aer_inject.c 12.7 KB
Newer Older
1
// SPDX-License-Identifier: GPL-2.0
H
Huang Ying 已提交
2
/*
3
 * PCIe AER software error injection support.
H
Huang Ying 已提交
4
 *
5
 * Debuging PCIe AER code is quite difficult because it is hard to
H
Huang Ying 已提交
6 7 8 9 10 11 12 13 14 15 16
 * trigger various real hardware errors. Software based error
 * injection can fake almost all kinds of errors with the help of a
 * user space helper tool aer-inject, which can be gotten from:
 *   http://www.kernel.org/pub/linux/utils/pci/aer-inject/
 *
 * Copyright 2009 Intel Corporation.
 *     Huang Ying <ying.huang@intel.com>
 */

#include <linux/module.h>
#include <linux/init.h>
17
#include <linux/irq.h>
H
Huang Ying 已提交
18 19
#include <linux/miscdevice.h>
#include <linux/pci.h>
20
#include <linux/slab.h>
H
Huang Ying 已提交
21
#include <linux/fs.h>
22
#include <linux/uaccess.h>
23
#include <linux/stddef.h>
24
#include <linux/device.h>
25

26
#include "portdrv.h"
H
Huang Ying 已提交
27

28
/* Override the existing corrected and uncorrected error masks */
29
static bool aer_mask_override;
30 31
module_param(aer_mask_override, bool, 0);

32
struct aer_error_inj {
H
Huang Ying 已提交
33 34 35 36 37 38 39 40 41
	u8 bus;
	u8 dev;
	u8 fn;
	u32 uncor_status;
	u32 cor_status;
	u32 header_log0;
	u32 header_log1;
	u32 header_log2;
	u32 header_log3;
42
	u32 domain;
H
Huang Ying 已提交
43 44
};

45
struct aer_error {
H
Huang Ying 已提交
46
	struct list_head list;
47
	u32 domain;
H
Huang Ying 已提交
48 49 50 51 52 53 54 55 56 57 58 59 60 61
	unsigned int bus;
	unsigned int devfn;
	int pos_cap_err;

	u32 uncor_status;
	u32 cor_status;
	u32 header_log0;
	u32 header_log1;
	u32 header_log2;
	u32 header_log3;
	u32 root_status;
	u32 source_id;
};

62
struct pci_bus_ops {
H
Huang Ying 已提交
63 64 65 66 67 68 69 70 71 72 73 74
	struct list_head list;
	struct pci_bus *bus;
	struct pci_ops *ops;
};

static LIST_HEAD(einjected);

static LIST_HEAD(pci_bus_ops_list);

/* Protect einjected and pci_bus_ops_list */
static DEFINE_SPINLOCK(inject_lock);

75
static void aer_error_init(struct aer_error *err, u32 domain,
76 77
			   unsigned int bus, unsigned int devfn,
			   int pos_cap_err)
H
Huang Ying 已提交
78 79
{
	INIT_LIST_HEAD(&err->list);
80
	err->domain = domain;
H
Huang Ying 已提交
81 82 83 84 85 86
	err->bus = bus;
	err->devfn = devfn;
	err->pos_cap_err = pos_cap_err;
}

/* inject_lock must be held before calling */
87
static struct aer_error *__find_aer_error(u32 domain, unsigned int bus,
88
					  unsigned int devfn)
H
Huang Ying 已提交
89 90 91 92
{
	struct aer_error *err;

	list_for_each_entry(err, &einjected, list) {
93 94 95
		if (domain == err->domain &&
		    bus == err->bus &&
		    devfn == err->devfn)
H
Huang Ying 已提交
96 97 98 99 100 101 102 103
			return err;
	}
	return NULL;
}

/* inject_lock must be held before calling */
static struct aer_error *__find_aer_error_by_dev(struct pci_dev *dev)
{
104 105 106
	int domain = pci_domain_nr(dev->bus);
	if (domain < 0)
		return NULL;
107
	return __find_aer_error(domain, dev->bus->number, dev->devfn);
H
Huang Ying 已提交
108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124
}

