xref: /qemu/hw/scsi/esp.c (revision e3d0814368d00e7985c31edf5d0cfce45972d4be)
16f7e9aecSbellard /*
267e999beSbellard  * QEMU ESP/NCR53C9x emulation
36f7e9aecSbellard  *
44e9aec74Spbrook  * Copyright (c) 2005-2006 Fabrice Bellard
5fabaaf1dSHervé Poussineau  * Copyright (c) 2012 Herve Poussineau
678d68f31SMark Cave-Ayland  * Copyright (c) 2023 Mark Cave-Ayland
76f7e9aecSbellard  *
86f7e9aecSbellard  * Permission is hereby granted, free of charge, to any person obtaining a copy
96f7e9aecSbellard  * of this software and associated documentation files (the "Software"), to deal
106f7e9aecSbellard  * in the Software without restriction, including without limitation the rights
116f7e9aecSbellard  * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
126f7e9aecSbellard  * copies of the Software, and to permit persons to whom the Software is
136f7e9aecSbellard  * furnished to do so, subject to the following conditions:
146f7e9aecSbellard  *
156f7e9aecSbellard  * The above copyright notice and this permission notice shall be included in
166f7e9aecSbellard  * all copies or substantial portions of the Software.
176f7e9aecSbellard  *
186f7e9aecSbellard  * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
196f7e9aecSbellard  * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
206f7e9aecSbellard  * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL
216f7e9aecSbellard  * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
226f7e9aecSbellard  * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
236f7e9aecSbellard  * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
246f7e9aecSbellard  * THE SOFTWARE.
256f7e9aecSbellard  */
265d20fa6bSblueswir1 
27a4ab4792SPeter Maydell #include "qemu/osdep.h"
2883c9f4caSPaolo Bonzini #include "hw/sysbus.h"
29d6454270SMarkus Armbruster #include "migration/vmstate.h"
3064552b6bSMarkus Armbruster #include "hw/irq.h"
310d09e41aSPaolo Bonzini #include "hw/scsi/esp.h"
32bf4b9889SBlue Swirl #include "trace.h"
331de7afc9SPaolo Bonzini #include "qemu/log.h"
340b8fa32fSMarkus Armbruster #include "qemu/module.h"
356f7e9aecSbellard 
3667e999beSbellard /*
375ad6bb97Sblueswir1  * On Sparc32, this is the ESP (NCR53C90) part of chip STP2000 (Master I/O),
385ad6bb97Sblueswir1  * also produced as NCR89C100. See
3967e999beSbellard  * http://www.ibiblio.org/pub/historic-linux/early-ports/Sparc/NCR/NCR89C100.txt
4067e999beSbellard  * and
4167e999beSbellard  * http://www.ibiblio.org/pub/historic-linux/early-ports/Sparc/NCR/NCR53C9X.txt
4274d71ea1SLaurent Vivier  *
4374d71ea1SLaurent Vivier  * On Macintosh Quadra it is a NCR53C96.
4467e999beSbellard  */
4567e999beSbellard 
46c73f96fdSblueswir1 static void esp_raise_irq(ESPState *s)
47c73f96fdSblueswir1 {
48c73f96fdSblueswir1     if (!(s->rregs[ESP_RSTAT] & STAT_INT)) {
49c73f96fdSblueswir1         s->rregs[ESP_RSTAT] |= STAT_INT;
50c73f96fdSblueswir1         qemu_irq_raise(s->irq);
51bf4b9889SBlue Swirl         trace_esp_raise_irq();
52c73f96fdSblueswir1     }
53c73f96fdSblueswir1 }
54c73f96fdSblueswir1 
55c73f96fdSblueswir1 static void esp_lower_irq(ESPState *s)
56c73f96fdSblueswir1 {
57c73f96fdSblueswir1     if (s->rregs[ESP_RSTAT] & STAT_INT) {
58c73f96fdSblueswir1         s->rregs[ESP_RSTAT] &= ~STAT_INT;
59c73f96fdSblueswir1         qemu_irq_lower(s->irq);
60bf4b9889SBlue Swirl         trace_esp_lower_irq();
61c73f96fdSblueswir1     }
62c73f96fdSblueswir1 }
63c73f96fdSblueswir1 
6474d71ea1SLaurent Vivier static void esp_raise_drq(ESPState *s)
6574d71ea1SLaurent Vivier {
66442de89aSMark Cave-Ayland     if (!(s->drq_state)) {
676dec7c0dSMark Cave-Ayland         qemu_irq_raise(s->drq_irq);
68960ebfd9SMark Cave-Ayland         trace_esp_raise_drq();
69442de89aSMark Cave-Ayland         s->drq_state = true;
70442de89aSMark Cave-Ayland     }
7174d71ea1SLaurent Vivier }
7274d71ea1SLaurent Vivier 
7374d71ea1SLaurent Vivier static void esp_lower_drq(ESPState *s)
7474d71ea1SLaurent Vivier {
75442de89aSMark Cave-Ayland     if (s->drq_state) {
766dec7c0dSMark Cave-Ayland         qemu_irq_lower(s->drq_irq);
77960ebfd9SMark Cave-Ayland         trace_esp_lower_drq();
78442de89aSMark Cave-Ayland         s->drq_state = false;
