blob: aa45ea496f879722444c955d224face2bb7195b2 [file] [log] [blame]
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001/*
Linus Torvalds1da177e2005-04-16 15:20:36 -07002 BlueZ - Bluetooth protocol stack for Linux
3 Copyright (C) 2000-2001 Qualcomm Incorporated
Gustavo F. Padovan590051d2011-12-18 13:39:33 -02004 Copyright (C) 2011 ProFUSION Embedded Systems
Linus Torvalds1da177e2005-04-16 15:20:36 -07005
6 Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
7
8 This program is free software; you can redistribute it and/or modify
9 it under the terms of the GNU General Public License version 2 as
10 published by the Free Software Foundation;
11
12 THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
13 OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
14 FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
15 IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090016 CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
17 WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
18 ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
Linus Torvalds1da177e2005-04-16 15:20:36 -070019 OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
20
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +090021 ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
22 COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
Linus Torvalds1da177e2005-04-16 15:20:36 -070023 SOFTWARE IS DISCLAIMED.
24*/
25
26/* Bluetooth HCI core. */
27
S.Çağlar Onur824530212008-02-17 23:25:57 -080028#include <linux/jiffies.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070029#include <linux/module.h>
30#include <linux/kmod.h>
31
32#include <linux/types.h>
33#include <linux/errno.h>
34#include <linux/kernel.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070035#include <linux/sched.h>
36#include <linux/slab.h>
37#include <linux/poll.h>
38#include <linux/fcntl.h>
39#include <linux/init.h>
40#include <linux/skbuff.h>
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +010041#include <linux/workqueue.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070042#include <linux/interrupt.h>
Marcel Holtmann611b30f2009-06-08 14:41:38 +020043#include <linux/rfkill.h>
Ville Tervo6bd32322011-02-16 16:32:41 +020044#include <linux/timer.h>
Vinicius Costa Gomes3a0259b2011-06-09 18:50:43 -030045#include <linux/crypto.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070046#include <net/sock.h>
47
Andrei Emeltchenko70f230202010-12-01 16:58:25 +020048#include <linux/uaccess.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070049#include <asm/unaligned.h>
50
51#include <net/bluetooth/bluetooth.h>
52#include <net/bluetooth/hci_core.h>
53
Johan Hedbergab81cbf2010-12-15 13:53:18 +020054#define AUTO_OFF_TIMEOUT 2000
55
Marcel Holtmannb78752c2010-08-08 23:06:53 -040056static void hci_rx_work(struct work_struct *work);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -020057static void hci_cmd_work(struct work_struct *work);
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -020058static void hci_tx_work(struct work_struct *work);
Linus Torvalds1da177e2005-04-16 15:20:36 -070059
Linus Torvalds1da177e2005-04-16 15:20:36 -070060/* HCI device list */
61LIST_HEAD(hci_dev_list);
62DEFINE_RWLOCK(hci_dev_list_lock);
63
64/* HCI callback list */
65LIST_HEAD(hci_cb_list);
66DEFINE_RWLOCK(hci_cb_list_lock);
67
Linus Torvalds1da177e2005-04-16 15:20:36 -070068/* ---- HCI notifications ---- */
69
Marcel Holtmann65164552005-10-28 19:20:48 +020070static void hci_notify(struct hci_dev *hdev, int event)
Linus Torvalds1da177e2005-04-16 15:20:36 -070071{
Marcel Holtmann040030e2012-02-20 14:50:37 +010072 hci_sock_dev_event(hdev, event);
Linus Torvalds1da177e2005-04-16 15:20:36 -070073}
74
75/* ---- HCI requests ---- */
76
Johan Hedberg23bb5762010-12-21 23:01:27 +020077void hci_req_complete(struct hci_dev *hdev, __u16 cmd, int result)
Linus Torvalds1da177e2005-04-16 15:20:36 -070078{
Johan Hedberg23bb5762010-12-21 23:01:27 +020079 BT_DBG("%s command 0x%04x result 0x%2.2x", hdev->name, cmd, result);
80
Johan Hedberga5040ef2011-01-10 13:28:59 +020081 /* If this is the init phase check if the completed command matches
82 * the last init command, and if not just return.
83 */
Johan Hedberg75fb0e32012-03-01 21:35:55 +020084 if (test_bit(HCI_INIT, &hdev->flags) && hdev->init_last_cmd != cmd) {
85 struct hci_command_hdr *sent = (void *) hdev->sent_cmd->data;
Andrei Emeltchenko1036b892012-03-12 15:59:33 +020086 u16 opcode = __le16_to_cpu(sent->opcode);
Johan Hedberg75fb0e32012-03-01 21:35:55 +020087 struct sk_buff *skb;
88
89 /* Some CSR based controllers generate a spontaneous
90 * reset complete event during init and any pending
91 * command will never be completed. In such a case we
92 * need to resend whatever was the last sent
93 * command.
94 */
95
Andrei Emeltchenko1036b892012-03-12 15:59:33 +020096 if (cmd != HCI_OP_RESET || opcode == HCI_OP_RESET)
Johan Hedberg75fb0e32012-03-01 21:35:55 +020097 return;
98
99 skb = skb_clone(hdev->sent_cmd, GFP_ATOMIC);
100 if (skb) {
101 skb_queue_head(&hdev->cmd_q, skb);
102 queue_work(hdev->workqueue, &hdev->cmd_work);
103 }
104
Johan Hedberg23bb5762010-12-21 23:01:27 +0200105 return;
Johan Hedberg75fb0e32012-03-01 21:35:55 +0200106 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700107
108 if (hdev->req_status == HCI_REQ_PEND) {
109 hdev->req_result = result;
110 hdev->req_status = HCI_REQ_DONE;
111 wake_up_interruptible(&hdev->req_wait_q);
112 }
113}
114
115static void hci_req_cancel(struct hci_dev *hdev, int err)
116{
117 BT_DBG("%s err 0x%2.2x", hdev->name, err);
118
119 if (hdev->req_status == HCI_REQ_PEND) {
120 hdev->req_result = err;
121 hdev->req_status = HCI_REQ_CANCELED;
122 wake_up_interruptible(&hdev->req_wait_q);
123 }
124}
125
126/* Execute request and wait for completion. */
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900127static int __hci_request(struct hci_dev *hdev, void (*req)(struct hci_dev *hdev, unsigned long opt),
Szymon Janc01df8c32011-02-17 16:46:47 +0100128 unsigned long opt, __u32 timeout)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700129{
130 DECLARE_WAITQUEUE(wait, current);
131 int err = 0;
132
133 BT_DBG("%s start", hdev->name);
134
135 hdev->req_status = HCI_REQ_PEND;
136
137 add_wait_queue(&hdev->req_wait_q, &wait);
138 set_current_state(TASK_INTERRUPTIBLE);
139
140 req(hdev, opt);
141 schedule_timeout(timeout);
142
143 remove_wait_queue(&hdev->req_wait_q, &wait);
144
145 if (signal_pending(current))
146 return -EINTR;
147
148 switch (hdev->req_status) {
149 case HCI_REQ_DONE:
Joe Perchese1750722011-06-29 18:18:29 -0700150 err = -bt_to_errno(hdev->req_result);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700151 break;
152
153 case HCI_REQ_CANCELED:
154 err = -hdev->req_result;
155 break;
156
157 default:
158 err = -ETIMEDOUT;
159 break;
Stephen Hemminger3ff50b72007-04-20 17:09:22 -0700160 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700161
Johan Hedberga5040ef2011-01-10 13:28:59 +0200162 hdev->req_status = hdev->req_result = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700163
164 BT_DBG("%s end: err %d", hdev->name, err);
165
166 return err;
167}
168
169static inline int hci_request(struct hci_dev *hdev, void (*req)(struct hci_dev *hdev, unsigned long opt),
Szymon Janc01df8c32011-02-17 16:46:47 +0100170 unsigned long opt, __u32 timeout)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700171{
172 int ret;
173
Marcel Holtmann7c6a3292008-09-12 03:11:54 +0200174 if (!test_bit(HCI_UP, &hdev->flags))
175 return -ENETDOWN;
176
Linus Torvalds1da177e2005-04-16 15:20:36 -0700177 /* Serialize all requests */
178 hci_req_lock(hdev);
179 ret = __hci_request(hdev, req, opt, timeout);
180 hci_req_unlock(hdev);
181
182 return ret;
183}
184
185static void hci_reset_req(struct hci_dev *hdev, unsigned long opt)
186{
187 BT_DBG("%s %ld", hdev->name, opt);
188
189 /* Reset device */
Gustavo F. Padovanf630cf02011-03-16 15:36:29 -0300190 set_bit(HCI_RESET, &hdev->flags);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200191 hci_send_cmd(hdev, HCI_OP_RESET, 0, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700192}
193
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200194static void bredr_init(struct hci_dev *hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700195{
Johan Hedbergb0916ea2011-01-10 13:44:55 +0200196 struct hci_cp_delete_stored_link_key cp;
Marcel Holtmann1ebb9252005-11-08 09:57:21 -0800197 __le16 param;
Marcel Holtmann89f27832007-09-09 08:39:49 +0200198 __u8 flt_type;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700199
Andrei Emeltchenko2455a3e2011-12-19 16:31:28 +0200200 hdev->flow_ctl_mode = HCI_FLOW_CTL_MODE_PACKET_BASED;
201
Linus Torvalds1da177e2005-04-16 15:20:36 -0700202 /* Mandatory initialization */
203
204 /* Reset */
Gustavo F. Padovanf630cf02011-03-16 15:36:29 -0300205 if (!test_bit(HCI_QUIRK_NO_RESET, &hdev->quirks)) {
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200206 set_bit(HCI_RESET, &hdev->flags);
207 hci_send_cmd(hdev, HCI_OP_RESET, 0, NULL);
Gustavo F. Padovanf630cf02011-03-16 15:36:29 -0300208 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700209
210 /* Read Local Supported Features */
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200211 hci_send_cmd(hdev, HCI_OP_READ_LOCAL_FEATURES, 0, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700212
Marcel Holtmann1143e5a2006-09-23 09:57:20 +0200213 /* Read Local Version */
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200214 hci_send_cmd(hdev, HCI_OP_READ_LOCAL_VERSION, 0, NULL);
Marcel Holtmann1143e5a2006-09-23 09:57:20 +0200215
Linus Torvalds1da177e2005-04-16 15:20:36 -0700216 /* Read Buffer Size (ACL mtu, max pkt, etc.) */
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200217 hci_send_cmd(hdev, HCI_OP_READ_BUFFER_SIZE, 0, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700218
Linus Torvalds1da177e2005-04-16 15:20:36 -0700219 /* Read BD Address */
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200220 hci_send_cmd(hdev, HCI_OP_READ_BD_ADDR, 0, NULL);
221
222 /* Read Class of Device */
223 hci_send_cmd(hdev, HCI_OP_READ_CLASS_OF_DEV, 0, NULL);
224
225 /* Read Local Name */
226 hci_send_cmd(hdev, HCI_OP_READ_LOCAL_NAME, 0, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700227
228 /* Read Voice Setting */
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200229 hci_send_cmd(hdev, HCI_OP_READ_VOICE_SETTING, 0, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700230
231 /* Optional initialization */
232
233 /* Clear Event Filters */
Marcel Holtmann89f27832007-09-09 08:39:49 +0200234 flt_type = HCI_FLT_CLEAR_ALL;
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200235 hci_send_cmd(hdev, HCI_OP_SET_EVENT_FLT, 1, &flt_type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700236
Linus Torvalds1da177e2005-04-16 15:20:36 -0700237 /* Connection accept timeout ~20 secs */
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -0700238 param = cpu_to_le16(0x7d00);
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200239 hci_send_cmd(hdev, HCI_OP_WRITE_CA_TIMEOUT, 2, &param);
Johan Hedbergb0916ea2011-01-10 13:44:55 +0200240
241 bacpy(&cp.bdaddr, BDADDR_ANY);
242 cp.delete_all = 1;
243 hci_send_cmd(hdev, HCI_OP_DELETE_STORED_LINK_KEY, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700244}
245
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200246static void amp_init(struct hci_dev *hdev)
247{
Andrei Emeltchenko2455a3e2011-12-19 16:31:28 +0200248 hdev->flow_ctl_mode = HCI_FLOW_CTL_MODE_BLOCK_BASED;
249
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200250 /* Reset */
251 hci_send_cmd(hdev, HCI_OP_RESET, 0, NULL);
252
253 /* Read Local Version */
254 hci_send_cmd(hdev, HCI_OP_READ_LOCAL_VERSION, 0, NULL);
Andrei Emeltchenko6bcbc482012-03-28 16:31:24 +0300255
256 /* Read Local AMP Info */
257 hci_send_cmd(hdev, HCI_OP_READ_LOCAL_AMP_INFO, 0, NULL);
Andrei Emeltchenkoe61ef4992011-12-19 16:31:27 +0200258}
259
260static void hci_init_req(struct hci_dev *hdev, unsigned long opt)
261{
262 struct sk_buff *skb;
263
264 BT_DBG("%s %ld", hdev->name, opt);
265
266 /* Driver initialization */
267
268 /* Special commands */
269 while ((skb = skb_dequeue(&hdev->driver_init))) {
270 bt_cb(skb)->pkt_type = HCI_COMMAND_PKT;
271 skb->dev = (void *) hdev;
272
273 skb_queue_tail(&hdev->cmd_q, skb);
274 queue_work(hdev->workqueue, &hdev->cmd_work);
275 }
276 skb_queue_purge(&hdev->driver_init);
277
278 switch (hdev->dev_type) {
279 case HCI_BREDR:
280 bredr_init(hdev);
281 break;
282
283 case HCI_AMP:
284 amp_init(hdev);
285 break;
286
287 default:
288 BT_ERR("Unknown device type %d", hdev->dev_type);
289 break;
290 }
291
292}
293
Ville Tervo6ed58ec2011-02-10 22:38:48 -0300294static void hci_le_init_req(struct hci_dev *hdev, unsigned long opt)
295{
296 BT_DBG("%s", hdev->name);
297
298 /* Read LE buffer size */
299 hci_send_cmd(hdev, HCI_OP_LE_READ_BUFFER_SIZE, 0, NULL);
300}
301
Linus Torvalds1da177e2005-04-16 15:20:36 -0700302static void hci_scan_req(struct hci_dev *hdev, unsigned long opt)
