head_64.S 19.9 KB
Newer Older
1 2 3 4 5 6 7 8 9 10 11 12 13 14
/*
 *  PowerPC version
 *    Copyright (C) 1995-1996 Gary Thomas (gdt@linuxppc.org)
 *
 *  Rewritten by Cort Dougan (cort@cs.nmt.edu) for PReP
 *    Copyright (C) 1996 Cort Dougan <cort@cs.nmt.edu>
 *  Adapted for Power Macintosh by Paul Mackerras.
 *  Low-level exception handlers and MMU support
 *  rewritten by Paul Mackerras.
 *    Copyright (C) 1996 Paul Mackerras.
 *
 *  Adapted for 64bit PowerPC by Dave Engebretsen, Peter Bergner, and
 *    Mike Corrigan {engebret|bergner|mikejc}@us.ibm.com
 *
15 16 17
 *  This file contains the entry point for the 64-bit kernel along
 *  with some early initialization code common to all 64-bit powerpc
 *  variants.
18 19 20 21 22 23 24 25
 *
 *  This program is free software; you can redistribute it and/or
 *  modify it under the terms of the GNU General Public License
 *  as published by the Free Software Foundation; either version
 *  2 of the License, or (at your option) any later version.
 */

#include <linux/threads.h>
26
#include <asm/reg.h>
27 28 29 30 31 32 33 34
#include <asm/page.h>
#include <asm/mmu.h>
#include <asm/ppc_asm.h>
#include <asm/asm-offsets.h>
#include <asm/bug.h>
#include <asm/cputable.h>
#include <asm/setup.h>
#include <asm/hvcall.h>
35
#include <asm/thread_info.h>
36
#include <asm/firmware.h>
37
#include <asm/page_64.h>
38
#include <asm/irqflags.h>
39
#include <asm/kvm_book3s_asm.h>
40
#include <asm/ptrace.h>
41
#include <asm/hw_irq.h>
42

L
Lucas De Marchi 已提交
43
/* The physical memory is laid out such that the secondary processor
44 45
 * spin code sits at 0x0000...0x00ff. On server, the vectors follow
 * using the layout described in exceptions-64s.S
46 47 48 49
 */

/*
 * Entering into this code we make the following assumptions:
50 51
 *
 *  For pSeries or server processors:
52 53
 *   1. The MMU is off & open firmware is running in real mode.
 *   2. The kernel is entered at __start
54 55
 * -or- For OPAL entry:
 *   1. The MMU is off, processor in HV mode, primary CPU enters at 0
56 57
 *      with device-tree in gpr3. We also get OPAL base in r8 and
 *	entry in r9 for debugging purposes
58
 *   2. Secondary processors enter at 0x60 with PIR in gpr3
59
 *
60 61 62
 *  For Book3E processors:
 *   1. The MMU is on running in AS0 in a state defined in ePAPR
 *   2. The kernel is entered at __start
63 64 65 66 67 68 69 70
 */

	.text
	.globl  _stext
_stext:
_GLOBAL(__start)
	/* NOP this out unconditionally */
BEGIN_FTR_SECTION
71
	b	.__start_initialization_multiplatform
72 73 74 75 76
END_FTR_SECTION(0, 1)

	/* Catch branch to 0 in real mode */
	trap

77 78 79 80 81
	/* Secondary processors spin on this value until it becomes nonzero.
	 * When it does it contains the real address of the descriptor
	 * of the function that the cpu should jump to to continue
	 * initialization.
	 */
82 83 84 85 86 87 88 89 90 91
	.globl  __secondary_hold_spinloop
__secondary_hold_spinloop:
	.llong	0x0

	/* Secondary processors write this value with their cpu # */
	/* after they enter the spin loop immediately below.	  */
	.globl	__secondary_hold_acknowledge
__secondary_hold_acknowledge:
	.llong	0x0

