Message ID | 153938332111.20740.843473636761171235.stgit@djiang5-desk3.ch.intel.com (mailing list archive) |
---|---|
State | Superseded |
Headers | show |
Series | ndctl: add security support | expand |
On Fri, Oct 12, 2018 at 3:28 PM Dave Jiang <dave.jiang@intel.com> wrote: > > Adding libndctl API call for retrieving security state for a DIMM and also > adding support to ndctl list for displaying security state. > > Signed-off-by: Dave Jiang <dave.jiang@intel.com> > --- > Documentation/ndctl/ndctl-list.txt | 8 ++++++++ > ndctl/lib/dimm.c | 16 ++++++++++++++++ > ndctl/lib/libndctl.sym | 5 +++++ > ndctl/libndctl.h | 1 + > util/json.c | 8 ++++++++ > 5 files changed, 38 insertions(+) > > diff --git a/Documentation/ndctl/ndctl-list.txt b/Documentation/ndctl/ndctl-list.txt > index e24c8f40..a4a712a0 100644 > --- a/Documentation/ndctl/ndctl-list.txt > +++ b/Documentation/ndctl/ndctl-list.txt > @@ -98,6 +98,14 @@ include::xable-region-options.txt[] > -D:: > --dimms:: > Include dimm info in the listing > +[verse] > +{ > + "dev":"nmem0", > + "id":"cdab-0a-07e0-ffffffff", > + "handle":0, > + "phys_id":0, > + "security_state:":"disabled" > +} > > -H:: > --health:: > diff --git a/ndctl/lib/dimm.c b/ndctl/lib/dimm.c > index 5e41734d..4470d5fe 100644 > --- a/ndctl/lib/dimm.c > +++ b/ndctl/lib/dimm.c > @@ -583,3 +583,19 @@ NDCTL_EXPORT unsigned long ndctl_dimm_get_available_labels( > > return strtoul(buf, NULL, 0); > } > + > +NDCTL_EXPORT int ndctl_dimm_get_security_state(struct ndctl_dimm *dimm, > + char *state) > +{ > + struct ndctl_ctx *ctx = ndctl_dimm_get_ctx(dimm); > + char *path = dimm->dimm_buf; > + int len = dimm->buf_len; > + > + if (snprintf(path, len, "%s/security", dimm->dimm_path) >= len) { > + err(ctx, "%s: buffer too small!\n", > + ndctl_dimm_get_devname(dimm)); > + return -ERANGE; > + } > + > + return sysfs_read_attr(ctx, path, state); This should return a security state enum value instead of a string.
On Fri, Oct 12, 2018 at 3:28 PM Dave Jiang <dave.jiang@intel.com> wrote: > > Adding libndctl API call for retrieving security state for a DIMM and also > adding support to ndctl list for displaying security state. > > Signed-off-by: Dave Jiang <dave.jiang@intel.com> > --- > Documentation/ndctl/ndctl-list.txt | 8 ++++++++ > ndctl/lib/dimm.c | 16 ++++++++++++++++ > ndctl/lib/libndctl.sym | 5 +++++ > ndctl/libndctl.h | 1 + > util/json.c | 8 ++++++++ > 5 files changed, 38 insertions(+) > > diff --git a/Documentation/ndctl/ndctl-list.txt b/Documentation/ndctl/ndctl-list.txt > index e24c8f40..a4a712a0 100644 > --- a/Documentation/ndctl/ndctl-list.txt > +++ b/Documentation/ndctl/ndctl-list.txt > @@ -98,6 +98,14 @@ include::xable-region-options.txt[] > -D:: > --dimms:: > Include dimm info in the listing > +[verse] > +{ > + "dev":"nmem0", > + "id":"cdab-0a-07e0-ffffffff", > + "handle":0, > + "phys_id":0, > + "security_state:":"disabled" Lets drop the _state suffix. > +} > > -H:: > --health:: > diff --git a/ndctl/lib/dimm.c b/ndctl/lib/dimm.c > index 5e41734d..4470d5fe 100644 > --- a/ndctl/lib/dimm.c > +++ b/ndctl/lib/dimm.c > @@ -583,3 +583,19 @@ NDCTL_EXPORT unsigned long ndctl_dimm_get_available_labels( > > return strtoul(buf, NULL, 0); > } > + > +NDCTL_EXPORT int ndctl_dimm_get_security_state(struct ndctl_dimm *dimm, > + char *state) > +{ Same here, lets drop the _state suffix, and combined with the last comment about returning an enum makes it clearer what this function is returning.
