RDMA/nes: Support for Packed And Unaligned fpdus
[cascardo/linux.git] / drivers / infiniband / hw / nes / nes_cm.c
1 /*
2  * Copyright (c) 2006 - 2009 Intel Corporation.  All rights reserved.
3  *
4  * This software is available to you under a choice of one of two
5  * licenses.  You may choose to be licensed under the terms of the GNU
6  * General Public License (GPL) Version 2, available from the file
7  * COPYING in the main directory of this source tree, or the
8  * OpenIB.org BSD license below:
9  *
10  *     Redistribution and use in source and binary forms, with or
11  *     without modification, are permitted provided that the following
12  *     conditions are met:
13  *
14  *      - Redistributions of source code must retain the above
15  *        copyright notice, this list of conditions and the following
16  *        disclaimer.
17  *
18  *      - Redistributions in binary form must reproduce the above
19  *        copyright notice, this list of conditions and the following
20  *        disclaimer in the documentation and/or other materials
21  *        provided with the distribution.
22  *
23  * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
24  * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
25  * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
26  * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS
27  * BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN
28  * ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN
29  * CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
30  * SOFTWARE.
31  *
32  */
33
34
35 #define TCPOPT_TIMESTAMP 8
36
37 #include <linux/atomic.h>
38 #include <linux/skbuff.h>
39 #include <linux/ip.h>
40 #include <linux/tcp.h>
41 #include <linux/init.h>
42 #include <linux/if_arp.h>
43 #include <linux/if_vlan.h>
44 #include <linux/notifier.h>
45 #include <linux/net.h>
46 #include <linux/types.h>
47 #include <linux/timer.h>
48 #include <linux/time.h>
49 #include <linux/delay.h>
50 #include <linux/etherdevice.h>
51 #include <linux/netdevice.h>
52 #include <linux/random.h>
53 #include <linux/list.h>
54 #include <linux/threads.h>
55 #include <linux/highmem.h>
56 #include <linux/slab.h>
57 #include <net/arp.h>
58 #include <net/neighbour.h>
59 #include <net/route.h>
60 #include <net/ip_fib.h>
61 #include <net/tcp.h>
62
63 #include "nes.h"
64
65 u32 cm_packets_sent;
66 u32 cm_packets_bounced;
67 u32 cm_packets_dropped;
68 u32 cm_packets_retrans;
69 u32 cm_packets_created;
70 u32 cm_packets_received;
71 atomic_t cm_listens_created;
72 atomic_t cm_listens_destroyed;
73 u32 cm_backlog_drops;
74 atomic_t cm_loopbacks;
75 atomic_t cm_nodes_created;
76 atomic_t cm_nodes_destroyed;
77 atomic_t cm_accel_dropped_pkts;
78 atomic_t cm_resets_recvd;
79
80 static inline int mini_cm_accelerated(struct nes_cm_core *,
81         struct nes_cm_node *);
82 static struct nes_cm_listener *mini_cm_listen(struct nes_cm_core *,
83         struct nes_vnic *, struct nes_cm_info *);
84 static int mini_cm_del_listen(struct nes_cm_core *, struct nes_cm_listener *);
85 static struct nes_cm_node *mini_cm_connect(struct nes_cm_core *,
86         struct nes_vnic *, u16, void *, struct nes_cm_info *);
87 static int mini_cm_close(struct nes_cm_core *, struct nes_cm_node *);
88 static int mini_cm_accept(struct nes_cm_core *, struct ietf_mpa_frame *,
89         struct nes_cm_node *);
90 static int mini_cm_reject(struct nes_cm_core *, struct ietf_mpa_frame *,
91         struct nes_cm_node *);
92 static int mini_cm_recv_pkt(struct nes_cm_core *, struct nes_vnic *,
93         struct sk_buff *);
94 static int mini_cm_dealloc_core(struct nes_cm_core *);
95 static int mini_cm_get(struct nes_cm_core *);
96 static int mini_cm_set(struct nes_cm_core *, u32, u32);
97
98 static void form_cm_frame(struct sk_buff *, struct nes_cm_node *,
99         void *, u32, void *, u32, u8);
100 static int add_ref_cm_node(struct nes_cm_node *);
101 static int rem_ref_cm_node(struct nes_cm_core *, struct nes_cm_node *);
102
103 static int nes_cm_disconn_true(struct nes_qp *);
104 static int nes_cm_post_event(struct nes_cm_event *event);
105 static int nes_disconnect(struct nes_qp *nesqp, int abrupt);
106 static void nes_disconnect_worker(struct work_struct *work);
107
108 static int send_mpa_request(struct nes_cm_node *, struct sk_buff *);
109 static int send_mpa_reject(struct nes_cm_node *);
110 static int send_syn(struct nes_cm_node *, u32, struct sk_buff *);
111 static int send_reset(struct nes_cm_node *, struct sk_buff *);
112 static int send_ack(struct nes_cm_node *cm_node, struct sk_buff *skb);
113 static int send_fin(struct nes_cm_node *cm_node, struct sk_buff *skb);
114 static void process_packet(struct nes_cm_node *, struct sk_buff *,
115         struct nes_cm_core *);
116
117 static void active_open_err(struct nes_cm_node *, struct sk_buff *, int);
118 static void passive_open_err(struct nes_cm_node *, struct sk_buff *, int);
119 static void cleanup_retrans_entry(struct nes_cm_node *);
120 static void handle_rcv_mpa(struct nes_cm_node *, struct sk_buff *);
121 static void free_retrans_entry(struct nes_cm_node *cm_node);
122 static int handle_tcp_options(struct nes_cm_node *cm_node, struct tcphdr *tcph,
123         struct sk_buff *skb, int optionsize, int passive);
124
125 /* CM event handler functions */
126 static void cm_event_connected(struct nes_cm_event *);
127 static void cm_event_connect_error(struct nes_cm_event *);
128 static void cm_event_reset(struct nes_cm_event *);
129 static void cm_event_mpa_req(struct nes_cm_event *);
130 static void cm_event_mpa_reject(struct nes_cm_event *);
131 static void handle_recv_entry(struct nes_cm_node *cm_node, u32 rem_node);
132
133 static void print_core(struct nes_cm_core *core);
134
135 /* External CM API Interface */
136 /* instance of function pointers for client API */
137 /* set address of this instance to cm_core->cm_ops at cm_core alloc */
138 static struct nes_cm_ops nes_cm_api = {
139         mini_cm_accelerated,
140         mini_cm_listen,
141         mini_cm_del_listen,
142         mini_cm_connect,
143         mini_cm_close,
144         mini_cm_accept,
145         mini_cm_reject,
146         mini_cm_recv_pkt,
147         mini_cm_dealloc_core,
148         mini_cm_get,
149         mini_cm_set
150 };
151
152 static struct nes_cm_core *g_cm_core;
153
154 atomic_t cm_connects;
155 atomic_t cm_accepts;
156 atomic_t cm_disconnects;
157 atomic_t cm_closes;
158 atomic_t cm_connecteds;
159 atomic_t cm_connect_reqs;
160 atomic_t cm_rejects;
161
162 int nes_add_ref_cm_node(struct nes_cm_node *cm_node)
163 {
164         return add_ref_cm_node(cm_node);
165 }
166
167 int nes_rem_ref_cm_node(struct nes_cm_node *cm_node)
168 {
169         return rem_ref_cm_node(cm_node->cm_core, cm_node);
170 }
171
172 /**
173  * create_event
174  */
175 static struct nes_cm_event *create_event(struct nes_cm_node *cm_node,
176                 enum nes_cm_event_type type)
177 {
178         struct nes_cm_event *event;
179
180         if (!cm_node->cm_id)
181                 return NULL;
182
183         /* allocate an empty event */
184         event = kzalloc(sizeof(*event), GFP_ATOMIC);
185
186         if (!event)
187                 return NULL;
188
189         event->type = type;
190         event->cm_node = cm_node;
191         event->cm_info.rem_addr = cm_node->rem_addr;
192         event->cm_info.loc_addr = cm_node->loc_addr;
193         event->cm_info.rem_port = cm_node->rem_port;
194         event->cm_info.loc_port = cm_node->loc_port;
195         event->cm_info.cm_id = cm_node->cm_id;
196
197         nes_debug(NES_DBG_CM, "cm_node=%p Created event=%p, type=%u, "
198                 "dst_addr=%08x[%x], src_addr=%08x[%x]\n",
199                 cm_node, event, type, event->cm_info.loc_addr,
200                 event->cm_info.loc_port, event->cm_info.rem_addr,
201                 event->cm_info.rem_port);
202
203         nes_cm_post_event(event);
204         return event;
205 }
206
207
208 /**
209  * send_mpa_request
210  */
211 static int send_mpa_request(struct nes_cm_node *cm_node, struct sk_buff *skb)
212 {
213         if (!skb) {
214                 nes_debug(NES_DBG_CM, "skb set to NULL\n");
215                 return -1;
216         }
217
218         /* send an MPA Request frame */
219         form_cm_frame(skb, cm_node, NULL, 0, &cm_node->mpa_frame,
220                         cm_node->mpa_frame_size, SET_ACK);
221
222         return schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 1, 0);
223 }
224
225
226
227 static int send_mpa_reject(struct nes_cm_node *cm_node)
228 {
229         struct sk_buff  *skb = NULL;
230
231         skb = dev_alloc_skb(MAX_CM_BUFFER);
232         if (!skb) {
233                 nes_debug(NES_DBG_CM, "Failed to get a Free pkt\n");
234                 return -ENOMEM;
235         }
236
237         /* send an MPA reject frame */
238         form_cm_frame(skb, cm_node, NULL, 0, &cm_node->mpa_frame,
239                         cm_node->mpa_frame_size, SET_ACK | SET_FIN);
240
241         cm_node->state = NES_CM_STATE_FIN_WAIT1;
242         return schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 1, 0);
243 }
244
245
246 /**
247  * recv_mpa - process a received TCP pkt, we are expecting an
248  * IETF MPA frame
249  */
250 static int parse_mpa(struct nes_cm_node *cm_node, u8 *buffer, u32 *type,
251                 u32 len)
252 {
253         struct ietf_mpa_frame *mpa_frame;
254
255         *type = NES_MPA_REQUEST_ACCEPT;
256
257         /* assume req frame is in tcp data payload */
258         if (len < sizeof(struct ietf_mpa_frame)) {
259                 nes_debug(NES_DBG_CM, "The received ietf buffer was too small (%x)\n", len);
260                 return -EINVAL;
261         }
262
263         mpa_frame = (struct ietf_mpa_frame *)buffer;
264         cm_node->mpa_frame_size = ntohs(mpa_frame->priv_data_len);
265         /* make sure mpa private data len is less than 512 bytes */
266         if (cm_node->mpa_frame_size > IETF_MAX_PRIV_DATA_LEN) {
267                 nes_debug(NES_DBG_CM, "The received Length of Private"
268                         " Data field exceeds 512 octets\n");
269                 return -EINVAL;
270         }
271         /*
272          * make sure MPA receiver interoperate with the
273          * received MPA version and MPA key information
274          *
275          */
276         if (mpa_frame->rev != mpa_version) {
277                 nes_debug(NES_DBG_CM, "The received mpa version"
278                                 " can not be interoperated\n");
279                 return -EINVAL;
280         }
281         if (cm_node->state != NES_CM_STATE_MPAREQ_SENT) {
282                 if (memcmp(mpa_frame->key, IEFT_MPA_KEY_REQ, IETF_MPA_KEY_SIZE)) {
283                         nes_debug(NES_DBG_CM, "Unexpected MPA Key received \n");
284                         return -EINVAL;
285                 }
286         } else {
287                 if (memcmp(mpa_frame->key, IEFT_MPA_KEY_REP, IETF_MPA_KEY_SIZE)) {
288                         nes_debug(NES_DBG_CM, "Unexpected MPA Key received \n");
289                         return -EINVAL;
290                 }
291         }
292
293         if (cm_node->mpa_frame_size + sizeof(struct ietf_mpa_frame) != len) {
294                 nes_debug(NES_DBG_CM, "The received ietf buffer was not right"
295                                 " complete (%x + %x != %x)\n",
296                                 cm_node->mpa_frame_size,
297                                 (u32)sizeof(struct ietf_mpa_frame), len);
298                 return -EINVAL;
299         }
300         /* make sure it does not exceed the max size */
301         if (len > MAX_CM_BUFFER) {
302                 nes_debug(NES_DBG_CM, "The received ietf buffer was too large"
303                                 " (%x + %x != %x)\n",
304                                 cm_node->mpa_frame_size,
305                                 (u32)sizeof(struct ietf_mpa_frame), len);
306                 return -EINVAL;
307         }
308
309         /* copy entire MPA frame to our cm_node's frame */
310         memcpy(cm_node->mpa_frame_buf, buffer + sizeof(struct ietf_mpa_frame),
311                         cm_node->mpa_frame_size);
312
313         if (mpa_frame->flags & IETF_MPA_FLAGS_REJECT)
314                 *type = NES_MPA_REQUEST_REJECT;
315         return 0;
316 }
317
318
319 /**
320  * form_cm_frame - get a free packet and build empty frame Use
321  * node info to build.
322  */
323 static void form_cm_frame(struct sk_buff *skb,
324         struct nes_cm_node *cm_node, void *options, u32 optionsize,
325         void *data, u32 datasize, u8 flags)
326 {
327         struct tcphdr *tcph;
328         struct iphdr *iph;
329         struct ethhdr *ethh;
330         u8 *buf;
331         u16 packetsize = sizeof(*iph);
332
333         packetsize += sizeof(*tcph);
334         packetsize +=  optionsize + datasize;
335
336         memset(skb->data, 0x00, ETH_HLEN + sizeof(*iph) + sizeof(*tcph));
337
338         skb->len = 0;
339         buf = skb_put(skb, packetsize + ETH_HLEN);
340
341         ethh = (struct ethhdr *) buf;
342         buf += ETH_HLEN;
343
344         iph = (struct iphdr *)buf;
345         buf += sizeof(*iph);
346         tcph = (struct tcphdr *)buf;
347         skb_reset_mac_header(skb);
348         skb_set_network_header(skb, ETH_HLEN);
349         skb_set_transport_header(skb, ETH_HLEN+sizeof(*iph));
350         buf += sizeof(*tcph);
351
352         skb->ip_summed = CHECKSUM_PARTIAL;
353         skb->protocol = htons(0x800);
354         skb->data_len = 0;
355         skb->mac_len = ETH_HLEN;
356
357         memcpy(ethh->h_dest, cm_node->rem_mac, ETH_ALEN);
358         memcpy(ethh->h_source, cm_node->loc_mac, ETH_ALEN);
359         ethh->h_proto = htons(0x0800);
360
361         iph->version = IPVERSION;
362         iph->ihl = 5;           /* 5 * 4Byte words, IP headr len */
363         iph->tos = 0;
364         iph->tot_len = htons(packetsize);
365         iph->id = htons(++cm_node->tcp_cntxt.loc_id);
366
367         iph->frag_off = htons(0x4000);
368         iph->ttl = 0x40;
369         iph->protocol = 0x06;   /* IPPROTO_TCP */
370
371         iph->saddr = htonl(cm_node->loc_addr);
372         iph->daddr = htonl(cm_node->rem_addr);
373
374         tcph->source = htons(cm_node->loc_port);
375         tcph->dest = htons(cm_node->rem_port);
376         tcph->seq = htonl(cm_node->tcp_cntxt.loc_seq_num);
377
378         if (flags & SET_ACK) {
379                 cm_node->tcp_cntxt.loc_ack_num = cm_node->tcp_cntxt.rcv_nxt;
380                 tcph->ack_seq = htonl(cm_node->tcp_cntxt.loc_ack_num);
381                 tcph->ack = 1;
382         } else
383                 tcph->ack_seq = 0;
384
385         if (flags & SET_SYN) {
386                 cm_node->tcp_cntxt.loc_seq_num++;
387                 tcph->syn = 1;
388         } else
389                 cm_node->tcp_cntxt.loc_seq_num += datasize;
390
391         if (flags & SET_FIN) {
392                 cm_node->tcp_cntxt.loc_seq_num++;
393                 tcph->fin = 1;
394         }
395
396         if (flags & SET_RST)
397                 tcph->rst = 1;
398
399         tcph->doff = (u16)((sizeof(*tcph) + optionsize + 3) >> 2);
400         tcph->window = htons(cm_node->tcp_cntxt.rcv_wnd);
401         tcph->urg_ptr = 0;
402         if (optionsize)
403                 memcpy(buf, options, optionsize);
404         buf += optionsize;
405         if (datasize)
406                 memcpy(buf, data, datasize);
407
408         skb_shinfo(skb)->nr_frags = 0;
409         cm_packets_created++;
410
411 }
412
413
414 /**
415  * print_core - dump a cm core
416  */
417 static void print_core(struct nes_cm_core *core)
418 {
419         nes_debug(NES_DBG_CM, "---------------------------------------------\n");
420         nes_debug(NES_DBG_CM, "CM Core  -- (core = %p )\n", core);
421         if (!core)
422                 return;
423         nes_debug(NES_DBG_CM, "---------------------------------------------\n");
424
425         nes_debug(NES_DBG_CM, "State         : %u \n",  core->state);
426
427         nes_debug(NES_DBG_CM, "Listen Nodes  : %u \n", atomic_read(&core->listen_node_cnt));
428         nes_debug(NES_DBG_CM, "Active Nodes  : %u \n", atomic_read(&core->node_cnt));
429
430         nes_debug(NES_DBG_CM, "core          : %p \n", core);
431
432         nes_debug(NES_DBG_CM, "-------------- end core ---------------\n");
433 }
434
435
436 /**
437  * schedule_nes_timer
438  * note - cm_node needs to be protected before calling this. Encase in:
439  *                      rem_ref_cm_node(cm_core, cm_node);add_ref_cm_node(cm_node);
440  */
441 int schedule_nes_timer(struct nes_cm_node *cm_node, struct sk_buff *skb,
442                 enum nes_timer_type type, int send_retrans,
443                 int close_when_complete)
444 {
445         unsigned long  flags;
446         struct nes_cm_core *cm_core = cm_node->cm_core;
447         struct nes_timer_entry *new_send;
448         int ret = 0;
449         u32 was_timer_set;
450
451         new_send = kzalloc(sizeof(*new_send), GFP_ATOMIC);
452         if (!new_send)
453                 return -ENOMEM;
454
455         /* new_send->timetosend = currenttime */
456         new_send->retrycount = NES_DEFAULT_RETRYS;
457         new_send->retranscount = NES_DEFAULT_RETRANS;
458         new_send->skb = skb;
459         new_send->timetosend = jiffies;
460         new_send->type = type;
461         new_send->netdev = cm_node->netdev;
462         new_send->send_retrans = send_retrans;
463         new_send->close_when_complete = close_when_complete;
464
465         if (type == NES_TIMER_TYPE_CLOSE) {
466                 new_send->timetosend += (HZ/10);
467                 if (cm_node->recv_entry) {
468                         kfree(new_send);
469                         WARN_ON(1);
470                         return -EINVAL;
471                 }
472                 cm_node->recv_entry = new_send;
473         }
474
475         if (type == NES_TIMER_TYPE_SEND) {
476                 new_send->seq_num = ntohl(tcp_hdr(skb)->seq);
477                 atomic_inc(&new_send->skb->users);
478                 spin_lock_irqsave(&cm_node->retrans_list_lock, flags);
479                 cm_node->send_entry = new_send;
480                 add_ref_cm_node(cm_node);
481                 spin_unlock_irqrestore(&cm_node->retrans_list_lock, flags);
482                 new_send->timetosend = jiffies + NES_RETRY_TIMEOUT;
483
484                 ret = nes_nic_cm_xmit(new_send->skb, cm_node->netdev);
485                 if (ret != NETDEV_TX_OK) {
486                         nes_debug(NES_DBG_CM, "Error sending packet %p "
487                                 "(jiffies = %lu)\n", new_send, jiffies);
488                         new_send->timetosend = jiffies;
489                         ret = NETDEV_TX_OK;
490                 } else {
491                         cm_packets_sent++;
492                         if (!send_retrans) {
493                                 cleanup_retrans_entry(cm_node);
494                                 if (close_when_complete)
495                                         rem_ref_cm_node(cm_core, cm_node);
496                                 return ret;
497                         }
498                 }
499         }
500
501         was_timer_set = timer_pending(&cm_core->tcp_timer);
502
503         if (!was_timer_set) {
504                 cm_core->tcp_timer.expires = new_send->timetosend;
505                 add_timer(&cm_core->tcp_timer);
506         }
507
508         return ret;
509 }
510
511 static void nes_retrans_expired(struct nes_cm_node *cm_node)
512 {
513         struct iw_cm_id *cm_id = cm_node->cm_id;
514         enum nes_cm_node_state state = cm_node->state;
515         cm_node->state = NES_CM_STATE_CLOSED;
516         switch (state) {
517         case NES_CM_STATE_SYN_RCVD:
518         case NES_CM_STATE_CLOSING:
519                 rem_ref_cm_node(cm_node->cm_core, cm_node);
520                 break;
521         case NES_CM_STATE_LAST_ACK:
522         case NES_CM_STATE_FIN_WAIT1:
523                 if (cm_node->cm_id)
