blob: 645b8500d02fbbc18eaf7f25565e981a5748032a [file] [log] [blame]
Cindy H. Kao4613e722011-05-06 10:40:15 -07001/******************************************************************************
2 *
3 * This file is provided under a dual BSD/GPLv2 license. When using or
4 * redistributing this file, you may do so under either license.
5 *
6 * GPL LICENSE SUMMARY
7 *
Wey-Yi Guy4e318262011-12-27 11:21:32 -08008 * Copyright(c) 2010 - 2012 Intel Corporation. All rights reserved.
Cindy H. Kao4613e722011-05-06 10:40:15 -07009 *
10 * This program is free software; you can redistribute it and/or modify
11 * it under the terms of version 2 of the GNU General Public License as
12 * published by the Free Software Foundation.
13 *
14 * This program is distributed in the hope that it will be useful, but
15 * WITHOUT ANY WARRANTY; without even the implied warranty of
16 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
17 * General Public License for more details.
18 *
19 * You should have received a copy of the GNU General Public License
20 * along with this program; if not, write to the Free Software
21 * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110,
22 * USA
23 *
24 * The full GNU General Public License is included in this distribution
25 * in the file called LICENSE.GPL.
26 *
27 * Contact Information:
28 * Intel Linux Wireless <ilw@linux.intel.com>
29 * Intel Corporation, 5200 N.E. Elam Young Parkway, Hillsboro, OR 97124-6497
30 *
31 * BSD LICENSE
32 *
Wey-Yi Guy4e318262011-12-27 11:21:32 -080033 * Copyright(c) 2010 - 2012 Intel Corporation. All rights reserved.
Cindy H. Kao4613e722011-05-06 10:40:15 -070034 * All rights reserved.
35 *
36 * Redistribution and use in source and binary forms, with or without
37 * modification, are permitted provided that the following conditions
38 * are met:
39 *
40 * * Redistributions of source code must retain the above copyright
41 * notice, this list of conditions and the following disclaimer.
42 * * Redistributions in binary form must reproduce the above copyright
43 * notice, this list of conditions and the following disclaimer in
44 * the documentation and/or other materials provided with the
45 * distribution.
46 * * Neither the name Intel Corporation nor the names of its
47 * contributors may be used to endorse or promote products derived
48 * from this software without specific prior written permission.
49 *
50 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
51 * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
52 * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR
53 * A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT
54 * OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
55 * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
56 * LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
57 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
58 * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
59 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE
60 * OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
61 *
62 *****************************************************************************/
63#include <linux/init.h>
64#include <linux/kernel.h>
65#include <linux/module.h>
Emmanuel Grumbach522376d2011-09-06 09:31:19 -070066#include <linux/dma-mapping.h>
Cindy H. Kao4613e722011-05-06 10:40:15 -070067#include <net/net_namespace.h>
68#include <linux/netdevice.h>
69#include <net/cfg80211.h>
70#include <net/mac80211.h>
71#include <net/netlink.h>
72
Cindy H. Kao4613e722011-05-06 10:40:15 -070073#include "iwl-dev.h"
74#include "iwl-core.h"
75#include "iwl-debug.h"
Cindy H. Kao4613e722011-05-06 10:40:15 -070076#include "iwl-io.h"
77#include "iwl-agn.h"
78#include "iwl-testmode.h"
Emmanuel Grumbachbdfbf092011-07-08 08:46:16 -070079#include "iwl-trans.h"
Amit Beka6fe7dd02012-01-25 09:19:24 +020080#include "iwl-fh.h"
Johannes Bergeae63b82012-03-06 13:31:06 -080081#include "iwl-prph.h"
Cindy H. Kao4613e722011-05-06 10:40:15 -070082
Amit Beka6c55f5e2012-01-25 13:30:27 +020083
84/* Periphery registers absolute lower bound. This is used in order to
85 * differentiate registery access through HBUS_TARG_PRPH_* and
86 * HBUS_TARG_MEM_* accesses.
87 */
88#define IWL_TM_ABS_PRPH_START (0xA00000)
89
Cindy H. Kao4613e722011-05-06 10:40:15 -070090/* The TLVs used in the gnl message policy between the kernel module and
91 * user space application. iwl_testmode_gnl_msg_policy is to be carried
92 * through the NL80211_CMD_TESTMODE channel regulated by nl80211.
93 * See iwl-testmode.h
94 */
95static
96struct nla_policy iwl_testmode_gnl_msg_policy[IWL_TM_ATTR_MAX] = {
97 [IWL_TM_ATTR_COMMAND] = { .type = NLA_U32, },
98
99 [IWL_TM_ATTR_UCODE_CMD_ID] = { .type = NLA_U8, },
100 [IWL_TM_ATTR_UCODE_CMD_DATA] = { .type = NLA_UNSPEC, },
101
102 [IWL_TM_ATTR_REG_OFFSET] = { .type = NLA_U32, },
103 [IWL_TM_ATTR_REG_VALUE8] = { .type = NLA_U8, },
104 [IWL_TM_ATTR_REG_VALUE32] = { .type = NLA_U32, },
105
106 [IWL_TM_ATTR_SYNC_RSP] = { .type = NLA_UNSPEC, },
107 [IWL_TM_ATTR_UCODE_RX_PKT] = { .type = NLA_UNSPEC, },
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700108
Wey-Yi Guy4babc352011-05-03 18:05:12 -0700109 [IWL_TM_ATTR_EEPROM] = { .type = NLA_UNSPEC, },
110
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700111 [IWL_TM_ATTR_TRACE_ADDR] = { .type = NLA_UNSPEC, },
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -0700112 [IWL_TM_ATTR_TRACE_DUMP] = { .type = NLA_UNSPEC, },
Wey-Yi Guy49b72102011-05-30 10:29:37 -0700113 [IWL_TM_ATTR_TRACE_SIZE] = { .type = NLA_U32, },
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700114
Wey-Yi Guy64898542011-05-03 18:05:13 -0700115 [IWL_TM_ATTR_FIXRATE] = { .type = NLA_U32, },
Wey-Yi Guy49b72102011-05-30 10:29:37 -0700116
Wey-Yi Guye98a1932011-07-08 08:46:26 -0700117 [IWL_TM_ATTR_UCODE_OWNER] = { .type = NLA_U8, },
Hsu, Kenny306713f2011-11-22 23:03:39 -0800118
Amit Beka6c55f5e2012-01-25 13:30:27 +0200119 [IWL_TM_ATTR_MEM_ADDR] = { .type = NLA_U32, },
120 [IWL_TM_ATTR_BUFFER_SIZE] = { .type = NLA_U32, },
121 [IWL_TM_ATTR_BUFFER_DUMP] = { .type = NLA_UNSPEC, },
Hsu, Kennye1a38fe2011-11-28 00:55:38 -0800122
123 [IWL_TM_ATTR_FW_VERSION] = { .type = NLA_U32, },
Hsu, Kenny0bec12b2011-12-01 01:12:50 -0800124 [IWL_TM_ATTR_DEVICE_ID] = { .type = NLA_U32, },
Kenny Hsuaca9b5f2011-12-24 12:12:12 +0800125 [IWL_TM_ATTR_FW_TYPE] = { .type = NLA_U32, },
126 [IWL_TM_ATTR_FW_INST_SIZE] = { .type = NLA_U32, },
127 [IWL_TM_ATTR_FW_DATA_SIZE] = { .type = NLA_U32, },
Amit Beka0aef8dd2012-03-07 09:52:29 -0800128
129 [IWL_TM_ATTR_ENABLE_NOTIFICATION] = {.type = NLA_FLAG, },
Cindy H. Kao4613e722011-05-06 10:40:15 -0700130};
131
132/*
133 * See the struct iwl_rx_packet in iwl-commands.h for the format of the
134 * received events from the device
135 */
Johannes Berg48a2d662012-03-05 11:24:39 -0800136static inline int get_event_length(struct iwl_rx_cmd_buffer *rxb)
Cindy H. Kao4613e722011-05-06 10:40:15 -0700137{
138 struct iwl_rx_packet *pkt = rxb_addr(rxb);
139 if (pkt)
140 return le32_to_cpu(pkt->len_n_flags) & FH_RSCSR_FRAME_SIZE_MSK;
141 else
142 return 0;
143}
144
145
146/*
147 * This function multicasts the spontaneous messages from the device to the
148 * user space. It is invoked whenever there is a received messages
149 * from the device. This function is called within the ISR of the rx handlers
150 * in iwlagn driver.
