uBPF
ubpf.h
Go to the documentation of this file.
1 // Copyright (c) 2015 Big Switch Networks, Inc
2 // SPDX-License-Identifier: Apache-2.0
3 
4 /*
5  * Copyright 2015 Big Switch Networks, Inc
6  *
7  * Licensed under the Apache License, Version 2.0 (the "License");
8  * you may not use this file except in compliance with the License.
9  * You may obtain a copy of the License at
10  *
11  * http://www.apache.org/licenses/LICENSE-2.0
12  *
13  * Unless required by applicable law or agreed to in writing, software
14  * distributed under the License is distributed on an "AS IS" BASIS,
15  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
16  * See the License for the specific language governing permissions and
17  * limitations under the License.
18  */
19 
20 #ifndef UBPF_H
21 #define UBPF_H
22 
23 #ifdef __cplusplus
24 extern "C"
25 {
26 #endif
27 
28 #include <ubpf_config.h>
29 
30 #include <stdio.h>
31 #include <stdint.h>
32 #include <stddef.h>
33 #include <stdbool.h>
34 
38 #if !defined(UBPF_MAX_INSTS)
39 #define UBPF_MAX_INSTS 65536
40 #endif
41 
45 #if !defined(UBPF_MAX_CALL_DEPTH)
46 #define UBPF_MAX_CALL_DEPTH 8
47 #endif
48 
52 #if !defined(UBPF_EBPF_STACK_SIZE)
53 #define UBPF_EBPF_STACK_SIZE (UBPF_MAX_CALL_DEPTH * 512)
54 #endif
55 
64 #if !defined(UBPF_EBPF_LOCAL_FUNCTION_STACK_SIZE)
65 #define UBPF_EBPF_LOCAL_FUNCTION_STACK_SIZE 256
66 #endif
67 
68 #define UBPF_EBPF_NONVOLATILE_SIZE (sizeof(uint64_t) * 5)
69 
70 
74  struct ubpf_vm;
75 
79  typedef uint64_t (*ubpf_jit_fn)(void* mem, size_t mem_len);
80 
85  typedef uint64_t (*ubpf_jit_ex_fn)(void* mem, size_t mem_len, uint8_t* stack, size_t stack_len);
86 
104  enum JitMode
105  {
108  };
109 
115  struct ubpf_vm*
116  ubpf_create(void);
117 
123  void
124  ubpf_destroy(struct ubpf_vm* vm);
125 
133  bool
134  ubpf_toggle_bounds_check(struct ubpf_vm* vm, bool enable);
135 
142  void
143  ubpf_set_error_print(struct ubpf_vm* vm, int (*error_printf)(FILE* stream, const char* format, ...));
144 
152  typedef uint64_t (*external_function_t)(uint64_t p0, uint64_t p1, uint64_t p2, uint64_t p3, uint64_t p4);
153 
167 
181  int
182  ubpf_register(struct ubpf_vm* vm, unsigned int index, const char* name, external_function_t fn);
183 
187  typedef uint64_t (*external_function_dispatcher_t)(
188  uint64_t, uint64_t, uint64_t, uint64_t, uint64_t, unsigned int index, void* cookie);
189 
193  typedef bool (*external_function_validate_t)(unsigned int index, const struct ubpf_vm* vm);
194 
211  int
213  struct ubpf_vm* vm, external_function_dispatcher_t dispatcher, external_function_validate_t validater);
214 
220  typedef int (*stack_usage_calculator_t)(const struct ubpf_vm* vm, uint16_t pc, void* cookie);
221 
245  int
246  ubpf_register_stack_usage_calculator(struct ubpf_vm* vm, stack_usage_calculator_t calculator, void* cookie);
247 
263  int
264  ubpf_load(struct ubpf_vm* vm, const void* code, uint32_t code_len, char** errmsg);
265 
266  /*
267  * Unload code from a VM
268  *
269  * This must be done before calling ubpf_load or ubpf_load_elf, except for the
270  * first time those functions are called. It clears the VM instructions to
271  * allow for new code to be loaded.
272  *
273  * It does not unregister any external functions.
