cmd.c 50.8 KB
Newer Older
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17
/**
  * This file contains the handling of command.
  * It prepares command and sends it to firmware when it is ready.
  */

#include <net/iw_handler.h>
#include "host.h"
#include "hostcmd.h"
#include "decl.h"
#include "defs.h"
#include "dev.h"
#include "join.h"
#include "wext.h"

static void cleanup_cmdnode(struct cmd_ctrl_node *ptempnode);

static u16 commands_allowed_in_ps[] = {
18
	CMD_802_11_RSSI,
19 20 21 22 23 24 25 26 27
};

/**
 *  @brief This function checks if the commans is allowed
 *  in PS mode not.
 *
 *  @param command the command ID
 *  @return 	   TRUE or FALSE
 */
28
static u8 is_command_allowed_in_ps(__le16 command)
29 30 31
{
	int i;

32
	for (i = 0; i < ARRAY_SIZE(commands_allowed_in_ps); i++) {
33 34 35 36 37 38 39
		if (command == cpu_to_le16(commands_allowed_in_ps[i]))
			return 1;
	}

	return 0;
}

40
static int lbs_cmd_hw_spec(struct lbs_private *priv, struct cmd_ds_command *cmd)
41 42 43
{
	struct cmd_ds_get_hw_spec *hwspec = &cmd->params.hwspec;

44
	lbs_deb_enter(LBS_DEB_CMD);
45

46
	cmd->command = cpu_to_le16(CMD_GET_HW_SPEC);
47
	cmd->size = cpu_to_le16(sizeof(struct cmd_ds_get_hw_spec) + S_DS_GEN);
48 49
	memcpy(hwspec->permanentaddr, priv->adapter->current_addr, ETH_ALEN);

50
	lbs_deb_leave(LBS_DEB_CMD);
51 52 53
	return 0;
}

54
static int lbs_cmd_802_11_ps_mode(struct lbs_private *priv,
55 56 57 58 59
				   struct cmd_ds_command *cmd,
				   u16 cmd_action)
{
	struct cmd_ds_802_11_ps_mode *psm = &cmd->params.psmode;

60
	lbs_deb_enter(LBS_DEB_CMD);
61

62
	cmd->command = cpu_to_le16(CMD_802_11_PS_MODE);
63 64
	cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_ps_mode) +
				S_DS_GEN);
65 66
	psm->action = cpu_to_le16(cmd_action);
	psm->multipledtim = 0;
67
	switch (cmd_action) {
68
	case CMD_SUBCMD_ENTER_PS:
69
		lbs_deb_cmd("PS command:" "SubCode- Enter PS\n");
70

71
		psm->locallisteninterval = 0;
72
		psm->nullpktinterval = 0;
73
		psm->multipledtim =
74
		    cpu_to_le16(MRVDRV_DEFAULT_MULTIPLE_DTIM);
75 76
		break;

77
	case CMD_SUBCMD_EXIT_PS:
78
		lbs_deb_cmd("PS command:" "SubCode- Exit PS\n");
79 80
		break;

81
	case CMD_SUBCMD_SLEEP_CONFIRMED:
82
		lbs_deb_cmd("PS command: SubCode- sleep confirm\n");
83 84 85 86 87 88
		break;

	default:
		break;
	}

89
	lbs_deb_leave(LBS_DEB_CMD);
90 91 92
	return 0;
}

93
static int lbs_cmd_802_11_inactivity_timeout(struct lbs_private *priv,
94 95 96 97 98
					      struct cmd_ds_command *cmd,
					      u16 cmd_action, void *pdata_buf)
{
	u16 *timeout = pdata_buf;

99 100
	lbs_deb_enter(LBS_DEB_CMD);

101
	cmd->command = cpu_to_le16(CMD_802_11_INACTIVITY_TIMEOUT);
102 103 104 105 106 107 108
	cmd->size =
	    cpu_to_le16(sizeof(struct cmd_ds_802_11_inactivity_timeout)
			     + S_DS_GEN);

	cmd->params.inactivity_timeout.action = cpu_to_le16(cmd_action);

	if (cmd_action)
109
		cmd->params.inactivity_timeout.timeout = cpu_to_le16(*timeout);
110 111 112
	else
		cmd->params.inactivity_timeout.timeout = 0;

113
	lbs_deb_leave(LBS_DEB_CMD);
114 115 116
	return 0;
}

117
static int lbs_cmd_802_11_sleep_params(struct lbs_private *priv,
118 119 120
					struct cmd_ds_command *cmd,
					u16 cmd_action)
{
121
	struct lbs_adapter *adapter = priv->adapter;
122 123
	struct cmd_ds_802_11_sleep_params *sp = &cmd->params.sleep_params;

124
	lbs_deb_enter(LBS_DEB_CMD);
125

126 127
	cmd->size = cpu_to_le16((sizeof(struct cmd_ds_802_11_sleep_params)) +
				S_DS_GEN);
128
	cmd->command = cpu_to_le16(CMD_802_11_SLEEP_PARAMS);
129

130
	if (cmd_action == CMD_ACT_GET) {
131 132 133
		memset(&adapter->sp, 0, sizeof(struct sleep_params));
		memset(sp, 0, sizeof(struct cmd_ds_802_11_sleep_params));
		sp->action = cpu_to_le16(cmd_action);
134
	} else if (cmd_action == CMD_ACT_SET) {
135 136 137 138 139 140 141 142 143
		sp->action = cpu_to_le16(cmd_action);
		sp->error = cpu_to_le16(adapter->sp.sp_error);
		sp->offset = cpu_to_le16(adapter->sp.sp_offset);
		sp->stabletime = cpu_to_le16(adapter->sp.sp_stabletime);
		sp->calcontrol = (u8) adapter->sp.sp_calcontrol;
		sp->externalsleepclk = (u8) adapter->sp.sp_extsleepclk;
		sp->reserved = cpu_to_le16(adapter->sp.sp_reserved);
	}

144
	lbs_deb_leave(LBS_DEB_CMD);
145 146 147
	return 0;
}

148
static int lbs_cmd_802_11_set_wep(struct lbs_private *priv,
149 150 151 152 153
                                   struct cmd_ds_command *cmd,
                                   u32 cmd_act,
                                   void * pdata_buf)
{
	struct cmd_ds_802_11_set_wep *wep = &cmd->params.wep;
154
	struct lbs_adapter *adapter = priv->adapter;
155 156 157
	int ret = 0;
	struct assoc_request * assoc_req = pdata_buf;

158
	lbs_deb_enter(LBS_DEB_CMD);
159

160
	cmd->command = cpu_to_le16(CMD_802_11_SET_WEP);
161
	cmd->size = cpu_to_le16(sizeof(*wep) + S_DS_GEN);
162

163
	if (cmd_act == CMD_ACT_ADD) {
164 165 166
		int i;

		if (!assoc_req) {
167
			lbs_deb_cmd("Invalid association request!");
168 169 170 171
			ret = -1;
			goto done;
		}

172
		wep->action = cpu_to_le16(CMD_ACT_ADD);
173 174

		/* default tx key index */
175
		wep->keyindex = cpu_to_le16((u16)(assoc_req->wep_tx_keyidx &
176
						  (u32)CMD_WEP_KEY_INDEX_MASK));
177 178 179

		/* Copy key types and material to host command structure */
		for (i = 0; i < 4; i++) {
180
			struct enc_key * pkey = &assoc_req->wep_keys[i];
181 182 183

			switch (pkey->len) {
			case KEY_LEN_WEP_40:
H
Holger Schurig 已提交
184
				wep->keytype[i] = CMD_TYPE_WEP_40_BIT;
185 186
				memmove(&wep->keymaterial[i], pkey->key,
				        pkey->len);
187
				lbs_deb_cmd("SET_WEP: add key %d (40 bit)\n", i);
188 189
				break;
			case KEY_LEN_WEP_104:
H
Holger Schurig 已提交
190
				wep->keytype[i] = CMD_TYPE_WEP_104_BIT;
191 192
				memmove(&wep->keymaterial[i], pkey->key,
				        pkey->len);
193
				lbs_deb_cmd("SET_WEP: add key %d (104 bit)\n", i);
194 195 196 197
				break;
			case 0:
				break;
			default:
198
				lbs_deb_cmd("SET_WEP: invalid key %d, length %d\n",
199 200 201 202 203 204
				       i, pkey->len);
				ret = -1;
				goto done;
				break;
			}
		}
205
	} else if (cmd_act == CMD_ACT_REMOVE) {
206
		/* ACT_REMOVE clears _all_ WEP keys */
207
		wep->action = cpu_to_le16(CMD_ACT_REMOVE);
208 209

		/* default tx key index */
210
		wep->keyindex = cpu_to_le16((u16)(adapter->wep_tx_keyidx &
211
						  (u32)CMD_WEP_KEY_INDEX_MASK));
212
		lbs_deb_cmd("SET_WEP: remove key %d\n", adapter->wep_tx_keyidx);
213 214 215 216 217
	}

	ret = 0;

done:
218
	lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
219 220 221
	return ret;
}

222
static int lbs_cmd_802_11_enable_rsn(struct lbs_private *priv,
223
				      struct cmd_ds_command *cmd,
224 225
				      u16 cmd_action,
				      void * pdata_buf)
226 227
{
	struct cmd_ds_802_11_enable_rsn *penableRSN = &cmd->params.enbrsn;
228
	u32 * enable = pdata_buf;
229 230

	lbs_deb_enter(LBS_DEB_CMD);
231

232
	cmd->command = cpu_to_le16(CMD_802_11_ENABLE_RSN);
233
	cmd->size = cpu_to_le16(sizeof(*penableRSN) + S_DS_GEN);
234
	penableRSN->action = cpu_to_le16(cmd_action);
235

236
	if (cmd_action == CMD_ACT_SET) {
237
		if (*enable)
238
			penableRSN->enable = cpu_to_le16(CMD_ENABLE_RSN);
239
		else
240
			penableRSN->enable = cpu_to_le16(CMD_DISABLE_RSN);
241
		lbs_deb_cmd("ENABLE_RSN: %d\n", *enable);
242 243
	}

244
	lbs_deb_leave(LBS_DEB_CMD);
245 246 247 248 249
	return 0;
}


static void set_one_wpa_key(struct MrvlIEtype_keyParamSet * pkeyparamset,
250
                            struct enc_key * pkey)
251
{
252 253
	lbs_deb_enter(LBS_DEB_CMD);

