Windows Driver Model >> Pascal >> IOCTL
METHOD_BUFFERED
參考資訊:
1. Source Code
2. delphidriverdevelopmentkit
METHOD_BUFFERED的處理手法就是I/O Manager會在Kernel配置一塊跟User Buffer一樣大小的記憶體,Driver只能對該配置的記憶體做讀寫的操作,而讀寫的操作都會同步回User Buffer,也因為結果都需要整塊複製回User Buffer,因此,METHOD_BUFFERED的方式會消耗比較大的資源,速度也比較慢。
參考如下微軟的圖表說明(IRP_MJ_READ):
記憶體指標:
Buffer | Length | |
---|---|---|
Input | (Irp) AssociatedIrp.SystemBuffer |
(IrpStack) Parameters.DeviceIoControl.InputBufferLength |
Output | (Irp) AssociatedIrp.SystemBuffer |
(IrpStack) Parameters.DeviceIoControl.OutputBufferLength |
main.pas
unit main; interface uses DDDK; const DEV_NAME = '\Device\MyDriver'; SYM_NAME = '\DosDevices\MyDriver'; IOCTL_SET = (FILE_DEVICE_UNKNOWN shl 16) or (FILE_ANY_ACCESS shl 14) or ($800 shl 2) or (METHOD_BUFFERED); IOCTL_GET = (FILE_DEVICE_UNKNOWN shl 16) or (FILE_ANY_ACCESS shl 14) or ($801 shl 2) or (METHOD_BUFFERED); function _DriverEntry(pOurDriver:PDRIVER_OBJECT; pOurRegistry:PUNICODE_STRING):NTSTATUS; stdcall; implementation var pNextDevice: PDEVICE_OBJECT; szBuf: array[0..255] of char; procedure Unload(pOurDriver:PDRIVER_OBJECT); stdcall; begin end; function IrpFile(pOurDevice:PDEVICE_OBJECT; pIrp:PIRP):NTSTATUS; stdcall; var psk: PIO_STACK_LOCATION; begin psk:= IoGetCurrentIrpStackLocation(pIrp); case psk^.MajorFunction of IRP_MJ_CREATE: DbgPrint('IRP_MJ_CREATE', []); IRP_MJ_CLOSE: DbgPrint('IRP_MJ_CLOSE', []); end; Result:= STATUS_SUCCESS; pIrp^.IoStatus.Status:= Result; pIrp^.IoStatus.Information:= 0; IoCompleteRequest(pIrp, IO_NO_INCREMENT); end; function IrpIOCTL(pOurDevice:PDeviceObject; pIrp:PIrp):NTSTATUS; stdcall; var len: ULONG; code: ULONG; psk: PIO_STACK_LOCATION; begin len:= 0; psk:= IoGetCurrentIrpStackLocation(pIrp); code:= psk^.Parameters.DeviceIoControl.IoControlCode; case code of IOCTL_GET: begin DbgPrint('IOCTL_GET', []); len:= strlen(@szBuf[0])+1; memcpy(pIrp^.AssociatedIrp.SystemBuffer, @szBuf[0], len); end; IOCTL_SET: begin DbgPrint('IOCTL_SET', []); len:= psk^.Parameters.DeviceIoControl.InputBufferLength; memcpy(@szBuf[0], pIrp^.AssociatedIrp.SystemBuffer, len); DbgPrint('Buffer: %s, Length: %d', [szBuf, len]); end; end; Result:= STATUS_SUCCESS; pIrp^.IoStatus.Information:= len; pIrp^.IoStatus.Status:= Result; IoCompleteRequest(pIrp, IO_NO_INCREMENT); end; function IrpPnp(pOurDevice:PDEVICE_OBJECT; pIrp:PIRP):NTSTATUS; stdcall; var psk: PIO_STACK_LOCATION; suSymName: UNICODE_STRING; begin psk:= IoGetCurrentIrpStackLocation(pIrp); if psk^.MinorFunction = IRP_MN_REMOVE_DEVICE