Linux 3.10.55
[GitHub/mt8127/android_kernel_alcatel_ttab.git] / net / bluetooth / sco.c
CommitLineData
8e87d142 1/*
1da177e4
LT
2 BlueZ - Bluetooth protocol stack for Linux
3 Copyright (C) 2000-2001 Qualcomm Incorporated
4
5 Written 2000,2001 by Maxim Krasnyansky <maxk@qualcomm.com>
6
7 This program is free software; you can redistribute it and/or modify
8 it under the terms of the GNU General Public License version 2 as
9 published by the Free Software Foundation;
10
11 THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
12 OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
13 FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OF THIRD PARTY RIGHTS.
14 IN NO EVENT SHALL THE COPYRIGHT HOLDER(S) AND AUTHOR(S) BE LIABLE FOR ANY
8e87d142
YH
15 CLAIM, OR ANY SPECIAL INDIRECT OR CONSEQUENTIAL DAMAGES, OR ANY DAMAGES
16 WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
17 ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
1da177e4
LT
18 OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
19
8e87d142
YH
20 ALL LIABILITY, INCLUDING LIABILITY FOR INFRINGEMENT OF ANY PATENTS,
21 COPYRIGHTS, TRADEMARKS OR OTHER RIGHTS, RELATING TO USE OF THIS
1da177e4
LT
22 SOFTWARE IS DISCLAIMED.
23*/
24
25/* Bluetooth SCO sockets. */
26
1da177e4 27#include <linux/module.h>
aef7d97c
MH
28#include <linux/debugfs.h>
29#include <linux/seq_file.h>
1da177e4
LT
30
31#include <net/bluetooth/bluetooth.h>
32#include <net/bluetooth/hci_core.h>
33#include <net/bluetooth/sco.h>
34
eb939922 35static bool disable_esco;
1da177e4 36
90ddc4f0 37static const struct proto_ops sco_sock_ops;
1da177e4
LT
38
39static struct bt_sock_list sco_sk_list = {
d5fb2962 40 .lock = __RW_LOCK_UNLOCKED(sco_sk_list.lock)
1da177e4
LT
41};
42
43static void __sco_chan_add(struct sco_conn *conn, struct sock *sk, struct sock *parent);
44static void sco_chan_del(struct sock *sk, int err);
45
1da177e4
LT
46static void sco_sock_close(struct sock *sk);
47static void sco_sock_kill(struct sock *sk);
48
49/* ---- SCO timers ---- */
50static void sco_sock_timeout(unsigned long arg)
51{
52 struct sock *sk = (struct sock *) arg;
53
54 BT_DBG("sock %p state %d", sk, sk->sk_state);
55
56 bh_lock_sock(sk);
57 sk->sk_err = ETIMEDOUT;
58 sk->sk_state_change(sk);
59 bh_unlock_sock(sk);
60
61 sco_sock_kill(sk);
62 sock_put(sk);
63}
64
65static void sco_sock_set_timer(struct sock *sk, long timeout)
66{
67 BT_DBG("sock %p state %d timeout %ld", sk, sk->sk_state, timeout);
68 sk_reset_timer(sk, &sk->sk_timer, jiffies + timeout);
69}
70
71static void sco_sock_clear_timer(struct sock *sk)
72{
73 BT_DBG("sock %p state %d", sk, sk->sk_state);
74 sk_stop_timer(sk, &sk->sk_timer);
75}
76
1da177e4 77/* ---- SCO connections ---- */
519e42b3 78static struct sco_conn *sco_conn_add(struct hci_conn *hcon)
1da177e4
LT
79{
80 struct hci_dev *hdev = hcon->hdev;
25ea6db0 81 struct sco_conn *conn = hcon->sco_data;
1da177e4 82
519e42b3 83 if (conn)
1da177e4
LT
84 return conn;
85
c10cc5a9 86 conn = kzalloc(sizeof(struct sco_conn), GFP_KERNEL);
25ea6db0 87 if (!conn)
1da177e4 88 return NULL;
1da177e4
LT
89
90 spin_lock_init(&conn->lock);
91
92 hcon->sco_data = conn;
93 conn->hcon = hcon;
94
95 conn->src = &hdev->bdaddr;
96 conn->dst = &hcon->dst;
97
98 if (hdev->sco_mtu > 0)
99 conn->mtu = hdev->sco_mtu;
100 else
101 conn->mtu = 60;
102
103 BT_DBG("hcon %p conn %p", hcon, conn);
25ea6db0 104
1da177e4
LT
105 return conn;
106}
107
6039aa73 108static struct sock *sco_chan_get(struct sco_conn *conn)
1da177e4
LT
109{
110 struct sock *sk = NULL;
111 sco_conn_lock(conn);
112 sk = conn->sk;
113 sco_conn_unlock(conn);
114 return sk;
115}
116
117static int sco_conn_del(struct hci_conn *hcon, int err)
118{
735cbc47 119 struct sco_conn *conn = hcon->sco_data;
1da177e4
LT
120 struct sock *sk;
121
735cbc47 122 if (!conn)
