scsi_lib.c 84.0 KB
Newer Older
L
Linus Torvalds 已提交
1
/*
2 3
 * Copyright (C) 1999 Eric Youngdale
 * Copyright (C) 2014 Christoph Hellwig
L
Linus Torvalds 已提交
4 5 6 7 8 9 10 11
 *
 *  SCSI queueing library.
 *      Initial versions: Eric Youngdale (eric@andante.org).
 *                        Based upon conversations with large numbers
 *                        of people at Linux Expo.
 */

#include <linux/bio.h>
J
James Bottomley 已提交
12
#include <linux/bitops.h>
L
Linus Torvalds 已提交
13 14 15
#include <linux/blkdev.h>
#include <linux/completion.h>
#include <linux/kernel.h>
16
#include <linux/export.h>
L
Linus Torvalds 已提交
17 18 19 20 21
#include <linux/mempool.h>
#include <linux/slab.h>
#include <linux/init.h>
#include <linux/pci.h>
#include <linux/delay.h>
22
#include <linux/hardirq.h>
J
Jens Axboe 已提交
23
#include <linux/scatterlist.h>
24
#include <linux/blk-mq.h>
25
#include <linux/ratelimit.h>
H
Hannes Reinecke 已提交
26
#include <asm/unaligned.h>
L
Linus Torvalds 已提交
27 28

#include <scsi/scsi.h>
29
#include <scsi/scsi_cmnd.h>
L
Linus Torvalds 已提交
30 31 32 33 34
#include <scsi/scsi_dbg.h>
#include <scsi/scsi_device.h>
#include <scsi/scsi_driver.h>
#include <scsi/scsi_eh.h>
#include <scsi/scsi_host.h>
35
#include <scsi/scsi_dh.h>
L
Linus Torvalds 已提交
36

37 38
#include <trace/events/scsi.h>

L
Linus Torvalds 已提交
39 40 41 42
#include "scsi_priv.h"
#include "scsi_logging.h"


43
#define SG_MEMPOOL_NR		ARRAY_SIZE(scsi_sg_pools)
44
#define SG_MEMPOOL_SIZE		2
L
Linus Torvalds 已提交
45 46 47

struct scsi_host_sg_pool {
	size_t		size;
48
	char		*name;
49
	struct kmem_cache	*slab;
L
Linus Torvalds 已提交
50 51 52
	mempool_t	*pool;
};

53
#define SP(x) { .size = x, "sgpool-" __stringify(x) }
J
James Bottomley 已提交
54 55 56
#if (SCSI_MAX_SG_SEGMENTS < 32)
#error SCSI_MAX_SG_SEGMENTS is too small (must be 32 or greater)
#endif
A
Adrian Bunk 已提交
57
static struct scsi_host_sg_pool scsi_sg_pools[] = {
L
Linus Torvalds 已提交
58 59
	SP(8),
	SP(16),
F
FUJITA Tomonori 已提交
60
#if (SCSI_MAX_SG_SEGMENTS > 32)
J
James Bottomley 已提交
61
	SP(32),
F
FUJITA Tomonori 已提交
62
#if (SCSI_MAX_SG_SEGMENTS > 64)
J
James Bottomley 已提交
63 64
	SP(64),
#if (SCSI_MAX_SG_SEGMENTS > 128)
L
Linus Torvalds 已提交
65
	SP(128),
J
James Bottomley 已提交
66 67
#if (SCSI_MAX_SG_SEGMENTS > 256)
#error SCSI_MAX_SG_SEGMENTS is too large (256 MAX)
F
FUJITA Tomonori 已提交
68 69 70
#endif
#endif
#endif
J
James Bottomley 已提交
71 72
#endif
	SP(SCSI_MAX_SG_SEGMENTS)
73
};
L
Linus Torvalds 已提交
74 75
#undef SP

76
struct kmem_cache *scsi_sdb_cache;
77

J
Jens Axboe 已提交
78 79 80 81 82 83 84
/*
 * When to reinvoke queueing after a resource shortage. It's 3 msecs to
 * not change behaviour from the previous unplug mechanism, experimentation
 * may prove this needs changing.
 */
#define SCSI_QUEUE_DELAY	3

85 86
static void
scsi_set_blocked(struct scsi_cmnd *cmd, int reason)
L
Linus Torvalds 已提交
87 88 89
{
	struct Scsi_Host *host = cmd->device->host;
	struct scsi_device *device = cmd->device;
90
	struct scsi_target *starget = scsi_target(device);
L
Linus Torvalds 已提交
91 92

	/*
93
	 * Set the appropriate busy bit for the device/host.
L
Linus Torvalds 已提交
94 95 96 97 98 99 100 101 102 103 104
	 *
	 * If the host/device isn't busy, assume that something actually
	 * completed, and that we should be able to queue a command now.
	 *
	 * Note that the prior mid-layer assumption that any host could
	 * always queue at least one command is now broken.  The mid-layer
	 * will implement a user specifiable stall (see
	 * scsi_host.max_host_blocked and scsi_device.max_device_blocked)
	 * if a command is requeued with no other commands outstanding
	 * either for the device or for the host.
	 */
105 106
	switch (reason) {
	case SCSI_MLQUEUE_HOST_BUSY:
107
		atomic_set(&host->host_blocked, host->max_host_blocked);
108 109
		break;
	case SCSI_MLQUEUE_DEVICE_BUSY:
110
	case SCSI_MLQUEUE_EH_RETRY:
111 112
		atomic_set(&device->device_blocked,
			   device->max_device_blocked);
113 114
		break;
	case SCSI_MLQUEUE_TARGET_BUSY:
115 116
		atomic_set(&starget->target_blocked,
			   starget->max_target_blocked);
117 118
		break;
	}
119 120
}

121 122 123 124 125 126 127 128 129 130
static void scsi_mq_requeue_cmd(struct scsi_cmnd *cmd)
{
	struct scsi_device *sdev = cmd->device;
	struct request_queue *q = cmd->request->q;

	blk_mq_requeue_request(cmd->request);
	blk_mq_kick_requeue_list(q);
	put_device(&sdev->sdev_gendev);
}

131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152
/**
 * __scsi_queue_insert - private queue insertion
 * @cmd: The SCSI command being requeued
 * @reason:  The reason for the requeue
 * @unbusy: Whether the queue should be unbusied
 *
 * This is a private queue insertion.  The public interface
 * scsi_queue_insert() always assumes the queue should be unbusied
 * because it's always called before the completion.  This function is
 * for a requeue after completion, which should only occur in this
 * file.
 */
static void __scsi_queue_insert(struct scsi_cmnd *cmd, int reason, int unbusy)
{
	struct scsi_device *device = cmd->device;
	struct request_queue *q = device->request_queue;
	unsigned long flags;

	SCSI_LOG_MLQUEUE(1, scmd_printk(KERN_INFO, cmd,
		"Inserting command %p into mlqueue\n", cmd));

	scsi_set_blocked(cmd, reason);
L
Linus Torvalds 已提交
153 154 155 156 157

	/*
	 * Decrement the counters, since these commands are no longer
	 * active on the host/device.
	 */
158 159
	if (unbusy)
		scsi_device_unbusy(device);
L
Linus Torvalds 已提交
160 161

	/*
162
	 * Requeue this command.  It will go before all other commands
163 164 165
	 * that are already in the queue. Schedule requeue work under
	 * lock such that the kblockd_schedule_work() call happens
	 * before blk_cleanup_queue() finishes.
J
Jens Axboe 已提交
166
	 */
167
	cmd->result = 0;
168 169 170 171
	if (q->mq_ops) {
		scsi_mq_requeue_cmd(cmd);
		return;
	}
172
	spin_lock_irqsave(q->queue_lock, flags);
J
James Bottomley 已提交
173
	blk_requeue_request(q, cmd->request);
174
	kblockd_schedule_work(&device->requeue_work);
175
	spin_unlock_irqrestore(q->queue_lock, flags);
L
Linus Torvalds 已提交
176 177
}

178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196
/*
 * Function:    scsi_queue_insert()
 *
 * Purpose:     Insert a command in the midlevel queue.
 *
 * Arguments:   cmd    - command that we are adding to queue.
 *              reason - why we are inserting command to queue.
 *
 * Lock status: Assumed that lock is not held upon entry.
 *
 * Returns:     Nothing.
 *
 * Notes:       We do this for one of two cases.  Either the host is busy
 *              and it cannot accept any more commands for the time being,
 *              or the device returned QUEUE_FULL and can accept no more
 *              commands.
 * Notes:       This could be called either from an interrupt context or a
 *              normal process context.
 */
197
void scsi_queue_insert(struct scsi_cmnd *cmd, int reason)
198
{
199
	__scsi_queue_insert(cmd, reason, 1);
200
}
201
/**
202
 * scsi_execute - insert request and wait for the result
203 204 205 206 207 208 209 210
 * @sdev:	scsi device
 * @cmd:	scsi command
 * @data_direction: data direction
 * @buffer:	data buffer
 * @bufflen:	len of buffer
 * @sense:	optional sense buffer
 * @timeout:	request timeout in seconds
 * @retries:	number of times to retry request
211
 * @flags:	or into request flags;
212
 * @resid:	optional residual length
213
 *
214
 * returns the req->errors value which is the scsi_cmnd result
215
 * field.
216
 */
217 218
int scsi_execute(struct scsi_device *sdev, const unsigned char *cmd,
		 int data_direction, void *buffer, unsigned bufflen,
219
		 unsigned char *sense, int timeout, int retries, u64 flags,
220
		 int *resid)
221 222 223 224 225
{
	struct request *req;
	int write = (data_direction == DMA_TO_DEVICE);
	int ret = DRIVER_ERROR << 24;

226
	req = blk_get_request(sdev->request_queue, write, __GFP_RECLAIM);
227
	if (IS_ERR(req))
228
		return ret;
J
Jens Axboe 已提交
229
	blk_rq_set_block_pc(req);
230 231

	if (bufflen &&	blk_rq_map_kern(sdev->request_queue, req,
232
					buffer, bufflen, __GFP_RECLAIM))
233 234 235 236 237 238
		goto out;

	req->cmd_len = COMMAND_SIZE(cmd[0]);
	memcpy(req->cmd, cmd, req->cmd_len);
	req->sense = sense;
	req->sense_len = 0;
239
	req->retries = retries;
240
	req->timeout = timeout;
241
	req->cmd_flags |= flags | REQ_QUIET | REQ_PREEMPT;
242 243 244 245 246 247

	/*
	 * head injection *required* here otherwise quiesce won't work
	 */
	blk_execute_rq(req->q, NULL, req, 1);

248 249 250 251 252 253
	/*
	 * Some devices (USB mass-storage in particular) may transfer
	 * garbage data together with a residue indicating that the data
	 * is invalid.  Prevent the garbage from being misinterpreted
	 * and prevent security leaks by zeroing out the excess data.
	 */
T
Tejun Heo 已提交
254 255
	if (unlikely(req->resid_len > 0 && req->resid_len <= bufflen))
		memset(buffer + (bufflen - req->resid_len), 0, req->resid_len);
256

257
	if (resid)
T
Tejun Heo 已提交
258
		*resid = req->resid_len;
259 260 261 262 263 264
	ret = req->errors;
 out:
	blk_put_request(req);

	return ret;
}
265
EXPORT_SYMBOL(scsi_execute);
266

267
int scsi_execute_req_flags(struct scsi_device *sdev, const unsigned char *cmd,
268
		     int data_direction, void *buffer, unsigned bufflen,
269
		     struct scsi_sense_hdr *sshdr, int timeout, int retries,
270
		     int *resid, u64 flags)
271 272
{
	char *sense = NULL;
273 274
	int result;
	
275
	if (sshdr) {
J
Jes Sorensen 已提交
276
		sense = kzalloc(SCSI_SENSE_BUFFERSIZE, GFP_NOIO);
277 278 279
		if (!sense)
			return DRIVER_ERROR << 24;
	}
280
	result = scsi_execute(sdev, cmd, data_direction, buffer, bufflen,
281
			      sense, timeout, retries, flags, resid);
282
	if (sshdr)
283
		scsi_normalize_sense(sense, SCSI_SENSE_BUFFERSIZE, sshdr);
284 285 286 287

	kfree(sense);
	return result;
}
288
EXPORT_SYMBOL(scsi_execute_req_flags);
289

L
Linus Torvalds 已提交
290 291 292 293 294 295 296 297 298 299 300
/*
 * Function:    scsi_init_cmd_errh()
 *
 * Purpose:     Initialize cmd fields related to error handling.
 *
 * Arguments:   cmd	- command that is ready to be queued.
 *
 * Notes:       This function has the job of initializing a number of
 *              fields related to error handling.   Typically this will
 *              be called once for each command, as required.
 */
301
static void scsi_init_cmd_errh(struct scsi_cmnd *cmd)
L
Linus Torvalds 已提交
302 303
{
	cmd->serial_number = 0;
B
Boaz Harrosh 已提交
304
	scsi_set_resid(cmd, 0);
305
	memset(cmd->sense_buffer, 0, SCSI_SENSE_BUFFERSIZE);
L
Linus Torvalds 已提交
306
	if (cmd->cmd_len == 0)
307
		cmd->cmd_len = scsi_command_size(cmd->cmnd);
L
Linus Torvalds 已提交
308 309 310 311 312
}

void scsi_device_unbusy(struct scsi_device *sdev)
{
	struct Scsi_Host *shost = sdev->host;
313
	struct scsi_target *starget = scsi_target(sdev);
L
Linus Torvalds 已提交
314 315
	unsigned long flags;

316
	atomic_dec(&shost->host_busy);
317 318
	if (starget->can_queue > 0)
		atomic_dec(&starget->target_busy);
319

320
	if (unlikely(scsi_host_in_recovery(shost) &&
321 322
		     (shost->host_failed || shost->host_eh_scheduled))) {
		spin_lock_irqsave(shost->host_lock, flags);
L
Linus Torvalds 已提交
323
		scsi_eh_wakeup(shost);
324 325 326
		spin_unlock_irqrestore(shost->host_lock, flags);
	}

327
	atomic_dec(&sdev->device_busy);
L
Linus Torvalds 已提交
328 329
}

330 331 332 333 334 335 336 337
static void scsi_kick_queue(struct request_queue *q)
{
	if (q->mq_ops)
		blk_mq_start_hw_queues(q);
	else
		blk_run_queue(q);
}

L
Linus Torvalds 已提交
338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361
/*
 * Called for single_lun devices on IO completion. Clear starget_sdev_user,
 * and call blk_run_queue for all the scsi_devices on the target -
 * including current_sdev first.
 *
 * Called with *no* scsi locks held.
 */
static void scsi_single_lun_run(struct scsi_device *current_sdev)
{
	struct Scsi_Host *shost = current_sdev->host;
	struct scsi_device *sdev, *tmp;
	struct scsi_target *starget = scsi_target(current_sdev);
	unsigned long flags;

	spin_lock_irqsave(shost->host_lock, flags);
	starget->starget_sdev_user = NULL;
	spin_unlock_irqrestore(shost->host_lock, flags);

	/*
	 * Call blk_run_queue for all LUNs on the target, starting with
	 * current_sdev. We race with others (to set starget_sdev_user),
	 * but in most cases, we will be first. Ideally, each LU on the
	 * target would get some limited time or requests on the target.
	 */
362
	scsi_kick_queue(current_sdev->request_queue);
L
Linus Torvalds 已提交
363 364 365 366 367 368 369 370 371 372 373 374

	spin_lock_irqsave(shost->host_lock, flags);
	if (starget->starget_sdev_user)
		goto out;
	list_for_each_entry_safe(sdev, tmp, &starget->devices,
			same_target_siblings) {
		if (sdev == current_sdev)
			continue;
		if (scsi_device_get(sdev))
			continue;

		spin_unlock_irqrestore(shost->host_lock, flags);
375
		scsi_kick_queue(sdev->request_queue);
L
Linus Torvalds 已提交
376 377 378 379 380 381 382 383
		spin_lock_irqsave(shost->host_lock, flags);
	
		scsi_device_put(sdev);
	}
 out:
	spin_unlock_irqrestore(shost->host_lock, flags);
}

384
static inline bool scsi_device_is_busy(struct scsi_device *sdev)
385
{
386 387 388 389 390
	if (atomic_read(&sdev->device_busy) >= sdev->queue_depth)
		return true;
	if (atomic_read(&sdev->device_blocked) > 0)
		return true;
	return false;
391 392
}

393
static inline bool scsi_target_is_busy(struct scsi_target *starget)
394
{
395 396 397 398 399 400
	if (starget->can_queue > 0) {
		if (atomic_read(&starget->target_busy) >= starget->can_queue)
			return true;
		if (atomic_read(&starget->target_blocked) > 0)
			return true;
	}
401
	return false;
402 403
}

404
static inline bool scsi_host_is_busy(struct Scsi_Host *shost)
405
{
406 407 408 409 410 411 412 413
	if (shost->can_queue > 0 &&
	    atomic_read(&shost->host_busy) >= shost->can_queue)
		return true;
	if (atomic_read(&shost->host_blocked) > 0)
		return true;
	if (shost->host_self_blocked)
		return true;
	return false;
414 415
}

416
static void scsi_starved_list_run(struct Scsi_Host *shost)
L
Linus Torvalds 已提交
417
{
418
	LIST_HEAD(starved_list);
419
	struct scsi_device *sdev;
L
Linus Torvalds 已提交
420 421 422
	unsigned long flags;

	spin_lock_irqsave(shost->host_lock, flags);
423 424 425
	list_splice_init(&shost->starved_list, &starved_list);

	while (!list_empty(&starved_list)) {
426 427
		struct request_queue *slq;

