sbp2.c 48 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228122912301231123212331234123512361237123812391240124112421243124412451246124712481249125012511252125312541255125612571258125912601261126212631264126512661267126812691270127112721273127412751276127712781279128012811282128312841285128612871288128912901291129212931294129512961297129812991300130113021303130413051306130713081309131013111312131313141315131613171318131913201321132213231324132513261327132813291330133113321333133413351336133713381339134013411342134313441345134613471348134913501351135213531354135513561357135813591360136113621363136413651366136713681369137013711372137313741375137613771378137913801381138213831384138513861387138813891390139113921393139413951396139713981399140014011402140314041405140614071408140914101411141214131414141514161417141814191420142114221423142414251426142714281429143014311432143314341435143614371438143914401441144214431444144514461447144814491450145114521453145414551456145714581459146014611462146314641465146614671468146914701471147214731474147514761477147814791480148114821483148414851486148714881489149014911492149314941495149614971498149915001501150215031504150515061507150815091510151115121513151415151516151715181519152015211522152315241525152615271528152915301531153215331534153515361537153815391540154115421543154415451546154715481549155015511552155315541555155615571558155915601561156215631564156515661567156815691570157115721573157415751576157715781579158015811582158315841585158615871588158915901591159215931594159515961597159815991600160116021603160416051606160716081609161016111612161316141615161616171618161916201621162216231624162516261627162816291630163116321633163416351636163716381639164016411642164316441645164616471648164916501651
  1. /*
  2. * SBP2 driver (SCSI over IEEE1394)
  3. *
  4. * Copyright (C) 2005-2007 Kristian Hoegsberg <krh@bitplanet.net>
  5. *
  6. * This program is free software; you can redistribute it and/or modify
  7. * it under the terms of the GNU General Public License as published by
  8. * the Free Software Foundation; either version 2 of the License, or
  9. * (at your option) any later version.
  10. *
  11. * This program is distributed in the hope that it will be useful,
  12. * but WITHOUT ANY WARRANTY; without even the implied warranty of
  13. * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  14. * GNU General Public License for more details.
  15. *
  16. * You should have received a copy of the GNU General Public License
  17. * along with this program; if not, write to the Free Software Foundation,
  18. * Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA.
  19. */
  20. /*
  21. * The basic structure of this driver is based on the old storage driver,
  22. * drivers/ieee1394/sbp2.c, originally written by
  23. * James Goodwin <jamesg@filanet.com>
  24. * with later contributions and ongoing maintenance from
  25. * Ben Collins <bcollins@debian.org>,
  26. * Stefan Richter <stefanr@s5r6.in-berlin.de>
  27. * and many others.
  28. */
  29. #include <linux/blkdev.h>
  30. #include <linux/bug.h>
  31. #include <linux/completion.h>
  32. #include <linux/delay.h>
  33. #include <linux/device.h>
  34. #include <linux/dma-mapping.h>
  35. #include <linux/firewire.h>
  36. #include <linux/firewire-constants.h>
  37. #include <linux/init.h>
  38. #include <linux/jiffies.h>
  39. #include <linux/kernel.h>
  40. #include <linux/kref.h>
  41. #include <linux/list.h>
  42. #include <linux/mod_devicetable.h>
  43. #include <linux/module.h>
  44. #include <linux/moduleparam.h>
  45. #include <linux/scatterlist.h>
  46. #include <linux/slab.h>
  47. #include <linux/spinlock.h>
  48. #include <linux/string.h>
  49. #include <linux/stringify.h>
  50. #include <linux/workqueue.h>
  51. #include <asm/byteorder.h>
  52. #include <asm/system.h>
  53. #include <scsi/scsi.h>
  54. #include <scsi/scsi_cmnd.h>
  55. #include <scsi/scsi_device.h>
  56. #include <scsi/scsi_host.h>
  57. /*
  58. * So far only bridges from Oxford Semiconductor are known to support
  59. * concurrent logins. Depending on firmware, four or two concurrent logins
  60. * are possible on OXFW911 and newer Oxsemi bridges.
  61. *
  62. * Concurrent logins are useful together with cluster filesystems.
  63. */
  64. static int sbp2_param_exclusive_login = 1;
  65. module_param_named(exclusive_login, sbp2_param_exclusive_login, bool, 0644);
  66. MODULE_PARM_DESC(exclusive_login, "Exclusive login to sbp2 device "
  67. "(default = Y, use N for concurrent initiators)");
  68. /*
  69. * Flags for firmware oddities
  70. *
  71. * - 128kB max transfer
  72. * Limit transfer size. Necessary for some old bridges.
  73. *
  74. * - 36 byte inquiry
  75. * When scsi_mod probes the device, let the inquiry command look like that
  76. * from MS Windows.
  77. *
  78. * - skip mode page 8
  79. * Suppress sending of mode_sense for mode page 8 if the device pretends to
  80. * support the SCSI Primary Block commands instead of Reduced Block Commands.
  81. *
  82. * - fix capacity
  83. * Tell sd_mod to correct the last sector number reported by read_capacity.
  84. * Avoids access beyond actual disk limits on devices with an off-by-one bug.
  85. * Don't use this with devices which don't have this bug.
  86. *
  87. * - delay inquiry
  88. * Wait extra SBP2_INQUIRY_DELAY seconds after login before SCSI inquiry.
  89. *
  90. * - power condition
  91. * Set the power condition field in the START STOP UNIT commands sent by
  92. * sd_mod on suspend, resume, and shutdown (if manage_start_stop is on).
  93. * Some disks need this to spin down or to resume properly.
  94. *
  95. * - override internal blacklist
  96. * Instead of adding to the built-in blacklist, use only the workarounds
  97. * specified in the module load parameter.
  98. * Useful if a blacklist entry interfered with a non-broken device.
  99. */
  100. #define SBP2_WORKAROUND_128K_MAX_TRANS 0x1
  101. #define SBP2_WORKAROUND_INQUIRY_36 0x2
  102. #define SBP2_WORKAROUND_MODE_SENSE_8 0x4
  103. #define SBP2_WORKAROUND_FIX_CAPACITY 0x8
  104. #define SBP2_WORKAROUND_DELAY_INQUIRY 0x10
  105. #define SBP2_INQUIRY_DELAY 12
  106. #define SBP2_WORKAROUND_POWER_CONDITION 0x20
  107. #define SBP2_WORKAROUND_OVERRIDE 0x100
  108. static int sbp2_param_workarounds;
  109. module_param_named(workarounds, sbp2_param_workarounds, int, 0644);
  110. MODULE_PARM_DESC(workarounds, "Work around device bugs (default = 0"
  111. ", 128kB max transfer = " __stringify(SBP2_WORKAROUND_128K_MAX_TRANS)
  112. ", 36 byte inquiry = " __stringify(SBP2_WORKAROUND_INQUIRY_36)
  113. ", skip mode page 8 = " __stringify(SBP2_WORKAROUND_MODE_SENSE_8)
  114. ", fix capacity = " __stringify(SBP2_WORKAROUND_FIX_CAPACITY)
  115. ", delay inquiry = " __stringify(SBP2_WORKAROUND_DELAY_INQUIRY)
  116. ", set power condition in start stop unit = "
  117. __stringify(SBP2_WORKAROUND_POWER_CONDITION)
  118. ", override internal blacklist = " __stringify(SBP2_WORKAROUND_OVERRIDE)
  119. ", or a combination)");
  120. /* I don't know why the SCSI stack doesn't define something like this... */
  121. typedef void (*scsi_done_fn_t)(struct scsi_cmnd *);
  122. static const char sbp2_driver_name[] = "sbp2";
  123. /*
  124. * We create one struct sbp2_logical_unit per SBP-2 Logical Unit Number Entry
  125. * and one struct scsi_device per sbp2_logical_unit.
  126. */
  127. struct sbp2_logical_unit {
  128. struct sbp2_target *tgt;
  129. struct list_head link;
  130. struct fw_address_handler address_handler;
  131. struct list_head orb_list;
  132. u64 command_block_agent_address;
  133. u16 lun;
  134. int login_id;
  135. /*
  136. * The generation is updated once we've logged in or reconnected
  137. * to the logical unit. Thus, I/O to the device will automatically
  138. * fail and get retried if it happens in a window where the device
  139. * is not ready, e.g. after a bus reset but before we reconnect.
  140. */
  141. int generation;
  142. int retries;
  143. struct delayed_work work;
  144. bool has_sdev;
  145. bool blocked;
  146. };
  147. /*
  148. * We create one struct sbp2_target per IEEE 1212 Unit Directory
  149. * and one struct Scsi_Host per sbp2_target.
