Merge branch 'master' of git://git.kernel.org/pub/scm/linux/kernel/git/linville/wirel...
[pandora-kernel.git] / drivers / infiniband / hw / nes / nes_cm.c
1 /*
2  * Copyright (c) 2006 - 2008 NetEffect, Inc. All rights reserved.
3  *
4  * This software is available to you under a choice of one of two
5  * licenses.  You may choose to be licensed under the terms of the GNU
6  * General Public License (GPL) Version 2, available from the file
7  * COPYING in the main directory of this source tree, or the
8  * OpenIB.org BSD license below:
9  *
10  *     Redistribution and use in source and binary forms, with or
11  *     without modification, are permitted provided that the following
12  *     conditions are met:
13  *
14  *      - Redistributions of source code must retain the above
15  *        copyright notice, this list of conditions and the following
16  *        disclaimer.
17  *
18  *      - Redistributions in binary form must reproduce the above
19  *        copyright notice, this list of conditions and the following
20  *        disclaimer in the documentation and/or other materials
21  *        provided with the distribution.
22  *
23  * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
24  * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
25  * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
26  * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS
27  * BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN
28  * ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN
29  * CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
30  * SOFTWARE.
31  *
32  */
33
34
35 #define TCPOPT_TIMESTAMP 8
36
37 #include <asm/atomic.h>
38 #include <linux/skbuff.h>
39 #include <linux/ip.h>
40 #include <linux/tcp.h>
41 #include <linux/init.h>
42 #include <linux/if_arp.h>
43 #include <linux/if_vlan.h>
44 #include <linux/notifier.h>
45 #include <linux/net.h>
46 #include <linux/types.h>
47 #include <linux/timer.h>
48 #include <linux/time.h>
49 #include <linux/delay.h>
50 #include <linux/etherdevice.h>
51 #include <linux/netdevice.h>
52 #include <linux/random.h>
53 #include <linux/list.h>
54 #include <linux/threads.h>
55
56 #include <net/neighbour.h>
57 #include <net/route.h>
58 #include <net/ip_fib.h>
59
60 #include "nes.h"
61
62 u32 cm_packets_sent;
63 u32 cm_packets_bounced;
64 u32 cm_packets_dropped;
65 u32 cm_packets_retrans;
66 u32 cm_packets_created;
67 u32 cm_packets_received;
68 u32 cm_listens_created;
69 u32 cm_listens_destroyed;
70 u32 cm_backlog_drops;
71 atomic_t cm_loopbacks;
72 atomic_t cm_nodes_created;
73 atomic_t cm_nodes_destroyed;
74 atomic_t cm_accel_dropped_pkts;
75 atomic_t cm_resets_recvd;
76
77 static inline int mini_cm_accelerated(struct nes_cm_core *,
78         struct nes_cm_node *);
79 static struct nes_cm_listener *mini_cm_listen(struct nes_cm_core *,
80         struct nes_vnic *, struct nes_cm_info *);
81 static int mini_cm_del_listen(struct nes_cm_core *, struct nes_cm_listener *);
82 static struct nes_cm_node *mini_cm_connect(struct nes_cm_core *,
83         struct nes_vnic *, u16, void *, struct nes_cm_info *);
84 static int mini_cm_close(struct nes_cm_core *, struct nes_cm_node *);
85 static int mini_cm_accept(struct nes_cm_core *, struct ietf_mpa_frame *,
86         struct nes_cm_node *);
87 static int mini_cm_reject(struct nes_cm_core *, struct ietf_mpa_frame *,
88         struct nes_cm_node *);
89 static void mini_cm_recv_pkt(struct nes_cm_core *, struct nes_vnic *,
90         struct sk_buff *);
91 static int mini_cm_dealloc_core(struct nes_cm_core *);
92 static int mini_cm_get(struct nes_cm_core *);
93 static int mini_cm_set(struct nes_cm_core *, u32, u32);
94
95 static struct sk_buff *form_cm_frame(struct sk_buff *, struct nes_cm_node *,
96         void *, u32, void *, u32, u8);
97 static struct sk_buff *get_free_pkt(struct nes_cm_node *cm_node);
98 static int add_ref_cm_node(struct nes_cm_node *);
99 static int rem_ref_cm_node(struct nes_cm_core *, struct nes_cm_node *);
100
101 static int nes_cm_disconn_true(struct nes_qp *);
102 static int nes_cm_post_event(struct nes_cm_event *event);
103 static int nes_disconnect(struct nes_qp *nesqp, int abrupt);
104 static void nes_disconnect_worker(struct work_struct *work);
105
106 static int send_mpa_request(struct nes_cm_node *, struct sk_buff *);
107 static int send_syn(struct nes_cm_node *, u32, struct sk_buff *);
108 static int send_reset(struct nes_cm_node *, struct sk_buff *);
109 static int send_ack(struct nes_cm_node *cm_node, struct sk_buff *skb);
110 static int send_fin(struct nes_cm_node *cm_node, struct sk_buff *skb);
111 static void process_packet(struct nes_cm_node *, struct sk_buff *,
112         struct nes_cm_core *);
113
114 static void active_open_err(struct nes_cm_node *, struct sk_buff *, int);
115 static void passive_open_err(struct nes_cm_node *, struct sk_buff *, int);
116 static void cleanup_retrans_entry(struct nes_cm_node *);
117 static void handle_rcv_mpa(struct nes_cm_node *, struct sk_buff *,
118         enum nes_cm_event_type);
119 static void free_retrans_entry(struct nes_cm_node *cm_node);
120 static int handle_tcp_options(struct nes_cm_node *cm_node, struct tcphdr *tcph,
121         struct sk_buff *skb, int optionsize, int passive);
122
123 /* CM event handler functions */
124 static void cm_event_connected(struct nes_cm_event *);
125 static void cm_event_connect_error(struct nes_cm_event *);
126 static void cm_event_reset(struct nes_cm_event *);
127 static void cm_event_mpa_req(struct nes_cm_event *);
128
129 static void print_core(struct nes_cm_core *core);
130
131 /* External CM API Interface */
132 /* instance of function pointers for client API */
133 /* set address of this instance to cm_core->cm_ops at cm_core alloc */
134 static struct nes_cm_ops nes_cm_api = {
135         mini_cm_accelerated,
136         mini_cm_listen,
137         mini_cm_del_listen,
138         mini_cm_connect,
139         mini_cm_close,
140         mini_cm_accept,
141         mini_cm_reject,
142         mini_cm_recv_pkt,
143         mini_cm_dealloc_core,
144         mini_cm_get,
145         mini_cm_set
146 };
147
148 static struct nes_cm_core *g_cm_core;
149
150 atomic_t cm_connects;
151 atomic_t cm_accepts;
152 atomic_t cm_disconnects;
153 atomic_t cm_closes;
154 atomic_t cm_connecteds;
155 atomic_t cm_connect_reqs;
156 atomic_t cm_rejects;
157
158
159 /**
160  * create_event
161  */
162 static struct nes_cm_event *create_event(struct nes_cm_node *cm_node,
163                 enum nes_cm_event_type type)
164 {
165         struct nes_cm_event *event;
166
167         if (!cm_node->cm_id)
168                 return NULL;
169
170         /* allocate an empty event */
171         event = kzalloc(sizeof(*event), GFP_ATOMIC);
172
173         if (!event)
174                 return NULL;
175
176         event->type = type;
177         event->cm_node = cm_node;
178         event->cm_info.rem_addr = cm_node->rem_addr;
179         event->cm_info.loc_addr = cm_node->loc_addr;
180         event->cm_info.rem_port = cm_node->rem_port;
181         event->cm_info.loc_port = cm_node->loc_port;
182         event->cm_info.cm_id = cm_node->cm_id;
183
184         nes_debug(NES_DBG_CM, "cm_node=%p Created event=%p, type=%u, "
185                 "dst_addr=%08x[%x], src_addr=%08x[%x]\n",
186                 cm_node, event, type, event->cm_info.loc_addr,
187                 event->cm_info.loc_port, event->cm_info.rem_addr,
188                 event->cm_info.rem_port);
189
190         nes_cm_post_event(event);
191         return event;
192 }
193
194
195 /**
196  * send_mpa_request
197  */
198 static int send_mpa_request(struct nes_cm_node *cm_node, struct sk_buff *skb)
199 {
200         int ret;
201         if (!skb) {
202                 nes_debug(NES_DBG_CM, "skb set to NULL\n");
203                 return -1;
204         }
205
206         /* send an MPA Request frame */
207         form_cm_frame(skb, cm_node, NULL, 0, &cm_node->mpa_frame,
208                         cm_node->mpa_frame_size, SET_ACK);
209
210         ret = schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 1, 0);
211         if (ret < 0)
212                 return ret;
213
214         return 0;
215 }
216
217
218 /**
219  * recv_mpa - process a received TCP pkt, we are expecting an
220  * IETF MPA frame
221  */
222 static int parse_mpa(struct nes_cm_node *cm_node, u8 *buffer, u32 len)
223 {
224         struct ietf_mpa_frame *mpa_frame;
225
226         /* assume req frame is in tcp data payload */
227         if (len < sizeof(struct ietf_mpa_frame)) {
228                 nes_debug(NES_DBG_CM, "The received ietf buffer was too small (%x)\n", len);
229                 return -1;
230         }
231
232         mpa_frame = (struct ietf_mpa_frame *)buffer;
233         cm_node->mpa_frame_size = ntohs(mpa_frame->priv_data_len);
234
235         if (cm_node->mpa_frame_size + sizeof(struct ietf_mpa_frame) != len) {
236                 nes_debug(NES_DBG_CM, "The received ietf buffer was not right"
237                                 " complete (%x + %x != %x)\n",
238                                 cm_node->mpa_frame_size, (u32)sizeof(struct ietf_mpa_frame), len);
239                 return -1;
240         }
241
242         /* copy entire MPA frame to our cm_node's frame */
243         memcpy(cm_node->mpa_frame_buf, buffer + sizeof(struct ietf_mpa_frame),
244                         cm_node->mpa_frame_size);
245
246         return 0;
247 }
248
249
250 /**
251  * form_cm_frame - get a free packet and build empty frame Use
252  * node info to build.
253  */
254 static struct sk_buff *form_cm_frame(struct sk_buff *skb,
255         struct nes_cm_node *cm_node, void *options, u32 optionsize,
256         void *data, u32 datasize, u8 flags)
257 {
258         struct tcphdr *tcph;
259         struct iphdr *iph;
260         struct ethhdr *ethh;
261         u8 *buf;
262         u16 packetsize = sizeof(*iph);
263
264         packetsize += sizeof(*tcph);
265         packetsize +=  optionsize + datasize;
266
267         memset(skb->data, 0x00, ETH_HLEN + sizeof(*iph) + sizeof(*tcph));
268
269         skb->len = 0;
270         buf = skb_put(skb, packetsize + ETH_HLEN);
271
272         ethh = (struct ethhdr *) buf;
273         buf += ETH_HLEN;
274
275         iph = (struct iphdr *)buf;
276         buf += sizeof(*iph);
277         tcph = (struct tcphdr *)buf;
278         skb_reset_mac_header(skb);
279         skb_set_network_header(skb, ETH_HLEN);
280         skb_set_transport_header(skb, ETH_HLEN+sizeof(*iph));
281         buf += sizeof(*tcph);
282
283         skb->ip_summed = CHECKSUM_PARTIAL;
284         skb->protocol = htons(0x800);
285         skb->data_len = 0;
286         skb->mac_len = ETH_HLEN;
287
288         memcpy(ethh->h_dest, cm_node->rem_mac, ETH_ALEN);
289         memcpy(ethh->h_source, cm_node->loc_mac, ETH_ALEN);
290         ethh->h_proto = htons(0x0800);
291
292         iph->version = IPVERSION;
293         iph->ihl = 5;           /* 5 * 4Byte words, IP headr len */
294         iph->tos = 0;
295         iph->tot_len = htons(packetsize);
296         iph->id = htons(++cm_node->tcp_cntxt.loc_id);
297
298         iph->frag_off = htons(0x4000);
299         iph->ttl = 0x40;
300         iph->protocol = 0x06;   /* IPPROTO_TCP */
301
302         iph->saddr = htonl(cm_node->loc_addr);
303         iph->daddr = htonl(cm_node->rem_addr);
304
305         tcph->source = htons(cm_node->loc_port);
306         tcph->dest = htons(cm_node->rem_port);
307         tcph->seq = htonl(cm_node->tcp_cntxt.loc_seq_num);
308
309         if (flags & SET_ACK) {
310                 cm_node->tcp_cntxt.loc_ack_num = cm_node->tcp_cntxt.rcv_nxt;
311                 tcph->ack_seq = htonl(cm_node->tcp_cntxt.loc_ack_num);
312                 tcph->ack = 1;
313         } else
314                 tcph->ack_seq = 0;
315
316         if (flags & SET_SYN) {
317                 cm_node->tcp_cntxt.loc_seq_num++;
318                 tcph->syn = 1;
319         } else
320                 cm_node->tcp_cntxt.loc_seq_num += datasize;
321
322         if (flags & SET_FIN) {
323                 cm_node->tcp_cntxt.loc_seq_num++;
324                 tcph->fin = 1;
325         }
326
327         if (flags & SET_RST)
328                 tcph->rst = 1;
329
330         tcph->doff = (u16)((sizeof(*tcph) + optionsize + 3) >> 2);
331         tcph->window = htons(cm_node->tcp_cntxt.rcv_wnd);
332         tcph->urg_ptr = 0;
333         if (optionsize)
334                 memcpy(buf, options, optionsize);
335         buf += optionsize;
336         if (datasize)
337                 memcpy(buf, data, datasize);
338
339         skb_shinfo(skb)->nr_frags = 0;
340         cm_packets_created++;
341
342         return skb;
343 }
344
345
346 /**
347  * print_core - dump a cm core
348  */
349 static void print_core(struct nes_cm_core *core)
350 {
351         nes_debug(NES_DBG_CM, "---------------------------------------------\n");
352         nes_debug(NES_DBG_CM, "CM Core  -- (core = %p )\n", core);
353         if (!core)
354                 return;
355         nes_debug(NES_DBG_CM, "---------------------------------------------\n");
356
357         nes_debug(NES_DBG_CM, "State         : %u \n",  core->state);
358
359         nes_debug(NES_DBG_CM, "Tx Free cnt   : %u \n", skb_queue_len(&core->tx_free_list));
360         nes_debug(NES_DBG_CM, "Listen Nodes  : %u \n", atomic_read(&core->listen_node_cnt));
361         nes_debug(NES_DBG_CM, "Active Nodes  : %u \n", atomic_read(&core->node_cnt));
362
363         nes_debug(NES_DBG_CM, "core          : %p \n", core);
364
365         nes_debug(NES_DBG_CM, "-------------- end core ---------------\n");
366 }
367
368
369 /**
370  * schedule_nes_timer
371  * note - cm_node needs to be protected before calling this. Encase in:
372  *                      rem_ref_cm_node(cm_core, cm_node);add_ref_cm_node(cm_node);
373  */
374 int schedule_nes_timer(struct nes_cm_node *cm_node, struct sk_buff *skb,
375                 enum nes_timer_type type, int send_retrans,
376                 int close_when_complete)
377 {
378         unsigned long  flags;
379         struct nes_cm_core *cm_core = cm_node->cm_core;
380         struct nes_timer_entry *new_send;
381         int ret = 0;
382         u32 was_timer_set;
383
384         if (!cm_node)
385                 return -EINVAL;
386         new_send = kzalloc(sizeof(*new_send), GFP_ATOMIC);
387         if (!new_send)
388                 return -1;
389
390         /* new_send->timetosend = currenttime */
391         new_send->retrycount = NES_DEFAULT_RETRYS;
392         new_send->retranscount = NES_DEFAULT_RETRANS;
393         new_send->skb = skb;
394         new_send->timetosend = jiffies;
395         new_send->type = type;
396         new_send->netdev = cm_node->netdev;
397         new_send->send_retrans = send_retrans;
398         new_send->close_when_complete = close_when_complete;
399
400         if (type == NES_TIMER_TYPE_CLOSE) {
401                 new_send->timetosend += (HZ/10);
402                 spin_lock_irqsave(&cm_node->recv_list_lock, flags);
403                 list_add_tail(&new_send->list, &cm_node->recv_list);
404                 spin_unlock_irqrestore(&cm_node->recv_list_lock, flags);
405         }
406
407         if (type == NES_TIMER_TYPE_SEND) {
408                 new_send->seq_num = ntohl(tcp_hdr(skb)->seq);
409                 atomic_inc(&new_send->skb->users);
410                 spin_lock_irqsave(&cm_node->retrans_list_lock, flags);
411                 cm_node->send_entry = new_send;
412                 add_ref_cm_node(cm_node);
413                 spin_unlock_irqrestore(&cm_node->retrans_list_lock, flags);
414                 new_send->timetosend = jiffies + NES_RETRY_TIMEOUT;
415
416                 ret = nes_nic_cm_xmit(new_send->skb, cm_node->netdev);
417                 if (ret != NETDEV_TX_OK) {
418                         nes_debug(NES_DBG_CM, "Error sending packet %p "
419                                 "(jiffies = %lu)\n", new_send, jiffies);
420                         atomic_dec(&new_send->skb->users);
421                         new_send->timetosend = jiffies;
422                 } else {
423                         cm_packets_sent++;
424                         if (!send_retrans) {
425                                 cleanup_retrans_entry(cm_node);
426                                 if (close_when_complete)
427                                         rem_ref_cm_node(cm_core, cm_node);
428                                 return ret;
429                         }
430                 }
431         }
432
433         was_timer_set = timer_pending(&cm_core->tcp_timer);
434
435         if (!was_timer_set) {
436                 cm_core->tcp_timer.expires = new_send->timetosend;
437                 add_timer(&cm_core->tcp_timer);
438         }
439
440         return ret;
441 }
442
443
444 /**
445  * nes_cm_timer_tick
446  */
447 static void nes_cm_timer_tick(unsigned long pass)
448 {
449         unsigned long flags, qplockflags;
450         unsigned long nexttimeout = jiffies + NES_LONG_TIME;
451         struct iw_cm_id *cm_id;
452         struct nes_cm_node *cm_node;
453         struct nes_timer_entry *send_entry, *recv_entry;
454         struct list_head *list_core, *list_core_temp;
455         struct list_head *list_node, *list_node_temp;
456         struct nes_cm_core *cm_core = g_cm_core;
457         struct nes_qp *nesqp;
458         u32 settimer = 0;
459         int ret = NETDEV_TX_OK;
460         enum nes_cm_node_state last_state;
461
462         spin_lock_irqsave(&cm_core->ht_lock, flags);
463
464         list_for_each_safe(list_node, list_core_temp,
465                 &cm_core->connected_nodes) {
466                 cm_node = container_of(list_node, struct nes_cm_node, list);
467                 add_ref_cm_node(cm_node);
468                 spin_unlock_irqrestore(&cm_core->ht_lock, flags);
469                 spin_lock_irqsave(&cm_node->recv_list_lock, flags);
470                 list_for_each_safe(list_core, list_node_temp,
471                         &cm_node->recv_list) {
472                         recv_entry = container_of(list_core,
473                                 struct nes_timer_entry, list);
474                         if (!recv_entry)
475                                 break;
476                         if (time_after(recv_entry->timetosend, jiffies)) {
