2 * I/O instructions for S/390
4 * Copyright 2012, 2015 IBM Corp.
7 * This work is licensed under the terms of the GNU GPL, version 2 or (at
8 * your option) any later version. See the COPYING file in the top-level
12 #include <sys/types.h>
17 #include "hw/s390x/s390-pci-bus.h"
19 int ioinst_disassemble_sch_ident(uint32_t value, int *m, int *cssid, int *ssid,
22 if (!IOINST_SCHID_ONE(value)) {
25 if (!IOINST_SCHID_M(value)) {
26 if (IOINST_SCHID_CSSID(value)) {
32 *cssid = IOINST_SCHID_CSSID(value);
35 *ssid = IOINST_SCHID_SSID(value);
36 *schid = IOINST_SCHID_NR(value);
40 void ioinst_handle_xsch(S390CPU *cpu, uint64_t reg1)
42 int cssid, ssid, schid, m;
47 if (ioinst_disassemble_sch_ident(reg1, &m, &cssid, &ssid, &schid)) {
48 program_interrupt(&cpu->env, PGM_OPERAND, 2);
51 trace_ioinst_sch_id("xsch", cssid, ssid, schid);
52 sch = css_find_subch(m, cssid, ssid, schid);
53 if (sch && css_subch_visible(sch)) {
54 ret = css_do_xsch(sch);
73 void ioinst_handle_csch(S390CPU *cpu, uint64_t reg1)
75 int cssid, ssid, schid, m;
80 if (ioinst_disassemble_sch_ident(reg1, &m, &cssid, &ssid, &schid)) {
81 program_interrupt(&cpu->env, PGM_OPERAND, 2);
84 trace_ioinst_sch_id("csch", cssid, ssid, schid);
85 sch = css_find_subch(m, cssid, ssid, schid);
86 if (sch && css_subch_visible(sch)) {
87 ret = css_do_csch(sch);
97 void ioinst_handle_hsch(S390CPU *cpu, uint64_t reg1)
99 int cssid, ssid, schid, m;
104 if (ioinst_disassemble_sch_ident(reg1, &m, &cssid, &ssid, &schid)) {
105 program_interrupt(&cpu->env, PGM_OPERAND, 2);
108 trace_ioinst_sch_id("hsch", cssid, ssid, schid);
109 sch = css_find_subch(m, cssid, ssid, schid);
110 if (sch && css_subch_visible(sch)) {
111 ret = css_do_hsch(sch);
130 static int ioinst_schib_valid(SCHIB *schib)
132 if ((schib->pmcw.flags & PMCW_FLAGS_MASK_INVALID) ||
133 (schib->pmcw.chars & PMCW_CHARS_MASK_INVALID)) {
136 /* Disallow extended measurements for now. */
137 if (schib->pmcw.chars & PMCW_CHARS_MASK_XMWME) {
143 void ioinst_handle_msch(S390CPU *cpu, uint64_t reg1, uint32_t ipb)
145 int cssid, ssid, schid, m;
151 CPUS390XState *env = &cpu->env;
153 addr = decode_basedisp_s(env, ipb);
155 program_interrupt(env, PGM_SPECIFICATION, 2);
158 if (s390_cpu_virt_mem_read(cpu, addr, &schib, sizeof(schib))) {
161 if (ioinst_disassemble_sch_ident(reg1, &m, &cssid, &ssid, &schid) ||
162 !ioinst_schib_valid(&schib)) {
163 program_interrupt(env, PGM_OPERAND, 2);
166 trace_ioinst_sch_id("msch", cssid, ssid, schid);
167 sch = css_find_subch(m, cssid, ssid, schid);
168 if (sch && css_subch_visible(sch)) {
169 ret = css_do_msch(sch, &schib);
188 static void copy_orb_from_guest(ORB *dest, const ORB *src)
190 dest->intparm = be32_to_cpu(src->intparm);
191 dest->ctrl0 = be16_to_cpu(src->ctrl0);
192 dest->lpm = src->lpm;
193 dest->ctrl1 = src->ctrl1;
194 dest->cpa = be32_to_cpu(src->cpa);