79442de89aSMark Cave-Ayland     }
8074d71ea1SLaurent Vivier }
8174d71ea1SLaurent Vivier 
822c1017bfSMark Cave-Ayland static const char *esp_phase_names[8] = {
832c1017bfSMark Cave-Ayland     "DATA OUT", "DATA IN", "COMMAND", "STATUS",
842c1017bfSMark Cave-Ayland     "(reserved)", "(reserved)", "MESSAGE OUT", "MESSAGE IN"
852c1017bfSMark Cave-Ayland };
862c1017bfSMark Cave-Ayland 
872c1017bfSMark Cave-Ayland static void esp_set_phase(ESPState *s, uint8_t phase)
882c1017bfSMark Cave-Ayland {
892c1017bfSMark Cave-Ayland     s->rregs[ESP_RSTAT] &= ~7;
902c1017bfSMark Cave-Ayland     s->rregs[ESP_RSTAT] |= phase;
912c1017bfSMark Cave-Ayland 
922c1017bfSMark Cave-Ayland     trace_esp_set_phase(esp_phase_names[phase]);
932c1017bfSMark Cave-Ayland }
942c1017bfSMark Cave-Ayland 
952c1017bfSMark Cave-Ayland static uint8_t esp_get_phase(ESPState *s)
962c1017bfSMark Cave-Ayland {
972c1017bfSMark Cave-Ayland     return s->rregs[ESP_RSTAT] & 7;
982c1017bfSMark Cave-Ayland }
992c1017bfSMark Cave-Ayland 
1009c7e23fcSHervé Poussineau void esp_dma_enable(ESPState *s, int irq, int level)
10173d74342SBlue Swirl {
10273d74342SBlue Swirl     if (level) {
10373d74342SBlue Swirl         s->dma_enabled = 1;
104bf4b9889SBlue Swirl         trace_esp_dma_enable();
10573d74342SBlue Swirl         if (s->dma_cb) {
10673d74342SBlue Swirl             s->dma_cb(s);
10773d74342SBlue Swirl             s->dma_cb = NULL;
10873d74342SBlue Swirl         }
10973d74342SBlue Swirl     } else {
110bf4b9889SBlue Swirl         trace_esp_dma_disable();
11173d74342SBlue Swirl         s->dma_enabled = 0;
11273d74342SBlue Swirl     }
11373d74342SBlue Swirl }
11473d74342SBlue Swirl 
1159c7e23fcSHervé Poussineau void esp_request_cancelled(SCSIRequest *req)
11694d3f98aSPaolo Bonzini {
117e6810db8SHervé Poussineau     ESPState *s = req->hba_private;
11894d3f98aSPaolo Bonzini 
11994d3f98aSPaolo Bonzini     if (req == s->current_req) {
12094d3f98aSPaolo Bonzini         scsi_req_unref(s->current_req);
12194d3f98aSPaolo Bonzini         s->current_req = NULL;
12294d3f98aSPaolo Bonzini         s->current_dev = NULL;
123324c8809SMark Cave-Ayland         s->async_len = 0;
12494d3f98aSPaolo Bonzini     }
12594d3f98aSPaolo Bonzini }
12694d3f98aSPaolo Bonzini 
127743d8736SMark Cave-Ayland static void esp_update_drq(ESPState *s)
128743d8736SMark Cave-Ayland {
129743d8736SMark Cave-Ayland     bool to_device;
130743d8736SMark Cave-Ayland 
131743d8736SMark Cave-Ayland     switch (esp_get_phase(s)) {
132743d8736SMark Cave-Ayland     case STAT_MO:
133743d8736SMark Cave-Ayland     case STAT_CD:
134743d8736SMark Cave-Ayland     case STAT_DO:
135743d8736SMark Cave-Ayland         to_device = true;
136743d8736SMark Cave-Ayland         break;
137743d8736SMark Cave-Ayland 
138743d8736SMark Cave-Ayland     case STAT_DI:
139743d8736SMark Cave-Ayland     case STAT_ST:
140743d8736SMark Cave-Ayland     case STAT_MI:
141743d8736SMark Cave-Ayland         to_device = false;
142743d8736SMark Cave-Ayland         break;
143743d8736SMark Cave-Ayland 
144743d8736SMark Cave-Ayland     default:
145743d8736SMark Cave-Ayland         return;
146743d8736SMark Cave-Ayland     }
147743d8736SMark Cave-Ayland 
148743d8736SMark Cave-Ayland     if (s->dma) {
149743d8736SMark Cave-Ayland         /* DMA request so update DRQ according to transfer direction */
150743d8736SMark Cave-Ayland         if (to_device) {
151743d8736SMark Cave-Ayland             if (fifo8_num_free(&s->fifo) < 2) {
152743d8736SMark Cave-Ayland                 esp_lower_drq(s);
153743d8736SMark Cave-Ayland             } else {
154743d8736SMark Cave-Ayland                 esp_raise_drq(s);
155743d8736SMark Cave-Ayland             }
156743d8736SMark Cave-Ayland         } else {
157743d8736SMark Cave-Ayland             if (fifo8_num_used(&s->fifo) < 2) {
158743d8736SMark Cave-Ayland                 esp_lower_drq(s);
159743d8736SMark Cave-Ayland             } else {
160743d8736SMark Cave-Ayland                 esp_raise_drq(s);
161743d8736SMark Cave-Ayland             }
162743d8736SMark Cave-Ayland         }
163743d8736SMark Cave-Ayland     } else {
164743d8736SMark Cave-Ayland         /* Not a DMA request */
