tty_ldisc.c 25.9 KB
Newer Older
1 2
#include <linux/types.h>
#include <linux/errno.h>
3
#include <linux/kmod.h>
4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20
#include <linux/sched.h>
#include <linux/interrupt.h>
#include <linux/tty.h>
#include <linux/tty_driver.h>
#include <linux/file.h>
#include <linux/mm.h>
#include <linux/string.h>
#include <linux/slab.h>
#include <linux/poll.h>
#include <linux/proc_fs.h>
#include <linux/init.h>
#include <linux/module.h>
#include <linux/device.h>
#include <linux/wait.h>
#include <linux/bitops.h>
#include <linux/seq_file.h>
#include <linux/uaccess.h>
21
#include <linux/ratelimit.h>
22

23 24 25 26 27 28 29 30 31 32 33
#undef LDISC_DEBUG_HANGUP

#ifdef LDISC_DEBUG_HANGUP
#define tty_ldisc_debug(tty, f, args...) ({				       \
	char __b[64];							       \
	printk(KERN_DEBUG "%s: %s: " f, __func__, tty_name(tty, __b), ##args); \
})
#else
#define tty_ldisc_debug(tty, f, args...)
#endif

34 35 36 37 38 39 40
/* lockdep nested classes for tty->ldisc_sem */
enum {
	LDISC_SEM_NORMAL,
	LDISC_SEM_OTHER,
};


41 42 43 44 45 46
/*
 *	This guards the refcounted line discipline lists. The lock
 *	must be taken with irqs off because there are hangup path
 *	callers who will do ldisc lookups and cannot sleep.
 */

47
static DEFINE_RAW_SPINLOCK(tty_ldiscs_lock);
48 49 50 51 52 53 54 55 56 57 58 59 60 61
static DECLARE_WAIT_QUEUE_HEAD(tty_ldisc_wait);
/* Line disc dispatch table */
static struct tty_ldisc_ops *tty_ldiscs[NR_LDISCS];

/**
 *	tty_register_ldisc	-	install a line discipline
 *	@disc: ldisc number
 *	@new_ldisc: pointer to the ldisc object
 *
 *	Installs a new line discipline into the kernel. The discipline
 *	is set up as unreferenced and then made available to the kernel
 *	from this point onwards.
 *
 *	Locking:
62
 *		takes tty_ldiscs_lock to guard against ldisc races
63 64 65 66 67 68 69 70 71 72
 */

int tty_register_ldisc(int disc, struct tty_ldisc_ops *new_ldisc)
{
	unsigned long flags;
	int ret = 0;

	if (disc < N_TTY || disc >= NR_LDISCS)
		return -EINVAL;

73
	raw_spin_lock_irqsave(&tty_ldiscs_lock, flags);
74 75 76
	tty_ldiscs[disc] = new_ldisc;
	new_ldisc->num = disc;
	new_ldisc->refcount = 0;
77
	raw_spin_unlock_irqrestore(&tty_ldiscs_lock, flags);
78 79 80 81 82 83 84 85 86 87 88 89 90 91

	return ret;
}
EXPORT_SYMBOL(tty_register_ldisc);

/**
 *	tty_unregister_ldisc	-	unload a line discipline
 *	@disc: ldisc number
 *	@new_ldisc: pointer to the ldisc object
 *
 *	Remove a line discipline from the kernel providing it is not
 *	currently in use.
 *
 *	Locking:
92
 *		takes tty_ldiscs_lock to guard against ldisc races
93 94 95 96 97 98 99 100 101 102
 */

int tty_unregister_ldisc(int disc)
{
	unsigned long flags;
	int ret = 0;

	if (disc < N_TTY || disc >= NR_LDISCS)
		return -EINVAL;

103
	raw_spin_lock_irqsave(&tty_ldiscs_lock, flags);
104 105 106 107
	if (tty_ldiscs[disc]->refcount)
		ret = -EBUSY;
	else
		tty_ldiscs[disc] = NULL;
108
	raw_spin_unlock_irqrestore(&tty_ldiscs_lock, flags);
109 110 111 112 113

	return ret;
}
EXPORT_SYMBOL(tty_unregister_ldisc);

114 115 116 117 118
static struct tty_ldisc_ops *get_ldops(int disc)
{
	unsigned long flags;
	struct tty_ldisc_ops *ldops, *ret;

119
	raw_spin_lock_irqsave(&tty_ldiscs_lock, flags);
120 121 122 123 124 125 126 127 128
	ret = ERR_PTR(-EINVAL);
	ldops = tty_ldiscs[disc];
	if (ldops) {
		ret = ERR_PTR(-EAGAIN);
		if (try_module_get(ldops->owner)) {
			ldops->refcount++;
			ret = ldops;
		}
	}
129
	raw_spin_unlock_irqrestore(&tty_ldiscs_lock, flags);
130 131 132 133 134 135 136
	return ret;
}

static void put_ldops(struct tty_ldisc_ops *ldops)
{
	unsigned long flags;

137
	raw_spin_lock_irqsave(&tty_ldiscs_lock, flags);
138 139
	ldops->refcount--;
	module_put(ldops->owner);
140
	raw_spin_unlock_irqrestore(&tty_ldiscs_lock, flags);
141
}
142 143 144 145 146 147 148 149 150 151 152

