]> git.proxmox.com Git - mirror_ubuntu-artful-kernel.git/blame - include/linux/rcupdate.h
fs: prevent speculative execution
[mirror_ubuntu-artful-kernel.git] / include / linux / rcupdate.h
CommitLineData
1da177e4 1/*
a71fca58 2 * Read-Copy Update mechanism for mutual exclusion
1da177e4
LT
3 *
4 * This program is free software; you can redistribute it and/or modify
5 * it under the terms of the GNU General Public License as published by
6 * the Free Software Foundation; either version 2 of the License, or
7 * (at your option) any later version.
8 *
9 * This program is distributed in the hope that it will be useful,
10 * but WITHOUT ANY WARRANTY; without even the implied warranty of
11 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
12 * GNU General Public License for more details.
13 *
14 * You should have received a copy of the GNU General Public License
87de1cfd
PM
15 * along with this program; if not, you can access it online at
16 * http://www.gnu.org/licenses/gpl-2.0.html.
1da177e4 17 *
01c1c660 18 * Copyright IBM Corporation, 2001
1da177e4
LT
19 *
20 * Author: Dipankar Sarma <dipankar@in.ibm.com>
a71fca58 21 *
595182bc 22 * Based on the original work by Paul McKenney <paulmck@us.ibm.com>
1da177e4
LT
23 * and inputs from Rusty Russell, Andrea Arcangeli and Andi Kleen.
24 * Papers:
25 * http://www.rdrop.com/users/paulmck/paper/rclockpdcsproof.pdf
26 * http://lse.sourceforge.net/locking/rclock_OLS.2001.05.01c.sc.pdf (OLS2001)
27 *
28 * For detailed explanation of Read-Copy Update mechanism see -
a71fca58 29 * http://lse.sourceforge.net/locking/rcupdate.html
1da177e4
LT
30 *
31 */
32
33#ifndef __LINUX_RCUPDATE_H
34#define __LINUX_RCUPDATE_H
35
99098751 36#include <linux/types.h>
ca5ecddf 37#include <linux/compiler.h>
5f192ab0 38#include <linux/atomic.h>
4929c913 39#include <linux/irqflags.h>
5f192ab0
PM
40#include <linux/preempt.h>
41#include <linux/bottom_half.h>
42#include <linux/lockdep.h>
43#include <asm/processor.h>
44#include <linux/cpumask.h>
c1ad348b 45
a3dc3fb1
PM
46#define ULONG_CMP_GE(a, b) (ULONG_MAX / 2 >= (a) - (b))
47#define ULONG_CMP_LT(a, b) (ULONG_MAX / 2 < (a) - (b))
c0f4dfd4 48#define ulong2long(a) (*(long *)(&(a)))
a3dc3fb1 49
03b042bf 50/* Exported common interfaces */
2c42818e
PM
51
52#ifdef CONFIG_PREEMPT_RCU
a68a2bb2 53void call_rcu(struct rcu_head *head, rcu_callback_t func);
2c42818e 54#else /* #ifdef CONFIG_PREEMPT_RCU */
2c42818e 55#define call_rcu call_rcu_sched
2c42818e
PM
56#endif /* #else #ifdef CONFIG_PREEMPT_RCU */
57
a68a2bb2
PM
58void call_rcu_bh(struct rcu_head *head, rcu_callback_t func);
59void call_rcu_sched(struct rcu_head *head, rcu_callback_t func);
584dc4ce 60void synchronize_sched(void);
b6a4ae76 61void call_rcu_tasks(struct rcu_head *head, rcu_callback_t func);
53c6d4ed
PM
62void synchronize_rcu_tasks(void);
63void rcu_barrier_tasks(void);
8315f422 64
a3dc3fb1
PM
65#ifdef CONFIG_PREEMPT_RCU
66
584dc4ce
TB
67void __rcu_read_lock(void);
68void __rcu_read_unlock(void);
69void rcu_read_unlock_special(struct task_struct *t);
7b0b759b
PM
70void synchronize_rcu(void);
71
a3dc3fb1
PM
72/*
73 * Defined as a macro as it is a very low level header included from
74 * areas that don't even know about current. This gives the rcu_read_lock()
75 * nesting depth, but makes sense only if CONFIG_PREEMPT_RCU -- in other
76 * types of kernel builds, the rcu_read_lock() nesting depth is unknowable.
