2 *************************************************************************
4 * 5F., No.36, Taiyuan St., Jhubei City,
8 * (c) Copyright 2002-2007, Ralink Technology, Inc.
10 * This program is free software; you can redistribute it and/or modify *
11 * it under the terms of the GNU General Public License as published by *
12 * the Free Software Foundation; either version 2 of the License, or *
13 * (at your option) any later version. *
15 * This program is distributed in the hope that it will be useful, *
16 * but WITHOUT ANY WARRANTY; without even the implied warranty of *
17 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
18 * GNU General Public License for more details. *
20 * You should have received a copy of the GNU General Public License *
21 * along with this program; if not, write to the *
22 * Free Software Foundation, Inc., *
23 * 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA. *
25 *************************************************************************
28 #include "../rt_config.h"
32 #define BA_ORI_INIT_SEQ (pEntry->TxSeq[TID]) //1 // inital sequence number of BA session
34 #define ORI_SESSION_MAX_RETRY 8
35 #define ORI_BA_SESSION_TIMEOUT (2000) // ms
36 #define REC_BA_SESSION_IDLE_TIMEOUT (1000) // ms
38 #define REORDERING_PACKET_TIMEOUT ((100 * HZ)/1000) // system ticks -- 100 ms
39 #define MAX_REORDERING_PACKET_TIMEOUT ((3000 * HZ)/1000) // system ticks -- 100 ms
41 #define RESET_RCV_SEQ (0xFFFF)
43 static void ba_mpdu_blk_free(PRTMP_ADAPTER pAd, struct reordering_mpdu *mpdu_blk);
46 BA_ORI_ENTRY *BATableAllocOriEntry(
50 BA_REC_ENTRY *BATableAllocRecEntry(
54 VOID BAOriSessionSetupTimeout(
55 IN PVOID SystemSpecific1,
56 IN PVOID FunctionContext,
57 IN PVOID SystemSpecific2,
58 IN PVOID SystemSpecific3);
60 VOID BARecSessionIdleTimeout(
61 IN PVOID SystemSpecific1,
62 IN PVOID FunctionContext,
63 IN PVOID SystemSpecific2,
64 IN PVOID SystemSpecific3);
67 BUILD_TIMER_FUNCTION(BAOriSessionSetupTimeout);
68 BUILD_TIMER_FUNCTION(BARecSessionIdleTimeout);
70 #define ANNOUNCE_REORDERING_PACKET(_pAd, _mpdu_blk) \
71 Announce_Reordering_Packet(_pAd, _mpdu_blk);
73 VOID BA_MaxWinSizeReasign(
75 IN MAC_TABLE_ENTRY *pEntryPeer,
81 if (pAd->MACVersion >= RALINK_2883_VERSION) // 3*3
83 if (pAd->MACVersion >= RALINK_3070_VERSION)
85 if (pEntryPeer->WepStatus != Ndis802_11EncryptionDisabled)
86 MaxSize = 7; // for non-open mode
93 else if (pAd->MACVersion >= RALINK_2880E_VERSION) // 2880 e
95 if (pEntryPeer->WepStatus != Ndis802_11EncryptionDisabled)
96 MaxSize = 7; // for non-open mode
103 DBGPRINT(RT_DEBUG_TRACE, ("ba> Win Size = %d, Max Size = %d\n",
104 *pWinSize, MaxSize));
106 if ((*pWinSize) > MaxSize)
108 DBGPRINT(RT_DEBUG_TRACE, ("ba> reassign max win size from %d to %d\n",
109 *pWinSize, MaxSize));
115 void Announce_Reordering_Packet(IN PRTMP_ADAPTER pAd,
116 IN struct reordering_mpdu *mpdu)
118 PNDIS_PACKET pPacket;
120 pPacket = mpdu->pPacket;
125 BA_Reorder_AMSDU_Annnounce(pAd, pPacket);
130 // pass this 802.3 packet to upper layer or forward this packet to WM directly
133 IF_DEV_CONFIG_OPMODE_ON_STA(pAd)
134 ANNOUNCE_OR_FORWARD_802_3_PACKET(pAd, pPacket, RTMP_GET_PACKET_IF(pPacket));
139 * Insert a reordering mpdu into sorted linked list by sequence no.
141 BOOLEAN ba_reordering_mpdu_insertsorted(struct reordering_list *list, struct reordering_mpdu *mpdu)
144 struct reordering_mpdu **ppScan = &list->next;
146 while (*ppScan != NULL)
148 if (SEQ_SMALLER((*ppScan)->Sequence, mpdu->Sequence, MAXSEQ))
150 ppScan = &(*ppScan)->next;
152 else if ((*ppScan)->Sequence == mpdu->Sequence)
154 /* give up this duplicated frame */
164 mpdu->next = *ppScan;
172 * caller lock critical section if necessary
174 static inline void ba_enqueue(struct reordering_list *list, struct reordering_mpdu *mpdu_blk)
177 mpdu_blk->next = list->next;
178 list->next = mpdu_blk;
182 * caller lock critical section if necessary
184 static inline struct reordering_mpdu * ba_dequeue(struct reordering_list *list)
186 struct reordering_mpdu *mpdu_blk = NULL;
193 mpdu_blk = list->next;
196 list->next = mpdu_blk->next;
197 mpdu_blk->next = NULL;
204 static inline struct reordering_mpdu *ba_reordering_mpdu_dequeue(struct reordering_list *list)
206 return(ba_dequeue(list));
210 static inline struct reordering_mpdu *ba_reordering_mpdu_probe(struct reordering_list *list)
219 * free all resource for reordering mechanism
221 void ba_reordering_resource_release(PRTMP_ADAPTER pAd)
224 PBA_REC_ENTRY pBAEntry;
225 struct reordering_mpdu *mpdu_blk;
230 /* I. release all pending reordering packet */
231 NdisAcquireSpinLock(&pAd->BATabLock);
232 for (i = 0; i < MAX_LEN_OF_BA_REC_TABLE; i++)
234 pBAEntry = &Tab->BARecEntry[i];
235 if (pBAEntry->REC_BA_Status != Recipient_NONE)
237 while ((mpdu_blk = ba_reordering_mpdu_dequeue(&pBAEntry->list)))
239 ASSERT(mpdu_blk->pPacket);
240 RELEASE_NDIS_PACKET(pAd, mpdu_blk->pPacket, NDIS_STATUS_FAILURE);
241 ba_mpdu_blk_free(pAd, mpdu_blk);
245 NdisReleaseSpinLock(&pAd->BATabLock);
247 ASSERT(pBAEntry->list.qlen == 0);
248 /* II. free memory of reordering mpdu table */
249 NdisAcquireSpinLock(&pAd->mpdu_blk_pool.lock);
250 os_free_mem(pAd, pAd->mpdu_blk_pool.mem);
251 NdisReleaseSpinLock(&pAd->mpdu_blk_pool.lock);
257 * Allocate all resource for reordering mechanism
259 BOOLEAN ba_reordering_resource_init(PRTMP_ADAPTER pAd, int num)
263 struct reordering_mpdu *mpdu_blk;
264 struct reordering_list *freelist;
266 /* allocate spinlock */
267 NdisAllocateSpinLock(&pAd->mpdu_blk_pool.lock);
269 /* initialize freelist */
270 freelist = &pAd->mpdu_blk_pool.freelist;
271 freelist->next = NULL;
274 DBGPRINT(RT_DEBUG_TRACE, ("Allocate %d memory for BA reordering\n", (UINT32)(num*sizeof(struct reordering_mpdu))));
276 /* allocate number of mpdu_blk memory */
277 os_alloc_mem(pAd, (PUCHAR *)&mem, (num*sizeof(struct reordering_mpdu)));
279 pAd->mpdu_blk_pool.mem = mem;