92
#ifdef CONFIG_RELOCATABLE
93 94 95 96 97 98 99 100 101 102 103 104 105
	/* This flag is set to 1 by a loader if the kernel should run
	 * at the loaded address instead of the linked address.  This
	 * is used by kexec-tools to keep the the kdump kernel in the
	 * crash_kernel region.  The loader is responsible for
	 * observing the alignment requirement.
	 */
	/* Do not move this variable as kexec-tools knows about it. */
	. = 0x5c
	.globl	__run_at_load
__run_at_load:
	.long	0x72756e30	/* "run0" -- relocate to 0 by default */
#endif

106 107
	. = 0x60
/*
108 109
 * The following code is used to hold secondary processors
 * in a spin loop after they have entered the kernel, but
110 111 112
 * before the bulk of the kernel has been relocated.  This code
 * is relocated to physical address 0x60 before prom_init is run.
 * All of it must fit below the first exception vector at 0x100.
113 114
 * Use .globl here not _GLOBAL because we want __secondary_hold
 * to be the actual text address, not a descriptor.
115
 */
116 117
	.globl	__secondary_hold
__secondary_hold:
118
#ifndef CONFIG_PPC_BOOK3E
119 120 121
	mfmsr	r24
	ori	r24,r24,MSR_RI
	mtmsrd	r24			/* RI on */
122
#endif
123
	/* Grab our physical cpu number */
124 125 126 127 128
	mr	r24,r3

	/* Tell the master cpu we're here */
	/* Relocation is off & we are located at an address less */
	/* than 0x100, so only need to grab low order offset.    */
129
	std	r24,__secondary_hold_acknowledge-_stext(0)
130 131 132
	sync

	/* All secondary cpus wait here until told to start. */
133
100:	ld	r4,__secondary_hold_spinloop-_stext(0)
134 135
	cmpdi	0,r4,0
	beq	100b
136

137
#if defined(CONFIG_SMP) || defined(CONFIG_KEXEC)
138
	ld	r4,0(r4)		/* deref function descriptor */
139
	mtctr	r4
140
	mr	r3,r24
141
	li	r4,0
142 143
	/* Make sure that patched code is visible */
	isync
144
	bctr
145 146 147 148 149 150 151 152 153 154 155
#else
	BUG_OPCODE
#endif

/* This value is used to mark exception frames on the stack. */
	.section ".toc","aw"
exception_marker:
	.tc	ID_72656773_68657265[TC],0x7265677368657265
	.text

/*
156 157 158
 * On server, we include the exception vectors code here as it
 * relies on absolute addressing which is only possible within
 * this compilation unit
159
 */
160 161
#ifdef CONFIG_PPC_BOOK3S
#include "exceptions-64s.S"
162
#endif
163

164 165 166 167 168 169 170 171 172 173 174 175 176 177 178
_GLOBAL(generic_secondary_thread_init)
	mr	r24,r3

	/* turn on 64-bit mode */
	bl	.enable_64b_mode

	/* get a valid TOC pointer, wherever we're mapped at */
	bl	.relative_toc

#ifdef CONFIG_PPC_BOOK3E
	/* Book3E initialization */
	mr	r3,r24
	bl	.book3e_secondary_thread_init
#endif
	b	generic_secondary_common_init
179 180

/*
O
Olof Johansson 已提交
181 182
 * On pSeries and most other platforms, secondary processors spin
 * in the following code.
183
 * At entry, r3 = this processor's number (physical cpu id)
184 185 186 187
 *
 * On Book3E, r4 = 1 to indicate that the initial TLB entry for
 * this core already exists (setup via some other mechanism such
 * as SCOM before entry).
188
 */
O
Olof Johansson 已提交
189
_GLOBAL(generic_secondary_smp_init)
190
	mr	r24,r3
191 192
	mr	r25,r4

193 194 195
	/* turn on 64-bit mode */
	bl	.enable_64b_mode

196
	/* get a valid TOC pointer, wherever we're mapped at */
197 198
	bl	.relative_toc

