cmdresp.c 13 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506
  1. /**
  2. * This file contains the handling of command
  3. * responses as well as events generated by firmware.
  4. */
  5. #include <linux/slab.h>
  6. #include <linux/delay.h>
  7. #include <linux/sched.h>
  8. #include <asm/unaligned.h>
  9. #include <net/cfg80211.h>
  10. #include "cfg.h"
  11. #include "cmd.h"
  12. /**
  13. * @brief This function handles disconnect event. it
  14. * reports disconnect to upper layer, clean tx/rx packets,
  15. * reset link state etc.
  16. *
  17. * @param priv A pointer to struct lbs_private structure
  18. * @return n/a
  19. */
  20. void lbs_mac_event_disconnected(struct lbs_private *priv)
  21. {
  22. if (priv->connect_status != LBS_CONNECTED)
  23. return;
  24. lbs_deb_enter(LBS_DEB_ASSOC);
  25. /*
  26. * Cisco AP sends EAP failure and de-auth in less than 0.5 ms.
  27. * It causes problem in the Supplicant
  28. */
  29. msleep_interruptible(1000);
  30. if (priv->wdev->iftype == NL80211_IFTYPE_STATION)
  31. lbs_send_disconnect_notification(priv);
  32. /* report disconnect to upper layer */
  33. netif_stop_queue(priv->dev);
  34. netif_carrier_off(priv->dev);
  35. /* Free Tx and Rx packets */
  36. kfree_skb(priv->currenttxskb);
  37. priv->currenttxskb = NULL;
  38. priv->tx_pending_len = 0;
  39. priv->connect_status = LBS_DISCONNECTED;
  40. if (priv->psstate != PS_STATE_FULL_POWER) {
  41. /* make firmware to exit PS mode */
  42. lbs_deb_cmd("disconnected, so exit PS mode\n");
  43. lbs_ps_wakeup(priv, 0);
  44. }
  45. lbs_deb_leave(LBS_DEB_ASSOC);
  46. }
  47. static int lbs_ret_reg_access(struct lbs_private *priv,
  48. u16 type, struct cmd_ds_command *resp)
  49. {
  50. int ret = 0;
  51. lbs_deb_enter(LBS_DEB_CMD);
  52. switch (type) {
  53. case CMD_RET(CMD_MAC_REG_ACCESS):
  54. {
  55. struct cmd_ds_mac_reg_access *reg = &resp->params.macreg;
  56. priv->offsetvalue.offset = (u32)le16_to_cpu(reg->offset);
  57. priv->offsetvalue.value = le32_to_cpu(reg->value);
  58. break;
  59. }
  60. case CMD_RET(CMD_BBP_REG_ACCESS):
  61. {
  62. struct cmd_ds_bbp_reg_access *reg = &resp->params.bbpreg;
  63. priv->offsetvalue.offset = (u32)le16_to_cpu(reg->offset);
  64. priv->offsetvalue.value = reg->value;
  65. break;
  66. }
  67. case CMD_RET(CMD_RF_REG_ACCESS):
  68. {
  69. struct cmd_ds_rf_reg_access *reg = &resp->params.rfreg;
  70. priv->offsetvalue.offset = (u32)le16_to_cpu(reg->offset);
  71. priv->offsetvalue.value = reg->value;
  72. break;
  73. }
  74. default:
  75. ret = -1;
  76. }
  77. lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
  78. return ret;
  79. }
  80. /**
  81. * @brief This function parses countryinfo from AP and download country info to FW
  82. * @param priv pointer to struct lbs_private
  83. * @param resp pointer to command response buffer
  84. * @return 0; -1
  85. */
  86. static int lbs_ret_802_11d_domain_info(struct cmd_ds_command *resp)
  87. {
  88. struct cmd_ds_802_11d_domain_info *domaininfo =
  89. &resp->params.domaininforesp;
  90. struct mrvl_ie_domain_param_set *domain = &domaininfo->domain;
  91. u16 action = le16_to_cpu(domaininfo->action);
