blob: 34a63b5dbbf78fe4ef2df536658c09197a973347 [file] [log] [blame]
Zhang Chenf6d3afb2016-03-15 15:41:33 +08001/*
2 * Copyright (c) 2016 HUAWEI TECHNOLOGIES CO., LTD.
3 * Copyright (c) 2016 FUJITSU LIMITED
4 * Copyright (c) 2016 Intel Corporation
5 *
6 * Author: Zhang Chen <zhangchen.fnst@cn.fujitsu.com>
7 *
8 * This work is licensed under the terms of the GNU GPL, version 2 or
9 * later. See the COPYING file in the top-level directory.
10 */
11
12#include "qemu/osdep.h"
13#include "net/filter.h"
14#include "net/net.h"
Zhang Chenf6d3afb2016-03-15 15:41:33 +080015#include "qapi/error.h"
Zhang Chenf6d3afb2016-03-15 15:41:33 +080016#include "qom/object.h"
17#include "qemu/main-loop.h"
18#include "qemu/error-report.h"
19#include "trace.h"
Marc-André Lureau4d43a602017-01-26 18:26:44 +040020#include "chardev/char-fe.h"
Zhang Chenf6d3afb2016-03-15 15:41:33 +080021#include "qemu/iov.h"
22#include "qemu/sockets.h"
Rao Lei61138292022-01-14 13:09:02 +080023#include "block/aio-wait.h"
Zhang Chenf6d3afb2016-03-15 15:41:33 +080024
Eduardo Habkostdb1015e2020-09-03 16:43:22 -040025#define TYPE_FILTER_MIRROR "filter-mirror"
26typedef struct MirrorState MirrorState;
Eduardo Habkost8110fa12020-08-31 17:07:33 -040027DECLARE_INSTANCE_CHECKER(MirrorState, FILTER_MIRROR,
28 TYPE_FILTER_MIRROR)
Zhang Chenf6d3afb2016-03-15 15:41:33 +080029
Eduardo Habkostdb1015e2020-09-03 16:43:22 -040030#define TYPE_FILTER_REDIRECTOR "filter-redirector"
Eduardo Habkost8110fa12020-08-31 17:07:33 -040031DECLARE_INSTANCE_CHECKER(MirrorState, FILTER_REDIRECTOR,
32 TYPE_FILTER_REDIRECTOR)
Zhang Chend46f75b2016-03-17 16:16:26 +080033
Zhang Chend46f75b2016-03-17 16:16:26 +080034#define REDIRECTOR_MAX_LEN NET_BUFSIZE
Zhang Chenf6d3afb2016-03-15 15:41:33 +080035
Eduardo Habkostdb1015e2020-09-03 16:43:22 -040036struct MirrorState {
Zhang Chenf6d3afb2016-03-15 15:41:33 +080037 NetFilterState parent_obj;
Zhang Chend46f75b2016-03-17 16:16:26 +080038 char *indev;
Zhang Chenf6d3afb2016-03-15 15:41:33 +080039 char *outdev;
Marc-André Lureau32a6ebe2016-10-22 12:52:52 +030040 CharBackend chr_in;
41 CharBackend chr_out;
Zhang Chen16a3df42016-05-13 15:35:19 +080042 SocketReadState rs;
Zhang Chene2521f02017-07-04 14:53:48 +080043 bool vnet_hdr;
Eduardo Habkostdb1015e2020-09-03 16:43:22 -040044};
Zhang Chenf6d3afb2016-03-15 15:41:33 +080045
Rao Lei61138292022-01-14 13:09:02 +080046typedef struct FilterSendCo {
47 MirrorState *s;
48 char *buf;
49 ssize_t size;
50 bool done;
51 int ret;
52} FilterSendCo;
53
54static int _filter_send(MirrorState *s,
55 char *buf,
56 ssize_t size)
Zhang Chenf6d3afb2016-03-15 15:41:33 +080057{
Zhang Chene2521f02017-07-04 14:53:48 +080058 NetFilterState *nf = NETFILTER(s);
Zhang Chenf6d3afb2016-03-15 15:41:33 +080059 int ret = 0;
Zhang Chenf0aabd52017-03-02 11:59:30 +080060 uint32_t len = 0;
Zhang Chenf6d3afb2016-03-15 15:41:33 +080061
62 len = htonl(size);
Zhang Chendc3c5ac2017-07-04 14:53:47 +080063 ret = qemu_chr_fe_write_all(&s->chr_out, (uint8_t *)&len, sizeof(len));
Zhang Chenf6d3afb2016-03-15 15:41:33 +080064 if (ret != sizeof(len)) {
65 goto err;
66 }
67
Zhang Chene2521f02017-07-04 14:53:48 +080068 if (s->vnet_hdr) {
69 /*
70 * If vnet_hdr = on, we send vnet header len to make other
71 * module(like colo-compare) know how to parse net
72 * packet correctly.
