kfd_chardev.c 18.1 KB
Newer Older
O
Oded Gabbay 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36
/*
 * Copyright 2014 Advanced Micro Devices, Inc.
 *
 * Permission is hereby granted, free of charge, to any person obtaining a
 * copy of this software and associated documentation files (the "Software"),
 * to deal in the Software without restriction, including without limitation
 * the rights to use, copy, modify, merge, publish, distribute, sublicense,
 * and/or sell copies of the Software, and to permit persons to whom the
 * Software is furnished to do so, subject to the following conditions:
 *
 * The above copyright notice and this permission notice shall be included in
 * all copies or substantial portions of the Software.
 *
 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT.  IN NO EVENT SHALL
 * THE COPYRIGHT HOLDER(S) OR AUTHOR(S) BE LIABLE FOR ANY CLAIM, DAMAGES OR
 * OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE,
 * ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR
 * OTHER DEALINGS IN THE SOFTWARE.
 */

#include <linux/device.h>
#include <linux/export.h>
#include <linux/err.h>
#include <linux/fs.h>
#include <linux/sched.h>
#include <linux/slab.h>
#include <linux/uaccess.h>
#include <linux/compat.h>
#include <uapi/linux/kfd_ioctl.h>
#include <linux/time.h>
#include <linux/mm.h>
#include <uapi/asm-generic/mman-common.h>
#include <asm/processor.h>
#include "kfd_priv.h"
37
#include "kfd_device_queue_manager.h"
O
Oded Gabbay 已提交
38 39 40

static long kfd_ioctl(struct file *, unsigned int, unsigned long);
static int kfd_open(struct inode *, struct file *);
41
static int kfd_mmap(struct file *, struct vm_area_struct *);
O
Oded Gabbay 已提交
42 43 44 45 46 47 48 49

static const char kfd_dev_name[] = "kfd";

static const struct file_operations kfd_fops = {
	.owner = THIS_MODULE,
	.unlocked_ioctl = kfd_ioctl,
	.compat_ioctl = kfd_ioctl,
	.open = kfd_open,
50
	.mmap = kfd_mmap,
O
Oded Gabbay 已提交
51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102
};

static int kfd_char_dev_major = -1;
static struct class *kfd_class;
struct device *kfd_device;

int kfd_chardev_init(void)
{
	int err = 0;

	kfd_char_dev_major = register_chrdev(0, kfd_dev_name, &kfd_fops);
	err = kfd_char_dev_major;
	if (err < 0)
		goto err_register_chrdev;

	kfd_class = class_create(THIS_MODULE, kfd_dev_name);
	err = PTR_ERR(kfd_class);
	if (IS_ERR(kfd_class))
		goto err_class_create;

	kfd_device = device_create(kfd_class, NULL,
					MKDEV(kfd_char_dev_major, 0),
					NULL, kfd_dev_name);
	err = PTR_ERR(kfd_device);
	if (IS_ERR(kfd_device))
		goto err_device_create;

	return 0;

err_device_create:
	class_destroy(kfd_class);
err_class_create:
	unregister_chrdev(kfd_char_dev_major, kfd_dev_name);
err_register_chrdev:
	return err;
}

void kfd_chardev_exit(void)
{
	device_destroy(kfd_class, MKDEV(kfd_char_dev_major, 0));
	class_destroy(kfd_class);
	unregister_chrdev(kfd_char_dev_major, kfd_dev_name);
}

struct device *kfd_chardev(void)
{
	return kfd_device;
}


static int kfd_open(struct inode *inode, struct file *filep)
{
103
	struct kfd_process *process;
104
	bool is_32bit_user_mode;
105

O
Oded Gabbay 已提交
106 107 108
	if (iminor(inode) != 0)
		return -ENODEV;

109 110 111 112 113 114 115 116 117 118
	is_32bit_user_mode = is_compat_task();

	if (is_32bit_user_mode == true) {
		dev_warn(kfd_device,
			"Process %d (32-bit) failed to open /dev/kfd\n"
			"32-bit processes are not supported by amdkfd\n",
			current->pid);
		return -EPERM;
	}

