pci.c 29.4 KB
Newer Older
B
bellard 已提交
1 2 3 4
/*
 * QEMU PCI bus manager
 *
 * Copyright (c) 2004 Fabrice Bellard
5
 *
B
bellard 已提交
6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23
 * Permission is hereby granted, free of charge, to any person obtaining a copy
 * of this software and associated documentation files (the "Software"), to deal
 * in the Software without restriction, including without limitation the rights
 * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
 * copies of the Software, and to permit persons to whom the Software is
 * furnished to do so, subject to the following conditions:
 *
 * The above copyright notice and this permission notice shall be included in
 * all copies or substantial portions of the Software.
 *
 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL
 * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
 * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
 * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
 * THE SOFTWARE.
 */
P
pbrook 已提交
24 25
#include "hw.h"
#include "pci.h"
A
aliguori 已提交
26
#include "monitor.h"
P
pbrook 已提交
27
#include "net.h"
28
#include "sysemu.h"
B
bellard 已提交
29 30 31

//#define DEBUG_PCI

32
struct PCIBus {
P
Paul Brook 已提交
33
    BusState qbus;
34 35
    int bus_num;
    int devfn_min;
P
pbrook 已提交
36
    pci_set_irq_fn set_irq;
37
    pci_map_irq_fn map_irq;
38
    uint32_t config_reg; /* XXX: suppress */
39 40
    /* low level pic */
    SetIRQFunc *low_set_irq;
P
pbrook 已提交
41
    qemu_irq *irq_opaque;
42
    PCIDevice *devices[256];
P
pbrook 已提交
43 44
    PCIDevice *parent_dev;
    PCIBus *next;
45 46
    /* The bus IRQ state is the logical OR of the connected devices.
       Keep a count of the number of devices with raised IRQs.  */
47
    int nirq;
48 49 50 51 52 53 54 55 56
    int *irq_count;
};

static void pcibus_dev_print(Monitor *mon, DeviceState *dev, int indent);

static struct BusInfo pci_bus_info = {
    .name       = "PCI",
    .size       = sizeof(PCIBus),
    .print_dev  = pcibus_dev_print,
57
};
B
bellard 已提交
58

B
bellard 已提交
59
static void pci_update_mappings(PCIDevice *d);
P
pbrook 已提交
60
static void pci_set_irq(void *opaque, int irq_num, int level);
B
bellard 已提交
61

B
bellard 已提交
62
target_phys_addr_t pci_mem_base;
63 64
static uint16_t pci_default_sub_vendor_id = PCI_SUBVENDOR_ID_REDHAT_QUMRANET;
static uint16_t pci_default_sub_device_id = PCI_SUBDEVICE_ID_QEMU;
65 66
static PCIBus *first_bus;

67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97
static void pcibus_save(QEMUFile *f, void *opaque)
{
    PCIBus *bus = (PCIBus *)opaque;
    int i;

    qemu_put_be32(f, bus->nirq);
    for (i = 0; i < bus->nirq; i++)
        qemu_put_be32(f, bus->irq_count[i]);
}

static int  pcibus_load(QEMUFile *f, void *opaque, int version_id)
{
    PCIBus *bus = (PCIBus *)opaque;
    int i, nirq;

    if (version_id != 1)
        return -EINVAL;

    nirq = qemu_get_be32(f);
    if (bus->nirq != nirq) {
        fprintf(stderr, "pcibus_load: nirq mismatch: src=%d dst=%d\n",
                nirq, bus->nirq);
        return -EINVAL;
    }

    for (i = 0; i < nirq; i++)
        bus->irq_count[i] = qemu_get_be32(f);

    return 0;
}

G
Gleb Natapov 已提交
98 99 100 101 102 103 104 105 106 107 108 109 110 111 112
static void pci_bus_reset(void *opaque)
{
    PCIBus *bus = (PCIBus *)opaque;
    int i;

    for (i = 0; i < bus->nirq; i++) {
        bus->irq_count[i] = 0;
    }
    for (i = 0; i < 256; i++) {
        if (bus->devices[i])
            memset(bus->devices[i]->irq_state, 0,
                   sizeof(bus->devices[i]->irq_state));
    }
}

P
Paul Brook 已提交
113 114
PCIBus *pci_register_bus(DeviceState *parent, const char *name,
                         pci_set_irq_fn set_irq, pci_map_irq_fn map_irq,
P
pbrook 已提交
115
                         qemu_irq *pic, int devfn_min, int nirq)
116 117
{
    PCIBus *bus;
118 119
    static int nbus = 0;

120
    bus = FROM_QBUS(PCIBus, qbus_create(&pci_bus_info, parent, name));
P
pbrook 已提交
121
    bus->set_irq = set_irq;
122
    bus->map_irq = map_irq;
P
pbrook 已提交
123 124
    bus->irq_opaque = pic;
    bus->devfn_min = devfn_min;
125
    bus->nirq = nirq;
P
Paul Brook 已提交
126
    bus->irq_count = qemu_mallocz(nirq * sizeof(bus->irq_count[0]));
I
Isaku Yamahata 已提交
127
    bus->next = first_bus;
128
    first_bus = bus;
129
    register_savevm("PCIBUS", nbus++, 1, pcibus_save, pcibus_load, bus);
130
    qemu_register_reset(pci_bus_reset, bus);
131 132
    return bus;
}
B
bellard 已提交
133

134
static PCIBus *pci_register_secondary_bus(PCIDevice *dev, pci_map_irq_fn map_irq)
P
pbrook 已提交
135 136
{
    PCIBus *bus;
G
Gerd Hoffmann 已提交
137