283 DBGPRINT(RT_DEBUG_ERROR, ("Can't Allocate Memory for BA Reordering\n"));
287 /* build mpdu_blk free list */
288 for (i=0; i<num; i++)
291 mpdu_blk = (struct reordering_mpdu *) mem;
292 /* initial mpdu_blk */
293 NdisZeroMemory(mpdu_blk, sizeof(struct reordering_mpdu));
295 mem += sizeof(struct reordering_mpdu);
296 /* insert mpdu_blk into freelist */
297 ba_enqueue(freelist, mpdu_blk);
303 //static int blk_count=0; // sample take off, no use
305 static struct reordering_mpdu *ba_mpdu_blk_alloc(PRTMP_ADAPTER pAd)
307 struct reordering_mpdu *mpdu_blk;
309 NdisAcquireSpinLock(&pAd->mpdu_blk_pool.lock);
310 mpdu_blk = ba_dequeue(&pAd->mpdu_blk_pool.freelist);
315 NdisZeroMemory(mpdu_blk, sizeof(struct reordering_mpdu));
317 NdisReleaseSpinLock(&pAd->mpdu_blk_pool.lock);
321 static void ba_mpdu_blk_free(PRTMP_ADAPTER pAd, struct reordering_mpdu *mpdu_blk)
325 NdisAcquireSpinLock(&pAd->mpdu_blk_pool.lock);
327 ba_enqueue(&pAd->mpdu_blk_pool.freelist, mpdu_blk);
328 NdisReleaseSpinLock(&pAd->mpdu_blk_pool.lock);
332 static USHORT ba_indicate_reordering_mpdus_in_order(
333 IN PRTMP_ADAPTER pAd,
334 IN PBA_REC_ENTRY pBAEntry,
337 struct reordering_mpdu *mpdu_blk;
338 USHORT LastIndSeq = RESET_RCV_SEQ;
340 NdisAcquireSpinLock(&pBAEntry->RxReRingLock);
342 while ((mpdu_blk = ba_reordering_mpdu_probe(&pBAEntry->list)))
344 /* find in-order frame */
345 if (!SEQ_STEPONE(mpdu_blk->Sequence, StartSeq, MAXSEQ))
349 /* dequeue in-order frame from reodering list */
350 mpdu_blk = ba_reordering_mpdu_dequeue(&pBAEntry->list);
351 /* pass this frame up */
352 ANNOUNCE_REORDERING_PACKET(pAd, mpdu_blk);
353 /* move to next sequence */
354 StartSeq = mpdu_blk->Sequence;
355 LastIndSeq = StartSeq;
357 ba_mpdu_blk_free(pAd, mpdu_blk);
360 NdisReleaseSpinLock(&pBAEntry->RxReRingLock);
362 /* update last indicated sequence */
366 static void ba_indicate_reordering_mpdus_le_seq(
367 IN PRTMP_ADAPTER pAd,
368 IN PBA_REC_ENTRY pBAEntry,
371 struct reordering_mpdu *mpdu_blk;
373 NdisAcquireSpinLock(&pBAEntry->RxReRingLock);
374 while ((mpdu_blk = ba_reordering_mpdu_probe(&pBAEntry->list)))
376 /* find in-order frame */
377 if ((mpdu_blk->Sequence == Sequence) || SEQ_SMALLER(mpdu_blk->Sequence, Sequence, MAXSEQ))
379 /* dequeue in-order frame from reodering list */
380 mpdu_blk = ba_reordering_mpdu_dequeue(&pBAEntry->list);
381 /* pass this frame up */
382 ANNOUNCE_REORDERING_PACKET(pAd, mpdu_blk);
384 ba_mpdu_blk_free(pAd, mpdu_blk);
391 NdisReleaseSpinLock(&pBAEntry->RxReRingLock);
395 static void ba_refresh_reordering_mpdus(
396 IN PRTMP_ADAPTER pAd,
397 PBA_REC_ENTRY pBAEntry)
399 struct reordering_mpdu *mpdu_blk;
401 NdisAcquireSpinLock(&pBAEntry->RxReRingLock);
403 /* dequeue in-order frame from reodering list */
404 while ((mpdu_blk = ba_reordering_mpdu_dequeue(&pBAEntry->list)))
406 /* pass this frame up */
407 ANNOUNCE_REORDERING_PACKET(pAd, mpdu_blk);
409 pBAEntry->LastIndSeq = mpdu_blk->Sequence;
410 ba_mpdu_blk_free(pAd, mpdu_blk);
412 /* update last indicated sequence */
414 ASSERT(pBAEntry->list.qlen == 0);
415 pBAEntry->LastIndSeq = RESET_RCV_SEQ;
416 NdisReleaseSpinLock(&pBAEntry->RxReRingLock);
421 void ba_flush_reordering_timeout_mpdus(
422 IN PRTMP_ADAPTER pAd,
423 IN PBA_REC_ENTRY pBAEntry,
429 // if ((RTMP_TIME_AFTER((unsigned long)Now32, (unsigned long)(pBAEntry->LastIndSeqAtTimer+REORDERING_PACKET_TIMEOUT)) &&
430 // (pBAEntry->list.qlen > ((pBAEntry->BAWinSize*7)/8))) //||
431 // (RTMP_TIME_AFTER((unsigned long)Now32, (unsigned long)(pBAEntry->LastIndSeqAtTimer+(10*REORDERING_PACKET_TIMEOUT))) &&
432 // (pBAEntry->list.qlen > (pBAEntry->BAWinSize/8)))
433 if (RTMP_TIME_AFTER((unsigned long)Now32, (unsigned long)(pBAEntry->LastIndSeqAtTimer+(MAX_REORDERING_PACKET_TIMEOUT/6)))
434 &&(pBAEntry->list.qlen > 1)
437 DBGPRINT(RT_DEBUG_TRACE,("timeout[%d] (%08lx-%08lx = %d > %d): %x, flush all!\n ", pBAEntry->list.qlen, Now32, (pBAEntry->LastIndSeqAtTimer),
438 (int)((long) Now32 - (long)(pBAEntry->LastIndSeqAtTimer)), MAX_REORDERING_PACKET_TIMEOUT,
439 pBAEntry->LastIndSeq));
440 ba_refresh_reordering_mpdus(pAd, pBAEntry);
441 pBAEntry->LastIndSeqAtTimer = Now32;
444 if (RTMP_TIME_AFTER((unsigned long)Now32, (unsigned long)(pBAEntry->LastIndSeqAtTimer+(REORDERING_PACKET_TIMEOUT)))
445 && (pBAEntry->list.qlen > 0)
448 // printk("timeout[%d] (%lx-%lx = %d > %d): %x, ", pBAEntry->list.qlen, Now32, (pBAEntry->LastIndSeqAtTimer),
449 // (int)((long) Now32 - (long)(pBAEntry->LastIndSeqAtTimer)), REORDERING_PACKET_TIMEOUT,
450 // pBAEntry->LastIndSeq);
452 // force LastIndSeq to shift to LastIndSeq+1
454 Sequence = (pBAEntry->LastIndSeq+1) & MAXSEQ;
455 ba_indicate_reordering_mpdus_le_seq(pAd, pBAEntry, Sequence);
456 pBAEntry->LastIndSeqAtTimer = Now32;
457 pBAEntry->LastIndSeq = Sequence;
459 // indicate in-order mpdus
461 Sequence = ba_indicate_reordering_mpdus_in_order(pAd, pBAEntry, Sequence);
462 if (Sequence != RESET_RCV_SEQ)
464 pBAEntry->LastIndSeq = Sequence;
467 //printk("%x, flush one!\n", pBAEntry->LastIndSeq);
472 (RTMP_TIME_AFTER((unsigned long)Now32, (unsigned long)(pBAEntry->LastIndSeqAtTimer+(MAX_REORDERING_PACKET_TIMEOUT))) &&
473 (pBAEntry->list.qlen > 1))
476 DBGPRINT(RT_DEBUG_TRACE,("timeout[%d] (%lx-%lx = %d > %d): %x\n ", pBAEntry->list.qlen, Now32, (pBAEntry->LastIndSeqAtTimer),
477 (int)((long) Now32 - (long)(pBAEntry->LastIndSeqAtTimer)), MAX_REORDERING_PACKET_TIMEOUT,
478 pBAEntry->LastIndSeq));
479 ba_refresh_reordering_mpdus(pAd, pBAEntry);
480 pBAEntry->LastIndSeqAtTimer = Now32;
487 * generate ADDBA request to
488 * set up BA agreement
490 VOID BAOriSessionSetUp(
491 IN PRTMP_ADAPTER pAd,
492 IN MAC_TABLE_ENTRY *pEntry,
499 //MLME_ADDBA_REQ_STRUCT AddbaReq;
500 BA_ORI_ENTRY *pBAEntry = NULL;
504 if ((pAd->CommonCfg.BACapability.field.AutoBA != TRUE) && (isForced == FALSE))
507 // if this entry is limited to use legacy tx mode, it doesn't generate BA.
