cmdresp.c 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454
  1. /**
  2. * This file contains the handling of command
  3. * responses as well as events generated by firmware.
  4. */
  5. #include <linux/slab.h>
  6. #include <linux/delay.h>
  7. #include <linux/sched.h>
  8. #include <asm/unaligned.h>
  9. #include <net/cfg80211.h>
  10. #include "cfg.h"
  11. #include "cmd.h"
  12. /**
  13. * @brief This function handles disconnect event. it
  14. * reports disconnect to upper layer, clean tx/rx packets,
  15. * reset link state etc.
  16. *
  17. * @param priv A pointer to struct lbs_private structure
  18. * @return n/a
  19. */
  20. void lbs_mac_event_disconnected(struct lbs_private *priv)
  21. {
  22. if (priv->connect_status != LBS_CONNECTED)
  23. return;
  24. lbs_deb_enter(LBS_DEB_ASSOC);
  25. /*
  26. * Cisco AP sends EAP failure and de-auth in less than 0.5 ms.
  27. * It causes problem in the Supplicant
  28. */
  29. msleep_interruptible(1000);
  30. lbs_send_disconnect_notification(priv);
  31. /* report disconnect to upper layer */
  32. netif_stop_queue(priv->dev);
  33. netif_carrier_off(priv->dev);
  34. /* Free Tx and Rx packets */
  35. kfree_skb(priv->currenttxskb);
  36. priv->currenttxskb = NULL;
  37. priv->tx_pending_len = 0;
  38. priv->connect_status = LBS_DISCONNECTED;
  39. if (priv->psstate != PS_STATE_FULL_POWER) {
  40. /* make firmware to exit PS mode */
  41. lbs_deb_cmd("disconnected, so exit PS mode\n");
  42. lbs_ps_wakeup(priv, 0);
  43. }
  44. lbs_deb_leave(LBS_DEB_ASSOC);
  45. }
  46. static int lbs_ret_reg_access(struct lbs_private *priv,
  47. u16 type, struct cmd_ds_command *resp)
  48. {
  49. int ret = 0;
  50. lbs_deb_enter(LBS_DEB_CMD);
  51. switch (type) {
  52. case CMD_RET(CMD_MAC_REG_ACCESS):
  53. {
  54. struct cmd_ds_mac_reg_access *reg = &resp->params.macreg;
  55. priv->offsetvalue.offset = (u32)le16_to_cpu(reg->offset);
  56. priv->offsetvalue.value = le32_to_cpu(reg->value);
  57. break;
  58. }
  59. case CMD_RET(CMD_BBP_REG_ACCESS):
  60. {
  61. struct cmd_ds_bbp_reg_access *reg = &resp->params.bbpreg;
  62. priv->offsetvalue.offset = (u32)le16_to_cpu(reg->offset);
  63. priv->offsetvalue.value = reg->value;
  64. break;
  65. }
  66. case CMD_RET(CMD_RF_REG_ACCESS):
  67. {
  68. struct cmd_ds_rf_reg_access *reg = &resp->params.rfreg;
  69. priv->offsetvalue.offset = (u32)le16_to_cpu(reg->offset);
  70. priv->offsetvalue.value = reg->value;
  71. break;
  72. }
  73. default:
  74. ret = -1;
  75. }
  76. lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
  77. return ret;
  78. }
  79. static inline int handle_cmd_response(struct lbs_private *priv,
  80. struct cmd_header *cmd_response)
  81. {
  82. struct cmd_ds_command *resp = (struct cmd_ds_command *) cmd_response;
  83. int ret = 0;
  84. unsigned long flags;
  85. uint16_t respcmd = le16_to_cpu(resp->command);
  86. lbs_deb_enter(LBS_DEB_HOST);
  87. switch (respcmd) {
  88. case CMD_RET(CMD_MAC_REG_ACCESS):
  89. case CMD_RET(CMD_BBP_REG_ACCESS):
  90. case CMD_RET(CMD_RF_REG_ACCESS):
  91. ret = lbs_ret_reg_access(priv, respcmd, resp);
  92. break;
  93. case CMD_RET(CMD_802_11_SET_AFC):
  94. case CMD_RET(CMD_802_11_GET_AFC):
  95. spin_lock_irqsave(&priv->driver_lock, flags);
  96. memmove((void *)priv->cur_cmd->callback_arg, &resp->params.afc,
  97. sizeof(struct cmd_ds_802_11_afc));
  98. spin_unlock_irqrestore(&priv->driver_lock, flags);
  99. break;
  100. case CMD_RET(CMD_802_11_BEACON_STOP):
  101. break;
  102. case CMD_RET(CMD_802_11_RSSI):
  103. ret = lbs_ret_802_11_rssi(priv, resp);
  104. break;
  105. case CMD_RET(CMD_802_11_TPC_CFG):
  106. spin_lock_irqsave(&priv->driver_lock, flags);
