blob: 2f8fb33067e1c48fedf3055ddf29a3be68161c9f [file] [log] [blame]
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001/*
Linus Torvalds1da177e2005-04-16 15:20:36 -07002 BlueZ - Bluetooth protocol stack for Linux
3 Copyright (C) 2000-2001 Qualcomm Incorporated
Gustavo F. Padovan590051d2011-12-18 13:39:33 -02004 Copyright (C) 2011 ProFUSION Embedded Systems
Linus Torvalds1da177e2005-04-16 15:20:36 -07005
6 Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
7
8 This program is free software; you can redistribute it and/or modify
9 it under the terms of the GNU General Public License version 2 as
10 published by the Free Software Foundation;
11
12 THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
13 OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
14 FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
15 IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090016 CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
17 WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
18 ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
Linus Torvalds1da177e2005-04-16 15:20:36 -070019 OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
20
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090021 ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
22 COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
Linus Torvalds1da177e2005-04-16 15:20:36 -070023 SOFTWARE IS DISCLAIMED.
24*/
25
26/* Bluetooth HCI core. */
27
Gustavo Padovan8c520a52012-05-23 04:04:22 -030028#include <linux/export.h>
Sasha Levin3df92b32012-05-27 22:36:56 +020029#include <linux/idr.h>
Marcel Holtmann611b30f2009-06-08 14:41:38 +020030#include <linux/rfkill.h>
Marcel Holtmannbaf27f62013-10-16 03:28:55 -070031#include <linux/debugfs.h>
Johan Hedberg99780a72014-02-18 10:40:07 +020032#include <linux/crypto.h>
Marcel Holtmann47219832013-10-17 17:24:15 -070033#include <asm/unaligned.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070034
35#include <net/bluetooth/bluetooth.h>
36#include <net/bluetooth/hci_core.h>
Johan Hedberg4bc58f52014-05-20 09:45:47 +030037#include <net/bluetooth/l2cap.h>
Marcel Holtmannaf589252014-07-01 14:11:20 +020038#include <net/bluetooth/mgmt.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070039
Johan Hedberg0857dd32014-12-19 13:40:20 +020040#include "hci_request.h"
Marcel Holtmann60c5f5f2014-12-20 16:05:13 +010041#include "hci_debugfs.h"
Johan Hedberg970c4e42014-02-18 10:19:33 +020042#include "smp.h"
43
Marcel Holtmannb78752c2010-08-08 23:06:53 -040044static void hci_rx_work(struct work_struct *work);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -020045static void hci_cmd_work(struct work_struct *work);
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -020046static void hci_tx_work(struct work_struct *work);
Linus Torvalds1da177e2005-04-16 15:20:36 -070047
Linus Torvalds1da177e2005-04-16 15:20:36 -070048/* HCI device list */
49LIST_HEAD(hci_dev_list);
50DEFINE_RWLOCK(hci_dev_list_lock);
51
52/* HCI callback list */
53LIST_HEAD(hci_cb_list);
Johan Hedbergfba7ecf2015-02-18 14:53:55 +020054DEFINE_MUTEX(hci_cb_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -070055
Sasha Levin3df92b32012-05-27 22:36:56 +020056/* HCI ID Numbering */
57static DEFINE_IDA(hci_index_ida);
58
Marcel Holtmann899de762014-07-11 05:51:58 +020059/* ----- HCI requests ----- */
60
61#define HCI_REQ_DONE 0
62#define HCI_REQ_PEND 1
63#define HCI_REQ_CANCELED 2
64
65#define hci_req_lock(d) mutex_lock(&d->req_lock)
66#define hci_req_unlock(d) mutex_unlock(&d->req_lock)
67
Linus Torvalds1da177e2005-04-16 15:20:36 -070068/* ---- HCI notifications ---- */
69
Marcel Holtmann65164552005-10-28 19:20:48 +020070static void hci_notify(struct hci_dev *hdev, int event)
Linus Torvalds1da177e2005-04-16 15:20:36 -070071{
Marcel Holtmann040030e2012-02-20 14:50:37 +010072 hci_sock_dev_event(hdev, event);
Linus Torvalds1da177e2005-04-16 15:20:36 -070073}
74
Marcel Holtmannbaf27f62013-10-16 03:28:55 -070075/* ---- HCI debugfs entries ---- */
76
Marcel Holtmann4b4148e2013-10-19 07:09:12 -070077static ssize_t dut_mode_read(struct file *file, char __user *user_buf,
78 size_t count, loff_t *ppos)
79{
80 struct hci_dev *hdev = file->private_data;
81 char buf[3];
82
Marcel Holtmannb7cb93e2015-03-13 10:20:35 -070083 buf[0] = hci_dev_test_flag(hdev, HCI_DUT_MODE) ? 'Y': 'N';
Marcel Holtmann4b4148e2013-10-19 07:09:12 -070084 buf[1] = '\n';
85 buf[2] = '\0';
86 return simple_read_from_buffer(user_buf, count, ppos, buf, 2);
87}
88
89static ssize_t dut_mode_write(struct file *file, const char __user *user_buf,
90 size_t count, loff_t *ppos)
91{
92 struct hci_dev *hdev = file->private_data;
93 struct sk_buff *skb;
94 char buf[32];
95 size_t buf_size = min(count, (sizeof(buf)-1));
96 bool enable;
Marcel Holtmann4b4148e2013-10-19 07:09:12 -070097
98 if (!test_bit(HCI_UP, &hdev->flags))
99 return -ENETDOWN;
100
101 if (copy_from_user(buf, user_buf, buf_size))
102 return -EFAULT;
103
104 buf[buf_size] = '\0';
105 if (strtobool(buf, &enable))
106 return -EINVAL;
107
Marcel Holtmannb7cb93e2015-03-13 10:20:35 -0700108 if (enable == hci_dev_test_flag(hdev, HCI_DUT_MODE))
Marcel Holtmann4b4148e2013-10-19 07:09:12 -0700109 return -EALREADY;
110
111 hci_req_lock(hdev);
112 if (enable)
113 skb = __hci_cmd_sync(hdev, HCI_OP_ENABLE_DUT_MODE, 0, NULL,
114 HCI_CMD_TIMEOUT);
115 else
116 skb = __hci_cmd_sync(hdev, HCI_OP_RESET, 0, NULL,
117 HCI_CMD_TIMEOUT);
118 hci_req_unlock(hdev);
119
120 if (IS_ERR(skb))
121 return PTR_ERR(skb);
122
Marcel Holtmann4b4148e2013-10-19 07:09:12 -0700123 kfree_skb(skb);
124
Marcel Holtmannb7cb93e2015-03-13 10:20:35 -0700125 hci_dev_change_flag(hdev, HCI_DUT_MODE);
Marcel Holtmann4b4148e2013-10-19 07:09:12 -0700126
127 return count;
128}
129
130static const struct file_operations dut_mode_fops = {
131 .open = simple_open,
132 .read = dut_mode_read,
133 .write = dut_mode_write,
134 .llseek = default_llseek,
135};
136
Linus Torvalds1da177e2005-04-16 15:20:36 -0700137/* ---- HCI requests ---- */
138
Johan Hedbergf60cb302015-04-02 13:41:09 +0300139static void hci_req_sync_complete(struct hci_dev *hdev, u8 result, u16 opcode,
140 struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700141{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200142 BT_DBG("%s result 0x%2.2x", hdev->name, result);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700143
144 if (hdev->req_status == HCI_REQ_PEND) {
145 hdev->req_result = result;
146 hdev->req_status = HCI_REQ_DONE;
Johan Hedbergf60cb302015-04-02 13:41:09 +0300147 if (skb)
148 hdev->req_skb = skb_get(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700149 wake_up_interruptible(&hdev->req_wait_q);
150 }
151}
152
153static void hci_req_cancel(struct hci_dev *hdev, int err)
154{
155 BT_DBG("%s err 0x%2.2x", hdev->name, err);
156
157 if (hdev->req_status == HCI_REQ_PEND) {
158 hdev->req_result = err;
159 hdev->req_status = HCI_REQ_CANCELED;
160 wake_up_interruptible(&hdev->req_wait_q);
161 }
162}
163
Johan Hedberg7b1abbb2013-04-03 21:54:47 +0300164struct sk_buff *__hci_cmd_sync_ev(struct hci_dev *hdev, u16 opcode, u32 plen,
Johan Hedberg07dc93d2013-04-19 10:14:51 +0300165 const void *param, u8 event, u32 timeout)
Johan Hedberg75e84b72013-04-02 13:35:04 +0300166{
167 DECLARE_WAITQUEUE(wait, current);
168 struct hci_request req;
Johan Hedbergf60cb302015-04-02 13:41:09 +0300169 struct sk_buff *skb;
Johan Hedberg75e84b72013-04-02 13:35:04 +0300170 int err = 0;
171
172 BT_DBG("%s", hdev->name);
173
174 hci_req_init(&req, hdev);
175
Johan Hedberg7b1abbb2013-04-03 21:54:47 +0300176 hci_req_add_ev(&req, opcode, plen, param, event);
Johan Hedberg75e84b72013-04-02 13:35:04 +0300177
178 hdev->req_status = HCI_REQ_PEND;
179
Johan Hedberg75e84b72013-04-02 13:35:04 +0300180 add_wait_queue(&hdev->req_wait_q, &wait);
181 set_current_state(TASK_INTERRUPTIBLE);
182
Johan Hedbergf60cb302015-04-02 13:41:09 +0300183 err = hci_req_run_skb(&req, hci_req_sync_complete);
Chan-yeol Park039fada2014-10-31 14:23:06 +0900184 if (err < 0) {
185 remove_wait_queue(&hdev->req_wait_q, &wait);
Johan Hedberg22a3cea2014-11-19 13:16:41 +0200186 set_current_state(TASK_RUNNING);
Chan-yeol Park039fada2014-10-31 14:23:06 +0900187 return ERR_PTR(err);
188 }
189
Johan Hedberg75e84b72013-04-02 13:35:04 +0300190 schedule_timeout(timeout);
191
192 remove_wait_queue(&hdev->req_wait_q, &wait);
193
194 if (signal_pending(current))
195 return ERR_PTR(-EINTR);
196
197 switch (hdev->req_status) {
198 case HCI_REQ_DONE:
199 err = -bt_to_errno(hdev->req_result);
200 break;
201
202 case HCI_REQ_CANCELED:
203 err = -hdev->req_result;
204 break;
205
206 default:
207 err = -ETIMEDOUT;
208 break;
209 }
210
211 hdev->req_status = hdev->req_result = 0;
Johan Hedbergf60cb302015-04-02 13:41:09 +0300212 skb = hdev->req_skb;
213 hdev->req_skb = NULL;
Johan Hedberg75e84b72013-04-02 13:35:04 +0300214
215 BT_DBG("%s end: err %d", hdev->name, err);
216
Johan Hedbergf60cb302015-04-02 13:41:09 +0300217 if (err < 0) {
218 kfree_skb(skb);
Johan Hedberg75e84b72013-04-02 13:35:04 +0300219 return ERR_PTR(err);
Johan Hedbergf60cb302015-04-02 13:41:09 +0300220 }
Johan Hedberg75e84b72013-04-02 13:35:04 +0300221
Johan Hedberg757aa0b2015-04-02 13:41:12 +0300222 if (!skb)
223 return ERR_PTR(-ENODATA);
224
225 return skb;
Johan Hedberg7b1abbb2013-04-03 21:54:47 +0300226}
227EXPORT_SYMBOL(__hci_cmd_sync_ev);
228
229struct sk_buff *__hci_cmd_sync(struct hci_dev *hdev, u16 opcode, u32 plen,
Johan Hedberg07dc93d2013-04-19 10:14:51 +0300230 const void *param, u32 timeout)
Johan Hedberg7b1abbb2013-04-03 21:54:47 +0300231{
232 return __hci_cmd_sync_ev(hdev, opcode, plen, param, 0, timeout);
Johan Hedberg75e84b72013-04-02 13:35:04 +0300233}
234EXPORT_SYMBOL(__hci_cmd_sync);
235
Linus Torvalds1da177e2005-04-16 15:20:36 -0700236/* Execute request and wait for completion. */
Johan Hedberg01178cd2013-03-05 20:37:41 +0200237static int __hci_req_sync(struct hci_dev *hdev,
Johan Hedberg42c6b122013-03-05 20:37:49 +0200238 void (*func)(struct hci_request *req,
239 unsigned long opt),
Johan Hedberg01178cd2013-03-05 20:37:41 +0200240 unsigned long opt, __u32 timeout)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700241{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200242 struct hci_request req;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700243 DECLARE_WAITQUEUE(wait, current);
244 int err = 0;
245
246 BT_DBG("%s start", hdev->name);
247
Johan Hedberg42c6b122013-03-05 20:37:49 +0200248 hci_req_init(&req, hdev);
249
Linus Torvalds1da177e2005-04-16 15:20:36 -0700250 hdev->req_status = HCI_REQ_PEND;
251
Johan Hedberg42c6b122013-03-05 20:37:49 +0200252 func(&req, opt);
Johan Hedberg53cce222013-03-05 20:37:42 +0200253
Chan-yeol Park039fada2014-10-31 14:23:06 +0900254 add_wait_queue(&hdev->req_wait_q, &wait);
255 set_current_state(TASK_INTERRUPTIBLE);
256
Johan Hedbergf60cb302015-04-02 13:41:09 +0300257 err = hci_req_run_skb(&req, hci_req_sync_complete);
Johan Hedberg42c6b122013-03-05 20:37:49 +0200258 if (err < 0) {
Johan Hedberg53cce222013-03-05 20:37:42 +0200259 hdev->req_status = 0;
Andre Guedes920c8302013-03-08 11:20:15 -0300260
Chan-yeol Park039fada2014-10-31 14:23:06 +0900261 remove_wait_queue(&hdev->req_wait_q, &wait);
Johan Hedberg22a3cea2014-11-19 13:16:41 +0200262 set_current_state(TASK_RUNNING);
Chan-yeol Park039fada2014-10-31 14:23:06 +0900263
Andre Guedes920c8302013-03-08 11:20:15 -0300264 /* ENODATA means the HCI request command queue is empty.
265 * This can happen when a request with conditionals doesn't
266 * trigger any commands to be sent. This is normal behavior
267 * and should not trigger an error return.
Johan Hedberg42c6b122013-03-05 20:37:49 +0200268 */
Andre Guedes920c8302013-03-08 11:20:15 -0300269 if (err == -ENODATA)
270 return 0;
271
272 return err;
Johan Hedberg53cce222013-03-05 20:37:42 +0200273 }
274
Linus Torvalds1da177e2005-04-16 15:20:36 -0700275 schedule_timeout(timeout);
276
277 remove_wait_queue(&hdev->req_wait_q, &wait);
278
279 if (signal_pending(current))
280 return -EINTR;
281
282 switch (hdev->req_status) {
283 case HCI_REQ_DONE:
Joe Perchese1750722011-06-29 18:18:29 -0700284 err = -bt_to_errno(hdev->req_result);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700285 break;
286
287 case HCI_REQ_CANCELED:
288 err = -hdev->req_result;
289 break;
290
291 default:
292 err = -ETIMEDOUT;
293 break;
Stephen Hemminger3ff50b72007-04-20 17:09:22 -0700294 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700295
Johan Hedberga5040ef2011-01-10 13:28:59 +0200296 hdev->req_status = hdev->req_result = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700297
298 BT_DBG("%s end: err %d", hdev->name, err);
299
300 return err;
301}
302
Johan Hedberg01178cd2013-03-05 20:37:41 +0200303static int hci_req_sync(struct hci_dev *hdev,
Johan Hedberg42c6b122013-03-05 20:37:49 +0200304 void (*req)(struct hci_request *req,
305 unsigned long opt),
Johan Hedberg01178cd2013-03-05 20:37:41 +0200306 unsigned long opt, __u32 timeout)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700307{
308 int ret;
309
Marcel Holtmann7c6a3292008-09-12 03:11:54 +0200310 if (!test_bit(HCI_UP, &hdev->flags))
311 return -ENETDOWN;
312
Linus Torvalds1da177e2005-04-16 15:20:36 -0700313 /* Serialize all requests */
314 hci_req_lock(hdev);
Johan Hedberg01178cd2013-03-05 20:37:41 +0200315 ret = __hci_req_sync(hdev, req, opt, timeout);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700316 hci_req_unlock(hdev);
317
318 return ret;
319}
320
Johan Hedberg42c6b122013-03-05 20:37:49 +0200321static void hci_reset_req(struct hci_request *req, unsigned long opt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700322{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200323 BT_DBG("%s %ld", req->hdev->name, opt);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700324
325 /* Reset device */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200326 set_bit(HCI_RESET, &req->hdev->flags);
327 hci_req_add(req, HCI_OP_RESET, 0, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700328}
329
Johan Hedberg42c6b122013-03-05 20:37:49 +0200330static void bredr_init(struct hci_request *req)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700331{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200332 req->hdev->flow_ctl_mode = HCI_FLOW_CTL_MODE_PACKET_BASED;
Andrei Emeltchenko2455a3e2011-12-19 16:31:28 +0200333
Linus Torvalds1da177e2005-04-16 15:20:36 -0700334 /* Read Local Supported Features */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200335 hci_req_add(req, HCI_OP_READ_LOCAL_FEATURES, 0, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700336
Marcel Holtmann1143e5a2006-09-23 09:57:20 +0200337 /* Read Local Version */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200338 hci_req_add(req, HCI_OP_READ_LOCAL_VERSION, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200339
340 /* Read BD Address */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200341 hci_req_add(req, HCI_OP_READ_BD_ADDR, 0, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700342}
343
Johan Hedberg0af801b2015-02-17 15:05:21 +0200344static void amp_init1(struct hci_request *req)
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200345{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200346 req->hdev->flow_ctl_mode = HCI_FLOW_CTL_MODE_BLOCK_BASED;
Andrei Emeltchenko2455a3e2011-12-19 16:31:28 +0200347
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200348 /* Read Local Version */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200349 hci_req_add(req, HCI_OP_READ_LOCAL_VERSION, 0, NULL);
Andrei Emeltchenko6bcbc482012-03-28 16:31:24 +0300350
Marcel Holtmannf6996cf2013-10-07 02:31:39 -0700351 /* Read Local Supported Commands */
352 hci_req_add(req, HCI_OP_READ_LOCAL_COMMANDS, 0, NULL);
353
Andrei Emeltchenko6bcbc482012-03-28 16:31:24 +0300354 /* Read Local AMP Info */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200355 hci_req_add(req, HCI_OP_READ_LOCAL_AMP_INFO, 0, NULL);
Andrei Emeltchenkoe71dfab2012-09-06 15:05:46 +0300356
357 /* Read Data Blk size */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200358 hci_req_add(req, HCI_OP_READ_DATA_BLOCK_SIZE, 0, NULL);
Marcel Holtmann7528ca12013-10-07 03:55:52 -0700359
Marcel Holtmannf38ba942013-10-07 03:55:53 -0700360 /* Read Flow Control Mode */
361 hci_req_add(req, HCI_OP_READ_FLOW_CONTROL_MODE, 0, NULL);
362
Marcel Holtmann7528ca12013-10-07 03:55:52 -0700363 /* Read Location Data */
364 hci_req_add(req, HCI_OP_READ_LOCATION_DATA, 0, NULL);
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200365}
366
Johan Hedberg0af801b2015-02-17 15:05:21 +0200367static void amp_init2(struct hci_request *req)
368{
369 /* Read Local Supported Features. Not all AMP controllers
370 * support this so it's placed conditionally in the second
371 * stage init.
372 */
373 if (req->hdev->commands[14] & 0x20)
374 hci_req_add(req, HCI_OP_READ_LOCAL_FEATURES, 0, NULL);
375}
376
Johan Hedberg42c6b122013-03-05 20:37:49 +0200377static void hci_init1_req(struct hci_request *req, unsigned long opt)
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200378{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200379 struct hci_dev *hdev = req->hdev;
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200380
381 BT_DBG("%s %ld", hdev->name, opt);
382
Andrei Emeltchenko11778712012-06-11 11:13:10 +0300383 /* Reset */
384 if (!test_bit(HCI_QUIRK_RESET_ON_CLOSE, &hdev->quirks))
Johan Hedberg42c6b122013-03-05 20:37:49 +0200385 hci_reset_req(req, 0);
Andrei Emeltchenko11778712012-06-11 11:13:10 +0300386
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200387 switch (hdev->dev_type) {
388 case HCI_BREDR:
Johan Hedberg42c6b122013-03-05 20:37:49 +0200389 bredr_init(req);
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200390 break;
391
392 case HCI_AMP:
Johan Hedberg0af801b2015-02-17 15:05:21 +0200393 amp_init1(req);
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200394 break;
395
396 default:
397 BT_ERR("Unknown device type %d", hdev->dev_type);
398 break;
399 }
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200400}
401
Johan Hedberg42c6b122013-03-05 20:37:49 +0200402static void bredr_setup(struct hci_request *req)
Johan Hedberg2177bab2013-03-05 20:37:43 +0200403{
Johan Hedberg2177bab2013-03-05 20:37:43 +0200404 __le16 param;
405 __u8 flt_type;
406
407 /* Read Buffer Size (ACL mtu, max pkt, etc.) */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200408 hci_req_add(req, HCI_OP_READ_BUFFER_SIZE, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200409
410 /* Read Class of Device */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200411 hci_req_add(req, HCI_OP_READ_CLASS_OF_DEV, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200412
413 /* Read Local Name */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200414 hci_req_add(req, HCI_OP_READ_LOCAL_NAME, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200415
416 /* Read Voice Setting */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200417 hci_req_add(req, HCI_OP_READ_VOICE_SETTING, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200418
Marcel Holtmannb4cb9fb2013-10-14 13:56:16 -0700419 /* Read Number of Supported IAC */
420 hci_req_add(req, HCI_OP_READ_NUM_SUPPORTED_IAC, 0, NULL);
421
Marcel Holtmann4b836f32013-10-14 14:06:36 -0700422 /* Read Current IAC LAP */
423 hci_req_add(req, HCI_OP_READ_CURRENT_IAC_LAP, 0, NULL);
424
Johan Hedberg2177bab2013-03-05 20:37:43 +0200425 /* Clear Event Filters */
426 flt_type = HCI_FLT_CLEAR_ALL;
Johan Hedberg42c6b122013-03-05 20:37:49 +0200427 hci_req_add(req, HCI_OP_SET_EVENT_FLT, 1, &flt_type);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200428
429 /* Connection accept timeout ~20 secs */
Joe Perchesdcf4adb2014-03-12 10:52:35 -0700430 param = cpu_to_le16(0x7d00);
Johan Hedberg42c6b122013-03-05 20:37:49 +0200431 hci_req_add(req, HCI_OP_WRITE_CA_TIMEOUT, 2, &param);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200432}
433
Johan Hedberg42c6b122013-03-05 20:37:49 +0200434static void le_setup(struct hci_request *req)
Johan Hedberg2177bab2013-03-05 20:37:43 +0200435{
Johan Hedbergc73eee92013-04-19 18:35:21 +0300436 struct hci_dev *hdev = req->hdev;
437
Johan Hedberg2177bab2013-03-05 20:37:43 +0200438 /* Read LE Buffer Size */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200439 hci_req_add(req, HCI_OP_LE_READ_BUFFER_SIZE, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200440
441 /* Read LE Local Supported Features */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200442 hci_req_add(req, HCI_OP_LE_READ_LOCAL_FEATURES, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200443
Marcel Holtmann747d3f02014-02-27 20:37:29 -0800444 /* Read LE Supported States */
445 hci_req_add(req, HCI_OP_LE_READ_SUPPORTED_STATES, 0, NULL);
446
Johan Hedberg2177bab2013-03-05 20:37:43 +0200447 /* Read LE White List Size */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200448 hci_req_add(req, HCI_OP_LE_READ_WHITE_LIST_SIZE, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200449
Marcel Holtmann747d3f02014-02-27 20:37:29 -0800450 /* Clear LE White List */
451 hci_req_add(req, HCI_OP_LE_CLEAR_WHITE_LIST, 0, NULL);
Johan Hedbergc73eee92013-04-19 18:35:21 +0300452
453 /* LE-only controllers have LE implicitly enabled */
454 if (!lmp_bredr_capable(hdev))
Marcel Holtmanna1536da2015-03-13 02:11:01 -0700455 hci_dev_set_flag(hdev, HCI_LE_ENABLED);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200456}
457
Johan Hedberg42c6b122013-03-05 20:37:49 +0200458static void hci_setup_event_mask(struct hci_request *req)
Johan Hedberg2177bab2013-03-05 20:37:43 +0200459{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200460 struct hci_dev *hdev = req->hdev;
461
Johan Hedberg2177bab2013-03-05 20:37:43 +0200462 /* The second byte is 0xff instead of 0x9f (two reserved bits
463 * disabled) since a Broadcom 1.2 dongle doesn't respond to the
464 * command otherwise.
465 */
466 u8 events[8] = { 0xff, 0xff, 0xfb, 0xff, 0x00, 0x00, 0x00, 0x00 };
467
468 /* CSR 1.1 dongles does not accept any bitfield so don't try to set
469 * any event mask for pre 1.2 devices.
470 */
471 if (hdev->hci_ver < BLUETOOTH_VER_1_2)
472 return;
473
474 if (lmp_bredr_capable(hdev)) {
475 events[4] |= 0x01; /* Flow Specification Complete */
476 events[4] |= 0x02; /* Inquiry Result with RSSI */
477 events[4] |= 0x04; /* Read Remote Extended Features Complete */
478 events[5] |= 0x08; /* Synchronous Connection Complete */
479 events[5] |= 0x10; /* Synchronous Connection Changed */
Marcel Holtmannc7882cb2013-08-13 10:00:54 -0700480 } else {
481 /* Use a different default for LE-only devices */
482 memset(events, 0, sizeof(events));
483 events[0] |= 0x10; /* Disconnection Complete */
Marcel Holtmannc7882cb2013-08-13 10:00:54 -0700484 events[1] |= 0x08; /* Read Remote Version Information Complete */
485 events[1] |= 0x20; /* Command Complete */
486 events[1] |= 0x40; /* Command Status */
487 events[1] |= 0x80; /* Hardware Error */
488 events[2] |= 0x04; /* Number of Completed Packets */
489 events[3] |= 0x02; /* Data Buffer Overflow */
Marcel Holtmann0da71f12014-07-12 23:36:16 +0200490
491 if (hdev->le_features[0] & HCI_LE_ENCRYPTION) {
492 events[0] |= 0x80; /* Encryption Change */
493 events[5] |= 0x80; /* Encryption Key Refresh Complete */
494 }
Johan Hedberg2177bab2013-03-05 20:37:43 +0200495 }
496
497 if (lmp_inq_rssi_capable(hdev))
498 events[4] |= 0x02; /* Inquiry Result with RSSI */
499
500 if (lmp_sniffsubr_capable(hdev))
501 events[5] |= 0x20; /* Sniff Subrating */
502
503 if (lmp_pause_enc_capable(hdev))
504 events[5] |= 0x80; /* Encryption Key Refresh Complete */
505
506 if (lmp_ext_inq_capable(hdev))
507 events[5] |= 0x40; /* Extended Inquiry Result */
508
509 if (lmp_no_flush_capable(hdev))
510 events[7] |= 0x01; /* Enhanced Flush Complete */
511
512 if (lmp_lsto_capable(hdev))
513 events[6] |= 0x80; /* Link Supervision Timeout Changed */
514
515 if (lmp_ssp_capable(hdev)) {
516 events[6] |= 0x01; /* IO Capability Request */
517 events[6] |= 0x02; /* IO Capability Response */
518 events[6] |= 0x04; /* User Confirmation Request */
519 events[6] |= 0x08; /* User Passkey Request */
520 events[6] |= 0x10; /* Remote OOB Data Request */
521 events[6] |= 0x20; /* Simple Pairing Complete */
522 events[7] |= 0x04; /* User Passkey Notification */
523 events[7] |= 0x08; /* Keypress Notification */
524 events[7] |= 0x10; /* Remote Host Supported
525 * Features Notification
526 */
527 }
528
529 if (lmp_le_capable(hdev))
530 events[7] |= 0x20; /* LE Meta-Event */
531
Johan Hedberg42c6b122013-03-05 20:37:49 +0200532 hci_req_add(req, HCI_OP_SET_EVENT_MASK, sizeof(events), events);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200533}
534
Johan Hedberg42c6b122013-03-05 20:37:49 +0200535static void hci_init2_req(struct hci_request *req, unsigned long opt)
Johan Hedberg2177bab2013-03-05 20:37:43 +0200536{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200537 struct hci_dev *hdev = req->hdev;
538
Johan Hedberg0af801b2015-02-17 15:05:21 +0200539 if (hdev->dev_type == HCI_AMP)
540 return amp_init2(req);
541
Johan Hedberg2177bab2013-03-05 20:37:43 +0200542 if (lmp_bredr_capable(hdev))
Johan Hedberg42c6b122013-03-05 20:37:49 +0200543 bredr_setup(req);
Johan Hedberg56f87902013-10-02 13:43:13 +0300544 else
Marcel Holtmanna358dc12015-03-13 02:11:02 -0700545 hci_dev_clear_flag(hdev, HCI_BREDR_ENABLED);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200546
547 if (lmp_le_capable(hdev))
Johan Hedberg42c6b122013-03-05 20:37:49 +0200548 le_setup(req);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200549
Marcel Holtmann0f3adea2014-12-26 04:42:34 +0100550 /* All Bluetooth 1.2 and later controllers should support the
551 * HCI command for reading the local supported commands.