524                         cm_id->rem_ref(cm_id);
525                 send_reset(cm_node, NULL);
526                 break;
527         default:
528                 add_ref_cm_node(cm_node);
529                 send_reset(cm_node, NULL);
530                 create_event(cm_node, NES_CM_EVENT_ABORTED);
531         }
532 }
533
534 static void handle_recv_entry(struct nes_cm_node *cm_node, u32 rem_node)
535 {
536         struct nes_timer_entry *recv_entry = cm_node->recv_entry;
537         struct iw_cm_id *cm_id = cm_node->cm_id;
538         struct nes_qp *nesqp;
539         unsigned long qplockflags;
540
541         if (!recv_entry)
542                 return;
543         nesqp = (struct nes_qp *)recv_entry->skb;
544         if (nesqp) {
545                 spin_lock_irqsave(&nesqp->lock, qplockflags);
546                 if (nesqp->cm_id) {
547                         nes_debug(NES_DBG_CM, "QP%u: cm_id = %p, "
548                                 "refcount = %d: HIT A "
549                                 "NES_TIMER_TYPE_CLOSE with something "
550                                 "to do!!!\n", nesqp->hwqp.qp_id, cm_id,
551                                 atomic_read(&nesqp->refcount));
552                         nesqp->hw_tcp_state = NES_AEQE_TCP_STATE_CLOSED;
553                         nesqp->last_aeq = NES_AEQE_AEID_RESET_SENT;
554                         nesqp->ibqp_state = IB_QPS_ERR;
555                         spin_unlock_irqrestore(&nesqp->lock, qplockflags);
556                         nes_cm_disconn(nesqp);
557                 } else {
558                         spin_unlock_irqrestore(&nesqp->lock, qplockflags);
559                         nes_debug(NES_DBG_CM, "QP%u: cm_id = %p, "
560                                 "refcount = %d: HIT A "
561                                 "NES_TIMER_TYPE_CLOSE with nothing "
562                                 "to do!!!\n", nesqp->hwqp.qp_id, cm_id,
563                                 atomic_read(&nesqp->refcount));
564                 }
565         } else if (rem_node) {
566                 /* TIME_WAIT state */
567                 rem_ref_cm_node(cm_node->cm_core, cm_node);
568         }
569         if (cm_node->cm_id)
570                 cm_id->rem_ref(cm_id);
571         kfree(recv_entry);
572         cm_node->recv_entry = NULL;
573 }
574
575 /**
576  * nes_cm_timer_tick
577  */
578 static void nes_cm_timer_tick(unsigned long pass)
579 {
580         unsigned long flags;
581         unsigned long nexttimeout = jiffies + NES_LONG_TIME;
582         struct nes_cm_node *cm_node;
583         struct nes_timer_entry *send_entry, *recv_entry;
584         struct list_head *list_core_temp;
585         struct list_head *list_node;
586         struct nes_cm_core *cm_core = g_cm_core;
587         u32 settimer = 0;
588         unsigned long timetosend;
589         int ret = NETDEV_TX_OK;
590
591         struct list_head timer_list;
592         INIT_LIST_HEAD(&timer_list);
593         spin_lock_irqsave(&cm_core->ht_lock, flags);
594
595         list_for_each_safe(list_node, list_core_temp,
596                                 &cm_core->connected_nodes) {
597                 cm_node = container_of(list_node, struct nes_cm_node, list);
598                 if ((cm_node->recv_entry) || (cm_node->send_entry)) {
599                         add_ref_cm_node(cm_node);
600                         list_add(&cm_node->timer_entry, &timer_list);
601                 }
602         }
603         spin_unlock_irqrestore(&cm_core->ht_lock, flags);
604
605         list_for_each_safe(list_node, list_core_temp, &timer_list) {
606                 cm_node = container_of(list_node, struct nes_cm_node,
607                                         timer_entry);
608                 recv_entry = cm_node->recv_entry;
609
610                 if (recv_entry) {
611                         if (time_after(recv_entry->timetosend, jiffies)) {
612                                 if (nexttimeout > recv_entry->timetosend ||
613                                                 !settimer) {
614                                         nexttimeout = recv_entry->timetosend;
615                                         settimer = 1;
616                                 }
617                         } else
618                                 handle_recv_entry(cm_node, 1);
619                 }
620
621                 spin_lock_irqsave(&cm_node->retrans_list_lock, flags);
622                 do {
623                         send_entry = cm_node->send_entry;
624                         if (!send_entry)
625                                 break;
626                         if (time_after(send_entry->timetosend, jiffies)) {
627                                 if (cm_node->state != NES_CM_STATE_TSA) {
628                                         if ((nexttimeout >
629                                                 send_entry->timetosend) ||
630                                                 !settimer) {
631                                                 nexttimeout =
632                                                         send_entry->timetosend;
633                                                 settimer = 1;
634                                         }
635                                 } else {
636                                         free_retrans_entry(cm_node);
637                                 }
638                                 break;
639                         }
640
641                         if ((cm_node->state == NES_CM_STATE_TSA) ||
642                                 (cm_node->state == NES_CM_STATE_CLOSED)) {
643                                 free_retrans_entry(cm_node);
644                                 break;
645                         }
646
647                         if (!send_entry->retranscount ||
648                                 !send_entry->retrycount) {
649                                 cm_packets_dropped++;
650                                 free_retrans_entry(cm_node);
651
652                                 spin_unlock_irqrestore(
653                                         &cm_node->retrans_list_lock, flags);
654                                 nes_retrans_expired(cm_node);
655                                 cm_node->state = NES_CM_STATE_CLOSED;
656                                 spin_lock_irqsave(&cm_node->retrans_list_lock,
657                                         flags);
658                                 break;
659                         }
660                         atomic_inc(&send_entry->skb->users);
661                         cm_packets_retrans++;
662                         nes_debug(NES_DBG_CM, "Retransmitting send_entry %p "
663                                 "for node %p, jiffies = %lu, time to send = "
664                                 "%lu, retranscount = %u, send_entry->seq_num = "
665                                 "0x%08X, cm_node->tcp_cntxt.rem_ack_num = "
666                                 "0x%08X\n", send_entry, cm_node, jiffies,
667                                 send_entry->timetosend,
668                                 send_entry->retranscount,
669                                 send_entry->seq_num,
670                                 cm_node->tcp_cntxt.rem_ack_num);
671
672                         spin_unlock_irqrestore(&cm_node->retrans_list_lock,
673                                 flags);
674                         ret = nes_nic_cm_xmit(send_entry->skb, cm_node->netdev);
675                         spin_lock_irqsave(&cm_node->retrans_list_lock, flags);
676                         if (ret != NETDEV_TX_OK) {
677                                 nes_debug(NES_DBG_CM, "rexmit failed for "
678                                         "node=%p\n", cm_node);
679                                 cm_packets_bounced++;
680                                 send_entry->retrycount--;
681                                 nexttimeout = jiffies + NES_SHORT_TIME;
682                                 settimer = 1;
683                                 break;
684                         } else {
685                                 cm_packets_sent++;
686                         }
687                         nes_debug(NES_DBG_CM, "Packet Sent: retrans count = "
688                                 "%u, retry count = %u.\n",
689                                 send_entry->retranscount,
690                                 send_entry->retrycount);
691                         if (send_entry->send_retrans) {
692                                 send_entry->retranscount--;
693                                 timetosend = (NES_RETRY_TIMEOUT <<
694                                         (NES_DEFAULT_RETRANS - send_entry->retranscount));
695
696                                 send_entry->timetosend = jiffies +
697                                         min(timetosend, NES_MAX_TIMEOUT);
698                                 if (nexttimeout > send_entry->timetosend ||
699                                         !settimer) {
700                                         nexttimeout = send_entry->timetosend;
701                                         settimer = 1;
702                                 }
703                         } else {
704                                 int close_when_complete;
705                                 close_when_complete =
706                                         send_entry->close_when_complete;
707                                 nes_debug(NES_DBG_CM, "cm_node=%p state=%d\n",
708                                         cm_node, cm_node->state);
709                                 free_retrans_entry(cm_node);
710                                 if (close_when_complete)
711                                         rem_ref_cm_node(cm_node->cm_core,
712                                                 cm_node);
713                         }
714                 } while (0);
715
716                 spin_unlock_irqrestore(&cm_node->retrans_list_lock, flags);
717                 rem_ref_cm_node(cm_node->cm_core, cm_node);
718         }
719
720         if (settimer) {
721                 if (!timer_pending(&cm_core->tcp_timer)) {
722                         cm_core->tcp_timer.expires  = nexttimeout;
723                         add_timer(&cm_core->tcp_timer);
724                 }
725         }
726 }
727
728
729 /**
730  * send_syn
731  */
732 static int send_syn(struct nes_cm_node *cm_node, u32 sendack,
733         struct sk_buff *skb)
734 {
735         int ret;
736         int flags = SET_SYN;
737         char optionsbuffer[sizeof(struct option_mss) +
738                 sizeof(struct option_windowscale) + sizeof(struct option_base) +
739                 TCP_OPTIONS_PADDING];
740
741         int optionssize = 0;
742         /* Sending MSS option */
743         union all_known_options *options;
744
745         if (!cm_node)
746                 return -EINVAL;
747
748         options = (union all_known_options *)&optionsbuffer[optionssize];
749         options->as_mss.optionnum = OPTION_NUMBER_MSS;
750         options->as_mss.length = sizeof(struct option_mss);
751         options->as_mss.mss = htons(cm_node->tcp_cntxt.mss);
752         optionssize += sizeof(struct option_mss);
753
754         options = (union all_known_options *)&optionsbuffer[optionssize];
755         options->as_windowscale.optionnum = OPTION_NUMBER_WINDOW_SCALE;
756         options->as_windowscale.length = sizeof(struct option_windowscale);
757         options->as_windowscale.shiftcount = cm_node->tcp_cntxt.rcv_wscale;
758         optionssize += sizeof(struct option_windowscale);
759
760         if (sendack && !(NES_DRV_OPT_SUPRESS_OPTION_BC & nes_drv_opt)) {
761                 options = (union all_known_options *)&optionsbuffer[optionssize];
762                 options->as_base.optionnum = OPTION_NUMBER_WRITE0;
763                 options->as_base.length = sizeof(struct option_base);
764                 optionssize += sizeof(struct option_base);
765                 /* we need the size to be a multiple of 4 */
766                 options = (union all_known_options *)&optionsbuffer[optionssize];
767                 options->as_end = 1;
768                 optionssize += 1;
769                 options = (union all_known_options *)&optionsbuffer[optionssize];
770                 options->as_end = 1;
771                 optionssize += 1;
772         }
773
774         options = (union all_known_options *)&optionsbuffer[optionssize];
775         options->as_end = OPTION_NUMBER_END;
776         optionssize += 1;
777
778         if (!skb)
779                 skb = dev_alloc_skb(MAX_CM_BUFFER);
780         if (!skb) {
781                 nes_debug(NES_DBG_CM, "Failed to get a Free pkt\n");
782                 return -1;
783         }
784
785         if (sendack)
786                 flags |= SET_ACK;
787
788         form_cm_frame(skb, cm_node, optionsbuffer, optionssize, NULL, 0, flags);
789         ret = schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 1, 0);
790
791         return ret;
792 }
793
794
795 /**
796  * send_reset
797  */
798 static int send_reset(struct nes_cm_node *cm_node, struct sk_buff *skb)
799 {
800         int ret;
801         int flags = SET_RST | SET_ACK;
802
803         if (!skb)
804                 skb = dev_alloc_skb(MAX_CM_BUFFER);
805         if (!skb) {
806                 nes_debug(NES_DBG_CM, "Failed to get a Free pkt\n");
807                 return -ENOMEM;
808         }
809
810         form_cm_frame(skb, cm_node, NULL, 0, NULL, 0, flags);
811         ret = schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 0, 1);
812
813         return ret;
814 }
815
816
817 /**
818  * send_ack
819  */
820 static int send_ack(struct nes_cm_node *cm_node, struct sk_buff *skb)
821 {
822         int ret;
823
824         if (!skb)
825                 skb = dev_alloc_skb(MAX_CM_BUFFER);
826
827         if (!skb) {
828                 nes_debug(NES_DBG_CM, "Failed to get a Free pkt\n");
829                 return -1;
830         }
831
832         form_cm_frame(skb, cm_node, NULL, 0, NULL, 0, SET_ACK);
833         ret = schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 0, 0);
834
835         return ret;
836 }
837
838
839 /**
840  * send_fin
841  */
842 static int send_fin(struct nes_cm_node *cm_node, struct sk_buff *skb)
843 {
844         int ret;
845
846         /* if we didn't get a frame get one */
847         if (!skb)
848                 skb = dev_alloc_skb(MAX_CM_BUFFER);
849
850         if (!skb) {
851                 nes_debug(NES_DBG_CM, "Failed to get a Free pkt\n");
852                 return -1;
853         }
854
855         form_cm_frame(skb, cm_node, NULL, 0, NULL, 0, SET_ACK | SET_FIN);
856         ret = schedule_nes_timer(cm_node, skb, NES_TIMER_TYPE_SEND, 1, 0);
857
858         return ret;
859 }
860
861
862 /**
863  * find_node - find a cm node that matches the reference cm node
864  */
865 static struct nes_cm_node *find_node(struct nes_cm_core *cm_core,
866                 u16 rem_port, nes_addr_t rem_addr, u16 loc_port, nes_addr_t loc_addr)
867 {
868         unsigned long flags;
869         struct list_head *hte;
870         struct nes_cm_node *cm_node;
871
872         /* get a handle on the hte */
873         hte = &cm_core->connected_nodes;
874
875         /* walk list and find cm_node associated with this session ID */
876         spin_lock_irqsave(&cm_core->ht_lock, flags);
877         list_for_each_entry(cm_node, hte, list) {
878                 /* compare quad, return node handle if a match */
879                 nes_debug(NES_DBG_CM, "finding node %x:%x =? %x:%x ^ %x:%x =? %x:%x\n",
880                                 cm_node->loc_addr, cm_node->loc_port,
881                                 loc_addr, loc_port,
882                                 cm_node->rem_addr, cm_node->rem_port,
883                                 rem_addr, rem_port);
884                 if ((cm_node->loc_addr == loc_addr) && (cm_node->loc_port == loc_port) &&
885                                 (cm_node->rem_addr == rem_addr) && (cm_node->rem_port == rem_port)) {
886                         add_ref_cm_node(cm_node);
887                         spin_unlock_irqrestore(&cm_core->ht_lock, flags);
888                         return cm_node;
889                 }
890         }
891         spin_unlock_irqrestore(&cm_core->ht_lock, flags);
892
893         /* no owner node */
894         return NULL;
895 }
896
897
898 /**
899  * find_listener - find a cm node listening on this addr-port pair
900  */
901 static struct nes_cm_listener *find_listener(struct nes_cm_core *cm_core,
902                 nes_addr_t dst_addr, u16 dst_port, enum nes_cm_listener_state listener_state)
903 {
904         unsigned long flags;
905         struct nes_cm_listener *listen_node;
906
907         /* walk list and find cm_node associated with this session ID */
908         spin_lock_irqsave(&cm_core->listen_list_lock, flags);
909         list_for_each_entry(listen_node, &cm_core->listen_list.list, list) {
910                 /* compare node pair, return node handle if a match */
911                 if (((listen_node->loc_addr == dst_addr) ||
912                                 listen_node->loc_addr == 0x00000000) &&
913                                 (listen_node->loc_port == dst_port) &&
914                                 (listener_state & listen_node->listener_state)) {
915                         atomic_inc(&listen_node->ref_count);
916                         spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
917                         return listen_node;
918                 }
919         }
920         spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
921
922         /* no listener */
923         return NULL;
924 }
925
926
927 /**
928  * add_hte_node - add a cm node to the hash table
929  */
930 static int add_hte_node(struct nes_cm_core *cm_core, struct nes_cm_node *cm_node)
931 {
932         unsigned long flags;
933         struct list_head *hte;
934
935         if (!cm_node || !cm_core)
936                 return -EINVAL;
937
938         nes_debug(NES_DBG_CM, "Adding Node %p to Active Connection HT\n",
939                 cm_node);
940
941         spin_lock_irqsave(&cm_core->ht_lock, flags);
942
943         /* get a handle on the hash table element (list head for this slot) */
944         hte = &cm_core->connected_nodes;
945         list_add_tail(&cm_node->list, hte);
946         atomic_inc(&cm_core->ht_node_cnt);
947
948         spin_unlock_irqrestore(&cm_core->ht_lock, flags);
949
950         return 0;
951 }
952
953
954 /**
955  * mini_cm_dec_refcnt_listen
956  */
957 static int mini_cm_dec_refcnt_listen(struct nes_cm_core *cm_core,
958         struct nes_cm_listener *listener, int free_hanging_nodes)
959 {
960         int ret = -EINVAL;
961         int err = 0;
962         unsigned long flags;
963         struct list_head *list_pos = NULL;
964         struct list_head *list_temp = NULL;
965         struct nes_cm_node *cm_node = NULL;
966         struct list_head reset_list;
967
968         nes_debug(NES_DBG_CM, "attempting listener= %p free_nodes= %d, "
969                 "refcnt=%d\n", listener, free_hanging_nodes,
970                 atomic_read(&listener->ref_count));
971         /* free non-accelerated child nodes for this listener */
972         INIT_LIST_HEAD(&reset_list);
973         if (free_hanging_nodes) {
974                 spin_lock_irqsave(&cm_core->ht_lock, flags);
975                 list_for_each_safe(list_pos, list_temp,
976                                    &g_cm_core->connected_nodes) {
977                         cm_node = container_of(list_pos, struct nes_cm_node,
978                                 list);
979                         if ((cm_node->listener == listener) &&
980                             (!cm_node->accelerated)) {
981                                 add_ref_cm_node(cm_node);
982                                 list_add(&cm_node->reset_entry, &reset_list);
983                         }
984                 }
985                 spin_unlock_irqrestore(&cm_core->ht_lock, flags);
986         }
987