77 */
78#define rcu_preempt_depth() (current->rcu_read_lock_nesting)
79
7b0b759b
PM
80#else /* #ifdef CONFIG_PREEMPT_RCU */
81
82static inline void __rcu_read_lock(void)
83{
bb73c52b
BF
84 if (IS_ENABLED(CONFIG_PREEMPT_COUNT))
85 preempt_disable();
7b0b759b
PM
86}
87
88static inline void __rcu_read_unlock(void)
89{
bb73c52b
BF
90 if (IS_ENABLED(CONFIG_PREEMPT_COUNT))
91 preempt_enable();
7b0b759b
PM
92}
93
94static inline void synchronize_rcu(void)
95{
96 synchronize_sched();
97}
98
99static inline int rcu_preempt_depth(void)
100{
101 return 0;
102}
103
104#endif /* #else #ifdef CONFIG_PREEMPT_RCU */
105
106/* Internal to kernel */
584dc4ce 107void rcu_init(void);
284a8c93
PM
108void rcu_sched_qs(void);
109void rcu_bh_qs(void);
c3377c2d 110void rcu_check_callbacks(int user);
27d50c7e 111void rcu_report_dead(unsigned int cpu);
7ec99de3 112void rcu_cpu_starting(unsigned int cpu);
2b1d5024 113
61f38db3
RR
114#ifdef CONFIG_RCU_STALL_COMMON
115void rcu_sysrq_start(void);
116void rcu_sysrq_end(void);
117#else /* #ifdef CONFIG_RCU_STALL_COMMON */
d0df7a34
PM
118static inline void rcu_sysrq_start(void) { }
119static inline void rcu_sysrq_end(void) { }
61f38db3
RR
120#endif /* #else #ifdef CONFIG_RCU_STALL_COMMON */
121
d1ec4c34 122#ifdef CONFIG_NO_HZ_FULL
584dc4ce
TB
123void rcu_user_enter(void);
124void rcu_user_exit(void);
2b1d5024
FW
125#else
126static inline void rcu_user_enter(void) { }
127static inline void rcu_user_exit(void) { }
d1ec4c34 128#endif /* CONFIG_NO_HZ_FULL */
2b1d5024 129
f4579fc5
PM
130#ifdef CONFIG_RCU_NOCB_CPU
131void rcu_init_nohz(void);
132#else /* #ifdef CONFIG_RCU_NOCB_CPU */
d0df7a34 133static inline void rcu_init_nohz(void) { }
f4579fc5
PM
134#endif /* #else #ifdef CONFIG_RCU_NOCB_CPU */
135
8a2ecf47
PM
136/**
137 * RCU_NONIDLE - Indicate idle-loop code that needs RCU readers
138 * @a: Code that RCU needs to pay attention to.
139 *
140 * RCU, RCU-bh, and RCU-sched read-side critical sections are forbidden
141 * in the inner idle loop, that is, between the rcu_idle_enter() and
142 * the rcu_idle_exit() -- RCU will happily ignore any such read-side
143 * critical sections. However, things like powertop need tracepoints
144 * in the inner idle loop.
145 *
146 * This macro provides the way out: RCU_NONIDLE(do_something_with_RCU())
810ce8b5
PM
147 * will tell RCU that it needs to pay attention, invoke its argument
148 * (in this example, calling the do_something_with_RCU() function),
8a2ecf47 149 * and then tell RCU to go back to ignoring this CPU. It is permissible
810ce8b5
PM
150 * to nest RCU_NONIDLE() wrappers, but not indefinitely (but the limit is
151 * on the order of a million or so, even on 32-bit systems). It is
152 * not legal to block within RCU_NONIDLE(), nor is it permissible to
153 * transfer control either into or out of RCU_NONIDLE()'s statement.
8a2ecf47
PM
154 */
155#define RCU_NONIDLE(a) \
156 do { \
7c9906ca 157 rcu_irq_enter_irqson(); \
8a2ecf47 158 do { a; } while (0); \
7c9906ca 159 rcu_irq_exit_irqson(); \
8a2ecf47
PM
160 } while (0)
161
8315f422
PM
162/*
163 * Note a voluntary context switch for RCU-tasks benefit. This is a
164 * macro rather than an inline function to avoid #include hell.
165 */
166#ifdef CONFIG_TASKS_RCU
3f95aa81
PM
167#define TASKS_RCU(x) x
168extern struct srcu_struct tasks_rcu_exit_srcu;
bcbfdd01 169#define rcu_note_voluntary_context_switch_lite(t) \
8315f422 170 do { \
7d0ae808
PM
171 if (READ_ONCE((t)->rcu_tasks_holdout)) \
172 WRITE_ONCE((t)->rcu_tasks_holdout, false); \
8315f422 173 } while (0)
bcbfdd01
PM
174#define rcu_note_voluntary_context_switch(t) \
175 do { \
176 rcu_all_qs(); \
177 rcu_note_voluntary_context_switch_lite(t); \
178 } while (0)
8315f422 179#else /* #ifdef CONFIG_TASKS_RCU */
3f95aa81 180#define TASKS_RCU(x) do { } while (0)
bcbfdd01
PM
181#define rcu_note_voluntary_context_switch_lite(t) do { } while (0)
182#define rcu_note_voluntary_context_switch(t) rcu_all_qs()
8315f422
PM
183#endif /* #else #ifdef CONFIG_TASKS_RCU */
184
bde6c3aa
PM
185/**
186 * cond_resched_rcu_qs - Report potential quiescent states to RCU
187 *
188 * This macro resembles cond_resched(), except that it is defined to
189 * report potential quiescent states to RCU-tasks even if the cond_resched()
190 * machinery were to be shut off, as some advocate for PREEMPT kernels.
191 */
192#define cond_resched_rcu_qs() \
193do { \
b6331ae8
PM
194 if (!cond_resched()) \
195 rcu_note_voluntary_context_switch(current); \
bde6c3aa
PM
196} while (0)
197
2c42818e
PM
198/*
199 * Infrastructure to implement the synchronize_() primitives in
200 * TREE_RCU and rcu_barrier_() primitives in TINY_RCU.
201 */
202
28f6569a 203#if defined(CONFIG_TREE_RCU) || defined(CONFIG_PREEMPT_RCU)
64db4cff 204#include <linux/rcutree.h>
127781d1 205#elif defined(CONFIG_TINY_RCU)
9b1d82fa 206#include <linux/rcutiny.h>
64db4cff
PM
207#else
208#error "Unknown RCU implementation specified to kernel configuration"
6b3ef48a 209#endif
01c1c660 210
551d55a9
MD
211/*
212 * init_rcu_head_on_stack()/destroy_rcu_head_on_stack() are needed for dynamic
213 * initialization and destruction of rcu_head on the stack. rcu_head structures
214 * allocated dynamically in the heap or defined statically don't need any
215 * initialization.