552 *
553 * Unfortunately some controllers indicate Bluetooth 1.2 support,
554 * but do not have support for this command. If that is the case,
555 * the driver can quirk the behavior and skip reading the local
556 * supported commands.
Johan Hedberg3f8e2d72013-07-24 02:32:46 +0300557 */
Marcel Holtmann0f3adea2014-12-26 04:42:34 +0100558 if (hdev->hci_ver > BLUETOOTH_VER_1_1 &&
559 !test_bit(HCI_QUIRK_BROKEN_LOCAL_COMMANDS, &hdev->quirks))
Johan Hedberg42c6b122013-03-05 20:37:49 +0200560 hci_req_add(req, HCI_OP_READ_LOCAL_COMMANDS, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200561
562 if (lmp_ssp_capable(hdev)) {
Marcel Holtmann57af75a2013-10-18 12:04:47 -0700563 /* When SSP is available, then the host features page
564 * should also be available as well. However some
565 * controllers list the max_page as 0 as long as SSP
566 * has not been enabled. To achieve proper debugging
567 * output, force the minimum max_page to 1 at least.
568 */
569 hdev->max_page = 0x01;
570
Marcel Holtmannd7a5a112015-03-13 02:11:00 -0700571 if (hci_dev_test_flag(hdev, HCI_SSP_ENABLED)) {
Johan Hedberg2177bab2013-03-05 20:37:43 +0200572 u8 mode = 0x01;
Marcel Holtmann574ea3c2015-01-22 11:15:20 -0800573
Johan Hedberg42c6b122013-03-05 20:37:49 +0200574 hci_req_add(req, HCI_OP_WRITE_SSP_MODE,
575 sizeof(mode), &mode);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200576 } else {
577 struct hci_cp_write_eir cp;
578
579 memset(hdev->eir, 0, sizeof(hdev->eir));
580 memset(&cp, 0, sizeof(cp));
581
Johan Hedberg42c6b122013-03-05 20:37:49 +0200582 hci_req_add(req, HCI_OP_WRITE_EIR, sizeof(cp), &cp);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200583 }
584 }
585
Marcel Holtmann043ec9b2015-01-02 23:35:19 -0800586 if (lmp_inq_rssi_capable(hdev) ||
587 test_bit(HCI_QUIRK_FIXUP_INQUIRY_MODE, &hdev->quirks)) {
Marcel Holtmann04422da2015-01-02 23:35:18 -0800588 u8 mode;
589
590 /* If Extended Inquiry Result events are supported, then
591 * they are clearly preferred over Inquiry Result with RSSI
592 * events.
593 */
594 mode = lmp_ext_inq_capable(hdev) ? 0x02 : 0x01;
595
596 hci_req_add(req, HCI_OP_WRITE_INQUIRY_MODE, 1, &mode);
597 }
Johan Hedberg2177bab2013-03-05 20:37:43 +0200598
599 if (lmp_inq_tx_pwr_capable(hdev))
Johan Hedberg42c6b122013-03-05 20:37:49 +0200600 hci_req_add(req, HCI_OP_READ_INQ_RSP_TX_POWER, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200601
602 if (lmp_ext_feat_capable(hdev)) {
603 struct hci_cp_read_local_ext_features cp;
604
605 cp.page = 0x01;
Johan Hedberg42c6b122013-03-05 20:37:49 +0200606 hci_req_add(req, HCI_OP_READ_LOCAL_EXT_FEATURES,
607 sizeof(cp), &cp);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200608 }
609
Marcel Holtmannd7a5a112015-03-13 02:11:00 -0700610 if (hci_dev_test_flag(hdev, HCI_LINK_SECURITY)) {
Johan Hedberg2177bab2013-03-05 20:37:43 +0200611 u8 enable = 1;
Johan Hedberg42c6b122013-03-05 20:37:49 +0200612 hci_req_add(req, HCI_OP_WRITE_AUTH_ENABLE, sizeof(enable),
613 &enable);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200614 }
615}
616
Johan Hedberg42c6b122013-03-05 20:37:49 +0200617static void hci_setup_link_policy(struct hci_request *req)
Johan Hedberg2177bab2013-03-05 20:37:43 +0200618{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200619 struct hci_dev *hdev = req->hdev;
Johan Hedberg2177bab2013-03-05 20:37:43 +0200620 struct hci_cp_write_def_link_policy cp;
621 u16 link_policy = 0;
622
623 if (lmp_rswitch_capable(hdev))
624 link_policy |= HCI_LP_RSWITCH;
625 if (lmp_hold_capable(hdev))
626 link_policy |= HCI_LP_HOLD;
627 if (lmp_sniff_capable(hdev))
628 link_policy |= HCI_LP_SNIFF;
629 if (lmp_park_capable(hdev))
630 link_policy |= HCI_LP_PARK;
631
632 cp.policy = cpu_to_le16(link_policy);
Johan Hedberg42c6b122013-03-05 20:37:49 +0200633 hci_req_add(req, HCI_OP_WRITE_DEF_LINK_POLICY, sizeof(cp), &cp);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200634}
635
Johan Hedberg42c6b122013-03-05 20:37:49 +0200636static void hci_set_le_support(struct hci_request *req)
Johan Hedberg2177bab2013-03-05 20:37:43 +0200637{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200638 struct hci_dev *hdev = req->hdev;
Johan Hedberg2177bab2013-03-05 20:37:43 +0200639 struct hci_cp_write_le_host_supported cp;
640
Johan Hedbergc73eee92013-04-19 18:35:21 +0300641 /* LE-only devices do not support explicit enablement */
642 if (!lmp_bredr_capable(hdev))
643 return;
644
Johan Hedberg2177bab2013-03-05 20:37:43 +0200645 memset(&cp, 0, sizeof(cp));
646
Marcel Holtmannd7a5a112015-03-13 02:11:00 -0700647 if (hci_dev_test_flag(hdev, HCI_LE_ENABLED)) {
Johan Hedberg2177bab2013-03-05 20:37:43 +0200648 cp.le = 0x01;
Marcel Holtmann32226e42014-07-24 20:04:16 +0200649 cp.simul = 0x00;
Johan Hedberg2177bab2013-03-05 20:37:43 +0200650 }
651
652 if (cp.le != lmp_host_le_capable(hdev))
Johan Hedberg42c6b122013-03-05 20:37:49 +0200653 hci_req_add(req, HCI_OP_WRITE_LE_HOST_SUPPORTED, sizeof(cp),
654 &cp);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200655}
656
Johan Hedbergd62e6d62013-09-13 11:40:02 +0300657static void hci_set_event_mask_page_2(struct hci_request *req)
658{
659 struct hci_dev *hdev = req->hdev;
660 u8 events[8] = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 };
661
662 /* If Connectionless Slave Broadcast master role is supported
663 * enable all necessary events for it.
664 */
Marcel Holtmann53b834d22013-12-08 11:55:33 -0800665 if (lmp_csb_master_capable(hdev)) {
Johan Hedbergd62e6d62013-09-13 11:40:02 +0300666 events[1] |= 0x40; /* Triggered Clock Capture */
667 events[1] |= 0x80; /* Synchronization Train Complete */
668 events[2] |= 0x10; /* Slave Page Response Timeout */
669 events[2] |= 0x20; /* CSB Channel Map Change */
670 }
671
672 /* If Connectionless Slave Broadcast slave role is supported
673 * enable all necessary events for it.
674 */
Marcel Holtmann53b834d22013-12-08 11:55:33 -0800675 if (lmp_csb_slave_capable(hdev)) {
Johan Hedbergd62e6d62013-09-13 11:40:02 +0300676 events[2] |= 0x01; /* Synchronization Train Received */
677 events[2] |= 0x02; /* CSB Receive */
678 events[2] |= 0x04; /* CSB Timeout */
679 events[2] |= 0x08; /* Truncated Page Complete */
680 }
681
Marcel Holtmann40c59fc2014-01-10 02:07:21 -0800682 /* Enable Authenticated Payload Timeout Expired event if supported */
Marcel Holtmanncd7ca0e2014-07-09 09:49:05 +0200683 if (lmp_ping_capable(hdev) || hdev->le_features[0] & HCI_LE_PING)
Marcel Holtmann40c59fc2014-01-10 02:07:21 -0800684 events[2] |= 0x80;
685
Johan Hedbergd62e6d62013-09-13 11:40:02 +0300686 hci_req_add(req, HCI_OP_SET_EVENT_MASK_PAGE_2, sizeof(events), events);
687}
688
Johan Hedberg42c6b122013-03-05 20:37:49 +0200689static void hci_init3_req(struct hci_request *req, unsigned long opt)
Johan Hedberg2177bab2013-03-05 20:37:43 +0200690{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200691 struct hci_dev *hdev = req->hdev;
Johan Hedbergd2c5d772013-04-17 15:00:52 +0300692 u8 p;
Johan Hedberg42c6b122013-03-05 20:37:49 +0200693
Marcel Holtmann0da71f12014-07-12 23:36:16 +0200694 hci_setup_event_mask(req);
695
Marcel Holtmann48ce62c2015-01-12 09:21:26 -0800696 if (hdev->commands[6] & 0x20) {
697 struct hci_cp_read_stored_link_key cp;
698
699 bacpy(&cp.bdaddr, BDADDR_ANY);
700 cp.read_all = 0x01;
701 hci_req_add(req, HCI_OP_READ_STORED_LINK_KEY, sizeof(cp), &cp);
702 }
703
Johan Hedberg2177bab2013-03-05 20:37:43 +0200704 if (hdev->commands[5] & 0x10)
Johan Hedberg42c6b122013-03-05 20:37:49 +0200705 hci_setup_link_policy(req);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200706
Marcel Holtmann417287d2014-12-11 20:21:54 +0100707 if (hdev->commands[8] & 0x01)
708 hci_req_add(req, HCI_OP_READ_PAGE_SCAN_ACTIVITY, 0, NULL);
709
710 /* Some older Broadcom based Bluetooth 1.2 controllers do not
711 * support the Read Page Scan Type command. Check support for
712 * this command in the bit mask of supported commands.
713 */
714 if (hdev->commands[13] & 0x01)
715 hci_req_add(req, HCI_OP_READ_PAGE_SCAN_TYPE, 0, NULL);
716
Andre Guedes9193c6e2014-07-01 18:10:09 -0300717 if (lmp_le_capable(hdev)) {
718 u8 events[8];
719
720 memset(events, 0, sizeof(events));
Marcel Holtmann4d6c7052014-07-13 00:29:22 +0200721 events[0] = 0x0f;
722
723 if (hdev->le_features[0] & HCI_LE_ENCRYPTION)
724 events[0] |= 0x10; /* LE Long Term Key Request */
Andre Guedes662bc2e2014-07-01 18:10:10 -0300725
726 /* If controller supports the Connection Parameters Request
727 * Link Layer Procedure, enable the corresponding event.
728 */
729 if (hdev->le_features[0] & HCI_LE_CONN_PARAM_REQ_PROC)
730 events[0] |= 0x20; /* LE Remote Connection
731 * Parameter Request
732 */
733
Marcel Holtmanna9f60682014-12-20 16:28:39 +0100734 /* If the controller supports the Data Length Extension
735 * feature, enable the corresponding event.
736 */
737 if (hdev->le_features[0] & HCI_LE_DATA_LEN_EXT)
738 events[0] |= 0x40; /* LE Data Length Change */
739
Marcel Holtmann4b71bba2014-12-05 16:20:12 +0100740 /* If the controller supports Extended Scanner Filter
741 * Policies, enable the correspondig event.
742 */
743 if (hdev->le_features[0] & HCI_LE_EXT_SCAN_POLICY)
744 events[1] |= 0x04; /* LE Direct Advertising
745 * Report
746 */
747
Marcel Holtmann5a34bd52014-12-05 16:20:15 +0100748 /* If the controller supports the LE Read Local P-256
749 * Public Key command, enable the corresponding event.
750 */
751 if (hdev->commands[34] & 0x02)
752 events[0] |= 0x80; /* LE Read Local P-256
753 * Public Key Complete
754 */
755
756 /* If the controller supports the LE Generate DHKey
757 * command, enable the corresponding event.
758 */
759 if (hdev->commands[34] & 0x04)
760 events[1] |= 0x01; /* LE Generate DHKey Complete */
761
Andre Guedes9193c6e2014-07-01 18:10:09 -0300762 hci_req_add(req, HCI_OP_LE_SET_EVENT_MASK, sizeof(events),
763 events);
764
Marcel Holtmann15a49cc2014-07-12 23:20:50 +0200765 if (hdev->commands[25] & 0x40) {
766 /* Read LE Advertising Channel TX Power */
767 hci_req_add(req, HCI_OP_LE_READ_ADV_TX_POWER, 0, NULL);
768 }
769
Marcel Holtmanna9f60682014-12-20 16:28:39 +0100770 if (hdev->le_features[0] & HCI_LE_DATA_LEN_EXT) {
771 /* Read LE Maximum Data Length */
772 hci_req_add(req, HCI_OP_LE_READ_MAX_DATA_LEN, 0, NULL);
773
774 /* Read LE Suggested Default Data Length */
775 hci_req_add(req, HCI_OP_LE_READ_DEF_DATA_LEN, 0, NULL);
776 }
777
Johan Hedberg42c6b122013-03-05 20:37:49 +0200778 hci_set_le_support(req);
Andre Guedes9193c6e2014-07-01 18:10:09 -0300779 }
Johan Hedbergd2c5d772013-04-17 15:00:52 +0300780
781 /* Read features beyond page 1 if available */
782 for (p = 2; p < HCI_MAX_PAGES && p <= hdev->max_page; p++) {
783 struct hci_cp_read_local_ext_features cp;
784
785 cp.page = p;
786 hci_req_add(req, HCI_OP_READ_LOCAL_EXT_FEATURES,
787 sizeof(cp), &cp);
788 }
Johan Hedberg2177bab2013-03-05 20:37:43 +0200789}
790
Johan Hedberg5d4e7e82013-09-13 11:40:01 +0300791static void hci_init4_req(struct hci_request *req, unsigned long opt)
792{
793 struct hci_dev *hdev = req->hdev;
794
Marcel Holtmann36f260c2015-01-12 22:47:22 -0800795 /* Some Broadcom based Bluetooth controllers do not support the
796 * Delete Stored Link Key command. They are clearly indicating its
797 * absence in the bit mask of supported commands.
798 *
799 * Check the supported commands and only if the the command is marked
800 * as supported send it. If not supported assume that the controller
801 * does not have actual support for stored link keys which makes this
802 * command redundant anyway.
803 *
804 * Some controllers indicate that they support handling deleting
805 * stored link keys, but they don't. The quirk lets a driver
806 * just disable this command.
807 */
808 if (hdev->commands[6] & 0x80 &&
809 !test_bit(HCI_QUIRK_BROKEN_STORED_LINK_KEY, &hdev->quirks)) {
810 struct hci_cp_delete_stored_link_key cp;
811
812 bacpy(&cp.bdaddr, BDADDR_ANY);
813 cp.delete_all = 0x01;
814 hci_req_add(req, HCI_OP_DELETE_STORED_LINK_KEY,
815 sizeof(cp), &cp);
816 }
817
Johan Hedbergd62e6d62013-09-13 11:40:02 +0300818 /* Set event mask page 2 if the HCI command for it is supported */
819 if (hdev->commands[22] & 0x04)
820 hci_set_event_mask_page_2(req);
821
Marcel Holtmann109e3192014-07-23 19:24:56 +0200822 /* Read local codec list if the HCI command is supported */
823 if (hdev->commands[29] & 0x20)
824 hci_req_add(req, HCI_OP_READ_LOCAL_CODECS, 0, NULL);
825
Marcel Holtmannf4fe73e2014-07-23 19:24:57 +0200826 /* Get MWS transport configuration if the HCI command is supported */
827 if (hdev->commands[30] & 0x08)
828 hci_req_add(req, HCI_OP_GET_MWS_TRANSPORT_CONFIG, 0, NULL);
829
Johan Hedberg5d4e7e82013-09-13 11:40:01 +0300830 /* Check for Synchronization Train support */
Marcel Holtmann53b834d22013-12-08 11:55:33 -0800831 if (lmp_sync_train_capable(hdev))
Johan Hedberg5d4e7e82013-09-13 11:40:01 +0300832 hci_req_add(req, HCI_OP_READ_SYNC_TRAIN_PARAMS, 0, NULL);
Marcel Holtmanna6d0d692014-01-10 02:07:24 -0800833
834 /* Enable Secure Connections if supported and configured */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -0700835 if (hci_dev_test_flag(hdev, HCI_SSP_ENABLED) &&
Marcel Holtmann574ea3c2015-01-22 11:15:20 -0800836 bredr_sc_enabled(hdev)) {
Marcel Holtmanna6d0d692014-01-10 02:07:24 -0800837 u8 support = 0x01;
Marcel Holtmann574ea3c2015-01-22 11:15:20 -0800838
Marcel Holtmanna6d0d692014-01-10 02:07:24 -0800839 hci_req_add(req, HCI_OP_WRITE_SC_SUPPORT,
840 sizeof(support), &support);
841 }
Johan Hedberg5d4e7e82013-09-13 11:40:01 +0300842}
843
Johan Hedberg2177bab2013-03-05 20:37:43 +0200844static int __hci_init(struct hci_dev *hdev)
845{
846 int err;
847
848 err = __hci_req_sync(hdev, hci_init1_req, 0, HCI_INIT_TIMEOUT);
849 if (err < 0)
850 return err;
851
Marcel Holtmann4b4148e2013-10-19 07:09:12 -0700852 /* The Device Under Test (DUT) mode is special and available for
853 * all controller types. So just create it early on.
854 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -0700855 if (hci_dev_test_flag(hdev, HCI_SETUP)) {
Marcel Holtmann4b4148e2013-10-19 07:09:12 -0700856 debugfs_create_file("dut_mode", 0644, hdev->debugfs, hdev,
857 &dut_mode_fops);
858 }
859
Johan Hedberg2177bab2013-03-05 20:37:43 +0200860 err = __hci_req_sync(hdev, hci_init2_req, 0, HCI_INIT_TIMEOUT);
861 if (err < 0)
862 return err;
863
Johan Hedberg0af801b2015-02-17 15:05:21 +0200864 /* HCI_BREDR covers both single-mode LE, BR/EDR and dual-mode
865 * BR/EDR/LE type controllers. AMP controllers only need the
866 * first two stages of init.
867 */
868 if (hdev->dev_type != HCI_BREDR)
869 return 0;
870
Johan Hedberg5d4e7e82013-09-13 11:40:01 +0300871 err = __hci_req_sync(hdev, hci_init3_req, 0, HCI_INIT_TIMEOUT);
872 if (err < 0)
873 return err;
874
Marcel Holtmannbaf27f62013-10-16 03:28:55 -0700875 err = __hci_req_sync(hdev, hci_init4_req, 0, HCI_INIT_TIMEOUT);
876 if (err < 0)
877 return err;
878
Marcel Holtmannec6cef92015-01-01 02:05:16 -0800879 /* This function is only called when the controller is actually in
880 * configured state. When the controller is marked as unconfigured,
881 * this initialization procedure is not run.
882 *
883 * It means that it is possible that a controller runs through its
884 * setup phase and then discovers missing settings. If that is the
885 * case, then this function will not be called. It then will only
886 * be called during the config phase.
887 *
888 * So only when in setup phase or config phase, create the debugfs
889 * entries and register the SMP channels.
Marcel Holtmannbaf27f62013-10-16 03:28:55 -0700890 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -0700891 if (!hci_dev_test_flag(hdev, HCI_SETUP) &&
892 !hci_dev_test_flag(hdev, HCI_CONFIG))
Marcel Holtmannbaf27f62013-10-16 03:28:55 -0700893 return 0;
894
Marcel Holtmann60c5f5f2014-12-20 16:05:13 +0100895 hci_debugfs_create_common(hdev);
896
Marcel Holtmann71c3b602014-12-20 16:05:15 +0100897 if (lmp_bredr_capable(hdev))
Marcel Holtmann60c5f5f2014-12-20 16:05:13 +0100898 hci_debugfs_create_bredr(hdev);
Marcel Holtmann2bfa3532013-10-17 19:16:02 -0700899
Marcel Holtmann162a3ba2015-01-14 15:43:11 -0800900 if (lmp_le_capable(hdev))
Marcel Holtmann60c5f5f2014-12-20 16:05:13 +0100901 hci_debugfs_create_le(hdev);
Marcel Holtmanne7b8fc92013-10-17 11:45:09 -0700902
Marcel Holtmannbaf27f62013-10-16 03:28:55 -0700903 return 0;
Johan Hedberg2177bab2013-03-05 20:37:43 +0200904}
905
Marcel Holtmann0ebca7d2014-07-05 10:48:02 +0200906static void hci_init0_req(struct hci_request *req, unsigned long opt)
907{
908 struct hci_dev *hdev = req->hdev;
909
910 BT_DBG("%s %ld", hdev->name, opt);
911
912 /* Reset */
913 if (!test_bit(HCI_QUIRK_RESET_ON_CLOSE, &hdev->quirks))
914 hci_reset_req(req, 0);
915
916 /* Read Local Version */
917 hci_req_add(req, HCI_OP_READ_LOCAL_VERSION, 0, NULL);
918
919 /* Read BD Address */
920 if (hdev->set_bdaddr)
921 hci_req_add(req, HCI_OP_READ_BD_ADDR, 0, NULL);
922}
923
924static int __hci_unconf_init(struct hci_dev *hdev)
925{
926 int err;
927
Marcel Holtmanncc78b442014-07-06 13:43:20 +0200928 if (test_bit(HCI_QUIRK_RAW_DEVICE, &hdev->quirks))
929 return 0;
930
Marcel Holtmann0ebca7d2014-07-05 10:48:02 +0200931 err = __hci_req_sync(hdev, hci_init0_req, 0, HCI_INIT_TIMEOUT);
932 if (err < 0)
933 return err;
934
935 return 0;
936}
937
Johan Hedberg42c6b122013-03-05 20:37:49 +0200938static void hci_scan_req(struct hci_request *req, unsigned long opt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700939{
940 __u8 scan = opt;
941
Johan Hedberg42c6b122013-03-05 20:37:49 +0200942 BT_DBG("%s %x", req->hdev->name, scan);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700943
944 /* Inquiry and Page scans */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200945 hci_req_add(req, HCI_OP_WRITE_SCAN_ENABLE, 1, &scan);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700946}
947
Johan Hedberg42c6b122013-03-05 20:37:49 +0200948static void hci_auth_req(struct hci_request *req, unsigned long opt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700949{
950 __u8 auth = opt;
951
Johan Hedberg42c6b122013-03-05 20:37:49 +0200952 BT_DBG("%s %x", req->hdev->name, auth);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700953
954 /* Authentication */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200955 hci_req_add(req, HCI_OP_WRITE_AUTH_ENABLE, 1, &auth);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700956}
957
Johan Hedberg42c6b122013-03-05 20:37:49 +0200958static void hci_encrypt_req(struct hci_request *req, unsigned long opt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700959{
960 __u8 encrypt = opt;
961
Johan Hedberg42c6b122013-03-05 20:37:49 +0200962 BT_DBG("%s %x", req->hdev->name, encrypt);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700963
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200964 /* Encryption */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200965 hci_req_add(req, HCI_OP_WRITE_ENCRYPT_MODE, 1, &encrypt);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700966}
967
Johan Hedberg42c6b122013-03-05 20:37:49 +0200968static void hci_linkpol_req(struct hci_request *req, unsigned long opt)
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200969{
970 __le16 policy = cpu_to_le16(opt);
971
Johan Hedberg42c6b122013-03-05 20:37:49 +0200972 BT_DBG("%s %x", req->hdev->name, policy);
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200973
974 /* Default link policy */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200975 hci_req_add(req, HCI_OP_WRITE_DEF_LINK_POLICY, 2, &policy);
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200976}
977
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900978/* Get HCI device by index.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700979 * Device is held on return. */
980struct hci_dev *hci_dev_get(int index)
981{
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200982 struct hci_dev *hdev = NULL, *d;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700983
984 BT_DBG("%d", index);
985
986 if (index < 0)
987 return NULL;
988
989 read_lock(&hci_dev_list_lock);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200990 list_for_each_entry(d, &hci_dev_list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700991 if (d->id == index) {
992 hdev = hci_dev_hold(d);
993 break;
994 }
995 }
996 read_unlock(&hci_dev_list_lock);
997 return hdev;
998}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700999
1000/* ---- Inquiry support ---- */
Johan Hedbergff9ef572012-01-04 14:23:45 +02001001
Johan Hedberg30dc78e2012-01-04 15:44:20 +02001002bool hci_discovery_active(struct hci_dev *hdev)
1003{
1004 struct discovery_state *discov = &hdev->discovery;
1005
Andre Guedes6fbe1952012-02-03 17:47:58 -03001006 switch (discov->state) {
Andre Guedes343f9352012-02-17 20:39:37 -03001007 case DISCOVERY_FINDING:
Andre Guedes6fbe1952012-02-03 17:47:58 -03001008 case DISCOVERY_RESOLVING:
Johan Hedberg30dc78e2012-01-04 15:44:20 +02001009 return true;
1010
Andre Guedes6fbe1952012-02-03 17:47:58 -03001011 default:
1012 return false;
1013 }
Johan Hedberg30dc78e2012-01-04 15:44:20 +02001014}
1015
Johan Hedbergff9ef572012-01-04 14:23:45 +02001016void hci_discovery_set_state(struct hci_dev *hdev, int state)
1017{
Johan Hedbergbb3e0a32014-07-07 13:24:58 +03001018 int old_state = hdev->discovery.state;
1019
Johan Hedbergff9ef572012-01-04 14:23:45 +02001020 BT_DBG("%s state %u -> %u", hdev->name, hdev->discovery.state, state);
1021
Johan Hedbergbb3e0a32014-07-07 13:24:58 +03001022 if (old_state == state)
Johan Hedbergff9ef572012-01-04 14:23:45 +02001023 return;
1024
Johan Hedbergbb3e0a32014-07-07 13:24:58 +03001025 hdev->discovery.state = state;
1026
Johan Hedbergff9ef572012-01-04 14:23:45 +02001027 switch (state) {
1028 case DISCOVERY_STOPPED:
Andre Guedesc54c3862014-02-26 20:21:50 -03001029 hci_update_background_scan(hdev);
1030
Johan Hedbergbb3e0a32014-07-07 13:24:58 +03001031 if (old_state != DISCOVERY_STARTING)
Andre Guedes7b99b652012-02-13 15:41:02 -03001032 mgmt_discovering(hdev, 0);
Johan Hedbergff9ef572012-01-04 14:23:45 +02001033 break;
1034 case DISCOVERY_STARTING:
1035 break;
Andre Guedes343f9352012-02-17 20:39:37 -03001036 case DISCOVERY_FINDING:
Johan Hedbergff9ef572012-01-04 14:23:45 +02001037 mgmt_discovering(hdev, 1);
1038 break;
Johan Hedberg30dc78e2012-01-04 15:44:20 +02001039 case DISCOVERY_RESOLVING:
1040 break;
Johan Hedbergff9ef572012-01-04 14:23:45 +02001041 case DISCOVERY_STOPPING:
1042 break;
1043 }
Johan Hedbergff9ef572012-01-04 14:23:45 +02001044}
1045
Andre Guedes1f9b9a52013-04-30 15:29:27 -03001046void hci_inquiry_cache_flush(struct hci_dev *hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001047{
Johan Hedberg30883512012-01-04 14:16:21 +02001048 struct discovery_state *cache = &hdev->discovery;
Johan Hedbergb57c1a52012-01-03 16:03:00 +02001049 struct inquiry_entry *p, *n;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001050
Johan Hedberg561aafb2012-01-04 13:31:59 +02001051 list_for_each_entry_safe(p, n, &cache->all, all) {
1052 list_del(&p->all);
Johan Hedbergb57c1a52012-01-03 16:03:00 +02001053 kfree(p);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001054 }
Johan Hedberg561aafb2012-01-04 13:31:59 +02001055
1056 INIT_LIST_HEAD(&cache->unknown);
1057 INIT_LIST_HEAD(&cache->resolve);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001058}
1059
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03001060struct inquiry_entry *hci_inquiry_cache_lookup(struct hci_dev *hdev,
1061 bdaddr_t *bdaddr)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001062{
Johan Hedberg30883512012-01-04 14:16:21 +02001063 struct discovery_state *cache = &hdev->discovery;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001064 struct inquiry_entry *e;
1065
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03001066 BT_DBG("cache %p, %pMR", cache, bdaddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001067
Johan Hedberg561aafb2012-01-04 13:31:59 +02001068 list_for_each_entry(e, &cache->all, all) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001069 if (!bacmp(&e->data.bdaddr, bdaddr))
Johan Hedbergb57c1a52012-01-03 16:03:00 +02001070 return e;
1071 }
1072
1073 return NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001074}
1075
Johan Hedberg561aafb2012-01-04 13:31:59 +02001076struct inquiry_entry *hci_inquiry_cache_lookup_unknown(struct hci_dev *hdev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001077 bdaddr_t *bdaddr)
Johan Hedberg561aafb2012-01-04 13:31:59 +02001078{
Johan Hedberg30883512012-01-04 14:16:21 +02001079 struct discovery_state *cache = &hdev->discovery;
Johan Hedberg561aafb2012-01-04 13:31:59 +02001080 struct inquiry_entry *e;
