rndis.c 29 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189
  1. // SPDX-License-Identifier: GPL-2.0
  2. /*
  3. * RNDIS MSG parser
  4. *
  5. * Authors: Benedikt Spranger, Pengutronix
  6. * Robert Schwebel, Pengutronix
  7. *
  8. * This software was originally developed in conformance with
  9. * Microsoft's Remote NDIS Specification License Agreement.
  10. *
  11. * 03/12/2004 Kai-Uwe Bloem <[email protected]>
  12. * Fixed message length bug in init_response
  13. *
  14. * 03/25/2004 Kai-Uwe Bloem <[email protected]>
  15. * Fixed rndis_rm_hdr length bug.
  16. *
  17. * Copyright (C) 2004 by David Brownell
  18. * updates to merge with Linux 2.6, better match RNDIS spec
  19. */
  20. #include <linux/module.h>
  21. #include <linux/moduleparam.h>
  22. #include <linux/kernel.h>
  23. #include <linux/errno.h>
  24. #include <linux/idr.h>
  25. #include <linux/list.h>
  26. #include <linux/proc_fs.h>
  27. #include <linux/slab.h>
  28. #include <linux/seq_file.h>
  29. #include <linux/netdevice.h>
  30. #include <asm/io.h>
  31. #include <asm/byteorder.h>
  32. #include <asm/unaligned.h>
  33. #include "u_rndis.h"
  34. #undef VERBOSE_DEBUG
  35. #include "rndis.h"
  36. /* The driver for your USB chip needs to support ep0 OUT to work with
  37. * RNDIS, plus all three CDC Ethernet endpoints (interrupt not optional).
  38. *
  39. * Windows hosts need an INF file like Documentation/usb/linux.inf
  40. * and will be happier if you provide the host_addr module parameter.
  41. */
  42. #if 0
  43. static int rndis_debug = 0;
  44. module_param (rndis_debug, int, 0);
  45. MODULE_PARM_DESC (rndis_debug, "enable debugging");
  46. #else
  47. #define rndis_debug 0
  48. #endif
  49. #ifdef CONFIG_USB_GADGET_DEBUG_FILES
  50. #define NAME_TEMPLATE "driver/rndis-%03d"
  51. #endif /* CONFIG_USB_GADGET_DEBUG_FILES */
  52. static DEFINE_IDA(rndis_ida);
  53. /* Driver Version */
  54. static const __le32 rndis_driver_version = cpu_to_le32(1);
  55. /* Function Prototypes */
  56. static rndis_resp_t *rndis_add_response(struct rndis_params *params,
  57. u32 length);
  58. #ifdef CONFIG_USB_GADGET_DEBUG_FILES
  59. static const struct proc_ops rndis_proc_ops;
  60. #endif /* CONFIG_USB_GADGET_DEBUG_FILES */
  61. /* supported OIDs */
  62. static const u32 oid_supported_list[] = {
  63. /* the general stuff */
  64. RNDIS_OID_GEN_SUPPORTED_LIST,
  65. RNDIS_OID_GEN_HARDWARE_STATUS,
  66. RNDIS_OID_GEN_MEDIA_SUPPORTED,
  67. RNDIS_OID_GEN_MEDIA_IN_USE,
  68. RNDIS_OID_GEN_MAXIMUM_FRAME_SIZE,
  69. RNDIS_OID_GEN_LINK_SPEED,
  70. RNDIS_OID_GEN_TRANSMIT_BLOCK_SIZE,
  71. RNDIS_OID_GEN_RECEIVE_BLOCK_SIZE,
  72. RNDIS_OID_GEN_VENDOR_ID,
  73. RNDIS_OID_GEN_VENDOR_DESCRIPTION,
  74. RNDIS_OID_GEN_VENDOR_DRIVER_VERSION,
  75. RNDIS_OID_GEN_CURRENT_PACKET_FILTER,
  76. RNDIS_OID_GEN_MAXIMUM_TOTAL_SIZE,
  77. RNDIS_OID_GEN_MEDIA_CONNECT_STATUS,
  78. RNDIS_OID_GEN_PHYSICAL_MEDIUM,
  79. /* the statistical stuff */
  80. RNDIS_OID_GEN_XMIT_OK,
  81. RNDIS_OID_GEN_RCV_OK,
  82. RNDIS_OID_GEN_XMIT_ERROR,
  83. RNDIS_OID_GEN_RCV_ERROR,
  84. RNDIS_OID_GEN_RCV_NO_BUFFER,
  85. #ifdef RNDIS_OPTIONAL_STATS
  86. RNDIS_OID_GEN_DIRECTED_BYTES_XMIT,
  87. RNDIS_OID_GEN_DIRECTED_FRAMES_XMIT,
  88. RNDIS_OID_GEN_MULTICAST_BYTES_XMIT,
  89. RNDIS_OID_GEN_MULTICAST_FRAMES_XMIT,
  90. RNDIS_OID_GEN_BROADCAST_BYTES_XMIT,
  91. RNDIS_OID_GEN_BROADCAST_FRAMES_XMIT,
  92. RNDIS_OID_GEN_DIRECTED_BYTES_RCV,
  93. RNDIS_OID_GEN_DIRECTED_FRAMES_RCV,
  94. RNDIS_OID_GEN_MULTICAST_BYTES_RCV,
  95. RNDIS_OID_GEN_MULTICAST_FRAMES_RCV,
  96. RNDIS_OID_GEN_BROADCAST_BYTES_RCV,
  97. RNDIS_OID_GEN_BROADCAST_FRAMES_RCV,
  98. RNDIS_OID_GEN_RCV_CRC_ERROR,
  99. RNDIS_OID_GEN_TRANSMIT_QUEUE_LENGTH,
  100. #endif /* RNDIS_OPTIONAL_STATS */
  101. /* mandatory 802.3 */
  102. /* the general stuff */
  103. RNDIS_OID_802_3_PERMANENT_ADDRESS,
  104. RNDIS_OID_802_3_CURRENT_ADDRESS,
  105. RNDIS_OID_802_3_MULTICAST_LIST,
  106. RNDIS_OID_802_3_MAC_OPTIONS,
  107. RNDIS_OID_802_3_MAXIMUM_LIST_SIZE,
  108. /* the statistical stuff */
  109. RNDIS_OID_802_3_RCV_ERROR_ALIGNMENT,
  110. RNDIS_OID_802_3_XMIT_ONE_COLLISION,
  111. RNDIS_OID_802_3_XMIT_MORE_COLLISIONS,
  112. #ifdef RNDIS_OPTIONAL_STATS
  113. RNDIS_OID_802_3_XMIT_DEFERRED,
  114. RNDIS_OID_802_3_XMIT_MAX_COLLISIONS,
  115. RNDIS_OID_802_3_RCV_OVERRUN,
  116. RNDIS_OID_802_3_XMIT_UNDERRUN,
  117. RNDIS_OID_802_3_XMIT_HEARTBEAT_FAILURE,
  118. RNDIS_OID_802_3_XMIT_TIMES_CRS_LOST,
  119. RNDIS_OID_802_3_XMIT_LATE_COLLISIONS,
  120. #endif /* RNDIS_OPTIONAL_STATS */
  121. #ifdef RNDIS_PM
  122. /* PM and wakeup are "mandatory" for USB, but the RNDIS specs
  123. * don't say what they mean ... and the NDIS specs are often
  124. * confusing and/or ambiguous in this context. (That is, more
  125. * so than their specs for the other OIDs.)
