2 * This file contains the handling of command.
3 * It prepares command and sends it to firmware when it is ready.
6 #include <net/iw_handler.h>
16 static void cleanup_cmdnode(struct cmd_ctrl_node *ptempnode);
17 struct cmd_ctrl_node *lbs_get_cmd_ctrl_node(struct lbs_private *priv);
18 void lbs_set_cmd_ctrl_node(struct lbs_private *priv,
19 struct cmd_ctrl_node *ptempnode,
20 u16 wait_option, void *pdata_buf);
24 * @brief Checks whether a command is allowed in Power Save mode
26 * @param command the command ID
27 * @return 1 if allowed, 0 if not allowed
29 static u8 is_command_allowed_in_ps(u16 cmd)
41 * @brief Updates the hardware details like MAC address and regulatory region
43 * @param priv A pointer to struct lbs_private structure
45 * @return 0 on success, error on failure
47 int lbs_update_hw_spec(struct lbs_private *priv)
49 struct cmd_ds_get_hw_spec cmd;
54 lbs_deb_enter(LBS_DEB_CMD);
56 memset(&cmd, 0, sizeof(cmd));
57 cmd.hdr.size = cpu_to_le16(sizeof(cmd));
58 memcpy(cmd.permanentaddr, priv->current_addr, ETH_ALEN);
59 ret = lbs_cmd_with_response(priv, CMD_GET_HW_SPEC, cmd);
63 priv->fwcapinfo = le32_to_cpu(cmd.fwcapinfo);
64 memcpy(priv->fwreleasenumber, cmd.fwreleasenumber, 4);
66 lbs_deb_cmd("GET_HW_SPEC: firmware release %u.%u.%up%u\n",
67 priv->fwreleasenumber[2], priv->fwreleasenumber[1],
68 priv->fwreleasenumber[0], priv->fwreleasenumber[3]);
69 lbs_deb_cmd("GET_HW_SPEC: MAC addr %s\n",
70 print_mac(mac, cmd.permanentaddr));
71 lbs_deb_cmd("GET_HW_SPEC: hardware interface 0x%x, hardware spec 0x%04x\n",
72 cmd.hwifversion, cmd.version);
74 /* Clamp region code to 8-bit since FW spec indicates that it should
75 * only ever be 8-bit, even though the field size is 16-bit. Some firmware
76 * returns non-zero high 8 bits here.
78 priv->regioncode = le16_to_cpu(cmd.regioncode) & 0xFF;
80 for (i = 0; i < MRVDRV_MAX_REGION_CODE; i++) {
81 /* use the region code to search for the index */
82 if (priv->regioncode == lbs_region_code_to_index[i])
86 /* if it's unidentified region code, use the default (USA) */
87 if (i >= MRVDRV_MAX_REGION_CODE) {
88 priv->regioncode = 0x10;
89 lbs_pr_info("unidentified region code; using the default (USA)\n");
92 if (priv->current_addr[0] == 0xff)
93 memmove(priv->current_addr, cmd.permanentaddr, ETH_ALEN);
95 memcpy(priv->dev->dev_addr, priv->current_addr, ETH_ALEN);
97 memcpy(priv->mesh_dev->dev_addr, priv->current_addr, ETH_ALEN);
99 if (lbs_set_regiontable(priv, priv->regioncode, 0)) {
104 if (lbs_set_universaltable(priv, 0)) {
110 lbs_deb_leave(LBS_DEB_CMD);
114 static int lbs_cmd_802_11_ps_mode(struct lbs_private *priv,
115 struct cmd_ds_command *cmd,
118 struct cmd_ds_802_11_ps_mode *psm = &cmd->params.psmode;
120 lbs_deb_enter(LBS_DEB_CMD);
122 cmd->command = cpu_to_le16(CMD_802_11_PS_MODE);
123 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_ps_mode) +
125 psm->action = cpu_to_le16(cmd_action);
126 psm->multipledtim = 0;
127 switch (cmd_action) {
128 case CMD_SUBCMD_ENTER_PS:
129 lbs_deb_cmd("PS command:" "SubCode- Enter PS\n");
131 psm->locallisteninterval = 0;
132 psm->nullpktinterval = 0;
134 cpu_to_le16(MRVDRV_DEFAULT_MULTIPLE_DTIM);
137 case CMD_SUBCMD_EXIT_PS:
138 lbs_deb_cmd("PS command:" "SubCode- Exit PS\n");
141 case CMD_SUBCMD_SLEEP_CONFIRMED:
142 lbs_deb_cmd("PS command: SubCode- sleep confirm\n");
149 lbs_deb_leave(LBS_DEB_CMD);
153 static int lbs_cmd_802_11_inactivity_timeout(struct lbs_private *priv,
154 struct cmd_ds_command *cmd,
155 u16 cmd_action, void *pdata_buf)
157 u16 *timeout = pdata_buf;
159 lbs_deb_enter(LBS_DEB_CMD);
161 cmd->command = cpu_to_le16(CMD_802_11_INACTIVITY_TIMEOUT);
163 cpu_to_le16(sizeof(struct cmd_ds_802_11_inactivity_timeout)
166 cmd->params.inactivity_timeout.action = cpu_to_le16(cmd_action);
169 cmd->params.inactivity_timeout.timeout = cpu_to_le16(*timeout);
171 cmd->params.inactivity_timeout.timeout = 0;
173 lbs_deb_leave(LBS_DEB_CMD);
177 static int lbs_cmd_802_11_sleep_params(struct lbs_private *priv,
178 struct cmd_ds_command *cmd,
181 struct cmd_ds_802_11_sleep_params *sp = &cmd->params.sleep_params;
183 lbs_deb_enter(LBS_DEB_CMD);
185 cmd->size = cpu_to_le16((sizeof(struct cmd_ds_802_11_sleep_params)) +
187 cmd->command = cpu_to_le16(CMD_802_11_SLEEP_PARAMS);
189 if (cmd_action == CMD_ACT_GET) {
190 memset(&priv->sp, 0, sizeof(struct sleep_params));
191 memset(sp, 0, sizeof(struct cmd_ds_802_11_sleep_params));
192 sp->action = cpu_to_le16(cmd_action);
193 } else if (cmd_action == CMD_ACT_SET) {
194 sp->action = cpu_to_le16(cmd_action);
195 sp->error = cpu_to_le16(priv->sp.sp_error);
196 sp->offset = cpu_to_le16(priv->sp.sp_offset);
197 sp->stabletime = cpu_to_le16(priv->sp.sp_stabletime);
198 sp->calcontrol = (u8) priv->sp.sp_calcontrol;
199 sp->externalsleepclk = (u8) priv->sp.sp_extsleepclk;
200 sp->reserved = cpu_to_le16(priv->sp.sp_reserved);
203 lbs_deb_leave(LBS_DEB_CMD);
207 static int lbs_cmd_802_11_set_wep(struct lbs_private *priv,
208 struct cmd_ds_command *cmd,
212 struct cmd_ds_802_11_set_wep *wep = &cmd->params.wep;
214 struct assoc_request * assoc_req = pdata_buf;
216 lbs_deb_enter(LBS_DEB_CMD);
218 cmd->command = cpu_to_le16(CMD_802_11_SET_WEP);
219 cmd->size = cpu_to_le16(sizeof(*wep) + S_DS_GEN);
221 if (cmd_act == CMD_ACT_ADD) {
225 lbs_deb_cmd("Invalid association request!");
230 wep->action = cpu_to_le16(CMD_ACT_ADD);
232 /* default tx key index */
233 wep->keyindex = cpu_to_le16((u16)(assoc_req->wep_tx_keyidx &
234 (u32)CMD_WEP_KEY_INDEX_MASK));
236 /* Copy key types and material to host command structure */
237 for (i = 0; i < 4; i++) {
238 struct enc_key * pkey = &assoc_req->wep_keys[i];
242 wep->keytype[i] = CMD_TYPE_WEP_40_BIT;
243 memmove(&wep->keymaterial[i], pkey->key,
245 lbs_deb_cmd("SET_WEP: add key %d (40 bit)\n", i);
247 case KEY_LEN_WEP_104:
248 wep->keytype[i] = CMD_TYPE_WEP_104_BIT;
249 memmove(&wep->keymaterial[i], pkey->key,
251 lbs_deb_cmd("SET_WEP: add key %d (104 bit)\n", i);
256 lbs_deb_cmd("SET_WEP: invalid key %d, length %d\n",
263 } else if (cmd_act == CMD_ACT_REMOVE) {
264 /* ACT_REMOVE clears _all_ WEP keys */
265 wep->action = cpu_to_le16(CMD_ACT_REMOVE);
267 /* default tx key index */
268 wep->keyindex = cpu_to_le16((u16)(priv->wep_tx_keyidx &
269 (u32)CMD_WEP_KEY_INDEX_MASK));
270 lbs_deb_cmd("SET_WEP: remove key %d\n", priv->wep_tx_keyidx);
276 lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
280 static int lbs_cmd_802_11_enable_rsn(struct lbs_private *priv,
281 struct cmd_ds_command *cmd,
285 struct cmd_ds_802_11_enable_rsn *penableRSN = &cmd->params.enbrsn;
286 u32 * enable = pdata_buf;
288 lbs_deb_enter(LBS_DEB_CMD);
290 cmd->command = cpu_to_le16(CMD_802_11_ENABLE_RSN);
