blob: f6c99098959f6b4c29a9f0f6f54254f6a5aafa4e [file] [log] [blame]
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001/*
Linus Torvalds1da177e2005-04-16 15:20:36 -07002 BlueZ - Bluetooth protocol stack for Linux
3 Copyright (C) 2000-2001 Qualcomm Incorporated
Gustavo F. Padovan590051d2011-12-18 13:39:33 -02004 Copyright (C) 2011 ProFUSION Embedded Systems
Linus Torvalds1da177e2005-04-16 15:20:36 -07005
6 Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
7
8 This program is free software; you can redistribute it and/or modify
9 it under the terms of the GNU General Public License version 2 as
10 published by the Free Software Foundation;
11
12 THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
13 OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
14 FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
15 IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090016 CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
17 WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
18 ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
Linus Torvalds1da177e2005-04-16 15:20:36 -070019 OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
20
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090021 ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
22 COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
Linus Torvalds1da177e2005-04-16 15:20:36 -070023 SOFTWARE IS DISCLAIMED.
24*/
25
26/* Bluetooth HCI core. */
27
Gustavo Padovan8c520a52012-05-23 04:04:22 -030028#include <linux/export.h>
Sasha Levin3df92b32012-05-27 22:36:56 +020029#include <linux/idr.h>
Marcel Holtmann611b30f2009-06-08 14:41:38 +020030#include <linux/rfkill.h>
Marcel Holtmannbaf27f62013-10-16 03:28:55 -070031#include <linux/debugfs.h>
Johan Hedberg99780a72014-02-18 10:40:07 +020032#include <linux/crypto.h>
Marcel Holtmann47219832013-10-17 17:24:15 -070033#include <asm/unaligned.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070034
35#include <net/bluetooth/bluetooth.h>
36#include <net/bluetooth/hci_core.h>
Johan Hedberg4bc58f52014-05-20 09:45:47 +030037#include <net/bluetooth/l2cap.h>
Marcel Holtmannaf589252014-07-01 14:11:20 +020038#include <net/bluetooth/mgmt.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070039
Johan Hedberg0857dd32014-12-19 13:40:20 +020040#include "hci_request.h"
Marcel Holtmann60c5f5f2014-12-20 16:05:13 +010041#include "hci_debugfs.h"
Johan Hedberg970c4e42014-02-18 10:19:33 +020042#include "smp.h"
43
Marcel Holtmannb78752c2010-08-08 23:06:53 -040044static void hci_rx_work(struct work_struct *work);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -020045static void hci_cmd_work(struct work_struct *work);
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -020046static void hci_tx_work(struct work_struct *work);
Linus Torvalds1da177e2005-04-16 15:20:36 -070047
Linus Torvalds1da177e2005-04-16 15:20:36 -070048/* HCI device list */
49LIST_HEAD(hci_dev_list);
50DEFINE_RWLOCK(hci_dev_list_lock);
51
52/* HCI callback list */
53LIST_HEAD(hci_cb_list);
Johan Hedbergfba7ecf2015-02-18 14:53:55 +020054DEFINE_MUTEX(hci_cb_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -070055
Sasha Levin3df92b32012-05-27 22:36:56 +020056/* HCI ID Numbering */
57static DEFINE_IDA(hci_index_ida);
58
Marcel Holtmann899de762014-07-11 05:51:58 +020059/* ----- HCI requests ----- */
60
61#define HCI_REQ_DONE 0
62#define HCI_REQ_PEND 1
63#define HCI_REQ_CANCELED 2
64
65#define hci_req_lock(d) mutex_lock(&d->req_lock)
66#define hci_req_unlock(d) mutex_unlock(&d->req_lock)
67
Linus Torvalds1da177e2005-04-16 15:20:36 -070068/* ---- HCI notifications ---- */
69
Marcel Holtmann65164552005-10-28 19:20:48 +020070static void hci_notify(struct hci_dev *hdev, int event)
Linus Torvalds1da177e2005-04-16 15:20:36 -070071{
Marcel Holtmann040030e2012-02-20 14:50:37 +010072 hci_sock_dev_event(hdev, event);
Linus Torvalds1da177e2005-04-16 15:20:36 -070073}
74
Marcel Holtmannbaf27f62013-10-16 03:28:55 -070075/* ---- HCI debugfs entries ---- */
76
Marcel Holtmann4b4148e2013-10-19 07:09:12 -070077static ssize_t dut_mode_read(struct file *file, char __user *user_buf,
78 size_t count, loff_t *ppos)
79{
80 struct hci_dev *hdev = file->private_data;
81 char buf[3];
82
Marcel Holtmannb7cb93e2015-03-13 10:20:35 -070083 buf[0] = hci_dev_test_flag(hdev, HCI_DUT_MODE) ? 'Y': 'N';
Marcel Holtmann4b4148e2013-10-19 07:09:12 -070084 buf[1] = '\n';
85 buf[2] = '\0';
86 return simple_read_from_buffer(user_buf, count, ppos, buf, 2);
87}
88
89static ssize_t dut_mode_write(struct file *file, const char __user *user_buf,
90 size_t count, loff_t *ppos)
91{
92 struct hci_dev *hdev = file->private_data;
93 struct sk_buff *skb;
94 char buf[32];
95 size_t buf_size = min(count, (sizeof(buf)-1));
96 bool enable;
Marcel Holtmann4b4148e2013-10-19 07:09:12 -070097
98 if (!test_bit(HCI_UP, &hdev->flags))
99 return -ENETDOWN;
100
101 if (copy_from_user(buf, user_buf, buf_size))
102 return -EFAULT;
103
104 buf[buf_size] = '\0';
105 if (strtobool(buf, &enable))
106 return -EINVAL;
107
Marcel Holtmannb7cb93e2015-03-13 10:20:35 -0700108 if (enable == hci_dev_test_flag(hdev, HCI_DUT_MODE))
Marcel Holtmann4b4148e2013-10-19 07:09:12 -0700109 return -EALREADY;
110
111 hci_req_lock(hdev);
112 if (enable)
113 skb = __hci_cmd_sync(hdev, HCI_OP_ENABLE_DUT_MODE, 0, NULL,
114 HCI_CMD_TIMEOUT);
115 else
116 skb = __hci_cmd_sync(hdev, HCI_OP_RESET, 0, NULL,
117 HCI_CMD_TIMEOUT);
118 hci_req_unlock(hdev);
119
120 if (IS_ERR(skb))
121 return PTR_ERR(skb);
122
Marcel Holtmann4b4148e2013-10-19 07:09:12 -0700123 kfree_skb(skb);
124
Marcel Holtmannb7cb93e2015-03-13 10:20:35 -0700125 hci_dev_change_flag(hdev, HCI_DUT_MODE);
Marcel Holtmann4b4148e2013-10-19 07:09:12 -0700126
127 return count;
128}
129
130static const struct file_operations dut_mode_fops = {
131 .open = simple_open,
132 .read = dut_mode_read,
133 .write = dut_mode_write,
134 .llseek = default_llseek,
135};
136
Linus Torvalds1da177e2005-04-16 15:20:36 -0700137/* ---- HCI requests ---- */
138
Johan Hedbergf60cb302015-04-02 13:41:09 +0300139static void hci_req_sync_complete(struct hci_dev *hdev, u8 result, u16 opcode,
140 struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700141{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200142 BT_DBG("%s result 0x%2.2x", hdev->name, result);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700143
144 if (hdev->req_status == HCI_REQ_PEND) {
145 hdev->req_result = result;
146 hdev->req_status = HCI_REQ_DONE;
Johan Hedbergf60cb302015-04-02 13:41:09 +0300147 if (skb)
148 hdev->req_skb = skb_get(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700149 wake_up_interruptible(&hdev->req_wait_q);
150 }
151}
152
153static void hci_req_cancel(struct hci_dev *hdev, int err)
154{
155 BT_DBG("%s err 0x%2.2x", hdev->name, err);
156
157 if (hdev->req_status == HCI_REQ_PEND) {
158 hdev->req_result = err;
159 hdev->req_status = HCI_REQ_CANCELED;
160 wake_up_interruptible(&hdev->req_wait_q);
161 }
162}
163
Johan Hedberg7b1abbb2013-04-03 21:54:47 +0300164struct sk_buff *__hci_cmd_sync_ev(struct hci_dev *hdev, u16 opcode, u32 plen,
Johan Hedberg07dc93d2013-04-19 10:14:51 +0300165 const void *param, u8 event, u32 timeout)
Johan Hedberg75e84b72013-04-02 13:35:04 +0300166{
167 DECLARE_WAITQUEUE(wait, current);
168 struct hci_request req;
Johan Hedbergf60cb302015-04-02 13:41:09 +0300169 struct sk_buff *skb;
Johan Hedberg75e84b72013-04-02 13:35:04 +0300170 int err = 0;
171
172 BT_DBG("%s", hdev->name);
173
174 hci_req_init(&req, hdev);
175
Johan Hedberg7b1abbb2013-04-03 21:54:47 +0300176 hci_req_add_ev(&req, opcode, plen, param, event);
Johan Hedberg75e84b72013-04-02 13:35:04 +0300177
178 hdev->req_status = HCI_REQ_PEND;
179
Johan Hedberg75e84b72013-04-02 13:35:04 +0300180 add_wait_queue(&hdev->req_wait_q, &wait);
181 set_current_state(TASK_INTERRUPTIBLE);
182
Johan Hedbergf60cb302015-04-02 13:41:09 +0300183 err = hci_req_run_skb(&req, hci_req_sync_complete);
Chan-yeol Park039fada2014-10-31 14:23:06 +0900184 if (err < 0) {
185 remove_wait_queue(&hdev->req_wait_q, &wait);
Johan Hedberg22a3cea2014-11-19 13:16:41 +0200186 set_current_state(TASK_RUNNING);
Chan-yeol Park039fada2014-10-31 14:23:06 +0900187 return ERR_PTR(err);
188 }
189
Johan Hedberg75e84b72013-04-02 13:35:04 +0300190 schedule_timeout(timeout);
191
192 remove_wait_queue(&hdev->req_wait_q, &wait);
193
194 if (signal_pending(current))
195 return ERR_PTR(-EINTR);
196
197 switch (hdev->req_status) {
198 case HCI_REQ_DONE:
199 err = -bt_to_errno(hdev->req_result);
200 break;
201
202 case HCI_REQ_CANCELED:
203 err = -hdev->req_result;
204 break;
205
206 default:
207 err = -ETIMEDOUT;
208 break;
209 }
210
211 hdev->req_status = hdev->req_result = 0;
Johan Hedbergf60cb302015-04-02 13:41:09 +0300212 skb = hdev->req_skb;
213 hdev->req_skb = NULL;
Johan Hedberg75e84b72013-04-02 13:35:04 +0300214
215 BT_DBG("%s end: err %d", hdev->name, err);
216
Johan Hedbergf60cb302015-04-02 13:41:09 +0300217 if (err < 0) {
218 kfree_skb(skb);
Johan Hedberg75e84b72013-04-02 13:35:04 +0300219 return ERR_PTR(err);
Johan Hedbergf60cb302015-04-02 13:41:09 +0300220 }
Johan Hedberg75e84b72013-04-02 13:35:04 +0300221
Johan Hedberg757aa0b2015-04-02 13:41:12 +0300222 if (!skb)
223 return ERR_PTR(-ENODATA);
224
225 return skb;
Johan Hedberg7b1abbb2013-04-03 21:54:47 +0300226}
227EXPORT_SYMBOL(__hci_cmd_sync_ev);
228
229struct sk_buff *__hci_cmd_sync(struct hci_dev *hdev, u16 opcode, u32 plen,
Johan Hedberg07dc93d2013-04-19 10:14:51 +0300230 const void *param, u32 timeout)
Johan Hedberg7b1abbb2013-04-03 21:54:47 +0300231{
232 return __hci_cmd_sync_ev(hdev, opcode, plen, param, 0, timeout);
Johan Hedberg75e84b72013-04-02 13:35:04 +0300233}
234EXPORT_SYMBOL(__hci_cmd_sync);
235
Linus Torvalds1da177e2005-04-16 15:20:36 -0700236/* Execute request and wait for completion. */
Johan Hedberg01178cd2013-03-05 20:37:41 +0200237static int __hci_req_sync(struct hci_dev *hdev,
Johan Hedberg42c6b122013-03-05 20:37:49 +0200238 void (*func)(struct hci_request *req,
239 unsigned long opt),
Johan Hedberg01178cd2013-03-05 20:37:41 +0200240 unsigned long opt, __u32 timeout)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700241{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200242 struct hci_request req;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700243 DECLARE_WAITQUEUE(wait, current);
244 int err = 0;
245
246 BT_DBG("%s start", hdev->name);
247
Johan Hedberg42c6b122013-03-05 20:37:49 +0200248 hci_req_init(&req, hdev);
249
Linus Torvalds1da177e2005-04-16 15:20:36 -0700250 hdev->req_status = HCI_REQ_PEND;
251
Johan Hedberg42c6b122013-03-05 20:37:49 +0200252 func(&req, opt);
Johan Hedberg53cce222013-03-05 20:37:42 +0200253
Chan-yeol Park039fada2014-10-31 14:23:06 +0900254 add_wait_queue(&hdev->req_wait_q, &wait);
255 set_current_state(TASK_INTERRUPTIBLE);
256
Johan Hedbergf60cb302015-04-02 13:41:09 +0300257 err = hci_req_run_skb(&req, hci_req_sync_complete);
Johan Hedberg42c6b122013-03-05 20:37:49 +0200258 if (err < 0) {
Johan Hedberg53cce222013-03-05 20:37:42 +0200259 hdev->req_status = 0;
Andre Guedes920c8302013-03-08 11:20:15 -0300260
Chan-yeol Park039fada2014-10-31 14:23:06 +0900261 remove_wait_queue(&hdev->req_wait_q, &wait);
Johan Hedberg22a3cea2014-11-19 13:16:41 +0200262 set_current_state(TASK_RUNNING);
Chan-yeol Park039fada2014-10-31 14:23:06 +0900263
Andre Guedes920c8302013-03-08 11:20:15 -0300264 /* ENODATA means the HCI request command queue is empty.
265 * This can happen when a request with conditionals doesn't
266 * trigger any commands to be sent. This is normal behavior
267 * and should not trigger an error return.
Johan Hedberg42c6b122013-03-05 20:37:49 +0200268 */
Andre Guedes920c8302013-03-08 11:20:15 -0300269 if (err == -ENODATA)
270 return 0;
271
272 return err;
Johan Hedberg53cce222013-03-05 20:37:42 +0200273 }
274
Linus Torvalds1da177e2005-04-16 15:20:36 -0700275 schedule_timeout(timeout);
276
277 remove_wait_queue(&hdev->req_wait_q, &wait);
278
279 if (signal_pending(current))
280 return -EINTR;
281
282 switch (hdev->req_status) {
283 case HCI_REQ_DONE:
Joe Perchese1750722011-06-29 18:18:29 -0700284 err = -bt_to_errno(hdev->req_result);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700285 break;
286
287 case HCI_REQ_CANCELED:
288 err = -hdev->req_result;
289 break;
290
291 default:
292 err = -ETIMEDOUT;
293 break;
Stephen Hemminger3ff50b72007-04-20 17:09:22 -0700294 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700295
Johan Hedberga5040ef2011-01-10 13:28:59 +0200296 hdev->req_status = hdev->req_result = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700297
298 BT_DBG("%s end: err %d", hdev->name, err);
299
300 return err;
301}
302
Johan Hedberg01178cd2013-03-05 20:37:41 +0200303static int hci_req_sync(struct hci_dev *hdev,
Johan Hedberg42c6b122013-03-05 20:37:49 +0200304 void (*req)(struct hci_request *req,
305 unsigned long opt),
Johan Hedberg01178cd2013-03-05 20:37:41 +0200306 unsigned long opt, __u32 timeout)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700307{
308 int ret;
309
Marcel Holtmann7c6a3292008-09-12 03:11:54 +0200310 if (!test_bit(HCI_UP, &hdev->flags))
311 return -ENETDOWN;
312
Linus Torvalds1da177e2005-04-16 15:20:36 -0700313 /* Serialize all requests */
314 hci_req_lock(hdev);
Johan Hedberg01178cd2013-03-05 20:37:41 +0200315 ret = __hci_req_sync(hdev, req, opt, timeout);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700316 hci_req_unlock(hdev);
317
318 return ret;
319}
320
Johan Hedberg42c6b122013-03-05 20:37:49 +0200321static void hci_reset_req(struct hci_request *req, unsigned long opt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700322{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200323 BT_DBG("%s %ld", req->hdev->name, opt);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700324
325 /* Reset device */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200326 set_bit(HCI_RESET, &req->hdev->flags);
327 hci_req_add(req, HCI_OP_RESET, 0, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700328}
329
Johan Hedberg42c6b122013-03-05 20:37:49 +0200330static void bredr_init(struct hci_request *req)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700331{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200332 req->hdev->flow_ctl_mode = HCI_FLOW_CTL_MODE_PACKET_BASED;
Andrei Emeltchenko2455a3e2011-12-19 16:31:28 +0200333
Linus Torvalds1da177e2005-04-16 15:20:36 -0700334 /* Read Local Supported Features */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200335 hci_req_add(req, HCI_OP_READ_LOCAL_FEATURES, 0, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700336
Marcel Holtmann1143e5a2006-09-23 09:57:20 +0200337 /* Read Local Version */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200338 hci_req_add(req, HCI_OP_READ_LOCAL_VERSION, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200339
340 /* Read BD Address */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200341 hci_req_add(req, HCI_OP_READ_BD_ADDR, 0, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700342}
343
Johan Hedberg0af801b2015-02-17 15:05:21 +0200344static void amp_init1(struct hci_request *req)
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200345{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200346 req->hdev->flow_ctl_mode = HCI_FLOW_CTL_MODE_BLOCK_BASED;
Andrei Emeltchenko2455a3e2011-12-19 16:31:28 +0200347
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200348 /* Read Local Version */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200349 hci_req_add(req, HCI_OP_READ_LOCAL_VERSION, 0, NULL);
Andrei Emeltchenko6bcbc482012-03-28 16:31:24 +0300350
Marcel Holtmannf6996cf2013-10-07 02:31:39 -0700351 /* Read Local Supported Commands */
352 hci_req_add(req, HCI_OP_READ_LOCAL_COMMANDS, 0, NULL);
353
Andrei Emeltchenko6bcbc482012-03-28 16:31:24 +0300354 /* Read Local AMP Info */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200355 hci_req_add(req, HCI_OP_READ_LOCAL_AMP_INFO, 0, NULL);
Andrei Emeltchenkoe71dfab2012-09-06 15:05:46 +0300356
357 /* Read Data Blk size */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200358 hci_req_add(req, HCI_OP_READ_DATA_BLOCK_SIZE, 0, NULL);
Marcel Holtmann7528ca12013-10-07 03:55:52 -0700359
Marcel Holtmannf38ba942013-10-07 03:55:53 -0700360 /* Read Flow Control Mode */
361 hci_req_add(req, HCI_OP_READ_FLOW_CONTROL_MODE, 0, NULL);
362
Marcel Holtmann7528ca12013-10-07 03:55:52 -0700363 /* Read Location Data */
364 hci_req_add(req, HCI_OP_READ_LOCATION_DATA, 0, NULL);
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200365}
366
Johan Hedberg0af801b2015-02-17 15:05:21 +0200367static void amp_init2(struct hci_request *req)
368{
369 /* Read Local Supported Features. Not all AMP controllers
370 * support this so it's placed conditionally in the second
371 * stage init.
372 */
373 if (req->hdev->commands[14] & 0x20)
374 hci_req_add(req, HCI_OP_READ_LOCAL_FEATURES, 0, NULL);
375}
376
Johan Hedberg42c6b122013-03-05 20:37:49 +0200377static void hci_init1_req(struct hci_request *req, unsigned long opt)
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200378{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200379 struct hci_dev *hdev = req->hdev;
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200380
381 BT_DBG("%s %ld", hdev->name, opt);
382
Andrei Emeltchenko11778712012-06-11 11:13:10 +0300383 /* Reset */
384 if (!test_bit(HCI_QUIRK_RESET_ON_CLOSE, &hdev->quirks))
Johan Hedberg42c6b122013-03-05 20:37:49 +0200385 hci_reset_req(req, 0);
Andrei Emeltchenko11778712012-06-11 11:13:10 +0300386
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200387 switch (hdev->dev_type) {
388 case HCI_BREDR:
Johan Hedberg42c6b122013-03-05 20:37:49 +0200389 bredr_init(req);
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200390 break;
391
392 case HCI_AMP:
Johan Hedberg0af801b2015-02-17 15:05:21 +0200393 amp_init1(req);
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200394 break;
395
396 default:
397 BT_ERR("Unknown device type %d", hdev->dev_type);
398 break;
399 }
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200400}
401
Johan Hedberg42c6b122013-03-05 20:37:49 +0200402static void bredr_setup(struct hci_request *req)
Johan Hedberg2177bab2013-03-05 20:37:43 +0200403{
Johan Hedberg2177bab2013-03-05 20:37:43 +0200404 __le16 param;
405 __u8 flt_type;
406
407 /* Read Buffer Size (ACL mtu, max pkt, etc.) */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200408 hci_req_add(req, HCI_OP_READ_BUFFER_SIZE, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200409
410 /* Read Class of Device */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200411 hci_req_add(req, HCI_OP_READ_CLASS_OF_DEV, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200412
413 /* Read Local Name */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200414 hci_req_add(req, HCI_OP_READ_LOCAL_NAME, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200415
416 /* Read Voice Setting */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200417 hci_req_add(req, HCI_OP_READ_VOICE_SETTING, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200418
Marcel Holtmannb4cb9fb2013-10-14 13:56:16 -0700419 /* Read Number of Supported IAC */
420 hci_req_add(req, HCI_OP_READ_NUM_SUPPORTED_IAC, 0, NULL);
421
Marcel Holtmann4b836f32013-10-14 14:06:36 -0700422 /* Read Current IAC LAP */
423 hci_req_add(req, HCI_OP_READ_CURRENT_IAC_LAP, 0, NULL);
424
Johan Hedberg2177bab2013-03-05 20:37:43 +0200425 /* Clear Event Filters */
426 flt_type = HCI_FLT_CLEAR_ALL;
Johan Hedberg42c6b122013-03-05 20:37:49 +0200427 hci_req_add(req, HCI_OP_SET_EVENT_FLT, 1, &flt_type);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200428
429 /* Connection accept timeout ~20 secs */
Joe Perchesdcf4adb2014-03-12 10:52:35 -0700430 param = cpu_to_le16(0x7d00);
Johan Hedberg42c6b122013-03-05 20:37:49 +0200431 hci_req_add(req, HCI_OP_WRITE_CA_TIMEOUT, 2, &param);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200432}
433
Johan Hedberg42c6b122013-03-05 20:37:49 +0200434static void le_setup(struct hci_request *req)
Johan Hedberg2177bab2013-03-05 20:37:43 +0200435{
Johan Hedbergc73eee92013-04-19 18:35:21 +0300436 struct hci_dev *hdev = req->hdev;
437
Johan Hedberg2177bab2013-03-05 20:37:43 +0200438 /* Read LE Buffer Size */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200439 hci_req_add(req, HCI_OP_LE_READ_BUFFER_SIZE, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200440
441 /* Read LE Local Supported Features */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200442 hci_req_add(req, HCI_OP_LE_READ_LOCAL_FEATURES, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200443
Marcel Holtmann747d3f02014-02-27 20:37:29 -0800444 /* Read LE Supported States */
445 hci_req_add(req, HCI_OP_LE_READ_SUPPORTED_STATES, 0, NULL);
446
Johan Hedberg2177bab2013-03-05 20:37:43 +0200447 /* Read LE White List Size */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200448 hci_req_add(req, HCI_OP_LE_READ_WHITE_LIST_SIZE, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200449
Marcel Holtmann747d3f02014-02-27 20:37:29 -0800450 /* Clear LE White List */
451 hci_req_add(req, HCI_OP_LE_CLEAR_WHITE_LIST, 0, NULL);
Johan Hedbergc73eee92013-04-19 18:35:21 +0300452
453 /* LE-only controllers have LE implicitly enabled */
454 if (!lmp_bredr_capable(hdev))
Marcel Holtmanna1536da2015-03-13 02:11:01 -0700455 hci_dev_set_flag(hdev, HCI_LE_ENABLED);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200456}
457
Johan Hedberg42c6b122013-03-05 20:37:49 +0200458static void hci_setup_event_mask(struct hci_request *req)
Johan Hedberg2177bab2013-03-05 20:37:43 +0200459{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200460 struct hci_dev *hdev = req->hdev;
461
Johan Hedberg2177bab2013-03-05 20:37:43 +0200462 /* The second byte is 0xff instead of 0x9f (two reserved bits
463 * disabled) since a Broadcom 1.2 dongle doesn't respond to the
464 * command otherwise.
465 */
466 u8 events[8] = { 0xff, 0xff, 0xfb, 0xff, 0x00, 0x00, 0x00, 0x00 };
467
468 /* CSR 1.1 dongles does not accept any bitfield so don't try to set
469 * any event mask for pre 1.2 devices.
470 */
471 if (hdev->hci_ver < BLUETOOTH_VER_1_2)
472 return;
473
474 if (lmp_bredr_capable(hdev)) {
475 events[4] |= 0x01; /* Flow Specification Complete */
476 events[4] |= 0x02; /* Inquiry Result with RSSI */
477 events[4] |= 0x04; /* Read Remote Extended Features Complete */
478 events[5] |= 0x08; /* Synchronous Connection Complete */
479 events[5] |= 0x10; /* Synchronous Connection Changed */
Marcel Holtmannc7882cb2013-08-13 10:00:54 -0700480 } else {
481 /* Use a different default for LE-only devices */
482 memset(events, 0, sizeof(events));
483 events[0] |= 0x10; /* Disconnection Complete */
Marcel Holtmannc7882cb2013-08-13 10:00:54 -0700484 events[1] |= 0x08; /* Read Remote Version Information Complete */
485 events[1] |= 0x20; /* Command Complete */
486 events[1] |= 0x40; /* Command Status */
487 events[1] |= 0x80; /* Hardware Error */
488 events[2] |= 0x04; /* Number of Completed Packets */
489 events[3] |= 0x02; /* Data Buffer Overflow */
Marcel Holtmann0da71f12014-07-12 23:36:16 +0200490
491 if (hdev->le_features[0] & HCI_LE_ENCRYPTION) {
492 events[0] |= 0x80; /* Encryption Change */
493 events[5] |= 0x80; /* Encryption Key Refresh Complete */
494 }
Johan Hedberg2177bab2013-03-05 20:37:43 +0200495 }
496
497 if (lmp_inq_rssi_capable(hdev))
498 events[4] |= 0x02; /* Inquiry Result with RSSI */
499
500 if (lmp_sniffsubr_capable(hdev))
501 events[5] |= 0x20; /* Sniff Subrating */
502
503 if (lmp_pause_enc_capable(hdev))
504 events[5] |= 0x80; /* Encryption Key Refresh Complete */
505
506 if (lmp_ext_inq_capable(hdev))
507 events[5] |= 0x40; /* Extended Inquiry Result */
508
509 if (lmp_no_flush_capable(hdev))
510 events[7] |= 0x01; /* Enhanced Flush Complete */
511
512 if (lmp_lsto_capable(hdev))
513 events[6] |= 0x80; /* Link Supervision Timeout Changed */
514
515 if (lmp_ssp_capable(hdev)) {
516 events[6] |= 0x01; /* IO Capability Request */
517 events[6] |= 0x02; /* IO Capability Response */
518 events[6] |= 0x04; /* User Confirmation Request */
519 events[6] |= 0x08; /* User Passkey Request */
520 events[6] |= 0x10; /* Remote OOB Data Request */
521 events[6] |= 0x20; /* Simple Pairing Complete */
522 events[7] |= 0x04; /* User Passkey Notification */
523 events[7] |= 0x08; /* Keypress Notification */
524 events[7] |= 0x10; /* Remote Host Supported
525 * Features Notification
526 */
527 }
528
529 if (lmp_le_capable(hdev))
530 events[7] |= 0x20; /* LE Meta-Event */
531
Johan Hedberg42c6b122013-03-05 20:37:49 +0200532 hci_req_add(req, HCI_OP_SET_EVENT_MASK, sizeof(events), events);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200533}
534
Johan Hedberg42c6b122013-03-05 20:37:49 +0200535static void hci_init2_req(struct hci_request *req, unsigned long opt)
Johan Hedberg2177bab2013-03-05 20:37:43 +0200536{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200537 struct hci_dev *hdev = req->hdev;
538
Johan Hedberg0af801b2015-02-17 15:05:21 +0200539 if (hdev->dev_type == HCI_AMP)
540 return amp_init2(req);
541
Johan Hedberg2177bab2013-03-05 20:37:43 +0200542 if (lmp_bredr_capable(hdev))
Johan Hedberg42c6b122013-03-05 20:37:49 +0200543 bredr_setup(req);
Johan Hedberg56f87902013-10-02 13:43:13 +0300544 else
Marcel Holtmanna358dc12015-03-13 02:11:02 -0700545 hci_dev_clear_flag(hdev, HCI_BREDR_ENABLED);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200546
547 if (lmp_le_capable(hdev))
Johan Hedberg42c6b122013-03-05 20:37:49 +0200548 le_setup(req);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200549
Marcel Holtmann0f3adea2014-12-26 04:42:34 +0100550 /* All Bluetooth 1.2 and later controllers should support the
551 * HCI command for reading the local supported commands.
