2 * This file contains the handling of command
3 * responses as well as events generated by firmware.
5 #include <linux/delay.h>
6 #include <linux/sched.h>
7 #include <linux/if_arp.h>
8 #include <linux/netdevice.h>
9 #include <asm/unaligned.h>
10 #include <net/iw_handler.h>
21 * @brief This function handles disconnect event. it
22 * reports disconnect to upper layer, clean tx/rx packets,
23 * reset link state etc.
25 * @param priv A pointer to struct lbs_private structure
28 void lbs_mac_event_disconnected(struct lbs_private *priv)
30 union iwreq_data wrqu;
32 if (priv->connect_status != LBS_CONNECTED)
35 lbs_deb_enter(LBS_DEB_ASSOC);
37 memset(wrqu.ap_addr.sa_data, 0x00, ETH_ALEN);
38 wrqu.ap_addr.sa_family = ARPHRD_ETHER;
41 * Cisco AP sends EAP failure and de-auth in less than 0.5 ms.
42 * It causes problem in the Supplicant
45 msleep_interruptible(1000);
46 wireless_send_event(priv->dev, SIOCGIWAP, &wrqu, NULL);
48 /* report disconnect to upper layer */
49 netif_stop_queue(priv->dev);
50 netif_carrier_off(priv->dev);
52 /* Free Tx and Rx packets */
53 kfree_skb(priv->currenttxskb);
54 priv->currenttxskb = NULL;
55 priv->tx_pending_len = 0;
57 /* reset SNR/NF/RSSI values */
58 memset(priv->SNR, 0x00, sizeof(priv->SNR));
59 memset(priv->NF, 0x00, sizeof(priv->NF));
60 memset(priv->RSSI, 0x00, sizeof(priv->RSSI));
61 memset(priv->rawSNR, 0x00, sizeof(priv->rawSNR));
62 memset(priv->rawNF, 0x00, sizeof(priv->rawNF));
65 priv->connect_status = LBS_DISCONNECTED;
67 /* Clear out associated SSID and BSSID since connection is
70 memset(&priv->curbssparams.bssid, 0, ETH_ALEN);
71 memset(&priv->curbssparams.ssid, 0, IEEE80211_MAX_SSID_LEN);
72 priv->curbssparams.ssid_len = 0;
74 if (priv->psstate != PS_STATE_FULL_POWER) {
75 /* make firmware to exit PS mode */
76 lbs_deb_cmd("disconnected, so exit PS mode\n");
77 lbs_ps_wakeup(priv, 0);
79 lbs_deb_leave(LBS_DEB_ASSOC);
83 * @brief This function handles MIC failure event.
85 * @param priv A pointer to struct lbs_private structure
86 * @para event the event id
89 static void handle_mic_failureevent(struct lbs_private *priv, u32 event)
93 lbs_deb_enter(LBS_DEB_CMD);
94 memset(buf, 0, sizeof(buf));
96 sprintf(buf, "%s", "MLME-MICHAELMICFAILURE.indication ");
98 if (event == MACREG_INT_CODE_MIC_ERR_UNICAST) {
99 strcat(buf, "unicast ");
101 strcat(buf, "multicast ");
104 lbs_send_iwevcustom_event(priv, buf);
105 lbs_deb_leave(LBS_DEB_CMD);
108 static int lbs_ret_reg_access(struct lbs_private *priv,
109 u16 type, struct cmd_ds_command *resp)
113 lbs_deb_enter(LBS_DEB_CMD);
116 case CMD_RET(CMD_MAC_REG_ACCESS):
118 struct cmd_ds_mac_reg_access *reg = &resp->params.macreg;
120 priv->offsetvalue.offset = (u32)le16_to_cpu(reg->offset);
121 priv->offsetvalue.value = le32_to_cpu(reg->value);