/* inject_lock must be held before calling */
static struct pci_ops *__find_pci_bus_ops(struct pci_bus *bus)
{
	struct pci_bus_ops *bus_ops;

	list_for_each_entry(bus_ops, &pci_bus_ops_list, list) {
		if (bus_ops->bus == bus)
			return bus_ops->ops;
	}
	return NULL;
}

static struct pci_bus_ops *pci_bus_ops_pop(void)
{
	unsigned long flags;
125
	struct pci_bus_ops *bus_ops;
H
Huang Ying 已提交
126 127

	spin_lock_irqsave(&inject_lock, flags);
128 129 130 131
	bus_ops = list_first_entry_or_null(&pci_bus_ops_list,
					   struct pci_bus_ops, list);
	if (bus_ops)
		list_del(&bus_ops->list);
H
Huang Ying 已提交
132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160
	spin_unlock_irqrestore(&inject_lock, flags);
	return bus_ops;
}

static u32 *find_pci_config_dword(struct aer_error *err, int where,
				  int *prw1cs)
{
	int rw1cs = 0;
	u32 *target = NULL;

	if (err->pos_cap_err == -1)
		return NULL;

	switch (where - err->pos_cap_err) {
	case PCI_ERR_UNCOR_STATUS:
		target = &err->uncor_status;
		rw1cs = 1;
		break;
	case PCI_ERR_COR_STATUS:
		target = &err->cor_status;
		rw1cs = 1;
		break;
	case PCI_ERR_HEADER_LOG:
		target = &err->header_log0;
		break;
	case PCI_ERR_HEADER_LOG+4:
		target = &err->header_log1;
		break;
	case PCI_ERR_HEADER_LOG+8:
161
		target = &err->header_log2;
H
Huang Ying 已提交
162 163 164 165 166 167 168 169
		break;
	case PCI_ERR_HEADER_LOG+12:
		target = &err->header_log3;
		break;
	case PCI_ERR_ROOT_STATUS:
		target = &err->root_status;
		rw1cs = 1;
		break;
170
	case PCI_ERR_ROOT_ERR_SRC:
H
Huang Ying 已提交
171 172 173 174 175 176 177 178
		target = &err->source_id;
		break;
	}
	if (prw1cs)
		*prw1cs = rw1cs;
	return target;
}

179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214
static int aer_inj_read(struct pci_bus *bus, unsigned int devfn, int where,
			int size, u32 *val)
{
	struct pci_ops *ops, *my_ops;
	int rv;

	ops = __find_pci_bus_ops(bus);
	if (!ops)
		return -1;

	my_ops = bus->ops;
	bus->ops = ops;
	rv = ops->read(bus, devfn, where, size, val);
	bus->ops = my_ops;

	return rv;
}

static int aer_inj_write(struct pci_bus *bus, unsigned int devfn, int where,
			 int size, u32 val)
{
	struct pci_ops *ops, *my_ops;
	int rv;

	ops = __find_pci_bus_ops(bus);
	if (!ops)
		return -1;

	my_ops = bus->ops;
	bus->ops = ops;
	rv = ops->write(bus, devfn, where, size, val);
	bus->ops = my_ops;

	return rv;
}

215 216
static int aer_inj_read_config(struct pci_bus *bus, unsigned int devfn,
			       int where, int size, u32 *val)
H
Huang Ying 已提交
217 218 219 220
{
	u32 *sim;
	struct aer_error *err;
	unsigned long flags;
221
	int domain;
222
	int rv;
H
Huang Ying 已提交
223 224 225 226

	spin_lock_irqsave(&inject_lock, flags);
	if (size != sizeof(u32))
		goto out;
227 228 229
	domain = pci_domain_nr(bus);
	if (domain < 0)
		goto out;
230
	err = __find_aer_error(domain, bus->number, devfn);
H
Huang Ying 已提交
231 232 233 234 235 236 237 238 239 240
	if (!err)
		goto out;

	sim = find_pci_config_dword(err, where, NULL);
	if (sim) {
		*val = *sim;
		spin_unlock_irqrestore(&inject_lock, flags);
		return 0;
	}
out:
241
	rv = aer_inj_read(bus, devfn, where, size, val);
H
Huang Ying 已提交
242
	spin_unlock_irqrestore(&inject_lock, flags);
243
	return rv;
H
Huang Ying 已提交
244 245
}