151 *
152 * The parsing of the message content is left to the user space application,
153 * The message content is treated as unattacked raw data and is encapsulated
154 * with IWL_TM_ATTR_UCODE_RX_PKT multicasting to the user space.
155 *
156 * @priv: the instance of iwlwifi device
157 * @rxb: pointer to rx data content received by the ISR
158 *
159 * See the message policies and TLVs in iwl_testmode_gnl_msg_policy[].
160 * For the messages multicasting to the user application, the mandatory
161 * TLV fields are :
162 * IWL_TM_ATTR_COMMAND must be IWL_TM_CMD_DEV2APP_UCODE_RX_PKT
163 * IWL_TM_ATTR_UCODE_RX_PKT for carrying the message content
164 */
165
166static void iwl_testmode_ucode_rx_pkt(struct iwl_priv *priv,
Johannes Berg48a2d662012-03-05 11:24:39 -0800167 struct iwl_rx_cmd_buffer *rxb)
Cindy H. Kao4613e722011-05-06 10:40:15 -0700168{
169 struct ieee80211_hw *hw = priv->hw;
170 struct sk_buff *skb;
171 void *data;
172 int length;
173
174 data = (void *)rxb_addr(rxb);
175 length = get_event_length(rxb);
176
177 if (!data || length == 0)
178 return;
179
180 skb = cfg80211_testmode_alloc_event_skb(hw->wiphy, 20 + length,
181 GFP_ATOMIC);
182 if (skb == NULL) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800183 IWL_ERR(priv,
Cindy H. Kao4613e722011-05-06 10:40:15 -0700184 "Run out of memory for messages to user space ?\n");
185 return;
186 }
187 NLA_PUT_U32(skb, IWL_TM_ATTR_COMMAND, IWL_TM_CMD_DEV2APP_UCODE_RX_PKT);
Amit Beka8e81f652012-03-07 09:52:30 -0800188 /* the length doesn't include len_n_flags field, so add it manually */
189 NLA_PUT(skb, IWL_TM_ATTR_UCODE_RX_PKT, length + sizeof(__le32), data);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700190 cfg80211_testmode_event(skb, GFP_ATOMIC);
191 return;
192
193nla_put_failure:
194 kfree_skb(skb);
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800195 IWL_ERR(priv, "Ouch, overran buffer, check allocation!\n");
Cindy H. Kao4613e722011-05-06 10:40:15 -0700196}
197
198void iwl_testmode_init(struct iwl_priv *priv)
199{
Amit Beka0aef8dd2012-03-07 09:52:29 -0800200 priv->pre_rx_handler = NULL;
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700201 priv->testmode_trace.trace_enabled = false;
Amit Beka6c55f5e2012-01-25 13:30:27 +0200202 priv->testmode_mem.read_in_progress = false;
Hsu, Kenny306713f2011-11-22 23:03:39 -0800203}
204
Amit Beka6c55f5e2012-01-25 13:30:27 +0200205static void iwl_mem_cleanup(struct iwl_priv *priv)
Hsu, Kenny306713f2011-11-22 23:03:39 -0800206{
Amit Beka6c55f5e2012-01-25 13:30:27 +0200207 if (priv->testmode_mem.read_in_progress) {
208 kfree(priv->testmode_mem.buff_addr);
209 priv->testmode_mem.buff_addr = NULL;
210 priv->testmode_mem.buff_size = 0;
211 priv->testmode_mem.num_chunks = 0;
212 priv->testmode_mem.read_in_progress = false;
Hsu, Kenny306713f2011-11-22 23:03:39 -0800213 }
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700214}
215
216static void iwl_trace_cleanup(struct iwl_priv *priv)
217{
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700218 if (priv->testmode_trace.trace_enabled) {
219 if (priv->testmode_trace.cpu_addr &&
220 priv->testmode_trace.dma_addr)
Emmanuel Grumbach1042db22012-01-03 16:56:15 +0200221 dma_free_coherent(trans(priv)->dev,
Wey-Yi Guy49b72102011-05-30 10:29:37 -0700222 priv->testmode_trace.total_size,
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700223 priv->testmode_trace.cpu_addr,
224 priv->testmode_trace.dma_addr);
225 priv->testmode_trace.trace_enabled = false;
226 priv->testmode_trace.cpu_addr = NULL;
227 priv->testmode_trace.trace_addr = NULL;
228 priv->testmode_trace.dma_addr = 0;
Wey-Yi Guy49b72102011-05-30 10:29:37 -0700229 priv->testmode_trace.buff_size = 0;
230 priv->testmode_trace.total_size = 0;
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700231 }
232}
233
234
235void iwl_testmode_cleanup(struct iwl_priv *priv)
236{
237 iwl_trace_cleanup(priv);
Amit Beka6c55f5e2012-01-25 13:30:27 +0200238 iwl_mem_cleanup(priv);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700239}
240
Amit Bekacdfef6c2012-01-31 15:30:39 +0200241
Cindy H. Kao4613e722011-05-06 10:40:15 -0700242/*
243 * This function handles the user application commands to the ucode.
244 *
245 * It retrieves the mandatory fields IWL_TM_ATTR_UCODE_CMD_ID and
246 * IWL_TM_ATTR_UCODE_CMD_DATA and calls to the handler to send the
247 * host command to the ucode.
248 *
249 * If any mandatory field is missing, -ENOMSG is replied to the user space
Amit Bekacdfef6c2012-01-31 15:30:39 +0200250 * application; otherwise, waits for the host command to be sent and checks
251 * the return code. In case or error, it is returned, otherwise a reply is
252 * allocated and the reply RX packet
253 * is returned.
Cindy H. Kao4613e722011-05-06 10:40:15 -0700254 *
255 * @hw: ieee80211_hw object that represents the device
256 * @tb: gnl message fields from the user space
257 */
258static int iwl_testmode_ucode(struct ieee80211_hw *hw, struct nlattr **tb)
259{
Emmanuel Grumbachd0f76d62012-02-09 16:08:15 +0200260 struct iwl_priv *priv = IWL_MAC80211_GET_DVM(hw);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700261 struct iwl_host_cmd cmd;
Amit Bekacdfef6c2012-01-31 15:30:39 +0200262 struct iwl_rx_packet *pkt;
263 struct sk_buff *skb;
264 void *reply_buf;
265 u32 reply_len;
266 int ret;
267 bool cmd_want_skb;
Cindy H. Kao4613e722011-05-06 10:40:15 -0700268
269 memset(&cmd, 0, sizeof(struct iwl_host_cmd));
270
271 if (!tb[IWL_TM_ATTR_UCODE_CMD_ID] ||
272 !tb[IWL_TM_ATTR_UCODE_CMD_DATA]) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800273 IWL_ERR(priv, "Missing ucode command mandatory fields\n");
Cindy H. Kao4613e722011-05-06 10:40:15 -0700274 return -ENOMSG;
275 }
276
Amit Bekacdfef6c2012-01-31 15:30:39 +0200277 cmd.flags = CMD_ON_DEMAND | CMD_SYNC;
278 cmd_want_skb = nla_get_flag(tb[IWL_TM_ATTR_UCODE_CMD_SKB]);
279 if (cmd_want_skb)
280 cmd.flags |= CMD_WANT_SKB;
281
Cindy H. Kao4613e722011-05-06 10:40:15 -0700282 cmd.id = nla_get_u8(tb[IWL_TM_ATTR_UCODE_CMD_ID]);
Johannes Berg3fa50732011-05-04 07:50:38 -0700283 cmd.data[0] = nla_data(tb[IWL_TM_ATTR_UCODE_CMD_DATA]);
284 cmd.len[0] = nla_len(tb[IWL_TM_ATTR_UCODE_CMD_DATA]);
Johannes Berg4ce7cc22011-05-13 11:57:40 -0700285 cmd.dataflags[0] = IWL_HCMD_DFL_NOCOPY;
Amit Bekacdfef6c2012-01-31 15:30:39 +0200286 IWL_DEBUG_INFO(priv, "testmode ucode command ID 0x%x, flags 0x%x,"
Johannes Berg3fa50732011-05-04 07:50:38 -0700287 " len %d\n", cmd.id, cmd.flags, cmd.len[0]);
Amit Bekacdfef6c2012-01-31 15:30:39 +0200288
Johannes Berge10a0532012-03-06 13:30:39 -0800289 ret = iwl_dvm_send_cmd(priv, &cmd);
Amit Bekacdfef6c2012-01-31 15:30:39 +0200290 if (ret) {
291 IWL_ERR(priv, "Failed to send hcmd\n");
292 return ret;
293 }
294 if (!cmd_want_skb)
295 return ret;
296
297 /* Handling return of SKB to the user */
Johannes Berg65b94a42012-03-05 11:24:38 -0800298 pkt = cmd.resp_pkt;
Amit Bekacdfef6c2012-01-31 15:30:39 +0200299 if (!pkt) {
300 IWL_ERR(priv, "HCMD received a null response packet\n");
301 return ret;
302 }
303
304 reply_len = le32_to_cpu(pkt->len_n_flags) & FH_RSCSR_FRAME_SIZE_MSK;
305 skb = cfg80211_testmode_alloc_reply_skb(hw->wiphy, reply_len + 20);
306 reply_buf = kmalloc(reply_len, GFP_KERNEL);
307 if (!skb || !reply_buf) {
308 kfree_skb(skb);
309 kfree(reply_buf);
310 return -ENOMEM;
311 }
312
313 /* The reply is in a page, that we cannot send to user space. */
Amit Bekaedabfa92012-02-08 10:01:35 +0200314 memcpy(reply_buf, &(pkt->hdr), reply_len);
Johannes Berg65b94a42012-03-05 11:24:38 -0800315 iwl_free_resp(&cmd);
Amit Bekacdfef6c2012-01-31 15:30:39 +0200316
317 NLA_PUT_U32(skb, IWL_TM_ATTR_COMMAND, IWL_TM_CMD_DEV2APP_UCODE_RX_PKT);
318 NLA_PUT(skb, IWL_TM_ATTR_UCODE_RX_PKT, reply_len, reply_buf);
319 return cfg80211_testmode_reply(skb);
320
321nla_put_failure:
322 IWL_DEBUG_INFO(priv, "Failed creating NL attributes\n");
323 return -ENOMSG;
Cindy H. Kao4613e722011-05-06 10:40:15 -0700324}
325
326
327/*
328 * This function handles the user application commands for register access.