274  */
275 
283  void
284  ubpf_unload_code(struct ubpf_vm* vm);
285 
286 #if defined(UBPF_HAS_ELF_H)
307  int
308  ubpf_load_elf(struct ubpf_vm* vm, const void* elf, size_t elf_len, char** errmsg);
309 
332  int
333  ubpf_load_elf_ex(struct ubpf_vm* vm, const void* elf, size_t elf_len, const char* main_section_name, char** errmsg);
334 #endif
335 
349  int
350  ubpf_exec(const struct ubpf_vm* vm, void* mem, size_t mem_len, uint64_t* bpf_return_value);
351 
352  int
354  const struct ubpf_vm* vm,
355  void* mem,
356  size_t mem_len,
357  uint64_t* bpf_return_value,
358  uint8_t* stack,
359  size_t stack_len);
360 
375  ubpf_compile(struct ubpf_vm* vm, char** errmsg);
376 
394  ubpf_compile_ex(struct ubpf_vm* vm, char** errmsg, enum JitMode jit_mode);
395 
411  ubpf_copy_jit(struct ubpf_vm* vm, void* buffer, size_t size, char** errmsg);
412 
428  int
429  ubpf_translate(struct ubpf_vm* vm, uint8_t* buffer, size_t* size, char** errmsg);
430 
447  int
448  ubpf_translate_ex(struct ubpf_vm* vm, uint8_t* buffer, size_t* size, char** errmsg, enum JitMode jit_mode);
449 
461  int
462  ubpf_set_unwind_function_index(struct ubpf_vm* vm, unsigned int idx);
463 
470  void
471  ubpf_set_registers(struct ubpf_vm* vm, uint64_t* regs);
472 
479  uint64_t*
480  ubpf_get_registers(const struct ubpf_vm* vm);
481 
490  int
491  ubpf_set_pointer_secret(struct ubpf_vm* vm, uint64_t secret);
492 
505  typedef uint64_t (*ubpf_data_relocation)(
506  void* user_context,
507  const uint8_t* data,
508  uint64_t data_size,
509  const char* symbol_name,
510  uint64_t symbol_offset,
511  uint64_t symbol_size);
512 
520  int
521  ubpf_register_data_relocation(struct ubpf_vm* vm, void* user_context, ubpf_data_relocation relocation);
522 
532  typedef bool (*ubpf_bounds_check)(void* context, uint64_t addr, uint64_t size);
533 
543  int
544  ubpf_register_data_bounds_check(struct ubpf_vm* vm, void* user_context, ubpf_bounds_check bounds_check);
545 
558  int
559  ubpf_set_jit_code_size(struct ubpf_vm* vm, size_t code_size);
560 
572  int
573  ubpf_set_instruction_limit(struct ubpf_vm* vm, uint32_t limit, uint32_t* previous_limit);
574 
585  bool
586  ubpf_toggle_undefined_behavior_check(struct ubpf_vm* vm, bool enable);
587 
603  typedef void (*ubpf_debug_fn)(
604  void* context,
605  int program_counter,
606  const uint64_t registers[16],
607  const uint8_t* stack_start,
608  size_t stack_length,
609  uint64_t register_mask,
610  const uint8_t* stack_mask_start);
611 
621  int
622  ubpf_register_debug_fn(struct ubpf_vm* vm, void* context, ubpf_debug_fn debug_function);
623 #ifdef __cplusplus
624 }
625 #endif
626 
627 #endif
int ubpf_set_unwind_function_index(struct ubpf_vm *vm, unsigned int idx)
Instruct the uBPF runtime to apply unwind-on-success semantics to a helper function....
int(* stack_usage_calculator_t)(const struct ubpf_vm *vm, uint16_t pc, void *cookie)
The type of a stack usage calculator callback function.
Definition: ubpf.h:220
int ubpf_exec(const struct ubpf_vm *vm, void *mem, size_t mem_len, uint64_t *bpf_return_value)
Execute a BPF program in the VM using the interpreter.
int ubpf_register_external_dispatcher(struct ubpf_vm *vm, external_function_dispatcher_t dispatcher, external_function_validate_t validater)
Register a function that dispatches to external helpers The immediate field of a CALL instruction is ...
ubpf_jit_ex_fn ubpf_compile_ex(struct ubpf_vm *vm, char **errmsg, enum JitMode jit_mode)
Compile a BPF program in the VM to native code.
int ubpf_register_data_bounds_check(struct ubpf_vm *vm, void *user_context, ubpf_bounds_check bounds_check)
Set a bounds check function for the VM.
uint64_t * ubpf_get_registers(const struct ubpf_vm *vm)
Retrieve the storage location for the BPF registers in the VM.
uint64_t(* ubpf_jit_ex_fn)(void *mem, size_t mem_len, uint8_t *stack, size_t stack_len)
Opaque type for a uBPF JIT compiled function with external stack.
Definition: ubpf.h:85
int ubpf_set_pointer_secret(struct ubpf_vm *vm, uint64_t secret)
Optional secret to improve ROP protection.
int ubpf_register(struct ubpf_vm *vm, unsigned int index, const char *name, external_function_t fn)
Register an external function. The immediate field of a CALL instruction is an index into an array of...
bool ubpf_toggle_undefined_behavior_check(struct ubpf_vm *vm, bool enable)
Enable or disable undefined behavior checks. Undefined behavior includes reading from uninitialized m...
