1 // SPDX-License-Identifier: GPL-2.0-only
2 /* The industrial I/O core
3  *
4  * Copyright (c) 2008 Jonathan Cameron
5  *
6  * Handling of buffer allocation / resizing.
7  *
8  * Things to look at here.
9  * - Better memory allocation techniques?
10  * - Alternative access techniques?
11  */
12 #include <linux/anon_inodes.h>
13 #include <linux/kernel.h>
14 #include <linux/export.h>
15 #include <linux/device.h>
16 #include <linux/file.h>
17 #include <linux/fs.h>
18 #include <linux/cdev.h>
19 #include <linux/slab.h>
20 #include <linux/poll.h>
21 #include <linux/sched/signal.h>
22 
23 #include <linux/iio/iio.h>
24 #include <linux/iio/iio-opaque.h>
25 #include "iio_core.h"
26 #include "iio_core_trigger.h"
27 #include <linux/iio/sysfs.h>
28 #include <linux/iio/buffer.h>
29 #include <linux/iio/buffer_impl.h>
30 
31 static const char * const iio_endian_prefix[] = {
32 	[IIO_BE] = "be",
33 	[IIO_LE] = "le",
34 };
35 
36 static bool iio_buffer_is_active(struct iio_buffer *buf)
37 {
38 	return !list_empty(&buf->buffer_list);
39 }
40 
41 static size_t iio_buffer_data_available(struct iio_buffer *buf)
42 {
43 	return buf->access->data_available(buf);
44 }
45 
46 static int iio_buffer_flush_hwfifo(struct iio_dev *indio_dev,
47 				   struct iio_buffer *buf, size_t required)
48 {
49 	if (!indio_dev->info->hwfifo_flush_to_buffer)
50 		return -ENODEV;
51 
52 	return indio_dev->info->hwfifo_flush_to_buffer(indio_dev, required);
53 }
54 
55 static bool iio_buffer_ready(struct iio_dev *indio_dev, struct iio_buffer *buf,
56 			     size_t to_wait, int to_flush)
57 {
58 	size_t avail;
59 	int flushed = 0;
60 
61 	/* wakeup if the device was unregistered */
62 	if (!indio_dev->info)
63 		return true;
64 
65 	/* drain the buffer if it was disabled */
66 	if (!iio_buffer_is_active(buf)) {
67 		to_wait = min_t(size_t, to_wait, 1);
68 		to_flush = 0;
69 	}
70 
71 	avail = iio_buffer_data_available(buf);
72 
73 	if (avail >= to_wait) {
74 		/* force a flush for non-blocking reads */
75 		if (!to_wait && avail < to_flush)
76 			iio_buffer_flush_hwfifo(indio_dev, buf,
77 						to_flush - avail);
78 		return true;
79 	}
80 
81 	if (to_flush)
82 		flushed = iio_buffer_flush_hwfifo(indio_dev, buf,
83 						  to_wait - avail);
84 	if (flushed <= 0)
85 		return false;
86 
87 	if (avail + flushed >= to_wait)
88 		return true;
89 
90 	return false;
91 }
92 
93 /**
94  * iio_buffer_read() - chrdev read for buffer access
95  * @filp:	File structure pointer for the char device
96  * @buf:	Destination buffer for iio buffer read
97  * @n:		First n bytes to read
98  * @f_ps:	Long offset provided by the user as a seek position
99  *
100  * This function relies on all buffer implementations having an
101  * iio_buffer as their first element.
102  *
103  * Return: negative values corresponding to error codes or ret != 0
104  *	   for ending the reading activity
105  **/
106 static ssize_t iio_buffer_read(struct file *filp, char __user *buf,
107 			       size_t n, loff_t *f_ps)
108 {
109 	struct iio_dev_buffer_pair *ib = filp->private_data;
110 	struct iio_buffer *rb = ib->buffer;
111 	struct iio_dev *indio_dev = ib->indio_dev;
112 	DEFINE_WAIT_FUNC(wait, woken_wake_function);
113 	size_t datum_size;
114 	size_t to_wait;
115 	int ret = 0;
116 
117 	if (!indio_dev->info)
118 		return -ENODEV;
119 
120 	if (!rb || !rb->access->read)
121 		return -EINVAL;
122 
123 	datum_size = rb->bytes_per_datum;
124 
125 	/*
126 	 * If datum_size is 0 there will never be anything to read from the
127 	 * buffer, so signal end of file now.
128 	 */
129 	if (!datum_size)
130 		return 0;
131 
132 	if (filp->f_flags & O_NONBLOCK)
133 		to_wait = 0;
134 	else
135 		to_wait = min_t(size_t, n / datum_size, rb->watermark);
136 
137 	add_wait_queue(&rb->pollq, &wait);
138 	do {
139 		if (!indio_dev->info) {
140 			ret = -ENODEV;
141 			break;
142 		}
143 
144 		if (!iio_buffer_ready(indio_dev, rb, to_wait, n / datum_size)) {
145 			if (signal_pending(current)) {
146 				ret = -ERESTARTSYS;
147 				break;
148 			}
149 
150 			wait_woken(&wait, TASK_INTERRUPTIBLE,
151 				   MAX_SCHEDULE_TIMEOUT);
152 			continue;
153 		}
154 
155 		ret = rb->access->read(rb, n, buf);
156 		if (ret == 0 && (filp->f_flags & O_NONBLOCK))
157 			ret = -EAGAIN;
158 	} while (ret == 0);
159 	remove_wait_queue(&rb->pollq, &wait);
160 
161 	return ret;
162 }
163 
164 /**
165  * iio_buffer_poll() - poll the buffer to find out if it has data
166  * @filp:	File structure pointer for device access
167  * @wait:	Poll table structure pointer for which the driver adds
168  *		a wait queue
169  *
170  * Return: (EPOLLIN | EPOLLRDNORM) if data is available for reading
171  *	   or 0 for other cases
172  */
173 static __poll_t iio_buffer_poll(struct file *filp,
174 				struct poll_table_struct *wait)
175 {
176 	struct iio_dev_buffer_pair *ib = filp->private_data;
177 	struct iio_buffer *rb = ib->buffer;
178 	struct iio_dev *indio_dev = ib->indio_dev;
179 
180 	if (!indio_dev->info || rb == NULL)
181 		return 0;
182 
183 	poll_wait(filp, &rb->pollq, wait);
184 	if (iio_buffer_ready(indio_dev, rb, rb->watermark, 0))
185 		return EPOLLIN | EPOLLRDNORM;
186 	return 0;
187 }
188 
189 ssize_t iio_buffer_read_wrapper(struct file *filp, char __user *buf,
190 				size_t n, loff_t *f_ps)
191 {
192 	struct iio_dev_buffer_pair *ib = filp->private_data;
193 	struct iio_buffer *rb = ib->buffer;
194 
195 	/* check if buffer was opened through new API */
196 	if (test_bit(IIO_BUSY_BIT_POS, &rb->flags))
197 		return -EBUSY;
198 
199 	return iio_buffer_read(filp, buf, n, f_ps);
200 }
201 
202 __poll_t iio_buffer_poll_wrapper(struct file *filp,
203 				 struct poll_table_struct *wait)
204 {
205 	struct iio_dev_buffer_pair *ib = filp->private_data;
206 	struct iio_buffer *rb = ib->buffer;
207 
208 	/* check if buffer was opened through new API */
209 	if (test_bit(IIO_BUSY_BIT_POS, &rb->flags))
210 		return 0;
211 
212 	return iio_buffer_poll(filp, wait);
213 }
214 
215 /**
216  * iio_buffer_wakeup_poll - Wakes up the buffer waitqueue
217  * @indio_dev: The IIO device
218  *
219  * Wakes up the event waitqueue used for poll(). Should usually
220  * be called when the device is unregistered.
