2 * Copyright (C) 2009-2011 Red Hat Inc.
4 * This library is free software; you can redistribute it and/or
5 * modify it under the terms of the GNU Lesser General Public
6 * License as published by the Free Software Foundation; either
7 * version 2 of the License, or (at your option) any later version.
9 * This library is distributed in the hope that it will be useful,
10 * but WITHOUT ANY WARRANTY; without even the implied warranty of
11 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
12 * Lesser General Public License for more details.
14 * You should have received a copy of the GNU Lesser General Public
15 * License along with this library; if not, write to the Free Software
16 * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA
21 #define _BSD_SOURCE /* for mkdtemp, usleep */
34 #include <sys/select.h>
38 #include <rpc/types.h>
45 #ifdef HAVE_SYS_TYPES_H
46 #include <sys/types.h>
49 #ifdef HAVE_SYS_WAIT_H
53 #ifdef HAVE_SYS_SOCKET_H
54 #include <sys/socket.h>
61 #include <arpa/inet.h>
62 #include <netinet/in.h>
65 #include "glthread/lock.h"
66 #include "ignore-value.h"
69 #include "guestfs-internal.h"
70 #include "guestfs-internal-actions.h"
71 #include "guestfs_protocol.h"
73 /* Size of guestfs_progress message on the wire. */
74 #define PROGRESS_MESSAGE_SIZE 24
76 /* This is the code used to send and receive RPC messages and (for
77 * certain types of message) to perform file transfers. This code is
78 * driven from the generated actions (src/actions.c). There
79 * are five different cases to consider:
81 * (1) A non-daemon function. There is no RPC involved at all, it's
82 * all handled inside the library.
84 * (2) A simple RPC (eg. "mount"). We write the request, then read
85 * the reply. The sequence of calls is:
92 * (3) An RPC with FileOut parameters (eg. "upload"). We write the
93 * request, then write the file(s), then read the reply. The sequence
98 * guestfs___send_file (possibly multiple times)
102 * (4) An RPC with FileIn parameters (eg. "download"). We write the
103 * request, then read the reply, then read the file(s). The sequence
109 * guestfs___recv_file (possibly multiple times)
112 * (5) Both FileOut and FileIn parameters. There are no calls like
113 * this in the current API, but they would be implemented as a
114 * combination of cases (3) and (4).
116 * During all writes and reads, we also select(2) on qemu stdout
117 * looking for messages (guestfsd stderr and guest kernel dmesg), and
118 * anything received is passed up through the log_message_cb. This is
119 * also the reason why all the sockets are non-blocking. We also have
120 * to check for EOF (qemu died). All of this is handled by the
121 * functions send_to_daemon and recv_from_daemon.
124 /* This is only used on the debug path, to generate a one-line
125 * printable summary of a protocol message. 'workspace' is scratch
126 * space used to format the message, and it must be at least
127 * MAX_MESSAGE_SUMMARY bytes in size.
129 #define MAX_MESSAGE_SUMMARY 200 /* >= 5 * (4 * 3 + 2) + a few bytes overhead */
132 xwrite (int fd, const void *v_buf, size_t len)
134 const char *buf = v_buf;
138 r = write (fd, buf, len);
150 message_summary (const void *buf, size_t n, char *workspace)
152 const unsigned char *cbuf = buf;
157 /* Print only up to 5 x 32 bits of the message. That is enough to
158 * cover the message length, and the first four fields of the
159 * message header (prog, vers, proc, direction).
167 sprintf (p, "%02x ", cbuf[i]);
185 guestfs___set_busy (guestfs_h *g)
187 if (g->state != READY) {
188 error (g, _("guestfs_set_busy: called when in state %d != READY"),
197 guestfs___end_busy (guestfs_h *g)
211 error (g, _("guestfs_end_busy: called when in state %d"), g->state);
217 /* This is called if we detect EOF, ie. qemu died. */
219 child_cleanup (guestfs_h *g)
221 debug (g, "child_cleanup: %p: child process died", g);
223 /*if (g->pid > 0) kill (g->pid, SIGTERM);*/
224 if (g->recoverypid > 0) kill (g->recoverypid, 9);
225 waitpid (g->pid, NULL, 0);
226 if (g->recoverypid > 0) waitpid (g->recoverypid, NULL, 0);
227 if (g->fd[0] >= 0) close (g->fd[0]);
228 if (g->fd[1] >= 0) close (g->fd[1]);
235 memset (&g->launch_t, 0, sizeof g->launch_t);
237 guestfs___call_callbacks_void (g, GUESTFS_EVENT_SUBPROCESS_QUIT);
241 read_log_message_or_eof (guestfs_h *g, int fd, int error_if_eof)
247 debug (g, "read_log_message_or_eof: %p g->state = %d, fd = %d",
251 /* QEMU's console emulates a 16550A serial port. The real 16550A
252 * device has a small FIFO buffer (16 bytes) which means here we see
253 * lots of small reads of 1-16 bytes in length, usually single
256 n = read (fd, buf, sizeof buf);
258 /* Hopefully this indicates the qemu child process has died. */
262 /* We weren't expecting eof here (called from launch) so place
263 * something in the error buffer. RHBZ#588851.