  150. */
  151. struct sbp2_target {
  152. struct kref kref;
  153. struct fw_unit *unit;
  154. const char *bus_id;
  155. struct list_head lu_list;
  156. u64 management_agent_address;
  157. u64 guid;
  158. int directory_id;
  159. int node_id;
  160. int address_high;
  161. unsigned int workarounds;
  162. unsigned int mgt_orb_timeout;
  163. unsigned int max_payload;
  164. int dont_block; /* counter for each logical unit */
  165. int blocked; /* ditto */
  166. };
  167. /* Impossible login_id, to detect logout attempt before successful login */
  168. #define INVALID_LOGIN_ID 0x10000
  169. /*
  170. * Per section 7.4.8 of the SBP-2 spec, a mgt_ORB_timeout value can be
  171. * provided in the config rom. Most devices do provide a value, which
  172. * we'll use for login management orbs, but with some sane limits.
  173. */
  174. #define SBP2_MIN_LOGIN_ORB_TIMEOUT 5000U /* Timeout in ms */
  175. #define SBP2_MAX_LOGIN_ORB_TIMEOUT 40000U /* Timeout in ms */
  176. #define SBP2_ORB_TIMEOUT 2000U /* Timeout in ms */
  177. #define SBP2_ORB_NULL 0x80000000
  178. #define SBP2_RETRY_LIMIT 0xf /* 15 retries */
  179. #define SBP2_CYCLE_LIMIT (0xc8 << 12) /* 200 125us cycles */
  180. /*
  181. * The default maximum s/g segment size of a FireWire controller is
  182. * usually 0x10000, but SBP-2 only allows 0xffff. Since buffers have to
  183. * be quadlet-aligned, we set the length limit to 0xffff & ~3.
  184. */
  185. #define SBP2_MAX_SEG_SIZE 0xfffc
  186. /* Unit directory keys */
  187. #define SBP2_CSR_UNIT_CHARACTERISTICS 0x3a
  188. #define SBP2_CSR_FIRMWARE_REVISION 0x3c
  189. #define SBP2_CSR_LOGICAL_UNIT_NUMBER 0x14
  190. #define SBP2_CSR_LOGICAL_UNIT_DIRECTORY 0xd4
  191. /* Management orb opcodes */
  192. #define SBP2_LOGIN_REQUEST 0x0
  193. #define SBP2_QUERY_LOGINS_REQUEST 0x1
  194. #define SBP2_RECONNECT_REQUEST 0x3
  195. #define SBP2_SET_PASSWORD_REQUEST 0x4
  196. #define SBP2_LOGOUT_REQUEST 0x7
  197. #define SBP2_ABORT_TASK_REQUEST 0xb
  198. #define SBP2_ABORT_TASK_SET 0xc
  199. #define SBP2_LOGICAL_UNIT_RESET 0xe
  200. #define SBP2_TARGET_RESET_REQUEST 0xf
  201. /* Offsets for command block agent registers */
  202. #define SBP2_AGENT_STATE 0x00
  203. #define SBP2_AGENT_RESET 0x04
  204. #define SBP2_ORB_POINTER 0x08
  205. #define SBP2_DOORBELL 0x10
  206. #define SBP2_UNSOLICITED_STATUS_ENABLE 0x14
  207. /* Status write response codes */
  208. #define SBP2_STATUS_REQUEST_COMPLETE 0x0
  209. #define SBP2_STATUS_TRANSPORT_FAILURE 0x1
  210. #define SBP2_STATUS_ILLEGAL_REQUEST 0x2
  211. #define SBP2_STATUS_VENDOR_DEPENDENT 0x3
  212. #define STATUS_GET_ORB_HIGH(v) ((v).status & 0xffff)
  213. #define STATUS_GET_SBP_STATUS(v) (((v).status >> 16) & 0xff)
  214. #define STATUS_GET_LEN(v) (((v).status >> 24) & 0x07)
  215. #define STATUS_GET_DEAD(v) (((v).status >> 27) & 0x01)
  216. #define STATUS_GET_RESPONSE(v) (((v).status >> 28) & 0x03)
  217. #define STATUS_GET_SOURCE(v) (((v).status >> 30) & 0x03)
  218. #define STATUS_GET_ORB_LOW(v) ((v).orb_low)
  219. #define STATUS_GET_DATA(v) ((v).data)
  220. struct sbp2_status {
  221. u32 status;
  222. u32 orb_low;
  223. u8 data[24];
  224. };
  225. struct sbp2_pointer {
  226. __be32 high;
  227. __be32 low;
  228. };
  229. struct sbp2_orb {
  230. struct fw_transaction t;
  231. struct kref kref;
  232. dma_addr_t request_bus;
  233. int rcode;
  234. struct sbp2_pointer pointer;
  235. void (*callback)(struct sbp2_orb * orb, struct sbp2_status * status);
  236. struct list_head link;
  237. };
  238. #define MANAGEMENT_ORB_LUN(v) ((v))
  239. #define MANAGEMENT_ORB_FUNCTION(v) ((v) << 16)
  240. #define MANAGEMENT_ORB_RECONNECT(v) ((v) << 20)
  241. #define MANAGEMENT_ORB_EXCLUSIVE(v) ((v) ? 1 << 28 : 0)
  242. #define MANAGEMENT_ORB_REQUEST_FORMAT(v) ((v) << 29)
  243. #define MANAGEMENT_ORB_NOTIFY ((1) << 31)
  244. #define MANAGEMENT_ORB_RESPONSE_LENGTH(v) ((v))
  245. #define MANAGEMENT_ORB_PASSWORD_LENGTH(v) ((v) << 16)
  246. struct sbp2_management_orb {
  247. struct sbp2_orb base;
  248. struct {
  249. struct sbp2_pointer password;
  250. struct sbp2_pointer response;
  251. __be32 misc;
  252. __be32 length;
  253. struct sbp2_pointer status_fifo;
  254. } request;
  255. __be32 response[4];
  256. dma_addr_t response_bus;
  257. struct completion done;
  258. struct sbp2_status status;
  259. };
  260. struct sbp2_login_response {
  261. __be32 misc;
  262. struct sbp2_pointer command_block_agent;
  263. __be32 reconnect_hold;
  264. };
  265. #define COMMAND_ORB_DATA_SIZE(v) ((v))
  266. #define COMMAND_ORB_PAGE_SIZE(v) ((v) << 16)
  267. #define COMMAND_ORB_PAGE_TABLE_PRESENT ((1) << 19)
  268. #define COMMAND_ORB_MAX_PAYLOAD(v) ((v) << 20)
  269. #define COMMAND_ORB_SPEED(v) ((v) << 24)
  270. #define COMMAND_ORB_DIRECTION ((1) << 27)
  271. #define COMMAND_ORB_REQUEST_FORMAT(v) ((v) << 29)
  272. #define COMMAND_ORB_NOTIFY ((1) << 31)
  273. struct sbp2_command_orb {
  274. struct sbp2_orb base;
  275. struct {
  276. struct sbp2_pointer next;
  277. struct sbp2_pointer data_descriptor;
  278. __be32 misc;
  279. u8 command_block[12];
  280. } request;
  281. struct scsi_cmnd *cmd;
  282. scsi_done_fn_t done;
  283. struct sbp2_logical_unit *lu;
  284. struct sbp2_pointer page_table[SG_ALL] __attribute__((aligned(8)));
  285. dma_addr_t page_table_bus;
  286. };
  287. #define SBP2_ROM_VALUE_WILDCARD ~0 /* match all */
  288. #define SBP2_ROM_VALUE_MISSING 0xff000000 /* not present in the unit dir. */
  289. /*
  290. * List of devices with known bugs.
  291. *
  292. * The firmware_revision field, masked with 0xffff00, is the best
  293. * indicator for the type of bridge chip of a device. It yields a few
  294. * false positives but this did not break correctly behaving devices
  295. * so far.
