From: "Jürgen Groß" <jgross@suse.com>
To: Jan Beulich <jbeulich@suse.com>
Cc: Boris Ostrovsky <boris.ostrovsky@oracle.com>,
Thomas Gleixner <tglx@linutronix.de>,
Ingo Molnar <mingo@redhat.com>, Borislav Petkov <bp@alien8.de>,
Dave Hansen <dave.hansen@linux.intel.com>,
"H. Peter Anvin" <hpa@zytor.com>,
xen-devel@lists.xenproject.org, linux-kernel@vger.kernel.org,
x86@kernel.org
Subject: Re: [PATCH v2 5/7] xen: add capability to remap non-RAM pages to different PFNs
Date: Tue, 10 Sep 2024 09:59:25 +0200 [thread overview]
Message-ID: <699e3cfe-6682-4234-abd8-c3c460ab7fd2@suse.com> (raw)
In-Reply-To: <d32735a1-79a9-43c1-b4a6-15ddbc203646@suse.com>
[-- Attachment #1.1.1: Type: text/plain, Size: 4260 bytes --]
On 20.08.24 11:38, Jan Beulich wrote:
> On 20.08.2024 10:20, Juergen Gross wrote:
>> When running as a Xen PV dom0 it can happen that the kernel is being
>> loaded to a guest physical address conflicting with the host memory
>> map.
>>
>> In order to be able to resolve this conflict, add the capability to
>> remap non-RAM areas to different guest PFNs. A function to use this
>> remapping information for other purposes than doing the remap will be
>> added when needed.
>>
>> As the number of conflicts should be rather low (currently only
>> machines with max. 1 conflict are known), save the remap data in a
>> small statically allocated array.
>>
>> Signed-off-by: Juergen Gross <jgross@suse.com>
>> ---
>> V2:
>> - split off from patch 5 of V1 of the series
>> - moved to p2m.c
>> ---
>> arch/x86/xen/p2m.c | 65 ++++++++++++++++++++++++++++++++++++++++++
>> arch/x86/xen/xen-ops.h | 3 ++
>> 2 files changed, 68 insertions(+)
>>
>> diff --git a/arch/x86/xen/p2m.c b/arch/x86/xen/p2m.c
>> index 7c735b730acd..bb55e0fe1a04 100644
>> --- a/arch/x86/xen/p2m.c
>> +++ b/arch/x86/xen/p2m.c
>> @@ -80,6 +80,7 @@
>> #include <asm/xen/hypervisor.h>
>> #include <xen/balloon.h>
>> #include <xen/grant_table.h>
>> +#include <xen/hvc-console.h>
>>
>> #include "xen-ops.h"
>>
>> @@ -792,6 +793,70 @@ int clear_foreign_p2m_mapping(struct gnttab_unmap_grant_ref *unmap_ops,
>> return ret;
>> }
>>
>> +/* Remapped non-RAM areas */
>> +#define NR_NONRAM_REMAP 4
>> +static struct nonram_remap {
>> + phys_addr_t maddr;
>> + phys_addr_t paddr;
>> + unsigned long size;
>
> size_t?
Fine with me.
>
>> +} xen_nonram_remap[NR_NONRAM_REMAP];
>> +static unsigned int nr_nonram_remap;
>
> Both __initdata? Or, considering patch 6, at least __ro_after_init?
__ro_after_init should be fine.
>
>> +/*
>> + * Do the real remapping of non-RAM regions as specified in the
>> + * xen_nonram_remap[] array.
>> + * In case of an error just crash the system.
>> + */
>> +void __init xen_do_remap_nonram(void)
>> +{
>> + unsigned int i;
>> + unsigned int remapped = 0;
>> + struct nonram_remap *remap = xen_nonram_remap;
>> + unsigned long pfn, mfn, len;
>> +
>> + if (!nr_nonram_remap)
>> + return;
>> +
>> + for (i = 0; i < nr_nonram_remap; i++) {
>> + pfn = PFN_DOWN(remap->paddr);
>> + mfn = PFN_DOWN(remap->maddr);
>> + for (len = 0; len < remap->size; len += PAGE_SIZE) {
>> + if (!set_phys_to_machine(pfn, mfn)) {
>> + pr_err("Failed to set p2m mapping for pfn=%ld mfn=%ld\n",
>
> I'm not convinced that frame numbers logged in decimal are overly useful.
I agree. Will switch to hex.