165743d8736SMark Cave-Ayland         esp_lower_drq(s);
166743d8736SMark Cave-Ayland     }
167743d8736SMark Cave-Ayland }
168743d8736SMark Cave-Ayland 
1690e7dbe29SMark Cave-Ayland static void esp_fifo_push(ESPState *s, uint8_t val)
170042879fcSMark Cave-Ayland {
1710e7dbe29SMark Cave-Ayland     if (fifo8_num_used(&s->fifo) == s->fifo.capacity) {
172042879fcSMark Cave-Ayland         trace_esp_error_fifo_overrun();
173ffa3a5f2SMark Cave-Ayland     } else {
174ffa3a5f2SMark Cave-Ayland         fifo8_push(&s->fifo, val);
175042879fcSMark Cave-Ayland     }
176042879fcSMark Cave-Ayland 
177ffa3a5f2SMark Cave-Ayland     esp_update_drq(s);
178042879fcSMark Cave-Ayland }
179c5fef911SMark Cave-Ayland 
180266170f9SMark Cave-Ayland static void esp_fifo_push_buf(ESPState *s, uint8_t *buf, int len)
181266170f9SMark Cave-Ayland {
182266170f9SMark Cave-Ayland     fifo8_push_all(&s->fifo, buf, len);
183743d8736SMark Cave-Ayland     esp_update_drq(s);
184266170f9SMark Cave-Ayland }
185266170f9SMark Cave-Ayland 
18661fa150dSMark Cave-Ayland static uint8_t esp_fifo_pop(ESPState *s)
187042879fcSMark Cave-Ayland {
188ffa3a5f2SMark Cave-Ayland     uint8_t val;
189ffa3a5f2SMark Cave-Ayland 
19061fa150dSMark Cave-Ayland     if (fifo8_is_empty(&s->fifo)) {
191ffa3a5f2SMark Cave-Ayland         val = 0;
192ffa3a5f2SMark Cave-Ayland     } else {
193ffa3a5f2SMark Cave-Ayland         val = fifo8_pop(&s->fifo);
194042879fcSMark Cave-Ayland     }
195042879fcSMark Cave-Ayland 
196ffa3a5f2SMark Cave-Ayland     esp_update_drq(s);
197ffa3a5f2SMark Cave-Ayland     return val;
198023666daSMark Cave-Ayland }
199023666daSMark Cave-Ayland 
200da838126SMark Cave-Ayland static uint32_t esp_fifo_pop_buf(ESPState *s, uint8_t *dest, int maxlen)
201d103d0dbSMark Cave-Ayland {
20223ad5711SPhilippe Mathieu-Daudé     uint32_t len = fifo8_pop_buf(&s->fifo, dest, maxlen);
203743d8736SMark Cave-Ayland 
204743d8736SMark Cave-Ayland     esp_update_drq(s);
205743d8736SMark Cave-Ayland     return len;
206d103d0dbSMark Cave-Ayland }
207d103d0dbSMark Cave-Ayland 
208c47b5835SMark Cave-Ayland static uint32_t esp_get_tc(ESPState *s)
209c47b5835SMark Cave-Ayland {
210c47b5835SMark Cave-Ayland     uint32_t dmalen;
211c47b5835SMark Cave-Ayland 
212c47b5835SMark Cave-Ayland     dmalen = s->rregs[ESP_TCLO];
213c47b5835SMark Cave-Ayland     dmalen |= s->rregs[ESP_TCMID] << 8;
214c47b5835SMark Cave-Ayland     dmalen |= s->rregs[ESP_TCHI] << 16;
215c47b5835SMark Cave-Ayland 
216c47b5835SMark Cave-Ayland     return dmalen;
217c47b5835SMark Cave-Ayland }
218c47b5835SMark Cave-Ayland 
219c47b5835SMark Cave-Ayland static void esp_set_tc(ESPState *s, uint32_t dmalen)
220c47b5835SMark Cave-Ayland {
221c5d7df28SMark Cave-Ayland     uint32_t old_tc = esp_get_tc(s);
222c5d7df28SMark Cave-Ayland 
223c47b5835SMark Cave-Ayland     s->rregs[ESP_TCLO] = dmalen;
224c47b5835SMark Cave-Ayland     s->rregs[ESP_TCMID] = dmalen >> 8;
225c47b5835SMark Cave-Ayland     s->rregs[ESP_TCHI] = dmalen >> 16;
226c5d7df28SMark Cave-Ayland 
227c5d7df28SMark Cave-Ayland     if (old_tc && dmalen == 0) {
228c5d7df28SMark Cave-Ayland         s->rregs[ESP_RSTAT] |= STAT_TC;
229c5d7df28SMark Cave-Ayland     }
230c47b5835SMark Cave-Ayland }
231c47b5835SMark Cave-Ayland 
232c04ed569SMark Cave-Ayland static uint32_t esp_get_stc(ESPState *s)
233c04ed569SMark Cave-Ayland {
234c04ed569SMark Cave-Ayland     uint32_t dmalen;
235c04ed569SMark Cave-Ayland 
236c04ed569SMark Cave-Ayland     dmalen = s->wregs[ESP_TCLO];
237c04ed569SMark Cave-Ayland     dmalen |= s->wregs[ESP_TCMID] << 8;
238c04ed569SMark Cave-Ayland     dmalen |= s->wregs[ESP_TCHI] << 16;
239c04ed569SMark Cave-Ayland 
240c04ed569SMark Cave-Ayland     return dmalen;
241c04ed569SMark Cave-Ayland }
242c04ed569SMark Cave-Ayland 
243761bef75SMark Cave-Ayland static uint8_t esp_pdma_read(ESPState *s)
244761bef75SMark Cave-Ayland {
2458da90e81SMark Cave-Ayland     uint8_t val;
2468da90e81SMark Cave-Ayland 
24761fa150dSMark Cave-Ayland     val = esp_fifo_pop(s);
2488da90e81SMark Cave-Ayland     return val;
249761bef75SMark Cave-Ayland }
250761bef75SMark Cave-Ayland 
251761bef75SMark Cave-Ayland static void esp_pdma_write(ESPState *s, uint8_t val)
