a/accel/kvm/sev.c b/accel/kvm/sev.c new file mode 100644 index 000000000000..a9b9a63c2da0 --- /dev/null +++ b/accel/kvm/sev.c @@ -0,0 +1,179 @@ +/* + * QEMU SEV support + * + * Copyright Advanced Micro Devices 2016-2017 + * + * Author: + * Brijesh Singh + * + * This work is licensed under the terms of the GNU GPL, version 2 or later. + * See the COPYING file in the top-level directory. + * + */ + +#include "qemu/osdep.h" +#include "qapi/error.h" +#include "qom/object_interfaces.h" +#include "qemu/base64.h" +#include "sysemu/kvm.h" +#include "sysemu/sev.h" +#include "sysemu/sysemu.h" + +#define DEFAULT_GUEST_POLICY 0x1 /* disable debug */ +#define DEFAULT_SEV_DEVICE "/dev/sev" + +static void +qsev_guest_finalize(Object *obj) +{ +} + +static char * +qsev_guest_get_session_file(Object *obj, Error **errp) +{ + QSevGuestInfo *s = QSEV_GUEST_INFO(obj); + + return s->session_file ? g_strdup(s->session_file) : NULL; +} + +static void +qsev_guest_set_session_file(Object *obj, const char *value, Error **errp) +{ + QSevGuestInfo *s = QSEV_GUEST_INFO(obj); + + s->session_file = g_strdup(value); +} + +static char * +qsev_guest_get_dh_cert_file(Object *obj, Error **errp) +{ + QSevGuestInfo *s = QSEV_GUEST_INFO(obj); + + return g_strdup(s->dh_cert_file); +} + +static void +qsev_guest_set_dh_cert_file(Object *obj, const char *value, Error **errp) +{ + QSevGuestInfo *s = QSEV_GUEST_INFO(obj); + + s->dh_cert_file = g_strdup(value); +} + +static char * +qsev_guest_get_sev_device(Object *obj, Error **errp) +{ + QSevGuestInfo *sev = QSEV_GUEST_INFO(obj); + + return g_strdup(sev->sev_device); +} + +static void +qsev_guest_set_sev_device(Object *obj, const char *value, Error **errp) +{ + QSevGuestInfo *sev = QSEV_GUEST_INFO(obj); + + sev->sev_device = g_strdup(value); +} + +static void +qsev_guest_class_init(ObjectClass *oc, void *data) +{ + object_class_property_add_str(oc, "sev-device", + qsev_guest_get_sev_device, + qsev_guest_set_sev_device, + NULL); + object_class_property_set_description(oc, "sev-device", + "SEV device to use", NULL); + object_class_property_add_str(oc, "dh-cert-file", + qsev_guest_get_dh_cert_file, + qsev_guest_set_dh_cert_file, + NULL); + object_class_property_set_description(oc, "dh-cert-file", + "guest owners DH certificate (encoded with base64)", NULL); + object_class_property_add_str(oc, "session-file", + qsev_guest_get_session_file, + qsev_guest_set_session_file, + NULL); + object_class_property_set_description(oc, "session-file", + "guest owners session parameters (encoded with base64)", NULL); +} + +static void +qsev_guest_set_handle(Object *obj, Visitor *v, const char *name, + void *opaque, Error **errp) +{ + QSevGuestInfo *sev = QSEV_GUEST_INFO(obj); + uint32_t value; + + visit_type_uint32(v, name, &value, errp); + sev->handle = value; +} + +static void +qsev_guest_set_policy(Object *obj, Visitor *v, const char *name, + void *opaque, Error **errp) +{ + QSevGuestInfo *sev = QSEV_GUEST_INFO(obj); + uint32_t value; + + visit_type_uint32(v, name, &value, errp); + sev->policy = value; +} + +static void +qsev_guest_get_policy(Object *obj, Visitor *v, const char *name, + void *opaque, Error **errp) +{ + uint32_t value; + QSevGuestInfo *sev = QSEV_GUEST_INFO(obj); + + value = sev->policy; + visit_type_uint32(v, name, &value, errp); +} + +static void +qsev_guest_get_handle(Object *obj, Visitor *v, const char *name, + void *opaque, Error **errp) +{ + uint32_t value; + QSevGuestInfo *sev = QSEV_GUEST_INFO(obj); + + value = sev->handle; + visit_type_uint32(v, name, &value, errp); +} + +static void +qsev_guest_init(Object *obj) +{ + QSevGuestInfo *sev = QSEV_GUEST_INFO(obj); + + sev->sev_device = g_strdup(DEFAULT_SEV_DEVICE); + sev->policy = DEFAULT_GUEST_POLICY; + object_property_add(obj, "policy", "uint32", qsev_guest_get_policy, + qsev_guest_set_policy, NULL, NULL, NULL); + object_property_add(obj, "handle", "uint32", qsev_guest_get_handle, + qsev_guest_set_handle, NULL, NULL, NULL); +} + +/* sev guest info */ +static const TypeInfo qsev_guest_info = { + .parent = TYPE_OBJECT, + .name = TYPE_QSEV_GUEST_INFO, + .instance_size = sizeof(QSevGuestInfo), + .instance_finalize = qsev_guest_finalize, + .class_size = sizeof(QSevGuestInfoClass), + .class_init = qsev_guest_class_init, + .instance_init = qsev_guest_init, + .interfaces = (InterfaceInfo[]) { + { TYPE_USER_CREATABLE }, + { } + } +}; + +static void +sev_register_types(void) +{ + type_register_static(&qsev_guest_info); +} + +type_init(sev_register_types); diff --git a/docs/amd-memory-encryption.txt b/docs/amd-memory-encryption.txt index 72a92b6c6353..1527f603ea2a 100644 --- a/docs/amd-memory-encryption.txt +++ b/docs/amd-memory-encryption.txt @@ -35,10 +35,21 @@ in bad measurement). The guest policy is a 4-byte data structure containing several flags that restricts what can be done on running SEV guest. See KM Spec section 3 and 6.2 for more details. +The guest policy can be provided via the 'policy' property (see below) + +# ${QEMU} \ + sev-guest,id=sev0,policy=0x1...\ + Guest owners provided DH certificate and session parameters will be used to establish a cryptographic session with the guest owner to negotiate keys used for the attestation. +The DH certificate and session blob can be provided via 'dh-cert-file' and +'session-file' property (see below + +# ${QEMU} \ + sev-guest,id=sev0,dh-cert-file=,session-file= + LAUNCH_UPDATE_DATA encrypts the memory region using the cryptographic context created via LAUNCH_START command. If required, this command can be called multiple times to encrypt different memory regions. The command also calculates @@ -59,6 +70,12 @@ context. See SEV KM API Spec [1] 'Launching a guest' usage flow (Appendix A) for the complete flow chart. +To launch a SEV guest + +# ${QEMU} \ + -machine ...,memory-encryption=sev0 \ + -object sev-guest,id=sev0 + Debugging ----------- Since memory contents of SEV guest is encrypted hence hypervisor access to the diff --git a/include/sysemu/sev.h b/include/sysemu/sev.h new file mode 100644 index 000000000000..e00794ec1805 --- /dev/null +++ b/include/sysemu/sev.h @@ -0,0 +1,53 @@ +/* + * QEMU Secure Encrypted Virutualization (SEV) support + * + * Copyright: Advanced Micro Devices, 2016-2017 + * + * Authors: + * Brijesh Singh + * + * This work is licensed under the terms of the GNU GPL, version 2 or later. + * See the COPYING file in the top-level directory. + * + */ + +#ifndef QEMU_SEV_H +#define QEMU_SEV_H + +#include "qom/object.h" +#include "qapi/error.h" +#include "sysemu/kvm.h" +#include "qemu/error-report.h" + +#define TYPE_QSEV_GUEST_INFO "sev-guest" +#define QSEV_GUEST_INFO(obj) \ + OBJECT_CHECK(QSevGuestInfo, (obj), TYPE_QSEV_GUEST_INFO) + +typedef struct QSevGuestInfo QSevGuestInfo; +typedef struct QSevGuestInfoClass QSevGuestInfoClass; + +/** + * QSevGuestInfo: + * + * The QSevGuestInfo object is used for creating a SEV guest. + * + * # $QEMU \ + * -object sev-guest,id=sev0 \ + * -machine ...,memory-encryption=sev0 + */ +struct QSevGuestInfo { + Object parent_obj; + + char *sev_device; + uint32_t policy; + uint32_t handle; + char *dh_cert_file; + char *session_file; +}; + +struct QSevGuestInfoClass { + ObjectClass parent_class; +}; + +#endif + diff --git a/qemu-options.hx b/qemu-options.hx index 5385832707e0..4611db3c1d51 100644 --- a/qemu-options.hx +++ b/qemu-options.hx @@ -4470,6 +4470,40 @@ contents of @code{iv.b64} to the second secret data=$SECRET,iv=$( X-Patchwork-Id: 845335 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="PGcWlj0j"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVW50vpdz9s72 for ; Thu, 7 Dec 2017 07:26:09 +1100 (AEDT) Received: from localhost ([::1]:57648 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMgGd-0003dX-5I for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:26:07 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49750) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfvr-00061u-0T for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:40 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvn-0002W6-Pp for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:39 -0500 Received: from mail-sn1nam01on0059.outbound.protection.outlook.com ([104.47.32.59]:29376 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfvn-0002Vl-JA for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:35 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=QsllVgsRPkAWB6bdluXFEbVZKmFDAL5ufYErKBa/QdU=; b=PGcWlj0jOyjs2HKugpGGLPr2dxXp7Ecod+CppDzd8XNxvxQteDhWS3mjwWCosa8WoYsXFO1jtbLRakk2KwAUnYFlqf17vn80S7x0goAZI4C/Q6owTHS/HdbHNvOhSKe9YfFu03ht7gjXygejgxrDFviIH5MyfpA2mC9zERxoDVI= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:30 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:33 -0600 Message-Id: <20171206200346.116537-11-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: 07921f15-fcb3-4187-f0e5-08d53ce490e2 X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:ZGCMPLHXqSdF5KQYOYeEYtT5SzSCA8ult66Wcb926/b2ymVB2yQopD8WGQjeFq8eSltxKTgttdSw2G04n8VktmJioZKSM9CGtIqQpNHYZ37N97NDwIQBMT2y3ZoWe34QEVV84Ml/YRMhqthTbF4guwpamxyhSFMRR5RG8o14nxqbFFuNe4d9hPHbje0bh562TBC2/mCr7yDEEdWjP5QGUBaeTglxWC4OftBocu8F41LjmdVZSipweg+mCYN+NsBh; 25:n2vujfMn7DgIUF6cXkbfEMadFO8Qy20QtM9TGMJ9cYpU37GoWmZw5ATlTGX7XkCjAE5cuikjgNqnzJLq5PWWN9kFa0noCTHOEw+H0ZyYS9VOVaRdRPsu+Lpi3dUb8XgMhAB2kRQws6rRK+qLrXZOi+Uluc9s6aElOUzKLqpzerzDIwkUNenjHjGkEg70kY2vj6lZuW/NtHzO9weQKUOXVK413usl8uRzVDxHu+T8mUrAiQDVywL+dnfSJ43ZBp3LzUhdbUwIwb17Tp4o6iGp43zZo4JEt6lo2W07NWuM5723RR5k7e0W37V32pb4KdUAFkp0/e/btxrvk5UZrzf+dw==; 31:K7XjF+WwvE0JnhI008EkrqNpM4+TsHrPjPP9YkUj7PailbKDVHH+wk6Ot5+yLI+tJE31Q1yWLk1Ez1j7+HMyLSbtpLfN+ygHSPzrDKQb5nGmbfhywmVATOXZiBVCicAx6ARhhaveKdb/wX2y3lLeHF/fVfnIy5CSFfABxfqd4n3PMPSPUrDprUU5LZIhRSeGbynXP9QQ8C7bCrXU6t7S2MQ3aqCfaqyCtK2AyFNwqUM= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:PptaGr+7+/xkW8ZDweiT/fpOhBBuJtt7hzih5q0riYVUUdJw+sz8MDurgjeQDhItQoyIIAlaTvSuseG/Imo6MV9WoZkhJLc2UDEUCvSgR6pDgAUJByPKh8xbPSCKI2Y5YeLteCXw9qoUXy3y+DTgWB7dildRjUGjWS4UR20YM3NhAunsJOxBiA0ovdbxigIs8sSPY7onY1FMHAgqyDoVpJeT3/6jsNWDMnPaeEcaqGII/HdpirfW3Yb+98W3PRnvtJPLMc7lc1q917gxRR6qPieQcpmD18j0oxSZiYteeQ84D6D1P2M/R3uJIGpsiEEh X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(575784001)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:2RZHDY1IRmI9qlhoh/0PgzpjzhMHflgTeXWGsOdE9?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:wJvW6H/DVseGxkPuIlWT5inERWlaYQSpE+BPATQQfGXoRmtdsdkvB3rkk9GtvvZn+5wg8vzwa1yK5TxKtK2dKElIDP1fGK7vgEfEyQQi/KO+Wlj2AzFo5MpACf8YriLbT/OM6fGlIcB1HmtgPeq/pIxf+J2sQVBL+y3fDXY/47TPX0moUeoRHKL1nOsbXBgPxzXl75vrgkg7I0Ocn9Ajk4DFP6vrR7eHLLxFDt5zldCtyQsRKtZ+6p6cV4/08geDGSVla7X0FS0FmnKrTZp98UY8uDo1/MXA4ZH0XSLwh5JR8926bcE9bk9cNIwwPg29rqKnDoegFUYRO0WTode4DbWRzwJf5WnE6o7RVCSNENo=; 5:q0vQfq9b8eKulgBV2JZa7U4Rx2K1ANMUHMQq/DjIjFkQ7Z2RylvrLF+SR3XFW6NLr7eXTsRRwtBFNenJbv+WrVDEoeP+sqBBVnrjZCbLoc8q3/uughwdDkTbVLOKX8RMY+t3auu1w8Gvo4JNU4hotXSg2rS2sx1Mnbs14jLFEWA=; 24:tf+H0EVTtZ3niZjoOKuKOSnitg4HfwGbBcybb0xlS/YmZQbBUtJLw24eLhA65uD7RaDaQIcLIO05GJX8JAbXZElDRQiGAtarxVyC/DK0Rcc=; 7:XuxsmvEOWUXs4SdwNyLugybhgzkgKqYxFNgaokNOS6+pCujD+gWEbhvvB+TZCtJ0ACQcsRXfoho9eMY2IVwW4/tlohP+RSZOYdK+XSU/CKsjV8Pyeydb3gkuaOhFf+8OFhhWJs65b90RTL5G8vsegd1btC2Z91kvKl01d/JIIXy77Sg3Bav4QYcsYmw7jLqcNmx1hILYiLvXZpq8IkYi4314BEBAA9cz/Lgyf2Qz9WeEwJ37MPDbQyalp44UNwE8 SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:/3UMIXX/N/JJj9NMTZUWmIB7E9i7MASwriTLw6BYNK7OIoJFyYEG6R9xMnKj+UF/5d0S5T1OgCPj/vfHCv4aiZONbKIdQMZaESkz8JIXPr1EUz8Loc6RAjn8akvKtzT5cZ0zk4k1Wmyj4v3bqcLivFU6ZYjyWxTXsK6a8OaQQWzNO+WFTSDpTCLGZjfmOKhDYS4538qKN+QO7TAz8SyC6AhPpdJvLVnJU+hlytKSaJ4g0i8zXfwq/uf0EzIMD1MS X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:30.3639 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: 07921f15-fcb3-4187-f0e5-08d53ce490e2 X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.59 Subject: [Qemu-devel] [PATCH v5 10/23] sev: add command to initialize the memory encryption context X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" When memory encryption is enabled, KVM_SEV_INIT command is used to initialize the platform. The command loads the SEV related persistent data from non-volatile storage and initializes the platform context. This command should be first issued before invoking any other guest commands provided by the SEV firmware. Cc: Paolo Bonzini Signed-off-by: Brijesh Singh --- accel/kvm/kvm-all.c | 15 +++++++ accel/kvm/sev.c | 122 +++++++++++++++++++++++++++++++++++++++++++++++++++ include/sysemu/sev.h | 10 +++++ 3 files changed, 147 insertions(+) diff --git a/accel/kvm/kvm-all.c b/accel/kvm/kvm-all.c index f290f487a573..a9b16846675e 100644 --- a/accel/kvm/kvm-all.c +++ b/accel/kvm/kvm-all.c @@ -38,6 +38,7 @@ #include "qemu/event_notifier.h" #include "trace.h" #include "hw/irq.h" +#include "sysemu/sev.h" #include "hw/boards.h" @@ -103,6 +104,9 @@ struct KVMState #endif KVMMemoryListener memory_listener; QLIST_HEAD(, KVMParkedVcpu) kvm_parked_vcpus; + + /* memory encryption */ + void *memcrypt_handle; }; KVMState *kvm_state; @@ -1632,6 +1636,17 @@ static int kvm_init(MachineState *ms) kvm_state = s; + /* + * if memory encryption object is specified then initialize the memory + * encryption context. + * */ + if (ms->memory_encryption) { + kvm_state->memcrypt_handle = sev_guest_init(ms->memory_encryption); + if (!kvm_state->memcrypt_handle) { + goto err; + } + } + ret = kvm_arch_init(ms, s); if (ret < 0) { goto err; diff --git a/accel/kvm/sev.c b/accel/kvm/sev.c index a9b9a63c2da0..37020751bd14 100644 --- a/accel/kvm/sev.c +++ b/accel/kvm/sev.c @@ -22,6 +22,67 @@ #define DEFAULT_GUEST_POLICY 0x1 /* disable debug */ #define DEFAULT_SEV_DEVICE "/dev/sev" +static int sev_fd; + +#define SEV_FW_MAX_ERROR 0x17 + +static char sev_fw_errlist[SEV_FW_MAX_ERROR][100] = { + "", + "Platform state is invalid", + "Guest state is invalid", + "Platform configuration is invalid", + "Buffer too small", + "Platform is already owned", + "Certificate is invalid", + "Policy is not allowed", + "Guest is not active", + "Invalid address", + "Bad signature", + "Bad measurement", + "Asid is already owned", + "Invalid ASID", + "WBINVD is required", + "DF_FLUSH is required", + "Guest handle is invalid", + "Invalid command", + "Guest is active", + "Hardware error", + "Hardware unsafe", + "Feature not supported", + "Invalid parameter" +}; + +static int +sev_ioctl(int cmd, void *data, int *error) +{ + int r; + struct kvm_sev_cmd input; + + memset(&input, 0x0, sizeof(input)); + + input.id = cmd; + input.sev_fd = sev_fd; + input.data = (__u64)data; + + r = kvm_vm_ioctl(kvm_state, KVM_MEMORY_ENCRYPT_OP, &input); + + if (error) { + *error = input.error; + } + + return r; +} + +static char * +fw_error_to_str(int code) +{ + if (code > SEV_FW_MAX_ERROR) { + return NULL; + } + + return sev_fw_errlist[code]; +} + static void qsev_guest_finalize(Object *obj) { @@ -170,6 +231,67 @@ static const TypeInfo qsev_guest_info = { } }; +static QSevGuestInfo * +lookup_sev_guest_info(const char *id) +{ + Object *obj; + QSevGuestInfo *info; + + obj = object_resolve_path_component(object_get_objects_root(), id); + if (!obj) { + return NULL; + } + + info = (QSevGuestInfo *) + object_dynamic_cast(obj, TYPE_QSEV_GUEST_INFO); + if (!info) { + return NULL; + } + + return info; +} + +void * +sev_guest_init(const char *id) +{ + SEVState *s; + char *devname; + int ret, fw_error; + + s = g_malloc0(sizeof(SEVState)); + if (!s) { + return NULL; + } + + s->sev_info = lookup_sev_guest_info(id); + if (!s->sev_info) { + error_report("%s: '%s' is not a valid '%s' object", + __func__, id, TYPE_QSEV_GUEST_INFO); + goto err; + } + + devname = object_property_get_str(OBJECT(s->sev_info), "sev-device", NULL); + sev_fd = open(devname, O_RDWR); + if (sev_fd < 0) { + error_report("%s: Failed to open %s '%s'", __func__, + devname, strerror(errno)); + goto err; + } + g_free(devname); + + ret = sev_ioctl(KVM_SEV_INIT, NULL, &fw_error); + if (ret) { + error_report("%s: failed to initialize ret=%d fw_error=%d '%s'", + __func__, ret, fw_error, fw_error_to_str(fw_error)); + goto err; + } + + return s; +err: + g_free(s); + return NULL; +} + static void sev_register_types(void) { diff --git a/include/sysemu/sev.h b/include/sysemu/sev.h index e00794ec1805..f85517c0b5b5 100644 --- a/include/sysemu/sev.h +++ b/include/sysemu/sev.h @@ -14,6 +14,8 @@ #ifndef QEMU_SEV_H #define QEMU_SEV_H +#include + #include "qom/object.h" #include "qapi/error.h" #include "sysemu/kvm.h" @@ -49,5 +51,13 @@ struct QSevGuestInfoClass { ObjectClass parent_class; }; +struct SEVState { + QSevGuestInfo *sev_info; +}; + +typedef struct SEVState SEVState; + +void *sev_guest_init(const char *id); + #endif From patchwork Wed Dec 6 20:03:34 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845314 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="PEh/W11n"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysV6Y1tGJz9s72 for ; Thu, 7 Dec 2017 07:08:21 +1100 (AEDT) Received: from localhost ([::1]:57505 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfzP-0002Cf-6C for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:08:19 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49781) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfvt-00065o-4W for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:42 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvp-0002Xl-Uv for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:41 -0500 Received: from mail-sn1nam01on0078.outbound.protection.outlook.com ([104.47.32.78]:16064 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfvp-0002Wz-N1 for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:37 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=UwjshkY+lzj52QWD1DQGTph1XGBonz3PH0okFKHVLQM=; b=PEh/W11n9DOY+JO386/rFl0FfydoUfg2+2uRN1rOmbDezrg/zhcYIzobhMdEcxuROMJKRGRDMKnaY1xL+WxgLBIGt699ZV6geJjIMk3dRhLdYqwO7slf7B1A7v2juPN1zQ6bLe1dbBIVTFZjeE0qs4ch5ZCBd1uLCCLxMrmuKDw= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:32 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:34 -0600 Message-Id: <20171206200346.116537-12-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: b42367a3-2575-4a48-2f0d-08d53ce49227 X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:qDCJRgqVrBH/wKgIc/p4f/PIeNq/rDZblNiwW9+E58yIKgNW4M2p5Cc2xw/isiN8F/0eBzeke3PZ9Cuqsrt3WIALiQ7HLvFM4c/ksPJNO9dQBEVbH0Y3ZrsPmvh+icYzy1E4CoyHDDHbRwXRsWUO/HQDUhQ3Wstv/h/s2OZdolZeGze9YelhskCHLjRNPD1y0z+EzcwbgR3dDUdEuhKMYXsgRsD1WzOqAR/FqQ9xO/JNaPsCaKdn9XJ51Um/z+vd; 25:u/Xpiv9Yq+Ig5Er080rPheERCm17PxrXIafGpE1U+WyrEKAMa42uEOcHoe/GXCFi7bFDB5a4bSsXTjj4xShgBMFcNC37Y3aHq1i+ncPmvIzFGKXcAhHSajo8f9Awynojt8O1GjUhpESFT2FuE9DcAoJ/koDUQDKmCEw1S4/GxGpP2lJcfK3j1AxhMyA7LV/u7Ek8UcN4Rwpf3geje9CrDFHinPLtFW7jgNStcnQvSJYnYwjKc/rfOlTrWSqeMgodfioOhO3ftQC1SDdUe5s4pVvAw6RwkoaNFvmYU4Iujh82PzSsqz+bhn6QAaG4+uGTSVVoGKlEhfKIIe/Ij5wPAw==; 31:bfoIep7Vf9nIWVg30VMfJlBtcEo+55jH5z4gKep4m4auib9bxJUTLlWKgQLZV7LdCdcOnnL8IKF1tYDKqp5cYSWLviMTYd7fyhKPh5hpAzeAWLoCUL0xjm3u7c0Gjpp2LA84imuA/s7u1VoQDwWZfDTl0FaORnnBzijdI5bdtG5Gayp+PXaONJdvquLosksQ85Su0Uih/mi5azLq+OOnOjp8fHy6r+/cad01HquLipM= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:CcE0PpBOmk4R2UregaoNidW7eNXy01XKiucStykQGtGWSWlFL4asNUBrOo/DG00pfZST7DoKmy26+2a2we++G/2CnpISVfgYWB6d4tK/CUq1yQcqM1H5s/sPuYrnKzstImHFPLppbvBHAuYaVXtmwSTv5NrmVawzxEu10CoRPrc7NipLdJp+VYj7W0Czsiz6jGEr+qvjGYNARzff1UOsST3HpWc5h1ohxHZsdqLKZQd895pWy3UGCKeEaxTYwFVjUp0e+IAe98r6m3rUXKSQfUf2qJoQLGJEWOdIJapIskjTQmSCf1ZyleIjn7jK4tH5 X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:Zo/rG9LSwomgQUirg/ckVF+j5qh6DzDjMUwOg3Ys7?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:a/AVbcQAlp143Uy8giHaEE4vaMZyvV0Lqa/mSBt9gpPt+pDgl4uCztEVYkOjOz0VZzk4wknHa3FPMLQYbkN+rCK8YAoxTXOYXp7dxF3X4zc3VXnaazeBmqJpyE0iUE1ZbFXGYQhN8E+15c880fGxP0DROlRrX6o9tM2U3EQCAYzCImT8ve1wd5gN6mz7DUT5pOFotGLsbVvVAw9t1w4VzL2YnxIxlzYKbwiyOZAd4ghsQLXQeN/Erwizx7KqrVkADJsygylefEWNLf8wFJsVlGMd8sYtZpbM0VmbRICL1eASBTbk4P5pFSkStFFZR2GNJKVn9JpFbMOMO5pgo5y2MgUcQSiMhZj3bz1BhKtPkbQ=; 5:scgvGDRnUvhHF85uzqNYOTxaUuOeGjjm0qNtbRCowe7HYPlyr5VX3vraLA7AG8VHPppWxe6wS9R5/BHXoN8ykp03yRmV0CGv+YCuMEjut6ehsUbrq75oThQO0DxlhLDdh71yQrSxB2Ys4HvLMf/SCLrsFIZU93DEJGqM3PaUwlA=; 24:4WulSuJDTv8N4JAkj0Y4f+iWMsPhhij44bAJ6xWCwhIrUdhKXakp3yKt+aG4xODrMVdFXbsUl8mwQmU5xcwHBBOXYMAoqjZ+wHf6jaHPvy4=; 7:rPD0gJBKtlbHyB/RS9VNhGX0nrXbROqve1t4WxHRCp7kIOyW0dqnt1XEgP05c/nGgdKJInpdvUTjQqJ1zkqA3s4nZ4AaEn9sn7NmlYrBskqDP/JeOhsT2BOwVdtzQH+Bz+9WyI5iFsTjRS+ugsb/qEcfwVwE3dmPb/nCLE4SiCjCKFGP8l3ZcdEiDvrez2i7GvhaafQYp2w5AatUY76mRbeXWPzpxJHygv0zxYnuHom3j/yzonu5CiOZZlWCLQJM SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:L4zUVHbUcnmcEbWfW/dXXWX3ebMzr8LjDbHNLXB53BmY99lhseyb/x0X2NI1gKEtZaa254Urw5Fdc2vjKxYBhHdnnmPyXTHMPB4DMcDa73t09tBcKuhaoAXfy/ENG7rpNgmFbLTrmeStWePhrZ5FZ7Cv52agAhhqK96aKcPz6vDwyvjreG/3elEsT5CQ0V3+FlyoTch8AoppdDZNNa8Y1VDhs1ozLiT0SI34ohz8EQQnMq1vJHupCAv5Ya/lNwNJ X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:32.7857 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: b42367a3-2575-4a48-2f0d-08d53ce49227 X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.78 Subject: [Qemu-devel] [PATCH v5 11/23] sev: register the guest memory range which may contain encrypted data X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" When SEV is enabled, the hardware encryption engine uses a tweak such that the two identical plaintext at different location will have a different ciphertexts. So swapping or moving a ciphertexts of two guest pages will not result in plaintexts being swapped. Hence relocating a physical backing pages of the SEV guest will require some additional steps in KVM driver. The KVM_MEMORY_ENCRYPT_{UN,}REG_REGION ioctl can be used to register/unregister the guest memory region which may contain the encrypted data. KVM driver will internally handle the relocating physical backing pages of registered memory regions. Cc: Paolo Bonzini Signed-off-by: Brijesh Singh --- accel/kvm/sev.c | 39 +++++++++++++++++++++++++++++++++++++++ 1 file changed, 39 insertions(+) diff --git a/accel/kvm/sev.c b/accel/kvm/sev.c index 37020751bd14..7b5318993969 100644 --- a/accel/kvm/sev.c +++ b/accel/kvm/sev.c @@ -84,6 +84,43 @@ fw_error_to_str(int code) } static void +sev_ram_block_added(RAMBlockNotifier *n, void *host, size_t size) +{ + int r; + struct kvm_enc_region range; + + range.addr = (__u64)host; + range.size = size; + + r = kvm_vm_ioctl(kvm_state, KVM_MEMORY_ENCRYPT_REG_REGION, &range); + if (r) { + error_report("%s: failed to register region (%#llx+%#llx)", + __func__, range.addr, range.size); + } +} + +static void +sev_ram_block_removed(RAMBlockNotifier *n, void *host, size_t size) +{ + int r; + struct kvm_enc_region range; + + range.addr = (__u64)host; + range.size = size; + + r = kvm_vm_ioctl(kvm_state, KVM_MEMORY_ENCRYPT_UNREG_REGION, &range); + if (r) { + error_report("%s: failed to unregister region (%#llx+%#llx)", + __func__, range.addr, range.size); + } +} + +static struct RAMBlockNotifier sev_ram_notifier = { + .ram_block_added = sev_ram_block_added, + .ram_block_removed = sev_ram_block_removed, +}; + +static void qsev_guest_finalize(Object *obj) { } @@ -286,6 +323,8 @@ sev_guest_init(const char *id) goto err; } + ram_block_notifier_add(&sev_ram_notifier); + return s; err: g_free(s); From patchwork Wed Dec 6 20:03:35 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845338 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="go92913y"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVZM4w40z9s72 for ; Thu, 7 Dec 2017 07:28:59 +1100 (AEDT) Received: from localhost ([::1]:57662 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMgJN-0006ag-KI for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:28:57 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49853) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfvw-0006CA-2K for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:46 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvs-0002cB-Rt for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:44 -0500 Received: from mail-sn1nam01on0068.outbound.protection.outlook.com ([104.47.32.68]:40576 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfvs-0002ai-Kt for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:40 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=84VVRamiwEmyyOf+EPwrpYiHNZvj7LrvW+lOYoxniGU=; b=go92913ynU+7lWRrpejgMZK3JXLNeejTPr14xWdRPtiZMDFINZHRNaATOWzgdw5vOo4qxhwcnOnsl2CQnESavaXQCfUl5MuQgdH6wUcNIRmsHV8wDyXFmHSYkDMvAO2gS2SNRAZ3bDB7XMWS1T8czy4f+xn8MmFSCIDlnyAmPCY= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:35 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:35 -0600 Message-Id: <20171206200346.116537-13-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: 0ddef2e3-d917-4581-049d-08d53ce493e5 X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:VAG+dKcDd8xSHP1e+50xUXmBYyatLfjjDmZQlcW2DZMMJORU8ol07rNRerh1OEyshnZQQ9t7QfUsjmUHXisv2nSDzv8wiYgZkIY6OtuOvx/t6yupiEeSpQPQPUUltlt1cX+p6G7u3joM+WWHWXUOTrQWot4jOO829C+cqj4orFVRfo0KukCn8fEFt2Ck8UYgUc+eJQWH3XfkDflpsG7sZPIs7ih0x5RsZ/IFAY34LpE9cfctUVD9IfvVMGvRmZqB; 25:XvVYyHgcoIa8rf79VNz742G8Y2cmT8OqcEAp0z10DJNxOPQX/xy+jvhSA4jE2uyHn8mIJuj1gMmqaz3XjvgCsH/9VKFadcjYbeNbjoguYT6pkkvZAxCTO1hU3ZxCeTOwHNhoUHdxMq+3DHtaA2/5lD4yrl+8hv7YBqCjZj7P5y1kstAhWycWdqPLby8FVOb490vhG/dBM1ZlhI8PHo6k4xeGtPERkulzg4LywDLiv30kT5dk8nSjyYodCKPi/PxjqrRY+LLpcAkWjyBcXQ29ZDVrI/+kBmi8az4b3htWqXkSE3Z00tWxIXdlZ5WYjWSOjmDVJR/2m8hr6022V1rDTg==; 31:F07WqvXqAo2+Z7zDi0+jbb0b8DFj76VAlrvOFO0lsjkZT7Fxnat0O5zPRRbZAUuPz2SWsJkhdI3Q8H+i+dP4yRpe2NudPYdzvYpKmdOlVENEEI8O7DReK6M64nSXR20o9/lrPajbKMzo4DYfqJpCrp12/jhHeD1yykiMN9qqQYmYSaNbmyTe7HYn1D1FXP/IpwNphQlLDOetNVZy8Cx+W9ELQW6DnOg6Nmx+ZPMni7c= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:EiEwBSjz9Om0rU9jXfC02xJGklf8GxSrinLrjr5JSa/AeIGog1uMMLDKUpOUnkWcWO9Pb5hLyG/rWpggnWxWa4hDthughglEJh4vPf4aQT4OdfZrlE4tQ3xDoJdNLYXW8km+0xyc0mXEXx4Qqw1uypLMWIfqPaxybtt4VqACKnmG4pxG2/CcuysnHD0lDMl9v8a12Xbw3PFDZAk1JD4FhhmfHWegj3M7ohgb3UKF5U6Ktwvnby3HwSqBGTPN8WldrXJgBMAsjTdCQDTgHR1+3x7niNarnO4FPvFWqMP87TXG+jTZ1Ts74YJhwWapGtBcip41okJO/4TuWhUvPcfuKQ== X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(9452136761055)(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(575784001)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:t+kdDnlxd7xhjsZ8SJxybNXzDz92+ub51coTuoyT9?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:HT4+n82ICWtkmComCTTqTCKvYu6jfTcgg1Qt08KhOwnBUPjDI1JrPs3UW7s6G9bqnrgTUpsQLB1JNlDSEUfheEqsqRO8cGyiVUT1FnDRdrY8Gs0UVEkYjxeo46XcJT7vdhjl2pAUNBFJr06X36gtB9suX4JOrzjC02pyEApftyY7femgSuU2kgJ0Tvu1OIUYLgY56yEp0VPQFE4mAxQ+REqvMZ6VZLFtIcKRNx2Fg/VP9NSGkx27uhZChhpiukktsIfhnWlXZRC4wK8jZM70tf2cWycwkKdgCLYiZNPwgjyI8nfOQwNHk9HEeFf3HizLJYB0ygbzaDp/ydC1gNjdtXVvOEZbzl5SzZkosxw1Iw0=; 5:T+zuyURDLmtFLIIUkswMtGXiP7KyU9NcsJlZgKyh6TpjEunCWtZhH6Y59SjEhugqBywq02/VTUMHcEmaP/N7RSeMmWESLHLGevzYSmWENq0iLIZkMGHjPfhhthK/W1XDcryn9kKatxLbq6lNgST3eRQNrMuyBjVEIVF9l3i2gKg=; 24:2U+bbXGtvMZY3mzqQOuQ2JJkswzztyBaYXfbce0rPDuJ5QMJyU0+yMpvv/OKjzT71FOR/F02rVz172U4RWkHLR1eLKuBqzXfLpHG/FJGX0o=; 7:Pw9MwcfNSdfe41anKD0l4a6c9oMiAByTrFQ84C3q/yaiWUzaZhp+0iSB6L33g1D9RUBLsEE/Jzc1NMpjfRXIBX4h69hgOQVc26XGRb0ip9pYPm8V05bMOogwjUJ+90ipCwBFeWgL4cu+Tl+9HlSPJSNuxMJWdhPsSqzJ8iZoLjGSinRvOeKK2mFM1N176WfROe33gHyf9YBHnl7quw4uhj8Do9zaQfBWPukMVJZDJG3ZTJgBryGfjW3H1hN4PkpU SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:x9BQySb8LyhiJsiRy3dWcCrGxgqYTWwkqGOft10hZCbincbg+hUSjR5IxFlBm7A37M5Ar2RY3JLaYNSCSiZMZKVU+i6cmDcc5mg6Y75radCYcysvEP7lUIax5Hgz5smYkXbd9rrDLEy7Zurk0Mv+dJinN4SDoyJIXPvWDokYmPDWoNOHGJpLmXHnwdCssyqHDJ4DjufDgkyQVVGpqxDxNwAnzXZZrV4O9LR+UHcYWje7/U4YCmIfDOilL1XggMsJ X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:35.1138 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: 0ddef2e3-d917-4581-049d-08d53ce493e5 X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.68 Subject: [Qemu-devel] [PATCH v5 12/23] kvm: introduce memory encryption APIs X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" Inorder to integerate the Secure Encryption Virtualization (SEV) support add few high-level memory encryption APIs which can be used for encrypting the guest memory region. Cc: Paolo Bonzini Cc: kvm@vger.kernel.org Signed-off-by: Brijesh Singh --- accel/kvm/kvm-all.c | 30 ++++++++++++++++++++++++++++++ accel/stubs/kvm-stub.c | 14 ++++++++++++++ include/sysemu/kvm.h | 25 +++++++++++++++++++++++++ 3 files changed, 69 insertions(+) diff --git a/accel/kvm/kvm-all.c b/accel/kvm/kvm-all.c index a9b16846675e..54a0fd6097fb 100644 --- a/accel/kvm/kvm-all.c +++ b/accel/kvm/kvm-all.c @@ -107,6 +107,8 @@ struct KVMState /* memory encryption */ void *memcrypt_handle; + int (*memcrypt_encrypt_data)(void *handle, uint8_t *ptr, uint64_t len); + void (*memcrypt_debug_ops)(void *handle, MemoryRegion *mr); }; KVMState *kvm_state; @@ -142,6 +144,34 @@ int kvm_get_max_memslots(void) return s->nr_slots; } +bool kvm_memcrypt_enabled(void) +{ + if (kvm_state && kvm_state->memcrypt_handle) { + return true; + } + + return false; +} + +int kvm_memcrypt_encrypt_data(uint8_t *ptr, uint64_t len) +{ + if (kvm_state->memcrypt_handle && + kvm_state->memcrypt_encrypt_data) { + return kvm_state->memcrypt_encrypt_data(kvm_state->memcrypt_handle, + ptr, len); + } + + return 1; +} + +void kvm_memcrypt_set_debug_ops(MemoryRegion *mr) +{ + if (kvm_state->memcrypt_handle && + kvm_state->memcrypt_debug_ops) { + kvm_state->memcrypt_debug_ops(kvm_state->memcrypt_handle, mr); + } +} + static KVMSlot *kvm_get_free_slot(KVMMemoryListener *kml) { KVMState *s = kvm_state; diff --git a/accel/stubs/kvm-stub.c b/accel/stubs/kvm-stub.c index c964af3e1c97..5739712a67e3 100644 --- a/accel/stubs/kvm-stub.c +++ b/accel/stubs/kvm-stub.c @@ -105,6 +105,20 @@ int kvm_on_sigbus(int code, void *addr) return 1; } +bool kvm_memcrypt_enabled(void) +{ + return false; +} + +int kvm_memcrypt_encrypt_data(uint8_t *ptr, uint64_t len) +{ + return 1; +} + +void kvm_memcrypt_set_debug_ops(MemoryRegion *mr) +{ +} + #ifndef CONFIG_USER_ONLY int kvm_irqchip_add_msi_route(KVMState *s, int vector, PCIDevice *dev) { diff --git a/include/sysemu/kvm.h b/include/sysemu/kvm.h index bbf12a172339..4a5db5dde390 100644 --- a/include/sysemu/kvm.h +++ b/include/sysemu/kvm.h @@ -231,6 +231,31 @@ int kvm_destroy_vcpu(CPUState *cpu); */ bool kvm_arm_supports_user_irq(void); +/** + * kvm_memcrypt_enabled - return boolean indicating whether memory encryption + * is enabled + * Returns: 1 memory encryption is enabled + * 0 memory encryption is disabled + */ +bool kvm_memcrypt_enabled(void); + +/** + * kvm_memcrypt_encrypt_data: encrypt the memory range + * + * Return: 1 failed to encrypt the range + * 0 succesfully encrypted memory region + */ +int kvm_memcrypt_encrypt_data(uint8_t *ptr, uint64_t len); + +/** + * kvm_memcrypt_set_debug_ram_ops: set debug_ram_ops callback + * + * When debug_ram_ops is set, debug access to this memory region will use + * memory encryption APIs. + */ +void kvm_memcrypt_set_debug_ops(MemoryRegion *mr); + + #ifdef NEED_CPU_H #include "cpu.h" From patchwork Wed Dec 6 20:03:36 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845340 