552 *
553 * Unfortunately some controllers indicate Bluetooth 1.2 support,
554 * but do not have support for this command. If that is the case,
555 * the driver can quirk the behavior and skip reading the local
556 * supported commands.
Johan Hedberg3f8e2d72013-07-24 02:32:46 +0300557 */
Marcel Holtmann0f3adea2014-12-26 04:42:34 +0100558 if (hdev->hci_ver > BLUETOOTH_VER_1_1 &&
559 !test_bit(HCI_QUIRK_BROKEN_LOCAL_COMMANDS, &hdev->quirks))
Johan Hedberg42c6b122013-03-05 20:37:49 +0200560 hci_req_add(req, HCI_OP_READ_LOCAL_COMMANDS, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200561
562 if (lmp_ssp_capable(hdev)) {
Marcel Holtmann57af75a2013-10-18 12:04:47 -0700563 /* When SSP is available, then the host features page
564 * should also be available as well. However some
565 * controllers list the max_page as 0 as long as SSP
566 * has not been enabled. To achieve proper debugging
567 * output, force the minimum max_page to 1 at least.
568 */
569 hdev->max_page = 0x01;
570
Marcel Holtmannd7a5a112015-03-13 02:11:00 -0700571 if (hci_dev_test_flag(hdev, HCI_SSP_ENABLED)) {
Johan Hedberg2177bab2013-03-05 20:37:43 +0200572 u8 mode = 0x01;
Marcel Holtmann574ea3c2015-01-22 11:15:20 -0800573
Johan Hedberg42c6b122013-03-05 20:37:49 +0200574 hci_req_add(req, HCI_OP_WRITE_SSP_MODE,
575 sizeof(mode), &mode);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200576 } else {
577 struct hci_cp_write_eir cp;
578
579 memset(hdev->eir, 0, sizeof(hdev->eir));
580 memset(&cp, 0, sizeof(cp));
581
Johan Hedberg42c6b122013-03-05 20:37:49 +0200582 hci_req_add(req, HCI_OP_WRITE_EIR, sizeof(cp), &cp);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200583 }
584 }
585
Marcel Holtmann043ec9b2015-01-02 23:35:19 -0800586 if (lmp_inq_rssi_capable(hdev) ||
587 test_bit(HCI_QUIRK_FIXUP_INQUIRY_MODE, &hdev->quirks)) {
Marcel Holtmann04422da2015-01-02 23:35:18 -0800588 u8 mode;
589
590 /* If Extended Inquiry Result events are supported, then
591 * they are clearly preferred over Inquiry Result with RSSI
592 * events.
593 */
594 mode = lmp_ext_inq_capable(hdev) ? 0x02 : 0x01;
595
596 hci_req_add(req, HCI_OP_WRITE_INQUIRY_MODE, 1, &mode);
597 }
Johan Hedberg2177bab2013-03-05 20:37:43 +0200598
599 if (lmp_inq_tx_pwr_capable(hdev))
Johan Hedberg42c6b122013-03-05 20:37:49 +0200600 hci_req_add(req, HCI_OP_READ_INQ_RSP_TX_POWER, 0, NULL);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200601
602 if (lmp_ext_feat_capable(hdev)) {
603 struct hci_cp_read_local_ext_features cp;
604
605 cp.page = 0x01;
Johan Hedberg42c6b122013-03-05 20:37:49 +0200606 hci_req_add(req, HCI_OP_READ_LOCAL_EXT_FEATURES,
607 sizeof(cp), &cp);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200608 }
609
Marcel Holtmannd7a5a112015-03-13 02:11:00 -0700610 if (hci_dev_test_flag(hdev, HCI_LINK_SECURITY)) {
Johan Hedberg2177bab2013-03-05 20:37:43 +0200611 u8 enable = 1;
Johan Hedberg42c6b122013-03-05 20:37:49 +0200612 hci_req_add(req, HCI_OP_WRITE_AUTH_ENABLE, sizeof(enable),
613 &enable);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200614 }
615}
616
Johan Hedberg42c6b122013-03-05 20:37:49 +0200617static void hci_setup_link_policy(struct hci_request *req)
Johan Hedberg2177bab2013-03-05 20:37:43 +0200618{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200619 struct hci_dev *hdev = req->hdev;
Johan Hedberg2177bab2013-03-05 20:37:43 +0200620 struct hci_cp_write_def_link_policy cp;
621 u16 link_policy = 0;
622
623 if (lmp_rswitch_capable(hdev))
624 link_policy |= HCI_LP_RSWITCH;
625 if (lmp_hold_capable(hdev))
626 link_policy |= HCI_LP_HOLD;
627 if (lmp_sniff_capable(hdev))
628 link_policy |= HCI_LP_SNIFF;
629 if (lmp_park_capable(hdev))
630 link_policy |= HCI_LP_PARK;
631
632 cp.policy = cpu_to_le16(link_policy);
Johan Hedberg42c6b122013-03-05 20:37:49 +0200633 hci_req_add(req, HCI_OP_WRITE_DEF_LINK_POLICY, sizeof(cp), &cp);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200634}
635
Johan Hedberg42c6b122013-03-05 20:37:49 +0200636static void hci_set_le_support(struct hci_request *req)
Johan Hedberg2177bab2013-03-05 20:37:43 +0200637{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200638 struct hci_dev *hdev = req->hdev;
Johan Hedberg2177bab2013-03-05 20:37:43 +0200639 struct hci_cp_write_le_host_supported cp;
640
Johan Hedbergc73eee92013-04-19 18:35:21 +0300641 /* LE-only devices do not support explicit enablement */
642 if (!lmp_bredr_capable(hdev))
643 return;
644
Johan Hedberg2177bab2013-03-05 20:37:43 +0200645 memset(&cp, 0, sizeof(cp));
646
Marcel Holtmannd7a5a112015-03-13 02:11:00 -0700647 if (hci_dev_test_flag(hdev, HCI_LE_ENABLED)) {
Johan Hedberg2177bab2013-03-05 20:37:43 +0200648 cp.le = 0x01;
Marcel Holtmann32226e42014-07-24 20:04:16 +0200649 cp.simul = 0x00;
Johan Hedberg2177bab2013-03-05 20:37:43 +0200650 }
651
652 if (cp.le != lmp_host_le_capable(hdev))
Johan Hedberg42c6b122013-03-05 20:37:49 +0200653 hci_req_add(req, HCI_OP_WRITE_LE_HOST_SUPPORTED, sizeof(cp),
654 &cp);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200655}
656
Johan Hedbergd62e6d62013-09-13 11:40:02 +0300657static void hci_set_event_mask_page_2(struct hci_request *req)
658{
659 struct hci_dev *hdev = req->hdev;
660 u8 events[8] = { 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00 };
661
662 /* If Connectionless Slave Broadcast master role is supported
663 * enable all necessary events for it.
664 */
Marcel Holtmann53b834d22013-12-08 11:55:33 -0800665 if (lmp_csb_master_capable(hdev)) {
Johan Hedbergd62e6d62013-09-13 11:40:02 +0300666 events[1] |= 0x40; /* Triggered Clock Capture */
667 events[1] |= 0x80; /* Synchronization Train Complete */
668 events[2] |= 0x10; /* Slave Page Response Timeout */
669 events[2] |= 0x20; /* CSB Channel Map Change */
670 }
671
672 /* If Connectionless Slave Broadcast slave role is supported
673 * enable all necessary events for it.
674 */
Marcel Holtmann53b834d22013-12-08 11:55:33 -0800675 if (lmp_csb_slave_capable(hdev)) {
Johan Hedbergd62e6d62013-09-13 11:40:02 +0300676 events[2] |= 0x01; /* Synchronization Train Received */
677 events[2] |= 0x02; /* CSB Receive */
678 events[2] |= 0x04; /* CSB Timeout */
679 events[2] |= 0x08; /* Truncated Page Complete */
680 }
681
Marcel Holtmann40c59fc2014-01-10 02:07:21 -0800682 /* Enable Authenticated Payload Timeout Expired event if supported */
Marcel Holtmanncd7ca0e2014-07-09 09:49:05 +0200683 if (lmp_ping_capable(hdev) || hdev->le_features[0] & HCI_LE_PING)
Marcel Holtmann40c59fc2014-01-10 02:07:21 -0800684 events[2] |= 0x80;
685
Johan Hedbergd62e6d62013-09-13 11:40:02 +0300686 hci_req_add(req, HCI_OP_SET_EVENT_MASK_PAGE_2, sizeof(events), events);
687}
688
Johan Hedberg42c6b122013-03-05 20:37:49 +0200689static void hci_init3_req(struct hci_request *req, unsigned long opt)
Johan Hedberg2177bab2013-03-05 20:37:43 +0200690{
Johan Hedberg42c6b122013-03-05 20:37:49 +0200691 struct hci_dev *hdev = req->hdev;
Johan Hedbergd2c5d772013-04-17 15:00:52 +0300692 u8 p;
Johan Hedberg42c6b122013-03-05 20:37:49 +0200693
Marcel Holtmann0da71f12014-07-12 23:36:16 +0200694 hci_setup_event_mask(req);
695
Marcel Holtmann48ce62c2015-01-12 09:21:26 -0800696 if (hdev->commands[6] & 0x20) {
697 struct hci_cp_read_stored_link_key cp;
698
699 bacpy(&cp.bdaddr, BDADDR_ANY);
700 cp.read_all = 0x01;
701 hci_req_add(req, HCI_OP_READ_STORED_LINK_KEY, sizeof(cp), &cp);
702 }
703
Johan Hedberg2177bab2013-03-05 20:37:43 +0200704 if (hdev->commands[5] & 0x10)
Johan Hedberg42c6b122013-03-05 20:37:49 +0200705 hci_setup_link_policy(req);
Johan Hedberg2177bab2013-03-05 20:37:43 +0200706
Marcel Holtmann417287d2014-12-11 20:21:54 +0100707 if (hdev->commands[8] & 0x01)
708 hci_req_add(req, HCI_OP_READ_PAGE_SCAN_ACTIVITY, 0, NULL);
709
710 /* Some older Broadcom based Bluetooth 1.2 controllers do not
711 * support the Read Page Scan Type command. Check support for
712 * this command in the bit mask of supported commands.
713 */
714 if (hdev->commands[13] & 0x01)
715 hci_req_add(req, HCI_OP_READ_PAGE_SCAN_TYPE, 0, NULL);
716
Andre Guedes9193c6e2014-07-01 18:10:09 -0300717 if (lmp_le_capable(hdev)) {
718 u8 events[8];
719
720 memset(events, 0, sizeof(events));
Marcel Holtmann4d6c7052014-07-13 00:29:22 +0200721 events[0] = 0x0f;
722
723 if (hdev->le_features[0] & HCI_LE_ENCRYPTION)
724 events[0] |= 0x10; /* LE Long Term Key Request */
Andre Guedes662bc2e2014-07-01 18:10:10 -0300725
726 /* If controller supports the Connection Parameters Request
727 * Link Layer Procedure, enable the corresponding event.
728 */
729 if (hdev->le_features[0] & HCI_LE_CONN_PARAM_REQ_PROC)
730 events[0] |= 0x20; /* LE Remote Connection
731 * Parameter Request
732 */
733
Marcel Holtmanna9f60682014-12-20 16:28:39 +0100734 /* If the controller supports the Data Length Extension
735 * feature, enable the corresponding event.
736 */
737 if (hdev->le_features[0] & HCI_LE_DATA_LEN_EXT)
738 events[0] |= 0x40; /* LE Data Length Change */
739
Marcel Holtmann4b71bba2014-12-05 16:20:12 +0100740 /* If the controller supports Extended Scanner Filter
741 * Policies, enable the correspondig event.
742 */
743 if (hdev->le_features[0] & HCI_LE_EXT_SCAN_POLICY)
744 events[1] |= 0x04; /* LE Direct Advertising
745 * Report
746 */
747
Marcel Holtmann5a34bd52014-12-05 16:20:15 +0100748 /* If the controller supports the LE Read Local P-256
749 * Public Key command, enable the corresponding event.
750 */
751 if (hdev->commands[34] & 0x02)
752 events[0] |= 0x80; /* LE Read Local P-256
753 * Public Key Complete
754 */
755
756 /* If the controller supports the LE Generate DHKey
757 * command, enable the corresponding event.
758 */
759 if (hdev->commands[34] & 0x04)
760 events[1] |= 0x01; /* LE Generate DHKey Complete */
761
Andre Guedes9193c6e2014-07-01 18:10:09 -0300762 hci_req_add(req, HCI_OP_LE_SET_EVENT_MASK, sizeof(events),
763 events);
764
Marcel Holtmann15a49cc2014-07-12 23:20:50 +0200765 if (hdev->commands[25] & 0x40) {
766 /* Read LE Advertising Channel TX Power */
767 hci_req_add(req, HCI_OP_LE_READ_ADV_TX_POWER, 0, NULL);
768 }
769
Marcel Holtmanna9f60682014-12-20 16:28:39 +0100770 if (hdev->le_features[0] & HCI_LE_DATA_LEN_EXT) {
771 /* Read LE Maximum Data Length */
772 hci_req_add(req, HCI_OP_LE_READ_MAX_DATA_LEN, 0, NULL);
773
774 /* Read LE Suggested Default Data Length */
775 hci_req_add(req, HCI_OP_LE_READ_DEF_DATA_LEN, 0, NULL);
776 }
777
Johan Hedberg42c6b122013-03-05 20:37:49 +0200778 hci_set_le_support(req);
Andre Guedes9193c6e2014-07-01 18:10:09 -0300779 }
Johan Hedbergd2c5d772013-04-17 15:00:52 +0300780
781 /* Read features beyond page 1 if available */
782 for (p = 2; p < HCI_MAX_PAGES && p <= hdev->max_page; p++) {
783 struct hci_cp_read_local_ext_features cp;
784
785 cp.page = p;
786 hci_req_add(req, HCI_OP_READ_LOCAL_EXT_FEATURES,
787 sizeof(cp), &cp);
788 }
Johan Hedberg2177bab2013-03-05 20:37:43 +0200789}
790
Johan Hedberg5d4e7e82013-09-13 11:40:01 +0300791static void hci_init4_req(struct hci_request *req, unsigned long opt)
792{
793 struct hci_dev *hdev = req->hdev;
794
Marcel Holtmann36f260c2015-01-12 22:47:22 -0800795 /* Some Broadcom based Bluetooth controllers do not support the
796 * Delete Stored Link Key command. They are clearly indicating its
797 * absence in the bit mask of supported commands.
798 *
799 * Check the supported commands and only if the the command is marked
800 * as supported send it. If not supported assume that the controller
801 * does not have actual support for stored link keys which makes this
802 * command redundant anyway.
803 *
804 * Some controllers indicate that they support handling deleting
805 * stored link keys, but they don't. The quirk lets a driver
806 * just disable this command.
807 */
808 if (hdev->commands[6] & 0x80 &&
809 !test_bit(HCI_QUIRK_BROKEN_STORED_LINK_KEY, &hdev->quirks)) {
810 struct hci_cp_delete_stored_link_key cp;
811
812 bacpy(&cp.bdaddr, BDADDR_ANY);
813 cp.delete_all = 0x01;
814 hci_req_add(req, HCI_OP_DELETE_STORED_LINK_KEY,
815 sizeof(cp), &cp);
816 }
817
Johan Hedbergd62e6d62013-09-13 11:40:02 +0300818 /* Set event mask page 2 if the HCI command for it is supported */
819 if (hdev->commands[22] & 0x04)
820 hci_set_event_mask_page_2(req);
821
Marcel Holtmann109e3192014-07-23 19:24:56 +0200822 /* Read local codec list if the HCI command is supported */
823 if (hdev->commands[29] & 0x20)
824 hci_req_add(req, HCI_OP_READ_LOCAL_CODECS, 0, NULL);
825
Marcel Holtmannf4fe73e2014-07-23 19:24:57 +0200826 /* Get MWS transport configuration if the HCI command is supported */
827 if (hdev->commands[30] & 0x08)
828 hci_req_add(req, HCI_OP_GET_MWS_TRANSPORT_CONFIG, 0, NULL);
829
Johan Hedberg5d4e7e82013-09-13 11:40:01 +0300830 /* Check for Synchronization Train support */
Marcel Holtmann53b834d22013-12-08 11:55:33 -0800831 if (lmp_sync_train_capable(hdev))
Johan Hedberg5d4e7e82013-09-13 11:40:01 +0300832 hci_req_add(req, HCI_OP_READ_SYNC_TRAIN_PARAMS, 0, NULL);
Marcel Holtmanna6d0d692014-01-10 02:07:24 -0800833
834 /* Enable Secure Connections if supported and configured */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -0700835 if (hci_dev_test_flag(hdev, HCI_SSP_ENABLED) &&
Marcel Holtmann574ea3c2015-01-22 11:15:20 -0800836 bredr_sc_enabled(hdev)) {
Marcel Holtmanna6d0d692014-01-10 02:07:24 -0800837 u8 support = 0x01;
Marcel Holtmann574ea3c2015-01-22 11:15:20 -0800838
Marcel Holtmanna6d0d692014-01-10 02:07:24 -0800839 hci_req_add(req, HCI_OP_WRITE_SC_SUPPORT,
840 sizeof(support), &support);
841 }
Johan Hedberg5d4e7e82013-09-13 11:40:01 +0300842}
843
Johan Hedberg2177bab2013-03-05 20:37:43 +0200844static int __hci_init(struct hci_dev *hdev)
845{
846 int err;
847
848 err = __hci_req_sync(hdev, hci_init1_req, 0, HCI_INIT_TIMEOUT);
849 if (err < 0)
850 return err;
851
Marcel Holtmann4b4148e2013-10-19 07:09:12 -0700852 /* The Device Under Test (DUT) mode is special and available for
853 * all controller types. So just create it early on.
854 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -0700855 if (hci_dev_test_flag(hdev, HCI_SETUP)) {
Marcel Holtmann4b4148e2013-10-19 07:09:12 -0700856 debugfs_create_file("dut_mode", 0644, hdev->debugfs, hdev,
857 &dut_mode_fops);
858 }
859
Johan Hedberg2177bab2013-03-05 20:37:43 +0200860 err = __hci_req_sync(hdev, hci_init2_req, 0, HCI_INIT_TIMEOUT);
861 if (err < 0)
862 return err;
863
Johan Hedberg0af801b2015-02-17 15:05:21 +0200864 /* HCI_BREDR covers both single-mode LE, BR/EDR and dual-mode
865 * BR/EDR/LE type controllers. AMP controllers only need the
866 * first two stages of init.
867 */
868 if (hdev->dev_type != HCI_BREDR)
869 return 0;
870
Johan Hedberg5d4e7e82013-09-13 11:40:01 +0300871 err = __hci_req_sync(hdev, hci_init3_req, 0, HCI_INIT_TIMEOUT);
872 if (err < 0)
873 return err;
874
Marcel Holtmannbaf27f62013-10-16 03:28:55 -0700875 err = __hci_req_sync(hdev, hci_init4_req, 0, HCI_INIT_TIMEOUT);
876 if (err < 0)
877 return err;
878
Marcel Holtmannec6cef92015-01-01 02:05:16 -0800879 /* This function is only called when the controller is actually in
880 * configured state. When the controller is marked as unconfigured,
881 * this initialization procedure is not run.
882 *
883 * It means that it is possible that a controller runs through its
884 * setup phase and then discovers missing settings. If that is the
885 * case, then this function will not be called. It then will only
886 * be called during the config phase.
887 *
888 * So only when in setup phase or config phase, create the debugfs
889 * entries and register the SMP channels.
