xref: /openbmc/linux/arch/arm/kernel/hw_breakpoint.c (revision 4a55c18e2023096c8684fae5fa1cfa96a03172ff)
1f81ef4a9SWill Deacon /*
2f81ef4a9SWill Deacon  * This program is free software; you can redistribute it and/or modify
3f81ef4a9SWill Deacon  * it under the terms of the GNU General Public License version 2 as
4f81ef4a9SWill Deacon  * published by the Free Software Foundation.
5f81ef4a9SWill Deacon  *
6f81ef4a9SWill Deacon  * This program is distributed in the hope that it will be useful,
7f81ef4a9SWill Deacon  * but WITHOUT ANY WARRANTY; without even the implied warranty of
8f81ef4a9SWill Deacon  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
9f81ef4a9SWill Deacon  * GNU General Public License for more details.
10f81ef4a9SWill Deacon  *
11f81ef4a9SWill Deacon  * You should have received a copy of the GNU General Public License
12f81ef4a9SWill Deacon  * along with this program; if not, write to the Free Software
13f81ef4a9SWill Deacon  * Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA.
14f81ef4a9SWill Deacon  *
15f81ef4a9SWill Deacon  * Copyright (C) 2009, 2010 ARM Limited
16f81ef4a9SWill Deacon  *
17f81ef4a9SWill Deacon  * Author: Will Deacon <will.deacon@arm.com>
18f81ef4a9SWill Deacon  */
19f81ef4a9SWill Deacon 
20f81ef4a9SWill Deacon /*
21f81ef4a9SWill Deacon  * HW_breakpoint: a unified kernel/user-space hardware breakpoint facility,
22f81ef4a9SWill Deacon  * using the CPU's debug registers.
23f81ef4a9SWill Deacon  */
24f81ef4a9SWill Deacon #define pr_fmt(fmt) "hw-breakpoint: " fmt
25f81ef4a9SWill Deacon 
26f81ef4a9SWill Deacon #include <linux/errno.h>
277e202696SWill Deacon #include <linux/hardirq.h>
28f81ef4a9SWill Deacon #include <linux/perf_event.h>
29f81ef4a9SWill Deacon #include <linux/hw_breakpoint.h>
30f81ef4a9SWill Deacon #include <linux/smp.h>
31f81ef4a9SWill Deacon 
32f81ef4a9SWill Deacon #include <asm/cacheflush.h>
33f81ef4a9SWill Deacon #include <asm/cputype.h>
34f81ef4a9SWill Deacon #include <asm/current.h>
35f81ef4a9SWill Deacon #include <asm/hw_breakpoint.h>
36f81ef4a9SWill Deacon #include <asm/kdebug.h>
37f81ef4a9SWill Deacon #include <asm/system.h>
38f81ef4a9SWill Deacon #include <asm/traps.h>
39f81ef4a9SWill Deacon 
40f81ef4a9SWill Deacon /* Breakpoint currently in use for each BRP. */
41f81ef4a9SWill Deacon static DEFINE_PER_CPU(struct perf_event *, bp_on_reg[ARM_MAX_BRP]);
42f81ef4a9SWill Deacon 
43f81ef4a9SWill Deacon /* Watchpoint currently in use for each WRP. */
44f81ef4a9SWill Deacon static DEFINE_PER_CPU(struct perf_event *, wp_on_reg[ARM_MAX_WRP]);
45f81ef4a9SWill Deacon 
46f81ef4a9SWill Deacon /* Number of BRP/WRP registers on this CPU. */
47f81ef4a9SWill Deacon static int core_num_brps;
480017ff42SWill Deacon static int core_num_reserved_brps;
49f81ef4a9SWill Deacon static int core_num_wrps;
50f81ef4a9SWill Deacon 
51f81ef4a9SWill Deacon /* Debug architecture version. */
52f81ef4a9SWill Deacon static u8 debug_arch;
53f81ef4a9SWill Deacon 
54f81ef4a9SWill Deacon /* Maximum supported watchpoint length. */
55f81ef4a9SWill Deacon static u8 max_watchpoint_len;
56f81ef4a9SWill Deacon 
57f81ef4a9SWill Deacon #define READ_WB_REG_CASE(OP2, M, VAL)		\
58f81ef4a9SWill Deacon 	case ((OP2 << 4) + M):			\
59f81ef4a9SWill Deacon 		ARM_DBG_READ(c ## M, OP2, VAL); \
60f81ef4a9SWill Deacon 		break
61f81ef4a9SWill Deacon 
62f81ef4a9SWill Deacon #define WRITE_WB_REG_CASE(OP2, M, VAL)		\
63f81ef4a9SWill Deacon 	case ((OP2 << 4) + M):			\
64f81ef4a9SWill Deacon 		ARM_DBG_WRITE(c ## M, OP2, VAL);\
65f81ef4a9SWill Deacon 		break
66f81ef4a9SWill Deacon 
67f81ef4a9SWill Deacon #define GEN_READ_WB_REG_CASES(OP2, VAL)		\
68f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 0, VAL);		\
69f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 1, VAL);		\
70f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 2, VAL);		\
71f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 3, VAL);		\
72f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 4, VAL);		\
73f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 5, VAL);		\
74f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 6, VAL);		\
75f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 7, VAL);		\
76f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 8, VAL);		\
77f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 9, VAL);		\
78f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 10, VAL);		\
79f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 11, VAL);		\
80f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 12, VAL);		\
81f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 13, VAL);		\
82f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 14, VAL);		\
83f81ef4a9SWill Deacon 	READ_WB_REG_CASE(OP2, 15, VAL)
84f81ef4a9SWill Deacon 
85f81ef4a9SWill Deacon #define GEN_WRITE_WB_REG_CASES(OP2, VAL)	\
86f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 0, VAL);		\
87f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 1, VAL);		\
88f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 2, VAL);		\
89f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 3, VAL);		\
90f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 4, VAL);		\
91f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 5, VAL);		\
92f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 6, VAL);		\
93f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 7, VAL);		\
94f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 8, VAL);		\
95f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 9, VAL);		\
96f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 10, VAL);	\
97f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 11, VAL);	\
98f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 12, VAL);	\
99f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 13, VAL);	\
100f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 14, VAL);	\
101f81ef4a9SWill Deacon 	WRITE_WB_REG_CASE(OP2, 15, VAL)
102f81ef4a9SWill Deacon 
103f81ef4a9SWill Deacon static u32 read_wb_reg(int n)
104f81ef4a9SWill Deacon {
105f81ef4a9SWill Deacon 	u32 val = 0;
106f81ef4a9SWill Deacon 
107f81ef4a9SWill Deacon 	switch (n) {
108f81ef4a9SWill Deacon 	GEN_READ_WB_REG_CASES(ARM_OP2_BVR, val);
109f81ef4a9SWill Deacon 	GEN_READ_WB_REG_CASES(ARM_OP2_BCR, val);
110f81ef4a9SWill Deacon 	GEN_READ_WB_REG_CASES(ARM_OP2_WVR, val);
111f81ef4a9SWill Deacon 	GEN_READ_WB_REG_CASES(ARM_OP2_WCR, val);
112f81ef4a9SWill Deacon 	default:
113f81ef4a9SWill Deacon 		pr_warning("attempt to read from unknown breakpoint "
114f81ef4a9SWill Deacon 				"register %d\n", n);
115f81ef4a9SWill Deacon 	}
116f81ef4a9SWill Deacon 
117f81ef4a9SWill Deacon 	return val;
118f81ef4a9SWill Deacon }
