Commit | Line | Data |
---|---|---|
d646960f SO |
1 | /* |
2 | * Copyright (C) 2011 Intel Corporation. All rights reserved. | |
3 | * | |
4 | * This program is free software; you can redistribute it and/or modify | |
5 | * it under the terms of the GNU General Public License as published by | |
6 | * the Free Software Foundation; either version 2 of the License, or | |
7 | * (at your option) any later version. | |
8 | * | |
9 | * This program is distributed in the hope that it will be useful, | |
10 | * but WITHOUT ANY WARRANTY; without even the implied warranty of | |
11 | * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the | |
12 | * GNU General Public License for more details. | |
13 | * | |
14 | * You should have received a copy of the GNU General Public License | |
15 | * along with this program; if not, write to the | |
16 | * Free Software Foundation, Inc., | |
17 | * 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA. | |
18 | */ | |
19 | ||
20 | #define pr_fmt(fmt) "llcp: %s: " fmt, __func__ | |
21 | ||
22 | #include <linux/init.h> | |
23 | #include <linux/kernel.h> | |
24 | #include <linux/list.h> | |
25 | #include <linux/nfc.h> | |
26 | ||
27 | #include "../nfc.h" | |
28 | #include "llcp.h" | |
29 | ||
30 | static u8 llcp_magic[3] = {0x46, 0x66, 0x6d}; | |
31 | ||
32 | static struct list_head llcp_devices; | |
33 | ||
34 | static void nfc_llcp_socket_release(struct nfc_llcp_local *local) | |
35 | { | |
36 | struct nfc_llcp_sock *parent, *s, *n; | |
37 | struct sock *sk, *parent_sk; | |
38 | int i; | |
39 | ||
d646960f SO |
40 | mutex_lock(&local->socket_lock); |
41 | ||
42 | for (i = 0; i < LLCP_MAX_SAP; i++) { | |
43 | parent = local->sockets[i]; | |
44 | if (parent == NULL) | |
45 | continue; | |
46 | ||
47 | /* Release all child sockets */ | |
48 | list_for_each_entry_safe(s, n, &parent->list, list) { | |
40c75f81 | 49 | list_del_init(&s->list); |
d646960f SO |
50 | sk = &s->sk; |
51 | ||
52 | lock_sock(sk); | |
53 | ||
54 | if (sk->sk_state == LLCP_CONNECTED) | |
55 | nfc_put_device(s->dev); | |
56 | ||
57 | sk->sk_state = LLCP_CLOSED; | |
d646960f SO |
58 | |
59 | release_sock(sk); | |
40c75f81 SO |
60 | |
61 | sock_orphan(sk); | |
62 | ||
63 | s->local = NULL; | |
d646960f SO |
64 | } |
65 | ||
66 | parent_sk = &parent->sk; | |
67 | ||
68 | lock_sock(parent_sk); | |
69 | ||
70 | if (parent_sk->sk_state == LLCP_LISTEN) { | |
71 | struct nfc_llcp_sock *lsk, *n; | |
72 | struct sock *accept_sk; | |
73 | ||
74 | list_for_each_entry_safe(lsk, n, &parent->accept_queue, | |
427a2eb1 | 75 | accept_queue) { |
d646960f SO |
76 | accept_sk = &lsk->sk; |
77 | lock_sock(accept_sk); | |
78 | ||
79 | nfc_llcp_accept_unlink(accept_sk); | |
80 | ||
81 | accept_sk->sk_state = LLCP_CLOSED; | |
d646960f SO |
82 | |
83 | release_sock(accept_sk); | |
84 | ||
85 | sock_orphan(accept_sk); | |
40c75f81 SO |
86 | |
87 | lsk->local = NULL; | |
d646960f SO |
88 | } |
89 | } | |
90 | ||
91 | if (parent_sk->sk_state == LLCP_CONNECTED) | |
92 | nfc_put_device(parent->dev); | |
93 | ||
94 | parent_sk->sk_state = LLCP_CLOSED; | |
d646960f SO |
95 | |
96 | release_sock(parent_sk); | |
40c75f81 SO |
97 | |
98 | sock_orphan(parent_sk); | |
99 | ||
100 | parent->local = NULL; | |
d646960f SO |
101 | } |
102 | ||
103 | mutex_unlock(&local->socket_lock); | |
104 | } | |
105 | ||
b9a76f1d SO |
106 | static void nfc_llcp_clear_sdp(struct nfc_llcp_local *local) |
107 | { | |
108 | mutex_lock(&local->sdp_lock); | |
109 | ||
110 | local->local_wks = 0; | |
111 | local->local_sdp = 0; | |
112 | local->local_sap = 0; | |
113 | ||
114 | mutex_unlock(&local->sdp_lock); | |
115 | } | |
116 | ||
d646960f SO |
117 | static void nfc_llcp_timeout_work(struct work_struct *work) |
118 | { | |
119 | struct nfc_llcp_local *local = container_of(work, struct nfc_llcp_local, | |
427a2eb1 | 120 | timeout_work); |
d646960f SO |
121 | |
122 | nfc_dep_link_down(local->dev); | |
123 | } | |
124 | ||
125 | static void nfc_llcp_symm_timer(unsigned long data) | |
