2007-05-05 18:45:53 +00:00
|
|
|
/*
|
|
|
|
* Copyright 2002-2005, Devicescape Software, Inc.
|
2014-09-03 12:24:57 +00:00
|
|
|
* Copyright 2013-2014 Intel Mobile Communications GmbH
|
2007-05-05 18:45:53 +00:00
|
|
|
*
|
|
|
|
* This program is free software; you can redistribute it and/or modify
|
|
|
|
* it under the terms of the GNU General Public License version 2 as
|
|
|
|
* published by the Free Software Foundation.
|
|
|
|
*/
|
|
|
|
|
|
|
|
#ifndef STA_INFO_H
|
|
|
|
#define STA_INFO_H
|
|
|
|
|
|
|
|
#include <linux/list.h>
|
|
|
|
#include <linux/types.h>
|
|
|
|
#include <linux/if_ether.h>
|
mac80211: async station powersave handling
Some devices require that all frames to a station
are flushed when that station goes into powersave
mode before being able to send frames to that
station again when it wakes up or polls -- all in
order to avoid reordering and too many or too few
frames being sent to the station when it polls.
Normally, this is the case unless the station
goes to sleep and wakes up very quickly again.
But in that case, frames for it may be pending
on the hardware queues, and thus races could
happen in the case of multiple hardware queues
used for QoS/WMM. Normally this isn't a problem,
but with the iwlwifi mechanism we need to make
sure the race doesn't happen.
This makes mac80211 able to cope with the race
with driver help by a new WLAN_STA_PS_DRIVER
per-station flag that can be controlled by the
driver and tells mac80211 whether it can transmit
frames or not. This flag must be set according to
very specific rules outlined in the documentation
for the function that controls it.
When we buffer new frames for the station, we
normally set the TIM bit right away, but while
the driver has blocked transmission to that sta
we need to avoid that as well since we cannot
respond to the station if it wakes up due to the
TIM bit. Once the driver unblocks, we can set
the TIM bit.
Similarly, when the station just wakes up, we
need to wait until all other frames are flushed
before we can transmit frames to that station,
so the same applies here, we need to wait for
the driver to give the OK.
Signed-off-by: Johannes Berg <johannes@sipsolutions.net>
Signed-off-by: John W. Linville <linville@tuxdriver.com>
2009-11-06 10:35:50 +00:00
|
|
|
#include <linux/workqueue.h>
|
2010-12-02 10:12:43 +00:00
|
|
|
#include <linux/average.h>
|
2012-03-01 14:22:09 +00:00
|
|
|
#include <linux/etherdevice.h>
|
2015-02-13 20:55:15 +00:00
|
|
|
#include <linux/rhashtable.h>
|
2008-04-08 19:14:40 +00:00
|
|
|
#include "key.h"
|
2007-05-05 18:45:53 +00:00
|
|
|
|
2008-01-28 16:19:37 +00:00
|
|
|
/**
|
|
|
|
* enum ieee80211_sta_info_flags - Stations flags
|
|
|
|
*
|
2011-09-29 14:04:36 +00:00
|
|
|
* These flags are used with &struct sta_info's @flags member, but
|
|
|
|
* only indirectly with set_sta_flag() and friends.
|
2008-01-28 16:19:37 +00:00
|
|
|
*
|
|
|
|
* @WLAN_STA_AUTH: Station is authenticated.
|
|
|
|
* @WLAN_STA_ASSOC: Station is associated.
|
mac80211: async station powersave handling
Some devices require that all frames to a station
are flushed when that station goes into powersave
mode before being able to send frames to that
station again when it wakes up or polls -- all in
order to avoid reordering and too many or too few
frames being sent to the station when it polls.
Normally, this is the case unless the station
goes to sleep and wakes up very quickly again.
But in that case, frames for it may be pending
on the hardware queues, and thus races could
happen in the case of multiple hardware queues
used for QoS/WMM. Normally this isn't a problem,
but with the iwlwifi mechanism we need to make
sure the race doesn't happen.
This makes mac80211 able to cope with the race
with driver help by a new WLAN_STA_PS_DRIVER
per-station flag that can be controlled by the
driver and tells mac80211 whether it can transmit
frames or not. This flag must be set according to
very specific rules outlined in the documentation
for the function that controls it.
When we buffer new frames for the station, we
normally set the TIM bit right away, but while
the driver has blocked transmission to that sta
we need to avoid that as well since we cannot
respond to the station if it wakes up due to the
TIM bit. Once the driver unblocks, we can set
the TIM bit.
Similarly, when the station just wakes up, we
need to wait until all other frames are flushed
before we can transmit frames to that station,
so the same applies here, we need to wait for
the driver to give the OK.
Signed-off-by: Johannes Berg <johannes@sipsolutions.net>
Signed-off-by: John W. Linville <linville@tuxdriver.com>
2009-11-06 10:35:50 +00:00
|
|
|
* @WLAN_STA_PS_STA: Station is in power-save mode
|
2008-01-28 16:19:37 +00:00
|
|
|
* @WLAN_STA_AUTHORIZED: Station is authorized to send/receive traffic.
|
|
|
|
* This bit is always checked so needs to be enabled for all stations
|
|
|
|
* when virtual port control is not in use.
|
|
|
|
* @WLAN_STA_SHORT_PREAMBLE: Station is capable of receiving short-preamble
|
|
|
|
* frames.
|
|
|
|
* @WLAN_STA_WDS: Station is one of our WDS peers.
|
2008-02-20 22:59:33 +00:00
|
|
|
* @WLAN_STA_CLEAR_PS_FILT: Clear PS filter in hardware (using the
|
2008-05-15 10:55:29 +00:00
|
|
|
* IEEE80211_TX_CTL_CLEAR_PS_FILT control flag) when the next
|
2008-02-20 22:59:33 +00:00
|
|
|
* frame to this station is transmitted.
|
2009-01-08 11:31:59 +00:00
|
|
|
* @WLAN_STA_MFP: Management frame protection is used with this STA.
|
2010-04-06 09:18:46 +00:00
|
|
|
* @WLAN_STA_BLOCK_BA: Used to deny ADDBA requests (both TX and RX)
|
2010-04-06 09:18:47 +00:00
|
|
|
* during suspend/resume and station removal.
|
mac80211: async station powersave handling
Some devices require that all frames to a station
are flushed when that station goes into powersave
mode before being able to send frames to that
station again when it wakes up or polls -- all in
order to avoid reordering and too many or too few
frames being sent to the station when it polls.
Normally, this is the case unless the station
goes to sleep and wakes up very quickly again.
But in that case, frames for it may be pending
on the hardware queues, and thus races could
happen in the case of multiple hardware queues
used for QoS/WMM. Normally this isn't a problem,
but with the iwlwifi mechanism we need to make
sure the race doesn't happen.
This makes mac80211 able to cope with the race
with driver help by a new WLAN_STA_PS_DRIVER
per-station flag that can be controlled by the
driver and tells mac80211 whether it can transmit
frames or not. This flag must be set according to
very specific rules outlined in the documentation
for the function that controls it.
When we buffer new frames for the station, we
normally set the TIM bit right away, but while
the driver has blocked transmission to that sta
we need to avoid that as well since we cannot
respond to the station if it wakes up due to the
TIM bit. Once the driver unblocks, we can set
the TIM bit.
Similarly, when the station just wakes up, we
need to wait until all other frames are flushed
before we can transmit frames to that station,
so the same applies here, we need to wait for
the driver to give the OK.
Signed-off-by: Johannes Berg <johannes@sipsolutions.net>
Signed-off-by: John W. Linville <linville@tuxdriver.com>
2009-11-06 10:35:50 +00:00
|
|
|
* @WLAN_STA_PS_DRIVER: driver requires keeping this station in
|
|
|
|
* power-save mode logically to flush frames that might still
|
|
|
|
* be in the queues
|
|
|
|
* @WLAN_STA_PSPOLL: Station sent PS-poll while driver was keeping
|
|
|
|
* station in power-save mode, reply when the driver unblocks.
|
2011-09-28 11:12:54 +00:00
|
|
|
* @WLAN_STA_TDLS_PEER: Station is a TDLS peer.
|
|
|
|
* @WLAN_STA_TDLS_PEER_AUTH: This TDLS peer is authorized to send direct
|
|
|
|
* packets. This means the link is enabled.
|
2014-07-17 14:14:17 +00:00
|
|
|
* @WLAN_STA_TDLS_INITIATOR: We are the initiator of the TDLS link with this
|
|
|
|
* station.
|
2014-11-09 16:50:15 +00:00
|
|
|
* @WLAN_STA_TDLS_CHAN_SWITCH: This TDLS peer supports TDLS channel-switching
|
2014-11-09 16:50:19 +00:00
|
|
|
* @WLAN_STA_TDLS_OFF_CHANNEL: The local STA is currently off-channel with this
|
|
|
|
* TDLS peer
|
2011-09-29 14:04:33 +00:00
|
|
|
* @WLAN_STA_UAPSD: Station requested unscheduled SP while driver was
|
|
|
|
* keeping station in power-save mode, reply when the driver
|
|
|
|
* unblocks the station.
|
|
|
|
* @WLAN_STA_SP: Station is in a service period, so don't try to
|
2011-09-29 14:04:35 +00:00
|
|
|
* reply to other uAPSD trigger frames or PS-Poll.
|
2011-11-04 10:18:20 +00:00
|
|
|
* @WLAN_STA_4ADDR_EVENT: 4-addr event was already sent for this frame.
|
2012-01-12 08:31:10 +00:00
|
|
|
* @WLAN_STA_INSERTED: This station is inserted into the hash table.
|
2012-01-20 12:55:23 +00:00
|
|
|
* @WLAN_STA_RATE_CONTROL: rate control was initialized for this station.
|
2012-03-31 18:31:32 +00:00
|
|
|
* @WLAN_STA_TOFFSET_KNOWN: toffset calculated for this station is valid.
|
2013-01-30 17:14:08 +00:00
|
|
|
* @WLAN_STA_MPSP_OWNER: local STA is owner of a mesh Peer Service Period.
|
|
|
|
* @WLAN_STA_MPSP_RECIPIENT: local STA is recipient of a MPSP.
|
mac80211: fix station/driver powersave race
It is currently possible to have a race due to the station PS
unblock work like this:
* station goes to sleep with frames buffered in the driver
* driver blocks wakeup
* station wakes up again
* driver flushes/returns frames, and unblocks, which schedules
the unblock work
* unblock work starts to run, and checks that the station is
awake (i.e. that the WLAN_STA_PS_STA flag isn't set)
* we process a received frame with PM=1, setting the flag again
* ieee80211_sta_ps_deliver_wakeup() runs, delivering all frames
to the driver, and then clearing the WLAN_STA_PS_DRIVER and
WLAN_STA_PS_STA flags
In this scenario, mac80211 will think that the station is awake,
while it really is asleep, and any TX'ed frames should be filtered
by the device (it will know that the station is sleeping) but then
passed to mac80211 again, which will not buffer it either as it
thinks the station is awake, and eventually the packets will be
dropped.
