rndis.c 28 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179
  1. // SPDX-License-Identifier: GPL-2.0
  2. /*
  3. * RNDIS MSG parser
  4. *
  5. * Authors: Benedikt Spranger, Pengutronix
  6. * Robert Schwebel, Pengutronix
  7. *
  8. * This software was originally developed in conformance with
  9. * Microsoft's Remote NDIS Specification License Agreement.
  10. *
  11. * 03/12/2004 Kai-Uwe Bloem <linux-development@auerswald.de>
  12. * Fixed message length bug in init_response
  13. *
  14. * 03/25/2004 Kai-Uwe Bloem <linux-development@auerswald.de>
  15. * Fixed rndis_rm_hdr length bug.
  16. *
  17. * Copyright (C) 2004 by David Brownell
  18. * updates to merge with Linux 2.6, better match RNDIS spec
  19. */
  20. #include <linux/module.h>
  21. #include <linux/moduleparam.h>
  22. #include <linux/kernel.h>
  23. #include <linux/errno.h>
  24. #include <linux/idr.h>
  25. #include <linux/list.h>
  26. #include <linux/proc_fs.h>
  27. #include <linux/slab.h>
  28. #include <linux/seq_file.h>
  29. #include <linux/netdevice.h>
  30. #include <asm/io.h>
  31. #include <asm/byteorder.h>
  32. #include <asm/unaligned.h>
  33. #include "u_rndis.h"
  34. #undef VERBOSE_DEBUG
  35. #include "rndis.h"
  36. /* The driver for your USB chip needs to support ep0 OUT to work with
  37. * RNDIS, plus all three CDC Ethernet endpoints (interrupt not optional).
  38. *
  39. * Windows hosts need an INF file like Documentation/usb/linux.inf
  40. * and will be happier if you provide the host_addr module parameter.
  41. */
  42. #if 0
  43. static int rndis_debug = 0;
  44. module_param (rndis_debug, int, 0);
  45. MODULE_PARM_DESC (rndis_debug, "enable debugging");
  46. #else
  47. #define rndis_debug 0
  48. #endif
  49. #ifdef CONFIG_USB_GADGET_DEBUG_FILES
  50. #define NAME_TEMPLATE "driver/rndis-%03d"
  51. #endif /* CONFIG_USB_GADGET_DEBUG_FILES */
  52. static DEFINE_IDA(rndis_ida);
  53. /* Driver Version */
  54. static const __le32 rndis_driver_version = cpu_to_le32(1);
  55. /* Function Prototypes */
  56. static rndis_resp_t *rndis_add_response(struct rndis_params *params,
  57. u32 length);
  58. #ifdef CONFIG_USB_GADGET_DEBUG_FILES
  59. static const struct file_operations rndis_proc_fops;
  60. #endif /* CONFIG_USB_GADGET_DEBUG_FILES */
  61. /* supported OIDs */
  62. static const u32 oid_supported_list[] = {
  63. /* the general stuff */
  64. RNDIS_OID_GEN_SUPPORTED_LIST,
  65. RNDIS_OID_GEN_HARDWARE_STATUS,
  66. RNDIS_OID_GEN_MEDIA_SUPPORTED,
  67. RNDIS_OID_GEN_MEDIA_IN_USE,
  68. RNDIS_OID_GEN_MAXIMUM_FRAME_SIZE,
  69. RNDIS_OID_GEN_LINK_SPEED,
  70. RNDIS_OID_GEN_TRANSMIT_BLOCK_SIZE,
  71. RNDIS_OID_GEN_RECEIVE_BLOCK_SIZE,
  72. RNDIS_OID_GEN_VENDOR_ID,
  73. RNDIS_OID_GEN_VENDOR_DESCRIPTION,
  74. RNDIS_OID_GEN_VENDOR_DRIVER_VERSION,
  75. RNDIS_OID_GEN_CURRENT_PACKET_FILTER,
  76. RNDIS_OID_GEN_MAXIMUM_TOTAL_SIZE,
  77. RNDIS_OID_GEN_MEDIA_CONNECT_STATUS,
  78. RNDIS_OID_GEN_PHYSICAL_MEDIUM,
  79. /* the statistical stuff */
  80. RNDIS_OID_GEN_XMIT_OK,
  81. RNDIS_OID_GEN_RCV_OK,
  82. RNDIS_OID_GEN_XMIT_ERROR,
  83. RNDIS_OID_GEN_RCV_ERROR,
  84. RNDIS_OID_GEN_RCV_NO_BUFFER,
  85. #ifdef RNDIS_OPTIONAL_STATS
  86. RNDIS_OID_GEN_DIRECTED_BYTES_XMIT,
  87. RNDIS_OID_GEN_DIRECTED_FRAMES_XMIT,
  88. RNDIS_OID_GEN_MULTICAST_BYTES_XMIT,
  89. RNDIS_OID_GEN_MULTICAST_FRAMES_XMIT,
  90. RNDIS_OID_GEN_BROADCAST_BYTES_XMIT,
  91. RNDIS_OID_GEN_BROADCAST_FRAMES_XMIT,
  92. RNDIS_OID_GEN_DIRECTED_BYTES_RCV,
  93. RNDIS_OID_GEN_DIRECTED_FRAMES_RCV,
  94. RNDIS_OID_GEN_MULTICAST_BYTES_RCV,
  95. RNDIS_OID_GEN_MULTICAST_FRAMES_RCV,
  96. RNDIS_OID_GEN_BROADCAST_BYTES_RCV,
  97. RNDIS_OID_GEN_BROADCAST_FRAMES_RCV,
  98. RNDIS_OID_GEN_RCV_CRC_ERROR,
  99. RNDIS_OID_GEN_TRANSMIT_QUEUE_LENGTH,
  100. #endif /* RNDIS_OPTIONAL_STATS */
  101. /* mandatory 802.3 */
  102. /* the general stuff */
  103. RNDIS_OID_802_3_PERMANENT_ADDRESS,
  104. RNDIS_OID_802_3_CURRENT_ADDRESS,
  105. RNDIS_OID_802_3_MULTICAST_LIST,
  106. RNDIS_OID_802_3_MAC_OPTIONS,
  107. RNDIS_OID_802_3_MAXIMUM_LIST_SIZE,
  108. /* the statistical stuff */
  109. RNDIS_OID_802_3_RCV_ERROR_ALIGNMENT,
  110. RNDIS_OID_802_3_XMIT_ONE_COLLISION,
  111. RNDIS_OID_802_3_XMIT_MORE_COLLISIONS,
  112. #ifdef RNDIS_OPTIONAL_STATS
  113. RNDIS_OID_802_3_XMIT_DEFERRED,
  114. RNDIS_OID_802_3_XMIT_MAX_COLLISIONS,
  115. RNDIS_OID_802_3_RCV_OVERRUN,
  116. RNDIS_OID_802_3_XMIT_UNDERRUN,
  117. RNDIS_OID_802_3_XMIT_HEARTBEAT_FAILURE,
  118. RNDIS_OID_802_3_XMIT_TIMES_CRS_LOST,
  119. RNDIS_OID_802_3_XMIT_LATE_COLLISIONS,
  120. #endif /* RNDIS_OPTIONAL_STATS */
  121. #ifdef RNDIS_PM
  122. /* PM and wakeup are "mandatory" for USB, but the RNDIS specs
  123. * don't say what they mean ... and the NDIS specs are often
  124. * confusing and/or ambiguous in this context. (That is, more
  125. * so than their specs for the other OIDs.)
