aer_inject.c 12.7 KB
Newer Older
1
// SPDX-License-Identifier: GPL-2.0
H
Huang Ying 已提交
2
/*
3
 * PCIe AER software error injection support.
H
Huang Ying 已提交
4
 *
5
 * Debuging PCIe AER code is quite difficult because it is hard to
H
Huang Ying 已提交
6 7 8 9 10 11 12 13 14
 * trigger various real hardware errors. Software based error
 * injection can fake almost all kinds of errors with the help of a
 * user space helper tool aer-inject, which can be gotten from:
 *   http://www.kernel.org/pub/linux/utils/pci/aer-inject/
 *
 * Copyright 2009 Intel Corporation.
 *     Huang Ying <ying.huang@intel.com>
 */

15 16
#define dev_fmt(fmt) "aer_inject: " fmt

H
Huang Ying 已提交
17 18
#include <linux/module.h>
#include <linux/init.h>
19
#include <linux/irq.h>
H
Huang Ying 已提交
20 21
#include <linux/miscdevice.h>
#include <linux/pci.h>
22
#include <linux/slab.h>
H
Huang Ying 已提交
23
#include <linux/fs.h>
24
#include <linux/uaccess.h>
25
#include <linux/stddef.h>
26
#include <linux/device.h>
27

28
#include "portdrv.h"
H
Huang Ying 已提交
29

30
/* Override the existing corrected and uncorrected error masks */
31
static bool aer_mask_override;
32 33
module_param(aer_mask_override, bool, 0);

34
struct aer_error_inj {
H
Huang Ying 已提交
35 36 37 38 39 40 41 42 43
	u8 bus;
	u8 dev;
	u8 fn;
	u32 uncor_status;
	u32 cor_status;
	u32 header_log0;
	u32 header_log1;
	u32 header_log2;
	u32 header_log3;
44
	u32 domain;
H
Huang Ying 已提交
45 46
};

47
struct aer_error {
H
Huang Ying 已提交
48
	struct list_head list;
49
	u32 domain;
H
Huang Ying 已提交
50 51 52 53 54 55 56 57 58 59 60 61 62 63
	unsigned int bus;
	unsigned int devfn;
	int pos_cap_err;

	u32 uncor_status;
	u32 cor_status;
	u32 header_log0;
	u32 header_log1;
	u32 header_log2;
	u32 header_log3;
	u32 root_status;
	u32 source_id;
};

64
struct pci_bus_ops {
H
Huang Ying 已提交
65 66 67 68 69 70 71 72 73 74 75 76
	struct list_head list;
	struct pci_bus *bus;
	struct pci_ops *ops;
};

static LIST_HEAD(einjected);

static LIST_HEAD(pci_bus_ops_list);

/* Protect einjected and pci_bus_ops_list */
static DEFINE_SPINLOCK(inject_lock);

77
static void aer_error_init(struct aer_error *err, u32 domain,
78 79
			   unsigned int bus, unsigned int devfn,
			   int pos_cap_err)
H
Huang Ying 已提交
80 81
{
	INIT_LIST_HEAD(&err->list);
82
	err->domain = domain;
H
Huang Ying 已提交
83 84 85 86 87 88
	err->bus = bus;
	err->devfn = devfn;
	err->pos_cap_err = pos_cap_err;
}

/* inject_lock must be held before calling */
89
static struct aer_error *__find_aer_error(u32 domain, unsigned int bus,
90
					  unsigned int devfn)
H
Huang Ying 已提交
91 92 93 94
{
	struct aer_error *err;

	list_for_each_entry(err, &einjected, list) {
95 96 97
		if (domain == err->domain &&
		    bus == err->bus &&
		    devfn == err->devfn)
H
Huang Ying 已提交
98 99 100 101 102 103 104 105
			return err;
	}
	return NULL;
}

/* inject_lock must be held before calling */
static struct aer_error *__find_aer_error_by_dev(struct pci_dev *dev)
{
106 107 108
	int domain = pci_domain_nr(dev->bus);
	if (domain < 0)
		return NULL;
109
	return __find_aer_error(domain, dev->bus->number, dev->devfn);
H
Huang Ying 已提交
110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126
}

