Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 1 | /* |
| 2 | * Serving QEMU block devices via NBD |
| 3 | * |
| 4 | * Copyright (c) 2012 Red Hat, Inc. |
| 5 | * |
| 6 | * Author: Paolo Bonzini <pbonzini@redhat.com> |
| 7 | * |
| 8 | * This work is licensed under the terms of the GNU GPL, version 2 or |
| 9 | * later. See the COPYING file in the top-level directory. |
| 10 | */ |
| 11 | |
Peter Maydell | d38ea87 | 2016-01-29 17:50:05 +0000 | [diff] [blame] | 12 | #include "qemu/osdep.h" |
Paolo Bonzini | 9c17d61 | 2012-12-17 18:20:04 +0100 | [diff] [blame] | 13 | #include "sysemu/blockdev.h" |
Max Reitz | e140177 | 2014-11-18 12:21:17 +0100 | [diff] [blame] | 14 | #include "sysemu/block-backend.h" |
Paolo Bonzini | 0d09e41 | 2013-02-05 17:06:20 +0100 | [diff] [blame] | 15 | #include "hw/block/block.h" |
Markus Armbruster | e688df6 | 2018-02-01 12:18:31 +0100 | [diff] [blame] | 16 | #include "qapi/error.h" |
Kevin Wolf | 5daa6bf | 2020-09-24 17:26:48 +0200 | [diff] [blame] | 17 | #include "qapi/qapi-commands-block-export.h" |
Paolo Bonzini | 737e150 | 2012-12-17 18:19:44 +0100 | [diff] [blame] | 18 | #include "block/nbd.h" |
Daniel P. Berrange | ae39827 | 2016-02-10 18:41:03 +0000 | [diff] [blame] | 19 | #include "io/channel-socket.h" |
Daniel P. Berrange | 862172f | 2017-12-18 10:16:42 +0000 | [diff] [blame] | 20 | #include "io/net-listener.h" |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 21 | |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 22 | typedef struct NBDServerData { |
Daniel P. Berrange | 862172f | 2017-12-18 10:16:42 +0000 | [diff] [blame] | 23 | QIONetListener *listener; |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 24 | QCryptoTLSCreds *tlscreds; |
Daniel P. Berrange | 0001945 | 2019-02-27 16:20:34 +0000 | [diff] [blame] | 25 | char *tlsauthz; |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 26 | } NBDServerData; |
| 27 | |
| 28 | static NBDServerData *nbd_server; |
| 29 | |
Eric Blake | 0c9390d | 2017-06-08 17:26:17 -0500 | [diff] [blame] | 30 | static void nbd_blockdev_client_closed(NBDClient *client, bool ignored) |
| 31 | { |
| 32 | nbd_client_put(client); |
| 33 | } |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 34 | |
Daniel P. Berrange | 862172f | 2017-12-18 10:16:42 +0000 | [diff] [blame] | 35 | static void nbd_accept(QIONetListener *listener, QIOChannelSocket *cioc, |
| 36 | gpointer opaque) |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 37 | { |
Daniel P. Berrange | 0d73f72 | 2016-09-30 11:57:14 +0100 | [diff] [blame] | 38 | qio_channel_set_name(QIO_CHANNEL(cioc), "nbd-server"); |
Daniel P. Berrange | 0001945 | 2019-02-27 16:20:34 +0000 | [diff] [blame] | 39 | nbd_client_new(cioc, nbd_server->tlscreds, nbd_server->tlsauthz, |
Eric Blake | 0c9390d | 2017-06-08 17:26:17 -0500 | [diff] [blame] | 40 | nbd_blockdev_client_closed); |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 41 | } |
| 42 | |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 43 | |
| 44 | static void nbd_server_free(NBDServerData *server) |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 45 | { |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 46 | if (!server) { |
| 47 | return; |
| 48 | } |
| 49 | |
Daniel P. Berrange | 862172f | 2017-12-18 10:16:42 +0000 | [diff] [blame] | 50 | qio_net_listener_disconnect(server->listener); |
