Received: by 2002:a05:6a10:206:0:0:0:0 with SMTP id 6csp2583108pxj; Mon, 14 Jun 2021 02:10:46 -0700 (PDT) X-Google-Smtp-Source: ABdhPJwmuwNUKw5K3i4bbe9NfeWDOzO5S7JFpjm5aWFPEJyQGtvv1s0dzXbI3MouOxBoZy7e4VUy X-Received: by 2002:a05:6402:344:: with SMTP id r4mr15645617edw.226.1623661846023; Mon, 14 Jun 2021 02:10:46 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1623661846; cv=none; d=google.com; s=arc-20160816; b=u9NdajCzG/YWvjueexh9wP8mj8BuSNhkvUAmE4ww7Wc/KQgjOJoY2h9O5xw/JLjV/k x9yGwwojFk0ga9WHzXBWpVs8nsSSYbCwdaPp92fuZouxq/jImcW8IjQdXyOyOGNWJORV CyxcJ36pDAE7xvHvgjbO5xJNs1gLA9r4wdClCk/OIqaDaBFCqcti+EWipSqcapqnRVu1 0jZTaFkl6qxZMN2a1l/3smagpqPs6MLf+qb2Zu6I06FEc+WYrTaUtfw10C2uzqG5aHOL 9us31WMo4dKq4U4yR8rQ18ad8uyfNX8ZsIztvgmaIi4AO/EGXbBoTGBdLdtvSPX4/sFN 1TYQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:content-transfer-encoding:mime-version :references:in-reply-to:message-id:date:subject:cc:to:from; bh=v/Ba+Mpjaz8/wq6QdovkqlY1xg8Mit2YZl5ofB+lLpE=; b=hzseavcsoCQP0l77fKHHqO94Ip/gjhmhZgc2eDExBpSr92oLRTKMUdZKTaAS6brZO4 2My5/rkREuREHndupBUE9rN5wuReduH7tuTZSVaN0IqCyLrMkJyqXqCydpqBiZoefW4I Xb9GYkadiwM7lua069hUaJJeWsuPjZXDTxZYSG0YtgO7GDR8ImJHTrANwY6tExYhLwHz XZO1L/Fgwa3mh2o2P5BM0hmb4oPIP1eDC5RvgTAvjeu60gcirFaS5gOGkVrs0uUoZihI IuNjmKvZy/J0d2b4JSyLzv5833ifH/LvXSy+OMiFzS7hCDWmPrkIcoVJxdRjpqvFa7fa xn8w== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=arm.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id cz11si10890904edb.37.2021.06.14.02.10.22; Mon, 14 Jun 2021 02:10:46 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=arm.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S232723AbhFNJIJ (ORCPT + 99 others); Mon, 14 Jun 2021 05:08:09 -0400 Received: from foss.arm.com ([217.140.110.172]:58362 "EHLO foss.arm.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S232713AbhFNJIF (ORCPT ); Mon, 14 Jun 2021 05:08:05 -0400 Received: from usa-sjc-imap-foss1.foss.arm.com (unknown [10.121.207.14]) by usa-sjc-mx-foss1.foss.arm.com (Postfix) with ESMTP id 4A4BB1FB; Mon, 14 Jun 2021 02:06:02 -0700 (PDT) Received: from e112269-lin.arm.com (autoplooker.cambridge.arm.com [10.1.194.57]) by usa-sjc-imap-foss1.foss.arm.com (Postfix) with ESMTPSA id 817AE3F694; Mon, 14 Jun 2021 02:05:59 -0700 (PDT) From: Steven Price To: Catalin Marinas , Marc Zyngier , Will Deacon Cc: Steven Price , James Morse , Julien Thierry , Suzuki K Poulose , kvmarm@lists.cs.columbia.edu, linux-arm-kernel@lists.infradead.org, linux-kernel@vger.kernel.org, Dave Martin , Mark Rutland , Thomas Gleixner , qemu-devel@nongnu.org, Juan Quintela , "Dr. David Alan Gilbert" , Richard Henderson , Peter Maydell , Haibo Xu , Andrew Jones Subject: [PATCH v15 7/7] KVM: arm64: Document MTE capability and ioctl Date: Mon, 14 Jun 2021 10:05:25 +0100 Message-Id: <20210614090525.4338-8-steven.price@arm.com> X-Mailer: git-send-email 2.20.1 In-Reply-To: <20210614090525.4338-1-steven.price@arm.com> References: <20210614090525.4338-1-steven.price@arm.com> MIME-Version: 1.0 Content-Transfer-Encoding: 8bit Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org A new capability (KVM_CAP_ARM_MTE) identifies that the kernel supports granting