L
Linus Torvalds 已提交
428 429 430 431 432 433 434 435 436 437
		/*
		 * As long as shost is accepting commands and we have
		 * starved queues, call blk_run_queue. scsi_request_fn
		 * drops the queue_lock and can add us back to the
		 * starved_list.
		 *
		 * host_lock protects the starved_list and starved_entry.
		 * scsi_request_fn must get the host_lock before checking
		 * or modifying starved_list or starved_entry.
		 */
438
		if (scsi_host_is_busy(shost))
439 440
			break;

441 442 443
		sdev = list_entry(starved_list.next,
				  struct scsi_device, starved_entry);
		list_del_init(&sdev->starved_entry);
444 445 446 447 448 449
		if (scsi_target_is_busy(scsi_target(sdev))) {
			list_move_tail(&sdev->starved_entry,
				       &shost->starved_list);
			continue;
		}

450 451 452 453 454 455 456 457 458 459 460 461 462 463 464
		/*
		 * Once we drop the host lock, a racing scsi_remove_device()
		 * call may remove the sdev from the starved list and destroy
		 * it and the queue.  Mitigate by taking a reference to the
		 * queue and never touching the sdev again after we drop the
		 * host lock.  Note: if __scsi_remove_device() invokes
		 * blk_cleanup_queue() before the queue is run from this
		 * function then blk_run_queue() will return immediately since
		 * blk_cleanup_queue() marks the queue with QUEUE_FLAG_DYING.
		 */
		slq = sdev->request_queue;
		if (!blk_get_queue(slq))
			continue;
		spin_unlock_irqrestore(shost->host_lock, flags);

465
		scsi_kick_queue(slq);
466 467 468
		blk_put_queue(slq);

		spin_lock_irqsave(shost->host_lock, flags);
L
Linus Torvalds 已提交
469
	}
470 471
	/* put any unprocessed entries back */
	list_splice(&starved_list, &shost->starved_list);
L
Linus Torvalds 已提交
472
	spin_unlock_irqrestore(shost->host_lock, flags);
473 474 475 476 477 478 479 480 481 482 483 484 485 486 487 488 489 490 491 492 493 494
}

/*
 * Function:   scsi_run_queue()
 *
 * Purpose:    Select a proper request queue to serve next
 *
 * Arguments:  q       - last request's queue
 *
 * Returns:     Nothing
 *
 * Notes:      The previous command was completely finished, start
 *             a new one if possible.
 */
static void scsi_run_queue(struct request_queue *q)
{
	struct scsi_device *sdev = q->queuedata;

	if (scsi_target(sdev)->single_lun)
		scsi_single_lun_run(sdev);
	if (!list_empty(&sdev->host->starved_list))
		scsi_starved_list_run(sdev->host);
L
Linus Torvalds 已提交
495

496 497 498 499
	if (q->mq_ops)
		blk_mq_start_stopped_hw_queues(q, false);
	else
		blk_run_queue(q);
L
Linus Torvalds 已提交
500 501
}

502 503 504 505 506 507 508 509 510 511
void scsi_requeue_run_queue(struct work_struct *work)
{
	struct scsi_device *sdev;
	struct request_queue *q;

	sdev = container_of(work, struct scsi_device, requeue_work);
	q = sdev->request_queue;
	scsi_run_queue(q);
}

L
Linus Torvalds 已提交
512 513 514 515 516 517 518 519 520 521 522 523 524 525 526 527
/*
 * Function:	scsi_requeue_command()
 *
 * Purpose:	Handle post-processing of completed commands.
 *
 * Arguments:	q	- queue to operate on
 *		cmd	- command that may need to be requeued.
 *
 * Returns:	Nothing
 *
 * Notes:	After command completion, there may be blocks left
 *		over which weren't finished by the previous command
 *		this can be for a number of reasons - the main one is
 *		I/O errors in the middle of the request, in which case
 *		we need to request the blocks that come after the bad
 *		sector.
528
 * Notes:	Upon return, cmd is a stale pointer.
L
Linus Torvalds 已提交
529 530 531
 */
static void scsi_requeue_command(struct request_queue *q, struct scsi_cmnd *cmd)
{
532
	struct scsi_device *sdev = cmd->device;
533
	struct request *req = cmd->request;
534 535 536
	unsigned long flags;

	spin_lock_irqsave(q->queue_lock, flags);
537 538 539
	blk_unprep_request(req);
	req->special = NULL;
	scsi_put_command(cmd);
540
	blk_requeue_request(q, req);
541
	spin_unlock_irqrestore(q->queue_lock, flags);
L
Linus Torvalds 已提交
542 543

	scsi_run_queue(q);
544 545

	put_device(&sdev->sdev_gendev);
L
Linus Torvalds 已提交
546 547 548 549 550 551 552 553 554 555
}

void scsi_run_host_queues(struct Scsi_Host *shost)
{
	struct scsi_device *sdev;

	shost_for_each_device(sdev, shost)
		scsi_run_queue(sdev->request_queue);
}

556 557 558 559
static inline unsigned int scsi_sgtable_index(unsigned short nents)
{
	unsigned int index;

J
James Bottomley 已提交
560 561 562
	BUG_ON(nents > SCSI_MAX_SG_SEGMENTS);

	if (nents <= 8)
563
		index = 0;
J
James Bottomley 已提交
564 565
	else
		index = get_count_order(nents) - 3;
L
Linus Torvalds 已提交
566

567 568 569
	return index;
}

570
static void scsi_sg_free(struct scatterlist *sgl, unsigned int nents)
571 572 573
{
	struct scsi_host_sg_pool *sgp;

574 575 576
	sgp = scsi_sg_pools + scsi_sgtable_index(nents);
	mempool_free(sgl, sgp->pool);
}
577

578 579 580
static struct scatterlist *scsi_sg_alloc(unsigned int nents, gfp_t gfp_mask)
{
	struct scsi_host_sg_pool *sgp;
581

582 583 584
	sgp = scsi_sg_pools + scsi_sgtable_index(nents);
	return mempool_alloc(sgp->pool, gfp_mask);
}
585

586
static void scsi_free_sgtable(struct scsi_data_buffer *sdb, bool mq)
587
{
588
	if (mq && sdb->table.orig_nents <= SCSI_MAX_SG_SEGMENTS)
589 590
		return;
	__sg_free_table(&sdb->table, SCSI_MAX_SG_SEGMENTS, mq, scsi_sg_free);
591 592
}

593
static int scsi_alloc_sgtable(struct scsi_data_buffer *sdb, int nents, bool mq)
594
{
595
	struct scatterlist *first_chunk = NULL;
596
	int ret;
597

B
Boaz Harrosh 已提交
598
	BUG_ON(!nents);
599

600 601
	if (mq) {
		if (nents <= SCSI_MAX_SG_SEGMENTS) {
602 603
			sdb->table.nents = sdb->table.orig_nents = nents;
			sg_init_table(sdb->table.sgl, nents);
604 605 606 607 608
			return 0;
		}
		first_chunk = sdb->table.sgl;
	}

B
Boaz Harrosh 已提交
609
	ret = __sg_alloc_table(&sdb->table, nents, SCSI_MAX_SG_SEGMENTS,
C
Christoph Hellwig 已提交
610
			       first_chunk, GFP_ATOMIC, scsi_sg_alloc);
611
	if (unlikely(ret))
612
		scsi_free_sgtable(sdb, mq);
613
	return ret;
L
Linus Torvalds 已提交
614 615
}

616 617 618 619 620 621 622 623 624 625 626 627 628 629 630 631 632 633 634 635 636 637 638
static void scsi_uninit_cmd(struct scsi_cmnd *cmd)
{
	if (cmd->request->cmd_type == REQ_TYPE_FS) {
		struct scsi_driver *drv = scsi_cmd_to_driver(cmd);

		if (drv->uninit_command)
			drv->uninit_command(cmd);
	}
}

static void scsi_mq_free_sgtables(struct scsi_cmnd *cmd)
{
	if (cmd->sdb.table.nents)
		scsi_free_sgtable(&cmd->sdb, true);
	if (cmd->request->next_rq && cmd->request->next_rq->special)
		scsi_free_sgtable(cmd->request->next_rq->special, true);
	if (scsi_prot_sg_count(cmd))
		scsi_free_sgtable(cmd->prot_sdb, true);
}

static void scsi_mq_uninit_cmd(struct scsi_cmnd *cmd)
{
	struct scsi_device *sdev = cmd->device;
639
	struct Scsi_Host *shost = sdev->host;
640 641 642 643 644
	unsigned long flags;

	scsi_mq_free_sgtables(cmd);
	scsi_uninit_cmd(cmd);

645 646 647 648 649 650
	if (shost->use_cmd_list) {
		BUG_ON(list_empty(&cmd->list));
		spin_lock_irqsave(&sdev->list_lock, flags);
		list_del_init(&cmd->list);
		spin_unlock_irqrestore(&sdev->list_lock, flags);
	}
651 652
}

L
Linus Torvalds 已提交
653 654 655
/*
 * Function:    scsi_release_buffers()
 *
656
 * Purpose:     Free resources allocate for a scsi_command.
L
Linus Torvalds 已提交
657 658 659 660 661 662 663 664 665 666
 *
 * Arguments:   cmd	- command that we are bailing.
 *
 * Lock status: Assumed that no lock is held upon entry.
 *
 * Returns:     Nothing
 *
 * Notes:       In the event that an upper level driver rejects a
 *		command, we must release resources allocated during
 *		the __init_io() function.  Primarily this would involve
667
 *		the scatter-gather table.
L
Linus Torvalds 已提交
668
 */
669
static void scsi_release_buffers(struct scsi_cmnd *cmd)
L
Linus Torvalds 已提交
670
{
671
	if (cmd->sdb.table.nents)
672
		scsi_free_sgtable(&cmd->sdb, false);
673 674 675 676

	memset(&cmd->sdb, 0, sizeof(cmd->sdb));

	if (scsi_prot_sg_count(cmd))
677
		scsi_free_sgtable(cmd->prot_sdb, false);
L
Linus Torvalds 已提交
678 679
}

680 681 682 683
static void scsi_release_bidi_buffers(struct scsi_cmnd *cmd)
{
	struct scsi_data_buffer *bidi_sdb = cmd->request->next_rq->special;

684
	scsi_free_sgtable(bidi_sdb, false);
685 686 687 688
	kmem_cache_free(scsi_sdb_cache, bidi_sdb);
	cmd->request->next_rq->special = NULL;
}

689 690 691 692 693 694 695 696 697 698 699 700 701 702 703 704 705 706
static bool scsi_end_request(struct request *req, int error,
		unsigned int bytes, unsigned int bidi_bytes)
{
	struct scsi_cmnd *cmd = req->special;
	struct scsi_device *sdev = cmd->device;
	struct request_queue *q = sdev->request_queue;

	if (blk_update_request(req, error, bytes))
		return true;

	/* Bidi request must be completed as a whole */
	if (unlikely(bidi_bytes) &&
	    blk_update_request(req->next_rq, error, bidi_bytes))
		return true;

	if (blk_queue_add_random(q))
		add_disk_randomness(req->rq_disk);

707 708
	if (req->mq_ctx) {
		/*
709
		 * In the MQ case the command gets freed by __blk_mq_end_request,
710 711 712 713 714 715 716
		 * so we have to do all cleanup that depends on it earlier.
		 *
		 * We also can't kick the queues from irq context, so we
		 * will have to defer it to a workqueue.
		 */
		scsi_mq_uninit_cmd(cmd);

717
		__blk_mq_end_request(req, error);
718 719 720 721 722 723 724 725 726

		if (scsi_target(sdev)->single_lun ||
		    !list_empty(&sdev->host->starved_list))
			kblockd_schedule_work(&sdev->requeue_work);
		else
			blk_mq_start_stopped_hw_queues(q, true);
	} else {
		unsigned long flags;

727 728 729
		if (bidi_bytes)
			scsi_release_bidi_buffers(cmd);

730 731 732 733 734
		spin_lock_irqsave(q->queue_lock, flags);
		blk_finish_request(req, error);
		spin_unlock_irqrestore(q->queue_lock, flags);

		scsi_release_buffers(cmd);
C
Christoph Hellwig 已提交
735 736 737

		scsi_put_command(cmd);
		scsi_run_queue(q);
738
	}
739

C
Christoph Hellwig 已提交
740
	put_device(&sdev->sdev_gendev);
741 742 743
	return false;
}

744 745 746 747 748 749 750 751 752 753
/**
 * __scsi_error_from_host_byte - translate SCSI error code into errno
 * @cmd:	SCSI command (unused)
 * @result:	scsi error code
 *
 * Translate SCSI error code into standard UNIX errno.
 * Return values:
 * -ENOLINK	temporary transport failure
 * -EREMOTEIO	permanent target failure, do not retry
 * -EBADE	permanent nexus failure, retry on other path
754
 * -ENOSPC	No write space available
755
 * -ENODATA	Medium error
756 757
 * -EIO		unspecified I/O error
 */
758 759 760 761 762 763 764 765 766
static int __scsi_error_from_host_byte(struct scsi_cmnd *cmd, int result)
{
	int error = 0;

	switch(host_byte(result)) {
	case DID_TRANSPORT_FAILFAST:
		error = -ENOLINK;
		break;
	case DID_TARGET_FAILURE:
767
		set_host_byte(cmd, DID_OK);
768 769 770
		error = -EREMOTEIO;
		break;
	case DID_NEXUS_FAILURE:
771
		set_host_byte(cmd, DID_OK);
772 773
		error = -EBADE;
		break;
774 775 776 777
	case DID_ALLOC_FAILURE:
		set_host_byte(cmd, DID_OK);
		error = -ENOSPC;
		break;
778 779 780 781
	case DID_MEDIUM_ERROR:
		set_host_byte(cmd, DID_OK);
		error = -ENODATA;
		break;
782 783 784 785 786 787 788 789
	default:
		error = -EIO;
		break;
	}

	return error;
}

L
Linus Torvalds 已提交
790 791 792 793 794 795 796 797 798 799 800
/*
 * Function:    scsi_io_completion()
 *
 * Purpose:     Completion processing for block device I/O requests.
 *
 * Arguments:   cmd   - command that is finished.
 *
 * Lock status: Assumed that no lock is held upon entry.
 *
 * Returns:     Nothing
 *
801 802 803
 * Notes:       We will finish off the specified number of sectors.  If we
 *		are done, the command block will be released and the queue
 *		function will be goosed.  If we are not done then we have to
A
Alan Stern 已提交
804
 *		figure out what to do next:
L
Linus Torvalds 已提交
805
 *
A
Alan Stern 已提交
806 807 808 809 810
 *		a) We can call scsi_requeue_command().  The request
 *		   will be unprepared and put back on the queue.  Then
 *		   a new command will be created for it.  This should
 *		   be used if we made forward progress, or if we want
 *		   to switch from READ(10) to READ(6) for example.
L
Linus Torvalds 已提交
811
 *
812
 *		b) We can call __scsi_queue_insert().  The request will
A
Alan Stern 已提交
813 814 815
 *		   be put back on the queue and retried using the same
 *		   command as before, possibly after a delay.
 *
816
 *		c) We can call scsi_end_request() with -EIO to fail
A
Alan Stern 已提交
817
 *		   the remainder of the request.
L
Linus Torvalds 已提交
818
 */
819
void scsi_io_completion(struct scsi_cmnd *cmd, unsigned int good_bytes)
L
Linus Torvalds 已提交
820 821
{
	int result = cmd->result;
822
	struct request_queue *q = cmd->device->request_queue;
L
Linus Torvalds 已提交
823
	struct request *req = cmd->request;
824
	int error = 0;
L
Linus Torvalds 已提交
825
	struct scsi_sense_hdr sshdr;
826
	bool sense_valid = false;
827
	int sense_deferred = 0, level = 0;
A
Alan Stern 已提交
828 829
	enum {ACTION_FAIL, ACTION_REPREP, ACTION_RETRY,
	      ACTION_DELAYED_RETRY} action;
830
	unsigned long wait_for = (cmd->allowed + 1) * req->timeout;
L
Linus Torvalds 已提交
831 832 833 834 835 836

	if (result) {
		sense_valid = scsi_command_normalize_sense(cmd, &sshdr);
		if (sense_valid)
			sense_deferred = scsi_sense_is_deferred(&sshdr);
	}
837

838
	if (req->cmd_type == REQ_TYPE_BLOCK_PC) { /* SG_IO ioctl from block level */
L
Linus Torvalds 已提交
839 840 841 842 843 844 845 846 847 848 849 850
		if (result) {
			if (sense_valid && req->sense) {
				/*
				 * SG_IO wants current and deferred errors
				 */
				int len = 8 + cmd->sense_buffer[7];

				if (len > SCSI_SENSE_BUFFERSIZE)
					len = SCSI_SENSE_BUFFERSIZE;
				memcpy(req->sense, cmd->sense_buffer,  len);
				req->sense_len = len;
			}
851
			if (!sense_deferred)
852
				error = __scsi_error_from_host_byte(cmd, result);
853
		}
854 855 856 857
		/*
		 * __scsi_error_from_host_byte may have reset the host_byte
		 */
		req->errors = cmd->result;
858 859 860

		req->resid_len = scsi_get_resid(cmd);