329 *
330 * It retrieves command ID carried with IWL_TM_ATTR_COMMAND and calls to the
331 * handlers respectively.
332 *
333 * If it's an unknown commdn ID, -ENOSYS is returned; or -ENOMSG if the
334 * mandatory fields(IWL_TM_ATTR_REG_OFFSET,IWL_TM_ATTR_REG_VALUE32,
335 * IWL_TM_ATTR_REG_VALUE8) are missing; Otherwise 0 is replied indicating
336 * the success of the command execution.
337 *
338 * If IWL_TM_ATTR_COMMAND is IWL_TM_CMD_APP2DEV_REG_READ32, the register read
339 * value is returned with IWL_TM_ATTR_REG_VALUE32.
340 *
341 * @hw: ieee80211_hw object that represents the device
342 * @tb: gnl message fields from the user space
343 */
344static int iwl_testmode_reg(struct ieee80211_hw *hw, struct nlattr **tb)
345{
Emmanuel Grumbachd0f76d62012-02-09 16:08:15 +0200346 struct iwl_priv *priv = IWL_MAC80211_GET_DVM(hw);
Amit Beka6fe7dd02012-01-25 09:19:24 +0200347 u32 ofs, val32, cmd;
Cindy H. Kao4613e722011-05-06 10:40:15 -0700348 u8 val8;
349 struct sk_buff *skb;
350 int status = 0;
351
352 if (!tb[IWL_TM_ATTR_REG_OFFSET]) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800353 IWL_ERR(priv, "Missing register offset\n");
Cindy H. Kao4613e722011-05-06 10:40:15 -0700354 return -ENOMSG;
355 }
356 ofs = nla_get_u32(tb[IWL_TM_ATTR_REG_OFFSET]);
357 IWL_INFO(priv, "testmode register access command offset 0x%x\n", ofs);
358
Amit Beka6fe7dd02012-01-25 09:19:24 +0200359 /* Allow access only to FH/CSR/HBUS in direct mode.
360 Since we don't have the upper bounds for the CSR and HBUS segments,
361 we will use only the upper bound of FH for sanity check. */
362 cmd = nla_get_u32(tb[IWL_TM_ATTR_COMMAND]);
363 if ((cmd == IWL_TM_CMD_APP2DEV_DIRECT_REG_READ32 ||
364 cmd == IWL_TM_CMD_APP2DEV_DIRECT_REG_WRITE32 ||
365 cmd == IWL_TM_CMD_APP2DEV_DIRECT_REG_WRITE8) &&
366 (ofs >= FH_MEM_UPPER_BOUND)) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800367 IWL_ERR(priv, "offset out of segment (0x0 - 0x%x)\n",
Amit Beka6fe7dd02012-01-25 09:19:24 +0200368 FH_MEM_UPPER_BOUND);
369 return -EINVAL;
370 }
371
372 switch (cmd) {
Hsu, Kenny72bcacc2011-11-15 19:24:32 -0800373 case IWL_TM_CMD_APP2DEV_DIRECT_REG_READ32:
Emmanuel Grumbach1042db22012-01-03 16:56:15 +0200374 val32 = iwl_read_direct32(trans(priv), ofs);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700375 IWL_INFO(priv, "32bit value to read 0x%x\n", val32);
376
377 skb = cfg80211_testmode_alloc_reply_skb(hw->wiphy, 20);
378 if (!skb) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800379 IWL_ERR(priv, "Memory allocation fail\n");
Cindy H. Kao4613e722011-05-06 10:40:15 -0700380 return -ENOMEM;
381 }
382 NLA_PUT_U32(skb, IWL_TM_ATTR_REG_VALUE32, val32);
383 status = cfg80211_testmode_reply(skb);
384 if (status < 0)
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800385 IWL_ERR(priv, "Error sending msg : %d\n", status);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700386 break;
Hsu, Kenny72bcacc2011-11-15 19:24:32 -0800387 case IWL_TM_CMD_APP2DEV_DIRECT_REG_WRITE32:
Cindy H. Kao4613e722011-05-06 10:40:15 -0700388 if (!tb[IWL_TM_ATTR_REG_VALUE32]) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800389 IWL_ERR(priv, "Missing value to write\n");
Cindy H. Kao4613e722011-05-06 10:40:15 -0700390 return -ENOMSG;
391 } else {
392 val32 = nla_get_u32(tb[IWL_TM_ATTR_REG_VALUE32]);
393 IWL_INFO(priv, "32bit value to write 0x%x\n", val32);
Emmanuel Grumbach1042db22012-01-03 16:56:15 +0200394 iwl_write_direct32(trans(priv), ofs, val32);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700395 }
396 break;
Hsu, Kenny72bcacc2011-11-15 19:24:32 -0800397 case IWL_TM_CMD_APP2DEV_DIRECT_REG_WRITE8:
Cindy H. Kao4613e722011-05-06 10:40:15 -0700398 if (!tb[IWL_TM_ATTR_REG_VALUE8]) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800399 IWL_ERR(priv, "Missing value to write\n");
Cindy H. Kao4613e722011-05-06 10:40:15 -0700400 return -ENOMSG;
401 } else {
402 val8 = nla_get_u8(tb[IWL_TM_ATTR_REG_VALUE8]);
403 IWL_INFO(priv, "8bit value to write 0x%x\n", val8);
Emmanuel Grumbach1042db22012-01-03 16:56:15 +0200404 iwl_write8(trans(priv), ofs, val8);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700405 }
406 break;
407 default:
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800408 IWL_ERR(priv, "Unknown testmode register command ID\n");
Cindy H. Kao4613e722011-05-06 10:40:15 -0700409 return -ENOSYS;
410 }
411
412 return status;
413
414nla_put_failure:
415 kfree_skb(skb);
416 return -EMSGSIZE;
417}
418
419
420static int iwl_testmode_cfg_init_calib(struct iwl_priv *priv)
421{
422 struct iwl_notification_wait calib_wait;
Johannes Bergdb662d42012-03-15 13:26:44 -0700423 static const u8 calib_complete[] = {
424 CALIBRATION_COMPLETE_NOTIFICATION
425 };
Cindy H. Kao4613e722011-05-06 10:40:15 -0700426 int ret;
427
Johannes Berg4bd14dd2012-03-06 13:30:58 -0800428 iwl_init_notification_wait(&priv->notif_wait, &calib_wait,
Johannes Bergdb662d42012-03-15 13:26:44 -0700429 calib_complete, ARRAY_SIZE(calib_complete),
Johannes Berg4bd14dd2012-03-06 13:30:58 -0800430 NULL, NULL);
Johannes Berge1991882012-03-06 13:30:36 -0800431 ret = iwl_init_alive_start(priv);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700432 if (ret) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800433 IWL_ERR(priv, "Fail init calibration: %d\n", ret);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700434 goto cfg_init_calib_error;
435 }
436
Johannes Berg4bd14dd2012-03-06 13:30:58 -0800437 ret = iwl_wait_notification(&priv->notif_wait, &calib_wait, 2 * HZ);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700438 if (ret)
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800439 IWL_ERR(priv, "Error detecting"
Cindy H. Kao4613e722011-05-06 10:40:15 -0700440 " CALIBRATION_COMPLETE_NOTIFICATION: %d\n", ret);
441 return ret;
442
443cfg_init_calib_error:
Johannes Berg4bd14dd2012-03-06 13:30:58 -0800444 iwl_remove_notification(&priv->notif_wait, &calib_wait);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700445 return ret;
446}
447
448/*
449 * This function handles the user application commands for driver.