477                                 if (nexttimeout > recv_entry->timetosend ||
478                                         !settimer) {
479                                         nexttimeout = recv_entry->timetosend;
480                                         settimer = 1;
481                                 }
482                                 continue;
483                         }
484                         list_del(&recv_entry->list);
485                         cm_id = cm_node->cm_id;
486                         spin_unlock_irqrestore(&cm_node->recv_list_lock, flags);
487                         nesqp = (struct nes_qp *)recv_entry->skb;
488                         spin_lock_irqsave(&nesqp->lock, qplockflags);
489                         if (nesqp->cm_id) {
490                                 nes_debug(NES_DBG_CM, "QP%u: cm_id = %p, "
491                                         "refcount = %d: HIT A "
492                                         "NES_TIMER_TYPE_CLOSE with something "
493                                         "to do!!!\n", nesqp->hwqp.qp_id, cm_id,
494                                         atomic_read(&nesqp->refcount));
495                                 nesqp->hw_tcp_state = NES_AEQE_TCP_STATE_CLOSED;
496                                 nesqp->last_aeq = NES_AEQE_AEID_RESET_SENT;
497                                 nesqp->ibqp_state = IB_QPS_ERR;
498                                 spin_unlock_irqrestore(&nesqp->lock,
499                                         qplockflags);
500                                 nes_cm_disconn(nesqp);
501                         } else {
502                                 spin_unlock_irqrestore(&nesqp->lock,
503                                         qplockflags);
504                                 nes_debug(NES_DBG_CM, "QP%u: cm_id = %p, "
505                                         "refcount = %d: HIT A "
506                                         "NES_TIMER_TYPE_CLOSE with nothing "
507                                         "to do!!!\n", nesqp->hwqp.qp_id, cm_id,
508                                         atomic_read(&nesqp->refcount));
509                         }
510                         if (cm_id)
511                                 cm_id->rem_ref(cm_id);
512
513                         kfree(recv_entry);
514                         spin_lock_irqsave(&cm_node->recv_list_lock, flags);
515                 }
516                 spin_unlock_irqrestore(&cm_node->recv_list_lock, flags);
517
518                 spin_lock_irqsave(&cm_node->retrans_list_lock, flags);
519                 do {
520                         send_entry = cm_node->send_entry;
521                         if (!send_entry)
522                                 continue;
523                         if (time_after(send_entry->timetosend, jiffies)) {
524                                 if (cm_node->state != NES_CM_STATE_TSA) {
525                                         if ((nexttimeout >
526                                                 send_entry->timetosend) ||
527                                                 !settimer) {
528                                                 nexttimeout =
529                                                         send_entry->timetosend;
530                                                 settimer = 1;
531                                                 continue;
532                                         }
533                                 } else {
534                                         free_retrans_entry(cm_node);
535                                         continue;
536                                 }
537                         }
538
539                         if ((cm_node->state == NES_CM_STATE_TSA) ||
540                                 (cm_node->state == NES_CM_STATE_CLOSED)) {
541                                 free_retrans_entry(cm_node);
542                                 continue;
543                         }
544
545                         if (!send_entry->retranscount ||
546                                 !send_entry->retrycount) {
547                                 cm_packets_dropped++;
548                                 last_state = cm_node->state;
549                                 cm_node->state = NES_CM_STATE_CLOSED;
550                                 free_retrans_entry(cm_node);
551                                 spin_unlock_irqrestore(
552                                         &cm_node->retrans_list_lock, flags);
553                                 if (last_state == NES_CM_STATE_SYN_RCVD)
554                                         rem_ref_cm_node(cm_core, cm_node);
555                                 else
556                                         create_event(cm_node,
557                                                 NES_CM_EVENT_ABORTED);
558                                 spin_lock_irqsave(&cm_node->retrans_list_lock,
559                                         flags);
560                                 continue;
561                         }
562                         atomic_inc(&send_entry->skb->users);
563                         cm_packets_retrans++;
564                         nes_debug(NES_DBG_CM, "Retransmitting send_entry %p "
565                                 "for node %p, jiffies = %lu, time to send = "
566                                 "%lu, retranscount = %u, send_entry->seq_num = "
567                                 "0x%08X, cm_node->tcp_cntxt.rem_ack_num = "
568                                 "0x%08X\n", send_entry, cm_node, jiffies,
569                                 send_entry->timetosend,
570                                 send_entry->retranscount,
571                                 send_entry->seq_num,
572                                 cm_node->tcp_cntxt.rem_ack_num);
573
574                         spin_unlock_irqrestore(&cm_node->retrans_list_lock,
575                                 flags);
576                         ret = nes_nic_cm_xmit(send_entry->skb, cm_node->netdev);
577                         spin_lock_irqsave(&cm_node->retrans_list_lock, flags);
578                         if (ret != NETDEV_TX_OK) {
579                                 nes_debug(NES_DBG_CM, "rexmit failed for "
580                                         "node=%p\n", cm_node);
581                                 cm_packets_bounced++;
582                                 atomic_dec(&send_entry->skb->users);
583                                 send_entry->retrycount--;
584                                 nexttimeout = jiffies + NES_SHORT_TIME;
585                                 settimer = 1;
586                                 continue;
587                         } else {
588                                 cm_packets_sent++;
589                         }
590                         nes_debug(NES_DBG_CM, "Packet Sent: retrans count = "
591                                 "%u, retry count = %u.\n",
592                                 send_entry->retranscount,
593                                 send_entry->retrycount);
594                         if (send_entry->send_retrans) {
595                                 send_entry->retranscount--;
596                                 send_entry->timetosend = jiffies +
597                                         NES_RETRY_TIMEOUT;
598                                 if (nexttimeout > send_entry->timetosend ||
599                                         !settimer) {
600                                         nexttimeout = send_entry->timetosend;
601                                         settimer = 1;
602                                 }
603                         } else {
604                                 int close_when_complete;
605                                 close_when_complete =
606                                         send_entry->close_when_complete;
607                                 nes_debug(NES_DBG_CM, "cm_node=%p state=%d\n",
608                                         cm_node, cm_node->state);
609                                 free_retrans_entry(cm_node);
610                                 if (close_when_complete)
611                                         rem_ref_cm_node(cm_node->cm_core,
612                                                 cm_node);
613                         }
614                 } while (0);
615
616                 spin_unlock_irqrestore(&cm_node->retrans_list_lock, flags);
617                 rem_ref_cm_node(cm_node->cm_core, cm_node);
618                 spin_lock_irqsave(&cm_core->ht_lock, flags);
619                 if (ret != NETDEV_TX_OK) {
620                         nes_debug(NES_DBG_CM, "rexmit failed for cm_node=%p\n",
621                                 cm_node);
622                         break;
623                 }
624         }
625         spin_unlock_irqrestore(&cm_core->ht_lock, flags);
626
627         if (settimer) {
628                 if (!timer_pending(&cm_core->tcp_timer)) {
629                         cm_core->tcp_timer.expires  = nexttimeout;
630                         add_timer(&cm_core->tcp_timer);
631                 }
632         }
633 }
634
635
636 /**
637  * send_syn
638  */
639 static int send_syn(struct nes_cm_node *cm_node, u32 sendack,
640         struct sk_buff *skb)
641 {
642         int ret;
643         int flags = SET_SYN;
644         char optionsbuffer[sizeof(struct option_mss) +
645                 sizeof(struct option_windowscale) + sizeof(struct option_base) +
646                 TCP_OPTIONS_PADDING];
647
648         int optionssize = 0;
649         /* Sending MSS option */
650         union all_known_options *options;
651
652         if (!cm_node)
653                 return -EINVAL;
654
655         options = (union all_known_options *)&optionsbuffer[optionssize];
656         options->as_mss.optionnum = OPTION_NUMBER_MSS;
657         options->as_mss.length = sizeof(struct option_mss);
658         options->as_mss.mss = htons(cm_node->tcp_cntxt.mss);
659         optionssize += sizeof(struct option_mss);
660
661         options = (union all_known_options *)&optionsbuffer[optionssize];
662         options->as_windowscale.optionnum = OPTION_NUMBER_WINDOW_SCALE;
663         options->as_windowscale.length = sizeof(struct option_windowscale);
664         options->as_windowscale.shiftcount = cm_node->tcp_cntxt.rcv_wscale;
665         optionssize += sizeof(struct option_windowscale);
666
667         if (sendack && !(NES_DRV_OPT_SUPRESS_OPTION_BC & nes_drv_opt)) {
668                 options = (union all_known_options *)&optionsbuffer[optionssize];
669                 options->as_base.optionnum = OPTION_NUMBER_WRITE0;
670                 options->as_base.length = sizeof(struct option_base);
671                 optionssize += sizeof(struct option_base);
672                 /* we need the size to be a multiple of 4 */
673                 options = (union all_known_options *)&optionsbuffer[optionssize];
674                 options->as_end = 1;
675                 optionssize += 1;
676                 options = (union all_known_options *)&optionsbuffer[optionssize];
677                 options->as_end = 1;
678                 optionssize += 1;
679         }
680
681         options = (union all_known_options *)&optionsbuffer[optionssize];
682         options->as_end = OPTION_NUMBER_END;
683         optionssize += 1;
684
685         if (!skb)
686                 skb = get_free_pkt(cm_node);
687         if (!skb) {
688                 nes_debug(NES_DBG_CM, "Failed to get a Free pkt\n");
689                 return -1;
690         }
691
692         if (sendack)
693                 flags |= SET_ACK;
694
695         form_cm_frame(skb, cm_node, optionsbuffer, optionssize, NULL, 0, flags);
696         ret = schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 1, 0);
697
698         return ret;
699 }
700
701
702 /**
703  * send_reset
704  */
705 static int send_reset(struct nes_cm_node *cm_node, struct sk_buff *skb)
706 {
707         int ret;
708         int flags = SET_RST | SET_ACK;
709
710         if (!skb)
711                 skb = get_free_pkt(cm_node);
712         if (!skb) {
713                 nes_debug(NES_DBG_CM, "Failed to get a Free pkt\n");
714                 return -1;
715         }
716
717         form_cm_frame(skb, cm_node, NULL, 0, NULL, 0, flags);
718         ret = schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 0, 1);
719
720         return ret;
721 }
722
723
724 /**
725  * send_ack
726  */
727 static int send_ack(struct nes_cm_node *cm_node, struct sk_buff *skb)
728 {
729         int ret;
730
731         if (!skb)
732                 skb = get_free_pkt(cm_node);
733
734         if (!skb) {
735                 nes_debug(NES_DBG_CM, "Failed to get a Free pkt\n");
736                 return -1;
737         }
738
739         form_cm_frame(skb, cm_node, NULL, 0, NULL, 0, SET_ACK);
740         ret = schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 0, 0);
741
742         return ret;
743 }
744
745
746 /**
747  * send_fin
748  */
749 static int send_fin(struct nes_cm_node *cm_node, struct sk_buff *skb)
750 {
751         int ret;
752
753         /* if we didn't get a frame get one */
754         if (!skb)
755                 skb = get_free_pkt(cm_node);
756
757         if (!skb) {
758                 nes_debug(NES_DBG_CM, "Failed to get a Free pkt\n");
759                 return -1;
760         }
761
762         form_cm_frame(skb, cm_node, NULL, 0, NULL, 0, SET_ACK | SET_FIN);
763         ret = schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 1, 0);
764
765         return ret;
766 }
767
768
769 /**
770  * get_free_pkt
771  */
772 static struct sk_buff *get_free_pkt(struct nes_cm_node *cm_node)
773 {
774         struct sk_buff *skb, *new_skb;
775
776         /* check to see if we need to repopulate the free tx pkt queue */
777         if (skb_queue_len(&cm_node->cm_core->tx_free_list) < NES_CM_FREE_PKT_LO_WATERMARK) {
778                 while (skb_queue_len(&cm_node->cm_core->tx_free_list) <
779                                 cm_node->cm_core->free_tx_pkt_max) {
780                         /* replace the frame we took, we won't get it back */
781                         new_skb = dev_alloc_skb(cm_node->cm_core->mtu);
782                         BUG_ON(!new_skb);
783                         /* add a replacement frame to the free tx list head */
784                         skb_queue_head(&cm_node->cm_core->tx_free_list, new_skb);
785                 }
786         }
787
788         skb = skb_dequeue(&cm_node->cm_core->tx_free_list);
789
790         return skb;
791 }
792
793
794 /**
795  * make_hashkey - generate hash key from node tuple
796  */
797 static inline int make_hashkey(u16 loc_port, nes_addr_t loc_addr, u16 rem_port,
798                 nes_addr_t rem_addr)
799 {
800         u32 hashkey = 0;
801
802         hashkey = loc_addr + rem_addr + loc_port + rem_port;
803         hashkey = (hashkey % NES_CM_HASHTABLE_SIZE);
804
805         return hashkey;
806 }
807
808
809 /**
810  * find_node - find a cm node that matches the reference cm node
811  */
812 static struct nes_cm_node *find_node(struct nes_cm_core *cm_core,
813                 u16 rem_port, nes_addr_t rem_addr, u16 loc_port, nes_addr_t loc_addr)
814 {
815         unsigned long flags;
816         u32 hashkey;
817         struct list_head *hte;
818         struct nes_cm_node *cm_node;
819
820         /* make a hash index key for this packet */
821         hashkey = make_hashkey(loc_port, loc_addr, rem_port, rem_addr);
822
823         /* get a handle on the hte */
824         hte = &cm_core->connected_nodes;
825
826         nes_debug(NES_DBG_CM, "Searching for an owner node: " NIPQUAD_FMT ":%x from core %p->%p\n",
827                   HIPQUAD(loc_addr), loc_port, cm_core, hte);
828
829         /* walk list and find cm_node associated with this session ID */
830         spin_lock_irqsave(&cm_core->ht_lock, flags);
831         list_for_each_entry(cm_node, hte, list) {
832                 /* compare quad, return node handle if a match */
833                 nes_debug(NES_DBG_CM, "finding node %x:%x =? %x:%x ^ %x:%x =? %x:%x\n",
834                                 cm_node->loc_addr, cm_node->loc_port,
835                                 loc_addr, loc_port,
836                                 cm_node->rem_addr, cm_node->rem_port,
837                                 rem_addr, rem_port);
838                 if ((cm_node->loc_addr == loc_addr) && (cm_node->loc_port == loc_port) &&
839                                 (cm_node->rem_addr == rem_addr) && (cm_node->rem_port == rem_port)) {
840                         add_ref_cm_node(cm_node);
841                         spin_unlock_irqrestore(&cm_core->ht_lock, flags);
842                         return cm_node;
843                 }
844         }
845         spin_unlock_irqrestore(&cm_core->ht_lock, flags);
846
847         /* no owner node */
848         return NULL;
849 }
850
851
852 /**
853  * find_listener - find a cm node listening on this addr-port pair
854  */
855 static struct nes_cm_listener *find_listener(struct nes_cm_core *cm_core,
856                 nes_addr_t dst_addr, u16 dst_port, enum nes_cm_listener_state listener_state)
857 {
858         unsigned long flags;
859         struct nes_cm_listener *listen_node;
860
861         /* walk list and find cm_node associated with this session ID */
862         spin_lock_irqsave(&cm_core->listen_list_lock, flags);
863         list_for_each_entry(listen_node, &cm_core->listen_list.list, list) {
864                 /* compare node pair, return node handle if a match */
865                 if (((listen_node->loc_addr == dst_addr) ||
866                                 listen_node->loc_addr == 0x00000000) &&
867                                 (listen_node->loc_port == dst_port) &&
868                                 (listener_state & listen_node->listener_state)) {
869                         atomic_inc(&listen_node->ref_count);
870                         spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
871                         return listen_node;
872                 }
873         }
874         spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
875
876         nes_debug(NES_DBG_CM, "Unable to find listener for " NIPQUAD_FMT ":%x\n",
877                   HIPQUAD(dst_addr), dst_port);
878
879         /* no listener */
880         return NULL;
881 }
882
883
884 /**
