2 * Copyright (c) 2002 Poul-Henning Kamp
3 * Copyright (c) 2002 Networks Associates Technology, Inc.
6 * This software was developed for the FreeBSD Project by Poul-Henning Kamp
7 * and NAI Labs, the Security Research Division of Network Associates, Inc.
8 * under DARPA/SPAWAR contract N66001-01-C-8035 ("CBOSS"), as part of the
9 * DARPA CHATS research program.
11 * Redistribution and use in source and binary forms, with or without
12 * modification, are permitted provided that the following conditions
14 * 1. Redistributions of source code must retain the above copyright
15 * notice, this list of conditions and the following disclaimer.
16 * 2. Redistributions in binary form must reproduce the above copyright
17 * notice, this list of conditions and the following disclaimer in the
18 * documentation and/or other materials provided with the distribution.
19 * 3. The names of the authors may not be used to endorse or promote
20 * products derived from this software without specific prior written
23 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
24 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
25 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
26 * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
27 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
28 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
29 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
30 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
31 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
32 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
36 #include <sys/cdefs.h>
37 __FBSDID("$FreeBSD$");
39 #include <sys/param.h>
40 #include <sys/systm.h>
41 #include <sys/malloc.h>
42 #include <sys/kernel.h>
44 #include <sys/ctype.h>
48 #include <sys/mutex.h>
50 #include <sys/errno.h>
53 #include <sys/fcntl.h>
54 #include <sys/limits.h>
55 #include <sys/sysctl.h>
56 #include <geom/geom.h>
57 #include <geom/geom_int.h>
58 #include <machine/stdarg.h>
63 struct cdev *sc_alias;
68 static d_open_t g_dev_open;
69 static d_close_t g_dev_close;
70 static d_strategy_t g_dev_strategy;
71 static d_ioctl_t g_dev_ioctl;
73 static struct cdevsw g_dev_cdevsw = {
74 .d_version = D_VERSION,
76 .d_close = g_dev_close,
79 .d_ioctl = g_dev_ioctl,
80 .d_strategy = g_dev_strategy,
82 .d_flags = D_DISK | D_TRACKCLOSE,
85 static g_init_t g_dev_init;
86 static g_fini_t g_dev_fini;
87 static g_taste_t g_dev_taste;
88 static g_orphan_t g_dev_orphan;
89 static g_attrchanged_t g_dev_attrchanged;
91 static struct g_class g_dev_class = {
97 .orphan = g_dev_orphan,
98 .attrchanged = g_dev_attrchanged
102 * We target 262144 (8 x 32768) sectors by default as this significantly
103 * increases the throughput on commonly used SSD's with a marginal
104 * increase in non-interruptible request latency.
106 static uint64_t g_dev_del_max_sectors = 262144;
107 SYSCTL_DECL(_kern_geom);
108 SYSCTL_NODE(_kern_geom, OID_AUTO, dev, CTLFLAG_RW, 0, "GEOM_DEV stuff");
109 SYSCTL_QUAD(_kern_geom_dev, OID_AUTO, delete_max_sectors, CTLFLAG_RW,
110 &g_dev_del_max_sectors, 0, "Maximum number of sectors in a single "
111 "delete request sent to the provider. Larger requests are chunked "
112 "so they can be interrupted. (0 = disable chunking)");
114 static char *dumpdev = NULL;
116 g_dev_init(struct g_class *mp)
119 dumpdev = getenv("dumpdev");
123 g_dev_fini(struct g_class *mp)
130 g_dev_setdumpdev(struct cdev *dev)
132 struct g_kerneldump kd;
133 struct g_consumer *cp;
137 return (set_dumper(NULL));
143 error = g_io_getattr("GEOM::kerneldump", cp, &len, &kd);
145 error = set_dumper(&kd.di);
147 dev->si_flags |= SI_DUMPDEV;