450 *
451 * It retrieves command ID carried with IWL_TM_ATTR_COMMAND and calls to the
452 * handlers respectively.
453 *
454 * If it's an unknown commdn ID, -ENOSYS is replied; otherwise, the returned
455 * value of the actual command execution is replied to the user application.
456 *
457 * If there's any message responding to the user space, IWL_TM_ATTR_SYNC_RSP
458 * is used for carry the message while IWL_TM_ATTR_COMMAND must set to
459 * IWL_TM_CMD_DEV2APP_SYNC_RSP.
460 *
461 * @hw: ieee80211_hw object that represents the device
462 * @tb: gnl message fields from the user space
463 */
464static int iwl_testmode_driver(struct ieee80211_hw *hw, struct nlattr **tb)
465{
Emmanuel Grumbachd0f76d62012-02-09 16:08:15 +0200466 struct iwl_priv *priv = IWL_MAC80211_GET_DVM(hw);
Don Fry69a679b2011-12-07 08:50:46 -0800467 struct iwl_trans *trans = trans(priv);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700468 struct sk_buff *skb;
469 unsigned char *rsp_data_ptr = NULL;
470 int status = 0, rsp_data_len = 0;
Kenny Hsuaca9b5f2011-12-24 12:12:12 +0800471 u32 devid, inst_size = 0, data_size = 0;
David Spinadel6dfa8d02012-03-10 13:00:14 -0800472 const struct fw_img *img;
Cindy H. Kao4613e722011-05-06 10:40:15 -0700473
474 switch (nla_get_u32(tb[IWL_TM_ATTR_COMMAND])) {
475 case IWL_TM_CMD_APP2DEV_GET_DEVICENAME:
Don Fry38622412011-12-16 07:07:36 -0800476 rsp_data_ptr = (unsigned char *)cfg(priv)->name;
477 rsp_data_len = strlen(cfg(priv)->name);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700478 skb = cfg80211_testmode_alloc_reply_skb(hw->wiphy,
479 rsp_data_len + 20);
480 if (!skb) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800481 IWL_ERR(priv, "Memory allocation fail\n");
Cindy H. Kao4613e722011-05-06 10:40:15 -0700482 return -ENOMEM;
483 }
484 NLA_PUT_U32(skb, IWL_TM_ATTR_COMMAND,
485 IWL_TM_CMD_DEV2APP_SYNC_RSP);
486 NLA_PUT(skb, IWL_TM_ATTR_SYNC_RSP,
487 rsp_data_len, rsp_data_ptr);
488 status = cfg80211_testmode_reply(skb);
489 if (status < 0)
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800490 IWL_ERR(priv, "Error sending msg : %d\n", status);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700491 break;
492
493 case IWL_TM_CMD_APP2DEV_LOAD_INIT_FW:
Johannes Berge1991882012-03-06 13:30:36 -0800494 status = iwl_load_ucode_wait_alive(priv, IWL_UCODE_INIT);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700495 if (status)
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800496 IWL_ERR(priv, "Error loading init ucode: %d\n", status);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700497 break;
498
499 case IWL_TM_CMD_APP2DEV_CFG_INIT_CALIB:
500 iwl_testmode_cfg_init_calib(priv);
David Spinadel8f7ffbe2012-03-10 13:00:10 -0800501 priv->ucode_loaded = false;
Don Fry69a679b2011-12-07 08:50:46 -0800502 iwl_trans_stop_device(trans);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700503 break;
504
505 case IWL_TM_CMD_APP2DEV_LOAD_RUNTIME_FW:
Johannes Berge1991882012-03-06 13:30:36 -0800506 status = iwl_load_ucode_wait_alive(priv, IWL_UCODE_REGULAR);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700507 if (status) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800508 IWL_ERR(priv,
Cindy H. Kao4613e722011-05-06 10:40:15 -0700509 "Error loading runtime ucode: %d\n", status);
510 break;
511 }
512 status = iwl_alive_start(priv);
513 if (status)
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800514 IWL_ERR(priv,
Cindy H. Kao4613e722011-05-06 10:40:15 -0700515 "Error starting the device: %d\n", status);
516 break;
517
Hsu, Kennyd4af19f2011-11-24 22:26:53 -0800518 case IWL_TM_CMD_APP2DEV_LOAD_WOWLAN_FW:
519 iwl_scan_cancel_timeout(priv, 200);
David Spinadel8f7ffbe2012-03-10 13:00:10 -0800520 priv->ucode_loaded = false;
Don Fry69a679b2011-12-07 08:50:46 -0800521 iwl_trans_stop_device(trans);
Johannes Berge1991882012-03-06 13:30:36 -0800522 status = iwl_load_ucode_wait_alive(priv, IWL_UCODE_WOWLAN);
Hsu, Kennyd4af19f2011-11-24 22:26:53 -0800523 if (status) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800524 IWL_ERR(priv,
Hsu, Kennyd4af19f2011-11-24 22:26:53 -0800525 "Error loading WOWLAN ucode: %d\n", status);
526 break;
527 }
528 status = iwl_alive_start(priv);
529 if (status)
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800530 IWL_ERR(priv,
Hsu, Kennyd4af19f2011-11-24 22:26:53 -0800531 "Error starting the device: %d\n", status);
532 break;
533
Wey-Yi Guy4babc352011-05-03 18:05:12 -0700534 case IWL_TM_CMD_APP2DEV_GET_EEPROM:
Don Fryab36eab2011-11-30 15:37:32 -0800535 if (priv->shrd->eeprom) {
Wey-Yi Guy4babc352011-05-03 18:05:12 -0700536 skb = cfg80211_testmode_alloc_reply_skb(hw->wiphy,
Don Fry38622412011-12-16 07:07:36 -0800537 cfg(priv)->base_params->eeprom_size + 20);
Wey-Yi Guy4babc352011-05-03 18:05:12 -0700538 if (!skb) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800539 IWL_ERR(priv, "Memory allocation fail\n");
Wey-Yi Guy4babc352011-05-03 18:05:12 -0700540 return -ENOMEM;
541 }
542 NLA_PUT_U32(skb, IWL_TM_ATTR_COMMAND,
543 IWL_TM_CMD_DEV2APP_EEPROM_RSP);
544 NLA_PUT(skb, IWL_TM_ATTR_EEPROM,
Don Fry38622412011-12-16 07:07:36 -0800545 cfg(priv)->base_params->eeprom_size,
Don Fryab36eab2011-11-30 15:37:32 -0800546 priv->shrd->eeprom);
Wey-Yi Guy4babc352011-05-03 18:05:12 -0700547 status = cfg80211_testmode_reply(skb);
548 if (status < 0)
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800549 IWL_ERR(priv, "Error sending msg : %d\n",
550 status);
Wey-Yi Guy4babc352011-05-03 18:05:12 -0700551 } else
552 return -EFAULT;
553 break;
554
Wey-Yi Guy64898542011-05-03 18:05:13 -0700555 case IWL_TM_CMD_APP2DEV_FIXRATE_REQ:
556 if (!tb[IWL_TM_ATTR_FIXRATE]) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800557 IWL_ERR(priv, "Missing fixrate setting\n");
Wey-Yi Guy64898542011-05-03 18:05:13 -0700558 return -ENOMSG;
559 }
Wey-Yi Guy4e308112011-07-08 08:46:28 -0700560 priv->tm_fixed_rate = nla_get_u32(tb[IWL_TM_ATTR_FIXRATE]);
Wey-Yi Guy64898542011-05-03 18:05:13 -0700561 break;
562
Hsu, Kennye1a38fe2011-11-28 00:55:38 -0800563 case IWL_TM_CMD_APP2DEV_GET_FW_VERSION:
Don Fryd3596672012-02-06 15:51:15 -0800564 IWL_INFO(priv, "uCode version raw: 0x%x\n",
Johannes Berg0692fe42012-03-06 13:30:37 -0800565 priv->fw->ucode_ver);
Hsu, Kennye1a38fe2011-11-28 00:55:38 -0800566
567 skb = cfg80211_testmode_alloc_reply_skb(hw->wiphy, 20);
568 if (!skb) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800569 IWL_ERR(priv, "Memory allocation fail\n");
Hsu, Kennye1a38fe2011-11-28 00:55:38 -0800570 return -ENOMEM;
571 }
Don Fryd3596672012-02-06 15:51:15 -0800572 NLA_PUT_U32(skb, IWL_TM_ATTR_FW_VERSION,
