2008-03-21 15:03:37 +00:00
|
|
|
/*
|
2014-04-20 20:07:46 +00:00
|
|
|
* Copyright (C) 2010, 2014 Red Hat, Inc.
|
2008-03-21 15:03:37 +00:00
|
|
|
* Copyright IBM Corp. 2008
|
|
|
|
*
|
|
|
|
* lxc_conf.c: config functions for managing linux containers
|
|
|
|
*
|
|
|
|
* This library is free software; you can redistribute it and/or
|
|
|
|
* modify it under the terms of the GNU Lesser General Public
|
|
|
|
* License as published by the Free Software Foundation; either
|
|
|
|
* version 2.1 of the License, or (at your option) any later version.
|
|
|
|
*
|
|
|
|
* This library is distributed in the hope that it will be useful,
|
|
|
|
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
|
|
|
|
* Lesser General Public License for more details.
|
|
|
|
*
|
|
|
|
* You should have received a copy of the GNU Lesser General Public
|
2012-09-20 22:30:55 +00:00
|
|
|
* License along with this library. If not, see
|
2012-07-21 10:06:23 +00:00
|
|
|
* <http://www.gnu.org/licenses/>.
|
2008-03-21 15:03:37 +00:00
|
|
|
*
|
|
|
|
*/
|
|
|
|
|
|
|
|
/* includes */
|
|
|
|
#include <config.h>
|
|
|
|
|
2020-02-16 21:59:28 +00:00
|
|
|
#include <unistd.h>
|
|
|
|
|
2008-03-21 15:03:37 +00:00
|
|
|
#include "lxc_conf.h"
|
2013-03-05 15:17:24 +00:00
|
|
|
#include "lxc_domain.h"
|
2012-12-13 18:21:53 +00:00
|
|
|
#include "virerror.h"
|
2012-12-12 16:35:35 +00:00
|
|
|
#include "virconf.h"
|
2012-12-12 17:59:27 +00:00
|
|
|
#include "virlog.h"
|
2012-12-13 18:01:25 +00:00
|
|
|
#include "viruuid.h"
|
2010-11-16 14:54:17 +00:00
|
|
|
#include "configmake.h"
|
2011-02-23 17:17:53 +00:00
|
|
|
#include "lxc_container.h"
|
2011-11-29 15:28:26 +00:00
|
|
|
#include "virnodesuspend.h"
|
2013-05-03 12:43:39 +00:00
|
|
|
#include "virstring.h"
|
2014-03-25 08:23:13 +00:00
|
|
|
#include "virfile.h"
|
2008-03-21 15:03:37 +00:00
|
|
|
|
2009-01-29 12:10:32 +00:00
|
|
|
#define VIR_FROM_THIS VIR_FROM_LXC
|
|
|
|
|
2014-02-28 12:16:17 +00:00
|
|
|
VIR_LOG_INIT("lxc.lxc_conf");
|
|
|
|
|
2021-03-11 07:16:13 +00:00
|
|
|
static virClass *virLXCDriverConfigClass;
|
2013-07-16 15:45:05 +00:00
|
|
|
static void virLXCDriverConfigDispose(void *obj);
|
|
|
|
|
|
|
|
static int virLXCConfigOnceInit(void)
|
|
|
|
{
|
2018-04-17 15:42:33 +00:00
|
|
|
if (!VIR_CLASS_NEW(virLXCDriverConfig, virClassForObject()))
|
2013-07-16 15:45:05 +00:00
|
|
|
return -1;
|
|
|
|
|
|
|
|
return 0;
|
|
|
|
}
|
|
|
|
|
2019-01-20 17:23:29 +00:00
|
|
|
VIR_ONCE_GLOBAL_INIT(virLXCConfig);
|
2013-07-16 15:45:05 +00:00
|
|
|
|
Fix default console type setting
The default console type may vary based on the OS type. ie a Xen
paravirt guests wants a 'xen' console, while a fullvirt guests
wants a 'serial' console.
A plain integer default console type in the capabilities does
not suffice. Instead introduce a callback that is passed the
OS type.