  126. *
  127. * FIXME someone who knows what these should do, please
  128. * implement them!
  129. */
  130. /* power management */
  131. OID_PNP_CAPABILITIES,
  132. OID_PNP_QUERY_POWER,
  133. OID_PNP_SET_POWER,
  134. #ifdef RNDIS_WAKEUP
  135. /* wake up host */
  136. OID_PNP_ENABLE_WAKE_UP,
  137. OID_PNP_ADD_WAKE_UP_PATTERN,
  138. OID_PNP_REMOVE_WAKE_UP_PATTERN,
  139. #endif /* RNDIS_WAKEUP */
  140. #endif /* RNDIS_PM */
  141. };
  142. /* NDIS Functions */
  143. static int gen_ndis_query_resp(struct rndis_params *params, u32 OID, u8 *buf,
  144. unsigned buf_len, rndis_resp_t *r)
  145. {
  146. int retval = -ENOTSUPP;
  147. u32 length = 4; /* usually */
  148. __le32 *outbuf;
  149. int i, count;
  150. rndis_query_cmplt_type *resp;
  151. struct net_device *net;
  152. struct rtnl_link_stats64 temp;
  153. const struct rtnl_link_stats64 *stats;
  154. if (!r) return -ENOMEM;
  155. resp = (rndis_query_cmplt_type *)r->buf;
  156. if (!resp) return -ENOMEM;
  157. if (buf_len && rndis_debug > 1) {
  158. pr_debug("query OID %08x value, len %d:\n", OID, buf_len);
  159. for (i = 0; i < buf_len; i += 16) {
  160. pr_debug("%03d: %08x %08x %08x %08x\n", i,
  161. get_unaligned_le32(&buf[i]),
  162. get_unaligned_le32(&buf[i + 4]),
  163. get_unaligned_le32(&buf[i + 8]),
  164. get_unaligned_le32(&buf[i + 12]));
  165. }
  166. }
  167. /* response goes here, right after the header */
  168. outbuf = (__le32 *)&resp[1];
  169. resp->InformationBufferOffset = cpu_to_le32(16);
  170. net = params->dev;
  171. stats = dev_get_stats(net, &temp);
  172. switch (OID) {
  173. /* general oids (table 4-1) */
  174. /* mandatory */
  175. case RNDIS_OID_GEN_SUPPORTED_LIST:
  176. pr_debug("%s: RNDIS_OID_GEN_SUPPORTED_LIST\n", __func__);
  177. length = sizeof(oid_supported_list);
  178. count = length / sizeof(u32);
  179. for (i = 0; i < count; i++)
  180. outbuf[i] = cpu_to_le32(oid_supported_list[i]);
  181. retval = 0;
  182. break;
  183. /* mandatory */
  184. case RNDIS_OID_GEN_HARDWARE_STATUS:
  185. pr_debug("%s: RNDIS_OID_GEN_HARDWARE_STATUS\n", __func__);
  186. /* Bogus question!
  187. * Hardware must be ready to receive high level protocols.
  188. * BTW:
  189. * reddite ergo quae sunt Caesaris Caesari
  190. * et quae sunt Dei Deo!