  296. */
  297. static const struct {
  298. u32 firmware_revision;
  299. u32 model;
  300. unsigned int workarounds;
  301. } sbp2_workarounds_table[] = {
  302. /* DViCO Momobay CX-1 with TSB42AA9 bridge */ {
  303. .firmware_revision = 0x002800,
  304. .model = 0x001010,
  305. .workarounds = SBP2_WORKAROUND_INQUIRY_36 |
  306. SBP2_WORKAROUND_MODE_SENSE_8 |
  307. SBP2_WORKAROUND_POWER_CONDITION,
  308. },
  309. /* DViCO Momobay FX-3A with TSB42AA9A bridge */ {
  310. .firmware_revision = 0x002800,
  311. .model = 0x000000,
  312. .workarounds = SBP2_WORKAROUND_DELAY_INQUIRY |
  313. SBP2_WORKAROUND_POWER_CONDITION,
  314. },
  315. /* Initio bridges, actually only needed for some older ones */ {
  316. .firmware_revision = 0x000200,
  317. .model = SBP2_ROM_VALUE_WILDCARD,
  318. .workarounds = SBP2_WORKAROUND_INQUIRY_36,
  319. },
  320. /* PL-3507 bridge with Prolific firmware */ {
  321. .firmware_revision = 0x012800,
  322. .model = SBP2_ROM_VALUE_WILDCARD,
  323. .workarounds = SBP2_WORKAROUND_POWER_CONDITION,
  324. },
  325. /* Symbios bridge */ {
  326. .firmware_revision = 0xa0b800,
  327. .model = SBP2_ROM_VALUE_WILDCARD,
  328. .workarounds = SBP2_WORKAROUND_128K_MAX_TRANS,
  329. },
  330. /* Datafab MD2-FW2 with Symbios/LSILogic SYM13FW500 bridge */ {
  331. .firmware_revision = 0x002600,
  332. .model = SBP2_ROM_VALUE_WILDCARD,
  333. .workarounds = SBP2_WORKAROUND_128K_MAX_TRANS,
  334. },
  335. /*
  336. * iPod 2nd generation: needs 128k max transfer size workaround
  337. * iPod 3rd generation: needs fix capacity workaround
  338. */
  339. {
  340. .firmware_revision = 0x0a2700,
  341. .model = 0x000000,
  342. .workarounds = SBP2_WORKAROUND_128K_MAX_TRANS |
  343. SBP2_WORKAROUND_FIX_CAPACITY,
  344. },
  345. /* iPod 4th generation */ {
  346. .firmware_revision = 0x0a2700,
  347. .model = 0x000021,
  348. .workarounds = SBP2_WORKAROUND_FIX_CAPACITY,
  349. },
  350. /* iPod mini */ {
  351. .firmware_revision = 0x0a2700,
  352. .model = 0x000022,
  353. .workarounds = SBP2_WORKAROUND_FIX_CAPACITY,
  354. },
  355. /* iPod mini */ {
  356. .firmware_revision = 0x0a2700,
  357. .model = 0x000023,
  358. .workarounds = SBP2_WORKAROUND_FIX_CAPACITY,
  359. },
  360. /* iPod Photo */ {
  361. .firmware_revision = 0x0a2700,
  362. .model = 0x00007e,
  363. .workarounds = SBP2_WORKAROUND_FIX_CAPACITY,
  364. }
  365. };
  366. static void free_orb(struct kref *kref)
  367. {
  368. struct sbp2_orb *orb = container_of(kref, struct sbp2_orb, kref);
  369. kfree(orb);
  370. }
  371. static void sbp2_status_write(struct fw_card *card, struct fw_request *request,
  372. int tcode, int destination, int source,
  373. int generation, int speed,
  374. unsigned long long offset,
  375. void *payload, size_t length, void *callback_data)
  376. {
  377. struct sbp2_logical_unit *lu = callback_data;
  378. struct sbp2_orb *orb;
  379. struct sbp2_status status;
  380. size_t header_size;
  381. unsigned long flags;
  382. if (tcode != TCODE_WRITE_BLOCK_REQUEST ||
  383. length == 0 || length > sizeof(status)) {
  384. fw_send_response(card, request, RCODE_TYPE_ERROR);
  385. return;
  386. }
  387. header_size = min(length, 2 * sizeof(u32));
  388. fw_memcpy_from_be32(&status, payload, header_size);
  389. if (length > header_size)
  390. memcpy(status.data, payload + 8, length - header_size);
  391. if (STATUS_GET_SOURCE(status) == 2 || STATUS_GET_SOURCE(status) == 3) {
  392. fw_notify("non-orb related status write, not handled\n");
  393. fw_send_response(card, request, RCODE_COMPLETE);
  394. return;
  395. }
  396. /* Lookup the orb corresponding to this status write. */
  397. spin_lock_irqsave(&card->lock, flags);
  398. list_for_each_entry(orb, &lu->orb_list, link) {
  399. if (STATUS_GET_ORB_HIGH(status) == 0 &&
  400. STATUS_GET_ORB_LOW(status) == orb->request_bus) {
  401. orb->rcode = RCODE_COMPLETE;
  402. list_del(&orb->link);
  403. break;
  404. }
  405. }
  406. spin_unlock_irqrestore(&card->lock, flags);
  407. if (&orb->link != &lu->orb_list)
  408. orb->callback(orb, &status);
  409. else
  410. fw_error("status write for unknown orb\n");
  411. kref_put(&orb->kref, free_orb);
  412. fw_send_response(card, request, RCODE_COMPLETE);
  413. }
  414. static void complete_transaction(struct fw_card *card, int rcode,
  415. void *payload, size_t length, void *data)
  416. {
  417. struct sbp2_orb *orb = data;
  418. unsigned long flags;
  419. /*
  420. * This is a little tricky. We can get the status write for
  421. * the orb before we get this callback. The status write
  422. * handler above will assume the orb pointer transaction was
  423. * successful and set the rcode to RCODE_COMPLETE for the orb.
  424. * So this callback only sets the rcode if it hasn't already
  425. * been set and only does the cleanup if the transaction
  426. * failed and we didn't already get a status write.
  427. */
  428. spin_lock_irqsave(&card->lock, flags);
  429. if (orb->rcode == -1)
  430. orb->rcode = rcode;
  431. if (orb->rcode != RCODE_COMPLETE) {
  432. list_del(&orb->link);
  433. spin_unlock_irqrestore(&card->lock, flags);
  434. orb->callback(orb, NULL);
  435. } else {
  436. spin_unlock_irqrestore(&card->lock, flags);
  437. }
  438. kref_put(&orb->kref, free_orb);
  439. }
  440. static void sbp2_send_orb(struct sbp2_orb *orb, struct sbp2_logical_unit *lu,
  441. int node_id, int generation, u64 offset)
  442. {
  443. struct fw_device *device = fw_device(lu->tgt->unit->device.parent);
  444. unsigned long flags;
  445. orb->pointer.high = 0;
  446. orb->pointer.low = cpu_to_be32(orb->request_bus);
  447. spin_lock_irqsave(&device->card->lock, flags);
  448. list_add_tail(&orb->link, &lu->orb_list);
  449. spin_unlock_irqrestore(&device->card->lock, flags);
  450. /* Take a ref for the orb list and for the transaction callback. */
  451. kref_get(&orb->kref);
  452. kref_get(&orb->kref);
  453. fw_send_request(device->card, &orb->t, TCODE_WRITE_BLOCK_REQUEST,
  454. node_id, generation, device->max_speed, offset,
  455. &orb->pointer, sizeof(orb->pointer),
  456. complete_transaction, orb);
  457. }
  458. static int sbp2_cancel_orbs(struct sbp2_logical_unit *lu)
  459. {
  460. struct fw_device *device = fw_device(lu->tgt->unit->device.parent);
  461. struct sbp2_orb *orb, *next;
  462. struct list_head list;
  463. unsigned long flags;
  464. int retval = -ENOENT;
  465. INIT_LIST_HEAD(&list);
  466. spin_lock_irqsave(&device->card->lock, flags);
  467. list_splice_init(&lu->orb_list, &list);
  468. spin_unlock_irqrestore(&device->card->lock, flags);
  469. list_for_each_entry_safe(orb, next, &list, link) {
  470. retval = 0;
  471. if (fw_cancel_transaction(device->card, &orb->t) == 0)
  472. continue;
  473. orb->rcode = RCODE_CANCELLED;
  474. orb->callback(orb, NULL);
  475. }
  476. return retval;
  477. }
  478. static void complete_management_orb(struct sbp2_orb *base_orb,
  479. struct sbp2_status *status)
  480. {
  481. struct sbp2_management_orb *orb =
  482. container_of(base_orb, struct sbp2_management_orb, base);
  483. if (status)
  484. memcpy(&orb->status, status, sizeof(*status));
  485. complete(&orb->done);
  486. }
  487. static int sbp2_send_management_orb(struct sbp2_logical_unit *lu, int node_id,
  488. int generation, int function,
  489. int lun_or_login_id, void *response)
  490. {
  491. struct fw_device *device = fw_device(lu->tgt->unit->device.parent);
  492. struct sbp2_management_orb *orb;
  493. unsigned int timeout;
  494. int retval = -ENOMEM;
  495. if (function == SBP2_LOGOUT_REQUEST && fw_device_is_shutdown(device))
  496. return 0;
  497. orb = kzalloc(sizeof(*orb), GFP_ATOMIC);
  498. if (orb == NULL)
  499. return -ENOMEM;
  500. kref_init(&orb->base.kref);
  501. orb->response_bus =
  502. dma_map_single(device->card->device, &orb->response,
  503. sizeof(orb->response), DMA_FROM_DEVICE);
  504. if (dma_mapping_error(device->card->device, orb->response_bus))
  505. goto fail_mapping_response;
  506. orb->request.response.high = 0;