153 init_dumpdev(struct cdev *dev)
158 if (strcmp(devtoname(dev), dumpdev) != 0)
160 if (g_dev_setdumpdev(dev) == 0) {
167 g_dev_destroy(void *arg, int flags __unused)
169 struct g_consumer *cp;
171 struct g_dev_softc *sc;
177 g_trace(G_T_TOPOLOGY, "g_dev_destroy(%p(%s))", cp, gp->name);
178 if (cp->acr > 0 || cp->acw > 0 || cp->ace > 0)
179 g_access(cp, -cp->acr, -cp->acw, -cp->ace);
181 g_destroy_consumer(cp);
183 mtx_destroy(&sc->sc_mtx);
193 LIST_FOREACH(gp, &g_dev_class.geom, geom) {
194 printf("%s%s", p, gp->name);
201 g_dev_attrchanged(struct g_consumer *cp, const char *attr)
203 struct g_dev_softc *sc;
205 char buf[SPECNAMELEN + 6];
208 if (strcmp(attr, "GEOM::media") == 0) {
210 snprintf(buf, sizeof(buf), "cdev=%s", dev->si_name);
211 devctl_notify_f("DEVFS", "CDEV", "MEDIACHANGE", buf, M_WAITOK);
214 snprintf(buf, sizeof(buf), "cdev=%s", dev->si_name);
215 devctl_notify_f("DEVFS", "CDEV", "MEDIACHANGE", buf,
221 if (strcmp(attr, "GEOM::physpath") != 0)
224 if (g_access(cp, 1, 0, 0) == 0) {
226 int error, physpath_len;
228 physpath_len = MAXPATHLEN;
229 physpath = g_malloc(physpath_len, M_WAITOK|M_ZERO);
231 g_io_getattr("GEOM::physpath", cp, &physpath_len, physpath);
232 g_access(cp, -1, 0, 0);
233 if (error == 0 && strlen(physpath) != 0) {
234 struct cdev *old_alias_dev;
235 struct cdev **alias_devp;
238 old_alias_dev = sc->sc_alias;
239 alias_devp = (struct cdev **)&sc->sc_alias;
240 make_dev_physpath_alias(MAKEDEV_WAITOK, alias_devp,
241 dev, old_alias_dev, physpath);
242 } else if (sc->sc_alias) {
243 destroy_dev((struct cdev *)sc->sc_alias);
251 g_dev_getprovider(struct cdev *dev)
253 struct g_consumer *cp;
258 if (dev->si_devsw != &g_dev_cdevsw)
261 return (cp->provider);
264 static struct g_geom *
265 g_dev_taste(struct g_class *mp, struct g_provider *pp, int insist __unused)
268 struct g_consumer *cp;
269 struct g_dev_softc *sc;
271 struct cdev *dev, *adev;
274 g_trace(G_T_TOPOLOGY, "dev_taste(%s,%s)", mp->name, pp->name);
276 gp = g_new_geomf(mp, "%s", pp->name);
277 sc = g_malloc(sizeof(*sc), M_WAITOK | M_ZERO);
278 mtx_init(&sc->sc_mtx, "g_dev", NULL, MTX_DEF);
279 cp = g_new_consumer(gp);
281 error = g_attach(cp, pp);
283 ("g_dev_taste(%s) failed to g_attach, err=%d", pp->name, error));
284 error = make_dev_p(MAKEDEV_CHECKNAME | MAKEDEV_WAITOK, &dev,
285 &g_dev_cdevsw, NULL, UID_ROOT, GID_OPERATOR, 0640, "%s", gp->name);
287 printf("%s: make_dev_p() failed (gp->name=%s, error=%d)\n",
288 __func__, gp->name, error);
290 g_destroy_consumer(cp);
292 mtx_destroy(&sc->sc_mtx);
296 dev->si_flags |= SI_UNMAPPED;
299 /* Search for device alias name and create it if found. */
301 for (len = MIN(strlen(gp->name), sizeof(buf) - 15); len > 0; len--) {
302 snprintf(buf, sizeof(buf), "kern.devalias.%s", gp->name);
306 snprintf(buf, sizeof(buf), "%s%s",
307 val, gp->name + len);
309 make_dev_alias_p(MAKEDEV_CHECKNAME | MAKEDEV_WAITOK,
310 &adev, dev, "%s", buf);
311 adev->si_flags |= SI_UNMAPPED;
316 if (pp->flags & G_PF_CANDELETE)
317 dev->si_flags |= SI_CANDELETE;
318 dev->si_iosize_max = MAXPHYS;
322 if (pp->flags & G_PF_CANDELETE)
323 adev->si_flags |= SI_CANDELETE;
324 adev->si_iosize_max = MAXPHYS;
329 g_dev_attrchanged(cp, "GEOM::physpath");
335 g_dev_open(struct cdev *dev, int flags, int fmt, struct thread *td)
337 struct g_consumer *cp;
338 struct g_dev_softc *sc;
343 return(ENXIO); /* g_dev_taste() not done yet */
344 g_trace(G_T_ACCESS, "g_dev_open(%s, %d, %d, %p)",
345 cp->geom->name, flags, fmt, td);
347 r = flags & FREAD ? 1 : 0;
348 w = flags & FWRITE ? 1 : 0;
350 e = flags & O_EXCL ? 1 : 0;
356 * When running in very secure mode, do not allow
357 * opens for writing of any disks.