119f81ef4a9SWill Deacon 
120f81ef4a9SWill Deacon static void write_wb_reg(int n, u32 val)
121f81ef4a9SWill Deacon {
122f81ef4a9SWill Deacon 	switch (n) {
123f81ef4a9SWill Deacon 	GEN_WRITE_WB_REG_CASES(ARM_OP2_BVR, val);
124f81ef4a9SWill Deacon 	GEN_WRITE_WB_REG_CASES(ARM_OP2_BCR, val);
125f81ef4a9SWill Deacon 	GEN_WRITE_WB_REG_CASES(ARM_OP2_WVR, val);
126f81ef4a9SWill Deacon 	GEN_WRITE_WB_REG_CASES(ARM_OP2_WCR, val);
127f81ef4a9SWill Deacon 	default:
128f81ef4a9SWill Deacon 		pr_warning("attempt to write to unknown breakpoint "
129f81ef4a9SWill Deacon 				"register %d\n", n);
130f81ef4a9SWill Deacon 	}
131f81ef4a9SWill Deacon 	isb();
132f81ef4a9SWill Deacon }
133f81ef4a9SWill Deacon 
1340017ff42SWill Deacon /* Determine debug architecture. */
1350017ff42SWill Deacon static u8 get_debug_arch(void)
1360017ff42SWill Deacon {
1370017ff42SWill Deacon 	u32 didr;
1380017ff42SWill Deacon 
1390017ff42SWill Deacon 	/* Do we implement the extended CPUID interface? */
1400017ff42SWill Deacon 	if (((read_cpuid_id() >> 16) & 0xf) != 0xf) {
1410017ff42SWill Deacon 		pr_warning("CPUID feature registers not supported. "
1420017ff42SWill Deacon 				"Assuming v6 debug is present.\n");
1430017ff42SWill Deacon 		return ARM_DEBUG_ARCH_V6;
1440017ff42SWill Deacon 	}
1450017ff42SWill Deacon 
1460017ff42SWill Deacon 	ARM_DBG_READ(c0, 0, didr);
1470017ff42SWill Deacon 	return (didr >> 16) & 0xf;
1480017ff42SWill Deacon }
1490017ff42SWill Deacon 
1500017ff42SWill Deacon u8 arch_get_debug_arch(void)
1510017ff42SWill Deacon {
1520017ff42SWill Deacon 	return debug_arch;
1530017ff42SWill Deacon }
1540017ff42SWill Deacon 
1550017ff42SWill Deacon /* Determine number of BRP register available. */
1560017ff42SWill Deacon static int get_num_brp_resources(void)
1570017ff42SWill Deacon {
1580017ff42SWill Deacon 	u32 didr;
1590017ff42SWill Deacon 	ARM_DBG_READ(c0, 0, didr);
1600017ff42SWill Deacon 	return ((didr >> 24) & 0xf) + 1;
1610017ff42SWill Deacon }
1620017ff42SWill Deacon 
1630017ff42SWill Deacon /* Does this core support mismatch breakpoints? */
1640017ff42SWill Deacon static int core_has_mismatch_brps(void)
1650017ff42SWill Deacon {
1660017ff42SWill Deacon 	return (get_debug_arch() >= ARM_DEBUG_ARCH_V7_ECP14 &&
1670017ff42SWill Deacon 		get_num_brp_resources() > 1);
1680017ff42SWill Deacon }
1690017ff42SWill Deacon 
1700017ff42SWill Deacon /* Determine number of usable WRPs available. */
1710017ff42SWill Deacon static int get_num_wrps(void)
1720017ff42SWill Deacon {
1730017ff42SWill Deacon 	/*
1740017ff42SWill Deacon 	 * FIXME: When a watchpoint fires, the only way to work out which
1750017ff42SWill Deacon 	 * watchpoint it was is by disassembling the faulting instruction
1760017ff42SWill Deacon 	 * and working out the address of the memory access.
1770017ff42SWill Deacon 	 *
1780017ff42SWill Deacon 	 * Furthermore, we can only do this if the watchpoint was precise
1790017ff42SWill Deacon 	 * since imprecise watchpoints prevent us from calculating register
1800017ff42SWill Deacon 	 * based addresses.
1810017ff42SWill Deacon 	 *
1820017ff42SWill Deacon 	 * Providing we have more than 1 breakpoint register, we only report
1830017ff42SWill Deacon 	 * a single watchpoint register for the time being. This way, we always
1840017ff42SWill Deacon 	 * know which watchpoint fired. In the future we can either add a
1850017ff42SWill Deacon 	 * disassembler and address generation emulator, or we can insert a
1860017ff42SWill Deacon 	 * check to see if the DFAR is set on watchpoint exception entry
1870017ff42SWill Deacon 	 * [the ARM ARM states that the DFAR is UNKNOWN, but experience shows
1880017ff42SWill Deacon 	 * that it is set on some implementations].
1890017ff42SWill Deacon 	 */
1900017ff42SWill Deacon 
1910017ff42SWill Deacon #if 0
1920017ff42SWill Deacon 	int wrps;
1930017ff42SWill Deacon 	u32 didr;
1940017ff42SWill Deacon 	ARM_DBG_READ(c0, 0, didr);
1950017ff42SWill Deacon 	wrps = ((didr >> 28) & 0xf) + 1;
1960017ff42SWill Deacon #endif
1970017ff42SWill Deacon 	int wrps = 1;
1980017ff42SWill Deacon 
1990017ff42SWill Deacon 	if (core_has_mismatch_brps() && wrps >= get_num_brp_resources())
2000017ff42SWill Deacon 		wrps = get_num_brp_resources() - 1;
2010017ff42SWill Deacon 
2020017ff42SWill Deacon 	return wrps;
2030017ff42SWill Deacon }
2040017ff42SWill Deacon 
2050017ff42SWill Deacon /* We reserve one breakpoint for each watchpoint. */
2060017ff42SWill Deacon static int get_num_reserved_brps(void)
2070017ff42SWill Deacon {
2080017ff42SWill Deacon 	if (core_has_mismatch_brps())
2090017ff42SWill Deacon 		return get_num_wrps();
2100017ff42SWill Deacon 	return 0;
2110017ff42SWill Deacon }
2120017ff42SWill Deacon 
2130017ff42SWill Deacon /* Determine number of usable BRPs available. */
2140017ff42SWill Deacon static int get_num_brps(void)
2150017ff42SWill Deacon {
2160017ff42SWill Deacon 	int brps = get_num_brp_resources();
2170017ff42SWill Deacon 	if (core_has_mismatch_brps())
2180017ff42SWill Deacon 		brps -= get_num_reserved_brps();
2190017ff42SWill Deacon 	return brps;
2200017ff42SWill Deacon }
2210017ff42SWill Deacon 
2220017ff42SWill Deacon int hw_breakpoint_slots(int type)
2230017ff42SWill Deacon {
2240017ff42SWill Deacon 	/*
2250017ff42SWill Deacon 	 * We can be called early, so don't rely on
2260017ff42SWill Deacon 	 * our static variables being initialised.
2270017ff42SWill Deacon 	 */
2280017ff42SWill Deacon 	switch (type) {
2290017ff42SWill Deacon 	case TYPE_INST:
2300017ff42SWill Deacon 		return get_num_brps();
2310017ff42SWill Deacon 	case TYPE_DATA:
2320017ff42SWill Deacon 		return get_num_wrps();
2330017ff42SWill Deacon 	default:
2340017ff42SWill Deacon 		pr_warning("unknown slot type: %d\n", type);
2350017ff42SWill Deacon 		return 0;
2360017ff42SWill Deacon 	}
2370017ff42SWill Deacon }
2380017ff42SWill Deacon 
239f81ef4a9SWill Deacon /*
240f81ef4a9SWill Deacon  * In order to access the breakpoint/watchpoint control registers,
241f81ef4a9SWill Deacon  * we must be running in debug monitor mode. Unfortunately, we can
242f81ef4a9SWill Deacon  * be put into halting debug mode at any time by an external debugger
243f81ef4a9SWill Deacon  * but there is nothing we can do to prevent that.
244f81ef4a9SWill Deacon  */
245f81ef4a9SWill Deacon static int enable_monitor_mode(void)
246f81ef4a9SWill Deacon {
247f81ef4a9SWill Deacon 	u32 dscr;
248f81ef4a9SWill Deacon 	int ret = 0;
249f81ef4a9SWill Deacon 
250f81ef4a9SWill Deacon 	ARM_DBG_READ(c1, 0, dscr);
251f81ef4a9SWill Deacon 
252f81ef4a9SWill Deacon 	/* Ensure that halting mode is disabled. */
253f81ef4a9SWill Deacon 	if (WARN_ONCE(dscr & ARM_DSCR_HDBGEN, "halting debug mode enabled."
