blob: ccb8467421c8cf514719c83e6c05d05acb3894be [file] [log] [blame]
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html lang="en">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
<title>LCOV - skiboot.info - libflash/mbox-flash.c</title>
<link rel="stylesheet" type="text/css" href="../gcov.css">
</head>
<body>
<table width="100%" border=0 cellspacing=0 cellpadding=0>
<tr><td class="title">LCOV - code coverage report</td></tr>
<tr><td class="ruler"><img src="../glass.png" width=3 height=3 alt=""></td></tr>
<tr>
<td width="100%">
<table cellpadding=1 border=0 width="100%">
<tr>
<td width="10%" class="headerItem">Current view:</td>
<td width="10%" class="headerValue"><a href="../index.html">top level</a> - <a href="index.html">libflash</a> - mbox-flash.c<span style="font-size: 80%;"> (source / <a href="mbox-flash.c.func-c.html">functions</a>)</span></td>
<td width="5%"></td>
<td width="5%"></td>
<td width="5%" class="headerCovTableHead">Coverage</td>
<td width="5%" class="headerCovTableHead" title="Covered + Uncovered code">Total</td>
<td width="5%" class="headerCovTableHead" title="Exercised code only">Hit</td>
</tr>
<tr>
<td class="headerItem">Test:</td>
<td class="headerValue">skiboot.info</td>
<td></td>
<td class="headerItem">Lines:</td>
<td class="headerCovTableEntryLo">74.0&nbsp;%</td>
<td class="headerCovTableEntry">470</td>
<td class="headerCovTableEntry">348</td>
</tr>
<tr>
<td class="headerItem">Test Date:</td>
<td class="headerValue">2025-10-14 13:37:15</td>
<td></td>
<td class="headerItem">Functions:</td>
<td class="headerCovTableEntryHi">93.8&nbsp;%</td>
<td class="headerCovTableEntry">48</td>
<td class="headerCovTableEntry">45</td>
</tr>
<tr>
<td></td>
<td></td>
<td></td>
<td class="headerItem">Branches:</td>
<td class="headerCovTableEntryHi">-</td>
<td class="headerCovTableEntry">0</td>
<td class="headerCovTableEntry">0</td>
</tr>
<tr><td><img src="../glass.png" width=3 height=3 alt=""></td></tr>
</table>
</td>
</tr>
<tr><td class="ruler"><img src="../glass.png" width=3 height=3 alt=""></td></tr>
</table>
<table cellpadding=0 cellspacing=0 border=0>
<tr>
<td><br></td>
</tr>
<tr>
<td>
<pre class="sourceHeading"> Branch data Line data Source code</pre>
<pre class="source">
<span id="L1"><span class="lineNum"> 1</span> : : // SPDX-License-Identifier: Apache-2.0 OR GPL-2.0-or-later</span>
<span id="L2"><span class="lineNum"> 2</span> : : /* Copyright 2017-2018 IBM Corp. */</span>
<span id="L3"><span class="lineNum"> 3</span> : : </span>
<span id="L4"><span class="lineNum"> 4</span> : : #define pr_fmt(fmt) &quot;MBOX-FLASH: &quot; fmt</span>
<span id="L5"><span class="lineNum"> 5</span> : : </span>
<span id="L6"><span class="lineNum"> 6</span> : : #define _GNU_SOURCE</span>
<span id="L7"><span class="lineNum"> 7</span> : : #include &lt;errno.h&gt;</span>
<span id="L8"><span class="lineNum"> 8</span> : : #include &lt;stdio.h&gt;</span>
<span id="L9"><span class="lineNum"> 9</span> : : #include &lt;stdlib.h&gt;</span>
<span id="L10"><span class="lineNum"> 10</span> : : #include &lt;string.h&gt;</span>
<span id="L11"><span class="lineNum"> 11</span> : : </span>
<span id="L12"><span class="lineNum"> 12</span> : : #include &lt;skiboot.h&gt;</span>
<span id="L13"><span class="lineNum"> 13</span> : : #include &lt;inttypes.h&gt;</span>
<span id="L14"><span class="lineNum"> 14</span> : : #include &lt;timebase.h&gt;</span>
<span id="L15"><span class="lineNum"> 15</span> : : #include &lt;timer.h&gt;</span>
<span id="L16"><span class="lineNum"> 16</span> : : #include &lt;libflash/libflash.h&gt;</span>
<span id="L17"><span class="lineNum"> 17</span> : : #include &lt;libflash/mbox-flash.h&gt;</span>
<span id="L18"><span class="lineNum"> 18</span> : : #include &lt;lpc.h&gt;</span>
<span id="L19"><span class="lineNum"> 19</span> : : #include &lt;lpc-mbox.h&gt;</span>
<span id="L20"><span class="lineNum"> 20</span> : : </span>
<span id="L21"><span class="lineNum"> 21</span> : : #include &lt;ccan/container_of/container_of.h&gt;</span>
<span id="L22"><span class="lineNum"> 22</span> : : </span>
<span id="L23"><span class="lineNum"> 23</span> : : #ifndef __SKIBOOT__</span>
<span id="L24"><span class="lineNum"> 24</span> : : #ifndef __TEST__</span>
<span id="L25"><span class="lineNum"> 25</span> : : #error &quot;This libflash backend must be compiled with skiboot&quot;</span>
<span id="L26"><span class="lineNum"> 26</span> : : #endif</span>
<span id="L27"><span class="lineNum"> 27</span> : : #endif</span>
<span id="L28"><span class="lineNum"> 28</span> : : </span>
<span id="L29"><span class="lineNum"> 29</span> : : /* Same technique as BUILD_BUG_ON from linux */</span>
<span id="L30"><span class="lineNum"> 30</span> : : #define CHECK_HANDLER_SIZE(handlers) ((void)sizeof(char[1 - 2*!!(ARRAY_SIZE(handlers) != (MBOX_COMMAND_COUNT + 1))]))</span>
<span id="L31"><span class="lineNum"> 31</span> : : </span>
<span id="L32"><span class="lineNum"> 32</span> : : #define MBOX_DEFAULT_TIMEOUT 3 /* seconds */</span>
<span id="L33"><span class="lineNum"> 33</span> : : </span>
<span id="L34"><span class="lineNum"> 34</span> : : #define MSG_CREATE(init_command) { .command = init_command }</span>
<span id="L35"><span class="lineNum"> 35</span> : : </span>
<span id="L36"><span class="lineNum"> 36</span> : : struct mbox_flash_data;</span>
<span id="L37"><span class="lineNum"> 37</span> : : typedef void (mbox_handler)(struct mbox_flash_data *, struct bmc_mbox_msg *);</span>
<span id="L38"><span class="lineNum"> 38</span> : : </span>
<span id="L39"><span class="lineNum"> 39</span> : : struct lpc_window {</span>
<span id="L40"><span class="lineNum"> 40</span> : : uint32_t lpc_addr; /* Offset into LPC space */</span>
<span id="L41"><span class="lineNum"> 41</span> : : uint32_t cur_pos; /* Current position of the window in the flash */</span>
<span id="L42"><span class="lineNum"> 42</span> : : uint32_t size; /* Size of the window into the flash */</span>
<span id="L43"><span class="lineNum"> 43</span> : : bool open;</span>
<span id="L44"><span class="lineNum"> 44</span> : : };</span>
<span id="L45"><span class="lineNum"> 45</span> : : </span>
<span id="L46"><span class="lineNum"> 46</span> : : struct mbox_flash_data {</span>
<span id="L47"><span class="lineNum"> 47</span> : : int version;</span>
<span id="L48"><span class="lineNum"> 48</span> : : uint16_t timeout;</span>
<span id="L49"><span class="lineNum"> 49</span> : : uint32_t shift;</span>
<span id="L50"><span class="lineNum"> 50</span> : : struct lpc_window read;</span>
<span id="L51"><span class="lineNum"> 51</span> : : struct lpc_window write;</span>
<span id="L52"><span class="lineNum"> 52</span> : : struct blocklevel_device bl;</span>
<span id="L53"><span class="lineNum"> 53</span> : : uint32_t total_size;</span>
<span id="L54"><span class="lineNum"> 54</span> : : uint32_t erase_granule;</span>
<span id="L55"><span class="lineNum"> 55</span> : : int rc;</span>
<span id="L56"><span class="lineNum"> 56</span> : : bool reboot;</span>
<span id="L57"><span class="lineNum"> 57</span> : : bool pause;</span>
<span id="L58"><span class="lineNum"> 58</span> : : bool busy;</span>
<span id="L59"><span class="lineNum"> 59</span> : : bool ack;</span>
<span id="L60"><span class="lineNum"> 60</span> : : mbox_handler **handlers;</span>
<span id="L61"><span class="lineNum"> 61</span> : : };</span>
<span id="L62"><span class="lineNum"> 62</span> : : </span>
<span id="L63"><span class="lineNum"> 63</span> : : static mbox_handler mbox_flash_do_nop;</span>
<span id="L64"><span class="lineNum"> 64</span> : : static mbox_handler mbox_flash_do_illegal;</span>
<span id="L65"><span class="lineNum"> 65</span> : : </span>
<span id="L66"><span class="lineNum"> 66</span> : : /* Version 1, 2, 3 compatible */</span>
<span id="L67"><span class="lineNum"> 67</span> : : static mbox_handler mbox_flash_do_get_mbox_info;</span>
<span id="L68"><span class="lineNum"> 68</span> : : </span>
<span id="L69"><span class="lineNum"> 69</span> : : /* Version 2 and 3 compatible */</span>
<span id="L70"><span class="lineNum"> 70</span> : : static mbox_handler mbox_flash_do_get_flash_info;</span>
<span id="L71"><span class="lineNum"> 71</span> : : static mbox_handler mbox_flash_do_get_flash_info_v1;</span>
<span id="L72"><span class="lineNum"> 72</span> : : </span>
<span id="L73"><span class="lineNum"> 73</span> : : /* Version 2 and 3 compatible */</span>
<span id="L74"><span class="lineNum"> 74</span> : : static mbox_handler mbox_flash_do_create_read_window;</span>
<span id="L75"><span class="lineNum"> 75</span> : : static mbox_handler mbox_flash_do_create_read_window_v1;</span>
<span id="L76"><span class="lineNum"> 76</span> : : </span>
<span id="L77"><span class="lineNum"> 77</span> : : /* Version 2 and 3 compatible */</span>
<span id="L78"><span class="lineNum"> 78</span> : : static mbox_handler mbox_flash_do_create_write_window;</span>
<span id="L79"><span class="lineNum"> 79</span> : : static mbox_handler mbox_flash_do_create_write_window_v1;</span>
<span id="L80"><span class="lineNum"> 80</span> : : </span>
<span id="L81"><span class="lineNum"> 81</span> : : /* Version 1, 2, 3 compatible */</span>
<span id="L82"><span class="lineNum"> 82</span> : : static mbox_handler mbox_flash_do_close_window;</span>
<span id="L83"><span class="lineNum"> 83</span> : : </span>
<span id="L84"><span class="lineNum"> 84</span> : : /* Plus one, commands start at 1 */</span>
<span id="L85"><span class="lineNum"> 85</span> : : static mbox_handler *handlers_v3[] = {</span>
<span id="L86"><span class="lineNum"> 86</span> : : NULL,</span>
<span id="L87"><span class="lineNum"> 87</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L88"><span class="lineNum"> 88</span> : : &amp;mbox_flash_do_get_mbox_info,</span>
<span id="L89"><span class="lineNum"> 89</span> : : &amp;mbox_flash_do_get_flash_info,</span>
<span id="L90"><span class="lineNum"> 90</span> : : &amp;mbox_flash_do_create_read_window,</span>
<span id="L91"><span class="lineNum"> 91</span> : : &amp;mbox_flash_do_close_window,</span>
<span id="L92"><span class="lineNum"> 92</span> : : &amp;mbox_flash_do_create_write_window,</span>
<span id="L93"><span class="lineNum"> 93</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L94"><span class="lineNum"> 94</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L95"><span class="lineNum"> 95</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L96"><span class="lineNum"> 96</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L97"><span class="lineNum"> 97</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L98"><span class="lineNum"> 98</span> : : &amp;mbox_flash_do_nop</span>
<span id="L99"><span class="lineNum"> 99</span> : : };</span>
<span id="L100"><span class="lineNum"> 100</span> : : </span>
<span id="L101"><span class="lineNum"> 101</span> : : /* Plus one, commands start at 1 */</span>
<span id="L102"><span class="lineNum"> 102</span> : : static mbox_handler *handlers_v2[] = {</span>
<span id="L103"><span class="lineNum"> 103</span> : : NULL,</span>
<span id="L104"><span class="lineNum"> 104</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L105"><span class="lineNum"> 105</span> : : &amp;mbox_flash_do_get_mbox_info,</span>
<span id="L106"><span class="lineNum"> 106</span> : : &amp;mbox_flash_do_get_flash_info,</span>
<span id="L107"><span class="lineNum"> 107</span> : : &amp;mbox_flash_do_create_read_window,</span>
<span id="L108"><span class="lineNum"> 108</span> : : &amp;mbox_flash_do_close_window,</span>
<span id="L109"><span class="lineNum"> 109</span> : : &amp;mbox_flash_do_create_write_window,</span>
<span id="L110"><span class="lineNum"> 110</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L111"><span class="lineNum"> 111</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L112"><span class="lineNum"> 112</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L113"><span class="lineNum"> 113</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L114"><span class="lineNum"> 114</span> : : &amp;mbox_flash_do_illegal,</span>
<span id="L115"><span class="lineNum"> 115</span> : : &amp;mbox_flash_do_illegal</span>
<span id="L116"><span class="lineNum"> 116</span> : : };</span>
<span id="L117"><span class="lineNum"> 117</span> : : </span>
<span id="L118"><span class="lineNum"> 118</span> : : /*</span>
<span id="L119"><span class="lineNum"> 119</span> : : * Plus one, commands start at 1.</span>
<span id="L120"><span class="lineNum"> 120</span> : : * V2 adds a command so there should never be a response for the last</span>
<span id="L121"><span class="lineNum"> 121</span> : : * command.</span>
<span id="L122"><span class="lineNum"> 122</span> : : * Ensure we print an error message with mbox_flash_do_illegal().</span>
<span id="L123"><span class="lineNum"> 123</span> : : */</span>
<span id="L124"><span class="lineNum"> 124</span> : : static mbox_handler *handlers_v1[] = {</span>
<span id="L125"><span class="lineNum"> 125</span> : : NULL,</span>
<span id="L126"><span class="lineNum"> 126</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L127"><span class="lineNum"> 127</span> : : &amp;mbox_flash_do_get_mbox_info,</span>
<span id="L128"><span class="lineNum"> 128</span> : : &amp;mbox_flash_do_get_flash_info_v1,</span>
<span id="L129"><span class="lineNum"> 129</span> : : &amp;mbox_flash_do_create_read_window_v1,</span>
<span id="L130"><span class="lineNum"> 130</span> : : &amp;mbox_flash_do_close_window,</span>
<span id="L131"><span class="lineNum"> 131</span> : : &amp;mbox_flash_do_create_write_window_v1,</span>
<span id="L132"><span class="lineNum"> 132</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L133"><span class="lineNum"> 133</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L134"><span class="lineNum"> 134</span> : : &amp;mbox_flash_do_nop,</span>
<span id="L135"><span class="lineNum"> 135</span> : : &amp;mbox_flash_do_illegal,</span>
<span id="L136"><span class="lineNum"> 136</span> : : &amp;mbox_flash_do_illegal,</span>
<span id="L137"><span class="lineNum"> 137</span> : : &amp;mbox_flash_do_illegal</span>
<span id="L138"><span class="lineNum"> 138</span> : : };</span>
<span id="L139"><span class="lineNum"> 139</span> : : </span>
<span id="L140"><span class="lineNum"> 140</span> : : </span>
<span id="L141"><span class="lineNum"> 141</span> : : static void mbox_flash_callback(struct bmc_mbox_msg *msg, void *priv);</span>
<span id="L142"><span class="lineNum"> 142</span> : : static void mbox_flash_attn(uint8_t attn, void *priv);</span>
<span id="L143"><span class="lineNum"> 143</span> : : </span>
<span id="L144"><span class="lineNum"> 144</span> : : static int protocol_init(struct mbox_flash_data *mbox_flash, uint8_t shift);</span>
<span id="L145"><span class="lineNum"> 145</span> : : </span>
