mce_64.c 27.1 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3
/*
 * Machine check handler.
 * K8 parts Copyright 2002,2003 Andi Kleen, SuSE Labs.
4 5
 * Rest from unknown author(s).
 * 2004 Andi Kleen. Rewrote most of it.
6 7
 * Copyright 2008 Intel Corporation
 * Author: Andi Kleen
L
Linus Torvalds 已提交
8 9 10 11 12 13
 */

#include <linux/init.h>
#include <linux/types.h>
#include <linux/kernel.h>
#include <linux/sched.h>
A
Arnd Bergmann 已提交
14
#include <linux/smp_lock.h>
L
Linus Torvalds 已提交
15 16 17 18 19 20
#include <linux/string.h>
#include <linux/rcupdate.h>
#include <linux/kallsyms.h>
#include <linux/sysdev.h>
#include <linux/miscdevice.h>
#include <linux/fs.h>
21
#include <linux/capability.h>
22 23
#include <linux/cpu.h>
#include <linux/percpu.h>
24 25
#include <linux/poll.h>
#include <linux/thread_info.h>
26
#include <linux/ctype.h>
27
#include <linux/kmod.h>
28
#include <linux/kdebug.h>
29 30
#include <linux/kobject.h>
#include <linux/sysfs.h>
31
#include <linux/ratelimit.h>
32
#include <asm/processor.h>
L
Linus Torvalds 已提交
33 34 35
#include <asm/msr.h>
#include <asm/mce.h>
#include <asm/uaccess.h>
36
#include <asm/smp.h>
37
#include <asm/idle.h>
L
Linus Torvalds 已提交
38 39

#define MISC_MCELOG_MINOR 227
40

41 42
atomic_t mce_entry;

L
Linus Torvalds 已提交
43 44
static int mce_dont_init;

45 46 47 48 49 50 51
/*
 * Tolerant levels:
 *   0: always panic on uncorrected errors, log corrected errors
 *   1: panic or SIGBUS on uncorrected errors, log corrected errors
 *   2: SIGBUS or log uncorrected errors (if possible), log corrected errors
 *   3: never panic or SIGBUS, log all errors (for testing only)
 */
L
Linus Torvalds 已提交
52 53
static int tolerant = 1;
static int banks;
54
static u64 *bank;
55
static unsigned long notify_user;
56
static int rip_msr;
57
static int mce_bootlog = -1;
58 59 60 61
static atomic_t mce_events;

static char trigger[128];
static char *trigger_argv[2] = { trigger, NULL };
L
Linus Torvalds 已提交
62

63 64
static DECLARE_WAIT_QUEUE_HEAD(mce_wait);

65 66 67 68 69
/* MCA banks polled by the period polling timer for corrected events */
DEFINE_PER_CPU(mce_banks_t, mce_poll_banks) = {
	[0 ... BITS_TO_LONGS(MAX_NR_BANKS)-1] = ~0UL
};

70 71 72 73 74 75 76 77
/* Do initial initialization of a struct mce */
void mce_setup(struct mce *m)
{
	memset(m, 0, sizeof(struct mce));
	m->cpu = smp_processor_id();
	rdtscll(m->tsc);
}

L
Linus Torvalds 已提交
78 79 80 81 82 83
/*
 * Lockless MCE logging infrastructure.
 * This avoids deadlocks on printk locks without having to break locks. Also
 * separate MCEs from kernel messages to avoid bogus bug reports.
 */

84
static struct mce_log mcelog = {
L
Linus Torvalds 已提交
85 86
	MCE_LOG_SIGNATURE,
	MCE_LOG_LEN,
87
};
L
Linus Torvalds 已提交
88 89 90 91

void mce_log(struct mce *mce)
{
	unsigned next, entry;
92
	atomic_inc(&mce_events);
L
Linus Torvalds 已提交
93
	mce->finished = 0;
M
Mike Waychison 已提交
94
	wmb();
L
Linus Torvalds 已提交
95 96
	for (;;) {
		entry = rcu_dereference(mcelog.next);
97 98 99 100
		for (;;) {
			/* When the buffer fills up discard new entries. Assume
			   that the earlier errors are the more interesting. */
			if (entry >= MCE_LOG_LEN) {
101
				set_bit(MCE_OVERFLOW, (unsigned long *)&mcelog.flags);
102 103 104 105 106 107 108
				return;
			}
			/* Old left over entry. Skip. */
			if (mcelog.entry[entry].finished) {
				entry++;
				continue;
			}
M
Mike Waychison 已提交
109
			break;
L
Linus Torvalds 已提交
110 111 112 113 114 115 116
		}
		smp_rmb();
		next = entry + 1;
		if (cmpxchg(&mcelog.next, entry, next) == entry)
			break;
	}
	memcpy(mcelog.entry + entry, mce, sizeof(struct mce));
M
Mike Waychison 已提交
117
	wmb();
L
Linus Torvalds 已提交
118
	mcelog.entry[entry].finished = 1;
M
Mike Waychison 已提交
119
	wmb();
L
Linus Torvalds 已提交
120