/**
 *	tty_ldisc_get		-	take a reference to an ldisc
 *	@disc: ldisc number
 *
 *	Takes a reference to a line discipline. Deals with refcounts and
 *	module locking counts. Returns NULL if the discipline is not available.
 *	Returns a pointer to the discipline and bumps the ref count if it is
 *	available
 *
 *	Locking:
153
 *		takes tty_ldiscs_lock to guard against ldisc races
154 155
 */

A
Alan Cox 已提交
156
static struct tty_ldisc *tty_ldisc_get(int disc)
157
{
A
Alan Cox 已提交
158
	struct tty_ldisc *ld;
159
	struct tty_ldisc_ops *ldops;
160 161

	if (disc < N_TTY || disc >= NR_LDISCS)
A
Alan Cox 已提交
162
		return ERR_PTR(-EINVAL);
163 164 165 166 167 168 169

	/*
	 * Get the ldisc ops - we may need to request them to be loaded
	 * dynamically and try again.
	 */
	ldops = get_ldops(disc);
	if (IS_ERR(ldops)) {
170
		request_module("tty-ldisc-%d", disc);
171 172 173 174 175 176 177 178 179
		ldops = get_ldops(disc);
		if (IS_ERR(ldops))
			return ERR_CAST(ldops);
	}

	ld = kmalloc(sizeof(struct tty_ldisc), GFP_KERNEL);
	if (ld == NULL) {
		put_ldops(ldops);
		return ERR_PTR(-ENOMEM);
180
	}
181 182 183

	ld->ops = ldops;
	atomic_set(&ld->users, 1);
184 185
	init_waitqueue_head(&ld->wq_idle);

A
Alan Cox 已提交
186
	return ld;
187 188
}

189 190 191 192 193 194 195 196 197 198 199 200
/**
 *	tty_ldisc_put		-	release the ldisc
 *
 *	Complement of tty_ldisc_get().
 */
static inline void tty_ldisc_put(struct tty_ldisc *ld)
{
	unsigned long flags;

	if (WARN_ON_ONCE(!ld))
		return;

201
	raw_spin_lock_irqsave(&tty_ldiscs_lock, flags);
202 203 204 205 206 207 208

	/* unreleased reader reference(s) will cause this WARN */
	WARN_ON(!atomic_dec_and_test(&ld->users));

	ld->ops->refcount--;
	module_put(ld->ops->owner);
	kfree(ld);
209
	raw_spin_unlock_irqrestore(&tty_ldiscs_lock, flags);
210 211
}

A
Alan Cox 已提交
212
static void *tty_ldiscs_seq_start(struct seq_file *m, loff_t *pos)
213 214 215 216
{
	return (*pos < NR_LDISCS) ? pos : NULL;
}

A
Alan Cox 已提交
217
static void *tty_ldiscs_seq_next(struct seq_file *m, void *v, loff_t *pos)
218 219 220 221 222 223 224 225 226 227 228 229
{
	(*pos)++;
	return (*pos < NR_LDISCS) ? pos : NULL;
}

static void tty_ldiscs_seq_stop(struct seq_file *m, void *v)
{
}

static int tty_ldiscs_seq_show(struct seq_file *m, void *v)
{
	int i = *(loff_t *)v;
230
	struct tty_ldisc_ops *ldops;
A
Alan Cox 已提交
231

232 233
	ldops = get_ldops(i);
	if (IS_ERR(ldops))
234
		return 0;
235 236
	seq_printf(m, "%-10s %2d\n", ldops->name ? ldops->name : "???", i);
	put_ldops(ldops);
237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268
	return 0;
}

static const struct seq_operations tty_ldiscs_seq_ops = {
	.start	= tty_ldiscs_seq_start,
	.next	= tty_ldiscs_seq_next,
	.stop	= tty_ldiscs_seq_stop,
	.show	= tty_ldiscs_seq_show,
};

static int proc_tty_ldiscs_open(struct inode *inode, struct file *file)
{
	return seq_open(file, &tty_ldiscs_seq_ops);
}

const struct file_operations tty_ldiscs_proc_fops = {
	.owner		= THIS_MODULE,
	.open		= proc_tty_ldiscs_open,
	.read		= seq_read,
	.llseek		= seq_lseek,
	.release	= seq_release,
};

/**
 *	tty_ldisc_try		-	internal helper
 *	@tty: the tty
 *
 *	Make a single attempt to grab and bump the refcount on
 *	the tty ldisc. Return 0 on failure or 1 on success. This is
 *	used to implement both the waiting and non waiting versions
 *	of tty_ldisc_ref
 *
269
 *	Locking: takes tty_ldiscs_lock
270 271
 */

272
static struct tty_ldisc *tty_ldisc_try(struct tty_struct *tty)
273 274 275 276
{
	unsigned long flags;
	struct tty_ldisc *ld;

277
	/* FIXME: this allows reference acquire after TTY_LDISC is cleared */
278
	raw_spin_lock_irqsave(&tty_ldiscs_lock, flags);
279
	ld = NULL;
280 281 282 283
	if (test_bit(TTY_LDISC, &tty->flags) && tty->ldisc) {
		ld = tty->ldisc;
		atomic_inc(&ld->users);
	}
284
	raw_spin_unlock_irqrestore(&tty_ldiscs_lock, flags);
285
	return ld;
286 287 288 289 290 291 292 293 294 295 296 297 298 299 300
}