885  * add_hte_node - add a cm node to the hash table
886  */
887 static int add_hte_node(struct nes_cm_core *cm_core, struct nes_cm_node *cm_node)
888 {
889         unsigned long flags;
890         u32 hashkey;
891         struct list_head *hte;
892
893         if (!cm_node || !cm_core)
894                 return -EINVAL;
895
896         nes_debug(NES_DBG_CM, "Adding Node %p to Active Connection HT\n",
897                 cm_node);
898
899         /* first, make an index into our hash table */
900         hashkey = make_hashkey(cm_node->loc_port, cm_node->loc_addr,
901                         cm_node->rem_port, cm_node->rem_addr);
902         cm_node->hashkey = hashkey;
903
904         spin_lock_irqsave(&cm_core->ht_lock, flags);
905
906         /* get a handle on the hash table element (list head for this slot) */
907         hte = &cm_core->connected_nodes;
908         list_add_tail(&cm_node->list, hte);
909         atomic_inc(&cm_core->ht_node_cnt);
910
911         spin_unlock_irqrestore(&cm_core->ht_lock, flags);
912
913         return 0;
914 }
915
916
917 /**
918  * mini_cm_dec_refcnt_listen
919  */
920 static int mini_cm_dec_refcnt_listen(struct nes_cm_core *cm_core,
921         struct nes_cm_listener *listener, int free_hanging_nodes)
922 {
923         int ret = 1;
924         unsigned long flags;
925         struct list_head *list_pos = NULL;
926         struct list_head *list_temp = NULL;
927         struct nes_cm_node *cm_node = NULL;
928
929         nes_debug(NES_DBG_CM, "attempting listener= %p free_nodes= %d, "
930                 "refcnt=%d\n", listener, free_hanging_nodes,
931                 atomic_read(&listener->ref_count));
932         /* free non-accelerated child nodes for this listener */
933         if (free_hanging_nodes) {
934                 spin_lock_irqsave(&cm_core->ht_lock, flags);
935                 list_for_each_safe(list_pos, list_temp,
936                         &g_cm_core->connected_nodes) {
937                         cm_node = container_of(list_pos, struct nes_cm_node,
938                                 list);
939                         if ((cm_node->listener == listener) &&
940                                 (!cm_node->accelerated)) {
941                                 cleanup_retrans_entry(cm_node);
942                                 spin_unlock_irqrestore(&cm_core->ht_lock,
943                                         flags);
944                                 send_reset(cm_node, NULL);
945                                 spin_lock_irqsave(&cm_core->ht_lock, flags);
946                         }
947                 }
948                 spin_unlock_irqrestore(&cm_core->ht_lock, flags);
949         }
950         spin_lock_irqsave(&cm_core->listen_list_lock, flags);
951         if (!atomic_dec_return(&listener->ref_count)) {
952                 list_del(&listener->list);
953
954                 /* decrement our listen node count */
955                 atomic_dec(&cm_core->listen_node_cnt);
956
957                 spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
958
959                 if (listener->nesvnic) {
960                         nes_manage_apbvt(listener->nesvnic, listener->loc_port,
961                                         PCI_FUNC(listener->nesvnic->nesdev->pcidev->devfn), NES_MANAGE_APBVT_DEL);
962                 }
963
964                 nes_debug(NES_DBG_CM, "destroying listener (%p)\n", listener);
965
966                 kfree(listener);
967                 listener = NULL;
968                 ret = 0;
969                 cm_listens_destroyed++;
970         } else {
971                 spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
972         }
973         if (listener) {
974                 if (atomic_read(&listener->pend_accepts_cnt) > 0)
975                         nes_debug(NES_DBG_CM, "destroying listener (%p)"
976                                         " with non-zero pending accepts=%u\n",
977                                         listener, atomic_read(&listener->pend_accepts_cnt));
978         }
979
980         return ret;
981 }
982
983
984 /**
985  * mini_cm_del_listen
986  */
987 static int mini_cm_del_listen(struct nes_cm_core *cm_core,
988                 struct nes_cm_listener *listener)
989 {
990         listener->listener_state = NES_CM_LISTENER_PASSIVE_STATE;
991         listener->cm_id = NULL; /* going to be destroyed pretty soon */
992         return mini_cm_dec_refcnt_listen(cm_core, listener, 1);
993 }
994
995
996 /**
997  * mini_cm_accelerated
998  */
999 static inline int mini_cm_accelerated(struct nes_cm_core *cm_core,
1000                 struct nes_cm_node *cm_node)
1001 {
1002         u32 was_timer_set;
1003         cm_node->accelerated = 1;
1004
1005         if (cm_node->accept_pend) {
1006                 BUG_ON(!cm_node->listener);
1007                 atomic_dec(&cm_node->listener->pend_accepts_cnt);
1008                 BUG_ON(atomic_read(&cm_node->listener->pend_accepts_cnt) < 0);
1009         }
1010
1011         was_timer_set = timer_pending(&cm_core->tcp_timer);
1012         if (!was_timer_set) {
1013                 cm_core->tcp_timer.expires = jiffies + NES_SHORT_TIME;
1014                 add_timer(&cm_core->tcp_timer);
1015         }
1016
1017         return 0;
1018 }
1019
1020
1021 /**
1022  * nes_addr_send_arp
1023  */
1024 static void nes_addr_send_arp(u32 dst_ip)
1025 {
1026         struct rtable *rt;
1027         struct flowi fl;
1028
1029         memset(&fl, 0, sizeof fl);
1030         fl.nl_u.ip4_u.daddr = htonl(dst_ip);
1031         if (ip_route_output_key(&init_net, &rt, &fl)) {
1032                 printk("%s: ip_route_output_key failed for 0x%08X\n",
1033                                 __func__, dst_ip);
1034                 return;
1035         }
1036
1037         neigh_event_send(rt->u.dst.neighbour, NULL);
1038         ip_rt_put(rt);
1039 }
1040
1041
1042 /**
1043  * make_cm_node - create a new instance of a cm node
1044  */
1045 static struct nes_cm_node *make_cm_node(struct nes_cm_core *cm_core,
1046                 struct nes_vnic *nesvnic, struct nes_cm_info *cm_info,
1047                 struct nes_cm_listener *listener)
1048 {
1049         struct nes_cm_node *cm_node;
1050         struct timespec ts;
1051         int arpindex = 0;
1052         struct nes_device *nesdev;
1053         struct nes_adapter *nesadapter;
1054         DECLARE_MAC_BUF(mac);
1055
1056         /* create an hte and cm_node for this instance */
1057         cm_node = kzalloc(sizeof(*cm_node), GFP_ATOMIC);
1058         if (!cm_node)
1059                 return NULL;
1060
1061         /* set our node specific transport info */
1062         cm_node->loc_addr = cm_info->loc_addr;
1063         cm_node->rem_addr = cm_info->rem_addr;
1064         cm_node->loc_port = cm_info->loc_port;
1065         cm_node->rem_port = cm_info->rem_port;
1066         cm_node->send_write0 = send_first;
1067         nes_debug(NES_DBG_CM, "Make node addresses : loc = " NIPQUAD_FMT
1068                         ":%x, rem = " NIPQUAD_FMT ":%x\n",
1069                         HIPQUAD(cm_node->loc_addr), cm_node->loc_port,
1070                         HIPQUAD(cm_node->rem_addr), cm_node->rem_port);
1071         cm_node->listener = listener;
1072         cm_node->netdev = nesvnic->netdev;
1073         cm_node->cm_id = cm_info->cm_id;
1074         memcpy(cm_node->loc_mac, nesvnic->netdev->dev_addr, ETH_ALEN);
1075
1076         nes_debug(NES_DBG_CM, "listener=%p, cm_id=%p\n", cm_node->listener,
1077                         cm_node->cm_id);
1078
1079         spin_lock_init(&cm_node->retrans_list_lock);
1080         INIT_LIST_HEAD(&cm_node->recv_list);
1081         spin_lock_init(&cm_node->recv_list_lock);
1082
1083         cm_node->loopbackpartner = NULL;
1084         atomic_set(&cm_node->ref_count, 1);
1085         /* associate our parent CM core */
1086         cm_node->cm_core = cm_core;
1087         cm_node->tcp_cntxt.loc_id = NES_CM_DEF_LOCAL_ID;
1088         cm_node->tcp_cntxt.rcv_wscale = NES_CM_DEFAULT_RCV_WND_SCALE;
1089         cm_node->tcp_cntxt.rcv_wnd = NES_CM_DEFAULT_RCV_WND_SCALED >>
1090                         NES_CM_DEFAULT_RCV_WND_SCALE;
1091         ts = current_kernel_time();
1092         cm_node->tcp_cntxt.loc_seq_num = htonl(ts.tv_nsec);
1093         cm_node->tcp_cntxt.mss = nesvnic->max_frame_size - sizeof(struct iphdr) -
1094                         sizeof(struct tcphdr) - ETH_HLEN - VLAN_HLEN;
1095         cm_node->tcp_cntxt.rcv_nxt = 0;
1096         /* get a unique session ID , add thread_id to an upcounter to handle race */
1097         atomic_inc(&cm_core->node_cnt);
1098         cm_node->conn_type = cm_info->conn_type;
1099         cm_node->apbvt_set = 0;
1100         cm_node->accept_pend = 0;
1101
1102         cm_node->nesvnic = nesvnic;
1103         /* get some device handles, for arp lookup */
1104         nesdev = nesvnic->nesdev;
1105         nesadapter = nesdev->nesadapter;
1106
1107         cm_node->loopbackpartner = NULL;
1108         /* get the mac addr for the remote node */
1109         arpindex = nes_arp_table(nesdev, cm_node->rem_addr, NULL, NES_ARP_RESOLVE);
1110         if (arpindex < 0) {
1111                 kfree(cm_node);
1112                 nes_addr_send_arp(cm_info->rem_addr);
1113                 return NULL;
1114         }
1115
1116         /* copy the mac addr to node context */
1117         memcpy(cm_node->rem_mac, nesadapter->arp_table[arpindex].mac_addr, ETH_ALEN);
1118         nes_debug(NES_DBG_CM, "Remote mac addr from arp table: %s\n",
1119                   print_mac(mac, cm_node->rem_mac));
1120
1121         add_hte_node(cm_core, cm_node);
1122         atomic_inc(&cm_nodes_created);
1123
1124         return cm_node;
1125 }
1126
1127
1128 /**
1129  * add_ref_cm_node - destroy an instance of a cm node
1130  */
1131 static int add_ref_cm_node(struct nes_cm_node *cm_node)
1132 {
1133         atomic_inc(&cm_node->ref_count);
1134         return 0;
1135 }
1136
1137
1138 /**
1139  * rem_ref_cm_node - destroy an instance of a cm node
1140  */
1141 static int rem_ref_cm_node(struct nes_cm_core *cm_core,
1142         struct nes_cm_node *cm_node)
1143 {
1144         unsigned long flags, qplockflags;
1145         struct nes_timer_entry *recv_entry;
1146         struct iw_cm_id *cm_id;
1147         struct list_head *list_core, *list_node_temp;
1148         struct nes_qp *nesqp;
1149
1150         if (!cm_node)
1151                 return -EINVAL;
1152
1153         spin_lock_irqsave(&cm_node->cm_core->ht_lock, flags);
1154         if (atomic_dec_return(&cm_node->ref_count)) {
1155                 spin_unlock_irqrestore(&cm_node->cm_core->ht_lock, flags);
1156                 return 0;
1157         }
1158         list_del(&cm_node->list);
1159         atomic_dec(&cm_core->ht_node_cnt);
1160         spin_unlock_irqrestore(&cm_node->cm_core->ht_lock, flags);
1161
1162         /* if the node is destroyed before connection was accelerated */
1163         if (!cm_node->accelerated && cm_node->accept_pend) {
1164                 BUG_ON(!cm_node->listener);
1165                 atomic_dec(&cm_node->listener->pend_accepts_cnt);
1166                 BUG_ON(atomic_read(&cm_node->listener->pend_accepts_cnt) < 0);
1167         }
1168         BUG_ON(cm_node->send_entry);
1169         spin_lock_irqsave(&cm_node->recv_list_lock, flags);
1170         list_for_each_safe(list_core, list_node_temp, &cm_node->recv_list) {
1171                 recv_entry = container_of(list_core, struct nes_timer_entry,
1172                                 list);
1173                 list_del(&recv_entry->list);
1174                 cm_id = cm_node->cm_id;
1175                 spin_unlock_irqrestore(&cm_node->recv_list_lock, flags);
1176                 nesqp = (struct nes_qp *)recv_entry->skb;
1177                 spin_lock_irqsave(&nesqp->lock, qplockflags);
1178                 if (nesqp->cm_id) {
1179                         nes_debug(NES_DBG_CM, "QP%u: cm_id = %p: HIT A "
1180                                 "NES_TIMER_TYPE_CLOSE with something to do!\n",
1181                                 nesqp->hwqp.qp_id, cm_id);
1182                         nesqp->hw_tcp_state = NES_AEQE_TCP_STATE_CLOSED;
1183                         nesqp->last_aeq = NES_AEQE_AEID_RESET_SENT;
1184                         nesqp->ibqp_state = IB_QPS_ERR;
1185                         spin_unlock_irqrestore(&nesqp->lock, qplockflags);
1186                         nes_cm_disconn(nesqp);
1187                 } else {
1188                         spin_unlock_irqrestore(&nesqp->lock, qplockflags);
1189                         nes_debug(NES_DBG_CM, "QP%u: cm_id = %p: HIT A "
1190                                 "NES_TIMER_TYPE_CLOSE with nothing to do!\n",
1191                                 nesqp->hwqp.qp_id, cm_id);
1192                 }
1193                 cm_id->rem_ref(cm_id);
1194
1195                 kfree(recv_entry);
1196                 spin_lock_irqsave(&cm_node->recv_list_lock, flags);
1197         }
1198         spin_unlock_irqrestore(&cm_node->recv_list_lock, flags);
1199
1200         if (cm_node->listener) {
1201                 mini_cm_dec_refcnt_listen(cm_core, cm_node->listener, 0);
1202         } else {
1203                 if (cm_node->apbvt_set && cm_node->nesvnic) {
1204                         nes_manage_apbvt(cm_node->nesvnic, cm_node->loc_port,
1205                                 PCI_FUNC(
1206                                 cm_node->nesvnic->nesdev->pcidev->devfn),
1207                                 NES_MANAGE_APBVT_DEL);
1208                 }
1209         }
1210
1211         atomic_dec(&cm_core->node_cnt);
1212         atomic_inc(&cm_nodes_destroyed);
1213         nesqp = cm_node->nesqp;
1214         if (nesqp) {
1215                 nesqp->cm_node = NULL;
1216                 nes_rem_ref(&nesqp->ibqp);
1217                 cm_node->nesqp = NULL;
1218         }
1219
1220         cm_node->freed = 1;
1221         kfree(cm_node);
1222         return 0;
1223 }
1224
1225 /**
1226  * process_options
1227  */
1228 static int process_options(struct nes_cm_node *cm_node, u8 *optionsloc,
1229         u32 optionsize, u32 syn_packet)
1230 {
1231         u32 tmp;
1232         u32 offset = 0;
1233         union all_known_options *all_options;
1234         char got_mss_option = 0;
1235
1236         while (offset < optionsize) {
1237                 all_options = (union all_known_options *)(optionsloc + offset);
1238                 switch (all_options->as_base.optionnum) {
1239                 case OPTION_NUMBER_END:
1240                         offset = optionsize;
1241                         break;
1242                 case OPTION_NUMBER_NONE:
1243                         offset += 1;
1244                         continue;
1245                 case OPTION_NUMBER_MSS:
1246                         nes_debug(NES_DBG_CM, "%s: MSS Length: %d Offset: %d "
1247                                 "Size: %d\n", __func__,
1248                                 all_options->as_mss.length, offset, optionsize);
1249                         got_mss_option = 1;
1250                         if (all_options->as_mss.length != 4) {
1251                                 return 1;
1252                         } else {
1253                                 tmp = ntohs(all_options->as_mss.mss);
1254                                 if (tmp > 0 && tmp <
1255                                         cm_node->tcp_cntxt.mss)
1256                                         cm_node->tcp_cntxt.mss = tmp;
1257                         }
1258                         break;
1259                 case OPTION_NUMBER_WINDOW_SCALE:
1260                         cm_node->tcp_cntxt.snd_wscale =
1261                                 all_options->as_windowscale.shiftcount;
1262                         break;
1263                 case OPTION_NUMBER_WRITE0:
1264                         cm_node->send_write0 = 1;
1265                         break;
1266                 default:
1267                         nes_debug(NES_DBG_CM, "TCP Option not understood: %x\n",
1268                                 all_options->as_base.optionnum);
1269                         break;
1270                 }
1271                 offset += all_options->as_base.length;
1272         }
1273         if ((!got_mss_option) && (syn_packet))
1274                 cm_node->tcp_cntxt.mss = NES_CM_DEFAULT_MSS;
1275         return 0;
1276 }
1277
1278 static void drop_packet(struct sk_buff *skb)
1279 {
1280         atomic_inc(&cm_accel_dropped_pkts);
1281         dev_kfree_skb_any(skb);
1282 }
1283
1284 static void handle_fin_pkt(struct nes_cm_node *cm_node, struct sk_buff *skb,
1285         struct tcphdr *tcph)
1286 {
1287         atomic_inc(&cm_resets_recvd);
1288         nes_debug(NES_DBG_CM, "Received FIN, cm_node = %p, state = %u. "
1289                 "refcnt=%d\n", cm_node, cm_node->state,
1290                 atomic_read(&cm_node->ref_count));
1291         cm_node->tcp_cntxt.rcv_nxt++;
1292         cleanup_retrans_entry(cm_node);
1293         switch (cm_node->state) {
1294         case NES_CM_STATE_SYN_RCVD:
1295         case NES_CM_STATE_SYN_SENT:
1296         case NES_CM_STATE_ESTABLISHED:
1297         case NES_CM_STATE_MPAREQ_SENT:
1298                 cm_node->state = NES_CM_STATE_LAST_ACK;
1299                 send_fin(cm_node, skb);
1300                 break;
1301         case NES_CM_STATE_FIN_WAIT1:
1302                 cm_node->state = NES_CM_STATE_CLOSING;
1303                 send_ack(cm_node, skb);
1304                 break;
1305         case NES_CM_STATE_FIN_WAIT2:
1306                 cm_node->state = NES_CM_STATE_TIME_WAIT;
1307                 send_ack(cm_node, skb);
1308                 cm_node->state = NES_CM_STATE_CLOSED;
1309                 break;
1310         case NES_CM_STATE_TSA:
1311         default:
1312                 nes_debug(NES_DBG_CM, "Error Rcvd FIN for node-%p state = %d\n",
1313                         cm_node, cm_node->state);
1314                 drop_packet(skb);
1315                 break;
1316         }
1317 }
1318
1319
1320 static void handle_rst_pkt(struct nes_cm_node *cm_node, struct sk_buff *skb,
1321         struct tcphdr *tcph)
1322 {
1323
1324         int     reset = 0;      /* whether to send reset in case of err.. */
1325         atomic_inc(&cm_resets_recvd);
1326         nes_debug(NES_DBG_CM, "Received Reset, cm_node = %p, state = %u."