* src/conf/capabilities.h: Use a callback for default console
type
* src/conf/domain_conf.c, src/conf/domain_conf.h: Use callback
for default console type. Add missing LXC/OpenVZ console types.
* src/esx/esx_driver.c, src/libxl/libxl_conf.c,
src/lxc/lxc_conf.c, src/openvz/openvz_conf.c,
src/phyp/phyp_driver.c, src/qemu/qemu_capabilities.c,
src/uml/uml_conf.c, src/vbox/vbox_tmpl.c,
src/vmware/vmware_conf.c, src/xen/xen_hypervisor.c,
src/xenapi/xenapi_driver.c: Set default console type callback
2011-10-20 13:56:20 +00:00
|
|
|
|
2008-03-21 15:03:37 +00:00
|
|
|
/* Functions */
|
2021-03-11 07:16:13 +00:00
|
|
|
virCaps *virLXCDriverCapsInit(virLXCDriver *driver)
|
2008-03-21 15:03:37 +00:00
|
|
|
{
|
2021-03-11 07:16:13 +00:00
|
|
|
virCaps *caps;
|
|
|
|
virCapsGuest *guest;
|
2012-12-10 22:28:09 +00:00
|
|
|
virArch altArch;
|
2020-05-12 16:53:07 +00:00
|
|
|
g_autofree char *lxc_path = NULL;
|
2008-06-05 06:03:00 +00:00
|
|
|
|
2012-12-10 22:28:09 +00:00
|
|
|
if ((caps = virCapabilitiesNew(virArchFromHost(),
|
2014-07-14 12:56:13 +00:00
|
|
|
false, false)) == NULL)
|
2010-05-25 14:33:51 +00:00
|
|
|
goto error;
|
2008-03-21 15:03:37 +00:00
|
|
|
|
2018-12-04 17:08:14 +00:00
|
|
|
/* Some machines have problematic NUMA topology causing
|
2014-07-14 12:56:13 +00:00
|
|
|
* unexpected failures. We don't want to break the lxc
|
2009-08-13 10:56:31 +00:00
|
|
|
* driver in this scenario, so log errors & carry on
|
|
|
|
*/
|
2019-11-29 09:55:59 +00:00
|
|
|
if (!(caps->host.numa = virCapabilitiesHostNUMANewHost()))
|
|
|
|
goto error;
|
make NUMA-initialization code more portable and more robust
qemudCapsInitNUMA and umlCapsInitNUMA were identical, so this change
factors them into a new function, virCapsInitNUMA, and puts it in
nodeinfo.c.
In addition to factoring out the duplicates, this change also
adjusts that function definition (along with its macros) so
that it works with Fedora 9's numactl version 1, and makes it
so the code will work even if someone builds the kernel with
CONFIG_NR_CPUS > 4096.
Finally, also perform this NUMA initialization for the lxc
and openvz drivers.
* src/nodeinfo.c: Include <stdint.h>, <numa.h> and "memory.h".
(virCapsInitNUMA): Rename from qemudCapsInitNUMA and umlCapsInitNUMA.
(NUMA_MAX_N_CPUS): Define depending on NUMA API version.
(n_bits, MASK_CPU_ISSET): Define, adjust, use uint64 rather than long.
* src/nodeinfo.h: Include "capabilities.h".
(virCapsInitNUMA): Declare it.
* examples/domain-events/events-c/Makefile.am:
* src/Makefile.am: Add $(NUMACTL_CFLAGS) and $(NUMACTL_LIBS) to various
compile/link-related variables.
* src/qemu_conf.c: Include "nodeinfo.h".
(qemudCapsInitNUMA): Remove duplicate code. Adjust caller.
* src/uml_conf.c (umlCapsInitNUMA): Likewise.
Include "nodeinfo.h".
* src/lxc_conf.c: Include "nodeinfo.h".
(lxcCapsInit): Perform NUMA initialization here, too.
* src/openvz_conf.c (openvzCapsInit): And here.
Include "nodeinfo.h".
* src/libvirt_sym.version.in: Add virCapsInitNUMA so that libvirtd
can link to this function.