861
		if (scsi_bidi_cmnd(cmd)) {
862 863 864 865 866
			/*
			 * Bidi commands Must be complete as a whole,
			 * both sides at once.
			 */
			req->next_rq->resid_len = scsi_in(cmd)->resid;
867 868 869
			if (scsi_end_request(req, 0, blk_rq_bytes(req),
					blk_rq_bytes(req->next_rq)))
				BUG();
870 871
			return;
		}
872 873 874 875 876 877 878 879
	} else if (blk_rq_bytes(req) == 0 && result && !sense_deferred) {
		/*
		 * Certain non BLOCK_PC requests are commands that don't
		 * actually transfer anything (FLUSH), so cannot use
		 * good_bytes != blk_rq_bytes(req) as the signal for an error.
		 * This sets the error explicitly for the problem case.
		 */
		error = __scsi_error_from_host_byte(cmd, result);
L
Linus Torvalds 已提交
880 881
	}

882 883
	/* no bidi support for !REQ_TYPE_BLOCK_PC yet */
	BUG_ON(blk_bidi_rq(req));
B
Boaz Harrosh 已提交
884

L
Linus Torvalds 已提交
885 886 887 888
	/*
	 * Next deal with any sectors which we were able to correctly
	 * handle.
	 */
889 890 891
	SCSI_LOG_HLCOMPLETE(1, scmd_printk(KERN_INFO, cmd,
		"%u sectors total, %d bytes done.\n",
		blk_rq_sectors(req), good_bytes));
892

893 894 895 896 897 898
	/*
	 * Recovered errors need reporting, but they're always treated
	 * as success, so fiddle the result code here.  For BLOCK_PC
	 * we already took a copy of the original into rq->errors which
	 * is what gets returned to the user
	 */
899 900 901 902 903 904 905 906
	if (sense_valid && (sshdr.sense_key == RECOVERED_ERROR)) {
		/* if ATA PASS-THROUGH INFORMATION AVAILABLE skip
		 * print since caller wants ATA registers. Only occurs on
		 * SCSI ATA PASS_THROUGH commands when CK_COND=1
		 */
		if ((sshdr.asc == 0x0) && (sshdr.ascq == 0x1d))
			;
		else if (!(req->cmd_flags & REQ_QUIET))
907
			scsi_print_sense(cmd);
908 909 910 911 912 913
		result = 0;
		/* BLOCK_PC may have set error */
		error = 0;
	}

	/*
914
	 * If we finished all bytes in the request we are done now.
915
	 */
916 917
	if (!scsi_end_request(req, error, good_bytes, 0))
		return;
918 919 920 921 922

	/*
	 * Kill remainder if no retrys.
	 */
	if (error && scsi_noretry_cmd(cmd)) {
923 924 925
		if (scsi_end_request(req, error, blk_rq_bytes(req), 0))
			BUG();
		return;
926 927 928 929 930
	}

	/*
	 * If there had been no error, but we have leftover bytes in the
	 * requeues just queue the command up again.
931
	 */
932 933
	if (result == 0)
		goto requeue;
934

935
	error = __scsi_error_from_host_byte(cmd, result);
936

A
Alan Stern 已提交
937 938 939 940 941 942 943
	if (host_byte(result) == DID_RESET) {
		/* Third party bus reset or reset for error recovery
		 * reasons.  Just retry the command and see what
		 * happens.
		 */
		action = ACTION_RETRY;
	} else if (sense_valid && !sense_deferred) {
L
Linus Torvalds 已提交
944 945 946
		switch (sshdr.sense_key) {
		case UNIT_ATTENTION:
			if (cmd->device->removable) {
947
				/* Detected disc change.  Set a bit
L
Linus Torvalds 已提交
948 949 950
				 * and quietly refuse further access.
				 */
				cmd->device->changed = 1;
A
Alan Stern 已提交
951
				action = ACTION_FAIL;
L
Linus Torvalds 已提交
952
			} else {
953 954 955
				/* Must have been a power glitch, or a
				 * bus reset.  Could not have been a
				 * media change, so we just retry the
A
Alan Stern 已提交
956
				 * command and see what happens.
957
				 */
A
Alan Stern 已提交
958
				action = ACTION_RETRY;
L
Linus Torvalds 已提交
959 960 961
			}
			break;
		case ILLEGAL_REQUEST:
962 963 964 965 966 967 968 969
			/* If we had an ILLEGAL REQUEST returned, then
			 * we may have performed an unsupported
			 * command.  The only thing this should be
			 * would be a ten byte read where only a six
			 * byte read was supported.  Also, on a system
			 * where READ CAPACITY failed, we may have
			 * read past the end of the disk.
			 */
970 971
			if ((cmd->device->use_10_for_rw &&
			    sshdr.asc == 0x20 && sshdr.ascq == 0x00) &&
L
Linus Torvalds 已提交
972 973
			    (cmd->cmnd[0] == READ_10 ||
			     cmd->cmnd[0] == WRITE_10)) {
A
Alan Stern 已提交
974
				/* This will issue a new 6-byte command. */
L
Linus Torvalds 已提交
975
				cmd->device->use_10_for_rw = 0;
A
Alan Stern 已提交
976
				action = ACTION_REPREP;
977 978 979
			} else if (sshdr.asc == 0x10) /* DIX */ {
				action = ACTION_FAIL;
				error = -EILSEQ;
980
			/* INVALID COMMAND OPCODE or INVALID FIELD IN CDB */
981
			} else if (sshdr.asc == 0x20 || sshdr.asc == 0x24) {
982
				action = ACTION_FAIL;
983
				error = -EREMOTEIO;
A
Alan Stern 已提交
984 985 986
			} else
				action = ACTION_FAIL;
			break;
987
		case ABORTED_COMMAND:
988
			action = ACTION_FAIL;
989
			if (sshdr.asc == 0x10) /* DIF */
990
				error = -EILSEQ;
L
Linus Torvalds 已提交
991 992
			break;
		case NOT_READY:
993
			/* If the device is in the process of becoming
J
James Bottomley 已提交
994
			 * ready, or has a temporary blockage, retry.
L
Linus Torvalds 已提交
995
			 */
J
James Bottomley 已提交
996 997 998 999 1000 1001 1002 1003 1004
			if (sshdr.asc == 0x04) {
				switch (sshdr.ascq) {
				case 0x01: /* becoming ready */
				case 0x04: /* format in progress */
				case 0x05: /* rebuild in progress */
				case 0x06: /* recalculation in progress */
				case 0x07: /* operation in progress */
				case 0x08: /* Long write in progress */
				case 0x09: /* self test in progress */
1005
				case 0x14: /* space allocation in progress */
A
Alan Stern 已提交
1006
					action = ACTION_DELAYED_RETRY;
J
James Bottomley 已提交
1007
					break;
1008 1009 1010
				default:
					action = ACTION_FAIL;
					break;
J
James Bottomley 已提交
1011
				}
1012
			} else
A
Alan Stern 已提交
1013 1014
				action = ACTION_FAIL;
			break;
L
Linus Torvalds 已提交
1015
		case VOLUME_OVERFLOW:
1016
			/* See SSC3rXX or current. */
A
Alan Stern 已提交
1017 1018
			action = ACTION_FAIL;
			break;
L
Linus Torvalds 已提交
1019
		default:
A
Alan Stern 已提交
1020
			action = ACTION_FAIL;
L
Linus Torvalds 已提交
1021 1022
			break;
		}
1023
	} else
A
Alan Stern 已提交
1024 1025
		action = ACTION_FAIL;

1026
	if (action != ACTION_FAIL &&
1027
	    time_before(cmd->jiffies_at_alloc + wait_for, jiffies))
1028 1029
		action = ACTION_FAIL;

A
Alan Stern 已提交
1030 1031 1032
	switch (action) {
	case ACTION_FAIL:
		/* Give up and fail the remainder of the request */
1033 1034 1035 1036 1037 1038 1039 1040 1041 1042 1043 1044 1045 1046 1047 1048 1049 1050 1051
		if (!(req->cmd_flags & REQ_QUIET)) {
			static DEFINE_RATELIMIT_STATE(_rs,
					DEFAULT_RATELIMIT_INTERVAL,
					DEFAULT_RATELIMIT_BURST);

			if (unlikely(scsi_logging_level))
				level = SCSI_LOG_LEVEL(SCSI_LOG_MLCOMPLETE_SHIFT,
						       SCSI_LOG_MLCOMPLETE_BITS);

			/*
			 * if logging is enabled the failure will be printed
			 * in scsi_log_completion(), so avoid duplicate messages
			 */
			if (!level && __ratelimit(&_rs)) {
				scsi_print_result(cmd, NULL, FAILED);
				if (driver_byte(result) & DRIVER_SENSE)
					scsi_print_sense(cmd);
				scsi_print_command(cmd);
			}
1052
		}
1053 1054
		if (!scsi_end_request(req, error, blk_rq_err_bytes(req), 0))
			return;
1055
		/*FALLTHRU*/
A
Alan Stern 已提交
1056
	case ACTION_REPREP:
1057
	requeue:
A
Alan Stern 已提交
1058 1059 1060
		/* Unprep the request and put it back at the head of the queue.
		 * A new command will be prepared and issued.
		 */
1061 1062 1063 1064 1065 1066 1067 1068
		if (q->mq_ops) {
			cmd->request->cmd_flags &= ~REQ_DONTPREP;
			scsi_mq_uninit_cmd(cmd);
			scsi_mq_requeue_cmd(cmd);
		} else {
			scsi_release_buffers(cmd);
			scsi_requeue_command(q, cmd);
		}
A
Alan Stern 已提交
1069 1070 1071
		break;
	case ACTION_RETRY:
		/* Retry the same command immediately */
1072
		__scsi_queue_insert(cmd, SCSI_MLQUEUE_EH_RETRY, 0);
A
Alan Stern 已提交
1073 1074 1075
		break;
	case ACTION_DELAYED_RETRY:
		/* Retry the same command after a delay */
1076
		__scsi_queue_insert(cmd, SCSI_MLQUEUE_DEVICE_BUSY, 0);
A
Alan Stern 已提交
1077
		break;
L
Linus Torvalds 已提交
1078 1079 1080
	}
}

1081
static int scsi_init_sgtable(struct request *req, struct scsi_data_buffer *sdb)
L
Linus Torvalds 已提交
1082
{
1083
	int count;
L
Linus Torvalds 已提交
1084 1085

	/*
C
Christoph Hellwig 已提交
1086
	 * If sg table allocation fails, requeue request later.
L
Linus Torvalds 已提交
1087
	 */
B
Boaz Harrosh 已提交
1088
	if (unlikely(scsi_alloc_sgtable(sdb, req->nr_phys_segments,
1089
					req->mq_ctx != NULL)))
L
Linus Torvalds 已提交
1090 1091 1092 1093 1094 1095
		return BLKPREP_DEFER;

	/* 
	 * Next, walk the list, and fill in the addresses and sizes of
	 * each segment.
	 */
B
Boaz Harrosh 已提交
1096 1097 1098
	count = blk_rq_map_sg(req->q, req, sdb->table.sgl);
	BUG_ON(count > sdb->table.nents);
	sdb->table.nents = count;
1099
	sdb->length = blk_rq_bytes(req);
1100
	return BLKPREP_OK;
L
Linus Torvalds 已提交
1101
}
1102 1103 1104 1105 1106 1107 1108 1109 1110 1111 1112 1113

/*
 * Function:    scsi_init_io()
 *
 * Purpose:     SCSI I/O initialize function.
 *
 * Arguments:   cmd   - Command descriptor we wish to initialize
 *
 * Returns:     0 on success
 *		BLKPREP_DEFER if the failure is retryable
 *		BLKPREP_KILL if the failure is fatal
 */
1114
int scsi_init_io(struct scsi_cmnd *cmd)
1115
{
1116
	struct scsi_device *sdev = cmd->device;
1117
	struct request *rq = cmd->request;
1118
	bool is_mq = (rq->mq_ctx != NULL);
1119
	int error;
1120

1121 1122
	BUG_ON(!rq->nr_phys_segments);

1123
	error = scsi_init_sgtable(rq, &cmd->sdb);
1124 1125 1126
	if (error)
		goto err_exit;

1127
	if (blk_bidi_rq(rq)) {
1128 1129 1130 1131 1132 1133 1134 1135 1136
		if (!rq->q->mq_ops) {
			struct scsi_data_buffer *bidi_sdb =
				kmem_cache_zalloc(scsi_sdb_cache, GFP_ATOMIC);
			if (!bidi_sdb) {
				error = BLKPREP_DEFER;
				goto err_exit;
			}

			rq->next_rq->special = bidi_sdb;
1137 1138
		}

1139
		error = scsi_init_sgtable(rq->next_rq, rq->next_rq->special);
1140 1141 1142 1143
		if (error)
			goto err_exit;
	}

1144
	if (blk_integrity_rq(rq)) {
1145 1146 1147
		struct scsi_data_buffer *prot_sdb = cmd->prot_sdb;
		int ivecs, count;

1148 1149 1150 1151 1152 1153 1154 1155 1156 1157 1158
		if (prot_sdb == NULL) {
			/*
			 * This can happen if someone (e.g. multipath)
			 * queues a command to a device on an adapter
			 * that does not support DIX.
			 */
			WARN_ON_ONCE(1);
			error = BLKPREP_KILL;
			goto err_exit;
		}

1159
		ivecs = blk_rq_count_integrity_sg(rq->q, rq->bio);
1160

1161
		if (scsi_alloc_sgtable(prot_sdb, ivecs, is_mq)) {
1162 1163 1164 1165
			error = BLKPREP_DEFER;
			goto err_exit;
		}

1166
		count = blk_rq_map_integrity_sg(rq->q, rq->bio,
1167 1168
						prot_sdb->table.sgl);
		BUG_ON(unlikely(count > ivecs));
1169
		BUG_ON(unlikely(count > queue_max_integrity_segments(rq->q)));
1170 1171 1172 1173 1174

		cmd->prot_sdb = prot_sdb;
		cmd->prot_sdb->table.nents = count;
	}

1175
	return BLKPREP_OK;
1176
err_exit:
1177 1178 1179 1180 1181 1182 1183 1184
	if (is_mq) {
		scsi_mq_free_sgtables(cmd);
	} else {
		scsi_release_buffers(cmd);
		cmd->request->special = NULL;
		scsi_put_command(cmd);
		put_device(&sdev->sdev_gendev);
	}
1185 1186
	return error;
}
1187
EXPORT_SYMBOL(scsi_init_io);
L
Linus Torvalds 已提交
1188

C
Christoph Hellwig 已提交
1189 1190 1191 1192 1193 1194
static struct scsi_cmnd *scsi_get_cmd_from_req(struct scsi_device *sdev,
		struct request *req)
{
	struct scsi_cmnd *cmd;

	if (!req->special) {
1195 1196 1197 1198
		/* Bail if we can't get a reference to the device */
		if (!get_device(&sdev->sdev_gendev))
			return NULL;

C
Christoph Hellwig 已提交
1199
		cmd = scsi_get_command(sdev, GFP_ATOMIC);
1200 1201
		if (unlikely(!cmd)) {
			put_device(&sdev->sdev_gendev);
C
Christoph Hellwig 已提交
1202
			return NULL;
1203
		}
C
Christoph Hellwig 已提交
1204 1205 1206 1207 1208 1209 1210 1211 1212
		req->special = cmd;
	} else {
		cmd = req->special;
	}

	/* pull a tag out of the request if we have one */
	cmd->tag = req->tag;
	cmd->request = req;

1213
	cmd->cmnd = req->cmd;
1214
	cmd->prot_op = SCSI_PROT_NORMAL;
1215

C
Christoph Hellwig 已提交
1216 1217 1218
	return cmd;
}

1219
static int scsi_setup_blk_pc_cmnd(struct scsi_device *sdev, struct request *req)
J
James Bottomley 已提交
1220
{
1221
	struct scsi_cmnd *cmd = req->special;
C
Christoph Hellwig 已提交
1222 1223 1224 1225 1226 1227 1228 1229

	/*
	 * BLOCK_PC requests may transfer data, in which case they must
	 * a bio attached to them.  Or they might contain a SCSI command
	 * that does not transfer data, in which case they may optionally
	 * submit a request without an attached bio.
	 */
	if (req->bio) {
1230
		int ret = scsi_init_io(cmd);
C
Christoph Hellwig 已提交
1231 1232 1233
		if (unlikely(ret))
			return ret;
	} else {
T
Tejun Heo 已提交
1234
		BUG_ON(blk_rq_bytes(req));
C
Christoph Hellwig 已提交
1235

B
Boaz Harrosh 已提交
1236
		memset(&cmd->sdb, 0, sizeof(cmd->sdb));
C
Christoph Hellwig 已提交
1237
	}
J
James Bottomley 已提交
1238 1239

	cmd->cmd_len = req->cmd_len;
T
Tejun Heo 已提交
1240
	cmd->transfersize = blk_rq_bytes(req);
J
James Bottomley 已提交
1241
	cmd->allowed = req->retries;
C
Christoph Hellwig 已提交
1242
	return BLKPREP_OK;
J
James Bottomley 已提交
1243 1244
}

C
Christoph Hellwig 已提交
1245
/*
1246 1247
 * Setup a REQ_TYPE_FS command.  These are simple request from filesystems
 * that still need to be translated to SCSI CDBs from the ULD.
C
Christoph Hellwig 已提交
1248
 */
1249
static int scsi_setup_fs_cmnd(struct scsi_device *sdev, struct request *req)
L
Linus Torvalds 已提交
1250
{
1251
	struct scsi_cmnd *cmd = req->special;
1252