1327                         " refcnt=%d\n", cm_node, cm_node->state,
1328                         atomic_read(&cm_node->ref_count));
1329         cleanup_retrans_entry(cm_node);
1330         switch (cm_node->state) {
1331         case NES_CM_STATE_SYN_SENT:
1332         case NES_CM_STATE_MPAREQ_SENT:
1333                 nes_debug(NES_DBG_CM, "%s[%u] create abort for cm_node=%p "
1334                         "listener=%p state=%d\n", __func__, __LINE__, cm_node,
1335                         cm_node->listener, cm_node->state);
1336                 active_open_err(cm_node, skb, reset);
1337                 break;
1338         /* For PASSIVE open states, remove the cm_node event */
1339         case NES_CM_STATE_ESTABLISHED:
1340         case NES_CM_STATE_SYN_RCVD:
1341         case NES_CM_STATE_LISTENING:
1342                 nes_debug(NES_DBG_CM, "Bad state %s[%u]\n", __func__, __LINE__);
1343                 passive_open_err(cm_node, skb, reset);
1344                 break;
1345         case NES_CM_STATE_TSA:
1346         default:
1347                 break;
1348         }
1349 }
1350
1351 static void handle_rcv_mpa(struct nes_cm_node *cm_node, struct sk_buff *skb,
1352         enum nes_cm_event_type type)
1353 {
1354
1355         int     ret;
1356         int datasize = skb->len;
1357         u8 *dataloc = skb->data;
1358         ret = parse_mpa(cm_node, dataloc, datasize);
1359         if (ret < 0) {
1360                 nes_debug(NES_DBG_CM, "didn't like MPA Request\n");
1361                 if (type == NES_CM_EVENT_CONNECTED) {
1362                         nes_debug(NES_DBG_CM, "%s[%u] create abort for "
1363                                 "cm_node=%p listener=%p state=%d\n", __func__,
1364                                 __LINE__, cm_node, cm_node->listener,
1365                                 cm_node->state);
1366                         active_open_err(cm_node, skb, 1);
1367                 } else {
1368                         passive_open_err(cm_node, skb, 1);
1369                 }
1370         } else {
1371                 cleanup_retrans_entry(cm_node);
1372                 dev_kfree_skb_any(skb);
1373                 if (type == NES_CM_EVENT_CONNECTED)
1374                         cm_node->state = NES_CM_STATE_TSA;
1375                 create_event(cm_node, type);
1376
1377         }
1378         return ;
1379 }
1380
1381 static void indicate_pkt_err(struct nes_cm_node *cm_node, struct sk_buff *skb)
1382 {
1383         switch (cm_node->state) {
1384         case NES_CM_STATE_SYN_SENT:
1385         case NES_CM_STATE_MPAREQ_SENT:
1386                 nes_debug(NES_DBG_CM, "%s[%u] create abort for cm_node=%p "
1387                         "listener=%p state=%d\n", __func__, __LINE__, cm_node,
1388                         cm_node->listener, cm_node->state);
1389                 active_open_err(cm_node, skb, 1);
1390                 break;
1391         case NES_CM_STATE_ESTABLISHED:
1392         case NES_CM_STATE_SYN_RCVD:
1393                 passive_open_err(cm_node, skb, 1);
1394                 break;
1395         case NES_CM_STATE_TSA:
1396         default:
1397                 drop_packet(skb);
1398         }
1399 }
1400
1401 static int check_syn(struct nes_cm_node *cm_node, struct tcphdr *tcph,
1402         struct sk_buff *skb)
1403 {
1404         int err;
1405
1406         err = ((ntohl(tcph->ack_seq) == cm_node->tcp_cntxt.loc_seq_num))? 0 : 1;
1407         if (err)
1408                 active_open_err(cm_node, skb, 1);
1409
1410         return err;
1411 }
1412
1413 static int check_seq(struct nes_cm_node *cm_node, struct tcphdr *tcph,
1414         struct sk_buff *skb)
1415 {
1416         int err = 0;
1417         u32 seq;
1418         u32 ack_seq;
1419         u32 loc_seq_num = cm_node->tcp_cntxt.loc_seq_num;
1420         u32 rcv_nxt = cm_node->tcp_cntxt.rcv_nxt;
1421         u32 rcv_wnd;
1422         seq = ntohl(tcph->seq);
1423         ack_seq = ntohl(tcph->ack_seq);
1424         rcv_wnd = cm_node->tcp_cntxt.rcv_wnd;
1425         if (ack_seq != loc_seq_num)
1426                 err = 1;
1427         else if ((seq + rcv_wnd) < rcv_nxt)
1428                 err = 1;
1429         if (err) {
1430                 nes_debug(NES_DBG_CM, "%s[%u] create abort for cm_node=%p "
1431                         "listener=%p state=%d\n", __func__, __LINE__, cm_node,
1432                         cm_node->listener, cm_node->state);
1433                 indicate_pkt_err(cm_node, skb);
1434                 nes_debug(NES_DBG_CM, "seq ERROR cm_node =%p seq=0x%08X "
1435                         "rcv_nxt=0x%08X rcv_wnd=0x%x\n", cm_node, seq, rcv_nxt,
1436                         rcv_wnd);
1437         }
1438         return err;
1439 }
1440
1441 /*
1442  * handle_syn_pkt() is for Passive node. The syn packet is received when a node
1443  * is created with a listener or it may comein as rexmitted packet which in
1444  * that case will be just dropped.
1445  */
1446
1447 static void handle_syn_pkt(struct nes_cm_node *cm_node, struct sk_buff *skb,
1448         struct tcphdr *tcph)
1449 {
1450         int ret;
1451         u32 inc_sequence;
1452         int optionsize;
1453
1454         optionsize = (tcph->doff << 2) - sizeof(struct tcphdr);
1455         skb_pull(skb, tcph->doff << 2);
1456         inc_sequence = ntohl(tcph->seq);
1457
1458         switch (cm_node->state) {
1459         case NES_CM_STATE_SYN_SENT:
1460         case NES_CM_STATE_MPAREQ_SENT:
1461                 /* Rcvd syn on active open connection*/
1462                 active_open_err(cm_node, skb, 1);
1463                 break;
1464         case NES_CM_STATE_LISTENING:
1465                 /* Passive OPEN */
1466                 cm_node->accept_pend = 1;
1467                 atomic_inc(&cm_node->listener->pend_accepts_cnt);
1468                 if (atomic_read(&cm_node->listener->pend_accepts_cnt) >
1469                                 cm_node->listener->backlog) {
1470                         nes_debug(NES_DBG_CM, "drop syn due to backlog "
1471                                 "pressure \n");
1472                         cm_backlog_drops++;
1473                         passive_open_err(cm_node, skb, 0);
1474                         break;
1475                 }
1476                 ret = handle_tcp_options(cm_node, tcph, skb, optionsize,
1477                         1);
1478                 if (ret) {
1479                         passive_open_err(cm_node, skb, 0);
1480                         /* drop pkt */
1481                         break;
1482                 }
1483                 cm_node->tcp_cntxt.rcv_nxt = inc_sequence + 1;
1484                 BUG_ON(cm_node->send_entry);
1485                 cm_node->state = NES_CM_STATE_SYN_RCVD;
1486                 send_syn(cm_node, 1, skb);
1487                 break;
1488         case NES_CM_STATE_TSA:
1489         case NES_CM_STATE_ESTABLISHED:
1490         case NES_CM_STATE_FIN_WAIT1:
1491         case NES_CM_STATE_FIN_WAIT2:
1492         case NES_CM_STATE_MPAREQ_RCVD:
1493         case NES_CM_STATE_LAST_ACK:
1494         case NES_CM_STATE_CLOSING:
1495         case NES_CM_STATE_UNKNOWN:
1496         case NES_CM_STATE_CLOSED:
1497         default:
1498                 drop_packet(skb);
1499                 break;
1500         }
1501 }
1502
1503 static void handle_synack_pkt(struct nes_cm_node *cm_node, struct sk_buff *skb,
1504         struct tcphdr *tcph)
1505 {
1506
1507         int ret;
1508         u32 inc_sequence;
1509         int optionsize;
1510
1511         optionsize = (tcph->doff << 2) - sizeof(struct tcphdr);
1512         skb_pull(skb, tcph->doff << 2);
1513         inc_sequence = ntohl(tcph->seq);
1514         switch (cm_node->state) {
1515         case NES_CM_STATE_SYN_SENT:
1516                 /* active open */
1517                 if (check_syn(cm_node, tcph, skb))
1518                         return;
1519                 cm_node->tcp_cntxt.rem_ack_num = ntohl(tcph->ack_seq);
1520                 /* setup options */
1521                 ret = handle_tcp_options(cm_node, tcph, skb, optionsize, 0);
1522                 if (ret) {
1523                         nes_debug(NES_DBG_CM, "cm_node=%p tcp_options failed\n",
1524                                 cm_node);
1525                         break;
1526                 }
1527                 cleanup_retrans_entry(cm_node);
1528                 cm_node->tcp_cntxt.rcv_nxt = inc_sequence + 1;
1529                 send_mpa_request(cm_node, skb);
1530                 cm_node->state = NES_CM_STATE_MPAREQ_SENT;
1531                 break;
1532         case NES_CM_STATE_MPAREQ_RCVD:
1533                 /* passive open, so should not be here */
1534                 passive_open_err(cm_node, skb, 1);
1535                 break;
1536         case NES_CM_STATE_ESTABLISHED:
1537         case NES_CM_STATE_FIN_WAIT1:
1538         case NES_CM_STATE_FIN_WAIT2:
1539         case NES_CM_STATE_LAST_ACK:
1540         case NES_CM_STATE_TSA:
1541         case NES_CM_STATE_CLOSING:
1542         case NES_CM_STATE_UNKNOWN:
1543         case NES_CM_STATE_CLOSED:
1544         case NES_CM_STATE_MPAREQ_SENT:
1545         default:
1546                 drop_packet(skb);
1547                 break;
1548         }
1549 }
1550
1551 static void handle_ack_pkt(struct nes_cm_node *cm_node, struct sk_buff *skb,
1552         struct tcphdr *tcph)
1553 {
1554         int datasize = 0;
1555         u32 inc_sequence;
1556         u32 rem_seq_ack;
1557         u32 rem_seq;
1558         if (check_seq(cm_node, tcph, skb))
1559                 return;
1560
1561         skb_pull(skb, tcph->doff << 2);
1562         inc_sequence = ntohl(tcph->seq);
1563         rem_seq = ntohl(tcph->seq);
1564         rem_seq_ack =  ntohl(tcph->ack_seq);
1565         datasize = skb->len;
1566
1567         switch (cm_node->state) {
1568         case NES_CM_STATE_SYN_RCVD:
1569                 /* Passive OPEN */
1570                 cm_node->tcp_cntxt.rem_ack_num = ntohl(tcph->ack_seq);
1571                 cm_node->state = NES_CM_STATE_ESTABLISHED;
1572                 if (datasize) {
1573                         cm_node->tcp_cntxt.rcv_nxt = inc_sequence + datasize;
1574                         cm_node->state = NES_CM_STATE_MPAREQ_RCVD;
1575                         handle_rcv_mpa(cm_node, skb, NES_CM_EVENT_MPA_REQ);
1576                  } else { /* rcvd ACK only */
1577                         dev_kfree_skb_any(skb);
1578                         cleanup_retrans_entry(cm_node);
1579                  }
1580                 break;
1581         case NES_CM_STATE_ESTABLISHED:
1582                 /* Passive OPEN */
1583                 /* We expect mpa frame to be received only */
1584                 if (datasize) {
1585                         cm_node->tcp_cntxt.rcv_nxt = inc_sequence + datasize;
1586                         cm_node->state = NES_CM_STATE_MPAREQ_RCVD;
1587                         handle_rcv_mpa(cm_node, skb,
1588                                 NES_CM_EVENT_MPA_REQ);
1589                 } else
1590                         drop_packet(skb);
1591                 break;
1592         case NES_CM_STATE_MPAREQ_SENT:
1593                 cm_node->tcp_cntxt.rem_ack_num = ntohl(tcph->ack_seq);
1594                 if (datasize) {
1595                         cm_node->tcp_cntxt.rcv_nxt = inc_sequence + datasize;
1596                         handle_rcv_mpa(cm_node, skb, NES_CM_EVENT_CONNECTED);
1597                 } else { /* Could be just an ack pkt.. */
1598                         cleanup_retrans_entry(cm_node);
1599                         dev_kfree_skb_any(skb);
1600                 }
1601                 break;
1602         case NES_CM_STATE_FIN_WAIT1:
1603         case NES_CM_STATE_SYN_SENT:
1604         case NES_CM_STATE_FIN_WAIT2:
1605         case NES_CM_STATE_TSA:
1606         case NES_CM_STATE_CLOSED:
1607         case NES_CM_STATE_MPAREQ_RCVD:
1608         case NES_CM_STATE_LAST_ACK:
1609         case NES_CM_STATE_CLOSING:
1610         case NES_CM_STATE_UNKNOWN:
1611         default:
1612                 drop_packet(skb);
1613                 break;
1614         }
1615 }
1616
1617
1618
1619 static int handle_tcp_options(struct nes_cm_node *cm_node, struct tcphdr *tcph,
1620         struct sk_buff *skb, int optionsize, int passive)
1621 {
1622         u8 *optionsloc = (u8 *)&tcph[1];
1623         if (optionsize) {
1624                 if (process_options(cm_node, optionsloc, optionsize,
1625                         (u32)tcph->syn)) {
1626                         nes_debug(NES_DBG_CM, "%s: Node %p, Sending RESET\n",
1627                                 __func__, cm_node);
1628                         if (passive)
1629                                 passive_open_err(cm_node, skb, 0);
1630                         else
1631                                 active_open_err(cm_node, skb, 0);
1632                         return 1;
1633                 }
1634         }
1635
1636         cm_node->tcp_cntxt.snd_wnd = ntohs(tcph->window) <<
1637                         cm_node->tcp_cntxt.snd_wscale;
1638
1639         if (cm_node->tcp_cntxt.snd_wnd > cm_node->tcp_cntxt.max_snd_wnd)
1640                 cm_node->tcp_cntxt.max_snd_wnd = cm_node->tcp_cntxt.snd_wnd;
1641         return 0;
1642 }
1643
1644 /*
1645  * active_open_err() will send reset() if flag set..
1646  * It will also send ABORT event.
1647  */
1648
1649 static void active_open_err(struct nes_cm_node *cm_node, struct sk_buff *skb,
1650         int reset)
1651 {
1652         cleanup_retrans_entry(cm_node);
1653         if (reset) {
1654                 nes_debug(NES_DBG_CM, "ERROR active err called for cm_node=%p, "
1655                                 "state=%d\n", cm_node, cm_node->state);
1656                 add_ref_cm_node(cm_node);
1657                 send_reset(cm_node, skb);
1658         } else
1659                 dev_kfree_skb_any(skb);
1660
1661         cm_node->state = NES_CM_STATE_CLOSED;
1662         create_event(cm_node, NES_CM_EVENT_ABORTED);
1663 }
1664
1665 /*
1666  * passive_open_err() will either do a reset() or will free up the skb and
1667  * remove the cm_node.
1668  */
1669
1670 static void passive_open_err(struct nes_cm_node *cm_node, struct sk_buff *skb,
1671         int reset)
1672 {
1673         cleanup_retrans_entry(cm_node);
1674         cm_node->state = NES_CM_STATE_CLOSED;
1675         if (reset) {
1676                 nes_debug(NES_DBG_CM, "passive_open_err sending RST for "
1677                         "cm_node=%p state =%d\n", cm_node, cm_node->state);
1678                 send_reset(cm_node, skb);
1679         } else {
1680                 dev_kfree_skb_any(skb);
1681                 rem_ref_cm_node(cm_node->cm_core, cm_node);
1682         }
1683 }
1684
1685 /*
1686  * free_retrans_entry() routines assumes that the retrans_list_lock has
1687  * been acquired before calling.
1688  */
1689 static void free_retrans_entry(struct nes_cm_node *cm_node)
1690 {
1691         struct nes_timer_entry *send_entry;
1692         send_entry = cm_node->send_entry;
1693         if (send_entry) {
1694                 cm_node->send_entry = NULL;
1695                 dev_kfree_skb_any(send_entry->skb);
1696                 kfree(send_entry);
1697                 rem_ref_cm_node(cm_node->cm_core, cm_node);
1698         }
1699 }
1700
1701 static void cleanup_retrans_entry(struct nes_cm_node *cm_node)
1702 {
1703         unsigned long flags;
1704
1705         spin_lock_irqsave(&cm_node->retrans_list_lock, flags);
1706         free_retrans_entry(cm_node);
1707         spin_unlock_irqrestore(&cm_node->retrans_list_lock, flags);
1708 }
1709
1710 /**
1711  * process_packet
1712  * Returns skb if to be freed, else it will return NULL if already used..