1081
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03001082 BT_DBG("cache %p, %pMR", cache, bdaddr);
Johan Hedberg561aafb2012-01-04 13:31:59 +02001083
1084 list_for_each_entry(e, &cache->unknown, list) {
1085 if (!bacmp(&e->data.bdaddr, bdaddr))
1086 return e;
1087 }
1088
1089 return NULL;
1090}
1091
Johan Hedberg30dc78e2012-01-04 15:44:20 +02001092struct inquiry_entry *hci_inquiry_cache_lookup_resolve(struct hci_dev *hdev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001093 bdaddr_t *bdaddr,
1094 int state)
Johan Hedberg30dc78e2012-01-04 15:44:20 +02001095{
1096 struct discovery_state *cache = &hdev->discovery;
1097 struct inquiry_entry *e;
1098
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03001099 BT_DBG("cache %p bdaddr %pMR state %d", cache, bdaddr, state);
Johan Hedberg30dc78e2012-01-04 15:44:20 +02001100
1101 list_for_each_entry(e, &cache->resolve, list) {
1102 if (!bacmp(bdaddr, BDADDR_ANY) && e->name_state == state)
1103 return e;
1104 if (!bacmp(&e->data.bdaddr, bdaddr))
1105 return e;
1106 }
1107
1108 return NULL;
1109}
1110
Johan Hedberga3d4e202012-01-09 00:53:02 +02001111void hci_inquiry_cache_update_resolve(struct hci_dev *hdev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001112 struct inquiry_entry *ie)
Johan Hedberga3d4e202012-01-09 00:53:02 +02001113{
1114 struct discovery_state *cache = &hdev->discovery;
1115 struct list_head *pos = &cache->resolve;
1116 struct inquiry_entry *p;
1117
1118 list_del(&ie->list);
1119
1120 list_for_each_entry(p, &cache->resolve, list) {
1121 if (p->name_state != NAME_PENDING &&
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03001122 abs(p->data.rssi) >= abs(ie->data.rssi))
Johan Hedberga3d4e202012-01-09 00:53:02 +02001123 break;
1124 pos = &p->list;
1125 }
1126
1127 list_add(&ie->list, pos);
1128}
1129
Marcel Holtmannaf589252014-07-01 14:11:20 +02001130u32 hci_inquiry_cache_update(struct hci_dev *hdev, struct inquiry_data *data,
1131 bool name_known)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001132{
Johan Hedberg30883512012-01-04 14:16:21 +02001133 struct discovery_state *cache = &hdev->discovery;
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001134 struct inquiry_entry *ie;
Marcel Holtmannaf589252014-07-01 14:11:20 +02001135 u32 flags = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001136
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03001137 BT_DBG("cache %p, %pMR", cache, &data->bdaddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001138
Johan Hedberg6928a922014-10-26 20:46:09 +01001139 hci_remove_remote_oob_data(hdev, &data->bdaddr, BDADDR_BREDR);
Szymon Janc2b2fec42012-11-20 11:38:54 +01001140
Marcel Holtmannaf589252014-07-01 14:11:20 +02001141 if (!data->ssp_mode)
1142 flags |= MGMT_DEV_FOUND_LEGACY_PAIRING;
Johan Hedberg388fc8f2012-02-23 00:38:59 +02001143
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001144 ie = hci_inquiry_cache_lookup(hdev, &data->bdaddr);
Johan Hedberga3d4e202012-01-09 00:53:02 +02001145 if (ie) {
Marcel Holtmannaf589252014-07-01 14:11:20 +02001146 if (!ie->data.ssp_mode)
1147 flags |= MGMT_DEV_FOUND_LEGACY_PAIRING;
Johan Hedberg388fc8f2012-02-23 00:38:59 +02001148
Johan Hedberga3d4e202012-01-09 00:53:02 +02001149 if (ie->name_state == NAME_NEEDED &&
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03001150 data->rssi != ie->data.rssi) {
Johan Hedberga3d4e202012-01-09 00:53:02 +02001151 ie->data.rssi = data->rssi;
1152 hci_inquiry_cache_update_resolve(hdev, ie);
1153 }
1154
Johan Hedberg561aafb2012-01-04 13:31:59 +02001155 goto update;
Johan Hedberga3d4e202012-01-09 00:53:02 +02001156 }
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001157
Johan Hedberg561aafb2012-01-04 13:31:59 +02001158 /* Entry not in the cache. Add new one. */
Johan Hedberg27f70f32014-07-21 10:50:06 +03001159 ie = kzalloc(sizeof(*ie), GFP_KERNEL);
Marcel Holtmannaf589252014-07-01 14:11:20 +02001160 if (!ie) {
1161 flags |= MGMT_DEV_FOUND_CONFIRM_NAME;
1162 goto done;
1163 }
Johan Hedberg561aafb2012-01-04 13:31:59 +02001164
1165 list_add(&ie->all, &cache->all);
1166
1167 if (name_known) {
1168 ie->name_state = NAME_KNOWN;
1169 } else {
1170 ie->name_state = NAME_NOT_KNOWN;
1171 list_add(&ie->list, &cache->unknown);
1172 }
1173
1174update:
1175 if (name_known && ie->name_state != NAME_KNOWN &&
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03001176 ie->name_state != NAME_PENDING) {
Johan Hedberg561aafb2012-01-04 13:31:59 +02001177 ie->name_state = NAME_KNOWN;
1178 list_del(&ie->list);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001179 }
1180
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001181 memcpy(&ie->data, data, sizeof(*data));
1182 ie->timestamp = jiffies;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001183 cache->timestamp = jiffies;
Johan Hedberg31754052012-01-04 13:39:52 +02001184
1185 if (ie->name_state == NAME_NOT_KNOWN)
Marcel Holtmannaf589252014-07-01 14:11:20 +02001186 flags |= MGMT_DEV_FOUND_CONFIRM_NAME;
Johan Hedberg31754052012-01-04 13:39:52 +02001187
Marcel Holtmannaf589252014-07-01 14:11:20 +02001188done:
1189 return flags;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001190}
1191
1192static int inquiry_cache_dump(struct hci_dev *hdev, int num, __u8 *buf)
1193{
Johan Hedberg30883512012-01-04 14:16:21 +02001194 struct discovery_state *cache = &hdev->discovery;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001195 struct inquiry_info *info = (struct inquiry_info *) buf;
1196 struct inquiry_entry *e;
1197 int copied = 0;
1198
Johan Hedberg561aafb2012-01-04 13:31:59 +02001199 list_for_each_entry(e, &cache->all, all) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001200 struct inquiry_data *data = &e->data;
Johan Hedbergb57c1a52012-01-03 16:03:00 +02001201
1202 if (copied >= num)
1203 break;
1204
Linus Torvalds1da177e2005-04-16 15:20:36 -07001205 bacpy(&info->bdaddr, &data->bdaddr);
1206 info->pscan_rep_mode = data->pscan_rep_mode;
1207 info->pscan_period_mode = data->pscan_period_mode;
1208 info->pscan_mode = data->pscan_mode;
1209 memcpy(info->dev_class, data->dev_class, 3);
1210 info->clock_offset = data->clock_offset;
Johan Hedbergb57c1a52012-01-03 16:03:00 +02001211
Linus Torvalds1da177e2005-04-16 15:20:36 -07001212 info++;
Johan Hedbergb57c1a52012-01-03 16:03:00 +02001213 copied++;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001214 }
1215
1216 BT_DBG("cache %p, copied %d", cache, copied);
1217 return copied;
1218}
1219
Johan Hedberg42c6b122013-03-05 20:37:49 +02001220static void hci_inq_req(struct hci_request *req, unsigned long opt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001221{
1222 struct hci_inquiry_req *ir = (struct hci_inquiry_req *) opt;
Johan Hedberg42c6b122013-03-05 20:37:49 +02001223 struct hci_dev *hdev = req->hdev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001224 struct hci_cp_inquiry cp;
1225
1226 BT_DBG("%s", hdev->name);
1227
1228 if (test_bit(HCI_INQUIRY, &hdev->flags))
1229 return;
1230
1231 /* Start Inquiry */
1232 memcpy(&cp.lap, &ir->lap, 3);
1233 cp.length = ir->length;
1234 cp.num_rsp = ir->num_rsp;
Johan Hedberg42c6b122013-03-05 20:37:49 +02001235 hci_req_add(req, HCI_OP_INQUIRY, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001236}
1237
1238int hci_inquiry(void __user *arg)
1239{
1240 __u8 __user *ptr = arg;
1241 struct hci_inquiry_req ir;
1242 struct hci_dev *hdev;
1243 int err = 0, do_inquiry = 0, max_rsp;
1244 long timeo;
1245 __u8 *buf;
1246
1247 if (copy_from_user(&ir, ptr, sizeof(ir)))
1248 return -EFAULT;
1249
Andrei Emeltchenko5a08ecc2011-01-11 17:20:20 +02001250 hdev = hci_dev_get(ir.dev_id);
1251 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001252 return -ENODEV;
1253
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001254 if (hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07001255 err = -EBUSY;
1256 goto done;
1257 }
1258
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001259 if (hci_dev_test_flag(hdev, HCI_UNCONFIGURED)) {
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001260 err = -EOPNOTSUPP;
1261 goto done;
1262 }
1263
Marcel Holtmann5b69bef52013-10-10 10:02:08 -07001264 if (hdev->dev_type != HCI_BREDR) {
1265 err = -EOPNOTSUPP;
1266 goto done;
1267 }
1268
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001269 if (!hci_dev_test_flag(hdev, HCI_BREDR_ENABLED)) {
Johan Hedberg56f87902013-10-02 13:43:13 +03001270 err = -EOPNOTSUPP;
1271 goto done;
1272 }
1273
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001274 hci_dev_lock(hdev);
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001275 if (inquiry_cache_age(hdev) > INQUIRY_CACHE_AGE_MAX ||
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03001276 inquiry_cache_empty(hdev) || ir.flags & IREQ_CACHE_FLUSH) {
Andre Guedes1f9b9a52013-04-30 15:29:27 -03001277 hci_inquiry_cache_flush(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001278 do_inquiry = 1;
1279 }
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001280 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001281
Marcel Holtmann04837f62006-07-03 10:02:33 +02001282 timeo = ir.length * msecs_to_jiffies(2000);
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001283
1284 if (do_inquiry) {
Johan Hedberg01178cd2013-03-05 20:37:41 +02001285 err = hci_req_sync(hdev, hci_inq_req, (unsigned long) &ir,
1286 timeo);
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001287 if (err < 0)
1288 goto done;
Andre Guedes3e13fa12013-03-27 20:04:56 -03001289
1290 /* Wait until Inquiry procedure finishes (HCI_INQUIRY flag is
1291 * cleared). If it is interrupted by a signal, return -EINTR.
1292 */
NeilBrown74316202014-07-07 15:16:04 +10001293 if (wait_on_bit(&hdev->flags, HCI_INQUIRY,
Andre Guedes3e13fa12013-03-27 20:04:56 -03001294 TASK_INTERRUPTIBLE))
1295 return -EINTR;
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001296 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001297
Gustavo Padovan8fc9ced2012-05-23 04:04:21 -03001298 /* for unlimited number of responses we will use buffer with
1299 * 255 entries
1300 */
Linus Torvalds1da177e2005-04-16 15:20:36 -07001301 max_rsp = (ir.num_rsp == 0) ? 255 : ir.num_rsp;
1302
1303 /* cache_dump can't sleep. Therefore we allocate temp buffer and then
1304 * copy it to the user space.
1305 */
Szymon Janc01df8c32011-02-17 16:46:47 +01001306 buf = kmalloc(sizeof(struct inquiry_info) * max_rsp, GFP_KERNEL);
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001307 if (!buf) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001308 err = -ENOMEM;
1309 goto done;
1310 }
1311
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001312 hci_dev_lock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001313 ir.num_rsp = inquiry_cache_dump(hdev, max_rsp, buf);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001314 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001315
1316 BT_DBG("num_rsp %d", ir.num_rsp);
1317
1318 if (!copy_to_user(ptr, &ir, sizeof(ir))) {
1319 ptr += sizeof(ir);
1320 if (copy_to_user(ptr, buf, sizeof(struct inquiry_info) *
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03001321 ir.num_rsp))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001322 err = -EFAULT;
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001323 } else
Linus Torvalds1da177e2005-04-16 15:20:36 -07001324 err = -EFAULT;
1325
1326 kfree(buf);
1327
1328done:
1329 hci_dev_put(hdev);
1330 return err;
1331}
1332
Johan Hedbergcbed0ca2013-10-01 22:44:49 +03001333static int hci_dev_do_open(struct hci_dev *hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001334{
Linus Torvalds1da177e2005-04-16 15:20:36 -07001335 int ret = 0;
1336
Linus Torvalds1da177e2005-04-16 15:20:36 -07001337 BT_DBG("%s %p", hdev->name, hdev);
1338
1339 hci_req_lock(hdev);
1340
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001341 if (hci_dev_test_flag(hdev, HCI_UNREGISTER)) {
Johan Hovold94324962012-03-15 14:48:41 +01001342 ret = -ENODEV;
1343 goto done;
1344 }
1345
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001346 if (!hci_dev_test_flag(hdev, HCI_SETUP) &&
1347 !hci_dev_test_flag(hdev, HCI_CONFIG)) {
Marcel Holtmanna5c8f272013-10-06 01:08:57 -07001348 /* Check for rfkill but allow the HCI setup stage to
1349 * proceed (which in itself doesn't cause any RF activity).
1350 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001351 if (hci_dev_test_flag(hdev, HCI_RFKILLED)) {
Marcel Holtmanna5c8f272013-10-06 01:08:57 -07001352 ret = -ERFKILL;
1353 goto done;
1354 }
1355
1356 /* Check for valid public address or a configured static
1357 * random adddress, but let the HCI setup proceed to
1358 * be able to determine if there is a public address
1359 * or not.
1360 *
Marcel Holtmannc6beca02014-02-17 09:21:19 -08001361 * In case of user channel usage, it is not important
1362 * if a public address or static random address is
1363 * available.
1364 *
Marcel Holtmanna5c8f272013-10-06 01:08:57 -07001365 * This check is only valid for BR/EDR controllers
1366 * since AMP controllers do not have an address.
1367 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001368 if (!hci_dev_test_flag(hdev, HCI_USER_CHANNEL) &&
Marcel Holtmannc6beca02014-02-17 09:21:19 -08001369 hdev->dev_type == HCI_BREDR &&
Marcel Holtmanna5c8f272013-10-06 01:08:57 -07001370 !bacmp(&hdev->bdaddr, BDADDR_ANY) &&
1371 !bacmp(&hdev->static_addr, BDADDR_ANY)) {
1372 ret = -EADDRNOTAVAIL;
1373 goto done;
1374 }
Marcel Holtmann611b30f2009-06-08 14:41:38 +02001375 }
1376
Linus Torvalds1da177e2005-04-16 15:20:36 -07001377 if (test_bit(HCI_UP, &hdev->flags)) {
1378 ret = -EALREADY;
1379 goto done;
1380 }
1381
Linus Torvalds1da177e2005-04-16 15:20:36 -07001382 if (hdev->open(hdev)) {
1383 ret = -EIO;
1384 goto done;
1385 }
1386
Marcel Holtmannf41c70c2012-11-12 14:02:14 +09001387 atomic_set(&hdev->cmd_cnt, 1);
1388 set_bit(HCI_INIT, &hdev->flags);
1389
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001390 if (hci_dev_test_flag(hdev, HCI_SETUP)) {
Marcel Holtmannaf202f82014-07-04 17:23:34 +02001391 if (hdev->setup)
1392 ret = hdev->setup(hdev);
Marcel Holtmannf41c70c2012-11-12 14:02:14 +09001393
Marcel Holtmannaf202f82014-07-04 17:23:34 +02001394 /* The transport driver can set these quirks before
1395 * creating the HCI device or in its setup callback.
1396 *
1397 * In case any of them is set, the controller has to
1398 * start up as unconfigured.
1399 */
Marcel Holtmanneb1904f2014-07-04 17:23:33 +02001400 if (test_bit(HCI_QUIRK_EXTERNAL_CONFIG, &hdev->quirks) ||
1401 test_bit(HCI_QUIRK_INVALID_BDADDR, &hdev->quirks))
Marcel Holtmanna1536da2015-03-13 02:11:01 -07001402 hci_dev_set_flag(hdev, HCI_UNCONFIGURED);
Marcel Holtmann0ebca7d2014-07-05 10:48:02 +02001403
1404 /* For an unconfigured controller it is required to
1405 * read at least the version information provided by
1406 * the Read Local Version Information command.
1407 *
1408 * If the set_bdaddr driver callback is provided, then
1409 * also the original Bluetooth public device address
1410 * will be read using the Read BD Address command.
1411 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001412 if (hci_dev_test_flag(hdev, HCI_UNCONFIGURED))
Marcel Holtmann0ebca7d2014-07-05 10:48:02 +02001413 ret = __hci_unconf_init(hdev);
Marcel Holtmann89bc22d2014-07-04 16:54:37 +02001414 }
1415
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001416 if (hci_dev_test_flag(hdev, HCI_CONFIG)) {
Marcel Holtmann9713c172014-07-06 12:11:15 +02001417 /* If public address change is configured, ensure that
1418 * the address gets programmed. If the driver does not
1419 * support changing the public address, fail the power
1420 * on procedure.
1421 */
1422 if (bacmp(&hdev->public_addr, BDADDR_ANY) &&
1423 hdev->set_bdaddr)
Marcel Holtmann24c457e2014-07-02 00:53:47 +02001424 ret = hdev->set_bdaddr(hdev, &hdev->public_addr);
1425 else
1426 ret = -EADDRNOTAVAIL;
1427 }
Marcel Holtmannf41c70c2012-11-12 14:02:14 +09001428
1429 if (!ret) {
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001430 if (!hci_dev_test_flag(hdev, HCI_UNCONFIGURED) &&
1431 !hci_dev_test_flag(hdev, HCI_USER_CHANNEL))
Marcel Holtmannf41c70c2012-11-12 14:02:14 +09001432 ret = __hci_init(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001433 }
1434
Marcel Holtmannf41c70c2012-11-12 14:02:14 +09001435 clear_bit(HCI_INIT, &hdev->flags);
1436
Linus Torvalds1da177e2005-04-16 15:20:36 -07001437 if (!ret) {
1438 hci_dev_hold(hdev);
Marcel Holtmanna1536da2015-03-13 02:11:01 -07001439 hci_dev_set_flag(hdev, HCI_RPA_EXPIRED);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001440 set_bit(HCI_UP, &hdev->flags);
1441 hci_notify(hdev, HCI_DEV_UP);
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001442 if (!hci_dev_test_flag(hdev, HCI_SETUP) &&
1443 !hci_dev_test_flag(hdev, HCI_CONFIG) &&
1444 !hci_dev_test_flag(hdev, HCI_UNCONFIGURED) &&
1445 !hci_dev_test_flag(hdev, HCI_USER_CHANNEL) &&
Marcel Holtmann1514b892013-10-06 08:25:01 -07001446 hdev->dev_type == HCI_BREDR) {
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001447 hci_dev_lock(hdev);
Johan Hedberg744cf192011-11-08 20:40:14 +02001448 mgmt_powered(hdev, 1);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001449 hci_dev_unlock(hdev);
Johan Hedberg56e5cb82011-11-08 20:40:16 +02001450 }
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001451 } else {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001452 /* Init failed, cleanup */
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02001453 flush_work(&hdev->tx_work);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02001454 flush_work(&hdev->cmd_work);
Marcel Holtmannb78752c2010-08-08 23:06:53 -04001455 flush_work(&hdev->rx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001456
1457 skb_queue_purge(&hdev->cmd_q);
1458 skb_queue_purge(&hdev->rx_q);
1459
1460 if (hdev->flush)
1461 hdev->flush(hdev);
1462
1463 if (hdev->sent_cmd) {
1464 kfree_skb(hdev->sent_cmd);
1465 hdev->sent_cmd = NULL;
1466 }
1467
1468 hdev->close(hdev);
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001469 hdev->flags &= BIT(HCI_RAW);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001470 }
1471
1472done:
1473 hci_req_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001474 return ret;
1475}
1476
Johan Hedbergcbed0ca2013-10-01 22:44:49 +03001477/* ---- HCI ioctl helpers ---- */
1478
1479int hci_dev_open(__u16 dev)
1480{
1481 struct hci_dev *hdev;
1482 int err;
1483
1484 hdev = hci_dev_get(dev);
1485 if (!hdev)
1486 return -ENODEV;
1487
Marcel Holtmann4a964402014-07-02 19:10:33 +02001488 /* Devices that are marked as unconfigured can only be powered
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001489 * up as user channel. Trying to bring them up as normal devices
1490 * will result into a failure. Only user channel operation is
1491 * possible.
1492 *
1493 * When this function is called for a user channel, the flag
1494 * HCI_USER_CHANNEL will be set first before attempting to
1495 * open the device.
1496 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001497 if (hci_dev_test_flag(hdev, HCI_UNCONFIGURED) &&
1498 !hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001499 err = -EOPNOTSUPP;
1500 goto done;
1501 }
1502
Johan Hedberge1d08f42013-10-01 22:44:50 +03001503 /* We need to ensure that no other power on/off work is pending
1504 * before proceeding to call hci_dev_do_open. This is
1505 * particularly important if the setup procedure has not yet
1506 * completed.
1507 */
Marcel Holtmanna69d8922015-03-13 02:11:05 -07001508 if (hci_dev_test_and_clear_flag(hdev, HCI_AUTO_OFF))
Johan Hedberge1d08f42013-10-01 22:44:50 +03001509 cancel_delayed_work(&hdev->power_off);
1510
Marcel Holtmanna5c8f272013-10-06 01:08:57 -07001511 /* After this call it is guaranteed that the setup procedure
1512 * has finished. This means that error conditions like RFKILL
1513 * or no valid public or static random address apply.
1514 */
Johan Hedberge1d08f42013-10-01 22:44:50 +03001515 flush_workqueue(hdev->req_workqueue);
1516
Marcel Holtmann12aa4f02014-07-10 15:25:22 +02001517 /* For controllers not using the management interface and that
Johan Hedbergb6ae8452014-07-30 09:22:22 +03001518 * are brought up using legacy ioctl, set the HCI_BONDABLE bit
Marcel Holtmann12aa4f02014-07-10 15:25:22 +02001519 * so that pairing works for them. Once the management interface
1520 * is in use this bit will be cleared again and userspace has
1521 * to explicitly enable it.
1522 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001523 if (!hci_dev_test_flag(hdev, HCI_USER_CHANNEL) &&
1524 !hci_dev_test_flag(hdev, HCI_MGMT))
Marcel Holtmanna1536da2015-03-13 02:11:01 -07001525 hci_dev_set_flag(hdev, HCI_BONDABLE);
Marcel Holtmann12aa4f02014-07-10 15:25:22 +02001526
Johan Hedbergcbed0ca2013-10-01 22:44:49 +03001527 err = hci_dev_do_open(hdev);
1528
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001529done:
Johan Hedbergcbed0ca2013-10-01 22:44:49 +03001530 hci_dev_put(hdev);
Johan Hedbergcbed0ca2013-10-01 22:44:49 +03001531 return err;
1532}
1533
Johan Hedbergd7347f32014-07-04 12:37:23 +03001534/* This function requires the caller holds hdev->lock */
1535static void hci_pend_le_actions_clear(struct hci_dev *hdev)
1536{
1537 struct hci_conn_params *p;
1538
Johan Hedbergf161dd42014-08-15 21:06:54 +03001539 list_for_each_entry(p, &hdev->le_conn_params, list) {
1540 if (p->conn) {
1541 hci_conn_drop(p->conn);
Johan Hedbergf8aaf9b2014-08-17 23:28:57 +03001542 hci_conn_put(p->conn);
Johan Hedbergf161dd42014-08-15 21:06:54 +03001543 p->conn = NULL;
1544 }
Johan Hedbergd7347f32014-07-04 12:37:23 +03001545 list_del_init(&p->action);
Johan Hedbergf161dd42014-08-15 21:06:54 +03001546 }
Johan Hedbergd7347f32014-07-04 12:37:23 +03001547
1548 BT_DBG("All LE pending actions cleared");
1549}
1550
Linus Torvalds1da177e2005-04-16 15:20:36 -07001551static int hci_dev_do_close(struct hci_dev *hdev)
1552{
1553 BT_DBG("%s %p", hdev->name, hdev);
1554
Gabriele Mazzottad24d8142015-04-26 20:51:50 +02001555 if (!hci_dev_test_flag(hdev, HCI_UNREGISTER) &&
Loic Poulain867146a2015-06-09 11:46:30 +02001556 !hci_dev_test_flag(hdev, HCI_USER_CHANNEL) &&
Gabriele Mazzottad24d8142015-04-26 20:51:50 +02001557 test_bit(HCI_UP, &hdev->flags)) {
Tedd Ho-Jeong Ana44fecb2015-02-13 09:20:50 -08001558 /* Execute vendor specific shutdown routine */
1559 if (hdev->shutdown)
1560 hdev->shutdown(hdev);
1561 }
1562
Vinicius Costa Gomes78c04c02012-09-14 16:34:46 -03001563 cancel_delayed_work(&hdev->power_off);
1564
Linus Torvalds1da177e2005-04-16 15:20:36 -07001565 hci_req_cancel(hdev, ENODEV);
1566 hci_req_lock(hdev);
1567
1568 if (!test_and_clear_bit(HCI_UP, &hdev->flags)) {
Marcel Holtmann65cc2b42014-06-16 12:30:56 +02001569 cancel_delayed_work_sync(&hdev->cmd_timer);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001570 hci_req_unlock(hdev);
1571 return 0;
1572 }
1573
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02001574 /* Flush RX and TX works */
1575 flush_work(&hdev->tx_work);
Marcel Holtmannb78752c2010-08-08 23:06:53 -04001576 flush_work(&hdev->rx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001577
Johan Hedberg16ab91a2011-11-07 22:16:02 +02001578 if (hdev->discov_timeout > 0) {
Johan Hedberge0f93092011-11-09 01:44:22 +02001579 cancel_delayed_work(&hdev->discov_off);
Johan Hedberg16ab91a2011-11-07 22:16:02 +02001580 hdev->discov_timeout = 0;
Marcel Holtmanna358dc12015-03-13 02:11:02 -07001581 hci_dev_clear_flag(hdev, HCI_DISCOVERABLE);
1582 hci_dev_clear_flag(hdev, HCI_LIMITED_DISCOVERABLE);
Johan Hedberg16ab91a2011-11-07 22:16:02 +02001583 }
1584
Marcel Holtmanna69d8922015-03-13 02:11:05 -07001585 if (hci_dev_test_and_clear_flag(hdev, HCI_SERVICE_CACHE))
Johan Hedberg7d785252011-12-15 00:47:39 +02001586 cancel_delayed_work(&hdev->service_cache);
1587
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03001588 cancel_delayed_work_sync(&hdev->le_scan_disable);
Jakub Pawlowski2d28cfe2015-02-01 23:07:54 -08001589 cancel_delayed_work_sync(&hdev->le_scan_restart);
Johan Hedberg4518bb02014-02-24 20:35:07 +02001590
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001591 if (hci_dev_test_flag(hdev, HCI_MGMT))
Johan Hedberg4518bb02014-02-24 20:35:07 +02001592 cancel_delayed_work_sync(&hdev->rpa_expired);
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03001593
Florian Grandel5d900e42015-06-18 03:16:35 +02001594 if (hdev->adv_instance_timeout) {
1595 cancel_delayed_work_sync(&hdev->adv_instance_expire);
1596 hdev->adv_instance_timeout = 0;
1597 }
1598
Johan Hedberg76727c02014-11-18 09:00:14 +02001599 /* Avoid potential lockdep warnings from the *_flush() calls by
1600 * ensuring the workqueue is empty up front.