/**
 *	tty_ldisc_ref_wait	-	wait for the tty ldisc
 *	@tty: tty device
 *
 *	Dereference the line discipline for the terminal and take a
 *	reference to it. If the line discipline is in flux then
 *	wait patiently until it changes.
 *
 *	Note: Must not be called from an IRQ/timer context. The caller
 *	must also be careful not to hold other locks that will deadlock
 *	against a discipline change, such as an existing ldisc reference
 *	(which we check for)
 *
301
 *	Locking: call functions take tty_ldiscs_lock
302 303 304 305
 */

struct tty_ldisc *tty_ldisc_ref_wait(struct tty_struct *tty)
{
306 307
	struct tty_ldisc *ld;

308
	/* wait_event is a macro */
309 310
	wait_event(tty_ldisc_wait, (ld = tty_ldisc_try(tty)) != NULL);
	return ld;
311 312 313 314 315 316 317 318 319 320 321
}
EXPORT_SYMBOL_GPL(tty_ldisc_ref_wait);

/**
 *	tty_ldisc_ref		-	get the tty ldisc
 *	@tty: tty device
 *
 *	Dereference the line discipline for the terminal and take a
 *	reference to it. If the line discipline is in flux then
 *	return NULL. Can be called from IRQ and timer functions.
 *
322
 *	Locking: called functions take tty_ldiscs_lock
323 324 325 326
 */

struct tty_ldisc *tty_ldisc_ref(struct tty_struct *tty)
{
327
	return tty_ldisc_try(tty);
328 329 330 331 332 333 334 335 336 337
}
EXPORT_SYMBOL_GPL(tty_ldisc_ref);

/**
 *	tty_ldisc_deref		-	free a tty ldisc reference
 *	@ld: reference to free up
 *
 *	Undoes the effect of tty_ldisc_ref or tty_ldisc_ref_wait. May
 *	be called in IRQ context.
 *
338
 *	Locking: takes tty_ldiscs_lock
339 340 341 342
 */

void tty_ldisc_deref(struct tty_ldisc *ld)
{
343 344 345 346 347
	unsigned long flags;

	if (WARN_ON_ONCE(!ld))
		return;

348
	raw_spin_lock_irqsave(&tty_ldiscs_lock, flags);
349 350 351 352 353
	/*
	 * WARNs if one-too-many reader references were released
	 * - the last reference must be released with tty_ldisc_put
	 */
	WARN_ON(atomic_dec_and_test(&ld->users));
354
	raw_spin_unlock_irqrestore(&tty_ldiscs_lock, flags);
355 356 357

	if (waitqueue_active(&ld->wq_idle))
		wake_up(&ld->wq_idle);
358 359 360
}
EXPORT_SYMBOL_GPL(tty_ldisc_deref);

361 362 363 364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379 380 381 382 383 384 385 386 387 388 389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417 418 419 420 421 422 423 424 425 426 427 428 429 430 431 432 433 434 435 436 437 438 439 440

static inline int __lockfunc
tty_ldisc_lock(struct tty_struct *tty, unsigned long timeout)
{
	return ldsem_down_write(&tty->ldisc_sem, timeout);
}

static inline int __lockfunc
tty_ldisc_lock_nested(struct tty_struct *tty, unsigned long timeout)
{
	return ldsem_down_write_nested(&tty->ldisc_sem,
				       LDISC_SEM_OTHER, timeout);
}

static inline void tty_ldisc_unlock(struct tty_struct *tty)
{
	return ldsem_up_write(&tty->ldisc_sem);
}

static int __lockfunc
tty_ldisc_lock_pair_timeout(struct tty_struct *tty, struct tty_struct *tty2,
			    unsigned long timeout)
{
	int ret;

	if (tty < tty2) {
		ret = tty_ldisc_lock(tty, timeout);
		if (ret) {
			ret = tty_ldisc_lock_nested(tty2, timeout);
			if (!ret)
				tty_ldisc_unlock(tty);
		}
	} else {
		/* if this is possible, it has lots of implications */
		WARN_ON_ONCE(tty == tty2);
		if (tty2 && tty != tty2) {
			ret = tty_ldisc_lock(tty2, timeout);
			if (ret) {
				ret = tty_ldisc_lock_nested(tty, timeout);
				if (!ret)
					tty_ldisc_unlock(tty2);
			}
		} else
			ret = tty_ldisc_lock(tty, timeout);
	}

	if (!ret)
		return -EBUSY;

	set_bit(TTY_LDISC_HALTED, &tty->flags);
	if (tty2)
		set_bit(TTY_LDISC_HALTED, &tty2->flags);
	return 0;
}

static void __lockfunc
tty_ldisc_lock_pair(struct tty_struct *tty, struct tty_struct *tty2)
{
	tty_ldisc_lock_pair_timeout(tty, tty2, MAX_SCHEDULE_TIMEOUT);
}

static void __lockfunc tty_ldisc_unlock_pair(struct tty_struct *tty,
					     struct tty_struct *tty2)
{
	tty_ldisc_unlock(tty);
	if (tty2)
		tty_ldisc_unlock(tty2);
}

static void __lockfunc tty_ldisc_enable_pair(struct tty_struct *tty,
					     struct tty_struct *tty2)
{
	clear_bit(TTY_LDISC_HALTED, &tty->flags);
	if (tty2)
		clear_bit(TTY_LDISC_HALTED, &tty2->flags);

	tty_ldisc_unlock_pair(tty, tty2);
}


441 442 443 444 445
/**
 *	tty_ldisc_enable	-	allow ldisc use
 *	@tty: terminal to activate ldisc on
 *
 *	Set the TTY_LDISC flag when the line discipline can be called
A
Alan Cox 已提交
446 447
 *	again. Do necessary wakeups for existing sleepers. Clear the LDISC
 *	changing flag to indicate any ldisc change is now over.
448
 *
A
Alan Cox 已提交
449 450
 *	Note: nobody should set the TTY_LDISC bit except via this function.
 *	Clearing directly is allowed.
451 452
 */

