2 * This file contains the handling of command.
3 * It prepares command and sends it to firmware when it is ready.
6 #include <net/iw_handler.h>
16 static void cleanup_cmdnode(struct cmd_ctrl_node *ptempnode);
17 struct cmd_ctrl_node *lbs_get_cmd_ctrl_node(struct lbs_private *priv);
18 void lbs_set_cmd_ctrl_node(struct lbs_private *priv,
19 struct cmd_ctrl_node *ptempnode,
20 u16 wait_option, void *pdata_buf);
24 * @brief Checks whether a command is allowed in Power Save mode
26 * @param command the command ID
27 * @return 1 if allowed, 0 if not allowed
29 static u8 is_command_allowed_in_ps(u16 cmd)
41 * @brief Updates the hardware details like MAC address and regulatory region
43 * @param priv A pointer to struct lbs_private structure
45 * @return 0 on success, error on failure
47 int lbs_update_hw_spec(struct lbs_private *priv)
49 struct cmd_ds_get_hw_spec cmd;
54 lbs_deb_enter(LBS_DEB_CMD);
56 memset(&cmd, 0, sizeof(cmd));
57 cmd.hdr.size = cpu_to_le16(sizeof(cmd));
58 memcpy(cmd.permanentaddr, priv->current_addr, ETH_ALEN);
59 ret = lbs_cmd_with_response(priv, CMD_GET_HW_SPEC, cmd);
63 priv->fwcapinfo = le32_to_cpu(cmd.fwcapinfo);
64 memcpy(priv->fwreleasenumber, cmd.fwreleasenumber, 4);
66 lbs_deb_cmd("GET_HW_SPEC: firmware release %u.%u.%up%u\n",
67 priv->fwreleasenumber[2], priv->fwreleasenumber[1],
68 priv->fwreleasenumber[0], priv->fwreleasenumber[3]);
69 lbs_deb_cmd("GET_HW_SPEC: MAC addr %s\n",
70 print_mac(mac, cmd.permanentaddr));
71 lbs_deb_cmd("GET_HW_SPEC: hardware interface 0x%x, hardware spec 0x%04x\n",
72 cmd.hwifversion, cmd.version);
74 /* Clamp region code to 8-bit since FW spec indicates that it should
75 * only ever be 8-bit, even though the field size is 16-bit. Some firmware
76 * returns non-zero high 8 bits here.
78 priv->regioncode = le16_to_cpu(cmd.regioncode) & 0xFF;
80 for (i = 0; i < MRVDRV_MAX_REGION_CODE; i++) {
81 /* use the region code to search for the index */
82 if (priv->regioncode == lbs_region_code_to_index[i])
86 /* if it's unidentified region code, use the default (USA) */
87 if (i >= MRVDRV_MAX_REGION_CODE) {
88 priv->regioncode = 0x10;
89 lbs_pr_info("unidentified region code; using the default (USA)\n");
92 if (priv->current_addr[0] == 0xff)
93 memmove(priv->current_addr, cmd.permanentaddr, ETH_ALEN);
95 memcpy(priv->dev->dev_addr, priv->current_addr, ETH_ALEN);
97 memcpy(priv->mesh_dev->dev_addr, priv->current_addr, ETH_ALEN);
99 if (lbs_set_regiontable(priv, priv->regioncode, 0)) {
104 if (lbs_set_universaltable(priv, 0)) {
110 lbs_deb_leave(LBS_DEB_CMD);
114 static int lbs_cmd_802_11_ps_mode(struct lbs_private *priv,
115 struct cmd_ds_command *cmd,
118 struct cmd_ds_802_11_ps_mode *psm = &cmd->params.psmode;
120 lbs_deb_enter(LBS_DEB_CMD);
122 cmd->command = cpu_to_le16(CMD_802_11_PS_MODE);
123 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_ps_mode) +
125 psm->action = cpu_to_le16(cmd_action);
126 psm->multipledtim = 0;
127 switch (cmd_action) {
128 case CMD_SUBCMD_ENTER_PS:
129 lbs_deb_cmd("PS command:" "SubCode- Enter PS\n");
131 psm->locallisteninterval = 0;
132 psm->nullpktinterval = 0;
134 cpu_to_le16(MRVDRV_DEFAULT_MULTIPLE_DTIM);
137 case CMD_SUBCMD_EXIT_PS:
138 lbs_deb_cmd("PS command:" "SubCode- Exit PS\n");
141 case CMD_SUBCMD_SLEEP_CONFIRMED:
142 lbs_deb_cmd("PS command: SubCode- sleep confirm\n");
149 lbs_deb_leave(LBS_DEB_CMD);
153 static int lbs_cmd_802_11_inactivity_timeout(struct lbs_private *priv,
154 struct cmd_ds_command *cmd,
155 u16 cmd_action, void *pdata_buf)
157 u16 *timeout = pdata_buf;
159 lbs_deb_enter(LBS_DEB_CMD);
161 cmd->command = cpu_to_le16(CMD_802_11_INACTIVITY_TIMEOUT);
163 cpu_to_le16(sizeof(struct cmd_ds_802_11_inactivity_timeout)
166 cmd->params.inactivity_timeout.action = cpu_to_le16(cmd_action);
169 cmd->params.inactivity_timeout.timeout = cpu_to_le16(*timeout);
171 cmd->params.inactivity_timeout.timeout = 0;
173 lbs_deb_leave(LBS_DEB_CMD);
177 static int lbs_cmd_802_11_sleep_params(struct lbs_private *priv,
178 struct cmd_ds_command *cmd,
181 struct cmd_ds_802_11_sleep_params *sp = &cmd->params.sleep_params;
183 lbs_deb_enter(LBS_DEB_CMD);
185 cmd->size = cpu_to_le16((sizeof(struct cmd_ds_802_11_sleep_params)) +
187 cmd->command = cpu_to_le16(CMD_802_11_SLEEP_PARAMS);
189 if (cmd_action == CMD_ACT_GET) {
190 memset(&priv->sp, 0, sizeof(struct sleep_params));
191 memset(sp, 0, sizeof(struct cmd_ds_802_11_sleep_params));
192 sp->action = cpu_to_le16(cmd_action);
193 } else if (cmd_action == CMD_ACT_SET) {
194 sp->action = cpu_to_le16(cmd_action);
195 sp->error = cpu_to_le16(priv->sp.sp_error);
196 sp->offset = cpu_to_le16(priv->sp.sp_offset);
197 sp->stabletime = cpu_to_le16(priv->sp.sp_stabletime);
198 sp->calcontrol = (u8) priv->sp.sp_calcontrol;
199 sp->externalsleepclk = (u8) priv->sp.sp_extsleepclk;
200 sp->reserved = cpu_to_le16(priv->sp.sp_reserved);
203 lbs_deb_leave(LBS_DEB_CMD);
207 static int lbs_cmd_802_11_set_wep(struct lbs_private *priv,
208 struct cmd_ds_command *cmd,
212 struct cmd_ds_802_11_set_wep *wep = &cmd->params.wep;
214 struct assoc_request * assoc_req = pdata_buf;
216 lbs_deb_enter(LBS_DEB_CMD);
218 cmd->command = cpu_to_le16(CMD_802_11_SET_WEP);
219 cmd->size = cpu_to_le16(sizeof(*wep) + S_DS_GEN);
221 if (cmd_act == CMD_ACT_ADD) {
225 lbs_deb_cmd("Invalid association request!");
230 wep->action = cpu_to_le16(CMD_ACT_ADD);
232 /* default tx key index */
233 wep->keyindex = cpu_to_le16((u16)(assoc_req->wep_tx_keyidx &
234 (u32)CMD_WEP_KEY_INDEX_MASK));
236 /* Copy key types and material to host command structure */
237 for (i = 0; i < 4; i++) {
238 struct enc_key * pkey = &assoc_req->wep_keys[i];
242 wep->keytype[i] = CMD_TYPE_WEP_40_BIT;
243 memmove(&wep->keymaterial[i], pkey->key,
245 lbs_deb_cmd("SET_WEP: add key %d (40 bit)\n", i);
247 case KEY_LEN_WEP_104:
248 wep->keytype[i] = CMD_TYPE_WEP_104_BIT;
249 memmove(&wep->keymaterial[i], pkey->key,
251 lbs_deb_cmd("SET_WEP: add key %d (104 bit)\n", i);
256 lbs_deb_cmd("SET_WEP: invalid key %d, length %d\n",
263 } else if (cmd_act == CMD_ACT_REMOVE) {
264 /* ACT_REMOVE clears _all_ WEP keys */
265 wep->action = cpu_to_le16(CMD_ACT_REMOVE);
267 /* default tx key index */
268 wep->keyindex = cpu_to_le16((u16)(priv->wep_tx_keyidx &
269 (u32)CMD_WEP_KEY_INDEX_MASK));
270 lbs_deb_cmd("SET_WEP: remove key %d\n", priv->wep_tx_keyidx);
276 lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
280 static int lbs_cmd_802_11_enable_rsn(struct lbs_private *priv,
281 struct cmd_ds_command *cmd,
285 struct cmd_ds_802_11_enable_rsn *penableRSN = &cmd->params.enbrsn;
286 u32 * enable = pdata_buf;
288 lbs_deb_enter(LBS_DEB_CMD);
290 cmd->command = cpu_to_le16(CMD_802_11_ENABLE_RSN);