126 | { | |
127 | struct nfc_llcp_local *local = (struct nfc_llcp_local *) data; | |
128 | ||
129 | pr_err("SYMM timeout\n"); | |
130 | ||
131 | queue_work(local->timeout_wq, &local->timeout_work); | |
132 | } | |
133 | ||
134 | struct nfc_llcp_local *nfc_llcp_find_local(struct nfc_dev *dev) | |
135 | { | |
136 | struct nfc_llcp_local *local, *n; | |
137 | ||
138 | list_for_each_entry_safe(local, n, &llcp_devices, list) | |
139 | if (local->dev == dev) | |
140 | return local; | |
141 | ||
142 | pr_debug("No device found\n"); | |
143 | ||
144 | return NULL; | |
145 | } | |
146 | ||
147 | static char *wks[] = { | |
148 | NULL, | |
149 | NULL, /* SDP */ | |
150 | "urn:nfc:sn:ip", | |
151 | "urn:nfc:sn:obex", | |
152 | "urn:nfc:sn:snep", | |
153 | }; | |
154 | ||
155 | static int nfc_llcp_wks_sap(char *service_name, size_t service_name_len) | |
156 | { | |
157 | int sap, num_wks; | |
158 | ||
159 | pr_debug("%s\n", service_name); | |
160 | ||
161 | if (service_name == NULL) | |
162 | return -EINVAL; | |
163 | ||
164 | num_wks = ARRAY_SIZE(wks); | |
165 | ||
427a2eb1 | 166 | for (sap = 0; sap < num_wks; sap++) { |
d646960f SO |
167 | if (wks[sap] == NULL) |
168 | continue; | |
169 | ||
170 | if (strncmp(wks[sap], service_name, service_name_len) == 0) | |
171 | return sap; | |
172 | } | |
173 | ||
174 | return -EINVAL; | |
175 | } | |
176 | ||
177 | u8 nfc_llcp_get_sdp_ssap(struct nfc_llcp_local *local, | |
427a2eb1 | 178 | struct nfc_llcp_sock *sock) |
d646960f SO |
179 | { |
180 | mutex_lock(&local->sdp_lock); | |
181 | ||
182 | if (sock->service_name != NULL && sock->service_name_len > 0) { | |
183 | int ssap = nfc_llcp_wks_sap(sock->service_name, | |
427a2eb1 | 184 | sock->service_name_len); |
d646960f SO |
185 | |
186 | if (ssap > 0) { | |
187 | pr_debug("WKS %d\n", ssap); | |
188 | ||
189 | /* This is a WKS, let's check if it's free */ | |
190 | if (local->local_wks & BIT(ssap)) { | |
191 | mutex_unlock(&local->sdp_lock); | |
192 | ||
193 | return LLCP_SAP_MAX; | |
194 | } | |
195 | ||
1762c17c | 196 | set_bit(ssap, &local->local_wks); |
d646960f SO |
197 | mutex_unlock(&local->sdp_lock); |
198 | ||
199 | return ssap; | |
200 | } | |
201 | ||
202 | /* | |
203 | * This is not a well known service, | |
204 | * we should try to find a local SDP free spot | |
205 | */ | |
206 | ssap = find_first_zero_bit(&local->local_sdp, LLCP_SDP_NUM_SAP); | |
207 | if (ssap == LLCP_SDP_NUM_SAP) { | |
208 | mutex_unlock(&local->sdp_lock); | |
209 | ||
210 | return LLCP_SAP_MAX; | |
211 | } | |
212 | ||
213 | pr_debug("SDP ssap %d\n", LLCP_WKS_NUM_SAP + ssap); | |
214 | ||
1762c17c | 215 | set_bit(ssap, &local->local_sdp); |
d646960f SO |
216 | mutex_unlock(&local->sdp_lock); |
217 | ||
218 | return LLCP_WKS_NUM_SAP + ssap; | |
219 | ||
220 | } else if (sock->ssap != 0) { | |
221 | if (sock->ssap < LLCP_WKS_NUM_SAP) { | |
1762c17c SO |
222 | if (!test_bit(sock->ssap, &local->local_wks)) { |
223 | set_bit(sock->ssap, &local->local_wks); | |
d646960f SO |
224 | mutex_unlock(&local->sdp_lock); |
225 | ||
226 | return sock->ssap; | |
227 | } | |
228 | ||
229 | } else if (sock->ssap < LLCP_SDP_NUM_SAP) { | |
1762c17c SO |
230 | if (!test_bit(sock->ssap - LLCP_WKS_NUM_SAP, |
231 | &local->local_sdp)) { | |
232 | set_bit(sock->ssap - LLCP_WKS_NUM_SAP, | |
233 | &local->local_sdp); | |
d646960f SO |
234 | mutex_unlock(&local->sdp_lock); |
235 | ||
236 | return sock->ssap; | |
237 | } | |
238 | } | |
239 | } | |
240 | ||
241 | mutex_unlock(&local->sdp_lock); | |
242 | ||
243 | return LLCP_SAP_MAX; | |
244 | } | |
245 | ||
246 | u8 nfc_llcp_get_local_ssap(struct nfc_llcp_local *local) | |
247 | { | |
248 | u8 local_ssap; | |
249 | ||
250 | mutex_lock(&local->sdp_lock); | |
251 | ||
252 | local_ssap = find_first_zero_bit(&local->local_sap, LLCP_LOCAL_NUM_SAP); | |
253 | if (local_ssap == LLCP_LOCAL_NUM_SAP) { | |
254 | mutex_unlock(&local->sdp_lock); | |
255 | return LLCP_SAP_MAX; | |
256 | } | |
257 | ||
