1 // SPDX-License-Identifier: GPL-2.0-only
3 * RDMA resource limiting controller for cgroups.
5 * Used to allow a cgroup hierarchy to stop processes from consuming
6 * additional RDMA resources after a certain limit is reached.
8 * Copyright (C) 2016 Parav Pandit <pandit.parav@gmail.com>
11 #include <linux/bitops.h>
12 #include <linux/slab.h>
13 #include <linux/seq_file.h>
14 #include <linux/cgroup.h>
15 #include <linux/parser.h>
16 #include <linux/cgroup_rdma.h>
18 #define RDMACG_MAX_STR "max"
21 * Protects list of resource pools maintained on per cgroup basis
22 * and rdma device list.
24 static DEFINE_MUTEX(rdmacg_mutex
);
25 static LIST_HEAD(rdmacg_devices
);
27 enum rdmacg_file_type
{
28 RDMACG_RESOURCE_TYPE_MAX
,
29 RDMACG_RESOURCE_TYPE_STAT
,
33 * resource table definition as to be seen by the user.
34 * Need to add entries to it when more resources are
35 * added/defined at IB verb/core layer.
37 static char const *rdmacg_resource_names
[] = {
38 [RDMACG_RESOURCE_HCA_HANDLE
] = "hca_handle",
39 [RDMACG_RESOURCE_HCA_OBJECT
] = "hca_object",
42 /* resource tracker for each resource of rdma cgroup */
43 struct rdmacg_resource
{
49 * resource pool object which represents per cgroup, per device
50 * resources. There are multiple instances of this object per cgroup,
51 * therefore it cannot be embedded within rdma_cgroup structure. It
52 * is maintained as list.
54 struct rdmacg_resource_pool
{
55 struct rdmacg_device
*device
;
56 struct rdmacg_resource resources
[RDMACG_RESOURCE_MAX
];
58 struct list_head cg_node
;
59 struct list_head dev_node
;
61 /* count active user tasks of this pool */
63 /* total number counts which are set to max */
67 static struct rdma_cgroup
*css_rdmacg(struct cgroup_subsys_state
*css
)
69 return container_of(css
, struct rdma_cgroup
, css
);
72 static struct rdma_cgroup
*parent_rdmacg(struct rdma_cgroup
*cg
)
74 return css_rdmacg(cg
->css
.parent
);
77 static inline struct rdma_cgroup
*get_current_rdmacg(void)
79 return css_rdmacg(task_get_css(current
, rdma_cgrp_id
));
82 static void set_resource_limit(struct rdmacg_resource_pool
*rpool
,
83 int index
, int new_max
)
85 if (new_max
== S32_MAX
) {
86 if (rpool
->resources
[index
].max
!= S32_MAX
)
89 if (rpool
->resources
[index
].max
== S32_MAX
)
92 rpool
->resources
[index
].max
= new_max
;
95 static void set_all_resource_max_limit(struct rdmacg_resource_pool
*rpool
)
99 for (i
= 0; i
< RDMACG_RESOURCE_MAX
; i
++)
100 set_resource_limit(rpool
, i
, S32_MAX
);
103 static void free_cg_rpool_locked(struct rdmacg_resource_pool
*rpool
)
105 lockdep_assert_held(&rdmacg_mutex
);
107 list_del(&rpool
->cg_node
);
108 list_del(&rpool
->dev_node
);
112 static struct rdmacg_resource_pool
*
113 find_cg_rpool_locked(struct rdma_cgroup
*cg
,
114 struct rdmacg_device
*device
)
117 struct rdmacg_resource_pool
*pool
;
119 lockdep_assert_held(&rdmacg_mutex
);
121 list_for_each_entry(pool
, &cg
->rpools
, cg_node
)
122 if (pool
->device
== device
)
128 static struct rdmacg_resource_pool
*
129 get_cg_rpool_locked(struct rdma_cgroup
*cg
, struct rdmacg_device
*device
)
131 struct rdmacg_resource_pool
*rpool
;
133 rpool
= find_cg_rpool_locked(cg
, device
);
137 rpool
= kzalloc(sizeof(*rpool
), GFP_KERNEL
);
139 return ERR_PTR(-ENOMEM
);
141 rpool
->device
= device
;
142 set_all_resource_max_limit(rpool
);
144 INIT_LIST_HEAD(&rpool
->cg_node
);
145 INIT_LIST_HEAD(&rpool
->dev_node
);
146 list_add_tail(&rpool
->cg_node
, &cg
->rpools
);
147 list_add_tail(&rpool
->dev_node
, &device
->rpools
);
152 * uncharge_cg_locked - uncharge resource for rdma cgroup
153 * @cg: pointer to cg to uncharge and all parents in hierarchy
154 * @device: pointer to rdmacg device
155 * @index: index of the resource to uncharge in cg (resource pool)
157 * It also frees the resource pool which was created as part of
158 * charging operation when there are no resources attached to
162 uncharge_cg_locked(struct rdma_cgroup
*cg
,
163 struct rdmacg_device
*device
,
164 enum rdmacg_resource_type index
)
166 struct rdmacg_resource_pool
*rpool
;
168 rpool
= find_cg_rpool_locked(cg
, device
);
171 * rpool cannot be null at this stage. Let kernel operate in case
172 * if there a bug in IB stack or rdma controller, instead of crashing
175 if (unlikely(!rpool
)) {
176 pr_warn("Invalid device %p or rdma cgroup %p\n", cg
, device
);
180 rpool
->resources
[index
].usage
--;
183 * A negative count (or overflow) is invalid,
184 * it indicates a bug in the rdma controller.