197 static int ioinst_orb_valid(ORB *orb)
199 if ((orb->ctrl0 & ORB_CTRL0_MASK_INVALID) ||
200 (orb->ctrl1 & ORB_CTRL1_MASK_INVALID)) {
203 if ((orb->cpa & HIGH_ORDER_BIT) != 0) {
209 void ioinst_handle_ssch(S390CPU *cpu, uint64_t reg1, uint32_t ipb)
211 int cssid, ssid, schid, m;
217 CPUS390XState *env = &cpu->env;
219 addr = decode_basedisp_s(env, ipb);
221 program_interrupt(env, PGM_SPECIFICATION, 2);
224 if (s390_cpu_virt_mem_read(cpu, addr, &orig_orb, sizeof(orb))) {
227 copy_orb_from_guest(&orb, &orig_orb);
228 if (ioinst_disassemble_sch_ident(reg1, &m, &cssid, &ssid, &schid) ||
229 !ioinst_orb_valid(&orb)) {
230 program_interrupt(env, PGM_OPERAND, 2);
233 trace_ioinst_sch_id("ssch", cssid, ssid, schid);
234 sch = css_find_subch(m, cssid, ssid, schid);
235 if (sch && css_subch_visible(sch)) {
236 ret = css_do_ssch(sch, &orb);
255 void ioinst_handle_stcrw(S390CPU *cpu, uint32_t ipb)
260 hwaddr len = sizeof(*crw);
261 CPUS390XState *env = &cpu->env;
263 addr = decode_basedisp_s(env, ipb);
265 program_interrupt(env, PGM_SPECIFICATION, 2);
268 crw = s390_cpu_physical_memory_map(env, addr, &len, 1);
269 if (!crw || len != sizeof(*crw)) {
270 program_interrupt(env, PGM_ADDRESSING, 2);
273 cc = css_do_stcrw(crw);
274 /* 0 - crw stored, 1 - zeroes stored */
278 s390_cpu_physical_memory_unmap(env, crw, len, 1);
281 void ioinst_handle_stsch(S390CPU *cpu, uint64_t reg1, uint32_t ipb)
283 int cssid, ssid, schid, m;
288 CPUS390XState *env = &cpu->env;
290 addr = decode_basedisp_s(env, ipb);
292 program_interrupt(env, PGM_SPECIFICATION, 2);
296 if (ioinst_disassemble_sch_ident(reg1, &m, &cssid, &ssid, &schid)) {
298 * As operand exceptions have a lower priority than access exceptions,
299 * we check whether the memory area is writeable (injecting the
300 * access execption if it is not) first.
302 if (!s390_cpu_virt_mem_check_write(cpu, addr, sizeof(schib))) {
303 program_interrupt(env, PGM_OPERAND, 2);
307 trace_ioinst_sch_id("stsch", cssid, ssid, schid);
308 sch = css_find_subch(m, cssid, ssid, schid);
310 if (css_subch_visible(sch)) {
311 css_do_stsch(sch, &schib);
314 /* Indicate no more subchannels in this css/ss */
318 if (css_schid_final(m, cssid, ssid, schid)) {
319 cc = 3; /* No more subchannels in this css/ss */
321 /* Store an empty schib. */
322 memset(&schib, 0, sizeof(schib));
327 if (s390_cpu_virt_mem_write(cpu, addr, &schib, sizeof(schib)) != 0) {
331 /* Access exceptions have a higher priority than cc3 */
332 if (s390_cpu_virt_mem_check_write(cpu, addr, sizeof(schib)) != 0) {
339 int ioinst_handle_tsch(CPUS390XState *env, uint64_t reg1, uint32_t ipb)
341 int cssid, ssid, schid, m;
347 hwaddr len = sizeof(*irb);
349 if (ioinst_disassemble_sch_ident(reg1, &m, &cssid, &ssid, &schid)) {
350 program_interrupt(env, PGM_OPERAND, 2);
353 trace_ioinst_sch_id("tsch", cssid, ssid, schid);