252761bef75SMark Cave-Ayland {
2538da90e81SMark Cave-Ayland     uint32_t dmalen = esp_get_tc(s);
2548da90e81SMark Cave-Ayland 
2550e7dbe29SMark Cave-Ayland     esp_fifo_push(s, val);
2568da90e81SMark Cave-Ayland 
25760c57250SMark Cave-Ayland     if (dmalen && s->drq_state) {
2588da90e81SMark Cave-Ayland         dmalen--;
2598da90e81SMark Cave-Ayland         esp_set_tc(s, dmalen);
260761bef75SMark Cave-Ayland     }
26160c57250SMark Cave-Ayland }
262761bef75SMark Cave-Ayland 
263c7bce09cSMark Cave-Ayland static int esp_select(ESPState *s)
2646130b188SLaurent Vivier {
2656130b188SLaurent Vivier     int target;
2666130b188SLaurent Vivier 
2676130b188SLaurent Vivier     target = s->wregs[ESP_WBUSID] & BUSID_DID;
2686130b188SLaurent Vivier 
2696130b188SLaurent Vivier     s->ti_size = 0;
2709b2cdca2SMark Cave-Ayland     s->rregs[ESP_RSEQ] = SEQ_0;
2716130b188SLaurent Vivier 
272cf40a5e4SMark Cave-Ayland     if (s->current_req) {
273cf40a5e4SMark Cave-Ayland         /* Started a new command before the old one finished. Cancel it. */
274cf40a5e4SMark Cave-Ayland         scsi_req_cancel(s->current_req);
275cf40a5e4SMark Cave-Ayland     }
276cf40a5e4SMark Cave-Ayland 
2776130b188SLaurent Vivier     s->current_dev = scsi_device_find(&s->bus, 0, target, 0);
2786130b188SLaurent Vivier     if (!s->current_dev) {
2796130b188SLaurent Vivier         /* No such drive */
2806130b188SLaurent Vivier         s->rregs[ESP_RSTAT] = 0;
281cf1a7a9bSMark Cave-Ayland         s->rregs[ESP_RINTR] = INTR_DC;
2826130b188SLaurent Vivier         esp_raise_irq(s);
2836130b188SLaurent Vivier         return -1;
2846130b188SLaurent Vivier     }
2854e78f3bfSMark Cave-Ayland 
2864e78f3bfSMark Cave-Ayland     /*
2874e78f3bfSMark Cave-Ayland      * Note that we deliberately don't raise the IRQ here: this will be done
288c90b2792SMark Cave-Ayland      * either in esp_transfer_data() or esp_command_complete()
2894e78f3bfSMark Cave-Ayland      */
2906130b188SLaurent Vivier     return 0;
2916130b188SLaurent Vivier }
2926130b188SLaurent Vivier 
2933ee9a475SMark Cave-Ayland static void esp_do_dma(ESPState *s);
2943ee9a475SMark Cave-Ayland static void esp_do_nodma(ESPState *s);
2953ee9a475SMark Cave-Ayland 
2964eb86065SPaolo Bonzini static void do_command_phase(ESPState *s)
2979f149aa9Spbrook {
2987b320a8eSMark Cave-Ayland     uint32_t cmdlen;
2999f149aa9Spbrook     int32_t datalen;
300f48a7a6eSPaolo Bonzini     SCSIDevice *current_lun;
3017b320a8eSMark Cave-Ayland     uint8_t buf[ESP_CMDFIFO_SZ];
3029f149aa9Spbrook 
3034eb86065SPaolo Bonzini     trace_esp_do_command_phase(s->lun);
304023666daSMark Cave-Ayland     cmdlen = fifo8_num_used(&s->cmdfifo);
30599545751SMark Cave-Ayland     if (!cmdlen || !s->current_dev) {
30699545751SMark Cave-Ayland         return;
30799545751SMark Cave-Ayland     }
30823ad5711SPhilippe Mathieu-Daudé     fifo8_pop_buf(&s->cmdfifo, buf, cmdlen);
309023666daSMark Cave-Ayland 
3104eb86065SPaolo Bonzini     current_lun = scsi_device_find(&s->bus, 0, s->current_dev->id, s->lun);
311b22f83d8SAlexandra Diupina     if (!current_lun) {
312b22f83d8SAlexandra Diupina         /* No such drive */
313b22f83d8SAlexandra Diupina         s->rregs[ESP_RSTAT] = 0;
314b22f83d8SAlexandra Diupina         s->rregs[ESP_RINTR] = INTR_DC;
315b22f83d8SAlexandra Diupina         s->rregs[ESP_RSEQ] = SEQ_0;
316b22f83d8SAlexandra Diupina         esp_raise_irq(s);
317b22f83d8SAlexandra Diupina         return;
318b22f83d8SAlexandra Diupina     }
319b22f83d8SAlexandra Diupina 
320fe9d8927SJohn Millikin     s->current_req = scsi_req_new(current_lun, 0, s->lun, buf, cmdlen, s);
321c39ce112SPaolo Bonzini     datalen = scsi_req_enqueue(s->current_req);
32267e999beSbellard     s->ti_size = datalen;
323023666daSMark Cave-Ayland     fifo8_reset(&s->cmdfifo);
324c90b2792SMark Cave-Ayland     s->data_ready = false;
32567e999beSbellard     if (datalen != 0) {
3264e78f3bfSMark Cave-Ayland         /*
327c90b2792SMark Cave-Ayland          * Switch to DATA phase but wait until initial data xfer is
3284e78f3bfSMark Cave-Ayland          * complete before raising the command completion interrupt
3294e78f3bfSMark Cave-Ayland          */