453
static void tty_ldisc_enable(struct tty_struct *tty)
454
{
455
	clear_bit(TTY_LDISC_HALTED, &tty->flags);
456
	set_bit(TTY_LDISC, &tty->flags);
A
Alan Cox 已提交
457
	clear_bit(TTY_LDISC_CHANGING, &tty->flags);
458 459 460
	wake_up(&tty_ldisc_wait);
}

A
Alan Cox 已提交
461 462 463 464 465 466 467 468 469 470 471 472 473 474 475 476 477 478 479 480
/**
 *	tty_ldisc_flush	-	flush line discipline queue
 *	@tty: tty
 *
 *	Flush the line discipline queue (if any) for this tty. If there
 *	is no line discipline active this is a no-op.
 */

void tty_ldisc_flush(struct tty_struct *tty)
{
	struct tty_ldisc *ld = tty_ldisc_ref(tty);
	if (ld) {
		if (ld->ops->flush_buffer)
			ld->ops->flush_buffer(tty);
		tty_ldisc_deref(ld);
	}
	tty_buffer_flush(tty);
}
EXPORT_SYMBOL_GPL(tty_ldisc_flush);

481 482 483 484 485 486 487 488 489 490 491 492 493 494 495
/**
 *	tty_set_termios_ldisc		-	set ldisc field
 *	@tty: tty structure
 *	@num: line discipline number
 *
 *	This is probably overkill for real world processors but
 *	they are not on hot paths so a little discipline won't do
 *	any harm.
 *
 *	Locking: takes termios_mutex
 */

static void tty_set_termios_ldisc(struct tty_struct *tty, int num)
{
	mutex_lock(&tty->termios_mutex);
496
	tty->termios.c_line = num;
497 498 499
	mutex_unlock(&tty->termios_mutex);
}

A
Alan Cox 已提交
500 501 502 503 504 505 506
/**
 *	tty_ldisc_open		-	open a line discipline
 *	@tty: tty we are opening the ldisc on
 *	@ld: discipline to open
 *
 *	A helper opening method. Also a convenient debugging and check
 *	point.
507 508
 *
 *	Locking: always called with BTM already held.
A
Alan Cox 已提交
509 510 511 512 513
 */

static int tty_ldisc_open(struct tty_struct *tty, struct tty_ldisc *ld)
{
	WARN_ON(test_and_set_bit(TTY_LDISC_OPEN, &tty->flags));
514 515
	if (ld->ops->open) {
		int ret;
516
                /* BTM here locks versus a hangup event */
517
		ret = ld->ops->open(tty);
J
Jiri Slaby 已提交
518 519
		if (ret)
			clear_bit(TTY_LDISC_OPEN, &tty->flags);
520 521
		return ret;
	}
A
Alan Cox 已提交
522 523 524 525 526 527 528 529 530 531 532 533 534 535 536 537 538 539 540
	return 0;
}

/**
 *	tty_ldisc_close		-	close a line discipline
 *	@tty: tty we are opening the ldisc on
 *	@ld: discipline to close
 *
 *	A helper close method. Also a convenient debugging and check
 *	point.
 */

static void tty_ldisc_close(struct tty_struct *tty, struct tty_ldisc *ld)
{
	WARN_ON(!test_bit(TTY_LDISC_OPEN, &tty->flags));
	clear_bit(TTY_LDISC_OPEN, &tty->flags);
	if (ld->ops->close)
		ld->ops->close(tty);
}
541 542 543 544 545 546 547 548 549 550 551 552 553

/**
 *	tty_ldisc_restore	-	helper for tty ldisc change
 *	@tty: tty to recover
 *	@old: previous ldisc
 *
 *	Restore the previous line discipline or N_TTY when a line discipline
 *	change fails due to an open error
 */

static void tty_ldisc_restore(struct tty_struct *tty, struct tty_ldisc *old)
{
	char buf[64];
A
Alan Cox 已提交
554 555
	struct tty_ldisc *new_ldisc;
	int r;
556 557

	/* There is an outstanding reference here so this is safe */
A
Alan Cox 已提交
558 559
	old = tty_ldisc_get(old->ops->num);
	WARN_ON(IS_ERR(old));
560
	tty->ldisc = old;
561
	tty_set_termios_ldisc(tty, old->ops->num);
A
Alan Cox 已提交
562 563
	if (tty_ldisc_open(tty, old) < 0) {
		tty_ldisc_put(old);
564
		/* This driver is always present */
A
Alan Cox 已提交
565
		new_ldisc = tty_ldisc_get(N_TTY);
A
Alan Cox 已提交
566
		if (IS_ERR(new_ldisc))
567
			panic("n_tty: get");
568
		tty->ldisc = new_ldisc;
569
		tty_set_termios_ldisc(tty, N_TTY);
A
Alan Cox 已提交
570 571 572 573 574
		r = tty_ldisc_open(tty, new_ldisc);
		if (r < 0)
			panic("Couldn't open N_TTY ldisc for "
			      "%s --- error %d.",
			      tty_name(tty, buf), r);
575 576 577
	}
}