291 cmd->size = cpu_to_le16(sizeof(*penableRSN) + S_DS_GEN);
292 penableRSN->action = cpu_to_le16(cmd_action);
294 if (cmd_action == CMD_ACT_SET) {
296 penableRSN->enable = cpu_to_le16(CMD_ENABLE_RSN);
298 penableRSN->enable = cpu_to_le16(CMD_DISABLE_RSN);
299 lbs_deb_cmd("ENABLE_RSN: %d\n", *enable);
302 lbs_deb_leave(LBS_DEB_CMD);
307 static ssize_t lbs_tlv_size(const u8 *tlv, u16 size)
310 struct mrvlietypesheader *tlv_h;
313 tlv_h = (struct mrvlietypesheader *) tlv;
316 length = le16_to_cpu(tlv_h->len) +
317 sizeof(struct mrvlietypesheader);
325 static void lbs_cmd_802_11_subscribe_event(struct lbs_private *priv,
326 struct cmd_ds_command *cmd, u16 cmd_action,
329 struct cmd_ds_802_11_subscribe_event *events =
330 (struct cmd_ds_802_11_subscribe_event *) pdata_buf;
332 /* pdata_buf points to a struct cmd_ds_802_11_subscribe_event and room
333 * for various Marvell TLVs */
335 lbs_deb_enter(LBS_DEB_CMD);
337 cmd->size = cpu_to_le16(sizeof(*events)
338 - sizeof(events->tlv)
340 cmd->params.subscribe_event.action = cpu_to_le16(cmd_action);
341 if (cmd_action == CMD_ACT_GET) {
342 cmd->params.subscribe_event.events = 0;
344 ssize_t sz = lbs_tlv_size(events->tlv, sizeof(events->tlv));
345 cmd->size = cpu_to_le16(le16_to_cpu(cmd->size) + sz);
346 cmd->params.subscribe_event.events = events->events;
347 memcpy(cmd->params.subscribe_event.tlv, events->tlv, sz);
350 lbs_deb_leave(LBS_DEB_CMD);
353 static void set_one_wpa_key(struct MrvlIEtype_keyParamSet * pkeyparamset,
354 struct enc_key * pkey)
356 lbs_deb_enter(LBS_DEB_CMD);
358 if (pkey->flags & KEY_INFO_WPA_ENABLED) {
359 pkeyparamset->keyinfo |= cpu_to_le16(KEY_INFO_WPA_ENABLED);
361 if (pkey->flags & KEY_INFO_WPA_UNICAST) {
362 pkeyparamset->keyinfo |= cpu_to_le16(KEY_INFO_WPA_UNICAST);
364 if (pkey->flags & KEY_INFO_WPA_MCAST) {
365 pkeyparamset->keyinfo |= cpu_to_le16(KEY_INFO_WPA_MCAST);
368 pkeyparamset->type = cpu_to_le16(TLV_TYPE_KEY_MATERIAL);
369 pkeyparamset->keytypeid = cpu_to_le16(pkey->type);
370 pkeyparamset->keylen = cpu_to_le16(pkey->len);
371 memcpy(pkeyparamset->key, pkey->key, pkey->len);
372 pkeyparamset->length = cpu_to_le16( sizeof(pkeyparamset->keytypeid)
373 + sizeof(pkeyparamset->keyinfo)
374 + sizeof(pkeyparamset->keylen)
375 + sizeof(pkeyparamset->key));
376 lbs_deb_leave(LBS_DEB_CMD);
379 static int lbs_cmd_802_11_key_material(struct lbs_private *priv,
380 struct cmd_ds_command *cmd,
382 u32 cmd_oid, void *pdata_buf)
384 struct cmd_ds_802_11_key_material *pkeymaterial =
385 &cmd->params.keymaterial;
386 struct assoc_request * assoc_req = pdata_buf;
390 lbs_deb_enter(LBS_DEB_CMD);
392 cmd->command = cpu_to_le16(CMD_802_11_KEY_MATERIAL);
393 pkeymaterial->action = cpu_to_le16(cmd_action);
395 if (cmd_action == CMD_ACT_GET) {
396 cmd->size = cpu_to_le16(S_DS_GEN + sizeof (pkeymaterial->action));
401 memset(&pkeymaterial->keyParamSet, 0, sizeof(pkeymaterial->keyParamSet));
403 if (test_bit(ASSOC_FLAG_WPA_UCAST_KEY, &assoc_req->flags)) {
404 set_one_wpa_key(&pkeymaterial->keyParamSet[index],
405 &assoc_req->wpa_unicast_key);
409 if (test_bit(ASSOC_FLAG_WPA_MCAST_KEY, &assoc_req->flags)) {
410 set_one_wpa_key(&pkeymaterial->keyParamSet[index],
411 &assoc_req->wpa_mcast_key);
415 cmd->size = cpu_to_le16( S_DS_GEN
416 + sizeof (pkeymaterial->action)
417 + (index * sizeof(struct MrvlIEtype_keyParamSet)));
422 lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
426 static int lbs_cmd_802_11_reset(struct lbs_private *priv,
427 struct cmd_ds_command *cmd, int cmd_action)
429 struct cmd_ds_802_11_reset *reset = &cmd->params.reset;
431 lbs_deb_enter(LBS_DEB_CMD);
433 cmd->command = cpu_to_le16(CMD_802_11_RESET);
434 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_reset) + S_DS_GEN);
435 reset->action = cpu_to_le16(cmd_action);
437 lbs_deb_leave(LBS_DEB_CMD);
441 static int lbs_cmd_802_11_get_log(struct lbs_private *priv,
442 struct cmd_ds_command *cmd)
444 lbs_deb_enter(LBS_DEB_CMD);
445 cmd->command = cpu_to_le16(CMD_802_11_GET_LOG);
447 cpu_to_le16(sizeof(struct cmd_ds_802_11_get_log) + S_DS_GEN);
449 lbs_deb_leave(LBS_DEB_CMD);
453 static int lbs_cmd_802_11_get_stat(struct lbs_private *priv,
454 struct cmd_ds_command *cmd)
456 lbs_deb_enter(LBS_DEB_CMD);
457 cmd->command = cpu_to_le16(CMD_802_11_GET_STAT);
459 cpu_to_le16(sizeof(struct cmd_ds_802_11_get_stat) + S_DS_GEN);
461 lbs_deb_leave(LBS_DEB_CMD);
465 static int lbs_cmd_802_11_snmp_mib(struct lbs_private *priv,
466 struct cmd_ds_command *cmd,
468 int cmd_oid, void *pdata_buf)
470 struct cmd_ds_802_11_snmp_mib *pSNMPMIB = &cmd->params.smib;
473 lbs_deb_enter(LBS_DEB_CMD);
475 lbs_deb_cmd("SNMP_CMD: cmd_oid = 0x%x\n", cmd_oid);
477 cmd->command = cpu_to_le16(CMD_802_11_SNMP_MIB);
478 cmd->size = cpu_to_le16(sizeof(*pSNMPMIB) + S_DS_GEN);
481 case OID_802_11_INFRASTRUCTURE_MODE:
483 u8 mode = (u8) (size_t) pdata_buf;
484 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
485 pSNMPMIB->oid = cpu_to_le16((u16) DESIRED_BSSTYPE_I);
486 pSNMPMIB->bufsize = cpu_to_le16(sizeof(u8));
487 if (mode == IW_MODE_ADHOC) {
488 ucTemp = SNMP_MIB_VALUE_ADHOC;
490 /* Infra and Auto modes */
491 ucTemp = SNMP_MIB_VALUE_INFRA;
494 memmove(pSNMPMIB->value, &ucTemp, sizeof(u8));
499 case OID_802_11D_ENABLE:
503 pSNMPMIB->oid = cpu_to_le16((u16) DOT11D_I);
505 if (cmd_action == CMD_ACT_SET) {
506 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
507 pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
508 ulTemp = *(u32 *)pdata_buf;
509 *((__le16 *)(pSNMPMIB->value)) =
510 cpu_to_le16((u16) ulTemp);
515 case OID_802_11_FRAGMENTATION_THRESHOLD:
519 pSNMPMIB->oid = cpu_to_le16((u16) FRAGTHRESH_I);
521 if (cmd_action == CMD_ACT_GET) {
522 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_GET);
523 } else if (cmd_action == CMD_ACT_SET) {
524 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
525 pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
526 ulTemp = *((u32 *) pdata_buf);
527 *((__le16 *)(pSNMPMIB->value)) =
528 cpu_to_le16((u16) ulTemp);
535 case OID_802_11_RTS_THRESHOLD:
539 pSNMPMIB->oid = cpu_to_le16(RTSTHRESH_I);
541 if (cmd_action == CMD_ACT_GET) {
542 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_GET);
543 } else if (cmd_action == CMD_ACT_SET) {
544 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
545 pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
546 ulTemp = *((u32 *)pdata_buf);
547 *(__le16 *)(pSNMPMIB->value) =
548 cpu_to_le16((u16) ulTemp);
553 case OID_802_11_TX_RETRYCOUNT:
554 pSNMPMIB->oid = cpu_to_le16((u16) SHORT_RETRYLIM_I);
556 if (cmd_action == CMD_ACT_GET) {
557 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_GET);
558 } else if (cmd_action == CMD_ACT_SET) {
559 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