119 120 121 122 123 124 125
	process = kfd_create_process(current);
	if (IS_ERR(process))
		return PTR_ERR(process);

	dev_dbg(kfd_device, "process %d opened, compat mode (32 bit) - %d\n",
		process->pasid, process->is_32bit_user_mode);

O
Oded Gabbay 已提交
126 127 128
	return 0;
}

129 130
static int kfd_ioctl_get_version(struct file *filep, struct kfd_process *p,
					void *data)
O
Oded Gabbay 已提交
131
{
132
	struct kfd_ioctl_get_version_args *args = data;
133 134
	int err = 0;

135 136
	args->major_version = KFD_IOCTL_MAJOR_VERSION;
	args->minor_version = KFD_IOCTL_MINOR_VERSION;
137 138

	return err;
O
Oded Gabbay 已提交
139 140
}

141 142 143 144 145 146 147 148 149 150 151 152 153 154
static int set_queue_properties_from_user(struct queue_properties *q_properties,
				struct kfd_ioctl_create_queue_args *args)
{
	if (args->queue_percentage > KFD_MAX_QUEUE_PERCENTAGE) {
		pr_err("kfd: queue percentage must be between 0 to KFD_MAX_QUEUE_PERCENTAGE\n");
		return -EINVAL;
	}

	if (args->queue_priority > KFD_MAX_QUEUE_PRIORITY) {
		pr_err("kfd: queue priority must be between 0 to KFD_MAX_QUEUE_PRIORITY\n");
		return -EINVAL;
	}

	if ((args->ring_base_address) &&
155 156 157
		(!access_ok(VERIFY_WRITE,
			(const void __user *) args->ring_base_address,
			sizeof(uint64_t)))) {
158 159 160 161 162 163 164 165 166
		pr_err("kfd: can't access ring base address\n");
		return -EFAULT;
	}

	if (!is_power_of_2(args->ring_size) && (args->ring_size != 0)) {
		pr_err("kfd: ring size must be a power of 2 or 0\n");
		return -EINVAL;
	}

167 168 169
	if (!access_ok(VERIFY_WRITE,
			(const void __user *) args->read_pointer_address,
			sizeof(uint32_t))) {
170 171 172 173
		pr_err("kfd: can't access read pointer\n");
		return -EFAULT;
	}

174 175 176
	if (!access_ok(VERIFY_WRITE,
			(const void __user *) args->write_pointer_address,
			sizeof(uint32_t))) {
177 178 179 180
		pr_err("kfd: can't access write pointer\n");
		return -EFAULT;
	}

O
Oded Gabbay 已提交
181 182 183 184
	if (args->eop_buffer_address &&
		!access_ok(VERIFY_WRITE,
			(const void __user *) args->eop_buffer_address,
			sizeof(uint32_t))) {
185 186 187 188
		pr_debug("kfd: can't access eop buffer");
		return -EFAULT;
	}

O
Oded Gabbay 已提交
189 190 191 192
	if (args->ctx_save_restore_address &&
		!access_ok(VERIFY_WRITE,
			(const void __user *) args->ctx_save_restore_address,
			sizeof(uint32_t))) {
193 194 195 196
		pr_debug("kfd: can't access ctx save restore buffer");
		return -EFAULT;
	}

197 198 199 200 201 202 203
	q_properties->is_interop = false;
	q_properties->queue_percent = args->queue_percentage;
	q_properties->priority = args->queue_priority;
	q_properties->queue_address = args->ring_base_address;
	q_properties->queue_size = args->ring_size;
	q_properties->read_ptr = (uint32_t *) args->read_pointer_address;
	q_properties->write_ptr = (uint32_t *) args->write_pointer_address;
204 205 206 207 208
	q_properties->eop_ring_buffer_address = args->eop_buffer_address;
	q_properties->eop_ring_buffer_size = args->eop_buffer_size;
	q_properties->ctx_save_restore_area_address =
			args->ctx_save_restore_address;
	q_properties->ctx_save_restore_area_size = args->ctx_save_restore_size;
209 210 211
	if (args->queue_type == KFD_IOC_QUEUE_TYPE_COMPUTE ||
		args->queue_type == KFD_IOC_QUEUE_TYPE_COMPUTE_AQL)
		q_properties->type = KFD_QUEUE_TYPE_COMPUTE;
212 213
	else if (args->queue_type == KFD_IOC_QUEUE_TYPE_SDMA)
		q_properties->type = KFD_QUEUE_TYPE_SDMA;
214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239
	else
		return -ENOTSUPP;