330c90b2792SMark Cave-Ayland         if (datalen > 0) {
331abc139cdSMark Cave-Ayland             esp_set_phase(s, STAT_DI);
3324f6200f0Sbellard         } else {
333abc139cdSMark Cave-Ayland             esp_set_phase(s, STAT_DO);
3342f275b8fSbellard         }
3354e78f3bfSMark Cave-Ayland         scsi_req_continue(s->current_req);
3364e78f3bfSMark Cave-Ayland         return;
3374e78f3bfSMark Cave-Ayland     }
3384e78f3bfSMark Cave-Ayland }
3392f275b8fSbellard 
3404eb86065SPaolo Bonzini static void do_message_phase(ESPState *s)
341f2818f22SArtyom Tarasenko {
3424eb86065SPaolo Bonzini     if (s->cmdfifo_cdb_offset) {
3431828000bSMark Cave-Ayland         uint8_t message = fifo8_is_empty(&s->cmdfifo) ? 0 :
3441828000bSMark Cave-Ayland                           fifo8_pop(&s->cmdfifo);
345023666daSMark Cave-Ayland 
3464eb86065SPaolo Bonzini         trace_esp_do_identify(message);
3474eb86065SPaolo Bonzini         s->lun = message & 7;
348023666daSMark Cave-Ayland         s->cmdfifo_cdb_offset--;
3494eb86065SPaolo Bonzini     }
350f2818f22SArtyom Tarasenko 
351799d90d8SMark Cave-Ayland     /* Ignore extended messages for now */
352023666daSMark Cave-Ayland     if (s->cmdfifo_cdb_offset) {
3534eb86065SPaolo Bonzini         int len = MIN(s->cmdfifo_cdb_offset, fifo8_num_used(&s->cmdfifo));
354e4e9db25SPhilippe Mathieu-Daudé         fifo8_drop(&s->cmdfifo, len);
355023666daSMark Cave-Ayland         s->cmdfifo_cdb_offset = 0;
356023666daSMark Cave-Ayland     }
3574eb86065SPaolo Bonzini }
358023666daSMark Cave-Ayland 
3594eb86065SPaolo Bonzini static void do_cmd(ESPState *s)
3604eb86065SPaolo Bonzini {
3614eb86065SPaolo Bonzini     do_message_phase(s);
3624eb86065SPaolo Bonzini     assert(s->cmdfifo_cdb_offset == 0);
3634eb86065SPaolo Bonzini     do_command_phase(s);
364f2818f22SArtyom Tarasenko }
365f2818f22SArtyom Tarasenko 
3669f149aa9Spbrook static void handle_satn(ESPState *s)
3679f149aa9Spbrook {
3681b26eaa1SHervé Poussineau     if (s->dma && !s->dma_enabled) {
36973d74342SBlue Swirl         s->dma_cb = handle_satn;
37073d74342SBlue Swirl         return;
37173d74342SBlue Swirl     }
372b46a43a2SMark Cave-Ayland 
3731bcaf71bSMark Cave-Ayland     if (esp_select(s) < 0) {
3741bcaf71bSMark Cave-Ayland         return;
3751bcaf71bSMark Cave-Ayland     }
3763ee9a475SMark Cave-Ayland 
3773ee9a475SMark Cave-Ayland     esp_set_phase(s, STAT_MO);
3783ee9a475SMark Cave-Ayland 
3793ee9a475SMark Cave-Ayland     if (s->dma) {
3803ee9a475SMark Cave-Ayland         esp_do_dma(s);
3813ee9a475SMark Cave-Ayland     } else {
382d39592ffSMark Cave-Ayland         esp_do_nodma(s);
3839f149aa9Spbrook     }
38494d5c79dSMark Cave-Ayland }
3859f149aa9Spbrook 
386f2818f22SArtyom Tarasenko static void handle_s_without_atn(ESPState *s)
387f2818f22SArtyom Tarasenko {
3881b26eaa1SHervé Poussineau     if (s->dma && !s->dma_enabled) {
38973d74342SBlue Swirl         s->dma_cb = handle_s_without_atn;
39073d74342SBlue Swirl         return;
39173d74342SBlue Swirl     }
392b46a43a2SMark Cave-Ayland 
3931bcaf71bSMark Cave-Ayland     if (esp_select(s) < 0) {
3941bcaf71bSMark Cave-Ayland         return;
3951bcaf71bSMark Cave-Ayland     }
3969ff0fd12SMark Cave-Ayland 
397abc139cdSMark Cave-Ayland     esp_set_phase(s, STAT_CD);
3989ff0fd12SMark Cave-Ayland     s->cmdfifo_cdb_offset = 0;
3999ff0fd12SMark Cave-Ayland 
4009ff0fd12SMark Cave-Ayland     if (s->dma) {
4019ff0fd12SMark Cave-Ayland         esp_do_dma(s);
4029ff0fd12SMark Cave-Ayland     } else {
403d39592ffSMark Cave-Ayland         esp_do_nodma(s);
404f2818f22SArtyom Tarasenko     }
405f2818f22SArtyom Tarasenko }
406f2818f22SArtyom Tarasenko 
4079f149aa9Spbrook static void handle_satn_stop(ESPState *s)
4089f149aa9Spbrook {
4091b26eaa1SHervé Poussineau     if (s->dma && !s->dma_enabled) {
41073d74342SBlue Swirl         s->dma_cb = handle_satn_stop;
41173d74342SBlue Swirl         return;
41273d74342SBlue Swirl     }
413b46a43a2SMark Cave-Ayland 
4141bcaf71bSMark Cave-Ayland     if (esp_select(s) < 0) {
4151bcaf71bSMark Cave-Ayland         return;
4161bcaf71bSMark Cave-Ayland     }
417db4d4150SMark Cave-Ayland 
418abc139cdSMark Cave-Ayland     esp_set_phase(s, STAT_MO);
