stub_tx.c 9.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391
  1. // SPDX-License-Identifier: GPL-2.0+
  2. /*
  3. * Copyright (C) 2003-2008 Takahiro Hirofuchi
  4. */
  5. #include <linux/kthread.h>
  6. #include <linux/socket.h>
  7. #include "usbip_common.h"
  8. #include "stub.h"
  9. static void stub_free_priv_and_urb(struct stub_priv *priv)
  10. {
  11. struct urb *urb = priv->urb;
  12. kfree(urb->setup_packet);
  13. urb->setup_packet = NULL;
  14. kfree(urb->transfer_buffer);
  15. urb->transfer_buffer = NULL;
  16. list_del(&priv->list);
  17. kmem_cache_free(stub_priv_cache, priv);
  18. usb_free_urb(urb);
  19. }
  20. /* be in spin_lock_irqsave(&sdev->priv_lock, flags) */
  21. void stub_enqueue_ret_unlink(struct stub_device *sdev, __u32 seqnum,
  22. __u32 status)
  23. {
  24. struct stub_unlink *unlink;
  25. unlink = kzalloc(sizeof(struct stub_unlink), GFP_ATOMIC);
  26. if (!unlink) {
  27. usbip_event_add(&sdev->ud, VDEV_EVENT_ERROR_MALLOC);
  28. return;
  29. }
  30. unlink->seqnum = seqnum;
  31. unlink->status = status;
  32. list_add_tail(&unlink->list, &sdev->unlink_tx);
  33. }
  34. /**
  35. * stub_complete - completion handler of a usbip urb
  36. * @urb: pointer to the urb completed
  37. *
  38. * When a urb has completed, the USB core driver calls this function mostly in
  39. * the interrupt context. To return the result of a urb, the completed urb is
  40. * linked to the pending list of returning.
  41. *
  42. */
  43. void stub_complete(struct urb *urb)
  44. {
  45. struct stub_priv *priv = (struct stub_priv *) urb->context;
  46. struct stub_device *sdev = priv->sdev;
  47. unsigned long flags;
  48. usbip_dbg_stub_tx("complete! status %d\n", urb->status);
  49. switch (urb->status) {
  50. case 0:
  51. /* OK */
  52. break;
  53. case -ENOENT:
  54. dev_info(&urb->dev->dev,
  55. "stopped by a call to usb_kill_urb() because of cleaning up a virtual connection\n");
  56. return;
  57. case -ECONNRESET:
  58. dev_info(&urb->dev->dev,
  59. "unlinked by a call to usb_unlink_urb()\n");
  60. break;
  61. case -EPIPE:
  62. dev_info(&urb->dev->dev, "endpoint %d is stalled\n",
  63. usb_pipeendpoint(urb->pipe));
  64. break;
  65. case -ESHUTDOWN:
  66. dev_info(&urb->dev->dev, "device removed?\n");
  67. break;
  68. default:
  69. dev_info(&urb->dev->dev,
  70. "urb completion with non-zero status %d\n",
  71. urb->status);
  72. break;
  73. }
  74. /* link a urb to the queue of tx. */
  75. spin_lock_irqsave(&sdev->priv_lock, flags);
  76. if (sdev->ud.tcp_socket == NULL) {
  77. usbip_dbg_stub_tx("ignore urb for closed connection %p", urb);
  78. /* It will be freed in stub_device_cleanup_urbs(). */
  79. } else if (priv->unlinking) {
  80. stub_enqueue_ret_unlink(sdev, priv->seqnum, urb->status);
  81. stub_free_priv_and_urb(priv);
  82. } else {
  83. list_move_tail(&priv->list, &sdev->priv_tx);
  84. }
  85. spin_unlock_irqrestore(&sdev->priv_lock, flags);
  86. /* wake up tx_thread */
  87. wake_up(&sdev->tx_waitq);
  88. }
  89. static inline void setup_base_pdu(struct usbip_header_basic *base,
  90. __u32 command, __u32 seqnum)
  91. {
  92. base->command = command;
  93. base->seqnum = seqnum;
  94. base->devid = 0;
  95. base->ep = 0;
  96. base->direction = 0;
  97. }
  98. static void setup_ret_submit_pdu(struct usbip_header *rpdu, struct urb *urb)
  99. {
  100. struct stub_priv *priv = (struct stub_priv *) urb->context;
  101. setup_base_pdu(&rpdu->base, USBIP_RET_SUBMIT, priv->seqnum);
  102. usbip_pack_pdu(rpdu, urb, USBIP_RET_SUBMIT, 1);
  103. }
  104. static void setup_ret_unlink_pdu(struct usbip_header *rpdu,
  105. struct stub_unlink *unlink)
  106. {
  107. setup_base_pdu(&rpdu->base, USBIP_RET_UNLINK, unlink->seqnum);
  108. rpdu->u.ret_unlink.status = unlink->status;
  109. }
