VirtualBox

source: vbox/trunk/src/VBox/VMM/include/HMInternal.h@ 95512

Last change on this file since 95512 was 94882, checked in by vboxsync, 3 years ago

VMM: First stab at Guest Compatibility Manager, fixing up things like division overflows caused by fast CPUs (see bugref:9735).

  • Property svn:eol-style set to native
  • Property svn:keywords set to Id Revision
File size: 55.9 KB
Line 
1/* $Id: HMInternal.h 94882 2022-05-06 06:33:54Z vboxsync $ */
2/** @file
3 * HM - Internal header file.
4 */
5
6/*
7 * Copyright (C) 2006-2022 Oracle Corporation
8 *
9 * This file is part of VirtualBox Open Source Edition (OSE), as
10 * available from http://www.virtualbox.org. This file is free software;
11 * you can redistribute it and/or modify it under the terms of the GNU
12 * General Public License (GPL) as published by the Free Software
13 * Foundation, in version 2 as it comes in the "COPYING" file of the
14 * VirtualBox OSE distribution. VirtualBox OSE is distributed in the
15 * hope that it will be useful, but WITHOUT ANY WARRANTY of any kind.
16 */
17
18#ifndef VMM_INCLUDED_SRC_include_HMInternal_h
19#define VMM_INCLUDED_SRC_include_HMInternal_h
20#ifndef RT_WITHOUT_PRAGMA_ONCE
21# pragma once
22#endif
23
24#include <VBox/cdefs.h>
25#include <VBox/types.h>
26#include <VBox/vmm/stam.h>
27#include <VBox/dis.h>
28#include <VBox/vmm/hm.h>
29#include <VBox/vmm/hm_vmx.h>
30#include <VBox/vmm/hm_svm.h>
31#include <VBox/vmm/pgm.h>
32#include <VBox/vmm/cpum.h>
33#include <VBox/vmm/trpm.h>
34#include <iprt/memobj.h>
35#include <iprt/cpuset.h>
36#include <iprt/mp.h>
37#include <iprt/avl.h>
38#include <iprt/string.h>
39
40#include "VMXInternal.h"
41#include "SVMInternal.h"
42
43#if HC_ARCH_BITS == 32
44# error "32-bit hosts are no longer supported. Go back to 6.0 or earlier!"
45#endif
46
47/** @def HM_PROFILE_EXIT_DISPATCH
48 * Enables profiling of the VM exit handler dispatching. */
49#if 0 || defined(DOXYGEN_RUNNING)
50# define HM_PROFILE_EXIT_DISPATCH
51#endif
52
53RT_C_DECLS_BEGIN
54
55
56/** @defgroup grp_hm_int Internal
57 * @ingroup grp_hm
58 * @internal
59 * @{
60 */
61
62/** Size for the EPT identity page table (1024 4 MB pages to cover the entire address space). */
63#define HM_EPT_IDENTITY_PG_TABLE_SIZE HOST_PAGE_SIZE
64/** Size of the TSS structure + 2 pages for the IO bitmap + end byte. */
65#define HM_VTX_TSS_SIZE (sizeof(VBOXTSS) + 2 * X86_PAGE_SIZE + 1)
66/** Total guest mapped memory needed. */
67#define HM_VTX_TOTAL_DEVHEAP_MEM (HM_EPT_IDENTITY_PG_TABLE_SIZE + HM_VTX_TSS_SIZE)
68
69
70/** @name Macros for enabling and disabling preemption.
71 * These are really just for hiding the RTTHREADPREEMPTSTATE and asserting that
72 * preemption has already been disabled when there is no context hook.
73 * @{ */
74#ifdef VBOX_STRICT
75# define HM_DISABLE_PREEMPT(a_pVCpu) \
76 RTTHREADPREEMPTSTATE PreemptStateInternal = RTTHREADPREEMPTSTATE_INITIALIZER; \
77 Assert(!RTThreadPreemptIsEnabled(NIL_RTTHREAD) || VMMR0ThreadCtxHookIsEnabled((a_pVCpu))); \
78 RTThreadPreemptDisable(&PreemptStateInternal)
79#else
80# define HM_DISABLE_PREEMPT(a_pVCpu) \
81 RTTHREADPREEMPTSTATE PreemptStateInternal = RTTHREADPREEMPTSTATE_INITIALIZER; \
82 RTThreadPreemptDisable(&PreemptStateInternal)
83#endif /* VBOX_STRICT */
84#define HM_RESTORE_PREEMPT() do { RTThreadPreemptRestore(&PreemptStateInternal); } while(0)
85/** @} */
86
87
88/** @name HM saved state versions.
89 * @{
90 */
91#define HM_SAVED_STATE_VERSION HM_SAVED_STATE_VERSION_SVM_NESTED_HWVIRT
92#define HM_SAVED_STATE_VERSION_SVM_NESTED_HWVIRT 6
93#define HM_SAVED_STATE_VERSION_TPR_PATCHING 5
94#define HM_SAVED_STATE_VERSION_NO_TPR_PATCHING 4
95#define HM_SAVED_STATE_VERSION_2_0_X 3
96/** @} */
97
98
99/**
100 * HM physical (host) CPU information.
101 */
102typedef struct HMPHYSCPU
103{
104 /** The CPU ID. */
105 RTCPUID idCpu;
106 /** The VM_HSAVE_AREA (AMD-V) / VMXON region (Intel) memory backing. */
107 RTR0MEMOBJ hMemObj;
108 /** The physical address of the first page in hMemObj (it's a
109 * physcially contigous allocation if it spans multiple pages). */
110 RTHCPHYS HCPhysMemObj;
111 /** The address of the memory (for pfnEnable). */
112 void *pvMemObj;
113 /** Current ASID (AMD-V) / VPID (Intel). */
114 uint32_t uCurrentAsid;
115 /** TLB flush count. */
116 uint32_t cTlbFlushes;
117 /** Whether to flush each new ASID/VPID before use. */
118 bool fFlushAsidBeforeUse;
119 /** Configured for VT-x or AMD-V. */
120 bool fConfigured;
121 /** Set if the VBOX_HWVIRTEX_IGNORE_SVM_IN_USE hack is active. */
122 bool fIgnoreAMDVInUseError;
123 /** Whether CR4.VMXE was already enabled prior to us enabling it. */
124 bool fVmxeAlreadyEnabled;
125 /** In use by our code. (for power suspend) */
126 bool volatile fInUse;
127#ifdef VBOX_WITH_NESTED_HWVIRT_SVM
128 /** Nested-guest union (put data common to SVM/VMX outside the union). */
129 union
130 {
131 /** Nested-guest SVM data. */
132 struct
133 {
134 /** The active nested-guest MSR permission bitmap memory backing. */
135 RTR0MEMOBJ hNstGstMsrpm;
136 /** The physical address of the first page in hNstGstMsrpm (physcially
137 * contiguous allocation). */
138 RTHCPHYS HCPhysNstGstMsrpm;
139 /** The address of the active nested-guest MSRPM. */
140 void *pvNstGstMsrpm;
141 } svm;
142 /** @todo Nested-VMX. */
143 } n;
144#endif
145} HMPHYSCPU;
146/** Pointer to HMPHYSCPU struct. */
147typedef HMPHYSCPU *PHMPHYSCPU;
148/** Pointer to a const HMPHYSCPU struct. */
149typedef const HMPHYSCPU *PCHMPHYSCPU;
150
151/**
152 * TPR-instruction type.
153 */
154typedef enum
155{
156 HMTPRINSTR_INVALID,
157 HMTPRINSTR_READ,
158 HMTPRINSTR_READ_SHR4,
159 HMTPRINSTR_WRITE_REG,
160 HMTPRINSTR_WRITE_IMM,
161 HMTPRINSTR_JUMP_REPLACEMENT,
162 /** The usual 32-bit paranoia. */
163 HMTPRINSTR_32BIT_HACK = 0x7fffffff
164} HMTPRINSTR;
165
166/**
167 * TPR patch information.