246 247
static int aer_inj_write_config(struct pci_bus *bus, unsigned int devfn,
				int where, int size, u32 val)
H
Huang Ying 已提交
248 249 250 251 252
{
	u32 *sim;
	struct aer_error *err;
	unsigned long flags;
	int rw1cs;
253
	int domain;
254
	int rv;
H
Huang Ying 已提交
255 256 257 258

	spin_lock_irqsave(&inject_lock, flags);
	if (size != sizeof(u32))
		goto out;
259 260 261
	domain = pci_domain_nr(bus);
	if (domain < 0)
		goto out;
262
	err = __find_aer_error(domain, bus->number, devfn);
H
Huang Ying 已提交
263 264 265 266 267 268 269 270 271 272 273 274 275
	if (!err)
		goto out;

	sim = find_pci_config_dword(err, where, &rw1cs);
	if (sim) {
		if (rw1cs)
			*sim ^= val;
		else
			*sim = val;
		spin_unlock_irqrestore(&inject_lock, flags);
		return 0;
	}
out:
276
	rv = aer_inj_write(bus, devfn, where, size, val);
H
Huang Ying 已提交
277
	spin_unlock_irqrestore(&inject_lock, flags);
278
	return rv;
H
Huang Ying 已提交
279 280
}

281 282 283
static struct pci_ops aer_inj_pci_ops = {
	.read = aer_inj_read_config,
	.write = aer_inj_write_config,
H
Huang Ying 已提交
284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303
};

static void pci_bus_ops_init(struct pci_bus_ops *bus_ops,
			     struct pci_bus *bus,
			     struct pci_ops *ops)
{
	INIT_LIST_HEAD(&bus_ops->list);
	bus_ops->bus = bus;
	bus_ops->ops = ops;
}

static int pci_bus_set_aer_ops(struct pci_bus *bus)
{
	struct pci_ops *ops;
	struct pci_bus_ops *bus_ops;
	unsigned long flags;

	bus_ops = kmalloc(sizeof(*bus_ops), GFP_KERNEL);
	if (!bus_ops)
		return -ENOMEM;
304
	ops = pci_bus_set_ops(bus, &aer_inj_pci_ops);
H
Huang Ying 已提交
305
	spin_lock_irqsave(&inject_lock, flags);
306
	if (ops == &aer_inj_pci_ops)
H
Huang Ying 已提交
307 308 309 310 311 312
		goto out;
	pci_bus_ops_init(bus_ops, bus, ops);
	list_add(&bus_ops->list, &pci_bus_ops_list);
	bus_ops = NULL;
out:
	spin_unlock_irqrestore(&inject_lock, flags);
313
	kfree(bus_ops);
H
Huang Ying 已提交
314 315 316 317 318 319 320 321 322
	return 0;
}

static int aer_inject(struct aer_error_inj *einj)
{
	struct aer_error *err, *rperr;
	struct aer_error *err_alloc = NULL, *rperr_alloc = NULL;
	struct pci_dev *dev, *rpdev;
	struct pcie_device *edev;
323
	struct device *device;
H
Huang Ying 已提交
324 325 326
	unsigned long flags;
	unsigned int devfn = PCI_DEVFN(einj->dev, einj->fn);
	int pos_cap_err, rp_pos_cap_err;
327
	u32 sever, cor_mask, uncor_mask, cor_mask_orig = 0, uncor_mask_orig = 0;
H
Huang Ying 已提交
328 329
	int ret = 0;

330
	dev = pci_get_domain_bus_and_slot(einj->domain, einj->bus, devfn);
H
Huang Ying 已提交
331
	if (!dev)
332
		return -ENODEV;
H
Huang Ying 已提交
333 334
	rpdev = pcie_find_root_port(dev);
	if (!rpdev) {
335
		pci_err(dev, "aer_inject: Root port not found\n");
336
		ret = -ENODEV;
H
Huang Ying 已提交
337 338 339
		goto out_put;
	}

340
	pos_cap_err = dev->aer_cap;
H
Huang Ying 已提交
341
	if (!pos_cap_err) {
342
		pci_err(dev, "aer_inject: Device doesn't support AER\n");
343
		ret = -EPROTONOSUPPORT;
H
Huang Ying 已提交
344 345 346
		goto out_put;
	}
	pci_read_config_dword(dev, pos_cap_err + PCI_ERR_UNCOR_SEVER, &sever);
347 348 349
	pci_read_config_dword(dev, pos_cap_err + PCI_ERR_COR_MASK, &cor_mask);
	pci_read_config_dword(dev, pos_cap_err + PCI_ERR_UNCOR_MASK,
			      &uncor_mask);
H
Huang Ying 已提交
350