508 if (RTMPStaFixedTxMode(pAd, pEntry) != FIXED_TXMODE_HT)
511 if ((pEntry->BADeclineBitmap & (1<<TID)) && (isForced == FALSE))
513 // try again after 3 secs
515 // printk("DeCline BA from Peer\n");
520 Idx = pEntry->BAOriWcidArray[TID];
523 // allocate a BA session
524 pBAEntry = BATableAllocOriEntry(pAd, &Idx);
525 if (pBAEntry == NULL)
527 DBGPRINT(RT_DEBUG_TRACE,("ADDBA - MlmeADDBAAction() allocate BA session failed \n"));
533 pBAEntry =&pAd->BATable.BAOriEntry[Idx];
536 if (pBAEntry->ORI_BA_Status >= Originator_WaitRes)
541 pEntry->BAOriWcidArray[TID] = Idx;
543 // Initialize BA session
544 pBAEntry->ORI_BA_Status = Originator_WaitRes;
545 pBAEntry->Wcid = pEntry->Aid;
546 pBAEntry->BAWinSize = pAd->CommonCfg.BACapability.field.RxBAWinLimit;
547 pBAEntry->Sequence = BA_ORI_INIT_SEQ;
548 pBAEntry->Token = 1; // (2008-01-21) Jan Lee recommends it - this token can't be 0
550 pBAEntry->TimeOutValue = TimeOut;
551 pBAEntry->pAdapter = pAd;
553 if (!(pEntry->TXBAbitmap & (1<<TID)))
555 RTMPInitTimer(pAd, &pBAEntry->ORIBATimer, GET_TIMER_FUNCTION(BAOriSessionSetupTimeout), pBAEntry, FALSE);
558 RTMPCancelTimer(&pBAEntry->ORIBATimer, &Cancelled);
560 // set timer to send ADDBA request
561 RTMPSetTimer(&pBAEntry->ORIBATimer, DelayTime);
564 VOID BAOriSessionAdd(
565 IN PRTMP_ADAPTER pAd,
566 IN MAC_TABLE_ENTRY *pEntry,
567 IN PFRAME_ADDBA_RSP pFrame)
569 BA_ORI_ENTRY *pBAEntry = NULL;
573 PUCHAR pOutBuffer2 = NULL;
578 TID = pFrame->BaParm.TID;
579 Idx = pEntry->BAOriWcidArray[TID];
580 pBAEntry =&pAd->BATable.BAOriEntry[Idx];
582 // Start fill in parameters.
583 if ((Idx !=0) && (pBAEntry->TID == TID) && (pBAEntry->ORI_BA_Status == Originator_WaitRes))
585 pBAEntry->BAWinSize = min(pBAEntry->BAWinSize, ((UCHAR)pFrame->BaParm.BufSize));
586 BA_MaxWinSizeReasign(pAd, pEntry, &pBAEntry->BAWinSize);
588 pBAEntry->TimeOutValue = pFrame->TimeOutValue;
589 pBAEntry->ORI_BA_Status = Originator_Done;
590 // reset sequence number
591 pBAEntry->Sequence = BA_ORI_INIT_SEQ;
593 pEntry->TXBAbitmap |= (1<<TID);
594 RTMPCancelTimer(&pBAEntry->ORIBATimer, &Cancelled);
596 pBAEntry->ORIBATimer.TimerValue = 0; //pFrame->TimeOutValue;
598 DBGPRINT(RT_DEBUG_TRACE,("%s : TXBAbitmap = %x, BAWinSize = %d, TimeOut = %ld\n", __func__, pEntry->TXBAbitmap,
599 pBAEntry->BAWinSize, pBAEntry->ORIBATimer.TimerValue));
602 NStatus = MlmeAllocateMemory(pAd, &pOutBuffer2); //Get an unused nonpaged memory
603 if (NStatus != NDIS_STATUS_SUCCESS)
605 DBGPRINT(RT_DEBUG_TRACE,("BA - BAOriSessionAdd() allocate memory failed \n"));
609 IF_DEV_CONFIG_OPMODE_ON_STA(pAd)
610 BarHeaderInit(pAd, &FrameBar, pAd->MacTab.Content[pBAEntry->Wcid].Addr, pAd->CurrentAddress);
612 FrameBar.StartingSeq.field.FragNum = 0; // make sure sequence not clear in DEL function.
613 FrameBar.StartingSeq.field.StartSeq = pBAEntry->Sequence; // make sure sequence not clear in DEL funciton.
614 FrameBar.BarControl.TID = pBAEntry->TID; // make sure sequence not clear in DEL funciton.
615 MakeOutgoingFrame(pOutBuffer2, &FrameLen,
616 sizeof(FRAME_BAR), &FrameBar,
618 MiniportMMRequest(pAd, QID_AC_BE, pOutBuffer2, FrameLen);
619 MlmeFreeMemory(pAd, pOutBuffer2);
622 if (pBAEntry->ORIBATimer.TimerValue)
623 RTMPSetTimer(&pBAEntry->ORIBATimer, pBAEntry->ORIBATimer.TimerValue); // in mSec
627 BOOLEAN BARecSessionAdd(
628 IN PRTMP_ADAPTER pAd,
629 IN MAC_TABLE_ENTRY *pEntry,
630 IN PFRAME_ADDBA_REQ pFrame)
632 BA_REC_ENTRY *pBAEntry = NULL;
633 BOOLEAN Status = TRUE;
645 TID = pFrame->BaParm.TID;
647 BAWinSize = min(((UCHAR)pFrame->BaParm.BufSize), (UCHAR)pAd->CommonCfg.BACapability.field.RxBAWinLimit);
655 Idx = pEntry->BARecWcidArray[TID];
660 pBAEntry = BATableAllocRecEntry(pAd, &Idx);
664 pBAEntry = &pAd->BATable.BARecEntry[Idx];
665 // flush all pending reordering mpdus
666 ba_refresh_reordering_mpdus(pAd, pBAEntry);
669 DBGPRINT(RT_DEBUG_TRACE,("%s(%ld): Idx = %d, BAWinSize(req %d) = %d\n", __func__, pAd->BATable.numAsRecipient, Idx,
670 pFrame->BaParm.BufSize, BAWinSize));
672 // Start fill in parameters.
673 if (pBAEntry != NULL)
675 ASSERT(pBAEntry->list.qlen == 0);
677 pBAEntry->REC_BA_Status = Recipient_HandleRes;
678 pBAEntry->BAWinSize = BAWinSize;
679 pBAEntry->Wcid = pEntry->Aid;
681 pBAEntry->TimeOutValue = pFrame->TimeOutValue;
682 pBAEntry->REC_BA_Status = Recipient_Accept;
683 // initial sequence number
684 pBAEntry->LastIndSeq = RESET_RCV_SEQ; //pFrame->BaStartSeq.field.StartSeq;
686 printk("Start Seq = %08x\n", pFrame->BaStartSeq.field.StartSeq);
688 if (pEntry->RXBAbitmap & (1<<TID))
690 RTMPCancelTimer(&pBAEntry->RECBATimer, &Cancelled);
694 RTMPInitTimer(pAd, &pBAEntry->RECBATimer, GET_TIMER_FUNCTION(BARecSessionIdleTimeout), pBAEntry, TRUE);
697 #if 0 // for debugging
698 RTMPSetTimer(&pBAEntry->RECBATimer, REC_BA_SESSION_IDLE_TIMEOUT);
702 pEntry->RXBAbitmap |= (1<<TID);
703 pEntry->BARecWcidArray[TID] = Idx;
705 pEntry->BADeclineBitmap &= ~(1<<TID);
707 // Set BA session mask in WCID table.