  92. s16 ret = 0;
  93. u8 nr_triplet = 0;
  94. lbs_deb_enter(LBS_DEB_11D);
  95. lbs_deb_hex(LBS_DEB_11D, "domain info resp", (u8 *) resp,
  96. (int)le16_to_cpu(resp->size));
  97. nr_triplet = (le16_to_cpu(domain->header.len) - COUNTRY_CODE_LEN) /
  98. sizeof(struct ieee80211_country_ie_triplet);
  99. lbs_deb_11d("domain info resp: nr_triplet %d\n", nr_triplet);
  100. if (nr_triplet > MRVDRV_MAX_TRIPLET_802_11D) {
  101. lbs_deb_11d("invalid number of triplets returned!!\n");
  102. return -1;
  103. }
  104. switch (action) {
  105. case CMD_ACT_SET: /*Proc set action */
  106. break;
  107. case CMD_ACT_GET:
  108. break;
  109. default:
  110. lbs_deb_11d("invalid action:%d\n", domaininfo->action);
  111. ret = -1;
  112. break;
  113. }
  114. lbs_deb_leave_args(LBS_DEB_11D, "ret %d", ret);
  115. return ret;
  116. }
  117. static inline int handle_cmd_response(struct lbs_private *priv,
  118. struct cmd_header *cmd_response)
  119. {
  120. struct cmd_ds_command *resp = (struct cmd_ds_command *) cmd_response;
  121. int ret = 0;
  122. unsigned long flags;
  123. uint16_t respcmd = le16_to_cpu(resp->command);
  124. lbs_deb_enter(LBS_DEB_HOST);
  125. switch (respcmd) {
  126. case CMD_RET(CMD_MAC_REG_ACCESS):
  127. case CMD_RET(CMD_BBP_REG_ACCESS):
  128. case CMD_RET(CMD_RF_REG_ACCESS):
  129. ret = lbs_ret_reg_access(priv, respcmd, resp);
  130. break;
  131. case CMD_RET(CMD_802_11_SET_AFC):
  132. case CMD_RET(CMD_802_11_GET_AFC):
  133. spin_lock_irqsave(&priv->driver_lock, flags);
  134. memmove((void *)priv->cur_cmd->callback_arg, &resp->params.afc,
  135. sizeof(struct cmd_ds_802_11_afc));
  136. spin_unlock_irqrestore(&priv->driver_lock, flags);
  137. break;
  138. case CMD_RET(CMD_802_11_BEACON_STOP):
  139. break;
  140. case CMD_RET(CMD_802_11_RSSI):
  141. ret = lbs_ret_802_11_rssi(priv, resp);
  142. break;
  143. case CMD_RET(CMD_802_11D_DOMAIN_INFO):
  144. ret = lbs_ret_802_11d_domain_info(resp);
  145. break;
  146. case CMD_RET(CMD_802_11_TPC_CFG):
  147. spin_lock_irqsave(&priv->driver_lock, flags);
  148. memmove((void *)priv->cur_cmd->callback_arg, &resp->params.tpccfg,
  149. sizeof(struct cmd_ds_802_11_tpc_cfg));
  150. spin_unlock_irqrestore(&priv->driver_lock, flags);
  151. break;
  152. case CMD_RET(CMD_BT_ACCESS):
  153. spin_lock_irqsave(&priv->driver_lock, flags);
  154. if (priv->cur_cmd->callback_arg)
  155. memcpy((void *)priv->cur_cmd->callback_arg,
  156. &resp->params.bt.addr1, 2 * ETH_ALEN);
  157. spin_unlock_irqrestore(&priv->driver_lock, flags);
  158. break;
  159. case CMD_RET(CMD_FWT_ACCESS):
  160. spin_lock_irqsave(&priv->driver_lock, flags);
  161. if (priv->cur_cmd->callback_arg)
  162. memcpy((void *)priv->cur_cmd->callback_arg, &resp->params.fwt,
  163. sizeof(resp->params.fwt));
  164. spin_unlock_irqrestore(&priv->driver_lock, flags);
  165. break;
  166. case CMD_RET(CMD_802_11_BEACON_CTRL):
  167. ret = lbs_ret_802_11_bcn_ctrl(priv, resp);
  168. break;
  169. default:
  170. lbs_pr_err("CMD_RESP: unknown cmd response 0x%04x\n",
  171. le16_to_cpu(resp->command));
  172. break;
  173. }
  174. lbs_deb_leave(LBS_DEB_HOST);