351
	rp_pos_cap_err = rpdev->aer_cap;
H
Huang Ying 已提交
352
	if (!rp_pos_cap_err) {
353
		pci_err(rpdev, "aer_inject: Root port doesn't support AER\n");
354
		ret = -EPROTONOSUPPORT;
H
Huang Ying 已提交
355 356 357 358 359 360 361 362 363 364 365 366 367 368
		goto out_put;
	}

	err_alloc =  kzalloc(sizeof(struct aer_error), GFP_KERNEL);
	if (!err_alloc) {
		ret = -ENOMEM;
		goto out_put;
	}
	rperr_alloc =  kzalloc(sizeof(struct aer_error), GFP_KERNEL);
	if (!rperr_alloc) {
		ret = -ENOMEM;
		goto out_put;
	}

369 370 371 372 373 374 375 376 377 378 379 380
	if (aer_mask_override) {
		cor_mask_orig = cor_mask;
		cor_mask &= !(einj->cor_status);
		pci_write_config_dword(dev, pos_cap_err + PCI_ERR_COR_MASK,
				       cor_mask);

		uncor_mask_orig = uncor_mask;
		uncor_mask &= !(einj->uncor_status);
		pci_write_config_dword(dev, pos_cap_err + PCI_ERR_UNCOR_MASK,
				       uncor_mask);
	}

H
Huang Ying 已提交
381 382 383 384 385 386
	spin_lock_irqsave(&inject_lock, flags);

	err = __find_aer_error_by_dev(dev);
	if (!err) {
		err = err_alloc;
		err_alloc = NULL;
387 388
		aer_error_init(err, einj->domain, einj->bus, devfn,
			       pos_cap_err);
H
Huang Ying 已提交
389 390 391 392 393 394 395 396 397
		list_add(&err->list, &einjected);
	}
	err->uncor_status |= einj->uncor_status;
	err->cor_status |= einj->cor_status;
	err->header_log0 = einj->header_log0;
	err->header_log1 = einj->header_log1;
	err->header_log2 = einj->header_log2;
	err->header_log3 = einj->header_log3;

398 399
	if (!aer_mask_override && einj->cor_status &&
	    !(einj->cor_status & ~cor_mask)) {
400
		ret = -EINVAL;
401
		pci_warn(dev, "aer_inject: The correctable error(s) is masked by device\n");
402 403 404
		spin_unlock_irqrestore(&inject_lock, flags);
		goto out_put;
	}
405 406
	if (!aer_mask_override && einj->uncor_status &&
	    !(einj->uncor_status & ~uncor_mask)) {
407
		ret = -EINVAL;
408
		pci_warn(dev, "aer_inject: The uncorrectable error(s) is masked by device\n");
409 410 411 412
		spin_unlock_irqrestore(&inject_lock, flags);
		goto out_put;
	}

H
Huang Ying 已提交
413 414 415 416
	rperr = __find_aer_error_by_dev(rpdev);
	if (!rperr) {
		rperr = rperr_alloc;
		rperr_alloc = NULL;
417 418
		aer_error_init(rperr, pci_domain_nr(rpdev->bus),
			       rpdev->bus->number, rpdev->devfn,
H
Huang Ying 已提交
419 420 421 422 423 424 425 426 427 428 429 430 431 432 433 434 435 436 437 438 439 440 441 442 443 444
			       rp_pos_cap_err);
		list_add(&rperr->list, &einjected);
	}
	if (einj->cor_status) {
		if (rperr->root_status & PCI_ERR_ROOT_COR_RCV)
			rperr->root_status |= PCI_ERR_ROOT_MULTI_COR_RCV;
		else
			rperr->root_status |= PCI_ERR_ROOT_COR_RCV;
		rperr->source_id &= 0xffff0000;
		rperr->source_id |= (einj->bus << 8) | devfn;
	}
	if (einj->uncor_status) {
		if (rperr->root_status & PCI_ERR_ROOT_UNCOR_RCV)
			rperr->root_status |= PCI_ERR_ROOT_MULTI_UNCOR_RCV;
		if (sever & einj->uncor_status) {
			rperr->root_status |= PCI_ERR_ROOT_FATAL_RCV;
			if (!(rperr->root_status & PCI_ERR_ROOT_UNCOR_RCV))
				rperr->root_status |= PCI_ERR_ROOT_FIRST_FATAL;
		} else
			rperr->root_status |= PCI_ERR_ROOT_NONFATAL_RCV;
		rperr->root_status |= PCI_ERR_ROOT_UNCOR_RCV;
		rperr->source_id &= 0x0000ffff;
		rperr->source_id |= ((einj->bus << 8) | devfn) << 16;
	}
	spin_unlock_irqrestore(&inject_lock, flags);

