blob: 7bcca105f9791e6c369c59ac9f10acc82f2744af [file] [log] [blame]
Paolo Bonzini6dd844d2012-08-22 16:43:07 +02001/*
2 * Serving QEMU block devices via NBD
3 *
4 * Copyright (c) 2012 Red Hat, Inc.
5 *
6 * Author: Paolo Bonzini <pbonzini@redhat.com>
7 *
8 * This work is licensed under the terms of the GNU GPL, version 2 or
9 * later. See the COPYING file in the top-level directory.
10 */
11
Peter Maydelld38ea872016-01-29 17:50:05 +000012#include "qemu/osdep.h"
Paolo Bonzini9c17d612012-12-17 18:20:04 +010013#include "sysemu/blockdev.h"
Max Reitze1401772014-11-18 12:21:17 +010014#include "sysemu/block-backend.h"
Paolo Bonzini0d09e412013-02-05 17:06:20 +010015#include "hw/block/block.h"
Markus Armbrustere688df62018-02-01 12:18:31 +010016#include "qapi/error.h"
Kevin Wolf5daa6bf2020-09-24 17:26:48 +020017#include "qapi/qapi-commands-block-export.h"
Paolo Bonzini737e1502012-12-17 18:19:44 +010018#include "block/nbd.h"
Daniel P. Berrangeae398272016-02-10 18:41:03 +000019#include "io/channel-socket.h"
Daniel P. Berrange862172f2017-12-18 10:16:42 +000020#include "io/net-listener.h"
Paolo Bonzini6dd844d2012-08-22 16:43:07 +020021
Daniel P. Berrangeddffee32016-02-10 18:41:14 +000022typedef struct NBDServerData {
Daniel P. Berrange862172f2017-12-18 10:16:42 +000023 QIONetListener *listener;
Daniel P. Berrangeddffee32016-02-10 18:41:14 +000024 QCryptoTLSCreds *tlscreds;
Daniel P. Berrange00019452019-02-27 16:20:34 +000025 char *tlsauthz;
Daniel P. Berrangeddffee32016-02-10 18:41:14 +000026} NBDServerData;
27
28static NBDServerData *nbd_server;
29
Eric Blake0c9390d2017-06-08 17:26:17 -050030static void nbd_blockdev_client_closed(NBDClient *client, bool ignored)
31{
32 nbd_client_put(client);
33}
Paolo Bonzini6dd844d2012-08-22 16:43:07 +020034
Daniel P. Berrange862172f2017-12-18 10:16:42 +000035static void nbd_accept(QIONetListener *listener, QIOChannelSocket *cioc,
36 gpointer opaque)
Paolo Bonzini6dd844d2012-08-22 16:43:07 +020037{
Daniel P. Berrange0d73f722016-09-30 11:57:14 +010038 qio_channel_set_name(QIO_CHANNEL(cioc), "nbd-server");
Daniel P. Berrange00019452019-02-27 16:20:34 +000039 nbd_client_new(cioc, nbd_server->tlscreds, nbd_server->tlsauthz,
Eric Blake0c9390d2017-06-08 17:26:17 -050040 nbd_blockdev_client_closed);
Paolo Bonzini6dd844d2012-08-22 16:43:07 +020041}
42
Daniel P. Berrangeddffee32016-02-10 18:41:14 +000043
44static void nbd_server_free(NBDServerData *server)
Paolo Bonzini6dd844d2012-08-22 16:43:07 +020045{
Daniel P. Berrangeddffee32016-02-10 18:41:14 +000046 if (!server) {
47 return;
48 }
49
Daniel P. Berrange862172f2017-12-18 10:16:42 +000050 qio_net_listener_disconnect(server->listener);
51 object_unref(OBJECT(server->listener));
Daniel P. Berrangeddffee32016-02-10 18:41:14 +000052 if (server->tlscreds) {
53 object_unref(OBJECT(server->tlscreds));
54 }
Daniel P. Berrange00019452019-02-27 16:20:34 +000055 g_free(server->tlsauthz);
Daniel P. Berrangeddffee32016-02-10 18:41:14 +000056
57 g_free(server);
58}
59
60static QCryptoTLSCreds *nbd_get_tls_creds(const char *id, Error **errp)
61{
62 Object *obj;
63 QCryptoTLSCreds *creds;
64
65 obj = object_resolve_path_component(
66 object_get_objects_root(), id);
67 if (!obj) {
68 error_setg(errp, "No TLS credentials with id '%s'",