221  */
222 void iio_buffer_wakeup_poll(struct iio_dev *indio_dev)
223 {
224 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
225 	struct iio_buffer *buffer;
226 	unsigned int i;
227 
228 	for (i = 0; i < iio_dev_opaque->attached_buffers_cnt; i++) {
229 		buffer = iio_dev_opaque->attached_buffers[i];
230 		wake_up(&buffer->pollq);
231 	}
232 }
233 
234 void iio_buffer_init(struct iio_buffer *buffer)
235 {
236 	INIT_LIST_HEAD(&buffer->demux_list);
237 	INIT_LIST_HEAD(&buffer->buffer_list);
238 	init_waitqueue_head(&buffer->pollq);
239 	kref_init(&buffer->ref);
240 	if (!buffer->watermark)
241 		buffer->watermark = 1;
242 }
243 EXPORT_SYMBOL(iio_buffer_init);
244 
245 void iio_device_detach_buffers(struct iio_dev *indio_dev)
246 {
247 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
248 	struct iio_buffer *buffer;
249 	unsigned int i;
250 
251 	for (i = 0; i < iio_dev_opaque->attached_buffers_cnt; i++) {
252 		buffer = iio_dev_opaque->attached_buffers[i];
253 		iio_buffer_put(buffer);
254 	}
255 
256 	kfree(iio_dev_opaque->attached_buffers);
257 }
258 
259 static ssize_t iio_show_scan_index(struct device *dev,
260 				   struct device_attribute *attr,
261 				   char *buf)
262 {
263 	return sysfs_emit(buf, "%u\n", to_iio_dev_attr(attr)->c->scan_index);
264 }
265 
266 static ssize_t iio_show_fixed_type(struct device *dev,
267 				   struct device_attribute *attr,
268 				   char *buf)
269 {
270 	struct iio_dev_attr *this_attr = to_iio_dev_attr(attr);
271 	u8 type = this_attr->c->scan_type.endianness;
272 
273 	if (type == IIO_CPU) {
274 #ifdef __LITTLE_ENDIAN
275 		type = IIO_LE;
276 #else
277 		type = IIO_BE;
278 #endif
279 	}
280 	if (this_attr->c->scan_type.repeat > 1)
281 		return sysfs_emit(buf, "%s:%c%d/%dX%d>>%u\n",
282 		       iio_endian_prefix[type],
283 		       this_attr->c->scan_type.sign,
284 		       this_attr->c->scan_type.realbits,
285 		       this_attr->c->scan_type.storagebits,
286 		       this_attr->c->scan_type.repeat,
287 		       this_attr->c->scan_type.shift);
288 	else
289 		return sysfs_emit(buf, "%s:%c%d/%d>>%u\n",
290 		       iio_endian_prefix[type],
291 		       this_attr->c->scan_type.sign,
292 		       this_attr->c->scan_type.realbits,
293 		       this_attr->c->scan_type.storagebits,
294 		       this_attr->c->scan_type.shift);
295 }
296 
297 static ssize_t iio_scan_el_show(struct device *dev,
298 				struct device_attribute *attr,
299 				char *buf)
300 {
301 	int ret;
302 	struct iio_buffer *buffer = to_iio_dev_attr(attr)->buffer;
303 
304 	/* Ensure ret is 0 or 1. */
305 	ret = !!test_bit(to_iio_dev_attr(attr)->address,
306 		       buffer->scan_mask);
307 
308 	return sysfs_emit(buf, "%d\n", ret);
309 }
310 
311 /* Note NULL used as error indicator as it doesn't make sense. */
312 static const unsigned long *iio_scan_mask_match(const unsigned long *av_masks,
313 					  unsigned int masklength,
314 					  const unsigned long *mask,
315 					  bool strict)
316 {
317 	if (bitmap_empty(mask, masklength))
318 		return NULL;
319 	while (*av_masks) {
320 		if (strict) {
321 			if (bitmap_equal(mask, av_masks, masklength))
322 				return av_masks;
323 		} else {
324 			if (bitmap_subset(mask, av_masks, masklength))
325 				return av_masks;
326 		}
327 		av_masks += BITS_TO_LONGS(masklength);
328 	}
329 	return NULL;
330 }
331 
332 static bool iio_validate_scan_mask(struct iio_dev *indio_dev,
333 	const unsigned long *mask)
334 {
335 	if (!indio_dev->setup_ops->validate_scan_mask)
336 		return true;
337 
338 	return indio_dev->setup_ops->validate_scan_mask(indio_dev, mask);
339 }
340 
341 /**
342  * iio_scan_mask_set() - set particular bit in the scan mask
343  * @indio_dev: the iio device
344  * @buffer: the buffer whose scan mask we are interested in
345  * @bit: the bit to be set.
346  *
347  * Note that at this point we have no way of knowing what other
348  * buffers might request, hence this code only verifies that the
349  * individual buffers request is plausible.
350  */
351 static int iio_scan_mask_set(struct iio_dev *indio_dev,
352 		      struct iio_buffer *buffer, int bit)
353 {
354 	const unsigned long *mask;
355 	unsigned long *trialmask;
356 
357 	if (!indio_dev->masklength) {
358 		WARN(1, "Trying to set scanmask prior to registering buffer\n");
359 		return -EINVAL;
360 	}
361 
362 	trialmask = bitmap_alloc(indio_dev->masklength, GFP_KERNEL);
363 	if (!trialmask)
364 		return -ENOMEM;
365 	bitmap_copy(trialmask, buffer->scan_mask, indio_dev->masklength);
366 	set_bit(bit, trialmask);
367 
368 	if (!iio_validate_scan_mask(indio_dev, trialmask))
369 		goto err_invalid_mask;
370 
371 	if (indio_dev->available_scan_masks) {
372 		mask = iio_scan_mask_match(indio_dev->available_scan_masks,
373 					   indio_dev->masklength,
374 					   trialmask, false);
375 		if (!mask)
376 			goto err_invalid_mask;
377 	}
378 	bitmap_copy(buffer->scan_mask, trialmask, indio_dev->masklength);
379 
380 	bitmap_free(trialmask);
381 
382 	return 0;
383 
384 err_invalid_mask:
385 	bitmap_free(trialmask);
386 	return -EINVAL;
387 }
388 
389 static int iio_scan_mask_clear(struct iio_buffer *buffer, int bit)
390 {
391 	clear_bit(bit, buffer->scan_mask);
392 	return 0;
393 }
394 
395 static int iio_scan_mask_query(struct iio_dev *indio_dev,
396 			       struct iio_buffer *buffer, int bit)
397 {
398 	if (bit > indio_dev->masklength)
399 		return -EINVAL;
400 
401 	if (!buffer->scan_mask)
402 		return 0;
403 
404 	/* Ensure return value is 0 or 1. */
405 	return !!test_bit(bit, buffer->scan_mask);
406 };
407 
408 static ssize_t iio_scan_el_store(struct device *dev,
409 				 struct device_attribute *attr,
410 				 const char *buf,
411 				 size_t len)
412 {
413 	int ret;
414 	bool state;
415 	struct iio_dev *indio_dev = dev_to_iio_dev(dev);
416 	struct iio_dev_attr *this_attr = to_iio_dev_attr(attr);
417 	struct iio_buffer *buffer = this_attr->buffer;
418 
419 	ret = strtobool(buf, &state);
420 	if (ret < 0)
421 		return ret;
422 	mutex_lock(&indio_dev->mlock);
423 	if (iio_buffer_is_active(buffer)) {
424 		ret = -EBUSY;
425 		goto error_ret;
426 	}
427 	ret = iio_scan_mask_query(indio_dev, buffer, this_attr->address);
428 	if (ret < 0)
429 		goto error_ret;
430 	if (!state && ret) {
431 		ret = iio_scan_mask_clear(buffer, this_attr->address);
432 		if (ret)
433 			goto error_ret;
434 	} else if (state && !ret) {
435 		ret = iio_scan_mask_set(indio_dev, buffer, this_attr->address);
436 		if (ret)
437 			goto error_ret;
438 	}
439 
440 error_ret:
441 	mutex_unlock(&indio_dev->mlock);
442 
443 	return ret < 0 ? ret : len;
444 
445 }
446 
447 static ssize_t iio_scan_el_ts_show(struct device *dev,
448 				   struct device_attribute *attr,
449 				   char *buf)
450 {
451 	struct iio_buffer *buffer = to_iio_dev_attr(attr)->buffer;
452 
453 	return sysfs_emit(buf, "%d\n", buffer->scan_timestamp);
454 }
455 
456 static ssize_t iio_scan_el_ts_store(struct device *dev,
457 				    struct device_attribute *attr,
458 				    const char *buf,
459 				    size_t len)
460 {
461 	int ret;
462 	struct iio_dev *indio_dev = dev_to_iio_dev(dev);
463 	struct iio_buffer *buffer = to_iio_dev_attr(attr)->buffer;
464 	bool state;
465 
466 	ret = strtobool(buf, &state);
467 	if (ret < 0)
468 		return ret;
469 
470 	mutex_lock(&indio_dev->mlock);
471 	if (iio_buffer_is_active(buffer)) {
472 		ret = -EBUSY;
473 		goto error_ret;
474 	}
475 	buffer->scan_timestamp = state;
476 error_ret:
477 	mutex_unlock(&indio_dev->mlock);
478 
479 	return ret ? ret : len;
480 }
481 
482 static int iio_buffer_add_channel_sysfs(struct iio_dev *indio_dev,
