libertas: kill TxLockFlag
[linux-2.6] / drivers / net / wireless / libertas / cmd.c
1 /**
2   * This file contains the handling of command.
3   * It prepares command and sends it to firmware when it is ready.
4   */
5
6 #include <net/iw_handler.h>
7 #include "host.h"
8 #include "hostcmd.h"
9 #include "decl.h"
10 #include "defs.h"
11 #include "dev.h"
12 #include "join.h"
13 #include "wext.h"
14
15 static void cleanup_cmdnode(struct cmd_ctrl_node *ptempnode);
16 struct cmd_ctrl_node *lbs_get_cmd_ctrl_node(struct lbs_private *priv);
17 void lbs_set_cmd_ctrl_node(struct lbs_private *priv,
18                     struct cmd_ctrl_node *ptempnode,
19                     u16 wait_option, void *pdata_buf);
20
21
22 static u16 commands_allowed_in_ps[] = {
23         CMD_802_11_RSSI,
24 };
25
26 /**
27  *  @brief This function checks if the commans is allowed
28  *  in PS mode not.
29  *
30  *  @param command the command ID
31  *  @return        TRUE or FALSE
32  */
33 static u8 is_command_allowed_in_ps(__le16 command)
34 {
35         int i;
36
37         for (i = 0; i < ARRAY_SIZE(commands_allowed_in_ps); i++) {
38                 if (command == cpu_to_le16(commands_allowed_in_ps[i]))
39                         return 1;
40         }
41
42         return 0;
43 }
44
45 static int lbs_cmd_hw_spec(struct lbs_private *priv, struct cmd_ds_command *cmd)
46 {
47         struct cmd_ds_get_hw_spec *hwspec = &cmd->params.hwspec;
48
49         lbs_deb_enter(LBS_DEB_CMD);
50
51         cmd->command = cpu_to_le16(CMD_GET_HW_SPEC);
52         cmd->size = cpu_to_le16(sizeof(struct cmd_ds_get_hw_spec) + S_DS_GEN);
53         memcpy(hwspec->permanentaddr, priv->adapter->current_addr, ETH_ALEN);
54
55         lbs_deb_leave(LBS_DEB_CMD);
56         return 0;
57 }
58
59 static int lbs_cmd_802_11_ps_mode(struct lbs_private *priv,
60                                    struct cmd_ds_command *cmd,
61                                    u16 cmd_action)
62 {
63         struct cmd_ds_802_11_ps_mode *psm = &cmd->params.psmode;
64
65         lbs_deb_enter(LBS_DEB_CMD);
66
67         cmd->command = cpu_to_le16(CMD_802_11_PS_MODE);
68         cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_ps_mode) +
69                                 S_DS_GEN);
70         psm->action = cpu_to_le16(cmd_action);
71         psm->multipledtim = 0;
72         switch (cmd_action) {
73         case CMD_SUBCMD_ENTER_PS:
74                 lbs_deb_cmd("PS command:" "SubCode- Enter PS\n");
75
76                 psm->locallisteninterval = 0;
77                 psm->nullpktinterval = 0;
78                 psm->multipledtim =
79                     cpu_to_le16(MRVDRV_DEFAULT_MULTIPLE_DTIM);
80                 break;
81
82         case CMD_SUBCMD_EXIT_PS:
83                 lbs_deb_cmd("PS command:" "SubCode- Exit PS\n");
84                 break;
85
86         case CMD_SUBCMD_SLEEP_CONFIRMED:
87                 lbs_deb_cmd("PS command: SubCode- sleep confirm\n");
88                 break;
89
90         default:
91                 break;
92         }
93
94         lbs_deb_leave(LBS_DEB_CMD);
95         return 0;
96 }
97
98 static int lbs_cmd_802_11_inactivity_timeout(struct lbs_private *priv,
99                                               struct cmd_ds_command *cmd,
100                                               u16 cmd_action, void *pdata_buf)
101 {
102         u16 *timeout = pdata_buf;
103
104         lbs_deb_enter(LBS_DEB_CMD);
105
106         cmd->command = cpu_to_le16(CMD_802_11_INACTIVITY_TIMEOUT);
107         cmd->size =
108             cpu_to_le16(sizeof(struct cmd_ds_802_11_inactivity_timeout)
109                              + S_DS_GEN);
110
111         cmd->params.inactivity_timeout.action = cpu_to_le16(cmd_action);
112
113         if (cmd_action)
114                 cmd->params.inactivity_timeout.timeout = cpu_to_le16(*timeout);
115         else
116                 cmd->params.inactivity_timeout.timeout = 0;
117
118         lbs_deb_leave(LBS_DEB_CMD);
119         return 0;
120 }
121
122 static int lbs_cmd_802_11_sleep_params(struct lbs_private *priv,
123                                         struct cmd_ds_command *cmd,
124                                         u16 cmd_action)
125 {
126         struct lbs_adapter *adapter = priv->adapter;
127         struct cmd_ds_802_11_sleep_params *sp = &cmd->params.sleep_params;
128
129         lbs_deb_enter(LBS_DEB_CMD);
130
131         cmd->size = cpu_to_le16((sizeof(struct cmd_ds_802_11_sleep_params)) +
132                                 S_DS_GEN);
133         cmd->command = cpu_to_le16(CMD_802_11_SLEEP_PARAMS);
134
135         if (cmd_action == CMD_ACT_GET) {
136                 memset(&adapter->sp, 0, sizeof(struct sleep_params));
137                 memset(sp, 0, sizeof(struct cmd_ds_802_11_sleep_params));
138                 sp->action = cpu_to_le16(cmd_action);
139         } else if (cmd_action == CMD_ACT_SET) {
140                 sp->action = cpu_to_le16(cmd_action);
141                 sp->error = cpu_to_le16(adapter->sp.sp_error);
142                 sp->offset = cpu_to_le16(adapter->sp.sp_offset);
143                 sp->stabletime = cpu_to_le16(adapter->sp.sp_stabletime);
144                 sp->calcontrol = (u8) adapter->sp.sp_calcontrol;
145                 sp->externalsleepclk = (u8) adapter->sp.sp_extsleepclk;
146                 sp->reserved = cpu_to_le16(adapter->sp.sp_reserved);
147         }
148
149         lbs_deb_leave(LBS_DEB_CMD);
150         return 0;
151 }
152
153 static int lbs_cmd_802_11_set_wep(struct lbs_private *priv,
154                                    struct cmd_ds_command *cmd,
155                                    u32 cmd_act,
156                                    void * pdata_buf)
157 {
158         struct cmd_ds_802_11_set_wep *wep = &cmd->params.wep;
159         struct lbs_adapter *adapter = priv->adapter;
160         int ret = 0;
161         struct assoc_request * assoc_req = pdata_buf;
162
163         lbs_deb_enter(LBS_DEB_CMD);
164
165         cmd->command = cpu_to_le16(CMD_802_11_SET_WEP);
166         cmd->size = cpu_to_le16(sizeof(*wep) + S_DS_GEN);
167
168         if (cmd_act == CMD_ACT_ADD) {
169                 int i;
170
171                 if (!assoc_req) {
172                         lbs_deb_cmd("Invalid association request!");
173                         ret = -1;
174                         goto done;
175                 }
176
177                 wep->action = cpu_to_le16(CMD_ACT_ADD);
178
179                 /* default tx key index */
180                 wep->keyindex = cpu_to_le16((u16)(assoc_req->wep_tx_keyidx &
181                                                   (u32)CMD_WEP_KEY_INDEX_MASK));
182
183                 /* Copy key types and material to host command structure */
184                 for (i = 0; i < 4; i++) {
185                         struct enc_key * pkey = &assoc_req->wep_keys[i];
186
187                         switch (pkey->len) {
188                         case KEY_LEN_WEP_40:
189                                 wep->keytype[i] = CMD_TYPE_WEP_40_BIT;
190                                 memmove(&wep->keymaterial[i], pkey->key,
191                                         pkey->len);
192                                 lbs_deb_cmd("SET_WEP: add key %d (40 bit)\n", i);
193                                 break;
194                         case KEY_LEN_WEP_104:
195                                 wep->keytype[i] = CMD_TYPE_WEP_104_BIT;
196                                 memmove(&wep->keymaterial[i], pkey->key,
197                                         pkey->len);
198                                 lbs_deb_cmd("SET_WEP: add key %d (104 bit)\n", i);
199                                 break;
200                         case 0:
201                                 break;
202                         default:
203                                 lbs_deb_cmd("SET_WEP: invalid key %d, length %d\n",
204                                        i, pkey->len);
205                                 ret = -1;
206                                 goto done;
207                                 break;
208                         }
209                 }
210         } else if (cmd_act == CMD_ACT_REMOVE) {
211                 /* ACT_REMOVE clears _all_ WEP keys */
212                 wep->action = cpu_to_le16(CMD_ACT_REMOVE);
213
214                 /* default tx key index */
215                 wep->keyindex = cpu_to_le16((u16)(adapter->wep_tx_keyidx &
216                                                   (u32)CMD_WEP_KEY_INDEX_MASK));
217                 lbs_deb_cmd("SET_WEP: remove key %d\n", adapter->wep_tx_keyidx);
218         }
219
220         ret = 0;
221
222 done:
223         lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
224         return ret;
225 }
226
227 static int lbs_cmd_802_11_enable_rsn(struct lbs_private *priv,
228                                       struct cmd_ds_command *cmd,
229                                       u16 cmd_action,
230                                       void * pdata_buf)
231 {
232         struct cmd_ds_802_11_enable_rsn *penableRSN = &cmd->params.enbrsn;
233         u32 * enable = pdata_buf;
234
235         lbs_deb_enter(LBS_DEB_CMD);
236
237         cmd->command = cpu_to_le16(CMD_802_11_ENABLE_RSN);
238         cmd->size = cpu_to_le16(sizeof(*penableRSN) + S_DS_GEN);
239         penableRSN->action = cpu_to_le16(cmd_action);
240
241         if (cmd_action == CMD_ACT_SET) {
242                 if (*enable)
243                         penableRSN->enable = cpu_to_le16(CMD_ENABLE_RSN);
244                 else
245                         penableRSN->enable = cpu_to_le16(CMD_DISABLE_RSN);
246                 lbs_deb_cmd("ENABLE_RSN: %d\n", *enable);
247         }
248
249         lbs_deb_leave(LBS_DEB_CMD);
250         return 0;
251 }
252
253
254 static ssize_t lbs_tlv_size(const u8 *tlv, u16 size)
255 {
256         ssize_t pos = 0;
257         struct mrvlietypesheader *tlv_h;
258         while (pos < size) {
259                 u16 length;
260                 tlv_h = (struct mrvlietypesheader *) tlv;
261                 if (tlv_h->len == 0)
262                         return pos;
263                 length = le16_to_cpu(tlv_h->len) +
264                         sizeof(struct mrvlietypesheader);
265                 pos += length;