1253 1254
	if (unlikely(sdev->handler && sdev->handler->prep_fn)) {
		int ret = sdev->handler->prep_fn(sdev, req);
1255 1256 1257 1258
		if (ret != BLKPREP_OK)
			return ret;
	}

1259
	memset(cmd->cmnd, 0, BLK_MAX_CDB);
1260
	return scsi_cmd_to_driver(cmd)->init_command(cmd);
C
Christoph Hellwig 已提交
1261 1262
}

1263 1264 1265 1266 1267 1268 1269 1270 1271 1272 1273 1274 1275 1276 1277 1278 1279 1280 1281 1282 1283
static int scsi_setup_cmnd(struct scsi_device *sdev, struct request *req)
{
	struct scsi_cmnd *cmd = req->special;

	if (!blk_rq_bytes(req))
		cmd->sc_data_direction = DMA_NONE;
	else if (rq_data_dir(req) == WRITE)
		cmd->sc_data_direction = DMA_TO_DEVICE;
	else
		cmd->sc_data_direction = DMA_FROM_DEVICE;

	switch (req->cmd_type) {
	case REQ_TYPE_FS:
		return scsi_setup_fs_cmnd(sdev, req);
	case REQ_TYPE_BLOCK_PC:
		return scsi_setup_blk_pc_cmnd(sdev, req);
	default:
		return BLKPREP_KILL;
	}
}

1284 1285
static int
scsi_prep_state_check(struct scsi_device *sdev, struct request *req)
C
Christoph Hellwig 已提交
1286 1287 1288
{
	int ret = BLKPREP_OK;

L
Linus Torvalds 已提交
1289
	/*
C
Christoph Hellwig 已提交
1290 1291
	 * If the device is not in running state we will reject some
	 * or all commands.
L
Linus Torvalds 已提交
1292
	 */
C
Christoph Hellwig 已提交
1293 1294 1295
	if (unlikely(sdev->sdev_state != SDEV_RUNNING)) {
		switch (sdev->sdev_state) {
		case SDEV_OFFLINE:
1296
		case SDEV_TRANSPORT_OFFLINE:
C
Christoph Hellwig 已提交
1297 1298 1299 1300 1301 1302 1303 1304 1305 1306 1307 1308 1309 1310
			/*
			 * If the device is offline we refuse to process any
			 * commands.  The device must be brought online
			 * before trying any recovery commands.
			 */
			sdev_printk(KERN_ERR, sdev,
				    "rejecting I/O to offline device\n");
			ret = BLKPREP_KILL;
			break;
		case SDEV_DEL:
			/*
			 * If the device is fully deleted, we refuse to
			 * process any commands as well.
			 */
1311
			sdev_printk(KERN_ERR, sdev,
C
Christoph Hellwig 已提交
1312 1313 1314 1315
				    "rejecting I/O to dead device\n");
			ret = BLKPREP_KILL;
			break;
		case SDEV_BLOCK:
1316
		case SDEV_CREATED_BLOCK:
1317 1318 1319
			ret = BLKPREP_DEFER;
			break;
		case SDEV_QUIESCE:
C
Christoph Hellwig 已提交
1320 1321 1322 1323 1324 1325 1326 1327 1328 1329 1330 1331 1332 1333 1334
			/*
			 * If the devices is blocked we defer normal commands.
			 */
			if (!(req->cmd_flags & REQ_PREEMPT))
				ret = BLKPREP_DEFER;
			break;
		default:
			/*
			 * For any other not fully online state we only allow
			 * special commands.  In particular any user initiated
			 * command is not allowed.
			 */
			if (!(req->cmd_flags & REQ_PREEMPT))
				ret = BLKPREP_KILL;
			break;
L
Linus Torvalds 已提交
1335 1336
		}
	}
1337 1338
	return ret;
}
L
Linus Torvalds 已提交
1339

1340 1341
static int
scsi_prep_return(struct request_queue *q, struct request *req, int ret)
1342 1343
{
	struct scsi_device *sdev = q->queuedata;
L
Linus Torvalds 已提交
1344

C
Christoph Hellwig 已提交
1345 1346
	switch (ret) {
	case BLKPREP_KILL:
1347
	case BLKPREP_INVALID:
C
Christoph Hellwig 已提交
1348
		req->errors = DID_NO_CONNECT << 16;
1349 1350 1351 1352 1353
		/* release the command and kill it */
		if (req->special) {
			struct scsi_cmnd *cmd = req->special;
			scsi_release_buffers(cmd);
			scsi_put_command(cmd);
1354
			put_device(&sdev->sdev_gendev);
1355 1356
			req->special = NULL;
		}
C
Christoph Hellwig 已提交
1357 1358
		break;
	case BLKPREP_DEFER:
L
Linus Torvalds 已提交
1359
		/*
1360
		 * If we defer, the blk_peek_request() returns NULL, but the
J
Jens Axboe 已提交
1361 1362
		 * queue must be restarted, so we schedule a callback to happen
		 * shortly.
L
Linus Torvalds 已提交
1363
		 */
1364
		if (atomic_read(&sdev->device_busy) == 0)
J
Jens Axboe 已提交
1365
			blk_delay_queue(q, SCSI_QUEUE_DELAY);
C
Christoph Hellwig 已提交
1366 1367 1368
		break;
	default:
		req->cmd_flags |= REQ_DONTPREP;
L
Linus Torvalds 已提交
1369 1370
	}

C
Christoph Hellwig 已提交
1371
	return ret;
L
Linus Torvalds 已提交
1372
}
1373

1374
static int scsi_prep_fn(struct request_queue *q, struct request *req)
1375 1376
{
	struct scsi_device *sdev = q->queuedata;
1377 1378 1379 1380 1381 1382 1383 1384 1385 1386 1387 1388
	struct scsi_cmnd *cmd;
	int ret;

	ret = scsi_prep_state_check(sdev, req);
	if (ret != BLKPREP_OK)
		goto out;

	cmd = scsi_get_cmd_from_req(sdev, req);
	if (unlikely(!cmd)) {
		ret = BLKPREP_DEFER;
		goto out;
	}
1389

1390
	ret = scsi_setup_cmnd(sdev, req);
1391
out:
1392 1393
	return scsi_prep_return(q, req, ret);
}
1394 1395 1396

static void scsi_unprep_fn(struct request_queue *q, struct request *req)
{
1397
	scsi_uninit_cmd(req->special);
1398
}
L
Linus Torvalds 已提交
1399 1400 1401 1402 1403 1404 1405 1406 1407 1408

/*
 * scsi_dev_queue_ready: if we can send requests to sdev, return 1 else
 * return 0.
 *
 * Called with the queue_lock held.
 */
static inline int scsi_dev_queue_ready(struct request_queue *q,
				  struct scsi_device *sdev)
{
1409 1410 1411
	unsigned int busy;

	busy = atomic_inc_return(&sdev->device_busy) - 1;
1412
	if (atomic_read(&sdev->device_blocked)) {
1413 1414 1415
		if (busy)
			goto out_dec;

L
Linus Torvalds 已提交
1416 1417 1418
		/*
		 * unblock after device_blocked iterates to zero
		 */
1419
		if (atomic_dec_return(&sdev->device_blocked) > 0) {
1420 1421 1422 1423 1424
			/*
			 * For the MQ case we take care of this in the caller.
			 */
			if (!q->mq_ops)
				blk_delay_queue(q, SCSI_QUEUE_DELAY);
1425
			goto out_dec;
L
Linus Torvalds 已提交
1426
		}
1427 1428
		SCSI_LOG_MLQUEUE(3, sdev_printk(KERN_INFO, sdev,
				   "unblocking device at zero depth\n"));
L
Linus Torvalds 已提交
1429
	}
1430 1431 1432

	if (busy >= sdev->queue_depth)
		goto out_dec;
L
Linus Torvalds 已提交
1433 1434

	return 1;
1435 1436 1437
out_dec:
	atomic_dec(&sdev->device_busy);
	return 0;
L
Linus Torvalds 已提交
1438 1439
}

1440 1441 1442 1443 1444 1445 1446 1447
/*
 * scsi_target_queue_ready: checks if there we can send commands to target
 * @sdev: scsi device on starget to check.
 */
static inline int scsi_target_queue_ready(struct Scsi_Host *shost,
					   struct scsi_device *sdev)
{
	struct scsi_target *starget = scsi_target(sdev);
1448
	unsigned int busy;
1449 1450

	if (starget->single_lun) {
1451
		spin_lock_irq(shost->host_lock);
1452
		if (starget->starget_sdev_user &&
1453 1454 1455 1456
		    starget->starget_sdev_user != sdev) {
			spin_unlock_irq(shost->host_lock);
			return 0;
		}
1457
		starget->starget_sdev_user = sdev;
1458
		spin_unlock_irq(shost->host_lock);
1459 1460
	}

1461 1462 1463
	if (starget->can_queue <= 0)
		return 1;

1464
	busy = atomic_inc_return(&starget->target_busy) - 1;
1465
	if (atomic_read(&starget->target_blocked) > 0) {
1466 1467 1468
		if (busy)
			goto starved;

1469 1470 1471
		/*
		 * unblock after target_blocked iterates to zero
		 */
1472
		if (atomic_dec_return(&starget->target_blocked) > 0)
1473
			goto out_dec;
1474 1475 1476

		SCSI_LOG_MLQUEUE(3, starget_printk(KERN_INFO, starget,
				 "unblocking target at zero depth\n"));
1477 1478
	}

1479
	if (busy >= starget->can_queue)
1480
		goto starved;
1481

1482 1483 1484 1485 1486
	return 1;

starved:
	spin_lock_irq(shost->host_lock);
	list_move_tail(&sdev->starved_entry, &shost->starved_list);
1487
	spin_unlock_irq(shost->host_lock);
1488
out_dec:
1489 1490
	if (starget->can_queue > 0)
		atomic_dec(&starget->target_busy);
1491
	return 0;
1492 1493
}

L
Linus Torvalds 已提交
1494 1495 1496 1497 1498 1499 1500 1501 1502
/*
 * scsi_host_queue_ready: if we can send requests to shost, return 1 else
 * return 0. We must end up running the queue again whenever 0 is
 * returned, else IO can hang.
 */
static inline int scsi_host_queue_ready(struct request_queue *q,
				   struct Scsi_Host *shost,
				   struct scsi_device *sdev)
{
1503
	unsigned int busy;
1504

1505
	if (scsi_host_in_recovery(shost))
1506 1507 1508
		return 0;

	busy = atomic_inc_return(&shost->host_busy) - 1;
1509
	if (atomic_read(&shost->host_blocked) > 0) {
1510 1511 1512
		if (busy)
			goto starved;

L
Linus Torvalds 已提交
1513 1514 1515
		/*
		 * unblock after host_blocked iterates to zero
		 */
1516
		if (atomic_dec_return(&shost->host_blocked) > 0)
1517
			goto out_dec;
1518 1519 1520 1521

		SCSI_LOG_MLQUEUE(3,
			shost_printk(KERN_INFO, shost,
				     "unblocking host at zero depth\n"));
L
Linus Torvalds 已提交
1522
	}
1523 1524 1525 1526 1527

	if (shost->can_queue > 0 && busy >= shost->can_queue)
		goto starved;
	if (shost->host_self_blocked)
		goto starved;
L
Linus Torvalds 已提交
1528 1529

	/* We're OK to process the command, so we can't be starved */
1530 1531 1532 1533 1534 1535
	if (!list_empty(&sdev->starved_entry)) {
		spin_lock_irq(shost->host_lock);
		if (!list_empty(&sdev->starved_entry))
			list_del_init(&sdev->starved_entry);
		spin_unlock_irq(shost->host_lock);
	}
L
Linus Torvalds 已提交
1536

1537 1538 1539 1540 1541 1542
	return 1;

starved:
	spin_lock_irq(shost->host_lock);
	if (list_empty(&sdev->starved_entry))
		list_add_tail(&sdev->starved_entry, &shost->starved_list);
1543
	spin_unlock_irq(shost->host_lock);
1544 1545 1546
out_dec:
	atomic_dec(&shost->host_busy);
	return 0;
L
Linus Torvalds 已提交
1547 1548
}

1549 1550 1551 1552 1553 1554 1555 1556
/*
 * Busy state exporting function for request stacking drivers.
 *
 * For efficiency, no lock is taken to check the busy state of
 * shost/starget/sdev, since the returned value is not guaranteed and
 * may be changed after request stacking drivers call the function,
 * regardless of taking lock or not.
 *
1557 1558 1559
 * When scsi can't dispatch I/Os anymore and needs to kill I/Os scsi
 * needs to return 'not busy'. Otherwise, request stacking drivers
 * may hold requests forever.
1560 1561 1562 1563 1564 1565
 */
static int scsi_lld_busy(struct request_queue *q)
{
	struct scsi_device *sdev = q->queuedata;
	struct Scsi_Host *shost;

B
Bart Van Assche 已提交
1566
	if (blk_queue_dying(q))
1567 1568 1569 1570
		return 0;

	shost = sdev->host;

1571 1572 1573 1574 1575 1576 1577
	/*
	 * Ignore host/starget busy state.
	 * Since block layer does not have a concept of fairness across
	 * multiple queues, congestion of host/starget needs to be handled
	 * in SCSI layer.
	 */
	if (scsi_host_in_recovery(shost) || scsi_device_is_busy(sdev))
1578 1579 1580 1581 1582
		return 1;

	return 0;
}

L
Linus Torvalds 已提交
1583
/*
1584
 * Kill a request for a dead device
L
Linus Torvalds 已提交
1585
 */
1586
static void scsi_kill_request(struct request *req, struct request_queue *q)
L
Linus Torvalds 已提交
1587
{
1588
	struct scsi_cmnd *cmd = req->special;
1589 1590 1591
	struct scsi_device *sdev;
	struct scsi_target *starget;
	struct Scsi_Host *shost;
L
Linus Torvalds 已提交
1592

1593
	blk_start_request(req);
1594

1595 1596
	scmd_printk(KERN_INFO, cmd, "killing request\n");

1597 1598 1599
	sdev = cmd->device;
	starget = scsi_target(sdev);
	shost = sdev->host;
1600 1601 1602
	scsi_init_cmd_errh(cmd);
	cmd->result = DID_NO_CONNECT << 16;
	atomic_inc(&cmd->device->iorequest_cnt);
1603 1604 1605 1606 1607 1608

	/*
	 * SCSI request completion path will do scsi_device_unbusy(),
	 * bump busy counts.  To bump the counters, we need to dance
	 * with the locks as normal issue path does.
	 */
1609
	atomic_inc(&sdev->device_busy);
1610
	atomic_inc(&shost->host_busy);
1611 1612
	if (starget->can_queue > 0)
		atomic_inc(&starget->target_busy);
1613

J
Jens Axboe 已提交
1614
	blk_complete_request(req);
L
Linus Torvalds 已提交
1615 1616
}

1617 1618
static void scsi_softirq_done(struct request *rq)
{
J
Jens Axboe 已提交
1619 1620
	struct scsi_cmnd *cmd = rq->special;
	unsigned long wait_for = (cmd->allowed + 1) * rq->timeout;
1621 1622 1623 1624
	int disposition;

	INIT_LIST_HEAD(&cmd->eh_entry);

J
Jens Axboe 已提交
1625 1626 1627 1628
	atomic_inc(&cmd->device->iodone_cnt);
	if (cmd->result)
		atomic_inc(&cmd->device->ioerr_cnt);

1629 1630 1631 1632 1633 1634 1635 1636
	disposition = scsi_decide_disposition(cmd);
	if (disposition != SUCCESS &&
	    time_before(cmd->jiffies_at_alloc + wait_for, jiffies)) {
		sdev_printk(KERN_ERR, cmd->device,
			    "timing out command, waited %lus\n",
			    wait_for/HZ);
		disposition = SUCCESS;
	}
1637

1638 1639 1640 1641 1642 1643 1644
	scsi_log_completion(cmd, disposition);

	switch (disposition) {
		case SUCCESS:
			scsi_finish_command(cmd);
			break;
		case NEEDS_RETRY:
1645
			scsi_queue_insert(cmd, SCSI_MLQUEUE_EH_RETRY);
1646 1647 1648 1649 1650 1651 1652 1653 1654 1655
			break;
		case ADD_TO_MLQUEUE:
			scsi_queue_insert(cmd, SCSI_MLQUEUE_DEVICE_BUSY);
			break;
		default:
			if (!scsi_eh_scmd_add(cmd, 0))
				scsi_finish_command(cmd);
	}
}

1656 1657 1658 1659 1660 1661 1662 1663 1664 1665 1666 1667 1668 1669 1670 1671 1672 1673 1674 1675 1676 1677 1678 1679 1680 1681 1682 1683 1684 1685 1686 1687 1688 1689 1690 1691 1692 1693 1694 1695 1696 1697 1698 1699 1700 1701 1702 1703 1704 1705 1706 1707 1708 1709 1710 1711 1712 1713 1714 1715 1716 1717 1718 1719 1720 1721 1722 1723 1724 1725 1726 1727 1728 1729 1730 1731 1732 1733 1734 1735 1736
/**
 * scsi_dispatch_command - Dispatch a command to the low-level driver.
 * @cmd: command block we are dispatching.
 *
 * Return: nonzero return request was rejected and device's queue needs to be
 * plugged.
 */
static int scsi_dispatch_cmd(struct scsi_cmnd *cmd)
{
	struct Scsi_Host *host = cmd->device->host;
	int rtn = 0;

	atomic_inc(&cmd->device->iorequest_cnt);