J
Jiri Slaby 已提交
578 579 580
/**
 *	tty_ldisc_wait_idle	-	wait for the ldisc to become idle
 *	@tty: tty to wait for
581
 *	@timeout: for how long to wait at most
J
Jiri Slaby 已提交
582 583 584 585
 *
 *	Wait for the line discipline to become idle. The discipline must
 *	have been halted for this to guarantee it remains idle.
 */
586
static int tty_ldisc_wait_idle(struct tty_struct *tty, long timeout)
J
Jiri Slaby 已提交
587
{
588
	long ret;
589
	ret = wait_event_timeout(tty->ldisc->wq_idle,
590
			atomic_read(&tty->ldisc->users) == 1, timeout);
J
Jiri Slaby 已提交
591 592 593
	return ret > 0 ? 0 : -EBUSY;
}

594 595 596
/**
 *	tty_ldisc_halt		-	shut down the line discipline
 *	@tty: tty device
597
 *	@o_tty: paired pty device (can be NULL)
598
 *	@timeout: # of jiffies to wait for ldisc refs to be released
599
 *
600 601
 *	Shut down the line discipline and work queue for this tty device and
 *	its paired pty (if exists). Clearing the TTY_LDISC flag ensures
602 603
 *	no further references can be obtained, while waiting for existing
 *	references to be released ensures no more data is fed to the ldisc.
604
 *
605 606 607 608 609
 *	You need to do a 'flush_scheduled_work()' (outside the ldisc_mutex)
 *	in order to make sure any currently executing ldisc work is also
 *	flushed.
 */

610
static int tty_ldisc_halt(struct tty_struct *tty, struct tty_struct *o_tty,
611
			  long timeout)
612
{
613
	int retval;
614

615
	clear_bit(TTY_LDISC, &tty->flags);
616 617 618
	if (o_tty)
		clear_bit(TTY_LDISC, &o_tty->flags);

619
	retval = tty_ldisc_wait_idle(tty, timeout);
620 621
	if (!retval && o_tty)
		retval = tty_ldisc_wait_idle(o_tty, timeout);
622 623 624
	if (retval)
		return retval;

625
	set_bit(TTY_LDISC_HALTED, &tty->flags);
626
	if (o_tty)
627 628
		set_bit(TTY_LDISC_HALTED, &o_tty->flags);

629
	return 0;
630 631
}

632
/**
633 634
 *	tty_ldisc_hangup_halt - halt the line discipline for hangup
 *	@tty: tty being hung up
635
 *
636 637
 *	Shut down the line discipline and work queue for the tty device
 *	being hungup. Clear the TTY_LDISC flag to ensure no further
638 639
 *	references can be obtained and wait for remaining references to be
 *	released to ensure no more data is fed to this ldisc.
640
 *	Caller must hold legacy and ->ldisc_mutex.
641 642 643
 *
 *	NB: tty_set_ldisc() is prevented from changing the ldisc concurrently
 *	with this function by checking the TTY_HUPPING flag.
644
 */
645
static bool tty_ldisc_hangup_halt(struct tty_struct *tty)
646
{
647 648 649
	char cur_n[TASK_COMM_LEN], tty_n[64];
	long timeout = 3 * HZ;

650 651
	clear_bit(TTY_LDISC, &tty->flags);

652 653 654 655 656 657 658 659 660
	if (tty->ldisc) {	/* Not yet closed */
		tty_unlock(tty);

		while (tty_ldisc_wait_idle(tty, timeout) == -EBUSY) {
			timeout = MAX_SCHEDULE_TIMEOUT;
			printk_ratelimited(KERN_WARNING
				"%s: waiting (%s) for %s took too long, but we keep waiting...\n",
				__func__, get_task_comm(cur_n, current),
				tty_name(tty, tty_n));
661
		}
662 663 664

		set_bit(TTY_LDISC_HALTED, &tty->flags);

665 666 667 668
		/* must reacquire both locks and preserve lock order */
		mutex_unlock(&tty->ldisc_mutex);
		tty_lock(tty);
		mutex_lock(&tty->ldisc_mutex);
669 670 671 672
	}
	return !!tty->ldisc;
}

673 674 675 676 677 678
/**
 *	tty_set_ldisc		-	set line discipline
 *	@tty: the terminal to set
 *	@ldisc: the line discipline
 *
 *	Set the discipline of a tty line. Must be called from a process
A
Alan Cox 已提交
679 680 681
 *	context. The ldisc change logic has to protect itself against any
 *	overlapping ldisc change (including on the other end of pty pairs),
 *	the close of one side of a tty/pty pair, and eventually hangup.
682
 *
683
 *	Locking: takes tty_ldiscs_lock, termios_mutex
684 685 686 687 688
 */

int tty_set_ldisc(struct tty_struct *tty, int ldisc)
{
	int retval;
A
Alan Cox 已提交
689
	struct tty_ldisc *o_ldisc, *new_ldisc;
690 691
	struct tty_struct *o_tty;

A
Alan Cox 已提交
692 693 694
	new_ldisc = tty_ldisc_get(ldisc);
	if (IS_ERR(new_ldisc))
		return PTR_ERR(new_ldisc);
695

A
Alan Cox 已提交
696
	tty_lock(tty);
697
	/*
A
Alan Cox 已提交
698 699
	 *	We need to look at the tty locking here for pty/tty pairs
	 *	when both sides try to change in parallel.
700 701
	 */