138
    bus = qemu_mallocz(sizeof(PCIBus));
P
pbrook 已提交
139 140 141 142 143 144 145
    bus->map_irq = map_irq;
    bus->parent_dev = dev;
    bus->next = dev->bus->next;
    dev->bus->next = bus;
    return bus;
}

P
pbrook 已提交
146 147 148 149 150
int pci_bus_num(PCIBus *s)
{
    return s->bus_num;
}

B
bellard 已提交
151
void pci_device_save(PCIDevice *s, QEMUFile *f)
152
{
153 154 155
    int i;

    qemu_put_be32(f, 2); /* PCI device version */
156
    qemu_put_buffer(f, s->config, 256);
157 158
    for (i = 0; i < 4; i++)
        qemu_put_be32(f, s->irq_state[i]);
159 160
}

B
bellard 已提交
161
int pci_device_load(PCIDevice *s, QEMUFile *f)
162
{
163
    uint8_t config[PCI_CONFIG_SPACE_SIZE];
B
bellard 已提交
164
    uint32_t version_id;
165 166
    int i;

B
bellard 已提交
167
    version_id = qemu_get_be32(f);
168
    if (version_id > 2)
169
        return -EINVAL;
170 171 172 173 174 175
    qemu_get_buffer(f, config, sizeof config);
    for (i = 0; i < sizeof config; ++i)
        if ((config[i] ^ s->config[i]) & s->cmask[i] & ~s->wmask[i])
            return -EINVAL;
    memcpy(s->config, config, sizeof config);

B
bellard 已提交
176
    pci_update_mappings(s);
177 178 179 180

    if (version_id >= 2)
        for (i = 0; i < 4; i ++)
            s->irq_state[i] = qemu_get_be32(f);
181 182 183
    return 0;
}

184 185 186 187 188 189 190 191 192 193
static int pci_set_default_subsystem_id(PCIDevice *pci_dev)
{
    uint16_t *id;

    id = (void*)(&pci_dev->config[PCI_SUBVENDOR_ID]);
    id[0] = cpu_to_le16(pci_default_sub_vendor_id);
    id[1] = cpu_to_le16(pci_default_sub_device_id);
    return 0;
}

194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242
/*
 * Parse [[<domain>:]<bus>:]<slot>, return -1 on error
 */
static int pci_parse_devaddr(const char *addr, int *domp, int *busp, unsigned *slotp)
{
    const char *p;
    char *e;
    unsigned long val;
    unsigned long dom = 0, bus = 0;
    unsigned slot = 0;

    p = addr;
    val = strtoul(p, &e, 16);
    if (e == p)
	return -1;
    if (*e == ':') {
	bus = val;
	p = e + 1;
	val = strtoul(p, &e, 16);
	if (e == p)
	    return -1;
	if (*e == ':') {
	    dom = bus;
	    bus = val;
	    p = e + 1;
	    val = strtoul(p, &e, 16);
	    if (e == p)
		return -1;
	}
    }

    if (dom > 0xffff || bus > 0xff || val > 0x1f)
	return -1;

    slot = val;

    if (*e)
	return -1;

    /* Note: QEMU doesn't implement domains other than 0 */
    if (dom != 0 || pci_find_bus(bus) == NULL)
	return -1;

    *domp = dom;
    *busp = bus;
    *slotp = slot;
    return 0;
}

243 244
int pci_read_devaddr(Monitor *mon, const char *addr, int *domp, int *busp,
                     unsigned *slotp)
245
{
246 247 248 249 250 251
    /* strip legacy tag */
    if (!strncmp(addr, "pci_addr=", 9)) {
        addr += 9;
    }
    if (pci_parse_devaddr(addr, domp, busp, slotp)) {
        monitor_printf(mon, "Invalid pci address\n");
252
        return -1;
253 254
    }
    return 0;
255 256
}

257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274
static PCIBus *pci_get_bus_devfn(int *devfnp, const char *devaddr)
{
    int dom, bus;
    unsigned slot;

    if (!devaddr) {
        *devfnp = -1;
        return pci_find_bus(0);
    }

    if (pci_parse_devaddr(devaddr, &dom, &bus, &slot) < 0) {
        return NULL;
    }

    *devfnp = slot << 3;
    return pci_find_bus(bus);
}

275 276 277 278 279 280 281 282 283 284 285 286
static void pci_init_cmask(PCIDevice *dev)
{
    pci_set_word(dev->cmask + PCI_VENDOR_ID, 0xffff);
    pci_set_word(dev->cmask + PCI_DEVICE_ID, 0xffff);
    dev->cmask[PCI_STATUS] = PCI_STATUS_CAP_LIST;
    dev->cmask[PCI_REVISION_ID] = 0xff;
    dev->cmask[PCI_CLASS_PROG] = 0xff;
    pci_set_word(dev->cmask + PCI_CLASS_DEVICE, 0xffff);
    dev->cmask[PCI_HEADER_TYPE] = 0xff;
    dev->cmask[PCI_CAPABILITY_LIST] = 0xff;
}

287 288 289 290 291 292 293 294 295 296 297
static void pci_init_wmask(PCIDevice *dev)
{
    int i;
    dev->wmask[PCI_CACHE_LINE_SIZE] = 0xff;
    dev->wmask[PCI_INTERRUPT_LINE] = 0xff;
    dev->wmask[PCI_COMMAND] = PCI_COMMAND_IO | PCI_COMMAND_MEMORY
                              | PCI_COMMAND_MASTER;
    for (i = PCI_CONFIG_HEADER_SIZE; i < PCI_CONFIG_SPACE_SIZE; ++i)
        dev->wmask[i] = 0xff;
}