266                 tlv += length;
267         }
268         return pos;
269 }
270
271
272 static void lbs_cmd_802_11_subscribe_event(struct lbs_private *priv,
273         struct cmd_ds_command *cmd, u16 cmd_action,
274         void *pdata_buf)
275 {
276         struct cmd_ds_802_11_subscribe_event *events =
277                 (struct cmd_ds_802_11_subscribe_event *) pdata_buf;
278
279         /* pdata_buf points to a struct cmd_ds_802_11_subscribe_event and room
280          * for various Marvell TLVs */
281
282         lbs_deb_enter(LBS_DEB_CMD);
283
284         cmd->size = cpu_to_le16(sizeof(*events)
285                         - sizeof(events->tlv)
286                         + S_DS_GEN);
287         cmd->params.subscribe_event.action = cpu_to_le16(cmd_action);
288         if (cmd_action == CMD_ACT_GET) {
289                 cmd->params.subscribe_event.events = 0;
290         } else {
291                 ssize_t sz = lbs_tlv_size(events->tlv, sizeof(events->tlv));
292                 cmd->size = cpu_to_le16(le16_to_cpu(cmd->size) + sz);
293                 cmd->params.subscribe_event.events = events->events;
294                 memcpy(cmd->params.subscribe_event.tlv, events->tlv, sz);
295         }
296
297         lbs_deb_leave(LBS_DEB_CMD);
298 }
299
300 static void set_one_wpa_key(struct MrvlIEtype_keyParamSet * pkeyparamset,
301                             struct enc_key * pkey)
302 {
303         lbs_deb_enter(LBS_DEB_CMD);
304
305         if (pkey->flags & KEY_INFO_WPA_ENABLED) {
306                 pkeyparamset->keyinfo |= cpu_to_le16(KEY_INFO_WPA_ENABLED);
307         }
308         if (pkey->flags & KEY_INFO_WPA_UNICAST) {
309                 pkeyparamset->keyinfo |= cpu_to_le16(KEY_INFO_WPA_UNICAST);
310         }
311         if (pkey->flags & KEY_INFO_WPA_MCAST) {
312                 pkeyparamset->keyinfo |= cpu_to_le16(KEY_INFO_WPA_MCAST);
313         }
314
315         pkeyparamset->type = cpu_to_le16(TLV_TYPE_KEY_MATERIAL);
316         pkeyparamset->keytypeid = cpu_to_le16(pkey->type);
317         pkeyparamset->keylen = cpu_to_le16(pkey->len);
318         memcpy(pkeyparamset->key, pkey->key, pkey->len);
319         pkeyparamset->length = cpu_to_le16(  sizeof(pkeyparamset->keytypeid)
320                                                 + sizeof(pkeyparamset->keyinfo)
321                                                 + sizeof(pkeyparamset->keylen)
322                                                 + sizeof(pkeyparamset->key));
323         lbs_deb_leave(LBS_DEB_CMD);
324 }
325
326 static int lbs_cmd_802_11_key_material(struct lbs_private *priv,
327                                         struct cmd_ds_command *cmd,
328                                         u16 cmd_action,
329                                         u32 cmd_oid, void *pdata_buf)
330 {
331         struct cmd_ds_802_11_key_material *pkeymaterial =
332             &cmd->params.keymaterial;
333         struct assoc_request * assoc_req = pdata_buf;
334         int ret = 0;
335         int index = 0;
336
337         lbs_deb_enter(LBS_DEB_CMD);
338
339         cmd->command = cpu_to_le16(CMD_802_11_KEY_MATERIAL);
340         pkeymaterial->action = cpu_to_le16(cmd_action);
341
342         if (cmd_action == CMD_ACT_GET) {
343                 cmd->size = cpu_to_le16(S_DS_GEN + sizeof (pkeymaterial->action));
344                 ret = 0;
345                 goto done;
346         }
347
348         memset(&pkeymaterial->keyParamSet, 0, sizeof(pkeymaterial->keyParamSet));
349
350         if (test_bit(ASSOC_FLAG_WPA_UCAST_KEY, &assoc_req->flags)) {
351                 set_one_wpa_key(&pkeymaterial->keyParamSet[index],
352                                 &assoc_req->wpa_unicast_key);
353                 index++;
354         }
355
356         if (test_bit(ASSOC_FLAG_WPA_MCAST_KEY, &assoc_req->flags)) {
357                 set_one_wpa_key(&pkeymaterial->keyParamSet[index],
358                                 &assoc_req->wpa_mcast_key);
359                 index++;
360         }
361
362         cmd->size = cpu_to_le16(  S_DS_GEN
363                                 + sizeof (pkeymaterial->action)
364                                 + (index * sizeof(struct MrvlIEtype_keyParamSet)));
365
366         ret = 0;
367
368 done:
369         lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
370         return ret;
371 }
372
373 static int lbs_cmd_802_11_reset(struct lbs_private *priv,
374                                  struct cmd_ds_command *cmd, int cmd_action)
375 {
376         struct cmd_ds_802_11_reset *reset = &cmd->params.reset;
377
378         lbs_deb_enter(LBS_DEB_CMD);
379
380         cmd->command = cpu_to_le16(CMD_802_11_RESET);
381         cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_reset) + S_DS_GEN);
382         reset->action = cpu_to_le16(cmd_action);
383
384         lbs_deb_leave(LBS_DEB_CMD);
385         return 0;
386 }
387
388 static int lbs_cmd_802_11_get_log(struct lbs_private *priv,
389                                    struct cmd_ds_command *cmd)
390 {
391         lbs_deb_enter(LBS_DEB_CMD);
392         cmd->command = cpu_to_le16(CMD_802_11_GET_LOG);
393         cmd->size =
394                 cpu_to_le16(sizeof(struct cmd_ds_802_11_get_log) + S_DS_GEN);
395
396         lbs_deb_leave(LBS_DEB_CMD);
397         return 0;
398 }
399
400 static int lbs_cmd_802_11_get_stat(struct lbs_private *priv,
401                                     struct cmd_ds_command *cmd)
402 {
403         lbs_deb_enter(LBS_DEB_CMD);
404         cmd->command = cpu_to_le16(CMD_802_11_GET_STAT);
405         cmd->size =
406             cpu_to_le16(sizeof(struct cmd_ds_802_11_get_stat) + S_DS_GEN);
407
408         lbs_deb_leave(LBS_DEB_CMD);
409         return 0;
410 }
411
412 static int lbs_cmd_802_11_snmp_mib(struct lbs_private *priv,
413                                     struct cmd_ds_command *cmd,
414                                     int cmd_action,
415                                     int cmd_oid, void *pdata_buf)
416 {
417         struct cmd_ds_802_11_snmp_mib *pSNMPMIB = &cmd->params.smib;
418         struct lbs_adapter *adapter = priv->adapter;
419         u8 ucTemp;
420
421         lbs_deb_enter(LBS_DEB_CMD);
422
423         lbs_deb_cmd("SNMP_CMD: cmd_oid = 0x%x\n", cmd_oid);
424
425         cmd->command = cpu_to_le16(CMD_802_11_SNMP_MIB);
426         cmd->size = cpu_to_le16(sizeof(*pSNMPMIB) + S_DS_GEN);
427
428         switch (cmd_oid) {
429         case OID_802_11_INFRASTRUCTURE_MODE:
430         {
431                 u8 mode = (u8) (size_t) pdata_buf;
432                 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
433                 pSNMPMIB->oid = cpu_to_le16((u16) DESIRED_BSSTYPE_I);
434                 pSNMPMIB->bufsize = cpu_to_le16(sizeof(u8));
435                 if (mode == IW_MODE_ADHOC) {
436                         ucTemp = SNMP_MIB_VALUE_ADHOC;
437                 } else {
438                         /* Infra and Auto modes */
439                         ucTemp = SNMP_MIB_VALUE_INFRA;
440                 }
441
442                 memmove(pSNMPMIB->value, &ucTemp, sizeof(u8));
443
444                 break;
445         }
446
447         case OID_802_11D_ENABLE:
448                 {
449                         u32 ulTemp;
450
451                         pSNMPMIB->oid = cpu_to_le16((u16) DOT11D_I);
452
453                         if (cmd_action == CMD_ACT_SET) {
454                                 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
455                                 pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
456                                 ulTemp = *(u32 *)pdata_buf;
457                                 *((__le16 *)(pSNMPMIB->value)) =
458                                     cpu_to_le16((u16) ulTemp);
459                         }
460                         break;
461                 }
462
463         case OID_802_11_FRAGMENTATION_THRESHOLD:
464                 {
465                         u32 ulTemp;
466
467                         pSNMPMIB->oid = cpu_to_le16((u16) FRAGTHRESH_I);
468
469                         if (cmd_action == CMD_ACT_GET) {
470                                 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_GET);
471                         } else if (cmd_action == CMD_ACT_SET) {
472                                 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
473                                 pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
474                                 ulTemp = *((u32 *) pdata_buf);
475                                 *((__le16 *)(pSNMPMIB->value)) =
476                                     cpu_to_le16((u16) ulTemp);
477
478                         }
479
480                         break;
481                 }
482
483         case OID_802_11_RTS_THRESHOLD:
484                 {
485
486                         u32 ulTemp;
487                         pSNMPMIB->oid = cpu_to_le16(RTSTHRESH_I);
488
489                         if (cmd_action == CMD_ACT_GET) {
490                                 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_GET);
491                         } else if (cmd_action == CMD_ACT_SET) {
492                                 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
493                                 pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
494                                 ulTemp = *((u32 *)pdata_buf);
495                                 *(__le16 *)(pSNMPMIB->value) =
496                                     cpu_to_le16((u16) ulTemp);
497
498                         }
499                         break;
500                 }
501         case OID_802_11_TX_RETRYCOUNT:
502                 pSNMPMIB->oid = cpu_to_le16((u16) SHORT_RETRYLIM_I);
503
504                 if (cmd_action == CMD_ACT_GET) {
505                         pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_GET);
506                 } else if (cmd_action == CMD_ACT_SET) {
507                         pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
508                         pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
509                         *((__le16 *)(pSNMPMIB->value)) =
510                             cpu_to_le16((u16) adapter->txretrycount);
511                 }
512
513                 break;