	if (args->queue_type == KFD_IOC_QUEUE_TYPE_COMPUTE_AQL)
		q_properties->format = KFD_QUEUE_FORMAT_AQL;
	else
		q_properties->format = KFD_QUEUE_FORMAT_PM4;

	pr_debug("Queue Percentage (%d, %d)\n",
			q_properties->queue_percent, args->queue_percentage);

	pr_debug("Queue Priority (%d, %d)\n",
			q_properties->priority, args->queue_priority);

	pr_debug("Queue Address (0x%llX, 0x%llX)\n",
			q_properties->queue_address, args->ring_base_address);

	pr_debug("Queue Size (0x%llX, %u)\n",
			q_properties->queue_size, args->ring_size);

	pr_debug("Queue r/w Pointers (0x%llX, 0x%llX)\n",
			(uint64_t) q_properties->read_ptr,
			(uint64_t) q_properties->write_ptr);

	pr_debug("Queue Format (%d)\n", q_properties->format);

240 241 242 243 244
	pr_debug("Queue EOP (0x%llX)\n", q_properties->eop_ring_buffer_address);

	pr_debug("Queue CTX save arex (0x%llX)\n",
			q_properties->ctx_save_restore_area_address);

245 246 247
	return 0;
}

248 249
static int kfd_ioctl_create_queue(struct file *filep, struct kfd_process *p,
					void *data)
O
Oded Gabbay 已提交
250
{
251
	struct kfd_ioctl_create_queue_args *args = data;
252 253 254 255 256 257 258 259 260 261
	struct kfd_dev *dev;
	int err = 0;
	unsigned int queue_id;
	struct kfd_process_device *pdd;
	struct queue_properties q_properties;

	memset(&q_properties, 0, sizeof(struct queue_properties));

	pr_debug("kfd: creating queue ioctl\n");

262
	err = set_queue_properties_from_user(&q_properties, args);
263 264 265
	if (err)
		return err;

266
	pr_debug("kfd: looking for gpu id 0x%x\n", args->gpu_id);
267
	dev = kfd_device_by_id(args->gpu_id);
268
	if (dev == NULL) {
269
		pr_debug("kfd: gpu id 0x%x was not found\n", args->gpu_id);
270
		return -EINVAL;
271
	}
272 273 274 275

	mutex_lock(&p->mutex);

	pdd = kfd_bind_process_to_device(dev, p);
276
	if (IS_ERR(pdd)) {
277
		err = -ESRCH;
278 279 280 281 282 283 284
		goto err_bind_process;
	}

	pr_debug("kfd: creating queue for PASID %d on GPU 0x%x\n",
			p->pasid,
			dev->id);

285 286
	err = pqm_create_queue(&p->pqm, dev, filep, &q_properties,
				0, q_properties.type, &queue_id);
287 288 289
	if (err != 0)
		goto err_create_queue;

290
	args->queue_id = queue_id;
291

292

293
	/* Return gpu_id as doorbell offset for mmap usage */
294 295
	args->doorbell_offset = (KFD_MMAP_DOORBELL_MASK | args->gpu_id);
	args->doorbell_offset <<= PAGE_SHIFT;
296 297 298

	mutex_unlock(&p->mutex);