B
bellard 已提交
298
/* -1 for devfn means auto assign */
P
Paul Brook 已提交
299 300 301 302
static PCIDevice *do_pci_register_device(PCIDevice *pci_dev, PCIBus *bus,
                                         const char *name, int devfn,
                                         PCIConfigReadFunc *config_read,
                                         PCIConfigWriteFunc *config_write)
B
bellard 已提交
303 304
{
    if (devfn < 0) {
305 306
        for(devfn = bus->devfn_min ; devfn < 256; devfn += 8) {
            if (!bus->devices[devfn])
B
bellard 已提交
307 308 309 310
                goto found;
        }
        return NULL;
    found: ;
311 312
    } else if (bus->devices[devfn]) {
        return NULL;
B
bellard 已提交
313
    }
314
    pci_dev->bus = bus;
B
bellard 已提交
315 316
    pci_dev->devfn = devfn;
    pstrcpy(pci_dev->name, sizeof(pci_dev->name), name);
317
    memset(pci_dev->irq_state, 0, sizeof(pci_dev->irq_state));
318
    pci_set_default_subsystem_id(pci_dev);
319
    pci_init_cmask(pci_dev);
320
    pci_init_wmask(pci_dev);
321 322 323 324 325

    if (!config_read)
        config_read = pci_default_read_config;
    if (!config_write)
        config_write = pci_default_write_config;
B
bellard 已提交
326 327
    pci_dev->config_read = config_read;
    pci_dev->config_write = config_write;
328
    bus->devices[devfn] = pci_dev;
P
pbrook 已提交
329
    pci_dev->irq = qemu_allocate_irqs(pci_set_irq, pci_dev, 4);
B
bellard 已提交
330 331 332
    return pci_dev;
}

P
Paul Brook 已提交
333 334 335 336 337 338 339 340 341 342 343 344
PCIDevice *pci_register_device(PCIBus *bus, const char *name,
                               int instance_size, int devfn,
                               PCIConfigReadFunc *config_read,
                               PCIConfigWriteFunc *config_write)
{
    PCIDevice *pci_dev;

    pci_dev = qemu_mallocz(instance_size);
    pci_dev = do_pci_register_device(pci_dev, bus, name, devfn,
                                     config_read, config_write);
    return pci_dev;
}
345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379 380 381
static target_phys_addr_t pci_to_cpu_addr(target_phys_addr_t addr)
{
    return addr + pci_mem_base;
}

static void pci_unregister_io_regions(PCIDevice *pci_dev)
{
    PCIIORegion *r;
    int i;

    for(i = 0; i < PCI_NUM_REGIONS; i++) {
        r = &pci_dev->io_regions[i];
        if (!r->size || r->addr == -1)
            continue;
        if (r->type == PCI_ADDRESS_SPACE_IO) {
            isa_unassign_ioport(r->addr, r->size);
        } else {
            cpu_register_physical_memory(pci_to_cpu_addr(r->addr),
                                                     r->size,
                                                     IO_MEM_UNASSIGNED);
        }
    }
}

int pci_unregister_device(PCIDevice *pci_dev)
{
    int ret = 0;

    if (pci_dev->unregister)
        ret = pci_dev->unregister(pci_dev);
    if (ret)
        return ret;

    pci_unregister_io_regions(pci_dev);

    qemu_free_irqs(pci_dev->irq);
    pci_dev->bus->devices[pci_dev->devfn] = NULL;
P
Paul Brook 已提交
382
    qdev_free(&pci_dev->qdev);
383 384 385
    return 0;
}

386
void pci_register_bar(PCIDevice *pci_dev, int region_num,
387
                            uint32_t size, int type,
B
bellard 已提交
388 389 390
                            PCIMapIORegionFunc *map_func)
{
    PCIIORegion *r;
P
pbrook 已提交
391
    uint32_t addr;
392
    uint32_t wmask;
B
bellard 已提交
393

394
    if ((unsigned int)region_num >= PCI_NUM_REGIONS)
B
bellard 已提交
395
        return;
396 397 398 399 400 401 402

    if (size & (size-1)) {
        fprintf(stderr, "ERROR: PCI region size must be pow2 "
                    "type=0x%x, size=0x%x\n", type, size);
        exit(1);
    }

B
bellard 已提交
403 404 405 406 407
    r = &pci_dev->io_regions[region_num];
    r->addr = -1;
    r->size = size;
    r->type = type;
    r->map_func = map_func;
408 409

    wmask = ~(size - 1);
P
pbrook 已提交
410 411
    if (region_num == PCI_ROM_SLOT) {
        addr = 0x30;
412 413
        /* ROM enable bit is writeable */
        wmask |= 1;
P
pbrook 已提交
414 415 416 417
    } else {
        addr = 0x10 + region_num * 4;
    }
    *(uint32_t *)(pci_dev->config + addr) = cpu_to_le32(type);
418
    *(uint32_t *)(pci_dev->wmask + addr) = cpu_to_le32(wmask);
419
    *(uint32_t *)(pci_dev->cmask + addr) = 0xffffffff;
B
bellard 已提交
420 421
}

422 423 424 425
static void pci_update_mappings(PCIDevice *d)
{
    PCIIORegion *r;
    int cmd, i;
426
    uint32_t last_addr, new_addr, config_ofs;
427