988         list_for_each_safe(list_pos, list_temp, &reset_list) {
989                 cm_node = container_of(list_pos, struct nes_cm_node,
990                                 reset_entry);
991                 {
992                         struct nes_cm_node *loopback = cm_node->loopbackpartner;
993                         enum nes_cm_node_state old_state;
994                         if (NES_CM_STATE_FIN_WAIT1 <= cm_node->state) {
995                                 rem_ref_cm_node(cm_node->cm_core, cm_node);
996                         } else {
997                                 if (!loopback) {
998                                         cleanup_retrans_entry(cm_node);
999                                         err = send_reset(cm_node, NULL);
1000                                         if (err) {
1001                                                 cm_node->state =
1002                                                          NES_CM_STATE_CLOSED;
1003                                                 WARN_ON(1);
1004                                         } else {
1005                                                 old_state = cm_node->state;
1006                                                 cm_node->state = NES_CM_STATE_LISTENER_DESTROYED;
1007                                                 if (old_state != NES_CM_STATE_MPAREQ_RCVD)
1008                                                         rem_ref_cm_node(
1009                                                                 cm_node->cm_core,
1010                                                                 cm_node);
1011                                         }
1012                                 } else {
1013                                         struct nes_cm_event event;
1014
1015                                         event.cm_node = loopback;
1016                                         event.cm_info.rem_addr =
1017                                                         loopback->rem_addr;
1018                                         event.cm_info.loc_addr =
1019                                                         loopback->loc_addr;
1020                                         event.cm_info.rem_port =
1021                                                         loopback->rem_port;
1022                                         event.cm_info.loc_port =
1023                                                          loopback->loc_port;
1024                                         event.cm_info.cm_id = loopback->cm_id;
1025                                         add_ref_cm_node(loopback);
1026                                         loopback->state = NES_CM_STATE_CLOSED;
1027                                         cm_event_connect_error(&event);
1028                                         cm_node->state = NES_CM_STATE_LISTENER_DESTROYED;
1029
1030                                         rem_ref_cm_node(cm_node->cm_core,
1031                                                          cm_node);
1032
1033                                 }
1034                         }
1035                 }
1036         }
1037
1038         spin_lock_irqsave(&cm_core->listen_list_lock, flags);
1039         if (!atomic_dec_return(&listener->ref_count)) {
1040                 list_del(&listener->list);
1041
1042                 /* decrement our listen node count */
1043                 atomic_dec(&cm_core->listen_node_cnt);
1044
1045                 spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
1046
1047                 if (listener->nesvnic) {
1048                         nes_manage_apbvt(listener->nesvnic, listener->loc_port,
1049                                         PCI_FUNC(listener->nesvnic->nesdev->pcidev->devfn), NES_MANAGE_APBVT_DEL);
1050                 }
1051
1052                 nes_debug(NES_DBG_CM, "destroying listener (%p)\n", listener);
1053
1054                 kfree(listener);
1055                 listener = NULL;
1056                 ret = 0;
1057                 atomic_inc(&cm_listens_destroyed);
1058         } else {
1059                 spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
1060         }
1061         if (listener) {
1062                 if (atomic_read(&listener->pend_accepts_cnt) > 0)
1063                         nes_debug(NES_DBG_CM, "destroying listener (%p)"
1064                                         " with non-zero pending accepts=%u\n",
1065                                         listener, atomic_read(&listener->pend_accepts_cnt));
1066         }
1067
1068         return ret;
1069 }
1070
1071
1072 /**
1073  * mini_cm_del_listen
1074  */
1075 static int mini_cm_del_listen(struct nes_cm_core *cm_core,
1076                 struct nes_cm_listener *listener)
1077 {
1078         listener->listener_state = NES_CM_LISTENER_PASSIVE_STATE;
1079         listener->cm_id = NULL; /* going to be destroyed pretty soon */
1080         return mini_cm_dec_refcnt_listen(cm_core, listener, 1);
1081 }
1082
1083
1084 /**
1085  * mini_cm_accelerated
1086  */
1087 static inline int mini_cm_accelerated(struct nes_cm_core *cm_core,
1088                 struct nes_cm_node *cm_node)
1089 {
1090         u32 was_timer_set;
1091         cm_node->accelerated = 1;
1092
1093         if (cm_node->accept_pend) {
1094                 BUG_ON(!cm_node->listener);
1095                 atomic_dec(&cm_node->listener->pend_accepts_cnt);
1096                 cm_node->accept_pend = 0;
1097                 BUG_ON(atomic_read(&cm_node->listener->pend_accepts_cnt) < 0);
1098         }
1099
1100         was_timer_set = timer_pending(&cm_core->tcp_timer);
1101         if (!was_timer_set) {
1102                 cm_core->tcp_timer.expires = jiffies + NES_SHORT_TIME;
1103                 add_timer(&cm_core->tcp_timer);
1104         }
1105
1106         return 0;
1107 }
1108
1109
1110 /**
1111  * nes_addr_resolve_neigh
1112  */
1113 static int nes_addr_resolve_neigh(struct nes_vnic *nesvnic, u32 dst_ip, int arpindex)
1114 {
1115         struct rtable *rt;
1116         struct neighbour *neigh;
1117         int rc = arpindex;
1118         struct net_device *netdev;
1119         struct nes_adapter *nesadapter = nesvnic->nesdev->nesadapter;
1120
1121         rt = ip_route_output(&init_net, htonl(dst_ip), 0, 0, 0);
1122         if (IS_ERR(rt)) {
1123                 printk(KERN_ERR "%s: ip_route_output_key failed for 0x%08X\n",
1124                                 __func__, dst_ip);
1125                 return rc;
1126         }
1127
1128         if (netif_is_bond_slave(nesvnic->netdev))
1129                 netdev = nesvnic->netdev->master;
1130         else
1131                 netdev = nesvnic->netdev;
1132
1133         neigh = neigh_lookup(&arp_tbl, &rt->rt_gateway, netdev);
1134         if (neigh) {
1135                 if (neigh->nud_state & NUD_VALID) {
1136                         nes_debug(NES_DBG_CM, "Neighbor MAC address for 0x%08X"
1137                                   " is %pM, Gateway is 0x%08X \n", dst_ip,
1138                                   neigh->ha, ntohl(rt->rt_gateway));
1139
1140                         if (arpindex >= 0) {
1141                                 if (!memcmp(nesadapter->arp_table[arpindex].mac_addr,
1142                                                         neigh->ha, ETH_ALEN)){
1143                                         /* Mac address same as in nes_arp_table */
1144                                         neigh_release(neigh);
1145                                         ip_rt_put(rt);
1146                                         return rc;
1147                                 }
1148
1149                                 nes_manage_arp_cache(nesvnic->netdev,
1150                                                 nesadapter->arp_table[arpindex].mac_addr,
1151                                                 dst_ip, NES_ARP_DELETE);
1152                         }
1153
1154                         nes_manage_arp_cache(nesvnic->netdev, neigh->ha,
1155                                              dst_ip, NES_ARP_ADD);
1156                         rc = nes_arp_table(nesvnic->nesdev, dst_ip, NULL,
1157                                            NES_ARP_RESOLVE);
1158                 }
1159                 neigh_release(neigh);
1160         }
1161
1162         if ((neigh == NULL) || (!(neigh->nud_state & NUD_VALID)))
1163                 neigh_event_send(dst_get_neighbour(&rt->dst), NULL);
1164
1165         ip_rt_put(rt);
1166         return rc;
1167 }
1168
1169 /**
1170  * make_cm_node - create a new instance of a cm node
1171  */
1172 static struct nes_cm_node *make_cm_node(struct nes_cm_core *cm_core,
1173                 struct nes_vnic *nesvnic, struct nes_cm_info *cm_info,
1174                 struct nes_cm_listener *listener)
1175 {
1176         struct nes_cm_node *cm_node;
1177         struct timespec ts;
1178         int oldarpindex = 0;
1179         int arpindex = 0;
1180         struct nes_device *nesdev;
1181         struct nes_adapter *nesadapter;
1182
1183         /* create an hte and cm_node for this instance */
1184         cm_node = kzalloc(sizeof(*cm_node), GFP_ATOMIC);
1185         if (!cm_node)
1186                 return NULL;
1187
1188         /* set our node specific transport info */
1189         cm_node->loc_addr = cm_info->loc_addr;
1190         cm_node->rem_addr = cm_info->rem_addr;
1191         cm_node->loc_port = cm_info->loc_port;
1192         cm_node->rem_port = cm_info->rem_port;
1193         cm_node->send_write0 = send_first;
1194         nes_debug(NES_DBG_CM, "Make node addresses : loc = %pI4:%x, rem = %pI4:%x\n",
1195                   &cm_node->loc_addr, cm_node->loc_port,
1196                   &cm_node->rem_addr, cm_node->rem_port);
1197         cm_node->listener = listener;
1198         cm_node->netdev = nesvnic->netdev;
1199         cm_node->cm_id = cm_info->cm_id;
1200         memcpy(cm_node->loc_mac, nesvnic->netdev->dev_addr, ETH_ALEN);
1201
1202         nes_debug(NES_DBG_CM, "listener=%p, cm_id=%p\n", cm_node->listener,
1203                         cm_node->cm_id);
1204
1205         spin_lock_init(&cm_node->retrans_list_lock);
1206
1207         cm_node->loopbackpartner = NULL;
1208         atomic_set(&cm_node->ref_count, 1);
1209         /* associate our parent CM core */
1210         cm_node->cm_core = cm_core;
1211         cm_node->tcp_cntxt.loc_id = NES_CM_DEF_LOCAL_ID;
1212         cm_node->tcp_cntxt.rcv_wscale = NES_CM_DEFAULT_RCV_WND_SCALE;
1213         cm_node->tcp_cntxt.rcv_wnd = NES_CM_DEFAULT_RCV_WND_SCALED >>
1214                         NES_CM_DEFAULT_RCV_WND_SCALE;
1215         ts = current_kernel_time();
1216         cm_node->tcp_cntxt.loc_seq_num = htonl(ts.tv_nsec);
1217         cm_node->tcp_cntxt.mss = nesvnic->max_frame_size - sizeof(struct iphdr) -
1218                         sizeof(struct tcphdr) - ETH_HLEN - VLAN_HLEN;
1219         cm_node->tcp_cntxt.rcv_nxt = 0;
1220         /* get a unique session ID , add thread_id to an upcounter to handle race */
1221         atomic_inc(&cm_core->node_cnt);
1222         cm_node->conn_type = cm_info->conn_type;
1223         cm_node->apbvt_set = 0;
1224         cm_node->accept_pend = 0;
1225
1226         cm_node->nesvnic = nesvnic;
1227         /* get some device handles, for arp lookup */
1228         nesdev = nesvnic->nesdev;
1229         nesadapter = nesdev->nesadapter;
1230
1231         cm_node->loopbackpartner = NULL;
1232
1233         /* get the mac addr for the remote node */
1234         if (ipv4_is_loopback(htonl(cm_node->rem_addr)))
1235                 arpindex = nes_arp_table(nesdev, ntohl(nesvnic->local_ipaddr), NULL, NES_ARP_RESOLVE);
1236         else {
1237                 oldarpindex = nes_arp_table(nesdev, cm_node->rem_addr, NULL, NES_ARP_RESOLVE);
1238                 arpindex = nes_addr_resolve_neigh(nesvnic, cm_info->rem_addr, oldarpindex);
1239
1240         }
1241         if (arpindex < 0) {
1242                 kfree(cm_node);
1243                 return NULL;
1244         }
1245
1246         /* copy the mac addr to node context */
1247         memcpy(cm_node->rem_mac, nesadapter->arp_table[arpindex].mac_addr, ETH_ALEN);
1248         nes_debug(NES_DBG_CM, "Remote mac addr from arp table: %pM\n",
1249                   cm_node->rem_mac);
1250
1251         add_hte_node(cm_core, cm_node);
1252         atomic_inc(&cm_nodes_created);
1253
1254         return cm_node;
1255 }
1256
1257
1258 /**
1259  * add_ref_cm_node - destroy an instance of a cm node
1260  */
1261 static int add_ref_cm_node(struct nes_cm_node *cm_node)
1262 {
1263         atomic_inc(&cm_node->ref_count);
1264         return 0;
1265 }
1266
1267
1268 /**
1269  * rem_ref_cm_node - destroy an instance of a cm node
1270  */
1271 static int rem_ref_cm_node(struct nes_cm_core *cm_core,
1272         struct nes_cm_node *cm_node)
1273 {
1274         unsigned long flags;
1275         struct nes_qp *nesqp;
1276
1277         if (!cm_node)
1278                 return -EINVAL;
1279
1280         spin_lock_irqsave(&cm_node->cm_core->ht_lock, flags);
1281         if (atomic_dec_return(&cm_node->ref_count)) {
1282                 spin_unlock_irqrestore(&cm_node->cm_core->ht_lock, flags);
1283                 return 0;
1284         }
1285         list_del(&cm_node->list);
1286         atomic_dec(&cm_core->ht_node_cnt);
1287         spin_unlock_irqrestore(&cm_node->cm_core->ht_lock, flags);
1288
1289         /* if the node is destroyed before connection was accelerated */
1290         if (!cm_node->accelerated && cm_node->accept_pend) {
1291                 BUG_ON(!cm_node->listener);
1292                 atomic_dec(&cm_node->listener->pend_accepts_cnt);
1293                 BUG_ON(atomic_read(&cm_node->listener->pend_accepts_cnt) < 0);
1294         }
1295         WARN_ON(cm_node->send_entry);
1296         if (cm_node->recv_entry)
1297                 handle_recv_entry(cm_node, 0);
1298         if (cm_node->listener) {
1299                 mini_cm_dec_refcnt_listen(cm_core, cm_node->listener, 0);
1300         } else {
1301                 if (cm_node->apbvt_set && cm_node->nesvnic) {
1302                         nes_manage_apbvt(cm_node->nesvnic, cm_node->loc_port,
1303                                 PCI_FUNC(
1304                                 cm_node->nesvnic->nesdev->pcidev->devfn),
1305                                 NES_MANAGE_APBVT_DEL);
1306                 }
1307         }
1308
1309         atomic_dec(&cm_core->node_cnt);
1310         atomic_inc(&cm_nodes_destroyed);
1311         nesqp = cm_node->nesqp;
1312         if (nesqp) {
1313                 nesqp->cm_node = NULL;
1314                 nes_rem_ref(&nesqp->ibqp);
1315                 cm_node->nesqp = NULL;
1316         }
1317
1318         kfree(cm_node);
1319         return 0;
1320 }
1321
1322 /**
1323  * process_options
1324  */
1325 static int process_options(struct nes_cm_node *cm_node, u8 *optionsloc,
1326         u32 optionsize, u32 syn_packet)
1327 {
1328         u32 tmp;
1329         u32 offset = 0;
1330         union all_known_options *all_options;
1331         char got_mss_option = 0;
1332
1333         while (offset < optionsize) {
1334                 all_options = (union all_known_options *)(optionsloc + offset);
1335                 switch (all_options->as_base.optionnum) {
1336                 case OPTION_NUMBER_END:
1337                         offset = optionsize;
1338                         break;
1339                 case OPTION_NUMBER_NONE:
1340                         offset += 1;
1341                         continue;
1342                 case OPTION_NUMBER_MSS:
1343                         nes_debug(NES_DBG_CM, "%s: MSS Length: %d Offset: %d "
1344                                 "Size: %d\n", __func__,
1345                                 all_options->as_mss.length, offset, optionsize);
1346                         got_mss_option = 1;
1347                         if (all_options->as_mss.length != 4) {
1348                                 return 1;
1349                         } else {
1350                                 tmp = ntohs(all_options->as_mss.mss);
1351                                 if (tmp > 0 && tmp <
1352                                         cm_node->tcp_cntxt.mss)
1353                                         cm_node->tcp_cntxt.mss = tmp;
1354                         }
1355                         break;
1356                 case OPTION_NUMBER_WINDOW_SCALE:
1357                         cm_node->tcp_cntxt.snd_wscale =
1358                                 all_options->as_windowscale.shiftcount;
1359                         break;
1360                 case OPTION_NUMBER_WRITE0:
1361                         cm_node->send_write0 = 1;
1362                         break;
1363                 default:
1364                         nes_debug(NES_DBG_CM, "TCP Option not understood: %x\n",
1365                                 all_options->as_base.optionnum);
1366                         break;
1367                 }
1368                 offset += all_options->as_base.length;
1369         }
1370         if ((!got_mss_option) && (syn_packet))
1371                 cm_node->tcp_cntxt.mss = NES_CM_DEFAULT_MSS;
1372         return 0;
1373 }
1374
1375 static void drop_packet(struct sk_buff *skb)
1376 {
1377         atomic_inc(&cm_accel_dropped_pkts);
1378         dev_kfree_skb_any(skb);
1379 }
1380
1381 static void handle_fin_pkt(struct nes_cm_node *cm_node)
1382 {
1383         nes_debug(NES_DBG_CM, "Received FIN, cm_node = %p, state = %u. "
1384                 "refcnt=%d\n", cm_node, cm_node->state,
1385                 atomic_read(&cm_node->ref_count));
1386         switch (cm_node->state) {
1387         case NES_CM_STATE_SYN_RCVD:
1388         case NES_CM_STATE_SYN_SENT:
1389         case NES_CM_STATE_ESTABLISHED:
1390         case NES_CM_STATE_MPAREJ_RCVD:
1391                 cm_node->tcp_cntxt.rcv_nxt++;
1392                 cleanup_retrans_entry(cm_node);
1393                 cm_node->state = NES_CM_STATE_LAST_ACK;
1394                 send_fin(cm_node, NULL);
1395                 break;
1396         case NES_CM_STATE_MPAREQ_SENT:
1397                 create_event(cm_node, NES_CM_EVENT_ABORTED);
1398                 cm_node->tcp_cntxt.rcv_nxt++;
1399                 cleanup_retrans_entry(cm_node);
1400                 cm_node->state = NES_CM_STATE_CLOSED;
1401                 add_ref_cm_node(cm_node);
1402                 send_reset(cm_node, NULL);
1403                 break;
1404         case NES_CM_STATE_FIN_WAIT1:
1405                 cm_node->tcp_cntxt.rcv_nxt++;
1406                 cleanup_retrans_entry(cm_node);
1407                 cm_node->state = NES_CM_STATE_CLOSING;
1408                 send_ack(cm_node, NULL);
1409                 /* Wait for ACK as this is simultaneous close..
1410                 * After we receive ACK, do not send anything..
1411                 * Just rm the node.. Done.. */
1412                 break;
1413         case NES_CM_STATE_FIN_WAIT2:
1414                 cm_node->tcp_cntxt.rcv_nxt++;
1415                 cleanup_retrans_entry(cm_node);
1416                 cm_node->state = NES_CM_STATE_TIME_WAIT;
1417                 send_ack(cm_node, NULL);
1418                 schedule_nes_timer(cm_node, NULL,  NES_TIMER_TYPE_CLOSE, 1, 0);
1419                 break;
1420         case NES_CM_STATE_TIME_WAIT:
1421                 cm_node->tcp_cntxt.rcv_nxt++;
1422                 cleanup_retrans_entry(cm_node);
1423                 cm_node->state = NES_CM_STATE_CLOSED;
1424                 rem_ref_cm_node(cm_node->cm_core, cm_node);
1425                 break;
1426         case NES_CM_STATE_TSA:
1427         default:
1428                 nes_debug(NES_DBG_CM, "Error Rcvd FIN for node-%p state = %d\n",
1429                         cm_node, cm_node->state);
1430                 break;
1431         }
1432 }
1433
1434
1435 static void handle_rst_pkt(struct nes_cm_node *cm_node, struct sk_buff *skb,
1436         struct tcphdr *tcph)
1437 {
1438
1439         int     reset = 0;      /* whether to send reset in case of err.. */
1440         atomic_inc(&cm_resets_recvd);
1441         nes_debug(NES_DBG_CM, "Received Reset, cm_node = %p, state = %u."