216 */
217#ifdef CONFIG_DEBUG_OBJECTS_RCU_HEAD
546a9d85
PM
218void init_rcu_head(struct rcu_head *head);
219void destroy_rcu_head(struct rcu_head *head);
584dc4ce
TB
220void init_rcu_head_on_stack(struct rcu_head *head);
221void destroy_rcu_head_on_stack(struct rcu_head *head);
551d55a9 222#else /* !CONFIG_DEBUG_OBJECTS_RCU_HEAD */
d0df7a34
PM
223static inline void init_rcu_head(struct rcu_head *head) { }
224static inline void destroy_rcu_head(struct rcu_head *head) { }
225static inline void init_rcu_head_on_stack(struct rcu_head *head) { }
226static inline void destroy_rcu_head_on_stack(struct rcu_head *head) { }
551d55a9 227#endif /* #else !CONFIG_DEBUG_OBJECTS_RCU_HEAD */
4376030a 228
c0d6d01b
PM
229#if defined(CONFIG_HOTPLUG_CPU) && defined(CONFIG_PROVE_RCU)
230bool rcu_lockdep_current_cpu_online(void);
231#else /* #if defined(CONFIG_HOTPLUG_CPU) && defined(CONFIG_PROVE_RCU) */
17a8c187 232static inline bool rcu_lockdep_current_cpu_online(void) { return true; }
c0d6d01b
PM
233#endif /* #else #if defined(CONFIG_HOTPLUG_CPU) && defined(CONFIG_PROVE_RCU) */
234
bc33f24b 235#ifdef CONFIG_DEBUG_LOCK_ALLOC
632ee200 236
00f49e57
FW
237static inline void rcu_lock_acquire(struct lockdep_map *map)
238{
fb9edbe9 239 lock_acquire(map, 0, 0, 2, 0, NULL, _THIS_IP_);
00f49e57
FW
240}
241
242static inline void rcu_lock_release(struct lockdep_map *map)
243{
00f49e57
FW
244 lock_release(map, 1, _THIS_IP_);
245}
246
bc33f24b 247extern struct lockdep_map rcu_lock_map;
632ee200 248extern struct lockdep_map rcu_bh_lock_map;
632ee200 249extern struct lockdep_map rcu_sched_lock_map;
24ef659a 250extern struct lockdep_map rcu_callback_map;
a235c091 251int debug_lockdep_rcu_enabled(void);
85b39d30 252int rcu_read_lock_held(void);
584dc4ce 253int rcu_read_lock_bh_held(void);
d5671f6b 254int rcu_read_lock_sched_held(void);
632ee200
PM
255
256#else /* #ifdef CONFIG_DEBUG_LOCK_ALLOC */
257
d8ab29f8
PM
258# define rcu_lock_acquire(a) do { } while (0)
259# define rcu_lock_release(a) do { } while (0)
632ee200
PM
260
261static inline int rcu_read_lock_held(void)
262{
263 return 1;
264}
265
266static inline int rcu_read_lock_bh_held(void)
267{
268 return 1;
269}
270
271static inline int rcu_read_lock_sched_held(void)
272{
293e2421 273 return !preemptible();
632ee200 274}
632ee200
PM
275#endif /* #else #ifdef CONFIG_DEBUG_LOCK_ALLOC */
276
277#ifdef CONFIG_PROVE_RCU
278
f78f5b90
PM
279/**
280 * RCU_LOCKDEP_WARN - emit lockdep splat if specified condition is met
281 * @c: condition to check
282 * @s: informative message
283 */
284#define RCU_LOCKDEP_WARN(c, s) \
285 do { \
286 static bool __section(.data.unlikely) __warned; \
287 if (debug_lockdep_rcu_enabled() && !__warned && (c)) { \
288 __warned = true; \
289 lockdep_rcu_suspicious(__FILE__, __LINE__, s); \
290 } \
291 } while (0)
292
50406b98
PM
293#if defined(CONFIG_PROVE_RCU) && !defined(CONFIG_PREEMPT_RCU)
294static inline void rcu_preempt_sleep_check(void)
295{
f78f5b90
PM
296 RCU_LOCKDEP_WARN(lock_is_held(&rcu_lock_map),
297 "Illegal context switch in RCU read-side critical section");
50406b98
PM
298}
299#else /* #ifdef CONFIG_PROVE_RCU */
d0df7a34 300static inline void rcu_preempt_sleep_check(void) { }
50406b98
PM
301#endif /* #else #ifdef CONFIG_PROVE_RCU */
302
b3fbab05
PM
303#define rcu_sleep_check() \
304 do { \
50406b98 305 rcu_preempt_sleep_check(); \
f78f5b90
PM
306 RCU_LOCKDEP_WARN(lock_is_held(&rcu_bh_lock_map), \
307 "Illegal context switch in RCU-bh read-side critical section"); \
308 RCU_LOCKDEP_WARN(lock_is_held(&rcu_sched_lock_map), \
309 "Illegal context switch in RCU-sched read-side critical section"); \
b3fbab05
PM
310 } while (0)
311
ca5ecddf
PM
312#else /* #ifdef CONFIG_PROVE_RCU */
313
f78f5b90 314#define RCU_LOCKDEP_WARN(c, s) do { } while (0)
b3fbab05 315#define rcu_sleep_check() do { } while (0)
ca5ecddf
PM
316
317#endif /* #else #ifdef CONFIG_PROVE_RCU */
318
319/*
320 * Helper functions for rcu_dereference_check(), rcu_dereference_protected()
321 * and rcu_assign_pointer(). Some of these could be folded into their
322 * callers, but they are left separate in order to ease introduction of
323 * multiple flavors of pointers to match the multiple flavors of RCU
324 * (e.g., __rcu_bh, * __rcu_sched, and __srcu), should this make sense in
325 * the future.
