4 * Authors: Benedikt Spranger, Pengutronix
5 * Robert Schwebel, Pengutronix
7 * This program is free software; you can redistribute it and/or
8 * modify it under the terms of the GNU General Public License
9 * version 2, as published by the Free Software Foundation.
11 * This software was originally developed in conformance with
12 * Microsoft's Remote NDIS Specification License Agreement.
15 * Fixed message length bug in init_response
18 * Fixed rndis_rm_hdr length bug.
20 * Copyright (C) 2004 by David Brownell
21 * updates to merge with Linux 2.6, better match RNDIS spec
24 #include <linux/module.h>
25 #include <linux/moduleparam.h>
26 #include <linux/kernel.h>
27 #include <linux/errno.h>
28 #include <linux/idr.h>
29 #include <linux/list.h>
30 #include <linux/proc_fs.h>
31 #include <linux/slab.h>
32 #include <linux/seq_file.h>
33 #include <linux/netdevice.h>
36 #include <asm/byteorder.h>
37 #include <asm/unaligned.h>
46 /* The driver for your USB chip needs to support ep0 OUT to work with
47 * RNDIS, plus all three CDC Ethernet endpoints (interrupt not optional).
49 * Windows hosts need an INF file like Documentation/usb/linux.inf
50 * and will be happier if you provide the host_addr module parameter.
54 static int rndis_debug = 0;
55 module_param (rndis_debug, int, 0);
56 MODULE_PARM_DESC (rndis_debug, "enable debugging");
61 #ifdef CONFIG_USB_GADGET_DEBUG_FILES
63 #define NAME_TEMPLATE "driver/rndis-%03d"
65 #endif /* CONFIG_USB_GADGET_DEBUG_FILES */
67 static DEFINE_IDA(rndis_ida);
70 static const __le32 rndis_driver_version = cpu_to_le32(1);
72 /* Function Prototypes */
73 static rndis_resp_t *rndis_add_response(struct rndis_params *params,
76 #ifdef CONFIG_USB_GADGET_DEBUG_FILES
78 static const struct file_operations rndis_proc_fops;
80 #endif /* CONFIG_USB_GADGET_DEBUG_FILES */
83 static const u32 oid_supported_list[] = {
84 /* the general stuff */
85 RNDIS_OID_GEN_SUPPORTED_LIST,
86 RNDIS_OID_GEN_HARDWARE_STATUS,
87 RNDIS_OID_GEN_MEDIA_SUPPORTED,
88 RNDIS_OID_GEN_MEDIA_IN_USE,
89 RNDIS_OID_GEN_MAXIMUM_FRAME_SIZE,
90 RNDIS_OID_GEN_LINK_SPEED,
91 RNDIS_OID_GEN_TRANSMIT_BLOCK_SIZE,
92 RNDIS_OID_GEN_RECEIVE_BLOCK_SIZE,
93 RNDIS_OID_GEN_VENDOR_ID,
94 RNDIS_OID_GEN_VENDOR_DESCRIPTION,
95 RNDIS_OID_GEN_VENDOR_DRIVER_VERSION,
96 RNDIS_OID_GEN_CURRENT_PACKET_FILTER,
97 RNDIS_OID_GEN_MAXIMUM_TOTAL_SIZE,
98 RNDIS_OID_GEN_MEDIA_CONNECT_STATUS,
99 RNDIS_OID_GEN_PHYSICAL_MEDIUM,
101 /* the statistical stuff */
102 RNDIS_OID_GEN_XMIT_OK,
103 RNDIS_OID_GEN_RCV_OK,
104 RNDIS_OID_GEN_XMIT_ERROR,
105 RNDIS_OID_GEN_RCV_ERROR,
106 RNDIS_OID_GEN_RCV_NO_BUFFER,
107 #ifdef RNDIS_OPTIONAL_STATS
108 RNDIS_OID_GEN_DIRECTED_BYTES_XMIT,
109 RNDIS_OID_GEN_DIRECTED_FRAMES_XMIT,
110 RNDIS_OID_GEN_MULTICAST_BYTES_XMIT,
111 RNDIS_OID_GEN_MULTICAST_FRAMES_XMIT,
112 RNDIS_OID_GEN_BROADCAST_BYTES_XMIT,
113 RNDIS_OID_GEN_BROADCAST_FRAMES_XMIT,
114 RNDIS_OID_GEN_DIRECTED_BYTES_RCV,
115 RNDIS_OID_GEN_DIRECTED_FRAMES_RCV,