1da177e4
LT
123 return 0;
124
125 BT_DBG("hcon %p conn %p, err %d", hcon, conn, err);
126
127 /* Kill socket */
735cbc47
AE
128 sk = sco_chan_get(conn);
129 if (sk) {
1da177e4
LT
130 bh_lock_sock(sk);
131 sco_sock_clear_timer(sk);
132 sco_chan_del(sk, err);
133 bh_unlock_sock(sk);
134 sco_sock_kill(sk);
135 }
136
137 hcon->sco_data = NULL;
138 kfree(conn);
139 return 0;
140}
141
6039aa73
GP
142static int sco_chan_add(struct sco_conn *conn, struct sock *sk,
143 struct sock *parent)
1da177e4
LT
144{
145 int err = 0;
146
147 sco_conn_lock(conn);
b9dbdbc1 148 if (conn->sk)
1da177e4 149 err = -EBUSY;
b9dbdbc1 150 else
1da177e4 151 __sco_chan_add(conn, sk, parent);
b9dbdbc1 152
1da177e4
LT
153 sco_conn_unlock(conn);
154 return err;
155}
156
157static int sco_connect(struct sock *sk)
158{
159 bdaddr_t *src = &bt_sk(sk)->src;
160 bdaddr_t *dst = &bt_sk(sk)->dst;
161 struct sco_conn *conn;
162 struct hci_conn *hcon;
163 struct hci_dev *hdev;
b6a0dc82 164 int err, type;
1da177e4 165
6ed93dc6 166 BT_DBG("%pMR -> %pMR", src, dst);
1da177e4 167
735cbc47
AE
168 hdev = hci_get_route(dst, src);
169 if (!hdev)
1da177e4
LT
170 return -EHOSTUNREACH;
171
09fd0de5 172 hci_dev_lock(hdev);
1da177e4 173
7cb127d5
MH
174 if (lmp_esco_capable(hdev) && !disable_esco)
175 type = ESCO_LINK;
176 else
177 type = SCO_LINK;
b6a0dc82 178
b12f62cf
AG
179 hcon = hci_connect(hdev, type, dst, BDADDR_BREDR, BT_SECURITY_LOW,
180 HCI_AT_NO_BONDING);
30e76272
VT
181 if (IS_ERR(hcon)) {
182 err = PTR_ERR(hcon);
1da177e4 183 goto done;
30e76272 184 }
1da177e4 185
519e42b3 186 conn = sco_conn_add(hcon);
1da177e4 187 if (!conn) {
76a68ba0 188 hci_conn_drop(hcon);
30e76272 189 err = -ENOMEM;
1da177e4
LT
190 goto done;
191 }
192
193 /* Update source addr of the socket */
194 bacpy(src, conn->src);
195
196 err = sco_chan_add(conn, sk, NULL);
197 if (err)
198 goto done;
199
200 if (hcon->state == BT_CONNECTED) {
201 sco_sock_clear_timer(sk);
202 sk->sk_state = BT_CONNECTED;
203 } else {
204 sk->sk_state = BT_CONNECT;
205 sco_sock_set_timer(sk, sk->sk_sndtimeo);
206 }
b6a0dc82 207
1da177e4 208done:
09fd0de5 209 hci_dev_unlock(hdev);
1da177e4
LT
210 hci_dev_put(hdev);
211 return err;
212}
213
6039aa73 214static int sco_send_frame(struct sock *sk, struct msghdr *msg, int len)
1da177e4
LT
215{
216 struct sco_conn *conn = sco_pi(sk)->conn;
217 struct sk_buff *skb;
088ce088 218 int err;
1da177e4
LT
219
220 /* Check outgoing MTU */
221 if (len > conn->mtu)
222 return -EINVAL;
223
224 BT_DBG("sk %p len %d", sk, len);
225
088ce088 226 skb = bt_skb_send_alloc(sk, len, msg->msg_flags & MSG_DONTWAIT, &err);
b9dbdbc1 227 if (!skb)
1da177e4
LT
228 return err;
229
088ce088 230 if (memcpy_fromiovec(skb_put(skb, len), msg->msg_iov, len)) {
b9dbdbc1
GP
231 kfree_skb(skb);
232 return -EFAULT;
1da177e4
LT
233 }
234
0d861d8b 235 hci_send_sco(conn->hcon, skb);
1da177e4 236
088ce088 237 return len;
1da177e4
LT
238}
239
6039aa73 240static void sco_recv_frame(struct sco_conn *conn, struct sk_buff *skb)
1da177e4
LT
241{
242 struct sock *sk = sco_chan_get(conn);
243
244 if (!sk)
245 goto drop;
246
247 BT_DBG("sk %p len %d", sk, skb->len);
248
249 if (sk->sk_state != BT_CONNECTED)
250 goto drop;
251
252 if (!sock_queue_rcv_skb(sk, skb))
253 return;
254
255drop:
256 kfree_skb(skb);
1da177e4
LT
257}
258
259/* -------- Socket interface ---------- */
fb334059 260static struct sock *__sco_get_sock_listen_by_addr(bdaddr_t *ba)
1da177e4 261{
fb334059
MH
262 struct sock *sk;
263
b67bfe0d 264 sk_for_each(sk, &sco_sk_list.head) {
fb334059
MH
265 if (sk->sk_state != BT_LISTEN)
266 continue;
1da177e4 267
1da177e4 268 if (!bacmp(&bt_sk(sk)->src, ba))
fb334059
MH
269 return sk;
270 }
271
272 return NULL;
1da177e4
LT
273}
274
275/* Find socket listening on source bdaddr.
276 * Returns closest match.