303{
304 __u8 scan = opt;
305
306 BT_DBG("%s %x", hdev->name, scan);
307
308 /* Inquiry and Page scans */
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200309 hci_send_cmd(hdev, HCI_OP_WRITE_SCAN_ENABLE, 1, &scan);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700310}
311
312static void hci_auth_req(struct hci_dev *hdev, unsigned long opt)
313{
314 __u8 auth = opt;
315
316 BT_DBG("%s %x", hdev->name, auth);
317
318 /* Authentication */
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200319 hci_send_cmd(hdev, HCI_OP_WRITE_AUTH_ENABLE, 1, &auth);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700320}
321
322static void hci_encrypt_req(struct hci_dev *hdev, unsigned long opt)
323{
324 __u8 encrypt = opt;
325
326 BT_DBG("%s %x", hdev->name, encrypt);
327
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200328 /* Encryption */
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200329 hci_send_cmd(hdev, HCI_OP_WRITE_ENCRYPT_MODE, 1, &encrypt);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700330}
331
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200332static void hci_linkpol_req(struct hci_dev *hdev, unsigned long opt)
333{
334 __le16 policy = cpu_to_le16(opt);
335
Marcel Holtmanna418b892008-11-30 12:17:28 +0100336 BT_DBG("%s %x", hdev->name, policy);
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200337
338 /* Default link policy */
339 hci_send_cmd(hdev, HCI_OP_WRITE_DEF_LINK_POLICY, 2, &policy);
340}
341
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900342/* Get HCI device by index.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700343 * Device is held on return. */
344struct hci_dev *hci_dev_get(int index)
345{
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200346 struct hci_dev *hdev = NULL, *d;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700347
348 BT_DBG("%d", index);
349
350 if (index < 0)
351 return NULL;
352
353 read_lock(&hci_dev_list_lock);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200354 list_for_each_entry(d, &hci_dev_list, list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700355 if (d->id == index) {
356 hdev = hci_dev_hold(d);
357 break;
358 }
359 }
360 read_unlock(&hci_dev_list_lock);
361 return hdev;
362}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700363
364/* ---- Inquiry support ---- */
Johan Hedbergff9ef572012-01-04 14:23:45 +0200365
Johan Hedberg30dc78e2012-01-04 15:44:20 +0200366bool hci_discovery_active(struct hci_dev *hdev)
367{
368 struct discovery_state *discov = &hdev->discovery;
369
Andre Guedes6fbe1952012-02-03 17:47:58 -0300370 switch (discov->state) {
Andre Guedes343f9352012-02-17 20:39:37 -0300371 case DISCOVERY_FINDING:
Andre Guedes6fbe1952012-02-03 17:47:58 -0300372 case DISCOVERY_RESOLVING:
Johan Hedberg30dc78e2012-01-04 15:44:20 +0200373 return true;
374
Andre Guedes6fbe1952012-02-03 17:47:58 -0300375 default:
376 return false;
377 }
Johan Hedberg30dc78e2012-01-04 15:44:20 +0200378}
379
Johan Hedbergff9ef572012-01-04 14:23:45 +0200380void hci_discovery_set_state(struct hci_dev *hdev, int state)
381{
382 BT_DBG("%s state %u -> %u", hdev->name, hdev->discovery.state, state);
383
384 if (hdev->discovery.state == state)
385 return;
386
387 switch (state) {
388 case DISCOVERY_STOPPED:
Andre Guedes7b99b652012-02-13 15:41:02 -0300389 if (hdev->discovery.state != DISCOVERY_STARTING)
390 mgmt_discovering(hdev, 0);
Johan Hedbergff9ef572012-01-04 14:23:45 +0200391 break;
392 case DISCOVERY_STARTING:
393 break;
Andre Guedes343f9352012-02-17 20:39:37 -0300394 case DISCOVERY_FINDING:
Johan Hedbergff9ef572012-01-04 14:23:45 +0200395 mgmt_discovering(hdev, 1);
396 break;
Johan Hedberg30dc78e2012-01-04 15:44:20 +0200397 case DISCOVERY_RESOLVING:
398 break;
Johan Hedbergff9ef572012-01-04 14:23:45 +0200399 case DISCOVERY_STOPPING:
400 break;
401 }
402
403 hdev->discovery.state = state;
404}
405
Linus Torvalds1da177e2005-04-16 15:20:36 -0700406static void inquiry_cache_flush(struct hci_dev *hdev)
407{
Johan Hedberg30883512012-01-04 14:16:21 +0200408 struct discovery_state *cache = &hdev->discovery;
Johan Hedbergb57c1a52012-01-03 16:03:00 +0200409 struct inquiry_entry *p, *n;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700410
Johan Hedberg561aafb2012-01-04 13:31:59 +0200411 list_for_each_entry_safe(p, n, &cache->all, all) {
412 list_del(&p->all);
Johan Hedbergb57c1a52012-01-03 16:03:00 +0200413 kfree(p);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700414 }
Johan Hedberg561aafb2012-01-04 13:31:59 +0200415
416 INIT_LIST_HEAD(&cache->unknown);
417 INIT_LIST_HEAD(&cache->resolve);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700418}
419
420struct inquiry_entry *hci_inquiry_cache_lookup(struct hci_dev *hdev, bdaddr_t *bdaddr)
421{
Johan Hedberg30883512012-01-04 14:16:21 +0200422 struct discovery_state *cache = &hdev->discovery;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700423 struct inquiry_entry *e;
424
425 BT_DBG("cache %p, %s", cache, batostr(bdaddr));
426
Johan Hedberg561aafb2012-01-04 13:31:59 +0200427 list_for_each_entry(e, &cache->all, all) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700428 if (!bacmp(&e->data.bdaddr, bdaddr))
Johan Hedbergb57c1a52012-01-03 16:03:00 +0200429 return e;
430 }
431
432 return NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700433}
434
Johan Hedberg561aafb2012-01-04 13:31:59 +0200435struct inquiry_entry *hci_inquiry_cache_lookup_unknown(struct hci_dev *hdev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -0300436 bdaddr_t *bdaddr)
Johan Hedberg561aafb2012-01-04 13:31:59 +0200437{
Johan Hedberg30883512012-01-04 14:16:21 +0200438 struct discovery_state *cache = &hdev->discovery;
Johan Hedberg561aafb2012-01-04 13:31:59 +0200439 struct inquiry_entry *e;
440
441 BT_DBG("cache %p, %s", cache, batostr(bdaddr));
442
443 list_for_each_entry(e, &cache->unknown, list) {
444 if (!bacmp(&e->data.bdaddr, bdaddr))
445 return e;
446 }
447
448 return NULL;
449}
450
Johan Hedberg30dc78e2012-01-04 15:44:20 +0200451struct inquiry_entry *hci_inquiry_cache_lookup_resolve(struct hci_dev *hdev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -0300452 bdaddr_t *bdaddr,
453 int state)
Johan Hedberg30dc78e2012-01-04 15:44:20 +0200454{
455 struct discovery_state *cache = &hdev->discovery;
456 struct inquiry_entry *e;
457
458 BT_DBG("cache %p bdaddr %s state %d", cache, batostr(bdaddr), state);
459
460 list_for_each_entry(e, &cache->resolve, list) {
461 if (!bacmp(bdaddr, BDADDR_ANY) && e->name_state == state)
462 return e;
463 if (!bacmp(&e->data.bdaddr, bdaddr))
464 return e;
465 }
466
467 return NULL;
468}
469
Johan Hedberga3d4e202012-01-09 00:53:02 +0200470void hci_inquiry_cache_update_resolve(struct hci_dev *hdev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -0300471 struct inquiry_entry *ie)
Johan Hedberga3d4e202012-01-09 00:53:02 +0200472{
473 struct discovery_state *cache = &hdev->discovery;
474 struct list_head *pos = &cache->resolve;
475 struct inquiry_entry *p;
476
477 list_del(&ie->list);
478
479 list_for_each_entry(p, &cache->resolve, list) {
480 if (p->name_state != NAME_PENDING &&
481 abs(p->data.rssi) >= abs(ie->data.rssi))
482 break;
483 pos = &p->list;
484 }
485
486 list_add(&ie->list, pos);
487}
488
Johan Hedberg31754052012-01-04 13:39:52 +0200489bool hci_inquiry_cache_update(struct hci_dev *hdev, struct inquiry_data *data,
Gustavo F. Padovan04124682012-03-08 01:25:00 -0300490 bool name_known, bool *ssp)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700491{
Johan Hedberg30883512012-01-04 14:16:21 +0200492 struct discovery_state *cache = &hdev->discovery;
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200493 struct inquiry_entry *ie;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700494
495 BT_DBG("cache %p, %s", cache, batostr(&data->bdaddr));
496
Johan Hedberg388fc8f2012-02-23 00:38:59 +0200497 if (ssp)
498 *ssp = data->ssp_mode;
499
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200500 ie = hci_inquiry_cache_lookup(hdev, &data->bdaddr);
Johan Hedberga3d4e202012-01-09 00:53:02 +0200501 if (ie) {
Johan Hedberg388fc8f2012-02-23 00:38:59 +0200502 if (ie->data.ssp_mode && ssp)
503 *ssp = true;
504
Johan Hedberga3d4e202012-01-09 00:53:02 +0200505 if (ie->name_state == NAME_NEEDED &&
506 data->rssi != ie->data.rssi) {
507 ie->data.rssi = data->rssi;
508 hci_inquiry_cache_update_resolve(hdev, ie);
509 }
510
Johan Hedberg561aafb2012-01-04 13:31:59 +0200511 goto update;
Johan Hedberga3d4e202012-01-09 00:53:02 +0200512 }
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200513
Johan Hedberg561aafb2012-01-04 13:31:59 +0200514 /* Entry not in the cache. Add new one. */
515 ie = kzalloc(sizeof(struct inquiry_entry), GFP_ATOMIC);
516 if (!ie)
Johan Hedberg31754052012-01-04 13:39:52 +0200517 return false;
Johan Hedberg561aafb2012-01-04 13:31:59 +0200518
519 list_add(&ie->all, &cache->all);
520
521 if (name_known) {
522 ie->name_state = NAME_KNOWN;
523 } else {
524 ie->name_state = NAME_NOT_KNOWN;
525 list_add(&ie->list, &cache->unknown);
526 }
527
528update:
529 if (name_known && ie->name_state != NAME_KNOWN &&
530 ie->name_state != NAME_PENDING) {
531 ie->name_state = NAME_KNOWN;
532 list_del(&ie->list);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700533 }
534
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200535 memcpy(&ie->data, data, sizeof(*data));
536 ie->timestamp = jiffies;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700537 cache->timestamp = jiffies;
Johan Hedberg31754052012-01-04 13:39:52 +0200538
539 if (ie->name_state == NAME_NOT_KNOWN)
540 return false;
541
542 return true;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700543}
544
545static int inquiry_cache_dump(struct hci_dev *hdev, int num, __u8 *buf)
546{
Johan Hedberg30883512012-01-04 14:16:21 +0200547 struct discovery_state *cache = &hdev->discovery;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700548 struct inquiry_info *info = (struct inquiry_info *) buf;
549 struct inquiry_entry *e;
550 int copied = 0;
551
Johan Hedberg561aafb2012-01-04 13:31:59 +0200552 list_for_each_entry(e, &cache->all, all) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700553 struct inquiry_data *data = &e->data;
Johan Hedbergb57c1a52012-01-03 16:03:00 +0200554
555 if (copied >= num)
556 break;
557
Linus Torvalds1da177e2005-04-16 15:20:36 -0700558 bacpy(&info->bdaddr, &data->bdaddr);
559 info->pscan_rep_mode = data->pscan_rep_mode;
560 info->pscan_period_mode = data->pscan_period_mode;
561 info->pscan_mode = data->pscan_mode;
562 memcpy(info->dev_class, data->dev_class, 3);
563 info->clock_offset = data->clock_offset;
Johan Hedbergb57c1a52012-01-03 16:03:00 +0200564
Linus Torvalds1da177e2005-04-16 15:20:36 -0700565 info++;
Johan Hedbergb57c1a52012-01-03 16:03:00 +0200566 copied++;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700567 }
568
569 BT_DBG("cache %p, copied %d", cache, copied);
570 return copied;
571}
572
573static void hci_inq_req(struct hci_dev *hdev, unsigned long opt)
574{
575 struct hci_inquiry_req *ir = (struct hci_inquiry_req *) opt;
576 struct hci_cp_inquiry cp;
577
578 BT_DBG("%s", hdev->name);
579
580 if (test_bit(HCI_INQUIRY, &hdev->flags))
581 return;
582
583 /* Start Inquiry */
584 memcpy(&cp.lap, &ir->lap, 3);
585 cp.length = ir->length;
586 cp.num_rsp = ir->num_rsp;
Marcel Holtmanna9de9242007-10-20 13:33:56 +0200587 hci_send_cmd(hdev, HCI_OP_INQUIRY, sizeof(cp), &cp);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700588}
589
590int hci_inquiry(void __user *arg)
591{
592 __u8 __user *ptr = arg;
593 struct hci_inquiry_req ir;
594 struct hci_dev *hdev;
595 int err = 0, do_inquiry = 0, max_rsp;
596 long timeo;
597 __u8 *buf;
598
599 if (copy_from_user(&ir, ptr, sizeof(ir)))
600 return -EFAULT;
601
Andrei Emeltchenko5a08ecc2011-01-11 17:20:20 +0200602 hdev = hci_dev_get(ir.dev_id);
603 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700604 return -ENODEV;
605
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300606 hci_dev_lock(hdev);
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900607 if (inquiry_cache_age(hdev) > INQUIRY_CACHE_AGE_MAX ||
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200608 inquiry_cache_empty(hdev) ||
609 ir.flags & IREQ_CACHE_FLUSH) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700610 inquiry_cache_flush(hdev);
611 do_inquiry = 1;
612 }
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300613 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700614
Marcel Holtmann04837f62006-07-03 10:02:33 +0200615 timeo = ir.length * msecs_to_jiffies(2000);
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200616
617 if (do_inquiry) {
618 err = hci_request(hdev, hci_inq_req, (unsigned long)&ir, timeo);
619 if (err < 0)
620 goto done;
621 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700622
623 /* for unlimited number of responses we will use buffer with 255 entries */
624 max_rsp = (ir.num_rsp == 0) ? 255 : ir.num_rsp;
625
626 /* cache_dump can't sleep. Therefore we allocate temp buffer and then
627 * copy it to the user space.