359 error = securelevel_ge(td->td_ucred, 2);
364 error = g_access(cp, r, w, e);
368 mtx_lock(&sc->sc_mtx);
369 if (sc->sc_open == 0 && sc->sc_active != 0)
370 wakeup(&sc->sc_active);
371 sc->sc_open += r + w + e;
372 mtx_unlock(&sc->sc_mtx);
378 g_dev_close(struct cdev *dev, int flags, int fmt, struct thread *td)
380 struct g_consumer *cp;
381 struct g_dev_softc *sc;
387 g_trace(G_T_ACCESS, "g_dev_close(%s, %d, %d, %p)",
388 cp->geom->name, flags, fmt, td);
390 r = flags & FREAD ? -1 : 0;
391 w = flags & FWRITE ? -1 : 0;
393 e = flags & O_EXCL ? -1 : 0;
398 mtx_lock(&sc->sc_mtx);
399 sc->sc_open += r + w + e;
400 while (sc->sc_open == 0 && sc->sc_active != 0)
401 msleep(&sc->sc_active, &sc->sc_mtx, 0, "PRIBIO", 0);
402 mtx_unlock(&sc->sc_mtx);
404 error = g_access(cp, r, w, e);
410 * XXX: Until we have unmessed the ioctl situation, there is a race against
411 * XXX: a concurrent orphanization. We cannot close it by holding topology
412 * XXX: since that would prevent us from doing our job, and stalling events
413 * XXX: will break (actually: stall) the BSD disklabel hacks.
416 g_dev_ioctl(struct cdev *dev, u_long cmd, caddr_t data, int fflag, struct thread *td)
418 struct g_consumer *cp;
419 struct g_provider *pp;
420 off_t offset, length, chunk;
427 KASSERT(cp->acr || cp->acw,
428 ("Consumer with zero access count in g_dev_ioctl"));
430 i = IOCPARM_LEN(cmd);
432 case DIOCGSECTORSIZE:
433 *(u_int *)data = cp->provider->sectorsize;
434 if (*(u_int *)data == 0)
438 *(off_t *)data = cp->provider->mediasize;
439 if (*(off_t *)data == 0)
443 error = g_io_getattr("GEOM::fwsectors", cp, &i, data);
444 if (error == 0 && *(u_int *)data == 0)
448 error = g_io_getattr("GEOM::fwheads", cp, &i, data);
449 if (error == 0 && *(u_int *)data == 0)
452 case DIOCGFRONTSTUFF:
453 error = g_io_getattr("GEOM::frontstuff", cp, &i, data);
455 case DIOCSKERNELDUMP:
456 if (*(u_int *)data == 0)
457 error = g_dev_setdumpdev(NULL);
459 error = g_dev_setdumpdev(dev);
462 error = g_io_flush(cp);
465 offset = ((off_t *)data)[0];
466 length = ((off_t *)data)[1];
467 if ((offset % cp->provider->sectorsize) != 0 ||
468 (length % cp->provider->sectorsize) != 0 || length <= 0) {
469 printf("%s: offset=%jd length=%jd\n", __func__, offset,
476 if (g_dev_del_max_sectors != 0 && chunk >
477 g_dev_del_max_sectors * cp->provider->sectorsize) {
478 chunk = g_dev_del_max_sectors *
479 cp->provider->sectorsize;
481 error = g_delete_data(cp, offset, chunk);
487 * Since the request size can be large, the service
488 * time can be is likewise. We make this ioctl
489 * interruptible by checking for signals for each bio.