1601 */
1602 drain_workqueue(hdev->workqueue);
1603
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001604 hci_dev_lock(hdev);
Johan Hedberg1aeb9c62014-12-11 21:45:46 +02001605
Johan Hedberg8f502f82015-01-28 19:56:02 +02001606 hci_discovery_set_state(hdev, DISCOVERY_STOPPED);
1607
Marcel Holtmanna69d8922015-03-13 02:11:05 -07001608 if (!hci_dev_test_and_clear_flag(hdev, HCI_AUTO_OFF)) {
Johan Hedberg1aeb9c62014-12-11 21:45:46 +02001609 if (hdev->dev_type == HCI_BREDR)
1610 mgmt_powered(hdev, 0);
1611 }
1612
Andre Guedes1f9b9a52013-04-30 15:29:27 -03001613 hci_inquiry_cache_flush(hdev);
Johan Hedbergd7347f32014-07-04 12:37:23 +03001614 hci_pend_le_actions_clear(hdev);
Johan Hedbergf161dd42014-08-15 21:06:54 +03001615 hci_conn_hash_flush(hdev);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001616 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001617
Marcel Holtmann64dae962015-01-28 14:10:28 -08001618 smp_unregister(hdev);
1619
Linus Torvalds1da177e2005-04-16 15:20:36 -07001620 hci_notify(hdev, HCI_DEV_DOWN);
1621
1622 if (hdev->flush)
1623 hdev->flush(hdev);
1624
1625 /* Reset device */
1626 skb_queue_purge(&hdev->cmd_q);
1627 atomic_set(&hdev->cmd_cnt, 1);
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001628 if (!hci_dev_test_flag(hdev, HCI_AUTO_OFF) &&
1629 !hci_dev_test_flag(hdev, HCI_UNCONFIGURED) &&
Szymon Janca6c511c2012-05-23 12:35:46 +02001630 test_bit(HCI_QUIRK_RESET_ON_CLOSE, &hdev->quirks)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001631 set_bit(HCI_INIT, &hdev->flags);
Johan Hedberg01178cd2013-03-05 20:37:41 +02001632 __hci_req_sync(hdev, hci_reset_req, 0, HCI_CMD_TIMEOUT);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001633 clear_bit(HCI_INIT, &hdev->flags);
1634 }
1635
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02001636 /* flush cmd work */
1637 flush_work(&hdev->cmd_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001638
1639 /* Drop queues */
1640 skb_queue_purge(&hdev->rx_q);
1641 skb_queue_purge(&hdev->cmd_q);
1642 skb_queue_purge(&hdev->raw_q);
1643
1644 /* Drop last sent command */
1645 if (hdev->sent_cmd) {
Marcel Holtmann65cc2b42014-06-16 12:30:56 +02001646 cancel_delayed_work_sync(&hdev->cmd_timer);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001647 kfree_skb(hdev->sent_cmd);
1648 hdev->sent_cmd = NULL;
1649 }
1650
1651 /* After this point our queues are empty
1652 * and no tasks are scheduled. */
1653 hdev->close(hdev);
1654
Johan Hedberg35b973c2013-03-15 17:06:59 -05001655 /* Clear flags */
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001656 hdev->flags &= BIT(HCI_RAW);
Marcel Holtmanneacb44d2015-03-13 09:04:17 -07001657 hci_dev_clear_volatile_flags(hdev);
Johan Hedberg35b973c2013-03-15 17:06:59 -05001658
Andrei Emeltchenkoced5c332012-11-28 17:59:42 +02001659 /* Controller radio is available but is currently powered down */
Marcel Holtmann536619e2013-10-05 11:47:45 -07001660 hdev->amp_status = AMP_STATUS_POWERED_DOWN;
Andrei Emeltchenkoced5c332012-11-28 17:59:42 +02001661
Johan Hedberge59fda82012-02-22 18:11:53 +02001662 memset(hdev->eir, 0, sizeof(hdev->eir));
Johan Hedberg09b3c3f2012-02-22 22:01:41 +02001663 memset(hdev->dev_class, 0, sizeof(hdev->dev_class));
Marcel Holtmann7a4cd512014-02-19 19:52:13 -08001664 bacpy(&hdev->random_addr, BDADDR_ANY);
Johan Hedberge59fda82012-02-22 18:11:53 +02001665
Linus Torvalds1da177e2005-04-16 15:20:36 -07001666 hci_req_unlock(hdev);
1667
1668 hci_dev_put(hdev);
1669 return 0;
1670}
1671
1672int hci_dev_close(__u16 dev)
1673{
1674 struct hci_dev *hdev;
1675 int err;
1676
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001677 hdev = hci_dev_get(dev);
1678 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001679 return -ENODEV;
Marcel Holtmann8ee56542012-02-21 12:33:48 +01001680
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001681 if (hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07001682 err = -EBUSY;
1683 goto done;
1684 }
1685
Marcel Holtmanna69d8922015-03-13 02:11:05 -07001686 if (hci_dev_test_and_clear_flag(hdev, HCI_AUTO_OFF))
Marcel Holtmann8ee56542012-02-21 12:33:48 +01001687 cancel_delayed_work(&hdev->power_off);
1688
Linus Torvalds1da177e2005-04-16 15:20:36 -07001689 err = hci_dev_do_close(hdev);
Marcel Holtmann8ee56542012-02-21 12:33:48 +01001690
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07001691done:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001692 hci_dev_put(hdev);
1693 return err;
1694}
1695
Marcel Holtmann5c912492015-01-28 11:53:05 -08001696static int hci_dev_do_reset(struct hci_dev *hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001697{
Marcel Holtmann5c912492015-01-28 11:53:05 -08001698 int ret;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001699
Marcel Holtmann5c912492015-01-28 11:53:05 -08001700 BT_DBG("%s %p", hdev->name, hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001701
1702 hci_req_lock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001703
Linus Torvalds1da177e2005-04-16 15:20:36 -07001704 /* Drop queues */
1705 skb_queue_purge(&hdev->rx_q);
1706 skb_queue_purge(&hdev->cmd_q);
1707
Johan Hedberg76727c02014-11-18 09:00:14 +02001708 /* Avoid potential lockdep warnings from the *_flush() calls by
1709 * ensuring the workqueue is empty up front.
1710 */
1711 drain_workqueue(hdev->workqueue);
1712
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001713 hci_dev_lock(hdev);
Andre Guedes1f9b9a52013-04-30 15:29:27 -03001714 hci_inquiry_cache_flush(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001715 hci_conn_hash_flush(hdev);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001716 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001717
1718 if (hdev->flush)
1719 hdev->flush(hdev);
1720
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001721 atomic_set(&hdev->cmd_cnt, 1);
Ville Tervo6ed58ec2011-02-10 22:38:48 -03001722 hdev->acl_cnt = 0; hdev->sco_cnt = 0; hdev->le_cnt = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001723
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001724 ret = __hci_req_sync(hdev, hci_reset_req, 0, HCI_INIT_TIMEOUT);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001725
Linus Torvalds1da177e2005-04-16 15:20:36 -07001726 hci_req_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001727 return ret;
1728}
1729
Marcel Holtmann5c912492015-01-28 11:53:05 -08001730int hci_dev_reset(__u16 dev)
1731{
1732 struct hci_dev *hdev;
1733 int err;
1734
1735 hdev = hci_dev_get(dev);
1736 if (!hdev)
1737 return -ENODEV;
1738
1739 if (!test_bit(HCI_UP, &hdev->flags)) {
1740 err = -ENETDOWN;
1741 goto done;
1742 }
1743
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001744 if (hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Marcel Holtmann5c912492015-01-28 11:53:05 -08001745 err = -EBUSY;
1746 goto done;
1747 }
1748
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001749 if (hci_dev_test_flag(hdev, HCI_UNCONFIGURED)) {
Marcel Holtmann5c912492015-01-28 11:53:05 -08001750 err = -EOPNOTSUPP;
1751 goto done;
1752 }
1753
1754 err = hci_dev_do_reset(hdev);
1755
1756done:
1757 hci_dev_put(hdev);
1758 return err;
1759}
1760
Linus Torvalds1da177e2005-04-16 15:20:36 -07001761int hci_dev_reset_stat(__u16 dev)
1762{
1763 struct hci_dev *hdev;
1764 int ret = 0;
1765
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001766 hdev = hci_dev_get(dev);
1767 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001768 return -ENODEV;
1769
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001770 if (hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07001771 ret = -EBUSY;
1772 goto done;
1773 }
1774
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001775 if (hci_dev_test_flag(hdev, HCI_UNCONFIGURED)) {
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001776 ret = -EOPNOTSUPP;
1777 goto done;
1778 }
1779
Linus Torvalds1da177e2005-04-16 15:20:36 -07001780 memset(&hdev->stat, 0, sizeof(struct hci_dev_stats));
1781
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07001782done:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001783 hci_dev_put(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001784 return ret;
1785}
1786
Johan Hedberg123abc02014-07-10 12:09:07 +03001787static void hci_update_scan_state(struct hci_dev *hdev, u8 scan)
1788{
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001789 bool conn_changed, discov_changed;
Johan Hedberg123abc02014-07-10 12:09:07 +03001790
1791 BT_DBG("%s scan 0x%02x", hdev->name, scan);
1792
1793 if ((scan & SCAN_PAGE))
Marcel Holtmann238be782015-03-13 02:11:06 -07001794 conn_changed = !hci_dev_test_and_set_flag(hdev,
1795 HCI_CONNECTABLE);
Johan Hedberg123abc02014-07-10 12:09:07 +03001796 else
Marcel Holtmanna69d8922015-03-13 02:11:05 -07001797 conn_changed = hci_dev_test_and_clear_flag(hdev,
1798 HCI_CONNECTABLE);
Johan Hedberg123abc02014-07-10 12:09:07 +03001799
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001800 if ((scan & SCAN_INQUIRY)) {
Marcel Holtmann238be782015-03-13 02:11:06 -07001801 discov_changed = !hci_dev_test_and_set_flag(hdev,
1802 HCI_DISCOVERABLE);
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001803 } else {
Marcel Holtmanna358dc12015-03-13 02:11:02 -07001804 hci_dev_clear_flag(hdev, HCI_LIMITED_DISCOVERABLE);
Marcel Holtmanna69d8922015-03-13 02:11:05 -07001805 discov_changed = hci_dev_test_and_clear_flag(hdev,
1806 HCI_DISCOVERABLE);
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001807 }
1808
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001809 if (!hci_dev_test_flag(hdev, HCI_MGMT))
Johan Hedberg123abc02014-07-10 12:09:07 +03001810 return;
1811
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001812 if (conn_changed || discov_changed) {
1813 /* In case this was disabled through mgmt */
Marcel Holtmanna1536da2015-03-13 02:11:01 -07001814 hci_dev_set_flag(hdev, HCI_BREDR_ENABLED);
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001815
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001816 if (hci_dev_test_flag(hdev, HCI_LE_ENABLED))
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001817 mgmt_update_adv_data(hdev);
1818
Johan Hedberg123abc02014-07-10 12:09:07 +03001819 mgmt_new_settings(hdev);
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001820 }
Johan Hedberg123abc02014-07-10 12:09:07 +03001821}
1822
Linus Torvalds1da177e2005-04-16 15:20:36 -07001823int hci_dev_cmd(unsigned int cmd, void __user *arg)
1824{
1825 struct hci_dev *hdev;
1826 struct hci_dev_req dr;
1827 int err = 0;
1828
1829 if (copy_from_user(&dr, arg, sizeof(dr)))
1830 return -EFAULT;
1831
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001832 hdev = hci_dev_get(dr.dev_id);
1833 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001834 return -ENODEV;
1835
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001836 if (hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07001837 err = -EBUSY;
1838 goto done;
1839 }
1840
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001841 if (hci_dev_test_flag(hdev, HCI_UNCONFIGURED)) {
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001842 err = -EOPNOTSUPP;
1843 goto done;
1844 }
1845
Marcel Holtmann5b69bef52013-10-10 10:02:08 -07001846 if (hdev->dev_type != HCI_BREDR) {
1847 err = -EOPNOTSUPP;
1848 goto done;
1849 }
1850
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001851 if (!hci_dev_test_flag(hdev, HCI_BREDR_ENABLED)) {
Johan Hedberg56f87902013-10-02 13:43:13 +03001852 err = -EOPNOTSUPP;
1853 goto done;
1854 }
1855
Linus Torvalds1da177e2005-04-16 15:20:36 -07001856 switch (cmd) {
1857 case HCISETAUTH:
Johan Hedberg01178cd2013-03-05 20:37:41 +02001858 err = hci_req_sync(hdev, hci_auth_req, dr.dev_opt,
1859 HCI_INIT_TIMEOUT);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001860 break;
1861
1862 case HCISETENCRYPT:
1863 if (!lmp_encrypt_capable(hdev)) {
1864 err = -EOPNOTSUPP;
1865 break;
1866 }
1867
1868 if (!test_bit(HCI_AUTH, &hdev->flags)) {
1869 /* Auth must be enabled first */
Johan Hedberg01178cd2013-03-05 20:37:41 +02001870 err = hci_req_sync(hdev, hci_auth_req, dr.dev_opt,
1871 HCI_INIT_TIMEOUT);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001872 if (err)
1873 break;
1874 }
1875
Johan Hedberg01178cd2013-03-05 20:37:41 +02001876 err = hci_req_sync(hdev, hci_encrypt_req, dr.dev_opt,
1877 HCI_INIT_TIMEOUT);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001878 break;
1879
1880 case HCISETSCAN:
Johan Hedberg01178cd2013-03-05 20:37:41 +02001881 err = hci_req_sync(hdev, hci_scan_req, dr.dev_opt,
1882 HCI_INIT_TIMEOUT);
Johan Hedberg91a668b2014-07-09 13:28:26 +03001883
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001884 /* Ensure that the connectable and discoverable states
1885 * get correctly modified as this was a non-mgmt change.
Johan Hedberg91a668b2014-07-09 13:28:26 +03001886 */
Johan Hedberg123abc02014-07-10 12:09:07 +03001887 if (!err)
1888 hci_update_scan_state(hdev, dr.dev_opt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001889 break;
1890
Marcel Holtmanne4e8e372008-07-14 20:13:47 +02001891 case HCISETLINKPOL:
Johan Hedberg01178cd2013-03-05 20:37:41 +02001892 err = hci_req_sync(hdev, hci_linkpol_req, dr.dev_opt,
1893 HCI_INIT_TIMEOUT);
Marcel Holtmanne4e8e372008-07-14 20:13:47 +02001894 break;
1895
1896 case HCISETLINKMODE:
1897 hdev->link_mode = ((__u16) dr.dev_opt) &
1898 (HCI_LM_MASTER | HCI_LM_ACCEPT);
1899 break;
1900
Linus Torvalds1da177e2005-04-16 15:20:36 -07001901 case HCISETPTYPE:
1902 hdev->pkt_type = (__u16) dr.dev_opt;
1903 break;
1904
Linus Torvalds1da177e2005-04-16 15:20:36 -07001905 case HCISETACLMTU:
Marcel Holtmanne4e8e372008-07-14 20:13:47 +02001906 hdev->acl_mtu = *((__u16 *) &dr.dev_opt + 1);
1907 hdev->acl_pkts = *((__u16 *) &dr.dev_opt + 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001908 break;
1909
1910 case HCISETSCOMTU:
Marcel Holtmanne4e8e372008-07-14 20:13:47 +02001911 hdev->sco_mtu = *((__u16 *) &dr.dev_opt + 1);
1912 hdev->sco_pkts = *((__u16 *) &dr.dev_opt + 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001913 break;
1914
1915 default:
1916 err = -EINVAL;
1917 break;
1918 }
Marcel Holtmanne4e8e372008-07-14 20:13:47 +02001919
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07001920done:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001921 hci_dev_put(hdev);
1922 return err;
1923}
1924
1925int hci_get_dev_list(void __user *arg)
1926{
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02001927 struct hci_dev *hdev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001928 struct hci_dev_list_req *dl;
1929 struct hci_dev_req *dr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001930 int n = 0, size, err;
1931 __u16 dev_num;
1932
1933 if (get_user(dev_num, (__u16 __user *) arg))
1934 return -EFAULT;
1935
1936 if (!dev_num || dev_num > (PAGE_SIZE * 2) / sizeof(*dr))
1937 return -EINVAL;
1938
1939 size = sizeof(*dl) + dev_num * sizeof(*dr);
1940
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001941 dl = kzalloc(size, GFP_KERNEL);
1942 if (!dl)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001943 return -ENOMEM;
1944
1945 dr = dl->dev_req;
1946
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02001947 read_lock(&hci_dev_list_lock);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02001948 list_for_each_entry(hdev, &hci_dev_list, list) {
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001949 unsigned long flags = hdev->flags;
Johan Hedbergc542a062011-01-26 13:11:03 +02001950
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001951 /* When the auto-off is configured it means the transport
1952 * is running, but in that case still indicate that the
1953 * device is actually down.
1954 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001955 if (hci_dev_test_flag(hdev, HCI_AUTO_OFF))
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001956 flags &= ~BIT(HCI_UP);
Johan Hedbergc542a062011-01-26 13:11:03 +02001957
Linus Torvalds1da177e2005-04-16 15:20:36 -07001958 (dr + n)->dev_id = hdev->id;
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001959 (dr + n)->dev_opt = flags;
Johan Hedbergc542a062011-01-26 13:11:03 +02001960
Linus Torvalds1da177e2005-04-16 15:20:36 -07001961 if (++n >= dev_num)
1962 break;
1963 }
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02001964 read_unlock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001965
1966 dl->dev_num = n;
1967 size = sizeof(*dl) + n * sizeof(*dr);
1968
1969 err = copy_to_user(arg, dl, size);
1970 kfree(dl);
1971
1972 return err ? -EFAULT : 0;
1973}
1974
1975int hci_get_dev_info(void __user *arg)
1976{
1977 struct hci_dev *hdev;
1978 struct hci_dev_info di;
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001979 unsigned long flags;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001980 int err = 0;
1981
1982 if (copy_from_user(&di, arg, sizeof(di)))
1983 return -EFAULT;
1984
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001985 hdev = hci_dev_get(di.dev_id);
1986 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001987 return -ENODEV;
1988
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001989 /* When the auto-off is configured it means the transport
1990 * is running, but in that case still indicate that the
1991 * device is actually down.
1992 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001993 if (hci_dev_test_flag(hdev, HCI_AUTO_OFF))
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001994 flags = hdev->flags & ~BIT(HCI_UP);
1995 else
1996 flags = hdev->flags;
Johan Hedbergc542a062011-01-26 13:11:03 +02001997
Linus Torvalds1da177e2005-04-16 15:20:36 -07001998 strcpy(di.name, hdev->name);
1999 di.bdaddr = hdev->bdaddr;
Marcel Holtmann60f2a3e2013-10-01 22:59:20 -07002000 di.type = (hdev->bus & 0x0f) | ((hdev->dev_type & 0x03) << 4);
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02002001 di.flags = flags;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002002 di.pkt_type = hdev->pkt_type;
Johan Hedberg572c7f82012-10-19 20:57:46 +03002003 if (lmp_bredr_capable(hdev)) {
2004 di.acl_mtu = hdev->acl_mtu;
2005 di.acl_pkts = hdev->acl_pkts;
2006 di.sco_mtu = hdev->sco_mtu;
2007 di.sco_pkts = hdev->sco_pkts;
2008 } else {
2009 di.acl_mtu = hdev->le_mtu;
2010 di.acl_pkts = hdev->le_pkts;
2011 di.sco_mtu = 0;
2012 di.sco_pkts = 0;
2013 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002014 di.link_policy = hdev->link_policy;
2015 di.link_mode = hdev->link_mode;
2016
2017 memcpy(&di.stat, &hdev->stat, sizeof(di.stat));
2018 memcpy(&di.features, &hdev->features, sizeof(di.features));
2019
2020 if (copy_to_user(arg, &di, sizeof(di)))
2021 err = -EFAULT;
2022
2023 hci_dev_put(hdev);
2024
2025 return err;
2026}
2027
2028/* ---- Interface to HCI drivers ---- */
2029
Marcel Holtmann611b30f2009-06-08 14:41:38 +02002030static int hci_rfkill_set_block(void *data, bool blocked)
2031{
2032 struct hci_dev *hdev = data;
2033
2034 BT_DBG("%p name %s blocked %d", hdev, hdev->name, blocked);
2035
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07002036 if (hci_dev_test_flag(hdev, HCI_USER_CHANNEL))
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07002037 return -EBUSY;
2038
Johan Hedberg5e130362013-09-13 08:58:17 +03002039 if (blocked) {
Marcel Holtmanna1536da2015-03-13 02:11:01 -07002040 hci_dev_set_flag(hdev, HCI_RFKILLED);
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07002041 if (!hci_dev_test_flag(hdev, HCI_SETUP) &&
2042 !hci_dev_test_flag(hdev, HCI_CONFIG))
Johan Hedbergbf543032013-09-13 08:58:18 +03002043 hci_dev_do_close(hdev);
Johan Hedberg5e130362013-09-13 08:58:17 +03002044 } else {
Marcel Holtmanna358dc12015-03-13 02:11:02 -07002045 hci_dev_clear_flag(hdev, HCI_RFKILLED);
Gustavo Padovan1025c042013-09-27 11:56:14 -03002046 }
Marcel Holtmann611b30f2009-06-08 14:41:38 +02002047
2048 return 0;
2049}
2050
2051static const struct rfkill_ops hci_rfkill_ops = {
2052 .set_block = hci_rfkill_set_block,
2053};
2054
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002055static void hci_power_on(struct work_struct *work)
2056{
2057 struct hci_dev *hdev = container_of(work, struct hci_dev, power_on);
Johan Hedberg96570ff2013-05-29 09:51:29 +03002058 int err;
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002059
2060 BT_DBG("%s", hdev->name);
2061
Johan Hedbergcbed0ca2013-10-01 22:44:49 +03002062 err = hci_dev_do_open(hdev);
Johan Hedberg96570ff2013-05-29 09:51:29 +03002063 if (err < 0) {
Jaganath Kanakkassery3ad67582014-12-11 11:43:12 +05302064 hci_dev_lock(hdev);
Johan Hedberg96570ff2013-05-29 09:51:29 +03002065 mgmt_set_powered_failed(hdev, err);
Jaganath Kanakkassery3ad67582014-12-11 11:43:12 +05302066 hci_dev_unlock(hdev);
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002067 return;
Johan Hedberg96570ff2013-05-29 09:51:29 +03002068 }
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002069
Marcel Holtmanna5c8f272013-10-06 01:08:57 -07002070 /* During the HCI setup phase, a few error conditions are
2071 * ignored and they need to be checked now. If they are still
2072 * valid, it is important to turn the device back off.
2073 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07002074 if (hci_dev_test_flag(hdev, HCI_RFKILLED) ||
2075 hci_dev_test_flag(hdev, HCI_UNCONFIGURED) ||
Marcel Holtmanna5c8f272013-10-06 01:08:57 -07002076 (hdev->dev_type == HCI_BREDR &&
2077 !bacmp(&hdev->bdaddr, BDADDR_ANY) &&
2078 !bacmp(&hdev->static_addr, BDADDR_ANY))) {
Marcel Holtmanna358dc12015-03-13 02:11:02 -07002079 hci_dev_clear_flag(hdev, HCI_AUTO_OFF);
Johan Hedbergbf543032013-09-13 08:58:18 +03002080 hci_dev_do_close(hdev);
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07002081 } else if (hci_dev_test_flag(hdev, HCI_AUTO_OFF)) {
Johan Hedberg19202572013-01-14 22:33:51 +02002082 queue_delayed_work(hdev->req_workqueue, &hdev->power_off,
2083 HCI_AUTO_OFF_TIMEOUT);
Johan Hedbergbf543032013-09-13 08:58:18 +03002084 }
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002085
Marcel Holtmanna69d8922015-03-13 02:11:05 -07002086 if (hci_dev_test_and_clear_flag(hdev, HCI_SETUP)) {
Marcel Holtmann4a964402014-07-02 19:10:33 +02002087 /* For unconfigured devices, set the HCI_RAW flag
2088 * so that userspace can easily identify them.
Marcel Holtmann4a964402014-07-02 19:10:33 +02002089 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07002090 if (hci_dev_test_flag(hdev, HCI_UNCONFIGURED))
Marcel Holtmann4a964402014-07-02 19:10:33 +02002091 set_bit(HCI_RAW, &hdev->flags);
Marcel Holtmann0602a8a2014-07-02 21:30:54 +02002092
2093 /* For fully configured devices, this will send
2094 * the Index Added event. For unconfigured devices,
2095 * it will send Unconfigued Index Added event.
2096 *
2097 * Devices with HCI_QUIRK_RAW_DEVICE are ignored
2098 * and no event will be send.
2099 */
Johan Hedberg744cf192011-11-08 20:40:14 +02002100 mgmt_index_added(hdev);
Marcel Holtmanna69d8922015-03-13 02:11:05 -07002101 } else if (hci_dev_test_and_clear_flag(hdev, HCI_CONFIG)) {
Marcel Holtmann5ea234d2014-07-06 12:11:16 +02002102 /* When the controller is now configured, then it
2103 * is important to clear the HCI_RAW flag.
2104 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07002105 if (!hci_dev_test_flag(hdev, HCI_UNCONFIGURED))
Marcel Holtmann5ea234d2014-07-06 12:11:16 +02002106 clear_bit(HCI_RAW, &hdev->flags);
2107
Marcel Holtmannd603b762014-07-06 12:11:14 +02002108 /* Powering on the controller with HCI_CONFIG set only
2109 * happens with the transition from unconfigured to
2110 * configured. This will send the Index Added event.