121
	set_bit(0, &notify_user);
L
Linus Torvalds 已提交
122 123 124 125 126
}

static void print_mce(struct mce *m)
{
	printk(KERN_EMERG "\n"
127
	       KERN_EMERG "HARDWARE ERROR\n"
L
Linus Torvalds 已提交
128 129 130
	       KERN_EMERG
	       "CPU %d: Machine Check Exception: %16Lx Bank %d: %016Lx\n",
	       m->cpu, m->mcgstatus, m->bank, m->status);
131
	if (m->ip) {
132
		printk(KERN_EMERG "RIP%s %02x:<%016Lx> ",
L
Linus Torvalds 已提交
133
		       !(m->mcgstatus & MCG_STATUS_EIPV) ? " !INEXACT!" : "",
134
		       m->cs, m->ip);
L
Linus Torvalds 已提交
135
		if (m->cs == __KERNEL_CS)
136
			print_symbol("{%s}", m->ip);
L
Linus Torvalds 已提交
137 138
		printk("\n");
	}
139
	printk(KERN_EMERG "TSC %llx ", m->tsc);
L
Linus Torvalds 已提交
140
	if (m->addr)
141
		printk("ADDR %llx ", m->addr);
L
Linus Torvalds 已提交
142
	if (m->misc)
143
		printk("MISC %llx ", m->misc);
L
Linus Torvalds 已提交
144
	printk("\n");
145
	printk(KERN_EMERG "This is not a software problem!\n");
146 147
	printk(KERN_EMERG "Run through mcelog --ascii to decode "
	       "and contact your hardware vendor\n");
L
Linus Torvalds 已提交
148 149 150
}

static void mce_panic(char *msg, struct mce *backup, unsigned long start)
151
{
L
Linus Torvalds 已提交
152
	int i;
153

L
Linus Torvalds 已提交
154 155 156
	oops_begin();
	for (i = 0; i < MCE_LOG_LEN; i++) {
		unsigned long tsc = mcelog.entry[i].tsc;
157

L
Linus Torvalds 已提交
158 159
		if (time_before(tsc, start))
			continue;
160
		print_mce(&mcelog.entry[i]);
L
Linus Torvalds 已提交
161 162 163 164 165
		if (backup && mcelog.entry[i].tsc == backup->tsc)
			backup = NULL;
	}
	if (backup)
		print_mce(backup);
166
	panic(msg);
167
}
L
Linus Torvalds 已提交
168

A
Andi Kleen 已提交
169
int mce_available(struct cpuinfo_x86 *c)
L
Linus Torvalds 已提交
170
{
171 172
	if (mce_dont_init)
		return 0;
173
	return cpu_has(c, X86_FEATURE_MCE) && cpu_has(c, X86_FEATURE_MCA);
L
Linus Torvalds 已提交
174 175
}

176 177 178
static inline void mce_get_rip(struct mce *m, struct pt_regs *regs)
{
	if (regs && (m->mcgstatus & MCG_STATUS_RIPV)) {
179
		m->ip = regs->ip;
180 181
		m->cs = regs->cs;
	} else {
182
		m->ip = 0;
183 184 185 186 187
		m->cs = 0;
	}
	if (rip_msr) {
		/* Assume the RIP in the MSR is exact. Is this true? */
		m->mcgstatus |= MCG_STATUS_EIPV;
188
		rdmsrl(rip_msr, m->ip);
189 190 191 192
		m->cs = 0;
	}
}

193
/*
194 195 196 197 198
 * Poll for corrected events or events that happened before reset.
 * Those are just logged through /dev/mcelog.
 *
 * This is executed in standard interrupt context.
 */
199
void machine_check_poll(enum mcp_flags flags, mce_banks_t *b)
200 201 202 203 204 205 206 207
{
	struct mce m;
	int i;

	mce_setup(&m);

	rdmsrl(MSR_IA32_MCG_STATUS, m.mcgstatus);
	for (i = 0; i < banks; i++) {
208
		if (!bank[i] || !test_bit(i, *b))
209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264
			continue;

		m.misc = 0;
		m.addr = 0;
		m.bank = i;
		m.tsc = 0;

		barrier();
		rdmsrl(MSR_IA32_MC0_STATUS + i*4, m.status);
		if (!(m.status & MCI_STATUS_VAL))
			continue;

		/*
		 * Uncorrected events are handled by the exception handler
		 * when it is enabled. But when the exception is disabled log
		 * everything.
		 *
		 * TBD do the same check for MCI_STATUS_EN here?
		 */
		if ((m.status & MCI_STATUS_UC) && !(flags & MCP_UC))
			continue;

		if (m.status & MCI_STATUS_MISCV)
			rdmsrl(MSR_IA32_MC0_MISC + i*4, m.misc);
		if (m.status & MCI_STATUS_ADDRV)
			rdmsrl(MSR_IA32_MC0_ADDR + i*4, m.addr);

		if (!(flags & MCP_TIMESTAMP))
			m.tsc = 0;
		/*
		 * Don't get the IP here because it's unlikely to
		 * have anything to do with the actual error location.
		 */

		mce_log(&m);
		add_taint(TAINT_MACHINE_CHECK);

		/*
		 * Clear state for this bank.
		 */
		wrmsrl(MSR_IA32_MC0_STATUS+4*i, 0);
	}

	/*
	 * Don't clear MCG_STATUS here because it's only defined for
	 * exceptions.
	 */
}

/*
 * The actual machine check handler. This only handles real
 * exceptions when something got corrupted coming in through int 18.
 *
 * This is executed in NMI context not subject to normal locking rules. This
 * implies that most kernel services cannot be safely used. Don't even
 * think about putting a printk in there!
L
Linus Torvalds 已提交
265 266 267 268 269 270 271
 */
void do_machine_check(struct pt_regs * regs, long error_code)
{
	struct mce m, panicm;
	u64 mcestart = 0;
	int i;
	int panicm_found = 0;
272 273 274 275 276 277 278 279 280 281
	/*
	 * If no_way_out gets set, there is no safe way to recover from this
	 * MCE.  If tolerant is cranked up, we'll try anyway.
	 */
	int no_way_out = 0;
	/*
	 * If kill_it gets set, there might be a way to recover from this
	 * error.
	 */
	int kill_it = 0;
282
	DECLARE_BITMAP(toclear, MAX_NR_BANKS);
L
Linus Torvalds 已提交
283

284 285
	atomic_inc(&mce_entry);

286
	if (notify_die(DIE_NMI, "machine check", regs, error_code,
287
			   18, SIGKILL) == NOTIFY_STOP)
288 289
		goto out2;
	if (!banks)
290
		goto out2;
L
Linus Torvalds 已提交
291

292 293
	mce_setup(&m);