4195d02add4SMark Cave-Ayland     s->cmdfifo_cdb_offset = 0;
420db4d4150SMark Cave-Ayland 
421db4d4150SMark Cave-Ayland     if (s->dma) {
422db4d4150SMark Cave-Ayland         esp_do_dma(s);
423db4d4150SMark Cave-Ayland     } else {
424d39592ffSMark Cave-Ayland         esp_do_nodma(s);
4259f149aa9Spbrook     }
4269f149aa9Spbrook }
4279f149aa9Spbrook 
428a6cad7cdSMark Cave-Ayland static void handle_pad(ESPState *s)
429a6cad7cdSMark Cave-Ayland {
430a6cad7cdSMark Cave-Ayland     if (s->dma) {
431a6cad7cdSMark Cave-Ayland         esp_do_dma(s);
432a6cad7cdSMark Cave-Ayland     } else {
433a6cad7cdSMark Cave-Ayland         esp_do_nodma(s);
434a6cad7cdSMark Cave-Ayland     }
435a6cad7cdSMark Cave-Ayland }
436a6cad7cdSMark Cave-Ayland 
4370fc5c15aSpbrook static void write_response(ESPState *s)
4382f275b8fSbellard {
439bf4b9889SBlue Swirl     trace_esp_write_response(s->status);
440042879fcSMark Cave-Ayland 
4418baa1472SMark Cave-Ayland     if (s->dma) {
4428baa1472SMark Cave-Ayland         esp_do_dma(s);
4438baa1472SMark Cave-Ayland     } else {
44483428f7aSMark Cave-Ayland         esp_do_nodma(s);
4452f275b8fSbellard     }
4468baa1472SMark Cave-Ayland }
4474f6200f0Sbellard 
4485aa0df40SMark Cave-Ayland static bool esp_cdb_ready(ESPState *s)
4495d02add4SMark Cave-Ayland {
4505aa0df40SMark Cave-Ayland     int len = fifo8_num_used(&s->cmdfifo) - s->cmdfifo_cdb_offset;
4515d02add4SMark Cave-Ayland     const uint8_t *pbuf;
4523cc70889SMark Cave-Ayland     uint32_t n;
4535aa0df40SMark Cave-Ayland     int cdblen;
4545d02add4SMark Cave-Ayland 
4555aa0df40SMark Cave-Ayland     if (len <= 0) {
4565aa0df40SMark Cave-Ayland         return false;
4575d02add4SMark Cave-Ayland     }
4585d02add4SMark Cave-Ayland 
45906a16e7bSPhilippe Mathieu-Daudé     pbuf = fifo8_peek_bufptr(&s->cmdfifo, len, &n);
4603cc70889SMark Cave-Ayland     if (n < len) {
4613cc70889SMark Cave-Ayland         /*
4623cc70889SMark Cave-Ayland          * In normal use the cmdfifo should never wrap, but include this check
4633cc70889SMark Cave-Ayland          * to prevent a malicious guest from reading past the end of the
4643cc70889SMark Cave-Ayland          * cmdfifo data buffer below
4653cc70889SMark Cave-Ayland          */
4663cc70889SMark Cave-Ayland         return false;
4673cc70889SMark Cave-Ayland     }
4683cc70889SMark Cave-Ayland 
4695aa0df40SMark Cave-Ayland     cdblen = scsi_cdb_length((uint8_t *)&pbuf[s->cmdfifo_cdb_offset]);
4705d02add4SMark Cave-Ayland 
4715aa0df40SMark Cave-Ayland     return cdblen < 0 ? false : (len >= cdblen);
4725d02add4SMark Cave-Ayland }
4735d02add4SMark Cave-Ayland 
474004826d0SMark Cave-Ayland static void esp_dma_ti_check(ESPState *s)
4754d611c9aSpbrook {
476af74b3c1SMark Cave-Ayland     if (esp_get_tc(s) == 0 && fifo8_num_used(&s->fifo) < 2) {
477cf47a41eSMark Cave-Ayland         s->rregs[ESP_RINTR] |= INTR_BS;
478c73f96fdSblueswir1         esp_raise_irq(s);
479af74b3c1SMark Cave-Ayland     }
4804d611c9aSpbrook }
481a917d384Spbrook 
482a917d384Spbrook static void esp_do_dma(ESPState *s)
483a917d384Spbrook {
484023666daSMark Cave-Ayland     uint32_t len, cmdlen;
485023666daSMark Cave-Ayland     uint8_t buf[ESP_CMDFIFO_SZ];
486a917d384Spbrook 
4876cc88d6bSMark Cave-Ayland     len = esp_get_tc(s);
488ad2725afSMark Cave-Ayland 
489ad2725afSMark Cave-Ayland     switch (esp_get_phase(s)) {
490ad2725afSMark Cave-Ayland     case STAT_MO:
49146b0c361SMark Cave-Ayland         if (s->dma_memory_read) {
49246b0c361SMark Cave-Ayland             len = MIN(len, fifo8_num_free(&s->cmdfifo));
49346b0c361SMark Cave-Ayland             s->dma_memory_read(s->dma_opaque, buf, len);
49446b0c361SMark Cave-Ayland             esp_set_tc(s, esp_get_tc(s) - len);
49546b0c361SMark Cave-Ayland         } else {
496da838126SMark Cave-Ayland             len = esp_fifo_pop_buf(s, buf, fifo8_num_used(&s->fifo));
49767ea170eSMark Cave-Ayland             len = MIN(fifo8_num_free(&s->cmdfifo), len);
49846b0c361SMark Cave-Ayland         }
49946b0c361SMark Cave-Ayland 
50067ea170eSMark Cave-Ayland         fifo8_push_all(&s->cmdfifo, buf, len);
50167ea170eSMark Cave-Ayland         s->cmdfifo_cdb_offset += len;
50246b0c361SMark Cave-Ayland 