291 cmd->size = cpu_to_le16(sizeof(*penableRSN) + S_DS_GEN);
292 penableRSN->action = cpu_to_le16(cmd_action);
294 if (cmd_action == CMD_ACT_SET) {
296 penableRSN->enable = cpu_to_le16(CMD_ENABLE_RSN);
298 penableRSN->enable = cpu_to_le16(CMD_DISABLE_RSN);
299 lbs_deb_cmd("ENABLE_RSN: %d\n", *enable);
302 lbs_deb_leave(LBS_DEB_CMD);
307 static ssize_t lbs_tlv_size(const u8 *tlv, u16 size)
310 struct mrvlietypesheader *tlv_h;
313 tlv_h = (struct mrvlietypesheader *) tlv;
316 length = le16_to_cpu(tlv_h->len) +
317 sizeof(struct mrvlietypesheader);
325 static void lbs_cmd_802_11_subscribe_event(struct lbs_private *priv,
326 struct cmd_ds_command *cmd, u16 cmd_action,
329 struct cmd_ds_802_11_subscribe_event *events =
330 (struct cmd_ds_802_11_subscribe_event *) pdata_buf;
332 /* pdata_buf points to a struct cmd_ds_802_11_subscribe_event and room
333 * for various Marvell TLVs */
335 lbs_deb_enter(LBS_DEB_CMD);
337 cmd->size = cpu_to_le16(sizeof(*events)
338 - sizeof(events->tlv)
340 cmd->params.subscribe_event.action = cpu_to_le16(cmd_action);
341 if (cmd_action == CMD_ACT_GET) {
342 cmd->params.subscribe_event.events = 0;
344 ssize_t sz = lbs_tlv_size(events->tlv, sizeof(events->tlv));
345 cmd->size = cpu_to_le16(le16_to_cpu(cmd->size) + sz);
346 cmd->params.subscribe_event.events = events->events;
347 memcpy(cmd->params.subscribe_event.tlv, events->tlv, sz);
350 lbs_deb_leave(LBS_DEB_CMD);
353 static void set_one_wpa_key(struct MrvlIEtype_keyParamSet * pkeyparamset,
354 struct enc_key * pkey)
356 lbs_deb_enter(LBS_DEB_CMD);
358 if (pkey->flags & KEY_INFO_WPA_ENABLED) {
359 pkeyparamset->keyinfo |= cpu_to_le16(KEY_INFO_WPA_ENABLED);
361 if (pkey->flags & KEY_INFO_WPA_UNICAST) {
362 pkeyparamset->keyinfo |= cpu_to_le16(KEY_INFO_WPA_UNICAST);
364 if (pkey->flags & KEY_INFO_WPA_MCAST) {
365 pkeyparamset->keyinfo |= cpu_to_le16(KEY_INFO_WPA_MCAST);
368 pkeyparamset->type = cpu_to_le16(TLV_TYPE_KEY_MATERIAL);
369 pkeyparamset->keytypeid = cpu_to_le16(pkey->type);
370 pkeyparamset->keylen = cpu_to_le16(pkey->len);
371 memcpy(pkeyparamset->key, pkey->key, pkey->len);
372 pkeyparamset->length = cpu_to_le16( sizeof(pkeyparamset->keytypeid)
373 + sizeof(pkeyparamset->keyinfo)
374 + sizeof(pkeyparamset->keylen)
375 + sizeof(pkeyparamset->key));
376 lbs_deb_leave(LBS_DEB_CMD);
379 static int lbs_cmd_802_11_key_material(struct lbs_private *priv,
380 struct cmd_ds_command *cmd,
382 u32 cmd_oid, void *pdata_buf)
384 struct cmd_ds_802_11_key_material *pkeymaterial =
385 &cmd->params.keymaterial;
386 struct assoc_request * assoc_req = pdata_buf;
390 lbs_deb_enter(LBS_DEB_CMD);
392 cmd->command = cpu_to_le16(CMD_802_11_KEY_MATERIAL);
393 pkeymaterial->action = cpu_to_le16(cmd_action);
395 if (cmd_action == CMD_ACT_GET) {
396 cmd->size = cpu_to_le16(S_DS_GEN + sizeof (pkeymaterial->action));
401 memset(&pkeymaterial->keyParamSet, 0, sizeof(pkeymaterial->keyParamSet));
403 if (test_bit(ASSOC_FLAG_WPA_UCAST_KEY, &assoc_req->flags)) {
404 set_one_wpa_key(&pkeymaterial->keyParamSet[index],
405 &assoc_req->wpa_unicast_key);
409 if (test_bit(ASSOC_FLAG_WPA_MCAST_KEY, &assoc_req->flags)) {
410 set_one_wpa_key(&pkeymaterial->keyParamSet[index],
411 &assoc_req->wpa_mcast_key);
415 cmd->size = cpu_to_le16( S_DS_GEN
416 + sizeof (pkeymaterial->action)
417 + (index * sizeof(struct MrvlIEtype_keyParamSet)));
422 lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
426 static int lbs_cmd_802_11_reset(struct lbs_private *priv,
427 struct cmd_ds_command *cmd, int cmd_action)
429 struct cmd_ds_802_11_reset *reset = &cmd->params.reset;
431 lbs_deb_enter(LBS_DEB_CMD);
433 cmd->command = cpu_to_le16(CMD_802_11_RESET);
434 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_reset) + S_DS_GEN);
435 reset->action = cpu_to_le16(cmd_action);
437 lbs_deb_leave(LBS_DEB_CMD);
441 static int lbs_cmd_802_11_get_log(struct lbs_private *priv,
442 struct cmd_ds_command *cmd)
444 lbs_deb_enter(LBS_DEB_CMD);
445 cmd->command = cpu_to_le16(CMD_802_11_GET_LOG);
447 cpu_to_le16(sizeof(struct cmd_ds_802_11_get_log) + S_DS_GEN);
449 lbs_deb_leave(LBS_DEB_CMD);
453 static int lbs_cmd_802_11_get_stat(struct lbs_private *priv,
454 struct cmd_ds_command *cmd)
456 lbs_deb_enter(LBS_DEB_CMD);
457 cmd->command = cpu_to_le16(CMD_802_11_GET_STAT);
459 cpu_to_le16(sizeof(struct cmd_ds_802_11_get_stat) + S_DS_GEN);
461 lbs_deb_leave(LBS_DEB_CMD);
465 static int lbs_cmd_802_11_snmp_mib(struct lbs_private *priv,
466 struct cmd_ds_command *cmd,
468 int cmd_oid, void *pdata_buf)
470 struct cmd_ds_802_11_snmp_mib *pSNMPMIB = &cmd->params.smib;
473 lbs_deb_enter(LBS_DEB_CMD);
475 lbs_deb_cmd("SNMP_CMD: cmd_oid = 0x%x\n", cmd_oid);
477 cmd->command = cpu_to_le16(CMD_802_11_SNMP_MIB);
478 cmd->size = cpu_to_le16(sizeof(*pSNMPMIB) + S_DS_GEN);
481 case OID_802_11_INFRASTRUCTURE_MODE:
483 u8 mode = (u8) (size_t) pdata_buf;
484 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
485 pSNMPMIB->oid = cpu_to_le16((u16) DESIRED_BSSTYPE_I);
486 pSNMPMIB->bufsize = cpu_to_le16(sizeof(u8));
487 if (mode == IW_MODE_ADHOC) {
488 ucTemp = SNMP_MIB_VALUE_ADHOC;
490 /* Infra and Auto modes */
491 ucTemp = SNMP_MIB_VALUE_INFRA;
494 memmove(pSNMPMIB->value, &ucTemp, sizeof(u8));
499 case OID_802_11D_ENABLE:
503 pSNMPMIB->oid = cpu_to_le16((u16) DOT11D_I);
505 if (cmd_action == CMD_ACT_SET) {
506 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
507 pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
508 ulTemp = *(u32 *)pdata_buf;
509 *((__le16 *)(pSNMPMIB->value)) =
510 cpu_to_le16((u16) ulTemp);
515 case OID_802_11_FRAGMENTATION_THRESHOLD:
519 pSNMPMIB->oid = cpu_to_le16((u16) FRAGTHRESH_I);
521 if (cmd_action == CMD_ACT_GET) {
522 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_GET);
523 } else if (cmd_action == CMD_ACT_SET) {
524 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
525 pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
526 ulTemp = *((u32 *) pdata_buf);
527 *((__le16 *)(pSNMPMIB->value)) =
528 cpu_to_le16((u16) ulTemp);
535 case OID_802_11_RTS_THRESHOLD:
539 pSNMPMIB->oid = cpu_to_le16(RTSTHRESH_I);
541 if (cmd_action == CMD_ACT_GET) {
542 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_GET);
543 } else if (cmd_action == CMD_ACT_SET) {
544 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
545 pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
546 ulTemp = *((u32 *)pdata_buf);
547 *(__le16 *)(pSNMPMIB->value) =
548 cpu_to_le16((u16) ulTemp);
553 case OID_802_11_TX_RETRYCOUNT:
554 pSNMPMIB->oid = cpu_to_le16((u16) SHORT_RETRYLIM_I);
556 if (cmd_action == CMD_ACT_GET) {
557 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_GET);
558 } else if (cmd_action == CMD_ACT_SET) {
559 pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