168 */
169typedef struct
170{
171 /** The key is the address of patched instruction. (32 bits GC ptr) */
172 AVLOU32NODECORE Core;
173 /** Original opcode. */
174 uint8_t aOpcode[16];
175 /** Instruction size. */
176 uint32_t cbOp;
177 /** Replacement opcode. */
178 uint8_t aNewOpcode[16];
179 /** Replacement instruction size. */
180 uint32_t cbNewOp;
181 /** Instruction type. */
182 HMTPRINSTR enmType;
183 /** Source operand. */
184 uint32_t uSrcOperand;
185 /** Destination operand. */
186 uint32_t uDstOperand;
187 /** Number of times the instruction caused a fault. */
188 uint32_t cFaults;
189 /** Patch address of the jump replacement. */
190 RTGCPTR32 pJumpTarget;
191} HMTPRPATCH;
192/** Pointer to HMTPRPATCH. */
193typedef HMTPRPATCH *PHMTPRPATCH;
194/** Pointer to a const HMTPRPATCH. */
195typedef const HMTPRPATCH *PCHMTPRPATCH;
196
197
198/**
199 * Makes a HMEXITSTAT::uKey value from a program counter and an exit code.
200 *
201 * @returns 64-bit key
202 * @param a_uPC The RIP + CS.BASE value of the exit.
203 * @param a_uExit The exit code.
204 * @todo Add CPL?
205 */
206#define HMEXITSTAT_MAKE_KEY(a_uPC, a_uExit) (((a_uPC) & UINT64_C(0x0000ffffffffffff)) | (uint64_t)(a_uExit) << 48)
207
208typedef struct HMEXITINFO
209{
210 /** See HMEXITSTAT_MAKE_KEY(). */
211 uint64_t uKey;
212 /** Number of recent hits (depreciates with time). */
213 uint32_t volatile cHits;
214 /** The age + lock. */
215 uint16_t volatile uAge;
216 /** Action or action table index. */
217 uint16_t iAction;
218} HMEXITINFO;
219AssertCompileSize(HMEXITINFO, 16); /* Lots of these guys, so don't add any unnecessary stuff! */
220
221typedef struct HMEXITHISTORY
222{
223 /** The exit timestamp. */
224 uint64_t uTscExit;
225 /** The index of the corresponding HMEXITINFO entry.
226 * UINT32_MAX if none (too many collisions, race, whatever). */
227 uint32_t iExitInfo;
228 /** Figure out later, needed for padding now. */
229 uint32_t uSomeClueOrSomething;
230} HMEXITHISTORY;
231
232/**
233 * Switcher function, HC to the special 64-bit RC.
234 *
235 * @param pVM The cross context VM structure.
236 * @param offCpumVCpu Offset from pVM->cpum to pVM->aCpus[idCpu].cpum.
237 * @returns Return code indicating the action to take.
238 */
239typedef DECLCALLBACKTYPE(int, FNHMSWITCHERHC,(PVM pVM, uint32_t offCpumVCpu));
240/** Pointer to switcher function. */
241typedef FNHMSWITCHERHC *PFNHMSWITCHERHC;
242
243
244/**
245 * HM VM Instance data.
246 * Changes to this must checked against the padding of the hm union in VM!
247 */
248typedef struct HM
249{
250 /** Set when the debug facility has breakpoints/events enabled that requires
251 * us to use the debug execution loop in ring-0. */
252 bool fUseDebugLoop;
253 /** Set when TPR patching is allowed. */
254 bool fTprPatchingAllowed;
255 /** Set when TPR patching is active. */
256 bool fTprPatchingActive;
257 /** Alignment padding. */
258 bool afAlignment1[5];
259
260 struct
261 {
262 /** Set by the ring-0 side of HM to indicate VMX is supported by the CPU. */
263 bool fSupported;
264 /** Set when we've enabled VMX. */
265 bool fEnabled;
266 /** The shift mask employed by the VMX-Preemption timer (set by ring-0). */
267 uint8_t cPreemptTimerShift;
268 bool fAlignment1;
269
270 /** @name Configuration (gets copied if problematic)
271 * @{ */
272 /** Set if Last Branch Record (LBR) is enabled. */
273 bool fLbrCfg;
274 /** Set if VT-x VPID is allowed. */
275 bool fAllowVpid;
276 /** Set if unrestricted guest execution is in use (real and protected mode
277 * without paging). */
278 bool fUnrestrictedGuestCfg;
279 /** Set if the preemption timer should be used if available. Ring-0
280 * quietly clears this if the hardware doesn't support the preemption timer. */
281 bool fUsePreemptTimerCfg;
282 /** @} */
283
284 /** Pause-loop exiting (PLE) gap in ticks. */
285 uint32_t cPleGapTicks;
286 /** Pause-loop exiting (PLE) window in ticks. */
287 uint32_t cPleWindowTicks;
288
289 /** Virtual address of the TSS page used for real mode emulation. */
290 R3PTRTYPE(PVBOXTSS) pRealModeTSS;
291 /** Virtual address of the identity page table used for real mode and protected
292 * mode without paging emulation in EPT mode. */
293 R3PTRTYPE(PX86PD) pNonPagingModeEPTPageTable;
294 } vmx;
295
296 struct
297 {
298 /** Set by the ring-0 side of HM to indicate SVM is supported by the CPU. */
299 bool fSupported;
300 /** Set when we've enabled SVM. */
301 bool fEnabled;
302 /** Set when the hack to ignore VERR_SVM_IN_USE is active.
303 * @todo Safe? */
304 bool fIgnoreInUseError;
305 /** Whether to use virtualized VMSAVE/VMLOAD feature. */
306 bool fVirtVmsaveVmload;
307 /** Whether to use virtual GIF feature. */
308 bool fVGif;
309 /** Whether to use LBR virtualization feature. */
310 bool fLbrVirt;
311 bool afAlignment1[2];
312
313 /** Pause filter counter. */
314 uint16_t cPauseFilter;
315 /** Pause filter treshold in ticks. */
316 uint16_t cPauseFilterThresholdTicks;
317 uint32_t u32Alignment2;
318 } svm;
319
320 /** AVL tree with all patches (active or disabled) sorted by guest instruction address.
321 * @todo For @bugref{9217} this AVL tree must be eliminated and instead
322 * sort aPatches by address and do a safe binary search on it. */
323 AVLOU32TREE PatchTree;
324 uint32_t cPatches;
325 HMTPRPATCH aPatches[64];
326
327 /** Guest allocated memory for patching purposes. */
328 RTGCPTR pGuestPatchMem;
329 /** Current free pointer inside the patch block. */
330 RTGCPTR pFreeGuestPatchMem;
331 /** Size of the guest patch memory block. */
332 uint32_t cbGuestPatchMem;
333 uint32_t u32Alignment2;
334
335 /** For ring-3 use only. */
336 struct
337 {
338 /** Last recorded error code during HM ring-0 init. */
339 int32_t rcInit;
340 uint32_t u32Alignment3;
341
342 /** Maximum ASID allowed.
343 * This is mainly for the release log. */
344 uint32_t uMaxAsid;
345 /** World switcher flags (HM_WSF_XXX) for the release log. */
346 uint32_t fWorldSwitcher;
347
348 struct
349 {
350 /** Set if VPID is supported (ring-3 copy). */
351 bool fVpid;
352 /** Whether the CPU supports VMCS fields for swapping EFER (set by ring-0 VMX
353 * init, for logging). */
354 bool fSupportsVmcsEfer;
355 /** Whether to use VMCS shadowing. */
356 bool fUseVmcsShadowing;
357 bool fAlignment2;
358
359 /** Host CR4 value (set by ring-0 VMX init, for logging). */
360 uint64_t u64HostCr4;
361 /** Host SMM monitor control (set by ring-0 VMX init, for logging). */
362 uint64_t u64HostSmmMonitorCtl;
363 /** Host EFER value (set by ring-0 VMX init, for logging and guest NX). */
364 uint64_t u64HostMsrEfer;
365 /** Host IA32_FEATURE_CONTROL MSR (set by ring-0 VMX init, for logging). */
366 uint64_t u64HostFeatCtrl;
367
368 /** The first valid host LBR branch-from-IP stack range. */
369 uint32_t idLbrFromIpMsrFirst;
370 /** The last valid host LBR branch-from-IP stack range. */
371 uint32_t idLbrFromIpMsrLast;
372
373 /** The first valid host LBR branch-to-IP stack range. */
374 uint32_t idLbrToIpMsrFirst;
375 /** The last valid host LBR branch-to-IP stack range. */
376 uint32_t idLbrToIpMsrLast;
377
378 /** Host-physical address for a failing VMXON instruction (for diagnostics, ring-3). */
379 RTHCPHYS HCPhysVmxEnableError;
380 /** VMX MSR values (only for ring-3 consumption). */
381 VMXMSRS Msrs;
382
383 /** Tagged-TLB flush type (only for ring-3 consumption). */
384 VMXTLBFLUSHTYPE enmTlbFlushType;
385 /** Flush type to use for INVEPT (only for ring-3 consumption). */
386 VMXTLBFLUSHEPT enmTlbFlushEpt;
387 /** Flush type to use for INVVPID (only for ring-3 consumption). */
388 VMXTLBFLUSHVPID enmTlbFlushVpid;
389 } vmx;
390
391 struct
392 {
393 /** SVM revision. */
394 uint32_t u32Rev;
395 /** SVM feature bits from cpuid 0x8000000a, ring-3 copy. */
396 uint32_t fFeatures;
397 /** HWCR MSR (for diagnostics). */
398 uint64_t u64MsrHwcr;
399 } svm;
400 } ForR3;
401
402 /** @name Configuration not used (much) after VM setup
403 * @{ */
404 /** The maximum number of resumes loops allowed in ring-0 (safety precaution).