116 RNDIS_OID_GEN_MULTICAST_BYTES_RCV,
117 RNDIS_OID_GEN_MULTICAST_FRAMES_RCV,
118 RNDIS_OID_GEN_BROADCAST_BYTES_RCV,
119 RNDIS_OID_GEN_BROADCAST_FRAMES_RCV,
120 RNDIS_OID_GEN_RCV_CRC_ERROR,
121 RNDIS_OID_GEN_TRANSMIT_QUEUE_LENGTH,
122 #endif /* RNDIS_OPTIONAL_STATS */
124 /* mandatory 802.3 */
125 /* the general stuff */
126 RNDIS_OID_802_3_PERMANENT_ADDRESS,
127 RNDIS_OID_802_3_CURRENT_ADDRESS,
128 RNDIS_OID_802_3_MULTICAST_LIST,
129 RNDIS_OID_802_3_MAC_OPTIONS,
130 RNDIS_OID_802_3_MAXIMUM_LIST_SIZE,
132 /* the statistical stuff */
133 RNDIS_OID_802_3_RCV_ERROR_ALIGNMENT,
134 RNDIS_OID_802_3_XMIT_ONE_COLLISION,
135 RNDIS_OID_802_3_XMIT_MORE_COLLISIONS,
136 #ifdef RNDIS_OPTIONAL_STATS
137 RNDIS_OID_802_3_XMIT_DEFERRED,
138 RNDIS_OID_802_3_XMIT_MAX_COLLISIONS,
139 RNDIS_OID_802_3_RCV_OVERRUN,
140 RNDIS_OID_802_3_XMIT_UNDERRUN,
141 RNDIS_OID_802_3_XMIT_HEARTBEAT_FAILURE,
142 RNDIS_OID_802_3_XMIT_TIMES_CRS_LOST,
143 RNDIS_OID_802_3_XMIT_LATE_COLLISIONS,
144 #endif /* RNDIS_OPTIONAL_STATS */
147 /* PM and wakeup are "mandatory" for USB, but the RNDIS specs
148 * don't say what they mean ... and the NDIS specs are often
149 * confusing and/or ambiguous in this context. (That is, more
150 * so than their specs for the other OIDs.)
152 * FIXME someone who knows what these should do, please
156 /* power management */
157 OID_PNP_CAPABILITIES,
163 OID_PNP_ENABLE_WAKE_UP,
164 OID_PNP_ADD_WAKE_UP_PATTERN,
165 OID_PNP_REMOVE_WAKE_UP_PATTERN,
166 #endif /* RNDIS_WAKEUP */
167 #endif /* RNDIS_PM */
172 static int gen_ndis_query_resp(struct rndis_params *params, u32 OID, u8 *buf,
173 unsigned buf_len, rndis_resp_t *r)
175 int retval = -ENOTSUPP;
176 u32 length = 4; /* usually */
179 rndis_query_cmplt_type *resp;
180 struct net_device *net;
181 struct rtnl_link_stats64 temp;
182 const struct rtnl_link_stats64 *stats;
184 if (!r) return -ENOMEM;
185 resp = (rndis_query_cmplt_type *)r->buf;
187 if (!resp) return -ENOMEM;
189 if (buf_len && rndis_debug > 1) {
190 pr_debug("query OID %08x value, len %d:\n", OID, buf_len);
191 for (i = 0; i < buf_len; i += 16) {
192 pr_debug("%03d: %08x %08x %08x %08x\n", i,
193 get_unaligned_le32(&buf[i]),
194 get_unaligned_le32(&buf[i + 4]),
195 get_unaligned_le32(&buf[i + 8]),
196 get_unaligned_le32(&buf[i + 12]));
200 /* response goes here, right after the header */
201 outbuf = (__le32 *)&resp[1];
202 resp->InformationBufferOffset = cpu_to_le32(16);
205 stats = dev_get_stats(net, &temp);
209 /* general oids (table 4-1) */
212 case RNDIS_OID_GEN_SUPPORTED_LIST:
213 pr_debug("%s: RNDIS_OID_GEN_SUPPORTED_LIST\n", __func__);
214 length = sizeof(oid_supported_list);
215 count = length / sizeof(u32);
216 for (i = 0; i < count; i++)
217 outbuf[i] = cpu_to_le32(oid_supported_list[i]);
222 case RNDIS_OID_GEN_HARDWARE_STATUS:
223 pr_debug("%s: RNDIS_OID_GEN_HARDWARE_STATUS\n", __func__);
225 * Hardware must be ready to receive high level protocols.
227 * reddite ergo quae sunt Caesaris Caesari
228 * et quae sunt Dei Deo!