428
    cmd = le16_to_cpu(*(uint16_t *)(d->config + PCI_COMMAND));
429
    for(i = 0; i < PCI_NUM_REGIONS; i++) {
430
        r = &d->io_regions[i];
431 432 433 434 435
        if (i == PCI_ROM_SLOT) {
            config_ofs = 0x30;
        } else {
            config_ofs = 0x10 + i * 4;
        }
436 437 438
        if (r->size != 0) {
            if (r->type & PCI_ADDRESS_SPACE_IO) {
                if (cmd & PCI_COMMAND_IO) {
439
                    new_addr = le32_to_cpu(*(uint32_t *)(d->config +
440
                                                         config_ofs));
441 442 443 444 445 446 447 448 449 450 451 452
                    new_addr = new_addr & ~(r->size - 1);
                    last_addr = new_addr + r->size - 1;
                    /* NOTE: we have only 64K ioports on PC */
                    if (last_addr <= new_addr || new_addr == 0 ||
                        last_addr >= 0x10000) {
                        new_addr = -1;
                    }
                } else {
                    new_addr = -1;
                }
            } else {
                if (cmd & PCI_COMMAND_MEMORY) {
453
                    new_addr = le32_to_cpu(*(uint32_t *)(d->config +
454 455 456 457
                                                         config_ofs));
                    /* the ROM slot has a specific enable bit */
                    if (i == PCI_ROM_SLOT && !(new_addr & 1))
                        goto no_mem_map;
458 459 460 461 462 463 464 465 466 467 468
                    new_addr = new_addr & ~(r->size - 1);
                    last_addr = new_addr + r->size - 1;
                    /* NOTE: we do not support wrapping */
                    /* XXX: as we cannot support really dynamic
                       mappings, we handle specific values as invalid
                       mappings. */
                    if (last_addr <= new_addr || new_addr == 0 ||
                        last_addr == -1) {
                        new_addr = -1;
                    }
                } else {
469
                no_mem_map:
470 471 472 473 474 475 476 477 478 479 480 481 482 483 484 485 486
                    new_addr = -1;
                }
            }
            /* now do the real mapping */
            if (new_addr != r->addr) {
                if (r->addr != -1) {
                    if (r->type & PCI_ADDRESS_SPACE_IO) {
                        int class;
                        /* NOTE: specific hack for IDE in PC case:
                           only one byte must be mapped. */
                        class = d->config[0x0a] | (d->config[0x0b] << 8);
                        if (class == 0x0101 && r->size == 4) {
                            isa_unassign_ioport(r->addr + 2, 1);
                        } else {
                            isa_unassign_ioport(r->addr, r->size);
                        }
                    } else {
P
pbrook 已提交
487
                        cpu_register_physical_memory(pci_to_cpu_addr(r->addr),
488
                                                     r->size,
489
                                                     IO_MEM_UNASSIGNED);
A
aliguori 已提交
490
                        qemu_unregister_coalesced_mmio(r->addr, r->size);
491 492 493 494 495 496 497 498 499 500 501
                    }
                }
                r->addr = new_addr;
                if (r->addr != -1) {
                    r->map_func(d, i, r->addr, r->size, r->type);
                }
            }
        }
    }
}

502
uint32_t pci_default_read_config(PCIDevice *d,
503
                                 uint32_t address, int len)
B
bellard 已提交
504
{
505
    uint32_t val;
506

507 508 509
    switch(len) {
    default:
    case 4:
510 511 512 513 514 515 516 517 518 519 520 521 522
	if (address <= 0xfc) {
	    val = le32_to_cpu(*(uint32_t *)(d->config + address));
	    break;
	}
	/* fall through */
    case 2:
        if (address <= 0xfe) {
	    val = le16_to_cpu(*(uint16_t *)(d->config + address));
	    break;
	}
	/* fall through */
    case 1:
        val = d->config[address];
523 524 525 526 527
        break;
    }
    return val;
}

528
void pci_default_write_config(PCIDevice *d, uint32_t addr, uint32_t val, int l)
529
{
530 531
    uint8_t orig[PCI_CONFIG_SPACE_SIZE];
    int i;
532 533

    /* not efficient, but simple */
534 535 536 537
    memcpy(orig, d->config, PCI_CONFIG_SPACE_SIZE);
    for(i = 0; i < l && addr < PCI_CONFIG_SPACE_SIZE; val >>= 8, ++i, ++addr) {
        uint8_t wmask = d->wmask[addr];
        d->config[addr] = (d->config[addr] & ~wmask) | (val & wmask);
538
    }
539 540 541
    if (memcmp(orig + PCI_BASE_ADDRESS_0, d->config + PCI_BASE_ADDRESS_0, 24)
        || ((orig[PCI_COMMAND] ^ d->config[PCI_COMMAND])
            & (PCI_COMMAND_MEMORY | PCI_COMMAND_IO)))
542
        pci_update_mappings(d);
B
bellard 已提交
543 544
}

P
pbrook 已提交
545
void pci_data_write(void *opaque, uint32_t addr, uint32_t val, int len)
B
bellard 已提交
546
{
547 548 549
    PCIBus *s = opaque;
    PCIDevice *pci_dev;
    int config_addr, bus_num;
550