186 WARN_ON_ONCE(rpool
->resources
[index
].usage
< 0);
188 if (rpool
->usage_sum
== 0 &&
189 rpool
->num_max_cnt
== RDMACG_RESOURCE_MAX
) {
191 * No user of the rpool and all entries are set to max, so
192 * safe to delete this rpool.
194 free_cg_rpool_locked(rpool
);
199 * rdmacg_uncharge_hierarchy - hierarchically uncharge rdma resource count
200 * @cg: pointer to cg to uncharge and all parents in hierarchy
201 * @device: pointer to rdmacg device
202 * @stop_cg: while traversing hirerchy, when meet with stop_cg cgroup
204 * @index: index of the resource to uncharge in cg in given resource pool
206 static void rdmacg_uncharge_hierarchy(struct rdma_cgroup
*cg
,
207 struct rdmacg_device
*device
,
208 struct rdma_cgroup
*stop_cg
,
209 enum rdmacg_resource_type index
)
211 struct rdma_cgroup
*p
;
213 mutex_lock(&rdmacg_mutex
);
215 for (p
= cg
; p
!= stop_cg
; p
= parent_rdmacg(p
))
216 uncharge_cg_locked(p
, device
, index
);
218 mutex_unlock(&rdmacg_mutex
);
224 * rdmacg_uncharge - hierarchically uncharge rdma resource count
225 * @cg: pointer to cg to uncharge and all parents in hierarchy
226 * @device: pointer to rdmacg device
227 * @index: index of the resource to uncharge in cgroup in given resource pool
229 void rdmacg_uncharge(struct rdma_cgroup
*cg
,
230 struct rdmacg_device
*device
,
231 enum rdmacg_resource_type index
)
233 if (index
>= RDMACG_RESOURCE_MAX
)
236 rdmacg_uncharge_hierarchy(cg
, device
, NULL
, index
);
238 EXPORT_SYMBOL(rdmacg_uncharge
);
241 * rdmacg_try_charge - hierarchically try to charge the rdma resource
242 * @rdmacg: pointer to rdma cgroup which will own this resource
243 * @device: pointer to rdmacg device
244 * @index: index of the resource to charge in cgroup (resource pool)
246 * This function follows charging resource in hierarchical way.
247 * It will fail if the charge would cause the new value to exceed the
248 * hierarchical limit.
249 * Returns 0 if the charge succeeded, otherwise -EAGAIN, -ENOMEM or -EINVAL.
250 * Returns pointer to rdmacg for this resource when charging is successful.
252 * Charger needs to account resources on two criteria.
253 * (a) per cgroup & (b) per device resource usage.
254 * Per cgroup resource usage ensures that tasks of cgroup doesn't cross
255 * the configured limits. Per device provides granular configuration
256 * in multi device usage. It allocates resource pool in the hierarchy
257 * for each parent it come across for first resource. Later on resource
258 * pool will be available. Therefore it will be much faster thereon
259 * to charge/uncharge.
261 int rdmacg_try_charge(struct rdma_cgroup
**rdmacg
,
262 struct rdmacg_device
*device
,
263 enum rdmacg_resource_type index
)
265 struct rdma_cgroup
*cg
, *p
;
266 struct rdmacg_resource_pool
*rpool
;
270 if (index
>= RDMACG_RESOURCE_MAX
)
274 * hold on to css, as cgroup can be removed but resource
275 * accounting happens on css.