560 pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
561 *((__le16 *)(pSNMPMIB->value)) =
562 cpu_to_le16((u16) priv->txretrycount);
571 "SNMP_CMD: command=0x%x, size=0x%x, seqnum=0x%x, result=0x%x\n",
572 le16_to_cpu(cmd->command), le16_to_cpu(cmd->size),
573 le16_to_cpu(cmd->seqnum), le16_to_cpu(cmd->result));
576 "SNMP_CMD: action 0x%x, oid 0x%x, oidsize 0x%x, value 0x%x\n",
577 le16_to_cpu(pSNMPMIB->querytype), le16_to_cpu(pSNMPMIB->oid),
578 le16_to_cpu(pSNMPMIB->bufsize),
579 le16_to_cpu(*(__le16 *) pSNMPMIB->value));
581 lbs_deb_leave(LBS_DEB_CMD);
585 static int lbs_cmd_802_11_radio_control(struct lbs_private *priv,
586 struct cmd_ds_command *cmd,
589 struct cmd_ds_802_11_radio_control *pradiocontrol = &cmd->params.radio;
591 lbs_deb_enter(LBS_DEB_CMD);
594 cpu_to_le16((sizeof(struct cmd_ds_802_11_radio_control)) +
596 cmd->command = cpu_to_le16(CMD_802_11_RADIO_CONTROL);
598 pradiocontrol->action = cpu_to_le16(cmd_action);
600 switch (priv->preamble) {
601 case CMD_TYPE_SHORT_PREAMBLE:
602 pradiocontrol->control = cpu_to_le16(SET_SHORT_PREAMBLE);
605 case CMD_TYPE_LONG_PREAMBLE:
606 pradiocontrol->control = cpu_to_le16(SET_LONG_PREAMBLE);
609 case CMD_TYPE_AUTO_PREAMBLE:
611 pradiocontrol->control = cpu_to_le16(SET_AUTO_PREAMBLE);
616 pradiocontrol->control |= cpu_to_le16(TURN_ON_RF);
618 pradiocontrol->control &= cpu_to_le16(~TURN_ON_RF);
620 lbs_deb_leave(LBS_DEB_CMD);
624 static int lbs_cmd_802_11_rf_tx_power(struct lbs_private *priv,
625 struct cmd_ds_command *cmd,
626 u16 cmd_action, void *pdata_buf)
629 struct cmd_ds_802_11_rf_tx_power *prtp = &cmd->params.txp;
631 lbs_deb_enter(LBS_DEB_CMD);
634 cpu_to_le16((sizeof(struct cmd_ds_802_11_rf_tx_power)) + S_DS_GEN);
635 cmd->command = cpu_to_le16(CMD_802_11_RF_TX_POWER);
636 prtp->action = cpu_to_le16(cmd_action);
638 lbs_deb_cmd("RF_TX_POWER_CMD: size:%d cmd:0x%x Act:%d\n",
639 le16_to_cpu(cmd->size), le16_to_cpu(cmd->command),
640 le16_to_cpu(prtp->action));
642 switch (cmd_action) {
643 case CMD_ACT_TX_POWER_OPT_GET:
644 prtp->action = cpu_to_le16(CMD_ACT_GET);
645 prtp->currentlevel = 0;
648 case CMD_ACT_TX_POWER_OPT_SET_HIGH:
649 prtp->action = cpu_to_le16(CMD_ACT_SET);
650 prtp->currentlevel = cpu_to_le16(CMD_ACT_TX_POWER_INDEX_HIGH);
653 case CMD_ACT_TX_POWER_OPT_SET_MID:
654 prtp->action = cpu_to_le16(CMD_ACT_SET);
655 prtp->currentlevel = cpu_to_le16(CMD_ACT_TX_POWER_INDEX_MID);
658 case CMD_ACT_TX_POWER_OPT_SET_LOW:
659 prtp->action = cpu_to_le16(CMD_ACT_SET);
660 prtp->currentlevel = cpu_to_le16(*((u16 *) pdata_buf));
664 lbs_deb_leave(LBS_DEB_CMD);
668 static int lbs_cmd_802_11_monitor_mode(struct lbs_private *priv,
669 struct cmd_ds_command *cmd,
670 u16 cmd_action, void *pdata_buf)
672 struct cmd_ds_802_11_monitor_mode *monitor = &cmd->params.monitor;
674 cmd->command = cpu_to_le16(CMD_802_11_MONITOR_MODE);
676 cpu_to_le16(sizeof(struct cmd_ds_802_11_monitor_mode) +
679 monitor->action = cpu_to_le16(cmd_action);
680 if (cmd_action == CMD_ACT_SET) {
682 cpu_to_le16((u16) (*(u32 *) pdata_buf));
688 static int lbs_cmd_802_11_rate_adapt_rateset(struct lbs_private *priv,
689 struct cmd_ds_command *cmd,
692 struct cmd_ds_802_11_rate_adapt_rateset
693 *rateadapt = &cmd->params.rateset;
695 lbs_deb_enter(LBS_DEB_CMD);
697 cpu_to_le16(sizeof(struct cmd_ds_802_11_rate_adapt_rateset)
699 cmd->command = cpu_to_le16(CMD_802_11_RATE_ADAPT_RATESET);
701 rateadapt->action = cpu_to_le16(cmd_action);
702 rateadapt->enablehwauto = cpu_to_le16(priv->enablehwauto);
703 rateadapt->bitmap = cpu_to_le16(priv->ratebitmap);
705 lbs_deb_leave(LBS_DEB_CMD);
709 static int lbs_cmd_802_11_data_rate(struct lbs_private *priv,
710 struct cmd_ds_command *cmd,
713 struct cmd_ds_802_11_data_rate *pdatarate = &cmd->params.drate;
715 lbs_deb_enter(LBS_DEB_CMD);
717 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_data_rate) +
719 cmd->command = cpu_to_le16(CMD_802_11_DATA_RATE);
720 memset(pdatarate, 0, sizeof(struct cmd_ds_802_11_data_rate));
721 pdatarate->action = cpu_to_le16(cmd_action);
723 if (cmd_action == CMD_ACT_SET_TX_FIX_RATE) {
724 pdatarate->rates[0] = lbs_data_rate_to_fw_index(priv->cur_rate);
725 lbs_deb_cmd("DATA_RATE: set fixed 0x%02X\n",
727 } else if (cmd_action == CMD_ACT_SET_TX_AUTO) {
728 lbs_deb_cmd("DATA_RATE: setting auto\n");
731 lbs_deb_leave(LBS_DEB_CMD);
735 static int lbs_cmd_mac_multicast_adr(struct lbs_private *priv,
736 struct cmd_ds_command *cmd,
739 struct cmd_ds_mac_multicast_adr *pMCastAdr = &cmd->params.madr;
741 lbs_deb_enter(LBS_DEB_CMD);
742 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_mac_multicast_adr) +
744 cmd->command = cpu_to_le16(CMD_MAC_MULTICAST_ADR);
746 lbs_deb_cmd("MULTICAST_ADR: setting %d addresses\n", pMCastAdr->nr_of_adrs);
747 pMCastAdr->action = cpu_to_le16(cmd_action);
748 pMCastAdr->nr_of_adrs =
749 cpu_to_le16((u16) priv->nr_of_multicastmacaddr);
750 memcpy(pMCastAdr->maclist, priv->multicastlist,
751 priv->nr_of_multicastmacaddr * ETH_ALEN);
753 lbs_deb_leave(LBS_DEB_CMD);
757 static int lbs_cmd_802_11_rf_channel(struct lbs_private *priv,
758 struct cmd_ds_command *cmd,
759 int option, void *pdata_buf)
761 struct cmd_ds_802_11_rf_channel *rfchan = &cmd->params.rfchannel;
763 lbs_deb_enter(LBS_DEB_CMD);
764 cmd->command = cpu_to_le16(CMD_802_11_RF_CHANNEL);
765 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_rf_channel) +
768 if (option == CMD_OPT_802_11_RF_CHANNEL_SET) {
769 rfchan->currentchannel = cpu_to_le16(*((u16 *) pdata_buf));
772 rfchan->action = cpu_to_le16(option);
774 lbs_deb_leave(LBS_DEB_CMD);
778 static int lbs_cmd_802_11_rssi(struct lbs_private *priv,
779 struct cmd_ds_command *cmd)
782 lbs_deb_enter(LBS_DEB_CMD);
783 cmd->command = cpu_to_le16(CMD_802_11_RSSI);
784 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_rssi) + S_DS_GEN);
785 cmd->params.rssi.N = cpu_to_le16(DEFAULT_BCN_AVG_FACTOR);
787 /* reset Beacon SNR/NF/RSSI values */
788 priv->SNR[TYPE_BEACON][TYPE_NOAVG] = 0;
789 priv->SNR[TYPE_BEACON][TYPE_AVG] = 0;
790 priv->NF[TYPE_BEACON][TYPE_NOAVG] = 0;
791 priv->NF[TYPE_BEACON][TYPE_AVG] = 0;
792 priv->RSSI[TYPE_BEACON][TYPE_NOAVG] = 0;
793 priv->RSSI[TYPE_BEACON][TYPE_AVG] = 0;
795 lbs_deb_leave(LBS_DEB_CMD);
799 static int lbs_cmd_reg_access(struct lbs_private *priv,
800 struct cmd_ds_command *cmdptr,
801 u8 cmd_action, void *pdata_buf)
803 struct lbs_offset_value *offval;
805 lbs_deb_enter(LBS_DEB_CMD);
807 offval = (struct lbs_offset_value *)pdata_buf;
809 switch (le16_to_cpu(cmdptr->command)) {
810 case CMD_MAC_REG_ACCESS:
812 struct cmd_ds_mac_reg_access *macreg;
815 cpu_to_le16(sizeof (struct cmd_ds_mac_reg_access)
818 (struct cmd_ds_mac_reg_access *)&cmdptr->params.