1442                         " refcnt=%d\n", cm_node, cm_node->state,
1443                         atomic_read(&cm_node->ref_count));
1444         cleanup_retrans_entry(cm_node);
1445         switch (cm_node->state) {
1446         case NES_CM_STATE_SYN_SENT:
1447         case NES_CM_STATE_MPAREQ_SENT:
1448                 nes_debug(NES_DBG_CM, "%s[%u] create abort for cm_node=%p "
1449                         "listener=%p state=%d\n", __func__, __LINE__, cm_node,
1450                         cm_node->listener, cm_node->state);
1451                 active_open_err(cm_node, skb, reset);
1452                 break;
1453         case NES_CM_STATE_MPAREQ_RCVD:
1454                 atomic_inc(&cm_node->passive_state);
1455                 dev_kfree_skb_any(skb);
1456                 break;
1457         case NES_CM_STATE_ESTABLISHED:
1458         case NES_CM_STATE_SYN_RCVD:
1459         case NES_CM_STATE_LISTENING:
1460                 nes_debug(NES_DBG_CM, "Bad state %s[%u]\n", __func__, __LINE__);
1461                 passive_open_err(cm_node, skb, reset);
1462                 break;
1463         case NES_CM_STATE_TSA:
1464                 active_open_err(cm_node, skb, reset);
1465                 break;
1466         case NES_CM_STATE_CLOSED:
1467                 drop_packet(skb);
1468                 break;
1469         case NES_CM_STATE_FIN_WAIT2:
1470         case NES_CM_STATE_FIN_WAIT1:
1471         case NES_CM_STATE_LAST_ACK:
1472                 cm_node->cm_id->rem_ref(cm_node->cm_id);
1473         case NES_CM_STATE_TIME_WAIT:
1474                 cm_node->state = NES_CM_STATE_CLOSED;
1475                 rem_ref_cm_node(cm_node->cm_core, cm_node);
1476                 drop_packet(skb);
1477                 break;
1478         default:
1479                 drop_packet(skb);
1480                 break;
1481         }
1482 }
1483
1484
1485 static void handle_rcv_mpa(struct nes_cm_node *cm_node, struct sk_buff *skb)
1486 {
1487
1488         int     ret = 0;
1489         int datasize = skb->len;
1490         u8 *dataloc = skb->data;
1491
1492         enum nes_cm_event_type type = NES_CM_EVENT_UNKNOWN;
1493         u32     res_type;
1494         ret = parse_mpa(cm_node, dataloc, &res_type, datasize);
1495         if (ret) {
1496                 nes_debug(NES_DBG_CM, "didn't like MPA Request\n");
1497                 if (cm_node->state == NES_CM_STATE_MPAREQ_SENT) {
1498                         nes_debug(NES_DBG_CM, "%s[%u] create abort for "
1499                                 "cm_node=%p listener=%p state=%d\n", __func__,
1500                                 __LINE__, cm_node, cm_node->listener,
1501                                 cm_node->state);
1502                         active_open_err(cm_node, skb, 1);
1503                 } else {
1504                         passive_open_err(cm_node, skb, 1);
1505                 }
1506                 return;
1507         }
1508
1509         switch (cm_node->state) {
1510         case NES_CM_STATE_ESTABLISHED:
1511                 if (res_type == NES_MPA_REQUEST_REJECT) {
1512                         /*BIG problem as we are receiving the MPA.. So should
1513                         * not be REJECT.. This is Passive Open.. We can
1514                         * only receive it Reject for Active Open...*/
1515                         WARN_ON(1);
1516                 }
1517                 cm_node->state = NES_CM_STATE_MPAREQ_RCVD;
1518                 type = NES_CM_EVENT_MPA_REQ;
1519                 atomic_set(&cm_node->passive_state,
1520                                 NES_PASSIVE_STATE_INDICATED);
1521                 break;
1522         case NES_CM_STATE_MPAREQ_SENT:
1523                 cleanup_retrans_entry(cm_node);
1524                 if (res_type == NES_MPA_REQUEST_REJECT) {
1525                         type = NES_CM_EVENT_MPA_REJECT;
1526                         cm_node->state = NES_CM_STATE_MPAREJ_RCVD;
1527                 } else {
1528                         type = NES_CM_EVENT_CONNECTED;
1529                         cm_node->state = NES_CM_STATE_TSA;
1530                 }
1531
1532                 break;
1533         default:
1534                 WARN_ON(1);
1535                 break;
1536         }
1537         dev_kfree_skb_any(skb);
1538         create_event(cm_node, type);
1539 }
1540
1541 static void indicate_pkt_err(struct nes_cm_node *cm_node, struct sk_buff *skb)
1542 {
1543         switch (cm_node->state) {
1544         case NES_CM_STATE_SYN_SENT:
1545         case NES_CM_STATE_MPAREQ_SENT:
1546                 nes_debug(NES_DBG_CM, "%s[%u] create abort for cm_node=%p "
1547                         "listener=%p state=%d\n", __func__, __LINE__, cm_node,
1548                         cm_node->listener, cm_node->state);
1549                 active_open_err(cm_node, skb, 1);
1550                 break;
1551         case NES_CM_STATE_ESTABLISHED:
1552         case NES_CM_STATE_SYN_RCVD:
1553                 passive_open_err(cm_node, skb, 1);
1554                 break;
1555         case NES_CM_STATE_TSA:
1556         default:
1557                 drop_packet(skb);
1558         }
1559 }
1560
1561 static int check_syn(struct nes_cm_node *cm_node, struct tcphdr *tcph,
1562         struct sk_buff *skb)
1563 {
1564         int err;
1565
1566         err = ((ntohl(tcph->ack_seq) == cm_node->tcp_cntxt.loc_seq_num))? 0 : 1;
1567         if (err)
1568                 active_open_err(cm_node, skb, 1);
1569
1570         return err;
1571 }
1572
1573 static int check_seq(struct nes_cm_node *cm_node, struct tcphdr *tcph,
1574         struct sk_buff *skb)
1575 {
1576         int err = 0;
1577         u32 seq;
1578         u32 ack_seq;
1579         u32 loc_seq_num = cm_node->tcp_cntxt.loc_seq_num;
1580         u32 rcv_nxt = cm_node->tcp_cntxt.rcv_nxt;
1581         u32 rcv_wnd;
1582         seq = ntohl(tcph->seq);
1583         ack_seq = ntohl(tcph->ack_seq);
1584         rcv_wnd = cm_node->tcp_cntxt.rcv_wnd;
1585         if (ack_seq != loc_seq_num)
1586                 err = 1;
1587         else if (!between(seq, rcv_nxt, (rcv_nxt+rcv_wnd)))
1588                 err = 1;
1589         if (err) {
1590                 nes_debug(NES_DBG_CM, "%s[%u] create abort for cm_node=%p "
1591                         "listener=%p state=%d\n", __func__, __LINE__, cm_node,
1592                         cm_node->listener, cm_node->state);
1593                 indicate_pkt_err(cm_node, skb);
1594                 nes_debug(NES_DBG_CM, "seq ERROR cm_node =%p seq=0x%08X "
1595                         "rcv_nxt=0x%08X rcv_wnd=0x%x\n", cm_node, seq, rcv_nxt,
1596                         rcv_wnd);
1597         }
1598         return err;
1599 }
1600
1601 /*
1602  * handle_syn_pkt() is for Passive node. The syn packet is received when a node
1603  * is created with a listener or it may comein as rexmitted packet which in
1604  * that case will be just dropped.
1605  */
1606
1607 static void handle_syn_pkt(struct nes_cm_node *cm_node, struct sk_buff *skb,
1608         struct tcphdr *tcph)
1609 {
1610         int ret;
1611         u32 inc_sequence;
1612         int optionsize;
1613
1614         optionsize = (tcph->doff << 2) - sizeof(struct tcphdr);
1615         skb_trim(skb, 0);
1616         inc_sequence = ntohl(tcph->seq);
1617
1618         switch (cm_node->state) {
1619         case NES_CM_STATE_SYN_SENT:
1620         case NES_CM_STATE_MPAREQ_SENT:
1621                 /* Rcvd syn on active open connection*/
1622                 active_open_err(cm_node, skb, 1);
1623                 break;
1624         case NES_CM_STATE_LISTENING:
1625                 /* Passive OPEN */
1626                 if (atomic_read(&cm_node->listener->pend_accepts_cnt) >
1627                                 cm_node->listener->backlog) {
1628                         nes_debug(NES_DBG_CM, "drop syn due to backlog "
1629                                 "pressure \n");
1630                         cm_backlog_drops++;
1631                         passive_open_err(cm_node, skb, 0);
1632                         break;
1633                 }
1634                 ret = handle_tcp_options(cm_node, tcph, skb, optionsize,
1635                         1);
1636                 if (ret) {
1637                         passive_open_err(cm_node, skb, 0);
1638                         /* drop pkt */
1639                         break;
1640                 }
1641                 cm_node->tcp_cntxt.rcv_nxt = inc_sequence + 1;
1642                 BUG_ON(cm_node->send_entry);
1643                 cm_node->accept_pend = 1;
1644                 atomic_inc(&cm_node->listener->pend_accepts_cnt);
1645
1646                 cm_node->state = NES_CM_STATE_SYN_RCVD;
1647                 send_syn(cm_node, 1, skb);
1648                 break;
1649         case NES_CM_STATE_CLOSED:
1650                 cleanup_retrans_entry(cm_node);
1651                 add_ref_cm_node(cm_node);
1652                 send_reset(cm_node, skb);
1653                 break;
1654         case NES_CM_STATE_TSA:
1655         case NES_CM_STATE_ESTABLISHED:
1656         case NES_CM_STATE_FIN_WAIT1:
1657         case NES_CM_STATE_FIN_WAIT2:
1658         case NES_CM_STATE_MPAREQ_RCVD:
1659         case NES_CM_STATE_LAST_ACK:
1660         case NES_CM_STATE_CLOSING:
1661         case NES_CM_STATE_UNKNOWN:
1662         default:
1663                 drop_packet(skb);
1664                 break;
1665         }
1666 }
1667
1668 static void handle_synack_pkt(struct nes_cm_node *cm_node, struct sk_buff *skb,
1669         struct tcphdr *tcph)
1670 {
1671
1672         int ret;
1673         u32 inc_sequence;
1674         int optionsize;
1675
1676         optionsize = (tcph->doff << 2) - sizeof(struct tcphdr);
1677         skb_trim(skb, 0);
1678         inc_sequence = ntohl(tcph->seq);
1679         switch (cm_node->state) {
1680         case NES_CM_STATE_SYN_SENT:
1681                 cleanup_retrans_entry(cm_node);
1682                 /* active open */
1683                 if (check_syn(cm_node, tcph, skb))
1684                         return;
1685                 cm_node->tcp_cntxt.rem_ack_num = ntohl(tcph->ack_seq);
1686                 /* setup options */
1687                 ret = handle_tcp_options(cm_node, tcph, skb, optionsize, 0);
1688                 if (ret) {
1689                         nes_debug(NES_DBG_CM, "cm_node=%p tcp_options failed\n",
1690                                 cm_node);
1691                         break;
1692                 }
1693                 cleanup_retrans_entry(cm_node);
1694                 cm_node->tcp_cntxt.rcv_nxt = inc_sequence + 1;
1695                 send_mpa_request(cm_node, skb);
1696                 cm_node->state = NES_CM_STATE_MPAREQ_SENT;
1697                 break;
1698         case NES_CM_STATE_MPAREQ_RCVD:
1699                 /* passive open, so should not be here */
1700                 passive_open_err(cm_node, skb, 1);
1701                 break;
1702         case NES_CM_STATE_LISTENING:
1703                 cm_node->tcp_cntxt.loc_seq_num = ntohl(tcph->ack_seq);
1704                 cleanup_retrans_entry(cm_node);
1705                 cm_node->state = NES_CM_STATE_CLOSED;
1706                 send_reset(cm_node, skb);
1707                 break;
1708         case NES_CM_STATE_CLOSED:
1709                 cm_node->tcp_cntxt.loc_seq_num = ntohl(tcph->ack_seq);
1710                 cleanup_retrans_entry(cm_node);
1711                 add_ref_cm_node(cm_node);
1712                 send_reset(cm_node, skb);
1713                 break;
1714         case NES_CM_STATE_ESTABLISHED:
1715         case NES_CM_STATE_FIN_WAIT1:
1716         case NES_CM_STATE_FIN_WAIT2:
1717         case NES_CM_STATE_LAST_ACK:
1718         case NES_CM_STATE_TSA:
1719         case NES_CM_STATE_CLOSING:
1720         case NES_CM_STATE_UNKNOWN:
1721         case NES_CM_STATE_MPAREQ_SENT:
1722         default:
1723                 drop_packet(skb);
1724                 break;
1725         }
1726 }
1727
1728 static int handle_ack_pkt(struct nes_cm_node *cm_node, struct sk_buff *skb,
1729         struct tcphdr *tcph)
1730 {
1731         int datasize = 0;
1732         u32 inc_sequence;
1733         int ret = 0;
1734         int optionsize;
1735         optionsize = (tcph->doff << 2) - sizeof(struct tcphdr);
1736
1737         if (check_seq(cm_node, tcph, skb))
1738                 return -EINVAL;
1739
1740         skb_pull(skb, tcph->doff << 2);
1741         inc_sequence = ntohl(tcph->seq);
1742         datasize = skb->len;
1743         switch (cm_node->state) {
1744         case NES_CM_STATE_SYN_RCVD:
1745                 /* Passive OPEN */
1746                 cleanup_retrans_entry(cm_node);
1747                 ret = handle_tcp_options(cm_node, tcph, skb, optionsize, 1);
1748                 if (ret)
1749                         break;
1750                 cm_node->tcp_cntxt.rem_ack_num = ntohl(tcph->ack_seq);
1751                 cm_node->state = NES_CM_STATE_ESTABLISHED;
1752                 if (datasize) {
1753                         cm_node->tcp_cntxt.rcv_nxt = inc_sequence + datasize;
1754                         handle_rcv_mpa(cm_node, skb);
1755                 } else  /* rcvd ACK only */
1756                         dev_kfree_skb_any(skb);
1757                 break;
1758         case NES_CM_STATE_ESTABLISHED:
1759                 /* Passive OPEN */
1760                 cleanup_retrans_entry(cm_node);
1761                 if (datasize) {
1762                         cm_node->tcp_cntxt.rcv_nxt = inc_sequence + datasize;
1763                         handle_rcv_mpa(cm_node, skb);
1764                 } else
1765                         drop_packet(skb);
1766                 break;
1767         case NES_CM_STATE_MPAREQ_SENT:
1768                 cm_node->tcp_cntxt.rem_ack_num = ntohl(tcph->ack_seq);
1769                 if (datasize) {
1770                         cm_node->tcp_cntxt.rcv_nxt = inc_sequence + datasize;
1771                         handle_rcv_mpa(cm_node, skb);
1772                 } else  /* Could be just an ack pkt.. */
1773                         dev_kfree_skb_any(skb);
1774                 break;
1775         case NES_CM_STATE_LISTENING:
1776                 cleanup_retrans_entry(cm_node);
1777                 cm_node->state = NES_CM_STATE_CLOSED;
1778                 send_reset(cm_node, skb);
1779                 break;
1780         case NES_CM_STATE_CLOSED:
1781                 cleanup_retrans_entry(cm_node);
1782                 add_ref_cm_node(cm_node);
1783                 send_reset(cm_node, skb);
1784                 break;
1785         case NES_CM_STATE_LAST_ACK:
1786         case NES_CM_STATE_CLOSING:
1787                 cleanup_retrans_entry(cm_node);
1788                 cm_node->state = NES_CM_STATE_CLOSED;
1789                 cm_node->cm_id->rem_ref(cm_node->cm_id);
1790                 rem_ref_cm_node(cm_node->cm_core, cm_node);
1791                 drop_packet(skb);
1792                 break;
1793         case NES_CM_STATE_FIN_WAIT1:
1794                 cleanup_retrans_entry(cm_node);
1795                 drop_packet(skb);
1796                 cm_node->state = NES_CM_STATE_FIN_WAIT2;
1797                 break;
1798         case NES_CM_STATE_SYN_SENT:
1799         case NES_CM_STATE_FIN_WAIT2:
1800         case NES_CM_STATE_TSA:
1801         case NES_CM_STATE_MPAREQ_RCVD:
1802         case NES_CM_STATE_UNKNOWN:
1803         default:
1804                 cleanup_retrans_entry(cm_node);
1805                 drop_packet(skb);
1806                 break;
1807         }
1808         return ret;
1809 }
1810
1811
1812
1813 static int handle_tcp_options(struct nes_cm_node *cm_node, struct tcphdr *tcph,
1814         struct sk_buff *skb, int optionsize, int passive)
1815 {
1816         u8 *optionsloc = (u8 *)&tcph[1];
1817         if (optionsize) {
1818                 if (process_options(cm_node, optionsloc, optionsize,
1819                         (u32)tcph->syn)) {
1820                         nes_debug(NES_DBG_CM, "%s: Node %p, Sending RESET\n",
1821                                 __func__, cm_node);
1822                         if (passive)
1823                                 passive_open_err(cm_node, skb, 1);
1824                         else
1825                                 active_open_err(cm_node, skb, 1);
1826                         return 1;
1827                 }
1828         }
1829
1830         cm_node->tcp_cntxt.snd_wnd = ntohs(tcph->window) <<
1831                         cm_node->tcp_cntxt.snd_wscale;
1832
1833         if (cm_node->tcp_cntxt.snd_wnd > cm_node->tcp_cntxt.max_snd_wnd)
1834                 cm_node->tcp_cntxt.max_snd_wnd = cm_node->tcp_cntxt.snd_wnd;
1835         return 0;
1836 }
1837
1838 /*
1839  * active_open_err() will send reset() if flag set..
1840  * It will also send ABORT event.
1841  */
1842
1843 static void active_open_err(struct nes_cm_node *cm_node, struct sk_buff *skb,
1844         int reset)
1845 {
1846         cleanup_retrans_entry(cm_node);
1847         if (reset) {
1848                 nes_debug(NES_DBG_CM, "ERROR active err called for cm_node=%p, "
1849                                 "state=%d\n", cm_node, cm_node->state);
1850                 add_ref_cm_node(cm_node);
1851                 send_reset(cm_node, skb);
1852         } else
1853                 dev_kfree_skb_any(skb);
1854
1855         cm_node->state = NES_CM_STATE_CLOSED;
1856         create_event(cm_node, NES_CM_EVENT_ABORTED);
1857 }
1858
1859 /*
1860  * passive_open_err() will either do a reset() or will free up the skb and
1861  * remove the cm_node.
1862  */
1863
1864 static void passive_open_err(struct nes_cm_node *cm_node, struct sk_buff *skb,
1865         int reset)
1866 {
1867         cleanup_retrans_entry(cm_node);
1868         cm_node->state = NES_CM_STATE_CLOSED;
1869         if (reset) {
1870                 nes_debug(NES_DBG_CM, "passive_open_err sending RST for "
1871                         "cm_node=%p state =%d\n", cm_node, cm_node->state);
1872                 send_reset(cm_node, skb);
1873         } else {
1874                 dev_kfree_skb_any(skb);
1875                 rem_ref_cm_node(cm_node->cm_core, cm_node);
1876         }
1877 }
1878
1879 /*
1880  * free_retrans_entry() routines assumes that the retrans_list_lock has
1881  * been acquired before calling.
1882  */
1883 static void free_retrans_entry(struct nes_cm_node *cm_node)
1884 {
1885         struct nes_timer_entry *send_entry;
1886         send_entry = cm_node->send_entry;
1887         if (send_entry) {
1888                 cm_node->send_entry = NULL;
1889                 dev_kfree_skb_any(send_entry->skb);
1890                 kfree(send_entry);
1891                 rem_ref_cm_node(cm_node->cm_core, cm_node);
1892         }
1893 }
1894
1895 static void cleanup_retrans_entry(struct nes_cm_node *cm_node)
1896 {
1897         unsigned long flags;
1898
1899         spin_lock_irqsave(&cm_node->retrans_list_lock, flags);
1900         free_retrans_entry(cm_node);
1901         spin_unlock_irqrestore(&cm_node->retrans_list_lock, flags);
1902 }
1903
1904 /**
1905  * process_packet
1906  * Returns skb if to be freed, else it will return NULL if already used..