277 */
278static struct sock *sco_get_sock_listen(bdaddr_t *src)
279{
280 struct sock *sk = NULL, *sk1 = NULL;
1da177e4
LT
281
282 read_lock(&sco_sk_list.lock);
283
b67bfe0d 284 sk_for_each(sk, &sco_sk_list.head) {
1da177e4
LT
285 if (sk->sk_state != BT_LISTEN)
286 continue;
287
288 /* Exact match. */
289 if (!bacmp(&bt_sk(sk)->src, src))
290 break;
291
292 /* Closest match */
293 if (!bacmp(&bt_sk(sk)->src, BDADDR_ANY))
294 sk1 = sk;
295 }
296
297 read_unlock(&sco_sk_list.lock);
298
b67bfe0d 299 return sk ? sk : sk1;
1da177e4
LT
300}
301
302static void sco_sock_destruct(struct sock *sk)
303{
304 BT_DBG("sk %p", sk);
305
306 skb_queue_purge(&sk->sk_receive_queue);
307 skb_queue_purge(&sk->sk_write_queue);
308}
309
310static void sco_sock_cleanup_listen(struct sock *parent)
311{
312 struct sock *sk;
313
314 BT_DBG("parent %p", parent);
315
316 /* Close not yet accepted channels */
317 while ((sk = bt_accept_dequeue(parent, NULL))) {
318 sco_sock_close(sk);
319 sco_sock_kill(sk);
320 }
321
322 parent->sk_state = BT_CLOSED;
323 sock_set_flag(parent, SOCK_ZAPPED);
324}
325
326/* Kill socket (only if zapped and orphan)
327 * Must be called on unlocked socket.
328 */
329static void sco_sock_kill(struct sock *sk)
330{
331 if (!sock_flag(sk, SOCK_ZAPPED) || sk->sk_socket)
332 return;
333
334 BT_DBG("sk %p state %d", sk, sk->sk_state);
335
336 /* Kill poor orphan */
337 bt_sock_unlink(&sco_sk_list, sk);
338 sock_set_flag(sk, SOCK_DEAD);
339 sock_put(sk);
340}
341
fd0b3ff7 342static void __sco_sock_close(struct sock *sk)
1da177e4 343{
fd0b3ff7 344 BT_DBG("sk %p state %d socket %p", sk, sk->sk_state, sk->sk_socket);
1da177e4
LT
345
346 switch (sk->sk_state) {
347 case BT_LISTEN:
348 sco_sock_cleanup_listen(sk);
349 break;
350
351 case BT_CONNECTED:
352 case BT_CONFIG:
b7e98b51 353 if (sco_pi(sk)->conn->hcon) {
4a77708b
LAD
354 sk->sk_state = BT_DISCONN;
355 sco_sock_set_timer(sk, SCO_DISCONN_TIMEOUT);
76a68ba0 356 hci_conn_drop(sco_pi(sk)->conn->hcon);
4a77708b
LAD
357 sco_pi(sk)->conn->hcon = NULL;
358 } else
359 sco_chan_del(sk, ECONNRESET);
360 break;
361
eb20ff9c 362 case BT_CONNECT2:
1da177e4
LT
363 case BT_CONNECT:
364 case BT_DISCONN:
365 sco_chan_del(sk, ECONNRESET);
366 break;
367
368 default:
369 sock_set_flag(sk, SOCK_ZAPPED);
370 break;
3ff50b79 371 }
fd0b3ff7 372}
1da177e4 373
fd0b3ff7
MH
374/* Must be called on unlocked socket. */
375static void sco_sock_close(struct sock *sk)
376{
377 sco_sock_clear_timer(sk);
378 lock_sock(sk);
379 __sco_sock_close(sk);
1da177e4 380 release_sock(sk);
1da177e4
LT
381 sco_sock_kill(sk);
382}
383
384static void sco_sock_init(struct sock *sk, struct sock *parent)
385{
386 BT_DBG("sk %p", sk);
387
6230c9b4 388 if (parent) {
1da177e4 389 sk->sk_type = parent->sk_type;
20714bfe 390 bt_sk(sk)->flags = bt_sk(parent)->flags;
6230c9b4
PM
391 security_sk_clone(parent, sk);
392 }
1da177e4
LT
393}
394
395static struct proto sco_proto = {
396 .name = "SCO",
397 .owner = THIS_MODULE,
398 .obj_size = sizeof(struct sco_pinfo)
399};
400
1b8d7ae4 401static struct sock *sco_sock_alloc(struct net *net, struct socket *sock, int proto, gfp_t prio)
1da177e4
LT
402{
403 struct sock *sk;
404
6257ff21 405 sk = sk_alloc(net, PF_BLUETOOTH, prio, &sco_proto);
1da177e4
LT
406 if (!sk)
407 return NULL;
408
409 sock_init_data(sock, sk);
410 INIT_LIST_HEAD(&bt_sk(sk)->accept_q);
411
412 sk->sk_destruct = sco_sock_destruct;
413 sk->sk_sndtimeo = SCO_CONN_TIMEOUT;
414
415 sock_reset_flag(sk, SOCK_ZAPPED);
416
417 sk->sk_protocol = proto;
418 sk->sk_state = BT_OPEN;
419
b24b8a24 420 setup_timer(&sk->sk_timer, sco_sock_timeout, (unsigned long)sk);
1da177e4
LT
421
422 bt_sock_link(&sco_sk_list, sk);
423 return sk;
424}
425
3f378b68
EP