  507. orb->request.response.low = cpu_to_be32(orb->response_bus);
  508. orb->request.misc = cpu_to_be32(
  509. MANAGEMENT_ORB_NOTIFY |
  510. MANAGEMENT_ORB_FUNCTION(function) |
  511. MANAGEMENT_ORB_LUN(lun_or_login_id));
  512. orb->request.length = cpu_to_be32(
  513. MANAGEMENT_ORB_RESPONSE_LENGTH(sizeof(orb->response)));
  514. orb->request.status_fifo.high =
  515. cpu_to_be32(lu->address_handler.offset >> 32);
  516. orb->request.status_fifo.low =
  517. cpu_to_be32(lu->address_handler.offset);
  518. if (function == SBP2_LOGIN_REQUEST) {
  519. /* Ask for 2^2 == 4 seconds reconnect grace period */
  520. orb->request.misc |= cpu_to_be32(
  521. MANAGEMENT_ORB_RECONNECT(2) |
  522. MANAGEMENT_ORB_EXCLUSIVE(sbp2_param_exclusive_login));
  523. timeout = lu->tgt->mgt_orb_timeout;
  524. } else {
  525. timeout = SBP2_ORB_TIMEOUT;
  526. }
  527. init_completion(&orb->done);
  528. orb->base.callback = complete_management_orb;
  529. orb->base.request_bus =
  530. dma_map_single(device->card->device, &orb->request,
  531. sizeof(orb->request), DMA_TO_DEVICE);
  532. if (dma_mapping_error(device->card->device, orb->base.request_bus))
  533. goto fail_mapping_request;
  534. sbp2_send_orb(&orb->base, lu, node_id, generation,
  535. lu->tgt->management_agent_address);
  536. wait_for_completion_timeout(&orb->done, msecs_to_jiffies(timeout));
  537. retval = -EIO;
  538. if (sbp2_cancel_orbs(lu) == 0) {
  539. fw_error("%s: orb reply timed out, rcode=0x%02x\n",
  540. lu->tgt->bus_id, orb->base.rcode);
  541. goto out;
  542. }
  543. if (orb->base.rcode != RCODE_COMPLETE) {
  544. fw_error("%s: management write failed, rcode 0x%02x\n",
  545. lu->tgt->bus_id, orb->base.rcode);
  546. goto out;
  547. }
  548. if (STATUS_GET_RESPONSE(orb->status) != 0 ||
  549. STATUS_GET_SBP_STATUS(orb->status) != 0) {
  550. fw_error("%s: error status: %d:%d\n", lu->tgt->bus_id,
  551. STATUS_GET_RESPONSE(orb->status),
  552. STATUS_GET_SBP_STATUS(orb->status));
  553. goto out;
  554. }
  555. retval = 0;
  556. out:
  557. dma_unmap_single(device->card->device, orb->base.request_bus,
  558. sizeof(orb->request), DMA_TO_DEVICE);
  559. fail_mapping_request:
  560. dma_unmap_single(device->card->device, orb->response_bus,
  561. sizeof(orb->response), DMA_FROM_DEVICE);
  562. fail_mapping_response:
  563. if (response)
  564. memcpy(response, orb->response, sizeof(orb->response));
  565. kref_put(&orb->base.kref, free_orb);
  566. return retval;
  567. }
  568. static void sbp2_agent_reset(struct sbp2_logical_unit *lu)
  569. {
  570. struct fw_device *device = fw_device(lu->tgt->unit->device.parent);
  571. __be32 d = 0;
  572. fw_run_transaction(device->card, TCODE_WRITE_QUADLET_REQUEST,
  573. lu->tgt->node_id, lu->generation, device->max_speed,
  574. lu->command_block_agent_address + SBP2_AGENT_RESET,
  575. &d, sizeof(d));
  576. }
  577. static void complete_agent_reset_write_no_wait(struct fw_card *card,
  578. int rcode, void *payload, size_t length, void *data)
  579. {
  580. kfree(data);
  581. }
  582. static void sbp2_agent_reset_no_wait(struct sbp2_logical_unit *lu)
  583. {
  584. struct fw_device *device = fw_device(lu->tgt->unit->device.parent);
  585. struct fw_transaction *t;
  586. static __be32 d;
  587. t = kmalloc(sizeof(*t), GFP_ATOMIC);
  588. if (t == NULL)
  589. return;
  590. fw_send_request(device->card, t, TCODE_WRITE_QUADLET_REQUEST,
  591. lu->tgt->node_id, lu->generation, device->max_speed,
  592. lu->command_block_agent_address + SBP2_AGENT_RESET,
  593. &d, sizeof(d), complete_agent_reset_write_no_wait, t);
  594. }
  595. static inline void sbp2_allow_block(struct sbp2_logical_unit *lu)
  596. {
  597. /*
  598. * We may access dont_block without taking card->lock here:
  599. * All callers of sbp2_allow_block() and all callers of sbp2_unblock()
  600. * are currently serialized against each other.
  601. * And a wrong result in sbp2_conditionally_block()'s access of
  602. * dont_block is rather harmless, it simply misses its first chance.
  603. */
  604. --lu->tgt->dont_block;
  605. }
  606. /*
  607. * Blocks lu->tgt if all of the following conditions are met:
  608. * - Login, INQUIRY, and high-level SCSI setup of all of the target's
  609. * logical units have been finished (indicated by dont_block == 0).
  610. * - lu->generation is stale.
  611. *
  612. * Note, scsi_block_requests() must be called while holding card->lock,
  613. * otherwise it might foil sbp2_[conditionally_]unblock()'s attempt to
  614. * unblock the target.
  615. */
  616. static void sbp2_conditionally_block(struct sbp2_logical_unit *lu)
  617. {
  618. struct sbp2_target *tgt = lu->tgt;
  619. struct fw_card *card = fw_device(tgt->unit->device.parent)->card;
  620. struct Scsi_Host *shost =
  621. container_of((void *)tgt, struct Scsi_Host, hostdata[0]);
  622. unsigned long flags;
  623. spin_lock_irqsave(&card->lock, flags);
  624. if (!tgt->dont_block && !lu->blocked &&
  625. lu->generation != card->generation) {
  626. lu->blocked = true;
  627. if (++tgt->blocked == 1)
  628. scsi_block_requests(shost);
  629. }
  630. spin_unlock_irqrestore(&card->lock, flags);
  631. }
  632. /*
  633. * Unblocks lu->tgt as soon as all its logical units can be unblocked.
  634. * Note, it is harmless to run scsi_unblock_requests() outside the
  635. * card->lock protected section. On the other hand, running it inside
  636. * the section might clash with shost->host_lock.
  637. */
  638. static void sbp2_conditionally_unblock(struct sbp2_logical_unit *lu)
  639. {
  640. struct sbp2_target *tgt = lu->tgt;
  641. struct fw_card *card = fw_device(tgt->unit->device.parent)->card;
  642. struct Scsi_Host *shost =
  643. container_of((void *)tgt, struct Scsi_Host, hostdata[0]);
  644. unsigned long flags;
  645. bool unblock = false;
  646. spin_lock_irqsave(&card->lock, flags);
  647. if (lu->blocked && lu->generation == card->generation) {
  648. lu->blocked = false;
  649. unblock = --tgt->blocked == 0;
  650. }
  651. spin_unlock_irqrestore(&card->lock, flags);
  652. if (unblock)
  653. scsi_unblock_requests(shost);
  654. }
  655. /*
  656. * Prevents future blocking of tgt and unblocks it.
  657. * Note, it is harmless to run scsi_unblock_requests() outside the
  658. * card->lock protected section. On the other hand, running it inside
  659. * the section might clash with shost->host_lock.
  660. */
  661. static void sbp2_unblock(struct sbp2_target *tgt)
  662. {
  663. struct fw_card *card = fw_device(tgt->unit->device.parent)->card;
  664. struct Scsi_Host *shost =
  665. container_of((void *)tgt, struct Scsi_Host, hostdata[0]);
  666. unsigned long flags;
  667. spin_lock_irqsave(&card->lock, flags);
  668. ++tgt->dont_block;
  669. spin_unlock_irqrestore(&card->lock, flags);
  670. scsi_unblock_requests(shost);
  671. }
  672. static int sbp2_lun2int(u16 lun)
  673. {
  674. struct scsi_lun eight_bytes_lun;
  675. memset(&eight_bytes_lun, 0, sizeof(eight_bytes_lun));
  676. eight_bytes_lun.scsi_lun[0] = (lun >> 8) & 0xff;
  677. eight_bytes_lun.scsi_lun[1] = lun & 0xff;
  678. return scsilun_to_int(&eight_bytes_lun);
  679. }
  680. static void sbp2_release_target(struct kref *kref)
  681. {
  682. struct sbp2_target *tgt = container_of(kref, struct sbp2_target, kref);
  683. struct sbp2_logical_unit *lu, *next;
  684. struct Scsi_Host *shost =
  685. container_of((void *)tgt, struct Scsi_Host, hostdata[0]);
  686. struct scsi_device *sdev;
  687. struct fw_device *device = fw_device(tgt->unit->device.parent);
  688. /* prevent deadlocks */
  689. sbp2_unblock(tgt);
  690. list_for_each_entry_safe(lu, next, &tgt->lu_list, link) {
  691. sdev = scsi_device_lookup(shost, 0, 0, sbp2_lun2int(lu->lun));
  692. if (sdev) {
  693. scsi_remove_device(sdev);
  694. scsi_device_put(sdev);
  695. }
  696. if (lu->login_id != INVALID_LOGIN_ID) {
  697. int generation, node_id;
  698. /*
  699. * tgt->node_id may be obsolete here if we failed
  700. * during initial login or after a bus reset where
  701. * the topology changed.