<span id="L146"><span class="lineNum"> 146</span> :<span class="tlaGNC tlaBgGNC"> 659 : static int lpc_window_read(struct mbox_flash_data *mbox_flash, uint32_t pos,</span></span>
<span id="L147"><span class="lineNum"> 147</span> : : void *buf, uint32_t len)</span>
<span id="L148"><span class="lineNum"> 148</span> : : {</span>
<span id="L149"><span class="lineNum"> 149</span> :<span class="tlaGNC"> 659 : uint32_t off = mbox_flash-&gt;read.lpc_addr + (pos - mbox_flash-&gt;read.cur_pos);</span></span>
<span id="L150"><span class="lineNum"> 150</span> : : </span>
<span id="L151"><span class="lineNum"> 151</span> :<span class="tlaGNC"> 659 : prlog(PR_TRACE, &quot;Reading at 0x%08x for 0x%08x offset: 0x%08x\n&quot;,</span></span>
<span id="L152"><span class="lineNum"> 152</span> : : pos, len, off);</span>
<span id="L153"><span class="lineNum"> 153</span> : : </span>
<span id="L154"><span class="lineNum"> 154</span> :<span class="tlaGNC"> 659 : return lpc_fw_read(off, buf, len);</span></span>
<span id="L155"><span class="lineNum"> 155</span> : : }</span>
<span id="L156"><span class="lineNum"> 156</span> : : </span>
<span id="L157"><span class="lineNum"> 157</span> :<span class="tlaGNC"> 96 : static int lpc_window_write(struct mbox_flash_data *mbox_flash, uint32_t pos,</span></span>
<span id="L158"><span class="lineNum"> 158</span> : : const void *buf, uint32_t len)</span>
<span id="L159"><span class="lineNum"> 159</span> : : {</span>
<span id="L160"><span class="lineNum"> 160</span> :<span class="tlaGNC"> 96 : uint32_t off = mbox_flash-&gt;write.lpc_addr + (pos - mbox_flash-&gt;write.cur_pos);</span></span>
<span id="L161"><span class="lineNum"> 161</span> : : </span>
<span id="L162"><span class="lineNum"> 162</span> :<span class="tlaGNC"> 96 : return lpc_fw_write(off, buf, len);</span></span>
<span id="L163"><span class="lineNum"> 163</span> : : }</span>
<span id="L164"><span class="lineNum"> 164</span> : : </span>
<span id="L165"><span class="lineNum"> 165</span> :<span class="tlaGNC"> 734 : static uint64_t mbox_flash_mask(struct mbox_flash_data *mbox_flash)</span></span>
<span id="L166"><span class="lineNum"> 166</span> : : {</span>
<span id="L167"><span class="lineNum"> 167</span> :<span class="tlaGNC"> 734 : return (1ULL &lt;&lt; mbox_flash-&gt;shift) - 1;</span></span>
<span id="L168"><span class="lineNum"> 168</span> : : }</span>
<span id="L169"><span class="lineNum"> 169</span> : : </span>
<span id="L170"><span class="lineNum"> 170</span> :<span class="tlaGNC"> 7 : __unused static uint8_t msg_get_u8(struct bmc_mbox_msg *msg, int i)</span></span>
<span id="L171"><span class="lineNum"> 171</span> : : {</span>
<span id="L172"><span class="lineNum"> 172</span> :<span class="tlaGNC"> 7 : return msg-&gt;args[i];</span></span>
<span id="L173"><span class="lineNum"> 173</span> : : }</span>
<span id="L174"><span class="lineNum"> 174</span> : : </span>
<span id="L175"><span class="lineNum"> 175</span> :<span class="tlaGNC"> 11 : static void msg_put_u8(struct bmc_mbox_msg *msg, int i, uint8_t val)</span></span>
<span id="L176"><span class="lineNum"> 176</span> : : {</span>
<span id="L177"><span class="lineNum"> 177</span> :<span class="tlaGNC"> 11 : msg-&gt;args[i] = val;</span></span>
<span id="L178"><span class="lineNum"> 178</span> :<span class="tlaGNC"> 11 : }</span></span>
<span id="L179"><span class="lineNum"> 179</span> : : </span>
<span id="L180"><span class="lineNum"> 180</span> :<span class="tlaGNC"> 1827 : static uint16_t msg_get_u16(struct bmc_mbox_msg *msg, int i)</span></span>
<span id="L181"><span class="lineNum"> 181</span> : : {</span>
<span id="L182"><span class="lineNum"> 182</span> :<span class="tlaGNC"> 1827 : return le16_to_cpu(*(__le16 *)(&amp;msg-&gt;args[i]));</span></span>
<span id="L183"><span class="lineNum"> 183</span> : : }</span>
<span id="L184"><span class="lineNum"> 184</span> : : </span>
<span id="L185"><span class="lineNum"> 185</span> :<span class="tlaGNC"> 908 : static void msg_put_u16(struct bmc_mbox_msg *msg, int i, uint16_t val)</span></span>
<span id="L186"><span class="lineNum"> 186</span> : : {</span>
<span id="L187"><span class="lineNum"> 187</span> :<span class="tlaGNC"> 908 : __le16 tmp = cpu_to_le16(val);</span></span>
<span id="L188"><span class="lineNum"> 188</span> :<span class="tlaGNC"> 908 : memcpy(&amp;msg-&gt;args[i], &amp;tmp, sizeof(val));</span></span>
<span id="L189"><span class="lineNum"> 189</span> :<span class="tlaGNC"> 908 : }</span></span>
<span id="L190"><span class="lineNum"> 190</span> : : </span>
<span id="L191"><span class="lineNum"> 191</span> :<span class="tlaGNC"> 2 : static uint32_t msg_get_u32(struct bmc_mbox_msg *msg, int i)</span></span>
<span id="L192"><span class="lineNum"> 192</span> : : {</span>
<span id="L193"><span class="lineNum"> 193</span> :<span class="tlaGNC"> 2 : return le32_to_cpu(*(__le32 *)(&amp;msg-&gt;args[i]));</span></span>
<span id="L194"><span class="lineNum"> 194</span> : : }</span>
<span id="L195"><span class="lineNum"> 195</span> : : </span>
<span id="L196"><span class="lineNum"> 196</span> :<span class="tlaGNC"> 24 : static void msg_put_u32(struct bmc_mbox_msg *msg, int i, uint32_t val)</span></span>
<span id="L197"><span class="lineNum"> 197</span> : : {</span>
<span id="L198"><span class="lineNum"> 198</span> :<span class="tlaGNC"> 24 : __le32 tmp = cpu_to_le32(val);</span></span>
<span id="L199"><span class="lineNum"> 199</span> :<span class="tlaGNC"> 24 : memcpy(&amp;msg-&gt;args[i], &amp;tmp, sizeof(val));</span></span>
<span id="L200"><span class="lineNum"> 200</span> :<span class="tlaGNC"> 24 : }</span></span>
<span id="L201"><span class="lineNum"> 201</span> : : </span>
<span id="L202"><span class="lineNum"> 202</span> :<span class="tlaGNC"> 1824 : static uint32_t blocks_to_bytes(struct mbox_flash_data *mbox_flash, uint16_t blocks)</span></span>
<span id="L203"><span class="lineNum"> 203</span> : : {</span>
<span id="L204"><span class="lineNum"> 204</span> :<span class="tlaGNC"> 1824 : return blocks &lt;&lt; mbox_flash-&gt;shift;</span></span>
<span id="L205"><span class="lineNum"> 205</span> : : }</span>
<span id="L206"><span class="lineNum"> 206</span> : : </span>
<span id="L207"><span class="lineNum"> 207</span> :<span class="tlaGNC"> 908 : static uint16_t bytes_to_blocks(struct mbox_flash_data *mbox_flash,</span></span>
<span id="L208"><span class="lineNum"> 208</span> : : uint32_t bytes)</span>
<span id="L209"><span class="lineNum"> 209</span> : : {</span>
<span id="L210"><span class="lineNum"> 210</span> :<span class="tlaGNC"> 908 : return bytes &gt;&gt; mbox_flash-&gt;shift;</span></span>
<span id="L211"><span class="lineNum"> 211</span> : : }</span>
<span id="L212"><span class="lineNum"> 212</span> : : </span>
<span id="L213"><span class="lineNum"> 213</span> : : /*</span>
<span id="L214"><span class="lineNum"> 214</span> : : * The BMC may send is an out of band message to say that it doesn't</span>
<span id="L215"><span class="lineNum"> 215</span> : : * own the flash anymore.</span>
<span id="L216"><span class="lineNum"> 216</span> : : * It guarantees we can still access our (open) windows but it does</span>
<span id="L217"><span class="lineNum"> 217</span> : : * not guarantee their contents until it clears the bit without</span>
<span id="L218"><span class="lineNum"> 218</span> : : * sending us a corresponding bit to say that the windows are bad</span>
<span id="L219"><span class="lineNum"> 219</span> : : * first.</span>
<span id="L220"><span class="lineNum"> 220</span> : : * Since this is all things that will happen in the future, we should</span>
<span id="L221"><span class="lineNum"> 221</span> : : * not perform any calls speculatively as its almost impossible to</span>
<span id="L222"><span class="lineNum"> 222</span> : : * rewind.</span>
<span id="L223"><span class="lineNum"> 223</span> : : */</span>
<span id="L224"><span class="lineNum"> 224</span> :<span class="tlaGNC"> 1050 : static bool is_paused(struct mbox_flash_data *mbox_flash)</span></span>
<span id="L225"><span class="lineNum"> 225</span> : : {</span>
<span id="L226"><span class="lineNum"> 226</span> :<span class="tlaGNC"> 1050 : return mbox_flash-&gt;pause;</span></span>
<span id="L227"><span class="lineNum"> 227</span> : : }</span>
<span id="L228"><span class="lineNum"> 228</span> : : </span>
<span id="L229"><span class="lineNum"> 229</span> : : /*</span>
<span id="L230"><span class="lineNum"> 230</span> : : * After a read or a write it is wise to check that the window we just</span>
<span id="L231"><span class="lineNum"> 231</span> : : * read/write to/from is still valid otherwise it is possible some of</span>
<span id="L232"><span class="lineNum"> 232</span> : : * the data didn't make it.</span>
<span id="L233"><span class="lineNum"> 233</span> : : * This check is an optimisation as we'll close all our windows on any</span>
<span id="L234"><span class="lineNum"> 234</span> : : * notification from the BMC that the windows are bad. See the above</span>
<span id="L235"><span class="lineNum"> 235</span> : : * comment about is_paused().</span>
<span id="L236"><span class="lineNum"> 236</span> : : * A foolproof (but much closer) method of validating reads/writes</span>
<span id="L237"><span class="lineNum"> 237</span> : : * would be to attempt to close the window, if that fails then we can</span>
<span id="L238"><span class="lineNum"> 238</span> : : * be sure that the read/write was no good.</span>
<span id="L239"><span class="lineNum"> 239</span> : : */</span>
<span id="L240"><span class="lineNum"> 240</span> :<span class="tlaGNC"> 659 : static bool is_valid(struct mbox_flash_data *mbox_flash, struct lpc_window *win)</span></span>
<span id="L241"><span class="lineNum"> 241</span> : : {</span>
<span id="L242"><span class="lineNum"> 242</span> :<span class="tlaGNC"> 659 : return !is_paused(mbox_flash) &amp;&amp; win-&gt;open;</span></span>
<span id="L243"><span class="lineNum"> 243</span> : : }</span>
<span id="L244"><span class="lineNum"> 244</span> : : </span>
<span id="L245"><span class="lineNum"> 245</span> : : /*</span>
<span id="L246"><span class="lineNum"> 246</span> : : * Check if we've received a BMC reboot notification.</span>
<span id="L247"><span class="lineNum"> 247</span> : : * The strategy is to check on entry to mbox-flash and return a</span>
<span id="L248"><span class="lineNum"> 248</span> : : * failure accordingly. Races will be handled by the fact that the BMC</span>
<span id="L249"><span class="lineNum"> 249</span> : : * won't respond so timeouts will occur. As an added precaution</span>
<span id="L250"><span class="lineNum"> 250</span> : : * msg_send() checks right before sending a message (to make the race</span>
<span id="L251"><span class="lineNum"> 251</span> : : * as small as possible to avoid needless timeouts).</span>
<span id="L252"><span class="lineNum"> 252</span> : : */</span>
<span id="L253"><span class="lineNum"> 253</span> :<span class="tlaGNC"> 1335 : static bool is_reboot(struct mbox_flash_data *mbox_flash)</span></span>
<span id="L254"><span class="lineNum"> 254</span> : : {</span>
<span id="L255"><span class="lineNum"> 255</span> :<span class="tlaGNC"> 1335 : return mbox_flash-&gt;reboot;</span></span>
<span id="L256"><span class="lineNum"> 256</span> : : }</span>
<span id="L257"><span class="lineNum"> 257</span> : : </span>
<span id="L258"><span class="lineNum"> 258</span> :<span class="tlaGNC"> 944 : static int msg_send(struct mbox_flash_data *mbox_flash, struct bmc_mbox_msg *msg,</span></span>
<span id="L259"><span class="lineNum"> 259</span> : : unsigned int timeout_sec)</span>
<span id="L260"><span class="lineNum"> 260</span> : : {</span>
<span id="L261"><span class="lineNum"> 261</span> :<span class="tlaGNC"> 944 : if (is_reboot(mbox_flash))</span></span>
<span id="L262"><span class="lineNum"> 262</span> :<span class="tlaUNC tlaBgUNC"> 0 : return FLASH_ERR_AGAIN;</span></span>
<span id="L263"><span class="lineNum"> 263</span> :<span class="tlaGNC tlaBgGNC"> 944 : mbox_flash-&gt;busy = true;</span></span>
<span id="L264"><span class="lineNum"> 264</span> :<span class="tlaGNC"> 944 : mbox_flash-&gt;rc = 0;</span></span>
<span id="L265"><span class="lineNum"> 265</span> :<span class="tlaGNC"> 944 : return bmc_mbox_enqueue(msg, timeout_sec);</span></span>
<span id="L266"><span class="lineNum"> 266</span> : : }</span>
<span id="L267"><span class="lineNum"> 267</span> : : </span>
<span id="L268"><span class="lineNum"> 268</span> :<span class="tlaGNC"> 944 : static int wait_for_bmc(struct mbox_flash_data *mbox_flash, unsigned int timeout_sec)</span></span>
<span id="L269"><span class="lineNum"> 269</span> : : {</span>
<span id="L270"><span class="lineNum"> 270</span> :<span class="tlaGNC"> 944 : unsigned long last = 1, start = tb_to_secs(mftb());</span></span>
<span id="L271"><span class="lineNum"> 271</span> :<span class="tlaGNC"> 944 : prlog(PR_TRACE, &quot;Waiting for BMC\n&quot;);</span></span>
<span id="L272"><span class="lineNum"> 272</span> :<span class="tlaGNC"> 1888 : while (mbox_flash-&gt;busy &amp;&amp; timeout_sec &gt; last) {</span></span>
<span id="L273"><span class="lineNum"> 273</span> :<span class="tlaGNC"> 944 : long now = tb_to_secs(mftb());</span></span>
<span id="L274"><span class="lineNum"> 274</span> :<span class="tlaGNC"> 944 : if (now - start &gt; last) {</span></span>
<span id="L275"><span class="lineNum"> 275</span> :<span class="tlaUNC tlaBgUNC"> 0 : if (last &lt; timeout_sec / 2)</span></span>
<span id="L276"><span class="lineNum"> 276</span> :<span class="tlaUNC"> 0 : prlog(PR_TRACE, &quot;Been waiting for the BMC for %lu secs\n&quot;, last);</span></span>
<span id="L277"><span class="lineNum"> 277</span> : : else</span>
<span id="L278"><span class="lineNum"> 278</span> :<span class="tlaUNC"> 0 : prlog(PR_ERR, &quot;BMC NOT RESPONDING %lu second wait\n&quot;, last);</span></span>
<span id="L279"><span class="lineNum"> 279</span> :<span class="tlaUNC"> 0 : last++;</span></span>
<span id="L280"><span class="lineNum"> 280</span> : : }</span>
<span id="L281"><span class="lineNum"> 281</span> : : /*</span>
<span id="L282"><span class="lineNum"> 282</span> : : * Both functions are important.</span>
<span id="L283"><span class="lineNum"> 283</span> : : * Well time_wait_ms() relaxes the spin... so... its nice</span>
<span id="L284"><span class="lineNum"> 284</span> : : */</span>
<span id="L285"><span class="lineNum"> 285</span> :<span class="tlaGNC tlaBgGNC"> 944 : check_timers(false);</span></span>
<span id="L286"><span class="lineNum"> 286</span> :<span class="tlaGNC"> 944 : if (mbox_flash-&gt;busy)</span></span>
<span id="L287"><span class="lineNum"> 287</span> :<span class="tlaUNC tlaBgUNC"> 0 : time_wait_ms(MBOX_DEFAULT_POLL_MS);</span></span>