483 					struct iio_buffer *buffer,
484 					const struct iio_chan_spec *chan)
485 {
486 	int ret, attrcount = 0;
487 
488 	ret = __iio_add_chan_devattr("index",
489 				     chan,
490 				     &iio_show_scan_index,
491 				     NULL,
492 				     0,
493 				     IIO_SEPARATE,
494 				     &indio_dev->dev,
495 				     buffer,
496 				     &buffer->buffer_attr_list);
497 	if (ret)
498 		return ret;
499 	attrcount++;
500 	ret = __iio_add_chan_devattr("type",
501 				     chan,
502 				     &iio_show_fixed_type,
503 				     NULL,
504 				     0,
505 				     0,
506 				     &indio_dev->dev,
507 				     buffer,
508 				     &buffer->buffer_attr_list);
509 	if (ret)
510 		return ret;
511 	attrcount++;
512 	if (chan->type != IIO_TIMESTAMP)
513 		ret = __iio_add_chan_devattr("en",
514 					     chan,
515 					     &iio_scan_el_show,
516 					     &iio_scan_el_store,
517 					     chan->scan_index,
518 					     0,
519 					     &indio_dev->dev,
520 					     buffer,
521 					     &buffer->buffer_attr_list);
522 	else
523 		ret = __iio_add_chan_devattr("en",
524 					     chan,
525 					     &iio_scan_el_ts_show,
526 					     &iio_scan_el_ts_store,
527 					     chan->scan_index,
528 					     0,
529 					     &indio_dev->dev,
530 					     buffer,
531 					     &buffer->buffer_attr_list);
532 	if (ret)
533 		return ret;
534 	attrcount++;
535 	ret = attrcount;
536 	return ret;
537 }
538 
539 static ssize_t iio_buffer_read_length(struct device *dev,
540 				      struct device_attribute *attr,
541 				      char *buf)
542 {
543 	struct iio_buffer *buffer = to_iio_dev_attr(attr)->buffer;
544 
545 	return sysfs_emit(buf, "%d\n", buffer->length);
546 }
547 
548 static ssize_t iio_buffer_write_length(struct device *dev,
549 				       struct device_attribute *attr,
550 				       const char *buf, size_t len)
551 {
552 	struct iio_dev *indio_dev = dev_to_iio_dev(dev);
553 	struct iio_buffer *buffer = to_iio_dev_attr(attr)->buffer;
554 	unsigned int val;
555 	int ret;
556 
557 	ret = kstrtouint(buf, 10, &val);
558 	if (ret)
559 		return ret;
560 
561 	if (val == buffer->length)
562 		return len;
563 
564 	mutex_lock(&indio_dev->mlock);
565 	if (iio_buffer_is_active(buffer)) {
566 		ret = -EBUSY;
567 	} else {
568 		buffer->access->set_length(buffer, val);
569 		ret = 0;
570 	}
571 	if (ret)
572 		goto out;
573 	if (buffer->length && buffer->length < buffer->watermark)
574 		buffer->watermark = buffer->length;
575 out:
576 	mutex_unlock(&indio_dev->mlock);
577 
578 	return ret ? ret : len;
579 }
580 
581 static ssize_t iio_buffer_show_enable(struct device *dev,
582 				      struct device_attribute *attr,
583 				      char *buf)
584 {
585 	struct iio_buffer *buffer = to_iio_dev_attr(attr)->buffer;
586 
587 	return sysfs_emit(buf, "%d\n", iio_buffer_is_active(buffer));
588 }
589 
590 static unsigned int iio_storage_bytes_for_si(struct iio_dev *indio_dev,
591 					     unsigned int scan_index)
592 {
593 	const struct iio_chan_spec *ch;
594 	unsigned int bytes;
595 
596 	ch = iio_find_channel_from_si(indio_dev, scan_index);
597 	bytes = ch->scan_type.storagebits / 8;
598 	if (ch->scan_type.repeat > 1)
599 		bytes *= ch->scan_type.repeat;
600 	return bytes;
601 }
602 
603 static unsigned int iio_storage_bytes_for_timestamp(struct iio_dev *indio_dev)
604 {
605 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
606 
607 	return iio_storage_bytes_for_si(indio_dev,
608 					iio_dev_opaque->scan_index_timestamp);
609 }
610 
611 static int iio_compute_scan_bytes(struct iio_dev *indio_dev,
612 				const unsigned long *mask, bool timestamp)
613 {
614 	unsigned bytes = 0;
615 	int length, i, largest = 0;
616 
617 	/* How much space will the demuxed element take? */
618 	for_each_set_bit(i, mask,
619 			 indio_dev->masklength) {
620 		length = iio_storage_bytes_for_si(indio_dev, i);
621 		bytes = ALIGN(bytes, length);
622 		bytes += length;
623 		largest = max(largest, length);
624 	}
625 
626 	if (timestamp) {
627 		length = iio_storage_bytes_for_timestamp(indio_dev);
628 		bytes = ALIGN(bytes, length);
629 		bytes += length;
630 		largest = max(largest, length);
631 	}
632 
633 	bytes = ALIGN(bytes, largest);
634 	return bytes;
635 }
636 
637 static void iio_buffer_activate(struct iio_dev *indio_dev,
638 	struct iio_buffer *buffer)
639 {
640 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
641 
642 	iio_buffer_get(buffer);
643 	list_add(&buffer->buffer_list, &iio_dev_opaque->buffer_list);
644 }
645 
646 static void iio_buffer_deactivate(struct iio_buffer *buffer)
647 {
648 	list_del_init(&buffer->buffer_list);
649 	wake_up_interruptible(&buffer->pollq);
650 	iio_buffer_put(buffer);
651 }
652 
653 static void iio_buffer_deactivate_all(struct iio_dev *indio_dev)
654 {
655 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
656 	struct iio_buffer *buffer, *_buffer;
657 
658 	list_for_each_entry_safe(buffer, _buffer,
659 			&iio_dev_opaque->buffer_list, buffer_list)
660 		iio_buffer_deactivate(buffer);
661 }
662 
663 static int iio_buffer_enable(struct iio_buffer *buffer,
664 	struct iio_dev *indio_dev)
665 {
666 	if (!buffer->access->enable)
667 		return 0;
668 	return buffer->access->enable(buffer, indio_dev);
669 }
670 
671 static int iio_buffer_disable(struct iio_buffer *buffer,
672 	struct iio_dev *indio_dev)
673 {
674 	if (!buffer->access->disable)
675 		return 0;
676 	return buffer->access->disable(buffer, indio_dev);
677 }
678 
679 static void iio_buffer_update_bytes_per_datum(struct iio_dev *indio_dev,
680 	struct iio_buffer *buffer)
681 {
682 	unsigned int bytes;
683 
684 	if (!buffer->access->set_bytes_per_datum)
685 		return;
686 
687 	bytes = iio_compute_scan_bytes(indio_dev, buffer->scan_mask,
688 		buffer->scan_timestamp);
689 
690 	buffer->access->set_bytes_per_datum(buffer, bytes);
691 }
692 
693 static int iio_buffer_request_update(struct iio_dev *indio_dev,
694 	struct iio_buffer *buffer)
695 {
696 	int ret;
697 
698 	iio_buffer_update_bytes_per_datum(indio_dev, buffer);
699 	if (buffer->access->request_update) {
700 		ret = buffer->access->request_update(buffer);
701 		if (ret) {
702 			dev_dbg(&indio_dev->dev,
703 			       "Buffer not started: buffer parameter update failed (%d)\n",
704 				ret);
705 			return ret;
706 		}
707 	}
708 
709 	return 0;
710 }
711 
712 static void iio_free_scan_mask(struct iio_dev *indio_dev,
713 	const unsigned long *mask)
714 {
715 	/* If the mask is dynamically allocated free it, otherwise do nothing */
716 	if (!indio_dev->available_scan_masks)
717 		bitmap_free(mask);
718 }
719 
720 struct iio_device_config {
721 	unsigned int mode;
722 	unsigned int watermark;
723 	const unsigned long *scan_mask;
724 	unsigned int scan_bytes;
725 	bool scan_timestamp;
726 };
727 
728 static int iio_verify_update(struct iio_dev *indio_dev,
729 	struct iio_buffer *insert_buffer, struct iio_buffer *remove_buffer,
730 	struct iio_device_config *config)
731 {
732 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
733 	unsigned long *compound_mask;
734 	const unsigned long *scan_mask;
735 	bool strict_scanmask = false;
736 	struct iio_buffer *buffer;
737 	bool scan_timestamp;
738 	unsigned int modes;
739 
740 	if (insert_buffer &&
741 	    bitmap_empty(insert_buffer->scan_mask, indio_dev->masklength)) {
742 		dev_dbg(&indio_dev->dev,
743 			"At least one scan element must be enabled first\n");
744 		return -EINVAL;
745 	}
746 
747 	memset(config, 0, sizeof(*config));
748 	config->watermark = ~0;
749 
750 	/*
751 	 * If there is just one buffer and we are removing it there is nothing
752 	 * to verify.