2008-12-21 18:55:09 +00:00
|
|
|
|
2017-03-29 13:52:31 +00:00
|
|
|
if (virCapabilitiesInitCaches(caps) < 0)
|
|
|
|
VIR_WARN("Failed to get host CPU cache info");
|
|
|
|
|
2014-10-31 09:02:22 +00:00
|
|
|
/* Only probe for power management capabilities in the driver,
|
|
|
|
* not in the emulator */
|
|
|
|
if (driver && virNodeSuspendGetTargetMask(&caps->host.powerMgmt) < 0)
|
2011-11-29 15:28:26 +00:00
|
|
|
VIR_WARN("Failed to get host power management capabilities");
|
|
|
|
|
2018-07-25 12:12:09 +00:00
|
|
|
/* Add huge pages info */
|
|
|
|
if (virCapabilitiesInitPages(caps) < 0)
|
|
|
|
VIR_WARN("Failed to get pages info");
|
|
|
|
|
2010-05-25 14:33:51 +00:00
|
|
|
if (virGetHostUUID(caps->host.host_uuid)) {
|
2012-07-13 12:59:51 +00:00
|
|
|
virReportError(VIR_ERR_INTERNAL_ERROR,
|
|
|
|
"%s", _("cannot get the host uuid"));
|
2010-05-25 14:33:51 +00:00
|
|
|
goto error;
|
|
|
|
}
|
|
|
|
|
2014-03-25 08:23:13 +00:00
|
|
|
if (!(lxc_path = virFileFindResource("libvirt_lxc",
|
2019-03-12 14:11:47 +00:00
|
|
|
abs_top_builddir "/src",
|
2014-03-25 08:23:13 +00:00
|
|
|
LIBEXECDIR)))
|
|
|
|
goto error;
|
|
|
|
|
2008-08-13 12:50:55 +00:00
|
|
|
if ((guest = virCapabilitiesAddGuest(caps,
|
2015-04-17 22:09:16 +00:00
|
|
|
VIR_DOMAIN_OSTYPE_EXE,
|
2012-12-10 22:28:09 +00:00
|
|
|
caps->host.arch,
|
2014-03-25 08:23:13 +00:00
|
|
|
lxc_path,
|
2008-08-13 12:50:55 +00:00
|
|
|
NULL,
|
|
|
|
0,
|
|
|
|
NULL)) == NULL)
|
2010-05-25 14:33:51 +00:00
|
|
|
goto error;
|
2008-03-21 15:03:37 +00:00
|
|
|
|
2008-08-13 12:50:55 +00:00
|
|
|
if (virCapabilitiesAddGuestDomain(guest,
|
2015-04-17 22:38:10 +00:00
|
|
|
VIR_DOMAIN_VIRT_LXC,
|
2008-08-13 12:50:55 +00:00
|
|
|
NULL,
|
|
|
|
NULL,
|
|
|
|
0,
|
|
|
|
NULL) == NULL)
|
2010-05-25 14:33:51 +00:00
|
|
|
goto error;
|
2009-06-16 15:27:33 +00:00
|
|
|
|
2011-02-23 17:17:53 +00:00
|
|
|
/* On 64-bit hosts, we can use personality() to request a 32bit process */
|
2012-12-10 22:28:09 +00:00
|
|
|
if ((altArch = lxcContainerGetAlt32bitArch(caps->host.arch)) != VIR_ARCH_NONE) {
|
2011-02-23 17:17:53 +00:00
|
|
|
if ((guest = virCapabilitiesAddGuest(caps,
|
2015-04-17 22:09:16 +00:00
|
|
|
VIR_DOMAIN_OSTYPE_EXE,
|
2011-02-23 17:17:53 +00:00
|
|
|
altArch,
|
2014-03-25 08:23:13 +00:00
|
|
|
lxc_path,
|
2011-02-23 17:17:53 +00:00
|
|
|
NULL,
|
|
|
|
0,
|
|
|
|
NULL)) == NULL)
|
|
|
|
goto error;
|
|
|
|
|
|
|
|
if (virCapabilitiesAddGuestDomain(guest,
|
2015-04-17 22:38:10 +00:00
|
|
|
VIR_DOMAIN_VIRT_LXC,
|
2011-02-23 17:17:53 +00:00