254
	if (pkey->flags & KEY_INFO_WPA_ENABLED) {
255
		pkeyparamset->keyinfo |= cpu_to_le16(KEY_INFO_WPA_ENABLED);
256 257 258
	}
	if (pkey->flags & KEY_INFO_WPA_UNICAST) {
		pkeyparamset->keyinfo |= cpu_to_le16(KEY_INFO_WPA_UNICAST);
259 260
	}
	if (pkey->flags & KEY_INFO_WPA_MCAST) {
261 262 263 264
		pkeyparamset->keyinfo |= cpu_to_le16(KEY_INFO_WPA_MCAST);
	}

	pkeyparamset->type = cpu_to_le16(TLV_TYPE_KEY_MATERIAL);
265
	pkeyparamset->keytypeid = cpu_to_le16(pkey->type);
266 267 268 269 270 271
	pkeyparamset->keylen = cpu_to_le16(pkey->len);
	memcpy(pkeyparamset->key, pkey->key, pkey->len);
	pkeyparamset->length = cpu_to_le16(  sizeof(pkeyparamset->keytypeid)
	                                        + sizeof(pkeyparamset->keyinfo)
	                                        + sizeof(pkeyparamset->keylen)
	                                        + sizeof(pkeyparamset->key));
272
	lbs_deb_leave(LBS_DEB_CMD);
273 274
}

275
static int lbs_cmd_802_11_key_material(struct lbs_private *priv,
276 277 278 279 280 281
					struct cmd_ds_command *cmd,
					u16 cmd_action,
					u32 cmd_oid, void *pdata_buf)
{
	struct cmd_ds_802_11_key_material *pkeymaterial =
	    &cmd->params.keymaterial;
282
	struct assoc_request * assoc_req = pdata_buf;
283 284 285
	int ret = 0;
	int index = 0;

286
	lbs_deb_enter(LBS_DEB_CMD);
287

288
	cmd->command = cpu_to_le16(CMD_802_11_KEY_MATERIAL);
289 290
	pkeymaterial->action = cpu_to_le16(cmd_action);

291
	if (cmd_action == CMD_ACT_GET) {
292
		cmd->size = cpu_to_le16(S_DS_GEN + sizeof (pkeymaterial->action));
293 294 295 296 297 298
		ret = 0;
		goto done;
	}

	memset(&pkeymaterial->keyParamSet, 0, sizeof(pkeymaterial->keyParamSet));

299
	if (test_bit(ASSOC_FLAG_WPA_UCAST_KEY, &assoc_req->flags)) {
300
		set_one_wpa_key(&pkeymaterial->keyParamSet[index],
301
		                &assoc_req->wpa_unicast_key);
302 303 304
		index++;
	}

305
	if (test_bit(ASSOC_FLAG_WPA_MCAST_KEY, &assoc_req->flags)) {
306
		set_one_wpa_key(&pkeymaterial->keyParamSet[index],
307
		                &assoc_req->wpa_mcast_key);
308 309 310 311
		index++;
	}

	cmd->size = cpu_to_le16(  S_DS_GEN
312 313
	                        + sizeof (pkeymaterial->action)
	                        + (index * sizeof(struct MrvlIEtype_keyParamSet)));
314 315 316 317

	ret = 0;

done:
318
	lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
319 320 321
	return ret;
}

322
static int lbs_cmd_802_11_reset(struct lbs_private *priv,
323 324 325 326
				 struct cmd_ds_command *cmd, int cmd_action)
{
	struct cmd_ds_802_11_reset *reset = &cmd->params.reset;

327 328
	lbs_deb_enter(LBS_DEB_CMD);

329
	cmd->command = cpu_to_le16(CMD_802_11_RESET);
330 331 332
	cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_reset) + S_DS_GEN);
	reset->action = cpu_to_le16(cmd_action);

333
	lbs_deb_leave(LBS_DEB_CMD);
334 335 336
	return 0;
}

337
static int lbs_cmd_802_11_get_log(struct lbs_private *priv,
338 339
				   struct cmd_ds_command *cmd)
{
340
	lbs_deb_enter(LBS_DEB_CMD);
341
	cmd->command = cpu_to_le16(CMD_802_11_GET_LOG);
342 343 344
	cmd->size =
		cpu_to_le16(sizeof(struct cmd_ds_802_11_get_log) + S_DS_GEN);

345
	lbs_deb_leave(LBS_DEB_CMD);
346 347 348
	return 0;
}

349
static int lbs_cmd_802_11_get_stat(struct lbs_private *priv,
350 351
				    struct cmd_ds_command *cmd)
{
352
	lbs_deb_enter(LBS_DEB_CMD);
353
	cmd->command = cpu_to_le16(CMD_802_11_GET_STAT);
354
	cmd->size =
355
	    cpu_to_le16(sizeof(struct cmd_ds_802_11_get_stat) + S_DS_GEN);
356

357
	lbs_deb_leave(LBS_DEB_CMD);
358 359 360
	return 0;
}

361
static int lbs_cmd_802_11_snmp_mib(struct lbs_private *priv,
362 363 364 365 366
				    struct cmd_ds_command *cmd,
				    int cmd_action,
				    int cmd_oid, void *pdata_buf)
{
	struct cmd_ds_802_11_snmp_mib *pSNMPMIB = &cmd->params.smib;
367
	struct lbs_adapter *adapter = priv->adapter;
368 369
	u8 ucTemp;

370
	lbs_deb_enter(LBS_DEB_CMD);
371

372
	lbs_deb_cmd("SNMP_CMD: cmd_oid = 0x%x\n", cmd_oid);
373

374
	cmd->command = cpu_to_le16(CMD_802_11_SNMP_MIB);
375
	cmd->size = cpu_to_le16(sizeof(*pSNMPMIB) + S_DS_GEN);
376 377 378 379

	switch (cmd_oid) {
	case OID_802_11_INFRASTRUCTURE_MODE:
	{
380
		u8 mode = (u8) (size_t) pdata_buf;
381 382
		pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
		pSNMPMIB->oid = cpu_to_le16((u16) DESIRED_BSSTYPE_I);
383
		pSNMPMIB->bufsize = sizeof(u8);
384
		if (mode == IW_MODE_ADHOC) {
385
			ucTemp = SNMP_MIB_VALUE_ADHOC;
386 387 388 389
		} else {
			/* Infra and Auto modes */
			ucTemp = SNMP_MIB_VALUE_INFRA;
		}
390 391 392 393 394 395 396 397 398 399

		memmove(pSNMPMIB->value, &ucTemp, sizeof(u8));

		break;
	}

	case OID_802_11D_ENABLE:
		{
			u32 ulTemp;

400
			pSNMPMIB->oid = cpu_to_le16((u16) DOT11D_I);
401

402 403
			if (cmd_action == CMD_ACT_SET) {
				pSNMPMIB->querytype = CMD_ACT_SET;
404 405
				pSNMPMIB->bufsize = sizeof(u16);
				ulTemp = *(u32 *)pdata_buf;
406
				*((__le16 *)(pSNMPMIB->value)) =
407 408 409 410 411 412 413 414 415
				    cpu_to_le16((u16) ulTemp);
			}
			break;
		}

	case OID_802_11_FRAGMENTATION_THRESHOLD:
		{
			u32 ulTemp;

416
			pSNMPMIB->oid = cpu_to_le16((u16) FRAGTHRESH_I);
417

418 419 420 421
			if (cmd_action == CMD_ACT_GET) {
				pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_GET);
			} else if (cmd_action == CMD_ACT_SET) {
				pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
422
				pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
423
				ulTemp = *((u32 *) pdata_buf);
424
				*((__le16 *)(pSNMPMIB->value)) =
425 426 427 428 429 430 431 432 433 434 435
				    cpu_to_le16((u16) ulTemp);

			}

			break;
		}

	case OID_802_11_RTS_THRESHOLD:
		{

			u32 ulTemp;
436
			pSNMPMIB->oid = le16_to_cpu((u16) RTSTHRESH_I);
437

438 439 440 441
			if (cmd_action == CMD_ACT_GET) {
				pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_GET);
			} else if (cmd_action == CMD_ACT_SET) {
				pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
442 443 444
				pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
				ulTemp = *((u32 *)pdata_buf);
				*(__le16 *)(pSNMPMIB->value) =
445 446 447 448 449 450
				    cpu_to_le16((u16) ulTemp);

			}
			break;
		}
	case OID_802_11_TX_RETRYCOUNT:
451
		pSNMPMIB->oid = cpu_to_le16((u16) SHORT_RETRYLIM_I);
452

453 454 455 456
		if (cmd_action == CMD_ACT_GET) {
			pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_GET);
		} else if (cmd_action == CMD_ACT_SET) {
			pSNMPMIB->querytype = cpu_to_le16(CMD_ACT_SET);
457
			pSNMPMIB->bufsize = cpu_to_le16(sizeof(u16));
458
			*((__le16 *)(pSNMPMIB->value)) =
459 460 461 462 463 464 465 466
			    cpu_to_le16((u16) adapter->txretrycount);
		}

		break;
	default:
		break;
	}

467
	lbs_deb_cmd(
468
	       "SNMP_CMD: command=0x%x, size=0x%x, seqnum=0x%x, result=0x%x\n",
469 470
	       le16_to_cpu(cmd->command), le16_to_cpu(cmd->size),
	       le16_to_cpu(cmd->seqnum), le16_to_cpu(cmd->result));
471

472
	lbs_deb_cmd(
473
	       "SNMP_CMD: action 0x%x, oid 0x%x, oidsize 0x%x, value 0x%x\n",
474 475 476
	       le16_to_cpu(pSNMPMIB->querytype), le16_to_cpu(pSNMPMIB->oid),
	       le16_to_cpu(pSNMPMIB->bufsize),
	       le16_to_cpu(*(__le16 *) pSNMPMIB->value));
477

478
	lbs_deb_leave(LBS_DEB_CMD);
479 480 481
	return 0;
}

482
static int lbs_cmd_802_11_radio_control(struct lbs_private *priv,
483 484 485
					 struct cmd_ds_command *cmd,
					 int cmd_action)
{
486
	struct lbs_adapter *adapter = priv->adapter;
487
	struct cmd_ds_802_11_radio_control *pradiocontrol = &cmd->params.radio;
488

489
	lbs_deb_enter(LBS_DEB_CMD);
490 491 492 493

	cmd->size =
	    cpu_to_le16((sizeof(struct cmd_ds_802_11_radio_control)) +
			     S_DS_GEN);
494
	cmd->command = cpu_to_le16(CMD_802_11_RADIO_CONTROL);
495 496 497 498

	pradiocontrol->action = cpu_to_le16(cmd_action);

	switch (adapter->preamble) {
499
	case CMD_TYPE_SHORT_PREAMBLE:
500 501 502
		pradiocontrol->control = cpu_to_le16(SET_SHORT_PREAMBLE);
		break;