A
Alan Cox 已提交
702 703
	o_tty = tty->link;	/* o_tty is the pty side or NULL */

704

A
Alan Cox 已提交
705 706 707 708 709
	/*
	 *	Check the no-op case
	 */

	if (tty->ldisc->ops->num == ldisc) {
A
Alan Cox 已提交
710
		tty_unlock(tty);
A
Alan Cox 已提交
711
		tty_ldisc_put(new_ldisc);
712 713 714
		return 0;
	}

A
Alan Cox 已提交
715 716 717 718 719 720 721 722 723
	mutex_lock(&tty->ldisc_mutex);

	/*
	 *	We could be midstream of another ldisc change which has
	 *	dropped the lock during processing. If so we need to wait.
	 */

	while (test_bit(TTY_LDISC_CHANGING, &tty->flags)) {
		mutex_unlock(&tty->ldisc_mutex);
A
Alan Cox 已提交
724
		tty_unlock(tty);
A
Alan Cox 已提交
725 726
		wait_event(tty_ldisc_wait,
			test_bit(TTY_LDISC_CHANGING, &tty->flags) == 0);
A
Alan Cox 已提交
727
		tty_lock(tty);
A
Alan Cox 已提交
728 729
		mutex_lock(&tty->ldisc_mutex);
	}
730

A
Alan Cox 已提交
731
	set_bit(TTY_LDISC_CHANGING, &tty->flags);
A
Alan Cox 已提交
732

733 734 735 736 737 738 739 740
	/*
	 *	No more input please, we are switching. The new ldisc
	 *	will update this value in the ldisc open function
	 */

	tty->receive_room = 0;

	o_ldisc = tty->ldisc;
741

A
Alan Cox 已提交
742
	tty_unlock(tty);
743 744 745 746 747
	/*
	 *	Make sure we don't change while someone holds a
	 *	reference to the line discipline. The TTY_LDISC bit
	 *	prevents anyone taking a reference once it is clear.
	 *	We need the lock to avoid racing reference takers.
A
Alan Cox 已提交
748 749 750 751
	 *
	 *	We must clear the TTY_LDISC bit here to avoid a livelock
	 *	with a userspace app continually trying to use the tty in
	 *	parallel to the change and re-referencing the tty.
752 753
	 */

754
	retval = tty_ldisc_halt(tty, o_tty, 5 * HZ);
755 756

	/*
757
	 * Wait for hangup to complete, if pending.
A
Alan Cox 已提交
758
	 * We must drop the mutex here in case a hangup is also in process.
759
	 */
A
Alan Cox 已提交
760 761 762

	mutex_unlock(&tty->ldisc_mutex);

763
	flush_work(&tty->hangup_work);
A
Alan Cox 已提交
764

A
Alan Cox 已提交
765
	tty_lock(tty);
A
Arnd Bergmann 已提交
766
	mutex_lock(&tty->ldisc_mutex);
J
Jiri Slaby 已提交
767 768 769 770 771 772 773

	/* handle wait idle failure locked */
	if (retval) {
		tty_ldisc_put(new_ldisc);
		goto enable;
	}

774
	if (test_bit(TTY_HUPPING, &tty->flags)) {
A
Alan Cox 已提交
775 776 777 778 779
		/* We were raced by the hangup method. It will have stomped
		   the ldisc data and closed the ldisc down */
		clear_bit(TTY_LDISC_CHANGING, &tty->flags);
		mutex_unlock(&tty->ldisc_mutex);
		tty_ldisc_put(new_ldisc);
A
Alan Cox 已提交
780
		tty_unlock(tty);
A
Alan Cox 已提交
781 782 783
		return -EIO;
	}

784
	/* Shutdown the current discipline. */
A
Alan Cox 已提交
785
	tty_ldisc_close(tty, o_ldisc);
786 787

	/* Now set up the new line discipline. */
788
	tty->ldisc = new_ldisc;
789
	tty_set_termios_ldisc(tty, ldisc);
A
Alan Cox 已提交
790 791

	retval = tty_ldisc_open(tty, new_ldisc);
792
	if (retval < 0) {
A
Alan Cox 已提交
793 794 795
		/* Back to the old one or N_TTY if we can't */
		tty_ldisc_put(new_ldisc);
		tty_ldisc_restore(tty, o_ldisc);
796
	}
A
Alan Cox 已提交
797

798 799 800 801
	/* At this point we hold a reference to the new ldisc and a
	   a reference to the old ldisc. If we ended up flipping back
	   to the existing ldisc we have two references to it */

A
Alan Cox 已提交
802
	if (tty->ldisc->ops->num != o_ldisc->ops->num && tty->ops->set_ldisc)
803 804
		tty->ops->set_ldisc(tty);

A
Alan Cox 已提交
805
	tty_ldisc_put(o_ldisc);
806

J
Jiri Slaby 已提交
807
enable:
808
	/*
A
Alan Cox 已提交
809
	 *	Allow ldisc referencing to occur again
810 811 812 813 814 815
	 */

	tty_ldisc_enable(tty);
	if (o_tty)
		tty_ldisc_enable(o_tty);

A
Alan Cox 已提交
816
	/* Restart the work queue in case no characters kick it off. Safe if
817
	   already running */
818 819
	schedule_work(&tty->port->buf.work);
	if (o_tty)
J
Jiri Slaby 已提交
820
		schedule_work(&o_tty->port->buf.work);
821