405 * This number is set much higher when RTThreadPreemptIsPending is reliable. */
406 uint32_t cMaxResumeLoopsCfg;
407 /** Set if nested paging is enabled.
408 * Config value that is copied to HMR0PERVM::fNestedPaging on setup. */
409 bool fNestedPagingCfg;
410 /** Set if large pages are enabled (requires nested paging).
411 * Config only, passed on the PGM where it really belongs.
412 * @todo move to PGM */
413 bool fLargePages;
414 /** Set if we can support 64-bit guests or not.
415 * Config value that is copied to HMR0PERVM::fAllow64BitGuests on setup. */
416 bool fAllow64BitGuestsCfg;
417 /** Set when we initialize VT-x or AMD-V once for all CPUs. */
418 bool fGlobalInit;
419 /** Set if hardware APIC virtualization is enabled.
420 * @todo Not really used by HM, move to APIC where it's actually used. */
421 bool fVirtApicRegs;
422 /** Set if posted interrupt processing is enabled.
423 * @todo Not really used by HM, move to APIC where it's actually used. */
424 bool fPostedIntrs;
425 /** VM needs workaround for missing TLB flush in OS/2, see ticketref:20625.
426 * @note Currently only heeded by AMD-V. */
427 bool fMissingOS2TlbFlushWorkaround;
428 /** @} */
429
430 /** @name Processed into HMR0PERVCPU::fWorldSwitcher by ring-0 on VM init.
431 * @{ */
432 /** Set if indirect branch prediction barrier on VM exit. */
433 bool fIbpbOnVmExit;
434 /** Set if indirect branch prediction barrier on VM entry. */
435 bool fIbpbOnVmEntry;
436 /** Set if level 1 data cache should be flushed on VM entry. */
437 bool fL1dFlushOnVmEntry;
438 /** Set if level 1 data cache should be flushed on EMT scheduling. */
439 bool fL1dFlushOnSched;
440 /** Set if MDS related buffers should be cleared on VM entry. */
441 bool fMdsClearOnVmEntry;
442 /** Set if MDS related buffers should be cleared on EMT scheduling. */
443 bool fMdsClearOnSched;
444 /** Set if host manages speculation control settings.
445 * @todo doesn't do anything ... */
446 bool fSpecCtrlByHost;
447 /** @} */
448
449 /** Set when we've finalized the VMX / SVM initialization in ring-3
450 * (hmR3InitFinalizeR0Intel / hmR3InitFinalizeR0Amd). */
451 bool fInitialized;
452
453 bool afAlignment2[5];
454
455 STAMCOUNTER StatTprPatchSuccess;
456 STAMCOUNTER StatTprPatchFailure;
457 STAMCOUNTER StatTprReplaceSuccessCr8;
458 STAMCOUNTER StatTprReplaceSuccessVmc;
459 STAMCOUNTER StatTprReplaceFailure;
460} HM;
461/** Pointer to HM VM instance data. */
462typedef HM *PHM;
463AssertCompileMemberAlignment(HM, StatTprPatchSuccess, 8);
464AssertCompileMemberAlignment(HM, vmx, 8);
465AssertCompileMemberAlignment(HM, svm, 8);
466AssertCompileMemberAlignment(HM, StatTprPatchSuccess, 8);
467AssertCompile(RTASSERT_OFFSET_OF(HM, PatchTree) <= 64); /* First cache line has the essentials for both VT-x and SVM operation. */
468
469
470/**
471 * Per-VM ring-0 instance data for HM.
472 */
473typedef struct HMR0PERVM
474{
475 /** The maximum number of resumes loops allowed in ring-0 (safety precaution).
476 * This number is set much higher when RTThreadPreemptIsPending is reliable. */
477 uint32_t cMaxResumeLoops;
478
479 /** Set if nested paging is enabled. */
480 bool fNestedPaging;
481 /** Set if we can support 64-bit guests or not. */
482 bool fAllow64BitGuests;
483 bool afAlignment1[1];
484
485 /** AMD-V specific data. */
486 struct HMR0SVMVM
487 {
488 /** Set if erratum 170 affects the AMD cpu. */
489 bool fAlwaysFlushTLB;
490 } svm;
491
492 /** VT-x specific data. */
493 struct HMR0VMXVM
494 {
495 /** Set if unrestricted guest execution is in use (real and protected mode
496 * without paging). */
497 bool fUnrestrictedGuest;
498 /** Set if the preemption timer is in use. */
499 bool fUsePreemptTimer;
500 /** Whether to use VMCS shadowing. */
501 bool fUseVmcsShadowing;
502 /** Set if Last Branch Record (LBR) is enabled. */
503 bool fLbr;
504 bool afAlignment2[3];
505
506 /** Set if VPID is supported (copy in HM::vmx::fVpidForRing3). */
507 bool fVpid;
508 /** Tagged-TLB flush type. */
509 VMXTLBFLUSHTYPE enmTlbFlushType;
510 /** Flush type to use for INVEPT. */
511 VMXTLBFLUSHEPT enmTlbFlushEpt;
512 /** Flush type to use for INVVPID. */
513 VMXTLBFLUSHVPID enmTlbFlushVpid;
514
515 /** The host LBR TOS (top-of-stack) MSR id. */
516 uint32_t idLbrTosMsr;
517
518 /** The first valid host LBR branch-from-IP stack range. */
519 uint32_t idLbrFromIpMsrFirst;
520 /** The last valid host LBR branch-from-IP stack range. */
521 uint32_t idLbrFromIpMsrLast;
522
523 /** The first valid host LBR branch-to-IP stack range. */
524 uint32_t idLbrToIpMsrFirst;
525 /** The last valid host LBR branch-to-IP stack range. */
526 uint32_t idLbrToIpMsrLast;
527
528 /** Pointer to the VMREAD bitmap. */
529 R0PTRTYPE(void *) pvVmreadBitmap;
530 /** Pointer to the VMWRITE bitmap. */
531 R0PTRTYPE(void *) pvVmwriteBitmap;
532
533 /** Pointer to the shadow VMCS read-only fields array. */
534 R0PTRTYPE(uint32_t *) paShadowVmcsRoFields;
535 /** Pointer to the shadow VMCS read/write fields array. */
536 R0PTRTYPE(uint32_t *) paShadowVmcsFields;
537 /** Number of elements in the shadow VMCS read-only fields array. */
538 uint32_t cShadowVmcsRoFields;
539 /** Number of elements in the shadow VMCS read-write fields array. */
540 uint32_t cShadowVmcsFields;
541
542 /** Host-physical address of the APIC-access page. */
543 RTHCPHYS HCPhysApicAccess;
544 /** Host-physical address of the VMREAD bitmap. */
545 RTHCPHYS HCPhysVmreadBitmap;
546 /** Host-physical address of the VMWRITE bitmap. */
547 RTHCPHYS HCPhysVmwriteBitmap;
548
549#ifdef VBOX_WITH_CRASHDUMP_MAGIC
550 /** Host-physical address of the crash-dump scratch area. */
551 RTHCPHYS HCPhysScratch;
552 /** Pointer to the crash-dump scratch bitmap. */
553 R0PTRTYPE(uint8_t *) pbScratch;
554#endif
555
556 /** Ring-0 memory object for per-VM VMX structures. */
557 RTR0MEMOBJ hMemObj;
558 /** Virtual address of the APIC-access page (not used). */
559 R0PTRTYPE(uint8_t *) pbApicAccess;
560 } vmx;
561} HMR0PERVM;
562/** Pointer to HM's per-VM ring-0 instance data. */
563typedef HMR0PERVM *PHMR0PERVM;
564
565
566/** @addtogroup grp_hm_int_svm SVM Internal
567 * @{ */
568/** SVM VMRun function, see SVMR0VMRun(). */
569typedef DECLCALLBACKTYPE(int, FNHMSVMVMRUN,(PVMCC pVM, PVMCPUCC pVCpu, RTHCPHYS HCPhysVMCB));
570/** Pointer to a SVM VMRun function. */
571typedef R0PTRTYPE(FNHMSVMVMRUN *) PFNHMSVMVMRUN;
572
573/**
574 * SVM nested-guest VMCB cache.