2111 */
2112 mgmt_index_added(hdev);
Marcel Holtmannfee746b2014-06-29 12:13:05 +02002113 }
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002114}
2115
2116static void hci_power_off(struct work_struct *work)
2117{
Johan Hedberg32435532011-11-07 22:16:04 +02002118 struct hci_dev *hdev = container_of(work, struct hci_dev,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03002119 power_off.work);
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002120
2121 BT_DBG("%s", hdev->name);
2122
Marcel Holtmann8ee56542012-02-21 12:33:48 +01002123 hci_dev_do_close(hdev);
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002124}
2125
Marcel Holtmannc7741d12015-01-28 11:09:55 -08002126static void hci_error_reset(struct work_struct *work)
2127{
2128 struct hci_dev *hdev = container_of(work, struct hci_dev, error_reset);
2129
2130 BT_DBG("%s", hdev->name);
2131
2132 if (hdev->hw_error)
2133 hdev->hw_error(hdev, hdev->hw_error_code);
2134 else
2135 BT_ERR("%s hardware error 0x%2.2x", hdev->name,
2136 hdev->hw_error_code);
2137
2138 if (hci_dev_do_close(hdev))
2139 return;
2140
Marcel Holtmannc7741d12015-01-28 11:09:55 -08002141 hci_dev_do_open(hdev);
2142}
2143
Johan Hedberg16ab91a2011-11-07 22:16:02 +02002144static void hci_discov_off(struct work_struct *work)
2145{
2146 struct hci_dev *hdev;
Johan Hedberg16ab91a2011-11-07 22:16:02 +02002147
2148 hdev = container_of(work, struct hci_dev, discov_off.work);
2149
2150 BT_DBG("%s", hdev->name);
2151
Marcel Holtmannd1967ff2013-10-15 10:57:40 -07002152 mgmt_discoverable_timeout(hdev);
Johan Hedberg16ab91a2011-11-07 22:16:02 +02002153}
2154
Florian Grandel5d900e42015-06-18 03:16:35 +02002155static void hci_adv_timeout_expire(struct work_struct *work)
2156{
2157 struct hci_dev *hdev;
2158
2159 hdev = container_of(work, struct hci_dev, adv_instance_expire.work);
2160
2161 BT_DBG("%s", hdev->name);
2162
2163 mgmt_adv_timeout_expired(hdev);
2164}
2165
Johan Hedberg35f74982014-02-18 17:14:32 +02002166void hci_uuids_clear(struct hci_dev *hdev)
Johan Hedberg2aeb9a12011-01-04 12:08:51 +02002167{
Johan Hedberg48210022013-01-27 00:31:28 +02002168 struct bt_uuid *uuid, *tmp;
Johan Hedberg2aeb9a12011-01-04 12:08:51 +02002169
Johan Hedberg48210022013-01-27 00:31:28 +02002170 list_for_each_entry_safe(uuid, tmp, &hdev->uuids, list) {
2171 list_del(&uuid->list);
Johan Hedberg2aeb9a12011-01-04 12:08:51 +02002172 kfree(uuid);
2173 }
Johan Hedberg2aeb9a12011-01-04 12:08:51 +02002174}
2175
Johan Hedberg35f74982014-02-18 17:14:32 +02002176void hci_link_keys_clear(struct hci_dev *hdev)
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002177{
Johan Hedberg0378b592014-11-19 15:22:22 +02002178 struct link_key *key;
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002179
Johan Hedberg0378b592014-11-19 15:22:22 +02002180 list_for_each_entry_rcu(key, &hdev->link_keys, list) {
2181 list_del_rcu(&key->list);
2182 kfree_rcu(key, rcu);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002183 }
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002184}
2185
Johan Hedberg35f74982014-02-18 17:14:32 +02002186void hci_smp_ltks_clear(struct hci_dev *hdev)
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002187{
Johan Hedberg970d0f12014-11-13 14:37:47 +02002188 struct smp_ltk *k;
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002189
Johan Hedberg970d0f12014-11-13 14:37:47 +02002190 list_for_each_entry_rcu(k, &hdev->long_term_keys, list) {
2191 list_del_rcu(&k->list);
2192 kfree_rcu(k, rcu);
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002193 }
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002194}
2195
Johan Hedberg970c4e42014-02-18 10:19:33 +02002196void hci_smp_irks_clear(struct hci_dev *hdev)
2197{
Johan Hedbergadae20c2014-11-13 14:37:48 +02002198 struct smp_irk *k;
Johan Hedberg970c4e42014-02-18 10:19:33 +02002199
Johan Hedbergadae20c2014-11-13 14:37:48 +02002200 list_for_each_entry_rcu(k, &hdev->identity_resolving_keys, list) {
2201 list_del_rcu(&k->list);
2202 kfree_rcu(k, rcu);
Johan Hedberg970c4e42014-02-18 10:19:33 +02002203 }
2204}
2205
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002206struct link_key *hci_find_link_key(struct hci_dev *hdev, bdaddr_t *bdaddr)
2207{
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02002208 struct link_key *k;
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002209
Johan Hedberg0378b592014-11-19 15:22:22 +02002210 rcu_read_lock();
2211 list_for_each_entry_rcu(k, &hdev->link_keys, list) {
2212 if (bacmp(bdaddr, &k->bdaddr) == 0) {
2213 rcu_read_unlock();
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002214 return k;
Johan Hedberg0378b592014-11-19 15:22:22 +02002215 }
2216 }
2217 rcu_read_unlock();
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002218
2219 return NULL;
2220}
2221
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302222static bool hci_persistent_key(struct hci_dev *hdev, struct hci_conn *conn,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03002223 u8 key_type, u8 old_key_type)
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002224{
2225 /* Legacy key */
2226 if (key_type < 0x03)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302227 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002228
2229 /* Debug keys are insecure so don't store them persistently */
2230 if (key_type == HCI_LK_DEBUG_COMBINATION)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302231 return false;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002232
2233 /* Changed combination key and there's no previous one */
2234 if (key_type == HCI_LK_CHANGED_COMBINATION && old_key_type == 0xff)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302235 return false;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002236
2237 /* Security mode 3 case */
2238 if (!conn)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302239 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002240
Johan Hedberge3befab2014-06-01 16:33:39 +03002241 /* BR/EDR key derived using SC from an LE link */
2242 if (conn->type == LE_LINK)
2243 return true;
2244
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002245 /* Neither local nor remote side had no-bonding as requirement */
2246 if (conn->auth_type > 0x01 && conn->remote_auth > 0x01)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302247 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002248
2249 /* Local side had dedicated bonding as requirement */
2250 if (conn->auth_type == 0x02 || conn->auth_type == 0x03)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302251 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002252
2253 /* Remote side had dedicated bonding as requirement */
2254 if (conn->remote_auth == 0x02 || conn->remote_auth == 0x03)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302255 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002256
2257 /* If none of the above criteria match, then don't store the key
2258 * persistently */
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302259 return false;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002260}
2261
Johan Hedberge804d252014-07-16 11:42:28 +03002262static u8 ltk_role(u8 type)
Johan Hedberg98a0b842014-01-30 19:40:00 -08002263{
Johan Hedberge804d252014-07-16 11:42:28 +03002264 if (type == SMP_LTK)
2265 return HCI_ROLE_MASTER;
Johan Hedberg98a0b842014-01-30 19:40:00 -08002266
Johan Hedberge804d252014-07-16 11:42:28 +03002267 return HCI_ROLE_SLAVE;
Johan Hedberg98a0b842014-01-30 19:40:00 -08002268}
2269
Johan Hedbergf3a73d92014-05-29 15:02:59 +03002270struct smp_ltk *hci_find_ltk(struct hci_dev *hdev, bdaddr_t *bdaddr,
2271 u8 addr_type, u8 role)
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002272{
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03002273 struct smp_ltk *k;
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002274
Johan Hedberg970d0f12014-11-13 14:37:47 +02002275 rcu_read_lock();
2276 list_for_each_entry_rcu(k, &hdev->long_term_keys, list) {
Johan Hedberg5378bc52014-05-29 14:00:39 +03002277 if (addr_type != k->bdaddr_type || bacmp(bdaddr, &k->bdaddr))
2278 continue;
2279
Johan Hedberg923e2412014-12-03 12:43:39 +02002280 if (smp_ltk_is_sc(k) || ltk_role(k->type) == role) {
Johan Hedberg970d0f12014-11-13 14:37:47 +02002281 rcu_read_unlock();
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002282 return k;
Johan Hedberg970d0f12014-11-13 14:37:47 +02002283 }
2284 }
2285 rcu_read_unlock();
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002286
2287 return NULL;
2288}
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002289
Johan Hedberg970c4e42014-02-18 10:19:33 +02002290struct smp_irk *hci_find_irk_by_rpa(struct hci_dev *hdev, bdaddr_t *rpa)
2291{
2292 struct smp_irk *irk;
2293
Johan Hedbergadae20c2014-11-13 14:37:48 +02002294 rcu_read_lock();
2295 list_for_each_entry_rcu(irk, &hdev->identity_resolving_keys, list) {
2296 if (!bacmp(&irk->rpa, rpa)) {
2297 rcu_read_unlock();
Johan Hedberg970c4e42014-02-18 10:19:33 +02002298 return irk;
2299 }
2300 }
2301
Johan Hedbergadae20c2014-11-13 14:37:48 +02002302 list_for_each_entry_rcu(irk, &hdev->identity_resolving_keys, list) {
2303 if (smp_irk_matches(hdev, irk->val, rpa)) {
2304 bacpy(&irk->rpa, rpa);
2305 rcu_read_unlock();
2306 return irk;
2307 }
2308 }
2309 rcu_read_unlock();
2310
Johan Hedberg970c4e42014-02-18 10:19:33 +02002311 return NULL;
2312}
2313
2314struct smp_irk *hci_find_irk_by_addr(struct hci_dev *hdev, bdaddr_t *bdaddr,
2315 u8 addr_type)
2316{
2317 struct smp_irk *irk;
2318
Johan Hedberg6cfc9982014-02-18 21:41:35 +02002319 /* Identity Address must be public or static random */
2320 if (addr_type == ADDR_LE_DEV_RANDOM && (bdaddr->b[5] & 0xc0) != 0xc0)
2321 return NULL;
2322
Johan Hedbergadae20c2014-11-13 14:37:48 +02002323 rcu_read_lock();
2324 list_for_each_entry_rcu(irk, &hdev->identity_resolving_keys, list) {
Johan Hedberg970c4e42014-02-18 10:19:33 +02002325 if (addr_type == irk->addr_type &&
Johan Hedbergadae20c2014-11-13 14:37:48 +02002326 bacmp(bdaddr, &irk->bdaddr) == 0) {
2327 rcu_read_unlock();
Johan Hedberg970c4e42014-02-18 10:19:33 +02002328 return irk;
Johan Hedbergadae20c2014-11-13 14:37:48 +02002329 }
Johan Hedberg970c4e42014-02-18 10:19:33 +02002330 }
Johan Hedbergadae20c2014-11-13 14:37:48 +02002331 rcu_read_unlock();
Johan Hedberg970c4e42014-02-18 10:19:33 +02002332
2333 return NULL;
2334}
2335
Johan Hedberg567fa2a2014-06-24 13:15:48 +03002336struct link_key *hci_add_link_key(struct hci_dev *hdev, struct hci_conn *conn,
Johan Hedberg7652ff62014-06-24 13:15:49 +03002337 bdaddr_t *bdaddr, u8 *val, u8 type,
2338 u8 pin_len, bool *persistent)
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002339{
2340 struct link_key *key, *old_key;
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302341 u8 old_key_type;
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002342
2343 old_key = hci_find_link_key(hdev, bdaddr);
2344 if (old_key) {
2345 old_key_type = old_key->type;
2346 key = old_key;
2347 } else {
Johan Hedberg12adcf32011-04-28 11:29:00 -07002348 old_key_type = conn ? conn->key_type : 0xff;
Johan Hedberg0a14ab42014-02-19 14:57:43 +02002349 key = kzalloc(sizeof(*key), GFP_KERNEL);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002350 if (!key)
Johan Hedberg567fa2a2014-06-24 13:15:48 +03002351 return NULL;
Johan Hedberg0378b592014-11-19 15:22:22 +02002352 list_add_rcu(&key->list, &hdev->link_keys);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002353 }
2354
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03002355 BT_DBG("%s key for %pMR type %u", hdev->name, bdaddr, type);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002356
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002357 /* Some buggy controller combinations generate a changed
2358 * combination key for legacy pairing even when there's no
2359 * previous key */
2360 if (type == HCI_LK_CHANGED_COMBINATION &&
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03002361 (!conn || conn->remote_auth == 0xff) && old_key_type == 0xff) {
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002362 type = HCI_LK_COMBINATION;
Johan Hedberg655fe6e2011-04-28 11:29:01 -07002363 if (conn)
2364 conn->key_type = type;
2365 }
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002366
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002367 bacpy(&key->bdaddr, bdaddr);
Andrei Emeltchenko9b3b4462012-05-23 11:31:20 +03002368 memcpy(key->val, val, HCI_LINK_KEY_SIZE);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002369 key->pin_len = pin_len;
2370
Waldemar Rymarkiewiczb6020ba2011-04-28 12:07:53 +02002371 if (type == HCI_LK_CHANGED_COMBINATION)
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002372 key->type = old_key_type;
Johan Hedberg4748fed2011-04-28 11:29:02 -07002373 else
2374 key->type = type;
2375
Johan Hedberg7652ff62014-06-24 13:15:49 +03002376 if (persistent)
2377 *persistent = hci_persistent_key(hdev, conn, type,
2378 old_key_type);
Johan Hedberg4df378a2011-04-28 11:29:03 -07002379
Johan Hedberg567fa2a2014-06-24 13:15:48 +03002380 return key;
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002381}
2382
Johan Hedbergca9142b2014-02-19 14:57:44 +02002383struct smp_ltk *hci_add_ltk(struct hci_dev *hdev, bdaddr_t *bdaddr,
Johan Hedberg35d70272014-02-19 14:57:47 +02002384 u8 addr_type, u8 type, u8 authenticated,
Marcel Holtmannfe39c7b2014-02-27 16:00:28 -08002385 u8 tk[16], u8 enc_size, __le16 ediv, __le64 rand)
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002386{
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03002387 struct smp_ltk *key, *old_key;
Johan Hedberge804d252014-07-16 11:42:28 +03002388 u8 role = ltk_role(type);
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002389
Johan Hedbergf3a73d92014-05-29 15:02:59 +03002390 old_key = hci_find_ltk(hdev, bdaddr, addr_type, role);
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03002391 if (old_key)
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002392 key = old_key;
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03002393 else {
Johan Hedberg0a14ab42014-02-19 14:57:43 +02002394 key = kzalloc(sizeof(*key), GFP_KERNEL);
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002395 if (!key)
Johan Hedbergca9142b2014-02-19 14:57:44 +02002396 return NULL;
Johan Hedberg970d0f12014-11-13 14:37:47 +02002397 list_add_rcu(&key->list, &hdev->long_term_keys);
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002398 }
2399
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002400 bacpy(&key->bdaddr, bdaddr);
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03002401 key->bdaddr_type = addr_type;
2402 memcpy(key->val, tk, sizeof(key->val));
2403 key->authenticated = authenticated;
2404 key->ediv = ediv;
Marcel Holtmannfe39c7b2014-02-27 16:00:28 -08002405 key->rand = rand;
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03002406 key->enc_size = enc_size;
2407 key->type = type;
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002408
Johan Hedbergca9142b2014-02-19 14:57:44 +02002409 return key;
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002410}
2411
Johan Hedbergca9142b2014-02-19 14:57:44 +02002412struct smp_irk *hci_add_irk(struct hci_dev *hdev, bdaddr_t *bdaddr,
2413 u8 addr_type, u8 val[16], bdaddr_t *rpa)
Johan Hedberg970c4e42014-02-18 10:19:33 +02002414{
2415 struct smp_irk *irk;
2416
2417 irk = hci_find_irk_by_addr(hdev, bdaddr, addr_type);
2418 if (!irk) {
2419 irk = kzalloc(sizeof(*irk), GFP_KERNEL);
2420 if (!irk)
Johan Hedbergca9142b2014-02-19 14:57:44 +02002421 return NULL;
Johan Hedberg970c4e42014-02-18 10:19:33 +02002422
2423 bacpy(&irk->bdaddr, bdaddr);
2424 irk->addr_type = addr_type;
2425
Johan Hedbergadae20c2014-11-13 14:37:48 +02002426 list_add_rcu(&irk->list, &hdev->identity_resolving_keys);
Johan Hedberg970c4e42014-02-18 10:19:33 +02002427 }
2428
2429 memcpy(irk->val, val, 16);
2430 bacpy(&irk->rpa, rpa);
2431
Johan Hedbergca9142b2014-02-19 14:57:44 +02002432 return irk;
Johan Hedberg970c4e42014-02-18 10:19:33 +02002433}
2434
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002435int hci_remove_link_key(struct hci_dev *hdev, bdaddr_t *bdaddr)
2436{
2437 struct link_key *key;
2438
2439 key = hci_find_link_key(hdev, bdaddr);
2440 if (!key)
2441 return -ENOENT;
2442
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03002443 BT_DBG("%s removing %pMR", hdev->name, bdaddr);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002444
Johan Hedberg0378b592014-11-19 15:22:22 +02002445 list_del_rcu(&key->list);
2446 kfree_rcu(key, rcu);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002447
2448 return 0;
2449}
2450
Johan Hedberge0b2b272014-02-18 17:14:31 +02002451int hci_remove_ltk(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 bdaddr_type)
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002452{
Johan Hedberg970d0f12014-11-13 14:37:47 +02002453 struct smp_ltk *k;
Johan Hedbergc51ffa02014-02-18 17:14:33 +02002454 int removed = 0;
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002455
Johan Hedberg970d0f12014-11-13 14:37:47 +02002456 list_for_each_entry_rcu(k, &hdev->long_term_keys, list) {
Johan Hedberge0b2b272014-02-18 17:14:31 +02002457 if (bacmp(bdaddr, &k->bdaddr) || k->bdaddr_type != bdaddr_type)
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002458 continue;
2459
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03002460 BT_DBG("%s removing %pMR", hdev->name, bdaddr);
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002461
Johan Hedberg970d0f12014-11-13 14:37:47 +02002462 list_del_rcu(&k->list);
2463 kfree_rcu(k, rcu);
Johan Hedbergc51ffa02014-02-18 17:14:33 +02002464 removed++;
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002465 }
2466
Johan Hedbergc51ffa02014-02-18 17:14:33 +02002467 return removed ? 0 : -ENOENT;
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002468}
2469
Johan Hedberga7ec7332014-02-18 17:14:35 +02002470void hci_remove_irk(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 addr_type)
2471{
Johan Hedbergadae20c2014-11-13 14:37:48 +02002472 struct smp_irk *k;
Johan Hedberga7ec7332014-02-18 17:14:35 +02002473
Johan Hedbergadae20c2014-11-13 14:37:48 +02002474 list_for_each_entry_rcu(k, &hdev->identity_resolving_keys, list) {
Johan Hedberga7ec7332014-02-18 17:14:35 +02002475 if (bacmp(bdaddr, &k->bdaddr) || k->addr_type != addr_type)
2476 continue;
2477
2478 BT_DBG("%s removing %pMR", hdev->name, bdaddr);
2479
Johan Hedbergadae20c2014-11-13 14:37:48 +02002480 list_del_rcu(&k->list);
2481 kfree_rcu(k, rcu);
Johan Hedberga7ec7332014-02-18 17:14:35 +02002482 }
2483}
2484
Johan Hedberg55e76b32015-03-10 22:34:40 +02002485bool hci_bdaddr_is_paired(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 type)
2486{
2487 struct smp_ltk *k;
Johan Hedberg4ba9faf2015-03-11 10:52:08 +02002488 struct smp_irk *irk;
Johan Hedberg55e76b32015-03-10 22:34:40 +02002489 u8 addr_type;
2490
2491 if (type == BDADDR_BREDR) {
2492 if (hci_find_link_key(hdev, bdaddr))
2493 return true;
2494 return false;
2495 }
2496
2497 /* Convert to HCI addr type which struct smp_ltk uses */
2498 if (type == BDADDR_LE_PUBLIC)
2499 addr_type = ADDR_LE_DEV_PUBLIC;
2500 else
2501 addr_type = ADDR_LE_DEV_RANDOM;
2502
Johan Hedberg4ba9faf2015-03-11 10:52:08 +02002503 irk = hci_get_irk(hdev, bdaddr, addr_type);
2504 if (irk) {
2505 bdaddr = &irk->bdaddr;
2506 addr_type = irk->addr_type;
2507 }
2508
Johan Hedberg55e76b32015-03-10 22:34:40 +02002509 rcu_read_lock();
2510 list_for_each_entry_rcu(k, &hdev->long_term_keys, list) {
Johan Hedberg87c8b282015-03-11 08:55:51 +02002511 if (k->bdaddr_type == addr_type && !bacmp(bdaddr, &k->bdaddr)) {
2512 rcu_read_unlock();
Johan Hedberg55e76b32015-03-10 22:34:40 +02002513 return true;
Johan Hedberg87c8b282015-03-11 08:55:51 +02002514 }
Johan Hedberg55e76b32015-03-10 22:34:40 +02002515 }
2516 rcu_read_unlock();
2517
2518 return false;
2519}
2520
Ville Tervo6bd32322011-02-16 16:32:41 +02002521/* HCI command timer function */
Marcel Holtmann65cc2b42014-06-16 12:30:56 +02002522static void hci_cmd_timeout(struct work_struct *work)
Ville Tervo6bd32322011-02-16 16:32:41 +02002523{
Marcel Holtmann65cc2b42014-06-16 12:30:56 +02002524 struct hci_dev *hdev = container_of(work, struct hci_dev,
2525 cmd_timer.work);
Ville Tervo6bd32322011-02-16 16:32:41 +02002526
Andrei Emeltchenkobda4f232012-06-11 11:13:08 +03002527 if (hdev->sent_cmd) {
2528 struct hci_command_hdr *sent = (void *) hdev->sent_cmd->data;
2529 u16 opcode = __le16_to_cpu(sent->opcode);
2530
2531 BT_ERR("%s command 0x%4.4x tx timeout", hdev->name, opcode);
2532 } else {
2533 BT_ERR("%s command tx timeout", hdev->name);
2534 }
2535
Ville Tervo6bd32322011-02-16 16:32:41 +02002536 atomic_set(&hdev->cmd_cnt, 1);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02002537 queue_work(hdev->workqueue, &hdev->cmd_work);
Ville Tervo6bd32322011-02-16 16:32:41 +02002538}
2539
Szymon Janc2763eda2011-03-22 13:12:22 +01002540struct oob_data *hci_find_remote_oob_data(struct hci_dev *hdev,
Johan Hedberg6928a922014-10-26 20:46:09 +01002541 bdaddr_t *bdaddr, u8 bdaddr_type)
Szymon Janc2763eda2011-03-22 13:12:22 +01002542{
2543 struct oob_data *data;
2544
Johan Hedberg6928a922014-10-26 20:46:09 +01002545 list_for_each_entry(data, &hdev->remote_oob_data, list) {
2546 if (bacmp(bdaddr, &data->bdaddr) != 0)
2547 continue;
2548 if (data->bdaddr_type != bdaddr_type)
2549 continue;
2550 return data;
2551 }
Szymon Janc2763eda2011-03-22 13:12:22 +01002552
2553 return NULL;
2554}
2555
Johan Hedberg6928a922014-10-26 20:46:09 +01002556int hci_remove_remote_oob_data(struct hci_dev *hdev, bdaddr_t *bdaddr,
2557 u8 bdaddr_type)
Szymon Janc2763eda2011-03-22 13:12:22 +01002558{
2559 struct oob_data *data;
2560
Johan Hedberg6928a922014-10-26 20:46:09 +01002561 data = hci_find_remote_oob_data(hdev, bdaddr, bdaddr_type);
Szymon Janc2763eda2011-03-22 13:12:22 +01002562 if (!data)
2563 return -ENOENT;
2564
Johan Hedberg6928a922014-10-26 20:46:09 +01002565 BT_DBG("%s removing %pMR (%u)", hdev->name, bdaddr, bdaddr_type);
Szymon Janc2763eda2011-03-22 13:12:22 +01002566
2567 list_del(&data->list);
2568 kfree(data);
2569
2570 return 0;
2571}
2572
Johan Hedberg35f74982014-02-18 17:14:32 +02002573void hci_remote_oob_data_clear(struct hci_dev *hdev)
Szymon Janc2763eda2011-03-22 13:12:22 +01002574{
2575 struct oob_data *data, *n;
2576
2577 list_for_each_entry_safe(data, n, &hdev->remote_oob_data, list) {
2578 list_del(&data->list);
2579 kfree(data);
2580 }
Szymon Janc2763eda2011-03-22 13:12:22 +01002581}
2582
Marcel Holtmann07988722014-01-10 02:07:29 -08002583int hci_add_remote_oob_data(struct hci_dev *hdev, bdaddr_t *bdaddr,
Johan Hedberg6928a922014-10-26 20:46:09 +01002584 u8 bdaddr_type, u8 *hash192, u8 *rand192,
Johan Hedberg81328d52014-10-26 20:33:47 +01002585 u8 *hash256, u8 *rand256)
Szymon Janc2763eda2011-03-22 13:12:22 +01002586{
2587 struct oob_data *data;
2588
Johan Hedberg6928a922014-10-26 20:46:09 +01002589 data = hci_find_remote_oob_data(hdev, bdaddr, bdaddr_type);
Szymon Janc2763eda2011-03-22 13:12:22 +01002590 if (!data) {
Johan Hedberg0a14ab42014-02-19 14:57:43 +02002591 data = kmalloc(sizeof(*data), GFP_KERNEL);
Szymon Janc2763eda2011-03-22 13:12:22 +01002592 if (!data)
2593 return -ENOMEM;
2594
2595 bacpy(&data->bdaddr, bdaddr);
Johan Hedberg6928a922014-10-26 20:46:09 +01002596 data->bdaddr_type = bdaddr_type;
Szymon Janc2763eda2011-03-22 13:12:22 +01002597 list_add(&data->list, &hdev->remote_oob_data);
2598 }
2599
Johan Hedberg81328d52014-10-26 20:33:47 +01002600 if (hash192 && rand192) {
2601 memcpy(data->hash192, hash192, sizeof(data->hash192));
2602 memcpy(data->rand192, rand192, sizeof(data->rand192));
Marcel Holtmannf7697b12015-01-30 23:20:55 -08002603 if (hash256 && rand256)
2604 data->present = 0x03;
Johan Hedberg81328d52014-10-26 20:33:47 +01002605 } else {
2606 memset(data->hash192, 0, sizeof(data->hash192));
2607 memset(data->rand192, 0, sizeof(data->rand192));
Marcel Holtmannf7697b12015-01-30 23:20:55 -08002608 if (hash256 && rand256)
2609 data->present = 0x02;
2610 else
2611 data->present = 0x00;
Marcel Holtmann07988722014-01-10 02:07:29 -08002612 }
2613
Johan Hedberg81328d52014-10-26 20:33:47 +01002614 if (hash256 && rand256) {
2615 memcpy(data->hash256, hash256, sizeof(data->hash256));
2616 memcpy(data->rand256, rand256, sizeof(data->rand256));
2617 } else {
2618 memset(data->hash256, 0, sizeof(data->hash256));
2619 memset(data->rand256, 0, sizeof(data->rand256));
Marcel Holtmannf7697b12015-01-30 23:20:55 -08002620 if (hash192 && rand192)
2621 data->present = 0x01;
Johan Hedberg81328d52014-10-26 20:33:47 +01002622 }
Marcel Holtmann07988722014-01-10 02:07:29 -08002623
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03002624 BT_DBG("%s for %pMR", hdev->name, bdaddr);
Szymon Janc2763eda2011-03-22 13:12:22 +01002625
2626 return 0;
2627}
2628
Florian Grandeld2609b32015-06-18 03:16:34 +02002629/* This function requires the caller holds hdev->lock */
2630struct adv_info *hci_find_adv_instance(struct hci_dev *hdev, u8 instance)
2631{
2632 struct adv_info *adv_instance;
2633
2634 list_for_each_entry(adv_instance, &hdev->adv_instances, list) {
2635 if (adv_instance->instance == instance)
2636 return adv_instance;
2637 }
2638
2639 return NULL;
2640}
2641
2642/* This function requires the caller holds hdev->lock */
2643struct adv_info *hci_get_next_instance(struct hci_dev *hdev, u8 instance) {
2644 struct adv_info *cur_instance;
2645
2646 cur_instance = hci_find_adv_instance(hdev, instance);
2647 if (!cur_instance)
2648 return NULL;
2649
2650 if (cur_instance == list_last_entry(&hdev->adv_instances,
2651 struct adv_info, list))
2652 return list_first_entry(&hdev->adv_instances,
2653 struct adv_info, list);
2654 else
2655 return list_next_entry(cur_instance, list);
2656}
2657
2658/* This function requires the caller holds hdev->lock */
2659int hci_remove_adv_instance(struct hci_dev *hdev, u8 instance)
2660{
2661 struct adv_info *adv_instance;
2662
2663 adv_instance = hci_find_adv_instance(hdev, instance);
2664 if (!adv_instance)
2665 return -ENOENT;
2666
2667 BT_DBG("%s removing %dMR", hdev->name, instance);
2668
Florian Grandel5d900e42015-06-18 03:16:35 +02002669 if (hdev->cur_adv_instance == instance && hdev->adv_instance_timeout) {
2670 cancel_delayed_work(&hdev->adv_instance_expire);
2671 hdev->adv_instance_timeout = 0;