  126. *
  127. * FIXME someone who knows what these should do, please
  128. * implement them!
  129. */
  130. /* power management */
  131. OID_PNP_CAPABILITIES,
  132. OID_PNP_QUERY_POWER,
  133. OID_PNP_SET_POWER,
  134. #ifdef RNDIS_WAKEUP
  135. /* wake up host */
  136. OID_PNP_ENABLE_WAKE_UP,
  137. OID_PNP_ADD_WAKE_UP_PATTERN,
  138. OID_PNP_REMOVE_WAKE_UP_PATTERN,
  139. #endif /* RNDIS_WAKEUP */
  140. #endif /* RNDIS_PM */
  141. };
  142. /* NDIS Functions */
  143. static int gen_ndis_query_resp(struct rndis_params *params, u32 OID, u8 *buf,
  144. unsigned buf_len, rndis_resp_t *r)
  145. {
  146. int retval = -ENOTSUPP;
  147. u32 length = 4; /* usually */
  148. __le32 *outbuf;
  149. int i, count;
  150. rndis_query_cmplt_type *resp;
  151. struct net_device *net;
  152. struct rtnl_link_stats64 temp;
  153. const struct rtnl_link_stats64 *stats;
  154. if (!r) return -ENOMEM;
  155. resp = (rndis_query_cmplt_type *)r->buf;
  156. if (!resp) return -ENOMEM;
  157. if (buf_len && rndis_debug > 1) {
  158. pr_debug("query OID %08x value, len %d:\n", OID, buf_len);
  159. for (i = 0; i < buf_len; i += 16) {
  160. pr_debug("%03d: %08x %08x %08x %08x\n", i,
  161. get_unaligned_le32(&buf[i]),
  162. get_unaligned_le32(&buf[i + 4]),
  163. get_unaligned_le32(&buf[i + 8]),
  164. get_unaligned_le32(&buf[i + 12]));
  165. }
  166. }
  167. /* response goes here, right after the header */
  168. outbuf = (__le32 *)&resp[1];
  169. resp->InformationBufferOffset = cpu_to_le32(16);
  170. net = params->dev;
  171. stats = dev_get_stats(net, &temp);
  172. switch (OID) {
  173. /* general oids (table 4-1) */
  174. /* mandatory */
  175. case RNDIS_OID_GEN_SUPPORTED_LIST:
  176. pr_debug("%s: RNDIS_OID_GEN_SUPPORTED_LIST\n", __func__);
  177. length = sizeof(oid_supported_list);
  178. count = length / sizeof(u32);
  179. for (i = 0; i < count; i++)
  180. outbuf[i] = cpu_to_le32(oid_supported_list[i]);
  181. retval = 0;
  182. break;
  183. /* mandatory */
  184. case RNDIS_OID_GEN_HARDWARE_STATUS:
  185. pr_debug("%s: RNDIS_OID_GEN_HARDWARE_STATUS\n", __func__);
  186. /* Bogus question!
  187. * Hardware must be ready to receive high level protocols.
  188. * BTW:
  189. * reddite ergo quae sunt Caesaris Caesari
  190. * et quae sunt Dei Deo!