426static int sco_sock_create(struct net *net, struct socket *sock, int protocol,
427 int kern)
1da177e4
LT
428{
429 struct sock *sk;
430
431 BT_DBG("sock %p", sock);
432
433 sock->state = SS_UNCONNECTED;
434
435 if (sock->type != SOCK_SEQPACKET)
436 return -ESOCKTNOSUPPORT;
437
438 sock->ops = &sco_sock_ops;
439
1b8d7ae4 440 sk = sco_sock_alloc(net, sock, protocol, GFP_ATOMIC);
74da626a 441 if (!sk)
1da177e4
LT
442 return -ENOMEM;
443
444 sco_sock_init(sk, NULL);
445 return 0;
446}
447
448static int sco_sock_bind(struct socket *sock, struct sockaddr *addr, int addr_len)
449{
450 struct sockaddr_sco *sa = (struct sockaddr_sco *) addr;
451 struct sock *sk = sock->sk;
1da177e4
LT
452 int err = 0;
453
6ed93dc6 454 BT_DBG("sk %p %pMR", sk, &sa->sco_bdaddr);
1da177e4
LT
455
456 if (!addr || addr->sa_family != AF_BLUETOOTH)
457 return -EINVAL;
458
459 lock_sock(sk);
460
461 if (sk->sk_state != BT_OPEN) {
462 err = -EBADFD;
463 goto done;
464 }
465
8ed21f7e
MH
466 if (sk->sk_type != SOCK_SEQPACKET) {
467 err = -EINVAL;
468 goto done;
1da177e4
LT
469 }
470
8ed21f7e
MH
471 bacpy(&bt_sk(sk)->src, &sa->sco_bdaddr);
472
473 sk->sk_state = BT_BOUND;
1da177e4
LT
474
475done:
476 release_sock(sk);
477 return err;
478}
479
480static int sco_sock_connect(struct socket *sock, struct sockaddr *addr, int alen, int flags)
481{
482 struct sockaddr_sco *sa = (struct sockaddr_sco *) addr;
483 struct sock *sk = sock->sk;
92f185c8 484 int err;
1da177e4
LT
485
486 BT_DBG("sk %p", sk);
487
6503d961
CG
488 if (alen < sizeof(struct sockaddr_sco) ||
489 addr->sa_family != AF_BLUETOOTH)
1da177e4
LT
490 return -EINVAL;
491
492 if (sk->sk_state != BT_OPEN && sk->sk_state != BT_BOUND)
493 return -EBADFD;
494
495 if (sk->sk_type != SOCK_SEQPACKET)
496 return -EINVAL;
497
498 lock_sock(sk);
499
500 /* Set destination address and psm */
501 bacpy(&bt_sk(sk)->dst, &sa->sco_bdaddr);
502
735cbc47
AE
503 err = sco_connect(sk);
504 if (err)
1da177e4
LT
505 goto done;
506
8e87d142 507 err = bt_sock_wait_state(sk, BT_CONNECTED,
be7c2b99 508 sock_sndtimeo(sk, flags & O_NONBLOCK));
1da177e4
LT
509
510done:
511 release_sock(sk);
512 return err;
513}
514
515static int sco_sock_listen(struct socket *sock, int backlog)
516{
517 struct sock *sk = sock->sk;
fb334059 518 bdaddr_t *src = &bt_sk(sk)->src;
1da177e4
LT
519 int err = 0;
520
521 BT_DBG("sk %p backlog %d", sk, backlog);
522
523 lock_sock(sk);
524
7d5d775a 525 if (sk->sk_state != BT_BOUND) {
1da177e4
LT
526 err = -EBADFD;
527 goto done;
528 }
529
7d5d775a
MH
530 if (sk->sk_type != SOCK_SEQPACKET) {
531 err = -EINVAL;
532 goto done;
533 }
534
fb334059
MH
535 write_lock(&sco_sk_list.lock);
536
537 if (__sco_get_sock_listen_by_addr(src)) {
538 err = -EADDRINUSE;
539 goto unlock;
540 }
541
1da177e4
LT
542 sk->sk_max_ack_backlog = backlog;
543 sk->sk_ack_backlog = 0;
fb334059 544
1da177e4
LT
545 sk->sk_state = BT_LISTEN;
546
fb334059
MH
547unlock:
548 write_unlock(&sco_sk_list.lock);
549
1da177e4
LT
550done:
551 release_sock(sk);
552 return err;
553}
554
555static int sco_sock_accept(struct socket *sock, struct socket *newsock, int flags)
556{
557 DECLARE_WAITQUEUE(wait, current);
558 struct sock *sk = sock->sk, *ch;
559 long timeo;
560 int err = 0;
561
562 lock_sock(sk);
563
1da177e4
LT
564 timeo = sock_rcvtimeo(sk, flags & O_NONBLOCK);
565
566 BT_DBG("sk %p timeo %ld", sk, timeo);
567
568 /* Wait for an incoming connection. (wake-one). */
aa395145 569 add_wait_queue_exclusive(sk_sleep(sk), &wait);
552b0d3c 570 while (1) {
1da177e4 571 set_current_state(TASK_INTERRUPTIBLE);
552b0d3c
PH
572
573 if (sk->sk_state != BT_LISTEN) {
574 err = -EBADFD;
1da177e4
LT
575 break;
576 }
577
552b0d3c
PH
578 ch = bt_accept_dequeue(sk, newsock);
579 if (ch)
580 break;
1da177e4 581
552b0d3c
PH