199 200 201 202 203 204 205 206
#ifdef CONFIG_PPC_BOOK3E
	/* Book3E initialization */
	mr	r3,r24
	mr	r4,r25
	bl	.book3e_secondary_core_init
#endif

generic_secondary_common_init:
207 208 209 210
	/* Set up a paca value for this processor. Since we have the
	 * physical cpu id in r24, we need to search the pacas to find
	 * which logical id maps to our physical one.
	 */
211 212
	LOAD_REG_ADDR(r13, paca)	/* Load paca pointer		 */
	ld	r13,0(r13)		/* Get base vaddr of paca array	 */
213 214 215 216 217 218
#ifndef CONFIG_SMP
	addi	r13,r13,PACA_SIZE	/* know r13 if used accidentally */
	b	.kexec_wait		/* wait for next kernel if !SMP	 */
#else
	LOAD_REG_ADDR(r7, nr_cpu_ids)	/* Load nr_cpu_ids address       */
	lwz	r7,0(r7)		/* also the max paca allocated 	 */
219 220 221 222 223 224
	li	r5,0			/* logical cpu id                */
1:	lhz	r6,PACAHWCPUID(r13)	/* Load HW procid from paca      */
	cmpw	r6,r24			/* Compare to our id             */
	beq	2f
	addi	r13,r13,PACA_SIZE	/* Loop to next PACA on miss     */
	addi	r5,r5,1
225
	cmpw	r5,r7			/* Check if more pacas exist     */
226 227 228 229 230
	blt	1b

	mr	r3,r24			/* not found, copy phys to r3	 */
	b	.kexec_wait		/* next kernel might do better	 */

231
2:	SET_PACA(r13)
232 233 234 235 236
#ifdef CONFIG_PPC_BOOK3E
	addi	r12,r13,PACA_EXTLB	/* and TLB exc frame in another  */
	mtspr	SPRN_SPRG_TLB_EXFRAME,r12
#endif

237 238
	/* From now on, r24 is expected to be logical cpuid */
	mr	r24,r5
239

O
Olof Johansson 已提交
240
	/* See if we need to call a cpu state restore handler */
241
	LOAD_REG_ADDR(r23, cur_cpu_spec)
O
Olof Johansson 已提交
242 243 244
	ld	r23,0(r23)
	ld	r23,CPU_SPEC_RESTORE(r23)
	cmpdi	0,r23,0
245
	beq	3f
O
Olof Johansson 已提交
246 247 248 249
	ld	r23,0(r23)
	mtctr	r23
	bctrl

250
3:	LOAD_REG_ADDR(r3, spinning_secondaries) /* Decrement spinning_secondaries */
251 252 253 254 255 256 257
	lwarx	r4,0,r3
	subi	r4,r4,1
	stwcx.	r4,0,r3
	bne	3b
	isync

4:	HMT_LOW
258 259 260
	lbz	r23,PACAPROCSTART(r13)	/* Test if this processor should */
					/* start.			 */
	cmpwi	0,r23,0
261
	beq	4b			/* Loop until told to go	 */
262 263

	sync				/* order paca.run and cur_cpu_spec */
264
	isync				/* In case code patching happened */
265

266
	/* Create a temp kernel stack for use before relocation is on.	*/
267 268 269
	ld	r1,PACAEMERGSP(r13)
	subi	r1,r1,STACK_FRAME_OVERHEAD

270
	b	__secondary_start
271
#endif /* SMP */
272

273 274 275 276
/*
 * Turn the MMU off.
 * Assumes we're mapped EA == RA if the MMU is on.
 */
277
#ifdef CONFIG_PPC_BOOK3S
278 279 280 281
_STATIC(__mmu_off)
	mfmsr	r3
	andi.	r0,r3,MSR_IR|MSR_DR
	beqlr
282
	mflr	r4
283 284 285 286 287 288
	andc	r3,r3,r0
	mtspr	SPRN_SRR0,r4
	mtspr	SPRN_SRR1,r3
	sync
	rfid
	b	.	/* prevent speculative execution */
289
#endif
290 291 292 293 294 295 296 297 298 299 300 301 302 303