1713  */
1714 static void process_packet(struct nes_cm_node *cm_node, struct sk_buff *skb,
1715         struct nes_cm_core *cm_core)
1716 {
1717         enum nes_tcpip_pkt_type pkt_type = NES_PKT_TYPE_UNKNOWN;
1718         struct tcphdr *tcph = tcp_hdr(skb);
1719         skb_pull(skb, ip_hdr(skb)->ihl << 2);
1720
1721         nes_debug(NES_DBG_CM, "process_packet: cm_node=%p state =%d syn=%d "
1722                 "ack=%d rst=%d fin=%d\n", cm_node, cm_node->state, tcph->syn,
1723                 tcph->ack, tcph->rst, tcph->fin);
1724
1725         if (tcph->rst)
1726                 pkt_type = NES_PKT_TYPE_RST;
1727         else if (tcph->syn) {
1728                 pkt_type = NES_PKT_TYPE_SYN;
1729                 if (tcph->ack)
1730                         pkt_type = NES_PKT_TYPE_SYNACK;
1731         } else if (tcph->fin)
1732                 pkt_type = NES_PKT_TYPE_FIN;
1733         else if (tcph->ack)
1734                 pkt_type = NES_PKT_TYPE_ACK;
1735
1736         switch (pkt_type) {
1737         case NES_PKT_TYPE_SYN:
1738                 handle_syn_pkt(cm_node, skb, tcph);
1739                 break;
1740         case NES_PKT_TYPE_SYNACK:
1741                 handle_synack_pkt(cm_node, skb, tcph);
1742                 break;
1743         case NES_PKT_TYPE_ACK:
1744                 handle_ack_pkt(cm_node, skb, tcph);
1745                 break;
1746         case NES_PKT_TYPE_RST:
1747                 handle_rst_pkt(cm_node, skb, tcph);
1748                 break;
1749         case NES_PKT_TYPE_FIN:
1750                 handle_fin_pkt(cm_node, skb, tcph);
1751                 break;
1752         default:
1753                 drop_packet(skb);
1754                 break;
1755         }
1756 }
1757
1758 /**
1759  * mini_cm_listen - create a listen node with params
1760  */
1761 static struct nes_cm_listener *mini_cm_listen(struct nes_cm_core *cm_core,
1762         struct nes_vnic *nesvnic, struct nes_cm_info *cm_info)
1763 {
1764         struct nes_cm_listener *listener;
1765         unsigned long flags;
1766
1767         nes_debug(NES_DBG_CM, "Search for 0x%08x : 0x%04x\n",
1768                 cm_info->loc_addr, cm_info->loc_port);
1769
1770         /* cannot have multiple matching listeners */
1771         listener = find_listener(cm_core, htonl(cm_info->loc_addr),
1772                         htons(cm_info->loc_port), NES_CM_LISTENER_EITHER_STATE);
1773         if (listener && listener->listener_state == NES_CM_LISTENER_ACTIVE_STATE) {
1774                 /* find automatically incs ref count ??? */
1775                 atomic_dec(&listener->ref_count);
1776                 nes_debug(NES_DBG_CM, "Not creating listener since it already exists\n");
1777                 return NULL;
1778         }
1779
1780         if (!listener) {
1781                 /* create a CM listen node (1/2 node to compare incoming traffic to) */
1782                 listener = kzalloc(sizeof(*listener), GFP_ATOMIC);
1783                 if (!listener) {
1784                         nes_debug(NES_DBG_CM, "Not creating listener memory allocation failed\n");
1785                         return NULL;
1786                 }
1787
1788                 listener->loc_addr = htonl(cm_info->loc_addr);
1789                 listener->loc_port = htons(cm_info->loc_port);
1790                 listener->reused_node = 0;
1791
1792                 atomic_set(&listener->ref_count, 1);
1793         }
1794         /* pasive case */
1795         /* find already inc'ed the ref count */
1796         else {
1797                 listener->reused_node = 1;
1798         }
1799
1800         listener->cm_id = cm_info->cm_id;
1801         atomic_set(&listener->pend_accepts_cnt, 0);
1802         listener->cm_core = cm_core;
1803         listener->nesvnic = nesvnic;
1804         atomic_inc(&cm_core->node_cnt);
1805
1806         listener->conn_type = cm_info->conn_type;
1807         listener->backlog = cm_info->backlog;
1808         listener->listener_state = NES_CM_LISTENER_ACTIVE_STATE;
1809
1810         if (!listener->reused_node) {
1811                 spin_lock_irqsave(&cm_core->listen_list_lock, flags);
1812                 list_add(&listener->list, &cm_core->listen_list.list);
1813                 spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
1814                 atomic_inc(&cm_core->listen_node_cnt);
1815         }
1816
1817         nes_debug(NES_DBG_CM, "Api - listen(): addr=0x%08X, port=0x%04x,"
1818                         " listener = %p, backlog = %d, cm_id = %p.\n",
1819                         cm_info->loc_addr, cm_info->loc_port,
1820                         listener, listener->backlog, listener->cm_id);
1821
1822         return listener;
1823 }
1824
1825
1826 /**
1827  * mini_cm_connect - make a connection node with params
1828  */
1829 struct nes_cm_node *mini_cm_connect(struct nes_cm_core *cm_core,
1830         struct nes_vnic *nesvnic, u16 private_data_len,
1831         void *private_data, struct nes_cm_info *cm_info)
1832 {
1833         int ret = 0;
1834         struct nes_cm_node *cm_node;
1835         struct nes_cm_listener *loopbackremotelistener;
1836         struct nes_cm_node *loopbackremotenode;
1837         struct nes_cm_info loopback_cm_info;
1838         u16 mpa_frame_size = sizeof(struct ietf_mpa_frame) + private_data_len;
1839         struct ietf_mpa_frame *mpa_frame = NULL;
1840
1841         /* create a CM connection node */
1842         cm_node = make_cm_node(cm_core, nesvnic, cm_info, NULL);
1843         if (!cm_node)
1844                 return NULL;
1845         mpa_frame = &cm_node->mpa_frame;
1846         strcpy(mpa_frame->key, IEFT_MPA_KEY_REQ);
1847         mpa_frame->flags = IETF_MPA_FLAGS_CRC;
1848         mpa_frame->rev =  IETF_MPA_VERSION;
1849         mpa_frame->priv_data_len = htons(private_data_len);
1850
1851         /* set our node side to client (active) side */
1852         cm_node->tcp_cntxt.client = 1;
1853         cm_node->tcp_cntxt.rcv_wscale = NES_CM_DEFAULT_RCV_WND_SCALE;
1854
1855         if (cm_info->loc_addr == cm_info->rem_addr) {
1856                 loopbackremotelistener = find_listener(cm_core,
1857                                 ntohl(nesvnic->local_ipaddr), cm_node->rem_port,
1858                                 NES_CM_LISTENER_ACTIVE_STATE);
1859                 if (loopbackremotelistener == NULL) {
1860                         create_event(cm_node, NES_CM_EVENT_ABORTED);
1861                 } else {
1862                         atomic_inc(&cm_loopbacks);
1863                         loopback_cm_info = *cm_info;
1864                         loopback_cm_info.loc_port = cm_info->rem_port;
1865                         loopback_cm_info.rem_port = cm_info->loc_port;
1866                         loopback_cm_info.cm_id = loopbackremotelistener->cm_id;
1867                         loopbackremotenode = make_cm_node(cm_core, nesvnic,
1868                                 &loopback_cm_info, loopbackremotelistener);
1869                         loopbackremotenode->loopbackpartner = cm_node;
1870                         loopbackremotenode->tcp_cntxt.rcv_wscale =
1871                                 NES_CM_DEFAULT_RCV_WND_SCALE;
1872                         cm_node->loopbackpartner = loopbackremotenode;
1873                         memcpy(loopbackremotenode->mpa_frame_buf, private_data,
1874                                 private_data_len);
1875                         loopbackremotenode->mpa_frame_size = private_data_len;
1876
1877                         /* we are done handling this state. */
1878                         /* set node to a TSA state */
1879                         cm_node->state = NES_CM_STATE_TSA;
1880                         cm_node->tcp_cntxt.rcv_nxt =
1881                                 loopbackremotenode->tcp_cntxt.loc_seq_num;
1882                         loopbackremotenode->tcp_cntxt.rcv_nxt =
1883                                 cm_node->tcp_cntxt.loc_seq_num;
1884                         cm_node->tcp_cntxt.max_snd_wnd =
1885                                 loopbackremotenode->tcp_cntxt.rcv_wnd;
1886                         loopbackremotenode->tcp_cntxt.max_snd_wnd =
1887                                 cm_node->tcp_cntxt.rcv_wnd;
1888                         cm_node->tcp_cntxt.snd_wnd =
1889                                 loopbackremotenode->tcp_cntxt.rcv_wnd;
1890                         loopbackremotenode->tcp_cntxt.snd_wnd =
1891                                 cm_node->tcp_cntxt.rcv_wnd;
1892                         cm_node->tcp_cntxt.snd_wscale =
1893                                 loopbackremotenode->tcp_cntxt.rcv_wscale;
1894                         loopbackremotenode->tcp_cntxt.snd_wscale =
1895                                 cm_node->tcp_cntxt.rcv_wscale;
1896
1897                         create_event(loopbackremotenode, NES_CM_EVENT_MPA_REQ);
1898                 }
1899                 return cm_node;
1900         }
1901
1902         /* set our node side to client (active) side */
1903         cm_node->tcp_cntxt.client = 1;
1904         /* init our MPA frame ptr */
1905         memcpy(mpa_frame->priv_data, private_data, private_data_len);
1906
1907         cm_node->mpa_frame_size = mpa_frame_size;
1908
1909         /* send a syn and goto syn sent state */
1910         cm_node->state = NES_CM_STATE_SYN_SENT;
1911         ret = send_syn(cm_node, 0, NULL);
1912
1913         if (ret) {
1914                 /* error in sending the syn free up the cm_node struct */
1915                 nes_debug(NES_DBG_CM, "Api - connect() FAILED: dest "
1916                         "addr=0x%08X, port=0x%04x, cm_node=%p, cm_id = %p.\n",
1917                         cm_node->rem_addr, cm_node->rem_port, cm_node,
1918                         cm_node->cm_id);
1919                 rem_ref_cm_node(cm_node->cm_core, cm_node);
1920                 cm_node = NULL;
1921         }
1922
1923         if (cm_node)
1924                 nes_debug(NES_DBG_CM, "Api - connect(): dest addr=0x%08X,"
1925                         "port=0x%04x, cm_node=%p, cm_id = %p.\n",
1926                         cm_node->rem_addr, cm_node->rem_port, cm_node,
1927                         cm_node->cm_id);
1928
1929         return cm_node;
1930 }
1931
1932
1933 /**
1934  * mini_cm_accept - accept a connection
1935  * This function is never called
1936  */
1937 static int mini_cm_accept(struct nes_cm_core *cm_core,
1938         struct ietf_mpa_frame *mpa_frame, struct nes_cm_node *cm_node)
1939 {
1940         return 0;
1941 }
1942
1943
1944 /**
1945  * mini_cm_reject - reject and teardown a connection
1946  */
1947 static int mini_cm_reject(struct nes_cm_core *cm_core,
1948         struct ietf_mpa_frame *mpa_frame, struct nes_cm_node *cm_node)
1949 {
1950         int ret = 0;
1951
1952         nes_debug(NES_DBG_CM, "%s cm_node=%p type=%d state=%d\n",
1953                 __func__, cm_node, cm_node->tcp_cntxt.client, cm_node->state);
1954
1955         if (cm_node->tcp_cntxt.client)
1956                 return ret;
1957         cleanup_retrans_entry(cm_node);
1958         cm_node->state = NES_CM_STATE_CLOSED;
1959
1960         ret = send_reset(cm_node, NULL);
1961         return ret;
1962 }
1963
1964
1965 /**
1966  * mini_cm_close
1967  */
1968 static int mini_cm_close(struct nes_cm_core *cm_core, struct nes_cm_node *cm_node)
1969 {
1970         int ret = 0;
1971
1972         if (!cm_core || !cm_node)
1973                 return -EINVAL;
1974
1975         switch (cm_node->state) {
1976         case NES_CM_STATE_SYN_RCVD:
1977         case NES_CM_STATE_SYN_SENT:
1978         case NES_CM_STATE_ONE_SIDE_ESTABLISHED:
1979         case NES_CM_STATE_ESTABLISHED:
1980         case NES_CM_STATE_ACCEPTING:
1981         case NES_CM_STATE_MPAREQ_SENT:
1982         case NES_CM_STATE_MPAREQ_RCVD:
1983                 cleanup_retrans_entry(cm_node);
1984                 send_reset(cm_node, NULL);
1985                 break;
1986         case NES_CM_STATE_CLOSE_WAIT:
1987                 cm_node->state = NES_CM_STATE_LAST_ACK;
1988                 send_fin(cm_node, NULL);
1989                 break;
1990         case NES_CM_STATE_FIN_WAIT1:
1991         case NES_CM_STATE_FIN_WAIT2:
1992         case NES_CM_STATE_LAST_ACK:
1993         case NES_CM_STATE_TIME_WAIT:
1994         case NES_CM_STATE_CLOSING:
1995                 ret = -1;
1996                 break;
1997         case NES_CM_STATE_LISTENING:
1998         case NES_CM_STATE_UNKNOWN:
1999         case NES_CM_STATE_INITED:
2000         case NES_CM_STATE_CLOSED:
2001                 ret = rem_ref_cm_node(cm_core, cm_node);
2002                 break;
2003         case NES_CM_STATE_TSA:
2004                 if (cm_node->send_entry)
2005                         printk(KERN_ERR "ERROR Close got called from STATE_TSA "
2006                                 "send_entry=%p\n", cm_node->send_entry);
2007                 ret = rem_ref_cm_node(cm_core, cm_node);
2008                 break;
2009         }
2010         cm_node->cm_id = NULL;
2011         return ret;
2012 }
2013
2014
2015 /**
2016  * recv_pkt - recv an ETHERNET packet, and process it through CM
2017  * node state machine
2018  */
2019 static void mini_cm_recv_pkt(struct nes_cm_core *cm_core,
2020         struct nes_vnic *nesvnic, struct sk_buff *skb)
2021 {
2022         struct nes_cm_node *cm_node = NULL;
2023         struct nes_cm_listener *listener = NULL;
2024         struct iphdr *iph;
2025         struct tcphdr *tcph;
2026         struct nes_cm_info nfo;
2027
2028         if (!skb)
2029                 return;
2030         if (skb->len < sizeof(struct iphdr) + sizeof(struct tcphdr)) {
2031                 dev_kfree_skb_any(skb);
2032                 return;
2033         }
2034
2035         iph = (struct iphdr *)skb->data;
2036         tcph = (struct tcphdr *)(skb->data + sizeof(struct iphdr));
2037         skb_reset_network_header(skb);
2038         skb_set_transport_header(skb, sizeof(*tcph));
2039         if (!tcph) {
2040                 dev_kfree_skb_any(skb);
2041                 return;
2042         }
2043         skb->len = ntohs(iph->tot_len);
2044
2045         nfo.loc_addr = ntohl(iph->daddr);
2046         nfo.loc_port = ntohs(tcph->dest);
2047         nfo.rem_addr = ntohl(iph->saddr);
2048         nfo.rem_port = ntohs(tcph->source);
2049
2050         nes_debug(NES_DBG_CM, "Received packet: dest=" NIPQUAD_FMT
2051                   ":0x%04X src=" NIPQUAD_FMT ":0x%04X\n",
2052                   NIPQUAD(iph->daddr), tcph->dest,
2053                   NIPQUAD(iph->saddr), tcph->source);
2054
2055         do {
2056                 cm_node = find_node(cm_core,
2057                         nfo.rem_port, nfo.rem_addr,
2058                         nfo.loc_port, nfo.loc_addr);
2059
2060                 if (!cm_node) {
2061                         /* Only type of packet accepted are for */
2062                         /* the PASSIVE open (syn only) */
2063                         if ((!tcph->syn) || (tcph->ack)) {
2064                                 cm_packets_dropped++;
2065                                 break;
2066                         }
2067                         listener = find_listener(cm_core, nfo.loc_addr,
2068                                 nfo.loc_port,
2069                                 NES_CM_LISTENER_ACTIVE_STATE);
2070                         if (listener) {
2071                                 nfo.cm_id = listener->cm_id;
2072                                 nfo.conn_type = listener->conn_type;
2073                         } else {
2074                                 nes_debug(NES_DBG_CM, "Unable to find listener "
2075                                         "for the pkt\n");
2076                                 cm_packets_dropped++;
2077                                 dev_kfree_skb_any(skb);
2078                                 break;
2079                         }
2080
2081                         cm_node = make_cm_node(cm_core, nesvnic, &nfo,
2082                                 listener);
2083                         if (!cm_node) {
2084                                 nes_debug(NES_DBG_CM, "Unable to allocate "
2085                                         "node\n");
2086                                 cm_packets_dropped++;
2087                                 atomic_dec(&listener->ref_count);
2088                                 dev_kfree_skb_any(skb);
2089                                 break;
2090                         }
2091                         if (!tcph->rst && !tcph->fin) {
2092                                 cm_node->state = NES_CM_STATE_LISTENING;
2093                         } else {
2094                                 cm_packets_dropped++;
2095                                 rem_ref_cm_node(cm_core, cm_node);
2096                                 dev_kfree_skb_any(skb);
2097                                 break;
2098                         }
2099                         add_ref_cm_node(cm_node);
2100                 } else if (cm_node->state == NES_CM_STATE_TSA) {
2101                         rem_ref_cm_node(cm_core, cm_node);
2102                         atomic_inc(&cm_accel_dropped_pkts);