5033ee9a475SMark Cave-Ayland         switch (s->rregs[ESP_CMD]) {
5043ee9a475SMark Cave-Ayland         case CMD_SELATN | CMD_DMA:
5053ee9a475SMark Cave-Ayland             if (fifo8_num_used(&s->cmdfifo) >= 1) {
5063ee9a475SMark Cave-Ayland                 /* First byte received, switch to command phase */
5073ee9a475SMark Cave-Ayland                 esp_set_phase(s, STAT_CD);
5089b2cdca2SMark Cave-Ayland                 s->rregs[ESP_RSEQ] = SEQ_CD;
5093ee9a475SMark Cave-Ayland                 s->cmdfifo_cdb_offset = 1;
5103ee9a475SMark Cave-Ayland 
5113ee9a475SMark Cave-Ayland                 if (fifo8_num_used(&s->cmdfifo) > 1) {
5123ee9a475SMark Cave-Ayland                     /* Process any additional command phase data */
5133ee9a475SMark Cave-Ayland                     esp_do_dma(s);
5143ee9a475SMark Cave-Ayland                 }
5153ee9a475SMark Cave-Ayland             }
5163ee9a475SMark Cave-Ayland             break;
5173ee9a475SMark Cave-Ayland 
518db4d4150SMark Cave-Ayland         case CMD_SELATNS | CMD_DMA:
519db4d4150SMark Cave-Ayland             if (fifo8_num_used(&s->cmdfifo) == 1) {
520db4d4150SMark Cave-Ayland                 /* First byte received, stop in message out phase */
5219b2cdca2SMark Cave-Ayland                 s->rregs[ESP_RSEQ] = SEQ_MO;
522db4d4150SMark Cave-Ayland                 s->cmdfifo_cdb_offset = 1;
523db4d4150SMark Cave-Ayland 
524db4d4150SMark Cave-Ayland                 /* Raise command completion interrupt */
525db4d4150SMark Cave-Ayland                 s->rregs[ESP_RINTR] |= INTR_BS | INTR_FC;
526db4d4150SMark Cave-Ayland                 esp_raise_irq(s);
527db4d4150SMark Cave-Ayland             }
528db4d4150SMark Cave-Ayland             break;
529db4d4150SMark Cave-Ayland 
5303fd325a2SMark Cave-Ayland         case CMD_TI | CMD_DMA:
53146b0c361SMark Cave-Ayland             /* ATN remains asserted until TC == 0 */
53246b0c361SMark Cave-Ayland             if (esp_get_tc(s) == 0) {
53346b0c361SMark Cave-Ayland                 esp_set_phase(s, STAT_CD);
534cb22ce50SMark Cave-Ayland                 s->rregs[ESP_CMD] = 0;
53546b0c361SMark Cave-Ayland                 s->rregs[ESP_RINTR] |= INTR_BS;
53646b0c361SMark Cave-Ayland                 esp_raise_irq(s);
53746b0c361SMark Cave-Ayland             }
53846b0c361SMark Cave-Ayland             break;
5393fd325a2SMark Cave-Ayland         }
5403fd325a2SMark Cave-Ayland         break;
54146b0c361SMark Cave-Ayland 
542ad2725afSMark Cave-Ayland     case STAT_CD:
543023666daSMark Cave-Ayland         cmdlen = fifo8_num_used(&s->cmdfifo);
544023666daSMark Cave-Ayland         trace_esp_do_dma(cmdlen, len);
54574d71ea1SLaurent Vivier         if (s->dma_memory_read) {
5460ebb5fd8SMark Cave-Ayland             len = MIN(len, fifo8_num_free(&s->cmdfifo));
547023666daSMark Cave-Ayland             s->dma_memory_read(s->dma_opaque, buf, len);
548023666daSMark Cave-Ayland             fifo8_push_all(&s->cmdfifo, buf, len);
549a0347651SMark Cave-Ayland             esp_set_tc(s, esp_get_tc(s) - len);
55074d71ea1SLaurent Vivier         } else {
551da838126SMark Cave-Ayland             len = esp_fifo_pop_buf(s, buf, fifo8_num_used(&s->fifo));
552406e8a3eSMark Cave-Ayland             len = MIN(fifo8_num_free(&s->cmdfifo), len);
553406e8a3eSMark Cave-Ayland             fifo8_push_all(&s->cmdfifo, buf, len);
5543c7f3c8bSMark Cave-Ayland         }
555023666daSMark Cave-Ayland         trace_esp_handle_ti_cmd(cmdlen);
55615407433SLaurent Vivier         s->ti_size = 0;
55746b0c361SMark Cave-Ayland         if (esp_get_tc(s) == 0) {
558799d90d8SMark Cave-Ayland             /* Command has been received */
559c959f218SMark Cave-Ayland             do_cmd(s);
560799d90d8SMark Cave-Ayland         }
561ad2725afSMark Cave-Ayland         break;
5621454dc76SMark Cave-Ayland 
5631454dc76SMark Cave-Ayland     case STAT_DO:
5640db89536SMark Cave-Ayland         if (!s->current_req) {
5650db89536SMark Cave-Ayland             return;
5660db89536SMark Cave-Ayland         }
567dfaf55a1SMark Cave-Ayland         if (s->async_len == 0 && esp_get_tc(s)) {
568a917d384Spbrook             /* Defer until data is available.  */
569a917d384Spbrook             return;
