rt2x00: Fix rate detection for invalid signals
[linux-2.6] / drivers / net / wireless / libertas / cmdresp.c
1 /**
2   * This file contains the handling of command
3   * responses as well as events generated by firmware.
4   */
5 #include <linux/delay.h>
6 #include <linux/if_arp.h>
7 #include <linux/netdevice.h>
8
9 #include <net/iw_handler.h>
10
11 #include "host.h"
12 #include "decl.h"
13 #include "defs.h"
14 #include "dev.h"
15 #include "join.h"
16 #include "wext.h"
17
18 /**
19  *  @brief This function handles disconnect event. it
20  *  reports disconnect to upper layer, clean tx/rx packets,
21  *  reset link state etc.
22  *
23  *  @param priv    A pointer to struct lbs_private structure
24  *  @return        n/a
25  */
26 void lbs_mac_event_disconnected(struct lbs_private *priv)
27 {
28         union iwreq_data wrqu;
29
30         if (priv->connect_status != LBS_CONNECTED)
31                 return;
32
33         lbs_deb_enter(LBS_DEB_ASSOC);
34
35         memset(wrqu.ap_addr.sa_data, 0x00, ETH_ALEN);
36         wrqu.ap_addr.sa_family = ARPHRD_ETHER;
37
38         /*
39          * Cisco AP sends EAP failure and de-auth in less than 0.5 ms.
40          * It causes problem in the Supplicant
41          */
42
43         msleep_interruptible(1000);
44         wireless_send_event(priv->dev, SIOCGIWAP, &wrqu, NULL);
45
46         /* report disconnect to upper layer */
47         netif_stop_queue(priv->dev);
48         netif_carrier_off(priv->dev);
49
50         /* Free Tx and Rx packets */
51         kfree_skb(priv->currenttxskb);
52         priv->currenttxskb = NULL;
53         priv->tx_pending_len = 0;
54
55         /* reset SNR/NF/RSSI values */
56         memset(priv->SNR, 0x00, sizeof(priv->SNR));
57         memset(priv->NF, 0x00, sizeof(priv->NF));
58         memset(priv->RSSI, 0x00, sizeof(priv->RSSI));
59         memset(priv->rawSNR, 0x00, sizeof(priv->rawSNR));
60         memset(priv->rawNF, 0x00, sizeof(priv->rawNF));
61         priv->nextSNRNF = 0;
62         priv->numSNRNF = 0;
63         priv->connect_status = LBS_DISCONNECTED;
64
65         /* Clear out associated SSID and BSSID since connection is
66          * no longer valid.
67          */
68         memset(&priv->curbssparams.bssid, 0, ETH_ALEN);
69         memset(&priv->curbssparams.ssid, 0, IW_ESSID_MAX_SIZE);
70         priv->curbssparams.ssid_len = 0;
71
72         if (priv->psstate != PS_STATE_FULL_POWER) {
73                 /* make firmware to exit PS mode */
74                 lbs_deb_cmd("disconnected, so exit PS mode\n");
75                 lbs_ps_wakeup(priv, 0);
76         }
77         lbs_deb_leave(LBS_DEB_ASSOC);
78 }
79
80 /**
81  *  @brief This function handles MIC failure event.