2672 }
2673
Florian Grandeld2609b32015-06-18 03:16:34 +02002674 list_del(&adv_instance->list);
2675 kfree(adv_instance);
2676
2677 hdev->adv_instance_cnt--;
2678
2679 return 0;
2680}
2681
2682/* This function requires the caller holds hdev->lock */
2683void hci_adv_instances_clear(struct hci_dev *hdev)
2684{
2685 struct adv_info *adv_instance, *n;
2686
Florian Grandel5d900e42015-06-18 03:16:35 +02002687 if (hdev->adv_instance_timeout) {
2688 cancel_delayed_work(&hdev->adv_instance_expire);
2689 hdev->adv_instance_timeout = 0;
2690 }
2691
Florian Grandeld2609b32015-06-18 03:16:34 +02002692 list_for_each_entry_safe(adv_instance, n, &hdev->adv_instances, list) {
2693 list_del(&adv_instance->list);
2694 kfree(adv_instance);
2695 }
2696
2697 hdev->adv_instance_cnt = 0;
2698}
2699
2700/* This function requires the caller holds hdev->lock */
2701int hci_add_adv_instance(struct hci_dev *hdev, u8 instance, u32 flags,
2702 u16 adv_data_len, u8 *adv_data,
2703 u16 scan_rsp_len, u8 *scan_rsp_data,
2704 u16 timeout, u16 duration)
2705{
2706 struct adv_info *adv_instance;
2707
2708 adv_instance = hci_find_adv_instance(hdev, instance);
2709 if (adv_instance) {
2710 memset(adv_instance->adv_data, 0,
2711 sizeof(adv_instance->adv_data));
2712 memset(adv_instance->scan_rsp_data, 0,
2713 sizeof(adv_instance->scan_rsp_data));
2714 } else {
2715 if (hdev->adv_instance_cnt >= HCI_MAX_ADV_INSTANCES ||
2716 instance < 1 || instance > HCI_MAX_ADV_INSTANCES)
2717 return -EOVERFLOW;
2718
Johan Hedberg39ecfad2015-06-18 20:50:08 +03002719 adv_instance = kzalloc(sizeof(*adv_instance), GFP_KERNEL);
Florian Grandeld2609b32015-06-18 03:16:34 +02002720 if (!adv_instance)
2721 return -ENOMEM;
2722
Florian Grandelfffd38b2015-06-18 03:16:47 +02002723 adv_instance->pending = true;
Florian Grandeld2609b32015-06-18 03:16:34 +02002724 adv_instance->instance = instance;
2725 list_add(&adv_instance->list, &hdev->adv_instances);
2726 hdev->adv_instance_cnt++;
2727 }
2728
2729 adv_instance->flags = flags;
2730 adv_instance->adv_data_len = adv_data_len;
2731 adv_instance->scan_rsp_len = scan_rsp_len;
2732
2733 if (adv_data_len)
2734 memcpy(adv_instance->adv_data, adv_data, adv_data_len);
2735
2736 if (scan_rsp_len)
2737 memcpy(adv_instance->scan_rsp_data,
2738 scan_rsp_data, scan_rsp_len);
2739
2740 adv_instance->timeout = timeout;
Florian Grandel5d900e42015-06-18 03:16:35 +02002741 adv_instance->remaining_time = timeout;
Florian Grandeld2609b32015-06-18 03:16:34 +02002742
2743 if (duration == 0)
2744 adv_instance->duration = HCI_DEFAULT_ADV_DURATION;
2745 else
2746 adv_instance->duration = duration;
2747
2748 BT_DBG("%s for %dMR", hdev->name, instance);
2749
2750 return 0;
2751}
2752
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002753struct bdaddr_list *hci_bdaddr_list_lookup(struct list_head *bdaddr_list,
Marcel Holtmannb9ee0a72013-10-17 17:24:13 -07002754 bdaddr_t *bdaddr, u8 type)
Antti Julkub2a66aa2011-06-15 12:01:14 +03002755{
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02002756 struct bdaddr_list *b;
Antti Julkub2a66aa2011-06-15 12:01:14 +03002757
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002758 list_for_each_entry(b, bdaddr_list, list) {
Marcel Holtmannb9ee0a72013-10-17 17:24:13 -07002759 if (!bacmp(&b->bdaddr, bdaddr) && b->bdaddr_type == type)
Antti Julkub2a66aa2011-06-15 12:01:14 +03002760 return b;
Marcel Holtmannb9ee0a72013-10-17 17:24:13 -07002761 }
Antti Julkub2a66aa2011-06-15 12:01:14 +03002762
2763 return NULL;
2764}
2765
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002766void hci_bdaddr_list_clear(struct list_head *bdaddr_list)
Antti Julkub2a66aa2011-06-15 12:01:14 +03002767{
2768 struct list_head *p, *n;
2769
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002770 list_for_each_safe(p, n, bdaddr_list) {
Marcel Holtmannb9ee0a72013-10-17 17:24:13 -07002771 struct bdaddr_list *b = list_entry(p, struct bdaddr_list, list);
Antti Julkub2a66aa2011-06-15 12:01:14 +03002772
2773 list_del(p);
2774 kfree(b);
2775 }
Antti Julkub2a66aa2011-06-15 12:01:14 +03002776}
2777
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002778int hci_bdaddr_list_add(struct list_head *list, bdaddr_t *bdaddr, u8 type)
Antti Julkub2a66aa2011-06-15 12:01:14 +03002779{
2780 struct bdaddr_list *entry;
Antti Julkub2a66aa2011-06-15 12:01:14 +03002781
Marcel Holtmannb9ee0a72013-10-17 17:24:13 -07002782 if (!bacmp(bdaddr, BDADDR_ANY))
Antti Julkub2a66aa2011-06-15 12:01:14 +03002783 return -EBADF;
2784
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002785 if (hci_bdaddr_list_lookup(list, bdaddr, type))
Antti Julku5e762442011-08-25 16:48:02 +03002786 return -EEXIST;
Antti Julkub2a66aa2011-06-15 12:01:14 +03002787
Johan Hedberg27f70f32014-07-21 10:50:06 +03002788 entry = kzalloc(sizeof(*entry), GFP_KERNEL);
Antti Julku5e762442011-08-25 16:48:02 +03002789 if (!entry)
2790 return -ENOMEM;
Antti Julkub2a66aa2011-06-15 12:01:14 +03002791
2792 bacpy(&entry->bdaddr, bdaddr);
Marcel Holtmannb9ee0a72013-10-17 17:24:13 -07002793 entry->bdaddr_type = type;
Antti Julkub2a66aa2011-06-15 12:01:14 +03002794
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002795 list_add(&entry->list, list);
Marcel Holtmannd2ab0ac2014-02-27 20:37:30 -08002796
2797 return 0;
2798}
2799
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002800int hci_bdaddr_list_del(struct list_head *list, bdaddr_t *bdaddr, u8 type)
Marcel Holtmannd2ab0ac2014-02-27 20:37:30 -08002801{
2802 struct bdaddr_list *entry;
2803
Johan Hedberg35f74982014-02-18 17:14:32 +02002804 if (!bacmp(bdaddr, BDADDR_ANY)) {
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002805 hci_bdaddr_list_clear(list);
Johan Hedberg35f74982014-02-18 17:14:32 +02002806 return 0;
2807 }
Marcel Holtmannd2ab0ac2014-02-27 20:37:30 -08002808
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002809 entry = hci_bdaddr_list_lookup(list, bdaddr, type);
Marcel Holtmannd2ab0ac2014-02-27 20:37:30 -08002810 if (!entry)
2811 return -ENOENT;
2812
2813 list_del(&entry->list);
2814 kfree(entry);
2815
2816 return 0;
2817}
2818
Andre Guedes15819a72014-02-03 13:56:18 -03002819/* This function requires the caller holds hdev->lock */
2820struct hci_conn_params *hci_conn_params_lookup(struct hci_dev *hdev,
2821 bdaddr_t *addr, u8 addr_type)
2822{
2823 struct hci_conn_params *params;
2824
Johan Hedberg738f6182014-07-03 19:33:51 +03002825 /* The conn params list only contains identity addresses */
2826 if (!hci_is_identity_address(addr, addr_type))
2827 return NULL;
2828
Andre Guedes15819a72014-02-03 13:56:18 -03002829 list_for_each_entry(params, &hdev->le_conn_params, list) {
2830 if (bacmp(&params->addr, addr) == 0 &&
2831 params->addr_type == addr_type) {
2832 return params;
2833 }
2834 }
2835
2836 return NULL;
2837}
2838
2839/* This function requires the caller holds hdev->lock */
Johan Hedberg501f8822014-07-04 12:37:26 +03002840struct hci_conn_params *hci_pend_le_action_lookup(struct list_head *list,
2841 bdaddr_t *addr, u8 addr_type)
Andre Guedes15819a72014-02-03 13:56:18 -03002842{
Johan Hedberg912b42e2014-07-03 19:33:49 +03002843 struct hci_conn_params *param;
Andre Guedes15819a72014-02-03 13:56:18 -03002844
Johan Hedberg738f6182014-07-03 19:33:51 +03002845 /* The list only contains identity addresses */
2846 if (!hci_is_identity_address(addr, addr_type))
2847 return NULL;
Andre Guedes15819a72014-02-03 13:56:18 -03002848
Johan Hedberg501f8822014-07-04 12:37:26 +03002849 list_for_each_entry(param, list, action) {
Johan Hedberg912b42e2014-07-03 19:33:49 +03002850 if (bacmp(&param->addr, addr) == 0 &&
2851 param->addr_type == addr_type)
2852 return param;
Marcel Holtmann4b109662014-06-29 13:41:49 +02002853 }
2854
2855 return NULL;
Andre Guedes15819a72014-02-03 13:56:18 -03002856}
2857
2858/* This function requires the caller holds hdev->lock */
Marcel Holtmann51d167c2014-07-01 12:11:04 +02002859struct hci_conn_params *hci_conn_params_add(struct hci_dev *hdev,
2860 bdaddr_t *addr, u8 addr_type)
Andre Guedes15819a72014-02-03 13:56:18 -03002861{
2862 struct hci_conn_params *params;
2863
Johan Hedbergc46245b2014-07-02 17:37:33 +03002864 if (!hci_is_identity_address(addr, addr_type))
Marcel Holtmann51d167c2014-07-01 12:11:04 +02002865 return NULL;
Andre Guedesa9b0a042014-02-26 20:21:52 -03002866
Andre Guedes15819a72014-02-03 13:56:18 -03002867 params = hci_conn_params_lookup(hdev, addr, addr_type);
Andre Guedescef952c2014-02-26 20:21:49 -03002868 if (params)
Marcel Holtmann51d167c2014-07-01 12:11:04 +02002869 return params;
Andre Guedes15819a72014-02-03 13:56:18 -03002870
2871 params = kzalloc(sizeof(*params), GFP_KERNEL);
2872 if (!params) {
2873 BT_ERR("Out of memory");
Marcel Holtmann51d167c2014-07-01 12:11:04 +02002874 return NULL;
Andre Guedes15819a72014-02-03 13:56:18 -03002875 }
2876
2877 bacpy(&params->addr, addr);
2878 params->addr_type = addr_type;
Andre Guedescef952c2014-02-26 20:21:49 -03002879
2880 list_add(&params->list, &hdev->le_conn_params);
Johan Hedberg93450c72014-07-04 12:37:17 +03002881 INIT_LIST_HEAD(&params->action);
Andre Guedescef952c2014-02-26 20:21:49 -03002882
Marcel Holtmannbf5b3c82014-06-30 12:34:39 +02002883 params->conn_min_interval = hdev->le_conn_min_interval;
2884 params->conn_max_interval = hdev->le_conn_max_interval;
2885 params->conn_latency = hdev->le_conn_latency;
2886 params->supervision_timeout = hdev->le_supv_timeout;
2887 params->auto_connect = HCI_AUTO_CONN_DISABLED;
2888
2889 BT_DBG("addr %pMR (type %u)", addr, addr_type);
2890
Marcel Holtmann51d167c2014-07-01 12:11:04 +02002891 return params;
Marcel Holtmannbf5b3c82014-06-30 12:34:39 +02002892}
2893
Johan Hedbergf6c63242014-08-15 21:06:59 +03002894static void hci_conn_params_free(struct hci_conn_params *params)
2895{
2896 if (params->conn) {
2897 hci_conn_drop(params->conn);
2898 hci_conn_put(params->conn);
2899 }
2900
2901 list_del(&params->action);
2902 list_del(&params->list);
2903 kfree(params);
2904}
2905
Andre Guedes15819a72014-02-03 13:56:18 -03002906/* This function requires the caller holds hdev->lock */
2907void hci_conn_params_del(struct hci_dev *hdev, bdaddr_t *addr, u8 addr_type)
2908{
2909 struct hci_conn_params *params;
2910
2911 params = hci_conn_params_lookup(hdev, addr, addr_type);
2912 if (!params)
2913 return;
2914
Johan Hedbergf6c63242014-08-15 21:06:59 +03002915 hci_conn_params_free(params);
Andre Guedes15819a72014-02-03 13:56:18 -03002916
Johan Hedberg95305ba2014-07-04 12:37:21 +03002917 hci_update_background_scan(hdev);
2918
Andre Guedes15819a72014-02-03 13:56:18 -03002919 BT_DBG("addr %pMR (type %u)", addr, addr_type);
2920}
2921
2922/* This function requires the caller holds hdev->lock */
Johan Hedberg55af49a2014-07-02 17:37:26 +03002923void hci_conn_params_clear_disabled(struct hci_dev *hdev)
Andre Guedes15819a72014-02-03 13:56:18 -03002924{
2925 struct hci_conn_params *params, *tmp;
2926
2927 list_for_each_entry_safe(params, tmp, &hdev->le_conn_params, list) {
Johan Hedberg55af49a2014-07-02 17:37:26 +03002928 if (params->auto_connect != HCI_AUTO_CONN_DISABLED)
2929 continue;
Andre Guedes15819a72014-02-03 13:56:18 -03002930 list_del(&params->list);
2931 kfree(params);
2932 }
2933
Johan Hedberg55af49a2014-07-02 17:37:26 +03002934 BT_DBG("All LE disabled connection parameters were removed");
2935}
2936
2937/* This function requires the caller holds hdev->lock */
Johan Hedberg373110c2014-07-02 17:37:25 +03002938void hci_conn_params_clear_all(struct hci_dev *hdev)
Andre Guedes15819a72014-02-03 13:56:18 -03002939{
2940 struct hci_conn_params *params, *tmp;
2941
Johan Hedbergf6c63242014-08-15 21:06:59 +03002942 list_for_each_entry_safe(params, tmp, &hdev->le_conn_params, list)
2943 hci_conn_params_free(params);
Andre Guedes15819a72014-02-03 13:56:18 -03002944
Johan Hedberga2f41a82014-07-04 12:37:19 +03002945 hci_update_background_scan(hdev);
Marcel Holtmann1089b672014-06-29 13:41:50 +02002946
Andre Guedes15819a72014-02-03 13:56:18 -03002947 BT_DBG("All LE connection parameters were removed");
2948}
2949
Marcel Holtmann1904a852015-01-11 13:50:44 -08002950static void inquiry_complete(struct hci_dev *hdev, u8 status, u16 opcode)
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03002951{
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002952 if (status) {
2953 BT_ERR("Failed to start inquiry: status %d", status);
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03002954
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002955 hci_dev_lock(hdev);
2956 hci_discovery_set_state(hdev, DISCOVERY_STOPPED);
2957 hci_dev_unlock(hdev);
2958 return;
2959 }
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03002960}
2961
Marcel Holtmann1904a852015-01-11 13:50:44 -08002962static void le_scan_disable_work_complete(struct hci_dev *hdev, u8 status,
2963 u16 opcode)
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03002964{
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002965 /* General inquiry access code (GIAC) */
2966 u8 lap[3] = { 0x33, 0x8b, 0x9e };
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002967 struct hci_cp_inquiry cp;
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03002968 int err;
2969
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002970 if (status) {
2971 BT_ERR("Failed to disable LE scanning: status %d", status);
2972 return;
Andre Guedes7dbfac12012-03-15 16:52:07 -03002973 }
2974
Jakub Pawlowski2d28cfe2015-02-01 23:07:54 -08002975 hdev->discovery.scan_start = 0;
2976
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002977 switch (hdev->discovery.type) {
2978 case DISCOV_TYPE_LE:
2979 hci_dev_lock(hdev);
2980 hci_discovery_set_state(hdev, DISCOVERY_STOPPED);
2981 hci_dev_unlock(hdev);
2982 break;
2983
2984 case DISCOV_TYPE_INTERLEAVED:
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002985 hci_dev_lock(hdev);
2986
Jakub Pawlowski07d23342015-03-17 09:04:14 -07002987 if (test_bit(HCI_QUIRK_SIMULTANEOUS_DISCOVERY,
2988 &hdev->quirks)) {
2989 /* If we were running LE only scan, change discovery
2990 * state. If we were running both LE and BR/EDR inquiry
2991 * simultaneously, and BR/EDR inquiry is already
2992 * finished, stop discovery, otherwise BR/EDR inquiry
Wesley Kuo177d0502015-05-13 10:33:15 +08002993 * will stop discovery when finished. If we will resolve
2994 * remote device name, do not change discovery state.
Jakub Pawlowski07d23342015-03-17 09:04:14 -07002995 */
Wesley Kuo177d0502015-05-13 10:33:15 +08002996 if (!test_bit(HCI_INQUIRY, &hdev->flags) &&
2997 hdev->discovery.state != DISCOVERY_RESOLVING)
Jakub Pawlowski07d23342015-03-17 09:04:14 -07002998 hci_discovery_set_state(hdev,
2999 DISCOVERY_STOPPED);
3000 } else {
Johan Hedbergbaf880a2015-03-21 08:02:23 +02003001 struct hci_request req;
3002
Jakub Pawlowski07d23342015-03-17 09:04:14 -07003003 hci_inquiry_cache_flush(hdev);
Andre Guedes4c87eaa2013-04-30 15:29:32 -03003004
Johan Hedbergbaf880a2015-03-21 08:02:23 +02003005 hci_req_init(&req, hdev);
3006
3007 memset(&cp, 0, sizeof(cp));
3008 memcpy(&cp.lap, lap, sizeof(cp.lap));
3009 cp.length = DISCOV_INTERLEAVED_INQUIRY_LEN;
3010 hci_req_add(&req, HCI_OP_INQUIRY, sizeof(cp), &cp);
3011
Jakub Pawlowski07d23342015-03-17 09:04:14 -07003012 err = hci_req_run(&req, inquiry_complete);
3013 if (err) {
3014 BT_ERR("Inquiry request failed: err %d", err);
3015 hci_discovery_set_state(hdev,
3016 DISCOVERY_STOPPED);
3017 }
Andre Guedes4c87eaa2013-04-30 15:29:32 -03003018 }
3019
3020 hci_dev_unlock(hdev);
3021 break;
3022 }
Andre Guedes7dbfac12012-03-15 16:52:07 -03003023}
3024
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03003025static void le_scan_disable_work(struct work_struct *work)
3026{
3027 struct hci_dev *hdev = container_of(work, struct hci_dev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03003028 le_scan_disable.work);
Andre Guedes4c87eaa2013-04-30 15:29:32 -03003029 struct hci_request req;
3030 int err;
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03003031
3032 BT_DBG("%s", hdev->name);
3033
Jakub Pawlowski2d28cfe2015-02-01 23:07:54 -08003034 cancel_delayed_work_sync(&hdev->le_scan_restart);
3035
Andre Guedes4c87eaa2013-04-30 15:29:32 -03003036 hci_req_init(&req, hdev);
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03003037
Andre Guedesb1efcc22014-02-26 20:21:40 -03003038 hci_req_add_le_scan_disable(&req);
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03003039
Andre Guedes4c87eaa2013-04-30 15:29:32 -03003040 err = hci_req_run(&req, le_scan_disable_work_complete);
3041 if (err)
3042 BT_ERR("Disable LE scanning request failed: err %d", err);
Andre Guedes28b75a82012-02-03 17:48:00 -03003043}
3044
Jakub Pawlowski2d28cfe2015-02-01 23:07:54 -08003045static void le_scan_restart_work_complete(struct hci_dev *hdev, u8 status,
3046 u16 opcode)
3047{
3048 unsigned long timeout, duration, scan_start, now;
3049
3050 BT_DBG("%s", hdev->name);
3051
3052 if (status) {
3053 BT_ERR("Failed to restart LE scan: status %d", status);
3054 return;
3055 }
3056
3057 if (!test_bit(HCI_QUIRK_STRICT_DUPLICATE_FILTER, &hdev->quirks) ||
3058 !hdev->discovery.scan_start)
3059 return;
3060
3061 /* When the scan was started, hdev->le_scan_disable has been queued
3062 * after duration from scan_start. During scan restart this job
3063 * has been canceled, and we need to queue it again after proper
3064 * timeout, to make sure that scan does not run indefinitely.
3065 */
3066 duration = hdev->discovery.scan_duration;
3067 scan_start = hdev->discovery.scan_start;
3068 now = jiffies;
3069 if (now - scan_start <= duration) {
3070 int elapsed;
3071
3072 if (now >= scan_start)
3073 elapsed = now - scan_start;
3074 else
3075 elapsed = ULONG_MAX - scan_start + now;
3076
3077 timeout = duration - elapsed;
3078 } else {
3079 timeout = 0;
3080 }
3081 queue_delayed_work(hdev->workqueue,
3082 &hdev->le_scan_disable, timeout);
3083}
3084
3085static void le_scan_restart_work(struct work_struct *work)
3086{
3087 struct hci_dev *hdev = container_of(work, struct hci_dev,
3088 le_scan_restart.work);
3089 struct hci_request req;
3090 struct hci_cp_le_set_scan_enable cp;
3091 int err;
3092
3093 BT_DBG("%s", hdev->name);
3094
3095 /* If controller is not scanning we are done. */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07003096 if (!hci_dev_test_flag(hdev, HCI_LE_SCAN))
Jakub Pawlowski2d28cfe2015-02-01 23:07:54 -08003097 return;
3098
3099 hci_req_init(&req, hdev);
3100
3101 hci_req_add_le_scan_disable(&req);
3102
3103 memset(&cp, 0, sizeof(cp));
3104 cp.enable = LE_SCAN_ENABLE;
3105 cp.filter_dup = LE_SCAN_FILTER_DUP_ENABLE;
3106 hci_req_add(&req, HCI_OP_LE_SET_SCAN_ENABLE, sizeof(cp), &cp);
3107
3108 err = hci_req_run(&req, le_scan_restart_work_complete);
3109 if (err)
3110 BT_ERR("Restart LE scan request failed: err %d", err);
3111}
3112
Johan Hedberga1f4c312014-02-27 14:05:41 +02003113/* Copy the Identity Address of the controller.
3114 *
3115 * If the controller has a public BD_ADDR, then by default use that one.
3116 * If this is a LE only controller without a public address, default to
3117 * the static random address.
3118 *
3119 * For debugging purposes it is possible to force controllers with a
3120 * public address to use the static random address instead.
Marcel Holtmann50b5b952014-12-19 23:05:35 +01003121 *
3122 * In case BR/EDR has been disabled on a dual-mode controller and
3123 * userspace has configured a static address, then that address
3124 * becomes the identity address instead of the public BR/EDR address.
Johan Hedberga1f4c312014-02-27 14:05:41 +02003125 */
3126void hci_copy_identity_address(struct hci_dev *hdev, bdaddr_t *bdaddr,
3127 u8 *bdaddr_type)
3128{
Marcel Holtmannb7cb93e2015-03-13 10:20:35 -07003129 if (hci_dev_test_flag(hdev, HCI_FORCE_STATIC_ADDR) ||
Marcel Holtmann50b5b952014-12-19 23:05:35 +01003130 !bacmp(&hdev->bdaddr, BDADDR_ANY) ||
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07003131 (!hci_dev_test_flag(hdev, HCI_BREDR_ENABLED) &&
Marcel Holtmann50b5b952014-12-19 23:05:35 +01003132 bacmp(&hdev->static_addr, BDADDR_ANY))) {
Johan Hedberga1f4c312014-02-27 14:05:41 +02003133 bacpy(bdaddr, &hdev->static_addr);
3134 *bdaddr_type = ADDR_LE_DEV_RANDOM;
3135 } else {
3136 bacpy(bdaddr, &hdev->bdaddr);
3137 *bdaddr_type = ADDR_LE_DEV_PUBLIC;
3138 }
3139}
3140
David Herrmann9be0dab2012-04-22 14:39:57 +02003141/* Alloc HCI device */
3142struct hci_dev *hci_alloc_dev(void)
3143{
3144 struct hci_dev *hdev;
3145
Johan Hedberg27f70f32014-07-21 10:50:06 +03003146 hdev = kzalloc(sizeof(*hdev), GFP_KERNEL);
David Herrmann9be0dab2012-04-22 14:39:57 +02003147 if (!hdev)
3148 return NULL;
3149
David Herrmannb1b813d2012-04-22 14:39:58 +02003150 hdev->pkt_type = (HCI_DM1 | HCI_DH1 | HCI_HV1);
3151 hdev->esco_type = (ESCO_HV1);
3152 hdev->link_mode = (HCI_LM_ACCEPT);
Marcel Holtmannb4cb9fb2013-10-14 13:56:16 -07003153 hdev->num_iac = 0x01; /* One IAC support is mandatory */
3154 hdev->io_capability = 0x03; /* No Input No Output */
Marcel Holtmann96c21032014-07-02 11:30:51 +02003155 hdev->manufacturer = 0xffff; /* Default to internal use */
Johan Hedbergbbaf4442012-11-08 01:22:59 +01003156 hdev->inq_tx_power = HCI_TX_POWER_INVALID;
3157 hdev->adv_tx_power = HCI_TX_POWER_INVALID;
Florian Grandeld2609b32015-06-18 03:16:34 +02003158 hdev->adv_instance_cnt = 0;
3159 hdev->cur_adv_instance = 0x00;
Florian Grandel5d900e42015-06-18 03:16:35 +02003160 hdev->adv_instance_timeout = 0;
David Herrmannb1b813d2012-04-22 14:39:58 +02003161
David Herrmannb1b813d2012-04-22 14:39:58 +02003162 hdev->sniff_max_interval = 800;
3163 hdev->sniff_min_interval = 80;
3164
Marcel Holtmann3f959d42014-02-20 11:55:56 -08003165 hdev->le_adv_channel_map = 0x07;
Georg Lukas628531c2014-07-26 13:59:57 +02003166 hdev->le_adv_min_interval = 0x0800;
3167 hdev->le_adv_max_interval = 0x0800;
Marcel Holtmannbef64732013-10-11 08:23:19 -07003168 hdev->le_scan_interval = 0x0060;
3169 hdev->le_scan_window = 0x0030;
Marcel Holtmann4e70c7e2013-10-19 07:09:13 -07003170 hdev->le_conn_min_interval = 0x0028;
3171 hdev->le_conn_max_interval = 0x0038;
Marcel Holtmann04fb7d92014-06-30 12:34:36 +02003172 hdev->le_conn_latency = 0x0000;
3173 hdev->le_supv_timeout = 0x002a;
Marcel Holtmanna8e1bfa2014-12-20 16:28:40 +01003174 hdev->le_def_tx_len = 0x001b;
3175 hdev->le_def_tx_time = 0x0148;
3176 hdev->le_max_tx_len = 0x001b;
3177 hdev->le_max_tx_time = 0x0148;
3178 hdev->le_max_rx_len = 0x001b;
3179 hdev->le_max_rx_time = 0x0148;
Marcel Holtmannbef64732013-10-11 08:23:19 -07003180
Johan Hedbergd6bfd592014-02-23 19:42:20 +02003181 hdev->rpa_timeout = HCI_DEFAULT_RPA_TIMEOUT;
Lukasz Rymanowskib9a7a612014-03-27 20:55:20 +01003182 hdev->discov_interleaved_timeout = DISCOV_INTERLEAVED_TIMEOUT;
Andrzej Kaczmarek31ad1692014-05-14 13:43:02 +02003183 hdev->conn_info_min_age = DEFAULT_CONN_INFO_MIN_AGE;
3184 hdev->conn_info_max_age = DEFAULT_CONN_INFO_MAX_AGE;
Johan Hedbergd6bfd592014-02-23 19:42:20 +02003185
David Herrmannb1b813d2012-04-22 14:39:58 +02003186 mutex_init(&hdev->lock);
3187 mutex_init(&hdev->req_lock);
3188
3189 INIT_LIST_HEAD(&hdev->mgmt_pending);
3190 INIT_LIST_HEAD(&hdev->blacklist);
Johan Hedberg66593582014-07-09 12:59:14 +03003191 INIT_LIST_HEAD(&hdev->whitelist);
David Herrmannb1b813d2012-04-22 14:39:58 +02003192 INIT_LIST_HEAD(&hdev->uuids);
3193 INIT_LIST_HEAD(&hdev->link_keys);
3194 INIT_LIST_HEAD(&hdev->long_term_keys);
Johan Hedberg970c4e42014-02-18 10:19:33 +02003195 INIT_LIST_HEAD(&hdev->identity_resolving_keys);
David Herrmannb1b813d2012-04-22 14:39:58 +02003196 INIT_LIST_HEAD(&hdev->remote_oob_data);
Marcel Holtmannd2ab0ac2014-02-27 20:37:30 -08003197 INIT_LIST_HEAD(&hdev->le_white_list);
Andre Guedes15819a72014-02-03 13:56:18 -03003198 INIT_LIST_HEAD(&hdev->le_conn_params);
Andre Guedes77a77a32014-02-26 20:21:46 -03003199 INIT_LIST_HEAD(&hdev->pend_le_conns);
Johan Hedberg66f84552014-07-04 12:37:18 +03003200 INIT_LIST_HEAD(&hdev->pend_le_reports);
Andrei Emeltchenko6b536b52012-08-31 16:39:28 +03003201 INIT_LIST_HEAD(&hdev->conn_hash.list);
Florian Grandeld2609b32015-06-18 03:16:34 +02003202 INIT_LIST_HEAD(&hdev->adv_instances);
David Herrmannb1b813d2012-04-22 14:39:58 +02003203
3204 INIT_WORK(&hdev->rx_work, hci_rx_work);
3205 INIT_WORK(&hdev->cmd_work, hci_cmd_work);
3206 INIT_WORK(&hdev->tx_work, hci_tx_work);
3207 INIT_WORK(&hdev->power_on, hci_power_on);
Marcel Holtmannc7741d12015-01-28 11:09:55 -08003208 INIT_WORK(&hdev->error_reset, hci_error_reset);
David Herrmannb1b813d2012-04-22 14:39:58 +02003209
David Herrmannb1b813d2012-04-22 14:39:58 +02003210 INIT_DELAYED_WORK(&hdev->power_off, hci_power_off);
3211 INIT_DELAYED_WORK(&hdev->discov_off, hci_discov_off);
3212 INIT_DELAYED_WORK(&hdev->le_scan_disable, le_scan_disable_work);
Jakub Pawlowski2d28cfe2015-02-01 23:07:54 -08003213 INIT_DELAYED_WORK(&hdev->le_scan_restart, le_scan_restart_work);
Florian Grandel5d900e42015-06-18 03:16:35 +02003214 INIT_DELAYED_WORK(&hdev->adv_instance_expire, hci_adv_timeout_expire);
David Herrmannb1b813d2012-04-22 14:39:58 +02003215
David Herrmannb1b813d2012-04-22 14:39:58 +02003216 skb_queue_head_init(&hdev->rx_q);
3217 skb_queue_head_init(&hdev->cmd_q);
3218 skb_queue_head_init(&hdev->raw_q);
3219
3220 init_waitqueue_head(&hdev->req_wait_q);
3221
Marcel Holtmann65cc2b42014-06-16 12:30:56 +02003222 INIT_DELAYED_WORK(&hdev->cmd_timer, hci_cmd_timeout);
David Herrmannb1b813d2012-04-22 14:39:58 +02003223
David Herrmannb1b813d2012-04-22 14:39:58 +02003224 hci_init_sysfs(hdev);
3225 discovery_init(hdev);
David Herrmann9be0dab2012-04-22 14:39:57 +02003226
3227 return hdev;
3228}
3229EXPORT_SYMBOL(hci_alloc_dev);
3230
3231/* Free HCI device */
3232void hci_free_dev(struct hci_dev *hdev)
3233{
David Herrmann9be0dab2012-04-22 14:39:57 +02003234 /* will free via device release */
3235 put_device(&hdev->dev);
3236}
3237EXPORT_SYMBOL(hci_free_dev);
3238
Linus Torvalds1da177e2005-04-16 15:20:36 -07003239/* Register HCI device */
3240int hci_register_dev(struct hci_dev *hdev)
3241{
David Herrmannb1b813d2012-04-22 14:39:58 +02003242 int id, error;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003243
Marcel Holtmann74292d52014-07-06 15:50:27 +02003244 if (!hdev->open || !hdev->close || !hdev->send)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003245 return -EINVAL;
3246
Mat Martineau08add512011-11-02 16:18:36 -07003247 /* Do not allow HCI_AMP devices to register at index 0,
3248 * so the index can be used as the AMP controller ID.
