]> git.karo-electronics.de Git - karo-tx-linux.git/blob - drivers/infiniband/hw/nes/nes_cm.c
dfa9df484505e6ecdc5362f758ade1627b98d0c7
[karo-tx-linux.git] / drivers / infiniband / hw / nes / nes_cm.c
1 /*
2  * Copyright (c) 2006 - 2011 Intel Corporation.  All rights reserved.
3  *
4  * This software is available to you under a choice of one of two
5  * licenses.  You may choose to be licensed under the terms of the GNU
6  * General Public License (GPL) Version 2, available from the file
7  * COPYING in the main directory of this source tree, or the
8  * OpenIB.org BSD license below:
9  *
10  *     Redistribution and use in source and binary forms, with or
11  *     without modification, are permitted provided that the following
12  *     conditions are met:
13  *
14  *      - Redistributions of source code must retain the above
15  *        copyright notice, this list of conditions and the following
16  *        disclaimer.
17  *
18  *      - Redistributions in binary form must reproduce the above
19  *        copyright notice, this list of conditions and the following
20  *        disclaimer in the documentation and/or other materials
21  *        provided with the distribution.
22  *
23  * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
24  * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
25  * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
26  * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS
27  * BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN
28  * ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN
29  * CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
30  * SOFTWARE.
31  *
32  */
33
34
35 #define TCPOPT_TIMESTAMP 8
36
37 #include <linux/atomic.h>
38 #include <linux/skbuff.h>
39 #include <linux/ip.h>
40 #include <linux/tcp.h>
41 #include <linux/init.h>
42 #include <linux/if_arp.h>
43 #include <linux/if_vlan.h>
44 #include <linux/notifier.h>
45 #include <linux/net.h>
46 #include <linux/types.h>
47 #include <linux/timer.h>
48 #include <linux/time.h>
49 #include <linux/delay.h>
50 #include <linux/etherdevice.h>
51 #include <linux/netdevice.h>
52 #include <linux/random.h>
53 #include <linux/list.h>
54 #include <linux/threads.h>
55 #include <linux/highmem.h>
56 #include <linux/slab.h>
57 #include <net/arp.h>
58 #include <net/neighbour.h>
59 #include <net/route.h>
60 #include <net/ip_fib.h>
61 #include <net/tcp.h>
62
63 #include "nes.h"
64
65 u32 cm_packets_sent;
66 u32 cm_packets_bounced;
67 u32 cm_packets_dropped;
68 u32 cm_packets_retrans;
69 u32 cm_packets_created;
70 u32 cm_packets_received;
71 atomic_t cm_listens_created;
72 atomic_t cm_listens_destroyed;
73 u32 cm_backlog_drops;
74 atomic_t cm_loopbacks;
75 atomic_t cm_nodes_created;
76 atomic_t cm_nodes_destroyed;
77 atomic_t cm_accel_dropped_pkts;
78 atomic_t cm_resets_recvd;
79
80 static inline int mini_cm_accelerated(struct nes_cm_core *, struct nes_cm_node *);
81 static struct nes_cm_listener *mini_cm_listen(struct nes_cm_core *, struct nes_vnic *, struct nes_cm_info *);
82 static int mini_cm_del_listen(struct nes_cm_core *, struct nes_cm_listener *);
83 static struct nes_cm_node *mini_cm_connect(struct nes_cm_core *, struct nes_vnic *, u16, void *, struct nes_cm_info *);
84 static int mini_cm_close(struct nes_cm_core *, struct nes_cm_node *);
85 static int mini_cm_accept(struct nes_cm_core *, struct nes_cm_node *);
86 static int mini_cm_reject(struct nes_cm_core *, struct nes_cm_node *);
87 static int mini_cm_recv_pkt(struct nes_cm_core *, struct nes_vnic *, struct sk_buff *);
88 static int mini_cm_dealloc_core(struct nes_cm_core *);
89 static int mini_cm_get(struct nes_cm_core *);
90 static int mini_cm_set(struct nes_cm_core *, u32, u32);
91
92 static void form_cm_frame(struct sk_buff *, struct nes_cm_node *, void *, u32, void *, u32, u8);
93 static int add_ref_cm_node(struct nes_cm_node *);
94 static int rem_ref_cm_node(struct nes_cm_core *, struct nes_cm_node *);
95
96 static int nes_cm_disconn_true(struct nes_qp *);
97 static int nes_cm_post_event(struct nes_cm_event *event);
98 static int nes_disconnect(struct nes_qp *nesqp, int abrupt);
99 static void nes_disconnect_worker(struct work_struct *work);
100
101 static int send_mpa_request(struct nes_cm_node *, struct sk_buff *);
102 static int send_mpa_reject(struct nes_cm_node *);
103 static int send_syn(struct nes_cm_node *, u32, struct sk_buff *);
104 static int send_reset(struct nes_cm_node *, struct sk_buff *);
105 static int send_ack(struct nes_cm_node *cm_node, struct sk_buff *skb);
106 static int send_fin(struct nes_cm_node *cm_node, struct sk_buff *skb);
107 static void process_packet(struct nes_cm_node *, struct sk_buff *, struct nes_cm_core *);
108
109 static void active_open_err(struct nes_cm_node *, struct sk_buff *, int);
110 static void passive_open_err(struct nes_cm_node *, struct sk_buff *, int);
111 static void cleanup_retrans_entry(struct nes_cm_node *);
112 static void handle_rcv_mpa(struct nes_cm_node *, struct sk_buff *);
113 static void free_retrans_entry(struct nes_cm_node *cm_node);
114 static int handle_tcp_options(struct nes_cm_node *cm_node, struct tcphdr *tcph, struct sk_buff *skb, int optionsize, int passive);
115
116 /* CM event handler functions */
117 static void cm_event_connected(struct nes_cm_event *);
118 static void cm_event_connect_error(struct nes_cm_event *);
119 static void cm_event_reset(struct nes_cm_event *);
120 static void cm_event_mpa_req(struct nes_cm_event *);
121 static void cm_event_mpa_reject(struct nes_cm_event *);
122 static void handle_recv_entry(struct nes_cm_node *cm_node, u32 rem_node);
123
124 /* MPA build functions */
125 static int cm_build_mpa_frame(struct nes_cm_node *, u8 **, u16 *, u8 *, u8);
126 static void build_mpa_v2(struct nes_cm_node *, void *, u8);
127 static void build_mpa_v1(struct nes_cm_node *, void *, u8);
128 static void build_rdma0_msg(struct nes_cm_node *, struct nes_qp **);
129
130 static void print_core(struct nes_cm_core *core);
131 static void record_ird_ord(struct nes_cm_node *, u16, u16);
132
133 /* External CM API Interface */
134 /* instance of function pointers for client API */
135 /* set address of this instance to cm_core->cm_ops at cm_core alloc */
136 static struct nes_cm_ops nes_cm_api = {
137         mini_cm_accelerated,
138         mini_cm_listen,
139         mini_cm_del_listen,
140         mini_cm_connect,
141         mini_cm_close,
142         mini_cm_accept,
143         mini_cm_reject,
144         mini_cm_recv_pkt,
145         mini_cm_dealloc_core,
146         mini_cm_get,
147         mini_cm_set
148 };
149
150 static struct nes_cm_core *g_cm_core;
151
152 atomic_t cm_connects;
153 atomic_t cm_accepts;
154 atomic_t cm_disconnects;
155 atomic_t cm_closes;
156 atomic_t cm_connecteds;
157 atomic_t cm_connect_reqs;
158 atomic_t cm_rejects;
159
160 int nes_add_ref_cm_node(struct nes_cm_node *cm_node)
161 {
162         return add_ref_cm_node(cm_node);
163 }
164
165 int nes_rem_ref_cm_node(struct nes_cm_node *cm_node)
166 {
167         return rem_ref_cm_node(cm_node->cm_core, cm_node);
168 }
169
170 /**
171  * create_event
172  */
173 static struct nes_cm_event *create_event(struct nes_cm_node *   cm_node,
174                                          enum nes_cm_event_type type)
175 {
176         struct nes_cm_event *event;
177
178         if (!cm_node->cm_id)
179                 return NULL;
180
181         /* allocate an empty event */
182         event = kzalloc(sizeof(*event), GFP_ATOMIC);
183
184         if (!event)
185                 return NULL;
186
187         event->type = type;
188         event->cm_node = cm_node;
189         event->cm_info.rem_addr = cm_node->rem_addr;
190         event->cm_info.loc_addr = cm_node->loc_addr;
191         event->cm_info.rem_port = cm_node->rem_port;
192         event->cm_info.loc_port = cm_node->loc_port;
193         event->cm_info.cm_id = cm_node->cm_id;
194
195         nes_debug(NES_DBG_CM, "cm_node=%p Created event=%p, type=%u, "
196                   "dst_addr=%08x[%x], src_addr=%08x[%x]\n",
197                   cm_node, event, type, event->cm_info.loc_addr,
198                   event->cm_info.loc_port, event->cm_info.rem_addr,
199                   event->cm_info.rem_port);
200
201         nes_cm_post_event(event);
202         return event;
203 }
204
205
206 /**
207  * send_mpa_request
208  */
209 static int send_mpa_request(struct nes_cm_node *cm_node, struct sk_buff *skb)
210 {
211         u8 start_addr = 0;
212         u8 *start_ptr = &start_addr;
213         u8 **start_buff = &start_ptr;
214         u16 buff_len = 0;
215
216         if (!skb) {
217                 nes_debug(NES_DBG_CM, "skb set to NULL\n");
218                 return -1;
219         }
220
221         /* send an MPA Request frame */
222         cm_build_mpa_frame(cm_node, start_buff, &buff_len, NULL, MPA_KEY_REQUEST);
223         form_cm_frame(skb, cm_node, NULL, 0, *start_buff, buff_len, SET_ACK);
224
225         return schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 1, 0);
226 }
227
228
229
230 static int send_mpa_reject(struct nes_cm_node *cm_node)
231 {
232         struct sk_buff *skb = NULL;
233         u8 start_addr = 0;
234         u8 *start_ptr = &start_addr;
235         u8 **start_buff = &start_ptr;
236         u16 buff_len = 0;
237         struct ietf_mpa_v1 *mpa_frame;
238
239         skb = dev_alloc_skb(MAX_CM_BUFFER);
240         if (!skb) {
241                 nes_debug(NES_DBG_CM, "Failed to get a Free pkt\n");
242                 return -ENOMEM;
243         }
244
245         /* send an MPA reject frame */
246         cm_build_mpa_frame(cm_node, start_buff, &buff_len, NULL, MPA_KEY_REPLY);
247         mpa_frame = (struct ietf_mpa_v1 *)*start_buff;
248         mpa_frame->flags |= IETF_MPA_FLAGS_REJECT;
249         form_cm_frame(skb, cm_node, NULL, 0, *start_buff, buff_len, SET_ACK | SET_FIN);
250
251         cm_node->state = NES_CM_STATE_FIN_WAIT1;
252         return schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 1, 0);
253 }
254
255
256 /**
257  * recv_mpa - process a received TCP pkt, we are expecting an
258  * IETF MPA frame
259  */
260 static int parse_mpa(struct nes_cm_node *cm_node, u8 *buffer, u32 *type,
261                      u32 len)
262 {
263         struct ietf_mpa_v1 *mpa_frame;
264         struct ietf_mpa_v2 *mpa_v2_frame;
265         struct ietf_rtr_msg *rtr_msg;
266         int mpa_hdr_len;
267         int priv_data_len;
268
269         *type = NES_MPA_REQUEST_ACCEPT;
270
271         /* assume req frame is in tcp data payload */
272         if (len < sizeof(struct ietf_mpa_v1)) {
273                 nes_debug(NES_DBG_CM, "The received ietf buffer was too small (%x)\n", len);
274                 return -EINVAL;
275         }
276
277         /* points to the beginning of the frame, which could be MPA V1 or V2 */
278         mpa_frame = (struct ietf_mpa_v1 *)buffer;
279         mpa_hdr_len = sizeof(struct ietf_mpa_v1);
280         priv_data_len = ntohs(mpa_frame->priv_data_len);
281
282         /* make sure mpa private data len is less than 512 bytes */
283         if (priv_data_len > IETF_MAX_PRIV_DATA_LEN) {
284                 nes_debug(NES_DBG_CM, "The received Length of Private"
285                           " Data field exceeds 512 octets\n");
286                 return -EINVAL;
287         }
288         /*
289          * make sure MPA receiver interoperate with the
290          * received MPA version and MPA key information
291          *
292          */
293         if (mpa_frame->rev != IETF_MPA_V1 && mpa_frame->rev != IETF_MPA_V2) {
294                 nes_debug(NES_DBG_CM, "The received mpa version"
295                           " is not supported\n");
296                 return -EINVAL;
297         }
298         /*
299         * backwards compatibility only
300         */
301         if (mpa_frame->rev > cm_node->mpa_frame_rev) {
302                 nes_debug(NES_DBG_CM, "The received mpa version"
303                         " can not be interoperated\n");
304                 return -EINVAL;
305         } else {
306                 cm_node->mpa_frame_rev = mpa_frame->rev;
307         }
308
309         if (cm_node->state != NES_CM_STATE_MPAREQ_SENT) {
310                 if (memcmp(mpa_frame->key, IEFT_MPA_KEY_REQ, IETF_MPA_KEY_SIZE)) {
311                         nes_debug(NES_DBG_CM, "Unexpected MPA Key received \n");
312                         return -EINVAL;
313                 }
314         } else {
315                 if (memcmp(mpa_frame->key, IEFT_MPA_KEY_REP, IETF_MPA_KEY_SIZE)) {
316                         nes_debug(NES_DBG_CM, "Unexpected MPA Key received \n");
317                         return -EINVAL;
318                 }
319         }
320
321         if (priv_data_len + mpa_hdr_len != len) {
322                 nes_debug(NES_DBG_CM, "The received ietf buffer was not right"
323                         " complete (%x + %x != %x)\n",
324                         priv_data_len, mpa_hdr_len, len);
325                 return -EINVAL;
326         }
327         /* make sure it does not exceed the max size */
328         if (len > MAX_CM_BUFFER) {
329                 nes_debug(NES_DBG_CM, "The received ietf buffer was too large"
330                         " (%x + %x != %x)\n",
331                         priv_data_len, mpa_hdr_len, len);
332                 return -EINVAL;
333         }
334
335         cm_node->mpa_frame_size = priv_data_len;
336
337         switch (mpa_frame->rev) {
338         case IETF_MPA_V2: {
339                 u16 ird_size;
340                 u16 ord_size;
341                 u16 rtr_ctrl_ird;
342                 u16 rtr_ctrl_ord;
343
344                 mpa_v2_frame = (struct ietf_mpa_v2 *)buffer;
345                 mpa_hdr_len += IETF_RTR_MSG_SIZE;
346                 cm_node->mpa_frame_size -= IETF_RTR_MSG_SIZE;
347                 rtr_msg = &mpa_v2_frame->rtr_msg;
348
349                 /* parse rtr message */
350                 rtr_ctrl_ird = ntohs(rtr_msg->ctrl_ird);
351                 rtr_ctrl_ord = ntohs(rtr_msg->ctrl_ord);
352                 ird_size = rtr_ctrl_ird & IETF_NO_IRD_ORD;
353                 ord_size = rtr_ctrl_ord & IETF_NO_IRD_ORD;
354
355                 if (!(rtr_ctrl_ird & IETF_PEER_TO_PEER)) {
356                         /* send reset */
357                         return -EINVAL;
358                 }
359                 if (ird_size == IETF_NO_IRD_ORD || ord_size == IETF_NO_IRD_ORD)
360                         cm_node->mpav2_ird_ord = IETF_NO_IRD_ORD;
361
362                 if (cm_node->mpav2_ird_ord != IETF_NO_IRD_ORD) {
363                         /* responder */
364                         if (cm_node->state != NES_CM_STATE_MPAREQ_SENT) {
365                                 /* we are still negotiating */
366                                 if (ord_size > NES_MAX_IRD) {
367                                         cm_node->ird_size = NES_MAX_IRD;
368                                 } else {
369                                         cm_node->ird_size = ord_size;
370                                         if (ord_size == 0 &&
371                                         (rtr_ctrl_ord & IETF_RDMA0_READ)) {
372                                                 cm_node->ird_size = 1;
373                                                 nes_debug(NES_DBG_CM,
374                                                 "%s: Remote peer doesn't support RDMA0_READ (ord=%u)\n",
375                                                         __func__, ord_size);
376                                         }
377                                 }
378                                 if (ird_size > NES_MAX_ORD)
379                                         cm_node->ord_size = NES_MAX_ORD;
380                                 else
381                                         cm_node->ord_size = ird_size;
382                         } else { /* initiator */
383                                 if (ord_size > NES_MAX_IRD) {
384                                         nes_debug(NES_DBG_CM,
385                                         "%s: Unable to support the requested (ord =%u)\n",
386                                                         __func__, ord_size);
387                                         return -EINVAL;
388                                 }
389                                 cm_node->ird_size = ord_size;
390
391                                 if (ird_size > NES_MAX_ORD) {
392                                         cm_node->ord_size = NES_MAX_ORD;
393                                 } else {
394                                         if (ird_size == 0 &&
395                                         (rtr_ctrl_ord & IETF_RDMA0_READ)) {
396                                                 nes_debug(NES_DBG_CM,
397                                                 "%s: Remote peer doesn't support RDMA0_READ (ird=%u)\n",
398                                                         __func__, ird_size);
399                                                 return -EINVAL;
400                                         } else {
401                                                 cm_node->ord_size = ird_size;
402                                         }
403                                 }
404                         }
405                 }
406
407                 if (rtr_ctrl_ord & IETF_RDMA0_READ) {
408                         cm_node->send_rdma0_op = SEND_RDMA_READ_ZERO;
409
410                 } else if (rtr_ctrl_ord & IETF_RDMA0_WRITE) {
411                         cm_node->send_rdma0_op = SEND_RDMA_WRITE_ZERO;
412                 } else {        /* Not supported RDMA0 operation */
413                         return -EINVAL;
414                 }
415                 break;
416         }
417         case IETF_MPA_V1:
418         default:
419                 break;
420         }
421
422         /* copy entire MPA frame to our cm_node's frame */
423         memcpy(cm_node->mpa_frame_buf, buffer + mpa_hdr_len, cm_node->mpa_frame_size);
424
425         if (mpa_frame->flags & IETF_MPA_FLAGS_REJECT)
426                 *type = NES_MPA_REQUEST_REJECT;
427         return 0;
428 }
429
430
431 /**
432  * form_cm_frame - get a free packet and build empty frame Use
433  * node info to build.