299
	pr_debug("kfd: queue id %d was created successfully\n", args->queue_id);
300 301

	pr_debug("ring buffer address == 0x%016llX\n",
302
			args->ring_base_address);
303 304

	pr_debug("read ptr address    == 0x%016llX\n",
305
			args->read_pointer_address);
306 307

	pr_debug("write ptr address   == 0x%016llX\n",
308
			args->write_pointer_address);
309 310 311 312 313 314 315

	return 0;

err_create_queue:
err_bind_process:
	mutex_unlock(&p->mutex);
	return err;
O
Oded Gabbay 已提交
316 317 318
}

static int kfd_ioctl_destroy_queue(struct file *filp, struct kfd_process *p,
319
					void *data)
O
Oded Gabbay 已提交
320
{
321
	int retval;
322
	struct kfd_ioctl_destroy_queue_args *args = data;
323 324

	pr_debug("kfd: destroying queue id %d for PASID %d\n",
325
				args->queue_id,
326 327 328 329
				p->pasid);

	mutex_lock(&p->mutex);

330
	retval = pqm_destroy_queue(&p->pqm, args->queue_id);
331 332 333

	mutex_unlock(&p->mutex);
	return retval;
O
Oded Gabbay 已提交
334 335 336
}

static int kfd_ioctl_update_queue(struct file *filp, struct kfd_process *p,
337
					void *data)
O
Oded Gabbay 已提交
338
{
339
	int retval;
340
	struct kfd_ioctl_update_queue_args *args = data;
341 342
	struct queue_properties properties;

343
	if (args->queue_percentage > KFD_MAX_QUEUE_PERCENTAGE) {
344 345 346 347
		pr_err("kfd: queue percentage must be between 0 to KFD_MAX_QUEUE_PERCENTAGE\n");
		return -EINVAL;
	}

348
	if (args->queue_priority > KFD_MAX_QUEUE_PRIORITY) {
349 350 351 352
		pr_err("kfd: queue priority must be between 0 to KFD_MAX_QUEUE_PRIORITY\n");
		return -EINVAL;
	}

353
	if ((args->ring_base_address) &&
354
		(!access_ok(VERIFY_WRITE,
355
			(const void __user *) args->ring_base_address,
356
			sizeof(uint64_t)))) {
357 358 359 360
		pr_err("kfd: can't access ring base address\n");
		return -EFAULT;
	}

361
	if (!is_power_of_2(args->ring_size) && (args->ring_size != 0)) {
362 363 364 365
		pr_err("kfd: ring size must be a power of 2 or 0\n");
		return -EINVAL;
	}

366 367 368 369
	properties.queue_address = args->ring_base_address;
	properties.queue_size = args->ring_size;
	properties.queue_percent = args->queue_percentage;
	properties.priority = args->queue_priority;
370 371

	pr_debug("kfd: updating queue id %d for PASID %d\n",
372
			args->queue_id, p->pasid);
373 374 375

	mutex_lock(&p->mutex);

376
	retval = pqm_update_queue(&p->pqm, args->queue_id, &properties);
377 378 379 380

	mutex_unlock(&p->mutex);

	return retval;
O
Oded Gabbay 已提交
381 382
}

383 384
static int kfd_ioctl_set_memory_policy(struct file *filep,
					struct kfd_process *p, void *data)
O
Oded Gabbay 已提交
385
{
386
	struct kfd_ioctl_set_memory_policy_args *args = data;
387 388 389 390 391
	struct kfd_dev *dev;
	int err = 0;
	struct kfd_process_device *pdd;
	enum cache_policy default_policy, alternate_policy;

392 393
	if (args->default_policy != KFD_IOC_CACHE_POLICY_COHERENT
	    && args->default_policy != KFD_IOC_CACHE_POLICY_NONCOHERENT) {
394 395 396
		return -EINVAL;
	}

397 398
	if (args->alternate_policy != KFD_IOC_CACHE_POLICY_COHERENT
	    && args->alternate_policy != KFD_IOC_CACHE_POLICY_NONCOHERENT) {
399 400 401
		return -EINVAL;
	}

402
	dev = kfd_device_by_id(args->gpu_id);
403 404 405 406 407 408
	if (dev == NULL)
		return -EINVAL;

	mutex_lock(&p->mutex);

	pdd = kfd_bind_process_to_device(dev, p);
409
	if (IS_ERR(pdd)) {
410
		err = -ESRCH;
411 412 413
		goto out;
	}