445 446 447 448 449 450 451
	if (aer_mask_override) {
		pci_write_config_dword(dev, pos_cap_err + PCI_ERR_COR_MASK,
				       cor_mask_orig);
		pci_write_config_dword(dev, pos_cap_err + PCI_ERR_UNCOR_MASK,
				       uncor_mask_orig);
	}

H
Huang Ying 已提交
452 453 454 455 456 457 458
	ret = pci_bus_set_aer_ops(dev->bus);
	if (ret)
		goto out_put;
	ret = pci_bus_set_aer_ops(rpdev->bus);
	if (ret)
		goto out_put;

459 460 461
	device = pcie_port_find_device(rpdev, PCIE_PORT_SERVICE_AER);
	if (device) {
		edev = to_pcie_device(device);
462
		if (!get_service_data(edev)) {
463 464
			dev_warn(&edev->device,
				 "aer_inject: AER service is not initialized\n");
465
			ret = -EPROTONOSUPPORT;
466 467
			goto out_put;
		}
468 469 470
		dev_info(&edev->device,
			 "aer_inject: Injecting errors %08x/%08x into device %s\n",
			 einj->cor_status, einj->uncor_status, pci_name(dev));
471 472 473
		local_irq_disable();
		generic_handle_irq(edev->irq);
		local_irq_enable();
474
	} else {
475
		pci_err(rpdev, "aer_inject: AER device not found\n");
476
		ret = -ENODEV;
477
	}
H
Huang Ying 已提交
478
out_put:
479 480
	kfree(err_alloc);
	kfree(rperr_alloc);
H
Huang Ying 已提交
481 482 483 484 485 486 487 488 489 490 491 492
	pci_dev_put(dev);
	return ret;
}

static ssize_t aer_inject_write(struct file *filp, const char __user *ubuf,
				size_t usize, loff_t *off)
{
	struct aer_error_inj einj;
	int ret;

	if (!capable(CAP_SYS_ADMIN))
		return -EPERM;
493 494
	if (usize < offsetof(struct aer_error_inj, domain) ||
	    usize > sizeof(einj))
H
Huang Ying 已提交
495 496
		return -EINVAL;

497
	memset(&einj, 0, sizeof(einj));
H
Huang Ying 已提交
498 499 500 501 502 503 504 505 506 507
	if (copy_from_user(&einj, ubuf, usize))
		return -EFAULT;

	ret = aer_inject(&einj);
	return ret ? ret : usize;
}

static const struct file_operations aer_inject_fops = {
	.write = aer_inject_write,
	.owner = THIS_MODULE,
508
	.llseek = noop_llseek,
H
Huang Ying 已提交
509 510 511 512 513 514 515 516 517 518 519 520 521 522 523 524 525 526 527 528 529 530 531 532 533 534 535
};

static struct miscdevice aer_inject_device = {
	.minor = MISC_DYNAMIC_MINOR,
	.name = "aer_inject",
	.fops = &aer_inject_fops,
};

static int __init aer_inject_init(void)
{
	return misc_register(&aer_inject_device);
}

static void __exit aer_inject_exit(void)
{
	struct aer_error *err, *err_next;
	unsigned long flags;
	struct pci_bus_ops *bus_ops;

	misc_deregister(&aer_inject_device);

	while ((bus_ops = pci_bus_ops_pop())) {
		pci_bus_set_ops(bus_ops->bus, bus_ops->ops);
		kfree(bus_ops);
	}

	spin_lock_irqsave(&inject_lock, flags);
536
	list_for_each_entry_safe(err, err_next, &einjected, list) {
H
Huang Ying 已提交
537 538 539 540 541 542 543 544 545
		list_del(&err->list);
		kfree(err);
	}
	spin_unlock_irqrestore(&inject_lock, flags);
}

module_init(aer_inject_init);
module_exit(aer_inject_exit);

546
MODULE_DESCRIPTION("PCIe AER software error injector");
H
Huang Ying 已提交
547
MODULE_LICENSE("GPL");