<span id="L288"><span class="lineNum"> 288</span> :<span class="tlaGNC tlaBgGNC"> 944 : asm volatile (&quot;&quot; ::: &quot;memory&quot;);</span></span>
<span id="L289"><span class="lineNum"> 289</span> : : }</span>
<span id="L290"><span class="lineNum"> 290</span> : : </span>
<span id="L291"><span class="lineNum"> 291</span> :<span class="tlaGNC"> 944 : if (mbox_flash-&gt;busy) {</span></span>
<span id="L292"><span class="lineNum"> 292</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Timeout waiting for BMC\n&quot;);</span></span>
<span id="L293"><span class="lineNum"> 293</span> :<span class="tlaUNC"> 0 : mbox_flash-&gt;busy = false;</span></span>
<span id="L294"><span class="lineNum"> 294</span> :<span class="tlaUNC"> 0 : return MBOX_R_TIMEOUT;</span></span>
<span id="L295"><span class="lineNum"> 295</span> : : }</span>
<span id="L296"><span class="lineNum"> 296</span> : : </span>
<span id="L297"><span class="lineNum"> 297</span> :<span class="tlaGNC tlaBgGNC"> 944 : return mbox_flash-&gt;rc;</span></span>
<span id="L298"><span class="lineNum"> 298</span> : : }</span>
<span id="L299"><span class="lineNum"> 299</span> : : </span>
<span id="L300"><span class="lineNum"> 300</span> :<span class="tlaGNC"> 3 : static int mbox_flash_ack(struct mbox_flash_data *mbox_flash, uint8_t reg)</span></span>
<span id="L301"><span class="lineNum"> 301</span> : : {</span>
<span id="L302"><span class="lineNum"> 302</span> :<span class="tlaGNC"> 3 : struct bmc_mbox_msg msg = MSG_CREATE(MBOX_C_BMC_EVENT_ACK);</span></span>
<span id="L303"><span class="lineNum"> 303</span> : : int rc;</span>
<span id="L304"><span class="lineNum"> 304</span> : : </span>
<span id="L305"><span class="lineNum"> 305</span> :<span class="tlaGNC"> 3 : msg_put_u8(&amp;msg, 0, reg);</span></span>
<span id="L306"><span class="lineNum"> 306</span> : : </span>
<span id="L307"><span class="lineNum"> 307</span> : : /* Clear this first so msg_send() doesn't freak out */</span>
<span id="L308"><span class="lineNum"> 308</span> :<span class="tlaGNC"> 3 : mbox_flash-&gt;reboot = false;</span></span>
<span id="L309"><span class="lineNum"> 309</span> : : </span>
<span id="L310"><span class="lineNum"> 310</span> : : /*</span>
<span id="L311"><span class="lineNum"> 311</span> : : * Use a lower timeout - there is strong evidence to suggest the</span>
<span id="L312"><span class="lineNum"> 312</span> : : * BMC won't respond, don't waste time spinning here just have the</span>
<span id="L313"><span class="lineNum"> 313</span> : : * high levels retry when the BMC might be back</span>
<span id="L314"><span class="lineNum"> 314</span> : : */</span>
<span id="L315"><span class="lineNum"> 315</span> :<span class="tlaGNC"> 3 : rc = msg_send(mbox_flash, &amp;msg, 3);</span></span>
<span id="L316"><span class="lineNum"> 316</span> : : </span>
<span id="L317"><span class="lineNum"> 317</span> : : /* Still need to deal with it, we've only acked it now. */</span>
<span id="L318"><span class="lineNum"> 318</span> :<span class="tlaGNC"> 3 : mbox_flash-&gt;reboot = true;</span></span>
<span id="L319"><span class="lineNum"> 319</span> : : </span>
<span id="L320"><span class="lineNum"> 320</span> :<span class="tlaGNC"> 3 : if (rc) {</span></span>
<span id="L321"><span class="lineNum"> 321</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Failed to enqueue/send BMC MBOX message\n&quot;);</span></span>
<span id="L322"><span class="lineNum"> 322</span> :<span class="tlaUNC"> 0 : return rc;</span></span>
<span id="L323"><span class="lineNum"> 323</span> : : }</span>
<span id="L324"><span class="lineNum"> 324</span> : : </span>
<span id="L325"><span class="lineNum"> 325</span> : : /*</span>
<span id="L326"><span class="lineNum"> 326</span> : : * Use a lower timeout - there is strong evidence to suggest the</span>
<span id="L327"><span class="lineNum"> 327</span> : : * BMC won't respond, don't waste time spinning here just have the</span>
<span id="L328"><span class="lineNum"> 328</span> : : * high levels retry when the BMC might be back</span>
<span id="L329"><span class="lineNum"> 329</span> : : */</span>
<span id="L330"><span class="lineNum"> 330</span> :<span class="tlaGNC tlaBgGNC"> 3 : rc = wait_for_bmc(mbox_flash, 3);</span></span>
<span id="L331"><span class="lineNum"> 331</span> :<span class="tlaGNC"> 3 : if (rc)</span></span>
<span id="L332"><span class="lineNum"> 332</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Error waiting for BMC\n&quot;);</span></span>
<span id="L333"><span class="lineNum"> 333</span> : : </span>
<span id="L334"><span class="lineNum"> 334</span> :<span class="tlaGNC tlaBgGNC"> 3 : return rc;</span></span>
<span id="L335"><span class="lineNum"> 335</span> : : }</span>
<span id="L336"><span class="lineNum"> 336</span> : : </span>
<span id="L337"><span class="lineNum"> 337</span> :<span class="tlaGNC"> 394 : static int do_acks(struct mbox_flash_data *mbox_flash)</span></span>
<span id="L338"><span class="lineNum"> 338</span> : : {</span>
<span id="L339"><span class="lineNum"> 339</span> : : int rc;</span>
<span id="L340"><span class="lineNum"> 340</span> : : </span>
<span id="L341"><span class="lineNum"> 341</span> :<span class="tlaGNC"> 394 : if (!mbox_flash-&gt;ack)</span></span>
<span id="L342"><span class="lineNum"> 342</span> :<span class="tlaGNC"> 391 : return 0; /* Nothing to do */</span></span>
<span id="L343"><span class="lineNum"> 343</span> : : </span>
<span id="L344"><span class="lineNum"> 344</span> :<span class="tlaGNC"> 3 : rc = mbox_flash_ack(mbox_flash, bmc_mbox_get_attn_reg() &amp; MBOX_ATTN_ACK_MASK);</span></span>
<span id="L345"><span class="lineNum"> 345</span> :<span class="tlaGNC"> 3 : if (!rc)</span></span>
<span id="L346"><span class="lineNum"> 346</span> :<span class="tlaGNC"> 3 : mbox_flash-&gt;ack = false;</span></span>
<span id="L347"><span class="lineNum"> 347</span> : : </span>
<span id="L348"><span class="lineNum"> 348</span> :<span class="tlaGNC"> 3 : return rc;</span></span>
<span id="L349"><span class="lineNum"> 349</span> : : }</span>
<span id="L350"><span class="lineNum"> 350</span> : : </span>
<span id="L351"><span class="lineNum"> 351</span> :<span class="tlaGNC"> 202 : static void mbox_flash_do_nop(struct mbox_flash_data *mbox_flash __unused,</span></span>
<span id="L352"><span class="lineNum"> 352</span> : : struct bmc_mbox_msg *msg __unused)</span>
<span id="L353"><span class="lineNum"> 353</span> : : {</span>
<span id="L354"><span class="lineNum"> 354</span> :<span class="tlaGNC"> 202 : }</span></span>
<span id="L355"><span class="lineNum"> 355</span> : : </span>
<span id="L356"><span class="lineNum"> 356</span> :<span class="tlaUNC tlaBgUNC"> 0 : static void mbox_flash_do_illegal(struct mbox_flash_data *mbox_flash __unused,</span></span>
<span id="L357"><span class="lineNum"> 357</span> : : struct bmc_mbox_msg *msg __unused)</span>
<span id="L358"><span class="lineNum"> 358</span> : : {</span>
<span id="L359"><span class="lineNum"> 359</span> :<span class="tlaUNC"> 0 : prlog(PR_CRIT, &quot;Got response to unknown message type\n&quot;);</span></span>
<span id="L360"><span class="lineNum"> 360</span> :<span class="tlaUNC"> 0 : }</span></span>
<span id="L361"><span class="lineNum"> 361</span> : : </span>
<span id="L362"><span class="lineNum"> 362</span> : : /* Version 1, 2 and 3 compatible */</span>
<span id="L363"><span class="lineNum"> 363</span> :<span class="tlaGNC tlaBgGNC"> 4 : static void mbox_flash_do_get_mbox_info(struct mbox_flash_data *mbox_flash,</span></span>
<span id="L364"><span class="lineNum"> 364</span> : : struct bmc_mbox_msg *msg)</span>
<span id="L365"><span class="lineNum"> 365</span> : : {</span>
<span id="L366"><span class="lineNum"> 366</span> : : </span>
<span id="L367"><span class="lineNum"> 367</span> :<span class="tlaGNC"> 4 : mbox_flash-&gt;version = msg_get_u8(msg, 0);</span></span>
<span id="L368"><span class="lineNum"> 368</span> :<span class="tlaGNC"> 4 : switch (mbox_flash-&gt;version) {</span></span>
<span id="L369"><span class="lineNum"> 369</span> :<span class="tlaGNC"> 1 : case 1:</span></span>
<span id="L370"><span class="lineNum"> 370</span> : : /* Not all version 1 daemons set argument 5 correctly */</span>
<span id="L371"><span class="lineNum"> 371</span> :<span class="tlaGNC"> 1 : mbox_flash-&gt;shift = 12; /* Protocol hardcodes to 4K anyway */</span></span>
<span id="L372"><span class="lineNum"> 372</span> :<span class="tlaGNC"> 1 : mbox_flash-&gt;read.size = blocks_to_bytes(mbox_flash, msg_get_u16(msg, 1));</span></span>
<span id="L373"><span class="lineNum"> 373</span> :<span class="tlaGNC"> 1 : mbox_flash-&gt;write.size = blocks_to_bytes(mbox_flash, msg_get_u16(msg, 3));</span></span>
<span id="L374"><span class="lineNum"> 374</span> :<span class="tlaGNC"> 1 : break;</span></span>
<span id="L375"><span class="lineNum"> 375</span> :<span class="tlaGNC"> 3 : case 3:</span></span>
<span id="L376"><span class="lineNum"> 376</span> : : case 2:</span>
<span id="L377"><span class="lineNum"> 377</span> :<span class="tlaGNC"> 3 : mbox_flash-&gt;shift = msg_get_u8(msg, 5);</span></span>
<span id="L378"><span class="lineNum"> 378</span> :<span class="tlaGNC"> 3 : mbox_flash-&gt;timeout = msg_get_u16(msg, 6);</span></span>
<span id="L379"><span class="lineNum"> 379</span> :<span class="tlaGNC"> 3 : if (mbox_flash-&gt;timeout == 0)</span></span>
<span id="L380"><span class="lineNum"> 380</span> :<span class="tlaGNC"> 3 : mbox_flash-&gt;timeout = MBOX_DEFAULT_TIMEOUT;</span></span>
<span id="L381"><span class="lineNum"> 381</span> :<span class="tlaGNC"> 3 : break;</span></span>
<span id="L382"><span class="lineNum"> 382</span> : : }</span>
<span id="L383"><span class="lineNum"> 383</span> : : /* Callers will handle the case where the version is not known</span>
<span id="L384"><span class="lineNum"> 384</span> : : *</span>
<span id="L385"><span class="lineNum"> 385</span> : : * Here we deliberately ignore the 'default' sizes.</span>
<span id="L386"><span class="lineNum"> 386</span> : : * All windows opened will not provide a hint and we're</span>
<span id="L387"><span class="lineNum"> 387</span> : : * happy to let the BMC figure everything out.</span>
<span id="L388"><span class="lineNum"> 388</span> : : * Future optimisations may use the default size.</span>
<span id="L389"><span class="lineNum"> 389</span> : : */</span>
<span id="L390"><span class="lineNum"> 390</span> :<span class="tlaGNC"> 4 : }</span></span>
<span id="L391"><span class="lineNum"> 391</span> : : </span>
<span id="L392"><span class="lineNum"> 392</span> : : /* Version 2 and 3 compatible */</span>
<span id="L393"><span class="lineNum"> 393</span> :<span class="tlaGNC"> 3 : static void mbox_flash_do_get_flash_info(struct mbox_flash_data *mbox_flash,</span></span>
<span id="L394"><span class="lineNum"> 394</span> : : struct bmc_mbox_msg *msg)</span>
<span id="L395"><span class="lineNum"> 395</span> : : {</span>
<span id="L396"><span class="lineNum"> 396</span> :<span class="tlaGNC"> 3 : mbox_flash-&gt;total_size = blocks_to_bytes(mbox_flash, msg_get_u16(msg, 0));</span></span>
<span id="L397"><span class="lineNum"> 397</span> :<span class="tlaGNC"> 3 : mbox_flash-&gt;erase_granule = blocks_to_bytes(mbox_flash, msg_get_u16(msg, 2));</span></span>
<span id="L398"><span class="lineNum"> 398</span> :<span class="tlaGNC"> 3 : }</span></span>
<span id="L399"><span class="lineNum"> 399</span> : : </span>
<span id="L400"><span class="lineNum"> 400</span> :<span class="tlaGNC"> 1 : static void mbox_flash_do_get_flash_info_v1(struct mbox_flash_data *mbox_flash,</span></span>
<span id="L401"><span class="lineNum"> 401</span> : : struct bmc_mbox_msg *msg)</span>
<span id="L402"><span class="lineNum"> 402</span> : : {</span>
<span id="L403"><span class="lineNum"> 403</span> :<span class="tlaGNC"> 1 : mbox_flash-&gt;total_size = msg_get_u32(msg, 0);</span></span>
<span id="L404"><span class="lineNum"> 404</span> :<span class="tlaGNC"> 1 : mbox_flash-&gt;erase_granule = msg_get_u32(msg, 4);</span></span>
<span id="L405"><span class="lineNum"> 405</span> :<span class="tlaGNC"> 1 : }</span></span>
<span id="L406"><span class="lineNum"> 406</span> : : </span>
<span id="L407"><span class="lineNum"> 407</span> : : /* Version 2 and 3 compatible */</span>
<span id="L408"><span class="lineNum"> 408</span> :<span class="tlaGNC"> 471 : static void mbox_flash_do_create_read_window(struct mbox_flash_data *mbox_flash,</span></span>
<span id="L409"><span class="lineNum"> 409</span> : : struct bmc_mbox_msg *msg)</span>
<span id="L410"><span class="lineNum"> 410</span> : : {</span>
<span id="L411"><span class="lineNum"> 411</span> :<span class="tlaGNC"> 471 : mbox_flash-&gt;read.lpc_addr = blocks_to_bytes(mbox_flash, msg_get_u16(msg, 0));</span></span>
<span id="L412"><span class="lineNum"> 412</span> :<span class="tlaGNC"> 471 : mbox_flash-&gt;read.size = blocks_to_bytes(mbox_flash, msg_get_u16(msg, 2));</span></span>
<span id="L413"><span class="lineNum"> 413</span> :<span class="tlaGNC"> 471 : mbox_flash-&gt;read.cur_pos = blocks_to_bytes(mbox_flash, msg_get_u16(msg, 4));</span></span>
<span id="L414"><span class="lineNum"> 414</span> :<span class="tlaGNC"> 471 : mbox_flash-&gt;read.open = true;</span></span>
<span id="L415"><span class="lineNum"> 415</span> :<span class="tlaGNC"> 471 : mbox_flash-&gt;write.open = false;</span></span>
<span id="L416"><span class="lineNum"> 416</span> :<span class="tlaGNC"> 471 : }</span></span>
<span id="L417"><span class="lineNum"> 417</span> : : </span>
<span id="L418"><span class="lineNum"> 418</span> :<span class="tlaGNC"> 164 : static void mbox_flash_do_create_read_window_v1(struct mbox_flash_data *mbox_flash,</span></span>
<span id="L419"><span class="lineNum"> 419</span> : : struct bmc_mbox_msg *msg)</span>
<span id="L420"><span class="lineNum"> 420</span> : : {</span>
<span id="L421"><span class="lineNum"> 421</span> :<span class="tlaGNC"> 164 : mbox_flash-&gt;read.lpc_addr = blocks_to_bytes(mbox_flash, msg_get_u16(msg, 0));</span></span>
<span id="L422"><span class="lineNum"> 422</span> :<span class="tlaGNC"> 164 : mbox_flash-&gt;read.open = true;</span></span>
<span id="L423"><span class="lineNum"> 423</span> :<span class="tlaGNC"> 164 : mbox_flash-&gt;write.open = false;</span></span>
<span id="L424"><span class="lineNum"> 424</span> :<span class="tlaGNC"> 164 : }</span></span>
<span id="L425"><span class="lineNum"> 425</span> : : </span>
<span id="L426"><span class="lineNum"> 426</span> : : /* Version 2 and 3 compatible */</span>
<span id="L427"><span class="lineNum"> 427</span> :<span class="tlaGNC"> 72 : static void mbox_flash_do_create_write_window(struct mbox_flash_data *mbox_flash,</span></span>
<span id="L428"><span class="lineNum"> 428</span> : : struct bmc_mbox_msg *msg)</span>