  702. */
  703. generation = device->generation;
  704. smp_rmb(); /* node_id vs. generation */
  705. node_id = device->node_id;
  706. sbp2_send_management_orb(lu, node_id, generation,
  707. SBP2_LOGOUT_REQUEST,
  708. lu->login_id, NULL);
  709. }
  710. fw_core_remove_address_handler(&lu->address_handler);
  711. list_del(&lu->link);
  712. kfree(lu);
  713. }
  714. scsi_remove_host(shost);
  715. fw_notify("released %s, target %d:0:0\n", tgt->bus_id, shost->host_no);
  716. fw_unit_put(tgt->unit);
  717. scsi_host_put(shost);
  718. fw_device_put(device);
  719. }
  720. static struct workqueue_struct *sbp2_wq;
  721. static void sbp2_target_put(struct sbp2_target *tgt)
  722. {
  723. kref_put(&tgt->kref, sbp2_release_target);
  724. }
  725. /*
  726. * Always get the target's kref when scheduling work on one its units.
  727. * Each workqueue job is responsible to call sbp2_target_put() upon return.
  728. */
  729. static void sbp2_queue_work(struct sbp2_logical_unit *lu, unsigned long delay)
  730. {
  731. kref_get(&lu->tgt->kref);
  732. if (!queue_delayed_work(sbp2_wq, &lu->work, delay))
  733. sbp2_target_put(lu->tgt);
  734. }
  735. /*
  736. * Write retransmit retry values into the BUSY_TIMEOUT register.
  737. * - The single-phase retry protocol is supported by all SBP-2 devices, but the
  738. * default retry_limit value is 0 (i.e. never retry transmission). We write a
  739. * saner value after logging into the device.
  740. * - The dual-phase retry protocol is optional to implement, and if not
  741. * supported, writes to the dual-phase portion of the register will be
  742. * ignored. We try to write the original 1394-1995 default here.
  743. * - In the case of devices that are also SBP-3-compliant, all writes are
  744. * ignored, as the register is read-only, but contains single-phase retry of
  745. * 15, which is what we're trying to set for all SBP-2 device anyway, so this
  746. * write attempt is safe and yields more consistent behavior for all devices.
  747. *
  748. * See section 8.3.2.3.5 of the 1394-1995 spec, section 6.2 of the SBP-2 spec,
  749. * and section 6.4 of the SBP-3 spec for further details.
  750. */
  751. static void sbp2_set_busy_timeout(struct sbp2_logical_unit *lu)
  752. {
  753. struct fw_device *device = fw_device(lu->tgt->unit->device.parent);
  754. __be32 d = cpu_to_be32(SBP2_CYCLE_LIMIT | SBP2_RETRY_LIMIT);
  755. fw_run_transaction(device->card, TCODE_WRITE_QUADLET_REQUEST,
  756. lu->tgt->node_id, lu->generation, device->max_speed,
  757. CSR_REGISTER_BASE + CSR_BUSY_TIMEOUT,
  758. &d, sizeof(d));
  759. }
  760. static void sbp2_reconnect(struct work_struct *work);
  761. static void sbp2_login(struct work_struct *work)
  762. {
  763. struct sbp2_logical_unit *lu =
  764. container_of(work, struct sbp2_logical_unit, work.work);
  765. struct sbp2_target *tgt = lu->tgt;
  766. struct fw_device *device = fw_device(tgt->unit->device.parent);
  767. struct Scsi_Host *shost;
  768. struct scsi_device *sdev;
  769. struct sbp2_login_response response;
  770. int generation, node_id, local_node_id;
  771. if (fw_device_is_shutdown(device))
  772. goto out;
  773. generation = device->generation;
  774. smp_rmb(); /* node IDs must not be older than generation */
  775. node_id = device->node_id;
  776. local_node_id = device->card->node_id;
  777. /* If this is a re-login attempt, log out, or we might be rejected. */
  778. if (lu->has_sdev)
  779. sbp2_send_management_orb(lu, device->node_id, generation,
  780. SBP2_LOGOUT_REQUEST, lu->login_id, NULL);
  781. if (sbp2_send_management_orb(lu, node_id, generation,
  782. SBP2_LOGIN_REQUEST, lu->lun, &response) < 0) {
  783. if (lu->retries++ < 5) {
  784. sbp2_queue_work(lu, DIV_ROUND_UP(HZ, 5));
  785. } else {
  786. fw_error("%s: failed to login to LUN %04x\n",
  787. tgt->bus_id, lu->lun);
  788. /* Let any waiting I/O fail from now on. */
  789. sbp2_unblock(lu->tgt);
  790. }
  791. goto out;
  792. }
  793. tgt->node_id = node_id;
  794. tgt->address_high = local_node_id << 16;
  795. smp_wmb(); /* node IDs must not be older than generation */
  796. lu->generation = generation;
  797. lu->command_block_agent_address =
  798. ((u64)(be32_to_cpu(response.command_block_agent.high) & 0xffff)
  799. << 32) | be32_to_cpu(response.command_block_agent.low);
  800. lu->login_id = be32_to_cpu(response.misc) & 0xffff;
  801. fw_notify("%s: logged in to LUN %04x (%d retries)\n",
  802. tgt->bus_id, lu->lun, lu->retries);
  803. /* set appropriate retry limit(s) in BUSY_TIMEOUT register */
  804. sbp2_set_busy_timeout(lu);
  805. PREPARE_DELAYED_WORK(&lu->work, sbp2_reconnect);
  806. sbp2_agent_reset(lu);
  807. /* This was a re-login. */
  808. if (lu->has_sdev) {
  809. sbp2_cancel_orbs(lu);
  810. sbp2_conditionally_unblock(lu);
  811. goto out;
  812. }
  813. if (lu->tgt->workarounds & SBP2_WORKAROUND_DELAY_INQUIRY)
  814. ssleep(SBP2_INQUIRY_DELAY);
  815. shost = container_of((void *)tgt, struct Scsi_Host, hostdata[0]);
  816. sdev = __scsi_add_device(shost, 0, 0, sbp2_lun2int(lu->lun), lu);
  817. /*
  818. * FIXME: We are unable to perform reconnects while in sbp2_login().
  819. * Therefore __scsi_add_device() will get into trouble if a bus reset
  820. * happens in parallel. It will either fail or leave us with an
  821. * unusable sdev. As a workaround we check for this and retry the
  822. * whole login and SCSI probing.
  823. */
  824. /* Reported error during __scsi_add_device() */
  825. if (IS_ERR(sdev))
  826. goto out_logout_login;
  827. /* Unreported error during __scsi_add_device() */
  828. smp_rmb(); /* get current card generation */
  829. if (generation != device->card->generation) {
  830. scsi_remove_device(sdev);
  831. scsi_device_put(sdev);
  832. goto out_logout_login;
  833. }
  834. /* No error during __scsi_add_device() */
  835. lu->has_sdev = true;
  836. scsi_device_put(sdev);
  837. sbp2_allow_block(lu);
  838. goto out;
  839. out_logout_login:
  840. smp_rmb(); /* generation may have changed */
  841. generation = device->generation;
  842. smp_rmb(); /* node_id must not be older than generation */
  843. sbp2_send_management_orb(lu, device->node_id, generation,
  844. SBP2_LOGOUT_REQUEST, lu->login_id, NULL);
  845. /*
  846. * If a bus reset happened, sbp2_update will have requeued
  847. * lu->work already. Reset the work from reconnect to login.