434  */
435 static void form_cm_frame(struct sk_buff *skb,
436                           struct nes_cm_node *cm_node, void *options, u32 optionsize,
437                           void *data, u32 datasize, u8 flags)
438 {
439         struct tcphdr *tcph;
440         struct iphdr *iph;
441         struct ethhdr *ethh;
442         u8 *buf;
443         u16 packetsize = sizeof(*iph);
444
445         packetsize += sizeof(*tcph);
446         packetsize += optionsize + datasize;
447
448         skb_trim(skb, 0);
449         memset(skb->data, 0x00, ETH_HLEN + sizeof(*iph) + sizeof(*tcph));
450
451         buf = skb_put(skb, packetsize + ETH_HLEN);
452
453         ethh = (struct ethhdr *)buf;
454         buf += ETH_HLEN;
455
456         iph = (struct iphdr *)buf;
457         buf += sizeof(*iph);
458         tcph = (struct tcphdr *)buf;
459         skb_reset_mac_header(skb);
460         skb_set_network_header(skb, ETH_HLEN);
461         skb_set_transport_header(skb, ETH_HLEN + sizeof(*iph));
462         buf += sizeof(*tcph);
463
464         skb->ip_summed = CHECKSUM_PARTIAL;
465         if (!(cm_node->netdev->features & NETIF_F_IP_CSUM))
466                 skb->ip_summed = CHECKSUM_NONE;
467         skb->protocol = htons(0x800);
468         skb->data_len = 0;
469         skb->mac_len = ETH_HLEN;
470
471         memcpy(ethh->h_dest, cm_node->rem_mac, ETH_ALEN);
472         memcpy(ethh->h_source, cm_node->loc_mac, ETH_ALEN);
473         ethh->h_proto = htons(0x0800);
474
475         iph->version = IPVERSION;
476         iph->ihl = 5;           /* 5 * 4Byte words, IP headr len */
477         iph->tos = 0;
478         iph->tot_len = htons(packetsize);
479         iph->id = htons(++cm_node->tcp_cntxt.loc_id);
480
481         iph->frag_off = htons(0x4000);
482         iph->ttl = 0x40;
483         iph->protocol = 0x06;   /* IPPROTO_TCP */
484
485         iph->saddr = htonl(cm_node->loc_addr);
486         iph->daddr = htonl(cm_node->rem_addr);
487
488         tcph->source = htons(cm_node->loc_port);
489         tcph->dest = htons(cm_node->rem_port);
490         tcph->seq = htonl(cm_node->tcp_cntxt.loc_seq_num);
491
492         if (flags & SET_ACK) {
493                 cm_node->tcp_cntxt.loc_ack_num = cm_node->tcp_cntxt.rcv_nxt;
494                 tcph->ack_seq = htonl(cm_node->tcp_cntxt.loc_ack_num);
495                 tcph->ack = 1;
496         } else {
497                 tcph->ack_seq = 0;
498         }
499
500         if (flags & SET_SYN) {
501                 cm_node->tcp_cntxt.loc_seq_num++;
502                 tcph->syn = 1;
503         } else {
504                 cm_node->tcp_cntxt.loc_seq_num += datasize;
505         }
506
507         if (flags & SET_FIN) {
508                 cm_node->tcp_cntxt.loc_seq_num++;
509                 tcph->fin = 1;
510         }
511
512         if (flags & SET_RST)
513                 tcph->rst = 1;
514
515         tcph->doff = (u16)((sizeof(*tcph) + optionsize + 3) >> 2);
516         tcph->window = htons(cm_node->tcp_cntxt.rcv_wnd);
517         tcph->urg_ptr = 0;
518         if (optionsize)
519                 memcpy(buf, options, optionsize);
520         buf += optionsize;
521         if (datasize)
522                 memcpy(buf, data, datasize);
523
524         skb_shinfo(skb)->nr_frags = 0;
525         cm_packets_created++;
526 }
527
528 /**
529  * print_core - dump a cm core
530  */
531 static void print_core(struct nes_cm_core *core)
532 {
533         nes_debug(NES_DBG_CM, "---------------------------------------------\n");
534         nes_debug(NES_DBG_CM, "CM Core  -- (core = %p )\n", core);
535         if (!core)
536                 return;
537         nes_debug(NES_DBG_CM, "---------------------------------------------\n");
538
539         nes_debug(NES_DBG_CM, "State         : %u \n", core->state);
540
541         nes_debug(NES_DBG_CM, "Listen Nodes  : %u \n", atomic_read(&core->listen_node_cnt));
542         nes_debug(NES_DBG_CM, "Active Nodes  : %u \n", atomic_read(&core->node_cnt));
543
544         nes_debug(NES_DBG_CM, "core          : %p \n", core);
545
546         nes_debug(NES_DBG_CM, "-------------- end core ---------------\n");
547 }
548
549 static void record_ird_ord(struct nes_cm_node *cm_node,
550                                         u16 conn_ird, u16 conn_ord)
551 {
552         if (conn_ird > NES_MAX_IRD)
553                 conn_ird = NES_MAX_IRD;
554
555         if (conn_ord > NES_MAX_ORD)
556                 conn_ord = NES_MAX_ORD;
557
558         cm_node->ird_size = conn_ird;
559         cm_node->ord_size = conn_ord;
560 }
561
562 /**
563  * cm_build_mpa_frame - build a MPA V1 frame or MPA V2 frame
564  */
565 static int cm_build_mpa_frame(struct nes_cm_node *cm_node, u8 **start_buff,
566                               u16 *buff_len, u8 *pci_mem, u8 mpa_key)
567 {
568         int ret = 0;
569
570         *start_buff = (pci_mem) ? pci_mem : &cm_node->mpa_frame_buf[0];
571
572         switch (cm_node->mpa_frame_rev) {
573         case IETF_MPA_V1:
574                 *start_buff = (u8 *)*start_buff + sizeof(struct ietf_rtr_msg);
575                 *buff_len = sizeof(struct ietf_mpa_v1) + cm_node->mpa_frame_size;
576                 build_mpa_v1(cm_node, *start_buff, mpa_key);
577                 break;
578         case IETF_MPA_V2:
579                 *buff_len = sizeof(struct ietf_mpa_v2) + cm_node->mpa_frame_size;
580                 build_mpa_v2(cm_node, *start_buff, mpa_key);
581                 break;
582         default:
583                 ret = -EINVAL;
584         }
585         return ret;
586 }
587
588 /**
589  * build_mpa_v2 - build a MPA V2 frame
590  */
591 static void build_mpa_v2(struct nes_cm_node *cm_node,
592                          void *start_addr, u8 mpa_key)
593 {
594         struct ietf_mpa_v2 *mpa_frame = (struct ietf_mpa_v2 *)start_addr;
595         struct ietf_rtr_msg *rtr_msg = &mpa_frame->rtr_msg;
596         u16 ctrl_ird;
597         u16 ctrl_ord;
598
599         /* initialize the upper 5 bytes of the frame */
600         build_mpa_v1(cm_node, start_addr, mpa_key);
601         mpa_frame->flags |= IETF_MPA_V2_FLAG; /* set a bit to indicate MPA V2 */
602         mpa_frame->priv_data_len += htons(IETF_RTR_MSG_SIZE);
603
604         /* initialize RTR msg */
605         if (cm_node->mpav2_ird_ord == IETF_NO_IRD_ORD) {
606                 ctrl_ird = IETF_NO_IRD_ORD;
607                 ctrl_ord = IETF_NO_IRD_ORD;
608         } else {
609                 ctrl_ird = cm_node->ird_size & IETF_NO_IRD_ORD;
610                 ctrl_ord = cm_node->ord_size & IETF_NO_IRD_ORD;
611         }
612         ctrl_ird |= IETF_PEER_TO_PEER;
613         ctrl_ird |= IETF_FLPDU_ZERO_LEN;
614
615         switch (mpa_key) {
616         case MPA_KEY_REQUEST:
617                 ctrl_ord |= IETF_RDMA0_WRITE;
618                 ctrl_ord |= IETF_RDMA0_READ;
619                 break;
620         case MPA_KEY_REPLY:
621                 switch (cm_node->send_rdma0_op) {
622                 case SEND_RDMA_WRITE_ZERO:
623                         ctrl_ord |= IETF_RDMA0_WRITE;
624                         break;
625                 case SEND_RDMA_READ_ZERO:
626                         ctrl_ord |= IETF_RDMA0_READ;
627                         break;
628                 }
629         }
630         rtr_msg->ctrl_ird = htons(ctrl_ird);
631         rtr_msg->ctrl_ord = htons(ctrl_ord);
632 }
633
634 /**
635  * build_mpa_v1 - build a MPA V1 frame
636  */
637 static void build_mpa_v1(struct nes_cm_node *cm_node, void *start_addr, u8 mpa_key)
638 {
639         struct ietf_mpa_v1 *mpa_frame = (struct ietf_mpa_v1 *)start_addr;
640
641         switch (mpa_key) {
642         case MPA_KEY_REQUEST:
643                 memcpy(mpa_frame->key, IEFT_MPA_KEY_REQ, IETF_MPA_KEY_SIZE);
644                 break;
645         case MPA_KEY_REPLY:
646                 memcpy(mpa_frame->key, IEFT_MPA_KEY_REP, IETF_MPA_KEY_SIZE);
647                 break;
648         }
649         mpa_frame->flags = IETF_MPA_FLAGS_CRC;
650         mpa_frame->rev = cm_node->mpa_frame_rev;
651         mpa_frame->priv_data_len = htons(cm_node->mpa_frame_size);
652 }
653
654 static void build_rdma0_msg(struct nes_cm_node *cm_node, struct nes_qp **nesqp_addr)
655 {
656         u64 u64temp;
657         struct nes_qp *nesqp = *nesqp_addr;
658         struct nes_hw_qp_wqe *wqe = &nesqp->hwqp.sq_vbase[0];
659
660         u64temp = (unsigned long)nesqp->nesuqp_addr;
661         u64temp |= NES_SW_CONTEXT_ALIGN >> 1;
662         set_wqe_64bit_value(wqe->wqe_words, NES_IWARP_SQ_WQE_COMP_CTX_LOW_IDX, u64temp);
663
664         wqe->wqe_words[NES_IWARP_SQ_WQE_FRAG0_LOW_IDX] = 0;
665         wqe->wqe_words[NES_IWARP_SQ_WQE_FRAG0_HIGH_IDX] = 0;
666
667         switch (cm_node->send_rdma0_op) {
668         case SEND_RDMA_WRITE_ZERO:
669                 nes_debug(NES_DBG_CM, "Sending first write.\n");
670                 wqe->wqe_words[NES_IWARP_SQ_WQE_MISC_IDX] =
671                         cpu_to_le32(NES_IWARP_SQ_OP_RDMAW);
672                 wqe->wqe_words[NES_IWARP_SQ_WQE_TOTAL_PAYLOAD_IDX] = 0;
673                 wqe->wqe_words[NES_IWARP_SQ_WQE_LENGTH0_IDX] = 0;
674                 wqe->wqe_words[NES_IWARP_SQ_WQE_STAG0_IDX] = 0;
675                 break;
676
677         case SEND_RDMA_READ_ZERO:
678         default:
679                 if (cm_node->send_rdma0_op != SEND_RDMA_READ_ZERO)
680                         WARN(1, "Unsupported RDMA0 len operation=%u\n",
681                              cm_node->send_rdma0_op);
682                 nes_debug(NES_DBG_CM, "Sending first rdma operation.\n");
683                 wqe->wqe_words[NES_IWARP_SQ_WQE_MISC_IDX] =
684                         cpu_to_le32(NES_IWARP_SQ_OP_RDMAR);
685                 wqe->wqe_words[NES_IWARP_SQ_WQE_RDMA_TO_LOW_IDX] = 1;
686                 wqe->wqe_words[NES_IWARP_SQ_WQE_RDMA_TO_HIGH_IDX] = 0;
687                 wqe->wqe_words[NES_IWARP_SQ_WQE_RDMA_LENGTH_IDX] = 0;
688                 wqe->wqe_words[NES_IWARP_SQ_WQE_RDMA_STAG_IDX] = 1;
689                 wqe->wqe_words[NES_IWARP_SQ_WQE_STAG0_IDX] = 1;
690                 break;
691         }
692
693         if (nesqp->sq_kmapped) {
694                 nesqp->sq_kmapped = 0;
695                 kunmap(nesqp->page);
696         }
697
698         /*use the reserved spot on the WQ for the extra first WQE*/
699         nesqp->nesqp_context->ird_ord_sizes &= cpu_to_le32(~(NES_QPCONTEXT_ORDIRD_LSMM_PRESENT |
700                                                              NES_QPCONTEXT_ORDIRD_WRPDU |
701                                                              NES_QPCONTEXT_ORDIRD_ALSMM));
702         nesqp->skip_lsmm = 1;
703         nesqp->hwqp.sq_tail = 0;
704 }
705
706 /**
707  * schedule_nes_timer
708  * note - cm_node needs to be protected before calling this. Encase in:
709  *                      rem_ref_cm_node(cm_core, cm_node);add_ref_cm_node(cm_node);
710  */
711 int schedule_nes_timer(struct nes_cm_node *cm_node, struct sk_buff *skb,
712                        enum nes_timer_type type, int send_retrans,
713                        int close_when_complete)
714 {
715         unsigned long flags;
716         struct nes_cm_core *cm_core = cm_node->cm_core;
717         struct nes_timer_entry *new_send;
718         int ret = 0;
719
720         new_send = kzalloc(sizeof(*new_send), GFP_ATOMIC);
721         if (!new_send)
722                 return -ENOMEM;
723
724         /* new_send->timetosend = currenttime */
725         new_send->retrycount = NES_DEFAULT_RETRYS;
726         new_send->retranscount = NES_DEFAULT_RETRANS;
727         new_send->skb = skb;
728         new_send->timetosend = jiffies;
729         new_send->type = type;
730         new_send->netdev = cm_node->netdev;
731         new_send->send_retrans = send_retrans;
732         new_send->close_when_complete = close_when_complete;
733
734         if (type == NES_TIMER_TYPE_CLOSE) {
735                 new_send->timetosend += (HZ / 10);
736                 if (cm_node->recv_entry) {
737                         kfree(new_send);
738                         WARN_ON(1);
739                         return -EINVAL;
740                 }
741                 cm_node->recv_entry = new_send;
742         }
743
744         if (type == NES_TIMER_TYPE_SEND) {
745                 new_send->seq_num = ntohl(tcp_hdr(skb)->seq);
746                 atomic_inc(&new_send->skb->users);
747                 spin_lock_irqsave(&cm_node->retrans_list_lock, flags);
748                 cm_node->send_entry = new_send;
749                 add_ref_cm_node(cm_node);
750                 spin_unlock_irqrestore(&cm_node->retrans_list_lock, flags);
751                 new_send->timetosend = jiffies + NES_RETRY_TIMEOUT;
752
753                 ret = nes_nic_cm_xmit(new_send->skb, cm_node->netdev);
754                 if (ret != NETDEV_TX_OK) {
755                         nes_debug(NES_DBG_CM, "Error sending packet %p "
756                                   "(jiffies = %lu)\n", new_send, jiffies);
757                         new_send->timetosend = jiffies;
758                         ret = NETDEV_TX_OK;
759                 } else {
760                         cm_packets_sent++;
761                         if (!send_retrans) {
762                                 cleanup_retrans_entry(cm_node);
763                                 if (close_when_complete)
764                                         rem_ref_cm_node(cm_core, cm_node);
765                                 return ret;
766                         }
767                 }
768         }
769
770         if (!timer_pending(&cm_core->tcp_timer))
771                 mod_timer(&cm_core->tcp_timer, new_send->timetosend);
772
773         return ret;
774 }
775
776 static void nes_retrans_expired(struct nes_cm_node *cm_node)
777 {
778         struct iw_cm_id *cm_id = cm_node->cm_id;
779         enum nes_cm_node_state state = cm_node->state;
780         cm_node->state = NES_CM_STATE_CLOSED;
781
782         switch (state) {
783         case NES_CM_STATE_SYN_RCVD:
784         case NES_CM_STATE_CLOSING:
785                 rem_ref_cm_node(cm_node->cm_core, cm_node);
786                 break;
787         case NES_CM_STATE_LAST_ACK:
788         case NES_CM_STATE_FIN_WAIT1:
789                 if (cm_node->cm_id)
790                         cm_id->rem_ref(cm_id);
791                 send_reset(cm_node, NULL);
792                 break;
793         default:
794                 add_ref_cm_node(cm_node);
795                 send_reset(cm_node, NULL);
796                 create_event(cm_node, NES_CM_EVENT_ABORTED);
797         }
798 }
799
800 static void handle_recv_entry(struct nes_cm_node *cm_node, u32 rem_node)
801 {
802         struct nes_timer_entry *recv_entry = cm_node->recv_entry;
803         struct iw_cm_id *cm_id = cm_node->cm_id;
804         struct nes_qp *nesqp;
805         unsigned long qplockflags;
806
807         if (!recv_entry)
808                 return;
809         nesqp = (struct nes_qp *)recv_entry->skb;
810         if (nesqp) {
811                 spin_lock_irqsave(&nesqp->lock, qplockflags);
812                 if (nesqp->cm_id) {
813                         nes_debug(NES_DBG_CM, "QP%u: cm_id = %p, "
814                                   "refcount = %d: HIT A "
815                                   "NES_TIMER_TYPE_CLOSE with something "
816                                   "to do!!!\n", nesqp->hwqp.qp_id, cm_id,
817                                   atomic_read(&nesqp->refcount));
818                         nesqp->hw_tcp_state = NES_AEQE_TCP_STATE_CLOSED;
819                         nesqp->last_aeq = NES_AEQE_AEID_RESET_SENT;
820                         nesqp->ibqp_state = IB_QPS_ERR;
821                         spin_unlock_irqrestore(&nesqp->lock, qplockflags);
822                         nes_cm_disconn(nesqp);
823                 } else {
824                         spin_unlock_irqrestore(&nesqp->lock, qplockflags);
825                         nes_debug(NES_DBG_CM, "QP%u: cm_id = %p, "
826                                   "refcount = %d: HIT A "
827                                   "NES_TIMER_TYPE_CLOSE with nothing "
828                                   "to do!!!\n", nesqp->hwqp.qp_id, cm_id,
829                                   atomic_read(&nesqp->refcount));
830                 }
831         } else if (rem_node) {
832                 /* TIME_WAIT state */
833                 rem_ref_cm_node(cm_node->cm_core, cm_node);
834         }
835         if (cm_node->cm_id)
836                 cm_id->rem_ref(cm_id);
837         kfree(recv_entry);
838         cm_node->recv_entry = NULL;
839 }
840
841 /**
842  * nes_cm_timer_tick
843  */
844 static void nes_cm_timer_tick(unsigned long pass)
845 {
846         unsigned long flags;
847         unsigned long nexttimeout = jiffies + NES_LONG_TIME;
848         struct nes_cm_node *cm_node;
849         struct nes_timer_entry *send_entry, *recv_entry;
850         struct list_head *list_core_temp;
851         struct list_head *list_node;
852         struct nes_cm_core *cm_core = g_cm_core;
853         u32 settimer = 0;
854         unsigned long timetosend;
855         int ret = NETDEV_TX_OK;
856
857         struct list_head timer_list;
858
859         INIT_LIST_HEAD(&timer_list);
860         spin_lock_irqsave(&cm_core->ht_lock, flags);
861
862         list_for_each_safe(list_node, list_core_temp,
863                            &cm_core->connected_nodes) {
864                 cm_node = container_of(list_node, struct nes_cm_node, list);
865                 if ((cm_node->recv_entry) || (cm_node->send_entry)) {
866                         add_ref_cm_node(cm_node);
867                         list_add(&cm_node->timer_entry, &timer_list);
868                 }
869         }
870         spin_unlock_irqrestore(&cm_core->ht_lock, flags);
871
872         list_for_each_safe(list_node, list_core_temp, &timer_list) {
873                 cm_node = container_of(list_node, struct nes_cm_node,
874                                        timer_entry);
875                 recv_entry = cm_node->recv_entry;
876
877                 if (recv_entry) {
878                         if (time_after(recv_entry->timetosend, jiffies)) {
879                                 if (nexttimeout > recv_entry->timetosend ||
880                                     !settimer) {
881                                         nexttimeout = recv_entry->timetosend;
882                                         settimer = 1;
883                                 }
884                         } else {
885                                 handle_recv_entry(cm_node, 1);
886                         }
887                 }
888
889                 spin_lock_irqsave(&cm_node->retrans_list_lock, flags);
890                 do {
891                         send_entry = cm_node->send_entry;
892                         if (!send_entry)
893                                 break;
894                         if (time_after(send_entry->timetosend, jiffies)) {
895                                 if (cm_node->state != NES_CM_STATE_TSA) {
896                                         if ((nexttimeout >
897                                              send_entry->timetosend) ||
898                                             !settimer) {
899                                                 nexttimeout =
900                                                         send_entry->timetosend;
901                                                 settimer = 1;
902                                         }
903                                 } else {
904                                         free_retrans_entry(cm_node);
905                                 }
906                                 break;
907                         }
908
909                         if ((cm_node->state == NES_CM_STATE_TSA) ||
910                             (cm_node->state == NES_CM_STATE_CLOSED)) {
911                                 free_retrans_entry(cm_node);
912                                 break;
913                         }
914
915                         if (!send_entry->retranscount ||
916                             !send_entry->retrycount) {
917                                 cm_packets_dropped++;
918                                 free_retrans_entry(cm_node);
919
920                                 spin_unlock_irqrestore(
921                                         &cm_node->retrans_list_lock, flags);
922                                 nes_retrans_expired(cm_node);
923                                 cm_node->state = NES_CM_STATE_CLOSED;
924                                 spin_lock_irqsave(&cm_node->retrans_list_lock,
925                                                   flags);
926                                 break;
927                         }
928                         atomic_inc(&send_entry->skb->users);
929                         cm_packets_retrans++;
930                         nes_debug(NES_DBG_CM, "Retransmitting send_entry %p "
931                                   "for node %p, jiffies = %lu, time to send = "
932                                   "%lu, retranscount = %u, send_entry->seq_num = "
933                                   "0x%08X, cm_node->tcp_cntxt.rem_ack_num = "
934                                   "0x%08X\n", send_entry, cm_node, jiffies,
935                                   send_entry->timetosend,
936                                   send_entry->retranscount,
937                                   send_entry->seq_num,
938                                   cm_node->tcp_cntxt.rem_ack_num);
939
940                         spin_unlock_irqrestore(&cm_node->retrans_list_lock,
941                                                flags);
942                         ret = nes_nic_cm_xmit(send_entry->skb, cm_node->netdev);
943                         spin_lock_irqsave(&cm_node->retrans_list_lock, flags);
944                         if (ret != NETDEV_TX_OK) {
945                                 nes_debug(NES_DBG_CM, "rexmit failed for "
946                                           "node=%p\n", cm_node);
947                                 cm_packets_bounced++;
948                                 send_entry->retrycount--;
949                                 nexttimeout = jiffies + NES_SHORT_TIME;
950                                 settimer = 1;
951                                 break;
952                         } else {
953                                 cm_packets_sent++;
954                         }
955                         nes_debug(NES_DBG_CM, "Packet Sent: retrans count = "
956                                   "%u, retry count = %u.\n",
957                                   send_entry->retranscount,
958                                   send_entry->retrycount);
959                         if (send_entry->send_retrans) {
960                                 send_entry->retranscount--;
961                                 timetosend = (NES_RETRY_TIMEOUT <<
962                                               (NES_DEFAULT_RETRANS - send_entry->retranscount));
963
964                                 send_entry->timetosend = jiffies +
965                                                          min(timetosend, NES_MAX_TIMEOUT);
966                                 if (nexttimeout > send_entry->timetosend ||
967                                     !settimer) {
968                                         nexttimeout = send_entry->timetosend;
969                                         settimer = 1;
970                                 }
971                         } else {
972                                 int close_when_complete;
973                                 close_when_complete =
974                                         send_entry->close_when_complete;
975                                 nes_debug(NES_DBG_CM, "cm_node=%p state=%d\n",
976                                           cm_node, cm_node->state);
977                                 free_retrans_entry(cm_node);
978                                 if (close_when_complete)
979                                         rem_ref_cm_node(cm_node->cm_core,
980                                                         cm_node);
981                         }
982                 } while (0);
983
984                 spin_unlock_irqrestore(&cm_node->retrans_list_lock, flags);
985                 rem_ref_cm_node(cm_node->cm_core, cm_node);
986         }
987
988         if (settimer) {
989                 if (!timer_pending(&cm_core->tcp_timer))
990                         mod_timer(&cm_core->tcp_timer, nexttimeout);
991         }
992 }
993
994
995 /**
996  * send_syn
997  */
998 static int send_syn(struct nes_cm_node *cm_node, u32 sendack,
999                     struct sk_buff *skb)
1000 {
1001         int ret;
1002         int flags = SET_SYN;
1003         char optionsbuffer[sizeof(struct option_mss) +
1004                            sizeof(struct option_windowscale) + sizeof(struct option_base) +
1005                            TCP_OPTIONS_PADDING];
1006
1007         int optionssize = 0;
1008         /* Sending MSS option */
1009         union all_known_options *options;
1010
1011         if (!cm_node)
1012                 return -EINVAL;
1013
1014         options = (union all_known_options *)&optionsbuffer[optionssize];
1015         options->as_mss.optionnum = OPTION_NUMBER_MSS;
1016         options->as_mss.length = sizeof(struct option_mss);
1017         options->as_mss.mss = htons(cm_node->tcp_cntxt.mss);
1018         optionssize += sizeof(struct option_mss);
1019
1020         options = (union all_known_options *)&optionsbuffer[optionssize];
1021         options->as_windowscale.optionnum = OPTION_NUMBER_WINDOW_SCALE;
1022         options->as_windowscale.length = sizeof(struct option_windowscale);
1023         options->as_windowscale.shiftcount = cm_node->tcp_cntxt.rcv_wscale;
1024         optionssize += sizeof(struct option_windowscale);
1025
1026         if (sendack && !(NES_DRV_OPT_SUPRESS_OPTION_BC & nes_drv_opt)) {
1027                 options = (union all_known_options *)&optionsbuffer[optionssize];
1028                 options->as_base.optionnum = OPTION_NUMBER_WRITE0;
1029                 options->as_base.length = sizeof(struct option_base);
1030                 optionssize += sizeof(struct option_base);
1031                 /* we need the size to be a multiple of 4 */
1032                 options = (union all_known_options *)&optionsbuffer[optionssize];
1033                 options->as_end = 1;
1034                 optionssize += 1;
1035                 options = (union all_known_options *)&optionsbuffer[optionssize];