|
|
|
NULL,
|
|
|
|
NULL,
|
|
|
|
0,
|
|
|
|
NULL) == NULL)
|
|
|
|
goto error;
|
|
|
|
}
|
|
|
|
|
2012-01-25 14:12:53 +00:00
|
|
|
if (driver) {
|
|
|
|
/* Security driver data */
|
2013-10-18 12:13:21 +00:00
|
|
|
const char *doi, *model, *label, *type;
|
2012-01-25 14:12:53 +00:00
|
|
|
|
|
|
|
doi = virSecurityManagerGetDOI(driver->securityManager);
|
|
|
|
model = virSecurityManagerGetModel(driver->securityManager);
|
2013-10-18 12:13:21 +00:00
|
|
|
label = virSecurityManagerGetBaseLabel(driver->securityManager,
|
|
|
|
VIR_DOMAIN_VIRT_LXC);
|
|
|
|
type = virDomainVirtTypeToString(VIR_DOMAIN_VIRT_LXC);
|
2013-07-15 13:36:04 +00:00
|
|
|
/* Allocate the primary security driver for LXC. */
|
2020-05-12 17:31:16 +00:00
|
|
|
caps->host.secModels = g_new0(virCapsHostSecModel, 1);
|
2013-07-15 13:36:04 +00:00
|
|
|
caps->host.nsecModels = 1;
|
2019-10-20 11:49:46 +00:00
|
|
|
caps->host.secModels[0].model = g_strdup(model);
|
|
|
|
caps->host.secModels[0].doi = g_strdup(doi);
|
2013-10-18 12:13:21 +00:00
|
|
|
if (label &&
|
|
|
|
virCapabilitiesHostSecModelAddBaseLabel(&caps->host.secModels[0],
|
|
|
|
type,
|
|
|
|
label) < 0)
|
|
|
|
goto error;
|
2012-01-25 14:12:53 +00:00
|
|
|
|
|
|
|
VIR_DEBUG("Initialized caps for security driver \"%s\" with "
|
|
|
|
"DOI \"%s\"", model, doi);
|
|
|
|
} else {
|
|
|
|
VIR_INFO("No driver, not initializing security driver");
|
|
|
|
}
|
|
|
|
|
2008-08-13 12:50:55 +00:00
|
|
|
return caps;
|
2008-03-21 15:03:37 +00:00
|
|
|
|
2014-03-25 06:49:26 +00:00
|
|
|
error:
|
2013-02-01 12:26:18 +00:00
|
|
|
virObjectUnref(caps);
|
2008-03-21 15:03:37 +00:00
|
|
|
return NULL;
|
|
|
|
}
|
|
|
|
|
2013-03-05 15:17:24 +00:00
|
|
|
|
2013-07-15 09:43:10 +00:00
|
|
|
/**
|
|
|
|
* virLXCDriverGetCapabilities:
|
|
|
|
*
|
2021-03-11 07:16:13 +00:00
|
|
|
* Get a reference to the virCaps *instance for the
|
2013-07-15 09:43:10 +00:00
|
|
|
* driver. If @refresh is true, the capabilities will be
|
|
|
|
* rebuilt first
|
|
|
|
*
|
|
|
|
* The caller must release the reference with virObjetUnref
|
|
|
|
*
|
2021-03-11 07:16:13 +00:00
|
|
|
* Returns: a reference to a virCaps *instance or NULL
|
2013-07-15 09:43:10 +00:00
|
|
|
*/
|
2021-03-11 07:16:13 +00:00
|
|
|
virCaps *virLXCDriverGetCapabilities(virLXCDriver *driver,
|
2013-07-15 09:43:10 +00:00
|
|
|
bool refresh)
|
|
|
|
{
|
2021-03-11 07:16:13 +00:00
|
|
|
virCaps *ret;
|
2013-07-15 09:43:10 +00:00
|
|
|
if (refresh) {
|
2021-03-11 07:16:13 +00:00
|
|
|
virCaps *caps = NULL;