B
bellard 已提交
551 552
#if defined(DEBUG_PCI) && 0
    printf("pci_data_write: addr=%08x val=%08x len=%d\n",
P
pbrook 已提交
553
           addr, val, len);
B
bellard 已提交
554
#endif
P
pbrook 已提交
555
    bus_num = (addr >> 16) & 0xff;
P
pbrook 已提交
556 557 558
    while (s && s->bus_num != bus_num)
        s = s->next;
    if (!s)
B
bellard 已提交
559
        return;
P
pbrook 已提交
560
    pci_dev = s->devices[(addr >> 8) & 0xff];
B
bellard 已提交
561 562
    if (!pci_dev)
        return;
P
pbrook 已提交
563
    config_addr = addr & 0xff;
B
bellard 已提交
564 565 566 567
#if defined(DEBUG_PCI)
    printf("pci_config_write: %s: addr=%02x val=%08x len=%d\n",
           pci_dev->name, config_addr, val, len);
#endif
568
    pci_dev->config_write(pci_dev, config_addr, val, len);
B
bellard 已提交
569 570
}

P
pbrook 已提交
571
uint32_t pci_data_read(void *opaque, uint32_t addr, int len)
B
bellard 已提交
572
{
573 574 575
    PCIBus *s = opaque;
    PCIDevice *pci_dev;
    int config_addr, bus_num;
B
bellard 已提交
576 577
    uint32_t val;

P
pbrook 已提交
578
    bus_num = (addr >> 16) & 0xff;
P
pbrook 已提交
579 580 581
    while (s && s->bus_num != bus_num)
        s= s->next;
    if (!s)
B
bellard 已提交
582
        goto fail;
P
pbrook 已提交
583
    pci_dev = s->devices[(addr >> 8) & 0xff];
B
bellard 已提交
584 585
    if (!pci_dev) {
    fail:
586 587 588 589 590 591 592 593 594 595 596 597
        switch(len) {
        case 1:
            val = 0xff;
            break;
        case 2:
            val = 0xffff;
            break;
        default:
        case 4:
            val = 0xffffffff;
            break;
        }
B
bellard 已提交
598 599
        goto the_end;
    }
P
pbrook 已提交
600
    config_addr = addr & 0xff;
B
bellard 已提交
601 602 603 604 605 606 607 608
    val = pci_dev->config_read(pci_dev, config_addr, len);
#if defined(DEBUG_PCI)
    printf("pci_config_read: %s: addr=%02x val=%08x len=%d\n",
           pci_dev->name, config_addr, val, len);
#endif
 the_end:
#if defined(DEBUG_PCI) && 0
    printf("pci_data_read: addr=%08x val=%08x len=%d\n",
P
pbrook 已提交
609
           addr, val, len);
B
bellard 已提交
610 611 612 613
#endif
    return val;
}

P
pbrook 已提交
614 615
/***********************************************************/
/* generic PCI irq support */
616

P
pbrook 已提交
617
/* 0 <= irq_num <= 3. level must be 0 or 1 */
P
pbrook 已提交
618
static void pci_set_irq(void *opaque, int irq_num, int level)
B
bellard 已提交
619
{
P
pbrook 已提交
620
    PCIDevice *pci_dev = (PCIDevice *)opaque;
P
pbrook 已提交
621 622
    PCIBus *bus;
    int change;
623

P
pbrook 已提交
624 625 626
    change = level - pci_dev->irq_state[irq_num];
    if (!change)
        return;
627 628

    pci_dev->irq_state[irq_num] = level;
P
pbrook 已提交
629 630
    for (;;) {
        bus = pci_dev->bus;
P
pbrook 已提交
631
        irq_num = bus->map_irq(pci_dev, irq_num);
P
pbrook 已提交
632 633
        if (bus->set_irq)
            break;
P
pbrook 已提交
634 635 636
        pci_dev = bus->parent_dev;
    }
    bus->irq_count[irq_num] += change;
637
    bus->set_irq(bus->irq_opaque, irq_num, bus->irq_count[irq_num] != 0);
B
bellard 已提交
638 639
}

P
pbrook 已提交
640 641
/***********************************************************/
/* monitor info on PCI */
642

643 644 645 646 647
typedef struct {
    uint16_t class;
    const char *desc;
} pci_class_desc;

648
static const pci_class_desc pci_class_descriptions[] =
649
{
P
pbrook 已提交
650
    { 0x0100, "SCSI controller"},
651
    { 0x0101, "IDE controller"},
T
ths 已提交
652 653 654 655 656 657
    { 0x0102, "Floppy controller"},
    { 0x0103, "IPI controller"},
    { 0x0104, "RAID controller"},
    { 0x0106, "SATA controller"},
    { 0x0107, "SAS controller"},
    { 0x0180, "Storage controller"},
658
    { 0x0200, "Ethernet controller"},
T
ths 已提交
659 660 661 662
    { 0x0201, "Token Ring controller"},
    { 0x0202, "FDDI controller"},
    { 0x0203, "ATM controller"},
    { 0x0280, "Network controller"},
663
    { 0x0300, "VGA controller"},
T
ths 已提交
664 665 666 667 668 669 670 671 672 673
    { 0x0301, "XGA controller"},
    { 0x0302, "3D controller"},
    { 0x0380, "Display controller"},
    { 0x0400, "Video controller"},
    { 0x0401, "Audio controller"},
    { 0x0402, "Phone"},
    { 0x0480, "Multimedia controller"},
    { 0x0500, "RAM controller"},
    { 0x0501, "Flash controller"},
    { 0x0580, "Memory controller"},
674 675
    { 0x0600, "Host bridge"},
    { 0x0601, "ISA bridge"},
T
ths 已提交
676 677
    { 0x0602, "EISA bridge"},
    { 0x0603, "MC bridge"},
678
    { 0x0604, "PCI bridge"},
T
ths 已提交
679 680 681 682 683
    { 0x0605, "PCMCIA bridge"},
    { 0x0606, "NUBUS bridge"},
    { 0x0607, "CARDBUS bridge"},
    { 0x0608, "RACEWAY bridge"},
    { 0x0680, "Bridge"},
684 685 686 687
    { 0x0c03, "USB controller"},
    { 0, NULL}
};