354 addr = decode_basedisp_s(env, ipb);
356 program_interrupt(env, PGM_SPECIFICATION, 2);
359 irb = s390_cpu_physical_memory_map(env, addr, &len, 1);
360 if (!irb || len != sizeof(*irb)) {
361 program_interrupt(env, PGM_ADDRESSING, 2);
365 sch = css_find_subch(m, cssid, ssid, schid);
366 if (sch && css_subch_visible(sch)) {
367 ret = css_do_tsch(sch, irb);
368 /* 0 - status pending, 1 - not status pending */
374 s390_cpu_physical_memory_unmap(env, irb, sizeof(*irb), 1);
378 typedef struct ChscReq {
384 } QEMU_PACKED ChscReq;
386 typedef struct ChscResp {
391 } QEMU_PACKED ChscResp;
393 #define CHSC_MIN_RESP_LEN 0x0008
395 #define CHSC_SCPD 0x0002
396 #define CHSC_SCSC 0x0010
397 #define CHSC_SDA 0x0031
398 #define CHSC_SEI 0x000e
400 #define CHSC_SCPD_0_M 0x20000000
401 #define CHSC_SCPD_0_C 0x10000000
402 #define CHSC_SCPD_0_FMT 0x0f000000
403 #define CHSC_SCPD_0_CSSID 0x00ff0000
404 #define CHSC_SCPD_0_RFMT 0x00000f00
405 #define CHSC_SCPD_0_RES 0xc000f000
406 #define CHSC_SCPD_1_RES 0xffffff00
407 #define CHSC_SCPD_01_CHPID 0x000000ff
408 static void ioinst_handle_chsc_scpd(ChscReq *req, ChscResp *res)
410 uint16_t len = be16_to_cpu(req->len);
411 uint32_t param0 = be32_to_cpu(req->param0);
412 uint32_t param1 = be32_to_cpu(req->param1);
416 uint8_t f_chpid, l_chpid;
420 rfmt = (param0 & CHSC_SCPD_0_RFMT) >> 8;
421 if ((rfmt == 0) || (rfmt == 1)) {
422 rfmt = !!(param0 & CHSC_SCPD_0_C);
424 if ((len != 0x0010) || (param0 & CHSC_SCPD_0_RES) ||
425 (param1 & CHSC_SCPD_1_RES) || req->param2) {
429 if (param0 & CHSC_SCPD_0_FMT) {
433 cssid = (param0 & CHSC_SCPD_0_CSSID) >> 16;
434 m = param0 & CHSC_SCPD_0_M;
436 if (!m || !css_present(cssid)) {
441 f_chpid = param0 & CHSC_SCPD_01_CHPID;
442 l_chpid = param1 & CHSC_SCPD_01_CHPID;
443 if (l_chpid < f_chpid) {
447 /* css_collect_chp_desc() is endian-aware */
448 desc_size = css_collect_chp_desc(m, cssid, f_chpid, l_chpid, rfmt,
450 res->code = cpu_to_be16(0x0001);
451 res->len = cpu_to_be16(8 + desc_size);
452 res->param = cpu_to_be32(rfmt);
456 res->code = cpu_to_be16(resp_code);
457 res->len = cpu_to_be16(CHSC_MIN_RESP_LEN);
458 res->param = cpu_to_be32(rfmt);
461 #define CHSC_SCSC_0_M 0x20000000
462 #define CHSC_SCSC_0_FMT 0x000f0000
463 #define CHSC_SCSC_0_CSSID 0x0000ff00
464 #define CHSC_SCSC_0_RES 0xdff000ff
465 static void ioinst_handle_chsc_scsc(ChscReq *req, ChscResp *res)
467 uint16_t len = be16_to_cpu(req->len);
468 uint32_t param0 = be32_to_cpu(req->param0);
471 uint32_t general_chars[510];
472 uint32_t chsc_chars[508];
479 if (param0 & CHSC_SCSC_0_FMT) {
483 cssid = (param0 & CHSC_SCSC_0_CSSID) >> 8;
485 if (!(param0 & CHSC_SCSC_0_M) || !css_present(cssid)) {
490 if ((param0 & CHSC_SCSC_0_RES) || req->param1 || req->param2) {
494 res->code = cpu_to_be16(0x0001);
495 res->len = cpu_to_be16(4080);
498 memset(general_chars, 0, sizeof(general_chars));