628 */
Szymon Janc01df8c32011-02-17 16:46:47 +0100629 buf = kmalloc(sizeof(struct inquiry_info) * max_rsp, GFP_KERNEL);
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200630 if (!buf) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700631 err = -ENOMEM;
632 goto done;
633 }
634
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300635 hci_dev_lock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700636 ir.num_rsp = inquiry_cache_dump(hdev, max_rsp, buf);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300637 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700638
639 BT_DBG("num_rsp %d", ir.num_rsp);
640
641 if (!copy_to_user(ptr, &ir, sizeof(ir))) {
642 ptr += sizeof(ir);
643 if (copy_to_user(ptr, buf, sizeof(struct inquiry_info) *
644 ir.num_rsp))
645 err = -EFAULT;
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900646 } else
Linus Torvalds1da177e2005-04-16 15:20:36 -0700647 err = -EFAULT;
648
649 kfree(buf);
650
651done:
652 hci_dev_put(hdev);
653 return err;
654}
655
656/* ---- HCI ioctl helpers ---- */
657
658int hci_dev_open(__u16 dev)
659{
660 struct hci_dev *hdev;
661 int ret = 0;
662
Andrei Emeltchenko5a08ecc2011-01-11 17:20:20 +0200663 hdev = hci_dev_get(dev);
664 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700665 return -ENODEV;
666
667 BT_DBG("%s %p", hdev->name, hdev);
668
669 hci_req_lock(hdev);
670
Johan Hovold94324962012-03-15 14:48:41 +0100671 if (test_bit(HCI_UNREGISTER, &hdev->dev_flags)) {
672 ret = -ENODEV;
673 goto done;
674 }
675
Marcel Holtmann611b30f2009-06-08 14:41:38 +0200676 if (hdev->rfkill && rfkill_blocked(hdev->rfkill)) {
677 ret = -ERFKILL;
678 goto done;
679 }
680
Linus Torvalds1da177e2005-04-16 15:20:36 -0700681 if (test_bit(HCI_UP, &hdev->flags)) {
682 ret = -EALREADY;
683 goto done;
684 }
685
686 if (test_bit(HCI_QUIRK_RAW_DEVICE, &hdev->quirks))
687 set_bit(HCI_RAW, &hdev->flags);
688
Andrei Emeltchenko07e3b942011-11-11 17:02:15 +0200689 /* Treat all non BR/EDR controllers as raw devices if
690 enable_hs is not set */
691 if (hdev->dev_type != HCI_BREDR && !enable_hs)
Marcel Holtmann943da252010-02-13 02:28:41 +0100692 set_bit(HCI_RAW, &hdev->flags);
693
Linus Torvalds1da177e2005-04-16 15:20:36 -0700694 if (hdev->open(hdev)) {
695 ret = -EIO;
696 goto done;
697 }
698
699 if (!test_bit(HCI_RAW, &hdev->flags)) {
700 atomic_set(&hdev->cmd_cnt, 1);
701 set_bit(HCI_INIT, &hdev->flags);
Johan Hedberga5040ef2011-01-10 13:28:59 +0200702 hdev->init_last_cmd = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700703
Marcel Holtmann04837f62006-07-03 10:02:33 +0200704 ret = __hci_request(hdev, hci_init_req, 0,
705 msecs_to_jiffies(HCI_INIT_TIMEOUT));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700706
Andre Guedeseead27d2011-06-30 19:20:55 -0300707 if (lmp_host_le_capable(hdev))
Ville Tervo6ed58ec2011-02-10 22:38:48 -0300708 ret = __hci_request(hdev, hci_le_init_req, 0,
709 msecs_to_jiffies(HCI_INIT_TIMEOUT));
710
Linus Torvalds1da177e2005-04-16 15:20:36 -0700711 clear_bit(HCI_INIT, &hdev->flags);
712 }
713
714 if (!ret) {
715 hci_dev_hold(hdev);
716 set_bit(HCI_UP, &hdev->flags);
717 hci_notify(hdev, HCI_DEV_UP);
Johan Hedberga8b2d5c2012-01-08 23:11:15 +0200718 if (!test_bit(HCI_SETUP, &hdev->dev_flags)) {
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300719 hci_dev_lock(hdev);
Johan Hedberg744cf192011-11-08 20:40:14 +0200720 mgmt_powered(hdev, 1);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300721 hci_dev_unlock(hdev);
Johan Hedberg56e5cb82011-11-08 20:40:16 +0200722 }
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900723 } else {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700724 /* Init failed, cleanup */
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -0200725 flush_work(&hdev->tx_work);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -0200726 flush_work(&hdev->cmd_work);
Marcel Holtmannb78752c2010-08-08 23:06:53 -0400727 flush_work(&hdev->rx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700728
729 skb_queue_purge(&hdev->cmd_q);
730 skb_queue_purge(&hdev->rx_q);
731
732 if (hdev->flush)
733 hdev->flush(hdev);
734
735 if (hdev->sent_cmd) {
736 kfree_skb(hdev->sent_cmd);
737 hdev->sent_cmd = NULL;
738 }
739
740 hdev->close(hdev);
741 hdev->flags = 0;
742 }
743
744done:
745 hci_req_unlock(hdev);
746 hci_dev_put(hdev);
747 return ret;
748}
749
750static int hci_dev_do_close(struct hci_dev *hdev)
751{
752 BT_DBG("%s %p", hdev->name, hdev);
753
Andre Guedes28b75a82012-02-03 17:48:00 -0300754 cancel_work_sync(&hdev->le_scan);
755
Linus Torvalds1da177e2005-04-16 15:20:36 -0700756 hci_req_cancel(hdev, ENODEV);
757 hci_req_lock(hdev);
758
759 if (!test_and_clear_bit(HCI_UP, &hdev->flags)) {
Vinicius Costa Gomesb79f44c2011-04-11 18:46:55 -0300760 del_timer_sync(&hdev->cmd_timer);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700761 hci_req_unlock(hdev);
762 return 0;
763 }
764
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -0200765 /* Flush RX and TX works */
766 flush_work(&hdev->tx_work);
Marcel Holtmannb78752c2010-08-08 23:06:53 -0400767 flush_work(&hdev->rx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700768
Johan Hedberg16ab91a2011-11-07 22:16:02 +0200769 if (hdev->discov_timeout > 0) {
Johan Hedberge0f93092011-11-09 01:44:22 +0200770 cancel_delayed_work(&hdev->discov_off);
Johan Hedberg16ab91a2011-11-07 22:16:02 +0200771 hdev->discov_timeout = 0;
Johan Hedberg5e5282b2012-02-21 16:01:30 +0200772 clear_bit(HCI_DISCOVERABLE, &hdev->dev_flags);
Johan Hedberg16ab91a2011-11-07 22:16:02 +0200773 }
774
Johan Hedberga8b2d5c2012-01-08 23:11:15 +0200775 if (test_and_clear_bit(HCI_SERVICE_CACHE, &hdev->dev_flags))
Johan Hedberg7d785252011-12-15 00:47:39 +0200776 cancel_delayed_work(&hdev->service_cache);
777
Andre Guedes7ba8b4b2012-02-03 17:47:59 -0300778 cancel_delayed_work_sync(&hdev->le_scan_disable);
779
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300780 hci_dev_lock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700781 inquiry_cache_flush(hdev);
782 hci_conn_hash_flush(hdev);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300783 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700784
785 hci_notify(hdev, HCI_DEV_DOWN);
786
787 if (hdev->flush)
788 hdev->flush(hdev);
789
790 /* Reset device */
791 skb_queue_purge(&hdev->cmd_q);
792 atomic_set(&hdev->cmd_cnt, 1);
Johan Hedberg8af59462012-02-03 21:29:40 +0200793 if (!test_bit(HCI_RAW, &hdev->flags) &&
794 test_bit(HCI_QUIRK_NO_RESET, &hdev->quirks)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700795 set_bit(HCI_INIT, &hdev->flags);
Marcel Holtmann04837f62006-07-03 10:02:33 +0200796 __hci_request(hdev, hci_reset_req, 0,
Gustavo F. Padovancad44c22011-12-23 18:59:13 -0200797 msecs_to_jiffies(250));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700798 clear_bit(HCI_INIT, &hdev->flags);
799 }
800
Gustavo F. Padovanc347b762011-12-14 23:53:47 -0200801 /* flush cmd work */
802 flush_work(&hdev->cmd_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700803
804 /* Drop queues */
805 skb_queue_purge(&hdev->rx_q);
806 skb_queue_purge(&hdev->cmd_q);
807 skb_queue_purge(&hdev->raw_q);
808
809 /* Drop last sent command */
810 if (hdev->sent_cmd) {
Vinicius Costa Gomesb79f44c2011-04-11 18:46:55 -0300811 del_timer_sync(&hdev->cmd_timer);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700812 kfree_skb(hdev->sent_cmd);
813 hdev->sent_cmd = NULL;
814 }
815
816 /* After this point our queues are empty
817 * and no tasks are scheduled. */
818 hdev->close(hdev);
819
Marcel Holtmann8ee56542012-02-21 12:33:48 +0100820 if (!test_and_clear_bit(HCI_AUTO_OFF, &hdev->dev_flags)) {
821 hci_dev_lock(hdev);
822 mgmt_powered(hdev, 0);
823 hci_dev_unlock(hdev);
824 }
Johan Hedberg5add6af2010-12-16 10:00:37 +0200825
Linus Torvalds1da177e2005-04-16 15:20:36 -0700826 /* Clear flags */
827 hdev->flags = 0;
828
Johan Hedberge59fda82012-02-22 18:11:53 +0200829 memset(hdev->eir, 0, sizeof(hdev->eir));
Johan Hedberg09b3c3f2012-02-22 22:01:41 +0200830 memset(hdev->dev_class, 0, sizeof(hdev->dev_class));
Johan Hedberge59fda82012-02-22 18:11:53 +0200831
Linus Torvalds1da177e2005-04-16 15:20:36 -0700832 hci_req_unlock(hdev);
833
834 hci_dev_put(hdev);
835 return 0;
836}
837
838int hci_dev_close(__u16 dev)
839{
840 struct hci_dev *hdev;
841 int err;
842
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200843 hdev = hci_dev_get(dev);
844 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700845 return -ENODEV;
Marcel Holtmann8ee56542012-02-21 12:33:48 +0100846
847 if (test_and_clear_bit(HCI_AUTO_OFF, &hdev->dev_flags))
848 cancel_delayed_work(&hdev->power_off);
849
Linus Torvalds1da177e2005-04-16 15:20:36 -0700850 err = hci_dev_do_close(hdev);
Marcel Holtmann8ee56542012-02-21 12:33:48 +0100851
Linus Torvalds1da177e2005-04-16 15:20:36 -0700852 hci_dev_put(hdev);
853 return err;
854}
855
856int hci_dev_reset(__u16 dev)
857{
858 struct hci_dev *hdev;
859 int ret = 0;
860
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200861 hdev = hci_dev_get(dev);
862 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700863 return -ENODEV;
864
865 hci_req_lock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700866
867 if (!test_bit(HCI_UP, &hdev->flags))
868 goto done;
869
870 /* Drop queues */
871 skb_queue_purge(&hdev->rx_q);
872 skb_queue_purge(&hdev->cmd_q);
873
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300874 hci_dev_lock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700875 inquiry_cache_flush(hdev);
876 hci_conn_hash_flush(hdev);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -0300877 hci_dev_unlock(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700878
879 if (hdev->flush)
880 hdev->flush(hdev);
881
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +0900882 atomic_set(&hdev->cmd_cnt, 1);
Ville Tervo6ed58ec2011-02-10 22:38:48 -0300883 hdev->acl_cnt = 0; hdev->sco_cnt = 0; hdev->le_cnt = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700884
885 if (!test_bit(HCI_RAW, &hdev->flags))
Marcel Holtmann04837f62006-07-03 10:02:33 +0200886 ret = __hci_request(hdev, hci_reset_req, 0,
887 msecs_to_jiffies(HCI_INIT_TIMEOUT));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700888
889done:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700890 hci_req_unlock(hdev);
891 hci_dev_put(hdev);
892 return ret;
893}
894
895int hci_dev_reset_stat(__u16 dev)
896{
897 struct hci_dev *hdev;
898 int ret = 0;
899
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200900 hdev = hci_dev_get(dev);
901 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700902 return -ENODEV;
903
904 memset(&hdev->stat, 0, sizeof(struct hci_dev_stats));
905
906 hci_dev_put(hdev);
907
908 return ret;
909}
910
911int hci_dev_cmd(unsigned int cmd, void __user *arg)
912{
913 struct hci_dev *hdev;
914 struct hci_dev_req dr;
915 int err = 0;
916
917 if (copy_from_user(&dr, arg, sizeof(dr)))
918 return -EFAULT;
919
Andrei Emeltchenko70f230202010-12-01 16:58:25 +0200920 hdev = hci_dev_get(dr.dev_id);
921 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700922 return -ENODEV;
923
924 switch (cmd) {
925 case HCISETAUTH:
Marcel Holtmann04837f62006-07-03 10:02:33 +0200926 err = hci_request(hdev, hci_auth_req, dr.dev_opt,
927 msecs_to_jiffies(HCI_INIT_TIMEOUT));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700928 break;
929
930 case HCISETENCRYPT:
931 if (!lmp_encrypt_capable(hdev)) {
932 err = -EOPNOTSUPP;
933 break;
934 }
935
936 if (!test_bit(HCI_AUTH, &hdev->flags)) {
937 /* Auth must be enabled first */
Marcel Holtmann04837f62006-07-03 10:02:33 +0200938 err = hci_request(hdev, hci_auth_req, dr.dev_opt,
939 msecs_to_jiffies(HCI_INIT_TIMEOUT));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700940 if (err)
941 break;
942 }
943
Marcel Holtmann04837f62006-07-03 10:02:33 +0200944 err = hci_request(hdev, hci_encrypt_req, dr.dev_opt,
945 msecs_to_jiffies(HCI_INIT_TIMEOUT));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700946 break;
947
948 case HCISETSCAN:
Marcel Holtmann04837f62006-07-03 10:02:33 +0200949 err = hci_request(hdev, hci_scan_req, dr.dev_opt,
950 msecs_to_jiffies(HCI_INIT_TIMEOUT));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700951 break;
952
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200953 case HCISETLINKPOL:
954 err = hci_request(hdev, hci_linkpol_req, dr.dev_opt,
955 msecs_to_jiffies(HCI_INIT_TIMEOUT));
956 break;
957
958 case HCISETLINKMODE:
959 hdev->link_mode = ((__u16) dr.dev_opt) &
960 (HCI_LM_MASTER | HCI_LM_ACCEPT);
961 break;
962
Linus Torvalds1da177e2005-04-16 15:20:36 -0700963 case HCISETPTYPE:
964 hdev->pkt_type = (__u16) dr.dev_opt;
965 break;
966
Linus Torvalds1da177e2005-04-16 15:20:36 -0700967 case HCISETACLMTU:
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200968 hdev->acl_mtu = *((__u16 *) &dr.dev_opt + 1);
969 hdev->acl_pkts = *((__u16 *) &dr.dev_opt + 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700970 break;
971
972 case HCISETSCOMTU:
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200973 hdev->sco_mtu = *((__u16 *) &dr.dev_opt + 1);
974 hdev->sco_pkts = *((__u16 *) &dr.dev_opt + 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700975 break;
976
977 default:
978 err = -EINVAL;
979 break;
980 }
Marcel Holtmanne4e8e372008-07-14 20:13:47 +0200981
Linus Torvalds1da177e2005-04-16 15:20:36 -0700982 hci_dev_put(hdev);
983 return err;
984}
985
986int hci_get_dev_list(void __user *arg)
987{
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +0200988 struct hci_dev *hdev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700989 struct hci_dev_list_req *dl;
990 struct hci_dev_req *dr;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700991 int n = 0, size, err;
992 __u16 dev_num;
993
994 if (get_user(dev_num, (__u16 __user *) arg))
995 return -EFAULT;
996
997 if (!dev_num || dev_num > (PAGE_SIZE * 2) / sizeof(*dr))
998 return -EINVAL;
999
1000 size = sizeof(*dl) + dev_num * sizeof(*dr);
1001
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001002 dl = kzalloc(size, GFP_KERNEL);
1003 if (!dl)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001004 return -ENOMEM;
1005
1006 dr = dl->dev_req;
1007
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02001008 read_lock(&hci_dev_list_lock);
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02001009 list_for_each_entry(hdev, &hci_dev_list, list) {
Johan Hedberga8b2d5c2012-01-08 23:11:15 +02001010 if (test_and_clear_bit(HCI_AUTO_OFF, &hdev->dev_flags))
Johan Hedberge0f93092011-11-09 01:44:22 +02001011 cancel_delayed_work(&hdev->power_off);
Johan Hedbergc542a062011-01-26 13:11:03 +02001012
Johan Hedberga8b2d5c2012-01-08 23:11:15 +02001013 if (!test_bit(HCI_MGMT, &hdev->dev_flags))
1014 set_bit(HCI_PAIRABLE, &hdev->dev_flags);
Johan Hedbergc542a062011-01-26 13:11:03 +02001015