503
	case CMD_TYPE_LONG_PREAMBLE:
504 505 506
		pradiocontrol->control = cpu_to_le16(SET_LONG_PREAMBLE);
		break;

507
	case CMD_TYPE_AUTO_PREAMBLE:
508 509 510 511 512 513 514 515 516 517
	default:
		pradiocontrol->control = cpu_to_le16(SET_AUTO_PREAMBLE);
		break;
	}

	if (adapter->radioon)
		pradiocontrol->control |= cpu_to_le16(TURN_ON_RF);
	else
		pradiocontrol->control &= cpu_to_le16(~TURN_ON_RF);

518
	lbs_deb_leave(LBS_DEB_CMD);
519 520 521
	return 0;
}

522
static int lbs_cmd_802_11_rf_tx_power(struct lbs_private *priv,
523 524 525 526 527 528
				       struct cmd_ds_command *cmd,
				       u16 cmd_action, void *pdata_buf)
{

	struct cmd_ds_802_11_rf_tx_power *prtp = &cmd->params.txp;

529
	lbs_deb_enter(LBS_DEB_CMD);
530 531

	cmd->size =
532
	    cpu_to_le16((sizeof(struct cmd_ds_802_11_rf_tx_power)) + S_DS_GEN);
533
	cmd->command = cpu_to_le16(CMD_802_11_RF_TX_POWER);
534
	prtp->action = cpu_to_le16(cmd_action);
535

536 537 538
	lbs_deb_cmd("RF_TX_POWER_CMD: size:%d cmd:0x%x Act:%d\n",
		    le16_to_cpu(cmd->size), le16_to_cpu(cmd->command),
		    le16_to_cpu(prtp->action));
539 540

	switch (cmd_action) {
541 542
	case CMD_ACT_TX_POWER_OPT_GET:
		prtp->action = cpu_to_le16(CMD_ACT_GET);
543 544 545
		prtp->currentlevel = 0;
		break;

546 547 548
	case CMD_ACT_TX_POWER_OPT_SET_HIGH:
		prtp->action = cpu_to_le16(CMD_ACT_SET);
		prtp->currentlevel = cpu_to_le16(CMD_ACT_TX_POWER_INDEX_HIGH);
549 550
		break;

551 552 553
	case CMD_ACT_TX_POWER_OPT_SET_MID:
		prtp->action = cpu_to_le16(CMD_ACT_SET);
		prtp->currentlevel = cpu_to_le16(CMD_ACT_TX_POWER_INDEX_MID);
554 555
		break;

556 557
	case CMD_ACT_TX_POWER_OPT_SET_LOW:
		prtp->action = cpu_to_le16(CMD_ACT_SET);
558 559 560
		prtp->currentlevel = cpu_to_le16(*((u16 *) pdata_buf));
		break;
	}
561 562

	lbs_deb_leave(LBS_DEB_CMD);
563 564 565
	return 0;
}

566
static int lbs_cmd_802_11_monitor_mode(struct lbs_private *priv,
567 568 569 570 571 572 573 574 575 576 577 578 579 580 581 582 583 584 585
				      struct cmd_ds_command *cmd,
				      u16 cmd_action, void *pdata_buf)
{
	struct cmd_ds_802_11_monitor_mode *monitor = &cmd->params.monitor;

	cmd->command = cpu_to_le16(CMD_802_11_MONITOR_MODE);
	cmd->size =
	    cpu_to_le16(sizeof(struct cmd_ds_802_11_monitor_mode) +
			     S_DS_GEN);

	monitor->action = cpu_to_le16(cmd_action);
	if (cmd_action == CMD_ACT_SET) {
		monitor->mode =
		    cpu_to_le16((u16) (*(u32 *) pdata_buf));
	}

	return 0;
}

586
static int lbs_cmd_802_11_rate_adapt_rateset(struct lbs_private *priv,
587 588 589 590 591
					      struct cmd_ds_command *cmd,
					      u16 cmd_action)
{
	struct cmd_ds_802_11_rate_adapt_rateset
	*rateadapt = &cmd->params.rateset;
592
	struct lbs_adapter *adapter = priv->adapter;
593

594
	lbs_deb_enter(LBS_DEB_CMD);
595 596 597
	cmd->size =
	    cpu_to_le16(sizeof(struct cmd_ds_802_11_rate_adapt_rateset)
			     + S_DS_GEN);
598
	cmd->command = cpu_to_le16(CMD_802_11_RATE_ADAPT_RATESET);
599

600 601 602
	rateadapt->action = cpu_to_le16(cmd_action);
	rateadapt->enablehwauto = cpu_to_le16(adapter->enablehwauto);
	rateadapt->bitmap = cpu_to_le16(adapter->ratebitmap);
603

604
	lbs_deb_leave(LBS_DEB_CMD);
605 606 607
	return 0;
}

608
static int lbs_cmd_802_11_data_rate(struct lbs_private *priv,
609 610 611 612
				     struct cmd_ds_command *cmd,
				     u16 cmd_action)
{
	struct cmd_ds_802_11_data_rate *pdatarate = &cmd->params.drate;
613
	struct lbs_adapter *adapter = priv->adapter;
614

615
	lbs_deb_enter(LBS_DEB_CMD);
616

617
	cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_data_rate) +
618
			     S_DS_GEN);
619
	cmd->command = cpu_to_le16(CMD_802_11_DATA_RATE);
620 621 622
	memset(pdatarate, 0, sizeof(struct cmd_ds_802_11_data_rate));
	pdatarate->action = cpu_to_le16(cmd_action);

623
	if (cmd_action == CMD_ACT_SET_TX_FIX_RATE) {
624
		pdatarate->rates[0] = lbs_data_rate_to_fw_index(adapter->cur_rate);
625
		lbs_deb_cmd("DATA_RATE: set fixed 0x%02X\n",
626
		       adapter->cur_rate);
627
	} else if (cmd_action == CMD_ACT_SET_TX_AUTO) {
628
		lbs_deb_cmd("DATA_RATE: setting auto\n");
629 630
	}

631
	lbs_deb_leave(LBS_DEB_CMD);
632 633 634
	return 0;
}

635
static int lbs_cmd_mac_multicast_adr(struct lbs_private *priv,
636 637 638 639
				      struct cmd_ds_command *cmd,
				      u16 cmd_action)
{
	struct cmd_ds_mac_multicast_adr *pMCastAdr = &cmd->params.madr;
640
	struct lbs_adapter *adapter = priv->adapter;
641

642
	lbs_deb_enter(LBS_DEB_CMD);
643
	cmd->size = cpu_to_le16(sizeof(struct cmd_ds_mac_multicast_adr) +
644
			     S_DS_GEN);
645
	cmd->command = cpu_to_le16(CMD_MAC_MULTICAST_ADR);
646

647
	lbs_deb_cmd("MULTICAST_ADR: setting %d addresses\n", pMCastAdr->nr_of_adrs);
648 649 650 651 652 653
	pMCastAdr->action = cpu_to_le16(cmd_action);
	pMCastAdr->nr_of_adrs =
	    cpu_to_le16((u16) adapter->nr_of_multicastmacaddr);
	memcpy(pMCastAdr->maclist, adapter->multicastlist,
	       adapter->nr_of_multicastmacaddr * ETH_ALEN);

654
	lbs_deb_leave(LBS_DEB_CMD);
655 656 657
	return 0;
}

658
static int lbs_cmd_802_11_rf_channel(struct lbs_private *priv,
659 660 661 662 663
				      struct cmd_ds_command *cmd,
				      int option, void *pdata_buf)
{
	struct cmd_ds_802_11_rf_channel *rfchan = &cmd->params.rfchannel;

664
	lbs_deb_enter(LBS_DEB_CMD);
665
	cmd->command = cpu_to_le16(CMD_802_11_RF_CHANNEL);
666 667
	cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_rf_channel) +
				S_DS_GEN);
668

669
	if (option == CMD_OPT_802_11_RF_CHANNEL_SET) {
670 671 672 673 674
		rfchan->currentchannel = cpu_to_le16(*((u16 *) pdata_buf));
	}

	rfchan->action = cpu_to_le16(option);

675
	lbs_deb_leave(LBS_DEB_CMD);
676 677 678
	return 0;
}

679
static int lbs_cmd_802_11_rssi(struct lbs_private *priv,
680 681
				struct cmd_ds_command *cmd)
{
682
	struct lbs_adapter *adapter = priv->adapter;
683

684
	lbs_deb_enter(LBS_DEB_CMD);
685
	cmd->command = cpu_to_le16(CMD_802_11_RSSI);
686
	cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_rssi) + S_DS_GEN);
687
	cmd->params.rssi.N = cpu_to_le16(DEFAULT_BCN_AVG_FACTOR);
688 689 690 691 692 693 694 695 696

	/* reset Beacon SNR/NF/RSSI values */
	adapter->SNR[TYPE_BEACON][TYPE_NOAVG] = 0;
	adapter->SNR[TYPE_BEACON][TYPE_AVG] = 0;
	adapter->NF[TYPE_BEACON][TYPE_NOAVG] = 0;
	adapter->NF[TYPE_BEACON][TYPE_AVG] = 0;
	adapter->RSSI[TYPE_BEACON][TYPE_NOAVG] = 0;
	adapter->RSSI[TYPE_BEACON][TYPE_AVG] = 0;

697
	lbs_deb_leave(LBS_DEB_CMD);
698 699 700
	return 0;
}

701
static int lbs_cmd_reg_access(struct lbs_private *priv,
702 703 704
			       struct cmd_ds_command *cmdptr,
			       u8 cmd_action, void *pdata_buf)
{
705
	struct lbs_offset_value *offval;
706