L
Linus Torvalds 已提交
294
	rdmsrl(MSR_IA32_MCG_STATUS, m.mcgstatus);
295
	/* if the restart IP is not valid, we're done for */
L
Linus Torvalds 已提交
296
	if (!(m.mcgstatus & MCG_STATUS_RIPV))
297
		no_way_out = 1;
298

L
Linus Torvalds 已提交
299 300 301 302
	rdtscll(mcestart);
	barrier();

	for (i = 0; i < banks; i++) {
303
		__clear_bit(i, toclear);
304
		if (!bank[i])
L
Linus Torvalds 已提交
305
			continue;
306 307

		m.misc = 0;
L
Linus Torvalds 已提交
308 309 310 311 312 313 314
		m.addr = 0;
		m.bank = i;

		rdmsrl(MSR_IA32_MC0_STATUS + i*4, m.status);
		if ((m.status & MCI_STATUS_VAL) == 0)
			continue;

315 316 317 318 319 320 321 322 323 324 325 326 327 328
		/*
		 * Non uncorrected errors are handled by machine_check_poll
		 * Leave them alone.
		 */
		if ((m.status & MCI_STATUS_UC) == 0)
			continue;

		/*
		 * Set taint even when machine check was not enabled.
		 */
		add_taint(TAINT_MACHINE_CHECK);

		__set_bit(i, toclear);

L
Linus Torvalds 已提交
329
		if (m.status & MCI_STATUS_EN) {
330 331 332 333 334 335 336 337 338 339 340 341
			/* if PCC was set, there's no way out */
			no_way_out |= !!(m.status & MCI_STATUS_PCC);
			/*
			 * If this error was uncorrectable and there was
			 * an overflow, we're in trouble.  If no overflow,
			 * we might get away with just killing a task.
			 */
			if (m.status & MCI_STATUS_UC) {
				if (tolerant < 1 || m.status & MCI_STATUS_OVER)
					no_way_out = 1;
				kill_it = 1;
			}
342 343 344 345 346 347
		} else {
			/*
			 * Machine check event was not enabled. Clear, but
			 * ignore.
			 */
			continue;
L
Linus Torvalds 已提交
348 349 350 351 352 353 354
		}

		if (m.status & MCI_STATUS_MISCV)
			rdmsrl(MSR_IA32_MC0_MISC + i*4, m.misc);
		if (m.status & MCI_STATUS_ADDRV)
			rdmsrl(MSR_IA32_MC0_ADDR + i*4, m.addr);

355
		mce_get_rip(&m, regs);
356
		mce_log(&m);
L
Linus Torvalds 已提交
357 358 359 360 361 362 363 364 365 366 367 368 369 370

		/* Did this bank cause the exception? */
		/* Assume that the bank with uncorrectable errors did it,
		   and that there is only a single one. */
		if ((m.status & MCI_STATUS_UC) && (m.status & MCI_STATUS_EN)) {
			panicm = m;
			panicm_found = 1;
		}
	}

	/* If we didn't find an uncorrectable error, pick
	   the last one (shouldn't happen, just being safe). */
	if (!panicm_found)
		panicm = m;
371 372 373 374 375 376

	/*
	 * If we have decided that we just CAN'T continue, and the user
	 *  has not set tolerant to an insane level, give up and die.
	 */
	if (no_way_out && tolerant < 3)
L
Linus Torvalds 已提交
377
		mce_panic("Machine check", &panicm, mcestart);
378 379 380 381 382 383 384 385

	/*
	 * If the error seems to be unrecoverable, something should be
	 * done.  Try to kill as little as possible.  If we can kill just
	 * one task, do that.  If the user has set the tolerance very
	 * high, don't try to do anything at all.
	 */
	if (kill_it && tolerant < 3) {
L
Linus Torvalds 已提交
386 387
		int user_space = 0;

388 389 390 391 392
		/*
		 * If the EIPV bit is set, it means the saved IP is the
		 * instruction which caused the MCE.
		 */
		if (m.mcgstatus & MCG_STATUS_EIPV)
393
			user_space = panicm.ip && (panicm.cs & 3);
394 395 396 397 398

		/*
		 * If we know that the error was in user space, send a
		 * SIGBUS.  Otherwise, panic if tolerance is low.
		 *
399
		 * force_sig() takes an awful lot of locks and has a slight
400 401 402
		 * risk of deadlocking.
		 */
		if (user_space) {
403
			force_sig(SIGBUS, current);
404 405 406 407
		} else if (panic_on_oops || tolerant < 2) {
			mce_panic("Uncorrected machine check",
				&panicm, mcestart);
		}
L
Linus Torvalds 已提交
408 409
	}

410 411 412
	/* notify userspace ASAP */
	set_thread_flag(TIF_MCE_NOTIFY);

413
	/* the last thing we do is clear state */
414 415 416 417
	for (i = 0; i < banks; i++) {
		if (test_bit(i, toclear))
			wrmsrl(MSR_IA32_MC0_STATUS+4*i, 0);
	}
L
Linus Torvalds 已提交
418
	wrmsrl(MSR_IA32_MCG_STATUS, 0);
419 420
 out2:
	atomic_dec(&mce_entry);
L
Linus Torvalds 已提交
421 422
}

423 424 425
#ifdef CONFIG_X86_MCE_INTEL
/***
 * mce_log_therm_throt_event - Logs the thermal throttling event to mcelog
S
Simon Arlott 已提交
426
 * @cpu: The CPU on which the event occurred.
427 428 429 430 431 432 433 434 435 436
 * @status: Event status information
 *
 * This function should be called by the thermal interrupt after the
 * event has been processed and the decision was made to log the event
 * further.
 *
 * The status parameter will be saved to the 'status' field of 'struct mce'
 * and historically has been the register value of the
 * MSR_IA32_THERMAL_STATUS (Intel) msr.
 */
437
void mce_log_therm_throt_event(__u64 status)
438 439 440
{
	struct mce m;