125 case CMD_RET(CMD_BBP_REG_ACCESS):
127 struct cmd_ds_bbp_reg_access *reg = &resp->params.bbpreg;
129 priv->offsetvalue.offset = (u32)le16_to_cpu(reg->offset);
130 priv->offsetvalue.value = reg->value;
134 case CMD_RET(CMD_RF_REG_ACCESS):
136 struct cmd_ds_rf_reg_access *reg = &resp->params.rfreg;
138 priv->offsetvalue.offset = (u32)le16_to_cpu(reg->offset);
139 priv->offsetvalue.value = reg->value;
147 lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
151 static inline int handle_cmd_response(struct lbs_private *priv,
152 struct cmd_header *cmd_response)
154 struct cmd_ds_command *resp = (struct cmd_ds_command *) cmd_response;
157 uint16_t respcmd = le16_to_cpu(resp->command);
159 lbs_deb_enter(LBS_DEB_HOST);
162 case CMD_RET(CMD_MAC_REG_ACCESS):
163 case CMD_RET(CMD_BBP_REG_ACCESS):
164 case CMD_RET(CMD_RF_REG_ACCESS):
165 ret = lbs_ret_reg_access(priv, respcmd, resp);
168 case CMD_RET(CMD_802_11_SET_AFC):
169 case CMD_RET(CMD_802_11_GET_AFC):
170 spin_lock_irqsave(&priv->driver_lock, flags);
171 memmove((void *)priv->cur_cmd->callback_arg, &resp->params.afc,
172 sizeof(struct cmd_ds_802_11_afc));
173 spin_unlock_irqrestore(&priv->driver_lock, flags);
177 case CMD_RET(CMD_802_11_BEACON_STOP):
180 case CMD_RET(CMD_802_11_RSSI):
181 ret = lbs_ret_802_11_rssi(priv, resp);
184 case CMD_RET(CMD_802_11_TPC_CFG):
185 spin_lock_irqsave(&priv->driver_lock, flags);
186 memmove((void *)priv->cur_cmd->callback_arg, &resp->params.tpccfg,
187 sizeof(struct cmd_ds_802_11_tpc_cfg));
188 spin_unlock_irqrestore(&priv->driver_lock, flags);
190 case CMD_RET(CMD_802_11_LED_GPIO_CTRL):
191 spin_lock_irqsave(&priv->driver_lock, flags);
192 memmove((void *)priv->cur_cmd->callback_arg, &resp->params.ledgpio,
193 sizeof(struct cmd_ds_802_11_led_ctrl));
194 spin_unlock_irqrestore(&priv->driver_lock, flags);
197 case CMD_RET(CMD_GET_TSF):
198 spin_lock_irqsave(&priv->driver_lock, flags);
199 memcpy((void *)priv->cur_cmd->callback_arg,
200 &resp->params.gettsf.tsfvalue, sizeof(u64));
201 spin_unlock_irqrestore(&priv->driver_lock, flags);
203 case CMD_RET(CMD_BT_ACCESS):
204 spin_lock_irqsave(&priv->driver_lock, flags);
205 if (priv->cur_cmd->callback_arg)
206 memcpy((void *)priv->cur_cmd->callback_arg,
207 &resp->params.bt.addr1, 2 * ETH_ALEN);
208 spin_unlock_irqrestore(&priv->driver_lock, flags);
210 case CMD_RET(CMD_FWT_ACCESS):
211 spin_lock_irqsave(&priv->driver_lock, flags);
212 if (priv->cur_cmd->callback_arg)
213 memcpy((void *)priv->cur_cmd->callback_arg, &resp->params.fwt,
214 sizeof(resp->params.fwt));
215 spin_unlock_irqrestore(&priv->driver_lock, flags);
217 case CMD_RET(CMD_802_11_BEACON_CTRL):
218 ret = lbs_ret_802_11_bcn_ctrl(priv, resp);
222 lbs_pr_err("CMD_RESP: unknown cmd response 0x%04x\n",
223 le16_to_cpu(resp->command));