1036                 options->as_end = 1;
1037                 optionssize += 1;
1038         }
1039
1040         options = (union all_known_options *)&optionsbuffer[optionssize];
1041         options->as_end = OPTION_NUMBER_END;
1042         optionssize += 1;
1043
1044         if (!skb)
1045                 skb = dev_alloc_skb(MAX_CM_BUFFER);
1046         if (!skb) {
1047                 nes_debug(NES_DBG_CM, "Failed to get a Free pkt\n");
1048                 return -1;
1049         }
1050
1051         if (sendack)
1052                 flags |= SET_ACK;
1053
1054         form_cm_frame(skb, cm_node, optionsbuffer, optionssize, NULL, 0, flags);
1055         ret = schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 1, 0);
1056
1057         return ret;
1058 }
1059
1060
1061 /**
1062  * send_reset
1063  */
1064 static int send_reset(struct nes_cm_node *cm_node, struct sk_buff *skb)
1065 {
1066         int ret;
1067         int flags = SET_RST | SET_ACK;
1068
1069         if (!skb)
1070                 skb = dev_alloc_skb(MAX_CM_BUFFER);
1071         if (!skb) {
1072                 nes_debug(NES_DBG_CM, "Failed to get a Free pkt\n");
1073                 return -ENOMEM;
1074         }
1075
1076         form_cm_frame(skb, cm_node, NULL, 0, NULL, 0, flags);
1077         ret = schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 0, 1);
1078
1079         return ret;
1080 }
1081
1082
1083 /**
1084  * send_ack
1085  */
1086 static int send_ack(struct nes_cm_node *cm_node, struct sk_buff *skb)
1087 {
1088         int ret;
1089
1090         if (!skb)
1091                 skb = dev_alloc_skb(MAX_CM_BUFFER);
1092
1093         if (!skb) {
1094                 nes_debug(NES_DBG_CM, "Failed to get a Free pkt\n");
1095                 return -1;
1096         }
1097
1098         form_cm_frame(skb, cm_node, NULL, 0, NULL, 0, SET_ACK);
1099         ret = schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 0, 0);
1100
1101         return ret;
1102 }
1103
1104
1105 /**
1106  * send_fin
1107  */
1108 static int send_fin(struct nes_cm_node *cm_node, struct sk_buff *skb)
1109 {
1110         int ret;
1111
1112         /* if we didn't get a frame get one */
1113         if (!skb)
1114                 skb = dev_alloc_skb(MAX_CM_BUFFER);
1115
1116         if (!skb) {
1117                 nes_debug(NES_DBG_CM, "Failed to get a Free pkt\n");
1118                 return -1;
1119         }
1120
1121         form_cm_frame(skb, cm_node, NULL, 0, NULL, 0, SET_ACK | SET_FIN);
1122         ret = schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 1, 0);
1123
1124         return ret;
1125 }
1126
1127
1128 /**
1129  * find_node - find a cm node that matches the reference cm node
1130  */
1131 static struct nes_cm_node *find_node(struct nes_cm_core *cm_core,
1132                                      u16 rem_port, nes_addr_t rem_addr, u16 loc_port, nes_addr_t loc_addr)
1133 {
1134         unsigned long flags;
1135         struct list_head *hte;
1136         struct nes_cm_node *cm_node;
1137
1138         /* get a handle on the hte */
1139         hte = &cm_core->connected_nodes;
1140
1141         /* walk list and find cm_node associated with this session ID */
1142         spin_lock_irqsave(&cm_core->ht_lock, flags);
1143         list_for_each_entry(cm_node, hte, list) {
1144                 /* compare quad, return node handle if a match */
1145                 nes_debug(NES_DBG_CM, "finding node %x:%x =? %x:%x ^ %x:%x =? %x:%x\n",
1146                           cm_node->loc_addr, cm_node->loc_port,
1147                           loc_addr, loc_port,
1148                           cm_node->rem_addr, cm_node->rem_port,
1149                           rem_addr, rem_port);
1150                 if ((cm_node->loc_addr == loc_addr) && (cm_node->loc_port == loc_port) &&
1151                     (cm_node->rem_addr == rem_addr) && (cm_node->rem_port == rem_port)) {
1152                         add_ref_cm_node(cm_node);
1153                         spin_unlock_irqrestore(&cm_core->ht_lock, flags);
1154                         return cm_node;
1155                 }
1156         }
1157         spin_unlock_irqrestore(&cm_core->ht_lock, flags);
1158
1159         /* no owner node */
1160         return NULL;
1161 }
1162
1163
1164 /**
1165  * find_listener - find a cm node listening on this addr-port pair
1166  */
1167 static struct nes_cm_listener *find_listener(struct nes_cm_core *cm_core,
1168                                              nes_addr_t dst_addr, u16 dst_port, enum nes_cm_listener_state listener_state)
1169 {
1170         unsigned long flags;
1171         struct nes_cm_listener *listen_node;
1172
1173         /* walk list and find cm_node associated with this session ID */
1174         spin_lock_irqsave(&cm_core->listen_list_lock, flags);
1175         list_for_each_entry(listen_node, &cm_core->listen_list.list, list) {
1176                 /* compare node pair, return node handle if a match */
1177                 if (((listen_node->loc_addr == dst_addr) ||
1178                      listen_node->loc_addr == 0x00000000) &&
1179                     (listen_node->loc_port == dst_port) &&
1180                     (listener_state & listen_node->listener_state)) {
1181                         atomic_inc(&listen_node->ref_count);
1182                         spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
1183                         return listen_node;
1184                 }
1185         }
1186         spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
1187
1188         /* no listener */
1189         return NULL;
1190 }
1191
1192
1193 /**
1194  * add_hte_node - add a cm node to the hash table
1195  */
1196 static int add_hte_node(struct nes_cm_core *cm_core, struct nes_cm_node *cm_node)
1197 {
1198         unsigned long flags;
1199         struct list_head *hte;
1200
1201         if (!cm_node || !cm_core)
1202                 return -EINVAL;
1203
1204         nes_debug(NES_DBG_CM, "Adding Node %p to Active Connection HT\n",
1205                   cm_node);
1206
1207         spin_lock_irqsave(&cm_core->ht_lock, flags);
1208
1209         /* get a handle on the hash table element (list head for this slot) */
1210         hte = &cm_core->connected_nodes;
1211         list_add_tail(&cm_node->list, hte);
1212         atomic_inc(&cm_core->ht_node_cnt);
1213
1214         spin_unlock_irqrestore(&cm_core->ht_lock, flags);
1215
1216         return 0;
1217 }
1218
1219
1220 /**
1221  * mini_cm_dec_refcnt_listen
1222  */
1223 static int mini_cm_dec_refcnt_listen(struct nes_cm_core *cm_core,
1224                                      struct nes_cm_listener *listener, int free_hanging_nodes)
1225 {
1226         int ret = -EINVAL;
1227         int err = 0;
1228         unsigned long flags;
1229         struct list_head *list_pos = NULL;
1230         struct list_head *list_temp = NULL;
1231         struct nes_cm_node *cm_node = NULL;
1232         struct list_head reset_list;
1233
1234         nes_debug(NES_DBG_CM, "attempting listener= %p free_nodes= %d, "
1235                   "refcnt=%d\n", listener, free_hanging_nodes,
1236                   atomic_read(&listener->ref_count));
1237         /* free non-accelerated child nodes for this listener */
1238         INIT_LIST_HEAD(&reset_list);
1239         if (free_hanging_nodes) {
1240                 spin_lock_irqsave(&cm_core->ht_lock, flags);
1241                 list_for_each_safe(list_pos, list_temp,
1242                                    &g_cm_core->connected_nodes) {
1243                         cm_node = container_of(list_pos, struct nes_cm_node,
1244                                                list);
1245                         if ((cm_node->listener == listener) &&
1246                             (!cm_node->accelerated)) {
1247                                 add_ref_cm_node(cm_node);
1248                                 list_add(&cm_node->reset_entry, &reset_list);
1249                         }
1250                 }
1251                 spin_unlock_irqrestore(&cm_core->ht_lock, flags);
1252         }
1253
1254         list_for_each_safe(list_pos, list_temp, &reset_list) {
1255                 cm_node = container_of(list_pos, struct nes_cm_node,
1256                                        reset_entry);
1257                 {
1258                         struct nes_cm_node *loopback = cm_node->loopbackpartner;
1259                         enum nes_cm_node_state old_state;
1260                         if (NES_CM_STATE_FIN_WAIT1 <= cm_node->state) {
1261                                 rem_ref_cm_node(cm_node->cm_core, cm_node);
1262                         } else {
1263                                 if (!loopback) {
1264                                         cleanup_retrans_entry(cm_node);
1265                                         err = send_reset(cm_node, NULL);
1266                                         if (err) {
1267                                                 cm_node->state =
1268                                                         NES_CM_STATE_CLOSED;
1269                                                 WARN_ON(1);
1270                                         } else {
1271                                                 old_state = cm_node->state;
1272                                                 cm_node->state = NES_CM_STATE_LISTENER_DESTROYED;
1273                                                 if (old_state != NES_CM_STATE_MPAREQ_RCVD)
1274                                                         rem_ref_cm_node(
1275                                                                 cm_node->cm_core,
1276                                                                 cm_node);
1277                                         }
1278                                 } else {
1279                                         struct nes_cm_event event;
1280
1281                                         event.cm_node = loopback;
1282                                         event.cm_info.rem_addr =
1283                                                         loopback->rem_addr;
1284                                         event.cm_info.loc_addr =
1285                                                         loopback->loc_addr;
1286                                         event.cm_info.rem_port =
1287                                                         loopback->rem_port;
1288                                         event.cm_info.loc_port =
1289                                                          loopback->loc_port;
1290                                         event.cm_info.cm_id = loopback->cm_id;
1291                                         add_ref_cm_node(loopback);
1292                                         loopback->state = NES_CM_STATE_CLOSED;
1293                                         cm_event_connect_error(&event);
1294                                         cm_node->state = NES_CM_STATE_LISTENER_DESTROYED;
1295
1296                                         rem_ref_cm_node(cm_node->cm_core,
1297                                                          cm_node);
1298
1299                                 }
1300                         }
1301                 }
1302         }
1303
1304         spin_lock_irqsave(&cm_core->listen_list_lock, flags);
1305         if (!atomic_dec_return(&listener->ref_count)) {
1306                 list_del(&listener->list);
1307
1308                 /* decrement our listen node count */
1309                 atomic_dec(&cm_core->listen_node_cnt);
1310
1311                 spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
1312
1313                 if (listener->nesvnic)
1314                         nes_manage_apbvt(listener->nesvnic, listener->loc_port,
1315                                          PCI_FUNC(listener->nesvnic->nesdev->pcidev->devfn), NES_MANAGE_APBVT_DEL);
1316
1317                 nes_debug(NES_DBG_CM, "destroying listener (%p)\n", listener);
1318
1319                 kfree(listener);
1320                 listener = NULL;
1321                 ret = 0;
1322                 atomic_inc(&cm_listens_destroyed);
1323         } else {
1324                 spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
1325         }
1326         if (listener) {
1327                 if (atomic_read(&listener->pend_accepts_cnt) > 0)
1328                         nes_debug(NES_DBG_CM, "destroying listener (%p)"
1329                                   " with non-zero pending accepts=%u\n",
1330                                   listener, atomic_read(&listener->pend_accepts_cnt));
1331         }
1332
1333         return ret;
1334 }
1335
1336
1337 /**
1338  * mini_cm_del_listen
1339  */
1340 static int mini_cm_del_listen(struct nes_cm_core *cm_core,
1341                               struct nes_cm_listener *listener)
1342 {
1343         listener->listener_state = NES_CM_LISTENER_PASSIVE_STATE;
1344         listener->cm_id = NULL; /* going to be destroyed pretty soon */
1345         return mini_cm_dec_refcnt_listen(cm_core, listener, 1);
1346 }
1347
1348
1349 /**
1350  * mini_cm_accelerated
1351  */
1352 static inline int mini_cm_accelerated(struct nes_cm_core *cm_core,
1353                                       struct nes_cm_node *cm_node)
1354 {
1355         cm_node->accelerated = 1;
1356
1357         if (cm_node->accept_pend) {
1358                 BUG_ON(!cm_node->listener);
1359                 atomic_dec(&cm_node->listener->pend_accepts_cnt);
1360                 cm_node->accept_pend = 0;
1361                 BUG_ON(atomic_read(&cm_node->listener->pend_accepts_cnt) < 0);
1362         }
1363
1364         if (!timer_pending(&cm_core->tcp_timer))
1365                 mod_timer(&cm_core->tcp_timer, (jiffies + NES_SHORT_TIME));
1366
1367         return 0;
1368 }
1369
1370
1371 /**
1372  * nes_addr_resolve_neigh
1373  */
1374 static int nes_addr_resolve_neigh(struct nes_vnic *nesvnic, u32 dst_ip, int arpindex)
1375 {
1376         struct rtable *rt;
1377         struct neighbour *neigh;
1378         int rc = arpindex;
1379         struct net_device *netdev;
1380         struct nes_adapter *nesadapter = nesvnic->nesdev->nesadapter;
1381
1382         rt = ip_route_output(&init_net, htonl(dst_ip), 0, 0, 0);
1383         if (IS_ERR(rt)) {
1384                 printk(KERN_ERR "%s: ip_route_output_key failed for 0x%08X\n",
1385                        __func__, dst_ip);
1386                 return rc;
1387         }
1388
1389         if (netif_is_bond_slave(nesvnic->netdev))
1390                 netdev = netdev_master_upper_dev_get(nesvnic->netdev);
1391         else
1392                 netdev = nesvnic->netdev;
1393
1394         neigh = neigh_lookup(&arp_tbl, &rt->rt_gateway, netdev);
1395
1396         rcu_read_lock();
1397         if (neigh) {
1398                 if (neigh->nud_state & NUD_VALID) {
1399                         nes_debug(NES_DBG_CM, "Neighbor MAC address for 0x%08X"
1400                                   " is %pM, Gateway is 0x%08X \n", dst_ip,
1401                                   neigh->ha, ntohl(rt->rt_gateway));
1402
1403                         if (arpindex >= 0) {
1404                                 if (ether_addr_equal(nesadapter->arp_table[arpindex].mac_addr, neigh->ha)) {
1405                                         /* Mac address same as in nes_arp_table */
1406                                         goto out;
1407                                 }
1408
1409                                 nes_manage_arp_cache(nesvnic->netdev,
1410                                                      nesadapter->arp_table[arpindex].mac_addr,
1411                                                      dst_ip, NES_ARP_DELETE);
1412                         }
1413
1414                         nes_manage_arp_cache(nesvnic->netdev, neigh->ha,
1415                                              dst_ip, NES_ARP_ADD);
1416                         rc = nes_arp_table(nesvnic->nesdev, dst_ip, NULL,
1417                                            NES_ARP_RESOLVE);
1418                 } else {
1419                         neigh_event_send(neigh, NULL);
1420                 }
1421         }
1422 out:
1423         rcu_read_unlock();
1424
1425         if (neigh)
1426                 neigh_release(neigh);
1427
1428         ip_rt_put(rt);
1429         return rc;
1430 }
1431
1432 /**
1433  * make_cm_node - create a new instance of a cm node
1434  */
1435 static struct nes_cm_node *make_cm_node(struct nes_cm_core *cm_core,
1436                                         struct nes_vnic *nesvnic, struct nes_cm_info *cm_info,
1437                                         struct nes_cm_listener *listener)
1438 {
1439         struct nes_cm_node *cm_node;
1440         struct timespec ts;
1441         int oldarpindex = 0;
1442         int arpindex = 0;
1443         struct nes_device *nesdev;
1444         struct nes_adapter *nesadapter;
1445
1446         /* create an hte and cm_node for this instance */
1447         cm_node = kzalloc(sizeof(*cm_node), GFP_ATOMIC);
1448         if (!cm_node)
1449                 return NULL;
1450
1451         /* set our node specific transport info */
1452         cm_node->loc_addr = cm_info->loc_addr;
1453         cm_node->rem_addr = cm_info->rem_addr;
1454         cm_node->loc_port = cm_info->loc_port;
1455         cm_node->rem_port = cm_info->rem_port;
1456
1457         cm_node->mpa_frame_rev = mpa_version;
1458         cm_node->send_rdma0_op = SEND_RDMA_READ_ZERO;
1459         cm_node->mpav2_ird_ord = 0;
1460         cm_node->ird_size = 0;
1461         cm_node->ord_size = 0;
1462
1463         nes_debug(NES_DBG_CM, "Make node addresses : loc = %pI4:%x, rem = %pI4:%x\n",
1464                   &cm_node->loc_addr, cm_node->loc_port,
1465                   &cm_node->rem_addr, cm_node->rem_port);
1466         cm_node->listener = listener;
1467         cm_node->netdev = nesvnic->netdev;
1468         cm_node->cm_id = cm_info->cm_id;
1469         memcpy(cm_node->loc_mac, nesvnic->netdev->dev_addr, ETH_ALEN);
1470
1471         nes_debug(NES_DBG_CM, "listener=%p, cm_id=%p\n", cm_node->listener,
1472                   cm_node->cm_id);
1473
1474         spin_lock_init(&cm_node->retrans_list_lock);
1475
1476         cm_node->loopbackpartner = NULL;
1477         atomic_set(&cm_node->ref_count, 1);
1478         /* associate our parent CM core */
1479         cm_node->cm_core = cm_core;
1480         cm_node->tcp_cntxt.loc_id = NES_CM_DEF_LOCAL_ID;
1481         cm_node->tcp_cntxt.rcv_wscale = NES_CM_DEFAULT_RCV_WND_SCALE;
1482         cm_node->tcp_cntxt.rcv_wnd = NES_CM_DEFAULT_RCV_WND_SCALED >>
1483                                      NES_CM_DEFAULT_RCV_WND_SCALE;
1484         ts = current_kernel_time();
1485         cm_node->tcp_cntxt.loc_seq_num = htonl(ts.tv_nsec);
1486         cm_node->tcp_cntxt.mss = nesvnic->max_frame_size - sizeof(struct iphdr) -
1487                                  sizeof(struct tcphdr) - ETH_HLEN - VLAN_HLEN;
1488         cm_node->tcp_cntxt.rcv_nxt = 0;
1489         /* get a unique session ID , add thread_id to an upcounter to handle race */
1490         atomic_inc(&cm_core->node_cnt);
1491         cm_node->conn_type = cm_info->conn_type;
1492         cm_node->apbvt_set = 0;
1493         cm_node->accept_pend = 0;
1494
1495         cm_node->nesvnic = nesvnic;
1496         /* get some device handles, for arp lookup */
1497         nesdev = nesvnic->nesdev;
1498         nesadapter = nesdev->nesadapter;
1499
1500         cm_node->loopbackpartner = NULL;
1501
1502         /* get the mac addr for the remote node */
1503         oldarpindex = nes_arp_table(nesdev, cm_node->rem_addr, NULL, NES_ARP_RESOLVE);
1504         arpindex = nes_addr_resolve_neigh(nesvnic, cm_info->rem_addr, oldarpindex);
1505         if (arpindex < 0) {
1506                 kfree(cm_node);
1507                 return NULL;
1508         }
1509
1510         /* copy the mac addr to node context */
1511         memcpy(cm_node->rem_mac, nesadapter->arp_table[arpindex].mac_addr, ETH_ALEN);
1512         nes_debug(NES_DBG_CM, "Remote mac addr from arp table: %pM\n",
1513                   cm_node->rem_mac);
1514
1515         add_hte_node(cm_core, cm_node);
1516         atomic_inc(&cm_nodes_created);
1517
1518         return cm_node;
1519 }
1520
1521
1522 /**
1523  * add_ref_cm_node - destroy an instance of a cm node
1524  */
1525 static int add_ref_cm_node(struct nes_cm_node *cm_node)
1526 {
1527         atomic_inc(&cm_node->ref_count);
1528         return 0;
1529 }
1530
1531
1532 /**
1533  * rem_ref_cm_node - destroy an instance of a cm node
1534  */
1535 static int rem_ref_cm_node(struct nes_cm_core *cm_core,
1536                            struct nes_cm_node *cm_node)
1537 {
1538         unsigned long flags;
1539         struct nes_qp *nesqp;
1540
1541         if (!cm_node)
1542                 return -EINVAL;
1543
1544         spin_lock_irqsave(&cm_node->cm_core->ht_lock, flags);
1545         if (atomic_dec_return(&cm_node->ref_count)) {
1546                 spin_unlock_irqrestore(&cm_node->cm_core->ht_lock, flags);
1547                 return 0;
1548         }
1549         list_del(&cm_node->list);
1550         atomic_dec(&cm_core->ht_node_cnt);
1551         spin_unlock_irqrestore(&cm_node->cm_core->ht_lock, flags);
1552
1553         /* if the node is destroyed before connection was accelerated */
1554         if (!cm_node->accelerated && cm_node->accept_pend) {
1555                 BUG_ON(!cm_node->listener);
1556                 atomic_dec(&cm_node->listener->pend_accepts_cnt);
1557                 BUG_ON(atomic_read(&cm_node->listener->pend_accepts_cnt) < 0);
1558         }
1559         WARN_ON(cm_node->send_entry);
1560         if (cm_node->recv_entry)
1561                 handle_recv_entry(cm_node, 0);
1562         if (cm_node->listener) {
1563                 mini_cm_dec_refcnt_listen(cm_core, cm_node->listener, 0);
1564         } else {
1565                 if (cm_node->apbvt_set && cm_node->nesvnic) {
1566                         nes_manage_apbvt(cm_node->nesvnic, cm_node->loc_port,
1567                                          PCI_FUNC(
1568                                                  cm_node->nesvnic->nesdev->pcidev->devfn),
1569                                          NES_MANAGE_APBVT_DEL);
1570                 }
1571         }
1572
1573         atomic_dec(&cm_core->node_cnt);
1574         atomic_inc(&cm_nodes_destroyed);
1575         nesqp = cm_node->nesqp;
1576         if (nesqp) {
1577                 nesqp->cm_node = NULL;
1578                 nes_rem_ref(&nesqp->ibqp);
1579                 cm_node->nesqp = NULL;
1580         }
1581
1582         kfree(cm_node);
1583         return 0;
1584 }
1585
1586 /**
1587  * process_options
1588  */
1589 static int process_options(struct nes_cm_node *cm_node, u8 *optionsloc,
1590                            u32 optionsize, u32 syn_packet)
1591 {
1592         u32 tmp;
1593         u32 offset = 0;
1594         union all_known_options *all_options;
1595         char got_mss_option = 0;
1596
1597         while (offset < optionsize) {
1598                 all_options = (union all_known_options *)(optionsloc + offset);
1599                 switch (all_options->as_base.optionnum) {
1600                 case OPTION_NUMBER_END:
1601                         offset = optionsize;
1602                         break;
1603                 case OPTION_NUMBER_NONE:
1604                         offset += 1;
1605                         continue;
1606                 case OPTION_NUMBER_MSS:
1607                         nes_debug(NES_DBG_CM, "%s: MSS Length: %d Offset: %d "
1608                                   "Size: %d\n", __func__,
1609                                   all_options->as_mss.length, offset, optionsize);
1610                         got_mss_option = 1;
1611                         if (all_options->as_mss.length != 4) {
1612                                 return 1;
1613                         } else {
1614                                 tmp = ntohs(all_options->as_mss.mss);
1615                                 if (tmp > 0 && tmp <
1616                                     cm_node->tcp_cntxt.mss)
1617                                         cm_node->tcp_cntxt.mss = tmp;
1618                         }
1619                         break;
1620                 case OPTION_NUMBER_WINDOW_SCALE:
1621                         cm_node->tcp_cntxt.snd_wscale =
1622                                 all_options->as_windowscale.shiftcount;
1623                         break;
1624                 default:
1625                         nes_debug(NES_DBG_CM, "TCP Option not understood: %x\n",
1626                                   all_options->as_base.optionnum);
1627                         break;
1628                 }
1629                 offset += all_options->as_base.length;
1630         }
1631         if ((!got_mss_option) && (syn_packet))
1632                 cm_node->tcp_cntxt.mss = NES_CM_DEFAULT_MSS;
1633         return 0;
1634 }
1635
1636 static void drop_packet(struct sk_buff *skb)
1637 {
1638         atomic_inc(&cm_accel_dropped_pkts);
1639         dev_kfree_skb_any(skb);
1640 }
1641
1642 static void handle_fin_pkt(struct nes_cm_node *cm_node)
1643 {
1644         nes_debug(NES_DBG_CM, "Received FIN, cm_node = %p, state = %u. "
1645                   "refcnt=%d\n", cm_node, cm_node->state,
1646                   atomic_read(&cm_node->ref_count));
1647         switch (cm_node->state) {
1648         case NES_CM_STATE_SYN_RCVD:
1649         case NES_CM_STATE_SYN_SENT:
1650         case NES_CM_STATE_ESTABLISHED:
1651         case NES_CM_STATE_MPAREJ_RCVD:
1652                 cm_node->tcp_cntxt.rcv_nxt++;
1653                 cleanup_retrans_entry(cm_node);
1654                 cm_node->state = NES_CM_STATE_LAST_ACK;
1655                 send_fin(cm_node, NULL);
1656                 break;
1657         case NES_CM_STATE_MPAREQ_SENT:
1658                 create_event(cm_node, NES_CM_EVENT_ABORTED);
1659                 cm_node->tcp_cntxt.rcv_nxt++;
1660                 cleanup_retrans_entry(cm_node);
1661                 cm_node->state = NES_CM_STATE_CLOSED;
1662                 add_ref_cm_node(cm_node);
1663                 send_reset(cm_node, NULL);
1664                 break;
1665         case NES_CM_STATE_FIN_WAIT1:
1666                 cm_node->tcp_cntxt.rcv_nxt++;
1667                 cleanup_retrans_entry(cm_node);
1668                 cm_node->state = NES_CM_STATE_CLOSING;
1669                 send_ack(cm_node, NULL);
1670                 /* Wait for ACK as this is simultaneous close..