P
pbrook 已提交
688
static void pci_info_device(PCIDevice *d)
689
{
A
aliguori 已提交
690
    Monitor *mon = cur_mon;
P
pbrook 已提交
691 692
    int i, class;
    PCIIORegion *r;
693
    const pci_class_desc *desc;
694

A
aliguori 已提交
695 696
    monitor_printf(mon, "  Bus %2d, device %3d, function %d:\n",
                   d->bus->bus_num, d->devfn >> 3, d->devfn & 7);
P
pbrook 已提交
697
    class = le16_to_cpu(*((uint16_t *)(d->config + PCI_CLASS_DEVICE)));
A
aliguori 已提交
698
    monitor_printf(mon, "    ");
699 700 701 702
    desc = pci_class_descriptions;
    while (desc->desc && class != desc->class)
        desc++;
    if (desc->desc) {
A
aliguori 已提交
703
        monitor_printf(mon, "%s", desc->desc);
704
    } else {
A
aliguori 已提交
705
        monitor_printf(mon, "Class %04x", class);
706
    }
A
aliguori 已提交
707
    monitor_printf(mon, ": PCI device %04x:%04x\n",
P
pbrook 已提交
708 709
           le16_to_cpu(*((uint16_t *)(d->config + PCI_VENDOR_ID))),
           le16_to_cpu(*((uint16_t *)(d->config + PCI_DEVICE_ID))));
710

P
pbrook 已提交
711
    if (d->config[PCI_INTERRUPT_PIN] != 0) {
A
aliguori 已提交
712 713
        monitor_printf(mon, "      IRQ %d.\n",
                       d->config[PCI_INTERRUPT_LINE]);
714
    }
P
pbrook 已提交
715
    if (class == 0x0604) {
A
aliguori 已提交
716
        monitor_printf(mon, "      BUS %d.\n", d->config[0x19]);
P
pbrook 已提交
717
    }
P
pbrook 已提交
718 719 720
    for(i = 0;i < PCI_NUM_REGIONS; i++) {
        r = &d->io_regions[i];
        if (r->size != 0) {
A
aliguori 已提交
721
            monitor_printf(mon, "      BAR%d: ", i);
P
pbrook 已提交
722
            if (r->type & PCI_ADDRESS_SPACE_IO) {
A
aliguori 已提交
723 724
                monitor_printf(mon, "I/O at 0x%04x [0x%04x].\n",
                               r->addr, r->addr + r->size - 1);
P
pbrook 已提交
725
            } else {
A
aliguori 已提交
726 727
                monitor_printf(mon, "32 bit memory at 0x%08x [0x%08x].\n",
                               r->addr, r->addr + r->size - 1);
P
pbrook 已提交
728 729
            }
        }
B
bellard 已提交
730
    }
P
pbrook 已提交
731 732 733
    if (class == 0x0604 && d->config[0x19] != 0) {
        pci_for_each_device(d->config[0x19], pci_info_device);
    }
734 735
}

P
pbrook 已提交
736
void pci_for_each_device(int bus_num, void (*fn)(PCIDevice *d))
737
{
P
pbrook 已提交
738
    PCIBus *bus = first_bus;
739
    PCIDevice *d;
P
pbrook 已提交
740
    int devfn;
741

P
pbrook 已提交
742 743
    while (bus && bus->bus_num != bus_num)
        bus = bus->next;
P
pbrook 已提交
744 745 746 747 748 749
    if (bus) {
        for(devfn = 0; devfn < 256; devfn++) {
            d = bus->devices[devfn];
            if (d)
                fn(d);
        }
B
bellard 已提交
750 751 752
    }
}

A
aliguori 已提交
753
void pci_info(Monitor *mon)
B
bellard 已提交
754
{
P
pbrook 已提交
755
    pci_for_each_device(0, pci_info_device);
B
bellard 已提交
756
}
757

758
PCIDevice *pci_create(const char *name, const char *devaddr)
759 760 761 762 763 764 765 766 767 768 769 770 771 772 773 774 775
{
    PCIBus *bus;
    int devfn;
    DeviceState *dev;

    bus = pci_get_bus_devfn(&devfn, devaddr);
    if (!bus) {
        fprintf(stderr, "Invalid PCI device address %s for device %s\n",
                devaddr, name);
        exit(1);
    }

    dev = qdev_create(&bus->qbus, name);
    qdev_set_prop_int(dev, "devfn", devfn);
    return (PCIDevice *)dev;
}

776 777 778 779 780 781 782 783 784 785 786 787
static const char * const pci_nic_models[] = {
    "ne2k_pci",
    "i82551",
    "i82557b",
    "i82559er",
    "rtl8139",
    "e1000",
    "pcnet",
    "virtio",
    NULL
};

P
Paul Brook 已提交
788 789 790 791 792 793 794 795
static const char * const pci_nic_names[] = {
    "ne2k_pci",
    "i82551",
    "i82557b",
    "i82559er",
    "rtl8139",
    "e1000",
    "pcnet",
P
Paul Brook 已提交
796
    "virtio-net-pci",
797 798 799
    NULL
};

800
/* Initialize a PCI NIC.  */
801 802
PCIDevice *pci_nic_init(NICInfo *nd, const char *default_model,
                        const char *default_devaddr)
803
{
804 805
    const char *devaddr = nd->devaddr ? nd->devaddr : default_devaddr;
    PCIDevice *pci_dev;
P
Paul Brook 已提交
806
    DeviceState *dev;
807 808 809 810
    int i;

    qemu_check_nic_model_list(nd, pci_nic_models, default_model);