254f81ef4a9SWill Deacon 				"Unable to access hardware resources.")) {
255f81ef4a9SWill Deacon 		ret = -EPERM;
256f81ef4a9SWill Deacon 		goto out;
257f81ef4a9SWill Deacon 	}
258f81ef4a9SWill Deacon 
259f81ef4a9SWill Deacon 	/* Write to the corresponding DSCR. */
260f81ef4a9SWill Deacon 	switch (debug_arch) {
261f81ef4a9SWill Deacon 	case ARM_DEBUG_ARCH_V6:
262f81ef4a9SWill Deacon 	case ARM_DEBUG_ARCH_V6_1:
263f81ef4a9SWill Deacon 		ARM_DBG_WRITE(c1, 0, (dscr | ARM_DSCR_MDBGEN));
264f81ef4a9SWill Deacon 		break;
265f81ef4a9SWill Deacon 	case ARM_DEBUG_ARCH_V7_ECP14:
266f81ef4a9SWill Deacon 		ARM_DBG_WRITE(c2, 2, (dscr | ARM_DSCR_MDBGEN));
267f81ef4a9SWill Deacon 		break;
268f81ef4a9SWill Deacon 	default:
269f81ef4a9SWill Deacon 		ret = -ENODEV;
270f81ef4a9SWill Deacon 		goto out;
271f81ef4a9SWill Deacon 	}
272f81ef4a9SWill Deacon 
273f81ef4a9SWill Deacon 	/* Check that the write made it through. */
274f81ef4a9SWill Deacon 	ARM_DBG_READ(c1, 0, dscr);
275f81ef4a9SWill Deacon 	if (WARN_ONCE(!(dscr & ARM_DSCR_MDBGEN),
276f81ef4a9SWill Deacon 				"failed to enable monitor mode.")) {
277f81ef4a9SWill Deacon 		ret = -EPERM;
278f81ef4a9SWill Deacon 	}
279f81ef4a9SWill Deacon 
280f81ef4a9SWill Deacon out:
281f81ef4a9SWill Deacon 	return ret;
282f81ef4a9SWill Deacon }
283f81ef4a9SWill Deacon 
284f81ef4a9SWill Deacon /*
285f81ef4a9SWill Deacon  * Check if 8-bit byte-address select is available.
286f81ef4a9SWill Deacon  * This clobbers WRP 0.
287f81ef4a9SWill Deacon  */
288f81ef4a9SWill Deacon static u8 get_max_wp_len(void)
289f81ef4a9SWill Deacon {
290f81ef4a9SWill Deacon 	u32 ctrl_reg;
291f81ef4a9SWill Deacon 	struct arch_hw_breakpoint_ctrl ctrl;
292f81ef4a9SWill Deacon 	u8 size = 4;
293f81ef4a9SWill Deacon 
294f81ef4a9SWill Deacon 	if (debug_arch < ARM_DEBUG_ARCH_V7_ECP14)
295f81ef4a9SWill Deacon 		goto out;
296f81ef4a9SWill Deacon 
297f81ef4a9SWill Deacon 	if (enable_monitor_mode())
298f81ef4a9SWill Deacon 		goto out;
299f81ef4a9SWill Deacon 
300f81ef4a9SWill Deacon 	memset(&ctrl, 0, sizeof(ctrl));
301f81ef4a9SWill Deacon 	ctrl.len = ARM_BREAKPOINT_LEN_8;
302f81ef4a9SWill Deacon 	ctrl_reg = encode_ctrl_reg(ctrl);
303f81ef4a9SWill Deacon 
304f81ef4a9SWill Deacon 	write_wb_reg(ARM_BASE_WVR, 0);
305f81ef4a9SWill Deacon 	write_wb_reg(ARM_BASE_WCR, ctrl_reg);
306f81ef4a9SWill Deacon 	if ((read_wb_reg(ARM_BASE_WCR) & ctrl_reg) == ctrl_reg)
307f81ef4a9SWill Deacon 		size = 8;
308f81ef4a9SWill Deacon 
309f81ef4a9SWill Deacon out:
310f81ef4a9SWill Deacon 	return size;
311f81ef4a9SWill Deacon }
312f81ef4a9SWill Deacon 
313f81ef4a9SWill Deacon u8 arch_get_max_wp_len(void)
314f81ef4a9SWill Deacon {
315f81ef4a9SWill Deacon 	return max_watchpoint_len;
316f81ef4a9SWill Deacon }
317f81ef4a9SWill Deacon 
318f81ef4a9SWill Deacon /*
319f81ef4a9SWill Deacon  * Install a perf counter breakpoint.
320f81ef4a9SWill Deacon  */
321f81ef4a9SWill Deacon int arch_install_hw_breakpoint(struct perf_event *bp)
322f81ef4a9SWill Deacon {
323f81ef4a9SWill Deacon 	struct arch_hw_breakpoint *info = counter_arch_bp(bp);
324f81ef4a9SWill Deacon 	struct perf_event **slot, **slots;
325f81ef4a9SWill Deacon 	int i, max_slots, ctrl_base, val_base, ret = 0;
32693a04a34SWill Deacon 	u32 addr, ctrl;
327f81ef4a9SWill Deacon 
328f81ef4a9SWill Deacon 	/* Ensure that we are in monitor mode and halting mode is disabled. */
329f81ef4a9SWill Deacon 	ret = enable_monitor_mode();
330f81ef4a9SWill Deacon 	if (ret)
331f81ef4a9SWill Deacon 		goto out;
332f81ef4a9SWill Deacon 
33393a04a34SWill Deacon 	addr = info->address;
33493a04a34SWill Deacon 	ctrl = encode_ctrl_reg(info->ctrl) | 0x1;
33593a04a34SWill Deacon 
336f81ef4a9SWill Deacon 	if (info->ctrl.type == ARM_BREAKPOINT_EXECUTE) {
337f81ef4a9SWill Deacon 		/* Breakpoint */
338f81ef4a9SWill Deacon 		ctrl_base = ARM_BASE_BCR;
339f81ef4a9SWill Deacon 		val_base = ARM_BASE_BVR;
340*4a55c18eSWill Deacon 		slots = (struct perf_event **)__get_cpu_var(bp_on_reg);
3410017ff42SWill Deacon 		max_slots = core_num_brps;
3429ebb3cbcSWill Deacon 		if (info->step_ctrl.enabled) {
3439ebb3cbcSWill Deacon 			/* Override the breakpoint data with the step data. */
3449ebb3cbcSWill Deacon 			addr = info->trigger & ~0x3;
3459ebb3cbcSWill Deacon 			ctrl = encode_ctrl_reg(info->step_ctrl);
3469ebb3cbcSWill Deacon 		}
347f81ef4a9SWill Deacon 	} else {
348f81ef4a9SWill Deacon 		/* Watchpoint */
34993a04a34SWill Deacon 		if (info->step_ctrl.enabled) {
35093a04a34SWill Deacon 			/* Install into the reserved breakpoint region. */
35193a04a34SWill Deacon 			ctrl_base = ARM_BASE_BCR + core_num_brps;
35293a04a34SWill Deacon 			val_base = ARM_BASE_BVR + core_num_brps;
35393a04a34SWill Deacon 			/* Override the watchpoint data with the step data. */
35493a04a34SWill Deacon 			addr = info->trigger & ~0x3;
35593a04a34SWill Deacon 			ctrl = encode_ctrl_reg(info->step_ctrl);
35693a04a34SWill Deacon 		} else {