441
	mce_setup(&m);
442 443 444 445 446 447
	m.bank = MCE_THERMAL_BANK;
	m.status = status;
	mce_log(&m);
}
#endif /* CONFIG_X86_MCE_INTEL */

L
Linus Torvalds 已提交
448
/*
449 450 451
 * Periodic polling timer for "silent" machine check errors.  If the
 * poller finds an MCE, poll 2x faster.  When the poller finds no more
 * errors, poll 2x slower (up to check_interval seconds).
L
Linus Torvalds 已提交
452 453 454
 */

static int check_interval = 5 * 60; /* 5 minutes */
455
static int next_interval; /* in jiffies */
456 457
static void mcheck_timer(unsigned long);
static DEFINE_PER_CPU(struct timer_list, mce_timer);
L
Linus Torvalds 已提交
458

459
static void mcheck_timer(unsigned long data)
L
Linus Torvalds 已提交
460
{
461 462 463 464
	struct timer_list *t = &per_cpu(mce_timer, data);

	WARN_ON(smp_processor_id() != data);

L
Linus Torvalds 已提交
465
	if (mce_available(&current_cpu_data))
466 467
		machine_check_poll(MCP_TIMESTAMP,
				&__get_cpu_var(mce_poll_banks));
L
Linus Torvalds 已提交
468 469

	/*
470 471
	 * Alert userspace if needed.  If we logged an MCE, reduce the
	 * polling interval, otherwise increase the polling interval.
L
Linus Torvalds 已提交
472
	 */
473 474 475
	if (mce_notify_user()) {
		next_interval = max(next_interval/2, HZ/100);
	} else {
476
		next_interval = min(next_interval * 2,
477
				(int)round_jiffies_relative(check_interval*HZ));
478 479
	}

480 481
	t->expires = jiffies + next_interval;
	add_timer(t);
482 483
}

484 485 486 487 488 489 490
static void mce_do_trigger(struct work_struct *work)
{
	call_usermodehelper(trigger, trigger_argv, NULL, UMH_NO_WAIT);
}

static DECLARE_WORK(mce_trigger_work, mce_do_trigger);

491
/*
492 493 494
 * Notify the user(s) about new machine check events.
 * Can be called from interrupt context, but not from machine check/NMI
 * context.
495 496 497
 */
int mce_notify_user(void)
{
498 499 500
	/* Not more than two messages every minute */
	static DEFINE_RATELIMIT_STATE(ratelimit, 60*HZ, 2);

501 502 503
	clear_thread_flag(TIF_MCE_NOTIFY);
	if (test_and_clear_bit(0, &notify_user)) {
		wake_up_interruptible(&mce_wait);
504 505 506 507 508 509 510 511

		/*
		 * There is no risk of missing notifications because
		 * work_pending is always cleared before the function is
		 * executed.
		 */
		if (trigger[0] && !work_pending(&mce_trigger_work))
			schedule_work(&mce_trigger_work);
512

513
		if (__ratelimit(&ratelimit))
514
			printk(KERN_INFO "Machine check events logged\n");
515 516

		return 1;
L
Linus Torvalds 已提交
517
	}
518 519
	return 0;
}
520

521 522 523 524 525 526 527 528 529
/* see if the idle task needs to notify userspace */
static int
mce_idle_callback(struct notifier_block *nfb, unsigned long action, void *junk)
{
	/* IDLE_END should be safe - interrupts are back on */
	if (action == IDLE_END && test_thread_flag(TIF_MCE_NOTIFY))
		mce_notify_user();

	return NOTIFY_OK;
L
Linus Torvalds 已提交
530 531
}

532 533 534
static struct notifier_block mce_idle_notifier = {
	.notifier_call = mce_idle_callback,
};
L
Linus Torvalds 已提交
535 536

static __init int periodic_mcheck_init(void)
537
{
538 539
       idle_notifier_register(&mce_idle_notifier);
       return 0;
540
}
L
Linus Torvalds 已提交
541 542
__initcall(periodic_mcheck_init);

543
/*
L
Linus Torvalds 已提交
544 545
 * Initialize Machine Checks for a CPU.
 */
546
static int mce_cap_init(void)
L
Linus Torvalds 已提交
547 548
{
	u64 cap;
549
	unsigned b;
L
Linus Torvalds 已提交
550 551

	rdmsrl(MSR_IA32_MCG_CAP, cap);
552 553 554 555 556 557 558 559 560 561 562 563 564 565 566 567
	b = cap & 0xff;
	if (b > MAX_NR_BANKS) {
		printk(KERN_WARNING
		       "MCE: Using only %u machine check banks out of %u\n",
			MAX_NR_BANKS, b);
		b = MAX_NR_BANKS;
	}

	/* Don't support asymmetric configurations today */
	WARN_ON(banks != 0 && b != banks);
	banks = b;
	if (!bank) {
		bank = kmalloc(banks * sizeof(u64), GFP_KERNEL);
		if (!bank)
			return -ENOMEM;
		memset(bank, 0xff, banks * sizeof(u64));
L
Linus Torvalds 已提交
568
	}
569

570 571 572
	/* Use accurate RIP reporting if available. */
	if ((cap & (1<<9)) && ((cap >> 16) & 0xff) >= 9)
		rip_msr = MSR_IA32_MCG_EIP;
L
Linus Torvalds 已提交
573

574 575 576 577 578 579 580
	return 0;
}

static void mce_init(void *dummy)
{
	u64 cap;
	int i;
581
	mce_banks_t all_banks;
582

583 584 585
	/*
	 * Log the machine checks left over from the previous reset.
	 */
586 587
	bitmap_fill(all_banks, MAX_NR_BANKS);
	machine_check_poll(MCP_UC, &all_banks);
L
Linus Torvalds 已提交
588 589 590

	set_in_cr4(X86_CR4_MCE);