514         default:
515                 break;
516         }
517
518         lbs_deb_cmd(
519                "SNMP_CMD: command=0x%x, size=0x%x, seqnum=0x%x, result=0x%x\n",
520                le16_to_cpu(cmd->command), le16_to_cpu(cmd->size),
521                le16_to_cpu(cmd->seqnum), le16_to_cpu(cmd->result));
522
523         lbs_deb_cmd(
524                "SNMP_CMD: action 0x%x, oid 0x%x, oidsize 0x%x, value 0x%x\n",
525                le16_to_cpu(pSNMPMIB->querytype), le16_to_cpu(pSNMPMIB->oid),
526                le16_to_cpu(pSNMPMIB->bufsize),
527                le16_to_cpu(*(__le16 *) pSNMPMIB->value));
528
529         lbs_deb_leave(LBS_DEB_CMD);
530         return 0;
531 }
532
533 static int lbs_cmd_802_11_radio_control(struct lbs_private *priv,
534                                          struct cmd_ds_command *cmd,
535                                          int cmd_action)
536 {
537         struct lbs_adapter *adapter = priv->adapter;
538         struct cmd_ds_802_11_radio_control *pradiocontrol = &cmd->params.radio;
539
540         lbs_deb_enter(LBS_DEB_CMD);
541
542         cmd->size =
543             cpu_to_le16((sizeof(struct cmd_ds_802_11_radio_control)) +
544                              S_DS_GEN);
545         cmd->command = cpu_to_le16(CMD_802_11_RADIO_CONTROL);
546
547         pradiocontrol->action = cpu_to_le16(cmd_action);
548
549         switch (adapter->preamble) {
550         case CMD_TYPE_SHORT_PREAMBLE:
551                 pradiocontrol->control = cpu_to_le16(SET_SHORT_PREAMBLE);
552                 break;
553
554         case CMD_TYPE_LONG_PREAMBLE:
555                 pradiocontrol->control = cpu_to_le16(SET_LONG_PREAMBLE);
556                 break;
557
558         case CMD_TYPE_AUTO_PREAMBLE:
559         default:
560                 pradiocontrol->control = cpu_to_le16(SET_AUTO_PREAMBLE);
561                 break;
562         }
563
564         if (adapter->radioon)
565                 pradiocontrol->control |= cpu_to_le16(TURN_ON_RF);
566         else
567                 pradiocontrol->control &= cpu_to_le16(~TURN_ON_RF);
568
569         lbs_deb_leave(LBS_DEB_CMD);
570         return 0;
571 }
572
573 static int lbs_cmd_802_11_rf_tx_power(struct lbs_private *priv,
574                                        struct cmd_ds_command *cmd,
575                                        u16 cmd_action, void *pdata_buf)
576 {
577
578         struct cmd_ds_802_11_rf_tx_power *prtp = &cmd->params.txp;
579
580         lbs_deb_enter(LBS_DEB_CMD);
581
582         cmd->size =
583             cpu_to_le16((sizeof(struct cmd_ds_802_11_rf_tx_power)) + S_DS_GEN);
584         cmd->command = cpu_to_le16(CMD_802_11_RF_TX_POWER);
585         prtp->action = cpu_to_le16(cmd_action);
586
587         lbs_deb_cmd("RF_TX_POWER_CMD: size:%d cmd:0x%x Act:%d\n",
588                     le16_to_cpu(cmd->size), le16_to_cpu(cmd->command),
589                     le16_to_cpu(prtp->action));
590
591         switch (cmd_action) {
592         case CMD_ACT_TX_POWER_OPT_GET:
593                 prtp->action = cpu_to_le16(CMD_ACT_GET);
594                 prtp->currentlevel = 0;
595                 break;
596
597         case CMD_ACT_TX_POWER_OPT_SET_HIGH:
598                 prtp->action = cpu_to_le16(CMD_ACT_SET);
599                 prtp->currentlevel = cpu_to_le16(CMD_ACT_TX_POWER_INDEX_HIGH);
600                 break;
601
602         case CMD_ACT_TX_POWER_OPT_SET_MID:
603                 prtp->action = cpu_to_le16(CMD_ACT_SET);
604                 prtp->currentlevel = cpu_to_le16(CMD_ACT_TX_POWER_INDEX_MID);
605                 break;
606
607         case CMD_ACT_TX_POWER_OPT_SET_LOW:
608                 prtp->action = cpu_to_le16(CMD_ACT_SET);
609                 prtp->currentlevel = cpu_to_le16(*((u16 *) pdata_buf));
610                 break;
611         }
612
613         lbs_deb_leave(LBS_DEB_CMD);
614         return 0;
615 }
616
617 static int lbs_cmd_802_11_monitor_mode(struct lbs_private *priv,
618                                       struct cmd_ds_command *cmd,
619                                       u16 cmd_action, void *pdata_buf)
620 {
621         struct cmd_ds_802_11_monitor_mode *monitor = &cmd->params.monitor;
622
623         cmd->command = cpu_to_le16(CMD_802_11_MONITOR_MODE);
624         cmd->size =
625             cpu_to_le16(sizeof(struct cmd_ds_802_11_monitor_mode) +
626                              S_DS_GEN);
627
628         monitor->action = cpu_to_le16(cmd_action);
629         if (cmd_action == CMD_ACT_SET) {
630                 monitor->mode =
631                     cpu_to_le16((u16) (*(u32 *) pdata_buf));
632         }
633
634         return 0;
635 }
636
637 static int lbs_cmd_802_11_rate_adapt_rateset(struct lbs_private *priv,
638                                               struct cmd_ds_command *cmd,
639                                               u16 cmd_action)
640 {
641         struct cmd_ds_802_11_rate_adapt_rateset
642         *rateadapt = &cmd->params.rateset;
643         struct lbs_adapter *adapter = priv->adapter;
644
645         lbs_deb_enter(LBS_DEB_CMD);
646         cmd->size =
647             cpu_to_le16(sizeof(struct cmd_ds_802_11_rate_adapt_rateset)
648                              + S_DS_GEN);
649         cmd->command = cpu_to_le16(CMD_802_11_RATE_ADAPT_RATESET);
650
651         rateadapt->action = cpu_to_le16(cmd_action);
652         rateadapt->enablehwauto = cpu_to_le16(adapter->enablehwauto);
653         rateadapt->bitmap = cpu_to_le16(adapter->ratebitmap);
654
655         lbs_deb_leave(LBS_DEB_CMD);
656         return 0;
657 }
658
659 static int lbs_cmd_802_11_data_rate(struct lbs_private *priv,
660                                      struct cmd_ds_command *cmd,
661                                      u16 cmd_action)
662 {
663         struct cmd_ds_802_11_data_rate *pdatarate = &cmd->params.drate;
664         struct lbs_adapter *adapter = priv->adapter;
665
666         lbs_deb_enter(LBS_DEB_CMD);
667
668         cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_data_rate) +
669                              S_DS_GEN);
670         cmd->command = cpu_to_le16(CMD_802_11_DATA_RATE);
671         memset(pdatarate, 0, sizeof(struct cmd_ds_802_11_data_rate));
672         pdatarate->action = cpu_to_le16(cmd_action);
673
674         if (cmd_action == CMD_ACT_SET_TX_FIX_RATE) {
675                 pdatarate->rates[0] = lbs_data_rate_to_fw_index(adapter->cur_rate);
676                 lbs_deb_cmd("DATA_RATE: set fixed 0x%02X\n",
677                        adapter->cur_rate);
678         } else if (cmd_action == CMD_ACT_SET_TX_AUTO) {
679                 lbs_deb_cmd("DATA_RATE: setting auto\n");
680         }
681
682         lbs_deb_leave(LBS_DEB_CMD);
683         return 0;
684 }
685
686 static int lbs_cmd_mac_multicast_adr(struct lbs_private *priv,
687                                       struct cmd_ds_command *cmd,
688                                       u16 cmd_action)
689 {
690         struct cmd_ds_mac_multicast_adr *pMCastAdr = &cmd->params.madr;
691         struct lbs_adapter *adapter = priv->adapter;
692
693         lbs_deb_enter(LBS_DEB_CMD);
694         cmd->size = cpu_to_le16(sizeof(struct cmd_ds_mac_multicast_adr) +
695                              S_DS_GEN);
696         cmd->command = cpu_to_le16(CMD_MAC_MULTICAST_ADR);
697
698         lbs_deb_cmd("MULTICAST_ADR: setting %d addresses\n", pMCastAdr->nr_of_adrs);
699         pMCastAdr->action = cpu_to_le16(cmd_action);
700         pMCastAdr->nr_of_adrs =
701             cpu_to_le16((u16) adapter->nr_of_multicastmacaddr);
702         memcpy(pMCastAdr->maclist, adapter->multicastlist,
703                adapter->nr_of_multicastmacaddr * ETH_ALEN);
704
705         lbs_deb_leave(LBS_DEB_CMD);
706         return 0;
707 }
708
709 static int lbs_cmd_802_11_rf_channel(struct lbs_private *priv,
710                                       struct cmd_ds_command *cmd,
711                                       int option, void *pdata_buf)
712 {
713         struct cmd_ds_802_11_rf_channel *rfchan = &cmd->params.rfchannel;
714
715         lbs_deb_enter(LBS_DEB_CMD);
716         cmd->command = cpu_to_le16(CMD_802_11_RF_CHANNEL);
717         cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_rf_channel) +
718                                 S_DS_GEN);
719
720         if (option == CMD_OPT_802_11_RF_CHANNEL_SET) {
721                 rfchan->currentchannel = cpu_to_le16(*((u16 *) pdata_buf));
722         }
723
724         rfchan->action = cpu_to_le16(option);
725
726         lbs_deb_leave(LBS_DEB_CMD);
727         return 0;
728 }
729
730 static int lbs_cmd_802_11_rssi(struct lbs_private *priv,
731                                 struct cmd_ds_command *cmd)
732 {
733         struct lbs_adapter *adapter = priv->adapter;
734
735         lbs_deb_enter(LBS_DEB_CMD);
736         cmd->command = cpu_to_le16(CMD_802_11_RSSI);
737         cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_rssi) + S_DS_GEN);
738         cmd->params.rssi.N = cpu_to_le16(DEFAULT_BCN_AVG_FACTOR);
739
740         /* reset Beacon SNR/NF/RSSI values */
741         adapter->SNR[TYPE_BEACON][TYPE_NOAVG] = 0;
742         adapter->SNR[TYPE_BEACON][TYPE_AVG] = 0;
743         adapter->NF[TYPE_BEACON][TYPE_NOAVG] = 0;
744         adapter->NF[TYPE_BEACON][TYPE_AVG] = 0;
745         adapter->RSSI[TYPE_BEACON][TYPE_NOAVG] = 0;
746         adapter->RSSI[TYPE_BEACON][TYPE_AVG] = 0;
747
748         lbs_deb_leave(LBS_DEB_CMD);
749         return 0;
750 }
751
752 static int lbs_cmd_reg_access(struct lbs_private *priv,
753                                struct cmd_ds_command *cmdptr,
754                                u8 cmd_action, void *pdata_buf)
755 {
756         struct lbs_offset_value *offval;
757
758         lbs_deb_enter(LBS_DEB_CMD);
759
760         offval = (struct lbs_offset_value *)pdata_buf;
761
762         switch (le16_to_cpu(cmdptr->command)) {
763         case CMD_MAC_REG_ACCESS:
764                 {
765                         struct cmd_ds_mac_reg_access *macreg;
766
767                         cmdptr->size =
768                             cpu_to_le16(sizeof (struct cmd_ds_mac_reg_access)
769                                         + S_DS_GEN);
770                         macreg =
771                             (struct cmd_ds_mac_reg_access *)&cmdptr->params.