575 *
576 * Contains VMCB fields from the nested-guest VMCB before they're modified by
577 * SVM R0 code for hardware-assisted SVM execution of a nested-guest.
578 *
579 * A VMCB field needs to be cached when it needs to be modified for execution using
580 * hardware-assisted SVM and any of the following are true:
581 * - If the original field needs to be inspected during execution of the
582 * nested-guest or \#VMEXIT processing.
583 * - If the field is written back to memory on \#VMEXIT by the physical CPU.
584 *
585 * A VMCB field needs to be restored only when the field is written back to
586 * memory on \#VMEXIT by the physical CPU and thus would be visible to the
587 * guest.
588 *
589 * @remarks Please update hmR3InfoSvmNstGstVmcbCache() when changes are made to
590 * this structure.
591 */
592typedef struct SVMNESTEDVMCBCACHE
593{
594 /** Cache of CRX read intercepts. */
595 uint16_t u16InterceptRdCRx;
596 /** Cache of CRX write intercepts. */
597 uint16_t u16InterceptWrCRx;
598 /** Cache of DRX read intercepts. */
599 uint16_t u16InterceptRdDRx;
600 /** Cache of DRX write intercepts. */
601 uint16_t u16InterceptWrDRx;
602
603 /** Cache of the pause-filter threshold. */
604 uint16_t u16PauseFilterThreshold;
605 /** Cache of the pause-filter count. */
606 uint16_t u16PauseFilterCount;
607
608 /** Cache of exception intercepts. */
609 uint32_t u32InterceptXcpt;
610 /** Cache of control intercepts. */
611 uint64_t u64InterceptCtrl;
612
613 /** Cache of the TSC offset. */
614 uint64_t u64TSCOffset;
615
616 /** Cache of V_INTR_MASKING bit. */
617 bool fVIntrMasking;
618 /** Cache of the nested-paging bit. */
619 bool fNestedPaging;
620 /** Cache of the LBR virtualization bit. */
621 bool fLbrVirt;
622 /** Whether the VMCB is cached by HM. */
623 bool fCacheValid;
624 /** Alignment. */
625 bool afPadding0[4];
626} SVMNESTEDVMCBCACHE;
627/** Pointer to the SVMNESTEDVMCBCACHE structure. */
628typedef SVMNESTEDVMCBCACHE *PSVMNESTEDVMCBCACHE;
629/** Pointer to a const SVMNESTEDVMCBCACHE structure. */
630typedef const SVMNESTEDVMCBCACHE *PCSVMNESTEDVMCBCACHE;
631AssertCompileSizeAlignment(SVMNESTEDVMCBCACHE, 8);
632
633/** @} */
634
635
636/** @addtogroup grp_hm_int_vmx VMX Internal
637 * @{ */
638
639/** @name Host-state restoration flags.
640 * @note If you change these values don't forget to update the assembly
641 * defines as well!
642 * @{
643 */
644#define VMX_RESTORE_HOST_SEL_DS RT_BIT(0)
645#define VMX_RESTORE_HOST_SEL_ES RT_BIT(1)
646#define VMX_RESTORE_HOST_SEL_FS RT_BIT(2)
647#define VMX_RESTORE_HOST_SEL_GS RT_BIT(3)
648#define VMX_RESTORE_HOST_SEL_TR RT_BIT(4)
649#define VMX_RESTORE_HOST_GDTR RT_BIT(5)
650#define VMX_RESTORE_HOST_IDTR RT_BIT(6)
651#define VMX_RESTORE_HOST_GDT_READ_ONLY RT_BIT(7)
652#define VMX_RESTORE_HOST_GDT_NEED_WRITABLE RT_BIT(8)
653#define VMX_RESTORE_HOST_CAN_USE_WRFSBASE_AND_WRGSBASE RT_BIT(9)
654/**
655 * This _must_ be the top most bit, so that we can easily check that it and
656 * something else is set w/o having to do two checks like this:
657 * @code
658 * if ( (pVCpu->hm.s.vmx.fRestoreHostFlags & VMX_RESTORE_HOST_REQUIRED)
659 * && (pVCpu->hm.s.vmx.fRestoreHostFlags & ~VMX_RESTORE_HOST_REQUIRED))
660 * @endcode
661 * Instead we can then do:
662 * @code
663 * if (pVCpu->hm.s.vmx.fRestoreHostFlags > VMX_RESTORE_HOST_REQUIRED)
664 * @endcode
665 */
666#define VMX_RESTORE_HOST_REQUIRED RT_BIT(10)
667/** @} */
668
669/**
670 * Host-state restoration structure.
671 *
672 * This holds host-state fields that require manual restoration.
673 * Assembly version found in HMInternal.mac (should be automatically verified).
674 */
675typedef struct VMXRESTOREHOST
676{
677 RTSEL uHostSelDS; /**< 0x00 */
678 RTSEL uHostSelES; /**< 0x02 */
679 RTSEL uHostSelFS; /**< 0x04 */
680 X86XDTR64 HostGdtr; /**< 0x06 - should be aligned by its 64-bit member. */
681 RTSEL uHostSelGS; /**< 0x10 */
682 RTSEL uHostSelTR; /**< 0x12 */
683 RTSEL uHostSelSS; /**< 0x14 - not restored, just for fetching */
684 X86XDTR64 HostGdtrRw; /**< 0x16 - should be aligned by its 64-bit member. */
685 RTSEL uHostSelCS; /**< 0x20 - not restored, just for fetching */
686 uint8_t abPadding1[4]; /**< 0x22 */
687 X86XDTR64 HostIdtr; /**< 0x26 - should be aligned by its 64-bit member. */
688 uint64_t uHostFSBase; /**< 0x30 */
689 uint64_t uHostGSBase; /**< 0x38 */
690} VMXRESTOREHOST;
691/** Pointer to VMXRESTOREHOST. */
692typedef VMXRESTOREHOST *PVMXRESTOREHOST;
693AssertCompileSize(X86XDTR64, 10);
694AssertCompileMemberOffset(VMXRESTOREHOST, HostGdtr.uAddr, 0x08);
695AssertCompileMemberOffset(VMXRESTOREHOST, HostGdtrRw.uAddr, 0x18);
696AssertCompileMemberOffset(VMXRESTOREHOST, HostIdtr.uAddr, 0x28);
697AssertCompileMemberOffset(VMXRESTOREHOST, uHostFSBase, 0x30);
698AssertCompileSize(VMXRESTOREHOST, 64);
699AssertCompileSizeAlignment(VMXRESTOREHOST, 8);
700
701/**
702 * VMX StartVM function.
703 *
704 * @returns VBox status code (no informational stuff).
705 * @param pVmcsInfo Pointer to the VMCS info (for cached host RIP and RSP).
706 * @param pVCpu Pointer to the cross context per-CPU structure.
707 * @param fResume Whether to use VMRESUME (true) or VMLAUNCH (false).
708 */
709typedef DECLCALLBACKTYPE(int, FNHMVMXSTARTVM,(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume));
710/** Pointer to a VMX StartVM function. */
711typedef R0PTRTYPE(FNHMVMXSTARTVM *) PFNHMVMXSTARTVM;
712/** @} */
713
714
715/**
716 * HM VMCPU Instance data.
717 *
718 * Note! If you change members of this struct, make sure to check if the
719 * assembly counterpart in HMInternal.mac needs to be updated as well.