A
Alan Cox 已提交
822
	mutex_unlock(&tty->ldisc_mutex);
A
Alan Cox 已提交
823
	tty_unlock(tty);
824 825 826
	return retval;
}

A
Alan Cox 已提交
827 828 829 830 831 832 833 834 835 836
/**
 *	tty_reset_termios	-	reset terminal state
 *	@tty: tty to reset
 *
 *	Restore a terminal to the driver default state.
 */

static void tty_reset_termios(struct tty_struct *tty)
{
	mutex_lock(&tty->termios_mutex);
837 838 839
	tty->termios = tty->driver->init_termios;
	tty->termios.c_ispeed = tty_termios_input_baud_rate(&tty->termios);
	tty->termios.c_ospeed = tty_termios_baud_rate(&tty->termios);
A
Alan Cox 已提交
840 841 842 843 844 845 846
	mutex_unlock(&tty->termios_mutex);
}


/**
 *	tty_ldisc_reinit	-	reinitialise the tty ldisc
 *	@tty: tty to reinit
A
Alan Cox 已提交
847
 *	@ldisc: line discipline to reinitialize
A
Alan Cox 已提交
848
 *
A
Alan Cox 已提交
849 850
 *	Switch the tty to a line discipline and leave the ldisc
 *	state closed
A
Alan Cox 已提交
851 852
 */

853
static int tty_ldisc_reinit(struct tty_struct *tty, int ldisc)
A
Alan Cox 已提交
854
{
855 856 857 858
	struct tty_ldisc *ld = tty_ldisc_get(ldisc);

	if (IS_ERR(ld))
		return -1;
A
Alan Cox 已提交
859 860 861 862 863 864

	tty_ldisc_close(tty, tty->ldisc);
	tty_ldisc_put(tty->ldisc);
	/*
	 *	Switch the line discipline back
	 */
865
	tty->ldisc = ld;
A
Alan Cox 已提交
866
	tty_set_termios_ldisc(tty, ldisc);
867 868

	return 0;
A
Alan Cox 已提交
869 870 871 872 873 874 875 876 877 878 879 880 881 882 883 884 885 886 887 888
}

/**
 *	tty_ldisc_hangup		-	hangup ldisc reset
 *	@tty: tty being hung up
 *
 *	Some tty devices reset their termios when they receive a hangup
 *	event. In that situation we must also switch back to N_TTY properly
 *	before we reset the termios data.
 *
 *	Locking: We can take the ldisc mutex as the rest of the code is
 *	careful to allow for this.
 *
 *	In the pty pair case this occurs in the close() path of the
 *	tty itself so we must be careful about locking rules.
 */

void tty_ldisc_hangup(struct tty_struct *tty)
{
	struct tty_ldisc *ld;
A
Alan Cox 已提交
889 890
	int reset = tty->driver->flags & TTY_DRIVER_RESET_TERMIOS;
	int err = 0;
A
Alan Cox 已提交
891

892 893
	tty_ldisc_debug(tty, "closing ldisc: %p\n", tty->ldisc);

A
Alan Cox 已提交
894 895 896 897 898 899 900 901 902 903 904 905 906 907 908 909 910 911 912 913 914 915 916 917 918 919
	/*
	 * FIXME! What are the locking issues here? This may me overdoing
	 * things... This question is especially important now that we've
	 * removed the irqlock.
	 */
	ld = tty_ldisc_ref(tty);
	if (ld != NULL) {
		/* We may have no line discipline at this point */
		if (ld->ops->flush_buffer)
			ld->ops->flush_buffer(tty);
		tty_driver_flush_buffer(tty);
		if ((test_bit(TTY_DO_WRITE_WAKEUP, &tty->flags)) &&
		    ld->ops->write_wakeup)
			ld->ops->write_wakeup(tty);
		if (ld->ops->hangup)
			ld->ops->hangup(tty);
		tty_ldisc_deref(ld);
	}
	/*
	 * FIXME: Once we trust the LDISC code better we can wait here for
	 * ldisc completion and fix the driver call race
	 */
	wake_up_interruptible_poll(&tty->write_wait, POLLOUT);
	wake_up_interruptible_poll(&tty->read_wait, POLLIN);
	/*
	 * Shutdown the current line discipline, and reset it to
A
Alan Cox 已提交
920 921 922
	 * N_TTY if need be.
	 *
	 * Avoid racing set_ldisc or tty_ldisc_release
A
Alan Cox 已提交
923
	 */
A
Alan Cox 已提交
924
	mutex_lock(&tty->ldisc_mutex);
A
Arnd Bergmann 已提交
925

926
	if (tty_ldisc_hangup_halt(tty)) {
927 928 929 930 931

		/* At this point we have a halted ldisc; we want to close it and
		   reopen a new ldisc. We could defer the reopen to the next
		   open but it means auditing a lot of other paths so this is
		   a FIXME */
A
Alan Cox 已提交
932
		if (reset == 0) {
933