69 id);
70 return NULL;
71 }
72 creds = (QCryptoTLSCreds *)
73 object_dynamic_cast(obj, TYPE_QCRYPTO_TLS_CREDS);
74 if (!creds) {
75 error_setg(errp, "Object with id '%s' is not TLS credentials",
76 id);
77 return NULL;
78 }
79
80 if (creds->endpoint != QCRYPTO_TLS_CREDS_ENDPOINT_SERVER) {
81 error_setg(errp,
82 "Expecting TLS credentials with a server endpoint");
83 return NULL;
84 }
85 object_ref(obj);
86 return creds;
87}
88
89
Markus Armbrusterbd269eb2017-04-26 09:36:41 +020090void nbd_server_start(SocketAddress *addr, const char *tls_creds,
Daniel P. Berrange00019452019-02-27 16:20:34 +000091 const char *tls_authz, Error **errp)
Daniel P. Berrangeddffee32016-02-10 18:41:14 +000092{
93 if (nbd_server) {
Paolo Bonzini6dd844d2012-08-22 16:43:07 +020094 error_setg(errp, "NBD server already running");
95 return;
96 }
97
Daniel P. Berrangeddffee32016-02-10 18:41:14 +000098 nbd_server = g_new0(NBDServerData, 1);
Daniel P. Berrange862172f2017-12-18 10:16:42 +000099 nbd_server->listener = qio_net_listener_new();
100
101 qio_net_listener_set_name(nbd_server->listener,
102 "nbd-listener");
103
Juan Quintelafc8135c2019-08-19 18:08:21 +0200104 if (qio_net_listener_open_sync(nbd_server->listener, addr, 1, errp) < 0) {
Daniel P. Berrangeddffee32016-02-10 18:41:14 +0000105 goto error;
Paolo Bonzini6dd844d2012-08-22 16:43:07 +0200106 }
Daniel P. Berrangeae398272016-02-10 18:41:03 +0000107
Markus Armbrusterbd269eb2017-04-26 09:36:41 +0200108 if (tls_creds) {
Daniel P. Berrangeddffee32016-02-10 18:41:14 +0000109 nbd_server->tlscreds = nbd_get_tls_creds(tls_creds, errp);
110 if (!nbd_server->tlscreds) {
111 goto error;
112 }
113
Markus Armbrusterbd269eb2017-04-26 09:36:41 +0200114 /* TODO SOCKET_ADDRESS_TYPE_FD where fd has AF_INET or AF_INET6 */
115 if (addr->type != SOCKET_ADDRESS_TYPE_INET) {
Daniel P. Berrangeddffee32016-02-10 18:41:14 +0000116 error_setg(errp, "TLS is only supported with IPv4/IPv6");
117 goto error;
118 }
119 }
120
Daniel P. Berrange00019452019-02-27 16:20:34 +0000121 nbd_server->tlsauthz = g_strdup(tls_authz);
122
Daniel P. Berrange862172f2017-12-18 10:16:42 +0000123 qio_net_listener_set_client_func(nbd_server->listener,
124 nbd_accept,
125 NULL,
126 NULL);
Daniel P. Berrangeddffee32016-02-10 18:41:14 +0000127
128 return;
129
130 error:
131 nbd_server_free(nbd_server);
132 nbd_server = NULL;
Paolo Bonzini6dd844d2012-08-22 16:43:07 +0200133}
134
Kevin Wolfeed8b692020-02-24 15:29:57 +0100135void nbd_server_start_options(NbdServerOptions *arg, Error **errp)
136{
137 nbd_server_start(arg->addr, arg->tls_creds, arg->tls_authz, errp);
138}
139
Markus Armbrusterbd269eb2017-04-26 09:36:41 +0200140void qmp_nbd_server_start(SocketAddressLegacy *addr,
141 bool has_tls_creds, const char *tls_creds,
Daniel P. Berrange00019452019-02-27 16:20:34 +0000142 bool has_tls_authz, const char *tls_authz,
Markus Armbrusterbd269eb2017-04-26 09:36:41 +0200143 Error **errp)
144{
145 SocketAddress *addr_flat = socket_address_flatten(addr);
146
Daniel P. Berrange00019452019-02-27 16:20:34 +0000147 nbd_server_start(addr_flat, tls_creds, tls_authz, errp);
Markus Armbrusterbd269eb2017-04-26 09:36:41 +0200148 qapi_free_SocketAddress(addr_flat);
149}
150