Marcel Holtmannbaf27f62013-10-16 03:28:55 -0700890 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -0700891 if (!hci_dev_test_flag(hdev, HCI_SETUP) &&
892 !hci_dev_test_flag(hdev, HCI_CONFIG))
Marcel Holtmannbaf27f62013-10-16 03:28:55 -0700893 return 0;
894
Marcel Holtmann60c5f5f2014-12-20 16:05:13 +0100895 hci_debugfs_create_common(hdev);
896
Marcel Holtmann71c3b602014-12-20 16:05:15 +0100897 if (lmp_bredr_capable(hdev))
Marcel Holtmann60c5f5f2014-12-20 16:05:13 +0100898 hci_debugfs_create_bredr(hdev);
Marcel Holtmann2bfa3532013-10-17 19:16:02 -0700899
Marcel Holtmann162a3ba2015-01-14 15:43:11 -0800900 if (lmp_le_capable(hdev))
Marcel Holtmann60c5f5f2014-12-20 16:05:13 +0100901 hci_debugfs_create_le(hdev);
Marcel Holtmanne7b8fc92013-10-17 11:45:09 -0700902
Marcel Holtmannbaf27f62013-10-16 03:28:55 -0700903 return 0;
Johan Hedberg2177bab2013-03-05 20:37:43 +0200904}
905
Marcel Holtmann0ebca7d2014-07-05 10:48:02 +0200906static void hci_init0_req(struct hci_request *req, unsigned long opt)
907{
908 struct hci_dev *hdev = req->hdev;
909
910 BT_DBG("%s %ld", hdev->name, opt);
911
912 /* Reset */
913 if (!test_bit(HCI_QUIRK_RESET_ON_CLOSE, &hdev->quirks))
914 hci_reset_req(req, 0);
915
916 /* Read Local Version */
917 hci_req_add(req, HCI_OP_READ_LOCAL_VERSION, 0, NULL);
918
919 /* Read BD Address */
920 if (hdev->set_bdaddr)
921 hci_req_add(req, HCI_OP_READ_BD_ADDR, 0, NULL);
922}
923
924static int __hci_unconf_init(struct hci_dev *hdev)
925{
926 int err;
927
Marcel Holtmanncc78b442014-07-06 13:43:20 +0200928 if (test_bit(HCI_QUIRK_RAW_DEVICE, &hdev->quirks))
929 return 0;
930
Marcel Holtmann0ebca7d2014-07-05 10:48:02 +0200931 err = __hci_req_sync(hdev, hci_init0_req, 0, HCI_INIT_TIMEOUT);
932 if (err < 0)
933 return err;
934
935 return 0;
936}
937
Johan Hedberg42c6b122013-03-05 20:37:49 +0200938static void hci_scan_req(struct hci_request *req, unsigned long opt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700939{
940 __u8 scan = opt;
941
Johan Hedberg42c6b122013-03-05 20:37:49 +0200942 BT_DBG("%s %x", req->hdev->name, scan);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700943
944 /* Inquiry and Page scans */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200945 hci_req_add(req, HCI_OP_WRITE_SCAN_ENABLE, 1, &scan);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700946}
947
Johan Hedberg42c6b122013-03-05 20:37:49 +0200948static void hci_auth_req(struct hci_request *req, unsigned long opt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700949{
950 __u8 auth = opt;
951
Johan Hedberg42c6b122013-03-05 20:37:49 +0200952 BT_DBG("%s %x", req->hdev->name, auth);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700953
954 /* Authentication */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200955 hci_req_add(req, HCI_OP_WRITE_AUTH_ENABLE, 1, &auth);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700956}
957
Johan Hedberg42c6b122013-03-05 20:37:49 +0200958static void hci_encrypt_req(struct hci_request *req, unsigned long opt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700959{
960 __u8 encrypt = opt;
961
Johan Hedberg42c6b122013-03-05 20:37:49 +0200962 BT_DBG("%s %x", req->hdev->name, encrypt);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700963
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200964 /* Encryption */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200965 hci_req_add(req, HCI_OP_WRITE_ENCRYPT_MODE, 1, &encrypt);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700966}
967
Johan Hedberg42c6b122013-03-05 20:37:49 +0200968static void hci_linkpol_req(struct hci_request *req, unsigned long opt)
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200969{
970 __le16 policy = cpu_to_le16(opt);
971
Johan Hedberg42c6b122013-03-05 20:37:49 +0200972 BT_DBG("%s %x", req->hdev->name, policy);
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200973
974 /* Default link policy */
Johan Hedberg42c6b122013-03-05 20:37:49 +0200975 hci_req_add(req, HCI_OP_WRITE_DEF_LINK_POLICY, 2, &policy);
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200976}
977
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900978/* Get HCI device by index.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700979 * Device is held on return. */
980struct hci_dev *hci_dev_get(int index)
981{
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200982 struct hci_dev *hdev = NULL, *d;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700983
984 BT_DBG("%d", index);
985
986 if (index < 0)
987 return NULL;
988
989 read_lock(&hci_dev_list_lock);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200990 list_for_each_entry(d, &hci_dev_list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700991 if (d->id == index) {
992 hdev = hci_dev_hold(d);
993 break;
994 }
995 }
996 read_unlock(&hci_dev_list_lock);
997 return hdev;
998}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700999
1000/* ---- Inquiry support ---- */
Johan Hedbergff9ef572012-01-04 14:23:45 +02001001
Johan Hedberg30dc78e2012-01-04 15:44:20 +02001002bool hci_discovery_active(struct hci_dev *hdev)
1003{
1004 struct discovery_state *discov = &hdev->discovery;
1005
Andre Guedes6fbe1952012-02-03 17:47:58 -03001006 switch (discov->state) {
Andre Guedes343f9352012-02-17 20:39:37 -03001007 case DISCOVERY_FINDING:
Andre Guedes6fbe1952012-02-03 17:47:58 -03001008 case DISCOVERY_RESOLVING:
Johan Hedberg30dc78e2012-01-04 15:44:20 +02001009 return true;
1010
Andre Guedes6fbe1952012-02-03 17:47:58 -03001011 default:
1012 return false;
1013 }
Johan Hedberg30dc78e2012-01-04 15:44:20 +02001014}
1015
Johan Hedbergff9ef572012-01-04 14:23:45 +02001016void hci_discovery_set_state(struct hci_dev *hdev, int state)
1017{
Johan Hedbergbb3e0a32014-07-07 13:24:58 +03001018 int old_state = hdev->discovery.state;
1019
Johan Hedbergff9ef572012-01-04 14:23:45 +02001020 BT_DBG("%s state %u -> %u", hdev->name, hdev->discovery.state, state);
1021
Johan Hedbergbb3e0a32014-07-07 13:24:58 +03001022 if (old_state == state)
Johan Hedbergff9ef572012-01-04 14:23:45 +02001023 return;
1024
Johan Hedbergbb3e0a32014-07-07 13:24:58 +03001025 hdev->discovery.state = state;
1026
Johan Hedbergff9ef572012-01-04 14:23:45 +02001027 switch (state) {
1028 case DISCOVERY_STOPPED:
Andre Guedesc54c3862014-02-26 20:21:50 -03001029 hci_update_background_scan(hdev);
1030
Johan Hedbergbb3e0a32014-07-07 13:24:58 +03001031 if (old_state != DISCOVERY_STARTING)
Andre Guedes7b99b652012-02-13 15:41:02 -03001032 mgmt_discovering(hdev, 0);
Johan Hedbergff9ef572012-01-04 14:23:45 +02001033 break;
1034 case DISCOVERY_STARTING:
1035 break;
Andre Guedes343f9352012-02-17 20:39:37 -03001036 case DISCOVERY_FINDING:
Johan Hedbergff9ef572012-01-04 14:23:45 +02001037 mgmt_discovering(hdev, 1);
1038 break;
Johan Hedberg30dc78e2012-01-04 15:44:20 +02001039 case DISCOVERY_RESOLVING:
1040 break;
Johan Hedbergff9ef572012-01-04 14:23:45 +02001041 case DISCOVERY_STOPPING:
1042 break;
1043 }
Johan Hedbergff9ef572012-01-04 14:23:45 +02001044}
1045
Andre Guedes1f9b9a52013-04-30 15:29:27 -03001046void hci_inquiry_cache_flush(struct hci_dev *hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001047{
Johan Hedberg30883512012-01-04 14:16:21 +02001048 struct discovery_state *cache = &hdev->discovery;
Johan Hedbergb57c1a52012-01-03 16:03:00 +02001049 struct inquiry_entry *p, *n;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001050
Johan Hedberg561aafb2012-01-04 13:31:59 +02001051 list_for_each_entry_safe(p, n, &cache->all, all) {
1052 list_del(&p->all);
Johan Hedbergb57c1a52012-01-03 16:03:00 +02001053 kfree(p);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001054 }
Johan Hedberg561aafb2012-01-04 13:31:59 +02001055
1056 INIT_LIST_HEAD(&cache->unknown);
1057 INIT_LIST_HEAD(&cache->resolve);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001058}
1059
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03001060struct inquiry_entry *hci_inquiry_cache_lookup(struct hci_dev *hdev,
1061 bdaddr_t *bdaddr)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001062{
Johan Hedberg30883512012-01-04 14:16:21 +02001063 struct discovery_state *cache = &hdev->discovery;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001064 struct inquiry_entry *e;
1065
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03001066 BT_DBG("cache %p, %pMR", cache, bdaddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001067
Johan Hedberg561aafb2012-01-04 13:31:59 +02001068 list_for_each_entry(e, &cache->all, all) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001069 if (!bacmp(&e->data.bdaddr, bdaddr))
Johan Hedbergb57c1a52012-01-03 16:03:00 +02001070 return e;
1071 }
1072
1073 return NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001074}
1075
Johan Hedberg561aafb2012-01-04 13:31:59 +02001076struct inquiry_entry *hci_inquiry_cache_lookup_unknown(struct hci_dev *hdev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001077 bdaddr_t *bdaddr)
Johan Hedberg561aafb2012-01-04 13:31:59 +02001078{
Johan Hedberg30883512012-01-04 14:16:21 +02001079 struct discovery_state *cache = &hdev->discovery;
Johan Hedberg561aafb2012-01-04 13:31:59 +02001080 struct inquiry_entry *e;
1081
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03001082 BT_DBG("cache %p, %pMR", cache, bdaddr);
Johan Hedberg561aafb2012-01-04 13:31:59 +02001083
1084 list_for_each_entry(e, &cache->unknown, list) {
1085 if (!bacmp(&e->data.bdaddr, bdaddr))
1086 return e;
1087 }
1088
1089 return NULL;
1090}
1091
Johan Hedberg30dc78e2012-01-04 15:44:20 +02001092struct inquiry_entry *hci_inquiry_cache_lookup_resolve(struct hci_dev *hdev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001093 bdaddr_t *bdaddr,
1094 int state)
Johan Hedberg30dc78e2012-01-04 15:44:20 +02001095{
1096 struct discovery_state *cache = &hdev->discovery;
1097 struct inquiry_entry *e;
1098
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03001099 BT_DBG("cache %p bdaddr %pMR state %d", cache, bdaddr, state);
Johan Hedberg30dc78e2012-01-04 15:44:20 +02001100
1101 list_for_each_entry(e, &cache->resolve, list) {
1102 if (!bacmp(bdaddr, BDADDR_ANY) && e->name_state == state)
1103 return e;
1104 if (!bacmp(&e->data.bdaddr, bdaddr))
1105 return e;
1106 }
1107
1108 return NULL;
1109}
1110
Johan Hedberga3d4e202012-01-09 00:53:02 +02001111void hci_inquiry_cache_update_resolve(struct hci_dev *hdev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001112 struct inquiry_entry *ie)
Johan Hedberga3d4e202012-01-09 00:53:02 +02001113{
1114 struct discovery_state *cache = &hdev->discovery;
1115 struct list_head *pos = &cache->resolve;
1116 struct inquiry_entry *p;
1117
1118 list_del(&ie->list);
1119
1120 list_for_each_entry(p, &cache->resolve, list) {
1121 if (p->name_state != NAME_PENDING &&
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03001122 abs(p->data.rssi) >= abs(ie->data.rssi))
Johan Hedberga3d4e202012-01-09 00:53:02 +02001123 break;
1124 pos = &p->list;
1125 }
1126
1127 list_add(&ie->list, pos);
1128}
1129
Marcel Holtmannaf589252014-07-01 14:11:20 +02001130u32 hci_inquiry_cache_update(struct hci_dev *hdev, struct inquiry_data *data,
1131 bool name_known)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001132{
Johan Hedberg30883512012-01-04 14:16:21 +02001133 struct discovery_state *cache = &hdev->discovery;
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001134 struct inquiry_entry *ie;
Marcel Holtmannaf589252014-07-01 14:11:20 +02001135 u32 flags = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001136
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03001137 BT_DBG("cache %p, %pMR", cache, &data->bdaddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001138
Johan Hedberg6928a922014-10-26 20:46:09 +01001139 hci_remove_remote_oob_data(hdev, &data->bdaddr, BDADDR_BREDR);
Szymon Janc2b2fec42012-11-20 11:38:54 +01001140
Marcel Holtmannaf589252014-07-01 14:11:20 +02001141 if (!data->ssp_mode)
1142 flags |= MGMT_DEV_FOUND_LEGACY_PAIRING;
Johan Hedberg388fc8f2012-02-23 00:38:59 +02001143
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001144 ie = hci_inquiry_cache_lookup(hdev, &data->bdaddr);
Johan Hedberga3d4e202012-01-09 00:53:02 +02001145 if (ie) {
Marcel Holtmannaf589252014-07-01 14:11:20 +02001146 if (!ie->data.ssp_mode)
1147 flags |= MGMT_DEV_FOUND_LEGACY_PAIRING;
Johan Hedberg388fc8f2012-02-23 00:38:59 +02001148
Johan Hedberga3d4e202012-01-09 00:53:02 +02001149 if (ie->name_state == NAME_NEEDED &&
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03001150 data->rssi != ie->data.rssi) {
Johan Hedberga3d4e202012-01-09 00:53:02 +02001151 ie->data.rssi = data->rssi;
1152 hci_inquiry_cache_update_resolve(hdev, ie);
1153 }
1154
Johan Hedberg561aafb2012-01-04 13:31:59 +02001155 goto update;
Johan Hedberga3d4e202012-01-09 00:53:02 +02001156 }
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001157
Johan Hedberg561aafb2012-01-04 13:31:59 +02001158 /* Entry not in the cache. Add new one. */
Johan Hedberg27f70f32014-07-21 10:50:06 +03001159 ie = kzalloc(sizeof(*ie), GFP_KERNEL);
Marcel Holtmannaf589252014-07-01 14:11:20 +02001160 if (!ie) {
1161 flags |= MGMT_DEV_FOUND_CONFIRM_NAME;
1162 goto done;
1163 }
Johan Hedberg561aafb2012-01-04 13:31:59 +02001164
1165 list_add(&ie->all, &cache->all);
1166
1167 if (name_known) {
1168 ie->name_state = NAME_KNOWN;
1169 } else {
1170 ie->name_state = NAME_NOT_KNOWN;
1171 list_add(&ie->list, &cache->unknown);
1172 }
1173
1174update:
1175 if (name_known && ie->name_state != NAME_KNOWN &&
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03001176 ie->name_state != NAME_PENDING) {
Johan Hedberg561aafb2012-01-04 13:31:59 +02001177 ie->name_state = NAME_KNOWN;
1178 list_del(&ie->list);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001179 }
1180
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001181 memcpy(&ie->data, data, sizeof(*data));
1182 ie->timestamp = jiffies;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001183 cache->timestamp = jiffies;
Johan Hedberg31754052012-01-04 13:39:52 +02001184
1185 if (ie->name_state == NAME_NOT_KNOWN)
Marcel Holtmannaf589252014-07-01 14:11:20 +02001186 flags |= MGMT_DEV_FOUND_CONFIRM_NAME;
Johan Hedberg31754052012-01-04 13:39:52 +02001187
Marcel Holtmannaf589252014-07-01 14:11:20 +02001188done:
1189 return flags;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001190}
1191
1192static int inquiry_cache_dump(struct hci_dev *hdev, int num, __u8 *buf)
1193{
Johan Hedberg30883512012-01-04 14:16:21 +02001194 struct discovery_state *cache = &hdev->discovery;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001195 struct inquiry_info *info = (struct inquiry_info *) buf;
1196 struct inquiry_entry *e;
1197 int copied = 0;
1198
Johan Hedberg561aafb2012-01-04 13:31:59 +02001199 list_for_each_entry(e, &cache->all, all) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001200 struct inquiry_data *data = &e->data;
Johan Hedbergb57c1a52012-01-03 16:03:00 +02001201
1202 if (copied >= num)
1203 break;
1204
Linus Torvalds1da177e2005-04-16 15:20:36 -07001205 bacpy(&info->bdaddr, &data->bdaddr);
1206 info->pscan_rep_mode = data->pscan_rep_mode;
1207 info->pscan_period_mode = data->pscan_period_mode;
1208 info->pscan_mode = data->pscan_mode;
1209 memcpy(info->dev_class, data->dev_class, 3);
1210 info->clock_offset = data->clock_offset;
Johan Hedbergb57c1a52012-01-03 16:03:00 +02001211
Linus Torvalds1da177e2005-04-16 15:20:36 -07001212 info++;
Johan Hedbergb57c1a52012-01-03 16:03:00 +02001213 copied++;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001214 }
1215
1216 BT_DBG("cache %p, copied %d", cache, copied);
1217 return copied;
1218}
1219
Johan Hedberg42c6b122013-03-05 20:37:49 +02001220static void hci_inq_req(struct hci_request *req, unsigned long opt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001221{
1222 struct hci_inquiry_req *ir = (struct hci_inquiry_req *) opt;
Johan Hedberg42c6b122013-03-05 20:37:49 +02001223 struct hci_dev *hdev = req->hdev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001224 struct hci_cp_inquiry cp;
1225
1226 BT_DBG("%s", hdev->name);
1227
1228 if (test_bit(HCI_INQUIRY, &hdev->flags))
1229 return;
1230
1231 /* Start Inquiry */
1232 memcpy(&cp.lap, &ir->lap, 3);
1233 cp.length = ir->length;
1234 cp.num_rsp = ir->num_rsp;
Johan Hedberg42c6b122013-03-05 20:37:49 +02001235 hci_req_add(req, HCI_OP_INQUIRY, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001236}
1237
1238int hci_inquiry(void __user *arg)
1239{
1240 __u8 __user *ptr = arg;
1241 struct hci_inquiry_req ir;
1242 struct hci_dev *hdev;
1243 int err = 0, do_inquiry = 0, max_rsp;
1244 long timeo;
1245 __u8 *buf;
1246
1247 if (copy_from_user(&ir, ptr, sizeof(ir)))
1248 return -EFAULT;
1249
Andrei Emeltchenko5a08ecc2011-01-11 17:20:20 +02001250 hdev = hci_dev_get(ir.dev_id);
1251 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001252 return -ENODEV;
1253
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001254 if (hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07001255 err = -EBUSY;
1256 goto done;
1257 }
1258
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001259 if (hci_dev_test_flag(hdev, HCI_UNCONFIGURED)) {
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001260 err = -EOPNOTSUPP;
1261 goto done;
1262 }
1263
Marcel Holtmann5b69bef52013-10-10 10:02:08 -07001264 if (hdev->dev_type != HCI_BREDR) {
1265 err = -EOPNOTSUPP;
1266 goto done;
1267 }
1268
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001269 if (!hci_dev_test_flag(hdev, HCI_BREDR_ENABLED)) {
Johan Hedberg56f87902013-10-02 13:43:13 +03001270 err = -EOPNOTSUPP;
1271 goto done;
1272 }
1273
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001274 hci_dev_lock(hdev);
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001275 if (inquiry_cache_age(hdev) > INQUIRY_CACHE_AGE_MAX ||
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03001276 inquiry_cache_empty(hdev) || ir.flags & IREQ_CACHE_FLUSH) {
Andre Guedes1f9b9a52013-04-30 15:29:27 -03001277 hci_inquiry_cache_flush(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001278 do_inquiry = 1;
1279 }
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001280 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001281
Marcel Holtmann04837f62006-07-03 10:02:33 +02001282 timeo = ir.length * msecs_to_jiffies(2000);
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001283
1284 if (do_inquiry) {
Johan Hedberg01178cd2013-03-05 20:37:41 +02001285 err = hci_req_sync(hdev, hci_inq_req, (unsigned long) &ir,
1286 timeo);
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001287 if (err < 0)
1288 goto done;
Andre Guedes3e13fa12013-03-27 20:04:56 -03001289
1290 /* Wait until Inquiry procedure finishes (HCI_INQUIRY flag is
1291 * cleared). If it is interrupted by a signal, return -EINTR.
1292 */
NeilBrown74316202014-07-07 15:16:04 +10001293 if (wait_on_bit(&hdev->flags, HCI_INQUIRY,
Andre Guedes3e13fa12013-03-27 20:04:56 -03001294 TASK_INTERRUPTIBLE))
1295 return -EINTR;
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001296 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001297
Gustavo Padovan8fc9ced2012-05-23 04:04:21 -03001298 /* for unlimited number of responses we will use buffer with
1299 * 255 entries
1300 */
Linus Torvalds1da177e2005-04-16 15:20:36 -07001301 max_rsp = (ir.num_rsp == 0) ? 255 : ir.num_rsp;
1302
1303 /* cache_dump can't sleep. Therefore we allocate temp buffer and then
1304 * copy it to the user space.
1305 */
Szymon Janc01df8c32011-02-17 16:46:47 +01001306 buf = kmalloc(sizeof(struct inquiry_info) * max_rsp, GFP_KERNEL);
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001307 if (!buf) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001308 err = -ENOMEM;
1309 goto done;
1310 }
1311
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001312 hci_dev_lock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001313 ir.num_rsp = inquiry_cache_dump(hdev, max_rsp, buf);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001314 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001315
1316 BT_DBG("num_rsp %d", ir.num_rsp);
1317
1318 if (!copy_to_user(ptr, &ir, sizeof(ir))) {
1319 ptr += sizeof(ir);
1320 if (copy_to_user(ptr, buf, sizeof(struct inquiry_info) *
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03001321 ir.num_rsp))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001322 err = -EFAULT;
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001323 } else
Linus Torvalds1da177e2005-04-16 15:20:36 -07001324 err = -EFAULT;
1325
1326 kfree(buf);
1327
1328done:
1329 hci_dev_put(hdev);
1330 return err;
1331}
1332
Johan Hedbergcbed0ca2013-10-01 22:44:49 +03001333static int hci_dev_do_open(struct hci_dev *hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001334{
Linus Torvalds1da177e2005-04-16 15:20:36 -07001335 int ret = 0;
1336
Linus Torvalds1da177e2005-04-16 15:20:36 -07001337 BT_DBG("%s %p", hdev->name, hdev);
1338
1339 hci_req_lock(hdev);
1340
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001341 if (hci_dev_test_flag(hdev, HCI_UNREGISTER)) {
Johan Hovold94324962012-03-15 14:48:41 +01001342 ret = -ENODEV;
1343 goto done;
1344 }
1345
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001346 if (!hci_dev_test_flag(hdev, HCI_SETUP) &&
1347 !hci_dev_test_flag(hdev, HCI_CONFIG)) {
Marcel Holtmanna5c8f272013-10-06 01:08:57 -07001348 /* Check for rfkill but allow the HCI setup stage to
1349 * proceed (which in itself doesn't cause any RF activity).
1350 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001351 if (hci_dev_test_flag(hdev, HCI_RFKILLED)) {
Marcel Holtmanna5c8f272013-10-06 01:08:57 -07001352 ret = -ERFKILL;
1353 goto done;
1354 }
1355
1356 /* Check for valid public address or a configured static
1357 * random adddress, but let the HCI setup proceed to
1358 * be able to determine if there is a public address
1359 * or not.
1360 *
Marcel Holtmannc6beca02014-02-17 09:21:19 -08001361 * In case of user channel usage, it is not important
1362 * if a public address or static random address is
1363 * available.
1364 *
Marcel Holtmanna5c8f272013-10-06 01:08:57 -07001365 * This check is only valid for BR/EDR controllers
1366 * since AMP controllers do not have an address.
1367 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001368 if (!hci_dev_test_flag(hdev, HCI_USER_CHANNEL) &&
Marcel Holtmannc6beca02014-02-17 09:21:19 -08001369 hdev->dev_type == HCI_BREDR &&
Marcel Holtmanna5c8f272013-10-06 01:08:57 -07001370 !bacmp(&hdev->bdaddr, BDADDR_ANY) &&
1371 !bacmp(&hdev->static_addr, BDADDR_ANY)) {
1372 ret = -EADDRNOTAVAIL;
1373 goto done;
1374 }
Marcel Holtmann611b30f2009-06-08 14:41:38 +02001375 }
1376
Linus Torvalds1da177e2005-04-16 15:20:36 -07001377 if (test_bit(HCI_UP, &hdev->flags)) {
1378 ret = -EALREADY;
1379 goto done;
1380 }
1381
Linus Torvalds1da177e2005-04-16 15:20:36 -07001382 if (hdev->open(hdev)) {
1383 ret = -EIO;
1384 goto done;
1385 }
1386
Marcel Holtmannf41c70c2012-11-12 14:02:14 +09001387 atomic_set(&hdev->cmd_cnt, 1);
1388 set_bit(HCI_INIT, &hdev->flags);
1389
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001390 if (hci_dev_test_flag(hdev, HCI_SETUP)) {
Marcel Holtmannaf202f82014-07-04 17:23:34 +02001391 if (hdev->setup)
1392 ret = hdev->setup(hdev);
Marcel Holtmannf41c70c2012-11-12 14:02:14 +09001393
Marcel Holtmannaf202f82014-07-04 17:23:34 +02001394 /* The transport driver can set these quirks before
1395 * creating the HCI device or in its setup callback.
1396 *
1397 * In case any of them is set, the controller has to
1398 * start up as unconfigured.
1399 */
Marcel Holtmanneb1904f2014-07-04 17:23:33 +02001400 if (test_bit(HCI_QUIRK_EXTERNAL_CONFIG, &hdev->quirks) ||
1401 test_bit(HCI_QUIRK_INVALID_BDADDR, &hdev->quirks))
Marcel Holtmanna1536da2015-03-13 02:11:01 -07001402 hci_dev_set_flag(hdev, HCI_UNCONFIGURED);
Marcel Holtmann0ebca7d2014-07-05 10:48:02 +02001403
1404 /* For an unconfigured controller it is required to
1405 * read at least the version information provided by
1406 * the Read Local Version Information command.
1407 *
1408 * If the set_bdaddr driver callback is provided, then
1409 * also the original Bluetooth public device address
1410 * will be read using the Read BD Address command.
1411 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001412 if (hci_dev_test_flag(hdev, HCI_UNCONFIGURED))
Marcel Holtmann0ebca7d2014-07-05 10:48:02 +02001413 ret = __hci_unconf_init(hdev);
Marcel Holtmann89bc22d2014-07-04 16:54:37 +02001414 }
1415
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001416 if (hci_dev_test_flag(hdev, HCI_CONFIG)) {
Marcel Holtmann9713c172014-07-06 12:11:15 +02001417 /* If public address change is configured, ensure that
1418 * the address gets programmed. If the driver does not
1419 * support changing the public address, fail the power
1420 * on procedure.
1421 */
1422 if (bacmp(&hdev->public_addr, BDADDR_ANY) &&
1423 hdev->set_bdaddr)
Marcel Holtmann24c457e2014-07-02 00:53:47 +02001424 ret = hdev->set_bdaddr(hdev, &hdev->public_addr);
1425 else
1426 ret = -EADDRNOTAVAIL;
1427 }
Marcel Holtmannf41c70c2012-11-12 14:02:14 +09001428
1429 if (!ret) {
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001430 if (!hci_dev_test_flag(hdev, HCI_UNCONFIGURED) &&
1431 !hci_dev_test_flag(hdev, HCI_USER_CHANNEL))
Marcel Holtmannf41c70c2012-11-12 14:02:14 +09001432 ret = __hci_init(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001433 }
1434
Marcel Holtmannf41c70c2012-11-12 14:02:14 +09001435 clear_bit(HCI_INIT, &hdev->flags);
1436
Linus Torvalds1da177e2005-04-16 15:20:36 -07001437 if (!ret) {
1438 hci_dev_hold(hdev);
Marcel Holtmanna1536da2015-03-13 02:11:01 -07001439 hci_dev_set_flag(hdev, HCI_RPA_EXPIRED);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001440 set_bit(HCI_UP, &hdev->flags);
1441 hci_notify(hdev, HCI_DEV_UP);
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001442 if (!hci_dev_test_flag(hdev, HCI_SETUP) &&
1443 !hci_dev_test_flag(hdev, HCI_CONFIG) &&
1444 !hci_dev_test_flag(hdev, HCI_UNCONFIGURED) &&
1445 !hci_dev_test_flag(hdev, HCI_USER_CHANNEL) &&
Marcel Holtmann1514b892013-10-06 08:25:01 -07001446 hdev->dev_type == HCI_BREDR) {
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001447 hci_dev_lock(hdev);
Johan Hedberg744cf192011-11-08 20:40:14 +02001448 mgmt_powered(hdev, 1);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001449 hci_dev_unlock(hdev);
Johan Hedberg56e5cb82011-11-08 20:40:16 +02001450 }
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001451 } else {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001452 /* Init failed, cleanup */
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02001453 flush_work(&hdev->tx_work);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02001454 flush_work(&hdev->cmd_work);
Marcel Holtmannb78752c2010-08-08 23:06:53 -04001455 flush_work(&hdev->rx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001456
1457 skb_queue_purge(&hdev->cmd_q);
1458 skb_queue_purge(&hdev->rx_q);
1459
1460 if (hdev->flush)
1461 hdev->flush(hdev);
1462
1463 if (hdev->sent_cmd) {
1464 kfree_skb(hdev->sent_cmd);
1465 hdev->sent_cmd = NULL;
1466 }
1467
1468 hdev->close(hdev);
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001469 hdev->flags &= BIT(HCI_RAW);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001470 }
1471
1472done:
1473 hci_req_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001474 return ret;
1475}
1476
Johan Hedbergcbed0ca2013-10-01 22:44:49 +03001477/* ---- HCI ioctl helpers ---- */
1478
1479int hci_dev_open(__u16 dev)
1480{
1481 struct hci_dev *hdev;
1482 int err;
1483
1484 hdev = hci_dev_get(dev);
1485 if (!hdev)
1486 return -ENODEV;
1487
Marcel Holtmann4a964402014-07-02 19:10:33 +02001488 /* Devices that are marked as unconfigured can only be powered
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001489 * up as user channel. Trying to bring them up as normal devices
1490 * will result into a failure. Only user channel operation is
1491 * possible.
1492 *
1493 * When this function is called for a user channel, the flag
1494 * HCI_USER_CHANNEL will be set first before attempting to
1495 * open the device.
1496 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001497 if (hci_dev_test_flag(hdev, HCI_UNCONFIGURED) &&
1498 !hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001499 err = -EOPNOTSUPP;
1500 goto done;
1501 }
1502
Johan Hedberge1d08f42013-10-01 22:44:50 +03001503 /* We need to ensure that no other power on/off work is pending
1504 * before proceeding to call hci_dev_do_open. This is
1505 * particularly important if the setup procedure has not yet
1506 * completed.
1507 */
Marcel Holtmanna69d8922015-03-13 02:11:05 -07001508 if (hci_dev_test_and_clear_flag(hdev, HCI_AUTO_OFF))
Johan Hedberge1d08f42013-10-01 22:44:50 +03001509 cancel_delayed_work(&hdev->power_off);
1510
Marcel Holtmanna5c8f272013-10-06 01:08:57 -07001511 /* After this call it is guaranteed that the setup procedure
1512 * has finished. This means that error conditions like RFKILL
1513 * or no valid public or static random address apply.
1514 */
Johan Hedberge1d08f42013-10-01 22:44:50 +03001515 flush_workqueue(hdev->req_workqueue);
1516
Marcel Holtmann12aa4f02014-07-10 15:25:22 +02001517 /* For controllers not using the management interface and that
Johan Hedbergb6ae8452014-07-30 09:22:22 +03001518 * are brought up using legacy ioctl, set the HCI_BONDABLE bit
Marcel Holtmann12aa4f02014-07-10 15:25:22 +02001519 * so that pairing works for them. Once the management interface
1520 * is in use this bit will be cleared again and userspace has
1521 * to explicitly enable it.
1522 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001523 if (!hci_dev_test_flag(hdev, HCI_USER_CHANNEL) &&
1524 !hci_dev_test_flag(hdev, HCI_MGMT))
Marcel Holtmanna1536da2015-03-13 02:11:01 -07001525 hci_dev_set_flag(hdev, HCI_BONDABLE);
Marcel Holtmann12aa4f02014-07-10 15:25:22 +02001526
Johan Hedbergcbed0ca2013-10-01 22:44:49 +03001527 err = hci_dev_do_open(hdev);
1528
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001529done:
Johan Hedbergcbed0ca2013-10-01 22:44:49 +03001530 hci_dev_put(hdev);
Johan Hedbergcbed0ca2013-10-01 22:44:49 +03001531 return err;
1532}
1533
Johan Hedbergd7347f32014-07-04 12:37:23 +03001534/* This function requires the caller holds hdev->lock */
1535static void hci_pend_le_actions_clear(struct hci_dev *hdev)
1536{
1537 struct hci_conn_params *p;
1538
Johan Hedbergf161dd42014-08-15 21:06:54 +03001539 list_for_each_entry(p, &hdev->le_conn_params, list) {
1540 if (p->conn) {
1541 hci_conn_drop(p->conn);
Johan Hedbergf8aaf9b2014-08-17 23:28:57 +03001542 hci_conn_put(p->conn);
Johan Hedbergf161dd42014-08-15 21:06:54 +03001543 p->conn = NULL;
1544 }
Johan Hedbergd7347f32014-07-04 12:37:23 +03001545 list_del_init(&p->action);
Johan Hedbergf161dd42014-08-15 21:06:54 +03001546 }
Johan Hedbergd7347f32014-07-04 12:37:23 +03001547
1548 BT_DBG("All LE pending actions cleared");
1549}
1550
Linus Torvalds1da177e2005-04-16 15:20:36 -07001551static int hci_dev_do_close(struct hci_dev *hdev)
1552{
1553 BT_DBG("%s %p", hdev->name, hdev);
1554
Gabriele Mazzottad24d8142015-04-26 20:51:50 +02001555 if (!hci_dev_test_flag(hdev, HCI_UNREGISTER) &&
1556 test_bit(HCI_UP, &hdev->flags)) {
Tedd Ho-Jeong Ana44fecb2015-02-13 09:20:50 -08001557 /* Execute vendor specific shutdown routine */
1558 if (hdev->shutdown)
1559 hdev->shutdown(hdev);
1560 }
1561
Vinicius Costa Gomes78c04c02012-09-14 16:34:46 -03001562 cancel_delayed_work(&hdev->power_off);
1563
Linus Torvalds1da177e2005-04-16 15:20:36 -07001564 hci_req_cancel(hdev, ENODEV);
1565 hci_req_lock(hdev);
1566
1567 if (!test_and_clear_bit(HCI_UP, &hdev->flags)) {
Marcel Holtmann65cc2b42014-06-16 12:30:56 +02001568 cancel_delayed_work_sync(&hdev->cmd_timer);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001569 hci_req_unlock(hdev);
1570 return 0;
1571 }
1572
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02001573 /* Flush RX and TX works */
1574 flush_work(&hdev->tx_work);
Marcel Holtmannb78752c2010-08-08 23:06:53 -04001575 flush_work(&hdev->rx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001576
Johan Hedberg16ab91a2011-11-07 22:16:02 +02001577 if (hdev->discov_timeout > 0) {
Johan Hedberge0f93092011-11-09 01:44:22 +02001578 cancel_delayed_work(&hdev->discov_off);
Johan Hedberg16ab91a2011-11-07 22:16:02 +02001579 hdev->discov_timeout = 0;
Marcel Holtmanna358dc12015-03-13 02:11:02 -07001580 hci_dev_clear_flag(hdev, HCI_DISCOVERABLE);
1581 hci_dev_clear_flag(hdev, HCI_LIMITED_DISCOVERABLE);
Johan Hedberg16ab91a2011-11-07 22:16:02 +02001582 }
1583
Marcel Holtmanna69d8922015-03-13 02:11:05 -07001584 if (hci_dev_test_and_clear_flag(hdev, HCI_SERVICE_CACHE))
Johan Hedberg7d785252011-12-15 00:47:39 +02001585 cancel_delayed_work(&hdev->service_cache);
1586
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03001587 cancel_delayed_work_sync(&hdev->le_scan_disable);
Jakub Pawlowski2d28cfe2015-02-01 23:07:54 -08001588 cancel_delayed_work_sync(&hdev->le_scan_restart);
Johan Hedberg4518bb02014-02-24 20:35:07 +02001589
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001590 if (hci_dev_test_flag(hdev, HCI_MGMT))
Johan Hedberg4518bb02014-02-24 20:35:07 +02001591 cancel_delayed_work_sync(&hdev->rpa_expired);
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03001592
Johan Hedberg76727c02014-11-18 09:00:14 +02001593 /* Avoid potential lockdep warnings from the *_flush() calls by
1594 * ensuring the workqueue is empty up front.