82  *
83  *  @param priv    A pointer to struct lbs_private structure
84  *  @para  event   the event id
85  *  @return        n/a
86  */
87 static void handle_mic_failureevent(struct lbs_private *priv, u32 event)
88 {
89         char buf[50];
90
91         lbs_deb_enter(LBS_DEB_CMD);
92         memset(buf, 0, sizeof(buf));
93
94         sprintf(buf, "%s", "MLME-MICHAELMICFAILURE.indication ");
95
96         if (event == MACREG_INT_CODE_MIC_ERR_UNICAST) {
97                 strcat(buf, "unicast ");
98         } else {
99                 strcat(buf, "multicast ");
100         }
101
102         lbs_send_iwevcustom_event(priv, buf);
103         lbs_deb_leave(LBS_DEB_CMD);
104 }
105
106 static int lbs_ret_reg_access(struct lbs_private *priv,
107                                u16 type, struct cmd_ds_command *resp)
108 {
109         int ret = 0;
110
111         lbs_deb_enter(LBS_DEB_CMD);
112
113         switch (type) {
114         case CMD_RET(CMD_MAC_REG_ACCESS):
115                 {
116                         struct cmd_ds_mac_reg_access *reg = &resp->params.macreg;
117
118                         priv->offsetvalue.offset = (u32)le16_to_cpu(reg->offset);
119                         priv->offsetvalue.value = le32_to_cpu(reg->value);
120                         break;
121                 }
122
123         case CMD_RET(CMD_BBP_REG_ACCESS):
124                 {
125                         struct cmd_ds_bbp_reg_access *reg = &resp->params.bbpreg;
126
127                         priv->offsetvalue.offset = (u32)le16_to_cpu(reg->offset);
128                         priv->offsetvalue.value = reg->value;
129                         break;
130                 }
131
132         case CMD_RET(CMD_RF_REG_ACCESS):
133                 {
134                         struct cmd_ds_rf_reg_access *reg = &resp->params.rfreg;
135
136                         priv->offsetvalue.offset = (u32)le16_to_cpu(reg->offset);
137                         priv->offsetvalue.value = reg->value;
138                         break;
139                 }
140
141         default:
142                 ret = -1;
143         }
144
145         lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
146         return ret;
147 }
148
149 static int lbs_ret_802_11_snmp_mib(struct lbs_private *priv,
150                                     struct cmd_ds_command *resp)
151 {
152         struct cmd_ds_802_11_snmp_mib *smib = &resp->params.smib;
153         u16 oid = le16_to_cpu(smib->oid);
154         u16 querytype = le16_to_cpu(smib->querytype);
155
156         lbs_deb_enter(LBS_DEB_CMD);
157
158         lbs_deb_cmd("SNMP_RESP: oid 0x%x, querytype 0x%x\n", oid,
159                querytype);
160         lbs_deb_cmd("SNMP_RESP: Buf size %d\n", le16_to_cpu(smib->bufsize));
161
162         if (querytype == CMD_ACT_GET) {
163                 switch (oid) {
164                 case FRAGTHRESH_I:
165                         priv->fragthsd =
166                                 le16_to_cpu(*((__le16 *)(smib->value)));
167                         lbs_deb_cmd("SNMP_RESP: frag threshold %u\n",
168                                     priv->fragthsd);
169                         break;
170                 case RTSTHRESH_I:
171                         priv->rtsthsd =
172                                 le16_to_cpu(*((__le16 *)(smib->value)));
173                         lbs_deb_cmd("SNMP_RESP: rts threshold %u\n",
174                                     priv->rtsthsd);
175                         break;
176                 case SHORT_RETRYLIM_I:
177                         priv->txretrycount =
178                                 le16_to_cpu(*((__le16 *)(smib->value)));
179                         lbs_deb_cmd("SNMP_RESP: tx retry count %u\n",