  110. static struct stub_priv *dequeue_from_priv_tx(struct stub_device *sdev)
  111. {
  112. unsigned long flags;
  113. struct stub_priv *priv, *tmp;
  114. spin_lock_irqsave(&sdev->priv_lock, flags);
  115. list_for_each_entry_safe(priv, tmp, &sdev->priv_tx, list) {
  116. list_move_tail(&priv->list, &sdev->priv_free);
  117. spin_unlock_irqrestore(&sdev->priv_lock, flags);
  118. return priv;
  119. }
  120. spin_unlock_irqrestore(&sdev->priv_lock, flags);
  121. return NULL;
  122. }
  123. static int stub_send_ret_submit(struct stub_device *sdev)
  124. {
  125. unsigned long flags;
  126. struct stub_priv *priv, *tmp;
  127. struct msghdr msg;
  128. size_t txsize;
  129. size_t total_size = 0;
  130. while ((priv = dequeue_from_priv_tx(sdev)) != NULL) {
  131. int ret;
  132. struct urb *urb = priv->urb;
  133. struct usbip_header pdu_header;
  134. struct usbip_iso_packet_descriptor *iso_buffer = NULL;
  135. struct kvec *iov = NULL;
  136. int iovnum = 0;
  137. txsize = 0;
  138. memset(&pdu_header, 0, sizeof(pdu_header));
  139. memset(&msg, 0, sizeof(msg));
  140. if (usb_pipetype(urb->pipe) == PIPE_ISOCHRONOUS)
  141. iovnum = 2 + urb->number_of_packets;
  142. else
  143. iovnum = 2;
  144. iov = kcalloc(iovnum, sizeof(struct kvec), GFP_KERNEL);
  145. if (!iov) {
  146. usbip_event_add(&sdev->ud, SDEV_EVENT_ERROR_MALLOC);
  147. return -1;
  148. }
  149. iovnum = 0;
  150. /* 1. setup usbip_header */
  151. setup_ret_submit_pdu(&pdu_header, urb);
  152. usbip_dbg_stub_tx("setup txdata seqnum: %d urb: %p\n",
  153. pdu_header.base.seqnum, urb);
  154. usbip_header_correct_endian(&pdu_header, 1);
  155. iov[iovnum].iov_base = &pdu_header;
  156. iov[iovnum].iov_len = sizeof(pdu_header);
  157. iovnum++;
  158. txsize += sizeof(pdu_header);
  159. /* 2. setup transfer buffer */
  160. if (usb_pipein(urb->pipe) &&
  161. usb_pipetype(urb->pipe) != PIPE_ISOCHRONOUS &&
  162. urb->actual_length > 0) {
  163. iov[iovnum].iov_base = urb->transfer_buffer;
  164. iov[iovnum].iov_len = urb->actual_length;
  165. iovnum++;
  166. txsize += urb->actual_length;
  167. } else if (usb_pipein(urb->pipe) &&
  168. usb_pipetype(urb->pipe) == PIPE_ISOCHRONOUS) {
  169. /*
  170. * For isochronous packets: actual length is the sum of
  171. * the actual length of the individual, packets, but as
  172. * the packet offsets are not changed there will be
  173. * padding between the packets. To optimally use the
  174. * bandwidth the padding is not transmitted.
  175. */
  176. int i;
  177. for (i = 0; i < urb->number_of_packets; i++) {
  178. iov[iovnum].iov_base = urb->transfer_buffer +
  179. urb->iso_frame_desc[i].offset;
  180. iov[iovnum].iov_len =
  181. urb->iso_frame_desc[i].actual_length;
  182. iovnum++;
  183. txsize += urb->iso_frame_desc[i].actual_length;
  184. }
  185. if (txsize != sizeof(pdu_header) + urb->actual_length) {
  186. dev_err(&sdev->udev->dev,
  187. "actual length of urb %d does not match iso packet sizes %zu\n",
  188. urb->actual_length,
  189. txsize-sizeof(pdu_header));
  190. kfree(iov);
  191. usbip_event_add(&sdev->ud,
  192. SDEV_EVENT_ERROR_TCP);
  193. return -1;
  194. }
  195. }
  196. /* 3. setup iso_packet_descriptor */
  197. if (usb_pipetype(urb->pipe) == PIPE_ISOCHRONOUS) {
  198. ssize_t len = 0;
  199. iso_buffer = usbip_alloc_iso_desc_pdu(urb, &len);
  200. if (!iso_buffer) {
  201. usbip_event_add(&sdev->ud,
  202. SDEV_EVENT_ERROR_MALLOC);
  203. kfree(iov);
  204. return -1;
  205. }
  206. iov[iovnum].iov_base = iso_buffer;
  207. iov[iovnum].iov_len = len;
  208. txsize += len;
  209. iovnum++;
  210. }
  211. ret = kernel_sendmsg(sdev->ud.tcp_socket, &msg,
  212. iov, iovnum, txsize);
  213. if (ret != txsize) {
  214. dev_err(&sdev->udev->dev,
  215. "sendmsg failed!, retval %d for %zd\n",
  216. ret, txsize);