| 51 | object_unref(OBJECT(server->listener)); |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 52 | if (server->tlscreds) { |
| 53 | object_unref(OBJECT(server->tlscreds)); |
| 54 | } |
Daniel P. Berrange | 0001945 | 2019-02-27 16:20:34 +0000 | [diff] [blame] | 55 | g_free(server->tlsauthz); |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 56 | |
| 57 | g_free(server); |
| 58 | } |
| 59 | |
| 60 | static QCryptoTLSCreds *nbd_get_tls_creds(const char *id, Error **errp) |
| 61 | { |
| 62 | Object *obj; |
| 63 | QCryptoTLSCreds *creds; |
| 64 | |
| 65 | obj = object_resolve_path_component( |
| 66 | object_get_objects_root(), id); |
| 67 | if (!obj) { |
| 68 | error_setg(errp, "No TLS credentials with id '%s'", |
| 69 | id); |
| 70 | return NULL; |
| 71 | } |
| 72 | creds = (QCryptoTLSCreds *) |
| 73 | object_dynamic_cast(obj, TYPE_QCRYPTO_TLS_CREDS); |
| 74 | if (!creds) { |
| 75 | error_setg(errp, "Object with id '%s' is not TLS credentials", |
| 76 | id); |
| 77 | return NULL; |
| 78 | } |
| 79 | |
| 80 | if (creds->endpoint != QCRYPTO_TLS_CREDS_ENDPOINT_SERVER) { |
| 81 | error_setg(errp, |
| 82 | "Expecting TLS credentials with a server endpoint"); |
| 83 | return NULL; |
| 84 | } |
| 85 | object_ref(obj); |
| 86 | return creds; |
| 87 | } |
| 88 | |
| 89 | |
Markus Armbruster | bd269eb | 2017-04-26 09:36:41 +0200 | [diff] [blame] | 90 | void nbd_server_start(SocketAddress *addr, const char *tls_creds, |
Daniel P. Berrange | 0001945 | 2019-02-27 16:20:34 +0000 | [diff] [blame] | 91 | const char *tls_authz, Error **errp) |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 92 | { |
| 93 | if (nbd_server) { |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 94 | error_setg(errp, "NBD server already running"); |
| 95 | return; |
| 96 | } |
| 97 | |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 98 | nbd_server = g_new0(NBDServerData, 1); |
Daniel P. Berrange | 862172f | 2017-12-18 10:16:42 +0000 | [diff] [blame] | 99 | nbd_server->listener = qio_net_listener_new(); |
| 100 | |
| 101 | qio_net_listener_set_name(nbd_server->listener, |
| 102 | "nbd-listener"); |
| 103 | |
Juan Quintela | fc8135c | 2019-08-19 18:08:21 +0200 | [diff] [blame] | 104 | if (qio_net_listener_open_sync(nbd_server->listener, addr, 1, errp) < 0) { |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 105 | goto error; |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 106 | } |
Daniel P. Berrange | ae39827 | 2016-02-10 18:41:03 +0000 | [diff] [blame] | 107 | |
Markus Armbruster | bd269eb | 2017-04-26 09:36:41 +0200 | [diff] [blame] | 108 | if (tls_creds) { |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 109 | nbd_server->tlscreds = nbd_get_tls_creds(tls_creds, errp); |
| 110 | if (!nbd_server->tlscreds) { |
| 111 | goto error; |
| 112 | } |
| 113 | |
Markus Armbruster | bd269eb | 2017-04-26 09:36:41 +0200 | [diff] [blame] | 114 | /* TODO SOCKET_ADDRESS_TYPE_FD where fd has AF_INET or AF_INET6 */ |
| 115 | if (addr->type != SOCKET_ADDRESS_TYPE_INET) { |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 116 | error_setg(errp, "TLS is only supported with IPv4/IPv6"); |
| 117 | goto error; |
| 118 | } |
| 119 | } |
| 120 | |
Daniel P. Berrange | 0001945 | 2019-02-27 16:20:34 +0000 | [diff] [blame] | 121 | nbd_server->tlsauthz = g_strdup(tls_authz); |
| 122 | |