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="LYTXTb80"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVcK6GJ2z9s72 for ; Thu, 7 Dec 2017 07:30:41 +1100 (AEDT) Received: from localhost ([::1]:57675 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMgL2-0008Uk-0G for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:30:40 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49895) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfvy-0006FP-3j for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:47 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvu-0002f8-SO for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:46 -0500 Received: from mail-sn1nam01on0068.outbound.protection.outlook.com ([104.47.32.68]:30256 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfvu-0002du-Lt for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:42 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=89YLcPphvxaDLY0eerdcr1fSpvPK8yJdBxh6qEgSUTI=; b=LYTXTb80LigJDdJmMRqapjO4W2whFdyev80rkIoyuDvWDMoq4Wq0MV5/2k6MlxhYFOys7+m2v0LPwQ1pG4NDxuAR8qXBdHLvLC4rwkGGBuMWxZh9holgpciGCrQG6u/d3NGm/22lxNENWSewnFoCQQVlMc/bbeRzsGx7aoUVArI= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:37 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:36 -0600 Message-Id: <20171206200346.116537-14-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: a0299cf6-4468-4eb5-5727-08d53ce4951d X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:G1opEDrEiAJa0MqVNTCxWRa4TQaYqXxZcrSyQkRUjveig5WWHOJxEIdSDNoNNqlG7n/18bem/NvMVy007HMtYPy4ILwNJdD6V1TChDSh3+qLhcypRfkSYyXC6e7dfk9CseEFkZHDVnAeFxExhGfPTI6wM/dDo7sZ+uN3dg4UVjsJyLEUjo9iJ2666P6HyPhzEAOXieIJYDtXpW2i+c9gGLtXt8EZwM+k8f2whbaSRjAs1j25GLf97wmR7g/zNYDc; 25:wVv19Q9P8JK39Pmic029WYGKUlOENpr9LAXR7+J5/DEF1S92pYzbSlbQFklWOxFm4avUARJaTt7r+0ns7LrbQ8Sfe4ZRtN+ckXHJNLa4H21m3Qyb4NOU4VXLIvjaOdyFZa2I9+cXa5ZCnLZp5ZXGRlWuYpA1CAHhncbeGCuE3bu3eViPKs5TM+hmtrLGux9Aomdayqtj+sVkiITwMUg/Y/5okiO4F6Po0eo2iJe+5MYo0f+AwaOKBI9UoumtFhZRgR/CW3CnWV3u7TzLIW3Os875WZQuiwAPZfLDEDqDleHKXAQexj+oTkuYCRUTbzuqESxiVQ57wEXdzIMgrt5npw==; 31:BdUI0vBW8UqsIaxwCfNOWyLC7hFLWTTr8yzbE76PObbUE7RecfKMDbIlKzQ93byC4lJ85vU5uGQy1QmMO6X4uGio7zvtFl3A+EuCSADAc4azGncZhlu6aO0SbHtj7p4WgxKqpXm4cOteOc+BY1YgjUYm2a2yMtwyDTWsJaTwTvj5okYw8Q7b6aHnVDfhkubK+w5J5x/soJKraGPQmaTc87dMUG37V4Z5hPR1fKGiFbw= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:lUCTiYQrGfYwJgwiV47WBwWO/bK8e++0RQwQQzCPAilVd/4QnS//UVtYBLWi67A7hZEj3VqmbYE9OPGurVJGuwmo4pQycQDDxO0TOyOBkdpP0PdEHQ2RIvabODIpAJlxEcz4ALSP+5SCU1dTyztMbqYI6+czrD/o+6xFEf0g8GPyjEgtMWsjETwxSfslq7t7T0BE7nBOe6PPjhitg2/x0aNuvFoEa9RZ4N9eMZimN+zpwDmbO4xUygL9gwB2Ep9yLomBz98kvi5R43y2o+kNSUDNNy9o0OAwErviXaPmPfxWO/1mJHS6947d8C2PnvWY X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:mvinc4XC74Ogp5sv5tlqS6bQNdrzW364jTcgsSmTl?= IPSqfP4c2Ld5crTNTjyxN0CPuX1Hy+jBvpwuAM8CVeIOb62xofHcEkX2wnzhGZFXSq3htIbqoeXMFmZDw5KGZKSGIPya5QeplYKaLkNCPbMf9OHoBTIHcGzv2DqR3o9sSRmAGi4AaJtP8hNXD/WHvqndYlGKnkt5xgm08aLDlmKcJTYLiIA20THqnCBeNM/25x7Kl2w7BDwnutRIWL0zzqVg8HPdGFso+GH8sVK4odClWWp46K/CXDjuTOrmfiSHx97hubcjeH5+l6sQnHDmTi0vUCOttsvvX4MI/syf5QXXigPT117LENO5tFCEs1oU+IZ/xYJNS3iED2TWebUCXfL/gOCWiAnzHYVUVD8bM1YYU/F6t42RI5U8QCXura91wYYRvAdJn1u0tc+ac0dgCS4iYrwmnArlHX3QardlH2r4OWSEpUCluQa2LjZIUFA/OAXDuJEnCBOgCPiU1bjTbG0CFBeimvkAGjtYjqE/oBQ2uu6IsHrRlRrK2/NXJDn2qV4Jka0rDJgYBYRd9nqy8wifyazsnnVLVGAXJu4GWvnMiusOGfva16uL0G+w6GTA7wSTnbBEYJmvk0qGXM4eO3EvXPp2puW0Noiw0ek9dRxWcGn31lVa9147STG6tpKTkrtrlXiLNqMoiA/UkpXP7+/Hm7pQWj6N9QROi7v6JOIoXLzgOaJ1VKaJgphxsXewzzSU3lnY5A2YFxYe++teSyV78rKnSzLFCfP7Bu7Vph8k432/MwXLoiD27p3wIlPJm0onlElwjZrvJWjrKjWY90Sssz6VpbXTJR2LqWrG3rOkw6GGDn0BcpQvhTwHB/7uC+B+7Ud+CgppOymjPMvFBBeNuXTZQ0SFh99DuZEORcrjrjQEJ9l77F0vUI/NHtSTRGiojHx0Rhl+aO2z8SCwsYsGtH5rWzKUpue94hu6XDS0zczu9sJ7j1Sma/hZNrVksNSlcNdkPGblZ0BySTcrJtmpU5xh8nDbLOFoYAH3It+xtKMT25qsx48RPJHlcsFXXycbLGf3E6ykQV8iELJKzf0ActHdhdd9PhfmRk6sHQ5Mv4eQH60DdFka6K5KsXuVM3P3+aEWV6RvkKs1OGv0k1Ir+MuMwSJ+RKe8PheL5UdqFWOoQCavPwWGii7A5tBiutkBZ3bqicgia+miwHebgZF X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:kIwuMkw+wy1SDviLEeK92LaeX0m/T81shjtBBh9CGMlnnYM3w6BZH/hXrOVBwkmILYIGrYOTfqW4PzlYlVACt+JACYc4CoKwkgarF4P1ShAKAbkAvf7qOjEUTYAOspTscldV6hvO2vQ6Rp5WKSTP43LieIkAn1PBEmzcdE2t4pr060e6ZfNzpVtw+DSrROqWWoG6IowJYtSdjC7KVdZx+JixgzEdGzj4XslZx6J/0fctr4nlPq4BkC0y951q5cYAWLlKHGBKm0d1r4Oh8B7i7SXoz2UaqNhWAkR/S/JES0rJaHNuY4jRsauGQGvDBnWh8bRhHatFtwL/cHZ/wZ1J04uW9NLVP5Z3EEUQt5azIa0=; 5:KEXREoORh/hiOj1sUs1errQEPXsaRq5vAN7nYcTfiQeRxTxJktxZ542vb0DkF6Ldzdv/VDjWTWzRlODybY/2489pbZfV44AtaZy5u3PtorvOhuycaL4iSfTORs/aZCRA2CSr5Jqdxig6ZhdyfDjMuFH+W8wXbh0ex+61P+eJnNY=; 24:T0uLYr5Jagz0GxxLslvISV0sp8oSA2V2oo1+C3C9xMcWfcDPAKnqNyNPCub5MEBGKmw7BUXXULYmZrU3589RRsuGjc+74o12ReS5rPV1MrE=; 7:xQjhiS/jAE67n6PcOP1Mv5BshUSPTO/YHvJWhW3b6IVCnWC9qwbapgFNP1Qu4iC22xLcT0MEWo1rQdy4c+sLUYwCl3uqKopM0ySftzVh7HEIYcGaHLj8B3OR3aBmtEXrM1tv0ZM2nEtcSuA5jWZ3F4JhUG1fHk6wj/0jz6bpb9y4Jxilc4B4MwEGLzpSCaoDCsWmSdldskTi8wFMnOraorbp2K0NkpJkxsB90MkvOq2yLEgfv4zXvdfLA4YyMtOi SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:zTjJ7NJ/2N5kgLvscjiv1JC1oDQ4v+Srra8vmRLKMRMAqUe7NTjxR2h32AfUDo9qFoJzHNVXqhHJ9a1fTxpk8dpEhhfVr6XcqF+DGHtwdVJiHsJ17sVXK1aM18ayJlf0wFZ2sXh9z95N7QWAf5CfsfPAHKOhIExBq0uQPdMjJPgDXetuZP+TXaPmlphuoGUogo3bJDY34auwkHu+C8PLVil9YZOifI6jFtGvXDU0DiDQFKJxv/1FcW6Im0p0PaWe X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:37.7544 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: a0299cf6-4468-4eb5-5727-08d53ce4951d X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.68 Subject: [Qemu-devel] [PATCH v5 13/23] hmp: display memory encryption support in 'info kvm' X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" update 'info kvm' to display the memory encryption support. (qemu) info kvm kvm support: enabled memory encryption: disabled Cc: "Dr. David Alan Gilbert" Cc: Eric Blake Cc: Markus Armbruster Cc: Paolo Bonzini Signed-off-by: Brijesh Singh --- hmp.c | 2 ++ qapi-schema.json | 5 ++++- qmp.c | 1 + 3 files changed, 7 insertions(+), 1 deletion(-) diff --git a/hmp.c b/hmp.c index 35a704182494..3184ed5d1550 100644 --- a/hmp.c +++ b/hmp.c @@ -88,6 +88,8 @@ void hmp_info_kvm(Monitor *mon, const QDict *qdict) monitor_printf(mon, "kvm support: "); if (info->present) { monitor_printf(mon, "%s\n", info->enabled ? "enabled" : "disabled"); + monitor_printf(mon, "memory encryption: %s\n", + info->mem_encryption ? "enabled" : "disabled"); } else { monitor_printf(mon, "not compiled\n"); } diff --git a/qapi-schema.json b/qapi-schema.json index 18457954a841..7eec403cd34a 100644 --- a/qapi-schema.json +++ b/qapi-schema.json @@ -314,9 +314,12 @@ # # @present: true if KVM acceleration is built into this executable # +# @mem-encryption: true if Memory Encryption is active (since 2.11) +# # Since: 0.14.0 ## -{ 'struct': 'KvmInfo', 'data': {'enabled': 'bool', 'present': 'bool'} } +{ 'struct': 'KvmInfo', 'data': {'enabled': 'bool', 'present': 'bool', + 'mem-encryption' : 'bool'} } ## # @query-kvm: diff --git a/qmp.c b/qmp.c index e8c303116af2..baf367af55c0 100644 --- a/qmp.c +++ b/qmp.c @@ -69,6 +69,7 @@ KvmInfo *qmp_query_kvm(Error **errp) info->enabled = kvm_enabled(); info->present = kvm_available(); + info->mem_encryption = kvm_memcrypt_enabled(); return info; } From patchwork Wed Dec 6 20:03:37 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845337 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="0efRNkvJ"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVYg1063z9s72 for ; Thu, 7 Dec 2017 07:28:23 +1100 (AEDT) Received: from localhost ([::1]:57659 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMgIn-0006Dq-68 for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:28:21 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49921) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfw0-0006HF-81 for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:49 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvx-0002gu-1f for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:48 -0500 Received: from mail-sn1nam01on0081.outbound.protection.outlook.com ([104.47.32.81]:20510 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfvw-0002gI-Qr for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:44 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=ppVkMZswKn60dvIJr64F8QrLimpyLRpc1cb9w9BRU7Y=; b=0efRNkvJfp3uAemkPHg0W3ZwVEreoBlTSrfwdIc+ReP7T+NbcaL7TeVZB8Ob0RLVb+wEt5jq+C0OGDN2YAOqQCjLUNp/VBat1FZkJkgtaQ+oAA7iDfnjeeN/RmoBb0J3sN2s6k9W3tnqO3ahH3JuKIZDVvnG8akWIwSlo5tnKKU= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:39 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:37 -0600 Message-Id: <20171206200346.116537-15-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: 79a0ea82-e385-46f7-e4ec-08d53ce49650 X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:InMK8cOEHjhFKzwDnCcOgdc3WMe7umhNhD6+3cB2/8Q47Y0FHPoes32D7ekQYGnr5FJb7s9IqnYPVsXoM97nfPf1hXyZ0pKBkyyk2c3tCsAN7qBHNDizDavztSt+03ZRSed2qAaLebtPWviuoCU5bz/FfUBf+CkJyRlKd+/sLFV8BGQ3jzNL5mfV3JIi3W1iqSx6P0Ad8QG6S8A8gpcDwd/7lO12jWwY6b8DBn08Wv8z4dHX5lcEnlbSffIbGDzf; 25:tobA9iwymqr34AVek+csLzpBcPE4EL2xJVxNuYuiWmWgwpnabk5yzatGmAHYzsGDKgAlQfJULKDDLQ+PWgZK1ZUtB18/xkJPLv1qDQF/64pKcjTHe6fVVDc5bfXFuJj3vUkNbpyiIheN2JhDNFeJfNm3xG3Pehz3T4xRmv863xQzD+cH5ck0tgoVWdlTViH0HTuWmcIPe5tANmF42YzWBGW5JvbHJqh1KSkjMPriiibIVZvSnNW0QXR/Oyc/xUFtm6ku6G+VBWwfbrlrAvEqdzez6nnTNPYLdKTcM7ch3ZzexjnymVH7ZF1RL7AdRxiV9U/WOmzZSp8hwgblkewMDQ==; 31:snPgOBjFHESpKnQ385LglP+oiqEe9SWs/8REoxv/Ujo19hydYxJmbOb/lAyrMEYPyNqb2Y8H5lJkj3DAmDJRb1l9A7/4OCBh+ToJbJTGV+yTsUEbEW0hFEvhZ4KZKiioJrmzQKcI3Ad1ORfnXPYQ3d57Kp/T7WtxGPpPo9vVef4H2kN0SgrXbxszbkoo8aIOMYaV/EXyApG4OpV445GB5py9a/qKvb8NsvA/CXa59rQ= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:wnmANpz/bsPS07/KH6dsN3E8kHBu4i6yzvCF1o+lbON4E41A2l2RGiyWgMGHIdHPVTztTnoCG7CjOy1aI9B5hbDZ32ehmUdbcCA3+fWzpj4weB6LqJF/yy+lpWfss4Eka+Cn3k2xMhs56GqbZroVze7up52R3Ji0MZHxFLsi2x1Ubf2NauJVqQe5hbc4/BDLt7jaIphoeHsjA/VGG4Af0QcXHXZ/rjqMArmKnRySCary0jAf7FIdwmM+z9UEHT2NSEtM1kpxj6y7NeUs/9XXA8Koe3fTcuQBgPhdSN8EYcVnp/SHuvu8xlgIolsuv2PPz9mMWLHmY0O3o2oit6DrHQ== X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(9452136761055)(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(575784001)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:ftLvFSIw2XffSeFeqBDjtbv6xM27EV+6yu/5GgAXf?= ai+LzRp8X/EjHylvIYEw3cfgXcdSKLEWb/BiS3+fDdIEPyF0oKj3PRcViuzt5B7oH+9VJOI7lBMmB/7Yvy6n4fvwGth3NmmcyatOqVRw9K0qMirepSqnJznnxD2Lr/zlAAboN9MtObfcuwWvAcZ5+OyDJkqnfxfJJ/UXjAf0Pe2FjI6muo4Z2GTGmPnmdMbjiu0O8XWJUXews2VRgLUmElQt292Gdy5cufSe67HpFwIg5PW2KLpAPIYgNTAa60Bq8AeJ8mFfZFCMmHMN6GSauXawbllJ17LvBL+Ed5/LX+Q4YJoYY9rshuyjxZ1R38YuY1ifddeqvvbRuu8Z7fN2y3F8EQBM7//rfh5jCfo6sNJEKXVllQsCOQQLO4jwX6CXzBw9gLqWXCmanju/5RtSI13n42kshIaL0yQW4s/9+u3Cnu3NipE+U0JA3E9fQ03pvhgivI2wlFOLssW70dgFeaipyyIi6z9bl2Bdv/g9GOwIs/FlIJbLhJd1h/0hg7W7FjL0+W2oZOTkfEfvTZ5f4CfK/Jyzu+fQrPntiJA/FwwccnhkT3LoIwkQOiQ3HmpZCt9qAy7PDCezz977YCa4NS+htO2nyuD0lPctJRJ+J3ecFF4Y7SZ6VK3rbEWlFN8HE4rxpo976vH10mmswdOfPiQBNiazv0b09JTxk+kA0DgOKC6XYcJgtDEcwMaKKT1/PKu+61Sq0vzkOrAdwB7wasOeS7lGZ9Ov/Mpy9VdLdGKbTFITF6E4s0vtmUbUw8AQPQHXivOtPfIG/GjEueEvlC4dTPIiGS4v5aPN7zwIOHgR2rhDwLwl/7lp8fCUUDXT5Js6nEmSAyfcm4WlR+yNQW4j+3rqXva2BEHVRXIlV1iTtIjDtTuE54KE+dSEk3Sb7jmAon4auNUI59uZUzrXqouRRvolHtKsJ+a9K2/ta2KpCgrV3VS1hAuNAexP7K0oLevW5tjKd17FqnU603NgN7cz2BxLVKcf1SKos2r3o9nISwA/QRS3kVdOrfnSuciAaAbh5faRfxNOv05SW7MhTB+MCT7R+ZQQb33gIJ2/YRq/RrEGBvMKVD6yiKsRdlfnVaLwCuG0uhx6ftaloiMskVKLSRn6h1MjyclYhc0PnLpujk/4+U37UvwPGaRWBxcqLQmUCLGPg4Thaqc/97meqxgDbyoYY2x9v4XJ2hLp9rdsw== X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:DqimaMoeDVysT40o9qj9avAXRQSA1ltsDKH6dqqHphe8Y0oVhmaw9OBZZ6343jZkKKeZxXZHk/q9PH6TnLGD8+wGHiuUv8Ge/7hX0HBxRHjJhgdZVHOUwayCWcxTWfjwAEuvbxuOF/PwW39VNsdWQReMs7J9s7xddtURoO7oZDE/3gznz3hTt5yThja+vfIaEe11YnX6aB1ZuJonTXRJHNGSDFmulKzTCO4smjOXlMYX1Nah+a7PVW+iiPcRlk5jeblxAKa5s/COcx8pkCuOcsuT+gTHqznQsP68wTzq74L+u5vF3cYSuPcByrMmvnWlyqFpPNWt5jJ5zSaqmhmxVD34LGa3ba89Gkq748VKVVE=; 5:64XmZGDTaG2/eogzYcnRg4sAamMfYKKpwdzCTiSPAs5tLVPS6wHk1F9xGMUOL5kTXfT6/qooAQVtn1nhtgs014eN06UjJcndadRcj5I0Pf2M4DVd9TlGDQUN9M0zhltHkHlchZfEjXbHJ6nLBIPgk7nMpZfp92hAj2wi1uHMvIE=; 24:4lZo26EP1MlsamHK3FCmG2Eczz8TkDcee0ffMzju2SwFqgKxOttHNqxNI+hHvKZ3fwI3tqH2feCjit3QPZL4KxMVfwk5jT/lBgcrtcUdFXI=; 7:yHVMz8Na5D4tXsji+2AudWTm/p1pRH5RyoYD35pe6MLbhh0BtfIpstO9M/VUE+2hGCbzAa1PyRsuhTYUgLkntG4T0sgtThxbDIHWJbM3bOEQDki45PZE/hxyxt/FGU4r929HU1dDAwgf2tf3PBsygtudktz+pL4G9bGx5dbnOwPH/0SjusQlV+0Y1KuDZyFdBctsOhj1Hrrv6cj2CbzWLZwwC6IzAIOfBXLrCDngd8WS3He9xmJZOH0OCXUSX8/i SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:YDQ2BTRNklugEpOe6FLDjD0Ue0xb1ugBozosGyORJ69EY8I74PhzB/OTFoaGi35jwtgXA7KX9v1srw/1LpOuAzSWCmfqKP3aKbO6UccHVvFN1q9jKJNQ9JXco9itFjReg7SxE+Z+/U1pmN1BcDd+u8FfTsl8j3DE1pM2vzh0R8ZVUKrzDeRosdXEDB/itMNTNypf798XuKZJ0E1hIQA9z5QbO6txadQ81YfDUyjjZ0zbClAUcOseRKtlDaJiCrnS X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:39.8012 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: 79a0ea82-e385-46f7-e4ec-08d53ce49650 X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.81 Subject: [Qemu-devel] [PATCH v5 14/23] sev: add command to create launch memory encryption context X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" The KVM_SEV_LAUNCH_START command creates a new VM encryption key (VEK). The encryption key created with the command will be used for encrypting the bootstrap images (such as guest bios). Cc: Paolo Bonzini Cc: kvm@vger.kernel.org Signed-off-by: Brijesh Singh --- accel/kvm/sev.c | 86 ++++++++++++++++++++++++++++++++++++++++++++++++++++ include/sysemu/sev.h | 11 +++++++ 2 files changed, 97 insertions(+) diff --git a/accel/kvm/sev.c b/accel/kvm/sev.c index 7b5318993969..74eb67526bd0 100644 --- a/accel/kvm/sev.c +++ b/accel/kvm/sev.c @@ -22,6 +22,15 @@ #define DEFAULT_GUEST_POLICY 0x1 /* disable debug */ #define DEFAULT_SEV_DEVICE "/dev/sev" +#define DEBUG_SEV +#ifdef DEBUG_SEV +#define DPRINTF(fmt, ...) \ + do { fprintf(stderr, fmt, ## __VA_ARGS__); } while (0) +#else +#define DPRINTF(fmt, ...) \ + do { } while (0) +#endif + static int sev_fd; #define SEV_FW_MAX_ERROR 0x17 @@ -288,6 +297,77 @@ lookup_sev_guest_info(const char *id) return info; } +static int +sev_read_file_base64(const char *filename, guchar **data, gsize *len) +{ + gsize sz; + gchar *base64; + GError *error = NULL; + + if (!g_file_get_contents(filename, &base64, &sz, &error)) { + error_report("failed to read '%s' (%s)", filename, error->message); + return -1; + } + + *data = g_base64_decode(base64, len); + return 0; +} + +static int +sev_launch_start(SEVState *s) +{ + gsize sz; + int ret = 1; + int fw_error; + QSevGuestInfo *sev = s->sev_info; + struct kvm_sev_launch_start *start; + guchar *session = NULL, *dh_cert = NULL; + + start = g_malloc0(sizeof(*start)); + if (!start) { + return 1; + } + + start->handle = object_property_get_int(OBJECT(sev), "handle", + &error_abort); + start->policy = object_property_get_int(OBJECT(sev), "policy", + &error_abort); + if (sev->session_file) { + if (sev_read_file_base64(sev->session_file, &session, &sz) < 0) { + return 1; + } + start->session_uaddr = (unsigned long)session; + start->session_len = sz; + } + + if (sev->dh_cert_file) { + if (sev_read_file_base64(sev->dh_cert_file, &dh_cert, &sz) < 0) { + return 1; + } + start->dh_uaddr = (unsigned long)dh_cert; + start->dh_len = sz; + } + + ret = sev_ioctl(KVM_SEV_LAUNCH_START, start, &fw_error); + if (ret < 0) { + error_report("%s: LAUNCH_START ret=%d fw_error=%d '%s'", + __func__, ret, fw_error, fw_error_to_str(fw_error)); + return 1; + } + + DPRINTF("SEV: LAUNCH_START\n"); + + object_property_set_int(OBJECT(sev), start->handle, "handle", + &error_abort); + s->cur_state = SEV_STATE_LUPDATE; + + g_free(start); + g_free(session); + g_free(dh_cert); + + return 0; +} + void * sev_guest_init(const char *id) { @@ -323,6 +403,12 @@ sev_guest_init(const char *id) goto err; } + ret = sev_launch_start(s); + if (ret) { + error_report("%s: failed to create encryption context", __func__); + goto err; + } + ram_block_notifier_add(&sev_ram_notifier); return s; diff --git a/include/sysemu/sev.h b/include/sysemu/sev.h index f85517c0b5b5..45b464cc96f5 100644 --- a/include/sysemu/sev.h +++ b/include/sysemu/sev.h @@ -51,8 +51,19 @@ struct QSevGuestInfoClass { ObjectClass parent_class; }; +enum { + SEV_STATE_INVALID = 0, + SEV_STATE_LUPDATE, + SEV_STATE_SECRET, + SEV_STATE_RUNNING, + SEV_STATE_SENDING, + SEV_STATE_RECEIVING, + SEV_STATE_MAX +}; + struct SEVState { QSevGuestInfo *sev_info; + int cur_state; }; typedef struct SEVState SEVState; From patchwork Wed Dec 6 20:03:38 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845318 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="OncKF5LK"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVBx0SLjz9s81 for ; Thu, 7 Dec 2017 07:12:09 +1100 (AEDT) Received: from localhost ([::1]:57543 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMg35-0005mY-17 for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:12:07 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49965) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfw3-0006KX-6o for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:52 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfvz-0002jy-WC for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:51 -0500 Received: from mail-sn1nam01on0065.outbound.protection.outlook.com ([104.47.32.65]:24848 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfvz-0002jR-OJ for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:47 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=eQVxZxjCAwNUSFXFeWcPh9oeGooHymaG/gIootq1hFk=; b=OncKF5LKNxpCOYFm1dINVGRMTG8xiBgDR1GRBCRbSurG2PScHCcuTEF80ByfHU9oyUSTUg3YmnKSwQPBnsZM2gUVPAxV6lzKqf2+vn5OzeVbAMKOKNGcmeJrjTFOIvQH3Bvtwus0QjsDuSFjN24Ujb/jUuNd1ISqQsYV4CVliNg= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:41 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:38 -0600 Message-Id: <20171206200346.116537-16-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: d814b811-3e06-439d-99ca-08d53ce4978b X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:LfVoWH9A9CFNg9D1CRkIDhxJcpXZ1bSIX4HitgsJfwqkY+srE85s6Oo6v7lIM4V/QhN+bMI1XdRBaRfIYOYzXy89usqgxumpmAKuws0xQUnwRj5CFS0ZUMJiQFh7yLR0gAVQ+z15mhbqSOydT4oBkeCeMx+q7ugPTWqsE4I7iGE3IO008/JbEUMODqP9aVQFeMayMFRcFDK2fHzCN8MnJcd0yLeKnc1hO39Rw1LJHTjG23lmfFdjpdq1xCskGMeW; 25:PSTRXqfrooQ5NjGfZFW/lJGoOjTV9DOGXUmk5qNx1IKHdefmgU4xvfSHWFoZRhi7yXQedl2iv12hTcwvM6kuRl8lOujgtGRwQTV5E75GQT6FKym/ApipIetN/nxutp8jROHYjMk+R65AUsWVeGksgrbLIk1by/WUKehsJ7Hw0yyFhS8HwUJX5KnP577S8mmrwhpBMtrkUAZdWidphCgcMDSR0nJEb8pWzzi7jUgWcO3yFKxPgU5S3XytwKHVwuM6VgzvP0uP0AHxCK7N7JpL4GmwnXl9bPtoGSUNdWN0oeS7hWqaZEMBTZAgHMgJLCPLJj2XrzhftwplHMqZxX87qg==; 31:219VCKOQuzdq3qe/0jXtLoRbpmGK0tFITsnpqJKFF2rpgQn8Lv0kPTG7n87lfokmXM3HQmelxj6PuElCFbG5MldeRVENSRQt9bOZ1R1SEo+1MM/o75DGTqyN/YPNtUeLmXVUAZ5rdDTupD0M8jnfZP1YwLQJgD421fK/otcTktHwVUo81gScVVDsxZbTuDzEQYIKSKB6kif5C5drioQLeQfD+ti11CVoWwp5bPdlQsk= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:hj05c55ZCDQyuRe0YiOmi//PZw6EJUf5BoQuuq9PQoXr77vhg5psoHiAahz73VyvYbC3zX4PKooqNwb0s0wWhiVTK/wc9wF+iSJwXwckhfrilwp3UnfXRAogxWZyWp21FW+Akkc7pTOKnNiBkrUT1g/k2jD138cyT7McBerU37UjbkkR4t723QB+fT6ynI3VgBOCjQqOhzqTwCC08AiWQdIwDl9fEniQeLeo6mOUpA1nwLjmMLDC0zvczINkqjoMj2yCgZ9i5ff1iPr9KlOHtkrfl5OCKlPX8XODeZXnAU1s6kIalvZmKFBjgRfSrpID X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(575784001)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:C40qMOFZpCLULK4Iv9i7DZ92DZAJFztjz7i8ogWIi?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:PBMkTgLg5t7Nr0vWlQAppVeokkm4oB0DW54cO+0BjKTtNaVy+KSExOUqIZyjn/cFlLphypvNIGtOqdFrdTfqrQWjVV2RI6c60t6OWrRFqGDrYc40JtNZ+AQwc4Syneg86N5hlrUJTbp/kFwlPJNhaOaTVMaQO1HEVjkcOcPeenv35v2dXbZ7M1ahb12YleyTHNtom7e/dCxAkJMar+Ko/eSgrwld8FPhMzqvuD2S9hNu3BtqJzPTBavxULuigDe9oO+0UpsTUSZatGLoml8g2DMMmMtZAdjVJWw3lzFbd/CbyLii/+2b1XXzauJPbGfx7Y6gnry44iEJXO0dhSY5708qYtahALlIi1+SD94KdEE=; 5:PBTorW3+QEhxUxZXKhdx3LS66AhAGXrWFB1Nt5eP/G9Me2XyCrbzHD79xiWdQhogbdp7d5Q+dfOP2qNEdGt6XzNNGXPDaB+w/y3Cg0UW3TTtgpGgr37SjzX2iBh3hEI/bg9scvlh/zERMDtZDEAk3269iY04Im/ezpHmTOPjFhk=; 24:/qdEwsY9n0mznad7FyLVMxRq7qtbPWizRVnrz2pWbxDFLBuBXgzFxbDvoDahvE884ioA9V5Z5D3Z2u8IHHyjSxfYNKACnM/T6pXnmPwNfeE=; 7:jvwo4KT1ncCFFzBKgLER3gfhbl79lxVl3EzZD1qXRtk90Cap0s8NsZHQ3K2T59DVykI5IeitxhcVDm/2rVH8iuvDL2r2ScY1wwcSH4o9spFNIeT+DwBN2jAKY2rRRNTNw4jhcOi/1uryg5nIeo5bI0oT2dWpED43j1Wn5Ra49zJ4+Nvc+lzUtOWuB8MaBSTgwHLq4I+JGwelJ1Pt3e9loqy/QbdUr5ucByXuVpnRYjq1xRv4M0aafHszkIm4hH6r SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:hpYr0K2Cew7z4o2s153igFzhgYhdg44KKwN9p0VtVAVX74sd+/PechLGeu0y8bz1xigdOSTVp3OoELBa5nS3H7kreK6nVhQGBd7mPiC0CnWhOHg9jaCXFKotHF4Syr0jjYsDqtxjlKsZpngh8XT52JNh5ukWheGd+Y4BCu0iW6bzJW3rkG17qac6584gPcVMmj7OIqpi6WMeO8JSCONjn3v8vqOBSU/0YwcCRYjxkgxNxI0vprGDeNPt2Ir6cSup X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:41.8324 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: d814b811-3e06-439d-99ca-08d53ce4978b X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.65 Subject: [Qemu-devel] [PATCH v5 15/23] sev: add command to encrypt guest memory region X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" The KVM_SEV_LAUNCH_UPDATE_DATA command is used to encrypt a guest memory region using the VM Encryption Key created using LAUNCH_START. Signed-off-by: Brijesh Singh --- accel/kvm/kvm-all.c | 2 ++ accel/kvm/sev.c | 44 ++++++++++++++++++++++++++++++++++++++++++++ include/sysemu/sev.h | 1 + 3 files changed, 47 insertions(+) diff --git a/accel/kvm/kvm-all.c b/accel/kvm/kvm-all.c index 54a0fd6097fb..d35eebb97901 100644 --- a/accel/kvm/kvm-all.c +++ b/accel/kvm/kvm-all.c @@ -1675,6 +1675,8 @@ static int kvm_init(MachineState *ms) if (!kvm_state->memcrypt_handle) { goto err; } + + kvm_state->memcrypt_encrypt_data = sev_encrypt_data; } ret = kvm_arch_init(ms, s); diff --git a/accel/kvm/sev.c b/accel/kvm/sev.c index 74eb67526bd0..83fc950bd3ac 100644 --- a/accel/kvm/sev.c +++ b/accel/kvm/sev.c @@ -368,6 +368,37 @@ sev_launch_start(SEVState *s) return 0; } +static int +sev_launch_update_data(uint8_t *addr, uint64_t len) +{ + int ret, fw_error; + struct kvm_sev_launch_update_data *update; + + if (addr == NULL || len <= 0) { + return 1; + } + + update = g_malloc0(sizeof(*update)); + if (!update) { + return 1; + } + + update->uaddr = (__u64)addr; + update->len = len; + ret = sev_ioctl(KVM_SEV_LAUNCH_UPDATE_DATA, update, &fw_error); + if (ret) { + error_report("%s: LAUNCH_UPDATE ret=%d fw_error=%d '%s'", + __func__, ret, fw_error, fw_error_to_str(fw_error)); + goto err; + } + + DPRINTF("SEV: LAUNCH_UPDATE_DATA %#lx+%#lx\n", (unsigned long)addr, len); + +err: + g_free(update); + return ret; +} + void * sev_guest_init(const char *id) { @@ -417,6 +448,19 @@ err: return NULL; } +int +sev_encrypt_data(void *handle, uint8_t *ptr, uint64_t len) +{ + SEVState *s = (SEVState *)handle; + + /* if SEV is in update state then encrypt the data else do nothing */ + if (s->cur_state == SEV_STATE_LUPDATE) { + return sev_launch_update_data(ptr, len); + } + + return 0; +} + static void sev_register_types(void) { diff --git a/include/sysemu/sev.h b/include/sysemu/sev.h index 45b464cc96f5..b1ea3f805290 100644 --- a/include/sysemu/sev.h +++ b/include/sysemu/sev.h @@ -69,6 +69,7 @@ struct SEVState { typedef struct SEVState SEVState; void *sev_guest_init(const char *id); +int sev_encrypt_data(void *handle, uint8_t *ptr, uint64_t len); #endif From patchwork Wed Dec 6 20:03:39 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845339 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="Yr+0KdXW"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVbn2vFcz9s72 for ; Thu, 7 Dec 2017 07:30:13 +1100 (AEDT) Received: from localhost ([::1]:57668 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMgKZ-00087k-GI for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:30:11 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:49989) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfw4-0006Me-M7 for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:55 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfw1-0002l3-Fh for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:52 -0500 Received: from mail-sn1nam01on0054.outbound.protection.outlook.com ([104.47.32.54]:46470 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfw1-0002kO-8W for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:49 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=wfcGUbLLIoam8HMkyWvshq5YncZmKREAD+x3M7gdYac=; b=Yr+0KdXWeTkP4MvGoEhvLpHTDcLXvN2kSsMNUYm44Ps1vblH8uFaMUm7cQyJ6qEwO7ZqoeMAl9lwID81ygQwCV0/EF6ibB2G13ocGGZtK1az3v53iDBUdSOoP8ylMeKLvDrFdsjqKzbFm/0a0AUd8TYPjKaomhfCJM/hJCiTG64= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:44 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:39 -0600 Message-Id: <20171206200346.116537-17-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: 8bbc604e-1025-45ca-8399-08d53ce4993d X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:ijIq98HSbB1TpirjLrQKYynpS9lof+vrlb1zRaWWnSa3hxFvMTFr8J2i8S/1aGmVUmzUzT0o+DDcJSyTSq4YBG4cNjT36hpnu4hwoNJizOUq7GcHj5PvDHvsXAtjy0VpF92zUUe51iRyQoCjs6RETNq0wrXVqlfj7NuPZ5oHHYUvMV9Q/lii2dtddYH1BaAaWtBxsV6rezWtAI4363/MFMkui/c5L9idl4Zt488mHpT3R+Gzh6lKgstKTXWj7KTQ; 25:aUQRE5ppIGMtV1iU3BZynBTXdFE6SCxq1y1TJUuKNKA6nP95pmGHOdWqiaJ+JnGoyG5XstXltTsxxK7l9FYTIMbcK5Jn7gf/V8MDsHoI/CS39FtadqkhiBg0QZ4aAuz7A765HbZWRVhYY7cE+RwsfBRPZMqe+EdVj5zgzPlgNwxkr2i0RfJ+VqvCvFNBF5DOPv0NJ1YGOmLtTqmuM75DAcfTg2cgT4Swt6rZDmuHvQZ2TgZAzNhdurjk1RKil7hyZ7XxLI6ZuzhwV1xLF0YIV17G8SAkxJr/tCxvxqWir2aCJB3A7eaEkS4YzRG1TJThMe0nzTs/Epvk+KR1OB6HDQ==; 31:VSOxO1uglJj6lIHz340cuwuRxKGCt0eJ9nesVjmpapy1rzTPF937xu4fRuKTfBEUVzj/EnTwgYmC8upNxf3fOcf4KxokmCbSZQlG9ee7Jube1QekJCmxG63kcETSZhr6L544Z58TGNAOUKV0k55pHla9PxFhTIx3t5ewz9ixYX1OBQeH1zKskG8yWa10jB9D81MZRoI0aNRZeI4bia7E/I8F0ojxTINZqjxVJdXRhVo= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:LVJ8BoJNAd+Bz8cnP+9AngyO9YY431Tgvt9HI/tMRLRvi7k05qteVf2vobhx3+JP1juDlLO6zZyk45v1gfzHS5QYkPae1kXXBEGiH7zYe/A81i90xLUvEP0NHn0ehhOrjpjfm0caXycQKgBsFjs/JYAXaGhOQ6fGuryT8o6aa9M0iz1Koapgd6PBYFlH7kLFJF0k5M/0nkGA7BuFI/aROgECfPuE1HTbII4uUviZ9fQ52HxMA3pWkKxWSG8jtFouRJYsHB8kzwhQNVO7p9BFb8C/TmK0eBVAqQpSRLzZBLJeoRmNOgTGx3mGQmCHOlAC X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:1XKjLDhri1B19MZPSC6UMlqzy2RdfUYMgEu188pwY?= dL5pqx/kH8tAGS+oK5drCArCfrQrFnl3UX6+0hTObr96QpRgKnOXLeRsRhrldCKC6v+22U86EPMrSpr1HyHbHbV+SgUyhtiKoq1dklu2sotAVfdoRG/lqHMG0VCJZEtXVUqb2SCHMnnnkGJo7nUhVJ8rh+KNJfogds/Y/qH66VKDz0Ur/Rnl7afEzE2Z1xItxLukGpq/k4Y3l9mESASFoNrRTFePMebThkNHNWqIFpbHeGfLE4iHYF5///ho32csCNNxkQTEIfqkFUTcyqFPXUYPykIwcKlaxiiWEK8w0m8G+HKRu0Kv5J5vaARvLsXmeX0k9Dl6oxe945muXeF+hLt3Qisxt+gtLExBYpDNfgLZkDwqxPsCW0xR9wqEOduRLSN9YXlk8SP3iIJgn43GrTmuUIWk+DrAlPA+Cb4R1RX3hLPFx2V4nfg2/3I3nyzNfjJbkZGf6voNmVaLTY0FDA5WuR7rr4GGqz0BZ8wEcRVwqxM8+xwciogGR1BuuttAZ7POAxJ5BvIN7hdJxk1WRpF02qjKdIUH4E2Rizsln4q6Hmimx3eJwRkq4kfrh017qfiecHYiKi8KUTPoYaTdiNFt5O+6zZbXC94UBKq5I3Qt9RyjJ0xvB3Bjdb2Bgub0Uk8uhgRGSr3YR8zTZ4X6CDVxq+avvBHtkP3eAGRalqx9i3iHVMZOXa0aZ6c82rGGAakIRxAM1jXpmzQsDCuEwS7JFSLjjfjCJOYL8yYPnz3zxt6IhmyXBjZEpKDY9d/KhTMco6ThmTbx2BRPtVsDrmFgrvmbEH/76bSQ898+zRl7vfeRXxbHsZj7cjbHHZUu6vd+Lh3e/VEhH8jsfLWFZ6ldo45kG+4tL4eTP4kdG9iGBzJLqS2ZluZGxrsGmu3V60Dmsm3zli7H4AuDorOEgvKhkE1m4X84viEHRpVjSV0m4xs4iyHW0BNC8Gk/t5faZlSPthdUC/PJ8iDn16O8nSxnFp+A/OZ0h7grqnSGOrNgB5w0VHui5riBHGfZSoRfVJ6MTXpM8bMH8BIYPr3JOgaz6lvBnIpeUrwt36GyqWVMbB9DNSZW6LPULzAoDdyRJ7P6LHEKq3rA7ZUNrAFRCZzQ7SekcWlC95xpvIOugtdrWNXg2h2mHLXuUB1+C0prYiUaSCMevbS9EhIbfd0TYk6G0/tc5bEpQ/F9Q1MnDa/kQ== X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:gvls5EdZAF5L7luKIRxCE9IBmqDFiAQEkFPW134JcN/bnN/0G4+gb/oVfvKf5OjmUXwX0dFxs4dtR8g8OCY18/RmkWcNtK8soGv/2AVdAg0X/UMVvfWYCPLCj7cUMBUTNYbxkWQtlEmhCJ1sFMwm9jNsWJwk3pE1xOgRZvyci07/DDhx4a2U+t+j1eUXt4H8DaZ/Cs+JNIxfkWDZ5hW4DB+pSwD9Yv9IviL0jAVld5Mmv7chK5NrHz84EvqQ5PpCyQS21RCMv9yJg/cI0QydMyt1GWBLw87VKTjWJlaJsbFv7TUJpRgffHaqXiN8ZjN0XcVvFsuHLzASVLTh6Y1+AM+NHklTyahLDkuS/MqYmDU=; 5:LPKrbwJe31YXRHxEY7GtiXdxT4/NQOp94pqu0u+RVGqE/bPxmSUqWZnF643F+i0Vl/F93JulkzeynTkKH8VSDFiqjoBI29j4XcmP+OFlZcUzynZEXE0atTbc6x41213Nsi6KT48X7ND7jLTYzRYha+ssSLpByBDRufDDBVbAMAY=; 24:kIc5yB8kp+g/3bhjeNvSxTFgO6pq4mDa2UcLsM9yHnJkKUhBdVDIna2RsUuDfluOq8WgMv+vPAWACN2PbRBqBYzXh67Z0oSjtlhCi6UKvqY=; 7:I11rSwgJpGW2XrXwQbxKqlGghrobBatRr7sQ/iQw+mWwJt7mSPGBF4RTicpq4ik1rddqFjAuXKmDBXbB5I2zln7efAJHm8Sg3tKg95/ILIVh/ZY9CVhlNOOYHGQ8S628H43tlhRvS3K88/UKctKFnLpYT/CCnfmoFG7oGzKkYqTgmR1bzsCVIbre1KAvIUMLZcwi1Q+Aic8+Nli1sfWzDy21J4ikuzdg8yeJYCAZXxksQgSxQZCn7JM9+bB3roz9 SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:lt1hNU78S2mbDrecQqoi6GF+YVVP6qeCQZVvzJM6mDrqeu/02Xl/8HYRAn/cO3+dsZCnwbvg7HoX5r2jv/raLuwvk5wAhhBZ1lMvbXelZYe2+0vY4FqQy+j2hO2no0uedIxv0SQ8nyPZQKjhNd/OpDnuzf7wjWrUhVFTk+smJ3uwtPCtUskpzRP4z/q+zbDubjkfVyQHZn244as/Xus32zNEOSNVPj0wQgWpWXKyskJY6h+MV26B7GVfL+d/R98n X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:44.6917 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: 8bbc604e-1025-45ca-8399-08d53ce4993d X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.54 Subject: [Qemu-devel] [PATCH v5 16/23] target/i386: encrypt bios rom X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" SEV requires that guest bios must be encrypted before booting the guest. Cc: "Michael S. Tsirkin" Cc: Paolo Bonzini Cc: Richard Henderson Cc: Eduardo Habkost Signed-off-by: Brijesh Singh --- hw/i386/pc_sysfw.c | 13 +++++++++++++ 1 file changed, 13 insertions(+) diff --git a/hw/i386/pc_sysfw.c b/hw/i386/pc_sysfw.c index 6b183747fcea..8ddbbf74d330 100644 --- a/hw/i386/pc_sysfw.c +++ b/hw/i386/pc_sysfw.c @@ -112,6 +112,8 @@ static void pc_system_flash_init(MemoryRegion *rom_memory) pflash_t *system_flash; MemoryRegion *flash_mem; char name[64]; + void *flash_ptr; + int ret, flash_size; sector_bits = 12; sector_size = 1 << sector_bits; @@ -168,6 +170,17 @@ static void pc_system_flash_init(MemoryRegion *rom_memory) if (unit == 0) { flash_mem = pflash_cfi01_get_memory(system_flash); pc_isa_bios_init(rom_memory, flash_mem, size); + + /* Encrypt the pflash boot ROM */ + if (kvm_memcrypt_enabled()) { + flash_ptr = memory_region_get_ram_ptr(flash_mem); + flash_size = memory_region_size(flash_mem); + ret = kvm_memcrypt_encrypt_data(flash_ptr, flash_size); + if (ret) { + error_report("failed to encrypt pflash rom"); + exit(1); + } + } } } } From patchwork Wed Dec 6 20:03:40 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845315 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="ej5oD3cp"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysV7g2L6vz9s81 for ; Thu, 7 Dec 2017 07:09:19 +1100 (AEDT) Received: from localhost ([::1]:57515 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMg0L-0003Ko-7c for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:09:17 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:50021) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfw7-0006TQ-22 for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:55 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfw3-0002nB-Rb for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:55 -0500 Received: from mail-sn1nam01on0043.outbound.protection.outlook.com ([104.47.32.43]:55952 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfw3-0002ma-Ix for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:51 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=gLaufY0IGAyZILXufHqDBbSa6U3gKGfYibvcghlu/2Y=; b=ej5oD3cpIXkfoYT9LniYZL6uF8Ltxim1IN38i3lDHesIs0lunXnYUpVhXr+lhVldk5NgE5M+j1MhsBMcX8PvKvBKKYkyJoDUF6wydPib9IQBOjknOtcZ01Jq4AdhmCZ8XQ6dT1ZNJ1aRnEuc6yPOiLNsLbojQffaZnUBrl0p7lg= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:46 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:40 -0600 Message-Id: <20171206200346.116537-18-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: d6b458f5-78b2-456a-fd1f-08d53ce49a7c X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:8wHkoqDHtcK4J34VHAoweGu74oyU8KB2RAh6xPXFI27o13fqqWZpAZyvN+ix82M3XSkkBEX1992NZeVN2L5hy6xhEmzCbwhUw1NW87wJO++8fZexn879sEMhjXroIRry+lwKQ9b5NGRECe0AoMLdne6s6R40MFoCMozIA7zUVCv5OvJ1AOtdPCZdvcJ3fQXiIyzBzJBGLvN/jT7Y6+FCmTukozpFa+qGOoS6c1niv2M9DWR41iL+Ug1lznhMBHqx; 25:jA8mRfUQ0C+N6IX0pyjs9Q64D2jnnbvRYGheVUwiVZG5K1ajKCcQgK4EeBxw9hmndlbcuaTNV1LgEpYG5FJk51z5I+EJm0DhN6Po5vZXrbbk4ziXNFnChlYguGil4eOvPG0JdhkPaKkBgtd039APmmedik1G/7Bstp4DQRwETG0YtphiQV7Zj/1Rcy9yofNjTuN0stSiNjhH8LYwNFT4XGFDhKT6h/CEg6ZS4PJu8OXOGZPSulel6yBTT2mTylPNp0YqVJZhWkKC6ddIXcLK08kBWXSBRDwArcjT7GTrci4Mr4sYQDGq23o9LX7UVs0vU1ncGZFqcmTQEc8Z5D8Kgw==; 31:EpJbW9uzsnWRMtf16CD8NFyOjEAjl0vnxIYRoKPP8sWo0x34RKWUsmh+BotFAQ5FJL3QxleCbW38l5JXYqTQYXTkzNo7T1atwtvBiyEqr5VRjVpgouCa5OhoR9y1KJreoldYcV2q0cg2RpfmI8Y7tUr8oCcxgKEr5cJSqKXiENYpx/DcME56Ric+Lzd4hUjLCXq8gG2HxF+perGJJwxO5MRcXUaQ++rbGytbBrVwD/w= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:jlS8R4vN/+7yVrNvkKslAJYze76rZ6EJp8tet0c4cyYCw9a2WPEmW/Z7CEXFbuJqFpaNsBX+XixQ9rO/GRVvisW+DvZ0w72xi8nRYsm2qm4fk6Y40y35IObLf5ba78vceLM4QNiXW0F89ZSsixpjKdoliAC0yL0UbfroHsjbn6qHG8VjHdfHb+nhwvXIXqC1lkXnSeut5TWlCYtbHxPXlCr5ivu98Z+zwyR6utn+N0r66dLmnO5VCAHzAtqgKP0eqgplay6UkUQ10oSuc4Ruue6nZ17reE/wI2HXoYjmAuA8UbMuzD3FTRny20SD3BUR X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:8sCzBoWu/7I6guhU695cN+MWmzn/WoANz7mdBJWWy?