  191. */
  192. *outbuf = cpu_to_le32(0);
  193. retval = 0;
  194. break;
  195. /* mandatory */
  196. case RNDIS_OID_GEN_MEDIA_SUPPORTED:
  197. pr_debug("%s: RNDIS_OID_GEN_MEDIA_SUPPORTED\n", __func__);
  198. *outbuf = cpu_to_le32(params->medium);
  199. retval = 0;
  200. break;
  201. /* mandatory */
  202. case RNDIS_OID_GEN_MEDIA_IN_USE:
  203. pr_debug("%s: RNDIS_OID_GEN_MEDIA_IN_USE\n", __func__);
  204. /* one medium, one transport... (maybe you do it better) */
  205. *outbuf = cpu_to_le32(params->medium);
  206. retval = 0;
  207. break;
  208. /* mandatory */
  209. case RNDIS_OID_GEN_MAXIMUM_FRAME_SIZE:
  210. pr_debug("%s: RNDIS_OID_GEN_MAXIMUM_FRAME_SIZE\n", __func__);
  211. if (params->dev) {
  212. *outbuf = cpu_to_le32(params->dev->mtu);
  213. retval = 0;
  214. }
  215. break;
  216. /* mandatory */
  217. case RNDIS_OID_GEN_LINK_SPEED:
  218. if (rndis_debug > 1)
  219. pr_debug("%s: RNDIS_OID_GEN_LINK_SPEED\n", __func__);
  220. if (params->media_state == RNDIS_MEDIA_STATE_DISCONNECTED)
  221. *outbuf = cpu_to_le32(0);
  222. else
  223. *outbuf = cpu_to_le32(params->speed);
  224. retval = 0;
  225. break;
  226. /* mandatory */
  227. case RNDIS_OID_GEN_TRANSMIT_BLOCK_SIZE:
  228. pr_debug("%s: RNDIS_OID_GEN_TRANSMIT_BLOCK_SIZE\n", __func__);
  229. if (params->dev) {
  230. *outbuf = cpu_to_le32(params->dev->mtu);
  231. retval = 0;
  232. }
  233. break;
  234. /* mandatory */
  235. case RNDIS_OID_GEN_RECEIVE_BLOCK_SIZE:
  236. pr_debug("%s: RNDIS_OID_GEN_RECEIVE_BLOCK_SIZE\n", __func__);
  237. if (params->dev) {
  238. *outbuf = cpu_to_le32(params->dev->mtu);
  239. retval = 0;
  240. }
  241. break;
  242. /* mandatory */
  243. case RNDIS_OID_GEN_VENDOR_ID:
  244. pr_debug("%s: RNDIS_OID_GEN_VENDOR_ID\n", __func__);
  245. *outbuf = cpu_to_le32(params->vendorID);
  246. retval = 0;
  247. break;
  248. /* mandatory */
  249. case RNDIS_OID_GEN_VENDOR_DESCRIPTION:
  250. pr_debug("%s: RNDIS_OID_GEN_VENDOR_DESCRIPTION\n", __func__);
  251. if (params->vendorDescr) {
  252. length = strlen(params->vendorDescr);
  253. memcpy(outbuf, params->vendorDescr, length);
  254. } else {
  255. outbuf[0] = 0;
  256. }
  257. retval = 0;
  258. break;
  259. case RNDIS_OID_GEN_VENDOR_DRIVER_VERSION:
  260. pr_debug("%s: RNDIS_OID_GEN_VENDOR_DRIVER_VERSION\n", __func__);
  261. /* Created as LE */
  262. *outbuf = rndis_driver_version;
  263. retval = 0;
  264. break;
  265. /* mandatory */
  266. case RNDIS_OID_GEN_CURRENT_PACKET_FILTER:
  267. pr_debug("%s: RNDIS_OID_GEN_CURRENT_PACKET_FILTER\n", __func__);
  268. *outbuf = cpu_to_le32(*params->filter);
  269. retval = 0;
  270. break;
  271. /* mandatory */
  272. case RNDIS_OID_GEN_MAXIMUM_TOTAL_SIZE:
  273. pr_debug("%s: RNDIS_OID_GEN_MAXIMUM_TOTAL_SIZE\n", __func__);
  274. *outbuf = cpu_to_le32(RNDIS_MAX_TOTAL_SIZE);
  275. retval = 0;
  276. break;
  277. /* mandatory */
  278. case RNDIS_OID_GEN_MEDIA_CONNECT_STATUS:
  279. if (rndis_debug > 1)
  280. pr_debug("%s: RNDIS_OID_GEN_MEDIA_CONNECT_STATUS\n", __func__);
  281. *outbuf = cpu_to_le32(params->media_state);
  282. retval = 0;
  283. break;
  284. case RNDIS_OID_GEN_PHYSICAL_MEDIUM:
  285. pr_debug("%s: RNDIS_OID_GEN_PHYSICAL_MEDIUM\n", __func__);
  286. *outbuf = cpu_to_le32(0);
  287. retval = 0;
  288. break;
  289. /* The RNDIS specification is incomplete/wrong. Some versions
  290. * of MS-Windows expect OIDs that aren't specified there. Other
  291. * versions emit undefined RNDIS messages. DOCUMENT ALL THESE!
  292. */
  293. case RNDIS_OID_GEN_MAC_OPTIONS: /* from WinME */
  294. pr_debug("%s: RNDIS_OID_GEN_MAC_OPTIONS\n", __func__);
  295. *outbuf = cpu_to_le32(
  296. RNDIS_MAC_OPTION_RECEIVE_SERIALIZED
  297. | RNDIS_MAC_OPTION_FULL_DUPLEX);
  298. retval = 0;
  299. break;
  300. /* statistics OIDs (table 4-2) */
  301. /* mandatory */
  302. case RNDIS_OID_GEN_XMIT_OK:
  303. if (rndis_debug > 1)
  304. pr_debug("%s: RNDIS_OID_GEN_XMIT_OK\n", __func__);
  305. if (stats) {
  306. *outbuf = cpu_to_le32(stats->tx_packets
  307. - stats->tx_errors - stats->tx_dropped);
  308. retval = 0;
  309. }
  310. break;
  311. /* mandatory */
  312. case RNDIS_OID_GEN_RCV_OK:
  313. if (rndis_debug > 1)
  314. pr_debug("%s: RNDIS_OID_GEN_RCV_OK\n", __func__);
  315. if (stats) {
  316. *outbuf = cpu_to_le32(stats->rx_packets
  317. - stats->rx_errors - stats->rx_dropped);
  318. retval = 0;
  319. }
  320. break;
