frwr_ops.c 16.8 KB
Newer Older
1
// SPDX-License-Identifier: GPL-2.0
2
/*
3
 * Copyright (c) 2015, 2017 Oracle.  All rights reserved.
4 5 6 7
 * Copyright (c) 2003-2007 Network Appliance, Inc. All rights reserved.
 */

/* Lightweight memory registration using Fast Registration Work
8
 * Requests (FRWR).
9 10 11 12 13 14
 *
 * FRWR features ordered asynchronous registration and deregistration
 * of arbitrarily sized memory regions. This is the fastest and safest
 * but most complex memory registration mode.
 */

15 16 17
/* Normal operation
 *
 * A Memory Region is prepared for RDMA READ or WRITE using a FAST_REG
18
 * Work Request (frwr_map). When the RDMA operation is finished, this
19
 * Memory Region is invalidated using a LOCAL_INV Work Request
20
 * (frwr_unmap_sync).
21 22 23 24 25 26
 *
 * Typically these Work Requests are not signaled, and neither are RDMA
 * SEND Work Requests (with the exception of signaling occasionally to
 * prevent provider work queue overflows). This greatly reduces HCA
 * interrupt workload.
 *
27
 * As an optimization, frwr_unmap marks MRs INVALID before the
28
 * LOCAL_INV WR is posted. If posting succeeds, the MR is placed on
C
Chuck Lever 已提交
29
 * rb_mrs immediately so that no work (like managing a linked list
30 31
 * under a spinlock) is needed in the completion upcall.
 *
32
 * But this means that frwr_map() can occasionally encounter an MR
33 34 35 36 37 38 39 40 41 42 43 44 45 46 47
 * that is INVALID but the LOCAL_INV WR has not completed. Work Queue
 * ordering prevents a subsequent FAST_REG WR from executing against
 * that MR while it is still being invalidated.
 */

/* Transport recovery
 *
 * ->op_map and the transport connect worker cannot run at the same
 * time, but ->op_unmap can fire while the transport connect worker
 * is running. Thus MR recovery is handled in ->op_map, to guarantee
 * that recovered MRs are owned by a sending RPC, and not one where
 * ->op_unmap could fire at the same time transport reconnect is
 * being done.
 *
 * When the underlying transport disconnects, MRs are left in one of
48
 * four states:
49 50 51 52 53
 *
 * INVALID:	The MR was not in use before the QP entered ERROR state.
 *
 * VALID:	The MR was registered before the QP entered ERROR state.
 *
54 55 56 57 58 59
 * FLUSHED_FR:	The MR was being registered when the QP entered ERROR
 *		state, and the pending WR was flushed.
 *
 * FLUSHED_LI:	The MR was being invalidated when the QP entered ERROR
 *		state, and the pending WR was flushed.
 *
60
 * When frwr_map encounters FLUSHED and VALID MRs, they are recovered
61
 * with ib_dereg_mr and then are re-initialized. Because MR recovery
62
 * allocates fresh resources, it is deferred to a workqueue, and the
C
Chuck Lever 已提交
63
 * recovered MRs are placed back on the rb_mrs list when recovery is
64
 * complete. frwr_map allocates another MR for the current RPC while
65 66
 * the broken MR is reset.
 *
67
 * To ensure that frwr_map doesn't encounter an MR that is marked
68 69 70 71 72
 * INVALID but that is about to be flushed due to a previous transport
 * disconnect, the transport connect worker attempts to drain all
 * pending send queue WRs before the transport is reconnected.
 */

73
#include <linux/sunrpc/rpc_rdma.h>
C
Chuck Lever 已提交
74
#include <linux/sunrpc/svc_rdma.h>
75

