From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from aserp2130.oracle.com (aserp2130.oracle.com [141.146.126.79]) by mx.groups.io with SMTP id smtpd.web08.6045.1613725509170432364 for ; Fri, 19 Feb 2021 01:05:09 -0800 Authentication-Results: mx.groups.io; dkim=pass header.i=@oracle.com header.s=corp-2020-01-29 header.b=Fd+GbUpL; spf=pass (domain: oracle.com, ip: 141.146.126.79, mailfrom: ankur.a.arora@oracle.com) Received: from pps.filterd (aserp2130.oracle.com [127.0.0.1]) by aserp2130.oracle.com (8.16.0.42/8.16.0.42) with SMTP id 11J94vK7192839; Fri, 19 Feb 2021 09:05:06 GMT DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=oracle.com; h=from : to : cc : subject : date : message-id : in-reply-to : references : content-transfer-encoding : content-type : mime-version; s=corp-2020-01-29; bh=8O+v4Cw/pnCptuFQ6/9+HeC9SUdImG7B9ejbq/+vRd4=; b=Fd+GbUpLd9dd3qDehivz9F1VCxz+lCqkJKkv2oz9G5gWoCKkwpUIc5nwhcWJNFO+gZi9 NDb7AjGiimtCuAErG8IEsMhkmYSq0jREcegKcyxDd0M3QcZSJsJOHOglcVc8LXNd0Nc6 AsMDL0LHvyfwK+l8ahKvRPPN5NfDvWlLlPhy94CGNExd+0H8xjpnjqIWUu4k0v8fYYlS DeGVj3qyZj9LMbn/a5FGdjYR2JwpKC7VoD57f1X2lrAc/HEDxeP7EJpkh1PV8lR5Wgjx 5tZ9929YN6IcSIeIM1n7L9GMilcXz5KJjRvvUbJJ6njeayThlh3IxYYZQrR+G/VJBj3T xA== Received: from userp3030.oracle.com (userp3030.oracle.com [156.151.31.80]) by aserp2130.oracle.com with ESMTP id 36p49bgw0m-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=OK); Fri, 19 Feb 2021 09:05:06 +0000 Received: from pps.filterd (userp3030.oracle.com [127.0.0.1]) by userp3030.oracle.com (8.16.0.42/8.16.0.42) with SMTP id 11J8uDEg164199; Fri, 19 Feb 2021 09:05:05 GMT Received: from nam12-bn8-obe.outbound.protection.outlook.com (mail-bn8nam12lp2169.outbound.protection.outlook.com [104.47.55.169]) by userp3030.oracle.com with ESMTP id 36prq1nxha-2 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=OK); Fri, 19 Feb 2021 09:05:05 +0000 ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=GjXWFppySvxidKQEPyeC/rdR/lb2UL0i44u6PwyzJs7JHxOUvuju8dIiorrqzVjilAswb/hpQerPeXA/ZbFgwjf6wUzqAENq+JlsnflL/v0lZmEa+AeNg4KrgTzAuUQgTN8Hb+yhIEKFPaENVquWQC+dlAlvx0qkTcQf9xHu8lfy2hJ01+9SzJEnaaqpuddOGODIRChuQ4WFX/NIhsDZh0g6uZpsnjTjkOYeXBbrKE9iPNhqwB5JyHnw8AyElzkpdnnDX4MrzDeejV2pdRecwyn8idhOdHMheVUVI3VZSqX8+Rj8xjE61REvoljhHEvJZ61olJ+Cb5k09mbFCHdbWw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=8O+v4Cw/pnCptuFQ6/9+HeC9SUdImG7B9ejbq/+vRd4=; b=Awb4LjsC8ikUPXroZkeWnQZBjN38asHLjq54DVd9n1Do9fhyEXMmqfjLTLwh5HGaqvGMRrMXtlqhkF74fn8q9AgmccBeQ7rsHU4G2B87DYQFftppl4ReOap5yKy6MCyBzDX/B7SD/4Ekjzrwi+YsAfkWXLo2ECnzqJB7QirJoCWnz45UohJ/I1A96K9Dbnpy8N7xcdWkHzuHQ8q1rZtZIOj17Lv/6gqkrEjdqqT6Eq92hohJX7N0Gt1eatQR2RMduqGSkwMB1O8UykXHa+OJl7pCLpKhF3il5Svcvw13OiAa/d6Lti5j/xoFYofd357mSM2TURvG8RnWM52PBzKnxw== ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=oracle.com; dmarc=pass action=none header.from=oracle.com; dkim=pass header.d=oracle.com; arc=none DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=oracle.onmicrosoft.com; s=selector2-oracle-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=8O+v4Cw/pnCptuFQ6/9+HeC9SUdImG7B9ejbq/+vRd4=; b=mK5Eglagrd7hrSp+FPRfTeGTQ8JD2A86DxyUlI8KIRitdUOleAP5iZZngJi5J/5YUuQcD1bgBOs8YAbnACPYE0BndtiSs1OtxXskr2eFSYwbYUAnLWTjqimsS6dUeYajfNY53OqCm45q7ckHD5sN6kHcURaxmuW//zgJtKbi2Wk= Authentication-Results: edk2.groups.io; dkim=none (message not signed) header.d=none;edk2.groups.io; dmarc=none action=none header.from=oracle.com; Received: from SJ0PR10MB4605.namprd10.prod.outlook.com (2603:10b6:a03:2d9::24) by BYAPR10MB3605.namprd10.prod.outlook.com (2603:10b6:a03:129::15) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3846.27; Fri, 19 Feb 2021 09:05:03 +0000 Received: from SJ0PR10MB4605.namprd10.prod.outlook.com ([fe80::a021:790:7ce6:6f16]) by SJ0PR10MB4605.namprd10.prod.outlook.com ([fe80::a021:790:7ce6:6f16%6]) with mapi id 15.20.3868.029; Fri, 19 Feb 2021 09:05:03 +0000 From: "Ankur Arora" To: devel@edk2.groups.io Cc: lersek@redhat.com, imammedo@redhat.com, boris.ostrovsky@oracle.com, Ankur Arora , Jordan Justen , Ard Biesheuvel , Aaron Young Subject: [PATCH v7 08/10] OvmfPkg/CpuHotplugSmm: add EjectCpu() Date: Fri, 19 Feb 2021 01:04:42 -0800 Message-Id: <20210219090444.1332380-9-ankur.a.arora@oracle.com> X-Mailer: git-send-email 2.29.2 In-Reply-To: <20210219090444.1332380-1-ankur.a.arora@oracle.com> References: <20210219090444.1332380-1-ankur.a.arora@oracle.com> X-Originating-IP: [148.87.23.5] X-ClientProxiedBy: MWHPR13CA0004.namprd13.prod.outlook.com (2603:10b6:300:16::14) To SJ0PR10MB4605.namprd10.prod.outlook.com (2603:10b6:a03:2d9::24) MIME-Version: 1.0 X-MS-Exchange-MessageSentRepresentingType: 1 Received: from prion.us.oracle.com (148.87.23.5) by MWHPR13CA0004.namprd13.prod.outlook.com (2603:10b6:300:16::14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3890.8 via Frontend Transport; Fri, 19 Feb 2021 09:05:02 +0000 X-MS-PublicTrafficType: Email X-MS-Office365-Filtering-Correlation-Id: e7d1a7db-c3fe-4a05-fc59-08d8d4b5719f X-MS-TrafficTypeDiagnostic: BYAPR10MB3605: X-MS-Exchange-Transport-Forked: True X-Microsoft-Antispam-PRVS: X-MS-Oob-TLC-OOBClassifiers: OLM:4303; X-MS-Exchange-SenderADCheck: 1 X-Microsoft-Antispam: BCL:0; X-Microsoft-Antispam-Message-Info: 21U5WDjkrOKMXWnrUMHh0jJIWnff8O7wfDYGwMunQLSrE+l/nBZtfjQ+MEmrMoBtUmLtlQGgFaMOcXg/Y8PY2DQayxZ7fBRXIWtUuqy1XSaQiLwGEkzOQajb4f5vHcm2tkPCyM/tlczzGK4uGcMkAv5OuAd6HtXElgVUMYYESCdd5fowQzB/9aj0bXW9SZy4pHv9mSe3UTyRsR4DPorLMUuMZoNdt83x+Rg2s9Zu/vbByvtkKwSc2QbI6k0/zcwVudq/W1fcnf6S42nmGwUJvfP1KVDAb7dRdqw78/mWyThTx+pfx/hLO5qds2nVb4cobvpvewKOSYj03Pc9p54NMUo6B0/rlYhsWcKQaeproN6pqKNOdMCbgnvHyLmJMHIFmeCTvTee3dfVc0TqoZ2XlgGBw5ve4dvV8yQZHCk7VXdAaOoEAoTt1Ot8zYGw/Z1eLgTGS7ZGMRj07AzS5dlou+PnDEtVX32IwlN4rUOrng+TdjQw8E2IsmufngSzINNB07w7AZGsysXsyytkgMF1P7Uqg6lySWM9SpWihcITcIUc7aCjEMOjEQUCye2Bo8o4pgwtbsZOaRJAWbd27YbqIg36CafjhXsnG39k4gkew48= X-Forefront-Antispam-Report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:SJ0PR10MB4605.namprd10.prod.outlook.com;PTR:;CAT:NONE;SFS:(366004)(376002)(39860400002)(346002)(396003)(136003)(83380400001)(7696005)(66946007)(2616005)(66556008)(6486002)(36756003)(86362001)(316002)(6666004)(54906003)(966005)(8676002)(30864003)(66476007)(52116002)(478600001)(956004)(4326008)(5660300002)(6916009)(8936002)(2906002)(107886003)(1076003)(186003)(103116003)(26005)(16526019);DIR:OUT;SFP:1101; X-MS-Exchange-AntiSpam-MessageData: =?us-ascii?Q?720v8CUzNFo7lcWnJNBVUcBcr9o0t74gz0xSUZ+dCYR0AFVM60Xc+GTTdzjs?= =?us-ascii?Q?HDWXNTIiG86TL4fnXGpzinejxCfJQJIMDppqx4WtSNAuzuAaNrt3mmfTKbbP?= =?us-ascii?Q?3eNj3vfNBSe+YMiLTPHyqcVlp1T/nxkbY2tIBC+QBQGrzDZ/mDaqp2rTW+At?= =?us-ascii?Q?dYmte5myQqDi+gvbIL2pye4RWjPe1O4pUVI9hopDHjs42jQLqOJTFUov4x5w?= =?us-ascii?Q?hh2Gh8vFeknHFBwsDhGwSrLZASEIR2VtMddiUyZT9AYafW762Dx7OsCfyc38?= =?us-ascii?Q?GBg8ZUDJCr8/f16u9plGTltn+qOblC1mgaa20g7SKcgIeu259pVouDCoiuRC?= =?us-ascii?Q?bjhEHuJLgy5R7Pjr/0bIgF9Tsn083XyQa2VADKamDmrRkZAUwUrZxrPpArr7?= =?us-ascii?Q?x+v2OqAW0t7NiElzQIm0PRLFezEit/HFPzmZCKPROVOHT6GX9r7TXBtY/MgG?= =?us-ascii?Q?zJxwnRmde8Bz0swc+EXlCcP0DWqy2OlZ/v3XPN4SJd5+41vlboID/DaqvhiR?= =?us-ascii?Q?sIIpZ0fy0erXPhleYLLF5LZYoBmsc3GPk9AZvSltf89Li9jG9U4Oyy2LiOVn?= =?us-ascii?Q?GyjGDFO8Wt8Z0E2j+XyughdZ8k0DGIqUMV4I6oX1i6w394+ineGZEwi7RJHU?= =?us-ascii?Q?qIwzydAzH+AwGb0vTkvxJrUJBp4VuroPvCKnjJxKX5W3zxLNITtRbrouSvF0?= =?us-ascii?Q?8keIQAow8L5dYxbtnzJ0c90pEbqAvI97Tk1WT2FJk8FLaVuBXyUrkElhik1B?= =?us-ascii?Q?921zlOMFW2XJXvwWThU5tcCvHjN87O5mrKetYRDIJ9ymjS3atASq8LwiRPtH?= =?us-ascii?Q?Sp5W93c0oMftrmMrZRxLEIRfD8zfCsWDTV97Rg/sN2y1ivHjkLAxJ5pdSkgs?= =?us-ascii?Q?g8W8lp+A8rUWTx5bC1RVGi5DzzSULFUDYMoMA/Ojhk13mw1YZd6hxMaxiin9?= =?us-ascii?Q?rEyMNsu+c8B8nl8rZPMYvM4zZNkP/0A5nbzc6NIukz+bhnuNwlAl/9seerYc?= =?us-ascii?Q?Qg/6bmfV+kgk0av03rbqJYbtgTry8MJb/jfwk4jjGDIaDK0PM/9oXGv+cvwN?= =?us-ascii?Q?aF0u60nYz/PBxe6j17FhzJXHpCv6Cya+ROwH33WOx9H18DgZracmilAacppE?= =?us-ascii?Q?n7t2tuNf5WR835ZdW3B2W6u5QCuk+qMJo5rvo3wplwppIOQXmoUE9obk7BrC?= =?us-ascii?Q?c5J7Uujjq9KuRo/pRQEC8ahX3gDMniWTYLbvTFvmrPbUfLADMMnaM9lponoM?= =?us-ascii?Q?faYF9qGX1K7j6wcQPK2dtlCjjUkIcGt2j3qJu78uAOcwrIYU+9FWaJvgHfce?= =?us-ascii?Q?cKwhNikrAT0+KnRFBEyt+UaG?= X-OriginatorOrg: oracle.com X-MS-Exchange-CrossTenant-Network-Message-Id: e7d1a7db-c3fe-4a05-fc59-08d8d4b5719f X-MS-Exchange-CrossTenant-AuthSource: SJ0PR10MB4605.namprd10.prod.outlook.com X-MS-Exchange-CrossTenant-AuthAs: Internal X-MS-Exchange-CrossTenant-OriginalArrivalTime: 19 Feb 2021 09:05:03.5166 (UTC) X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 4e2c6054-71cb-48f1-bd6c-3a9705aca71b X-MS-Exchange-CrossTenant-MailboxType: HOSTED X-MS-Exchange-CrossTenant-UserPrincipalName: zUz6h+FLVKpDw21vqI4yzWUMwsdWnMRQZUbJKM2BeC5Hl/UDoMTVvGgR3eJmmYfqYla9UHII145YfCQ6y7464wFzaYvnb0WOjWhg415yVK4= X-MS-Exchange-Transport-CrossTenantHeadersStamped: BYAPR10MB3605 X-Proofpoint-Virus-Version: vendor=nai engine=6200 definitions=9899 signatures=668683 X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 bulkscore=0 mlxlogscore=999 phishscore=0 