  321. /* mandatory */
  322. case RNDIS_OID_GEN_XMIT_ERROR:
  323. if (rndis_debug > 1)
  324. pr_debug("%s: RNDIS_OID_GEN_XMIT_ERROR\n", __func__);
  325. if (stats) {
  326. *outbuf = cpu_to_le32(stats->tx_errors);
  327. retval = 0;
  328. }
  329. break;
  330. /* mandatory */
  331. case RNDIS_OID_GEN_RCV_ERROR:
  332. if (rndis_debug > 1)
  333. pr_debug("%s: RNDIS_OID_GEN_RCV_ERROR\n", __func__);
  334. if (stats) {
  335. *outbuf = cpu_to_le32(stats->rx_errors);
  336. retval = 0;
  337. }
  338. break;
  339. /* mandatory */
  340. case RNDIS_OID_GEN_RCV_NO_BUFFER:
  341. pr_debug("%s: RNDIS_OID_GEN_RCV_NO_BUFFER\n", __func__);
  342. if (stats) {
  343. *outbuf = cpu_to_le32(stats->rx_dropped);
  344. retval = 0;
  345. }
  346. break;
  347. /* ieee802.3 OIDs (table 4-3) */
  348. /* mandatory */
  349. case RNDIS_OID_802_3_PERMANENT_ADDRESS:
  350. pr_debug("%s: RNDIS_OID_802_3_PERMANENT_ADDRESS\n", __func__);
  351. if (params->dev) {
  352. length = ETH_ALEN;
  353. memcpy(outbuf, params->host_mac, length);
  354. retval = 0;
  355. }
  356. break;
  357. /* mandatory */
  358. case RNDIS_OID_802_3_CURRENT_ADDRESS:
  359. pr_debug("%s: RNDIS_OID_802_3_CURRENT_ADDRESS\n", __func__);
  360. if (params->dev) {
  361. length = ETH_ALEN;
  362. memcpy(outbuf, params->host_mac, length);
  363. retval = 0;
  364. }
  365. break;
  366. /* mandatory */
  367. case RNDIS_OID_802_3_MULTICAST_LIST:
  368. pr_debug("%s: RNDIS_OID_802_3_MULTICAST_LIST\n", __func__);
  369. /* Multicast base address only */
  370. *outbuf = cpu_to_le32(0xE0000000);
  371. retval = 0;
  372. break;
  373. /* mandatory */
  374. case RNDIS_OID_802_3_MAXIMUM_LIST_SIZE:
  375. pr_debug("%s: RNDIS_OID_802_3_MAXIMUM_LIST_SIZE\n", __func__);
  376. /* Multicast base address only */
  377. *outbuf = cpu_to_le32(1);
  378. retval = 0;
  379. break;
  380. case RNDIS_OID_802_3_MAC_OPTIONS:
  381. pr_debug("%s: RNDIS_OID_802_3_MAC_OPTIONS\n", __func__);
  382. *outbuf = cpu_to_le32(0);
  383. retval = 0;
  384. break;
  385. /* ieee802.3 statistics OIDs (table 4-4) */
  386. /* mandatory */
  387. case RNDIS_OID_802_3_RCV_ERROR_ALIGNMENT:
  388. pr_debug("%s: RNDIS_OID_802_3_RCV_ERROR_ALIGNMENT\n", __func__);
  389. if (stats) {
  390. *outbuf = cpu_to_le32(stats->rx_frame_errors);
  391. retval = 0;
  392. }
  393. break;
  394. /* mandatory */
  395. case RNDIS_OID_802_3_XMIT_ONE_COLLISION:
  396. pr_debug("%s: RNDIS_OID_802_3_XMIT_ONE_COLLISION\n", __func__);
  397. *outbuf = cpu_to_le32(0);
  398. retval = 0;
  399. break;
  400. /* mandatory */
  401. case RNDIS_OID_802_3_XMIT_MORE_COLLISIONS:
  402. pr_debug("%s: RNDIS_OID_802_3_XMIT_MORE_COLLISIONS\n", __func__);
  403. *outbuf = cpu_to_le32(0);
  404. retval = 0;
  405. break;
  406. default:
  407. pr_warn("%s: query unknown OID 0x%08X\n", __func__, OID);
  408. }
  409. if (retval < 0)
  410. length = 0;
  411. resp->InformationBufferLength = cpu_to_le32(length);
  412. r->length = length + sizeof(*resp);
  413. resp->MessageLength = cpu_to_le32(r->length);
  414. return retval;
  415. }
  416. static int gen_ndis_set_resp(struct rndis_params *params, u32 OID,
  417. u8 *buf, u32 buf_len, rndis_resp_t *r)
  418. {
  419. rndis_set_cmplt_type *resp;
  420. int i, retval = -ENOTSUPP;
  421. if (!r)
  422. return -ENOMEM;
  423. resp = (rndis_set_cmplt_type *)r->buf;
  424. if (!resp)
  425. return -ENOMEM;
  426. if (buf_len && rndis_debug > 1) {
  427. pr_debug("set OID %08x value, len %d:\n", OID, buf_len);
  428. for (i = 0; i < buf_len; i += 16) {
  429. pr_debug("%03d: %08x %08x %08x %08x\n", i,
  430. get_unaligned_le32(&buf[i]),
  431. get_unaligned_le32(&buf[i + 4]),
  432. get_unaligned_le32(&buf[i + 8]),
  433. get_unaligned_le32(&buf[i + 12]));
  434. }
  435. }
  436. switch (OID) {
  437. case RNDIS_OID_GEN_CURRENT_PACKET_FILTER:
  438. /* these NDIS_PACKET_TYPE_* bitflags are shared with
  439. * cdc_filter; it's not RNDIS-specific
  440. * NDIS_PACKET_TYPE_x == USB_CDC_PACKET_TYPE_x for x in:
  441. * PROMISCUOUS, DIRECTED,
  442. * MULTICAST, ALL_MULTICAST, BROADCAST
  443. */
  444. *params->filter = (u16)get_unaligned_le32(buf);
  445. pr_debug("%s: RNDIS_OID_GEN_CURRENT_PACKET_FILTER %08x\n",
  446. __func__, *params->filter);
  447. /* this call has a significant side effect: it's
  448. * what makes the packet flow start and stop, like
  449. * activating the CDC Ethernet altsetting.