357f81ef4a9SWill Deacon 			ctrl_base = ARM_BASE_WCR;
358f81ef4a9SWill Deacon 			val_base = ARM_BASE_WVR;
35993a04a34SWill Deacon 		}
360*4a55c18eSWill Deacon 		slots = (struct perf_event **)__get_cpu_var(wp_on_reg);
361f81ef4a9SWill Deacon 		max_slots = core_num_wrps;
362f81ef4a9SWill Deacon 	}
363f81ef4a9SWill Deacon 
364f81ef4a9SWill Deacon 	for (i = 0; i < max_slots; ++i) {
365f81ef4a9SWill Deacon 		slot = &slots[i];
366f81ef4a9SWill Deacon 
367f81ef4a9SWill Deacon 		if (!*slot) {
368f81ef4a9SWill Deacon 			*slot = bp;
369f81ef4a9SWill Deacon 			break;
370f81ef4a9SWill Deacon 		}
371f81ef4a9SWill Deacon 	}
372f81ef4a9SWill Deacon 
373f81ef4a9SWill Deacon 	if (WARN_ONCE(i == max_slots, "Can't find any breakpoint slot")) {
374f81ef4a9SWill Deacon 		ret = -EBUSY;
375f81ef4a9SWill Deacon 		goto out;
376f81ef4a9SWill Deacon 	}
377f81ef4a9SWill Deacon 
378f81ef4a9SWill Deacon 	/* Setup the address register. */
37993a04a34SWill Deacon 	write_wb_reg(val_base + i, addr);
380f81ef4a9SWill Deacon 
381f81ef4a9SWill Deacon 	/* Setup the control register. */
38293a04a34SWill Deacon 	write_wb_reg(ctrl_base + i, ctrl);
383f81ef4a9SWill Deacon 
384f81ef4a9SWill Deacon out:
385f81ef4a9SWill Deacon 	return ret;
386f81ef4a9SWill Deacon }
387f81ef4a9SWill Deacon 
388f81ef4a9SWill Deacon void arch_uninstall_hw_breakpoint(struct perf_event *bp)
389f81ef4a9SWill Deacon {
390f81ef4a9SWill Deacon 	struct arch_hw_breakpoint *info = counter_arch_bp(bp);
391f81ef4a9SWill Deacon 	struct perf_event **slot, **slots;
392f81ef4a9SWill Deacon 	int i, max_slots, base;
393f81ef4a9SWill Deacon 
394f81ef4a9SWill Deacon 	if (info->ctrl.type == ARM_BREAKPOINT_EXECUTE) {
395f81ef4a9SWill Deacon 		/* Breakpoint */
396f81ef4a9SWill Deacon 		base = ARM_BASE_BCR;
397*4a55c18eSWill Deacon 		slots = (struct perf_event **)__get_cpu_var(bp_on_reg);
3980017ff42SWill Deacon 		max_slots = core_num_brps;
399f81ef4a9SWill Deacon 	} else {
400f81ef4a9SWill Deacon 		/* Watchpoint */
40193a04a34SWill Deacon 		if (info->step_ctrl.enabled)
40293a04a34SWill Deacon 			base = ARM_BASE_BCR + core_num_brps;
40393a04a34SWill Deacon 		else
404f81ef4a9SWill Deacon 			base = ARM_BASE_WCR;
405*4a55c18eSWill Deacon 		slots = (struct perf_event **)__get_cpu_var(wp_on_reg);
406f81ef4a9SWill Deacon 		max_slots = core_num_wrps;
407f81ef4a9SWill Deacon 	}
408f81ef4a9SWill Deacon 
409f81ef4a9SWill Deacon 	/* Remove the breakpoint. */
410f81ef4a9SWill Deacon 	for (i = 0; i < max_slots; ++i) {
411f81ef4a9SWill Deacon 		slot = &slots[i];
412f81ef4a9SWill Deacon 
413f81ef4a9SWill Deacon 		if (*slot == bp) {
414f81ef4a9SWill Deacon 			*slot = NULL;
415f81ef4a9SWill Deacon 			break;
416f81ef4a9SWill Deacon 		}
417f81ef4a9SWill Deacon 	}
418f81ef4a9SWill Deacon 
419f81ef4a9SWill Deacon 	if (WARN_ONCE(i == max_slots, "Can't find any breakpoint slot"))
420f81ef4a9SWill Deacon 		return;
421f81ef4a9SWill Deacon 
422f81ef4a9SWill Deacon 	/* Reset the control register. */
423f81ef4a9SWill Deacon 	write_wb_reg(base + i, 0);
424f81ef4a9SWill Deacon }
425f81ef4a9SWill Deacon 
426f81ef4a9SWill Deacon static int get_hbp_len(u8 hbp_len)
427f81ef4a9SWill Deacon {
428f81ef4a9SWill Deacon 	unsigned int len_in_bytes = 0;
429f81ef4a9SWill Deacon 
430f81ef4a9SWill Deacon 	switch (hbp_len) {
431f81ef4a9SWill Deacon 	case ARM_BREAKPOINT_LEN_1:
432f81ef4a9SWill Deacon 		len_in_bytes = 1;
433f81ef4a9SWill Deacon 		break;
434f81ef4a9SWill Deacon 	case ARM_BREAKPOINT_LEN_2:
435f81ef4a9SWill Deacon 		len_in_bytes = 2;
436f81ef4a9SWill Deacon 		break;
437f81ef4a9SWill Deacon 	case ARM_BREAKPOINT_LEN_4:
438f81ef4a9SWill Deacon 		len_in_bytes = 4;
439f81ef4a9SWill Deacon 		break;
440f81ef4a9SWill Deacon 	case ARM_BREAKPOINT_LEN_8:
441f81ef4a9SWill Deacon 		len_in_bytes = 8;
442f81ef4a9SWill Deacon 		break;
443f81ef4a9SWill Deacon 	}
444f81ef4a9SWill Deacon 
445f81ef4a9SWill Deacon 	return len_in_bytes;
446f81ef4a9SWill Deacon }
447f81ef4a9SWill Deacon 
448f81ef4a9SWill Deacon /*
449f81ef4a9SWill Deacon  * Check whether bp virtual address is in kernel space.
450f81ef4a9SWill Deacon  */
451f81ef4a9SWill Deacon int arch_check_bp_in_kernelspace(struct perf_event *bp)
452f81ef4a9SWill Deacon {
453f81ef4a9SWill Deacon 	unsigned int len;
454f81ef4a9SWill Deacon 	unsigned long va;
455f81ef4a9SWill Deacon 	struct arch_hw_breakpoint *info = counter_arch_bp(bp);
456f81ef4a9SWill Deacon 
457f81ef4a9SWill Deacon 	va = info->address;
458f81ef4a9SWill Deacon 	len = get_hbp_len(info->ctrl.len);
459f81ef4a9SWill Deacon 
460f81ef4a9SWill Deacon 	return (va >= TASK_SIZE) && ((va + len - 1) >= TASK_SIZE);
461f81ef4a9SWill Deacon }
462f81ef4a9SWill Deacon 
463f81ef4a9SWill Deacon /*
464f81ef4a9SWill Deacon  * Extract generic type and length encodings from an arch_hw_breakpoint_ctrl.
465f81ef4a9SWill Deacon  * Hopefully this will disappear when ptrace can bypass the conversion
466f81ef4a9SWill Deacon  * to generic breakpoint descriptions.