1595 */
1596 drain_workqueue(hdev->workqueue);
1597
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001598 hci_dev_lock(hdev);
Johan Hedberg1aeb9c62014-12-11 21:45:46 +02001599
Johan Hedberg8f502f82015-01-28 19:56:02 +02001600 hci_discovery_set_state(hdev, DISCOVERY_STOPPED);
1601
Marcel Holtmanna69d8922015-03-13 02:11:05 -07001602 if (!hci_dev_test_and_clear_flag(hdev, HCI_AUTO_OFF)) {
Johan Hedberg1aeb9c62014-12-11 21:45:46 +02001603 if (hdev->dev_type == HCI_BREDR)
1604 mgmt_powered(hdev, 0);
1605 }
1606
Andre Guedes1f9b9a52013-04-30 15:29:27 -03001607 hci_inquiry_cache_flush(hdev);
Johan Hedbergd7347f32014-07-04 12:37:23 +03001608 hci_pend_le_actions_clear(hdev);
Johan Hedbergf161dd42014-08-15 21:06:54 +03001609 hci_conn_hash_flush(hdev);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001610 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001611
Marcel Holtmann64dae962015-01-28 14:10:28 -08001612 smp_unregister(hdev);
1613
Linus Torvalds1da177e2005-04-16 15:20:36 -07001614 hci_notify(hdev, HCI_DEV_DOWN);
1615
1616 if (hdev->flush)
1617 hdev->flush(hdev);
1618
1619 /* Reset device */
1620 skb_queue_purge(&hdev->cmd_q);
1621 atomic_set(&hdev->cmd_cnt, 1);
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001622 if (!hci_dev_test_flag(hdev, HCI_AUTO_OFF) &&
1623 !hci_dev_test_flag(hdev, HCI_UNCONFIGURED) &&
Szymon Janca6c511c2012-05-23 12:35:46 +02001624 test_bit(HCI_QUIRK_RESET_ON_CLOSE, &hdev->quirks)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001625 set_bit(HCI_INIT, &hdev->flags);
Johan Hedberg01178cd2013-03-05 20:37:41 +02001626 __hci_req_sync(hdev, hci_reset_req, 0, HCI_CMD_TIMEOUT);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001627 clear_bit(HCI_INIT, &hdev->flags);
1628 }
1629
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02001630 /* flush cmd work */
1631 flush_work(&hdev->cmd_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001632
1633 /* Drop queues */
1634 skb_queue_purge(&hdev->rx_q);
1635 skb_queue_purge(&hdev->cmd_q);
1636 skb_queue_purge(&hdev->raw_q);
1637
1638 /* Drop last sent command */
1639 if (hdev->sent_cmd) {
Marcel Holtmann65cc2b42014-06-16 12:30:56 +02001640 cancel_delayed_work_sync(&hdev->cmd_timer);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001641 kfree_skb(hdev->sent_cmd);
1642 hdev->sent_cmd = NULL;
1643 }
1644
1645 /* After this point our queues are empty
1646 * and no tasks are scheduled. */
1647 hdev->close(hdev);
1648
Johan Hedberg35b973c2013-03-15 17:06:59 -05001649 /* Clear flags */
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001650 hdev->flags &= BIT(HCI_RAW);
Marcel Holtmanneacb44d2015-03-13 09:04:17 -07001651 hci_dev_clear_volatile_flags(hdev);
Johan Hedberg35b973c2013-03-15 17:06:59 -05001652
Andrei Emeltchenkoced5c332012-11-28 17:59:42 +02001653 /* Controller radio is available but is currently powered down */
Marcel Holtmann536619e2013-10-05 11:47:45 -07001654 hdev->amp_status = AMP_STATUS_POWERED_DOWN;
Andrei Emeltchenkoced5c332012-11-28 17:59:42 +02001655
Johan Hedberge59fda82012-02-22 18:11:53 +02001656 memset(hdev->eir, 0, sizeof(hdev->eir));
Johan Hedberg09b3c3f2012-02-22 22:01:41 +02001657 memset(hdev->dev_class, 0, sizeof(hdev->dev_class));
Marcel Holtmann7a4cd512014-02-19 19:52:13 -08001658 bacpy(&hdev->random_addr, BDADDR_ANY);
Johan Hedberge59fda82012-02-22 18:11:53 +02001659
Linus Torvalds1da177e2005-04-16 15:20:36 -07001660 hci_req_unlock(hdev);
1661
1662 hci_dev_put(hdev);
1663 return 0;
1664}
1665
1666int hci_dev_close(__u16 dev)
1667{
1668 struct hci_dev *hdev;
1669 int err;
1670
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001671 hdev = hci_dev_get(dev);
1672 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001673 return -ENODEV;
Marcel Holtmann8ee56542012-02-21 12:33:48 +01001674
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001675 if (hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07001676 err = -EBUSY;
1677 goto done;
1678 }
1679
Marcel Holtmanna69d8922015-03-13 02:11:05 -07001680 if (hci_dev_test_and_clear_flag(hdev, HCI_AUTO_OFF))
Marcel Holtmann8ee56542012-02-21 12:33:48 +01001681 cancel_delayed_work(&hdev->power_off);
1682
Linus Torvalds1da177e2005-04-16 15:20:36 -07001683 err = hci_dev_do_close(hdev);
Marcel Holtmann8ee56542012-02-21 12:33:48 +01001684
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07001685done:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001686 hci_dev_put(hdev);
1687 return err;
1688}
1689
Marcel Holtmann5c912492015-01-28 11:53:05 -08001690static int hci_dev_do_reset(struct hci_dev *hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001691{
Marcel Holtmann5c912492015-01-28 11:53:05 -08001692 int ret;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001693
Marcel Holtmann5c912492015-01-28 11:53:05 -08001694 BT_DBG("%s %p", hdev->name, hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001695
1696 hci_req_lock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001697
Linus Torvalds1da177e2005-04-16 15:20:36 -07001698 /* Drop queues */
1699 skb_queue_purge(&hdev->rx_q);
1700 skb_queue_purge(&hdev->cmd_q);
1701
Johan Hedberg76727c02014-11-18 09:00:14 +02001702 /* Avoid potential lockdep warnings from the *_flush() calls by
1703 * ensuring the workqueue is empty up front.
1704 */
1705 drain_workqueue(hdev->workqueue);
1706
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001707 hci_dev_lock(hdev);
Andre Guedes1f9b9a52013-04-30 15:29:27 -03001708 hci_inquiry_cache_flush(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001709 hci_conn_hash_flush(hdev);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001710 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001711
1712 if (hdev->flush)
1713 hdev->flush(hdev);
1714
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001715 atomic_set(&hdev->cmd_cnt, 1);
Ville Tervo6ed58ec2011-02-10 22:38:48 -03001716 hdev->acl_cnt = 0; hdev->sco_cnt = 0; hdev->le_cnt = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001717
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001718 ret = __hci_req_sync(hdev, hci_reset_req, 0, HCI_INIT_TIMEOUT);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001719
Linus Torvalds1da177e2005-04-16 15:20:36 -07001720 hci_req_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001721 return ret;
1722}
1723
Marcel Holtmann5c912492015-01-28 11:53:05 -08001724int hci_dev_reset(__u16 dev)
1725{
1726 struct hci_dev *hdev;
1727 int err;
1728
1729 hdev = hci_dev_get(dev);
1730 if (!hdev)
1731 return -ENODEV;
1732
1733 if (!test_bit(HCI_UP, &hdev->flags)) {
1734 err = -ENETDOWN;
1735 goto done;
1736 }
1737
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001738 if (hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Marcel Holtmann5c912492015-01-28 11:53:05 -08001739 err = -EBUSY;
1740 goto done;
1741 }
1742
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001743 if (hci_dev_test_flag(hdev, HCI_UNCONFIGURED)) {
Marcel Holtmann5c912492015-01-28 11:53:05 -08001744 err = -EOPNOTSUPP;
1745 goto done;
1746 }
1747
1748 err = hci_dev_do_reset(hdev);
1749
1750done:
1751 hci_dev_put(hdev);
1752 return err;
1753}
1754
Linus Torvalds1da177e2005-04-16 15:20:36 -07001755int hci_dev_reset_stat(__u16 dev)
1756{
1757 struct hci_dev *hdev;
1758 int ret = 0;
1759
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001760 hdev = hci_dev_get(dev);
1761 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001762 return -ENODEV;
1763
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001764 if (hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07001765 ret = -EBUSY;
1766 goto done;
1767 }
1768
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001769 if (hci_dev_test_flag(hdev, HCI_UNCONFIGURED)) {
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001770 ret = -EOPNOTSUPP;
1771 goto done;
1772 }
1773
Linus Torvalds1da177e2005-04-16 15:20:36 -07001774 memset(&hdev->stat, 0, sizeof(struct hci_dev_stats));
1775
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07001776done:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001777 hci_dev_put(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001778 return ret;
1779}
1780
Johan Hedberg123abc02014-07-10 12:09:07 +03001781static void hci_update_scan_state(struct hci_dev *hdev, u8 scan)
1782{
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001783 bool conn_changed, discov_changed;
Johan Hedberg123abc02014-07-10 12:09:07 +03001784
1785 BT_DBG("%s scan 0x%02x", hdev->name, scan);
1786
1787 if ((scan & SCAN_PAGE))
Marcel Holtmann238be782015-03-13 02:11:06 -07001788 conn_changed = !hci_dev_test_and_set_flag(hdev,
1789 HCI_CONNECTABLE);
Johan Hedberg123abc02014-07-10 12:09:07 +03001790 else
Marcel Holtmanna69d8922015-03-13 02:11:05 -07001791 conn_changed = hci_dev_test_and_clear_flag(hdev,
1792 HCI_CONNECTABLE);
Johan Hedberg123abc02014-07-10 12:09:07 +03001793
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001794 if ((scan & SCAN_INQUIRY)) {
Marcel Holtmann238be782015-03-13 02:11:06 -07001795 discov_changed = !hci_dev_test_and_set_flag(hdev,
1796 HCI_DISCOVERABLE);
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001797 } else {
Marcel Holtmanna358dc12015-03-13 02:11:02 -07001798 hci_dev_clear_flag(hdev, HCI_LIMITED_DISCOVERABLE);
Marcel Holtmanna69d8922015-03-13 02:11:05 -07001799 discov_changed = hci_dev_test_and_clear_flag(hdev,
1800 HCI_DISCOVERABLE);
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001801 }
1802
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001803 if (!hci_dev_test_flag(hdev, HCI_MGMT))
Johan Hedberg123abc02014-07-10 12:09:07 +03001804 return;
1805
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001806 if (conn_changed || discov_changed) {
1807 /* In case this was disabled through mgmt */
Marcel Holtmanna1536da2015-03-13 02:11:01 -07001808 hci_dev_set_flag(hdev, HCI_BREDR_ENABLED);
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001809
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001810 if (hci_dev_test_flag(hdev, HCI_LE_ENABLED))
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001811 mgmt_update_adv_data(hdev);
1812
Johan Hedberg123abc02014-07-10 12:09:07 +03001813 mgmt_new_settings(hdev);
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001814 }
Johan Hedberg123abc02014-07-10 12:09:07 +03001815}
1816
Linus Torvalds1da177e2005-04-16 15:20:36 -07001817int hci_dev_cmd(unsigned int cmd, void __user *arg)
1818{
1819 struct hci_dev *hdev;
1820 struct hci_dev_req dr;
1821 int err = 0;
1822
1823 if (copy_from_user(&dr, arg, sizeof(dr)))
1824 return -EFAULT;
1825
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001826 hdev = hci_dev_get(dr.dev_id);
1827 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001828 return -ENODEV;
1829
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001830 if (hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07001831 err = -EBUSY;
1832 goto done;
1833 }
1834
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001835 if (hci_dev_test_flag(hdev, HCI_UNCONFIGURED)) {
Marcel Holtmannfee746b2014-06-29 12:13:05 +02001836 err = -EOPNOTSUPP;
1837 goto done;
1838 }
1839
Marcel Holtmann5b69bef52013-10-10 10:02:08 -07001840 if (hdev->dev_type != HCI_BREDR) {
1841 err = -EOPNOTSUPP;
1842 goto done;
1843 }
1844
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001845 if (!hci_dev_test_flag(hdev, HCI_BREDR_ENABLED)) {
Johan Hedberg56f87902013-10-02 13:43:13 +03001846 err = -EOPNOTSUPP;
1847 goto done;
1848 }
1849
Linus Torvalds1da177e2005-04-16 15:20:36 -07001850 switch (cmd) {
1851 case HCISETAUTH:
Johan Hedberg01178cd2013-03-05 20:37:41 +02001852 err = hci_req_sync(hdev, hci_auth_req, dr.dev_opt,
1853 HCI_INIT_TIMEOUT);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001854 break;
1855
1856 case HCISETENCRYPT:
1857 if (!lmp_encrypt_capable(hdev)) {
1858 err = -EOPNOTSUPP;
1859 break;
1860 }
1861
1862 if (!test_bit(HCI_AUTH, &hdev->flags)) {
1863 /* Auth must be enabled first */
Johan Hedberg01178cd2013-03-05 20:37:41 +02001864 err = hci_req_sync(hdev, hci_auth_req, dr.dev_opt,
1865 HCI_INIT_TIMEOUT);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001866 if (err)
1867 break;
1868 }
1869
Johan Hedberg01178cd2013-03-05 20:37:41 +02001870 err = hci_req_sync(hdev, hci_encrypt_req, dr.dev_opt,
1871 HCI_INIT_TIMEOUT);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001872 break;
1873
1874 case HCISETSCAN:
Johan Hedberg01178cd2013-03-05 20:37:41 +02001875 err = hci_req_sync(hdev, hci_scan_req, dr.dev_opt,
1876 HCI_INIT_TIMEOUT);
Johan Hedberg91a668b2014-07-09 13:28:26 +03001877
Johan Hedbergbc6d2d02014-07-10 12:09:08 +03001878 /* Ensure that the connectable and discoverable states
1879 * get correctly modified as this was a non-mgmt change.
Johan Hedberg91a668b2014-07-09 13:28:26 +03001880 */
Johan Hedberg123abc02014-07-10 12:09:07 +03001881 if (!err)
1882 hci_update_scan_state(hdev, dr.dev_opt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001883 break;
1884
Marcel Holtmanne4e8e372008-07-14 20:13:47 +02001885 case HCISETLINKPOL:
Johan Hedberg01178cd2013-03-05 20:37:41 +02001886 err = hci_req_sync(hdev, hci_linkpol_req, dr.dev_opt,
1887 HCI_INIT_TIMEOUT);
Marcel Holtmanne4e8e372008-07-14 20:13:47 +02001888 break;
1889
1890 case HCISETLINKMODE:
1891 hdev->link_mode = ((__u16) dr.dev_opt) &
1892 (HCI_LM_MASTER | HCI_LM_ACCEPT);
1893 break;
1894
Linus Torvalds1da177e2005-04-16 15:20:36 -07001895 case HCISETPTYPE:
1896 hdev->pkt_type = (__u16) dr.dev_opt;
1897 break;
1898
Linus Torvalds1da177e2005-04-16 15:20:36 -07001899 case HCISETACLMTU:
Marcel Holtmanne4e8e372008-07-14 20:13:47 +02001900 hdev->acl_mtu = *((__u16 *) &dr.dev_opt + 1);
1901 hdev->acl_pkts = *((__u16 *) &dr.dev_opt + 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001902 break;
1903
1904 case HCISETSCOMTU:
Marcel Holtmanne4e8e372008-07-14 20:13:47 +02001905 hdev->sco_mtu = *((__u16 *) &dr.dev_opt + 1);
1906 hdev->sco_pkts = *((__u16 *) &dr.dev_opt + 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001907 break;
1908
1909 default:
1910 err = -EINVAL;
1911 break;
1912 }
Marcel Holtmanne4e8e372008-07-14 20:13:47 +02001913
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07001914done:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001915 hci_dev_put(hdev);
1916 return err;
1917}
1918
1919int hci_get_dev_list(void __user *arg)
1920{
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02001921 struct hci_dev *hdev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001922 struct hci_dev_list_req *dl;
1923 struct hci_dev_req *dr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001924 int n = 0, size, err;
1925 __u16 dev_num;
1926
1927 if (get_user(dev_num, (__u16 __user *) arg))
1928 return -EFAULT;
1929
1930 if (!dev_num || dev_num > (PAGE_SIZE * 2) / sizeof(*dr))
1931 return -EINVAL;
1932
1933 size = sizeof(*dl) + dev_num * sizeof(*dr);
1934
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001935 dl = kzalloc(size, GFP_KERNEL);
1936 if (!dl)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001937 return -ENOMEM;
1938
1939 dr = dl->dev_req;
1940
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02001941 read_lock(&hci_dev_list_lock);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02001942 list_for_each_entry(hdev, &hci_dev_list, list) {
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001943 unsigned long flags = hdev->flags;
Johan Hedbergc542a062011-01-26 13:11:03 +02001944
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001945 /* When the auto-off is configured it means the transport
1946 * is running, but in that case still indicate that the
1947 * device is actually down.
1948 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001949 if (hci_dev_test_flag(hdev, HCI_AUTO_OFF))
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001950 flags &= ~BIT(HCI_UP);
Johan Hedbergc542a062011-01-26 13:11:03 +02001951
Linus Torvalds1da177e2005-04-16 15:20:36 -07001952 (dr + n)->dev_id = hdev->id;
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001953 (dr + n)->dev_opt = flags;
Johan Hedbergc542a062011-01-26 13:11:03 +02001954
Linus Torvalds1da177e2005-04-16 15:20:36 -07001955 if (++n >= dev_num)
1956 break;
1957 }
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02001958 read_unlock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001959
1960 dl->dev_num = n;
1961 size = sizeof(*dl) + n * sizeof(*dr);
1962
1963 err = copy_to_user(arg, dl, size);
1964 kfree(dl);
1965
1966 return err ? -EFAULT : 0;
1967}
1968
1969int hci_get_dev_info(void __user *arg)
1970{
1971 struct hci_dev *hdev;
1972 struct hci_dev_info di;
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001973 unsigned long flags;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001974 int err = 0;
1975
1976 if (copy_from_user(&di, arg, sizeof(di)))
1977 return -EFAULT;
1978
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001979 hdev = hci_dev_get(di.dev_id);
1980 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001981 return -ENODEV;
1982
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001983 /* When the auto-off is configured it means the transport
1984 * is running, but in that case still indicate that the
1985 * device is actually down.
1986 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07001987 if (hci_dev_test_flag(hdev, HCI_AUTO_OFF))
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001988 flags = hdev->flags & ~BIT(HCI_UP);
1989 else
1990 flags = hdev->flags;
Johan Hedbergc542a062011-01-26 13:11:03 +02001991
Linus Torvalds1da177e2005-04-16 15:20:36 -07001992 strcpy(di.name, hdev->name);
1993 di.bdaddr = hdev->bdaddr;
Marcel Holtmann60f2a3e2013-10-01 22:59:20 -07001994 di.type = (hdev->bus & 0x0f) | ((hdev->dev_type & 0x03) << 4);
Marcel Holtmann2e84d8d2014-07-10 13:17:37 +02001995 di.flags = flags;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001996 di.pkt_type = hdev->pkt_type;
Johan Hedberg572c7f82012-10-19 20:57:46 +03001997 if (lmp_bredr_capable(hdev)) {
1998 di.acl_mtu = hdev->acl_mtu;
1999 di.acl_pkts = hdev->acl_pkts;
2000 di.sco_mtu = hdev->sco_mtu;
2001 di.sco_pkts = hdev->sco_pkts;
2002 } else {
2003 di.acl_mtu = hdev->le_mtu;
2004 di.acl_pkts = hdev->le_pkts;
2005 di.sco_mtu = 0;
2006 di.sco_pkts = 0;
2007 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002008 di.link_policy = hdev->link_policy;
2009 di.link_mode = hdev->link_mode;
2010
2011 memcpy(&di.stat, &hdev->stat, sizeof(di.stat));
2012 memcpy(&di.features, &hdev->features, sizeof(di.features));
2013
2014 if (copy_to_user(arg, &di, sizeof(di)))
2015 err = -EFAULT;
2016
2017 hci_dev_put(hdev);
2018
2019 return err;
2020}
2021
2022/* ---- Interface to HCI drivers ---- */
2023
Marcel Holtmann611b30f2009-06-08 14:41:38 +02002024static int hci_rfkill_set_block(void *data, bool blocked)
2025{
2026 struct hci_dev *hdev = data;
2027
2028 BT_DBG("%p name %s blocked %d", hdev, hdev->name, blocked);
2029
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07002030 if (hci_dev_test_flag(hdev, HCI_USER_CHANNEL))
Marcel Holtmann0736cfa2013-08-26 21:40:51 -07002031 return -EBUSY;
2032
Johan Hedberg5e130362013-09-13 08:58:17 +03002033 if (blocked) {
Marcel Holtmanna1536da2015-03-13 02:11:01 -07002034 hci_dev_set_flag(hdev, HCI_RFKILLED);
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07002035 if (!hci_dev_test_flag(hdev, HCI_SETUP) &&
2036 !hci_dev_test_flag(hdev, HCI_CONFIG))
Johan Hedbergbf543032013-09-13 08:58:18 +03002037 hci_dev_do_close(hdev);
Johan Hedberg5e130362013-09-13 08:58:17 +03002038 } else {
Marcel Holtmanna358dc12015-03-13 02:11:02 -07002039 hci_dev_clear_flag(hdev, HCI_RFKILLED);
Gustavo Padovan1025c042013-09-27 11:56:14 -03002040 }
Marcel Holtmann611b30f2009-06-08 14:41:38 +02002041
2042 return 0;
2043}
2044
2045static const struct rfkill_ops hci_rfkill_ops = {
2046 .set_block = hci_rfkill_set_block,
2047};
2048
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002049static void hci_power_on(struct work_struct *work)
2050{
2051 struct hci_dev *hdev = container_of(work, struct hci_dev, power_on);
Johan Hedberg96570ff2013-05-29 09:51:29 +03002052 int err;
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002053
2054 BT_DBG("%s", hdev->name);
2055
Johan Hedbergcbed0ca2013-10-01 22:44:49 +03002056 err = hci_dev_do_open(hdev);
Johan Hedberg96570ff2013-05-29 09:51:29 +03002057 if (err < 0) {
Jaganath Kanakkassery3ad67582014-12-11 11:43:12 +05302058 hci_dev_lock(hdev);
Johan Hedberg96570ff2013-05-29 09:51:29 +03002059 mgmt_set_powered_failed(hdev, err);
Jaganath Kanakkassery3ad67582014-12-11 11:43:12 +05302060 hci_dev_unlock(hdev);
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002061 return;
Johan Hedberg96570ff2013-05-29 09:51:29 +03002062 }
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002063
Marcel Holtmanna5c8f272013-10-06 01:08:57 -07002064 /* During the HCI setup phase, a few error conditions are
2065 * ignored and they need to be checked now. If they are still
2066 * valid, it is important to turn the device back off.
2067 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07002068 if (hci_dev_test_flag(hdev, HCI_RFKILLED) ||
2069 hci_dev_test_flag(hdev, HCI_UNCONFIGURED) ||
Marcel Holtmanna5c8f272013-10-06 01:08:57 -07002070 (hdev->dev_type == HCI_BREDR &&
2071 !bacmp(&hdev->bdaddr, BDADDR_ANY) &&
2072 !bacmp(&hdev->static_addr, BDADDR_ANY))) {
Marcel Holtmanna358dc12015-03-13 02:11:02 -07002073 hci_dev_clear_flag(hdev, HCI_AUTO_OFF);
Johan Hedbergbf543032013-09-13 08:58:18 +03002074 hci_dev_do_close(hdev);
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07002075 } else if (hci_dev_test_flag(hdev, HCI_AUTO_OFF)) {
Johan Hedberg19202572013-01-14 22:33:51 +02002076 queue_delayed_work(hdev->req_workqueue, &hdev->power_off,
2077 HCI_AUTO_OFF_TIMEOUT);
Johan Hedbergbf543032013-09-13 08:58:18 +03002078 }
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002079
Marcel Holtmanna69d8922015-03-13 02:11:05 -07002080 if (hci_dev_test_and_clear_flag(hdev, HCI_SETUP)) {
Marcel Holtmann4a964402014-07-02 19:10:33 +02002081 /* For unconfigured devices, set the HCI_RAW flag
2082 * so that userspace can easily identify them.
Marcel Holtmann4a964402014-07-02 19:10:33 +02002083 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07002084 if (hci_dev_test_flag(hdev, HCI_UNCONFIGURED))
Marcel Holtmann4a964402014-07-02 19:10:33 +02002085 set_bit(HCI_RAW, &hdev->flags);
Marcel Holtmann0602a8a2014-07-02 21:30:54 +02002086
2087 /* For fully configured devices, this will send
2088 * the Index Added event. For unconfigured devices,
2089 * it will send Unconfigued Index Added event.
2090 *
2091 * Devices with HCI_QUIRK_RAW_DEVICE are ignored
2092 * and no event will be send.
2093 */
Johan Hedberg744cf192011-11-08 20:40:14 +02002094 mgmt_index_added(hdev);
Marcel Holtmanna69d8922015-03-13 02:11:05 -07002095 } else if (hci_dev_test_and_clear_flag(hdev, HCI_CONFIG)) {
Marcel Holtmann5ea234d2014-07-06 12:11:16 +02002096 /* When the controller is now configured, then it
2097 * is important to clear the HCI_RAW flag.
2098 */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07002099 if (!hci_dev_test_flag(hdev, HCI_UNCONFIGURED))
Marcel Holtmann5ea234d2014-07-06 12:11:16 +02002100 clear_bit(HCI_RAW, &hdev->flags);
2101
Marcel Holtmannd603b762014-07-06 12:11:14 +02002102 /* Powering on the controller with HCI_CONFIG set only
2103 * happens with the transition from unconfigured to
2104 * configured. This will send the Index Added event.