1907  */
1908 static void process_packet(struct nes_cm_node *cm_node, struct sk_buff *skb,
1909         struct nes_cm_core *cm_core)
1910 {
1911         enum nes_tcpip_pkt_type pkt_type = NES_PKT_TYPE_UNKNOWN;
1912         struct tcphdr *tcph = tcp_hdr(skb);
1913         u32     fin_set = 0;
1914         int ret = 0;
1915         skb_pull(skb, ip_hdr(skb)->ihl << 2);
1916
1917         nes_debug(NES_DBG_CM, "process_packet: cm_node=%p state =%d syn=%d "
1918                 "ack=%d rst=%d fin=%d\n", cm_node, cm_node->state, tcph->syn,
1919                 tcph->ack, tcph->rst, tcph->fin);
1920
1921         if (tcph->rst)
1922                 pkt_type = NES_PKT_TYPE_RST;
1923         else if (tcph->syn) {
1924                 pkt_type = NES_PKT_TYPE_SYN;
1925                 if (tcph->ack)
1926                         pkt_type = NES_PKT_TYPE_SYNACK;
1927         } else if (tcph->ack)
1928                 pkt_type = NES_PKT_TYPE_ACK;
1929         if (tcph->fin)
1930                 fin_set = 1;
1931
1932         switch (pkt_type) {
1933         case NES_PKT_TYPE_SYN:
1934                 handle_syn_pkt(cm_node, skb, tcph);
1935                 break;
1936         case NES_PKT_TYPE_SYNACK:
1937                 handle_synack_pkt(cm_node, skb, tcph);
1938                 break;
1939         case NES_PKT_TYPE_ACK:
1940                 ret = handle_ack_pkt(cm_node, skb, tcph);
1941                 if (fin_set && !ret)
1942                         handle_fin_pkt(cm_node);
1943                 break;
1944         case NES_PKT_TYPE_RST:
1945                 handle_rst_pkt(cm_node, skb, tcph);
1946                 break;
1947         default:
1948                 if ((fin_set) && (!check_seq(cm_node, tcph, skb)))
1949                         handle_fin_pkt(cm_node);
1950                 drop_packet(skb);
1951                 break;
1952         }
1953 }
1954
1955 /**
1956  * mini_cm_listen - create a listen node with params
1957  */
1958 static struct nes_cm_listener *mini_cm_listen(struct nes_cm_core *cm_core,
1959         struct nes_vnic *nesvnic, struct nes_cm_info *cm_info)
1960 {
1961         struct nes_cm_listener *listener;
1962         unsigned long flags;
1963
1964         nes_debug(NES_DBG_CM, "Search for 0x%08x : 0x%04x\n",
1965                 cm_info->loc_addr, cm_info->loc_port);
1966
1967         /* cannot have multiple matching listeners */
1968         listener = find_listener(cm_core, htonl(cm_info->loc_addr),
1969                         htons(cm_info->loc_port), NES_CM_LISTENER_EITHER_STATE);
1970         if (listener && listener->listener_state == NES_CM_LISTENER_ACTIVE_STATE) {
1971                 /* find automatically incs ref count ??? */
1972                 atomic_dec(&listener->ref_count);
1973                 nes_debug(NES_DBG_CM, "Not creating listener since it already exists\n");
1974                 return NULL;
1975         }
1976
1977         if (!listener) {
1978                 /* create a CM listen node (1/2 node to compare incoming traffic to) */
1979                 listener = kzalloc(sizeof(*listener), GFP_ATOMIC);
1980                 if (!listener) {
1981                         nes_debug(NES_DBG_CM, "Not creating listener memory allocation failed\n");
1982                         return NULL;
1983                 }
1984
1985                 listener->loc_addr = htonl(cm_info->loc_addr);
1986                 listener->loc_port = htons(cm_info->loc_port);
1987                 listener->reused_node = 0;
1988
1989                 atomic_set(&listener->ref_count, 1);
1990         }
1991         /* pasive case */
1992         /* find already inc'ed the ref count */
1993         else {
1994                 listener->reused_node = 1;
1995         }
1996
1997         listener->cm_id = cm_info->cm_id;
1998         atomic_set(&listener->pend_accepts_cnt, 0);
1999         listener->cm_core = cm_core;
2000         listener->nesvnic = nesvnic;
2001         atomic_inc(&cm_core->node_cnt);
2002
2003         listener->conn_type = cm_info->conn_type;
2004         listener->backlog = cm_info->backlog;
2005         listener->listener_state = NES_CM_LISTENER_ACTIVE_STATE;
2006
2007         if (!listener->reused_node) {
2008                 spin_lock_irqsave(&cm_core->listen_list_lock, flags);
2009                 list_add(&listener->list, &cm_core->listen_list.list);
2010                 spin_unlock_irqrestore(&cm_core->listen_list_lock, flags);
2011                 atomic_inc(&cm_core->listen_node_cnt);
2012         }
2013
2014         nes_debug(NES_DBG_CM, "Api - listen(): addr=0x%08X, port=0x%04x,"
2015                         " listener = %p, backlog = %d, cm_id = %p.\n",
2016                         cm_info->loc_addr, cm_info->loc_port,
2017                         listener, listener->backlog, listener->cm_id);
2018
2019         return listener;
2020 }
2021
2022
2023 /**
2024  * mini_cm_connect - make a connection node with params
2025  */
2026 static struct nes_cm_node *mini_cm_connect(struct nes_cm_core *cm_core,
2027         struct nes_vnic *nesvnic, u16 private_data_len,
2028         void *private_data, struct nes_cm_info *cm_info)
2029 {
2030         int ret = 0;
2031         struct nes_cm_node *cm_node;
2032         struct nes_cm_listener *loopbackremotelistener;
2033         struct nes_cm_node *loopbackremotenode;
2034         struct nes_cm_info loopback_cm_info;
2035         u16 mpa_frame_size = sizeof(struct ietf_mpa_frame) + private_data_len;
2036         struct ietf_mpa_frame *mpa_frame = NULL;
2037
2038         /* create a CM connection node */
2039         cm_node = make_cm_node(cm_core, nesvnic, cm_info, NULL);
2040         if (!cm_node)
2041                 return NULL;
2042         mpa_frame = &cm_node->mpa_frame;
2043         memcpy(mpa_frame->key, IEFT_MPA_KEY_REQ, IETF_MPA_KEY_SIZE);
2044         mpa_frame->flags = IETF_MPA_FLAGS_CRC;
2045         mpa_frame->rev =  IETF_MPA_VERSION;
2046         mpa_frame->priv_data_len = htons(private_data_len);
2047
2048         /* set our node side to client (active) side */
2049         cm_node->tcp_cntxt.client = 1;
2050         cm_node->tcp_cntxt.rcv_wscale = NES_CM_DEFAULT_RCV_WND_SCALE;
2051
2052         if (cm_info->loc_addr == cm_info->rem_addr) {
2053                 loopbackremotelistener = find_listener(cm_core,
2054                                 ntohl(nesvnic->local_ipaddr), cm_node->rem_port,
2055                                 NES_CM_LISTENER_ACTIVE_STATE);
2056                 if (loopbackremotelistener == NULL) {
2057                         create_event(cm_node, NES_CM_EVENT_ABORTED);
2058                 } else {
2059                         loopback_cm_info = *cm_info;
2060                         loopback_cm_info.loc_port = cm_info->rem_port;
2061                         loopback_cm_info.rem_port = cm_info->loc_port;
2062                         loopback_cm_info.cm_id = loopbackremotelistener->cm_id;
2063                         loopbackremotenode = make_cm_node(cm_core, nesvnic,
2064                                 &loopback_cm_info, loopbackremotelistener);
2065                         if (!loopbackremotenode) {
2066                                 rem_ref_cm_node(cm_node->cm_core, cm_node);
2067                                 return NULL;
2068                         }
2069                         atomic_inc(&cm_loopbacks);
2070                         loopbackremotenode->loopbackpartner = cm_node;
2071                         loopbackremotenode->tcp_cntxt.rcv_wscale =
2072                                 NES_CM_DEFAULT_RCV_WND_SCALE;
2073                         cm_node->loopbackpartner = loopbackremotenode;
2074                         memcpy(loopbackremotenode->mpa_frame_buf, private_data,
2075                                 private_data_len);
2076                         loopbackremotenode->mpa_frame_size = private_data_len;
2077
2078                         /* we are done handling this state. */
2079                         /* set node to a TSA state */
2080                         cm_node->state = NES_CM_STATE_TSA;
2081                         cm_node->tcp_cntxt.rcv_nxt =
2082                                 loopbackremotenode->tcp_cntxt.loc_seq_num;
2083                         loopbackremotenode->tcp_cntxt.rcv_nxt =
2084                                 cm_node->tcp_cntxt.loc_seq_num;
2085                         cm_node->tcp_cntxt.max_snd_wnd =
2086                                 loopbackremotenode->tcp_cntxt.rcv_wnd;
2087                         loopbackremotenode->tcp_cntxt.max_snd_wnd =
2088                                 cm_node->tcp_cntxt.rcv_wnd;
2089                         cm_node->tcp_cntxt.snd_wnd =
2090                                 loopbackremotenode->tcp_cntxt.rcv_wnd;
2091                         loopbackremotenode->tcp_cntxt.snd_wnd =
2092                                 cm_node->tcp_cntxt.rcv_wnd;
2093                         cm_node->tcp_cntxt.snd_wscale =
2094                                 loopbackremotenode->tcp_cntxt.rcv_wscale;
2095                         loopbackremotenode->tcp_cntxt.snd_wscale =
2096                                 cm_node->tcp_cntxt.rcv_wscale;
2097                         loopbackremotenode->state = NES_CM_STATE_MPAREQ_RCVD;
2098                         create_event(loopbackremotenode, NES_CM_EVENT_MPA_REQ);
2099                 }
2100                 return cm_node;
2101         }
2102
2103         /* set our node side to client (active) side */
2104         cm_node->tcp_cntxt.client = 1;
2105         /* init our MPA frame ptr */
2106         memcpy(mpa_frame->priv_data, private_data, private_data_len);
2107
2108         cm_node->mpa_frame_size = mpa_frame_size;
2109
2110         /* send a syn and goto syn sent state */
2111         cm_node->state = NES_CM_STATE_SYN_SENT;
2112         ret = send_syn(cm_node, 0, NULL);
2113
2114         if (ret) {
2115                 /* error in sending the syn free up the cm_node struct */
2116                 nes_debug(NES_DBG_CM, "Api - connect() FAILED: dest "
2117                         "addr=0x%08X, port=0x%04x, cm_node=%p, cm_id = %p.\n",
2118                         cm_node->rem_addr, cm_node->rem_port, cm_node,
2119                         cm_node->cm_id);
2120                 rem_ref_cm_node(cm_node->cm_core, cm_node);
2121                 cm_node = NULL;
2122         }
2123
2124         if (cm_node)
2125                 nes_debug(NES_DBG_CM, "Api - connect(): dest addr=0x%08X,"
2126                         "port=0x%04x, cm_node=%p, cm_id = %p.\n",
2127                         cm_node->rem_addr, cm_node->rem_port, cm_node,
2128                         cm_node->cm_id);
2129
2130         return cm_node;
2131 }
2132
2133
2134 /**
2135  * mini_cm_accept - accept a connection
2136  * This function is never called
2137  */
2138 static int mini_cm_accept(struct nes_cm_core *cm_core,
2139         struct ietf_mpa_frame *mpa_frame, struct nes_cm_node *cm_node)
2140 {
2141         return 0;
2142 }
2143
2144
2145 /**
2146  * mini_cm_reject - reject and teardown a connection
2147  */
2148 static int mini_cm_reject(struct nes_cm_core *cm_core,
2149         struct ietf_mpa_frame *mpa_frame, struct nes_cm_node *cm_node)
2150 {
2151         int ret = 0;
2152         int err = 0;
2153         int passive_state;
2154         struct nes_cm_event event;
2155         struct iw_cm_id *cm_id = cm_node->cm_id;
2156         struct nes_cm_node *loopback = cm_node->loopbackpartner;
2157
2158         nes_debug(NES_DBG_CM, "%s cm_node=%p type=%d state=%d\n",
2159                 __func__, cm_node, cm_node->tcp_cntxt.client, cm_node->state);
2160
2161         if (cm_node->tcp_cntxt.client)
2162                 return ret;
2163         cleanup_retrans_entry(cm_node);
2164
2165         if (!loopback) {
2166                 passive_state = atomic_add_return(1, &cm_node->passive_state);
2167                 if (passive_state == NES_SEND_RESET_EVENT) {
2168                         cm_node->state = NES_CM_STATE_CLOSED;
2169                         rem_ref_cm_node(cm_core, cm_node);
2170                 } else {
2171                         if (cm_node->state == NES_CM_STATE_LISTENER_DESTROYED) {
2172                                 rem_ref_cm_node(cm_core, cm_node);
2173                         } else {
2174                                 ret = send_mpa_reject(cm_node);
2175                                 if (ret) {
2176                                         cm_node->state = NES_CM_STATE_CLOSED;
2177                                         err = send_reset(cm_node, NULL);
2178                                         if (err)
2179                                                 WARN_ON(1);
2180                                 } else
2181                                         cm_id->add_ref(cm_id);
2182                         }
2183                 }
2184         } else {
2185                 cm_node->cm_id = NULL;
2186                 if (cm_node->state == NES_CM_STATE_LISTENER_DESTROYED) {
2187                         rem_ref_cm_node(cm_core, cm_node);
2188                         rem_ref_cm_node(cm_core, loopback);
2189                 } else {
2190                         event.cm_node = loopback;
2191                         event.cm_info.rem_addr = loopback->rem_addr;
2192                         event.cm_info.loc_addr = loopback->loc_addr;
2193                         event.cm_info.rem_port = loopback->rem_port;
2194                         event.cm_info.loc_port = loopback->loc_port;
2195                         event.cm_info.cm_id = loopback->cm_id;
2196                         cm_event_mpa_reject(&event);
2197                         rem_ref_cm_node(cm_core, cm_node);
2198                         loopback->state = NES_CM_STATE_CLOSING;
2199
2200                         cm_id = loopback->cm_id;
2201                         rem_ref_cm_node(cm_core, loopback);
2202                         cm_id->rem_ref(cm_id);
2203                 }
2204         }
2205
2206         return ret;
2207 }
2208
2209
2210 /**
2211  * mini_cm_close
2212  */
2213 static int mini_cm_close(struct nes_cm_core *cm_core, struct nes_cm_node *cm_node)
2214 {
2215         int ret = 0;
2216
2217         if (!cm_core || !cm_node)
2218                 return -EINVAL;
2219
2220         switch (cm_node->state) {
2221         case NES_CM_STATE_SYN_RCVD:
2222         case NES_CM_STATE_SYN_SENT:
2223         case NES_CM_STATE_ONE_SIDE_ESTABLISHED:
2224         case NES_CM_STATE_ESTABLISHED:
2225         case NES_CM_STATE_ACCEPTING:
2226         case NES_CM_STATE_MPAREQ_SENT:
2227         case NES_CM_STATE_MPAREQ_RCVD:
2228                 cleanup_retrans_entry(cm_node);
2229                 send_reset(cm_node, NULL);
2230                 break;
2231         case NES_CM_STATE_CLOSE_WAIT:
2232                 cm_node->state = NES_CM_STATE_LAST_ACK;
2233                 send_fin(cm_node, NULL);
2234                 break;
2235         case NES_CM_STATE_FIN_WAIT1:
2236         case NES_CM_STATE_FIN_WAIT2:
2237         case NES_CM_STATE_LAST_ACK:
2238         case NES_CM_STATE_TIME_WAIT:
2239         case NES_CM_STATE_CLOSING:
2240                 ret = -1;
2241                 break;
2242         case NES_CM_STATE_LISTENING:
2243                 cleanup_retrans_entry(cm_node);
2244                 send_reset(cm_node, NULL);
2245                 break;
2246         case NES_CM_STATE_MPAREJ_RCVD:
2247         case NES_CM_STATE_UNKNOWN:
2248         case NES_CM_STATE_INITED:
2249         case NES_CM_STATE_CLOSED:
2250         case NES_CM_STATE_LISTENER_DESTROYED:
2251                 ret = rem_ref_cm_node(cm_core, cm_node);
2252                 break;
2253         case NES_CM_STATE_TSA:
2254                 if (cm_node->send_entry)
2255                         printk(KERN_ERR "ERROR Close got called from STATE_TSA "
2256                                 "send_entry=%p\n", cm_node->send_entry);
2257                 ret = rem_ref_cm_node(cm_core, cm_node);
2258                 break;
2259         }
2260         return ret;
2261 }
2262
2263
2264 /**
2265  * recv_pkt - recv an ETHERNET packet, and process it through CM
2266  * node state machine
2267  */
2268 static int mini_cm_recv_pkt(struct nes_cm_core *cm_core,
2269         struct nes_vnic *nesvnic, struct sk_buff *skb)
2270 {
2271         struct nes_cm_node *cm_node = NULL;
2272         struct nes_cm_listener *listener = NULL;
2273         struct iphdr *iph;
2274         struct tcphdr *tcph;
2275         struct nes_cm_info nfo;
2276         int skb_handled = 1;
2277         __be32 tmp_daddr, tmp_saddr;
2278
2279         if (!skb)
2280                 return 0;
2281         if (skb->len < sizeof(struct iphdr) + sizeof(struct tcphdr)) {
2282                 return 0;
2283         }
2284
2285         iph = (struct iphdr *)skb->data;
2286         tcph = (struct tcphdr *)(skb->data + sizeof(struct iphdr));
2287
2288         nfo.loc_addr = ntohl(iph->daddr);
2289         nfo.loc_port = ntohs(tcph->dest);
2290         nfo.rem_addr = ntohl(iph->saddr);
2291         nfo.rem_port = ntohs(tcph->source);
2292
2293         tmp_daddr = cpu_to_be32(iph->daddr);
2294         tmp_saddr = cpu_to_be32(iph->saddr);
2295
2296         nes_debug(NES_DBG_CM, "Received packet: dest=%pI4:0x%04X src=%pI4:0x%04X\n",
2297                   &tmp_daddr, tcph->dest, &tmp_saddr, tcph->source);
2298
2299         do {
2300                 cm_node = find_node(cm_core,
2301                         nfo.rem_port, nfo.rem_addr,
2302                         nfo.loc_port, nfo.loc_addr);
2303
2304                 if (!cm_node) {
2305                         /* Only type of packet accepted are for */
2306                         /* the PASSIVE open (syn only) */
2307                         if ((!tcph->syn) || (tcph->ack)) {
2308                                 skb_handled = 0;
2309                                 break;
2310                         }
2311                         listener = find_listener(cm_core, nfo.loc_addr,
2312                                 nfo.loc_port,
2313                                 NES_CM_LISTENER_ACTIVE_STATE);
2314                         if (!listener) {
2315                                 nfo.cm_id = NULL;
2316                                 nfo.conn_type = 0;
2317                                 nes_debug(NES_DBG_CM, "Unable to find listener for the pkt\n");
2318                                 skb_handled = 0;
2319                                 break;
2320                         }
2321                         nfo.cm_id = listener->cm_id;
2322                         nfo.conn_type = listener->conn_type;
2323                         cm_node = make_cm_node(cm_core, nesvnic, &nfo,
2324                                 listener);
2325                         if (!cm_node) {
2326                                 nes_debug(NES_DBG_CM, "Unable to allocate "
2327                                         "node\n");
2328                                 cm_packets_dropped++;