  450. */
  451. retval = 0;
  452. if (*params->filter) {
  453. params->state = RNDIS_DATA_INITIALIZED;
  454. netif_carrier_on(params->dev);
  455. if (netif_running(params->dev))
  456. netif_wake_queue(params->dev);
  457. } else {
  458. params->state = RNDIS_INITIALIZED;
  459. netif_carrier_off(params->dev);
  460. netif_stop_queue(params->dev);
  461. }
  462. break;
  463. case RNDIS_OID_802_3_MULTICAST_LIST:
  464. /* I think we can ignore this */
  465. pr_debug("%s: RNDIS_OID_802_3_MULTICAST_LIST\n", __func__);
  466. retval = 0;
  467. break;
  468. default:
  469. pr_warn("%s: set unknown OID 0x%08X, size %d\n",
  470. __func__, OID, buf_len);
  471. }
  472. return retval;
  473. }
  474. /*
  475. * Response Functions
  476. */
  477. static int rndis_init_response(struct rndis_params *params,
  478. rndis_init_msg_type *buf)
  479. {
  480. rndis_init_cmplt_type *resp;
  481. rndis_resp_t *r;
  482. if (!params->dev)
  483. return -ENOTSUPP;
  484. r = rndis_add_response(params, sizeof(rndis_init_cmplt_type));
  485. if (!r)
  486. return -ENOMEM;
  487. resp = (rndis_init_cmplt_type *)r->buf;
  488. resp->MessageType = cpu_to_le32(RNDIS_MSG_INIT_C);
  489. resp->MessageLength = cpu_to_le32(52);
  490. resp->RequestID = buf->RequestID; /* Still LE in msg buffer */
  491. resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
  492. resp->MajorVersion = cpu_to_le32(RNDIS_MAJOR_VERSION);
  493. resp->MinorVersion = cpu_to_le32(RNDIS_MINOR_VERSION);
  494. resp->DeviceFlags = cpu_to_le32(RNDIS_DF_CONNECTIONLESS);
  495. resp->Medium = cpu_to_le32(RNDIS_MEDIUM_802_3);
  496. resp->MaxPacketsPerTransfer = cpu_to_le32(1);
  497. resp->MaxTransferSize = cpu_to_le32(
  498. params->dev->mtu
  499. + sizeof(struct ethhdr)
  500. + sizeof(struct rndis_packet_msg_type)
  501. + 22);
  502. resp->PacketAlignmentFactor = cpu_to_le32(0);
  503. resp->AFListOffset = cpu_to_le32(0);
  504. resp->AFListSize = cpu_to_le32(0);
  505. params->resp_avail(params->v);
  506. return 0;
  507. }
  508. static int rndis_query_response(struct rndis_params *params,
  509. rndis_query_msg_type *buf)
  510. {
  511. rndis_query_cmplt_type *resp;
  512. rndis_resp_t *r;
  513. /* pr_debug("%s: OID = %08X\n", __func__, cpu_to_le32(buf->OID)); */
  514. if (!params->dev)
  515. return -ENOTSUPP;
  516. /*
  517. * we need more memory:
  518. * gen_ndis_query_resp expects enough space for
  519. * rndis_query_cmplt_type followed by data.
  520. * oid_supported_list is the largest data reply
  521. */
  522. r = rndis_add_response(params,
  523. sizeof(oid_supported_list) + sizeof(rndis_query_cmplt_type));
  524. if (!r)
  525. return -ENOMEM;
  526. resp = (rndis_query_cmplt_type *)r->buf;
  527. resp->MessageType = cpu_to_le32(RNDIS_MSG_QUERY_C);
  528. resp->RequestID = buf->RequestID; /* Still LE in msg buffer */
  529. if (gen_ndis_query_resp(params, le32_to_cpu(buf->OID),
  530. le32_to_cpu(buf->InformationBufferOffset)
  531. + 8 + (u8 *)buf,
  532. le32_to_cpu(buf->InformationBufferLength),
  533. r)) {
  534. /* OID not supported */
  535. resp->Status = cpu_to_le32(RNDIS_STATUS_NOT_SUPPORTED);
  536. resp->MessageLength = cpu_to_le32(sizeof *resp);
  537. resp->InformationBufferLength = cpu_to_le32(0);
  538. resp->InformationBufferOffset = cpu_to_le32(0);
  539. } else
  540. resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
  541. params->resp_avail(params->v);
  542. return 0;
  543. }
  544. static int rndis_set_response(struct rndis_params *params,
  545. rndis_set_msg_type *buf)
  546. {
  547. u32 BufLength, BufOffset;
  548. rndis_set_cmplt_type *resp;
  549. rndis_resp_t *r;
  550. BufLength = le32_to_cpu(buf->InformationBufferLength);
  551. BufOffset = le32_to_cpu(buf->InformationBufferOffset);
  552. if ((BufLength > RNDIS_MAX_TOTAL_SIZE) ||
  553. (BufOffset > RNDIS_MAX_TOTAL_SIZE) ||
  554. (BufOffset + 8 >= RNDIS_MAX_TOTAL_SIZE))
  555. return -EINVAL;
  556. r = rndis_add_response(params, sizeof(rndis_set_cmplt_type));
  557. if (!r)
  558. return -ENOMEM;
  559. resp = (rndis_set_cmplt_type *)r->buf;
  560. #ifdef VERBOSE_DEBUG
  561. pr_debug("%s: Length: %d\n", __func__, BufLength);
  562. pr_debug("%s: Offset: %d\n", __func__, BufOffset);
  563. pr_debug("%s: InfoBuffer: ", __func__);
  564. for (i = 0; i < BufLength; i++) {
  565. pr_debug("%02x ", *(((u8 *) buf) + i + 8 + BufOffset));
  566. }
  567. pr_debug("\n");
  568. #endif
  569. resp->MessageType = cpu_to_le32(RNDIS_MSG_SET_C);
  570. resp->MessageLength = cpu_to_le32(16);
  571. resp->RequestID = buf->RequestID; /* Still LE in msg buffer */
  572. if (gen_ndis_set_resp(params, le32_to_cpu(buf->OID),
  573. ((u8 *)buf) + 8 + BufOffset, BufLength, r))
  574. resp->Status = cpu_to_le32(RNDIS_STATUS_NOT_SUPPORTED);
  575. else
  576. resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
  577. params->resp_avail(params->v);
  578. return 0;
  579. }
  580. static int rndis_reset_response(struct rndis_params *params,
  581. rndis_reset_msg_type *buf)
  582. {
  583. rndis_reset_cmplt_type *resp;
  584. rndis_resp_t *r;