772                             macreg;
773
774                         macreg->action = cpu_to_le16(cmd_action);
775                         macreg->offset = cpu_to_le16((u16) offval->offset);
776                         macreg->value = cpu_to_le32(offval->value);
777
778                         break;
779                 }
780
781         case CMD_BBP_REG_ACCESS:
782                 {
783                         struct cmd_ds_bbp_reg_access *bbpreg;
784
785                         cmdptr->size =
786                             cpu_to_le16(sizeof
787                                              (struct cmd_ds_bbp_reg_access)
788                                              + S_DS_GEN);
789                         bbpreg =
790                             (struct cmd_ds_bbp_reg_access *)&cmdptr->params.
791                             bbpreg;
792
793                         bbpreg->action = cpu_to_le16(cmd_action);
794                         bbpreg->offset = cpu_to_le16((u16) offval->offset);
795                         bbpreg->value = (u8) offval->value;
796
797                         break;
798                 }
799
800         case CMD_RF_REG_ACCESS:
801                 {
802                         struct cmd_ds_rf_reg_access *rfreg;
803
804                         cmdptr->size =
805                             cpu_to_le16(sizeof
806                                              (struct cmd_ds_rf_reg_access) +
807                                              S_DS_GEN);
808                         rfreg =
809                             (struct cmd_ds_rf_reg_access *)&cmdptr->params.
810                             rfreg;
811
812                         rfreg->action = cpu_to_le16(cmd_action);
813                         rfreg->offset = cpu_to_le16((u16) offval->offset);
814                         rfreg->value = (u8) offval->value;
815
816                         break;
817                 }
818
819         default:
820                 break;
821         }
822
823         lbs_deb_leave(LBS_DEB_CMD);
824         return 0;
825 }
826
827 static int lbs_cmd_802_11_mac_address(struct lbs_private *priv,
828                                        struct cmd_ds_command *cmd,
829                                        u16 cmd_action)
830 {
831         struct lbs_adapter *adapter = priv->adapter;
832
833         lbs_deb_enter(LBS_DEB_CMD);
834         cmd->command = cpu_to_le16(CMD_802_11_MAC_ADDRESS);
835         cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_mac_address) +
836                              S_DS_GEN);
837         cmd->result = 0;
838
839         cmd->params.macadd.action = cpu_to_le16(cmd_action);
840
841         if (cmd_action == CMD_ACT_SET) {
842                 memcpy(cmd->params.macadd.macadd,
843                        adapter->current_addr, ETH_ALEN);
844                 lbs_deb_hex(LBS_DEB_CMD, "SET_CMD: MAC addr", adapter->current_addr, 6);
845         }
846
847         lbs_deb_leave(LBS_DEB_CMD);
848         return 0;
849 }
850
851 static int lbs_cmd_802_11_eeprom_access(struct lbs_private *priv,
852                                          struct cmd_ds_command *cmd,
853                                          int cmd_action, void *pdata_buf)
854 {
855         struct lbs_ioctl_regrdwr *ea = pdata_buf;
856
857         lbs_deb_enter(LBS_DEB_CMD);
858
859         cmd->command = cpu_to_le16(CMD_802_11_EEPROM_ACCESS);
860         cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_eeprom_access) +
861                                 S_DS_GEN);
862         cmd->result = 0;
863
864         cmd->params.rdeeprom.action = cpu_to_le16(ea->action);
865         cmd->params.rdeeprom.offset = cpu_to_le16(ea->offset);
866         cmd->params.rdeeprom.bytecount = cpu_to_le16(ea->NOB);
867         cmd->params.rdeeprom.value = 0;
868
869         lbs_deb_leave(LBS_DEB_CMD);
870         return 0;
871 }
872
873 static int lbs_cmd_bt_access(struct lbs_private *priv,
874                                struct cmd_ds_command *cmd,
875                                u16 cmd_action, void *pdata_buf)
876 {
877         struct cmd_ds_bt_access *bt_access = &cmd->params.bt;
878         lbs_deb_enter_args(LBS_DEB_CMD, "action %d", cmd_action);
879
880         cmd->command = cpu_to_le16(CMD_BT_ACCESS);
881         cmd->size = cpu_to_le16(sizeof(struct cmd_ds_bt_access) + S_DS_GEN);
882         cmd->result = 0;
883         bt_access->action = cpu_to_le16(cmd_action);
884
885         switch (cmd_action) {
886         case CMD_ACT_BT_ACCESS_ADD:
887                 memcpy(bt_access->addr1, pdata_buf, 2 * ETH_ALEN);
888                 lbs_deb_hex(LBS_DEB_MESH, "BT_ADD: blinded MAC addr", bt_access->addr1, 6);
889                 break;
890         case CMD_ACT_BT_ACCESS_DEL:
891                 memcpy(bt_access->addr1, pdata_buf, 1 * ETH_ALEN);
892                 lbs_deb_hex(LBS_DEB_MESH, "BT_DEL: blinded MAC addr", bt_access->addr1, 6);
893                 break;
894         case CMD_ACT_BT_ACCESS_LIST:
895                 bt_access->id = cpu_to_le32(*(u32 *) pdata_buf);
896                 break;
897         case CMD_ACT_BT_ACCESS_RESET:
898                 break;
899         case CMD_ACT_BT_ACCESS_SET_INVERT:
900                 bt_access->id = cpu_to_le32(*(u32 *) pdata_buf);
901                 break;
902         case CMD_ACT_BT_ACCESS_GET_INVERT:
903                 break;
904         default:
905                 break;
906         }
907         lbs_deb_leave(LBS_DEB_CMD);
908         return 0;
909 }
910
911 static int lbs_cmd_fwt_access(struct lbs_private *priv,
912                                struct cmd_ds_command *cmd,
913                                u16 cmd_action, void *pdata_buf)
914 {
915         struct cmd_ds_fwt_access *fwt_access = &cmd->params.fwt;
916         lbs_deb_enter_args(LBS_DEB_CMD, "action %d", cmd_action);
917
918         cmd->command = cpu_to_le16(CMD_FWT_ACCESS);
919         cmd->size = cpu_to_le16(sizeof(struct cmd_ds_fwt_access) + S_DS_GEN);
920         cmd->result = 0;
921
922         if (pdata_buf)
923                 memcpy(fwt_access, pdata_buf, sizeof(*fwt_access));
924         else
925                 memset(fwt_access, 0, sizeof(*fwt_access));
926
927         fwt_access->action = cpu_to_le16(cmd_action);
928
929         lbs_deb_leave(LBS_DEB_CMD);
930         return 0;
931 }
932
933 static int lbs_cmd_mesh_access(struct lbs_private *priv,
934                                 struct cmd_ds_command *cmd,
935                                 u16 cmd_action, void *pdata_buf)
936 {
937         struct cmd_ds_mesh_access *mesh_access = &cmd->params.mesh;
938         lbs_deb_enter_args(LBS_DEB_CMD, "action %d", cmd_action);
939
940         cmd->command = cpu_to_le16(CMD_MESH_ACCESS);
941         cmd->size = cpu_to_le16(sizeof(struct cmd_ds_mesh_access) + S_DS_GEN);
942         cmd->result = 0;
943
944         if (pdata_buf)
945                 memcpy(mesh_access, pdata_buf, sizeof(*mesh_access));
946         else
947                 memset(mesh_access, 0, sizeof(*mesh_access));
948
949         mesh_access->action = cpu_to_le16(cmd_action);
950
951         lbs_deb_leave(LBS_DEB_CMD);
952         return 0;
953 }
954
955 static int lbs_cmd_bcn_ctrl(struct lbs_private * priv,
956                                 struct cmd_ds_command *cmd,
957                                 u16 cmd_action)
958 {
959         struct cmd_ds_802_11_beacon_control
960                 *bcn_ctrl = &cmd->params.bcn_ctrl;
961         struct lbs_adapter *adapter = priv->adapter;
962
963         lbs_deb_enter(LBS_DEB_CMD);
964         cmd->size =
965             cpu_to_le16(sizeof(struct cmd_ds_802_11_beacon_control)
966                              + S_DS_GEN);
967         cmd->command = cpu_to_le16(CMD_802_11_BEACON_CTRL);
968
969         bcn_ctrl->action = cpu_to_le16(cmd_action);
970         bcn_ctrl->beacon_enable = cpu_to_le16(adapter->beacon_enable);
971         bcn_ctrl->beacon_period = cpu_to_le16(adapter->beacon_period);
972
973         lbs_deb_leave(LBS_DEB_CMD);
974         return 0;
975 }
976
977 /*
978  * Note: NEVER use lbs_queue_cmd() with addtail==0 other than for
979  * the command timer, because it does not account for queued commands.
980  */
981 void lbs_queue_cmd(struct lbs_adapter *adapter,
982         struct cmd_ctrl_node *cmdnode,
983         u8 addtail)
984 {
985         unsigned long flags;
986         struct cmd_ds_command *cmdptr;
987
988         lbs_deb_enter(LBS_DEB_HOST);
989
990         if (!cmdnode) {
991                 lbs_deb_host("QUEUE_CMD: cmdnode is NULL\n");
992                 goto done;
993         }
994
995         cmdptr = (struct cmd_ds_command *)cmdnode->bufvirtualaddr;
996         if (!cmdptr) {
997                 lbs_deb_host("QUEUE_CMD: cmdptr is NULL\n");
998                 goto done;
999         }
1000
1001         /* Exit_PS command needs to be queued in the header always. */
1002         if (le16_to_cpu(cmdptr->command) == CMD_802_11_PS_MODE) {
1003                 struct cmd_ds_802_11_ps_mode *psm = &cmdptr->params.psmode;
1004                 if (psm->action == cpu_to_le16(CMD_SUBCMD_EXIT_PS)) {
1005                         if (adapter->psstate != PS_STATE_FULL_POWER)
1006                                 addtail = 0;
1007                 }
1008         }
1009
1010         spin_lock_irqsave(&adapter->driver_lock, flags);
1011
1012         if (addtail)
1013                 list_add_tail(&cmdnode->list, &adapter->cmdpendingq);
1014         else
1015                 list_add(&cmdnode->list, &adapter->cmdpendingq);
1016
1017         spin_unlock_irqrestore(&adapter->driver_lock, flags);
1018
1019         lbs_deb_host("QUEUE_CMD: inserted command 0x%04x into cmdpendingq\n",
1020                le16_to_cpu(((struct cmd_ds_gen*)cmdnode->bufvirtualaddr)->command));
1021
1022 done:
1023         lbs_deb_leave(LBS_DEB_HOST);
1024 }
1025
1026 /*
1027  * TODO: Fix the issue when DownloadcommandToStation is being called the
1028  * second time when the command times out. All the cmdptr->xxx are in little
1029  * endian and therefore all the comparissions will fail.