Fix this by moving the clearing of the flags to exactly where we
learn about the situation. This creates a problem of reordering,
so introduce another flag indicating that delivery is being done,
this new flag also queues frames and is cleared only while the
spinlock is held (which the queuing code also holds) so that any
concurrent delivery/TX is handled correctly.
Reported-by: Andrei Otcheretianski <andrei.otcheretianski@intel.com>
Signed-off-by: Johannes Berg <johannes.berg@intel.com>
2014-05-27 14:32:27 +00:00
|
|
|
* @WLAN_STA_PS_DELIVER: station woke up, but we're still blocking TX
|
|
|
|
* until pending frames are delivered
|
2008-01-28 16:19:37 +00:00
|
|
|
*/
|
|
|
|
enum ieee80211_sta_info_flags {
|
2011-09-29 14:04:36 +00:00
|
|
|
WLAN_STA_AUTH,
|
|
|
|
WLAN_STA_ASSOC,
|
|
|
|
WLAN_STA_PS_STA,
|
|
|
|
WLAN_STA_AUTHORIZED,
|
|
|
|
WLAN_STA_SHORT_PREAMBLE,
|
|
|
|
WLAN_STA_WDS,
|
|
|
|
WLAN_STA_CLEAR_PS_FILT,
|
|
|
|
WLAN_STA_MFP,
|
|
|
|
WLAN_STA_BLOCK_BA,
|
|
|
|
WLAN_STA_PS_DRIVER,
|
|
|
|
WLAN_STA_PSPOLL,
|
|
|
|
WLAN_STA_TDLS_PEER,
|
|
|
|
WLAN_STA_TDLS_PEER_AUTH,
|
2014-07-17 14:14:17 +00:00
|
|
|
WLAN_STA_TDLS_INITIATOR,
|
2014-11-09 16:50:15 +00:00
|
|
|
WLAN_STA_TDLS_CHAN_SWITCH,
|
2014-11-09 16:50:19 +00:00
|
|
|
WLAN_STA_TDLS_OFF_CHANNEL,
|
2011-09-29 14:04:36 +00:00
|
|
|
WLAN_STA_UAPSD,
|
|
|
|
WLAN_STA_SP,
|
2011-11-04 10:18:20 +00:00
|
|
|
WLAN_STA_4ADDR_EVENT,
|
2012-01-12 08:31:10 +00:00
|
|
|
WLAN_STA_INSERTED,
|
2012-01-20 12:55:23 +00:00
|
|
|
WLAN_STA_RATE_CONTROL,
|
2012-03-31 18:31:32 +00:00
|
|
|
WLAN_STA_TOFFSET_KNOWN,
|
2013-01-30 17:14:08 +00:00
|
|
|
WLAN_STA_MPSP_OWNER,
|
|
|
|
WLAN_STA_MPSP_RECIPIENT,
|
mac80211: fix station/driver powersave race
It is currently possible to have a race due to the station PS
unblock work like this:
* station goes to sleep with frames buffered in the driver
* driver blocks wakeup
* station wakes up again
* driver flushes/returns frames, and unblocks, which schedules
the unblock work
* unblock work starts to run, and checks that the station is
awake (i.e. that the WLAN_STA_PS_STA flag isn't set)
* we process a received frame with PM=1, setting the flag again
* ieee80211_sta_ps_deliver_wakeup() runs, delivering all frames
to the driver, and then clearing the WLAN_STA_PS_DRIVER and
WLAN_STA_PS_STA flags
In this scenario, mac80211 will think that the station is awake,
while it really is asleep, and any TX'ed frames should be filtered
by the device (it will know that the station is sleeping) but then
passed to mac80211 again, which will not buffer it either as it
thinks the station is awake, and eventually the packets will be
dropped.
Fix this by moving the clearing of the flags to exactly where we
learn about the situation. This creates a problem of reordering,
so introduce another flag indicating that delivery is being done,
this new flag also queues frames and is cleared only while the
spinlock is held (which the queuing code also holds) so that any
concurrent delivery/TX is handled correctly.
Reported-by: Andrei Otcheretianski <andrei.otcheretianski@intel.com>
Signed-off-by: Johannes Berg <johannes.berg@intel.com>
2014-05-27 14:32:27 +00:00
|
|
|
WLAN_STA_PS_DELIVER,
|
2008-01-28 16:19:37 +00:00
|
|
|
};
|
2011-12-14 11:35:30 +00:00
|
|
|
|
2007-12-25 15:00:32 +00:00
|
|
|
#define ADDBA_RESP_INTERVAL HZ
|
2011-12-18 00:39:35 +00:00
|
|
|
#define HT_AGG_MAX_RETRIES 15
|
|
|
|
#define HT_AGG_BURST_RETRIES 3
|
|
|
|
#define HT_AGG_RETRIES_PERIOD (15 * HZ)
|
2007-12-25 15:00:32 +00:00
|
|
|
|
2010-06-10 08:21:39 +00:00
|
|
|
#define HT_AGG_STATE_DRV_READY 0
|
|
|
|
#define HT_AGG_STATE_RESPONSE_RECEIVED 1
|
|
|
|
#define HT_AGG_STATE_OPERATIONAL 2
|
|
|
|
#define HT_AGG_STATE_STOPPING 3
|
2010-06-10 08:21:42 +00:00
|
|
|
#define HT_AGG_STATE_WANT_START 4
|
|
|
|
#define HT_AGG_STATE_WANT_STOP 5
|
2008-01-28 12:07:16 +00:00
|
|
|
|
2012-07-18 11:31:31 +00:00
|
|
|
enum ieee80211_agg_stop_reason {
|
|
|
|
AGG_STOP_DECLINED,
|
|
|
|
AGG_STOP_LOCAL_REQUEST,
|
|
|
|
AGG_STOP_PEER_REQUEST,
|
|
|
|
AGG_STOP_DESTROY_STA,
|
|
|
|
};
|
|
|
|
|
2008-01-28 12:07:16 +00:00
|
|
|
/**
|
|
|
|
* struct tid_ampdu_tx - TID aggregation information (Tx).
|
|
|
|
*
|
2010-06-10 08:21:39 +00:00
|
|
|
* @rcu_head: rcu head for freeing structure
|
2011-11-23 02:50:28 +00:00
|
|
|
* @session_timer: check if we keep Tx-ing on the TID (by timeout value)
|
2008-01-28 12:07:16 +00:00
|
|
|
* @addba_resp_timer: timer for peer's response to addba request
|
2009-03-23 16:28:41 +00:00
|
|
|
* @pending: pending frames queue -- use sta's spinlock to protect
|
2008-03-26 18:36:03 +00:00
|
|
|
* @dialog_token: dialog token for aggregation session
|
2010-12-15 02:17:10 +00:00
|
|
|
* @timeout: session timeout value to be filled in ADDBA requests
|
2010-06-10 08:21:39 +00:00
|
|
|
* @state: session state (see above)
|
2012-03-18 21:58:06 +00:00
|
|
|
* @last_tx: jiffies of last tx activity
|
2010-06-10 08:21:39 +00:00
|
|
|
* @stop_initiator: initiator of a session stop
|
2010-10-05 17:37:40 +00:00
|
|
|
* @tx_stop: TX DelBA frame when stopping
|
2011-01-18 12:51:05 +00:00
|
|
|
* @buf_size: reorder buffer size at receiver
|
2011-08-28 19:11:01 +00:00
|
|
|
* @failed_bar_ssn: ssn of the last failed BAR tx attempt
|
|
|
|
* @bar_pending: BAR needs to be re-sent
|
2010-06-10 08:21:39 +00:00
|
|
|
*
|
2010-11-29 10:09:16 +00:00
|
|
|
* This structure's lifetime is managed by RCU, assignments to
|
|
|
|
* the array holding it must hold the aggregation mutex.
|
|
|
|
*
|
|
|
|
* The TX path can access it under RCU lock-free if, and
|
|
|
|
* only if, the state has the flag %HT_AGG_STATE_OPERATIONAL
|
|
|
|
* set. Otherwise, the TX path must also acquire the spinlock
|
|
|
|
* and re-check the state, see comments in the tx code
|
|
|
|
* touching it.