821 macreg->action = cpu_to_le16(cmd_action);
822 macreg->offset = cpu_to_le16((u16) offval->offset);
823 macreg->value = cpu_to_le32(offval->value);
828 case CMD_BBP_REG_ACCESS:
830 struct cmd_ds_bbp_reg_access *bbpreg;
834 (struct cmd_ds_bbp_reg_access)
837 (struct cmd_ds_bbp_reg_access *)&cmdptr->params.
840 bbpreg->action = cpu_to_le16(cmd_action);
841 bbpreg->offset = cpu_to_le16((u16) offval->offset);
842 bbpreg->value = (u8) offval->value;
847 case CMD_RF_REG_ACCESS:
849 struct cmd_ds_rf_reg_access *rfreg;
853 (struct cmd_ds_rf_reg_access) +
856 (struct cmd_ds_rf_reg_access *)&cmdptr->params.
859 rfreg->action = cpu_to_le16(cmd_action);
860 rfreg->offset = cpu_to_le16((u16) offval->offset);
861 rfreg->value = (u8) offval->value;
870 lbs_deb_leave(LBS_DEB_CMD);
874 static int lbs_cmd_802_11_mac_address(struct lbs_private *priv,
875 struct cmd_ds_command *cmd,
879 lbs_deb_enter(LBS_DEB_CMD);
880 cmd->command = cpu_to_le16(CMD_802_11_MAC_ADDRESS);
881 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_mac_address) +
885 cmd->params.macadd.action = cpu_to_le16(cmd_action);
887 if (cmd_action == CMD_ACT_SET) {
888 memcpy(cmd->params.macadd.macadd,
889 priv->current_addr, ETH_ALEN);
890 lbs_deb_hex(LBS_DEB_CMD, "SET_CMD: MAC addr", priv->current_addr, 6);
893 lbs_deb_leave(LBS_DEB_CMD);
897 static int lbs_cmd_802_11_eeprom_access(struct lbs_private *priv,
898 struct cmd_ds_command *cmd,
899 int cmd_action, void *pdata_buf)
901 struct lbs_ioctl_regrdwr *ea = pdata_buf;
903 lbs_deb_enter(LBS_DEB_CMD);
905 cmd->command = cpu_to_le16(CMD_802_11_EEPROM_ACCESS);
906 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_eeprom_access) +
910 cmd->params.rdeeprom.action = cpu_to_le16(ea->action);
911 cmd->params.rdeeprom.offset = cpu_to_le16(ea->offset);
912 cmd->params.rdeeprom.bytecount = cpu_to_le16(ea->NOB);
913 cmd->params.rdeeprom.value = 0;
915 lbs_deb_leave(LBS_DEB_CMD);
919 static int lbs_cmd_bt_access(struct lbs_private *priv,
920 struct cmd_ds_command *cmd,
921 u16 cmd_action, void *pdata_buf)
923 struct cmd_ds_bt_access *bt_access = &cmd->params.bt;
924 lbs_deb_enter_args(LBS_DEB_CMD, "action %d", cmd_action);
926 cmd->command = cpu_to_le16(CMD_BT_ACCESS);
927 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_bt_access) + S_DS_GEN);
929 bt_access->action = cpu_to_le16(cmd_action);
931 switch (cmd_action) {
932 case CMD_ACT_BT_ACCESS_ADD:
933 memcpy(bt_access->addr1, pdata_buf, 2 * ETH_ALEN);
934 lbs_deb_hex(LBS_DEB_MESH, "BT_ADD: blinded MAC addr", bt_access->addr1, 6);
936 case CMD_ACT_BT_ACCESS_DEL:
937 memcpy(bt_access->addr1, pdata_buf, 1 * ETH_ALEN);
938 lbs_deb_hex(LBS_DEB_MESH, "BT_DEL: blinded MAC addr", bt_access->addr1, 6);
940 case CMD_ACT_BT_ACCESS_LIST:
941 bt_access->id = cpu_to_le32(*(u32 *) pdata_buf);
943 case CMD_ACT_BT_ACCESS_RESET:
945 case CMD_ACT_BT_ACCESS_SET_INVERT:
946 bt_access->id = cpu_to_le32(*(u32 *) pdata_buf);
948 case CMD_ACT_BT_ACCESS_GET_INVERT:
953 lbs_deb_leave(LBS_DEB_CMD);
957 static int lbs_cmd_fwt_access(struct lbs_private *priv,
958 struct cmd_ds_command *cmd,
959 u16 cmd_action, void *pdata_buf)
961 struct cmd_ds_fwt_access *fwt_access = &cmd->params.fwt;
962 lbs_deb_enter_args(LBS_DEB_CMD, "action %d", cmd_action);
964 cmd->command = cpu_to_le16(CMD_FWT_ACCESS);
965 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_fwt_access) + S_DS_GEN);
969 memcpy(fwt_access, pdata_buf, sizeof(*fwt_access));
971 memset(fwt_access, 0, sizeof(*fwt_access));
973 fwt_access->action = cpu_to_le16(cmd_action);
975 lbs_deb_leave(LBS_DEB_CMD);
979 static int lbs_cmd_mesh_access(struct lbs_private *priv,
980 struct cmd_ds_command *cmd,
981 u16 cmd_action, void *pdata_buf)
983 struct cmd_ds_mesh_access *mesh_access = &cmd->params.mesh;
984 lbs_deb_enter_args(LBS_DEB_CMD, "action %d", cmd_action);
986 cmd->command = cpu_to_le16(CMD_MESH_ACCESS);
987 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_mesh_access) + S_DS_GEN);
991 memcpy(mesh_access, pdata_buf, sizeof(*mesh_access));
993 memset(mesh_access, 0, sizeof(*mesh_access));
995 mesh_access->action = cpu_to_le16(cmd_action);
997 lbs_deb_leave(LBS_DEB_CMD);
1001 static int lbs_cmd_bcn_ctrl(struct lbs_private * priv,
1002 struct cmd_ds_command *cmd,
1005 struct cmd_ds_802_11_beacon_control
1006 *bcn_ctrl = &cmd->params.bcn_ctrl;
1008 lbs_deb_enter(LBS_DEB_CMD);
1010 cpu_to_le16(sizeof(struct cmd_ds_802_11_beacon_control)
1012 cmd->command = cpu_to_le16(CMD_802_11_BEACON_CTRL);
1014 bcn_ctrl->action = cpu_to_le16(cmd_action);
1015 bcn_ctrl->beacon_enable = cpu_to_le16(priv->beacon_enable);
1016 bcn_ctrl->beacon_period = cpu_to_le16(priv->beacon_period);
1018 lbs_deb_leave(LBS_DEB_CMD);
1023 * Note: NEVER use lbs_queue_cmd() with addtail==0 other than for
1024 * the command timer, because it does not account for queued commands.