2329                                 atomic_dec(&listener->ref_count);
2330                                 dev_kfree_skb_any(skb);
2331                                 break;
2332                         }
2333                         if (!tcph->rst && !tcph->fin) {
2334                                 cm_node->state = NES_CM_STATE_LISTENING;
2335                         } else {
2336                                 cm_packets_dropped++;
2337                                 rem_ref_cm_node(cm_core, cm_node);
2338                                 dev_kfree_skb_any(skb);
2339                                 break;
2340                         }
2341                         add_ref_cm_node(cm_node);
2342                 } else if (cm_node->state == NES_CM_STATE_TSA) {
2343                         if (cm_node->nesqp->pau_mode)
2344                                 nes_queue_mgt_skbs(skb, nesvnic, cm_node->nesqp);
2345                         else {
2346                                 rem_ref_cm_node(cm_core, cm_node);
2347                                 atomic_inc(&cm_accel_dropped_pkts);
2348                                 dev_kfree_skb_any(skb);
2349                         }
2350                         break;
2351                 }
2352                 skb_reset_network_header(skb);
2353                 skb_set_transport_header(skb, sizeof(*tcph));
2354                 skb->len = ntohs(iph->tot_len);
2355                 process_packet(cm_node, skb, cm_core);
2356                 rem_ref_cm_node(cm_core, cm_node);
2357         } while (0);
2358         return skb_handled;
2359 }
2360
2361
2362 /**
2363  * nes_cm_alloc_core - allocate a top level instance of a cm core
2364  */
2365 static struct nes_cm_core *nes_cm_alloc_core(void)
2366 {
2367         struct nes_cm_core *cm_core;
2368
2369         /* setup the CM core */
2370         /* alloc top level core control structure */
2371         cm_core = kzalloc(sizeof(*cm_core), GFP_KERNEL);
2372         if (!cm_core)
2373                 return NULL;
2374
2375         INIT_LIST_HEAD(&cm_core->connected_nodes);
2376         init_timer(&cm_core->tcp_timer);
2377         cm_core->tcp_timer.function = nes_cm_timer_tick;
2378
2379         cm_core->mtu   = NES_CM_DEFAULT_MTU;
2380         cm_core->state = NES_CM_STATE_INITED;
2381         cm_core->free_tx_pkt_max = NES_CM_DEFAULT_FREE_PKTS;
2382
2383         atomic_set(&cm_core->events_posted, 0);
2384
2385         cm_core->api = &nes_cm_api;
2386
2387         spin_lock_init(&cm_core->ht_lock);
2388         spin_lock_init(&cm_core->listen_list_lock);
2389
2390         INIT_LIST_HEAD(&cm_core->listen_list.list);
2391
2392         nes_debug(NES_DBG_CM, "Init CM Core completed -- cm_core=%p\n", cm_core);
2393
2394         nes_debug(NES_DBG_CM, "Enable QUEUE EVENTS\n");
2395         cm_core->event_wq = create_singlethread_workqueue("nesewq");
2396         cm_core->post_event = nes_cm_post_event;
2397         nes_debug(NES_DBG_CM, "Enable QUEUE DISCONNECTS\n");
2398         cm_core->disconn_wq = create_singlethread_workqueue("nesdwq");
2399
2400         print_core(cm_core);
2401         return cm_core;
2402 }
2403
2404
2405 /**
2406  * mini_cm_dealloc_core - deallocate a top level instance of a cm core
2407  */
2408 static int mini_cm_dealloc_core(struct nes_cm_core *cm_core)
2409 {
2410         nes_debug(NES_DBG_CM, "De-Alloc CM Core (%p)\n", cm_core);
2411
2412         if (!cm_core)
2413                 return -EINVAL;
2414
2415         barrier();
2416
2417         if (timer_pending(&cm_core->tcp_timer)) {
2418                 del_timer(&cm_core->tcp_timer);
2419         }
2420
2421         destroy_workqueue(cm_core->event_wq);
2422         destroy_workqueue(cm_core->disconn_wq);
2423         nes_debug(NES_DBG_CM, "\n");
2424         kfree(cm_core);
2425
2426         return 0;
2427 }
2428
2429
2430 /**
2431  * mini_cm_get
2432  */
2433 static int mini_cm_get(struct nes_cm_core *cm_core)
2434 {
2435         return cm_core->state;
2436 }
2437
2438
2439 /**
2440  * mini_cm_set
2441  */
2442 static int mini_cm_set(struct nes_cm_core *cm_core, u32 type, u32 value)
2443 {
2444         int ret = 0;
2445
2446         switch (type) {
2447         case NES_CM_SET_PKT_SIZE:
2448                 cm_core->mtu = value;
2449                 break;
2450         case NES_CM_SET_FREE_PKT_Q_SIZE:
2451                 cm_core->free_tx_pkt_max = value;
2452                 break;
2453         default:
2454                 /* unknown set option */
2455                 ret = -EINVAL;
2456         }
2457
2458         return ret;
2459 }
2460
2461
2462 /**
2463  * nes_cm_init_tsa_conn setup HW; MPA frames must be
2464  * successfully exchanged when this is called
2465  */
2466 static int nes_cm_init_tsa_conn(struct nes_qp *nesqp, struct nes_cm_node *cm_node)
2467 {
2468         int ret = 0;
2469
2470         if (!nesqp)
2471                 return -EINVAL;
2472
2473         nesqp->nesqp_context->misc |= cpu_to_le32(NES_QPCONTEXT_MISC_IPV4 |
2474                         NES_QPCONTEXT_MISC_NO_NAGLE | NES_QPCONTEXT_MISC_DO_NOT_FRAG |
2475                         NES_QPCONTEXT_MISC_DROS);
2476
2477         if (cm_node->tcp_cntxt.snd_wscale || cm_node->tcp_cntxt.rcv_wscale)
2478                 nesqp->nesqp_context->misc |= cpu_to_le32(NES_QPCONTEXT_MISC_WSCALE);
2479
2480         nesqp->nesqp_context->misc2 |= cpu_to_le32(64 << NES_QPCONTEXT_MISC2_TTL_SHIFT);
2481
2482         nesqp->nesqp_context->mss |= cpu_to_le32(((u32)cm_node->tcp_cntxt.mss) << 16);
2483
2484         nesqp->nesqp_context->tcp_state_flow_label |= cpu_to_le32(
2485                         (u32)NES_QPCONTEXT_TCPSTATE_EST << NES_QPCONTEXT_TCPFLOW_TCP_STATE_SHIFT);
2486
2487         nesqp->nesqp_context->pd_index_wscale |= cpu_to_le32(
2488                         (cm_node->tcp_cntxt.snd_wscale << NES_QPCONTEXT_PDWSCALE_SND_WSCALE_SHIFT) &
2489                         NES_QPCONTEXT_PDWSCALE_SND_WSCALE_MASK);
2490
2491         nesqp->nesqp_context->pd_index_wscale |= cpu_to_le32(
2492                         (cm_node->tcp_cntxt.rcv_wscale << NES_QPCONTEXT_PDWSCALE_RCV_WSCALE_SHIFT) &
2493                         NES_QPCONTEXT_PDWSCALE_RCV_WSCALE_MASK);
2494
2495         nesqp->nesqp_context->keepalive = cpu_to_le32(0x80);
2496         nesqp->nesqp_context->ts_recent = 0;
2497         nesqp->nesqp_context->ts_age = 0;
2498         nesqp->nesqp_context->snd_nxt = cpu_to_le32(cm_node->tcp_cntxt.loc_seq_num);
2499         nesqp->nesqp_context->snd_wnd = cpu_to_le32(cm_node->tcp_cntxt.snd_wnd);
2500         nesqp->nesqp_context->rcv_nxt = cpu_to_le32(cm_node->tcp_cntxt.rcv_nxt);
2501         nesqp->nesqp_context->rcv_wnd = cpu_to_le32(cm_node->tcp_cntxt.rcv_wnd <<
2502                         cm_node->tcp_cntxt.rcv_wscale);
2503         nesqp->nesqp_context->snd_max = cpu_to_le32(cm_node->tcp_cntxt.loc_seq_num);
2504         nesqp->nesqp_context->snd_una = cpu_to_le32(cm_node->tcp_cntxt.loc_seq_num);
2505         nesqp->nesqp_context->srtt = 0;
2506         nesqp->nesqp_context->rttvar = cpu_to_le32(0x6);
2507         nesqp->nesqp_context->ssthresh = cpu_to_le32(0x3FFFC000);
2508         nesqp->nesqp_context->cwnd = cpu_to_le32(2*cm_node->tcp_cntxt.mss);
2509         nesqp->nesqp_context->snd_wl1 = cpu_to_le32(cm_node->tcp_cntxt.rcv_nxt);
2510         nesqp->nesqp_context->snd_wl2 = cpu_to_le32(cm_node->tcp_cntxt.loc_seq_num);
2511         nesqp->nesqp_context->max_snd_wnd = cpu_to_le32(cm_node->tcp_cntxt.max_snd_wnd);
2512
2513         nes_debug(NES_DBG_CM, "QP%u: rcv_nxt = 0x%08X, snd_nxt = 0x%08X,"
2514                         " Setting MSS to %u, PDWscale = 0x%08X, rcv_wnd = %u, context misc = 0x%08X.\n",
2515                         nesqp->hwqp.qp_id, le32_to_cpu(nesqp->nesqp_context->rcv_nxt),
2516                         le32_to_cpu(nesqp->nesqp_context->snd_nxt),
2517                         cm_node->tcp_cntxt.mss, le32_to_cpu(nesqp->nesqp_context->pd_index_wscale),
2518                         le32_to_cpu(nesqp->nesqp_context->rcv_wnd),
2519                         le32_to_cpu(nesqp->nesqp_context->misc));
2520         nes_debug(NES_DBG_CM, "  snd_wnd  = 0x%08X.\n", le32_to_cpu(nesqp->nesqp_context->snd_wnd));
2521         nes_debug(NES_DBG_CM, "  snd_cwnd = 0x%08X.\n", le32_to_cpu(nesqp->nesqp_context->cwnd));
2522         nes_debug(NES_DBG_CM, "  max_swnd = 0x%08X.\n", le32_to_cpu(nesqp->nesqp_context->max_snd_wnd));
2523
2524         nes_debug(NES_DBG_CM, "Change cm_node state to TSA\n");
2525         cm_node->state = NES_CM_STATE_TSA;
2526
2527         return ret;
2528 }
2529
2530
2531 /**
2532  * nes_cm_disconn
2533  */
2534 int nes_cm_disconn(struct nes_qp *nesqp)
2535 {
2536         struct disconn_work *work;
2537
2538         work = kzalloc(sizeof *work, GFP_ATOMIC);
2539         if (!work)
2540                 return -ENOMEM; /* Timer will clean up */
2541
2542         nes_add_ref(&nesqp->ibqp);
2543         work->nesqp = nesqp;
2544         INIT_WORK(&work->work, nes_disconnect_worker);
2545         queue_work(g_cm_core->disconn_wq, &work->work);
2546         return 0;
2547 }
2548
2549
2550 /**
2551  * nes_disconnect_worker
2552  */
2553 static void nes_disconnect_worker(struct work_struct *work)
2554 {
2555         struct disconn_work *dwork = container_of(work, struct disconn_work, work);
2556         struct nes_qp *nesqp = dwork->nesqp;
2557
2558         kfree(dwork);
2559         nes_debug(NES_DBG_CM, "processing AEQE id 0x%04X for QP%u.\n",
2560                         nesqp->last_aeq, nesqp->hwqp.qp_id);
2561         nes_cm_disconn_true(nesqp);
2562         nes_rem_ref(&nesqp->ibqp);
2563 }
2564
2565
2566 /**
2567  * nes_cm_disconn_true
2568  */
2569 static int nes_cm_disconn_true(struct nes_qp *nesqp)
2570 {
2571         unsigned long flags;
2572         int ret = 0;
2573         struct iw_cm_id *cm_id;
2574         struct iw_cm_event cm_event;
2575         struct nes_vnic *nesvnic;
2576         u16 last_ae;
2577         u8 original_hw_tcp_state;
2578         u8 original_ibqp_state;
2579         int disconn_status = 0;
2580         int issue_disconn = 0;
2581         int issue_close = 0;
2582         int issue_flush = 0;
2583         u32 flush_q = NES_CQP_FLUSH_RQ;
2584         struct ib_event ibevent;
2585
2586         if (!nesqp) {
2587                 nes_debug(NES_DBG_CM, "disconnect_worker nesqp is NULL\n");
2588                 return -1;
2589         }
2590
2591         spin_lock_irqsave(&nesqp->lock, flags);
2592         cm_id = nesqp->cm_id;
2593         /* make sure we havent already closed this connection */
2594         if (!cm_id) {
2595                 nes_debug(NES_DBG_CM, "QP%u disconnect_worker cmid is NULL\n",
2596                                 nesqp->hwqp.qp_id);
2597                 spin_unlock_irqrestore(&nesqp->lock, flags);
2598                 return -1;
2599         }
2600
2601         nesvnic = to_nesvnic(nesqp->ibqp.device);
2602         nes_debug(NES_DBG_CM, "Disconnecting QP%u\n", nesqp->hwqp.qp_id);
2603
2604         original_hw_tcp_state = nesqp->hw_tcp_state;
2605         original_ibqp_state   = nesqp->ibqp_state;
2606         last_ae = nesqp->last_aeq;
2607
2608         if (nesqp->term_flags) {
2609                 issue_disconn = 1;
2610                 issue_close = 1;
2611                 nesqp->cm_id = NULL;
2612                 if (nesqp->flush_issued == 0) {
2613                         nesqp->flush_issued = 1;
2614                         issue_flush = 1;
2615                 }
2616         } else if ((original_hw_tcp_state == NES_AEQE_TCP_STATE_CLOSE_WAIT) ||
2617                         ((original_ibqp_state == IB_QPS_RTS) &&
2618                         (last_ae == NES_AEQE_AEID_LLP_CONNECTION_RESET))) {
2619                 issue_disconn = 1;
2620                 if (last_ae == NES_AEQE_AEID_LLP_CONNECTION_RESET)
2621                         disconn_status = -ECONNRESET;
2622         }
2623
2624         if (((original_hw_tcp_state == NES_AEQE_TCP_STATE_CLOSED) ||
2625                  (original_hw_tcp_state == NES_AEQE_TCP_STATE_TIME_WAIT) ||
2626                  (last_ae == NES_AEQE_AEID_RDMAP_ROE_BAD_LLP_CLOSE) ||
2627                  (last_ae == NES_AEQE_AEID_LLP_CONNECTION_RESET))) {
2628                 issue_close = 1;
2629                 nesqp->cm_id = NULL;
2630                 if (nesqp->flush_issued == 0) {
2631                         nesqp->flush_issued = 1;
2632                         issue_flush = 1;
2633                 }
2634         }
2635
2636         spin_unlock_irqrestore(&nesqp->lock, flags);
2637
2638         if ((issue_flush) && (nesqp->destroyed == 0)) {
2639                 /* Flush the queue(s) */
2640                 if (nesqp->hw_iwarp_state >= NES_AEQE_IWARP_STATE_TERMINATE)
2641                         flush_q |= NES_CQP_FLUSH_SQ;
2642                 flush_wqes(nesvnic->nesdev, nesqp, flush_q, 1);
2643
2644                 if (nesqp->term_flags) {
2645                         ibevent.device = nesqp->ibqp.device;
2646                         ibevent.event = nesqp->terminate_eventtype;
2647                         ibevent.element.qp = &nesqp->ibqp;
2648                         nesqp->ibqp.event_handler(&ibevent, nesqp->ibqp.qp_context);
2649                 }
2650         }
2651
2652         if ((cm_id) && (cm_id->event_handler)) {
2653                 if (issue_disconn) {
2654                         atomic_inc(&cm_disconnects);
2655                         cm_event.event = IW_CM_EVENT_DISCONNECT;
2656                         cm_event.status = disconn_status;
2657                         cm_event.local_addr = cm_id->local_addr;
2658                         cm_event.remote_addr = cm_id->remote_addr;
2659                         cm_event.private_data = NULL;
2660                         cm_event.private_data_len = 0;
2661
2662                         nes_debug(NES_DBG_CM, "Generating a CM Disconnect Event"
2663                                 " for  QP%u, SQ Head = %u, SQ Tail = %u. "
2664                                 "cm_id = %p, refcount = %u.\n",
2665                                 nesqp->hwqp.qp_id, nesqp->hwqp.sq_head,
2666                                 nesqp->hwqp.sq_tail, cm_id,
2667                                 atomic_read(&nesqp->refcount));
2668
2669                         ret = cm_id->event_handler(cm_id, &cm_event);
2670                         if (ret)
2671                                 nes_debug(NES_DBG_CM, "OFA CM event_handler "
2672                                         "returned, ret=%d\n", ret);
2673                 }
2674
2675                 if (issue_close) {
2676                         atomic_inc(&cm_closes);
2677                         nes_disconnect(nesqp, 1);
2678
2679                         cm_id->provider_data = nesqp;
2680                         /* Send up the close complete event */
2681                         cm_event.event = IW_CM_EVENT_CLOSE;
2682                         cm_event.status = 0;
2683                         cm_event.provider_data = cm_id->provider_data;
2684                         cm_event.local_addr = cm_id->local_addr;
2685                         cm_event.remote_addr = cm_id->remote_addr;
2686                         cm_event.private_data = NULL;
2687                         cm_event.private_data_len = 0;
2688
2689                         ret = cm_id->event_handler(cm_id, &cm_event);
2690                         if (ret) {
2691                                 nes_debug(NES_DBG_CM, "OFA CM event_handler returned, ret=%d\n", ret);
2692                         }
2693
2694                         cm_id->rem_ref(cm_id);
2695                 }
2696         }
2697
2698         return 0;
2699 }
2700
2701
2702 /**
2703  * nes_disconnect
2704  */
2705 static int nes_disconnect(struct nes_qp *nesqp, int abrupt)
2706 {
2707         int ret = 0;
2708         struct nes_vnic *nesvnic;
2709         struct nes_device *nesdev;
2710         struct nes_ib_device *nesibdev;
2711
2712         nesvnic = to_nesvnic(nesqp->ibqp.device);
2713         if (!nesvnic)
2714                 return -EINVAL;
2715
2716         nesdev = nesvnic->nesdev;
2717         nesibdev = nesvnic->nesibdev;
2718
2719         nes_debug(NES_DBG_CM, "netdev refcnt = %u.\n",
2720                         netdev_refcnt_read(nesvnic->netdev));
2721
2722         if (nesqp->active_conn) {
2723
2724                 /* indicate this connection is NOT active */
2725                 nesqp->active_conn = 0;
2726         } else {
2727                 /* Need to free the Last Streaming Mode Message */
2728                 if (nesqp->ietf_frame) {
2729                         if (nesqp->lsmm_mr)
2730                                 nesibdev->ibdev.dereg_mr(nesqp->lsmm_mr);
2731                         pci_free_consistent(nesdev->pcidev,
2732                                         nesqp->private_data_len+sizeof(struct ietf_mpa_frame),
2733                                         nesqp->ietf_frame, nesqp->ietf_frame_pbase);
2734                 }
2735         }
2736
2737         /* close the CM node down if it is still active */
2738         if (nesqp->cm_node) {
2739                 nes_debug(NES_DBG_CM, "Call close API\n");
2740
2741                 g_cm_core->api->close(g_cm_core, nesqp->cm_node);
2742         }
2743
2744         return ret;
2745 }
2746
2747
2748 /**
2749  * nes_accept
2750  */
2751 int nes_accept(struct iw_cm_id *cm_id, struct iw_cm_conn_param *conn_param)
2752 {
2753         u64 u64temp;
2754         struct ib_qp *ibqp;
2755         struct nes_qp *nesqp;
2756         struct nes_vnic *nesvnic;
2757         struct nes_device *nesdev;
2758         struct nes_cm_node *cm_node;
2759         struct nes_adapter *adapter;
2760         struct ib_qp_attr attr;
2761         struct iw_cm_event cm_event;
2762         struct nes_hw_qp_wqe *wqe;
2763         struct nes_v4_quad nes_quad;
2764         u32 crc_value;
2765         int ret;
2766         int passive_state;
2767         struct nes_ib_device *nesibdev;
2768         struct ib_mr *ibmr = NULL;
2769         struct ib_phys_buf ibphysbuf;
2770         struct nes_pd *nespd;
2771         u64 tagged_offset;
2772
2773         ibqp = nes_get_qp(cm_id->device, conn_param->qpn);
2774         if (!ibqp)
2775                 return -EINVAL;
2776
2777         /* get all our handles */
2778         nesqp = to_nesqp(ibqp);
2779         nesvnic = to_nesvnic(nesqp->ibqp.device);
2780         nesdev = nesvnic->nesdev;
2781         adapter = nesdev->nesadapter;
2782
2783         cm_node = (struct nes_cm_node *)cm_id->provider_data;
2784         nes_debug(NES_DBG_CM, "nes_accept: cm_node= %p nesvnic=%p, netdev=%p,"
2785                 "%s\n", cm_node, nesvnic, nesvnic->netdev,
2786                 nesvnic->netdev->name);
2787
2788         if (NES_CM_STATE_LISTENER_DESTROYED == cm_node->state) {
2789                 if (cm_node->loopbackpartner)
2790                         rem_ref_cm_node(cm_node->cm_core, cm_node->loopbackpartner);
2791                 rem_ref_cm_node(cm_node->cm_core, cm_node);
2792                 return -EINVAL;