JitMode
Enum to describe JIT mode.
Definition: ubpf.h:105
@ BasicJitMode
Definition: ubpf.h:107
@ ExtendedJitMode
Definition: ubpf.h:106
external_function_t as_external_function_t(void *f)
Cast an external function to external_function_t.
uint64_t(* ubpf_jit_fn)(void *mem, size_t mem_len)
Opaque type for a uBPF JIT compiled function.
Definition: ubpf.h:79
bool(* ubpf_bounds_check)(void *context, uint64_t addr, uint64_t size)
Function that is called by the VM to check if a memory access is within bounds.
Definition: ubpf.h:532
ubpf_jit_fn ubpf_compile(struct ubpf_vm *vm, char **errmsg)
Compile a BPF program in the VM to native code.
int ubpf_register_data_relocation(struct ubpf_vm *vm, void *user_context, ubpf_data_relocation relocation)
Set a relocation function for the VM.
int ubpf_exec_ex(const struct ubpf_vm *vm, void *mem, size_t mem_len, uint64_t *bpf_return_value, uint8_t *stack, size_t stack_len)
uint64_t(* ubpf_data_relocation)(void *user_context, const uint8_t *data, uint64_t data_size, const char *symbol_name, uint64_t symbol_offset, uint64_t symbol_size)
Data relocation function that is called by the VM when it encounters a R_BPF_64_64 relocation in the ...
Definition: ubpf.h:505
bool ubpf_toggle_bounds_check(struct ubpf_vm *vm, bool enable)
Enable / disable bounds_check. Bounds check is enabled by default, but it may be too restrictive.
struct ubpf_vm * ubpf_create(void)
Create a new uBPF VM.
int ubpf_load(struct ubpf_vm *vm, const void *code, uint32_t code_len, char **errmsg)
Load code into a VM. This must be done before calling ubpf_exec or ubpf_compile and after registering...
bool(* external_function_validate_t)(unsigned int index, const struct ubpf_vm *vm)
The type of an external helper validation function.
Definition: ubpf.h:193
int ubpf_set_jit_code_size(struct ubpf_vm *vm, size_t code_size)
Set a size for the buffer allocated to machine code generated during JIT compilation....
uint64_t(* external_function_t)(uint64_t p0, uint64_t p1, uint64_t p2, uint64_t p3, uint64_t p4)
The type of an external helper function.
Definition: ubpf.h:152
ubpf_jit_fn ubpf_copy_jit(struct ubpf_vm *vm, void *buffer, size_t size, char **errmsg)
Copy the JIT'd program code to the given buffer.
uint64_t(* external_function_dispatcher_t)(uint64_t, uint64_t, uint64_t, uint64_t, uint64_t, unsigned int index, void *cookie)
The type of an external helper dispatcher function.
Definition: ubpf.h:187
int ubpf_register_stack_usage_calculator(struct ubpf_vm *vm, stack_usage_calculator_t calculator, void *cookie)
Register a function that will be called during eBPF program validation to determine stack usage for a...
int ubpf_register_debug_fn(struct ubpf_vm *vm, void *context, ubpf_debug_fn debug_function)
Add option to invoke a debug function before each instruction. Note: This only applies to the interpr...
int ubpf_translate(struct ubpf_vm *vm, uint8_t *buffer, size_t *size, char **errmsg)
Translate the eBPF byte code to machine code.
int ubpf_set_instruction_limit(struct ubpf_vm *vm, uint32_t limit, uint32_t *previous_limit)
Set the instruction limit for the VM. This is the maximum number of instructions that a program may e...
void ubpf_destroy(struct ubpf_vm *vm)
Free a uBPF VM.
void ubpf_set_error_print(struct ubpf_vm *vm, int(*error_printf)(FILE *stream, const char *format,...))
Set the function to be invoked if the program hits a fatal error.
void ubpf_unload_code(struct ubpf_vm *vm)
Unload code from a VM.
void ubpf_set_registers(struct ubpf_vm *vm, uint64_t *regs)
Override the storage location for the BPF registers in the VM.
void(* ubpf_debug_fn)(void *context, int program_counter, const uint64_t registers[16], const uint8_t *stack_start, size_t stack_length, uint64_t register_mask, const uint8_t *stack_mask_start)
A function to invoke before each instruction.
Definition: ubpf.h:603
int ubpf_translate_ex(struct ubpf_vm *vm, uint8_t *buffer, size_t *size, char **errmsg, enum JitMode jit_mode)
Translate the eBPF byte code to machine code.