Kevin Wolf56ee8622020-09-24 17:26:50 +0200151BlockExport *nbd_export_create(BlockExportOptions *exp_args, Error **errp)
Paolo Bonzini6dd844d2012-08-22 16:43:07 +0200152{
Kevin Wolf56ee8622020-09-24 17:26:50 +0200153 BlockExportOptionsNbd *arg = &exp_args->u.nbd;
Kevin Wolf094138d2016-07-06 14:15:51 +0200154 BlockDriverState *bs = NULL;
Kevin Wolf56ee8622020-09-24 17:26:50 +0200155 NBDExport *exp = NULL;
Eric Blake61bc8462019-09-16 21:39:17 -0500156 AioContext *aio_context;
Paolo Bonzini6dd844d2012-08-22 16:43:07 +0200157
Kevin Wolf56ee8622020-09-24 17:26:50 +0200158 assert(exp_args->type == BLOCK_EXPORT_TYPE_NBD);
159
Daniel P. Berrangeddffee32016-02-10 18:41:14 +0000160 if (!nbd_server) {
Paolo Bonzini17b6be42012-11-12 14:25:17 +0100161 error_setg(errp, "NBD server not running");
Kevin Wolf56ee8622020-09-24 17:26:50 +0200162 return NULL;
Paolo Bonzini17b6be42012-11-12 14:25:17 +0100163 }
164
Kevin Wolfc62d24e2020-02-24 15:29:58 +0100165 if (!arg->has_name) {
166 arg->name = arg->device;
Vladimir Sementsov-Ogievskiy902a1f92018-01-19 16:57:15 +0300167 }
168
Kevin Wolfc62d24e2020-02-24 15:29:58 +0100169 if (strlen(arg->name) > NBD_MAX_STRING_SIZE) {
170 error_setg(errp, "export name '%s' too long", arg->name);
Kevin Wolf56ee8622020-09-24 17:26:50 +0200171 return NULL;
Eric Blake93676c82019-11-13 20:46:34 -0600172 }
173
Kevin Wolfc62d24e2020-02-24 15:29:58 +0100174 if (arg->description && strlen(arg->description) > NBD_MAX_STRING_SIZE) {
175 error_setg(errp, "description '%s' too long", arg->description);
Kevin Wolf56ee8622020-09-24 17:26:50 +0200176 return NULL;
Eric Blakedeb6ccb2019-11-13 20:46:35 -0600177 }
178
Kevin Wolfc62d24e2020-02-24 15:29:58 +0100179 if (nbd_export_find(arg->name)) {
180 error_setg(errp, "NBD server already has export named '%s'", arg->name);
Kevin Wolf56ee8622020-09-24 17:26:50 +0200181 return NULL;
Paolo Bonzini6dd844d2012-08-22 16:43:07 +0200182 }
183
Kevin Wolfc62d24e2020-02-24 15:29:58 +0100184 bs = bdrv_lookup_bs(arg->device, arg->device, errp);
Kevin Wolf094138d2016-07-06 14:15:51 +0200185 if (!bs) {
Kevin Wolf56ee8622020-09-24 17:26:50 +0200186 return NULL;
Hani Benhabiles60fe4fa2014-05-18 11:50:04 +0100187 }
Paolo Bonzini6dd844d2012-08-22 16:43:07 +0200188
Eric Blake61bc8462019-09-16 21:39:17 -0500189 aio_context = bdrv_get_aio_context(bs);
190 aio_context_acquire(aio_context);
Eric Blake7596bbb2019-01-17 13:36:42 -0600191
Kevin Wolfc62d24e2020-02-24 15:29:58 +0100192 if (!arg->has_writable) {
193 arg->writable = false;
Paolo Bonzinie6444732012-11-04 12:43:37 +0100194 }
Kevin Wolf9b562c62020-09-24 17:26:53 +0200195 if (bdrv_is_read_only(bs) && arg->writable) {
196 error_setg(errp, "Cannot export read-only node as writable");
197 goto out;
Paolo Bonzinie6444732012-11-04 12:43:37 +0100198 }
199
Kevin Wolfb57e4de2020-09-24 17:26:52 +0200200 exp = nbd_export_new(bs, arg->name, arg->description, arg->bitmap,
Kevin Wolfc62d24e2020-02-24 15:29:58 +0100201 !arg->writable, !arg->writable,
Kevin Wolf9b562c62020-09-24 17:26:53 +0200202 NULL, false, errp);
Max Reitz98f44bb2015-02-25 13:08:21 -0500203 if (!exp) {
Eric Blake61bc8462019-09-16 21:39:17 -0500204 goto out;
Max Reitz98f44bb2015-02-25 13:08:21 -0500205 }
Paolo Bonzini6dd844d2012-08-22 16:43:07 +0200206