P
Paul Brook 已提交
811
    for (i = 0; pci_nic_models[i]; i++) {
812
        if (strcmp(nd->model, pci_nic_models[i]) == 0) {
813 814
            pci_dev = pci_create(pci_nic_names[i], devaddr);
            dev = &pci_dev->qdev;
P
Paul Brook 已提交
815 816 817
            qdev_set_netdev(dev, nd);
            qdev_init(dev);
            nd->private = dev;
818
            return pci_dev;
819
        }
P
Paul Brook 已提交
820
    }
821 822

    return NULL;
823 824
}

P
pbrook 已提交
825 826 827 828 829
typedef struct {
    PCIDevice dev;
    PCIBus *bus;
} PCIBridge;

830
static void pci_bridge_write_config(PCIDevice *d,
P
pbrook 已提交
831 832 833 834 835
                             uint32_t address, uint32_t val, int len)
{
    PCIBridge *s = (PCIBridge *)d;

    pci_default_write_config(d, address, val, len);
836
    s->bus->bus_num = d->config[PCI_SECONDARY_BUS];
P
pbrook 已提交
837 838
}

839 840 841 842 843 844 845 846 847 848 849 850 851 852 853 854 855 856 857 858
PCIBus *pci_find_bus(int bus_num)
{
    PCIBus *bus = first_bus;

    while (bus && bus->bus_num != bus_num)
        bus = bus->next;

    return bus;
}

PCIDevice *pci_find_device(int bus_num, int slot, int function)
{
    PCIBus *bus = pci_find_bus(bus_num);

    if (!bus)
        return NULL;

    return bus->devices[PCI_DEVFN(slot, function)];
}

B
blueswir1 已提交
859
PCIBus *pci_bridge_init(PCIBus *bus, int devfn, uint16_t vid, uint16_t did,
P
pbrook 已提交
860 861 862
                        pci_map_irq_fn map_irq, const char *name)
{
    PCIBridge *s;
863
    s = (PCIBridge *)pci_register_device(bus, name, sizeof(PCIBridge),
P
pbrook 已提交
864
                                         devfn, NULL, pci_bridge_write_config);
B
blueswir1 已提交
865 866 867 868

    pci_config_set_vendor_id(s->dev.config, vid);
    pci_config_set_device_id(s->dev.config, did);

P
pbrook 已提交
869 870 871 872 873 874
    s->dev.config[0x04] = 0x06; // command = bus master, pci mem
    s->dev.config[0x05] = 0x00;
    s->dev.config[0x06] = 0xa0; // status = fast back-to-back, 66MHz, no error
    s->dev.config[0x07] = 0x00; // status = fast devsel
    s->dev.config[0x08] = 0x00; // revision
    s->dev.config[0x09] = 0x00; // programming i/f
875
    pci_config_set_class(s->dev.config, PCI_CLASS_BRIDGE_PCI);
P
pbrook 已提交
876
    s->dev.config[0x0D] = 0x10; // latency_timer
I
Isaku Yamahata 已提交
877 878
    s->dev.config[PCI_HEADER_TYPE] =
        PCI_HEADER_TYPE_MULTI_FUNCTION | PCI_HEADER_TYPE_BRIDGE; // header_type
P
pbrook 已提交
879 880 881 882 883
    s->dev.config[0x1E] = 0xa0; // secondary status

    s->bus = pci_register_secondary_bus(&s->dev, map_irq);
    return s->bus;
}
P
Paul Brook 已提交
884

P
Paul Brook 已提交
885
static void pci_qdev_init(DeviceState *qdev, DeviceInfo *base)
P
Paul Brook 已提交
886 887
{
    PCIDevice *pci_dev = (PCIDevice *)qdev;
P
Paul Brook 已提交
888
    PCIDeviceInfo *info = container_of(base, PCIDeviceInfo, qdev);
P
Paul Brook 已提交
889 890 891
    PCIBus *bus;
    int devfn;

P
Paul Brook 已提交
892
    bus = FROM_QBUS(PCIBus, qdev_get_parent_bus(qdev));
P
Paul Brook 已提交
893
    devfn = qdev_get_prop_int(qdev, "devfn", -1);
G
Gerd Hoffmann 已提交
894
    pci_dev = do_pci_register_device(pci_dev, bus, base->name, devfn,
895
                                     info->config_read, info->config_write);
P
Paul Brook 已提交
896
    assert(pci_dev);
P
Paul Brook 已提交
897
    info->init(pci_dev);
P
Paul Brook 已提交
898 899
}

900
void pci_qdev_register(PCIDeviceInfo *info)
P
Paul Brook 已提交
901
{
P
Paul Brook 已提交
902
    info->qdev.init = pci_qdev_init;
903
    info->qdev.bus_info = &pci_bus_info;
904
    qdev_register(&info->qdev);
P
Paul Brook 已提交
905 906
}

907 908 909 910 911 912 913 914
void pci_qdev_register_many(PCIDeviceInfo *info)
{
    while (info->qdev.name) {
        pci_qdev_register(info);
        info++;
    }
}

P
Paul Brook 已提交
915 916 917 918
PCIDevice *pci_create_simple(PCIBus *bus, int devfn, const char *name)
{
    DeviceState *dev;