1671                 * After we receive ACK, do not send anything..
1672                 * Just rm the node.. Done.. */
1673                 break;
1674         case NES_CM_STATE_FIN_WAIT2:
1675                 cm_node->tcp_cntxt.rcv_nxt++;
1676                 cleanup_retrans_entry(cm_node);
1677                 cm_node->state = NES_CM_STATE_TIME_WAIT;
1678                 send_ack(cm_node, NULL);
1679                 schedule_nes_timer(cm_node, NULL,  NES_TIMER_TYPE_CLOSE, 1, 0);
1680                 break;
1681         case NES_CM_STATE_TIME_WAIT:
1682                 cm_node->tcp_cntxt.rcv_nxt++;
1683                 cleanup_retrans_entry(cm_node);
1684                 cm_node->state = NES_CM_STATE_CLOSED;
1685                 rem_ref_cm_node(cm_node->cm_core, cm_node);
1686                 break;
1687         case NES_CM_STATE_TSA:
1688         default:
1689                 nes_debug(NES_DBG_CM, "Error Rcvd FIN for node-%p state = %d\n",
1690                         cm_node, cm_node->state);
1691                 break;
1692         }
1693 }
1694
1695
1696 static void handle_rst_pkt(struct nes_cm_node *cm_node, struct sk_buff *skb,
1697         struct tcphdr *tcph)
1698 {
1699
1700         int     reset = 0;      /* whether to send reset in case of err.. */
1701         atomic_inc(&cm_resets_recvd);
1702         nes_debug(NES_DBG_CM, "Received Reset, cm_node = %p, state = %u."
1703                         " refcnt=%d\n", cm_node, cm_node->state,
1704                         atomic_read(&cm_node->ref_count));
1705         cleanup_retrans_entry(cm_node);
1706         switch (cm_node->state) {
1707         case NES_CM_STATE_SYN_SENT:
1708         case NES_CM_STATE_MPAREQ_SENT:
1709                 nes_debug(NES_DBG_CM, "%s[%u] create abort for cm_node=%p "
1710                         "listener=%p state=%d\n", __func__, __LINE__, cm_node,
1711                         cm_node->listener, cm_node->state);
1712                 switch (cm_node->mpa_frame_rev) {
1713                 case IETF_MPA_V2:
1714                         cm_node->mpa_frame_rev = IETF_MPA_V1;
1715                         /* send a syn and goto syn sent state */
1716                         cm_node->state = NES_CM_STATE_SYN_SENT;
1717                         if (send_syn(cm_node, 0, NULL)) {
1718                                 active_open_err(cm_node, skb, reset);
1719                         }
1720                         break;
1721                 case IETF_MPA_V1:
1722                 default:
1723                         active_open_err(cm_node, skb, reset);
1724                         break;
1725                 }
1726                 break;
1727         case NES_CM_STATE_MPAREQ_RCVD:
1728                 atomic_inc(&cm_node->passive_state);
1729                 dev_kfree_skb_any(skb);
1730                 break;
1731         case NES_CM_STATE_ESTABLISHED:
1732         case NES_CM_STATE_SYN_RCVD:
1733         case NES_CM_STATE_LISTENING:
1734                 nes_debug(NES_DBG_CM, "Bad state %s[%u]\n", __func__, __LINE__);
1735                 passive_open_err(cm_node, skb, reset);
1736                 break;
1737         case NES_CM_STATE_TSA:
1738                 active_open_err(cm_node, skb, reset);
1739                 break;
1740         case NES_CM_STATE_CLOSED:
1741                 drop_packet(skb);
1742                 break;
1743         case NES_CM_STATE_FIN_WAIT2:
1744         case NES_CM_STATE_FIN_WAIT1:
1745         case NES_CM_STATE_LAST_ACK:
1746                 cm_node->cm_id->rem_ref(cm_node->cm_id);
1747         case NES_CM_STATE_TIME_WAIT:
1748                 cm_node->state = NES_CM_STATE_CLOSED;
1749                 rem_ref_cm_node(cm_node->cm_core, cm_node);
1750                 drop_packet(skb);
1751                 break;
1752         default:
1753                 drop_packet(skb);
1754                 break;
1755         }
1756 }
1757
1758
1759 static void handle_rcv_mpa(struct nes_cm_node *cm_node, struct sk_buff *skb)
1760 {
1761         int ret = 0;
1762         int datasize = skb->len;
1763         u8 *dataloc = skb->data;
1764
1765         enum nes_cm_event_type type = NES_CM_EVENT_UNKNOWN;
1766         u32 res_type;
1767
1768         ret = parse_mpa(cm_node, dataloc, &res_type, datasize);
1769         if (ret) {
1770                 nes_debug(NES_DBG_CM, "didn't like MPA Request\n");
1771                 if (cm_node->state == NES_CM_STATE_MPAREQ_SENT) {
1772                         nes_debug(NES_DBG_CM, "%s[%u] create abort for "
1773                                   "cm_node=%p listener=%p state=%d\n", __func__,
1774                                   __LINE__, cm_node, cm_node->listener,
1775                                   cm_node->state);
1776                         active_open_err(cm_node, skb, 1);
1777                 } else {
1778                         passive_open_err(cm_node, skb, 1);
1779                 }
1780                 return;
1781         }
1782
1783         switch (cm_node->state) {
1784         case NES_CM_STATE_ESTABLISHED:
1785                 if (res_type == NES_MPA_REQUEST_REJECT)
1786                         /*BIG problem as we are receiving the MPA.. So should
1787                          * not be REJECT.. This is Passive Open.. We can
1788                          * only receive it Reject for Active Open...*/
1789                         WARN_ON(1);
1790                 cm_node->state = NES_CM_STATE_MPAREQ_RCVD;
1791                 type = NES_CM_EVENT_MPA_REQ;
1792                 atomic_set(&cm_node->passive_state,
1793                            NES_PASSIVE_STATE_INDICATED);
1794                 break;
1795         case NES_CM_STATE_MPAREQ_SENT:
1796                 cleanup_retrans_entry(cm_node);
1797                 if (res_type == NES_MPA_REQUEST_REJECT) {
1798                         type = NES_CM_EVENT_MPA_REJECT;
1799                         cm_node->state = NES_CM_STATE_MPAREJ_RCVD;
1800                 } else {
1801                         type = NES_CM_EVENT_CONNECTED;
1802                         cm_node->state = NES_CM_STATE_TSA;
1803                 }
1804
1805                 break;
1806         default:
1807                 WARN_ON(1);
1808                 break;
1809         }
1810         dev_kfree_skb_any(skb);
1811         create_event(cm_node, type);
1812 }
1813
1814 static void indicate_pkt_err(struct nes_cm_node *cm_node, struct sk_buff *skb)
1815 {
1816         switch (cm_node->state) {
1817         case NES_CM_STATE_SYN_SENT:
1818         case NES_CM_STATE_MPAREQ_SENT:
1819                 nes_debug(NES_DBG_CM, "%s[%u] create abort for cm_node=%p "
1820                           "listener=%p state=%d\n", __func__, __LINE__, cm_node,
1821                           cm_node->listener, cm_node->state);
1822                 active_open_err(cm_node, skb, 1);
1823                 break;
1824         case NES_CM_STATE_ESTABLISHED:
1825         case NES_CM_STATE_SYN_RCVD:
1826                 passive_open_err(cm_node, skb, 1);
1827                 break;
1828         case NES_CM_STATE_TSA:
1829         default:
1830                 drop_packet(skb);
1831         }
1832 }
1833
1834 static int check_syn(struct nes_cm_node *cm_node, struct tcphdr *tcph,
1835                      struct sk_buff *skb)
1836 {
1837         int err;
1838
1839         err = ((ntohl(tcph->ack_seq) == cm_node->tcp_cntxt.loc_seq_num)) ? 0 : 1;
1840         if (err)
1841                 active_open_err(cm_node, skb, 1);
1842
1843         return err;
1844 }
1845
1846 static int check_seq(struct nes_cm_node *cm_node, struct tcphdr *tcph,
1847                      struct sk_buff *skb)
1848 {
1849         int err = 0;
1850         u32 seq;
1851         u32 ack_seq;
1852         u32 loc_seq_num = cm_node->tcp_cntxt.loc_seq_num;
1853         u32 rcv_nxt = cm_node->tcp_cntxt.rcv_nxt;
1854         u32 rcv_wnd;
1855
1856         seq = ntohl(tcph->seq);
1857         ack_seq = ntohl(tcph->ack_seq);
1858         rcv_wnd = cm_node->tcp_cntxt.rcv_wnd;
1859         if (ack_seq != loc_seq_num)
1860                 err = 1;
1861         else if (!between(seq, rcv_nxt, (rcv_nxt + rcv_wnd)))
1862                 err = 1;
1863         if (err) {
1864                 nes_debug(NES_DBG_CM, "%s[%u] create abort for cm_node=%p "
1865                           "listener=%p state=%d\n", __func__, __LINE__, cm_node,
1866                           cm_node->listener, cm_node->state);
1867                 indicate_pkt_err(cm_node, skb);
1868                 nes_debug(NES_DBG_CM, "seq ERROR cm_node =%p seq=0x%08X "
1869                           "rcv_nxt=0x%08X rcv_wnd=0x%x\n", cm_node, seq, rcv_nxt,
1870                           rcv_wnd);
1871         }
1872         return err;
1873 }
1874
1875 /*
1876  * handle_syn_pkt() is for Passive node. The syn packet is received when a node
1877  * is created with a listener or it may comein as rexmitted packet which in
1878  * that case will be just dropped.
1879  */
1880 static void handle_syn_pkt(struct nes_cm_node *cm_node, struct sk_buff *skb,
1881                            struct tcphdr *tcph)
1882 {
1883         int ret;
1884         u32 inc_sequence;
1885         int optionsize;
1886
1887         optionsize = (tcph->doff << 2) - sizeof(struct tcphdr);
1888         skb_trim(skb, 0);
1889         inc_sequence = ntohl(tcph->seq);
1890
1891         switch (cm_node->state) {
1892         case NES_CM_STATE_SYN_SENT:
1893         case NES_CM_STATE_MPAREQ_SENT:
1894                 /* Rcvd syn on active open connection*/
1895                 active_open_err(cm_node, skb, 1);
1896                 break;
1897         case NES_CM_STATE_LISTENING:
1898                 /* Passive OPEN */
1899                 if (atomic_read(&cm_node->listener->pend_accepts_cnt) >
1900                     cm_node->listener->backlog) {
1901                         nes_debug(NES_DBG_CM, "drop syn due to backlog "
1902                                   "pressure \n");
1903                         cm_backlog_drops++;
1904                         passive_open_err(cm_node, skb, 0);
1905                         break;
1906                 }
1907                 ret = handle_tcp_options(cm_node, tcph, skb, optionsize,
1908                                          1);
1909                 if (ret) {
1910                         passive_open_err(cm_node, skb, 0);
1911                         /* drop pkt */
1912                         break;
1913                 }
1914                 cm_node->tcp_cntxt.rcv_nxt = inc_sequence + 1;
1915                 BUG_ON(cm_node->send_entry);
1916                 cm_node->accept_pend = 1;
1917                 atomic_inc(&cm_node->listener->pend_accepts_cnt);
1918
1919                 cm_node->state = NES_CM_STATE_SYN_RCVD;
1920                 send_syn(cm_node, 1, skb);
1921                 break;
1922         case NES_CM_STATE_CLOSED:
1923                 cleanup_retrans_entry(cm_node);
1924                 add_ref_cm_node(cm_node);
1925                 send_reset(cm_node, skb);
1926                 break;
1927         case NES_CM_STATE_TSA:
1928         case NES_CM_STATE_ESTABLISHED:
1929         case NES_CM_STATE_FIN_WAIT1:
1930         case NES_CM_STATE_FIN_WAIT2:
1931         case NES_CM_STATE_MPAREQ_RCVD:
1932         case NES_CM_STATE_LAST_ACK:
1933         case NES_CM_STATE_CLOSING:
1934         case NES_CM_STATE_UNKNOWN:
1935         default:
1936                 drop_packet(skb);
1937                 break;
1938         }
1939 }
1940
1941 static void handle_synack_pkt(struct nes_cm_node *cm_node, struct sk_buff *skb,
1942                               struct tcphdr *tcph)
1943 {
1944         int ret;
1945         u32 inc_sequence;
1946         int optionsize;
1947
1948         optionsize = (tcph->doff << 2) - sizeof(struct tcphdr);
1949         skb_trim(skb, 0);
1950         inc_sequence = ntohl(tcph->seq);
1951         switch (cm_node->state) {
1952         case NES_CM_STATE_SYN_SENT:
1953                 cleanup_retrans_entry(cm_node);
1954                 /* active open */
1955                 if (check_syn(cm_node, tcph, skb))
1956                         return;
1957                 cm_node->tcp_cntxt.rem_ack_num = ntohl(tcph->ack_seq);
1958                 /* setup options */
1959                 ret = handle_tcp_options(cm_node, tcph, skb, optionsize, 0);
1960                 if (ret) {
1961                         nes_debug(NES_DBG_CM, "cm_node=%p tcp_options failed\n",
1962                                   cm_node);
1963                         break;
1964                 }
1965                 cleanup_retrans_entry(cm_node);
1966                 cm_node->tcp_cntxt.rcv_nxt = inc_sequence + 1;
1967                 send_mpa_request(cm_node, skb);
1968                 cm_node->state = NES_CM_STATE_MPAREQ_SENT;
1969                 break;
1970         case NES_CM_STATE_MPAREQ_RCVD:
1971                 /* passive open, so should not be here */
1972                 passive_open_err(cm_node, skb, 1);
1973                 break;
1974         case NES_CM_STATE_LISTENING:
1975                 cm_node->tcp_cntxt.loc_seq_num = ntohl(tcph->ack_seq);
1976                 cleanup_retrans_entry(cm_node);
1977                 cm_node->state = NES_CM_STATE_CLOSED;
1978                 send_reset(cm_node, skb);
1979                 break;
1980         case NES_CM_STATE_CLOSED:
1981                 cm_node->tcp_cntxt.loc_seq_num = ntohl(tcph->ack_seq);
1982                 cleanup_retrans_entry(cm_node);
1983                 add_ref_cm_node(cm_node);
1984                 send_reset(cm_node, skb);
1985                 break;
1986         case NES_CM_STATE_ESTABLISHED:
1987         case NES_CM_STATE_FIN_WAIT1:
1988         case NES_CM_STATE_FIN_WAIT2:
1989         case NES_CM_STATE_LAST_ACK:
1990         case NES_CM_STATE_TSA:
1991         case NES_CM_STATE_CLOSING:
1992         case NES_CM_STATE_UNKNOWN:
1993         case NES_CM_STATE_MPAREQ_SENT:
1994         default:
1995                 drop_packet(skb);
1996                 break;
1997         }
1998 }
1999
2000 static int handle_ack_pkt(struct nes_cm_node *cm_node, struct sk_buff *skb,
2001                           struct tcphdr *tcph)
2002 {
2003         int datasize = 0;
2004         u32 inc_sequence;
2005         int ret = 0;
2006         int optionsize;
2007
2008         optionsize = (tcph->doff << 2) - sizeof(struct tcphdr);
2009
2010         if (check_seq(cm_node, tcph, skb))
2011                 return -EINVAL;
2012
2013         skb_pull(skb, tcph->doff << 2);
2014         inc_sequence = ntohl(tcph->seq);
2015         datasize = skb->len;
2016         switch (cm_node->state) {
2017         case NES_CM_STATE_SYN_RCVD:
2018                 /* Passive OPEN */
2019                 cleanup_retrans_entry(cm_node);
2020                 ret = handle_tcp_options(cm_node, tcph, skb, optionsize, 1);
2021                 if (ret)
2022                         break;
2023                 cm_node->tcp_cntxt.rem_ack_num = ntohl(tcph->ack_seq);
2024                 cm_node->state = NES_CM_STATE_ESTABLISHED;
2025                 if (datasize) {
2026                         cm_node->tcp_cntxt.rcv_nxt = inc_sequence + datasize;
2027                         handle_rcv_mpa(cm_node, skb);
2028                 } else { /* rcvd ACK only */
2029                         dev_kfree_skb_any(skb);
2030                 }
2031                 break;
2032         case NES_CM_STATE_ESTABLISHED:
2033                 /* Passive OPEN */
2034                 cleanup_retrans_entry(cm_node);
2035                 if (datasize) {
2036                         cm_node->tcp_cntxt.rcv_nxt = inc_sequence + datasize;
2037                         handle_rcv_mpa(cm_node, skb);
2038                 } else {
2039                         drop_packet(skb);
2040                 }
2041                 break;
2042         case NES_CM_STATE_MPAREQ_SENT:
2043                 cm_node->tcp_cntxt.rem_ack_num = ntohl(tcph->ack_seq);
2044                 if (datasize) {
2045                         cm_node->tcp_cntxt.rcv_nxt = inc_sequence + datasize;
2046                         handle_rcv_mpa(cm_node, skb);
2047                 } else { /* Could be just an ack pkt.. */
2048                         dev_kfree_skb_any(skb);
2049                 }
2050                 break;
2051         case NES_CM_STATE_LISTENING:
2052                 cleanup_retrans_entry(cm_node);
2053                 cm_node->state = NES_CM_STATE_CLOSED;
2054                 send_reset(cm_node, skb);
2055                 break;
2056         case NES_CM_STATE_CLOSED:
2057                 cleanup_retrans_entry(cm_node);
2058                 add_ref_cm_node(cm_node);
2059                 send_reset(cm_node, skb);
2060                 break;
2061         case NES_CM_STATE_LAST_ACK:
2062         case NES_CM_STATE_CLOSING:
2063                 cleanup_retrans_entry(cm_node);
2064                 cm_node->state = NES_CM_STATE_CLOSED;
2065                 cm_node->cm_id->rem_ref(cm_node->cm_id);
2066                 rem_ref_cm_node(cm_node->cm_core, cm_node);
2067                 drop_packet(skb);
2068                 break;
2069         case NES_CM_STATE_FIN_WAIT1:
2070                 cleanup_retrans_entry(cm_node);
2071                 drop_packet(skb);
2072                 cm_node->state = NES_CM_STATE_FIN_WAIT2;
2073                 break;
2074         case NES_CM_STATE_SYN_SENT:
2075         case NES_CM_STATE_FIN_WAIT2:
2076         case NES_CM_STATE_TSA:
2077         case NES_CM_STATE_MPAREQ_RCVD:
2078         case NES_CM_STATE_UNKNOWN:
2079         default:
2080                 cleanup_retrans_entry(cm_node);
2081                 drop_packet(skb);
2082                 break;
2083         }
2084         return ret;
2085 }
2086
2087
2088
2089 static int handle_tcp_options(struct nes_cm_node *cm_node, struct tcphdr *tcph,
2090                               struct sk_buff *skb, int optionsize, int passive)
2091 {
2092         u8 *optionsloc = (u8 *)&tcph[1];
2093
2094         if (optionsize) {
2095                 if (process_options(cm_node, optionsloc, optionsize,
2096                                     (u32)tcph->syn)) {
2097                         nes_debug(NES_DBG_CM, "%s: Node %p, Sending RESET\n",
2098                                   __func__, cm_node);
2099                         if (passive)
2100                                 passive_open_err(cm_node, skb, 1);
2101                         else
2102                                 active_open_err(cm_node, skb, 1);
2103                         return 1;
2104                 }
2105         }
2106
2107         cm_node->tcp_cntxt.snd_wnd = ntohs(tcph->window) <<
2108                                      cm_node->tcp_cntxt.snd_wscale;
2109
2110         if (cm_node->tcp_cntxt.snd_wnd > cm_node->tcp_cntxt.max_snd_wnd)
2111                 cm_node->tcp_cntxt.max_snd_wnd = cm_node->tcp_cntxt.snd_wnd;
2112         return 0;
2113 }
2114
2115 /*
2116  * active_open_err() will send reset() if flag set..