Max Reitz741cc432016-01-29 16:36:06 +0100207 /* The list of named exports has a strong reference to this export now and
208 * our only way of accessing it is through nbd_export_find(), so we can drop
209 * the strong reference that is @exp. */
210 nbd_export_put(exp);
Eric Blake61bc8462019-09-16 21:39:17 -0500211
212 out:
213 aio_context_release(aio_context);
Kevin Wolf56ee8622020-09-24 17:26:50 +0200214 /* TODO Remove the cast: nbd_export_new() will return a BlockExport. */
215 return (BlockExport*) exp;
216}
217
218void qmp_nbd_server_add(BlockExportOptionsNbd *arg, Error **errp)
219{
Kevin Wolf9b562c62020-09-24 17:26:53 +0200220 BlockExport *export;
221 BlockDriverState *bs;
222 BlockBackend *on_eject_blk;
223 BlockExportOptions export_opts;
224
225 bs = bdrv_lookup_bs(arg->device, arg->device, errp);
226 if (!bs) {
227 return;
228 }
229
230 export_opts = (BlockExportOptions) {
Kevin Wolf56ee8622020-09-24 17:26:50 +0200231 .type = BLOCK_EXPORT_TYPE_NBD,
232 .u.nbd = *arg,
233 };
Kevin Wolf9b562c62020-09-24 17:26:53 +0200234
235 /*
236 * nbd-server-add doesn't complain when a read-only device should be
237 * exported as writable, but simply downgrades it. This is an error with
238 * block-export-add.
239 */
240 if (bdrv_is_read_only(bs)) {
241 export_opts.u.nbd.has_writable = true;
242 export_opts.u.nbd.writable = false;
243 }
244
245 export = blk_exp_add(&export_opts, errp);
246 if (!export) {
247 return;
248 }
249
250 /*
251 * nbd-server-add removes the export when the named BlockBackend used for
252 * @device goes away.
253 */
254 on_eject_blk = blk_by_name(arg->device);
255 if (on_eject_blk) {
256 nbd_export_set_on_eject_blk(export, on_eject_blk);
257 }
Paolo Bonzini6dd844d2012-08-22 16:43:07 +0200258}
259
Vladimir Sementsov-Ogievskiya3b0dc72018-01-19 16:57:16 +0300260void qmp_nbd_server_remove(const char *name,
261 bool has_mode, NbdServerRemoveMode mode,
262 Error **errp)
263{
264 NBDExport *exp;
Eric Blake61bc8462019-09-16 21:39:17 -0500265 AioContext *aio_context;
Vladimir Sementsov-Ogievskiya3b0dc72018-01-19 16:57:16 +0300266
267 if (!nbd_server) {
268 error_setg(errp, "NBD server not running");
269 return;
270 }
271
272 exp = nbd_export_find(name);
273 if (exp == NULL) {
274 error_setg(errp, "Export '%s' is not found", name);
275 return;
276 }
277
278 if (!has_mode) {
279 mode = NBD_SERVER_REMOVE_MODE_SAFE;
280 }
281
Eric Blake61bc8462019-09-16 21:39:17 -0500282 aio_context = nbd_export_aio_context(exp);
283 aio_context_acquire(aio_context);
Vladimir Sementsov-Ogievskiya3b0dc72018-01-19 16:57:16 +0300284 nbd_export_remove(exp, mode, errp);
Eric Blake61bc8462019-09-16 21:39:17 -0500285 aio_context_release(aio_context);
Vladimir Sementsov-Ogievskiya3b0dc72018-01-19 16:57:16 +0300286}
287
Paolo Bonzini6dd844d2012-08-22 16:43:07 +0200288void qmp_nbd_server_stop(Error **errp)
289{
Eric Blake7801c3a2019-01-11 13:47:14 -0600290 if (!nbd_server) {
291 error_setg(errp, "NBD server not running");
292 return;
293 }
294
Max Reitz741cc432016-01-29 16:36:06 +0100295 nbd_export_close_all();
Paolo Bonzini6dd844d2012-08-22 16:43:07 +0200296
Daniel P. Berrangeddffee32016-02-10 18:41:14 +0000297 nbd_server_free(nbd_server);
298 nbd_server = NULL;
Paolo Bonzini6dd844d2012-08-22 16:43:07 +0200299}