  175. return ret;
  176. }
  177. int lbs_process_command_response(struct lbs_private *priv, u8 *data, u32 len)
  178. {
  179. uint16_t respcmd, curcmd;
  180. struct cmd_header *resp;
  181. int ret = 0;
  182. unsigned long flags;
  183. uint16_t result;
  184. lbs_deb_enter(LBS_DEB_HOST);
  185. mutex_lock(&priv->lock);
  186. spin_lock_irqsave(&priv->driver_lock, flags);
  187. if (!priv->cur_cmd) {
  188. lbs_deb_host("CMD_RESP: cur_cmd is NULL\n");
  189. ret = -1;
  190. spin_unlock_irqrestore(&priv->driver_lock, flags);
  191. goto done;
  192. }
  193. resp = (void *)data;
  194. curcmd = le16_to_cpu(priv->cur_cmd->cmdbuf->command);
  195. respcmd = le16_to_cpu(resp->command);
  196. result = le16_to_cpu(resp->result);
  197. lbs_deb_cmd("CMD_RESP: response 0x%04x, seq %d, size %d\n",
  198. respcmd, le16_to_cpu(resp->seqnum), len);
  199. lbs_deb_hex(LBS_DEB_CMD, "CMD_RESP", (void *) resp, len);
  200. if (resp->seqnum != priv->cur_cmd->cmdbuf->seqnum) {
  201. lbs_pr_info("Received CMD_RESP with invalid sequence %d (expected %d)\n",
  202. le16_to_cpu(resp->seqnum), le16_to_cpu(priv->cur_cmd->cmdbuf->seqnum));
  203. spin_unlock_irqrestore(&priv->driver_lock, flags);
  204. ret = -1;
  205. goto done;
  206. }
  207. if (respcmd != CMD_RET(curcmd) &&
  208. respcmd != CMD_RET_802_11_ASSOCIATE && curcmd != CMD_802_11_ASSOCIATE) {
  209. lbs_pr_info("Invalid CMD_RESP %x to command %x!\n", respcmd, curcmd);
  210. spin_unlock_irqrestore(&priv->driver_lock, flags);
  211. ret = -1;
  212. goto done;
  213. }
  214. if (resp->result == cpu_to_le16(0x0004)) {
  215. /* 0x0004 means -EAGAIN. Drop the response, let it time out
  216. and be resubmitted */
  217. lbs_pr_info("Firmware returns DEFER to command %x. Will let it time out...\n",
  218. le16_to_cpu(resp->command));
  219. spin_unlock_irqrestore(&priv->driver_lock, flags);
  220. ret = -1;
  221. goto done;
  222. }
  223. /* Now we got response from FW, cancel the command timer */
  224. del_timer(&priv->command_timer);
  225. priv->cmd_timed_out = 0;
  226. /* Store the response code to cur_cmd_retcode. */
  227. priv->cur_cmd_retcode = result;
  228. if (respcmd == CMD_RET(CMD_802_11_PS_MODE)) {
  229. struct cmd_ds_802_11_ps_mode *psmode = (void *) &resp[1];
  230. u16 action = le16_to_cpu(psmode->action);
  231. lbs_deb_host(
  232. "CMD_RESP: PS_MODE cmd reply result 0x%x, action 0x%x\n",
  233. result, action);
  234. if (result) {
  235. lbs_deb_host("CMD_RESP: PS command failed with 0x%x\n",
  236. result);
  237. /*
  238. * We should not re-try enter-ps command in
  239. * ad-hoc mode. It takes place in
  240. * lbs_execute_next_command().
  241. */
  242. if (priv->wdev->iftype == NL80211_IFTYPE_MONITOR &&
  243. action == CMD_SUBCMD_ENTER_PS)
  244. priv->psmode = LBS802_11POWERMODECAM;
  245. } else if (action == CMD_SUBCMD_ENTER_PS) {
  246. priv->needtowakeup = 0;
  247. priv->psstate = PS_STATE_AWAKE;
  248. lbs_deb_host("CMD_RESP: ENTER_PS command response\n");
  249. if (priv->connect_status != LBS_CONNECTED) {
  250. /*
  251. * When Deauth Event received before Enter_PS command
  252. * response, We need to wake up the firmware.