  848. */
  849. PREPARE_DELAYED_WORK(&lu->work, sbp2_login);
  850. out:
  851. sbp2_target_put(tgt);
  852. }
  853. static int sbp2_add_logical_unit(struct sbp2_target *tgt, int lun_entry)
  854. {
  855. struct sbp2_logical_unit *lu;
  856. lu = kmalloc(sizeof(*lu), GFP_KERNEL);
  857. if (!lu)
  858. return -ENOMEM;
  859. lu->address_handler.length = 0x100;
  860. lu->address_handler.address_callback = sbp2_status_write;
  861. lu->address_handler.callback_data = lu;
  862. if (fw_core_add_address_handler(&lu->address_handler,
  863. &fw_high_memory_region) < 0) {
  864. kfree(lu);
  865. return -ENOMEM;
  866. }
  867. lu->tgt = tgt;
  868. lu->lun = lun_entry & 0xffff;
  869. lu->login_id = INVALID_LOGIN_ID;
  870. lu->retries = 0;
  871. lu->has_sdev = false;
  872. lu->blocked = false;
  873. ++tgt->dont_block;
  874. INIT_LIST_HEAD(&lu->orb_list);
  875. INIT_DELAYED_WORK(&lu->work, sbp2_login);
  876. list_add_tail(&lu->link, &tgt->lu_list);
  877. return 0;
  878. }
  879. static int sbp2_scan_logical_unit_dir(struct sbp2_target *tgt, u32 *directory)
  880. {
  881. struct fw_csr_iterator ci;
  882. int key, value;
  883. fw_csr_iterator_init(&ci, directory);
  884. while (fw_csr_iterator_next(&ci, &key, &value))
  885. if (key == SBP2_CSR_LOGICAL_UNIT_NUMBER &&
  886. sbp2_add_logical_unit(tgt, value) < 0)
  887. return -ENOMEM;
  888. return 0;
  889. }
  890. static int sbp2_scan_unit_dir(struct sbp2_target *tgt, u32 *directory,
  891. u32 *model, u32 *firmware_revision)
  892. {
  893. struct fw_csr_iterator ci;
  894. int key, value;
  895. unsigned int timeout;
  896. fw_csr_iterator_init(&ci, directory);
  897. while (fw_csr_iterator_next(&ci, &key, &value)) {
  898. switch (key) {
  899. case CSR_DEPENDENT_INFO | CSR_OFFSET:
  900. tgt->management_agent_address =
  901. CSR_REGISTER_BASE + 4 * value;
  902. break;
  903. case CSR_DIRECTORY_ID:
  904. tgt->directory_id = value;
  905. break;
  906. case CSR_MODEL:
  907. *model = value;
  908. break;
  909. case SBP2_CSR_FIRMWARE_REVISION:
  910. *firmware_revision = value;
  911. break;
  912. case SBP2_CSR_UNIT_CHARACTERISTICS:
  913. /* the timeout value is stored in 500ms units */
  914. timeout = ((unsigned int) value >> 8 & 0xff) * 500;
  915. timeout = max(timeout, SBP2_MIN_LOGIN_ORB_TIMEOUT);
  916. tgt->mgt_orb_timeout =
  917. min(timeout, SBP2_MAX_LOGIN_ORB_TIMEOUT);
  918. if (timeout > tgt->mgt_orb_timeout)
  919. fw_notify("%s: config rom contains %ds "
  920. "management ORB timeout, limiting "
  921. "to %ds\n", tgt->bus_id,
  922. timeout / 1000,
  923. tgt->mgt_orb_timeout / 1000);
  924. break;
  925. case SBP2_CSR_LOGICAL_UNIT_NUMBER:
  926. if (sbp2_add_logical_unit(tgt, value) < 0)
  927. return -ENOMEM;
  928. break;
  929. case SBP2_CSR_LOGICAL_UNIT_DIRECTORY:
  930. /* Adjust for the increment in the iterator */
  931. if (sbp2_scan_logical_unit_dir(tgt, ci.p - 1 + value) < 0)
  932. return -ENOMEM;
  933. break;
  934. }
  935. }
  936. return 0;
  937. }
  938. static void sbp2_init_workarounds(struct sbp2_target *tgt, u32 model,
  939. u32 firmware_revision)
  940. {
  941. int i;
  942. unsigned int w = sbp2_param_workarounds;
  943. if (w)
  944. fw_notify("Please notify linux1394-devel@lists.sourceforge.net "
  945. "if you need the workarounds parameter for %s\n",
  946. tgt->bus_id);
  947. if (w & SBP2_WORKAROUND_OVERRIDE)
  948. goto out;
  949. for (i = 0; i < ARRAY_SIZE(sbp2_workarounds_table); i++) {
  950. if (sbp2_workarounds_table[i].firmware_revision !=
  951. (firmware_revision & 0xffffff00))
  952. continue;
  953. if (sbp2_workarounds_table[i].model != model &&
  954. sbp2_workarounds_table[i].model != SBP2_ROM_VALUE_WILDCARD)
  955. continue;
  956. w |= sbp2_workarounds_table[i].workarounds;
  957. break;
  958. }
  959. out:
  960. if (w)
  961. fw_notify("Workarounds for %s: 0x%x "
  962. "(firmware_revision 0x%06x, model_id 0x%06x)\n",
  963. tgt->bus_id, w, firmware_revision, model);
  964. tgt->workarounds = w;
  965. }
  966. static struct scsi_host_template scsi_driver_template;
  967. static int sbp2_probe(struct device *dev)
  968. {
  969. struct fw_unit *unit = fw_unit(dev);
  970. struct fw_device *device = fw_device(unit->device.parent);
  971. struct sbp2_target *tgt;
  972. struct sbp2_logical_unit *lu;
  973. struct Scsi_Host *shost;
  974. u32 model, firmware_revision;
  975. if (dma_get_max_seg_size(device->card->device) > SBP2_MAX_SEG_SIZE)
  976. BUG_ON(dma_set_max_seg_size(device->card->device,
  977. SBP2_MAX_SEG_SIZE));
  978. shost = scsi_host_alloc(&scsi_driver_template, sizeof(*tgt));
  979. if (shost == NULL)
  980. return -ENOMEM;
  981. tgt = (struct sbp2_target *)shost->hostdata;
  982. unit->device.driver_data = tgt;
  983. tgt->unit = unit;
  984. kref_init(&tgt->kref);
  985. INIT_LIST_HEAD(&tgt->lu_list);
  986. tgt->bus_id = dev_name(&unit->device);
  987. tgt->guid = (u64)device->config_rom[3] << 32 | device->config_rom[4];
  988. if (fw_device_enable_phys_dma(device) < 0)
  989. goto fail_shost_put;
  990. if (scsi_add_host(shost, &unit->device) < 0)
  991. goto fail_shost_put;
  992. fw_device_get(device);
  993. fw_unit_get(unit);
  994. /* implicit directory ID */
  995. tgt->directory_id = ((unit->directory - device->config_rom) * 4
  996. + CSR_CONFIG_ROM) & 0xffffff;
  997. firmware_revision = SBP2_ROM_VALUE_MISSING;
  998. model = SBP2_ROM_VALUE_MISSING;
  999. if (sbp2_scan_unit_dir(tgt, unit->directory, &model,
  1000. &firmware_revision) < 0)
  1001. goto fail_tgt_put;
  1002. sbp2_init_workarounds(tgt, model, firmware_revision);
  1003. /*
  1004. * At S100 we can do 512 bytes per packet, at S200 1024 bytes,
  1005. * and so on up to 4096 bytes. The SBP-2 max_payload field
  1006. * specifies the max payload size as 2 ^ (max_payload + 2), so
  1007. * if we set this to max_speed + 7, we get the right value.
  1008. */
  1009. tgt->max_payload = min(device->max_speed + 7, 10U);
  1010. tgt->max_payload = min(tgt->max_payload, device->card->max_receive - 1);
  1011. /* Do the login in a workqueue so we can easily reschedule retries. */
  1012. list_for_each_entry(lu, &tgt->lu_list, link)
  1013. sbp2_queue_work(lu, DIV_ROUND_UP(HZ, 5));
  1014. return 0;
  1015. fail_tgt_put:
  1016. sbp2_target_put(tgt);
  1017. return -ENOMEM;
  1018. fail_shost_put:
  1019. scsi_host_put(shost);
  1020. return -ENOMEM;
  1021. }
  1022. static int sbp2_remove(struct device *dev)
  1023. {
  1024. struct fw_unit *unit = fw_unit(dev);
  1025. struct sbp2_target *tgt = unit->device.driver_data;
  1026. sbp2_target_put(tgt);
  1027. return 0;
  1028. }
  1029. static void sbp2_reconnect(struct work_struct *work)
  1030. {
  1031. struct sbp2_logical_unit *lu =
  1032. container_of(work, struct sbp2_logical_unit, work.work);
  1033. struct sbp2_target *tgt = lu->tgt;
  1034. struct fw_device *device = fw_device(tgt->unit->device.parent);
  1035. int generation, node_id, local_node_id;
  1036. if (fw_device_is_shutdown(device))
  1037. goto out;
  1038. generation = device->generation;
  1039. smp_rmb(); /* node IDs must not be older than generation */
  1040. node_id = device->node_id;
  1041. local_node_id = device->card->node_id;
  1042. if (sbp2_send_management_orb(lu, node_id, generation,
  1043. SBP2_RECONNECT_REQUEST,
  1044. lu->login_id, NULL) < 0) {
  1045. /*
  1046. * If reconnect was impossible even though we are in the
  1047. * current generation, fall back and try to log in again.
  1048. *
  1049. * We could check for "Function rejected" status, but
  1050. * looking at the bus generation as simpler and more general.