708 RT28XX_ADD_BA_SESSION_TO_ASIC(pAd, pEntry->Aid, TID);
710 DBGPRINT(RT_DEBUG_TRACE,("MACEntry[%d]RXBAbitmap = 0x%x. BARecWcidArray=%d\n",
711 pEntry->Aid, pEntry->RXBAbitmap, pEntry->BARecWcidArray[TID]));
716 DBGPRINT(RT_DEBUG_TRACE,("Can't Accept ADDBA for %02x:%02x:%02x:%02x:%02x:%02x TID = %d\n",
717 PRINT_MAC(pEntry->Addr), TID));
723 BA_REC_ENTRY *BATableAllocRecEntry(
724 IN PRTMP_ADAPTER pAd,
728 BA_REC_ENTRY *pBAEntry = NULL;
731 NdisAcquireSpinLock(&pAd->BATabLock);
733 if (pAd->BATable.numAsRecipient >= MAX_BARECI_SESSION)
735 printk("BA Recipeint Session (%ld) > %d\n", pAd->BATable.numAsRecipient,
740 // reserve idx 0 to identify BAWcidArray[TID] as empty
741 for (i=1; i < MAX_LEN_OF_BA_REC_TABLE; i++)
743 pBAEntry =&pAd->BATable.BARecEntry[i];
744 if ((pBAEntry->REC_BA_Status == Recipient_NONE))
747 pAd->BATable.numAsRecipient++;
748 pBAEntry->REC_BA_Status = Recipient_USED;
755 NdisReleaseSpinLock(&pAd->BATabLock);
759 BA_ORI_ENTRY *BATableAllocOriEntry(
760 IN PRTMP_ADAPTER pAd,
764 BA_ORI_ENTRY *pBAEntry = NULL;
766 NdisAcquireSpinLock(&pAd->BATabLock);
768 if (pAd->BATable.numAsOriginator >= (MAX_LEN_OF_BA_ORI_TABLE))
773 // reserve idx 0 to identify BAWcidArray[TID] as empty
774 for (i=1; i<MAX_LEN_OF_BA_ORI_TABLE; i++)
776 pBAEntry =&pAd->BATable.BAOriEntry[i];
777 if ((pBAEntry->ORI_BA_Status == Originator_NONE))
780 pAd->BATable.numAsOriginator++;
781 pBAEntry->ORI_BA_Status = Originator_USED;
782 pBAEntry->pAdapter = pAd;
789 NdisReleaseSpinLock(&pAd->BATabLock);
794 VOID BATableFreeOriEntry(
795 IN PRTMP_ADAPTER pAd,
798 BA_ORI_ENTRY *pBAEntry = NULL;
799 MAC_TABLE_ENTRY *pEntry;
802 if ((Idx == 0) || (Idx >= MAX_LEN_OF_BA_ORI_TABLE))
805 pBAEntry =&pAd->BATable.BAOriEntry[Idx];
807 if (pBAEntry->ORI_BA_Status != Originator_NONE)
809 pEntry = &pAd->MacTab.Content[pBAEntry->Wcid];
810 pEntry->BAOriWcidArray[pBAEntry->TID] = 0;
813 NdisAcquireSpinLock(&pAd->BATabLock);
814 if (pBAEntry->ORI_BA_Status == Originator_Done)
816 pEntry->TXBAbitmap &= (~(1<<(pBAEntry->TID) ));
817 DBGPRINT(RT_DEBUG_TRACE, ("BATableFreeOriEntry numAsOriginator= %ld\n", pAd->BATable.numAsRecipient));
818 // Erase Bitmap flag.
821 ASSERT(pAd->BATable.numAsOriginator != 0);
823 pAd->BATable.numAsOriginator -= 1;
825 pBAEntry->ORI_BA_Status = Originator_NONE;
827 NdisReleaseSpinLock(&pAd->BATabLock);
832 VOID BATableFreeRecEntry(
833 IN PRTMP_ADAPTER pAd,
836 BA_REC_ENTRY *pBAEntry = NULL;
837 MAC_TABLE_ENTRY *pEntry;
840 if ((Idx == 0) || (Idx >= MAX_LEN_OF_BA_REC_TABLE))
843 pBAEntry =&pAd->BATable.BARecEntry[Idx];
845 if (pBAEntry->REC_BA_Status != Recipient_NONE)
847 pEntry = &pAd->MacTab.Content[pBAEntry->Wcid];
848 pEntry->BARecWcidArray[pBAEntry->TID] = 0;
850 NdisAcquireSpinLock(&pAd->BATabLock);
852 ASSERT(pAd->BATable.numAsRecipient != 0);
854 pAd->BATable.numAsRecipient -= 1;
856 pBAEntry->REC_BA_Status = Recipient_NONE;
857 NdisReleaseSpinLock(&pAd->BATabLock);
862 VOID BAOriSessionTearDown(
863 IN OUT PRTMP_ADAPTER pAd,
867 IN BOOLEAN bForceSend)
870 BA_ORI_ENTRY *pBAEntry;
873 if (Wcid >= MAX_LEN_OF_MAC_TABLE)
879 // Locate corresponding BA Originator Entry in BA Table with the (pAddr,TID).
881 Idx = pAd->MacTab.Content[Wcid].BAOriWcidArray[TID];
882 if ((Idx == 0) || (Idx >= MAX_LEN_OF_BA_ORI_TABLE))
884 if (bForceSend == TRUE)
886 // force send specified TID DelBA
887 MLME_DELBA_REQ_STRUCT DelbaReq;
888 MLME_QUEUE_ELEM *Elem = (MLME_QUEUE_ELEM *) kmalloc(sizeof(MLME_QUEUE_ELEM), MEM_ALLOC_FLAG);
890 NdisZeroMemory(&DelbaReq, sizeof(DelbaReq));
891 NdisZeroMemory(Elem, sizeof(MLME_QUEUE_ELEM));
893 COPY_MAC_ADDR(DelbaReq.Addr, pAd->MacTab.Content[Wcid].Addr);
894 DelbaReq.Wcid = Wcid;
896 DelbaReq.Initiator = ORIGINATOR;
898 Elem->MsgLen = sizeof(DelbaReq);
899 NdisMoveMemory(Elem->Msg, &DelbaReq, sizeof(DelbaReq));
900 MlmeDELBAAction(pAd, Elem);
903 MlmeEnqueue(pAd, ACTION_STATE_MACHINE, MT2_MLME_ORI_DELBA_CATE, sizeof(MLME_DELBA_REQ_STRUCT), (PVOID)&DelbaReq);
904 RT28XX_MLME_HANDLER(pAd);
911 DBGPRINT(RT_DEBUG_TRACE,("%s===>Wcid=%d.TID=%d \n", __func__, Wcid, TID));
913 pBAEntry = &pAd->BATable.BAOriEntry[Idx];
914 DBGPRINT(RT_DEBUG_TRACE,("\t===>Idx = %ld, Wcid=%d.TID=%d, ORI_BA_Status = %d \n", Idx, Wcid, TID, pBAEntry->ORI_BA_Status));
916 // Prepare DelBA action frame and send to the peer.
918 if ((bPassive == FALSE) && (TID == pBAEntry->TID) && (pBAEntry->ORI_BA_Status == Originator_Done))
920 MLME_DELBA_REQ_STRUCT DelbaReq;
921 MLME_QUEUE_ELEM *Elem = (MLME_QUEUE_ELEM *) kmalloc(sizeof(MLME_QUEUE_ELEM), MEM_ALLOC_FLAG);
923 NdisZeroMemory(&DelbaReq, sizeof(DelbaReq));
924 NdisZeroMemory(Elem, sizeof(MLME_QUEUE_ELEM));
926 COPY_MAC_ADDR(DelbaReq.Addr, pAd->MacTab.Content[Wcid].Addr);
927 DelbaReq.Wcid = Wcid;
928 DelbaReq.TID = pBAEntry->TID;
929 DelbaReq.Initiator = ORIGINATOR;
931 Elem->MsgLen = sizeof(DelbaReq);
932 NdisMoveMemory(Elem->Msg, &DelbaReq, sizeof(DelbaReq));
933 MlmeDELBAAction(pAd, Elem);
936 MlmeEnqueue(pAd, ACTION_STATE_MACHINE, MT2_MLME_ORI_DELBA_CATE, sizeof(MLME_DELBA_REQ_STRUCT), (PVOID)&DelbaReq);
937 RT28XX_MLME_HANDLER(pAd);
940 RTMPCancelTimer(&pBAEntry->ORIBATimer, &Cancelled);
941 BATableFreeOriEntry(pAd, Idx);
945 //BAOriSessionSetUp(pAd, &pAd->MacTab.Content[Wcid], TID, 0, 10000, TRUE);
949 VOID BARecSessionTearDown(
950 IN OUT PRTMP_ADAPTER pAd,
956 BA_REC_ENTRY *pBAEntry;
958 if (Wcid >= MAX_LEN_OF_MAC_TABLE)
964 // Locate corresponding BA Originator Entry in BA Table with the (pAddr,TID).