|
2013-07-15 09:43:10 +00:00
|
|
|
if ((caps = virLXCDriverCapsInit(driver)) == NULL)
|
|
|
|
return NULL;
|
|
|
|
|
2013-07-17 07:20:26 +00:00
|
|
|
lxcDriverLock(driver);
|
2013-07-15 09:43:10 +00:00
|
|
|
virObjectUnref(driver->caps);
|
|
|
|
driver->caps = caps;
|
2013-07-17 07:20:26 +00:00
|
|
|
} else {
|
|
|
|
lxcDriverLock(driver);
|
2019-12-09 16:13:04 +00:00
|
|
|
|
|
|
|
if (driver->caps == NULL) {
|
|
|
|
VIR_DEBUG("Capabilities didn't detect any guests. Forcing a "
|
|
|
|
"refresh.");
|
|
|
|
lxcDriverUnlock(driver);
|
|
|
|
return virLXCDriverGetCapabilities(driver, true);
|
|
|
|
}
|
2013-07-15 09:43:10 +00:00
|
|
|
}
|
|
|
|
|
2013-07-17 07:20:26 +00:00
|
|
|
ret = virObjectRef(driver->caps);
|
|
|
|
lxcDriverUnlock(driver);
|
|
|
|
return ret;
|
2013-07-15 09:43:10 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
|
2021-03-11 07:16:13 +00:00
|
|
|
virDomainXMLOption *
|
|
|
|
lxcDomainXMLConfInit(virLXCDriver *driver, const char *defsecmodel)
|
2013-03-05 15:17:24 +00:00
|
|
|
{
|
2019-12-03 10:49:49 +00:00
|
|
|
virLXCDriverDomainDefParserConfig.priv = driver;
|
2020-12-03 18:55:24 +00:00
|
|
|
virLXCDriverDomainDefParserConfig.defSecModel = defsecmodel;
|
2013-03-11 11:12:08 +00:00
|
|
|
return virDomainXMLOptionNew(&virLXCDriverDomainDefParserConfig,
|
2013-02-19 16:29:39 +00:00
|
|
|
&virLXCDriverPrivateDataCallbacks,
|
2017-05-19 13:07:15 +00:00
|
|
|
&virLXCDriverDomainXMLNamespace,
|
2017-06-01 22:44:46 +00:00
|
|
|
NULL, NULL);
|
2013-03-05 15:17:24 +00:00
|
|
|
}
|
|
|
|
|
2013-03-11 11:12:08 +00:00
|
|
|
|
2021-03-11 07:16:13 +00:00
|
|
|
virLXCDriverConfig *
|
2013-07-16 15:45:05 +00:00
|
|
|
virLXCDriverConfigNew(void)
|
2008-03-21 15:03:37 +00:00
|
|
|
{
|
2021-03-11 07:16:13 +00:00
|
|
|
virLXCDriverConfig *cfg;
|
2013-07-16 15:45:05 +00:00
|
|
|
|
|
|
|
if (virLXCConfigInitialize() < 0)
|
|
|
|
return NULL;
|
2009-10-08 15:40:14 +00:00
|
|
|
|
2013-07-16 15:45:05 +00:00
|
|
|
if (!(cfg = virObjectNew(virLXCDriverConfigClass)))
|
|
|
|
return NULL;
|
|
|
|
|
|
|
|
cfg->securityDefaultConfined = false;
|
|
|
|
cfg->securityRequireConfined = false;
|
2012-01-25 14:12:53 +00:00
|
|
|
|
2008-03-21 15:03:37 +00:00
|
|
|
/* Set the container configuration directory */
|
2019-10-20 11:49:46 +00:00
|
|
|
cfg->configDir = g_strdup(LXC_CONFIG_DIR);
|
|
|
|
cfg->stateDir = g_strdup(LXC_STATE_DIR);
|
|
|
|
cfg->logDir = g_strdup(LXC_LOG_DIR);
|
|
|
|
cfg->autostartDir = g_strdup(LXC_AUTOSTART_DIR);
|
2009-10-21 11:32:20 +00:00
|
|
|
|