/*
 * Here is our main kernel entry point. We support currently 2 kind of entries
 * depending on the value of r5.
 *
 *   r5 != NULL -> OF entry, we go to prom_init, "legacy" parameter content
 *                 in r3...r7
 *   
 *   r5 == NULL -> kexec style entry. r3 is a physical pointer to the
 *                 DT block, r4 is a physical pointer to the kernel itself
 *
 */
_GLOBAL(__start_initialization_multiplatform)
304 305 306 307 308 309 310 311 312 313 314 315
	/* Make sure we are running in 64 bits mode */
	bl	.enable_64b_mode

	/* Get TOC pointer (current runtime address) */
	bl	.relative_toc

	/* find out where we are now */
	bcl	20,31,$+4
0:	mflr	r26			/* r26 = runtime addr here */
	addis	r26,r26,(_stext - 0b)@ha
	addi	r26,r26,(_stext - 0b)@l	/* current runtime base addr */

316 317 318 319
	/*
	 * Are we booted from a PROM Of-type client-interface ?
	 */
	cmpldi	cr0,r5,0
320 321 322
	beq	1f
	b	.__boot_from_prom		/* yes -> prom */
1:
323 324 325
	/* Save parameters */
	mr	r31,r3
	mr	r30,r4
326 327 328 329 330
#ifdef CONFIG_PPC_EARLY_DEBUG_OPAL
	/* Save OPAL entry */
	mr	r28,r8
	mr	r29,r9
#endif
331

332 333 334 335
#ifdef CONFIG_PPC_BOOK3E
	bl	.start_initialization_book3e
	b	.__after_prom_start
#else
336
	/* Setup some critical 970 SPRs before switching MMU off */
O
Olof Johansson 已提交
337 338 339 340 341 342 343
	mfspr	r0,SPRN_PVR
	srwi	r0,r0,16
	cmpwi	r0,0x39		/* 970 */
	beq	1f
	cmpwi	r0,0x3c		/* 970FX */
	beq	1f
	cmpwi	r0,0x44		/* 970MP */
344 345
	beq	1f
	cmpwi	r0,0x45		/* 970GX */
O
Olof Johansson 已提交
346 347 348
	bne	2f
1:	bl	.__cpu_preinit_ppc970
2:
349

350
	/* Switch off MMU if not already off */
351 352
	bl	.__mmu_off
	b	.__after_prom_start
353
#endif /* CONFIG_PPC_BOOK3E */
354

355
_INIT_STATIC(__boot_from_prom)
356
#ifdef CONFIG_PPC_OF_BOOT_TRAMPOLINE
357 358 359 360 361 362 363
	/* Save parameters */
	mr	r31,r3
	mr	r30,r4
	mr	r29,r5
	mr	r28,r6
	mr	r27,r7

364 365 366
	/*
	 * Align the stack to 16-byte boundary
	 * Depending on the size and layout of the ELF sections in the initial
367
	 * boot binary, the stack pointer may be unaligned on PowerMac
368
	 */
369 370
	rldicr	r1,r1,0,59

371 372 373 374 375 376
#ifdef CONFIG_RELOCATABLE
	/* Relocate code for where we are now */
	mr	r3,r26
	bl	.relocate
#endif

377 378 379 380 381 382 383 384
	/* Restore parameters */
	mr	r3,r31
	mr	r4,r30
	mr	r5,r29
	mr	r6,r28
	mr	r7,r27

	/* Do all of the interaction with OF client interface */
385
	mr	r8,r26
386
	bl	.prom_init
387 388 389 390
#endif /* #CONFIG_PPC_OF_BOOT_TRAMPOLINE */

	/* We never return. We also hit that trap if trying to boot
	 * from OF while CONFIG_PPC_OF_BOOT_TRAMPOLINE isn't selected */
391 392 393
	trap