adultscore=0 mlxscore=0 suspectscore=0 malwarescore=0 spamscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2009150000 definitions=main-2102190070 X-Proofpoint-Virus-Version: vendor=nai engine=6200 definitions=9899 signatures=668683 X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 spamscore=0 priorityscore=1501 lowpriorityscore=0 bulkscore=0 impostorscore=0 mlxlogscore=999 adultscore=0 malwarescore=0 phishscore=0 clxscore=1015 mlxscore=0 suspectscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2009150000 definitions=main-2102190071 Content-Transfer-Encoding: 8bit Content-Type: text/plain Add EjectCpu(), which handles the CPU ejection, and provides a holding area for said CPUs. It is called via SmmCpuFeaturesRendezvousExit(), at the tail end of the SMI handling. Also UnplugCpus() now stashes QEMU Selectors of CPUs which need to be ejected in CPU_HOT_EJECT_DATA.QemuSelectorMap. This is used by EjectCpu() to identify CPUs marked for ejection. Cc: Laszlo Ersek Cc: Jordan Justen Cc: Ard Biesheuvel Cc: Igor Mammedov Cc: Boris Ostrovsky Cc: Aaron Young Ref: https://bugzilla.tianocore.org/show_bug.cgi?id=3132 Signed-off-by: Ankur Arora --- Notes: Address these review comments from v6: (1) s/CpuEject/EjectCpu/g (2) Ensure that the added include is in sorted order. (3) Switch to a cheaper CpuSleep() based loop instead of CpuDeadLoop(). Also add the CpuLib LibraryClass. (4) Remove the nested else clause (5) Use Laszlo's much clearer comment when we try to map multiple QemuSelector to the same ProcessorNum. (6a) Fix indentation of the debug print in the block in (5). (6b,6c,6d) Fix printf types for ProcessorNum, use FMT_APIC_ID for APIC_ID and 0x%Lx for QemuSelector[]. () As discussed elsewhere add an DEBUG_INFO print logging the correspondence between ProcessorNum, APIC_ID, QemuSelector. (7a,7b) Use EFI_ALREADY_STARTED instead of EFI_INVALID_PARAMETER and document it in the UnplugCpus() comment block. () As discussed elsewhere, add the import statement for PcdCpuHotEjectDataAddress. (9) Use Laszlo's comment in the PcdGet64(PcdCpuHotEjectDataAddress) description block. (10) Change mCpuHotEjectData init state checks from ASSERT to ones consistent with similar checks for mCpuHotPlugData. (11-14) Get rid of mCpuHotEjectData init loop: moved to a prior patch so it can be done at allocation time. (15) s/SmmCpuFeaturesSmiRendezvousExit/SmmCpuFeaturesRendezvousExit/ (16,17) Document the ordering requirements of mCpuHotEjectData->Handler, and mCpuHotEjectData->QemuSelectorMap. Not addressed: (8) Not removing the EjectCount variable as I'd like to minimize stores/loads to CPU_HOT_EJECT_DATA->Handler and so would like to do this a single time at the end of the iteration. (It is safe to write multiple times to the handler in UnplugCpus() but given the ordering concerns around it, it seems cleaner to not access it unnecessarily.) OvmfPkg/CpuHotplugSmm/CpuHotplugSmm.inf | 2 + OvmfPkg/CpuHotplugSmm/CpuHotplug.c | 157 ++++++++++++++++++++++++++++++-- 2 files changed, 151 insertions(+), 8 deletions(-) diff --git a/OvmfPkg/CpuHotplugSmm/CpuHotplugSmm.inf b/OvmfPkg/CpuHotplugSmm/CpuHotplugSmm.inf index 04322b0d7855..ebcc7e2ac63a 100644 --- a/OvmfPkg/CpuHotplugSmm/CpuHotplugSmm.inf +++ b/OvmfPkg/CpuHotplugSmm/CpuHotplugSmm.inf @@ -40,6 +40,7 @@ [Packages] [LibraryClasses] BaseLib BaseMemoryLib + CpuLib DebugLib LocalApicLib MmServicesTableLib @@ -54,6 +55,7 @@ [Protocols] [Pcd] gUefiCpuPkgTokenSpaceGuid.PcdCpuHotPlugDataAddress ## CONSUMES + gUefiOvmfPkgTokenSpaceGuid.PcdCpuHotEjectDataAddress ## CONSUMES gUefiOvmfPkgTokenSpaceGuid.PcdQ35SmramAtDefaultSmbase ## CONSUMES [FeaturePcd] diff --git a/OvmfPkg/CpuHotplugSmm/CpuHotplug.c b/OvmfPkg/CpuHotplugSmm/CpuHotplug.c index f07b5072749a..5dcaca53d42f 100644 --- a/OvmfPkg/CpuHotplugSmm/CpuHotplug.c +++ b/OvmfPkg/CpuHotplugSmm/CpuHotplug.c @@ -10,10 +10,12 @@ #include // ICH9_APM_CNT #include // QEMU_CPUHP_CMD_GET_PENDING #include // CpuDeadLoop() +#include // CpuSleep() #include // ASSERT() #include // gMmst #include // PcdGetBool() #include // SafeUintnSub() +#include // CPU_HOT_EJECT_DATA #include // EFI_MM_CPU_IO_PROTOCOL #include // EFI_SMM_CPU_SERVICE_PROTOCOL #include // EFI_STATUS @@ -32,11 +34,12 @@ STATIC EFI_MM_CPU_IO_PROTOCOL *mMmCpuIo; // STATIC EFI_SMM_CPU_SERVICE_PROTOCOL *mMmCpuService; // -// This structure is a communication side-channel between the +// These structures serve as communication side-channels between the // EFI_SMM_CPU_SERVICE_PROTOCOL consumer (i.e., this driver) and provider // (i.e., PiSmmCpuDxeSmm). // STATIC CPU_HOT_PLUG_DATA *mCpuHotPlugData; +STATIC CPU_HOT_EJECT_DATA *mCpuHotEjectData; // // SMRAM arrays for fetching the APIC IDs of processors with pending events (of // known event types), for the time of just one MMI. @@ -188,18 +191,72 @@ RevokeNewSlot: } /** + CPU Hot-eject handler, called from SmmCpuFeaturesRendezvousExit() + on each CPU at exit from SMM. + + If, the executing CPU is not being ejected, nothing to be done. + If, the executing CPU is being ejected, wait in a halted loop + until ejected. + + @param[in] ProcessorNum ProcessorNum denotes the CPU exiting SMM, + and will be used as an index into + CPU_HOT_EJECT_DATA->QemuSelectorMap. It is + identical to the processor handle number in + EFI_SMM_CPU_SERVICE_PROTOCOL. +**/ +VOID +EFIAPI +EjectCpu ( + IN UINTN ProcessorNum + ) +{ + UINT64 QemuSelector; + + QemuSelector = mCpuHotEjectData->QemuSelectorMap[ProcessorNum]; + if (QemuSelector == CPU_EJECT_QEMU_SELECTOR_INVALID) { + return; + } + + // + // CPU(s) being unplugged get here from SmmCpuFeaturesRendezvousExit() + // after having been cleared to exit the SMI by the BSP and thus have + // no SMM processing remaining. + // + // Given that we cannot allow them to escape to the guest, we pen them + // here until the BSP tells QEMU to unplug them. + // + for (;;) { + DisableInterrupts (); + CpuSleep (); + } +} + +/** Process to be