uBPF
Loading...
Searching...
No Matches
ubpf.h
Go to the documentation of this file.
1// Copyright (c) 2015 Big Switch Networks, Inc
2// SPDX-License-Identifier: Apache-2.0
3
4/*
5 * Copyright 2015 Big Switch Networks, Inc
6 *
7 * Licensed under the Apache License, Version 2.0 (the "License");
8 * you may not use this file except in compliance with the License.
9 * You may obtain a copy of the License at
10 *
11 * http://www.apache.org/licenses/LICENSE-2.0
12 *
13 * Unless required by applicable law or agreed to in writing, software
14 * distributed under the License is distributed on an "AS IS" BASIS,
15 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
16 * See the License for the specific language governing permissions and
17 * limitations under the License.
18 */
19
20#ifndef UBPF_H
21#define UBPF_H
22
23#ifdef __cplusplus
24extern "C"
25{
26#endif
27
28#include <ubpf_config.h>
29
30#include <stdio.h>
31#include <stdint.h>
32#include <stddef.h>
33#include <stdbool.h>
34
38#if !defined(UBPF_MAX_INSTS)
39#define UBPF_MAX_INSTS 65536
40#endif
41
45#if !defined(UBPF_MAX_CALL_DEPTH)
46#define UBPF_MAX_CALL_DEPTH 8
47#endif
48
52#if !defined(UBPF_EBPF_STACK_SIZE)
53#define UBPF_EBPF_STACK_SIZE (UBPF_MAX_CALL_DEPTH * 512)
54#endif
55
64#if !defined(UBPF_EBPF_LOCAL_FUNCTION_STACK_SIZE)
65#define UBPF_EBPF_LOCAL_FUNCTION_STACK_SIZE 256
66#endif
67
68#define UBPF_EBPF_NONVOLATILE_SIZE (sizeof(uint64_t) * 5)
69
70
74 struct ubpf_vm;
75
79 typedef uint64_t (*ubpf_jit_fn)(void* mem, size_t mem_len);
80
85 typedef uint64_t (*ubpf_jit_ex_fn)(void* mem, size_t mem_len, uint8_t* stack, size_t stack_len);
86
109
115 struct ubpf_vm*
117
123 void
124 ubpf_destroy(struct ubpf_vm* vm);
125
133 bool
134 ubpf_toggle_bounds_check(struct ubpf_vm* vm, bool enable);
135
142 void
143 ubpf_set_error_print(struct ubpf_vm* vm, int (*error_printf)(FILE* stream, const char* format, ...));
144
152 typedef uint64_t (*external_function_t)(uint64_t p0, uint64_t p1, uint64_t p2, uint64_t p3, uint64_t p4);
153
167
181 int
182 ubpf_register(struct ubpf_vm* vm, unsigned int index, const char* name, external_function_t fn);
183
188 uint64_t, uint64_t, uint64_t, uint64_t, uint64_t, unsigned int index, void* cookie);
189
193 typedef bool (*external_function_validate_t)(unsigned int index, const struct ubpf_vm* vm);
194
211 int
213 struct ubpf_vm* vm, external_function_dispatcher_t dispatcher, external_function_validate_t validater);
214
220 typedef int (*stack_usage_calculator_t)(const struct ubpf_vm* vm, uint16_t pc, void* cookie);
221
245 int
246 ubpf_register_stack_usage_calculator(struct ubpf_vm* vm, stack_usage_calculator_t calculator, void* cookie);
247
263 int
264 ubpf_load(struct ubpf_vm* vm, const void* code, uint32_t code_len, char** errmsg);
265
266 /*
267 * Unload code from a VM
268 *
269 * This must be done before calling ubpf_load or ubpf_load_elf, except for the
270 * first time those functions are called. It clears the VM instructions to
271 * allow for new code to be loaded.
272 *
273 * It does not unregister any external functions.