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:QEbTCCwaWL2Izm8WoZOYpf3WRFy0tZ4nrRNxYcralt2rsynHheiDhfV979iSyGjQai/dnVKlz1avtrCf48Fnw3d4EaJv8tLFzSLLERoAWoMCCPPeJz9jLgIdTaTg/0+I6oPqzrKtJ+UECLB6FPYlHU47kvh9Hk1LSGCSm94Zhh3oJGD7dk8aCWws5+zyfE94a7fs3/X7qXQMjrDr7TdLQeAWJ8Nhf7MAxFOJVrkRssUCiTlNfM1jhvY/7cL/g3Rc9xNo6q9Curbgs1dBJlHopzFo+NwYEFIcTPA6ecRhXlpsO/r4CKx66xnaOJ8nAFJOtjT8jNuAyntmSfTcjkwFAHuG0x+q+VQL+21bLUds9O0=; 5:ltlPdhOA+8Tb42HhWIVPvuQNOl38i2WY+zkEG+Sw4ON6oMIE+1lYmftp2bVImoCIBC3aVC3upPJHieNBxw0NPBXQ2HJtDWyXBmTRLXwotg5tTlZA4D+kU16xeV11p+UBssh5LAAHiNJUIdY0NURTsezuWZleJkswdlXf4f7Fs9I=; 24:pbhlZz+hMaeimi+cm5tXWUPq3Gm61t4supdKK5b6Ni5Zvp/JQdLoukEYn24S7aUjEYRsccDyD/W7XsoiqZ2TbGyH2pwrZEcENdNIK+z/0cE=; 7:etzMkQQ6JlMDxyBEHtRFlbF3Y6BoRLqUTsKIoWTs4w/w5ohO+DNcUP63cmhfO6h9hWpNbluXDmUpOM98EuHTEumQPLuVkpWbrC/t/fgkDBoA6r1Cj0+VIV8lL/n8q7U5U4sEphvgqMZQlj/hRib4qGkBVYKUkMqQlWg5SfkMj/x7HCWE6gApByOeQQo/fJlSpPXuYMyYIvMk+x3fo77BwkoraY3E+7AD3Zm1W8Cu6dfE/X/bnHtMOVrt1IIgmAE3 SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:0clf2haJ+OPyZqkZPdK0ILEwjx2c7AIWO1j1xWVDFQfwb0AeDXj5WE5GPUe1EPui+1RYyWG8VONMwG9TNVWaipE0d2PvtGUIQ8W+e8sjzEmMe2rDw5gFdQp8qPvQrsVUs23B1//EHWVgr1v5mbR6nPOFyACHeO4Rgaq6jHCjRsCtqNwy85OlV4NQgfVRIOpT2OO98trrH00y+Pwj8kPM4PkpOp5gQ+zPPweiIrbm6+PfOWgCFf458LecqBOj5g/B X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:46.7229 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: d6b458f5-78b2-456a-fd1f-08d53ce49a7c X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.43 Subject: [Qemu-devel] [PATCH v5 17/23] qapi: add SEV_MEASUREMENT event X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" Add SEV_MEASUREMENT event which can be used by libvirt to get the measurement of the memory regions encrypted through the SEV launch flow. The measurement value is base64 encoded. Cc: Daniel P. Berrange Cc: Eric Blake Cc: Markus Armbruster Signed-off-by: Brijesh Singh --- qapi-schema.json | 13 +++++++++++++ 1 file changed, 13 insertions(+) diff --git a/qapi-schema.json b/qapi-schema.json index 7eec403cd34a..f63659eda45b 100644 --- a/qapi-schema.json +++ b/qapi-schema.json @@ -3203,3 +3203,16 @@ # Since: 2.11 ## { 'command': 'watchdog-set-action', 'data' : {'action': 'WatchdogAction'} } + +## +# @SEV_MEASUREMENT: +# +# Emitted when measurement is available for the SEV guest. +# +# @value: measurement value encoded in base64 +# +# Since: 2.11 +# +## +{ 'event' : 'SEV_MEASUREMENT', + 'data' : { 'value' : 'str' } } From patchwork Wed Dec 6 20:03:41 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845317 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="xCTy3qMo"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVBq5Tm9z9s72 for ; Thu, 7 Dec 2017 07:12:03 +1100 (AEDT) Received: from localhost ([::1]:57542 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMg2z-0005iT-PA for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:12:01 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:50052) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfw9-0006Xo-8x for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:58 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfw6-0002oV-1N for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:57 -0500 Received: from mail-sn1nam01on0064.outbound.protection.outlook.com ([104.47.32.64]:50906 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfw5-0002o5-RP for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:53 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=ZiZEui5y1oZvrOK22W9A0WIK/+wE4Fp5Utif1K7Vq48=; b=xCTy3qMoYOr+wBSO6eMS7P+cAOzZE2bS/h0oL4Knw7tGlALixMLFmd9ywMuxMZgr1b2P/Qv6PXOkIey3dWOzi8X9ikhxdmEQCuY1W+jjja87DeK3mHw3Y7uElDY83DwSPlVDtlVkyATwzWTwi93BVxR+8qI5wWVStUnjjE7zVFM= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:48 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:41 -0600 Message-Id: <20171206200346.116537-19-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: 4438a429-7278-43f8-1451-08d53ce49bba X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:FINF1IH/YtpNjlx830nXOy6Hiu6cfGwgmIGqsgccZeX2t4dyxK0eYofE5HJ9uxiGDRmCfqoqvXPpS4CeEcaUNBZMzGU9mpq5FwvSbWkdAeEMK+wkxgA7AIhh6optbhnO/eDxl6+Ri1+nMzWa3PuRFRnaCiF5ZEPcW6GMnASStZA5ZXG6gt/pcS0B6H0+ZLLhLH99ykirGVrKzwG2XU0YbaYOr8MJarNhJHlbq1GXGktqYLL4+3PWuOdsYqDiVj+8; 25:jM1evWphOkFGrYJCT+HQOSXNLztScFkCyvd1eWxsyJZeT5UzNid15RBwC0ruJvtR8sp2n4E3kkk1q/eFMXy7YVQbRA9iWpHZhnqWPAb1hgElkvWfPfs8ln+5B9cs8qRBTSPQ00irmHUOa3Gzo+skOjfL6aUDCtyumthbhHKw6/RvwCxoHjwcd0e5pJy2wifCToWuGSt+xEHwINvceJP6JNlpkpiR6DQhejXGNhV6h23V+f1+7GZgB6ZHHg7VvUKzqFaJEyE2LWCfXr8i9UslZI+ig2AsPMvKgklnrEsX9IM5CUn3Bvxh9e/JfkQ9Yn4TBryPHnGaG7+aL5yE1u8mUA==; 31:6YHC5PncPXmFF30NVcvfHgTP3BMo3QLlHVZSvqqSyk4cAjCpQOWey04Tlzh0T6Jwe4fgwRkl6FrQ6hxebzSZZrmLvpXi1T1KnUgDm9olSKv3pIiO5oWpVFvrBajpz4AH+FtSmV0bgrxDs5PIKbee0mphmJIfDPob17b08e3lXbnT+fE5jmXYYvYdBfH8DBC4+7whzfFqLmhuwf2U2v2DWkMFlS3uLxd846S7My0wLFM= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:DPqsD0KcqKkdMb8aliEHF99/joXKBD6IdndpwgRUKTD9/oSX43BE4hUmV6Bd6eWi4rJ/Ag9nWwED2MyhP6BWd7CYDlYpYJ34fdZNgZJ1h620RIriGtqjB/3wC2hrRMocs2qfjL71IYLnrxu9dZVL1fZDUaBWii2Vou4aqURaGj0ibya+aAlm0wnCC3u9z8Lqf/C7wCoRVSkmrirU1FlMcuSZaxh0iDePAX+EKDdKf42ijVNpfCuWGCg+C1e4brwQwOs7xwP3pQipZmP9HHFKCNlYhoEFAPXRaHloymMJmm3nChAONXxoxVk0HaOTDEthUOymXa+Xd+pbcY1rZDIA8+FlXlm14dFNg2ApSifq+MuqpDTO7NEPAjoDzlBzqdjDZATh2yJGxrIbVtnxC3qP1sS6tOmwlhD7d9swhLN0nv7EffIOYUkRr6iPx5T5t1XwhyLxq3L01DyckQi8+b0oh2B0E0nT84CIxth0L8jO0uR90tc7atBcd6cSJd7XySHS; 4:MbkfCKKr2O/11MRopasA/hNyli2cenhPI1ZddASyJ3cL5z4dSD0t4BfV2qJVFTKDnUfqp9G2JfLSwe3hyBNEl5zLOgVkJXXPe9gJjvFHiuXlG8ymvYBzzc2dfYizUtD82hp08Q1wONB/b6uzzhI3lOFiXeWUhfj5eUYHrrEx9m7jwbMRba00Res4N1CnZWHD5yrb2KzX97a4pw4qX0//woGs+/BBrn3RmBZ9QCllpOW2EW9REUdzAT56goM93BlHBQ0nzt1mV2NWjU18Qoo46lcsUNVnVWOnlUIWYBMiqJtl7w1EsxIfZ1SNKhhpehC7np5RiKIWOV0WdTO5hZ1Gjw== X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(9452136761055)(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(575784001)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:hU5TpdDyjukhZqjb5eqedXx33NE6iOsnqZP/J+k+U?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:ok7yWCXUL6qdXKZLtI3EpikTzrgKAuFU/4RC+qsC85PaMW2un4gu8Q767R/e4LtcshW4vj45yZouLaC+QTr4GTYvIhNzHwRIYbfwMQeXY9hbO7feqke9gf9oOjIgn8rDg2h6Sy6niA9lNbQt/0uMJvcA7Otyx68FFZZTEjQT+R3Ux6v3iJC+ySwM2GL6QM4lSu4T3YJAS0ZEF4uWd9rQU5NwvK/Zdgd48IZuU9flnvy/t+2aLTkm1YKo4q9NWMADmSyp6Q7k0zdLlUIilQN/hPEWNptnHqgOdcKCRDiYaT675m2V1x9jRfISfJ8A+dbRdvB5Z0ly4NCKbgtgHUQc/FaAPz4Bh2rBRBATmIF2G3w=; 5:p0n+OKRus1ZD9oM0pQ7ihBhqzSBSGADOzhsCtT8Nwj3MgPf0eBU4xujgpDZShbl4NS38IRhSwaCO0hGfnjhWsy6nAZEkiLvyLHjU7DaZfZSULlUK7Yavfc6yjFvr7iOj8s2kkCH+FkG4RYI0u+ozOuaK/qXRhup24v1OB3dqpGc=; 24:1IQHyvroPvj3J8A/ZdPx7R8sEMxUbm6WtXbtAkx3elsj43EXzj0Py1eyWxY7BKt9ZG8P7VIzkKP25ZumEnRR7pbgGLVxZR/koEePaBhzgPM=; 7:nZ1O7DkmMn54Un1eS6C8e/KNbiE2NWjkcWZhJbbWq7PKM28haaFu60yyT36KgX7MXXzSQFQHQUD85BcR2beGt6ClkhrOy/fXT8MzIQjkwh6l/MoMXXPm0UC/C914/1dg+m8lK3w/2tyRJzt8L8hNv/KhJUzqrlHlNeWIhTkLdBR8/+uewriJHiiqAJdX+sHTzRPLjbEtxmPGQIcDAUCXJVBF1KxrxLIbo+UdkkSmrmk5kXDpTcuBusMWdKCGM5Yy SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:j623l+/tsAxm34/Ao4pCQhfVM4J9VTcfoMWIFVAxAJQuDOQkewC3ZANBB3gcdU4UE8oQO4ICTVTWsiHMBhI9WmfSLYefwWqo+eUG8rB7/4RZJONiIGBeg4NsjmbXm75vRtFWmByAObHVPKDrDxdUZmroomdewthvauqE0aWHvAq4eUdYTQhCwQXg99hM09J3GS2xER2Maob+NWMg1cv8UWFHZyihhn1ikiJUDAD3p8Js6TRAS8bgJdpq39qvlc7V X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:48.8166 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: 4438a429-7278-43f8-1451-08d53ce49bba X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.64 Subject: [Qemu-devel] [PATCH v5 18/23] sev: emit the SEV_MEASUREMENT event X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" During machine creation we encrypted the guest bios image, the LAUNCH_MEASURE command can be used to retrieve the measurement of the encrypted memory region. Emit the SEV_MEASUREMENT event so that libvirt can grab the measurement value as soon as we are done with creating the encrypted machine. Cc: Daniel P. Berrange Cc: Paolo Bonzini Cc: kvm@vger.kernel.org Signed-off-by: Brijesh Singh --- accel/kvm/sev.c | 58 ++++++++++++++++++++++++++++++++++++++++++++++++++++ include/sysemu/sev.h | 1 + 2 files changed, 59 insertions(+) diff --git a/accel/kvm/sev.c b/accel/kvm/sev.c index 83fc950bd3ac..c0eea371fa06 100644 --- a/accel/kvm/sev.c +++ b/accel/kvm/sev.c @@ -18,6 +18,7 @@ #include "sysemu/kvm.h" #include "sysemu/sev.h" #include "sysemu/sysemu.h" +#include "qapi-event.h" #define DEFAULT_GUEST_POLICY 0x1 /* disable debug */ #define DEFAULT_SEV_DEVICE "/dev/sev" @@ -32,6 +33,7 @@ #endif static int sev_fd; +static SEVState *sev_state; #define SEV_FW_MAX_ERROR 0x17 @@ -399,6 +401,59 @@ err: return ret; } +static void +sev_launch_get_measure(Notifier *notifier, void *unused) +{ + int ret, error; + guchar *data; + SEVState *s = sev_state; + struct kvm_sev_launch_measure *measurement; + + measurement = g_malloc0(sizeof(*measurement)); + if (!measurement) { + return; + } + + /* query the measurement blob length */ + ret = sev_ioctl(KVM_SEV_LAUNCH_MEASURE, measurement, &error); + if (!measurement->len) { + error_report("%s: LAUNCH_MEASURE ret=%d fw_error=%d '%s'", + __func__, ret, error, fw_error_to_str(errno)); + goto free_measurement; + } + + s->cur_state = SEV_STATE_SECRET; + + data = g_malloc(measurement->len); + if (s->measurement) { + goto free_data; + } + + measurement->uaddr = (unsigned long)data; + + /* get the measurement blob */ + ret = sev_ioctl(KVM_SEV_LAUNCH_MEASURE, measurement, &error); + if (ret) { + error_report("%s: LAUNCH_MEASURE ret=%d fw_error=%d '%s'", + __func__, ret, error, fw_error_to_str(errno)); + goto free_data; + } + + s->measurement = g_base64_encode(data, measurement->len); + + DPRINTF("SEV: MEASUREMENT: %s\n", s->measurement); + qapi_event_send_sev_measurement(s->measurement, &error_abort); + +free_data: + g_free(data); +free_measurement: + g_free(measurement); +} + +static Notifier sev_machine_done_notify = { + .notify = sev_launch_get_measure, +}; + void * sev_guest_init(const char *id) { @@ -441,6 +496,9 @@ sev_guest_init(const char *id) } ram_block_notifier_add(&sev_ram_notifier); + qemu_add_machine_init_done_notifier(&sev_machine_done_notify); + + sev_state = s; return s; err: diff --git a/include/sysemu/sev.h b/include/sysemu/sev.h index b1ea3f805290..3af945935b60 100644 --- a/include/sysemu/sev.h +++ b/include/sysemu/sev.h @@ -64,6 +64,7 @@ enum { struct SEVState { QSevGuestInfo *sev_info; int cur_state; + gchar *measurement; }; typedef struct SEVState SEVState; From patchwork Wed Dec 6 20:03:42 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845341 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="LuvBOGoc"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVf12Ls9z9s72 for ; Thu, 7 Dec 2017 07:32:09 +1100 (AEDT) Received: from localhost ([::1]:57679 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMgMQ-0000uD-Ci for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:32:06 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:50083) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfwA-0006ZY-Vw for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:05:00 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfw7-0002p9-OP for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:58 -0500 Received: from mail-sn1nam01on0076.outbound.protection.outlook.com ([104.47.32.76]:59904 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfw7-0002os-HZ for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:55 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=nkZtGwqEO8oO5Twon/Xz2ETQ9fPJUoaPNHz5i0s8cMg=; b=LuvBOGocKgbkqrqGqVjIZqkFD5PAYtBZ15993mL93o1JSkrF0CqnOpKVNzCvsLX1ho3nOFuAIZyYVnIdy/LCrPiCA8KnjhAun+AMdVrt6B3CjnZm0dk88JT+zumDG+Zova6DDzL4mzLEX7n/xYMOitUAX2wS1YoSpLxMec7UcoE= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:50 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:42 -0600 Message-Id: <20171206200346.116537-20-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: f87a0a53-7078-47ca-f031-08d53ce49cfb X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:lEbAXPInPVwxgsTPgolDkmUQEFCqAL0wlSbS6L4TzsdUEprVcJ/hGRte8q/jSYpU+vvPIOYTYbzezET4o3R+rOti45Wug9hQWaTqWIibbZlEy5E08+qKKawEsFIEdajbktVTZyZGXegQHVWHBQFT+M9fyER0B5kQpswqRw9P2mXqLhXyzSoQyW98wMK7Lg3+mmvW2I9kEYbV5Od4TDxKdPoqWMfs9mMDq12RjPdaAPRekFhJPS1avYfhFQ4931gb; 25:NhbPJKZEF8OaKw21RhL6OmoS1gvTD6fFZ2MJH7vUoVF6vtZG/Ftbg79MsYK3fxk30718LLsFd7ikpGpp5VzI+pu39XQfhs7NHPze5RxA9Hg0qAMCIQ/v5hIkUSlmI+4VeQbhblLqhIdj8C+F+eonC06getxStTSo9ip+5W+8kgWKnqtG/1/+6NtKV7fMAzLqssf7FMI8tfQS0jkzyeTwVmiCAuord7Mff+kOo31IcH67qDJFGcmz7g7llWjsbBWyPa8qq5PcH2gYCjfb2moMWAmB/EM+9kJDXovkyi/f6Y+IaXYZgE/0qDXvEjtdNPUryBk5+zO98FRVAI3XfvfUOg==; 31:PGnK42Z6GKr66CtalopionQn9ygOcBCXKt/WWmmyODEkMBhKgbti1YLs2iOJoBFxA4Vs5T7ZI03L6BtQ3oBYsVDdfeg5zEkXNyEBKiX0NAJlsFk2WklZau2+haJ1sC75nvuTazzphRekBinjw1MuO4jQde5L8KoDkV6sMCssMIaIxIU+BB1nAKeFn4RG+f6tuDw6LWWL6tV1Crm5XcNGnKbfy/a5HF2PHP34odFY5BU= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:fJyXhq8df9AkoGr52BUxells/nwe/CkJV9YNj3ETOLWwnuBeryHpBZBkoZvQRcSd2OTJen/FMGHa/7P/JVZGY/vGiKMyAbQkRLc2lQw7r+qvKkhNcY19MsTcFs3gsCF8GAueukMo78a4WXmXt9g1bpb2pqvRZNl3R9kU+wOmxaqgFAdh0PUovoLqJclvQWyg9WRbOKajtqDWvnCIPlmZfkhEX2lVNAyFfGOUUiTJIsNC4FChUg/qco0vxvtseLMD5ywFOiidFmAmUEF2qB8w7jDxPFVhRnw26SCcAl/V8S1B64vAdvVRyfJJ8UuJH2tZfP/Jku+jfvqpWQbl2Y3nog== X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(9452136761055)(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(575784001)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:h555VPRWlA1//NVni9nVjS2Nn7QNaXiV4tiDkI4ra?