<span id="L429"><span class="lineNum"> 429</span> : : {</span>
<span id="L430"><span class="lineNum"> 430</span> :<span class="tlaGNC"> 72 : mbox_flash-&gt;write.lpc_addr = blocks_to_bytes(mbox_flash, msg_get_u16(msg, 0));</span></span>
<span id="L431"><span class="lineNum"> 431</span> :<span class="tlaGNC"> 72 : mbox_flash-&gt;write.size = blocks_to_bytes(mbox_flash, msg_get_u16(msg, 2));</span></span>
<span id="L432"><span class="lineNum"> 432</span> :<span class="tlaGNC"> 72 : mbox_flash-&gt;write.cur_pos = blocks_to_bytes(mbox_flash, msg_get_u16(msg, 4));</span></span>
<span id="L433"><span class="lineNum"> 433</span> :<span class="tlaGNC"> 72 : mbox_flash-&gt;write.open = true;</span></span>
<span id="L434"><span class="lineNum"> 434</span> :<span class="tlaGNC"> 72 : mbox_flash-&gt;read.open = false;</span></span>
<span id="L435"><span class="lineNum"> 435</span> :<span class="tlaGNC"> 72 : }</span></span>
<span id="L436"><span class="lineNum"> 436</span> : : </span>
<span id="L437"><span class="lineNum"> 437</span> :<span class="tlaGNC"> 23 : static void mbox_flash_do_create_write_window_v1(struct mbox_flash_data *mbox_flash,</span></span>
<span id="L438"><span class="lineNum"> 438</span> : : struct bmc_mbox_msg *msg)</span>
<span id="L439"><span class="lineNum"> 439</span> : : {</span>
<span id="L440"><span class="lineNum"> 440</span> :<span class="tlaGNC"> 23 : mbox_flash-&gt;write.lpc_addr = blocks_to_bytes(mbox_flash, msg_get_u16(msg, 0));</span></span>
<span id="L441"><span class="lineNum"> 441</span> :<span class="tlaGNC"> 23 : mbox_flash-&gt;write.open = true;</span></span>
<span id="L442"><span class="lineNum"> 442</span> :<span class="tlaGNC"> 23 : mbox_flash-&gt;read.open = false;</span></span>
<span id="L443"><span class="lineNum"> 443</span> :<span class="tlaGNC"> 23 : }</span></span>
<span id="L444"><span class="lineNum"> 444</span> : : </span>
<span id="L445"><span class="lineNum"> 445</span> : : /* Version 1 and Version 2 compatible */</span>
<span id="L446"><span class="lineNum"> 446</span> :<span class="tlaUNC tlaBgUNC"> 0 : static void mbox_flash_do_close_window(struct mbox_flash_data *mbox_flash,</span></span>
<span id="L447"><span class="lineNum"> 447</span> : : struct bmc_mbox_msg *msg __unused)</span>
<span id="L448"><span class="lineNum"> 448</span> : : {</span>
<span id="L449"><span class="lineNum"> 449</span> :<span class="tlaUNC"> 0 : mbox_flash-&gt;read.open = false;</span></span>
<span id="L450"><span class="lineNum"> 450</span> :<span class="tlaUNC"> 0 : mbox_flash-&gt;write.open = false;</span></span>
<span id="L451"><span class="lineNum"> 451</span> :<span class="tlaUNC"> 0 : }</span></span>
<span id="L452"><span class="lineNum"> 452</span> : : </span>
<span id="L453"><span class="lineNum"> 453</span> :<span class="tlaGNC tlaBgGNC"> 3 : static int handle_reboot(struct mbox_flash_data *mbox_flash)</span></span>
<span id="L454"><span class="lineNum"> 454</span> : : {</span>
<span id="L455"><span class="lineNum"> 455</span> : : int rc;</span>
<span id="L456"><span class="lineNum"> 456</span> : : </span>
<span id="L457"><span class="lineNum"> 457</span> : : /*</span>
<span id="L458"><span class="lineNum"> 458</span> : : * If the BMC ready bit isn't present then we're basically</span>
<span id="L459"><span class="lineNum"> 459</span> : : * guaranteed to timeout trying to talk to it so just fail</span>
<span id="L460"><span class="lineNum"> 460</span> : : * whatever is trying to happen.</span>
<span id="L461"><span class="lineNum"> 461</span> : : * Importantly, we can't trust that the presence of the bit means</span>
<span id="L462"><span class="lineNum"> 462</span> : : * the daemon is ok - don't assume it is going to respond at all</span>
<span id="L463"><span class="lineNum"> 463</span> : : * from here onwards</span>
<span id="L464"><span class="lineNum"> 464</span> : : */</span>
<span id="L465"><span class="lineNum"> 465</span> :<span class="tlaGNC"> 3 : if (!(bmc_mbox_get_attn_reg() &amp; MBOX_ATTN_BMC_DAEMON_READY))</span></span>
<span id="L466"><span class="lineNum"> 466</span> :<span class="tlaUNC tlaBgUNC"> 0 : return FLASH_ERR_AGAIN;</span></span>
<span id="L467"><span class="lineNum"> 467</span> : : </span>
<span id="L468"><span class="lineNum"> 468</span> : : /* Clear this first so msg_send() doesn't freak out */</span>
<span id="L469"><span class="lineNum"> 469</span> :<span class="tlaGNC tlaBgGNC"> 3 : mbox_flash-&gt;reboot = false;</span></span>
<span id="L470"><span class="lineNum"> 470</span> : : </span>
<span id="L471"><span class="lineNum"> 471</span> :<span class="tlaGNC"> 3 : rc = do_acks(mbox_flash);</span></span>
<span id="L472"><span class="lineNum"> 472</span> :<span class="tlaGNC"> 3 : if (rc) {</span></span>
<span id="L473"><span class="lineNum"> 473</span> :<span class="tlaUNC tlaBgUNC"> 0 : if (rc == MBOX_R_TIMEOUT)</span></span>
<span id="L474"><span class="lineNum"> 474</span> :<span class="tlaUNC"> 0 : rc = FLASH_ERR_AGAIN;</span></span>
<span id="L475"><span class="lineNum"> 475</span> :<span class="tlaUNC"> 0 : mbox_flash-&gt;reboot = true;</span></span>
<span id="L476"><span class="lineNum"> 476</span> :<span class="tlaUNC"> 0 : return rc;</span></span>
<span id="L477"><span class="lineNum"> 477</span> : : }</span>
<span id="L478"><span class="lineNum"> 478</span> : : </span>
<span id="L479"><span class="lineNum"> 479</span> :<span class="tlaGNC tlaBgGNC"> 3 : rc = protocol_init(mbox_flash, 0);</span></span>
<span id="L480"><span class="lineNum"> 480</span> :<span class="tlaGNC"> 3 : if (rc)</span></span>
<span id="L481"><span class="lineNum"> 481</span> :<span class="tlaUNC tlaBgUNC"> 0 : mbox_flash-&gt;reboot = true;</span></span>
<span id="L482"><span class="lineNum"> 482</span> : : </span>
<span id="L483"><span class="lineNum"> 483</span> :<span class="tlaGNC tlaBgGNC"> 3 : return rc;</span></span>
<span id="L484"><span class="lineNum"> 484</span> : : }</span>
<span id="L485"><span class="lineNum"> 485</span> : : </span>
<span id="L486"><span class="lineNum"> 486</span> :<span class="tlaGNC"> 391 : static bool do_delayed_work(struct mbox_flash_data *mbox_flash)</span></span>
<span id="L487"><span class="lineNum"> 487</span> : : {</span>
<span id="L488"><span class="lineNum"> 488</span> :<span class="tlaGNC"> 785 : return is_paused(mbox_flash) || do_acks(mbox_flash) ||</span></span>
<span id="L489"><span class="lineNum"> 489</span> :<span class="tlaGNC"> 394 : (is_reboot(mbox_flash) &amp;&amp; handle_reboot(mbox_flash));</span></span>
<span id="L490"><span class="lineNum"> 490</span> : : }</span>
<span id="L491"><span class="lineNum"> 491</span> : : </span>
<span id="L492"><span class="lineNum"> 492</span> :<span class="tlaGNC"> 99 : static int mbox_flash_mark_write(struct mbox_flash_data *mbox_flash,</span></span>
<span id="L493"><span class="lineNum"> 493</span> : : uint64_t pos, uint64_t len, int type)</span>
<span id="L494"><span class="lineNum"> 494</span> : : {</span>
<span id="L495"><span class="lineNum"> 495</span> :<span class="tlaGNC"> 99 : struct bmc_mbox_msg msg = MSG_CREATE(type);</span></span>
<span id="L496"><span class="lineNum"> 496</span> : : int rc;</span>
<span id="L497"><span class="lineNum"> 497</span> : : </span>
<span id="L498"><span class="lineNum"> 498</span> :<span class="tlaGNC"> 99 : if (mbox_flash-&gt;version == 1) {</span></span>
<span id="L499"><span class="lineNum"> 499</span> :<span class="tlaGNC"> 24 : uint32_t start = ALIGN_DOWN(pos, 1 &lt;&lt; mbox_flash-&gt;shift);</span></span>
<span id="L500"><span class="lineNum"> 500</span> :<span class="tlaGNC"> 24 : msg_put_u16(&amp;msg, 0, bytes_to_blocks(mbox_flash, pos));</span></span>
<span id="L501"><span class="lineNum"> 501</span> : : /*</span>
<span id="L502"><span class="lineNum"> 502</span> : : * We need to make sure that we mark dirty until up to atleast</span>
<span id="L503"><span class="lineNum"> 503</span> : : * pos + len.</span>
<span id="L504"><span class="lineNum"> 504</span> : : */</span>
<span id="L505"><span class="lineNum"> 505</span> :<span class="tlaGNC"> 24 : msg_put_u32(&amp;msg, 2, pos + len - start);</span></span>
<span id="L506"><span class="lineNum"> 506</span> : : } else {</span>
<span id="L507"><span class="lineNum"> 507</span> :<span class="tlaGNC"> 75 : uint64_t window_pos = pos - mbox_flash-&gt;write.cur_pos;</span></span>
<span id="L508"><span class="lineNum"> 508</span> :<span class="tlaGNC"> 75 : uint16_t start = bytes_to_blocks(mbox_flash, window_pos);</span></span>
<span id="L509"><span class="lineNum"> 509</span> :<span class="tlaGNC"> 75 : uint16_t end = bytes_to_blocks(mbox_flash,</span></span>
<span id="L510"><span class="lineNum"> 510</span> :<span class="tlaGNC"> 75 : ALIGN_UP(window_pos + len,</span></span>
<span id="L511"><span class="lineNum"> 511</span> : : 1 &lt;&lt; mbox_flash-&gt;shift));</span>
<span id="L512"><span class="lineNum"> 512</span> : : </span>
<span id="L513"><span class="lineNum"> 513</span> :<span class="tlaGNC"> 75 : msg_put_u16(&amp;msg, 0, start);</span></span>
<span id="L514"><span class="lineNum"> 514</span> :<span class="tlaGNC"> 75 : msg_put_u16(&amp;msg, 2, end - start); /* Total Length */</span></span>
<span id="L515"><span class="lineNum"> 515</span> : : }</span>
<span id="L516"><span class="lineNum"> 516</span> : : </span>
<span id="L517"><span class="lineNum"> 517</span> :<span class="tlaGNC"> 99 : rc = msg_send(mbox_flash, &amp;msg, mbox_flash-&gt;timeout);</span></span>
<span id="L518"><span class="lineNum"> 518</span> :<span class="tlaGNC"> 99 : if (rc) {</span></span>
<span id="L519"><span class="lineNum"> 519</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Failed to enqueue/send BMC MBOX message\n&quot;);</span></span>
<span id="L520"><span class="lineNum"> 520</span> :<span class="tlaUNC"> 0 : return rc;</span></span>
<span id="L521"><span class="lineNum"> 521</span> : : }</span>
<span id="L522"><span class="lineNum"> 522</span> : : </span>
<span id="L523"><span class="lineNum"> 523</span> :<span class="tlaGNC tlaBgGNC"> 99 : rc = wait_for_bmc(mbox_flash, mbox_flash-&gt;timeout);</span></span>
<span id="L524"><span class="lineNum"> 524</span> :<span class="tlaGNC"> 99 : if (rc)</span></span>
<span id="L525"><span class="lineNum"> 525</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Error waiting for BMC\n&quot;);</span></span>
<span id="L526"><span class="lineNum"> 526</span> : : </span>
<span id="L527"><span class="lineNum"> 527</span> :<span class="tlaGNC tlaBgGNC"> 99 : return rc;</span></span>
<span id="L528"><span class="lineNum"> 528</span> : : }</span>
<span id="L529"><span class="lineNum"> 529</span> : : </span>
<span id="L530"><span class="lineNum"> 530</span> :<span class="tlaGNC"> 96 : static int mbox_flash_dirty(struct mbox_flash_data *mbox_flash, uint64_t pos,</span></span>
<span id="L531"><span class="lineNum"> 531</span> : : uint64_t len)</span>
<span id="L532"><span class="lineNum"> 532</span> : : {</span>
<span id="L533"><span class="lineNum"> 533</span> :<span class="tlaGNC"> 96 : if (!mbox_flash-&gt;write.open) {</span></span>
<span id="L534"><span class="lineNum"> 534</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Attempting to dirty without an open write window\n&quot;);</span></span>
<span id="L535"><span class="lineNum"> 535</span> :<span class="tlaUNC"> 0 : return FLASH_ERR_DEVICE_GONE;</span></span>
<span id="L536"><span class="lineNum"> 536</span> : : }</span>
<span id="L537"><span class="lineNum"> 537</span> : : </span>
<span id="L538"><span class="lineNum"> 538</span> :<span class="tlaGNC tlaBgGNC"> 96 : return mbox_flash_mark_write(mbox_flash, pos, len,</span></span>
<span id="L539"><span class="lineNum"> 539</span> : : MBOX_C_MARK_WRITE_DIRTY);</span>
<span id="L540"><span class="lineNum"> 540</span> : : }</span>
<span id="L541"><span class="lineNum"> 541</span> : : </span>
<span id="L542"><span class="lineNum"> 542</span> :<span class="tlaGNC"> 3 : static int mbox_flash_erase(struct mbox_flash_data *mbox_flash, uint64_t pos,</span></span>
<span id="L543"><span class="lineNum"> 543</span> : : uint64_t len)</span>
<span id="L544"><span class="lineNum"> 544</span> : : {</span>
<span id="L545"><span class="lineNum"> 545</span> :<span class="tlaGNC"> 3 : if (!mbox_flash-&gt;write.open) {</span></span>
<span id="L546"><span class="lineNum"> 546</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Attempting to erase without an open write window\n&quot;);</span></span>
<span id="L547"><span class="lineNum"> 547</span> :<span class="tlaUNC"> 0 : return FLASH_ERR_DEVICE_GONE;</span></span>
<span id="L548"><span class="lineNum"> 548</span> : : }</span>
<span id="L549"><span class="lineNum"> 549</span> : : </span>
<span id="L550"><span class="lineNum"> 550</span> :<span class="tlaGNC tlaBgGNC"> 3 : return mbox_flash_mark_write(mbox_flash, pos, len,</span></span>
<span id="L551"><span class="lineNum"> 551</span> : : MBOX_C_MARK_WRITE_ERASED);</span>
<span id="L552"><span class="lineNum"> 552</span> : : }</span>
<span id="L553"><span class="lineNum"> 553</span> : : </span>
<span id="L554"><span class="lineNum"> 554</span> :<span class="tlaGNC"> 99 : static int mbox_flash_flush(struct mbox_flash_data *mbox_flash)</span></span>
<span id="L555"><span class="lineNum"> 555</span> : : {</span>
<span id="L556"><span class="lineNum"> 556</span> :<span class="tlaGNC"> 99 : struct bmc_mbox_msg msg = MSG_CREATE(MBOX_C_WRITE_FLUSH);</span></span>
<span id="L557"><span class="lineNum"> 557</span> : : int rc;</span>
<span id="L558"><span class="lineNum"> 558</span> : : </span>
<span id="L559"><span class="lineNum"> 559</span> :<span class="tlaGNC"> 99 : if (!mbox_flash-&gt;write.open) {</span></span>
<span id="L560"><span class="lineNum"> 560</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Attempting to flush without an open write window\n&quot;);</span></span>
<span id="L561"><span class="lineNum"> 561</span> :<span class="tlaUNC"> 0 : return FLASH_ERR_DEVICE_GONE;</span></span>
<span id="L562"><span class="lineNum"> 562</span> : : }</span>
<span id="L563"><span class="lineNum"> 563</span> : : </span>
<span id="L564"><span class="lineNum"> 564</span> :<span class="tlaGNC tlaBgGNC"> 99 : rc = msg_send(mbox_flash, &amp;msg, mbox_flash-&gt;timeout);</span></span>
<span id="L565"><span class="lineNum"> 565</span> :<span class="tlaGNC"> 99 : if (rc) {</span></span>
<span id="L566"><span class="lineNum"> 566</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Failed to enqueue/send BMC MBOX message\n&quot;);</span></span>
<span id="L567"><span class="lineNum"> 567</span> :<span class="tlaUNC"> 0 : return rc;</span></span>
<span id="L568"><span class="lineNum"> 568</span> : : }</span>
<span id="L569"><span class="lineNum"> 569</span> : : </span>