753 	 */
754 	if (remove_buffer && !insert_buffer &&
755 		list_is_singular(&iio_dev_opaque->buffer_list))
756 			return 0;
757 
758 	modes = indio_dev->modes;
759 
760 	list_for_each_entry(buffer, &iio_dev_opaque->buffer_list, buffer_list) {
761 		if (buffer == remove_buffer)
762 			continue;
763 		modes &= buffer->access->modes;
764 		config->watermark = min(config->watermark, buffer->watermark);
765 	}
766 
767 	if (insert_buffer) {
768 		modes &= insert_buffer->access->modes;
769 		config->watermark = min(config->watermark,
770 			insert_buffer->watermark);
771 	}
772 
773 	/* Definitely possible for devices to support both of these. */
774 	if ((modes & INDIO_BUFFER_TRIGGERED) && indio_dev->trig) {
775 		config->mode = INDIO_BUFFER_TRIGGERED;
776 	} else if (modes & INDIO_BUFFER_HARDWARE) {
777 		/*
778 		 * Keep things simple for now and only allow a single buffer to
779 		 * be connected in hardware mode.
780 		 */
781 		if (insert_buffer && !list_empty(&iio_dev_opaque->buffer_list))
782 			return -EINVAL;
783 		config->mode = INDIO_BUFFER_HARDWARE;
784 		strict_scanmask = true;
785 	} else if (modes & INDIO_BUFFER_SOFTWARE) {
786 		config->mode = INDIO_BUFFER_SOFTWARE;
787 	} else {
788 		/* Can only occur on first buffer */
789 		if (indio_dev->modes & INDIO_BUFFER_TRIGGERED)
790 			dev_dbg(&indio_dev->dev, "Buffer not started: no trigger\n");
791 		return -EINVAL;
792 	}
793 
794 	/* What scan mask do we actually have? */
795 	compound_mask = bitmap_zalloc(indio_dev->masklength, GFP_KERNEL);
796 	if (compound_mask == NULL)
797 		return -ENOMEM;
798 
799 	scan_timestamp = false;
800 
801 	list_for_each_entry(buffer, &iio_dev_opaque->buffer_list, buffer_list) {
802 		if (buffer == remove_buffer)
803 			continue;
804 		bitmap_or(compound_mask, compound_mask, buffer->scan_mask,
805 			  indio_dev->masklength);
806 		scan_timestamp |= buffer->scan_timestamp;
807 	}
808 
809 	if (insert_buffer) {
810 		bitmap_or(compound_mask, compound_mask,
811 			  insert_buffer->scan_mask, indio_dev->masklength);
812 		scan_timestamp |= insert_buffer->scan_timestamp;
813 	}
814 
815 	if (indio_dev->available_scan_masks) {
816 		scan_mask = iio_scan_mask_match(indio_dev->available_scan_masks,
817 				    indio_dev->masklength,
818 				    compound_mask,
819 				    strict_scanmask);
820 		bitmap_free(compound_mask);
821 		if (scan_mask == NULL)
822 			return -EINVAL;
823 	} else {
824 	    scan_mask = compound_mask;
825 	}
826 
827 	config->scan_bytes = iio_compute_scan_bytes(indio_dev,
828 				    scan_mask, scan_timestamp);
829 	config->scan_mask = scan_mask;
830 	config->scan_timestamp = scan_timestamp;
831 
832 	return 0;
833 }
834 
835 /**
836  * struct iio_demux_table - table describing demux memcpy ops
837  * @from:	index to copy from
838  * @to:		index to copy to
839  * @length:	how many bytes to copy
840  * @l:		list head used for management
841  */
842 struct iio_demux_table {
843 	unsigned from;
844 	unsigned to;
845 	unsigned length;
846 	struct list_head l;
847 };
848 
849 static void iio_buffer_demux_free(struct iio_buffer *buffer)
850 {
851 	struct iio_demux_table *p, *q;
852 	list_for_each_entry_safe(p, q, &buffer->demux_list, l) {
853 		list_del(&p->l);
854 		kfree(p);
855 	}
856 }
857 
858 static int iio_buffer_add_demux(struct iio_buffer *buffer,
859 	struct iio_demux_table **p, unsigned int in_loc, unsigned int out_loc,
860 	unsigned int length)
861 {
862 
863 	if (*p && (*p)->from + (*p)->length == in_loc &&
864 		(*p)->to + (*p)->length == out_loc) {
865 		(*p)->length += length;
866 	} else {
867 		*p = kmalloc(sizeof(**p), GFP_KERNEL);
868 		if (*p == NULL)
869 			return -ENOMEM;
870 		(*p)->from = in_loc;
871 		(*p)->to = out_loc;
872 		(*p)->length = length;
873 		list_add_tail(&(*p)->l, &buffer->demux_list);
874 	}
875 
876 	return 0;
877 }
878 
879 static int iio_buffer_update_demux(struct iio_dev *indio_dev,
880 				   struct iio_buffer *buffer)
881 {
882 	int ret, in_ind = -1, out_ind, length;
883 	unsigned in_loc = 0, out_loc = 0;
884 	struct iio_demux_table *p = NULL;
885 
886 	/* Clear out any old demux */
887 	iio_buffer_demux_free(buffer);
888 	kfree(buffer->demux_bounce);
889 	buffer->demux_bounce = NULL;
890 
891 	/* First work out which scan mode we will actually have */
892 	if (bitmap_equal(indio_dev->active_scan_mask,
893 			 buffer->scan_mask,
894 			 indio_dev->masklength))
895 		return 0;
896 
897 	/* Now we have the two masks, work from least sig and build up sizes */
898 	for_each_set_bit(out_ind,
899 			 buffer->scan_mask,
900 			 indio_dev->masklength) {
901 		in_ind = find_next_bit(indio_dev->active_scan_mask,
902 				       indio_dev->masklength,
903 				       in_ind + 1);
904 		while (in_ind != out_ind) {
905 			length = iio_storage_bytes_for_si(indio_dev, in_ind);
906 			/* Make sure we are aligned */
907 			in_loc = roundup(in_loc, length) + length;
908 			in_ind = find_next_bit(indio_dev->active_scan_mask,
909 					       indio_dev->masklength,
910 					       in_ind + 1);
911 		}
912 		length = iio_storage_bytes_for_si(indio_dev, in_ind);
913 		out_loc = roundup(out_loc, length);
914 		in_loc = roundup(in_loc, length);
915 		ret = iio_buffer_add_demux(buffer, &p, in_loc, out_loc, length);
916 		if (ret)
917 			goto error_clear_mux_table;
918 		out_loc += length;
919 		in_loc += length;
920 	}
921 	/* Relies on scan_timestamp being last */
922 	if (buffer->scan_timestamp) {
923 		length = iio_storage_bytes_for_timestamp(indio_dev);
924 		out_loc = roundup(out_loc, length);
925 		in_loc = roundup(in_loc, length);
926 		ret = iio_buffer_add_demux(buffer, &p, in_loc, out_loc, length);
927 		if (ret)
928 			goto error_clear_mux_table;
929 		out_loc += length;
930 	}
931 	buffer->demux_bounce = kzalloc(out_loc, GFP_KERNEL);
932 	if (buffer->demux_bounce == NULL) {
933 		ret = -ENOMEM;
934 		goto error_clear_mux_table;
935 	}
936 	return 0;
937 
938 error_clear_mux_table:
939 	iio_buffer_demux_free(buffer);
940 
941 	return ret;
942 }
943 
944 static int iio_update_demux(struct iio_dev *indio_dev)
945 {
946 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