  585. u8 *xbuf;
  586. u32 length;
  587. /* drain the response queue */
  588. while ((xbuf = rndis_get_next_response(params, &length)))
  589. rndis_free_response(params, xbuf);
  590. r = rndis_add_response(params, sizeof(rndis_reset_cmplt_type));
  591. if (!r)
  592. return -ENOMEM;
  593. resp = (rndis_reset_cmplt_type *)r->buf;
  594. resp->MessageType = cpu_to_le32(RNDIS_MSG_RESET_C);
  595. resp->MessageLength = cpu_to_le32(16);
  596. resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
  597. /* resent information */
  598. resp->AddressingReset = cpu_to_le32(1);
  599. params->resp_avail(params->v);
  600. return 0;
  601. }
  602. static int rndis_keepalive_response(struct rndis_params *params,
  603. rndis_keepalive_msg_type *buf)
  604. {
  605. rndis_keepalive_cmplt_type *resp;
  606. rndis_resp_t *r;
  607. /* host "should" check only in RNDIS_DATA_INITIALIZED state */
  608. r = rndis_add_response(params, sizeof(rndis_keepalive_cmplt_type));
  609. if (!r)
  610. return -ENOMEM;
  611. resp = (rndis_keepalive_cmplt_type *)r->buf;
  612. resp->MessageType = cpu_to_le32(RNDIS_MSG_KEEPALIVE_C);
  613. resp->MessageLength = cpu_to_le32(16);
  614. resp->RequestID = buf->RequestID; /* Still LE in msg buffer */
  615. resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
  616. params->resp_avail(params->v);
  617. return 0;
  618. }
  619. /*
  620. * Device to Host Comunication
  621. */
  622. static int rndis_indicate_status_msg(struct rndis_params *params, u32 status)
  623. {
  624. rndis_indicate_status_msg_type *resp;
  625. rndis_resp_t *r;
  626. if (params->state == RNDIS_UNINITIALIZED)
  627. return -ENOTSUPP;
  628. r = rndis_add_response(params, sizeof(rndis_indicate_status_msg_type));
  629. if (!r)
  630. return -ENOMEM;
  631. resp = (rndis_indicate_status_msg_type *)r->buf;
  632. resp->MessageType = cpu_to_le32(RNDIS_MSG_INDICATE);
  633. resp->MessageLength = cpu_to_le32(20);
  634. resp->Status = cpu_to_le32(status);
  635. resp->StatusBufferLength = cpu_to_le32(0);
  636. resp->StatusBufferOffset = cpu_to_le32(0);
  637. params->resp_avail(params->v);
  638. return 0;
  639. }
  640. int rndis_signal_connect(struct rndis_params *params)
  641. {
  642. params->media_state = RNDIS_MEDIA_STATE_CONNECTED;
  643. return rndis_indicate_status_msg(params, RNDIS_STATUS_MEDIA_CONNECT);
  644. }
  645. EXPORT_SYMBOL_GPL(rndis_signal_connect);
  646. int rndis_signal_disconnect(struct rndis_params *params)
  647. {
  648. params->media_state = RNDIS_MEDIA_STATE_DISCONNECTED;
  649. return rndis_indicate_status_msg(params, RNDIS_STATUS_MEDIA_DISCONNECT);
  650. }
  651. EXPORT_SYMBOL_GPL(rndis_signal_disconnect);
  652. void rndis_uninit(struct rndis_params *params)
  653. {
  654. u8 *buf;
  655. u32 length;
  656. if (!params)
  657. return;
  658. params->state = RNDIS_UNINITIALIZED;
  659. /* drain the response queue */
  660. while ((buf = rndis_get_next_response(params, &length)))
  661. rndis_free_response(params, buf);
  662. }
  663. EXPORT_SYMBOL_GPL(rndis_uninit);
  664. void rndis_set_host_mac(struct rndis_params *params, const u8 *addr)
  665. {
  666. params->host_mac = addr;
  667. }
  668. EXPORT_SYMBOL_GPL(rndis_set_host_mac);
  669. /*
  670. * Message Parser
  671. */
  672. int rndis_msg_parser(struct rndis_params *params, u8 *buf)
  673. {
  674. u32 MsgType, MsgLength;
  675. __le32 *tmp;
  676. if (!buf)
  677. return -ENOMEM;
  678. tmp = (__le32 *)buf;
  679. MsgType = get_unaligned_le32(tmp++);
  680. MsgLength = get_unaligned_le32(tmp++);
  681. if (!params)
  682. return -ENOTSUPP;
  683. /* NOTE: RNDIS is *EXTREMELY* chatty ... Windows constantly polls for
  684. * rx/tx statistics and link status, in addition to KEEPALIVE traffic
  685. * and normal HC level polling to see if there's any IN traffic.
  686. */
  687. /* For USB: responses may take up to 10 seconds */
  688. switch (MsgType) {
  689. case RNDIS_MSG_INIT:
  690. pr_debug("%s: RNDIS_MSG_INIT\n",
  691. __func__);
  692. params->state = RNDIS_INITIALIZED;
  693. return rndis_init_response(params, (rndis_init_msg_type *)buf);
  694. case RNDIS_MSG_HALT:
  695. pr_debug("%s: RNDIS_MSG_HALT\n",
  696. __func__);
  697. params->state = RNDIS_UNINITIALIZED;
  698. if (params->dev) {
  699. netif_carrier_off(params->dev);
  700. netif_stop_queue(params->dev);
  701. }
  702. return 0;
  703. case RNDIS_MSG_QUERY:
  704. return rndis_query_response(params,
  705. (rndis_query_msg_type *)buf);
  706. case RNDIS_MSG_SET:
  707. return rndis_set_response(params, (rndis_set_msg_type *)buf);
  708. case RNDIS_MSG_RESET:
  709. pr_debug("%s: RNDIS_MSG_RESET\n",
  710. __func__);
  711. return rndis_reset_response(params,
  712. (rndis_reset_msg_type *)buf);
  713. case RNDIS_MSG_KEEPALIVE:
  714. /* For USB: host does this every 5 seconds */
  715. if (rndis_debug > 1)
  716. pr_debug("%s: RNDIS_MSG_KEEPALIVE\n",
  717. __func__);
  718. return rndis_keepalive_response(params,
  719. (rndis_keepalive_msg_type *)
  720. buf);
  721. default:
  722. /* At least Windows XP emits some undefined RNDIS messages.