560 pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
561 *((__le16 *)(pSNMPMIB->value)) =
562 cpu_to_le16((u16) priv->txretrycount);
571 "SNMP_CMD: command=0x%x, size=0x%x, seqnum=0x%x, result=0x%x\n",
572 le16_to_cpu(cmd->command), le16_to_cpu(cmd->size),
573 le16_to_cpu(cmd->seqnum), le16_to_cpu(cmd->result));
576 "SNMP_CMD: action 0x%x, oid 0x%x, oidsize 0x%x, value 0x%x\n",
577 le16_to_cpu(pSNMPMIB->querytype), le16_to_cpu(pSNMPMIB->oid),
578 le16_to_cpu(pSNMPMIB->bufsize),
579 le16_to_cpu(*(__le16 *) pSNMPMIB->value));
581 lbs_deb_leave(LBS_DEB_CMD);
585 static int lbs_cmd_802_11_radio_control(struct lbs_private *priv,
586 struct cmd_ds_command *cmd,
589 struct cmd_ds_802_11_radio_control *pradiocontrol = &cmd->params.radio;
591 lbs_deb_enter(LBS_DEB_CMD);
594 cpu_to_le16((sizeof(struct cmd_ds_802_11_radio_control)) +
596 cmd->command = cpu_to_le16(CMD_802_11_RADIO_CONTROL);
598 pradiocontrol->action = cpu_to_le16(cmd_action);
600 switch (priv->preamble) {
601 case CMD_TYPE_SHORT_PREAMBLE:
602 pradiocontrol->control = cpu_to_le16(SET_SHORT_PREAMBLE);
605 case CMD_TYPE_LONG_PREAMBLE:
606 pradiocontrol->control = cpu_to_le16(SET_LONG_PREAMBLE);
609 case CMD_TYPE_AUTO_PREAMBLE:
611 pradiocontrol->control = cpu_to_le16(SET_AUTO_PREAMBLE);
616 pradiocontrol->control |= cpu_to_le16(TURN_ON_RF);
618 pradiocontrol->control &= cpu_to_le16(~TURN_ON_RF);
620 lbs_deb_leave(LBS_DEB_CMD);
624 static int lbs_cmd_802_11_rf_tx_power(struct lbs_private *priv,
625 struct cmd_ds_command *cmd,
626 u16 cmd_action, void *pdata_buf)
629 struct cmd_ds_802_11_rf_tx_power *prtp = &cmd->params.txp;
631 lbs_deb_enter(LBS_DEB_CMD);
634 cpu_to_le16((sizeof(struct cmd_ds_802_11_rf_tx_power)) + S_DS_GEN);
635 cmd->command = cpu_to_le16(CMD_802_11_RF_TX_POWER);
636 prtp->action = cpu_to_le16(cmd_action);
638 lbs_deb_cmd("RF_TX_POWER_CMD: size:%d cmd:0x%x Act:%d\n",
639 le16_to_cpu(cmd->size), le16_to_cpu(cmd->command),
640 le16_to_cpu(prtp->action));
642 switch (cmd_action) {
643 case CMD_ACT_TX_POWER_OPT_GET:
644 prtp->action = cpu_to_le16(CMD_ACT_GET);
645 prtp->currentlevel = 0;
648 case CMD_ACT_TX_POWER_OPT_SET_HIGH:
649 prtp->action = cpu_to_le16(CMD_ACT_SET);
650 prtp->currentlevel = cpu_to_le16(CMD_ACT_TX_POWER_INDEX_HIGH);
653 case CMD_ACT_TX_POWER_OPT_SET_MID:
654 prtp->action = cpu_to_le16(CMD_ACT_SET);
655 prtp->currentlevel = cpu_to_le16(CMD_ACT_TX_POWER_INDEX_MID);
658 case CMD_ACT_TX_POWER_OPT_SET_LOW:
659 prtp->action = cpu_to_le16(CMD_ACT_SET);
660 prtp->currentlevel = cpu_to_le16(*((u16 *) pdata_buf));
664 lbs_deb_leave(LBS_DEB_CMD);
668 static int lbs_cmd_802_11_monitor_mode(struct lbs_private *priv,
669 struct cmd_ds_command *cmd,
670 u16 cmd_action, void *pdata_buf)
672 struct cmd_ds_802_11_monitor_mode *monitor = &cmd->params.monitor;
674 cmd->command = cpu_to_le16(CMD_802_11_MONITOR_MODE);
676 cpu_to_le16(sizeof(struct cmd_ds_802_11_monitor_mode) +
679 monitor->action = cpu_to_le16(cmd_action);
680 if (cmd_action == CMD_ACT_SET) {
682 cpu_to_le16((u16) (*(u32 *) pdata_buf));
688 static int lbs_cmd_802_11_rate_adapt_rateset(struct lbs_private *priv,
689 struct cmd_ds_command *cmd,
692 struct cmd_ds_802_11_rate_adapt_rateset
693 *rateadapt = &cmd->params.rateset;
695 lbs_deb_enter(LBS_DEB_CMD);
697 cpu_to_le16(sizeof(struct cmd_ds_802_11_rate_adapt_rateset)
699 cmd->command = cpu_to_le16(CMD_802_11_RATE_ADAPT_RATESET);
701 rateadapt->action = cpu_to_le16(cmd_action);
702 rateadapt->enablehwauto = cpu_to_le16(priv->enablehwauto);
703 rateadapt->bitmap = cpu_to_le16(priv->ratebitmap);
705 lbs_deb_leave(LBS_DEB_CMD);
709 static int lbs_cmd_802_11_data_rate(struct lbs_private *priv,
710 struct cmd_ds_command *cmd,
713 struct cmd_ds_802_11_data_rate *pdatarate = &cmd->params.drate;
715 lbs_deb_enter(LBS_DEB_CMD);
717 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_data_rate) +
719 cmd->command = cpu_to_le16(CMD_802_11_DATA_RATE);
720 memset(pdatarate, 0, sizeof(struct cmd_ds_802_11_data_rate));
721 pdatarate->action = cpu_to_le16(cmd_action);
723 if (cmd_action == CMD_ACT_SET_TX_FIX_RATE) {
724 pdatarate->rates[0] = lbs_data_rate_to_fw_index(priv->cur_rate);
725 lbs_deb_cmd("DATA_RATE: set fixed 0x%02X\n",
727 } else if (cmd_action == CMD_ACT_SET_TX_AUTO) {
728 lbs_deb_cmd("DATA_RATE: setting auto\n");
731 lbs_deb_leave(LBS_DEB_CMD);
735 static int lbs_cmd_mac_multicast_adr(struct lbs_private *priv,
736 struct cmd_ds_command *cmd,
739 struct cmd_ds_mac_multicast_adr *pMCastAdr = &cmd->params.madr;
741 lbs_deb_enter(LBS_DEB_CMD);
742 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_mac_multicast_adr) +
744 cmd->command = cpu_to_le16(CMD_MAC_MULTICAST_ADR);
746 lbs_deb_cmd("MULTICAST_ADR: setting %d addresses\n", pMCastAdr->nr_of_adrs);
747 pMCastAdr->action = cpu_to_le16(cmd_action);
748 pMCastAdr->nr_of_adrs =
749 cpu_to_le16((u16) priv->nr_of_multicastmacaddr);
750 memcpy(pMCastAdr->maclist, priv->multicastlist,
751 priv->nr_of_multicastmacaddr * ETH_ALEN);
753 lbs_deb_leave(LBS_DEB_CMD);
757 static int lbs_cmd_802_11_rf_channel(struct lbs_private *priv,
758 struct cmd_ds_command *cmd,
759 int option, void *pdata_buf)
761 struct cmd_ds_802_11_rf_channel *rfchan = &cmd->params.rfchannel;
763 lbs_deb_enter(LBS_DEB_CMD);
764 cmd->command = cpu_to_le16(CMD_802_11_RF_CHANNEL);
765 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_rf_channel) +
768 if (option == CMD_OPT_802_11_RF_CHANNEL_SET) {
769 rfchan->currentchannel = cpu_to_le16(*((u16 *) pdata_buf));
772 rfchan->action = cpu_to_le16(option);
774 lbs_deb_leave(LBS_DEB_CMD);
778 static int lbs_cmd_802_11_rssi(struct lbs_private *priv,
779 struct cmd_ds_command *cmd)
782 lbs_deb_enter(LBS_DEB_CMD);
783 cmd->command = cpu_to_le16(CMD_802_11_RSSI);
784 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_rssi) + S_DS_GEN);
785 cmd->params.rssi.N = cpu_to_le16(DEFAULT_BCN_AVG_FACTOR);
787 /* reset Beacon SNR/NF/RSSI values */
788 priv->SNR[TYPE_BEACON][TYPE_NOAVG] = 0;
789 priv->SNR[TYPE_BEACON][TYPE_AVG] = 0;
790 priv->NF[TYPE_BEACON][TYPE_NOAVG] = 0;
791 priv->NF[TYPE_BEACON][TYPE_AVG] = 0;
792 priv->RSSI[TYPE_BEACON][TYPE_NOAVG] = 0;
793 priv->RSSI[TYPE_BEACON][TYPE_AVG] = 0;
795 lbs_deb_leave(LBS_DEB_CMD);
799 static int lbs_cmd_reg_access(struct lbs_private *priv,
800 struct cmd_ds_command *cmdptr,
801 u8 cmd_action, void *pdata_buf)
803 struct lbs_offset_value *offval;
805 lbs_deb_enter(LBS_DEB_CMD);
807 offval = (struct lbs_offset_value *)pdata_buf;
809 switch (le16_to_cpu(cmdptr->command)) {
810 case CMD_MAC_REG_ACCESS:
812 struct cmd_ds_mac_reg_access *macreg;
815 cpu_to_le16(sizeof (struct cmd_ds_mac_reg_access)
818 (struct cmd_ds_mac_reg_access *)&cmdptr->params.