/* inject_lock must be held before calling */
static struct pci_ops *__find_pci_bus_ops(struct pci_bus *bus)
{
	struct pci_bus_ops *bus_ops;

	list_for_each_entry(bus_ops, &pci_bus_ops_list, list) {
		if (bus_ops->bus == bus)
			return bus_ops->ops;
	}
	return NULL;
}

static struct pci_bus_ops *pci_bus_ops_pop(void)
{
	unsigned long flags;
127
	struct pci_bus_ops *bus_ops;
H
Huang Ying 已提交
128 129

	spin_lock_irqsave(&inject_lock, flags);
130 131 132 133
	bus_ops = list_first_entry_or_null(&pci_bus_ops_list,
					   struct pci_bus_ops, list);
	if (bus_ops)
		list_del(&bus_ops->list);
H
Huang Ying 已提交
134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162
	spin_unlock_irqrestore(&inject_lock, flags);
	return bus_ops;
}

static u32 *find_pci_config_dword(struct aer_error *err, int where,
				  int *prw1cs)
{
	int rw1cs = 0;
	u32 *target = NULL;

	if (err->pos_cap_err == -1)
		return NULL;

	switch (where - err->pos_cap_err) {
	case PCI_ERR_UNCOR_STATUS:
		target = &err->uncor_status;
		rw1cs = 1;
		break;
	case PCI_ERR_COR_STATUS:
		target = &err->cor_status;
		rw1cs = 1;
		break;
	case PCI_ERR_HEADER_LOG:
		target = &err->header_log0;
		break;
	case PCI_ERR_HEADER_LOG+4:
		target = &err->header_log1;
		break;
	case PCI_ERR_HEADER_LOG+8:
163
		target = &err->header_log2;
H
Huang Ying 已提交
164 165 166 167 168 169 170 171
		break;
	case PCI_ERR_HEADER_LOG+12:
		target = &err->header_log3;
		break;
	case PCI_ERR_ROOT_STATUS:
		target = &err->root_status;
		rw1cs = 1;
		break;
172
	case PCI_ERR_ROOT_ERR_SRC:
H
Huang Ying 已提交
173 174 175 176 177 178 179 180
		target = &err->source_id;
		break;
	}
	if (prw1cs)
		*prw1cs = rw1cs;
	return target;
}

181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216
static int aer_inj_read(struct pci_bus *bus, unsigned int devfn, int where,
			int size, u32 *val)
{
	struct pci_ops *ops, *my_ops;
	int rv;

	ops = __find_pci_bus_ops(bus);
	if (!ops)
		return -1;

	my_ops = bus->ops;
	bus->ops = ops;
	rv = ops->read(bus, devfn, where, size, val);
	bus->ops = my_ops;

	return rv;
}

static int aer_inj_write(struct pci_bus *bus, unsigned int devfn, int where,
			 int size, u32 val)
{
	struct pci_ops *ops, *my_ops;
	int rv;

	ops = __find_pci_bus_ops(bus);
	if (!ops)
		return -1;

	my_ops = bus->ops;
	bus->ops = ops;
	rv = ops->write(bus, devfn, where, size, val);
	bus->ops = my_ops;

	return rv;
}

217 218
static int aer_inj_read_config(struct pci_bus *bus, unsigned int devfn,
			       int where, int size, u32 *val)
H
Huang Ying 已提交
219 220 221 222
{
	u32 *sim;
	struct aer_error *err;
	unsigned long flags;
223
	int domain;
224
	int rv;
H
Huang Ying 已提交
225 226 227 228

	spin_lock_irqsave(&inject_lock, flags);
	if (size != sizeof(u32))
		goto out;
229 230 231
	domain = pci_domain_nr(bus);
	if (domain < 0)
		goto out;
232
	err = __find_aer_error(domain, bus->number, devfn);
H
Huang Ying 已提交
233 234 235 236 237 238 239 240 241 242
	if (!err)
		goto out;

	sim = find_pci_config_dword(err, where, NULL);
	if (sim) {
		*val = *sim;
		spin_unlock_irqrestore(&inject_lock, flags);
		return 0;
	}
out:
243
	rv = aer_inj_read(bus, devfn, where, size, val);
H
Huang Ying 已提交
244
	spin_unlock_irqrestore(&inject_lock, flags);
245
	return rv;
H
Huang Ying 已提交
246 247
}