2117  * It will also send ABORT event.
2118  */
2119 static void active_open_err(struct nes_cm_node *cm_node, struct sk_buff *skb,
2120                             int reset)
2121 {
2122         cleanup_retrans_entry(cm_node);
2123         if (reset) {
2124                 nes_debug(NES_DBG_CM, "ERROR active err called for cm_node=%p, "
2125                           "state=%d\n", cm_node, cm_node->state);
2126                 add_ref_cm_node(cm_node);
2127                 send_reset(cm_node, skb);
2128         } else {
2129                 dev_kfree_skb_any(skb);
2130         }
2131
2132         cm_node->state = NES_CM_STATE_CLOSED;
2133         create_event(cm_node, NES_CM_EVENT_ABORTED);
2134 }
2135
2136 /*
2137  * passive_open_err() will either do a reset() or will free up the skb and
2138  * remove the cm_node.
2139  */
2140 static void passive_open_err(struct nes_cm_node *cm_node, struct sk_buff *skb,
2141                              int reset)
2142 {
2143         cleanup_retrans_entry(cm_node);
2144         cm_node->state = NES_CM_STATE_CLOSED;
2145         if (reset) {
2146                 nes_debug(NES_DBG_CM, "passive_open_err sending RST for "
2147                           "cm_node=%p state =%d\n", cm_node, cm_node->state);
2148                 send_reset(cm_node, skb);
2149         } else {
2150                 dev_kfree_skb_any(skb);
2151                 rem_ref_cm_node(cm_node->cm_core, cm_node);
2152         }
2153 }
2154
2155 /*
2156  * free_retrans_entry() routines assumes that the retrans_list_lock has
2157  * been acquired before calling.
2158  */
2159 static void free_retrans_entry(struct nes_cm_node *cm_node)
2160 {
2161         struct nes_timer_entry *send_entry;
2162
2163         send_entry = cm_node->send_entry;
2164         if (send_entry) {
2165                 cm_node->send_entry = NULL;
2166                 dev_kfree_skb_any(send_entry->skb);
2167                 kfree(send_entry);
2168                 rem_ref_cm_node(cm_node->cm_core, cm_node);
2169         }
2170 }
2171
2172 static void cleanup_retrans_entry(struct nes_cm_node *cm_node)
2173 {
2174         unsigned long flags;
2175
2176         spin_lock_irqsave(&cm_node->retrans_list_lock, flags);
2177         free_retrans_entry(cm_node);
2178         spin_unlock_irqrestore(&cm_node->retrans_list_lock, flags);
2179 }
2180
2181 /**
2182  * process_packet
2183  * Returns skb if to be freed, else it will return NULL if already used..
2184  */
2185 static void process_packet(struct nes_cm_node *cm_node, struct sk_buff *skb,
2186                            struct nes_cm_core *cm_core)
2187 {
2188         enum nes_tcpip_pkt_type pkt_type = NES_PKT_TYPE_UNKNOWN;
2189         struct tcphdr *tcph = tcp_hdr(skb);
2190         u32 fin_set = 0;
2191         int ret = 0;
2192
2193         skb_pull(skb, ip_hdr(skb)->ihl << 2);
2194
2195         nes_debug(NES_DBG_CM, "process_packet: cm_node=%p state =%d syn=%d "
2196                   "ack=%d rst=%d fin=%d\n", cm_node, cm_node->state, tcph->syn,
2197                   tcph->ack, tcph->rst, tcph->fin);
2198
2199         if (tcph->rst) {
2200                 pkt_type = NES_PKT_TYPE_RST;
2201         } else if (tcph->syn) {
2202                 pkt_type = NES_PKT_TYPE_SYN;
2203                 if (tcph->ack)
2204                         pkt_type = NES_PKT_TYPE_SYNACK;
2205         } else if (tcph->ack) {
2206                 pkt_type = NES_PKT_TYPE_ACK;
2207         }
2208         if (tcph->fin)
2209                 fin_set = 1;
2210
2211         switch (pkt_type) {
2212         case NES_PKT_TYPE_SYN:
2213                 handle_syn_pkt(cm_node, skb, tcph);
2214                 break;
2215         case NES_PKT_TYPE_SYNACK:
2216                 handle_synack_pkt(cm_node, skb, tcph);
2217                 break;
2218         case NES_PKT_TYPE_ACK:
2219                 ret = handle_ack_pkt(cm_node, skb, tcph);
2220                 if (fin_set && !ret)
2221                         handle_fin_pkt(cm_node);
2222                 break;
2223         case NES_PKT_TYPE_RST:
2224                 handle_rst_pkt(cm_node, skb, tcph);
2225                 break;
2226         default:
2227                 if ((fin_set) && (!check_seq(cm_node, tcph, skb)))
2228                         handle_fin_pkt(cm_node);
2229                 drop_packet(skb);
2230                 break;
2231         }
2232 }
2233
2234 /**
2235  * mini_cm_listen - create a listen node with params
2236  */
2237 static struct nes_cm_listener *mini_cm_listen(struct nes_cm_core *cm_core,
2238                                               struct nes_vnic *nesvnic, struct nes_cm_info *cm_info)
2239 {
2240         struct nes_cm_listener *listener;
2241         unsigned long flags;
2242
2243         nes_debug(NES_DBG_CM, "Search for 0x%08x : 0x%04x\n",
2244                   cm_info->loc_addr, cm_info->loc_port);
2245
2246         /* cannot have multiple matching listeners */
2247         listener = find_listener(cm_core, htonl(cm_info->loc_addr),
2248                                  htons(cm_info->loc_port), NES_CM_LISTENER_EITHER_STATE);
2249         if (listener && listener->listener_state == NES_CM_LISTENER_ACTIVE_STATE) {
2250                 /* find automatically incs ref count ??? */
2251                 atomic_dec(&listener->ref_count);
2252                 nes_debug(NES_DBG_CM, "Not creating listener since it already exists\n");
2253                 return NULL;
2254         }
2255
2256         if (!listener) {
2257                 /* create a CM listen node (1/2 node to compare incoming traffic to) */
2258                 listener = kzalloc(sizeof(*listener), GFP_ATOMIC);
2259                 if (!listener) {
2260                         nes_debug(NES_DBG_CM, "Not creating listener memory allocation failed\n");
2261                         return NULL;
2262                 }
2263
2264                 listener->loc_addr = htonl(cm_info->loc_addr);
2265                 listener->loc_port = htons(cm_info->loc_port);
2266                 listener->reused_node = 0;
2267
2268                 atomic_set(&listener->ref_count, 1);
2269         }
2270         /* pasive case */
2271         /* find already inc'ed the ref count */
2272         else {
2273                 listener->reused_node = 1;
2274         }
2275
2276         listener->cm_id = cm_info->cm_id;
2277         atomic_set(&listener->pend_accepts_cnt, 0);
2278         listener->cm_core = cm_core;
2279         listener->nesvnic = nesvnic;
2280         atomic_inc(&cm_core->node_cnt);
2281
2282         listener->conn_type = cm_info->conn_type;
2283         listener->backlog = cm_info->backlog;
2284         listener->listener_state = NES_CM_LISTENER_ACTIVE_STATE;
2285
2286         if (!listener->reused_node) {
2287                 spin_lock_irqsave(&cm_core->listen_list_lock, flags);
2288                 list_add(&listener->list, &cm_core->listen_list.list);
2289                 spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
2290                 atomic_inc(&cm_core->listen_node_cnt);
2291         }
2292
2293         nes_debug(NES_DBG_CM, "Api - listen(): addr=0x%08X, port=0x%04x,"
2294                   " listener = %p, backlog = %d, cm_id = %p.\n",
2295                   cm_info->loc_addr, cm_info->loc_port,
2296                   listener, listener->backlog, listener->cm_id);
2297
2298         return listener;
2299 }
2300
2301
2302 /**
2303  * mini_cm_connect - make a connection node with params
2304  */
2305 static struct nes_cm_node *mini_cm_connect(struct nes_cm_core *cm_core,
2306                                            struct nes_vnic *nesvnic, u16 private_data_len,
2307                                            void *private_data, struct nes_cm_info *cm_info)
2308 {
2309         int ret = 0;
2310         struct nes_cm_node *cm_node;
2311         struct nes_cm_listener *loopbackremotelistener;
2312         struct nes_cm_node *loopbackremotenode;
2313         struct nes_cm_info loopback_cm_info;
2314         u8 *start_buff;
2315
2316         /* create a CM connection node */
2317         cm_node = make_cm_node(cm_core, nesvnic, cm_info, NULL);
2318         if (!cm_node)
2319                 return NULL;
2320
2321         /* set our node side to client (active) side */
2322         cm_node->tcp_cntxt.client = 1;
2323         cm_node->tcp_cntxt.rcv_wscale = NES_CM_DEFAULT_RCV_WND_SCALE;
2324
2325         if (cm_info->loc_addr == cm_info->rem_addr) {
2326                 loopbackremotelistener = find_listener(cm_core,
2327                                                        ntohl(nesvnic->local_ipaddr), cm_node->rem_port,
2328                                                        NES_CM_LISTENER_ACTIVE_STATE);
2329                 if (loopbackremotelistener == NULL) {
2330                         create_event(cm_node, NES_CM_EVENT_ABORTED);
2331                 } else {
2332                         loopback_cm_info = *cm_info;
2333                         loopback_cm_info.loc_port = cm_info->rem_port;
2334                         loopback_cm_info.rem_port = cm_info->loc_port;
2335                         loopback_cm_info.cm_id = loopbackremotelistener->cm_id;
2336                         loopbackremotenode = make_cm_node(cm_core, nesvnic,
2337                                                           &loopback_cm_info, loopbackremotelistener);
2338                         if (!loopbackremotenode) {
2339                                 rem_ref_cm_node(cm_node->cm_core, cm_node);
2340                                 return NULL;
2341                         }
2342                         atomic_inc(&cm_loopbacks);
2343                         loopbackremotenode->loopbackpartner = cm_node;
2344                         loopbackremotenode->tcp_cntxt.rcv_wscale =
2345                                 NES_CM_DEFAULT_RCV_WND_SCALE;
2346                         cm_node->loopbackpartner = loopbackremotenode;
2347                         memcpy(loopbackremotenode->mpa_frame_buf, private_data,
2348                                private_data_len);
2349                         loopbackremotenode->mpa_frame_size = private_data_len;
2350
2351                         /* we are done handling this state. */
2352                         /* set node to a TSA state */
2353                         cm_node->state = NES_CM_STATE_TSA;
2354                         cm_node->tcp_cntxt.rcv_nxt =
2355                                 loopbackremotenode->tcp_cntxt.loc_seq_num;
2356                         loopbackremotenode->tcp_cntxt.rcv_nxt =
2357                                 cm_node->tcp_cntxt.loc_seq_num;
2358                         cm_node->tcp_cntxt.max_snd_wnd =
2359                                 loopbackremotenode->tcp_cntxt.rcv_wnd;
2360                         loopbackremotenode->tcp_cntxt.max_snd_wnd =
2361                                 cm_node->tcp_cntxt.rcv_wnd;
2362                         cm_node->tcp_cntxt.snd_wnd =
2363                                 loopbackremotenode->tcp_cntxt.rcv_wnd;
2364                         loopbackremotenode->tcp_cntxt.snd_wnd =
2365                                 cm_node->tcp_cntxt.rcv_wnd;
2366                         cm_node->tcp_cntxt.snd_wscale =
2367                                 loopbackremotenode->tcp_cntxt.rcv_wscale;
2368                         loopbackremotenode->tcp_cntxt.snd_wscale =
2369                                 cm_node->tcp_cntxt.rcv_wscale;
2370                         loopbackremotenode->state = NES_CM_STATE_MPAREQ_RCVD;
2371                         create_event(loopbackremotenode, NES_CM_EVENT_MPA_REQ);
2372                 }
2373                 return cm_node;
2374         }
2375
2376         start_buff = &cm_node->mpa_frame_buf[0] + sizeof(struct ietf_mpa_v2);
2377         cm_node->mpa_frame_size = private_data_len;
2378
2379         memcpy(start_buff, private_data, private_data_len);
2380
2381         /* send a syn and goto syn sent state */
2382         cm_node->state = NES_CM_STATE_SYN_SENT;
2383         ret = send_syn(cm_node, 0, NULL);
2384
2385         if (ret) {
2386                 /* error in sending the syn free up the cm_node struct */
2387                 nes_debug(NES_DBG_CM, "Api - connect() FAILED: dest "
2388                           "addr=0x%08X, port=0x%04x, cm_node=%p, cm_id = %p.\n",
2389                           cm_node->rem_addr, cm_node->rem_port, cm_node,
2390                           cm_node->cm_id);
2391                 rem_ref_cm_node(cm_node->cm_core, cm_node);
2392                 cm_node = NULL;
2393         }
2394
2395         if (cm_node) {
2396                 nes_debug(NES_DBG_CM, "Api - connect(): dest addr=0x%08X,"
2397                           "port=0x%04x, cm_node=%p, cm_id = %p.\n",
2398                           cm_node->rem_addr, cm_node->rem_port, cm_node,
2399                           cm_node->cm_id);
2400         }
2401
2402         return cm_node;
2403 }
2404
2405
2406 /**
2407  * mini_cm_accept - accept a connection
2408  * This function is never called
2409  */
2410 static int mini_cm_accept(struct nes_cm_core *cm_core, struct nes_cm_node *cm_node)
2411 {
2412         return 0;
2413 }
2414
2415
2416 /**
2417  * mini_cm_reject - reject and teardown a connection
2418  */
2419 static int mini_cm_reject(struct nes_cm_core *cm_core, struct nes_cm_node *cm_node)
2420 {
2421         int ret = 0;
2422         int err = 0;
2423         int passive_state;
2424         struct nes_cm_event event;
2425         struct iw_cm_id *cm_id = cm_node->cm_id;
2426         struct nes_cm_node *loopback = cm_node->loopbackpartner;
2427
2428         nes_debug(NES_DBG_CM, "%s cm_node=%p type=%d state=%d\n",
2429                   __func__, cm_node, cm_node->tcp_cntxt.client, cm_node->state);
2430
2431         if (cm_node->tcp_cntxt.client)
2432                 return ret;
2433         cleanup_retrans_entry(cm_node);
2434
2435         if (!loopback) {
2436                 passive_state = atomic_add_return(1, &cm_node->passive_state);
2437                 if (passive_state == NES_SEND_RESET_EVENT) {
2438                         cm_node->state = NES_CM_STATE_CLOSED;
2439                         rem_ref_cm_node(cm_core, cm_node);
2440                 } else {
2441                         if (cm_node->state == NES_CM_STATE_LISTENER_DESTROYED) {
2442                                 rem_ref_cm_node(cm_core, cm_node);
2443                         } else {
2444                                 ret = send_mpa_reject(cm_node);
2445                                 if (ret) {
2446                                         cm_node->state = NES_CM_STATE_CLOSED;
2447                                         err = send_reset(cm_node, NULL);
2448                                         if (err)
2449                                                 WARN_ON(1);
2450                                 } else {
2451                                         cm_id->add_ref(cm_id);
2452                                 }
2453                         }
2454                 }
2455         } else {
2456                 cm_node->cm_id = NULL;
2457                 if (cm_node->state == NES_CM_STATE_LISTENER_DESTROYED) {
2458                         rem_ref_cm_node(cm_core, cm_node);
2459                         rem_ref_cm_node(cm_core, loopback);
2460                 } else {
2461                         event.cm_node = loopback;
2462                         event.cm_info.rem_addr = loopback->rem_addr;
2463                         event.cm_info.loc_addr = loopback->loc_addr;
2464                         event.cm_info.rem_port = loopback->rem_port;
2465                         event.cm_info.loc_port = loopback->loc_port;
2466                         event.cm_info.cm_id = loopback->cm_id;
2467                         cm_event_mpa_reject(&event);
2468                         rem_ref_cm_node(cm_core, cm_node);
2469                         loopback->state = NES_CM_STATE_CLOSING;
2470
2471                         cm_id = loopback->cm_id;
2472                         rem_ref_cm_node(cm_core, loopback);
2473                         cm_id->rem_ref(cm_id);
2474                 }
2475         }
2476
2477         return ret;
2478 }
2479
2480
2481 /**
2482  * mini_cm_close
2483  */
2484 static int mini_cm_close(struct nes_cm_core *cm_core, struct nes_cm_node *cm_node)
2485 {
2486         int ret = 0;
2487
2488         if (!cm_core || !cm_node)
2489                 return -EINVAL;
2490
2491         switch (cm_node->state) {
2492         case NES_CM_STATE_SYN_RCVD:
2493         case NES_CM_STATE_SYN_SENT:
2494         case NES_CM_STATE_ONE_SIDE_ESTABLISHED:
2495         case NES_CM_STATE_ESTABLISHED:
2496         case NES_CM_STATE_ACCEPTING:
2497         case NES_CM_STATE_MPAREQ_SENT:
2498         case NES_CM_STATE_MPAREQ_RCVD:
2499                 cleanup_retrans_entry(cm_node);
2500                 send_reset(cm_node, NULL);
2501                 break;
2502         case NES_CM_STATE_CLOSE_WAIT:
2503                 cm_node->state = NES_CM_STATE_LAST_ACK;
2504                 send_fin(cm_node, NULL);
2505                 break;
2506         case NES_CM_STATE_FIN_WAIT1:
2507         case NES_CM_STATE_FIN_WAIT2:
2508         case NES_CM_STATE_LAST_ACK:
2509         case NES_CM_STATE_TIME_WAIT:
2510         case NES_CM_STATE_CLOSING:
2511                 ret = -1;
2512                 break;
2513         case NES_CM_STATE_LISTENING:
2514                 cleanup_retrans_entry(cm_node);
2515                 send_reset(cm_node, NULL);
2516                 break;
2517         case NES_CM_STATE_MPAREJ_RCVD:
2518         case NES_CM_STATE_UNKNOWN:
2519         case NES_CM_STATE_INITED:
2520         case NES_CM_STATE_CLOSED:
2521         case NES_CM_STATE_LISTENER_DESTROYED:
2522                 ret = rem_ref_cm_node(cm_core, cm_node);
2523                 break;
2524         case NES_CM_STATE_TSA:
2525                 if (cm_node->send_entry)
2526                         printk(KERN_ERR "ERROR Close got called from STATE_TSA "
2527                                "send_entry=%p\n", cm_node->send_entry);
2528                 ret = rem_ref_cm_node(cm_core, cm_node);
2529                 break;
2530         }
2531         return ret;
2532 }
2533
2534
2535 /**
2536  * recv_pkt - recv an ETHERNET packet, and process it through CM
2537  * node state machine
2538  */
2539 static int mini_cm_recv_pkt(struct nes_cm_core *cm_core,
2540                             struct nes_vnic *nesvnic, struct sk_buff *skb)
2541 {
2542         struct nes_cm_node *cm_node = NULL;
2543         struct nes_cm_listener *listener = NULL;
2544         struct iphdr *iph;
2545         struct tcphdr *tcph;
2546         struct nes_cm_info nfo;
2547         int skb_handled = 1;
2548         __be32 tmp_daddr, tmp_saddr;
2549
2550         if (!skb)
2551                 return 0;
2552         if (skb->len < sizeof(struct iphdr) + sizeof(struct tcphdr))
2553                 return 0;
2554
2555         iph = (struct iphdr *)skb->data;
2556         tcph = (struct tcphdr *)(skb->data + sizeof(struct iphdr));
2557
2558         nfo.loc_addr = ntohl(iph->daddr);
2559         nfo.loc_port = ntohs(tcph->dest);
2560         nfo.rem_addr = ntohl(iph->saddr);
2561         nfo.rem_port = ntohs(tcph->source);
2562
2563         tmp_daddr = cpu_to_be32(iph->daddr);
2564         tmp_saddr = cpu_to_be32(iph->saddr);
2565