<span id="L570"><span class="lineNum"> 570</span> :<span class="tlaGNC tlaBgGNC"> 99 : rc = wait_for_bmc(mbox_flash, mbox_flash-&gt;timeout);</span></span>
<span id="L571"><span class="lineNum"> 571</span> :<span class="tlaGNC"> 99 : if (rc)</span></span>
<span id="L572"><span class="lineNum"> 572</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Error waiting for BMC\n&quot;);</span></span>
<span id="L573"><span class="lineNum"> 573</span> : : </span>
<span id="L574"><span class="lineNum"> 574</span> :<span class="tlaGNC tlaBgGNC"> 99 : return rc;</span></span>
<span id="L575"><span class="lineNum"> 575</span> : : }</span>
<span id="L576"><span class="lineNum"> 576</span> : : </span>
<span id="L577"><span class="lineNum"> 577</span> : : /* Is the current window able perform the complete operation */</span>
<span id="L578"><span class="lineNum"> 578</span> :<span class="tlaGNC"> 762 : static bool mbox_window_valid(struct lpc_window *win, uint64_t pos,</span></span>
<span id="L579"><span class="lineNum"> 579</span> : : uint64_t len)</span>
<span id="L580"><span class="lineNum"> 580</span> : : {</span>
<span id="L581"><span class="lineNum"> 581</span> :<span class="tlaGNC"> 762 : if (!win-&gt;open)</span></span>
<span id="L582"><span class="lineNum"> 582</span> :<span class="tlaGNC"> 16 : return false;</span></span>
<span id="L583"><span class="lineNum"> 583</span> :<span class="tlaGNC"> 746 : if (pos &lt; win-&gt;cur_pos) /* start */</span></span>
<span id="L584"><span class="lineNum"> 584</span> :<span class="tlaGNC"> 177 : return false;</span></span>
<span id="L585"><span class="lineNum"> 585</span> :<span class="tlaGNC"> 569 : if ((pos + len) &gt; (win-&gt;cur_pos + win-&gt;size)) /* end */</span></span>
<span id="L586"><span class="lineNum"> 586</span> :<span class="tlaGNC"> 541 : return false;</span></span>
<span id="L587"><span class="lineNum"> 587</span> :<span class="tlaGNC"> 28 : return true;</span></span>
<span id="L588"><span class="lineNum"> 588</span> : : }</span>
<span id="L589"><span class="lineNum"> 589</span> : : </span>
<span id="L590"><span class="lineNum"> 590</span> :<span class="tlaGNC"> 762 : static int mbox_window_move(struct mbox_flash_data *mbox_flash,</span></span>
<span id="L591"><span class="lineNum"> 591</span> : : struct lpc_window *win, uint8_t command,</span>
<span id="L592"><span class="lineNum"> 592</span> : : uint64_t pos, uint64_t len, uint64_t *size)</span>
<span id="L593"><span class="lineNum"> 593</span> : : {</span>
<span id="L594"><span class="lineNum"> 594</span> :<span class="tlaGNC"> 762 : struct bmc_mbox_msg msg = MSG_CREATE(command);</span></span>
<span id="L595"><span class="lineNum"> 595</span> : : int rc;</span>
<span id="L596"><span class="lineNum"> 596</span> : : </span>
<span id="L597"><span class="lineNum"> 597</span> : : /* Is the window currently open valid */</span>
<span id="L598"><span class="lineNum"> 598</span> :<span class="tlaGNC"> 762 : if (mbox_window_valid(win, pos, len)) {</span></span>
<span id="L599"><span class="lineNum"> 599</span> :<span class="tlaGNC"> 28 : *size = len;</span></span>
<span id="L600"><span class="lineNum"> 600</span> :<span class="tlaGNC"> 28 : return 0;</span></span>
<span id="L601"><span class="lineNum"> 601</span> : : }</span>
<span id="L602"><span class="lineNum"> 602</span> : : </span>
<span id="L603"><span class="lineNum"> 603</span> : : /* V1 needs to remember where it has opened the window, note it</span>
<span id="L604"><span class="lineNum"> 604</span> : : * here.</span>
<span id="L605"><span class="lineNum"> 605</span> : : * If we're running V2 the response to the CREATE_*_WINDOW command</span>
<span id="L606"><span class="lineNum"> 606</span> : : * will overwrite what we've noted here.</span>
<span id="L607"><span class="lineNum"> 607</span> : : */</span>
<span id="L608"><span class="lineNum"> 608</span> :<span class="tlaGNC"> 734 : win-&gt;cur_pos = pos &amp; ~mbox_flash_mask(mbox_flash);</span></span>
<span id="L609"><span class="lineNum"> 609</span> : : </span>
<span id="L610"><span class="lineNum"> 610</span> :<span class="tlaGNC"> 734 : msg_put_u16(&amp;msg, 0, bytes_to_blocks(mbox_flash, pos));</span></span>
<span id="L611"><span class="lineNum"> 611</span> :<span class="tlaGNC"> 734 : rc = msg_send(mbox_flash, &amp;msg, mbox_flash-&gt;timeout);</span></span>
<span id="L612"><span class="lineNum"> 612</span> :<span class="tlaGNC"> 734 : if (rc) {</span></span>
<span id="L613"><span class="lineNum"> 613</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Failed to enqueue/send BMC MBOX message\n&quot;);</span></span>
<span id="L614"><span class="lineNum"> 614</span> :<span class="tlaUNC"> 0 : return rc;</span></span>
<span id="L615"><span class="lineNum"> 615</span> : : }</span>
<span id="L616"><span class="lineNum"> 616</span> : : </span>
<span id="L617"><span class="lineNum"> 617</span> :<span class="tlaGNC tlaBgGNC"> 734 : mbox_flash-&gt;read.open = false;</span></span>
<span id="L618"><span class="lineNum"> 618</span> :<span class="tlaGNC"> 734 : mbox_flash-&gt;write.open = false;</span></span>
<span id="L619"><span class="lineNum"> 619</span> : : </span>
<span id="L620"><span class="lineNum"> 620</span> :<span class="tlaGNC"> 734 : rc = wait_for_bmc(mbox_flash, mbox_flash-&gt;timeout);</span></span>
<span id="L621"><span class="lineNum"> 621</span> :<span class="tlaGNC"> 734 : if (rc) {</span></span>
<span id="L622"><span class="lineNum"> 622</span> :<span class="tlaGNC"> 4 : prlog(PR_ERR, &quot;Error waiting for BMC\n&quot;);</span></span>
<span id="L623"><span class="lineNum"> 623</span> :<span class="tlaGNC"> 4 : return rc;</span></span>
<span id="L624"><span class="lineNum"> 624</span> : : }</span>
<span id="L625"><span class="lineNum"> 625</span> : : </span>
<span id="L626"><span class="lineNum"> 626</span> :<span class="tlaGNC"> 730 : *size = len;</span></span>
<span id="L627"><span class="lineNum"> 627</span> : : /* Is length past the end of the window? */</span>
<span id="L628"><span class="lineNum"> 628</span> :<span class="tlaGNC"> 730 : if ((pos + len) &gt; (win-&gt;cur_pos + win-&gt;size))</span></span>
<span id="L629"><span class="lineNum"> 629</span> : : /* Adjust size to meet current window */</span>
<span id="L630"><span class="lineNum"> 630</span> :<span class="tlaGNC"> 372 : *size = (win-&gt;cur_pos + win-&gt;size) - pos;</span></span>
<span id="L631"><span class="lineNum"> 631</span> : : </span>
<span id="L632"><span class="lineNum"> 632</span> : : /*</span>
<span id="L633"><span class="lineNum"> 633</span> : : * It doesn't make sense for size to be zero if len isn't zero.</span>
<span id="L634"><span class="lineNum"> 634</span> : : * If this condition happens we're most likely going to spin since</span>
<span id="L635"><span class="lineNum"> 635</span> : : * the caller will likely decerement pos by zero then call this</span>
<span id="L636"><span class="lineNum"> 636</span> : : * again.</span>
<span id="L637"><span class="lineNum"> 637</span> : : * Debateable as to if this should return non zero. At least the</span>
<span id="L638"><span class="lineNum"> 638</span> : : * bug will be obvious from the barf.</span>
<span id="L639"><span class="lineNum"> 639</span> : : */</span>
<span id="L640"><span class="lineNum"> 640</span> :<span class="tlaGNC"> 730 : if (len != 0 &amp;&amp; *size == 0) {</span></span>
<span id="L641"><span class="lineNum"> 641</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Failed read/write!\n&quot;);</span></span>
<span id="L642"><span class="lineNum"> 642</span> :<span class="tlaUNC"> 0 : prlog(PR_ERR, &quot;Please update your BMC firmware\n&quot;);</span></span>
<span id="L643"><span class="lineNum"> 643</span> :<span class="tlaUNC"> 0 : prlog(PR_ERR, &quot;Move window is indicating size zero!\n&quot;);</span></span>
<span id="L644"><span class="lineNum"> 644</span> :<span class="tlaUNC"> 0 : prlog(PR_ERR, &quot;pos: 0x%&quot; PRIx64 &quot;, len: 0x%&quot; PRIx64 &quot;\n&quot;, pos, len);</span></span>
<span id="L645"><span class="lineNum"> 645</span> :<span class="tlaUNC"> 0 : prlog(PR_ERR, &quot;win pos: 0x%08x win size: 0x%08x\n&quot;, win-&gt;cur_pos, win-&gt;size);</span></span>
<span id="L646"><span class="lineNum"> 646</span> : : /*</span>
<span id="L647"><span class="lineNum"> 647</span> : : * In practice skiboot gets stuck and this eventually</span>
<span id="L648"><span class="lineNum"> 648</span> : : * brings down the host. Just fail pass the error back</span>
<span id="L649"><span class="lineNum"> 649</span> : : * up and hope someone makes a good decision</span>
<span id="L650"><span class="lineNum"> 650</span> : : */</span>
<span id="L651"><span class="lineNum"> 651</span> :<span class="tlaUNC"> 0 : return MBOX_R_SYSTEM_ERROR;</span></span>
<span id="L652"><span class="lineNum"> 652</span> : : }</span>
<span id="L653"><span class="lineNum"> 653</span> : : </span>
<span id="L654"><span class="lineNum"> 654</span> :<span class="tlaGNC tlaBgGNC"> 730 : return rc;</span></span>
<span id="L655"><span class="lineNum"> 655</span> : : }</span>
<span id="L656"><span class="lineNum"> 656</span> : : </span>
<span id="L657"><span class="lineNum"> 657</span> :<span class="tlaGNC"> 20 : static int mbox_flash_write(struct blocklevel_device *bl, uint64_t pos,</span></span>
<span id="L658"><span class="lineNum"> 658</span> : : const void *buf, uint64_t len)</span>
<span id="L659"><span class="lineNum"> 659</span> : : {</span>
<span id="L660"><span class="lineNum"> 660</span> : : struct mbox_flash_data *mbox_flash;</span>
<span id="L661"><span class="lineNum"> 661</span> : : uint64_t size;</span>
<span id="L662"><span class="lineNum"> 662</span> : : </span>
<span id="L663"><span class="lineNum"> 663</span> :<span class="tlaGNC"> 20 : int rc = 0;</span></span>
<span id="L664"><span class="lineNum"> 664</span> : : </span>
<span id="L665"><span class="lineNum"> 665</span> : : /* LPC is only 32bit */</span>
<span id="L666"><span class="lineNum"> 666</span> :<span class="tlaGNC"> 20 : if (pos &gt; UINT_MAX || len &gt; UINT_MAX)</span></span>
<span id="L667"><span class="lineNum"> 667</span> :<span class="tlaUNC tlaBgUNC"> 0 : return FLASH_ERR_PARM_ERROR;</span></span>
<span id="L668"><span class="lineNum"> 668</span> : : </span>
<span id="L669"><span class="lineNum"> 669</span> :<span class="tlaGNC tlaBgGNC"> 20 : mbox_flash = container_of(bl, struct mbox_flash_data, bl);</span></span>
<span id="L670"><span class="lineNum"> 670</span> : : </span>
<span id="L671"><span class="lineNum"> 671</span> :<span class="tlaGNC"> 20 : if (do_delayed_work(mbox_flash))</span></span>
<span id="L672"><span class="lineNum"> 672</span> :<span class="tlaUNC tlaBgUNC"> 0 : return FLASH_ERR_AGAIN;</span></span>
<span id="L673"><span class="lineNum"> 673</span> : : </span>
<span id="L674"><span class="lineNum"> 674</span> :<span class="tlaGNC tlaBgGNC"> 20 : prlog(PR_TRACE, &quot;Flash write at %#&quot; PRIx64 &quot; for %#&quot; PRIx64 &quot;\n&quot;, pos, len);</span></span>
<span id="L675"><span class="lineNum"> 675</span> :<span class="tlaGNC"> 116 : while (len &gt; 0) {</span></span>
<span id="L676"><span class="lineNum"> 676</span> : : /* Move window and get a new size to read */</span>
<span id="L677"><span class="lineNum"> 677</span> :<span class="tlaGNC"> 96 : rc = mbox_window_move(mbox_flash, &amp;mbox_flash-&gt;write,</span></span>
<span id="L678"><span class="lineNum"> 678</span> : : MBOX_C_CREATE_WRITE_WINDOW, pos, len,</span>
<span id="L679"><span class="lineNum"> 679</span> : : &amp;size);</span>
<span id="L680"><span class="lineNum"> 680</span> :<span class="tlaGNC"> 96 : if (rc)</span></span>
<span id="L681"><span class="lineNum"> 681</span> :<span class="tlaUNC tlaBgUNC"> 0 : return rc;</span></span>
<span id="L682"><span class="lineNum"> 682</span> : : </span>
<span id="L683"><span class="lineNum"> 683</span> : : /* Perform the read for this window */</span>
<span id="L684"><span class="lineNum"> 684</span> :<span class="tlaGNC tlaBgGNC"> 96 : rc = lpc_window_write(mbox_flash, pos, buf, size);</span></span>
<span id="L685"><span class="lineNum"> 685</span> :<span class="tlaGNC"> 96 : if (rc)</span></span>
<span id="L686"><span class="lineNum"> 686</span> :<span class="tlaUNC tlaBgUNC"> 0 : return rc;</span></span>
<span id="L687"><span class="lineNum"> 687</span> : : </span>
<span id="L688"><span class="lineNum"> 688</span> :<span class="tlaGNC tlaBgGNC"> 96 : rc = mbox_flash_dirty(mbox_flash, pos, size);</span></span>
<span id="L689"><span class="lineNum"> 689</span> :<span class="tlaGNC"> 96 : if (rc)</span></span>
<span id="L690"><span class="lineNum"> 690</span> :<span class="tlaUNC tlaBgUNC"> 0 : return rc;</span></span>
<span id="L691"><span class="lineNum"> 691</span> : : </span>
<span id="L692"><span class="lineNum"> 692</span> : : /*</span>
<span id="L693"><span class="lineNum"> 693</span> : : * Must flush here as changing the window contents</span>
<span id="L694"><span class="lineNum"> 694</span> : : * without flushing entitles the BMC to throw away the</span>
<span id="L695"><span class="lineNum"> 695</span> : : * data. Unlike the read case there isn't a need to explicitly</span>
<span id="L696"><span class="lineNum"> 696</span> : : * validate the window, the flush command will fail if the</span>
<span id="L697"><span class="lineNum"> 697</span> : : * window was compromised.</span>
<span id="L698"><span class="lineNum"> 698</span> : : */</span>
<span id="L699"><span class="lineNum"> 699</span> :<span class="tlaGNC tlaBgGNC"> 96 : rc = mbox_flash_flush(mbox_flash);</span></span>
<span id="L700"><span class="lineNum"> 700</span> :<span class="tlaGNC"> 96 : if (rc)</span></span>
<span id="L701"><span class="lineNum"> 701</span> :<span class="tlaUNC tlaBgUNC"> 0 : return rc;</span></span>
<span id="L702"><span class="lineNum"> 702</span> : : </span>
<span id="L703"><span class="lineNum"> 703</span> :<span class="tlaGNC tlaBgGNC"> 96 : len -= size;</span></span>
<span id="L704"><span class="lineNum"> 704</span> :<span class="tlaGNC"> 96 : pos += size;</span></span>
<span id="L705"><span class="lineNum"> 705</span> :<span class="tlaGNC"> 96 : buf += size;</span></span>
<span id="L706"><span class="lineNum"> 706</span> : : }</span>
<span id="L707"><span class="lineNum"> 707</span> :<span class="tlaGNC"> 20 : return rc;</span></span>
<span id="L708"><span class="lineNum"> 708</span> : : }</span>
<span id="L709"><span class="lineNum"> 709</span> : : </span>
<span id="L710"><span class="lineNum"> 710</span> :<span class="tlaGNC"> 367 : static int mbox_flash_read(struct blocklevel_device *bl, uint64_t pos,</span></span>
<span id="L711"><span class="lineNum"> 711</span> : : void *buf, uint64_t len)</span>