Johannes Berg0692fe42012-03-06 13:30:37 -0800573 priv->fw->ucode_ver);
Hsu, Kennye1a38fe2011-11-28 00:55:38 -0800574 status = cfg80211_testmode_reply(skb);
575 if (status < 0)
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800576 IWL_ERR(priv, "Error sending msg : %d\n", status);
Hsu, Kennye1a38fe2011-11-28 00:55:38 -0800577 break;
578
Hsu, Kenny0bec12b2011-12-01 01:12:50 -0800579 case IWL_TM_CMD_APP2DEV_GET_DEVICE_ID:
Emmanuel Grumbach99673ee2012-01-08 21:19:45 +0200580 devid = trans(priv)->hw_id;
Wey-Yi Guyfb6c1c62011-12-10 11:33:53 -0800581 IWL_INFO(priv, "hw version: 0x%x\n", devid);
Hsu, Kenny0bec12b2011-12-01 01:12:50 -0800582
583 skb = cfg80211_testmode_alloc_reply_skb(hw->wiphy, 20);
584 if (!skb) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800585 IWL_ERR(priv, "Memory allocation fail\n");
Hsu, Kenny0bec12b2011-12-01 01:12:50 -0800586 return -ENOMEM;
587 }
588 NLA_PUT_U32(skb, IWL_TM_ATTR_DEVICE_ID, devid);
589 status = cfg80211_testmode_reply(skb);
590 if (status < 0)
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800591 IWL_ERR(priv, "Error sending msg : %d\n", status);
Hsu, Kenny0bec12b2011-12-01 01:12:50 -0800592 break;
593
Kenny Hsuaca9b5f2011-12-24 12:12:12 +0800594 case IWL_TM_CMD_APP2DEV_GET_FW_INFO:
595 skb = cfg80211_testmode_alloc_reply_skb(hw->wiphy, 20 + 8);
596 if (!skb) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800597 IWL_ERR(priv, "Memory allocation fail\n");
Kenny Hsuaca9b5f2011-12-24 12:12:12 +0800598 return -ENOMEM;
599 }
David Spinadel8f7ffbe2012-03-10 13:00:10 -0800600 if (!priv->ucode_loaded) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800601 IWL_ERR(priv, "No uCode has not been loaded\n");
David Spinadel8f7ffbe2012-03-10 13:00:10 -0800602 return -EINVAL;
603 } else {
David Spinadel6dfa8d02012-03-10 13:00:14 -0800604 img = &priv->fw->img[priv->shrd->ucode_type];
605 inst_size = img->sec[IWL_UCODE_SECTION_INST].len;
606 data_size = img->sec[IWL_UCODE_SECTION_DATA].len;
Kenny Hsuaca9b5f2011-12-24 12:12:12 +0800607 }
608 NLA_PUT_U32(skb, IWL_TM_ATTR_FW_TYPE, priv->shrd->ucode_type);
609 NLA_PUT_U32(skb, IWL_TM_ATTR_FW_INST_SIZE, inst_size);
610 NLA_PUT_U32(skb, IWL_TM_ATTR_FW_DATA_SIZE, data_size);
611 status = cfg80211_testmode_reply(skb);
612 if (status < 0)
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800613 IWL_ERR(priv, "Error sending msg : %d\n", status);
Kenny Hsuaca9b5f2011-12-24 12:12:12 +0800614 break;
615
Cindy H. Kao4613e722011-05-06 10:40:15 -0700616 default:
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800617 IWL_ERR(priv, "Unknown testmode driver command ID\n");
Cindy H. Kao4613e722011-05-06 10:40:15 -0700618 return -ENOSYS;
619 }
620 return status;
621
622nla_put_failure:
623 kfree_skb(skb);
624 return -EMSGSIZE;
625}
626
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700627
628/*
629 * This function handles the user application commands for uCode trace
630 *
631 * It retrieves command ID carried with IWL_TM_ATTR_COMMAND and calls to the
632 * handlers respectively.
633 *
634 * If it's an unknown commdn ID, -ENOSYS is replied; otherwise, the returned
635 * value of the actual command execution is replied to the user application.
636 *
637 * @hw: ieee80211_hw object that represents the device
638 * @tb: gnl message fields from the user space
639 */
640static int iwl_testmode_trace(struct ieee80211_hw *hw, struct nlattr **tb)
641{
Emmanuel Grumbachd0f76d62012-02-09 16:08:15 +0200642 struct iwl_priv *priv = IWL_MAC80211_GET_DVM(hw);
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700643 struct sk_buff *skb;
644 int status = 0;
Emmanuel Grumbach1042db22012-01-03 16:56:15 +0200645 struct device *dev = trans(priv)->dev;
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700646
647 switch (nla_get_u32(tb[IWL_TM_ATTR_COMMAND])) {
648 case IWL_TM_CMD_APP2DEV_BEGIN_TRACE:
649 if (priv->testmode_trace.trace_enabled)
650 return -EBUSY;
651
Wey-Yi Guy49b72102011-05-30 10:29:37 -0700652 if (!tb[IWL_TM_ATTR_TRACE_SIZE])
653 priv->testmode_trace.buff_size = TRACE_BUFF_SIZE_DEF;
654 else
655 priv->testmode_trace.buff_size =
656 nla_get_u32(tb[IWL_TM_ATTR_TRACE_SIZE]);
657 if (!priv->testmode_trace.buff_size)
658 return -EINVAL;
659 if (priv->testmode_trace.buff_size < TRACE_BUFF_SIZE_MIN ||
660 priv->testmode_trace.buff_size > TRACE_BUFF_SIZE_MAX)
661 return -EINVAL;
662
663 priv->testmode_trace.total_size =
664 priv->testmode_trace.buff_size + TRACE_BUFF_PADD;
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700665 priv->testmode_trace.cpu_addr =
666 dma_alloc_coherent(dev,
Wey-Yi Guy49b72102011-05-30 10:29:37 -0700667 priv->testmode_trace.total_size,
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700668 &priv->testmode_trace.dma_addr,
669 GFP_KERNEL);
670 if (!priv->testmode_trace.cpu_addr)
671 return -ENOMEM;
672 priv->testmode_trace.trace_enabled = true;
673 priv->testmode_trace.trace_addr = (u8 *)PTR_ALIGN(
674 priv->testmode_trace.cpu_addr, 0x100);
675 memset(priv->testmode_trace.trace_addr, 0x03B,
Wey-Yi Guy49b72102011-05-30 10:29:37 -0700676 priv->testmode_trace.buff_size);
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700677 skb = cfg80211_testmode_alloc_reply_skb(hw->wiphy,
678 sizeof(priv->testmode_trace.dma_addr) + 20);
679 if (!skb) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800680 IWL_ERR(priv, "Memory allocation fail\n");
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700681 iwl_trace_cleanup(priv);
682 return -ENOMEM;
683 }
684 NLA_PUT(skb, IWL_TM_ATTR_TRACE_ADDR,
685 sizeof(priv->testmode_trace.dma_addr),
686 (u64 *)&priv->testmode_trace.dma_addr);
687 status = cfg80211_testmode_reply(skb);
688 if (status < 0) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800689 IWL_ERR(priv, "Error sending msg : %d\n", status);
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700690 }
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -0700691 priv->testmode_trace.num_chunks =
692 DIV_ROUND_UP(priv->testmode_trace.buff_size,
Hsu, Kennye056a652011-11-22 23:05:02 -0800693 DUMP_CHUNK_SIZE);
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700694 break;
695
696 case IWL_TM_CMD_APP2DEV_END_TRACE:
697 iwl_trace_cleanup(priv);
698 break;
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700699 default:
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800700 IWL_ERR(priv, "Unknown testmode mem command ID\n");
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -0700701 return -ENOSYS;
702 }
703 return status;
704
705nla_put_failure:
706 kfree_skb(skb);
707 if (nla_get_u32(tb[IWL_TM_ATTR_COMMAND]) ==