1762c17c | 258 | set_bit(local_ssap, &local->local_sap); |
d646960f SO |
259 | |
260 | mutex_unlock(&local->sdp_lock); | |
261 | ||
262 | return local_ssap + LLCP_LOCAL_SAP_OFFSET; | |
263 | } | |
264 | ||
265 | void nfc_llcp_put_ssap(struct nfc_llcp_local *local, u8 ssap) | |
266 | { | |
267 | u8 local_ssap; | |
268 | unsigned long *sdp; | |
269 | ||
270 | if (ssap < LLCP_WKS_NUM_SAP) { | |
271 | local_ssap = ssap; | |
272 | sdp = &local->local_wks; | |
273 | } else if (ssap < LLCP_LOCAL_NUM_SAP) { | |
274 | local_ssap = ssap - LLCP_WKS_NUM_SAP; | |
275 | sdp = &local->local_sdp; | |
276 | } else if (ssap < LLCP_MAX_SAP) { | |
277 | local_ssap = ssap - LLCP_LOCAL_NUM_SAP; | |
278 | sdp = &local->local_sap; | |
279 | } else { | |
280 | return; | |
281 | } | |
282 | ||
283 | mutex_lock(&local->sdp_lock); | |
284 | ||
1762c17c | 285 | clear_bit(local_ssap, sdp); |
d646960f SO |
286 | |
287 | mutex_unlock(&local->sdp_lock); | |
288 | } | |
289 | ||
47807d3d | 290 | u8 *nfc_llcp_general_bytes(struct nfc_dev *dev, size_t *general_bytes_len) |
d646960f SO |
291 | { |
292 | struct nfc_llcp_local *local; | |
293 | ||
294 | local = nfc_llcp_find_local(dev); | |
295 | if (local == NULL) { | |
296 | *general_bytes_len = 0; | |
297 | return NULL; | |
298 | } | |
299 | ||
300 | *general_bytes_len = local->gb_len; | |
301 | ||
302 | return local->gb; | |
303 | } | |
304 | ||
305 | static int nfc_llcp_build_gb(struct nfc_llcp_local *local) | |
306 | { | |
307 | u8 *gb_cur, *version_tlv, version, version_length; | |
308 | u8 *lto_tlv, lto, lto_length; | |
309 | u8 *wks_tlv, wks_length; | |
310 | u8 gb_len = 0; | |
311 | ||
312 | version = LLCP_VERSION_11; | |
313 | version_tlv = nfc_llcp_build_tlv(LLCP_TLV_VERSION, &version, | |
427a2eb1 | 314 | 1, &version_length); |
d646960f SO |
315 | gb_len += version_length; |
316 | ||
317 | /* 1500 ms */ | |
318 | lto = 150; | |
319 | lto_tlv = nfc_llcp_build_tlv(LLCP_TLV_VERSION, <o, 1, <o_length); | |
320 | gb_len += lto_length; | |
321 | ||
322 | pr_debug("Local wks 0x%lx\n", local->local_wks); | |
323 | wks_tlv = nfc_llcp_build_tlv(LLCP_TLV_WKS, (u8 *)&local->local_wks, 2, | |
427a2eb1 | 324 | &wks_length); |
d646960f SO |
325 | gb_len += wks_length; |
326 | ||
327 | gb_len += ARRAY_SIZE(llcp_magic); | |
328 | ||
329 | if (gb_len > NFC_MAX_GT_LEN) { | |
330 | kfree(version_tlv); | |
331 | return -EINVAL; | |
332 | } | |
333 | ||
334 | gb_cur = local->gb; | |
335 | ||
336 | memcpy(gb_cur, llcp_magic, ARRAY_SIZE(llcp_magic)); | |
337 | gb_cur += ARRAY_SIZE(llcp_magic); | |
338 | ||
339 | memcpy(gb_cur, version_tlv, version_length); | |
340 | gb_cur += version_length; | |
341 | ||
342 | memcpy(gb_cur, lto_tlv, lto_length); | |
343 | gb_cur += lto_length; | |
344 | ||
345 | memcpy(gb_cur, wks_tlv, wks_length); | |
346 | gb_cur += wks_length; | |
347 | ||
348 | kfree(version_tlv); | |
349 | kfree(lto_tlv); | |
350 | ||
351 | local->gb_len = gb_len; | |
352 | ||
353 | return 0; | |
354 | } | |
355 | ||
356 | int nfc_llcp_set_remote_gb(struct nfc_dev *dev, u8 *gb, u8 gb_len) | |
357 | { | |
358 | struct nfc_llcp_local *local = nfc_llcp_find_local(dev); | |
359 | ||
360 | if (local == NULL) { | |
361 | pr_err("No LLCP device\n"); | |
362 | return -ENODEV; | |
363 | } | |
364 | ||
365 | memset(local->remote_gb, 0, NFC_MAX_GT_LEN); | |
366 | memcpy(local->remote_gb, gb, gb_len); | |
367 | local->remote_gb_len = gb_len; | |
368 | ||
427a2eb1 | 369 | if (local->remote_gb == NULL || local->remote_gb_len == 0) |
d646960f SO |
370 | return -ENODEV; |
371 | ||
372 | if (memcmp(local->remote_gb, llcp_magic, 3)) { | |
373 | pr_err("MAC does not support LLCP\n"); | |
374 | return -EINVAL; | |
375 | } | |
376 | ||
377 | return nfc_llcp_parse_tlv(local, | |
427a2eb1 SO |
378 | &local->remote_gb[3], |
379 | local->remote_gb_len - 3); | |
d646960f SO |
380 | } |
381 | ||
382 | static void nfc_llcp_tx_work(struct work_struct *work) | |
383 | { | |
384 | struct nfc_llcp_local *local = container_of(work, struct nfc_llcp_local, | |