265 error (g, "child process died unexpectedly");
271 if (errno == EINTR || errno == EAGAIN)
278 /* It's an actual log message, send it upwards if anyone is listening. */
279 guestfs___call_callbacks_message (g, GUESTFS_EVENT_APPLIANCE, buf, n);
284 /* Read 'n' bytes, setting the socket to blocking temporarily so
285 * that we really read the number of bytes requested.
286 * Returns: 0 == EOF while reading
287 * -1 == error, error() function has been called
288 * n == read 'n' bytes in full
291 really_read_from_socket (guestfs_h *g, int sock, char *buf, size_t n)
297 /* Set socket to blocking. */
298 flags = fcntl (sock, F_GETFL);
300 perrorf (g, "fcntl");
303 if (fcntl (sock, F_SETFL, flags & ~O_NONBLOCK) == -1) {
304 perrorf (g, "fcntl");
310 r = read (sock, &buf[got], n-got);
320 /* Restore original socket flags. */
321 if (fcntl (sock, F_SETFL, flags) == -1) {
322 perrorf (g, "fcntl");
326 return (ssize_t) got;
330 send_progress_message (guestfs_h *g, const guestfs_progress *message)
334 array[0] = message->proc;
335 array[1] = message->serial;
336 array[2] = message->position;
337 array[3] = message->total;
339 guestfs___call_callbacks_array (g, GUESTFS_EVENT_PROGRESS,
340 array, sizeof array / sizeof array[0]);
344 check_for_daemon_cancellation_or_eof (guestfs_h *g, int fd)
346 char summary[MAX_MESSAGE_SUMMARY];
352 n = really_read_from_socket (g, fd, buf, 4);
356 /* Hopefully this indicates the qemu child process has died. */
361 debug (g, "check_for_daemon_cancellation_or_eof: %s",
362 message_summary (buf, 4, summary));
364 xdrmem_create (&xdr, buf, 4, XDR_DECODE);
365 xdr_uint32_t (&xdr, &flag);
368 /* Read and process progress messages that happen during FileIn. */
369 if (flag == GUESTFS_PROGRESS_FLAG) {
370 char buf[PROGRESS_MESSAGE_SIZE];
372 n = really_read_from_socket (g, fd, buf, PROGRESS_MESSAGE_SIZE);
380 if (g->state == BUSY) {
381 guestfs_progress message;
383 xdrmem_create (&xdr, buf, PROGRESS_MESSAGE_SIZE, XDR_DECODE);
384 xdr_guestfs_progress (&xdr, &message);
387 send_progress_message (g, &message);
393 if (flag != GUESTFS_CANCEL_FLAG) {
394 error (g, _("check_for_daemon_cancellation_or_eof: read 0x%x from daemon, expected 0x%x\n"),
395 flag, GUESTFS_CANCEL_FLAG);
402 /* This writes the whole N bytes of BUF to the daemon socket.
404 * If the whole write is successful, it returns 0.
405 * If there was an error, it returns -1.
406 * If the daemon sent a cancellation message, it returns -2.
408 * It also checks qemu stdout for log messages and passes those up
409 * through log_message_cb.
411 * It also checks for EOF (qemu died) and passes that up through the
412 * child_cleanup function above.