1030  * For now - we are not performing the endian conversion the second time - but
1031  * for PS and DEEP_SLEEP we need to worry
1032  */
1033 static int DownloadcommandToStation(struct lbs_private *priv,
1034                                     struct cmd_ctrl_node *cmdnode)
1035 {
1036         unsigned long flags;
1037         struct cmd_ds_command *cmdptr;
1038         struct lbs_adapter *adapter = priv->adapter;
1039         int ret = -1;
1040         u16 cmdsize;
1041         u16 command;
1042
1043         lbs_deb_enter(LBS_DEB_HOST);
1044
1045         if (!adapter || !cmdnode) {
1046                 lbs_deb_host("DNLD_CMD: adapter or cmdmode is NULL\n");
1047                 goto done;
1048         }
1049
1050         cmdptr = (struct cmd_ds_command *)cmdnode->bufvirtualaddr;
1051
1052         spin_lock_irqsave(&adapter->driver_lock, flags);
1053         if (!cmdptr || !cmdptr->size) {
1054                 lbs_deb_host("DNLD_CMD: cmdptr is NULL or zero\n");
1055                 __lbs_cleanup_and_insert_cmd(priv, cmdnode);
1056                 spin_unlock_irqrestore(&adapter->driver_lock, flags);
1057                 goto done;
1058         }
1059
1060         adapter->cur_cmd = cmdnode;
1061         adapter->cur_cmd_retcode = 0;
1062         spin_unlock_irqrestore(&adapter->driver_lock, flags);
1063
1064         cmdsize = le16_to_cpu(cmdptr->size);
1065         command = le16_to_cpu(cmdptr->command);
1066
1067         lbs_deb_host("DNLD_CMD: command 0x%04x, size %d, jiffies %lu\n",
1068                     command, cmdsize, jiffies);
1069         lbs_deb_hex(LBS_DEB_HOST, "DNLD_CMD", cmdnode->bufvirtualaddr, cmdsize);
1070
1071         cmdnode->cmdwaitqwoken = 0;
1072
1073         ret = priv->hw_host_to_card(priv, MVMS_CMD, (u8 *) cmdptr, cmdsize);
1074
1075         if (ret != 0) {
1076                 lbs_deb_host("DNLD_CMD: hw_host_to_card failed\n");
1077                 spin_lock_irqsave(&adapter->driver_lock, flags);
1078                 adapter->cur_cmd_retcode = ret;
1079                 __lbs_cleanup_and_insert_cmd(priv, adapter->cur_cmd);
1080                 adapter->cur_cmd = NULL;
1081                 spin_unlock_irqrestore(&adapter->driver_lock, flags);
1082                 goto done;
1083         }
1084
1085         lbs_deb_cmd("DNLD_CMD: sent command 0x%04x, jiffies %lu\n", command, jiffies);
1086
1087         /* Setup the timer after transmit command */
1088         if (command == CMD_802_11_SCAN || command == CMD_802_11_AUTHENTICATE
1089             || command == CMD_802_11_ASSOCIATE)
1090                 mod_timer(&adapter->command_timer, jiffies + (10*HZ));
1091         else
1092                 mod_timer(&adapter->command_timer, jiffies + (5*HZ));
1093
1094         ret = 0;
1095
1096 done:
1097         lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1098         return ret;
1099 }
1100
1101 static int lbs_cmd_mac_control(struct lbs_private *priv,
1102                                 struct cmd_ds_command *cmd)
1103 {
1104         struct cmd_ds_mac_control *mac = &cmd->params.macctrl;
1105
1106         lbs_deb_enter(LBS_DEB_CMD);
1107
1108         cmd->command = cpu_to_le16(CMD_MAC_CONTROL);
1109         cmd->size = cpu_to_le16(sizeof(struct cmd_ds_mac_control) + S_DS_GEN);
1110         mac->action = cpu_to_le16(priv->adapter->currentpacketfilter);
1111
1112         lbs_deb_cmd("MAC_CONTROL: action 0x%x, size %d\n",
1113                     le16_to_cpu(mac->action), le16_to_cpu(cmd->size));
1114
1115         lbs_deb_leave(LBS_DEB_CMD);
1116         return 0;
1117 }
1118
1119 /**
1120  *  This function inserts command node to cmdfreeq
1121  *  after cleans it. Requires adapter->driver_lock held.
1122  */
1123 void __lbs_cleanup_and_insert_cmd(struct lbs_private *priv,
1124         struct cmd_ctrl_node *ptempcmd)
1125 {
1126         struct lbs_adapter *adapter = priv->adapter;
1127
1128         if (!ptempcmd)
1129                 return;
1130
1131         cleanup_cmdnode(ptempcmd);
1132         list_add_tail(&ptempcmd->list, &adapter->cmdfreeq);
1133 }
1134
1135 static void lbs_cleanup_and_insert_cmd(struct lbs_private *priv,
1136         struct cmd_ctrl_node *ptempcmd)
1137 {
1138         unsigned long flags;
1139
1140         spin_lock_irqsave(&priv->adapter->driver_lock, flags);
1141         __lbs_cleanup_and_insert_cmd(priv, ptempcmd);
1142         spin_unlock_irqrestore(&priv->adapter->driver_lock, flags);
1143 }
1144
1145 int lbs_set_radio_control(struct lbs_private *priv)
1146 {
1147         int ret = 0;
1148
1149         lbs_deb_enter(LBS_DEB_CMD);
1150
1151         ret = lbs_prepare_and_send_command(priv,
1152                                     CMD_802_11_RADIO_CONTROL,
1153                                     CMD_ACT_SET,
1154                                     CMD_OPTION_WAITFORRSP, 0, NULL);
1155
1156         lbs_deb_cmd("RADIO_SET: radio %d, preamble %d\n",
1157                priv->adapter->radioon, priv->adapter->preamble);
1158
1159         lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
1160         return ret;
1161 }
1162
1163 int lbs_set_mac_packet_filter(struct lbs_private *priv)
1164 {
1165         int ret = 0;
1166
1167         lbs_deb_enter(LBS_DEB_CMD);
1168
1169         /* Send MAC control command to station */
1170         ret = lbs_prepare_and_send_command(priv,
1171                                     CMD_MAC_CONTROL, 0, 0, 0, NULL);
1172
1173         lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
1174         return ret;
1175 }
1176
1177 /**
1178  *  @brief This function prepare the command before send to firmware.
1179  *
1180  *  @param priv         A pointer to struct lbs_private structure
1181  *  @param cmd_no       command number
1182  *  @param cmd_action   command action: GET or SET
1183  *  @param wait_option  wait option: wait response or not
1184  *  @param cmd_oid      cmd oid: treated as sub command
1185  *  @param pdata_buf    A pointer to informaion buffer
1186  *  @return             0 or -1
1187  */
1188 int lbs_prepare_and_send_command(struct lbs_private *priv,
1189                           u16 cmd_no,
1190                           u16 cmd_action,
1191                           u16 wait_option, u32 cmd_oid, void *pdata_buf)
1192 {
1193         int ret = 0;
1194         struct lbs_adapter *adapter = priv->adapter;
1195         struct cmd_ctrl_node *cmdnode;
1196         struct cmd_ds_command *cmdptr;
1197         unsigned long flags;
1198
1199         lbs_deb_enter(LBS_DEB_HOST);
1200
1201         if (!adapter) {
1202                 lbs_deb_host("PREP_CMD: adapter is NULL\n");
1203                 ret = -1;
1204                 goto done;
1205         }
1206
1207         if (adapter->surpriseremoved) {
1208                 lbs_deb_host("PREP_CMD: card removed\n");
1209                 ret = -1;
1210                 goto done;
1211         }
1212
1213         cmdnode = lbs_get_cmd_ctrl_node(priv);
1214
1215         if (cmdnode == NULL) {
1216                 lbs_deb_host("PREP_CMD: cmdnode is NULL\n");
1217
1218                 /* Wake up main thread to execute next command */
1219                 wake_up_interruptible(&priv->waitq);
1220                 ret = -1;
1221                 goto done;
1222         }
1223
1224         lbs_set_cmd_ctrl_node(priv, cmdnode, wait_option, pdata_buf);
1225
1226         cmdptr = (struct cmd_ds_command *)cmdnode->bufvirtualaddr;
1227
1228         lbs_deb_host("PREP_CMD: command 0x%04x\n", cmd_no);
1229
1230         if (!cmdptr) {
1231                 lbs_deb_host("PREP_CMD: cmdptr is NULL\n");
1232                 lbs_cleanup_and_insert_cmd(priv, cmdnode);
1233                 ret = -1;
1234                 goto done;
1235         }
1236
1237         /* Set sequence number, command and INT option */
1238         adapter->seqnum++;
1239         cmdptr->seqnum = cpu_to_le16(adapter->seqnum);
1240
1241         cmdptr->command = cpu_to_le16(cmd_no);
1242         cmdptr->result = 0;
1243
1244         switch (cmd_no) {
1245         case CMD_GET_HW_SPEC:
1246                 ret = lbs_cmd_hw_spec(priv, cmdptr);
1247                 break;
1248         case CMD_802_11_PS_MODE:
1249                 ret = lbs_cmd_802_11_ps_mode(priv, cmdptr, cmd_action);
1250                 break;
1251
1252         case CMD_802_11_SCAN:
1253                 ret = lbs_cmd_80211_scan(priv, cmdptr, pdata_buf);
1254                 break;
1255
1256         case CMD_MAC_CONTROL:
1257                 ret = lbs_cmd_mac_control(priv, cmdptr);
1258                 break;
1259
1260         case CMD_802_11_ASSOCIATE:
1261         case CMD_802_11_REASSOCIATE:
1262                 ret = lbs_cmd_80211_associate(priv, cmdptr, pdata_buf);
1263                 break;
1264
1265         case CMD_802_11_DEAUTHENTICATE:
1266                 ret = lbs_cmd_80211_deauthenticate(priv, cmdptr);
1267                 break;
1268
1269         case CMD_802_11_SET_WEP:
1270                 ret = lbs_cmd_802_11_set_wep(priv, cmdptr, cmd_action, pdata_buf);
1271                 break;
1272
1273         case CMD_802_11_AD_HOC_START:
1274                 ret = lbs_cmd_80211_ad_hoc_start(priv, cmdptr, pdata_buf);
1275                 break;
1276         case CMD_CODE_DNLD:
1277                 break;
1278
1279         case CMD_802_11_RESET:
1280                 ret = lbs_cmd_802_11_reset(priv, cmdptr, cmd_action);
1281                 break;
1282
1283         case CMD_802_11_GET_LOG:
1284                 ret = lbs_cmd_802_11_get_log(priv, cmdptr);
1285                 break;
1286
1287         case CMD_802_11_AUTHENTICATE:
1288                 ret = lbs_cmd_80211_authenticate(priv, cmdptr, pdata_buf);
1289                 break;
1290
1291         case CMD_802_11_GET_STAT:
1292                 ret = lbs_cmd_802_11_get_stat(priv, cmdptr);
1293                 break;
1294
1295         case CMD_802_11_SNMP_MIB:
1296                 ret = lbs_cmd_802_11_snmp_mib(priv, cmdptr,
1297                                                cmd_action, cmd_oid, pdata_buf);
1298                 break;
1299
1300         case CMD_MAC_REG_ACCESS:
1301         case CMD_BBP_REG_ACCESS:
1302         case CMD_RF_REG_ACCESS:
1303                 ret = lbs_cmd_reg_access(priv, cmdptr, cmd_action, pdata_buf);
1304                 break;
1305
1306         case CMD_802_11_RF_CHANNEL:
1307                 ret = lbs_cmd_802_11_rf_channel(priv, cmdptr,