414
	default_policy = (args->default_policy == KFD_IOC_CACHE_POLICY_COHERENT)
415 416 417
			 ? cache_policy_coherent : cache_policy_noncoherent;

	alternate_policy =
418
		(args->alternate_policy == KFD_IOC_CACHE_POLICY_COHERENT)
419 420
		   ? cache_policy_coherent : cache_policy_noncoherent;

421
	if (!dev->dqm->ops.set_cache_memory_policy(dev->dqm,
422 423 424
				&pdd->qpd,
				default_policy,
				alternate_policy,
425 426
				(void __user *)args->alternate_aperture_base,
				args->alternate_aperture_size))
427 428 429 430 431 432
		err = -EINVAL;

out:
	mutex_unlock(&p->mutex);

	return err;
O
Oded Gabbay 已提交
433 434
}

435 436
static int kfd_ioctl_get_clock_counters(struct file *filep,
				struct kfd_process *p, void *data)
O
Oded Gabbay 已提交
437
{
438
	struct kfd_ioctl_get_clock_counters_args *args = data;
439
	struct kfd_dev *dev;
440
	struct timespec64 time;
441

442
	dev = kfd_device_by_id(args->gpu_id);
443 444 445 446
	if (dev == NULL)
		return -EINVAL;

	/* Reading GPU clock counter from KGD */
447 448
	args->gpu_clock_counter =
		dev->kfd2kgd->get_gpu_clock_counter(dev->kgd);
449 450

	/* No access to rdtsc. Using raw monotonic time */
451 452
	getrawmonotonic64(&time);
	args->cpu_clock_counter = (uint64_t)timespec64_to_ns(&time);
453

454 455
	get_monotonic_boottime64(&time);
	args->system_clock_counter = (uint64_t)timespec64_to_ns(&time);
456 457

	/* Since the counter is in nano-seconds we use 1GHz frequency */
458
	args->system_clock_freq = 1000000000;
459 460

	return 0;
O
Oded Gabbay 已提交
461 462 463 464
}


static int kfd_ioctl_get_process_apertures(struct file *filp,
465
				struct kfd_process *p, void *data)
O
Oded Gabbay 已提交
466
{
467
	struct kfd_ioctl_get_process_apertures_args *args = data;
468 469 470 471 472
	struct kfd_process_device_apertures *pAperture;
	struct kfd_process_device *pdd;

	dev_dbg(kfd_device, "get apertures for PASID %d", p->pasid);

473
	args->num_of_nodes = 0;
474 475 476 477 478 479 480 481

	mutex_lock(&p->mutex);

	/*if the process-device list isn't empty*/
	if (kfd_has_process_device_data(p)) {
		/* Run over all pdd of the process */
		pdd = kfd_get_first_process_device_data(p);
		do {
482 483
			pAperture =
				&args->process_apertures[args->num_of_nodes];
484 485 486 487 488 489 490 491 492
			pAperture->gpu_id = pdd->dev->id;
			pAperture->lds_base = pdd->lds_base;
			pAperture->lds_limit = pdd->lds_limit;
			pAperture->gpuvm_base = pdd->gpuvm_base;
			pAperture->gpuvm_limit = pdd->gpuvm_limit;
			pAperture->scratch_base = pdd->scratch_base;
			pAperture->scratch_limit = pdd->scratch_limit;

			dev_dbg(kfd_device,
493
				"node id %u\n", args->num_of_nodes);
494 495 496 497 498 499 500 501 502 503 504 505 506 507 508
			dev_dbg(kfd_device,
				"gpu id %u\n", pdd->dev->id);
			dev_dbg(kfd_device,
				"lds_base %llX\n", pdd->lds_base);
			dev_dbg(kfd_device,
				"lds_limit %llX\n", pdd->lds_limit);
			dev_dbg(kfd_device,
				"gpuvm_base %llX\n", pdd->gpuvm_base);
			dev_dbg(kfd_device,
				"gpuvm_limit %llX\n", pdd->gpuvm_limit);
			dev_dbg(kfd_device,
				"scratch_base %llX\n", pdd->scratch_base);
			dev_dbg(kfd_device,
				"scratch_limit %llX\n", pdd->scratch_limit);