821 macreg->action = cpu_to_le16(cmd_action);
822 macreg->offset = cpu_to_le16((u16) offval->offset);
823 macreg->value = cpu_to_le32(offval->value);
828 case CMD_BBP_REG_ACCESS:
830 struct cmd_ds_bbp_reg_access *bbpreg;
834 (struct cmd_ds_bbp_reg_access)
837 (struct cmd_ds_bbp_reg_access *)&cmdptr->params.
840 bbpreg->action = cpu_to_le16(cmd_action);
841 bbpreg->offset = cpu_to_le16((u16) offval->offset);
842 bbpreg->value = (u8) offval->value;
847 case CMD_RF_REG_ACCESS:
849 struct cmd_ds_rf_reg_access *rfreg;
853 (struct cmd_ds_rf_reg_access) +
856 (struct cmd_ds_rf_reg_access *)&cmdptr->params.
859 rfreg->action = cpu_to_le16(cmd_action);
860 rfreg->offset = cpu_to_le16((u16) offval->offset);
861 rfreg->value = (u8) offval->value;
870 lbs_deb_leave(LBS_DEB_CMD);
874 static int lbs_cmd_802_11_mac_address(struct lbs_private *priv,
875 struct cmd_ds_command *cmd,
879 lbs_deb_enter(LBS_DEB_CMD);
880 cmd->command = cpu_to_le16(CMD_802_11_MAC_ADDRESS);
881 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_mac_address) +
885 cmd->params.macadd.action = cpu_to_le16(cmd_action);
887 if (cmd_action == CMD_ACT_SET) {
888 memcpy(cmd->params.macadd.macadd,
889 priv->current_addr, ETH_ALEN);
890 lbs_deb_hex(LBS_DEB_CMD, "SET_CMD: MAC addr", priv->current_addr, 6);
893 lbs_deb_leave(LBS_DEB_CMD);
897 static int lbs_cmd_802_11_eeprom_access(struct lbs_private *priv,
898 struct cmd_ds_command *cmd,
899 int cmd_action, void *pdata_buf)
901 struct lbs_ioctl_regrdwr *ea = pdata_buf;
903 lbs_deb_enter(LBS_DEB_CMD);
905 cmd->command = cpu_to_le16(CMD_802_11_EEPROM_ACCESS);
906 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_eeprom_access) +
910 cmd->params.rdeeprom.action = cpu_to_le16(ea->action);
911 cmd->params.rdeeprom.offset = cpu_to_le16(ea->offset);
912 cmd->params.rdeeprom.bytecount = cpu_to_le16(ea->NOB);
913 cmd->params.rdeeprom.value = 0;
915 lbs_deb_leave(LBS_DEB_CMD);
919 static int lbs_cmd_bt_access(struct lbs_private *priv,
920 struct cmd_ds_command *cmd,
921 u16 cmd_action, void *pdata_buf)
923 struct cmd_ds_bt_access *bt_access = &cmd->params.bt;
924 lbs_deb_enter_args(LBS_DEB_CMD, "action %d", cmd_action);
926 cmd->command = cpu_to_le16(CMD_BT_ACCESS);
927 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_bt_access) + S_DS_GEN);
929 bt_access->action = cpu_to_le16(cmd_action);
931 switch (cmd_action) {
932 case CMD_ACT_BT_ACCESS_ADD:
933 memcpy(bt_access->addr1, pdata_buf, 2 * ETH_ALEN);
934 lbs_deb_hex(LBS_DEB_MESH, "BT_ADD: blinded MAC addr", bt_access->addr1, 6);
936 case CMD_ACT_BT_ACCESS_DEL:
937 memcpy(bt_access->addr1, pdata_buf, 1 * ETH_ALEN);
938 lbs_deb_hex(LBS_DEB_MESH, "BT_DEL: blinded MAC addr", bt_access->addr1, 6);
940 case CMD_ACT_BT_ACCESS_LIST:
941 bt_access->id = cpu_to_le32(*(u32 *) pdata_buf);
943 case CMD_ACT_BT_ACCESS_RESET:
945 case CMD_ACT_BT_ACCESS_SET_INVERT:
946 bt_access->id = cpu_to_le32(*(u32 *) pdata_buf);
948 case CMD_ACT_BT_ACCESS_GET_INVERT:
953 lbs_deb_leave(LBS_DEB_CMD);
957 static int lbs_cmd_fwt_access(struct lbs_private *priv,
958 struct cmd_ds_command *cmd,
959 u16 cmd_action, void *pdata_buf)
961 struct cmd_ds_fwt_access *fwt_access = &cmd->params.fwt;
962 lbs_deb_enter_args(LBS_DEB_CMD, "action %d", cmd_action);
964 cmd->command = cpu_to_le16(CMD_FWT_ACCESS);
965 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_fwt_access) + S_DS_GEN);
969 memcpy(fwt_access, pdata_buf, sizeof(*fwt_access));
971 memset(fwt_access, 0, sizeof(*fwt_access));
973 fwt_access->action = cpu_to_le16(cmd_action);
975 lbs_deb_leave(LBS_DEB_CMD);
979 static int lbs_cmd_mesh_access(struct lbs_private *priv,
980 struct cmd_ds_command *cmd,
981 u16 cmd_action, void *pdata_buf)
983 struct cmd_ds_mesh_access *mesh_access = &cmd->params.mesh;
984 lbs_deb_enter_args(LBS_DEB_CMD, "action %d", cmd_action);
986 cmd->command = cpu_to_le16(CMD_MESH_ACCESS);
987 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_mesh_access) + S_DS_GEN);
991 memcpy(mesh_access, pdata_buf, sizeof(*mesh_access));
993 memset(mesh_access, 0, sizeof(*mesh_access));
995 mesh_access->action = cpu_to_le16(cmd_action);
997 lbs_deb_leave(LBS_DEB_CMD);
1001 static int lbs_cmd_bcn_ctrl(struct lbs_private * priv,
1002 struct cmd_ds_command *cmd,
1005 struct cmd_ds_802_11_beacon_control
1006 *bcn_ctrl = &cmd->params.bcn_ctrl;
1008 lbs_deb_enter(LBS_DEB_CMD);
1010 cpu_to_le16(sizeof(struct cmd_ds_802_11_beacon_control)
1012 cmd->command = cpu_to_le16(CMD_802_11_BEACON_CTRL);
1014 bcn_ctrl->action = cpu_to_le16(cmd_action);
1015 bcn_ctrl->beacon_enable = cpu_to_le16(priv->beacon_enable);
1016 bcn_ctrl->beacon_period = cpu_to_le16(priv->beacon_period);
1018 lbs_deb_leave(LBS_DEB_CMD);
1023 * Note: NEVER use lbs_queue_cmd() with addtail==0 other than for
1024 * the command timer, because it does not account for queued commands.
1026 void lbs_queue_cmd(struct lbs_private *priv,
1027 struct cmd_ctrl_node *cmdnode,
1030 unsigned long flags;
1031 struct cmd_ds_command *cmdptr;
1033 lbs_deb_enter(LBS_DEB_HOST);
1036 lbs_deb_host("QUEUE_CMD: cmdnode is NULL\n");
1040 cmdptr = (struct cmd_ds_command *)cmdnode->bufvirtualaddr;
1042 lbs_deb_host("QUEUE_CMD: cmdptr is NULL\n");
1046 /* Exit_PS command needs to be queued in the header always. */
1047 if (le16_to_cpu(cmdptr->command) == CMD_802_11_PS_MODE) {
1048 struct cmd_ds_802_11_ps_mode *psm = &cmdptr->params.psmode;
1049 if (psm->action == cpu_to_le16(CMD_SUBCMD_EXIT_PS)) {
1050 if (priv->psstate != PS_STATE_FULL_POWER)
1055 spin_lock_irqsave(&priv->driver_lock, flags);
1058 list_add_tail(&cmdnode->list, &priv->cmdpendingq);
1060 list_add(&cmdnode->list, &priv->cmdpendingq);
1062 spin_unlock_irqrestore(&priv->driver_lock, flags);
1064 lbs_deb_host("QUEUE_CMD: inserted command 0x%04x into cmdpendingq\n",
1065 le16_to_cpu(((struct cmd_ds_gen*)cmdnode->bufvirtualaddr)->command));
1068 lbs_deb_leave(LBS_DEB_HOST);
1072 * TODO: Fix the issue when DownloadcommandToStation is being called the
1073 * second time when the command times out. All the cmdptr->xxx are in little
1074 * endian and therefore all the comparissions will fail.