467f81ef4a9SWill Deacon  */
468f81ef4a9SWill Deacon int arch_bp_generic_fields(struct arch_hw_breakpoint_ctrl ctrl,
469f81ef4a9SWill Deacon 			   int *gen_len, int *gen_type)
470f81ef4a9SWill Deacon {
471f81ef4a9SWill Deacon 	/* Type */
472f81ef4a9SWill Deacon 	switch (ctrl.type) {
473f81ef4a9SWill Deacon 	case ARM_BREAKPOINT_EXECUTE:
474f81ef4a9SWill Deacon 		*gen_type = HW_BREAKPOINT_X;
475f81ef4a9SWill Deacon 		break;
476f81ef4a9SWill Deacon 	case ARM_BREAKPOINT_LOAD:
477f81ef4a9SWill Deacon 		*gen_type = HW_BREAKPOINT_R;
478f81ef4a9SWill Deacon 		break;
479f81ef4a9SWill Deacon 	case ARM_BREAKPOINT_STORE:
480f81ef4a9SWill Deacon 		*gen_type = HW_BREAKPOINT_W;
481f81ef4a9SWill Deacon 		break;
482f81ef4a9SWill Deacon 	case ARM_BREAKPOINT_LOAD | ARM_BREAKPOINT_STORE:
483f81ef4a9SWill Deacon 		*gen_type = HW_BREAKPOINT_RW;
484f81ef4a9SWill Deacon 		break;
485f81ef4a9SWill Deacon 	default:
486f81ef4a9SWill Deacon 		return -EINVAL;
487f81ef4a9SWill Deacon 	}
488f81ef4a9SWill Deacon 
489f81ef4a9SWill Deacon 	/* Len */
490f81ef4a9SWill Deacon 	switch (ctrl.len) {
491f81ef4a9SWill Deacon 	case ARM_BREAKPOINT_LEN_1:
492f81ef4a9SWill Deacon 		*gen_len = HW_BREAKPOINT_LEN_1;
493f81ef4a9SWill Deacon 		break;
494f81ef4a9SWill Deacon 	case ARM_BREAKPOINT_LEN_2:
495f81ef4a9SWill Deacon 		*gen_len = HW_BREAKPOINT_LEN_2;
496f81ef4a9SWill Deacon 		break;
497f81ef4a9SWill Deacon 	case ARM_BREAKPOINT_LEN_4:
498f81ef4a9SWill Deacon 		*gen_len = HW_BREAKPOINT_LEN_4;
499f81ef4a9SWill Deacon 		break;
500f81ef4a9SWill Deacon 	case ARM_BREAKPOINT_LEN_8:
501f81ef4a9SWill Deacon 		*gen_len = HW_BREAKPOINT_LEN_8;
502f81ef4a9SWill Deacon 		break;
503f81ef4a9SWill Deacon 	default:
504f81ef4a9SWill Deacon 		return -EINVAL;
505f81ef4a9SWill Deacon 	}
506f81ef4a9SWill Deacon 
507f81ef4a9SWill Deacon 	return 0;
508f81ef4a9SWill Deacon }
509f81ef4a9SWill Deacon 
510f81ef4a9SWill Deacon /*
511f81ef4a9SWill Deacon  * Construct an arch_hw_breakpoint from a perf_event.
512f81ef4a9SWill Deacon  */
513f81ef4a9SWill Deacon static int arch_build_bp_info(struct perf_event *bp)
514f81ef4a9SWill Deacon {
515f81ef4a9SWill Deacon 	struct arch_hw_breakpoint *info = counter_arch_bp(bp);
516f81ef4a9SWill Deacon 
517f81ef4a9SWill Deacon 	/* Type */
518f81ef4a9SWill Deacon 	switch (bp->attr.bp_type) {
519f81ef4a9SWill Deacon 	case HW_BREAKPOINT_X:
520f81ef4a9SWill Deacon 		info->ctrl.type = ARM_BREAKPOINT_EXECUTE;
521f81ef4a9SWill Deacon 		break;
522f81ef4a9SWill Deacon 	case HW_BREAKPOINT_R:
523f81ef4a9SWill Deacon 		info->ctrl.type = ARM_BREAKPOINT_LOAD;
524f81ef4a9SWill Deacon 		break;
525f81ef4a9SWill Deacon 	case HW_BREAKPOINT_W:
526f81ef4a9SWill Deacon 		info->ctrl.type = ARM_BREAKPOINT_STORE;
527f81ef4a9SWill Deacon 		break;
528f81ef4a9SWill Deacon 	case HW_BREAKPOINT_RW:
529f81ef4a9SWill Deacon 		info->ctrl.type = ARM_BREAKPOINT_LOAD | ARM_BREAKPOINT_STORE;
530f81ef4a9SWill Deacon 		break;
531f81ef4a9SWill Deacon 	default:
532f81ef4a9SWill Deacon 		return -EINVAL;
533f81ef4a9SWill Deacon 	}
534f81ef4a9SWill Deacon 
535f81ef4a9SWill Deacon 	/* Len */
536f81ef4a9SWill Deacon 	switch (bp->attr.bp_len) {
537f81ef4a9SWill Deacon 	case HW_BREAKPOINT_LEN_1:
538f81ef4a9SWill Deacon 		info->ctrl.len = ARM_BREAKPOINT_LEN_1;
539f81ef4a9SWill Deacon 		break;
540f81ef4a9SWill Deacon 	case HW_BREAKPOINT_LEN_2:
541f81ef4a9SWill Deacon 		info->ctrl.len = ARM_BREAKPOINT_LEN_2;
542f81ef4a9SWill Deacon 		break;
543f81ef4a9SWill Deacon 	case HW_BREAKPOINT_LEN_4:
544f81ef4a9SWill Deacon 		info->ctrl.len = ARM_BREAKPOINT_LEN_4;
545f81ef4a9SWill Deacon 		break;
546f81ef4a9SWill Deacon 	case HW_BREAKPOINT_LEN_8:
547f81ef4a9SWill Deacon 		info->ctrl.len = ARM_BREAKPOINT_LEN_8;
548f81ef4a9SWill Deacon 		if ((info->ctrl.type != ARM_BREAKPOINT_EXECUTE)
549f81ef4a9SWill Deacon 			&& max_watchpoint_len >= 8)
550f81ef4a9SWill Deacon 			break;
551f81ef4a9SWill Deacon 	default:
552f81ef4a9SWill Deacon 		return -EINVAL;
553f81ef4a9SWill Deacon 	}
554f81ef4a9SWill Deacon 
5556ee33c27SWill Deacon 	/*
5566ee33c27SWill Deacon 	 * Breakpoints must be of length 2 (thumb) or 4 (ARM) bytes.
5576ee33c27SWill Deacon 	 * Watchpoints can be of length 1, 2, 4 or 8 bytes if supported
5586ee33c27SWill Deacon 	 * by the hardware and must be aligned to the appropriate number of
5596ee33c27SWill Deacon 	 * bytes.
5606ee33c27SWill Deacon 	 */
5616ee33c27SWill Deacon 	if (info->ctrl.type == ARM_BREAKPOINT_EXECUTE &&
5626ee33c27SWill Deacon 	    info->ctrl.len != ARM_BREAKPOINT_LEN_2 &&
5636ee33c27SWill Deacon 	    info->ctrl.len != ARM_BREAKPOINT_LEN_4)
5646ee33c27SWill Deacon 		return -EINVAL;
5656ee33c27SWill Deacon 
566f81ef4a9SWill Deacon 	/* Address */
567f81ef4a9SWill Deacon 	info->address = bp->attr.bp_addr;
568f81ef4a9SWill Deacon 
569f81ef4a9SWill Deacon 	/* Privilege */
570f81ef4a9SWill Deacon 	info->ctrl.privilege = ARM_BREAKPOINT_USER;
57193a04a34SWill Deacon 	if (arch_check_bp_in_kernelspace(bp))
572f81ef4a9SWill Deacon 		info->ctrl.privilege |= ARM_BREAKPOINT_PRIV;
573f81ef4a9SWill Deacon 
574f81ef4a9SWill Deacon 	/* Enabled? */
575f81ef4a9SWill Deacon 	info->ctrl.enabled = !bp->attr.disabled;
576f81ef4a9SWill Deacon 
577f81ef4a9SWill Deacon 	/* Mismatch */
578f81ef4a9SWill Deacon 	info->ctrl.mismatch = 0;
579f81ef4a9SWill Deacon 
580f81ef4a9SWill Deacon 	return 0;
581f81ef4a9SWill Deacon }
582f81ef4a9SWill Deacon 
583f81ef4a9SWill Deacon /*
584f81ef4a9SWill Deacon  * Validate the arch-specific HW Breakpoint register settings.