427a2eb1 | 385 | tx_work); |
d646960f SO |
386 | struct sk_buff *skb; |
387 | ||
388 | skb = skb_dequeue(&local->tx_queue); | |
389 | if (skb != NULL) { | |
390 | pr_debug("Sending pending skb\n"); | |
4be646ec SO |
391 | print_hex_dump(KERN_DEBUG, "LLCP Tx: ", DUMP_PREFIX_OFFSET, |
392 | 16, 1, skb->data, skb->len, true); | |
393 | ||
d646960f | 394 | nfc_data_exchange(local->dev, local->target_idx, |
427a2eb1 | 395 | skb, nfc_llcp_recv, local); |
d646960f SO |
396 | } else { |
397 | nfc_llcp_send_symm(local->dev); | |
398 | } | |
399 | ||
400 | mod_timer(&local->link_timer, | |
427a2eb1 | 401 | jiffies + msecs_to_jiffies(local->remote_lto)); |
d646960f SO |
402 | } |
403 | ||
404 | static u8 nfc_llcp_dsap(struct sk_buff *pdu) | |
405 | { | |
406 | return (pdu->data[0] & 0xfc) >> 2; | |
407 | } | |
408 | ||
409 | static u8 nfc_llcp_ptype(struct sk_buff *pdu) | |
410 | { | |
411 | return ((pdu->data[0] & 0x03) << 2) | ((pdu->data[1] & 0xc0) >> 6); | |
412 | } | |
413 | ||
414 | static u8 nfc_llcp_ssap(struct sk_buff *pdu) | |
415 | { | |
416 | return pdu->data[1] & 0x3f; | |
417 | } | |
418 | ||
419 | static u8 nfc_llcp_ns(struct sk_buff *pdu) | |
420 | { | |
421 | return pdu->data[2] >> 4; | |
422 | } | |
423 | ||
424 | static u8 nfc_llcp_nr(struct sk_buff *pdu) | |
425 | { | |
426 | return pdu->data[2] & 0xf; | |
427 | } | |
428 | ||
429 | static void nfc_llcp_set_nrns(struct nfc_llcp_sock *sock, struct sk_buff *pdu) | |
430 | { | |
279cf174 | 431 | pdu->data[2] = (sock->send_n << 4) | (sock->recv_n); |
d646960f SO |
432 | sock->send_n = (sock->send_n + 1) % 16; |
433 | sock->recv_ack_n = (sock->recv_n - 1) % 16; | |
434 | } | |
435 | ||
436 | static struct nfc_llcp_sock *nfc_llcp_sock_get(struct nfc_llcp_local *local, | |
427a2eb1 | 437 | u8 ssap, u8 dsap) |
d646960f SO |
438 | { |
439 | struct nfc_llcp_sock *sock, *llcp_sock, *n; | |
440 | ||
441 | if (ssap == 0 && dsap == 0) | |
442 | return NULL; | |
443 | ||
444 | mutex_lock(&local->socket_lock); | |
445 | sock = local->sockets[ssap]; | |
446 | if (sock == NULL) { | |
447 | mutex_unlock(&local->socket_lock); | |
448 | return NULL; | |
449 | } | |
450 | ||
451 | pr_debug("root dsap %d (%d)\n", sock->dsap, dsap); | |
452 | ||
453 | if (sock->dsap == dsap) { | |
454 | sock_hold(&sock->sk); | |
455 | mutex_unlock(&local->socket_lock); | |
456 | return sock; | |
457 | } | |
458 | ||
459 | list_for_each_entry_safe(llcp_sock, n, &sock->list, list) { | |
460 | pr_debug("llcp_sock %p sk %p dsap %d\n", llcp_sock, | |
427a2eb1 | 461 | &llcp_sock->sk, llcp_sock->dsap); |
d646960f SO |
462 | if (llcp_sock->dsap == dsap) { |
463 | sock_hold(&llcp_sock->sk); | |
464 | mutex_unlock(&local->socket_lock); | |
465 | return llcp_sock; | |
466 | } | |
467 | } | |
468 | ||
469 | pr_err("Could not find socket for %d %d\n", ssap, dsap); | |
470 | ||
471 | mutex_unlock(&local->socket_lock); | |
472 | ||
473 | return NULL; | |
474 | } | |
475 | ||
476 | static void nfc_llcp_sock_put(struct nfc_llcp_sock *sock) | |
477 | { | |
478 | sock_put(&sock->sk); | |
479 | } | |
480 | ||
481 | static u8 *nfc_llcp_connect_sn(struct sk_buff *skb, size_t *sn_len) | |
482 | { | |
483 | u8 *tlv = &skb->data[2], type, length; | |
484 | size_t tlv_array_len = skb->len - LLCP_HEADER_SIZE, offset = 0; | |
485 | ||
486 | while (offset < tlv_array_len) { | |
487 | type = tlv[0]; | |
488 | length = tlv[1]; | |
489 | ||
490 | pr_debug("type 0x%x length %d\n", type, length); | |
491 | ||
492 | if (type == LLCP_TLV_SN) { | |
493 | *sn_len = length; | |
494 | return &tlv[2]; | |
495 | } | |
496 | ||
497 | offset += length + 2; | |
498 | tlv += length + 2; | |
499 | } | |
500 | ||
501 | return NULL; | |
502 | } | |
503 | ||
504 | static void nfc_llcp_recv_connect(struct nfc_llcp_local *local, | |
427a2eb1 | 505 | struct sk_buff *skb) |
d646960f SO |
506 | { |
507 | struct sock *new_sk, *parent; | |
508 | struct nfc_llcp_sock *sock, *new_sock; | |
509 | u8 dsap, ssap, bound_sap, reason; | |
510 | ||