720 *
721 * Note! The members here are ordered and aligned based on estimated frequency of
722 * usage and grouped to fit within a cache line in hot code paths. Even subtle
723 * changes here have a noticeable effect in the bootsector benchmarks. Modify with
724 * care.
725 */
726typedef struct HMCPU
727{
728 /** Set when the TLB has been checked until we return from the world switch. */
729 bool volatile fCheckedTLBFlush;
730 /** Set when we're using VT-x or AMD-V at that moment.
731 * @todo r=bird: Misleading description. For AMD-V this will be set the first
732 * time HMCanExecuteGuest() is called and only cleared again by
733 * HMR3ResetCpu(). For VT-x it will be set by HMCanExecuteGuest when we
734 * can execute something in VT-x mode, and cleared if we cannot.
735 *
736 * The field is much more about recording the last HMCanExecuteGuest
737 * return value than anything about any "moment". */
738 bool fActive;
739
740 /** Whether we should use the debug loop because of single stepping or special
741 * debug breakpoints / events are armed. */
742 bool fUseDebugLoop;
743
744 /** Whether \#UD needs to be intercepted (required by certain GIM providers). */
745 bool fGIMTrapXcptUD;
746 /** Whether \#GP needs to be intercepted for mesa driver workaround. */
747 bool fTrapXcptGpForLovelyMesaDrv;
748 /** Whether we're executing a single instruction. */
749 bool fSingleInstruction;
750 /** Whether \#DE needs to be intercepted (may be required by GCM). */
751 bool fGCMTrapXcptDE;
752
753 bool afAlignment0[1];
754
755 /** An additional error code used for some gurus. */
756 uint32_t u32HMError;
757 /** The last exit-to-ring-3 reason. */
758 int32_t rcLastExitToR3;
759 /** CPU-context changed flags (see HM_CHANGED_xxx). */
760 uint64_t fCtxChanged;
761
762 /** VT-x data. */
763 struct HMCPUVMX
764 {
765 /** @name Guest information.
766 * @{ */
767 /** Guest VMCS information shared with ring-3. */
768 VMXVMCSINFOSHARED VmcsInfo;
769 /** Nested-guest VMCS information shared with ring-3. */
770 VMXVMCSINFOSHARED VmcsInfoNstGst;
771 /** Whether the nested-guest VMCS was the last current VMCS (shadow copy for ring-3).
772 * @see HMR0PERVCPU::vmx.fSwitchedToNstGstVmcs */
773 bool fSwitchedToNstGstVmcsCopyForRing3;
774 /** Whether the static guest VMCS controls has been merged with the
775 * nested-guest VMCS controls. */
776 bool fMergedNstGstCtls;
777 /** Whether the nested-guest VMCS has been copied to the shadow VMCS. */
778 bool fCopiedNstGstToShadowVmcs;
779 /** Whether flushing the TLB is required due to switching to/from the
780 * nested-guest. */
781 bool fSwitchedNstGstFlushTlb;
782 /** Alignment. */
783 bool afAlignment0[4];
784 /** Cached guest APIC-base MSR for identifying when to map the APIC-access page. */
785 uint64_t u64GstMsrApicBase;
786 /** @} */
787
788 /** @name Error reporting and diagnostics.
789 * @{ */
790 /** VT-x error-reporting (mainly for ring-3 propagation). */
791 struct
792 {
793 RTCPUID idCurrentCpu;
794 RTCPUID idEnteredCpu;
795 RTHCPHYS HCPhysCurrentVmcs;
796 uint32_t u32VmcsRev;
797 uint32_t u32InstrError;
798 uint32_t u32ExitReason;
799 uint32_t u32GuestIntrState;
800 } LastError;
801 /** @} */
802 } vmx;
803
804 /** SVM data. */
805 struct HMCPUSVM
806 {
807 /** Whether to emulate long mode support for sysenter/sysexit like intel CPUs
808 * does. This means intercepting \#UD to emulate the instructions in
809 * long-mode and to intercept reads and writes to the SYSENTER MSRs in order to
810 * preserve the upper 32 bits written to them (AMD will ignore and discard). */
811 bool fEmulateLongModeSysEnterExit;
812 uint8_t au8Alignment0[7];
813
814 /** Cache of the nested-guest's VMCB fields that we modify in order to run the
815 * nested-guest using AMD-V. This will be restored on \#VMEXIT. */
816 SVMNESTEDVMCBCACHE NstGstVmcbCache;
817 } svm;
818
819 /** Event injection state. */
820 HMEVENT Event;
821
822 /** Current shadow paging mode for updating CR4.
823 * @todo move later (@bugref{9217}). */
824 PGMMODE enmShadowMode;
825 uint32_t u32TemporaryPadding;
826
827 /** The PAE PDPEs used with Nested Paging (only valid when
828 * VMCPU_FF_HM_UPDATE_PAE_PDPES is set). */
829 X86PDPE aPdpes[4];
830
831 /* These two comes because they are accessed from assembly and we don't
832 want to detail all the stats in the assembly version of this structure. */
833 STAMCOUNTER StatVmxWriteHostRip;
834 STAMCOUNTER StatVmxWriteHostRsp;
835 STAMCOUNTER StatVmxVmLaunch;
836 STAMCOUNTER StatVmxVmResume;
837
838 STAMPROFILEADV StatEntry;
839 STAMPROFILEADV StatPreExit;
840 STAMPROFILEADV StatExitHandling;
841 STAMPROFILEADV StatExitIO;
842 STAMPROFILEADV StatExitMovCRx;
843 STAMPROFILEADV StatExitXcptNmi;
844 STAMPROFILEADV StatExitVmentry;
845 STAMPROFILEADV StatImportGuestState;
846 STAMPROFILEADV StatExportGuestState;
847 STAMPROFILEADV StatLoadGuestFpuState;
848 STAMPROFILEADV StatInGC;
849 STAMPROFILEADV StatPoke;
850 STAMPROFILEADV StatSpinPoke;
851 STAMPROFILEADV StatSpinPokeFailed;
852
853 STAMCOUNTER StatInjectInterrupt;
854 STAMCOUNTER StatInjectXcpt;
855 STAMCOUNTER StatInjectReflect;
856 STAMCOUNTER StatInjectConvertDF;
857 STAMCOUNTER StatInjectInterpret;
858 STAMCOUNTER StatInjectReflectNPF;
859
860 STAMCOUNTER StatExitAll;
861 STAMCOUNTER StatDebugExitAll;
862 STAMCOUNTER StatNestedExitAll;
863 STAMCOUNTER StatExitShadowNM;
864 STAMCOUNTER StatExitGuestNM;
865 STAMCOUNTER StatExitShadowPF; /**< Misleading, currently used for MMIO \#PFs as well. */
866 STAMCOUNTER StatExitShadowPFEM;
867 STAMCOUNTER StatExitGuestPF;
868 STAMCOUNTER StatExitGuestUD;
869 STAMCOUNTER StatExitGuestSS;
870 STAMCOUNTER StatExitGuestNP;
871 STAMCOUNTER StatExitGuestTS;
872 STAMCOUNTER StatExitGuestOF;
873 STAMCOUNTER StatExitGuestGP;
874 STAMCOUNTER StatExitGuestDE;
875 STAMCOUNTER StatExitGuestDF;
876 STAMCOUNTER StatExitGuestBR;
877 STAMCOUNTER StatExitGuestAC;
878 STAMCOUNTER StatExitGuestACSplitLock;
879 STAMCOUNTER StatExitGuestDB;
880 STAMCOUNTER StatExitGuestMF;
881 STAMCOUNTER StatExitGuestBP;
882 STAMCOUNTER StatExitGuestXF;
883 STAMCOUNTER StatExitGuestXcpUnk;