591
	rdmsrl(MSR_IA32_MCG_CAP, cap);
L
Linus Torvalds 已提交
592 593 594 595
	if (cap & MCG_CTL_P)
		wrmsr(MSR_IA32_MCG_CTL, 0xffffffff, 0xffffffff);

	for (i = 0; i < banks; i++) {
596
		wrmsrl(MSR_IA32_MC0_CTL+4*i, bank[i]);
L
Linus Torvalds 已提交
597
		wrmsrl(MSR_IA32_MC0_STATUS+4*i, 0);
598
	}
L
Linus Torvalds 已提交
599 600 601
}

/* Add per CPU specific workarounds here */
602
static void mce_cpu_quirks(struct cpuinfo_x86 *c)
603
{
L
Linus Torvalds 已提交
604
	/* This should be disabled by the BIOS, but isn't always */
605
	if (c->x86_vendor == X86_VENDOR_AMD) {
606
		if (c->x86 == 15 && banks > 4)
607 608
			/* disable GART TBL walk error reporting, which trips off
			   incorrectly with the IOMMU & 3ware & Cerberus. */
609
			clear_bit(10, (unsigned long *)&bank[4]);
610 611 612 613
		if(c->x86 <= 17 && mce_bootlog < 0)
			/* Lots of broken BIOS around that don't clear them
			   by default and leave crap in there. Don't log. */
			mce_bootlog = 0;
L
Linus Torvalds 已提交
614
	}
615

616
}
L
Linus Torvalds 已提交
617

618
static void mce_cpu_features(struct cpuinfo_x86 *c)
L
Linus Torvalds 已提交
619 620 621 622 623
{
	switch (c->x86_vendor) {
	case X86_VENDOR_INTEL:
		mce_intel_feature_init(c);
		break;
624 625 626
	case X86_VENDOR_AMD:
		mce_amd_feature_init(c);
		break;
L
Linus Torvalds 已提交
627 628 629 630 631
	default:
		break;
	}
}

632 633 634 635 636 637 638 639 640 641
static void mce_init_timer(void)
{
	struct timer_list *t = &__get_cpu_var(mce_timer);

	/* data race harmless because everyone sets to the same value */
	if (!next_interval)
		next_interval = check_interval * HZ;
	if (!next_interval)
		return;
	setup_timer(t, mcheck_timer, smp_processor_id());
642
	t->expires = round_jiffies(jiffies + next_interval);
643 644 645
	add_timer(t);
}

646
/*
L
Linus Torvalds 已提交
647
 * Called for each booted CPU to set up machine checks.
648
 * Must be called with preempt off.
L
Linus Torvalds 已提交
649
 */
650
void __cpuinit mcheck_init(struct cpuinfo_x86 *c)
L
Linus Torvalds 已提交
651
{
652
	if (!mce_available(c))
L
Linus Torvalds 已提交
653 654
		return;

655 656 657 658 659 660
	if (mce_cap_init() < 0) {
		mce_dont_init = 1;
		return;
	}
	mce_cpu_quirks(c);

L
Linus Torvalds 已提交
661 662
	mce_init(NULL);
	mce_cpu_features(c);
663
	mce_init_timer();
L
Linus Torvalds 已提交
664 665 666 667 668 669
}

/*
 * Character device to read and clear the MCE log.
 */

T
Tim Hockin 已提交
670 671 672 673 674 675
static DEFINE_SPINLOCK(mce_state_lock);
static int open_count;	/* #times opened */
static int open_exclu;	/* already open exclusive? */

static int mce_open(struct inode *inode, struct file *file)
{
A
Arnd Bergmann 已提交
676
	lock_kernel();
T
Tim Hockin 已提交
677 678 679 680
	spin_lock(&mce_state_lock);

	if (open_exclu || (open_count && (file->f_flags & O_EXCL))) {
		spin_unlock(&mce_state_lock);
A
Arnd Bergmann 已提交
681
		unlock_kernel();
T
Tim Hockin 已提交
682 683 684 685 686 687 688 689
		return -EBUSY;
	}

	if (file->f_flags & O_EXCL)
		open_exclu = 1;
	open_count++;

	spin_unlock(&mce_state_lock);
A
Arnd Bergmann 已提交
690
	unlock_kernel();
T
Tim Hockin 已提交
691

692
	return nonseekable_open(inode, file);
T
Tim Hockin 已提交
693 694 695 696 697 698 699 700 701 702 703 704 705 706
}

static int mce_release(struct inode *inode, struct file *file)
{
	spin_lock(&mce_state_lock);

	open_count--;
	open_exclu = 0;

	spin_unlock(&mce_state_lock);

	return 0;
}

707 708
static void collect_tscs(void *data)
{
L
Linus Torvalds 已提交
709
	unsigned long *cpu_tsc = (unsigned long *)data;
710

L
Linus Torvalds 已提交
711
	rdtscll(cpu_tsc[smp_processor_id()]);
712
}
L
Linus Torvalds 已提交
713

714 715
static ssize_t mce_read(struct file *filp, char __user *ubuf, size_t usize,
			loff_t *off)
L
Linus Torvalds 已提交
716
{
717
	unsigned long *cpu_tsc;
718
	static DEFINE_MUTEX(mce_read_mutex);
719
	unsigned prev, next;
L
Linus Torvalds 已提交
720 721 722
	char __user *buf = ubuf;
	int i, err;

723
	cpu_tsc = kmalloc(nr_cpu_ids * sizeof(long), GFP_KERNEL);
724 725 726
	if (!cpu_tsc)
		return -ENOMEM;

727
	mutex_lock(&mce_read_mutex);
L
Linus Torvalds 已提交
728 729 730
	next = rcu_dereference(mcelog.next);