274 */
275
283 void
284 ubpf_unload_code(struct ubpf_vm* vm);
285
286#if defined(UBPF_HAS_ELF_H)
307 int
308 ubpf_load_elf(struct ubpf_vm* vm, const void* elf, size_t elf_len, char** errmsg);
309
332 int
333 ubpf_load_elf_ex(struct ubpf_vm* vm, const void* elf, size_t elf_len, const char* main_section_name, char** errmsg);
334#endif
335
349 int
350 ubpf_exec(const struct ubpf_vm* vm, void* mem, size_t mem_len, uint64_t* bpf_return_value);
351
352 int
354 const struct ubpf_vm* vm,
355 void* mem,
356 size_t mem_len,
357 uint64_t* bpf_return_value,
358 uint8_t* stack,
359 size_t stack_len);
360
375 ubpf_compile(struct ubpf_vm* vm, char** errmsg);
376
394 ubpf_compile_ex(struct ubpf_vm* vm, char** errmsg, enum JitMode jit_mode);
395
411 ubpf_copy_jit(struct ubpf_vm* vm, void* buffer, size_t size, char** errmsg);
412
428 int
429 ubpf_translate(struct ubpf_vm* vm, uint8_t* buffer, size_t* size, char** errmsg);
430
447 int
448 ubpf_translate_ex(struct ubpf_vm* vm, uint8_t* buffer, size_t* size, char** errmsg, enum JitMode jit_mode);
449
461 int
462 ubpf_set_unwind_function_index(struct ubpf_vm* vm, unsigned int idx);
463
470 void
471 ubpf_set_registers(struct ubpf_vm* vm, uint64_t* regs);
472
479 uint64_t*
480 ubpf_get_registers(const struct ubpf_vm* vm);
481
490 int
491 ubpf_set_pointer_secret(struct ubpf_vm* vm, uint64_t secret);
492
505 typedef uint64_t (*ubpf_data_relocation)(
506 void* user_context,
507 const uint8_t* data,
508 uint64_t data_size,
509 const char* symbol_name,
510 uint64_t symbol_offset,
511 uint64_t symbol_size);
512
520 int
521 ubpf_register_data_relocation(struct ubpf_vm* vm, void* user_context, ubpf_data_relocation relocation);
522
532 typedef bool (*ubpf_bounds_check)(void* context, uint64_t addr, uint64_t size);
533
543 int
544 ubpf_register_data_bounds_check(struct ubpf_vm* vm, void* user_context, ubpf_bounds_check bounds_check);
545
558 int
559 ubpf_set_jit_code_size(struct ubpf_vm* vm, size_t code_size);
560
572 int
573 ubpf_set_instruction_limit(struct ubpf_vm* vm, uint32_t limit, uint32_t* previous_limit);
574
585 bool
586 ubpf_toggle_undefined_behavior_check(struct ubpf_vm* vm, bool enable);
587
603 typedef void (*ubpf_debug_fn)(
604 void* context,
605 int program_counter,
606 const uint64_t registers[16],
607 const uint8_t* stack_start,
608 size_t stack_length,
609 uint64_t register_mask,
610 const uint8_t* stack_mask_start);
611
621 int
622 ubpf_register_debug_fn(struct ubpf_vm* vm, void* context, ubpf_debug_fn debug_function);
623#ifdef __cplusplus
624}
625#endif
626
627#endif
int ubpf_set_unwind_function_index(struct ubpf_vm *vm, unsigned int idx)
Instruct the uBPF runtime to apply unwind-on-success semantics to a helper function....
int(* stack_usage_calculator_t)(const struct ubpf_vm *vm, uint16_t pc, void *cookie)
The type of a stack usage calculator callback function.
Definition ubpf.h:220
int ubpf_exec(const struct ubpf_vm *vm, void *mem, size_t mem_len, uint64_t *bpf_return_value)
Execute a BPF program in the VM using the interpreter.
int ubpf_register_external_dispatcher(struct ubpf_vm *vm, external_function_dispatcher_t dispatcher, external_function_validate_t validater)
Register a function that dispatches to external helpers The immediate field of a CALL instruction is ...
ubpf_jit_ex_fn ubpf_compile_ex(struct ubpf_vm *vm, char **errmsg, enum JitMode jit_mode)
Compile a BPF program in the VM to native code.
int ubpf_register_data_bounds_check(struct ubpf_vm *vm, void *user_context, ubpf_bounds_check bounds_check)
Set a bounds check function for the VM.
uint64_t(* ubpf_jit_ex_fn)(void *mem, size_t mem_len, uint8_t *stack, size_t stack_len)
Opaque type for a uBPF JIT compiled function with external stack.
Definition ubpf.h:85
int ubpf_set_pointer_secret(struct ubpf_vm *vm, uint64_t secret)
Optional secret to improve ROP protection.
int ubpf_register(struct ubpf_vm *vm, unsigned int index, const char *name, external_function_t fn)
Register an external function. The immediate field of a CALL instruction is an index into an array of...
bool ubpf_toggle_undefined_behavior_check(struct ubpf_vm *vm, bool enable)
Enable or disable undefined behavior checks. Undefined behavior includes reading from uninitialized m...
JitMode
Enum to describe JIT mode.