884 STAMCOUNTER StatExitDRxWrite;
885 STAMCOUNTER StatExitDRxRead;
886 STAMCOUNTER StatExitCR0Read;
887 STAMCOUNTER StatExitCR2Read;
888 STAMCOUNTER StatExitCR3Read;
889 STAMCOUNTER StatExitCR4Read;
890 STAMCOUNTER StatExitCR8Read;
891 STAMCOUNTER StatExitCR0Write;
892 STAMCOUNTER StatExitCR2Write;
893 STAMCOUNTER StatExitCR3Write;
894 STAMCOUNTER StatExitCR4Write;
895 STAMCOUNTER StatExitCR8Write;
896 STAMCOUNTER StatExitRdmsr;
897 STAMCOUNTER StatExitWrmsr;
898 STAMCOUNTER StatExitClts;
899 STAMCOUNTER StatExitXdtrAccess;
900 STAMCOUNTER StatExitLmsw;
901 STAMCOUNTER StatExitIOWrite;
902 STAMCOUNTER StatExitIORead;
903 STAMCOUNTER StatExitIOStringWrite;
904 STAMCOUNTER StatExitIOStringRead;
905 STAMCOUNTER StatExitIntWindow;
906 STAMCOUNTER StatExitExtInt;
907 STAMCOUNTER StatExitHostNmiInGC;
908 STAMCOUNTER StatExitHostNmiInGCIpi;
909 STAMCOUNTER StatExitPreemptTimer;
910 STAMCOUNTER StatExitTprBelowThreshold;
911 STAMCOUNTER StatExitTaskSwitch;
912 STAMCOUNTER StatExitApicAccess;
913 STAMCOUNTER StatExitReasonNpf;
914
915 STAMCOUNTER StatNestedExitReasonNpf;
916
917 STAMCOUNTER StatFlushPage;
918 STAMCOUNTER StatFlushPageManual;
919 STAMCOUNTER StatFlushPhysPageManual;
920 STAMCOUNTER StatFlushTlb;
921 STAMCOUNTER StatFlushTlbNstGst;
922 STAMCOUNTER StatFlushTlbManual;
923 STAMCOUNTER StatFlushTlbWorldSwitch;
924 STAMCOUNTER StatNoFlushTlbWorldSwitch;
925 STAMCOUNTER StatFlushEntire;
926 STAMCOUNTER StatFlushAsid;
927 STAMCOUNTER StatFlushNestedPaging;
928 STAMCOUNTER StatFlushTlbInvlpgVirt;
929 STAMCOUNTER StatFlushTlbInvlpgPhys;
930 STAMCOUNTER StatTlbShootdown;
931 STAMCOUNTER StatTlbShootdownFlush;
932
933 STAMCOUNTER StatSwitchPendingHostIrq;
934 STAMCOUNTER StatSwitchTprMaskedIrq;
935 STAMCOUNTER StatSwitchGuestIrq;
936 STAMCOUNTER StatSwitchHmToR3FF;
937 STAMCOUNTER StatSwitchVmReq;
938 STAMCOUNTER StatSwitchPgmPoolFlush;
939 STAMCOUNTER StatSwitchDma;
940 STAMCOUNTER StatSwitchExitToR3;
941 STAMCOUNTER StatSwitchLongJmpToR3;
942 STAMCOUNTER StatSwitchMaxResumeLoops;
943 STAMCOUNTER StatSwitchHltToR3;
944 STAMCOUNTER StatSwitchApicAccessToR3;
945 STAMCOUNTER StatSwitchPreempt;
946 STAMCOUNTER StatSwitchNstGstVmexit;
947
948 STAMCOUNTER StatTscParavirt;
949 STAMCOUNTER StatTscOffset;
950 STAMCOUNTER StatTscIntercept;
951
952 STAMCOUNTER StatDRxArmed;
953 STAMCOUNTER StatDRxContextSwitch;
954 STAMCOUNTER StatDRxIoCheck;
955
956 STAMCOUNTER StatExportMinimal;
957 STAMCOUNTER StatExportFull;
958 STAMCOUNTER StatLoadGuestFpu;
959 STAMCOUNTER StatExportHostState;
960
961 STAMCOUNTER StatVmxCheckBadRmSelBase;
962 STAMCOUNTER StatVmxCheckBadRmSelLimit;
963 STAMCOUNTER StatVmxCheckBadRmSelAttr;
964 STAMCOUNTER StatVmxCheckBadV86SelBase;
965 STAMCOUNTER StatVmxCheckBadV86SelLimit;
966 STAMCOUNTER StatVmxCheckBadV86SelAttr;
967 STAMCOUNTER StatVmxCheckRmOk;
968 STAMCOUNTER StatVmxCheckBadSel;
969 STAMCOUNTER StatVmxCheckBadRpl;
970 STAMCOUNTER StatVmxCheckPmOk;
971
972 STAMCOUNTER StatVmxPreemptionRecalcingDeadline;
973 STAMCOUNTER StatVmxPreemptionRecalcingDeadlineExpired;
974 STAMCOUNTER StatVmxPreemptionReusingDeadline;
975 STAMCOUNTER StatVmxPreemptionReusingDeadlineExpired;
976
977#ifdef VBOX_WITH_STATISTICS
978 STAMCOUNTER aStatExitReason[MAX_EXITREASON_STAT];
979 STAMCOUNTER aStatNestedExitReason[MAX_EXITREASON_STAT];
980 STAMCOUNTER aStatInjectedIrqs[256];
981 STAMCOUNTER aStatInjectedXcpts[X86_XCPT_LAST + 1];
982#endif
983#ifdef HM_PROFILE_EXIT_DISPATCH
984 STAMPROFILEADV StatExitDispatch;
985#endif
986} HMCPU;
987/** Pointer to HM VMCPU instance data. */
988typedef HMCPU *PHMCPU;
989AssertCompileMemberAlignment(HMCPU, fCheckedTLBFlush, 4);
990AssertCompileMemberAlignment(HMCPU, fCtxChanged, 8);
991AssertCompileMemberAlignment(HMCPU, vmx, 8);
992AssertCompileMemberAlignment(HMCPU, vmx.VmcsInfo, 8);
993AssertCompileMemberAlignment(HMCPU, vmx.VmcsInfoNstGst, 8);
994AssertCompileMemberAlignment(HMCPU, svm, 8);
995AssertCompileMemberAlignment(HMCPU, Event, 8);
996
997
998/**
999 * HM per-VCpu ring-0 only instance data.
1000 */
1001typedef struct HMR0PERVCPU
1002{
1003 /** World switch exit counter. */
1004 uint32_t volatile cWorldSwitchExits;
1005 /** TLB flush count. */
1006 uint32_t cTlbFlushes;
1007 /** The last CPU we were executing code on (NIL_RTCPUID for the first time). */
1008 RTCPUID idLastCpu;
1009 /** The CPU ID of the CPU currently owning the VMCS. Set in
1010 * HMR0Enter and cleared in HMR0Leave. */
1011 RTCPUID idEnteredCpu;
1012 /** Current ASID in use by the VM. */
1013 uint32_t uCurrentAsid;
1014
1015 /** Set if we need to flush the TLB during the world switch. */
1016 bool fForceTLBFlush;
1017 /** Whether we've completed the inner HM leave function. */
1018 bool fLeaveDone;
1019 /** Whether we're using the hyper DR7 or guest DR7. */
1020 bool fUsingHyperDR7;
1021 /** Whether we are currently executing in the debug loop.
1022 * Mainly for assertions. */
1023 bool fUsingDebugLoop;
1024 /** Set if we using the debug loop and wish to intercept RDTSC. */
1025 bool fDebugWantRdTscExit;
1026 /** Set if XCR0 needs to be saved/restored when entering/exiting guest code
1027 * execution. */
1028 bool fLoadSaveGuestXcr0;
1029 /** Set if we need to clear the trap flag because of single stepping. */
1030 bool fClearTrapFlag;
1031
1032 bool afPadding1[1];
1033 /** World switcher flags (HM_WSF_XXX - was CPUMCTX::fWorldSwitcher in 6.1). */
1034 uint32_t fWorldSwitcher;
1035 /** The raw host TSC value from the last VM exit (set by HMR0A.asm). */
1036 uint64_t uTscExit;
1037
1038 /** VT-x data. */
1039 struct HMR0CPUVMX
1040 {
1041 /** Ring-0 pointer to the hardware-assisted VMX execution function. */
1042 PFNHMVMXSTARTVM pfnStartVm;
1043 /** Absolute TSC deadline. */
1044 uint64_t uTscDeadline;
1045 /** The deadline version number. */
1046 uint64_t uTscDeadlineVersion;
1047
1048 /** @name Guest information.
1049 * @{ */
1050 /** Guest VMCS information. */
1051 VMXVMCSINFO VmcsInfo;
1052 /** Nested-guest VMCS information. */
1053 VMXVMCSINFO VmcsInfoNstGst;
1054 /* Whether the nested-guest VMCS was the last current VMCS (authoritative copy).