1075 * For now - we are not performing the endian conversion the second time - but
1076 * for PS and DEEP_SLEEP we need to worry
1078 static int DownloadcommandToStation(struct lbs_private *priv,
1079 struct cmd_ctrl_node *cmdnode)
1081 unsigned long flags;
1082 struct cmd_ds_command *cmdptr;
1087 lbs_deb_enter(LBS_DEB_HOST);
1089 if (!priv || !cmdnode) {
1090 lbs_deb_host("DNLD_CMD: priv or cmdmode is NULL\n");
1094 cmdptr = (struct cmd_ds_command *)cmdnode->bufvirtualaddr;
1096 spin_lock_irqsave(&priv->driver_lock, flags);
1097 if (!cmdptr || !cmdptr->size) {
1098 lbs_deb_host("DNLD_CMD: cmdptr is NULL or zero\n");
1099 __lbs_cleanup_and_insert_cmd(priv, cmdnode);
1100 spin_unlock_irqrestore(&priv->driver_lock, flags);
1104 priv->cur_cmd = cmdnode;
1105 priv->cur_cmd_retcode = 0;
1106 spin_unlock_irqrestore(&priv->driver_lock, flags);
1108 cmdsize = le16_to_cpu(cmdptr->size);
1109 command = le16_to_cpu(cmdptr->command);
1111 lbs_deb_host("DNLD_CMD: command 0x%04x, size %d, jiffies %lu\n",
1112 command, cmdsize, jiffies);
1113 lbs_deb_hex(LBS_DEB_HOST, "DNLD_CMD", cmdnode->bufvirtualaddr, cmdsize);
1115 cmdnode->cmdwaitqwoken = 0;
1117 ret = priv->hw_host_to_card(priv, MVMS_CMD, (u8 *) cmdptr, cmdsize);
1120 lbs_deb_host("DNLD_CMD: hw_host_to_card failed\n");
1121 spin_lock_irqsave(&priv->driver_lock, flags);
1122 priv->cur_cmd_retcode = ret;
1123 __lbs_cleanup_and_insert_cmd(priv, priv->cur_cmd);
1124 priv->cur_cmd = NULL;
1125 spin_unlock_irqrestore(&priv->driver_lock, flags);
1129 lbs_deb_cmd("DNLD_CMD: sent command 0x%04x, jiffies %lu\n", command, jiffies);
1131 /* Setup the timer after transmit command */
1132 if (command == CMD_802_11_SCAN || command == CMD_802_11_AUTHENTICATE
1133 || command == CMD_802_11_ASSOCIATE)
1134 mod_timer(&priv->command_timer, jiffies + (10*HZ));
1136 mod_timer(&priv->command_timer, jiffies + (5*HZ));
1141 lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1145 static int lbs_cmd_mac_control(struct lbs_private *priv,
1146 struct cmd_ds_command *cmd)
1148 struct cmd_ds_mac_control *mac = &cmd->params.macctrl;
1150 lbs_deb_enter(LBS_DEB_CMD);
1152 cmd->command = cpu_to_le16(CMD_MAC_CONTROL);
1153 cmd->size = cpu_to_le16(sizeof(struct cmd_ds_mac_control) + S_DS_GEN);
1154 mac->action = cpu_to_le16(priv->currentpacketfilter);
1156 lbs_deb_cmd("MAC_CONTROL: action 0x%x, size %d\n",
1157 le16_to_cpu(mac->action), le16_to_cpu(cmd->size));
1159 lbs_deb_leave(LBS_DEB_CMD);
1164 * This function inserts command node to cmdfreeq
1165 * after cleans it. Requires priv->driver_lock held.
1167 void __lbs_cleanup_and_insert_cmd(struct lbs_private *priv,
1168 struct cmd_ctrl_node *ptempcmd)
1174 cleanup_cmdnode(ptempcmd);
1175 list_add_tail(&ptempcmd->list, &priv->cmdfreeq);
1178 static void lbs_cleanup_and_insert_cmd(struct lbs_private *priv,
1179 struct cmd_ctrl_node *ptempcmd)
1181 unsigned long flags;
1183 spin_lock_irqsave(&priv->driver_lock, flags);
1184 __lbs_cleanup_and_insert_cmd(priv, ptempcmd);
1185 spin_unlock_irqrestore(&priv->driver_lock, flags);
1188 int lbs_set_radio_control(struct lbs_private *priv)
1192 lbs_deb_enter(LBS_DEB_CMD);
1194 ret = lbs_prepare_and_send_command(priv,
1195 CMD_802_11_RADIO_CONTROL,
1197 CMD_OPTION_WAITFORRSP, 0, NULL);
1199 lbs_deb_cmd("RADIO_SET: radio %d, preamble %d\n",
1200 priv->radioon, priv->preamble);
1202 lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
1206 int lbs_set_mac_packet_filter(struct lbs_private *priv)
1210 lbs_deb_enter(LBS_DEB_CMD);
1212 /* Send MAC control command to station */
1213 ret = lbs_prepare_and_send_command(priv,
1214 CMD_MAC_CONTROL, 0, 0, 0, NULL);
1216 lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
1221 * @brief This function prepare the command before send to firmware.
1223 * @param priv A pointer to struct lbs_private structure
1224 * @param cmd_no command number
1225 * @param cmd_action command action: GET or SET
1226 * @param wait_option wait option: wait response or not
1227 * @param cmd_oid cmd oid: treated as sub command
1228 * @param pdata_buf A pointer to informaion buffer
1231 int lbs_prepare_and_send_command(struct lbs_private *priv,
1234 u16 wait_option, u32 cmd_oid, void *pdata_buf)
1237 struct cmd_ctrl_node *cmdnode;
1238 struct cmd_ds_command *cmdptr;
1239 unsigned long flags;
1241 lbs_deb_enter(LBS_DEB_HOST);
1244 lbs_deb_host("PREP_CMD: priv is NULL\n");
1249 if (priv->surpriseremoved) {
1250 lbs_deb_host("PREP_CMD: card removed\n");
1255 cmdnode = lbs_get_cmd_ctrl_node(priv);
1257 if (cmdnode == NULL) {
1258 lbs_deb_host("PREP_CMD: cmdnode is NULL\n");
1260 /* Wake up main thread to execute next command */
1261 wake_up_interruptible(&priv->waitq);
1266 lbs_set_cmd_ctrl_node(priv, cmdnode, wait_option, pdata_buf);
1268 cmdptr = (struct cmd_ds_command *)cmdnode->bufvirtualaddr;
1270 lbs_deb_host("PREP_CMD: command 0x%04x\n", cmd_no);
1273 lbs_deb_host("PREP_CMD: cmdptr is NULL\n");
1274 lbs_cleanup_and_insert_cmd(priv, cmdnode);
1279 /* Set sequence number, command and INT option */
1281 cmdptr->seqnum = cpu_to_le16(priv->seqnum);
1283 cmdptr->command = cpu_to_le16(cmd_no);
1287 case CMD_802_11_PS_MODE:
1288 ret = lbs_cmd_802_11_ps_mode(priv, cmdptr, cmd_action);
1291 case CMD_802_11_SCAN:
1292 ret = lbs_cmd_80211_scan(priv, cmdptr, pdata_buf);
1295 case CMD_MAC_CONTROL:
1296 ret = lbs_cmd_mac_control(priv, cmdptr);
1299 case CMD_802_11_ASSOCIATE:
1300 case CMD_802_11_REASSOCIATE:
1301 ret = lbs_cmd_80211_associate(priv, cmdptr, pdata_buf);
1304 case CMD_802_11_DEAUTHENTICATE:
1305 ret = lbs_cmd_80211_deauthenticate(priv, cmdptr);
1308 case CMD_802_11_SET_WEP:
1309 ret = lbs_cmd_802_11_set_wep(priv, cmdptr, cmd_action, pdata_buf);
1312 case CMD_802_11_AD_HOC_START:
1313 ret = lbs_cmd_80211_ad_hoc_start(priv, cmdptr, pdata_buf);
1318 case CMD_802_11_RESET:
1319 ret = lbs_cmd_802_11_reset(priv, cmdptr, cmd_action);
1322 case CMD_802_11_GET_LOG:
1323 ret = lbs_cmd_802_11_get_log(priv, cmdptr);
1326 case CMD_802_11_AUTHENTICATE:
1327 ret = lbs_cmd_80211_authenticate(priv, cmdptr, pdata_buf);
1330 case CMD_802_11_GET_STAT:
1331 ret = lbs_cmd_802_11_get_stat(priv, cmdptr);