2103                         dev_kfree_skb_any(skb);
2104                         break;
2105                 }
2106                 process_packet(cm_node, skb, cm_core);
2107                 rem_ref_cm_node(cm_core, cm_node);
2108         } while (0);
2109 }
2110
2111
2112 /**
2113  * nes_cm_alloc_core - allocate a top level instance of a cm core
2114  */
2115 static struct nes_cm_core *nes_cm_alloc_core(void)
2116 {
2117         int i;
2118
2119         struct nes_cm_core *cm_core;
2120         struct sk_buff *skb = NULL;
2121
2122         /* setup the CM core */
2123         /* alloc top level core control structure */
2124         cm_core = kzalloc(sizeof(*cm_core), GFP_KERNEL);
2125         if (!cm_core)
2126                 return NULL;
2127
2128         INIT_LIST_HEAD(&cm_core->connected_nodes);
2129         init_timer(&cm_core->tcp_timer);
2130         cm_core->tcp_timer.function = nes_cm_timer_tick;
2131
2132         cm_core->mtu   = NES_CM_DEFAULT_MTU;
2133         cm_core->state = NES_CM_STATE_INITED;
2134         cm_core->free_tx_pkt_max = NES_CM_DEFAULT_FREE_PKTS;
2135
2136         atomic_set(&cm_core->events_posted, 0);
2137
2138         /* init the packet lists */
2139         skb_queue_head_init(&cm_core->tx_free_list);
2140
2141         for (i = 0; i < NES_CM_DEFAULT_FRAME_CNT; i++) {
2142                 skb = dev_alloc_skb(cm_core->mtu);
2143                 if (!skb) {
2144                         kfree(cm_core);
2145                         return NULL;
2146                 }
2147                 /* add 'raw' skb to free frame list */
2148                 skb_queue_head(&cm_core->tx_free_list, skb);
2149         }
2150
2151         cm_core->api = &nes_cm_api;
2152
2153         spin_lock_init(&cm_core->ht_lock);
2154         spin_lock_init(&cm_core->listen_list_lock);
2155
2156         INIT_LIST_HEAD(&cm_core->listen_list.list);
2157
2158         nes_debug(NES_DBG_CM, "Init CM Core completed -- cm_core=%p\n", cm_core);
2159
2160         nes_debug(NES_DBG_CM, "Enable QUEUE EVENTS\n");
2161         cm_core->event_wq = create_singlethread_workqueue("nesewq");
2162         cm_core->post_event = nes_cm_post_event;
2163         nes_debug(NES_DBG_CM, "Enable QUEUE DISCONNECTS\n");
2164         cm_core->disconn_wq = create_singlethread_workqueue("nesdwq");
2165
2166         print_core(cm_core);
2167         return cm_core;
2168 }
2169
2170
2171 /**
2172  * mini_cm_dealloc_core - deallocate a top level instance of a cm core
2173  */
2174 static int mini_cm_dealloc_core(struct nes_cm_core *cm_core)
2175 {
2176         nes_debug(NES_DBG_CM, "De-Alloc CM Core (%p)\n", cm_core);
2177
2178         if (!cm_core)
2179                 return -EINVAL;
2180
2181         barrier();
2182
2183         if (timer_pending(&cm_core->tcp_timer)) {
2184                 del_timer(&cm_core->tcp_timer);
2185         }
2186
2187         destroy_workqueue(cm_core->event_wq);
2188         destroy_workqueue(cm_core->disconn_wq);
2189         nes_debug(NES_DBG_CM, "\n");
2190         kfree(cm_core);
2191
2192         return 0;
2193 }
2194
2195
2196 /**
2197  * mini_cm_get
2198  */
2199 static int mini_cm_get(struct nes_cm_core *cm_core)
2200 {
2201         return cm_core->state;
2202 }
2203
2204
2205 /**
2206  * mini_cm_set
2207  */
2208 static int mini_cm_set(struct nes_cm_core *cm_core, u32 type, u32 value)
2209 {
2210         int ret = 0;
2211
2212         switch (type) {
2213                 case NES_CM_SET_PKT_SIZE:
2214                         cm_core->mtu = value;
2215                         break;
2216                 case NES_CM_SET_FREE_PKT_Q_SIZE:
2217                         cm_core->free_tx_pkt_max = value;
2218                         break;
2219                 default:
2220                         /* unknown set option */
2221                         ret = -EINVAL;
2222         }
2223
2224         return ret;
2225 }
2226
2227
2228 /**
2229  * nes_cm_init_tsa_conn setup HW; MPA frames must be
2230  * successfully exchanged when this is called
2231  */
2232 static int nes_cm_init_tsa_conn(struct nes_qp *nesqp, struct nes_cm_node *cm_node)
2233 {
2234         int ret = 0;
2235
2236         if (!nesqp)
2237                 return -EINVAL;
2238
2239         nesqp->nesqp_context->misc |= cpu_to_le32(NES_QPCONTEXT_MISC_IPV4 |
2240                         NES_QPCONTEXT_MISC_NO_NAGLE | NES_QPCONTEXT_MISC_DO_NOT_FRAG |
2241                         NES_QPCONTEXT_MISC_DROS);
2242
2243         if (cm_node->tcp_cntxt.snd_wscale || cm_node->tcp_cntxt.rcv_wscale)
2244                 nesqp->nesqp_context->misc |= cpu_to_le32(NES_QPCONTEXT_MISC_WSCALE);
2245
2246         nesqp->nesqp_context->misc2 |= cpu_to_le32(64 << NES_QPCONTEXT_MISC2_TTL_SHIFT);
2247
2248         nesqp->nesqp_context->mss |= cpu_to_le32(((u32)cm_node->tcp_cntxt.mss) << 16);
2249
2250         nesqp->nesqp_context->tcp_state_flow_label |= cpu_to_le32(
2251                         (u32)NES_QPCONTEXT_TCPSTATE_EST << NES_QPCONTEXT_TCPFLOW_TCP_STATE_SHIFT);
2252
2253         nesqp->nesqp_context->pd_index_wscale |= cpu_to_le32(
2254                         (cm_node->tcp_cntxt.snd_wscale << NES_QPCONTEXT_PDWSCALE_SND_WSCALE_SHIFT) &
2255                         NES_QPCONTEXT_PDWSCALE_SND_WSCALE_MASK);
2256
2257         nesqp->nesqp_context->pd_index_wscale |= cpu_to_le32(
2258                         (cm_node->tcp_cntxt.rcv_wscale << NES_QPCONTEXT_PDWSCALE_RCV_WSCALE_SHIFT) &
2259                         NES_QPCONTEXT_PDWSCALE_RCV_WSCALE_MASK);
2260
2261         nesqp->nesqp_context->keepalive = cpu_to_le32(0x80);
2262         nesqp->nesqp_context->ts_recent = 0;
2263         nesqp->nesqp_context->ts_age = 0;
2264         nesqp->nesqp_context->snd_nxt = cpu_to_le32(cm_node->tcp_cntxt.loc_seq_num);
2265         nesqp->nesqp_context->snd_wnd = cpu_to_le32(cm_node->tcp_cntxt.snd_wnd);
2266         nesqp->nesqp_context->rcv_nxt = cpu_to_le32(cm_node->tcp_cntxt.rcv_nxt);
2267         nesqp->nesqp_context->rcv_wnd = cpu_to_le32(cm_node->tcp_cntxt.rcv_wnd <<
2268                         cm_node->tcp_cntxt.rcv_wscale);
2269         nesqp->nesqp_context->snd_max = cpu_to_le32(cm_node->tcp_cntxt.loc_seq_num);
2270         nesqp->nesqp_context->snd_una = cpu_to_le32(cm_node->tcp_cntxt.loc_seq_num);
2271         nesqp->nesqp_context->srtt = 0;
2272         nesqp->nesqp_context->rttvar = cpu_to_le32(0x6);
2273         nesqp->nesqp_context->ssthresh = cpu_to_le32(0x3FFFC000);
2274         nesqp->nesqp_context->cwnd = cpu_to_le32(2*cm_node->tcp_cntxt.mss);
2275         nesqp->nesqp_context->snd_wl1 = cpu_to_le32(cm_node->tcp_cntxt.rcv_nxt);
2276         nesqp->nesqp_context->snd_wl2 = cpu_to_le32(cm_node->tcp_cntxt.loc_seq_num);
2277         nesqp->nesqp_context->max_snd_wnd = cpu_to_le32(cm_node->tcp_cntxt.max_snd_wnd);
2278
2279         nes_debug(NES_DBG_CM, "QP%u: rcv_nxt = 0x%08X, snd_nxt = 0x%08X,"
2280                         " Setting MSS to %u, PDWscale = 0x%08X, rcv_wnd = %u, context misc = 0x%08X.\n",
2281                         nesqp->hwqp.qp_id, le32_to_cpu(nesqp->nesqp_context->rcv_nxt),
2282                         le32_to_cpu(nesqp->nesqp_context->snd_nxt),
2283                         cm_node->tcp_cntxt.mss, le32_to_cpu(nesqp->nesqp_context->pd_index_wscale),
2284                         le32_to_cpu(nesqp->nesqp_context->rcv_wnd),
2285                         le32_to_cpu(nesqp->nesqp_context->misc));
2286         nes_debug(NES_DBG_CM, "  snd_wnd  = 0x%08X.\n", le32_to_cpu(nesqp->nesqp_context->snd_wnd));
2287         nes_debug(NES_DBG_CM, "  snd_cwnd = 0x%08X.\n", le32_to_cpu(nesqp->nesqp_context->cwnd));
2288         nes_debug(NES_DBG_CM, "  max_swnd = 0x%08X.\n", le32_to_cpu(nesqp->nesqp_context->max_snd_wnd));
2289
2290         nes_debug(NES_DBG_CM, "Change cm_node state to TSA\n");
2291         cm_node->state = NES_CM_STATE_TSA;
2292
2293         return ret;
2294 }
2295
2296
2297 /**
2298  * nes_cm_disconn
2299  */
2300 int nes_cm_disconn(struct nes_qp *nesqp)
2301 {
2302         unsigned long flags;
2303
2304         spin_lock_irqsave(&nesqp->lock, flags);
2305         if (nesqp->disconn_pending == 0) {
2306                 nesqp->disconn_pending++;
2307                 spin_unlock_irqrestore(&nesqp->lock, flags);
2308                 /* init our disconnect work element, to */
2309                 INIT_WORK(&nesqp->disconn_work, nes_disconnect_worker);
2310
2311                 queue_work(g_cm_core->disconn_wq, &nesqp->disconn_work);
2312         } else
2313                 spin_unlock_irqrestore(&nesqp->lock, flags);
2314
2315         return 0;
2316 }
2317
2318
2319 /**
2320  * nes_disconnect_worker
2321  */
2322 static void nes_disconnect_worker(struct work_struct *work)
2323 {
2324         struct nes_qp *nesqp = container_of(work, struct nes_qp, disconn_work);
2325
2326         nes_debug(NES_DBG_CM, "processing AEQE id 0x%04X for QP%u.\n",
2327                         nesqp->last_aeq, nesqp->hwqp.qp_id);
2328         nes_cm_disconn_true(nesqp);
2329 }
2330
2331
2332 /**
2333  * nes_cm_disconn_true
2334  */
2335 static int nes_cm_disconn_true(struct nes_qp *nesqp)
2336 {
2337         unsigned long flags;
2338         int ret = 0;
2339         struct iw_cm_id *cm_id;
2340         struct iw_cm_event cm_event;
2341         struct nes_vnic *nesvnic;
2342         u16 last_ae;
2343         u8 original_hw_tcp_state;
2344         u8 original_ibqp_state;
2345         u8 issued_disconnect_reset = 0;
2346
2347         if (!nesqp) {
2348                 nes_debug(NES_DBG_CM, "disconnect_worker nesqp is NULL\n");
2349                 return -1;
2350         }
2351
2352         spin_lock_irqsave(&nesqp->lock, flags);
2353         cm_id = nesqp->cm_id;
2354         /* make sure we havent already closed this connection */
2355         if (!cm_id) {
2356                 nes_debug(NES_DBG_CM, "QP%u disconnect_worker cmid is NULL\n",
2357                                 nesqp->hwqp.qp_id);
2358                 spin_unlock_irqrestore(&nesqp->lock, flags);
2359                 return -1;
2360         }
2361
2362         nesvnic = to_nesvnic(nesqp->ibqp.device);
2363         nes_debug(NES_DBG_CM, "Disconnecting QP%u\n", nesqp->hwqp.qp_id);
2364
2365         original_hw_tcp_state = nesqp->hw_tcp_state;
2366         original_ibqp_state   = nesqp->ibqp_state;
2367         last_ae = nesqp->last_aeq;
2368
2369
2370         nes_debug(NES_DBG_CM, "set ibqp_state=%u\n", nesqp->ibqp_state);
2371
2372         if ((nesqp->cm_id) && (cm_id->event_handler)) {
2373                 if ((original_hw_tcp_state == NES_AEQE_TCP_STATE_CLOSE_WAIT) ||
2374                                 ((original_ibqp_state == IB_QPS_RTS) &&
2375                                 (last_ae == NES_AEQE_AEID_LLP_CONNECTION_RESET))) {
2376                         atomic_inc(&cm_disconnects);
2377                         cm_event.event = IW_CM_EVENT_DISCONNECT;
2378                         if (last_ae == NES_AEQE_AEID_LLP_CONNECTION_RESET) {
2379                                 issued_disconnect_reset = 1;
2380                                 cm_event.status = IW_CM_EVENT_STATUS_RESET;
2381                                 nes_debug(NES_DBG_CM, "Generating a CM "
2382                                         "Disconnect Event (status reset) for "
2383                                         "QP%u, cm_id = %p. \n",
2384                                         nesqp->hwqp.qp_id, cm_id);
2385                         } else
2386                                 cm_event.status = IW_CM_EVENT_STATUS_OK;
2387
2388                         cm_event.local_addr = cm_id->local_addr;
2389                         cm_event.remote_addr = cm_id->remote_addr;
2390                         cm_event.private_data = NULL;
2391                         cm_event.private_data_len = 0;
2392
2393                         nes_debug(NES_DBG_CM, "Generating a CM Disconnect Event"
2394                                 " for  QP%u, SQ Head = %u, SQ Tail = %u. "
2395                                 "cm_id = %p, refcount = %u.\n",
2396                                 nesqp->hwqp.qp_id, nesqp->hwqp.sq_head,
2397                                 nesqp->hwqp.sq_tail, cm_id,
2398                                 atomic_read(&nesqp->refcount));
2399
2400                         spin_unlock_irqrestore(&nesqp->lock, flags);
2401                         ret = cm_id->event_handler(cm_id, &cm_event);
2402                         if (ret)
2403                                 nes_debug(NES_DBG_CM, "OFA CM event_handler "
2404                                         "returned, ret=%d\n", ret);
2405                         spin_lock_irqsave(&nesqp->lock, flags);
2406                 }
2407
2408                 nesqp->disconn_pending = 0;
2409                 /* There might have been another AE while the lock was released */
2410                 original_hw_tcp_state = nesqp->hw_tcp_state;
2411                 original_ibqp_state   = nesqp->ibqp_state;
2412                 last_ae = nesqp->last_aeq;
2413
2414                 if ((issued_disconnect_reset == 0) && (nesqp->cm_id) &&
2415                                 ((original_hw_tcp_state == NES_AEQE_TCP_STATE_CLOSED) ||
2416                                  (original_hw_tcp_state == NES_AEQE_TCP_STATE_TIME_WAIT) ||
2417                                  (last_ae == NES_AEQE_AEID_RDMAP_ROE_BAD_LLP_CLOSE) ||
2418                                  (last_ae == NES_AEQE_AEID_LLP_CONNECTION_RESET))) {
2419                         atomic_inc(&cm_closes);
2420                         nesqp->cm_id = NULL;
2421                         nesqp->in_disconnect = 0;
2422                         spin_unlock_irqrestore(&nesqp->lock, flags);
2423                         nes_disconnect(nesqp, 1);
2424
2425                         cm_id->provider_data = nesqp;
2426                         /* Send up the close complete event */
2427                         cm_event.event = IW_CM_EVENT_CLOSE;
2428                         cm_event.status = IW_CM_EVENT_STATUS_OK;
2429                         cm_event.provider_data = cm_id->provider_data;
2430                         cm_event.local_addr = cm_id->local_addr;
2431                         cm_event.remote_addr = cm_id->remote_addr;
2432                         cm_event.private_data = NULL;
2433                         cm_event.private_data_len = 0;
2434
2435                         ret = cm_id->event_handler(cm_id, &cm_event);
2436                         if (ret) {
2437                                 nes_debug(NES_DBG_CM, "OFA CM event_handler returned, ret=%d\n", ret);
2438                         }
2439
2440                         cm_id->rem_ref(cm_id);
2441
2442                         spin_lock_irqsave(&nesqp->lock, flags);
2443                         if (nesqp->flush_issued == 0) {
2444                                 nesqp->flush_issued = 1;
2445                                 spin_unlock_irqrestore(&nesqp->lock, flags);
2446                                 flush_wqes(nesvnic->nesdev, nesqp,
2447                                         NES_CQP_FLUSH_RQ, 1);
2448                         } else
2449                                 spin_unlock_irqrestore(&nesqp->lock, flags);
2450                 } else {
2451                         cm_id = nesqp->cm_id;
2452                         spin_unlock_irqrestore(&nesqp->lock, flags);
2453                         /* check to see if the inbound reset beat the outbound reset */
2454                         if ((!cm_id) && (last_ae==NES_AEQE_AEID_RESET_SENT)) {
2455                                 nes_debug(NES_DBG_CM, "QP%u: Decing refcount "
2456                                         "due to inbound reset beating the "
2457                                         "outbound reset.\n", nesqp->hwqp.qp_id);
2458                         }
2459                 }
2460         } else {
2461                 nesqp->disconn_pending = 0;
2462                 spin_unlock_irqrestore(&nesqp->lock, flags);
2463         }
2464
2465         return 0;
2466 }
2467
2468
2469 /**
2470  * nes_disconnect
2471  */
2472 static int nes_disconnect(struct nes_qp *nesqp, int abrupt)
2473 {
2474         int ret = 0;
2475         struct nes_vnic *nesvnic;
2476         struct nes_device *nesdev;
2477
2478         nesvnic = to_nesvnic(nesqp->ibqp.device);
2479         if (!nesvnic)
2480                 return -EINVAL;
2481
2482         nesdev = nesvnic->nesdev;
2483
2484         nes_debug(NES_DBG_CM, "netdev refcnt = %u.\n",
2485                         atomic_read(&nesvnic->netdev->refcnt));
2486
2487         if (nesqp->active_conn) {
2488
2489                 /* indicate this connection is NOT active */
2490                 nesqp->active_conn = 0;
2491         } else {
2492                 /* Need to free the Last Streaming Mode Message */
2493                 if (nesqp->ietf_frame) {
2494                         pci_free_consistent(nesdev->pcidev,
2495                                         nesqp->private_data_len+sizeof(struct ietf_mpa_frame),
2496                                         nesqp->ietf_frame, nesqp->ietf_frame_pbase);
2497                 }
2498         }
2499
2500         /* close the CM node down if it is still active */