  107. memmove((void *)priv->cur_cmd->callback_arg, &resp->params.tpccfg,
  108. sizeof(struct cmd_ds_802_11_tpc_cfg));
  109. spin_unlock_irqrestore(&priv->driver_lock, flags);
  110. break;
  111. case CMD_RET(CMD_BT_ACCESS):
  112. spin_lock_irqsave(&priv->driver_lock, flags);
  113. if (priv->cur_cmd->callback_arg)
  114. memcpy((void *)priv->cur_cmd->callback_arg,
  115. &resp->params.bt.addr1, 2 * ETH_ALEN);
  116. spin_unlock_irqrestore(&priv->driver_lock, flags);
  117. break;
  118. case CMD_RET(CMD_FWT_ACCESS):
  119. spin_lock_irqsave(&priv->driver_lock, flags);
  120. if (priv->cur_cmd->callback_arg)
  121. memcpy((void *)priv->cur_cmd->callback_arg, &resp->params.fwt,
  122. sizeof(resp->params.fwt));
  123. spin_unlock_irqrestore(&priv->driver_lock, flags);
  124. break;
  125. case CMD_RET(CMD_802_11_BEACON_CTRL):
  126. ret = lbs_ret_802_11_bcn_ctrl(priv, resp);
  127. break;
  128. default:
  129. lbs_pr_err("CMD_RESP: unknown cmd response 0x%04x\n",
  130. le16_to_cpu(resp->command));
  131. break;
  132. }
  133. lbs_deb_leave(LBS_DEB_HOST);
  134. return ret;
  135. }
  136. int lbs_process_command_response(struct lbs_private *priv, u8 *data, u32 len)
  137. {
  138. uint16_t respcmd, curcmd;
  139. struct cmd_header *resp;
  140. int ret = 0;
  141. unsigned long flags;
  142. uint16_t result;
  143. lbs_deb_enter(LBS_DEB_HOST);
  144. mutex_lock(&priv->lock);
  145. spin_lock_irqsave(&priv->driver_lock, flags);
  146. if (!priv->cur_cmd) {
  147. lbs_deb_host("CMD_RESP: cur_cmd is NULL\n");
  148. ret = -1;
  149. spin_unlock_irqrestore(&priv->driver_lock, flags);
  150. goto done;
  151. }
  152. resp = (void *)data;
  153. curcmd = le16_to_cpu(priv->cur_cmd->cmdbuf->command);
  154. respcmd = le16_to_cpu(resp->command);
  155. result = le16_to_cpu(resp->result);
  156. lbs_deb_cmd("CMD_RESP: response 0x%04x, seq %d, size %d\n",
  157. respcmd, le16_to_cpu(resp->seqnum), len);
  158. lbs_deb_hex(LBS_DEB_CMD, "CMD_RESP", (void *) resp, len);
  159. if (resp->seqnum != priv->cur_cmd->cmdbuf->seqnum) {
  160. lbs_pr_info("Received CMD_RESP with invalid sequence %d (expected %d)\n",
  161. le16_to_cpu(resp->seqnum), le16_to_cpu(priv->cur_cmd->cmdbuf->seqnum));
  162. spin_unlock_irqrestore(&priv->driver_lock, flags);
  163. ret = -1;
  164. goto done;
  165. }
  166. if (respcmd != CMD_RET(curcmd) &&
  167. respcmd != CMD_RET_802_11_ASSOCIATE && curcmd != CMD_802_11_ASSOCIATE) {
  168. lbs_pr_info("Invalid CMD_RESP %x to command %x!\n", respcmd, curcmd);
  169. spin_unlock_irqrestore(&priv->driver_lock, flags);
  170. ret = -1;
  171. goto done;
  172. }
  173. if (resp->result == cpu_to_le16(0x0004)) {
  174. /* 0x0004 means -EAGAIN. Drop the response, let it time out
  175. and be resubmitted */
  176. lbs_pr_info("Firmware returns DEFER to command %x. Will let it time out...\n",
  177. le16_to_cpu(resp->command));
  178. spin_unlock_irqrestore(&priv->driver_lock, flags);
  179. ret = -1;
  180. goto done;
  181. }
  182. /* Now we got response from FW, cancel the command timer */
  183. del_timer(&priv->command_timer);
  184. priv->cmd_timed_out = 0;
  185. /* Store the response code to cur_cmd_retcode. */
  186. priv->cur_cmd_retcode = result;
  187. if (respcmd == CMD_RET(CMD_802_11_PS_MODE)) {
  188. struct cmd_ds_802_11_ps_mode *psmode = (void *) &resp[1];
  189. u16 action = le16_to_cpu(psmode->action);
  190. lbs_deb_host(
  191. "CMD_RESP: PS_MODE cmd reply result 0x%x, action 0x%x\n",
  192. result, action);
  193. if (result) {
  194. lbs_deb_host("CMD_RESP: PS command failed with 0x%x\n",
  195. result);
  196. /*
  197. * We should not re-try enter-ps command in
  198. * ad-hoc mode. It takes place in
  199. * lbs_execute_next_command().