76
#include "xprt_rdma.h"
77
#include <trace/events/rpcrdma.h>
78 79 80 81 82

#if IS_ENABLED(CONFIG_SUNRPC_DEBUG)
# define RPCDBG_FACILITY	RPCDBG_TRANS
#endif

83 84
/**
 * frwr_is_supported - Check if device supports FRWR
85
 * @device: interface adapter to check
86 87 88
 *
 * Returns true if device supports FRWR, otherwise false
 */
89
bool frwr_is_supported(struct ib_device *device)
90
{
91
	struct ib_device_attr *attrs = &device->attrs;
92 93 94 95 96 97 98 99 100

	if (!(attrs->device_cap_flags & IB_DEVICE_MEM_MGT_EXTENSIONS))
		goto out_not_supported;
	if (attrs->max_fast_reg_page_list_len == 0)
		goto out_not_supported;
	return true;

out_not_supported:
	pr_info("rpcrdma: 'frwr' mode is not supported by device %s\n",
101
		device->name);
102 103 104
	return false;
}

105 106 107 108 109 110
/**
 * frwr_release_mr - Destroy one MR
 * @mr: MR allocated by frwr_init_mr
 *
 */
void frwr_release_mr(struct rpcrdma_mr *mr)
111 112 113 114 115
{
	int rc;

	rc = ib_dereg_mr(mr->frwr.fr_mr);
	if (rc)
116
		trace_xprtrdma_frwr_dereg(mr, rc);
117 118 119 120 121 122 123 124 125 126 127 128 129 130 131
	kfree(mr->mr_sg);
	kfree(mr);
}

/* MRs are dynamically allocated, so simply clean up and release the MR.
 * A replacement MR will subsequently be allocated on demand.
 */
static void
frwr_mr_recycle_worker(struct work_struct *work)
{
	struct rpcrdma_mr *mr = container_of(work, struct rpcrdma_mr, mr_recycle);
	struct rpcrdma_xprt *r_xprt = mr->mr_xprt;

	trace_xprtrdma_mr_recycle(mr);

132
	if (mr->mr_dir != DMA_NONE) {
133
		trace_xprtrdma_mr_unmap(mr);
134
		ib_dma_unmap_sg(r_xprt->rx_ia.ri_id->device,
135
				mr->mr_sg, mr->mr_nents, mr->mr_dir);
136
		mr->mr_dir = DMA_NONE;
137 138 139 140 141 142
	}

	spin_lock(&r_xprt->rx_buf.rb_mrlock);
	list_del(&mr->mr_all);
	r_xprt->rx_stats.mrs_recycled++;
	spin_unlock(&r_xprt->rx_buf.rb_mrlock);
143 144

	frwr_release_mr(mr);
145 146
}

147 148 149 150 151 152 153 154 155
/**
 * frwr_init_mr - Initialize one MR
 * @ia: interface adapter
 * @mr: generic MR to prepare for FRWR
 *
 * Returns zero if successful. Otherwise a negative errno
 * is returned.
 */
int frwr_init_mr(struct rpcrdma_ia *ia, struct rpcrdma_mr *mr)
156
{
157
	unsigned int depth = ia->ri_max_frwr_depth;
C
Chuck Lever 已提交
158 159
	struct scatterlist *sg;
	struct ib_mr *frmr;
160 161
	int rc;

C
Chuck Lever 已提交
162 163
	frmr = ib_alloc_mr(ia->ri_pd, ia->ri_mrtype, depth);
	if (IS_ERR(frmr))
164 165
		goto out_mr_err;

C
Chuck Lever 已提交
166 167
	sg = kcalloc(depth, sizeof(*sg), GFP_KERNEL);
	if (!sg)
168 169
		goto out_list_err;

C
Chuck Lever 已提交
170 171
	mr->frwr.fr_mr = frmr;
	mr->frwr.fr_state = FRWR_IS_INVALID;
172
	mr->mr_dir = DMA_NONE;
173
	INIT_LIST_HEAD(&mr->mr_list);
174
	INIT_WORK(&mr->mr_recycle, frwr_mr_recycle_worker);
C
Chuck Lever 已提交
175 176 177 178
	init_completion(&mr->frwr.fr_linv_done);

	sg_init_table(sg, depth);
	mr->mr_sg = sg;
179 180 181
	return 0;

out_mr_err:
C
Chuck Lever 已提交
182
	rc = PTR_ERR(frmr);
183
	trace_xprtrdma_frwr_alloc(mr, rc);
184 185 186 187 188
	return rc;

out_list_err:
	dprintk("RPC:       %s: sg allocation failure\n",
		__func__);
C
Chuck Lever 已提交
189 190
	ib_dereg_mr(frmr);
	return -ENOMEM;
191 192
}