1026 void lbs_queue_cmd(struct lbs_private *priv,
1027 struct cmd_ctrl_node *cmdnode,
1030 unsigned long flags;
1032 lbs_deb_enter(LBS_DEB_HOST);
1034 if (!cmdnode || !cmdnode->cmdbuf) {
1035 lbs_deb_host("QUEUE_CMD: cmdnode or cmdbuf is NULL\n");
1039 /* Exit_PS command needs to be queued in the header always. */
1040 if (le16_to_cpu(cmdnode->cmdbuf->command) == CMD_802_11_PS_MODE) {
1041 struct cmd_ds_802_11_ps_mode *psm = (void *) cmdnode->cmdbuf;
1043 if (psm->action == cpu_to_le16(CMD_SUBCMD_EXIT_PS)) {
1044 if (priv->psstate != PS_STATE_FULL_POWER)
1049 spin_lock_irqsave(&priv->driver_lock, flags);
1052 list_add_tail(&cmdnode->list, &priv->cmdpendingq);
1054 list_add(&cmdnode->list, &priv->cmdpendingq);
1056 spin_unlock_irqrestore(&priv->driver_lock, flags);
1058 lbs_deb_host("QUEUE_CMD: inserted command 0x%04x into cmdpendingq\n",
1059 le16_to_cpu(cmdnode->cmdbuf->command));
1062 lbs_deb_leave(LBS_DEB_HOST);
1066 * TODO: Fix the issue when DownloadcommandToStation is being called the
1067 * second time when the command times out. All the cmdptr->xxx are in little
1068 * endian and therefore all the comparissions will fail.
1069 * For now - we are not performing the endian conversion the second time - but
1070 * for PS and DEEP_SLEEP we need to worry
1072 static int DownloadcommandToStation(struct lbs_private *priv,
1073 struct cmd_ctrl_node *cmdnode)
1075 unsigned long flags;
1076 struct cmd_header *cmd;
1081 lbs_deb_enter(LBS_DEB_HOST);
1083 if (!priv || !cmdnode) {
1084 lbs_deb_host("DNLD_CMD: priv or cmdmode is NULL\n");
1088 cmd = cmdnode->cmdbuf;
1090 spin_lock_irqsave(&priv->driver_lock, flags);
1091 if (!cmd || !cmd->size) {
1092 lbs_deb_host("DNLD_CMD: cmdptr is NULL or zero\n");
1093 __lbs_cleanup_and_insert_cmd(priv, cmdnode);
1094 spin_unlock_irqrestore(&priv->driver_lock, flags);
1098 priv->cur_cmd = cmdnode;
1099 priv->cur_cmd_retcode = 0;
1100 spin_unlock_irqrestore(&priv->driver_lock, flags);
1102 cmdsize = le16_to_cpu(cmd->size);
1103 command = le16_to_cpu(cmd->command);
1105 lbs_deb_host("DNLD_CMD: command 0x%04x, size %d, jiffies %lu\n",
1106 command, cmdsize, jiffies);
1107 lbs_deb_hex(LBS_DEB_HOST, "DNLD_CMD", (void *) cmdnode->cmdbuf, cmdsize);
1109 cmdnode->cmdwaitqwoken = 0;
1111 ret = priv->hw_host_to_card(priv, MVMS_CMD, (u8 *) cmd, cmdsize);
1114 lbs_deb_host("DNLD_CMD: hw_host_to_card failed\n");
1115 spin_lock_irqsave(&priv->driver_lock, flags);
1116 priv->cur_cmd_retcode = ret;
1117 __lbs_cleanup_and_insert_cmd(priv, priv->cur_cmd);
1118 priv->cur_cmd = NULL;
1119 spin_unlock_irqrestore(&priv->driver_lock, flags);
1123 lbs_deb_cmd("DNLD_CMD: sent command 0x%04x, jiffies %lu\n", command, jiffies);
1125 /* Setup the timer after transmit command */
1126 if (command == CMD_802_11_SCAN || command == CMD_802_11_AUTHENTICATE
1127 || command == CMD_802_11_ASSOCIATE)
1128 mod_timer(&priv->command_timer, jiffies + (10*HZ));
1130 mod_timer(&priv->command_timer, jiffies + (5*HZ));
1135 lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1139 static int lbs_cmd_mac_control(struct lbs_private *priv,
1140 struct cmd_ds_command *cmd)
1142 struct cmd_ds_mac_control *mac = &cmd->params.macctrl;
1144 lbs_deb_enter(LBS_DEB_CMD);
1146 cmd->command = cpu_to_le16(CMD_MAC_CONTROL);
1147 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_mac_control) + S_DS_GEN);
1148 mac->action = cpu_to_le16(priv->currentpacketfilter);
1150 lbs_deb_cmd("MAC_CONTROL: action 0x%x, size %d\n",
1151 le16_to_cpu(mac->action), le16_to_cpu(cmd->size));
1153 lbs_deb_leave(LBS_DEB_CMD);
1158 * This function inserts command node to cmdfreeq
1159 * after cleans it. Requires priv->driver_lock held.
1161 void __lbs_cleanup_and_insert_cmd(struct lbs_private *priv,
1162 struct cmd_ctrl_node *ptempcmd)
1168 cleanup_cmdnode(ptempcmd);
1169 list_add_tail(&ptempcmd->list, &priv->cmdfreeq);
1172 static void lbs_cleanup_and_insert_cmd(struct lbs_private *priv,
1173 struct cmd_ctrl_node *ptempcmd)
1175 unsigned long flags;
1177 spin_lock_irqsave(&priv->driver_lock, flags);
1178 __lbs_cleanup_and_insert_cmd(priv, ptempcmd);
1179 spin_unlock_irqrestore(&priv->driver_lock, flags);
1182 int lbs_set_radio_control(struct lbs_private *priv)
1186 lbs_deb_enter(LBS_DEB_CMD);
1188 ret = lbs_prepare_and_send_command(priv,
1189 CMD_802_11_RADIO_CONTROL,
1191 CMD_OPTION_WAITFORRSP, 0, NULL);
1193 lbs_deb_cmd("RADIO_SET: radio %d, preamble %d\n",
1194 priv->radioon, priv->preamble);
1196 lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
1200 int lbs_set_mac_packet_filter(struct lbs_private *priv)
1204 lbs_deb_enter(LBS_DEB_CMD);
1206 /* Send MAC control command to station */
1207 ret = lbs_prepare_and_send_command(priv,
1208 CMD_MAC_CONTROL, 0, 0, 0, NULL);
1210 lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
1215 * @brief This function prepare the command before send to firmware.
1217 * @param priv A pointer to struct lbs_private structure
1218 * @param cmd_no command number
1219 * @param cmd_action command action: GET or SET
1220 * @param wait_option wait option: wait response or not
1221 * @param cmd_oid cmd oid: treated as sub command
1222 * @param pdata_buf A pointer to informaion buffer
1225 int lbs_prepare_and_send_command(struct lbs_private *priv,
1228 u16 wait_option, u32 cmd_oid, void *pdata_buf)
1231 struct cmd_ctrl_node *cmdnode;
1232 struct cmd_ds_command *cmdptr;
1233 unsigned long flags;
1235 lbs_deb_enter(LBS_DEB_HOST);
1238 lbs_deb_host("PREP_CMD: priv is NULL\n");
1243 if (priv->surpriseremoved) {
1244 lbs_deb_host("PREP_CMD: card removed\n");
1249 cmdnode = lbs_get_cmd_ctrl_node(priv);
1251 if (cmdnode == NULL) {
1252 lbs_deb_host("PREP_CMD: cmdnode is NULL\n");
1254 /* Wake up main thread to execute next command */
1255 wake_up_interruptible(&priv->waitq);
1260 lbs_set_cmd_ctrl_node(priv, cmdnode, wait_option, pdata_buf);
1262 cmdptr = (struct cmd_ds_command *)cmdnode->cmdbuf;
1264 lbs_deb_host("PREP_CMD: command 0x%04x\n", cmd_no);
1267 lbs_deb_host("PREP_CMD: cmdptr is NULL\n");
1268 lbs_cleanup_and_insert_cmd(priv, cmdnode);
1273 /* Set sequence number, command and INT option */
1275 cmdptr->seqnum = cpu_to_le16(priv->seqnum);
1277 cmdptr->command = cpu_to_le16(cmd_no);
1281 case CMD_802_11_PS_MODE:
1282 ret = lbs_cmd_802_11_ps_mode(priv, cmdptr, cmd_action);
1285 case CMD_802_11_SCAN:
1286 ret = lbs_cmd_80211_scan(priv, cmdptr, pdata_buf);
1289 case CMD_MAC_CONTROL:
1290 ret = lbs_cmd_mac_control(priv, cmdptr);
1293 case CMD_802_11_ASSOCIATE:
1294 case CMD_802_11_REASSOCIATE:
1295 ret = lbs_cmd_80211_associate(priv, cmdptr, pdata_buf);
1298 case CMD_802_11_DEAUTHENTICATE:
1299 ret = lbs_cmd_80211_deauthenticate(priv, cmdptr);
1302 case CMD_802_11_SET_WEP:
1303 ret = lbs_cmd_802_11_set_wep(priv, cmdptr, cmd_action, pdata_buf);
1306 case CMD_802_11_AD_HOC_START:
1307 ret = lbs_cmd_80211_ad_hoc_start(priv, cmdptr, pdata_buf);
1312 case CMD_802_11_RESET:
1313 ret = lbs_cmd_802_11_reset(priv, cmdptr, cmd_action);
1316 case CMD_802_11_GET_LOG:
1317 ret = lbs_cmd_802_11_get_log(priv, cmdptr);
1320 case CMD_802_11_AUTHENTICATE:
1321 ret = lbs_cmd_80211_authenticate(priv, cmdptr, pdata_buf);
1324 case CMD_802_11_GET_STAT:
1325 ret = lbs_cmd_802_11_get_stat(priv, cmdptr);
1328 case CMD_802_11_SNMP_MIB:
1329 ret = lbs_cmd_802_11_snmp_mib(priv, cmdptr,
1330 cmd_action, cmd_oid, pdata_buf);
1333 case CMD_MAC_REG_ACCESS:
1334 case CMD_BBP_REG_ACCESS:
1335 case CMD_RF_REG_ACCESS:
1336 ret = lbs_cmd_reg_access(priv, cmdptr, cmd_action, pdata_buf);
1339 case CMD_802_11_RF_CHANNEL:
1340 ret = lbs_cmd_802_11_rf_channel(priv, cmdptr,
1341 cmd_action, pdata_buf);
1344 case CMD_802_11_RF_TX_POWER:
1345 ret = lbs_cmd_802_11_rf_tx_power(priv, cmdptr,
1346 cmd_action, pdata_buf);
1349 case CMD_802_11_RADIO_CONTROL:
1350 ret = lbs_cmd_802_11_radio_control(priv, cmdptr, cmd_action);
1353 case CMD_802_11_DATA_RATE:
1354 ret = lbs_cmd_802_11_data_rate(priv, cmdptr, cmd_action);
1356 case CMD_802_11_RATE_ADAPT_RATESET:
1357 ret = lbs_cmd_802_11_rate_adapt_rateset(priv,
1358 cmdptr, cmd_action);
1361 case CMD_MAC_MULTICAST_ADR:
1362 ret = lbs_cmd_mac_multicast_adr(priv, cmdptr, cmd_action);
1365 case CMD_802_11_MONITOR_MODE:
1366 ret = lbs_cmd_802_11_monitor_mode(priv, cmdptr,
1367 cmd_action, pdata_buf);
1370 case CMD_802_11_AD_HOC_JOIN:
1371 ret = lbs_cmd_80211_ad_hoc_join(priv, cmdptr, pdata_buf);
1374 case CMD_802_11_RSSI:
1375 ret = lbs_cmd_802_11_rssi(priv, cmdptr);
1378 case CMD_802_11_AD_HOC_STOP:
1379 ret = lbs_cmd_80211_ad_hoc_stop(priv, cmdptr);
1382 case CMD_802_11_ENABLE_RSN:
1383 ret = lbs_cmd_802_11_enable_rsn(priv, cmdptr, cmd_action,
1387 case CMD_802_11_KEY_MATERIAL:
1388 ret = lbs_cmd_802_11_key_material(priv, cmdptr, cmd_action,
1389 cmd_oid, pdata_buf);
1392 case CMD_802_11_PAIRWISE_TSC:
1394 case CMD_802_11_GROUP_TSC:
1397 case CMD_802_11_MAC_ADDRESS:
1398 ret = lbs_cmd_802_11_mac_address(priv, cmdptr, cmd_action);
1401 case CMD_802_11_EEPROM_ACCESS:
1402 ret = lbs_cmd_802_11_eeprom_access(priv, cmdptr,
1403 cmd_action, pdata_buf);
1406 case CMD_802_11_SET_AFC:
1407 case CMD_802_11_GET_AFC:
1409 cmdptr->command = cpu_to_le16(cmd_no);
1410 cmdptr->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_afc) +
1413 memmove(&cmdptr->params.afc,
1414 pdata_buf, sizeof(struct cmd_ds_802_11_afc));
1419 case CMD_802_11D_DOMAIN_INFO:
1420 ret = lbs_cmd_802_11d_domain_info(priv, cmdptr,
1421 cmd_no, cmd_action);
1424 case CMD_802_11_SLEEP_PARAMS:
1425 ret = lbs_cmd_802_11_sleep_params(priv, cmdptr, cmd_action);
1427 case CMD_802_11_INACTIVITY_TIMEOUT:
1428 ret = lbs_cmd_802_11_inactivity_timeout(priv, cmdptr,
1429 cmd_action, pdata_buf);
1430 lbs_set_cmd_ctrl_node(priv, cmdnode, 0, pdata_buf);
1433 case CMD_802_11_TPC_CFG:
1434 cmdptr->command = cpu_to_le16(CMD_802_11_TPC_CFG);
1436 cpu_to_le16(sizeof(struct cmd_ds_802_11_tpc_cfg) +
1439 memmove(&cmdptr->params.tpccfg,
1440 pdata_buf, sizeof(struct cmd_ds_802_11_tpc_cfg));
1444 case CMD_802_11_LED_GPIO_CTRL:
1446 struct mrvlietypes_ledgpio *gpio =
1447 (struct mrvlietypes_ledgpio*)
1448 cmdptr->params.ledgpio.data;
1450 memmove(&cmdptr->params.ledgpio,
1452 sizeof(struct cmd_ds_802_11_led_ctrl));
1455 cpu_to_le16(CMD_802_11_LED_GPIO_CTRL);
1457 #define ACTION_NUMLED_TLVTYPE_LEN_FIELDS_LEN 8
1459 cpu_to_le16(le16_to_cpu(gpio->header.len)
1461 + ACTION_NUMLED_TLVTYPE_LEN_FIELDS_LEN);
1462 gpio->header.len = gpio->header.len;
1467 case CMD_802_11_SUBSCRIBE_EVENT:
1468 lbs_cmd_802_11_subscribe_event(priv, cmdptr,
1469 cmd_action, pdata_buf);
1471 case CMD_802_11_PWR_CFG:
1472 cmdptr->command = cpu_to_le16(CMD_802_11_PWR_CFG);
1474 cpu_to_le16(sizeof(struct cmd_ds_802_11_pwr_cfg) +
1476 memmove(&cmdptr->params.pwrcfg, pdata_buf,
1477 sizeof(struct cmd_ds_802_11_pwr_cfg));
1482 ret = lbs_cmd_bt_access(priv, cmdptr, cmd_action, pdata_buf);
1485 case CMD_FWT_ACCESS:
1486 ret = lbs_cmd_fwt_access(priv, cmdptr, cmd_action, pdata_buf);
1489 case CMD_MESH_ACCESS:
1490 ret = lbs_cmd_mesh_access(priv, cmdptr, cmd_action, pdata_buf);
1494 cmdptr->command = cpu_to_le16(CMD_GET_TSF);
1495 cmdptr->size = cpu_to_le16(sizeof(struct cmd_ds_get_tsf) +
1499 case CMD_802_11_BEACON_CTRL:
1500 ret = lbs_cmd_bcn_ctrl(priv, cmdptr, cmd_action);
1503 lbs_deb_host("PREP_CMD: unknown command 0x%04x\n", cmd_no);
1508 /* return error, since the command preparation failed */
1510 lbs_deb_host("PREP_CMD: command preparation failed\n");
1511 lbs_cleanup_and_insert_cmd(priv, cmdnode);
1516 cmdnode->cmdwaitqwoken = 0;
1518 lbs_queue_cmd(priv, cmdnode, 1);
1519 wake_up_interruptible(&priv->waitq);
1521 if (wait_option & CMD_OPTION_WAITFORRSP) {
1522 lbs_deb_host("PREP_CMD: wait for response\n");
1524 wait_event_interruptible(cmdnode->cmdwait_q,
1525 cmdnode->cmdwaitqwoken);
1528 spin_lock_irqsave(&priv->driver_lock, flags);
1529 if (priv->cur_cmd_retcode) {
1530 lbs_deb_host("PREP_CMD: command failed with return code %d\n",
1531 priv->cur_cmd_retcode);
1532 priv->cur_cmd_retcode = 0;
1535 spin_unlock_irqrestore(&priv->driver_lock, flags);
1538 lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1541 EXPORT_SYMBOL_GPL(lbs_prepare_and_send_command);
1544 * @brief This function allocates the command buffer and link
1545 * it to command free queue.
1547 * @param priv A pointer to struct lbs_private structure
1550 int lbs_allocate_cmd_buffer(struct lbs_private *priv)
1555 struct cmd_ctrl_node *cmdarray;
1557 lbs_deb_enter(LBS_DEB_HOST);
1559 /* Allocate and initialize the command array */
1560 bufsize = sizeof(struct cmd_ctrl_node) * LBS_NUM_CMD_BUFFERS;
1561 if (!(cmdarray = kzalloc(bufsize, GFP_KERNEL))) {
1562 lbs_deb_host("ALLOC_CMD_BUF: tempcmd_array is NULL\n");
1566 priv->cmd_array = cmdarray;
1568 /* Allocate and initialize each command buffer in the command array */
1569 for (i = 0; i < LBS_NUM_CMD_BUFFERS; i++) {
1570 cmdarray[i].cmdbuf = kzalloc(LBS_CMD_BUFFER_SIZE, GFP_KERNEL);
1571 if (!cmdarray[i].cmdbuf) {
1572 lbs_deb_host("ALLOC_CMD_BUF: ptempvirtualaddr is NULL\n");
1578 for (i = 0; i < LBS_NUM_CMD_BUFFERS; i++) {
1579 init_waitqueue_head(&cmdarray[i].cmdwait_q);
1580 lbs_cleanup_and_insert_cmd(priv, &cmdarray[i]);
1585 lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1590 * @brief This function frees the command buffer.