2501         if (nesqp->cm_node) {
2502                 nes_debug(NES_DBG_CM, "Call close API\n");
2503
2504                 g_cm_core->api->close(g_cm_core, nesqp->cm_node);
2505         }
2506
2507         return ret;
2508 }
2509
2510
2511 /**
2512  * nes_accept
2513  */
2514 int nes_accept(struct iw_cm_id *cm_id, struct iw_cm_conn_param *conn_param)
2515 {
2516         u64 u64temp;
2517         struct ib_qp *ibqp;
2518         struct nes_qp *nesqp;
2519         struct nes_vnic *nesvnic;
2520         struct nes_device *nesdev;
2521         struct nes_cm_node *cm_node;
2522         struct nes_adapter *adapter;
2523         struct ib_qp_attr attr;
2524         struct iw_cm_event cm_event;
2525         struct nes_hw_qp_wqe *wqe;
2526         struct nes_v4_quad nes_quad;
2527         u32 crc_value;
2528         int ret;
2529
2530         ibqp = nes_get_qp(cm_id->device, conn_param->qpn);
2531         if (!ibqp)
2532                 return -EINVAL;
2533
2534         /* get all our handles */
2535         nesqp = to_nesqp(ibqp);
2536         nesvnic = to_nesvnic(nesqp->ibqp.device);
2537         nesdev = nesvnic->nesdev;
2538         adapter = nesdev->nesadapter;
2539
2540         cm_node = (struct nes_cm_node *)cm_id->provider_data;
2541         nes_debug(NES_DBG_CM, "nes_accept: cm_node= %p nesvnic=%p, netdev=%p,"
2542                 "%s\n", cm_node, nesvnic, nesvnic->netdev,
2543                 nesvnic->netdev->name);
2544
2545         /* associate the node with the QP */
2546         nesqp->cm_node = (void *)cm_node;
2547         cm_node->nesqp = nesqp;
2548         nes_add_ref(&nesqp->ibqp);
2549
2550         nes_debug(NES_DBG_CM, "QP%u, cm_node=%p, jiffies = %lu listener = %p\n",
2551                 nesqp->hwqp.qp_id, cm_node, jiffies, cm_node->listener);
2552         atomic_inc(&cm_accepts);
2553
2554         nes_debug(NES_DBG_CM, "netdev refcnt = %u.\n",
2555                         atomic_read(&nesvnic->netdev->refcnt));
2556
2557         /* allocate the ietf frame and space for private data */
2558         nesqp->ietf_frame = pci_alloc_consistent(nesdev->pcidev,
2559                 sizeof(struct ietf_mpa_frame) + conn_param->private_data_len,
2560                 &nesqp->ietf_frame_pbase);
2561
2562         if (!nesqp->ietf_frame) {
2563                 nes_debug(NES_DBG_CM, "Unable to allocate memory for private "
2564                         "data\n");
2565                 return -ENOMEM;
2566         }
2567
2568
2569         /* setup the MPA frame */
2570         nesqp->private_data_len = conn_param->private_data_len;
2571         memcpy(nesqp->ietf_frame->key, IEFT_MPA_KEY_REP, IETF_MPA_KEY_SIZE);
2572
2573         memcpy(nesqp->ietf_frame->priv_data, conn_param->private_data,
2574                         conn_param->private_data_len);
2575
2576         nesqp->ietf_frame->priv_data_len =
2577                 cpu_to_be16(conn_param->private_data_len);
2578         nesqp->ietf_frame->rev = mpa_version;
2579         nesqp->ietf_frame->flags = IETF_MPA_FLAGS_CRC;
2580
2581         /* setup our first outgoing iWarp send WQE (the IETF frame response) */
2582         wqe = &nesqp->hwqp.sq_vbase[0];
2583
2584         if (cm_id->remote_addr.sin_addr.s_addr !=
2585                         cm_id->local_addr.sin_addr.s_addr) {
2586                 u64temp = (unsigned long)nesqp;
2587                 u64temp |= NES_SW_CONTEXT_ALIGN>>1;
2588                 set_wqe_64bit_value(wqe->wqe_words,
2589                         NES_IWARP_SQ_WQE_COMP_CTX_LOW_IDX,
2590                         u64temp);
2591                 wqe->wqe_words[NES_IWARP_SQ_WQE_MISC_IDX] =
2592                         cpu_to_le32(NES_IWARP_SQ_WQE_STREAMING |
2593                         NES_IWARP_SQ_WQE_WRPDU);
2594                 wqe->wqe_words[NES_IWARP_SQ_WQE_TOTAL_PAYLOAD_IDX] =
2595                         cpu_to_le32(conn_param->private_data_len +
2596                         sizeof(struct ietf_mpa_frame));
2597                 wqe->wqe_words[NES_IWARP_SQ_WQE_FRAG0_LOW_IDX] =
2598                         cpu_to_le32((u32)nesqp->ietf_frame_pbase);
2599                 wqe->wqe_words[NES_IWARP_SQ_WQE_FRAG0_HIGH_IDX] =
2600                         cpu_to_le32((u32)((u64)nesqp->ietf_frame_pbase >> 32));
2601                 wqe->wqe_words[NES_IWARP_SQ_WQE_LENGTH0_IDX] =
2602                         cpu_to_le32(conn_param->private_data_len +
2603                         sizeof(struct ietf_mpa_frame));
2604                 wqe->wqe_words[NES_IWARP_SQ_WQE_STAG0_IDX] = 0;
2605
2606                 nesqp->nesqp_context->ird_ord_sizes |=
2607                         cpu_to_le32(NES_QPCONTEXT_ORDIRD_LSMM_PRESENT |
2608                         NES_QPCONTEXT_ORDIRD_WRPDU);
2609         } else {
2610                 nesqp->nesqp_context->ird_ord_sizes |=
2611                         cpu_to_le32((NES_QPCONTEXT_ORDIRD_LSMM_PRESENT |
2612                         NES_QPCONTEXT_ORDIRD_WRPDU |
2613                         NES_QPCONTEXT_ORDIRD_ALSMM));
2614         }
2615         nesqp->skip_lsmm = 1;
2616
2617
2618         /* Cache the cm_id in the qp */
2619         nesqp->cm_id = cm_id;
2620         cm_node->cm_id = cm_id;
2621
2622         /*  nesqp->cm_node = (void *)cm_id->provider_data; */
2623         cm_id->provider_data = nesqp;
2624         nesqp->active_conn   = 0;
2625
2626         if (cm_node->state == NES_CM_STATE_TSA)
2627                 nes_debug(NES_DBG_CM, "Already state = TSA for cm_node=%p\n",
2628                         cm_node);
2629
2630         nes_cm_init_tsa_conn(nesqp, cm_node);
2631
2632         nesqp->nesqp_context->tcpPorts[0] =
2633                 cpu_to_le16(ntohs(cm_id->local_addr.sin_port));
2634         nesqp->nesqp_context->tcpPorts[1] =
2635                 cpu_to_le16(ntohs(cm_id->remote_addr.sin_port));
2636
2637         if (ipv4_is_loopback(cm_id->remote_addr.sin_addr.s_addr))
2638                 nesqp->nesqp_context->ip0 =
2639                         cpu_to_le32(ntohl(nesvnic->local_ipaddr));
2640         else
2641                 nesqp->nesqp_context->ip0 =
2642                         cpu_to_le32(ntohl(cm_id->remote_addr.sin_addr.s_addr));
2643
2644         nesqp->nesqp_context->misc2 |= cpu_to_le32(
2645                         (u32)PCI_FUNC(nesdev->pcidev->devfn) <<
2646                         NES_QPCONTEXT_MISC2_SRC_IP_SHIFT);
2647
2648         nesqp->nesqp_context->arp_index_vlan |=
2649                 cpu_to_le32(nes_arp_table(nesdev,
2650                         le32_to_cpu(nesqp->nesqp_context->ip0), NULL,
2651                         NES_ARP_RESOLVE) << 16);
2652
2653         nesqp->nesqp_context->ts_val_delta = cpu_to_le32(
2654                 jiffies - nes_read_indexed(nesdev, NES_IDX_TCP_NOW));
2655
2656         nesqp->nesqp_context->ird_index = cpu_to_le32(nesqp->hwqp.qp_id);
2657
2658         nesqp->nesqp_context->ird_ord_sizes |= cpu_to_le32(
2659                 ((u32)1 << NES_QPCONTEXT_ORDIRD_IWARP_MODE_SHIFT));
2660         nesqp->nesqp_context->ird_ord_sizes |=
2661                 cpu_to_le32((u32)conn_param->ord);
2662
2663         memset(&nes_quad, 0, sizeof(nes_quad));
2664         nes_quad.DstIpAdrIndex =
2665                 cpu_to_le32((u32)PCI_FUNC(nesdev->pcidev->devfn) << 24);
2666         if (ipv4_is_loopback(cm_id->remote_addr.sin_addr.s_addr))
2667                 nes_quad.SrcIpadr = nesvnic->local_ipaddr;
2668         else
2669                 nes_quad.SrcIpadr = cm_id->remote_addr.sin_addr.s_addr;
2670         nes_quad.TcpPorts[0] = cm_id->remote_addr.sin_port;
2671         nes_quad.TcpPorts[1] = cm_id->local_addr.sin_port;
2672
2673         /* Produce hash key */
2674         crc_value = get_crc_value(&nes_quad);
2675         nesqp->hte_index = cpu_to_be32(crc_value ^ 0xffffffff);
2676         nes_debug(NES_DBG_CM, "HTE Index = 0x%08X, CRC = 0x%08X\n",
2677                 nesqp->hte_index, nesqp->hte_index & adapter->hte_index_mask);
2678
2679         nesqp->hte_index &= adapter->hte_index_mask;
2680         nesqp->nesqp_context->hte_index = cpu_to_le32(nesqp->hte_index);
2681
2682         cm_node->cm_core->api->accelerated(cm_node->cm_core, cm_node);
2683
2684         nes_debug(NES_DBG_CM, "QP%u, Destination IP = 0x%08X:0x%04X, local = "
2685                         "0x%08X:0x%04X, rcv_nxt=0x%08X, snd_nxt=0x%08X, mpa + "
2686                         "private data length=%zu.\n", nesqp->hwqp.qp_id,
2687                         ntohl(cm_id->remote_addr.sin_addr.s_addr),
2688                         ntohs(cm_id->remote_addr.sin_port),
2689                         ntohl(cm_id->local_addr.sin_addr.s_addr),
2690                         ntohs(cm_id->local_addr.sin_port),
2691                         le32_to_cpu(nesqp->nesqp_context->rcv_nxt),
2692                         le32_to_cpu(nesqp->nesqp_context->snd_nxt),
2693                         conn_param->private_data_len +
2694                         sizeof(struct ietf_mpa_frame));
2695
2696         attr.qp_state = IB_QPS_RTS;
2697         nes_modify_qp(&nesqp->ibqp, &attr, IB_QP_STATE, NULL);
2698
2699         /* notify OF layer that accept event was successfull */
2700         cm_id->add_ref(cm_id);
2701
2702         cm_event.event = IW_CM_EVENT_ESTABLISHED;
2703         cm_event.status = IW_CM_EVENT_STATUS_ACCEPTED;
2704         cm_event.provider_data = (void *)nesqp;
2705         cm_event.local_addr = cm_id->local_addr;
2706         cm_event.remote_addr = cm_id->remote_addr;
2707         cm_event.private_data = NULL;
2708         cm_event.private_data_len = 0;
2709         ret = cm_id->event_handler(cm_id, &cm_event);
2710         if (cm_node->loopbackpartner) {
2711                 cm_node->loopbackpartner->mpa_frame_size =
2712                         nesqp->private_data_len;
2713                 /* copy entire MPA frame to our cm_node's frame */
2714                 memcpy(cm_node->loopbackpartner->mpa_frame_buf,
2715                         nesqp->ietf_frame->priv_data, nesqp->private_data_len);
2716                 create_event(cm_node->loopbackpartner, NES_CM_EVENT_CONNECTED);
2717         }
2718         if (ret)
2719                 printk(KERN_ERR "%s[%u] OFA CM event_handler returned, "
2720                         "ret=%d\n", __func__, __LINE__, ret);
2721
2722         return 0;
2723 }
2724
2725
2726 /**
2727  * nes_reject
2728  */
2729 int nes_reject(struct iw_cm_id *cm_id, const void *pdata, u8 pdata_len)
2730 {
2731         struct nes_cm_node *cm_node;
2732         struct nes_cm_core *cm_core;
2733
2734         atomic_inc(&cm_rejects);
2735         cm_node = (struct nes_cm_node *) cm_id->provider_data;
2736         cm_core = cm_node->cm_core;
2737         cm_node->mpa_frame_size = sizeof(struct ietf_mpa_frame) + pdata_len;
2738
2739         strcpy(&cm_node->mpa_frame.key[0], IEFT_MPA_KEY_REP);
2740         memcpy(&cm_node->mpa_frame.priv_data, pdata, pdata_len);
2741
2742         cm_node->mpa_frame.priv_data_len = cpu_to_be16(pdata_len);
2743         cm_node->mpa_frame.rev = mpa_version;
2744         cm_node->mpa_frame.flags = IETF_MPA_FLAGS_CRC | IETF_MPA_FLAGS_REJECT;
2745
2746         cm_core->api->reject(cm_core, &cm_node->mpa_frame, cm_node);
2747
2748         return 0;
2749 }
2750
2751
2752 /**
2753  * nes_connect
2754  * setup and launch cm connect node
2755  */
2756 int nes_connect(struct iw_cm_id *cm_id, struct iw_cm_conn_param *conn_param)
2757 {
2758         struct ib_qp *ibqp;
2759         struct nes_qp *nesqp;
2760         struct nes_vnic *nesvnic;
2761         struct nes_device *nesdev;
2762         struct nes_cm_node *cm_node;
2763         struct nes_cm_info cm_info;
2764
2765         ibqp = nes_get_qp(cm_id->device, conn_param->qpn);
2766         if (!ibqp)
2767                 return -EINVAL;
2768         nesqp = to_nesqp(ibqp);
2769         if (!nesqp)
2770                 return -EINVAL;
2771         nesvnic = to_nesvnic(nesqp->ibqp.device);
2772         if (!nesvnic)
2773                 return -EINVAL;
2774         nesdev  = nesvnic->nesdev;
2775         if (!nesdev)
2776                 return -EINVAL;
2777
2778         nes_debug(NES_DBG_CM, "QP%u, current IP = 0x%08X, Destination IP = "
2779                 "0x%08X:0x%04X, local = 0x%08X:0x%04X.\n", nesqp->hwqp.qp_id,
2780                 ntohl(nesvnic->local_ipaddr),
2781                 ntohl(cm_id->remote_addr.sin_addr.s_addr),
2782                 ntohs(cm_id->remote_addr.sin_port),
2783                 ntohl(cm_id->local_addr.sin_addr.s_addr),
2784                 ntohs(cm_id->local_addr.sin_port));
2785
2786         atomic_inc(&cm_connects);
2787         nesqp->active_conn = 1;
2788
2789         /* cache the cm_id in the qp */
2790         nesqp->cm_id = cm_id;
2791
2792         cm_id->provider_data = nesqp;
2793
2794         nesqp->private_data_len = conn_param->private_data_len;
2795         nesqp->nesqp_context->ird_ord_sizes |= cpu_to_le32((u32)conn_param->ord);
2796         nes_debug(NES_DBG_CM, "requested ord = 0x%08X.\n", (u32)conn_param->ord);
2797         nes_debug(NES_DBG_CM, "mpa private data len =%u\n",
2798                 conn_param->private_data_len);
2799
2800         if (cm_id->local_addr.sin_addr.s_addr !=
2801                 cm_id->remote_addr.sin_addr.s_addr)
2802                 nes_manage_apbvt(nesvnic, ntohs(cm_id->local_addr.sin_port),
2803                         PCI_FUNC(nesdev->pcidev->devfn), NES_MANAGE_APBVT_ADD);
2804
2805         /* set up the connection params for the node */
2806         cm_info.loc_addr = htonl(cm_id->local_addr.sin_addr.s_addr);
2807         cm_info.loc_port = htons(cm_id->local_addr.sin_port);
2808         cm_info.rem_addr = htonl(cm_id->remote_addr.sin_addr.s_addr);
2809         cm_info.rem_port = htons(cm_id->remote_addr.sin_port);
2810         cm_info.cm_id = cm_id;
2811         cm_info.conn_type = NES_CM_IWARP_CONN_TYPE;
2812
2813         cm_id->add_ref(cm_id);
2814
2815         /* create a connect CM node connection */
2816         cm_node = g_cm_core->api->connect(g_cm_core, nesvnic,
2817                 conn_param->private_data_len, (void *)conn_param->private_data,
2818                 &cm_info);
2819         if (!cm_node) {
2820                 if (cm_id->local_addr.sin_addr.s_addr !=
2821                                 cm_id->remote_addr.sin_addr.s_addr)
2822                         nes_manage_apbvt(nesvnic, ntohs(cm_id->local_addr.sin_port),
2823                                 PCI_FUNC(nesdev->pcidev->devfn),
2824                                 NES_MANAGE_APBVT_DEL);
2825
2826                 cm_id->rem_ref(cm_id);
2827                 return -ENOMEM;
2828         }
2829
2830         cm_node->apbvt_set = 1;
2831         nesqp->cm_node = cm_node;
2832         cm_node->nesqp = nesqp;
2833         nes_add_ref(&nesqp->ibqp);
2834
2835         return 0;
2836 }
2837
2838
2839 /**
2840  * nes_create_listen
2841  */
2842 int nes_create_listen(struct iw_cm_id *cm_id, int backlog)
2843 {
2844         struct nes_vnic *nesvnic;
2845         struct nes_cm_listener *cm_node;
2846         struct nes_cm_info cm_info;
2847         struct nes_adapter *adapter;
2848         int err;
2849
2850
2851         nes_debug(NES_DBG_CM, "cm_id = %p, local port = 0x%04X.\n",
2852                         cm_id, ntohs(cm_id->local_addr.sin_port));
2853
2854         nesvnic = to_nesvnic(cm_id->device);
2855         if (!nesvnic)
2856                 return -EINVAL;
2857         adapter = nesvnic->nesdev->nesadapter;
2858         nes_debug(NES_DBG_CM, "nesvnic=%p, netdev=%p, %s\n",
2859                         nesvnic, nesvnic->netdev, nesvnic->netdev->name);
2860
2861         nes_debug(NES_DBG_CM, "nesvnic->local_ipaddr=0x%08x, sin_addr.s_addr=0x%08x\n",
2862                         nesvnic->local_ipaddr, cm_id->local_addr.sin_addr.s_addr);
2863
2864         /* setup listen params in our api call struct */
2865         cm_info.loc_addr = nesvnic->local_ipaddr;
2866         cm_info.loc_port = cm_id->local_addr.sin_port;
2867         cm_info.backlog = backlog;
2868         cm_info.cm_id = cm_id;
2869
2870         cm_info.conn_type = NES_CM_IWARP_CONN_TYPE;
2871
2872
2873         cm_node = g_cm_core->api->listen(g_cm_core, nesvnic, &cm_info);
2874         if (!cm_node) {
2875                 printk(KERN_ERR "%s[%u] Error returned from listen API call\n",
2876                                 __func__, __LINE__);
2877                 return -ENOMEM;
2878         }
2879
2880         cm_id->provider_data = cm_node;
2881
2882         if (!cm_node->reused_node) {
2883                 err = nes_manage_apbvt(nesvnic,
2884                         ntohs(cm_id->local_addr.sin_port),
2885                         PCI_FUNC(nesvnic->nesdev->pcidev->devfn),
2886                         NES_MANAGE_APBVT_ADD);
2887                 if (err) {
2888                         printk(KERN_ERR "nes_manage_apbvt call returned %d.\n",
2889                                 err);
2890                         g_cm_core->api->stop_listener(g_cm_core, (void *)cm_node);
2891                         return err;
2892                 }
2893                 cm_listens_created++;
2894         }
2895
2896         cm_id->add_ref(cm_id);
2897         cm_id->provider_data = (void *)cm_node;