2105 */
2106 mgmt_index_added(hdev);
Marcel Holtmannfee746b2014-06-29 12:13:05 +02002107 }
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002108}
2109
2110static void hci_power_off(struct work_struct *work)
2111{
Johan Hedberg32435532011-11-07 22:16:04 +02002112 struct hci_dev *hdev = container_of(work, struct hci_dev,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03002113 power_off.work);
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002114
2115 BT_DBG("%s", hdev->name);
2116
Marcel Holtmann8ee56542012-02-21 12:33:48 +01002117 hci_dev_do_close(hdev);
Johan Hedbergab81cbf2010-12-15 13:53:18 +02002118}
2119
Marcel Holtmannc7741d12015-01-28 11:09:55 -08002120static void hci_error_reset(struct work_struct *work)
2121{
2122 struct hci_dev *hdev = container_of(work, struct hci_dev, error_reset);
2123
2124 BT_DBG("%s", hdev->name);
2125
2126 if (hdev->hw_error)
2127 hdev->hw_error(hdev, hdev->hw_error_code);
2128 else
2129 BT_ERR("%s hardware error 0x%2.2x", hdev->name,
2130 hdev->hw_error_code);
2131
2132 if (hci_dev_do_close(hdev))
2133 return;
2134
Marcel Holtmannc7741d12015-01-28 11:09:55 -08002135 hci_dev_do_open(hdev);
2136}
2137
Johan Hedberg16ab91a2011-11-07 22:16:02 +02002138static void hci_discov_off(struct work_struct *work)
2139{
2140 struct hci_dev *hdev;
Johan Hedberg16ab91a2011-11-07 22:16:02 +02002141
2142 hdev = container_of(work, struct hci_dev, discov_off.work);
2143
2144 BT_DBG("%s", hdev->name);
2145
Marcel Holtmannd1967ff2013-10-15 10:57:40 -07002146 mgmt_discoverable_timeout(hdev);
Johan Hedberg16ab91a2011-11-07 22:16:02 +02002147}
2148
Johan Hedberg35f74982014-02-18 17:14:32 +02002149void hci_uuids_clear(struct hci_dev *hdev)
Johan Hedberg2aeb9a12011-01-04 12:08:51 +02002150{
Johan Hedberg48210022013-01-27 00:31:28 +02002151 struct bt_uuid *uuid, *tmp;
Johan Hedberg2aeb9a12011-01-04 12:08:51 +02002152
Johan Hedberg48210022013-01-27 00:31:28 +02002153 list_for_each_entry_safe(uuid, tmp, &hdev->uuids, list) {
2154 list_del(&uuid->list);
Johan Hedberg2aeb9a12011-01-04 12:08:51 +02002155 kfree(uuid);
2156 }
Johan Hedberg2aeb9a12011-01-04 12:08:51 +02002157}
2158
Johan Hedberg35f74982014-02-18 17:14:32 +02002159void hci_link_keys_clear(struct hci_dev *hdev)
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002160{
Johan Hedberg0378b592014-11-19 15:22:22 +02002161 struct link_key *key;
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002162
Johan Hedberg0378b592014-11-19 15:22:22 +02002163 list_for_each_entry_rcu(key, &hdev->link_keys, list) {
2164 list_del_rcu(&key->list);
2165 kfree_rcu(key, rcu);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002166 }
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002167}
2168
Johan Hedberg35f74982014-02-18 17:14:32 +02002169void hci_smp_ltks_clear(struct hci_dev *hdev)
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002170{
Johan Hedberg970d0f12014-11-13 14:37:47 +02002171 struct smp_ltk *k;
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002172
Johan Hedberg970d0f12014-11-13 14:37:47 +02002173 list_for_each_entry_rcu(k, &hdev->long_term_keys, list) {
2174 list_del_rcu(&k->list);
2175 kfree_rcu(k, rcu);
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002176 }
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002177}
2178
Johan Hedberg970c4e42014-02-18 10:19:33 +02002179void hci_smp_irks_clear(struct hci_dev *hdev)
2180{
Johan Hedbergadae20c2014-11-13 14:37:48 +02002181 struct smp_irk *k;
Johan Hedberg970c4e42014-02-18 10:19:33 +02002182
Johan Hedbergadae20c2014-11-13 14:37:48 +02002183 list_for_each_entry_rcu(k, &hdev->identity_resolving_keys, list) {
2184 list_del_rcu(&k->list);
2185 kfree_rcu(k, rcu);
Johan Hedberg970c4e42014-02-18 10:19:33 +02002186 }
2187}
2188
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002189struct link_key *hci_find_link_key(struct hci_dev *hdev, bdaddr_t *bdaddr)
2190{
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02002191 struct link_key *k;
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002192
Johan Hedberg0378b592014-11-19 15:22:22 +02002193 rcu_read_lock();
2194 list_for_each_entry_rcu(k, &hdev->link_keys, list) {
2195 if (bacmp(bdaddr, &k->bdaddr) == 0) {
2196 rcu_read_unlock();
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002197 return k;
Johan Hedberg0378b592014-11-19 15:22:22 +02002198 }
2199 }
2200 rcu_read_unlock();
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002201
2202 return NULL;
2203}
2204
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302205static bool hci_persistent_key(struct hci_dev *hdev, struct hci_conn *conn,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03002206 u8 key_type, u8 old_key_type)
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002207{
2208 /* Legacy key */
2209 if (key_type < 0x03)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302210 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002211
2212 /* Debug keys are insecure so don't store them persistently */
2213 if (key_type == HCI_LK_DEBUG_COMBINATION)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302214 return false;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002215
2216 /* Changed combination key and there's no previous one */
2217 if (key_type == HCI_LK_CHANGED_COMBINATION && old_key_type == 0xff)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302218 return false;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002219
2220 /* Security mode 3 case */
2221 if (!conn)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302222 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002223
Johan Hedberge3befab2014-06-01 16:33:39 +03002224 /* BR/EDR key derived using SC from an LE link */
2225 if (conn->type == LE_LINK)
2226 return true;
2227
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002228 /* Neither local nor remote side had no-bonding as requirement */
2229 if (conn->auth_type > 0x01 && conn->remote_auth > 0x01)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302230 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002231
2232 /* Local side had dedicated bonding as requirement */
2233 if (conn->auth_type == 0x02 || conn->auth_type == 0x03)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302234 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002235
2236 /* Remote side had dedicated bonding as requirement */
2237 if (conn->remote_auth == 0x02 || conn->remote_auth == 0x03)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302238 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002239
2240 /* If none of the above criteria match, then don't store the key
2241 * persistently */
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302242 return false;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002243}
2244
Johan Hedberge804d252014-07-16 11:42:28 +03002245static u8 ltk_role(u8 type)
Johan Hedberg98a0b842014-01-30 19:40:00 -08002246{
Johan Hedberge804d252014-07-16 11:42:28 +03002247 if (type == SMP_LTK)
2248 return HCI_ROLE_MASTER;
Johan Hedberg98a0b842014-01-30 19:40:00 -08002249
Johan Hedberge804d252014-07-16 11:42:28 +03002250 return HCI_ROLE_SLAVE;
Johan Hedberg98a0b842014-01-30 19:40:00 -08002251}
2252
Johan Hedbergf3a73d92014-05-29 15:02:59 +03002253struct smp_ltk *hci_find_ltk(struct hci_dev *hdev, bdaddr_t *bdaddr,
2254 u8 addr_type, u8 role)
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002255{
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03002256 struct smp_ltk *k;
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002257
Johan Hedberg970d0f12014-11-13 14:37:47 +02002258 rcu_read_lock();
2259 list_for_each_entry_rcu(k, &hdev->long_term_keys, list) {
Johan Hedberg5378bc52014-05-29 14:00:39 +03002260 if (addr_type != k->bdaddr_type || bacmp(bdaddr, &k->bdaddr))
2261 continue;
2262
Johan Hedberg923e2412014-12-03 12:43:39 +02002263 if (smp_ltk_is_sc(k) || ltk_role(k->type) == role) {
Johan Hedberg970d0f12014-11-13 14:37:47 +02002264 rcu_read_unlock();
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002265 return k;
Johan Hedberg970d0f12014-11-13 14:37:47 +02002266 }
2267 }
2268 rcu_read_unlock();
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002269
2270 return NULL;
2271}
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002272
Johan Hedberg970c4e42014-02-18 10:19:33 +02002273struct smp_irk *hci_find_irk_by_rpa(struct hci_dev *hdev, bdaddr_t *rpa)
2274{
2275 struct smp_irk *irk;
2276
Johan Hedbergadae20c2014-11-13 14:37:48 +02002277 rcu_read_lock();
2278 list_for_each_entry_rcu(irk, &hdev->identity_resolving_keys, list) {
2279 if (!bacmp(&irk->rpa, rpa)) {
2280 rcu_read_unlock();
Johan Hedberg970c4e42014-02-18 10:19:33 +02002281 return irk;
2282 }
2283 }
2284
Johan Hedbergadae20c2014-11-13 14:37:48 +02002285 list_for_each_entry_rcu(irk, &hdev->identity_resolving_keys, list) {
2286 if (smp_irk_matches(hdev, irk->val, rpa)) {
2287 bacpy(&irk->rpa, rpa);
2288 rcu_read_unlock();
2289 return irk;
2290 }
2291 }
2292 rcu_read_unlock();
2293
Johan Hedberg970c4e42014-02-18 10:19:33 +02002294 return NULL;
2295}
2296
2297struct smp_irk *hci_find_irk_by_addr(struct hci_dev *hdev, bdaddr_t *bdaddr,
2298 u8 addr_type)
2299{
2300 struct smp_irk *irk;
2301
Johan Hedberg6cfc9982014-02-18 21:41:35 +02002302 /* Identity Address must be public or static random */
2303 if (addr_type == ADDR_LE_DEV_RANDOM && (bdaddr->b[5] & 0xc0) != 0xc0)
2304 return NULL;
2305
Johan Hedbergadae20c2014-11-13 14:37:48 +02002306 rcu_read_lock();
2307 list_for_each_entry_rcu(irk, &hdev->identity_resolving_keys, list) {
Johan Hedberg970c4e42014-02-18 10:19:33 +02002308 if (addr_type == irk->addr_type &&
Johan Hedbergadae20c2014-11-13 14:37:48 +02002309 bacmp(bdaddr, &irk->bdaddr) == 0) {
2310 rcu_read_unlock();
Johan Hedberg970c4e42014-02-18 10:19:33 +02002311 return irk;
Johan Hedbergadae20c2014-11-13 14:37:48 +02002312 }
Johan Hedberg970c4e42014-02-18 10:19:33 +02002313 }
Johan Hedbergadae20c2014-11-13 14:37:48 +02002314 rcu_read_unlock();
Johan Hedberg970c4e42014-02-18 10:19:33 +02002315
2316 return NULL;
2317}
2318
Johan Hedberg567fa2a2014-06-24 13:15:48 +03002319struct link_key *hci_add_link_key(struct hci_dev *hdev, struct hci_conn *conn,
Johan Hedberg7652ff62014-06-24 13:15:49 +03002320 bdaddr_t *bdaddr, u8 *val, u8 type,
2321 u8 pin_len, bool *persistent)
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002322{
2323 struct link_key *key, *old_key;
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05302324 u8 old_key_type;
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002325
2326 old_key = hci_find_link_key(hdev, bdaddr);
2327 if (old_key) {
2328 old_key_type = old_key->type;
2329 key = old_key;
2330 } else {
Johan Hedberg12adcf32011-04-28 11:29:00 -07002331 old_key_type = conn ? conn->key_type : 0xff;
Johan Hedberg0a14ab42014-02-19 14:57:43 +02002332 key = kzalloc(sizeof(*key), GFP_KERNEL);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002333 if (!key)
Johan Hedberg567fa2a2014-06-24 13:15:48 +03002334 return NULL;
Johan Hedberg0378b592014-11-19 15:22:22 +02002335 list_add_rcu(&key->list, &hdev->link_keys);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002336 }
2337
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03002338 BT_DBG("%s key for %pMR type %u", hdev->name, bdaddr, type);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002339
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002340 /* Some buggy controller combinations generate a changed
2341 * combination key for legacy pairing even when there's no
2342 * previous key */
2343 if (type == HCI_LK_CHANGED_COMBINATION &&
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03002344 (!conn || conn->remote_auth == 0xff) && old_key_type == 0xff) {
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002345 type = HCI_LK_COMBINATION;
Johan Hedberg655fe6e2011-04-28 11:29:01 -07002346 if (conn)
2347 conn->key_type = type;
2348 }
Johan Hedbergd25e28a2011-04-28 11:28:59 -07002349
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002350 bacpy(&key->bdaddr, bdaddr);
Andrei Emeltchenko9b3b4462012-05-23 11:31:20 +03002351 memcpy(key->val, val, HCI_LINK_KEY_SIZE);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002352 key->pin_len = pin_len;
2353
Waldemar Rymarkiewiczb6020ba2011-04-28 12:07:53 +02002354 if (type == HCI_LK_CHANGED_COMBINATION)
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002355 key->type = old_key_type;
Johan Hedberg4748fed2011-04-28 11:29:02 -07002356 else
2357 key->type = type;
2358
Johan Hedberg7652ff62014-06-24 13:15:49 +03002359 if (persistent)
2360 *persistent = hci_persistent_key(hdev, conn, type,
2361 old_key_type);
Johan Hedberg4df378a2011-04-28 11:29:03 -07002362
Johan Hedberg567fa2a2014-06-24 13:15:48 +03002363 return key;
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002364}
2365
Johan Hedbergca9142b2014-02-19 14:57:44 +02002366struct smp_ltk *hci_add_ltk(struct hci_dev *hdev, bdaddr_t *bdaddr,
Johan Hedberg35d70272014-02-19 14:57:47 +02002367 u8 addr_type, u8 type, u8 authenticated,
Marcel Holtmannfe39c7b2014-02-27 16:00:28 -08002368 u8 tk[16], u8 enc_size, __le16 ediv, __le64 rand)
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002369{
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03002370 struct smp_ltk *key, *old_key;
Johan Hedberge804d252014-07-16 11:42:28 +03002371 u8 role = ltk_role(type);
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002372
Johan Hedbergf3a73d92014-05-29 15:02:59 +03002373 old_key = hci_find_ltk(hdev, bdaddr, addr_type, role);
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03002374 if (old_key)
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002375 key = old_key;
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03002376 else {
Johan Hedberg0a14ab42014-02-19 14:57:43 +02002377 key = kzalloc(sizeof(*key), GFP_KERNEL);
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002378 if (!key)
Johan Hedbergca9142b2014-02-19 14:57:44 +02002379 return NULL;
Johan Hedberg970d0f12014-11-13 14:37:47 +02002380 list_add_rcu(&key->list, &hdev->long_term_keys);
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002381 }
2382
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002383 bacpy(&key->bdaddr, bdaddr);
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03002384 key->bdaddr_type = addr_type;
2385 memcpy(key->val, tk, sizeof(key->val));
2386 key->authenticated = authenticated;
2387 key->ediv = ediv;
Marcel Holtmannfe39c7b2014-02-27 16:00:28 -08002388 key->rand = rand;
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03002389 key->enc_size = enc_size;
2390 key->type = type;
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002391
Johan Hedbergca9142b2014-02-19 14:57:44 +02002392 return key;
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03002393}
2394
Johan Hedbergca9142b2014-02-19 14:57:44 +02002395struct smp_irk *hci_add_irk(struct hci_dev *hdev, bdaddr_t *bdaddr,
2396 u8 addr_type, u8 val[16], bdaddr_t *rpa)
Johan Hedberg970c4e42014-02-18 10:19:33 +02002397{
2398 struct smp_irk *irk;
2399
2400 irk = hci_find_irk_by_addr(hdev, bdaddr, addr_type);
2401 if (!irk) {
2402 irk = kzalloc(sizeof(*irk), GFP_KERNEL);
2403 if (!irk)
Johan Hedbergca9142b2014-02-19 14:57:44 +02002404 return NULL;
Johan Hedberg970c4e42014-02-18 10:19:33 +02002405
2406 bacpy(&irk->bdaddr, bdaddr);
2407 irk->addr_type = addr_type;
2408
Johan Hedbergadae20c2014-11-13 14:37:48 +02002409 list_add_rcu(&irk->list, &hdev->identity_resolving_keys);
Johan Hedberg970c4e42014-02-18 10:19:33 +02002410 }
2411
2412 memcpy(irk->val, val, 16);
2413 bacpy(&irk->rpa, rpa);
2414
Johan Hedbergca9142b2014-02-19 14:57:44 +02002415 return irk;
Johan Hedberg970c4e42014-02-18 10:19:33 +02002416}
2417
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002418int hci_remove_link_key(struct hci_dev *hdev, bdaddr_t *bdaddr)
2419{
2420 struct link_key *key;
2421
2422 key = hci_find_link_key(hdev, bdaddr);
2423 if (!key)
2424 return -ENOENT;
2425
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03002426 BT_DBG("%s removing %pMR", hdev->name, bdaddr);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002427
Johan Hedberg0378b592014-11-19 15:22:22 +02002428 list_del_rcu(&key->list);
2429 kfree_rcu(key, rcu);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02002430
2431 return 0;
2432}
2433
Johan Hedberge0b2b272014-02-18 17:14:31 +02002434int hci_remove_ltk(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 bdaddr_type)
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002435{
Johan Hedberg970d0f12014-11-13 14:37:47 +02002436 struct smp_ltk *k;
Johan Hedbergc51ffa02014-02-18 17:14:33 +02002437 int removed = 0;
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002438
Johan Hedberg970d0f12014-11-13 14:37:47 +02002439 list_for_each_entry_rcu(k, &hdev->long_term_keys, list) {
Johan Hedberge0b2b272014-02-18 17:14:31 +02002440 if (bacmp(bdaddr, &k->bdaddr) || k->bdaddr_type != bdaddr_type)
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002441 continue;
2442
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03002443 BT_DBG("%s removing %pMR", hdev->name, bdaddr);
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002444
Johan Hedberg970d0f12014-11-13 14:37:47 +02002445 list_del_rcu(&k->list);
2446 kfree_rcu(k, rcu);
Johan Hedbergc51ffa02014-02-18 17:14:33 +02002447 removed++;
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002448 }
2449
Johan Hedbergc51ffa02014-02-18 17:14:33 +02002450 return removed ? 0 : -ENOENT;
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03002451}
2452
Johan Hedberga7ec7332014-02-18 17:14:35 +02002453void hci_remove_irk(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 addr_type)
2454{
Johan Hedbergadae20c2014-11-13 14:37:48 +02002455 struct smp_irk *k;
Johan Hedberga7ec7332014-02-18 17:14:35 +02002456
Johan Hedbergadae20c2014-11-13 14:37:48 +02002457 list_for_each_entry_rcu(k, &hdev->identity_resolving_keys, list) {
Johan Hedberga7ec7332014-02-18 17:14:35 +02002458 if (bacmp(bdaddr, &k->bdaddr) || k->addr_type != addr_type)
2459 continue;
2460
2461 BT_DBG("%s removing %pMR", hdev->name, bdaddr);
2462
Johan Hedbergadae20c2014-11-13 14:37:48 +02002463 list_del_rcu(&k->list);
2464 kfree_rcu(k, rcu);
Johan Hedberga7ec7332014-02-18 17:14:35 +02002465 }
2466}
2467
Johan Hedberg55e76b32015-03-10 22:34:40 +02002468bool hci_bdaddr_is_paired(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 type)
2469{
2470 struct smp_ltk *k;
Johan Hedberg4ba9faf2015-03-11 10:52:08 +02002471 struct smp_irk *irk;
Johan Hedberg55e76b32015-03-10 22:34:40 +02002472 u8 addr_type;
2473
2474 if (type == BDADDR_BREDR) {
2475 if (hci_find_link_key(hdev, bdaddr))
2476 return true;
2477 return false;
2478 }
2479
2480 /* Convert to HCI addr type which struct smp_ltk uses */
2481 if (type == BDADDR_LE_PUBLIC)
2482 addr_type = ADDR_LE_DEV_PUBLIC;
2483 else
2484 addr_type = ADDR_LE_DEV_RANDOM;
2485
Johan Hedberg4ba9faf2015-03-11 10:52:08 +02002486 irk = hci_get_irk(hdev, bdaddr, addr_type);
2487 if (irk) {
2488 bdaddr = &irk->bdaddr;
2489 addr_type = irk->addr_type;
2490 }
2491
Johan Hedberg55e76b32015-03-10 22:34:40 +02002492 rcu_read_lock();
2493 list_for_each_entry_rcu(k, &hdev->long_term_keys, list) {
Johan Hedberg87c8b282015-03-11 08:55:51 +02002494 if (k->bdaddr_type == addr_type && !bacmp(bdaddr, &k->bdaddr)) {
2495 rcu_read_unlock();
Johan Hedberg55e76b32015-03-10 22:34:40 +02002496 return true;
Johan Hedberg87c8b282015-03-11 08:55:51 +02002497 }
Johan Hedberg55e76b32015-03-10 22:34:40 +02002498 }
2499 rcu_read_unlock();
2500
2501 return false;
2502}
2503
Ville Tervo6bd32322011-02-16 16:32:41 +02002504/* HCI command timer function */
Marcel Holtmann65cc2b42014-06-16 12:30:56 +02002505static void hci_cmd_timeout(struct work_struct *work)
Ville Tervo6bd32322011-02-16 16:32:41 +02002506{
Marcel Holtmann65cc2b42014-06-16 12:30:56 +02002507 struct hci_dev *hdev = container_of(work, struct hci_dev,
2508 cmd_timer.work);
Ville Tervo6bd32322011-02-16 16:32:41 +02002509
Andrei Emeltchenkobda4f232012-06-11 11:13:08 +03002510 if (hdev->sent_cmd) {
2511 struct hci_command_hdr *sent = (void *) hdev->sent_cmd->data;
2512 u16 opcode = __le16_to_cpu(sent->opcode);
2513
2514 BT_ERR("%s command 0x%4.4x tx timeout", hdev->name, opcode);
2515 } else {
2516 BT_ERR("%s command tx timeout", hdev->name);
2517 }
2518
Ville Tervo6bd32322011-02-16 16:32:41 +02002519 atomic_set(&hdev->cmd_cnt, 1);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02002520 queue_work(hdev->workqueue, &hdev->cmd_work);
Ville Tervo6bd32322011-02-16 16:32:41 +02002521}
2522
Szymon Janc2763eda2011-03-22 13:12:22 +01002523struct oob_data *hci_find_remote_oob_data(struct hci_dev *hdev,
Johan Hedberg6928a922014-10-26 20:46:09 +01002524 bdaddr_t *bdaddr, u8 bdaddr_type)
Szymon Janc2763eda2011-03-22 13:12:22 +01002525{
2526 struct oob_data *data;
2527
Johan Hedberg6928a922014-10-26 20:46:09 +01002528 list_for_each_entry(data, &hdev->remote_oob_data, list) {
2529 if (bacmp(bdaddr, &data->bdaddr) != 0)
2530 continue;
2531 if (data->bdaddr_type != bdaddr_type)
2532 continue;
2533 return data;
2534 }
Szymon Janc2763eda2011-03-22 13:12:22 +01002535
2536 return NULL;
2537}
2538
Johan Hedberg6928a922014-10-26 20:46:09 +01002539int hci_remove_remote_oob_data(struct hci_dev *hdev, bdaddr_t *bdaddr,
2540 u8 bdaddr_type)
Szymon Janc2763eda2011-03-22 13:12:22 +01002541{
2542 struct oob_data *data;
2543
Johan Hedberg6928a922014-10-26 20:46:09 +01002544 data = hci_find_remote_oob_data(hdev, bdaddr, bdaddr_type);
Szymon Janc2763eda2011-03-22 13:12:22 +01002545 if (!data)
2546 return -ENOENT;
2547
Johan Hedberg6928a922014-10-26 20:46:09 +01002548 BT_DBG("%s removing %pMR (%u)", hdev->name, bdaddr, bdaddr_type);
Szymon Janc2763eda2011-03-22 13:12:22 +01002549
2550 list_del(&data->list);
2551 kfree(data);
2552
2553 return 0;
2554}
2555
Johan Hedberg35f74982014-02-18 17:14:32 +02002556void hci_remote_oob_data_clear(struct hci_dev *hdev)
Szymon Janc2763eda2011-03-22 13:12:22 +01002557{
2558 struct oob_data *data, *n;
2559
2560 list_for_each_entry_safe(data, n, &hdev->remote_oob_data, list) {
2561 list_del(&data->list);
2562 kfree(data);
2563 }
Szymon Janc2763eda2011-03-22 13:12:22 +01002564}
2565
Marcel Holtmann07988722014-01-10 02:07:29 -08002566int hci_add_remote_oob_data(struct hci_dev *hdev, bdaddr_t *bdaddr,
Johan Hedberg6928a922014-10-26 20:46:09 +01002567 u8 bdaddr_type, u8 *hash192, u8 *rand192,
Johan Hedberg81328d52014-10-26 20:33:47 +01002568 u8 *hash256, u8 *rand256)
Szymon Janc2763eda2011-03-22 13:12:22 +01002569{
2570 struct oob_data *data;
2571
Johan Hedberg6928a922014-10-26 20:46:09 +01002572 data = hci_find_remote_oob_data(hdev, bdaddr, bdaddr_type);
Szymon Janc2763eda2011-03-22 13:12:22 +01002573 if (!data) {
Johan Hedberg0a14ab42014-02-19 14:57:43 +02002574 data = kmalloc(sizeof(*data), GFP_KERNEL);
Szymon Janc2763eda2011-03-22 13:12:22 +01002575 if (!data)
2576 return -ENOMEM;
2577
2578 bacpy(&data->bdaddr, bdaddr);
Johan Hedberg6928a922014-10-26 20:46:09 +01002579 data->bdaddr_type = bdaddr_type;
Szymon Janc2763eda2011-03-22 13:12:22 +01002580 list_add(&data->list, &hdev->remote_oob_data);
2581 }
2582
Johan Hedberg81328d52014-10-26 20:33:47 +01002583 if (hash192 && rand192) {
2584 memcpy(data->hash192, hash192, sizeof(data->hash192));
2585 memcpy(data->rand192, rand192, sizeof(data->rand192));
Marcel Holtmannf7697b12015-01-30 23:20:55 -08002586 if (hash256 && rand256)
2587 data->present = 0x03;
Johan Hedberg81328d52014-10-26 20:33:47 +01002588 } else {
2589 memset(data->hash192, 0, sizeof(data->hash192));
2590 memset(data->rand192, 0, sizeof(data->rand192));
Marcel Holtmannf7697b12015-01-30 23:20:55 -08002591 if (hash256 && rand256)
2592 data->present = 0x02;
2593 else
2594 data->present = 0x00;
Marcel Holtmann07988722014-01-10 02:07:29 -08002595 }
2596
Johan Hedberg81328d52014-10-26 20:33:47 +01002597 if (hash256 && rand256) {
2598 memcpy(data->hash256, hash256, sizeof(data->hash256));