585f81ef4a9SWill Deacon  */
586f81ef4a9SWill Deacon int arch_validate_hwbkpt_settings(struct perf_event *bp)
587f81ef4a9SWill Deacon {
588f81ef4a9SWill Deacon 	struct arch_hw_breakpoint *info = counter_arch_bp(bp);
589f81ef4a9SWill Deacon 	int ret = 0;
5906ee33c27SWill Deacon 	u32 offset, alignment_mask = 0x3;
591f81ef4a9SWill Deacon 
592f81ef4a9SWill Deacon 	/* Build the arch_hw_breakpoint. */
593f81ef4a9SWill Deacon 	ret = arch_build_bp_info(bp);
594f81ef4a9SWill Deacon 	if (ret)
595f81ef4a9SWill Deacon 		goto out;
596f81ef4a9SWill Deacon 
597f81ef4a9SWill Deacon 	/* Check address alignment. */
598f81ef4a9SWill Deacon 	if (info->ctrl.len == ARM_BREAKPOINT_LEN_8)
599f81ef4a9SWill Deacon 		alignment_mask = 0x7;
6006ee33c27SWill Deacon 	offset = info->address & alignment_mask;
6016ee33c27SWill Deacon 	switch (offset) {
6026ee33c27SWill Deacon 	case 0:
6036ee33c27SWill Deacon 		/* Aligned */
6046ee33c27SWill Deacon 		break;
6056ee33c27SWill Deacon 	case 1:
6066ee33c27SWill Deacon 		/* Allow single byte watchpoint. */
6076ee33c27SWill Deacon 		if (info->ctrl.len == ARM_BREAKPOINT_LEN_1)
6086ee33c27SWill Deacon 			break;
6096ee33c27SWill Deacon 	case 2:
6106ee33c27SWill Deacon 		/* Allow halfword watchpoints and breakpoints. */
6116ee33c27SWill Deacon 		if (info->ctrl.len == ARM_BREAKPOINT_LEN_2)
6126ee33c27SWill Deacon 			break;
6136ee33c27SWill Deacon 	default:
6146ee33c27SWill Deacon 		ret = -EINVAL;
615f81ef4a9SWill Deacon 		goto out;
616f81ef4a9SWill Deacon 	}
617f81ef4a9SWill Deacon 
6186ee33c27SWill Deacon 	info->address &= ~alignment_mask;
619f81ef4a9SWill Deacon 	info->ctrl.len <<= offset;
620f81ef4a9SWill Deacon 
621f81ef4a9SWill Deacon 	/*
622f81ef4a9SWill Deacon 	 * Currently we rely on an overflow handler to take
623f81ef4a9SWill Deacon 	 * care of single-stepping the breakpoint when it fires.
624f81ef4a9SWill Deacon 	 * In the case of userspace breakpoints on a core with V7 debug,
6253ce70b2eSWill Deacon 	 * we can use the mismatch feature as a poor-man's hardware
6263ce70b2eSWill Deacon 	 * single-step, but this only works for per-task breakpoints.
627f81ef4a9SWill Deacon 	 */
628f81ef4a9SWill Deacon 	if (WARN_ONCE(!bp->overflow_handler &&
6293ce70b2eSWill Deacon 		(arch_check_bp_in_kernelspace(bp) || !core_has_mismatch_brps()
6303ce70b2eSWill Deacon 		 || !bp->hw.bp_target),
631f81ef4a9SWill Deacon 			"overflow handler required but none found")) {
632f81ef4a9SWill Deacon 		ret = -EINVAL;
633f81ef4a9SWill Deacon 	}
634f81ef4a9SWill Deacon out:
635f81ef4a9SWill Deacon 	return ret;
636f81ef4a9SWill Deacon }
637f81ef4a9SWill Deacon 
6389ebb3cbcSWill Deacon /*
6399ebb3cbcSWill Deacon  * Enable/disable single-stepping over the breakpoint bp at address addr.
6409ebb3cbcSWill Deacon  */
6419ebb3cbcSWill Deacon static void enable_single_step(struct perf_event *bp, u32 addr)
642f81ef4a9SWill Deacon {
6439ebb3cbcSWill Deacon 	struct arch_hw_breakpoint *info = counter_arch_bp(bp);
644f81ef4a9SWill Deacon 
6459ebb3cbcSWill Deacon 	arch_uninstall_hw_breakpoint(bp);
6469ebb3cbcSWill Deacon 	info->step_ctrl.mismatch  = 1;
6479ebb3cbcSWill Deacon 	info->step_ctrl.len	  = ARM_BREAKPOINT_LEN_4;
6489ebb3cbcSWill Deacon 	info->step_ctrl.type	  = ARM_BREAKPOINT_EXECUTE;
6499ebb3cbcSWill Deacon 	info->step_ctrl.privilege = info->ctrl.privilege;
6509ebb3cbcSWill Deacon 	info->step_ctrl.enabled	  = 1;
6519ebb3cbcSWill Deacon 	info->trigger		  = addr;
6529ebb3cbcSWill Deacon 	arch_install_hw_breakpoint(bp);
653f81ef4a9SWill Deacon }
6549ebb3cbcSWill Deacon 
6559ebb3cbcSWill Deacon static void disable_single_step(struct perf_event *bp)
6569ebb3cbcSWill Deacon {
6579ebb3cbcSWill Deacon 	arch_uninstall_hw_breakpoint(bp);
6589ebb3cbcSWill Deacon 	counter_arch_bp(bp)->step_ctrl.enabled = 0;
6599ebb3cbcSWill Deacon 	arch_install_hw_breakpoint(bp);
660f81ef4a9SWill Deacon }
661f81ef4a9SWill Deacon 
662f81ef4a9SWill Deacon static void watchpoint_handler(unsigned long unknown, struct pt_regs *regs)
663f81ef4a9SWill Deacon {
664f81ef4a9SWill Deacon 	int i;
665*4a55c18eSWill Deacon 	struct perf_event *wp, **slots;
666f81ef4a9SWill Deacon 	struct arch_hw_breakpoint *info;
667f81ef4a9SWill Deacon 
668*4a55c18eSWill Deacon 	slots = (struct perf_event **)__get_cpu_var(wp_on_reg);
669*4a55c18eSWill Deacon 
670f81ef4a9SWill Deacon 	/* Without a disassembler, we can only handle 1 watchpoint. */
671f81ef4a9SWill Deacon 	BUG_ON(core_num_wrps > 1);
672f81ef4a9SWill Deacon 
673f81ef4a9SWill Deacon 	for (i = 0; i < core_num_wrps; ++i) {
674f81ef4a9SWill Deacon 		rcu_read_lock();
675f81ef4a9SWill Deacon 
67693a04a34SWill Deacon 		wp = slots[i];
67793a04a34SWill Deacon 
67893a04a34SWill Deacon 		if (wp == NULL) {
679f81ef4a9SWill Deacon 			rcu_read_unlock();
680f81ef4a9SWill Deacon 			continue;
681f81ef4a9SWill Deacon 		}
682f81ef4a9SWill Deacon 
683f81ef4a9SWill Deacon 		/*
684f81ef4a9SWill Deacon 		 * The DFAR is an unknown value. Since we only allow a
685f81ef4a9SWill Deacon 		 * single watchpoint, we can set the trigger to the lowest
686f81ef4a9SWill Deacon 		 * possible faulting address.
687f81ef4a9SWill Deacon 		 */
68893a04a34SWill Deacon 		info = counter_arch_bp(wp);
68993a04a34SWill Deacon 		info->trigger = wp->attr.bp_addr;
690f81ef4a9SWill Deacon 		pr_debug("watchpoint fired: address = 0x%x\n", info->trigger);
69193a04a34SWill Deacon 		perf_bp_event(wp, regs);
692f81ef4a9SWill Deacon 
693f81ef4a9SWill Deacon 		/*
694f81ef4a9SWill Deacon 		 * If no overflow handler is present, insert a temporary
695f81ef4a9SWill Deacon 		 * mismatch breakpoint so we can single-step over the
696f81ef4a9SWill Deacon 		 * watchpoint trigger.
697f81ef4a9SWill Deacon 		 */
6989ebb3cbcSWill Deacon 		if (!wp->overflow_handler)
6999ebb3cbcSWill Deacon 			enable_single_step(wp, instruction_pointer(regs));
700f81ef4a9SWill Deacon 
701f81ef4a9SWill Deacon 		rcu_read_unlock();
702f81ef4a9SWill Deacon 	}
703f81ef4a9SWill Deacon }
704f81ef4a9SWill Deacon 
70593a04a34SWill Deacon static void watchpoint_single_step_handler(unsigned long pc)
70693a04a34SWill Deacon {
70793a04a34SWill Deacon 	int i;
708*4a55c18eSWill Deacon 	struct perf_event *wp, **slots;
70993a04a34SWill Deacon 	struct arch_hw_breakpoint *info;
71093a04a34SWill Deacon 
711*4a55c18eSWill Deacon 	slots = (struct perf_event **)__get_cpu_var(wp_on_reg);
712*4a55c18eSWill Deacon 
71393a04a34SWill Deacon 	for (i = 0; i < core_num_reserved_brps; ++i) {
71493a04a34SWill Deacon 		rcu_read_lock();
71593a04a34SWill Deacon 
71693a04a34SWill Deacon 		wp = slots[i];
71793a04a34SWill Deacon 
71893a04a34SWill Deacon 		if (wp == NULL)
71993a04a34SWill Deacon 			goto unlock;
72093a04a34SWill Deacon 
72193a04a34SWill Deacon 		info = counter_arch_bp(wp);
72293a04a34SWill Deacon 		if (!info->step_ctrl.enabled)
72393a04a34SWill Deacon 			goto unlock;
72493a04a34SWill Deacon 
72593a04a34SWill Deacon 		/*
72693a04a34SWill Deacon 		 * Restore the original watchpoint if we've completed the
72793a04a34SWill Deacon 		 * single-step.