	/* Only supports full reads right now */
731
	if (*off != 0 || usize < MCE_LOG_LEN*sizeof(struct mce)) {
732
		mutex_unlock(&mce_read_mutex);
733
		kfree(cpu_tsc);
L
Linus Torvalds 已提交
734 735 736 737
		return -EINVAL;
	}

	err = 0;
738 739 740 741 742 743 744 745 746 747 748 749
	prev = 0;
	do {
		for (i = prev; i < next; i++) {
			unsigned long start = jiffies;

			while (!mcelog.entry[i].finished) {
				if (time_after_eq(jiffies, start + 2)) {
					memset(mcelog.entry + i, 0,
					       sizeof(struct mce));
					goto timeout;
				}
				cpu_relax();
750
			}
751 752 753 754 755 756
			smp_rmb();
			err |= copy_to_user(buf, mcelog.entry + i,
					    sizeof(struct mce));
			buf += sizeof(struct mce);
timeout:
			;
757
		}
L
Linus Torvalds 已提交
758

759 760 761 762 763
		memset(mcelog.entry + prev, 0,
		       (next - prev) * sizeof(struct mce));
		prev = next;
		next = cmpxchg(&mcelog.next, prev, 0);
	} while (next != prev);
L
Linus Torvalds 已提交
764

765
	synchronize_sched();
L
Linus Torvalds 已提交
766

767 768 769 770
	/*
	 * Collect entries that were still getting written before the
	 * synchronize.
	 */
771
	on_each_cpu(collect_tscs, cpu_tsc, 1);
772 773 774 775 776
	for (i = next; i < MCE_LOG_LEN; i++) {
		if (mcelog.entry[i].finished &&
		    mcelog.entry[i].tsc < cpu_tsc[mcelog.entry[i].cpu]) {
			err |= copy_to_user(buf, mcelog.entry+i,
					    sizeof(struct mce));
L
Linus Torvalds 已提交
777 778 779 780
			smp_rmb();
			buf += sizeof(struct mce);
			memset(&mcelog.entry[i], 0, sizeof(struct mce));
		}
781
	}
782
	mutex_unlock(&mce_read_mutex);
783
	kfree(cpu_tsc);
784
	return err ? -EFAULT : buf - ubuf;
L
Linus Torvalds 已提交
785 786
}

787 788 789 790 791 792 793 794
static unsigned int mce_poll(struct file *file, poll_table *wait)
{
	poll_wait(file, &mce_wait, wait);
	if (rcu_dereference(mcelog.next))
		return POLLIN | POLLRDNORM;
	return 0;
}

795
static long mce_ioctl(struct file *f, unsigned int cmd, unsigned long arg)
L
Linus Torvalds 已提交
796 797
{
	int __user *p = (int __user *)arg;
798

L
Linus Torvalds 已提交
799
	if (!capable(CAP_SYS_ADMIN))
800
		return -EPERM;
L
Linus Torvalds 已提交
801
	switch (cmd) {
802
	case MCE_GET_RECORD_LEN:
L
Linus Torvalds 已提交
803 804
		return put_user(sizeof(struct mce), p);
	case MCE_GET_LOG_LEN:
805
		return put_user(MCE_LOG_LEN, p);
L
Linus Torvalds 已提交
806 807
	case MCE_GETCLEAR_FLAGS: {
		unsigned flags;
808 809

		do {
L
Linus Torvalds 已提交
810
			flags = mcelog.flags;
811 812
		} while (cmpxchg(&mcelog.flags, flags, 0) != flags);
		return put_user(flags, p);
L
Linus Torvalds 已提交
813 814
	}
	default:
815 816
		return -ENOTTY;
	}
L
Linus Torvalds 已提交
817 818
}

819
static const struct file_operations mce_chrdev_ops = {
T
Tim Hockin 已提交
820 821
	.open = mce_open,
	.release = mce_release,
L
Linus Torvalds 已提交
822
	.read = mce_read,
823
	.poll = mce_poll,
824
	.unlocked_ioctl = mce_ioctl,
L
Linus Torvalds 已提交
825 826 827 828 829 830 831 832
};

static struct miscdevice mce_log_device = {
	MISC_MCELOG_MINOR,
	"mcelog",
	&mce_chrdev_ops,
};

833 834
/*
 * Old style boot options parsing. Only for compatibility.
L
Linus Torvalds 已提交
835 836 837 838
 */
static int __init mcheck_disable(char *str)
{
	mce_dont_init = 1;
839
	return 1;
L
Linus Torvalds 已提交
840 841
}

842
/* mce=off disables machine check.
843
   mce=TOLERANCELEVEL (number, see above)
844 845
   mce=bootlog Log MCEs from before booting. Disabled by default on AMD.
   mce=nobootlog Don't log MCEs from before booting. */
L
Linus Torvalds 已提交
846 847 848 849
static int __init mcheck_enable(char *str)
{
	if (!strcmp(str, "off"))
		mce_dont_init = 1;
850 851
	else if (!strcmp(str, "bootlog") || !strcmp(str,"nobootlog"))
		mce_bootlog = str[0] == 'b';
852 853
	else if (isdigit(str[0]))
		get_option(&str, &tolerant);
L
Linus Torvalds 已提交
854
	else
855
		printk("mce= argument %s ignored. Please use /sys", str);
856
	return 1;
L
Linus Torvalds 已提交
857 858 859
}

__setup("nomce", mcheck_disable);
860
__setup("mce=", mcheck_enable);
L
Linus Torvalds 已提交
861

862
/*
L
Linus Torvalds 已提交
863
 * Sysfs support
864
 */
L
Linus Torvalds 已提交
865

866 867 868 869 870 871 872 873 874 875 876 877 878 879 880 881 882 883 884 885 886 887 888
/*
 * Disable machine checks on suspend and shutdown. We can't really handle
 * them later.
 */
static int mce_disable(void)
{
	int i;

	for (i = 0; i < banks; i++)
		wrmsrl(MSR_IA32_MC0_CTL + i*4, 0);
	return 0;
}

static int mce_suspend(struct sys_device *dev, pm_message_t state)
{
	return mce_disable();
}

static int mce_shutdown(struct sys_device *dev)
{
	return mce_disable();
}

889 890 891
/* On resume clear all MCE state. Don't want to see leftovers from the BIOS.
   Only one CPU is active at this time, the others get readded later using
   CPU hotplug. */
L
Linus Torvalds 已提交
892 893
static int mce_resume(struct sys_device *dev)
{
894
	mce_init(NULL);
895
	mce_cpu_features(&current_cpu_data);
L
Linus Torvalds 已提交
896 897 898
	return 0;
}