230 *outbuf = cpu_to_le32(0);
235 case RNDIS_OID_GEN_MEDIA_SUPPORTED:
236 pr_debug("%s: RNDIS_OID_GEN_MEDIA_SUPPORTED\n", __func__);
237 *outbuf = cpu_to_le32(params->medium);
242 case RNDIS_OID_GEN_MEDIA_IN_USE:
243 pr_debug("%s: RNDIS_OID_GEN_MEDIA_IN_USE\n", __func__);
244 /* one medium, one transport... (maybe you do it better) */
245 *outbuf = cpu_to_le32(params->medium);
250 case RNDIS_OID_GEN_MAXIMUM_FRAME_SIZE:
251 pr_debug("%s: RNDIS_OID_GEN_MAXIMUM_FRAME_SIZE\n", __func__);
253 *outbuf = cpu_to_le32(params->dev->mtu);
259 case RNDIS_OID_GEN_LINK_SPEED:
261 pr_debug("%s: RNDIS_OID_GEN_LINK_SPEED\n", __func__);
262 if (params->media_state == RNDIS_MEDIA_STATE_DISCONNECTED)
263 *outbuf = cpu_to_le32(0);
265 *outbuf = cpu_to_le32(params->speed);
270 case RNDIS_OID_GEN_TRANSMIT_BLOCK_SIZE:
271 pr_debug("%s: RNDIS_OID_GEN_TRANSMIT_BLOCK_SIZE\n", __func__);
273 *outbuf = cpu_to_le32(params->dev->mtu);
279 case RNDIS_OID_GEN_RECEIVE_BLOCK_SIZE:
280 pr_debug("%s: RNDIS_OID_GEN_RECEIVE_BLOCK_SIZE\n", __func__);
282 *outbuf = cpu_to_le32(params->dev->mtu);
288 case RNDIS_OID_GEN_VENDOR_ID:
289 pr_debug("%s: RNDIS_OID_GEN_VENDOR_ID\n", __func__);
290 *outbuf = cpu_to_le32(params->vendorID);
295 case RNDIS_OID_GEN_VENDOR_DESCRIPTION:
296 pr_debug("%s: RNDIS_OID_GEN_VENDOR_DESCRIPTION\n", __func__);
297 if (params->vendorDescr) {
298 length = strlen(params->vendorDescr);
299 memcpy(outbuf, params->vendorDescr, length);
306 case RNDIS_OID_GEN_VENDOR_DRIVER_VERSION:
307 pr_debug("%s: RNDIS_OID_GEN_VENDOR_DRIVER_VERSION\n", __func__);
309 *outbuf = rndis_driver_version;
314 case RNDIS_OID_GEN_CURRENT_PACKET_FILTER:
315 pr_debug("%s: RNDIS_OID_GEN_CURRENT_PACKET_FILTER\n", __func__);
316 *outbuf = cpu_to_le32(*params->filter);
321 case RNDIS_OID_GEN_MAXIMUM_TOTAL_SIZE:
322 pr_debug("%s: RNDIS_OID_GEN_MAXIMUM_TOTAL_SIZE\n", __func__);
323 *outbuf = cpu_to_le32(RNDIS_MAX_TOTAL_SIZE);
328 case RNDIS_OID_GEN_MEDIA_CONNECT_STATUS:
330 pr_debug("%s: RNDIS_OID_GEN_MEDIA_CONNECT_STATUS\n", __func__);
331 *outbuf = cpu_to_le32(params->media_state);
335 case RNDIS_OID_GEN_PHYSICAL_MEDIUM:
336 pr_debug("%s: RNDIS_OID_GEN_PHYSICAL_MEDIUM\n", __func__);
337 *outbuf = cpu_to_le32(0);
341 /* The RNDIS specification is incomplete/wrong. Some versions
342 * of MS-Windows expect OIDs that aren't specified there. Other
343 * versions emit undefined RNDIS messages. DOCUMENT ALL THESE!