  253. */
  254. lbs_deb_host(
  255. "disconnected, invoking lbs_ps_wakeup\n");
  256. spin_unlock_irqrestore(&priv->driver_lock, flags);
  257. mutex_unlock(&priv->lock);
  258. lbs_ps_wakeup(priv, 0);
  259. mutex_lock(&priv->lock);
  260. spin_lock_irqsave(&priv->driver_lock, flags);
  261. }
  262. } else if (action == CMD_SUBCMD_EXIT_PS) {
  263. priv->needtowakeup = 0;
  264. priv->psstate = PS_STATE_FULL_POWER;
  265. lbs_deb_host("CMD_RESP: EXIT_PS command response\n");
  266. } else {
  267. lbs_deb_host("CMD_RESP: PS action 0x%X\n", action);
  268. }
  269. lbs_complete_command(priv, priv->cur_cmd, result);
  270. spin_unlock_irqrestore(&priv->driver_lock, flags);
  271. ret = 0;
  272. goto done;
  273. }
  274. /* If the command is not successful, cleanup and return failure */
  275. if ((result != 0 || !(respcmd & 0x8000))) {
  276. lbs_deb_host("CMD_RESP: error 0x%04x in command reply 0x%04x\n",
  277. result, respcmd);
  278. /*
  279. * Handling errors here
  280. */
  281. switch (respcmd) {
  282. case CMD_RET(CMD_GET_HW_SPEC):
  283. case CMD_RET(CMD_802_11_RESET):
  284. lbs_deb_host("CMD_RESP: reset failed\n");
  285. break;
  286. }
  287. lbs_complete_command(priv, priv->cur_cmd, result);
  288. spin_unlock_irqrestore(&priv->driver_lock, flags);
  289. ret = -1;
  290. goto done;
  291. }
  292. spin_unlock_irqrestore(&priv->driver_lock, flags);
  293. if (priv->cur_cmd && priv->cur_cmd->callback) {
  294. ret = priv->cur_cmd->callback(priv, priv->cur_cmd->callback_arg,
  295. resp);
  296. } else
  297. ret = handle_cmd_response(priv, resp);
  298. spin_lock_irqsave(&priv->driver_lock, flags);
  299. if (priv->cur_cmd) {
  300. /* Clean up and Put current command back to cmdfreeq */
  301. lbs_complete_command(priv, priv->cur_cmd, result);
  302. }
  303. spin_unlock_irqrestore(&priv->driver_lock, flags);
  304. done:
  305. mutex_unlock(&priv->lock);
  306. lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
  307. return ret;
  308. }
  309. int lbs_process_event(struct lbs_private *priv, u32 event)
  310. {
  311. int ret = 0;
  312. struct cmd_header cmd;
  313. lbs_deb_enter(LBS_DEB_CMD);
  314. switch (event) {
  315. case MACREG_INT_CODE_LINK_SENSED:
  316. lbs_deb_cmd("EVENT: link sensed\n");
  317. break;
  318. case MACREG_INT_CODE_DEAUTHENTICATED:
  319. lbs_deb_cmd("EVENT: deauthenticated\n");
  320. lbs_mac_event_disconnected(priv);
  321. break;
  322. case MACREG_INT_CODE_DISASSOCIATED:
  323. lbs_deb_cmd("EVENT: disassociated\n");
  324. lbs_mac_event_disconnected(priv);
  325. break;
  326. case MACREG_INT_CODE_LINK_LOST_NO_SCAN:
  327. lbs_deb_cmd("EVENT: link lost\n");
  328. lbs_mac_event_disconnected(priv);
  329. break;
  330. case MACREG_INT_CODE_PS_SLEEP:
  331. lbs_deb_cmd("EVENT: ps sleep\n");
  332. /* handle unexpected PS SLEEP event */
  333. if (priv->psstate == PS_STATE_FULL_POWER) {
  334. lbs_deb_cmd(