_STATIC(__after_prom_start)
394 395 396 397
#ifdef CONFIG_RELOCATABLE
	/* process relocations for the final address of the kernel */
	lis	r25,PAGE_OFFSET@highest	/* compute virtual base of kernel */
	sldi	r25,r25,32
398
	lwz	r7,__run_at_load-_stext(r26)
399
	cmplwi	cr0,r7,1	/* flagged to stay where we are ? */
400 401 402
	bne	1f
	add	r25,r25,r26
1:	mr	r3,r25
403 404
	bl	.relocate
#endif
405 406

/*
407
 * We need to run with _stext at physical address PHYSICAL_START.
408 409 410 411 412
 * This will leave some code in the first 256B of
 * real memory, which are reserved for software use.
 *
 * Note: This process overwrites the OF exception vectors.
 */
413
	li	r3,0			/* target addr */
414 415 416
#ifdef CONFIG_PPC_BOOK3E
	tovirt(r3,r3)			/* on booke, we already run at PAGE_OFFSET */
#endif
417
	mr.	r4,r26			/* In some cases the loader may  */
418
	beq	9f			/* have already put us at zero */
419 420
	li	r6,0x100		/* Start offset, the first 0x100 */
					/* bytes were copied earlier.	 */
421 422 423
#ifdef CONFIG_PPC_BOOK3E
	tovirt(r6,r6)			/* on booke, we already run at PAGE_OFFSET */
#endif
424

425 426 427
#ifdef CONFIG_CRASH_DUMP
/*
 * Check if the kernel has to be running as relocatable kernel based on the
428
 * variable __run_at_load, if it is set the kernel is treated as relocatable
429 430
 * kernel, otherwise it will be moved to PHYSICAL_START
 */
431 432
	lwz	r7,__run_at_load-_stext(r26)
	cmplwi	cr0,r7,1
433 434 435 436 437 438 439 440 441
	bne	3f

	li	r5,__end_interrupts - _stext	/* just copy interrupts */
	b	5f
3:
#endif
	lis	r5,(copy_to_here - _stext)@ha
	addi	r5,r5,(copy_to_here - _stext)@l /* # bytes of memory to copy */

442 443 444
	bl	.copy_and_flush		/* copy the first n bytes	 */
					/* this includes the code being	 */
					/* executed here.		 */
445 446 447
	addis	r8,r3,(4f - _stext)@ha	/* Jump to the copy of this code */
	addi	r8,r8,(4f - _stext)@l	/* that we just made */
	mtctr	r8
448 449
	bctr

450 451
p_end:	.llong	_end - _stext

452 453 454
4:	/* Now copy the rest of the kernel up to _end */
	addis	r5,r26,(p_end - _stext)@ha
	ld	r5,(p_end - _stext)@l(r5)	/* get _end */
455
5:	bl	.copy_and_flush		/* copy the rest */
456 457 458

9:	b	.start_here_multiplatform

459 460 461 462 463 464 465 466 467 468 469
/*
 * Copy routine used to copy the kernel to start at physical address 0
 * and flush and invalidate the caches as needed.
 * r3 = dest addr, r4 = source addr, r5 = copy limit, r6 = start offset
 * on exit, r3, r4, r5 are unchanged, r6 is updated to be >= r5.
 *
 * Note: this routine *only* clobbers r0, r6 and lr
 */
_GLOBAL(copy_and_flush)
	addi	r5,r5,-8
	addi	r6,r6,-8
470
4:	li	r0,8			/* Use the smallest common	*/
471 472 473 474 475 476 477 478 479 480 481 482 483 484 485 486 487 488 489 490 491 492 493 494 495 496 497 498 499 500 501 502 503 504 505
					/* denominator cache line	*/
					/* size.  This results in	*/
					/* extra cache line flushes	*/
					/* but operation is correct.	*/
					/* Can't get cache line size	*/
					/* from NACA as it is being	*/
					/* moved too.			*/

	mtctr	r0			/* put # words/line in ctr	*/
3:	addi	r6,r6,8			/* copy a cache line		*/
	ldx	r0,r6,r4
	stdx	r0,r6,r3
	bdnz	3b
	dcbst	r6,r3			/* write it to memory		*/
	sync
	icbi	r6,r3			/* flush the icache line	*/
	cmpld	0,r6,r5
	blt	4b
	sync
	addi	r5,r5,8
	addi	r6,r6,8
	blr