248 249
static int aer_inj_write_config(struct pci_bus *bus, unsigned int devfn,
				int where, int size, u32 val)
H
Huang Ying 已提交
250 251 252 253 254
{
	u32 *sim;
	struct aer_error *err;
	unsigned long flags;
	int rw1cs;
255
	int domain;
256
	int rv;
H
Huang Ying 已提交
257 258 259 260

	spin_lock_irqsave(&inject_lock, flags);
	if (size != sizeof(u32))
		goto out;
261 262 263
	domain = pci_domain_nr(bus);
	if (domain < 0)
		goto out;
264
	err = __find_aer_error(domain, bus->number, devfn);
H
Huang Ying 已提交
265 266 267 268 269 270 271 272 273 274 275 276 277
	if (!err)
		goto out;

	sim = find_pci_config_dword(err, where, &rw1cs);
	if (sim) {
		if (rw1cs)
			*sim ^= val;
		else
			*sim = val;
		spin_unlock_irqrestore(&inject_lock, flags);
		return 0;
	}
out:
278
	rv = aer_inj_write(bus, devfn, where, size, val);
H
Huang Ying 已提交
279
	spin_unlock_irqrestore(&inject_lock, flags);
280
	return rv;
H
Huang Ying 已提交
281 282
}

283 284 285
static struct pci_ops aer_inj_pci_ops = {
	.read = aer_inj_read_config,
	.write = aer_inj_write_config,
H
Huang Ying 已提交
286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305
};

static void pci_bus_ops_init(struct pci_bus_ops *bus_ops,
			     struct pci_bus *bus,
			     struct pci_ops *ops)
{
	INIT_LIST_HEAD(&bus_ops->list);
	bus_ops->bus = bus;
	bus_ops->ops = ops;
}

static int pci_bus_set_aer_ops(struct pci_bus *bus)
{
	struct pci_ops *ops;
	struct pci_bus_ops *bus_ops;
	unsigned long flags;

	bus_ops = kmalloc(sizeof(*bus_ops), GFP_KERNEL);
	if (!bus_ops)
		return -ENOMEM;
306
	ops = pci_bus_set_ops(bus, &aer_inj_pci_ops);
H
Huang Ying 已提交
307
	spin_lock_irqsave(&inject_lock, flags);
308
	if (ops == &aer_inj_pci_ops)
H
Huang Ying 已提交
309 310 311 312 313 314
		goto out;
	pci_bus_ops_init(bus_ops, bus, ops);
	list_add(&bus_ops->list, &pci_bus_ops_list);
	bus_ops = NULL;
out:
	spin_unlock_irqrestore(&inject_lock, flags);
315
	kfree(bus_ops);
H
Huang Ying 已提交
316 317 318 319 320 321 322 323 324
	return 0;
}

static int aer_inject(struct aer_error_inj *einj)
{
	struct aer_error *err, *rperr;
	struct aer_error *err_alloc = NULL, *rperr_alloc = NULL;
	struct pci_dev *dev, *rpdev;
	struct pcie_device *edev;
325
	struct device *device;
H
Huang Ying 已提交
326 327 328
	unsigned long flags;
	unsigned int devfn = PCI_DEVFN(einj->dev, einj->fn);
	int pos_cap_err, rp_pos_cap_err;
329
	u32 sever, cor_mask, uncor_mask, cor_mask_orig = 0, uncor_mask_orig = 0;
H
Huang Ying 已提交
330 331
	int ret = 0;

332
	dev = pci_get_domain_bus_and_slot(einj->domain, einj->bus, devfn);
H
Huang Ying 已提交
333
	if (!dev)
334
		return -ENODEV;
H
Huang Ying 已提交
335 336
	rpdev = pcie_find_root_port(dev);
	if (!rpdev) {
337
		pci_err(dev, "Root port not found\n");
338
		ret = -ENODEV;
H
Huang Ying 已提交
339 340 341
		goto out_put;
	}

342
	pos_cap_err = dev->aer_cap;
H
Huang Ying 已提交
343
	if (!pos_cap_err) {
344
		pci_err(dev, "Device doesn't support AER\n");
345
		ret = -EPROTONOSUPPORT;
H
Huang Ying 已提交
346 347 348
		goto out_put;
	}
	pci_read_config_dword(dev, pos_cap_err + PCI_ERR_UNCOR_SEVER, &sever);
349 350 351
	pci_read_config_dword(dev, pos_cap_err + PCI_ERR_COR_MASK, &cor_mask);
	pci_read_config_dword(dev, pos_cap_err + PCI_ERR_UNCOR_MASK,
			      &uncor_mask);
H
Huang Ying 已提交
352