582 if (!timeo) {
583 err = -EAGAIN;
1da177e4
LT
584 break;
585 }
586
587 if (signal_pending(current)) {
588 err = sock_intr_errno(timeo);
589 break;
590 }
552b0d3c
PH
591
592 release_sock(sk);
593 timeo = schedule_timeout(timeo);
594 lock_sock(sk);
1da177e4 595 }
552b0d3c 596 __set_current_state(TASK_RUNNING);
aa395145 597 remove_wait_queue(sk_sleep(sk), &wait);
1da177e4
LT
598
599 if (err)
600 goto done;
601
602 newsock->state = SS_CONNECTED;
603
604 BT_DBG("new socket %p", ch);
605
606done:
607 release_sock(sk);
608 return err;
609}
610
611static int sco_sock_getname(struct socket *sock, struct sockaddr *addr, int *len, int peer)
612{
613 struct sockaddr_sco *sa = (struct sockaddr_sco *) addr;
614 struct sock *sk = sock->sk;
615
616 BT_DBG("sock %p, sk %p", sock, sk);
617
618 addr->sa_family = AF_BLUETOOTH;
619 *len = sizeof(struct sockaddr_sco);
620
621 if (peer)
622 bacpy(&sa->sco_bdaddr, &bt_sk(sk)->dst);
623 else
624 bacpy(&sa->sco_bdaddr, &bt_sk(sk)->src);
625
626 return 0;
627}
628
8e87d142 629static int sco_sock_sendmsg(struct kiocb *iocb, struct socket *sock,
1da177e4
LT
630 struct msghdr *msg, size_t len)
631{
632 struct sock *sk = sock->sk;
b9dbdbc1 633 int err;
1da177e4
LT
634
635 BT_DBG("sock %p, sk %p", sock, sk);
636
c1cbe4b7
BL
637 err = sock_error(sk);
638 if (err)
639 return err;
1da177e4
LT
640
641 if (msg->msg_flags & MSG_OOB)
642 return -EOPNOTSUPP;
643
644 lock_sock(sk);
645
646 if (sk->sk_state == BT_CONNECTED)
647 err = sco_send_frame(sk, msg, len);
648 else
649 err = -ENOTCONN;
650
651 release_sock(sk);
652 return err;
653}
654
fa5513be
FD
655static void sco_conn_defer_accept(struct hci_conn *conn, int mask)
656{
657 struct hci_dev *hdev = conn->hdev;
658
659 BT_DBG("conn %p", conn);
660
661 conn->state = BT_CONFIG;
662
663 if (!lmp_esco_capable(hdev)) {
664 struct hci_cp_accept_conn_req cp;
665
666 bacpy(&cp.bdaddr, &conn->dst);
667
668 if (lmp_rswitch_capable(hdev) && (mask & HCI_LM_MASTER))
669 cp.role = 0x00; /* Become master */
670 else
671 cp.role = 0x01; /* Remain slave */
672
673 hci_send_cmd(hdev, HCI_OP_ACCEPT_CONN_REQ, sizeof(cp), &cp);
674 } else {
675 struct hci_cp_accept_sync_conn_req cp;
676
677 bacpy(&cp.bdaddr, &conn->dst);
678 cp.pkt_type = cpu_to_le16(conn->pkt_type);
679
680 cp.tx_bandwidth = __constant_cpu_to_le32(0x00001f40);
681 cp.rx_bandwidth = __constant_cpu_to_le32(0x00001f40);
682 cp.max_latency = __constant_cpu_to_le16(0xffff);
683 cp.content_format = cpu_to_le16(hdev->voice_setting);
684 cp.retrans_effort = 0xff;
685
686 hci_send_cmd(hdev, HCI_OP_ACCEPT_SYNC_CONN_REQ,
687 sizeof(cp), &cp);
688 }
689}
690
20714bfe
FD
691static int sco_sock_recvmsg(struct kiocb *iocb, struct socket *sock,
692 struct msghdr *msg, size_t len, int flags)
693{
694 struct sock *sk = sock->sk;
695 struct sco_pinfo *pi = sco_pi(sk);
696
697 lock_sock(sk);
698
699 if (sk->sk_state == BT_CONNECT2 &&
700 test_bit(BT_SK_DEFER_SETUP, &bt_sk(sk)->flags)) {
fa5513be 701 sco_conn_defer_accept(pi->conn->hcon, 0);
20714bfe
FD
702 sk->sk_state = BT_CONFIG;
703
704 release_sock(sk);
705 return 0;
706 }
707
708 release_sock(sk);
709
710 return bt_sock_recvmsg(iocb, sock, msg, len, flags);
711}
712
b7058842 713static int sco_sock_setsockopt(struct socket *sock, int level, int optname, char __user *optval, unsigned int optlen)
1da177e4
LT
714{
715 struct sock *sk = sock->sk;
716 int err = 0;
b96e9c67 717 u32 opt;
1da177e4
LT
718
719 BT_DBG("sk %p", sk);
720
721 lock_sock(sk);
722
723 switch (optname) {
b96e9c67
FD
724
725 case BT_DEFER_SETUP:
726 if (sk->sk_state != BT_BOUND && sk->sk_state != BT_LISTEN) {
727 err = -EINVAL;
728 break;
729 }
730
731 if (get_user(opt, (u32 __user *) optval)) {
732 err = -EFAULT;
733 break;
734 }
735
736 if (opt)