415 guestfs___send_to_daemon (guestfs_h *g, const void *v_buf, size_t n)
417 const char *buf = v_buf;
420 char summary[MAX_MESSAGE_SUMMARY];
422 debug (g, "send_to_daemon: %zu bytes: %s", n,
423 message_summary (v_buf, n, summary));
428 if (g->fd[1] >= 0) /* Read qemu stdout for log messages & EOF. */
429 FD_SET (g->fd[1], &rset);
430 FD_SET (g->sock, &rset); /* Read socket for cancellation & EOF. */
431 FD_SET (g->sock, &wset); /* Write to socket to send the data. */
433 int max_fd = MAX (g->sock, g->fd[1]);
438 int r = select (max_fd+1, &rset2, &wset2, NULL, NULL);
440 if (errno == EINTR || errno == EAGAIN)
442 perrorf (g, "select");
446 if (g->fd[1] >= 0 && FD_ISSET (g->fd[1], &rset2)) {
447 if (read_log_message_or_eof (g, g->fd[1], 0) == -1)
450 if (FD_ISSET (g->sock, &rset2)) {
451 r = check_for_daemon_cancellation_or_eof (g, g->sock);
455 if (FD_ISSET (g->sock, &wset2)) {
456 r = write (g->sock, buf, n);
458 if (errno == EINTR || errno == EAGAIN)
460 perrorf (g, "write");
461 if (errno == EPIPE) /* Disconnected from guest (RHBZ#508713). */
473 /* This reads a single message, file chunk, launch flag or
474 * cancellation flag from the daemon. If something was read, it
475 * returns 0, otherwise -1.
477 * Both size_rtn and buf_rtn must be passed by the caller as non-NULL.
479 * *size_rtn returns the size of the returned message or it may be
480 * GUESTFS_LAUNCH_FLAG or GUESTFS_CANCEL_FLAG.
482 * *buf_rtn is returned containing the message (if any) or will be set
483 * to NULL. *buf_rtn must be freed by the caller.
485 * It also checks qemu stdout for log messages and passes those up
486 * through log_message_cb.
488 * It also checks for EOF (qemu died) and passes that up through the
489 * child_cleanup function above.
491 * Progress notifications are handled transparently by this function.
492 * If the callback exists, it is called. The caller of this function
493 * will not see GUESTFS_PROGRESS_FLAG.
497 guestfs___recv_from_daemon (guestfs_h *g, uint32_t *size_rtn, void **buf_rtn)
499 char summary[MAX_MESSAGE_SUMMARY];
504 if (g->fd[1] >= 0) /* Read qemu stdout for log messages & EOF. */
505 FD_SET (g->fd[1], &rset);
506 FD_SET (g->sock, &rset); /* Read socket for data & EOF. */
508 int max_fd = MAX (g->sock, g->fd[1]);
514 /* nr is the size of the message, but we prime it as -4 because we
515 * have to read the message length word first.
520 ssize_t message_size =
521 *size_rtn != GUESTFS_PROGRESS_FLAG ?
522 *size_rtn : PROGRESS_MESSAGE_SIZE;
523 if (nr >= message_size)
527 int r = select (max_fd+1, &rset2, NULL, NULL, NULL);
529 if (errno == EINTR || errno == EAGAIN)
531 perrorf (g, "select");
537 if (g->fd[1] >= 0 && FD_ISSET (g->fd[1], &rset2)) {
538 if (read_log_message_or_eof (g, g->fd[1], 0) == -1) {
544 if (FD_ISSET (g->sock, &rset2)) {
545 if (nr < 0) { /* Have we read the message length word yet? */
546 r = read (g->sock, lenbuf+nr+4, -nr);
548 if (errno == EINTR || errno == EAGAIN)
552 /* Under some circumstances we see "Connection reset by peer"
553 * here when the child dies suddenly. Catch this and call
554 * the cleanup function, same as for EOF.
556 if (err == ECONNRESET)
561 error (g, _("unexpected end of file when reading from daemon"));
567 if (nr < 0) /* Still not got the whole length word. */
571 xdrmem_create (&xdr, lenbuf, 4, XDR_DECODE);
572 xdr_uint32_t (&xdr, size_rtn);
575 /* *size_rtn changed, recalculate message_size */
577 *size_rtn != GUESTFS_PROGRESS_FLAG ?