Daniel P. Berrange | 862172f | 2017-12-18 10:16:42 +0000 | [diff] [blame] | 123 | qio_net_listener_set_client_func(nbd_server->listener, |
| 124 | nbd_accept, |
| 125 | NULL, |
| 126 | NULL); |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 127 | |
| 128 | return; |
| 129 | |
| 130 | error: |
| 131 | nbd_server_free(nbd_server); |
| 132 | nbd_server = NULL; |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 133 | } |
| 134 | |
Kevin Wolf | eed8b69 | 2020-02-24 15:29:57 +0100 | [diff] [blame] | 135 | void nbd_server_start_options(NbdServerOptions *arg, Error **errp) |
| 136 | { |
| 137 | nbd_server_start(arg->addr, arg->tls_creds, arg->tls_authz, errp); |
| 138 | } |
| 139 | |
Markus Armbruster | bd269eb | 2017-04-26 09:36:41 +0200 | [diff] [blame] | 140 | void qmp_nbd_server_start(SocketAddressLegacy *addr, |
| 141 | bool has_tls_creds, const char *tls_creds, |
Daniel P. Berrange | 0001945 | 2019-02-27 16:20:34 +0000 | [diff] [blame] | 142 | bool has_tls_authz, const char *tls_authz, |
Markus Armbruster | bd269eb | 2017-04-26 09:36:41 +0200 | [diff] [blame] | 143 | Error **errp) |
| 144 | { |
| 145 | SocketAddress *addr_flat = socket_address_flatten(addr); |
| 146 | |
Daniel P. Berrange | 0001945 | 2019-02-27 16:20:34 +0000 | [diff] [blame] | 147 | nbd_server_start(addr_flat, tls_creds, tls_authz, errp); |
Markus Armbruster | bd269eb | 2017-04-26 09:36:41 +0200 | [diff] [blame] | 148 | qapi_free_SocketAddress(addr_flat); |
| 149 | } |
| 150 | |
Kevin Wolf | 56ee862 | 2020-09-24 17:26:50 +0200 | [diff] [blame] | 151 | BlockExport *nbd_export_create(BlockExportOptions *exp_args, Error **errp) |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 152 | { |
Kevin Wolf | 56ee862 | 2020-09-24 17:26:50 +0200 | [diff] [blame] | 153 | BlockExportOptionsNbd *arg = &exp_args->u.nbd; |
Kevin Wolf | 094138d | 2016-07-06 14:15:51 +0200 | [diff] [blame] | 154 | BlockDriverState *bs = NULL; |
Kevin Wolf | 56ee862 | 2020-09-24 17:26:50 +0200 | [diff] [blame] | 155 | NBDExport *exp = NULL; |
Eric Blake | 61bc846 | 2019-09-16 21:39:17 -0500 | [diff] [blame] | 156 | AioContext *aio_context; |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 157 | |
Kevin Wolf | 56ee862 | 2020-09-24 17:26:50 +0200 | [diff] [blame] | 158 | assert(exp_args->type == BLOCK_EXPORT_TYPE_NBD); |
| 159 | |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 160 | if (!nbd_server) { |
Paolo Bonzini | 17b6be4 | 2012-11-12 14:25:17 +0100 | [diff] [blame] | 161 | error_setg(errp, "NBD server not running"); |
Kevin Wolf | 56ee862 | 2020-09-24 17:26:50 +0200 | [diff] [blame] | 162 | return NULL; |
Paolo Bonzini | 17b6be4 | 2012-11-12 14:25:17 +0100 | [diff] [blame] | 163 | } |
| 164 | |
Kevin Wolf | c62d24e | 2020-02-24 15:29:58 +0100 | [diff] [blame] | 165 | if (!arg->has_name) { |
| 166 | arg->name = arg->device; |
Vladimir Sementsov-Ogievskiy | 902a1f9 | 2018-01-19 16:57:15 +0300 | [diff] [blame] | 167 | } |
| 168 | |
Kevin Wolf | c62d24e | 2020-02-24 15:29:58 +0100 | [diff] [blame] | 169 | if (strlen(arg->name) > NBD_MAX_STRING_SIZE) { |
| 170 | error_setg(errp, "export name '%s' too long", arg->name); |
Kevin Wolf | 56ee862 | 2020-09-24 17:26:50 +0200 | [diff] [blame] | 171 | return NULL; |
Eric Blake | 93676c8 | 2019-11-13 20:46:34 -0600 | [diff] [blame] | 172 | } |
| 173 | |
Kevin Wolf | c62d24e | 2020-02-24 15:29:58 +0100 | [diff] [blame] | 174 | if (arg->description && strlen(arg->description) > NBD_MAX_STRING_SIZE) { |