|
2008-01-28 12:07:16 +00:00
|
|
|
*/
|
|
|
|
struct tid_ampdu_tx {
|
2010-06-10 08:21:39 +00:00
|
|
|
struct rcu_head rcu_head;
|
2011-11-23 02:50:28 +00:00
|
|
|
struct timer_list session_timer;
|
2008-01-28 12:07:16 +00:00
|
|
|
struct timer_list addba_resp_timer;
|
2009-03-23 16:28:41 +00:00
|
|
|
struct sk_buff_head pending;
|
2010-06-10 08:21:39 +00:00
|
|
|
unsigned long state;
|
2012-03-18 21:58:06 +00:00
|
|
|
unsigned long last_tx;
|
2010-12-15 02:17:10 +00:00
|
|
|
u16 timeout;
|
2008-03-26 18:36:03 +00:00
|
|
|
u8 dialog_token;
|
2010-06-10 08:21:39 +00:00
|
|
|
u8 stop_initiator;
|
2010-10-05 17:37:40 +00:00
|
|
|
bool tx_stop;
|
2011-01-18 12:51:05 +00:00
|
|
|
u8 buf_size;
|
2011-08-28 19:11:01 +00:00
|
|
|
|
|
|
|
u16 failed_bar_ssn;
|
|
|
|
bool bar_pending;
|
2008-01-28 12:07:16 +00:00
|
|
|
};
|
2007-12-25 15:00:32 +00:00
|
|
|
|
|
|
|
/**
|
|
|
|
* struct tid_ampdu_rx - TID aggregation information (Rx).
|
|
|
|
*
|
2014-07-16 10:09:31 +00:00
|
|
|
* @reorder_buf: buffer to reorder incoming aggregated MPDUs. An MPDU may be an
|
|
|
|
* A-MSDU with individually reported subframes.
|
2009-05-05 17:35:14 +00:00
|
|
|
* @reorder_time: jiffies when skb was added
|
2007-12-25 15:00:32 +00:00
|
|
|
* @session_timer: check if peer keeps Tx-ing on the TID (by timeout value)
|
2010-08-04 23:36:41 +00:00
|
|
|
* @reorder_timer: releases expired frames from the reorder buffer.
|
2012-03-18 21:58:06 +00:00
|
|
|
* @last_rx: jiffies of last rx activity
|
2008-03-26 22:21:47 +00:00
|
|
|
* @head_seq_num: head sequence number in reordering buffer.
|
|
|
|
* @stored_mpdu_num: number of MPDUs in reordering buffer
|
2008-03-26 18:36:03 +00:00
|
|
|
* @ssn: Starting Sequence Number expected to be aggregated.
|
|
|
|
* @buf_size: buffer size for incoming A-MPDUs
|
2009-02-10 20:25:45 +00:00
|
|
|
* @timeout: reset timer value (in TUs).
|
2008-03-26 18:36:03 +00:00
|
|
|
* @dialog_token: dialog token for aggregation session
|
2010-06-10 08:21:38 +00:00
|
|
|
* @rcu_head: RCU head used for freeing this struct
|
2010-08-04 23:36:41 +00:00
|
|
|
* @reorder_lock: serializes access to reorder buffer, see below.
|
2014-09-02 12:05:10 +00:00
|
|
|
* @auto_seq: used for offloaded BA sessions to automatically pick head_seq_and
|
|
|
|
* and ssn.
|
2015-04-01 12:20:42 +00:00
|
|
|
* @removed: this session is removed (but might have been found due to RCU)
|
2010-06-10 08:21:38 +00:00
|
|
|
*
|
2010-11-29 10:09:16 +00:00
|
|
|
* This structure's lifetime is managed by RCU, assignments to
|
|
|
|
* the array holding it must hold the aggregation mutex.
|
2010-08-04 23:36:41 +00:00
|
|
|
*
|
2010-11-29 10:09:16 +00:00
|
|
|
* The @reorder_lock is used to protect the members of this
|
|
|
|
* struct, except for @timeout, @buf_size and @dialog_token,
|
|
|
|
* which are constant across the lifetime of the struct (the
|
|
|
|
* dialog token being used only for debugging).
|
2007-12-25 15:00:32 +00:00
|
|
|
*/
|
|
|
|
struct tid_ampdu_rx {
|
2010-06-10 08:21:38 +00:00
|
|
|
struct rcu_head rcu_head;
|
2010-08-04 23:36:41 +00:00
|
|
|
spinlock_t reorder_lock;
|
2014-07-16 10:09:31 +00:00
|
|
|
struct sk_buff_head *reorder_buf;
|
2009-05-05 17:35:14 +00:00
|
|
|
unsigned long *reorder_time;
|
2007-12-25 15:00:32 +00:00
|
|
|
struct timer_list session_timer;
|
2010-08-04 23:36:41 +00:00
|
|
|
struct timer_list reorder_timer;
|
2012-03-18 21:58:06 +00:00
|
|
|
unsigned long last_rx;
|
2008-03-26 22:21:47 +00:00
|
|
|
u16 head_seq_num;
|
|
|
|
u16 stored_mpdu_num;
|
2008-03-26 18:36:03 +00:00
|
|
|
u16 ssn;
|
|
|
|
u16 buf_size;
|
|
|
|
u16 timeout;
|
|
|
|
u8 dialog_token;
|
2014-09-02 12:05:10 +00:00
|
|
|
bool auto_seq;
|
2015-04-01 12:20:42 +00:00
|
|
|
bool removed;
|
2007-12-25 15:00:32 +00:00
|
|
|
};
|
|
|
|
|
2010-05-31 09:40:23 +00:00
|
|
|
/**
|
|
|
|
* struct sta_ampdu_mlme - STA aggregation information.
|
|
|
|
*
|
2010-06-10 08:21:38 +00:00
|
|
|
* @tid_rx: aggregation info for Rx per TID -- RCU protected
|
2010-05-31 09:40:23 +00:00
|
|
|
* @tid_tx: aggregation info for Tx per TID
|
2011-05-13 11:35:40 +00:00
|
|
|
* @tid_start_tx: sessions where start was requested
|
2010-05-31 09:40:23 +00:00
|
|
|
* @addba_req_num: number of times addBA request has been sent.
|
2011-12-18 00:39:35 +00:00
|
|
|
* @last_addba_req_time: timestamp of the last addBA request.
|
2010-05-31 09:40:23 +00:00
|
|
|
* @dialog_token_allocator: dialog token enumerator for each new session;
|
2010-06-10 08:21:42 +00:00
|
|
|
* @work: work struct for starting/stopping aggregation
|
2010-06-10 08:21:44 +00:00
|
|
|
* @tid_rx_timer_expired: bitmap indicating on which TIDs the
|
|
|
|
* RX timer expired until the work for it runs
|
2011-05-22 13:10:21 +00:00
|
|
|
* @tid_rx_stop_requested: bitmap indicating which BA sessions per TID the
|
|
|
|
* driver requested to close until the work for it runs
|
2010-06-10 08:21:46 +00:00
|
|
|
* @mtx: mutex to protect all TX data (except non-NULL assignments
|
|
|
|
* to tid_tx[idx], which are protected by the sta spinlock)
|
2013-06-12 21:08:44 +00:00
|
|
|
* tid_start_tx is also protected by sta->lock.
|
2010-05-31 09:40:23 +00:00
|
|
|
*/
|
|
|
|
struct sta_ampdu_mlme {
|
2010-06-10 08:21:46 +00:00
|
|
|
struct mutex mtx;
|
2010-05-31 09:40:23 +00:00
|
|
|
/* rx */
|
2012-11-14 22:22:21 +00:00
|
|
|
struct tid_ampdu_rx __rcu *tid_rx[IEEE80211_NUM_TIDS];
|
|
|
|
unsigned long tid_rx_timer_expired[BITS_TO_LONGS(IEEE80211_NUM_TIDS)];
|
|
|
|
unsigned long tid_rx_stop_requested[BITS_TO_LONGS(IEEE80211_NUM_TIDS)];
|
2010-05-31 09:40:23 +00:00
|
|
|
/* tx */
|
2010-06-10 08:21:42 +00:00
|
|
|
struct work_struct work;
|
2012-11-14 22:22:21 +00:00
|
|
|
struct tid_ampdu_tx __rcu *tid_tx[IEEE80211_NUM_TIDS];
|
|
|
|
struct tid_ampdu_tx *tid_start_tx[IEEE80211_NUM_TIDS];
|
|
|
|
unsigned long last_addba_req_time[IEEE80211_NUM_TIDS];
|
|
|
|
u8 addba_req_num[IEEE80211_NUM_TIDS];
|
2010-05-31 09:40:23 +00:00
|
|
|
u8 dialog_token_allocator;
|
|
|
|
};
|
|
|
|
|
|
|
|
|
2014-11-19 11:47:38 +00:00
|
|
|
/* Value to indicate no TID reservation */
|
|
|
|
#define IEEE80211_TID_UNRESERVED 0xff
|
|
|
|
|
2008-02-25 15:27:48 +00:00
|
|
|
/**
|
|
|
|
* struct sta_info - STA information
|
|
|
|
*
|
|
|
|
* This structure collects information about a station that
|
|
|
|
* mac80211 is communicating with.