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:Y5+k8gtprszENjZmdvW5+4TJX1vYZRqkTw9QmO9JrMML+FrKTyvHA4Yd4pj98BLQenHa9f2H8FxkoEnapi9RvYT1oz2O/hY4e4iw5qOq5/3RYdPHgCZB/hbqMBtvjfJE3r5y6cMrnL9oBAVGyl7pPaIVxq4JPCCPKUCKTwBjYHNDcGIZGLS6vV2GMAaqCxVGcO3zWQ/Mu4oA7QzL2h0k5K+bWq0zoMwrnfvHlkWwsoLQuBLwFgcDuw0OBBPg5ey4y93NI5t4tG1uCJvmwKKVDjsjjc7R/vU82VOsuhHv3JXWOEYOjv63UAdNTkTpLhC8JCLk73WGZTQ4Z37s6ckYQf0Fo/NMS4ECoV3KKjG1CGg=; 5:sCfqUBsePrh+kmvZMJ3UVA1aQOlYXrl/q3qWyRmfQRShBHXzJS8gEuJ1K2NMptoUUp8q3qXas6IlBQdIzK6wqvt0Rsd6y5NXswziIq16ElVms2GVhuRVPbOhNSztM2HkHIrrbuQrEL1y7soPQ8zV5EQ0coCoSFcHkaPFE6qYhNQ=; 24:YrN7j+9SBt75mCC0NpA38ohE6TZN/izNs+VdzsgaXWsQaLDabct4lHrwvdL4LvISxuVmd/FqB5HHgaRc/cKUn6niqvs9gJQ4Myj6jtjSEeg=; 7:uAvnPHmHrSeuHUWe6JRM2SWIJjlVkh//P8fpQxbWOV7xfDDZOMZhhdTQZTHFtxhIXUbUY2wLjRtElFYX03P8foK9bxeZTPDQZ4+LzPtVHP53R8/U9/q+9ujakmpkyp3S3lLkZAGpHSpLtZcK3dqladTS0HId0a/1zX8CZZoKRWNvlVmSl8pygYZ8M+UYNjXAJKgLqSAxuyJMhYHu/fAiOipBRN3CxFqcXlC8u+5aiprUqLVzD3/qiUqiSsKPYrUI SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:e3eUZhG3BPsmJQE0qBnL5MSyo4xkOwv2phUBExoPVQEI/hj4XWrF/Qp2Z56BtX+yBIjCUQjJH7C3D0qUEbyKnaKQiuBD7aacDn4mPQZpZtojB3j5MDjjyVRhBrHeIdJtUCFn6NXMN1z20jbw5mMAIx499VHNtBcmdsG2eeFOBNBQkEpd+Z62rKzOLBgI7qsYeS8qXmzWNMB+JjTVLdiWlH+yyia/IBSGd+DDtJQF/TixhtlBMI8Wo7Cz4kGKutWj X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:50.9416 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: f87a0a53-7078-47ca-f031-08d53ce49cfb X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.76 Subject: [Qemu-devel] [PATCH v5 19/23] sev: Finalize the SEV guest launch flow X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" SEV launch flow requires us to issue LAUNCH_FINISH command before guest is ready to run. Cc: Paolo Bonzini Cc: kvm@vger.kernel.org Signed-off-by: Brijesh Singh --- accel/kvm/sev.c | 30 ++++++++++++++++++++++++++++++ 1 file changed, 30 insertions(+) diff --git a/accel/kvm/sev.c b/accel/kvm/sev.c index c0eea371fa06..fbbd99becc0a 100644 --- a/accel/kvm/sev.c +++ b/accel/kvm/sev.c @@ -454,6 +454,35 @@ static Notifier sev_machine_done_notify = { .notify = sev_launch_get_measure, }; +static void +sev_launch_finish(SEVState *s) +{ + int ret, error; + + ret = sev_ioctl(KVM_SEV_LAUNCH_FINISH, 0, &error); + if (ret) { + error_report("%s: LAUNCH_FINISH ret=%d fw_error=%d '%s'", + __func__, ret, error, fw_error_to_str(error)); + exit(1); + } + + s->cur_state = SEV_STATE_RUNNING; + DPRINTF("SEV: LAUNCH_FINISH\n"); +} + +static void +sev_vm_state_change(void *opaque, int running, RunState state) +{ + SEVState *s = opaque; + + if (running) { + /* we are about to resume the guest, finalize the launch flow */ + if (s->cur_state == SEV_STATE_SECRET) { + sev_launch_finish(s); + } + } +} + void * sev_guest_init(const char *id) { @@ -497,6 +526,7 @@ sev_guest_init(const char *id) ram_block_notifier_add(&sev_ram_notifier); qemu_add_machine_init_done_notifier(&sev_machine_done_notify); + qemu_add_vm_change_state_handler(sev_vm_state_change, s); sev_state = s; From patchwork Wed Dec 6 20:03:43 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845342 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="GfmdREak"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVfh15Gfz9s82 for ; Thu, 7 Dec 2017 07:32:44 +1100 (AEDT) Received: from localhost ([::1]:57683 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMgN0-0001Gq-89 for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:32:42 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:50133) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfwC-0006c2-SL for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:05:04 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfw9-0002qd-L2 for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:05:00 -0500 Received: from mail-sn1nam01on0047.outbound.protection.outlook.com ([104.47.32.47]:21328 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfw9-0002q4-Ee for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:57 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=Gy8TSc6rGx1QjQpnkIT4gHjb9lbLz3mP2yjoBKEQxnU=; b=GfmdREakmtnBrhMe6uz3ajc88Ht/D3HoP3rWMf3efE7FgkrkOeJNt0jwbN2mwhW5hlKxPeNRoSE73rwnQdQYUnhJX1221rwb3kH6ujO8dRBZGqw4oX8QdRd/IOAJdDoqlE+yeHDXOj19bJ2fPOMMz7mVU1DyzvSpSbptlWWJA98= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:52 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:43 -0600 Message-Id: <20171206200346.116537-21-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: 09907e66-8054-45d4-1ba7-08d53ce49e2d X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:bqoBUiMVyDNVIrG0ar7Rn1VUSuCZgLYLumTcTKFJD+VkqTIQXIOgh4vGCHpL4+dp1XVyPSxJCxLNMKe5DzUSi0kWnvtA2B1z3AqgHA516VWkNEzRvyh1LMMC+5PDaQP+pL/mQxhG939HPapl6JmVR0GIFHKD4444QOrWLPzmi7JruwyoWG4VhehD2mxo6emBBvV9nHSebaIGNHBmZsKF4MHcIUEZQyym78RU2yqmyzRW4ob8MfkjLXBWPIeAX/Ap; 25:OYbZwjPfdo/3xnPQnPUsLv6tHFRVZDQWrkWJKCHoOXt3LC/9qJZphZCRyUR9w2k8aymPBchXIAC7awvC6zMDrzjGmSuU7lVE0Uq4tMGuysqpXgbKYVR0/6z13D9o4E1T02ijTWRZ0htp0t8R72gdSmhv/cyNtE7VGey212Bk4kpADRZXWCjPUOWAtE0FCpY0iIjGDjOmOZgDWQ28B/Zv4RqKq/8tQcHxIQa2cts+Yfy+BJlnpBhYo7Np97fph+AojWvtHcrtXuLAxnMGUkPjyCMciGNrK/P0BNe8zcQ3SSZyTEGgh2Hm/uRCBikVrEjaT5ujeoJgF7zmUs0uMq0OHA==; 31:n4v5E9fZO2fFeA273u6DtIQnAlgGMUqzKAixaciTr/yGOwNButq1DciqAgJnG4F0+2DyLxhXQjns4CBhkSaz0vvHSxF8hVPfZGENu5esoBUOHtl08pN6NUZpln0/y4ZMBq0FTgcEIQhyn22VRXLmRDdH09qrjRLAP6WqRk+QiwpRxBNatWC2TC5A4YTT8BOxjtGihWOJwNqf5g8afp/ZIcbGMt/Bup4KyFbxkuwq1HE= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:Q6wBa+fYc2zwjQdG236jpIyKVl6Ybus84PsVjQb11BAv1mQN8dsRobOOOwUrJcf75Bnu7eYUchygEoEkrrq0qh++DRvKrekFvc4da5D4eZYcPjY2v16/ychjQDnIjKPIK4EXMrr1v70dWRxPQ4/izGVeWu/4d1hvVS7GwQfq5Saw2+mnoUE79Nk9wKzYnAk8HD+5TYbp+/FW8dMFyk5Ai5k4do3Ii7pjKTOxvss5Tnpq80a8TvK1kE4r9OqnYNmNvFx1jkuLUxicCuvJKQFiEsJCPUH0jA/Wk11f3iiIcmNPu5aGSL0uo4+uaGLAswOJf2+ZGprSQRciPXHvCnyldGSITtoSVgpOVlGsUM2NG5YVSTjKr1HT9I5l/u4+iGrIPmOSNBdmRdB5SWL+f+ImfoJei75LW8o5Bg8SYffbVVbJCSk9d0eAmYQXaNirgq0tUl5oXRjdviPaQCVOI0xcEdGaKnd/krB8T0ErUmg1CPdv8GWDBjHa3Dn0cUtEYg7o; 4:Q/miWQ2fiUpMiVfB2qj3W8ZnrH1f/oq2Z714hWjp6/vTCft1uuXK1V8Whxx35ZFTe6ETqV1Uxo5UvVH2+DjZOm0xrYRrd8AvtkNXls5YJ+wLViqYnc5WH5RcZzj7ZRCKHx7mfaSwNuJgxqcxqu8lIQcrRy8LdOqSYevbPcmg9Pi/Kf0/7+CwSIkroXqACbOKBFGqye7qU/aXfRP0wP2ZC3Wa8my8NeaI7b/w2Rbfvn9DyodllmUVtqzVjfXyy6V57WQuMMhvZdAwV83kBlcwEb2p0TfOIkIPIouc/POf8Z/x4lmZLMoWPwRJEvKMtSPu X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:VtPEyhiMEX1PTriLQW8xqucftDIGkjxSrU+zWLso/?= 5w1AQGf1/24scB8VwNA70vb6DgHtZEQfepJ0prsRcLMyjKmrpoMWBKLx87H4nOe+tV+mjVWof3BCyNPSbtxNsW3ry04pHnQYqJMmzLrjBnzmioDa42yYLIVULTEA11xQqq7oqwEALhbE+l0rY8zVpdLmDupZ5Uedx9ixbtnapT2I/8GTmX3yk5HWx6Oh9oH2v3QKLm4nlJDeB1ncT+iZFjDb9w7AhgGbUycpC5kkzZhB1h2qqgvK/AuAoBkuywo4f23qyItVKYMgk7EEeV6CTR7cUPZY64uD6YaOwn2keAeqqdxXNftHkxaRivErwb81XgbPIqsJ1tmJeV/tkS8sCJb4jhTc0eodQyytuBBERaX7Qs3AH5qxgnOkfH6d3KzJw4SQU9rG/Pm6q8VMOhdBeXtz8sB4lxqgPZFzOyh8C/D2TZtE8NUd4vwdgQSZ+cFAuXz2Mey7jbuowWK/q/5Us6l8BrEMfcRWgFY4OvECMGhyljoA7Wtvl4Is5dRFJxFHrtIP4JhkLo7HtfRe12GWPYuwghTHXs7ssRV5ekXRosfuQTbhCSO3UwfqyiLVFt6ToWZmHxy+imFzYpB9UgYdnhSdv2CKdW6RohOJ/mfbw546P31JrALyRl0JQyOrm6bu1HSauk3RrjTIrVo/mYfJ/X8TJ50DkWv47HS6fr/KzGkLnP8zxamLSm2/cSFt2BxS3v2mFVgwUS2/EsJ1atUaLjV2Hh3ry0NRiLubxbU6qJeudiM27g7bJrRQpSUnh0X96xrmhH1U8EgXiwWHGjNKYg0WPHqinBD9kPCgIxn6ZXiardgvOLkEvxi6AK4FvVnBdh8cQ/bxNicVqx7E2tdeIU2Zmzz1ABRCp3g4wPCfO/ExyBk0ZrxFbIjj3pvEYXq572ca9Zk1O/c0rzhk/ms9e2ntbR3tZG7QJSYaZzwwF+Ub5HL1ue3ZYEMzbET4WRBmgNW3DtEu6QHz7vwwrDlX6aLppZYGrwO3bFDZJqz+0Lsg+W1JO6S4mIkCTMaLONkqrvcPJwV9LTZnGi8lqkAm4aVl6mb/Q60NsDbl6mAVtmOjPIztKSqTi8+rFJPLaNsD3QAwAOLkCtUH/VszH2L35AHyRzbgrJmZHP5yvI3YYaNn20l0ucKG4su0Bu1B3s9LrLoBP4yFAM6N7Hexrc1HNGczOEUD/ZsCbTcSA0hOLlVhg== X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:lmFN31E1v47RMPIOI86kYJird+XcgWOUjMKHkAexoH7GgVPpaT9z0oiKkP1yuKDmoMZ48EDGiBRva2tXAysvQO7qsKtepoBAVOkwS7kUtm0MftuG29alplx18HQX1Wuy//tg2Y0CmjKhmGnrJAA4IRY/r3vL2v3frxbU8XQ8xhjfUWA54sSGjbF7jzHWJjr7YOnXEvsag7l/Ob1YlV7nN5Pt9eBnwMw/itWON87DozPrrirV5eBrPTNbm55yuUVrD9QPv/QWbbbFZBPJJerpId24Kc/pSVyoxcN1BVW5c1X1iwov+ULWbVHEP1lEQf6mRgzWKfpXrwbYhcqWAPSMHtqnt1lt4/XizHJiVh2maYY=; 5:oUVXqdyN6Rg3RowrqdTjE5JL7v56H7YBUdo2vrst0XV/N4aKaZKPjdtxRg4IGykzgV+Vou70sahqp7MtK4dVi4A2jU4c8lVrNhVhSKY7zLgdcu2xlz2Q0Bkrhi5s99UW2NhyPRVGgkskLEmBdpSiXICdec1bHs+SCl+kVVyq7Ag=; 24:ldz1fkZyKCC2JdEC23e4dwpMTvUe2a/ickWu/9NLwsAgIcs+I3Pe0KlKvMi/RHqV9eGH2WrUw06f70VOwPGudpHdfMEoOqfZhvCCnd837zI=; 7:CGoO2q0JDnmjQyyEMkIQJKUQWOqVywjthyYwQwNupUCOkqBSEUtCEN9mCVbY6lLlgB2A32nzyi7Gea7YGtsjpuqPSRudb7+bHzaeTl0Rz9K2V6KRYgqIajzFvfQuWPaNVCtezkVOjZnW8sIz9H0LIMMjQAbiovR5pN3C55Cl1GSkVBJawTJ7iuPJzhSEYQQX6chLgbscX/N/UvNyIatAThKkusV8ZLLXOF5FYXvTFZwnVDYZoL5vBNeA4Ibdp/EE SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:G4MLkZ95ysoxfvpOBB5AqdSWVZheV4+R4Dk8Z/eSV5v0ZtJqSpZ78x+O4vk2NGhP5ymtES/9ocefRXLV2ZW59kd4N9eEbu0m678/WVey9ltmiwVGCUYCrI11E/gfECqOMRI+2T2l8mRGhdkDgyxnhmT5aZNWWgU/kzB3j7qRPgVOADgE0VUvQj1pDcURb8iVfrCgHDy2txXrb0+E23jAhg6bFujBiGWENv8Lfq9XRMBNgSI3yPqLeNKFI+0EATlv X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:52.9728 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: 09907e66-8054-45d4-1ba7-08d53ce49e2d X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.47 Subject: [Qemu-devel] [PATCH v5 20/23] hw: i386: set ram_debug_ops when memory encryption is enabled X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" When memory encryption is enabled, the guest RAM and boot flash ROM will contain the encrypted data. By setting the debug ops allow us to invoke encryption APIs when accessing the memory for the debug purposes. Cc: Paolo Bonzini Cc: Richard Henderson Cc: Eduardo Habkost Cc: "Michael S. Tsirkin" Signed-off-by: Brijesh Singh --- hw/i386/pc.c | 9 +++++++++ hw/i386/pc_sysfw.c | 6 ++++++ 2 files changed, 15 insertions(+) diff --git a/hw/i386/pc.c b/hw/i386/pc.c index 186545d2a4e5..937cf75d5545 100644 --- a/hw/i386/pc.c +++ b/hw/i386/pc.c @@ -1355,6 +1355,15 @@ void pc_memory_init(PCMachineState *pcms, e820_add_entry(0x100000000ULL, pcms->above_4g_mem_size, E820_RAM); } + /* + * When memory encryption is enabled, the guest RAM will be encrypted with + * a guest unique key. Set the debug ops so that any debug access to the + * guest RAM will go through the memory encryption APIs. + */ + if (kvm_memcrypt_enabled()) { + kvm_memcrypt_set_debug_ops(ram); + } + if (!pcmc->has_reserved_memory && (machine->ram_slots || (machine->maxram_size > machine->ram_size))) { diff --git a/hw/i386/pc_sysfw.c b/hw/i386/pc_sysfw.c index 8ddbbf74d330..3d149b1c9f3c 100644 --- a/hw/i386/pc_sysfw.c +++ b/hw/i386/pc_sysfw.c @@ -180,6 +180,12 @@ static void pc_system_flash_init(MemoryRegion *rom_memory) error_report("failed to encrypt pflash rom"); exit(1); } + + /* + * The pflash ROM is encrypted, set the debug ops so that any + * debug accesses will use memory encryption APIs. + */ + kvm_memcrypt_set_debug_ops(flash_mem); } } } From patchwork Wed Dec 6 20:03:44 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845321 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="A+tPsEq5"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVFy1fJ5z9s72 for ; Thu, 7 Dec 2017 07:14:46 +1100 (AEDT) Received: from localhost ([::1]:57559 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMg5c-0000ok-AN for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:14:44 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:50158) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfwF-0006f0-8J for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:05:08 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfwC-0002ss-0v for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:05:03 -0500 Received: from mail-sn1nam01on0082.outbound.protection.outlook.com ([104.47.32.82]:2270 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfwB-0002s4-PN for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:04:59 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=s8hZulSwar6ELtiFVQb01ifBIcNORnbFldsV5X1g0eI=; b=A+tPsEq5FFzEhHbMqGrwGOF6ZrGV/RiG0XKtyUWh0wgytcZqKDOWQwhdmUOg1+93AJH/JxRUZt37w5Gs34SNvHZ02EL3nwoFGv44bb4gozlhMPyLpKpCsMNqrYs3DqX7yHpcI5UwHpnUqqjlaIL71S5og1KwFjCNO6fc0U8uC+8= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:54 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:44 -0600 Message-Id: <20171206200346.116537-22-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: d2659704-5bff-4c12-8270-08d53ce49f59 X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:cKzBNKk/lf5z691yMeMwQB7s2fo6iAeBxmo4CUU5iI7ouZlxq0EFcHXuYFM/+6i6bzTXAfvQkiRUn1VmBDnk8VQB2VlrHEyXu9pIomkjcoYv+KWIMVcro30W74zdAVMIZgF/YbFqEwr1aOi8svkyNAbOYb1wwrKM90y64ztBDg4zdiXiOcZlXFNubiUTAnfLM7qe46GasXRa3OsxUexp5ZMb69fEzVY7pMJyEbZ7bs9j3qx+7eBW7uLL0p5LeTGj; 25:UdZK7BR2k2pT367XKCQAltqZ1RSq9wC83WW6c+Q5MWAOd6uzj1vmfuxXR04geYMnRsoDoaUcHCK7IlvuUaY+aZy88OustEuJH6tZ9yfgAQ8JqPTPT59WEtD7P+xgVffB4lysSON+whY/h5RqNi5pz8oqhAQ0r6cmhgqCxSaVhtHfrhHJbWQGN2dSCgUOADvyhAiy2VfPi2y3D76qX9GrjywhMP51FIBMYDO3S7O73vYomd+a8IvWHCQYabdW9UUUpW2KSXopRBsX3ryYGAWZcNQlxNflFi1FS2rzaE9BH3/YNYHQ6Pw2+WMjM8Pb9ZETxYvrHClVok/KPnnJpQDd3g==; 31:6E9BYfJSTE196t1q8lCskE1erTCHO4Baw0EzZM2D5zb94LHig+zDDUS5Flh8s3K7LDULhS9ji0FvYWPHECLURVPqKfYbO7g6Or2EYvQ1/oBvWvR/HbWkS4hm3wMwJMsveBQtAnMLyD2MNPVl/LsF46uORsvhzN20peF8ccXPP26ePTa3bfD0jBUPhKI48Sg0ilHivVf/stWeHu495iS1C1NcHB75KsoD5Wd2hqwJm1o= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:BFXCk9qjsEeKjhqoLQOWo8UPtMuLKllfQhJ3atS+T5vaHxVuOXxFpk6BBrvUCGKdn/7sFPnDOqi0zxdbX21/gKJTxjKqbKfgg+73kPrnYkJFcRnxxucblAPMS0aC2li6hSiYkpUaSm819TgDBAWmMS6ezD6onuAvLVQX+XJaBbPk8j69ZCQDMtzH9q/iuU7K5747gBWO0J70S6HwU+agfZmxtvyPSIbtxWks1H1HZUQ6FhfoFaUe0aGbiX4xoSSXOIEewJwLTcwX0+sEPy5mo+TuK/iacf/dAzjt1LLvHeSnXoGiEXkyS242nyhAqWzfyM6tNT8wpwG1D/A7Doug1dT8/M5u0cvomBy8GTH7LO8sPu2pbd88kZAHDTVsIP0OlmpVcPyoaewo1m9TfHB2DLcI+mL9//q2DUAIgxEEsDcA95jHg5TOINzOlXTSW2CnLZbJJJGJWOeXP9S28D5w02tM44FUBvajkCKo4pa00MLvMV3M5XmeOuEAU4IxIf4K; 4:YYZziDxZNrk0OsMwXh734BlbelHzJgEsOTTDFDBU7auk5UeCtdlLDv6dLVynF5ekQ8WNyoLtpSsu7qKCfk/iMPpOuLLw/HGohhGZf8FPHundCvFSCFX6kVrjPI30WzlPnOIs/3BKAruCqEDc/EY+/dmp37UlAsNrjXSZh0UUcGHcE5xVJFGEFxRGCed8Fx+bDaFbXbBu1x9nPrRfLDO3YNJWCyyrqbd+XsCUsmudVUD9KmF3PWZFTmYVp2q/RBwuAsJ5sz33qwMX4p1oDIlX8x3ZKzukl7ws08KtKwVwlZOCzm1kUeD8sHIyWY5vbQN3z4ibqynSG+EIQuMb6g7lfw== X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(9452136761055)(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(575784001)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:2yi+Smnql8in4ecA96R+e9XXY118yidAMt4TOPxrG?