  191. */
  192. *outbuf = cpu_to_le32(0);
  193. retval = 0;
  194. break;
  195. /* mandatory */
  196. case RNDIS_OID_GEN_MEDIA_SUPPORTED:
  197. pr_debug("%s: RNDIS_OID_GEN_MEDIA_SUPPORTED\n", __func__);
  198. *outbuf = cpu_to_le32(params->medium);
  199. retval = 0;
  200. break;
  201. /* mandatory */
  202. case RNDIS_OID_GEN_MEDIA_IN_USE:
  203. pr_debug("%s: RNDIS_OID_GEN_MEDIA_IN_USE\n", __func__);
  204. /* one medium, one transport... (maybe you do it better) */
  205. *outbuf = cpu_to_le32(params->medium);
  206. retval = 0;
  207. break;
  208. /* mandatory */
  209. case RNDIS_OID_GEN_MAXIMUM_FRAME_SIZE:
  210. pr_debug("%s: RNDIS_OID_GEN_MAXIMUM_FRAME_SIZE\n", __func__);
  211. if (params->dev) {
  212. *outbuf = cpu_to_le32(params->dev->mtu);
  213. retval = 0;
  214. }
  215. break;
  216. /* mandatory */
  217. case RNDIS_OID_GEN_LINK_SPEED:
  218. if (rndis_debug > 1)
  219. pr_debug("%s: RNDIS_OID_GEN_LINK_SPEED\n", __func__);
  220. if (params->media_state == RNDIS_MEDIA_STATE_DISCONNECTED)
  221. *outbuf = cpu_to_le32(0);
  222. else
  223. *outbuf = cpu_to_le32(params->speed);
  224. retval = 0;
  225. break;
  226. /* mandatory */
  227. case RNDIS_OID_GEN_TRANSMIT_BLOCK_SIZE:
  228. pr_debug("%s: RNDIS_OID_GEN_TRANSMIT_BLOCK_SIZE\n", __func__);
  229. if (params->dev) {
  230. *outbuf = cpu_to_le32(params->dev->mtu);
  231. retval = 0;
  232. }
  233. break;
  234. /* mandatory */
  235. case RNDIS_OID_GEN_RECEIVE_BLOCK_SIZE:
  236. pr_debug("%s: RNDIS_OID_GEN_RECEIVE_BLOCK_SIZE\n", __func__);
  237. if (params->dev) {
  238. *outbuf = cpu_to_le32(params->dev->mtu);
  239. retval = 0;
  240. }
  241. break;
  242. /* mandatory */
  243. case RNDIS_OID_GEN_VENDOR_ID:
  244. pr_debug("%s: RNDIS_OID_GEN_VENDOR_ID\n", __func__);
  245. *outbuf = cpu_to_le32(params->vendorID);
  246. retval = 0;
  247. break;
  248. /* mandatory */
  249. case RNDIS_OID_GEN_VENDOR_DESCRIPTION:
  250. pr_debug("%s: RNDIS_OID_GEN_VENDOR_DESCRIPTION\n", __func__);
  251. if (params->vendorDescr) {
  252. length = strlen(params->vendorDescr);
  253. memcpy(outbuf, params->vendorDescr, length);
  254. } else {
  255. outbuf[0] = 0;
  256. }
  257. retval = 0;
  258. break;
  259. case RNDIS_OID_GEN_VENDOR_DRIVER_VERSION:
  260. pr_debug("%s: RNDIS_OID_GEN_VENDOR_DRIVER_VERSION\n", __func__);
  261. /* Created as LE */
  262. *outbuf = rndis_driver_version;
  263. retval = 0;
  264. break;
  265. /* mandatory */
  266. case RNDIS_OID_GEN_CURRENT_PACKET_FILTER:
  267. pr_debug("%s: RNDIS_OID_GEN_CURRENT_PACKET_FILTER\n", __func__);
  268. *outbuf = cpu_to_le32(*params->filter);
  269. retval = 0;
  270. break;
  271. /* mandatory */
  272. case RNDIS_OID_GEN_MAXIMUM_TOTAL_SIZE:
  273. pr_debug("%s: RNDIS_OID_GEN_MAXIMUM_TOTAL_SIZE\n", __func__);
  274. *outbuf = cpu_to_le32(RNDIS_MAX_TOTAL_SIZE);
  275. retval = 0;
  276. break;
  277. /* mandatory */
  278. case RNDIS_OID_GEN_MEDIA_CONNECT_STATUS:
  279. if (rndis_debug > 1)
  280. pr_debug("%s: RNDIS_OID_GEN_MEDIA_CONNECT_STATUS\n", __func__);
  281. *outbuf = cpu_to_le32(params->media_state);
  282. retval = 0;
  283. break;
  284. case RNDIS_OID_GEN_PHYSICAL_MEDIUM:
  285. pr_debug("%s: RNDIS_OID_GEN_PHYSICAL_MEDIUM\n", __func__);
  286. *outbuf = cpu_to_le32(0);
  287. retval = 0;
  288. break;
  289. /* The RNDIS specification is incomplete/wrong. Some versions
  290. * of MS-Windows expect OIDs that aren't specified there. Other
  291. * versions emit undefined RNDIS messages. DOCUMENT ALL THESE!