193 194 195 196 197 198
/**
 * frwr_open - Prepare an endpoint for use with FRWR
 * @ia: interface adapter this endpoint will use
 * @ep: endpoint to prepare
 *
 * On success, sets:
199 200
 *	ep->rep_attr.cap.max_send_wr
 *	ep->rep_attr.cap.max_recv_wr
201
 *	ep->rep_max_requests
202 203 204 205 206
 *	ia->ri_max_segs
 *
 * And these FRWR-related fields:
 *	ia->ri_max_frwr_depth
 *	ia->ri_mrtype
207 208
 *
 * On failure, a negative errno is returned.
209
 */
210
int frwr_open(struct rpcrdma_ia *ia, struct rpcrdma_ep *ep)
C
Chuck Lever 已提交
211
{
212
	struct ib_device_attr *attrs = &ia->ri_id->device->attrs;
213
	int max_qp_wr, depth, delta;
C
Chuck Lever 已提交
214

C
Chuck Lever 已提交
215 216 217 218
	ia->ri_mrtype = IB_MR_TYPE_MEM_REG;
	if (attrs->device_cap_flags & IB_DEVICE_SG_GAPS_REG)
		ia->ri_mrtype = IB_MR_TYPE_SG_GAPS;

C
Chuck Lever 已提交
219 220 221 222 223 224 225 226 227 228 229
	/* Quirk: Some devices advertise a large max_fast_reg_page_list_len
	 * capability, but perform optimally when the MRs are not larger
	 * than a page.
	 */
	if (attrs->max_sge_rd > 1)
		ia->ri_max_frwr_depth = attrs->max_sge_rd;
	else
		ia->ri_max_frwr_depth = attrs->max_fast_reg_page_list_len;
	if (ia->ri_max_frwr_depth > RPCRDMA_MAX_DATA_SEGS)
		ia->ri_max_frwr_depth = RPCRDMA_MAX_DATA_SEGS;
	dprintk("RPC:       %s: max FR page list depth = %u\n",
230 231 232 233 234 235 236 237 238
		__func__, ia->ri_max_frwr_depth);

	/* Add room for frwr register and invalidate WRs.
	 * 1. FRWR reg WR for head
	 * 2. FRWR invalidate WR for head
	 * 3. N FRWR reg WRs for pagelist
	 * 4. N FRWR invalidate WRs for pagelist
	 * 5. FRWR reg WR for tail
	 * 6. FRWR invalidate WR for tail
C
Chuck Lever 已提交
239 240 241 242
	 * 7. The RDMA_SEND WR
	 */
	depth = 7;

243
	/* Calculate N if the device max FRWR depth is smaller than
C
Chuck Lever 已提交
244 245
	 * RPCRDMA_MAX_DATA_SEGS.
	 */
246 247
	if (ia->ri_max_frwr_depth < RPCRDMA_MAX_DATA_SEGS) {
		delta = RPCRDMA_MAX_DATA_SEGS - ia->ri_max_frwr_depth;
C
Chuck Lever 已提交
248
		do {
249 250
			depth += 2; /* FRWR reg + invalidate */
			delta -= ia->ri_max_frwr_depth;
C
Chuck Lever 已提交
251 252 253
		} while (delta > 0);
	}

254
	max_qp_wr = ia->ri_id->device->attrs.max_qp_wr;
255 256 257 258
	max_qp_wr -= RPCRDMA_BACKWARD_WRS;
	max_qp_wr -= 1;
	if (max_qp_wr < RPCRDMA_MIN_SLOT_TABLE)
		return -ENOMEM;
259 260 261
	if (ep->rep_max_requests > max_qp_wr)
		ep->rep_max_requests = max_qp_wr;
	ep->rep_attr.cap.max_send_wr = ep->rep_max_requests * depth;
262
	if (ep->rep_attr.cap.max_send_wr > max_qp_wr) {
263 264
		ep->rep_max_requests = max_qp_wr / depth;
		if (!ep->rep_max_requests)
C
Chuck Lever 已提交
265
			return -EINVAL;
266
		ep->rep_attr.cap.max_send_wr = ep->rep_max_requests * depth;
C
Chuck Lever 已提交
267
	}
268 269
	ep->rep_attr.cap.max_send_wr += RPCRDMA_BACKWARD_WRS;
	ep->rep_attr.cap.max_send_wr += 1; /* for ib_drain_sq */
270
	ep->rep_attr.cap.max_recv_wr = ep->rep_max_requests;
271 272
	ep->rep_attr.cap.max_recv_wr += RPCRDMA_BACKWARD_WRS;
	ep->rep_attr.cap.max_recv_wr += 1; /* for ib_drain_rq */
C
Chuck Lever 已提交
273