947 	struct iio_buffer *buffer;
948 	int ret;
949 
950 	list_for_each_entry(buffer, &iio_dev_opaque->buffer_list, buffer_list) {
951 		ret = iio_buffer_update_demux(indio_dev, buffer);
952 		if (ret < 0)
953 			goto error_clear_mux_table;
954 	}
955 	return 0;
956 
957 error_clear_mux_table:
958 	list_for_each_entry(buffer, &iio_dev_opaque->buffer_list, buffer_list)
959 		iio_buffer_demux_free(buffer);
960 
961 	return ret;
962 }
963 
964 static int iio_enable_buffers(struct iio_dev *indio_dev,
965 	struct iio_device_config *config)
966 {
967 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
968 	struct iio_buffer *buffer;
969 	int ret;
970 
971 	indio_dev->active_scan_mask = config->scan_mask;
972 	indio_dev->scan_timestamp = config->scan_timestamp;
973 	indio_dev->scan_bytes = config->scan_bytes;
974 	indio_dev->currentmode = config->mode;
975 
976 	iio_update_demux(indio_dev);
977 
978 	/* Wind up again */
979 	if (indio_dev->setup_ops->preenable) {
980 		ret = indio_dev->setup_ops->preenable(indio_dev);
981 		if (ret) {
982 			dev_dbg(&indio_dev->dev,
983 			       "Buffer not started: buffer preenable failed (%d)\n", ret);
984 			goto err_undo_config;
985 		}
986 	}
987 
988 	if (indio_dev->info->update_scan_mode) {
989 		ret = indio_dev->info
990 			->update_scan_mode(indio_dev,
991 					   indio_dev->active_scan_mask);
992 		if (ret < 0) {
993 			dev_dbg(&indio_dev->dev,
994 				"Buffer not started: update scan mode failed (%d)\n",
995 				ret);
996 			goto err_run_postdisable;
997 		}
998 	}
999 
1000 	if (indio_dev->info->hwfifo_set_watermark)
1001 		indio_dev->info->hwfifo_set_watermark(indio_dev,
1002 			config->watermark);
1003 
1004 	list_for_each_entry(buffer, &iio_dev_opaque->buffer_list, buffer_list) {
1005 		ret = iio_buffer_enable(buffer, indio_dev);
1006 		if (ret)
1007 			goto err_disable_buffers;
1008 	}
1009 
1010 	if (indio_dev->currentmode == INDIO_BUFFER_TRIGGERED) {
1011 		ret = iio_trigger_attach_poll_func(indio_dev->trig,
1012 						   indio_dev->pollfunc);
1013 		if (ret)
1014 			goto err_disable_buffers;
1015 	}
1016 
1017 	if (indio_dev->setup_ops->postenable) {
1018 		ret = indio_dev->setup_ops->postenable(indio_dev);
1019 		if (ret) {
1020 			dev_dbg(&indio_dev->dev,
1021 			       "Buffer not started: postenable failed (%d)\n", ret);
1022 			goto err_detach_pollfunc;
1023 		}
1024 	}
1025 
1026 	return 0;
1027 
1028 err_detach_pollfunc:
1029 	if (indio_dev->currentmode == INDIO_BUFFER_TRIGGERED) {
1030 		iio_trigger_detach_poll_func(indio_dev->trig,
1031 					     indio_dev->pollfunc);
1032 	}
1033 err_disable_buffers:
1034 	list_for_each_entry_continue_reverse(buffer, &iio_dev_opaque->buffer_list,
1035 					     buffer_list)
1036 		iio_buffer_disable(buffer, indio_dev);
1037 err_run_postdisable:
1038 	if (indio_dev->setup_ops->postdisable)
1039 		indio_dev->setup_ops->postdisable(indio_dev);
1040 err_undo_config:
1041 	indio_dev->currentmode = INDIO_DIRECT_MODE;
1042 	indio_dev->active_scan_mask = NULL;
1043 
1044 	return ret;
1045 }
1046 
1047 static int iio_disable_buffers(struct iio_dev *indio_dev)
1048 {
1049 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
1050 	struct iio_buffer *buffer;
1051 	int ret = 0;
1052 	int ret2;
1053 
1054 	/* Wind down existing buffers - iff there are any */
1055 	if (list_empty(&iio_dev_opaque->buffer_list))
1056 		return 0;
1057 
1058 	/*
1059 	 * If things go wrong at some step in disable we still need to continue
1060 	 * to perform the other steps, otherwise we leave the device in a
1061 	 * inconsistent state. We return the error code for the first error we
1062 	 * encountered.
1063 	 */
1064 
1065 	if (indio_dev->setup_ops->predisable) {
1066 		ret2 = indio_dev->setup_ops->predisable(indio_dev);
1067 		if (ret2 && !ret)
1068 			ret = ret2;
1069 	}
1070 
1071 	if (indio_dev->currentmode == INDIO_BUFFER_TRIGGERED) {
1072 		iio_trigger_detach_poll_func(indio_dev->trig,
1073 					     indio_dev->pollfunc);
1074 	}
1075 
1076 	list_for_each_entry(buffer, &iio_dev_opaque->buffer_list, buffer_list) {
1077 		ret2 = iio_buffer_disable(buffer, indio_dev);
1078 		if (ret2 && !ret)
1079 			ret = ret2;
1080 	}
1081 
1082 	if (indio_dev->setup_ops->postdisable) {
1083 		ret2 = indio_dev->setup_ops->postdisable(indio_dev);
1084 		if (ret2 && !ret)
1085 			ret = ret2;
1086 	}
1087 
1088 	iio_free_scan_mask(indio_dev, indio_dev->active_scan_mask);
1089 	indio_dev->active_scan_mask = NULL;
1090 	indio_dev->currentmode = INDIO_DIRECT_MODE;
1091 
1092 	return ret;
1093 }
1094 
1095 static int __iio_update_buffers(struct iio_dev *indio_dev,
1096 		       struct iio_buffer *insert_buffer,
1097 		       struct iio_buffer *remove_buffer)
1098 {
1099 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
1100 	struct iio_device_config new_config;
1101 	int ret;
1102 
1103 	ret = iio_verify_update(indio_dev, insert_buffer, remove_buffer,
1104 		&new_config);
1105 	if (ret)
1106 		return ret;
1107 
1108 	if (insert_buffer) {
1109 		ret = iio_buffer_request_update(indio_dev, insert_buffer);
1110 		if (ret)
1111 			goto err_free_config;
1112 	}
1113 
1114 	ret = iio_disable_buffers(indio_dev);
1115 	if (ret)
1116 		goto err_deactivate_all;
1117 
1118 	if (remove_buffer)
1119 		iio_buffer_deactivate(remove_buffer);
1120 	if (insert_buffer)
1121 		iio_buffer_activate(indio_dev, insert_buffer);
1122 
1123 	/* If no buffers in list, we are done */
1124 	if (list_empty(&iio_dev_opaque->buffer_list))
1125 		return 0;
1126 
1127 	ret = iio_enable_buffers(indio_dev, &new_config);
1128 	if (ret)
1129 		goto err_deactivate_all;
1130 
1131 	return 0;
1132 
1133 err_deactivate_all:
1134 	/*
1135 	 * We've already verified that the config is valid earlier. If things go
1136 	 * wrong in either enable or disable the most likely reason is an IO
1137 	 * error from the device. In this case there is no good recovery
1138 	 * strategy. Just make sure to disable everything and leave the device
1139 	 * in a sane state.  With a bit of luck the device might come back to
1140 	 * life again later and userspace can try again.
