Introduce IORING_REGISTER_BUFFERS_UPDATE and IORING_OP_BUFFERS_UPDATE, consistent with file registration update. Signed-off-by: Bijan Mottahedeh <bijan.mottahedeh@xxxxxxxxxx> --- fs/io_uring.c | 125 +++++++++++++++++++++++++++++++++++++++++- include/uapi/linux/io_uring.h | 2 + 2 files changed, 125 insertions(+), 2 deletions(-) diff --git a/fs/io_uring.c b/fs/io_uring.c index 62e1b84..15f0e41 100644 --- a/fs/io_uring.c +++ b/fs/io_uring.c @@ -1012,6 +1012,9 @@ struct io_op_def { .work_flags = IO_WQ_WORK_MM | IO_WQ_WORK_FILES | IO_WQ_WORK_FS | IO_WQ_WORK_BLKCG, }, + [IORING_OP_BUFFERS_UPDATE] = { + .work_flags = IO_WQ_WORK_MM, + }, }; enum io_mem_account { @@ -1042,6 +1045,9 @@ static void __io_complete_rw(struct io_kiocb *req, long res, long res2, static int __io_sqe_files_update(struct io_ring_ctx *ctx, struct io_uring_rsrc_update *ip, unsigned nr_args); +static int __io_sqe_buffers_update(struct io_ring_ctx *ctx, + struct io_uring_rsrc_update *up, + unsigned int nr_args); static void __io_clean_op(struct io_kiocb *req); static struct file *io_file_get(struct io_submit_state *state, struct io_kiocb *req, int fd, bool fixed); @@ -6016,6 +6022,7 @@ static int io_rsrc_update(struct io_kiocb *req, bool force_nonblock, { struct io_ring_ctx *ctx = req->ctx; struct io_uring_rsrc_update up; + u32 nr_args; int ret; if (force_nonblock) @@ -6025,8 +6032,11 @@ static int io_rsrc_update(struct io_kiocb *req, bool force_nonblock, up.data = req->rsrc_update.arg; mutex_lock(&ctx->uring_lock); + nr_args = req->rsrc_update.nr_args; if (req->opcode == IORING_OP_FILES_UPDATE) - ret = __io_sqe_files_update(ctx, &up, req->rsrc_update.nr_args); + ret = __io_sqe_files_update(ctx, &up, nr_args); + else if (req->opcode == IORING_OP_BUFFERS_UPDATE) + ret = __io_sqe_buffers_update(ctx, &up, nr_args); else ret = -EINVAL; mutex_unlock(&ctx->uring_lock); @@ -6108,6 +6118,8 @@ static int io_req_prep(struct io_kiocb *req, const struct io_uring_sqe *sqe) return io_renameat_prep(req, sqe); case IORING_OP_UNLINKAT: return io_unlinkat_prep(req, sqe); + case IORING_OP_BUFFERS_UPDATE: + return io_rsrc_update_prep(req, sqe); } printk_once(KERN_WARNING "io_uring: unhandled opcode %d\n", @@ -6329,6 +6341,7 @@ static int io_issue_sqe(struct io_kiocb *req, bool force_nonblock, ret = io_close(req, force_nonblock, cs); break; case IORING_OP_FILES_UPDATE: + case IORING_OP_BUFFERS_UPDATE: ret = io_rsrc_update(req, force_nonblock, cs); break; case IORING_OP_STATX: @@ -8093,8 +8106,9 @@ static int __io_sqe_files_update(struct io_ring_ctx *ctx, if (needs_switch) { percpu_ref_kill(&data->node->refs); io_sqe_rsrc_set_node(ctx, data, ref_node); - } else + } else { destroy_fixed_rsrc_ref_node(ref_node); + } return done ? done : err; } @@ -8427,6 +8441,7 @@ static void io_buffer_unmap(struct io_ring_ctx *ctx, struct io_mapped_ubuf *imu) if (imu->acct_pages) io_unaccount_mem(ctx, imu->nr_bvecs, ACCT_PINNED); kvfree(imu->bvec); + imu->bvec = NULL; imu->nr_bvecs = 0; } @@ -8633,6 +8648,7 @@ static int io_sqe_buffer_register(struct io_ring_ctx *ctx, struct iovec *iov, if (pret > 0) unpin_user_pages(pages, pret); kvfree(imu->bvec); + imu->bvec = NULL; goto done; } @@ -8748,6 +8764,8 @@ static int io_buffer_validate(struct iovec *iov) static void io_ring_buf_put(struct io_ring_ctx *ctx, struct io_rsrc_put *prsrc) { io_buffer_unmap(ctx, prsrc->buf); + kvfree(prsrc->buf); + prsrc->buf = NULL; } static void init_fixed_buf_ref_node(struct io_ring_ctx *ctx, @@ -8814,6 +8832,105 @@ static int io_sqe_buffers_register(struct io_ring_ctx *ctx, void __user *arg, return 