73 */
74 ssize_t vnet_hdr_len;
75
76 vnet_hdr_len = nf->netdev->vnet_hdr_len;
77
78 len = htonl(vnet_hdr_len);
79 ret = qemu_chr_fe_write_all(&s->chr_out, (uint8_t *)&len, sizeof(len));
80 if (ret != sizeof(len)) {
81 goto err;
82 }
83 }
84
Zhang Chendc3c5ac2017-07-04 14:53:47 +080085 ret = qemu_chr_fe_write_all(&s->chr_out, (uint8_t *)buf, size);
Zhang Chenf6d3afb2016-03-15 15:41:33 +080086 if (ret != size) {
87 goto err;
88 }
89
Rao, Lei7c2eae92021-06-08 16:23:27 +080090 return size;
Zhang Chenf6d3afb2016-03-15 15:41:33 +080091
92err:
93 return ret < 0 ? ret : -EIO;
94}
95
Rao Lei61138292022-01-14 13:09:02 +080096static void coroutine_fn filter_send_co(void *opaque)
97{
98 FilterSendCo *data = opaque;
99
100 data->ret = _filter_send(data->s, data->buf, data->size);
101 data->done = true;
102 g_free(data->buf);
103 aio_wait_kick();
104}
105
106static int filter_send(MirrorState *s,
107 const struct iovec *iov,
108 int iovcnt)
109{
110 ssize_t size = iov_size(iov, iovcnt);
111 char *buf = NULL;
112
113 if (!size) {
114 return 0;
115 }
116
117 buf = g_malloc(size);
118 iov_to_buf(iov, iovcnt, 0, buf, size);
119
120 FilterSendCo data = {
121 .s = s,
122 .size = size,
123 .buf = buf,
124 .ret = 0,
125 };
126
127 Coroutine *co = qemu_coroutine_create(filter_send_co, &data);
128 qemu_coroutine_enter(co);
129
130 while (!data.done) {
131 aio_poll(qemu_get_aio_context(), true);
132 }
133
134 return data.ret;
135}
136
Zhang Chenf0aabd52017-03-02 11:59:30 +0800137static void redirector_to_filter(NetFilterState *nf,
138 const uint8_t *buf,
139 int len)
Zhang Chend46f75b2016-03-17 16:16:26 +0800140{
141 struct iovec iov = {
142 .iov_base = (void *)buf,
143 .iov_len = len,
144 };
145
146 if (nf->direction == NET_FILTER_DIRECTION_ALL ||
147 nf->direction == NET_FILTER_DIRECTION_TX) {
148 qemu_netfilter_pass_to_next(nf->netdev, 0, &iov, 1, nf);
149 }
150
151 if (nf->direction == NET_FILTER_DIRECTION_ALL ||
152 nf->direction == NET_FILTER_DIRECTION_RX) {
153 qemu_netfilter_pass_to_next(nf->netdev->peer, 0, &iov, 1, nf);
154 }
155}
156
157static int redirector_chr_can_read(void *opaque)
158{
159 return REDIRECTOR_MAX_LEN;
160}
161
162static void redirector_chr_read(void *opaque, const uint8_t *buf, int size)
163{
164 NetFilterState *nf = opaque;
165 MirrorState *s = FILTER_REDIRECTOR(nf);
Zhang Chen16a3df42016-05-13 15:35:19 +0800166 int ret;
Zhang Chend46f75b2016-03-17 16:16:26 +0800167
Zhang Chen16a3df42016-05-13 15:35:19 +0800168 ret = net_fill_rstate(&s->rs, buf, size);
Zhang Chend46f75b2016-03-17 16:16:26 +0800169
Zhang Chen16a3df42016-05-13 15:35:19 +0800170 if (ret == -1) {
Marc-André Lureau39ab61c2016-10-22 12:53:03 +0300171 qemu_chr_fe_set_handlers(&s->chr_in, NULL, NULL, NULL,
Anton Nefedov81517ba2017-07-06 15:08:49 +0300172 NULL, NULL, NULL, true);
Zhang Chend46f75b2016-03-17 16:16:26 +0800173 }
174}
175
Philippe Mathieu-Daudé083b2662019-12-18 18:20:09 +0100176static void redirector_chr_event(void *opaque, QEMUChrEvent event)