353
	rp_pos_cap_err = rpdev->aer_cap;
H
Huang Ying 已提交
354
	if (!rp_pos_cap_err) {
355
		pci_err(rpdev, "Root port doesn't support AER\n");
356
		ret = -EPROTONOSUPPORT;
H
Huang Ying 已提交
357 358 359 360 361 362 363 364 365 366 367 368 369 370
		goto out_put;
	}

	err_alloc =  kzalloc(sizeof(struct aer_error), GFP_KERNEL);
	if (!err_alloc) {
		ret = -ENOMEM;
		goto out_put;
	}
	rperr_alloc =  kzalloc(sizeof(struct aer_error), GFP_KERNEL);
	if (!rperr_alloc) {
		ret = -ENOMEM;
		goto out_put;
	}

371 372 373 374 375 376 377 378 379 380 381 382
	if (aer_mask_override) {
		cor_mask_orig = cor_mask;
		cor_mask &= !(einj->cor_status);
		pci_write_config_dword(dev, pos_cap_err + PCI_ERR_COR_MASK,
				       cor_mask);

		uncor_mask_orig = uncor_mask;
		uncor_mask &= !(einj->uncor_status);
		pci_write_config_dword(dev, pos_cap_err + PCI_ERR_UNCOR_MASK,
				       uncor_mask);
	}

H
Huang Ying 已提交
383 384 385 386 387 388
	spin_lock_irqsave(&inject_lock, flags);

	err = __find_aer_error_by_dev(dev);
	if (!err) {
		err = err_alloc;
		err_alloc = NULL;
389 390
		aer_error_init(err, einj->domain, einj->bus, devfn,
			       pos_cap_err);
H
Huang Ying 已提交
391 392 393 394 395 396 397 398 399
		list_add(&err->list, &einjected);
	}
	err->uncor_status |= einj->uncor_status;
	err->cor_status |= einj->cor_status;
	err->header_log0 = einj->header_log0;
	err->header_log1 = einj->header_log1;
	err->header_log2 = einj->header_log2;
	err->header_log3 = einj->header_log3;

400 401
	if (!aer_mask_override && einj->cor_status &&
	    !(einj->cor_status & ~cor_mask)) {
402
		ret = -EINVAL;
403
		pci_warn(dev, "The correctable error(s) is masked by device\n");
404 405 406
		spin_unlock_irqrestore(&inject_lock, flags);
		goto out_put;
	}
407 408
	if (!aer_mask_override && einj->uncor_status &&
	    !(einj->uncor_status & ~uncor_mask)) {
409
		ret = -EINVAL;
410
		pci_warn(dev, "The uncorrectable error(s) is masked by device\n");
411 412 413 414
		spin_unlock_irqrestore(&inject_lock, flags);
		goto out_put;
	}

H
Huang Ying 已提交
415 416 417 418
	rperr = __find_aer_error_by_dev(rpdev);
	if (!rperr) {
		rperr = rperr_alloc;
		rperr_alloc = NULL;
419 420
		aer_error_init(rperr, pci_domain_nr(rpdev->bus),
			       rpdev->bus->number, rpdev->devfn,
H
Huang Ying 已提交
421 422 423 424 425 426 427 428 429 430 431 432 433 434 435 436 437 438 439 440 441 442 443 444 445 446
			       rp_pos_cap_err);
		list_add(&rperr->list, &einjected);
	}
	if (einj->cor_status) {
		if (rperr->root_status & PCI_ERR_ROOT_COR_RCV)
			rperr->root_status |= PCI_ERR_ROOT_MULTI_COR_RCV;
		else
			rperr->root_status |= PCI_ERR_ROOT_COR_RCV;
		rperr->source_id &= 0xffff0000;
		rperr->source_id |= (einj->bus << 8) | devfn;
	}
	if (einj->uncor_status) {
		if (rperr->root_status & PCI_ERR_ROOT_UNCOR_RCV)
			rperr->root_status |= PCI_ERR_ROOT_MULTI_UNCOR_RCV;
		if (sever & einj->uncor_status) {
			rperr->root_status |= PCI_ERR_ROOT_FATAL_RCV;
			if (!(rperr->root_status & PCI_ERR_ROOT_UNCOR_RCV))
				rperr->root_status |= PCI_ERR_ROOT_FIRST_FATAL;
		} else
			rperr->root_status |= PCI_ERR_ROOT_NONFATAL_RCV;
		rperr->root_status |= PCI_ERR_ROOT_UNCOR_RCV;
		rperr->source_id &= 0x0000ffff;
		rperr->source_id |= ((einj->bus << 8) | devfn) << 16;
	}
	spin_unlock_irqrestore(&inject_lock, flags);