737 set_bit(BT_SK_DEFER_SETUP, &bt_sk(sk)->flags);
738 else
739 clear_bit(BT_SK_DEFER_SETUP, &bt_sk(sk)->flags);
740 break;
741
1da177e4
LT
742 default:
743 err = -ENOPROTOOPT;
744 break;
745 }
746
747 release_sock(sk);
748 return err;
749}
750
d58daf42 751static int sco_sock_getsockopt_old(struct socket *sock, int optname, char __user *optval, int __user *optlen)
1da177e4
LT
752{
753 struct sock *sk = sock->sk;
754 struct sco_options opts;
755 struct sco_conninfo cinfo;
8e87d142 756 int len, err = 0;
1da177e4
LT
757
758 BT_DBG("sk %p", sk);
759
760 if (get_user(len, optlen))
761 return -EFAULT;
762
763 lock_sock(sk);
764
765 switch (optname) {
766 case SCO_OPTIONS:
767 if (sk->sk_state != BT_CONNECTED) {
768 err = -ENOTCONN;
769 break;
770 }
771
772 opts.mtu = sco_pi(sk)->conn->mtu;
773
774 BT_DBG("mtu %d", opts.mtu);
775
776 len = min_t(unsigned int, len, sizeof(opts));
777 if (copy_to_user(optval, (char *)&opts, len))
778 err = -EFAULT;
779
780 break;
781
782 case SCO_CONNINFO:
783 if (sk->sk_state != BT_CONNECTED) {
784 err = -ENOTCONN;
785 break;
786 }
787
c4c896e1 788 memset(&cinfo, 0, sizeof(cinfo));
1da177e4
LT
789 cinfo.hci_handle = sco_pi(sk)->conn->hcon->handle;
790 memcpy(cinfo.dev_class, sco_pi(sk)->conn->hcon->dev_class, 3);
791
792 len = min_t(unsigned int, len, sizeof(cinfo));
793 if (copy_to_user(optval, (char *)&cinfo, len))
794 err = -EFAULT;
795
796 break;
797
798 default:
799 err = -ENOPROTOOPT;
800 break;
801 }
802
803 release_sock(sk);
804 return err;
805}
806
d58daf42
MH
807static int sco_sock_getsockopt(struct socket *sock, int level, int optname, char __user *optval, int __user *optlen)
808{
809 struct sock *sk = sock->sk;
810 int len, err = 0;
811
812 BT_DBG("sk %p", sk);
813
814 if (level == SOL_SCO)
815 return sco_sock_getsockopt_old(sock, optname, optval, optlen);
816
817 if (get_user(len, optlen))
818 return -EFAULT;
819
820 lock_sock(sk);
821
822 switch (optname) {
b96e9c67
FD
823
824 case BT_DEFER_SETUP:
825 if (sk->sk_state != BT_BOUND && sk->sk_state != BT_LISTEN) {
826 err = -EINVAL;
827 break;
828 }
829
830 if (put_user(test_bit(BT_SK_DEFER_SETUP, &bt_sk(sk)->flags),
831 (u32 __user *) optval))
832 err = -EFAULT;
833
834 break;
835
d58daf42
MH
836 default:
837 err = -ENOPROTOOPT;
838 break;
839 }
840
841 release_sock(sk);
842 return err;
843}
844
fd0b3ff7
MH
845static int sco_sock_shutdown(struct socket *sock, int how)
846{
847 struct sock *sk = sock->sk;
848 int err = 0;
849
850 BT_DBG("sock %p, sk %p", sock, sk);
851
852 if (!sk)
853 return 0;
854
855 lock_sock(sk);
856 if (!sk->sk_shutdown) {
857 sk->sk_shutdown = SHUTDOWN_MASK;
858 sco_sock_clear_timer(sk);
859 __sco_sock_close(sk);
860
819f3e7a
VD
861 if (sock_flag(sk, SOCK_LINGER) && sk->sk_lingertime &&
862 !(current->flags & PF_EXITING))
fd0b3ff7 863 err = bt_sock_wait_state(sk, BT_CLOSED,
be7c2b99 864 sk->sk_lingertime);
fd0b3ff7
MH
865 }
866 release_sock(sk);
867 return err;
868}
869
1da177e4
LT
870static int sco_sock_release(struct socket *sock)
871{
872 struct sock *sk = sock->sk;
873 int err = 0;
874
875 BT_DBG("sock %p, sk %p", sock, sk);
876
877 if (!sk)
878 return 0;
879
880 sco_sock_close(sk);
881
819f3e7a
VD
882 if (sock_flag(sk, SOCK_LINGER) && sk->sk_lingertime &&
883 !(current->flags & PF_EXITING)) {
1da177e4
LT
884 lock_sock(sk);
885 err = bt_sock_wait_state(sk, BT_CLOSED, sk->sk_lingertime);
886 release_sock(sk);
887 }
888
889 sock_orphan(sk);
890 sco_sock_kill(sk);
891 return err;
892}
893
894static void __sco_chan_add(struct sco_conn *conn, struct sock *sk, struct sock *parent)
895{
896 BT_DBG("conn %p", conn);
897
898 sco_pi(sk)->conn = conn;
899 conn->sk = sk;
900
901 if (parent)
902 bt_accept_enqueue(parent, sk);
903}
904
8e87d142 905/* Delete channel.