Zhang Chend46f75b2016-03-17 16:16:26 +0800177{
178 NetFilterState *nf = opaque;
179 MirrorState *s = FILTER_REDIRECTOR(nf);
180
181 switch (event) {
182 case CHR_EVENT_CLOSED:
Marc-André Lureau39ab61c2016-10-22 12:53:03 +0300183 qemu_chr_fe_set_handlers(&s->chr_in, NULL, NULL, NULL,
Anton Nefedov81517ba2017-07-06 15:08:49 +0300184 NULL, NULL, NULL, true);
Zhang Chend46f75b2016-03-17 16:16:26 +0800185 break;
186 default:
187 break;
188 }
189}
190
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800191static ssize_t filter_mirror_receive_iov(NetFilterState *nf,
192 NetClientState *sender,
193 unsigned flags,
194 const struct iovec *iov,
195 int iovcnt,
196 NetPacketSent *sent_cb)
197{
Zhang Chenba8940d2016-03-15 18:02:51 +0800198 MirrorState *s = FILTER_MIRROR(nf);
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800199 int ret;
200
Zhang Chendc3c5ac2017-07-04 14:53:47 +0800201 ret = filter_send(s, iov, iovcnt);
Rao, Lei7c2eae92021-06-08 16:23:27 +0800202 if (ret < 0) {
Zhang Chene05dc4c2017-05-17 10:09:39 +0800203 error_report("filter mirror send failed(%s)", strerror(-ret));
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800204 }
205
206 /*
207 * we don't hope this error interrupt the normal
208 * path of net packet, so we always return zero.
209 */
210 return 0;
211}
212
Zhang Chend46f75b2016-03-17 16:16:26 +0800213static ssize_t filter_redirector_receive_iov(NetFilterState *nf,
214 NetClientState *sender,
215 unsigned flags,
216 const struct iovec *iov,
217 int iovcnt,
218 NetPacketSent *sent_cb)
219{
220 MirrorState *s = FILTER_REDIRECTOR(nf);
221 int ret;
222
Anton Nefedov30650702017-07-06 15:08:52 +0300223 if (qemu_chr_fe_backend_connected(&s->chr_out)) {
Zhang Chendc3c5ac2017-07-04 14:53:47 +0800224 ret = filter_send(s, iov, iovcnt);
Rao, Lei7c2eae92021-06-08 16:23:27 +0800225 if (ret < 0) {
Zhang Chene05dc4c2017-05-17 10:09:39 +0800226 error_report("filter redirector send failed(%s)", strerror(-ret));
Zhang Chend46f75b2016-03-17 16:16:26 +0800227 }
Rao, Lei7c2eae92021-06-08 16:23:27 +0800228 return ret;
Zhang Chend46f75b2016-03-17 16:16:26 +0800229 } else {
230 return 0;
231 }
232}
233
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800234static void filter_mirror_cleanup(NetFilterState *nf)
235{
236 MirrorState *s = FILTER_MIRROR(nf);
237
Marc-André Lureau1ce26102017-01-27 00:49:13 +0400238 qemu_chr_fe_deinit(&s->chr_out, false);
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800239}
240
Zhang Chend46f75b2016-03-17 16:16:26 +0800241static void filter_redirector_cleanup(NetFilterState *nf)
242{
243 MirrorState *s = FILTER_REDIRECTOR(nf);
244
Marc-André Lureau1ce26102017-01-27 00:49:13 +0400245 qemu_chr_fe_deinit(&s->chr_in, false);
246 qemu_chr_fe_deinit(&s->chr_out, false);
Zhang Chend46f75b2016-03-17 16:16:26 +0800247}
248
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800249static void filter_mirror_setup(NetFilterState *nf, Error **errp)
250{