1592 * @param priv A pointer to struct lbs_private structure
1595 int lbs_free_cmd_buffer(struct lbs_private *priv)
1597 struct cmd_ctrl_node *cmdarray;
1600 lbs_deb_enter(LBS_DEB_HOST);
1602 /* need to check if cmd array is allocated or not */
1603 if (priv->cmd_array == NULL) {
1604 lbs_deb_host("FREE_CMD_BUF: cmd_array is NULL\n");
1608 cmdarray = priv->cmd_array;
1610 /* Release shared memory buffers */
1611 for (i = 0; i < LBS_NUM_CMD_BUFFERS; i++) {
1612 if (cmdarray[i].cmdbuf) {
1613 kfree(cmdarray[i].cmdbuf);
1614 cmdarray[i].cmdbuf = NULL;
1618 /* Release cmd_ctrl_node */
1619 if (priv->cmd_array) {
1620 kfree(priv->cmd_array);
1621 priv->cmd_array = NULL;
1625 lbs_deb_leave(LBS_DEB_HOST);
1630 * @brief This function gets a free command node if available in
1631 * command free queue.
1633 * @param priv A pointer to struct lbs_private structure
1634 * @return cmd_ctrl_node A pointer to cmd_ctrl_node structure or NULL
1636 struct cmd_ctrl_node *lbs_get_cmd_ctrl_node(struct lbs_private *priv)
1638 struct cmd_ctrl_node *tempnode;
1639 unsigned long flags;
1641 lbs_deb_enter(LBS_DEB_HOST);
1646 spin_lock_irqsave(&priv->driver_lock, flags);
1648 if (!list_empty(&priv->cmdfreeq)) {
1649 tempnode = list_first_entry(&priv->cmdfreeq,
1650 struct cmd_ctrl_node, list);
1651 list_del(&tempnode->list);
1653 lbs_deb_host("GET_CMD_NODE: cmd_ctrl_node is not available\n");
1657 spin_unlock_irqrestore(&priv->driver_lock, flags);
1660 cleanup_cmdnode(tempnode);
1662 lbs_deb_leave(LBS_DEB_HOST);
1667 * @brief This function cleans command node.
1669 * @param ptempnode A pointer to cmdCtrlNode structure
1672 static void cleanup_cmdnode(struct cmd_ctrl_node *cmdnode)
1674 lbs_deb_enter(LBS_DEB_HOST);
1678 cmdnode->cmdwaitqwoken = 1;
1679 wake_up_interruptible(&cmdnode->cmdwait_q);
1680 cmdnode->wait_option = 0;
1681 cmdnode->pdata_buf = NULL;
1682 cmdnode->callback = NULL;
1683 cmdnode->callback_arg = 0;
1685 if (cmdnode->cmdbuf != NULL)
1686 memset(cmdnode->cmdbuf, 0, LBS_CMD_BUFFER_SIZE);
1688 lbs_deb_leave(LBS_DEB_HOST);
1692 * @brief This function initializes the command node.
1694 * @param priv A pointer to struct lbs_private structure
1695 * @param ptempnode A pointer to cmd_ctrl_node structure
1696 * @param wait_option wait option: wait response or not
1697 * @param pdata_buf A pointer to informaion buffer
1700 void lbs_set_cmd_ctrl_node(struct lbs_private *priv,
1701 struct cmd_ctrl_node *ptempnode,
1702 u16 wait_option, void *pdata_buf)
1704 lbs_deb_enter(LBS_DEB_HOST);
1709 ptempnode->wait_option = wait_option;
1710 ptempnode->pdata_buf = pdata_buf;
1711 ptempnode->callback = NULL;
1712 ptempnode->callback_arg = 0;
1714 lbs_deb_leave(LBS_DEB_HOST);
1718 * @brief This function executes next command in command
1719 * pending queue. It will put fimware back to PS mode
1722 * @param priv A pointer to struct lbs_private structure
1725 int lbs_execute_next_command(struct lbs_private *priv)
1727 struct cmd_ctrl_node *cmdnode = NULL;
1728 struct cmd_header *cmd;
1729 unsigned long flags;
1732 // Debug group is LBS_DEB_THREAD and not LBS_DEB_HOST, because the
1733 // only caller to us is lbs_thread() and we get even when a
1734 // data packet is received
1735 lbs_deb_enter(LBS_DEB_THREAD);
1737 spin_lock_irqsave(&priv->driver_lock, flags);
1739 if (priv->cur_cmd) {
1740 lbs_pr_alert( "EXEC_NEXT_CMD: already processing command!\n");
1741 spin_unlock_irqrestore(&priv->driver_lock, flags);
1746 if (!list_empty(&priv->cmdpendingq)) {
1747 cmdnode = list_first_entry(&priv->cmdpendingq,
1748 struct cmd_ctrl_node, list);
1751 spin_unlock_irqrestore(&priv->driver_lock, flags);
1754 cmd = cmdnode->cmdbuf;
1756 if (is_command_allowed_in_ps(le16_to_cpu(cmd->command))) {
1757 if ((priv->psstate == PS_STATE_SLEEP) ||
1758 (priv->psstate == PS_STATE_PRE_SLEEP)) {
1760 "EXEC_NEXT_CMD: cannot send cmd 0x%04x in psstate %d\n",
1761 le16_to_cpu(cmd->command),
1766 lbs_deb_host("EXEC_NEXT_CMD: OK to send command "
1767 "0x%04x in psstate %d\n",
1768 le16_to_cpu(cmd->command), priv->psstate);
1769 } else if (priv->psstate != PS_STATE_FULL_POWER) {
1771 * 1. Non-PS command:
1772 * Queue it. set needtowakeup to TRUE if current state
1773 * is SLEEP, otherwise call lbs_ps_wakeup to send Exit_PS.
1774 * 2. PS command but not Exit_PS:
1776 * 3. PS command Exit_PS:
1777 * Set needtowakeup to TRUE if current state is SLEEP,
1778 * otherwise send this command down to firmware
1781 if (cmd->command != cpu_to_le16(CMD_802_11_PS_MODE)) {
1782 /* Prepare to send Exit PS,
1783 * this non PS command will be sent later */
1784 if ((priv->psstate == PS_STATE_SLEEP)
1785 || (priv->psstate == PS_STATE_PRE_SLEEP)
1787 /* w/ new scheme, it will not reach here.
1788 since it is blocked in main_thread. */
1789 priv->needtowakeup = 1;
1791 lbs_ps_wakeup(priv, 0);
1797 * PS command. Ignore it if it is not Exit_PS.
1798 * otherwise send it down immediately.