  1051. */
  1052. smp_rmb(); /* get current card generation */
  1053. if (generation == device->card->generation ||
  1054. lu->retries++ >= 5) {
  1055. fw_error("%s: failed to reconnect\n", tgt->bus_id);
  1056. lu->retries = 0;
  1057. PREPARE_DELAYED_WORK(&lu->work, sbp2_login);
  1058. }
  1059. sbp2_queue_work(lu, DIV_ROUND_UP(HZ, 5));
  1060. goto out;
  1061. }
  1062. tgt->node_id = node_id;
  1063. tgt->address_high = local_node_id << 16;
  1064. smp_wmb(); /* node IDs must not be older than generation */
  1065. lu->generation = generation;
  1066. fw_notify("%s: reconnected to LUN %04x (%d retries)\n",
  1067. tgt->bus_id, lu->lun, lu->retries);
  1068. sbp2_agent_reset(lu);
  1069. sbp2_cancel_orbs(lu);
  1070. sbp2_conditionally_unblock(lu);
  1071. out:
  1072. sbp2_target_put(tgt);
  1073. }
  1074. static void sbp2_update(struct fw_unit *unit)
  1075. {
  1076. struct sbp2_target *tgt = unit->device.driver_data;
  1077. struct sbp2_logical_unit *lu;
  1078. fw_device_enable_phys_dma(fw_device(unit->device.parent));
  1079. /*
  1080. * Fw-core serializes sbp2_update() against sbp2_remove().
  1081. * Iteration over tgt->lu_list is therefore safe here.
  1082. */
  1083. list_for_each_entry(lu, &tgt->lu_list, link) {
  1084. sbp2_conditionally_block(lu);
  1085. lu->retries = 0;
  1086. sbp2_queue_work(lu, 0);
  1087. }
  1088. }
  1089. #define SBP2_UNIT_SPEC_ID_ENTRY 0x0000609e
  1090. #define SBP2_SW_VERSION_ENTRY 0x00010483
  1091. static const struct ieee1394_device_id sbp2_id_table[] = {
  1092. {
  1093. .match_flags = IEEE1394_MATCH_SPECIFIER_ID |
  1094. IEEE1394_MATCH_VERSION,
  1095. .specifier_id = SBP2_UNIT_SPEC_ID_ENTRY,
  1096. .version = SBP2_SW_VERSION_ENTRY,
  1097. },
  1098. { }
  1099. };
  1100. static struct fw_driver sbp2_driver = {
  1101. .driver = {
  1102. .owner = THIS_MODULE,
  1103. .name = sbp2_driver_name,
  1104. .bus = &fw_bus_type,
  1105. .probe = sbp2_probe,
  1106. .remove = sbp2_remove,
  1107. },
  1108. .update = sbp2_update,
  1109. .id_table = sbp2_id_table,
  1110. };
  1111. static void sbp2_unmap_scatterlist(struct device *card_device,
  1112. struct sbp2_command_orb *orb)
  1113. {
  1114. if (scsi_sg_count(orb->cmd))
  1115. dma_unmap_sg(card_device, scsi_sglist(orb->cmd),
  1116. scsi_sg_count(orb->cmd),
  1117. orb->cmd->sc_data_direction);
  1118. if (orb->request.misc & cpu_to_be32(COMMAND_ORB_PAGE_TABLE_PRESENT))
  1119. dma_unmap_single(card_device, orb->page_table_bus,
  1120. sizeof(orb->page_table), DMA_TO_DEVICE);
  1121. }
  1122. static unsigned int sbp2_status_to_sense_data(u8 *sbp2_status, u8 *sense_data)
  1123. {
  1124. int sam_status;
  1125. sense_data[0] = 0x70;
  1126. sense_data[1] = 0x0;
  1127. sense_data[2] = sbp2_status[1];
  1128. sense_data[3] = sbp2_status[4];
  1129. sense_data[4] = sbp2_status[5];
  1130. sense_data[5] = sbp2_status[6];
  1131. sense_data[6] = sbp2_status[7];
  1132. sense_data[7] = 10;
  1133. sense_data[8] = sbp2_status[8];
  1134. sense_data[9] = sbp2_status[9];
  1135. sense_data[10] = sbp2_status[10];
  1136. sense_data[11] = sbp2_status[11];
  1137. sense_data[12] = sbp2_status[2];
  1138. sense_data[13] = sbp2_status[3];
  1139. sense_data[14] = sbp2_status[12];
  1140. sense_data[15] = sbp2_status[13];
  1141. sam_status = sbp2_status[0] & 0x3f;
  1142. switch (sam_status) {
  1143. case SAM_STAT_GOOD:
  1144. case SAM_STAT_CHECK_CONDITION:
  1145. case SAM_STAT_CONDITION_MET:
  1146. case SAM_STAT_BUSY:
  1147. case SAM_STAT_RESERVATION_CONFLICT:
  1148. case SAM_STAT_COMMAND_TERMINATED:
  1149. return DID_OK << 16 | sam_status;
  1150. default:
  1151. return DID_ERROR << 16;
  1152. }
  1153. }
  1154. static void complete_command_orb(struct sbp2_orb *base_orb,
  1155. struct sbp2_status *status)
  1156. {
  1157. struct sbp2_command_orb *orb =
  1158. container_of(base_orb, struct sbp2_command_orb, base);
  1159. struct fw_device *device = fw_device(orb->lu->tgt->unit->device.parent);
  1160. int result;
  1161. if (status != NULL) {
  1162. if (STATUS_GET_DEAD(*status))
  1163. sbp2_agent_reset_no_wait(orb->lu);
  1164. switch (STATUS_GET_RESPONSE(*status)) {
  1165. case SBP2_STATUS_REQUEST_COMPLETE:
  1166. result = DID_OK << 16;
  1167. break;
  1168. case SBP2_STATUS_TRANSPORT_FAILURE:
  1169. result = DID_BUS_BUSY << 16;
  1170. break;
  1171. case SBP2_STATUS_ILLEGAL_REQUEST:
  1172. case SBP2_STATUS_VENDOR_DEPENDENT:
  1173. default:
  1174. result = DID_ERROR << 16;
  1175. break;
  1176. }
  1177. if (result == DID_OK << 16 && STATUS_GET_LEN(*status) > 1)
  1178. result = sbp2_status_to_sense_data(STATUS_GET_DATA(*status),
  1179. orb->cmd->sense_buffer);
  1180. } else {
  1181. /*
  1182. * If the orb completes with status == NULL, something
  1183. * went wrong, typically a bus reset happened mid-orb
  1184. * or when sending the write (less likely).
  1185. */
  1186. result = DID_BUS_BUSY << 16;
  1187. sbp2_conditionally_block(orb->lu);
  1188. }
  1189. dma_unmap_single(device->card->device, orb->base.request_bus,
  1190. sizeof(orb->request), DMA_TO_DEVICE);
  1191. sbp2_unmap_scatterlist(device->card->device, orb);
  1192. orb->cmd->result = result;
  1193. orb->done(orb->cmd);
  1194. }
  1195. static int sbp2_map_scatterlist(struct sbp2_command_orb *orb,
  1196. struct fw_device *device, struct sbp2_logical_unit *lu)
  1197. {
  1198. struct scatterlist *sg = scsi_sglist(orb->cmd);
  1199. int i, n;
  1200. n = dma_map_sg(device->card->device, sg, scsi_sg_count(orb->cmd),
  1201. orb->cmd->sc_data_direction);
  1202. if (n == 0)
  1203. goto fail;
  1204. /*
  1205. * Handle the special case where there is only one element in
  1206. * the scatter list by converting it to an immediate block
  1207. * request. This is also a workaround for broken devices such
  1208. * as the second generation iPod which doesn't support page
  1209. * tables.
  1210. */
  1211. if (n == 1) {
  1212. orb->request.data_descriptor.high =
  1213. cpu_to_be32(lu->tgt->address_high);
  1214. orb->request.data_descriptor.low =
  1215. cpu_to_be32(sg_dma_address(sg));
  1216. orb->request.misc |=
  1217. cpu_to_be32(COMMAND_ORB_DATA_SIZE(sg_dma_len(sg)));
  1218. return 0;
  1219. }
  1220. for_each_sg(sg, sg, n, i) {
  1221. orb->page_table[i].high = cpu_to_be32(sg_dma_len(sg) << 16);
  1222. orb->page_table[i].low = cpu_to_be32(sg_dma_address(sg));
  1223. }
  1224. orb->page_table_bus =
  1225. dma_map_single(device->card->device, orb->page_table,
  1226. sizeof(orb->page_table), DMA_TO_DEVICE);
  1227. if (dma_mapping_error(device->card->device, orb->page_table_bus))
  1228. goto fail_page_table;
  1229. /*
  1230. * The data_descriptor pointer is the one case where we need
  1231. * to fill in the node ID part of the address. All other
  1232. * pointers assume that the data referenced reside on the
  1233. * initiator (i.e. us), but data_descriptor can refer to data
  1234. * on other nodes so we need to put our ID in descriptor.high.