251 MirrorState *s = FILTER_MIRROR(nf);
Marc-André Lureau0ec7b3e2016-12-07 16:20:22 +0300252 Chardev *chr;
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800253
Eduardo Otuboaa1530d2017-09-29 14:03:39 +0200254 if (s->outdev == NULL) {
255 error_set(errp, ERROR_CLASS_DEVICE_NOT_FOUND, "filter-mirror parameter"\
256 " 'outdev' cannot be empty");
257 return;
258 }
259
Marc-André Lureau32a6ebe2016-10-22 12:52:52 +0300260 chr = qemu_chr_find(s->outdev);
261 if (chr == NULL) {
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800262 error_set(errp, ERROR_CLASS_DEVICE_NOT_FOUND,
263 "Device '%s' not found", s->outdev);
264 return;
265 }
266
Marc-André Lureau32a6ebe2016-10-22 12:52:52 +0300267 qemu_chr_fe_init(&s->chr_out, chr, errp);
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800268}
269
Zhang Chen16a3df42016-05-13 15:35:19 +0800270static void redirector_rs_finalize(SocketReadState *rs)
271{
272 MirrorState *s = container_of(rs, MirrorState, rs);
273 NetFilterState *nf = NETFILTER(s);
274
275 redirector_to_filter(nf, rs->buf, rs->packet_len);
276}
277
Zhang Chend46f75b2016-03-17 16:16:26 +0800278static void filter_redirector_setup(NetFilterState *nf, Error **errp)
279{
280 MirrorState *s = FILTER_REDIRECTOR(nf);
Marc-André Lureau0ec7b3e2016-12-07 16:20:22 +0300281 Chardev *chr;
Zhang Chend46f75b2016-03-17 16:16:26 +0800282
283 if (!s->indev && !s->outdev) {
284 error_setg(errp, "filter redirector needs 'indev' or "
285 "'outdev' at least one property set");
286 return;
287 } else if (s->indev && s->outdev) {
288 if (!strcmp(s->indev, s->outdev)) {
289 error_setg(errp, "'indev' and 'outdev' could not be same "
290 "for filter redirector");
291 return;
292 }
293 }
294
Zhang Chene2521f02017-07-04 14:53:48 +0800295 net_socket_rs_init(&s->rs, redirector_rs_finalize, s->vnet_hdr);
Zhang Chend46f75b2016-03-17 16:16:26 +0800296
297 if (s->indev) {
Marc-André Lureau32a6ebe2016-10-22 12:52:52 +0300298 chr = qemu_chr_find(s->indev);
299 if (chr == NULL) {
Zhang Chend46f75b2016-03-17 16:16:26 +0800300 error_set(errp, ERROR_CLASS_DEVICE_NOT_FOUND,
301 "IN Device '%s' not found", s->indev);
302 return;
303 }
304
Marc-André Lureau32a6ebe2016-10-22 12:52:52 +0300305 if (!qemu_chr_fe_init(&s->chr_in, chr, errp)) {
306 return;
307 }
Marc-André Lureau5345fdb2016-10-22 12:52:55 +0300308
309 qemu_chr_fe_set_handlers(&s->chr_in, redirector_chr_can_read,
310 redirector_chr_read, redirector_chr_event,
Anton Nefedov81517ba2017-07-06 15:08:49 +0300311 NULL, nf, NULL, true);
Zhang Chend46f75b2016-03-17 16:16:26 +0800312 }
313
314 if (s->outdev) {
Marc-André Lureau32a6ebe2016-10-22 12:52:52 +0300315 chr = qemu_chr_find(s->outdev);
316 if (chr == NULL) {
Zhang Chend46f75b2016-03-17 16:16:26 +0800317 error_set(errp, ERROR_CLASS_DEVICE_NOT_FOUND,
318 "OUT Device '%s' not found", s->outdev);
319 return;
320 }
Marc-André Lureau32a6ebe2016-10-22 12:52:52 +0300321 if (!qemu_chr_fe_init(&s->chr_out, chr, errp)) {
322 return;