|
|
|
|
*
|
|
|
|
* @list: global linked list entry
|
2013-12-04 22:12:31 +00:00
|
|
|
* @free_list: list entry for keeping track of stations to free
|
2015-02-13 20:55:15 +00:00
|
|
|
* @hash_node: hash node for rhashtable
|
2008-02-25 15:27:48 +00:00
|
|
|
* @local: pointer to the global information
|
2008-10-23 06:51:20 +00:00
|
|
|
* @sdata: virtual interface this station belongs to
|
2013-03-24 12:23:27 +00:00
|
|
|
* @ptk: peer keys negotiated with this station, if any
|
|
|
|
* @ptk_idx: last installed peer key index
|
2010-10-05 17:39:30 +00:00
|
|
|
* @gtk: group keys negotiated with this station, if any
|
2013-03-24 12:23:27 +00:00
|
|
|
* @gtk_idx: last installed group key index
|
2008-10-23 06:51:20 +00:00
|
|
|
* @rate_ctrl: rate control algorithm reference
|
|
|
|
* @rate_ctrl_priv: rate control private per-STA pointer
|
|
|
|
* @last_tx_rate: rate used for last transmit, to report to userspace as
|
|
|
|
* "the" transmit rate
|
2011-02-27 21:08:01 +00:00
|
|
|
* @last_rx_rate_idx: rx status rate index of the last data packet
|
|
|
|
* @last_rx_rate_flag: rx status flag of the last data packet
|
2014-02-05 14:37:11 +00:00
|
|
|
* @last_rx_rate_vht_flag: rx status vht flag of the last data packet
|
2012-11-09 14:07:02 +00:00
|
|
|
* @last_rx_rate_vht_nss: rx status nss of last data packet
|
2008-07-03 20:52:18 +00:00
|
|
|
* @lock: used for locking all fields that require locking, see comments
|
|
|
|
* in the header file.
|
mac80211: fix station/driver powersave race
It is currently possible to have a race due to the station PS
unblock work like this:
* station goes to sleep with frames buffered in the driver
* driver blocks wakeup
* station wakes up again
* driver flushes/returns frames, and unblocks, which schedules
the unblock work
* unblock work starts to run, and checks that the station is
awake (i.e. that the WLAN_STA_PS_STA flag isn't set)
* we process a received frame with PM=1, setting the flag again
* ieee80211_sta_ps_deliver_wakeup() runs, delivering all frames
to the driver, and then clearing the WLAN_STA_PS_DRIVER and
WLAN_STA_PS_STA flags
In this scenario, mac80211 will think that the station is awake,
while it really is asleep, and any TX'ed frames should be filtered
by the device (it will know that the station is sleeping) but then
passed to mac80211 again, which will not buffer it either as it
thinks the station is awake, and eventually the packets will be
dropped.
Fix this by moving the clearing of the flags to exactly where we
learn about the situation. This creates a problem of reordering,
so introduce another flag indicating that delivery is being done,
this new flag also queues frames and is cleared only while the
spinlock is held (which the queuing code also holds) so that any
concurrent delivery/TX is handled correctly.
Reported-by: Andrei Otcheretianski <andrei.otcheretianski@intel.com>
Signed-off-by: Johannes Berg <johannes.berg@intel.com>
2014-05-27 14:32:27 +00:00
|
|
|
* @drv_deliver_wk: used for delivering frames after driver PS unblocking
|
2008-10-23 06:51:20 +00:00
|
|
|
* @listen_interval: listen interval of this station, when we're acting as AP
|
2011-09-29 14:04:36 +00:00
|
|
|
* @_flags: STA flags, see &enum ieee80211_sta_info_flags, do not use directly
|
mac80211: fix AP powersave TX vs. wakeup race
There is a race between the TX path and the STA wakeup: while
a station is sleeping, mac80211 buffers frames until it wakes
up, then the frames are transmitted. However, the RX and TX
path are concurrent, so the packet indicating wakeup can be
processed while a packet is being transmitted.
This can lead to a situation where the buffered frames list
is emptied on the one side, while a frame is being added on
the other side, as the station is still seen as sleeping in
the TX path.
As a result, the newly added frame will not be send anytime
soon. It might be sent much later (and out of order) when the
station goes to sleep and wakes up the next time.
Additionally, it can lead to the crash below.
Fix all this by synchronising both paths with a new lock.
Both path are not fastpath since they handle PS situations.
In a later patch we'll remove the extra skb queue locks to
reduce locking overhead.
BUG: unable to handle kernel
NULL pointer dereference at 000000b0
IP: [<ff6f1791>] ieee80211_report_used_skb+0x11/0x3e0 [mac80211]
*pde = 00000000
Oops: 0000 [#1] SMP DEBUG_PAGEALLOC
EIP: 0060:[<ff6f1791>] EFLAGS: 00210282 CPU: 1
EIP is at ieee80211_report_used_skb+0x11/0x3e0 [mac80211]
EAX: e5900da0 EBX: 00000000 ECX: 00000001 EDX: 00000000
ESI: e41d00c0 EDI: e5900da0 EBP: ebe458e4 ESP: ebe458b0
DS: 007b ES: 007b FS: 00d8 GS: 00e0 SS: 0068
CR0: 8005003b CR2: 000000b0 CR3: 25a78000 CR4: 000407d0
DR0: 00000000 DR1: 00000000 DR2: 00000000 DR3: 00000000
DR6: ffff0ff0 DR7: 00000400
Process iperf (pid: 3934, ti=ebe44000 task=e757c0b0 task.ti=ebe44000)
iwlwifi 0000:02:00.0: I iwl_pcie_enqueue_hcmd Sending command LQ_CMD (#4e), seq: 0x0903, 92 bytes at 3[3]:9
Stack:
e403b32c ebe458c4 00200002 00200286 e403b338 ebe458cc c10960bb e5900da0
ff76a6ec ebe458d8 00000000 e41d00c0 e5900da0 ebe458f0 ff6f1b75 e403b210
ebe4598c ff723dc1 00000000 ff76a6ec e597c978 e403b758 00000002 00000002
Call Trace:
[<ff6f1b75>] ieee80211_free_txskb+0x15/0x20 [mac80211]
[<ff723dc1>] invoke_tx_handlers+0x1661/0x1780 [mac80211]
[<ff7248a5>] ieee80211_tx+0x75/0x100 [mac80211]
[<ff7249bf>] ieee80211_xmit+0x8f/0xc0 [mac80211]
[<ff72550e>] ieee80211_subif_start_xmit+0x4fe/0xe20 [mac80211]
[<c149ef70>] dev_hard_start_xmit+0x450/0x950
[<c14b9aa9>] sch_direct_xmit+0xa9/0x250
[<c14b9c9b>] __qdisc_run+0x4b/0x150
[<c149f732>] dev_queue_xmit+0x2c2/0xca0
Cc: stable@vger.kernel.org
Reported-by: Yaara Rozenblum <yaara.rozenblum@intel.com>
Signed-off-by: Emmanuel Grumbach <emmanuel.grumbach@intel.com>
Reviewed-by: Stanislaw Gruszka <sgruszka@redhat.com>
[reword commit log, use a separate lock]
Signed-off-by: Johannes Berg <johannes.berg@intel.com>
2014-02-20 07:22:11 +00:00
|
|
|
* @ps_lock: used for powersave (when mac80211 is the AP) related locking
|
2011-09-29 14:04:29 +00:00
|
|
|
* @ps_tx_buf: buffers (per AC) of frames to transmit to this station
|
|
|
|
* when it leaves power saving state or polls
|
|
|
|
* @tx_filtered: buffers (per AC) of frames we already tried to
|
|
|
|
* transmit but were filtered by hardware due to STA having
|
|
|
|
* entered power saving state, these are also delivered to
|
|
|
|
* the station when it leaves powersave or polls for frames
|
|
|
|
* @driver_buffered_tids: bitmap of TIDs the driver has data buffered on
|
2015-03-27 20:30:37 +00:00
|
|
|
* @txq_buffered_tids: bitmap of TIDs that mac80211 has txq data buffered on
|
2008-02-25 15:27:48 +00:00
|
|
|
* @rx_packets: Number of MSDUs received from this STA
|
|
|
|
* @rx_bytes: Number of bytes received from this STA
|
2008-10-23 06:51:20 +00:00
|
|
|
* @last_rx: time (in jiffies) when last frame was received from this STA
|
2011-04-08 15:54:24 +00:00
|
|
|
* @last_connected: time (in seconds) when a station got connected
|
2008-07-03 20:52:18 +00:00
|
|
|
* @num_duplicates: number of duplicate frames received from this STA
|
|
|
|
* @rx_fragments: number of received MPDUs
|
|
|
|
* @rx_dropped: number of dropped MPDUs from this STA
|
|
|
|
* @last_signal: signal of last received frame from this STA
|
2010-12-02 10:12:43 +00:00
|
|
|
* @avg_signal: moving average of signal of received frames from this STA
|
2012-11-28 12:57:09 +00:00
|
|
|
* @last_ack_signal: signal of last received Ack frame from this STA
|
2008-07-03 20:52:18 +00:00
|
|
|
* @last_seq_ctrl: last received seq/frag number from this STA (per RX queue)
|
2008-10-23 06:51:20 +00:00
|
|
|
* @tx_filtered_count: number of frames the hardware filtered for this STA
|
|
|
|
* @tx_retry_failed: number of frames that failed retry
|
|
|
|
* @tx_retry_count: total number of retries for frames to this STA
|
2008-07-03 20:52:18 +00:00
|
|
|
* @fail_avg: moving percentage of failed MSDUs
|
|
|
|
* @tx_packets: number of RX/TX MSDUs
|
2008-10-23 06:51:20 +00:00
|
|
|
* @tx_bytes: number of bytes transmitted to this STA
|
2008-07-03 20:52:18 +00:00
|
|
|
* @tx_fragments: number of transmitted MPDUs
|
2008-10-23 06:51:20 +00:00
|
|
|
* @tid_seq: per-TID sequence numbers for sending to this STA
|
|
|
|
* @ampdu_mlme: A-MPDU state machine state
|
2008-07-03 20:52:18 +00:00
|
|
|
* @timer_to_tid: identity mapping to ID timers
|
|
|
|
* @llid: Local link ID
|
|
|
|
* @plid: Peer link ID
|
|
|
|
* @reason: Cancel reason on PLINK_HOLDING state
|
|
|
|
* @plink_retries: Retries in establishment
|
2008-10-23 06:51:20 +00:00
|
|
|
* @plink_state: peer link state
|
|
|
|
* @plink_timeout: timeout of peer link
|
|
|
|
* @plink_timer: peer link watch timer
|
2012-03-31 18:31:32 +00:00
|
|
|
* @t_offset: timing offset relative to this host
|
2012-06-11 17:23:35 +00:00
|
|
|
* @t_offset_setpoint: reference timing offset of this sta to be used when
|
|
|
|
* calculating clockdrift
|
2013-01-30 17:14:08 +00:00
|
|
|
* @local_pm: local link-specific power save mode
|
|
|
|
* @peer_pm: peer-specific power save mode towards local STA
|
|
|
|
* @nonpeer_pm: STA power save mode towards non-peer neighbors
|
2008-07-03 20:52:18 +00:00
|
|
|
* @debugfs: debug filesystem info
|
mac80211: async station powersave handling
Some devices require that all frames to a station
are flushed when that station goes into powersave
mode before being able to send frames to that
station again when it wakes up or polls -- all in
order to avoid reordering and too many or too few
frames being sent to the station when it polls.