diff --git a/Documentation/ndctl/ndctl-list.txt b/Documentation/ndctl/ndctl-list.txt index e24c8f40..a4a712a0 100644 --- a/Documentation/ndctl/ndctl-list.txt +++ b/Documentation/ndctl/ndctl-list.txt @@ -98,6 +98,14 @@ include::xable-region-options.txt[] -D:: --dimms:: Include dimm info in the listing +[verse] +{ + "dev":"nmem0", + "id":"cdab-0a-07e0-ffffffff", + "handle":0, + "phys_id":0, + "security_state:":"disabled" +} -H:: --health:: diff --git a/ndctl/lib/dimm.c b/ndctl/lib/dimm.c index 5e41734d..4470d5fe 100644 --- a/ndctl/lib/dimm.c +++ b/ndctl/lib/dimm.c @@ -583,3 +583,19 @@ NDCTL_EXPORT unsigned long ndctl_dimm_get_available_labels( return strtoul(buf, NULL, 0); } + +NDCTL_EXPORT int ndctl_dimm_get_security_state(struct ndctl_dimm *dimm, + char *state) +{ + struct ndctl_ctx *ctx = ndctl_dimm_get_ctx(dimm); + char *path = dimm->dimm_buf; + int len = dimm->buf_len; + + if (snprintf(path, len, "%s/security", dimm->dimm_path) >= len) { + err(ctx, "%s: buffer too small!\n", + ndctl_dimm_get_devname(dimm)); + return -ERANGE; + } + + return sysfs_read_attr(ctx, path, state); +} diff --git a/ndctl/lib/libndctl.sym b/ndctl/lib/libndctl.sym index 6c4c8b4d..d3c1e018 100644 --- a/ndctl/lib/libndctl.sym +++ b/ndctl/lib/libndctl.sym @@ -385,3 +385,8 @@ global: ndctl_namespace_get_next_badblock; ndctl_dimm_get_dirty_shutdown; } LIBNDCTL_17; + +LIBNDCTL_19 { +global: + ndctl_dimm_get_security_state; +} LIBNDCTL_18; diff --git a/ndctl/libndctl.h b/ndctl/libndctl.h index 62cef9e8..29fc6603 100644 --- a/ndctl/libndctl.h +++ b/ndctl/libndctl.h @@ -680,6 +680,7 @@ unsigned long long ndctl_cmd_fw_fquery_get_fw_rev(struct ndctl_cmd *cmd); enum ND_FW_STATUS ndctl_cmd_fw_xlat_firmware_status(struct ndctl_cmd *cmd); struct ndctl_cmd *ndctl_dimm_cmd_new_ack_shutdown_count(struct ndctl_dimm *dimm); int ndctl_dimm_fw_update_supported(struct ndctl_dimm *dimm); +int ndctl_dimm_get_security_state(struct ndctl_dimm *dimm, char *state); #ifdef __cplusplus } /* extern "C" */ diff --git a/util/json.c b/util/json.c index 5c3424e2..2d46f95f 100644 --- a/util/json.c +++ b/util/json.c @@ -164,6 +164,7 @@ struct json_object *util_dimm_to_json(struct ndctl_dimm *dimm, unsigned int handle = ndctl_dimm_get_handle(dimm); unsigned short phys_id = ndctl_dimm_get_phys_id(dimm); struct json_object *jobj; + char security_state[32]; if (!jdimm) return NULL; @@ -243,6 +244,13 @@ struct json_object *util_dimm_to_json(struct ndctl_dimm *dimm, json_object_object_add(jdimm, "flag_smart_event", jobj); } + if (ndctl_dimm_get_security_state(dimm, security_state) == 0) { + jobj = json_object_new_string(security_state); + if (!jobj) + goto err; + json_object_object_add(jdimm, "security_state", jobj); + } + return jdimm; err: json_object_put(jdimm);
Adding libndctl API call for retrieving security state for a DIMM and also adding support to ndctl list for displaying security state. Signed-off-by: Dave Jiang <dave.jiang@intel.com> --- Documentation/ndctl/ndctl-list.txt | 8 ++++++++ ndctl/lib/dimm.c | 16 ++++++++++++++++ ndctl/lib/libndctl.sym | 5 +++++ ndctl/libndctl.h | 1 + util/json.c | 8 ++++++++ 5 files changed, 38 insertions(+)