277 cg
= get_current_rdmacg();
279 mutex_lock(&rdmacg_mutex
);
280 for (p
= cg
; p
; p
= parent_rdmacg(p
)) {
281 rpool
= get_cg_rpool_locked(p
, device
);
283 ret
= PTR_ERR(rpool
);
286 new = rpool
->resources
[index
].usage
+ 1;
287 if (new > rpool
->resources
[index
].max
) {
291 rpool
->resources
[index
].usage
= new;
296 mutex_unlock(&rdmacg_mutex
);
302 mutex_unlock(&rdmacg_mutex
);
303 rdmacg_uncharge_hierarchy(cg
, device
, p
, index
);
306 EXPORT_SYMBOL(rdmacg_try_charge
);
309 * rdmacg_register_device - register rdmacg device to rdma controller.
310 * @device: pointer to rdmacg device whose resources need to be accounted.
312 * If IB stack wish a device to participate in rdma cgroup resource
313 * tracking, it must invoke this API to register with rdma cgroup before
314 * any user space application can start using the RDMA resources.
316 void rdmacg_register_device(struct rdmacg_device
*device
)
318 INIT_LIST_HEAD(&device
->dev_node
);
319 INIT_LIST_HEAD(&device
->rpools
);
321 mutex_lock(&rdmacg_mutex
);
322 list_add_tail(&device
->dev_node
, &rdmacg_devices
);
323 mutex_unlock(&rdmacg_mutex
);
325 EXPORT_SYMBOL(rdmacg_register_device
);
328 * rdmacg_unregister_device - unregister rdmacg device from rdma controller.
329 * @device: pointer to rdmacg device which was previously registered with rdma
330 * controller using rdmacg_register_device().
332 * IB stack must invoke this after all the resources of the IB device
333 * are destroyed and after ensuring that no more resources will be created
334 * when this API is invoked.
336 void rdmacg_unregister_device(struct rdmacg_device
*device
)
338 struct rdmacg_resource_pool
*rpool
, *tmp
;
341 * Synchronize with any active resource settings,
342 * usage query happening via configfs.
344 mutex_lock(&rdmacg_mutex
);
345 list_del_init(&device
->dev_node
);
348 * Now that this device is off the cgroup list, its safe to free
349 * all the rpool resources.
351 list_for_each_entry_safe(rpool
, tmp
, &device
->rpools
, dev_node
)
352 free_cg_rpool_locked(rpool
);
354 mutex_unlock(&rdmacg_mutex
);
356 EXPORT_SYMBOL(rdmacg_unregister_device
);
358 static int parse_resource(char *c
, int *intval
)
361 char *name
, *value
= c
;
365 name
= strsep(&value
, "=");
369 i
= match_string(rdmacg_resource_names
, RDMACG_RESOURCE_MAX
, name
);
376 argstr
.to
= value
+ len
;
378 ret
= match_int(&argstr
, intval
);
384 if (strncmp(value
, RDMACG_MAX_STR
, len
) == 0) {
391 static int rdmacg_parse_limits(char *options
,
392 int *new_limits
, unsigned long *enables
)
397 /* parse resource options */
398 while ((c
= strsep(&options
, " ")) != NULL
) {
401 index
= parse_resource(c
, &intval
);
405 new_limits
[index
] = intval
;
406 *enables
|= BIT(index
);
414 static struct rdmacg_device
*rdmacg_get_device_locked(const char *name
)
416 struct rdmacg_device
*device
;
418 lockdep_assert_held(&rdmacg_mutex
);
420 list_for_each_entry(device
, &rdmacg_devices
, dev_node
)
421 if (!strcmp(name
, device
->name
))
427 static ssize_t
rdmacg_resource_set_max(struct kernfs_open_file
*of
,
428 char *buf
, size_t nbytes
, loff_t off
)
430 struct rdma_cgroup
*cg
= css_rdmacg(of_css(of
));
431 const char *dev_name
;
432 struct rdmacg_resource_pool
*rpool
;
433 struct rdmacg_device
*device
;
434 char *options
= strstrip(buf
);
436 unsigned long enables
= 0;
439 /* extract the device name first */
440 dev_name
= strsep(&options
, " ");
446 new_limits
= kcalloc(RDMACG_RESOURCE_MAX
, sizeof(int), GFP_KERNEL
);
452 ret
= rdmacg_parse_limits(options
, new_limits
, &enables
);
456 /* acquire lock to synchronize with hot plug devices */
457 mutex_lock(&rdmacg_mutex
);
459 device
= rdmacg_get_device_locked(dev_name
);
465 rpool
= get_cg_rpool_locked(cg
, device
);
467 ret
= PTR_ERR(rpool
);
471 /* now set the new limits of the rpool */
472 for_each_set_bit(i
, &enables
, RDMACG_RESOURCE_MAX
)
473 set_resource_limit(rpool
, i
, new_limits
[i
]);
475 if (rpool
->usage_sum
== 0 &&
476 rpool
->num_max_cnt
== RDMACG_RESOURCE_MAX
) {
478 * No user of the rpool and all entries are set to max, so
479 * safe to delete this rpool.