3249 */
Sasha Levin3df92b32012-05-27 22:36:56 +02003250 switch (hdev->dev_type) {
3251 case HCI_BREDR:
3252 id = ida_simple_get(&hci_index_ida, 0, 0, GFP_KERNEL);
3253 break;
3254 case HCI_AMP:
3255 id = ida_simple_get(&hci_index_ida, 1, 0, GFP_KERNEL);
3256 break;
3257 default:
3258 return -EINVAL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003259 }
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09003260
Sasha Levin3df92b32012-05-27 22:36:56 +02003261 if (id < 0)
3262 return id;
3263
Linus Torvalds1da177e2005-04-16 15:20:36 -07003264 sprintf(hdev->name, "hci%d", id);
3265 hdev->id = id;
Andrei Emeltchenko2d8b3a12012-04-16 16:32:04 +03003266
3267 BT_DBG("%p name %s bus %d", hdev, hdev->name, hdev->bus);
3268
Kees Cookd8537542013-07-03 15:04:57 -07003269 hdev->workqueue = alloc_workqueue("%s", WQ_HIGHPRI | WQ_UNBOUND |
3270 WQ_MEM_RECLAIM, 1, hdev->name);
David Herrmann33ca9542011-10-08 14:58:49 +02003271 if (!hdev->workqueue) {
3272 error = -ENOMEM;
3273 goto err;
3274 }
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01003275
Kees Cookd8537542013-07-03 15:04:57 -07003276 hdev->req_workqueue = alloc_workqueue("%s", WQ_HIGHPRI | WQ_UNBOUND |
3277 WQ_MEM_RECLAIM, 1, hdev->name);
Johan Hedberg6ead1bb2013-01-14 22:33:50 +02003278 if (!hdev->req_workqueue) {
3279 destroy_workqueue(hdev->workqueue);
3280 error = -ENOMEM;
3281 goto err;
3282 }
3283
Marcel Holtmann0153e2e2013-10-17 17:24:17 -07003284 if (!IS_ERR_OR_NULL(bt_debugfs))
3285 hdev->debugfs = debugfs_create_dir(hdev->name, bt_debugfs);
3286
Marcel Holtmannbdc3e0f2013-10-17 17:24:19 -07003287 dev_set_name(&hdev->dev, "%s", hdev->name);
3288
3289 error = device_add(&hdev->dev);
David Herrmann33ca9542011-10-08 14:58:49 +02003290 if (error < 0)
Johan Hedberg54506912014-08-08 09:32:51 +03003291 goto err_wqueue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003292
Marcel Holtmann611b30f2009-06-08 14:41:38 +02003293 hdev->rfkill = rfkill_alloc(hdev->name, &hdev->dev,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003294 RFKILL_TYPE_BLUETOOTH, &hci_rfkill_ops,
3295 hdev);
Marcel Holtmann611b30f2009-06-08 14:41:38 +02003296 if (hdev->rfkill) {
3297 if (rfkill_register(hdev->rfkill) < 0) {
3298 rfkill_destroy(hdev->rfkill);
3299 hdev->rfkill = NULL;
3300 }
3301 }
3302
Johan Hedberg5e130362013-09-13 08:58:17 +03003303 if (hdev->rfkill && rfkill_blocked(hdev->rfkill))
Marcel Holtmanna1536da2015-03-13 02:11:01 -07003304 hci_dev_set_flag(hdev, HCI_RFKILLED);
Johan Hedberg5e130362013-09-13 08:58:17 +03003305
Marcel Holtmanna1536da2015-03-13 02:11:01 -07003306 hci_dev_set_flag(hdev, HCI_SETUP);
3307 hci_dev_set_flag(hdev, HCI_AUTO_OFF);
Andrei Emeltchenkoce2be9a2012-06-29 15:07:00 +03003308
Marcel Holtmann01cd3402013-10-06 01:16:22 -07003309 if (hdev->dev_type == HCI_BREDR) {
Johan Hedberg56f87902013-10-02 13:43:13 +03003310 /* Assume BR/EDR support until proven otherwise (such as
3311 * through reading supported features during init.
3312 */
Marcel Holtmanna1536da2015-03-13 02:11:01 -07003313 hci_dev_set_flag(hdev, HCI_BREDR_ENABLED);
Johan Hedberg56f87902013-10-02 13:43:13 +03003314 }
Andrei Emeltchenkoce2be9a2012-06-29 15:07:00 +03003315
Gustavo Padovanfcee3372013-07-11 11:34:28 +01003316 write_lock(&hci_dev_list_lock);
3317 list_add(&hdev->list, &hci_dev_list);
3318 write_unlock(&hci_dev_list_lock);
3319
Marcel Holtmann4a964402014-07-02 19:10:33 +02003320 /* Devices that are marked for raw-only usage are unconfigured
3321 * and should not be included in normal operation.
Marcel Holtmannfee746b2014-06-29 12:13:05 +02003322 */
3323 if (test_bit(HCI_QUIRK_RAW_DEVICE, &hdev->quirks))
Marcel Holtmanna1536da2015-03-13 02:11:01 -07003324 hci_dev_set_flag(hdev, HCI_UNCONFIGURED);
Marcel Holtmannfee746b2014-06-29 12:13:05 +02003325
Linus Torvalds1da177e2005-04-16 15:20:36 -07003326 hci_notify(hdev, HCI_DEV_REG);
David Herrmanndc946bd2012-01-07 15:47:24 +01003327 hci_dev_hold(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003328
Johan Hedberg19202572013-01-14 22:33:51 +02003329 queue_work(hdev->req_workqueue, &hdev->power_on);
Marcel Holtmannfbe96d62012-10-30 01:35:40 -07003330
Linus Torvalds1da177e2005-04-16 15:20:36 -07003331 return id;
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01003332
David Herrmann33ca9542011-10-08 14:58:49 +02003333err_wqueue:
3334 destroy_workqueue(hdev->workqueue);
Johan Hedberg6ead1bb2013-01-14 22:33:50 +02003335 destroy_workqueue(hdev->req_workqueue);
David Herrmann33ca9542011-10-08 14:58:49 +02003336err:
Sasha Levin3df92b32012-05-27 22:36:56 +02003337 ida_simple_remove(&hci_index_ida, hdev->id);
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01003338
David Herrmann33ca9542011-10-08 14:58:49 +02003339 return error;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003340}
3341EXPORT_SYMBOL(hci_register_dev);
3342
3343/* Unregister HCI device */
David Herrmann59735632011-10-26 10:43:19 +02003344void hci_unregister_dev(struct hci_dev *hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003345{
Marcel Holtmann2d7cc192015-04-04 21:59:27 -07003346 int id;
Marcel Holtmannef222012007-07-11 06:42:04 +02003347
Marcel Holtmannc13854c2010-02-08 15:27:07 +01003348 BT_DBG("%p name %s bus %d", hdev, hdev->name, hdev->bus);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003349
Marcel Holtmanna1536da2015-03-13 02:11:01 -07003350 hci_dev_set_flag(hdev, HCI_UNREGISTER);
Johan Hovold94324962012-03-15 14:48:41 +01003351
Sasha Levin3df92b32012-05-27 22:36:56 +02003352 id = hdev->id;
3353
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02003354 write_lock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003355 list_del(&hdev->list);
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02003356 write_unlock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003357
3358 hci_dev_do_close(hdev);
3359
Gustavo Padovanb9b5ef12012-11-21 00:50:21 -02003360 cancel_work_sync(&hdev->power_on);
3361
Johan Hedbergab81cbf2010-12-15 13:53:18 +02003362 if (!test_bit(HCI_INIT, &hdev->flags) &&
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07003363 !hci_dev_test_flag(hdev, HCI_SETUP) &&
3364 !hci_dev_test_flag(hdev, HCI_CONFIG)) {
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03003365 hci_dev_lock(hdev);
Johan Hedberg744cf192011-11-08 20:40:14 +02003366 mgmt_index_removed(hdev);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03003367 hci_dev_unlock(hdev);
Johan Hedberg56e5cb82011-11-08 20:40:16 +02003368 }
Johan Hedbergab81cbf2010-12-15 13:53:18 +02003369
Johan Hedberg2e58ef32011-11-08 20:40:15 +02003370 /* mgmt_index_removed should take care of emptying the
3371 * pending list */
3372 BUG_ON(!list_empty(&hdev->mgmt_pending));
3373
Linus Torvalds1da177e2005-04-16 15:20:36 -07003374 hci_notify(hdev, HCI_DEV_UNREG);
3375
Marcel Holtmann611b30f2009-06-08 14:41:38 +02003376 if (hdev->rfkill) {
3377 rfkill_unregister(hdev->rfkill);
3378 rfkill_destroy(hdev->rfkill);
3379 }
3380
Marcel Holtmannbdc3e0f2013-10-17 17:24:19 -07003381 device_del(&hdev->dev);
Dave Young147e2d52008-03-05 18:45:59 -08003382
Marcel Holtmann0153e2e2013-10-17 17:24:17 -07003383 debugfs_remove_recursive(hdev->debugfs);
3384
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01003385 destroy_workqueue(hdev->workqueue);
Johan Hedberg6ead1bb2013-01-14 22:33:50 +02003386 destroy_workqueue(hdev->req_workqueue);
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01003387
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03003388 hci_dev_lock(hdev);
Johan Hedbergdcc36c12014-07-09 12:59:13 +03003389 hci_bdaddr_list_clear(&hdev->blacklist);
Johan Hedberg66593582014-07-09 12:59:14 +03003390 hci_bdaddr_list_clear(&hdev->whitelist);
Johan Hedberg2aeb9a12011-01-04 12:08:51 +02003391 hci_uuids_clear(hdev);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02003392 hci_link_keys_clear(hdev);
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03003393 hci_smp_ltks_clear(hdev);
Johan Hedberg970c4e42014-02-18 10:19:33 +02003394 hci_smp_irks_clear(hdev);
Szymon Janc2763eda2011-03-22 13:12:22 +01003395 hci_remote_oob_data_clear(hdev);
Florian Grandeld2609b32015-06-18 03:16:34 +02003396 hci_adv_instances_clear(hdev);
Johan Hedbergdcc36c12014-07-09 12:59:13 +03003397 hci_bdaddr_list_clear(&hdev->le_white_list);
Johan Hedberg373110c2014-07-02 17:37:25 +03003398 hci_conn_params_clear_all(hdev);
Marcel Holtmann22078802014-12-05 11:45:22 +01003399 hci_discovery_filter_clear(hdev);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03003400 hci_dev_unlock(hdev);
Johan Hedberge2e0cac2011-01-04 12:08:50 +02003401
David Herrmanndc946bd2012-01-07 15:47:24 +01003402 hci_dev_put(hdev);
Sasha Levin3df92b32012-05-27 22:36:56 +02003403
3404 ida_simple_remove(&hci_index_ida, id);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003405}
3406EXPORT_SYMBOL(hci_unregister_dev);
3407
3408/* Suspend HCI device */
3409int hci_suspend_dev(struct hci_dev *hdev)
3410{
3411 hci_notify(hdev, HCI_DEV_SUSPEND);
3412 return 0;
3413}
3414EXPORT_SYMBOL(hci_suspend_dev);
3415
3416/* Resume HCI device */
3417int hci_resume_dev(struct hci_dev *hdev)
3418{
3419 hci_notify(hdev, HCI_DEV_RESUME);
3420 return 0;
3421}
3422EXPORT_SYMBOL(hci_resume_dev);
3423
Marcel Holtmann75e05692014-11-02 08:15:38 +01003424/* Reset HCI device */
3425int hci_reset_dev(struct hci_dev *hdev)
3426{
3427 const u8 hw_err[] = { HCI_EV_HARDWARE_ERROR, 0x01, 0x00 };
3428 struct sk_buff *skb;
3429
3430 skb = bt_skb_alloc(3, GFP_ATOMIC);
3431 if (!skb)
3432 return -ENOMEM;
3433
3434 bt_cb(skb)->pkt_type = HCI_EVENT_PKT;
3435 memcpy(skb_put(skb, 3), hw_err, 3);
3436
3437 /* Send Hardware Error to upper stack */
3438 return hci_recv_frame(hdev, skb);
3439}
3440EXPORT_SYMBOL(hci_reset_dev);
3441
Marcel Holtmann76bca882009-11-18 00:40:39 +01003442/* Receive frame from HCI drivers */
Marcel Holtmanne1a26172013-10-10 16:52:43 -07003443int hci_recv_frame(struct hci_dev *hdev, struct sk_buff *skb)
Marcel Holtmann76bca882009-11-18 00:40:39 +01003444{
Marcel Holtmann76bca882009-11-18 00:40:39 +01003445 if (!hdev || (!test_bit(HCI_UP, &hdev->flags)
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003446 && !test_bit(HCI_INIT, &hdev->flags))) {
Marcel Holtmann76bca882009-11-18 00:40:39 +01003447 kfree_skb(skb);
3448 return -ENXIO;
3449 }
3450
Jorrit Schippersd82603c2012-12-27 17:33:02 +01003451 /* Incoming skb */
Marcel Holtmann76bca882009-11-18 00:40:39 +01003452 bt_cb(skb)->incoming = 1;
3453
3454 /* Time stamp */
3455 __net_timestamp(skb);
3456
Marcel Holtmann76bca882009-11-18 00:40:39 +01003457 skb_queue_tail(&hdev->rx_q, skb);
Marcel Holtmannb78752c2010-08-08 23:06:53 -04003458 queue_work(hdev->workqueue, &hdev->rx_work);
Marcel Holtmannc78ae282009-11-18 01:02:54 +01003459
Marcel Holtmann76bca882009-11-18 00:40:39 +01003460 return 0;
3461}
3462EXPORT_SYMBOL(hci_recv_frame);
3463
Linus Torvalds1da177e2005-04-16 15:20:36 -07003464/* ---- Interface to upper protocols ---- */
3465
Linus Torvalds1da177e2005-04-16 15:20:36 -07003466int hci_register_cb(struct hci_cb *cb)
3467{
3468 BT_DBG("%p name %s", cb, cb->name);
3469
Johan Hedbergfba7ecf2015-02-18 14:53:55 +02003470 mutex_lock(&hci_cb_list_lock);
Johan Hedberg00629e02015-02-18 14:53:54 +02003471 list_add_tail(&cb->list, &hci_cb_list);
Johan Hedbergfba7ecf2015-02-18 14:53:55 +02003472 mutex_unlock(&hci_cb_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003473
3474 return 0;
3475}
3476EXPORT_SYMBOL(hci_register_cb);
3477
3478int hci_unregister_cb(struct hci_cb *cb)
3479{
3480 BT_DBG("%p name %s", cb, cb->name);
3481
Johan Hedbergfba7ecf2015-02-18 14:53:55 +02003482 mutex_lock(&hci_cb_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003483 list_del(&cb->list);
Johan Hedbergfba7ecf2015-02-18 14:53:55 +02003484 mutex_unlock(&hci_cb_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003485
3486 return 0;
3487}
3488EXPORT_SYMBOL(hci_unregister_cb);
3489
Marcel Holtmann51086992013-10-10 14:54:19 -07003490static void hci_send_frame(struct hci_dev *hdev, struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003491{
Marcel Holtmanncdc52fa2014-07-06 15:36:15 +02003492 int err;
3493
Marcel Holtmann0d48d932005-08-09 20:30:28 -07003494 BT_DBG("%s type %d len %d", hdev->name, bt_cb(skb)->pkt_type, skb->len);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003495
Marcel Holtmanncd82e612012-02-20 20:34:38 +01003496 /* Time stamp */
3497 __net_timestamp(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003498
Marcel Holtmanncd82e612012-02-20 20:34:38 +01003499 /* Send copy to monitor */
3500 hci_send_to_monitor(hdev, skb);
3501
3502 if (atomic_read(&hdev->promisc)) {
3503 /* Send copy to the sockets */
Marcel Holtmann470fe1b2012-02-20 14:50:30 +01003504 hci_send_to_sock(hdev, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003505 }
3506
3507 /* Get rid of skb owner, prior to sending to the driver. */
3508 skb_orphan(skb);
3509
Marcel Holtmanncdc52fa2014-07-06 15:36:15 +02003510 err = hdev->send(hdev, skb);
3511 if (err < 0) {
3512 BT_ERR("%s sending frame failed (%d)", hdev->name, err);
3513 kfree_skb(skb);
3514 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003515}
3516
Johan Hedberg1ca3a9d2013-03-05 20:37:45 +02003517/* Send HCI command */
Johan Hedberg07dc93d2013-04-19 10:14:51 +03003518int hci_send_cmd(struct hci_dev *hdev, __u16 opcode, __u32 plen,
3519 const void *param)
Johan Hedberg1ca3a9d2013-03-05 20:37:45 +02003520{
3521 struct sk_buff *skb;
3522
3523 BT_DBG("%s opcode 0x%4.4x plen %d", hdev->name, opcode, plen);
3524
3525 skb = hci_prepare_cmd(hdev, opcode, plen, param);
3526 if (!skb) {
3527 BT_ERR("%s no memory for command", hdev->name);
3528 return -ENOMEM;
3529 }
3530
Stephen Hemminger49c922b2014-10-27 21:12:20 -07003531 /* Stand-alone HCI commands must be flagged as
Johan Hedberg11714b32013-03-05 20:37:47 +02003532 * single-command requests.
3533 */
Johan Hedbergdb6e3e82015-03-30 23:21:02 +03003534 bt_cb(skb)->req.start = true;
Johan Hedberg11714b32013-03-05 20:37:47 +02003535
Linus Torvalds1da177e2005-04-16 15:20:36 -07003536 skb_queue_tail(&hdev->cmd_q, skb);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02003537 queue_work(hdev->workqueue, &hdev->cmd_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003538
3539 return 0;
3540}
Linus Torvalds1da177e2005-04-16 15:20:36 -07003541
3542/* Get data from the previously sent command */
Marcel Holtmanna9de9242007-10-20 13:33:56 +02003543void *hci_sent_cmd_data(struct hci_dev *hdev, __u16 opcode)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003544{
3545 struct hci_command_hdr *hdr;
3546
3547 if (!hdev->sent_cmd)
3548 return NULL;
3549
3550 hdr = (void *) hdev->sent_cmd->data;
3551
Marcel Holtmanna9de9242007-10-20 13:33:56 +02003552 if (hdr->opcode != cpu_to_le16(opcode))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003553 return NULL;
3554
Andrei Emeltchenkof0e09512012-06-11 11:13:09 +03003555 BT_DBG("%s opcode 0x%4.4x", hdev->name, opcode);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003556
3557 return hdev->sent_cmd->data + HCI_COMMAND_HDR_SIZE;
3558}
3559
3560/* Send ACL data */
3561static void hci_add_acl_hdr(struct sk_buff *skb, __u16 handle, __u16 flags)
3562{
3563 struct hci_acl_hdr *hdr;
3564 int len = skb->len;
3565
Arnaldo Carvalho de Melobadff6d2007-03-13 13:06:52 -03003566 skb_push(skb, HCI_ACL_HDR_SIZE);
3567 skb_reset_transport_header(skb);
Arnaldo Carvalho de Melo9c702202007-04-25 18:04:18 -07003568 hdr = (struct hci_acl_hdr *)skb_transport_header(skb);
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -07003569 hdr->handle = cpu_to_le16(hci_handle_pack(handle, flags));
3570 hdr->dlen = cpu_to_le16(len);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003571}
3572
Andrei Emeltchenkoee22be72012-09-21 12:30:04 +03003573static void hci_queue_acl(struct hci_chan *chan, struct sk_buff_head *queue,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003574 struct sk_buff *skb, __u16 flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003575{
Andrei Emeltchenkoee22be72012-09-21 12:30:04 +03003576 struct hci_conn *conn = chan->conn;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003577 struct hci_dev *hdev = conn->hdev;
3578 struct sk_buff *list;
3579
Gustavo Padovan087bfd92012-05-11 13:16:11 -03003580 skb->len = skb_headlen(skb);
3581 skb->data_len = 0;
3582
3583 bt_cb(skb)->pkt_type = HCI_ACLDATA_PKT;
Andrei Emeltchenko204a6e52012-10-15 11:58:39 +03003584
3585 switch (hdev->dev_type) {
3586 case HCI_BREDR:
3587 hci_add_acl_hdr(skb, conn->handle, flags);
3588 break;
3589 case HCI_AMP:
3590 hci_add_acl_hdr(skb, chan->handle, flags);
3591 break;
3592 default:
3593 BT_ERR("%s unknown dev_type %d", hdev->name, hdev->dev_type);
3594 return;
3595 }
Gustavo Padovan087bfd92012-05-11 13:16:11 -03003596
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02003597 list = skb_shinfo(skb)->frag_list;
3598 if (!list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003599 /* Non fragmented */
3600 BT_DBG("%s nonfrag skb %p len %d", hdev->name, skb, skb->len);
3601
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003602 skb_queue_tail(queue, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003603 } else {
3604 /* Fragmented */
3605 BT_DBG("%s frag %p len %d", hdev->name, skb, skb->len);
3606
3607 skb_shinfo(skb)->frag_list = NULL;
3608
Jukka Rissanen9cfd5a22014-10-29 10:16:00 +02003609 /* Queue all fragments atomically. We need to use spin_lock_bh
3610 * here because of 6LoWPAN links, as there this function is
3611 * called from softirq and using normal spin lock could cause
3612 * deadlocks.