509
			args->num_of_nodes++;
510
		} while ((pdd = kfd_get_next_process_device_data(p, pdd)) != NULL &&
511
				(args->num_of_nodes < NUM_OF_SUPPORTED_GPUS));
512 513 514 515 516
	}

	mutex_unlock(&p->mutex);

	return 0;
O
Oded Gabbay 已提交
517 518
}

519 520 521 522 523 524 525 526 527 528 529 530 531 532 533 534 535 536 537 538 539 540 541 542 543 544 545 546 547 548
static int kfd_ioctl_create_event(struct file *filp, struct kfd_process *p,
					void *data)
{
	return -ENODEV;
}

static int kfd_ioctl_destroy_event(struct file *filp, struct kfd_process *p,
					void *data)
{
	return -ENODEV;
}

static int kfd_ioctl_set_event(struct file *filp, struct kfd_process *p,
				void *data)
{
	return -ENODEV;
}

static int kfd_ioctl_reset_event(struct file *filp, struct kfd_process *p,
				void *data)
{
	return -ENODEV;
}

static int kfd_ioctl_wait_events(struct file *filp, struct kfd_process *p,
				void *data)
{
	return -ENODEV;
}

549 550 551 552 553 554 555 556 557 558 559 560 561 562 563 564 565 566 567 568 569 570 571 572 573
#define AMDKFD_IOCTL_DEF(ioctl, _func, _flags) \
	[_IOC_NR(ioctl)] = {.cmd = ioctl, .func = _func, .flags = _flags, .cmd_drv = 0, .name = #ioctl}

/** Ioctl table */
static const struct amdkfd_ioctl_desc amdkfd_ioctls[] = {
	AMDKFD_IOCTL_DEF(AMDKFD_IOC_GET_VERSION,
			kfd_ioctl_get_version, 0),

	AMDKFD_IOCTL_DEF(AMDKFD_IOC_CREATE_QUEUE,
			kfd_ioctl_create_queue, 0),

	AMDKFD_IOCTL_DEF(AMDKFD_IOC_DESTROY_QUEUE,
			kfd_ioctl_destroy_queue, 0),

	AMDKFD_IOCTL_DEF(AMDKFD_IOC_SET_MEMORY_POLICY,
			kfd_ioctl_set_memory_policy, 0),

	AMDKFD_IOCTL_DEF(AMDKFD_IOC_GET_CLOCK_COUNTERS,
			kfd_ioctl_get_clock_counters, 0),

	AMDKFD_IOCTL_DEF(AMDKFD_IOC_GET_PROCESS_APERTURES,
			kfd_ioctl_get_process_apertures, 0),

	AMDKFD_IOCTL_DEF(AMDKFD_IOC_UPDATE_QUEUE,
			kfd_ioctl_update_queue, 0),
574 575 576 577 578 579 580 581 582 583 584 585 586 587 588

	AMDKFD_IOCTL_DEF(AMDKFD_IOC_CREATE_EVENT,
			kfd_ioctl_create_event, 0),

	AMDKFD_IOCTL_DEF(AMDKFD_IOC_DESTROY_EVENT,
			kfd_ioctl_destroy_event, 0),

	AMDKFD_IOCTL_DEF(AMDKFD_IOC_SET_EVENT,
			kfd_ioctl_set_event, 0),

	AMDKFD_IOCTL_DEF(AMDKFD_IOC_RESET_EVENT,
			kfd_ioctl_reset_event, 0),

	AMDKFD_IOCTL_DEF(AMDKFD_IOC_WAIT_EVENTS,
			kfd_ioctl_wait_events, 0),
589 590 591 592
};

#define AMDKFD_CORE_IOCTL_COUNT	ARRAY_SIZE(amdkfd_ioctls)

O
Oded Gabbay 已提交
593 594 595
static long kfd_ioctl(struct file *filep, unsigned int cmd, unsigned long arg)
{
	struct kfd_process *process;
596 597 598
	amdkfd_ioctl_t *func;
	const struct amdkfd_ioctl_desc *ioctl = NULL;
	unsigned int nr = _IOC_NR(cmd);
599 600 601 602
	char stack_kdata[128];
	char *kdata = NULL;
	unsigned int usize, asize;
	int retcode = -EINVAL;
O
Oded Gabbay 已提交
603