345 case RNDIS_OID_GEN_MAC_OPTIONS: /* from WinME */
346 pr_debug("%s: RNDIS_OID_GEN_MAC_OPTIONS\n", __func__);
347 *outbuf = cpu_to_le32(
348 RNDIS_MAC_OPTION_RECEIVE_SERIALIZED
349 | RNDIS_MAC_OPTION_FULL_DUPLEX);
353 /* statistics OIDs (table 4-2) */
356 case RNDIS_OID_GEN_XMIT_OK:
358 pr_debug("%s: RNDIS_OID_GEN_XMIT_OK\n", __func__);
360 *outbuf = cpu_to_le32(stats->tx_packets
361 - stats->tx_errors - stats->tx_dropped);
367 case RNDIS_OID_GEN_RCV_OK:
369 pr_debug("%s: RNDIS_OID_GEN_RCV_OK\n", __func__);
371 *outbuf = cpu_to_le32(stats->rx_packets
372 - stats->rx_errors - stats->rx_dropped);
378 case RNDIS_OID_GEN_XMIT_ERROR:
380 pr_debug("%s: RNDIS_OID_GEN_XMIT_ERROR\n", __func__);
382 *outbuf = cpu_to_le32(stats->tx_errors);
388 case RNDIS_OID_GEN_RCV_ERROR:
390 pr_debug("%s: RNDIS_OID_GEN_RCV_ERROR\n", __func__);
392 *outbuf = cpu_to_le32(stats->rx_errors);
398 case RNDIS_OID_GEN_RCV_NO_BUFFER:
399 pr_debug("%s: RNDIS_OID_GEN_RCV_NO_BUFFER\n", __func__);
401 *outbuf = cpu_to_le32(stats->rx_dropped);
406 /* ieee802.3 OIDs (table 4-3) */
409 case RNDIS_OID_802_3_PERMANENT_ADDRESS:
410 pr_debug("%s: RNDIS_OID_802_3_PERMANENT_ADDRESS\n", __func__);
413 memcpy(outbuf, params->host_mac, length);
419 case RNDIS_OID_802_3_CURRENT_ADDRESS:
420 pr_debug("%s: RNDIS_OID_802_3_CURRENT_ADDRESS\n", __func__);
423 memcpy(outbuf, params->host_mac, length);
429 case RNDIS_OID_802_3_MULTICAST_LIST:
430 pr_debug("%s: RNDIS_OID_802_3_MULTICAST_LIST\n", __func__);
431 /* Multicast base address only */
432 *outbuf = cpu_to_le32(0xE0000000);
437 case RNDIS_OID_802_3_MAXIMUM_LIST_SIZE:
438 pr_debug("%s: RNDIS_OID_802_3_MAXIMUM_LIST_SIZE\n", __func__);
439 /* Multicast base address only */
440 *outbuf = cpu_to_le32(1);
444 case RNDIS_OID_802_3_MAC_OPTIONS:
445 pr_debug("%s: RNDIS_OID_802_3_MAC_OPTIONS\n", __func__);
446 *outbuf = cpu_to_le32(0);
450 /* ieee802.3 statistics OIDs (table 4-4) */
453 case RNDIS_OID_802_3_RCV_ERROR_ALIGNMENT:
454 pr_debug("%s: RNDIS_OID_802_3_RCV_ERROR_ALIGNMENT\n", __func__);
456 *outbuf = cpu_to_le32(stats->rx_frame_errors);
462 case RNDIS_OID_802_3_XMIT_ONE_COLLISION:
463 pr_debug("%s: RNDIS_OID_802_3_XMIT_ONE_COLLISION\n", __func__);
464 *outbuf = cpu_to_le32(0);
469 case RNDIS_OID_802_3_XMIT_MORE_COLLISIONS:
470 pr_debug("%s: RNDIS_OID_802_3_XMIT_MORE_COLLISIONS\n", __func__);
471 *outbuf = cpu_to_le32(0);
476 pr_warn("%s: query unknown OID 0x%08X\n", __func__, OID);
481 resp->InformationBufferLength = cpu_to_le32(length);
482 r->length = length + sizeof(*resp);
483 resp->MessageLength = cpu_to_le32(r->length);
487 static int gen_ndis_set_resp(struct rndis_params *params, u32 OID,
488 u8 *buf, u32 buf_len, rndis_resp_t *r)
490 rndis_set_cmplt_type *resp;
491 int i, retval = -ENOTSUPP;
495 resp = (rndis_set_cmplt_type *)r->buf;
499 if (buf_len && rndis_debug > 1) {
500 pr_debug("set OID %08x value, len %d:\n", OID, buf_len);
501 for (i = 0; i < buf_len; i += 16) {
502 pr_debug("%03d: %08x %08x %08x %08x\n", i,
503 get_unaligned_le32(&buf[i]),
504 get_unaligned_le32(&buf[i + 4]),
505 get_unaligned_le32(&buf[i + 8]),
506 get_unaligned_le32(&buf[i + 12]));
511 case RNDIS_OID_GEN_CURRENT_PACKET_FILTER:
513 /* these NDIS_PACKET_TYPE_* bitflags are shared with
514 * cdc_filter; it's not RNDIS-specific
515 * NDIS_PACKET_TYPE_x == USB_CDC_PACKET_TYPE_x for x in:
516 * PROMISCUOUS, DIRECTED,
517 * MULTICAST, ALL_MULTICAST, BROADCAST
519 *params->filter = (u16)get_unaligned_le32(buf);
520 pr_debug("%s: RNDIS_OID_GEN_CURRENT_PACKET_FILTER %08x\n",
521 __func__, *params->filter);
523 /* this call has a significant side effect: it's
524 * what makes the packet flow start and stop, like
525 * activating the CDC Ethernet altsetting.