3613 */
3614 spin_lock_bh(&queue->lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003615
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003616 __skb_queue_tail(queue, skb);
Andrei Emeltchenkoe7021122011-01-03 11:14:36 +02003617
3618 flags &= ~ACL_START;
3619 flags |= ACL_CONT;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003620 do {
3621 skb = list; list = list->next;
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09003622
Marcel Holtmann0d48d932005-08-09 20:30:28 -07003623 bt_cb(skb)->pkt_type = HCI_ACLDATA_PKT;
Andrei Emeltchenkoe7021122011-01-03 11:14:36 +02003624 hci_add_acl_hdr(skb, conn->handle, flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003625
3626 BT_DBG("%s frag %p len %d", hdev->name, skb, skb->len);
3627
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003628 __skb_queue_tail(queue, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003629 } while (list);
3630
Jukka Rissanen9cfd5a22014-10-29 10:16:00 +02003631 spin_unlock_bh(&queue->lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003632 }
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003633}
3634
3635void hci_send_acl(struct hci_chan *chan, struct sk_buff *skb, __u16 flags)
3636{
Andrei Emeltchenkoee22be72012-09-21 12:30:04 +03003637 struct hci_dev *hdev = chan->conn->hdev;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003638
Andrei Emeltchenkof0e09512012-06-11 11:13:09 +03003639 BT_DBG("%s chan %p flags 0x%4.4x", hdev->name, chan, flags);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003640
Andrei Emeltchenkoee22be72012-09-21 12:30:04 +03003641 hci_queue_acl(chan, &chan->data_q, skb, flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003642
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02003643 queue_work(hdev->workqueue, &hdev->tx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003644}
Linus Torvalds1da177e2005-04-16 15:20:36 -07003645
3646/* Send SCO data */
Gustavo F. Padovan0d861d82010-05-01 16:15:35 -03003647void hci_send_sco(struct hci_conn *conn, struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003648{
3649 struct hci_dev *hdev = conn->hdev;
3650 struct hci_sco_hdr hdr;
3651
3652 BT_DBG("%s len %d", hdev->name, skb->len);
3653
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -07003654 hdr.handle = cpu_to_le16(conn->handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003655 hdr.dlen = skb->len;
3656
Arnaldo Carvalho de Melobadff6d2007-03-13 13:06:52 -03003657 skb_push(skb, HCI_SCO_HDR_SIZE);
3658 skb_reset_transport_header(skb);
Arnaldo Carvalho de Melo9c702202007-04-25 18:04:18 -07003659 memcpy(skb_transport_header(skb), &hdr, HCI_SCO_HDR_SIZE);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003660
Marcel Holtmann0d48d932005-08-09 20:30:28 -07003661 bt_cb(skb)->pkt_type = HCI_SCODATA_PKT;
Marcel Holtmannc78ae282009-11-18 01:02:54 +01003662
Linus Torvalds1da177e2005-04-16 15:20:36 -07003663 skb_queue_tail(&conn->data_q, skb);
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02003664 queue_work(hdev->workqueue, &hdev->tx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003665}
Linus Torvalds1da177e2005-04-16 15:20:36 -07003666
3667/* ---- HCI TX task (outgoing data) ---- */
3668
3669/* HCI Connection scheduler */
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003670static struct hci_conn *hci_low_sent(struct hci_dev *hdev, __u8 type,
3671 int *quote)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003672{
3673 struct hci_conn_hash *h = &hdev->conn_hash;
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02003674 struct hci_conn *conn = NULL, *c;
Mikel Astizabc5de82012-04-11 08:48:47 +02003675 unsigned int num = 0, min = ~0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003676
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09003677 /* We don't have to lock device here. Connections are always
Linus Torvalds1da177e2005-04-16 15:20:36 -07003678 * added and removed with TX task disabled. */
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003679
3680 rcu_read_lock();
3681
3682 list_for_each_entry_rcu(c, &h->list, list) {
Marcel Holtmann769be972008-07-14 20:13:49 +02003683 if (c->type != type || skb_queue_empty(&c->data_q))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003684 continue;
Marcel Holtmann769be972008-07-14 20:13:49 +02003685
3686 if (c->state != BT_CONNECTED && c->state != BT_CONFIG)
3687 continue;
3688
Linus Torvalds1da177e2005-04-16 15:20:36 -07003689 num++;
3690
3691 if (c->sent < min) {
3692 min = c->sent;
3693 conn = c;
3694 }
Luiz Augusto von Dentz52087a72011-08-17 16:23:00 +03003695
3696 if (hci_conn_num(hdev, type) == num)
3697 break;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003698 }
3699
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003700 rcu_read_unlock();
3701
Linus Torvalds1da177e2005-04-16 15:20:36 -07003702 if (conn) {
Ville Tervo6ed58ec2011-02-10 22:38:48 -03003703 int cnt, q;
3704
3705 switch (conn->type) {
3706 case ACL_LINK:
3707 cnt = hdev->acl_cnt;
3708 break;
3709 case SCO_LINK:
3710 case ESCO_LINK:
3711 cnt = hdev->sco_cnt;
3712 break;
3713 case LE_LINK:
3714 cnt = hdev->le_mtu ? hdev->le_cnt : hdev->acl_cnt;
3715 break;
3716 default:
3717 cnt = 0;
3718 BT_ERR("Unknown link type");
3719 }
3720
3721 q = cnt / num;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003722 *quote = q ? q : 1;
3723 } else
3724 *quote = 0;
3725
3726 BT_DBG("conn %p quote %d", conn, *quote);
3727 return conn;
3728}
3729
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003730static void hci_link_tx_to(struct hci_dev *hdev, __u8 type)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003731{
3732 struct hci_conn_hash *h = &hdev->conn_hash;
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02003733 struct hci_conn *c;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003734
Ville Tervobae1f5d92011-02-10 22:38:53 -03003735 BT_ERR("%s link tx timeout", hdev->name);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003736
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003737 rcu_read_lock();
3738
Linus Torvalds1da177e2005-04-16 15:20:36 -07003739 /* Kill stalled connections */
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003740 list_for_each_entry_rcu(c, &h->list, list) {
Ville Tervobae1f5d92011-02-10 22:38:53 -03003741 if (c->type == type && c->sent) {
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03003742 BT_ERR("%s killing stalled connection %pMR",
3743 hdev->name, &c->dst);
Andre Guedesbed71742013-01-30 11:50:56 -03003744 hci_disconnect(c, HCI_ERROR_REMOTE_USER_TERM);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003745 }
3746 }
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003747
3748 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003749}
3750
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003751static struct hci_chan *hci_chan_sent(struct hci_dev *hdev, __u8 type,
3752 int *quote)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003753{
3754 struct hci_conn_hash *h = &hdev->conn_hash;
3755 struct hci_chan *chan = NULL;
Mikel Astizabc5de82012-04-11 08:48:47 +02003756 unsigned int num = 0, min = ~0, cur_prio = 0;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003757 struct hci_conn *conn;
3758 int cnt, q, conn_num = 0;
3759
3760 BT_DBG("%s", hdev->name);
3761
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003762 rcu_read_lock();
3763
3764 list_for_each_entry_rcu(conn, &h->list, list) {
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003765 struct hci_chan *tmp;
3766
3767 if (conn->type != type)
3768 continue;
3769
3770 if (conn->state != BT_CONNECTED && conn->state != BT_CONFIG)
3771 continue;
3772
3773 conn_num++;
3774
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -02003775 list_for_each_entry_rcu(tmp, &conn->chan_list, list) {
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003776 struct sk_buff *skb;
3777
3778 if (skb_queue_empty(&tmp->data_q))
3779 continue;
3780
3781 skb = skb_peek(&tmp->data_q);
3782 if (skb->priority < cur_prio)
3783 continue;
3784
3785 if (skb->priority > cur_prio) {
3786 num = 0;
3787 min = ~0;
3788 cur_prio = skb->priority;
3789 }
3790
3791 num++;
3792
3793 if (conn->sent < min) {
3794 min = conn->sent;
3795 chan = tmp;
3796 }
3797 }
3798
3799 if (hci_conn_num(hdev, type) == conn_num)
3800 break;
3801 }
3802
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003803 rcu_read_unlock();
3804
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003805 if (!chan)
3806 return NULL;
3807
3808 switch (chan->conn->type) {
3809 case ACL_LINK:
3810 cnt = hdev->acl_cnt;
3811 break;
Andrei Emeltchenkobd1eb662012-10-10 17:38:30 +03003812 case AMP_LINK:
3813 cnt = hdev->block_cnt;
3814 break;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003815 case SCO_LINK:
3816 case ESCO_LINK:
3817 cnt = hdev->sco_cnt;
3818 break;
3819 case LE_LINK:
3820 cnt = hdev->le_mtu ? hdev->le_cnt : hdev->acl_cnt;
3821 break;
3822 default:
3823 cnt = 0;
3824 BT_ERR("Unknown link type");
3825 }
3826
3827 q = cnt / num;
3828 *quote = q ? q : 1;
3829 BT_DBG("chan %p quote %d", chan, *quote);
3830 return chan;
3831}
3832
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003833static void hci_prio_recalculate(struct hci_dev *hdev, __u8 type)
3834{
3835 struct hci_conn_hash *h = &hdev->conn_hash;
3836 struct hci_conn *conn;
3837 int num = 0;
3838
3839 BT_DBG("%s", hdev->name);
3840
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003841 rcu_read_lock();
3842
3843 list_for_each_entry_rcu(conn, &h->list, list) {
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003844 struct hci_chan *chan;
3845
3846 if (conn->type != type)
3847 continue;
3848
3849 if (conn->state != BT_CONNECTED && conn->state != BT_CONFIG)
3850 continue;
3851
3852 num++;
3853
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -02003854 list_for_each_entry_rcu(chan, &conn->chan_list, list) {
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003855 struct sk_buff *skb;
3856
3857 if (chan->sent) {
3858 chan->sent = 0;
3859 continue;
3860 }
3861
3862 if (skb_queue_empty(&chan->data_q))
3863 continue;
3864
3865 skb = skb_peek(&chan->data_q);
3866 if (skb->priority >= HCI_PRIO_MAX - 1)
3867 continue;
3868
3869 skb->priority = HCI_PRIO_MAX - 1;
3870
3871 BT_DBG("chan %p skb %p promoted to %d", chan, skb,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003872 skb->priority);
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003873 }
3874
3875 if (hci_conn_num(hdev, type) == num)
3876 break;
3877 }
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003878
3879 rcu_read_unlock();
3880
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003881}
3882
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003883static inline int __get_blocks(struct hci_dev *hdev, struct sk_buff *skb)
3884{
3885 /* Calculate count of blocks used by this packet */
3886 return DIV_ROUND_UP(skb->len - HCI_ACL_HDR_SIZE, hdev->block_len);
3887}
3888
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003889static void __check_timeout(struct hci_dev *hdev, unsigned int cnt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003890{
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07003891 if (!hci_dev_test_flag(hdev, HCI_UNCONFIGURED)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003892 /* ACL tx timeout must be longer than maximum
3893 * link supervision timeout (40.9 seconds) */
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02003894 if (!cnt && time_after(jiffies, hdev->acl_last_tx +
Andrei Emeltchenko5f246e82012-06-11 11:13:07 +03003895 HCI_ACL_TX_TIMEOUT))
Ville Tervobae1f5d92011-02-10 22:38:53 -03003896 hci_link_tx_to(hdev, ACL_LINK);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003897 }
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02003898}
Linus Torvalds1da177e2005-04-16 15:20:36 -07003899
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003900static void hci_sched_acl_pkt(struct hci_dev *hdev)
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02003901{
3902 unsigned int cnt = hdev->acl_cnt;
3903 struct hci_chan *chan;
3904 struct sk_buff *skb;
3905 int quote;
3906
3907 __check_timeout(hdev, cnt);
Marcel Holtmann04837f62006-07-03 10:02:33 +02003908
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003909 while (hdev->acl_cnt &&
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003910 (chan = hci_chan_sent(hdev, ACL_LINK, &quote))) {
Luiz Augusto von Dentzec1cce22011-11-02 15:52:02 +02003911 u32 priority = (skb_peek(&chan->data_q))->priority;
3912 while (quote-- && (skb = skb_peek(&chan->data_q))) {
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003913 BT_DBG("chan %p skb %p len %d priority %u", chan, skb,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003914 skb->len, skb->priority);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003915
Luiz Augusto von Dentzec1cce22011-11-02 15:52:02 +02003916 /* Stop if priority has changed */
3917 if (skb->priority < priority)
3918 break;
3919
3920 skb = skb_dequeue(&chan->data_q);
3921
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003922 hci_conn_enter_active_mode(chan->conn,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03003923 bt_cb(skb)->force_active);
Marcel Holtmann04837f62006-07-03 10:02:33 +02003924
Marcel Holtmann57d17d72013-10-10 14:54:17 -07003925 hci_send_frame(hdev, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003926 hdev->acl_last_tx = jiffies;
3927
3928 hdev->acl_cnt--;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003929 chan->sent++;
3930 chan->conn->sent++;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003931 }
3932 }
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003933
3934 if (cnt != hdev->acl_cnt)
3935 hci_prio_recalculate(hdev, ACL_LINK);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003936}
3937
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003938static void hci_sched_acl_blk(struct hci_dev *hdev)
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003939{
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02003940 unsigned int cnt = hdev->block_cnt;
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003941 struct hci_chan *chan;
3942 struct sk_buff *skb;
3943 int quote;
Andrei Emeltchenkobd1eb662012-10-10 17:38:30 +03003944 u8 type;
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003945
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02003946 __check_timeout(hdev, cnt);
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003947
Andrei Emeltchenkobd1eb662012-10-10 17:38:30 +03003948 BT_DBG("%s", hdev->name);
3949
3950 if (hdev->dev_type == HCI_AMP)
3951 type = AMP_LINK;
3952 else
3953 type = ACL_LINK;
3954
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003955 while (hdev->block_cnt > 0 &&
Andrei Emeltchenkobd1eb662012-10-10 17:38:30 +03003956 (chan = hci_chan_sent(hdev, type, &quote))) {
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003957 u32 priority = (skb_peek(&chan->data_q))->priority;
3958 while (quote > 0 && (skb = skb_peek(&chan->data_q))) {
3959 int blocks;
3960
3961 BT_DBG("chan %p skb %p len %d priority %u", chan, skb,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003962 skb->len, skb->priority);
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003963
3964 /* Stop if priority has changed */
3965 if (skb->priority < priority)
3966 break;
3967
3968 skb = skb_dequeue(&chan->data_q);
3969
3970 blocks = __get_blocks(hdev, skb);
3971 if (blocks > hdev->block_cnt)
3972 return;
3973
3974 hci_conn_enter_active_mode(chan->conn,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003975 bt_cb(skb)->force_active);
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003976
Marcel Holtmann57d17d72013-10-10 14:54:17 -07003977 hci_send_frame(hdev, skb);
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003978 hdev->acl_last_tx = jiffies;
3979
3980 hdev->block_cnt -= blocks;
3981 quote -= blocks;
3982
3983 chan->sent += blocks;
3984 chan->conn->sent += blocks;
3985 }
3986 }
3987
3988 if (cnt != hdev->block_cnt)
Andrei Emeltchenkobd1eb662012-10-10 17:38:30 +03003989 hci_prio_recalculate(hdev, type);
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003990}
3991
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003992static void hci_sched_acl(struct hci_dev *hdev)
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003993{
3994 BT_DBG("%s", hdev->name);
3995
Andrei Emeltchenkobd1eb662012-10-10 17:38:30 +03003996 /* No ACL link over BR/EDR controller */
3997 if (!hci_conn_num(hdev, ACL_LINK) && hdev->dev_type == HCI_BREDR)
3998 return;
3999
4000 /* No AMP link over AMP controller */
4001 if (!hci_conn_num(hdev, AMP_LINK) && hdev->dev_type == HCI_AMP)
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02004002 return;
4003
4004 switch (hdev->flow_ctl_mode) {
4005 case HCI_FLOW_CTL_MODE_PACKET_BASED:
4006 hci_sched_acl_pkt(hdev);
4007 break;
4008
4009 case HCI_FLOW_CTL_MODE_BLOCK_BASED:
4010 hci_sched_acl_blk(hdev);
4011 break;
4012 }
4013}
4014
Linus Torvalds1da177e2005-04-16 15:20:36 -07004015/* Schedule SCO */
Gustavo Padovan6039aa732012-05-23 04:04:18 -03004016static void hci_sched_sco(struct hci_dev *hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004017{
4018 struct hci_conn *conn;
4019 struct sk_buff *skb;
4020 int quote;
4021
4022 BT_DBG("%s", hdev->name);
4023
Luiz Augusto von Dentz52087a72011-08-17 16:23:00 +03004024 if (!hci_conn_num(hdev, SCO_LINK))
4025 return;
4026
Linus Torvalds1da177e2005-04-16 15:20:36 -07004027 while (hdev->sco_cnt && (conn = hci_low_sent(hdev, SCO_LINK, &quote))) {
4028 while (quote-- && (skb = skb_dequeue(&conn->data_q))) {
4029 BT_DBG("skb %p len %d", skb, skb->len);
Marcel Holtmann57d17d72013-10-10 14:54:17 -07004030 hci_send_frame(hdev, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004031
4032 conn->sent++;
4033 if (conn->sent == ~0)
4034 conn->sent = 0;
4035 }
4036 }
4037}
4038
Gustavo Padovan6039aa732012-05-23 04:04:18 -03004039static void hci_sched_esco(struct hci_dev *hdev)
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +02004040{
4041 struct hci_conn *conn;
4042 struct sk_buff *skb;
4043 int quote;
4044
4045 BT_DBG("%s", hdev->name);
4046
Luiz Augusto von Dentz52087a72011-08-17 16:23:00 +03004047 if (!hci_conn_num(hdev, ESCO_LINK))
4048 return;
4049
Gustavo Padovan8fc9ced2012-05-23 04:04:21 -03004050 while (hdev->sco_cnt && (conn = hci_low_sent(hdev, ESCO_LINK,
4051 &quote))) {
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +02004052 while (quote-- && (skb = skb_dequeue(&conn->data_q))) {
4053 BT_DBG("skb %p len %d", skb, skb->len);
Marcel Holtmann57d17d72013-10-10 14:54:17 -07004054 hci_send_frame(hdev, skb);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +02004055
4056 conn->sent++;
4057 if (conn->sent == ~0)
4058 conn->sent = 0;
4059 }
4060 }
4061}
4062
Gustavo Padovan6039aa732012-05-23 04:04:18 -03004063static void hci_sched_le(struct hci_dev *hdev)
Ville Tervo6ed58ec2011-02-10 22:38:48 -03004064{
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02004065 struct hci_chan *chan;
Ville Tervo6ed58ec2011-02-10 22:38:48 -03004066 struct sk_buff *skb;
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02004067 int quote, cnt, tmp;
Ville Tervo6ed58ec2011-02-10 22:38:48 -03004068
4069 BT_DBG("%s", hdev->name);
4070
Luiz Augusto von Dentz52087a72011-08-17 16:23:00 +03004071 if (!hci_conn_num(hdev, LE_LINK))
4072 return;
4073
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07004074 if (!hci_dev_test_flag(hdev, HCI_UNCONFIGURED)) {
Ville Tervo6ed58ec2011-02-10 22:38:48 -03004075 /* LE tx timeout must be longer than maximum
4076 * link supervision timeout (40.9 seconds) */
Ville Tervobae1f5d92011-02-10 22:38:53 -03004077 if (!hdev->le_cnt && hdev->le_pkts &&
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03004078 time_after(jiffies, hdev->le_last_tx + HZ * 45))
Ville Tervobae1f5d92011-02-10 22:38:53 -03004079 hci_link_tx_to(hdev, LE_LINK);
Ville Tervo6ed58ec2011-02-10 22:38:48 -03004080 }
4081
4082 cnt = hdev->le_pkts ? hdev->le_cnt : hdev->acl_cnt;
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02004083 tmp = cnt;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02004084 while (cnt && (chan = hci_chan_sent(hdev, LE_LINK, &quote))) {
Luiz Augusto von Dentzec1cce22011-11-02 15:52:02 +02004085 u32 priority = (skb_peek(&chan->data_q))->priority;
4086 while (quote-- && (skb = skb_peek(&chan->data_q))) {
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02004087 BT_DBG("chan %p skb %p len %d priority %u", chan, skb,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03004088 skb->len, skb->priority);
Ville Tervo6ed58ec2011-02-10 22:38:48 -03004089
Luiz Augusto von Dentzec1cce22011-11-02 15:52:02 +02004090 /* Stop if priority has changed */
4091 if (skb->priority < priority)
4092 break;
4093
4094 skb = skb_dequeue(&chan->data_q);
4095
Marcel Holtmann57d17d72013-10-10 14:54:17 -07004096 hci_send_frame(hdev, skb);
Ville Tervo6ed58ec2011-02-10 22:38:48 -03004097 hdev->le_last_tx = jiffies;
4098
4099 cnt--;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02004100 chan->sent++;
4101 chan->conn->sent++;
Ville Tervo6ed58ec2011-02-10 22:38:48 -03004102 }
4103 }
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02004104
Ville Tervo6ed58ec2011-02-10 22:38:48 -03004105 if (hdev->le_pkts)
4106 hdev->le_cnt = cnt;
4107 else
4108 hdev->acl_cnt = cnt;
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02004109
4110 if (cnt != tmp)
4111 hci_prio_recalculate(hdev, LE_LINK);
Ville Tervo6ed58ec2011-02-10 22:38:48 -03004112}
4113
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02004114static void hci_tx_work(struct work_struct *work)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004115{
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02004116 struct hci_dev *hdev = container_of(work, struct hci_dev, tx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004117 struct sk_buff *skb;
4118
Ville Tervo6ed58ec2011-02-10 22:38:48 -03004119 BT_DBG("%s acl %d sco %d le %d", hdev->name, hdev->acl_cnt,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03004120 hdev->sco_cnt, hdev->le_cnt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004121
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07004122 if (!hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Marcel Holtmann52de5992013-09-03 18:08:38 -07004123 /* Schedule queues and send stuff to HCI driver */
4124 hci_sched_acl(hdev);
4125 hci_sched_sco(hdev);
4126 hci_sched_esco(hdev);
4127 hci_sched_le(hdev);
4128 }
Ville Tervo6ed58ec2011-02-10 22:38:48 -03004129
Linus Torvalds1da177e2005-04-16 15:20:36 -07004130 /* Send next queued raw (unknown type) packet */
4131 while ((skb = skb_dequeue(&hdev->raw_q)))
Marcel Holtmann57d17d72013-10-10 14:54:17 -07004132 hci_send_frame(hdev, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004133}
4134
Lucas De Marchi25985ed2011-03-30 22:57:33 -03004135/* ----- HCI RX task (incoming data processing) ----- */
Linus Torvalds1da177e2005-04-16 15:20:36 -07004136
4137/* ACL data packet */
Gustavo Padovan6039aa732012-05-23 04:04:18 -03004138static void hci_acldata_packet(struct hci_dev *hdev, struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004139{
4140 struct hci_acl_hdr *hdr = (void *) skb->data;
4141 struct hci_conn *conn;
4142 __u16 handle, flags;
4143
4144 skb_pull(skb, HCI_ACL_HDR_SIZE);
4145
4146 handle = __le16_to_cpu(hdr->handle);
4147 flags = hci_flags(handle);
4148 handle = hci_handle(handle);
4149
Andrei Emeltchenkof0e09512012-06-11 11:13:09 +03004150 BT_DBG("%s len %d handle 0x%4.4x flags 0x%4.4x", hdev->name, skb->len,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03004151 handle, flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004152
4153 hdev->stat.acl_rx++;
4154
4155 hci_dev_lock(hdev);
4156 conn = hci_conn_hash_lookup_handle(hdev, handle);
4157 hci_dev_unlock(hdev);
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09004158
Linus Torvalds1da177e2005-04-16 15:20:36 -07004159 if (conn) {
Mat Martineau65983fc2011-12-13 15:06:02 -08004160 hci_conn_enter_active_mode(conn, BT_POWER_FORCE_ACTIVE_OFF);
Marcel Holtmann04837f62006-07-03 10:02:33 +02004161
Linus Torvalds1da177e2005-04-16 15:20:36 -07004162 /* Send to upper protocol */
Ulisses Furquim686ebf22011-12-21 10:11:33 -02004163 l2cap_recv_acldata(conn, skb, flags);
4164 return;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004165 } else {
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09004166 BT_ERR("%s ACL packet for unknown connection handle %d",
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03004167 hdev->name, handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004168 }
4169
4170 kfree_skb(skb);
4171}
4172
4173/* SCO data packet */
Gustavo Padovan6039aa732012-05-23 04:04:18 -03004174static void hci_scodata_packet(struct hci_dev *hdev, struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004175{
4176 struct hci_sco_hdr *hdr = (void *) skb->data;
4177 struct hci_conn *conn;
4178 __u16 handle;
4179
4180 skb_pull(skb, HCI_SCO_HDR_SIZE);
4181
4182 handle = __le16_to_cpu(hdr->handle);
4183
Andrei Emeltchenkof0e09512012-06-11 11:13:09 +03004184 BT_DBG("%s len %d handle 0x%4.4x", hdev->name, skb->len, handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004185
4186 hdev->stat.sco_rx++;
4187
4188 hci_dev_lock(hdev);
4189 conn = hci_conn_hash_lookup_handle(hdev, handle);
4190 hci_dev_unlock(hdev);
4191
4192 if (conn) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004193 /* Send to upper protocol */
Ulisses Furquim686ebf22011-12-21 10:11:33 -02004194 sco_recv_scodata(conn, skb);
4195 return;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004196 } else {
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09004197 BT_ERR("%s SCO packet for unknown connection handle %d",
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03004198 hdev->name, handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004199 }
4200
4201 kfree_skb(skb);
4202}
4203
Johan Hedberg9238f362013-03-05 20:37:48 +02004204static bool hci_req_is_complete(struct hci_dev *hdev)
4205{
4206 struct sk_buff *skb;
4207
4208 skb = skb_peek(&hdev->cmd_q);
4209 if (!skb)
4210 return true;
4211
Johan Hedbergdb6e3e82015-03-30 23:21:02 +03004212 return bt_cb(skb)->req.start;
Johan Hedberg9238f362013-03-05 20:37:48 +02004213}
4214
Johan Hedberg42c6b122013-03-05 20:37:49 +02004215static void hci_resend_last(struct hci_dev *hdev)
4216{
4217 struct hci_command_hdr *sent;
4218 struct sk_buff *skb;
4219 u16 opcode;
4220
4221 if (!hdev->sent_cmd)
4222 return;
4223
4224 sent = (void *) hdev->sent_cmd->data;
4225 opcode = __le16_to_cpu(sent->opcode);
4226 if (opcode == HCI_OP_RESET)
4227 return;
4228
4229 skb = skb_clone(hdev->sent_cmd, GFP_KERNEL);
4230 if (!skb)
4231 return;
4232
4233 skb_queue_head(&hdev->cmd_q, skb);
4234 queue_work(hdev->workqueue, &hdev->cmd_work);
4235}
4236
Johan Hedberge62144872015-04-02 13:41:08 +03004237void hci_req_cmd_complete(struct hci_dev *hdev, u16 opcode, u8 status,
4238 hci_req_complete_t *req_complete,
4239 hci_req_complete_skb_t *req_complete_skb)
Johan Hedberg9238f362013-03-05 20:37:48 +02004240{
Johan Hedberg9238f362013-03-05 20:37:48 +02004241 struct sk_buff *skb;
4242 unsigned long flags;
4243
4244 BT_DBG("opcode 0x%04x status 0x%02x", opcode, status);
4245
Johan Hedberg42c6b122013-03-05 20:37:49 +02004246 /* If the completed command doesn't match the last one that was
4247 * sent we need to do special handling of it.
Johan Hedberg9238f362013-03-05 20:37:48 +02004248 */
Johan Hedberg42c6b122013-03-05 20:37:49 +02004249 if (!hci_sent_cmd_data(hdev, opcode)) {
4250 /* Some CSR based controllers generate a spontaneous
4251 * reset complete event during init and any pending
4252 * command will never be completed. In such a case we
4253 * need to resend whatever was the last sent
4254 * command.
4255 */
4256 if (test_bit(HCI_INIT, &hdev->flags) && opcode == HCI_OP_RESET)
4257 hci_resend_last(hdev);
4258
Johan Hedberg9238f362013-03-05 20:37:48 +02004259 return;
Johan Hedberg42c6b122013-03-05 20:37:49 +02004260 }
Johan Hedberg9238f362013-03-05 20:37:48 +02004261
4262 /* If the command succeeded and there's still more commands in
4263 * this request the request is not yet complete.
4264 */
4265 if (!status && !hci_req_is_complete(hdev))
4266 return;
4267
4268 /* If this was the last command in a request the complete
4269 * callback would be found in hdev->sent_cmd instead of the
4270 * command queue (hdev->cmd_q).
4271 */
Johan Hedberge62144872015-04-02 13:41:08 +03004272 if (bt_cb(hdev->sent_cmd)->req.complete) {
4273 *req_complete = bt_cb(hdev->sent_cmd)->req.complete;
4274 return;
4275 }
Johan Hedberg53e21fb2013-07-27 14:11:14 -05004276
Johan Hedberge62144872015-04-02 13:41:08 +03004277 if (bt_cb(hdev->sent_cmd)->req.complete_skb) {
4278 *req_complete_skb = bt_cb(hdev->sent_cmd)->req.complete_skb;
4279 return;
Johan Hedberg9238f362013-03-05 20:37:48 +02004280 }
4281
4282 /* Remove all pending commands belonging to this request */
4283 spin_lock_irqsave(&hdev->cmd_q.lock, flags);
4284 while ((skb = __skb_dequeue(&hdev->cmd_q))) {
Johan Hedbergdb6e3e82015-03-30 23:21:02 +03004285 if (bt_cb(skb)->req.start) {
Johan Hedberg9238f362013-03-05 20:37:48 +02004286 __skb_queue_head(&hdev->cmd_q, skb);
4287 break;
4288 }
4289
Johan Hedberge62144872015-04-02 13:41:08 +03004290 *req_complete = bt_cb(skb)->req.complete;
4291 *req_complete_skb = bt_cb(skb)->req.complete_skb;
Johan Hedberg9238f362013-03-05 20:37:48 +02004292 kfree_skb(skb);
4293 }
4294 spin_unlock_irqrestore(&hdev->cmd_q.lock, flags);
Johan Hedberg9238f362013-03-05 20:37:48 +02004295}
4296
Marcel Holtmannb78752c2010-08-08 23:06:53 -04004297static void hci_rx_work(struct work_struct *work)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004298{
Marcel Holtmannb78752c2010-08-08 23:06:53 -04004299 struct hci_dev *hdev = container_of(work, struct hci_dev, rx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004300 struct sk_buff *skb;
4301
4302 BT_DBG("%s", hdev->name);
4303
Linus Torvalds1da177e2005-04-16 15:20:36 -07004304 while ((skb = skb_dequeue(&hdev->rx_q))) {
Marcel Holtmanncd82e612012-02-20 20:34:38 +01004305 /* Send copy to monitor */
4306 hci_send_to_monitor(hdev, skb);
4307
Linus Torvalds1da177e2005-04-16 15:20:36 -07004308 if (atomic_read(&hdev->promisc)) {
4309 /* Send copy to the sockets */
Marcel Holtmann470fe1b2012-02-20 14:50:30 +01004310 hci_send_to_sock(hdev, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004311 }
4312
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07004313 if (hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004314 kfree_skb(skb);
4315 continue;
4316 }
4317
4318 if (test_bit(HCI_INIT, &hdev->flags)) {
4319 /* Don't process data packets in this states. */
Marcel Holtmann0d48d932005-08-09 20:30:28 -07004320 switch (bt_cb(skb)->pkt_type) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004321 case HCI_ACLDATA_PKT:
4322 case HCI_SCODATA_PKT:
4323 kfree_skb(skb);
4324 continue;
Stephen Hemminger3ff50b72007-04-20 17:09:22 -07004325 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004326 }
4327
4328 /* Process frame */
Marcel Holtmann0d48d932005-08-09 20:30:28 -07004329 switch (bt_cb(skb)->pkt_type) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004330 case HCI_EVENT_PKT:
Marcel Holtmannb78752c2010-08-08 23:06:53 -04004331 BT_DBG("%s Event packet", hdev->name);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004332 hci_event_packet(hdev, skb);
4333 break;
4334
4335 case HCI_ACLDATA_PKT:
4336 BT_DBG("%s ACL data packet", hdev->name);
4337 hci_acldata_packet(hdev, skb);
4338 break;
4339
4340 case HCI_SCODATA_PKT:
4341 BT_DBG("%s SCO data packet", hdev->name);
4342 hci_scodata_packet(hdev, skb);
4343 break;
4344
4345 default:
4346 kfree_skb(skb);
4347 break;
4348 }
4349 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004350}
4351
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02004352static void hci_cmd_work(struct work_struct *work)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004353{
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02004354 struct hci_dev *hdev = container_of(work, struct hci_dev, cmd_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004355 struct sk_buff *skb;
4356
Andrei Emeltchenko21047862012-07-10 15:27:47 +03004357 BT_DBG("%s cmd_cnt %d cmd queued %d", hdev->name,
4358 atomic_read(&hdev->cmd_cnt), skb_queue_len(&hdev->cmd_q));
Linus Torvalds1da177e2005-04-16 15:20:36 -07004359
Linus Torvalds1da177e2005-04-16 15:20:36 -07004360 /* Send queued commands */
Andrei Emeltchenko5a08ecc2011-01-11 17:20:20 +02004361 if (atomic_read(&hdev->cmd_cnt)) {
4362 skb = skb_dequeue(&hdev->cmd_q);
4363 if (!skb)
4364 return;
4365
Wei Yongjun7585b972009-02-25 18:29:52 +08004366 kfree_skb(hdev->sent_cmd);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004367
Marcel Holtmanna675d7f2013-09-03 18:11:07 -07004368 hdev->sent_cmd = skb_clone(skb, GFP_KERNEL);
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02004369 if (hdev->sent_cmd) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004370 atomic_dec(&hdev->cmd_cnt);
Marcel Holtmann57d17d72013-10-10 14:54:17 -07004371 hci_send_frame(hdev, skb);
Szymon Janc7bdb8a52011-07-26 22:46:54 +02004372 if (test_bit(HCI_RESET, &hdev->flags))
Marcel Holtmann65cc2b42014-06-16 12:30:56 +02004373 cancel_delayed_work(&hdev->cmd_timer);
Szymon Janc7bdb8a52011-07-26 22:46:54 +02004374 else
Marcel Holtmann65cc2b42014-06-16 12:30:56 +02004375 schedule_delayed_work(&hdev->cmd_timer,
4376 HCI_CMD_TIMEOUT);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004377 } else {
4378 skb_queue_head(&hdev->cmd_q, skb);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02004379 queue_work(hdev->workqueue, &hdev->cmd_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004380 }
4381 }
4382}