2793         }
2794
2795         passive_state = atomic_add_return(1, &cm_node->passive_state);
2796         if (passive_state == NES_SEND_RESET_EVENT) {
2797                 rem_ref_cm_node(cm_node->cm_core, cm_node);
2798                 return -ECONNRESET;
2799         }
2800
2801         /* associate the node with the QP */
2802         nesqp->cm_node = (void *)cm_node;
2803         cm_node->nesqp = nesqp;
2804
2805         nes_debug(NES_DBG_CM, "QP%u, cm_node=%p, jiffies = %lu listener = %p\n",
2806                 nesqp->hwqp.qp_id, cm_node, jiffies, cm_node->listener);
2807         atomic_inc(&cm_accepts);
2808
2809         nes_debug(NES_DBG_CM, "netdev refcnt = %u.\n",
2810                         netdev_refcnt_read(nesvnic->netdev));
2811
2812         /* allocate the ietf frame and space for private data */
2813         nesqp->ietf_frame = pci_alloc_consistent(nesdev->pcidev,
2814                 sizeof(struct ietf_mpa_frame) + conn_param->private_data_len,
2815                 &nesqp->ietf_frame_pbase);
2816
2817         if (!nesqp->ietf_frame) {
2818                 nes_debug(NES_DBG_CM, "Unable to allocate memory for private "
2819                         "data\n");
2820                 return -ENOMEM;
2821         }
2822
2823
2824         /* setup the MPA frame */
2825         nesqp->private_data_len = conn_param->private_data_len;
2826         memcpy(nesqp->ietf_frame->key, IEFT_MPA_KEY_REP, IETF_MPA_KEY_SIZE);
2827
2828         memcpy(nesqp->ietf_frame->priv_data, conn_param->private_data,
2829                         conn_param->private_data_len);
2830
2831         nesqp->ietf_frame->priv_data_len =
2832                 cpu_to_be16(conn_param->private_data_len);
2833         nesqp->ietf_frame->rev = mpa_version;
2834         nesqp->ietf_frame->flags = IETF_MPA_FLAGS_CRC;
2835
2836         /* setup our first outgoing iWarp send WQE (the IETF frame response) */
2837         wqe = &nesqp->hwqp.sq_vbase[0];
2838
2839         if (cm_id->remote_addr.sin_addr.s_addr !=
2840                         cm_id->local_addr.sin_addr.s_addr) {
2841                 u64temp = (unsigned long)nesqp;
2842                 nesibdev = nesvnic->nesibdev;
2843                 nespd = nesqp->nespd;
2844                 ibphysbuf.addr = nesqp->ietf_frame_pbase;
2845                 ibphysbuf.size = conn_param->private_data_len +
2846                                         sizeof(struct ietf_mpa_frame);
2847                 tagged_offset = (u64)(unsigned long)nesqp->ietf_frame;
2848                 ibmr = nesibdev->ibdev.reg_phys_mr((struct ib_pd *)nespd,
2849                                                 &ibphysbuf, 1,
2850                                                 IB_ACCESS_LOCAL_WRITE,
2851                                                 &tagged_offset);
2852                 if (!ibmr) {
2853                         nes_debug(NES_DBG_CM, "Unable to register memory region"
2854                                         "for lSMM for cm_node = %p \n",
2855                                         cm_node);
2856                         pci_free_consistent(nesdev->pcidev,
2857                                 nesqp->private_data_len+sizeof(struct ietf_mpa_frame),
2858                                 nesqp->ietf_frame, nesqp->ietf_frame_pbase);
2859                         return -ENOMEM;
2860                 }
2861
2862                 ibmr->pd = &nespd->ibpd;
2863                 ibmr->device = nespd->ibpd.device;
2864                 nesqp->lsmm_mr = ibmr;
2865
2866                 u64temp |= NES_SW_CONTEXT_ALIGN>>1;
2867                 set_wqe_64bit_value(wqe->wqe_words,
2868                         NES_IWARP_SQ_WQE_COMP_CTX_LOW_IDX,
2869                         u64temp);
2870                 wqe->wqe_words[NES_IWARP_SQ_WQE_MISC_IDX] =
2871                         cpu_to_le32(NES_IWARP_SQ_WQE_STREAMING |
2872                         NES_IWARP_SQ_WQE_WRPDU);
2873                 wqe->wqe_words[NES_IWARP_SQ_WQE_TOTAL_PAYLOAD_IDX] =
2874                         cpu_to_le32(conn_param->private_data_len +
2875                         sizeof(struct ietf_mpa_frame));
2876                 set_wqe_64bit_value(wqe->wqe_words,
2877                                         NES_IWARP_SQ_WQE_FRAG0_LOW_IDX,
2878                                         (u64)(unsigned long)nesqp->ietf_frame);
2879                 wqe->wqe_words[NES_IWARP_SQ_WQE_LENGTH0_IDX] =
2880                         cpu_to_le32(conn_param->private_data_len +
2881                         sizeof(struct ietf_mpa_frame));
2882                 wqe->wqe_words[NES_IWARP_SQ_WQE_STAG0_IDX] = ibmr->lkey;
2883                 if (nesqp->sq_kmapped) {
2884                         nesqp->sq_kmapped = 0;
2885                         kunmap(nesqp->page);
2886                 }
2887
2888                 nesqp->nesqp_context->ird_ord_sizes |=
2889                         cpu_to_le32(NES_QPCONTEXT_ORDIRD_LSMM_PRESENT |
2890                         NES_QPCONTEXT_ORDIRD_WRPDU);
2891         } else {
2892                 nesqp->nesqp_context->ird_ord_sizes |=
2893                         cpu_to_le32(NES_QPCONTEXT_ORDIRD_WRPDU);
2894         }
2895         nesqp->skip_lsmm = 1;
2896
2897
2898         /* Cache the cm_id in the qp */
2899         nesqp->cm_id = cm_id;
2900         cm_node->cm_id = cm_id;
2901
2902         /*  nesqp->cm_node = (void *)cm_id->provider_data; */
2903         cm_id->provider_data = nesqp;
2904         nesqp->active_conn   = 0;
2905
2906         if (cm_node->state == NES_CM_STATE_TSA)
2907                 nes_debug(NES_DBG_CM, "Already state = TSA for cm_node=%p\n",
2908                         cm_node);
2909
2910         nes_cm_init_tsa_conn(nesqp, cm_node);
2911
2912         nesqp->nesqp_context->tcpPorts[0] =
2913                 cpu_to_le16(ntohs(cm_id->local_addr.sin_port));
2914         nesqp->nesqp_context->tcpPorts[1] =
2915                 cpu_to_le16(ntohs(cm_id->remote_addr.sin_port));
2916
2917         if (ipv4_is_loopback(cm_id->remote_addr.sin_addr.s_addr))
2918                 nesqp->nesqp_context->ip0 =
2919                         cpu_to_le32(ntohl(nesvnic->local_ipaddr));
2920         else
2921                 nesqp->nesqp_context->ip0 =
2922                         cpu_to_le32(ntohl(cm_id->remote_addr.sin_addr.s_addr));
2923
2924         nesqp->nesqp_context->misc2 |= cpu_to_le32(
2925                         (u32)PCI_FUNC(nesdev->pcidev->devfn) <<
2926                         NES_QPCONTEXT_MISC2_SRC_IP_SHIFT);
2927
2928         nesqp->nesqp_context->arp_index_vlan |=
2929                 cpu_to_le32(nes_arp_table(nesdev,
2930                         le32_to_cpu(nesqp->nesqp_context->ip0), NULL,
2931                         NES_ARP_RESOLVE) << 16);
2932
2933         nesqp->nesqp_context->ts_val_delta = cpu_to_le32(
2934                 jiffies - nes_read_indexed(nesdev, NES_IDX_TCP_NOW));
2935
2936         nesqp->nesqp_context->ird_index = cpu_to_le32(nesqp->hwqp.qp_id);
2937
2938         nesqp->nesqp_context->ird_ord_sizes |= cpu_to_le32(
2939                 ((u32)1 << NES_QPCONTEXT_ORDIRD_IWARP_MODE_SHIFT));
2940         nesqp->nesqp_context->ird_ord_sizes |=
2941                 cpu_to_le32((u32)conn_param->ord);
2942
2943         memset(&nes_quad, 0, sizeof(nes_quad));
2944         nes_quad.DstIpAdrIndex =
2945                 cpu_to_le32((u32)PCI_FUNC(nesdev->pcidev->devfn) << 24);
2946         if (ipv4_is_loopback(cm_id->remote_addr.sin_addr.s_addr))
2947                 nes_quad.SrcIpadr = nesvnic->local_ipaddr;
2948         else
2949                 nes_quad.SrcIpadr = cm_id->remote_addr.sin_addr.s_addr;
2950         nes_quad.TcpPorts[0] = cm_id->remote_addr.sin_port;
2951         nes_quad.TcpPorts[1] = cm_id->local_addr.sin_port;
2952
2953         /* Produce hash key */
2954         crc_value = get_crc_value(&nes_quad);
2955         nesqp->hte_index = cpu_to_be32(crc_value ^ 0xffffffff);
2956         nes_debug(NES_DBG_CM, "HTE Index = 0x%08X, CRC = 0x%08X\n",
2957                 nesqp->hte_index, nesqp->hte_index & adapter->hte_index_mask);
2958
2959         nesqp->hte_index &= adapter->hte_index_mask;
2960         nesqp->nesqp_context->hte_index = cpu_to_le32(nesqp->hte_index);
2961
2962         cm_node->cm_core->api->accelerated(cm_node->cm_core, cm_node);
2963
2964         nes_debug(NES_DBG_CM, "QP%u, Destination IP = 0x%08X:0x%04X, local = "
2965                         "0x%08X:0x%04X, rcv_nxt=0x%08X, snd_nxt=0x%08X, mpa + "
2966                         "private data length=%zu.\n", nesqp->hwqp.qp_id,
2967                         ntohl(cm_id->remote_addr.sin_addr.s_addr),
2968                         ntohs(cm_id->remote_addr.sin_port),
2969                         ntohl(cm_id->local_addr.sin_addr.s_addr),
2970                         ntohs(cm_id->local_addr.sin_port),
2971                         le32_to_cpu(nesqp->nesqp_context->rcv_nxt),
2972                         le32_to_cpu(nesqp->nesqp_context->snd_nxt),
2973                         conn_param->private_data_len +
2974                         sizeof(struct ietf_mpa_frame));
2975
2976
2977         /* notify OF layer that accept event was successful */
2978         cm_id->add_ref(cm_id);
2979         nes_add_ref(&nesqp->ibqp);
2980
2981         cm_event.event = IW_CM_EVENT_ESTABLISHED;
2982         cm_event.status = 0;
2983         cm_event.provider_data = (void *)nesqp;
2984         cm_event.local_addr = cm_id->local_addr;
2985         cm_event.remote_addr = cm_id->remote_addr;
2986         cm_event.private_data = NULL;
2987         cm_event.private_data_len = 0;
2988         ret = cm_id->event_handler(cm_id, &cm_event);
2989         attr.qp_state = IB_QPS_RTS;
2990         nes_modify_qp(&nesqp->ibqp, &attr, IB_QP_STATE, NULL);
2991         if (cm_node->loopbackpartner) {
2992                 cm_node->loopbackpartner->mpa_frame_size =
2993                         nesqp->private_data_len;
2994                 /* copy entire MPA frame to our cm_node's frame */
2995                 memcpy(cm_node->loopbackpartner->mpa_frame_buf,
2996                         nesqp->ietf_frame->priv_data, nesqp->private_data_len);
2997                 create_event(cm_node->loopbackpartner, NES_CM_EVENT_CONNECTED);
2998         }
2999         if (ret)
3000                 printk(KERN_ERR "%s[%u] OFA CM event_handler returned, "
3001                         "ret=%d\n", __func__, __LINE__, ret);
3002
3003         return 0;
3004 }
3005
3006
3007 /**
3008  * nes_reject
3009  */
3010 int nes_reject(struct iw_cm_id *cm_id, const void *pdata, u8 pdata_len)
3011 {
3012         struct nes_cm_node *cm_node;
3013         struct nes_cm_node *loopback;
3014
3015         struct nes_cm_core *cm_core;
3016
3017         atomic_inc(&cm_rejects);
3018         cm_node = (struct nes_cm_node *) cm_id->provider_data;
3019         loopback = cm_node->loopbackpartner;
3020         cm_core = cm_node->cm_core;
3021         cm_node->cm_id = cm_id;
3022         cm_node->mpa_frame_size = sizeof(struct ietf_mpa_frame) + pdata_len;
3023
3024         if (cm_node->mpa_frame_size > MAX_CM_BUFFER)
3025                 return -EINVAL;
3026
3027         memcpy(&cm_node->mpa_frame.key[0], IEFT_MPA_KEY_REP, IETF_MPA_KEY_SIZE);
3028         if (loopback) {
3029                 memcpy(&loopback->mpa_frame.priv_data, pdata, pdata_len);
3030                 loopback->mpa_frame.priv_data_len = pdata_len;
3031                 loopback->mpa_frame_size = sizeof(struct ietf_mpa_frame) +
3032                                 pdata_len;
3033         } else {
3034                 memcpy(&cm_node->mpa_frame.priv_data, pdata, pdata_len);
3035                 cm_node->mpa_frame.priv_data_len = cpu_to_be16(pdata_len);
3036         }
3037
3038         cm_node->mpa_frame.rev = mpa_version;
3039         cm_node->mpa_frame.flags = IETF_MPA_FLAGS_CRC | IETF_MPA_FLAGS_REJECT;
3040
3041         return cm_core->api->reject(cm_core, &cm_node->mpa_frame, cm_node);
3042 }
3043
3044
3045 /**
3046  * nes_connect
3047  * setup and launch cm connect node
3048  */
3049 int nes_connect(struct iw_cm_id *cm_id, struct iw_cm_conn_param *conn_param)
3050 {
3051         struct ib_qp *ibqp;
3052         struct nes_qp *nesqp;
3053         struct nes_vnic *nesvnic;
3054         struct nes_device *nesdev;
3055         struct nes_cm_node *cm_node;
3056         struct nes_cm_info cm_info;
3057         int apbvt_set = 0;
3058
3059         ibqp = nes_get_qp(cm_id->device, conn_param->qpn);
3060         if (!ibqp)
3061                 return -EINVAL;
3062         nesqp = to_nesqp(ibqp);
3063         if (!nesqp)
3064                 return -EINVAL;
3065         nesvnic = to_nesvnic(nesqp->ibqp.device);
3066         if (!nesvnic)
3067                 return -EINVAL;
3068         nesdev  = nesvnic->nesdev;
3069         if (!nesdev)
3070                 return -EINVAL;
3071
3072         if (!(cm_id->local_addr.sin_port) || !(cm_id->remote_addr.sin_port))
3073                 return -EINVAL;
3074
3075         nes_debug(NES_DBG_CM, "QP%u, current IP = 0x%08X, Destination IP = "
3076                 "0x%08X:0x%04X, local = 0x%08X:0x%04X.\n", nesqp->hwqp.qp_id,
3077                 ntohl(nesvnic->local_ipaddr),
3078                 ntohl(cm_id->remote_addr.sin_addr.s_addr),
3079                 ntohs(cm_id->remote_addr.sin_port),
3080                 ntohl(cm_id->local_addr.sin_addr.s_addr),
3081                 ntohs(cm_id->local_addr.sin_port));
3082
3083         atomic_inc(&cm_connects);
3084         nesqp->active_conn = 1;
3085
3086         /* cache the cm_id in the qp */
3087         nesqp->cm_id = cm_id;
3088
3089         cm_id->provider_data = nesqp;
3090
3091         nesqp->private_data_len = conn_param->private_data_len;
3092         nesqp->nesqp_context->ird_ord_sizes |= cpu_to_le32((u32)conn_param->ord);
3093         nes_debug(NES_DBG_CM, "requested ord = 0x%08X.\n", (u32)conn_param->ord);
3094         nes_debug(NES_DBG_CM, "mpa private data len =%u\n",
3095                 conn_param->private_data_len);
3096
3097         if (cm_id->local_addr.sin_addr.s_addr !=
3098                 cm_id->remote_addr.sin_addr.s_addr) {
3099                 nes_manage_apbvt(nesvnic, ntohs(cm_id->local_addr.sin_port),
3100                         PCI_FUNC(nesdev->pcidev->devfn), NES_MANAGE_APBVT_ADD);
3101                 apbvt_set = 1;
3102         }
3103
3104         /* set up the connection params for the node */
3105         cm_info.loc_addr = htonl(cm_id->local_addr.sin_addr.s_addr);
3106         cm_info.loc_port = htons(cm_id->local_addr.sin_port);
3107         cm_info.rem_addr = htonl(cm_id->remote_addr.sin_addr.s_addr);
3108         cm_info.rem_port = htons(cm_id->remote_addr.sin_port);
3109         cm_info.cm_id = cm_id;
3110         cm_info.conn_type = NES_CM_IWARP_CONN_TYPE;
3111
3112         cm_id->add_ref(cm_id);
3113
3114         /* create a connect CM node connection */
3115         cm_node = g_cm_core->api->connect(g_cm_core, nesvnic,
3116                 conn_param->private_data_len, (void *)conn_param->private_data,
3117                 &cm_info);
3118         if (!cm_node) {
3119                 if (apbvt_set)
3120                         nes_manage_apbvt(nesvnic, ntohs(cm_id->local_addr.sin_port),
3121                                 PCI_FUNC(nesdev->pcidev->devfn),
3122                                 NES_MANAGE_APBVT_DEL);
3123
3124                 cm_id->rem_ref(cm_id);
3125                 return -ENOMEM;
3126         }
3127
3128         cm_node->apbvt_set = apbvt_set;
3129         nesqp->cm_node = cm_node;
3130         cm_node->nesqp = nesqp;
3131         nes_add_ref(&nesqp->ibqp);
3132
3133         return 0;
3134 }
3135
3136
3137 /**
3138  * nes_create_listen
3139  */
3140 int nes_create_listen(struct iw_cm_id *cm_id, int backlog)
3141 {
3142         struct nes_vnic *nesvnic;
3143         struct nes_cm_listener *cm_node;
3144         struct nes_cm_info cm_info;
3145         int err;
3146
3147         nes_debug(NES_DBG_CM, "cm_id = %p, local port = 0x%04X.\n",
3148                         cm_id, ntohs(cm_id->local_addr.sin_port));
3149
3150         nesvnic = to_nesvnic(cm_id->device);
3151         if (!nesvnic)
3152                 return -EINVAL;
3153
3154         nes_debug(NES_DBG_CM, "nesvnic=%p, netdev=%p, %s\n",
3155                         nesvnic, nesvnic->netdev, nesvnic->netdev->name);
3156
3157         nes_debug(NES_DBG_CM, "nesvnic->local_ipaddr=0x%08x, sin_addr.s_addr=0x%08x\n",
3158                         nesvnic->local_ipaddr, cm_id->local_addr.sin_addr.s_addr);
3159
3160         /* setup listen params in our api call struct */
3161         cm_info.loc_addr = nesvnic->local_ipaddr;
3162         cm_info.loc_port = cm_id->local_addr.sin_port;
3163         cm_info.backlog = backlog;
3164         cm_info.cm_id = cm_id;
3165
3166         cm_info.conn_type = NES_CM_IWARP_CONN_TYPE;
3167
3168
3169         cm_node = g_cm_core->api->listen(g_cm_core, nesvnic, &cm_info);
3170         if (!cm_node) {
3171                 printk(KERN_ERR "%s[%u] Error returned from listen API call\n",
3172                                 __func__, __LINE__);
3173                 return -ENOMEM;
3174         }
3175
3176         cm_id->provider_data = cm_node;
3177
3178         if (!cm_node->reused_node) {
3179                 err = nes_manage_apbvt(nesvnic,
3180                         ntohs(cm_id->local_addr.sin_port),
3181                         PCI_FUNC(nesvnic->nesdev->pcidev->devfn),
3182                         NES_MANAGE_APBVT_ADD);
3183                 if (err) {
3184                         printk(KERN_ERR "nes_manage_apbvt call returned %d.\n",
3185                                 err);
3186                         g_cm_core->api->stop_listener(g_cm_core, (void *)cm_node);
3187                         return err;
3188                 }
3189                 atomic_inc(&cm_listens_created);
3190         }
3191
3192         cm_id->add_ref(cm_id);
3193         cm_id->provider_data = (void *)cm_node;
3194
3195
3196         return 0;
3197 }
3198
3199
3200 /**
3201  * nes_destroy_listen
3202  */
3203 int nes_destroy_listen(struct iw_cm_id *cm_id)
3204 {
3205         if (cm_id->provider_data)
3206                 g_cm_core->api->stop_listener(g_cm_core, cm_id->provider_data);
3207         else
3208                 nes_debug(NES_DBG_CM, "cm_id->provider_data was NULL\n");
3209
3210         cm_id->rem_ref(cm_id);
3211
3212         return 0;
3213 }
3214
3215
3216 /**
3217  * nes_cm_recv
3218  */
3219 int nes_cm_recv(struct sk_buff *skb, struct net_device *netdevice)
3220 {
3221         int rc = 0;
3222         cm_packets_received++;
3223         if ((g_cm_core) && (g_cm_core->api)) {
3224                 rc = g_cm_core->api->recv_pkt(g_cm_core, netdev_priv(netdevice), skb);
3225         } else {
3226                 nes_debug(NES_DBG_CM, "Unable to process packet for CM,"
3227                                 " cm is not setup properly.\n");
3228         }
3229
3230         return rc;
3231 }
3232
3233
3234 /**
3235  * nes_cm_start