180                                     priv->rtsthsd);
181                         break;
182                 default:
183                         break;
184                 }
185         }
186
187         lbs_deb_enter(LBS_DEB_CMD);
188         return 0;
189 }
190
191 static int lbs_ret_802_11_mac_address(struct lbs_private *priv,
192                                        struct cmd_ds_command *resp)
193 {
194         struct cmd_ds_802_11_mac_address *macadd = &resp->params.macadd;
195
196         lbs_deb_enter(LBS_DEB_CMD);
197
198         memcpy(priv->current_addr, macadd->macadd, ETH_ALEN);
199
200         lbs_deb_enter(LBS_DEB_CMD);
201         return 0;
202 }
203
204 static int lbs_ret_802_11_rf_tx_power(struct lbs_private *priv,
205                                        struct cmd_ds_command *resp)
206 {
207         struct cmd_ds_802_11_rf_tx_power *rtp = &resp->params.txp;
208
209         lbs_deb_enter(LBS_DEB_CMD);
210
211         priv->txpowerlevel = le16_to_cpu(rtp->currentlevel);
212
213         lbs_deb_cmd("TX power currently %d\n", priv->txpowerlevel);
214
215         lbs_deb_leave(LBS_DEB_CMD);
216         return 0;
217 }
218
219 static int lbs_ret_802_11_rate_adapt_rateset(struct lbs_private *priv,
220                                               struct cmd_ds_command *resp)
221 {
222         struct cmd_ds_802_11_rate_adapt_rateset *rates = &resp->params.rateset;
223
224         lbs_deb_enter(LBS_DEB_CMD);
225
226         if (rates->action == CMD_ACT_GET) {
227                 priv->enablehwauto = le16_to_cpu(rates->enablehwauto);
228                 priv->ratebitmap = le16_to_cpu(rates->bitmap);
229         }
230
231         lbs_deb_leave(LBS_DEB_CMD);
232         return 0;
233 }
234
235 static int lbs_ret_802_11_rssi(struct lbs_private *priv,
236                                 struct cmd_ds_command *resp)
237 {
238         struct cmd_ds_802_11_rssi_rsp *rssirsp = &resp->params.rssirsp;
239
240         lbs_deb_enter(LBS_DEB_CMD);
241
242         /* store the non average value */
243         priv->SNR[TYPE_BEACON][TYPE_NOAVG] = le16_to_cpu(rssirsp->SNR);
244         priv->NF[TYPE_BEACON][TYPE_NOAVG] = le16_to_cpu(rssirsp->noisefloor);
245
246         priv->SNR[TYPE_BEACON][TYPE_AVG] = le16_to_cpu(rssirsp->avgSNR);
247         priv->NF[TYPE_BEACON][TYPE_AVG] = le16_to_cpu(rssirsp->avgnoisefloor);
248
249         priv->RSSI[TYPE_BEACON][TYPE_NOAVG] =
250             CAL_RSSI(priv->SNR[TYPE_BEACON][TYPE_NOAVG],
251                      priv->NF[TYPE_BEACON][TYPE_NOAVG]);
252
253         priv->RSSI[TYPE_BEACON][TYPE_AVG] =
254             CAL_RSSI(priv->SNR[TYPE_BEACON][TYPE_AVG] / AVG_SCALE,
255                      priv->NF[TYPE_BEACON][TYPE_AVG] / AVG_SCALE);
256
257         lbs_deb_cmd("RSSI: beacon %d, avg %d\n",
258                priv->RSSI[TYPE_BEACON][TYPE_NOAVG],
259                priv->RSSI[TYPE_BEACON][TYPE_AVG]);
260
261         lbs_deb_leave(LBS_DEB_CMD);
262         return 0;
263 }
264
265 static int lbs_ret_802_11_eeprom_access(struct lbs_private *priv,
266                                   struct cmd_ds_command *resp)
267 {
268         struct lbs_ioctl_regrdwr *pbuf;
269         pbuf = (struct lbs_ioctl_regrdwr *) priv->prdeeprom;
270
271         lbs_deb_enter_args(LBS_DEB_CMD, "len %d",
272                le16_to_cpu(resp->params.rdeeprom.bytecount));
273         if (pbuf->NOB < le16_to_cpu(resp->params.rdeeprom.bytecount)) {
274                 pbuf->NOB = 0;
275                 lbs_deb_cmd("EEPROM read length too big\n");
276                 return -1;
277         }
278         pbuf->NOB = le16_to_cpu(resp->params.rdeeprom.bytecount);
279         if (pbuf->NOB > 0) {
280