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:PAdhQAl7cYKg1c+7Dplm0wnbeRr+YIl3TlTTv1eYxPTV7DjAZ+CJOpJv5QEuilxoaA8WyMGWxpDKo/BdV0bp8lkmEQ5EKk/fwgnYssqdxGj55nk37HwpIAa3dNSg4Jj8V0oQdGxQWNGFBlU0I8mXB7xTDI9ukfMiHHokso7ITXpuVaT93+ATntYnz9QJGmiYUSaLHA62NbPVHPvGcslSkhKe99siD1/DBS6xBSi0mg7haQ5CGqvbLdgGjQukeSyNjCOrgCeTRnKuwtiVkTTSe1lMLKvVWGkXmAL5o/EkDNNRMEzTKNRW4vJbcW7VUjLY0NbY0Bk54ZIwPNB9KDrdfXp3cQP3Sc89DzzYqRoKE5w=; 5:96svZ/hgueEv6jBlTFXN3WjyAaMrZfAnMe1TsBpsPj19CrbKy1AU8+jSSfnXiOIJlr4gmsbc0mjOXfFa6Q3xumolavP0tg/VB6SThBWSfZpJ/nnKjJIbcrdUO1IUEqWVhPkc/WXgAlbVcXgpOqy4F5AgX0d2YBNRwz/y4lObxLk=; 24:ob8YSI2jQGx1F2OTrdgjLM08ePfO9raFOhA4TMm1COWczVy6lQ03Qpmib5kQUbbRdALFp5r4aIq90Fjq/2Hyvu2egLN+6c/dNEnCQokLhkk=; 7:oLDqGZGyQfgh9vAp127w4U8KfmTIF9kylTrWTQZNh6UJY5pLI7/cVdCO4ln4xDhSjUSOx/GOjjF6eSZ6uigntqRUGqSZPOMDeY7NE+YzIUzdS/mYgzeW//8Qzei0AGx9zEiM/Fm/+TDvcH8TLdQxeHkABJUjdwYjFZCyAjUf1RJmbcEpb8I6xW/Ci64pROo1Oy4hFVuUdDqhwBL+QuH3JO093qgwk+GXmepO+gHRkVtDvW+uBobTD1ORqz+hI2SJ SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:VPp7hZ62KNruVDeIV71sx3o+CkH+tzo09qoKE4Xstw/d4l252ASYRBr2s+HxgSxL6NWL031k9k0vLgHoj79/SIC9tlETXFpmKwcKHaK9Ph/PLltCarQOxWXuem38vLCZSCEmtZKB8XE6yUkmGFXctjUsN48zy7BXlIzcshWmDpHKQQEhBNKbhVj4trBnCzfQa/AuZEX58/0T03ZBzK3P1sRliOmBw+dPOiTuen7cWKkN1j/iQofj+23jaq/0XEEF X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:54.9415 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: d2659704-5bff-4c12-8270-08d53ce49f59 X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.82 Subject: [Qemu-devel] [PATCH v5 21/23] sev: add debug encrypt and decrypt commands X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" KVM_SEV_DBG_DECRYPT and KVM_SEV_DBG_ENCRYPT commands are used for decrypting and encrypting guest memory region. The command works only if the guest policy allows the debugging. Cc: Paolo Bonzini Cc: kvm@vger.kernel.org Signed-off-by: Brijesh Singh --- accel/kvm/kvm-all.c | 1 + accel/kvm/sev.c | 70 ++++++++++++++++++++++++++++++++++++++++++++++++++++ include/sysemu/sev.h | 1 + 3 files changed, 72 insertions(+) diff --git a/accel/kvm/kvm-all.c b/accel/kvm/kvm-all.c index d35eebb97901..b069261de32a 100644 --- a/accel/kvm/kvm-all.c +++ b/accel/kvm/kvm-all.c @@ -1677,6 +1677,7 @@ static int kvm_init(MachineState *ms) } kvm_state->memcrypt_encrypt_data = sev_encrypt_data; + kvm_state->memcrypt_debug_ops = sev_set_debug_ops; } ret = kvm_arch_init(ms, s); diff --git a/accel/kvm/sev.c b/accel/kvm/sev.c index fbbd99becc0a..3edfb5b08416 100644 --- a/accel/kvm/sev.c +++ b/accel/kvm/sev.c @@ -22,6 +22,7 @@ #define DEFAULT_GUEST_POLICY 0x1 /* disable debug */ #define DEFAULT_SEV_DEVICE "/dev/sev" +#define GUEST_POLICY_DBG_BIT 0x1 #define DEBUG_SEV #ifdef DEBUG_SEV @@ -34,6 +35,7 @@ static int sev_fd; static SEVState *sev_state; +static MemoryRegionRAMReadWriteOps sev_ops; #define SEV_FW_MAX_ERROR 0x17 @@ -483,6 +485,49 @@ sev_vm_state_change(void *opaque, int running, RunState state) } } +static int +sev_dbg_enc_dec(uint8_t *dst, const uint8_t *src, uint32_t len, bool write) +{ + int ret, error; + struct kvm_sev_dbg *dbg; + dbg = g_malloc0(sizeof(*dbg)); + if (!dbg) { + return 1; + } + + dbg->src_uaddr = (unsigned long)src; + dbg->dst_uaddr = (unsigned long)dst; + dbg->len = len; + + ret = sev_ioctl(write ? KVM_SEV_DBG_ENCRYPT : KVM_SEV_DBG_DECRYPT, + dbg, &error); + if (ret) { + error_report("%s (%s) %#llx->%#llx+%#x ret=%d fw_error=%d '%s'", + __func__, write ? "write" : "read", dbg->src_uaddr, + dbg->dst_uaddr, dbg->len, ret, error, + fw_error_to_str(error)); + } + + g_free(dbg); + return ret; +} + +static int +sev_mem_read(uint8_t *dst, const uint8_t *src, uint32_t len, MemTxAttrs attrs) +{ + assert(attrs.debug); + + return sev_dbg_enc_dec(dst, src, len, false); +} + +static int +sev_mem_write(uint8_t *dst, const uint8_t *src, uint32_t len, MemTxAttrs attrs) +{ + assert(attrs.debug); + + return sev_dbg_enc_dec(dst, src, len, true); +} + void * sev_guest_init(const char *id) { @@ -549,6 +594,31 @@ sev_encrypt_data(void *handle, uint8_t *ptr, uint64_t len) return 0; } +void +sev_set_debug_ops(void *handle, MemoryRegion *mr) +{ + int policy; + SEVState *s = (SEVState *)handle; + + policy = object_property_get_int(OBJECT(s->sev_info), + "policy", &error_abort); + + /* + * Check if guest policy supports debugging + * Bit 0 : + * 0 - debug allowed + * 1 - debug is not allowed + */ + if (policy & GUEST_POLICY_DBG_BIT) { + return; + } + + sev_ops.read = sev_mem_read; + sev_ops.write = sev_mem_write; + + memory_region_set_ram_debug_ops(mr, &sev_ops); +} + static void sev_register_types(void) { diff --git a/include/sysemu/sev.h b/include/sysemu/sev.h index 3af945935b60..7c50d33af4a9 100644 --- a/include/sysemu/sev.h +++ b/include/sysemu/sev.h @@ -71,6 +71,7 @@ typedef struct SEVState SEVState; void *sev_guest_init(const char *id); int sev_encrypt_data(void *handle, uint8_t *ptr, uint64_t len); +void sev_set_debug_ops(void *handle, MemoryRegion *mr); #endif From patchwork Wed Dec 6 20:03:45 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845322 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="5hKNuXkY"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVG25J7lz9s72 for ; Thu, 7 Dec 2017 07:14:50 +1100 (AEDT) Received: from localhost ([::1]:57561 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMg5g-0000ri-R6 for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:14:48 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:50193) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfwI-0006oO-3e for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:05:08 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfwE-0002uf-ND for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:05:05 -0500 Received: from mail-dm3nam03on0073.outbound.protection.outlook.com ([104.47.41.73]:18336 helo=NAM03-DM3-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfwE-0002tn-Db for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:05:02 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=VicULQEp07AxJLBRA0+wcgnbxTeOYvPh2LjOq3uzn1I=; b=5hKNuXkYzhFhscrdPXOifYFG7eRopYSSwCN+zGQZg6WOc13hMyPb9sjzPZhj/TQrZ3Ve3j09skJfIQm/kky5fFsmFjlEGl91Xh7YmnECsaUL9sW/SW6QCiX2Z61dW4TdTh/bNpY1alwownSsIG1KAt6RlNdtjPa0Pf2Lg7lHXmI= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:56 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:45 -0600 Message-Id: <20171206200346.116537-23-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: 236f4abc-699b-4602-d4fa-08d53ce4a091 X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:7OBwKlFadiC1WQZcfDs62sGFuQ60FbqG5oknuiu8XKF8oZXOHQc/TlSg+lF6TPZAFnsz+1irXatWCxXvh2c5sSXADfts1vn6ulbCOnYf9Q4C/tmFX1I1qZnC3AhwUVU+RWW8u9aaNyUcieNgwebNn0CfWR7qbgBq7pCAglQvvX0cEQDXJwGeZi+bnKhWG4q260bfaeV2wPPyiYrn0fjS6CdM9tg4SUMnFlzYannaegYQZOs3DiWYPI55+lsmkEHL; 25:WaTaLngOssNSGsK7ZpZ/b2KTfYkcSs4D6jZKG6VYyI0FpGci8rnWPXFRJ8+ti+NksYjgODncq6Qi5/6lazkPjz8ZwxAmvCq8lz9qM0rOuA3TCl+rd11tjBNRfI5QlUQ2jpD0WJ8xOqoyyN2+WW2tbZGS/E5CE9SygEAoHt8t7FYE8qLxYzXajV3VSixpMw3/LRK9che9oQ6l0wsfEUdbefsaduJWjlmCe+MwvsNoVL58HNl5H5TVFOnwtevzYqlS8BLrkCmfKP0RSiVqTEeya/ckzVx26qQoOan5Edgl3yxtYQ3zxgpHxuFlk9ds4FET94tWV1yJhnmhapU/gFHZSA==; 31:5u7Z+Ly0qiUYTZ0Kk/4O0xnIiD7ORufr1aPoqZhvWDaBqw2O7A7fch1I6d1BnuM2smUNxCV81Qbl88csisuSwm7jPTQAR75zLSOaQ5C/LWyJsdTn1rZ+6p1Ye6jEVI45aibocAFXyHQuAo649TbH+9wLxWQIZwdLcfKGD/2C9IjgFm9qHwQFmkm2M1I0wFWxMqMaj4zPTS0Nz1HEiCY28qJvAs8DLEDsYB635d/BehM= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20: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; 4:JnvW/NL6Al0EMugoRKnWDkauQBuiDAR23kwE8KR0tz5siUmo5b5EgCWL1fiCbf7BzCLr3gAMnKMXxRLvZyQEf6NFvGs7RCTJ1h9oGUWpvM0EYF1nBRtehQmo7fkB7tUFXNtMUqHkSF/MSILpNn9aJYHb2ku5GgUw4hV/IxWeq26TEnUp2F9QmIxMmxqfBH4ILj8ZxuCaIMFVJNC4JYBJyxn5niE2+bUiWn64raeqFYNLUITDIm36qnF16xeFPWdKUAodlbdvuCiIlnVeRPy3+depu11+SCnkVJXiULIwEUmi37txKKCySAMKwCHEP9ff X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:iXP+xo4MMkC90PXFwx0+D8BtRqyq7h9MiMPuDPq8U?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:8WQF/01175sVGF8M78QwZmWDuCRAUT+mF1iIqIw7Z7bBYdEDDyBwP7stOv1yG3u+MCdN6mFdxHTKU21WNd/wdjCwpH3nOVxFP9NATvUyOzicMb4lpPWafaTA3uOjnFWVlLLKp6pLsBPa/SrKcV5QgN/18BuLa+PrBa3Hz71DTF/aQCtZ7SqzYdana21HHTlsPzrCvQSLk8I9OdS5DWxZhnzYehp1PW/Q1CqXEtf4wnpNGmEkfEK9HpwvpwaHN5A0u/jgcxjlLxU+nMWbw3kkXT6WQCgI9CQX5kPGRGcIERqKXRueVM+HhI7HN9GZT2RoGGa7RjVvlWKuoEi9yZLQvu3ub3RPI1IDbf15GFcTmgw=; 5:qzXrLtBOzLCOtkwH0M6hY27/MC1kxdqzrdd1CNYBErp9I66aPhAUJfpnYVjVqT66HGSGIqrkk2HUwo/2aX6DTuUEGGUEaqfPpQKdKVcewvMHcH3Vk80O6R8DfEUKa/nL4S2wHGlsb7kRhNQTwUv9sQzbKBYgjlG8aepXYlScyAA=; 24:tZGeODrxyf37GH1ziuei35/VxBlJurkv86PtJbLzdOf4Q3+isR5zKgfrHeMsVT+su/oex6u66P9rFb8+3ia6+e9psbz6uNC+p5ZaNAoqJLQ=; 7:30jrMCTnCUvausaD32C56Idy7EUtqy6pr7Z0y5eJFcHvfy920bifJcx0ZXjG5y3uhOsWWc2nR8JjKTH5MmhjiJCcdQOeDeMCuGbp9JoTn4Op/45xQszK/yzs9R/1ZvPSy/5h7tKcKatr3CN8tLiDxGW6XwNAMtSFD4l4aIYEVCdGagXavCyoJ1kNr+MKEJ5JGai8X8sSlOXeqX1A03c7Z6Blsx7gGdfmhCvylrLIg7ILcm4d11sce9V+vRsxkA1N SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:dO/UCENUlDQpNtx89wFhssX61I+01moZT/QfQF5Z3eRP1XE8U+H0T38P/xcerpYujOXdtoUk3Ld2n+DGygM/d3C5tu6YggkGYcnYR5hYsoKNJl62zAP2fIYXbBHfHt7F8dSTYaUvm5N6hGrmTaRS/CIiE+vtSVaBqfbRAkKyymA3vmODQidWPwpzucBSSYKXgsKLkAQSpemVug0YXdGBWV22ov3Yg5S997s1H6jKUmGnwBpui5RkNEKoAoT3eKz1 X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:56.9884 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: 236f4abc-699b-4602-d4fa-08d53ce4a091 X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.41.73 Subject: [Qemu-devel] [PATCH v5 22/23] target/i386: clear C-bit when walking SEV guest page table X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" In SEV-enabled guest the pte entry will have C-bit set, we need to clear the C-bit when walking the page table. The C-bit position should be available in cpuid Fn8000_001f[EBX] Cc: Paolo Bonzini Cc: Richard Henderson Cc: Eduardo Habkost Signed-off-by: Brijesh Singh --- target/i386/helper.c | 46 +++++++++++++++++++-------- target/i386/monitor.c | 86 ++++++++++++++++++++++++++++++++++++--------------- 2 files changed, 94 insertions(+), 38 deletions(-) diff --git a/target/i386/helper.c b/target/i386/helper.c index 5dc9e8839bc8..7dbbb9812950 100644 --- a/target/i386/helper.c +++ b/target/i386/helper.c @@ -723,6 +723,22 @@ void cpu_x86_update_cr4(CPUX86State *env, uint32_t new_cr4) } #if !defined(CONFIG_USER_ONLY) +static uint64_t get_me_mask(void) +{ + uint64_t me_mask = 0; + + /* + * When SEV is active, Fn8000_001F[EBX] Bit 0:5 contains the C-bit position + */ + if (kvm_memcrypt_enabled()) { + uint32_t pos; + pos = kvm_arch_get_supported_cpuid(kvm_state, 0x8000001f, 0, R_EBX); + me_mask = (1UL << (pos & 0x3f)); + } + + return ~me_mask; +} + hwaddr x86_cpu_get_phys_page_debug(CPUState *cs, vaddr addr) { X86CPU *cpu = X86_CPU(cs); @@ -732,6 +748,9 @@ hwaddr x86_cpu_get_phys_page_debug(CPUState *cs, vaddr addr) int32_t a20_mask; uint32_t page_offset; int page_size; + uint64_t me_mask; + + me_mask = get_me_mask(); a20_mask = x86_get_a20_mask(env); if (!(env->cr[0] & CR0_PG_MASK)) { @@ -755,25 +774,25 @@ hwaddr x86_cpu_get_phys_page_debug(CPUState *cs, vaddr addr) } if (la57) { - pml5e_addr = ((env->cr[3] & ~0xfff) + + pml5e_addr = ((env->cr[3] & ~0xfff & me_mask) + (((addr >> 48) & 0x1ff) << 3)) & a20_mask; - pml5e = ldq_phys_debug(cs, pml5e_addr); + pml5e = ldq_phys_debug(cs, pml5e_addr) & me_mask; if (!(pml5e & PG_PRESENT_MASK)) { return -1; } } else { - pml5e = env->cr[3]; + pml5e = env->cr[3] & me_mask; } pml4e_addr = ((pml5e & PG_ADDRESS_MASK) + (((addr >> 39) & 0x1ff) << 3)) & a20_mask; - pml4e = ldq_phys_debug(cs, pml4e_addr); + pml4e = ldq_phys_debug(cs, pml4e_addr) & me_mask; if (!(pml4e & PG_PRESENT_MASK)) { return -1; } pdpe_addr = ((pml4e & PG_ADDRESS_MASK) + (((addr >> 30) & 0x1ff) << 3)) & a20_mask; - pdpe = x86_ldq_phys(cs, pdpe_addr); + pdpe = ldq_phys_debug(cs, pdpe_addr) & me_mask; if (!(pdpe & PG_PRESENT_MASK)) { return -1; } @@ -786,16 +805,16 @@ hwaddr x86_cpu_get_phys_page_debug(CPUState *cs, vaddr addr) } else #endif { - pdpe_addr = ((env->cr[3] & ~0x1f) + ((addr >> 27) & 0x18)) & - a20_mask; - pdpe = ldq_phys_debug(cs, pdpe_addr); + pdpe_addr = ((env->cr[3] & ~0x1f & me_mask) + ((addr >> 27) & 0x18)) + & a20_mask; + pdpe = ldq_phys_debug(cs, pdpe_addr) & me_mask; if (!(pdpe & PG_PRESENT_MASK)) return -1; } pde_addr = ((pdpe & PG_ADDRESS_MASK) + (((addr >> 21) & 0x1ff) << 3)) & a20_mask; - pde = ldq_phys_debug(cs, pde_addr); + pde = ldq_phys_debug(cs, pde_addr) & me_mask; if (!(pde & PG_PRESENT_MASK)) { return -1; } @@ -808,7 +827,7 @@ hwaddr x86_cpu_get_phys_page_debug(CPUState *cs, vaddr addr) pte_addr = ((pde & PG_ADDRESS_MASK) + (((addr >> 12) & 0x1ff) << 3)) & a20_mask; page_size = 4096; - pte = ldq_phys_debug(cs, pte_addr); + pte = ldq_phys_debug(cs, pte_addr) & me_mask; } if (!(pte & PG_PRESENT_MASK)) { return -1; @@ -817,8 +836,9 @@ hwaddr x86_cpu_get_phys_page_debug(CPUState *cs, vaddr addr) uint32_t pde; /* page directory entry */ - pde_addr = ((env->cr[3] & ~0xfff) + ((addr >> 20) & 0xffc)) & a20_mask; - pde = ldl_phys_debug(cs, pde_addr); + pde_addr = ((env->cr[3] & ~0xfff & me_mask) + ((addr >> 20) & 0xffc)) + & a20_mask; + pde = ldl_phys_debug(cs, pde_addr) & me_mask; if (!(pde & PG_PRESENT_MASK)) return -1; if ((pde & PG_PSE_MASK) && (env->cr[4] & CR4_PSE_MASK)) { @@ -827,7 +847,7 @@ hwaddr x86_cpu_get_phys_page_debug(CPUState *cs, vaddr addr) } else { /* page directory entry */ pte_addr = ((pde & ~0xfff) + ((addr >> 10) & 0xffc)) & a20_mask; - pte = ldl_phys_debug(cs, pte_addr); + pte = ldl_phys_debug(cs, pte_addr) & me_mask; if (!(pte & PG_PRESENT_MASK)) { return -1; } diff --git a/target/i386/monitor.c b/target/i386/monitor.c index 96890547f6b4..0b290f004a21 100644 --- a/target/i386/monitor.c +++ b/target/i386/monitor.c @@ -59,6 +59,22 @@ static void print_pte(Monitor *mon, CPUArchState *env, hwaddr addr, pte & PG_RW_MASK ? 'W' : '-'); } +static uint64_t get_me_mask(void) +{ + uint64_t me_mask = 0; + + /* + * When SEV is active, Fn8000_001F[EBX] Bit 0:5 contains the C-bit position + */ + if (kvm_memcrypt_enabled()) { + uint32_t pos; + pos = kvm_arch_get_supported_cpuid(kvm_state, 0x8000001f, 0, R_EBX); + me_mask = (1UL << (pos & 0x3f)); + } + + return ~me_mask; +} + static void tlb_info_32(Monitor *mon, CPUArchState *env) { unsigned int l1, l2; @@ -93,16 +109,20 @@ static void tlb_info_pae32(Monitor *mon, CPUArchState *env) unsigned int l1, l2, l3; uint64_t pdpe, pde, pte; uint64_t pdp_addr, pd_addr, pt_addr; + uint64_t me_mask; + + me_mask = get_me_mask(); pdp_addr = env->cr[3] & ~0x1f; + pdp_addr &= me_mask; for (l1 = 0; l1 < 4; l1++) { cpu_physical_memory_read_debug(pdp_addr + l1 * 8, &pdpe, 8); - pdpe = le64_to_cpu(pdpe); + pdpe = le64_to_cpu(pdpe & me_mask); if (pdpe & PG_PRESENT_MASK) { pd_addr = pdpe & 0x3fffffffff000ULL; for (l2 = 0; l2 < 512; l2++) { cpu_physical_memory_read_debug(pd_addr + l2 * 8, &pde, 8); - pde = le64_to_cpu(pde); + pde = le64_to_cpu(pde & me_mask); if (pde & PG_PRESENT_MASK) { if (pde & PG_PSE_MASK) { /* 2M pages with PAE, CR4.PSE is ignored */ @@ -113,7 +133,7 @@ static void tlb_info_pae32(Monitor *mon, CPUArchState *env) for (l3 = 0; l3 < 512; l3++) { cpu_physical_memory_read_debug(pt_addr + l3 * 8, &pte, 8); - pte = le64_to_cpu(pte); + pte = le64_to_cpu(pte & me_mask); if (pte & PG_PRESENT_MASK) { print_pte(mon, env, (l1 << 30) + (l2 << 21) + (l3 << 12), @@ -135,10 +155,13 @@ static void tlb_info_la48(Monitor *mon, CPUArchState *env, uint64_t l1, l2, l3, l4; uint64_t pml4e, pdpe, pde, pte; uint64_t pdp_addr, pd_addr, pt_addr; + uint64_t me_mask; + + me_mask = get_me_mask(); for (l1 = 0; l1 < 512; l1++) { cpu_physical_memory_read_debug(pml4_addr + l1 * 8, &pml4e, 8); - pml4e = le64_to_cpu(pml4e); + pml4e = le64_to_cpu(pml4e & me_mask); if (!(pml4e & PG_PRESENT_MASK)) { continue; } @@ -146,7 +169,7 @@ static void tlb_info_la48(Monitor *mon, CPUArchState *env, pdp_addr = pml4e & 0x3fffffffff000ULL; for (l2 = 0; l2 < 512; l2++) { cpu_physical_memory_read_debug(pdp_addr + l2 * 8, &pdpe, 8); - pdpe = le64_to_cpu(pdpe); + pdpe = le64_to_cpu(pdpe & me_mask); if (!(pdpe & PG_PRESENT_MASK)) { continue; } @@ -161,7 +184,7 @@ static void tlb_info_la48(Monitor *mon, CPUArchState *env, pd_addr = pdpe & 0x3fffffffff000ULL; for (l3 = 0; l3 < 512; l3++) { cpu_physical_memory_read_debug(pd_addr + l3 * 8, &pde, 8); - pde = le64_to_cpu(pde); + pde = le64_to_cpu(pde & me_mask); if (!