707
	lbs_deb_enter(LBS_DEB_CMD);
708

709
	offval = (struct lbs_offset_value *)pdata_buf;
710 711

	switch (cmdptr->command) {
712
	case CMD_MAC_REG_ACCESS:
713 714 715 716
		{
			struct cmd_ds_mac_reg_access *macreg;

			cmdptr->size =
717 718
			    cpu_to_le16(sizeof (struct cmd_ds_mac_reg_access)
					+ S_DS_GEN);
719 720 721 722 723 724 725 726 727 728 729
			macreg =
			    (struct cmd_ds_mac_reg_access *)&cmdptr->params.
			    macreg;

			macreg->action = cpu_to_le16(cmd_action);
			macreg->offset = cpu_to_le16((u16) offval->offset);
			macreg->value = cpu_to_le32(offval->value);

			break;
		}

730
	case CMD_BBP_REG_ACCESS:
731 732 733 734 735 736 737 738 739 740 741 742 743 744 745 746 747 748
		{
			struct cmd_ds_bbp_reg_access *bbpreg;

			cmdptr->size =
			    cpu_to_le16(sizeof
					     (struct cmd_ds_bbp_reg_access)
					     + S_DS_GEN);
			bbpreg =
			    (struct cmd_ds_bbp_reg_access *)&cmdptr->params.
			    bbpreg;

			bbpreg->action = cpu_to_le16(cmd_action);
			bbpreg->offset = cpu_to_le16((u16) offval->offset);
			bbpreg->value = (u8) offval->value;

			break;
		}

749
	case CMD_RF_REG_ACCESS:
750 751 752 753 754 755 756 757 758 759 760 761 762 763 764 765 766 767 768 769 770 771
		{
			struct cmd_ds_rf_reg_access *rfreg;

			cmdptr->size =
			    cpu_to_le16(sizeof
					     (struct cmd_ds_rf_reg_access) +
					     S_DS_GEN);
			rfreg =
			    (struct cmd_ds_rf_reg_access *)&cmdptr->params.
			    rfreg;

			rfreg->action = cpu_to_le16(cmd_action);
			rfreg->offset = cpu_to_le16((u16) offval->offset);
			rfreg->value = (u8) offval->value;

			break;
		}

	default:
		break;
	}

772
	lbs_deb_leave(LBS_DEB_CMD);
773 774 775
	return 0;
}

776
static int lbs_cmd_802_11_mac_address(struct lbs_private *priv,
777 778 779
				       struct cmd_ds_command *cmd,
				       u16 cmd_action)
{
780
	struct lbs_adapter *adapter = priv->adapter;
781

782
	lbs_deb_enter(LBS_DEB_CMD);
783
	cmd->command = cpu_to_le16(CMD_802_11_MAC_ADDRESS);
784
	cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_mac_address) +
785 786 787 788 789
			     S_DS_GEN);
	cmd->result = 0;

	cmd->params.macadd.action = cpu_to_le16(cmd_action);

790
	if (cmd_action == CMD_ACT_SET) {
791 792
		memcpy(cmd->params.macadd.macadd,
		       adapter->current_addr, ETH_ALEN);
793
		lbs_deb_hex(LBS_DEB_CMD, "SET_CMD: MAC addr", adapter->current_addr, 6);
794 795
	}

796
	lbs_deb_leave(LBS_DEB_CMD);
797 798 799
	return 0;
}

800
static int lbs_cmd_802_11_eeprom_access(struct lbs_private *priv,
801 802 803
					 struct cmd_ds_command *cmd,
					 int cmd_action, void *pdata_buf)
{
804
	struct lbs_ioctl_regrdwr *ea = pdata_buf;
805

806
	lbs_deb_enter(LBS_DEB_CMD);
807

808
	cmd->command = cpu_to_le16(CMD_802_11_EEPROM_ACCESS);
809 810
	cmd->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_eeprom_access) +
				S_DS_GEN);
811 812 813 814 815 816 817
	cmd->result = 0;

	cmd->params.rdeeprom.action = cpu_to_le16(ea->action);
	cmd->params.rdeeprom.offset = cpu_to_le16(ea->offset);
	cmd->params.rdeeprom.bytecount = cpu_to_le16(ea->NOB);
	cmd->params.rdeeprom.value = 0;

818
	lbs_deb_leave(LBS_DEB_CMD);
819 820 821
	return 0;
}

822
static int lbs_cmd_bt_access(struct lbs_private *priv,
823 824 825 826
			       struct cmd_ds_command *cmd,
			       u16 cmd_action, void *pdata_buf)
{
	struct cmd_ds_bt_access *bt_access = &cmd->params.bt;
827
	lbs_deb_enter_args(LBS_DEB_CMD, "action %d", cmd_action);
828

829
	cmd->command = cpu_to_le16(CMD_BT_ACCESS);
830
	cmd->size = cpu_to_le16(sizeof(struct cmd_ds_bt_access) + S_DS_GEN);
831 832 833 834
	cmd->result = 0;
	bt_access->action = cpu_to_le16(cmd_action);

	switch (cmd_action) {
835
	case CMD_ACT_BT_ACCESS_ADD:
836
		memcpy(bt_access->addr1, pdata_buf, 2 * ETH_ALEN);
837
		lbs_deb_hex(LBS_DEB_MESH, "BT_ADD: blinded MAC addr", bt_access->addr1, 6);
838
		break;
839
	case CMD_ACT_BT_ACCESS_DEL:
840
		memcpy(bt_access->addr1, pdata_buf, 1 * ETH_ALEN);
841
		lbs_deb_hex(LBS_DEB_MESH, "BT_DEL: blinded MAC addr", bt_access->addr1, 6);
842
		break;
843
	case CMD_ACT_BT_ACCESS_LIST:
844 845
		bt_access->id = cpu_to_le32(*(u32 *) pdata_buf);
		break;
846
	case CMD_ACT_BT_ACCESS_RESET:
847
		break;
848
	case CMD_ACT_BT_ACCESS_SET_INVERT:
849 850
		bt_access->id = cpu_to_le32(*(u32 *) pdata_buf);
		break;
851
	case CMD_ACT_BT_ACCESS_GET_INVERT:
852
		break;
853 854 855
	default:
		break;
	}
856
	lbs_deb_leave(LBS_DEB_CMD);
857 858 859
	return 0;
}

860
static int lbs_cmd_fwt_access(struct lbs_private *priv,
861 862 863 864
			       struct cmd_ds_command *cmd,
			       u16 cmd_action, void *pdata_buf)
{
	struct cmd_ds_fwt_access *fwt_access = &cmd->params.fwt;
865
	lbs_deb_enter_args(LBS_DEB_CMD, "action %d", cmd_action);
866

867
	cmd->command = cpu_to_le16(CMD_FWT_ACCESS);
868
	cmd->size = cpu_to_le16(sizeof(struct cmd_ds_fwt_access) + S_DS_GEN);
869 870 871 872 873 874 875 876 877
	cmd->result = 0;

	if (pdata_buf)
		memcpy(fwt_access, pdata_buf, sizeof(*fwt_access));
	else
		memset(fwt_access, 0, sizeof(*fwt_access));

	fwt_access->action = cpu_to_le16(cmd_action);

878
	lbs_deb_leave(LBS_DEB_CMD);
879 880 881
	return 0;
}

882
static int lbs_cmd_mesh_access(struct lbs_private *priv,
883 884 885 886
				struct cmd_ds_command *cmd,
				u16 cmd_action, void *pdata_buf)
{
	struct cmd_ds_mesh_access *mesh_access = &cmd->params.mesh;
887
	lbs_deb_enter_args(LBS_DEB_CMD, "action %d", cmd_action);
888

889
	cmd->command = cpu_to_le16(CMD_MESH_ACCESS);
890
	cmd->size = cpu_to_le16(sizeof(struct cmd_ds_mesh_access) + S_DS_GEN);
891 892 893 894 895 896 897 898 899
	cmd->result = 0;

	if (pdata_buf)
		memcpy(mesh_access, pdata_buf, sizeof(*mesh_access));
	else
		memset(mesh_access, 0, sizeof(*mesh_access));

	mesh_access->action = cpu_to_le16(cmd_action);

900
	lbs_deb_leave(LBS_DEB_CMD);
901 902 903
	return 0;
}

904 905 906 907 908 909 910 911 912 913 914 915 916 917 918 919 920 921 922 923 924 925
static int lbs_cmd_bcn_ctrl(struct lbs_private * priv,
				struct cmd_ds_command *cmd,
				u16 cmd_action)
{
	struct cmd_ds_802_11_beacon_control
		*bcn_ctrl = &cmd->params.bcn_ctrl;
	struct lbs_adapter *adapter = priv->adapter;

	lbs_deb_enter(LBS_DEB_CMD);
	cmd->size =
	    cpu_to_le16(sizeof(struct cmd_ds_802_11_beacon_control)
			     + S_DS_GEN);
	cmd->command = cpu_to_le16(CMD_802_11_BEACON_CTRL);

	bcn_ctrl->action = cpu_to_le16(cmd_action);
	bcn_ctrl->beacon_enable = cpu_to_le16(adapter->beacon_enable);
	bcn_ctrl->beacon_period = cpu_to_le16(adapter->beacon_period);

	lbs_deb_leave(LBS_DEB_CMD);
	return 0;
}

926
static int lbs_cmd_set_boot2_ver(struct lbs_private *priv,
927 928 929 930 931 932 933 934 935 936
				struct cmd_ds_command *cmd,
				u16 cmd_action, void *pdata_buf)
{
	struct cmd_ds_set_boot2_ver *boot2_ver = &cmd->params.boot2_ver;
	cmd->command = cpu_to_le16(CMD_SET_BOOT2_VER);
	cmd->size = cpu_to_le16(sizeof(struct cmd_ds_set_boot2_ver) + S_DS_GEN);
	boot2_ver->version = priv->boot2_version;
	return 0;
}

937
/*
938
 * Note: NEVER use lbs_queue_cmd() with addtail==0 other than for
939 940
 * the command timer, because it does not account for queued commands.
 */
941 942 943
void lbs_queue_cmd(struct lbs_adapter *adapter,
	struct cmd_ctrl_node *cmdnode,
	u8 addtail)
944 945 946 947
{
	unsigned long flags;
	struct cmd_ds_command *cmdptr;

948
	lbs_deb_enter(LBS_DEB_HOST);
949 950

	if (!cmdnode) {
951
		lbs_deb_host("QUEUE_CMD: cmdnode is NULL\n");
952 953 954 955 956
		goto done;
	}

	cmdptr = (struct cmd_ds_command *)cmdnode->bufvirtualaddr;
	if (!cmdptr) {
957
		lbs_deb_host("QUEUE_CMD: cmdptr is NULL\n");
958 959 960 961
		goto done;
	}

	/* Exit_PS command needs to be queued in the header always. */
962
	if (cmdptr->command == CMD_802_11_PS_MODE) {
963
		struct cmd_ds_802_11_ps_mode *psm = &cmdptr->params.psmode;
964
		if (psm->action == cpu_to_le16(CMD_SUBCMD_EXIT_PS)) {
965 966 967 968 969 970 971
			if (adapter->psstate != PS_STATE_FULL_POWER)
				addtail = 0;
		}
	}

	spin_lock_irqsave(&adapter->driver_lock, flags);

972
	if (addtail) {
973 974
		list_add_tail((struct list_head *)cmdnode,
			      &adapter->cmdpendingq);
975 976
		adapter->nr_cmd_pending++;
	} else
977 978 979 980
		list_add((struct list_head *)cmdnode, &adapter->cmdpendingq);

	spin_unlock_irqrestore(&adapter->driver_lock, flags);