2013-07-16 15:45:05 +00:00
|
|
|
return cfg;
|
|
|
|
}
|
2008-06-05 06:03:00 +00:00
|
|
|
|
2013-07-16 15:45:05 +00:00
|
|
|
int
|
2021-03-11 07:16:13 +00:00
|
|
|
virLXCLoadDriverConfig(virLXCDriverConfig *cfg,
|
2013-07-16 15:45:05 +00:00
|
|
|
const char *filename)
|
|
|
|
{
|
2019-10-15 12:47:50 +00:00
|
|
|
g_autoptr(virConf) conf = NULL;
|
2009-10-08 15:40:14 +00:00
|
|
|
|
2014-04-20 20:07:46 +00:00
|
|
|
/* Avoid error from non-existent or unreadable file. */
|
2012-10-17 09:23:12 +00:00
|
|
|
if (access(filename, R_OK) == -1)
|
2016-07-08 12:51:49 +00:00
|
|
|
return 0;
|
|
|
|
|
2009-10-08 15:40:14 +00:00
|
|
|
conf = virConfReadFile(filename, 0);
|
|
|
|
if (!conf)
|
2016-07-08 12:51:49 +00:00
|
|
|
return -1;
|
2009-10-08 15:40:14 +00:00
|
|
|
|
2016-07-08 12:51:49 +00:00
|
|
|
if (virConfGetValueBool(conf, "log_with_libvirtd", &cfg->log_libvirtd) < 0)
|
2019-09-09 15:56:26 +00:00
|
|
|
return -1;
|
2012-01-25 14:12:53 +00:00
|
|
|
|
2016-07-08 12:51:49 +00:00
|
|
|
if (virConfGetValueString(conf, "security_driver", &cfg->securityDriverName) < 0)
|
2019-09-09 15:56:26 +00:00
|
|
|
return -1;
|
2012-01-25 14:12:53 +00:00
|
|
|
|
2016-07-08 12:51:49 +00:00
|
|
|
if (virConfGetValueBool(conf, "security_default_confined", &cfg->securityDefaultConfined) < 0)
|
2019-09-09 15:56:26 +00:00
|
|
|
return -1;
|
2012-01-25 14:12:53 +00:00
|
|
|
|
2016-07-08 12:51:49 +00:00
|
|
|
if (virConfGetValueBool(conf, "security_require_confined", &cfg->securityRequireConfined) < 0)
|
2019-09-09 15:56:26 +00:00
|
|
|
return -1;
|
2012-01-25 14:12:53 +00:00
|
|
|
|
2019-09-09 15:56:26 +00:00
|
|
|
return 0;
|
2013-07-16 15:45:05 +00:00
|
|
|
}
|
2008-08-13 10:52:15 +00:00
|
|
|
|
2021-03-11 07:16:13 +00:00
|
|
|
virLXCDriverConfig *virLXCDriverGetConfig(virLXCDriver *driver)
|
2013-07-16 15:45:05 +00:00
|
|
|
{
|
2021-03-11 07:16:13 +00:00
|
|
|
virLXCDriverConfig *cfg;
|
2013-07-17 07:20:26 +00:00
|
|
|
lxcDriverLock(driver);
|
|
|
|
cfg = virObjectRef(driver->config);
|
|
|
|
lxcDriverUnlock(driver);
|
|
|
|
return cfg;
|
2013-07-16 15:45:05 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
static void
|
|
|
|
virLXCDriverConfigDispose(void *obj)
|
|
|
|
{
|
2021-03-11 07:16:13 +00:00
|
|
|
virLXCDriverConfig *cfg = obj;
|
2013-07-16 15:45:05 +00:00
|
|
|
|
2020-05-12 16:53:07 +00:00
|
|
|
g_free(cfg->configDir);
|
|
|
|
g_free(cfg->autostartDir);
|
|
|
|
g_free(cfg->stateDir);
|
|
|
|
g_free(cfg->logDir);
|
|
|
|
g_free(cfg->securityDriverName);
|
2008-03-21 15:03:37 +00:00
|
|
|
}
|