323 }
Zhang Chend46f75b2016-03-17 16:16:26 +0800324 }
325}
326
Zhang Chend46f75b2016-03-17 16:16:26 +0800327static char *filter_redirector_get_indev(Object *obj, Error **errp)
328{
329 MirrorState *s = FILTER_REDIRECTOR(obj);
330
331 return g_strdup(s->indev);
332}
333
Zhang Chene05dc4c2017-05-17 10:09:39 +0800334static void filter_redirector_set_indev(Object *obj,
335 const char *value,
336 Error **errp)
Zhang Chend46f75b2016-03-17 16:16:26 +0800337{
338 MirrorState *s = FILTER_REDIRECTOR(obj);
339
340 g_free(s->indev);
341 s->indev = g_strdup(value);
342}
343
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800344static char *filter_mirror_get_outdev(Object *obj, Error **errp)
345{
346 MirrorState *s = FILTER_MIRROR(obj);
347
348 return g_strdup(s->outdev);
349}
350
Zhang Chene05dc4c2017-05-17 10:09:39 +0800351static void filter_mirror_set_outdev(Object *obj,
352 const char *value,
353 Error **errp)
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800354{
355 MirrorState *s = FILTER_MIRROR(obj);
356
357 g_free(s->outdev);
358 s->outdev = g_strdup(value);
359 if (!s->outdev) {
Zhang Chen52cfcb42016-09-30 10:27:58 +0800360 error_setg(errp, "filter mirror needs 'outdev' "
Zhang Chend46f75b2016-03-17 16:16:26 +0800361 "property set");
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800362 return;
363 }
364}
365
Zhang Chene2521f02017-07-04 14:53:48 +0800366static bool filter_mirror_get_vnet_hdr(Object *obj, Error **errp)
367{
368 MirrorState *s = FILTER_MIRROR(obj);
369
370 return s->vnet_hdr;
371}
372
373static void filter_mirror_set_vnet_hdr(Object *obj, bool value, Error **errp)
374{
375 MirrorState *s = FILTER_MIRROR(obj);
376
377 s->vnet_hdr = value;
378}
379
Zhang Chend46f75b2016-03-17 16:16:26 +0800380static char *filter_redirector_get_outdev(Object *obj, Error **errp)
381{
382 MirrorState *s = FILTER_REDIRECTOR(obj);
383
384 return g_strdup(s->outdev);
385}
386
Zhang Chene05dc4c2017-05-17 10:09:39 +0800387static void filter_redirector_set_outdev(Object *obj,
388 const char *value,
389 Error **errp)
Zhang Chend46f75b2016-03-17 16:16:26 +0800390{
391 MirrorState *s = FILTER_REDIRECTOR(obj);
392
393 g_free(s->outdev);
394 s->outdev = g_strdup(value);
395}
396
Zhang Chen00d5c242017-07-04 14:53:49 +0800397static bool filter_redirector_get_vnet_hdr(Object *obj, Error **errp)
398{
399 MirrorState *s = FILTER_REDIRECTOR(obj);
400
401 return s->vnet_hdr;
402}
403
404static void filter_redirector_set_vnet_hdr(Object *obj,
405 bool value,
406 Error **errp)
407{
408 MirrorState *s = FILTER_REDIRECTOR(obj);
409
410 s->vnet_hdr = value;
411}
412
Eduardo Habkost6d11ea62020-11-11 13:38:21 -0500413static void filter_mirror_class_init(ObjectClass *oc, void *data)
414{
415 NetFilterClass *nfc = NETFILTER_CLASS(oc);
416
Eduardo Habkostf0e34a02020-11-11 13:38:22 -0500417 object_class_property_add_str(oc, "outdev", filter_mirror_get_outdev,
418 filter_mirror_set_outdev);
419 object_class_property_add_bool(oc, "vnet_hdr_support",