  292. */
  293. case RNDIS_OID_GEN_MAC_OPTIONS: /* from WinME */
  294. pr_debug("%s: RNDIS_OID_GEN_MAC_OPTIONS\n", __func__);
  295. *outbuf = cpu_to_le32(
  296. RNDIS_MAC_OPTION_RECEIVE_SERIALIZED
  297. | RNDIS_MAC_OPTION_FULL_DUPLEX);
  298. retval = 0;
  299. break;
  300. /* statistics OIDs (table 4-2) */
  301. /* mandatory */
  302. case RNDIS_OID_GEN_XMIT_OK:
  303. if (rndis_debug > 1)
  304. pr_debug("%s: RNDIS_OID_GEN_XMIT_OK\n", __func__);
  305. if (stats) {
  306. *outbuf = cpu_to_le32(stats->tx_packets
  307. - stats->tx_errors - stats->tx_dropped);
  308. retval = 0;
  309. }
  310. break;
  311. /* mandatory */
  312. case RNDIS_OID_GEN_RCV_OK:
  313. if (rndis_debug > 1)
  314. pr_debug("%s: RNDIS_OID_GEN_RCV_OK\n", __func__);
  315. if (stats) {
  316. *outbuf = cpu_to_le32(stats->rx_packets
  317. - stats->rx_errors - stats->rx_dropped);
  318. retval = 0;
  319. }
  320. break;
  321. /* mandatory */
  322. case RNDIS_OID_GEN_XMIT_ERROR:
  323. if (rndis_debug > 1)
  324. pr_debug("%s: RNDIS_OID_GEN_XMIT_ERROR\n", __func__);
  325. if (stats) {
  326. *outbuf = cpu_to_le32(stats->tx_errors);
  327. retval = 0;
  328. }
  329. break;
  330. /* mandatory */
  331. case RNDIS_OID_GEN_RCV_ERROR:
  332. if (rndis_debug > 1)
  333. pr_debug("%s: RNDIS_OID_GEN_RCV_ERROR\n", __func__);
  334. if (stats) {
  335. *outbuf = cpu_to_le32(stats->rx_errors);
  336. retval = 0;
  337. }
  338. break;
  339. /* mandatory */
  340. case RNDIS_OID_GEN_RCV_NO_BUFFER:
  341. pr_debug("%s: RNDIS_OID_GEN_RCV_NO_BUFFER\n", __func__);
  342. if (stats) {
  343. *outbuf = cpu_to_le32(stats->rx_dropped);
  344. retval = 0;
  345. }
  346. break;
  347. /* ieee802.3 OIDs (table 4-3) */
  348. /* mandatory */
  349. case RNDIS_OID_802_3_PERMANENT_ADDRESS:
  350. pr_debug("%s: RNDIS_OID_802_3_PERMANENT_ADDRESS\n", __func__);
  351. if (params->dev) {
  352. length = ETH_ALEN;
  353. memcpy(outbuf, params->host_mac, length);
  354. retval = 0;
  355. }
  356. break;
  357. /* mandatory */
  358. case RNDIS_OID_802_3_CURRENT_ADDRESS:
  359. pr_debug("%s: RNDIS_OID_802_3_CURRENT_ADDRESS\n", __func__);
  360. if (params->dev) {
  361. length = ETH_ALEN;
  362. memcpy(outbuf, params->host_mac, length);
  363. retval = 0;
  364. }
  365. break;
  366. /* mandatory */
  367. case RNDIS_OID_802_3_MULTICAST_LIST:
  368. pr_debug("%s: RNDIS_OID_802_3_MULTICAST_LIST\n", __func__);
  369. /* Multicast base address only */
  370. *outbuf = cpu_to_le32(0xE0000000);
  371. retval = 0;
  372. break;
  373. /* mandatory */
  374. case RNDIS_OID_802_3_MAXIMUM_LIST_SIZE:
  375. pr_debug("%s: RNDIS_OID_802_3_MAXIMUM_LIST_SIZE\n", __func__);
  376. /* Multicast base address only */
  377. *outbuf = cpu_to_le32(1);
  378. retval = 0;
  379. break;
  380. case RNDIS_OID_802_3_MAC_OPTIONS:
  381. pr_debug("%s: RNDIS_OID_802_3_MAC_OPTIONS\n", __func__);
  382. *outbuf = cpu_to_le32(0);
  383. retval = 0;
  384. break;
  385. /* ieee802.3 statistics OIDs (table 4-4) */
  386. /* mandatory */
  387. case RNDIS_OID_802_3_RCV_ERROR_ALIGNMENT:
  388. pr_debug("%s: RNDIS_OID_802_3_RCV_ERROR_ALIGNMENT\n", __func__);
  389. if (stats) {
  390. *outbuf = cpu_to_le32(stats->rx_frame_errors);
  391. retval = 0;
  392. }
  393. break;
  394. /* mandatory */
  395. case RNDIS_OID_802_3_XMIT_ONE_COLLISION:
  396. pr_debug("%s: RNDIS_OID_802_3_XMIT_ONE_COLLISION\n", __func__);
  397. *outbuf = cpu_to_le32(0);
  398. retval = 0;
  399. break;
  400. /* mandatory */
  401. case RNDIS_OID_802_3_XMIT_MORE_COLLISIONS:
  402. pr_debug("%s: RNDIS_OID_802_3_XMIT_MORE_COLLISIONS\n", __func__);
  403. *outbuf = cpu_to_le32(0);
  404. retval = 0;
  405. break;
  406. default:
  407. pr_warn("%s: query unknown OID 0x%08X\n", __func__, OID);
  408. }
  409. if (retval < 0)
  410. length = 0;
  411. resp->InformationBufferLength = cpu_to_le32(length);
  412. r->length = length + sizeof(*resp);
  413. resp->MessageLength = cpu_to_le32(r->length);
  414. return retval;
  415. }
  416. static int gen_ndis_set_resp(struct rndis_params *params, u32 OID,
  417. u8 *buf, u32 buf_len, rndis_resp_t *r)
  418. {
  419. rndis_set_cmplt_type *resp;
  420. int i, retval = -ENOTSUPP;
  421. if (!r)
  422. return -ENOMEM;
  423. resp = (rndis_set_cmplt_type *)r->buf;
  424. if (!resp)
  425. return -ENOMEM;
  426. if (buf_len && rndis_debug > 1) {
  427. pr_debug("set OID %08x value, len %d:\n", OID, buf_len);
  428. for (i = 0; i < buf_len; i += 16) {
  429. pr_debug("%03d: %08x %08x %08x %08x\n", i,
  430. get_unaligned_le32(&buf[i]),
  431. get_unaligned_le32(&buf[i + 4]),
  432. get_unaligned_le32(&buf[i + 8]),
  433. get_unaligned_le32(&buf[i + 12]));
  434. }
  435. }
  436. switch (OID) {
  437. case RNDIS_OID_GEN_CURRENT_PACKET_FILTER:
  438. /* these NDIS_PACKET_TYPE_* bitflags are shared with
  439. * cdc_filter; it's not RNDIS-specific
  440. * NDIS_PACKET_TYPE_x == USB_CDC_PACKET_TYPE_x for x in:
  441. * PROMISCUOUS, DIRECTED,
  442. * MULTICAST, ALL_MULTICAST, BROADCAST
  443. */
  444. *params->filter = (u16)get_unaligned_le32(buf);
  445. pr_debug("%s: RNDIS_OID_GEN_CURRENT_PACKET_FILTER %08x\n",
  446. __func__, *params->filter);
  447. /* this call has a significant side effect: it's
  448. * what makes the packet flow start and stop, like
  449. * activating the CDC Ethernet altsetting.