899 900 901 902 903 904 905 906
static void mce_cpu_restart(void *data)
{
	del_timer_sync(&__get_cpu_var(mce_timer));
	if (mce_available(&current_cpu_data))
		mce_init(NULL);
	mce_init_timer();
}

L
Linus Torvalds 已提交
907
/* Reinit MCEs after user configuration changes */
908 909
static void mce_restart(void)
{
910
	next_interval = check_interval * HZ;
911
	on_each_cpu(mce_cpu_restart, NULL, 1);
L
Linus Torvalds 已提交
912 913 914
}

static struct sysdev_class mce_sysclass = {
915 916
	.suspend = mce_suspend,
	.shutdown = mce_shutdown,
L
Linus Torvalds 已提交
917
	.resume = mce_resume,
918
	.name = "machinecheck",
L
Linus Torvalds 已提交
919 920
};

921
DEFINE_PER_CPU(struct sys_device, device_mce);
922
void (*threshold_cpu_callback)(unsigned long action, unsigned int cpu) __cpuinitdata;
L
Linus Torvalds 已提交
923 924 925

/* Why are there no generic functions for this? */
#define ACCESSOR(name, var, start) \
926 927 928
	static ssize_t show_ ## name(struct sys_device *s,		\
				     struct sysdev_attribute *attr,	\
				     char *buf) {			\
929 930
		return sprintf(buf, "%lx\n", (unsigned long)var);	\
	}								\
931 932 933
	static ssize_t set_ ## name(struct sys_device *s,		\
				    struct sysdev_attribute *attr,	\
				    const char *buf, size_t siz) {	\
934 935 936 937 938 939 940
		char *end;						\
		unsigned long new = simple_strtoul(buf, &end, 0);	\
		if (end == buf) return -EINVAL;				\
		var = new;						\
		start;							\
		return end-buf;						\
	}								\
L
Linus Torvalds 已提交
941 942
	static SYSDEV_ATTR(name, 0644, show_ ## name, set_ ## name);

943 944 945 946 947 948
static struct sysdev_attribute *bank_attrs;

static ssize_t show_bank(struct sys_device *s, struct sysdev_attribute *attr,
			 char *buf)
{
	u64 b = bank[attr - bank_attrs];
949
	return sprintf(buf, "%llx\n", b);
950 951 952 953 954 955 956 957 958 959 960 961 962
}

static ssize_t set_bank(struct sys_device *s, struct sysdev_attribute *attr,
			const char *buf, size_t siz)
{
	char *end;
	u64 new = simple_strtoull(buf, &end, 0);
	if (end == buf)
		return -EINVAL;
	bank[attr - bank_attrs] = new;
	mce_restart();
	return end-buf;
}
963

964 965
static ssize_t show_trigger(struct sys_device *s, struct sysdev_attribute *attr,
				char *buf)
966 967 968 969 970 971
{
	strcpy(buf, trigger);
	strcat(buf, "\n");
	return strlen(trigger) + 1;
}

972 973
static ssize_t set_trigger(struct sys_device *s, struct sysdev_attribute *attr,
				const char *buf,size_t siz)
974 975 976 977 978 979 980 981 982 983 984 985
{
	char *p;
	int len;
	strncpy(trigger, buf, sizeof(trigger));
	trigger[sizeof(trigger)-1] = 0;
	len = strlen(trigger);
	p = strchr(trigger, '\n');
	if (*p) *p = 0;
	return len;
}

static SYSDEV_ATTR(trigger, 0644, show_trigger, set_trigger);
986
static SYSDEV_INT_ATTR(tolerant, 0644, tolerant);
L
Linus Torvalds 已提交
987
ACCESSOR(check_interval,check_interval,mce_restart())
988
static struct sysdev_attribute *mce_attributes[] = {
989
	&attr_tolerant.attr, &attr_check_interval, &attr_trigger,
990 991
	NULL
};
L
Linus Torvalds 已提交
992

993 994
static cpumask_t mce_device_initialized = CPU_MASK_NONE;

995 996
/* Per cpu sysdev init.  All of the cpus still share the same ctl bank */
static __cpuinit int mce_create_device(unsigned int cpu)
L
Linus Torvalds 已提交
997 998
{
	int err;
999
	int i;
1000

A
Andreas Herrmann 已提交
1001
	if (!mce_available(&boot_cpu_data))
1002 1003
		return -EIO;

1004
	memset(&per_cpu(device_mce, cpu).kobj, 0, sizeof(struct kobject));
1005 1006 1007 1008
	per_cpu(device_mce,cpu).id = cpu;
	per_cpu(device_mce,cpu).cls = &mce_sysclass;

	err = sysdev_register(&per_cpu(device_mce,cpu));
1009 1010 1011 1012 1013 1014 1015 1016 1017
	if (err)
		return err;

	for (i = 0; mce_attributes[i]; i++) {
		err = sysdev_create_file(&per_cpu(device_mce,cpu),
					 mce_attributes[i]);
		if (err)
			goto error;
	}
1018 1019 1020 1021 1022 1023
	for (i = 0; i < banks; i++) {
		err = sysdev_create_file(&per_cpu(device_mce, cpu),
					&bank_attrs[i]);
		if (err)
			goto error2;
	}
1024
	cpu_set(cpu, mce_device_initialized);
1025

1026
	return 0;
1027 1028 1029 1030 1031
error2:
	while (--i >= 0) {
		sysdev_remove_file(&per_cpu(device_mce, cpu),
					&bank_attrs[i]);
	}
1032
error:
1033
	while (--i >= 0) {
1034 1035
		sysdev_remove_file(&per_cpu(device_mce,cpu),
				   mce_attributes[i]);
1036
	}
1037 1038
	sysdev_unregister(&per_cpu(device_mce,cpu));