281                 memcpy(&pbuf->value, (u8 *) & resp->params.rdeeprom.value,
282                        le16_to_cpu(resp->params.rdeeprom.bytecount));
283                 lbs_deb_hex(LBS_DEB_CMD, "EEPROM", (char *)&pbuf->value,
284                         le16_to_cpu(resp->params.rdeeprom.bytecount));
285         }
286         lbs_deb_leave(LBS_DEB_CMD);
287         return 0;
288 }
289
290 static int lbs_ret_802_11_bcn_ctrl(struct lbs_private * priv,
291                                         struct cmd_ds_command *resp)
292 {
293         struct cmd_ds_802_11_beacon_control *bcn_ctrl =
294             &resp->params.bcn_ctrl;
295
296         lbs_deb_enter(LBS_DEB_CMD);
297
298         if (bcn_ctrl->action == CMD_ACT_GET) {
299                 priv->beacon_enable = (u8) le16_to_cpu(bcn_ctrl->beacon_enable);
300                 priv->beacon_period = le16_to_cpu(bcn_ctrl->beacon_period);
301         }
302
303         lbs_deb_enter(LBS_DEB_CMD);
304         return 0;
305 }
306
307 static inline int handle_cmd_response(struct lbs_private *priv,
308                                       struct cmd_header *cmd_response)
309 {
310         struct cmd_ds_command *resp = (struct cmd_ds_command *) cmd_response;
311         int ret = 0;
312         unsigned long flags;
313         uint16_t respcmd = le16_to_cpu(resp->command);
314
315         lbs_deb_enter(LBS_DEB_HOST);
316
317         switch (respcmd) {
318         case CMD_RET(CMD_MAC_REG_ACCESS):
319         case CMD_RET(CMD_BBP_REG_ACCESS):
320         case CMD_RET(CMD_RF_REG_ACCESS):
321                 ret = lbs_ret_reg_access(priv, respcmd, resp);
322                 break;
323
324         case CMD_RET_802_11_ASSOCIATE:
325         case CMD_RET(CMD_802_11_ASSOCIATE):
326         case CMD_RET(CMD_802_11_REASSOCIATE):
327                 ret = lbs_ret_80211_associate(priv, resp);
328                 break;
329
330         case CMD_RET(CMD_802_11_DISASSOCIATE):
331         case CMD_RET(CMD_802_11_DEAUTHENTICATE):
332                 ret = lbs_ret_80211_disassociate(priv);
333                 break;
334
335         case CMD_RET(CMD_802_11_AD_HOC_START):
336         case CMD_RET(CMD_802_11_AD_HOC_JOIN):
337                 ret = lbs_ret_80211_ad_hoc_start(priv, resp);
338                 break;
339
340         case CMD_RET(CMD_802_11_SNMP_MIB):
341                 ret = lbs_ret_802_11_snmp_mib(priv, resp);
342                 break;
343
344         case CMD_RET(CMD_802_11_RF_TX_POWER):
345                 ret = lbs_ret_802_11_rf_tx_power(priv, resp);
346                 break;
347
348         case CMD_RET(CMD_802_11_SET_AFC):
349         case CMD_RET(CMD_802_11_GET_AFC):
350                 spin_lock_irqsave(&priv->driver_lock, flags);
351                 memmove((void *)priv->cur_cmd->callback_arg, &resp->params.afc,
352                         sizeof(struct cmd_ds_802_11_afc));
353                 spin_unlock_irqrestore(&priv->driver_lock, flags);
354
355                 break;
356
357         case CMD_RET(CMD_MAC_MULTICAST_ADR):
358         case CMD_RET(CMD_802_11_RESET):
359         case CMD_RET(CMD_802_11_AUTHENTICATE):
360         case CMD_RET(CMD_802_11_BEACON_STOP):
361                 break;
362
363         case CMD_RET(CMD_802_11_RATE_ADAPT_RATESET):
364                 ret = lbs_ret_802_11_rate_adapt_rateset(priv, resp);
365                 break;
366
367         case CMD_RET(CMD_802_11_RSSI):
368                 ret = lbs_ret_802_11_rssi(priv, resp);
369                 break;
370
371         case CMD_RET(CMD_802_11_MAC_ADDRESS):
372                 ret = lbs_ret_802_11_mac_address(priv, resp);
373                 break;
374
375         case CMD_RET(CMD_802_11_AD_HOC_STOP):
376                 ret = lbs_ret_80211_ad_hoc_stop(priv);