226 lbs_deb_leave(LBS_DEB_HOST);
230 int lbs_process_command_response(struct lbs_private *priv, u8 *data, u32 len)
232 uint16_t respcmd, curcmd;
233 struct cmd_header *resp;
238 lbs_deb_enter(LBS_DEB_HOST);
240 mutex_lock(&priv->lock);
241 spin_lock_irqsave(&priv->driver_lock, flags);
243 if (!priv->cur_cmd) {
244 lbs_deb_host("CMD_RESP: cur_cmd is NULL\n");
246 spin_unlock_irqrestore(&priv->driver_lock, flags);
251 curcmd = le16_to_cpu(priv->cur_cmd->cmdbuf->command);
252 respcmd = le16_to_cpu(resp->command);
253 result = le16_to_cpu(resp->result);
255 lbs_deb_cmd("CMD_RESP: response 0x%04x, seq %d, size %d\n",
256 respcmd, le16_to_cpu(resp->seqnum), len);
257 lbs_deb_hex(LBS_DEB_CMD, "CMD_RESP", (void *) resp, len);
259 if (resp->seqnum != priv->cur_cmd->cmdbuf->seqnum) {
260 lbs_pr_info("Received CMD_RESP with invalid sequence %d (expected %d)\n",
261 le16_to_cpu(resp->seqnum), le16_to_cpu(priv->cur_cmd->cmdbuf->seqnum));
262 spin_unlock_irqrestore(&priv->driver_lock, flags);
266 if (respcmd != CMD_RET(curcmd) &&
267 respcmd != CMD_RET_802_11_ASSOCIATE && curcmd != CMD_802_11_ASSOCIATE) {
268 lbs_pr_info("Invalid CMD_RESP %x to command %x!\n", respcmd, curcmd);
269 spin_unlock_irqrestore(&priv->driver_lock, flags);
274 if (resp->result == cpu_to_le16(0x0004)) {
275 /* 0x0004 means -EAGAIN. Drop the response, let it time out
276 and be resubmitted */
277 lbs_pr_info("Firmware returns DEFER to command %x. Will let it time out...\n",
278 le16_to_cpu(resp->command));
279 spin_unlock_irqrestore(&priv->driver_lock, flags);
284 /* Now we got response from FW, cancel the command timer */
285 del_timer(&priv->command_timer);
286 priv->cmd_timed_out = 0;
287 if (priv->nr_retries) {
288 lbs_pr_info("Received result %x to command %x after %d retries\n",
289 result, curcmd, priv->nr_retries);
290 priv->nr_retries = 0;
293 /* Store the response code to cur_cmd_retcode. */
294 priv->cur_cmd_retcode = result;
296 if (respcmd == CMD_RET(CMD_802_11_PS_MODE)) {
297 struct cmd_ds_802_11_ps_mode *psmode = (void *) &resp[1];
298 u16 action = le16_to_cpu(psmode->action);
301 "CMD_RESP: PS_MODE cmd reply result 0x%x, action 0x%x\n",
305 lbs_deb_host("CMD_RESP: PS command failed with 0x%x\n",
308 * We should not re-try enter-ps command in
309 * ad-hoc mode. It takes place in
310 * lbs_execute_next_command().
312 if (priv->mode == IW_MODE_ADHOC &&
313 action == CMD_SUBCMD_ENTER_PS)
314 priv->psmode = LBS802_11POWERMODECAM;
315 } else if (action == CMD_SUBCMD_ENTER_PS) {
316 priv->needtowakeup = 0;
317 priv->psstate = PS_STATE_AWAKE;
319 lbs_deb_host("CMD_RESP: ENTER_PS command response\n");
320 if (priv->connect_status != LBS_CONNECTED) {
322 * When Deauth Event received before Enter_PS command
323 * response, We need to wake up the firmware.