a guest access to the tags, and provides a mechanism for the VMM to enable it. A new ioctl (KVM_ARM_MTE_COPY_TAGS) provides a simple way for a VMM to access the tags of a guest without having to maintain a PROT_MTE mapping in userspace. The above capability gates access to the ioctl. Reviewed-by: Catalin Marinas Signed-off-by: Steven Price --- Documentation/virt/kvm/api.rst | 57 ++++++++++++++++++++++++++++++++++ 1 file changed, 57 insertions(+) diff --git a/Documentation/virt/kvm/api.rst b/Documentation/virt/kvm/api.rst index 22d077562149..d412928e50cd 100644 --- a/Documentation/virt/kvm/api.rst +++ b/Documentation/virt/kvm/api.rst @@ -5034,6 +5034,43 @@ see KVM_XEN_VCPU_SET_ATTR above. The KVM_XEN_VCPU_ATTR_TYPE_RUNSTATE_ADJUST type may not be used with the KVM_XEN_VCPU_GET_ATTR ioctl. +4.130 KVM_ARM_MTE_COPY_TAGS +--------------------------- + +:Capability: KVM_CAP_ARM_MTE +:Architectures: arm64 +:Type: vm ioctl +:Parameters: struct kvm_arm_copy_mte_tags +:Returns: number of bytes copied, < 0 on error (-EINVAL for incorrect + arguments, -EFAULT if memory cannot be accessed). + +:: + + struct kvm_arm_copy_mte_tags { + __u64 guest_ipa; + __u64 length; + void __user *addr; + __u64 flags; + __u64 reserved[2]; + }; + +Copies Memory Tagging Extension (MTE) tags to/from guest tag memory. The +``guest_ipa`` and ``length`` fields must be ``PAGE_SIZE`` aligned. The ``addr`` +field must point to a buffer which the tags will be copied to or from. + +``flags`` specifies the direction of copy, either ``KVM_ARM_TAGS_TO_GUEST`` or +``KVM_ARM_TAGS_FROM_GUEST``. + +The size of the buffer to store the tags is ``(length / 16)`` bytes +(granules in MTE are 16 bytes long). Each byte contains a single tag +value. This matches the format of ``PTRACE_PEEKMTETAGS`` and +``PTRACE_POKEMTETAGS``. + +If an error occurs before any data is copied then a negative error code is +returned. If some tags have been copied before an error occurs then the number +of bytes successfully copied is returned. If the call completes successfully +then ``length`` is returned. + 5. The kvm_run structure ======================== @@ -6362,6 +6399,26 @@ default. See Documentation/x86/sgx/2.Kernel-internals.rst for more details. +7.26 KVM_CAP_ARM_MTE +-------------------- + +:Architectures: arm64 +:Parameters: none + +This capability indicates that KVM (and the hardware) supports exposing the +Memory Tagging Extensions (MTE) to the guest. It must also be enabled by the +VMM before creating any VCPUs to allow the guest access. Note that MTE is only +available to a guest running in AArch64 mode and enabling this capability will +cause attempts to create AArch32 VCPUs to fail. + +When enabled the guest is able to access tags associated with any memory given +to the guest. KVM will ensure that the tags are maintained during swap or +hibernation of the host; however the VMM needs to manually save/restore the +tags as appropriate if the VM is migrated. + +When enabled the VMM may make use of the ``KVM_ARM_MTE_COPY_TAGS`` ioctl to +perform a bulk copy of tags to/from the guest. + 8. Other capabilities. ====================== -- 2.20.1