1308                                                  cmd_action, pdata_buf);
1309                 break;
1310
1311         case CMD_802_11_RF_TX_POWER:
1312                 ret = lbs_cmd_802_11_rf_tx_power(priv, cmdptr,
1313                                                   cmd_action, pdata_buf);
1314                 break;
1315
1316         case CMD_802_11_RADIO_CONTROL:
1317                 ret = lbs_cmd_802_11_radio_control(priv, cmdptr, cmd_action);
1318                 break;
1319
1320         case CMD_802_11_DATA_RATE:
1321                 ret = lbs_cmd_802_11_data_rate(priv, cmdptr, cmd_action);
1322                 break;
1323         case CMD_802_11_RATE_ADAPT_RATESET:
1324                 ret = lbs_cmd_802_11_rate_adapt_rateset(priv,
1325                                                          cmdptr, cmd_action);
1326                 break;
1327
1328         case CMD_MAC_MULTICAST_ADR:
1329                 ret = lbs_cmd_mac_multicast_adr(priv, cmdptr, cmd_action);
1330                 break;
1331
1332         case CMD_802_11_MONITOR_MODE:
1333                 ret = lbs_cmd_802_11_monitor_mode(priv, cmdptr,
1334                                           cmd_action, pdata_buf);
1335                 break;
1336
1337         case CMD_802_11_AD_HOC_JOIN:
1338                 ret = lbs_cmd_80211_ad_hoc_join(priv, cmdptr, pdata_buf);
1339                 break;
1340
1341         case CMD_802_11_RSSI:
1342                 ret = lbs_cmd_802_11_rssi(priv, cmdptr);
1343                 break;
1344
1345         case CMD_802_11_AD_HOC_STOP:
1346                 ret = lbs_cmd_80211_ad_hoc_stop(priv, cmdptr);
1347                 break;
1348
1349         case CMD_802_11_ENABLE_RSN:
1350                 ret = lbs_cmd_802_11_enable_rsn(priv, cmdptr, cmd_action,
1351                                 pdata_buf);
1352                 break;
1353
1354         case CMD_802_11_KEY_MATERIAL:
1355                 ret = lbs_cmd_802_11_key_material(priv, cmdptr, cmd_action,
1356                                 cmd_oid, pdata_buf);
1357                 break;
1358
1359         case CMD_802_11_PAIRWISE_TSC:
1360                 break;
1361         case CMD_802_11_GROUP_TSC:
1362                 break;
1363
1364         case CMD_802_11_MAC_ADDRESS:
1365                 ret = lbs_cmd_802_11_mac_address(priv, cmdptr, cmd_action);
1366                 break;
1367
1368         case CMD_802_11_EEPROM_ACCESS:
1369                 ret = lbs_cmd_802_11_eeprom_access(priv, cmdptr,
1370                                                     cmd_action, pdata_buf);
1371                 break;
1372
1373         case CMD_802_11_SET_AFC:
1374         case CMD_802_11_GET_AFC:
1375
1376                 cmdptr->command = cpu_to_le16(cmd_no);
1377                 cmdptr->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_afc) +
1378                                            S_DS_GEN);
1379
1380                 memmove(&cmdptr->params.afc,
1381                         pdata_buf, sizeof(struct cmd_ds_802_11_afc));
1382
1383                 ret = 0;
1384                 goto done;
1385
1386         case CMD_802_11D_DOMAIN_INFO:
1387                 ret = lbs_cmd_802_11d_domain_info(priv, cmdptr,
1388                                                    cmd_no, cmd_action);
1389                 break;
1390
1391         case CMD_802_11_SLEEP_PARAMS:
1392                 ret = lbs_cmd_802_11_sleep_params(priv, cmdptr, cmd_action);
1393                 break;
1394         case CMD_802_11_INACTIVITY_TIMEOUT:
1395                 ret = lbs_cmd_802_11_inactivity_timeout(priv, cmdptr,
1396                                                          cmd_action, pdata_buf);
1397                 lbs_set_cmd_ctrl_node(priv, cmdnode, 0, pdata_buf);
1398                 break;
1399
1400         case CMD_802_11_TPC_CFG:
1401                 cmdptr->command = cpu_to_le16(CMD_802_11_TPC_CFG);
1402                 cmdptr->size =
1403                     cpu_to_le16(sizeof(struct cmd_ds_802_11_tpc_cfg) +
1404                                      S_DS_GEN);
1405
1406                 memmove(&cmdptr->params.tpccfg,
1407                         pdata_buf, sizeof(struct cmd_ds_802_11_tpc_cfg));
1408
1409                 ret = 0;
1410                 break;
1411         case CMD_802_11_LED_GPIO_CTRL:
1412                 {
1413                         struct mrvlietypes_ledgpio *gpio =
1414                             (struct mrvlietypes_ledgpio*)
1415                             cmdptr->params.ledgpio.data;
1416
1417                         memmove(&cmdptr->params.ledgpio,
1418                                 pdata_buf,
1419                                 sizeof(struct cmd_ds_802_11_led_ctrl));
1420
1421                         cmdptr->command =
1422                             cpu_to_le16(CMD_802_11_LED_GPIO_CTRL);
1423
1424 #define ACTION_NUMLED_TLVTYPE_LEN_FIELDS_LEN 8
1425                         cmdptr->size =
1426                             cpu_to_le16(le16_to_cpu(gpio->header.len)
1427                                 + S_DS_GEN
1428                                 + ACTION_NUMLED_TLVTYPE_LEN_FIELDS_LEN);
1429                         gpio->header.len = gpio->header.len;
1430
1431                         ret = 0;
1432                         break;
1433                 }
1434         case CMD_802_11_SUBSCRIBE_EVENT:
1435                 lbs_cmd_802_11_subscribe_event(priv, cmdptr,
1436                         cmd_action, pdata_buf);
1437                 break;
1438         case CMD_802_11_PWR_CFG:
1439                 cmdptr->command = cpu_to_le16(CMD_802_11_PWR_CFG);
1440                 cmdptr->size =
1441                     cpu_to_le16(sizeof(struct cmd_ds_802_11_pwr_cfg) +
1442                                      S_DS_GEN);
1443                 memmove(&cmdptr->params.pwrcfg, pdata_buf,
1444                         sizeof(struct cmd_ds_802_11_pwr_cfg));
1445
1446                 ret = 0;
1447                 break;
1448         case CMD_BT_ACCESS:
1449                 ret = lbs_cmd_bt_access(priv, cmdptr, cmd_action, pdata_buf);
1450                 break;
1451
1452         case CMD_FWT_ACCESS:
1453                 ret = lbs_cmd_fwt_access(priv, cmdptr, cmd_action, pdata_buf);
1454                 break;
1455
1456         case CMD_MESH_ACCESS:
1457                 ret = lbs_cmd_mesh_access(priv, cmdptr, cmd_action, pdata_buf);
1458                 break;
1459
1460         case CMD_GET_TSF:
1461                 cmdptr->command = cpu_to_le16(CMD_GET_TSF);
1462                 cmdptr->size = cpu_to_le16(sizeof(struct cmd_ds_get_tsf) +
1463                                            S_DS_GEN);
1464                 ret = 0;
1465                 break;
1466         case CMD_802_11_BEACON_CTRL:
1467                 ret = lbs_cmd_bcn_ctrl(priv, cmdptr, cmd_action);
1468                 break;
1469         default:
1470                 lbs_deb_host("PREP_CMD: unknown command 0x%04x\n", cmd_no);
1471                 ret = -1;
1472                 break;
1473         }
1474
1475         /* return error, since the command preparation failed */
1476         if (ret != 0) {
1477                 lbs_deb_host("PREP_CMD: command preparation failed\n");
1478                 lbs_cleanup_and_insert_cmd(priv, cmdnode);
1479                 ret = -1;
1480                 goto done;
1481         }
1482
1483         cmdnode->cmdwaitqwoken = 0;
1484
1485         lbs_queue_cmd(adapter, cmdnode, 1);
1486         wake_up_interruptible(&priv->waitq);
1487
1488         if (wait_option & CMD_OPTION_WAITFORRSP) {
1489                 lbs_deb_host("PREP_CMD: wait for response\n");
1490                 might_sleep();
1491                 wait_event_interruptible(cmdnode->cmdwait_q,
1492                                          cmdnode->cmdwaitqwoken);
1493         }
1494
1495         spin_lock_irqsave(&adapter->driver_lock, flags);
1496         if (adapter->cur_cmd_retcode) {
1497                 lbs_deb_host("PREP_CMD: command failed with return code %d\n",
1498                        adapter->cur_cmd_retcode);
1499                 adapter->cur_cmd_retcode = 0;
1500                 ret = -1;
1501         }
1502         spin_unlock_irqrestore(&adapter->driver_lock, flags);
1503
1504 done:
1505         lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1506         return ret;
1507 }
1508 EXPORT_SYMBOL_GPL(lbs_prepare_and_send_command);
1509
1510 /**
1511  *  @brief This function allocates the command buffer and link
1512  *  it to command free queue.
1513  *
1514  *  @param priv         A pointer to struct lbs_private structure
1515  *  @return             0 or -1
1516  */
1517 int lbs_allocate_cmd_buffer(struct lbs_private *priv)
1518 {
1519         int ret = 0;
1520         u32 ulbufsize;
1521         u32 i;
1522         struct cmd_ctrl_node *tempcmd_array;
1523         u8 *ptempvirtualaddr;
1524         struct lbs_adapter *adapter = priv->adapter;
1525
1526         lbs_deb_enter(LBS_DEB_HOST);
1527
1528         /* Allocate and initialize cmdCtrlNode */
1529         ulbufsize = sizeof(struct cmd_ctrl_node) * MRVDRV_NUM_OF_CMD_BUFFER;
1530
1531         if (!(tempcmd_array = kzalloc(ulbufsize, GFP_KERNEL))) {
1532                 lbs_deb_host("ALLOC_CMD_BUF: tempcmd_array is NULL\n");
1533                 ret = -1;
1534                 goto done;
1535         }
1536         adapter->cmd_array = tempcmd_array;
1537
1538         /* Allocate and initialize command buffers */
1539         ulbufsize = MRVDRV_SIZE_OF_CMD_BUFFER;
1540         for (i = 0; i < MRVDRV_NUM_OF_CMD_BUFFER; i++) {
1541                 if (!(ptempvirtualaddr = kzalloc(ulbufsize, GFP_KERNEL))) {
1542                         lbs_deb_host("ALLOC_CMD_BUF: ptempvirtualaddr is NULL\n");
1543                         ret = -1;
1544                         goto done;
1545                 }
1546
1547                 /* Update command buffer virtual */
1548                 tempcmd_array[i].bufvirtualaddr = ptempvirtualaddr;
1549         }
1550
1551         for (i = 0; i < MRVDRV_NUM_OF_CMD_BUFFER; i++) {
1552                 init_waitqueue_head(&tempcmd_array[i].cmdwait_q);
1553                 lbs_cleanup_and_insert_cmd(priv, &tempcmd_array[i]);
1554         }
1555
1556         ret = 0;
1557
1558 done:
1559         lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1560         return ret;
1561 }
1562
1563 /**
1564  *  @brief This function frees the command buffer.