Linus Torvalds1da177e2005-04-16 15:20:36 -07001016 (dr + n)->dev_id = hdev->id;
1017 (dr + n)->dev_opt = hdev->flags;
Johan Hedbergc542a062011-01-26 13:11:03 +02001018
Linus Torvalds1da177e2005-04-16 15:20:36 -07001019 if (++n >= dev_num)
1020 break;
1021 }
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02001022 read_unlock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001023
1024 dl->dev_num = n;
1025 size = sizeof(*dl) + n * sizeof(*dr);
1026
1027 err = copy_to_user(arg, dl, size);
1028 kfree(dl);
1029
1030 return err ? -EFAULT : 0;
1031}
1032
1033int hci_get_dev_info(void __user *arg)
1034{
1035 struct hci_dev *hdev;
1036 struct hci_dev_info di;
1037 int err = 0;
1038
1039 if (copy_from_user(&di, arg, sizeof(di)))
1040 return -EFAULT;
1041
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02001042 hdev = hci_dev_get(di.dev_id);
1043 if (!hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001044 return -ENODEV;
1045
Johan Hedberga8b2d5c2012-01-08 23:11:15 +02001046 if (test_and_clear_bit(HCI_AUTO_OFF, &hdev->dev_flags))
Johan Hedberg32435532011-11-07 22:16:04 +02001047 cancel_delayed_work_sync(&hdev->power_off);
Johan Hedbergab81cbf2010-12-15 13:53:18 +02001048
Johan Hedberga8b2d5c2012-01-08 23:11:15 +02001049 if (!test_bit(HCI_MGMT, &hdev->dev_flags))
1050 set_bit(HCI_PAIRABLE, &hdev->dev_flags);
Johan Hedbergc542a062011-01-26 13:11:03 +02001051
Linus Torvalds1da177e2005-04-16 15:20:36 -07001052 strcpy(di.name, hdev->name);
1053 di.bdaddr = hdev->bdaddr;
Marcel Holtmann943da252010-02-13 02:28:41 +01001054 di.type = (hdev->bus & 0x0f) | (hdev->dev_type << 4);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001055 di.flags = hdev->flags;
1056 di.pkt_type = hdev->pkt_type;
1057 di.acl_mtu = hdev->acl_mtu;
1058 di.acl_pkts = hdev->acl_pkts;
1059 di.sco_mtu = hdev->sco_mtu;
1060 di.sco_pkts = hdev->sco_pkts;
1061 di.link_policy = hdev->link_policy;
1062 di.link_mode = hdev->link_mode;
1063
1064 memcpy(&di.stat, &hdev->stat, sizeof(di.stat));
1065 memcpy(&di.features, &hdev->features, sizeof(di.features));
1066
1067 if (copy_to_user(arg, &di, sizeof(di)))
1068 err = -EFAULT;
1069
1070 hci_dev_put(hdev);
1071
1072 return err;
1073}
1074
1075/* ---- Interface to HCI drivers ---- */
1076
Marcel Holtmann611b30f2009-06-08 14:41:38 +02001077static int hci_rfkill_set_block(void *data, bool blocked)
1078{
1079 struct hci_dev *hdev = data;
1080
1081 BT_DBG("%p name %s blocked %d", hdev, hdev->name, blocked);
1082
1083 if (!blocked)
1084 return 0;
1085
1086 hci_dev_do_close(hdev);
1087
1088 return 0;
1089}
1090
1091static const struct rfkill_ops hci_rfkill_ops = {
1092 .set_block = hci_rfkill_set_block,
1093};
1094
Johan Hedbergab81cbf2010-12-15 13:53:18 +02001095static void hci_power_on(struct work_struct *work)
1096{
1097 struct hci_dev *hdev = container_of(work, struct hci_dev, power_on);
1098
1099 BT_DBG("%s", hdev->name);
1100
1101 if (hci_dev_open(hdev->id) < 0)
1102 return;
1103
Johan Hedberga8b2d5c2012-01-08 23:11:15 +02001104 if (test_bit(HCI_AUTO_OFF, &hdev->dev_flags))
Gustavo F. Padovan80b7ab32011-12-17 14:52:27 -02001105 schedule_delayed_work(&hdev->power_off,
Johan Hedberg32435532011-11-07 22:16:04 +02001106 msecs_to_jiffies(AUTO_OFF_TIMEOUT));
Johan Hedbergab81cbf2010-12-15 13:53:18 +02001107
Johan Hedberga8b2d5c2012-01-08 23:11:15 +02001108 if (test_and_clear_bit(HCI_SETUP, &hdev->dev_flags))
Johan Hedberg744cf192011-11-08 20:40:14 +02001109 mgmt_index_added(hdev);
Johan Hedbergab81cbf2010-12-15 13:53:18 +02001110}
1111
1112static void hci_power_off(struct work_struct *work)
1113{
Johan Hedberg32435532011-11-07 22:16:04 +02001114 struct hci_dev *hdev = container_of(work, struct hci_dev,
1115 power_off.work);
Johan Hedbergab81cbf2010-12-15 13:53:18 +02001116
1117 BT_DBG("%s", hdev->name);
1118
Marcel Holtmann8ee56542012-02-21 12:33:48 +01001119 hci_dev_do_close(hdev);
Johan Hedbergab81cbf2010-12-15 13:53:18 +02001120}
1121
Johan Hedberg16ab91a2011-11-07 22:16:02 +02001122static void hci_discov_off(struct work_struct *work)
1123{
1124 struct hci_dev *hdev;
1125 u8 scan = SCAN_PAGE;
1126
1127 hdev = container_of(work, struct hci_dev, discov_off.work);
1128
1129 BT_DBG("%s", hdev->name);
1130
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001131 hci_dev_lock(hdev);
Johan Hedberg16ab91a2011-11-07 22:16:02 +02001132
1133 hci_send_cmd(hdev, HCI_OP_WRITE_SCAN_ENABLE, sizeof(scan), &scan);
1134
1135 hdev->discov_timeout = 0;
1136
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001137 hci_dev_unlock(hdev);
Johan Hedberg16ab91a2011-11-07 22:16:02 +02001138}
1139
Johan Hedberg2aeb9a12011-01-04 12:08:51 +02001140int hci_uuids_clear(struct hci_dev *hdev)
1141{
1142 struct list_head *p, *n;
1143
1144 list_for_each_safe(p, n, &hdev->uuids) {
1145 struct bt_uuid *uuid;
1146
1147 uuid = list_entry(p, struct bt_uuid, list);
1148
1149 list_del(p);
1150 kfree(uuid);
1151 }
1152
1153 return 0;
1154}
1155
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02001156int hci_link_keys_clear(struct hci_dev *hdev)
1157{
1158 struct list_head *p, *n;
1159
1160 list_for_each_safe(p, n, &hdev->link_keys) {
1161 struct link_key *key;
1162
1163 key = list_entry(p, struct link_key, list);
1164
1165 list_del(p);
1166 kfree(key);
1167 }
1168
1169 return 0;
1170}
1171
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03001172int hci_smp_ltks_clear(struct hci_dev *hdev)
1173{
1174 struct smp_ltk *k, *tmp;
1175
1176 list_for_each_entry_safe(k, tmp, &hdev->long_term_keys, list) {
1177 list_del(&k->list);
1178 kfree(k);
1179 }
1180
1181 return 0;
1182}
1183
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02001184struct link_key *hci_find_link_key(struct hci_dev *hdev, bdaddr_t *bdaddr)
1185{
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02001186 struct link_key *k;
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02001187
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02001188 list_for_each_entry(k, &hdev->link_keys, list)
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02001189 if (bacmp(bdaddr, &k->bdaddr) == 0)
1190 return k;
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02001191
1192 return NULL;
1193}
1194
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05301195static bool hci_persistent_key(struct hci_dev *hdev, struct hci_conn *conn,
Johan Hedbergd25e28a2011-04-28 11:28:59 -07001196 u8 key_type, u8 old_key_type)
1197{
1198 /* Legacy key */
1199 if (key_type < 0x03)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05301200 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07001201
1202 /* Debug keys are insecure so don't store them persistently */
1203 if (key_type == HCI_LK_DEBUG_COMBINATION)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05301204 return false;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07001205
1206 /* Changed combination key and there's no previous one */
1207 if (key_type == HCI_LK_CHANGED_COMBINATION && old_key_type == 0xff)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05301208 return false;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07001209
1210 /* Security mode 3 case */
1211 if (!conn)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05301212 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07001213
1214 /* Neither local nor remote side had no-bonding as requirement */
1215 if (conn->auth_type > 0x01 && conn->remote_auth > 0x01)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05301216 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07001217
1218 /* Local side had dedicated bonding as requirement */
1219 if (conn->auth_type == 0x02 || conn->auth_type == 0x03)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05301220 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07001221
1222 /* Remote side had dedicated bonding as requirement */
1223 if (conn->remote_auth == 0x02 || conn->remote_auth == 0x03)
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05301224 return true;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07001225
1226 /* If none of the above criteria match, then don't store the key
1227 * persistently */
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05301228 return false;
Johan Hedbergd25e28a2011-04-28 11:28:59 -07001229}
1230
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001231struct smp_ltk *hci_find_ltk(struct hci_dev *hdev, __le16 ediv, u8 rand[8])
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001232{
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001233 struct smp_ltk *k;
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001234
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001235 list_for_each_entry(k, &hdev->long_term_keys, list) {
1236 if (k->ediv != ediv ||
1237 memcmp(rand, k->rand, sizeof(k->rand)))
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001238 continue;
1239
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001240 return k;
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001241 }
1242
1243 return NULL;
1244}
1245EXPORT_SYMBOL(hci_find_ltk);
1246
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001247struct smp_ltk *hci_find_ltk_by_addr(struct hci_dev *hdev, bdaddr_t *bdaddr,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001248 u8 addr_type)
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001249{
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001250 struct smp_ltk *k;
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001251
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001252 list_for_each_entry(k, &hdev->long_term_keys, list)
1253 if (addr_type == k->bdaddr_type &&
1254 bacmp(bdaddr, &k->bdaddr) == 0)
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001255 return k;
1256
1257 return NULL;
1258}
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001259EXPORT_SYMBOL(hci_find_ltk_by_addr);
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001260
Johan Hedbergd25e28a2011-04-28 11:28:59 -07001261int hci_add_link_key(struct hci_dev *hdev, struct hci_conn *conn, int new_key,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001262 bdaddr_t *bdaddr, u8 *val, u8 type, u8 pin_len)
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02001263{
1264 struct link_key *key, *old_key;
Vishal Agarwal745c0ce2012-04-13 17:43:22 +05301265 u8 old_key_type;
1266 bool persistent;
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02001267
1268 old_key = hci_find_link_key(hdev, bdaddr);
1269 if (old_key) {
1270 old_key_type = old_key->type;
1271 key = old_key;
1272 } else {
Johan Hedberg12adcf32011-04-28 11:29:00 -07001273 old_key_type = conn ? conn->key_type : 0xff;
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02001274 key = kzalloc(sizeof(*key), GFP_ATOMIC);
1275 if (!key)
1276 return -ENOMEM;
1277 list_add(&key->list, &hdev->link_keys);
1278 }
1279
1280 BT_DBG("%s key for %s type %u", hdev->name, batostr(bdaddr), type);
1281
Johan Hedbergd25e28a2011-04-28 11:28:59 -07001282 /* Some buggy controller combinations generate a changed
1283 * combination key for legacy pairing even when there's no
1284 * previous key */
1285 if (type == HCI_LK_CHANGED_COMBINATION &&
1286 (!conn || conn->remote_auth == 0xff) &&
Johan Hedberg655fe6e2011-04-28 11:29:01 -07001287 old_key_type == 0xff) {
Johan Hedbergd25e28a2011-04-28 11:28:59 -07001288 type = HCI_LK_COMBINATION;
Johan Hedberg655fe6e2011-04-28 11:29:01 -07001289 if (conn)
1290 conn->key_type = type;
1291 }
Johan Hedbergd25e28a2011-04-28 11:28:59 -07001292
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02001293 bacpy(&key->bdaddr, bdaddr);
1294 memcpy(key->val, val, 16);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02001295 key->pin_len = pin_len;
1296
Waldemar Rymarkiewiczb6020ba2011-04-28 12:07:53 +02001297 if (type == HCI_LK_CHANGED_COMBINATION)
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02001298 key->type = old_key_type;
Johan Hedberg4748fed2011-04-28 11:29:02 -07001299 else
1300 key->type = type;
1301
Johan Hedberg4df378a2011-04-28 11:29:03 -07001302 if (!new_key)
1303 return 0;
1304
1305 persistent = hci_persistent_key(hdev, conn, type, old_key_type);
1306
Johan Hedberg744cf192011-11-08 20:40:14 +02001307 mgmt_new_link_key(hdev, key, persistent);
Johan Hedberg4df378a2011-04-28 11:29:03 -07001308
Vishal Agarwal6ec5bca2012-04-16 14:44:44 +05301309 if (conn)
1310 conn->flush_key = !persistent;
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02001311
1312 return 0;
1313}
1314
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001315int hci_add_ltk(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 addr_type, u8 type,
Andrei Emeltchenko9a006652012-03-09 12:12:12 +02001316 int new_key, u8 authenticated, u8 tk[16], u8 enc_size, __le16
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001317 ediv, u8 rand[8])
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001318{
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001319 struct smp_ltk *key, *old_key;
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001320
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001321 if (!(type & HCI_SMP_STK) && !(type & HCI_SMP_LTK))
1322 return 0;
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001323
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001324 old_key = hci_find_ltk_by_addr(hdev, bdaddr, addr_type);
1325 if (old_key)
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001326 key = old_key;
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001327 else {
1328 key = kzalloc(sizeof(*key), GFP_ATOMIC);
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001329 if (!key)
1330 return -ENOMEM;
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001331 list_add(&key->list, &hdev->long_term_keys);
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001332 }
1333
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001334 bacpy(&key->bdaddr, bdaddr);
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001335 key->bdaddr_type = addr_type;
1336 memcpy(key->val, tk, sizeof(key->val));
1337 key->authenticated = authenticated;
1338 key->ediv = ediv;
1339 key->enc_size = enc_size;
1340 key->type = type;
1341 memcpy(key->rand, rand, sizeof(key->rand));
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001342
Vinicius Costa Gomesc9839a12012-02-02 21:08:01 -03001343 if (!new_key)
1344 return 0;
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001345
Vinicius Costa Gomes261cc5a2012-02-02 21:08:05 -03001346 if (type & HCI_SMP_LTK)
1347 mgmt_new_ltk(hdev, key, 1);
1348
Vinicius Costa Gomes75d262c2011-07-07 18:59:36 -03001349 return 0;
1350}
1351
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02001352int hci_remove_link_key(struct hci_dev *hdev, bdaddr_t *bdaddr)
1353{
1354 struct link_key *key;
1355
1356 key = hci_find_link_key(hdev, bdaddr);
1357 if (!key)