708 IWL_TM_CMD_APP2DEV_BEGIN_TRACE)
709 iwl_trace_cleanup(priv);
710 return -EMSGSIZE;
711}
712
Johannes Bergc1803c92012-03-07 09:52:14 -0800713static int iwl_testmode_trace_dump(struct ieee80211_hw *hw,
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -0700714 struct sk_buff *skb,
715 struct netlink_callback *cb)
716{
Emmanuel Grumbachd0f76d62012-02-09 16:08:15 +0200717 struct iwl_priv *priv = IWL_MAC80211_GET_DVM(hw);
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -0700718 int idx, length;
719
720 if (priv->testmode_trace.trace_enabled &&
721 priv->testmode_trace.trace_addr) {
722 idx = cb->args[4];
723 if (idx >= priv->testmode_trace.num_chunks)
724 return -ENOENT;
Hsu, Kennye056a652011-11-22 23:05:02 -0800725 length = DUMP_CHUNK_SIZE;
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -0700726 if (((idx + 1) == priv->testmode_trace.num_chunks) &&
Hsu, Kennye056a652011-11-22 23:05:02 -0800727 (priv->testmode_trace.buff_size % DUMP_CHUNK_SIZE))
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -0700728 length = priv->testmode_trace.buff_size %
Hsu, Kennye056a652011-11-22 23:05:02 -0800729 DUMP_CHUNK_SIZE;
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -0700730
731 NLA_PUT(skb, IWL_TM_ATTR_TRACE_DUMP, length,
732 priv->testmode_trace.trace_addr +
Hsu, Kennye056a652011-11-22 23:05:02 -0800733 (DUMP_CHUNK_SIZE * idx));
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -0700734 idx++;
735 cb->args[4] = idx;
736 return 0;
737 } else
738 return -EFAULT;
739
740 nla_put_failure:
741 return -ENOBUFS;
742}
743
Wey-Yi Guye98a1932011-07-08 08:46:26 -0700744/*
745 * This function handles the user application switch ucode ownership.
746 *
747 * It retrieves the mandatory fields IWL_TM_ATTR_UCODE_OWNER and
748 * decide who the current owner of the uCode
749 *
750 * If the current owner is OWNERSHIP_TM, then the only host command
751 * can deliver to uCode is from testmode, all the other host commands
752 * will dropped.
753 *
754 * default driver is the owner of uCode in normal operational mode
755 *
756 * @hw: ieee80211_hw object that represents the device
757 * @tb: gnl message fields from the user space
758 */
759static int iwl_testmode_ownership(struct ieee80211_hw *hw, struct nlattr **tb)
760{
Emmanuel Grumbachd0f76d62012-02-09 16:08:15 +0200761 struct iwl_priv *priv = IWL_MAC80211_GET_DVM(hw);
Wey-Yi Guye98a1932011-07-08 08:46:26 -0700762 u8 owner;
763
764 if (!tb[IWL_TM_ATTR_UCODE_OWNER]) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800765 IWL_ERR(priv, "Missing ucode owner\n");
Wey-Yi Guye98a1932011-07-08 08:46:26 -0700766 return -ENOMSG;
767 }
768
769 owner = nla_get_u8(tb[IWL_TM_ATTR_UCODE_OWNER]);
Amit Beka0aef8dd2012-03-07 09:52:29 -0800770 if (owner == IWL_OWNERSHIP_DRIVER) {
Johannes Berg947a9402012-03-06 13:30:59 -0800771 priv->ucode_owner = owner;
Amit Beka0aef8dd2012-03-07 09:52:29 -0800772 priv->pre_rx_handler = NULL;
773 } else if (owner == IWL_OWNERSHIP_TM) {
774 priv->pre_rx_handler = iwl_testmode_ucode_rx_pkt;
775 priv->ucode_owner = owner;
776 } else {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800777 IWL_ERR(priv, "Invalid owner\n");
Wey-Yi Guye98a1932011-07-08 08:46:26 -0700778 return -EINVAL;
779 }
780 return 0;
781}
782
Amit Beka6c55f5e2012-01-25 13:30:27 +0200783static int iwl_testmode_indirect_read(struct iwl_priv *priv, u32 addr, u32 size)
784{
785 struct iwl_trans *trans = trans(priv);
786 unsigned long flags;
787 int i;
788
789 if (size & 0x3)
790 return -EINVAL;
791 priv->testmode_mem.buff_size = size;
792 priv->testmode_mem.buff_addr =
793 kmalloc(priv->testmode_mem.buff_size, GFP_KERNEL);
794 if (priv->testmode_mem.buff_addr == NULL)
795 return -ENOMEM;
796
797 /* Hard-coded periphery absolute address */
798 if (IWL_TM_ABS_PRPH_START <= addr &&
799 addr < IWL_TM_ABS_PRPH_START + PRPH_END) {
800 spin_lock_irqsave(&trans->reg_lock, flags);
801 iwl_grab_nic_access(trans);
Amit Beka858b7c72012-02-06 00:40:47 +0200802 iwl_write32(trans, HBUS_TARG_PRPH_RADDR,
803 addr | (3 << 24));
Amit Beka6c55f5e2012-01-25 13:30:27 +0200804 for (i = 0; i < size; i += 4)
Amit Beka858b7c72012-02-06 00:40:47 +0200805 *(u32 *)(priv->testmode_mem.buff_addr + i) =
Amit Beka6c55f5e2012-01-25 13:30:27 +0200806 iwl_read32(trans, HBUS_TARG_PRPH_RDAT);
807 iwl_release_nic_access(trans);
808 spin_unlock_irqrestore(&trans->reg_lock, flags);
809 } else { /* target memory (SRAM) */
810 _iwl_read_targ_mem_words(trans, addr,
811 priv->testmode_mem.buff_addr,
812 priv->testmode_mem.buff_size / 4);
813 }
814
815 priv->testmode_mem.num_chunks =
816 DIV_ROUND_UP(priv->testmode_mem.buff_size, DUMP_CHUNK_SIZE);
817 priv->testmode_mem.read_in_progress = true;
818 return 0;
819
820}
821
822static int iwl_testmode_indirect_write(struct iwl_priv *priv, u32 addr,
823 u32 size, unsigned char *buf)
824{
825 struct iwl_trans *trans = trans(priv);
826 u32 val, i;
827 unsigned long flags;
828
829 if (IWL_TM_ABS_PRPH_START <= addr &&
830 addr < IWL_TM_ABS_PRPH_START + PRPH_END) {
831 /* Periphery writes can be 1-3 bytes long, or DWORDs */
832 if (size < 4) {
833 memcpy(&val, buf, size);
834 spin_lock_irqsave(&trans->reg_lock, flags);
835 iwl_grab_nic_access(trans);
836 iwl_write32(trans, HBUS_TARG_PRPH_WADDR,
Amit Beka858b7c72012-02-06 00:40:47 +0200837 (addr & 0x0000FFFF) |
838 ((size - 1) << 24));
Amit Beka6c55f5e2012-01-25 13:30:27 +0200839 iwl_write32(trans, HBUS_TARG_PRPH_WDAT, val);
840 iwl_release_nic_access(trans);
841 /* needed after consecutive writes w/o read */
842 mmiowb();
843 spin_unlock_irqrestore(&trans->reg_lock, flags);
844 } else {
845 if (size % 4)
846 return -EINVAL;
847 for (i = 0; i < size; i += 4)
848 iwl_write_prph(trans, addr+i,
Amit Beka858b7c72012-02-06 00:40:47 +0200849 *(u32 *)(buf+i));
Amit Beka6c55f5e2012-01-25 13:30:27 +0200850 }
851 } else if (iwlagn_hw_valid_rtc_data_addr(addr) ||
852 (IWLAGN_RTC_INST_LOWER_BOUND <= addr &&
853 addr < IWLAGN_RTC_INST_UPPER_BOUND)) {
854 _iwl_write_targ_mem_words(trans, addr, buf, size/4);
855 } else
856 return -EINVAL;
857 return 0;
858}
859
Hsu, Kenny306713f2011-11-22 23:03:39 -0800860/*
861 * This function handles the user application commands for SRAM data dump
862 *
863 * It retrieves the mandatory fields IWL_TM_ATTR_SRAM_ADDR and
864 * IWL_TM_ATTR_SRAM_SIZE to decide the memory area for SRAM data reading
865 *
866 * Several error will be retured, -EBUSY if the SRAM data retrieved by
867 * previous command has not been delivered to userspace, or -ENOMSG if
868 * the mandatory fields (IWL_TM_ATTR_SRAM_ADDR,IWL_TM_ATTR_SRAM_SIZE)
869 * are missing, or -ENOMEM if the buffer allocation fails.