then begin RtlInitUnicodeString(@suSymName, SYM_NAME); IoDetachDevice(pNextDevice); IoDeleteDevice(pOurDevice); IoDeleteSymbolicLink(@suSymName); end; IoSkipCurrentIrpStackLocation(pIrp); Result:= IoCallDriver(pNextDevice, pIrp); end; function AddDevice(pOurDriver:PDRIVER_OBJECT; pPhyDevice:PDEVICE_OBJECT):NTSTATUS; stdcall; var suDevName: UNICODE_STRING; suSymName: UNICODE_STRING; pOurDevice: PDEVICE_OBJECT; begin RtlInitUnicodeString(@suDevName, DEV_NAME); RtlInitUnicodeString(@suSymName, SYM_NAME); IoCreateDevice(pOurDriver, 0, @suDevName, FILE_DEVICE_UNKNOWN, 0, FALSE, pOurDevice); pNextDevice:= IoAttachDeviceToDeviceStack(pOurDevice, pPhyDevice); pOurDevice^.Flags:= pOurDevice^.Flags or DO_BUFFERED_IO; pOurDevice^.Flags:= pOurDevice^.Flags and not DO_DEVICE_INITIALIZING; Result:= IoCreateSymbolicLink(@suSymName, @suDevName); end; function _DriverEntry(pOurDriver:PDRIVER_OBJECT; pOurRegistry:PUNICODE_STRING):NTSTATUS; stdcall; begin pOurDriver^.MajorFunction[IRP_MJ_PNP]:= @IrpPnp; pOurDriver^.MajorFunction[IRP_MJ_CREATE]:= @IrpFile; pOurDriver^.MajorFunction[IRP_MJ_CLOSE]:= @IrpFile; pOurDriver^.MajorFunction[IRP_MJ_DEVICE_CONTROL] := @IrpIOCTL; pOurDriver^.DriverExtension^.AddDevice:=@AddDevice; pOurDriver^.DriverUnload:=@Unload; Result:=STATUS_SUCCESS; end; end.
IrpIOCTL()收到IOCTL_SET時,Driver複製User Buffer的內容到szBuffer,而收到IOCTL_GET時,將szBuffer內容又複製回User Buffer,完成暫存的功能,IoStatus.Information的數值就是OutBufferSize回傳的長度。
app.pas
program main; {$APPTYPE CONSOLE} uses Windows, Messages, SysUtils, Variants, Classes, Graphics, Controls, Forms, DIALOGS; const METHOD_BUFFERED = 0; FILE_ANY_ACCESS = 0; FILE_DEVICE_UNKNOWN = $22; IOCTL_SET = (FILE_DEVICE_UNKNOWN shl 16) or (FILE_ANY_ACCESS shl 14) or ($800 shl 2) or (METHOD_BUFFERED); IOCTL_GET = (FILE_DEVICE_UNKNOWN shl 16) or (FILE_ANY_ACCESS shl 14) or ($801 shl 2) or (METHOD_BUFFERED); var fd: DWORD; ret: DWORD; len: DWORD; buf: array[0..255] of char; begin fd:= CreateFile('\\.\MyDriver', GENERIC_READ or GENERIC_WRITE, FILE_SHARE_READ, Nil, OPEN_EXISTING, FILE_ATTRIBUTE_NORMAL, 0); if (fd <> INVALID_HANDLE_VALUE) then begin StrCopy(buf, 'I am error'); len:= strlen(buf)+1; DeviceIoControl(fd, IOCTL_SET, @buf, len, Nil, 0, ret, Nil); WriteLn(Output, Format('SET: %s, %d', [buf, len])); FillChar(buf, sizeof(buf), #0); DeviceIoControl(fd, IOCTL_GET, Nil, 0, @buf, len, ret, Nil); WriteLn(Output, Format('GET: %s, %d', [buf, ret])); CloseHandle(fd); end else begin WriteLn(Output, 'failed to open mydriver'); end; end.
結果