OvmfPkg/IoMmuDxe: track all mappings

The "mRecycledMapInfos" list implements an internal pool of unused
MAP_INFO structures between the IoMmuUnmap() and IoMmuMap() functions. The
original goal was to allow IoMmuUnmap() to tear down CommonBuffer mappings
without releasing any memory: IoMmuUnmap() would recycle the MAP_INFO
structure to the list, and IoMmuMap() would always check the list first,
before allocating a brand new MAP_INFO structure.

In one of the following patches, we'll change OvmfPkg/IoMmuDxe so that it
unmaps all existent bus master operations (CommonBuffer, Read, Write) at
ExitBootServices(), strictly after the individual device drivers abort
pending DMA on the devices they manage, in their own ExitBootServices()
notification functions.

For this, rename and repurpose the list to track all live mappings.

This means that IoMmuUnmap() will always release a MAP_INFO structure
(even when cleaning up a CommonBuffer operation). That's fine (for now),
because device drivers are no longer expected to call Unmap() in their
ExitBootServices() notification functions.

In theory, we could also move the allocation and freeing of the stash
buffer from IoMmuAllocateBuffer() and IoMmuFreeBuffer(), respectively, to
IoMmuMap() and IoMmuUnmap(). However, this would require allocating and
freeing a stash buffer in *both* IoMmuMap() and IoMmuUnmap(), as
IoMmuMap() performs in-place decryption for CommonBuffer operations, and
IoMmuUnmap() performs in-place encryption for the same.

By keeping the stash buffer allocation as-is, not only do we keep the code
almost fully undisturbed, but

- we also continue to guarantee that IoMmuUnmap() succeeds: allocating a
  stash buffer in IoMmuUnmap(), for in-place encryption after a
  CommonBuffer operation, could fail;

- we also keep IoMmuUnmap() largely reusable for ExitBootServices()
  callback context: allocating a stash buffer in IoMmuUnmap() would simply
  be forbidden in that context.

Cc: Ard Biesheuvel <ard.biesheuvel@linaro.org>
Cc: Brijesh Singh <brijesh.singh@amd.com>
Cc: Jiewen Yao <jiewen.yao@intel.com>
Cc: Jordan Justen <jordan.l.justen@intel.com>
Contributed-under: TianoCore Contribution Agreement 1.1
Signed-off-by: Laszlo Ersek <lersek@redhat.com>
Reviewed-by: Jiewen Yao <jiewen.yao@intel.com>
Reviewed-by: Ard Biesheuvel <ard.biesheuvel@linaro.org>
Reviewed-by: Brijesh Singh <brijesh.singh@amd.com>
Tested-by: Brijesh Singh <brijesh.singh@amd.com>
This commit is contained in:
Laszlo Ersek 2017-09-07 15:30:19 +02:00
parent bf99bdd1f7
commit 9ed745b967
1 changed files with 18 additions and 31 deletions

View File

@ -33,14 +33,11 @@ typedef struct {
} MAP_INFO; } MAP_INFO;
// //
// List of MAP_INFO structures recycled by Unmap(). // List of the MAP_INFO structures that have been set up by IoMmuMap() and not
// yet torn down by IoMmuUnmap(). The list represents the full set of mappings
// currently in effect.
// //
// Recycled MAP_INFO structures are equally good for future recycling and STATIC LIST_ENTRY mMapInfos = INITIALIZE_LIST_HEAD_VARIABLE (mMapInfos);
// freeing.
//
STATIC LIST_ENTRY mRecycledMapInfos = INITIALIZE_LIST_HEAD_VARIABLE (
mRecycledMapInfos
);
#define COMMON_BUFFER_SIG SIGNATURE_64 ('C', 'M', 'N', 'B', 'U', 'F', 'F', 'R') #define COMMON_BUFFER_SIG SIGNATURE_64 ('C', 'M', 'N', 'B', 'U', 'F', 'F', 'R')
@ -123,7 +120,6 @@ IoMmuMap (
) )
{ {
EFI_STATUS Status; EFI_STATUS Status;
LIST_ENTRY *RecycledMapInfo;
MAP_INFO *MapInfo; MAP_INFO *MapInfo;
EFI_ALLOCATE_TYPE AllocateType; EFI_ALLOCATE_TYPE AllocateType;
COMMON_BUFFER_HEADER *CommonBufferHeader; COMMON_BUFFER_HEADER *CommonBufferHeader;
@ -150,20 +146,11 @@ IoMmuMap (
// Allocate a MAP_INFO structure to remember the mapping when Unmap() is // Allocate a MAP_INFO structure to remember the mapping when Unmap() is
// called later. // called later.
// //
RecycledMapInfo = GetFirstNode (&mRecycledMapInfos);
if (RecycledMapInfo == &mRecycledMapInfos) {
//
// No recycled MAP_INFO structure, allocate a new one.
//
MapInfo = AllocatePool (sizeof (MAP_INFO)); MapInfo = AllocatePool (sizeof (MAP_INFO));
if (MapInfo == NULL) { if (MapInfo == NULL) {
Status = EFI_OUT_OF_RESOURCES; Status = EFI_OUT_OF_RESOURCES;
goto Failed; goto Failed;
} }
} else {
MapInfo = CR (RecycledMapInfo, MAP_INFO, Link, MAP_INFO_SIG);
RemoveEntryList (RecycledMapInfo);
}
// //
// Initialize the MAP_INFO structure, except the PlainTextAddress field // Initialize the MAP_INFO structure, except the PlainTextAddress field
@ -298,6 +285,10 @@ IoMmuMap (
); );
} }
//
// Track all MAP_INFO structures.
//
InsertHeadList (&mMapInfos, &MapInfo->Link);
// //
// Populate output parameters. // Populate output parameters.
// //
@ -430,23 +421,19 @@ IoMmuUnmap (
CommonBufferHeader->StashBuffer, CommonBufferHeader->StashBuffer,
MapInfo->NumberOfBytes MapInfo->NumberOfBytes
); );
//
// Recycle the MAP_INFO structure.
//
InsertTailList (&mRecycledMapInfos, &MapInfo->Link);
} else { } else {
ZeroMem ( ZeroMem (
(VOID *)(UINTN)MapInfo->PlainTextAddress, (VOID *)(UINTN)MapInfo->PlainTextAddress,
EFI_PAGES_TO_SIZE (MapInfo->NumberOfPages) EFI_PAGES_TO_SIZE (MapInfo->NumberOfPages)
); );
gBS->FreePages (MapInfo->PlainTextAddress, MapInfo->NumberOfPages); gBS->FreePages (MapInfo->PlainTextAddress, MapInfo->NumberOfPages);
}
// //
// Free the MAP_INFO structure. // Forget and free the MAP_INFO structure.
// //
RemoveEntryList (&MapInfo->Link);
FreePool (MapInfo); FreePool (MapInfo);
}
return EFI_SUCCESS; return EFI_SUCCESS;
} }