	/* check if the device is still usable */
	if (unlikely(cmd->device->sdev_state == SDEV_DEL)) {
		/* in SDEV_DEL we error all commands. DID_NO_CONNECT
		 * returns an immediate error upwards, and signals
		 * that the device is no longer present */
		cmd->result = DID_NO_CONNECT << 16;
		goto done;
	}

	/* Check to see if the scsi lld made this device blocked. */
	if (unlikely(scsi_device_blocked(cmd->device))) {
		/*
		 * in blocked state, the command is just put back on
		 * the device queue.  The suspend state has already
		 * blocked the queue so future requests should not
		 * occur until the device transitions out of the
		 * suspend state.
		 */
		SCSI_LOG_MLQUEUE(3, scmd_printk(KERN_INFO, cmd,
			"queuecommand : device blocked\n"));
		return SCSI_MLQUEUE_DEVICE_BUSY;
	}

	/* Store the LUN value in cmnd, if needed. */
	if (cmd->device->lun_in_cdb)
		cmd->cmnd[1] = (cmd->cmnd[1] & 0x1f) |
			       (cmd->device->lun << 5 & 0xe0);

	scsi_log_send(cmd);

	/*
	 * Before we queue this command, check if the command
	 * length exceeds what the host adapter can handle.
	 */
	if (cmd->cmd_len > cmd->device->host->max_cmd_len) {
		SCSI_LOG_MLQUEUE(3, scmd_printk(KERN_INFO, cmd,
			       "queuecommand : command too long. "
			       "cdb_size=%d host->max_cmd_len=%d\n",
			       cmd->cmd_len, cmd->device->host->max_cmd_len));
		cmd->result = (DID_ABORT << 16);
		goto done;
	}

	if (unlikely(host->shost_state == SHOST_DEL)) {
		cmd->result = (DID_NO_CONNECT << 16);
		goto done;

	}

	trace_scsi_dispatch_cmd_start(cmd);
	rtn = host->hostt->queuecommand(host, cmd);
	if (rtn) {
		trace_scsi_dispatch_cmd_error(cmd, rtn);
		if (rtn != SCSI_MLQUEUE_DEVICE_BUSY &&
		    rtn != SCSI_MLQUEUE_TARGET_BUSY)
			rtn = SCSI_MLQUEUE_HOST_BUSY;

		SCSI_LOG_MLQUEUE(3, scmd_printk(KERN_INFO, cmd,
			"queuecommand : request rejected\n"));
	}

	return rtn;
 done:
	cmd->scsi_done(cmd);
	return 0;
}

1737 1738 1739 1740 1741 1742 1743 1744 1745 1746 1747 1748 1749 1750 1751 1752 1753
/**
 * scsi_done - Invoke completion on finished SCSI command.
 * @cmd: The SCSI Command for which a low-level device driver (LLDD) gives
 * ownership back to SCSI Core -- i.e. the LLDD has finished with it.
 *
 * Description: This function is the mid-level's (SCSI Core) interrupt routine,
 * which regains ownership of the SCSI command (de facto) from a LLDD, and
 * calls blk_complete_request() for further processing.
 *
 * This function is interrupt context safe.
 */
static void scsi_done(struct scsi_cmnd *cmd)
{
	trace_scsi_dispatch_cmd_done(cmd);
	blk_complete_request(cmd->request);
}

L
Linus Torvalds 已提交
1754 1755 1756 1757 1758 1759 1760 1761 1762 1763 1764 1765
/*
 * Function:    scsi_request_fn()
 *
 * Purpose:     Main strategy routine for SCSI.
 *
 * Arguments:   q       - Pointer to actual queue.
 *
 * Returns:     Nothing
 *
 * Lock status: IO request lock assumed to be held when called.
 */
static void scsi_request_fn(struct request_queue *q)
1766 1767
	__releases(q->queue_lock)
	__acquires(q->queue_lock)
L
Linus Torvalds 已提交
1768 1769 1770 1771 1772 1773 1774 1775 1776 1777 1778
{
	struct scsi_device *sdev = q->queuedata;
	struct Scsi_Host *shost;
	struct scsi_cmnd *cmd;
	struct request *req;

	/*
	 * To start with, we keep looping until the queue is empty, or until
	 * the host is no longer able to accept any more requests.
	 */
	shost = sdev->host;
J
Jens Axboe 已提交
1779
	for (;;) {
L
Linus Torvalds 已提交
1780 1781 1782
		int rtn;
		/*
		 * get next queueable request.  We do this early to make sure
1783
		 * that the request is fully prepared even if we cannot
L
Linus Torvalds 已提交
1784 1785
		 * accept it.
		 */
1786
		req = blk_peek_request(q);
1787
		if (!req)
L
Linus Torvalds 已提交
1788 1789 1790
			break;

		if (unlikely(!scsi_device_online(sdev))) {
1791 1792
			sdev_printk(KERN_ERR, sdev,
				    "rejecting I/O to offline device\n");
1793
			scsi_kill_request(req, q);
L
Linus Torvalds 已提交
1794 1795 1796
			continue;
		}

1797 1798
		if (!scsi_dev_queue_ready(q, sdev))
			break;
L
Linus Torvalds 已提交
1799 1800 1801 1802 1803

		/*
		 * Remove the request from the request list.
		 */
		if (!(blk_queue_tagged(q) && !blk_queue_start_tag(q, req)))
1804
			blk_start_request(req);
L
Linus Torvalds 已提交
1805

1806
		spin_unlock_irq(q->queue_lock);
1807 1808 1809 1810
		cmd = req->special;
		if (unlikely(cmd == NULL)) {
			printk(KERN_CRIT "impossible request in %s.\n"
					 "please mail a stack trace to "
1811
					 "linux-scsi@vger.kernel.org\n",
1812
					 __func__);
1813
			blk_dump_rq_flags(req, "foo");
1814 1815
			BUG();
		}
L
Linus Torvalds 已提交
1816

1817 1818 1819 1820 1821 1822 1823 1824
		/*
		 * We hit this when the driver is using a host wide
		 * tag map. For device level tag maps the queue_depth check
		 * in the device ready fn would prevent us from trying
		 * to allocate a tag. Since the map is a shared host resource
		 * we add the dev to the starved list so it eventually gets
		 * a run when a tag is freed.
		 */
1825
		if (blk_queue_tagged(q) && !(req->cmd_flags & REQ_QUEUED)) {
1826
			spin_lock_irq(shost->host_lock);
1827 1828 1829
			if (list_empty(&sdev->starved_entry))
				list_add_tail(&sdev->starved_entry,
					      &shost->starved_list);
1830
			spin_unlock_irq(shost->host_lock);
1831 1832 1833
			goto not_ready;
		}

1834 1835 1836
		if (!scsi_target_queue_ready(shost, sdev))
			goto not_ready;

L
Linus Torvalds 已提交
1837
		if (!scsi_host_queue_ready(q, shost, sdev))
1838
			goto host_not_ready;
1839 1840 1841 1842 1843
	
		if (sdev->simple_tags)
			cmd->flags |= SCMD_TAGGED;
		else
			cmd->flags &= ~SCMD_TAGGED;
L
Linus Torvalds 已提交
1844 1845 1846 1847 1848 1849 1850 1851 1852 1853

		/*
		 * Finally, initialize any error handling parameters, and set up
		 * the timers for timeouts.
		 */
		scsi_init_cmd_errh(cmd);

		/*
		 * Dispatch the command to the low-level driver.
		 */
1854
		cmd->scsi_done = scsi_done;
L
Linus Torvalds 已提交
1855
		rtn = scsi_dispatch_cmd(cmd);
1856 1857 1858
		if (rtn) {
			scsi_queue_insert(cmd, rtn);
			spin_lock_irq(q->queue_lock);
J
Jens Axboe 已提交
1859
			goto out_delay;
1860 1861
		}
		spin_lock_irq(q->queue_lock);
L
Linus Torvalds 已提交
1862 1863
	}

1864
	return;
L
Linus Torvalds 已提交
1865

1866
 host_not_ready:
1867 1868
	if (scsi_target(sdev)->can_queue > 0)
		atomic_dec(&scsi_target(sdev)->target_busy);
1869
 not_ready:
L
Linus Torvalds 已提交
1870 1871 1872 1873 1874 1875 1876 1877 1878 1879
	/*
	 * lock q, handle tag, requeue req, and decrement device_busy. We
	 * must return with queue_lock held.
	 *
	 * Decrementing device_busy without checking it is OK, as all such
	 * cases (host limits or settings) should run the queue at some
	 * later time.
	 */
	spin_lock_irq(q->queue_lock);
	blk_requeue_request(q, req);
1880
	atomic_dec(&sdev->device_busy);
J
Jens Axboe 已提交
1881
out_delay:
G
Guenter Roeck 已提交
1882
	if (!atomic_read(&sdev->device_busy) && !scsi_device_blocked(sdev))
J
Jens Axboe 已提交
1883
		blk_delay_queue(q, SCSI_QUEUE_DELAY);
L
Linus Torvalds 已提交
1884 1885
}

1886 1887 1888 1889 1890 1891 1892 1893 1894 1895 1896 1897 1898 1899 1900 1901 1902 1903 1904 1905 1906 1907 1908 1909 1910 1911 1912 1913 1914 1915 1916 1917 1918 1919 1920 1921 1922
static inline int prep_to_mq(int ret)
{
	switch (ret) {
	case BLKPREP_OK:
		return 0;
	case BLKPREP_DEFER:
		return BLK_MQ_RQ_QUEUE_BUSY;
	default:
		return BLK_MQ_RQ_QUEUE_ERROR;
	}
}

static int scsi_mq_prep_fn(struct request *req)
{
	struct scsi_cmnd *cmd = blk_mq_rq_to_pdu(req);
	struct scsi_device *sdev = req->q->queuedata;
	struct Scsi_Host *shost = sdev->host;
	unsigned char *sense_buf = cmd->sense_buffer;
	struct scatterlist *sg;

	memset(cmd, 0, sizeof(struct scsi_cmnd));

	req->special = cmd;

	cmd->request = req;
	cmd->device = sdev;
	cmd->sense_buffer = sense_buf;

	cmd->tag = req->tag;

	cmd->cmnd = req->cmd;
	cmd->prot_op = SCSI_PROT_NORMAL;

	INIT_LIST_HEAD(&cmd->list);
	INIT_DELAYED_WORK(&cmd->abort_work, scmd_eh_abort_handler);
	cmd->jiffies_at_alloc = jiffies;

1923 1924 1925 1926 1927
	if (shost->use_cmd_list) {
		spin_lock_irq(&sdev->list_lock);
		list_add_tail(&cmd->list, &sdev->cmd_list);
		spin_unlock_irq(&sdev->list_lock);
	}
1928 1929 1930 1931 1932 1933

	sg = (void *)cmd + sizeof(struct scsi_cmnd) + shost->hostt->cmd_size;
	cmd->sdb.table.sgl = sg;

	if (scsi_host_get_prot(shost)) {
		cmd->prot_sdb = (void *)sg +
1934 1935 1936
			min_t(unsigned int,
			      shost->sg_tablesize, SCSI_MAX_SG_SEGMENTS) *
			sizeof(struct scatterlist);
1937 1938 1939 1940 1941 1942 1943 1944 1945 1946 1947 1948 1949 1950 1951 1952 1953
		memset(cmd->prot_sdb, 0, sizeof(struct scsi_data_buffer));

		cmd->prot_sdb->table.sgl =
			(struct scatterlist *)(cmd->prot_sdb + 1);
	}

	if (blk_bidi_rq(req)) {
		struct request *next_rq = req->next_rq;
		struct scsi_data_buffer *bidi_sdb = blk_mq_rq_to_pdu(next_rq);

		memset(bidi_sdb, 0, sizeof(struct scsi_data_buffer));
		bidi_sdb->table.sgl =
			(struct scatterlist *)(bidi_sdb + 1);

		next_rq->special = bidi_sdb;
	}

1954 1955
	blk_mq_start_request(req);

1956 1957 1958 1959 1960 1961
	return scsi_setup_cmnd(sdev, req);
}

static void scsi_mq_done(struct scsi_cmnd *cmd)
{
	trace_scsi_dispatch_cmd_done(cmd);
1962
	blk_mq_complete_request(cmd->request, cmd->request->errors);
1963 1964
}

1965 1966
static int scsi_queue_rq(struct blk_mq_hw_ctx *hctx,
			 const struct blk_mq_queue_data *bd)
1967
{
1968
	struct request *req = bd->rq;
1969 1970 1971 1972 1973 1974 1975 1976 1977 1978 1979 1980 1981 1982 1983 1984 1985 1986 1987 1988 1989 1990
	struct request_queue *q = req->q;
	struct scsi_device *sdev = q->queuedata;
	struct Scsi_Host *shost = sdev->host;
	struct scsi_cmnd *cmd = blk_mq_rq_to_pdu(req);
	int ret;
	int reason;

	ret = prep_to_mq(scsi_prep_state_check(sdev, req));
	if (ret)
		goto out;

	ret = BLK_MQ_RQ_QUEUE_BUSY;
	if (!get_device(&sdev->sdev_gendev))
		goto out;

	if (!scsi_dev_queue_ready(q, sdev))
		goto out_put_device;
	if (!scsi_target_queue_ready(shost, sdev))
		goto out_dec_device_busy;
	if (!scsi_host_queue_ready(q, shost, sdev))
		goto out_dec_target_busy;

1991

1992 1993 1994 1995 1996
	if (!(req->cmd_flags & REQ_DONTPREP)) {
		ret = prep_to_mq(scsi_mq_prep_fn(req));
		if (ret)
			goto out_dec_host_busy;
		req->cmd_flags |= REQ_DONTPREP;
1997 1998
	} else {
		blk_mq_start_request(req);
1999 2000
	}

2001 2002
	if (sdev->simple_tags)
		cmd->flags |= SCMD_TAGGED;
2003
	else
2004
		cmd->flags &= ~SCMD_TAGGED;
2005

2006 2007 2008 2009 2010 2011 2012 2013 2014 2015 2016 2017 2018 2019 2020 2021 2022 2023 2024 2025 2026 2027 2028 2029 2030 2031 2032 2033 2034 2035 2036 2037 2038 2039 2040 2041 2042 2043 2044 2045 2046 2047 2048 2049
	scsi_init_cmd_errh(cmd);
	cmd->scsi_done = scsi_mq_done;

	reason = scsi_dispatch_cmd(cmd);
	if (reason) {
		scsi_set_blocked(cmd, reason);
		ret = BLK_MQ_RQ_QUEUE_BUSY;
		goto out_dec_host_busy;
	}

	return BLK_MQ_RQ_QUEUE_OK;

out_dec_host_busy:
	atomic_dec(&shost->host_busy);
out_dec_target_busy:
	if (scsi_target(sdev)->can_queue > 0)
		atomic_dec(&scsi_target(sdev)->target_busy);
out_dec_device_busy:
	atomic_dec(&sdev->device_busy);
out_put_device:
	put_device(&sdev->sdev_gendev);
out:
	switch (ret) {
	case BLK_MQ_RQ_QUEUE_BUSY:
		blk_mq_stop_hw_queue(hctx);
		if (atomic_read(&sdev->device_busy) == 0 &&
		    !scsi_device_blocked(sdev))
			blk_mq_delay_queue(hctx, SCSI_QUEUE_DELAY);
		break;
	case BLK_MQ_RQ_QUEUE_ERROR:
		/*
		 * Make sure to release all allocated ressources when
		 * we hit an error, as we will never see this command
		 * again.
		 */
		if (req->cmd_flags & REQ_DONTPREP)
			scsi_mq_uninit_cmd(cmd);
		break;
	default:
		break;
	}
	return ret;
}

2050 2051 2052 2053 2054 2055 2056 2057
static enum blk_eh_timer_return scsi_timeout(struct request *req,
		bool reserved)
{
	if (reserved)
		return BLK_EH_RESET_TIMER;
	return scsi_times_out(req);
}

2058 2059 2060 2061 2062 2063 2064 2065 2066 2067 2068 2069 2070 2071 2072 2073 2074 2075 2076 2077 2078
static int scsi_init_request(void *data, struct request *rq,
		unsigned int hctx_idx, unsigned int request_idx,
		unsigned int numa_node)
{
	struct scsi_cmnd *cmd = blk_mq_rq_to_pdu(rq);

	cmd->sense_buffer = kzalloc_node(SCSI_SENSE_BUFFERSIZE, GFP_KERNEL,
			numa_node);
	if (!cmd->sense_buffer)
		return -ENOMEM;
	return 0;
}

static void scsi_exit_request(void *data, struct request *rq,
		unsigned int hctx_idx, unsigned int request_idx)
{
	struct scsi_cmnd *cmd = blk_mq_rq_to_pdu(rq);

	kfree(cmd->sense_buffer);
}

2079
static u64 scsi_calculate_bounce_limit(struct Scsi_Host *shost)
L
Linus Torvalds 已提交
2080 2081 2082 2083 2084 2085 2086 2087 2088 2089 2090 2091 2092 2093 2094
{
	struct device *host_dev;
	u64 bounce_limit = 0xffffffff;

	if (shost->unchecked_isa_dma)
		return BLK_BOUNCE_ISA;
	/*
	 * Platforms with virtual-DMA translation
	 * hardware have no practical limit.
	 */
	if (!PCI_DMA_BUS_IS_PHYS)
		return BLK_BOUNCE_ANY;

	host_dev = scsi_get_device(shost);
	if (host_dev && host_dev->dma_mask)
2095
		bounce_limit = (u64)dma_max_pfn(host_dev) << PAGE_SHIFT;
L
Linus Torvalds 已提交
2096 2097 2098 2099

	return bounce_limit;
}

2100
static void __scsi_init_queue(struct Scsi_Host *shost, struct request_queue *q)
L
Linus Torvalds 已提交
2101
{
2102
	struct device *dev = shost->dma_dev;
L
Linus Torvalds 已提交
2103