326 */
53ecfba2
PM
327
328#ifdef __CHECKER__
329#define rcu_dereference_sparse(p, space) \
330 ((void)(((typeof(*p) space *)p) == p))
331#else /* #ifdef __CHECKER__ */
332#define rcu_dereference_sparse(p, space)
333#endif /* #else #ifdef __CHECKER__ */
334
ca5ecddf 335#define __rcu_access_pointer(p, space) \
0adab9b9 336({ \
7d0ae808 337 typeof(*p) *_________p1 = (typeof(*p) *__force)READ_ONCE(p); \
0adab9b9
JP
338 rcu_dereference_sparse(p, space); \
339 ((typeof(*p) __force __kernel *)(_________p1)); \
340})
ca5ecddf 341#define __rcu_dereference_check(p, c, space) \
0adab9b9 342({ \
ac59853c 343 /* Dependency order vs. p above. */ \
7252704b 344 typeof(*p) *________p1 = (typeof(*p) *__force)READ_ONCE(p); \
f78f5b90 345 RCU_LOCKDEP_WARN(!(c), "suspicious rcu_dereference_check() usage"); \
0adab9b9 346 rcu_dereference_sparse(p, space); \
ac59853c 347 ((typeof(*p) __force __kernel *)(________p1)); \
0adab9b9 348})
ca5ecddf 349#define __rcu_dereference_protected(p, c, space) \
0adab9b9 350({ \
f78f5b90 351 RCU_LOCKDEP_WARN(!(c), "suspicious rcu_dereference_protected() usage"); \
0adab9b9
JP
352 rcu_dereference_sparse(p, space); \
353 ((typeof(*p) __force __kernel *)(p)); \
354})
995f1405
PM
355#define rcu_dereference_raw(p) \
356({ \
357 /* Dependency order vs. p above. */ \
7252704b 358 typeof(p) ________p1 = READ_ONCE(p); \
995f1405
PM
359 ((typeof(*p) __force __kernel *)(________p1)); \
360})
ca5ecddf 361
462225ae
PM
362/**
363 * RCU_INITIALIZER() - statically initialize an RCU-protected global variable
364 * @v: The value to statically initialize with.
365 */
366#define RCU_INITIALIZER(v) (typeof(*(v)) __force __rcu *)(v)
367
368/**
369 * rcu_assign_pointer() - assign to RCU-protected pointer
370 * @p: pointer to assign to
371 * @v: value to assign (publish)
372 *
373 * Assigns the specified value to the specified RCU-protected
374 * pointer, ensuring that any concurrent RCU readers will see
375 * any prior initialization.
376 *
377 * Inserts memory barriers on architectures that require them
378 * (which is most of them), and also prevents the compiler from
379 * reordering the code that initializes the structure after the pointer
380 * assignment. More importantly, this call documents which pointers
381 * will be dereferenced by RCU read-side code.
382 *
383 * In some special cases, you may use RCU_INIT_POINTER() instead
384 * of rcu_assign_pointer(). RCU_INIT_POINTER() is a bit faster due
385 * to the fact that it does not constrain either the CPU or the compiler.
386 * That said, using RCU_INIT_POINTER() when you should have used
387 * rcu_assign_pointer() is a very bad thing that results in
388 * impossible-to-diagnose memory corruption. So please be careful.
389 * See the RCU_INIT_POINTER() comment header for details.
390 *
391 * Note that rcu_assign_pointer() evaluates each of its arguments only
392 * once, appearances notwithstanding. One of the "extra" evaluations
393 * is in typeof() and the other visible only to sparse (__CHECKER__),
394 * neither of which actually execute the argument. As with most cpp
395 * macros, this execute-arguments-only-once property is important, so
396 * please be careful when making changes to rcu_assign_pointer() and the
397 * other macros that it invokes.
398 */
3a37f727
PM
399#define rcu_assign_pointer(p, v) \
400({ \
401 uintptr_t _r_a_p__v = (uintptr_t)(v); \
402 \
403 if (__builtin_constant_p(v) && (_r_a_p__v) == (uintptr_t)NULL) \
404 WRITE_ONCE((p), (typeof(p))(_r_a_p__v)); \
405 else \
406 smp_store_release(&p, RCU_INITIALIZER((typeof(p))_r_a_p__v)); \
407 _r_a_p__v; \
408})
ca5ecddf
PM
409
410/**
411 * rcu_access_pointer() - fetch RCU pointer with no dereferencing
412 * @p: The pointer to read
413 *
414 * Return the value of the specified RCU-protected pointer, but omit the
7d0ae808 415 * smp_read_barrier_depends() and keep the READ_ONCE(). This is useful
ca5ecddf
PM
416 * when the value of this pointer is accessed, but the pointer is not
417 * dereferenced, for example, when testing an RCU-protected pointer against
418 * NULL. Although rcu_access_pointer() may also be used in cases where
419 * update-side locks prevent the value of the pointer from changing, you
420 * should instead use rcu_dereference_protected() for this use case.
5e1ee6e1
PM
421 *
422 * It is also permissible to use rcu_access_pointer() when read-side
423 * access to the pointer was removed at least one grace period ago, as
424 * is the case in the context of the RCU callback that is freeing up
425 * the data, or after a synchronize_rcu() returns. This can be useful
426 * when tearing down multi-linked structures after a grace period
427 * has elapsed.
ca5ecddf
PM
428 */
429#define rcu_access_pointer(p) __rcu_access_pointer((p), __rcu)
430
632ee200 431/**
ca5ecddf 432 * rcu_dereference_check() - rcu_dereference with debug checking
c08c68dd
DH
433 * @p: The pointer to read, prior to dereferencing
434 * @c: The conditions under which the dereference will take place
632ee200 435 *
c08c68dd 436 * Do an rcu_dereference(), but check that the conditions under which the
ca5ecddf
PM
437 * dereference will take place are correct. Typically the conditions
438 * indicate the various locking conditions that should be held at that
439 * point. The check should return true if the conditions are satisfied.