1055 * @see HMCPU::vmx.fSwitchedToNstGstVmcsCopyForRing3 */
1056 bool fSwitchedToNstGstVmcs;
1057 bool afAlignment0[7];
1058 /** Pointer to the VMX transient info during VM-exit. */
1059 PVMXTRANSIENT pVmxTransient;
1060 /** @} */
1061
1062 /** @name Host information.
1063 * @{ */
1064 /** Host LSTAR MSR to restore lazily while leaving VT-x. */
1065 uint64_t u64HostMsrLStar;
1066 /** Host STAR MSR to restore lazily while leaving VT-x. */
1067 uint64_t u64HostMsrStar;
1068 /** Host SF_MASK MSR to restore lazily while leaving VT-x. */
1069 uint64_t u64HostMsrSfMask;
1070 /** Host KernelGS-Base MSR to restore lazily while leaving VT-x. */
1071 uint64_t u64HostMsrKernelGsBase;
1072 /** The mask of lazy MSRs swap/restore state, see VMX_LAZY_MSRS_XXX. */
1073 uint32_t fLazyMsrs;
1074 /** Whether the host MSR values are up-to-date in the auto-load/store MSR area. */
1075 bool fUpdatedHostAutoMsrs;
1076 /** Alignment. */
1077 uint8_t au8Alignment0[3];
1078 /** Which host-state bits to restore before being preempted, see
1079 * VMX_RESTORE_HOST_XXX. */
1080 uint32_t fRestoreHostFlags;
1081 /** Alignment. */
1082 uint32_t u32Alignment0;
1083 /** The host-state restoration structure. */
1084 VMXRESTOREHOST RestoreHost;
1085 /** @} */
1086 } vmx;
1087
1088 /** SVM data. */
1089 struct HMR0CPUSVM
1090 {
1091 /** Ring 0 handlers for VT-x. */
1092 PFNHMSVMVMRUN pfnVMRun;
1093
1094 /** Physical address of the host VMCB which holds additional host-state. */
1095 RTHCPHYS HCPhysVmcbHost;
1096 /** R0 memory object for the host VMCB which holds additional host-state. */
1097 RTR0MEMOBJ hMemObjVmcbHost;
1098
1099 /** Physical address of the guest VMCB. */
1100 RTHCPHYS HCPhysVmcb;
1101 /** R0 memory object for the guest VMCB. */
1102 RTR0MEMOBJ hMemObjVmcb;
1103 /** Pointer to the guest VMCB. */
1104 R0PTRTYPE(PSVMVMCB) pVmcb;
1105
1106 /** Physical address of the MSR bitmap (8 KB). */
1107 RTHCPHYS HCPhysMsrBitmap;
1108 /** R0 memory object for the MSR bitmap (8 KB). */
1109 RTR0MEMOBJ hMemObjMsrBitmap;
1110 /** Pointer to the MSR bitmap. */
1111 R0PTRTYPE(void *) pvMsrBitmap;
1112
1113 /** Whether VTPR with V_INTR_MASKING set is in effect, indicating
1114 * we should check if the VTPR changed on every VM-exit. */
1115 bool fSyncVTpr;
1116 bool afAlignment[7];
1117
1118 /** Pointer to the SVM transient info during VM-exit. */
1119 PSVMTRANSIENT pSvmTransient;
1120 /** Host's TSC_AUX MSR (used when RDTSCP doesn't cause VM-exits). */
1121 uint64_t u64HostTscAux;
1122
1123 /** For saving stack space, the disassembler state is allocated here
1124 * instead of on the stack. */
1125 DISCPUSTATE DisState;
1126 } svm;
1127} HMR0PERVCPU;
1128/** Pointer to HM ring-0 VMCPU instance data. */
1129typedef HMR0PERVCPU *PHMR0PERVCPU;
1130AssertCompileMemberAlignment(HMR0PERVCPU, cWorldSwitchExits, 4);
1131AssertCompileMemberAlignment(HMR0PERVCPU, fForceTLBFlush, 4);
1132AssertCompileMemberAlignment(HMR0PERVCPU, vmx.RestoreHost, 8);
1133
1134
1135/** @name HM_WSF_XXX - @bugref{9453}, @bugref{9087}
1136 * @note If you change these values don't forget to update the assembly
1137 * defines as well!
1138 * @{ */
1139/** Touch IA32_PRED_CMD.IBPB on VM exit. */
1140#define HM_WSF_IBPB_EXIT RT_BIT_32(0)
1141/** Touch IA32_PRED_CMD.IBPB on VM entry. */
1142#define HM_WSF_IBPB_ENTRY RT_BIT_32(1)
1143/** Touch IA32_FLUSH_CMD.L1D on VM entry. */
1144#define HM_WSF_L1D_ENTRY RT_BIT_32(2)
1145/** Flush MDS buffers on VM entry. */
1146#define HM_WSF_MDS_ENTRY RT_BIT_32(3)
1147
1148/** Touch IA32_FLUSH_CMD.L1D on VM scheduling. */
1149#define HM_WSF_L1D_SCHED RT_BIT_32(16)
1150/** Flush MDS buffers on VM scheduling. */
1151#define HM_WSF_MDS_SCHED RT_BIT_32(17)
1152/** @} */
1153
1154
1155#ifdef IN_RING0
1156extern bool g_fHmVmxSupported;
1157extern uint32_t g_fHmHostKernelFeatures;
1158extern uint32_t g_uHmMaxAsid;
1159extern bool g_fHmVmxUsePreemptTimer;
1160extern uint8_t g_cHmVmxPreemptTimerShift;
1161extern bool g_fHmVmxSupportsVmcsEfer;
1162extern uint64_t g_uHmVmxHostCr4;
1163extern uint64_t g_uHmVmxHostMsrEfer;
1164extern uint64_t g_uHmVmxHostSmmMonitorCtl;
1165extern bool g_fHmSvmSupported;
1166extern uint32_t g_uHmSvmRev;
1167extern uint32_t g_fHmSvmFeatures;
1168
1169extern SUPHWVIRTMSRS g_HmMsrs;
1170
1171
1172VMMR0_INT_DECL(PHMPHYSCPU) hmR0GetCurrentCpu(void);
1173VMMR0_INT_DECL(int) hmR0EnterCpu(PVMCPUCC pVCpu);
1174
1175# ifdef VBOX_STRICT
1176# define HM_DUMP_REG_FLAGS_GPRS RT_BIT(0)
1177# define HM_DUMP_REG_FLAGS_FPU RT_BIT(1)
1178# define HM_DUMP_REG_FLAGS_MSRS RT_BIT(2)
1179# define HM_DUMP_REG_FLAGS_ALL (HM_DUMP_REG_FLAGS_GPRS | HM_DUMP_REG_FLAGS_FPU | HM_DUMP_REG_FLAGS_MSRS)
1180
1181VMMR0_INT_DECL(void) hmR0DumpRegs(PVMCPUCC pVCpu, uint32_t fFlags);
1182VMMR0_INT_DECL(void) hmR0DumpDescriptor(PCX86DESCHC pDesc, RTSEL Sel, const char *pszMsg);
1183# endif
1184
1185DECLASM(void) hmR0MdsClear(void);
1186#endif /* IN_RING0 */
1187
1188
1189/** @addtogroup grp_hm_int_svm SVM Internal
1190 * @{ */
1191VMM_INT_DECL(int) hmEmulateSvmMovTpr(PVMCC pVM, PVMCPUCC pVCpu);
1192
1193/**
1194 * Prepares for and executes VMRUN (64-bit register context).
1195 *
1196 * @returns VBox status code (no informational stuff).
1197 * @param pVM The cross context VM structure. (Not used.)
1198 * @param pVCpu The cross context virtual CPU structure.
1199 * @param HCPhyspVMCB Physical address of the VMCB.
1200 *
1201 * @remarks With spectre mitigations and the usual need for speed (/ micro
1202 * optimizations), we have a bunch of variations of this code depending
1203 * on a few precoditions. In release builds, the code is entirely
1204 * without conditionals. Debug builds have a couple of assertions that
1205 * shouldn't ever be triggered.