3236  * Start and init a cm core module
3237  */
3238 int nes_cm_start(void)
3239 {
3240         nes_debug(NES_DBG_CM, "\n");
3241         /* create the primary CM core, pass this handle to subsequent core inits */
3242         g_cm_core = nes_cm_alloc_core();
3243         if (g_cm_core) {
3244                 return 0;
3245         } else {
3246                 return -ENOMEM;
3247         }
3248 }
3249
3250
3251 /**
3252  * nes_cm_stop
3253  * stop and dealloc all cm core instances
3254  */
3255 int nes_cm_stop(void)
3256 {
3257         g_cm_core->api->destroy_cm_core(g_cm_core);
3258         return 0;
3259 }
3260
3261
3262 /**
3263  * cm_event_connected
3264  * handle a connected event, setup QPs and HW
3265  */
3266 static void cm_event_connected(struct nes_cm_event *event)
3267 {
3268         u64 u64temp;
3269         struct nes_qp *nesqp;
3270         struct nes_vnic *nesvnic;
3271         struct nes_device *nesdev;
3272         struct nes_cm_node *cm_node;
3273         struct nes_adapter *nesadapter;
3274         struct ib_qp_attr attr;
3275         struct iw_cm_id *cm_id;
3276         struct iw_cm_event cm_event;
3277         struct nes_hw_qp_wqe *wqe;
3278         struct nes_v4_quad nes_quad;
3279         u32 crc_value;
3280         int ret;
3281
3282         /* get all our handles */
3283         cm_node = event->cm_node;
3284         cm_id = cm_node->cm_id;
3285         nes_debug(NES_DBG_CM, "cm_event_connected - %p - cm_id = %p\n", cm_node, cm_id);
3286         nesqp = (struct nes_qp *)cm_id->provider_data;
3287         nesvnic = to_nesvnic(nesqp->ibqp.device);
3288         nesdev = nesvnic->nesdev;
3289         nesadapter = nesdev->nesadapter;
3290
3291         if (nesqp->destroyed) {
3292                 return;
3293         }
3294         atomic_inc(&cm_connecteds);
3295         nes_debug(NES_DBG_CM, "QP%u attempting to connect to  0x%08X:0x%04X on"
3296                         " local port 0x%04X. jiffies = %lu.\n",
3297                         nesqp->hwqp.qp_id,
3298                         ntohl(cm_id->remote_addr.sin_addr.s_addr),
3299                         ntohs(cm_id->remote_addr.sin_port),
3300                         ntohs(cm_id->local_addr.sin_port),
3301                         jiffies);
3302
3303         nes_cm_init_tsa_conn(nesqp, cm_node);
3304
3305         /* set the QP tsa context */
3306         nesqp->nesqp_context->tcpPorts[0] =
3307                 cpu_to_le16(ntohs(cm_id->local_addr.sin_port));
3308         nesqp->nesqp_context->tcpPorts[1] =
3309                 cpu_to_le16(ntohs(cm_id->remote_addr.sin_port));
3310         if (ipv4_is_loopback(cm_id->remote_addr.sin_addr.s_addr))
3311                 nesqp->nesqp_context->ip0 =
3312                         cpu_to_le32(ntohl(nesvnic->local_ipaddr));
3313         else
3314                 nesqp->nesqp_context->ip0 =
3315                         cpu_to_le32(ntohl(cm_id->remote_addr.sin_addr.s_addr));
3316
3317         nesqp->nesqp_context->misc2 |= cpu_to_le32(
3318                         (u32)PCI_FUNC(nesdev->pcidev->devfn) <<
3319                         NES_QPCONTEXT_MISC2_SRC_IP_SHIFT);
3320         nesqp->nesqp_context->arp_index_vlan |= cpu_to_le32(
3321                         nes_arp_table(nesdev,
3322                         le32_to_cpu(nesqp->nesqp_context->ip0),
3323                         NULL, NES_ARP_RESOLVE) << 16);
3324         nesqp->nesqp_context->ts_val_delta = cpu_to_le32(
3325                         jiffies - nes_read_indexed(nesdev, NES_IDX_TCP_NOW));
3326         nesqp->nesqp_context->ird_index = cpu_to_le32(nesqp->hwqp.qp_id);
3327         nesqp->nesqp_context->ird_ord_sizes |=
3328                         cpu_to_le32((u32)1 <<
3329                         NES_QPCONTEXT_ORDIRD_IWARP_MODE_SHIFT);
3330
3331         /* Adjust tail for not having a LSMM */
3332         nesqp->hwqp.sq_tail = 1;
3333
3334 #if defined(NES_SEND_FIRST_WRITE)
3335         if (cm_node->send_write0) {
3336                 nes_debug(NES_DBG_CM, "Sending first write.\n");
3337                 wqe = &nesqp->hwqp.sq_vbase[0];
3338                 u64temp = (unsigned long)nesqp;
3339                 u64temp |= NES_SW_CONTEXT_ALIGN>>1;
3340                 set_wqe_64bit_value(wqe->wqe_words,
3341                                 NES_IWARP_SQ_WQE_COMP_CTX_LOW_IDX, u64temp);
3342                 wqe->wqe_words[NES_IWARP_SQ_WQE_MISC_IDX] =
3343                         cpu_to_le32(NES_IWARP_SQ_OP_RDMAW);
3344                 wqe->wqe_words[NES_IWARP_SQ_WQE_TOTAL_PAYLOAD_IDX] = 0;
3345                 wqe->wqe_words[NES_IWARP_SQ_WQE_FRAG0_LOW_IDX] = 0;
3346                 wqe->wqe_words[NES_IWARP_SQ_WQE_FRAG0_HIGH_IDX] = 0;
3347                 wqe->wqe_words[NES_IWARP_SQ_WQE_LENGTH0_IDX] = 0;
3348                 wqe->wqe_words[NES_IWARP_SQ_WQE_STAG0_IDX] = 0;
3349
3350                 if (nesqp->sq_kmapped) {
3351                         nesqp->sq_kmapped = 0;
3352                         kunmap(nesqp->page);
3353                 }
3354
3355                 /* use the reserved spot on the WQ for the extra first WQE */
3356                 nesqp->nesqp_context->ird_ord_sizes &=
3357                         cpu_to_le32(~(NES_QPCONTEXT_ORDIRD_LSMM_PRESENT |
3358                                                 NES_QPCONTEXT_ORDIRD_WRPDU |
3359                                                 NES_QPCONTEXT_ORDIRD_ALSMM));
3360                 nesqp->skip_lsmm = 1;
3361                 nesqp->hwqp.sq_tail = 0;
3362                 nes_write32(nesdev->regs + NES_WQE_ALLOC,
3363                                 (1 << 24) | 0x00800000 | nesqp->hwqp.qp_id);
3364         }
3365 #endif
3366
3367         memset(&nes_quad, 0, sizeof(nes_quad));
3368
3369         nes_quad.DstIpAdrIndex =
3370                 cpu_to_le32((u32)PCI_FUNC(nesdev->pcidev->devfn) << 24);
3371         if (ipv4_is_loopback(cm_id->remote_addr.sin_addr.s_addr))
3372                 nes_quad.SrcIpadr = nesvnic->local_ipaddr;
3373         else
3374                 nes_quad.SrcIpadr = cm_id->remote_addr.sin_addr.s_addr;
3375         nes_quad.TcpPorts[0] = cm_id->remote_addr.sin_port;
3376         nes_quad.TcpPorts[1] = cm_id->local_addr.sin_port;
3377
3378         /* Produce hash key */
3379         crc_value = get_crc_value(&nes_quad);
3380         nesqp->hte_index = cpu_to_be32(crc_value ^ 0xffffffff);
3381         nes_debug(NES_DBG_CM, "HTE Index = 0x%08X, After CRC = 0x%08X\n",
3382                         nesqp->hte_index, nesqp->hte_index & nesadapter->hte_index_mask);
3383
3384         nesqp->hte_index &= nesadapter->hte_index_mask;
3385         nesqp->nesqp_context->hte_index = cpu_to_le32(nesqp->hte_index);
3386
3387         nesqp->ietf_frame = &cm_node->mpa_frame;
3388         nesqp->private_data_len = (u8) cm_node->mpa_frame_size;
3389         cm_node->cm_core->api->accelerated(cm_node->cm_core, cm_node);
3390
3391         /* notify OF layer we successfully created the requested connection */
3392         cm_event.event = IW_CM_EVENT_CONNECT_REPLY;
3393         cm_event.status = 0;
3394         cm_event.provider_data = cm_id->provider_data;
3395         cm_event.local_addr.sin_family = AF_INET;
3396         cm_event.local_addr.sin_port = cm_id->local_addr.sin_port;
3397         cm_event.remote_addr = cm_id->remote_addr;
3398
3399         cm_event.private_data = (void *)event->cm_node->mpa_frame_buf;
3400         cm_event.private_data_len = (u8) event->cm_node->mpa_frame_size;
3401
3402         cm_event.local_addr.sin_addr.s_addr = event->cm_info.rem_addr;
3403         ret = cm_id->event_handler(cm_id, &cm_event);
3404         nes_debug(NES_DBG_CM, "OFA CM event_handler returned, ret=%d\n", ret);
3405
3406         if (ret)
3407                 printk(KERN_ERR "%s[%u] OFA CM event_handler returned, "
3408                         "ret=%d\n", __func__, __LINE__, ret);
3409         attr.qp_state = IB_QPS_RTS;
3410         nes_modify_qp(&nesqp->ibqp, &attr, IB_QP_STATE, NULL);
3411
3412         nes_debug(NES_DBG_CM, "Exiting connect thread for QP%u. jiffies = "
3413                 "%lu\n", nesqp->hwqp.qp_id, jiffies);
3414
3415         return;
3416 }
3417
3418
3419 /**
3420  * cm_event_connect_error
3421  */
3422 static void cm_event_connect_error(struct nes_cm_event *event)
3423 {
3424         struct nes_qp *nesqp;
3425         struct iw_cm_id *cm_id;
3426         struct iw_cm_event cm_event;
3427         /* struct nes_cm_info cm_info; */
3428         int ret;
3429
3430         if (!event->cm_node)
3431                 return;
3432
3433         cm_id = event->cm_node->cm_id;
3434         if (!cm_id) {
3435                 return;
3436         }
3437
3438         nes_debug(NES_DBG_CM, "cm_node=%p, cm_id=%p\n", event->cm_node, cm_id);
3439         nesqp = cm_id->provider_data;
3440
3441         if (!nesqp) {
3442                 return;
3443         }
3444
3445         /* notify OF layer about this connection error event */
3446         /* cm_id->rem_ref(cm_id); */
3447         nesqp->cm_id = NULL;
3448         cm_id->provider_data = NULL;
3449         cm_event.event = IW_CM_EVENT_CONNECT_REPLY;
3450         cm_event.status = -ECONNRESET;
3451         cm_event.provider_data = cm_id->provider_data;
3452         cm_event.local_addr = cm_id->local_addr;
3453         cm_event.remote_addr = cm_id->remote_addr;
3454         cm_event.private_data = NULL;
3455         cm_event.private_data_len = 0;
3456
3457         nes_debug(NES_DBG_CM, "call CM_EVENT REJECTED, local_addr=%08x, "
3458                 "remove_addr=%08x\n", cm_event.local_addr.sin_addr.s_addr,
3459                 cm_event.remote_addr.sin_addr.s_addr);
3460
3461         ret = cm_id->event_handler(cm_id, &cm_event);
3462         nes_debug(NES_DBG_CM, "OFA CM event_handler returned, ret=%d\n", ret);
3463         if (ret)
3464                 printk(KERN_ERR "%s[%u] OFA CM event_handler returned, "
3465                         "ret=%d\n", __func__, __LINE__, ret);
3466         cm_id->rem_ref(cm_id);
3467
3468         rem_ref_cm_node(event->cm_node->cm_core, event->cm_node);
3469         return;
3470 }
3471
3472
3473 /**
3474  * cm_event_reset
3475  */
3476 static void cm_event_reset(struct nes_cm_event *event)
3477 {
3478         struct nes_qp *nesqp;
3479         struct iw_cm_id *cm_id;
3480         struct iw_cm_event cm_event;
3481         /* struct nes_cm_info cm_info; */
3482         int ret;
3483
3484         if (!event->cm_node)
3485                 return;
3486
3487         if (!event->cm_node->cm_id)
3488                 return;
3489
3490         cm_id = event->cm_node->cm_id;
3491
3492         nes_debug(NES_DBG_CM, "%p - cm_id = %p\n", event->cm_node, cm_id);
3493         nesqp = cm_id->provider_data;
3494         if (!nesqp)
3495                 return;
3496
3497         nesqp->cm_id = NULL;
3498         /* cm_id->provider_data = NULL; */
3499         cm_event.event = IW_CM_EVENT_DISCONNECT;
3500         cm_event.status = -ECONNRESET;
3501         cm_event.provider_data = cm_id->provider_data;
3502         cm_event.local_addr = cm_id->local_addr;
3503         cm_event.remote_addr = cm_id->remote_addr;
3504         cm_event.private_data = NULL;
3505         cm_event.private_data_len = 0;
3506
3507         cm_id->add_ref(cm_id);
3508         ret = cm_id->event_handler(cm_id, &cm_event);
3509         atomic_inc(&cm_closes);
3510         cm_event.event = IW_CM_EVENT_CLOSE;
3511         cm_event.status = 0;
3512         cm_event.provider_data = cm_id->provider_data;
3513         cm_event.local_addr = cm_id->local_addr;
3514         cm_event.remote_addr = cm_id->remote_addr;
3515         cm_event.private_data = NULL;
3516         cm_event.private_data_len = 0;
3517         nes_debug(NES_DBG_CM, "NODE %p Generating CLOSE\n", event->cm_node);
3518         ret = cm_id->event_handler(cm_id, &cm_event);
3519
3520         nes_debug(NES_DBG_CM, "OFA CM event_handler returned, ret=%d\n", ret);
3521
3522
3523         /* notify OF layer about this connection error event */
3524         cm_id->rem_ref(cm_id);
3525
3526         return;
3527 }
3528
3529
3530 /**
3531  * cm_event_mpa_req
3532  */
3533 static void cm_event_mpa_req(struct nes_cm_event *event)
3534 {
3535         struct iw_cm_id   *cm_id;
3536         struct iw_cm_event cm_event;
3537         int ret;
3538         struct nes_cm_node *cm_node;
3539
3540         cm_node = event->cm_node;
3541         if (!cm_node)
3542                 return;
3543         cm_id = cm_node->cm_id;
3544
3545         atomic_inc(&cm_connect_reqs);
3546         nes_debug(NES_DBG_CM, "cm_node = %p - cm_id = %p, jiffies = %lu\n",
3547                         cm_node, cm_id, jiffies);
3548
3549         cm_event.event = IW_CM_EVENT_CONNECT_REQUEST;
3550         cm_event.status = 0;
3551         cm_event.provider_data = (void *)cm_node;
3552
3553         cm_event.local_addr.sin_family = AF_INET;
3554         cm_event.local_addr.sin_port = htons(event->cm_info.loc_port);
3555         cm_event.local_addr.sin_addr.s_addr = htonl(event->cm_info.loc_addr);
3556
3557         cm_event.remote_addr.sin_family = AF_INET;
3558         cm_event.remote_addr.sin_port = htons(event->cm_info.rem_port);
3559         cm_event.remote_addr.sin_addr.s_addr = htonl(event->cm_info.rem_addr);
3560         cm_event.private_data = cm_node->mpa_frame_buf;
3561         cm_event.private_data_len  = (u8) cm_node->mpa_frame_size;
3562
3563         ret = cm_id->event_handler(cm_id, &cm_event);
3564         if (ret)
3565                 printk(KERN_ERR "%s[%u] OFA CM event_handler returned, ret=%d\n",
3566                                 __func__, __LINE__, ret);
3567         return;
3568 }
3569
3570
3571 static void cm_event_mpa_reject(struct nes_cm_event *event)
3572 {
3573         struct iw_cm_id   *cm_id;
3574         struct iw_cm_event cm_event;
3575         struct nes_cm_node *cm_node;
3576         int ret;
3577
3578         cm_node = event->cm_node;
3579         if (!cm_node)
3580                 return;
3581         cm_id = cm_node->cm_id;
3582
3583         atomic_inc(&cm_connect_reqs);
3584         nes_debug(NES_DBG_CM, "cm_node = %p - cm_id = %p, jiffies = %lu\n",
3585                         cm_node, cm_id, jiffies);
3586
3587         cm_event.event = IW_CM_EVENT_CONNECT_REPLY;
3588         cm_event.status = -ECONNREFUSED;
3589         cm_event.provider_data = cm_id->provider_data;
3590
3591         cm_event.local_addr.sin_family = AF_INET;
3592         cm_event.local_addr.sin_port = htons(event->cm_info.loc_port);
3593         cm_event.local_addr.sin_addr.s_addr = htonl(event->cm_info.loc_addr);
3594
3595         cm_event.remote_addr.sin_family = AF_INET;
3596         cm_event.remote_addr.sin_port = htons(event->cm_info.rem_port);
3597         cm_event.remote_addr.sin_addr.s_addr = htonl(event->cm_info.rem_addr);
3598
3599         cm_event.private_data = cm_node->mpa_frame_buf;
3600         cm_event.private_data_len = (u8) cm_node->mpa_frame_size;
3601
3602         nes_debug(NES_DBG_CM, "call CM_EVENT_MPA_REJECTED, local_addr=%08x, "
3603                         "remove_addr=%08x\n",
3604                         cm_event.local_addr.sin_addr.s_addr,
3605                         cm_event.remote_addr.sin_addr.s_addr);
3606
3607         ret = cm_id->event_handler(cm_id, &cm_event);
3608         if (ret)
3609                 printk(KERN_ERR "%s[%u] OFA CM event_handler returned, ret=%d\n",
3610                                 __func__, __LINE__, ret);
3611
3612         return;
3613 }
3614
3615
3616 static void nes_cm_event_handler(struct work_struct *);
3617
3618 /**
3619  * nes_cm_post_event
3620  * post an event to the cm event handler
3621  */
3622 static int nes_cm_post_event(struct nes_cm_event *event)
3623 {
3624         atomic_inc(&event->cm_node->cm_core->events_posted);
3625         add_ref_cm_node(event->cm_node);
3626         event->cm_info.cm_id->add_ref(event->cm_info.cm_id);
3627         INIT_WORK(&event->event_work, nes_cm_event_handler);
3628         nes_debug(NES_DBG_CM, "cm_node=%p queue_work, event=%p\n",
3629                 event->cm_node, event);
3630
3631         queue_work(event->cm_node->cm_core->event_wq, &event->event_work);
3632
3633         nes_debug(NES_DBG_CM, "Exit\n");
3634         return 0;
3635 }
3636
3637
3638 /**
3639  * nes_cm_event_handler
3640  * worker function to handle cm events
3641  * will free instance of nes_cm_event
3642  */
3643 static void nes_cm_event_handler(struct work_struct *work)
3644 {
3645         struct nes_cm_event *event = container_of(work, struct nes_cm_event,
3646                         event_work);
3647         struct nes_cm_core *cm_core;
3648
3649         if ((!event) || (!event->cm_node) || (!event->cm_node->cm_core))
3650                 return;
3651
3652         cm_core = event->cm_node->cm_core;
3653         nes_debug(NES_DBG_CM, "event=%p, event->type=%u, events posted=%u\n",
3654                 event, event->type, atomic_read(&cm_core->events_posted));
3655
3656         switch (event->type) {
3657         case NES_CM_EVENT_MPA_REQ:
3658                 cm_event_mpa_req(event);
3659                 nes_debug(NES_DBG_CM, "cm_node=%p CM Event: MPA REQUEST\n",
3660                         event->cm_node);
3661                 break;
3662         case NES_CM_EVENT_RESET:
3663                 nes_debug(NES_DBG_CM, "cm_node = %p CM Event: RESET\n",
3664                         event->cm_node);
3665                 cm_event_reset(event);
3666                 break;
3667         case NES_CM_EVENT_CONNECTED:
3668                 if ((!event->cm_node->cm_id) ||
3669                         (event->cm_node->state != NES_CM_STATE_TSA))
3670                         break;
3671                 cm_event_connected(event);
3672                 nes_debug(NES_DBG_CM, "CM Event: CONNECTED\n");
3673                 break;
3674         case NES_CM_EVENT_MPA_REJECT:
3675                 if ((!event->cm_node->cm_id) ||
3676                                 (event->cm_node->state == NES_CM_STATE_TSA))
3677                         break;
3678                 cm_event_mpa_reject(event);
3679                 nes_debug(NES_DBG_CM, "CM Event: REJECT\n");
3680                 break;
3681
3682         case NES_CM_EVENT_ABORTED:
3683                 if ((!event->cm_node->cm_id) ||
3684                         (event->cm_node->state == NES_CM_STATE_TSA))
3685                         break;
3686                 cm_event_connect_error(event);
3687                 nes_debug(NES_DBG_CM, "CM Event: ABORTED\n");
3688                 break;
3689         case NES_CM_EVENT_DROPPED_PKT:
3690                 nes_debug(NES_DBG_CM, "CM Event: DROPPED PKT\n");
3691                 break;
3692         default:
3693                 nes_debug(NES_DBG_CM, "CM Event: UNKNOWN EVENT TYPE\n");
3694                 break;
3695         }
3696
3697         atomic_dec(&cm_core->events_posted);
3698         event->cm_info.cm_id->rem_ref(event->cm_info.cm_id);
3699         rem_ref_cm_node(cm_core, event->cm_node);
3700         kfree(event);
3701
3702         return;
3703 }