1565  *
1566  *  @param priv         A pointer to struct lbs_private structure
1567  *  @return             0 or -1
1568  */
1569 int lbs_free_cmd_buffer(struct lbs_private *priv)
1570 {
1571         u32 ulbufsize; /* Someone needs to die for this. Slowly and painfully */
1572         unsigned int i;
1573         struct cmd_ctrl_node *tempcmd_array;
1574         struct lbs_adapter *adapter = priv->adapter;
1575
1576         lbs_deb_enter(LBS_DEB_HOST);
1577
1578         /* need to check if cmd array is allocated or not */
1579         if (adapter->cmd_array == NULL) {
1580                 lbs_deb_host("FREE_CMD_BUF: cmd_array is NULL\n");
1581                 goto done;
1582         }
1583
1584         tempcmd_array = adapter->cmd_array;
1585
1586         /* Release shared memory buffers */
1587         ulbufsize = MRVDRV_SIZE_OF_CMD_BUFFER;
1588         for (i = 0; i < MRVDRV_NUM_OF_CMD_BUFFER; i++) {
1589                 if (tempcmd_array[i].bufvirtualaddr) {
1590                         kfree(tempcmd_array[i].bufvirtualaddr);
1591                         tempcmd_array[i].bufvirtualaddr = NULL;
1592                 }
1593         }
1594
1595         /* Release cmd_ctrl_node */
1596         if (adapter->cmd_array) {
1597                 kfree(adapter->cmd_array);
1598                 adapter->cmd_array = NULL;
1599         }
1600
1601 done:
1602         lbs_deb_leave(LBS_DEB_HOST);
1603         return 0;
1604 }
1605
1606 /**
1607  *  @brief This function gets a free command node if available in
1608  *  command free queue.
1609  *
1610  *  @param priv         A pointer to struct lbs_private structure
1611  *  @return cmd_ctrl_node A pointer to cmd_ctrl_node structure or NULL
1612  */
1613 struct cmd_ctrl_node *lbs_get_cmd_ctrl_node(struct lbs_private *priv)
1614 {
1615         struct cmd_ctrl_node *tempnode;
1616         struct lbs_adapter *adapter = priv->adapter;
1617         unsigned long flags;
1618
1619         lbs_deb_enter(LBS_DEB_HOST);
1620
1621         if (!adapter)
1622                 return NULL;
1623
1624         spin_lock_irqsave(&adapter->driver_lock, flags);
1625
1626         if (!list_empty(&adapter->cmdfreeq)) {
1627                 tempnode = list_first_entry(&adapter->cmdfreeq,
1628                                             struct cmd_ctrl_node, list);
1629                 list_del(&tempnode->list);
1630         } else {
1631                 lbs_deb_host("GET_CMD_NODE: cmd_ctrl_node is not available\n");
1632                 tempnode = NULL;
1633         }
1634
1635         spin_unlock_irqrestore(&adapter->driver_lock, flags);
1636
1637         if (tempnode)
1638                 cleanup_cmdnode(tempnode);
1639
1640         lbs_deb_leave(LBS_DEB_HOST);
1641         return tempnode;
1642 }
1643
1644 /**
1645  *  @brief This function cleans command node.
1646  *
1647  *  @param ptempnode    A pointer to cmdCtrlNode structure
1648  *  @return             n/a
1649  */
1650 static void cleanup_cmdnode(struct cmd_ctrl_node *ptempnode)
1651 {
1652         lbs_deb_enter(LBS_DEB_HOST);
1653
1654         if (!ptempnode)
1655                 return;
1656         ptempnode->cmdwaitqwoken = 1;
1657         wake_up_interruptible(&ptempnode->cmdwait_q);
1658         ptempnode->wait_option = 0;
1659         ptempnode->pdata_buf = NULL;
1660         ptempnode->callback = NULL;
1661
1662         if (ptempnode->bufvirtualaddr != NULL)
1663                 memset(ptempnode->bufvirtualaddr, 0, MRVDRV_SIZE_OF_CMD_BUFFER);
1664
1665         lbs_deb_leave(LBS_DEB_HOST);
1666 }
1667
1668 /**
1669  *  @brief This function initializes the command node.
1670  *
1671  *  @param priv         A pointer to struct lbs_private structure
1672  *  @param ptempnode    A pointer to cmd_ctrl_node structure
1673  *  @param wait_option  wait option: wait response or not
1674  *  @param pdata_buf    A pointer to informaion buffer
1675  *  @return             0 or -1
1676  */
1677 void lbs_set_cmd_ctrl_node(struct lbs_private *priv,
1678                     struct cmd_ctrl_node *ptempnode,
1679                     u16 wait_option, void *pdata_buf)
1680 {
1681         lbs_deb_enter(LBS_DEB_HOST);
1682
1683         if (!ptempnode)
1684                 return;
1685
1686         ptempnode->wait_option = wait_option;
1687         ptempnode->pdata_buf = pdata_buf;
1688         ptempnode->callback = NULL;
1689
1690         lbs_deb_leave(LBS_DEB_HOST);
1691 }
1692
1693 /**
1694  *  @brief This function executes next command in command
1695  *  pending queue. It will put fimware back to PS mode
1696  *  if applicable.
1697  *
1698  *  @param priv     A pointer to struct lbs_private structure
1699  *  @return        0 or -1
1700  */
1701 int lbs_execute_next_command(struct lbs_private *priv)
1702 {
1703         struct lbs_adapter *adapter = priv->adapter;
1704         struct cmd_ctrl_node *cmdnode = NULL;
1705         struct cmd_ds_command *cmdptr;
1706         unsigned long flags;
1707         int ret = 0;
1708
1709         // Debug group is LBS_DEB_THREAD and not LBS_DEB_HOST, because the
1710         // only caller to us is lbs_thread() and we get even when a
1711         // data packet is received
1712         lbs_deb_enter(LBS_DEB_THREAD);
1713
1714         spin_lock_irqsave(&adapter->driver_lock, flags);
1715
1716         if (adapter->cur_cmd) {
1717                 lbs_pr_alert( "EXEC_NEXT_CMD: already processing command!\n");
1718                 spin_unlock_irqrestore(&adapter->driver_lock, flags);
1719                 ret = -1;
1720                 goto done;
1721         }
1722
1723         if (!list_empty(&adapter->cmdpendingq)) {
1724                 cmdnode = list_first_entry(&adapter->cmdpendingq,
1725                                            struct cmd_ctrl_node, list);
1726         }
1727
1728         spin_unlock_irqrestore(&adapter->driver_lock, flags);
1729
1730         if (cmdnode) {
1731                 cmdptr = (struct cmd_ds_command *)cmdnode->bufvirtualaddr;
1732
1733                 if (is_command_allowed_in_ps(cmdptr->command)) {
1734                         if ((adapter->psstate == PS_STATE_SLEEP) ||
1735                             (adapter->psstate == PS_STATE_PRE_SLEEP)) {
1736                                 lbs_deb_host(
1737                                        "EXEC_NEXT_CMD: cannot send cmd 0x%04x in psstate %d\n",
1738                                        le16_to_cpu(cmdptr->command),
1739                                        adapter->psstate);
1740                                 ret = -1;
1741                                 goto done;
1742                         }
1743                         lbs_deb_host("EXEC_NEXT_CMD: OK to send command "
1744                                "0x%04x in psstate %d\n",
1745                                     le16_to_cpu(cmdptr->command),
1746                                     adapter->psstate);
1747                 } else if (adapter->psstate != PS_STATE_FULL_POWER) {
1748                         /*
1749                          * 1. Non-PS command:
1750                          * Queue it. set needtowakeup to TRUE if current state
1751                          * is SLEEP, otherwise call lbs_ps_wakeup to send Exit_PS.
1752                          * 2. PS command but not Exit_PS:
1753                          * Ignore it.
1754                          * 3. PS command Exit_PS:
1755                          * Set needtowakeup to TRUE if current state is SLEEP,
1756                          * otherwise send this command down to firmware
1757                          * immediately.
1758                          */
1759                         if (cmdptr->command !=
1760                             cpu_to_le16(CMD_802_11_PS_MODE)) {
1761                                 /*  Prepare to send Exit PS,
1762                                  *  this non PS command will be sent later */
1763                                 if ((adapter->psstate == PS_STATE_SLEEP)
1764                                     || (adapter->psstate == PS_STATE_PRE_SLEEP)
1765                                     ) {
1766                                         /* w/ new scheme, it will not reach here.
1767                                            since it is blocked in main_thread. */
1768                                         adapter->needtowakeup = 1;
1769                                 } else
1770                                         lbs_ps_wakeup(priv, 0);
1771
1772                                 ret = 0;
1773                                 goto done;
1774                         } else {
1775                                 /*
1776                                  * PS command. Ignore it if it is not Exit_PS.
1777                                  * otherwise send it down immediately.