>
>> + pfn, mfn);
>> + BUG();
>> + }
>> +
>> + pfn++;
>> + mfn++;
>> + remapped++;
>> + }
>> +
>> + remap++;
>> + }
>> +
>> + pr_info("Remapped %u non-RAM page(s)\n", remapped);
>
> This message may be useful in a log also when nothing was remapped - maybe
> drop the initial if()?
Fine with me.
>
>> +}
>> +
>> +/*
>> + * Add a new non-RAM remap entry.
>> + * In case of no free entry found, just crash the system.
>> + */
>> +void __init xen_add_remap_nonram(phys_addr_t maddr, phys_addr_t paddr,
>> + unsigned long size)
>> +{
>> + if (nr_nonram_remap == NR_NONRAM_REMAP) {
>> + xen_raw_console_write("Number of required E820 entry remapping actions exceed maximum value\n");
>> + BUG();
>> + }
>> +
>> + xen_nonram_remap[nr_nonram_remap].maddr = maddr;
>> + xen_nonram_remap[nr_nonram_remap].paddr = paddr;
>> + xen_nonram_remap[nr_nonram_remap].size = size;
>> +
>> + nr_nonram_remap++;
>> +}
>
> You don't enforce any constraints on the addresses / size here. With
> this the loop in xen_do_remap_nonram() may terminate too early if non-
> page-aligned values were passed into here. Both addresses not having
> the same offset-into-page may also end up anomalous. Might be worth
> switching to frame numbers / number-of-pages for the tracking struct.
Hmm, I'd like to at least WARN() in case someone tries to access a remapped
area out of bounds, which requires to keep the original non-page-aligned
values.
I'll fix the xen_do_remap_nonram() loop.
Juergen
[-- Attachment #1.1.2: OpenPGP public key --]
[-- Type: application/pgp-keys, Size: 3743 bytes --]
[-- Attachment #2: OpenPGP digital signature --]
[-- Type: application/pgp-signature, Size: 495 bytes --]
next prev parent reply other threads:[~2024-09-10 7:59 UTC|newest]
Thread overview: 23+ messages / expand[flat|nested] mbox.gz Atom feed top
2024-08-20 8:20 [PATCH v2 0/7] xen: fix dom0 PV boot on some AMD machines Juergen Gross
2024-08-20 8:20 ` [PATCH v2 1/7] xen: use correct end address of kernel for conflict checking Juergen Gross
2024-08-20 8:29 ` Jan Beulich
2024-08-20 8:20 ` [PATCH v2 2/7] xen: introduce generic helper checking for memory map conflicts Juergen Gross
2024-08-20 8:35 ` Jan Beulich
2024-08-22 11:29 ` Jürgen Groß
2024-08-20 8:20 ` [PATCH v2 3/7] xen: move checks for e820 conflicts further up Juergen Gross
2024-08-20 8:40 ` Jan Beulich
2024-08-20 8:20 ` [PATCH v2 4/7] xen: move max_pfn in xen_memory_setup() out of function scope Juergen Gross
2024-08-20 8:44 ` Jan Beulich
2024-08-22 11:38 ` Jürgen Groß
2024-08-20 8:20 ` [PATCH v2 5/7] xen: add capability to remap non-RAM pages to different PFNs Juergen Gross
2024-08-20 9:38 ` Jan Beulich
2024-09-10 7:59 ` Jürgen Groß [this message]
2024-08-20 8:20 ` [PATCH v2 6/7] xen: allow mapping ACPI data using a different physical address Juergen Gross
2024-08-20 9:56 ` Jan Beulich
2024-09-10 8:15 ` Juergen Gross
2024-09-10 8:54 ` Jan Beulich
2024-08-20 17:37 ` kernel test robot
2024-08-20 19:39 ` kernel test robot
2024-08-20 8:20 ` [PATCH v2 7/7] xen: tolerate ACPI NVS memory overlapping with Xen allocated memory Juergen Gross
2024-08-20 10:23 ` Jan Beulich
2024-09-10 8:16 ` Jürgen Groß
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=699e3cfe-6682-4234-abd8-c3c460ab7fd2@suse.com \
--to=jgross@suse.com \
--cc=boris.ostrovsky@oracle.com \
--cc=bp@alien8.de \
--cc=dave.hansen@linux.intel.com \
--cc=hpa@zytor.com \
--cc=jbeulich@suse.com \
--cc=linux-kernel@vger.kernel.org \
--cc=mingo@redhat.com \
--cc=tglx@linutronix.de \
--cc=x86@kernel.org \
--cc=xen-devel@lists.xenproject.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
all inboxes | Powered by JetHome®