[PATCH v3 03/10] iommu/vt-d: Add helper for nested domain allocation