528 if (*params->filter) {
529 params->state = RNDIS_DATA_INITIALIZED;
530 netif_carrier_on(params->dev);
531 if (netif_running(params->dev))
532 netif_wake_queue(params->dev);
534 params->state = RNDIS_INITIALIZED;
535 netif_carrier_off(params->dev);
536 netif_stop_queue(params->dev);
540 case RNDIS_OID_802_3_MULTICAST_LIST:
541 /* I think we can ignore this */
542 pr_debug("%s: RNDIS_OID_802_3_MULTICAST_LIST\n", __func__);
547 pr_warn("%s: set unknown OID 0x%08X, size %d\n",
548 __func__, OID, buf_len);
558 static int rndis_init_response(struct rndis_params *params,
559 rndis_init_msg_type *buf)
561 rndis_init_cmplt_type *resp;
567 r = rndis_add_response(params, sizeof(rndis_init_cmplt_type));
570 resp = (rndis_init_cmplt_type *)r->buf;
572 resp->MessageType = cpu_to_le32(RNDIS_MSG_INIT_C);
573 resp->MessageLength = cpu_to_le32(52);
574 resp->RequestID = buf->RequestID; /* Still LE in msg buffer */
575 resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
576 resp->MajorVersion = cpu_to_le32(RNDIS_MAJOR_VERSION);
577 resp->MinorVersion = cpu_to_le32(RNDIS_MINOR_VERSION);
578 resp->DeviceFlags = cpu_to_le32(RNDIS_DF_CONNECTIONLESS);
579 resp->Medium = cpu_to_le32(RNDIS_MEDIUM_802_3);
580 resp->MaxPacketsPerTransfer = cpu_to_le32(1);
581 resp->MaxTransferSize = cpu_to_le32(
583 + sizeof(struct ethhdr)
584 + sizeof(struct rndis_packet_msg_type)
586 resp->PacketAlignmentFactor = cpu_to_le32(0);
587 resp->AFListOffset = cpu_to_le32(0);
588 resp->AFListSize = cpu_to_le32(0);
590 params->resp_avail(params->v);
594 static int rndis_query_response(struct rndis_params *params,
595 rndis_query_msg_type *buf)
597 rndis_query_cmplt_type *resp;
600 /* pr_debug("%s: OID = %08X\n", __func__, cpu_to_le32(buf->OID)); */
605 * we need more memory:
606 * gen_ndis_query_resp expects enough space for
607 * rndis_query_cmplt_type followed by data.
608 * oid_supported_list is the largest data reply
610 r = rndis_add_response(params,
611 sizeof(oid_supported_list) + sizeof(rndis_query_cmplt_type));
614 resp = (rndis_query_cmplt_type *)r->buf;
616 resp->MessageType = cpu_to_le32(RNDIS_MSG_QUERY_C);
617 resp->RequestID = buf->RequestID; /* Still LE in msg buffer */
619 if (gen_ndis_query_resp(params, le32_to_cpu(buf->OID),
620 le32_to_cpu(buf->InformationBufferOffset)
622 le32_to_cpu(buf->InformationBufferLength),
624 /* OID not supported */
625 resp->Status = cpu_to_le32(RNDIS_STATUS_NOT_SUPPORTED);
626 resp->MessageLength = cpu_to_le32(sizeof *resp);
627 resp->InformationBufferLength = cpu_to_le32(0);
628 resp->InformationBufferOffset = cpu_to_le32(0);
630 resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
632 params->resp_avail(params->v);
636 static int rndis_set_response(struct rndis_params *params,
637 rndis_set_msg_type *buf)
639 u32 BufLength, BufOffset;
640 rndis_set_cmplt_type *resp;
643 r = rndis_add_response(params, sizeof(rndis_set_cmplt_type));
646 resp = (rndis_set_cmplt_type *)r->buf;
648 BufLength = le32_to_cpu(buf->InformationBufferLength);
649 BufOffset = le32_to_cpu(buf->InformationBufferOffset);
652 pr_debug("%s: Length: %d\n", __func__, BufLength);
653 pr_debug("%s: Offset: %d\n", __func__, BufOffset);
654 pr_debug("%s: InfoBuffer: ", __func__);
656 for (i = 0; i < BufLength; i++) {
657 pr_debug("%02x ", *(((u8 *) buf) + i + 8 + BufOffset));
663 resp->MessageType = cpu_to_le32(RNDIS_MSG_SET_C);
664 resp->MessageLength = cpu_to_le32(16);