2599 memcpy(data->rand256, rand256, sizeof(data->rand256));
2600 } else {
2601 memset(data->hash256, 0, sizeof(data->hash256));
2602 memset(data->rand256, 0, sizeof(data->rand256));
Marcel Holtmannf7697b12015-01-30 23:20:55 -08002603 if (hash192 && rand192)
2604 data->present = 0x01;
Johan Hedberg81328d52014-10-26 20:33:47 +01002605 }
Marcel Holtmann07988722014-01-10 02:07:29 -08002606
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03002607 BT_DBG("%s for %pMR", hdev->name, bdaddr);
Szymon Janc2763eda2011-03-22 13:12:22 +01002608
2609 return 0;
2610}
2611
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002612struct bdaddr_list *hci_bdaddr_list_lookup(struct list_head *bdaddr_list,
Marcel Holtmannb9ee0a72013-10-17 17:24:13 -07002613 bdaddr_t *bdaddr, u8 type)
Antti Julkub2a66aa2011-06-15 12:01:14 +03002614{
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02002615 struct bdaddr_list *b;
Antti Julkub2a66aa2011-06-15 12:01:14 +03002616
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002617 list_for_each_entry(b, bdaddr_list, list) {
Marcel Holtmannb9ee0a72013-10-17 17:24:13 -07002618 if (!bacmp(&b->bdaddr, bdaddr) && b->bdaddr_type == type)
Antti Julkub2a66aa2011-06-15 12:01:14 +03002619 return b;
Marcel Holtmannb9ee0a72013-10-17 17:24:13 -07002620 }
Antti Julkub2a66aa2011-06-15 12:01:14 +03002621
2622 return NULL;
2623}
2624
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002625void hci_bdaddr_list_clear(struct list_head *bdaddr_list)
Antti Julkub2a66aa2011-06-15 12:01:14 +03002626{
2627 struct list_head *p, *n;
2628
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002629 list_for_each_safe(p, n, bdaddr_list) {
Marcel Holtmannb9ee0a72013-10-17 17:24:13 -07002630 struct bdaddr_list *b = list_entry(p, struct bdaddr_list, list);
Antti Julkub2a66aa2011-06-15 12:01:14 +03002631
2632 list_del(p);
2633 kfree(b);
2634 }
Antti Julkub2a66aa2011-06-15 12:01:14 +03002635}
2636
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002637int hci_bdaddr_list_add(struct list_head *list, bdaddr_t *bdaddr, u8 type)
Antti Julkub2a66aa2011-06-15 12:01:14 +03002638{
2639 struct bdaddr_list *entry;
Antti Julkub2a66aa2011-06-15 12:01:14 +03002640
Marcel Holtmannb9ee0a72013-10-17 17:24:13 -07002641 if (!bacmp(bdaddr, BDADDR_ANY))
Antti Julkub2a66aa2011-06-15 12:01:14 +03002642 return -EBADF;
2643
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002644 if (hci_bdaddr_list_lookup(list, bdaddr, type))
Antti Julku5e762442011-08-25 16:48:02 +03002645 return -EEXIST;
Antti Julkub2a66aa2011-06-15 12:01:14 +03002646
Johan Hedberg27f70f32014-07-21 10:50:06 +03002647 entry = kzalloc(sizeof(*entry), GFP_KERNEL);
Antti Julku5e762442011-08-25 16:48:02 +03002648 if (!entry)
2649 return -ENOMEM;
Antti Julkub2a66aa2011-06-15 12:01:14 +03002650
2651 bacpy(&entry->bdaddr, bdaddr);
Marcel Holtmannb9ee0a72013-10-17 17:24:13 -07002652 entry->bdaddr_type = type;
Antti Julkub2a66aa2011-06-15 12:01:14 +03002653
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002654 list_add(&entry->list, list);
Marcel Holtmannd2ab0ac2014-02-27 20:37:30 -08002655
2656 return 0;
2657}
2658
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002659int hci_bdaddr_list_del(struct list_head *list, bdaddr_t *bdaddr, u8 type)
Marcel Holtmannd2ab0ac2014-02-27 20:37:30 -08002660{
2661 struct bdaddr_list *entry;
2662
Johan Hedberg35f74982014-02-18 17:14:32 +02002663 if (!bacmp(bdaddr, BDADDR_ANY)) {
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002664 hci_bdaddr_list_clear(list);
Johan Hedberg35f74982014-02-18 17:14:32 +02002665 return 0;
2666 }
Marcel Holtmannd2ab0ac2014-02-27 20:37:30 -08002667
Johan Hedbergdcc36c12014-07-09 12:59:13 +03002668 entry = hci_bdaddr_list_lookup(list, bdaddr, type);
Marcel Holtmannd2ab0ac2014-02-27 20:37:30 -08002669 if (!entry)
2670 return -ENOENT;
2671
2672 list_del(&entry->list);
2673 kfree(entry);
2674
2675 return 0;
2676}
2677
Andre Guedes15819a72014-02-03 13:56:18 -03002678/* This function requires the caller holds hdev->lock */
2679struct hci_conn_params *hci_conn_params_lookup(struct hci_dev *hdev,
2680 bdaddr_t *addr, u8 addr_type)
2681{
2682 struct hci_conn_params *params;
2683
Johan Hedberg738f6182014-07-03 19:33:51 +03002684 /* The conn params list only contains identity addresses */
2685 if (!hci_is_identity_address(addr, addr_type))
2686 return NULL;
2687
Andre Guedes15819a72014-02-03 13:56:18 -03002688 list_for_each_entry(params, &hdev->le_conn_params, list) {
2689 if (bacmp(&params->addr, addr) == 0 &&
2690 params->addr_type == addr_type) {
2691 return params;
2692 }
2693 }
2694
2695 return NULL;
2696}
2697
2698/* This function requires the caller holds hdev->lock */
Johan Hedberg501f8822014-07-04 12:37:26 +03002699struct hci_conn_params *hci_pend_le_action_lookup(struct list_head *list,
2700 bdaddr_t *addr, u8 addr_type)
Andre Guedes15819a72014-02-03 13:56:18 -03002701{
Johan Hedberg912b42e2014-07-03 19:33:49 +03002702 struct hci_conn_params *param;
Andre Guedes15819a72014-02-03 13:56:18 -03002703
Johan Hedberg738f6182014-07-03 19:33:51 +03002704 /* The list only contains identity addresses */
2705 if (!hci_is_identity_address(addr, addr_type))
2706 return NULL;
Andre Guedes15819a72014-02-03 13:56:18 -03002707
Johan Hedberg501f8822014-07-04 12:37:26 +03002708 list_for_each_entry(param, list, action) {
Johan Hedberg912b42e2014-07-03 19:33:49 +03002709 if (bacmp(&param->addr, addr) == 0 &&
2710 param->addr_type == addr_type)
2711 return param;
Marcel Holtmann4b109662014-06-29 13:41:49 +02002712 }
2713
2714 return NULL;
Andre Guedes15819a72014-02-03 13:56:18 -03002715}
2716
2717/* This function requires the caller holds hdev->lock */
Marcel Holtmann51d167c2014-07-01 12:11:04 +02002718struct hci_conn_params *hci_conn_params_add(struct hci_dev *hdev,
2719 bdaddr_t *addr, u8 addr_type)
Andre Guedes15819a72014-02-03 13:56:18 -03002720{
2721 struct hci_conn_params *params;
2722
Johan Hedbergc46245b2014-07-02 17:37:33 +03002723 if (!hci_is_identity_address(addr, addr_type))
Marcel Holtmann51d167c2014-07-01 12:11:04 +02002724 return NULL;
Andre Guedesa9b0a042014-02-26 20:21:52 -03002725
Andre Guedes15819a72014-02-03 13:56:18 -03002726 params = hci_conn_params_lookup(hdev, addr, addr_type);
Andre Guedescef952c2014-02-26 20:21:49 -03002727 if (params)
Marcel Holtmann51d167c2014-07-01 12:11:04 +02002728 return params;
Andre Guedes15819a72014-02-03 13:56:18 -03002729
2730 params = kzalloc(sizeof(*params), GFP_KERNEL);
2731 if (!params) {
2732 BT_ERR("Out of memory");
Marcel Holtmann51d167c2014-07-01 12:11:04 +02002733 return NULL;
Andre Guedes15819a72014-02-03 13:56:18 -03002734 }
2735
2736 bacpy(&params->addr, addr);
2737 params->addr_type = addr_type;
Andre Guedescef952c2014-02-26 20:21:49 -03002738
2739 list_add(&params->list, &hdev->le_conn_params);
Johan Hedberg93450c72014-07-04 12:37:17 +03002740 INIT_LIST_HEAD(&params->action);
Andre Guedescef952c2014-02-26 20:21:49 -03002741
Marcel Holtmannbf5b3c82014-06-30 12:34:39 +02002742 params->conn_min_interval = hdev->le_conn_min_interval;
2743 params->conn_max_interval = hdev->le_conn_max_interval;
2744 params->conn_latency = hdev->le_conn_latency;
2745 params->supervision_timeout = hdev->le_supv_timeout;
2746 params->auto_connect = HCI_AUTO_CONN_DISABLED;
2747
2748 BT_DBG("addr %pMR (type %u)", addr, addr_type);
2749
Marcel Holtmann51d167c2014-07-01 12:11:04 +02002750 return params;
Marcel Holtmannbf5b3c82014-06-30 12:34:39 +02002751}
2752
Johan Hedbergf6c63242014-08-15 21:06:59 +03002753static void hci_conn_params_free(struct hci_conn_params *params)
2754{
2755 if (params->conn) {
2756 hci_conn_drop(params->conn);
2757 hci_conn_put(params->conn);
2758 }
2759
2760 list_del(&params->action);
2761 list_del(&params->list);
2762 kfree(params);
2763}
2764
Andre Guedes15819a72014-02-03 13:56:18 -03002765/* This function requires the caller holds hdev->lock */
2766void hci_conn_params_del(struct hci_dev *hdev, bdaddr_t *addr, u8 addr_type)
2767{
2768 struct hci_conn_params *params;
2769
2770 params = hci_conn_params_lookup(hdev, addr, addr_type);
2771 if (!params)
2772 return;
2773
Johan Hedbergf6c63242014-08-15 21:06:59 +03002774 hci_conn_params_free(params);
Andre Guedes15819a72014-02-03 13:56:18 -03002775
Johan Hedberg95305ba2014-07-04 12:37:21 +03002776 hci_update_background_scan(hdev);
2777
Andre Guedes15819a72014-02-03 13:56:18 -03002778 BT_DBG("addr %pMR (type %u)", addr, addr_type);
2779}
2780
2781/* This function requires the caller holds hdev->lock */
Johan Hedberg55af49a2014-07-02 17:37:26 +03002782void hci_conn_params_clear_disabled(struct hci_dev *hdev)
Andre Guedes15819a72014-02-03 13:56:18 -03002783{
2784 struct hci_conn_params *params, *tmp;
2785
2786 list_for_each_entry_safe(params, tmp, &hdev->le_conn_params, list) {
Johan Hedberg55af49a2014-07-02 17:37:26 +03002787 if (params->auto_connect != HCI_AUTO_CONN_DISABLED)
2788 continue;
Andre Guedes15819a72014-02-03 13:56:18 -03002789 list_del(&params->list);
2790 kfree(params);
2791 }
2792
Johan Hedberg55af49a2014-07-02 17:37:26 +03002793 BT_DBG("All LE disabled connection parameters were removed");
2794}
2795
2796/* This function requires the caller holds hdev->lock */
Johan Hedberg373110c2014-07-02 17:37:25 +03002797void hci_conn_params_clear_all(struct hci_dev *hdev)
Andre Guedes15819a72014-02-03 13:56:18 -03002798{
2799 struct hci_conn_params *params, *tmp;
2800
Johan Hedbergf6c63242014-08-15 21:06:59 +03002801 list_for_each_entry_safe(params, tmp, &hdev->le_conn_params, list)
2802 hci_conn_params_free(params);
Andre Guedes15819a72014-02-03 13:56:18 -03002803
Johan Hedberga2f41a82014-07-04 12:37:19 +03002804 hci_update_background_scan(hdev);
Marcel Holtmann1089b672014-06-29 13:41:50 +02002805
Andre Guedes15819a72014-02-03 13:56:18 -03002806 BT_DBG("All LE connection parameters were removed");
2807}
2808
Marcel Holtmann1904a852015-01-11 13:50:44 -08002809static void inquiry_complete(struct hci_dev *hdev, u8 status, u16 opcode)
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03002810{
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002811 if (status) {
2812 BT_ERR("Failed to start inquiry: status %d", status);
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03002813
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002814 hci_dev_lock(hdev);
2815 hci_discovery_set_state(hdev, DISCOVERY_STOPPED);
2816 hci_dev_unlock(hdev);
2817 return;
2818 }
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03002819}
2820
Marcel Holtmann1904a852015-01-11 13:50:44 -08002821static void le_scan_disable_work_complete(struct hci_dev *hdev, u8 status,
2822 u16 opcode)
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03002823{
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002824 /* General inquiry access code (GIAC) */
2825 u8 lap[3] = { 0x33, 0x8b, 0x9e };
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002826 struct hci_cp_inquiry cp;
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03002827 int err;
2828
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002829 if (status) {
2830 BT_ERR("Failed to disable LE scanning: status %d", status);
2831 return;
Andre Guedes7dbfac12012-03-15 16:52:07 -03002832 }
2833
Jakub Pawlowski2d28cfe2015-02-01 23:07:54 -08002834 hdev->discovery.scan_start = 0;
2835
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002836 switch (hdev->discovery.type) {
2837 case DISCOV_TYPE_LE:
2838 hci_dev_lock(hdev);
2839 hci_discovery_set_state(hdev, DISCOVERY_STOPPED);
2840 hci_dev_unlock(hdev);
2841 break;
2842
2843 case DISCOV_TYPE_INTERLEAVED:
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002844 hci_dev_lock(hdev);
2845
Jakub Pawlowski07d23342015-03-17 09:04:14 -07002846 if (test_bit(HCI_QUIRK_SIMULTANEOUS_DISCOVERY,
2847 &hdev->quirks)) {
2848 /* If we were running LE only scan, change discovery
2849 * state. If we were running both LE and BR/EDR inquiry
2850 * simultaneously, and BR/EDR inquiry is already
2851 * finished, stop discovery, otherwise BR/EDR inquiry
Wesley Kuo177d0502015-05-13 10:33:15 +08002852 * will stop discovery when finished. If we will resolve
2853 * remote device name, do not change discovery state.
Jakub Pawlowski07d23342015-03-17 09:04:14 -07002854 */
Wesley Kuo177d0502015-05-13 10:33:15 +08002855 if (!test_bit(HCI_INQUIRY, &hdev->flags) &&
2856 hdev->discovery.state != DISCOVERY_RESOLVING)
Jakub Pawlowski07d23342015-03-17 09:04:14 -07002857 hci_discovery_set_state(hdev,
2858 DISCOVERY_STOPPED);
2859 } else {
Johan Hedbergbaf880a2015-03-21 08:02:23 +02002860 struct hci_request req;
2861
Jakub Pawlowski07d23342015-03-17 09:04:14 -07002862 hci_inquiry_cache_flush(hdev);
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002863
Johan Hedbergbaf880a2015-03-21 08:02:23 +02002864 hci_req_init(&req, hdev);
2865
2866 memset(&cp, 0, sizeof(cp));
2867 memcpy(&cp.lap, lap, sizeof(cp.lap));
2868 cp.length = DISCOV_INTERLEAVED_INQUIRY_LEN;
2869 hci_req_add(&req, HCI_OP_INQUIRY, sizeof(cp), &cp);
2870
Jakub Pawlowski07d23342015-03-17 09:04:14 -07002871 err = hci_req_run(&req, inquiry_complete);
2872 if (err) {
2873 BT_ERR("Inquiry request failed: err %d", err);
2874 hci_discovery_set_state(hdev,
2875 DISCOVERY_STOPPED);
2876 }
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002877 }
2878
2879 hci_dev_unlock(hdev);
2880 break;
2881 }
Andre Guedes7dbfac12012-03-15 16:52:07 -03002882}
2883
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03002884static void le_scan_disable_work(struct work_struct *work)
2885{
2886 struct hci_dev *hdev = container_of(work, struct hci_dev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03002887 le_scan_disable.work);
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002888 struct hci_request req;
2889 int err;
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03002890
2891 BT_DBG("%s", hdev->name);
2892
Jakub Pawlowski2d28cfe2015-02-01 23:07:54 -08002893 cancel_delayed_work_sync(&hdev->le_scan_restart);
2894
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002895 hci_req_init(&req, hdev);
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03002896
Andre Guedesb1efcc22014-02-26 20:21:40 -03002897 hci_req_add_le_scan_disable(&req);
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03002898
Andre Guedes4c87eaa2013-04-30 15:29:32 -03002899 err = hci_req_run(&req, le_scan_disable_work_complete);
2900 if (err)
2901 BT_ERR("Disable LE scanning request failed: err %d", err);
Andre Guedes28b75a82012-02-03 17:48:00 -03002902}
2903
Jakub Pawlowski2d28cfe2015-02-01 23:07:54 -08002904static void le_scan_restart_work_complete(struct hci_dev *hdev, u8 status,
2905 u16 opcode)
2906{
2907 unsigned long timeout, duration, scan_start, now;
2908
2909 BT_DBG("%s", hdev->name);
2910
2911 if (status) {
2912 BT_ERR("Failed to restart LE scan: status %d", status);
2913 return;
2914 }
2915
2916 if (!test_bit(HCI_QUIRK_STRICT_DUPLICATE_FILTER, &hdev->quirks) ||
2917 !hdev->discovery.scan_start)
2918 return;
2919
2920 /* When the scan was started, hdev->le_scan_disable has been queued
2921 * after duration from scan_start. During scan restart this job
2922 * has been canceled, and we need to queue it again after proper
2923 * timeout, to make sure that scan does not run indefinitely.
2924 */
2925 duration = hdev->discovery.scan_duration;
2926 scan_start = hdev->discovery.scan_start;
2927 now = jiffies;
2928 if (now - scan_start <= duration) {
2929 int elapsed;
2930
2931 if (now >= scan_start)
2932 elapsed = now - scan_start;
2933 else
2934 elapsed = ULONG_MAX - scan_start + now;
2935
2936 timeout = duration - elapsed;
2937 } else {
2938 timeout = 0;
2939 }
2940 queue_delayed_work(hdev->workqueue,
2941 &hdev->le_scan_disable, timeout);
2942}
2943
2944static void le_scan_restart_work(struct work_struct *work)
2945{
2946 struct hci_dev *hdev = container_of(work, struct hci_dev,
2947 le_scan_restart.work);
2948 struct hci_request req;
2949 struct hci_cp_le_set_scan_enable cp;
2950 int err;
2951
2952 BT_DBG("%s", hdev->name);
2953
2954 /* If controller is not scanning we are done. */
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07002955 if (!hci_dev_test_flag(hdev, HCI_LE_SCAN))
Jakub Pawlowski2d28cfe2015-02-01 23:07:54 -08002956 return;
2957
2958 hci_req_init(&req, hdev);
2959
2960 hci_req_add_le_scan_disable(&req);
2961
2962 memset(&cp, 0, sizeof(cp));
2963 cp.enable = LE_SCAN_ENABLE;
2964 cp.filter_dup = LE_SCAN_FILTER_DUP_ENABLE;
2965 hci_req_add(&req, HCI_OP_LE_SET_SCAN_ENABLE, sizeof(cp), &cp);
2966
2967 err = hci_req_run(&req, le_scan_restart_work_complete);
2968 if (err)
2969 BT_ERR("Restart LE scan request failed: err %d", err);
2970}
2971
Johan Hedberga1f4c312014-02-27 14:05:41 +02002972/* Copy the Identity Address of the controller.
2973 *
2974 * If the controller has a public BD_ADDR, then by default use that one.
2975 * If this is a LE only controller without a public address, default to
2976 * the static random address.
2977 *
2978 * For debugging purposes it is possible to force controllers with a
2979 * public address to use the static random address instead.
Marcel Holtmann50b5b952014-12-19 23:05:35 +01002980 *
2981 * In case BR/EDR has been disabled on a dual-mode controller and
2982 * userspace has configured a static address, then that address
2983 * becomes the identity address instead of the public BR/EDR address.
Johan Hedberga1f4c312014-02-27 14:05:41 +02002984 */
2985void hci_copy_identity_address(struct hci_dev *hdev, bdaddr_t *bdaddr,
2986 u8 *bdaddr_type)
2987{
Marcel Holtmannb7cb93e2015-03-13 10:20:35 -07002988 if (hci_dev_test_flag(hdev, HCI_FORCE_STATIC_ADDR) ||
Marcel Holtmann50b5b952014-12-19 23:05:35 +01002989 !bacmp(&hdev->bdaddr, BDADDR_ANY) ||
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07002990 (!hci_dev_test_flag(hdev, HCI_BREDR_ENABLED) &&
Marcel Holtmann50b5b952014-12-19 23:05:35 +01002991 bacmp(&hdev->static_addr, BDADDR_ANY))) {
Johan Hedberga1f4c312014-02-27 14:05:41 +02002992 bacpy(bdaddr, &hdev->static_addr);
2993 *bdaddr_type = ADDR_LE_DEV_RANDOM;
2994 } else {
2995 bacpy(bdaddr, &hdev->bdaddr);
2996 *bdaddr_type = ADDR_LE_DEV_PUBLIC;
2997 }
2998}
2999
David Herrmann9be0dab2012-04-22 14:39:57 +02003000/* Alloc HCI device */
3001struct hci_dev *hci_alloc_dev(void)
3002{
3003 struct hci_dev *hdev;
3004
Johan Hedberg27f70f32014-07-21 10:50:06 +03003005 hdev = kzalloc(sizeof(*hdev), GFP_KERNEL);
David Herrmann9be0dab2012-04-22 14:39:57 +02003006 if (!hdev)
3007 return NULL;
3008
David Herrmannb1b813d2012-04-22 14:39:58 +02003009 hdev->pkt_type = (HCI_DM1 | HCI_DH1 | HCI_HV1);
3010 hdev->esco_type = (ESCO_HV1);
3011 hdev->link_mode = (HCI_LM_ACCEPT);
Marcel Holtmannb4cb9fb2013-10-14 13:56:16 -07003012 hdev->num_iac = 0x01; /* One IAC support is mandatory */
3013 hdev->io_capability = 0x03; /* No Input No Output */
Marcel Holtmann96c21032014-07-02 11:30:51 +02003014 hdev->manufacturer = 0xffff; /* Default to internal use */
Johan Hedbergbbaf4442012-11-08 01:22:59 +01003015 hdev->inq_tx_power = HCI_TX_POWER_INVALID;
3016 hdev->adv_tx_power = HCI_TX_POWER_INVALID;
David Herrmannb1b813d2012-04-22 14:39:58 +02003017
David Herrmannb1b813d2012-04-22 14:39:58 +02003018 hdev->sniff_max_interval = 800;
3019 hdev->sniff_min_interval = 80;
3020
Marcel Holtmann3f959d42014-02-20 11:55:56 -08003021 hdev->le_adv_channel_map = 0x07;
Georg Lukas628531c2014-07-26 13:59:57 +02003022 hdev->le_adv_min_interval = 0x0800;
3023 hdev->le_adv_max_interval = 0x0800;
Marcel Holtmannbef64732013-10-11 08:23:19 -07003024 hdev->le_scan_interval = 0x0060;
3025 hdev->le_scan_window = 0x0030;
Marcel Holtmann4e70c7e2013-10-19 07:09:13 -07003026 hdev->le_conn_min_interval = 0x0028;
3027 hdev->le_conn_max_interval = 0x0038;
Marcel Holtmann04fb7d92014-06-30 12:34:36 +02003028 hdev->le_conn_latency = 0x0000;
3029 hdev->le_supv_timeout = 0x002a;
Marcel Holtmanna8e1bfa2014-12-20 16:28:40 +01003030 hdev->le_def_tx_len = 0x001b;
3031 hdev->le_def_tx_time = 0x0148;
3032 hdev->le_max_tx_len = 0x001b;
3033 hdev->le_max_tx_time = 0x0148;
3034 hdev->le_max_rx_len = 0x001b;
3035 hdev->le_max_rx_time = 0x0148;
Marcel Holtmannbef64732013-10-11 08:23:19 -07003036
Johan Hedbergd6bfd592014-02-23 19:42:20 +02003037 hdev->rpa_timeout = HCI_DEFAULT_RPA_TIMEOUT;
Lukasz Rymanowskib9a7a612014-03-27 20:55:20 +01003038 hdev->discov_interleaved_timeout = DISCOV_INTERLEAVED_TIMEOUT;
Andrzej Kaczmarek31ad1692014-05-14 13:43:02 +02003039 hdev->conn_info_min_age = DEFAULT_CONN_INFO_MIN_AGE;
3040 hdev->conn_info_max_age = DEFAULT_CONN_INFO_MAX_AGE;
Johan Hedbergd6bfd592014-02-23 19:42:20 +02003041
David Herrmannb1b813d2012-04-22 14:39:58 +02003042 mutex_init(&hdev->lock);
3043 mutex_init(&hdev->req_lock);
3044
3045 INIT_LIST_HEAD(&hdev->mgmt_pending);
3046 INIT_LIST_HEAD(&hdev->blacklist);
Johan Hedberg66593582014-07-09 12:59:14 +03003047 INIT_LIST_HEAD(&hdev->whitelist);
David Herrmannb1b813d2012-04-22 14:39:58 +02003048 INIT_LIST_HEAD(&hdev->uuids);
3049 INIT_LIST_HEAD(&hdev->link_keys);
3050 INIT_LIST_HEAD(&hdev->long_term_keys);
Johan Hedberg970c4e42014-02-18 10:19:33 +02003051 INIT_LIST_HEAD(&hdev->identity_resolving_keys);
David Herrmannb1b813d2012-04-22 14:39:58 +02003052 INIT_LIST_HEAD(&hdev->remote_oob_data);
Marcel Holtmannd2ab0ac2014-02-27 20:37:30 -08003053 INIT_LIST_HEAD(&hdev->le_white_list);
Andre Guedes15819a72014-02-03 13:56:18 -03003054 INIT_LIST_HEAD(&hdev->le_conn_params);
Andre Guedes77a77a32014-02-26 20:21:46 -03003055 INIT_LIST_HEAD(&hdev->pend_le_conns);
Johan Hedberg66f84552014-07-04 12:37:18 +03003056 INIT_LIST_HEAD(&hdev->pend_le_reports);
Andrei Emeltchenko6b536b52012-08-31 16:39:28 +03003057 INIT_LIST_HEAD(&hdev->conn_hash.list);
David Herrmannb1b813d2012-04-22 14:39:58 +02003058
3059 INIT_WORK(&hdev->rx_work, hci_rx_work);
3060 INIT_WORK(&hdev->cmd_work, hci_cmd_work);
3061 INIT_WORK(&hdev->tx_work, hci_tx_work);
3062 INIT_WORK(&hdev->power_on, hci_power_on);
Marcel Holtmannc7741d12015-01-28 11:09:55 -08003063 INIT_WORK(&hdev->error_reset, hci_error_reset);
David Herrmannb1b813d2012-04-22 14:39:58 +02003064
David Herrmannb1b813d2012-04-22 14:39:58 +02003065 INIT_DELAYED_WORK(&hdev->power_off, hci_power_off);
3066 INIT_DELAYED_WORK(&hdev->discov_off, hci_discov_off);
3067 INIT_DELAYED_WORK(&hdev->le_scan_disable, le_scan_disable_work);
Jakub Pawlowski2d28cfe2015-02-01 23:07:54 -08003068 INIT_DELAYED_WORK(&hdev->le_scan_restart, le_scan_restart_work);
David Herrmannb1b813d2012-04-22 14:39:58 +02003069
David Herrmannb1b813d2012-04-22 14:39:58 +02003070 skb_queue_head_init(&hdev->rx_q);
3071 skb_queue_head_init(&hdev->cmd_q);
3072 skb_queue_head_init(&hdev->raw_q);
3073
3074 init_waitqueue_head(&hdev->req_wait_q);
3075
Marcel Holtmann65cc2b42014-06-16 12:30:56 +02003076 INIT_DELAYED_WORK(&hdev->cmd_timer, hci_cmd_timeout);
David Herrmannb1b813d2012-04-22 14:39:58 +02003077
David Herrmannb1b813d2012-04-22 14:39:58 +02003078 hci_init_sysfs(hdev);
3079 discovery_init(hdev);
Arman Uguray203fea02015-03-23 15:57:11 -07003080 adv_info_init(hdev);
David Herrmann9be0dab2012-04-22 14:39:57 +02003081
3082 return hdev;
3083}
3084EXPORT_SYMBOL(hci_alloc_dev);
3085
3086/* Free HCI device */
3087void hci_free_dev(struct hci_dev *hdev)
3088{
David Herrmann9be0dab2012-04-22 14:39:57 +02003089 /* will free via device release */
3090 put_device(&hdev->dev);
3091}
3092EXPORT_SYMBOL(hci_free_dev);
3093
Linus Torvalds1da177e2005-04-16 15:20:36 -07003094/* Register HCI device */
3095int hci_register_dev(struct hci_dev *hdev)
3096{
David Herrmannb1b813d2012-04-22 14:39:58 +02003097 int id, error;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003098
Marcel Holtmann74292d52014-07-06 15:50:27 +02003099 if (!hdev->open || !hdev->close || !hdev->send)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003100 return -EINVAL;
3101
Mat Martineau08add512011-11-02 16:18:36 -07003102 /* Do not allow HCI_AMP devices to register at index 0,
3103 * so the index can be used as the AMP controller ID.