870 *
871 * Otherwise 0 is replied indicating the success of the SRAM reading.
872 *
873 * @hw: ieee80211_hw object that represents the device
874 * @tb: gnl message fields from the user space
875 */
Amit Beka6c55f5e2012-01-25 13:30:27 +0200876static int iwl_testmode_indirect_mem(struct ieee80211_hw *hw,
877 struct nlattr **tb)
Hsu, Kenny306713f2011-11-22 23:03:39 -0800878{
Emmanuel Grumbachd0f76d62012-02-09 16:08:15 +0200879 struct iwl_priv *priv = IWL_MAC80211_GET_DVM(hw);
Amit Beka6c55f5e2012-01-25 13:30:27 +0200880 u32 addr, size, cmd;
881 unsigned char *buf;
Hsu, Kenny306713f2011-11-22 23:03:39 -0800882
Amit Beka6c55f5e2012-01-25 13:30:27 +0200883 /* Both read and write should be blocked, for atomicity */
884 if (priv->testmode_mem.read_in_progress)
Hsu, Kenny306713f2011-11-22 23:03:39 -0800885 return -EBUSY;
886
Amit Beka6c55f5e2012-01-25 13:30:27 +0200887 cmd = nla_get_u32(tb[IWL_TM_ATTR_COMMAND]);
888 if (!tb[IWL_TM_ATTR_MEM_ADDR]) {
889 IWL_ERR(priv, "Error finding memory offset address\n");
Hsu, Kenny306713f2011-11-22 23:03:39 -0800890 return -ENOMSG;
891 }
Amit Beka6c55f5e2012-01-25 13:30:27 +0200892 addr = nla_get_u32(tb[IWL_TM_ATTR_MEM_ADDR]);
893 if (!tb[IWL_TM_ATTR_BUFFER_SIZE]) {
894 IWL_ERR(priv, "Error finding size for memory reading\n");
Hsu, Kenny306713f2011-11-22 23:03:39 -0800895 return -ENOMSG;
896 }
Amit Beka6c55f5e2012-01-25 13:30:27 +0200897 size = nla_get_u32(tb[IWL_TM_ATTR_BUFFER_SIZE]);
898
899 if (cmd == IWL_TM_CMD_APP2DEV_INDIRECT_BUFFER_READ)
900 return iwl_testmode_indirect_read(priv, addr, size);
901 else {
902 if (!tb[IWL_TM_ATTR_BUFFER_DUMP])
903 return -EINVAL;
904 buf = (unsigned char *) nla_data(tb[IWL_TM_ATTR_BUFFER_DUMP]);
905 return iwl_testmode_indirect_write(priv, addr, size, buf);
Kenny Hsu76de2f22011-11-23 06:57:22 -0800906 }
Hsu, Kenny306713f2011-11-22 23:03:39 -0800907}
908
Johannes Bergc1803c92012-03-07 09:52:14 -0800909static int iwl_testmode_buffer_dump(struct ieee80211_hw *hw,
910 struct sk_buff *skb,
911 struct netlink_callback *cb)
Hsu, Kenny306713f2011-11-22 23:03:39 -0800912{
Emmanuel Grumbachd0f76d62012-02-09 16:08:15 +0200913 struct iwl_priv *priv = IWL_MAC80211_GET_DVM(hw);
Hsu, Kenny306713f2011-11-22 23:03:39 -0800914 int idx, length;
915
Amit Beka6c55f5e2012-01-25 13:30:27 +0200916 if (priv->testmode_mem.read_in_progress) {
Hsu, Kenny306713f2011-11-22 23:03:39 -0800917 idx = cb->args[4];
Amit Beka6c55f5e2012-01-25 13:30:27 +0200918 if (idx >= priv->testmode_mem.num_chunks) {
919 iwl_mem_cleanup(priv);
Hsu, Kenny306713f2011-11-22 23:03:39 -0800920 return -ENOENT;
921 }
Hsu, Kennye056a652011-11-22 23:05:02 -0800922 length = DUMP_CHUNK_SIZE;
Amit Beka6c55f5e2012-01-25 13:30:27 +0200923 if (((idx + 1) == priv->testmode_mem.num_chunks) &&
924 (priv->testmode_mem.buff_size % DUMP_CHUNK_SIZE))
925 length = priv->testmode_mem.buff_size %
Hsu, Kennye056a652011-11-22 23:05:02 -0800926 DUMP_CHUNK_SIZE;
Hsu, Kenny306713f2011-11-22 23:03:39 -0800927
Amit Beka6c55f5e2012-01-25 13:30:27 +0200928 NLA_PUT(skb, IWL_TM_ATTR_BUFFER_DUMP, length,
929 priv->testmode_mem.buff_addr +
Hsu, Kennye056a652011-11-22 23:05:02 -0800930 (DUMP_CHUNK_SIZE * idx));
Hsu, Kenny306713f2011-11-22 23:03:39 -0800931 idx++;
932 cb->args[4] = idx;
933 return 0;
934 } else
935 return -EFAULT;
936
937 nla_put_failure:
938 return -ENOBUFS;
939}
940
Amit Beka0aef8dd2012-03-07 09:52:29 -0800941static int iwl_testmode_notifications(struct ieee80211_hw *hw,
942 struct nlattr **tb)
943{
944 struct iwl_priv *priv = IWL_MAC80211_GET_DVM(hw);
945 bool enable;
946
947 enable = nla_get_flag(tb[IWL_TM_ATTR_ENABLE_NOTIFICATION]);
948 if (enable)
949 priv->pre_rx_handler = iwl_testmode_ucode_rx_pkt;
950 else
951 priv->pre_rx_handler = NULL;
952 return 0;
953}
954
Wey-Yi Guye98a1932011-07-08 08:46:26 -0700955
Cindy H. Kao4613e722011-05-06 10:40:15 -0700956/* The testmode gnl message handler that takes the gnl message from the
957 * user space and parses it per the policy iwl_testmode_gnl_msg_policy, then
958 * invoke the corresponding handlers.
959 *
960 * This function is invoked when there is user space application sending
961 * gnl message through the testmode tunnel NL80211_CMD_TESTMODE regulated
962 * by nl80211.
963 *
964 * It retrieves the mandatory field, IWL_TM_ATTR_COMMAND, before
965 * dispatching it to the corresponding handler.
966 *
967 * If IWL_TM_ATTR_COMMAND is missing, -ENOMSG is replied to user application;
968 * -ENOSYS is replied to the user application if the command is unknown;
969 * Otherwise, the command is dispatched to the respective handler.