934
			if (!tty_ldisc_reinit(tty, tty->termios.c_line))
935 936 937
				err = tty_ldisc_open(tty, tty->ldisc);
			else
				err = 1;
A
Alan Cox 已提交
938 939 940 941
		}
		/* If the re-open fails or we reset then go to N_TTY. The
		   N_TTY open cannot fail */
		if (reset || err) {
942
			BUG_ON(tty_ldisc_reinit(tty, N_TTY));
A
Alan Cox 已提交
943 944
			WARN_ON(tty_ldisc_open(tty, tty->ldisc));
		}
A
Alan Cox 已提交
945
		tty_ldisc_enable(tty);
A
Alan Cox 已提交
946
	}
A
Alan Cox 已提交
947 948 949
	mutex_unlock(&tty->ldisc_mutex);
	if (reset)
		tty_reset_termios(tty);
950 951

	tty_ldisc_debug(tty, "re-opened ldisc: %p\n", tty->ldisc);
A
Alan Cox 已提交
952
}
953 954 955 956 957 958 959

/**
 *	tty_ldisc_setup			-	open line discipline
 *	@tty: tty being shut down
 *	@o_tty: pair tty for pty/tty pairs
 *
 *	Called during the initial open of a tty/pty pair in order to set up the
A
Alan Cox 已提交
960 961
 *	line disciplines and bind them to the tty. This has no locking issues
 *	as the device isn't yet active.
962 963 964 965
 */

int tty_ldisc_setup(struct tty_struct *tty, struct tty_struct *o_tty)
{
A
Alan Cox 已提交
966
	struct tty_ldisc *ld = tty->ldisc;
967 968
	int retval;

A
Alan Cox 已提交
969 970 971 972 973 974
	retval = tty_ldisc_open(tty, ld);
	if (retval)
		return retval;

	if (o_tty) {
		retval = tty_ldisc_open(o_tty, o_tty->ldisc);
975
		if (retval) {
A
Alan Cox 已提交
976
			tty_ldisc_close(tty, ld);
977 978 979 980 981 982 983
			return retval;
		}
		tty_ldisc_enable(o_tty);
	}
	tty_ldisc_enable(tty);
	return 0;
}
A
Alan Cox 已提交
984 985 986 987 988 989 990 991 992 993 994 995 996 997 998 999 1000

static void tty_ldisc_kill(struct tty_struct *tty)
{
	mutex_lock(&tty->ldisc_mutex);
	/*
	 * Now kill off the ldisc
	 */
	tty_ldisc_close(tty, tty->ldisc);
	tty_ldisc_put(tty->ldisc);
	/* Force an oops if we mess this up */
	tty->ldisc = NULL;

	/* Ensure the next open requests the N_TTY ldisc */
	tty_set_termios_ldisc(tty, N_TTY);
	mutex_unlock(&tty->ldisc_mutex);
}

1001 1002 1003 1004 1005
/**
 *	tty_ldisc_release		-	release line discipline
 *	@tty: tty being shut down
 *	@o_tty: pair tty for pty/tty pairs
 *
A
Alan Cox 已提交
1006 1007
 *	Called during the final close of a tty/pty pair in order to shut down
 *	the line discpline layer. On exit the ldisc assigned is N_TTY and the
A
Alan Cox 已提交
1008
 *	ldisc has not been opened.
1009 1010 1011 1012 1013
 */

void tty_ldisc_release(struct tty_struct *tty, struct tty_struct *o_tty)
{
	/*
1014 1015
	 * Shutdown this line discipline. As this is the final close,
	 * it does not race with the set_ldisc code path.
1016 1017
	 */

1018 1019
	tty_ldisc_debug(tty, "closing ldisc: %p\n", tty->ldisc);

1020
	tty_ldisc_halt(tty, o_tty, MAX_SCHEDULE_TIMEOUT);
A
Alan Cox 已提交
1021

1022
	tty_lock_pair(tty, o_tty);
1023
	/* This will need doing differently if we need to lock */
A
Alan Cox 已提交
1024
	tty_ldisc_kill(tty);
A
Alan Cox 已提交
1025
	if (o_tty)
A
Alan Cox 已提交
1026
		tty_ldisc_kill(o_tty);
1027

A
Alan Cox 已提交
1028
	tty_unlock_pair(tty, o_tty);
1029 1030
	/* And the memory resources remaining (buffers, termios) will be
	   disposed of when the kref hits zero */
1031 1032

	tty_ldisc_debug(tty, "ldisc closed\n");
1033 1034 1035 1036 1037 1038 1039 1040 1041 1042 1043 1044
}

/**
 *	tty_ldisc_init		-	ldisc setup for new tty
 *	@tty: tty being allocated
 *
 *	Set up the line discipline objects for a newly allocated tty. Note that
 *	the tty structure is not completely set up when this call is made.
 */

void tty_ldisc_init(struct tty_struct *tty)
{
A
Alan Cox 已提交
1045 1046
	struct tty_ldisc *ld = tty_ldisc_get(N_TTY);
	if (IS_ERR(ld))
1047
		panic("n_tty: init_tty");
1048
	tty->ldisc = ld;
1049 1050
}

1051 1052 1053 1054 1055 1056 1057 1058 1059
/**
 *	tty_ldisc_init		-	ldisc cleanup for new tty
 *	@tty: tty that was allocated recently
 *
 *	The tty structure must not becompletely set up (tty_ldisc_setup) when
 *      this call is made.
 */
void tty_ldisc_deinit(struct tty_struct *tty)
{
1060
	tty_ldisc_put(tty->ldisc);
1061
	tty->ldisc = NULL;
1062 1063
}

1064 1065 1066 1067 1068
void tty_ldisc_begin(void)
{
	/* Setup the default TTY line discipline. */
	(void) tty_register_ldisc(N_TTY, &tty_ldisc_N_TTY);
}