1141 	 */
1142 	iio_buffer_deactivate_all(indio_dev);
1143 
1144 err_free_config:
1145 	iio_free_scan_mask(indio_dev, new_config.scan_mask);
1146 	return ret;
1147 }
1148 
1149 int iio_update_buffers(struct iio_dev *indio_dev,
1150 		       struct iio_buffer *insert_buffer,
1151 		       struct iio_buffer *remove_buffer)
1152 {
1153 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
1154 	int ret;
1155 
1156 	if (insert_buffer == remove_buffer)
1157 		return 0;
1158 
1159 	mutex_lock(&iio_dev_opaque->info_exist_lock);
1160 	mutex_lock(&indio_dev->mlock);
1161 
1162 	if (insert_buffer && iio_buffer_is_active(insert_buffer))
1163 		insert_buffer = NULL;
1164 
1165 	if (remove_buffer && !iio_buffer_is_active(remove_buffer))
1166 		remove_buffer = NULL;
1167 
1168 	if (!insert_buffer && !remove_buffer) {
1169 		ret = 0;
1170 		goto out_unlock;
1171 	}
1172 
1173 	if (indio_dev->info == NULL) {
1174 		ret = -ENODEV;
1175 		goto out_unlock;
1176 	}
1177 
1178 	ret = __iio_update_buffers(indio_dev, insert_buffer, remove_buffer);
1179 
1180 out_unlock:
1181 	mutex_unlock(&indio_dev->mlock);
1182 	mutex_unlock(&iio_dev_opaque->info_exist_lock);
1183 
1184 	return ret;
1185 }
1186 EXPORT_SYMBOL_GPL(iio_update_buffers);
1187 
1188 void iio_disable_all_buffers(struct iio_dev *indio_dev)
1189 {
1190 	iio_disable_buffers(indio_dev);
1191 	iio_buffer_deactivate_all(indio_dev);
1192 }
1193 
1194 static ssize_t iio_buffer_store_enable(struct device *dev,
1195 				       struct device_attribute *attr,
1196 				       const char *buf,
1197 				       size_t len)
1198 {
1199 	int ret;
1200 	bool requested_state;
1201 	struct iio_dev *indio_dev = dev_to_iio_dev(dev);
1202 	struct iio_buffer *buffer = to_iio_dev_attr(attr)->buffer;
1203 	bool inlist;
1204 
1205 	ret = strtobool(buf, &requested_state);
1206 	if (ret < 0)
1207 		return ret;
1208 
1209 	mutex_lock(&indio_dev->mlock);
1210 
1211 	/* Find out if it is in the list */
1212 	inlist = iio_buffer_is_active(buffer);
1213 	/* Already in desired state */
1214 	if (inlist == requested_state)
1215 		goto done;
1216 
1217 	if (requested_state)
1218 		ret = __iio_update_buffers(indio_dev, buffer, NULL);
1219 	else
1220 		ret = __iio_update_buffers(indio_dev, NULL, buffer);
1221 
1222 done:
1223 	mutex_unlock(&indio_dev->mlock);
1224 	return (ret < 0) ? ret : len;
1225 }
1226 
1227 static ssize_t iio_buffer_show_watermark(struct device *dev,
1228 					 struct device_attribute *attr,
1229 					 char *buf)
1230 {
1231 	struct iio_buffer *buffer = to_iio_dev_attr(attr)->buffer;
1232 
1233 	return sysfs_emit(buf, "%u\n", buffer->watermark);
1234 }
1235 
1236 static ssize_t iio_buffer_store_watermark(struct device *dev,
1237 					  struct device_attribute *attr,
1238 					  const char *buf,
1239 					  size_t len)
1240 {
1241 	struct iio_dev *indio_dev = dev_to_iio_dev(dev);
1242 	struct iio_buffer *buffer = to_iio_dev_attr(attr)->buffer;
1243 	unsigned int val;
1244 	int ret;
1245 
1246 	ret = kstrtouint(buf, 10, &val);
1247 	if (ret)
1248 		return ret;
1249 	if (!val)
1250 		return -EINVAL;
1251 
1252 	mutex_lock(&indio_dev->mlock);
1253 
1254 	if (val > buffer->length) {
1255 		ret = -EINVAL;
1256 		goto out;
1257 	}
1258 
1259 	if (iio_buffer_is_active(buffer)) {
1260 		ret = -EBUSY;
1261 		goto out;
1262 	}
1263 
1264 	buffer->watermark = val;
1265 out:
1266 	mutex_unlock(&indio_dev->mlock);
1267 
1268 	return ret ? ret : len;
1269 }
1270 
1271 static ssize_t iio_dma_show_data_available(struct device *dev,
1272 						struct device_attribute *attr,
1273 						char *buf)
1274 {
1275 	struct iio_buffer *buffer = to_iio_dev_attr(attr)->buffer;
1276 
1277 	return sysfs_emit(buf, "%zu\n", iio_buffer_data_available(buffer));
1278 }
1279 
1280 static DEVICE_ATTR(length, S_IRUGO | S_IWUSR, iio_buffer_read_length,
1281 		   iio_buffer_write_length);
1282 static struct device_attribute dev_attr_length_ro = __ATTR(length,
1283 	S_IRUGO, iio_buffer_read_length, NULL);
1284 static DEVICE_ATTR(enable, S_IRUGO | S_IWUSR,
1285 		   iio_buffer_show_enable, iio_buffer_store_enable);
1286 static DEVICE_ATTR(watermark, S_IRUGO | S_IWUSR,
1287 		   iio_buffer_show_watermark, iio_buffer_store_watermark);
1288 static struct device_attribute dev_attr_watermark_ro = __ATTR(watermark,
1289 	S_IRUGO, iio_buffer_show_watermark, NULL);
1290 static DEVICE_ATTR(data_available, S_IRUGO,
1291 		iio_dma_show_data_available, NULL);
1292 
1293 static struct attribute *iio_buffer_attrs[] = {
1294 	&dev_attr_length.attr,
1295 	&dev_attr_enable.attr,
1296 	&dev_attr_watermark.attr,
1297 	&dev_attr_data_available.attr,
1298 };
1299 
1300 #define to_dev_attr(_attr) container_of(_attr, struct device_attribute, attr)
1301 
1302 static struct attribute *iio_buffer_wrap_attr(struct iio_buffer *buffer,
1303 					      struct attribute *attr)
1304 {
1305 	struct device_attribute *dattr = to_dev_attr(attr);
1306 	struct iio_dev_attr *iio_attr;
1307 
1308 	iio_attr = kzalloc(sizeof(*iio_attr), GFP_KERNEL);
1309 	if (!iio_attr)
1310 		return NULL;
1311 
1312 	iio_attr->buffer = buffer;
1313 	memcpy(&iio_attr->dev_attr, dattr, sizeof(iio_attr->dev_attr));
1314 	iio_attr->dev_attr.attr.name = kstrdup_const(attr->name, GFP_KERNEL);
1315 	sysfs_attr_init(&iio_attr->dev_attr.attr);
1316 
1317 	list_add(&iio_attr->l, &buffer->buffer_attr_list);
1318 
1319 	return &iio_attr->dev_attr.attr;
1320 }
1321 
1322 static int iio_buffer_register_legacy_sysfs_groups(struct iio_dev *indio_dev,
1323 						   struct attribute **buffer_attrs,
1324 						   int buffer_attrcount,
1325 						   int scan_el_attrcount)
1326 {
1327 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
1328 	struct attribute_group *group;
1329 	struct attribute **attrs;
1330 	int ret;
1331 
1332 	attrs = kcalloc(buffer_attrcount + 1, sizeof(*attrs), GFP_KERNEL);
1333 	if (!attrs)
1334 		return -ENOMEM;
1335 
1336 	memcpy(attrs, buffer_attrs, buffer_attrcount * sizeof(*attrs));
1337 
1338 	group = &iio_dev_opaque->legacy_buffer_group;
1339 	group->attrs = attrs;
1340 	group->name = "buffer";
1341 
1342 	ret = iio_device_register_sysfs_group(indio_dev, group);
1343 	if (ret)
1344 		goto error_free_buffer_attrs;
1345 
1346 	attrs = kcalloc(scan_el_attrcount + 1, sizeof(*attrs), GFP_KERNEL);
1347 	if (!attrs) {
1348 		ret = -ENOMEM;
1349 		goto error_free_buffer_attrs;
1350 	}
1351 
1352 	memcpy(attrs, &buffer_attrs[buffer_attrcount],
1353 	       scan_el_attrcount * sizeof(*attrs));
1354 
1355 	group = &iio_dev_opaque->legacy_scan_el_group;
1356 	group->attrs = attrs;
1357 	group->name = "scan_elements";
1358 
1359 	ret = iio_device_register_sysfs_group(indio_dev, group);
1360 	if (ret)
1361 		goto error_free_scan_el_attrs;
1362 
1363 	return 0;
1364 
1365 error_free_buffer_attrs:
1366 	kfree(iio_dev_opaque->legacy_buffer_group.attrs);
1367 error_free_scan_el_attrs:
1368 	kfree(iio_dev_opaque->legacy_scan_el_group.attrs);
1369 
1370 	return ret;
1371 }
1372 