Normally, this is the case unless the station
goes to sleep and wakes up very quickly again.
But in that case, frames for it may be pending
on the hardware queues, and thus races could
happen in the case of multiple hardware queues
used for QoS/WMM. Normally this isn't a problem,
but with the iwlwifi mechanism we need to make
sure the race doesn't happen.
This makes mac80211 able to cope with the race
with driver help by a new WLAN_STA_PS_DRIVER
per-station flag that can be controlled by the
driver and tells mac80211 whether it can transmit
frames or not. This flag must be set according to
very specific rules outlined in the documentation
for the function that controls it.
When we buffer new frames for the station, we
normally set the TIM bit right away, but while
the driver has blocked transmission to that sta
we need to avoid that as well since we cannot
respond to the station if it wakes up due to the
TIM bit. Once the driver unblocks, we can set
the TIM bit.
Similarly, when the station just wakes up, we
need to wait until all other frames are flushed
before we can transmit frames to that station,
so the same applies here, we need to wait for
the driver to give the OK.
Signed-off-by: Johannes Berg <johannes@sipsolutions.net>
Signed-off-by: John W. Linville <linville@tuxdriver.com>
2009-11-06 10:35:50 +00:00
|
|
|
* @dead: set to true when sta is unlinked
|
2010-02-03 12:59:58 +00:00
|
|
|
* @uploaded: set to true when sta is uploaded to the driver
|
2010-11-24 07:10:06 +00:00
|
|
|
* @lost_packets: number of consecutive lost packets
|
2011-08-17 12:18:15 +00:00
|
|
|
* @sta: station information we share with the driver
|
2011-12-14 11:35:30 +00:00
|
|
|
* @sta_state: duplicates information about station state (for debug)
|
2011-12-09 19:01:49 +00:00
|
|
|
* @beacon_loss_count: number of times beacon loss has triggered
|
2013-02-08 08:06:36 +00:00
|
|
|
* @rcu_head: RCU head used for freeing this station struct
|
2012-12-27 17:55:36 +00:00
|
|
|
* @cur_max_bandwidth: maximum bandwidth to use for TX to the station,
|
|
|
|
* taken from HT/VHT capabilities or VHT operating mode notification
|
2013-06-05 07:32:50 +00:00
|
|
|
* @chains: chains ever used for RX from this station
|
|
|
|
* @chain_signal_last: last signal (per chain)
|
|
|
|
* @chain_signal_avg: signal average (per chain)
|
2013-10-01 13:45:43 +00:00
|
|
|
* @known_smps_mode: the smps_mode the client thinks we are in. Relevant for
|
|
|
|
* AP only.
|
2013-03-24 12:23:27 +00:00
|
|
|
* @cipher_scheme: optional cipher scheme for this station
|
2014-09-14 18:48:28 +00:00
|
|
|
* @last_tdls_pkt_time: holds the time in jiffies of last TDLS pkt ACKed
|
2014-11-19 11:47:38 +00:00
|
|
|
* @reserved_tid: reserved TID (if any, otherwise IEEE80211_TID_UNRESERVED)
|
2014-11-21 13:26:31 +00:00
|
|
|
* @tx_msdu: MSDUs transmitted to this station, using IEEE80211_NUM_TID
|
|
|
|
* entry for non-QoS frames
|
|
|
|
* @tx_msdu_retries: MSDU retries for transmissions to to this station,
|
|
|
|
* using IEEE80211_NUM_TID entry for non-QoS frames
|
|
|
|
* @tx_msdu_failed: MSDU failures for transmissions to to this station,
|
|
|
|
* using IEEE80211_NUM_TID entry for non-QoS frames
|
|
|
|
* @rx_msdu: MSDUs received from this station, using IEEE80211_NUM_TID
|
|
|
|
* entry for non-QoS frames
|
2008-02-25 15:27:48 +00:00
|
|
|
*/
|
2007-05-05 18:45:53 +00:00
|
|
|
struct sta_info {
|
2008-02-25 15:27:48 +00:00
|
|
|
/* General information, mostly static */
|
2013-12-04 22:12:31 +00:00
|
|
|
struct list_head list, free_list;
|
2012-09-09 11:43:51 +00:00
|
|
|
struct rcu_head rcu_head;
|
2015-02-13 20:55:15 +00:00
|
|
|
struct rhash_head hash_node;
|
2007-05-05 18:45:53 +00:00
|
|
|
struct ieee80211_local *local;
|
2008-02-25 15:27:46 +00:00
|
|
|
struct ieee80211_sub_if_data *sdata;
|
2011-05-13 12:15:49 +00:00
|
|
|
struct ieee80211_key __rcu *gtk[NUM_DEFAULT_KEYS + NUM_DEFAULT_MGMT_KEYS];
|
2013-03-24 12:23:27 +00:00
|
|
|
struct ieee80211_key __rcu *ptk[NUM_DEFAULT_KEYS];
|
|
|
|
u8 gtk_idx;
|
|
|
|
u8 ptk_idx;
|
2007-05-05 18:45:53 +00:00
|
|
|
struct rate_control_ref *rate_ctrl;
|
|
|
|
void *rate_ctrl_priv;
|
2008-05-02 23:02:02 +00:00
|
|
|
spinlock_t lock;
|
2008-09-10 22:02:02 +00:00
|
|
|
|
mac80211: fix station/driver powersave race
It is currently possible to have a race due to the station PS
unblock work like this:
* station goes to sleep with frames buffered in the driver
* driver blocks wakeup
* station wakes up again
* driver flushes/returns frames, and unblocks, which schedules
the unblock work
* unblock work starts to run, and checks that the station is
awake (i.e. that the WLAN_STA_PS_STA flag isn't set)
* we process a received frame with PM=1, setting the flag again
* ieee80211_sta_ps_deliver_wakeup() runs, delivering all frames
to the driver, and then clearing the WLAN_STA_PS_DRIVER and
WLAN_STA_PS_STA flags
In this scenario, mac80211 will think that the station is awake,
while it really is asleep, and any TX'ed frames should be filtered
by the device (it will know that the station is sleeping) but then
passed to mac80211 again, which will not buffer it either as it
thinks the station is awake, and eventually the packets will be
dropped.
Fix this by moving the clearing of the flags to exactly where we
learn about the situation. This creates a problem of reordering,
so introduce another flag indicating that delivery is being done,
this new flag also queues frames and is cleared only while the
spinlock is held (which the queuing code also holds) so that any
concurrent delivery/TX is handled correctly.
Reported-by: Andrei Otcheretianski <andrei.otcheretianski@intel.com>
Signed-off-by: Johannes Berg <johannes.berg@intel.com>
2014-05-27 14:32:27 +00:00
|
|
|
struct work_struct drv_deliver_wk;
|
mac80211: async station powersave handling
Some devices require that all frames to a station
are flushed when that station goes into powersave
mode before being able to send frames to that
station again when it wakes up or polls -- all in
order to avoid reordering and too many or too few
frames being sent to the station when it polls.
Normally, this is the case unless the station
goes to sleep and wakes up very quickly again.
But in that case, frames for it may be pending
on the hardware queues, and thus races could
happen in the case of multiple hardware queues
used for QoS/WMM. Normally this isn't a problem,
but with the iwlwifi mechanism we need to make
sure the race doesn't happen.
This makes mac80211 able to cope with the race
with driver help by a new WLAN_STA_PS_DRIVER
per-station flag that can be controlled by the
driver and tells mac80211 whether it can transmit
frames or not. This flag must be set according to
very specific rules outlined in the documentation
for the function that controls it.
When we buffer new frames for the station, we
normally set the TIM bit right away, but while
the driver has blocked transmission to that sta
we need to avoid that as well since we cannot
respond to the station if it wakes up due to the
TIM bit. Once the driver unblocks, we can set
the TIM bit.
Similarly, when the station just wakes up, we
need to wait until all other frames are flushed
before we can transmit frames to that station,
so the same applies here, we need to wait for
the driver to give the OK.
Signed-off-by: Johannes Berg <johannes@sipsolutions.net>
Signed-off-by: John W. Linville <linville@tuxdriver.com>
2009-11-06 10:35:50 +00:00
|
|
|
|
2008-02-25 15:27:48 +00:00
|
|
|
u16 listen_interval;
|
2007-05-05 18:45:53 +00:00
|
|
|
|
mac80211: async station powersave handling
Some devices require that all frames to a station
are flushed when that station goes into powersave
mode before being able to send frames to that
station again when it wakes up or polls -- all in
order to avoid reordering and too many or too few
frames being sent to the station when it polls.
Normally, this is the case unless the station
goes to sleep and wakes up very quickly again.