2104 2105 2106
	/*
	 * this limit is imposed by hardware restrictions
	 */
2107 2108
	blk_queue_max_segments(q, min_t(unsigned short, shost->sg_tablesize,
					SCSI_MAX_SG_CHAIN_SEGMENTS));
2109

2110 2111 2112 2113 2114 2115 2116 2117
	if (scsi_host_prot_dma(shost)) {
		shost->sg_prot_tablesize =
			min_not_zero(shost->sg_prot_tablesize,
				     (unsigned short)SCSI_MAX_PROT_SG_SEGMENTS);
		BUG_ON(shost->sg_prot_tablesize < shost->sg_tablesize);
		blk_queue_max_integrity_segments(q, shost->sg_prot_tablesize);
	}

2118
	blk_queue_max_hw_sectors(q, shost->max_sectors);
L
Linus Torvalds 已提交
2119 2120
	blk_queue_bounce_limit(q, scsi_calculate_bounce_limit(shost));
	blk_queue_segment_boundary(q, shost->dma_boundary);
2121
	dma_set_seg_boundary(dev, shost->dma_boundary);
L
Linus Torvalds 已提交
2122

2123 2124
	blk_queue_max_segment_size(q, dma_get_max_seg_size(dev));

L
Linus Torvalds 已提交
2125
	if (!shost->use_clustering)
2126
		q->limits.cluster = 0;
2127 2128 2129 2130 2131 2132 2133

	/*
	 * set a reasonable default alignment on word boundaries: the
	 * host and device may alter it using
	 * blk_queue_update_dma_alignment() later.
	 */
	blk_queue_dma_alignment(q, 0x03);
2134
}
2135

2136 2137 2138 2139 2140 2141 2142 2143 2144
struct request_queue *__scsi_alloc_queue(struct Scsi_Host *shost,
					 request_fn_proc *request_fn)
{
	struct request_queue *q;

	q = blk_init_queue(request_fn, NULL);
	if (!q)
		return NULL;
	__scsi_init_queue(shost, q);
L
Linus Torvalds 已提交
2145 2146
	return q;
}
2147 2148 2149 2150 2151 2152 2153 2154 2155 2156 2157
EXPORT_SYMBOL(__scsi_alloc_queue);

struct request_queue *scsi_alloc_queue(struct scsi_device *sdev)
{
	struct request_queue *q;

	q = __scsi_alloc_queue(sdev->host, scsi_request_fn);
	if (!q)
		return NULL;

	blk_queue_prep_rq(q, scsi_prep_fn);
2158
	blk_queue_unprep_rq(q, scsi_unprep_fn);
2159
	blk_queue_softirq_done(q, scsi_softirq_done);
J
Jens Axboe 已提交
2160
	blk_queue_rq_timed_out(q, scsi_times_out);
2161
	blk_queue_lld_busy(q, scsi_lld_busy);
2162 2163
	return q;
}
L
Linus Torvalds 已提交
2164

2165 2166 2167 2168
static struct blk_mq_ops scsi_mq_ops = {
	.map_queue	= blk_mq_map_queue,
	.queue_rq	= scsi_queue_rq,
	.complete	= scsi_softirq_done,
2169
	.timeout	= scsi_timeout,
2170 2171 2172 2173 2174 2175 2176 2177 2178 2179 2180 2181 2182 2183 2184 2185 2186 2187 2188 2189 2190 2191 2192 2193 2194 2195 2196 2197 2198
	.init_request	= scsi_init_request,
	.exit_request	= scsi_exit_request,
};

struct request_queue *scsi_mq_alloc_queue(struct scsi_device *sdev)
{
	sdev->request_queue = blk_mq_init_queue(&sdev->host->tag_set);
	if (IS_ERR(sdev->request_queue))
		return NULL;

	sdev->request_queue->queuedata = sdev;
	__scsi_init_queue(sdev->host, sdev->request_queue);
	return sdev->request_queue;
}

int scsi_mq_setup_tags(struct Scsi_Host *shost)
{
	unsigned int cmd_size, sgl_size, tbl_size;

	tbl_size = shost->sg_tablesize;
	if (tbl_size > SCSI_MAX_SG_SEGMENTS)
		tbl_size = SCSI_MAX_SG_SEGMENTS;
	sgl_size = tbl_size * sizeof(struct scatterlist);
	cmd_size = sizeof(struct scsi_cmnd) + shost->hostt->cmd_size + sgl_size;
	if (scsi_host_get_prot(shost))
		cmd_size += sizeof(struct scsi_data_buffer) + sgl_size;

	memset(&shost->tag_set, 0, sizeof(shost->tag_set));
	shost->tag_set.ops = &scsi_mq_ops;
2199
	shost->tag_set.nr_hw_queues = shost->nr_hw_queues ? : 1;
2200 2201 2202 2203
	shost->tag_set.queue_depth = shost->can_queue;
	shost->tag_set.cmd_size = cmd_size;
	shost->tag_set.numa_node = NUMA_NO_NODE;
	shost->tag_set.flags = BLK_MQ_F_SHOULD_MERGE | BLK_MQ_F_SG_MERGE;
S
Shaohua Li 已提交
2204 2205
	shost->tag_set.flags |=
		BLK_ALLOC_POLICY_TO_MQ_FLAG(shost->hostt->tag_alloc_policy);
2206 2207 2208 2209 2210 2211 2212 2213 2214 2215
	shost->tag_set.driver_data = shost;

	return blk_mq_alloc_tag_set(&shost->tag_set);
}

void scsi_mq_destroy_tags(struct Scsi_Host *shost)
{
	blk_mq_free_tag_set(&shost->tag_set);
}

L
Linus Torvalds 已提交
2216 2217 2218 2219 2220 2221 2222 2223 2224 2225 2226 2227 2228 2229 2230 2231 2232 2233 2234 2235 2236 2237 2238 2239 2240 2241 2242 2243 2244 2245 2246 2247 2248 2249 2250 2251 2252 2253 2254 2255 2256 2257 2258 2259 2260 2261 2262 2263 2264 2265 2266 2267 2268
/*
 * Function:    scsi_block_requests()
 *
 * Purpose:     Utility function used by low-level drivers to prevent further
 *		commands from being queued to the device.
 *
 * Arguments:   shost       - Host in question
 *
 * Returns:     Nothing
 *
 * Lock status: No locks are assumed held.
 *
 * Notes:       There is no timer nor any other means by which the requests
 *		get unblocked other than the low-level driver calling
 *		scsi_unblock_requests().
 */
void scsi_block_requests(struct Scsi_Host *shost)
{
	shost->host_self_blocked = 1;
}
EXPORT_SYMBOL(scsi_block_requests);

/*
 * Function:    scsi_unblock_requests()
 *
 * Purpose:     Utility function used by low-level drivers to allow further
 *		commands from being queued to the device.
 *
 * Arguments:   shost       - Host in question
 *
 * Returns:     Nothing
 *
 * Lock status: No locks are assumed held.
 *
 * Notes:       There is no timer nor any other means by which the requests
 *		get unblocked other than the low-level driver calling
 *		scsi_unblock_requests().
 *
 *		This is done as an API function so that changes to the
 *		internals of the scsi mid-layer won't require wholesale
 *		changes to drivers that use this feature.
 */
void scsi_unblock_requests(struct Scsi_Host *shost)
{
	shost->host_self_blocked = 0;
	scsi_run_host_queues(shost);
}
EXPORT_SYMBOL(scsi_unblock_requests);

int __init scsi_init_queue(void)
{
	int i;

2269 2270 2271 2272 2273
	scsi_sdb_cache = kmem_cache_create("scsi_data_buffer",
					   sizeof(struct scsi_data_buffer),
					   0, 0, NULL);
	if (!scsi_sdb_cache) {
		printk(KERN_ERR "SCSI: can't init scsi sdb cache\n");
F
FUJITA Tomonori 已提交
2274
		return -ENOMEM;
2275 2276
	}

L
Linus Torvalds 已提交
2277 2278 2279 2280 2281
	for (i = 0; i < SG_MEMPOOL_NR; i++) {
		struct scsi_host_sg_pool *sgp = scsi_sg_pools + i;
		int size = sgp->size * sizeof(struct scatterlist);

		sgp->slab = kmem_cache_create(sgp->name, size, 0,
2282
				SLAB_HWCACHE_ALIGN, NULL);
L
Linus Torvalds 已提交
2283 2284 2285
		if (!sgp->slab) {
			printk(KERN_ERR "SCSI: can't init sg slab %s\n",
					sgp->name);
2286
			goto cleanup_sdb;
L
Linus Torvalds 已提交
2287 2288
		}

2289 2290
		sgp->pool = mempool_create_slab_pool(SG_MEMPOOL_SIZE,
						     sgp->slab);
L
Linus Torvalds 已提交
2291 2292 2293
		if (!sgp->pool) {
			printk(KERN_ERR "SCSI: can't init sg mempool %s\n",
					sgp->name);
2294
			goto cleanup_sdb;
L
Linus Torvalds 已提交
2295 2296 2297 2298
		}
	}

	return 0;
2299

2300
cleanup_sdb:
2301 2302 2303 2304 2305 2306 2307
	for (i = 0; i < SG_MEMPOOL_NR; i++) {
		struct scsi_host_sg_pool *sgp = scsi_sg_pools + i;
		if (sgp->pool)
			mempool_destroy(sgp->pool);
		if (sgp->slab)
			kmem_cache_destroy(sgp->slab);
	}
2308
	kmem_cache_destroy(scsi_sdb_cache);
2309 2310

	return -ENOMEM;
L
Linus Torvalds 已提交
2311 2312 2313 2314 2315 2316
}

void scsi_exit_queue(void)
{
	int i;

2317
	kmem_cache_destroy(scsi_sdb_cache);
2318

L
Linus Torvalds 已提交
2319 2320 2321 2322 2323 2324
	for (i = 0; i < SG_MEMPOOL_NR; i++) {
		struct scsi_host_sg_pool *sgp = scsi_sg_pools + i;
		mempool_destroy(sgp->pool);
		kmem_cache_destroy(sgp->slab);
	}
}
2325 2326 2327 2328 2329 2330 2331 2332 2333 2334 2335 2336

/**
 *	scsi_mode_select - issue a mode select
 *	@sdev:	SCSI device to be queried
 *	@pf:	Page format bit (1 == standard, 0 == vendor specific)
 *	@sp:	Save page bit (0 == don't save, 1 == save)
 *	@modepage: mode page being requested
 *	@buffer: request buffer (may not be smaller than eight bytes)
 *	@len:	length of request buffer.
 *	@timeout: command timeout
 *	@retries: number of retries before failing
 *	@data: returns a structure abstracting the mode header data
2337
 *	@sshdr: place to put sense data (or NULL if no sense to be collected).
2338 2339 2340 2341 2342 2343 2344 2345 2346 2347 2348 2349 2350 2351 2352 2353 2354 2355 2356 2357 2358 2359 2360 2361 2362 2363 2364 2365 2366 2367 2368 2369 2370 2371 2372 2373 2374 2375 2376 2377 2378 2379 2380 2381 2382 2383 2384 2385 2386 2387 2388 2389 2390 2391 2392 2393 2394 2395 2396
 *		must be SCSI_SENSE_BUFFERSIZE big.
 *
 *	Returns zero if successful; negative error number or scsi
 *	status on error
 *
 */
int
scsi_mode_select(struct scsi_device *sdev, int pf, int sp, int modepage,
		 unsigned char *buffer, int len, int timeout, int retries,
		 struct scsi_mode_data *data, struct scsi_sense_hdr *sshdr)
{
	unsigned char cmd[10];
	unsigned char *real_buffer;
	int ret;

	memset(cmd, 0, sizeof(cmd));
	cmd[1] = (pf ? 0x10 : 0) | (sp ? 0x01 : 0);

	if (sdev->use_10_for_ms) {
		if (len > 65535)
			return -EINVAL;
		real_buffer = kmalloc(8 + len, GFP_KERNEL);
		if (!real_buffer)
			return -ENOMEM;
		memcpy(real_buffer + 8, buffer, len);
		len += 8;
		real_buffer[0] = 0;
		real_buffer[1] = 0;
		real_buffer[2] = data->medium_type;
		real_buffer[3] = data->device_specific;
		real_buffer[4] = data->longlba ? 0x01 : 0;
		real_buffer[5] = 0;
		real_buffer[6] = data->block_descriptor_length >> 8;
		real_buffer[7] = data->block_descriptor_length;

		cmd[0] = MODE_SELECT_10;
		cmd[7] = len >> 8;
		cmd[8] = len;
	} else {
		if (len > 255 || data->block_descriptor_length > 255 ||
		    data->longlba)
			return -EINVAL;

		real_buffer = kmalloc(4 + len, GFP_KERNEL);
		if (!real_buffer)
			return -ENOMEM;
		memcpy(real_buffer + 4, buffer, len);
		len += 4;
		real_buffer[0] = 0;
		real_buffer[1] = data->medium_type;
		real_buffer[2] = data->device_specific;
		real_buffer[3] = data->block_descriptor_length;
		

		cmd[0] = MODE_SELECT;
		cmd[4] = len;
	}

	ret = scsi_execute_req(sdev, cmd, DMA_TO_DEVICE, real_buffer, len,
2397
			       sshdr, timeout, retries, NULL);
2398 2399 2400 2401 2402
	kfree(real_buffer);
	return ret;
}
EXPORT_SYMBOL_GPL(scsi_mode_select);

L
Linus Torvalds 已提交
2403
/**
2404
 *	scsi_mode_sense - issue a mode sense, falling back from 10 to six bytes if necessary.
2405
 *	@sdev:	SCSI device to be queried
L
Linus Torvalds 已提交
2406 2407 2408 2409 2410 2411 2412
 *	@dbd:	set if mode sense will allow block descriptors to be returned
 *	@modepage: mode page being requested
 *	@buffer: request buffer (may not be smaller than eight bytes)
 *	@len:	length of request buffer.
 *	@timeout: command timeout
 *	@retries: number of retries before failing
 *	@data: returns a structure abstracting the mode header data
2413
 *	@sshdr: place to put sense data (or NULL if no sense to be collected).
2414
 *		must be SCSI_SENSE_BUFFERSIZE big.
L
Linus Torvalds 已提交
2415 2416 2417 2418
 *
 *	Returns zero if unsuccessful, or the header offset (either 4
 *	or 8 depending on whether a six or ten byte command was
 *	issued) if successful.
2419
 */
L
Linus Torvalds 已提交
2420
int
2421
scsi_mode_sense(struct scsi_device *sdev, int dbd, int modepage,
L
Linus Torvalds 已提交
2422
		  unsigned char *buffer, int len, int timeout, int retries,
2423 2424
		  struct scsi_mode_data *data, struct scsi_sense_hdr *sshdr)
{
L
Linus Torvalds 已提交
2425 2426 2427
	unsigned char cmd[12];
	int use_10_for_ms;
	int header_length;
2428
	int result, retry_count = retries;
2429
	struct scsi_sense_hdr my_sshdr;
L
Linus Torvalds 已提交
2430 2431 2432 2433 2434 2435

	memset(data, 0, sizeof(*data));
	memset(&cmd[0], 0, 12);
	cmd[1] = dbd & 0x18;	/* allows DBD and LLBA bits */
	cmd[2] = modepage;

2436 2437 2438 2439
	/* caller might not be interested in sense, but we need it */
	if (!sshdr)
		sshdr = &my_sshdr;

L
Linus Torvalds 已提交
2440
 retry:
2441
	use_10_for_ms = sdev->use_10_for_ms;
L
Linus Torvalds 已提交
2442 2443 2444 2445 2446 2447 2448 2449 2450 2451 2452 2453 2454 2455 2456 2457 2458 2459 2460

	if (use_10_for_ms) {
		if (len < 8)
			len = 8;

		cmd[0] = MODE_SENSE_10;
		cmd[8] = len;
		header_length = 8;
	} else {
		if (len < 4)
			len = 4;

		cmd[0] = MODE_SENSE;
		cmd[4] = len;
		header_length = 4;
	}

	memset(buffer, 0, len);

2461
	result = scsi_execute_req(sdev, cmd, DMA_FROM_DEVICE, buffer, len,
2462
				  sshdr, timeout, retries, NULL);
L
Linus Torvalds 已提交
2463 2464 2465 2466 2467 2468

	/* This code looks awful: what it's doing is making sure an
	 * ILLEGAL REQUEST sense return identifies the actual command
	 * byte as the problem.  MODE_SENSE commands can return
	 * ILLEGAL REQUEST if the code page isn't supported */

2469 2470
	if (use_10_for_ms && !scsi_status_is_good(result) &&
	    (driver_byte(result) & DRIVER_SENSE)) {
2471 2472 2473
		if (scsi_sense_valid(sshdr)) {
			if ((sshdr->sense_key == ILLEGAL_REQUEST) &&
			    (sshdr->asc == 0x20) && (sshdr->ascq == 0)) {
L
Linus Torvalds 已提交
2474 2475 2476
				/* 
				 * Invalid command operation code
				 */
2477
				sdev->use_10_for_ms = 0;
L
Linus Torvalds 已提交
2478 2479 2480 2481 2482
				goto retry;
			}
		}
	}