665 resp->RequestID = buf->RequestID; /* Still LE in msg buffer */
666 if (gen_ndis_set_resp(params, le32_to_cpu(buf->OID),
667 ((u8 *)buf) + 8 + BufOffset, BufLength, r))
668 resp->Status = cpu_to_le32(RNDIS_STATUS_NOT_SUPPORTED);
670 resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
672 params->resp_avail(params->v);
676 static int rndis_reset_response(struct rndis_params *params,
677 rndis_reset_msg_type *buf)
679 rndis_reset_cmplt_type *resp;
684 /* drain the response queue */
685 while ((xbuf = rndis_get_next_response(params, &length)))
686 rndis_free_response(params, xbuf);
688 r = rndis_add_response(params, sizeof(rndis_reset_cmplt_type));
691 resp = (rndis_reset_cmplt_type *)r->buf;
693 resp->MessageType = cpu_to_le32(RNDIS_MSG_RESET_C);
694 resp->MessageLength = cpu_to_le32(16);
695 resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
696 /* resent information */
697 resp->AddressingReset = cpu_to_le32(1);
699 params->resp_avail(params->v);
703 static int rndis_keepalive_response(struct rndis_params *params,
704 rndis_keepalive_msg_type *buf)
706 rndis_keepalive_cmplt_type *resp;
709 /* host "should" check only in RNDIS_DATA_INITIALIZED state */
711 r = rndis_add_response(params, sizeof(rndis_keepalive_cmplt_type));
714 resp = (rndis_keepalive_cmplt_type *)r->buf;
716 resp->MessageType = cpu_to_le32(RNDIS_MSG_KEEPALIVE_C);
717 resp->MessageLength = cpu_to_le32(16);
718 resp->RequestID = buf->RequestID; /* Still LE in msg buffer */
719 resp->Status = cpu_to_le32(RNDIS_STATUS_SUCCESS);
721 params->resp_avail(params->v);
727 * Device to Host Comunication
729 static int rndis_indicate_status_msg(struct rndis_params *params, u32 status)
731 rndis_indicate_status_msg_type *resp;
734 if (params->state == RNDIS_UNINITIALIZED)
737 r = rndis_add_response(params, sizeof(rndis_indicate_status_msg_type));
740 resp = (rndis_indicate_status_msg_type *)r->buf;
742 resp->MessageType = cpu_to_le32(RNDIS_MSG_INDICATE);
743 resp->MessageLength = cpu_to_le32(20);
744 resp->Status = cpu_to_le32(status);
745 resp->StatusBufferLength = cpu_to_le32(0);
746 resp->StatusBufferOffset = cpu_to_le32(0);
748 params->resp_avail(params->v);
752 int rndis_signal_connect(struct rndis_params *params)
754 params->media_state = RNDIS_MEDIA_STATE_CONNECTED;
755 return rndis_indicate_status_msg(params, RNDIS_STATUS_MEDIA_CONNECT);
757 EXPORT_SYMBOL_GPL(rndis_signal_connect);
759 int rndis_signal_disconnect(struct rndis_params *params)
761 params->media_state = RNDIS_MEDIA_STATE_DISCONNECTED;
762 return rndis_indicate_status_msg(params, RNDIS_STATUS_MEDIA_DISCONNECT);
764 EXPORT_SYMBOL_GPL(rndis_signal_disconnect);
766 void rndis_uninit(struct rndis_params *params)
773 params->state = RNDIS_UNINITIALIZED;
775 /* drain the response queue */
776 while ((buf = rndis_get_next_response(params, &length)))
777 rndis_free_response(params, buf);
779 EXPORT_SYMBOL_GPL(rndis_uninit);
781 void rndis_set_host_mac(struct rndis_params *params, const u8 *addr)
783 params->host_mac = addr;
785 EXPORT_SYMBOL_GPL(rndis_set_host_mac);
790 int rndis_msg_parser(struct rndis_params *params, u8 *buf)
792 u32 MsgType, MsgLength;
799 MsgType = get_unaligned_le32(tmp++);
800 MsgLength = get_unaligned_le32(tmp++);
805 /* NOTE: RNDIS is *EXTREMELY* chatty ... Windows constantly polls for
806 * rx/tx statistics and link status, in addition to KEEPALIVE traffic
807 * and normal HC level polling to see if there's any IN traffic.