981
	lbs_deb_host("QUEUE_CMD: inserted command 0x%04x into cmdpendingq\n",
982
	       le16_to_cpu(((struct cmd_ds_gen*)cmdnode->bufvirtualaddr)->command));
983 984

done:
985
	lbs_deb_leave(LBS_DEB_HOST);
986 987 988 989
}

/*
 * TODO: Fix the issue when DownloadcommandToStation is being called the
990
 * second time when the command times out. All the cmdptr->xxx are in little
991 992 993 994
 * endian and therefore all the comparissions will fail.
 * For now - we are not performing the endian conversion the second time - but
 * for PS and DEEP_SLEEP we need to worry
 */
995
static int DownloadcommandToStation(struct lbs_private *priv,
996 997 998 999
				    struct cmd_ctrl_node *cmdnode)
{
	unsigned long flags;
	struct cmd_ds_command *cmdptr;
1000
	struct lbs_adapter *adapter = priv->adapter;
1001
	int ret = -1;
1002 1003 1004
	u16 cmdsize;
	u16 command;

1005
	lbs_deb_enter(LBS_DEB_HOST);
1006 1007

	if (!adapter || !cmdnode) {
1008
		lbs_deb_host("DNLD_CMD: adapter or cmdmode is NULL\n");
1009 1010 1011 1012 1013 1014 1015
		goto done;
	}

	cmdptr = (struct cmd_ds_command *)cmdnode->bufvirtualaddr;

	spin_lock_irqsave(&adapter->driver_lock, flags);
	if (!cmdptr || !cmdptr->size) {
1016
		lbs_deb_host("DNLD_CMD: cmdptr is NULL or zero\n");
1017
		__lbs_cleanup_and_insert_cmd(priv, cmdnode);
1018 1019 1020 1021 1022 1023 1024 1025 1026 1027 1028
		spin_unlock_irqrestore(&adapter->driver_lock, flags);
		goto done;
	}

	adapter->cur_cmd = cmdnode;
	adapter->cur_cmd_retcode = 0;
	spin_unlock_irqrestore(&adapter->driver_lock, flags);

	cmdsize = cmdptr->size;
	command = cpu_to_le16(cmdptr->command);

1029 1030 1031 1032
	lbs_deb_host("DNLD_CMD: command 0x%04x, size %d, jiffies %lu\n",
		    command, le16_to_cpu(cmdptr->size), jiffies);
	lbs_deb_hex(LBS_DEB_HOST, "DNLD_CMD", cmdnode->bufvirtualaddr, cmdsize);

1033 1034 1035
	cmdnode->cmdwaitqwoken = 0;
	cmdsize = cpu_to_le16(cmdsize);

1036
	ret = priv->hw_host_to_card(priv, MVMS_CMD, (u8 *) cmdptr, cmdsize);
1037 1038

	if (ret != 0) {
1039
		lbs_deb_host("DNLD_CMD: hw_host_to_card failed\n");
1040
		spin_lock_irqsave(&adapter->driver_lock, flags);
1041
		adapter->cur_cmd_retcode = ret;
1042
		__lbs_cleanup_and_insert_cmd(priv, adapter->cur_cmd);
1043
		adapter->nr_cmd_pending--;
1044 1045 1046 1047 1048
		adapter->cur_cmd = NULL;
		spin_unlock_irqrestore(&adapter->driver_lock, flags);
		goto done;
	}

1049
	lbs_deb_cmd("DNLD_CMD: sent command 0x%04x, jiffies %lu\n", command, jiffies);
1050 1051

	/* Setup the timer after transmit command */
1052 1053
	if (command == CMD_802_11_SCAN || command == CMD_802_11_AUTHENTICATE
	    || command == CMD_802_11_ASSOCIATE)
1054 1055 1056 1057 1058 1059
		mod_timer(&adapter->command_timer, jiffies + (10*HZ));
	else
		mod_timer(&adapter->command_timer, jiffies + (5*HZ));

	ret = 0;

1060
done:
1061
	lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1062 1063 1064
	return ret;
}

1065
static int lbs_cmd_mac_control(struct lbs_private *priv,
1066 1067 1068 1069
				struct cmd_ds_command *cmd)
{
	struct cmd_ds_mac_control *mac = &cmd->params.macctrl;

1070
	lbs_deb_enter(LBS_DEB_CMD);
1071

1072
	cmd->command = cpu_to_le16(CMD_MAC_CONTROL);
1073
	cmd->size = cpu_to_le16(sizeof(struct cmd_ds_mac_control) + S_DS_GEN);
1074 1075
	mac->action = cpu_to_le16(priv->adapter->currentpacketfilter);

1076
	lbs_deb_cmd("MAC_CONTROL: action 0x%x, size %d\n",
1077
		    le16_to_cpu(mac->action), le16_to_cpu(cmd->size));
1078

1079
	lbs_deb_leave(LBS_DEB_CMD);
1080 1081 1082 1083 1084 1085 1086
	return 0;
}

/**
 *  This function inserts command node to cmdfreeq
 *  after cleans it. Requires adapter->driver_lock held.
 */
1087 1088
void __lbs_cleanup_and_insert_cmd(struct lbs_private *priv,
	struct cmd_ctrl_node *ptempcmd)
1089
{
1090
	struct lbs_adapter *adapter = priv->adapter;
1091 1092

	if (!ptempcmd)
1093
		return;
1094 1095 1096 1097 1098

	cleanup_cmdnode(ptempcmd);
	list_add_tail((struct list_head *)ptempcmd, &adapter->cmdfreeq);
}

1099 1100
static void lbs_cleanup_and_insert_cmd(struct lbs_private *priv,
	struct cmd_ctrl_node *ptempcmd)
1101 1102 1103 1104
{
	unsigned long flags;

	spin_lock_irqsave(&priv->adapter->driver_lock, flags);
1105
	__lbs_cleanup_and_insert_cmd(priv, ptempcmd);
1106 1107 1108
	spin_unlock_irqrestore(&priv->adapter->driver_lock, flags);
}

1109
int lbs_set_radio_control(struct lbs_private *priv)
1110 1111 1112
{
	int ret = 0;

1113
	lbs_deb_enter(LBS_DEB_CMD);
1114

1115
	ret = lbs_prepare_and_send_command(priv,
1116 1117 1118
				    CMD_802_11_RADIO_CONTROL,
				    CMD_ACT_SET,
				    CMD_OPTION_WAITFORRSP, 0, NULL);
1119

1120
	lbs_deb_cmd("RADIO_SET: radio %d, preamble %d\n",
1121 1122
	       priv->adapter->radioon, priv->adapter->preamble);

1123
	lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
1124 1125 1126
	return ret;
}

1127
int lbs_set_mac_packet_filter(struct lbs_private *priv)
1128 1129 1130
{
	int ret = 0;

1131
	lbs_deb_enter(LBS_DEB_CMD);
1132 1133

	/* Send MAC control command to station */
1134
	ret = lbs_prepare_and_send_command(priv,
1135
				    CMD_MAC_CONTROL, 0, 0, 0, NULL);
1136

1137
	lbs_deb_leave_args(LBS_DEB_CMD, "ret %d", ret);
1138 1139 1140 1141 1142 1143
	return ret;
}

/**
 *  @brief This function prepare the command before send to firmware.
 *
1144
 *  @param priv		A pointer to struct lbs_private structure
1145 1146 1147 1148 1149 1150 1151
 *  @param cmd_no	command number
 *  @param cmd_action	command action: GET or SET
 *  @param wait_option	wait option: wait response or not
 *  @param cmd_oid	cmd oid: treated as sub command
 *  @param pdata_buf	A pointer to informaion buffer
 *  @return 		0 or -1
 */
1152
int lbs_prepare_and_send_command(struct lbs_private *priv,
1153 1154 1155 1156 1157
			  u16 cmd_no,
			  u16 cmd_action,
			  u16 wait_option, u32 cmd_oid, void *pdata_buf)
{
	int ret = 0;
1158
	struct lbs_adapter *adapter = priv->adapter;
1159 1160 1161 1162
	struct cmd_ctrl_node *cmdnode;
	struct cmd_ds_command *cmdptr;
	unsigned long flags;

1163
	lbs_deb_enter(LBS_DEB_HOST);
1164 1165

	if (!adapter) {
1166
		lbs_deb_host("PREP_CMD: adapter is NULL\n");
1167 1168 1169 1170 1171
		ret = -1;
		goto done;
	}

	if (adapter->surpriseremoved) {
1172
		lbs_deb_host("PREP_CMD: card removed\n");
1173 1174 1175 1176
		ret = -1;
		goto done;
	}

1177
	cmdnode = lbs_get_free_cmd_ctrl_node(priv);
1178 1179

	if (cmdnode == NULL) {
1180
		lbs_deb_host("PREP_CMD: cmdnode is NULL\n");
1181 1182

		/* Wake up main thread to execute next command */
1183
		wake_up_interruptible(&priv->waitq);
1184 1185 1186 1187
		ret = -1;
		goto done;
	}

1188
	lbs_set_cmd_ctrl_node(priv, cmdnode, cmd_oid, wait_option, pdata_buf);
1189 1190 1191

	cmdptr = (struct cmd_ds_command *)cmdnode->bufvirtualaddr;

1192
	lbs_deb_host("PREP_CMD: command 0x%04x\n", cmd_no);
1193 1194

	if (!cmdptr) {
1195
		lbs_deb_host("PREP_CMD: cmdptr is NULL\n");
1196
		lbs_cleanup_and_insert_cmd(priv, cmdnode);
1197 1198 1199 1200 1201 1202 1203 1204
		ret = -1;
		goto done;
	}

	/* Set sequence number, command and INT option */
	adapter->seqnum++;
	cmdptr->seqnum = cpu_to_le16(adapter->seqnum);

1205
	cmdptr->command = cpu_to_le16(cmd_no);
1206 1207 1208
	cmdptr->result = 0;

	switch (cmd_no) {
1209
	case CMD_GET_HW_SPEC:
1210
		ret = lbs_cmd_hw_spec(priv, cmdptr);
1211
		break;
1212
	case CMD_802_11_PS_MODE:
1213
		ret = lbs_cmd_802_11_ps_mode(priv, cmdptr, cmd_action);
1214 1215
		break;

1216
	case CMD_802_11_SCAN:
1217
		ret = lbs_cmd_80211_scan(priv, cmdptr, pdata_buf);
1218 1219
		break;

1220
	case CMD_MAC_CONTROL:
1221
		ret = lbs_cmd_mac_control(priv, cmdptr);
1222 1223
		break;

1224 1225
	case CMD_802_11_ASSOCIATE:
	case CMD_802_11_REASSOCIATE:
1226
		ret = lbs_cmd_80211_associate(priv, cmdptr, pdata_buf);
1227 1228
		break;