1334 case CMD_802_11_SNMP_MIB:
1335 ret = lbs_cmd_802_11_snmp_mib(priv, cmdptr,
1336 cmd_action, cmd_oid, pdata_buf);
1339 case CMD_MAC_REG_ACCESS:
1340 case CMD_BBP_REG_ACCESS:
1341 case CMD_RF_REG_ACCESS:
1342 ret = lbs_cmd_reg_access(priv, cmdptr, cmd_action, pdata_buf);
1345 case CMD_802_11_RF_CHANNEL:
1346 ret = lbs_cmd_802_11_rf_channel(priv, cmdptr,
1347 cmd_action, pdata_buf);
1350 case CMD_802_11_RF_TX_POWER:
1351 ret = lbs_cmd_802_11_rf_tx_power(priv, cmdptr,
1352 cmd_action, pdata_buf);
1355 case CMD_802_11_RADIO_CONTROL:
1356 ret = lbs_cmd_802_11_radio_control(priv, cmdptr, cmd_action);
1359 case CMD_802_11_DATA_RATE:
1360 ret = lbs_cmd_802_11_data_rate(priv, cmdptr, cmd_action);
1362 case CMD_802_11_RATE_ADAPT_RATESET:
1363 ret = lbs_cmd_802_11_rate_adapt_rateset(priv,
1364 cmdptr, cmd_action);
1367 case CMD_MAC_MULTICAST_ADR:
1368 ret = lbs_cmd_mac_multicast_adr(priv, cmdptr, cmd_action);
1371 case CMD_802_11_MONITOR_MODE:
1372 ret = lbs_cmd_802_11_monitor_mode(priv, cmdptr,
1373 cmd_action, pdata_buf);
1376 case CMD_802_11_AD_HOC_JOIN:
1377 ret = lbs_cmd_80211_ad_hoc_join(priv, cmdptr, pdata_buf);
1380 case CMD_802_11_RSSI:
1381 ret = lbs_cmd_802_11_rssi(priv, cmdptr);
1384 case CMD_802_11_AD_HOC_STOP:
1385 ret = lbs_cmd_80211_ad_hoc_stop(priv, cmdptr);
1388 case CMD_802_11_ENABLE_RSN:
1389 ret = lbs_cmd_802_11_enable_rsn(priv, cmdptr, cmd_action,
1393 case CMD_802_11_KEY_MATERIAL:
1394 ret = lbs_cmd_802_11_key_material(priv, cmdptr, cmd_action,
1395 cmd_oid, pdata_buf);
1398 case CMD_802_11_PAIRWISE_TSC:
1400 case CMD_802_11_GROUP_TSC:
1403 case CMD_802_11_MAC_ADDRESS:
1404 ret = lbs_cmd_802_11_mac_address(priv, cmdptr, cmd_action);
1407 case CMD_802_11_EEPROM_ACCESS:
1408 ret = lbs_cmd_802_11_eeprom_access(priv, cmdptr,
1409 cmd_action, pdata_buf);
1412 case CMD_802_11_SET_AFC:
1413 case CMD_802_11_GET_AFC:
1415 cmdptr->command = cpu_to_le16(cmd_no);
1416 cmdptr->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_afc) +
1419 memmove(&cmdptr->params.afc,
1420 pdata_buf, sizeof(struct cmd_ds_802_11_afc));
1425 case CMD_802_11D_DOMAIN_INFO:
1426 ret = lbs_cmd_802_11d_domain_info(priv, cmdptr,
1427 cmd_no, cmd_action);
1430 case CMD_802_11_SLEEP_PARAMS:
1431 ret = lbs_cmd_802_11_sleep_params(priv, cmdptr, cmd_action);
1433 case CMD_802_11_INACTIVITY_TIMEOUT:
1434 ret = lbs_cmd_802_11_inactivity_timeout(priv, cmdptr,
1435 cmd_action, pdata_buf);
1436 lbs_set_cmd_ctrl_node(priv, cmdnode, 0, pdata_buf);
1439 case CMD_802_11_TPC_CFG:
1440 cmdptr->command = cpu_to_le16(CMD_802_11_TPC_CFG);
1442 cpu_to_le16(sizeof(struct cmd_ds_802_11_tpc_cfg) +
1445 memmove(&cmdptr->params.tpccfg,
1446 pdata_buf, sizeof(struct cmd_ds_802_11_tpc_cfg));
1450 case CMD_802_11_LED_GPIO_CTRL:
1452 struct mrvlietypes_ledgpio *gpio =
1453 (struct mrvlietypes_ledgpio*)
1454 cmdptr->params.ledgpio.data;
1456 memmove(&cmdptr->params.ledgpio,
1458 sizeof(struct cmd_ds_802_11_led_ctrl));
1461 cpu_to_le16(CMD_802_11_LED_GPIO_CTRL);
1463 #define ACTION_NUMLED_TLVTYPE_LEN_FIELDS_LEN 8
1465 cpu_to_le16(le16_to_cpu(gpio->header.len)
1467 + ACTION_NUMLED_TLVTYPE_LEN_FIELDS_LEN);
1468 gpio->header.len = gpio->header.len;
1473 case CMD_802_11_SUBSCRIBE_EVENT:
1474 lbs_cmd_802_11_subscribe_event(priv, cmdptr,
1475 cmd_action, pdata_buf);
1477 case CMD_802_11_PWR_CFG:
1478 cmdptr->command = cpu_to_le16(CMD_802_11_PWR_CFG);
1480 cpu_to_le16(sizeof(struct cmd_ds_802_11_pwr_cfg) +
1482 memmove(&cmdptr->params.pwrcfg, pdata_buf,
1483 sizeof(struct cmd_ds_802_11_pwr_cfg));
1488 ret = lbs_cmd_bt_access(priv, cmdptr, cmd_action, pdata_buf);
1491 case CMD_FWT_ACCESS:
1492 ret = lbs_cmd_fwt_access(priv, cmdptr, cmd_action, pdata_buf);
1495 case CMD_MESH_ACCESS:
1496 ret = lbs_cmd_mesh_access(priv, cmdptr, cmd_action, pdata_buf);
1500 cmdptr->command = cpu_to_le16(CMD_GET_TSF);
1501 cmdptr->size = cpu_to_le16(sizeof(struct cmd_ds_get_tsf) +
1505 case CMD_802_11_BEACON_CTRL:
1506 ret = lbs_cmd_bcn_ctrl(priv, cmdptr, cmd_action);
1509 lbs_deb_host("PREP_CMD: unknown command 0x%04x\n", cmd_no);
1514 /* return error, since the command preparation failed */
1516 lbs_deb_host("PREP_CMD: command preparation failed\n");
1517 lbs_cleanup_and_insert_cmd(priv, cmdnode);
1522 cmdnode->cmdwaitqwoken = 0;
1524 lbs_queue_cmd(priv, cmdnode, 1);
1525 wake_up_interruptible(&priv->waitq);
1527 if (wait_option & CMD_OPTION_WAITFORRSP) {
1528 lbs_deb_host("PREP_CMD: wait for response\n");
1530 wait_event_interruptible(cmdnode->cmdwait_q,
1531 cmdnode->cmdwaitqwoken);
1534 spin_lock_irqsave(&priv->driver_lock, flags);
1535 if (priv->cur_cmd_retcode) {
1536 lbs_deb_host("PREP_CMD: command failed with return code %d\n",
1537 priv->cur_cmd_retcode);
1538 priv->cur_cmd_retcode = 0;
1541 spin_unlock_irqrestore(&priv->driver_lock, flags);
1544 lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1547 EXPORT_SYMBOL_GPL(lbs_prepare_and_send_command);
1550 * @brief This function allocates the command buffer and link
1551 * it to command free queue.
1553 * @param priv A pointer to struct lbs_private structure
1556 int lbs_allocate_cmd_buffer(struct lbs_private *priv)
1561 struct cmd_ctrl_node *tempcmd_array;
1562 u8 *ptempvirtualaddr;
1564 lbs_deb_enter(LBS_DEB_HOST);
1566 /* Allocate and initialize cmdCtrlNode */
1567 ulbufsize = sizeof(struct cmd_ctrl_node) * MRVDRV_NUM_OF_CMD_BUFFER;
1569 if (!(tempcmd_array = kzalloc(ulbufsize, GFP_KERNEL))) {
1570 lbs_deb_host("ALLOC_CMD_BUF: tempcmd_array is NULL\n");
1574 priv->cmd_array = tempcmd_array;
1576 /* Allocate and initialize command buffers */
1577 ulbufsize = MRVDRV_SIZE_OF_CMD_BUFFER;
1578 for (i = 0; i < MRVDRV_NUM_OF_CMD_BUFFER; i++) {
1579 if (!(ptempvirtualaddr = kzalloc(ulbufsize, GFP_KERNEL))) {
1580 lbs_deb_host("ALLOC_CMD_BUF: ptempvirtualaddr is NULL\n");
1585 /* Update command buffer virtual */
1586 tempcmd_array[i].bufvirtualaddr = ptempvirtualaddr;
1589 for (i = 0; i < MRVDRV_NUM_OF_CMD_BUFFER; i++) {
1590 init_waitqueue_head(&tempcmd_array[i].cmdwait_q);
1591 lbs_cleanup_and_insert_cmd(priv, &tempcmd_array[i]);
1597 lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1602 * @brief This function frees the command buffer.