| 175 | error_setg(errp, "description '%s' too long", arg->description); |
Kevin Wolf | 56ee862 | 2020-09-24 17:26:50 +0200 | [diff] [blame] | 176 | return NULL; |
Eric Blake | deb6ccb | 2019-11-13 20:46:35 -0600 | [diff] [blame] | 177 | } |
| 178 | |
Kevin Wolf | c62d24e | 2020-02-24 15:29:58 +0100 | [diff] [blame] | 179 | if (nbd_export_find(arg->name)) { |
| 180 | error_setg(errp, "NBD server already has export named '%s'", arg->name); |
Kevin Wolf | 56ee862 | 2020-09-24 17:26:50 +0200 | [diff] [blame] | 181 | return NULL; |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 182 | } |
| 183 | |
Kevin Wolf | c62d24e | 2020-02-24 15:29:58 +0100 | [diff] [blame] | 184 | bs = bdrv_lookup_bs(arg->device, arg->device, errp); |
Kevin Wolf | 094138d | 2016-07-06 14:15:51 +0200 | [diff] [blame] | 185 | if (!bs) { |
Kevin Wolf | 56ee862 | 2020-09-24 17:26:50 +0200 | [diff] [blame] | 186 | return NULL; |
Hani Benhabiles | 60fe4fa | 2014-05-18 11:50:04 +0100 | [diff] [blame] | 187 | } |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 188 | |
Eric Blake | 61bc846 | 2019-09-16 21:39:17 -0500 | [diff] [blame] | 189 | aio_context = bdrv_get_aio_context(bs); |
| 190 | aio_context_acquire(aio_context); |
Eric Blake | 7596bbb | 2019-01-17 13:36:42 -0600 | [diff] [blame] | 191 | |
Kevin Wolf | c62d24e | 2020-02-24 15:29:58 +0100 | [diff] [blame] | 192 | if (!arg->has_writable) { |
| 193 | arg->writable = false; |
Paolo Bonzini | e644473 | 2012-11-04 12:43:37 +0100 | [diff] [blame] | 194 | } |
Kevin Wolf | 9b562c6 | 2020-09-24 17:26:53 +0200 | [diff] [blame^] | 195 | if (bdrv_is_read_only(bs) && arg->writable) { |
| 196 | error_setg(errp, "Cannot export read-only node as writable"); |
| 197 | goto out; |
Paolo Bonzini | e644473 | 2012-11-04 12:43:37 +0100 | [diff] [blame] | 198 | } |
| 199 | |
Kevin Wolf | b57e4de | 2020-09-24 17:26:52 +0200 | [diff] [blame] | 200 | exp = nbd_export_new(bs, arg->name, arg->description, arg->bitmap, |
Kevin Wolf | c62d24e | 2020-02-24 15:29:58 +0100 | [diff] [blame] | 201 | !arg->writable, !arg->writable, |
Kevin Wolf | 9b562c6 | 2020-09-24 17:26:53 +0200 | [diff] [blame^] | 202 | NULL, false, errp); |
Max Reitz | 98f44bb | 2015-02-25 13:08:21 -0500 | [diff] [blame] | 203 | if (!exp) { |
Eric Blake | 61bc846 | 2019-09-16 21:39:17 -0500 | [diff] [blame] | 204 | goto out; |
Max Reitz | 98f44bb | 2015-02-25 13:08:21 -0500 | [diff] [blame] | 205 | } |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 206 | |
Max Reitz | 741cc43 | 2016-01-29 16:36:06 +0100 | [diff] [blame] | 207 | /* The list of named exports has a strong reference to this export now and |
| 208 | * our only way of accessing it is through nbd_export_find(), so we can drop |
| 209 | * the strong reference that is @exp. */ |
| 210 | nbd_export_put(exp); |
Eric Blake | 61bc846 | 2019-09-16 21:39:17 -0500 | [diff] [blame] | 211 | |
| 212 | out: |
| 213 | aio_context_release(aio_context); |
Kevin Wolf | 56ee862 | 2020-09-24 17:26:50 +0200 | [diff] [blame] | 214 | /* TODO Remove the cast: nbd_export_new() will return a BlockExport. */ |
| 215 | return (BlockExport*) exp; |
| 216 | } |
| 217 | |
| 218 | void qmp_nbd_server_add(BlockExportOptionsNbd *arg, Error **errp) |
| 219 | { |
Kevin Wolf | 9b562c6 | 2020-09-24 17:26:53 +0200 | [diff] [blame^] | 220 | BlockExport *export; |
| 221 | BlockDriverState *bs; |