1229
	case CMD_802_11_DEAUTHENTICATE:
1230
		ret = lbs_cmd_80211_deauthenticate(priv, cmdptr);
1231 1232
		break;

1233
	case CMD_802_11_SET_WEP:
1234
		ret = lbs_cmd_802_11_set_wep(priv, cmdptr, cmd_action, pdata_buf);
1235 1236
		break;

1237
	case CMD_802_11_AD_HOC_START:
1238
		ret = lbs_cmd_80211_ad_hoc_start(priv, cmdptr, pdata_buf);
1239
		break;
1240
	case CMD_CODE_DNLD:
1241 1242
		break;

1243
	case CMD_802_11_RESET:
1244
		ret = lbs_cmd_802_11_reset(priv, cmdptr, cmd_action);
1245 1246
		break;

1247
	case CMD_802_11_GET_LOG:
1248
		ret = lbs_cmd_802_11_get_log(priv, cmdptr);
1249 1250
		break;

1251
	case CMD_802_11_AUTHENTICATE:
1252
		ret = lbs_cmd_80211_authenticate(priv, cmdptr, pdata_buf);
1253 1254
		break;

1255
	case CMD_802_11_GET_STAT:
1256
		ret = lbs_cmd_802_11_get_stat(priv, cmdptr);
1257 1258
		break;

1259
	case CMD_802_11_SNMP_MIB:
1260
		ret = lbs_cmd_802_11_snmp_mib(priv, cmdptr,
1261 1262 1263
					       cmd_action, cmd_oid, pdata_buf);
		break;

1264 1265 1266
	case CMD_MAC_REG_ACCESS:
	case CMD_BBP_REG_ACCESS:
	case CMD_RF_REG_ACCESS:
1267
		ret = lbs_cmd_reg_access(priv, cmdptr, cmd_action, pdata_buf);
1268 1269
		break;

1270
	case CMD_802_11_RF_CHANNEL:
1271
		ret = lbs_cmd_802_11_rf_channel(priv, cmdptr,
1272 1273 1274
						 cmd_action, pdata_buf);
		break;

1275
	case CMD_802_11_RF_TX_POWER:
1276
		ret = lbs_cmd_802_11_rf_tx_power(priv, cmdptr,
1277 1278 1279
						  cmd_action, pdata_buf);
		break;

1280
	case CMD_802_11_RADIO_CONTROL:
1281
		ret = lbs_cmd_802_11_radio_control(priv, cmdptr, cmd_action);
1282 1283
		break;

1284
	case CMD_802_11_DATA_RATE:
1285
		ret = lbs_cmd_802_11_data_rate(priv, cmdptr, cmd_action);
1286
		break;
1287
	case CMD_802_11_RATE_ADAPT_RATESET:
1288
		ret = lbs_cmd_802_11_rate_adapt_rateset(priv,
1289 1290 1291
							 cmdptr, cmd_action);
		break;

1292
	case CMD_MAC_MULTICAST_ADR:
1293
		ret = lbs_cmd_mac_multicast_adr(priv, cmdptr, cmd_action);
1294 1295
		break;

1296
	case CMD_802_11_MONITOR_MODE:
1297
		ret = lbs_cmd_802_11_monitor_mode(priv, cmdptr,
1298 1299 1300
				          cmd_action, pdata_buf);
		break;

1301
	case CMD_802_11_AD_HOC_JOIN:
1302
		ret = lbs_cmd_80211_ad_hoc_join(priv, cmdptr, pdata_buf);
1303 1304
		break;

1305
	case CMD_802_11_RSSI:
1306
		ret = lbs_cmd_802_11_rssi(priv, cmdptr);
1307 1308
		break;

1309
	case CMD_802_11_AD_HOC_STOP:
1310
		ret = lbs_cmd_80211_ad_hoc_stop(priv, cmdptr);
1311 1312
		break;

1313
	case CMD_802_11_ENABLE_RSN:
1314
		ret = lbs_cmd_802_11_enable_rsn(priv, cmdptr, cmd_action,
1315
				pdata_buf);
1316 1317
		break;

1318
	case CMD_802_11_KEY_MATERIAL:
1319
		ret = lbs_cmd_802_11_key_material(priv, cmdptr, cmd_action,
1320
				cmd_oid, pdata_buf);
1321 1322
		break;

1323
	case CMD_802_11_PAIRWISE_TSC:
1324
		break;
1325
	case CMD_802_11_GROUP_TSC:
1326 1327
		break;

1328
	case CMD_802_11_MAC_ADDRESS:
1329
		ret = lbs_cmd_802_11_mac_address(priv, cmdptr, cmd_action);
1330 1331
		break;

1332
	case CMD_802_11_EEPROM_ACCESS:
1333
		ret = lbs_cmd_802_11_eeprom_access(priv, cmdptr,
1334 1335 1336
						    cmd_action, pdata_buf);
		break;

1337 1338
	case CMD_802_11_SET_AFC:
	case CMD_802_11_GET_AFC:
1339 1340

		cmdptr->command = cpu_to_le16(cmd_no);
1341 1342
		cmdptr->size = cpu_to_le16(sizeof(struct cmd_ds_802_11_afc) +
					   S_DS_GEN);
1343 1344 1345 1346 1347 1348 1349

		memmove(&cmdptr->params.afc,
			pdata_buf, sizeof(struct cmd_ds_802_11_afc));

		ret = 0;
		goto done;

1350
	case CMD_802_11D_DOMAIN_INFO:
1351
		ret = lbs_cmd_802_11d_domain_info(priv, cmdptr,
1352 1353 1354
						   cmd_no, cmd_action);
		break;

1355
	case CMD_802_11_SLEEP_PARAMS:
1356
		ret = lbs_cmd_802_11_sleep_params(priv, cmdptr, cmd_action);
1357
		break;
1358
	case CMD_802_11_INACTIVITY_TIMEOUT:
1359
		ret = lbs_cmd_802_11_inactivity_timeout(priv, cmdptr,
1360
							 cmd_action, pdata_buf);
1361
		lbs_set_cmd_ctrl_node(priv, cmdnode, 0, 0, pdata_buf);
1362 1363
		break;

1364 1365
	case CMD_802_11_TPC_CFG:
		cmdptr->command = cpu_to_le16(CMD_802_11_TPC_CFG);
1366 1367 1368 1369 1370 1371 1372 1373 1374
		cmdptr->size =
		    cpu_to_le16(sizeof(struct cmd_ds_802_11_tpc_cfg) +
				     S_DS_GEN);

		memmove(&cmdptr->params.tpccfg,
			pdata_buf, sizeof(struct cmd_ds_802_11_tpc_cfg));

		ret = 0;
		break;
1375
	case CMD_802_11_LED_GPIO_CTRL:
1376 1377 1378 1379 1380 1381 1382 1383 1384 1385
		{
			struct mrvlietypes_ledgpio *gpio =
			    (struct mrvlietypes_ledgpio*)
			    cmdptr->params.ledgpio.data;

			memmove(&cmdptr->params.ledgpio,
				pdata_buf,
				sizeof(struct cmd_ds_802_11_led_ctrl));

			cmdptr->command =
1386
			    cpu_to_le16(CMD_802_11_LED_GPIO_CTRL);
1387 1388 1389 1390 1391 1392 1393 1394 1395 1396

#define ACTION_NUMLED_TLVTYPE_LEN_FIELDS_LEN 8
			cmdptr->size =
			    cpu_to_le16(gpio->header.len + S_DS_GEN +
					     ACTION_NUMLED_TLVTYPE_LEN_FIELDS_LEN);
			gpio->header.len = cpu_to_le16(gpio->header.len);

			ret = 0;
			break;
		}
1397 1398
	case CMD_802_11_PWR_CFG:
		cmdptr->command = cpu_to_le16(CMD_802_11_PWR_CFG);
1399 1400 1401 1402 1403 1404 1405 1406
		cmdptr->size =
		    cpu_to_le16(sizeof(struct cmd_ds_802_11_pwr_cfg) +
				     S_DS_GEN);
		memmove(&cmdptr->params.pwrcfg, pdata_buf,
			sizeof(struct cmd_ds_802_11_pwr_cfg));

		ret = 0;
		break;
1407
	case CMD_BT_ACCESS:
1408
		ret = lbs_cmd_bt_access(priv, cmdptr, cmd_action, pdata_buf);
1409 1410
		break;

1411
	case CMD_FWT_ACCESS:
1412
		ret = lbs_cmd_fwt_access(priv, cmdptr, cmd_action, pdata_buf);
1413 1414
		break;

1415
	case CMD_MESH_ACCESS:
1416
		ret = lbs_cmd_mesh_access(priv, cmdptr, cmd_action, pdata_buf);
1417 1418
		break;

1419
	case CMD_SET_BOOT2_VER:
1420
		ret = lbs_cmd_set_boot2_ver(priv, cmdptr, cmd_action, pdata_buf);
1421 1422
		break;

1423 1424
	case CMD_GET_TSF:
		cmdptr->command = cpu_to_le16(CMD_GET_TSF);
1425 1426
		cmdptr->size = cpu_to_le16(sizeof(struct cmd_ds_get_tsf) +
					   S_DS_GEN);
1427 1428
		ret = 0;
		break;
1429 1430 1431
	case CMD_802_11_BEACON_CTRL:
		ret = lbs_cmd_bcn_ctrl(priv, cmdptr, cmd_action);
		break;
1432
	default:
1433
		lbs_deb_host("PREP_CMD: unknown command 0x%04x\n", cmd_no);
1434 1435 1436 1437 1438 1439
		ret = -1;
		break;
	}

	/* return error, since the command preparation failed */
	if (ret != 0) {
1440
		lbs_deb_host("PREP_CMD: command preparation failed\n");
1441
		lbs_cleanup_and_insert_cmd(priv, cmdnode);
1442 1443 1444 1445 1446 1447
		ret = -1;
		goto done;
	}

	cmdnode->cmdwaitqwoken = 0;

1448
	lbs_queue_cmd(adapter, cmdnode, 1);
1449
	wake_up_interruptible(&priv->waitq);
1450

1451
	if (wait_option & CMD_OPTION_WAITFORRSP) {
1452
		lbs_deb_host("PREP_CMD: wait for response\n");
1453 1454 1455 1456 1457 1458 1459
		might_sleep();
		wait_event_interruptible(cmdnode->cmdwait_q,
					 cmdnode->cmdwaitqwoken);
	}

	spin_lock_irqsave(&adapter->driver_lock, flags);
	if (adapter->cur_cmd_retcode) {
1460
		lbs_deb_host("PREP_CMD: command failed with return code %d\n",
1461 1462 1463 1464 1465 1466 1467
		       adapter->cur_cmd_retcode);
		adapter->cur_cmd_retcode = 0;
		ret = -1;
	}
	spin_unlock_irqrestore(&adapter->driver_lock, flags);

done:
1468
	lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1469 1470
	return ret;
}
1471
EXPORT_SYMBOL_GPL(lbs_prepare_and_send_command);
1472 1473 1474 1475 1476