420 filter_mirror_get_vnet_hdr,
421 filter_mirror_set_vnet_hdr);
422
Eduardo Habkost6d11ea62020-11-11 13:38:21 -0500423 nfc->setup = filter_mirror_setup;
424 nfc->cleanup = filter_mirror_cleanup;
425 nfc->receive_iov = filter_mirror_receive_iov;
426}
427
428static void filter_redirector_class_init(ObjectClass *oc, void *data)
429{
430 NetFilterClass *nfc = NETFILTER_CLASS(oc);
431
Eduardo Habkostf0e34a02020-11-11 13:38:22 -0500432 object_class_property_add_str(oc, "indev", filter_redirector_get_indev,
433 filter_redirector_set_indev);
434 object_class_property_add_str(oc, "outdev", filter_redirector_get_outdev,
435 filter_redirector_set_outdev);
436 object_class_property_add_bool(oc, "vnet_hdr_support",
437 filter_redirector_get_vnet_hdr,
438 filter_redirector_set_vnet_hdr);
439
Eduardo Habkost6d11ea62020-11-11 13:38:21 -0500440 nfc->setup = filter_redirector_setup;
441 nfc->cleanup = filter_redirector_cleanup;
442 nfc->receive_iov = filter_redirector_receive_iov;
443}
444
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800445static void filter_mirror_init(Object *obj)
446{
Zhang Chene2521f02017-07-04 14:53:48 +0800447 MirrorState *s = FILTER_MIRROR(obj);
448
Zhang Chene2521f02017-07-04 14:53:48 +0800449 s->vnet_hdr = false;
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800450}
451
Zhang Chend46f75b2016-03-17 16:16:26 +0800452static void filter_redirector_init(Object *obj)
453{
Zhang Chen00d5c242017-07-04 14:53:49 +0800454 MirrorState *s = FILTER_REDIRECTOR(obj);
455
Zhang Chen00d5c242017-07-04 14:53:49 +0800456 s->vnet_hdr = false;
Zhang Chend46f75b2016-03-17 16:16:26 +0800457}
458
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800459static void filter_mirror_fini(Object *obj)
460{
461 MirrorState *s = FILTER_MIRROR(obj);
462
463 g_free(s->outdev);
464}
465
Zhang Chend46f75b2016-03-17 16:16:26 +0800466static void filter_redirector_fini(Object *obj)
467{
468 MirrorState *s = FILTER_REDIRECTOR(obj);
469
470 g_free(s->indev);
471 g_free(s->outdev);
472}
473
474static const TypeInfo filter_redirector_info = {
475 .name = TYPE_FILTER_REDIRECTOR,
476 .parent = TYPE_NETFILTER,
477 .class_init = filter_redirector_class_init,
478 .instance_init = filter_redirector_init,
479 .instance_finalize = filter_redirector_fini,
480 .instance_size = sizeof(MirrorState),
481};
482
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800483static const TypeInfo filter_mirror_info = {
484 .name = TYPE_FILTER_MIRROR,
485 .parent = TYPE_NETFILTER,
486 .class_init = filter_mirror_class_init,
487 .instance_init = filter_mirror_init,
488 .instance_finalize = filter_mirror_fini,
489 .instance_size = sizeof(MirrorState),
490};
491
492static void register_types(void)
493{
494 type_register_static(&filter_mirror_info);
Zhang Chend46f75b2016-03-17 16:16:26 +0800495 type_register_static(&filter_redirector_info);
Zhang Chenf6d3afb2016-03-15 15:41:33 +0800496}
497
498type_init(register_types);