1800 struct cmd_ds_802_11_ps_mode *psm = (void *)cmd;
1803 "EXEC_NEXT_CMD: PS cmd, action 0x%02x\n",
1806 cpu_to_le16(CMD_SUBCMD_EXIT_PS)) {
1808 "EXEC_NEXT_CMD: ignore ENTER_PS cmd\n");
1809 list_del(&cmdnode->list);
1810 lbs_cleanup_and_insert_cmd(priv, cmdnode);
1816 if ((priv->psstate == PS_STATE_SLEEP) ||
1817 (priv->psstate == PS_STATE_PRE_SLEEP)) {
1819 "EXEC_NEXT_CMD: ignore EXIT_PS cmd in sleep\n");
1820 list_del(&cmdnode->list);
1821 lbs_cleanup_and_insert_cmd(priv, cmdnode);
1822 priv->needtowakeup = 1;
1829 "EXEC_NEXT_CMD: sending EXIT_PS\n");
1832 list_del(&cmdnode->list);
1833 lbs_deb_host("EXEC_NEXT_CMD: sending command 0x%04x\n",
1834 le16_to_cpu(cmd->command));
1835 DownloadcommandToStation(priv, cmdnode);
1838 * check if in power save mode, if yes, put the device back
1841 if ((priv->psmode != LBS802_11POWERMODECAM) &&
1842 (priv->psstate == PS_STATE_FULL_POWER) &&
1843 ((priv->connect_status == LBS_CONNECTED) ||
1844 (priv->mesh_connect_status == LBS_CONNECTED))) {
1845 if (priv->secinfo.WPAenabled ||
1846 priv->secinfo.WPA2enabled) {
1847 /* check for valid WPA group keys */
1848 if (priv->wpa_mcast_key.len ||
1849 priv->wpa_unicast_key.len) {
1851 "EXEC_NEXT_CMD: WPA enabled and GTK_SET"
1852 " go back to PS_SLEEP");
1853 lbs_ps_sleep(priv, 0);
1857 "EXEC_NEXT_CMD: cmdpendingq empty, "
1858 "go back to PS_SLEEP");
1859 lbs_ps_sleep(priv, 0);
1866 lbs_deb_leave(LBS_DEB_THREAD);
1870 void lbs_send_iwevcustom_event(struct lbs_private *priv, s8 *str)
1872 union iwreq_data iwrq;
1875 lbs_deb_enter(LBS_DEB_WEXT);
1877 memset(&iwrq, 0, sizeof(union iwreq_data));
1878 memset(buf, 0, sizeof(buf));
1880 snprintf(buf, sizeof(buf) - 1, "%s", str);
1882 iwrq.data.length = strlen(buf) + 1 + IW_EV_LCP_LEN;
1884 /* Send Event to upper layer */
1885 lbs_deb_wext("event indication string %s\n", (char *)buf);
1886 lbs_deb_wext("event indication length %d\n", iwrq.data.length);
1887 lbs_deb_wext("sending wireless event IWEVCUSTOM for %s\n", str);
1889 wireless_send_event(priv->dev, IWEVCUSTOM, &iwrq, buf);
1891 lbs_deb_leave(LBS_DEB_WEXT);
1894 static int sendconfirmsleep(struct lbs_private *priv, u8 *cmdptr, u16 size)
1896 unsigned long flags;
1899 lbs_deb_enter(LBS_DEB_HOST);
1901 lbs_deb_host("SEND_SLEEPC_CMD: before download, cmd size %d\n",
1904 lbs_deb_hex(LBS_DEB_HOST, "sleep confirm command", cmdptr, size);
1906 ret = priv->hw_host_to_card(priv, MVMS_CMD, cmdptr, size);
1907 priv->dnld_sent = DNLD_RES_RECEIVED;
1909 spin_lock_irqsave(&priv->driver_lock, flags);
1910 if (priv->intcounter || priv->currenttxskb)
1911 lbs_deb_host("SEND_SLEEPC_CMD: intcounter %d, currenttxskb %p\n",
1912 priv->intcounter, priv->currenttxskb);
1913 spin_unlock_irqrestore(&priv->driver_lock, flags);
1917 "SEND_SLEEPC_CMD: Host to Card failed for Confirm Sleep\n");
1919 spin_lock_irqsave(&priv->driver_lock, flags);
1920 if (!priv->intcounter) {
1921 priv->psstate = PS_STATE_SLEEP;
1923 lbs_deb_host("SEND_SLEEPC_CMD: after sent, intcounter %d\n",
1926 spin_unlock_irqrestore(&priv->driver_lock, flags);
1928 lbs_deb_host("SEND_SLEEPC_CMD: sent confirm sleep\n");
1931 lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1935 void lbs_ps_sleep(struct lbs_private *priv, int wait_option)
1937 lbs_deb_enter(LBS_DEB_HOST);
1940 * PS is currently supported only in Infrastructure mode
1941 * Remove this check if it is to be supported in IBSS mode also
1944 lbs_prepare_and_send_command(priv, CMD_802_11_PS_MODE,
1945 CMD_SUBCMD_ENTER_PS, wait_option, 0, NULL);
1947 lbs_deb_leave(LBS_DEB_HOST);
1951 * @brief This function sends Exit_PS command to firmware.
1953 * @param priv A pointer to struct lbs_private structure
1954 * @param wait_option wait response or not
1957 void lbs_ps_wakeup(struct lbs_private *priv, int wait_option)
1961 lbs_deb_enter(LBS_DEB_HOST);
1963 Localpsmode = cpu_to_le32(LBS802_11POWERMODECAM);
1965 lbs_prepare_and_send_command(priv, CMD_802_11_PS_MODE,
1967 wait_option, 0, &Localpsmode);
1969 lbs_deb_leave(LBS_DEB_HOST);
1973 * @brief This function checks condition and prepares to
1974 * send sleep confirm command to firmware if ok.
1976 * @param priv A pointer to struct lbs_private structure
1977 * @param psmode Power Saving mode
1980 void lbs_ps_confirm_sleep(struct lbs_private *priv, u16 psmode)
1982 unsigned long flags =0;
1985 lbs_deb_enter(LBS_DEB_HOST);
1987 if (priv->dnld_sent) {
1989 lbs_deb_host("dnld_sent was set");
1992 spin_lock_irqsave(&priv->driver_lock, flags);
1993 if (priv->cur_cmd) {
1995 lbs_deb_host("cur_cmd was set");
1997 if (priv->intcounter > 0) {
1999 lbs_deb_host("intcounter %d", priv->intcounter);
2001 spin_unlock_irqrestore(&priv->driver_lock, flags);
2004 lbs_deb_host("sending lbs_ps_confirm_sleep\n");
2005 sendconfirmsleep(priv, (u8 *) & priv->lbs_ps_confirm_sleep,
2006 sizeof(struct PS_CMD_ConfirmSleep));
2008 lbs_deb_host("sleep confirm has been delayed\n");
2011 lbs_deb_leave(LBS_DEB_HOST);
2016 * @brief Simple callback that copies response back into command
2018 * @param priv A pointer to struct lbs_private structure
2019 * @param extra A pointer to the original command structure for which
2020 * 'resp' is a response
2021 * @param resp A pointer to the command response
2023 * @return 0 on success, error on failure
2025 int lbs_cmd_copyback(struct lbs_private *priv, unsigned long extra,
2026 struct cmd_header *resp)
2028 struct cmd_header *buf = (void *)extra;
2031 lbs_deb_enter(LBS_DEB_CMD);
2033 copy_len = min(le16_to_cpu(buf->size), le16_to_cpu(resp->size));
2034 lbs_deb_cmd("Copying back %u bytes; command response was %u bytes, "
2035 "copy back buffer was %u bytes", copy_len, resp->size,
2037 memcpy(buf, resp, copy_len);
2039 lbs_deb_leave(LBS_DEB_CMD);
2044 * @brief Simple way to call firmware functions
2046 * @param priv A pointer to struct lbs_private structure
2047 * @param psmode one of the many CMD_802_11_xxxx
2048 * @param cmd pointer to the parameters structure for above command
2049 * (this should not include the command, size, sequence
2050 * and result fields from struct cmd_ds_gen)
2051 * @param cmd_size size structure pointed to by cmd
2052 * @param rsp pointer to an area where the result should be placed
2053 * @param rsp_size pointer to the size of the rsp area. If the firmware
2054 * returns fewer bytes, then this *rsp_size will be
2055 * changed to the actual size.
2056 * @return -1 in case of a higher level error, otherwise
2057 * the result code from the firmware
2059 int __lbs_cmd(struct lbs_private *priv, uint16_t command,
2060 struct cmd_header *in_cmd, int in_cmd_size,
2061 int (*callback)(struct lbs_private *, unsigned long, struct cmd_header *),
2062 unsigned long callback_arg)
2064 struct cmd_ctrl_node *cmdnode;
2065 unsigned long flags;
2068 lbs_deb_enter(LBS_DEB_HOST);
2071 lbs_deb_host("PREP_CMD: priv is NULL\n");
2076 if (priv->surpriseremoved) {
2077 lbs_deb_host("PREP_CMD: card removed\n");
2082 cmdnode = lbs_get_cmd_ctrl_node(priv);
2083 if (cmdnode == NULL) {
2084 lbs_deb_host("PREP_CMD: cmdnode is NULL\n");
2086 /* Wake up main thread to execute next command */
2087 wake_up_interruptible(&priv->waitq);
2092 cmdnode->wait_option = CMD_OPTION_WAITFORRSP;
2093 cmdnode->callback = callback;
2094 cmdnode->callback_arg = callback_arg;
2096 /* Copy the incoming command to the buffer */
2097 memcpy(cmdnode->cmdbuf, in_cmd, in_cmd_size);
2099 /* Set sequence number, clean result, move to buffer */
2101 cmdnode->cmdbuf->command = cpu_to_le16(command);
2102 cmdnode->cmdbuf->size = cpu_to_le16(in_cmd_size);
2103 cmdnode->cmdbuf->seqnum = cpu_to_le16(priv->seqnum);
2104 cmdnode->cmdbuf->result = 0;
2106 lbs_deb_host("PREP_CMD: command 0x%04x\n", command);
2108 /* here was the big old switch() statement, which is now obsolete,
2109 * because the caller of lbs_cmd() sets up all of *cmd for us. */
2111 cmdnode->cmdwaitqwoken = 0;
2112 lbs_queue_cmd(priv, cmdnode, 1);
2113 wake_up_interruptible(&priv->waitq);
2116 wait_event_interruptible(cmdnode->cmdwait_q, cmdnode->cmdwaitqwoken);
2118 spin_lock_irqsave(&priv->driver_lock, flags);
2119 if (priv->cur_cmd_retcode) {
2120 lbs_deb_host("PREP_CMD: command failed with return code %d\n",
2121 priv->cur_cmd_retcode);
2122 priv->cur_cmd_retcode = 0;
2125 spin_unlock_irqrestore(&priv->driver_lock, flags);
2128 lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
2131 EXPORT_SYMBOL_GPL(__lbs_cmd);