440 * An implicit check for being in an RCU read-side critical section
441 * (rcu_read_lock()) is included.
c08c68dd
DH
442 *
443 * For example:
444 *
ca5ecddf 445 * bar = rcu_dereference_check(foo->bar, lockdep_is_held(&foo->lock));
c08c68dd
DH
446 *
447 * could be used to indicate to lockdep that foo->bar may only be dereferenced
ca5ecddf 448 * if either rcu_read_lock() is held, or that the lock required to replace
c08c68dd
DH
449 * the bar struct at foo->bar is held.
450 *
451 * Note that the list of conditions may also include indications of when a lock
452 * need not be held, for example during initialisation or destruction of the
453 * target struct:
454 *
ca5ecddf 455 * bar = rcu_dereference_check(foo->bar, lockdep_is_held(&foo->lock) ||
c08c68dd 456 * atomic_read(&foo->usage) == 0);
ca5ecddf
PM
457 *
458 * Inserts memory barriers on architectures that require them
459 * (currently only the Alpha), prevents the compiler from refetching
460 * (and from merging fetches), and, more importantly, documents exactly
461 * which pointers are protected by RCU and checks that the pointer is
462 * annotated as __rcu.
632ee200
PM
463 */
464#define rcu_dereference_check(p, c) \
b826565a 465 __rcu_dereference_check((p), (c) || rcu_read_lock_held(), __rcu)
ca5ecddf
PM
466
467/**
468 * rcu_dereference_bh_check() - rcu_dereference_bh with debug checking
469 * @p: The pointer to read, prior to dereferencing
470 * @c: The conditions under which the dereference will take place
471 *
472 * This is the RCU-bh counterpart to rcu_dereference_check().
473 */
474#define rcu_dereference_bh_check(p, c) \
b826565a 475 __rcu_dereference_check((p), (c) || rcu_read_lock_bh_held(), __rcu)
632ee200 476
b62730ba 477/**
ca5ecddf
PM
478 * rcu_dereference_sched_check() - rcu_dereference_sched with debug checking
479 * @p: The pointer to read, prior to dereferencing
480 * @c: The conditions under which the dereference will take place
481 *
482 * This is the RCU-sched counterpart to rcu_dereference_check().
483 */
484#define rcu_dereference_sched_check(p, c) \
b826565a 485 __rcu_dereference_check((p), (c) || rcu_read_lock_sched_held(), \
ca5ecddf
PM
486 __rcu)
487
12bcbe66
SR
488/*
489 * The tracing infrastructure traces RCU (we want that), but unfortunately
490 * some of the RCU checks causes tracing to lock up the system.
491 *
f039f0af 492 * The no-tracing version of rcu_dereference_raw() must not call
12bcbe66
SR
493 * rcu_read_lock_held().
494 */
495#define rcu_dereference_raw_notrace(p) __rcu_dereference_check((p), 1, __rcu)
496
ca5ecddf
PM
497/**
498 * rcu_dereference_protected() - fetch RCU pointer when updates prevented
499 * @p: The pointer to read, prior to dereferencing
500 * @c: The conditions under which the dereference will take place
b62730ba
PM
501 *
502 * Return the value of the specified RCU-protected pointer, but omit
7d0ae808 503 * both the smp_read_barrier_depends() and the READ_ONCE(). This
b62730ba
PM
504 * is useful in cases where update-side locks prevent the value of the
505 * pointer from changing. Please note that this primitive does -not-
506 * prevent the compiler from repeating this reference or combining it
507 * with other references, so it should not be used without protection
508 * of appropriate locks.
ca5ecddf
PM
509 *
510 * This function is only for update-side use. Using this function
511 * when protected only by rcu_read_lock() will result in infrequent
512 * but very ugly failures.
b62730ba
PM
513 */
514#define rcu_dereference_protected(p, c) \
ca5ecddf 515 __rcu_dereference_protected((p), (c), __rcu)
b62730ba 516
bc33f24b 517
b62730ba 518/**
ca5ecddf
PM
519 * rcu_dereference() - fetch RCU-protected pointer for dereferencing
520 * @p: The pointer to read, prior to dereferencing
b62730ba 521 *
ca5ecddf 522 * This is a simple wrapper around rcu_dereference_check().
b62730ba 523 */
ca5ecddf 524#define rcu_dereference(p) rcu_dereference_check(p, 0)
b62730ba 525
1da177e4 526/**
ca5ecddf
PM
527 * rcu_dereference_bh() - fetch an RCU-bh-protected pointer for dereferencing
528 * @p: The pointer to read, prior to dereferencing
529 *
530 * Makes rcu_dereference_check() do the dirty work.
531 */
532#define rcu_dereference_bh(p) rcu_dereference_bh_check(p, 0)
533
534/**
535 * rcu_dereference_sched() - fetch RCU-sched-protected pointer for dereferencing
536 * @p: The pointer to read, prior to dereferencing
537 *
538 * Makes rcu_dereference_check() do the dirty work.