.align 8
copy_to_here:

#ifdef CONFIG_SMP
#ifdef CONFIG_PPC_PMAC
/*
 * On PowerMac, secondary processors starts from the reset vector, which
 * is temporarily turned into a call to one of the functions below.
 */
	.section ".text";
	.align 2 ;

506 507 508 509 510 511 512 513 514 515 516
	.globl	__secondary_start_pmac_0
__secondary_start_pmac_0:
	/* NB the entries for cpus 0, 1, 2 must each occupy 8 bytes. */
	li	r24,0
	b	1f
	li	r24,1
	b	1f
	li	r24,2
	b	1f
	li	r24,3
1:
517 518 519 520 521
	
_GLOBAL(pmac_secondary_start)
	/* turn on 64-bit mode */
	bl	.enable_64b_mode

522 523 524 525 526 527 528 529 530
	li	r0,0
	mfspr	r3,SPRN_HID4
	rldimi	r3,r0,40,23	/* clear bit 23 (rm_ci) */
	sync
	mtspr	SPRN_HID4,r3
	isync
	sync
	slbia

531 532 533
	/* get TOC pointer (real address) */
	bl	.relative_toc

534
	/* Copy some CPU settings from CPU 0 */
O
Olof Johansson 已提交
535
	bl	.__restore_cpu_ppc970
536 537 538 539 540 541 542

	/* pSeries do that early though I don't think we really need it */
	mfmsr	r3
	ori	r3,r3,MSR_RI
	mtmsrd	r3			/* RI on */

	/* Set up a paca value for this processor. */
543 544
	LOAD_REG_ADDR(r4,paca)		/* Load paca pointer		*/
	ld	r4,0(r4)		/* Get base vaddr of paca array	*/
545
	mulli	r13,r24,PACA_SIZE	/* Calculate vaddr of right paca */
546
	add	r13,r13,r4		/* for this processor.		*/
547
	SET_PACA(r13)			/* Save vaddr of paca in an SPRG*/
548

549 550 551 552 553
	/* Mark interrupts soft and hard disabled (they might be enabled
	 * in the PACA when doing hotplug)
	 */
	li	r0,0
	stb	r0,PACASOFTIRQEN(r13)
554 555
	li	r0,PACA_IRQ_HARD_DIS
	stb	r0,PACAIRQHAPPENED(r13)
556

557 558 559 560
	/* Create a temp kernel stack for use before relocation is on.	*/
	ld	r1,PACAEMERGSP(r13)
	subi	r1,r1,STACK_FRAME_OVERHEAD

561
	b	__secondary_start
562 563 564 565 566 567 568 569 570 571 572

#endif /* CONFIG_PPC_PMAC */

/*
 * This function is called after the master CPU has released the
 * secondary processors.  The execution environment is relocation off.
 * The paca for this processor has the following fields initialized at
 * this point:
 *   1. Processor number
 *   2. Segment table pointer (virtual address)
 * On entry the following are set:
573
 *   r1	       = stack pointer (real addr of temp stack)
574 575 576
 *   r24       = cpu# (in Linux terms)
 *   r13       = paca virtual address
 *   SPRG_PACA = paca virtual address
577
 */
578 579 580
	.section ".text";
	.align 2 ;

581
	.globl	__secondary_start
582
__secondary_start:
583 584
	/* Set thread priority to MEDIUM */
	HMT_MEDIUM
585