| 222 | BlockBackend *on_eject_blk; |
| 223 | BlockExportOptions export_opts; |
| 224 | |
| 225 | bs = bdrv_lookup_bs(arg->device, arg->device, errp); |
| 226 | if (!bs) { |
| 227 | return; |
| 228 | } |
| 229 | |
| 230 | export_opts = (BlockExportOptions) { |
Kevin Wolf | 56ee862 | 2020-09-24 17:26:50 +0200 | [diff] [blame] | 231 | .type = BLOCK_EXPORT_TYPE_NBD, |
| 232 | .u.nbd = *arg, |
| 233 | }; |
Kevin Wolf | 9b562c6 | 2020-09-24 17:26:53 +0200 | [diff] [blame^] | 234 | |
| 235 | /* |
| 236 | * nbd-server-add doesn't complain when a read-only device should be |
| 237 | * exported as writable, but simply downgrades it. This is an error with |
| 238 | * block-export-add. |
| 239 | */ |
| 240 | if (bdrv_is_read_only(bs)) { |
| 241 | export_opts.u.nbd.has_writable = true; |
| 242 | export_opts.u.nbd.writable = false; |
| 243 | } |
| 244 | |
| 245 | export = blk_exp_add(&export_opts, errp); |
| 246 | if (!export) { |
| 247 | return; |
| 248 | } |
| 249 | |
| 250 | /* |
| 251 | * nbd-server-add removes the export when the named BlockBackend used for |
| 252 | * @device goes away. |
| 253 | */ |
| 254 | on_eject_blk = blk_by_name(arg->device); |
| 255 | if (on_eject_blk) { |
| 256 | nbd_export_set_on_eject_blk(export, on_eject_blk); |
| 257 | } |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 258 | } |
| 259 | |
Vladimir Sementsov-Ogievskiy | a3b0dc7 | 2018-01-19 16:57:16 +0300 | [diff] [blame] | 260 | void qmp_nbd_server_remove(const char *name, |
| 261 | bool has_mode, NbdServerRemoveMode mode, |
| 262 | Error **errp) |
| 263 | { |
| 264 | NBDExport *exp; |
Eric Blake | 61bc846 | 2019-09-16 21:39:17 -0500 | [diff] [blame] | 265 | AioContext *aio_context; |
Vladimir Sementsov-Ogievskiy | a3b0dc7 | 2018-01-19 16:57:16 +0300 | [diff] [blame] | 266 | |
| 267 | if (!nbd_server) { |
| 268 | error_setg(errp, "NBD server not running"); |
| 269 | return; |
| 270 | } |
| 271 | |
| 272 | exp = nbd_export_find(name); |
| 273 | if (exp == NULL) { |
| 274 | error_setg(errp, "Export '%s' is not found", name); |
| 275 | return; |
| 276 | } |
| 277 | |
| 278 | if (!has_mode) { |
| 279 | mode = NBD_SERVER_REMOVE_MODE_SAFE; |
| 280 | } |
| 281 | |
Eric Blake | 61bc846 | 2019-09-16 21:39:17 -0500 | [diff] [blame] | 282 | aio_context = nbd_export_aio_context(exp); |
| 283 | aio_context_acquire(aio_context); |
Vladimir Sementsov-Ogievskiy | a3b0dc7 | 2018-01-19 16:57:16 +0300 | [diff] [blame] | 284 | nbd_export_remove(exp, mode, errp); |
Eric Blake | 61bc846 | 2019-09-16 21:39:17 -0500 | [diff] [blame] | 285 | aio_context_release(aio_context); |
Vladimir Sementsov-Ogievskiy | a3b0dc7 | 2018-01-19 16:57:16 +0300 | [diff] [blame] | 286 | } |
| 287 | |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 288 | void qmp_nbd_server_stop(Error **errp) |
| 289 | { |
Eric Blake | 7801c3a | 2019-01-11 13:47:14 -0600 | [diff] [blame] | 290 | if (!nbd_server) { |
| 291 | error_setg(errp, "NBD server not running"); |
| 292 | return; |
| 293 | } |
| 294 | |
Max Reitz | 741cc43 | 2016-01-29 16:36:06 +0100 | [diff] [blame] | 295 | nbd_export_close_all(); |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 296 | |
Daniel P. Berrange | ddffee3 | 2016-02-10 18:41:14 +0000 | [diff] [blame] | 297 | nbd_server_free(nbd_server); |
| 298 | nbd_server = NULL; |
Paolo Bonzini | 6dd844d | 2012-08-22 16:43:07 +0200 | [diff] [blame] | 299 | } |