3104 */
Sasha Levin3df92b32012-05-27 22:36:56 +02003105 switch (hdev->dev_type) {
3106 case HCI_BREDR:
3107 id = ida_simple_get(&hci_index_ida, 0, 0, GFP_KERNEL);
3108 break;
3109 case HCI_AMP:
3110 id = ida_simple_get(&hci_index_ida, 1, 0, GFP_KERNEL);
3111 break;
3112 default:
3113 return -EINVAL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003114 }
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09003115
Sasha Levin3df92b32012-05-27 22:36:56 +02003116 if (id < 0)
3117 return id;
3118
Linus Torvalds1da177e2005-04-16 15:20:36 -07003119 sprintf(hdev->name, "hci%d", id);
3120 hdev->id = id;
Andrei Emeltchenko2d8b3a12012-04-16 16:32:04 +03003121
3122 BT_DBG("%p name %s bus %d", hdev, hdev->name, hdev->bus);
3123
Kees Cookd8537542013-07-03 15:04:57 -07003124 hdev->workqueue = alloc_workqueue("%s", WQ_HIGHPRI | WQ_UNBOUND |
3125 WQ_MEM_RECLAIM, 1, hdev->name);
David Herrmann33ca9542011-10-08 14:58:49 +02003126 if (!hdev->workqueue) {
3127 error = -ENOMEM;
3128 goto err;
3129 }
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01003130
Kees Cookd8537542013-07-03 15:04:57 -07003131 hdev->req_workqueue = alloc_workqueue("%s", WQ_HIGHPRI | WQ_UNBOUND |
3132 WQ_MEM_RECLAIM, 1, hdev->name);
Johan Hedberg6ead1bb2013-01-14 22:33:50 +02003133 if (!hdev->req_workqueue) {
3134 destroy_workqueue(hdev->workqueue);
3135 error = -ENOMEM;
3136 goto err;
3137 }
3138
Marcel Holtmann0153e2e2013-10-17 17:24:17 -07003139 if (!IS_ERR_OR_NULL(bt_debugfs))
3140 hdev->debugfs = debugfs_create_dir(hdev->name, bt_debugfs);
3141
Marcel Holtmannbdc3e0f2013-10-17 17:24:19 -07003142 dev_set_name(&hdev->dev, "%s", hdev->name);
3143
3144 error = device_add(&hdev->dev);
David Herrmann33ca9542011-10-08 14:58:49 +02003145 if (error < 0)
Johan Hedberg54506912014-08-08 09:32:51 +03003146 goto err_wqueue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003147
Marcel Holtmann611b30f2009-06-08 14:41:38 +02003148 hdev->rfkill = rfkill_alloc(hdev->name, &hdev->dev,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003149 RFKILL_TYPE_BLUETOOTH, &hci_rfkill_ops,
3150 hdev);
Marcel Holtmann611b30f2009-06-08 14:41:38 +02003151 if (hdev->rfkill) {
3152 if (rfkill_register(hdev->rfkill) < 0) {
3153 rfkill_destroy(hdev->rfkill);
3154 hdev->rfkill = NULL;
3155 }
3156 }
3157
Johan Hedberg5e130362013-09-13 08:58:17 +03003158 if (hdev->rfkill && rfkill_blocked(hdev->rfkill))
Marcel Holtmanna1536da2015-03-13 02:11:01 -07003159 hci_dev_set_flag(hdev, HCI_RFKILLED);
Johan Hedberg5e130362013-09-13 08:58:17 +03003160
Marcel Holtmanna1536da2015-03-13 02:11:01 -07003161 hci_dev_set_flag(hdev, HCI_SETUP);
3162 hci_dev_set_flag(hdev, HCI_AUTO_OFF);
Andrei Emeltchenkoce2be9a2012-06-29 15:07:00 +03003163
Marcel Holtmann01cd3402013-10-06 01:16:22 -07003164 if (hdev->dev_type == HCI_BREDR) {
Johan Hedberg56f87902013-10-02 13:43:13 +03003165 /* Assume BR/EDR support until proven otherwise (such as
3166 * through reading supported features during init.
3167 */
Marcel Holtmanna1536da2015-03-13 02:11:01 -07003168 hci_dev_set_flag(hdev, HCI_BREDR_ENABLED);
Johan Hedberg56f87902013-10-02 13:43:13 +03003169 }
Andrei Emeltchenkoce2be9a2012-06-29 15:07:00 +03003170
Gustavo Padovanfcee3372013-07-11 11:34:28 +01003171 write_lock(&hci_dev_list_lock);
3172 list_add(&hdev->list, &hci_dev_list);
3173 write_unlock(&hci_dev_list_lock);
3174
Marcel Holtmann4a964402014-07-02 19:10:33 +02003175 /* Devices that are marked for raw-only usage are unconfigured
3176 * and should not be included in normal operation.
Marcel Holtmannfee746b2014-06-29 12:13:05 +02003177 */
3178 if (test_bit(HCI_QUIRK_RAW_DEVICE, &hdev->quirks))
Marcel Holtmanna1536da2015-03-13 02:11:01 -07003179 hci_dev_set_flag(hdev, HCI_UNCONFIGURED);
Marcel Holtmannfee746b2014-06-29 12:13:05 +02003180
Linus Torvalds1da177e2005-04-16 15:20:36 -07003181 hci_notify(hdev, HCI_DEV_REG);
David Herrmanndc946bd2012-01-07 15:47:24 +01003182 hci_dev_hold(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003183
Johan Hedberg19202572013-01-14 22:33:51 +02003184 queue_work(hdev->req_workqueue, &hdev->power_on);
Marcel Holtmannfbe96d62012-10-30 01:35:40 -07003185
Linus Torvalds1da177e2005-04-16 15:20:36 -07003186 return id;
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01003187
David Herrmann33ca9542011-10-08 14:58:49 +02003188err_wqueue:
3189 destroy_workqueue(hdev->workqueue);
Johan Hedberg6ead1bb2013-01-14 22:33:50 +02003190 destroy_workqueue(hdev->req_workqueue);
David Herrmann33ca9542011-10-08 14:58:49 +02003191err:
Sasha Levin3df92b32012-05-27 22:36:56 +02003192 ida_simple_remove(&hci_index_ida, hdev->id);
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01003193
David Herrmann33ca9542011-10-08 14:58:49 +02003194 return error;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003195}
3196EXPORT_SYMBOL(hci_register_dev);
3197
3198/* Unregister HCI device */
David Herrmann59735632011-10-26 10:43:19 +02003199void hci_unregister_dev(struct hci_dev *hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003200{
Marcel Holtmann2d7cc192015-04-04 21:59:27 -07003201 int id;
Marcel Holtmannef222012007-07-11 06:42:04 +02003202
Marcel Holtmannc13854c2010-02-08 15:27:07 +01003203 BT_DBG("%p name %s bus %d", hdev, hdev->name, hdev->bus);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003204
Marcel Holtmanna1536da2015-03-13 02:11:01 -07003205 hci_dev_set_flag(hdev, HCI_UNREGISTER);
Johan Hovold94324962012-03-15 14:48:41 +01003206
Sasha Levin3df92b32012-05-27 22:36:56 +02003207 id = hdev->id;
3208
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02003209 write_lock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003210 list_del(&hdev->list);
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02003211 write_unlock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003212
3213 hci_dev_do_close(hdev);
3214
Gustavo Padovanb9b5ef12012-11-21 00:50:21 -02003215 cancel_work_sync(&hdev->power_on);
3216
Johan Hedbergab81cbf2010-12-15 13:53:18 +02003217 if (!test_bit(HCI_INIT, &hdev->flags) &&
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07003218 !hci_dev_test_flag(hdev, HCI_SETUP) &&
3219 !hci_dev_test_flag(hdev, HCI_CONFIG)) {
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03003220 hci_dev_lock(hdev);
Johan Hedberg744cf192011-11-08 20:40:14 +02003221 mgmt_index_removed(hdev);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03003222 hci_dev_unlock(hdev);
Johan Hedberg56e5cb82011-11-08 20:40:16 +02003223 }
Johan Hedbergab81cbf2010-12-15 13:53:18 +02003224
Johan Hedberg2e58ef32011-11-08 20:40:15 +02003225 /* mgmt_index_removed should take care of emptying the
3226 * pending list */
3227 BUG_ON(!list_empty(&hdev->mgmt_pending));
3228
Linus Torvalds1da177e2005-04-16 15:20:36 -07003229 hci_notify(hdev, HCI_DEV_UNREG);
3230
Marcel Holtmann611b30f2009-06-08 14:41:38 +02003231 if (hdev->rfkill) {
3232 rfkill_unregister(hdev->rfkill);
3233 rfkill_destroy(hdev->rfkill);
3234 }
3235
Marcel Holtmannbdc3e0f2013-10-17 17:24:19 -07003236 device_del(&hdev->dev);
Dave Young147e2d52008-03-05 18:45:59 -08003237
Marcel Holtmann0153e2e2013-10-17 17:24:17 -07003238 debugfs_remove_recursive(hdev->debugfs);
3239
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01003240 destroy_workqueue(hdev->workqueue);
Johan Hedberg6ead1bb2013-01-14 22:33:50 +02003241 destroy_workqueue(hdev->req_workqueue);
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01003242
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03003243 hci_dev_lock(hdev);
Johan Hedbergdcc36c12014-07-09 12:59:13 +03003244 hci_bdaddr_list_clear(&hdev->blacklist);
Johan Hedberg66593582014-07-09 12:59:14 +03003245 hci_bdaddr_list_clear(&hdev->whitelist);
Johan Hedberg2aeb9a12011-01-04 12:08:51 +02003246 hci_uuids_clear(hdev);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02003247 hci_link_keys_clear(hdev);
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03003248 hci_smp_ltks_clear(hdev);
Johan Hedberg970c4e42014-02-18 10:19:33 +02003249 hci_smp_irks_clear(hdev);
Szymon Janc2763eda2011-03-22 13:12:22 +01003250 hci_remote_oob_data_clear(hdev);
Johan Hedbergdcc36c12014-07-09 12:59:13 +03003251 hci_bdaddr_list_clear(&hdev->le_white_list);
Johan Hedberg373110c2014-07-02 17:37:25 +03003252 hci_conn_params_clear_all(hdev);
Marcel Holtmann22078802014-12-05 11:45:22 +01003253 hci_discovery_filter_clear(hdev);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03003254 hci_dev_unlock(hdev);
Johan Hedberge2e0cac2011-01-04 12:08:50 +02003255
David Herrmanndc946bd2012-01-07 15:47:24 +01003256 hci_dev_put(hdev);
Sasha Levin3df92b32012-05-27 22:36:56 +02003257
3258 ida_simple_remove(&hci_index_ida, id);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003259}
3260EXPORT_SYMBOL(hci_unregister_dev);
3261
3262/* Suspend HCI device */
3263int hci_suspend_dev(struct hci_dev *hdev)
3264{
3265 hci_notify(hdev, HCI_DEV_SUSPEND);
3266 return 0;
3267}
3268EXPORT_SYMBOL(hci_suspend_dev);
3269
3270/* Resume HCI device */
3271int hci_resume_dev(struct hci_dev *hdev)
3272{
3273 hci_notify(hdev, HCI_DEV_RESUME);
3274 return 0;
3275}
3276EXPORT_SYMBOL(hci_resume_dev);
3277
Marcel Holtmann75e05692014-11-02 08:15:38 +01003278/* Reset HCI device */
3279int hci_reset_dev(struct hci_dev *hdev)
3280{
3281 const u8 hw_err[] = { HCI_EV_HARDWARE_ERROR, 0x01, 0x00 };
3282 struct sk_buff *skb;
3283
3284 skb = bt_skb_alloc(3, GFP_ATOMIC);
3285 if (!skb)
3286 return -ENOMEM;
3287
3288 bt_cb(skb)->pkt_type = HCI_EVENT_PKT;
3289 memcpy(skb_put(skb, 3), hw_err, 3);
3290
3291 /* Send Hardware Error to upper stack */
3292 return hci_recv_frame(hdev, skb);
3293}
3294EXPORT_SYMBOL(hci_reset_dev);
3295
Marcel Holtmann76bca882009-11-18 00:40:39 +01003296/* Receive frame from HCI drivers */
Marcel Holtmanne1a26172013-10-10 16:52:43 -07003297int hci_recv_frame(struct hci_dev *hdev, struct sk_buff *skb)
Marcel Holtmann76bca882009-11-18 00:40:39 +01003298{
Marcel Holtmann76bca882009-11-18 00:40:39 +01003299 if (!hdev || (!test_bit(HCI_UP, &hdev->flags)
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003300 && !test_bit(HCI_INIT, &hdev->flags))) {
Marcel Holtmann76bca882009-11-18 00:40:39 +01003301 kfree_skb(skb);
3302 return -ENXIO;
3303 }
3304
Jorrit Schippersd82603c2012-12-27 17:33:02 +01003305 /* Incoming skb */
Marcel Holtmann76bca882009-11-18 00:40:39 +01003306 bt_cb(skb)->incoming = 1;
3307
3308 /* Time stamp */
3309 __net_timestamp(skb);
3310
Marcel Holtmann76bca882009-11-18 00:40:39 +01003311 skb_queue_tail(&hdev->rx_q, skb);
Marcel Holtmannb78752c2010-08-08 23:06:53 -04003312 queue_work(hdev->workqueue, &hdev->rx_work);
Marcel Holtmannc78ae282009-11-18 01:02:54 +01003313
Marcel Holtmann76bca882009-11-18 00:40:39 +01003314 return 0;
3315}
3316EXPORT_SYMBOL(hci_recv_frame);
3317
Linus Torvalds1da177e2005-04-16 15:20:36 -07003318/* ---- Interface to upper protocols ---- */
3319
Linus Torvalds1da177e2005-04-16 15:20:36 -07003320int hci_register_cb(struct hci_cb *cb)
3321{
3322 BT_DBG("%p name %s", cb, cb->name);
3323
Johan Hedbergfba7ecf2015-02-18 14:53:55 +02003324 mutex_lock(&hci_cb_list_lock);
Johan Hedberg00629e02015-02-18 14:53:54 +02003325 list_add_tail(&cb->list, &hci_cb_list);
Johan Hedbergfba7ecf2015-02-18 14:53:55 +02003326 mutex_unlock(&hci_cb_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003327
3328 return 0;
3329}
3330EXPORT_SYMBOL(hci_register_cb);
3331
3332int hci_unregister_cb(struct hci_cb *cb)
3333{
3334 BT_DBG("%p name %s", cb, cb->name);
3335
Johan Hedbergfba7ecf2015-02-18 14:53:55 +02003336 mutex_lock(&hci_cb_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003337 list_del(&cb->list);
Johan Hedbergfba7ecf2015-02-18 14:53:55 +02003338 mutex_unlock(&hci_cb_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003339
3340 return 0;
3341}
3342EXPORT_SYMBOL(hci_unregister_cb);
3343
Marcel Holtmann51086992013-10-10 14:54:19 -07003344static void hci_send_frame(struct hci_dev *hdev, struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003345{
Marcel Holtmanncdc52fa2014-07-06 15:36:15 +02003346 int err;
3347
Marcel Holtmann0d48d932005-08-09 20:30:28 -07003348 BT_DBG("%s type %d len %d", hdev->name, bt_cb(skb)->pkt_type, skb->len);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003349
Marcel Holtmanncd82e612012-02-20 20:34:38 +01003350 /* Time stamp */
3351 __net_timestamp(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003352
Marcel Holtmanncd82e612012-02-20 20:34:38 +01003353 /* Send copy to monitor */
3354 hci_send_to_monitor(hdev, skb);
3355
3356 if (atomic_read(&hdev->promisc)) {
3357 /* Send copy to the sockets */
Marcel Holtmann470fe1b2012-02-20 14:50:30 +01003358 hci_send_to_sock(hdev, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003359 }
3360
3361 /* Get rid of skb owner, prior to sending to the driver. */
3362 skb_orphan(skb);
3363
Marcel Holtmanncdc52fa2014-07-06 15:36:15 +02003364 err = hdev->send(hdev, skb);
3365 if (err < 0) {
3366 BT_ERR("%s sending frame failed (%d)", hdev->name, err);
3367 kfree_skb(skb);
3368 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003369}
3370
Johan Hedberg1ca3a9d2013-03-05 20:37:45 +02003371/* Send HCI command */
Johan Hedberg07dc93d2013-04-19 10:14:51 +03003372int hci_send_cmd(struct hci_dev *hdev, __u16 opcode, __u32 plen,
3373 const void *param)
Johan Hedberg1ca3a9d2013-03-05 20:37:45 +02003374{
3375 struct sk_buff *skb;
3376
3377 BT_DBG("%s opcode 0x%4.4x plen %d", hdev->name, opcode, plen);
3378
3379 skb = hci_prepare_cmd(hdev, opcode, plen, param);
3380 if (!skb) {
3381 BT_ERR("%s no memory for command", hdev->name);
3382 return -ENOMEM;
3383 }
3384
Stephen Hemminger49c922b2014-10-27 21:12:20 -07003385 /* Stand-alone HCI commands must be flagged as
Johan Hedberg11714b32013-03-05 20:37:47 +02003386 * single-command requests.
3387 */
Johan Hedbergdb6e3e82015-03-30 23:21:02 +03003388 bt_cb(skb)->req.start = true;
Johan Hedberg11714b32013-03-05 20:37:47 +02003389
Linus Torvalds1da177e2005-04-16 15:20:36 -07003390 skb_queue_tail(&hdev->cmd_q, skb);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02003391 queue_work(hdev->workqueue, &hdev->cmd_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003392
3393 return 0;
3394}
Linus Torvalds1da177e2005-04-16 15:20:36 -07003395
3396/* Get data from the previously sent command */
Marcel Holtmanna9de9242007-10-20 13:33:56 +02003397void *hci_sent_cmd_data(struct hci_dev *hdev, __u16 opcode)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003398{
3399 struct hci_command_hdr *hdr;
3400
3401 if (!hdev->sent_cmd)
3402 return NULL;
3403
3404 hdr = (void *) hdev->sent_cmd->data;
3405
Marcel Holtmanna9de9242007-10-20 13:33:56 +02003406 if (hdr->opcode != cpu_to_le16(opcode))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003407 return NULL;
3408
Andrei Emeltchenkof0e09512012-06-11 11:13:09 +03003409 BT_DBG("%s opcode 0x%4.4x", hdev->name, opcode);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003410
3411 return hdev->sent_cmd->data + HCI_COMMAND_HDR_SIZE;
3412}
3413
3414/* Send ACL data */
3415static void hci_add_acl_hdr(struct sk_buff *skb, __u16 handle, __u16 flags)
3416{
3417 struct hci_acl_hdr *hdr;
3418 int len = skb->len;
3419
Arnaldo Carvalho de Melobadff6d2007-03-13 13:06:52 -03003420 skb_push(skb, HCI_ACL_HDR_SIZE);
3421 skb_reset_transport_header(skb);
Arnaldo Carvalho de Melo9c702202007-04-25 18:04:18 -07003422 hdr = (struct hci_acl_hdr *)skb_transport_header(skb);
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -07003423 hdr->handle = cpu_to_le16(hci_handle_pack(handle, flags));
3424 hdr->dlen = cpu_to_le16(len);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003425}
3426
Andrei Emeltchenkoee22be72012-09-21 12:30:04 +03003427static void hci_queue_acl(struct hci_chan *chan, struct sk_buff_head *queue,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003428 struct sk_buff *skb, __u16 flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003429{
Andrei Emeltchenkoee22be72012-09-21 12:30:04 +03003430 struct hci_conn *conn = chan->conn;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003431 struct hci_dev *hdev = conn->hdev;
3432 struct sk_buff *list;
3433
Gustavo Padovan087bfd92012-05-11 13:16:11 -03003434 skb->len = skb_headlen(skb);
3435 skb->data_len = 0;
3436
3437 bt_cb(skb)->pkt_type = HCI_ACLDATA_PKT;
Andrei Emeltchenko204a6e52012-10-15 11:58:39 +03003438
3439 switch (hdev->dev_type) {
3440 case HCI_BREDR:
3441 hci_add_acl_hdr(skb, conn->handle, flags);
3442 break;
3443 case HCI_AMP:
3444 hci_add_acl_hdr(skb, chan->handle, flags);
3445 break;
3446 default:
3447 BT_ERR("%s unknown dev_type %d", hdev->name, hdev->dev_type);
3448 return;
3449 }
Gustavo Padovan087bfd92012-05-11 13:16:11 -03003450
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02003451 list = skb_shinfo(skb)->frag_list;
3452 if (!list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003453 /* Non fragmented */
3454 BT_DBG("%s nonfrag skb %p len %d", hdev->name, skb, skb->len);
3455
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003456 skb_queue_tail(queue, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003457 } else {
3458 /* Fragmented */
3459 BT_DBG("%s frag %p len %d", hdev->name, skb, skb->len);
3460
3461 skb_shinfo(skb)->frag_list = NULL;
3462
Jukka Rissanen9cfd5a22014-10-29 10:16:00 +02003463 /* Queue all fragments atomically. We need to use spin_lock_bh
3464 * here because of 6LoWPAN links, as there this function is
3465 * called from softirq and using normal spin lock could cause
3466 * deadlocks.