586
	/* Initialize the kernel stack */
587
	LOAD_REG_ADDR(r3, current_set)
588
	sldi	r28,r24,3		/* get current_set[cpu#]	 */
589 590 591
	ldx	r14,r3,r28
	addi	r14,r14,THREAD_SIZE-STACK_FRAME_OVERHEAD
	std	r14,PACAKSAVE(r13)
592

593 594 595
	/* Do early setup for that CPU (stab, slb, hash table pointer) */
	bl	.early_setup_secondary

596 597 598 599 600 601
	/*
	 * setup the new stack pointer, but *don't* use this until
	 * translation is on.
	 */
	mr	r1, r14

602
	/* Clear backchain so we get nice backtraces */
603 604 605
	li	r7,0
	mtlr	r7

606 607 608
	/* Mark interrupts soft and hard disabled (they might be enabled
	 * in the PACA when doing hotplug)
	 */
609
	stb	r7,PACASOFTIRQEN(r13)
610 611
	li	r0,PACA_IRQ_HARD_DIS
	stb	r0,PACAIRQHAPPENED(r13)
612

613
	/* enable MMU and jump to start_secondary */
614 615
	LOAD_REG_ADDR(r3, .start_secondary_prolog)
	LOAD_REG_IMMEDIATE(r4, MSR_KERNEL)
616

617 618
	mtspr	SPRN_SRR0,r3
	mtspr	SPRN_SRR1,r4
619
	RFI
620 621 622 623
	b	.	/* prevent speculative execution */

/* 
 * Running with relocation on at this point.  All we want to do is
624 625
 * zero the stack back-chain pointer and get the TOC virtual address
 * before going into C code.
626 627
 */
_GLOBAL(start_secondary_prolog)
628
	ld	r2,PACATOC(r13)
629 630 631
	li	r3,0
	std	r3,0(r1)		/* Zero the stack frame pointer	*/
	bl	.start_secondary
632
	b	.
633 634 635 636 637 638 639 640 641 642 643
/*
 * Reset stack pointer and call start_secondary
 * to continue with online operation when woken up
 * from cede in cpu offline.
 */
_GLOBAL(start_secondary_resume)
	ld	r1,PACAKSAVE(r13)	/* Reload kernel stack pointer */
	li	r3,0
	std	r3,0(r1)		/* Zero the stack frame pointer	*/
	bl	.start_secondary
	b	.
644 645 646 647 648 649 650
#endif

/*
 * This subroutine clobbers r11 and r12
 */
_GLOBAL(enable_64b_mode)
	mfmsr	r11			/* grab the current MSR */
651 652 653 654
#ifdef CONFIG_PPC_BOOK3E
	oris	r11,r11,0x8000		/* CM bit set, we'll set ICM later */
	mtmsr	r11
#else /* CONFIG_PPC_BOOK3E */
655
	li	r12,(MSR_64BIT | MSR_ISF)@highest
656
	sldi	r12,r12,48
657 658 659
	or	r11,r11,r12
	mtmsrd	r11
	isync
660
#endif
661 662
	blr

663 664 665 666 667 668 669 670
/*
 * This puts the TOC pointer into r2, offset by 0x8000 (as expected
 * by the toolchain).  It computes the correct value for wherever we
 * are running at the moment, using position-independent code.
 */
_GLOBAL(relative_toc)
	mflr	r0
	bcl	20,31,$+4
671 672 673
0:	mflr	r11
	ld	r2,(p_toc - 0b)(r11)
	add	r2,r2,r11
674 675 676 677 678
	mtlr	r0
	blr

p_toc:	.llong	__toc_start + 0x8000 - 0b

679 680 681
/*
 * This is where the main kernel code starts.
 */
682
_INIT_STATIC(start_here_multiplatform)
683 684
	/* set up the TOC (real address) */
	bl	.relative_toc
685 686 687 688 689 690