  723. * In one case those messages seemed to relate to the host
  724. * suspending itself.
  725. */
  726. pr_warn("%s: unknown RNDIS message 0x%08X len %d\n",
  727. __func__, MsgType, MsgLength);
  728. /* Garbled message can be huge, so limit what we display */
  729. if (MsgLength > 16)
  730. MsgLength = 16;
  731. print_hex_dump_bytes(__func__, DUMP_PREFIX_OFFSET,
  732. buf, MsgLength);
  733. break;
  734. }
  735. return -ENOTSUPP;
  736. }
  737. EXPORT_SYMBOL_GPL(rndis_msg_parser);
  738. static inline int rndis_get_nr(void)
  739. {
  740. return ida_simple_get(&rndis_ida, 0, 1000, GFP_KERNEL);
  741. }
  742. static inline void rndis_put_nr(int nr)
  743. {
  744. ida_simple_remove(&rndis_ida, nr);
  745. }
  746. struct rndis_params *rndis_register(void (*resp_avail)(void *v), void *v)
  747. {
  748. struct rndis_params *params;
  749. int i;
  750. if (!resp_avail)
  751. return ERR_PTR(-EINVAL);
  752. i = rndis_get_nr();
  753. if (i < 0) {
  754. pr_debug("failed\n");
  755. return ERR_PTR(-ENODEV);
  756. }
  757. params = kzalloc(sizeof(*params), GFP_KERNEL);
  758. if (!params) {
  759. rndis_put_nr(i);
  760. return ERR_PTR(-ENOMEM);
  761. }
  762. #ifdef CONFIG_USB_GADGET_DEBUG_FILES
  763. {
  764. struct proc_dir_entry *proc_entry;
  765. char name[20];
  766. sprintf(name, NAME_TEMPLATE, i);
  767. proc_entry = proc_create_data(name, 0660, NULL,
  768. &rndis_proc_ops, params);
  769. if (!proc_entry) {
  770. kfree(params);
  771. rndis_put_nr(i);
  772. return ERR_PTR(-EIO);
  773. }
  774. }
  775. #endif
  776. params->confignr = i;
  777. params->used = 1;
  778. params->state = RNDIS_UNINITIALIZED;
  779. params->media_state = RNDIS_MEDIA_STATE_DISCONNECTED;
  780. params->resp_avail = resp_avail;
  781. params->v = v;
  782. INIT_LIST_HEAD(&params->resp_queue);
  783. spin_lock_init(&params->resp_lock);
  784. pr_debug("%s: configNr = %d\n", __func__, i);
  785. return params;
  786. }
  787. EXPORT_SYMBOL_GPL(rndis_register);
  788. void rndis_deregister(struct rndis_params *params)
  789. {
  790. int i;
  791. pr_debug("%s:\n", __func__);
  792. if (!params)
  793. return;
  794. i = params->confignr;
  795. #ifdef CONFIG_USB_GADGET_DEBUG_FILES
  796. {
  797. char name[20];
  798. sprintf(name, NAME_TEMPLATE, i);
  799. remove_proc_entry(name, NULL);
  800. }
  801. #endif
  802. kfree(params);
  803. rndis_put_nr(i);
  804. }
  805. EXPORT_SYMBOL_GPL(rndis_deregister);
  806. int rndis_set_param_dev(struct rndis_params *params, struct net_device *dev,
  807. u16 *cdc_filter)
  808. {
  809. pr_debug("%s:\n", __func__);
  810. if (!dev)
  811. return -EINVAL;
  812. if (!params)
  813. return -1;
  814. params->dev = dev;
  815. params->filter = cdc_filter;
  816. return 0;
  817. }
  818. EXPORT_SYMBOL_GPL(rndis_set_param_dev);
  819. int rndis_set_param_vendor(struct rndis_params *params, u32 vendorID,
  820. const char *vendorDescr)
  821. {
  822. pr_debug("%s:\n", __func__);
  823. if (!vendorDescr) return -1;
  824. if (!params)
  825. return -1;
  826. params->vendorID = vendorID;
  827. params->vendorDescr = vendorDescr;
  828. return 0;
  829. }
  830. EXPORT_SYMBOL_GPL(rndis_set_param_vendor);
  831. int rndis_set_param_medium(struct rndis_params *params, u32 medium, u32 speed)
  832. {
  833. pr_debug("%s: %u %u\n", __func__, medium, speed);
  834. if (!params)
  835. return -1;
  836. params->medium = medium;
  837. params->speed = speed;
  838. return 0;
  839. }
  840. EXPORT_SYMBOL_GPL(rndis_set_param_medium);
  841. void rndis_add_hdr(struct sk_buff *skb)
  842. {
  843. struct rndis_packet_msg_type *header;
  844. if (!skb)
  845. return;
  846. header = skb_push(skb, sizeof(*header));
  847. memset(header, 0, sizeof *header);
  848. header->MessageType = cpu_to_le32(RNDIS_MSG_PACKET);
  849. header->MessageLength = cpu_to_le32(skb->len);
  850. header->DataOffset = cpu_to_le32(36);
  851. header->DataLength = cpu_to_le32(skb->len - sizeof(*header));
  852. }
  853. EXPORT_SYMBOL_GPL(rndis_add_hdr);
  854. void rndis_free_response(struct rndis_params *params, u8 *buf)
  855. {
  856. rndis_resp_t *r, *n;
  857. spin_lock(&params->resp_lock);
  858. list_for_each_entry_safe(r, n, &params->resp_queue, list) {
  859. if (r->buf == buf) {