274
	ia->ri_max_segs = max_t(unsigned int, 1, RPCRDMA_MAX_DATA_SEGS /
275
				ia->ri_max_frwr_depth);
276 277 278 279
	/* Reply chunks require segments for head and tail buffers */
	ia->ri_max_segs += 2;
	if (ia->ri_max_segs > RPCRDMA_MAX_HDR_SEGS)
		ia->ri_max_segs = RPCRDMA_MAX_HDR_SEGS;
C
Chuck Lever 已提交
280 281 282
	return 0;
}

283 284 285 286 287 288 289
/**
 * frwr_maxpages - Compute size of largest payload
 * @r_xprt: transport
 *
 * Returns maximum size of an RPC message, in pages.
 *
 * FRWR mode conveys a list of pages per chunk segment. The
290 291
 * maximum length of that list is the FRWR page list depth.
 */
292
size_t frwr_maxpages(struct rpcrdma_xprt *r_xprt)
293 294 295 296
{
	struct rpcrdma_ia *ia = &r_xprt->rx_ia;

	return min_t(unsigned int, RPCRDMA_MAX_DATA_SEGS,
297
		     (ia->ri_max_segs - 2) * ia->ri_max_frwr_depth);
298 299
}

300
/**
301
 * frwr_wc_fastreg - Invoked by RDMA provider for a flushed FastReg WC
302 303
 * @cq:	completion queue (ignored)
 * @wc:	completed WR
304 305
 *
 */
306
static void
307
frwr_wc_fastreg(struct ib_cq *cq, struct ib_wc *wc)
308
{
309 310 311
	struct ib_cqe *cqe = wc->wr_cqe;
	struct rpcrdma_frwr *frwr =
			container_of(cqe, struct rpcrdma_frwr, fr_cqe);
312

313
	/* WARNING: Only wr_cqe and status are reliable at this point */
314
	if (wc->status != IB_WC_SUCCESS)
315
		frwr->fr_state = FRWR_FLUSHED_FR;
316
	trace_xprtrdma_wc_fastreg(wc, frwr);
317 318
}

319
/**
320
 * frwr_wc_localinv - Invoked by RDMA provider for a flushed LocalInv WC
321 322 323 324
 * @cq:	completion queue (ignored)
 * @wc:	completed WR
 *
 */
325
static void
326
frwr_wc_localinv(struct ib_cq *cq, struct ib_wc *wc)
327
{
328 329 330
	struct ib_cqe *cqe = wc->wr_cqe;
	struct rpcrdma_frwr *frwr = container_of(cqe, struct rpcrdma_frwr,
						 fr_cqe);
331

332
	/* WARNING: Only wr_cqe and status are reliable at this point */
333
	if (wc->status != IB_WC_SUCCESS)
334
		frwr->fr_state = FRWR_FLUSHED_LI;
335
	trace_xprtrdma_wc_li(wc, frwr);
336
}
337

338
/**
339
 * frwr_wc_localinv_wake - Invoked by RDMA provider for a signaled LocalInv WC
340 341 342 343 344 345 346 347
 * @cq:	completion queue (ignored)
 * @wc:	completed WR
 *
 * Awaken anyone waiting for an MR to finish being fenced.
 */
static void
frwr_wc_localinv_wake(struct ib_cq *cq, struct ib_wc *wc)
{
348 349 350
	struct ib_cqe *cqe = wc->wr_cqe;
	struct rpcrdma_frwr *frwr = container_of(cqe, struct rpcrdma_frwr,
						 fr_cqe);
351 352