2898
2899
2900         return 0;
2901 }
2902
2903
2904 /**
2905  * nes_destroy_listen
2906  */
2907 int nes_destroy_listen(struct iw_cm_id *cm_id)
2908 {
2909         if (cm_id->provider_data)
2910                 g_cm_core->api->stop_listener(g_cm_core, cm_id->provider_data);
2911         else
2912                 nes_debug(NES_DBG_CM, "cm_id->provider_data was NULL\n");
2913
2914         cm_id->rem_ref(cm_id);
2915
2916         return 0;
2917 }
2918
2919
2920 /**
2921  * nes_cm_recv
2922  */
2923 int nes_cm_recv(struct sk_buff *skb, struct net_device *netdevice)
2924 {
2925         cm_packets_received++;
2926         if ((g_cm_core) && (g_cm_core->api)) {
2927                 g_cm_core->api->recv_pkt(g_cm_core, netdev_priv(netdevice), skb);
2928         } else {
2929                 nes_debug(NES_DBG_CM, "Unable to process packet for CM,"
2930                                 " cm is not setup properly.\n");
2931         }
2932
2933         return 0;
2934 }
2935
2936
2937 /**
2938  * nes_cm_start
2939  * Start and init a cm core module
2940  */
2941 int nes_cm_start(void)
2942 {
2943         nes_debug(NES_DBG_CM, "\n");
2944         /* create the primary CM core, pass this handle to subsequent core inits */
2945         g_cm_core = nes_cm_alloc_core();
2946         if (g_cm_core) {
2947                 return 0;
2948         } else {
2949                 return -ENOMEM;
2950         }
2951 }
2952
2953
2954 /**
2955  * nes_cm_stop
2956  * stop and dealloc all cm core instances
2957  */
2958 int nes_cm_stop(void)
2959 {
2960         g_cm_core->api->destroy_cm_core(g_cm_core);
2961         return 0;
2962 }
2963
2964
2965 /**
2966  * cm_event_connected
2967  * handle a connected event, setup QPs and HW
2968  */
2969 static void cm_event_connected(struct nes_cm_event *event)
2970 {
2971         u64 u64temp;
2972         struct nes_qp *nesqp;
2973         struct nes_vnic *nesvnic;
2974         struct nes_device *nesdev;
2975         struct nes_cm_node *cm_node;
2976         struct nes_adapter *nesadapter;
2977         struct ib_qp_attr attr;
2978         struct iw_cm_id *cm_id;
2979         struct iw_cm_event cm_event;
2980         struct nes_hw_qp_wqe *wqe;
2981         struct nes_v4_quad nes_quad;
2982         u32 crc_value;
2983         int ret;
2984
2985         /* get all our handles */
2986         cm_node = event->cm_node;
2987         cm_id = cm_node->cm_id;
2988         nes_debug(NES_DBG_CM, "cm_event_connected - %p - cm_id = %p\n", cm_node, cm_id);
2989         nesqp = (struct nes_qp *)cm_id->provider_data;
2990         nesvnic = to_nesvnic(nesqp->ibqp.device);
2991         nesdev = nesvnic->nesdev;
2992         nesadapter = nesdev->nesadapter;
2993
2994         if (nesqp->destroyed) {
2995                 return;
2996         }
2997         atomic_inc(&cm_connecteds);
2998         nes_debug(NES_DBG_CM, "QP%u attempting to connect to  0x%08X:0x%04X on"
2999                         " local port 0x%04X. jiffies = %lu.\n",
3000                         nesqp->hwqp.qp_id,
3001                         ntohl(cm_id->remote_addr.sin_addr.s_addr),
3002                         ntohs(cm_id->remote_addr.sin_port),
3003                         ntohs(cm_id->local_addr.sin_port),
3004                         jiffies);
3005
3006         nes_cm_init_tsa_conn(nesqp, cm_node);
3007
3008         /* set the QP tsa context */
3009         nesqp->nesqp_context->tcpPorts[0] =
3010                 cpu_to_le16(ntohs(cm_id->local_addr.sin_port));
3011         nesqp->nesqp_context->tcpPorts[1] =
3012                 cpu_to_le16(ntohs(cm_id->remote_addr.sin_port));
3013         if (ipv4_is_loopback(cm_id->remote_addr.sin_addr.s_addr))
3014                 nesqp->nesqp_context->ip0 =
3015                         cpu_to_le32(ntohl(nesvnic->local_ipaddr));
3016         else
3017                 nesqp->nesqp_context->ip0 =
3018                         cpu_to_le32(ntohl(cm_id->remote_addr.sin_addr.s_addr));
3019
3020         nesqp->nesqp_context->misc2 |= cpu_to_le32(
3021                         (u32)PCI_FUNC(nesdev->pcidev->devfn) <<
3022                         NES_QPCONTEXT_MISC2_SRC_IP_SHIFT);
3023         nesqp->nesqp_context->arp_index_vlan |= cpu_to_le32(
3024                         nes_arp_table(nesdev,
3025                         le32_to_cpu(nesqp->nesqp_context->ip0),
3026                         NULL, NES_ARP_RESOLVE) << 16);
3027         nesqp->nesqp_context->ts_val_delta = cpu_to_le32(
3028                         jiffies - nes_read_indexed(nesdev, NES_IDX_TCP_NOW));
3029         nesqp->nesqp_context->ird_index = cpu_to_le32(nesqp->hwqp.qp_id);
3030         nesqp->nesqp_context->ird_ord_sizes |=
3031                         cpu_to_le32((u32)1 <<
3032                         NES_QPCONTEXT_ORDIRD_IWARP_MODE_SHIFT);
3033
3034         /* Adjust tail for not having a LSMM */
3035         nesqp->hwqp.sq_tail = 1;
3036
3037 #if defined(NES_SEND_FIRST_WRITE)
3038         if (cm_node->send_write0) {
3039                 nes_debug(NES_DBG_CM, "Sending first write.\n");
3040                 wqe = &nesqp->hwqp.sq_vbase[0];
3041                 u64temp = (unsigned long)nesqp;
3042                 u64temp |= NES_SW_CONTEXT_ALIGN>>1;
3043                 set_wqe_64bit_value(wqe->wqe_words,
3044                                 NES_IWARP_SQ_WQE_COMP_CTX_LOW_IDX, u64temp);
3045                 wqe->wqe_words[NES_IWARP_SQ_WQE_MISC_IDX] =
3046                         cpu_to_le32(NES_IWARP_SQ_OP_RDMAW);
3047                 wqe->wqe_words[NES_IWARP_SQ_WQE_TOTAL_PAYLOAD_IDX] = 0;
3048                 wqe->wqe_words[NES_IWARP_SQ_WQE_FRAG0_LOW_IDX] = 0;
3049                 wqe->wqe_words[NES_IWARP_SQ_WQE_FRAG0_HIGH_IDX] = 0;
3050                 wqe->wqe_words[NES_IWARP_SQ_WQE_LENGTH0_IDX] = 0;
3051                 wqe->wqe_words[NES_IWARP_SQ_WQE_STAG0_IDX] = 0;
3052
3053                 /* use the reserved spot on the WQ for the extra first WQE */
3054                 nesqp->nesqp_context->ird_ord_sizes &=
3055                         cpu_to_le32(~(NES_QPCONTEXT_ORDIRD_LSMM_PRESENT |
3056                                                 NES_QPCONTEXT_ORDIRD_WRPDU |
3057                                                 NES_QPCONTEXT_ORDIRD_ALSMM));
3058                 nesqp->skip_lsmm = 1;
3059                 nesqp->hwqp.sq_tail = 0;
3060                 nes_write32(nesdev->regs + NES_WQE_ALLOC,
3061                                 (1 << 24) | 0x00800000 | nesqp->hwqp.qp_id);
3062         }
3063 #endif
3064
3065         memset(&nes_quad, 0, sizeof(nes_quad));
3066
3067         nes_quad.DstIpAdrIndex =
3068                 cpu_to_le32((u32)PCI_FUNC(nesdev->pcidev->devfn) << 24);
3069         if (ipv4_is_loopback(cm_id->remote_addr.sin_addr.s_addr))
3070                 nes_quad.SrcIpadr = nesvnic->local_ipaddr;
3071         else
3072                 nes_quad.SrcIpadr = cm_id->remote_addr.sin_addr.s_addr;
3073         nes_quad.TcpPorts[0] = cm_id->remote_addr.sin_port;
3074         nes_quad.TcpPorts[1] = cm_id->local_addr.sin_port;
3075
3076         /* Produce hash key */
3077         crc_value = get_crc_value(&nes_quad);
3078         nesqp->hte_index = cpu_to_be32(crc_value ^ 0xffffffff);
3079         nes_debug(NES_DBG_CM, "HTE Index = 0x%08X, After CRC = 0x%08X\n",
3080                         nesqp->hte_index, nesqp->hte_index & nesadapter->hte_index_mask);
3081
3082         nesqp->hte_index &= nesadapter->hte_index_mask;
3083         nesqp->nesqp_context->hte_index = cpu_to_le32(nesqp->hte_index);
3084
3085         nesqp->ietf_frame = &cm_node->mpa_frame;
3086         nesqp->private_data_len = (u8) cm_node->mpa_frame_size;
3087         cm_node->cm_core->api->accelerated(cm_node->cm_core, cm_node);
3088
3089         /* notify OF layer we successfully created the requested connection */
3090         cm_event.event = IW_CM_EVENT_CONNECT_REPLY;
3091         cm_event.status = IW_CM_EVENT_STATUS_ACCEPTED;
3092         cm_event.provider_data = cm_id->provider_data;
3093         cm_event.local_addr.sin_family = AF_INET;
3094         cm_event.local_addr.sin_port = cm_id->local_addr.sin_port;
3095         cm_event.remote_addr = cm_id->remote_addr;
3096
3097         cm_event.private_data = (void *)event->cm_node->mpa_frame_buf;
3098         cm_event.private_data_len = (u8) event->cm_node->mpa_frame_size;
3099
3100         cm_event.local_addr.sin_addr.s_addr = event->cm_info.rem_addr;
3101         ret = cm_id->event_handler(cm_id, &cm_event);
3102         nes_debug(NES_DBG_CM, "OFA CM event_handler returned, ret=%d\n", ret);
3103
3104         if (ret)
3105                 printk(KERN_ERR "%s[%u] OFA CM event_handler returned, "
3106                         "ret=%d\n", __func__, __LINE__, ret);
3107         attr.qp_state = IB_QPS_RTS;
3108         nes_modify_qp(&nesqp->ibqp, &attr, IB_QP_STATE, NULL);
3109
3110         nes_debug(NES_DBG_CM, "Exiting connect thread for QP%u. jiffies = "
3111                 "%lu\n", nesqp->hwqp.qp_id, jiffies);
3112
3113         return;
3114 }
3115
3116
3117 /**
3118  * cm_event_connect_error
3119  */
3120 static void cm_event_connect_error(struct nes_cm_event *event)
3121 {
3122         struct nes_qp *nesqp;
3123         struct iw_cm_id *cm_id;
3124         struct iw_cm_event cm_event;
3125         /* struct nes_cm_info cm_info; */
3126         int ret;
3127
3128         if (!event->cm_node)
3129                 return;
3130
3131         cm_id = event->cm_node->cm_id;
3132         if (!cm_id) {
3133                 return;
3134         }
3135
3136         nes_debug(NES_DBG_CM, "cm_node=%p, cm_id=%p\n", event->cm_node, cm_id);
3137         nesqp = cm_id->provider_data;
3138
3139         if (!nesqp) {
3140                 return;
3141         }
3142
3143         /* notify OF layer about this connection error event */
3144         /* cm_id->rem_ref(cm_id); */
3145         nesqp->cm_id = NULL;
3146         cm_id->provider_data = NULL;
3147         cm_event.event = IW_CM_EVENT_CONNECT_REPLY;
3148         cm_event.status = IW_CM_EVENT_STATUS_REJECTED;
3149         cm_event.provider_data = cm_id->provider_data;
3150         cm_event.local_addr = cm_id->local_addr;
3151         cm_event.remote_addr = cm_id->remote_addr;
3152         cm_event.private_data = NULL;
3153         cm_event.private_data_len = 0;
3154
3155         nes_debug(NES_DBG_CM, "call CM_EVENT REJECTED, local_addr=%08x, "
3156                 "remove_addr=%08x\n", cm_event.local_addr.sin_addr.s_addr,
3157                 cm_event.remote_addr.sin_addr.s_addr);
3158
3159         ret = cm_id->event_handler(cm_id, &cm_event);
3160         nes_debug(NES_DBG_CM, "OFA CM event_handler returned, ret=%d\n", ret);
3161         if (ret)
3162                 printk(KERN_ERR "%s[%u] OFA CM event_handler returned, "
3163                         "ret=%d\n", __func__, __LINE__, ret);
3164         cm_id->rem_ref(cm_id);
3165
3166         rem_ref_cm_node(event->cm_node->cm_core, event->cm_node);
3167         return;
3168 }
3169
3170
3171 /**
3172  * cm_event_reset
3173  */
3174 static void cm_event_reset(struct nes_cm_event *event)
3175 {
3176         struct nes_qp *nesqp;
3177         struct iw_cm_id *cm_id;
3178         struct iw_cm_event cm_event;
3179         /* struct nes_cm_info cm_info; */
3180         int ret;
3181
3182         if (!event->cm_node)
3183                 return;
3184
3185         if (!event->cm_node->cm_id)
3186                 return;
3187
3188         cm_id = event->cm_node->cm_id;
3189
3190         nes_debug(NES_DBG_CM, "%p - cm_id = %p\n", event->cm_node, cm_id);
3191         nesqp = cm_id->provider_data;
3192
3193         nesqp->cm_id = NULL;
3194         /* cm_id->provider_data = NULL; */
3195         cm_event.event = IW_CM_EVENT_DISCONNECT;
3196         cm_event.status = IW_CM_EVENT_STATUS_RESET;
3197         cm_event.provider_data = cm_id->provider_data;
3198         cm_event.local_addr = cm_id->local_addr;
3199         cm_event.remote_addr = cm_id->remote_addr;
3200         cm_event.private_data = NULL;
3201         cm_event.private_data_len = 0;
3202
3203         ret = cm_id->event_handler(cm_id, &cm_event);
3204         nes_debug(NES_DBG_CM, "OFA CM event_handler returned, ret=%d\n", ret);
3205
3206
3207         /* notify OF layer about this connection error event */
3208         cm_id->rem_ref(cm_id);
3209
3210         return;
3211 }
3212
3213
3214 /**
3215  * cm_event_mpa_req
3216  */
3217 static void cm_event_mpa_req(struct nes_cm_event *event)
3218 {
3219         struct iw_cm_id   *cm_id;
3220         struct iw_cm_event cm_event;
3221         int ret;
3222         struct nes_cm_node *cm_node;
3223
3224         cm_node = event->cm_node;
3225         if (!cm_node)
3226                 return;
3227         cm_id = cm_node->cm_id;
3228
3229         atomic_inc(&cm_connect_reqs);
3230         nes_debug(NES_DBG_CM, "cm_node = %p - cm_id = %p, jiffies = %lu\n",
3231                         cm_node, cm_id, jiffies);
3232
3233         cm_event.event = IW_CM_EVENT_CONNECT_REQUEST;
3234         cm_event.status = IW_CM_EVENT_STATUS_OK;
3235         cm_event.provider_data = (void *)cm_node;
3236
3237         cm_event.local_addr.sin_family = AF_INET;
3238         cm_event.local_addr.sin_port = htons(event->cm_info.loc_port);
3239         cm_event.local_addr.sin_addr.s_addr = htonl(event->cm_info.loc_addr);
3240
3241         cm_event.remote_addr.sin_family = AF_INET;
3242         cm_event.remote_addr.sin_port = htons(event->cm_info.rem_port);
3243         cm_event.remote_addr.sin_addr.s_addr = htonl(event->cm_info.rem_addr);
3244
3245                 cm_event.private_data                = cm_node->mpa_frame_buf;
3246                 cm_event.private_data_len            = (u8) cm_node->mpa_frame_size;
3247
3248         ret = cm_id->event_handler(cm_id, &cm_event);
3249         if (ret)
3250                 printk("%s[%u] OFA CM event_handler returned, ret=%d\n",
3251                                 __func__, __LINE__, ret);
3252
3253         return;
3254 }
3255
3256
3257 static void nes_cm_event_handler(struct work_struct *);
3258
3259 /**
3260  * nes_cm_post_event
3261  * post an event to the cm event handler
3262  */
3263 static int nes_cm_post_event(struct nes_cm_event *event)
3264 {
3265         atomic_inc(&event->cm_node->cm_core->events_posted);
3266         add_ref_cm_node(event->cm_node);
3267         event->cm_info.cm_id->add_ref(event->cm_info.cm_id);
3268         INIT_WORK(&event->event_work, nes_cm_event_handler);
3269         nes_debug(NES_DBG_CM, "cm_node=%p queue_work, event=%p\n",
3270                 event->cm_node, event);
3271
3272         queue_work(event->cm_node->cm_core->event_wq, &event->event_work);
3273
3274         nes_debug(NES_DBG_CM, "Exit\n");
3275         return 0;
3276 }
3277
3278
3279 /**
3280  * nes_cm_event_handler
3281  * worker function to handle cm events
3282  * will free instance of nes_cm_event
3283  */
3284 static void nes_cm_event_handler(struct work_struct *work)
3285 {
3286         struct nes_cm_event *event = container_of(work, struct nes_cm_event,
3287                         event_work);
3288         struct nes_cm_core *cm_core;
3289
3290         if ((!event) || (!event->cm_node) || (!event->cm_node->cm_core))
3291                 return;
3292
3293         cm_core = event->cm_node->cm_core;
3294         nes_debug(NES_DBG_CM, "event=%p, event->type=%u, events posted=%u\n",
3295                 event, event->type, atomic_read(&cm_core->events_posted));
3296
3297         switch (event->type) {
3298         case NES_CM_EVENT_MPA_REQ:
3299                 cm_event_mpa_req(event);
3300                 nes_debug(NES_DBG_CM, "cm_node=%p CM Event: MPA REQUEST\n",
3301                         event->cm_node);
3302                 break;
3303         case NES_CM_EVENT_RESET:
3304                 nes_debug(NES_DBG_CM, "cm_node = %p CM Event: RESET\n",
3305                         event->cm_node);
3306                 cm_event_reset(event);
3307                 break;
3308         case NES_CM_EVENT_CONNECTED:
3309                 if ((!event->cm_node->cm_id) ||
3310                         (event->cm_node->state != NES_CM_STATE_TSA))
3311                         break;
3312                 cm_event_connected(event);
3313                 nes_debug(NES_DBG_CM, "CM Event: CONNECTED\n");
3314                 break;
3315         case NES_CM_EVENT_ABORTED:
3316                 if ((!event->cm_node->cm_id) ||
3317                         (event->cm_node->state == NES_CM_STATE_TSA))
3318                         break;
3319                 cm_event_connect_error(event);
3320                 nes_debug(NES_DBG_CM, "CM Event: ABORTED\n");
3321                 break;
3322         case NES_CM_EVENT_DROPPED_PKT:
3323                 nes_debug(NES_DBG_CM, "CM Event: DROPPED PKT\n");
3324                 break;
3325         default:
3326                 nes_debug(NES_DBG_CM, "CM Event: UNKNOWN EVENT TYPE\n");
3327                 break;
3328         }
3329
3330         atomic_dec(&cm_core->events_posted);
3331         event->cm_info.cm_id->rem_ref(event->cm_info.cm_id);
3332         rem_ref_cm_node(cm_core, event->cm_node);
3333         kfree(event);
3334
3335         return;
3336 }