<span id="L712"><span class="lineNum"> 712</span> : : {</span>
<span id="L713"><span class="lineNum"> 713</span> : : struct mbox_flash_data *mbox_flash;</span>
<span id="L714"><span class="lineNum"> 714</span> : : uint64_t size;</span>
<span id="L715"><span class="lineNum"> 715</span> : : </span>
<span id="L716"><span class="lineNum"> 716</span> :<span class="tlaGNC"> 367 : int rc = 0;</span></span>
<span id="L717"><span class="lineNum"> 717</span> : : </span>
<span id="L718"><span class="lineNum"> 718</span> : : /* LPC is only 32bit */</span>
<span id="L719"><span class="lineNum"> 719</span> :<span class="tlaGNC"> 367 : if (pos &gt; UINT_MAX || len &gt; UINT_MAX)</span></span>
<span id="L720"><span class="lineNum"> 720</span> :<span class="tlaUNC tlaBgUNC"> 0 : return FLASH_ERR_PARM_ERROR;</span></span>
<span id="L721"><span class="lineNum"> 721</span> : : </span>
<span id="L722"><span class="lineNum"> 722</span> :<span class="tlaGNC tlaBgGNC"> 367 : mbox_flash = container_of(bl, struct mbox_flash_data, bl);</span></span>
<span id="L723"><span class="lineNum"> 723</span> : : </span>
<span id="L724"><span class="lineNum"> 724</span> :<span class="tlaGNC"> 367 : if (do_delayed_work(mbox_flash))</span></span>
<span id="L725"><span class="lineNum"> 725</span> :<span class="tlaUNC tlaBgUNC"> 0 : return FLASH_ERR_AGAIN;</span></span>
<span id="L726"><span class="lineNum"> 726</span> : : </span>
<span id="L727"><span class="lineNum"> 727</span> :<span class="tlaGNC tlaBgGNC"> 367 : prlog(PR_TRACE, &quot;Flash read at %#&quot; PRIx64 &quot; for %#&quot; PRIx64 &quot;\n&quot;, pos, len);</span></span>
<span id="L728"><span class="lineNum"> 728</span> :<span class="tlaGNC"> 1026 : while (len &gt; 0) {</span></span>
<span id="L729"><span class="lineNum"> 729</span> : : /* Move window and get a new size to read */</span>
<span id="L730"><span class="lineNum"> 730</span> :<span class="tlaGNC"> 663 : rc = mbox_window_move(mbox_flash, &amp;mbox_flash-&gt;read,</span></span>
<span id="L731"><span class="lineNum"> 731</span> : : MBOX_C_CREATE_READ_WINDOW, pos,</span>
<span id="L732"><span class="lineNum"> 732</span> : : len, &amp;size);</span>
<span id="L733"><span class="lineNum"> 733</span> :<span class="tlaGNC"> 663 : if (rc)</span></span>
<span id="L734"><span class="lineNum"> 734</span> :<span class="tlaGNC"> 4 : return rc;</span></span>
<span id="L735"><span class="lineNum"> 735</span> : : </span>
<span id="L736"><span class="lineNum"> 736</span> : : /* Perform the read for this window */</span>
<span id="L737"><span class="lineNum"> 737</span> :<span class="tlaGNC"> 659 : rc = lpc_window_read(mbox_flash, pos, buf, size);</span></span>
<span id="L738"><span class="lineNum"> 738</span> :<span class="tlaGNC"> 659 : if (rc)</span></span>
<span id="L739"><span class="lineNum"> 739</span> :<span class="tlaUNC tlaBgUNC"> 0 : return rc;</span></span>
<span id="L740"><span class="lineNum"> 740</span> : : </span>
<span id="L741"><span class="lineNum"> 741</span> :<span class="tlaGNC tlaBgGNC"> 659 : len -= size;</span></span>
<span id="L742"><span class="lineNum"> 742</span> :<span class="tlaGNC"> 659 : pos += size;</span></span>
<span id="L743"><span class="lineNum"> 743</span> :<span class="tlaGNC"> 659 : buf += size;</span></span>
<span id="L744"><span class="lineNum"> 744</span> : : /*</span>
<span id="L745"><span class="lineNum"> 745</span> : : * Ensure my window is still open, if it isn't we can't trust</span>
<span id="L746"><span class="lineNum"> 746</span> : : * what we read</span>
<span id="L747"><span class="lineNum"> 747</span> : : */</span>
<span id="L748"><span class="lineNum"> 748</span> :<span class="tlaGNC"> 659 : if (!is_valid(mbox_flash, &amp;mbox_flash-&gt;read))</span></span>
<span id="L749"><span class="lineNum"> 749</span> :<span class="tlaUNC tlaBgUNC"> 0 : return FLASH_ERR_AGAIN;</span></span>
<span id="L750"><span class="lineNum"> 750</span> : : }</span>
<span id="L751"><span class="lineNum"> 751</span> :<span class="tlaGNC tlaBgGNC"> 363 : return rc;</span></span>
<span id="L752"><span class="lineNum"> 752</span> : : }</span>
<span id="L753"><span class="lineNum"> 753</span> : : </span>
<span id="L754"><span class="lineNum"> 754</span> :<span class="tlaGNC"> 1 : static bool mbox_flash_reset(struct blocklevel_device *bl)</span></span>
<span id="L755"><span class="lineNum"> 755</span> : : {</span>
<span id="L756"><span class="lineNum"> 756</span> : : int rc;</span>
<span id="L757"><span class="lineNum"> 757</span> : : struct mbox_flash_data *mbox_flash;</span>
<span id="L758"><span class="lineNum"> 758</span> :<span class="tlaGNC"> 1 : struct bmc_mbox_msg msg = MSG_CREATE(MBOX_C_RESET_STATE);</span></span>
<span id="L759"><span class="lineNum"> 759</span> : : </span>
<span id="L760"><span class="lineNum"> 760</span> :<span class="tlaGNC"> 1 : prlog(PR_NOTICE, &quot;MBOX reset\n&quot;);</span></span>
<span id="L761"><span class="lineNum"> 761</span> :<span class="tlaGNC"> 1 : mbox_flash = container_of(bl, struct mbox_flash_data, bl);</span></span>
<span id="L762"><span class="lineNum"> 762</span> : : </span>
<span id="L763"><span class="lineNum"> 763</span> :<span class="tlaGNC"> 1 : rc = msg_send(mbox_flash, &amp;msg, mbox_flash-&gt;timeout);</span></span>
<span id="L764"><span class="lineNum"> 764</span> :<span class="tlaGNC"> 1 : if (rc) {</span></span>
<span id="L765"><span class="lineNum"> 765</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Failed to enqueue/send BMC MBOX RESET msg\n&quot;);</span></span>
<span id="L766"><span class="lineNum"> 766</span> :<span class="tlaUNC"> 0 : return false;</span></span>
<span id="L767"><span class="lineNum"> 767</span> : : }</span>
<span id="L768"><span class="lineNum"> 768</span> :<span class="tlaGNC tlaBgGNC"> 1 : if (wait_for_bmc(mbox_flash, mbox_flash-&gt;timeout)) {</span></span>
<span id="L769"><span class="lineNum"> 769</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Error waiting for BMC\n&quot;);</span></span>
<span id="L770"><span class="lineNum"> 770</span> :<span class="tlaUNC"> 0 : return false;</span></span>
<span id="L771"><span class="lineNum"> 771</span> : : }</span>
<span id="L772"><span class="lineNum"> 772</span> : : </span>
<span id="L773"><span class="lineNum"> 773</span> :<span class="tlaGNC tlaBgGNC"> 1 : return true;</span></span>
<span id="L774"><span class="lineNum"> 774</span> : : }</span>
<span id="L775"><span class="lineNum"> 775</span> : : </span>
<span id="L776"><span class="lineNum"> 776</span> :<span class="tlaGNC"> 4 : static int mbox_flash_get_info(struct blocklevel_device *bl, const char **name,</span></span>
<span id="L777"><span class="lineNum"> 777</span> : : uint64_t *total_size, uint32_t *erase_granule)</span>
<span id="L778"><span class="lineNum"> 778</span> : : {</span>
<span id="L779"><span class="lineNum"> 779</span> :<span class="tlaGNC"> 4 : struct bmc_mbox_msg msg = MSG_CREATE(MBOX_C_GET_FLASH_INFO);</span></span>
<span id="L780"><span class="lineNum"> 780</span> : : struct mbox_flash_data *mbox_flash;</span>
<span id="L781"><span class="lineNum"> 781</span> : : int rc;</span>
<span id="L782"><span class="lineNum"> 782</span> : : </span>
<span id="L783"><span class="lineNum"> 783</span> :<span class="tlaGNC"> 4 : mbox_flash = container_of(bl, struct mbox_flash_data, bl);</span></span>
<span id="L784"><span class="lineNum"> 784</span> : : </span>
<span id="L785"><span class="lineNum"> 785</span> :<span class="tlaGNC"> 4 : if (do_delayed_work(mbox_flash))</span></span>
<span id="L786"><span class="lineNum"> 786</span> :<span class="tlaUNC tlaBgUNC"> 0 : return FLASH_ERR_AGAIN;</span></span>
<span id="L787"><span class="lineNum"> 787</span> : : </span>
<span id="L788"><span class="lineNum"> 788</span> : : /*</span>
<span id="L789"><span class="lineNum"> 789</span> : : * We want to avoid runtime mallocs in skiboot. The expected</span>
<span id="L790"><span class="lineNum"> 790</span> : : * behavour to uses of libflash is that one can free() the memory</span>
<span id="L791"><span class="lineNum"> 791</span> : : * returned.</span>
<span id="L792"><span class="lineNum"> 792</span> : : * NULL will do for now.</span>
<span id="L793"><span class="lineNum"> 793</span> : : */</span>
<span id="L794"><span class="lineNum"> 794</span> :<span class="tlaGNC tlaBgGNC"> 4 : if (name)</span></span>
<span id="L795"><span class="lineNum"> 795</span> :<span class="tlaGNC"> 4 : *name = NULL;</span></span>
<span id="L796"><span class="lineNum"> 796</span> : : </span>
<span id="L797"><span class="lineNum"> 797</span> :<span class="tlaGNC"> 4 : mbox_flash-&gt;busy = true;</span></span>
<span id="L798"><span class="lineNum"> 798</span> :<span class="tlaGNC"> 4 : rc = msg_send(mbox_flash, &amp;msg, mbox_flash-&gt;timeout);</span></span>
<span id="L799"><span class="lineNum"> 799</span> :<span class="tlaGNC"> 4 : if (rc) {</span></span>
<span id="L800"><span class="lineNum"> 800</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Failed to enqueue/send BMC MBOX message\n&quot;);</span></span>
<span id="L801"><span class="lineNum"> 801</span> :<span class="tlaUNC"> 0 : return rc;</span></span>
<span id="L802"><span class="lineNum"> 802</span> : : }</span>
<span id="L803"><span class="lineNum"> 803</span> : : </span>
<span id="L804"><span class="lineNum"> 804</span> :<span class="tlaGNC tlaBgGNC"> 4 : if (wait_for_bmc(mbox_flash, mbox_flash-&gt;timeout)) {</span></span>
<span id="L805"><span class="lineNum"> 805</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Error waiting for BMC\n&quot;);</span></span>
<span id="L806"><span class="lineNum"> 806</span> :<span class="tlaUNC"> 0 : return rc;</span></span>
<span id="L807"><span class="lineNum"> 807</span> : : }</span>
<span id="L808"><span class="lineNum"> 808</span> : : </span>
<span id="L809"><span class="lineNum"> 809</span> :<span class="tlaGNC tlaBgGNC"> 4 : mbox_flash-&gt;bl.erase_mask = mbox_flash-&gt;erase_granule - 1;</span></span>
<span id="L810"><span class="lineNum"> 810</span> : : </span>
<span id="L811"><span class="lineNum"> 811</span> :<span class="tlaGNC"> 4 : if (total_size)</span></span>
<span id="L812"><span class="lineNum"> 812</span> :<span class="tlaGNC"> 4 : *total_size = mbox_flash-&gt;total_size;</span></span>
<span id="L813"><span class="lineNum"> 813</span> :<span class="tlaGNC"> 4 : if (erase_granule)</span></span>
<span id="L814"><span class="lineNum"> 814</span> :<span class="tlaGNC"> 4 : *erase_granule = mbox_flash-&gt;erase_granule;</span></span>
<span id="L815"><span class="lineNum"> 815</span> : : </span>
<span id="L816"><span class="lineNum"> 816</span> :<span class="tlaGNC"> 4 : return rc;</span></span>
<span id="L817"><span class="lineNum"> 817</span> : : }</span>
<span id="L818"><span class="lineNum"> 818</span> : : </span>
<span id="L819"><span class="lineNum"> 819</span> :<span class="tlaGNC"> 3 : static int mbox_flash_erase_v2(struct blocklevel_device *bl, uint64_t pos,</span></span>
<span id="L820"><span class="lineNum"> 820</span> : : uint64_t len)</span>
<span id="L821"><span class="lineNum"> 821</span> : : {</span>
<span id="L822"><span class="lineNum"> 822</span> : : struct mbox_flash_data *mbox_flash;</span>
<span id="L823"><span class="lineNum"> 823</span> : : </span>
<span id="L824"><span class="lineNum"> 824</span> : : /* LPC is only 32bit */</span>
<span id="L825"><span class="lineNum"> 825</span> :<span class="tlaGNC"> 3 : if (pos &gt; UINT_MAX || len &gt; UINT_MAX)</span></span>
<span id="L826"><span class="lineNum"> 826</span> :<span class="tlaUNC tlaBgUNC"> 0 : return FLASH_ERR_PARM_ERROR;</span></span>
<span id="L827"><span class="lineNum"> 827</span> : : </span>
<span id="L828"><span class="lineNum"> 828</span> :<span class="tlaGNC tlaBgGNC"> 3 : mbox_flash = container_of(bl, struct mbox_flash_data, bl);</span></span>
<span id="L829"><span class="lineNum"> 829</span> : : </span>
<span id="L830"><span class="lineNum"> 830</span> :<span class="tlaGNC"> 3 : prlog(PR_TRACE, &quot;Flash erase at 0x%08x for 0x%08x\n&quot;, (u32) pos, (u32) len);</span></span>
<span id="L831"><span class="lineNum"> 831</span> :<span class="tlaGNC"> 6 : while (len &gt; 0) {</span></span>
<span id="L832"><span class="lineNum"> 832</span> : : uint64_t size;</span>
<span id="L833"><span class="lineNum"> 833</span> : : int rc;</span>
<span id="L834"><span class="lineNum"> 834</span> : : </span>
<span id="L835"><span class="lineNum"> 835</span> : : /* Move window and get a new size to erase */</span>
<span id="L836"><span class="lineNum"> 836</span> :<span class="tlaGNC"> 3 : rc = mbox_window_move(mbox_flash, &amp;mbox_flash-&gt;write,</span></span>
<span id="L837"><span class="lineNum"> 837</span> : : MBOX_C_CREATE_WRITE_WINDOW, pos, len, &amp;size);</span>
<span id="L838"><span class="lineNum"> 838</span> :<span class="tlaGNC"> 3 : if (rc)</span></span>
<span id="L839"><span class="lineNum"> 839</span> :<span class="tlaUNC tlaBgUNC"> 0 : return rc;</span></span>
<span id="L840"><span class="lineNum"> 840</span> : : </span>
<span id="L841"><span class="lineNum"> 841</span> :<span class="tlaGNC tlaBgGNC"> 3 : rc = mbox_flash_erase(mbox_flash, pos, size);</span></span>
<span id="L842"><span class="lineNum"> 842</span> :<span class="tlaGNC"> 3 : if (rc)</span></span>
<span id="L843"><span class="lineNum"> 843</span> :<span class="tlaUNC tlaBgUNC"> 0 : return rc;</span></span>
<span id="L844"><span class="lineNum"> 844</span> : : </span>
<span id="L845"><span class="lineNum"> 845</span> : : /*</span>
<span id="L846"><span class="lineNum"> 846</span> : : * Flush directly, don't mark that region dirty otherwise it</span>
<span id="L847"><span class="lineNum"> 847</span> : : * isn't clear if a write happened there or not</span>
<span id="L848"><span class="lineNum"> 848</span> : : */</span>
<span id="L849"><span class="lineNum"> 849</span> : : </span>
<span id="L850"><span class="lineNum"> 850</span> :<span class="tlaGNC tlaBgGNC"> 3 : rc = mbox_flash_flush(mbox_flash);</span></span>
<span id="L851"><span class="lineNum"> 851</span> :<span class="tlaGNC"> 3 : if (rc)</span></span>
<span id="L852"><span class="lineNum"> 852</span> :<span class="tlaUNC tlaBgUNC"> 0 : return rc;</span></span>
<span id="L853"><span class="lineNum"> 853</span> : : </span>
<span id="L854"><span class="lineNum"> 854</span> :<span class="tlaGNC tlaBgGNC"> 3 : len -= size;</span></span>
<span id="L855"><span class="lineNum"> 855</span> :<span class="tlaGNC"> 3 : pos += size;</span></span>
<span id="L856"><span class="lineNum"> 856</span> : : }</span>
<span id="L857"><span class="lineNum"> 857</span> : : </span>
<span id="L858"><span class="lineNum"> 858</span> :<span class="tlaGNC"> 3 : return 0;</span></span>
<span id="L859"><span class="lineNum"> 859</span> : : }</span>