539 */
540#define rcu_dereference_sched(p) rcu_dereference_sched_check(p, 0)
541
c3ac7cf1
PM
542/**
543 * rcu_pointer_handoff() - Hand off a pointer from RCU to other mechanism
544 * @p: The pointer to hand off
545 *
546 * This is simply an identity function, but it documents where a pointer
547 * is handed off from RCU to some other synchronization mechanism, for
548 * example, reference counting or locking. In C11, it would map to
549 * kill_dependency(). It could be used as follows:
550 *
551 * rcu_read_lock();
552 * p = rcu_dereference(gp);
553 * long_lived = is_long_lived(p);
554 * if (long_lived) {
555 * if (!atomic_inc_not_zero(p->refcnt))
556 * long_lived = false;
557 * else
558 * p = rcu_pointer_handoff(p);
559 * }
560 * rcu_read_unlock();
561 */
562#define rcu_pointer_handoff(p) (p)
563
ca5ecddf
PM
564/**
565 * rcu_read_lock() - mark the beginning of an RCU read-side critical section
1da177e4 566 *
9b06e818 567 * When synchronize_rcu() is invoked on one CPU while other CPUs
1da177e4 568 * are within RCU read-side critical sections, then the
9b06e818 569 * synchronize_rcu() is guaranteed to block until after all the other
1da177e4
LT
570 * CPUs exit their critical sections. Similarly, if call_rcu() is invoked
571 * on one CPU while other CPUs are within RCU read-side critical
572 * sections, invocation of the corresponding RCU callback is deferred
573 * until after the all the other CPUs exit their critical sections.
574 *
575 * Note, however, that RCU callbacks are permitted to run concurrently
77d8485a 576 * with new RCU read-side critical sections. One way that this can happen
1da177e4
LT
577 * is via the following sequence of events: (1) CPU 0 enters an RCU
578 * read-side critical section, (2) CPU 1 invokes call_rcu() to register
579 * an RCU callback, (3) CPU 0 exits the RCU read-side critical section,
580 * (4) CPU 2 enters a RCU read-side critical section, (5) the RCU
581 * callback is invoked. This is legal, because the RCU read-side critical
582 * section that was running concurrently with the call_rcu() (and which
583 * therefore might be referencing something that the corresponding RCU
584 * callback would free up) has completed before the corresponding
585 * RCU callback is invoked.
586 *
587 * RCU read-side critical sections may be nested. Any deferred actions
588 * will be deferred until the outermost RCU read-side critical section
589 * completes.
590 *
9079fd7c
PM
591 * You can avoid reading and understanding the next paragraph by
592 * following this rule: don't put anything in an rcu_read_lock() RCU
593 * read-side critical section that would block in a !PREEMPT kernel.
594 * But if you want the full story, read on!
595 *
ab74fdfd
PM
596 * In non-preemptible RCU implementations (TREE_RCU and TINY_RCU),
597 * it is illegal to block while in an RCU read-side critical section.
28f6569a 598 * In preemptible RCU implementations (PREEMPT_RCU) in CONFIG_PREEMPT
ab74fdfd
PM
599 * kernel builds, RCU read-side critical sections may be preempted,
600 * but explicit blocking is illegal. Finally, in preemptible RCU
601 * implementations in real-time (with -rt patchset) kernel builds, RCU
602 * read-side critical sections may be preempted and they may also block, but
603 * only when acquiring spinlocks that are subject to priority inheritance.
1da177e4 604 */
bc33f24b
PM
605static inline void rcu_read_lock(void)
606{
607 __rcu_read_lock();
608 __acquire(RCU);
d8ab29f8 609 rcu_lock_acquire(&rcu_lock_map);
f78f5b90
PM
610 RCU_LOCKDEP_WARN(!rcu_is_watching(),
611 "rcu_read_lock() used illegally while idle");
bc33f24b 612}
1da177e4 613
1da177e4
LT
614/*
615 * So where is rcu_write_lock()? It does not exist, as there is no
616 * way for writers to lock out RCU readers. This is a feature, not
617 * a bug -- this property is what provides RCU's performance benefits.
618 * Of course, writers must coordinate with each other. The normal
619 * spinlock primitives work well for this, but any other technique may be
620 * used as well. RCU does not care how the writers keep out of each
621 * others' way, as long as they do so.
622 */
3d76c082
PM
623
624/**
ca5ecddf 625 * rcu_read_unlock() - marks the end of an RCU read-side critical section.
3d76c082 626 *
f27bc487
PM
627 * In most situations, rcu_read_unlock() is immune from deadlock.
628 * However, in kernels built with CONFIG_RCU_BOOST, rcu_read_unlock()
629 * is responsible for deboosting, which it does via rt_mutex_unlock().
630 * Unfortunately, this function acquires the scheduler's runqueue and
631 * priority-inheritance spinlocks. This means that deadlock could result
632 * if the caller of rcu_read_unlock() already holds one of these locks or
ce36f2f3
ON
633 * any lock that is ever acquired while holding them; or any lock which
634 * can be taken from interrupt context because rcu_boost()->rt_mutex_lock()
635 * does not disable irqs while taking ->wait_lock.
f27bc487
PM
636 *
637 * That said, RCU readers are never priority boosted unless they were
638 * preempted. Therefore, one way to avoid deadlock is to make sure
639 * that preemption never happens within any RCU read-side critical
640 * section whose outermost rcu_read_unlock() is called with one of
641 * rt_mutex_unlock()'s locks held. Such preemption can be avoided in
642 * a number of ways, for example, by invoking preempt_disable() before
643 * critical section's outermost rcu_read_lock().
644 *
645 * Given that the set of locks acquired by rt_mutex_unlock() might change
646 * at any time, a somewhat more future-proofed approach is to make sure
647 * that that preemption never happens within any RCU read-side critical
648 * section whose outermost rcu_read_unlock() is called with irqs disabled.