  450. */
  451. retval = 0;
  452. if (*params->filter) {
  453. params->state = RNDIS_DATA_INITIALIZED;
  454. netif_carrier_on(params->dev);
  455. if (netif_running(params->dev))
  456. netif_wake_queue(params->dev);
  457. } else {
  458. params->state = RNDIS_INITIALIZED;
  459. netif_carrier_off(params->dev);
  460. netif_stop_queue(params->dev);
  461. }
  462. break;
  463. case RNDIS_OID_802_3_MULTICAST_LIST:
  464. /* I think we can ignore this */
  465. pr_debug("%s: RNDIS_OID_802_3_MULTICAST_LIST\n", __func__);
  466. retval = 0;
  467. break;
  468. default:
  469. pr_warn("%s: set unknown OID 0x%08X, size %d\n",
  470. __func__, OID, buf_len);
  471. }
  472. return retval;
  473. }
  474. /*
  475. * Response Functions
  476. */
  477. static int rndis_init_response(struct rndis_params *params,
  478. rndis_init_msg_type *buf)
  479. {
  480. rndis_init_cmplt_type *resp;
  481. rndis_resp_t *r;
  482. if (!params->dev)
  483. return -ENOTSUPP;
  484. r = rndis_add_response(params, sizeof(rndis_init_cmplt_type));
  485. if (!r)
  486. return -ENOMEM;
  487. resp = (rndis_init_cmplt_type *)r->buf;
  488. resp->MessageType = cpu_to_le32(RNDIS_MSG_INIT_C);
  489. resp->MessageLength = cpu_to_le32(52);
  490. resp->RequestID = buf->RequestID; /* Still LE in msg buffer */
  491. resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
  492. resp->MajorVersion = cpu_to_le32(RNDIS_MAJOR_VERSION);
  493. resp->MinorVersion = cpu_to_le32(RNDIS_MINOR_VERSION);
  494. resp->DeviceFlags = cpu_to_le32(RNDIS_DF_CONNECTIONLESS);
  495. resp->Medium = cpu_to_le32(RNDIS_MEDIUM_802_3);
  496. resp->MaxPacketsPerTransfer = cpu_to_le32(1);
  497. resp->MaxTransferSize = cpu_to_le32(
  498. params->dev->mtu
  499. + sizeof(struct ethhdr)
  500. + sizeof(struct rndis_packet_msg_type)
  501. + 22);
  502. resp->PacketAlignmentFactor = cpu_to_le32(0);
  503. resp->AFListOffset = cpu_to_le32(0);
  504. resp->AFListSize = cpu_to_le32(0);
  505. params->resp_avail(params->v);
  506. return 0;
  507. }
  508. static int rndis_query_response(struct rndis_params *params,
  509. rndis_query_msg_type *buf)
  510. {
  511. rndis_query_cmplt_type *resp;
  512. rndis_resp_t *r;
  513. /* pr_debug("%s: OID = %08X\n", __func__, cpu_to_le32(buf->OID)); */
  514. if (!params->dev)
  515. return -ENOTSUPP;
  516. /*
  517. * we need more memory:
  518. * gen_ndis_query_resp expects enough space for
  519. * rndis_query_cmplt_type followed by data.
  520. * oid_supported_list is the largest data reply
  521. */
  522. r = rndis_add_response(params,
  523. sizeof(oid_supported_list) + sizeof(rndis_query_cmplt_type));
  524. if (!r)
  525. return -ENOMEM;
  526. resp = (rndis_query_cmplt_type *)r->buf;
  527. resp->MessageType = cpu_to_le32(RNDIS_MSG_QUERY_C);
  528. resp->RequestID = buf->RequestID; /* Still LE in msg buffer */
  529. if (gen_ndis_query_resp(params, le32_to_cpu(buf->OID),
  530. le32_to_cpu(buf->InformationBufferOffset)
  531. + 8 + (u8 *)buf,
  532. le32_to_cpu(buf->InformationBufferLength),
  533. r)) {
  534. /* OID not supported */
  535. resp->Status = cpu_to_le32(RNDIS_STATUS_NOT_SUPPORTED);
  536. resp->MessageLength = cpu_to_le32(sizeof *resp);
  537. resp->InformationBufferLength = cpu_to_le32(0);
  538. resp->InformationBufferOffset = cpu_to_le32(0);
  539. } else
  540. resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
  541. params->resp_avail(params->v);
  542. return 0;
  543. }
  544. static int rndis_set_response(struct rndis_params *params,
  545. rndis_set_msg_type *buf)
  546. {
  547. u32 BufLength, BufOffset;
  548. rndis_set_cmplt_type *resp;
  549. rndis_resp_t *r;
  550. r = rndis_add_response(params, sizeof(rndis_set_cmplt_type));
  551. if (!r)
  552. return -ENOMEM;
  553. resp = (rndis_set_cmplt_type *)r->buf;
  554. BufLength = le32_to_cpu(buf->InformationBufferLength);
  555. BufOffset = le32_to_cpu(buf->InformationBufferOffset);
  556. #ifdef VERBOSE_DEBUG
  557. pr_debug("%s: Length: %d\n", __func__, BufLength);
  558. pr_debug("%s: Offset: %d\n", __func__, BufOffset);
  559. pr_debug("%s: InfoBuffer: ", __func__);
  560. for (i = 0; i < BufLength; i++) {
  561. pr_debug("%02x ", *(((u8 *) buf) + i + 8 + BufOffset));
  562. }
  563. pr_debug("\n");
  564. #endif
  565. resp->MessageType = cpu_to_le32(RNDIS_MSG_SET_C);
  566. resp->MessageLength = cpu_to_le32(16);