377                 break;
378
379         case CMD_RET(CMD_802_11_EEPROM_ACCESS):
380                 ret = lbs_ret_802_11_eeprom_access(priv, resp);
381                 break;
382
383         case CMD_RET(CMD_802_11D_DOMAIN_INFO):
384                 ret = lbs_ret_802_11d_domain_info(resp);
385                 break;
386
387         case CMD_RET(CMD_802_11_TPC_CFG):
388                 spin_lock_irqsave(&priv->driver_lock, flags);
389                 memmove((void *)priv->cur_cmd->callback_arg, &resp->params.tpccfg,
390                         sizeof(struct cmd_ds_802_11_tpc_cfg));
391                 spin_unlock_irqrestore(&priv->driver_lock, flags);
392                 break;
393         case CMD_RET(CMD_802_11_LED_GPIO_CTRL):
394                 spin_lock_irqsave(&priv->driver_lock, flags);
395                 memmove((void *)priv->cur_cmd->callback_arg, &resp->params.ledgpio,
396                         sizeof(struct cmd_ds_802_11_led_ctrl));
397                 spin_unlock_irqrestore(&priv->driver_lock, flags);
398                 break;
399
400         case CMD_RET(CMD_802_11_PWR_CFG):
401                 spin_lock_irqsave(&priv->driver_lock, flags);
402                 memmove((void *)priv->cur_cmd->callback_arg, &resp->params.pwrcfg,
403                         sizeof(struct cmd_ds_802_11_pwr_cfg));
404                 spin_unlock_irqrestore(&priv->driver_lock, flags);
405
406                 break;
407
408         case CMD_RET(CMD_GET_TSF):
409                 spin_lock_irqsave(&priv->driver_lock, flags);
410                 memcpy((void *)priv->cur_cmd->callback_arg,
411                        &resp->params.gettsf.tsfvalue, sizeof(u64));
412                 spin_unlock_irqrestore(&priv->driver_lock, flags);
413                 break;
414         case CMD_RET(CMD_BT_ACCESS):
415                 spin_lock_irqsave(&priv->driver_lock, flags);
416                 if (priv->cur_cmd->callback_arg)
417                         memcpy((void *)priv->cur_cmd->callback_arg,
418                                &resp->params.bt.addr1, 2 * ETH_ALEN);
419                 spin_unlock_irqrestore(&priv->driver_lock, flags);
420                 break;
421         case CMD_RET(CMD_FWT_ACCESS):
422                 spin_lock_irqsave(&priv->driver_lock, flags);
423                 if (priv->cur_cmd->callback_arg)
424                         memcpy((void *)priv->cur_cmd->callback_arg, &resp->params.fwt,
425                                sizeof(resp->params.fwt));
426                 spin_unlock_irqrestore(&priv->driver_lock, flags);
427                 break;
428         case CMD_RET(CMD_802_11_BEACON_CTRL):
429                 ret = lbs_ret_802_11_bcn_ctrl(priv, resp);
430                 break;
431
432         default:
433                 lbs_deb_host("CMD_RESP: unknown cmd response 0x%04x\n",
434                              le16_to_cpu(resp->command));
435                 break;
436         }
437         lbs_deb_leave(LBS_DEB_HOST);
438         return ret;
439 }
440
441 int lbs_process_rx_command(struct lbs_private *priv)
442 {
443         uint16_t respcmd, curcmd;
444         struct cmd_header *resp;
445         int ret = 0;
446         unsigned long flags;
447         uint16_t result;
448
449         lbs_deb_enter(LBS_DEB_HOST);
450
451         mutex_lock(&priv->lock);
452         spin_lock_irqsave(&priv->driver_lock, flags);
453
454         if (!priv->cur_cmd) {
455                 lbs_deb_host("CMD_RESP: cur_cmd is NULL\n");
456                 ret = -1;
457                 spin_unlock_irqrestore(&priv->driver_lock, flags);
458                 goto done;
459         }
460
461         resp = (void *)priv->upld_buf;