2566         nes_debug(NES_DBG_CM, "Received packet: dest=%pI4:0x%04X src=%pI4:0x%04X\n",
2567                   &tmp_daddr, tcph->dest, &tmp_saddr, tcph->source);
2568
2569         do {
2570                 cm_node = find_node(cm_core,
2571                                     nfo.rem_port, nfo.rem_addr,
2572                                     nfo.loc_port, nfo.loc_addr);
2573
2574                 if (!cm_node) {
2575                         /* Only type of packet accepted are for */
2576                         /* the PASSIVE open (syn only) */
2577                         if ((!tcph->syn) || (tcph->ack)) {
2578                                 skb_handled = 0;
2579                                 break;
2580                         }
2581                         listener = find_listener(cm_core, nfo.loc_addr,
2582                                                  nfo.loc_port,
2583                                                  NES_CM_LISTENER_ACTIVE_STATE);
2584                         if (!listener) {
2585                                 nfo.cm_id = NULL;
2586                                 nfo.conn_type = 0;
2587                                 nes_debug(NES_DBG_CM, "Unable to find listener for the pkt\n");
2588                                 skb_handled = 0;
2589                                 break;
2590                         }
2591                         nfo.cm_id = listener->cm_id;
2592                         nfo.conn_type = listener->conn_type;
2593                         cm_node = make_cm_node(cm_core, nesvnic, &nfo,
2594                                                listener);
2595                         if (!cm_node) {
2596                                 nes_debug(NES_DBG_CM, "Unable to allocate "
2597                                           "node\n");
2598                                 cm_packets_dropped++;
2599                                 atomic_dec(&listener->ref_count);
2600                                 dev_kfree_skb_any(skb);
2601                                 break;
2602                         }
2603                         if (!tcph->rst && !tcph->fin) {
2604                                 cm_node->state = NES_CM_STATE_LISTENING;
2605                         } else {
2606                                 cm_packets_dropped++;
2607                                 rem_ref_cm_node(cm_core, cm_node);
2608                                 dev_kfree_skb_any(skb);
2609                                 break;
2610                         }
2611                         add_ref_cm_node(cm_node);
2612                 } else if (cm_node->state == NES_CM_STATE_TSA) {
2613                         if (cm_node->nesqp->pau_mode)
2614                                 nes_queue_mgt_skbs(skb, nesvnic, cm_node->nesqp);
2615                         else {
2616                                 rem_ref_cm_node(cm_core, cm_node);
2617                                 atomic_inc(&cm_accel_dropped_pkts);
2618                                 dev_kfree_skb_any(skb);
2619                         }
2620                         break;
2621                 }
2622                 skb_reset_network_header(skb);
2623                 skb_set_transport_header(skb, sizeof(*tcph));
2624                 skb->len = ntohs(iph->tot_len);
2625                 process_packet(cm_node, skb, cm_core);
2626                 rem_ref_cm_node(cm_core, cm_node);
2627         } while (0);
2628         return skb_handled;
2629 }
2630
2631
2632 /**
2633  * nes_cm_alloc_core - allocate a top level instance of a cm core
2634  */
2635 static struct nes_cm_core *nes_cm_alloc_core(void)
2636 {
2637         struct nes_cm_core *cm_core;
2638
2639         /* setup the CM core */
2640         /* alloc top level core control structure */
2641         cm_core = kzalloc(sizeof(*cm_core), GFP_KERNEL);
2642         if (!cm_core)
2643                 return NULL;
2644
2645         INIT_LIST_HEAD(&cm_core->connected_nodes);
2646         init_timer(&cm_core->tcp_timer);
2647         cm_core->tcp_timer.function = nes_cm_timer_tick;
2648
2649         cm_core->mtu = NES_CM_DEFAULT_MTU;
2650         cm_core->state = NES_CM_STATE_INITED;
2651         cm_core->free_tx_pkt_max = NES_CM_DEFAULT_FREE_PKTS;
2652
2653         atomic_set(&cm_core->events_posted, 0);
2654
2655         cm_core->api = &nes_cm_api;
2656
2657         spin_lock_init(&cm_core->ht_lock);
2658         spin_lock_init(&cm_core->listen_list_lock);
2659
2660         INIT_LIST_HEAD(&cm_core->listen_list.list);
2661
2662         nes_debug(NES_DBG_CM, "Init CM Core completed -- cm_core=%p\n", cm_core);
2663
2664         nes_debug(NES_DBG_CM, "Enable QUEUE EVENTS\n");
2665         cm_core->event_wq = create_singlethread_workqueue("nesewq");
2666         cm_core->post_event = nes_cm_post_event;
2667         nes_debug(NES_DBG_CM, "Enable QUEUE DISCONNECTS\n");
2668         cm_core->disconn_wq = create_singlethread_workqueue("nesdwq");
2669
2670         print_core(cm_core);
2671         return cm_core;
2672 }
2673
2674
2675 /**
2676  * mini_cm_dealloc_core - deallocate a top level instance of a cm core
2677  */
2678 static int mini_cm_dealloc_core(struct nes_cm_core *cm_core)
2679 {
2680         nes_debug(NES_DBG_CM, "De-Alloc CM Core (%p)\n", cm_core);
2681
2682         if (!cm_core)
2683                 return -EINVAL;
2684
2685         barrier();
2686
2687         if (timer_pending(&cm_core->tcp_timer))
2688                 del_timer(&cm_core->tcp_timer);
2689
2690         destroy_workqueue(cm_core->event_wq);
2691         destroy_workqueue(cm_core->disconn_wq);
2692         nes_debug(NES_DBG_CM, "\n");
2693         kfree(cm_core);
2694
2695         return 0;
2696 }
2697
2698
2699 /**
2700  * mini_cm_get
2701  */
2702 static int mini_cm_get(struct nes_cm_core *cm_core)
2703 {
2704         return cm_core->state;
2705 }
2706
2707
2708 /**
2709  * mini_cm_set
2710  */
2711 static int mini_cm_set(struct nes_cm_core *cm_core, u32 type, u32 value)
2712 {
2713         int ret = 0;
2714
2715         switch (type) {
2716         case NES_CM_SET_PKT_SIZE:
2717                 cm_core->mtu = value;
2718                 break;
2719         case NES_CM_SET_FREE_PKT_Q_SIZE:
2720                 cm_core->free_tx_pkt_max = value;
2721                 break;
2722         default:
2723                 /* unknown set option */
2724                 ret = -EINVAL;
2725         }
2726
2727         return ret;
2728 }
2729
2730
2731 /**
2732  * nes_cm_init_tsa_conn setup HW; MPA frames must be
2733  * successfully exchanged when this is called
2734  */
2735 static int nes_cm_init_tsa_conn(struct nes_qp *nesqp, struct nes_cm_node *cm_node)
2736 {
2737         int ret = 0;
2738
2739         if (!nesqp)
2740                 return -EINVAL;
2741
2742         nesqp->nesqp_context->misc |= cpu_to_le32(NES_QPCONTEXT_MISC_IPV4 |
2743                                                   NES_QPCONTEXT_MISC_NO_NAGLE | NES_QPCONTEXT_MISC_DO_NOT_FRAG |
2744                                                   NES_QPCONTEXT_MISC_DROS);
2745
2746         if (cm_node->tcp_cntxt.snd_wscale || cm_node->tcp_cntxt.rcv_wscale)
2747                 nesqp->nesqp_context->misc |= cpu_to_le32(NES_QPCONTEXT_MISC_WSCALE);
2748
2749         nesqp->nesqp_context->misc2 |= cpu_to_le32(64 << NES_QPCONTEXT_MISC2_TTL_SHIFT);
2750
2751         nesqp->nesqp_context->mss |= cpu_to_le32(((u32)cm_node->tcp_cntxt.mss) << 16);
2752
2753         nesqp->nesqp_context->tcp_state_flow_label |= cpu_to_le32(
2754                 (u32)NES_QPCONTEXT_TCPSTATE_EST << NES_QPCONTEXT_TCPFLOW_TCP_STATE_SHIFT);
2755
2756         nesqp->nesqp_context->pd_index_wscale |= cpu_to_le32(
2757                 (cm_node->tcp_cntxt.snd_wscale << NES_QPCONTEXT_PDWSCALE_SND_WSCALE_SHIFT) &
2758                 NES_QPCONTEXT_PDWSCALE_SND_WSCALE_MASK);
2759
2760         nesqp->nesqp_context->pd_index_wscale |= cpu_to_le32(
2761                 (cm_node->tcp_cntxt.rcv_wscale << NES_QPCONTEXT_PDWSCALE_RCV_WSCALE_SHIFT) &
2762                 NES_QPCONTEXT_PDWSCALE_RCV_WSCALE_MASK);
2763
2764         nesqp->nesqp_context->keepalive = cpu_to_le32(0x80);
2765         nesqp->nesqp_context->ts_recent = 0;
2766         nesqp->nesqp_context->ts_age = 0;
2767         nesqp->nesqp_context->snd_nxt = cpu_to_le32(cm_node->tcp_cntxt.loc_seq_num);
2768         nesqp->nesqp_context->snd_wnd = cpu_to_le32(cm_node->tcp_cntxt.snd_wnd);
2769         nesqp->nesqp_context->rcv_nxt = cpu_to_le32(cm_node->tcp_cntxt.rcv_nxt);
2770         nesqp->nesqp_context->rcv_wnd = cpu_to_le32(cm_node->tcp_cntxt.rcv_wnd <<
2771                                                     cm_node->tcp_cntxt.rcv_wscale);
2772         nesqp->nesqp_context->snd_max = cpu_to_le32(cm_node->tcp_cntxt.loc_seq_num);
2773         nesqp->nesqp_context->snd_una = cpu_to_le32(cm_node->tcp_cntxt.loc_seq_num);
2774         nesqp->nesqp_context->srtt = 0;
2775         nesqp->nesqp_context->rttvar = cpu_to_le32(0x6);
2776         nesqp->nesqp_context->ssthresh = cpu_to_le32(0x3FFFC000);
2777         nesqp->nesqp_context->cwnd = cpu_to_le32(2 * cm_node->tcp_cntxt.mss);
2778         nesqp->nesqp_context->snd_wl1 = cpu_to_le32(cm_node->tcp_cntxt.rcv_nxt);
2779         nesqp->nesqp_context->snd_wl2 = cpu_to_le32(cm_node->tcp_cntxt.loc_seq_num);
2780         nesqp->nesqp_context->max_snd_wnd = cpu_to_le32(cm_node->tcp_cntxt.max_snd_wnd);
2781
2782         nes_debug(NES_DBG_CM, "QP%u: rcv_nxt = 0x%08X, snd_nxt = 0x%08X,"
2783                   " Setting MSS to %u, PDWscale = 0x%08X, rcv_wnd = %u, context misc = 0x%08X.\n",
2784                   nesqp->hwqp.qp_id, le32_to_cpu(nesqp->nesqp_context->rcv_nxt),
2785                   le32_to_cpu(nesqp->nesqp_context->snd_nxt),
2786                   cm_node->tcp_cntxt.mss, le32_to_cpu(nesqp->nesqp_context->pd_index_wscale),
2787                   le32_to_cpu(nesqp->nesqp_context->rcv_wnd),
2788                   le32_to_cpu(nesqp->nesqp_context->misc));
2789         nes_debug(NES_DBG_CM, "  snd_wnd  = 0x%08X.\n", le32_to_cpu(nesqp->nesqp_context->snd_wnd));
2790         nes_debug(NES_DBG_CM, "  snd_cwnd = 0x%08X.\n", le32_to_cpu(nesqp->nesqp_context->cwnd));
2791         nes_debug(NES_DBG_CM, "  max_swnd = 0x%08X.\n", le32_to_cpu(nesqp->nesqp_context->max_snd_wnd));
2792
2793         nes_debug(NES_DBG_CM, "Change cm_node state to TSA\n");
2794         cm_node->state = NES_CM_STATE_TSA;
2795
2796         return ret;
2797 }
2798
2799
2800 /**
2801  * nes_cm_disconn
2802  */
2803 int nes_cm_disconn(struct nes_qp *nesqp)
2804 {
2805         struct disconn_work *work;
2806
2807         work = kzalloc(sizeof *work, GFP_ATOMIC);
2808         if (!work)
2809                 return -ENOMEM;  /* Timer will clean up */
2810
2811         nes_add_ref(&nesqp->ibqp);
2812         work->nesqp = nesqp;
2813         INIT_WORK(&work->work, nes_disconnect_worker);
2814         queue_work(g_cm_core->disconn_wq, &work->work);
2815         return 0;
2816 }
2817
2818
2819 /**
2820  * nes_disconnect_worker
2821  */
2822 static void nes_disconnect_worker(struct work_struct *work)
2823 {
2824         struct disconn_work *dwork = container_of(work, struct disconn_work, work);
2825         struct nes_qp *nesqp = dwork->nesqp;
2826
2827         kfree(dwork);
2828         nes_debug(NES_DBG_CM, "processing AEQE id 0x%04X for QP%u.\n",
2829                   nesqp->last_aeq, nesqp->hwqp.qp_id);
2830         nes_cm_disconn_true(nesqp);
2831         nes_rem_ref(&nesqp->ibqp);
2832 }
2833
2834
2835 /**
2836  * nes_cm_disconn_true
2837  */
2838 static int nes_cm_disconn_true(struct nes_qp *nesqp)
2839 {
2840         unsigned long flags;
2841         int ret = 0;
2842         struct iw_cm_id *cm_id;
2843         struct iw_cm_event cm_event;
2844         struct nes_vnic *nesvnic;
2845         u16 last_ae;
2846         u8 original_hw_tcp_state;
2847         u8 original_ibqp_state;
2848         int disconn_status = 0;
2849         int issue_disconn = 0;
2850         int issue_close = 0;
2851         int issue_flush = 0;
2852         u32 flush_q = NES_CQP_FLUSH_RQ;
2853         struct ib_event ibevent;
2854
2855         if (!nesqp) {
2856                 nes_debug(NES_DBG_CM, "disconnect_worker nesqp is NULL\n");
2857                 return -1;
2858         }
2859
2860         spin_lock_irqsave(&nesqp->lock, flags);
2861         cm_id = nesqp->cm_id;
2862         /* make sure we havent already closed this connection */
2863         if (!cm_id) {
2864                 nes_debug(NES_DBG_CM, "QP%u disconnect_worker cmid is NULL\n",
2865                           nesqp->hwqp.qp_id);
2866                 spin_unlock_irqrestore(&nesqp->lock, flags);
2867                 return -1;
2868         }
2869
2870         nesvnic = to_nesvnic(nesqp->ibqp.device);
2871         nes_debug(NES_DBG_CM, "Disconnecting QP%u\n", nesqp->hwqp.qp_id);
2872
2873         original_hw_tcp_state = nesqp->hw_tcp_state;
2874         original_ibqp_state = nesqp->ibqp_state;
2875         last_ae = nesqp->last_aeq;
2876
2877         if (nesqp->term_flags) {
2878                 issue_disconn = 1;
2879                 issue_close = 1;
2880                 nesqp->cm_id = NULL;
2881                 del_timer(&nesqp->terminate_timer);
2882                 if (nesqp->flush_issued == 0) {
2883                         nesqp->flush_issued = 1;
2884                         issue_flush = 1;
2885                 }
2886         } else if ((original_hw_tcp_state == NES_AEQE_TCP_STATE_CLOSE_WAIT) ||
2887                         ((original_ibqp_state == IB_QPS_RTS) &&
2888                         (last_ae == NES_AEQE_AEID_LLP_CONNECTION_RESET))) {
2889                 issue_disconn = 1;
2890                 if (last_ae == NES_AEQE_AEID_LLP_CONNECTION_RESET)
2891                         disconn_status = -ECONNRESET;
2892         }
2893
2894         if (((original_hw_tcp_state == NES_AEQE_TCP_STATE_CLOSED) ||
2895                  (original_hw_tcp_state == NES_AEQE_TCP_STATE_TIME_WAIT) ||
2896                  (last_ae == NES_AEQE_AEID_RDMAP_ROE_BAD_LLP_CLOSE) ||
2897                  (last_ae == NES_AEQE_AEID_LLP_CONNECTION_RESET))) {
2898                 issue_close = 1;
2899                 nesqp->cm_id = NULL;
2900                 if (nesqp->flush_issued == 0) {
2901                         nesqp->flush_issued = 1;
2902                         issue_flush = 1;
2903                 }
2904         }
2905
2906         spin_unlock_irqrestore(&nesqp->lock, flags);
2907
2908         if ((issue_flush) && (nesqp->destroyed == 0)) {
2909                 /* Flush the queue(s) */
2910                 if (nesqp->hw_iwarp_state >= NES_AEQE_IWARP_STATE_TERMINATE)
2911                         flush_q |= NES_CQP_FLUSH_SQ;
2912                 flush_wqes(nesvnic->nesdev, nesqp, flush_q, 1);
2913
2914                 if (nesqp->term_flags) {
2915                         ibevent.device = nesqp->ibqp.device;
2916                         ibevent.event = nesqp->terminate_eventtype;
2917                         ibevent.element.qp = &nesqp->ibqp;
2918                         if (nesqp->ibqp.event_handler)
2919                                 nesqp->ibqp.event_handler(&ibevent, nesqp->ibqp.qp_context);
2920                 }
2921         }
2922
2923         if ((cm_id) && (cm_id->event_handler)) {
2924                 if (issue_disconn) {
2925                         atomic_inc(&cm_disconnects);
2926                         cm_event.event = IW_CM_EVENT_DISCONNECT;
2927                         cm_event.status = disconn_status;
2928                         cm_event.local_addr = cm_id->local_addr;
2929                         cm_event.remote_addr = cm_id->remote_addr;
2930                         cm_event.private_data = NULL;
2931                         cm_event.private_data_len = 0;
2932
2933                         nes_debug(NES_DBG_CM, "Generating a CM Disconnect Event"
2934                                   " for  QP%u, SQ Head = %u, SQ Tail = %u. "
2935                                   "cm_id = %p, refcount = %u.\n",
2936                                   nesqp->hwqp.qp_id, nesqp->hwqp.sq_head,
2937                                   nesqp->hwqp.sq_tail, cm_id,
2938                                   atomic_read(&nesqp->refcount));
2939
2940                         ret = cm_id->event_handler(cm_id, &cm_event);
2941                         if (ret)
2942                                 nes_debug(NES_DBG_CM, "OFA CM event_handler "
2943                                           "returned, ret=%d\n", ret);
2944                 }
2945
2946                 if (issue_close) {
2947                         atomic_inc(&cm_closes);
2948                         nes_disconnect(nesqp, 1);
2949
2950                         cm_id->provider_data = nesqp;
2951                         /* Send up the close complete event */
2952                         cm_event.event = IW_CM_EVENT_CLOSE;
2953                         cm_event.status = 0;
2954                         cm_event.provider_data = cm_id->provider_data;
2955                         cm_event.local_addr = cm_id->local_addr;
2956                         cm_event.remote_addr = cm_id->remote_addr;
2957                         cm_event.private_data = NULL;
2958                         cm_event.private_data_len = 0;
2959
2960                         ret = cm_id->event_handler(cm_id, &cm_event);
2961                         if (ret)
2962                                 nes_debug(NES_DBG_CM, "OFA CM event_handler returned, ret=%d\n", ret);
2963
2964                         cm_id->rem_ref(cm_id);
2965                 }
2966         }
2967
2968         return 0;
2969 }
2970
2971
2972 /**
2973  * nes_disconnect
2974  */
2975 static int nes_disconnect(struct nes_qp *nesqp, int abrupt)
2976 {
2977         int ret = 0;
2978         struct nes_vnic *nesvnic;
2979         struct nes_device *nesdev;
2980         struct nes_ib_device *nesibdev;
2981
2982         nesvnic = to_nesvnic(nesqp->ibqp.device);
2983         if (!nesvnic)
2984                 return -EINVAL;
2985
2986         nesdev = nesvnic->nesdev;
2987         nesibdev = nesvnic->nesibdev;
2988
2989         nes_debug(NES_DBG_CM, "netdev refcnt = %u.\n",
2990                         netdev_refcnt_read(nesvnic->netdev));
2991
2992         if (nesqp->active_conn) {
2993
2994                 /* indicate this connection is NOT active */
2995                 nesqp->active_conn = 0;
2996         } else {
2997                 /* Need to free the Last Streaming Mode Message */
2998                 if (nesqp->ietf_frame) {
2999                         if (nesqp->lsmm_mr)
3000                                 nesibdev->ibdev.dereg_mr(nesqp->lsmm_mr);
3001                         pci_free_consistent(nesdev->pcidev,
3002                                             nesqp->private_data_len + nesqp->ietf_frame_size,
3003                                             nesqp->ietf_frame, nesqp->ietf_frame_pbase);
3004                 }
3005         }
3006
3007         /* close the CM node down if it is still active */
3008         if (nesqp->cm_node) {
3009                 nes_debug(NES_DBG_CM, "Call close API\n");
3010
3011                 g_cm_core->api->close(g_cm_core, nesqp->cm_node);
3012         }
3013
3014         return ret;
3015 }
3016
3017
3018 /**
3019  * nes_accept
3020  */
3021 int nes_accept(struct iw_cm_id *cm_id, struct iw_cm_conn_param *conn_param)
3022 {
3023         u64 u64temp;
