1 /* SPDX-License-Identifier: GPL-2.0 */ 2 #ifndef __SVM_H 3 #define __SVM_H 4 5 #include <uapi/asm/svm.h> 6 7 8 enum { 9 INTERCEPT_INTR, 10 INTERCEPT_NMI, 11 INTERCEPT_SMI, 12 INTERCEPT_INIT, 13 INTERCEPT_VINTR, 14 INTERCEPT_SELECTIVE_CR0, 15 INTERCEPT_STORE_IDTR, 16 INTERCEPT_STORE_GDTR, 17 INTERCEPT_STORE_LDTR, 18 INTERCEPT_STORE_TR, 19 INTERCEPT_LOAD_IDTR, 20 INTERCEPT_LOAD_GDTR, 21 INTERCEPT_LOAD_LDTR, 22 INTERCEPT_LOAD_TR, 23 INTERCEPT_RDTSC, 24 INTERCEPT_RDPMC, 25 INTERCEPT_PUSHF, 26 INTERCEPT_POPF, 27 INTERCEPT_CPUID, 28 INTERCEPT_RSM, 29 INTERCEPT_IRET, 30 INTERCEPT_INTn, 31 INTERCEPT_INVD, 32 INTERCEPT_PAUSE, 33 INTERCEPT_HLT, 34 INTERCEPT_INVLPG, 35 INTERCEPT_INVLPGA, 36 INTERCEPT_IOIO_PROT, 37 INTERCEPT_MSR_PROT, 38 INTERCEPT_TASK_SWITCH, 39 INTERCEPT_FERR_FREEZE, 40 INTERCEPT_SHUTDOWN, 41 INTERCEPT_VMRUN, 42 INTERCEPT_VMMCALL, 43 INTERCEPT_VMLOAD, 44 INTERCEPT_VMSAVE, 45 INTERCEPT_STGI, 46 INTERCEPT_CLGI, 47 INTERCEPT_SKINIT, 48 INTERCEPT_RDTSCP, 49 INTERCEPT_ICEBP, 50 INTERCEPT_WBINVD, 51 INTERCEPT_MONITOR, 52 INTERCEPT_MWAIT, 53 INTERCEPT_MWAIT_COND, 54 INTERCEPT_XSETBV, 55 INTERCEPT_RDPRU, 56 }; 57 58 59 struct __attribute__ ((__packed__)) vmcb_control_area { 60 u32 intercept_cr; 61 u32 intercept_dr; 62 u32 intercept_exceptions; 63 u64 intercept; 64 u8 reserved_1[40]; 65 u16 pause_filter_thresh; 66 u16 pause_filter_count; 67 u64 iopm_base_pa; 68 u64 msrpm_base_pa; 69 u64 tsc_offset; 70 u32 asid; 71 u8 tlb_ctl; 72 u8 reserved_2[3]; 73 u32 int_ctl; 74 u32 int_vector; 75 u32 int_state; 76 u8 reserved_3[4]; 77 u32 exit_code; 78 u32 exit_code_hi; 79 u64 exit_info_1; 80 u64 exit_info_2; 81 u32 exit_int_info; 82 u32 exit_int_info_err; 83 u64 nested_ctl; 84 u64 avic_vapic_bar; 85 u8 reserved_4[8]; 86 u32 event_inj; 87 u32 event_inj_err; 88 u64 nested_cr3; 89 u64 virt_ext; 90 u32 clean; 91 u32 reserved_5; 92 u64 next_rip; 93 u8 insn_len; 94 u8 insn_bytes[15]; 95 u64 avic_backing_page; /* Offset 0xe0 */ 96 u8 reserved_6[8]; /* Offset 0xe8 */ 97 u64 avic_logical_id; /* Offset 0xf0 */ 98 u64 avic_physical_id; /* Offset 0xf8 */ 99 u8 reserved_7[768]; 100 }; 101 102 103 #define TLB_CONTROL_DO_NOTHING 0 104 #define TLB_CONTROL_FLUSH_ALL_ASID 1 105 #define TLB_CONTROL_FLUSH_ASID 3 106 #define TLB_CONTROL_FLUSH_ASID_LOCAL 7 107 108 #define V_TPR_MASK 0x0f 109 110 #define V_IRQ_SHIFT 8 111 #define V_IRQ_MASK (1 << V_IRQ_SHIFT) 112 113 #define V_GIF_SHIFT 9 114 #define V_GIF_MASK (1 << V_GIF_SHIFT) 115 116 #define V_INTR_PRIO_SHIFT 16 117 #define V_INTR_PRIO_MASK (0x0f << V_INTR_PRIO_SHIFT) 118 119 #define V_IGN_TPR_SHIFT 20 120 #define V_IGN_TPR_MASK (1 << V_IGN_TPR_SHIFT) 121 122 #define V_IRQ_INJECTION_BITS_MASK (V_IRQ_MASK | V_INTR_PRIO_MASK | V_IGN_TPR_MASK) 123 124 #define V_INTR_MASKING_SHIFT 24 125 #define V_INTR_MASKING_MASK (1 << V_INTR_MASKING_SHIFT) 126 127 #define V_GIF_ENABLE_SHIFT 25 128 #define V_GIF_ENABLE_MASK (1 << V_GIF_ENABLE_SHIFT) 129 130 #define AVIC_ENABLE_SHIFT 31 131 #define AVIC_ENABLE_MASK (1 << AVIC_ENABLE_SHIFT) 132 133 #define LBR_CTL_ENABLE_MASK BIT_ULL(0) 134 #define VIRTUAL_VMLOAD_VMSAVE_ENABLE_MASK BIT_ULL(1) 135 136 #define SVM_INTERRUPT_SHADOW_MASK 1 137 138 #define SVM_IOIO_STR_SHIFT 2 139 #define SVM_IOIO_REP_SHIFT 3 140 #define SVM_IOIO_SIZE_SHIFT 4 141 #define SVM_IOIO_ASIZE_SHIFT 7 142 143 #define SVM_IOIO_TYPE_MASK 1 144 #define SVM_IOIO_STR_MASK (1 << SVM_IOIO_STR_SHIFT) 145 #define SVM_IOIO_REP_MASK (1 << SVM_IOIO_REP_SHIFT) 146 #define SVM_IOIO_SIZE_MASK (7 << SVM_IOIO_SIZE_SHIFT) 147 #define SVM_IOIO_ASIZE_MASK (7 << SVM_IOIO_ASIZE_SHIFT) 148 149 #define SVM_VM_CR_VALID_MASK 0x001fULL 150 #define SVM_VM_CR_SVM_LOCK_MASK 0x0008ULL 151 #define SVM_VM_CR_SVM_DIS_MASK 0x0010ULL 152 153 #define SVM_NESTED_CTL_NP_ENABLE BIT(0) 154 #define SVM_NESTED_CTL_SEV_ENABLE BIT(1) 155 156 struct __attribute__ ((__packed__)) vmcb_seg { 157 u16 selector; 158 u16 attrib; 159 u32 limit; 160 u64 base; 161 }; 162 163 struct __attribute__ ((__packed__)) vmcb_save_area { 164 struct vmcb_seg es; 165 struct vmcb_seg cs; 166 struct vmcb_seg ss; 167 struct vmcb_seg ds; 168 struct vmcb_seg fs; 169 struct vmcb_seg gs; 170 struct vmcb_seg gdtr; 171 struct vmcb_seg ldtr; 172 struct vmcb_seg idtr; 173 struct vmcb_seg tr; 174 u8 reserved_1[43]; 175 u8 cpl; 176 u8 reserved_2[4]; 177 u64 efer; 178 u8 reserved_3[112]; 179 u64 cr4; 180 u64 cr3; 181 u64 cr0; 182 u64 dr7; 183 u64 dr6; 184 u64 rflags; 185 u64 rip; 186 u8 reserved_4[88]; 187 u64 rsp; 188 u8 reserved_5[24]; 189 u64 rax; 190 u64 star; 191 u64 lstar; 192 u64 cstar; 193 u64 sfmask; 194 u64 kernel_gs_base; 195 u64 sysenter_cs; 196 u64 sysenter_esp; 197 u64 sysenter_eip; 198 u64 cr2; 199 u8 reserved_6[32]; 200 u64 g_pat; 201 u64 dbgctl; 202 u64 br_from; 203 u64 br_to; 204 u64 last_excp_from; 205 u64 last_excp_to; 206 }; 207 208 struct __attribute__ ((__packed__)) vmcb { 209 struct vmcb_control_area control; 210 struct vmcb_save_area save; 211 }; 212 213 #define SVM_CPUID_FUNC 0x8000000a 214 215 #define SVM_VM_CR_SVM_DISABLE 4 216 217 #define SVM_SELECTOR_S_SHIFT 4 218 #define SVM_SELECTOR_DPL_SHIFT 5 219 #define SVM_SELECTOR_P_SHIFT 7 220 #define SVM_SELECTOR_AVL_SHIFT 8 221 #define SVM_SELECTOR_L_SHIFT 9 222 #define SVM_SELECTOR_DB_SHIFT 10 223 #define SVM_SELECTOR_G_SHIFT 11 224 225 #define SVM_SELECTOR_TYPE_MASK (0xf) 226 #define SVM_SELECTOR_S_MASK (1 << SVM_SELECTOR_S_SHIFT) 227 #define SVM_SELECTOR_DPL_MASK (3 << SVM_SELECTOR_DPL_SHIFT) 228 #define SVM_SELECTOR_P_MASK (1 << SVM_SELECTOR_P_SHIFT) 229 #define SVM_SELECTOR_AVL_MASK (1 << SVM_SELECTOR_AVL_SHIFT) 230 #define SVM_SELECTOR_L_MASK (1 << SVM_SELECTOR_L_SHIFT) 231 #define SVM_SELECTOR_DB_MASK (1 << SVM_SELECTOR_DB_SHIFT) 232 #define SVM_SELECTOR_G_MASK (1 << SVM_SELECTOR_G_SHIFT) 233 234 #define SVM_SELECTOR_WRITE_MASK (1 << 1) 235 #define SVM_SELECTOR_READ_MASK SVM_SELECTOR_WRITE_MASK 236 #define SVM_SELECTOR_CODE_MASK (1 << 3) 237 238 #define INTERCEPT_CR0_READ 0 239 #define INTERCEPT_CR3_READ 3 240 #define INTERCEPT_CR4_READ 4 241 #define INTERCEPT_CR8_READ 8 242 #define INTERCEPT_CR0_WRITE (16 + 0) 243 #define INTERCEPT_CR3_WRITE (16 + 3) 244 #define INTERCEPT_CR4_WRITE (16 + 4) 245 #define INTERCEPT_CR8_WRITE (16 + 8) 246 247 #define INTERCEPT_DR0_READ 0 248 #define INTERCEPT_DR1_READ 1 249 #define INTERCEPT_DR2_READ 2 250 #define INTERCEPT_DR3_READ 3 251 #define INTERCEPT_DR4_READ 4 252 #define INTERCEPT_DR5_READ 5 253 #define INTERCEPT_DR6_READ 6 254 #define INTERCEPT_DR7_READ 7 255 #define INTERCEPT_DR0_WRITE (16 + 0) 256 #define INTERCEPT_DR1_WRITE (16 + 1) 257 #define INTERCEPT_DR2_WRITE (16 + 2) 258 #define INTERCEPT_DR3_WRITE (16 + 3) 259 #define INTERCEPT_DR4_WRITE (16 + 4) 260 #define INTERCEPT_DR5_WRITE (16 + 5) 261 #define INTERCEPT_DR6_WRITE (16 + 6) 262 #define INTERCEPT_DR7_WRITE (16 + 7) 263 264 #define SVM_EVTINJ_VEC_MASK 0xff 265 266 #define SVM_EVTINJ_TYPE_SHIFT 8 267 #define SVM_EVTINJ_TYPE_MASK (7 << SVM_EVTINJ_TYPE_SHIFT) 268 269 #define SVM_EVTINJ_TYPE_INTR (0 << SVM_EVTINJ_TYPE_SHIFT) 270 #define SVM_EVTINJ_TYPE_NMI (2 << SVM_EVTINJ_TYPE_SHIFT) 271 #define SVM_EVTINJ_TYPE_EXEPT (3 << SVM_EVTINJ_TYPE_SHIFT) 272 #define SVM_EVTINJ_TYPE_SOFT (4 << SVM_EVTINJ_TYPE_SHIFT) 273 274 #define SVM_EVTINJ_VALID (1 << 31) 275 #define SVM_EVTINJ_VALID_ERR (1 << 11) 276 277 #define SVM_EXITINTINFO_VEC_MASK SVM_EVTINJ_VEC_MASK 278 #define SVM_EXITINTINFO_TYPE_MASK SVM_EVTINJ_TYPE_MASK 279 280 #define SVM_EXITINTINFO_TYPE_INTR SVM_EVTINJ_TYPE_INTR 281 #define SVM_EXITINTINFO_TYPE_NMI SVM_EVTINJ_TYPE_NMI 282 #define SVM_EXITINTINFO_TYPE_EXEPT SVM_EVTINJ_TYPE_EXEPT 283 #define SVM_EXITINTINFO_TYPE_SOFT SVM_EVTINJ_TYPE_SOFT 284 285 #define SVM_EXITINTINFO_VALID SVM_EVTINJ_VALID 286 #define SVM_EXITINTINFO_VALID_ERR SVM_EVTINJ_VALID_ERR 287 288 #define SVM_EXITINFOSHIFT_TS_REASON_IRET 36 289 #define SVM_EXITINFOSHIFT_TS_REASON_JMP 38 290 #define SVM_EXITINFOSHIFT_TS_HAS_ERROR_CODE 44 291 292 #define SVM_EXITINFO_REG_MASK 0x0F 293 294 #define SVM_CR0_SELECTIVE_MASK (X86_CR0_TS | X86_CR0_MP) 295 296 #endif 297