  1235. */
  1236. orb->request.data_descriptor.high = cpu_to_be32(lu->tgt->address_high);
  1237. orb->request.data_descriptor.low = cpu_to_be32(orb->page_table_bus);
  1238. orb->request.misc |= cpu_to_be32(COMMAND_ORB_PAGE_TABLE_PRESENT |
  1239. COMMAND_ORB_DATA_SIZE(n));
  1240. return 0;
  1241. fail_page_table:
  1242. dma_unmap_sg(device->card->device, scsi_sglist(orb->cmd),
  1243. scsi_sg_count(orb->cmd), orb->cmd->sc_data_direction);
  1244. fail:
  1245. return -ENOMEM;
  1246. }
  1247. /* SCSI stack integration */
  1248. static int sbp2_scsi_queuecommand(struct scsi_cmnd *cmd, scsi_done_fn_t done)
  1249. {
  1250. struct sbp2_logical_unit *lu = cmd->device->hostdata;
  1251. struct fw_device *device = fw_device(lu->tgt->unit->device.parent);
  1252. struct sbp2_command_orb *orb;
  1253. int generation, retval = SCSI_MLQUEUE_HOST_BUSY;
  1254. /*
  1255. * Bidirectional commands are not yet implemented, and unknown
  1256. * transfer direction not handled.
  1257. */
  1258. if (cmd->sc_data_direction == DMA_BIDIRECTIONAL) {
  1259. fw_error("Can't handle DMA_BIDIRECTIONAL, rejecting command\n");
  1260. cmd->result = DID_ERROR << 16;
  1261. done(cmd);
  1262. return 0;
  1263. }
  1264. orb = kzalloc(sizeof(*orb), GFP_ATOMIC);
  1265. if (orb == NULL) {
  1266. fw_notify("failed to alloc orb\n");
  1267. return SCSI_MLQUEUE_HOST_BUSY;
  1268. }
  1269. /* Initialize rcode to something not RCODE_COMPLETE. */
  1270. orb->base.rcode = -1;
  1271. kref_init(&orb->base.kref);
  1272. orb->lu = lu;
  1273. orb->done = done;
  1274. orb->cmd = cmd;
  1275. orb->request.next.high = cpu_to_be32(SBP2_ORB_NULL);
  1276. orb->request.misc = cpu_to_be32(
  1277. COMMAND_ORB_MAX_PAYLOAD(lu->tgt->max_payload) |
  1278. COMMAND_ORB_SPEED(device->max_speed) |
  1279. COMMAND_ORB_NOTIFY);
  1280. if (cmd->sc_data_direction == DMA_FROM_DEVICE)
  1281. orb->request.misc |= cpu_to_be32(COMMAND_ORB_DIRECTION);
  1282. generation = device->generation;
  1283. smp_rmb(); /* sbp2_map_scatterlist looks at tgt->address_high */
  1284. if (scsi_sg_count(cmd) && sbp2_map_scatterlist(orb, device, lu) < 0)
  1285. goto out;
  1286. memcpy(orb->request.command_block, cmd->cmnd, cmd->cmd_len);
  1287. orb->base.callback = complete_command_orb;
  1288. orb->base.request_bus =
  1289. dma_map_single(device->card->device, &orb->request,
  1290. sizeof(orb->request), DMA_TO_DEVICE);
  1291. if (dma_mapping_error(device->card->device, orb->base.request_bus)) {
  1292. sbp2_unmap_scatterlist(device->card->device, orb);
  1293. goto out;
  1294. }
  1295. sbp2_send_orb(&orb->base, lu, lu->tgt->node_id, generation,
  1296. lu->command_block_agent_address + SBP2_ORB_POINTER);
  1297. retval = 0;
  1298. out:
  1299. kref_put(&orb->base.kref, free_orb);
  1300. return retval;
  1301. }
  1302. static int sbp2_scsi_slave_alloc(struct scsi_device *sdev)
  1303. {
  1304. struct sbp2_logical_unit *lu = sdev->hostdata;
  1305. /* (Re-)Adding logical units via the SCSI stack is not supported. */
  1306. if (!lu)
  1307. return -ENOSYS;
  1308. sdev->allow_restart = 1;
  1309. /* SBP-2 requires quadlet alignment of the data buffers. */
  1310. blk_queue_update_dma_alignment(sdev->request_queue, 4 - 1);
  1311. if (lu->tgt->workarounds & SBP2_WORKAROUND_INQUIRY_36)
  1312. sdev->inquiry_len = 36;
  1313. return 0;
  1314. }
  1315. static int sbp2_scsi_slave_configure(struct scsi_device *sdev)
  1316. {
  1317. struct sbp2_logical_unit *lu = sdev->hostdata;
  1318. sdev->use_10_for_rw = 1;
  1319. if (sbp2_param_exclusive_login)
  1320. sdev->manage_start_stop = 1;
  1321. if (sdev->type == TYPE_ROM)
  1322. sdev->use_10_for_ms = 1;
  1323. if (sdev->type == TYPE_DISK &&
  1324. lu->tgt->workarounds & SBP2_WORKAROUND_MODE_SENSE_8)
  1325. sdev->skip_ms_page_8 = 1;
  1326. if (lu->tgt->workarounds & SBP2_WORKAROUND_FIX_CAPACITY)
  1327. sdev->fix_capacity = 1;
  1328. if (lu->tgt->workarounds & SBP2_WORKAROUND_POWER_CONDITION)
  1329. sdev->start_stop_pwr_cond = 1;
  1330. if (lu->tgt->workarounds & SBP2_WORKAROUND_128K_MAX_TRANS)
  1331. blk_queue_max_sectors(sdev->request_queue, 128 * 1024 / 512);
  1332. blk_queue_max_segment_size(sdev->request_queue, SBP2_MAX_SEG_SIZE);
  1333. return 0;
  1334. }
  1335. /*
  1336. * Called by scsi stack when something has really gone wrong. Usually
  1337. * called when a command has timed-out for some reason.
  1338. */
  1339. static int sbp2_scsi_abort(struct scsi_cmnd *cmd)
  1340. {
  1341. struct sbp2_logical_unit *lu = cmd->device->hostdata;
  1342. fw_notify("%s: sbp2_scsi_abort\n", lu->tgt->bus_id);
  1343. sbp2_agent_reset(lu);
  1344. sbp2_cancel_orbs(lu);
  1345. return SUCCESS;
  1346. }
  1347. /*
  1348. * Format of /sys/bus/scsi/devices/.../ieee1394_id:
  1349. * u64 EUI-64 : u24 directory_ID : u16 LUN (all printed in hexadecimal)
  1350. *
  1351. * This is the concatenation of target port identifier and logical unit
  1352. * identifier as per SAM-2...SAM-4 annex A.
  1353. */
  1354. static ssize_t sbp2_sysfs_ieee1394_id_show(struct device *dev,
  1355. struct device_attribute *attr, char *buf)
  1356. {
  1357. struct scsi_device *sdev = to_scsi_device(dev);
  1358. struct sbp2_logical_unit *lu;
  1359. if (!sdev)
  1360. return 0;
  1361. lu = sdev->hostdata;
  1362. return sprintf(buf, "%016llx:%06x:%04x\n",
  1363. (unsigned long long)lu->tgt->guid,
  1364. lu->tgt->directory_id, lu->lun);
  1365. }
  1366. static DEVICE_ATTR(ieee1394_id, S_IRUGO, sbp2_sysfs_ieee1394_id_show, NULL);
  1367. static struct device_attribute *sbp2_scsi_sysfs_attrs[] = {
  1368. &dev_attr_ieee1394_id,
  1369. NULL
  1370. };
  1371. static struct scsi_host_template scsi_driver_template = {
  1372. .module = THIS_MODULE,
  1373. .name = "SBP-2 IEEE-1394",
  1374. .proc_name = sbp2_driver_name,
  1375. .queuecommand = sbp2_scsi_queuecommand,
  1376. .slave_alloc = sbp2_scsi_slave_alloc,
  1377. .slave_configure = sbp2_scsi_slave_configure,
  1378. .eh_abort_handler = sbp2_scsi_abort,
  1379. .this_id = -1,
  1380. .sg_tablesize = SG_ALL,
  1381. .use_clustering = ENABLE_CLUSTERING,
  1382. .cmd_per_lun = 1,
  1383. .can_queue = 1,
  1384. .sdev_attrs = sbp2_scsi_sysfs_attrs,
  1385. };
  1386. MODULE_AUTHOR("Kristian Hoegsberg <krh@bitplanet.net>");
  1387. MODULE_DESCRIPTION("SCSI over IEEE1394");
  1388. MODULE_LICENSE("GPL");
  1389. MODULE_DEVICE_TABLE(ieee1394, sbp2_id_table);
  1390. /* Provide a module alias so root-on-sbp2 initrds don't break. */
  1391. #ifndef CONFIG_IEEE1394_SBP2_MODULE
  1392. MODULE_ALIAS("sbp2");
  1393. #endif
  1394. static int __init sbp2_init(void)
  1395. {
  1396. sbp2_wq = create_singlethread_workqueue(KBUILD_MODNAME);
  1397. if (!sbp2_wq)
  1398. return -ENOMEM;
  1399. return driver_register(&sbp2_driver.driver);
  1400. }
  1401. static void __exit sbp2_cleanup(void)
  1402. {
  1403. driver_unregister(&sbp2_driver.driver);
  1404. destroy_workqueue(sbp2_wq);
  1405. }
  1406. module_init(sbp2_init);
  1407. module_exit(sbp2_cleanup);