/**
 *  @brief This function allocates the command buffer and link
 *  it to command free queue.
 *
1477
 *  @param priv		A pointer to struct lbs_private structure
1478 1479
 *  @return 		0 or -1
 */
1480
int lbs_allocate_cmd_buffer(struct lbs_private *priv)
1481 1482 1483 1484 1485 1486
{
	int ret = 0;
	u32 ulbufsize;
	u32 i;
	struct cmd_ctrl_node *tempcmd_array;
	u8 *ptempvirtualaddr;
1487
	struct lbs_adapter *adapter = priv->adapter;
1488

1489
	lbs_deb_enter(LBS_DEB_HOST);
1490 1491 1492 1493

	/* Allocate and initialize cmdCtrlNode */
	ulbufsize = sizeof(struct cmd_ctrl_node) * MRVDRV_NUM_OF_CMD_BUFFER;

1494
	if (!(tempcmd_array = kzalloc(ulbufsize, GFP_KERNEL))) {
1495
		lbs_deb_host("ALLOC_CMD_BUF: tempcmd_array is NULL\n");
1496 1497 1498 1499 1500 1501 1502 1503
		ret = -1;
		goto done;
	}
	adapter->cmd_array = tempcmd_array;

	/* Allocate and initialize command buffers */
	ulbufsize = MRVDRV_SIZE_OF_CMD_BUFFER;
	for (i = 0; i < MRVDRV_NUM_OF_CMD_BUFFER; i++) {
1504
		if (!(ptempvirtualaddr = kzalloc(ulbufsize, GFP_KERNEL))) {
1505
			lbs_deb_host("ALLOC_CMD_BUF: ptempvirtualaddr is NULL\n");
1506 1507 1508 1509 1510 1511 1512 1513 1514 1515
			ret = -1;
			goto done;
		}

		/* Update command buffer virtual */
		tempcmd_array[i].bufvirtualaddr = ptempvirtualaddr;
	}

	for (i = 0; i < MRVDRV_NUM_OF_CMD_BUFFER; i++) {
		init_waitqueue_head(&tempcmd_array[i].cmdwait_q);
1516
		lbs_cleanup_and_insert_cmd(priv, &tempcmd_array[i]);
1517 1518 1519
	}

	ret = 0;
1520 1521

done:
1522
	lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1523 1524 1525 1526 1527 1528
	return ret;
}

/**
 *  @brief This function frees the command buffer.
 *
1529
 *  @param priv		A pointer to struct lbs_private structure
1530 1531
 *  @return 		0 or -1
 */
1532
int lbs_free_cmd_buffer(struct lbs_private *priv)
1533
{
1534
	u32 ulbufsize; /* Someone needs to die for this. Slowly and painfully */
1535 1536
	unsigned int i;
	struct cmd_ctrl_node *tempcmd_array;
1537
	struct lbs_adapter *adapter = priv->adapter;
1538

1539
	lbs_deb_enter(LBS_DEB_HOST);
1540 1541 1542

	/* need to check if cmd array is allocated or not */
	if (adapter->cmd_array == NULL) {
1543
		lbs_deb_host("FREE_CMD_BUF: cmd_array is NULL\n");
1544 1545 1546 1547 1548 1549 1550 1551 1552 1553 1554 1555 1556 1557 1558 1559 1560 1561 1562 1563 1564
		goto done;
	}

	tempcmd_array = adapter->cmd_array;

	/* Release shared memory buffers */
	ulbufsize = MRVDRV_SIZE_OF_CMD_BUFFER;
	for (i = 0; i < MRVDRV_NUM_OF_CMD_BUFFER; i++) {
		if (tempcmd_array[i].bufvirtualaddr) {
			kfree(tempcmd_array[i].bufvirtualaddr);
			tempcmd_array[i].bufvirtualaddr = NULL;
		}
	}

	/* Release cmd_ctrl_node */
	if (adapter->cmd_array) {
		kfree(adapter->cmd_array);
		adapter->cmd_array = NULL;
	}

done:
1565
	lbs_deb_leave(LBS_DEB_HOST);
1566 1567 1568 1569 1570 1571 1572
	return 0;
}

/**
 *  @brief This function gets a free command node if available in
 *  command free queue.
 *
1573
 *  @param priv		A pointer to struct lbs_private structure
1574 1575
 *  @return cmd_ctrl_node A pointer to cmd_ctrl_node structure or NULL
 */
1576
struct cmd_ctrl_node *lbs_get_free_cmd_ctrl_node(struct lbs_private *priv)
1577 1578
{
	struct cmd_ctrl_node *tempnode;
1579
	struct lbs_adapter *adapter = priv->adapter;
1580 1581
	unsigned long flags;

1582 1583
	lbs_deb_enter(LBS_DEB_HOST);

1584 1585 1586 1587 1588 1589 1590 1591 1592
	if (!adapter)
		return NULL;

	spin_lock_irqsave(&adapter->driver_lock, flags);

	if (!list_empty(&adapter->cmdfreeq)) {
		tempnode = (struct cmd_ctrl_node *)adapter->cmdfreeq.next;
		list_del((struct list_head *)tempnode);
	} else {
1593
		lbs_deb_host("GET_CMD_NODE: cmd_ctrl_node is not available\n");
1594 1595 1596 1597 1598
		tempnode = NULL;
	}

	spin_unlock_irqrestore(&adapter->driver_lock, flags);

1599
	if (tempnode)
1600 1601
		cleanup_cmdnode(tempnode);

1602
	lbs_deb_leave(LBS_DEB_HOST);
1603 1604 1605 1606 1607 1608 1609 1610 1611 1612 1613
	return tempnode;
}

/**
 *  @brief This function cleans command node.
 *
 *  @param ptempnode	A pointer to cmdCtrlNode structure
 *  @return 		n/a
 */
static void cleanup_cmdnode(struct cmd_ctrl_node *ptempnode)
{
1614 1615
	lbs_deb_enter(LBS_DEB_HOST);

1616 1617 1618 1619 1620 1621 1622 1623 1624 1625 1626
	if (!ptempnode)
		return;
	ptempnode->cmdwaitqwoken = 1;
	wake_up_interruptible(&ptempnode->cmdwait_q);
	ptempnode->status = 0;
	ptempnode->cmd_oid = (u32) 0;
	ptempnode->wait_option = 0;
	ptempnode->pdata_buf = NULL;

	if (ptempnode->bufvirtualaddr != NULL)
		memset(ptempnode->bufvirtualaddr, 0, MRVDRV_SIZE_OF_CMD_BUFFER);
1627 1628

	lbs_deb_leave(LBS_DEB_HOST);
1629 1630 1631 1632 1633
}

/**
 *  @brief This function initializes the command node.
 *
1634
 *  @param priv		A pointer to struct lbs_private structure
1635 1636 1637 1638 1639 1640
 *  @param ptempnode	A pointer to cmd_ctrl_node structure
 *  @param cmd_oid	cmd oid: treated as sub command
 *  @param wait_option	wait option: wait response or not
 *  @param pdata_buf	A pointer to informaion buffer
 *  @return 		0 or -1
 */
1641
void lbs_set_cmd_ctrl_node(struct lbs_private *priv,
1642 1643 1644
		    struct cmd_ctrl_node *ptempnode,
		    u32 cmd_oid, u16 wait_option, void *pdata_buf)
{
1645
	lbs_deb_enter(LBS_DEB_HOST);
1646 1647 1648 1649 1650 1651 1652 1653

	if (!ptempnode)
		return;

	ptempnode->cmd_oid = cmd_oid;
	ptempnode->wait_option = wait_option;
	ptempnode->pdata_buf = pdata_buf;

1654
	lbs_deb_leave(LBS_DEB_HOST);
1655 1656 1657 1658 1659 1660 1661
}

/**
 *  @brief This function executes next command in command
 *  pending queue. It will put fimware back to PS mode
 *  if applicable.
 *
1662
 *  @param priv     A pointer to struct lbs_private structure
1663 1664
 *  @return 	   0 or -1
 */
1665
int lbs_execute_next_command(struct lbs_private *priv)
1666
{
1667
	struct lbs_adapter *adapter = priv->adapter;
1668 1669 1670 1671 1672
	struct cmd_ctrl_node *cmdnode = NULL;
	struct cmd_ds_command *cmdptr;
	unsigned long flags;
	int ret = 0;

1673
	// Debug group is LBS_DEB_THREAD and not LBS_DEB_HOST, because the
1674
	// only caller to us is lbs_thread() and we get even when a
1675 1676
	// data packet is received
	lbs_deb_enter(LBS_DEB_THREAD);
1677 1678 1679 1680

	spin_lock_irqsave(&adapter->driver_lock, flags);

	if (adapter->cur_cmd) {
1681
		lbs_pr_alert( "EXEC_NEXT_CMD: already processing command!\n");
1682 1683 1684 1685 1686 1687 1688 1689 1690 1691 1692 1693 1694 1695 1696 1697
		spin_unlock_irqrestore(&adapter->driver_lock, flags);
		ret = -1;
		goto done;
	}

	if (!list_empty(&adapter->cmdpendingq)) {
		cmdnode = (struct cmd_ctrl_node *)
		    adapter->cmdpendingq.next;
	}

	spin_unlock_irqrestore(&adapter->driver_lock, flags);

	if (cmdnode) {
		cmdptr = (struct cmd_ds_command *)cmdnode->bufvirtualaddr;

		if (is_command_allowed_in_ps(cmdptr->command)) {
1698 1699
			if ((adapter->psstate == PS_STATE_SLEEP) ||
			    (adapter->psstate == PS_STATE_PRE_SLEEP)) {
1700 1701
				lbs_deb_host(
				       "EXEC_NEXT_CMD: cannot send cmd 0x%04x in psstate %d\n",
1702 1703
				       le16_to_cpu(cmdptr->command),
				       adapter->psstate);
1704 1705 1706
				ret = -1;
				goto done;
			}
1707 1708
			lbs_deb_host("EXEC_NEXT_CMD: OK to send command "
			       "0x%04x in psstate %d\n",
1709 1710
				    le16_to_cpu(cmdptr->command),
				    adapter->psstate);
1711 1712 1713 1714
		} else if (adapter->psstate != PS_STATE_FULL_POWER) {
			/*
			 * 1. Non-PS command:
			 * Queue it. set needtowakeup to TRUE if current state
1715
			 * is SLEEP, otherwise call lbs_ps_wakeup to send Exit_PS.
1716 1717 1718 1719 1720 1721 1722 1723
			 * 2. PS command but not Exit_PS:
			 * Ignore it.
			 * 3. PS command Exit_PS:
			 * Set needtowakeup to TRUE if current state is SLEEP,
			 * otherwise send this command down to firmware
			 * immediately.
			 */
			if (cmdptr->command !=
1724
			    cpu_to_le16(CMD_802_11_PS_MODE)) {
1725 1726 1727 1728 1729 1730 1731 1732 1733
				/*  Prepare to send Exit PS,
				 *  this non PS command will be sent later */
				if ((adapter->psstate == PS_STATE_SLEEP)
				    || (adapter->psstate == PS_STATE_PRE_SLEEP)
				    ) {
					/* w/ new scheme, it will not reach here.
					   since it is blocked in main_thread. */
					adapter->needtowakeup = 1;
				} else
1734
					lbs_ps_wakeup(priv, 0);
1735 1736 1737 1738 1739 1740 1741 1742 1743 1744 1745

				ret = 0;
				goto done;
			} else {
				/*
				 * PS command. Ignore it if it is not Exit_PS.
				 * otherwise send it down immediately.
				 */
				struct cmd_ds_802_11_ps_mode *psm =
				    &cmdptr->params.psmode;