810 /* For USB: responses may take up to 10 seconds */
813 pr_debug("%s: RNDIS_MSG_INIT\n",
815 params->state = RNDIS_INITIALIZED;
816 return rndis_init_response(params, (rndis_init_msg_type *)buf);
819 pr_debug("%s: RNDIS_MSG_HALT\n",
821 params->state = RNDIS_UNINITIALIZED;
823 netif_carrier_off(params->dev);
824 netif_stop_queue(params->dev);
828 case RNDIS_MSG_QUERY:
829 return rndis_query_response(params,
830 (rndis_query_msg_type *)buf);
833 return rndis_set_response(params, (rndis_set_msg_type *)buf);
835 case RNDIS_MSG_RESET:
836 pr_debug("%s: RNDIS_MSG_RESET\n",
838 return rndis_reset_response(params,
839 (rndis_reset_msg_type *)buf);
841 case RNDIS_MSG_KEEPALIVE:
842 /* For USB: host does this every 5 seconds */
844 pr_debug("%s: RNDIS_MSG_KEEPALIVE\n",
846 return rndis_keepalive_response(params,
847 (rndis_keepalive_msg_type *)
851 /* At least Windows XP emits some undefined RNDIS messages.
852 * In one case those messages seemed to relate to the host
855 pr_warn("%s: unknown RNDIS message 0x%08X len %d\n",
856 __func__, MsgType, MsgLength);
857 print_hex_dump_bytes(__func__, DUMP_PREFIX_OFFSET,
864 EXPORT_SYMBOL_GPL(rndis_msg_parser);
866 static inline int rndis_get_nr(void)
868 return ida_simple_get(&rndis_ida, 0, 0, GFP_KERNEL);
871 static inline void rndis_put_nr(int nr)
873 ida_simple_remove(&rndis_ida, nr);
876 struct rndis_params *rndis_register(void (*resp_avail)(void *v), void *v)
878 struct rndis_params *params;
882 return ERR_PTR(-EINVAL);
886 pr_debug("failed\n");
888 return ERR_PTR(-ENODEV);
891 params = kzalloc(sizeof(*params), GFP_KERNEL);
895 return ERR_PTR(-ENOMEM);
898 #ifdef CONFIG_USB_GADGET_DEBUG_FILES
900 struct proc_dir_entry *proc_entry;
903 sprintf(name, NAME_TEMPLATE, i);
904 proc_entry = proc_create_data(name, 0660, NULL,
905 &rndis_proc_fops, params);
910 return ERR_PTR(-EIO);
915 params->confignr = i;
917 params->state = RNDIS_UNINITIALIZED;
918 params->media_state = RNDIS_MEDIA_STATE_DISCONNECTED;
919 params->resp_avail = resp_avail;
921 INIT_LIST_HEAD(¶ms->resp_queue);
922 pr_debug("%s: configNr = %d\n", __func__, i);
926 EXPORT_SYMBOL_GPL(rndis_register);
928 void rndis_deregister(struct rndis_params *params)
932 pr_debug("%s:\n", __func__);
937 i = params->confignr;
939 #ifdef CONFIG_USB_GADGET_DEBUG_FILES
943 sprintf(name, NAME_TEMPLATE, i);
944 remove_proc_entry(name, NULL);
951 EXPORT_SYMBOL_GPL(rndis_deregister);
952 int rndis_set_param_dev(struct rndis_params *params, struct net_device *dev,
955 pr_debug("%s:\n", __func__);
962 params->filter = cdc_filter;
966 EXPORT_SYMBOL_GPL(rndis_set_param_dev);
968 int rndis_set_param_vendor(struct rndis_params *params, u32 vendorID,
969 const char *vendorDescr)
971 pr_debug("%s:\n", __func__);
972 if (!vendorDescr) return -1;
976 params->vendorID = vendorID;
977 params->vendorDescr = vendorDescr;
981 EXPORT_SYMBOL_GPL(rndis_set_param_vendor);
983 int rndis_set_param_medium(struct rndis_params *params, u32 medium, u32 speed)
985 pr_debug("%s: %u %u\n", __func__, medium, speed);
989 params->medium = medium;
990 params->speed = speed;
994 EXPORT_SYMBOL_GPL(rndis_set_param_medium);
996 void rndis_add_hdr(struct sk_buff *skb)
998 struct rndis_packet_msg_type *header;