  335. "EVENT: in FULL POWER mode, ignoreing PS_SLEEP\n");
  336. break;
  337. }
  338. priv->psstate = PS_STATE_PRE_SLEEP;
  339. lbs_ps_confirm_sleep(priv);
  340. break;
  341. case MACREG_INT_CODE_HOST_AWAKE:
  342. lbs_deb_cmd("EVENT: host awake\n");
  343. if (priv->reset_deep_sleep_wakeup)
  344. priv->reset_deep_sleep_wakeup(priv);
  345. priv->is_deep_sleep = 0;
  346. lbs_cmd_async(priv, CMD_802_11_WAKEUP_CONFIRM, &cmd,
  347. sizeof(cmd));
  348. priv->is_host_sleep_activated = 0;
  349. wake_up_interruptible(&priv->host_sleep_q);
  350. break;
  351. case MACREG_INT_CODE_DEEP_SLEEP_AWAKE:
  352. if (priv->reset_deep_sleep_wakeup)
  353. priv->reset_deep_sleep_wakeup(priv);
  354. lbs_deb_cmd("EVENT: ds awake\n");
  355. priv->is_deep_sleep = 0;
  356. priv->wakeup_dev_required = 0;
  357. wake_up_interruptible(&priv->ds_awake_q);
  358. break;
  359. case MACREG_INT_CODE_PS_AWAKE:
  360. lbs_deb_cmd("EVENT: ps awake\n");
  361. /* handle unexpected PS AWAKE event */
  362. if (priv->psstate == PS_STATE_FULL_POWER) {
  363. lbs_deb_cmd(
  364. "EVENT: In FULL POWER mode - ignore PS AWAKE\n");
  365. break;
  366. }
  367. priv->psstate = PS_STATE_AWAKE;
  368. if (priv->needtowakeup) {
  369. /*
  370. * wait for the command processing to finish
  371. * before resuming sending
  372. * priv->needtowakeup will be set to FALSE
  373. * in lbs_ps_wakeup()
  374. */
  375. lbs_deb_cmd("waking up ...\n");
  376. lbs_ps_wakeup(priv, 0);
  377. }
  378. break;
  379. case MACREG_INT_CODE_MIC_ERR_UNICAST:
  380. lbs_deb_cmd("EVENT: UNICAST MIC ERROR\n");
  381. lbs_send_mic_failureevent(priv, event);
  382. break;
  383. case MACREG_INT_CODE_MIC_ERR_MULTICAST:
  384. lbs_deb_cmd("EVENT: MULTICAST MIC ERROR\n");
  385. lbs_send_mic_failureevent(priv, event);
  386. break;
  387. case MACREG_INT_CODE_MIB_CHANGED:
  388. lbs_deb_cmd("EVENT: MIB CHANGED\n");
  389. break;
  390. case MACREG_INT_CODE_INIT_DONE:
  391. lbs_deb_cmd("EVENT: INIT DONE\n");
  392. break;
  393. case MACREG_INT_CODE_ADHOC_BCN_LOST:
  394. lbs_deb_cmd("EVENT: ADHOC beacon lost\n");
  395. break;
  396. case MACREG_INT_CODE_RSSI_LOW:
  397. lbs_pr_alert("EVENT: rssi low\n");
  398. break;
  399. case MACREG_INT_CODE_SNR_LOW:
  400. lbs_pr_alert("EVENT: snr low\n");
  401. break;
  402. case MACREG_INT_CODE_MAX_FAIL:
  403. lbs_pr_alert("EVENT: max fail\n");
  404. break;
  405. case MACREG_INT_CODE_RSSI_HIGH:
  406. lbs_pr_alert("EVENT: rssi high\n");
  407. break;
  408. case MACREG_INT_CODE_SNR_HIGH:
  409. lbs_pr_alert("EVENT: snr high\n");
  410. break;
  411. case MACREG_INT_CODE_MESH_AUTO_STARTED:
  412. /* Ignore spurious autostart events */
  413. lbs_pr_info("EVENT: MESH_AUTO_STARTED (ignoring)\n");
  414. break;
  415. default:
  416. lbs_pr_alert("EVENT: unknown event id %d\n", event);
  417. break;
  418. }
  419. lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
  420. return ret;
  421. }