578 *size_rtn : PROGRESS_MESSAGE_SIZE;
580 if (*size_rtn == GUESTFS_LAUNCH_FLAG) {
581 if (g->state != LAUNCHING)
582 error (g, _("received magic signature from guestfsd, but in state %d"),
586 guestfs___call_callbacks_void (g, GUESTFS_EVENT_LAUNCH_DONE);
588 debug (g, "recv_from_daemon: received GUESTFS_LAUNCH_FLAG");
591 else if (*size_rtn == GUESTFS_CANCEL_FLAG) {
592 debug (g, "recv_from_daemon: received GUESTFS_CANCEL_FLAG");
595 else if (*size_rtn == GUESTFS_PROGRESS_FLAG)
597 /* If this happens, it's pretty bad and we've probably lost
600 else if (*size_rtn > GUESTFS_MESSAGE_MAX) {
601 error (g, _("message length (%u) > maximum possible size (%d)"),
602 (unsigned) *size_rtn, GUESTFS_MESSAGE_MAX);
606 /* Allocate the complete buffer, size now known. */
607 *buf_rtn = safe_malloc (g, message_size);
611 size_t sizetoread = message_size - nr;
612 if (sizetoread > BUFSIZ) sizetoread = BUFSIZ;
614 r = read (g->sock, (char *) (*buf_rtn) + nr, sizetoread);
616 if (errno == EINTR || errno == EAGAIN)
624 error (g, _("unexpected end of file when reading from daemon"));
634 /* Got the full message, caller can start processing it. */
635 #ifdef ENABLE_PACKET_DUMP
639 for (i = 0; i < nr; i += 16) {
640 printf ("%04zx: ", i);
641 for (j = i; j < MIN (i+16, nr); ++j)
642 printf ("%02x ", (*(unsigned char **)buf_rtn)[j]);
643 for (; j < i+16; ++j)
646 for (j = i; j < MIN (i+16, nr); ++j)
647 if (c_isprint ((*(char **)buf_rtn)[j]))
648 printf ("%c", (*(char **)buf_rtn)[j]);
651 for (; j < i+16; ++j)
658 if (*size_rtn == GUESTFS_PROGRESS_FLAG) {
659 if (g->state == BUSY) {
660 guestfs_progress message;
662 xdrmem_create (&xdr, *buf_rtn, PROGRESS_MESSAGE_SIZE, XDR_DECODE);
663 xdr_guestfs_progress (&xdr, &message);
666 send_progress_message (g, &message);
672 /* Process next message. */
673 return guestfs___recv_from_daemon (g, size_rtn, buf_rtn);
676 debug (g, "recv_from_daemon: %" PRIu32 " bytes: %s", *size_rtn,
677 message_summary (*buf_rtn, *size_rtn, summary));
682 /* This is very much like recv_from_daemon above, but g->sock is
683 * a listening socket and we are accepting a new connection on
684 * that socket instead of reading anything. Returns the newly
688 guestfs___accept_from_daemon (guestfs_h *g)
692 debug (g, "accept_from_daemon: %p g->state = %d", g, g->state);
696 if (g->fd[1] >= 0) /* Read qemu stdout for log messages & EOF. */
697 FD_SET (g->fd[1], &rset);
698 FD_SET (g->sock, &rset); /* Read socket for accept. */
700 int max_fd = MAX (g->sock, g->fd[1]);
704 /* If the qemu process has died, clean up the zombie (RHBZ#579155).
705 * By partially polling in the select below we ensure that this
706 * function will be called eventually.
708 waitpid (g->pid, NULL, WNOHANG);
712 struct timeval tv = { .tv_sec = 1, .tv_usec = 0 };
713 int r = select (max_fd+1, &rset2, NULL, NULL, &tv);
715 if (errno == EINTR || errno == EAGAIN)
717 perrorf (g, "select");
721 if (g->fd[1] >= 0 && FD_ISSET (g->fd[1], &rset2)) {
722 if (read_log_message_or_eof (g, g->fd[1], 1) == -1)
725 if (FD_ISSET (g->sock, &rset2)) {
726 sock = accept (g->sock, NULL, NULL);
728 if (errno == EINTR || errno == EAGAIN)
730 perrorf (g, "accept");
740 guestfs___send (guestfs_h *g, int proc_nr,
741 uint64_t progress_hint, uint64_t optargs_bitmask,
742 xdrproc_t xdrp, char *args)
744 struct guestfs_message_header hdr;
747 int serial = g->msg_next_serial++;
752 if (g->state != BUSY) {
753 error (g, _("guestfs___send: state %d != BUSY"), g->state);
757 /* We have to allocate this message buffer on the heap because
758 * it is quite large (although will be mostly unused). We
759 * can't allocate it on the stack because in some environments
760 * we have quite limited stack space available, notably when
761 * running in the JVM.