2483
	if(scsi_status_is_good(result)) {
2484 2485 2486 2487 2488 2489 2490 2491 2492 2493
		if (unlikely(buffer[0] == 0x86 && buffer[1] == 0x0b &&
			     (modepage == 6 || modepage == 8))) {
			/* Initio breakage? */
			header_length = 0;
			data->length = 13;
			data->medium_type = 0;
			data->device_specific = 0;
			data->longlba = 0;
			data->block_descriptor_length = 0;
		} else if(use_10_for_ms) {
L
Linus Torvalds 已提交
2494 2495 2496 2497 2498 2499 2500 2501 2502 2503 2504 2505
			data->length = buffer[0]*256 + buffer[1] + 2;
			data->medium_type = buffer[2];
			data->device_specific = buffer[3];
			data->longlba = buffer[4] & 0x01;
			data->block_descriptor_length = buffer[6]*256
				+ buffer[7];
		} else {
			data->length = buffer[0] + 1;
			data->medium_type = buffer[1];
			data->device_specific = buffer[2];
			data->block_descriptor_length = buffer[3];
		}
2506
		data->header_length = header_length;
2507 2508 2509 2510 2511
	} else if ((status_byte(result) == CHECK_CONDITION) &&
		   scsi_sense_valid(sshdr) &&
		   sshdr->sense_key == UNIT_ATTENTION && retry_count) {
		retry_count--;
		goto retry;
L
Linus Torvalds 已提交
2512 2513
	}

2514
	return result;
L
Linus Torvalds 已提交
2515 2516 2517
}
EXPORT_SYMBOL(scsi_mode_sense);

2518 2519 2520 2521 2522 2523 2524 2525 2526 2527
/**
 *	scsi_test_unit_ready - test if unit is ready
 *	@sdev:	scsi device to change the state of.
 *	@timeout: command timeout
 *	@retries: number of retries before failing
 *	@sshdr_external: Optional pointer to struct scsi_sense_hdr for
 *		returning sense. Make sure that this is cleared before passing
 *		in.
 *
 *	Returns zero if unsuccessful or an error if TUR failed.  For
2528
 *	removable media, UNIT_ATTENTION sets ->changed flag.
2529
 **/
L
Linus Torvalds 已提交
2530
int
2531 2532
scsi_test_unit_ready(struct scsi_device *sdev, int timeout, int retries,
		     struct scsi_sense_hdr *sshdr_external)
L
Linus Torvalds 已提交
2533 2534 2535 2536
{
	char cmd[] = {
		TEST_UNIT_READY, 0, 0, 0, 0, 0,
	};
2537
	struct scsi_sense_hdr *sshdr;
L
Linus Torvalds 已提交
2538
	int result;
2539 2540 2541 2542 2543 2544 2545 2546 2547

	if (!sshdr_external)
		sshdr = kzalloc(sizeof(*sshdr), GFP_KERNEL);
	else
		sshdr = sshdr_external;

	/* try to eat the UNIT_ATTENTION if there are enough retries */
	do {
		result = scsi_execute_req(sdev, cmd, DMA_NONE, NULL, 0, sshdr,
2548
					  timeout, retries, NULL);
2549 2550 2551 2552 2553
		if (sdev->removable && scsi_sense_valid(sshdr) &&
		    sshdr->sense_key == UNIT_ATTENTION)
			sdev->changed = 1;
	} while (scsi_sense_valid(sshdr) &&
		 sshdr->sense_key == UNIT_ATTENTION && --retries);
2554 2555 2556

	if (!sshdr_external)
		kfree(sshdr);
L
Linus Torvalds 已提交
2557 2558 2559 2560 2561
	return result;
}
EXPORT_SYMBOL(scsi_test_unit_ready);

/**
2562
 *	scsi_device_set_state - Take the given device through the device state model.
L
Linus Torvalds 已提交
2563 2564 2565 2566 2567
 *	@sdev:	scsi device to change the state of.
 *	@state:	state to change to.
 *
 *	Returns zero if unsuccessful or an error if the requested 
 *	transition is illegal.
2568
 */
L
Linus Torvalds 已提交
2569 2570 2571 2572 2573 2574 2575 2576 2577 2578
int
scsi_device_set_state(struct scsi_device *sdev, enum scsi_device_state state)
{
	enum scsi_device_state oldstate = sdev->sdev_state;

	if (state == oldstate)
		return 0;

	switch (state) {
	case SDEV_CREATED:
2579 2580 2581 2582 2583 2584 2585
		switch (oldstate) {
		case SDEV_CREATED_BLOCK:
			break;
		default:
			goto illegal;
		}
		break;
L
Linus Torvalds 已提交
2586 2587 2588 2589 2590
			
	case SDEV_RUNNING:
		switch (oldstate) {
		case SDEV_CREATED:
		case SDEV_OFFLINE:
2591
		case SDEV_TRANSPORT_OFFLINE:
L
Linus Torvalds 已提交
2592 2593 2594 2595 2596 2597 2598 2599 2600 2601 2602 2603
		case SDEV_QUIESCE:
		case SDEV_BLOCK:
			break;
		default:
			goto illegal;
		}
		break;

	case SDEV_QUIESCE:
		switch (oldstate) {
		case SDEV_RUNNING:
		case SDEV_OFFLINE:
2604
		case SDEV_TRANSPORT_OFFLINE:
L
Linus Torvalds 已提交
2605 2606 2607 2608 2609 2610 2611
			break;
		default:
			goto illegal;
		}
		break;

	case SDEV_OFFLINE:
2612
	case SDEV_TRANSPORT_OFFLINE:
L
Linus Torvalds 已提交
2613 2614 2615 2616 2617 2618 2619 2620 2621 2622 2623 2624 2625 2626
		switch (oldstate) {
		case SDEV_CREATED:
		case SDEV_RUNNING:
		case SDEV_QUIESCE:
		case SDEV_BLOCK:
			break;
		default:
			goto illegal;
		}
		break;

	case SDEV_BLOCK:
		switch (oldstate) {
		case SDEV_RUNNING:
2627 2628 2629 2630 2631 2632 2633 2634 2635 2636
		case SDEV_CREATED_BLOCK:
			break;
		default:
			goto illegal;
		}
		break;

	case SDEV_CREATED_BLOCK:
		switch (oldstate) {
		case SDEV_CREATED:
L
Linus Torvalds 已提交
2637 2638 2639 2640 2641 2642 2643 2644 2645 2646
			break;
		default:
			goto illegal;
		}
		break;

	case SDEV_CANCEL:
		switch (oldstate) {
		case SDEV_CREATED:
		case SDEV_RUNNING:
2647
		case SDEV_QUIESCE:
L
Linus Torvalds 已提交
2648
		case SDEV_OFFLINE:
2649
		case SDEV_TRANSPORT_OFFLINE:
L
Linus Torvalds 已提交
2650 2651 2652 2653 2654 2655 2656 2657 2658
		case SDEV_BLOCK:
			break;
		default:
			goto illegal;
		}
		break;

	case SDEV_DEL:
		switch (oldstate) {
2659 2660 2661
		case SDEV_CREATED:
		case SDEV_RUNNING:
		case SDEV_OFFLINE:
2662
		case SDEV_TRANSPORT_OFFLINE:
L
Linus Torvalds 已提交
2663
		case SDEV_CANCEL:
2664
		case SDEV_CREATED_BLOCK:
L
Linus Torvalds 已提交
2665 2666 2667 2668 2669 2670 2671 2672 2673 2674 2675
			break;
		default:
			goto illegal;
		}
		break;

	}
	sdev->sdev_state = state;
	return 0;

 illegal:
2676
	SCSI_LOG_ERROR_RECOVERY(1,
2677
				sdev_printk(KERN_ERR, sdev,
2678
					    "Illegal state transition %s->%s",
2679 2680
					    scsi_device_state_name(oldstate),
					    scsi_device_state_name(state))
L
Linus Torvalds 已提交
2681 2682 2683 2684 2685
				);
	return -EINVAL;
}
EXPORT_SYMBOL(scsi_device_set_state);

2686 2687 2688 2689 2690 2691 2692 2693 2694 2695 2696 2697 2698 2699 2700 2701
/**
 * 	sdev_evt_emit - emit a single SCSI device uevent
 *	@sdev: associated SCSI device
 *	@evt: event to emit
 *
 *	Send a single uevent (scsi_event) to the associated scsi_device.
 */
static void scsi_evt_emit(struct scsi_device *sdev, struct scsi_event *evt)
{
	int idx = 0;
	char *envp[3];

	switch (evt->evt_type) {
	case SDEV_EVT_MEDIA_CHANGE:
		envp[idx++] = "SDEV_MEDIA_CHANGE=1";
		break;
2702
	case SDEV_EVT_INQUIRY_CHANGE_REPORTED:
H
Hannes Reinecke 已提交
2703
		scsi_rescan_device(&sdev->sdev_gendev);
2704 2705 2706 2707 2708 2709 2710 2711 2712 2713 2714 2715 2716 2717
		envp[idx++] = "SDEV_UA=INQUIRY_DATA_HAS_CHANGED";
		break;
	case SDEV_EVT_CAPACITY_CHANGE_REPORTED:
		envp[idx++] = "SDEV_UA=CAPACITY_DATA_HAS_CHANGED";
		break;
	case SDEV_EVT_SOFT_THRESHOLD_REACHED_REPORTED:
	       envp[idx++] = "SDEV_UA=THIN_PROVISIONING_SOFT_THRESHOLD_REACHED";
		break;
	case SDEV_EVT_MODE_PARAMETER_CHANGE_REPORTED:
		envp[idx++] = "SDEV_UA=MODE_PARAMETERS_CHANGED";
		break;
	case SDEV_EVT_LUN_CHANGE_REPORTED:
		envp[idx++] = "SDEV_UA=REPORTED_LUNS_DATA_HAS_CHANGED";
		break;
2718 2719 2720
	case SDEV_EVT_ALUA_STATE_CHANGE_REPORTED:
		envp[idx++] = "SDEV_UA=ASYMMETRIC_ACCESS_STATE_CHANGED";
		break;
2721 2722 2723 2724 2725 2726 2727 2728 2729 2730 2731 2732 2733 2734 2735 2736 2737 2738 2739 2740
	default:
		/* do nothing */
		break;
	}

	envp[idx++] = NULL;

	kobject_uevent_env(&sdev->sdev_gendev.kobj, KOBJ_CHANGE, envp);
}

/**
 * 	sdev_evt_thread - send a uevent for each scsi event
 *	@work: work struct for scsi_device
 *
 *	Dispatch queued events to their associated scsi_device kobjects
 *	as uevents.
 */
void scsi_evt_thread(struct work_struct *work)
{
	struct scsi_device *sdev;
2741
	enum scsi_device_event evt_type;
2742 2743 2744 2745
	LIST_HEAD(event_list);

	sdev = container_of(work, struct scsi_device, event_work);

2746 2747 2748 2749
	for (evt_type = SDEV_EVT_FIRST; evt_type <= SDEV_EVT_LAST; evt_type++)
		if (test_and_clear_bit(evt_type, sdev->pending_events))
			sdev_evt_send_simple(sdev, evt_type, GFP_KERNEL);

2750 2751 2752 2753 2754 2755 2756 2757 2758 2759 2760 2761 2762 2763 2764 2765 2766 2767 2768 2769 2770 2771 2772 2773 2774 2775 2776 2777 2778 2779 2780 2781
	while (1) {
		struct scsi_event *evt;
		struct list_head *this, *tmp;
		unsigned long flags;

		spin_lock_irqsave(&sdev->list_lock, flags);
		list_splice_init(&sdev->event_list, &event_list);
		spin_unlock_irqrestore(&sdev->list_lock, flags);

		if (list_empty(&event_list))
			break;

		list_for_each_safe(this, tmp, &event_list) {
			evt = list_entry(this, struct scsi_event, node);
			list_del(&evt->node);
			scsi_evt_emit(sdev, evt);
			kfree(evt);
		}
	}
}

/**
 * 	sdev_evt_send - send asserted event to uevent thread
 *	@sdev: scsi_device event occurred on
 *	@evt: event to send
 *
 *	Assert scsi device event asynchronously.
 */
void sdev_evt_send(struct scsi_device *sdev, struct scsi_event *evt)
{
	unsigned long flags;

2782 2783 2784 2785
#if 0
	/* FIXME: currently this check eliminates all media change events
	 * for polled devices.  Need to update to discriminate between AN
	 * and polled events */
2786 2787 2788 2789
	if (!test_bit(evt->evt_type, sdev->supported_events)) {
		kfree(evt);
		return;
	}
2790
#endif
2791 2792 2793 2794 2795 2796 2797 2798 2799 2800 2801 2802 2803 2804 2805 2806 2807 2808 2809 2810 2811 2812 2813 2814 2815 2816 2817 2818

	spin_lock_irqsave(&sdev->list_lock, flags);
	list_add_tail(&evt->node, &sdev->event_list);
	schedule_work(&sdev->event_work);
	spin_unlock_irqrestore(&sdev->list_lock, flags);
}
EXPORT_SYMBOL_GPL(sdev_evt_send);

/**
 * 	sdev_evt_alloc - allocate a new scsi event
 *	@evt_type: type of event to allocate
 *	@gfpflags: GFP flags for allocation
 *
 *	Allocates and returns a new scsi_event.
 */
struct scsi_event *sdev_evt_alloc(enum scsi_device_event evt_type,
				  gfp_t gfpflags)
{
	struct scsi_event *evt = kzalloc(sizeof(struct scsi_event), gfpflags);
	if (!evt)
		return NULL;

	evt->evt_type = evt_type;
	INIT_LIST_HEAD(&evt->node);

	/* evt_type-specific initialization, if any */
	switch (evt_type) {
	case SDEV_EVT_MEDIA_CHANGE:
2819 2820 2821 2822 2823
	case SDEV_EVT_INQUIRY_CHANGE_REPORTED:
	case SDEV_EVT_CAPACITY_CHANGE_REPORTED:
	case SDEV_EVT_SOFT_THRESHOLD_REACHED_REPORTED:
	case SDEV_EVT_MODE_PARAMETER_CHANGE_REPORTED:
	case SDEV_EVT_LUN_CHANGE_REPORTED:
2824
	case SDEV_EVT_ALUA_STATE_CHANGE_REPORTED:
2825 2826 2827 2828 2829 2830 2831 2832 2833 2834 2835 2836 2837 2838 2839 2840 2841 2842 2843 2844 2845 2846 2847 2848 2849 2850 2851 2852 2853 2854 2855
	default:
		/* do nothing */
		break;
	}

	return evt;
}
EXPORT_SYMBOL_GPL(sdev_evt_alloc);

/**
 * 	sdev_evt_send_simple - send asserted event to uevent thread
 *	@sdev: scsi_device event occurred on
 *	@evt_type: type of event to send
 *	@gfpflags: GFP flags for allocation
 *
 *	Assert scsi device event asynchronously, given an event type.
 */
void sdev_evt_send_simple(struct scsi_device *sdev,
			  enum scsi_device_event evt_type, gfp_t gfpflags)
{
	struct scsi_event *evt = sdev_evt_alloc(evt_type, gfpflags);
	if (!evt) {
		sdev_printk(KERN_ERR, sdev, "event %d eaten due to OOM\n",
			    evt_type);
		return;
	}

	sdev_evt_send(sdev, evt);
}
EXPORT_SYMBOL_GPL(sdev_evt_send_simple);

L
Linus Torvalds 已提交
2856 2857 2858 2859 2860 2861 2862 2863 2864 2865 2866 2867 2868 2869
/**
 *	scsi_device_quiesce - Block user issued commands.
 *	@sdev:	scsi device to quiesce.
 *
 *	This works by trying to transition to the SDEV_QUIESCE state
 *	(which must be a legal transition).  When the device is in this
 *	state, only special requests will be accepted, all others will
 *	be deferred.  Since special requests may also be requeued requests,
 *	a successful return doesn't guarantee the device will be 
 *	totally quiescent.
 *
 *	Must be called with user context, may sleep.
 *
 *	Returns zero if unsuccessful or an error if not.
2870
 */
L
Linus Torvalds 已提交
2871 2872 2873 2874 2875 2876 2877 2878
int
scsi_device_quiesce(struct scsi_device *sdev)
{
	int err = scsi_device_set_state(sdev, SDEV_QUIESCE);
	if (err)
		return err;

	scsi_run_queue(sdev->request_queue);
2879
	while (atomic_read(&sdev->device_busy)) {
L
Linus Torvalds 已提交
2880 2881 2882 2883 2884 2885 2886 2887 2888 2889 2890 2891 2892 2893 2894
		msleep_interruptible(200);
		scsi_run_queue(sdev->request_queue);
	}
	return 0;
}
EXPORT_SYMBOL(scsi_device_quiesce);