  860. list_del(&r->list);
  861. kfree(r);
  862. }
  863. }
  864. spin_unlock(&params->resp_lock);
  865. }
  866. EXPORT_SYMBOL_GPL(rndis_free_response);
  867. u8 *rndis_get_next_response(struct rndis_params *params, u32 *length)
  868. {
  869. rndis_resp_t *r, *n;
  870. if (!length) return NULL;
  871. spin_lock(&params->resp_lock);
  872. list_for_each_entry_safe(r, n, &params->resp_queue, list) {
  873. if (!r->send) {
  874. r->send = 1;
  875. *length = r->length;
  876. spin_unlock(&params->resp_lock);
  877. return r->buf;
  878. }
  879. }
  880. spin_unlock(&params->resp_lock);
  881. return NULL;
  882. }
  883. EXPORT_SYMBOL_GPL(rndis_get_next_response);
  884. static rndis_resp_t *rndis_add_response(struct rndis_params *params, u32 length)
  885. {
  886. rndis_resp_t *r;
  887. /* NOTE: this gets copied into ether.c USB_BUFSIZ bytes ... */
  888. r = kmalloc(sizeof(rndis_resp_t) + length, GFP_ATOMIC);
  889. if (!r) return NULL;
  890. r->buf = (u8 *)(r + 1);
  891. r->length = length;
  892. r->send = 0;
  893. spin_lock(&params->resp_lock);
  894. list_add_tail(&r->list, &params->resp_queue);
  895. spin_unlock(&params->resp_lock);
  896. return r;
  897. }
  898. int rndis_rm_hdr(struct gether *port,
  899. struct sk_buff *skb,
  900. struct sk_buff_head *list)
  901. {
  902. /* tmp points to a struct rndis_packet_msg_type */
  903. __le32 *tmp = (void *)skb->data;
  904. /* MessageType, MessageLength */
  905. if (cpu_to_le32(RNDIS_MSG_PACKET)
  906. != get_unaligned(tmp++)) {
  907. dev_kfree_skb_any(skb);
  908. return -EINVAL;
  909. }
  910. tmp++;
  911. /* DataOffset, DataLength */
  912. if (!skb_pull(skb, get_unaligned_le32(tmp++) + 8)) {
  913. dev_kfree_skb_any(skb);
  914. return -EOVERFLOW;
  915. }
  916. skb_trim(skb, get_unaligned_le32(tmp++));
  917. skb_queue_tail(list, skb);
  918. return 0;
  919. }
  920. EXPORT_SYMBOL_GPL(rndis_rm_hdr);
  921. #ifdef CONFIG_USB_GADGET_DEBUG_FILES
  922. static int rndis_proc_show(struct seq_file *m, void *v)
  923. {
  924. rndis_params *param = m->private;
  925. seq_printf(m,
  926. "Config Nr. %d\n"
  927. "used : %s\n"
  928. "state : %s\n"
  929. "medium : 0x%08X\n"
  930. "speed : %u\n"
  931. "cable : %s\n"
  932. "vendor ID : 0x%08X\n"
  933. "vendor : %s\n",
  934. param->confignr, (param->used) ? "y" : "n",
  935. ({ char *s = "?";
  936. switch (param->state) {
  937. case RNDIS_UNINITIALIZED:
  938. s = "RNDIS_UNINITIALIZED"; break;
  939. case RNDIS_INITIALIZED:
  940. s = "RNDIS_INITIALIZED"; break;
  941. case RNDIS_DATA_INITIALIZED:
  942. s = "RNDIS_DATA_INITIALIZED"; break;
  943. } s; }),
  944. param->medium,
  945. (param->media_state) ? 0 : param->speed*100,
  946. (param->media_state) ? "disconnected" : "connected",
  947. param->vendorID, param->vendorDescr);
  948. return 0;
  949. }
  950. static ssize_t rndis_proc_write(struct file *file, const char __user *buffer,
  951. size_t count, loff_t *ppos)
  952. {
  953. rndis_params *p = pde_data(file_inode(file));
  954. u32 speed = 0;
  955. int i, fl_speed = 0;
  956. for (i = 0; i < count; i++) {
  957. char c;
  958. if (get_user(c, buffer))
  959. return -EFAULT;
  960. switch (c) {
  961. case '0':
  962. case '1':
  963. case '2':
  964. case '3':
  965. case '4':
  966. case '5':
  967. case '6':
  968. case '7':
  969. case '8':
  970. case '9':
  971. fl_speed = 1;
  972. speed = speed * 10 + c - '0';
  973. break;
  974. case 'C':
  975. case 'c':
  976. rndis_signal_connect(p);
  977. break;
  978. case 'D':
  979. case 'd':
  980. rndis_signal_disconnect(p);
  981. break;
  982. default:
  983. if (fl_speed) p->speed = speed;
  984. else pr_debug("%c is not valid\n", c);
  985. break;
  986. }
  987. buffer++;
  988. }
  989. return count;
  990. }
  991. static int rndis_proc_open(struct inode *inode, struct file *file)
  992. {
  993. return single_open(file, rndis_proc_show, pde_data(inode));
  994. }
  995. static const struct proc_ops rndis_proc_ops = {
  996. .proc_open = rndis_proc_open,
  997. .proc_read = seq_read,
  998. .proc_lseek = seq_lseek,
  999. .proc_release = single_release,
  1000. .proc_write = rndis_proc_write,
  1001. };
  1002. #define NAME_TEMPLATE "driver/rndis-%03d"
  1003. #endif /* CONFIG_USB_GADGET_DEBUG_FILES */