970 *
971 * @hw: ieee80211_hw object that represents the device
972 * @data: pointer to user space message
973 * @len: length in byte of @data
974 */
Wey-Yi Guyade4c642011-10-10 07:27:11 -0700975int iwlagn_mac_testmode_cmd(struct ieee80211_hw *hw, void *data, int len)
Cindy H. Kao4613e722011-05-06 10:40:15 -0700976{
Wey-Yi Guya6779272011-07-11 10:47:39 -0700977 struct nlattr *tb[IWL_TM_ATTR_MAX];
Emmanuel Grumbachd0f76d62012-02-09 16:08:15 +0200978 struct iwl_priv *priv = IWL_MAC80211_GET_DVM(hw);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700979 int result;
980
981 result = nla_parse(tb, IWL_TM_ATTR_MAX - 1, data, len,
982 iwl_testmode_gnl_msg_policy);
983 if (result != 0) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800984 IWL_ERR(priv, "Error parsing the gnl message : %d\n", result);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700985 return result;
986 }
987
988 /* IWL_TM_ATTR_COMMAND is absolutely mandatory */
989 if (!tb[IWL_TM_ATTR_COMMAND]) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -0800990 IWL_ERR(priv, "Missing testmode command type\n");
Cindy H. Kao4613e722011-05-06 10:40:15 -0700991 return -ENOMSG;
992 }
993 /* in case multiple accesses to the device happens */
Johannes Bergb1eea292012-03-06 13:30:42 -0800994 mutex_lock(&priv->mutex);
Cindy H. Kao4613e722011-05-06 10:40:15 -0700995
996 switch (nla_get_u32(tb[IWL_TM_ATTR_COMMAND])) {
997 case IWL_TM_CMD_APP2DEV_UCODE:
998 IWL_DEBUG_INFO(priv, "testmode cmd to uCode\n");
999 result = iwl_testmode_ucode(hw, tb);
1000 break;
Hsu, Kenny72bcacc2011-11-15 19:24:32 -08001001 case IWL_TM_CMD_APP2DEV_DIRECT_REG_READ32:
1002 case IWL_TM_CMD_APP2DEV_DIRECT_REG_WRITE32:
1003 case IWL_TM_CMD_APP2DEV_DIRECT_REG_WRITE8:
Cindy H. Kao4613e722011-05-06 10:40:15 -07001004 IWL_DEBUG_INFO(priv, "testmode cmd to register\n");
1005 result = iwl_testmode_reg(hw, tb);
1006 break;
1007 case IWL_TM_CMD_APP2DEV_GET_DEVICENAME:
1008 case IWL_TM_CMD_APP2DEV_LOAD_INIT_FW:
1009 case IWL_TM_CMD_APP2DEV_CFG_INIT_CALIB:
1010 case IWL_TM_CMD_APP2DEV_LOAD_RUNTIME_FW:
Wey-Yi Guy4babc352011-05-03 18:05:12 -07001011 case IWL_TM_CMD_APP2DEV_GET_EEPROM:
Wey-Yi Guy64898542011-05-03 18:05:13 -07001012 case IWL_TM_CMD_APP2DEV_FIXRATE_REQ:
Hsu, Kennyd4af19f2011-11-24 22:26:53 -08001013 case IWL_TM_CMD_APP2DEV_LOAD_WOWLAN_FW:
Hsu, Kennye1a38fe2011-11-28 00:55:38 -08001014 case IWL_TM_CMD_APP2DEV_GET_FW_VERSION:
Hsu, Kenny0bec12b2011-12-01 01:12:50 -08001015 case IWL_TM_CMD_APP2DEV_GET_DEVICE_ID:
Kenny Hsuaca9b5f2011-12-24 12:12:12 +08001016 case IWL_TM_CMD_APP2DEV_GET_FW_INFO:
Cindy H. Kao4613e722011-05-06 10:40:15 -07001017 IWL_DEBUG_INFO(priv, "testmode cmd to driver\n");
1018 result = iwl_testmode_driver(hw, tb);
1019 break;
Wey-Yi Guy7a4e5282011-05-06 10:21:28 -07001020
1021 case IWL_TM_CMD_APP2DEV_BEGIN_TRACE:
1022 case IWL_TM_CMD_APP2DEV_END_TRACE:
1023 case IWL_TM_CMD_APP2DEV_READ_TRACE:
1024 IWL_DEBUG_INFO(priv, "testmode uCode trace cmd to driver\n");
1025 result = iwl_testmode_trace(hw, tb);
1026 break;
1027
Wey-Yi Guye98a1932011-07-08 08:46:26 -07001028 case IWL_TM_CMD_APP2DEV_OWNERSHIP:
1029 IWL_DEBUG_INFO(priv, "testmode change uCode ownership\n");
1030 result = iwl_testmode_ownership(hw, tb);
1031 break;
1032
Amit Beka6c55f5e2012-01-25 13:30:27 +02001033 case IWL_TM_CMD_APP2DEV_INDIRECT_BUFFER_READ:
1034 case IWL_TM_CMD_APP2DEV_INDIRECT_BUFFER_WRITE:
1035 IWL_DEBUG_INFO(priv, "testmode indirect memory cmd "
1036 "to driver\n");
1037 result = iwl_testmode_indirect_mem(hw, tb);
Hsu, Kenny306713f2011-11-22 23:03:39 -08001038 break;
1039
Amit Beka0aef8dd2012-03-07 09:52:29 -08001040 case IWL_TM_CMD_APP2DEV_NOTIFICATIONS:
1041 IWL_DEBUG_INFO(priv, "testmode notifications cmd "
1042 "to driver\n");
1043 result = iwl_testmode_notifications(hw, tb);
1044 break;
1045
Cindy H. Kao4613e722011-05-06 10:40:15 -07001046 default:
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -08001047 IWL_ERR(priv, "Unknown testmode command\n");
Cindy H. Kao4613e722011-05-06 10:40:15 -07001048 result = -ENOSYS;
1049 break;
1050 }
1051
Johannes Bergb1eea292012-03-06 13:30:42 -08001052 mutex_unlock(&priv->mutex);
Cindy H. Kao4613e722011-05-06 10:40:15 -07001053 return result;
1054}
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -07001055
Wey-Yi Guyade4c642011-10-10 07:27:11 -07001056int iwlagn_mac_testmode_dump(struct ieee80211_hw *hw, struct sk_buff *skb,
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -07001057 struct netlink_callback *cb,
1058 void *data, int len)
1059{
1060 struct nlattr *tb[IWL_TM_ATTR_MAX];
Emmanuel Grumbachd0f76d62012-02-09 16:08:15 +02001061 struct iwl_priv *priv = IWL_MAC80211_GET_DVM(hw);
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -07001062 int result;
1063 u32 cmd;
1064
1065 if (cb->args[3]) {
1066 /* offset by 1 since commands start at 0 */
1067 cmd = cb->args[3] - 1;
1068 } else {
1069 result = nla_parse(tb, IWL_TM_ATTR_MAX - 1, data, len,
1070 iwl_testmode_gnl_msg_policy);
1071 if (result) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -08001072 IWL_ERR(priv,
1073 "Error parsing the gnl message : %d\n", result);
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -07001074 return result;
1075 }
1076
1077 /* IWL_TM_ATTR_COMMAND is absolutely mandatory */
1078 if (!tb[IWL_TM_ATTR_COMMAND]) {
Wey-Yi Guy2f73d7c2012-02-03 13:06:57 -08001079 IWL_ERR(priv, "Missing testmode command type\n");
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -07001080 return -ENOMSG;
1081 }
1082 cmd = nla_get_u32(tb[IWL_TM_ATTR_COMMAND]);
1083 cb->args[3] = cmd + 1;
1084 }
1085
1086 /* in case multiple accesses to the device happens */
Johannes Bergb1eea292012-03-06 13:30:42 -08001087 mutex_lock(&priv->mutex);
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -07001088 switch (cmd) {
1089 case IWL_TM_CMD_APP2DEV_READ_TRACE:
1090 IWL_DEBUG_INFO(priv, "uCode trace cmd to driver\n");
Johannes Bergc1803c92012-03-07 09:52:14 -08001091 result = iwl_testmode_trace_dump(hw, skb, cb);
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -07001092 break;
Amit Beka6c55f5e2012-01-25 13:30:27 +02001093 case IWL_TM_CMD_APP2DEV_INDIRECT_BUFFER_DUMP:
Hsu, Kenny306713f2011-11-22 23:03:39 -08001094 IWL_DEBUG_INFO(priv, "testmode sram dump cmd to driver\n");
Johannes Bergc1803c92012-03-07 09:52:14 -08001095 result = iwl_testmode_buffer_dump(hw, skb, cb);
Hsu, Kenny306713f2011-11-22 23:03:39 -08001096 break;
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -07001097 default:
1098 result = -EINVAL;
1099 break;
1100 }
1101
Johannes Bergb1eea292012-03-06 13:30:42 -08001102 mutex_unlock(&priv->mutex);
Wey-Yi Guyeb64dca2011-05-31 08:03:02 -07001103 return result;
1104}