447 448 449 450 451 452 453
	if (aer_mask_override) {
		pci_write_config_dword(dev, pos_cap_err + PCI_ERR_COR_MASK,
				       cor_mask_orig);
		pci_write_config_dword(dev, pos_cap_err + PCI_ERR_UNCOR_MASK,
				       uncor_mask_orig);
	}

H
Huang Ying 已提交
454 455 456 457 458 459 460
	ret = pci_bus_set_aer_ops(dev->bus);
	if (ret)
		goto out_put;
	ret = pci_bus_set_aer_ops(rpdev->bus);
	if (ret)
		goto out_put;

461 462 463
	device = pcie_port_find_device(rpdev, PCIE_PORT_SERVICE_AER);
	if (device) {
		edev = to_pcie_device(device);
464
		if (!get_service_data(edev)) {
465
			pci_warn(edev->port, "AER service is not initialized\n");
466
			ret = -EPROTONOSUPPORT;
467 468
			goto out_put;
		}
469
		pci_info(edev->port, "Injecting errors %08x/%08x into device %s\n",
470
			 einj->cor_status, einj->uncor_status, pci_name(dev));
471 472 473
		local_irq_disable();
		generic_handle_irq(edev->irq);
		local_irq_enable();
474
	} else {
475
		pci_err(rpdev, "AER device not found\n");
476
		ret = -ENODEV;
477
	}
H
Huang Ying 已提交
478
out_put:
479 480
	kfree(err_alloc);
	kfree(rperr_alloc);
H
Huang Ying 已提交
481 482 483 484 485 486 487 488 489 490 491 492
	pci_dev_put(dev);
	return ret;
}

static ssize_t aer_inject_write(struct file *filp, const char __user *ubuf,
				size_t usize, loff_t *off)
{
	struct aer_error_inj einj;
	int ret;

	if (!capable(CAP_SYS_ADMIN))
		return -EPERM;
493 494
	if (usize < offsetof(struct aer_error_inj, domain) ||
	    usize > sizeof(einj))
H
Huang Ying 已提交
495 496
		return -EINVAL;

497
	memset(&einj, 0, sizeof(einj));
H
Huang Ying 已提交
498 499 500 501 502 503 504 505 506 507
	if (copy_from_user(&einj, ubuf, usize))
		return -EFAULT;

	ret = aer_inject(&einj);
	return ret ? ret : usize;
}

static const struct file_operations aer_inject_fops = {
	.write = aer_inject_write,
	.owner = THIS_MODULE,
508
	.llseek = noop_llseek,
H
Huang Ying 已提交
509 510 511 512 513 514 515 516 517 518 519 520 521 522 523 524 525 526 527 528 529 530 531 532 533 534 535
};

static struct miscdevice aer_inject_device = {
	.minor = MISC_DYNAMIC_MINOR,
	.name = "aer_inject",
	.fops = &aer_inject_fops,
};

static int __init aer_inject_init(void)
{
	return misc_register(&aer_inject_device);
}

static void __exit aer_inject_exit(void)
{
	struct aer_error *err, *err_next;
	unsigned long flags;
	struct pci_bus_ops *bus_ops;

	misc_deregister(&aer_inject_device);

	while ((bus_ops = pci_bus_ops_pop())) {
		pci_bus_set_ops(bus_ops->bus, bus_ops->ops);
		kfree(bus_ops);
	}

	spin_lock_irqsave(&inject_lock, flags);
536
	list_for_each_entry_safe(err, err_next, &einjected, list) {
H
Huang Ying 已提交
537 538 539 540 541 542 543 544 545
		list_del(&err->list);
		kfree(err);
	}
	spin_unlock_irqrestore(&inject_lock, flags);
}

module_init(aer_inject_init);
module_exit(aer_inject_exit);

546
MODULE_DESCRIPTION("PCIe AER software error injector");
H
Huang Ying 已提交
547
MODULE_LICENSE("GPL");