966 Idx = pAd->MacTab.Content[Wcid].BARecWcidArray[TID];
970 DBGPRINT(RT_DEBUG_TRACE,("%s===>Wcid=%d.TID=%d \n", __func__, Wcid, TID));
973 pBAEntry = &pAd->BATable.BARecEntry[Idx];
974 DBGPRINT(RT_DEBUG_TRACE,("\t===>Idx = %ld, Wcid=%d.TID=%d, REC_BA_Status = %d \n", Idx, Wcid, TID, pBAEntry->REC_BA_Status));
976 // Prepare DelBA action frame and send to the peer.
978 if ((TID == pBAEntry->TID) && (pBAEntry->REC_BA_Status == Recipient_Accept))
980 MLME_DELBA_REQ_STRUCT DelbaReq;
982 MLME_QUEUE_ELEM *Elem = (MLME_QUEUE_ELEM *) kmalloc(sizeof(MLME_QUEUE_ELEM), MEM_ALLOC_FLAG);
986 RTMPCancelTimer(&pBAEntry->RECBATimer, &Cancelled);
989 // 1. Send DELBA Action Frame
991 if (bPassive == FALSE)
993 NdisZeroMemory(&DelbaReq, sizeof(DelbaReq));
994 NdisZeroMemory(Elem, sizeof(MLME_QUEUE_ELEM));
996 COPY_MAC_ADDR(DelbaReq.Addr, pAd->MacTab.Content[Wcid].Addr);
997 DelbaReq.Wcid = Wcid;
999 DelbaReq.Initiator = RECIPIENT;
1001 Elem->MsgLen = sizeof(DelbaReq);
1002 NdisMoveMemory(Elem->Msg, &DelbaReq, sizeof(DelbaReq));
1003 MlmeDELBAAction(pAd, Elem);
1006 MlmeEnqueue(pAd, ACTION_STATE_MACHINE, MT2_MLME_ORI_DELBA_CATE, sizeof(MLME_DELBA_REQ_STRUCT), (PVOID)&DelbaReq);
1007 RT28XX_MLME_HANDLER(pAd);
1013 // 2. Free resource of BA session
1015 // flush all pending reordering mpdus
1016 ba_refresh_reordering_mpdus(pAd, pBAEntry);
1018 NdisAcquireSpinLock(&pAd->BATabLock);
1020 // Erase Bitmap flag.
1021 pBAEntry->LastIndSeq = RESET_RCV_SEQ;
1022 pBAEntry->BAWinSize = 0;
1023 // Erase Bitmap flag at software mactable
1024 pAd->MacTab.Content[Wcid].RXBAbitmap &= (~(1<<(pBAEntry->TID)));
1025 pAd->MacTab.Content[Wcid].BARecWcidArray[TID] = 0;
1027 RT28XX_DEL_BA_SESSION_FROM_ASIC(pAd, Wcid, TID);
1029 NdisReleaseSpinLock(&pAd->BATabLock);
1033 BATableFreeRecEntry(pAd, Idx);
1036 VOID BASessionTearDownALL(
1037 IN OUT PRTMP_ADAPTER pAd,
1042 for (i=0; i<NUM_OF_TID; i++)
1044 BAOriSessionTearDown(pAd, Wcid, i, FALSE, FALSE);
1045 BARecSessionTearDown(pAd, Wcid, i, FALSE);
1051 ==========================================================================
1053 Retry sending ADDBA Reqest.
1055 IRQL = DISPATCH_LEVEL
1058 p8023Header: if this is already 802.3 format, p8023Header is NULL
1060 Return : TRUE if put into rx reordering buffer, shouldn't indicaterxhere.
1061 FALSE , then continue indicaterx at this moment.
1062 ==========================================================================
1064 VOID BAOriSessionSetupTimeout(
1065 IN PVOID SystemSpecific1,
1066 IN PVOID FunctionContext,
1067 IN PVOID SystemSpecific2,
1068 IN PVOID SystemSpecific3)
1070 BA_ORI_ENTRY *pBAEntry = (BA_ORI_ENTRY *)FunctionContext;
1071 MAC_TABLE_ENTRY *pEntry;
1074 if (pBAEntry == NULL)
1077 pAd = pBAEntry->pAdapter;
1079 IF_DEV_CONFIG_OPMODE_ON_STA(pAd)
1081 // Do nothing if monitor mode is on
1082 if (MONITOR_ON(pAd))
1086 pEntry = &pAd->MacTab.Content[pBAEntry->Wcid];
1088 if ((pBAEntry->ORI_BA_Status == Originator_WaitRes) && (pBAEntry->Token < ORI_SESSION_MAX_RETRY))
1090 MLME_ADDBA_REQ_STRUCT AddbaReq;
1092 NdisZeroMemory(&AddbaReq, sizeof(AddbaReq));
1093 COPY_MAC_ADDR(AddbaReq.pAddr, pEntry->Addr);
1094 AddbaReq.Wcid = (UCHAR)(pEntry->Aid);
1095 AddbaReq.TID = pBAEntry->TID;
1096 AddbaReq.BaBufSize = pAd->CommonCfg.BACapability.field.RxBAWinLimit;
1097 AddbaReq.TimeOutValue = 0;
1098 AddbaReq.Token = pBAEntry->Token;
1099 MlmeEnqueue(pAd, ACTION_STATE_MACHINE, MT2_MLME_ADD_BA_CATE, sizeof(MLME_ADDBA_REQ_STRUCT), (PVOID)&AddbaReq);
1100 RT28XX_MLME_HANDLER(pAd);
1101 DBGPRINT(RT_DEBUG_TRACE,("BA Ori Session Timeout(%d) : Send ADD BA again\n", pBAEntry->Token));
1104 RTMPSetTimer(&pBAEntry->ORIBATimer, ORI_BA_SESSION_TIMEOUT);
1108 BATableFreeOriEntry(pAd, pEntry->BAOriWcidArray[pBAEntry->TID]);
1113 ==========================================================================
1115 Retry sending ADDBA Reqest.
1117 IRQL = DISPATCH_LEVEL
1120 p8023Header: if this is already 802.3 format, p8023Header is NULL
1122 Return : TRUE if put into rx reordering buffer, shouldn't indicaterxhere.
1123 FALSE , then continue indicaterx at this moment.
1124 ==========================================================================
1126 VOID BARecSessionIdleTimeout(
1127 IN PVOID SystemSpecific1,
1128 IN PVOID FunctionContext,
1129 IN PVOID SystemSpecific2,
1130 IN PVOID SystemSpecific3)
1133 BA_REC_ENTRY *pBAEntry = (BA_REC_ENTRY *)FunctionContext;
1137 if (pBAEntry == NULL)
1140 if ((pBAEntry->REC_BA_Status == Recipient_Accept))
1142 NdisGetSystemUpTime(&Now32);
1144 if (RTMP_TIME_AFTER((unsigned long)Now32, (unsigned long)(pBAEntry->LastIndSeqAtTimer + REC_BA_SESSION_IDLE_TIMEOUT)))
1146 pAd = pBAEntry->pAdapter;
1147 // flush all pending reordering mpdus
1148 ba_refresh_reordering_mpdus(pAd, pBAEntry);
1149 printk("%ld: REC BA session Timeout\n", Now32);
1155 VOID PeerAddBAReqAction(
1156 IN PRTMP_ADAPTER pAd,
1157 IN MLME_QUEUE_ELEM *Elem)
1164 FRAME_ADDBA_RSP ADDframe;
1165 PUCHAR pOutBuffer = NULL;
1166 NDIS_STATUS NStatus;
1167 PFRAME_ADDBA_REQ pAddreqFrame = NULL;
1171 PMAC_TABLE_ENTRY pMacEntry;
1173 DBGPRINT(RT_DEBUG_TRACE, ("%s ==> (Wcid = %d)\n", __func__, Elem->Wcid));
1175 //hex_dump("AddBAReq", Elem->Msg, Elem->MsgLen);
1177 //ADDBA Request from unknown peer, ignore this.