763 msg_out = safe_malloc (g, GUESTFS_MESSAGE_MAX + 4);
764 xdrmem_create (&xdr, msg_out + 4, GUESTFS_MESSAGE_MAX, XDR_ENCODE);
766 /* Serialize the header. */
767 hdr.prog = GUESTFS_PROGRAM;
768 hdr.vers = GUESTFS_PROTOCOL_VERSION;
770 hdr.direction = GUESTFS_DIRECTION_CALL;
772 hdr.status = GUESTFS_STATUS_OK;
773 hdr.progress_hint = progress_hint;
774 hdr.optargs_bitmask = optargs_bitmask;
776 if (!xdr_guestfs_message_header (&xdr, &hdr)) {
777 error (g, _("xdr_guestfs_message_header failed"));
781 /* Serialize the args. If any, because some message types
782 * have no parameters.
785 if (!(*xdrp) (&xdr, args)) {
786 error (g, _("dispatch failed to marshal args"));
791 /* Get the actual length of the message, resize the buffer to match
792 * the actual length, and write the length word at the beginning.
794 len = xdr_getpos (&xdr);
797 msg_out = safe_realloc (g, msg_out, len + 4);
798 msg_out_size = len + 4;
800 xdrmem_create (&xdr, msg_out, 4, XDR_ENCODE);
801 xdr_uint32_t (&xdr, &len);
804 r = guestfs___send_to_daemon (g, msg_out, msg_out_size);
805 if (r == -2) /* Ignore stray daemon cancellations. */
818 static int cancel = 0; /* XXX Implement file cancellation. */
819 static int send_file_chunk (guestfs_h *g, int cancel, const char *buf, size_t len);
820 static int send_file_data (guestfs_h *g, const char *buf, size_t len);
821 static int send_file_cancellation (guestfs_h *g);
822 static int send_file_complete (guestfs_h *g);
828 * -2 daemon cancelled (we must read the error message)
831 guestfs___send_file (guestfs_h *g, const char *filename)
833 char buf[GUESTFS_MAX_CHUNK_SIZE];
836 fd = open (filename, O_RDONLY);
838 perrorf (g, "open: %s", filename);
839 send_file_cancellation (g);
840 /* Daemon sees cancellation and won't reply, so caller can
846 /* Send file in chunked encoding. */
848 r = read (fd, buf, sizeof buf);
849 if (r == -1 && (errno == EINTR || errno == EAGAIN))
852 err = send_file_data (g, buf, r);
854 if (err == -2) /* daemon sent cancellation */
855 send_file_cancellation (g);
860 if (cancel) { /* cancel from either end */
861 send_file_cancellation (g);
866 perrorf (g, "read: %s", filename);
867 send_file_cancellation (g);
871 /* End of file, but before we send that, we need to close
872 * the file and check for errors.
874 if (close (fd) == -1) {
875 perrorf (g, "close: %s", filename);
876 send_file_cancellation (g);
880 return send_file_complete (g);
883 /* Send a chunk of file data. */
885 send_file_data (guestfs_h *g, const char *buf, size_t len)
887 return send_file_chunk (g, 0, buf, len);
890 /* Send a cancellation message. */
892 send_file_cancellation (guestfs_h *g)
894 return send_file_chunk (g, 1, NULL, 0);
897 /* Send a file complete chunk. */
899 send_file_complete (guestfs_h *g)
902 return send_file_chunk (g, 0, buf, 0);
906 send_file_chunk (guestfs_h *g, int cancel, const char *buf, size_t buflen)
915 if (g->state != BUSY) {
916 error (g, _("send_file_chunk: state %d != READY"), g->state);
920 /* Allocate the chunk buffer. Don't use the stack to avoid
921 * excessive stack usage and unnecessary copies.