1746 1747
				lbs_deb_host(
				       "EXEC_NEXT_CMD: PS cmd, action 0x%02x\n",
1748 1749
				       psm->action);
				if (psm->action !=
1750
				    cpu_to_le16(CMD_SUBCMD_EXIT_PS)) {
1751 1752
					lbs_deb_host(
					       "EXEC_NEXT_CMD: ignore ENTER_PS cmd\n");
1753
					list_del((struct list_head *)cmdnode);
1754
					lbs_cleanup_and_insert_cmd(priv, cmdnode);
1755 1756 1757 1758 1759

					ret = 0;
					goto done;
				}

1760 1761
				if ((adapter->psstate == PS_STATE_SLEEP) ||
				    (adapter->psstate == PS_STATE_PRE_SLEEP)) {
1762 1763
					lbs_deb_host(
					       "EXEC_NEXT_CMD: ignore EXIT_PS cmd in sleep\n");
1764
					list_del((struct list_head *)cmdnode);
1765
					lbs_cleanup_and_insert_cmd(priv, cmdnode);
1766 1767 1768 1769 1770 1771
					adapter->needtowakeup = 1;

					ret = 0;
					goto done;
				}

1772 1773
				lbs_deb_host(
				       "EXEC_NEXT_CMD: sending EXIT_PS\n");
1774 1775 1776
			}
		}
		list_del((struct list_head *)cmdnode);
1777
		lbs_deb_host("EXEC_NEXT_CMD: sending command 0x%04x\n",
1778
			    le16_to_cpu(cmdptr->command));
1779 1780 1781 1782 1783 1784
		DownloadcommandToStation(priv, cmdnode);
	} else {
		/*
		 * check if in power save mode, if yes, put the device back
		 * to PS mode
		 */
1785
		if ((adapter->psmode != LBS802_11POWERMODECAM) &&
1786
		    (adapter->psstate == PS_STATE_FULL_POWER) &&
1787 1788
		    ((adapter->connect_status == LBS_CONNECTED) ||
		    (adapter->mesh_connect_status == LBS_CONNECTED))) {
1789 1790
			if (adapter->secinfo.WPAenabled ||
			    adapter->secinfo.WPA2enabled) {
1791
				/* check for valid WPA group keys */
1792 1793
				if (adapter->wpa_mcast_key.len ||
				    adapter->wpa_unicast_key.len) {
1794
					lbs_deb_host(
1795 1796
					       "EXEC_NEXT_CMD: WPA enabled and GTK_SET"
					       " go back to PS_SLEEP");
1797
					lbs_ps_sleep(priv, 0);
1798 1799
				}
			} else {
1800 1801 1802
				lbs_deb_host(
				       "EXEC_NEXT_CMD: cmdpendingq empty, "
				       "go back to PS_SLEEP");
1803
				lbs_ps_sleep(priv, 0);
1804 1805 1806 1807 1808 1809
			}
		}
	}

	ret = 0;
done:
1810
	lbs_deb_leave(LBS_DEB_THREAD);
1811 1812 1813
	return ret;
}

1814
void lbs_send_iwevcustom_event(struct lbs_private *priv, s8 *str)
1815 1816 1817 1818
{
	union iwreq_data iwrq;
	u8 buf[50];

1819
	lbs_deb_enter(LBS_DEB_WEXT);
1820 1821 1822 1823 1824 1825 1826 1827 1828

	memset(&iwrq, 0, sizeof(union iwreq_data));
	memset(buf, 0, sizeof(buf));

	snprintf(buf, sizeof(buf) - 1, "%s", str);

	iwrq.data.length = strlen(buf) + 1 + IW_EV_LCP_LEN;

	/* Send Event to upper layer */
1829 1830 1831
	lbs_deb_wext("event indication string %s\n", (char *)buf);
	lbs_deb_wext("event indication length %d\n", iwrq.data.length);
	lbs_deb_wext("sending wireless event IWEVCUSTOM for %s\n", str);
1832

1833
	wireless_send_event(priv->dev, IWEVCUSTOM, &iwrq, buf);
1834

1835
	lbs_deb_leave(LBS_DEB_WEXT);
1836 1837
}

1838
static int sendconfirmsleep(struct lbs_private *priv, u8 *cmdptr, u16 size)
1839 1840
{
	unsigned long flags;
1841
	struct lbs_adapter *adapter = priv->adapter;
1842 1843
	int ret = 0;

1844
	lbs_deb_enter(LBS_DEB_HOST);
1845

1846
	lbs_deb_host("SEND_SLEEPC_CMD: before download, cmd size %d\n",
1847 1848
	       size);

1849
	lbs_deb_hex(LBS_DEB_HOST, "sleep confirm command", cmdptr, size);
1850

1851
	ret = priv->hw_host_to_card(priv, MVMS_CMD, cmdptr, size);
1852
	priv->dnld_sent = DNLD_RES_RECEIVED;
1853 1854 1855

	spin_lock_irqsave(&adapter->driver_lock, flags);
	if (adapter->intcounter || adapter->currenttxskb)
1856
		lbs_deb_host("SEND_SLEEPC_CMD: intcounter %d, currenttxskb %p\n",
1857 1858 1859 1860 1861 1862 1863 1864 1865 1866 1867
		       adapter->intcounter, adapter->currenttxskb);
	spin_unlock_irqrestore(&adapter->driver_lock, flags);

	if (ret) {
		lbs_pr_alert(
		       "SEND_SLEEPC_CMD: Host to Card failed for Confirm Sleep\n");
	} else {
		spin_lock_irqsave(&adapter->driver_lock, flags);
		if (!adapter->intcounter) {
			adapter->psstate = PS_STATE_SLEEP;
		} else {
1868
			lbs_deb_host("SEND_SLEEPC_CMD: after sent, intcounter %d\n",
1869 1870 1871 1872
			       adapter->intcounter);
		}
		spin_unlock_irqrestore(&adapter->driver_lock, flags);

1873
		lbs_deb_host("SEND_SLEEPC_CMD: sent confirm sleep\n");
1874 1875
	}

1876
	lbs_deb_leave_args(LBS_DEB_HOST, "ret %d", ret);
1877 1878 1879
	return ret;
}

1880
void lbs_ps_sleep(struct lbs_private *priv, int wait_option)
1881
{
1882
	lbs_deb_enter(LBS_DEB_HOST);
1883 1884 1885 1886 1887 1888

	/*
	 * PS is currently supported only in Infrastructure mode
	 * Remove this check if it is to be supported in IBSS mode also
	 */

1889
	lbs_prepare_and_send_command(priv, CMD_802_11_PS_MODE,
1890
			      CMD_SUBCMD_ENTER_PS, wait_option, 0, NULL);
1891

1892
	lbs_deb_leave(LBS_DEB_HOST);
1893 1894 1895
}

/**
1896
 *  @brief This function sends Exit_PS command to firmware.
1897
 *
1898
 *  @param priv    	A pointer to struct lbs_private structure
1899 1900 1901
 *  @param wait_option	wait response or not
 *  @return 	   	n/a
 */
1902
void lbs_ps_wakeup(struct lbs_private *priv, int wait_option)
1903
{
1904
	__le32 Localpsmode;
1905

1906
	lbs_deb_enter(LBS_DEB_HOST);
1907

1908
	Localpsmode = cpu_to_le32(LBS802_11POWERMODECAM);
1909

1910
	lbs_prepare_and_send_command(priv, CMD_802_11_PS_MODE,
1911
			      CMD_SUBCMD_EXIT_PS,
1912 1913
			      wait_option, 0, &Localpsmode);

1914
	lbs_deb_leave(LBS_DEB_HOST);
1915 1916 1917 1918 1919 1920
}

/**
 *  @brief This function checks condition and prepares to
 *  send sleep confirm command to firmware if ok.
 *
1921
 *  @param priv    	A pointer to struct lbs_private structure
1922 1923 1924
 *  @param psmode  	Power Saving mode
 *  @return 	   	n/a
 */
1925
void lbs_ps_confirm_sleep(struct lbs_private *priv, u16 psmode)
1926 1927
{
	unsigned long flags =0;
1928
	struct lbs_adapter *adapter = priv->adapter;
1929 1930
	u8 allowed = 1;

1931
	lbs_deb_enter(LBS_DEB_HOST);
1932

1933
	if (priv->dnld_sent) {
1934
		allowed = 0;
1935
		lbs_deb_host("dnld_sent was set");
1936 1937 1938 1939 1940
	}

	spin_lock_irqsave(&adapter->driver_lock, flags);
	if (adapter->cur_cmd) {
		allowed = 0;
1941
		lbs_deb_host("cur_cmd was set");
1942 1943 1944
	}
	if (adapter->intcounter > 0) {
		allowed = 0;
1945
		lbs_deb_host("intcounter %d", adapter->intcounter);
1946 1947 1948 1949
	}
	spin_unlock_irqrestore(&adapter->driver_lock, flags);

	if (allowed) {
1950 1951
		lbs_deb_host("sending lbs_ps_confirm_sleep\n");
		sendconfirmsleep(priv, (u8 *) & adapter->lbs_ps_confirm_sleep,
1952 1953
				 sizeof(struct PS_CMD_ConfirmSleep));
	} else {
1954
		lbs_deb_host("sleep confirm has been delayed\n");
1955 1956
	}

1957
	lbs_deb_leave(LBS_DEB_HOST);
1958
}