72893a04a34SWill Deacon 		 */
7299ebb3cbcSWill Deacon 		if (info->trigger != pc)
7309ebb3cbcSWill Deacon 			disable_single_step(wp);
73193a04a34SWill Deacon 
73293a04a34SWill Deacon unlock:
73393a04a34SWill Deacon 		rcu_read_unlock();
73493a04a34SWill Deacon 	}
73593a04a34SWill Deacon }
73693a04a34SWill Deacon 
737f81ef4a9SWill Deacon static void breakpoint_handler(unsigned long unknown, struct pt_regs *regs)
738f81ef4a9SWill Deacon {
739f81ef4a9SWill Deacon 	int i;
740f81ef4a9SWill Deacon 	u32 ctrl_reg, val, addr;
741*4a55c18eSWill Deacon 	struct perf_event *bp, **slots;
742f81ef4a9SWill Deacon 	struct arch_hw_breakpoint *info;
743f81ef4a9SWill Deacon 	struct arch_hw_breakpoint_ctrl ctrl;
744f81ef4a9SWill Deacon 
745*4a55c18eSWill Deacon 	slots = (struct perf_event **)__get_cpu_var(bp_on_reg);
746*4a55c18eSWill Deacon 
747f81ef4a9SWill Deacon 	/* The exception entry code places the amended lr in the PC. */
748f81ef4a9SWill Deacon 	addr = regs->ARM_pc;
749f81ef4a9SWill Deacon 
75093a04a34SWill Deacon 	/* Check the currently installed breakpoints first. */
75193a04a34SWill Deacon 	for (i = 0; i < core_num_brps; ++i) {
752f81ef4a9SWill Deacon 		rcu_read_lock();
753f81ef4a9SWill Deacon 
754f81ef4a9SWill Deacon 		bp = slots[i];
755f81ef4a9SWill Deacon 
7569ebb3cbcSWill Deacon 		if (bp == NULL)
7579ebb3cbcSWill Deacon 			goto unlock;
758f81ef4a9SWill Deacon 
7599ebb3cbcSWill Deacon 		info = counter_arch_bp(bp);
760f81ef4a9SWill Deacon 
761f81ef4a9SWill Deacon 		/* Check if the breakpoint value matches. */
762f81ef4a9SWill Deacon 		val = read_wb_reg(ARM_BASE_BVR + i);
763f81ef4a9SWill Deacon 		if (val != (addr & ~0x3))
7649ebb3cbcSWill Deacon 			goto mismatch;
765f81ef4a9SWill Deacon 
766f81ef4a9SWill Deacon 		/* Possible match, check the byte address select to confirm. */
767f81ef4a9SWill Deacon 		ctrl_reg = read_wb_reg(ARM_BASE_BCR + i);
768f81ef4a9SWill Deacon 		decode_ctrl_reg(ctrl_reg, &ctrl);
769f81ef4a9SWill Deacon 		if ((1 << (addr & 0x3)) & ctrl.len) {
770f81ef4a9SWill Deacon 			info->trigger = addr;
771f81ef4a9SWill Deacon 			pr_debug("breakpoint fired: address = 0x%x\n", addr);
772f81ef4a9SWill Deacon 			perf_bp_event(bp, regs);
7739ebb3cbcSWill Deacon 			if (!bp->overflow_handler)
7749ebb3cbcSWill Deacon 				enable_single_step(bp, addr);
7759ebb3cbcSWill Deacon 			goto unlock;
776f81ef4a9SWill Deacon 		}
777f81ef4a9SWill Deacon 
7789ebb3cbcSWill Deacon mismatch:
7799ebb3cbcSWill Deacon 		/* If we're stepping a breakpoint, it can now be restored. */
7809ebb3cbcSWill Deacon 		if (info->step_ctrl.enabled)
7819ebb3cbcSWill Deacon 			disable_single_step(bp);
7829ebb3cbcSWill Deacon unlock:
783f81ef4a9SWill Deacon 		rcu_read_unlock();
784f81ef4a9SWill Deacon 	}
78593a04a34SWill Deacon 
78693a04a34SWill Deacon 	/* Handle any pending watchpoint single-step breakpoints. */
78793a04a34SWill Deacon 	watchpoint_single_step_handler(addr);
788f81ef4a9SWill Deacon }
789f81ef4a9SWill Deacon 
790f81ef4a9SWill Deacon /*
791f81ef4a9SWill Deacon  * Called from either the Data Abort Handler [watchpoint] or the
7927e202696SWill Deacon  * Prefetch Abort Handler [breakpoint] with preemption disabled.
793f81ef4a9SWill Deacon  */
794f81ef4a9SWill Deacon static int hw_breakpoint_pending(unsigned long addr, unsigned int fsr,
795f81ef4a9SWill Deacon 				 struct pt_regs *regs)
796f81ef4a9SWill Deacon {
7977e202696SWill Deacon 	int ret = 0;
798f81ef4a9SWill Deacon 	u32 dscr;
799f81ef4a9SWill Deacon 
8007e202696SWill Deacon 	/* We must be called with preemption disabled. */
8017e202696SWill Deacon 	WARN_ON(preemptible());
8027e202696SWill Deacon 
803f81ef4a9SWill Deacon 	/* We only handle watchpoints and hardware breakpoints. */
804f81ef4a9SWill Deacon 	ARM_DBG_READ(c1, 0, dscr);
805f81ef4a9SWill Deacon 
806f81ef4a9SWill Deacon 	/* Perform perf callbacks. */
807f81ef4a9SWill Deacon 	switch (ARM_DSCR_MOE(dscr)) {
808f81ef4a9SWill Deacon 	case ARM_ENTRY_BREAKPOINT:
809f81ef4a9SWill Deacon 		breakpoint_handler(addr, regs);
810f81ef4a9SWill Deacon 		break;
811f81ef4a9SWill Deacon 	case ARM_ENTRY_ASYNC_WATCHPOINT:
812235584b6SJoe Perches 		WARN(1, "Asynchronous watchpoint exception taken. Debugging results may be unreliable\n");
813f81ef4a9SWill Deacon 	case ARM_ENTRY_SYNC_WATCHPOINT:
814f81ef4a9SWill Deacon 		watchpoint_handler(addr, regs);
815f81ef4a9SWill Deacon 		break;
816f81ef4a9SWill Deacon 	default:
8177e202696SWill Deacon 		ret = 1; /* Unhandled fault. */
818f81ef4a9SWill Deacon 	}
819f81ef4a9SWill Deacon 
8207e202696SWill Deacon 	/*
8217e202696SWill Deacon 	 * Re-enable preemption after it was disabled in the
8227e202696SWill Deacon 	 * low-level exception handling code.
8237e202696SWill Deacon 	 */
8247e202696SWill Deacon 	preempt_enable();
8257e202696SWill Deacon 
826f81ef4a9SWill Deacon 	return ret;
827f81ef4a9SWill Deacon }
828f81ef4a9SWill Deacon 
829f81ef4a9SWill Deacon /*
830f81ef4a9SWill Deacon  * One-time initialisation.