  567. resp->RequestID = buf->RequestID; /* Still LE in msg buffer */
  568. if (gen_ndis_set_resp(params, le32_to_cpu(buf->OID),
  569. ((u8 *)buf) + 8 + BufOffset, BufLength, r))
  570. resp->Status = cpu_to_le32(RNDIS_STATUS_NOT_SUPPORTED);
  571. else
  572. resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
  573. params->resp_avail(params->v);
  574. return 0;
  575. }
  576. static int rndis_reset_response(struct rndis_params *params,
  577. rndis_reset_msg_type *buf)
  578. {
  579. rndis_reset_cmplt_type *resp;
  580. rndis_resp_t *r;
  581. u8 *xbuf;
  582. u32 length;
  583. /* drain the response queue */
  584. while ((xbuf = rndis_get_next_response(params, &length)))
  585. rndis_free_response(params, xbuf);
  586. r = rndis_add_response(params, sizeof(rndis_reset_cmplt_type));
  587. if (!r)
  588. return -ENOMEM;
  589. resp = (rndis_reset_cmplt_type *)r->buf;
  590. resp->MessageType = cpu_to_le32(RNDIS_MSG_RESET_C);
  591. resp->MessageLength = cpu_to_le32(16);
  592. resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
  593. /* resent information */
  594. resp->AddressingReset = cpu_to_le32(1);
  595. params->resp_avail(params->v);
  596. return 0;
  597. }
  598. static int rndis_keepalive_response(struct rndis_params *params,
  599. rndis_keepalive_msg_type *buf)
  600. {
  601. rndis_keepalive_cmplt_type *resp;
  602. rndis_resp_t *r;
  603. /* host "should" check only in RNDIS_DATA_INITIALIZED state */
  604. r = rndis_add_response(params, sizeof(rndis_keepalive_cmplt_type));
  605. if (!r)
  606. return -ENOMEM;
  607. resp = (rndis_keepalive_cmplt_type *)r->buf;
  608. resp->MessageType = cpu_to_le32(RNDIS_MSG_KEEPALIVE_C);
  609. resp->MessageLength = cpu_to_le32(16);
  610. resp->RequestID = buf->RequestID; /* Still LE in msg buffer */
  611. resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
  612. params->resp_avail(params->v);
  613. return 0;
  614. }
  615. /*
  616. * Device to Host Comunication
  617. */
  618. static int rndis_indicate_status_msg(struct rndis_params *params, u32 status)
  619. {
  620. rndis_indicate_status_msg_type *resp;
  621. rndis_resp_t *r;
  622. if (params->state == RNDIS_UNINITIALIZED)
  623. return -ENOTSUPP;
  624. r = rndis_add_response(params, sizeof(rndis_indicate_status_msg_type));
  625. if (!r)
  626. return -ENOMEM;
  627. resp = (rndis_indicate_status_msg_type *)r->buf;
  628. resp->MessageType = cpu_to_le32(RNDIS_MSG_INDICATE);
  629. resp->MessageLength = cpu_to_le32(20);
  630. resp->Status = cpu_to_le32(status);
  631. resp->StatusBufferLength = cpu_to_le32(0);
  632. resp->StatusBufferOffset = cpu_to_le32(0);
  633. params->resp_avail(params->v);
  634. return 0;
  635. }
  636. int rndis_signal_connect(struct rndis_params *params)
  637. {
  638. params->media_state = RNDIS_MEDIA_STATE_CONNECTED;
  639. return rndis_indicate_status_msg(params, RNDIS_STATUS_MEDIA_CONNECT);
  640. }
  641. EXPORT_SYMBOL_GPL(rndis_signal_connect);
  642. int rndis_signal_disconnect(struct rndis_params *params)
  643. {
  644. params->media_state = RNDIS_MEDIA_STATE_DISCONNECTED;
  645. return rndis_indicate_status_msg(params, RNDIS_STATUS_MEDIA_DISCONNECT);
  646. }
  647. EXPORT_SYMBOL_GPL(rndis_signal_disconnect);
  648. void rndis_uninit(struct rndis_params *params)
  649. {
  650. u8 *buf;
  651. u32 length;
  652. if (!params)
  653. return;
  654. params->state = RNDIS_UNINITIALIZED;
  655. /* drain the response queue */
  656. while ((buf = rndis_get_next_response(params, &length)))
  657. rndis_free_response(params, buf);
  658. }
  659. EXPORT_SYMBOL_GPL(rndis_uninit);
  660. void rndis_set_host_mac(struct rndis_params *params, const u8 *addr)
  661. {
  662. params->host_mac = addr;
  663. }
  664. EXPORT_SYMBOL_GPL(rndis_set_host_mac);
  665. /*
  666. * Message Parser
  667. */
  668. int rndis_msg_parser(struct rndis_params *params, u8 *buf)
  669. {
  670. u32 MsgType, MsgLength;
  671. __le32 *tmp;
  672. if (!buf)
  673. return -ENOMEM;
  674. tmp = (__le32 *)buf;
  675. MsgType = get_unaligned_le32(tmp++);
  676. MsgLength = get_unaligned_le32(tmp++);
  677. if (!params)
  678. return -ENOTSUPP;
  679. /* NOTE: RNDIS is *EXTREMELY* chatty ... Windows constantly polls for
  680. * rx/tx statistics and link status, in addition to KEEPALIVE traffic
  681. * and normal HC level polling to see if there's any IN traffic.