0; } +static inline int io_queue_buffer_removal(struct fixed_rsrc_data *data, + struct io_mapped_ubuf *imu) +{ + return io_queue_rsrc_removal(data, (void *)imu); +} + +static int __io_sqe_buffers_update(struct io_ring_ctx *ctx, + struct io_uring_rsrc_update *up, + unsigned int nr_args) +{ + struct fixed_rsrc_data *data = ctx->buf_data; + struct fixed_rsrc_ref_node *ref_node; + struct io_mapped_ubuf *imu; + struct iovec iov; + struct iovec __user *iovs; + struct page *last_hpage = NULL; + __u32 done; + int i, err; + bool needs_switch = false; + + if (check_add_overflow(up->offset, nr_args, &done)) + return -EOVERFLOW; + if (done > ctx->nr_user_bufs) + return -EINVAL; + + ref_node = alloc_fixed_rsrc_ref_node(ctx); + if (!ref_node) + return -ENOMEM; + init_fixed_buf_ref_node(ctx, ref_node); + + done = 0; + iovs = u64_to_user_ptr(up->data); + while (nr_args) { + struct fixed_rsrc_table *table; + unsigned int index; + + err = 0; + if (copy_from_user(&iov, &iovs[done], sizeof(iov))) { + err = -EFAULT; + break; + } + i = array_index_nospec(up->offset, ctx->nr_user_bufs); + table = &ctx->buf_data->table[i >> IORING_BUF_TABLE_SHIFT]; + index = i & IORING_BUF_TABLE_MASK; + imu = &table->bufs[index]; + if (table->bufs[index].ubuf) { + struct io_mapped_ubuf *dup; + + dup = kmemdup(imu, sizeof(*imu), GFP_KERNEL); + if (!dup) { + err = -ENOMEM; + break; + } + err = io_queue_buffer_removal(data, dup); + if (err) + break; + memset(imu, 0, sizeof(*imu)); + needs_switch = true; + } + if (!io_buffer_validate(&iov)) { + err = io_sqe_buffer_register(ctx, &iov, imu, + &last_hpage); + if (err) { + memset(imu, 0, sizeof(*imu)); + break; + } + } + nr_args--; + done++; + up->offset++; + } + + if (needs_switch) { + percpu_ref_kill(&data->node->refs); + io_sqe_rsrc_set_node(ctx, data, ref_node); + } else { + destroy_fixed_rsrc_ref_node(ref_node); + } + + return done ? done : err; +} + +static int io_sqe_buffers_update(struct io_ring_ctx *ctx, void __user *arg, + unsigned int nr_args) +{ + struct io_uring_rsrc_update up; + + if (!ctx->buf_data) + return -ENXIO; + if (!nr_args) + return -EINVAL; + if (copy_from_user(&up, arg, sizeof(up))) + return -EFAULT; + if (up.resv) + return -EINVAL; + + return __io_sqe_buffers_update(ctx, &up, nr_args); +} + static int io_eventfd_register(struct io_ring_ctx *ctx, void __user *arg) { __s32 __user *fds = arg; @@ -10173,6 +10290,7 @@ static bool io_register_op_must_quiesce(int op) case IORING_UNREGISTER_FILES: case IORING_REGISTER_FILES_UPDATE: case IORING_UNREGISTER_BUFFERS: + case IORING_REGISTER_BUFFERS_UPDATE: case IORING_REGISTER_PROBE: case IORING_REGISTER_PERSONALITY: case IORING_UNREGISTER_PERSONALITY: @@ -10248,6 +10366,9 @@ static int __io_uring_register(struct io_ring_ctx *ctx, unsigned opcode, break; ret = io_sqe_buffers_unregister(ctx); break; + case IORING_REGISTER_BUFFERS_UPDATE: + ret = io_sqe_buffers_update(ctx, arg, nr_args); + break; case IORING_REGISTER_FILES: ret = io_sqe_files_register(ctx, arg, nr_args); break; diff --git a/include/uapi/linux/io_uring.h b/include/uapi/linux/io_uring.h index f9f106c..32b3fa6 100644 --- a/include/uapi/linux/io_uring.h +++ b/include/uapi/linux/io_uring.h @@ -137,6 +137,7 @@ enum { IORING_OP_SHUTDOWN, IORING_OP_RENAMEAT, IORING_OP_UNLINKAT, + IORING_OP_BUFFERS_UPDATE, /* this goes last, obviously */ IORING_OP_LAST, @@ -280,6 +281,7 @@ enum { IORING_UNREGISTER_PERSONALITY = 10, IORING_REGISTER_RESTRICTIONS = 11, IORING_REGISTER_ENABLE_RINGS = 12, + IORING_REGISTER_BUFFERS_UPDATE = 13, /* this goes last */ IORING_REGISTER_LAST -- 1.8.3.1