1002 header = (void *)skb_push(skb, sizeof(*header));
1003 memset(header, 0, sizeof *header);
1004 header->MessageType = cpu_to_le32(RNDIS_MSG_PACKET);
1005 header->MessageLength = cpu_to_le32(skb->len);
1006 header->DataOffset = cpu_to_le32(36);
1007 header->DataLength = cpu_to_le32(skb->len - sizeof(*header));
1009 EXPORT_SYMBOL_GPL(rndis_add_hdr);
1011 void rndis_free_response(struct rndis_params *params, u8 *buf)
1013 rndis_resp_t *r, *n;
1015 list_for_each_entry_safe(r, n, ¶ms->resp_queue, list) {
1016 if (r->buf == buf) {
1022 EXPORT_SYMBOL_GPL(rndis_free_response);
1024 u8 *rndis_get_next_response(struct rndis_params *params, u32 *length)
1026 rndis_resp_t *r, *n;
1028 if (!length) return NULL;
1030 list_for_each_entry_safe(r, n, ¶ms->resp_queue, list) {
1033 *length = r->length;
1040 EXPORT_SYMBOL_GPL(rndis_get_next_response);
1042 static rndis_resp_t *rndis_add_response(struct rndis_params *params, u32 length)
1046 /* NOTE: this gets copied into ether.c USB_BUFSIZ bytes ... */
1047 r = kmalloc(sizeof(rndis_resp_t) + length, GFP_ATOMIC);
1048 if (!r) return NULL;
1050 r->buf = (u8 *)(r + 1);
1054 list_add_tail(&r->list, ¶ms->resp_queue);
1058 int rndis_rm_hdr(struct gether *port,
1059 struct sk_buff *skb,
1060 struct sk_buff_head *list)
1062 /* tmp points to a struct rndis_packet_msg_type */
1063 __le32 *tmp = (void *)skb->data;
1065 /* MessageType, MessageLength */
1066 if (cpu_to_le32(RNDIS_MSG_PACKET)
1067 != get_unaligned(tmp++)) {
1068 dev_kfree_skb_any(skb);
1073 /* DataOffset, DataLength */
1074 if (!skb_pull(skb, get_unaligned_le32(tmp++) + 8)) {
1075 dev_kfree_skb_any(skb);
1078 skb_trim(skb, get_unaligned_le32(tmp++));
1080 skb_queue_tail(list, skb);
1083 EXPORT_SYMBOL_GPL(rndis_rm_hdr);
1085 #ifdef CONFIG_USB_GADGET_DEBUG_FILES
1087 static int rndis_proc_show(struct seq_file *m, void *v)
1089 rndis_params *param = m->private;
1098 "vendor ID : 0x%08X\n"
1100 param->confignr, (param->used) ? "y" : "n",
1102 switch (param->state) {
1103 case RNDIS_UNINITIALIZED:
1104 s = "RNDIS_UNINITIALIZED"; break;
1105 case RNDIS_INITIALIZED:
1106 s = "RNDIS_INITIALIZED"; break;
1107 case RNDIS_DATA_INITIALIZED:
1108 s = "RNDIS_DATA_INITIALIZED"; break;
1111 (param->media_state) ? 0 : param->speed*100,
1112 (param->media_state) ? "disconnected" : "connected",
1113 param->vendorID, param->vendorDescr);
1117 static ssize_t rndis_proc_write(struct file *file, const char __user *buffer,
1118 size_t count, loff_t *ppos)
1120 rndis_params *p = PDE_DATA(file_inode(file));
1122 int i, fl_speed = 0;
1124 for (i = 0; i < count; i++) {
1126 if (get_user(c, buffer))
1140 speed = speed * 10 + c - '0';
1144 rndis_signal_connect(p);
1148 rndis_signal_disconnect(p);
1151 if (fl_speed) p->speed = speed;
1152 else pr_debug("%c is not valid\n", c);
1162 static int rndis_proc_open(struct inode *inode, struct file *file)
1164 return single_open(file, rndis_proc_show, PDE_DATA(inode));
1167 static const struct file_operations rndis_proc_fops = {
1168 .owner = THIS_MODULE,
1169 .open = rndis_proc_open,
1171 .llseek = seq_lseek,
1172 .release = single_release,
1173 .write = rndis_proc_write,
1176 #define NAME_TEMPLATE "driver/rndis-%03d"
1178 #endif /* CONFIG_USB_GADGET_DEBUG_FILES */