Definition ubpf.h:105
@ BasicJitMode
Definition ubpf.h:107
@ ExtendedJitMode
Definition ubpf.h:106
external_function_t as_external_function_t(void *f)
Cast an external function to external_function_t.
struct ubpf_vm * ubpf_create(void)
Create a new uBPF VM.
uint64_t(* ubpf_jit_fn)(void *mem, size_t mem_len)
Opaque type for a uBPF JIT compiled function.
Definition ubpf.h:79
bool(* ubpf_bounds_check)(void *context, uint64_t addr, uint64_t size)
Function that is called by the VM to check if a memory access is within bounds.
Definition ubpf.h:532
ubpf_jit_fn ubpf_compile(struct ubpf_vm *vm, char **errmsg)
Compile a BPF program in the VM to native code.
int ubpf_register_data_relocation(struct ubpf_vm *vm, void *user_context, ubpf_data_relocation relocation)
Set a relocation function for the VM.
int ubpf_exec_ex(const struct ubpf_vm *vm, void *mem, size_t mem_len, uint64_t *bpf_return_value, uint8_t *stack, size_t stack_len)
uint64_t(* ubpf_data_relocation)(void *user_context, const uint8_t *data, uint64_t data_size, const char *symbol_name, uint64_t symbol_offset, uint64_t symbol_size)
Data relocation function that is called by the VM when it encounters a R_BPF_64_64 relocation in the ...
Definition ubpf.h:505
bool ubpf_toggle_bounds_check(struct ubpf_vm *vm, bool enable)
Enable / disable bounds_check. Bounds check is enabled by default, but it may be too restrictive.
int ubpf_load(struct ubpf_vm *vm, const void *code, uint32_t code_len, char **errmsg)
Load code into a VM. This must be done before calling ubpf_exec or ubpf_compile and after registering...
bool(* external_function_validate_t)(unsigned int index, const struct ubpf_vm *vm)
The type of an external helper validation function.
Definition ubpf.h:193
int ubpf_set_jit_code_size(struct ubpf_vm *vm, size_t code_size)
Set a size for the buffer allocated to machine code generated during JIT compilation....
uint64_t(* external_function_t)(uint64_t p0, uint64_t p1, uint64_t p2, uint64_t p3, uint64_t p4)
The type of an external helper function.
Definition ubpf.h:152
ubpf_jit_fn ubpf_copy_jit(struct ubpf_vm *vm, void *buffer, size_t size, char **errmsg)
Copy the JIT'd program code to the given buffer.
uint64_t * ubpf_get_registers(const struct ubpf_vm *vm)
Retrieve the storage location for the BPF registers in the VM.
uint64_t(* external_function_dispatcher_t)(uint64_t, uint64_t, uint64_t, uint64_t, uint64_t, unsigned int index, void *cookie)
The type of an external helper dispatcher function.
Definition ubpf.h:187
int ubpf_register_stack_usage_calculator(struct ubpf_vm *vm, stack_usage_calculator_t calculator, void *cookie)
Register a function that will be called during eBPF program validation to determine stack usage for a...
int ubpf_register_debug_fn(struct ubpf_vm *vm, void *context, ubpf_debug_fn debug_function)
Add option to invoke a debug function before each instruction. Note: This only applies to the interpr...
int ubpf_translate(struct ubpf_vm *vm, uint8_t *buffer, size_t *size, char **errmsg)
Translate the eBPF byte code to machine code.
int ubpf_set_instruction_limit(struct ubpf_vm *vm, uint32_t limit, uint32_t *previous_limit)
Set the instruction limit for the VM. This is the maximum number of instructions that a program may e...
void ubpf_destroy(struct ubpf_vm *vm)
Free a uBPF VM.
void ubpf_set_error_print(struct ubpf_vm *vm, int(*error_printf)(FILE *stream, const char *format,...))
Set the function to be invoked if the program hits a fatal error.
void ubpf_unload_code(struct ubpf_vm *vm)
Unload code from a VM.
void ubpf_set_registers(struct ubpf_vm *vm, uint64_t *regs)
Override the storage location for the BPF registers in the VM.
void(* ubpf_debug_fn)(void *context, int program_counter, const uint64_t registers[16], const uint8_t *stack_start, size_t stack_length, uint64_t register_mask, const uint8_t *stack_mask_start)
A function to invoke before each instruction.
Definition ubpf.h:603
int ubpf_translate_ex(struct ubpf_vm *vm, uint8_t *buffer, size_t *size, char **errmsg, enum JitMode jit_mode)
Translate the eBPF byte code to machine code.