1da177e4
LT
906 * Must be called on the locked socket. */
907static void sco_chan_del(struct sock *sk, int err)
908{
909 struct sco_conn *conn;
910
911 conn = sco_pi(sk)->conn;
912
913 BT_DBG("sk %p, conn %p, err %d", sk, conn, err);
914
0b27a4b9
GP
915 if (conn) {
916 sco_conn_lock(conn);
917 conn->sk = NULL;
918 sco_pi(sk)->conn = NULL;
919 sco_conn_unlock(conn);
920
921 if (conn->hcon)
76a68ba0 922 hci_conn_drop(conn->hcon);
0b27a4b9
GP
923 }
924
1da177e4
LT
925 sk->sk_state = BT_CLOSED;
926 sk->sk_err = err;
927 sk->sk_state_change(sk);
928
929 sock_set_flag(sk, SOCK_ZAPPED);
930}
931
932static void sco_conn_ready(struct sco_conn *conn)
933{
735cbc47
AE
934 struct sock *parent;
935 struct sock *sk = conn->sk;
1da177e4
LT
936
937 BT_DBG("conn %p", conn);
938
735cbc47 939 if (sk) {
1da177e4
LT
940 sco_sock_clear_timer(sk);
941 bh_lock_sock(sk);
942 sk->sk_state = BT_CONNECTED;
943 sk->sk_state_change(sk);
944 bh_unlock_sock(sk);
945 } else {
40528088
AG
946 sco_conn_lock(conn);
947
1da177e4 948 parent = sco_get_sock_listen(conn->src);
40528088
AG
949 if (!parent) {
950 sco_conn_unlock(conn);
951 return;
952 }
1da177e4
LT
953
954 bh_lock_sock(parent);
955
b9dbdbc1 956 sk = sco_sock_alloc(sock_net(parent), NULL,
be7c2b99 957 BTPROTO_SCO, GFP_ATOMIC);
1da177e4
LT
958 if (!sk) {
959 bh_unlock_sock(parent);
40528088
AG
960 sco_conn_unlock(conn);
961 return;
1da177e4
LT
962 }
963
964 sco_sock_init(sk, parent);
965
966 bacpy(&bt_sk(sk)->src, conn->src);
967 bacpy(&bt_sk(sk)->dst, conn->dst);
968
969 hci_conn_hold(conn->hcon);
970 __sco_chan_add(conn, sk, parent);
971
20714bfe
FD
972 if (test_bit(BT_SK_DEFER_SETUP, &bt_sk(parent)->flags))
973 sk->sk_state = BT_CONNECT2;
974 else
975 sk->sk_state = BT_CONNECTED;
1da177e4
LT
976
977 /* Wake up parent */
978 parent->sk_data_ready(parent, 1);
979
980 bh_unlock_sock(parent);
1da177e4 981
40528088
AG
982 sco_conn_unlock(conn);
983 }
1da177e4
LT
984}
985
986/* ----- SCO interface with lower layer (HCI) ----- */
20714bfe 987int sco_connect_ind(struct hci_dev *hdev, bdaddr_t *bdaddr, __u8 *flags)
1da177e4 988{
fc5fef61 989 struct sock *sk;
71aeeaa1
MH
990 int lm = 0;
991
6ed93dc6 992 BT_DBG("hdev %s, bdaddr %pMR", hdev->name, bdaddr);
1da177e4 993
71aeeaa1
MH
994 /* Find listening sockets */
995 read_lock(&sco_sk_list.lock);
b67bfe0d 996 sk_for_each(sk, &sco_sk_list.head) {
71aeeaa1
MH
997 if (sk->sk_state != BT_LISTEN)
998 continue;
999
1000 if (!bacmp(&bt_sk(sk)->src, &hdev->bdaddr) ||
be7c2b99 1001 !bacmp(&bt_sk(sk)->src, BDADDR_ANY)) {
71aeeaa1 1002 lm |= HCI_LM_ACCEPT;
20714bfe
FD
1003
1004 if (test_bit(BT_SK_DEFER_SETUP, &bt_sk(sk)->flags))
1005 *flags |= HCI_PROTO_DEFER;
71aeeaa1
MH
1006 break;
1007 }
1008 }
1009 read_unlock(&sco_sk_list.lock);
1010
1011 return lm;
1da177e4
LT
1012}
1013
9e664631 1014void sco_connect_cfm(struct hci_conn *hcon, __u8 status)
1da177e4 1015{
6ed93dc6 1016 BT_DBG("hcon %p bdaddr %pMR status %d", hcon, &hcon->dst, status);
1da177e4
LT
1017 if (!status) {
1018 struct sco_conn *conn;
1019
519e42b3 1020 conn = sco_conn_add(hcon);
1da177e4
LT
1021 if (conn)
1022 sco_conn_ready(conn);
8e87d142 1023 } else
e175072f 1024 sco_conn_del(hcon, bt_to_errno(status));
1da177e4
LT
1025}
1026
9e664631 1027void sco_disconn_cfm(struct hci_conn *hcon, __u8 reason)
1da177e4
LT
1028{
1029 BT_DBG("hcon %p reason %d", hcon, reason);
1030
e175072f 1031 sco_conn_del(hcon, bt_to_errno(reason));
1da177e4
LT
1032}
1033
686ebf28 1034int sco_recv_scodata(struct hci_conn *hcon, struct sk_buff *skb)