1373 static void iio_buffer_unregister_legacy_sysfs_groups(struct iio_dev *indio_dev)
1374 {
1375 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
1376 
1377 	kfree(iio_dev_opaque->legacy_buffer_group.attrs);
1378 	kfree(iio_dev_opaque->legacy_scan_el_group.attrs);
1379 }
1380 
1381 static int iio_buffer_chrdev_release(struct inode *inode, struct file *filep)
1382 {
1383 	struct iio_dev_buffer_pair *ib = filep->private_data;
1384 	struct iio_dev *indio_dev = ib->indio_dev;
1385 	struct iio_buffer *buffer = ib->buffer;
1386 
1387 	wake_up(&buffer->pollq);
1388 
1389 	kfree(ib);
1390 	clear_bit(IIO_BUSY_BIT_POS, &buffer->flags);
1391 	iio_device_put(indio_dev);
1392 
1393 	return 0;
1394 }
1395 
1396 static const struct file_operations iio_buffer_chrdev_fileops = {
1397 	.owner = THIS_MODULE,
1398 	.llseek = noop_llseek,
1399 	.read = iio_buffer_read,
1400 	.poll = iio_buffer_poll,
1401 	.release = iio_buffer_chrdev_release,
1402 };
1403 
1404 static long iio_device_buffer_getfd(struct iio_dev *indio_dev, unsigned long arg)
1405 {
1406 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
1407 	int __user *ival = (int __user *)arg;
1408 	struct iio_dev_buffer_pair *ib;
1409 	struct iio_buffer *buffer;
1410 	int fd, idx, ret;
1411 
1412 	if (copy_from_user(&idx, ival, sizeof(idx)))
1413 		return -EFAULT;
1414 
1415 	if (idx >= iio_dev_opaque->attached_buffers_cnt)
1416 		return -ENODEV;
1417 
1418 	iio_device_get(indio_dev);
1419 
1420 	buffer = iio_dev_opaque->attached_buffers[idx];
1421 
1422 	if (test_and_set_bit(IIO_BUSY_BIT_POS, &buffer->flags)) {
1423 		ret = -EBUSY;
1424 		goto error_iio_dev_put;
1425 	}
1426 
1427 	ib = kzalloc(sizeof(*ib), GFP_KERNEL);
1428 	if (!ib) {
1429 		ret = -ENOMEM;
1430 		goto error_clear_busy_bit;
1431 	}
1432 
1433 	ib->indio_dev = indio_dev;
1434 	ib->buffer = buffer;
1435 
1436 	fd = anon_inode_getfd("iio:buffer", &iio_buffer_chrdev_fileops,
1437 			      ib, O_RDWR | O_CLOEXEC);
1438 	if (fd < 0) {
1439 		ret = fd;
1440 		goto error_free_ib;
1441 	}
1442 
1443 	if (copy_to_user(ival, &fd, sizeof(fd))) {
1444 		put_unused_fd(fd);
1445 		ret = -EFAULT;
1446 		goto error_free_ib;
1447 	}
1448 
1449 	return 0;
1450 
1451 error_free_ib:
1452 	kfree(ib);
1453 error_clear_busy_bit:
1454 	clear_bit(IIO_BUSY_BIT_POS, &buffer->flags);
1455 error_iio_dev_put:
1456 	iio_device_put(indio_dev);
1457 	return ret;
1458 }
1459 
1460 static long iio_device_buffer_ioctl(struct iio_dev *indio_dev, struct file *filp,
1461 				    unsigned int cmd, unsigned long arg)
1462 {
1463 	switch (cmd) {
1464 	case IIO_BUFFER_GET_FD_IOCTL:
1465 		return iio_device_buffer_getfd(indio_dev, arg);
1466 	default:
1467 		return IIO_IOCTL_UNHANDLED;
1468 	}
1469 }
1470 
1471 static int __iio_buffer_alloc_sysfs_and_mask(struct iio_buffer *buffer,
1472 					     struct iio_dev *indio_dev,
1473 					     int index)
1474 {
1475 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
1476 	struct iio_dev_attr *p;
1477 	struct attribute **attr;
1478 	int ret, i, attrn, scan_el_attrcount, buffer_attrcount;
1479 	const struct iio_chan_spec *channels;
1480 
1481 	buffer_attrcount = 0;
1482 	if (buffer->attrs) {
1483 		while (buffer->attrs[buffer_attrcount] != NULL)
1484 			buffer_attrcount++;
1485 	}
1486 
1487 	scan_el_attrcount = 0;
1488 	INIT_LIST_HEAD(&buffer->buffer_attr_list);
1489 	channels = indio_dev->channels;
1490 	if (channels) {
1491 		/* new magic */
1492 		for (i = 0; i < indio_dev->num_channels; i++) {
1493 			if (channels[i].scan_index < 0)
1494 				continue;
1495 
1496 			ret = iio_buffer_add_channel_sysfs(indio_dev, buffer,
1497 							 &channels[i]);
1498 			if (ret < 0)
1499 				goto error_cleanup_dynamic;
1500 			scan_el_attrcount += ret;
1501 			if (channels[i].type == IIO_TIMESTAMP)
1502 				iio_dev_opaque->scan_index_timestamp =
1503 					channels[i].scan_index;
1504 		}
1505 		if (indio_dev->masklength && buffer->scan_mask == NULL) {
1506 			buffer->scan_mask = bitmap_zalloc(indio_dev->masklength,
1507 							  GFP_KERNEL);
1508 			if (buffer->scan_mask == NULL) {
1509 				ret = -ENOMEM;
1510 				goto error_cleanup_dynamic;
1511 			}
1512 		}
1513 	}
1514 
1515 	attrn = buffer_attrcount + scan_el_attrcount + ARRAY_SIZE(iio_buffer_attrs);
1516 	attr = kcalloc(attrn + 1, sizeof(* attr), GFP_KERNEL);
1517 	if (!attr) {
1518 		ret = -ENOMEM;
1519 		goto error_free_scan_mask;
1520 	}
1521 
1522 	memcpy(attr, iio_buffer_attrs, sizeof(iio_buffer_attrs));
1523 	if (!buffer->access->set_length)
1524 		attr[0] = &dev_attr_length_ro.attr;
1525 
1526 	if (buffer->access->flags & INDIO_BUFFER_FLAG_FIXED_WATERMARK)
1527 		attr[2] = &dev_attr_watermark_ro.attr;
1528 
1529 	if (buffer->attrs)
1530 		memcpy(&attr[ARRAY_SIZE(iio_buffer_attrs)], buffer->attrs,
1531 		       sizeof(struct attribute *) * buffer_attrcount);
1532 
1533 	buffer_attrcount += ARRAY_SIZE(iio_buffer_attrs);
1534 
1535 	for (i = 0; i < buffer_attrcount; i++) {
1536 		struct attribute *wrapped;
1537 
1538 		wrapped = iio_buffer_wrap_attr(buffer, attr[i]);
1539 		if (!wrapped) {
1540 			ret = -ENOMEM;
1541 			goto error_free_scan_mask;
1542 		}
1543 		attr[i] = wrapped;
1544 	}
1545 
1546 	attrn = 0;
1547 	list_for_each_entry(p, &buffer->buffer_attr_list, l)
1548 		attr[attrn++] = &p->dev_attr.attr;
1549 
1550 	buffer->buffer_group.name = kasprintf(GFP_KERNEL, "buffer%d", index);
1551 	if (!buffer->buffer_group.name) {
1552 		ret = -ENOMEM;
1553 		goto error_free_buffer_attrs;
1554 	}
1555 
1556 	buffer->buffer_group.attrs = attr;
1557 
1558 	ret = iio_device_register_sysfs_group(indio_dev, &buffer->buffer_group);
1559 	if (ret)
1560 		goto error_free_buffer_attr_group_name;
1561 
1562 	/* we only need to register the legacy groups for the first buffer */
1563 	if (index > 0)
1564 		return 0;
1565 
1566 	ret = iio_buffer_register_legacy_sysfs_groups(indio_dev, attr,
1567 						      buffer_attrcount,
1568 						      scan_el_attrcount);
1569 	if (ret)
1570 		goto error_free_buffer_attr_group_name;
1571 
1572 	return 0;
1573 
1574 error_free_buffer_attr_group_name:
1575 	kfree(buffer->buffer_group.name);
1576 error_free_buffer_attrs:
1577 	kfree(buffer->buffer_group.attrs);
1578 error_free_scan_mask:
1579 	bitmap_free(buffer->scan_mask);
1580 error_cleanup_dynamic:
1581 	iio_free_chan_devattr_list(&buffer->buffer_attr_list);
1582 
1583 	return ret;
1584 }
1585 
1586 static void __iio_buffer_free_sysfs_and_mask(struct iio_buffer *buffer)
1587 {
1588 	bitmap_free(buffer->scan_mask);
1589 	kfree(buffer->buffer_group.name);
1590 	kfree(buffer->buffer_group.attrs);
1591 	iio_free_chan_devattr_list(&buffer->buffer_attr_list);
1592 }
1593 
1594 int iio_buffers_alloc_sysfs_and_mask(struct iio_dev *indio_dev)
1595 {
1596 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
1597 	const struct iio_chan_spec *channels;
1598 	struct iio_buffer *buffer;
1599 	int unwind_idx;
1600 	int ret, i;
1601 	size_t sz;
1602 
1603 	channels = indio_dev->channels;
1604 	if (channels) {
1605 		int ml = indio_dev->masklength;