831f81ef4a9SWill Deacon  */
8327d99331eSWill Deacon static void reset_ctrl_regs(void *unused)
833f81ef4a9SWill Deacon {
834f81ef4a9SWill Deacon 	int i;
835f81ef4a9SWill Deacon 
836ac88e071SWill Deacon 	/*
837ac88e071SWill Deacon 	 * v7 debug contains save and restore registers so that debug state
838ac88e071SWill Deacon 	 * can be maintained across low-power modes without leaving
839ac88e071SWill Deacon 	 * the debug logic powered up. It is IMPLEMENTATION DEFINED whether
840ac88e071SWill Deacon 	 * we can write to the debug registers out of reset, so we must
841ac88e071SWill Deacon 	 * unlock the OS Lock Access Register to avoid taking undefined
842ac88e071SWill Deacon 	 * instruction exceptions later on.
843ac88e071SWill Deacon 	 */
844ac88e071SWill Deacon 	if (debug_arch >= ARM_DEBUG_ARCH_V7_ECP14) {
845ac88e071SWill Deacon 		/*
846ac88e071SWill Deacon 		 * Unconditionally clear the lock by writing a value
847ac88e071SWill Deacon 		 * other than 0xC5ACCE55 to the access register.
848ac88e071SWill Deacon 		 */
849ac88e071SWill Deacon 		asm volatile("mcr p14, 0, %0, c1, c0, 4" : : "r" (0));
850ac88e071SWill Deacon 		isb();
851ac88e071SWill Deacon 	}
852ac88e071SWill Deacon 
853f81ef4a9SWill Deacon 	if (enable_monitor_mode())
854f81ef4a9SWill Deacon 		return;
855f81ef4a9SWill Deacon 
8560017ff42SWill Deacon 	/* We must also reset any reserved registers. */
8570017ff42SWill Deacon 	for (i = 0; i < core_num_brps + core_num_reserved_brps; ++i) {
858f81ef4a9SWill Deacon 		write_wb_reg(ARM_BASE_BCR + i, 0UL);
859f81ef4a9SWill Deacon 		write_wb_reg(ARM_BASE_BVR + i, 0UL);
860f81ef4a9SWill Deacon 	}
861f81ef4a9SWill Deacon 
862f81ef4a9SWill Deacon 	for (i = 0; i < core_num_wrps; ++i) {
863f81ef4a9SWill Deacon 		write_wb_reg(ARM_BASE_WCR + i, 0UL);
864f81ef4a9SWill Deacon 		write_wb_reg(ARM_BASE_WVR + i, 0UL);
865f81ef4a9SWill Deacon 	}
866f81ef4a9SWill Deacon }
867f81ef4a9SWill Deacon 
8687d99331eSWill Deacon static int __cpuinit dbg_reset_notify(struct notifier_block *self,
8697d99331eSWill Deacon 				      unsigned long action, void *cpu)
8707d99331eSWill Deacon {
8717d99331eSWill Deacon 	if (action == CPU_ONLINE)
8727d99331eSWill Deacon 		smp_call_function_single((int)cpu, reset_ctrl_regs, NULL, 1);
8737d99331eSWill Deacon 	return NOTIFY_OK;
8747d99331eSWill Deacon }
8757d99331eSWill Deacon 
8767d99331eSWill Deacon static struct notifier_block __cpuinitdata dbg_reset_nb = {
8777d99331eSWill Deacon 	.notifier_call = dbg_reset_notify,
8787d99331eSWill Deacon };
8797d99331eSWill Deacon 
880f81ef4a9SWill Deacon static int __init arch_hw_breakpoint_init(void)
881f81ef4a9SWill Deacon {
882f81ef4a9SWill Deacon 	int ret = 0;
883f81ef4a9SWill Deacon 	u32 dscr;
884f81ef4a9SWill Deacon 
885f81ef4a9SWill Deacon 	debug_arch = get_debug_arch();
886f81ef4a9SWill Deacon 
887f81ef4a9SWill Deacon 	if (debug_arch > ARM_DEBUG_ARCH_V7_ECP14) {
888f81ef4a9SWill Deacon 		pr_info("debug architecture 0x%x unsupported.\n", debug_arch);
889f81ef4a9SWill Deacon 		ret = -ENODEV;
890f81ef4a9SWill Deacon 		goto out;
891f81ef4a9SWill Deacon 	}
892f81ef4a9SWill Deacon 
893f81ef4a9SWill Deacon 	/* Determine how many BRPs/WRPs are available. */
894f81ef4a9SWill Deacon 	core_num_brps = get_num_brps();
8950017ff42SWill Deacon 	core_num_reserved_brps = get_num_reserved_brps();
896f81ef4a9SWill Deacon 	core_num_wrps = get_num_wrps();
897f81ef4a9SWill Deacon 
898f81ef4a9SWill Deacon 	pr_info("found %d breakpoint and %d watchpoint registers.\n",
8990017ff42SWill Deacon 		core_num_brps + core_num_reserved_brps, core_num_wrps);
900f81ef4a9SWill Deacon 
9010017ff42SWill Deacon 	if (core_num_reserved_brps)
9020017ff42SWill Deacon 		pr_info("%d breakpoint(s) reserved for watchpoint "
9030017ff42SWill Deacon 				"single-step.\n", core_num_reserved_brps);
904f81ef4a9SWill Deacon 
905f81ef4a9SWill Deacon 	ARM_DBG_READ(c1, 0, dscr);
906f81ef4a9SWill Deacon 	if (dscr & ARM_DSCR_HDBGEN) {
907f81ef4a9SWill Deacon 		pr_warning("halting debug mode enabled. Assuming maximum "
908f81ef4a9SWill Deacon 				"watchpoint size of 4 bytes.");
909f81ef4a9SWill Deacon 	} else {
910f81ef4a9SWill Deacon 		/*
911f81ef4a9SWill Deacon 		 * Reset the breakpoint resources. We assume that a halting
912f81ef4a9SWill Deacon 		 * debugger will leave the world in a nice state for us.
913f81ef4a9SWill Deacon 		 */
914f81ef4a9SWill Deacon 		smp_call_function(reset_ctrl_regs, NULL, 1);
915f81ef4a9SWill Deacon 		reset_ctrl_regs(NULL);
916ac88e071SWill Deacon 
917ac88e071SWill Deacon 		/* Work out the maximum supported watchpoint length. */
918ac88e071SWill Deacon 		max_watchpoint_len = get_max_wp_len();
919ac88e071SWill Deacon 		pr_info("maximum watchpoint size is %u bytes.\n",
920ac88e071SWill Deacon 				max_watchpoint_len);
921f81ef4a9SWill Deacon 	}
922f81ef4a9SWill Deacon 
923f81ef4a9SWill Deacon 	/* Register debug fault handler. */
924f81ef4a9SWill Deacon 	hook_fault_code(2, hw_breakpoint_pending, SIGTRAP, TRAP_HWBKPT,
925f81ef4a9SWill Deacon 			"watchpoint debug exception");
926f81ef4a9SWill Deacon 	hook_ifault_code(2, hw_breakpoint_pending, SIGTRAP, TRAP_HWBKPT,
927f81ef4a9SWill Deacon 			"breakpoint debug exception");
928f81ef4a9SWill Deacon 
9297d99331eSWill Deacon 	/* Register hotplug notifier. */
9307d99331eSWill Deacon 	register_cpu_notifier(&dbg_reset_nb);
931f81ef4a9SWill Deacon out:
932f81ef4a9SWill Deacon 	return ret;
933f81ef4a9SWill Deacon }
934f81ef4a9SWill Deacon arch_initcall(arch_hw_breakpoint_init);
935f81ef4a9SWill Deacon 
936f81ef4a9SWill Deacon void hw_breakpoint_pmu_read(struct perf_event *bp)
937f81ef4a9SWill Deacon {
938f81ef4a9SWill Deacon }
939f81ef4a9SWill Deacon 
940f81ef4a9SWill Deacon /*
941f81ef4a9SWill Deacon  * Dummy function to register with die_notifier.
942f81ef4a9SWill Deacon  */
943f81ef4a9SWill Deacon int hw_breakpoint_exceptions_notify(struct notifier_block *unused,
944f81ef4a9SWill Deacon 					unsigned long val, void *data)
945f81ef4a9SWill Deacon {
946f81ef4a9SWill Deacon 	return NOTIFY_DONE;
947f81ef4a9SWill Deacon }
948