462         curcmd = le16_to_cpu(priv->cur_cmd->cmdbuf->command);
463         respcmd = le16_to_cpu(resp->command);
464         result = le16_to_cpu(resp->result);
465
466         lbs_deb_cmd("CMD_RESP: response 0x%04x, seq %d, size %d, jiffies %lu\n",
467                      respcmd, le16_to_cpu(resp->seqnum), priv->upld_len, jiffies);
468         lbs_deb_hex(LBS_DEB_CMD, "CMD_RESP", (void *) resp, priv->upld_len);
469
470         if (resp->seqnum != priv->cur_cmd->cmdbuf->seqnum) {
471                 lbs_pr_info("Received CMD_RESP with invalid sequence %d (expected %d)\n",
472                             le16_to_cpu(resp->seqnum), le16_to_cpu(priv->cur_cmd->cmdbuf->seqnum));
473                 spin_unlock_irqrestore(&priv->driver_lock, flags);
474                 ret = -1;
475                 goto done;
476         }
477         if (respcmd != CMD_RET(curcmd) &&
478             respcmd != CMD_RET_802_11_ASSOCIATE && curcmd != CMD_802_11_ASSOCIATE) {
479                 lbs_pr_info("Invalid CMD_RESP %x to command %x!\n", respcmd, curcmd);
480                 spin_unlock_irqrestore(&priv->driver_lock, flags);
481                 ret = -1;
482                 goto done;
483         }
484
485         if (resp->result == cpu_to_le16(0x0004)) {
486                 /* 0x0004 means -EAGAIN. Drop the response, let it time out
487                    and be resubmitted */
488                 lbs_pr_info("Firmware returns DEFER to command %x. Will let it time out...\n",
489                             le16_to_cpu(resp->command));
490                 spin_unlock_irqrestore(&priv->driver_lock, flags);
491                 ret = -1;
492                 goto done;
493         }
494
495         /* Now we got response from FW, cancel the command timer */
496         del_timer(&priv->command_timer);
497         priv->cmd_timed_out = 0;
498         if (priv->nr_retries) {
499                 lbs_pr_info("Received result %x to command %x after %d retries\n",
500                             result, curcmd, priv->nr_retries);
501                 priv->nr_retries = 0;
502         }
503
504         /* Store the response code to cur_cmd_retcode. */
505         priv->cur_cmd_retcode = result;
506
507         if (respcmd == CMD_RET(CMD_802_11_PS_MODE)) {
508                 struct cmd_ds_802_11_ps_mode *psmode = (void *) &resp[1];
509                 u16 action = le16_to_cpu(psmode->action);
510
511                 lbs_deb_host(
512                        "CMD_RESP: PS_MODE cmd reply result 0x%x, action 0x%x\n",
513                        result, action);
514
515                 if (result) {
516                         lbs_deb_host("CMD_RESP: PS command failed with 0x%x\n",
517                                     result);
518                         /*
519                          * We should not re-try enter-ps command in
520                          * ad-hoc mode. It takes place in
521                          * lbs_execute_next_command().
522                          */
523                         if (priv->mode == IW_MODE_ADHOC &&
524                             action == CMD_SUBCMD_ENTER_PS)
525                                 priv->psmode = LBS802_11POWERMODECAM;
526                 } else if (action == CMD_SUBCMD_ENTER_PS) {
527                         priv->needtowakeup = 0;
528                         priv->psstate = PS_STATE_AWAKE;
529
530                         lbs_deb_host("CMD_RESP: ENTER_PS command response\n");
531                         if (priv->connect_status != LBS_CONNECTED) {
532                                 /*
533                                  * When Deauth Event received before Enter_PS command
534                                  * response, We need to wake up the firmware.