3024         struct ib_qp *ibqp;
3025         struct nes_qp *nesqp;
3026         struct nes_vnic *nesvnic;
3027         struct nes_device *nesdev;
3028         struct nes_cm_node *cm_node;
3029         struct nes_adapter *adapter;
3030         struct ib_qp_attr attr;
3031         struct iw_cm_event cm_event;
3032         struct nes_hw_qp_wqe *wqe;
3033         struct nes_v4_quad nes_quad;
3034         u32 crc_value;
3035         int ret;
3036         int passive_state;
3037         struct nes_ib_device *nesibdev;
3038         struct ib_mr *ibmr = NULL;
3039         struct ib_phys_buf ibphysbuf;
3040         struct nes_pd *nespd;
3041         u64 tagged_offset;
3042         u8 mpa_frame_offset = 0;
3043         struct ietf_mpa_v2 *mpa_v2_frame;
3044         u8 start_addr = 0;
3045         u8 *start_ptr = &start_addr;
3046         u8 **start_buff = &start_ptr;
3047         u16 buff_len = 0;
3048         struct sockaddr_in *laddr = (struct sockaddr_in *)&cm_id->local_addr;
3049         struct sockaddr_in *raddr = (struct sockaddr_in *)&cm_id->remote_addr;
3050
3051         ibqp = nes_get_qp(cm_id->device, conn_param->qpn);
3052         if (!ibqp)
3053                 return -EINVAL;
3054
3055         /* get all our handles */
3056         nesqp = to_nesqp(ibqp);
3057         nesvnic = to_nesvnic(nesqp->ibqp.device);
3058         nesdev = nesvnic->nesdev;
3059         adapter = nesdev->nesadapter;
3060
3061         cm_node = (struct nes_cm_node *)cm_id->provider_data;
3062         nes_debug(NES_DBG_CM, "nes_accept: cm_node= %p nesvnic=%p, netdev=%p,"
3063                 "%s\n", cm_node, nesvnic, nesvnic->netdev,
3064                 nesvnic->netdev->name);
3065
3066         if (NES_CM_STATE_LISTENER_DESTROYED == cm_node->state) {
3067                 if (cm_node->loopbackpartner)
3068                         rem_ref_cm_node(cm_node->cm_core, cm_node->loopbackpartner);
3069                 rem_ref_cm_node(cm_node->cm_core, cm_node);
3070                 return -EINVAL;
3071         }
3072
3073         passive_state = atomic_add_return(1, &cm_node->passive_state);
3074         if (passive_state == NES_SEND_RESET_EVENT) {
3075                 rem_ref_cm_node(cm_node->cm_core, cm_node);
3076                 return -ECONNRESET;
3077         }
3078         /* associate the node with the QP */
3079         nesqp->cm_node = (void *)cm_node;
3080         cm_node->nesqp = nesqp;
3081
3082
3083         nes_debug(NES_DBG_CM, "QP%u, cm_node=%p, jiffies = %lu listener = %p\n",
3084                 nesqp->hwqp.qp_id, cm_node, jiffies, cm_node->listener);
3085         atomic_inc(&cm_accepts);
3086
3087         nes_debug(NES_DBG_CM, "netdev refcnt = %u.\n",
3088                         netdev_refcnt_read(nesvnic->netdev));
3089
3090         nesqp->ietf_frame_size = sizeof(struct ietf_mpa_v2);
3091         /* allocate the ietf frame and space for private data */
3092         nesqp->ietf_frame = pci_alloc_consistent(nesdev->pcidev,
3093                                                  nesqp->ietf_frame_size + conn_param->private_data_len,
3094                                                  &nesqp->ietf_frame_pbase);
3095
3096         if (!nesqp->ietf_frame) {
3097                 nes_debug(NES_DBG_CM, "Unable to allocate memory for private data\n");
3098                 return -ENOMEM;
3099         }
3100         mpa_v2_frame = (struct ietf_mpa_v2 *)nesqp->ietf_frame;
3101
3102         if (cm_node->mpa_frame_rev == IETF_MPA_V1)
3103                 mpa_frame_offset = 4;
3104
3105         if (cm_node->mpa_frame_rev == IETF_MPA_V1 ||
3106                         cm_node->mpav2_ird_ord == IETF_NO_IRD_ORD) {
3107                 record_ird_ord(cm_node, (u16)conn_param->ird, (u16)conn_param->ord);
3108         }
3109
3110         memcpy(mpa_v2_frame->priv_data, conn_param->private_data,
3111                conn_param->private_data_len);
3112
3113         cm_build_mpa_frame(cm_node, start_buff, &buff_len, nesqp->ietf_frame, MPA_KEY_REPLY);
3114         nesqp->private_data_len = conn_param->private_data_len;
3115
3116         /* setup our first outgoing iWarp send WQE (the IETF frame response) */
3117         wqe = &nesqp->hwqp.sq_vbase[0];
3118
3119         if (raddr->sin_addr.s_addr != laddr->sin_addr.s_addr) {
3120                 u64temp = (unsigned long)nesqp;
3121                 nesibdev = nesvnic->nesibdev;
3122                 nespd = nesqp->nespd;
3123                 ibphysbuf.addr = nesqp->ietf_frame_pbase + mpa_frame_offset;
3124                 ibphysbuf.size = buff_len;
3125                 tagged_offset = (u64)(unsigned long)*start_buff;
3126                 ibmr = nesibdev->ibdev.reg_phys_mr((struct ib_pd *)nespd,
3127                                                    &ibphysbuf, 1,
3128                                                    IB_ACCESS_LOCAL_WRITE,
3129                                                    &tagged_offset);
3130                 if (!ibmr) {
3131                         nes_debug(NES_DBG_CM, "Unable to register memory region"
3132                                   "for lSMM for cm_node = %p \n",
3133                                   cm_node);
3134                         pci_free_consistent(nesdev->pcidev,
3135                                             nesqp->private_data_len + nesqp->ietf_frame_size,
3136                                             nesqp->ietf_frame, nesqp->ietf_frame_pbase);
3137                         return -ENOMEM;
3138                 }
3139
3140                 ibmr->pd = &nespd->ibpd;
3141                 ibmr->device = nespd->ibpd.device;
3142                 nesqp->lsmm_mr = ibmr;
3143
3144                 u64temp |= NES_SW_CONTEXT_ALIGN >> 1;
3145                 set_wqe_64bit_value(wqe->wqe_words,
3146                                     NES_IWARP_SQ_WQE_COMP_CTX_LOW_IDX,
3147                                     u64temp);
3148                 wqe->wqe_words[NES_IWARP_SQ_WQE_MISC_IDX] =
3149                         cpu_to_le32(NES_IWARP_SQ_WQE_STREAMING |
3150                                     NES_IWARP_SQ_WQE_WRPDU);
3151                 wqe->wqe_words[NES_IWARP_SQ_WQE_TOTAL_PAYLOAD_IDX] =
3152                         cpu_to_le32(buff_len);
3153                 set_wqe_64bit_value(wqe->wqe_words,
3154                                     NES_IWARP_SQ_WQE_FRAG0_LOW_IDX,
3155                                     (u64)(unsigned long)(*start_buff));
3156                 wqe->wqe_words[NES_IWARP_SQ_WQE_LENGTH0_IDX] =
3157                         cpu_to_le32(buff_len);
3158                 wqe->wqe_words[NES_IWARP_SQ_WQE_STAG0_IDX] = ibmr->lkey;
3159                 if (nesqp->sq_kmapped) {
3160                         nesqp->sq_kmapped = 0;
3161                         kunmap(nesqp->page);
3162                 }
3163
3164                 nesqp->nesqp_context->ird_ord_sizes |=
3165                         cpu_to_le32(NES_QPCONTEXT_ORDIRD_LSMM_PRESENT |
3166                                     NES_QPCONTEXT_ORDIRD_WRPDU);
3167         } else {
3168                 nesqp->nesqp_context->ird_ord_sizes |=
3169                         cpu_to_le32(NES_QPCONTEXT_ORDIRD_WRPDU);
3170         }
3171         nesqp->skip_lsmm = 1;
3172
3173         /* Cache the cm_id in the qp */
3174         nesqp->cm_id = cm_id;
3175         cm_node->cm_id = cm_id;
3176
3177         /*  nesqp->cm_node = (void *)cm_id->provider_data; */
3178         cm_id->provider_data = nesqp;
3179         nesqp->active_conn = 0;
3180
3181         if (cm_node->state == NES_CM_STATE_TSA)
3182                 nes_debug(NES_DBG_CM, "Already state = TSA for cm_node=%p\n",
3183                           cm_node);
3184
3185         nes_cm_init_tsa_conn(nesqp, cm_node);
3186
3187         nesqp->nesqp_context->tcpPorts[0] = cpu_to_le16(ntohs(laddr->sin_port));
3188         nesqp->nesqp_context->tcpPorts[1] = cpu_to_le16(ntohs(raddr->sin_port));
3189
3190         nesqp->nesqp_context->ip0 = cpu_to_le32(ntohl(raddr->sin_addr.s_addr));
3191
3192         nesqp->nesqp_context->misc2 |= cpu_to_le32(
3193                 (u32)PCI_FUNC(nesdev->pcidev->devfn) <<
3194                 NES_QPCONTEXT_MISC2_SRC_IP_SHIFT);
3195
3196         nesqp->nesqp_context->arp_index_vlan |=
3197                 cpu_to_le32(nes_arp_table(nesdev,
3198                                           le32_to_cpu(nesqp->nesqp_context->ip0), NULL,
3199                                           NES_ARP_RESOLVE) << 16);
3200
3201         nesqp->nesqp_context->ts_val_delta = cpu_to_le32(
3202                 jiffies - nes_read_indexed(nesdev, NES_IDX_TCP_NOW));
3203
3204         nesqp->nesqp_context->ird_index = cpu_to_le32(nesqp->hwqp.qp_id);
3205
3206         nesqp->nesqp_context->ird_ord_sizes |= cpu_to_le32(
3207                 ((u32)1 << NES_QPCONTEXT_ORDIRD_IWARP_MODE_SHIFT));
3208         nesqp->nesqp_context->ird_ord_sizes |=
3209                 cpu_to_le32((u32)cm_node->ord_size);
3210
3211         memset(&nes_quad, 0, sizeof(nes_quad));
3212         nes_quad.DstIpAdrIndex =
3213                 cpu_to_le32((u32)PCI_FUNC(nesdev->pcidev->devfn) << 24);
3214         nes_quad.SrcIpadr = raddr->sin_addr.s_addr;
3215         nes_quad.TcpPorts[0] = raddr->sin_port;
3216         nes_quad.TcpPorts[1] = laddr->sin_port;
3217
3218         /* Produce hash key */
3219         crc_value = get_crc_value(&nes_quad);
3220         nesqp->hte_index = cpu_to_be32(crc_value ^ 0xffffffff);
3221         nes_debug(NES_DBG_CM, "HTE Index = 0x%08X, CRC = 0x%08X\n",
3222                   nesqp->hte_index, nesqp->hte_index & adapter->hte_index_mask);
3223
3224         nesqp->hte_index &= adapter->hte_index_mask;
3225         nesqp->nesqp_context->hte_index = cpu_to_le32(nesqp->hte_index);
3226
3227         cm_node->cm_core->api->accelerated(cm_node->cm_core, cm_node);
3228
3229         nes_debug(NES_DBG_CM, "QP%u, Destination IP = 0x%08X:0x%04X, local = "
3230                   "0x%08X:0x%04X, rcv_nxt=0x%08X, snd_nxt=0x%08X, mpa + "
3231                   "private data length=%u.\n", nesqp->hwqp.qp_id,
3232                   ntohl(raddr->sin_addr.s_addr), ntohs(raddr->sin_port),
3233                   ntohl(laddr->sin_addr.s_addr), ntohs(laddr->sin_port),
3234                   le32_to_cpu(nesqp->nesqp_context->rcv_nxt),
3235                   le32_to_cpu(nesqp->nesqp_context->snd_nxt),
3236                   buff_len);
3237
3238         /* notify OF layer that accept event was successful */
3239         cm_id->add_ref(cm_id);
3240         nes_add_ref(&nesqp->ibqp);
3241
3242         cm_event.event = IW_CM_EVENT_ESTABLISHED;
3243         cm_event.status = 0;
3244         cm_event.provider_data = (void *)nesqp;
3245         cm_event.local_addr = cm_id->local_addr;
3246         cm_event.remote_addr = cm_id->remote_addr;
3247         cm_event.private_data = NULL;
3248         cm_event.private_data_len = 0;
3249         cm_event.ird = cm_node->ird_size;
3250         cm_event.ord = cm_node->ord_size;
3251
3252         ret = cm_id->event_handler(cm_id, &cm_event);
3253         attr.qp_state = IB_QPS_RTS;
3254         nes_modify_qp(&nesqp->ibqp, &attr, IB_QP_STATE, NULL);
3255         if (cm_node->loopbackpartner) {
3256                 cm_node->loopbackpartner->mpa_frame_size =
3257                         nesqp->private_data_len;
3258                 /* copy entire MPA frame to our cm_node's frame */
3259                 memcpy(cm_node->loopbackpartner->mpa_frame_buf,
3260                        conn_param->private_data, conn_param->private_data_len);
3261                 create_event(cm_node->loopbackpartner, NES_CM_EVENT_CONNECTED);
3262         }
3263         if (ret)
3264                 printk(KERN_ERR "%s[%u] OFA CM event_handler returned, "
3265                        "ret=%d\n", __func__, __LINE__, ret);
3266
3267         return 0;
3268 }
3269
3270
3271 /**
3272  * nes_reject
3273  */
3274 int nes_reject(struct iw_cm_id *cm_id, const void *pdata, u8 pdata_len)
3275 {
3276         struct nes_cm_node *cm_node;
3277         struct nes_cm_node *loopback;
3278         struct nes_cm_core *cm_core;
3279         u8 *start_buff;
3280
3281         atomic_inc(&cm_rejects);
3282         cm_node = (struct nes_cm_node *)cm_id->provider_data;
3283         loopback = cm_node->loopbackpartner;
3284         cm_core = cm_node->cm_core;
3285         cm_node->cm_id = cm_id;
3286
3287         if (pdata_len + sizeof(struct ietf_mpa_v2) > MAX_CM_BUFFER)
3288                 return -EINVAL;
3289
3290         if (loopback) {
3291                 memcpy(&loopback->mpa_frame.priv_data, pdata, pdata_len);
3292                 loopback->mpa_frame.priv_data_len = pdata_len;
3293                 loopback->mpa_frame_size = pdata_len;
3294         } else {
3295                 start_buff = &cm_node->mpa_frame_buf[0] + sizeof(struct ietf_mpa_v2);
3296                 cm_node->mpa_frame_size = pdata_len;
3297                 memcpy(start_buff, pdata, pdata_len);
3298         }
3299         return cm_core->api->reject(cm_core, cm_node);
3300 }
3301
3302
3303 /**
3304  * nes_connect
3305  * setup and launch cm connect node
3306  */
3307 int nes_connect(struct iw_cm_id *cm_id, struct iw_cm_conn_param *conn_param)
3308 {
3309         struct ib_qp *ibqp;
3310         struct nes_qp *nesqp;
3311         struct nes_vnic *nesvnic;
3312         struct nes_device *nesdev;
3313         struct nes_cm_node *cm_node;
3314         struct nes_cm_info cm_info;
3315         int apbvt_set = 0;
3316         struct sockaddr_in *laddr = (struct sockaddr_in *)&cm_id->local_addr;
3317         struct sockaddr_in *raddr = (struct sockaddr_in *)&cm_id->remote_addr;
3318
3319         if (cm_id->remote_addr.ss_family != AF_INET)
3320                 return -ENOSYS;
3321         ibqp = nes_get_qp(cm_id->device, conn_param->qpn);
3322         if (!ibqp)
3323                 return -EINVAL;
3324         nesqp = to_nesqp(ibqp);
3325         if (!nesqp)
3326                 return -EINVAL;
3327         nesvnic = to_nesvnic(nesqp->ibqp.device);
3328         if (!nesvnic)
3329                 return -EINVAL;
3330         nesdev = nesvnic->nesdev;
3331         if (!nesdev)
3332                 return -EINVAL;
3333
3334         if (!laddr->sin_port || !raddr->sin_port)
3335                 return -EINVAL;
3336
3337         nes_debug(NES_DBG_CM, "QP%u, current IP = 0x%08X, Destination IP = "
3338                   "0x%08X:0x%04X, local = 0x%08X:0x%04X.\n", nesqp->hwqp.qp_id,
3339                   ntohl(nesvnic->local_ipaddr), ntohl(raddr->sin_addr.s_addr),
3340                   ntohs(raddr->sin_port), ntohl(laddr->sin_addr.s_addr),
3341                   ntohs(laddr->sin_port));
3342
3343         atomic_inc(&cm_connects);
3344         nesqp->active_conn = 1;
3345
3346         /* cache the cm_id in the qp */
3347         nesqp->cm_id = cm_id;
3348         cm_id->provider_data = nesqp;
3349         nesqp->private_data_len = conn_param->private_data_len;
3350
3351         nes_debug(NES_DBG_CM, "requested ord = 0x%08X.\n", (u32)conn_param->ord);
3352         nes_debug(NES_DBG_CM, "mpa private data len =%u\n",
3353                   conn_param->private_data_len);
3354
3355         if (laddr->sin_addr.s_addr != raddr->sin_addr.s_addr) {
3356                 nes_manage_apbvt(nesvnic, ntohs(laddr->sin_port),
3357                                  PCI_FUNC(nesdev->pcidev->devfn),
3358                                  NES_MANAGE_APBVT_ADD);
3359                 apbvt_set = 1;
3360         }
3361
3362         /* set up the connection params for the node */
3363         cm_info.loc_addr = htonl(laddr->sin_addr.s_addr);
3364         cm_info.loc_port = htons(laddr->sin_port);
3365         cm_info.rem_addr = htonl(raddr->sin_addr.s_addr);
3366         cm_info.rem_port = htons(raddr->sin_port);
3367         cm_info.cm_id = cm_id;
3368         cm_info.conn_type = NES_CM_IWARP_CONN_TYPE;
3369
3370         cm_id->add_ref(cm_id);
3371
3372         /* create a connect CM node connection */
3373         cm_node = g_cm_core->api->connect(g_cm_core, nesvnic,
3374                                           conn_param->private_data_len, (void *)conn_param->private_data,
3375                                           &cm_info);
3376         if (!cm_node) {
3377                 if (apbvt_set)
3378                         nes_manage_apbvt(nesvnic, ntohs(laddr->sin_port),
3379                                          PCI_FUNC(nesdev->pcidev->devfn),
3380                                          NES_MANAGE_APBVT_DEL);
3381
3382                 cm_id->rem_ref(cm_id);
3383                 return -ENOMEM;
3384         }
3385
3386         record_ird_ord(cm_node, (u16)conn_param->ird, (u16)conn_param->ord);
3387         if (cm_node->send_rdma0_op == SEND_RDMA_READ_ZERO &&
3388                                 cm_node->ord_size == 0)
3389                 cm_node->ord_size = 1;
3390
3391         cm_node->apbvt_set = apbvt_set;
3392         nesqp->cm_node = cm_node;
3393         cm_node->nesqp = nesqp;
3394         nes_add_ref(&nesqp->ibqp);
3395
3396         return 0;
3397 }
3398
3399
3400 /**
3401  * nes_create_listen
3402  */
3403 int nes_create_listen(struct iw_cm_id *cm_id, int backlog)
3404 {
3405         struct nes_vnic *nesvnic;
3406         struct nes_cm_listener *cm_node;
3407         struct nes_cm_info cm_info;
3408         int err;
3409         struct sockaddr_in *laddr = (struct sockaddr_in *)&cm_id->local_addr;
3410
3411         nes_debug(NES_DBG_CM, "cm_id = %p, local port = 0x%04X.\n",
3412                   cm_id, ntohs(laddr->sin_port));
3413
3414         if (cm_id->local_addr.ss_family != AF_INET)
3415                 return -ENOSYS;
3416         nesvnic = to_nesvnic(cm_id->device);
3417         if (!nesvnic)
3418                 return -EINVAL;
3419
3420         nes_debug(NES_DBG_CM, "nesvnic=%p, netdev=%p, %s\n",
3421                         nesvnic, nesvnic->netdev, nesvnic->netdev->name);
3422
3423         nes_debug(NES_DBG_CM, "nesvnic->local_ipaddr=0x%08x, sin_addr.s_addr=0x%08x\n",
3424                         nesvnic->local_ipaddr, laddr->sin_addr.s_addr);
3425
3426         /* setup listen params in our api call struct */
3427         cm_info.loc_addr = nesvnic->local_ipaddr;
3428         cm_info.loc_port = laddr->sin_port;
3429         cm_info.backlog = backlog;
3430         cm_info.cm_id = cm_id;
3431
3432         cm_info.conn_type = NES_CM_IWARP_CONN_TYPE;
3433
3434
3435         cm_node = g_cm_core->api->listen(g_cm_core, nesvnic, &cm_info);
3436         if (!cm_node) {
3437                 printk(KERN_ERR "%s[%u] Error returned from listen API call\n",
3438                        __func__, __LINE__);
3439                 return -ENOMEM;
3440         }
3441
3442         cm_id->provider_data = cm_node;
3443
3444         if (!cm_node->reused_node) {
3445                 err = nes_manage_apbvt(nesvnic, ntohs(laddr->sin_port),
3446                                        PCI_FUNC(nesvnic->nesdev->pcidev->devfn),
3447                                        NES_MANAGE_APBVT_ADD);
3448                 if (err) {
3449                         printk(KERN_ERR "nes_manage_apbvt call returned %d.\n",
3450                                err);
3451                         g_cm_core->api->stop_listener(g_cm_core, (void *)cm_node);
3452                         return err;
3453                 }
3454                 atomic_inc(&cm_listens_created);
3455         }
3456