But in that case, frames for it may be pending
on the hardware queues, and thus races could
happen in the case of multiple hardware queues
used for QoS/WMM. Normally this isn't a problem,
but with the iwlwifi mechanism we need to make
sure the race doesn't happen.
This makes mac80211 able to cope with the race
with driver help by a new WLAN_STA_PS_DRIVER
per-station flag that can be controlled by the
driver and tells mac80211 whether it can transmit
frames or not. This flag must be set according to
very specific rules outlined in the documentation
for the function that controls it.
When we buffer new frames for the station, we
normally set the TIM bit right away, but while
the driver has blocked transmission to that sta
we need to avoid that as well since we cannot
respond to the station if it wakes up due to the
TIM bit. Once the driver unblocks, we can set
the TIM bit.
Similarly, when the station just wakes up, we
need to wait until all other frames are flushed
before we can transmit frames to that station,
so the same applies here, we need to wait for
the driver to give the OK.
Signed-off-by: Johannes Berg <johannes@sipsolutions.net>
Signed-off-by: John W. Linville <linville@tuxdriver.com>
2009-11-06 10:35:50 +00:00
|
|
|
bool dead;
|
|
|
|
|
2010-02-03 12:59:58 +00:00
|
|
|
bool uploaded;
|
2008-02-25 15:27:48 +00:00
|
|
|
|
2011-12-14 11:35:30 +00:00
|
|
|
enum ieee80211_sta_state sta_state;
|
|
|
|
|
2011-09-29 14:04:36 +00:00
|
|
|
/* use the accessors defined below */
|
|
|
|
unsigned long _flags;
|
2008-02-25 15:27:48 +00:00
|
|
|
|
mac80211: fix AP powersave TX vs. wakeup race
There is a race between the TX path and the STA wakeup: while
a station is sleeping, mac80211 buffers frames until it wakes
up, then the frames are transmitted. However, the RX and TX
path are concurrent, so the packet indicating wakeup can be
processed while a packet is being transmitted.
This can lead to a situation where the buffered frames list
is emptied on the one side, while a frame is being added on
the other side, as the station is still seen as sleeping in
the TX path.
As a result, the newly added frame will not be send anytime
soon. It might be sent much later (and out of order) when the
station goes to sleep and wakes up the next time.
Additionally, it can lead to the crash below.
Fix all this by synchronising both paths with a new lock.
Both path are not fastpath since they handle PS situations.
In a later patch we'll remove the extra skb queue locks to
reduce locking overhead.
BUG: unable to handle kernel
NULL pointer dereference at 000000b0
IP: [<ff6f1791>] ieee80211_report_used_skb+0x11/0x3e0 [mac80211]
*pde = 00000000
Oops: 0000 [#1] SMP DEBUG_PAGEALLOC
EIP: 0060:[<ff6f1791>] EFLAGS: 00210282 CPU: 1
EIP is at ieee80211_report_used_skb+0x11/0x3e0 [mac80211]
EAX: e5900da0 EBX: 00000000 ECX: 00000001 EDX: 00000000
ESI: e41d00c0 EDI: e5900da0 EBP: ebe458e4 ESP: ebe458b0
DS: 007b ES: 007b FS: 00d8 GS: 00e0 SS: 0068
CR0: 8005003b CR2: 000000b0 CR3: 25a78000 CR4: 000407d0
DR0: 00000000 DR1: 00000000 DR2: 00000000 DR3: 00000000
DR6: ffff0ff0 DR7: 00000400
Process iperf (pid: 3934, ti=ebe44000 task=e757c0b0 task.ti=ebe44000)
iwlwifi 0000:02:00.0: I iwl_pcie_enqueue_hcmd Sending command LQ_CMD (#4e), seq: 0x0903, 92 bytes at 3[3]:9
Stack:
e403b32c ebe458c4 00200002 00200286 e403b338 ebe458cc c10960bb e5900da0
ff76a6ec ebe458d8 00000000 e41d00c0 e5900da0 ebe458f0 ff6f1b75 e403b210
ebe4598c ff723dc1 00000000 ff76a6ec e597c978 e403b758 00000002 00000002
Call Trace:
[<ff6f1b75>] ieee80211_free_txskb+0x15/0x20 [mac80211]
[<ff723dc1>] invoke_tx_handlers+0x1661/0x1780 [mac80211]
[<ff7248a5>] ieee80211_tx+0x75/0x100 [mac80211]
[<ff7249bf>] ieee80211_xmit+0x8f/0xc0 [mac80211]
[<ff72550e>] ieee80211_subif_start_xmit+0x4fe/0xe20 [mac80211]
[<c149ef70>] dev_hard_start_xmit+0x450/0x950
[<c14b9aa9>] sch_direct_xmit+0xa9/0x250
[<c14b9c9b>] __qdisc_run+0x4b/0x150
[<c149f732>] dev_queue_xmit+0x2c2/0xca0
Cc: stable@vger.kernel.org
Reported-by: Yaara Rozenblum <yaara.rozenblum@intel.com>
Signed-off-by: Emmanuel Grumbach <emmanuel.grumbach@intel.com>
Reviewed-by: Stanislaw Gruszka <sgruszka@redhat.com>
[reword commit log, use a separate lock]
Signed-off-by: Johannes Berg <johannes.berg@intel.com>
2014-02-20 07:22:11 +00:00
|
|
|
/* STA powersave lock and frame queues */
|
|
|
|
spinlock_t ps_lock;
|
2011-09-29 14:04:29 +00:00
|
|
|
struct sk_buff_head ps_tx_buf[IEEE80211_NUM_ACS];
|
|
|
|
struct sk_buff_head tx_filtered[IEEE80211_NUM_ACS];
|
|
|
|
unsigned long driver_buffered_tids;
|
2015-03-27 20:30:37 +00:00
|
|
|
unsigned long txq_buffered_tids;
|
2008-02-25 15:27:48 +00:00
|
|
|
|
|
|
|
/* Updated from RX path only, no locking requirements */
|
2013-02-05 09:55:21 +00:00
|
|
|
unsigned long rx_packets;
|
|
|
|
u64 rx_bytes;
|
2008-02-25 15:27:48 +00:00
|
|
|
unsigned long last_rx;
|
2011-04-08 15:54:24 +00:00
|
|
|
long last_connected;
|
2008-07-03 20:52:18 +00:00
|
|
|
unsigned long num_duplicates;
|
|
|
|
unsigned long rx_fragments;
|
|
|
|
unsigned long rx_dropped;
|
|
|
|
int last_signal;
|
2010-12-02 10:12:43 +00:00
|
|
|
struct ewma avg_signal;
|
2012-11-28 12:57:09 +00:00
|
|
|
int last_ack_signal;
|
2013-04-22 14:29:31 +00:00
|
|
|
|
|
|
|
u8 chains;
|
|
|
|
s8 chain_signal_last[IEEE80211_MAX_CHAINS];
|
|
|
|
struct ewma chain_signal_avg[IEEE80211_MAX_CHAINS];
|
|
|
|
|
2011-07-07 16:45:03 +00:00
|
|
|
/* Plus 1 for non-QoS frames */
|
2012-11-14 22:22:21 +00:00
|
|
|
__le16 last_seq_ctrl[IEEE80211_NUM_TIDS + 1];
|
2008-02-25 15:27:48 +00:00
|
|
|
|
|
|
|
/* Updated from TX status path only, no locking requirements */
|
|
|
|
unsigned long tx_filtered_count;
|
|
|
|
unsigned long tx_retry_failed, tx_retry_count;
|
|
|
|
/* moving percentage of failed MSDUs */
|
|
|
|
unsigned int fail_avg;
|
|
|
|
|
|
|
|
/* Updated from TX path only, no locking requirements */
|
2013-02-05 09:55:21 +00:00
|
|
|
u32 tx_fragments;
|
|
|
|
u64 tx_packets[IEEE80211_NUM_ACS];
|
|
|
|
u64 tx_bytes[IEEE80211_NUM_ACS];
|
2008-10-21 10:40:02 +00:00
|
|
|
struct ieee80211_tx_rate last_tx_rate;
|
2011-02-27 21:08:01 +00:00
|
|
|
int last_rx_rate_idx;
|
2012-11-09 14:07:02 +00:00
|
|
|
u32 last_rx_rate_flag;
|
2014-02-05 14:37:11 +00:00
|
|
|
u32 last_rx_rate_vht_flag;
|
2012-11-09 14:07:02 +00:00
|
|
|
u8 last_rx_rate_vht_nss;
|
2008-07-10 09:21:26 +00:00
|
|
|
u16 tid_seq[IEEE80211_QOS_CTL_TID_MASK + 1];
|
2014-11-21 13:26:31 +00:00
|
|
|
u64 tx_msdu[IEEE80211_NUM_TIDS + 1];
|
|
|
|
u64 tx_msdu_retries[IEEE80211_NUM_TIDS + 1];
|
|
|
|
u64 tx_msdu_failed[IEEE80211_NUM_TIDS + 1];
|
|
|
|
u64 rx_msdu[IEEE80211_NUM_TIDS + 1];
|
2007-05-05 18:45:53 +00:00
|
|
|
|
2008-02-25 15:27:46 +00:00
|
|
|
/*
|
2008-05-02 23:02:02 +00:00
|
|
|
* Aggregation information, locked with lock.
|
2008-02-25 15:27:46 +00:00
|
|
|
*/
|
2007-12-25 15:00:32 +00:00
|
|
|
struct sta_ampdu_mlme ampdu_mlme;
|
2012-11-14 22:22:21 +00:00
|
|
|
u8 timer_to_tid[IEEE80211_NUM_TIDS];
|
2008-02-25 15:27:48 +00:00
|
|
|
|
2008-02-23 14:17:11 +00:00
|
|
|
#ifdef CONFIG_MAC80211_MESH
|
2008-02-25 15:27:48 +00:00
|
|
|
/*
|
|
|
|
* Mesh peer link attributes
|
|
|
|
* TODO: move to a sub-structure that is referenced with pointer?