604 605 606 607 608 609 610 611 612 613 614 615 616 617 618 619 620 621
	if (nr >= AMDKFD_CORE_IOCTL_COUNT)
		goto err_i1;

	if ((nr >= AMDKFD_COMMAND_START) && (nr < AMDKFD_COMMAND_END)) {
		u32 amdkfd_size;

		ioctl = &amdkfd_ioctls[nr];

		amdkfd_size = _IOC_SIZE(ioctl->cmd);
		usize = asize = _IOC_SIZE(cmd);
		if (amdkfd_size > asize)
			asize = amdkfd_size;

		cmd = ioctl->cmd;
	} else
		goto err_i1;

	dev_dbg(kfd_device, "ioctl cmd 0x%x (#%d), arg 0x%lx\n", cmd, nr, arg);
O
Oded Gabbay 已提交
622

623
	process = kfd_get_process(current);
624 625 626 627
	if (IS_ERR(process)) {
		dev_dbg(kfd_device, "no process\n");
		goto err_i1;
	}
O
Oded Gabbay 已提交
628

629 630 631 632 633 634 635
	/* Do not trust userspace, use our own definition */
	func = ioctl->func;

	if (unlikely(!func)) {
		dev_dbg(kfd_device, "no function\n");
		retcode = -EINVAL;
		goto err_i1;
O
Oded Gabbay 已提交
636 637
	}

638 639 640 641 642 643 644 645 646 647 648 649 650
	if (cmd & (IOC_IN | IOC_OUT)) {
		if (asize <= sizeof(stack_kdata)) {
			kdata = stack_kdata;
		} else {
			kdata = kmalloc(asize, GFP_KERNEL);
			if (!kdata) {
				retcode = -ENOMEM;
				goto err_i1;
			}
		}
		if (asize > usize)
			memset(kdata + usize, 0, asize - usize);
	}
O
Oded Gabbay 已提交
651

652 653 654 655 656 657 658 659 660
	if (cmd & IOC_IN) {
		if (copy_from_user(kdata, (void __user *)arg, usize) != 0) {
			retcode = -EFAULT;
			goto err_i1;
		}
	} else if (cmd & IOC_OUT) {
		memset(kdata, 0, usize);
	}

661
	retcode = func(filep, process, kdata);
O
Oded Gabbay 已提交
662

663 664 665
	if (cmd & IOC_OUT)
		if (copy_to_user((void __user *)arg, kdata, usize) != 0)
			retcode = -EFAULT;
O
Oded Gabbay 已提交
666

667
err_i1:
668 669 670 671
	if (!ioctl)
		dev_dbg(kfd_device, "invalid ioctl: pid=%d, cmd=0x%02x, nr=0x%02x\n",
			  task_pid_nr(current), cmd, nr);

672 673 674 675 676 677 678
	if (kdata != stack_kdata)
		kfree(kdata);

	if (retcode)
		dev_dbg(kfd_device, "ret = %d\n", retcode);

	return retcode;
O
Oded Gabbay 已提交
679
}
680 681 682 683 684 685 686 687 688

static int kfd_mmap(struct file *filp, struct vm_area_struct *vma)
{
	struct kfd_process *process;

	process = kfd_get_process(current);
	if (IS_ERR(process))
		return PTR_ERR(process);

689 690 691 692 693 694 695 696 697 698 699
	if ((vma->vm_pgoff & KFD_MMAP_DOORBELL_MASK) ==
			KFD_MMAP_DOORBELL_MASK) {
		vma->vm_pgoff = vma->vm_pgoff ^ KFD_MMAP_DOORBELL_MASK;
		return kfd_doorbell_mmap(process, vma);
	} else if ((vma->vm_pgoff & KFD_MMAP_EVENTS_MASK) ==
			KFD_MMAP_EVENTS_MASK) {
		vma->vm_pgoff = vma->vm_pgoff ^ KFD_MMAP_EVENTS_MASK;
		return kfd_event_mmap(process, vma);
	}

	return -EFAULT;
700
}