1604 * @param priv A pointer to struct lbs_private structure
1607 int lbs_free_cmd_buffer(struct lbs_private *priv)
1609 u32 ulbufsize; /* Someone needs to die for this. Slowly and painfully */
1611 struct cmd_ctrl_node *tempcmd_array;
1613 lbs_deb_enter(LBS_DEB_HOST);
1615 /* need to check if cmd array is allocated or not */
1616 if (priv->cmd_array == NULL) {
1617 lbs_deb_host("FREE_CMD_BUF: cmd_array is NULL\n");
1621 tempcmd_array = priv->cmd_array;
1623 /* Release shared memory buffers */
1624 ulbufsize = MRVDRV_SIZE_OF_CMD_BUFFER;
1625 for (i = 0; i < MRVDRV_NUM_OF_CMD_BUFFER; i++) {
1626 if (tempcmd_array[i].bufvirtualaddr) {
1627 kfree(tempcmd_array[i].bufvirtualaddr);
1628 tempcmd_array[i].bufvirtualaddr = NULL;
1632 /* Release cmd_ctrl_node */
1633 if (priv->cmd_array) {
1634 kfree(priv->cmd_array);
1635 priv->cmd_array = NULL;
1639 lbs_deb_leave(LBS_DEB_HOST);
1644 * @brief This function gets a free command node if available in
1645 * command free queue.
1647 * @param priv A pointer to struct lbs_private structure
1648 * @return cmd_ctrl_node A pointer to cmd_ctrl_node structure or NULL
1650 struct cmd_ctrl_node *lbs_get_cmd_ctrl_node(struct lbs_private *priv)
1652 struct cmd_ctrl_node *tempnode;
1653 unsigned long flags;
1655 lbs_deb_enter(LBS_DEB_HOST);
1660 spin_lock_irqsave(&priv->driver_lock, flags);
1662 if (!list_empty(&priv->cmdfreeq)) {
1663 tempnode = list_first_entry(&priv->cmdfreeq,
1664 struct cmd_ctrl_node, list);
1665 list_del(&tempnode->list);
1667 lbs_deb_host("GET_CMD_NODE: cmd_ctrl_node is not available\n");
1671 spin_unlock_irqrestore(&priv->driver_lock, flags);
1674 cleanup_cmdnode(tempnode);
1676 lbs_deb_leave(LBS_DEB_HOST);
1681 * @brief This function cleans command node.
1683 * @param ptempnode A pointer to cmdCtrlNode structure
1686 static void cleanup_cmdnode(struct cmd_ctrl_node *ptempnode)
1688 lbs_deb_enter(LBS_DEB_HOST);
1692 ptempnode->cmdwaitqwoken = 1;
1693 wake_up_interruptible(&ptempnode->cmdwait_q);
1694 ptempnode->wait_option = 0;
1695 ptempnode->pdata_buf = NULL;
1696 ptempnode->callback = NULL;
1697 ptempnode->callback_arg = 0;
1699 if (ptempnode->bufvirtualaddr != NULL)
1700 memset(ptempnode->bufvirtualaddr, 0, MRVDRV_SIZE_OF_CMD_BUFFER);
1702 lbs_deb_leave(LBS_DEB_HOST);
1706 * @brief This function initializes the command node.
1708 * @param priv A pointer to struct lbs_private structure
1709 * @param ptempnode A pointer to cmd_ctrl_node structure
1710 * @param wait_option wait option: wait response or not
1711 * @param pdata_buf A pointer to informaion buffer
1714 void lbs_set_cmd_ctrl_node(struct lbs_private *priv,
1715 struct cmd_ctrl_node *ptempnode,
1716 u16 wait_option, void *pdata_buf)
1718 lbs_deb_enter(LBS_DEB_HOST);
1723 ptempnode->wait_option = wait_option;
1724 ptempnode->pdata_buf = pdata_buf;
1725 ptempnode->callback = NULL;
1726 ptempnode->callback_arg = 0;
1728 lbs_deb_leave(LBS_DEB_HOST);
1732 * @brief This function executes next command in command
1733 * pending queue. It will put fimware back to PS mode
1736 * @param priv A pointer to struct lbs_private structure
1739 int lbs_execute_next_command(struct lbs_private *priv)
1741 struct cmd_ctrl_node *cmdnode = NULL;
1742 struct cmd_ds_command *cmdptr;
1743 unsigned long flags;
1746 // Debug group is LBS_DEB_THREAD and not LBS_DEB_HOST, because the
1747 // only caller to us is lbs_thread() and we get even when a
1748 // data packet is received
1749 lbs_deb_enter(LBS_DEB_THREAD);
1751 spin_lock_irqsave(&priv->driver_lock, flags);
1753 if (priv->cur_cmd) {
1754 lbs_pr_alert( "EXEC_NEXT_CMD: already processing command!\n");
1755 spin_unlock_irqrestore(&priv->driver_lock, flags);
1760 if (!list_empty(&priv->cmdpendingq)) {
1761 cmdnode = list_first_entry(&priv->cmdpendingq,
1762 struct cmd_ctrl_node, list);
1765 spin_unlock_irqrestore(&priv->driver_lock, flags);
1768 cmdptr = (struct cmd_ds_command *)cmdnode->bufvirtualaddr;
1770 if (is_command_allowed_in_ps(le16_to_cpu(cmdptr->command))) {
1771 if ((priv->psstate == PS_STATE_SLEEP) ||
1772 (priv->psstate == PS_STATE_PRE_SLEEP)) {
1774 "EXEC_NEXT_CMD: cannot send cmd 0x%04x in psstate %d\n",
1775 le16_to_cpu(cmdptr->command),
1780 lbs_deb_host("EXEC_NEXT_CMD: OK to send command "
1781 "0x%04x in psstate %d\n",
1782 le16_to_cpu(cmdptr->command),
1784 } else if (priv->psstate != PS_STATE_FULL_POWER) {
1786 * 1. Non-PS command:
1787 * Queue it. set needtowakeup to TRUE if current state
1788 * is SLEEP, otherwise call lbs_ps_wakeup to send Exit_PS.
1789 * 2. PS command but not Exit_PS:
1791 * 3. PS command Exit_PS:
1792 * Set needtowakeup to TRUE if current state is SLEEP,
1793 * otherwise send this command down to firmware
1796 if (cmdptr->command !=
1797 cpu_to_le16(CMD_802_11_PS_MODE)) {
1798 /* Prepare to send Exit PS,
1799 * this non PS command will be sent later */
1800 if ((priv->psstate == PS_STATE_SLEEP)
1801 || (priv->psstate == PS_STATE_PRE_SLEEP)
1803 /* w/ new scheme, it will not reach here.
1804 since it is blocked in main_thread. */
1805 priv->needtowakeup = 1;
1807 lbs_ps_wakeup(priv, 0);
1813 * PS command. Ignore it if it is not Exit_PS.
1814 * otherwise send it down immediately.