|
|
|
|
*/
|
2013-11-13 07:43:03 +00:00
|
|
|
u16 llid;
|
|
|
|
u16 plid;
|
|
|
|
u16 reason;
|
2008-07-03 20:52:18 +00:00
|
|
|
u8 plink_retries;
|
2011-05-13 17:45:43 +00:00
|
|
|
enum nl80211_plink_state plink_state;
|
2008-02-23 14:17:11 +00:00
|
|
|
u32 plink_timeout;
|
|
|
|
struct timer_list plink_timer;
|
2012-03-31 18:31:32 +00:00
|
|
|
s64 t_offset;
|
|
|
|
s64 t_offset_setpoint;
|
2013-01-30 17:14:08 +00:00
|
|
|
/* mesh power save */
|
|
|
|
enum nl80211_mesh_power_mode local_pm;
|
|
|
|
enum nl80211_mesh_power_mode peer_pm;
|
|
|
|
enum nl80211_mesh_power_mode nonpeer_pm;
|
2008-02-23 14:17:11 +00:00
|
|
|
#endif
|
2007-11-26 14:14:30 +00:00
|
|
|
|
2007-05-05 18:46:38 +00:00
|
|
|
#ifdef CONFIG_MAC80211_DEBUGFS
|
|
|
|
struct sta_info_debugfsdentries {
|
|
|
|
struct dentry *dir;
|
2008-10-07 10:04:29 +00:00
|
|
|
bool add_has_run;
|
2007-05-05 18:46:38 +00:00
|
|
|
} debugfs;
|
|
|
|
#endif
|
2008-09-10 22:02:02 +00:00
|
|
|
|
2012-12-27 17:55:36 +00:00
|
|
|
enum ieee80211_sta_rx_bandwidth cur_max_bandwidth;
|
|
|
|
|
2010-11-24 07:10:06 +00:00
|
|
|
unsigned int lost_packets;
|
2011-12-09 19:01:49 +00:00
|
|
|
unsigned int beacon_loss_count;
|
2010-11-24 07:10:06 +00:00
|
|
|
|
2013-10-01 13:45:43 +00:00
|
|
|
enum ieee80211_smps_mode known_smps_mode;
|
2013-03-24 12:23:27 +00:00
|
|
|
const struct ieee80211_cipher_scheme *cipher_scheme;
|
2013-10-01 13:45:43 +00:00
|
|
|
|
2014-09-04 05:28:40 +00:00
|
|
|
/* TDLS timeout data */
|
|
|
|
unsigned long last_tdls_pkt_time;
|
|
|
|
|
2014-11-19 11:47:38 +00:00
|
|
|
u8 reserved_tid;
|
|
|
|
|
2008-09-10 22:02:02 +00:00
|
|
|
/* keep last! */
|
|
|
|
struct ieee80211_sta sta;
|
2007-05-05 18:45:53 +00:00
|
|
|
};
|
|
|
|
|
2011-05-13 17:45:43 +00:00
|
|
|
static inline enum nl80211_plink_state sta_plink_state(struct sta_info *sta)
|
2008-02-25 15:24:38 +00:00
|
|
|
{
|
|
|
|
#ifdef CONFIG_MAC80211_MESH
|
|
|
|
return sta->plink_state;
|
|
|
|
#endif
|
2011-05-13 17:45:43 +00:00
|
|
|
return NL80211_PLINK_LISTEN;
|
2008-02-25 15:24:38 +00:00
|
|
|
}
|
|
|
|
|
2011-09-29 14:04:36 +00:00
|
|
|
static inline void set_sta_flag(struct sta_info *sta,
|
|
|
|
enum ieee80211_sta_info_flags flag)
|
2008-05-02 23:02:02 +00:00
|
|
|
{
|
2011-12-14 11:35:30 +00:00
|
|
|
WARN_ON(flag == WLAN_STA_AUTH ||
|
|
|
|
flag == WLAN_STA_ASSOC ||
|
|
|
|
flag == WLAN_STA_AUTHORIZED);
|
2011-09-29 14:04:36 +00:00
|
|
|
set_bit(flag, &sta->_flags);
|
2008-05-02 23:02:02 +00:00
|
|
|
}
|
|
|
|
|
2011-09-29 14:04:36 +00:00
|
|
|
static inline void clear_sta_flag(struct sta_info *sta,
|
|
|
|
enum ieee80211_sta_info_flags flag)
|
2008-05-02 23:02:02 +00:00
|
|
|
{
|
2011-12-14 11:35:30 +00:00
|
|
|
WARN_ON(flag == WLAN_STA_AUTH ||
|
|
|
|
flag == WLAN_STA_ASSOC ||
|
|
|
|
flag == WLAN_STA_AUTHORIZED);
|
2011-09-29 14:04:36 +00:00
|
|
|
clear_bit(flag, &sta->_flags);
|
2008-05-02 23:02:02 +00:00
|
|
|
}
|
|
|
|
|
2011-09-29 14:04:36 +00:00
|
|
|
static inline int test_sta_flag(struct sta_info *sta,
|
|
|
|
enum ieee80211_sta_info_flags flag)
|
2008-05-02 23:02:02 +00:00
|
|
|
{
|
2011-09-29 14:04:36 +00:00
|
|
|
return test_bit(flag, &sta->_flags);
|
2008-05-02 23:02:02 +00:00
|
|
|
}
|
|
|
|
|
2011-09-29 14:04:36 +00:00
|
|
|
static inline int test_and_clear_sta_flag(struct sta_info *sta,
|
|
|
|
enum ieee80211_sta_info_flags flag)
|
2008-05-02 23:02:02 +00:00
|
|
|
{
|
2011-12-14 11:35:30 +00:00
|
|
|
WARN_ON(flag == WLAN_STA_AUTH ||
|
|
|
|
flag == WLAN_STA_ASSOC ||
|
|
|
|
flag == WLAN_STA_AUTHORIZED);
|
2011-09-29 14:04:36 +00:00
|
|
|
return test_and_clear_bit(flag, &sta->_flags);
|
2008-05-02 23:02:02 +00:00
|
|
|
}
|
|
|
|
|
2011-11-04 10:18:20 +00:00
|
|
|
static inline int test_and_set_sta_flag(struct sta_info *sta,
|
|
|
|
enum ieee80211_sta_info_flags flag)
|
|
|
|
{
|
2011-12-14 11:35:30 +00:00
|
|
|
WARN_ON(flag == WLAN_STA_AUTH ||
|
|
|
|
flag == WLAN_STA_ASSOC ||
|
|
|
|
flag == WLAN_STA_AUTHORIZED);
|
2011-11-04 10:18:20 +00:00
|
|
|
return test_and_set_bit(flag, &sta->_flags);
|
|
|
|
}
|
|
|
|
|
2012-01-12 08:31:10 +00:00
|
|
|
int sta_info_move_state(struct sta_info *sta,
|
|
|
|
enum ieee80211_sta_state new_state);
|
2011-12-14 11:35:30 +00:00
|
|
|
|
2012-01-12 08:31:10 +00:00
|
|
|
static inline void sta_info_pre_move_state(struct sta_info *sta,
|
|
|
|
enum ieee80211_sta_state new_state)
|
2011-12-14 11:35:30 +00:00
|
|
|
{
|
2012-01-12 08:31:10 +00:00
|
|
|
int ret;
|
|
|
|
|
|
|
|
WARN_ON_ONCE(test_sta_flag(sta, WLAN_STA_INSERTED));
|
|
|
|
|
|
|
|
ret = sta_info_move_state(sta, new_state);
|
2011-12-14 11:35:30 +00:00
|
|
|
WARN_ON_ONCE(ret);
|
|
|
|
}
|
|
|
|
|
|
|
|
|
2011-05-13 11:35:40 +00:00
|
|
|
void ieee80211_assign_tid_tx(struct sta_info *sta, int tid,
|
|
|
|
struct tid_ampdu_tx *tid_tx);
|
2007-05-05 18:45:53 +00:00
|
|
|
|
2011-05-13 12:15:49 +00:00
|
|
|
static inline struct tid_ampdu_tx *
|
|
|
|
rcu_dereference_protected_tid_tx(struct sta_info *sta, int tid)
|
|
|
|
{
|
|
|
|
return rcu_dereference_protected(sta->ampdu_mlme.tid_tx[tid],
|
|
|
|
lockdep_is_held(&sta->lock) ||
|
|
|
|
lockdep_is_held(&sta->ampdu_mlme.mtx));
|
|
|
|
}
|
2007-05-05 18:45:53 +00:00
|
|
|
|
2011-09-29 14:04:29 +00:00
|
|
|
/* Maximum number of frames to buffer per power saving station per AC */
|
|
|
|
#define STA_MAX_TX_BUFFER 64
|
2007-05-05 18:45:53 +00:00
|
|
|
|
|
|
|
/* Minimum buffered frame expiry time. If STA uses listen interval that is
|
|
|
|
* smaller than this value, the minimum value here is used instead. */
|
|
|
|
#define STA_TX_BUFFER_EXPIRE (10 * HZ)
|
|
|
|
|
|
|
|
/* How often station data is cleaned up (e.g., expiration of buffered frames)
|
|
|
|
*/
|
|
|
|
#define STA_INFO_CLEANUP_INTERVAL (10 * HZ)
|
|
|
|
|
2008-02-25 15:27:46 +00:00
|
|
|
/*
|
2009-11-25 16:46:18 +00:00
|
|
|
* Get a STA info, must be under RCU read lock.