  200. */
  201. if (priv->wdev->iftype == NL80211_IFTYPE_MONITOR &&
  202. action == CMD_SUBCMD_ENTER_PS)
  203. priv->psmode = LBS802_11POWERMODECAM;
  204. } else if (action == CMD_SUBCMD_ENTER_PS) {
  205. priv->needtowakeup = 0;
  206. priv->psstate = PS_STATE_AWAKE;
  207. lbs_deb_host("CMD_RESP: ENTER_PS command response\n");
  208. if (priv->connect_status != LBS_CONNECTED) {
  209. /*
  210. * When Deauth Event received before Enter_PS command
  211. * response, We need to wake up the firmware.
  212. */
  213. lbs_deb_host(
  214. "disconnected, invoking lbs_ps_wakeup\n");
  215. spin_unlock_irqrestore(&priv->driver_lock, flags);
  216. mutex_unlock(&priv->lock);
  217. lbs_ps_wakeup(priv, 0);
  218. mutex_lock(&priv->lock);
  219. spin_lock_irqsave(&priv->driver_lock, flags);
  220. }
  221. } else if (action == CMD_SUBCMD_EXIT_PS) {
  222. priv->needtowakeup = 0;
  223. priv->psstate = PS_STATE_FULL_POWER;
  224. lbs_deb_host("CMD_RESP: EXIT_PS command response\n");
  225. } else {
  226. lbs_deb_host("CMD_RESP: PS action 0x%X\n", action);
  227. }
  228. lbs_complete_command(priv, priv->cur_cmd, result);
  229. spin_unlock_irqrestore(&priv->driver_lock, flags);
  230. ret = 0;
  231. goto done;
  232. }
  233. /* If the command is not successful, cleanup and return failure */
  234. if ((result != 0 || !(respcmd & 0x8000))) {
  235. lbs_deb_host("CMD_RESP: error 0x%04x in command reply 0x%04x\n",
  236. result, respcmd);
  237. /*
  238. * Handling errors here
  239. */
  240. switch (respcmd) {
  241. case CMD_RET(CMD_GET_HW_SPEC):
  242. case CMD_RET(CMD_802_11_RESET):
  243. lbs_deb_host("CMD_RESP: reset failed\n");
  244. break;
  245. }
  246. lbs_complete_command(priv, priv->cur_cmd, result);
  247. spin_unlock_irqrestore(&priv->driver_lock, flags);
  248. ret = -1;
  249. goto done;
  250. }
  251. spin_unlock_irqrestore(&priv->driver_lock, flags);
  252. if (priv->cur_cmd && priv->cur_cmd->callback) {
  253. ret = priv->cur_cmd->callback(priv, priv->cur_cmd->callback_arg,
  254. resp);
  255. } else
  256. ret = handle_cmd_response(priv, resp);
  257. spin_lock_irqsave(&priv->driver_lock, flags);
  258. if (priv->cur_cmd) {
  259. /* Clean up and Put current command back to cmdfreeq */
  260. lbs_complete_command(priv, priv->cur_cmd, result);
  261. }
  262. spin_unlock_irqrestore(&priv->driver_lock, flags);
  263. done:
  264. mutex_unlock(&priv->lock);
  265. lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
  266. return ret;
  267. }
  268. int lbs_process_event(struct lbs_private *priv, u32 event)
  269. {
  270. int ret = 0;
  271. struct cmd_header cmd;
  272. lbs_deb_enter(LBS_DEB_CMD);
  273. switch (event) {
  274. case MACREG_INT_CODE_LINK_SENSED:
  275. lbs_deb_cmd("EVENT: link sensed\n");
  276. break;
  277. case MACREG_INT_CODE_DEAUTHENTICATED:
  278. lbs_deb_cmd("EVENT: deauthenticated\n");
  279. lbs_mac_event_disconnected(priv);
  280. break;
  281. case MACREG_INT_CODE_DISASSOCIATED:
  282. lbs_deb_cmd("EVENT: disassociated\n");
  283. lbs_mac_event_disconnected(priv);
  284. break;
  285. case MACREG_INT_CODE_LINK_LOST_NO_SCAN:
  286. lbs_deb_cmd("EVENT: link lost\n");