	/* WARNING: Only wr_cqe and status are reliable at this point */
353
	if (wc->status != IB_WC_SUCCESS)
354
		frwr->fr_state = FRWR_FLUSHED_LI;
355
	trace_xprtrdma_wc_li_wake(wc, frwr);
356
	complete(&frwr->fr_linv_done);
357 358
}

359 360 361 362 363 364
/**
 * frwr_map - Register a memory region
 * @r_xprt: controlling transport
 * @seg: memory region co-ordinates
 * @nsegs: number of segments remaining
 * @writing: true when RDMA Write will be used
365
 * @xid: XID of RPC using the registered memory
366 367 368
 * @out: initialized MR
 *
 * Prepare a REG_MR Work Request to register a memory region
369
 * for remote access via RDMA READ or RDMA WRITE.
370 371 372
 *
 * Returns the next segment or a negative errno pointer.
 * On success, the prepared MR is planted in @out.
373
 */
374 375
struct rpcrdma_mr_seg *frwr_map(struct rpcrdma_xprt *r_xprt,
				struct rpcrdma_mr_seg *seg,
C
Chuck Lever 已提交
376
				int nsegs, bool writing, __be32 xid,
377
				struct rpcrdma_mr **out)
378 379
{
	struct rpcrdma_ia *ia = &r_xprt->rx_ia;
C
Chuck Lever 已提交
380
	bool holes_ok = ia->ri_mrtype == IB_MR_TYPE_SG_GAPS;
381
	struct rpcrdma_frwr *frwr;
C
Chuck Lever 已提交
382 383
	struct rpcrdma_mr *mr;
	struct ib_mr *ibmr;
384
	struct ib_reg_wr *reg_wr;
385
	int i, n;
386 387
	u8 key;

C
Chuck Lever 已提交
388
	mr = NULL;
389
	do {
C
Chuck Lever 已提交
390
		if (mr)
391
			rpcrdma_mr_recycle(mr);
C
Chuck Lever 已提交
392 393
		mr = rpcrdma_mr_get(r_xprt);
		if (!mr)
394
			goto out_getmr_err;
C
Chuck Lever 已提交
395 396
	} while (mr->frwr.fr_state != FRWR_IS_INVALID);
	frwr = &mr->frwr;
397 398 399 400
	frwr->fr_state = FRWR_IS_VALID;

	if (nsegs > ia->ri_max_frwr_depth)
		nsegs = ia->ri_max_frwr_depth;
401 402
	for (i = 0; i < nsegs;) {
		if (seg->mr_page)
C
Chuck Lever 已提交
403
			sg_set_page(&mr->mr_sg[i],
404 405 406 407
				    seg->mr_page,
				    seg->mr_len,
				    offset_in_page(seg->mr_offset));
		else
C
Chuck Lever 已提交
408
			sg_set_buf(&mr->mr_sg[i], seg->mr_offset,
409 410
				   seg->mr_len);

411 412
		++seg;
		++i;
C
Chuck Lever 已提交
413 414
		if (holes_ok)
			continue;
415 416 417 418
		if ((i < nsegs && offset_in_page(seg->mr_offset)) ||
		    offset_in_page((seg-1)->mr_offset + (seg-1)->mr_len))
			break;
	}
C
Chuck Lever 已提交
419
	mr->mr_dir = rpcrdma_data_dir(writing);
420

421 422
	mr->mr_nents =
		ib_dma_map_sg(ia->ri_id->device, mr->mr_sg, i, mr->mr_dir);
C
Chuck Lever 已提交
423
	if (!mr->mr_nents)
424 425
		goto out_dmamap_err;

C
Chuck Lever 已提交
426 427 428
	ibmr = frwr->fr_mr;
	n = ib_map_mr_sg(ibmr, mr->mr_sg, mr->mr_nents, NULL, PAGE_SIZE);
	if (unlikely(n != mr->mr_nents))
429
		goto out_mapmr_err;
430

431
	ibmr->iova &= 0x00000000ffffffff;
C
Chuck Lever 已提交
432
	ibmr->iova |= ((u64)be32_to_cpu(xid)) << 32;
C
Chuck Lever 已提交
433 434
	key = (u8)(ibmr->rkey & 0x000000FF);
	ib_update_fast_reg_key(ibmr, ++key);
435