1178 if (Elem->Wcid >= MAX_LEN_OF_MAC_TABLE)
1181 pMacEntry = &pAd->MacTab.Content[Elem->Wcid];
1182 DBGPRINT(RT_DEBUG_TRACE,("BA - PeerAddBAReqAction----> \n"));
1183 ptemp = (PULONG)Elem->Msg;
1184 //DBGPRINT_RAW(RT_DEBUG_EMU, ("%08x:: %08x:: %08x:: %08x:: %08x:: %08x:: %08x:: %08x:: %08x\n", *(ptemp), *(ptemp+1), *(ptemp+2), *(ptemp+3), *(ptemp+4), *(ptemp+5), *(ptemp+6), *(ptemp+7), *(ptemp+8)));
1186 if (PeerAddBAReqActionSanity(pAd, Elem->Msg, Elem->MsgLen, pAddr))
1189 if ((pAd->CommonCfg.bBADecline == FALSE) && IS_HT_STA(pMacEntry))
1191 pAddreqFrame = (PFRAME_ADDBA_REQ)(&Elem->Msg[0]);
1192 printk("Rcv Wcid(%d) AddBAReq\n", Elem->Wcid);
1193 if (BARecSessionAdd(pAd, &pAd->MacTab.Content[Elem->Wcid], pAddreqFrame))
1196 Status = 38; // more parameters have invalid values
1200 Status = 37; // the request has been declined.
1204 if (pAd->MacTab.Content[Elem->Wcid].ValidAsCLI)
1205 ASSERT(pAd->MacTab.Content[Elem->Wcid].Sst == SST_ASSOC);
1207 pAddreqFrame = (PFRAME_ADDBA_REQ)(&Elem->Msg[0]);
1208 // 2. Always send back ADDBA Response
1209 NStatus = MlmeAllocateMemory(pAd, &pOutBuffer); //Get an unused nonpaged memory
1210 if (NStatus != NDIS_STATUS_SUCCESS)
1212 DBGPRINT(RT_DEBUG_TRACE,("ACTION - PeerBAAction() allocate memory failed \n"));
1216 NdisZeroMemory(&ADDframe, sizeof(FRAME_ADDBA_RSP));
1218 // 2-1. Prepare ADDBA Response frame.
1219 IF_DEV_CONFIG_OPMODE_ON_STA(pAd)
1222 ActHeaderInit(pAd, &ADDframe.Hdr, pAddr, pAd->CurrentAddress, pAd->CommonCfg.Bssid);
1224 ActHeaderInit(pAd, &ADDframe.Hdr, pAd->CommonCfg.Bssid, pAd->CurrentAddress, pAddr);
1227 ADDframe.Category = CATEGORY_BA;
1228 ADDframe.Action = ADDBA_RESP;
1229 ADDframe.Token = pAddreqFrame->Token;
1230 // What is the Status code?? need to check.
1231 ADDframe.StatusCode = Status;
1232 ADDframe.BaParm.BAPolicy = IMMED_BA;
1233 ADDframe.BaParm.AMSDUSupported = 0;
1234 ADDframe.BaParm.TID = pAddreqFrame->BaParm.TID;
1235 ADDframe.BaParm.BufSize = min(((UCHAR)pAddreqFrame->BaParm.BufSize), (UCHAR)pAd->CommonCfg.BACapability.field.RxBAWinLimit);
1236 if (ADDframe.BaParm.BufSize == 0)
1238 ADDframe.BaParm.BufSize = 64;
1240 ADDframe.TimeOutValue = 0; //pAddreqFrame->TimeOutValue;
1242 *(USHORT *)(&ADDframe.BaParm) = cpu2le16(*(USHORT *)(&ADDframe.BaParm));
1243 ADDframe.StatusCode = cpu2le16(ADDframe.StatusCode);
1244 ADDframe.TimeOutValue = cpu2le16(ADDframe.TimeOutValue);
1246 MakeOutgoingFrame(pOutBuffer, &FrameLen,
1247 sizeof(FRAME_ADDBA_RSP), &ADDframe,
1249 MiniportMMRequest(pAd, QID_AC_BE, pOutBuffer, FrameLen);
1250 MlmeFreeMemory(pAd, pOutBuffer);
1252 DBGPRINT(RT_DEBUG_TRACE, ("%s(%d): TID(%d), BufSize(%d) <== \n", __func__, Elem->Wcid, ADDframe.BaParm.TID,
1253 ADDframe.BaParm.BufSize));
1257 VOID PeerAddBARspAction(
1258 IN PRTMP_ADAPTER pAd,
1259 IN MLME_QUEUE_ELEM *Elem)
1263 //PUCHAR pOutBuffer = NULL;
1264 PFRAME_ADDBA_RSP pFrame = NULL;
1265 //PBA_ORI_ENTRY pBAEntry;
1267 //ADDBA Response from unknown peer, ignore this.
1268 if (Elem->Wcid >= MAX_LEN_OF_MAC_TABLE)
1271 DBGPRINT(RT_DEBUG_TRACE, ("%s ==> Wcid(%d)\n", __func__, Elem->Wcid));
1273 //hex_dump("PeerAddBARspAction()", Elem->Msg, Elem->MsgLen);
1275 if (PeerAddBARspActionSanity(pAd, Elem->Msg, Elem->MsgLen))
1277 pFrame = (PFRAME_ADDBA_RSP)(&Elem->Msg[0]);
1279 DBGPRINT(RT_DEBUG_TRACE, ("\t\t StatusCode = %d\n", pFrame->StatusCode));
1280 switch (pFrame->StatusCode)
1283 // I want a BAsession with this peer as an originator.
1284 BAOriSessionAdd(pAd, &pAd->MacTab.Content[Elem->Wcid], pFrame);
1287 // check status == USED ???
1288 BAOriSessionTearDown(pAd, Elem->Wcid, pFrame->BaParm.TID, TRUE, FALSE);
1291 // Rcv Decline StatusCode
1292 if ((pFrame->StatusCode == 37)
1293 || ((pAd->OpMode == OPMODE_STA) && STA_TGN_WIFI_ON(pAd) && (pFrame->StatusCode != 0))
1296 pAd->MacTab.Content[Elem->Wcid].BADeclineBitmap |= 1<<pFrame->BaParm.TID;
1301 VOID PeerDelBAAction(
1302 IN PRTMP_ADAPTER pAd,
1303 IN MLME_QUEUE_ELEM *Elem)
1307 //PUCHAR pOutBuffer = NULL;
1308 PFRAME_DELBA_REQ pDelFrame = NULL;
1310 DBGPRINT(RT_DEBUG_TRACE,("%s ==>\n", __func__));
1311 //DELBA Request from unknown peer, ignore this.