  217. kfree(iov);
  218. kfree(iso_buffer);
  219. usbip_event_add(&sdev->ud, SDEV_EVENT_ERROR_TCP);
  220. return -1;
  221. }
  222. kfree(iov);
  223. kfree(iso_buffer);
  224. total_size += txsize;
  225. }
  226. spin_lock_irqsave(&sdev->priv_lock, flags);
  227. list_for_each_entry_safe(priv, tmp, &sdev->priv_free, list) {
  228. stub_free_priv_and_urb(priv);
  229. }
  230. spin_unlock_irqrestore(&sdev->priv_lock, flags);
  231. return total_size;
  232. }
  233. static struct stub_unlink *dequeue_from_unlink_tx(struct stub_device *sdev)
  234. {
  235. unsigned long flags;
  236. struct stub_unlink *unlink, *tmp;
  237. spin_lock_irqsave(&sdev->priv_lock, flags);
  238. list_for_each_entry_safe(unlink, tmp, &sdev->unlink_tx, list) {
  239. list_move_tail(&unlink->list, &sdev->unlink_free);
  240. spin_unlock_irqrestore(&sdev->priv_lock, flags);
  241. return unlink;
  242. }
  243. spin_unlock_irqrestore(&sdev->priv_lock, flags);
  244. return NULL;
  245. }
  246. static int stub_send_ret_unlink(struct stub_device *sdev)
  247. {
  248. unsigned long flags;
  249. struct stub_unlink *unlink, *tmp;
  250. struct msghdr msg;
  251. struct kvec iov[1];
  252. size_t txsize;
  253. size_t total_size = 0;
  254. while ((unlink = dequeue_from_unlink_tx(sdev)) != NULL) {
  255. int ret;
  256. struct usbip_header pdu_header;
  257. txsize = 0;
  258. memset(&pdu_header, 0, sizeof(pdu_header));
  259. memset(&msg, 0, sizeof(msg));
  260. memset(&iov, 0, sizeof(iov));
  261. usbip_dbg_stub_tx("setup ret unlink %lu\n", unlink->seqnum);
  262. /* 1. setup usbip_header */
  263. setup_ret_unlink_pdu(&pdu_header, unlink);
  264. usbip_header_correct_endian(&pdu_header, 1);
  265. iov[0].iov_base = &pdu_header;
  266. iov[0].iov_len = sizeof(pdu_header);
  267. txsize += sizeof(pdu_header);
  268. ret = kernel_sendmsg(sdev->ud.tcp_socket, &msg, iov,
  269. 1, txsize);
  270. if (ret != txsize) {
  271. dev_err(&sdev->udev->dev,
  272. "sendmsg failed!, retval %d for %zd\n",
  273. ret, txsize);
  274. usbip_event_add(&sdev->ud, SDEV_EVENT_ERROR_TCP);
  275. return -1;
  276. }
  277. usbip_dbg_stub_tx("send txdata\n");
  278. total_size += txsize;
  279. }
  280. spin_lock_irqsave(&sdev->priv_lock, flags);
  281. list_for_each_entry_safe(unlink, tmp, &sdev->unlink_free, list) {
  282. list_del(&unlink->list);
  283. kfree(unlink);
  284. }
  285. spin_unlock_irqrestore(&sdev->priv_lock, flags);
  286. return total_size;
  287. }
  288. int stub_tx_loop(void *data)
  289. {
  290. struct usbip_device *ud = data;
  291. struct stub_device *sdev = container_of(ud, struct stub_device, ud);
  292. while (!kthread_should_stop()) {
  293. if (usbip_event_happened(ud))
  294. break;
  295. /*
  296. * send_ret_submit comes earlier than send_ret_unlink. stub_rx
  297. * looks at only priv_init queue. If the completion of a URB is
  298. * earlier than the receive of CMD_UNLINK, priv is moved to
  299. * priv_tx queue and stub_rx does not find the target priv. In
  300. * this case, vhci_rx receives the result of the submit request
  301. * and then receives the result of the unlink request. The
  302. * result of the submit is given back to the usbcore as the
  303. * completion of the unlink request. The request of the
  304. * unlink is ignored. This is ok because a driver who calls
  305. * usb_unlink_urb() understands the unlink was too late by
  306. * getting the status of the given-backed URB which has the
  307. * status of usb_submit_urb().
  308. */
  309. if (stub_send_ret_submit(sdev) < 0)
  310. break;
  311. if (stub_send_ret_unlink(sdev) < 0)
  312. break;
  313. wait_event_interruptible(sdev->tx_waitq,
  314. (!list_empty(&sdev->priv_tx) ||
  315. !list_empty(&sdev->unlink_tx) ||
  316. kthread_should_stop()));
  317. }
  318. return 0;
  319. }