1039 1040 1041
	return err;
}

1042
static __cpuinit void mce_remove_device(unsigned int cpu)
1043
{
1044 1045
	int i;

1046 1047 1048
	if (!cpu_isset(cpu, mce_device_initialized))
		return;

1049
	for (i = 0; mce_attributes[i]; i++)
1050
		sysdev_remove_file(&per_cpu(device_mce,cpu),
1051
			mce_attributes[i]);
1052 1053 1054
	for (i = 0; i < banks; i++)
		sysdev_remove_file(&per_cpu(device_mce, cpu),
			&bank_attrs[i]);
1055
	sysdev_unregister(&per_cpu(device_mce,cpu));
1056
	cpu_clear(cpu, mce_device_initialized);
1057 1058
}

1059
/* Make sure there are no machine checks on offlined CPUs. */
1060
static void mce_disable_cpu(void *h)
1061 1062
{
	int i;
A
Andi Kleen 已提交
1063
	unsigned long action = *(unsigned long *)h;
1064 1065 1066

	if (!mce_available(&current_cpu_data))
		return;
A
Andi Kleen 已提交
1067 1068
	if (!(action & CPU_TASKS_FROZEN))
		cmci_clear();
1069 1070 1071 1072
	for (i = 0; i < banks; i++)
		wrmsrl(MSR_IA32_MC0_CTL + i*4, 0);
}

1073
static void mce_reenable_cpu(void *h)
1074 1075
{
	int i;
A
Andi Kleen 已提交
1076
	unsigned long action = *(unsigned long *)h;
1077 1078 1079

	if (!mce_available(&current_cpu_data))
		return;
A
Andi Kleen 已提交
1080 1081
	if (!(action & CPU_TASKS_FROZEN))
		cmci_reenable();
1082 1083 1084 1085
	for (i = 0; i < banks; i++)
		wrmsrl(MSR_IA32_MC0_CTL + i*4, bank[i]);
}

1086
/* Get notified when a cpu comes on/off. Be hotplug friendly. */
1087 1088
static int __cpuinit mce_cpu_callback(struct notifier_block *nfb,
				      unsigned long action, void *hcpu)
1089 1090
{
	unsigned int cpu = (unsigned long)hcpu;
1091
	struct timer_list *t = &per_cpu(mce_timer, cpu);
1092 1093

	switch (action) {
1094 1095 1096
	case CPU_ONLINE:
	case CPU_ONLINE_FROZEN:
		mce_create_device(cpu);
1097 1098
		if (threshold_cpu_callback)
			threshold_cpu_callback(action, cpu);
1099 1100
		break;
	case CPU_DEAD:
1101
	case CPU_DEAD_FROZEN:
1102 1103
		if (threshold_cpu_callback)
			threshold_cpu_callback(action, cpu);
1104 1105
		mce_remove_device(cpu);
		break;
1106 1107 1108
	case CPU_DOWN_PREPARE:
	case CPU_DOWN_PREPARE_FROZEN:
		del_timer_sync(t);
A
Andi Kleen 已提交
1109
		smp_call_function_single(cpu, mce_disable_cpu, &action, 1);
1110 1111 1112
		break;
	case CPU_DOWN_FAILED:
	case CPU_DOWN_FAILED_FROZEN:
1113
		t->expires = round_jiffies(jiffies + next_interval);
1114
		add_timer_on(t, cpu);
A
Andi Kleen 已提交
1115 1116 1117 1118 1119
		smp_call_function_single(cpu, mce_reenable_cpu, &action, 1);
		break;
	case CPU_POST_DEAD:
		/* intentionally ignoring frozen here */
		cmci_rediscover(cpu);
1120
		break;
1121
	}
1122
	return NOTIFY_OK;
1123 1124
}

1125
static struct notifier_block mce_cpu_notifier __cpuinitdata = {
1126 1127 1128
	.notifier_call = mce_cpu_callback,
};

1129 1130 1131 1132 1133 1134 1135 1136 1137 1138 1139 1140 1141 1142 1143 1144 1145 1146 1147 1148 1149 1150 1151 1152 1153 1154 1155 1156
static __init int mce_init_banks(void)
{
	int i;

	bank_attrs = kzalloc(sizeof(struct sysdev_attribute) * banks,
				GFP_KERNEL);
	if (!bank_attrs)
		return -ENOMEM;

	for (i = 0; i < banks; i++) {
		struct sysdev_attribute *a = &bank_attrs[i];
		a->attr.name = kasprintf(GFP_KERNEL, "bank%d", i);
		if (!a->attr.name)
			goto nomem;
		a->attr.mode = 0644;
		a->show = show_bank;
		a->store = set_bank;
	}
	return 0;

nomem:
	while (--i >= 0)
		kfree(bank_attrs[i].attr.name);
	kfree(bank_attrs);
	bank_attrs = NULL;
	return -ENOMEM;
}

1157 1158 1159 1160 1161
static __init int mce_init_device(void)
{
	int err;
	int i = 0;

L
Linus Torvalds 已提交
1162 1163
	if (!mce_available(&boot_cpu_data))
		return -EIO;
1164 1165 1166 1167 1168

	err = mce_init_banks();
	if (err)
		return err;

L
Linus Torvalds 已提交
1169
	err = sysdev_class_register(&mce_sysclass);
1170 1171
	if (err)
		return err;
1172 1173

	for_each_online_cpu(i) {
1174 1175 1176
		err = mce_create_device(i);
		if (err)
			return err;
1177 1178
	}

1179
	register_hotcpu_notifier(&mce_cpu_notifier);
L
Linus Torvalds 已提交
1180 1181 1182
	misc_register(&mce_log_device);
	return err;
}
1183

L
Linus Torvalds 已提交
1184
device_initcall(mce_init_device);