511 | dsap = nfc_llcp_dsap(skb); | |
512 | ssap = nfc_llcp_ssap(skb); | |
513 | ||
514 | pr_debug("%d %d\n", dsap, ssap); | |
515 | ||
516 | nfc_llcp_parse_tlv(local, &skb->data[LLCP_HEADER_SIZE], | |
427a2eb1 | 517 | skb->len - LLCP_HEADER_SIZE); |
d646960f SO |
518 | |
519 | if (dsap != LLCP_SAP_SDP) { | |
520 | bound_sap = dsap; | |
521 | ||
522 | mutex_lock(&local->socket_lock); | |
523 | sock = local->sockets[dsap]; | |
524 | if (sock == NULL) { | |
525 | mutex_unlock(&local->socket_lock); | |
526 | reason = LLCP_DM_NOBOUND; | |
527 | goto fail; | |
528 | } | |
529 | ||
530 | sock_hold(&sock->sk); | |
531 | mutex_unlock(&local->socket_lock); | |
532 | ||
533 | lock_sock(&sock->sk); | |
534 | ||
535 | if (sock->dsap == LLCP_SAP_SDP && | |
427a2eb1 | 536 | sock->sk.sk_state == LLCP_LISTEN) |
d646960f SO |
537 | goto enqueue; |
538 | } else { | |
539 | u8 *sn; | |
540 | size_t sn_len; | |
541 | ||
542 | sn = nfc_llcp_connect_sn(skb, &sn_len); | |
543 | if (sn == NULL) { | |
544 | reason = LLCP_DM_NOBOUND; | |
545 | goto fail; | |
546 | } | |
547 | ||
548 | pr_debug("Service name length %zu\n", sn_len); | |
549 | ||
550 | mutex_lock(&local->socket_lock); | |
551 | for (bound_sap = 0; bound_sap < LLCP_LOCAL_SAP_OFFSET; | |
427a2eb1 | 552 | bound_sap++) { |
d646960f SO |
553 | sock = local->sockets[bound_sap]; |
554 | if (sock == NULL) | |
555 | continue; | |
556 | ||
557 | if (sock->service_name == NULL || | |
427a2eb1 | 558 | sock->service_name_len == 0) |
d646960f SO |
559 | continue; |
560 | ||
561 | if (sock->service_name_len != sn_len) | |
562 | continue; | |
563 | ||
564 | if (sock->dsap == LLCP_SAP_SDP && | |
427a2eb1 SO |
565 | sock->sk.sk_state == LLCP_LISTEN && |
566 | !memcmp(sn, sock->service_name, sn_len)) { | |
d646960f | 567 | pr_debug("Found service name at SAP %d\n", |
427a2eb1 | 568 | bound_sap); |
d646960f SO |
569 | sock_hold(&sock->sk); |
570 | mutex_unlock(&local->socket_lock); | |
571 | ||
572 | lock_sock(&sock->sk); | |
573 | ||
574 | goto enqueue; | |
575 | } | |
576 | } | |
341ee434 | 577 | mutex_unlock(&local->socket_lock); |
d646960f SO |
578 | } |
579 | ||
d646960f SO |
580 | reason = LLCP_DM_NOBOUND; |
581 | goto fail; | |
582 | ||
583 | enqueue: | |
584 | parent = &sock->sk; | |
585 | ||
586 | if (sk_acceptq_is_full(parent)) { | |
587 | reason = LLCP_DM_REJ; | |
588 | release_sock(&sock->sk); | |
589 | sock_put(&sock->sk); | |
590 | goto fail; | |
591 | } | |
592 | ||
427a2eb1 | 593 | new_sk = nfc_llcp_sock_alloc(NULL, parent->sk_type, GFP_ATOMIC); |
d646960f SO |
594 | if (new_sk == NULL) { |
595 | reason = LLCP_DM_REJ; | |
596 | release_sock(&sock->sk); | |
597 | sock_put(&sock->sk); | |
598 | goto fail; | |
599 | } | |
600 | ||
601 | new_sock = nfc_llcp_sock(new_sk); | |
602 | new_sock->dev = local->dev; | |
603 | new_sock->local = local; | |
604 | new_sock->nfc_protocol = sock->nfc_protocol; | |
605 | new_sock->ssap = bound_sap; | |
606 | new_sock->dsap = ssap; | |
607 | new_sock->parent = parent; | |
608 | ||
609 | pr_debug("new sock %p sk %p\n", new_sock, &new_sock->sk); | |
610 | ||
611 | list_add_tail(&new_sock->list, &sock->list); | |
612 | ||
613 | nfc_llcp_accept_enqueue(&sock->sk, new_sk); | |
614 | ||
615 | nfc_get_device(local->dev->idx); | |
616 | ||
617 | new_sk->sk_state = LLCP_CONNECTED; | |
618 | ||
619 | /* Wake the listening processes */ | |
620 | parent->sk_data_ready(parent, 0); | |
621 | ||
622 | /* Send CC */ | |
623 | nfc_llcp_send_cc(new_sock); | |
624 | ||
625 | release_sock(&sock->sk); | |
626 | sock_put(&sock->sk); | |
627 | ||
628 | return; | |
629 | ||
630 | fail: | |
631 | /* Send DM */ | |
632 | nfc_llcp_send_dm(local, dsap, ssap, reason); | |
633 | ||
634 | return; | |
635 | ||
636 | } | |
637 | ||
d094afa1 | 638 | int nfc_llcp_queue_i_frames(struct nfc_llcp_sock *sock) |
4722d2b7 | 639 | { |
d094afa1 | 640 | int nr_frames = 0; |
4722d2b7 SO |
641 | struct nfc_llcp_local *local = sock->local; |
642 | ||
643 | pr_debug("Remote ready %d tx queue len %d remote rw %d", | |