  682. */
  683. /* For USB: responses may take up to 10 seconds */
  684. switch (MsgType) {
  685. case RNDIS_MSG_INIT:
  686. pr_debug("%s: RNDIS_MSG_INIT\n",
  687. __func__);
  688. params->state = RNDIS_INITIALIZED;
  689. return rndis_init_response(params, (rndis_init_msg_type *)buf);
  690. case RNDIS_MSG_HALT:
  691. pr_debug("%s: RNDIS_MSG_HALT\n",
  692. __func__);
  693. params->state = RNDIS_UNINITIALIZED;
  694. if (params->dev) {
  695. netif_carrier_off(params->dev);
  696. netif_stop_queue(params->dev);
  697. }
  698. return 0;
  699. case RNDIS_MSG_QUERY:
  700. return rndis_query_response(params,
  701. (rndis_query_msg_type *)buf);
  702. case RNDIS_MSG_SET:
  703. return rndis_set_response(params, (rndis_set_msg_type *)buf);
  704. case RNDIS_MSG_RESET:
  705. pr_debug("%s: RNDIS_MSG_RESET\n",
  706. __func__);
  707. return rndis_reset_response(params,
  708. (rndis_reset_msg_type *)buf);
  709. case RNDIS_MSG_KEEPALIVE:
  710. /* For USB: host does this every 5 seconds */
  711. if (rndis_debug > 1)
  712. pr_debug("%s: RNDIS_MSG_KEEPALIVE\n",
  713. __func__);
  714. return rndis_keepalive_response(params,
  715. (rndis_keepalive_msg_type *)
  716. buf);
  717. default:
  718. /* At least Windows XP emits some undefined RNDIS messages.
  719. * In one case those messages seemed to relate to the host
  720. * suspending itself.
  721. */
  722. pr_warn("%s: unknown RNDIS message 0x%08X len %d\n",
  723. __func__, MsgType, MsgLength);
  724. /* Garbled message can be huge, so limit what we display */
  725. if (MsgLength > 16)
  726. MsgLength = 16;
  727. print_hex_dump_bytes(__func__, DUMP_PREFIX_OFFSET,
  728. buf, MsgLength);
  729. break;
  730. }
  731. return -ENOTSUPP;
  732. }
  733. EXPORT_SYMBOL_GPL(rndis_msg_parser);
  734. static inline int rndis_get_nr(void)
  735. {
  736. return ida_simple_get(&rndis_ida, 0, 0, GFP_KERNEL);
  737. }
  738. static inline void rndis_put_nr(int nr)
  739. {
  740. ida_simple_remove(&rndis_ida, nr);
  741. }
  742. struct rndis_params *rndis_register(void (*resp_avail)(void *v), void *v)
  743. {
  744. struct rndis_params *params;
  745. int i;
  746. if (!resp_avail)
  747. return ERR_PTR(-EINVAL);
  748. i = rndis_get_nr();
  749. if (i < 0) {
  750. pr_debug("failed\n");
  751. return ERR_PTR(-ENODEV);
  752. }
  753. params = kzalloc(sizeof(*params), GFP_KERNEL);
  754. if (!params) {
  755. rndis_put_nr(i);
  756. return ERR_PTR(-ENOMEM);
  757. }
  758. #ifdef CONFIG_USB_GADGET_DEBUG_FILES
  759. {
  760. struct proc_dir_entry *proc_entry;
  761. char name[20];
  762. sprintf(name, NAME_TEMPLATE, i);
  763. proc_entry = proc_create_data(name, 0660, NULL,
  764. &rndis_proc_fops, params);
  765. if (!proc_entry) {
  766. kfree(params);
  767. rndis_put_nr(i);
  768. return ERR_PTR(-EIO);
  769. }
  770. }
  771. #endif
  772. params->confignr = i;
  773. params->used = 1;
  774. params->state = RNDIS_UNINITIALIZED;
  775. params->media_state = RNDIS_MEDIA_STATE_DISCONNECTED;
  776. params->resp_avail = resp_avail;
  777. params->v = v;
  778. INIT_LIST_HEAD(&params->resp_queue);
  779. pr_debug("%s: configNr = %d\n", __func__, i);
  780. return params;
  781. }
  782. EXPORT_SYMBOL_GPL(rndis_register);
  783. void rndis_deregister(struct rndis_params *params)
  784. {
  785. int i;
  786. pr_debug("%s:\n", __func__);
  787. if (!params)
  788. return;
  789. i = params->confignr;
  790. #ifdef CONFIG_USB_GADGET_DEBUG_FILES
  791. {
  792. char name[20];
  793. sprintf(name, NAME_TEMPLATE, i);
  794. remove_proc_entry(name, NULL);
  795. }
  796. #endif
  797. kfree(params);
  798. rndis_put_nr(i);
  799. }
  800. EXPORT_SYMBOL_GPL(rndis_deregister);
  801. int rndis_set_param_dev(struct rndis_params *params, struct net_device *dev,
  802. u16 *cdc_filter)
  803. {
  804. pr_debug("%s:\n", __func__);
  805. if (!dev)
  806. return -EINVAL;
  807. if (!params)
  808. return -1;
  809. params->dev = dev;
  810. params->filter = cdc_filter;
  811. return 0;
  812. }
  813. EXPORT_SYMBOL_GPL(rndis_set_param_dev);
  814. int rndis_set_param_vendor(struct rndis_params *params, u32 vendorID,
  815. const char *vendorDescr)
  816. {
  817. pr_debug("%s:\n", __func__);
  818. if (!vendorDescr) return -1;
  819. if (!params)
  820. return -1;
  821. params->vendorID = vendorID;
  822. params->vendorDescr = vendorDescr;
  823. return 0;
  824. }
  825. EXPORT_SYMBOL_GPL(rndis_set_param_vendor);
  826. int rndis_set_param_medium(struct rndis_params *params, u32 medium, u32 speed)
  827. {
  828. pr_debug("%s: %u %u\n", __func__, medium, speed);
  829. if (!params)
  830. return -1;
  831. params->medium = medium;
  832. params->speed = speed;
  833. return 0;
  834. }
  835. EXPORT_SYMBOL_GPL(rndis_set_param_medium);