|
2008-02-25 15:27:46 +00:00
|
|
|
*/
|
2009-11-25 16:46:18 +00:00
|
|
|
struct sta_info *sta_info_get(struct ieee80211_sub_if_data *sdata,
|
|
|
|
const u8 *addr);
|
|
|
|
|
2010-01-08 17:10:58 +00:00
|
|
|
struct sta_info *sta_info_get_bss(struct ieee80211_sub_if_data *sdata,
|
|
|
|
const u8 *addr);
|
|
|
|
|
2015-02-13 20:55:15 +00:00
|
|
|
u32 sta_addr_hash(const void *key, u32 length, u32 seed);
|
|
|
|
|
|
|
|
#define _sta_bucket_idx(_tbl, _a) \
|
|
|
|
rht_bucket_index(_tbl, sta_addr_hash(_a, ETH_ALEN, (_tbl)->hash_rnd))
|
2009-11-25 16:46:18 +00:00
|
|
|
|
2015-02-13 20:55:15 +00:00
|
|
|
#define for_each_sta_info(local, tbl, _addr, _sta, _tmp) \
|
|
|
|
rht_for_each_entry_rcu(_sta, _tmp, tbl, \
|
|
|
|
_sta_bucket_idx(tbl, _addr), \
|
|
|
|
hash_node) \
|
2009-11-25 16:46:18 +00:00
|
|
|
/* compare address and run code only if it matches */ \
|
2012-05-08 18:56:53 +00:00
|
|
|
if (ether_addr_equal(_sta->sta.addr, (_addr)))
|
2009-11-25 16:46:18 +00:00
|
|
|
|
2008-02-25 15:27:46 +00:00
|
|
|
/*
|
|
|
|
* Get STA info by index, BROKEN!
|
|
|
|
*/
|
2009-11-16 11:00:37 +00:00
|
|
|
struct sta_info *sta_info_get_by_idx(struct ieee80211_sub_if_data *sdata,
|
|
|
|
int idx);
|
2008-02-25 15:27:46 +00:00
|
|
|
/*
|
2008-02-25 15:27:47 +00:00
|
|
|
* Create a new STA info, caller owns returned structure
|
|
|
|
* until sta_info_insert().
|
2008-02-25 15:27:46 +00:00
|
|
|
*/
|
2008-02-25 15:27:47 +00:00
|
|
|
struct sta_info *sta_info_alloc(struct ieee80211_sub_if_data *sdata,
|
2011-12-14 12:28:46 +00:00
|
|
|
const u8 *addr, gfp_t gfp);
|
2011-12-14 11:35:30 +00:00
|
|
|
|
|
|
|
void sta_info_free(struct ieee80211_local *local, struct sta_info *sta);
|
|
|
|
|
2008-02-25 15:27:47 +00:00
|
|
|
/*
|
|
|
|
* Insert STA info into hash table/list, returns zero or a
|
|
|
|
* -EEXIST if (if the same MAC address is already present).
|
|
|
|
*
|
2010-02-03 12:59:58 +00:00
|
|
|
* Calling the non-rcu version makes the caller relinquish,
|
|
|
|
* the _rcu version calls read_lock_rcu() and must be called
|
|
|
|
* without it held.
|
2008-02-25 15:27:47 +00:00
|
|
|
*/
|
|
|
|
int sta_info_insert(struct sta_info *sta);
|
2010-02-03 12:59:58 +00:00
|
|
|
int sta_info_insert_rcu(struct sta_info *sta) __acquires(RCU);
|
|
|
|
|
2012-01-12 08:31:10 +00:00
|
|
|
int __must_check __sta_info_destroy(struct sta_info *sta);
|
2010-02-03 12:59:58 +00:00
|
|
|
int sta_info_destroy_addr(struct ieee80211_sub_if_data *sdata,
|
|
|
|
const u8 *addr);
|
|
|
|
int sta_info_destroy_addr_bss(struct ieee80211_sub_if_data *sdata,
|
|
|
|
const u8 *addr);
|
2007-05-05 18:45:53 +00:00
|
|
|
|
2011-09-29 14:04:27 +00:00
|
|
|
void sta_info_recalc_tim(struct sta_info *sta);
|
2008-02-20 10:21:35 +00:00
|
|
|
|
2015-02-13 20:55:15 +00:00
|
|
|
int sta_info_init(struct ieee80211_local *local);
|
2008-02-25 15:27:46 +00:00
|
|
|
void sta_info_stop(struct ieee80211_local *local);
|
2012-12-13 22:49:02 +00:00
|
|
|
|
|
|
|
/**
|
|
|
|
* sta_info_flush - flush matching STA entries from the STA table
|
|
|
|
*
|
|
|
|
* Returns the number of removed STA entries.
|
|
|
|
*
|
|
|
|
* @sdata: sdata to remove all stations from
|
2013-12-04 22:18:37 +00:00
|
|
|
* @vlans: if the given interface is an AP interface, also flush VLANs
|
2012-12-13 22:49:02 +00:00
|
|
|
*/
|
2013-12-04 22:18:37 +00:00
|
|
|
int __sta_info_flush(struct ieee80211_sub_if_data *sdata, bool vlans);
|
|
|
|
|
|
|
|
static inline int sta_info_flush(struct ieee80211_sub_if_data *sdata)
|
|
|
|
{
|
|
|
|
return __sta_info_flush(sdata, false);
|
|
|
|
}
|
2012-12-13 22:49:02 +00:00
|
|
|
|
2012-03-05 23:31:48 +00:00
|
|
|
void sta_set_rate_info_tx(struct sta_info *sta,
|
|
|
|
const struct ieee80211_tx_rate *rate,
|
|
|
|
struct rate_info *rinfo);
|
2012-11-28 12:59:38 +00:00
|
|
|
void sta_set_rate_info_rx(struct sta_info *sta,
|
|
|
|
struct rate_info *rinfo);
|
2014-06-04 15:31:56 +00:00
|
|
|
void sta_set_sinfo(struct sta_info *sta, struct station_info *sinfo);
|
|
|
|
|
2008-09-10 22:01:46 +00:00
|
|
|
void ieee80211_sta_expire(struct ieee80211_sub_if_data *sdata,
|
|
|
|
unsigned long exp_time);
|
2013-10-01 13:45:43 +00:00
|
|
|
u8 sta_info_tx_streams(struct sta_info *sta);
|
2008-02-25 15:27:46 +00:00
|
|
|
|
mac80211: async station powersave handling
Some devices require that all frames to a station
are flushed when that station goes into powersave
mode before being able to send frames to that
station again when it wakes up or polls -- all in
order to avoid reordering and too many or too few
frames being sent to the station when it polls.
Normally, this is the case unless the station
goes to sleep and wakes up very quickly again.
But in that case, frames for it may be pending
on the hardware queues, and thus races could
happen in the case of multiple hardware queues
used for QoS/WMM. Normally this isn't a problem,
but with the iwlwifi mechanism we need to make
sure the race doesn't happen.
This makes mac80211 able to cope with the race
with driver help by a new WLAN_STA_PS_DRIVER
per-station flag that can be controlled by the
driver and tells mac80211 whether it can transmit
frames or not. This flag must be set according to
very specific rules outlined in the documentation
for the function that controls it.
When we buffer new frames for the station, we
normally set the TIM bit right away, but while
the driver has blocked transmission to that sta
we need to avoid that as well since we cannot
respond to the station if it wakes up due to the
TIM bit. Once the driver unblocks, we can set
the TIM bit.
Similarly, when the station just wakes up, we
need to wait until all other frames are flushed
before we can transmit frames to that station,
so the same applies here, we need to wait for
the driver to give the OK.
Signed-off-by: Johannes Berg <johannes@sipsolutions.net>
Signed-off-by: John W. Linville <linville@tuxdriver.com>
2009-11-06 10:35:50 +00:00
|
|
|
void ieee80211_sta_ps_deliver_wakeup(struct sta_info *sta);
|
|
|
|
void ieee80211_sta_ps_deliver_poll_response(struct sta_info *sta);
|
2011-09-29 14:04:33 +00:00
|
|
|
void ieee80211_sta_ps_deliver_uapsd(struct sta_info *sta);
|
mac80211: async station powersave handling
Some devices require that all frames to a station
are flushed when that station goes into powersave
mode before being able to send frames to that
station again when it wakes up or polls -- all in
order to avoid reordering and too many or too few
frames being sent to the station when it polls.
Normally, this is the case unless the station
goes to sleep and wakes up very quickly again.
But in that case, frames for it may be pending
on the hardware queues, and thus races could
happen in the case of multiple hardware queues
used for QoS/WMM. Normally this isn't a problem,
but with the iwlwifi mechanism we need to make
sure the race doesn't happen.
This makes mac80211 able to cope with the race
with driver help by a new WLAN_STA_PS_DRIVER
per-station flag that can be controlled by the
driver and tells mac80211 whether it can transmit
frames or not. This flag must be set according to
very specific rules outlined in the documentation
for the function that controls it.
When we buffer new frames for the station, we
normally set the TIM bit right away, but while
the driver has blocked transmission to that sta
we need to avoid that as well since we cannot
respond to the station if it wakes up due to the
TIM bit. Once the driver unblocks, we can set
the TIM bit.
Similarly, when the station just wakes up, we
need to wait until all other frames are flushed
before we can transmit frames to that station,
so the same applies here, we need to wait for
the driver to give the OK.
Signed-off-by: Johannes Berg <johannes@sipsolutions.net>
Signed-off-by: John W. Linville <linville@tuxdriver.com>
2009-11-06 10:35:50 +00:00
|
|
|
|
2007-05-05 18:45:53 +00:00
|
|
|
#endif /* STA_INFO_H */
|