326 "disconnected, invoking lbs_ps_wakeup\n");
328 spin_unlock_irqrestore(&priv->driver_lock, flags);
329 mutex_unlock(&priv->lock);
330 lbs_ps_wakeup(priv, 0);
331 mutex_lock(&priv->lock);
332 spin_lock_irqsave(&priv->driver_lock, flags);
334 } else if (action == CMD_SUBCMD_EXIT_PS) {
335 priv->needtowakeup = 0;
336 priv->psstate = PS_STATE_FULL_POWER;
337 lbs_deb_host("CMD_RESP: EXIT_PS command response\n");
339 lbs_deb_host("CMD_RESP: PS action 0x%X\n", action);
342 lbs_complete_command(priv, priv->cur_cmd, result);
343 spin_unlock_irqrestore(&priv->driver_lock, flags);
349 /* If the command is not successful, cleanup and return failure */
350 if ((result != 0 || !(respcmd & 0x8000))) {
351 lbs_deb_host("CMD_RESP: error 0x%04x in command reply 0x%04x\n",
354 * Handling errors here
357 case CMD_RET(CMD_GET_HW_SPEC):
358 case CMD_RET(CMD_802_11_RESET):
359 lbs_deb_host("CMD_RESP: reset failed\n");
363 lbs_complete_command(priv, priv->cur_cmd, result);
364 spin_unlock_irqrestore(&priv->driver_lock, flags);
370 spin_unlock_irqrestore(&priv->driver_lock, flags);
372 if (priv->cur_cmd && priv->cur_cmd->callback) {
373 ret = priv->cur_cmd->callback(priv, priv->cur_cmd->callback_arg,
376 ret = handle_cmd_response(priv, resp);
378 spin_lock_irqsave(&priv->driver_lock, flags);
381 /* Clean up and Put current command back to cmdfreeq */
382 lbs_complete_command(priv, priv->cur_cmd, result);
384 spin_unlock_irqrestore(&priv->driver_lock, flags);
387 mutex_unlock(&priv->lock);
388 lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
392 static int lbs_send_confirmwake(struct lbs_private *priv)
394 struct cmd_header cmd;
397 lbs_deb_enter(LBS_DEB_HOST);
399 cmd.command = cpu_to_le16(CMD_802_11_WAKEUP_CONFIRM);
400 cmd.size = cpu_to_le16(sizeof(cmd));
401 cmd.seqnum = cpu_to_le16(++priv->seqnum);
404 lbs_deb_hex(LBS_DEB_HOST, "wake confirm", (u8 *) &cmd,
407 ret = priv->hw_host_to_card(priv, MVMS_CMD, (u8 *) &cmd, sizeof(cmd));
409 lbs_pr_alert("SEND_WAKEC_CMD: Host to Card failed for Confirm Wake\n");
411 lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
415 int lbs_process_event(struct lbs_private *priv, u32 event)
419 lbs_deb_enter(LBS_DEB_CMD);
422 case MACREG_INT_CODE_LINK_SENSED:
423 lbs_deb_cmd("EVENT: link sensed\n");
426 case MACREG_INT_CODE_DEAUTHENTICATED:
427 lbs_deb_cmd("EVENT: deauthenticated\n");
428 lbs_mac_event_disconnected(priv);
431 case MACREG_INT_CODE_DISASSOCIATED:
432 lbs_deb_cmd("EVENT: disassociated\n");
433 lbs_mac_event_disconnected(priv);
436 case MACREG_INT_CODE_LINK_LOST_NO_SCAN:
437 lbs_deb_cmd("EVENT: link lost\n");
438 lbs_mac_event_disconnected(priv);
441 case MACREG_INT_CODE_PS_SLEEP:
442 lbs_deb_cmd("EVENT: ps sleep\n");