1358 return -ENOENT;
1359
1360 BT_DBG("%s removing %s", hdev->name, batostr(bdaddr));
1361
1362 list_del(&key->list);
1363 kfree(key);
1364
1365 return 0;
1366}
1367
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03001368int hci_remove_ltk(struct hci_dev *hdev, bdaddr_t *bdaddr)
1369{
1370 struct smp_ltk *k, *tmp;
1371
1372 list_for_each_entry_safe(k, tmp, &hdev->long_term_keys, list) {
1373 if (bacmp(bdaddr, &k->bdaddr))
1374 continue;
1375
1376 BT_DBG("%s removing %s", hdev->name, batostr(bdaddr));
1377
1378 list_del(&k->list);
1379 kfree(k);
1380 }
1381
1382 return 0;
1383}
1384
Ville Tervo6bd32322011-02-16 16:32:41 +02001385/* HCI command timer function */
1386static void hci_cmd_timer(unsigned long arg)
1387{
1388 struct hci_dev *hdev = (void *) arg;
1389
1390 BT_ERR("%s command tx timeout", hdev->name);
1391 atomic_set(&hdev->cmd_cnt, 1);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02001392 queue_work(hdev->workqueue, &hdev->cmd_work);
Ville Tervo6bd32322011-02-16 16:32:41 +02001393}
1394
Szymon Janc2763eda2011-03-22 13:12:22 +01001395struct oob_data *hci_find_remote_oob_data(struct hci_dev *hdev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001396 bdaddr_t *bdaddr)
Szymon Janc2763eda2011-03-22 13:12:22 +01001397{
1398 struct oob_data *data;
1399
1400 list_for_each_entry(data, &hdev->remote_oob_data, list)
1401 if (bacmp(bdaddr, &data->bdaddr) == 0)
1402 return data;
1403
1404 return NULL;
1405}
1406
1407int hci_remove_remote_oob_data(struct hci_dev *hdev, bdaddr_t *bdaddr)
1408{
1409 struct oob_data *data;
1410
1411 data = hci_find_remote_oob_data(hdev, bdaddr);
1412 if (!data)
1413 return -ENOENT;
1414
1415 BT_DBG("%s removing %s", hdev->name, batostr(bdaddr));
1416
1417 list_del(&data->list);
1418 kfree(data);
1419
1420 return 0;
1421}
1422
1423int hci_remote_oob_data_clear(struct hci_dev *hdev)
1424{
1425 struct oob_data *data, *n;
1426
1427 list_for_each_entry_safe(data, n, &hdev->remote_oob_data, list) {
1428 list_del(&data->list);
1429 kfree(data);
1430 }
1431
1432 return 0;
1433}
1434
1435int hci_add_remote_oob_data(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 *hash,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001436 u8 *randomizer)
Szymon Janc2763eda2011-03-22 13:12:22 +01001437{
1438 struct oob_data *data;
1439
1440 data = hci_find_remote_oob_data(hdev, bdaddr);
1441
1442 if (!data) {
1443 data = kmalloc(sizeof(*data), GFP_ATOMIC);
1444 if (!data)
1445 return -ENOMEM;
1446
1447 bacpy(&data->bdaddr, bdaddr);
1448 list_add(&data->list, &hdev->remote_oob_data);
1449 }
1450
1451 memcpy(data->hash, hash, sizeof(data->hash));
1452 memcpy(data->randomizer, randomizer, sizeof(data->randomizer));
1453
1454 BT_DBG("%s for %s", hdev->name, batostr(bdaddr));
1455
1456 return 0;
1457}
1458
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001459struct bdaddr_list *hci_blacklist_lookup(struct hci_dev *hdev, bdaddr_t *bdaddr)
Antti Julkub2a66aa2011-06-15 12:01:14 +03001460{
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02001461 struct bdaddr_list *b;
Antti Julkub2a66aa2011-06-15 12:01:14 +03001462
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02001463 list_for_each_entry(b, &hdev->blacklist, list)
Antti Julkub2a66aa2011-06-15 12:01:14 +03001464 if (bacmp(bdaddr, &b->bdaddr) == 0)
1465 return b;
Antti Julkub2a66aa2011-06-15 12:01:14 +03001466
1467 return NULL;
1468}
1469
1470int hci_blacklist_clear(struct hci_dev *hdev)
1471{
1472 struct list_head *p, *n;
1473
1474 list_for_each_safe(p, n, &hdev->blacklist) {
1475 struct bdaddr_list *b;
1476
1477 b = list_entry(p, struct bdaddr_list, list);
1478
1479 list_del(p);
1480 kfree(b);
1481 }
1482
1483 return 0;
1484}
1485
Johan Hedberg88c1fe42012-02-09 15:56:11 +02001486int hci_blacklist_add(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 type)
Antti Julkub2a66aa2011-06-15 12:01:14 +03001487{
1488 struct bdaddr_list *entry;
Antti Julkub2a66aa2011-06-15 12:01:14 +03001489
1490 if (bacmp(bdaddr, BDADDR_ANY) == 0)
1491 return -EBADF;
1492
Antti Julku5e762442011-08-25 16:48:02 +03001493 if (hci_blacklist_lookup(hdev, bdaddr))
1494 return -EEXIST;
Antti Julkub2a66aa2011-06-15 12:01:14 +03001495
1496 entry = kzalloc(sizeof(struct bdaddr_list), GFP_KERNEL);
Antti Julku5e762442011-08-25 16:48:02 +03001497 if (!entry)
1498 return -ENOMEM;
Antti Julkub2a66aa2011-06-15 12:01:14 +03001499
1500 bacpy(&entry->bdaddr, bdaddr);
1501
1502 list_add(&entry->list, &hdev->blacklist);
1503
Johan Hedberg88c1fe42012-02-09 15:56:11 +02001504 return mgmt_device_blocked(hdev, bdaddr, type);
Antti Julkub2a66aa2011-06-15 12:01:14 +03001505}
1506
Johan Hedberg88c1fe42012-02-09 15:56:11 +02001507int hci_blacklist_del(struct hci_dev *hdev, bdaddr_t *bdaddr, u8 type)
Antti Julkub2a66aa2011-06-15 12:01:14 +03001508{
1509 struct bdaddr_list *entry;
Antti Julkub2a66aa2011-06-15 12:01:14 +03001510
Szymon Janc1ec918c2011-11-16 09:32:21 +01001511 if (bacmp(bdaddr, BDADDR_ANY) == 0)
Antti Julku5e762442011-08-25 16:48:02 +03001512 return hci_blacklist_clear(hdev);
Antti Julkub2a66aa2011-06-15 12:01:14 +03001513
1514 entry = hci_blacklist_lookup(hdev, bdaddr);
Szymon Janc1ec918c2011-11-16 09:32:21 +01001515 if (!entry)
Antti Julku5e762442011-08-25 16:48:02 +03001516 return -ENOENT;
Antti Julkub2a66aa2011-06-15 12:01:14 +03001517
1518 list_del(&entry->list);
1519 kfree(entry);
1520
Johan Hedberg88c1fe42012-02-09 15:56:11 +02001521 return mgmt_device_unblocked(hdev, bdaddr, type);
Antti Julkub2a66aa2011-06-15 12:01:14 +03001522}
1523
Gustavo F. Padovandb323f22011-06-20 16:39:29 -03001524static void hci_clear_adv_cache(struct work_struct *work)
Andre Guedes35815082011-05-26 16:23:53 -03001525{
Gustavo F. Padovandb323f22011-06-20 16:39:29 -03001526 struct hci_dev *hdev = container_of(work, struct hci_dev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001527 adv_work.work);
Andre Guedes35815082011-05-26 16:23:53 -03001528
1529 hci_dev_lock(hdev);
1530
1531 hci_adv_entries_clear(hdev);
1532
1533 hci_dev_unlock(hdev);
1534}
1535
Andre Guedes76c86862011-05-26 16:23:50 -03001536int hci_adv_entries_clear(struct hci_dev *hdev)
1537{
1538 struct adv_entry *entry, *tmp;
1539
1540 list_for_each_entry_safe(entry, tmp, &hdev->adv_entries, list) {
1541 list_del(&entry->list);
1542 kfree(entry);
1543 }
1544
1545 BT_DBG("%s adv cache cleared", hdev->name);
1546
1547 return 0;
1548}
1549
1550struct adv_entry *hci_find_adv_entry(struct hci_dev *hdev, bdaddr_t *bdaddr)
1551{
1552 struct adv_entry *entry;
1553
1554 list_for_each_entry(entry, &hdev->adv_entries, list)
1555 if (bacmp(bdaddr, &entry->bdaddr) == 0)
1556 return entry;
1557
1558 return NULL;
1559}
1560
1561static inline int is_connectable_adv(u8 evt_type)
1562{
1563 if (evt_type == ADV_IND || evt_type == ADV_DIRECT_IND)
1564 return 1;
1565
1566 return 0;
1567}
1568
1569int hci_add_adv_entry(struct hci_dev *hdev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001570 struct hci_ev_le_advertising_info *ev) { struct adv_entry *entry; if (!is_connectable_adv(ev->evt_type))
Andre Guedes76c86862011-05-26 16:23:50 -03001571 return -EINVAL;
1572
1573 /* Only new entries should be added to adv_entries. So, if
1574 * bdaddr was found, don't add it. */
1575 if (hci_find_adv_entry(hdev, &ev->bdaddr))
1576 return 0;
1577
Andre Guedes4777bfd2012-01-30 23:31:28 -03001578 entry = kzalloc(sizeof(*entry), GFP_KERNEL);
Andre Guedes76c86862011-05-26 16:23:50 -03001579 if (!entry)
1580 return -ENOMEM;
1581
1582 bacpy(&entry->bdaddr, &ev->bdaddr);
1583 entry->bdaddr_type = ev->bdaddr_type;
1584
1585 list_add(&entry->list, &hdev->adv_entries);
1586
1587 BT_DBG("%s adv entry added: address %s type %u", hdev->name,
1588 batostr(&entry->bdaddr), entry->bdaddr_type);
1589
1590 return 0;
1591}
1592
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03001593static void le_scan_param_req(struct hci_dev *hdev, unsigned long opt)
1594{
1595 struct le_scan_params *param = (struct le_scan_params *) opt;
1596 struct hci_cp_le_set_scan_param cp;
1597
1598 memset(&cp, 0, sizeof(cp));
1599 cp.type = param->type;
1600 cp.interval = cpu_to_le16(param->interval);
1601 cp.window = cpu_to_le16(param->window);
1602
1603 hci_send_cmd(hdev, HCI_OP_LE_SET_SCAN_PARAM, sizeof(cp), &cp);
1604}
1605
1606static void le_scan_enable_req(struct hci_dev *hdev, unsigned long opt)
1607{
1608 struct hci_cp_le_set_scan_enable cp;
1609
1610 memset(&cp, 0, sizeof(cp));
1611 cp.enable = 1;
1612
1613 hci_send_cmd(hdev, HCI_OP_LE_SET_SCAN_ENABLE, sizeof(cp), &cp);
1614}
1615
1616static int hci_do_le_scan(struct hci_dev *hdev, u8 type, u16 interval,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001617 u16 window, int timeout)
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03001618{
1619 long timeo = msecs_to_jiffies(3000);
1620 struct le_scan_params param;
1621 int err;
1622
1623 BT_DBG("%s", hdev->name);
1624
1625 if (test_bit(HCI_LE_SCAN, &hdev->dev_flags))
1626 return -EINPROGRESS;
1627
1628 param.type = type;
1629 param.interval = interval;
1630 param.window = window;
1631
1632 hci_req_lock(hdev);
1633
1634 err = __hci_request(hdev, le_scan_param_req, (unsigned long) &param,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001635 timeo);
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03001636 if (!err)
1637 err = __hci_request(hdev, le_scan_enable_req, 0, timeo);
1638
1639 hci_req_unlock(hdev);
1640
1641 if (err < 0)
1642 return err;
1643
1644 schedule_delayed_work(&hdev->le_scan_disable,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001645 msecs_to_jiffies(timeout));
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03001646
1647 return 0;
1648}
1649
Andre Guedes7dbfac12012-03-15 16:52:07 -03001650int hci_cancel_le_scan(struct hci_dev *hdev)
1651{
1652 BT_DBG("%s", hdev->name);
1653
1654 if (!test_bit(HCI_LE_SCAN, &hdev->dev_flags))
1655 return -EALREADY;
1656
1657 if (cancel_delayed_work(&hdev->le_scan_disable)) {
1658 struct hci_cp_le_set_scan_enable cp;
1659
1660 /* Send HCI command to disable LE Scan */
1661 memset(&cp, 0, sizeof(cp));
1662 hci_send_cmd(hdev, HCI_OP_LE_SET_SCAN_ENABLE, sizeof(cp), &cp);
1663 }
1664
1665 return 0;
1666}
1667
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03001668static void le_scan_disable_work(struct work_struct *work)
1669{
1670 struct hci_dev *hdev = container_of(work, struct hci_dev,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001671 le_scan_disable.work);
Andre Guedes7ba8b4b2012-02-03 17:47:59 -03001672 struct hci_cp_le_set_scan_enable cp;
1673
1674 BT_DBG("%s", hdev->name);
1675
1676 memset(&cp, 0, sizeof(cp));
1677
1678 hci_send_cmd(hdev, HCI_OP_LE_SET_SCAN_ENABLE, sizeof(cp), &cp);
1679}
1680
Andre Guedes28b75a82012-02-03 17:48:00 -03001681static void le_scan_work(struct work_struct *work)
1682{
1683 struct hci_dev *hdev = container_of(work, struct hci_dev, le_scan);
1684 struct le_scan_params *param = &hdev->le_scan_params;
1685
1686 BT_DBG("%s", hdev->name);
1687
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001688 hci_do_le_scan(hdev, param->type, param->interval, param->window,
1689 param->timeout);
Andre Guedes28b75a82012-02-03 17:48:00 -03001690}
1691
1692int hci_le_scan(struct hci_dev *hdev, u8 type, u16 interval, u16 window,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03001693 int timeout)
Andre Guedes28b75a82012-02-03 17:48:00 -03001694{
1695 struct le_scan_params *param = &hdev->le_scan_params;
1696
1697 BT_DBG("%s", hdev->name);
1698
1699 if (work_busy(&hdev->le_scan))
1700 return -EINPROGRESS;
1701
1702 param->type = type;
1703 param->interval = interval;
1704 param->window = window;
1705 param->timeout = timeout;
1706
1707 queue_work(system_long_wq, &hdev->le_scan);
1708
1709 return 0;
1710}
1711
David Herrmann9be0dab2012-04-22 14:39:57 +02001712/* Alloc HCI device */
1713struct hci_dev *hci_alloc_dev(void)
1714{
1715 struct hci_dev *hdev;
1716
1717 hdev = kzalloc(sizeof(struct hci_dev), GFP_KERNEL);
1718 if (!hdev)
1719 return NULL;
1720
David Herrmannb1b813d2012-04-22 14:39:58 +02001721 hdev->pkt_type = (HCI_DM1 | HCI_DH1 | HCI_HV1);
1722 hdev->esco_type = (ESCO_HV1);
1723 hdev->link_mode = (HCI_LM_ACCEPT);
1724 hdev->io_capability = 0x03; /* No Input No Output */
1725
David Herrmannb1b813d2012-04-22 14:39:58 +02001726 hdev->sniff_max_interval = 800;
1727 hdev->sniff_min_interval = 80;
1728
1729 mutex_init(&hdev->lock);
1730 mutex_init(&hdev->req_lock);
1731
1732 INIT_LIST_HEAD(&hdev->mgmt_pending);
1733 INIT_LIST_HEAD(&hdev->blacklist);
1734 INIT_LIST_HEAD(&hdev->uuids);
1735 INIT_LIST_HEAD(&hdev->link_keys);
1736 INIT_LIST_HEAD(&hdev->long_term_keys);
1737 INIT_LIST_HEAD(&hdev->remote_oob_data);
1738 INIT_LIST_HEAD(&hdev->adv_entries);
1739
1740 INIT_WORK(&hdev->rx_work, hci_rx_work);
1741 INIT_WORK(&hdev->cmd_work, hci_cmd_work);
1742 INIT_WORK(&hdev->tx_work, hci_tx_work);
1743 INIT_WORK(&hdev->power_on, hci_power_on);
1744 INIT_WORK(&hdev->le_scan, le_scan_work);
1745
1746 INIT_DELAYED_WORK(&hdev->adv_work, hci_clear_adv_cache);
1747 INIT_DELAYED_WORK(&hdev->power_off, hci_power_off);
1748 INIT_DELAYED_WORK(&hdev->discov_off, hci_discov_off);
1749 INIT_DELAYED_WORK(&hdev->le_scan_disable, le_scan_disable_work);
1750
David Herrmann9be0dab2012-04-22 14:39:57 +02001751 skb_queue_head_init(&hdev->driver_init);
David Herrmannb1b813d2012-04-22 14:39:58 +02001752 skb_queue_head_init(&hdev->rx_q);
1753 skb_queue_head_init(&hdev->cmd_q);
1754 skb_queue_head_init(&hdev->raw_q);
1755
1756 init_waitqueue_head(&hdev->req_wait_q);
1757
1758 setup_timer(&hdev->cmd_timer, hci_cmd_timer, (unsigned long) hdev);
1759
David Herrmannb1b813d2012-04-22 14:39:58 +02001760 hci_init_sysfs(hdev);
1761 discovery_init(hdev);
1762 hci_conn_hash_init(hdev);
David Herrmann9be0dab2012-04-22 14:39:57 +02001763
1764 return hdev;
1765}
1766EXPORT_SYMBOL(hci_alloc_dev);
1767
1768/* Free HCI device */
1769void hci_free_dev(struct hci_dev *hdev)
1770{
1771 skb_queue_purge(&hdev->driver_init);
1772
1773 /* will free via device release */
1774 put_device(&hdev->dev);
1775}
1776EXPORT_SYMBOL(hci_free_dev);
1777
Linus Torvalds1da177e2005-04-16 15:20:36 -07001778/* Register HCI device */
1779int hci_register_dev(struct hci_dev *hdev)
1780{
Ulisses Furquimfc507442012-04-18 12:13:04 -03001781 struct list_head *head, *p;
David Herrmannb1b813d2012-04-22 14:39:58 +02001782 int id, error;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001783
David Herrmann010666a2012-01-07 15:47:07 +01001784 if (!hdev->open || !hdev->close)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001785 return -EINVAL;
1786
Ulisses Furquimfc507442012-04-18 12:13:04 -03001787 write_lock(&hci_dev_list_lock);
1788
Mat Martineau08add512011-11-02 16:18:36 -07001789 /* Do not allow HCI_AMP devices to register at index 0,
1790 * so the index can be used as the AMP controller ID.