499 memset(chsc_chars, 0, sizeof(chsc_chars));
501 general_chars[0] = cpu_to_be32(0x03000000);
502 general_chars[1] = cpu_to_be32(0x00059000);
504 chsc_chars[0] = cpu_to_be32(0x40000000);
505 chsc_chars[3] = cpu_to_be32(0x00040000);
507 memcpy(res->data, general_chars, sizeof(general_chars));
508 memcpy(res->data + sizeof(general_chars), chsc_chars, sizeof(chsc_chars));
512 res->code = cpu_to_be16(resp_code);
513 res->len = cpu_to_be16(CHSC_MIN_RESP_LEN);
517 #define CHSC_SDA_0_FMT 0x0f000000
518 #define CHSC_SDA_0_OC 0x0000ffff
519 #define CHSC_SDA_0_RES 0xf0ff0000
520 #define CHSC_SDA_OC_MCSSE 0x0
521 #define CHSC_SDA_OC_MSS 0x2
522 static void ioinst_handle_chsc_sda(ChscReq *req, ChscResp *res)
524 uint16_t resp_code = 0x0001;
525 uint16_t len = be16_to_cpu(req->len);
526 uint32_t param0 = be32_to_cpu(req->param0);
530 if ((len != 0x0400) || (param0 & CHSC_SDA_0_RES)) {
535 if (param0 & CHSC_SDA_0_FMT) {
540 oc = param0 & CHSC_SDA_0_OC;
542 case CHSC_SDA_OC_MCSSE:
543 ret = css_enable_mcsse();
544 if (ret == -EINVAL) {
549 case CHSC_SDA_OC_MSS:
550 ret = css_enable_mss();
551 if (ret == -EINVAL) {
562 res->code = cpu_to_be16(resp_code);
563 res->len = cpu_to_be16(CHSC_MIN_RESP_LEN);
567 static int chsc_sei_nt0_get_event(void *res)
573 static int chsc_sei_nt0_have_event(void)
579 #define CHSC_SEI_NT0 (1ULL << 63)
580 #define CHSC_SEI_NT2 (1ULL << 61)
581 static void ioinst_handle_chsc_sei(ChscReq *req, ChscResp *res)
583 uint64_t selection_mask = ldq_p(&req->param1);
584 uint8_t *res_flags = (uint8_t *)res->data;
588 /* regarding architecture nt0 can not be masked */
589 have_event = !chsc_sei_nt0_get_event(res);
590 have_more = chsc_sei_nt0_have_event();
592 if (selection_mask & CHSC_SEI_NT2) {
594 have_event = !chsc_sei_nt2_get_event(res);
598 have_more = chsc_sei_nt2_have_event();
603 res->code = cpu_to_be16(0x0001);
605 (*res_flags) |= 0x80;
607 (*res_flags) &= ~0x80;
610 res->code = cpu_to_be16(0x0004);
614 static void ioinst_handle_chsc_unimplemented(ChscResp *res)
616 res->len = cpu_to_be16(CHSC_MIN_RESP_LEN);
617 res->code = cpu_to_be16(0x0004);
621 void ioinst_handle_chsc(S390CPU *cpu, uint32_t ipb)
629 hwaddr map_size = TARGET_PAGE_SIZE;
630 CPUS390XState *env = &cpu->env;
632 trace_ioinst("chsc");
633 reg = (ipb >> 20) & 0x00f;
634 addr = env->regs[reg];
637 program_interrupt(env, PGM_SPECIFICATION, 2);
640 req = s390_cpu_physical_memory_map(env, addr, &map_size, 1);
641 if (!req || map_size != TARGET_PAGE_SIZE) {
642 program_interrupt(env, PGM_ADDRESSING, 2);
645 len = be16_to_cpu(req->len);
646 /* Length field valid? */
647 if ((len < 16) || (len > 4088) || (len & 7)) {
648 program_interrupt(env, PGM_OPERAND, 2);
651 memset((char *)req + len, 0, TARGET_PAGE_SIZE - len);
652 res = (void *)((char *)req + len);
653 command = be16_to_cpu(req->command);