1816 struct cmd_ds_802_11_ps_mode *psm =
1817 &cmdptr->params.psmode;
1820 "EXEC_NEXT_CMD: PS cmd, action 0x%02x\n",
1823 cpu_to_le16(CMD_SUBCMD_EXIT_PS)) {
1825 "EXEC_NEXT_CMD: ignore ENTER_PS cmd\n");
1826 list_del(&cmdnode->list);
1827 lbs_cleanup_and_insert_cmd(priv, cmdnode);
1833 if ((priv->psstate == PS_STATE_SLEEP) ||
1834 (priv->psstate == PS_STATE_PRE_SLEEP)) {
1836 "EXEC_NEXT_CMD: ignore EXIT_PS cmd in sleep\n");
1837 list_del(&cmdnode->list);
1838 lbs_cleanup_and_insert_cmd(priv, cmdnode);
1839 priv->needtowakeup = 1;
1846 "EXEC_NEXT_CMD: sending EXIT_PS\n");
1849 list_del(&cmdnode->list);
1850 lbs_deb_host("EXEC_NEXT_CMD: sending command 0x%04x\n",
1851 le16_to_cpu(cmdptr->command));
1852 DownloadcommandToStation(priv, cmdnode);
1855 * check if in power save mode, if yes, put the device back
1858 if ((priv->psmode != LBS802_11POWERMODECAM) &&
1859 (priv->psstate == PS_STATE_FULL_POWER) &&
1860 ((priv->connect_status == LBS_CONNECTED) ||
1861 (priv->mesh_connect_status == LBS_CONNECTED))) {
1862 if (priv->secinfo.WPAenabled ||
1863 priv->secinfo.WPA2enabled) {
1864 /* check for valid WPA group keys */
1865 if (priv->wpa_mcast_key.len ||
1866 priv->wpa_unicast_key.len) {
1868 "EXEC_NEXT_CMD: WPA enabled and GTK_SET"
1869 " go back to PS_SLEEP");
1870 lbs_ps_sleep(priv, 0);
1874 "EXEC_NEXT_CMD: cmdpendingq empty, "
1875 "go back to PS_SLEEP");
1876 lbs_ps_sleep(priv, 0);
1883 lbs_deb_leave(LBS_DEB_THREAD);
1887 void lbs_send_iwevcustom_event(struct lbs_private *priv, s8 *str)
1889 union iwreq_data iwrq;
1892 lbs_deb_enter(LBS_DEB_WEXT);
1894 memset(&iwrq, 0, sizeof(union iwreq_data));
1895 memset(buf, 0, sizeof(buf));
1897 snprintf(buf, sizeof(buf) - 1, "%s", str);
1899 iwrq.data.length = strlen(buf) + 1 + IW_EV_LCP_LEN;
1901 /* Send Event to upper layer */
1902 lbs_deb_wext("event indication string %s\n", (char *)buf);
1903 lbs_deb_wext("event indication length %d\n", iwrq.data.length);
1904 lbs_deb_wext("sending wireless event IWEVCUSTOM for %s\n", str);
1906 wireless_send_event(priv->dev, IWEVCUSTOM, &iwrq, buf);
1908 lbs_deb_leave(LBS_DEB_WEXT);
1911 static int sendconfirmsleep(struct lbs_private *priv, u8 *cmdptr, u16 size)
1913 unsigned long flags;
1916 lbs_deb_enter(LBS_DEB_HOST);
1918 lbs_deb_host("SEND_SLEEPC_CMD: before download, cmd size %d\n",
1921 lbs_deb_hex(LBS_DEB_HOST, "sleep confirm command", cmdptr, size);
1923 ret = priv->hw_host_to_card(priv, MVMS_CMD, cmdptr, size);
1924 priv->dnld_sent = DNLD_RES_RECEIVED;
1926 spin_lock_irqsave(&priv->driver_lock, flags);
1927 if (priv->intcounter || priv->currenttxskb)
1928 lbs_deb_host("SEND_SLEEPC_CMD: intcounter %d, currenttxskb %p\n",
1929 priv->intcounter, priv->currenttxskb);
1930 spin_unlock_irqrestore(&priv->driver_lock, flags);
1934 "SEND_SLEEPC_CMD: Host to Card failed for Confirm Sleep\n");
1936 spin_lock_irqsave(&priv->driver_lock, flags);
1937 if (!priv->intcounter) {
1938 priv->psstate = PS_STATE_SLEEP;
1940 lbs_deb_host("SEND_SLEEPC_CMD: after sent, intcounter %d\n",
1943 spin_unlock_irqrestore(&priv->driver_lock, flags);
1945 lbs_deb_host("SEND_SLEEPC_CMD: sent confirm sleep\n");
1948 lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1952 void lbs_ps_sleep(struct lbs_private *priv, int wait_option)
1954 lbs_deb_enter(LBS_DEB_HOST);
1957 * PS is currently supported only in Infrastructure mode
1958 * Remove this check if it is to be supported in IBSS mode also
1961 lbs_prepare_and_send_command(priv, CMD_802_11_PS_MODE,
1962 CMD_SUBCMD_ENTER_PS, wait_option, 0, NULL);
1964 lbs_deb_leave(LBS_DEB_HOST);
1968 * @brief This function sends Exit_PS command to firmware.
1970 * @param priv A pointer to struct lbs_private structure
1971 * @param wait_option wait response or not
1974 void lbs_ps_wakeup(struct lbs_private *priv, int wait_option)
1978 lbs_deb_enter(LBS_DEB_HOST);
1980 Localpsmode = cpu_to_le32(LBS802_11POWERMODECAM);
1982 lbs_prepare_and_send_command(priv, CMD_802_11_PS_MODE,
1984 wait_option, 0, &Localpsmode);
1986 lbs_deb_leave(LBS_DEB_HOST);
1990 * @brief This function checks condition and prepares to
1991 * send sleep confirm command to firmware if ok.
1993 * @param priv A pointer to struct lbs_private structure
1994 * @param psmode Power Saving mode
1997 void lbs_ps_confirm_sleep(struct lbs_private *priv, u16 psmode)
1999 unsigned long flags =0;
2002 lbs_deb_enter(LBS_DEB_HOST);
2004 if (priv->dnld_sent) {
2006 lbs_deb_host("dnld_sent was set");
2009 spin_lock_irqsave(&priv->driver_lock, flags);
2010 if (priv->cur_cmd) {
2012 lbs_deb_host("cur_cmd was set");
2014 if (priv->intcounter > 0) {
2016 lbs_deb_host("intcounter %d", priv->intcounter);
2018 spin_unlock_irqrestore(&priv->driver_lock, flags);
2021 lbs_deb_host("sending lbs_ps_confirm_sleep\n");
2022 sendconfirmsleep(priv, (u8 *) & priv->lbs_ps_confirm_sleep,
2023 sizeof(struct PS_CMD_ConfirmSleep));
2025 lbs_deb_host("sleep confirm has been delayed\n");
2028 lbs_deb_leave(LBS_DEB_HOST);
2033 * @brief Simple callback that copies response back into command
2035 * @param priv A pointer to struct lbs_private structure
2036 * @param extra A pointer to the original command structure for which
2037 * 'resp' is a response
2038 * @param resp A pointer to the command response
2040 * @return 0 on success, error on failure
2042 int lbs_cmd_copyback(struct lbs_private *priv, unsigned long extra,
2043 struct cmd_header *resp)
2045 struct cmd_header *buf = (void *)extra;
2048 lbs_deb_enter(LBS_DEB_CMD);
2050 copy_len = min(le16_to_cpu(buf->size), le16_to_cpu(resp->size));
2051 lbs_deb_cmd("Copying back %u bytes; command response was %u bytes, "
2052 "copy back buffer was %u bytes", copy_len, resp->size,
2054 memcpy(buf, resp, copy_len);
2056 lbs_deb_leave(LBS_DEB_CMD);
2061 * @brief Simple way to call firmware functions
2063 * @param priv A pointer to struct lbs_private structure
2064 * @param psmode one of the many CMD_802_11_xxxx
2065 * @param cmd pointer to the parameters structure for above command
2066 * (this should not include the command, size, sequence
2067 * and result fields from struct cmd_ds_gen)
2068 * @param cmd_size size structure pointed to by cmd
2069 * @param rsp pointer to an area where the result should be placed
2070 * @param rsp_size pointer to the size of the rsp area. If the firmware
2071 * returns fewer bytes, then this *rsp_size will be
2072 * changed to the actual size.
2073 * @return -1 in case of a higher level error, otherwise
2074 * the result code from the firmware
2076 int __lbs_cmd(struct lbs_private *priv, uint16_t command,
2077 struct cmd_header *in_cmd, int in_cmd_size,
2078 int (*callback)(struct lbs_private *, unsigned long, struct cmd_header *),
2079 unsigned long callback_arg)
2081 struct cmd_ctrl_node *cmdnode;
2082 struct cmd_header *send_cmd;
2083 unsigned long flags;
2086 lbs_deb_enter(LBS_DEB_HOST);
2089 lbs_deb_host("PREP_CMD: priv is NULL\n");
2094 if (priv->surpriseremoved) {
2095 lbs_deb_host("PREP_CMD: card removed\n");
2100 cmdnode = lbs_get_cmd_ctrl_node(priv);
2101 if (cmdnode == NULL) {
2102 lbs_deb_host("PREP_CMD: cmdnode is NULL\n");
2104 /* Wake up main thread to execute next command */
2105 wake_up_interruptible(&priv->waitq);
2110 send_cmd = (struct cmd_header *) cmdnode->bufvirtualaddr;
2111 cmdnode->wait_option = CMD_OPTION_WAITFORRSP;
2112 cmdnode->callback = callback;
2113 cmdnode->callback_arg = callback_arg;
2115 /* Copy the incoming command to the buffer */
2116 memcpy(send_cmd, in_cmd, in_cmd_size);
2118 /* Set sequence number, clean result, move to buffer */
2120 send_cmd->command = cpu_to_le16(command);
2121 send_cmd->size = cpu_to_le16(in_cmd_size);
2122 send_cmd->seqnum = cpu_to_le16(priv->seqnum);
2123 send_cmd->result = 0;
2125 lbs_deb_host("PREP_CMD: command 0x%04x\n", command);
2127 /* here was the big old switch() statement, which is now obsolete,
2128 * because the caller of lbs_cmd() sets up all of *cmd for us. */
2130 cmdnode->cmdwaitqwoken = 0;
2131 lbs_queue_cmd(priv, cmdnode, 1);
2132 wake_up_interruptible(&priv->waitq);
2135 wait_event_interruptible(cmdnode->cmdwait_q, cmdnode->cmdwaitqwoken);
2137 spin_lock_irqsave(&priv->driver_lock, flags);
2138 if (priv->cur_cmd_retcode) {
2139 lbs_deb_host("PREP_CMD: command failed with return code %d\n",
2140 priv->cur_cmd_retcode);
2141 priv->cur_cmd_retcode = 0;
2144 spin_unlock_irqrestore(&priv->driver_lock, flags);
2147 lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
2150 EXPORT_SYMBOL_GPL(__lbs_cmd);