1791 */
1792 id = (hdev->dev_type == HCI_BREDR) ? 0 : 1;
Ulisses Furquimfc507442012-04-18 12:13:04 -03001793 head = &hci_dev_list;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001794
1795 /* Find first available device id */
1796 list_for_each(p, &hci_dev_list) {
Ulisses Furquimfc507442012-04-18 12:13:04 -03001797 int nid = list_entry(p, struct hci_dev, list)->id;
1798 if (nid > id)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001799 break;
Ulisses Furquimfc507442012-04-18 12:13:04 -03001800 if (nid == id)
1801 id++;
1802 head = p;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001803 }
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09001804
Linus Torvalds1da177e2005-04-16 15:20:36 -07001805 sprintf(hdev->name, "hci%d", id);
1806 hdev->id = id;
Andrei Emeltchenko2d8b3a12012-04-16 16:32:04 +03001807
1808 BT_DBG("%p name %s bus %d", hdev, hdev->name, hdev->bus);
1809
Ulisses Furquimfc507442012-04-18 12:13:04 -03001810 list_add(&hdev->list, head);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001811
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02001812 write_unlock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001813
Gustavo F. Padovan32845eb2011-12-17 17:47:30 -02001814 hdev->workqueue = alloc_workqueue(hdev->name, WQ_HIGHPRI | WQ_UNBOUND |
1815 WQ_MEM_RECLAIM, 1);
David Herrmann33ca9542011-10-08 14:58:49 +02001816 if (!hdev->workqueue) {
1817 error = -ENOMEM;
1818 goto err;
1819 }
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01001820
David Herrmann33ca9542011-10-08 14:58:49 +02001821 error = hci_add_sysfs(hdev);
1822 if (error < 0)
1823 goto err_wqueue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001824
Marcel Holtmann611b30f2009-06-08 14:41:38 +02001825 hdev->rfkill = rfkill_alloc(hdev->name, &hdev->dev,
1826 RFKILL_TYPE_BLUETOOTH, &hci_rfkill_ops, hdev);
1827 if (hdev->rfkill) {
1828 if (rfkill_register(hdev->rfkill) < 0) {
1829 rfkill_destroy(hdev->rfkill);
1830 hdev->rfkill = NULL;
1831 }
1832 }
1833
Johan Hedberga8b2d5c2012-01-08 23:11:15 +02001834 set_bit(HCI_AUTO_OFF, &hdev->dev_flags);
1835 set_bit(HCI_SETUP, &hdev->dev_flags);
Gustavo F. Padovan7f971042011-12-18 12:40:32 -02001836 schedule_work(&hdev->power_on);
Johan Hedbergab81cbf2010-12-15 13:53:18 +02001837
Linus Torvalds1da177e2005-04-16 15:20:36 -07001838 hci_notify(hdev, HCI_DEV_REG);
David Herrmanndc946bd2012-01-07 15:47:24 +01001839 hci_dev_hold(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001840
1841 return id;
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01001842
David Herrmann33ca9542011-10-08 14:58:49 +02001843err_wqueue:
1844 destroy_workqueue(hdev->workqueue);
1845err:
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02001846 write_lock(&hci_dev_list_lock);
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01001847 list_del(&hdev->list);
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02001848 write_unlock(&hci_dev_list_lock);
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01001849
David Herrmann33ca9542011-10-08 14:58:49 +02001850 return error;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001851}
1852EXPORT_SYMBOL(hci_register_dev);
1853
1854/* Unregister HCI device */
David Herrmann59735632011-10-26 10:43:19 +02001855void hci_unregister_dev(struct hci_dev *hdev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001856{
Marcel Holtmannef222012007-07-11 06:42:04 +02001857 int i;
1858
Marcel Holtmannc13854c2010-02-08 15:27:07 +01001859 BT_DBG("%p name %s bus %d", hdev, hdev->name, hdev->bus);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001860
Johan Hovold94324962012-03-15 14:48:41 +01001861 set_bit(HCI_UNREGISTER, &hdev->dev_flags);
1862
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02001863 write_lock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001864 list_del(&hdev->list);
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02001865 write_unlock(&hci_dev_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001866
1867 hci_dev_do_close(hdev);
1868
Suraj Sumangalacd4c5392010-07-14 13:02:16 +05301869 for (i = 0; i < NUM_REASSEMBLY; i++)
Marcel Holtmannef222012007-07-11 06:42:04 +02001870 kfree_skb(hdev->reassembly[i]);
1871
Johan Hedbergab81cbf2010-12-15 13:53:18 +02001872 if (!test_bit(HCI_INIT, &hdev->flags) &&
Johan Hedberga8b2d5c2012-01-08 23:11:15 +02001873 !test_bit(HCI_SETUP, &hdev->dev_flags)) {
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001874 hci_dev_lock(hdev);
Johan Hedberg744cf192011-11-08 20:40:14 +02001875 mgmt_index_removed(hdev);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001876 hci_dev_unlock(hdev);
Johan Hedberg56e5cb82011-11-08 20:40:16 +02001877 }
Johan Hedbergab81cbf2010-12-15 13:53:18 +02001878
Johan Hedberg2e58ef32011-11-08 20:40:15 +02001879 /* mgmt_index_removed should take care of emptying the
1880 * pending list */
1881 BUG_ON(!list_empty(&hdev->mgmt_pending));
1882
Linus Torvalds1da177e2005-04-16 15:20:36 -07001883 hci_notify(hdev, HCI_DEV_UNREG);
1884
Marcel Holtmann611b30f2009-06-08 14:41:38 +02001885 if (hdev->rfkill) {
1886 rfkill_unregister(hdev->rfkill);
1887 rfkill_destroy(hdev->rfkill);
1888 }
1889
David Herrmannce242972011-10-08 14:58:48 +02001890 hci_del_sysfs(hdev);
Dave Young147e2d52008-03-05 18:45:59 -08001891
Gustavo F. Padovandb323f22011-06-20 16:39:29 -03001892 cancel_delayed_work_sync(&hdev->adv_work);
Gustavo F. Padovanc6f3c5f2011-02-15 20:22:03 -03001893
Marcel Holtmannf48fd9c2010-03-20 15:20:04 +01001894 destroy_workqueue(hdev->workqueue);
1895
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001896 hci_dev_lock(hdev);
Johan Hedberge2e0cac2011-01-04 12:08:50 +02001897 hci_blacklist_clear(hdev);
Johan Hedberg2aeb9a12011-01-04 12:08:51 +02001898 hci_uuids_clear(hdev);
Johan Hedberg55ed8ca12011-01-17 14:41:05 +02001899 hci_link_keys_clear(hdev);
Vinicius Costa Gomesb899efa2012-02-02 21:08:00 -03001900 hci_smp_ltks_clear(hdev);
Szymon Janc2763eda2011-03-22 13:12:22 +01001901 hci_remote_oob_data_clear(hdev);
Andre Guedes76c86862011-05-26 16:23:50 -03001902 hci_adv_entries_clear(hdev);
Gustavo F. Padovan09fd0de2011-06-17 13:03:21 -03001903 hci_dev_unlock(hdev);
Johan Hedberge2e0cac2011-01-04 12:08:50 +02001904
David Herrmanndc946bd2012-01-07 15:47:24 +01001905 hci_dev_put(hdev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001906}
1907EXPORT_SYMBOL(hci_unregister_dev);
1908
1909/* Suspend HCI device */
1910int hci_suspend_dev(struct hci_dev *hdev)
1911{
1912 hci_notify(hdev, HCI_DEV_SUSPEND);
1913 return 0;
1914}
1915EXPORT_SYMBOL(hci_suspend_dev);
1916
1917/* Resume HCI device */
1918int hci_resume_dev(struct hci_dev *hdev)
1919{
1920 hci_notify(hdev, HCI_DEV_RESUME);
1921 return 0;
1922}
1923EXPORT_SYMBOL(hci_resume_dev);
1924
Marcel Holtmann76bca882009-11-18 00:40:39 +01001925/* Receive frame from HCI drivers */
1926int hci_recv_frame(struct sk_buff *skb)
1927{
1928 struct hci_dev *hdev = (struct hci_dev *) skb->dev;
1929 if (!hdev || (!test_bit(HCI_UP, &hdev->flags)
1930 && !test_bit(HCI_INIT, &hdev->flags))) {
1931 kfree_skb(skb);
1932 return -ENXIO;
1933 }
1934
1935 /* Incomming skb */
1936 bt_cb(skb)->incoming = 1;
1937
1938 /* Time stamp */
1939 __net_timestamp(skb);
1940
Marcel Holtmann76bca882009-11-18 00:40:39 +01001941 skb_queue_tail(&hdev->rx_q, skb);
Marcel Holtmannb78752c2010-08-08 23:06:53 -04001942 queue_work(hdev->workqueue, &hdev->rx_work);
Marcel Holtmannc78ae282009-11-18 01:02:54 +01001943
Marcel Holtmann76bca882009-11-18 00:40:39 +01001944 return 0;
1945}
1946EXPORT_SYMBOL(hci_recv_frame);
1947
Suraj Sumangala33e882a2010-07-14 13:02:17 +05301948static int hci_reassembly(struct hci_dev *hdev, int type, void *data,
Gustavo F. Padovan1e429f32011-04-04 18:25:14 -03001949 int count, __u8 index)
Suraj Sumangala33e882a2010-07-14 13:02:17 +05301950{
1951 int len = 0;
1952 int hlen = 0;
1953 int remain = count;
1954 struct sk_buff *skb;
1955 struct bt_skb_cb *scb;
1956
1957 if ((type < HCI_ACLDATA_PKT || type > HCI_EVENT_PKT) ||
1958 index >= NUM_REASSEMBLY)
1959 return -EILSEQ;
1960
1961 skb = hdev->reassembly[index];
1962
1963 if (!skb) {
1964 switch (type) {
1965 case HCI_ACLDATA_PKT:
1966 len = HCI_MAX_FRAME_SIZE;
1967 hlen = HCI_ACL_HDR_SIZE;
1968 break;
1969 case HCI_EVENT_PKT:
1970 len = HCI_MAX_EVENT_SIZE;
1971 hlen = HCI_EVENT_HDR_SIZE;
1972 break;
1973 case HCI_SCODATA_PKT:
1974 len = HCI_MAX_SCO_SIZE;
1975 hlen = HCI_SCO_HDR_SIZE;
1976 break;
1977 }
1978
Gustavo F. Padovan1e429f32011-04-04 18:25:14 -03001979 skb = bt_skb_alloc(len, GFP_ATOMIC);
Suraj Sumangala33e882a2010-07-14 13:02:17 +05301980 if (!skb)
1981 return -ENOMEM;
1982
1983 scb = (void *) skb->cb;
1984 scb->expect = hlen;
1985 scb->pkt_type = type;
1986
1987 skb->dev = (void *) hdev;
1988 hdev->reassembly[index] = skb;
1989 }
1990
1991 while (count) {
1992 scb = (void *) skb->cb;
Dan Carpenter89bb46d2012-02-28 09:57:59 +03001993 len = min_t(uint, scb->expect, count);
Suraj Sumangala33e882a2010-07-14 13:02:17 +05301994
1995 memcpy(skb_put(skb, len), data, len);
1996
1997 count -= len;
1998 data += len;
1999 scb->expect -= len;
2000 remain = count;
2001
2002 switch (type) {
2003 case HCI_EVENT_PKT:
2004 if (skb->len == HCI_EVENT_HDR_SIZE) {
2005 struct hci_event_hdr *h = hci_event_hdr(skb);
2006 scb->expect = h->plen;
2007
2008 if (skb_tailroom(skb) < scb->expect) {
2009 kfree_skb(skb);
2010 hdev->reassembly[index] = NULL;
2011 return -ENOMEM;
2012 }
2013 }
2014 break;
2015
2016 case HCI_ACLDATA_PKT:
2017 if (skb->len == HCI_ACL_HDR_SIZE) {
2018 struct hci_acl_hdr *h = hci_acl_hdr(skb);
2019 scb->expect = __le16_to_cpu(h->dlen);
2020
2021 if (skb_tailroom(skb) < scb->expect) {
2022 kfree_skb(skb);
2023 hdev->reassembly[index] = NULL;
2024 return -ENOMEM;
2025 }
2026 }
2027 break;
2028
2029 case HCI_SCODATA_PKT:
2030 if (skb->len == HCI_SCO_HDR_SIZE) {
2031 struct hci_sco_hdr *h = hci_sco_hdr(skb);
2032 scb->expect = h->dlen;
2033
2034 if (skb_tailroom(skb) < scb->expect) {
2035 kfree_skb(skb);
2036 hdev->reassembly[index] = NULL;
2037 return -ENOMEM;
2038 }
2039 }
2040 break;
2041 }
2042
2043 if (scb->expect == 0) {
2044 /* Complete frame */
2045
2046 bt_cb(skb)->pkt_type = type;
2047 hci_recv_frame(skb);
2048
2049 hdev->reassembly[index] = NULL;
2050 return remain;
2051 }
2052 }
2053
2054 return remain;
2055}
2056
Marcel Holtmannef222012007-07-11 06:42:04 +02002057int hci_recv_fragment(struct hci_dev *hdev, int type, void *data, int count)
2058{
Suraj Sumangalaf39a3c02010-07-14 13:02:18 +05302059 int rem = 0;
2060
Marcel Holtmannef222012007-07-11 06:42:04 +02002061 if (type < HCI_ACLDATA_PKT || type > HCI_EVENT_PKT)
2062 return -EILSEQ;
2063
Gustavo F. Padovanda5f6c32010-07-24 01:34:54 -03002064 while (count) {
Gustavo F. Padovan1e429f32011-04-04 18:25:14 -03002065 rem = hci_reassembly(hdev, type, data, count, type - 1);
Suraj Sumangalaf39a3c02010-07-14 13:02:18 +05302066 if (rem < 0)
2067 return rem;
Marcel Holtmannef222012007-07-11 06:42:04 +02002068
Suraj Sumangalaf39a3c02010-07-14 13:02:18 +05302069 data += (count - rem);
2070 count = rem;
Joe Perchesf81c6222011-06-03 11:51:19 +00002071 }
Marcel Holtmannef222012007-07-11 06:42:04 +02002072
Suraj Sumangalaf39a3c02010-07-14 13:02:18 +05302073 return rem;
Marcel Holtmannef222012007-07-11 06:42:04 +02002074}
2075EXPORT_SYMBOL(hci_recv_fragment);
2076
Suraj Sumangala99811512010-07-14 13:02:19 +05302077#define STREAM_REASSEMBLY 0
2078
2079int hci_recv_stream_fragment(struct hci_dev *hdev, void *data, int count)
2080{
2081 int type;
2082 int rem = 0;
2083
Gustavo F. Padovanda5f6c32010-07-24 01:34:54 -03002084 while (count) {
Suraj Sumangala99811512010-07-14 13:02:19 +05302085 struct sk_buff *skb = hdev->reassembly[STREAM_REASSEMBLY];
2086
2087 if (!skb) {
2088 struct { char type; } *pkt;
2089
2090 /* Start of the frame */
2091 pkt = data;
2092 type = pkt->type;
2093
2094 data++;
2095 count--;
2096 } else
2097 type = bt_cb(skb)->pkt_type;
2098
Gustavo F. Padovan1e429f32011-04-04 18:25:14 -03002099 rem = hci_reassembly(hdev, type, data, count,
2100 STREAM_REASSEMBLY);
Suraj Sumangala99811512010-07-14 13:02:19 +05302101 if (rem < 0)
2102 return rem;
2103
2104 data += (count - rem);
2105 count = rem;
Joe Perchesf81c6222011-06-03 11:51:19 +00002106 }
Suraj Sumangala99811512010-07-14 13:02:19 +05302107
2108 return rem;
2109}
2110EXPORT_SYMBOL(hci_recv_stream_fragment);
2111
Linus Torvalds1da177e2005-04-16 15:20:36 -07002112/* ---- Interface to upper protocols ---- */
2113
Linus Torvalds1da177e2005-04-16 15:20:36 -07002114int hci_register_cb(struct hci_cb *cb)
2115{
2116 BT_DBG("%p name %s", cb, cb->name);
2117
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02002118 write_lock(&hci_cb_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002119 list_add(&cb->list, &hci_cb_list);
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02002120 write_unlock(&hci_cb_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002121
2122 return 0;
2123}
2124EXPORT_SYMBOL(hci_register_cb);
2125
2126int hci_unregister_cb(struct hci_cb *cb)
2127{
2128 BT_DBG("%p name %s", cb, cb->name);
2129
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02002130 write_lock(&hci_cb_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002131 list_del(&cb->list);
Gustavo F. Padovanf20d09d2011-12-22 16:30:27 -02002132 write_unlock(&hci_cb_list_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002133
2134 return 0;
2135}
2136EXPORT_SYMBOL(hci_unregister_cb);
2137
2138static int hci_send_frame(struct sk_buff *skb)
2139{
2140 struct hci_dev *hdev = (struct hci_dev *) skb->dev;
2141
2142 if (!hdev) {
2143 kfree_skb(skb);
2144 return -ENODEV;
2145 }
2146
Marcel Holtmann0d48d932005-08-09 20:30:28 -07002147 BT_DBG("%s type %d len %d", hdev->name, bt_cb(skb)->pkt_type, skb->len);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002148
Marcel Holtmanncd82e612012-02-20 20:34:38 +01002149 /* Time stamp */
2150 __net_timestamp(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002151
Marcel Holtmanncd82e612012-02-20 20:34:38 +01002152 /* Send copy to monitor */
2153 hci_send_to_monitor(hdev, skb);
2154
2155 if (atomic_read(&hdev->promisc)) {
2156 /* Send copy to the sockets */
Marcel Holtmann470fe1b2012-02-20 14:50:30 +01002157 hci_send_to_sock(hdev, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002158 }
2159
2160 /* Get rid of skb owner, prior to sending to the driver. */
2161 skb_orphan(skb);
2162
2163 return hdev->send(skb);
2164}
2165
2166/* Send HCI command */
Marcel Holtmanna9de9242007-10-20 13:33:56 +02002167int hci_send_cmd(struct hci_dev *hdev, __u16 opcode, __u32 plen, void *param)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002168{
2169 int len = HCI_COMMAND_HDR_SIZE + plen;
2170 struct hci_command_hdr *hdr;
2171 struct sk_buff *skb;
2172
Marcel Holtmanna9de9242007-10-20 13:33:56 +02002173 BT_DBG("%s opcode 0x%x plen %d", hdev->name, opcode, plen);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002174
2175 skb = bt_skb_alloc(len, GFP_ATOMIC);
2176 if (!skb) {
Marcel Holtmannef222012007-07-11 06:42:04 +02002177 BT_ERR("%s no memory for command", hdev->name);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002178 return -ENOMEM;
2179 }
2180
2181 hdr = (struct hci_command_hdr *) skb_put(skb, HCI_COMMAND_HDR_SIZE);