(pde & PG_PRESENT_MASK)) { continue; } @@ -176,7 +199,7 @@ static void tlb_info_la48(Monitor *mon, CPUArchState *env, pt_addr = pde & 0x3fffffffff000ULL; for (l4 = 0; l4 < 512; l4++) { cpu_physical_memory_read_debug(pt_addr + l4 * 8, &pte, 8); - pte = le64_to_cpu(pte); + pte = le64_to_cpu(pte & me_mask); if (pte & PG_PRESENT_MASK) { print_pte(mon, env, (l0 << 48) + (l1 << 39) + (l2 << 30) + (l3 << 21) + (l4 << 12), @@ -193,11 +216,14 @@ static void tlb_info_la57(Monitor *mon, CPUArchState *env) uint64_t l0; uint64_t pml5e; uint64_t pml5_addr; + uint64_t me_mask; + + me_mask = get_me_mask(); - pml5_addr = env->cr[3] & 0x3fffffffff000ULL; + pml5_addr = env->cr[3] & 0x3fffffffff000ULL & me_mask; for (l0 = 0; l0 < 512; l0++) { cpu_physical_memory_read_debug(pml5_addr + l0 * 8, &pml5e, 8); - pml5e = le64_to_cpu(pml5e); + pml5e = le64_to_cpu(pml5e & me_mask); if (pml5e & PG_PRESENT_MASK) { tlb_info_la48(mon, env, l0, pml5e & 0x3fffffffff000ULL); } @@ -225,7 +251,8 @@ void hmp_info_tlb(Monitor *mon, const QDict *qdict) if (env->cr[4] & CR4_LA57_MASK) { tlb_info_la57(mon, env); } else { - tlb_info_la48(mon, env, 0, env->cr[3] & 0x3fffffffff000ULL); + tlb_info_la48(mon, env, 0, env->cr[3] & 0x3fffffffff000ULL & + get_me_mask()); } } else #endif @@ -309,19 +336,22 @@ static void mem_info_pae32(Monitor *mon, CPUArchState *env) uint64_t pdpe, pde, pte; uint64_t pdp_addr, pd_addr, pt_addr; hwaddr start, end; + uint64_t me_mask; - pdp_addr = env->cr[3] & ~0x1f; + me_mask = get_me_mask(); + + pdp_addr = env->cr[3] & ~0x1f & me_mask; last_prot = 0; start = -1; for (l1 = 0; l1 < 4; l1++) { cpu_physical_memory_read_debug(pdp_addr + l1 * 8, &pdpe, 8); - pdpe = le64_to_cpu(pdpe); + pdpe = le64_to_cpu(pdpe & me_mask); end = l1 << 30; if (pdpe & PG_PRESENT_MASK) { pd_addr = pdpe & 0x3fffffffff000ULL; for (l2 = 0; l2 < 512; l2++) { cpu_physical_memory_read_debug(pd_addr + l2 * 8, &pde, 8); - pde = le64_to_cpu(pde); + pde = le64_to_cpu(pde & me_mask); end = (l1 << 30) + (l2 << 21); if (pde & PG_PRESENT_MASK) { if (pde & PG_PSE_MASK) { @@ -333,7 +363,7 @@ static void mem_info_pae32(Monitor *mon, CPUArchState *env) for (l3 = 0; l3 < 512; l3++) { cpu_physical_memory_read_debug(pt_addr + l3 * 8, &pte, 8); - pte = le64_to_cpu(pte); + pte = le64_to_cpu(pte & me_mask); end = (l1 << 30) + (l2 << 21) + (l3 << 12); if (pte & PG_PRESENT_MASK) { prot = pte & pde & (PG_USER_MASK | PG_RW_MASK | @@ -366,19 +396,22 @@ static void mem_info_la48(Monitor *mon, CPUArchState *env) uint64_t l1, l2, l3, l4; uint64_t pml4e, pdpe, pde, pte; uint64_t pml4_addr, pdp_addr, pd_addr, pt_addr, start, end; + uint64_t me_mask; + + me_mask = get_me_mask(); - pml4_addr = env->cr[3] & 0x3fffffffff000ULL; + pml4_addr = env->cr[3] & 0x3fffffffff000ULL & me_mask; last_prot = 0; start = -1; for (l1 = 0; l1 < 512; l1++) { cpu_physical_memory_read_debug(pml4_addr + l1 * 8, &pml4e, 8); - pml4e = le64_to_cpu(pml4e); + pml4e = le64_to_cpu(pml4e & me_mask); end = l1 << 39; if (pml4e & PG_PRESENT_MASK) { pdp_addr = pml4e & 0x3fffffffff000ULL; for (l2 = 0; l2 < 512; l2++) { cpu_physical_memory_read_debug(pdp_addr + l2 * 8, &pdpe, 8); - pdpe = le64_to_cpu(pdpe); + pdpe = le64_to_cpu(pdpe & me_mask); end = (l1 << 39) + (l2 << 30); if (pdpe & PG_PRESENT_MASK) { if (pdpe & PG_PSE_MASK) { @@ -391,7 +424,7 @@ static void mem_info_la48(Monitor *mon, CPUArchState *env) for (l3 = 0; l3 < 512; l3++) { cpu_physical_memory_read_debug(pd_addr + l3 * 8, &pde, 8); - pde = le64_to_cpu(pde); + pde = le64_to_cpu(pde & me_mask); end = (l1 << 39) + (l2 << 30) + (l3 << 21); if (pde & PG_PRESENT_MASK) { if (pde & PG_PSE_MASK) { @@ -405,7 +438,7 @@ static void mem_info_la48(Monitor *mon, CPUArchState *env) cpu_physical_memory_read_debug(pt_addr + l4 * 8, &pte, 8); - pte = le64_to_cpu(pte); + pte = le64_to_cpu(pte & me_mask); end = (l1 << 39) + (l2 << 30) + (l3 << 21) + (l4 << 12); if (pte & PG_PRESENT_MASK) { @@ -444,13 +477,16 @@ static void mem_info_la57(Monitor *mon, CPUArchState *env) uint64_t l0, l1, l2, l3, l4; uint64_t pml5e, pml4e, pdpe, pde, pte; uint64_t pml5_addr, pml4_addr, pdp_addr, pd_addr, pt_addr, start, end; + uint64_t me_mask; + + me_mask = get_me_mask(); - pml5_addr = env->cr[3] & 0x3fffffffff000ULL; + pml5_addr = env->cr[3] & 0x3fffffffff000ULL & me_mask; last_prot = 0; start = -1; for (l0 = 0; l0 < 512; l0++) { cpu_physical_memory_read_debug(pml5_addr + l0 * 8, &pml5e, 8); - pml5e = le64_to_cpu(pml5e); + pml5e = le64_to_cpu(pml5e & me_mask); end = l0 << 48; if (!(pml5e & PG_PRESENT_MASK)) { prot = 0; @@ -461,7 +497,7 @@ static void mem_info_la57(Monitor *mon, CPUArchState *env) pml4_addr = pml5e & 0x3fffffffff000ULL; for (l1 = 0; l1 < 512; l1++) { cpu_physical_memory_read_debug(pml4_addr + l1 * 8, &pml4e, 8); - pml4e = le64_to_cpu(pml4e); + pml4e = le64_to_cpu(pml4e & me_mask); end = (l0 << 48) + (l1 << 39); if (!(pml4e & PG_PRESENT_MASK)) { prot = 0; @@ -472,7 +508,7 @@ static void mem_info_la57(Monitor *mon, CPUArchState *env) pdp_addr = pml4e & 0x3fffffffff000ULL; for (l2 = 0; l2 < 512; l2++) { cpu_physical_memory_read_debug(pdp_addr + l2 * 8, &pdpe, 8); - pdpe = le64_to_cpu(pdpe); + pdpe = le64_to_cpu(pdpe & me_mask); end = (l0 << 48) + (l1 << 39) + (l2 << 30); if (pdpe & PG_PRESENT_MASK) { prot = 0; @@ -491,7 +527,7 @@ static void mem_info_la57(Monitor *mon, CPUArchState *env) pd_addr = pdpe & 0x3fffffffff000ULL; for (l3 = 0; l3 < 512; l3++) { cpu_physical_memory_read_debug(pd_addr + l3 * 8, &pde, 8); - pde = le64_to_cpu(pde); + pde = le64_to_cpu(pde & me_mask); end = (l0 << 48) + (l1 << 39) + (l2 << 30) + (l3 << 21); if (pde & PG_PRESENT_MASK) { prot = 0; @@ -510,7 +546,7 @@ static void mem_info_la57(Monitor *mon, CPUArchState *env) pt_addr = pde & 0x3fffffffff000ULL; for (l4 = 0; l4 < 512; l4++) { cpu_physical_memory_read_debug(pt_addr + l4 * 8, &pte, 8); - pte = le64_to_cpu(pte); + pte = le64_to_cpu(pte & me_mask); end = (l0 << 48) + (l1 << 39) + (l2 << 30) + (l3 << 21) + (l4 << 12); if (pte & PG_PRESENT_MASK) { From patchwork Wed Dec 6 20:03:46 2017 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Brijesh Singh X-Patchwork-Id: 845325 Return-Path: X-Original-To: incoming@patchwork.ozlabs.org Delivered-To: patchwork-incoming@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=nongnu.org (client-ip=2001:4830:134:3::11; helo=lists.gnu.org; envelope-from=qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org; receiver=) Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (1024-bit key; unprotected) header.d=amdcloud.onmicrosoft.com header.i=@amdcloud.onmicrosoft.com header.b="rDoHuxRE"; dkim-atps=neutral Received: from lists.gnu.org (lists.gnu.org [IPv6:2001:4830:134:3::11]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 3ysVKh3F3cz9s72 for ; Thu, 7 Dec 2017 07:18:00 +1100 (AEDT) Received: from localhost ([::1]:57590 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMg8k-0003JF-Dw for incoming@patchwork.ozlabs.org; Wed, 06 Dec 2017 15:17:58 -0500 Received: from eggs.gnu.org ([2001:4830:134:3::10]:50208) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1eMfwK-0006ob-Qb for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:05:09 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1eMfwF-0002v8-Uv for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:05:07 -0500 Received: from mail-sn1nam01on0063.outbound.protection.outlook.com ([104.47.32.63]:36576 helo=NAM01-SN1-obe.outbound.protection.outlook.com) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1eMfwF-0002ur-Nb for qemu-devel@nongnu.org; Wed, 06 Dec 2017 15:05:03 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=amdcloud.onmicrosoft.com; s=selector1-amd-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=Rvuue36Qh2BnkewowOXZz5X9sDyU46P+NQ6bbWgNYAk=; b=rDoHuxREcyawreqeFoHn0+L06lqH3OrOsL/ZLrFe2NrQQxG+CpesHJ3KArdQXRa/iijGom38p6RgniYMHT9Ob1jMwud4ifo+yNTSzyzT8WnvaSiHQxER8ILZ0d5+tVY3HHJEk2asqJvM8DhV5zyLuJ9q/gDQ++BjL3pHlpGYeSg= Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Received: from wsp141597wss.amd.com (165.204.78.1) by SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.282.5; Wed, 6 Dec 2017 20:04:59 +0000 From: Brijesh Singh To: qemu-devel@nongnu.org Date: Wed, 6 Dec 2017 14:03:46 -0600 Message-Id: <20171206200346.116537-24-brijesh.singh@amd.com> X-Mailer: git-send-email 2.9.5 In-Reply-To: <20171206200346.116537-1-brijesh.singh@amd.com> References: <20171206200346.116537-1-brijesh.singh@amd.com> MIME-Version: 1.0 X-Originating-IP: [165.204.78.1] X-ClientProxiedBy: BN6PR14CA0035.namprd14.prod.outlook.com (10.171.172.149) To SN1PR12MB0158.namprd12.prod.outlook.com (10.162.3.145) X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-HT: Tenant X-MS-Office365-Filtering-Correlation-Id: f7eda456-c04f-4777-4e80-08d53ce4a1d1 X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(2017052603286); SRVR:SN1PR12MB0158; X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 3:1hCr5v7r/kWV3afGS4mFrBlluyPo19/NxWTgTh8mPi+xsyZ3R6FI5s8UjEN2wNDRxB5zuxqv+XAsIw5akRtmNCtu5pxfeJ9vL+WP8UDNOEv5hdO1zhQkl/X3cWrMl9gdMATNX3sA2mPbsXPEykOAyDluhmeQEkhXgqU4pl0Y/Lp3IZ2PEq0Cmh6HcWGevjOziqG5LjOQu86VcOuimL/a115SlcmihsCLt1144Zdy/SXOPEVKFMmnHYDRf6WHAKRK; 25:YODW87TWEvwz8aw9FRaKpT1GoZgofYuOzIC0fXg/C9MJdWUgmbZMZ/0Gk1QAVut1B9mE0CjmQPooJCecMbmF+ysbIUe92+d5Mm9lAKRgPxoGpHoCw2fDyc6v9Myok4GJHFvYg8PmVNL7ZU/dXfLvox8V7Zw/mvXfrOTgDd5ouXq6Vf8RiTU/Q/VMY08dflGQh0BkcxNbUI8MCKM4d9ZSJwuRB6eN6TtBItKesPPM0VhZvekHHeg1nDYKpclTMq2vueJElA0T/QgnbugUPPsQj6OLeiq0il8C3OZTQM5CbTPrJoQ1cmnHCASV74gHqXYDw9r/8nL/QAP9y/rH4uHWvA==; 31:RVHwIDDMLfN7oEoHYn8gotDAPm50o0m1D+04H+5WzUKtHuI1SCQuHpSZrr1I/5P3qqHtZlcFlkU6DwBAAONcyEd0QT5+yVCYXUzXQYYmJz9mchvuqZq9fcbdISGAWu1fes6Jq35Z0q2GipATRwxnST22hOqcCQOokhcQSkSHmTRETdBN+RRtkBk+4sye6ERzXeK9ZBPgtFNqe9bZgvoI4ZnypnOEODsMfcJpaB0Ey7k= X-MS-TrafficTypeDiagnostic: SN1PR12MB0158: X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:DprkE3CwbQxG+4xk6q4n0aC5F676eTABUb6FNDwBBQrCKvmgzOIheBpaXtplkSj2zVFEyz98OlXB0ZIRLOG3HMdrBTby2BR8lBWZg7t/GBLIZLWp8FR2qE0D6gSlwSuFi4qDgwiE1aroRhA4VSORMef5yDj6QKeSu2Zse5yBThaY+bhRNLClryLlcLVbf9/AQzVDYrizNE5/CO2aiOntjyWzCktYbWgJ4wM4uGnY4pdk/Ri6tjY1851EvTIuMxPKL20/lyQ/M6Gq88M00VdC9UGt+BqrGSnIS4/OU1mduWwNx0hUPhjO8xmQOGuERMUH+LCpps4CD1qzbQeV3rqJqhENj/uxWebb1EhYNabmqTFxGHPYLA+ypqVN+rjqBhCIU6d8MhHTyX/S3borAd2bCI47S4rBIA1EkQgpjpLGcqjr4hz3ItSeK8hcOVKDGkzyIMtwfeKfsqfMvLHEBivglDMWFWUJ72cOb+1/KjdIlGWdadRirzI4ORzKuk94uA+E; 4:IK2sPV1f1crfH9ww2fX5NIDn+5Zaxs2ggROcV1yiKqGgiSrEjgvh/aSjlNhPD+eQPy4Z2OaRriqOgqWlKKy73uoV6kSAbaWCjRe4U8KhBCZ9qnZtDqlciI579XmbwW3culd2NknAuPPUP8NTzoEu9nsFlxdWxTKGqiPdRP1C2mIOaB6XvtuSrPcdrlqVxXXWY4ctimENBVZ8NNK2cNmKSSM+VaTH+I/G2F5z2nlx57Y/KNd2vjNBv3olY0j2n+oosIVFWQ2CuAw/+dw1PNG/AEJOuQRTgv4D5l71WS+xAdZfcq+AKLnuJz/jOIis8yk9 X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(767451399110); X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040450)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231022)(6055026)(6041248)(20161123555025)(20161123558100)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123564025)(6072148)(201708071742011); SRVR:SN1PR12MB0158; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:SN1PR12MB0158; X-Forefront-PRVS: 05134F8B4F X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10009020)(376002)(39860400002)(346002)(366004)(199004)(189003)(16526018)(16586007)(33646002)(53416004)(105586002)(39060400002)(4326008)(305945005)(2351001)(106356001)(2361001)(7736002)(7696005)(86362001)(52116002)(8936002)(316002)(53936002)(97736004)(76176011)(51416003)(36756003)(66066001)(1076002)(3846002)(25786009)(6116002)(47776003)(50226002)(68736007)(54906003)(6916009)(2950100002)(478600001)(6666003)(8666007)(5660300001)(8656006)(8676002)(101416001)(81156014)(81166006)(2906002)(7416002)(48376002)(6486002)(50466002); DIR:OUT; SFP:1101; SCL:1; SRVR:SN1PR12MB0158; H:wsp141597wss.amd.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; Received-SPF: None (protection.outlook.com: amd.com does not designate permitted sender hosts) X-Microsoft-Exchange-Diagnostics: =?us-ascii?Q?1; SN1PR12MB0158; 23:MyG5ETbDdn8NdcwNvutDEUXLhV55zACu3L10KfZkm?= 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 X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 6:OYNm9cjniVsuF+A8TJPiLxs+3y0KfM/EsiaUqtKAuNgegnVQJ3MhodgCBfPA41i5OFYOJIAQKBsnS35KVQXw4C8DX0qLwWnIK1J25nnCSt6rAmTk5+Qpe0mcELP/7GrOhaXRZUaZcNgpHfUs3l56U/LnZNdAR5i6ulYUS1eC1K+P9EI4XG3aEMFuBBmMbDe9giWyI+MT+bF3lt0PDmTIL8RN4fcFhsqOYCHVJJehrRdDId5eIvFnveNx0+frkKkjci7ps7gkAdCP0r6DfxmKu9HTtLkfjhgO/lzOGwZDD76PueNzaGV2ep0ATzqMf8JYZyTuToaQJlvHVsGX43VbZW0Tg8p/RM3p7uunW+zA8G0=; 5:pRbN41jOZ9jwJAR0KWqZSi04bNMlOYceaQrl1kMVraKtSpvObU/ARRQLpnW0fubZLmqA4UDEUmhDioRwkd9kMQ8KOLht8RWcsM9ngMBLAenPKJvkxg6jg0WmnwjRHcYJ1UaODg/DMINwUTGOjpBWClSsSbSm8IRJE/K0cf0i06c=; 24:Du0VQ/+s8gECbYsAMBlo8yo7KBNU8ePenNzs7cu79969bHUbbExJqoGo+rQ2L+4RRi0cMYiP2mJ3KiMPUNJ687MK6b/JH8FMFqU0C99o11w=; 7:xGOUFdIt2XLhyQNUjA8TIjLbisBafqZeKw7spbtifY6bDim4UfX6RNaG6gMsFoeCD0poCuWrBLFaXTFdt7dzYAZp2s9pwE7CxGVd5xiLbMpX7tjVN5vu5EUiz7Jv22vmTfL63L47i+yrDXZow5pizOmH1a2UZa2xjj9fKu3oRpQ8XIcj9E74wNEOF2S6OUdlIIFxVen15SEYCDh9MhxQkQECe6my8Jx6kPPpgqWLmyt/CH8wq/CMd4KkGwfMnXCQ SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1; SN1PR12MB0158; 20:ynvr9WDwvaT+j/08+MsqaB8MSWb8qINAxQAIO5O8PxU+0I51wustcKM/e5GYo4iytdoXThtJqRA16yXMFj5WdywXpmX0XdkOhoy0UWkCEFTElaUFsxEnZgzTc2MR5AeuAQSVvOO/m8iv6L1TYoyrAQ6xoH9WebJ6VcqZSm7OP8GGDqdmDsaPfEsvsBT4Nt7B0I8XGU3GbdiRB1ybdJYa4JZuJHaai3qTGkxzv8DOmKj0pj7T+zYF6Nmm5VASs8Sp X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Dec 2017 20:04:59.0821 (UTC) X-MS-Exchange-CrossTenant-Network-Message-Id: f7eda456-c04f-4777-4e80-08d53ce4a1d1 X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 3dd8961f-e488-4e60-8e11-a82d994e183d X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0158 X-detected-operating-system: by eggs.gnu.org: Windows 7 or 8 [fuzzy] X-Received-From: 104.47.32.63 Subject: [Qemu-devel] [PATCH v5 23/23] sev: add migration blocker X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: "Edgar E . Iglesias " , Peter Maydell , Peter Crosthwaite , Eduardo Habkost , kvm@vger.kernel.org, Marcel Apfelbaum , Markus Armbruster , "Michael S. Tsirkin" , Richard Henderson , "Dr. David Alan Gilbert" , Alistair Francis , Christian Borntraeger , Brijesh Singh , Stefan Hajnoczi , Cornelia Huck , Paolo Bonzini , Thomas Lendacky , Borislav Petkov , Richard Henderson Errors-To: qemu-devel-bounces+incoming=patchwork.ozlabs.org@nongnu.org Sender: "Qemu-devel" SEV guest migration is not yet implemented yet. Signed-off-by: Brijesh Singh Reviewed-by: Dr. David Alan Gilbert --- accel/kvm/sev.c | 13 +++++++++++++ 1 file changed, 13 insertions(+) diff --git a/accel/kvm/sev.c b/accel/kvm/sev.c index 3edfb5b08416..10647645eacd 100644 --- a/accel/kvm/sev.c +++ b/accel/kvm/sev.c @@ -19,6 +19,7 @@ #include "sysemu/sev.h" #include "sysemu/sysemu.h" #include "qapi-event.h" +#include "migration/blocker.h" #define DEFAULT_GUEST_POLICY 0x1 /* disable debug */ #define DEFAULT_SEV_DEVICE "/dev/sev" @@ -36,6 +37,7 @@ static int sev_fd; static SEVState *sev_state; static MemoryRegionRAMReadWriteOps sev_ops; +static Error *sev_mig_blocker; #define SEV_FW_MAX_ERROR 0x17 @@ -460,6 +462,7 @@ static void sev_launch_finish(SEVState *s) { int ret, error; + Error *local_err = NULL; ret = sev_ioctl(KVM_SEV_LAUNCH_FINISH, 0, &error); if (ret) { @@ -470,6 +473,16 @@ sev_launch_finish(SEVState *s) s->cur_state = SEV_STATE_RUNNING; DPRINTF("SEV: LAUNCH_FINISH\n"); + + /* add migration blocker */ + error_setg(&sev_mig_blocker, + "SEV: Migration is not implemented"); + ret = migrate_add_blocker(sev_mig_blocker, &local_err); + if (local_err) { + error_report_err(local_err); + error_free(sev_mig_blocker); + exit(1); + } } static void