1312 if (PeerDelBAActionSanity(pAd, Elem->Wcid, Elem->Msg, Elem->MsgLen))
1314 pDelFrame = (PFRAME_DELBA_REQ)(&Elem->Msg[0]);
1315 if (pDelFrame->DelbaParm.Initiator == ORIGINATOR)
1317 DBGPRINT(RT_DEBUG_TRACE,("BA - PeerDelBAAction----> ORIGINATOR\n"));
1318 BARecSessionTearDown(pAd, Elem->Wcid, pDelFrame->DelbaParm.TID, TRUE);
1322 DBGPRINT(RT_DEBUG_TRACE,("BA - PeerDelBAAction----> RECIPIENT, Reason = %d\n", pDelFrame->ReasonCode));
1323 //hex_dump("DelBA Frame", pDelFrame, Elem->MsgLen);
1324 BAOriSessionTearDown(pAd, Elem->Wcid, pDelFrame->DelbaParm.TID, TRUE, FALSE);
1330 BOOLEAN CntlEnqueueForRecv(
1331 IN PRTMP_ADAPTER pAd,
1334 IN PFRAME_BA_REQ pMsg)
1336 PFRAME_BA_REQ pFrame = pMsg;
1337 //PRTMP_REORDERBUF pBuffer;
1338 //PRTMP_REORDERBUF pDmaBuf;
1339 PBA_REC_ENTRY pBAEntry;
1345 TID = (UCHAR)pFrame->BARControl.TID;
1347 DBGPRINT(RT_DEBUG_TRACE, ("%s(): BAR-Wcid(%ld), Tid (%d)\n", __func__, Wcid, TID));
1348 //hex_dump("BAR", (PCHAR) pFrame, MsgLen);
1349 // Do nothing if the driver is starting halt state.
1350 // This might happen when timer already been fired before cancel timer with mlmehalt
1351 if (RTMP_TEST_FLAG(pAd, fRTMP_ADAPTER_HALT_IN_PROGRESS | fRTMP_ADAPTER_NIC_NOT_EXIST))
1354 // First check the size, it MUST not exceed the mlme queue size
1355 if (MsgLen > MGMT_DMA_BUFFER_SIZE)
1357 DBGPRINT_ERR(("CntlEnqueueForRecv: frame too large, size = %ld \n", MsgLen));
1360 else if (MsgLen != sizeof(FRAME_BA_REQ))
1362 DBGPRINT_ERR(("CntlEnqueueForRecv: BlockAck Request frame length size = %ld incorrect\n", MsgLen));
1365 else if (MsgLen != sizeof(FRAME_BA_REQ))
1367 DBGPRINT_ERR(("CntlEnqueueForRecv: BlockAck Request frame length size = %ld incorrect\n", MsgLen));
1371 if ((Wcid < MAX_LEN_OF_MAC_TABLE) && (TID < 8))
1373 // if this receiving packet is from SA that is in our OriEntry. Since WCID <9 has direct mapping. no need search.
1374 Idx = pAd->MacTab.Content[Wcid].BARecWcidArray[TID];
1375 pBAEntry = &pAd->BATable.BARecEntry[Idx];
1382 DBGPRINT(RT_DEBUG_TRACE, ("BAR(%ld) : Tid (%d) - %04x:%04x\n", Wcid, TID, pFrame->BAStartingSeq.field.StartSeq, pBAEntry->LastIndSeq ));
1384 if (SEQ_SMALLER(pBAEntry->LastIndSeq, pFrame->BAStartingSeq.field.StartSeq, MAXSEQ))
1386 //printk("BAR Seq = %x, LastIndSeq = %x\n", pFrame->BAStartingSeq.field.StartSeq, pBAEntry->LastIndSeq);
1387 ba_indicate_reordering_mpdus_le_seq(pAd, pBAEntry, pFrame->BAStartingSeq.field.StartSeq);
1388 pBAEntry->LastIndSeq = (pFrame->BAStartingSeq.field.StartSeq == 0) ? MAXSEQ :(pFrame->BAStartingSeq.field.StartSeq -1);
1390 //ba_refresh_reordering_mpdus(pAd, pBAEntry);
1395 Description : Send PSMP Action frame If PSMP mode switches.
1397 VOID SendPSMPAction(
1398 IN PRTMP_ADAPTER pAd,
1402 PUCHAR pOutBuffer = NULL;
1403 NDIS_STATUS NStatus;
1405 FRAME_PSMP_ACTION Frame;
1408 NStatus = MlmeAllocateMemory(pAd, &pOutBuffer); //Get an unused nonpaged memory
1409 if (NStatus != NDIS_STATUS_SUCCESS)
1411 DBGPRINT(RT_DEBUG_ERROR,("BA - MlmeADDBAAction() allocate memory failed \n"));
1415 IF_DEV_CONFIG_OPMODE_ON_STA(pAd)
1416 ActHeaderInit(pAd, &Frame.Hdr, pAd->CommonCfg.Bssid, pAd->CurrentAddress, pAd->MacTab.Content[Wcid].Addr);
1418 Frame.Category = CATEGORY_HT;
1419 Frame.Action = SMPS_ACTION;
1432 MakeOutgoingFrame(pOutBuffer, &FrameLen,
1433 sizeof(FRAME_PSMP_ACTION), &Frame,
1435 MiniportMMRequest(pAd, QID_AC_BE, pOutBuffer, FrameLen);
1436 MlmeFreeMemory(pAd, pOutBuffer);
1437 DBGPRINT(RT_DEBUG_ERROR,("HT - SendPSMPAction( %d ) \n", Frame.Psmp));
1441 #define RADIO_MEASUREMENT_REQUEST_ACTION 0
1443 typedef struct PACKED
1445 UCHAR RegulatoryClass;
1446 UCHAR ChannelNumber;
1447 USHORT RandomInterval;
1448 USHORT MeasurementDuration;
1449 UCHAR MeasurementMode;
1450 UCHAR BSSID[MAC_ADDR_LEN];
1451 UCHAR ReportingCondition;
1453 UCHAR SSIDIE[2]; // 2 byte
1456 typedef struct PACKED
1468 void convert_reordering_packet_to_preAMSDU_or_802_3_packet(
1469 IN PRTMP_ADAPTER pAd,
1471 IN UCHAR FromWhichBSSID)
1473 PNDIS_PACKET pRxPkt;
1474 UCHAR Header802_3[LENGTH_802_3];
1476 // 1. get 802.3 Header
1478 // a. pointer pRxBlk->pData to payload
1479 // b. modify pRxBlk->DataSize
1481 IF_DEV_CONFIG_OPMODE_ON_STA(pAd)
1482 RTMP_802_11_REMOVE_LLC_AND_CONVERT_TO_802_3(pRxBlk, Header802_3);
1484 ASSERT(pRxBlk->pRxPacket);
1485 pRxPkt = RTPKT_TO_OSPKT(pRxBlk->pRxPacket);
1487 RTPKT_TO_OSPKT(pRxPkt)->dev = get_netdev_from_bssid(pAd, FromWhichBSSID);
1488 RTPKT_TO_OSPKT(pRxPkt)->data = pRxBlk->pData;
1489 RTPKT_TO_OSPKT(pRxPkt)->len = pRxBlk->DataSize;
1490 RTPKT_TO_OSPKT(pRxPkt)->tail = RTPKT_TO_OSPKT(pRxPkt)->data + RTPKT_TO_OSPKT(pRxPkt)->len;
1493 // copy 802.3 header, if necessary
1495 if (!RX_BLK_TEST_FLAG(pRxBlk, fRX_AMSDU))
1497 IF_DEV_CONFIG_OPMODE_ON_STA(pAd)
1500 NdisMoveMemory(skb_push(pRxPkt, LENGTH_802_3), Header802_3, LENGTH_802_3);
1507 #define INDICATE_LEGACY_OR_AMSDU(_pAd, _pRxBlk, _fromWhichBSSID) \
1510 if (RX_BLK_TEST_FLAG(_pRxBlk, fRX_AMSDU)) \
1512 Indicate_AMSDU_Packet(_pAd, _pRxBlk, _fromWhichBSSID); \
1514 else if (RX_BLK_TEST_FLAG(_pRxBlk, fRX_EAP)) \
1516 Indicate_EAPOL_Packet(_pAd, _pRxBlk, _fromWhichBSSID); \
1520 Indicate_Legacy_Packet(_pAd, _pRxBlk, _fromWhichBSSID); \
1526 static VOID ba_enqueue_reordering_packet(
1527 IN PRTMP_ADAPTER pAd,
1528 IN PBA_REC_ENTRY pBAEntry,
1530 IN UCHAR FromWhichBSSID)
1532 struct reordering_mpdu *mpdu_blk;
1533 UINT16 Sequence = (UINT16) pRxBlk->pHeader->Sequence;
1535 mpdu_blk = ba_mpdu_blk_alloc(pAd);