Marcel Holtmanna9de9242007-10-20 13:33:56 +02002182 hdr->opcode = cpu_to_le16(opcode);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002183 hdr->plen = plen;
2184
2185 if (plen)
2186 memcpy(skb_put(skb, plen), param, plen);
2187
2188 BT_DBG("skb len %d", skb->len);
2189
Marcel Holtmann0d48d932005-08-09 20:30:28 -07002190 bt_cb(skb)->pkt_type = HCI_COMMAND_PKT;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002191 skb->dev = (void *) hdev;
Marcel Holtmannc78ae282009-11-18 01:02:54 +01002192
Johan Hedberga5040ef2011-01-10 13:28:59 +02002193 if (test_bit(HCI_INIT, &hdev->flags))
2194 hdev->init_last_cmd = opcode;
2195
Linus Torvalds1da177e2005-04-16 15:20:36 -07002196 skb_queue_tail(&hdev->cmd_q, skb);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02002197 queue_work(hdev->workqueue, &hdev->cmd_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002198
2199 return 0;
2200}
Linus Torvalds1da177e2005-04-16 15:20:36 -07002201
2202/* Get data from the previously sent command */
Marcel Holtmanna9de9242007-10-20 13:33:56 +02002203void *hci_sent_cmd_data(struct hci_dev *hdev, __u16 opcode)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002204{
2205 struct hci_command_hdr *hdr;
2206
2207 if (!hdev->sent_cmd)
2208 return NULL;
2209
2210 hdr = (void *) hdev->sent_cmd->data;
2211
Marcel Holtmanna9de9242007-10-20 13:33:56 +02002212 if (hdr->opcode != cpu_to_le16(opcode))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002213 return NULL;
2214
Marcel Holtmanna9de9242007-10-20 13:33:56 +02002215 BT_DBG("%s opcode 0x%x", hdev->name, opcode);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002216
2217 return hdev->sent_cmd->data + HCI_COMMAND_HDR_SIZE;
2218}
2219
2220/* Send ACL data */
2221static void hci_add_acl_hdr(struct sk_buff *skb, __u16 handle, __u16 flags)
2222{
2223 struct hci_acl_hdr *hdr;
2224 int len = skb->len;
2225
Arnaldo Carvalho de Melobadff6d2007-03-13 13:06:52 -03002226 skb_push(skb, HCI_ACL_HDR_SIZE);
2227 skb_reset_transport_header(skb);
Arnaldo Carvalho de Melo9c702202007-04-25 18:04:18 -07002228 hdr = (struct hci_acl_hdr *)skb_transport_header(skb);
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -07002229 hdr->handle = cpu_to_le16(hci_handle_pack(handle, flags));
2230 hdr->dlen = cpu_to_le16(len);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002231}
2232
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002233static void hci_queue_acl(struct hci_conn *conn, struct sk_buff_head *queue,
2234 struct sk_buff *skb, __u16 flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002235{
2236 struct hci_dev *hdev = conn->hdev;
2237 struct sk_buff *list;
2238
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02002239 list = skb_shinfo(skb)->frag_list;
2240 if (!list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002241 /* Non fragmented */
2242 BT_DBG("%s nonfrag skb %p len %d", hdev->name, skb, skb->len);
2243
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002244 skb_queue_tail(queue, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002245 } else {
2246 /* Fragmented */
2247 BT_DBG("%s frag %p len %d", hdev->name, skb, skb->len);
2248
2249 skb_shinfo(skb)->frag_list = NULL;
2250
2251 /* Queue all fragments atomically */
Gustavo F. Padovanaf3e6352011-12-22 16:35:05 -02002252 spin_lock(&queue->lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002253
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002254 __skb_queue_tail(queue, skb);
Andrei Emeltchenkoe7021122011-01-03 11:14:36 +02002255
2256 flags &= ~ACL_START;
2257 flags |= ACL_CONT;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002258 do {
2259 skb = list; list = list->next;
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09002260
Linus Torvalds1da177e2005-04-16 15:20:36 -07002261 skb->dev = (void *) hdev;
Marcel Holtmann0d48d932005-08-09 20:30:28 -07002262 bt_cb(skb)->pkt_type = HCI_ACLDATA_PKT;
Andrei Emeltchenkoe7021122011-01-03 11:14:36 +02002263 hci_add_acl_hdr(skb, conn->handle, flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002264
2265 BT_DBG("%s frag %p len %d", hdev->name, skb, skb->len);
2266
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002267 __skb_queue_tail(queue, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002268 } while (list);
2269
Gustavo F. Padovanaf3e6352011-12-22 16:35:05 -02002270 spin_unlock(&queue->lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002271 }
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002272}
2273
2274void hci_send_acl(struct hci_chan *chan, struct sk_buff *skb, __u16 flags)
2275{
2276 struct hci_conn *conn = chan->conn;
2277 struct hci_dev *hdev = conn->hdev;
2278
2279 BT_DBG("%s chan %p flags 0x%x", hdev->name, chan, flags);
2280
2281 skb->dev = (void *) hdev;
2282 bt_cb(skb)->pkt_type = HCI_ACLDATA_PKT;
2283 hci_add_acl_hdr(skb, conn->handle, flags);
2284
2285 hci_queue_acl(conn, &chan->data_q, skb, flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002286
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02002287 queue_work(hdev->workqueue, &hdev->tx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002288}
2289EXPORT_SYMBOL(hci_send_acl);
2290
2291/* Send SCO data */
Gustavo F. Padovan0d861d82010-05-01 16:15:35 -03002292void hci_send_sco(struct hci_conn *conn, struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002293{
2294 struct hci_dev *hdev = conn->hdev;
2295 struct hci_sco_hdr hdr;
2296
2297 BT_DBG("%s len %d", hdev->name, skb->len);
2298
YOSHIFUJI Hideakiaca31922007-03-25 20:12:50 -07002299 hdr.handle = cpu_to_le16(conn->handle);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002300 hdr.dlen = skb->len;
2301
Arnaldo Carvalho de Melobadff6d2007-03-13 13:06:52 -03002302 skb_push(skb, HCI_SCO_HDR_SIZE);
2303 skb_reset_transport_header(skb);
Arnaldo Carvalho de Melo9c702202007-04-25 18:04:18 -07002304 memcpy(skb_transport_header(skb), &hdr, HCI_SCO_HDR_SIZE);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002305
2306 skb->dev = (void *) hdev;
Marcel Holtmann0d48d932005-08-09 20:30:28 -07002307 bt_cb(skb)->pkt_type = HCI_SCODATA_PKT;
Marcel Holtmannc78ae282009-11-18 01:02:54 +01002308
Linus Torvalds1da177e2005-04-16 15:20:36 -07002309 skb_queue_tail(&conn->data_q, skb);
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02002310 queue_work(hdev->workqueue, &hdev->tx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002311}
2312EXPORT_SYMBOL(hci_send_sco);
2313
2314/* ---- HCI TX task (outgoing data) ---- */
2315
2316/* HCI Connection scheduler */
2317static inline struct hci_conn *hci_low_sent(struct hci_dev *hdev, __u8 type, int *quote)
2318{
2319 struct hci_conn_hash *h = &hdev->conn_hash;
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02002320 struct hci_conn *conn = NULL, *c;
Mikel Astizabc5de82012-04-11 08:48:47 +02002321 unsigned int num = 0, min = ~0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002322
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09002323 /* We don't have to lock device here. Connections are always
Linus Torvalds1da177e2005-04-16 15:20:36 -07002324 * added and removed with TX task disabled. */
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02002325
2326 rcu_read_lock();
2327
2328 list_for_each_entry_rcu(c, &h->list, list) {
Marcel Holtmann769be972008-07-14 20:13:49 +02002329 if (c->type != type || skb_queue_empty(&c->data_q))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002330 continue;
Marcel Holtmann769be972008-07-14 20:13:49 +02002331
2332 if (c->state != BT_CONNECTED && c->state != BT_CONFIG)
2333 continue;
2334
Linus Torvalds1da177e2005-04-16 15:20:36 -07002335 num++;
2336
2337 if (c->sent < min) {
2338 min = c->sent;
2339 conn = c;
2340 }
Luiz Augusto von Dentz52087a72011-08-17 16:23:00 +03002341
2342 if (hci_conn_num(hdev, type) == num)
2343 break;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002344 }
2345
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02002346 rcu_read_unlock();
2347
Linus Torvalds1da177e2005-04-16 15:20:36 -07002348 if (conn) {
Ville Tervo6ed58ec2011-02-10 22:38:48 -03002349 int cnt, q;
2350
2351 switch (conn->type) {
2352 case ACL_LINK:
2353 cnt = hdev->acl_cnt;
2354 break;
2355 case SCO_LINK:
2356 case ESCO_LINK:
2357 cnt = hdev->sco_cnt;
2358 break;
2359 case LE_LINK:
2360 cnt = hdev->le_mtu ? hdev->le_cnt : hdev->acl_cnt;
2361 break;
2362 default:
2363 cnt = 0;
2364 BT_ERR("Unknown link type");
2365 }
2366
2367 q = cnt / num;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002368 *quote = q ? q : 1;
2369 } else
2370 *quote = 0;
2371
2372 BT_DBG("conn %p quote %d", conn, *quote);
2373 return conn;
2374}
2375
Ville Tervobae1f5d92011-02-10 22:38:53 -03002376static inline void hci_link_tx_to(struct hci_dev *hdev, __u8 type)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002377{
2378 struct hci_conn_hash *h = &hdev->conn_hash;
Luiz Augusto von Dentz8035ded2011-11-01 10:58:56 +02002379 struct hci_conn *c;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002380
Ville Tervobae1f5d92011-02-10 22:38:53 -03002381 BT_ERR("%s link tx timeout", hdev->name);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002382
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02002383 rcu_read_lock();
2384
Linus Torvalds1da177e2005-04-16 15:20:36 -07002385 /* Kill stalled connections */
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02002386 list_for_each_entry_rcu(c, &h->list, list) {
Ville Tervobae1f5d92011-02-10 22:38:53 -03002387 if (c->type == type && c->sent) {
2388 BT_ERR("%s killing stalled connection %s",
Linus Torvalds1da177e2005-04-16 15:20:36 -07002389 hdev->name, batostr(&c->dst));
2390 hci_acl_disconn(c, 0x13);
2391 }
2392 }
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02002393
2394 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002395}
2396
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002397static inline struct hci_chan *hci_chan_sent(struct hci_dev *hdev, __u8 type,
2398 int *quote)
2399{
2400 struct hci_conn_hash *h = &hdev->conn_hash;
2401 struct hci_chan *chan = NULL;
Mikel Astizabc5de82012-04-11 08:48:47 +02002402 unsigned int num = 0, min = ~0, cur_prio = 0;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002403 struct hci_conn *conn;
2404 int cnt, q, conn_num = 0;
2405
2406 BT_DBG("%s", hdev->name);
2407
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02002408 rcu_read_lock();
2409
2410 list_for_each_entry_rcu(conn, &h->list, list) {
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002411 struct hci_chan *tmp;
2412
2413 if (conn->type != type)
2414 continue;
2415
2416 if (conn->state != BT_CONNECTED && conn->state != BT_CONFIG)
2417 continue;
2418
2419 conn_num++;
2420
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -02002421 list_for_each_entry_rcu(tmp, &conn->chan_list, list) {
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002422 struct sk_buff *skb;
2423
2424 if (skb_queue_empty(&tmp->data_q))
2425 continue;
2426
2427 skb = skb_peek(&tmp->data_q);
2428 if (skb->priority < cur_prio)
2429 continue;
2430
2431 if (skb->priority > cur_prio) {
2432 num = 0;
2433 min = ~0;
2434 cur_prio = skb->priority;
2435 }
2436
2437 num++;
2438
2439 if (conn->sent < min) {
2440 min = conn->sent;
2441 chan = tmp;
2442 }
2443 }
2444
2445 if (hci_conn_num(hdev, type) == conn_num)
2446 break;
2447 }
2448
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02002449 rcu_read_unlock();
2450
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002451 if (!chan)
2452 return NULL;
2453
2454 switch (chan->conn->type) {
2455 case ACL_LINK:
2456 cnt = hdev->acl_cnt;
2457 break;
2458 case SCO_LINK:
2459 case ESCO_LINK:
2460 cnt = hdev->sco_cnt;
2461 break;
2462 case LE_LINK:
2463 cnt = hdev->le_mtu ? hdev->le_cnt : hdev->acl_cnt;
2464 break;
2465 default:
2466 cnt = 0;
2467 BT_ERR("Unknown link type");
2468 }
2469
2470 q = cnt / num;
2471 *quote = q ? q : 1;
2472 BT_DBG("chan %p quote %d", chan, *quote);
2473 return chan;
2474}
2475
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02002476static void hci_prio_recalculate(struct hci_dev *hdev, __u8 type)
2477{
2478 struct hci_conn_hash *h = &hdev->conn_hash;
2479 struct hci_conn *conn;
2480 int num = 0;
2481
2482 BT_DBG("%s", hdev->name);
2483
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02002484 rcu_read_lock();
2485
2486 list_for_each_entry_rcu(conn, &h->list, list) {
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02002487 struct hci_chan *chan;
2488
2489 if (conn->type != type)
2490 continue;
2491
2492 if (conn->state != BT_CONNECTED && conn->state != BT_CONFIG)
2493 continue;
2494
2495 num++;
2496
Gustavo F. Padovan8192ede2011-12-14 15:08:48 -02002497 list_for_each_entry_rcu(chan, &conn->chan_list, list) {
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02002498 struct sk_buff *skb;
2499
2500 if (chan->sent) {
2501 chan->sent = 0;
2502 continue;
2503 }
2504
2505 if (skb_queue_empty(&chan->data_q))
2506 continue;
2507
2508 skb = skb_peek(&chan->data_q);
2509 if (skb->priority >= HCI_PRIO_MAX - 1)
2510 continue;
2511
2512 skb->priority = HCI_PRIO_MAX - 1;
2513
2514 BT_DBG("chan %p skb %p promoted to %d", chan, skb,
2515 skb->priority);
2516 }
2517
2518 if (hci_conn_num(hdev, type) == num)
2519 break;
2520 }
Gustavo F. Padovanbf4c6322011-12-14 22:54:12 -02002521
2522 rcu_read_unlock();
2523
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02002524}
2525
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02002526static inline int __get_blocks(struct hci_dev *hdev, struct sk_buff *skb)
2527{
2528 /* Calculate count of blocks used by this packet */
2529 return DIV_ROUND_UP(skb->len - HCI_ACL_HDR_SIZE, hdev->block_len);
2530}
2531
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02002532static inline void __check_timeout(struct hci_dev *hdev, unsigned int cnt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002533{
Linus Torvalds1da177e2005-04-16 15:20:36 -07002534 if (!test_bit(HCI_RAW, &hdev->flags)) {
2535 /* ACL tx timeout must be longer than maximum
2536 * link supervision timeout (40.9 seconds) */
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02002537 if (!cnt && time_after(jiffies, hdev->acl_last_tx +
Andrei Emeltchenkocc48dc02012-01-04 16:42:26 +02002538 msecs_to_jiffies(HCI_ACL_TX_TIMEOUT)))
Ville Tervobae1f5d92011-02-10 22:38:53 -03002539 hci_link_tx_to(hdev, ACL_LINK);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002540 }
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02002541}
Linus Torvalds1da177e2005-04-16 15:20:36 -07002542
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02002543static inline void hci_sched_acl_pkt(struct hci_dev *hdev)
2544{
2545 unsigned int cnt = hdev->acl_cnt;
2546 struct hci_chan *chan;
2547 struct sk_buff *skb;
2548 int quote;
2549
2550 __check_timeout(hdev, cnt);
Marcel Holtmann04837f62006-07-03 10:02:33 +02002551
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002552 while (hdev->acl_cnt &&
2553 (chan = hci_chan_sent(hdev, ACL_LINK, &quote))) {
Luiz Augusto von Dentzec1cce22011-11-02 15:52:02 +02002554 u32 priority = (skb_peek(&chan->data_q))->priority;
2555 while (quote-- && (skb = skb_peek(&chan->data_q))) {
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002556 BT_DBG("chan %p skb %p len %d priority %u", chan, skb,