436
	reg_wr = &frwr->fr_regwr;
C
Chuck Lever 已提交
437 438
	reg_wr->mr = ibmr;
	reg_wr->key = ibmr->rkey;
439 440 441
	reg_wr->access = writing ?
			 IB_ACCESS_REMOTE_WRITE | IB_ACCESS_LOCAL_WRITE :
			 IB_ACCESS_REMOTE_READ;
442

C
Chuck Lever 已提交
443 444 445
	mr->mr_handle = ibmr->rkey;
	mr->mr_length = ibmr->length;
	mr->mr_offset = ibmr->iova;
446
	trace_xprtrdma_mr_map(mr);
447

C
Chuck Lever 已提交
448
	*out = mr;
449
	return seg;
450

451 452 453 454
out_getmr_err:
	xprt_wait_for_buffer_space(&r_xprt->rx_xprt);
	return ERR_PTR(-EAGAIN);

455
out_dmamap_err:
456
	mr->mr_dir = DMA_NONE;
457
	trace_xprtrdma_frwr_sgerr(mr, i);
C
Chuck Lever 已提交
458
	rpcrdma_mr_put(mr);
459
	return ERR_PTR(-EIO);
460 461

out_mapmr_err:
462
	trace_xprtrdma_frwr_maperr(mr, n);
463
	rpcrdma_mr_recycle(mr);
464
	return ERR_PTR(-EIO);
465
}
466

467 468 469 470
/**
 * frwr_send - post Send WR containing the RPC Call message
 * @ia: interface adapter
 * @req: Prepared RPC Call
471
 *
472
 * For FRWR, chain any FastReg WRs to the Send WR. Only a
473 474
 * single ib_post_send call is needed to register memory
 * and then post the Send WR.
475 476
 *
 * Returns the result of ib_post_send.
477
 */
478
int frwr_send(struct rpcrdma_ia *ia, struct rpcrdma_req *req)
479
{
480
	struct ib_send_wr *post_wr;
481 482 483 484 485 486 487 488 489 490 491 492 493 494 495 496 497 498 499
	struct rpcrdma_mr *mr;

	post_wr = &req->rl_sendctx->sc_wr;
	list_for_each_entry(mr, &req->rl_registered, mr_list) {
		struct rpcrdma_frwr *frwr;

		frwr = &mr->frwr;

		frwr->fr_cqe.done = frwr_wc_fastreg;
		frwr->fr_regwr.wr.next = post_wr;
		frwr->fr_regwr.wr.wr_cqe = &frwr->fr_cqe;
		frwr->fr_regwr.wr.num_sge = 0;
		frwr->fr_regwr.wr.opcode = IB_WR_REG_MR;
		frwr->fr_regwr.wr.send_flags = 0;

		post_wr = &frwr->fr_regwr.wr;
	}

	/* If ib_post_send fails, the next ->send_request for
500
	 * @req will queue these MRs for recovery.
501
	 */
502
	return ib_post_send(ia->ri_id->qp, post_wr, NULL);
503 504
}

505 506 507 508 509
/**
 * frwr_reminv - handle a remotely invalidated mr on the @mrs list
 * @rep: Received reply
 * @mrs: list of MRs to check
 *
510
 */
511
void frwr_reminv(struct rpcrdma_rep *rep, struct list_head *mrs)
512
{
C
Chuck Lever 已提交
513
	struct rpcrdma_mr *mr;
514

C
Chuck Lever 已提交
515 516
	list_for_each_entry(mr, mrs, mr_list)
		if (mr->mr_handle == rep->rr_inv_rkey) {
517
			list_del_init(&mr->mr_list);
518
			trace_xprtrdma_mr_remoteinv(mr);
C
Chuck Lever 已提交
519
			mr->frwr.fr_state = FRWR_IS_INVALID;
520
			rpcrdma_mr_unmap_and_put(mr);
521 522 523 524
			break;	/* only one invalidated MR per RPC */
		}
}