654 trace_ioinst_chsc_cmd(command, len);
657 ioinst_handle_chsc_scsc(req, res);
660 ioinst_handle_chsc_scpd(req, res);
663 ioinst_handle_chsc_sda(req, res);
666 ioinst_handle_chsc_sei(req, res);
669 ioinst_handle_chsc_unimplemented(res);
673 setcc(cpu, 0); /* Command execution complete */
675 s390_cpu_physical_memory_unmap(env, req, map_size, 1);
678 int ioinst_handle_tpi(CPUS390XState *env, uint32_t ipb)
683 hwaddr len, orig_len;
687 addr = decode_basedisp_s(env, ipb);
689 program_interrupt(env, PGM_SPECIFICATION, 2);
693 lowcore = addr ? 0 : 1;
694 len = lowcore ? 8 /* two words */ : 12 /* three words */;
696 int_code = s390_cpu_physical_memory_map(env, addr, &len, 1);
697 if (!int_code || (len != orig_len)) {
698 program_interrupt(env, PGM_ADDRESSING, 2);
702 ret = css_do_tpi(int_code, lowcore);
704 s390_cpu_physical_memory_unmap(env, int_code, len, 1);
708 #define SCHM_REG1_RES(_reg) (_reg & 0x000000000ffffffc)
709 #define SCHM_REG1_MBK(_reg) ((_reg & 0x00000000f0000000) >> 28)
710 #define SCHM_REG1_UPD(_reg) ((_reg & 0x0000000000000002) >> 1)
711 #define SCHM_REG1_DCT(_reg) (_reg & 0x0000000000000001)
713 void ioinst_handle_schm(S390CPU *cpu, uint64_t reg1, uint64_t reg2,
719 CPUS390XState *env = &cpu->env;
721 trace_ioinst("schm");
723 if (SCHM_REG1_RES(reg1)) {
724 program_interrupt(env, PGM_OPERAND, 2);
728 mbk = SCHM_REG1_MBK(reg1);
729 update = SCHM_REG1_UPD(reg1);
730 dct = SCHM_REG1_DCT(reg1);
732 if (update && (reg2 & 0x000000000000001f)) {
733 program_interrupt(env, PGM_OPERAND, 2);
737 css_do_schm(mbk, update, dct, update ? reg2 : 0);
740 void ioinst_handle_rsch(S390CPU *cpu, uint64_t reg1)
742 int cssid, ssid, schid, m;
747 if (ioinst_disassemble_sch_ident(reg1, &m, &cssid, &ssid, &schid)) {
748 program_interrupt(&cpu->env, PGM_OPERAND, 2);
751 trace_ioinst_sch_id("rsch", cssid, ssid, schid);
752 sch = css_find_subch(m, cssid, ssid, schid);
753 if (sch && css_subch_visible(sch)) {
754 ret = css_do_rsch(sch);
773 #define RCHP_REG1_RES(_reg) (_reg & 0x00000000ff00ff00)
774 #define RCHP_REG1_CSSID(_reg) ((_reg & 0x0000000000ff0000) >> 16)
775 #define RCHP_REG1_CHPID(_reg) (_reg & 0x00000000000000ff)
776 void ioinst_handle_rchp(S390CPU *cpu, uint64_t reg1)
782 CPUS390XState *env = &cpu->env;
784 if (RCHP_REG1_RES(reg1)) {
785 program_interrupt(env, PGM_OPERAND, 2);
789 cssid = RCHP_REG1_CSSID(reg1);
790 chpid = RCHP_REG1_CHPID(reg1);
792 trace_ioinst_chp_id("rchp", cssid, chpid);
794 ret = css_do_rchp(cssid, chpid);
807 /* Invalid channel subsystem. */
808 program_interrupt(env, PGM_OPERAND, 2);
814 #define SAL_REG1_INVALID(_reg) (_reg & 0x0000000080000000)
815 void ioinst_handle_sal(S390CPU *cpu, uint64_t reg1)
817 /* We do not provide address limit checking, so let's suppress it. */
818 if (SAL_REG1_INVALID(reg1) || reg1 & 0x000000000000ffff) {
819 program_interrupt(&cpu->env, PGM_OPERAND, 2);