  836. void rndis_add_hdr(struct sk_buff *skb)
  837. {
  838. struct rndis_packet_msg_type *header;
  839. if (!skb)
  840. return;
  841. header = skb_push(skb, sizeof(*header));
  842. memset(header, 0, sizeof *header);
  843. header->MessageType = cpu_to_le32(RNDIS_MSG_PACKET);
  844. header->MessageLength = cpu_to_le32(skb->len);
  845. header->DataOffset = cpu_to_le32(36);
  846. header->DataLength = cpu_to_le32(skb->len - sizeof(*header));
  847. }
  848. EXPORT_SYMBOL_GPL(rndis_add_hdr);
  849. void rndis_free_response(struct rndis_params *params, u8 *buf)
  850. {
  851. rndis_resp_t *r, *n;
  852. list_for_each_entry_safe(r, n, &params->resp_queue, list) {
  853. if (r->buf == buf) {
  854. list_del(&r->list);
  855. kfree(r);
  856. }
  857. }
  858. }
  859. EXPORT_SYMBOL_GPL(rndis_free_response);
  860. u8 *rndis_get_next_response(struct rndis_params *params, u32 *length)
  861. {
  862. rndis_resp_t *r, *n;
  863. if (!length) return NULL;
  864. list_for_each_entry_safe(r, n, &params->resp_queue, list) {
  865. if (!r->send) {
  866. r->send = 1;
  867. *length = r->length;
  868. return r->buf;
  869. }
  870. }
  871. return NULL;
  872. }
  873. EXPORT_SYMBOL_GPL(rndis_get_next_response);
  874. static rndis_resp_t *rndis_add_response(struct rndis_params *params, u32 length)
  875. {
  876. rndis_resp_t *r;
  877. /* NOTE: this gets copied into ether.c USB_BUFSIZ bytes ... */
  878. r = kmalloc(sizeof(rndis_resp_t) + length, GFP_ATOMIC);
  879. if (!r) return NULL;
  880. r->buf = (u8 *)(r + 1);
  881. r->length = length;
  882. r->send = 0;
  883. list_add_tail(&r->list, &params->resp_queue);
  884. return r;
  885. }
  886. int rndis_rm_hdr(struct gether *port,
  887. struct sk_buff *skb,
  888. struct sk_buff_head *list)
  889. {
  890. /* tmp points to a struct rndis_packet_msg_type */
  891. __le32 *tmp = (void *)skb->data;
  892. /* MessageType, MessageLength */
  893. if (cpu_to_le32(RNDIS_MSG_PACKET)
  894. != get_unaligned(tmp++)) {
  895. dev_kfree_skb_any(skb);
  896. return -EINVAL;
  897. }
  898. tmp++;
  899. /* DataOffset, DataLength */
  900. if (!skb_pull(skb, get_unaligned_le32(tmp++) + 8)) {
  901. dev_kfree_skb_any(skb);
  902. return -EOVERFLOW;
  903. }
  904. skb_trim(skb, get_unaligned_le32(tmp++));
  905. skb_queue_tail(list, skb);
  906. return 0;
  907. }
  908. EXPORT_SYMBOL_GPL(rndis_rm_hdr);
  909. #ifdef CONFIG_USB_GADGET_DEBUG_FILES
  910. static int rndis_proc_show(struct seq_file *m, void *v)
  911. {
  912. rndis_params *param = m->private;
  913. seq_printf(m,
  914. "Config Nr. %d\n"
  915. "used : %s\n"
  916. "state : %s\n"
  917. "medium : 0x%08X\n"
  918. "speed : %d\n"
  919. "cable : %s\n"
  920. "vendor ID : 0x%08X\n"
  921. "vendor : %s\n",
  922. param->confignr, (param->used) ? "y" : "n",
  923. ({ char *s = "?";
  924. switch (param->state) {
  925. case RNDIS_UNINITIALIZED:
  926. s = "RNDIS_UNINITIALIZED"; break;
  927. case RNDIS_INITIALIZED:
  928. s = "RNDIS_INITIALIZED"; break;
  929. case RNDIS_DATA_INITIALIZED:
  930. s = "RNDIS_DATA_INITIALIZED"; break;
  931. } s; }),
  932. param->medium,
  933. (param->media_state) ? 0 : param->speed*100,
  934. (param->media_state) ? "disconnected" : "connected",
  935. param->vendorID, param->vendorDescr);
  936. return 0;
  937. }
  938. static ssize_t rndis_proc_write(struct file *file, const char __user *buffer,
  939. size_t count, loff_t *ppos)
  940. {
  941. rndis_params *p = PDE_DATA(file_inode(file));
  942. u32 speed = 0;
  943. int i, fl_speed = 0;
  944. for (i = 0; i < count; i++) {
  945. char c;
  946. if (get_user(c, buffer))
  947. return -EFAULT;
  948. switch (c) {
  949. case '0':
  950. case '1':
  951. case '2':
  952. case '3':
  953. case '4':
  954. case '5':
  955. case '6':
  956. case '7':
  957. case '8':
  958. case '9':
  959. fl_speed = 1;
  960. speed = speed * 10 + c - '0';
  961. break;
  962. case 'C':
  963. case 'c':
  964. rndis_signal_connect(p);
  965. break;
  966. case 'D':
  967. case 'd':
  968. rndis_signal_disconnect(p);
  969. break;
  970. default:
  971. if (fl_speed) p->speed = speed;
  972. else pr_debug("%c is not valid\n", c);
  973. break;
  974. }
  975. buffer++;
  976. }
  977. return count;
  978. }
  979. static int rndis_proc_open(struct inode *inode, struct file *file)
  980. {
  981. return single_open(file, rndis_proc_show, PDE_DATA(inode));
  982. }
  983. static const struct file_operations rndis_proc_fops = {
  984. .owner = THIS_MODULE,
  985. .open = rndis_proc_open,
  986. .read = seq_read,
  987. .llseek = seq_lseek,
  988. .release = single_release,
  989. .write = rndis_proc_write,
  990. };
  991. #define NAME_TEMPLATE "driver/rndis-%03d"
  992. #endif /* CONFIG_USB_GADGET_DEBUG_FILES */