/**
 *	scsi_device_resume - Restart user issued commands to a quiesced device.
 *	@sdev:	scsi device to resume.
 *
 *	Moves the device from quiesced back to running and restarts the
 *	queues.
 *
 *	Must be called with user context, may sleep.
2895
 */
2896
void scsi_device_resume(struct scsi_device *sdev)
L
Linus Torvalds 已提交
2897
{
2898 2899 2900 2901 2902 2903
	/* check if the device state was mutated prior to resume, and if
	 * so assume the state is being managed elsewhere (for example
	 * device deleted during suspend)
	 */
	if (sdev->sdev_state != SDEV_QUIESCE ||
	    scsi_device_set_state(sdev, SDEV_RUNNING))
L
Linus Torvalds 已提交
2904 2905 2906 2907 2908 2909 2910 2911 2912 2913 2914 2915 2916 2917 2918 2919 2920 2921 2922 2923 2924 2925 2926 2927 2928 2929 2930 2931 2932 2933 2934 2935
		return;
	scsi_run_queue(sdev->request_queue);
}
EXPORT_SYMBOL(scsi_device_resume);

static void
device_quiesce_fn(struct scsi_device *sdev, void *data)
{
	scsi_device_quiesce(sdev);
}

void
scsi_target_quiesce(struct scsi_target *starget)
{
	starget_for_each_device(starget, NULL, device_quiesce_fn);
}
EXPORT_SYMBOL(scsi_target_quiesce);

static void
device_resume_fn(struct scsi_device *sdev, void *data)
{
	scsi_device_resume(sdev);
}

void
scsi_target_resume(struct scsi_target *starget)
{
	starget_for_each_device(starget, NULL, device_resume_fn);
}
EXPORT_SYMBOL(scsi_target_resume);

/**
2936
 * scsi_internal_device_block - internal function to put a device temporarily into the SDEV_BLOCK state
L
Linus Torvalds 已提交
2937 2938 2939 2940 2941 2942 2943 2944 2945 2946 2947 2948 2949
 * @sdev:	device to block
 *
 * Block request made by scsi lld's to temporarily stop all
 * scsi commands on the specified device.  Called from interrupt
 * or normal process context.
 *
 * Returns zero if successful or error if not
 *
 * Notes:       
 *	This routine transitions the device to the SDEV_BLOCK state
 *	(which must be a legal transition).  When the device is in this
 *	state, all commands are deferred until the scsi lld reenables
 *	the device with scsi_device_unblock or device_block_tmo fires.
2950
 */
L
Linus Torvalds 已提交
2951 2952 2953
int
scsi_internal_device_block(struct scsi_device *sdev)
{
2954
	struct request_queue *q = sdev->request_queue;
L
Linus Torvalds 已提交
2955 2956 2957 2958
	unsigned long flags;
	int err = 0;

	err = scsi_device_set_state(sdev, SDEV_BLOCK);
2959 2960 2961 2962 2963 2964
	if (err) {
		err = scsi_device_set_state(sdev, SDEV_CREATED_BLOCK);

		if (err)
			return err;
	}
L
Linus Torvalds 已提交
2965 2966 2967 2968 2969 2970

	/* 
	 * The device has transitioned to SDEV_BLOCK.  Stop the
	 * block layer from calling the midlayer with this device's
	 * request queue. 
	 */
2971 2972 2973 2974 2975 2976 2977
	if (q->mq_ops) {
		blk_mq_stop_hw_queues(q);
	} else {
		spin_lock_irqsave(q->queue_lock, flags);
		blk_stop_queue(q);
		spin_unlock_irqrestore(q->queue_lock, flags);
	}
L
Linus Torvalds 已提交
2978 2979 2980 2981 2982 2983 2984 2985

	return 0;
}
EXPORT_SYMBOL_GPL(scsi_internal_device_block);
 
/**
 * scsi_internal_device_unblock - resume a device after a block request
 * @sdev:	device to resume
2986
 * @new_state:	state to set devices to after unblocking
L
Linus Torvalds 已提交
2987 2988 2989 2990 2991 2992 2993 2994 2995
 *
 * Called by scsi lld's or the midlayer to restart the device queue
 * for the previously suspended scsi device.  Called from interrupt or
 * normal process context.
 *
 * Returns zero if successful or error if not.
 *
 * Notes:       
 *	This routine transitions the device to the SDEV_RUNNING state
2996
 *	or to one of the offline states (which must be a legal transition)
2997
 *	allowing the midlayer to goose the queue for this device.
2998
 */
L
Linus Torvalds 已提交
2999
int
3000 3001
scsi_internal_device_unblock(struct scsi_device *sdev,
			     enum scsi_device_state new_state)
L
Linus Torvalds 已提交
3002
{
3003
	struct request_queue *q = sdev->request_queue; 
L
Linus Torvalds 已提交
3004
	unsigned long flags;
3005 3006 3007 3008

	/*
	 * Try to transition the scsi device to SDEV_RUNNING or one of the
	 * offlined states and goose the device queue if successful.
L
Linus Torvalds 已提交
3009
	 */
3010 3011
	if ((sdev->sdev_state == SDEV_BLOCK) ||
	    (sdev->sdev_state == SDEV_TRANSPORT_OFFLINE))
3012 3013 3014 3015 3016 3017 3018 3019
		sdev->sdev_state = new_state;
	else if (sdev->sdev_state == SDEV_CREATED_BLOCK) {
		if (new_state == SDEV_TRANSPORT_OFFLINE ||
		    new_state == SDEV_OFFLINE)
			sdev->sdev_state = new_state;
		else
			sdev->sdev_state = SDEV_CREATED;
	} else if (sdev->sdev_state != SDEV_CANCEL &&
3020
		 sdev->sdev_state != SDEV_OFFLINE)
3021
		return -EINVAL;
L
Linus Torvalds 已提交
3022

3023 3024 3025 3026 3027 3028 3029
	if (q->mq_ops) {
		blk_mq_start_stopped_hw_queues(q, false);
	} else {
		spin_lock_irqsave(q->queue_lock, flags);
		blk_start_queue(q);
		spin_unlock_irqrestore(q->queue_lock, flags);
	}
L
Linus Torvalds 已提交
3030 3031 3032 3033 3034 3035 3036 3037 3038 3039 3040 3041 3042 3043 3044 3045 3046 3047 3048 3049 3050 3051 3052 3053 3054 3055 3056 3057 3058 3059 3060 3061 3062 3063

	return 0;
}
EXPORT_SYMBOL_GPL(scsi_internal_device_unblock);

static void
device_block(struct scsi_device *sdev, void *data)
{
	scsi_internal_device_block(sdev);
}

static int
target_block(struct device *dev, void *data)
{
	if (scsi_is_target_device(dev))
		starget_for_each_device(to_scsi_target(dev), NULL,
					device_block);
	return 0;
}

void
scsi_target_block(struct device *dev)
{
	if (scsi_is_target_device(dev))
		starget_for_each_device(to_scsi_target(dev), NULL,
					device_block);
	else
		device_for_each_child(dev, NULL, target_block);
}
EXPORT_SYMBOL_GPL(scsi_target_block);

static void
device_unblock(struct scsi_device *sdev, void *data)
{
3064
	scsi_internal_device_unblock(sdev, *(enum scsi_device_state *)data);
L
Linus Torvalds 已提交
3065 3066 3067 3068 3069 3070
}

static int
target_unblock(struct device *dev, void *data)
{
	if (scsi_is_target_device(dev))
3071
		starget_for_each_device(to_scsi_target(dev), data,
L
Linus Torvalds 已提交
3072 3073 3074 3075 3076
					device_unblock);
	return 0;
}

void
3077
scsi_target_unblock(struct device *dev, enum scsi_device_state new_state)
L
Linus Torvalds 已提交
3078 3079
{
	if (scsi_is_target_device(dev))
3080
		starget_for_each_device(to_scsi_target(dev), &new_state,
L
Linus Torvalds 已提交
3081 3082
					device_unblock);
	else
3083
		device_for_each_child(dev, &new_state, target_unblock);
L
Linus Torvalds 已提交
3084 3085
}
EXPORT_SYMBOL_GPL(scsi_target_unblock);
3086 3087 3088

/**
 * scsi_kmap_atomic_sg - find and atomically map an sg-elemnt
3089
 * @sgl:	scatter-gather list
3090 3091 3092 3093 3094 3095
 * @sg_count:	number of segments in sg
 * @offset:	offset in bytes into sg, on return offset into the mapped area
 * @len:	bytes to map, on return number of bytes mapped
 *
 * Returns virtual address of the start of the mapped page
 */
J
Jens Axboe 已提交
3096
void *scsi_kmap_atomic_sg(struct scatterlist *sgl, int sg_count,
3097 3098 3099 3100
			  size_t *offset, size_t *len)
{
	int i;
	size_t sg_len = 0, len_complete = 0;
J
Jens Axboe 已提交
3101
	struct scatterlist *sg;
3102 3103
	struct page *page;

3104 3105
	WARN_ON(!irqs_disabled());

J
Jens Axboe 已提交
3106
	for_each_sg(sgl, sg, sg_count, i) {
3107
		len_complete = sg_len; /* Complete sg-entries */
J
Jens Axboe 已提交
3108
		sg_len += sg->length;
3109 3110 3111 3112 3113
		if (sg_len > *offset)
			break;
	}

	if (unlikely(i == sg_count)) {
3114 3115
		printk(KERN_ERR "%s: Bytes in sg: %zu, requested offset %zu, "
			"elements %d\n",
3116
		       __func__, sg_len, *offset, sg_count);
3117 3118 3119 3120 3121
		WARN_ON(1);
		return NULL;
	}

	/* Offset starting from the beginning of first page in this sg-entry */
J
Jens Axboe 已提交
3122
	*offset = *offset - len_complete + sg->offset;
3123 3124

	/* Assumption: contiguous pages can be accessed as "page + i" */
J
Jens Axboe 已提交
3125
	page = nth_page(sg_page(sg), (*offset >> PAGE_SHIFT));
3126 3127 3128 3129 3130 3131 3132
	*offset &= ~PAGE_MASK;

	/* Bytes in this sg-entry from *offset to the end of the page */
	sg_len = PAGE_SIZE - *offset;
	if (*len > sg_len)
		*len = sg_len;

3133
	return kmap_atomic(page);
3134 3135 3136 3137
}
EXPORT_SYMBOL(scsi_kmap_atomic_sg);

/**
3138
 * scsi_kunmap_atomic_sg - atomically unmap a virtual address, previously mapped with scsi_kmap_atomic_sg
3139 3140 3141 3142
 * @virt:	virtual address to be unmapped
 */
void scsi_kunmap_atomic_sg(void *virt)
{
3143
	kunmap_atomic(virt);
3144 3145
}
EXPORT_SYMBOL(scsi_kunmap_atomic_sg);
3146 3147 3148 3149 3150 3151 3152 3153 3154 3155 3156 3157 3158 3159

void sdev_disable_disk_events(struct scsi_device *sdev)
{
	atomic_inc(&sdev->disk_events_disable_depth);
}
EXPORT_SYMBOL(sdev_disable_disk_events);

void sdev_enable_disk_events(struct scsi_device *sdev)
{
	if (WARN_ON_ONCE(atomic_read(&sdev->disk_events_disable_depth) <= 0))
		return;
	atomic_dec(&sdev->disk_events_disable_depth);
}
EXPORT_SYMBOL(sdev_enable_disk_events);
H
Hannes Reinecke 已提交
3160 3161 3162 3163 3164 3165 3166 3167 3168 3169 3170 3171 3172 3173 3174 3175 3176 3177 3178 3179 3180 3181 3182 3183 3184 3185 3186 3187 3188 3189 3190 3191 3192 3193 3194 3195 3196 3197 3198 3199 3200 3201 3202 3203 3204 3205 3206 3207 3208 3209 3210 3211 3212 3213 3214 3215 3216 3217 3218 3219 3220 3221 3222 3223 3224 3225 3226 3227 3228 3229 3230 3231 3232 3233 3234 3235 3236 3237 3238 3239 3240 3241 3242 3243 3244 3245 3246 3247 3248 3249 3250 3251 3252 3253 3254 3255 3256 3257 3258 3259 3260 3261 3262 3263 3264 3265 3266 3267 3268 3269 3270 3271 3272 3273 3274 3275 3276 3277 3278 3279 3280 3281 3282 3283 3284 3285 3286 3287 3288 3289 3290 3291 3292 3293 3294 3295 3296 3297 3298 3299

/**
 * scsi_vpd_lun_id - return a unique device identification
 * @sdev: SCSI device
 * @id:   buffer for the identification
 * @id_len:  length of the buffer
 *
 * Copies a unique device identification into @id based
 * on the information in the VPD page 0x83 of the device.
 * The string will be formatted as a SCSI name string.
 *
 * Returns the length of the identification or error on failure.
 * If the identifier is longer than the supplied buffer the actual
 * identifier length is returned and the buffer is not zero-padded.
 */
int scsi_vpd_lun_id(struct scsi_device *sdev, char *id, size_t id_len)
{
	u8 cur_id_type = 0xff;
	u8 cur_id_size = 0;
	unsigned char *d, *cur_id_str;
	unsigned char __rcu *vpd_pg83;
	int id_size = -EINVAL;

	rcu_read_lock();
	vpd_pg83 = rcu_dereference(sdev->vpd_pg83);
	if (!vpd_pg83) {
		rcu_read_unlock();
		return -ENXIO;
	}

	/*
	 * Look for the correct descriptor.
	 * Order of preference for lun descriptor:
	 * - SCSI name string
	 * - NAA IEEE Registered Extended
	 * - EUI-64 based 16-byte
	 * - EUI-64 based 12-byte
	 * - NAA IEEE Registered
	 * - NAA IEEE Extended
	 * as longer descriptors reduce the likelyhood
	 * of identification clashes.
	 */

	/* The id string must be at least 20 bytes + terminating NULL byte */
	if (id_len < 21) {
		rcu_read_unlock();
		return -EINVAL;
	}

	memset(id, 0, id_len);
	d = vpd_pg83 + 4;
	while (d < vpd_pg83 + sdev->vpd_pg83_len) {
		/* Skip designators not referring to the LUN */
		if ((d[1] & 0x30) != 0x00)
			goto next_desig;

		switch (d[1] & 0xf) {
		case 0x2:
			/* EUI-64 */
			if (cur_id_size > d[3])
				break;
			/* Prefer NAA IEEE Registered Extended */
			if (cur_id_type == 0x3 &&
			    cur_id_size == d[3])
				break;
			cur_id_size = d[3];
			cur_id_str = d + 4;
			cur_id_type = d[1] & 0xf;
			switch (cur_id_size) {
			case 8:
				id_size = snprintf(id, id_len,
						   "eui.%8phN",
						   cur_id_str);
				break;
			case 12:
				id_size = snprintf(id, id_len,
						   "eui.%12phN",
						   cur_id_str);
				break;
			case 16:
				id_size = snprintf(id, id_len,
						   "eui.%16phN",
						   cur_id_str);
				break;
			default:
				cur_id_size = 0;
				break;
			}
			break;
		case 0x3:
			/* NAA */
			if (cur_id_size > d[3])
				break;
			cur_id_size = d[3];
			cur_id_str = d + 4;
			cur_id_type = d[1] & 0xf;
			switch (cur_id_size) {
			case 8:
				id_size = snprintf(id, id_len,
						   "naa.%8phN",
						   cur_id_str);
				break;
			case 16:
				id_size = snprintf(id, id_len,
						   "naa.%16phN",
						   cur_id_str);
				break;
			default:
				cur_id_size = 0;
				break;
			}
			break;
		case 0x8:
			/* SCSI name string */
			if (cur_id_size + 4 > d[3])
				break;
			/* Prefer others for truncated descriptor */
			if (cur_id_size && d[3] > id_len)
				break;
			cur_id_size = id_size = d[3];
			cur_id_str = d + 4;
			cur_id_type = d[1] & 0xf;
			if (cur_id_size >= id_len)
				cur_id_size = id_len - 1;
			memcpy(id, cur_id_str, cur_id_size);
			/* Decrease priority for truncated descriptor */
			if (cur_id_size != id_size)
				cur_id_size = 6;
			break;
		default:
			break;
		}
next_desig:
		d += d[3] + 4;
	}
	rcu_read_unlock();

	return id_size;
}
EXPORT_SYMBOL(scsi_vpd_lun_id);
H
Hannes Reinecke 已提交
3300 3301 3302 3303 3304 3305 3306 3307 3308 3309 3310 3311 3312 3313 3314 3315 3316 3317 3318 3319 3320 3321 3322 3323 3324 3325 3326 3327 3328 3329 3330 3331 3332 3333 3334 3335 3336 3337 3338 3339 3340 3341 3342 3343 3344 3345 3346

/*
 * scsi_vpd_tpg_id - return a target port group identifier
 * @sdev: SCSI device
 *
 * Returns the Target Port Group identifier from the information
 * froom VPD page 0x83 of the device.
 *
 * Returns the identifier or error on failure.
 */
int scsi_vpd_tpg_id(struct scsi_device *sdev, int *rel_id)
{
	unsigned char *d;
	unsigned char __rcu *vpd_pg83;
	int group_id = -EAGAIN, rel_port = -1;

	rcu_read_lock();
	vpd_pg83 = rcu_dereference(sdev->vpd_pg83);
	if (!vpd_pg83) {
		rcu_read_unlock();
		return -ENXIO;
	}

	d = sdev->vpd_pg83 + 4;
	while (d < sdev->vpd_pg83 + sdev->vpd_pg83_len) {
		switch (d[1] & 0xf) {
		case 0x4:
			/* Relative target port */
			rel_port = get_unaligned_be16(&d[6]);
			break;
		case 0x5:
			/* Target port group */
			group_id = get_unaligned_be16(&d[6]);
			break;
		default:
			break;
		}
		d += d[3] + 4;
	}
	rcu_read_unlock();

	if (group_id >= 0 && rel_id && rel_port != -1)
		*rel_id = rel_port;

	return group_id;
}
EXPORT_SYMBOL(scsi_vpd_tpg_id);