1536 if (mpdu_blk != NULL)
1538 // Write RxD buffer address & allocated buffer length
1539 NdisAcquireSpinLock(&pBAEntry->RxReRingLock);
1541 mpdu_blk->Sequence = Sequence;
1543 mpdu_blk->bAMSDU = RX_BLK_TEST_FLAG(pRxBlk, fRX_AMSDU);
1545 convert_reordering_packet_to_preAMSDU_or_802_3_packet(pAd, pRxBlk, FromWhichBSSID);
1547 STATS_INC_RX_PACKETS(pAd, FromWhichBSSID);
1550 // it is necessary for reordering packet to record
1551 // which BSS it come from
1553 RTMP_SET_PACKET_IF(pRxBlk->pRxPacket, FromWhichBSSID);
1555 mpdu_blk->pPacket = pRxBlk->pRxPacket;
1557 if (ba_reordering_mpdu_insertsorted(&pBAEntry->list, mpdu_blk) == FALSE)
1559 // had been already within reordering list
1561 RELEASE_NDIS_PACKET(pAd, pRxBlk->pRxPacket, NDIS_STATUS_SUCCESS);
1562 ba_mpdu_blk_free(pAd, mpdu_blk);
1565 ASSERT((0<= pBAEntry->list.qlen) && (pBAEntry->list.qlen <= pBAEntry->BAWinSize));
1566 NdisReleaseSpinLock(&pBAEntry->RxReRingLock);
1571 DBGPRINT(RT_DEBUG_ERROR, ("!!! (%d:%d) Can't allocate reordering mpdu blk\n",
1572 blk_count, pBAEntry->list.qlen));
1574 DBGPRINT(RT_DEBUG_ERROR, ("!!! (%d) Can't allocate reordering mpdu blk\n",
1575 pBAEntry->list.qlen));
1578 * flush all pending reordering mpdus
1579 * and receving mpdu to upper layer
1580 * make tcp/ip to take care reordering mechanism
1582 //ba_refresh_reordering_mpdus(pAd, pBAEntry);
1583 ba_indicate_reordering_mpdus_le_seq(pAd, pBAEntry, Sequence);
1585 pBAEntry->LastIndSeq = Sequence;
1586 INDICATE_LEGACY_OR_AMSDU(pAd, pRxBlk, FromWhichBSSID);
1592 ==========================================================================
1594 Indicate this packet to upper layer or put it into reordering buffer
1597 pRxBlk : carry necessary packet info 802.11 format
1598 FromWhichBSSID : the packet received from which BSS
1604 the packet queued into reordering buffer need to cover to 802.3 format
1606 ==========================================================================
1609 VOID Indicate_AMPDU_Packet(
1610 IN PRTMP_ADAPTER pAd,
1612 IN UCHAR FromWhichBSSID)
1615 PBA_REC_ENTRY pBAEntry = NULL;
1616 UINT16 Sequence = pRxBlk->pHeader->Sequence;
1618 UCHAR Wcid = pRxBlk->pRxWI->WirelessCliID;
1619 UCHAR TID = pRxBlk->pRxWI->TID;
1622 if (!RX_BLK_TEST_FLAG(pRxBlk, fRX_AMSDU) && (pRxBlk->DataSize > MAX_RX_PKT_LEN))
1624 #if 0 // sample take off, no use
1625 static int err_size;
1628 if (err_size > 20) {
1629 printk("AMPDU DataSize = %d\n", pRxBlk->DataSize);
1630 hex_dump("802.11 Header", (UCHAR *)pRxBlk->pHeader, 24);
1631 hex_dump("Payload", pRxBlk->pData, 64);
1636 RELEASE_NDIS_PACKET(pAd, pRxBlk->pRxPacket, NDIS_STATUS_FAILURE);
1642 /* Rec BA Session had been torn down */
1643 INDICATE_LEGACY_OR_AMSDU(pAd, pRxBlk, FromWhichBSSID);
1647 if (Wcid < MAX_LEN_OF_MAC_TABLE)
1649 Idx = pAd->MacTab.Content[Wcid].BARecWcidArray[TID];
1652 /* Rec BA Session had been torn down */
1653 INDICATE_LEGACY_OR_AMSDU(pAd, pRxBlk, FromWhichBSSID);
1656 pBAEntry = &pAd->BATable.BARecEntry[Idx];
1663 RELEASE_NDIS_PACKET(pAd, pRxBlk->pRxPacket, NDIS_STATUS_FAILURE);
1669 // update last rx time
1670 NdisGetSystemUpTime(&Now32);
1672 pBAEntry->rcvSeq = Sequence;
1675 ba_flush_reordering_timeout_mpdus(pAd, pBAEntry, Now32);
1676 pBAEntry->LastIndSeqAtTimer = Now32;
1679 // Reset Last Indicate Sequence
1681 if (pBAEntry->LastIndSeq == RESET_RCV_SEQ)
1683 ASSERT((pBAEntry->list.qlen == 0) && (pBAEntry->list.next == NULL));
1685 // reset rcv sequence of BA session
1686 pBAEntry->LastIndSeq = Sequence;
1687 pBAEntry->LastIndSeqAtTimer = Now32;
1688 INDICATE_LEGACY_OR_AMSDU(pAd, pRxBlk, FromWhichBSSID);
1694 // I. Check if in order.
1696 if (SEQ_STEPONE(Sequence, pBAEntry->LastIndSeq, MAXSEQ))
1700 pBAEntry->LastIndSeq = Sequence;
1701 INDICATE_LEGACY_OR_AMSDU(pAd, pRxBlk, FromWhichBSSID);
1702 LastIndSeq = ba_indicate_reordering_mpdus_in_order(pAd, pBAEntry, pBAEntry->LastIndSeq);
1703 if (LastIndSeq != RESET_RCV_SEQ)
1705 pBAEntry->LastIndSeq = LastIndSeq;
1707 pBAEntry->LastIndSeqAtTimer = Now32;
1710 // II. Drop Duplicated Packet
1712 else if (Sequence == pBAEntry->LastIndSeq)
1715 // drop and release packet
1716 pBAEntry->nDropPacket++;
1717 RELEASE_NDIS_PACKET(pAd, pRxBlk->pRxPacket, NDIS_STATUS_FAILURE);
1720 // III. Drop Old Received Packet
1722 else if (SEQ_SMALLER(Sequence, pBAEntry->LastIndSeq, MAXSEQ))
1725 // drop and release packet
1726 pBAEntry->nDropPacket++;
1727 RELEASE_NDIS_PACKET(pAd, pRxBlk->pRxPacket, NDIS_STATUS_FAILURE);
1730 // IV. Receive Sequence within Window Size
1732 else if (SEQ_SMALLER(Sequence, (((pBAEntry->LastIndSeq+pBAEntry->BAWinSize+1)) & MAXSEQ), MAXSEQ))
1734 ba_enqueue_reordering_packet(pAd, pBAEntry, pRxBlk, FromWhichBSSID);
1737 // V. Receive seq surpasses Win(lastseq + nMSDU). So refresh all reorder buffer
1742 ba_refresh_reordering_mpdus(pAd, pBAEntry);
1743 INDICATE_LEGACY_OR_AMSDU(pAd, pRxBlk, FromWhichBSSID);
1745 LONG WinStartSeq, TmpSeq;
1748 TmpSeq = Sequence - (pBAEntry->BAWinSize) -1;
1751 TmpSeq = (MAXSEQ+1) + TmpSeq;
1753 WinStartSeq = (TmpSeq+1) & MAXSEQ;
1754 ba_indicate_reordering_mpdus_le_seq(pAd, pBAEntry, WinStartSeq);
1755 pBAEntry->LastIndSeq = WinStartSeq; //TmpSeq;
1757 pBAEntry->LastIndSeqAtTimer = Now32;
1759 ba_enqueue_reordering_packet(pAd, pBAEntry, pRxBlk, FromWhichBSSID);
1761 TmpSeq = ba_indicate_reordering_mpdus_in_order(pAd, pBAEntry, pBAEntry->LastIndSeq);
1762 if (TmpSeq != RESET_RCV_SEQ)
1764 pBAEntry->LastIndSeq = TmpSeq;