P
Paul Brook 已提交
919
    dev = qdev_create(&bus->qbus, name);
P
Paul Brook 已提交
920 921 922 923 924
    qdev_set_prop_int(dev, "devfn", devfn);
    qdev_init(dev);

    return (PCIDevice *)dev;
}
925 926 927 928 929 930 931 932 933 934 935 936 937 938 939 940 941 942 943 944 945 946 947 948 949 950 951 952 953 954 955 956 957 958 959 960 961 962 963 964 965 966 967 968 969

static int pci_find_space(PCIDevice *pdev, uint8_t size)
{
    int offset = PCI_CONFIG_HEADER_SIZE;
    int i;
    for (i = PCI_CONFIG_HEADER_SIZE; i < PCI_CONFIG_SPACE_SIZE; ++i)
        if (pdev->used[i])
            offset = i + 1;
        else if (i - offset + 1 == size)
            return offset;
    return 0;
}

static uint8_t pci_find_capability_list(PCIDevice *pdev, uint8_t cap_id,
                                        uint8_t *prev_p)
{
    uint8_t next, prev;

    if (!(pdev->config[PCI_STATUS] & PCI_STATUS_CAP_LIST))
        return 0;

    for (prev = PCI_CAPABILITY_LIST; (next = pdev->config[prev]);
         prev = next + PCI_CAP_LIST_NEXT)
        if (pdev->config[next + PCI_CAP_LIST_ID] == cap_id)
            break;

    if (prev_p)
        *prev_p = prev;
    return next;
}

/* Reserve space and add capability to the linked list in pci config space */
int pci_add_capability(PCIDevice *pdev, uint8_t cap_id, uint8_t size)
{
    uint8_t offset = pci_find_space(pdev, size);
    uint8_t *config = pdev->config + offset;
    if (!offset)
        return -ENOSPC;
    config[PCI_CAP_LIST_ID] = cap_id;
    config[PCI_CAP_LIST_NEXT] = pdev->config[PCI_CAPABILITY_LIST];
    pdev->config[PCI_CAPABILITY_LIST] = offset;
    pdev->config[PCI_STATUS] |= PCI_STATUS_CAP_LIST;
    memset(pdev->used + offset, 0xFF, size);
    /* Make capability read-only by default */
    memset(pdev->wmask + offset, 0, size);
970 971
    /* Check capability by default */
    memset(pdev->cmask + offset, 0xFF, size);
972 973 974 975 976 977 978 979 980 981 982 983
    return offset;
}

/* Unlink capability from the pci config space. */
void pci_del_capability(PCIDevice *pdev, uint8_t cap_id, uint8_t size)
{
    uint8_t prev, offset = pci_find_capability_list(pdev, cap_id, &prev);
    if (!offset)
        return;
    pdev->config[prev] = pdev->config[offset + PCI_CAP_LIST_NEXT];
    /* Make capability writeable again */
    memset(pdev->wmask + offset, 0xff, size);
984 985
    /* Clear cmask as device-specific registers can't be checked */
    memset(pdev->cmask + offset, 0, size);
986 987 988 989 990 991 992 993 994 995 996 997 998 999 1000 1001
    memset(pdev->used + offset, 0, size);

    if (!pdev->config[PCI_CAPABILITY_LIST])
        pdev->config[PCI_STATUS] &= ~PCI_STATUS_CAP_LIST;
}

/* Reserve space for capability at a known offset (to call after load). */
void pci_reserve_capability(PCIDevice *pdev, uint8_t offset, uint8_t size)
{
    memset(pdev->used + offset, 0xff, size);
}

uint8_t pci_find_capability(PCIDevice *pdev, uint8_t cap_id)
{
    return pci_find_capability_list(pdev, cap_id, NULL);
}
1002 1003 1004 1005 1006 1007 1008 1009 1010 1011 1012 1013 1014 1015 1016 1017 1018 1019 1020 1021 1022 1023 1024 1025 1026 1027 1028 1029 1030 1031 1032 1033 1034 1035 1036 1037

static void pcibus_dev_print(Monitor *mon, DeviceState *dev, int indent)
{
    PCIDevice *d = (PCIDevice *)dev;
    const pci_class_desc *desc;
    char ctxt[64];
    PCIIORegion *r;
    int i, class;

    class = le16_to_cpu(*((uint16_t *)(d->config + PCI_CLASS_DEVICE)));
    desc = pci_class_descriptions;
    while (desc->desc && class != desc->class)
        desc++;
    if (desc->desc) {
        snprintf(ctxt, sizeof(ctxt), "%s", desc->desc);
    } else {
        snprintf(ctxt, sizeof(ctxt), "Class %04x", class);
    }

    monitor_printf(mon, "%*sclass %s, addr %02x:%02x.%x, "
                   "pci id %04x:%04x (sub %04x:%04x)\n",
                   indent, "", ctxt,
                   d->bus->bus_num, d->devfn >> 3, d->devfn & 7,
                   le16_to_cpu(*((uint16_t *)(d->config + PCI_VENDOR_ID))),
                   le16_to_cpu(*((uint16_t *)(d->config + PCI_DEVICE_ID))),
                   le16_to_cpu(*((uint16_t *)(d->config + PCI_SUBSYSTEM_VENDOR_ID))),
                   le16_to_cpu(*((uint16_t *)(d->config + PCI_SUBSYSTEM_ID))));
    for (i = 0; i < PCI_NUM_REGIONS; i++) {
        r = &d->io_regions[i];
        if (!r->size)
            continue;
        monitor_printf(mon, "%*sbar %d: %s at 0x%x [0x%x]\n", indent, "",
                       i, r->type & PCI_ADDRESS_SPACE_IO ? "i/o" : "mem",
                       r->addr, r->addr + r->size - 1);
    }
}