525 526 527 528
/**
 * frwr_unmap_sync - invalidate memory regions that were registered for @req
 * @r_xprt: controlling transport
 * @mrs: list of MRs to process
529 530 531
 *
 * Sleeps until it is safe for the host CPU to access the
 * previously mapped memory regions.
532
 *
C
Chuck Lever 已提交
533
 * Caller ensures that @mrs is not empty before the call. This
534
 * function empties the list.
535
 */
536
void frwr_unmap_sync(struct rpcrdma_xprt *r_xprt, struct list_head *mrs)
537
{
538 539
	struct ib_send_wr *first, **prev, *last;
	const struct ib_send_wr *bad_wr;
540
	struct rpcrdma_ia *ia = &r_xprt->rx_ia;
541
	struct rpcrdma_frwr *frwr;
C
Chuck Lever 已提交
542
	struct rpcrdma_mr *mr;
543
	int count, rc;
544

545
	/* ORDER: Invalidate all of the MRs first
546 547 548 549
	 *
	 * Chain the LOCAL_INV Work Requests and post them with
	 * a single ib_post_send() call.
	 */
550
	frwr = NULL;
551
	count = 0;
C
Chuck Lever 已提交
552
	prev = &first;
C
Chuck Lever 已提交
553 554 555 556
	list_for_each_entry(mr, mrs, mr_list) {
		mr->frwr.fr_state = FRWR_IS_INVALID;

		frwr = &mr->frwr;
557
		trace_xprtrdma_mr_localinv(mr);
C
Chuck Lever 已提交
558

559 560
		frwr->fr_cqe.done = frwr_wc_localinv;
		last = &frwr->fr_invwr;
C
Chuck Lever 已提交
561
		memset(last, 0, sizeof(*last));
562
		last->wr_cqe = &frwr->fr_cqe;
C
Chuck Lever 已提交
563
		last->opcode = IB_WR_LOCAL_INV;
C
Chuck Lever 已提交
564
		last->ex.invalidate_rkey = mr->mr_handle;
565
		count++;
566

C
Chuck Lever 已提交
567 568
		*prev = last;
		prev = &last->next;
569
	}
570
	if (!frwr)
571
		goto unmap;
572 573 574 575 576

	/* Strong send queue ordering guarantees that when the
	 * last WR in the chain completes, all WRs in the chain
	 * are complete.
	 */
C
Chuck Lever 已提交
577
	last->send_flags = IB_SEND_SIGNALED;
578 579
	frwr->fr_cqe.done = frwr_wc_localinv_wake;
	reinit_completion(&frwr->fr_linv_done);
580

581 582 583 584
	/* Transport disconnect drains the receive CQ before it
	 * replaces the QP. The RPC reply handler won't call us
	 * unless ri_id->qp is a valid pointer.
	 */
585
	r_xprt->rx_stats.local_inv_needed++;
586
	bad_wr = NULL;
C
Chuck Lever 已提交
587
	rc = ib_post_send(ia->ri_id->qp, first, &bad_wr);
588
	if (bad_wr != first)
589
		wait_for_completion(&frwr->fr_linv_done);
590
	if (rc)
591
		goto out_release;
592

593
	/* ORDER: Now DMA unmap all of the MRs, and return
C
Chuck Lever 已提交
594
	 * them to the free MR list.
595
	 */
596
unmap:
C
Chuck Lever 已提交
597 598
	while (!list_empty(mrs)) {
		mr = rpcrdma_mr_pop(mrs);
599
		rpcrdma_mr_unmap_and_put(mr);
600
	}
601
	return;
602

603
out_release:
604
	pr_err("rpcrdma: FRWR invalidate ib_post_send returned %i\n", rc);
605

606
	/* Unmap and release the MRs in the LOCAL_INV WRs that did not
607
	 * get posted.
608
	 */
609
	while (bad_wr) {
610 611
		frwr = container_of(bad_wr, struct rpcrdma_frwr,
				    fr_invwr);
C
Chuck Lever 已提交
612
		mr = container_of(frwr, struct rpcrdma_mr, frwr);
613
		bad_wr = bad_wr->next;
614

615 616
		list_del_init(&mr->mr_list);
		rpcrdma_mr_recycle(mr);
617
	}
618
}