923 msg_out = safe_malloc (g, GUESTFS_MAX_CHUNK_SIZE + 4 + 48);
924 xdrmem_create (&xdr, msg_out + 4, GUESTFS_MAX_CHUNK_SIZE + 48, XDR_ENCODE);
926 /* Serialize the chunk. */
927 chunk.cancel = cancel;
928 chunk.data.data_len = buflen;
929 chunk.data.data_val = (char *) buf;
931 if (!xdr_guestfs_chunk (&xdr, &chunk)) {
932 error (g, _("xdr_guestfs_chunk failed (buf = %p, buflen = %zu)"),
938 len = xdr_getpos (&xdr);
941 /* Reduce the size of the outgoing message buffer to the real length. */
942 msg_out = safe_realloc (g, msg_out, len + 4);
943 msg_out_size = len + 4;
945 xdrmem_create (&xdr, msg_out, 4, XDR_ENCODE);
946 xdr_uint32_t (&xdr, &len);
948 r = guestfs___send_to_daemon (g, msg_out, msg_out_size);
950 /* Did the daemon send a cancellation message? */
952 debug (g, "got daemon cancellation");
968 /* Receive a reply. */
970 guestfs___recv (guestfs_h *g, const char *fn,
971 guestfs_message_header *hdr,
972 guestfs_message_error *err,
973 xdrproc_t xdrp, char *ret)
981 r = guestfs___recv_from_daemon (g, &size, &buf);
985 /* This can happen if a cancellation happens right at the end
986 * of us sending a FileIn parameter to the daemon. Discard. The
987 * daemon should send us an error message next.
989 if (size == GUESTFS_CANCEL_FLAG)
992 if (size == GUESTFS_LAUNCH_FLAG) {
993 error (g, "%s: received unexpected launch flag from daemon when expecting reply", fn);
997 xdrmem_create (&xdr, buf, size, XDR_DECODE);
999 if (!xdr_guestfs_message_header (&xdr, hdr)) {
1000 error (g, "%s: failed to parse reply header", fn);
1005 if (hdr->status == GUESTFS_STATUS_ERROR) {
1006 if (!xdr_guestfs_message_error (&xdr, err)) {
1007 error (g, "%s: failed to parse reply error", fn);
1013 if (xdrp && ret && !xdrp (&xdr, ret)) {
1014 error (g, "%s: failed to parse reply", fn);
1026 /* Receive a file. */
1028 /* Returns -1 = error, 0 = EOF, > 0 = more data */
1029 static ssize_t receive_file_data (guestfs_h *g, void **buf);
1032 guestfs___recv_file (guestfs_h *g, const char *filename)
1037 fd = open (filename, O_WRONLY|O_CREAT|O_TRUNC|O_NOCTTY, 0666);
1039 perrorf (g, "open: %s", filename);
1043 /* Receive the file in chunked encoding. */
1044 while ((r = receive_file_data (g, &buf)) > 0) {
1045 if (xwrite (fd, buf, r) == -1) {
1046 perrorf (g, "%s: write", filename);
1054 error (g, _("%s: error in chunked encoding"), filename);
1058 if (close (fd) == -1) {
1059 perrorf (g, "close: %s", filename);
1066 /* Send cancellation message to daemon, then wait until it
1067 * cancels (just throwing away data).
1071 uint32_t flag = GUESTFS_CANCEL_FLAG;
1073 debug (g, "%s: waiting for daemon to acknowledge cancellation",
1076 xdrmem_create (&xdr, fbuf, sizeof fbuf, XDR_ENCODE);
1077 xdr_uint32_t (&xdr, &flag);
1080 if (xwrite (g->sock, fbuf, sizeof fbuf) == -1) {
1081 perrorf (g, _("write to daemon socket"));
1085 while (receive_file_data (g, NULL) > 0)
1086 ; /* just discard it */
1091 /* Receive a chunk of file data. */
1092 /* Returns -1 = error, 0 = EOF, > 0 = more data */
1094 receive_file_data (guestfs_h *g, void **buf_r)
1100 guestfs_chunk chunk;
1102 r = guestfs___recv_from_daemon (g, &len, &buf);
1104 error (g, _("receive_file_data: parse error in reply callback"));
1108 if (len == GUESTFS_LAUNCH_FLAG || len == GUESTFS_CANCEL_FLAG) {
1109 error (g, _("receive_file_data: unexpected flag received when reading file chunks"));
1113 memset (&chunk, 0, sizeof chunk);
1115 xdrmem_create (&xdr, buf, len, XDR_DECODE);
1116 if (!xdr_guestfs_chunk (&xdr, &chunk)) {
1117 error (g, _("failed to parse file chunk"));
1122 /* After decoding, the original buffer is no longer used. */
1126 error (g, _("file receive cancelled by daemon"));
1127 free (chunk.data.data_val);
1131 if (chunk.data.data_len == 0) { /* end of transfer */
1132 free (chunk.data.data_val);
1136 if (buf_r) *buf_r = chunk.data.data_val;
1137 else free (chunk.data.data_val); /* else caller frees */
1139 return chunk.data.data_len;