496 error = g_io_getattr("GEOM::ident", cp, &i, data);
498 case DIOCGPROVIDERNAME:
501 strlcpy(data, pp->name, i);
503 case DIOCGSTRIPESIZE:
504 *(off_t *)data = cp->provider->stripesize;
506 case DIOCGSTRIPEOFFSET:
507 *(off_t *)data = cp->provider->stripeoffset;
510 error = g_io_getattr("GEOM::physpath", cp, &i, data);
511 if (error == 0 && *(char *)data == '\0')
515 if (cp->provider->geom->ioctl != NULL) {
516 error = cp->provider->geom->ioctl(cp->provider, cmd, data, fflag, td);
526 g_dev_done(struct bio *bp2)
528 struct g_consumer *cp;
529 struct g_dev_softc *sc;
535 bp = bp2->bio_parent;
536 bp->bio_error = bp2->bio_error;
537 bp->bio_completed = bp2->bio_completed;
538 bp->bio_resid = bp->bio_length - bp2->bio_completed;
539 if (bp2->bio_error != 0) {
540 g_trace(G_T_BIO, "g_dev_done(%p) had error %d",
541 bp2, bp2->bio_error);
542 bp->bio_flags |= BIO_ERROR;
544 g_trace(G_T_BIO, "g_dev_done(%p/%p) resid %ld completed %jd",
545 bp2, bp, bp2->bio_resid, (intmax_t)bp2->bio_completed);
549 mtx_lock(&sc->sc_mtx);
550 if ((--sc->sc_active) == 0) {
551 if (sc->sc_open == 0)
552 wakeup(&sc->sc_active);
553 if (sc->sc_dev == NULL)
556 mtx_unlock(&sc->sc_mtx);
558 g_post_event(g_dev_destroy, cp, M_WAITOK, NULL);
563 g_dev_strategy(struct bio *bp)
565 struct g_consumer *cp;
568 struct g_dev_softc *sc;
570 KASSERT(bp->bio_cmd == BIO_READ ||
571 bp->bio_cmd == BIO_WRITE ||
572 bp->bio_cmd == BIO_DELETE ||
573 bp->bio_cmd == BIO_FLUSH,
574 ("Wrong bio_cmd bio=%p cmd=%d", bp, bp->bio_cmd));
578 KASSERT(cp->acr || cp->acw,
579 ("Consumer with zero access count in g_dev_strategy"));
581 if ((bp->bio_offset % cp->provider->sectorsize) != 0 ||
582 (bp->bio_bcount % cp->provider->sectorsize) != 0) {
583 bp->bio_resid = bp->bio_bcount;
584 biofinish(bp, NULL, EINVAL);
588 mtx_lock(&sc->sc_mtx);
589 KASSERT(sc->sc_open > 0, ("Closed device in g_dev_strategy"));
591 mtx_unlock(&sc->sc_mtx);
595 * XXX: This is not an ideal solution, but I belive it to
596 * XXX: deadlock safe, all things considered.
598 bp2 = g_clone_bio(bp);
601 pause("gdstrat", hz / 10);
603 KASSERT(bp2 != NULL, ("XXX: ENOMEM in a bad place"));
604 bp2->bio_done = g_dev_done;
606 "g_dev_strategy(%p/%p) offset %jd length %jd data %p cmd %d",
607 bp, bp2, (intmax_t)bp->bio_offset, (intmax_t)bp2->bio_length,
608 bp2->bio_data, bp2->bio_cmd);
609 g_io_request(bp2, cp);
610 KASSERT(cp->acr || cp->acw,
611 ("g_dev_strategy raced with g_dev_close and lost"));
618 * Called by devfs when asynchronous device destruction is completed.
619 * - Mark that we have no attached device any more.
620 * - If there are no outstanding requests, schedule geom destruction.
621 * Otherwise destruction will be scheduled later by g_dev_done().
625 g_dev_callback(void *arg)
627 struct g_consumer *cp;
628 struct g_dev_softc *sc;
633 g_trace(G_T_TOPOLOGY, "g_dev_callback(%p(%s))", cp, cp->geom->name);
635 mtx_lock(&sc->sc_mtx);
638 destroy = (sc->sc_active == 0);
639 mtx_unlock(&sc->sc_mtx);
641 g_post_event(g_dev_destroy, cp, M_WAITOK, NULL);
647 * Called from below when the provider orphaned us.
648 * - Clear any dump settings.
649 * - Request asynchronous device destruction to prevent any more requests
650 * from coming in. The provider is already marked with an error, so
651 * anything which comes in in the interrim will be returned immediately.
655 g_dev_orphan(struct g_consumer *cp)
658 struct g_dev_softc *sc;
663 g_trace(G_T_TOPOLOGY, "g_dev_orphan(%p(%s))", cp, cp->geom->name);
665 /* Reset any dump-area set on this device */
666 if (dev->si_flags & SI_DUMPDEV)
669 /* Destroy the struct cdev *so we get no more requests */
670 destroy_dev_sched_cb(dev, g_dev_callback, cp);
673 DECLARE_GEOM_CLASS(g_dev_class, g_dev);