1606 
1607 		for (i = 0; i < indio_dev->num_channels; i++)
1608 			ml = max(ml, channels[i].scan_index + 1);
1609 		indio_dev->masklength = ml;
1610 	}
1611 
1612 	if (!iio_dev_opaque->attached_buffers_cnt)
1613 		return 0;
1614 
1615 	for (i = 0; i < iio_dev_opaque->attached_buffers_cnt; i++) {
1616 		buffer = iio_dev_opaque->attached_buffers[i];
1617 		ret = __iio_buffer_alloc_sysfs_and_mask(buffer, indio_dev, i);
1618 		if (ret) {
1619 			unwind_idx = i;
1620 			goto error_unwind_sysfs_and_mask;
1621 		}
1622 	}
1623 	unwind_idx = iio_dev_opaque->attached_buffers_cnt - 1;
1624 
1625 	sz = sizeof(*(iio_dev_opaque->buffer_ioctl_handler));
1626 	iio_dev_opaque->buffer_ioctl_handler = kzalloc(sz, GFP_KERNEL);
1627 	if (!iio_dev_opaque->buffer_ioctl_handler) {
1628 		ret = -ENOMEM;
1629 		goto error_unwind_sysfs_and_mask;
1630 	}
1631 
1632 	iio_dev_opaque->buffer_ioctl_handler->ioctl = iio_device_buffer_ioctl;
1633 	iio_device_ioctl_handler_register(indio_dev,
1634 					  iio_dev_opaque->buffer_ioctl_handler);
1635 
1636 	return 0;
1637 
1638 error_unwind_sysfs_and_mask:
1639 	for (; unwind_idx >= 0; unwind_idx--) {
1640 		buffer = iio_dev_opaque->attached_buffers[unwind_idx];
1641 		__iio_buffer_free_sysfs_and_mask(buffer);
1642 	}
1643 	return ret;
1644 }
1645 
1646 void iio_buffers_free_sysfs_and_mask(struct iio_dev *indio_dev)
1647 {
1648 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
1649 	struct iio_buffer *buffer;
1650 	int i;
1651 
1652 	if (!iio_dev_opaque->attached_buffers_cnt)
1653 		return;
1654 
1655 	iio_device_ioctl_handler_unregister(iio_dev_opaque->buffer_ioctl_handler);
1656 	kfree(iio_dev_opaque->buffer_ioctl_handler);
1657 
1658 	iio_buffer_unregister_legacy_sysfs_groups(indio_dev);
1659 
1660 	for (i = iio_dev_opaque->attached_buffers_cnt - 1; i >= 0; i--) {
1661 		buffer = iio_dev_opaque->attached_buffers[i];
1662 		__iio_buffer_free_sysfs_and_mask(buffer);
1663 	}
1664 }
1665 
1666 /**
1667  * iio_validate_scan_mask_onehot() - Validates that exactly one channel is selected
1668  * @indio_dev: the iio device
1669  * @mask: scan mask to be checked
1670  *
1671  * Return true if exactly one bit is set in the scan mask, false otherwise. It
1672  * can be used for devices where only one channel can be active for sampling at
1673  * a time.
1674  */
1675 bool iio_validate_scan_mask_onehot(struct iio_dev *indio_dev,
1676 	const unsigned long *mask)
1677 {
1678 	return bitmap_weight(mask, indio_dev->masklength) == 1;
1679 }
1680 EXPORT_SYMBOL_GPL(iio_validate_scan_mask_onehot);
1681 
1682 static const void *iio_demux(struct iio_buffer *buffer,
1683 				 const void *datain)
1684 {
1685 	struct iio_demux_table *t;
1686 
1687 	if (list_empty(&buffer->demux_list))
1688 		return datain;
1689 	list_for_each_entry(t, &buffer->demux_list, l)
1690 		memcpy(buffer->demux_bounce + t->to,
1691 		       datain + t->from, t->length);
1692 
1693 	return buffer->demux_bounce;
1694 }
1695 
1696 static int iio_push_to_buffer(struct iio_buffer *buffer, const void *data)
1697 {
1698 	const void *dataout = iio_demux(buffer, data);
1699 	int ret;
1700 
1701 	ret = buffer->access->store_to(buffer, dataout);
1702 	if (ret)
1703 		return ret;
1704 
1705 	/*
1706 	 * We can't just test for watermark to decide if we wake the poll queue
1707 	 * because read may request less samples than the watermark.
1708 	 */
1709 	wake_up_interruptible_poll(&buffer->pollq, EPOLLIN | EPOLLRDNORM);
1710 	return 0;
1711 }
1712 
1713 /**
1714  * iio_push_to_buffers() - push to a registered buffer.
1715  * @indio_dev:		iio_dev structure for device.
1716  * @data:		Full scan.
1717  */
1718 int iio_push_to_buffers(struct iio_dev *indio_dev, const void *data)
1719 {
1720 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
1721 	int ret;
1722 	struct iio_buffer *buf;
1723 
1724 	list_for_each_entry(buf, &iio_dev_opaque->buffer_list, buffer_list) {
1725 		ret = iio_push_to_buffer(buf, data);
1726 		if (ret < 0)
1727 			return ret;
1728 	}
1729 
1730 	return 0;
1731 }
1732 EXPORT_SYMBOL_GPL(iio_push_to_buffers);
1733 
1734 /**
1735  * iio_buffer_release() - Free a buffer's resources
1736  * @ref: Pointer to the kref embedded in the iio_buffer struct
1737  *
1738  * This function is called when the last reference to the buffer has been
1739  * dropped. It will typically free all resources allocated by the buffer. Do not
1740  * call this function manually, always use iio_buffer_put() when done using a
1741  * buffer.
1742  */
1743 static void iio_buffer_release(struct kref *ref)
1744 {
1745 	struct iio_buffer *buffer = container_of(ref, struct iio_buffer, ref);
1746 
1747 	buffer->access->release(buffer);
1748 }
1749 
1750 /**
1751  * iio_buffer_get() - Grab a reference to the buffer
1752  * @buffer: The buffer to grab a reference for, may be NULL
1753  *
1754  * Returns the pointer to the buffer that was passed into the function.
1755  */
1756 struct iio_buffer *iio_buffer_get(struct iio_buffer *buffer)
1757 {
1758 	if (buffer)
1759 		kref_get(&buffer->ref);
1760 
1761 	return buffer;
1762 }
1763 EXPORT_SYMBOL_GPL(iio_buffer_get);
1764 
1765 /**
1766  * iio_buffer_put() - Release the reference to the buffer
1767  * @buffer: The buffer to release the reference for, may be NULL
1768  */
1769 void iio_buffer_put(struct iio_buffer *buffer)
1770 {
1771 	if (buffer)
1772 		kref_put(&buffer->ref, iio_buffer_release);
1773 }
1774 EXPORT_SYMBOL_GPL(iio_buffer_put);
1775 
1776 /**
1777  * iio_device_attach_buffer - Attach a buffer to a IIO device
1778  * @indio_dev: The device the buffer should be attached to
1779  * @buffer: The buffer to attach to the device
1780  *
1781  * Return 0 if successful, negative if error.
1782  *
1783  * This function attaches a buffer to a IIO device. The buffer stays attached to
1784  * the device until the device is freed. For legacy reasons, the first attached
1785  * buffer will also be assigned to 'indio_dev->buffer'.
1786  * The array allocated here, will be free'd via the iio_device_detach_buffers()
1787  * call which is handled by the iio_device_free().
1788  */
1789 int iio_device_attach_buffer(struct iio_dev *indio_dev,
1790 			     struct iio_buffer *buffer)
1791 {
1792 	struct iio_dev_opaque *iio_dev_opaque = to_iio_dev_opaque(indio_dev);
1793 	struct iio_buffer **new, **old = iio_dev_opaque->attached_buffers;
1794 	unsigned int cnt = iio_dev_opaque->attached_buffers_cnt;
1795 
1796 	cnt++;
1797 
1798 	new = krealloc(old, sizeof(*new) * cnt, GFP_KERNEL);
1799 	if (!new)
1800 		return -ENOMEM;
1801 	iio_dev_opaque->attached_buffers = new;
1802 
1803 	buffer = iio_buffer_get(buffer);
1804 
1805 	/* first buffer is legacy; attach it to the IIO device directly */
1806 	if (!indio_dev->buffer)
1807 		indio_dev->buffer = buffer;
1808 
1809 	iio_dev_opaque->attached_buffers[cnt - 1] = buffer;
1810 	iio_dev_opaque->attached_buffers_cnt = cnt;
1811 
1812 	return 0;
1813 }
1814 EXPORT_SYMBOL_GPL(iio_device_attach_buffer);
1815