535                                  */
536                                 lbs_deb_host(
537                                        "disconnected, invoking lbs_ps_wakeup\n");
538
539                                 spin_unlock_irqrestore(&priv->driver_lock, flags);
540                                 mutex_unlock(&priv->lock);
541                                 lbs_ps_wakeup(priv, 0);
542                                 mutex_lock(&priv->lock);
543                                 spin_lock_irqsave(&priv->driver_lock, flags);
544                         }
545                 } else if (action == CMD_SUBCMD_EXIT_PS) {
546                         priv->needtowakeup = 0;
547                         priv->psstate = PS_STATE_FULL_POWER;
548                         lbs_deb_host("CMD_RESP: EXIT_PS command response\n");
549                 } else {
550                         lbs_deb_host("CMD_RESP: PS action 0x%X\n", action);
551                 }
552
553                 lbs_complete_command(priv, priv->cur_cmd, result);
554                 spin_unlock_irqrestore(&priv->driver_lock, flags);
555
556                 ret = 0;
557                 goto done;
558         }
559
560         /* If the command is not successful, cleanup and return failure */
561         if ((result != 0 || !(respcmd & 0x8000))) {
562                 lbs_deb_host("CMD_RESP: error 0x%04x in command reply 0x%04x\n",
563                        result, respcmd);
564                 /*
565                  * Handling errors here
566                  */
567                 switch (respcmd) {
568                 case CMD_RET(CMD_GET_HW_SPEC):
569                 case CMD_RET(CMD_802_11_RESET):
570                         lbs_deb_host("CMD_RESP: reset failed\n");
571                         break;
572
573                 }
574                 lbs_complete_command(priv, priv->cur_cmd, result);
575                 spin_unlock_irqrestore(&priv->driver_lock, flags);
576
577                 ret = -1;
578                 goto done;
579         }
580
581         spin_unlock_irqrestore(&priv->driver_lock, flags);
582
583         if (priv->cur_cmd && priv->cur_cmd->callback) {
584                 ret = priv->cur_cmd->callback(priv, priv->cur_cmd->callback_arg,
585                                 resp);
586         } else
587                 ret = handle_cmd_response(priv, resp);
588
589         spin_lock_irqsave(&priv->driver_lock, flags);
590
591         if (priv->cur_cmd) {
592                 /* Clean up and Put current command back to cmdfreeq */
593                 lbs_complete_command(priv, priv->cur_cmd, result);
594         }
595         spin_unlock_irqrestore(&priv->driver_lock, flags);
596
597 done:
598         mutex_unlock(&priv->lock);
599         lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
600         return ret;
601 }
602
603 static int lbs_send_confirmwake(struct lbs_private *priv)
604 {
605         struct cmd_header *cmd = &priv->lbs_ps_confirm_wake;
606         int ret = 0;
607
608         lbs_deb_enter(LBS_DEB_HOST);
609
610         cmd->command = cpu_to_le16(CMD_802_11_WAKEUP_CONFIRM);
611         cmd->size = cpu_to_le16(sizeof(*cmd));
612         cmd->seqnum = cpu_to_le16(++priv->seqnum);
613         cmd->result = 0;
614
615         lbs_deb_host("SEND_WAKEC_CMD: before download\n");
616
617         lbs_deb_hex(LBS_DEB_HOST, "wake confirm command", (void *)cmd, sizeof(*cmd));
618
619         ret = priv->hw_host_to_card(priv, MVMS_CMD, (void *)cmd, sizeof(*cmd));
620         if (ret)
621                 lbs_pr_alert("SEND_WAKEC_CMD: Host to Card failed for Confirm Wake\n");
622
623         lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
624         return ret;
625 }
626
627 int lbs_process_event(struct lbs_private *priv)
628 {
629         int ret = 0;
630         u32 eventcause;
631
632         lbs_deb_enter(LBS_DEB_CMD);
633
634         spin_lock_irq(&priv->driver_lock);
635         eventcause = priv->eventcause >> SBI_EVENT_CAUSE_SHIFT;
636         spin_unlock_irq(&priv->driver_lock);
637
638         switch (eventcause) {
639         case MACREG_INT_CODE_LINK_SENSED:
640                 lbs_deb_cmd("EVENT: link sensed\n");
641                 break;
642
643         case MACREG_INT_CODE_DEAUTHENTICATED:
644                 lbs_deb_cmd("EVENT: deauthenticated\n");
645                 lbs_mac_event_disconnected(priv);
646                 break;
647
648         case MACREG_INT_CODE_DISASSOCIATED:
649                 lbs_deb_cmd("EVENT: disassociated\n");
650                 lbs_mac_event_disconnected(priv);
651                 break;
652