1778                                  */
1779                                 struct cmd_ds_802_11_ps_mode *psm =
1780                                     &cmdptr->params.psmode;
1781
1782                                 lbs_deb_host(
1783                                        "EXEC_NEXT_CMD: PS cmd, action 0x%02x\n",
1784                                        psm->action);
1785                                 if (psm->action !=
1786                                     cpu_to_le16(CMD_SUBCMD_EXIT_PS)) {
1787                                         lbs_deb_host(
1788                                                "EXEC_NEXT_CMD: ignore ENTER_PS cmd\n");
1789                                         list_del(&cmdnode->list);
1790                                         lbs_cleanup_and_insert_cmd(priv, cmdnode);
1791
1792                                         ret = 0;
1793                                         goto done;
1794                                 }
1795
1796                                 if ((adapter->psstate == PS_STATE_SLEEP) ||
1797                                     (adapter->psstate == PS_STATE_PRE_SLEEP)) {
1798                                         lbs_deb_host(
1799                                                "EXEC_NEXT_CMD: ignore EXIT_PS cmd in sleep\n");
1800                                         list_del(&cmdnode->list);
1801                                         lbs_cleanup_and_insert_cmd(priv, cmdnode);
1802                                         adapter->needtowakeup = 1;
1803
1804                                         ret = 0;
1805                                         goto done;
1806                                 }
1807
1808                                 lbs_deb_host(
1809                                        "EXEC_NEXT_CMD: sending EXIT_PS\n");
1810                         }
1811                 }
1812                 list_del(&cmdnode->list);
1813                 lbs_deb_host("EXEC_NEXT_CMD: sending command 0x%04x\n",
1814                             le16_to_cpu(cmdptr->command));
1815                 DownloadcommandToStation(priv, cmdnode);
1816         } else {
1817                 /*
1818                  * check if in power save mode, if yes, put the device back
1819                  * to PS mode
1820                  */
1821                 if ((adapter->psmode != LBS802_11POWERMODECAM) &&
1822                     (adapter->psstate == PS_STATE_FULL_POWER) &&
1823                     ((adapter->connect_status == LBS_CONNECTED) ||
1824                     (adapter->mesh_connect_status == LBS_CONNECTED))) {
1825                         if (adapter->secinfo.WPAenabled ||
1826                             adapter->secinfo.WPA2enabled) {
1827                                 /* check for valid WPA group keys */
1828                                 if (adapter->wpa_mcast_key.len ||
1829                                     adapter->wpa_unicast_key.len) {
1830                                         lbs_deb_host(
1831                                                "EXEC_NEXT_CMD: WPA enabled and GTK_SET"
1832                                                " go back to PS_SLEEP");
1833                                         lbs_ps_sleep(priv, 0);
1834                                 }
1835                         } else {
1836                                 lbs_deb_host(
1837                                        "EXEC_NEXT_CMD: cmdpendingq empty, "
1838                                        "go back to PS_SLEEP");
1839                                 lbs_ps_sleep(priv, 0);
1840                         }
1841                 }
1842         }
1843
1844         ret = 0;
1845 done:
1846         lbs_deb_leave(LBS_DEB_THREAD);
1847         return ret;
1848 }
1849
1850 void lbs_send_iwevcustom_event(struct lbs_private *priv, s8 *str)
1851 {
1852         union iwreq_data iwrq;
1853         u8 buf[50];
1854
1855         lbs_deb_enter(LBS_DEB_WEXT);
1856
1857         memset(&iwrq, 0, sizeof(union iwreq_data));
1858         memset(buf, 0, sizeof(buf));
1859
1860         snprintf(buf, sizeof(buf) - 1, "%s", str);
1861
1862         iwrq.data.length = strlen(buf) + 1 + IW_EV_LCP_LEN;
1863
1864         /* Send Event to upper layer */
1865         lbs_deb_wext("event indication string %s\n", (char *)buf);
1866         lbs_deb_wext("event indication length %d\n", iwrq.data.length);
1867         lbs_deb_wext("sending wireless event IWEVCUSTOM for %s\n", str);
1868
1869         wireless_send_event(priv->dev, IWEVCUSTOM, &iwrq, buf);
1870
1871         lbs_deb_leave(LBS_DEB_WEXT);
1872 }
1873
1874 static int sendconfirmsleep(struct lbs_private *priv, u8 *cmdptr, u16 size)
1875 {
1876         unsigned long flags;
1877         struct lbs_adapter *adapter = priv->adapter;
1878         int ret = 0;
1879
1880         lbs_deb_enter(LBS_DEB_HOST);
1881
1882         lbs_deb_host("SEND_SLEEPC_CMD: before download, cmd size %d\n",
1883                size);
1884
1885         lbs_deb_hex(LBS_DEB_HOST, "sleep confirm command", cmdptr, size);
1886
1887         ret = priv->hw_host_to_card(priv, MVMS_CMD, cmdptr, size);
1888         priv->dnld_sent = DNLD_RES_RECEIVED;
1889
1890         spin_lock_irqsave(&adapter->driver_lock, flags);
1891         if (adapter->intcounter || adapter->currenttxskb)
1892                 lbs_deb_host("SEND_SLEEPC_CMD: intcounter %d, currenttxskb %p\n",
1893                        adapter->intcounter, adapter->currenttxskb);
1894         spin_unlock_irqrestore(&adapter->driver_lock, flags);
1895
1896         if (ret) {
1897                 lbs_pr_alert(
1898                        "SEND_SLEEPC_CMD: Host to Card failed for Confirm Sleep\n");
1899         } else {
1900                 spin_lock_irqsave(&adapter->driver_lock, flags);
1901                 if (!adapter->intcounter) {
1902                         adapter->psstate = PS_STATE_SLEEP;
1903                 } else {
1904                         lbs_deb_host("SEND_SLEEPC_CMD: after sent, intcounter %d\n",
1905                                adapter->intcounter);
1906                 }
1907                 spin_unlock_irqrestore(&adapter->driver_lock, flags);
1908
1909                 lbs_deb_host("SEND_SLEEPC_CMD: sent confirm sleep\n");
1910         }
1911
1912         lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1913         return ret;
1914 }
1915
1916 void lbs_ps_sleep(struct lbs_private *priv, int wait_option)
1917 {
1918         lbs_deb_enter(LBS_DEB_HOST);
1919
1920         /*
1921          * PS is currently supported only in Infrastructure mode
1922          * Remove this check if it is to be supported in IBSS mode also
1923          */
1924
1925         lbs_prepare_and_send_command(priv, CMD_802_11_PS_MODE,
1926                               CMD_SUBCMD_ENTER_PS, wait_option, 0, NULL);
1927
1928         lbs_deb_leave(LBS_DEB_HOST);
1929 }
1930
1931 /**
1932  *  @brief This function sends Exit_PS command to firmware.
1933  *
1934  *  @param priv         A pointer to struct lbs_private structure
1935  *  @param wait_option  wait response or not
1936  *  @return             n/a
1937  */
1938 void lbs_ps_wakeup(struct lbs_private *priv, int wait_option)
1939 {
1940         __le32 Localpsmode;
1941
1942         lbs_deb_enter(LBS_DEB_HOST);
1943
1944         Localpsmode = cpu_to_le32(LBS802_11POWERMODECAM);
1945
1946         lbs_prepare_and_send_command(priv, CMD_802_11_PS_MODE,
1947                               CMD_SUBCMD_EXIT_PS,
1948                               wait_option, 0, &Localpsmode);
1949
1950         lbs_deb_leave(LBS_DEB_HOST);
1951 }
1952
1953 /**
1954  *  @brief This function checks condition and prepares to
1955  *  send sleep confirm command to firmware if ok.
1956  *
1957  *  @param priv         A pointer to struct lbs_private structure
1958  *  @param psmode       Power Saving mode
1959  *  @return             n/a
1960  */
1961 void lbs_ps_confirm_sleep(struct lbs_private *priv, u16 psmode)
1962 {
1963         unsigned long flags =0;
1964         struct lbs_adapter *adapter = priv->adapter;
1965         u8 allowed = 1;
1966
1967         lbs_deb_enter(LBS_DEB_HOST);
1968
1969         if (priv->dnld_sent) {
1970                 allowed = 0;
1971                 lbs_deb_host("dnld_sent was set");
1972         }
1973
1974         spin_lock_irqsave(&adapter->driver_lock, flags);
1975         if (adapter->cur_cmd) {
1976                 allowed = 0;
1977                 lbs_deb_host("cur_cmd was set");
1978         }
1979         if (adapter->intcounter > 0) {
1980                 allowed = 0;
1981                 lbs_deb_host("intcounter %d", adapter->intcounter);
1982         }
1983         spin_unlock_irqrestore(&adapter->driver_lock, flags);
1984
1985         if (allowed) {
1986                 lbs_deb_host("sending lbs_ps_confirm_sleep\n");
1987                 sendconfirmsleep(priv, (u8 *) & adapter->lbs_ps_confirm_sleep,
1988                                  sizeof(struct PS_CMD_ConfirmSleep));
1989         } else {
1990                 lbs_deb_host("sleep confirm has been delayed\n");
1991         }
1992
1993         lbs_deb_leave(LBS_DEB_HOST);
1994 }
1995
1996
1997 /**
1998  *  @brief Simple way to call firmware functions
1999  *
2000  *  @param priv         A pointer to struct lbs_private structure
2001  *  @param psmode       one of the many CMD_802_11_xxxx
2002  *  @param cmd          pointer to the parameters structure for above command
2003  *                      (this should not include the command, size, sequence
2004  *                      and result fields from struct cmd_ds_gen)
2005  *  @param cmd_size     size structure pointed to by cmd
2006  *  @param rsp          pointer to an area where the result should be placed
2007  *  @param rsp_size     pointer to the size of the rsp area. If the firmware
2008  *                      returns fewer bytes, then this *rsp_size will be
2009  *                      changed to the actual size.
2010  *  @return             -1 in case of a higher level error, otherwise
2011  *                      the result code from the firmware
2012  */
2013
2014 int lbs_cmd(struct lbs_private *priv, uint16_t command, void *cmd, int cmd_size,
2015             int (*callback)(uint16_t, struct cmd_ds_command *, struct lbs_private *))
2016 {
2017         struct lbs_adapter *adapter = priv->adapter;
2018         struct cmd_ctrl_node *cmdnode;
2019         struct cmd_ds_gen *cmdptr;
2020         unsigned long flags;
2021         int ret = 0;
2022
2023         lbs_deb_enter(LBS_DEB_HOST);
2024
2025         if (!adapter) {
2026                 lbs_deb_host("PREP_CMD: adapter is NULL\n");
2027                 ret = -1;
2028                 goto done;
2029         }
2030
2031         if (adapter->surpriseremoved) {
2032                 lbs_deb_host("PREP_CMD: card removed\n");
2033                 ret = -1;
2034                 goto done;
2035         }
2036
2037         cmdnode = lbs_get_cmd_ctrl_node(priv);
2038
2039         if (cmdnode == NULL) {
2040                 lbs_deb_host("PREP_CMD: cmdnode is NULL\n");
2041
2042                 /* Wake up main thread to execute next command */
2043                 wake_up_interruptible(&priv->waitq);
2044                 ret = -1;
2045                 goto done;
2046         }
2047
2048         cmdptr = (struct cmd_ds_gen *)cmdnode->bufvirtualaddr;
2049         cmdnode->wait_option = CMD_OPTION_WAITFORRSP;
2050         cmdnode->callback = callback;
2051
2052         /* Set sequence number, clean result, move to buffer */
2053         adapter->seqnum++;
2054         cmdptr->command = cpu_to_le16(command);
2055         cmdptr->size    = cpu_to_le16(cmd_size + S_DS_GEN);
2056         cmdptr->seqnum = cpu_to_le16(adapter->seqnum);
2057         cmdptr->result = 0;
2058         memcpy(cmdptr->cmdresp, cmd, cmd_size);
2059
2060         lbs_deb_host("PREP_CMD: command 0x%04x\n", command);
2061
2062         /* here was the big old switch() statement, which is now obsolete,
2063          * because the caller of lbs_cmd() sets up all of *cmd for us. */
2064
2065         cmdnode->cmdwaitqwoken = 0;
2066         lbs_queue_cmd(adapter, cmdnode, 1);
2067         wake_up_interruptible(&priv->waitq);
2068
2069         might_sleep();
2070         wait_event_interruptible(cmdnode->cmdwait_q, cmdnode->cmdwaitqwoken);
2071
2072         spin_lock_irqsave(&adapter->driver_lock, flags);
2073         if (adapter->cur_cmd_retcode) {
2074                 lbs_deb_host("PREP_CMD: command failed with return code %d\n",
2075                        adapter->cur_cmd_retcode);
2076                 adapter->cur_cmd_retcode = 0;
2077                 ret = -1;
2078         }
2079         spin_unlock_irqrestore(&adapter->driver_lock, flags);
2080
2081 done:
2082         lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
2083         return ret;
2084 }
2085 EXPORT_SYMBOL_GPL(lbs_cmd);
2086
2087