3467 */
3468 spin_lock_bh(&queue->lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003469
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003470 __skb_queue_tail(queue, skb);
Andrei Emeltchenkoe7021122011-01-03 11:14:36 +02003471
3472 flags &= ~ACL_START;
3473 flags |= ACL_CONT;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003474 do {
3475 skb = list; list = list->next;
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09003476
Marcel Holtmann0d48d932005-08-09 20:30:28 -07003477 bt_cb(skb)->pkt_type = HCI_ACLDATA_PKT;
Andrei Emeltchenkoe7021122011-01-03 11:14:36 +02003478 hci_add_acl_hdr(skb, conn->handle, flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003479
3480 BT_DBG("%s frag %p len %d", hdev->name, skb, skb->len);
3481
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003482 __skb_queue_tail(queue, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003483 } while (list);
3484
Jukka Rissanen9cfd5a22014-10-29 10:16:00 +02003485 spin_unlock_bh(&queue->lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003486 }
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003487}
3488
3489void hci_send_acl(struct hci_chan *chan, struct sk_buff *skb, __u16 flags)
3490{
Andrei Emeltchenkoee22be72012-09-21 12:30:04 +03003491 struct hci_dev *hdev = chan->conn->hdev;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003492
Andrei Emeltchenkof0e09512012-06-11 11:13:09 +03003493 BT_DBG("%s chan %p flags 0x%4.4x", hdev->name, chan, flags);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003494
Andrei Emeltchenkoee22be72012-09-21 12:30:04 +03003495 hci_queue_acl(chan, &chan->data_q, skb, flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003496
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02003497 queue_work(hdev->workqueue, &hdev->tx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003498}
Linus Torvalds1da177e2005-04-16 15:20:36 -07003499
3500/* Send SCO data */
Gustavo F. Padovan0d861d82010-05-01 16:15:35 -03003501void hci_send_sco(struct hci_conn *conn, struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003502{
3503 struct hci_dev *hdev = conn->hdev;
3504 struct hci_sco_hdr hdr;
3505
3506 BT_DBG("%s len %d", hdev->name, skb->len);
3507
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -07003508 hdr.handle = cpu_to_le16(conn->handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003509 hdr.dlen = skb->len;
3510
Arnaldo Carvalho de Melobadff6d2007-03-13 13:06:52 -03003511 skb_push(skb, HCI_SCO_HDR_SIZE);
3512 skb_reset_transport_header(skb);
Arnaldo Carvalho de Melo9c702202007-04-25 18:04:18 -07003513 memcpy(skb_transport_header(skb), &hdr, HCI_SCO_HDR_SIZE);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003514
Marcel Holtmann0d48d932005-08-09 20:30:28 -07003515 bt_cb(skb)->pkt_type = HCI_SCODATA_PKT;
Marcel Holtmannc78ae282009-11-18 01:02:54 +01003516
Linus Torvalds1da177e2005-04-16 15:20:36 -07003517 skb_queue_tail(&conn->data_q, skb);
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02003518 queue_work(hdev->workqueue, &hdev->tx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003519}
Linus Torvalds1da177e2005-04-16 15:20:36 -07003520
3521/* ---- HCI TX task (outgoing data) ---- */
3522
3523/* HCI Connection scheduler */
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003524static struct hci_conn *hci_low_sent(struct hci_dev *hdev, __u8 type,
3525 int *quote)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003526{
3527 struct hci_conn_hash *h = &hdev->conn_hash;
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02003528 struct hci_conn *conn = NULL, *c;
Mikel Astizabc5de82012-04-11 08:48:47 +02003529 unsigned int num = 0, min = ~0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003530
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09003531 /* We don't have to lock device here. Connections are always
Linus Torvalds1da177e2005-04-16 15:20:36 -07003532 * added and removed with TX task disabled. */
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003533
3534 rcu_read_lock();
3535
3536 list_for_each_entry_rcu(c, &h->list, list) {
Marcel Holtmann769be972008-07-14 20:13:49 +02003537 if (c->type != type || skb_queue_empty(&c->data_q))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003538 continue;
Marcel Holtmann769be972008-07-14 20:13:49 +02003539
3540 if (c->state != BT_CONNECTED && c->state != BT_CONFIG)
3541 continue;
3542
Linus Torvalds1da177e2005-04-16 15:20:36 -07003543 num++;
3544
3545 if (c->sent < min) {
3546 min = c->sent;
3547 conn = c;
3548 }
Luiz Augusto von Dentz52087a72011-08-17 16:23:00 +03003549
3550 if (hci_conn_num(hdev, type) == num)
3551 break;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003552 }
3553
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003554 rcu_read_unlock();
3555
Linus Torvalds1da177e2005-04-16 15:20:36 -07003556 if (conn) {
Ville Tervo6ed58ec2011-02-10 22:38:48 -03003557 int cnt, q;
3558
3559 switch (conn->type) {
3560 case ACL_LINK:
3561 cnt = hdev->acl_cnt;
3562 break;
3563 case SCO_LINK:
3564 case ESCO_LINK:
3565 cnt = hdev->sco_cnt;
3566 break;
3567 case LE_LINK:
3568 cnt = hdev->le_mtu ? hdev->le_cnt : hdev->acl_cnt;
3569 break;
3570 default:
3571 cnt = 0;
3572 BT_ERR("Unknown link type");
3573 }
3574
3575 q = cnt / num;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003576 *quote = q ? q : 1;
3577 } else
3578 *quote = 0;
3579
3580 BT_DBG("conn %p quote %d", conn, *quote);
3581 return conn;
3582}
3583
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003584static void hci_link_tx_to(struct hci_dev *hdev, __u8 type)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003585{
3586 struct hci_conn_hash *h = &hdev->conn_hash;
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02003587 struct hci_conn *c;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003588
Ville Tervobae1f5d92011-02-10 22:38:53 -03003589 BT_ERR("%s link tx timeout", hdev->name);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003590
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003591 rcu_read_lock();
3592
Linus Torvalds1da177e2005-04-16 15:20:36 -07003593 /* Kill stalled connections */
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003594 list_for_each_entry_rcu(c, &h->list, list) {
Ville Tervobae1f5d92011-02-10 22:38:53 -03003595 if (c->type == type && c->sent) {
Andrei Emeltchenko6ed93dc2012-09-25 12:49:43 +03003596 BT_ERR("%s killing stalled connection %pMR",
3597 hdev->name, &c->dst);
Andre Guedesbed71742013-01-30 11:50:56 -03003598 hci_disconnect(c, HCI_ERROR_REMOTE_USER_TERM);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003599 }
3600 }
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003601
3602 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003603}
3604
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003605static struct hci_chan *hci_chan_sent(struct hci_dev *hdev, __u8 type,
3606 int *quote)
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003607{
3608 struct hci_conn_hash *h = &hdev->conn_hash;
3609 struct hci_chan *chan = NULL;
Mikel Astizabc5de82012-04-11 08:48:47 +02003610 unsigned int num = 0, min = ~0, cur_prio = 0;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003611 struct hci_conn *conn;
3612 int cnt, q, conn_num = 0;
3613
3614 BT_DBG("%s", hdev->name);
3615
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003616 rcu_read_lock();
3617
3618 list_for_each_entry_rcu(conn, &h->list, list) {
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003619 struct hci_chan *tmp;
3620
3621 if (conn->type != type)
3622 continue;
3623
3624 if (conn->state != BT_CONNECTED && conn->state != BT_CONFIG)
3625 continue;
3626
3627 conn_num++;
3628
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -02003629 list_for_each_entry_rcu(tmp, &conn->chan_list, list) {
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003630 struct sk_buff *skb;
3631
3632 if (skb_queue_empty(&tmp->data_q))
3633 continue;
3634
3635 skb = skb_peek(&tmp->data_q);
3636 if (skb->priority < cur_prio)
3637 continue;
3638
3639 if (skb->priority > cur_prio) {
3640 num = 0;
3641 min = ~0;
3642 cur_prio = skb->priority;
3643 }
3644
3645 num++;
3646
3647 if (conn->sent < min) {
3648 min = conn->sent;
3649 chan = tmp;
3650 }
3651 }
3652
3653 if (hci_conn_num(hdev, type) == conn_num)
3654 break;
3655 }
3656
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003657 rcu_read_unlock();
3658
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003659 if (!chan)
3660 return NULL;
3661
3662 switch (chan->conn->type) {
3663 case ACL_LINK:
3664 cnt = hdev->acl_cnt;
3665 break;
Andrei Emeltchenkobd1eb662012-10-10 17:38:30 +03003666 case AMP_LINK:
3667 cnt = hdev->block_cnt;
3668 break;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003669 case SCO_LINK:
3670 case ESCO_LINK:
3671 cnt = hdev->sco_cnt;
3672 break;
3673 case LE_LINK:
3674 cnt = hdev->le_mtu ? hdev->le_cnt : hdev->acl_cnt;
3675 break;
3676 default:
3677 cnt = 0;
3678 BT_ERR("Unknown link type");
3679 }
3680
3681 q = cnt / num;
3682 *quote = q ? q : 1;
3683 BT_DBG("chan %p quote %d", chan, *quote);
3684 return chan;
3685}
3686
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003687static void hci_prio_recalculate(struct hci_dev *hdev, __u8 type)
3688{
3689 struct hci_conn_hash *h = &hdev->conn_hash;
3690 struct hci_conn *conn;
3691 int num = 0;
3692
3693 BT_DBG("%s", hdev->name);
3694
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003695 rcu_read_lock();
3696
3697 list_for_each_entry_rcu(conn, &h->list, list) {
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003698 struct hci_chan *chan;
3699
3700 if (conn->type != type)
3701 continue;
3702
3703 if (conn->state != BT_CONNECTED && conn->state != BT_CONFIG)
3704 continue;
3705
3706 num++;
3707
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -02003708 list_for_each_entry_rcu(chan, &conn->chan_list, list) {
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003709 struct sk_buff *skb;
3710
3711 if (chan->sent) {
3712 chan->sent = 0;
3713 continue;
3714 }
3715
3716 if (skb_queue_empty(&chan->data_q))
3717 continue;
3718
3719 skb = skb_peek(&chan->data_q);
3720 if (skb->priority >= HCI_PRIO_MAX - 1)
3721 continue;
3722
3723 skb->priority = HCI_PRIO_MAX - 1;
3724
3725 BT_DBG("chan %p skb %p promoted to %d", chan, skb,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003726 skb->priority);
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003727 }
3728
3729 if (hci_conn_num(hdev, type) == num)
3730 break;
3731 }
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02003732
3733 rcu_read_unlock();
3734
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003735}
3736
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003737static inline int __get_blocks(struct hci_dev *hdev, struct sk_buff *skb)
3738{
3739 /* Calculate count of blocks used by this packet */
3740 return DIV_ROUND_UP(skb->len - HCI_ACL_HDR_SIZE, hdev->block_len);
3741}
3742
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003743static void __check_timeout(struct hci_dev *hdev, unsigned int cnt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003744{
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07003745 if (!hci_dev_test_flag(hdev, HCI_UNCONFIGURED)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003746 /* ACL tx timeout must be longer than maximum
3747 * link supervision timeout (40.9 seconds) */
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02003748 if (!cnt && time_after(jiffies, hdev->acl_last_tx +
Andrei Emeltchenko5f246e82012-06-11 11:13:07 +03003749 HCI_ACL_TX_TIMEOUT))
Ville Tervobae1f5d92011-02-10 22:38:53 -03003750 hci_link_tx_to(hdev, ACL_LINK);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003751 }
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02003752}
Linus Torvalds1da177e2005-04-16 15:20:36 -07003753
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003754static void hci_sched_acl_pkt(struct hci_dev *hdev)
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02003755{
3756 unsigned int cnt = hdev->acl_cnt;
3757 struct hci_chan *chan;
3758 struct sk_buff *skb;
3759 int quote;
3760
3761 __check_timeout(hdev, cnt);
Marcel Holtmann04837f62006-07-03 10:02:33 +02003762
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003763 while (hdev->acl_cnt &&
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003764 (chan = hci_chan_sent(hdev, ACL_LINK, &quote))) {
Luiz Augusto von Dentzec1cce22011-11-02 15:52:02 +02003765 u32 priority = (skb_peek(&chan->data_q))->priority;
3766 while (quote-- && (skb = skb_peek(&chan->data_q))) {
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003767 BT_DBG("chan %p skb %p len %d priority %u", chan, skb,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003768 skb->len, skb->priority);
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003769
Luiz Augusto von Dentzec1cce22011-11-02 15:52:02 +02003770 /* Stop if priority has changed */
3771 if (skb->priority < priority)
3772 break;
3773
3774 skb = skb_dequeue(&chan->data_q);
3775
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003776 hci_conn_enter_active_mode(chan->conn,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03003777 bt_cb(skb)->force_active);
Marcel Holtmann04837f62006-07-03 10:02:33 +02003778
Marcel Holtmann57d17d72013-10-10 14:54:17 -07003779 hci_send_frame(hdev, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003780 hdev->acl_last_tx = jiffies;
3781
3782 hdev->acl_cnt--;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003783 chan->sent++;
3784 chan->conn->sent++;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003785 }
3786 }
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003787
3788 if (cnt != hdev->acl_cnt)
3789 hci_prio_recalculate(hdev, ACL_LINK);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003790}
3791
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003792static void hci_sched_acl_blk(struct hci_dev *hdev)
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003793{
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02003794 unsigned int cnt = hdev->block_cnt;
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003795 struct hci_chan *chan;
3796 struct sk_buff *skb;
3797 int quote;
Andrei Emeltchenkobd1eb662012-10-10 17:38:30 +03003798 u8 type;
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003799
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02003800 __check_timeout(hdev, cnt);
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003801
Andrei Emeltchenkobd1eb662012-10-10 17:38:30 +03003802 BT_DBG("%s", hdev->name);
3803
3804 if (hdev->dev_type == HCI_AMP)
3805 type = AMP_LINK;
3806 else
3807 type = ACL_LINK;
3808
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003809 while (hdev->block_cnt > 0 &&
Andrei Emeltchenkobd1eb662012-10-10 17:38:30 +03003810 (chan = hci_chan_sent(hdev, type, &quote))) {
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003811 u32 priority = (skb_peek(&chan->data_q))->priority;
3812 while (quote > 0 && (skb = skb_peek(&chan->data_q))) {
3813 int blocks;
3814
3815 BT_DBG("chan %p skb %p len %d priority %u", chan, skb,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003816 skb->len, skb->priority);
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003817
3818 /* Stop if priority has changed */
3819 if (skb->priority < priority)
3820 break;
3821
3822 skb = skb_dequeue(&chan->data_q);
3823
3824 blocks = __get_blocks(hdev, skb);
3825 if (blocks > hdev->block_cnt)
3826 return;
3827
3828 hci_conn_enter_active_mode(chan->conn,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003829 bt_cb(skb)->force_active);
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003830
Marcel Holtmann57d17d72013-10-10 14:54:17 -07003831 hci_send_frame(hdev, skb);
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003832 hdev->acl_last_tx = jiffies;
3833
3834 hdev->block_cnt -= blocks;
3835 quote -= blocks;
3836
3837 chan->sent += blocks;
3838 chan->conn->sent += blocks;
3839 }
3840 }
3841
3842 if (cnt != hdev->block_cnt)
Andrei Emeltchenkobd1eb662012-10-10 17:38:30 +03003843 hci_prio_recalculate(hdev, type);
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003844}
3845
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003846static void hci_sched_acl(struct hci_dev *hdev)
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003847{
3848 BT_DBG("%s", hdev->name);
3849
Andrei Emeltchenkobd1eb662012-10-10 17:38:30 +03003850 /* No ACL link over BR/EDR controller */
3851 if (!hci_conn_num(hdev, ACL_LINK) && hdev->dev_type == HCI_BREDR)
3852 return;
3853
3854 /* No AMP link over AMP controller */
3855 if (!hci_conn_num(hdev, AMP_LINK) && hdev->dev_type == HCI_AMP)
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02003856 return;
3857
3858 switch (hdev->flow_ctl_mode) {
3859 case HCI_FLOW_CTL_MODE_PACKET_BASED:
3860 hci_sched_acl_pkt(hdev);
3861 break;
3862
3863 case HCI_FLOW_CTL_MODE_BLOCK_BASED:
3864 hci_sched_acl_blk(hdev);
3865 break;
3866 }
3867}
3868
Linus Torvalds1da177e2005-04-16 15:20:36 -07003869/* Schedule SCO */
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003870static void hci_sched_sco(struct hci_dev *hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003871{
3872 struct hci_conn *conn;
3873 struct sk_buff *skb;
3874 int quote;
3875
3876 BT_DBG("%s", hdev->name);
3877
Luiz Augusto von Dentz52087a72011-08-17 16:23:00 +03003878 if (!hci_conn_num(hdev, SCO_LINK))
3879 return;
3880
Linus Torvalds1da177e2005-04-16 15:20:36 -07003881 while (hdev->sco_cnt && (conn = hci_low_sent(hdev, SCO_LINK, &quote))) {
3882 while (quote-- && (skb = skb_dequeue(&conn->data_q))) {
3883 BT_DBG("skb %p len %d", skb, skb->len);
Marcel Holtmann57d17d72013-10-10 14:54:17 -07003884 hci_send_frame(hdev, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003885
3886 conn->sent++;
3887 if (conn->sent == ~0)
3888 conn->sent = 0;
3889 }
3890 }
3891}
3892
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003893static void hci_sched_esco(struct hci_dev *hdev)
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +02003894{
3895 struct hci_conn *conn;
3896 struct sk_buff *skb;
3897 int quote;
3898
3899 BT_DBG("%s", hdev->name);
3900
Luiz Augusto von Dentz52087a72011-08-17 16:23:00 +03003901 if (!hci_conn_num(hdev, ESCO_LINK))
3902 return;
3903
Gustavo Padovan8fc9ced2012-05-23 04:04:21 -03003904 while (hdev->sco_cnt && (conn = hci_low_sent(hdev, ESCO_LINK,
3905 &quote))) {
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +02003906 while (quote-- && (skb = skb_dequeue(&conn->data_q))) {
3907 BT_DBG("skb %p len %d", skb, skb->len);
Marcel Holtmann57d17d72013-10-10 14:54:17 -07003908 hci_send_frame(hdev, skb);
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +02003909
3910 conn->sent++;
3911 if (conn->sent == ~0)
3912 conn->sent = 0;
3913 }
3914 }
3915}
3916
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003917static void hci_sched_le(struct hci_dev *hdev)
Ville Tervo6ed58ec2011-02-10 22:38:48 -03003918{
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003919 struct hci_chan *chan;
Ville Tervo6ed58ec2011-02-10 22:38:48 -03003920 struct sk_buff *skb;
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003921 int quote, cnt, tmp;
Ville Tervo6ed58ec2011-02-10 22:38:48 -03003922
3923 BT_DBG("%s", hdev->name);
3924
Luiz Augusto von Dentz52087a72011-08-17 16:23:00 +03003925 if (!hci_conn_num(hdev, LE_LINK))
3926 return;
3927
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07003928 if (!hci_dev_test_flag(hdev, HCI_UNCONFIGURED)) {
Ville Tervo6ed58ec2011-02-10 22:38:48 -03003929 /* LE tx timeout must be longer than maximum
3930 * link supervision timeout (40.9 seconds) */
Ville Tervobae1f5d92011-02-10 22:38:53 -03003931 if (!hdev->le_cnt && hdev->le_pkts &&
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003932 time_after(jiffies, hdev->le_last_tx + HZ * 45))
Ville Tervobae1f5d92011-02-10 22:38:53 -03003933 hci_link_tx_to(hdev, LE_LINK);
Ville Tervo6ed58ec2011-02-10 22:38:48 -03003934 }
3935
3936 cnt = hdev->le_pkts ? hdev->le_cnt : hdev->acl_cnt;
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003937 tmp = cnt;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003938 while (cnt && (chan = hci_chan_sent(hdev, LE_LINK, &quote))) {
Luiz Augusto von Dentzec1cce22011-11-02 15:52:02 +02003939 u32 priority = (skb_peek(&chan->data_q))->priority;
3940 while (quote-- && (skb = skb_peek(&chan->data_q))) {
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003941 BT_DBG("chan %p skb %p len %d priority %u", chan, skb,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003942 skb->len, skb->priority);
Ville Tervo6ed58ec2011-02-10 22:38:48 -03003943
Luiz Augusto von Dentzec1cce22011-11-02 15:52:02 +02003944 /* Stop if priority has changed */
3945 if (skb->priority < priority)
3946 break;
3947
3948 skb = skb_dequeue(&chan->data_q);
3949
Marcel Holtmann57d17d72013-10-10 14:54:17 -07003950 hci_send_frame(hdev, skb);
Ville Tervo6ed58ec2011-02-10 22:38:48 -03003951 hdev->le_last_tx = jiffies;
3952
3953 cnt--;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003954 chan->sent++;
3955 chan->conn->sent++;
Ville Tervo6ed58ec2011-02-10 22:38:48 -03003956 }
3957 }
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02003958
Ville Tervo6ed58ec2011-02-10 22:38:48 -03003959 if (hdev->le_pkts)
3960 hdev->le_cnt = cnt;
3961 else
3962 hdev->acl_cnt = cnt;
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02003963
3964 if (cnt != tmp)
3965 hci_prio_recalculate(hdev, LE_LINK);
Ville Tervo6ed58ec2011-02-10 22:38:48 -03003966}
3967
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02003968static void hci_tx_work(struct work_struct *work)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003969{
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02003970 struct hci_dev *hdev = container_of(work, struct hci_dev, tx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003971 struct sk_buff *skb;
3972
Ville Tervo6ed58ec2011-02-10 22:38:48 -03003973 BT_DBG("%s acl %d sco %d le %d", hdev->name, hdev->acl_cnt,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03003974 hdev->sco_cnt, hdev->le_cnt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003975
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07003976 if (!hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Marcel Holtmann52de5992013-09-03 18:08:38 -07003977 /* Schedule queues and send stuff to HCI driver */
3978 hci_sched_acl(hdev);
3979 hci_sched_sco(hdev);
3980 hci_sched_esco(hdev);
3981 hci_sched_le(hdev);
3982 }
Ville Tervo6ed58ec2011-02-10 22:38:48 -03003983
Linus Torvalds1da177e2005-04-16 15:20:36 -07003984 /* Send next queued raw (unknown type) packet */
3985 while ((skb = skb_dequeue(&hdev->raw_q)))
Marcel Holtmann57d17d72013-10-10 14:54:17 -07003986 hci_send_frame(hdev, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003987}
3988
Lucas De Marchi25985ed2011-03-30 22:57:33 -03003989/* ----- HCI RX task (incoming data processing) ----- */
Linus Torvalds1da177e2005-04-16 15:20:36 -07003990
3991/* ACL data packet */
Gustavo Padovan6039aa732012-05-23 04:04:18 -03003992static void hci_acldata_packet(struct hci_dev *hdev, struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003993{
3994 struct hci_acl_hdr *hdr = (void *) skb->data;
3995 struct hci_conn *conn;
3996 __u16 handle, flags;
3997
3998 skb_pull(skb, HCI_ACL_HDR_SIZE);
3999
4000 handle = __le16_to_cpu(hdr->handle);
4001 flags = hci_flags(handle);
4002 handle = hci_handle(handle);
4003
Andrei Emeltchenkof0e09512012-06-11 11:13:09 +03004004 BT_DBG("%s len %d handle 0x%4.4x flags 0x%4.4x", hdev->name, skb->len,
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03004005 handle, flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004006
4007 hdev->stat.acl_rx++;
4008
4009 hci_dev_lock(hdev);
4010 conn = hci_conn_hash_lookup_handle(hdev, handle);
4011 hci_dev_unlock(hdev);
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09004012
Linus Torvalds1da177e2005-04-16 15:20:36 -07004013 if (conn) {
Mat Martineau65983fc2011-12-13 15:06:02 -08004014 hci_conn_enter_active_mode(conn, BT_POWER_FORCE_ACTIVE_OFF);
Marcel Holtmann04837f62006-07-03 10:02:33 +02004015
Linus Torvalds1da177e2005-04-16 15:20:36 -07004016 /* Send to upper protocol */
Ulisses Furquim686ebf22011-12-21 10:11:33 -02004017 l2cap_recv_acldata(conn, skb, flags);
4018 return;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004019 } else {
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09004020 BT_ERR("%s ACL packet for unknown connection handle %d",
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03004021 hdev->name, handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004022 }
4023
4024 kfree_skb(skb);
4025}
4026
4027/* SCO data packet */
Gustavo Padovan6039aa732012-05-23 04:04:18 -03004028static void hci_scodata_packet(struct hci_dev *hdev, struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004029{
4030 struct hci_sco_hdr *hdr = (void *) skb->data;
4031 struct hci_conn *conn;
4032 __u16 handle;
4033
4034 skb_pull(skb, HCI_SCO_HDR_SIZE);
4035
4036 handle = __le16_to_cpu(hdr->handle);
4037
Andrei Emeltchenkof0e09512012-06-11 11:13:09 +03004038 BT_DBG("%s len %d handle 0x%4.4x", hdev->name, skb->len, handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004039
4040 hdev->stat.sco_rx++;
4041
4042 hci_dev_lock(hdev);
4043 conn = hci_conn_hash_lookup_handle(hdev, handle);
4044 hci_dev_unlock(hdev);
4045
4046 if (conn) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004047 /* Send to upper protocol */
Ulisses Furquim686ebf22011-12-21 10:11:33 -02004048 sco_recv_scodata(conn, skb);
4049 return;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004050 } else {
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09004051 BT_ERR("%s SCO packet for unknown connection handle %d",
Gustavo Padovana8c5fb12012-05-17 00:36:26 -03004052 hdev->name, handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004053 }
4054
4055 kfree_skb(skb);
4056}
4057
Johan Hedberg9238f362013-03-05 20:37:48 +02004058static bool hci_req_is_complete(struct hci_dev *hdev)
4059{
4060 struct sk_buff *skb;
4061
4062 skb = skb_peek(&hdev->cmd_q);
4063 if (!skb)
4064 return true;
4065
Johan Hedbergdb6e3e82015-03-30 23:21:02 +03004066 return bt_cb(skb)->req.start;
Johan Hedberg9238f362013-03-05 20:37:48 +02004067}
4068
Johan Hedberg42c6b122013-03-05 20:37:49 +02004069static void hci_resend_last(struct hci_dev *hdev)
4070{
4071 struct hci_command_hdr *sent;
4072 struct sk_buff *skb;
4073 u16 opcode;
4074
4075 if (!hdev->sent_cmd)
4076 return;
4077
4078 sent = (void *) hdev->sent_cmd->data;
4079 opcode = __le16_to_cpu(sent->opcode);
4080 if (opcode == HCI_OP_RESET)
4081 return;
4082
4083 skb = skb_clone(hdev->sent_cmd, GFP_KERNEL);
4084 if (!skb)
4085 return;
4086
4087 skb_queue_head(&hdev->cmd_q, skb);
4088 queue_work(hdev->workqueue, &hdev->cmd_work);
4089}
4090
Johan Hedberge62144872015-04-02 13:41:08 +03004091void hci_req_cmd_complete(struct hci_dev *hdev, u16 opcode, u8 status,
4092 hci_req_complete_t *req_complete,
4093 hci_req_complete_skb_t *req_complete_skb)
Johan Hedberg9238f362013-03-05 20:37:48 +02004094{
Johan Hedberg9238f362013-03-05 20:37:48 +02004095 struct sk_buff *skb;
4096 unsigned long flags;
4097
4098 BT_DBG("opcode 0x%04x status 0x%02x", opcode, status);
4099
Johan Hedberg42c6b122013-03-05 20:37:49 +02004100 /* If the completed command doesn't match the last one that was
4101 * sent we need to do special handling of it.
Johan Hedberg9238f362013-03-05 20:37:48 +02004102 */
Johan Hedberg42c6b122013-03-05 20:37:49 +02004103 if (!hci_sent_cmd_data(hdev, opcode)) {
4104 /* Some CSR based controllers generate a spontaneous
4105 * reset complete event during init and any pending
4106 * command will never be completed. In such a case we
4107 * need to resend whatever was the last sent
4108 * command.
4109 */
4110 if (test_bit(HCI_INIT, &hdev->flags) && opcode == HCI_OP_RESET)
4111 hci_resend_last(hdev);
4112
Johan Hedberg9238f362013-03-05 20:37:48 +02004113 return;
Johan Hedberg42c6b122013-03-05 20:37:49 +02004114 }
Johan Hedberg9238f362013-03-05 20:37:48 +02004115
4116 /* If the command succeeded and there's still more commands in
4117 * this request the request is not yet complete.
4118 */
4119 if (!status && !hci_req_is_complete(hdev))
4120 return;
4121
4122 /* If this was the last command in a request the complete
4123 * callback would be found in hdev->sent_cmd instead of the
4124 * command queue (hdev->cmd_q).
4125 */
Johan Hedberge62144872015-04-02 13:41:08 +03004126 if (bt_cb(hdev->sent_cmd)->req.complete) {
4127 *req_complete = bt_cb(hdev->sent_cmd)->req.complete;
4128 return;
4129 }
Johan Hedberg53e21fb2013-07-27 14:11:14 -05004130
Johan Hedberge62144872015-04-02 13:41:08 +03004131 if (bt_cb(hdev->sent_cmd)->req.complete_skb) {
4132 *req_complete_skb = bt_cb(hdev->sent_cmd)->req.complete_skb;
4133 return;
Johan Hedberg9238f362013-03-05 20:37:48 +02004134 }
4135
4136 /* Remove all pending commands belonging to this request */
4137 spin_lock_irqsave(&hdev->cmd_q.lock, flags);
4138 while ((skb = __skb_dequeue(&hdev->cmd_q))) {
Johan Hedbergdb6e3e82015-03-30 23:21:02 +03004139 if (bt_cb(skb)->req.start) {
Johan Hedberg9238f362013-03-05 20:37:48 +02004140 __skb_queue_head(&hdev->cmd_q, skb);
4141 break;
4142 }
4143
Johan Hedberge62144872015-04-02 13:41:08 +03004144 *req_complete = bt_cb(skb)->req.complete;
4145 *req_complete_skb = bt_cb(skb)->req.complete_skb;
Johan Hedberg9238f362013-03-05 20:37:48 +02004146 kfree_skb(skb);
4147 }
4148 spin_unlock_irqrestore(&hdev->cmd_q.lock, flags);
Johan Hedberg9238f362013-03-05 20:37:48 +02004149}
4150
Marcel Holtmannb78752c2010-08-08 23:06:53 -04004151static void hci_rx_work(struct work_struct *work)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004152{
Marcel Holtmannb78752c2010-08-08 23:06:53 -04004153 struct hci_dev *hdev = container_of(work, struct hci_dev, rx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004154 struct sk_buff *skb;
4155
4156 BT_DBG("%s", hdev->name);
4157
Linus Torvalds1da177e2005-04-16 15:20:36 -07004158 while ((skb = skb_dequeue(&hdev->rx_q))) {
Marcel Holtmanncd82e612012-02-20 20:34:38 +01004159 /* Send copy to monitor */
4160 hci_send_to_monitor(hdev, skb);
4161
Linus Torvalds1da177e2005-04-16 15:20:36 -07004162 if (atomic_read(&hdev->promisc)) {
4163 /* Send copy to the sockets */
Marcel Holtmann470fe1b2012-02-20 14:50:30 +01004164 hci_send_to_sock(hdev, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004165 }
4166
Marcel Holtmannd7a5a112015-03-13 02:11:00 -07004167 if (hci_dev_test_flag(hdev, HCI_USER_CHANNEL)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004168 kfree_skb(skb);
4169 continue;
4170 }
4171
4172 if (test_bit(HCI_INIT, &hdev->flags)) {
4173 /* Don't process data packets in this states. */
Marcel Holtmann0d48d932005-08-09 20:30:28 -07004174 switch (bt_cb(skb)->pkt_type) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004175 case HCI_ACLDATA_PKT:
4176 case HCI_SCODATA_PKT:
4177 kfree_skb(skb);
4178 continue;
Stephen Hemminger3ff50b72007-04-20 17:09:22 -07004179 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004180 }
4181
4182 /* Process frame */
Marcel Holtmann0d48d932005-08-09 20:30:28 -07004183 switch (bt_cb(skb)->pkt_type) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004184 case HCI_EVENT_PKT:
Marcel Holtmannb78752c2010-08-08 23:06:53 -04004185 BT_DBG("%s Event packet", hdev->name);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004186 hci_event_packet(hdev, skb);
4187 break;
4188
4189 case HCI_ACLDATA_PKT:
4190 BT_DBG("%s ACL data packet", hdev->name);
4191 hci_acldata_packet(hdev, skb);
4192 break;
4193
4194 case HCI_SCODATA_PKT:
4195 BT_DBG("%s SCO data packet", hdev->name);
4196 hci_scodata_packet(hdev, skb);
4197 break;
4198
4199 default:
4200 kfree_skb(skb);
4201 break;
4202 }
4203 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004204}
4205
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02004206static void hci_cmd_work(struct work_struct *work)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004207{
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02004208 struct hci_dev *hdev = container_of(work, struct hci_dev, cmd_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004209 struct sk_buff *skb;
4210
Andrei Emeltchenko21047862012-07-10 15:27:47 +03004211 BT_DBG("%s cmd_cnt %d cmd queued %d", hdev->name,
4212 atomic_read(&hdev->cmd_cnt), skb_queue_len(&hdev->cmd_q));
Linus Torvalds1da177e2005-04-16 15:20:36 -07004213
Linus Torvalds1da177e2005-04-16 15:20:36 -07004214 /* Send queued commands */
Andrei Emeltchenko5a08ecc2011-01-11 17:20:20 +02004215 if (atomic_read(&hdev->cmd_cnt)) {
4216 skb = skb_dequeue(&hdev->cmd_q);
4217 if (!skb)
4218 return;
4219
Wei Yongjun7585b972009-02-25 18:29:52 +08004220 kfree_skb(hdev->sent_cmd);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004221
Marcel Holtmanna675d7f2013-09-03 18:11:07 -07004222 hdev->sent_cmd = skb_clone(skb, GFP_KERNEL);
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02004223 if (hdev->sent_cmd) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004224 atomic_dec(&hdev->cmd_cnt);
Marcel Holtmann57d17d72013-10-10 14:54:17 -07004225 hci_send_frame(hdev, skb);
Szymon Janc7bdb8a52011-07-26 22:46:54 +02004226 if (test_bit(HCI_RESET, &hdev->flags))
Marcel Holtmann65cc2b42014-06-16 12:30:56 +02004227 cancel_delayed_work(&hdev->cmd_timer);
Szymon Janc7bdb8a52011-07-26 22:46:54 +02004228 else
Marcel Holtmann65cc2b42014-06-16 12:30:56 +02004229 schedule_delayed_work(&hdev->cmd_timer,
4230 HCI_CMD_TIMEOUT);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004231 } else {
4232 skb_queue_head(&hdev->cmd_q, skb);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02004233 queue_work(hdev->workqueue, &hdev->cmd_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004234 }
4235 }
4236}