1206 *
1207 * @{
1208 */
1209DECLASM(int) hmR0SvmVmRun_SansXcr0_SansIbpbEntry_SansIbpbExit(PVMCC pVM, PVMCPUCC pVCpu, RTHCPHYS HCPhyspVMCB);
1210DECLASM(int) hmR0SvmVmRun_WithXcr0_SansIbpbEntry_SansIbpbExit(PVMCC pVM, PVMCPUCC pVCpu, RTHCPHYS HCPhyspVMCB);
1211DECLASM(int) hmR0SvmVmRun_SansXcr0_WithIbpbEntry_SansIbpbExit(PVMCC pVM, PVMCPUCC pVCpu, RTHCPHYS HCPhyspVMCB);
1212DECLASM(int) hmR0SvmVmRun_WithXcr0_WithIbpbEntry_SansIbpbExit(PVMCC pVM, PVMCPUCC pVCpu, RTHCPHYS HCPhyspVMCB);
1213DECLASM(int) hmR0SvmVmRun_SansXcr0_SansIbpbEntry_WithIbpbExit(PVMCC pVM, PVMCPUCC pVCpu, RTHCPHYS HCPhyspVMCB);
1214DECLASM(int) hmR0SvmVmRun_WithXcr0_SansIbpbEntry_WithIbpbExit(PVMCC pVM, PVMCPUCC pVCpu, RTHCPHYS HCPhyspVMCB);
1215DECLASM(int) hmR0SvmVmRun_SansXcr0_WithIbpbEntry_WithIbpbExit(PVMCC pVM, PVMCPUCC pVCpu, RTHCPHYS HCPhyspVMCB);
1216DECLASM(int) hmR0SvmVmRun_WithXcr0_WithIbpbEntry_WithIbpbExit(PVMCC pVM, PVMCPUCC pVCpu, RTHCPHYS HCPhyspVMCB);
1217/** @} */
1218
1219/** @} */
1220
1221
1222/** @addtogroup grp_hm_int_vmx VMX Internal
1223 * @{ */
1224VMM_INT_DECL(PVMXVMCSINFOSHARED) hmGetVmxActiveVmcsInfoShared(PVMCPUCC pVCpu);
1225
1226/**
1227 * Used on platforms with poor inline assembly support to retrieve all the
1228 * info from the CPU and put it in the @a pRestoreHost structure.
1229 */
1230DECLASM(void) hmR0VmxExportHostSegmentRegsAsmHlp(PVMXRESTOREHOST pRestoreHost, bool fHaveFsGsBase);
1231
1232/**
1233 * Restores some host-state fields that need not be done on every VM-exit.
1234 *
1235 * @returns VBox status code.
1236 * @param fRestoreHostFlags Flags of which host registers needs to be
1237 * restored.
1238 * @param pRestoreHost Pointer to the host-restore structure.
1239 */
1240DECLASM(int) VMXRestoreHostState(uint32_t fRestoreHostFlags, PVMXRESTOREHOST pRestoreHost);
1241
1242/**
1243 * VMX StartVM functions.
1244 *
1245 * @returns VBox status code (no informational stuff).
1246 * @param pVmcsInfo Pointer to the VMCS info (for cached host RIP and RSP).
1247 * @param pVCpu Pointer to the cross context per-CPU structure of the
1248 * calling EMT.
1249 * @param fResume Whether to use VMRESUME (true) or VMLAUNCH (false).
1250 *
1251 * @remarks With spectre mitigations and the usual need for speed (/ micro
1252 * optimizations), we have a bunch of variations of this code depending
1253 * on a few precoditions. In release builds, the code is entirely
1254 * without conditionals. Debug builds have a couple of assertions that
1255 * shouldn't ever be triggered.
1256 *
1257 * @{
1258 */
1259DECLASM(int) hmR0VmxStartVm_SansXcr0_SansIbpbEntry_SansL1dEntry_SansMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1260DECLASM(int) hmR0VmxStartVm_WithXcr0_SansIbpbEntry_SansL1dEntry_SansMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1261DECLASM(int) hmR0VmxStartVm_SansXcr0_WithIbpbEntry_SansL1dEntry_SansMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1262DECLASM(int) hmR0VmxStartVm_WithXcr0_WithIbpbEntry_SansL1dEntry_SansMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1263DECLASM(int) hmR0VmxStartVm_SansXcr0_SansIbpbEntry_WithL1dEntry_SansMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1264DECLASM(int) hmR0VmxStartVm_WithXcr0_SansIbpbEntry_WithL1dEntry_SansMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1265DECLASM(int) hmR0VmxStartVm_SansXcr0_WithIbpbEntry_WithL1dEntry_SansMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1266DECLASM(int) hmR0VmxStartVm_WithXcr0_WithIbpbEntry_WithL1dEntry_SansMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1267DECLASM(int) hmR0VmxStartVm_SansXcr0_SansIbpbEntry_SansL1dEntry_WithMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1268DECLASM(int) hmR0VmxStartVm_WithXcr0_SansIbpbEntry_SansL1dEntry_WithMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1269DECLASM(int) hmR0VmxStartVm_SansXcr0_WithIbpbEntry_SansL1dEntry_WithMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1270DECLASM(int) hmR0VmxStartVm_WithXcr0_WithIbpbEntry_SansL1dEntry_WithMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1271DECLASM(int) hmR0VmxStartVm_SansXcr0_SansIbpbEntry_WithL1dEntry_WithMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1272DECLASM(int) hmR0VmxStartVm_WithXcr0_SansIbpbEntry_WithL1dEntry_WithMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1273DECLASM(int) hmR0VmxStartVm_SansXcr0_WithIbpbEntry_WithL1dEntry_WithMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1274DECLASM(int) hmR0VmxStartVm_WithXcr0_WithIbpbEntry_WithL1dEntry_WithMdsEntry_SansIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1275DECLASM(int) hmR0VmxStartVm_SansXcr0_SansIbpbEntry_SansL1dEntry_SansMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1276DECLASM(int) hmR0VmxStartVm_WithXcr0_SansIbpbEntry_SansL1dEntry_SansMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1277DECLASM(int) hmR0VmxStartVm_SansXcr0_WithIbpbEntry_SansL1dEntry_SansMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1278DECLASM(int) hmR0VmxStartVm_WithXcr0_WithIbpbEntry_SansL1dEntry_SansMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1279DECLASM(int) hmR0VmxStartVm_SansXcr0_SansIbpbEntry_WithL1dEntry_SansMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1280DECLASM(int) hmR0VmxStartVm_WithXcr0_SansIbpbEntry_WithL1dEntry_SansMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1281DECLASM(int) hmR0VmxStartVm_SansXcr0_WithIbpbEntry_WithL1dEntry_SansMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1282DECLASM(int) hmR0VmxStartVm_WithXcr0_WithIbpbEntry_WithL1dEntry_SansMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1283DECLASM(int) hmR0VmxStartVm_SansXcr0_SansIbpbEntry_SansL1dEntry_WithMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1284DECLASM(int) hmR0VmxStartVm_WithXcr0_SansIbpbEntry_SansL1dEntry_WithMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1285DECLASM(int) hmR0VmxStartVm_SansXcr0_WithIbpbEntry_SansL1dEntry_WithMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1286DECLASM(int) hmR0VmxStartVm_WithXcr0_WithIbpbEntry_SansL1dEntry_WithMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1287DECLASM(int) hmR0VmxStartVm_SansXcr0_SansIbpbEntry_WithL1dEntry_WithMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1288DECLASM(int) hmR0VmxStartVm_WithXcr0_SansIbpbEntry_WithL1dEntry_WithMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1289DECLASM(int) hmR0VmxStartVm_SansXcr0_WithIbpbEntry_WithL1dEntry_WithMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1290DECLASM(int) hmR0VmxStartVm_WithXcr0_WithIbpbEntry_WithL1dEntry_WithMdsEntry_WithIbpbExit(PVMXVMCSINFO pVmcsInfo, PVMCPUCC pVCpu, bool fResume);
1291/** @} */
1292
1293/** @} */
1294
1295/** @} */
1296
1297RT_C_DECLS_END
1298
1299#endif /* !VMM_INCLUDED_SRC_include_HMInternal_h */
1300
Note: See TracBrowser for help on using the repository browser.

© 2024 Oracle Support Privacy / Do Not Sell My Info Terms of Use Trademark Policy Automated Access Etiquette