481 free_cg_rpool_locked(rpool
);
485 mutex_unlock(&rdmacg_mutex
);
491 return ret
?: nbytes
;
494 static void print_rpool_values(struct seq_file
*sf
,
495 struct rdmacg_resource_pool
*rpool
)
497 enum rdmacg_file_type sf_type
;
501 sf_type
= seq_cft(sf
)->private;
503 for (i
= 0; i
< RDMACG_RESOURCE_MAX
; i
++) {
504 seq_puts(sf
, rdmacg_resource_names
[i
]);
506 if (sf_type
== RDMACG_RESOURCE_TYPE_MAX
) {
508 value
= rpool
->resources
[i
].max
;
513 value
= rpool
->resources
[i
].usage
;
518 if (value
== S32_MAX
)
519 seq_puts(sf
, RDMACG_MAX_STR
);
521 seq_printf(sf
, "%d", value
);
526 static int rdmacg_resource_read(struct seq_file
*sf
, void *v
)
528 struct rdmacg_device
*device
;
529 struct rdmacg_resource_pool
*rpool
;
530 struct rdma_cgroup
*cg
= css_rdmacg(seq_css(sf
));
532 mutex_lock(&rdmacg_mutex
);
534 list_for_each_entry(device
, &rdmacg_devices
, dev_node
) {
535 seq_printf(sf
, "%s ", device
->name
);
537 rpool
= find_cg_rpool_locked(cg
, device
);
538 print_rpool_values(sf
, rpool
);
543 mutex_unlock(&rdmacg_mutex
);
547 static struct cftype rdmacg_files
[] = {
550 .write
= rdmacg_resource_set_max
,
551 .seq_show
= rdmacg_resource_read
,
552 .private = RDMACG_RESOURCE_TYPE_MAX
,
553 .flags
= CFTYPE_NOT_ON_ROOT
,
557 .seq_show
= rdmacg_resource_read
,
558 .private = RDMACG_RESOURCE_TYPE_STAT
,
559 .flags
= CFTYPE_NOT_ON_ROOT
,
564 static struct cgroup_subsys_state
*
565 rdmacg_css_alloc(struct cgroup_subsys_state
*parent
)
567 struct rdma_cgroup
*cg
;
569 cg
= kzalloc(sizeof(*cg
), GFP_KERNEL
);
571 return ERR_PTR(-ENOMEM
);
573 INIT_LIST_HEAD(&cg
->rpools
);
577 static void rdmacg_css_free(struct cgroup_subsys_state
*css
)
579 struct rdma_cgroup
*cg
= css_rdmacg(css
);
585 * rdmacg_css_offline - cgroup css_offline callback
586 * @css: css of interest
588 * This function is called when @css is about to go away and responsible
589 * for shooting down all rdmacg associated with @css. As part of that it
590 * marks all the resource pool entries to max value, so that when resources are
591 * uncharged, associated resource pool can be freed as well.
593 static void rdmacg_css_offline(struct cgroup_subsys_state
*css
)
595 struct rdma_cgroup
*cg
= css_rdmacg(css
);
596 struct rdmacg_resource_pool
*rpool
;
598 mutex_lock(&rdmacg_mutex
);
600 list_for_each_entry(rpool
, &cg
->rpools
, cg_node
)
601 set_all_resource_max_limit(rpool
);
603 mutex_unlock(&rdmacg_mutex
);
606 struct cgroup_subsys rdma_cgrp_subsys
= {
607 .css_alloc
= rdmacg_css_alloc
,
608 .css_free
= rdmacg_css_free
,
609 .css_offline
= rdmacg_css_offline
,
610 .legacy_cftypes
= rdmacg_files
,
611 .dfl_cftypes
= rdmacg_files
,