<span id="L860"><span class="lineNum"> 860</span> : : </span>
<span id="L861"><span class="lineNum"> 861</span> :<span class="tlaGNC"> 1 : static int mbox_flash_erase_v1(struct blocklevel_device *bl __unused,</span></span>
<span id="L862"><span class="lineNum"> 862</span> : : uint64_t pos __unused, uint64_t len __unused)</span>
<span id="L863"><span class="lineNum"> 863</span> : : {</span>
<span id="L864"><span class="lineNum"> 864</span> : : /*</span>
<span id="L865"><span class="lineNum"> 865</span> : : * We can probably get away with doing nothing.</span>
<span id="L866"><span class="lineNum"> 866</span> : : * TODO: Rethink this, causes interesting behaviour in pflash.</span>
<span id="L867"><span class="lineNum"> 867</span> : : * Users do expect pflash -{e,E} to do something. This is because</span>
<span id="L868"><span class="lineNum"> 868</span> : : * on real flash this would have set that region to all 0xFF but</span>
<span id="L869"><span class="lineNum"> 869</span> : : * really the erase at the blocklevel interface was only designed</span>
<span id="L870"><span class="lineNum"> 870</span> : : * to be &quot;please make this region writeable&quot;.</span>
<span id="L871"><span class="lineNum"> 871</span> : : * It may be wise (despite the large performance penalty) to</span>
<span id="L872"><span class="lineNum"> 872</span> : : * actually write all 0xFF here. I'll leave that as an exercise</span>
<span id="L873"><span class="lineNum"> 873</span> : : * for the future.</span>
<span id="L874"><span class="lineNum"> 874</span> : : */</span>
<span id="L875"><span class="lineNum"> 875</span> : : </span>
<span id="L876"><span class="lineNum"> 876</span> :<span class="tlaGNC"> 1 : return 0;</span></span>
<span id="L877"><span class="lineNum"> 877</span> : : }</span>
<span id="L878"><span class="lineNum"> 878</span> : : </span>
<span id="L879"><span class="lineNum"> 879</span> : : /* Called from interrupt handler, don't send any mbox messages */</span>
<span id="L880"><span class="lineNum"> 880</span> :<span class="tlaGNC"> 3 : static void mbox_flash_attn(uint8_t attn, void *priv)</span></span>
<span id="L881"><span class="lineNum"> 881</span> : : {</span>
<span id="L882"><span class="lineNum"> 882</span> :<span class="tlaGNC"> 3 : struct mbox_flash_data *mbox_flash = priv;</span></span>
<span id="L883"><span class="lineNum"> 883</span> : : </span>
<span id="L884"><span class="lineNum"> 884</span> :<span class="tlaGNC"> 3 : if (attn &amp; MBOX_ATTN_ACK_MASK)</span></span>
<span id="L885"><span class="lineNum"> 885</span> :<span class="tlaGNC"> 3 : mbox_flash-&gt;ack = true;</span></span>
<span id="L886"><span class="lineNum"> 886</span> :<span class="tlaGNC"> 3 : if (attn &amp; MBOX_ATTN_BMC_REBOOT) {</span></span>
<span id="L887"><span class="lineNum"> 887</span> :<span class="tlaGNC"> 3 : mbox_flash-&gt;reboot = true;</span></span>
<span id="L888"><span class="lineNum"> 888</span> :<span class="tlaGNC"> 3 : mbox_flash-&gt;read.open = false;</span></span>
<span id="L889"><span class="lineNum"> 889</span> :<span class="tlaGNC"> 3 : mbox_flash-&gt;write.open = false;</span></span>
<span id="L890"><span class="lineNum"> 890</span> :<span class="tlaGNC"> 3 : attn &amp;= ~MBOX_ATTN_BMC_REBOOT;</span></span>
<span id="L891"><span class="lineNum"> 891</span> : : }</span>
<span id="L892"><span class="lineNum"> 892</span> : : </span>
<span id="L893"><span class="lineNum"> 893</span> :<span class="tlaGNC"> 3 : if (attn &amp; MBOX_ATTN_BMC_WINDOW_RESET) {</span></span>
<span id="L894"><span class="lineNum"> 894</span> :<span class="tlaUNC tlaBgUNC"> 0 : mbox_flash-&gt;read.open = false;</span></span>
<span id="L895"><span class="lineNum"> 895</span> :<span class="tlaUNC"> 0 : mbox_flash-&gt;write.open = false;</span></span>
<span id="L896"><span class="lineNum"> 896</span> :<span class="tlaUNC"> 0 : attn &amp;= ~MBOX_ATTN_BMC_WINDOW_RESET;</span></span>
<span id="L897"><span class="lineNum"> 897</span> : : }</span>
<span id="L898"><span class="lineNum"> 898</span> : : </span>
<span id="L899"><span class="lineNum"> 899</span> :<span class="tlaGNC tlaBgGNC"> 3 : if (attn &amp; MBOX_ATTN_BMC_FLASH_LOST) {</span></span>
<span id="L900"><span class="lineNum"> 900</span> :<span class="tlaUNC tlaBgUNC"> 0 : mbox_flash-&gt;pause = true;</span></span>
<span id="L901"><span class="lineNum"> 901</span> :<span class="tlaUNC"> 0 : attn &amp;= ~MBOX_ATTN_BMC_FLASH_LOST;</span></span>
<span id="L902"><span class="lineNum"> 902</span> : : } else {</span>
<span id="L903"><span class="lineNum"> 903</span> :<span class="tlaGNC tlaBgGNC"> 3 : mbox_flash-&gt;pause = false;</span></span>
<span id="L904"><span class="lineNum"> 904</span> : : }</span>
<span id="L905"><span class="lineNum"> 905</span> :<span class="tlaGNC"> 3 : }</span></span>
<span id="L906"><span class="lineNum"> 906</span> : : </span>
<span id="L907"><span class="lineNum"> 907</span> :<span class="tlaGNC"> 944 : static void mbox_flash_callback(struct bmc_mbox_msg *msg, void *priv)</span></span>
<span id="L908"><span class="lineNum"> 908</span> : : {</span>
<span id="L909"><span class="lineNum"> 909</span> :<span class="tlaGNC"> 944 : struct mbox_flash_data *mbox_flash = priv;</span></span>
<span id="L910"><span class="lineNum"> 910</span> : : </span>
<span id="L911"><span class="lineNum"> 911</span> :<span class="tlaGNC"> 944 : prlog(PR_TRACE, &quot;BMC OK command %u\n&quot;, msg-&gt;command);</span></span>
<span id="L912"><span class="lineNum"> 912</span> : : </span>
<span id="L913"><span class="lineNum"> 913</span> :<span class="tlaGNC"> 944 : if (msg-&gt;response != MBOX_R_SUCCESS) {</span></span>
<span id="L914"><span class="lineNum"> 914</span> :<span class="tlaGNC"> 4 : prlog(PR_ERR, &quot;Bad response code from BMC %d\n&quot;, msg-&gt;response);</span></span>
<span id="L915"><span class="lineNum"> 915</span> :<span class="tlaGNC"> 4 : mbox_flash-&gt;rc = msg-&gt;response;</span></span>
<span id="L916"><span class="lineNum"> 916</span> :<span class="tlaGNC"> 4 : goto out;</span></span>
<span id="L917"><span class="lineNum"> 917</span> : : }</span>
<span id="L918"><span class="lineNum"> 918</span> : : </span>
<span id="L919"><span class="lineNum"> 919</span> :<span class="tlaGNC"> 940 : if (msg-&gt;command &gt; MBOX_COMMAND_COUNT) {</span></span>
<span id="L920"><span class="lineNum"> 920</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Got response to unknown command %02x\n&quot;, msg-&gt;command);</span></span>
<span id="L921"><span class="lineNum"> 921</span> :<span class="tlaUNC"> 0 : mbox_flash-&gt;rc = -1;</span></span>
<span id="L922"><span class="lineNum"> 922</span> :<span class="tlaUNC"> 0 : goto out;</span></span>
<span id="L923"><span class="lineNum"> 923</span> : : }</span>
<span id="L924"><span class="lineNum"> 924</span> : : </span>
<span id="L925"><span class="lineNum"> 925</span> :<span class="tlaGNC tlaBgGNC"> 940 : if (!mbox_flash-&gt;handlers[msg-&gt;command]) {</span></span>
<span id="L926"><span class="lineNum"> 926</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Couldn't find handler for message! command: %u, seq: %u\n&quot;,</span></span>
<span id="L927"><span class="lineNum"> 927</span> : : msg-&gt;command, msg-&gt;seq);</span>
<span id="L928"><span class="lineNum"> 928</span> :<span class="tlaUNC"> 0 : mbox_flash-&gt;rc = MBOX_R_SYSTEM_ERROR;</span></span>
<span id="L929"><span class="lineNum"> 929</span> :<span class="tlaUNC"> 0 : goto out;</span></span>
<span id="L930"><span class="lineNum"> 930</span> : : }</span>
<span id="L931"><span class="lineNum"> 931</span> : : </span>
<span id="L932"><span class="lineNum"> 932</span> :<span class="tlaGNC tlaBgGNC"> 940 : mbox_flash-&gt;rc = 0;</span></span>
<span id="L933"><span class="lineNum"> 933</span> : : </span>
<span id="L934"><span class="lineNum"> 934</span> :<span class="tlaGNC"> 940 : mbox_flash-&gt;handlers[msg-&gt;command](mbox_flash, msg);</span></span>
<span id="L935"><span class="lineNum"> 935</span> : : </span>
<span id="L936"><span class="lineNum"> 936</span> :<span class="tlaGNC"> 944 : out:</span></span>
<span id="L937"><span class="lineNum"> 937</span> :<span class="tlaGNC"> 944 : mbox_flash-&gt;busy = false;</span></span>
<span id="L938"><span class="lineNum"> 938</span> :<span class="tlaGNC"> 944 : }</span></span>
<span id="L939"><span class="lineNum"> 939</span> : : </span>
<span id="L940"><span class="lineNum"> 940</span> :<span class="tlaGNC"> 4 : static int protocol_init(struct mbox_flash_data *mbox_flash, uint8_t shift)</span></span>
<span id="L941"><span class="lineNum"> 941</span> : : {</span>
<span id="L942"><span class="lineNum"> 942</span> :<span class="tlaGNC"> 4 : struct bmc_mbox_msg msg = MSG_CREATE(MBOX_C_GET_MBOX_INFO);</span></span>
<span id="L943"><span class="lineNum"> 943</span> : : int rc;</span>
<span id="L944"><span class="lineNum"> 944</span> : : </span>
<span id="L945"><span class="lineNum"> 945</span> :<span class="tlaGNC"> 4 : mbox_flash-&gt;read.open = false;</span></span>
<span id="L946"><span class="lineNum"> 946</span> :<span class="tlaGNC"> 4 : mbox_flash-&gt;write.open = false;</span></span>
<span id="L947"><span class="lineNum"> 947</span> : : </span>
<span id="L948"><span class="lineNum"> 948</span> : : /* Assume V2+ */</span>
<span id="L949"><span class="lineNum"> 949</span> :<span class="tlaGNC"> 4 : mbox_flash-&gt;bl.read = &amp;mbox_flash_read;</span></span>
<span id="L950"><span class="lineNum"> 950</span> :<span class="tlaGNC"> 4 : mbox_flash-&gt;bl.write = &amp;mbox_flash_write;</span></span>
<span id="L951"><span class="lineNum"> 951</span> :<span class="tlaGNC"> 4 : mbox_flash-&gt;bl.erase = &amp;mbox_flash_erase_v2;</span></span>
<span id="L952"><span class="lineNum"> 952</span> :<span class="tlaGNC"> 4 : mbox_flash-&gt;bl.get_info = &amp;mbox_flash_get_info;</span></span>
<span id="L953"><span class="lineNum"> 953</span> : : </span>
<span id="L954"><span class="lineNum"> 954</span> : : /* Assume V3 */</span>
<span id="L955"><span class="lineNum"> 955</span> :<span class="tlaGNC"> 4 : mbox_flash-&gt;handlers = handlers_v3;</span></span>
<span id="L956"><span class="lineNum"> 956</span> : : </span>
<span id="L957"><span class="lineNum"> 957</span> :<span class="tlaGNC"> 4 : bmc_mbox_register_callback(&amp;mbox_flash_callback, mbox_flash);</span></span>
<span id="L958"><span class="lineNum"> 958</span> :<span class="tlaGNC"> 4 : bmc_mbox_register_attn(&amp;mbox_flash_attn, mbox_flash);</span></span>
<span id="L959"><span class="lineNum"> 959</span> : : </span>
<span id="L960"><span class="lineNum"> 960</span> : : /*</span>
<span id="L961"><span class="lineNum"> 961</span> : : * For V1 of the protocol this is fixed.</span>
<span id="L962"><span class="lineNum"> 962</span> : : * V2+: The init code will update this</span>
<span id="L963"><span class="lineNum"> 963</span> : : */</span>
<span id="L964"><span class="lineNum"> 964</span> :<span class="tlaGNC"> 4 : mbox_flash-&gt;shift = 12;</span></span>
<span id="L965"><span class="lineNum"> 965</span> : : </span>
<span id="L966"><span class="lineNum"> 966</span> : : /*</span>
<span id="L967"><span class="lineNum"> 967</span> : : * For V1 we'll use this value.</span>
<span id="L968"><span class="lineNum"> 968</span> : : * V2+: The init code (may) update this</span>
<span id="L969"><span class="lineNum"> 969</span> : : */</span>
<span id="L970"><span class="lineNum"> 970</span> :<span class="tlaGNC"> 4 : mbox_flash-&gt;timeout = MBOX_DEFAULT_TIMEOUT;</span></span>
<span id="L971"><span class="lineNum"> 971</span> : : </span>
<span id="L972"><span class="lineNum"> 972</span> : : /*</span>
<span id="L973"><span class="lineNum"> 973</span> : : * Always attempt init with highest version known.</span>
<span id="L974"><span class="lineNum"> 974</span> : : * The GET_MBOX_INFO response will confirm that the other side can</span>
<span id="L975"><span class="lineNum"> 975</span> : : * talk the highest version, we'll update this variable then if</span>
<span id="L976"><span class="lineNum"> 976</span> : : * our highest version is not supported</span>
<span id="L977"><span class="lineNum"> 977</span> : : */</span>
<span id="L978"><span class="lineNum"> 978</span> :<span class="tlaGNC"> 4 : mbox_flash-&gt;version = 3;</span></span>
<span id="L979"><span class="lineNum"> 979</span> : : </span>
<span id="L980"><span class="lineNum"> 980</span> :<span class="tlaGNC"> 4 : negotiate_version:</span></span>
<span id="L981"><span class="lineNum"> 981</span> :<span class="tlaGNC"> 4 : msg_put_u8(&amp;msg, 0, mbox_flash-&gt;version);</span></span>
<span id="L982"><span class="lineNum"> 982</span> :<span class="tlaGNC"> 4 : msg_put_u8(&amp;msg, 1, shift);</span></span>
<span id="L983"><span class="lineNum"> 983</span> :<span class="tlaGNC"> 4 : rc = msg_send(mbox_flash, &amp;msg, mbox_flash-&gt;timeout);</span></span>
<span id="L984"><span class="lineNum"> 984</span> :<span class="tlaGNC"> 4 : if (rc) {</span></span>
<span id="L985"><span class="lineNum"> 985</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Failed to enqueue/send BMC MBOX message\n&quot;);</span></span>
<span id="L986"><span class="lineNum"> 986</span> :<span class="tlaUNC"> 0 : return rc;</span></span>
<span id="L987"><span class="lineNum"> 987</span> : : }</span>
<span id="L988"><span class="lineNum"> 988</span> : : </span>
<span id="L989"><span class="lineNum"> 989</span> :<span class="tlaGNC tlaBgGNC"> 4 : rc = wait_for_bmc(mbox_flash, mbox_flash-&gt;timeout);</span></span>
<span id="L990"><span class="lineNum"> 990</span> :<span class="tlaGNC"> 4 : if (rc) {</span></span>
<span id="L991"><span class="lineNum"> 991</span> :<span class="tlaUNC tlaBgUNC"> 0 : prlog(PR_ERR, &quot;Error waiting for BMC\n&quot;);</span></span>
<span id="L992"><span class="lineNum"> 992</span> :<span class="tlaUNC"> 0 : if (mbox_flash-&gt;version &gt; 1) {</span></span>
<span id="L993"><span class="lineNum"> 993</span> :<span class="tlaUNC"> 0 : mbox_flash-&gt;version--;</span></span>
<span id="L994"><span class="lineNum"> 994</span> :<span class="tlaUNC"> 0 : prlog(PR_INFO, &quot;Retrying MBOX negotiation with BMC&quot;</span></span>
<span id="L995"><span class="lineNum"> 995</span> : : &quot; with MBOXv%d\n&quot;, mbox_flash-&gt;version);</span>
<span id="L996"><span class="lineNum"> 996</span> :<span class="tlaUNC"> 0 : goto negotiate_version;</span></span>
<span id="L997"><span class="lineNum"> 997</span> : : }</span>
<span id="L998"><span class="lineNum"> 998</span> :<span class="tlaUNC"> 0 : return rc;</span></span>
<span id="L999"><span class="lineNum"> 999</span> : : }</span>
<span id="L1000"><span class="lineNum"> 1000</span> : : </span>