427a2eb1 SO |
644 | sock->remote_ready, skb_queue_len(&sock->tx_pending_queue), |
645 | local->remote_rw); | |
4722d2b7 SO |
646 | |
647 | /* Try to queue some I frames for transmission */ | |
648 | while (sock->remote_ready && | |
427a2eb1 | 649 | skb_queue_len(&sock->tx_pending_queue) < local->remote_rw) { |
4722d2b7 SO |
650 | struct sk_buff *pdu, *pending_pdu; |
651 | ||
652 | pdu = skb_dequeue(&sock->tx_queue); | |
653 | if (pdu == NULL) | |
654 | break; | |
655 | ||
656 | /* Update N(S)/N(R) */ | |
657 | nfc_llcp_set_nrns(sock, pdu); | |
658 | ||
659 | pending_pdu = skb_clone(pdu, GFP_KERNEL); | |
660 | ||
661 | skb_queue_tail(&local->tx_queue, pdu); | |
662 | skb_queue_tail(&sock->tx_pending_queue, pending_pdu); | |
d094afa1 | 663 | nr_frames++; |
4722d2b7 | 664 | } |
d094afa1 SO |
665 | |
666 | return nr_frames; | |
4722d2b7 SO |
667 | } |
668 | ||
d646960f | 669 | static void nfc_llcp_recv_hdlc(struct nfc_llcp_local *local, |
427a2eb1 | 670 | struct sk_buff *skb) |
d646960f SO |
671 | { |
672 | struct nfc_llcp_sock *llcp_sock; | |
673 | struct sock *sk; | |
674 | u8 dsap, ssap, ptype, ns, nr; | |
675 | ||
676 | ptype = nfc_llcp_ptype(skb); | |
677 | dsap = nfc_llcp_dsap(skb); | |
678 | ssap = nfc_llcp_ssap(skb); | |
679 | ns = nfc_llcp_ns(skb); | |
680 | nr = nfc_llcp_nr(skb); | |
681 | ||
682 | pr_debug("%d %d R %d S %d\n", dsap, ssap, nr, ns); | |
683 | ||
684 | llcp_sock = nfc_llcp_sock_get(local, dsap, ssap); | |
685 | if (llcp_sock == NULL) { | |
686 | nfc_llcp_send_dm(local, dsap, ssap, LLCP_DM_NOCONN); | |
687 | return; | |
688 | } | |
689 | ||
690 | sk = &llcp_sock->sk; | |
691 | lock_sock(sk); | |
692 | if (sk->sk_state == LLCP_CLOSED) { | |
693 | release_sock(sk); | |
694 | nfc_llcp_sock_put(llcp_sock); | |
695 | } | |
696 | ||
d646960f SO |
697 | /* Pass the payload upstream */ |
698 | if (ptype == LLCP_PDU_I) { | |
699 | pr_debug("I frame, queueing on %p\n", &llcp_sock->sk); | |
700 | ||
53aef920 SO |
701 | if (ns == llcp_sock->recv_n) |
702 | llcp_sock->recv_n = (llcp_sock->recv_n + 1) % 16; | |
703 | else | |
704 | pr_err("Received out of sequence I PDU\n"); | |
705 | ||
d646960f SO |
706 | skb_pull(skb, LLCP_HEADER_SIZE + LLCP_SEQUENCE_SIZE); |
707 | if (sock_queue_rcv_skb(&llcp_sock->sk, skb)) { | |
708 | pr_err("receive queue is full\n"); | |
709 | skb_queue_head(&llcp_sock->tx_backlog_queue, skb); | |
710 | } | |
711 | } | |
712 | ||
713 | /* Remove skbs from the pending queue */ | |
714 | if (llcp_sock->send_ack_n != nr) { | |
715 | struct sk_buff *s, *tmp; | |
716 | ||
717 | llcp_sock->send_ack_n = nr; | |
718 | ||
719 | skb_queue_walk_safe(&llcp_sock->tx_pending_queue, s, tmp) | |
720 | if (nfc_llcp_ns(s) <= nr) { | |
721 | skb_unlink(s, &llcp_sock->tx_pending_queue); | |
722 | kfree_skb(s); | |
723 | } | |
724 | } | |
725 | ||
53aef920 SO |
726 | if (ptype == LLCP_PDU_RR) |
727 | llcp_sock->remote_ready = true; | |
427a2eb1 | 728 | else if (ptype == LLCP_PDU_RNR) |
53aef920 SO |
729 | llcp_sock->remote_ready = false; |
730 | ||
d094afa1 SO |
731 | if (nfc_llcp_queue_i_frames(llcp_sock) == 0) |
732 | nfc_llcp_send_rr(llcp_sock); | |
d646960f SO |
733 | |
734 | release_sock(sk); | |
735 | nfc_llcp_sock_put(llcp_sock); | |
736 | } | |
737 | ||
738 | static void nfc_llcp_recv_disc(struct nfc_llcp_local *local, | |
427a2eb1 | 739 | struct sk_buff *skb) |
d646960f SO |
740 | { |
741 | struct nfc_llcp_sock *llcp_sock; | |
742 | struct sock *sk; | |
743 | u8 dsap, ssap; | |
744 | ||
745 | dsap = nfc_llcp_dsap(skb); | |
746 | ssap = nfc_llcp_ssap(skb); | |
747 | ||
748 | llcp_sock = nfc_llcp_sock_get(local, dsap, ssap); | |
749 | if (llcp_sock == NULL) { | |
750 | nfc_llcp_send_dm(local, dsap, ssap, LLCP_DM_NOCONN); | |
751 | return; | |
752 | } | |
753 | ||
754 | sk = &llcp_sock->sk; | |
755 | lock_sock(sk); | |
756 | if (sk->sk_state == LLCP_CLOSED) { | |
757 | release_sock(sk); | |
758 | nfc_llcp_sock_put(llcp_sock); | |
759 | } | |
760 | ||
d646960f SO |
761 | if (sk->sk_state == LLCP_CONNECTED) { |