hot-unplugged CPUs, per QemuCpuhpCollectApicIds(). For each such CPU, report the CPU to PiSmmCpuDxeSmm via - EFI_SMM_CPU_SERVICE_PROTOCOL. If the to be hot-unplugged CPU is - unknown, skip it silently. + EFI_SMM_CPU_SERVICE_PROTOCOL and stash the APIC ID for later ejection. + If the to be hot-unplugged CPU is unknown, skip it silently. + + Additonally, if we do stash any APIC IDs, also install a CPU eject handler + which would handle the ejection. @param[in] ToUnplugApicIds The APIC IDs of the CPUs that are about to be hot-unplugged. + @param[in] ToUnplugSelector The QEMU Selectors of the CPUs that are about to + be hot-unplugged. + @param[in] ToUnplugCount The number of filled-in APIC IDs in ToUnplugApicIds. + @retval EFI_ALREADY_STARTED For the ProcessorNum that + EFI_SMM_CPU_SERVICE_PROTOCOL had assigned to + one of the APIC ID in ToUnplugApicIds, + mCpuHotEjectData->QemuSelectorMap already has + the QemuSelector value stashed. (This should + never happen.) + @retval EFI_SUCCESS Known APIC IDs have been removed from SMM data structures. @@ -210,23 +267,36 @@ STATIC EFI_STATUS UnplugCpus ( IN APIC_ID *ToUnplugApicIds, + IN UINT32 *ToUnplugSelector, IN UINT32 ToUnplugCount ) { EFI_STATUS Status; UINT32 ToUnplugIdx; + UINT32 EjectCount; UINTN ProcessorNum; ToUnplugIdx = 0; + EjectCount = 0; while (ToUnplugIdx < ToUnplugCount) { APIC_ID RemoveApicId; + UINT32 QemuSelector; RemoveApicId = ToUnplugApicIds[ToUnplugIdx]; + QemuSelector = ToUnplugSelector[ToUnplugIdx]; // - // mCpuHotPlugData->ApicId maps ProcessorNum -> ApicId. Use it to find - // the ProcessorNum for the APIC ID to be removed. + // mCpuHotPlugData->ApicId maps ProcessorNum -> ApicId. Use RemoveApicId + // to find the corresponding ProcessorNum for the CPU to be removed. // + // With this we can establish a 3 way mapping: + // APIC_ID -- ProcessorNum -- QemuSelector + // + // We stash the ProcessorNum -> QemuSelector mapping so it can later be + // used for CPU hot-eject in SmmCpuFeaturesRendezvousExit() context (where + // we only have ProcessorNum available.) + // + for (ProcessorNum = 0; ProcessorNum < mCpuHotPlugData->ArrayLength; ProcessorNum++) { @@ -255,11 +325,64 @@ UnplugCpus ( return Status; } + if (mCpuHotEjectData->QemuSelectorMap[ProcessorNum] != + CPU_EJECT_QEMU_SELECTOR_INVALID) { + // + // mCpuHotEjectData->QemuSelectorMap[ProcessorNum] is set to + // CPU_EJECT_QEMU_SELECTOR_INVALID when mCpuHotEjectData->QemuSelectorMap + // is allocated, and once the subject processsor is ejected. + // + // Additionally, mMmCpuService->RemoveProcessor(ProcessorNum) invalidates + // mCpuHotPlugData->ApicId[ProcessorNum], so a given ProcessorNum can + // never match more than one APIC ID and by transitivity, more than one + // QemuSelector in a single invocation of UnplugCpus(). + // + DEBUG ((DEBUG_ERROR, "%a: ProcessorNum %Lu maps to QemuSelector 0x%Lx, " + "cannot also map to 0x%Lx\n", __FUNCTION__, (UINT64)ProcessorNum, + (UINT64)mCpuHotEjectData->QemuSelectorMap[ProcessorNum], QemuSelector)); + + Status = EFI_ALREADY_STARTED; + return Status; + } + + // + // Stash the QemuSelector so we can do the actual ejection later. + // + mCpuHotEjectData->QemuSelectorMap[ProcessorNum] = (UINT64)QemuSelector; + + DEBUG ((DEBUG_INFO, "%a: Started hot-unplug on ProcessorNum %Lu, APIC ID " + FMT_APIC_ID ", QemuSelector 0x%Lx\n", __FUNCTION__, (UINT64)ProcessorNum, + RemoveApicId, mCpuHotEjectData->QemuSelectorMap[ProcessorNum])); + + EjectCount++; ToUnplugIdx++; } + if (EjectCount != 0) { + // + // We have processors to be ejected; install the handler. + // + mCpuHotEjectData->Handler = EjectCpu; + + // + // The BSP, CPUs to be ejected dereference mCpuHotEjectData->Handler, and + // mCpuHotEjectData->QemuSelectorMap[] in SmmCpuFeaturesRendezvousExit(). + // + // Assignments to both of these are ordered-before the BSP's SMI exit signal + // which happens via a write to SMM_DISPATCHER_MP_SYNC_DATA->AllCpusInSync. + // Dereferences of both are ordered-after the synchronization via + // "AllCpusInSync". + // + // So we are guaranteed that the Handler would see the assignments above. + // However, add a MemoryFence() here in-lieu of a compiler barrier to + // ensure that the compiler doesn't monkey around with the stores. + // + MemoryFence (); + } + // - // We've removed this set of APIC IDs from SMM data structures. + // We've removed this set of APIC IDs from SMM data structures and + // have installed an ejection handler if needed. // return EFI_SUCCESS; } @@ -387,7 +510,7 @@ CpuHotplugMmi ( } if (ToUnplugCount > 0) { - Status = UnplugCpus (mToUnplugApicIds, ToUnplugCount); + Status = UnplugCpus (mToUnplugApicIds, mToUnplugSelector, ToUnplugCount); if (EFI_ERROR (Status)) { goto Fatal; } @@ -458,9 +581,14 @@ CpuHotplugEntry ( // // Our DEPEX on EFI_SMM_CPU_SERVICE_PROTOCOL guarantees that PiSmmCpuDxeSmm - // has pointed PcdCpuHotPlugDataAddress to CPU_HOT_PLUG_DATA in SMRAM. + // has pointed: + // - PcdCpuHotPlugDataAddress to CPU_HOT_PLUG_DATA in SMRAM, + // - PcdCpuHotEjectDataAddress to CPU_HOT_EJECT_DATA in SMRAM, if the + // possible CPU count is greater than 1. // mCpuHotPlugData = (VOID *)(UINTN)PcdGet64 (PcdCpuHotPlugDataAddress); + mCpuHotEjectData = (VOID *)(UINTN)PcdGet64 (PcdCpuHotEjectDataAddress); + if (mCpuHotPlugData == NULL) { Status = EFI_NOT_FOUND; DEBUG ((DEBUG_ERROR, "%a: CPU_HOT_PLUG_DATA: %r\n", __FUNCTION__, Status)); @@ -472,6 +600,19 @@ CpuHotplugEntry ( if (mCpuHotPlugData->ArrayLength == 1) { return EFI_UNSUPPORTED; } + + if (mCpuHotEjectData == NULL) { + Status = EFI_NOT_FOUND; + } else if (mCpuHotPlugData->ArrayLength != mCpuHotEjectData->ArrayLength) { + Status = EFI_INVALID_PARAMETER; + } else { + Status = EFI_SUCCESS; + } + if (EFI_ERROR (Status)) { + DEBUG ((DEBUG_ERROR, "%a: CPU_HOT_EJECT_DATA: %r\n", __FUNCTION__, Status)); + goto Fatal; + } + // // Allocate the data structures that depend on the possible CPU count. // -- 2.9.3