444 /* handle unexpected PS SLEEP event */
445 if (priv->psstate == PS_STATE_FULL_POWER) {
447 "EVENT: in FULL POWER mode, ignoreing PS_SLEEP\n");
450 priv->psstate = PS_STATE_PRE_SLEEP;
452 lbs_ps_confirm_sleep(priv);
456 case MACREG_INT_CODE_HOST_AWAKE:
457 lbs_deb_cmd("EVENT: host awake\n");
458 if (priv->reset_deep_sleep_wakeup)
459 priv->reset_deep_sleep_wakeup(priv);
460 priv->is_deep_sleep = 0;
461 lbs_send_confirmwake(priv);
464 case MACREG_INT_CODE_DEEP_SLEEP_AWAKE:
465 if (priv->reset_deep_sleep_wakeup)
466 priv->reset_deep_sleep_wakeup(priv);
467 lbs_deb_cmd("EVENT: ds awake\n");
468 priv->is_deep_sleep = 0;
469 priv->wakeup_dev_required = 0;
470 wake_up_interruptible(&priv->ds_awake_q);
473 case MACREG_INT_CODE_PS_AWAKE:
474 lbs_deb_cmd("EVENT: ps awake\n");
475 /* handle unexpected PS AWAKE event */
476 if (priv->psstate == PS_STATE_FULL_POWER) {
478 "EVENT: In FULL POWER mode - ignore PS AWAKE\n");
482 priv->psstate = PS_STATE_AWAKE;
484 if (priv->needtowakeup) {
486 * wait for the command processing to finish
487 * before resuming sending
488 * priv->needtowakeup will be set to FALSE
491 lbs_deb_cmd("waking up ...\n");
492 lbs_ps_wakeup(priv, 0);
496 case MACREG_INT_CODE_MIC_ERR_UNICAST:
497 lbs_deb_cmd("EVENT: UNICAST MIC ERROR\n");
498 handle_mic_failureevent(priv, MACREG_INT_CODE_MIC_ERR_UNICAST);
501 case MACREG_INT_CODE_MIC_ERR_MULTICAST:
502 lbs_deb_cmd("EVENT: MULTICAST MIC ERROR\n");
503 handle_mic_failureevent(priv, MACREG_INT_CODE_MIC_ERR_MULTICAST);
506 case MACREG_INT_CODE_MIB_CHANGED:
507 lbs_deb_cmd("EVENT: MIB CHANGED\n");
509 case MACREG_INT_CODE_INIT_DONE:
510 lbs_deb_cmd("EVENT: INIT DONE\n");
512 case MACREG_INT_CODE_ADHOC_BCN_LOST:
513 lbs_deb_cmd("EVENT: ADHOC beacon lost\n");
515 case MACREG_INT_CODE_RSSI_LOW:
516 lbs_pr_alert("EVENT: rssi low\n");
518 case MACREG_INT_CODE_SNR_LOW:
519 lbs_pr_alert("EVENT: snr low\n");
521 case MACREG_INT_CODE_MAX_FAIL:
522 lbs_pr_alert("EVENT: max fail\n");
524 case MACREG_INT_CODE_RSSI_HIGH:
525 lbs_pr_alert("EVENT: rssi high\n");
527 case MACREG_INT_CODE_SNR_HIGH:
528 lbs_pr_alert("EVENT: snr high\n");
531 case MACREG_INT_CODE_MESH_AUTO_STARTED:
532 /* Ignore spurious autostart events if autostart is disabled */
533 if (!priv->mesh_autostart_enabled) {
534 lbs_pr_info("EVENT: MESH_AUTO_STARTED (ignoring)\n");
537 lbs_pr_info("EVENT: MESH_AUTO_STARTED\n");
538 priv->mesh_connect_status = LBS_CONNECTED;
539 if (priv->mesh_open) {
540 netif_carrier_on(priv->mesh_dev);
541 if (!priv->tx_pending_len)
542 netif_wake_queue(priv->mesh_dev);
544 priv->mode = IW_MODE_ADHOC;
545 schedule_work(&priv->sync_channel);
549 lbs_pr_alert("EVENT: unknown event id %d\n", event);
553 lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);