762 | nfc_put_device(local->dev); | |
763 | sk->sk_state = LLCP_CLOSED; | |
764 | sk->sk_state_change(sk); | |
765 | } | |
766 | ||
767 | nfc_llcp_send_dm(local, dsap, ssap, LLCP_DM_DISC); | |
768 | ||
769 | release_sock(sk); | |
770 | nfc_llcp_sock_put(llcp_sock); | |
771 | } | |
772 | ||
427a2eb1 | 773 | static void nfc_llcp_recv_cc(struct nfc_llcp_local *local, struct sk_buff *skb) |
d646960f SO |
774 | { |
775 | struct nfc_llcp_sock *llcp_sock; | |
776 | u8 dsap, ssap; | |
777 | ||
d646960f SO |
778 | dsap = nfc_llcp_dsap(skb); |
779 | ssap = nfc_llcp_ssap(skb); | |
780 | ||
781 | llcp_sock = nfc_llcp_sock_get(local, dsap, ssap); | |
782 | ||
783 | if (llcp_sock == NULL) | |
784 | llcp_sock = nfc_llcp_sock_get(local, dsap, LLCP_SAP_SDP); | |
785 | ||
786 | if (llcp_sock == NULL) { | |
787 | pr_err("Invalid CC\n"); | |
788 | nfc_llcp_send_dm(local, dsap, ssap, LLCP_DM_NOCONN); | |
789 | ||
790 | return; | |
791 | } | |
792 | ||
793 | llcp_sock->dsap = ssap; | |
794 | ||
795 | nfc_llcp_parse_tlv(local, &skb->data[LLCP_HEADER_SIZE], | |
427a2eb1 | 796 | skb->len - LLCP_HEADER_SIZE); |
d646960f SO |
797 | |
798 | nfc_llcp_sock_put(llcp_sock); | |
799 | } | |
800 | ||
801 | static void nfc_llcp_rx_work(struct work_struct *work) | |
802 | { | |
803 | struct nfc_llcp_local *local = container_of(work, struct nfc_llcp_local, | |
427a2eb1 | 804 | rx_work); |
d646960f SO |
805 | u8 dsap, ssap, ptype; |
806 | struct sk_buff *skb; | |
807 | ||
808 | skb = local->rx_pending; | |
809 | if (skb == NULL) { | |
810 | pr_debug("No pending SKB\n"); | |
811 | return; | |
812 | } | |
813 | ||
814 | ptype = nfc_llcp_ptype(skb); | |
815 | dsap = nfc_llcp_dsap(skb); | |
816 | ssap = nfc_llcp_ssap(skb); | |
817 | ||
818 | pr_debug("ptype 0x%x dsap 0x%x ssap 0x%x\n", ptype, dsap, ssap); | |
819 | ||
4be646ec SO |
820 | if (ptype != LLCP_PDU_SYMM) |
821 | print_hex_dump(KERN_DEBUG, "LLCP Rx: ", DUMP_PREFIX_OFFSET, | |
822 | 16, 1, skb->data, skb->len, true); | |
823 | ||
d646960f SO |
824 | switch (ptype) { |
825 | case LLCP_PDU_SYMM: | |
826 | pr_debug("SYMM\n"); | |
827 | break; | |
828 | ||
829 | case LLCP_PDU_CONNECT: | |
830 | pr_debug("CONNECT\n"); | |
831 | nfc_llcp_recv_connect(local, skb); | |
832 | break; | |
833 | ||
834 | case LLCP_PDU_DISC: | |
835 | pr_debug("DISC\n"); | |
836 | nfc_llcp_recv_disc(local, skb); | |
837 | break; | |
838 | ||
839 | case LLCP_PDU_CC: | |
840 | pr_debug("CC\n"); | |
841 | nfc_llcp_recv_cc(local, skb); | |
842 | break; | |
843 | ||
844 | case LLCP_PDU_I: | |
845 | case LLCP_PDU_RR: | |
53aef920 | 846 | case LLCP_PDU_RNR: |
d646960f SO |
847 | pr_debug("I frame\n"); |
848 | nfc_llcp_recv_hdlc(local, skb); | |
849 | break; | |
850 | ||
851 | } | |
852 | ||
853 | queue_work(local->tx_wq, &local->tx_work); | |
854 | kfree_skb(local->rx_pending); | |
855 | local->rx_pending = NULL; | |
856 | ||
857 | return; | |
858 | } | |
859 | ||
860 | void nfc_llcp_recv(void *data, struct sk_buff *skb, int err) | |
861 | { | |
862 | struct nfc_llcp_local *local = (struct nfc_llcp_local *) data; | |
863 | ||
864 | pr_debug("Received an LLCP PDU\n"); | |
865 | if (err < 0) { | |
427a2eb1 | 866 | pr_err("err %d\n", err); |
d646960f SO |
867 | return; |
868 | } | |
869 | ||
870 | local->rx_pending = skb_get(skb); | |
871 | del_timer(&local->link_timer); | |
872 | queue_work(local->rx_wq, &local->rx_work); | |
873 | ||
874 | return; | |
875 | } | |
876 | ||
877 | void nfc_llcp_mac_is_down(struct nfc_dev *dev) | |
878 | { | |
879 | struct nfc_llcp_local *local; | |
880 | ||
881 | local = nfc_llcp_find_local(dev); | |
882 | if (local == NULL) | |
883 | return; | |
884 | ||
b9a76f1d SO |
885 | nfc_llcp_clear_sdp(local); |
886 | ||
d646960f SO |
887 | /* Close and purge all existing sockets */ |
888 | nfc_llcp_socket_release(local); | |
889 | } | |
890 | ||
891 | void nfc_llcp_mac_is_up(struct nfc_dev *dev, u32 target_idx, | |
892 | u8 comm_mode, u8 rf_mode) | |
893 | { | |
894 | struct nfc_llcp_local *local; | |
