From: Yan Zhao <yan.y.zhao@intel.com>
To: Sean Christopherson <seanjc@google.com>
Cc: Paolo Bonzini <pbonzini@redhat.com>, <kvm@vger.kernel.org>,
<linux-kernel@vger.kernel.org>, Peter Xu <peterx@redhat.com>,
Maxim Levitsky <mlevitsk@redhat.com>
Subject: Re: [PATCH 4/5] KVM: Check for empty mask of harvested dirty ring entries in caller
Date: Mon, 13 Jan 2025 18:30:25 +0800 [thread overview]
Message-ID: <Z4TrQedpUgNrW2OB@yzhao56-desk.sh.intel.com> (raw)
In-Reply-To: <20250111010409.1252942-5-seanjc@google.com>
On Fri, Jan 10, 2025 at 05:04:08PM -0800, Sean Christopherson wrote:
> When resetting a dirty ring, explicitly check that there is work to be
> done before calling kvm_reset_dirty_gfn(), e.g. if no harvested entries
> are found and/or on the loop's first iteration, and delete the extremely
> misleading comment "This is only needed to make compilers happy". KVM
> absolutely relies on mask to be zero-initialized, i.e. the comment is an
> outright lie. Furthermore, the compiler is right to complain that KVM is
> calling a function with uninitialized data, as there are no guarantees
> the implementation details of kvm_reset_dirty_gfn() will be visible to
> kvm_dirty_ring_reset().
>
> While the flaw could be fixed by simply deleting (or rewording) the
> comment, and duplicating the check is unfortunate, checking mask in the
> caller will allow for additional cleanups.
>
> Opportunisticaly drop the zero-initialization of cur_slot and cur_offset.
> If a bug were introduced where either the slot or offset was consumed
> before mask is set to a non-zero value, then it is highly desirable for
> the compiler (or some other sanitizer) to yell.
>
> Cc: Peter Xu <peterx@redhat.com>
> Cc: Yan Zhao <yan.y.zhao@intel.com>
> Cc: Maxim Levitsky <mlevitsk@redhat.com>
> Signed-off-by: Sean Christopherson <seanjc@google.com>
> ---
> virt/kvm/dirty_ring.c | 29 ++++++++++++++++++++---------
> 1 file changed, 20 insertions(+), 9 deletions(-)
>
> diff --git a/virt/kvm/dirty_ring.c b/virt/kvm/dirty_ring.c
> index 37eb2b7142bd..95ab0e3cf9da 100644
> --- a/virt/kvm/dirty_ring.c
> +++ b/virt/kvm/dirty_ring.c
> @@ -55,9 +55,6 @@ static void kvm_reset_dirty_gfn(struct kvm *kvm, u32 slot, u64 offset, u64 mask)
> struct kvm_memory_slot *memslot;
> int as_id, id;
>
> - if (!mask)
> - return;
> -
> as_id = slot >> 16;
> id = (u16)slot;
>
> @@ -109,13 +106,10 @@ int kvm_dirty_ring_reset(struct kvm *kvm, struct kvm_dirty_ring *ring,
> {
> u32 cur_slot, next_slot;
> u64 cur_offset, next_offset;
> - unsigned long mask;
> + unsigned long mask = 0;
> struct kvm_dirty_gfn *entry;
> bool first_round = true;
>
> - /* This is only needed to make compilers happy */
> - cur_slot = cur_offset = mask = 0;
> -
> while (likely((*nr_entries_reset) < INT_MAX)) {
> if (signal_pending(current))
> return -EINTR;
> @@ -163,14 +157,31 @@ int kvm_dirty_ring_reset(struct kvm *kvm, struct kvm_dirty_ring *ring,
> continue;
> }
> }
> - kvm_reset_dirty_gfn(kvm, cur_slot, cur_offset, mask);
> +
> + /*
> + * Reset the slot for all the harvested entries that have been
> + * gathered, but not yet fully processed.
> + */
I really like the logs as it took me quite a while figuring out how this part of
the code works :)
Does "processed" mean the entries have been reset, and "gathered" means they've
been read from the ring?
I'm not sure, but do you like this version? e.g.
"Combined reset of the harvested entries that can be identified by curr_slot
plus cur_offset+mask" ?
> + if (mask)
> + kvm_reset_dirty_gfn(kvm, cur_slot, cur_offset, mask);
> +
> + /*
> + * The current slot was reset or this is the first harvested
> + * entry, (re)initialize the metadata.
> + */
What about
"Save the current slot and cur_offset (with mask initialized to 1) to check if
any future entries can be found for a combined reset." ?
> cur_slot = next_slot;
> cur_offset = next_offset;
> mask = 1;
> first_round = false;
> }
>
> - kvm_reset_dirty_gfn(kvm, cur_slot, cur_offset, mask);
> + /*
> + * Perform a final reset if there are harvested entries that haven't
> + * been processed. The loop only performs a reset when an entry can't
> + * be coalesced, i.e. always leaves at least one entry pending.
The loop only performs a reset when an entry can be coalesced?
> + */
> + if (mask)
> + kvm_reset_dirty_gfn(kvm, cur_slot, cur_offset, mask);
>
> /*
> * The request KVM_REQ_DIRTY_RING_SOFT_FULL will be cleared
> --
> 2.47.1.613.gc27f4b7a9f-goog
>
next prev parent reply other threads:[~2025-01-13 10:31 UTC|newest]
Thread overview: 19+ messages / expand[flat|nested] mbox.gz Atom feed top
2025-01-11 1:04 [PATCH 0/5] KVM: Dirty ring fixes and cleanups Sean Christopherson
2025-01-11 1:04 ` [PATCH 1/5] KVM: Bound the number of dirty ring entries in a single reset at INT_MAX Sean Christopherson
2025-01-13 6:48 ` Yan Zhao
2025-01-13 6:57 ` Yan Zhao
2025-01-11 1:04 ` [PATCH 2/5] KVM: Bail from the dirty ring reset flow if a signal is pending Sean Christopherson
2025-01-13 9:31 ` Yan Zhao
2025-01-13 15:48 ` Sean Christopherson
2025-01-14 7:29 ` Yan Zhao
2025-01-14 17:16 ` Sean Christopherson
2025-01-11 1:04 ` [PATCH 3/5] KVM: Conditionally reschedule when resetting the dirty ring Sean Christopherson
2025-01-13 7:04 ` Yan Zhao
2025-01-13 16:28 ` Sean Christopherson
2025-01-14 7:58 ` Yan Zhao
2025-01-11 1:04 ` [PATCH 4/5] KVM: Check for empty mask of harvested dirty ring entries in caller Sean Christopherson
2025-01-13 10:30 ` Yan Zhao [this message]
2025-01-13 16:48 ` Sean Christopherson
2025-01-14 8:13 ` Yan Zhao
2025-01-11 1:04 ` [PATCH 5/5] KVM: Use mask of harvested dirty ring entries to coalesce dirty ring resets Sean Christopherson
2025-01-13 9:51 ` [PATCH 0/5] KVM: Dirty ring fixes and cleanups Yan Zhao
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=Z4TrQedpUgNrW2OB@yzhao56-desk.sh.intel.com \
--to=yan.y.zhao@intel.com \
--cc=kvm@vger.kernel.org \
--cc=linux-kernel@vger.kernel.org \
--cc=mlevitsk@redhat.com \
--cc=pbonzini@redhat.com \
--cc=peterx@redhat.com \
--cc=seanjc@google.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
all inboxes | Powered by JetHome®