<span id="L1001"><span class="lineNum"> 1001</span> :<span class="tlaGNC tlaBgGNC"> 4 : prlog(PR_INFO, &quot;Detected mbox protocol version %d\n&quot;, mbox_flash-&gt;version);</span></span>
<span id="L1002"><span class="lineNum"> 1002</span> :<span class="tlaGNC"> 4 : switch (mbox_flash-&gt;version) {</span></span>
<span id="L1003"><span class="lineNum"> 1003</span> :<span class="tlaGNC"> 1 : case 1:</span></span>
<span id="L1004"><span class="lineNum"> 1004</span> :<span class="tlaGNC"> 1 : mbox_flash-&gt;bl.erase = &amp;mbox_flash_erase_v1;</span></span>
<span id="L1005"><span class="lineNum"> 1005</span> :<span class="tlaGNC"> 1 : mbox_flash-&gt;handlers = handlers_v1;</span></span>
<span id="L1006"><span class="lineNum"> 1006</span> :<span class="tlaGNC"> 1 : break;</span></span>
<span id="L1007"><span class="lineNum"> 1007</span> :<span class="tlaGNC"> 2 : case 2:</span></span>
<span id="L1008"><span class="lineNum"> 1008</span> :<span class="tlaGNC"> 2 : mbox_flash-&gt;handlers = handlers_v2;</span></span>
<span id="L1009"><span class="lineNum"> 1009</span> :<span class="tlaGNC"> 2 : break;</span></span>
<span id="L1010"><span class="lineNum"> 1010</span> :<span class="tlaGNC"> 1 : case 3:</span></span>
<span id="L1011"><span class="lineNum"> 1011</span> : : /* Nothing to do we assumed it would be V3 */</span>
<span id="L1012"><span class="lineNum"> 1012</span> :<span class="tlaGNC"> 1 : break;</span></span>
<span id="L1013"><span class="lineNum"> 1013</span> :<span class="tlaUNC tlaBgUNC"> 0 : default:</span></span>
<span id="L1014"><span class="lineNum"> 1014</span> : : /*</span>
<span id="L1015"><span class="lineNum"> 1015</span> : : * The BMC is can only lower the requested version not do</span>
<span id="L1016"><span class="lineNum"> 1016</span> : : * anything else. FWIW there is no verion 0.</span>
<span id="L1017"><span class="lineNum"> 1017</span> : : */</span>
<span id="L1018"><span class="lineNum"> 1018</span> :<span class="tlaUNC"> 0 : prlog(PR_CRIT, &quot;Bad version: %u\n&quot;, mbox_flash-&gt;version);</span></span>
<span id="L1019"><span class="lineNum"> 1019</span> :<span class="tlaUNC"> 0 : rc = FLASH_ERR_PARM_ERROR;</span></span>
<span id="L1020"><span class="lineNum"> 1020</span> : : }</span>
<span id="L1021"><span class="lineNum"> 1021</span> : : </span>
<span id="L1022"><span class="lineNum"> 1022</span> :<span class="tlaGNC tlaBgGNC"> 4 : return rc;</span></span>
<span id="L1023"><span class="lineNum"> 1023</span> : : }</span>
<span id="L1024"><span class="lineNum"> 1024</span> : : </span>
<span id="L1025"><span class="lineNum"> 1025</span> :<span class="tlaUNC tlaBgUNC"> 0 : int mbox_flash_lock(struct blocklevel_device *bl, uint64_t pos, uint64_t len)</span></span>
<span id="L1026"><span class="lineNum"> 1026</span> : : {</span>
<span id="L1027"><span class="lineNum"> 1027</span> : : struct mbox_flash_data *mbox_flash;</span>
<span id="L1028"><span class="lineNum"> 1028</span> :<span class="tlaUNC"> 0 : struct bmc_mbox_msg msg = MSG_CREATE(MBOX_C_MARK_LOCKED);</span></span>
<span id="L1029"><span class="lineNum"> 1029</span> : : int rc;</span>
<span id="L1030"><span class="lineNum"> 1030</span> : : </span>
<span id="L1031"><span class="lineNum"> 1031</span> : : /* mbox-flash only talks 32bit for now */</span>
<span id="L1032"><span class="lineNum"> 1032</span> :<span class="tlaUNC"> 0 : if (pos &gt; UINT_MAX || len &gt; UINT_MAX)</span></span>
<span id="L1033"><span class="lineNum"> 1033</span> :<span class="tlaUNC"> 0 : return FLASH_ERR_PARM_ERROR;</span></span>
<span id="L1034"><span class="lineNum"> 1034</span> : : </span>
<span id="L1035"><span class="lineNum"> 1035</span> : : /*</span>
<span id="L1036"><span class="lineNum"> 1036</span> : : * If the region isn't at least 4k aligned and in size then bail</span>
<span id="L1037"><span class="lineNum"> 1037</span> : : * out, the protocol won't allow for smaller block sizes.</span>
<span id="L1038"><span class="lineNum"> 1038</span> : : */</span>
<span id="L1039"><span class="lineNum"> 1039</span> :<span class="tlaUNC"> 0 : if (pos &amp; ((1 &lt;&lt; 12) - 1) || len &amp; ((1 &lt;&lt; 12) - 1))</span></span>
<span id="L1040"><span class="lineNum"> 1040</span> :<span class="tlaUNC"> 0 : return FLASH_ERR_PARM_ERROR;</span></span>
<span id="L1041"><span class="lineNum"> 1041</span> : : </span>
<span id="L1042"><span class="lineNum"> 1042</span> :<span class="tlaUNC"> 0 : mbox_flash = container_of(bl, struct mbox_flash_data, bl);</span></span>
<span id="L1043"><span class="lineNum"> 1043</span> :<span class="tlaUNC"> 0 : if ((pos &amp; mbox_flash_mask(mbox_flash)) || (len &amp; mbox_flash_mask(mbox_flash))) {</span></span>
<span id="L1044"><span class="lineNum"> 1044</span> :<span class="tlaUNC"> 0 : uint8_t shift = 0;</span></span>
<span id="L1045"><span class="lineNum"> 1045</span> : : /*</span>
<span id="L1046"><span class="lineNum"> 1046</span> : : * The current block size won't work for locking the requested</span>
<span id="L1047"><span class="lineNum"> 1047</span> : : * region must reinit.</span>
<span id="L1048"><span class="lineNum"> 1048</span> : : */</span>
<span id="L1049"><span class="lineNum"> 1049</span> :<span class="tlaUNC"> 0 : while (!((1 &lt;&lt; shift) &amp; pos) &amp;&amp; !((1 &lt;&lt; shift) &amp; len))</span></span>
<span id="L1050"><span class="lineNum"> 1050</span> :<span class="tlaUNC"> 0 : shift++;</span></span>
<span id="L1051"><span class="lineNum"> 1051</span> : : </span>
<span id="L1052"><span class="lineNum"> 1052</span> :<span class="tlaUNC"> 0 : prlog(PR_INFO, &quot;Locking flash requires re-init from shift of %d to shift of %d\n&quot;,</span></span>
<span id="L1053"><span class="lineNum"> 1053</span> : : mbox_flash-&gt;shift, shift);</span>
<span id="L1054"><span class="lineNum"> 1054</span> : : </span>
<span id="L1055"><span class="lineNum"> 1055</span> :<span class="tlaUNC"> 0 : rc = protocol_init(mbox_flash, shift);</span></span>
<span id="L1056"><span class="lineNum"> 1056</span> :<span class="tlaUNC"> 0 : if (rc)</span></span>
<span id="L1057"><span class="lineNum"> 1057</span> :<span class="tlaUNC"> 0 : return rc;</span></span>
<span id="L1058"><span class="lineNum"> 1058</span> : : </span>
<span id="L1059"><span class="lineNum"> 1059</span> : : /*</span>
<span id="L1060"><span class="lineNum"> 1060</span> : : * The daemon didn't agree with the requested shift - the</span>
<span id="L1061"><span class="lineNum"> 1061</span> : : * flash won't be able to be locked</span>
<span id="L1062"><span class="lineNum"> 1062</span> : : */</span>
<span id="L1063"><span class="lineNum"> 1063</span> :<span class="tlaUNC"> 0 : if (mbox_flash-&gt;shift &gt; shift)</span></span>
<span id="L1064"><span class="lineNum"> 1064</span> :<span class="tlaUNC"> 0 : return FLASH_ERR_PARM_ERROR;</span></span>
<span id="L1065"><span class="lineNum"> 1065</span> : : }</span>
<span id="L1066"><span class="lineNum"> 1066</span> : : </span>
<span id="L1067"><span class="lineNum"> 1067</span> :<span class="tlaUNC"> 0 : msg_put_u16(&amp;msg, 0, bytes_to_blocks(mbox_flash, pos));</span></span>
<span id="L1068"><span class="lineNum"> 1068</span> :<span class="tlaUNC"> 0 : msg_put_u16(&amp;msg, 2, bytes_to_blocks(mbox_flash, len));</span></span>
<span id="L1069"><span class="lineNum"> 1069</span> :<span class="tlaUNC"> 0 : rc = msg_send(mbox_flash, &amp;msg, mbox_flash-&gt;timeout);</span></span>
<span id="L1070"><span class="lineNum"> 1070</span> :<span class="tlaUNC"> 0 : if (rc) {</span></span>
<span id="L1071"><span class="lineNum"> 1071</span> :<span class="tlaUNC"> 0 : prlog(PR_ERR, &quot;Failed to enqueue/send BMC MBOX message\n&quot;);</span></span>
<span id="L1072"><span class="lineNum"> 1072</span> :<span class="tlaUNC"> 0 : return rc;</span></span>
<span id="L1073"><span class="lineNum"> 1073</span> : : }</span>
<span id="L1074"><span class="lineNum"> 1074</span> : : </span>
<span id="L1075"><span class="lineNum"> 1075</span> :<span class="tlaUNC"> 0 : rc = wait_for_bmc(mbox_flash, mbox_flash-&gt;timeout);</span></span>
<span id="L1076"><span class="lineNum"> 1076</span> :<span class="tlaUNC"> 0 : if (rc)</span></span>
<span id="L1077"><span class="lineNum"> 1077</span> :<span class="tlaUNC"> 0 : prlog(PR_ERR, &quot;Error waiting for BMC\n&quot;);</span></span>
<span id="L1078"><span class="lineNum"> 1078</span> : : </span>
<span id="L1079"><span class="lineNum"> 1079</span> :<span class="tlaUNC"> 0 : return rc;</span></span>
<span id="L1080"><span class="lineNum"> 1080</span> : : }</span>
<span id="L1081"><span class="lineNum"> 1081</span> : : </span>
<span id="L1082"><span class="lineNum"> 1082</span> :<span class="tlaGNC tlaBgGNC"> 1 : int mbox_flash_init(struct blocklevel_device **bl)</span></span>
<span id="L1083"><span class="lineNum"> 1083</span> : : {</span>
<span id="L1084"><span class="lineNum"> 1084</span> : : struct mbox_flash_data *mbox_flash;</span>
<span id="L1085"><span class="lineNum"> 1085</span> : : int rc;</span>
<span id="L1086"><span class="lineNum"> 1086</span> : : </span>
<span id="L1087"><span class="lineNum"> 1087</span> : : CHECK_HANDLER_SIZE(handlers_v3);</span>
<span id="L1088"><span class="lineNum"> 1088</span> : : CHECK_HANDLER_SIZE(handlers_v2);</span>
<span id="L1089"><span class="lineNum"> 1089</span> : : CHECK_HANDLER_SIZE(handlers_v1);</span>
<span id="L1090"><span class="lineNum"> 1090</span> : : </span>
<span id="L1091"><span class="lineNum"> 1091</span> :<span class="tlaGNC"> 1 : if (!bl)</span></span>
<span id="L1092"><span class="lineNum"> 1092</span> :<span class="tlaUNC tlaBgUNC"> 0 : return FLASH_ERR_PARM_ERROR;</span></span>
<span id="L1093"><span class="lineNum"> 1093</span> : : </span>
<span id="L1094"><span class="lineNum"> 1094</span> : : /* XXX: We only support one blocklevel flash device over mbox. If we</span>
<span id="L1095"><span class="lineNum"> 1095</span> : : * ever support more than one, move this out. The chances of that are</span>
<span id="L1096"><span class="lineNum"> 1096</span> : : * slim though due to circumstances.</span>
<span id="L1097"><span class="lineNum"> 1097</span> : : */</span>
<span id="L1098"><span class="lineNum"> 1098</span> :<span class="tlaGNC tlaBgGNC"> 1 : mbox_init();</span></span>
<span id="L1099"><span class="lineNum"> 1099</span> : : </span>
<span id="L1100"><span class="lineNum"> 1100</span> :<span class="tlaGNC"> 1 : *bl = NULL;</span></span>
<span id="L1101"><span class="lineNum"> 1101</span> : : </span>
<span id="L1102"><span class="lineNum"> 1102</span> :<span class="tlaGNC"> 1 : mbox_flash = zalloc(sizeof(struct mbox_flash_data));</span></span>
<span id="L1103"><span class="lineNum"> 1103</span> :<span class="tlaGNC"> 1 : if (!mbox_flash)</span></span>
<span id="L1104"><span class="lineNum"> 1104</span> :<span class="tlaUNC tlaBgUNC"> 0 : return FLASH_ERR_MALLOC_FAILED;</span></span>
<span id="L1105"><span class="lineNum"> 1105</span> : : </span>
<span id="L1106"><span class="lineNum"> 1106</span> : : /* Assume V2+ */</span>
<span id="L1107"><span class="lineNum"> 1107</span> :<span class="tlaGNC tlaBgGNC"> 1 : mbox_flash-&gt;bl.read = &amp;mbox_flash_read;</span></span>
<span id="L1108"><span class="lineNum"> 1108</span> :<span class="tlaGNC"> 1 : mbox_flash-&gt;bl.write = &amp;mbox_flash_write;</span></span>
<span id="L1109"><span class="lineNum"> 1109</span> :<span class="tlaGNC"> 1 : mbox_flash-&gt;bl.erase = &amp;mbox_flash_erase_v2;</span></span>
<span id="L1110"><span class="lineNum"> 1110</span> :<span class="tlaGNC"> 1 : mbox_flash-&gt;bl.get_info = &amp;mbox_flash_get_info;</span></span>
<span id="L1111"><span class="lineNum"> 1111</span> :<span class="tlaGNC"> 1 : mbox_flash-&gt;bl.exit = &amp;mbox_flash_exit;</span></span>
<span id="L1112"><span class="lineNum"> 1112</span> : : </span>
<span id="L1113"><span class="lineNum"> 1113</span> :<span class="tlaGNC"> 1 : if (bmc_mbox_get_attn_reg() &amp; MBOX_ATTN_BMC_REBOOT)</span></span>
<span id="L1114"><span class="lineNum"> 1114</span> :<span class="tlaUNC tlaBgUNC"> 0 : rc = handle_reboot(mbox_flash);</span></span>
<span id="L1115"><span class="lineNum"> 1115</span> : : else</span>
<span id="L1116"><span class="lineNum"> 1116</span> :<span class="tlaGNC tlaBgGNC"> 1 : rc = protocol_init(mbox_flash, 0);</span></span>
<span id="L1117"><span class="lineNum"> 1117</span> :<span class="tlaGNC"> 1 : if (rc) {</span></span>
<span id="L1118"><span class="lineNum"> 1118</span> :<span class="tlaUNC tlaBgUNC"> 0 : free(mbox_flash);</span></span>
<span id="L1119"><span class="lineNum"> 1119</span> :<span class="tlaUNC"> 0 : return rc;</span></span>
<span id="L1120"><span class="lineNum"> 1120</span> : : }</span>
<span id="L1121"><span class="lineNum"> 1121</span> : : </span>
<span id="L1122"><span class="lineNum"> 1122</span> :<span class="tlaGNC tlaBgGNC"> 1 : mbox_flash-&gt;bl.keep_alive = 0;</span></span>
<span id="L1123"><span class="lineNum"> 1123</span> : : </span>
<span id="L1124"><span class="lineNum"> 1124</span> :<span class="tlaGNC"> 1 : *bl = &amp;(mbox_flash-&gt;bl);</span></span>
<span id="L1125"><span class="lineNum"> 1125</span> :<span class="tlaGNC"> 1 : return 0;</span></span>
<span id="L1126"><span class="lineNum"> 1126</span> : : }</span>
<span id="L1127"><span class="lineNum"> 1127</span> : : </span>
<span id="L1128"><span class="lineNum"> 1128</span> :<span class="tlaGNC"> 1 : bool mbox_flash_exit(struct blocklevel_device *bl)</span></span>
<span id="L1129"><span class="lineNum"> 1129</span> : : {</span>
<span id="L1130"><span class="lineNum"> 1130</span> :<span class="tlaGNC"> 1 : bool status = true;</span></span>
<span id="L1131"><span class="lineNum"> 1131</span> : : struct mbox_flash_data *mbox_flash;</span>
<span id="L1132"><span class="lineNum"> 1132</span> :<span class="tlaGNC"> 1 : if (bl) {</span></span>
<span id="L1133"><span class="lineNum"> 1133</span> :<span class="tlaGNC"> 1 : status = mbox_flash_reset(bl);</span></span>
<span id="L1134"><span class="lineNum"> 1134</span> :<span class="tlaGNC"> 1 : mbox_flash = container_of(bl, struct mbox_flash_data, bl);</span></span>
<span id="L1135"><span class="lineNum"> 1135</span> :<span class="tlaGNC"> 1 : free(mbox_flash);</span></span>
<span id="L1136"><span class="lineNum"> 1136</span> : : }</span>
<span id="L1137"><span class="lineNum"> 1137</span> : : </span>
<span id="L1138"><span class="lineNum"> 1138</span> :<span class="tlaGNC"> 1 : return status;</span></span>
<span id="L1139"><span class="lineNum"> 1139</span> : : }</span>
</pre>
</td>
</tr>
</table>
<br>
<table width="100%" border=0 cellspacing=0 cellpadding=0>
<tr><td class="ruler"><img src="../glass.png" width=3 height=3 alt=""></td></tr>
<tr><td class="versionInfo">Generated by: <a href="https://github.com//linux-test-project/lcov" target="_parent">LCOV version 2.0-1</a></td></tr>
</table>
<br>
</body>
</html>