653         case MACREG_INT_CODE_LINK_LOST_NO_SCAN:
654                 lbs_deb_cmd("EVENT: link lost\n");
655                 lbs_mac_event_disconnected(priv);
656                 break;
657
658         case MACREG_INT_CODE_PS_SLEEP:
659                 lbs_deb_cmd("EVENT: ps sleep\n");
660
661                 /* handle unexpected PS SLEEP event */
662                 if (priv->psstate == PS_STATE_FULL_POWER) {
663                         lbs_deb_cmd(
664                                "EVENT: in FULL POWER mode, ignoreing PS_SLEEP\n");
665                         break;
666                 }
667                 priv->psstate = PS_STATE_PRE_SLEEP;
668
669                 lbs_ps_confirm_sleep(priv);
670
671                 break;
672
673         case MACREG_INT_CODE_HOST_AWAKE:
674                 lbs_deb_cmd("EVENT: host awake\n");
675                 lbs_send_confirmwake(priv);
676                 break;
677
678         case MACREG_INT_CODE_PS_AWAKE:
679                 lbs_deb_cmd("EVENT: ps awake\n");
680                 /* handle unexpected PS AWAKE event */
681                 if (priv->psstate == PS_STATE_FULL_POWER) {
682                         lbs_deb_cmd(
683                                "EVENT: In FULL POWER mode - ignore PS AWAKE\n");
684                         break;
685                 }
686
687                 priv->psstate = PS_STATE_AWAKE;
688
689                 if (priv->needtowakeup) {
690                         /*
691                          * wait for the command processing to finish
692                          * before resuming sending
693                          * priv->needtowakeup will be set to FALSE
694                          * in lbs_ps_wakeup()
695                          */
696                         lbs_deb_cmd("waking up ...\n");
697                         lbs_ps_wakeup(priv, 0);
698                 }
699                 break;
700
701         case MACREG_INT_CODE_MIC_ERR_UNICAST:
702                 lbs_deb_cmd("EVENT: UNICAST MIC ERROR\n");
703                 handle_mic_failureevent(priv, MACREG_INT_CODE_MIC_ERR_UNICAST);
704                 break;
705
706         case MACREG_INT_CODE_MIC_ERR_MULTICAST:
707                 lbs_deb_cmd("EVENT: MULTICAST MIC ERROR\n");
708                 handle_mic_failureevent(priv, MACREG_INT_CODE_MIC_ERR_MULTICAST);
709                 break;
710
711         case MACREG_INT_CODE_MIB_CHANGED:
712                 lbs_deb_cmd("EVENT: MIB CHANGED\n");
713                 break;
714         case MACREG_INT_CODE_INIT_DONE:
715                 lbs_deb_cmd("EVENT: INIT DONE\n");
716                 break;
717         case MACREG_INT_CODE_ADHOC_BCN_LOST:
718                 lbs_deb_cmd("EVENT: ADHOC beacon lost\n");
719                 break;
720         case MACREG_INT_CODE_RSSI_LOW:
721                 lbs_pr_alert("EVENT: rssi low\n");
722                 break;
723         case MACREG_INT_CODE_SNR_LOW:
724                 lbs_pr_alert("EVENT: snr low\n");
725                 break;
726         case MACREG_INT_CODE_MAX_FAIL:
727                 lbs_pr_alert("EVENT: max fail\n");
728                 break;
729         case MACREG_INT_CODE_RSSI_HIGH:
730                 lbs_pr_alert("EVENT: rssi high\n");
731                 break;
732         case MACREG_INT_CODE_SNR_HIGH:
733                 lbs_pr_alert("EVENT: snr high\n");
734                 break;
735
736         case MACREG_INT_CODE_MESH_AUTO_STARTED:
737                 /* Ignore spurious autostart events if autostart is disabled */
738                 if (!priv->mesh_autostart_enabled) {
739                         lbs_pr_info("EVENT: MESH_AUTO_STARTED (ignoring)\n");
740                         break;
741                 }
742                 lbs_pr_info("EVENT: MESH_AUTO_STARTED\n");
743                 priv->mesh_connect_status = LBS_CONNECTED;
744                 if (priv->mesh_open) {
745                         netif_carrier_on(priv->mesh_dev);
746                         if (!priv->tx_pending_len)
747                                 netif_wake_queue(priv->mesh_dev);
748                 }
749                 priv->mode = IW_MODE_ADHOC;
750                 schedule_work(&priv->sync_channel);
751                 break;
752
753         default:
754                 lbs_pr_alert("EVENT: unknown event id %d\n", eventcause);
755                 break;
756         }
757
758         spin_lock_irq(&priv->driver_lock);
759         priv->eventcause = 0;
760         spin_unlock_irq(&priv->driver_lock);
761
762         lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
763         return ret;
764 }