649 * This approach relies on the fact that rt_mutex_unlock() currently only
650 * acquires irq-disabled locks.
651 *
652 * The second of these two approaches is best in most situations,
653 * however, the first approach can also be useful, at least to those
654 * developers willing to keep abreast of the set of locks acquired by
655 * rt_mutex_unlock().
656 *
3d76c082
PM
657 * See rcu_read_lock() for more information.
658 */
bc33f24b
PM
659static inline void rcu_read_unlock(void)
660{
f78f5b90
PM
661 RCU_LOCKDEP_WARN(!rcu_is_watching(),
662 "rcu_read_unlock() used illegally while idle");
bc33f24b
PM
663 __release(RCU);
664 __rcu_read_unlock();
d24209bb 665 rcu_lock_release(&rcu_lock_map); /* Keep acq info for rls diags. */
bc33f24b 666}
1da177e4
LT
667
668/**
ca5ecddf 669 * rcu_read_lock_bh() - mark the beginning of an RCU-bh critical section
1da177e4
LT
670 *
671 * This is equivalent of rcu_read_lock(), but to be used when updates
ca5ecddf
PM
672 * are being done using call_rcu_bh() or synchronize_rcu_bh(). Since
673 * both call_rcu_bh() and synchronize_rcu_bh() consider completion of a
674 * softirq handler to be a quiescent state, a process in RCU read-side
675 * critical section must be protected by disabling softirqs. Read-side
676 * critical sections in interrupt context can use just rcu_read_lock(),
677 * though this should at least be commented to avoid confusing people
678 * reading the code.
3842a083
PM
679 *
680 * Note that rcu_read_lock_bh() and the matching rcu_read_unlock_bh()
681 * must occur in the same context, for example, it is illegal to invoke
682 * rcu_read_unlock_bh() from one task if the matching rcu_read_lock_bh()
683 * was invoked from some other task.
1da177e4 684 */
bc33f24b
PM
685static inline void rcu_read_lock_bh(void)
686{
6206ab9b 687 local_bh_disable();
bc33f24b 688 __acquire(RCU_BH);
d8ab29f8 689 rcu_lock_acquire(&rcu_bh_lock_map);
f78f5b90
PM
690 RCU_LOCKDEP_WARN(!rcu_is_watching(),
691 "rcu_read_lock_bh() used illegally while idle");
bc33f24b 692}
1da177e4
LT
693
694/*
695 * rcu_read_unlock_bh - marks the end of a softirq-only RCU critical section
696 *
697 * See rcu_read_lock_bh() for more information.
698 */
bc33f24b
PM
699static inline void rcu_read_unlock_bh(void)
700{
f78f5b90
PM
701 RCU_LOCKDEP_WARN(!rcu_is_watching(),
702 "rcu_read_unlock_bh() used illegally while idle");
d8ab29f8 703 rcu_lock_release(&rcu_bh_lock_map);
bc33f24b 704 __release(RCU_BH);
6206ab9b 705 local_bh_enable();
bc33f24b 706}
1da177e4 707
1c50b728 708/**
ca5ecddf 709 * rcu_read_lock_sched() - mark the beginning of a RCU-sched critical section
1c50b728 710 *
ca5ecddf
PM
711 * This is equivalent of rcu_read_lock(), but to be used when updates
712 * are being done using call_rcu_sched() or synchronize_rcu_sched().
713 * Read-side critical sections can also be introduced by anything that
714 * disables preemption, including local_irq_disable() and friends.
3842a083
PM
715 *
716 * Note that rcu_read_lock_sched() and the matching rcu_read_unlock_sched()
717 * must occur in the same context, for example, it is illegal to invoke
718 * rcu_read_unlock_sched() from process context if the matching
719 * rcu_read_lock_sched() was invoked from an NMI handler.
1c50b728 720 */
d6714c22
PM
721static inline void rcu_read_lock_sched(void)
722{
723 preempt_disable();
bc33f24b 724 __acquire(RCU_SCHED);
d8ab29f8 725 rcu_lock_acquire(&rcu_sched_lock_map);
f78f5b90
PM
726 RCU_LOCKDEP_WARN(!rcu_is_watching(),
727 "rcu_read_lock_sched() used illegally while idle");
d6714c22 728}
1eba8f84
PM
729
730/* Used by lockdep and tracing: cannot be traced, cannot call lockdep. */
7c614d64 731static inline notrace void rcu_read_lock_sched_notrace(void)
d6714c22
PM
732{
733 preempt_disable_notrace();
bc33f24b 734 __acquire(RCU_SCHED);
d6714c22 735}
1c50b728
MD
736
737/*
738 * rcu_read_unlock_sched - marks the end of a RCU-classic critical section
739 *
740 * See rcu_read_lock_sched for more information.
741 */
d6714c22
PM
742static inline void rcu_read_unlock_sched(void)
743{
f78f5b90
PM
744 RCU_LOCKDEP_WARN(!rcu_is_watching(),
745 "rcu_read_unlock_sched() used illegally while idle");
d8ab29f8 746 rcu_lock_release(&rcu_sched_lock_map);
bc33f24b 747 __release(RCU_SCHED);
d6714c22
PM
748 preempt_enable();
749}
1eba8f84
PM
750
751/* Used by lockdep and tracing: cannot be traced, cannot call lockdep. */
7c614d64 752static inline notrace void rcu_read_unlock_sched_notrace(void)
d6714c22 753{
bc33f24b 754 __release(RCU_SCHED);
d6714c22
PM
755 preempt_enable_notrace();
756}
1c50b728 757
ca5ecddf
PM
758/**
759 * RCU_INIT_POINTER() - initialize an RCU protected pointer
760 *
6846c0c5
PM
761 * Initialize an RCU-protected pointer in special cases where readers
762 * do not need ordering constraints on the CPU or the compiler. These
763 * special cases are:
764 *
765 * 1. This use of RCU_INIT_POINTER() is NULLing out the pointer -or-
766 * 2. The caller has taken whatever steps are required to prevent
767 * RCU readers from concurrently accessing this pointer -or-
768 * 3. The referenced data structure has already been exposed to
769 * readers either at compile time or via rcu_assign_pointer() -and-
770 * a. You have not made -any- reader-visible changes to
771 * this structure since then -or-
772 * b. It is OK for readers accessing this structure from its
773 * new location to see the old state of the structure. (For
774 * example, the changes were to statistical counters or to
775 * other state where exact synchronization is not required.)