	/* Clear out the BSS. It may have been done in prom_init,
	 * already but that's irrelevant since prom_init will soon
	 * be detached from the kernel completely. Besides, we need
	 * to clear it now for kexec-style entry.
	 */
691 692
	LOAD_REG_ADDR(r11,__bss_stop)
	LOAD_REG_ADDR(r8,__bss_start)
693 694
	sub	r11,r11,r8		/* bss size			*/
	addi	r11,r11,7		/* round up to an even double word */
695
	srdi.	r11,r11,3		/* shift right by 3		*/
696 697 698 699 700 701 702 703
	beq	4f
	addi	r8,r8,-8
	li	r0,0
	mtctr	r11			/* zero this many doublewords	*/
3:	stdu	r0,8(r8)
	bdnz	3b
4:

704 705 706 707 708 709
#ifdef CONFIG_PPC_EARLY_DEBUG_OPAL
	/* Setup OPAL entry */
	std	r28,0(r11);
	std	r29,8(r11);
#endif

710
#ifndef CONFIG_PPC_BOOK3E
711 712 713
	mfmsr	r6
	ori	r6,r6,MSR_RI
	mtmsrd	r6			/* RI on */
714
#endif
715

716 717 718 719 720 721 722
#ifdef CONFIG_RELOCATABLE
	/* Save the physical address we're running at in kernstart_addr */
	LOAD_REG_ADDR(r4, kernstart_addr)
	clrldi	r0,r25,2
	std	r0,0(r4)
#endif

723
	/* The following gets the stack set up with the regs */
724 725 726 727 728
	/* pointing to the real addr of the kernel stack.  This is   */
	/* all done to support the C function call below which sets  */
	/* up the htab.  This is done because we have relocated the  */
	/* kernel but are still running in real mode. */

729
	LOAD_REG_ADDR(r3,init_thread_union)
730

731
	/* set up a stack pointer */
732 733 734 735 736 737 738 739 740
	addi	r1,r3,THREAD_SIZE
	li	r0,0
	stdu	r0,-STACK_FRAME_OVERHEAD(r1)

	/* Do very early kernel initializations, including initial hash table,
	 * stab and slb setup before we turn on relocation.	*/

	/* Restore parameters passed from prom_init/kexec */
	mr	r3,r31
741
	bl	.early_setup		/* also sets r13 and SPRG_PACA */
742

743 744
	LOAD_REG_ADDR(r3, .start_here_common)
	ld	r4,PACAKMSR(r13)
745 746
	mtspr	SPRN_SRR0,r3
	mtspr	SPRN_SRR1,r4
747
	RFI
748 749 750
	b	.	/* prevent speculative execution */
	
	/* This is where all platforms converge execution */
751
_INIT_GLOBAL(start_here_common)
752
	/* relocation is on at this point */
753
	std	r1,PACAKSAVE(r13)
754

755
	/* Load the TOC (virtual address) */
756 757
	ld	r2,PACATOC(r13)

758
	/* Do more system initializations in virtual mode */
759 760
	bl	.setup_system

761 762 763 764 765 766 767
	/* Mark interrupts soft and hard disabled (they might be enabled
	 * in the PACA when doing hotplug)
	 */
	li	r0,0
	stb	r0,PACASOFTIRQEN(r13)
	li	r0,PACA_IRQ_HARD_DIS
	stb	r0,PACAIRQHAPPENED(r13)
768

769
	/* Generic kernel entry */
770
	bl	.start_kernel
771

772 773
	/* Not reached */
	BUG_OPCODE
774 775 776 777 778 779 780 781 782 783 784 785 786 787 788

/*
 * We put a few things here that have to be page-aligned.
 * This stuff goes at the beginning of the bss, which is page-aligned.
 */
	.section ".bss"

	.align	PAGE_SHIFT

	.globl	empty_zero_page
empty_zero_page:
	.space	PAGE_SIZE

	.globl	swapper_pg_dir
swapper_pg_dir:
789
	.space	PGD_TABLE_SIZE