895 | ||
896 | pr_debug("rf mode %d\n", rf_mode); | |
897 | ||
898 | local = nfc_llcp_find_local(dev); | |
899 | if (local == NULL) | |
900 | return; | |
901 | ||
902 | local->target_idx = target_idx; | |
903 | local->comm_mode = comm_mode; | |
904 | local->rf_mode = rf_mode; | |
905 | ||
906 | if (rf_mode == NFC_RF_INITIATOR) { | |
907 | pr_debug("Queueing Tx work\n"); | |
908 | ||
909 | queue_work(local->tx_wq, &local->tx_work); | |
910 | } else { | |
911 | mod_timer(&local->link_timer, | |
427a2eb1 | 912 | jiffies + msecs_to_jiffies(local->remote_lto)); |
d646960f SO |
913 | } |
914 | } | |
915 | ||
916 | int nfc_llcp_register_device(struct nfc_dev *ndev) | |
917 | { | |
918 | struct device *dev = &ndev->dev; | |
919 | struct nfc_llcp_local *local; | |
920 | char name[32]; | |
921 | int err; | |
922 | ||
923 | local = kzalloc(sizeof(struct nfc_llcp_local), GFP_KERNEL); | |
924 | if (local == NULL) | |
925 | return -ENOMEM; | |
926 | ||
927 | local->dev = ndev; | |
928 | INIT_LIST_HEAD(&local->list); | |
929 | mutex_init(&local->sdp_lock); | |
930 | mutex_init(&local->socket_lock); | |
931 | init_timer(&local->link_timer); | |
932 | local->link_timer.data = (unsigned long) local; | |
933 | local->link_timer.function = nfc_llcp_symm_timer; | |
934 | ||
935 | skb_queue_head_init(&local->tx_queue); | |
936 | INIT_WORK(&local->tx_work, nfc_llcp_tx_work); | |
937 | snprintf(name, sizeof(name), "%s_llcp_tx_wq", dev_name(dev)); | |
427a2eb1 SO |
938 | local->tx_wq = |
939 | alloc_workqueue(name, | |
940 | WQ_NON_REENTRANT | WQ_UNBOUND | WQ_MEM_RECLAIM, | |
941 | 1); | |
d646960f SO |
942 | if (local->tx_wq == NULL) { |
943 | err = -ENOMEM; | |
944 | goto err_local; | |
945 | } | |
946 | ||
947 | local->rx_pending = NULL; | |
948 | INIT_WORK(&local->rx_work, nfc_llcp_rx_work); | |
949 | snprintf(name, sizeof(name), "%s_llcp_rx_wq", dev_name(dev)); | |
427a2eb1 SO |
950 | local->rx_wq = |
951 | alloc_workqueue(name, | |
952 | WQ_NON_REENTRANT | WQ_UNBOUND | WQ_MEM_RECLAIM, | |
953 | 1); | |
d646960f SO |
954 | if (local->rx_wq == NULL) { |
955 | err = -ENOMEM; | |
956 | goto err_tx_wq; | |
957 | } | |
958 | ||
959 | INIT_WORK(&local->timeout_work, nfc_llcp_timeout_work); | |
960 | snprintf(name, sizeof(name), "%s_llcp_timeout_wq", dev_name(dev)); | |
427a2eb1 SO |
961 | local->timeout_wq = |
962 | alloc_workqueue(name, | |
963 | WQ_NON_REENTRANT | WQ_UNBOUND | WQ_MEM_RECLAIM, | |
964 | 1); | |
d646960f SO |
965 | if (local->timeout_wq == NULL) { |
966 | err = -ENOMEM; | |
967 | goto err_rx_wq; | |
968 | } | |
969 | ||
970 | nfc_llcp_build_gb(local); | |
971 | ||
972 | local->remote_miu = LLCP_DEFAULT_MIU; | |
973 | local->remote_lto = LLCP_DEFAULT_LTO; | |
974 | local->remote_rw = LLCP_DEFAULT_RW; | |
975 | ||
976 | list_add(&llcp_devices, &local->list); | |
977 | ||
978 | return 0; | |
979 | ||
980 | err_rx_wq: | |
981 | destroy_workqueue(local->rx_wq); | |
982 | ||
983 | err_tx_wq: | |
984 | destroy_workqueue(local->tx_wq); | |
985 | ||
986 | err_local: | |
987 | kfree(local); | |
988 | ||
989 | return 0; | |
990 | } | |
991 | ||
992 | void nfc_llcp_unregister_device(struct nfc_dev *dev) | |
993 | { | |
994 | struct nfc_llcp_local *local = nfc_llcp_find_local(dev); | |
995 | ||
996 | if (local == NULL) { | |
997 | pr_debug("No such device\n"); | |
998 | return; | |
999 | } | |
1000 | ||
1001 | list_del(&local->list); | |
1002 | nfc_llcp_socket_release(local); | |
1003 | del_timer_sync(&local->link_timer); | |
1004 | skb_queue_purge(&local->tx_queue); | |
1005 | destroy_workqueue(local->tx_wq); | |
1006 | destroy_workqueue(local->rx_wq); | |
5b68a7ca | 1007 | kfree_skb(local->rx_pending); |
d646960f SO |
1008 | kfree(local); |
1009 | } | |
1010 | ||
1011 | int __init nfc_llcp_init(void) | |
1012 | { | |
1013 | INIT_LIST_HEAD(&llcp_devices); | |
1014 | ||
1015 | return nfc_llcp_sock_init(); | |
1016 | } | |
1017 | ||
1018 | void nfc_llcp_exit(void) | |
1019 | { | |
1020 | nfc_llcp_sock_exit(); | |
1021 | } |