776 *
777 * Failure to follow these rules governing use of RCU_INIT_POINTER() will
778 * result in impossible-to-diagnose memory corruption. As in the structures
779 * will look OK in crash dumps, but any concurrent RCU readers might
780 * see pre-initialized values of the referenced data structure. So
781 * please be very careful how you use RCU_INIT_POINTER()!!!
782 *
783 * If you are creating an RCU-protected linked structure that is accessed
784 * by a single external-to-structure RCU-protected pointer, then you may
785 * use RCU_INIT_POINTER() to initialize the internal RCU-protected
786 * pointers, but you must use rcu_assign_pointer() to initialize the
787 * external-to-structure pointer -after- you have completely initialized
788 * the reader-accessible portions of the linked structure.
71a9b269
PM
789 *
790 * Note that unlike rcu_assign_pointer(), RCU_INIT_POINTER() provides no
791 * ordering guarantees for either the CPU or the compiler.
ca5ecddf
PM
792 */
793#define RCU_INIT_POINTER(p, v) \
d1b88eb9 794 do { \
1a6c9b26 795 rcu_dereference_sparse(p, __rcu); \
155d1d12 796 WRITE_ONCE(p, RCU_INITIALIZER(v)); \
d1b88eb9 797 } while (0)
9ab1544e 798
172708d0
PM
799/**
800 * RCU_POINTER_INITIALIZER() - statically initialize an RCU protected pointer
801 *
802 * GCC-style initialization for an RCU-protected pointer in a structure field.
803 */
804#define RCU_POINTER_INITIALIZER(p, v) \
462225ae 805 .p = RCU_INITIALIZER(v)
9ab1544e 806
d8169d4c
JE
807/*
808 * Does the specified offset indicate that the corresponding rcu_head
809 * structure can be handled by kfree_rcu()?
810 */
811#define __is_kfree_rcu_offset(offset) ((offset) < 4096)
812
813/*
814 * Helper macro for kfree_rcu() to prevent argument-expansion eyestrain.
815 */
816#define __kfree_rcu(head, offset) \
817 do { \
818 BUILD_BUG_ON(!__is_kfree_rcu_offset(offset)); \
b6a4ae76 819 kfree_call_rcu(head, (rcu_callback_t)(unsigned long)(offset)); \
d8169d4c
JE
820 } while (0)
821
9ab1544e
LJ
822/**
823 * kfree_rcu() - kfree an object after a grace period.
824 * @ptr: pointer to kfree
825 * @rcu_head: the name of the struct rcu_head within the type of @ptr.
826 *
827 * Many rcu callbacks functions just call kfree() on the base structure.
828 * These functions are trivial, but their size adds up, and furthermore
829 * when they are used in a kernel module, that module must invoke the
830 * high-latency rcu_barrier() function at module-unload time.
831 *
832 * The kfree_rcu() function handles this issue. Rather than encoding a
833 * function address in the embedded rcu_head structure, kfree_rcu() instead
834 * encodes the offset of the rcu_head structure within the base structure.
835 * Because the functions are not allowed in the low-order 4096 bytes of
836 * kernel virtual memory, offsets up to 4095 bytes can be accommodated.
837 * If the offset is larger than 4095 bytes, a compile-time error will
838 * be generated in __kfree_rcu(). If this error is triggered, you can
839 * either fall back to use of call_rcu() or rearrange the structure to
840 * position the rcu_head structure into the first 4096 bytes.
841 *
842 * Note that the allowable offset might decrease in the future, for example,
843 * to allow something like kmem_cache_free_rcu().
d8169d4c
JE
844 *
845 * The BUILD_BUG_ON check must not involve any function calls, hence the
846 * checks are done in macros here.
9ab1544e
LJ
847 */
848#define kfree_rcu(ptr, rcu_head) \
849 __kfree_rcu(&((ptr)->rcu_head), offsetof(typeof(*(ptr)), rcu_head))
850
0edd1b17 851
d85b62f1
PM
852/*
853 * Place this after a lock-acquisition primitive to guarantee that
854 * an UNLOCK+LOCK pair acts as a full barrier. This guarantee applies
855 * if the UNLOCK and LOCK are executed by the same CPU or if the
856 * UNLOCK and LOCK operate on the same lock variable.
857 */
77e58496 858#ifdef CONFIG_ARCH_WEAK_RELEASE_ACQUIRE
d85b62f1 859#define smp_mb__after_unlock_lock() smp_mb() /* Full ordering for lock. */
77e58496 860#else /* #ifdef CONFIG_ARCH_WEAK_RELEASE_ACQUIRE */
d85b62f1 861#define smp_mb__after_unlock_lock() do { } while (0)
77e58496 862#endif /* #else #ifdef CONFIG_ARCH_WEAK_RELEASE_ACQUIRE */
d85b62f1 863
274529ba 864
1da177e4 865#endif /* __LINUX_RCUPDATE_H */