2557 skb->len, skb->priority);
2558
Luiz Augusto von Dentzec1cce22011-11-02 15:52:02 +02002559 /* Stop if priority has changed */
2560 if (skb->priority < priority)
2561 break;
2562
2563 skb = skb_dequeue(&chan->data_q);
2564
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002565 hci_conn_enter_active_mode(chan->conn,
Gustavo F. Padovan04124682012-03-08 01:25:00 -03002566 bt_cb(skb)->force_active);
Marcel Holtmann04837f62006-07-03 10:02:33 +02002567
Linus Torvalds1da177e2005-04-16 15:20:36 -07002568 hci_send_frame(skb);
2569 hdev->acl_last_tx = jiffies;
2570
2571 hdev->acl_cnt--;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002572 chan->sent++;
2573 chan->conn->sent++;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002574 }
2575 }
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02002576
2577 if (cnt != hdev->acl_cnt)
2578 hci_prio_recalculate(hdev, ACL_LINK);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002579}
2580
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02002581static inline void hci_sched_acl_blk(struct hci_dev *hdev)
2582{
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02002583 unsigned int cnt = hdev->block_cnt;
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02002584 struct hci_chan *chan;
2585 struct sk_buff *skb;
2586 int quote;
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02002587
Andrei Emeltchenko63d2bc12012-02-03 16:27:55 +02002588 __check_timeout(hdev, cnt);
Andrei Emeltchenkob71d3852012-02-03 16:27:54 +02002589
2590 while (hdev->block_cnt > 0 &&
2591 (chan = hci_chan_sent(hdev, ACL_LINK, &quote))) {
2592 u32 priority = (skb_peek(&chan->data_q))->priority;
2593 while (quote > 0 && (skb = skb_peek(&chan->data_q))) {
2594 int blocks;
2595
2596 BT_DBG("chan %p skb %p len %d priority %u", chan, skb,
2597 skb->len, skb->priority);
2598
2599 /* Stop if priority has changed */
2600 if (skb->priority < priority)
2601 break;
2602
2603 skb = skb_dequeue(&chan->data_q);
2604
2605 blocks = __get_blocks(hdev, skb);
2606 if (blocks > hdev->block_cnt)
2607 return;
2608
2609 hci_conn_enter_active_mode(chan->conn,
2610 bt_cb(skb)->force_active);
2611
2612 hci_send_frame(skb);
2613 hdev->acl_last_tx = jiffies;
2614
2615 hdev->block_cnt -= blocks;
2616 quote -= blocks;
2617
2618 chan->sent += blocks;
2619 chan->conn->sent += blocks;
2620 }
2621 }
2622
2623 if (cnt != hdev->block_cnt)
2624 hci_prio_recalculate(hdev, ACL_LINK);
2625}
2626
2627static inline void hci_sched_acl(struct hci_dev *hdev)
2628{
2629 BT_DBG("%s", hdev->name);
2630
2631 if (!hci_conn_num(hdev, ACL_LINK))
2632 return;
2633
2634 switch (hdev->flow_ctl_mode) {
2635 case HCI_FLOW_CTL_MODE_PACKET_BASED:
2636 hci_sched_acl_pkt(hdev);
2637 break;
2638
2639 case HCI_FLOW_CTL_MODE_BLOCK_BASED:
2640 hci_sched_acl_blk(hdev);
2641 break;
2642 }
2643}
2644
Linus Torvalds1da177e2005-04-16 15:20:36 -07002645/* Schedule SCO */
2646static inline void hci_sched_sco(struct hci_dev *hdev)
2647{
2648 struct hci_conn *conn;
2649 struct sk_buff *skb;
2650 int quote;
2651
2652 BT_DBG("%s", hdev->name);
2653
Luiz Augusto von Dentz52087a72011-08-17 16:23:00 +03002654 if (!hci_conn_num(hdev, SCO_LINK))
2655 return;
2656
Linus Torvalds1da177e2005-04-16 15:20:36 -07002657 while (hdev->sco_cnt && (conn = hci_low_sent(hdev, SCO_LINK, &quote))) {
2658 while (quote-- && (skb = skb_dequeue(&conn->data_q))) {
2659 BT_DBG("skb %p len %d", skb, skb->len);
2660 hci_send_frame(skb);
2661
2662 conn->sent++;
2663 if (conn->sent == ~0)
2664 conn->sent = 0;
2665 }
2666 }
2667}
2668
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +02002669static inline void hci_sched_esco(struct hci_dev *hdev)
2670{
2671 struct hci_conn *conn;
2672 struct sk_buff *skb;
2673 int quote;
2674
2675 BT_DBG("%s", hdev->name);
2676
Luiz Augusto von Dentz52087a72011-08-17 16:23:00 +03002677 if (!hci_conn_num(hdev, ESCO_LINK))
2678 return;
2679
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +02002680 while (hdev->sco_cnt && (conn = hci_low_sent(hdev, ESCO_LINK, &quote))) {
2681 while (quote-- && (skb = skb_dequeue(&conn->data_q))) {
2682 BT_DBG("skb %p len %d", skb, skb->len);
2683 hci_send_frame(skb);
2684
2685 conn->sent++;
2686 if (conn->sent == ~0)
2687 conn->sent = 0;
2688 }
2689 }
2690}
2691
Ville Tervo6ed58ec2011-02-10 22:38:48 -03002692static inline void hci_sched_le(struct hci_dev *hdev)
2693{
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002694 struct hci_chan *chan;
Ville Tervo6ed58ec2011-02-10 22:38:48 -03002695 struct sk_buff *skb;
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02002696 int quote, cnt, tmp;
Ville Tervo6ed58ec2011-02-10 22:38:48 -03002697
2698 BT_DBG("%s", hdev->name);
2699
Luiz Augusto von Dentz52087a72011-08-17 16:23:00 +03002700 if (!hci_conn_num(hdev, LE_LINK))
2701 return;
2702
Ville Tervo6ed58ec2011-02-10 22:38:48 -03002703 if (!test_bit(HCI_RAW, &hdev->flags)) {
2704 /* LE tx timeout must be longer than maximum
2705 * link supervision timeout (40.9 seconds) */
Ville Tervobae1f5d92011-02-10 22:38:53 -03002706 if (!hdev->le_cnt && hdev->le_pkts &&
Ville Tervo6ed58ec2011-02-10 22:38:48 -03002707 time_after(jiffies, hdev->le_last_tx + HZ * 45))
Ville Tervobae1f5d92011-02-10 22:38:53 -03002708 hci_link_tx_to(hdev, LE_LINK);
Ville Tervo6ed58ec2011-02-10 22:38:48 -03002709 }
2710
2711 cnt = hdev->le_pkts ? hdev->le_cnt : hdev->acl_cnt;
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02002712 tmp = cnt;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002713 while (cnt && (chan = hci_chan_sent(hdev, LE_LINK, &quote))) {
Luiz Augusto von Dentzec1cce22011-11-02 15:52:02 +02002714 u32 priority = (skb_peek(&chan->data_q))->priority;
2715 while (quote-- && (skb = skb_peek(&chan->data_q))) {
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002716 BT_DBG("chan %p skb %p len %d priority %u", chan, skb,
2717 skb->len, skb->priority);
Ville Tervo6ed58ec2011-02-10 22:38:48 -03002718
Luiz Augusto von Dentzec1cce22011-11-02 15:52:02 +02002719 /* Stop if priority has changed */
2720 if (skb->priority < priority)
2721 break;
2722
2723 skb = skb_dequeue(&chan->data_q);
2724
Ville Tervo6ed58ec2011-02-10 22:38:48 -03002725 hci_send_frame(skb);
2726 hdev->le_last_tx = jiffies;
2727
2728 cnt--;
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002729 chan->sent++;
2730 chan->conn->sent++;
Ville Tervo6ed58ec2011-02-10 22:38:48 -03002731 }
2732 }
Luiz Augusto von Dentz73d80de2011-11-02 15:52:01 +02002733
Ville Tervo6ed58ec2011-02-10 22:38:48 -03002734 if (hdev->le_pkts)
2735 hdev->le_cnt = cnt;
2736 else
2737 hdev->acl_cnt = cnt;
Luiz Augusto von Dentz02b20f02011-11-02 15:52:03 +02002738
2739 if (cnt != tmp)
2740 hci_prio_recalculate(hdev, LE_LINK);
Ville Tervo6ed58ec2011-02-10 22:38:48 -03002741}
2742
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02002743static void hci_tx_work(struct work_struct *work)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002744{
Gustavo F. Padovan3eff45e2011-12-15 00:50:02 -02002745 struct hci_dev *hdev = container_of(work, struct hci_dev, tx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002746 struct sk_buff *skb;
2747
Ville Tervo6ed58ec2011-02-10 22:38:48 -03002748 BT_DBG("%s acl %d sco %d le %d", hdev->name, hdev->acl_cnt,
2749 hdev->sco_cnt, hdev->le_cnt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002750
2751 /* Schedule queues and send stuff to HCI driver */
2752
2753 hci_sched_acl(hdev);
2754
2755 hci_sched_sco(hdev);
2756
Marcel Holtmannb6a0dc82007-10-20 14:55:10 +02002757 hci_sched_esco(hdev);
2758
Ville Tervo6ed58ec2011-02-10 22:38:48 -03002759 hci_sched_le(hdev);
2760
Linus Torvalds1da177e2005-04-16 15:20:36 -07002761 /* Send next queued raw (unknown type) packet */
2762 while ((skb = skb_dequeue(&hdev->raw_q)))
2763 hci_send_frame(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002764}
2765
Lucas De Marchi25985ed2011-03-30 22:57:33 -03002766/* ----- HCI RX task (incoming data processing) ----- */
Linus Torvalds1da177e2005-04-16 15:20:36 -07002767
2768/* ACL data packet */
2769static inline void hci_acldata_packet(struct hci_dev *hdev, struct sk_buff *skb)
2770{
2771 struct hci_acl_hdr *hdr = (void *) skb->data;
2772 struct hci_conn *conn;
2773 __u16 handle, flags;
2774
2775 skb_pull(skb, HCI_ACL_HDR_SIZE);
2776
2777 handle = __le16_to_cpu(hdr->handle);
2778 flags = hci_flags(handle);
2779 handle = hci_handle(handle);
2780
2781 BT_DBG("%s len %d handle 0x%x flags 0x%x", hdev->name, skb->len, handle, flags);
2782
2783 hdev->stat.acl_rx++;
2784
2785 hci_dev_lock(hdev);
2786 conn = hci_conn_hash_lookup_handle(hdev, handle);
2787 hci_dev_unlock(hdev);
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09002788
Linus Torvalds1da177e2005-04-16 15:20:36 -07002789 if (conn) {
Mat Martineau65983fc2011-12-13 15:06:02 -08002790 hci_conn_enter_active_mode(conn, BT_POWER_FORCE_ACTIVE_OFF);
Marcel Holtmann04837f62006-07-03 10:02:33 +02002791
Linus Torvalds1da177e2005-04-16 15:20:36 -07002792 /* Send to upper protocol */
Ulisses Furquim686ebf22011-12-21 10:11:33 -02002793 l2cap_recv_acldata(conn, skb, flags);
2794 return;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002795 } else {
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09002796 BT_ERR("%s ACL packet for unknown connection handle %d",
Linus Torvalds1da177e2005-04-16 15:20:36 -07002797 hdev->name, handle);
2798 }
2799
2800 kfree_skb(skb);
2801}
2802
2803/* SCO data packet */
2804static inline void hci_scodata_packet(struct hci_dev *hdev, struct sk_buff *skb)
2805{
2806 struct hci_sco_hdr *hdr = (void *) skb->data;
2807 struct hci_conn *conn;
2808 __u16 handle;
2809
2810 skb_pull(skb, HCI_SCO_HDR_SIZE);
2811
2812 handle = __le16_to_cpu(hdr->handle);
2813
2814 BT_DBG("%s len %d handle 0x%x", hdev->name, skb->len, handle);
2815
2816 hdev->stat.sco_rx++;
2817
2818 hci_dev_lock(hdev);
2819 conn = hci_conn_hash_lookup_handle(hdev, handle);
2820 hci_dev_unlock(hdev);
2821
2822 if (conn) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002823 /* Send to upper protocol */
Ulisses Furquim686ebf22011-12-21 10:11:33 -02002824 sco_recv_scodata(conn, skb);
2825 return;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002826 } else {
YOSHIFUJI Hideaki8e87d142007-02-09 23:24:33 +09002827 BT_ERR("%s SCO packet for unknown connection handle %d",
Linus Torvalds1da177e2005-04-16 15:20:36 -07002828 hdev->name, handle);
2829 }
2830
2831 kfree_skb(skb);
2832}
2833
Marcel Holtmannb78752c2010-08-08 23:06:53 -04002834static void hci_rx_work(struct work_struct *work)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002835{
Marcel Holtmannb78752c2010-08-08 23:06:53 -04002836 struct hci_dev *hdev = container_of(work, struct hci_dev, rx_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002837 struct sk_buff *skb;
2838
2839 BT_DBG("%s", hdev->name);
2840
Linus Torvalds1da177e2005-04-16 15:20:36 -07002841 while ((skb = skb_dequeue(&hdev->rx_q))) {
Marcel Holtmanncd82e612012-02-20 20:34:38 +01002842 /* Send copy to monitor */
2843 hci_send_to_monitor(hdev, skb);
2844
Linus Torvalds1da177e2005-04-16 15:20:36 -07002845 if (atomic_read(&hdev->promisc)) {
2846 /* Send copy to the sockets */
Marcel Holtmann470fe1b2012-02-20 14:50:30 +01002847 hci_send_to_sock(hdev, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002848 }
2849
2850 if (test_bit(HCI_RAW, &hdev->flags)) {
2851 kfree_skb(skb);
2852 continue;
2853 }
2854
2855 if (test_bit(HCI_INIT, &hdev->flags)) {
2856 /* Don't process data packets in this states. */
Marcel Holtmann0d48d932005-08-09 20:30:28 -07002857 switch (bt_cb(skb)->pkt_type) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002858 case HCI_ACLDATA_PKT:
2859 case HCI_SCODATA_PKT:
2860 kfree_skb(skb);
2861 continue;
Stephen Hemminger3ff50b72007-04-20 17:09:22 -07002862 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002863 }
2864
2865 /* Process frame */
Marcel Holtmann0d48d932005-08-09 20:30:28 -07002866 switch (bt_cb(skb)->pkt_type) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002867 case HCI_EVENT_PKT:
Marcel Holtmannb78752c2010-08-08 23:06:53 -04002868 BT_DBG("%s Event packet", hdev->name);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002869 hci_event_packet(hdev, skb);
2870 break;
2871
2872 case HCI_ACLDATA_PKT:
2873 BT_DBG("%s ACL data packet", hdev->name);
2874 hci_acldata_packet(hdev, skb);
2875 break;
2876
2877 case HCI_SCODATA_PKT:
2878 BT_DBG("%s SCO data packet", hdev->name);
2879 hci_scodata_packet(hdev, skb);
2880 break;
2881
2882 default:
2883 kfree_skb(skb);
2884 break;
2885 }
2886 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002887}
2888
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02002889static void hci_cmd_work(struct work_struct *work)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002890{
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02002891 struct hci_dev *hdev = container_of(work, struct hci_dev, cmd_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002892 struct sk_buff *skb;
2893
2894 BT_DBG("%s cmd %d", hdev->name, atomic_read(&hdev->cmd_cnt));
2895
Linus Torvalds1da177e2005-04-16 15:20:36 -07002896 /* Send queued commands */
Andrei Emeltchenko5a08ecc2011-01-11 17:20:20 +02002897 if (atomic_read(&hdev->cmd_cnt)) {
2898 skb = skb_dequeue(&hdev->cmd_q);
2899 if (!skb)
2900 return;
2901
Wei Yongjun7585b972009-02-25 18:29:52 +08002902 kfree_skb(hdev->sent_cmd);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002903
Andrei Emeltchenko70f230202010-12-01 16:58:25 +02002904 hdev->sent_cmd = skb_clone(skb, GFP_ATOMIC);
2905 if (hdev->sent_cmd) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002906 atomic_dec(&hdev->cmd_cnt);
2907 hci_send_frame(skb);
Szymon Janc7bdb8a52011-07-26 22:46:54 +02002908 if (test_bit(HCI_RESET, &hdev->flags))
2909 del_timer(&hdev->cmd_timer);
2910 else
2911 mod_timer(&hdev->cmd_timer,
Ville Tervo6bd32322011-02-16 16:32:41 +02002912 jiffies + msecs_to_jiffies(HCI_CMD_TIMEOUT));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002913 } else {
2914 skb_queue_head(&hdev->cmd_q, skb);
Gustavo F. Padovanc347b762011-12-14 23:53:47 -02002915 queue_work(hdev->workqueue, &hdev->cmd_work);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002916 }
2917 }
2918}
Andre Guedes2519a1f2011-11-07 11:45:24 -03002919
2920int hci_do_inquiry(struct hci_dev *hdev, u8 length)
2921{
2922 /* General inquiry access code (GIAC) */
2923 u8 lap[3] = { 0x33, 0x8b, 0x9e };
2924 struct hci_cp_inquiry cp;
2925
2926 BT_DBG("%s", hdev->name);
2927
2928 if (test_bit(HCI_INQUIRY, &hdev->flags))
2929 return -EINPROGRESS;
2930
Johan Hedberg46632622012-01-02 16:06:08 +02002931 inquiry_cache_flush(hdev);
2932
Andre Guedes2519a1f2011-11-07 11:45:24 -03002933 memset(&cp, 0, sizeof(cp));
2934 memcpy(&cp.lap, lap, sizeof(cp.lap));
2935 cp.length = length;
2936
2937 return hci_send_cmd(hdev, HCI_OP_INQUIRY, sizeof(cp), &cp);
2938}
Andre Guedes023d50492011-11-04 14:16:52 -03002939
2940int hci_cancel_inquiry(struct hci_dev *hdev)
2941{
2942 BT_DBG("%s", hdev->name);
2943
2944 if (!test_bit(HCI_INQUIRY, &hdev->flags))
Andre Guedes7537e5c2012-03-20 00:13:38 -03002945 return -EALREADY;
Andre Guedes023d50492011-11-04 14:16:52 -03002946
2947 return hci_send_cmd(hdev, HCI_OP_INQUIRY_CANCEL, 0, NULL);
2948}