  287. lbs_mac_event_disconnected(priv);
  288. break;
  289. case MACREG_INT_CODE_PS_SLEEP:
  290. lbs_deb_cmd("EVENT: ps sleep\n");
  291. /* handle unexpected PS SLEEP event */
  292. if (priv->psstate == PS_STATE_FULL_POWER) {
  293. lbs_deb_cmd(
  294. "EVENT: in FULL POWER mode, ignoreing PS_SLEEP\n");
  295. break;
  296. }
  297. priv->psstate = PS_STATE_PRE_SLEEP;
  298. lbs_ps_confirm_sleep(priv);
  299. break;
  300. case MACREG_INT_CODE_HOST_AWAKE:
  301. lbs_deb_cmd("EVENT: host awake\n");
  302. if (priv->reset_deep_sleep_wakeup)
  303. priv->reset_deep_sleep_wakeup(priv);
  304. priv->is_deep_sleep = 0;
  305. lbs_cmd_async(priv, CMD_802_11_WAKEUP_CONFIRM, &cmd,
  306. sizeof(cmd));
  307. priv->is_host_sleep_activated = 0;
  308. wake_up_interruptible(&priv->host_sleep_q);
  309. break;
  310. case MACREG_INT_CODE_DEEP_SLEEP_AWAKE:
  311. if (priv->reset_deep_sleep_wakeup)
  312. priv->reset_deep_sleep_wakeup(priv);
  313. lbs_deb_cmd("EVENT: ds awake\n");
  314. priv->is_deep_sleep = 0;
  315. priv->wakeup_dev_required = 0;
  316. wake_up_interruptible(&priv->ds_awake_q);
  317. break;
  318. case MACREG_INT_CODE_PS_AWAKE:
  319. lbs_deb_cmd("EVENT: ps awake\n");
  320. /* handle unexpected PS AWAKE event */
  321. if (priv->psstate == PS_STATE_FULL_POWER) {
  322. lbs_deb_cmd(
  323. "EVENT: In FULL POWER mode - ignore PS AWAKE\n");
  324. break;
  325. }
  326. priv->psstate = PS_STATE_AWAKE;
  327. if (priv->needtowakeup) {
  328. /*
  329. * wait for the command processing to finish
  330. * before resuming sending
  331. * priv->needtowakeup will be set to FALSE
  332. * in lbs_ps_wakeup()
  333. */
  334. lbs_deb_cmd("waking up ...\n");
  335. lbs_ps_wakeup(priv, 0);
  336. }
  337. break;
  338. case MACREG_INT_CODE_MIC_ERR_UNICAST:
  339. lbs_deb_cmd("EVENT: UNICAST MIC ERROR\n");
  340. lbs_send_mic_failureevent(priv, event);
  341. break;
  342. case MACREG_INT_CODE_MIC_ERR_MULTICAST:
  343. lbs_deb_cmd("EVENT: MULTICAST MIC ERROR\n");
  344. lbs_send_mic_failureevent(priv, event);
  345. break;
  346. case MACREG_INT_CODE_MIB_CHANGED:
  347. lbs_deb_cmd("EVENT: MIB CHANGED\n");
  348. break;
  349. case MACREG_INT_CODE_INIT_DONE:
  350. lbs_deb_cmd("EVENT: INIT DONE\n");
  351. break;
  352. case MACREG_INT_CODE_ADHOC_BCN_LOST:
  353. lbs_deb_cmd("EVENT: ADHOC beacon lost\n");
  354. break;
  355. case MACREG_INT_CODE_RSSI_LOW:
  356. lbs_pr_alert("EVENT: rssi low\n");
  357. break;
  358. case MACREG_INT_CODE_SNR_LOW:
  359. lbs_pr_alert("EVENT: snr low\n");
  360. break;
  361. case MACREG_INT_CODE_MAX_FAIL:
  362. lbs_pr_alert("EVENT: max fail\n");
  363. break;
  364. case MACREG_INT_CODE_RSSI_HIGH:
  365. lbs_pr_alert("EVENT: rssi high\n");
  366. break;
  367. case MACREG_INT_CODE_SNR_HIGH:
  368. lbs_pr_alert("EVENT: snr high\n");
  369. break;
  370. case MACREG_INT_CODE_MESH_AUTO_STARTED:
  371. /* Ignore spurious autostart events */
  372. lbs_pr_info("EVENT: MESH_AUTO_STARTED (ignoring)\n");
  373. break;
  374. default:
  375. lbs_pr_alert("EVENT: unknown event id %d\n", event);
  376. break;
  377. }
  378. lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
  379. return ret;
  380. }