1 /* 2 * Copyright 2008 Jerome Glisse. 3 * All Rights Reserved. 4 * 5 * Permission is hereby granted, free of charge, to any person obtaining a 6 * copy of this software and associated documentation files (the "Software"), 7 * to deal in the Software without restriction, including without limitation 8 * the rights to use, copy, modify, merge, publish, distribute, sublicense, 9 * and/or sell copies of the Software, and to permit persons to whom the 10 * Software is furnished to do so, subject to the following conditions: 11 * 12 * The above copyright notice and this permission notice (including the next 13 * paragraph) shall be included in all copies or substantial portions of the 14 * Software. 15 * 16 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR 17 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, 18 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL 19 * PRECISION INSIGHT AND/OR ITS SUPPLIERS BE LIABLE FOR ANY CLAIM, DAMAGES OR 20 * OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, 21 * ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER 22 * DEALINGS IN THE SOFTWARE. 23 * 24 * Authors: 25 * Jerome Glisse <glisse@freedesktop.org> 26 */ 27 #include "drmP.h" 28 #include "radeon_drm.h" 29 #include "radeon_reg.h" 30 #include "radeon.h" 31 32 void r100_cs_dump_packet(struct radeon_cs_parser *p, 33 struct radeon_cs_packet *pkt); 34 35 int radeon_cs_parser_relocs(struct radeon_cs_parser *p) 36 { 37 struct drm_device *ddev = p->rdev->ddev; 38 struct radeon_cs_chunk *chunk; 39 unsigned i, j; 40 bool duplicate; 41 42 if (p->chunk_relocs_idx == -1) { 43 return 0; 44 } 45 chunk = &p->chunks[p->chunk_relocs_idx]; 46 /* FIXME: we assume that each relocs use 4 dwords */ 47 p->nrelocs = chunk->length_dw / 4; 48 p->relocs_ptr = kcalloc(p->nrelocs, sizeof(void *), GFP_KERNEL); 49 if (p->relocs_ptr == NULL) { 50 return -ENOMEM; 51 } 52 p->relocs = kcalloc(p->nrelocs, sizeof(struct radeon_cs_reloc), GFP_KERNEL); 53 if (p->relocs == NULL) { 54 return -ENOMEM; 55 } 56 for (i = 0; i < p->nrelocs; i++) { 57 struct drm_radeon_cs_reloc *r; 58 59 duplicate = false; 60 r = (struct drm_radeon_cs_reloc *)&chunk->kdata[i*4]; 61 for (j = 0; j < p->nrelocs; j++) { 62 if (r->handle == p->relocs[j].handle) { 63 p->relocs_ptr[i] = &p->relocs[j]; 64 duplicate = true; 65 break; 66 } 67 } 68 if (!duplicate) { 69 p->relocs[i].gobj = drm_gem_object_lookup(ddev, 70 p->filp, 71 r->handle); 72 if (p->relocs[i].gobj == NULL) { 73 DRM_ERROR("gem object lookup failed 0x%x\n", 74 r->handle); 75 return -ENOENT; 76 } 77 p->relocs_ptr[i] = &p->relocs[i]; 78 p->relocs[i].robj = p->relocs[i].gobj->driver_private; 79 p->relocs[i].lobj.bo = p->relocs[i].robj; 80 p->relocs[i].lobj.rdomain = r->read_domains; 81 p->relocs[i].lobj.wdomain = r->write_domain; 82 p->relocs[i].handle = r->handle; 83 p->relocs[i].flags = r->flags; 84 INIT_LIST_HEAD(&p->relocs[i].lobj.list); 85 radeon_bo_list_add_object(&p->relocs[i].lobj, 86 &p->validated); 87 } 88 } 89 return radeon_bo_list_validate(&p->validated); 90 } 91 92 int radeon_cs_parser_init(struct radeon_cs_parser *p, void *data) 93 { 94 struct drm_radeon_cs *cs = data; 95 uint64_t *chunk_array_ptr; 96 unsigned size, i; 97 98 if (!cs->num_chunks) { 99 return 0; 100 } 101 /* get chunks */ 102 INIT_LIST_HEAD(&p->validated); 103 p->idx = 0; 104 p->chunk_ib_idx = -1; 105 p->chunk_relocs_idx = -1; 106 p->chunks_array = kcalloc(cs->num_chunks, sizeof(uint64_t), GFP_KERNEL); 107 if (p->chunks_array == NULL) { 108 return -ENOMEM; 109 } 110 chunk_array_ptr = (uint64_t *)(unsigned long)(cs->chunks); 111 if (DRM_COPY_FROM_USER(p->chunks_array, chunk_array_ptr, 112 sizeof(uint64_t)*cs->num_chunks)) { 113 return -EFAULT; 114 } 115 p->nchunks = cs->num_chunks; 116 p->chunks = kcalloc(p->nchunks, sizeof(struct radeon_cs_chunk), GFP_KERNEL); 117 if (p->chunks == NULL) { 118 return -ENOMEM; 119 } 120 for (i = 0; i < p->nchunks; i++) { 121 struct drm_radeon_cs_chunk __user **chunk_ptr = NULL; 122 struct drm_radeon_cs_chunk user_chunk; 123 uint32_t __user *cdata; 124 125 chunk_ptr = (void __user*)(unsigned long)p->chunks_array[i]; 126 if (DRM_COPY_FROM_USER(&user_chunk, chunk_ptr, 127 sizeof(struct drm_radeon_cs_chunk))) { 128 return -EFAULT; 129 } 130 p->chunks[i].length_dw = user_chunk.length_dw; 131 p->chunks[i].kdata = NULL; 132 p->chunks[i].chunk_id = user_chunk.chunk_id; 133 134 if (p->chunks[i].chunk_id == RADEON_CHUNK_ID_RELOCS) { 135 p->chunk_relocs_idx = i; 136 } 137 if (p->chunks[i].chunk_id == RADEON_CHUNK_ID_IB) { 138 p->chunk_ib_idx = i; 139 /* zero length IB isn't useful */ 140 if (p->chunks[i].length_dw == 0) 141 return -EINVAL; 142 } 143 144 p->chunks[i].length_dw = user_chunk.length_dw; 145 p->chunks[i].user_ptr = (void __user *)(unsigned long)user_chunk.chunk_data; 146 147 cdata = (uint32_t *)(unsigned long)user_chunk.chunk_data; 148 if (p->chunks[i].chunk_id != RADEON_CHUNK_ID_IB) { 149 size = p->chunks[i].length_dw * sizeof(uint32_t); 150 p->chunks[i].kdata = kmalloc(size, GFP_KERNEL); 151 if (p->chunks[i].kdata == NULL) { 152 return -ENOMEM; 153 } 154 if (DRM_COPY_FROM_USER(p->chunks[i].kdata, 155 p->chunks[i].user_ptr, size)) { 156 return -EFAULT; 157 } 158 } else { 159 p->chunks[i].kpage[0] = kmalloc(PAGE_SIZE, GFP_KERNEL); 160 p->chunks[i].kpage[1] = kmalloc(PAGE_SIZE, GFP_KERNEL); 161 if (p->chunks[i].kpage[0] == NULL || p->chunks[i].kpage[1] == NULL) { 162 kfree(p->chunks[i].kpage[0]); 163 kfree(p->chunks[i].kpage[1]); 164 return -ENOMEM; 165 } 166 p->chunks[i].kpage_idx[0] = -1; 167 p->chunks[i].kpage_idx[1] = -1; 168 p->chunks[i].last_copied_page = -1; 169 p->chunks[i].last_page_index = ((p->chunks[i].length_dw * 4) - 1) / PAGE_SIZE; 170 } 171 } 172 if (p->chunks[p->chunk_ib_idx].length_dw > (16 * 1024)) { 173 DRM_ERROR("cs IB too big: %d\n", 174 p->chunks[p->chunk_ib_idx].length_dw); 175 return -EINVAL; 176 } 177 return 0; 178 } 179 180 /** 181 * cs_parser_fini() - clean parser states 182 * @parser: parser structure holding parsing context. 183 * @error: error number 184 * 185 * If error is set than unvalidate buffer, otherwise just free memory 186 * used by parsing context. 187 **/ 188 static void radeon_cs_parser_fini(struct radeon_cs_parser *parser, int error) 189 { 190 unsigned i; 191 192 if (!error && parser->ib) { 193 radeon_bo_list_fence(&parser->validated, parser->ib->fence); 194 } 195 radeon_bo_list_unreserve(&parser->validated); 196 if (parser->relocs != NULL) { 197 for (i = 0; i < parser->nrelocs; i++) { 198 if (parser->relocs[i].gobj) 199 drm_gem_object_unreference_unlocked(parser->relocs[i].gobj); 200 } 201 } 202 kfree(parser->track); 203 kfree(parser->relocs); 204 kfree(parser->relocs_ptr); 205 for (i = 0; i < parser->nchunks; i++) { 206 kfree(parser->chunks[i].kdata); 207 kfree(parser->chunks[i].kpage[0]); 208 kfree(parser->chunks[i].kpage[1]); 209 } 210 kfree(parser->chunks); 211 kfree(parser->chunks_array); 212 radeon_ib_free(parser->rdev, &parser->ib); 213 } 214 215 int radeon_cs_ioctl(struct drm_device *dev, void *data, struct drm_file *filp) 216 { 217 struct radeon_device *rdev = dev->dev_private; 218 struct radeon_cs_parser parser; 219 struct radeon_cs_chunk *ib_chunk; 220 int r; 221 222 mutex_lock(&rdev->cs_mutex); 223 /* initialize parser */ 224 memset(&parser, 0, sizeof(struct radeon_cs_parser)); 225 parser.filp = filp; 226 parser.rdev = rdev; 227 parser.dev = rdev->dev; 228 r = radeon_cs_parser_init(&parser, data); 229 if (r) { 230 DRM_ERROR("Failed to initialize parser !\n"); 231 radeon_cs_parser_fini(&parser, r); 232 mutex_unlock(&rdev->cs_mutex); 233 return r; 234 } 235 r = radeon_ib_get(rdev, &parser.ib); 236 if (r) { 237 DRM_ERROR("Failed to get ib !\n"); 238 radeon_cs_parser_fini(&parser, r); 239 mutex_unlock(&rdev->cs_mutex); 240 return r; 241 } 242 r = radeon_cs_parser_relocs(&parser); 243 if (r) { 244 if (r != -ERESTARTSYS) 245 DRM_ERROR("Failed to parse relocation %d!\n", r); 246 radeon_cs_parser_fini(&parser, r); 247 mutex_unlock(&rdev->cs_mutex); 248 return r; 249 } 250 /* Copy the packet into the IB, the parser will read from the 251 * input memory (cached) and write to the IB (which can be 252 * uncached). */ 253 ib_chunk = &parser.chunks[parser.chunk_ib_idx]; 254 parser.ib->length_dw = ib_chunk->length_dw; 255 r = radeon_cs_parse(&parser); 256 if (r || parser.parser_error) { 257 DRM_ERROR("Invalid command stream !\n"); 258 radeon_cs_parser_fini(&parser, r); 259 mutex_unlock(&rdev->cs_mutex); 260 return r; 261 } 262 r = radeon_cs_finish_pages(&parser); 263 if (r) { 264 DRM_ERROR("Invalid command stream !\n"); 265 radeon_cs_parser_fini(&parser, r); 266 mutex_unlock(&rdev->cs_mutex); 267 return r; 268 } 269 r = radeon_ib_schedule(rdev, parser.ib); 270 if (r) { 271 DRM_ERROR("Failed to schedule IB !\n"); 272 } 273 radeon_cs_parser_fini(&parser, r); 274 mutex_unlock(&rdev->cs_mutex); 275 return r; 276 } 277 278 int radeon_cs_finish_pages(struct radeon_cs_parser *p) 279 { 280 struct radeon_cs_chunk *ibc = &p->chunks[p->chunk_ib_idx]; 281 int i; 282 int size = PAGE_SIZE; 283 284 for (i = ibc->last_copied_page + 1; i <= ibc->last_page_index; i++) { 285 if (i == ibc->last_page_index) { 286 size = (ibc->length_dw * 4) % PAGE_SIZE; 287 if (size == 0) 288 size = PAGE_SIZE; 289 } 290 291 if (DRM_COPY_FROM_USER(p->ib->ptr + (i * (PAGE_SIZE/4)), 292 ibc->user_ptr + (i * PAGE_SIZE), 293 size)) 294 return -EFAULT; 295 } 296 return 0; 297 } 298 299 int radeon_cs_update_pages(struct radeon_cs_parser *p, int pg_idx) 300 { 301 int new_page; 302 struct radeon_cs_chunk *ibc = &p->chunks[p->chunk_ib_idx]; 303 int i; 304 int size = PAGE_SIZE; 305 306 for (i = ibc->last_copied_page + 1; i < pg_idx; i++) { 307 if (DRM_COPY_FROM_USER(p->ib->ptr + (i * (PAGE_SIZE/4)), 308 ibc->user_ptr + (i * PAGE_SIZE), 309 PAGE_SIZE)) { 310 p->parser_error = -EFAULT; 311 return 0; 312 } 313 } 314 315 new_page = ibc->kpage_idx[0] < ibc->kpage_idx[1] ? 0 : 1; 316 317 if (pg_idx == ibc->last_page_index) { 318 size = (ibc->length_dw * 4) % PAGE_SIZE; 319 if (size == 0) 320 size = PAGE_SIZE; 321 } 322 323 if (DRM_COPY_FROM_USER(ibc->kpage[new_page], 324 ibc->user_ptr + (pg_idx * PAGE_SIZE), 325 size)) { 326 p->parser_error = -EFAULT; 327 return 0; 328 } 329 330 /* copy to IB here */ 331 memcpy((void *)(p->ib->ptr+(pg_idx*(PAGE_SIZE/4))), ibc->kpage[new_page], size); 332 333 ibc->last_copied_page = pg_idx; 334 ibc->kpage_idx[new_page] = pg_idx; 335 336 return new_page; 337 } 338