3457         cm_id->add_ref(cm_id);
3458         cm_id->provider_data = (void *)cm_node;
3459
3460
3461         return 0;
3462 }
3463
3464
3465 /**
3466  * nes_destroy_listen
3467  */
3468 int nes_destroy_listen(struct iw_cm_id *cm_id)
3469 {
3470         if (cm_id->provider_data)
3471                 g_cm_core->api->stop_listener(g_cm_core, cm_id->provider_data);
3472         else
3473                 nes_debug(NES_DBG_CM, "cm_id->provider_data was NULL\n");
3474
3475         cm_id->rem_ref(cm_id);
3476
3477         return 0;
3478 }
3479
3480
3481 /**
3482  * nes_cm_recv
3483  */
3484 int nes_cm_recv(struct sk_buff *skb, struct net_device *netdevice)
3485 {
3486         int rc = 0;
3487
3488         cm_packets_received++;
3489         if ((g_cm_core) && (g_cm_core->api))
3490                 rc = g_cm_core->api->recv_pkt(g_cm_core, netdev_priv(netdevice), skb);
3491         else
3492                 nes_debug(NES_DBG_CM, "Unable to process packet for CM,"
3493                           " cm is not setup properly.\n");
3494
3495         return rc;
3496 }
3497
3498
3499 /**
3500  * nes_cm_start
3501  * Start and init a cm core module
3502  */
3503 int nes_cm_start(void)
3504 {
3505         nes_debug(NES_DBG_CM, "\n");
3506         /* create the primary CM core, pass this handle to subsequent core inits */
3507         g_cm_core = nes_cm_alloc_core();
3508         if (g_cm_core)
3509                 return 0;
3510         else
3511                 return -ENOMEM;
3512 }
3513
3514
3515 /**
3516  * nes_cm_stop
3517  * stop and dealloc all cm core instances
3518  */
3519 int nes_cm_stop(void)
3520 {
3521         g_cm_core->api->destroy_cm_core(g_cm_core);
3522         return 0;
3523 }
3524
3525
3526 /**
3527  * cm_event_connected
3528  * handle a connected event, setup QPs and HW
3529  */
3530 static void cm_event_connected(struct nes_cm_event *event)
3531 {
3532         struct nes_qp *nesqp;
3533         struct nes_vnic *nesvnic;
3534         struct nes_device *nesdev;
3535         struct nes_cm_node *cm_node;
3536         struct nes_adapter *nesadapter;
3537         struct ib_qp_attr attr;
3538         struct iw_cm_id *cm_id;
3539         struct iw_cm_event cm_event;
3540         struct nes_v4_quad nes_quad;
3541         u32 crc_value;
3542         int ret;
3543         struct sockaddr_in *laddr;
3544         struct sockaddr_in *raddr;
3545         struct sockaddr_in *cm_event_laddr;
3546
3547         /* get all our handles */
3548         cm_node = event->cm_node;
3549         cm_id = cm_node->cm_id;
3550         nes_debug(NES_DBG_CM, "cm_event_connected - %p - cm_id = %p\n", cm_node, cm_id);
3551         nesqp = (struct nes_qp *)cm_id->provider_data;
3552         nesvnic = to_nesvnic(nesqp->ibqp.device);
3553         nesdev = nesvnic->nesdev;
3554         nesadapter = nesdev->nesadapter;
3555         laddr = (struct sockaddr_in *)&cm_id->local_addr;
3556         raddr = (struct sockaddr_in *)&cm_id->remote_addr;
3557         cm_event_laddr = (struct sockaddr_in *)&cm_event.local_addr;
3558
3559         if (nesqp->destroyed)
3560                 return;
3561         atomic_inc(&cm_connecteds);
3562         nes_debug(NES_DBG_CM, "QP%u attempting to connect to  0x%08X:0x%04X on"
3563                   " local port 0x%04X. jiffies = %lu.\n",
3564                   nesqp->hwqp.qp_id, ntohl(raddr->sin_addr.s_addr),
3565                   ntohs(raddr->sin_port), ntohs(laddr->sin_port), jiffies);
3566
3567         nes_cm_init_tsa_conn(nesqp, cm_node);
3568
3569         /* set the QP tsa context */
3570         nesqp->nesqp_context->tcpPorts[0] = cpu_to_le16(ntohs(laddr->sin_port));
3571         nesqp->nesqp_context->tcpPorts[1] = cpu_to_le16(ntohs(raddr->sin_port));
3572         nesqp->nesqp_context->ip0 = cpu_to_le32(ntohl(raddr->sin_addr.s_addr));
3573
3574         nesqp->nesqp_context->misc2 |= cpu_to_le32(
3575                         (u32)PCI_FUNC(nesdev->pcidev->devfn) <<
3576                         NES_QPCONTEXT_MISC2_SRC_IP_SHIFT);
3577         nesqp->nesqp_context->arp_index_vlan |= cpu_to_le32(
3578                         nes_arp_table(nesdev,
3579                         le32_to_cpu(nesqp->nesqp_context->ip0),
3580                         NULL, NES_ARP_RESOLVE) << 16);
3581         nesqp->nesqp_context->ts_val_delta = cpu_to_le32(
3582                         jiffies - nes_read_indexed(nesdev, NES_IDX_TCP_NOW));
3583         nesqp->nesqp_context->ird_index = cpu_to_le32(nesqp->hwqp.qp_id);
3584         nesqp->nesqp_context->ird_ord_sizes |=
3585                         cpu_to_le32((u32)1 <<
3586                         NES_QPCONTEXT_ORDIRD_IWARP_MODE_SHIFT);
3587         nesqp->nesqp_context->ird_ord_sizes |=
3588                         cpu_to_le32((u32)cm_node->ord_size);
3589
3590         /* Adjust tail for not having a LSMM */
3591         /*nesqp->hwqp.sq_tail = 1;*/
3592
3593         build_rdma0_msg(cm_node, &nesqp);
3594
3595         nes_write32(nesdev->regs + NES_WQE_ALLOC,
3596                     (1 << 24) | 0x00800000 | nesqp->hwqp.qp_id);
3597
3598         memset(&nes_quad, 0, sizeof(nes_quad));
3599
3600         nes_quad.DstIpAdrIndex =
3601                 cpu_to_le32((u32)PCI_FUNC(nesdev->pcidev->devfn) << 24);
3602         nes_quad.SrcIpadr = raddr->sin_addr.s_addr;
3603         nes_quad.TcpPorts[0] = raddr->sin_port;
3604         nes_quad.TcpPorts[1] = laddr->sin_port;
3605
3606         /* Produce hash key */
3607         crc_value = get_crc_value(&nes_quad);
3608         nesqp->hte_index = cpu_to_be32(crc_value ^ 0xffffffff);
3609         nes_debug(NES_DBG_CM, "HTE Index = 0x%08X, After CRC = 0x%08X\n",
3610                   nesqp->hte_index, nesqp->hte_index & nesadapter->hte_index_mask);
3611
3612         nesqp->hte_index &= nesadapter->hte_index_mask;
3613         nesqp->nesqp_context->hte_index = cpu_to_le32(nesqp->hte_index);
3614
3615         nesqp->ietf_frame = &cm_node->mpa_frame;
3616         nesqp->private_data_len = (u8)cm_node->mpa_frame_size;
3617         cm_node->cm_core->api->accelerated(cm_node->cm_core, cm_node);
3618
3619         /* notify OF layer we successfully created the requested connection */
3620         cm_event.event = IW_CM_EVENT_CONNECT_REPLY;
3621         cm_event.status = 0;
3622         cm_event.provider_data = cm_id->provider_data;
3623         cm_event_laddr->sin_family = AF_INET;
3624         cm_event_laddr->sin_port = laddr->sin_port;
3625         cm_event.remote_addr = cm_id->remote_addr;
3626
3627         cm_event.private_data = (void *)event->cm_node->mpa_frame_buf;
3628         cm_event.private_data_len = (u8)event->cm_node->mpa_frame_size;
3629         cm_event.ird = cm_node->ird_size;
3630         cm_event.ord = cm_node->ord_size;
3631
3632         cm_event_laddr->sin_addr.s_addr = event->cm_info.rem_addr;
3633         ret = cm_id->event_handler(cm_id, &cm_event);
3634         nes_debug(NES_DBG_CM, "OFA CM event_handler returned, ret=%d\n", ret);
3635
3636         if (ret)
3637                 printk(KERN_ERR "%s[%u] OFA CM event_handler returned, "
3638                        "ret=%d\n", __func__, __LINE__, ret);
3639         attr.qp_state = IB_QPS_RTS;
3640         nes_modify_qp(&nesqp->ibqp, &attr, IB_QP_STATE, NULL);
3641
3642         nes_debug(NES_DBG_CM, "Exiting connect thread for QP%u. jiffies = "
3643                   "%lu\n", nesqp->hwqp.qp_id, jiffies);
3644
3645         return;
3646 }
3647
3648
3649 /**
3650  * cm_event_connect_error
3651  */
3652 static void cm_event_connect_error(struct nes_cm_event *event)
3653 {
3654         struct nes_qp *nesqp;
3655         struct iw_cm_id *cm_id;
3656         struct iw_cm_event cm_event;
3657         /* struct nes_cm_info cm_info; */
3658         int ret;
3659
3660         if (!event->cm_node)
3661                 return;
3662
3663         cm_id = event->cm_node->cm_id;
3664         if (!cm_id)
3665                 return;
3666
3667         nes_debug(NES_DBG_CM, "cm_node=%p, cm_id=%p\n", event->cm_node, cm_id);
3668         nesqp = cm_id->provider_data;
3669
3670         if (!nesqp)
3671                 return;
3672
3673         /* notify OF layer about this connection error event */
3674         /* cm_id->rem_ref(cm_id); */
3675         nesqp->cm_id = NULL;
3676         cm_id->provider_data = NULL;
3677         cm_event.event = IW_CM_EVENT_CONNECT_REPLY;
3678         cm_event.status = -ECONNRESET;
3679         cm_event.provider_data = cm_id->provider_data;
3680         cm_event.local_addr = cm_id->local_addr;
3681         cm_event.remote_addr = cm_id->remote_addr;
3682         cm_event.private_data = NULL;
3683         cm_event.private_data_len = 0;
3684
3685 #ifdef CONFIG_INFINIBAND_NES_DEBUG
3686         {
3687                 struct sockaddr_in *cm_event_laddr = (struct sockaddr_in *)
3688                                                      &cm_event.local_addr;
3689                 struct sockaddr_in *cm_event_raddr = (struct sockaddr_in *)
3690                                                      &cm_event.remote_addr;
3691                 nes_debug(NES_DBG_CM, "call CM_EVENT REJECTED, local_addr=%08x, remote_addr=%08x\n",
3692                           cm_event_laddr->sin_addr.s_addr, cm_event_raddr->sin_addr.s_addr);
3693         }
3694 #endif
3695
3696         ret = cm_id->event_handler(cm_id, &cm_event);
3697         nes_debug(NES_DBG_CM, "OFA CM event_handler returned, ret=%d\n", ret);
3698         if (ret)
3699                 printk(KERN_ERR "%s[%u] OFA CM event_handler returned, "
3700                        "ret=%d\n", __func__, __LINE__, ret);
3701         cm_id->rem_ref(cm_id);
3702
3703         rem_ref_cm_node(event->cm_node->cm_core, event->cm_node);
3704         return;
3705 }
3706
3707
3708 /**
3709  * cm_event_reset
3710  */
3711 static void cm_event_reset(struct nes_cm_event *event)
3712 {
3713         struct nes_qp *nesqp;
3714         struct iw_cm_id *cm_id;
3715         struct iw_cm_event cm_event;
3716         /* struct nes_cm_info cm_info; */
3717         int ret;
3718
3719         if (!event->cm_node)
3720                 return;
3721
3722         if (!event->cm_node->cm_id)
3723                 return;
3724
3725         cm_id = event->cm_node->cm_id;
3726
3727         nes_debug(NES_DBG_CM, "%p - cm_id = %p\n", event->cm_node, cm_id);
3728         nesqp = cm_id->provider_data;
3729         if (!nesqp)
3730                 return;
3731
3732         nesqp->cm_id = NULL;
3733         /* cm_id->provider_data = NULL; */
3734         cm_event.event = IW_CM_EVENT_DISCONNECT;
3735         cm_event.status = -ECONNRESET;
3736         cm_event.provider_data = cm_id->provider_data;
3737         cm_event.local_addr = cm_id->local_addr;
3738         cm_event.remote_addr = cm_id->remote_addr;
3739         cm_event.private_data = NULL;
3740         cm_event.private_data_len = 0;
3741
3742         cm_id->add_ref(cm_id);
3743         ret = cm_id->event_handler(cm_id, &cm_event);
3744         atomic_inc(&cm_closes);
3745         cm_event.event = IW_CM_EVENT_CLOSE;
3746         cm_event.status = 0;
3747         cm_event.provider_data = cm_id->provider_data;
3748         cm_event.local_addr = cm_id->local_addr;
3749         cm_event.remote_addr = cm_id->remote_addr;
3750         cm_event.private_data = NULL;
3751         cm_event.private_data_len = 0;
3752         nes_debug(NES_DBG_CM, "NODE %p Generating CLOSE\n", event->cm_node);
3753         ret = cm_id->event_handler(cm_id, &cm_event);
3754
3755         nes_debug(NES_DBG_CM, "OFA CM event_handler returned, ret=%d\n", ret);
3756
3757
3758         /* notify OF layer about this connection error event */
3759         cm_id->rem_ref(cm_id);
3760
3761         return;
3762 }
3763
3764
3765 /**
3766  * cm_event_mpa_req
3767  */
3768 static void cm_event_mpa_req(struct nes_cm_event *event)
3769 {
3770         struct iw_cm_id *cm_id;
3771         struct iw_cm_event cm_event;
3772         int ret;
3773         struct nes_cm_node *cm_node;
3774         struct sockaddr_in *cm_event_laddr = (struct sockaddr_in *)
3775                                              &cm_event.local_addr;
3776         struct sockaddr_in *cm_event_raddr = (struct sockaddr_in *)
3777                                              &cm_event.remote_addr;
3778
3779         cm_node = event->cm_node;
3780         if (!cm_node)
3781                 return;
3782         cm_id = cm_node->cm_id;
3783
3784         atomic_inc(&cm_connect_reqs);
3785         nes_debug(NES_DBG_CM, "cm_node = %p - cm_id = %p, jiffies = %lu\n",
3786                   cm_node, cm_id, jiffies);
3787
3788         cm_event.event = IW_CM_EVENT_CONNECT_REQUEST;
3789         cm_event.status = 0;
3790         cm_event.provider_data = (void *)cm_node;
3791
3792         cm_event_laddr->sin_family = AF_INET;
3793         cm_event_laddr->sin_port = htons(event->cm_info.loc_port);
3794         cm_event_laddr->sin_addr.s_addr = htonl(event->cm_info.loc_addr);
3795
3796         cm_event_raddr->sin_family = AF_INET;
3797         cm_event_raddr->sin_port = htons(event->cm_info.rem_port);
3798         cm_event_raddr->sin_addr.s_addr = htonl(event->cm_info.rem_addr);
3799         cm_event.private_data = cm_node->mpa_frame_buf;
3800         cm_event.private_data_len = (u8)cm_node->mpa_frame_size;
3801         if (cm_node->mpa_frame_rev == IETF_MPA_V1) {
3802                 cm_event.ird = NES_MAX_IRD;
3803                 cm_event.ord = NES_MAX_ORD;
3804         } else {
3805         cm_event.ird = cm_node->ird_size;
3806         cm_event.ord = cm_node->ord_size;
3807         }
3808
3809         ret = cm_id->event_handler(cm_id, &cm_event);
3810         if (ret)
3811                 printk(KERN_ERR "%s[%u] OFA CM event_handler returned, ret=%d\n",
3812                        __func__, __LINE__, ret);
3813         return;
3814 }
3815
3816
3817 static void cm_event_mpa_reject(struct nes_cm_event *event)
3818 {
3819         struct iw_cm_id *cm_id;
3820         struct iw_cm_event cm_event;
3821         struct nes_cm_node *cm_node;
3822         int ret;
3823         struct sockaddr_in *cm_event_laddr = (struct sockaddr_in *)
3824                                              &cm_event.local_addr;
3825         struct sockaddr_in *cm_event_raddr = (struct sockaddr_in *)
3826                                              &cm_event.remote_addr;
3827
3828         cm_node = event->cm_node;
3829         if (!cm_node)
3830                 return;
3831         cm_id = cm_node->cm_id;
3832
3833         atomic_inc(&cm_connect_reqs);
3834         nes_debug(NES_DBG_CM, "cm_node = %p - cm_id = %p, jiffies = %lu\n",
3835                   cm_node, cm_id, jiffies);
3836
3837         cm_event.event = IW_CM_EVENT_CONNECT_REPLY;
3838         cm_event.status = -ECONNREFUSED;
3839         cm_event.provider_data = cm_id->provider_data;
3840
3841         cm_event_laddr->sin_family = AF_INET;
3842         cm_event_laddr->sin_port = htons(event->cm_info.loc_port);
3843         cm_event_laddr->sin_addr.s_addr = htonl(event->cm_info.loc_addr);
3844
3845         cm_event_raddr->sin_family = AF_INET;
3846         cm_event_raddr->sin_port = htons(event->cm_info.rem_port);
3847         cm_event_raddr->sin_addr.s_addr = htonl(event->cm_info.rem_addr);
3848
3849         cm_event.private_data = cm_node->mpa_frame_buf;
3850         cm_event.private_data_len = (u8)cm_node->mpa_frame_size;
3851
3852         nes_debug(NES_DBG_CM, "call CM_EVENT_MPA_REJECTED, local_addr=%08x, "
3853                   "remove_addr=%08x\n",
3854                   cm_event_laddr->sin_addr.s_addr,
3855                   cm_event_raddr->sin_addr.s_addr);
3856
3857         ret = cm_id->event_handler(cm_id, &cm_event);
3858         if (ret)
3859                 printk(KERN_ERR "%s[%u] OFA CM event_handler returned, ret=%d\n",
3860                        __func__, __LINE__, ret);
3861
3862         return;
3863 }
3864
3865
3866 static void nes_cm_event_handler(struct work_struct *);
3867
3868 /**
3869  * nes_cm_post_event
3870  * post an event to the cm event handler
3871  */
3872 static int nes_cm_post_event(struct nes_cm_event *event)
3873 {
3874         atomic_inc(&event->cm_node->cm_core->events_posted);
3875         add_ref_cm_node(event->cm_node);
3876         event->cm_info.cm_id->add_ref(event->cm_info.cm_id);
3877         INIT_WORK(&event->event_work, nes_cm_event_handler);
3878         nes_debug(NES_DBG_CM, "cm_node=%p queue_work, event=%p\n",
3879                   event->cm_node, event);
3880
3881         queue_work(event->cm_node->cm_core->event_wq, &event->event_work);
3882
3883         nes_debug(NES_DBG_CM, "Exit\n");
3884         return 0;
3885 }
3886
3887
3888 /**
3889  * nes_cm_event_handler
3890  * worker function to handle cm events
3891  * will free instance of nes_cm_event
3892  */
3893 static void nes_cm_event_handler(struct work_struct *work)
3894 {
3895         struct nes_cm_event *event = container_of(work, struct nes_cm_event,
3896                                                   event_work);
3897         struct nes_cm_core *cm_core;
3898
3899         if ((!event) || (!event->cm_node) || (!event->cm_node->cm_core))
3900                 return;
3901
3902         cm_core = event->cm_node->cm_core;
3903         nes_debug(NES_DBG_CM, "event=%p, event->type=%u, events posted=%u\n",
3904                   event, event->type, atomic_read(&cm_core->events_posted));
3905
3906         switch (event->type) {
3907         case NES_CM_EVENT_MPA_REQ:
3908                 cm_event_mpa_req(event);
3909                 nes_debug(NES_DBG_CM, "cm_node=%p CM Event: MPA REQUEST\n",
3910                           event->cm_node);
3911                 break;
3912         case NES_CM_EVENT_RESET:
3913                 nes_debug(NES_DBG_CM, "cm_node = %p CM Event: RESET\n",
3914                           event->cm_node);
3915                 cm_event_reset(event);
3916                 break;
3917         case NES_CM_EVENT_CONNECTED:
3918                 if ((!event->cm_node->cm_id) ||
3919                     (event->cm_node->state != NES_CM_STATE_TSA))
3920                         break;
3921                 cm_event_connected(event);
3922                 nes_debug(NES_DBG_CM, "CM Event: CONNECTED\n");
3923                 break;
3924         case NES_CM_EVENT_MPA_REJECT:
3925                 if ((!event->cm_node->cm_id) ||
3926                     (event->cm_node->state == NES_CM_STATE_TSA))
3927                         break;
3928                 cm_event_mpa_reject(event);
3929                 nes_debug(NES_DBG_CM, "CM Event: REJECT\n");
3930                 break;
3931
3932         case NES_CM_EVENT_ABORTED:
3933                 if ((!event->cm_node->cm_id) ||
3934                     (event->cm_node->state == NES_CM_STATE_TSA))
3935                         break;
3936                 cm_event_connect_error(event);
3937                 nes_debug(NES_DBG_CM, "CM Event: ABORTED\n");
3938                 break;
3939         case NES_CM_EVENT_DROPPED_PKT:
3940                 nes_debug(NES_DBG_CM, "CM Event: DROPPED PKT\n");
3941                 break;
3942         default:
3943                 nes_debug(NES_DBG_CM, "CM Event: UNKNOWN EVENT TYPE\n");
3944                 break;
3945         }
3946
3947         atomic_dec(&cm_core->events_posted);
3948         event->cm_info.cm_id->rem_ref(event->cm_info.cm_id);
3949         rem_ref_cm_node(cm_core, event->cm_node);
3950         kfree(event);
3951
3952         return;
3953 }