1da177e4
LT
1035{
1036 struct sco_conn *conn = hcon->sco_data;
1037
1038 if (!conn)
1039 goto drop;
1040
1041 BT_DBG("conn %p len %d", conn, skb->len);
1042
1043 if (skb->len) {
1044 sco_recv_frame(conn, skb);
1045 return 0;
1046 }
1047
1048drop:
8e87d142 1049 kfree_skb(skb);
1da177e4
LT
1050 return 0;
1051}
1052
aef7d97c 1053static int sco_debugfs_show(struct seq_file *f, void *p)
1da177e4
LT
1054{
1055 struct sock *sk;
1da177e4 1056
ee65d19e 1057 read_lock(&sco_sk_list.lock);
1da177e4 1058
b67bfe0d 1059 sk_for_each(sk, &sco_sk_list.head) {
fcb73338
AE
1060 seq_printf(f, "%pMR %pMR %d\n", &bt_sk(sk)->src,
1061 &bt_sk(sk)->dst, sk->sk_state);
be9d1227 1062 }
1da177e4 1063
ee65d19e 1064 read_unlock(&sco_sk_list.lock);
1da177e4 1065
aef7d97c 1066 return 0;
1da177e4
LT
1067}
1068
aef7d97c
MH
1069static int sco_debugfs_open(struct inode *inode, struct file *file)
1070{
1071 return single_open(file, sco_debugfs_show, inode->i_private);
1072}
1073
1074static const struct file_operations sco_debugfs_fops = {
1075 .open = sco_debugfs_open,
1076 .read = seq_read,
1077 .llseek = seq_lseek,
1078 .release = single_release,
1079};
1080
1081static struct dentry *sco_debugfs;
1da177e4 1082
90ddc4f0 1083static const struct proto_ops sco_sock_ops = {
1da177e4
LT
1084 .family = PF_BLUETOOTH,
1085 .owner = THIS_MODULE,
1086 .release = sco_sock_release,
1087 .bind = sco_sock_bind,
1088 .connect = sco_sock_connect,
1089 .listen = sco_sock_listen,
1090 .accept = sco_sock_accept,
1091 .getname = sco_sock_getname,
1092 .sendmsg = sco_sock_sendmsg,
20714bfe 1093 .recvmsg = sco_sock_recvmsg,
1da177e4 1094 .poll = bt_sock_poll,
3241ad82 1095 .ioctl = bt_sock_ioctl,
1da177e4
LT
1096 .mmap = sock_no_mmap,
1097 .socketpair = sock_no_socketpair,
fd0b3ff7 1098 .shutdown = sco_sock_shutdown,
1da177e4
LT
1099 .setsockopt = sco_sock_setsockopt,
1100 .getsockopt = sco_sock_getsockopt
1101};
1102
ec1b4cf7 1103static const struct net_proto_family sco_sock_family_ops = {
1da177e4
LT
1104 .family = PF_BLUETOOTH,
1105 .owner = THIS_MODULE,
1106 .create = sco_sock_create,
1107};
1108
64274518 1109int __init sco_init(void)
1da177e4
LT
1110{
1111 int err;
1112
1113 err = proto_register(&sco_proto, 0);
1114 if (err < 0)
1115 return err;
1116
1117 err = bt_sock_register(BTPROTO_SCO, &sco_sock_family_ops);
1118 if (err < 0) {
1119 BT_ERR("SCO socket registration failed");
1120 goto error;
1121 }
1122
b0316615 1123 err = bt_procfs_init(&init_net, "sco", &sco_sk_list, NULL);
de9b9212
MY
1124 if (err < 0) {
1125 BT_ERR("Failed to create SCO proc file");
1126 bt_sock_unregister(BTPROTO_SCO);
1127 goto error;
1128 }
1129
aef7d97c 1130 if (bt_debugfs) {
be7c2b99
GP
1131 sco_debugfs = debugfs_create_file("sco", 0444, bt_debugfs,
1132 NULL, &sco_debugfs_fops);
aef7d97c
MH
1133 if (!sco_debugfs)
1134 BT_ERR("Failed to create SCO debug file");
1135 }
1da177e4 1136
1da177e4
LT
1137 BT_INFO("SCO socket layer initialized");
1138
1139 return 0;
1140
1141error:
1142 proto_unregister(&sco_proto);
1143 return err;
1144}
1145
64274518 1146void __exit sco_exit(void)
1da177e4 1147{
de9b9212
MY
1148 bt_procfs_cleanup(&init_net, "sco");
1149
aef7d97c 1150 debugfs_remove(sco_debugfs);
1da177e4 1151
5e9d7f86 1152 bt_sock_unregister(BTPROTO_SCO);
1da177e4 1153
1da177e4
LT
1154 proto_unregister(&sco_proto);
1155}
1156
7cb127d5
MH
1157module_param(disable_esco, bool, 0644);
1158MODULE_PARM_DESC(disable_esco, "Disable eSCO connection creation");