570a917d384Spbrook         }
571a917d384Spbrook         if (len > s->async_len) {
572a917d384Spbrook             len = s->async_len;
573a917d384Spbrook         }
5740d17ce82SMark Cave-Ayland 
575a6cad7cdSMark Cave-Ayland         switch (s->rregs[ESP_CMD]) {
576a6cad7cdSMark Cave-Ayland         case CMD_TI | CMD_DMA:
57774d71ea1SLaurent Vivier             if (s->dma_memory_read) {
5788b17de88Sblueswir1                 s->dma_memory_read(s->dma_opaque, s->async_buf, len);
579f3666223SMark Cave-Ayland                 esp_set_tc(s, esp_get_tc(s) - len);
5800d17ce82SMark Cave-Ayland             } else {
5810d17ce82SMark Cave-Ayland                 /* Copy FIFO data to device */
5820d17ce82SMark Cave-Ayland                 len = MIN(s->async_len, ESP_FIFO_SZ);
5830d17ce82SMark Cave-Ayland                 len = MIN(len, fifo8_num_used(&s->fifo));
584da838126SMark Cave-Ayland                 len = esp_fifo_pop_buf(s, s->async_buf, len);
5850d17ce82SMark Cave-Ayland             }
5860d17ce82SMark Cave-Ayland 
587f3666223SMark Cave-Ayland             s->async_buf += len;
588f3666223SMark Cave-Ayland             s->async_len -= len;
589f3666223SMark Cave-Ayland             s->ti_size += len;
590a6cad7cdSMark Cave-Ayland             break;
591a6cad7cdSMark Cave-Ayland 
592a6cad7cdSMark Cave-Ayland         case CMD_PAD | CMD_DMA:
593a6cad7cdSMark Cave-Ayland             /* Copy TC zero bytes into the incoming stream */
594a6cad7cdSMark Cave-Ayland             if (!s->dma_memory_read) {
595a6cad7cdSMark Cave-Ayland                 len = MIN(s->async_len, ESP_FIFO_SZ);
596a6cad7cdSMark Cave-Ayland                 len = MIN(len, fifo8_num_free(&s->fifo));
597a6cad7cdSMark Cave-Ayland             }
598a6cad7cdSMark Cave-Ayland 
599a6cad7cdSMark Cave-Ayland             memset(s->async_buf, 0, len);
600a6cad7cdSMark Cave-Ayland 
601a6cad7cdSMark Cave-Ayland             s->async_buf += len;
602a6cad7cdSMark Cave-Ayland             s->async_len -= len;
603a6cad7cdSMark Cave-Ayland             s->ti_size += len;
604a6cad7cdSMark Cave-Ayland             break;
605a6cad7cdSMark Cave-Ayland         }
606f3666223SMark Cave-Ayland 
607e4e166c8SMark Cave-Ayland         if (s->async_len == 0 && fifo8_num_used(&s->fifo) < 2) {
608e4e166c8SMark Cave-Ayland             /* Defer until the scsi layer has completed */
609f3666223SMark Cave-Ayland             scsi_req_continue(s->current_req);
610f3666223SMark Cave-Ayland             return;
611f3666223SMark Cave-Ayland         }
612f3666223SMark Cave-Ayland 
613004826d0SMark Cave-Ayland         esp_dma_ti_check(s);
6141454dc76SMark Cave-Ayland         break;
6151454dc76SMark Cave-Ayland 
6161454dc76SMark Cave-Ayland     case STAT_DI:
6171454dc76SMark Cave-Ayland         if (!s->current_req) {
6181454dc76SMark Cave-Ayland             return;
6191454dc76SMark Cave-Ayland         }
620dfaf55a1SMark Cave-Ayland         if (s->async_len == 0 && esp_get_tc(s)) {
6211454dc76SMark Cave-Ayland             /* Defer until data is available.  */
6221454dc76SMark Cave-Ayland             return;
6231454dc76SMark Cave-Ayland         }
6241454dc76SMark Cave-Ayland         if (len > s->async_len) {
6251454dc76SMark Cave-Ayland             len = s->async_len;
6261454dc76SMark Cave-Ayland         }
627c37cc88eSMark Cave-Ayland 
628a6cad7cdSMark Cave-Ayland         switch (s->rregs[ESP_CMD]) {
629a6cad7cdSMark Cave-Ayland         case CMD_TI | CMD_DMA:
63074d71ea1SLaurent Vivier             if (s->dma_memory_write) {
6318b17de88Sblueswir1                 s->dma_memory_write(s->dma_opaque, s->async_buf, len);
63274d71ea1SLaurent Vivier             } else {
63382141c8bSMark Cave-Ayland                 /* Copy device data to FIFO */
634042879fcSMark Cave-Ayland                 len = MIN(len, fifo8_num_free(&s->fifo));
635266170f9SMark Cave-Ayland                 esp_fifo_push_buf(s, s->async_buf, len);
636c37cc88eSMark Cave-Ayland             }
637c37cc88eSMark Cave-Ayland 
63882141c8bSMark Cave-Ayland             s->async_buf += len;
63982141c8bSMark Cave-Ayland             s->async_len -= len;
64082141c8bSMark Cave-Ayland             s->ti_size -= len;
64182141c8bSMark Cave-Ayland             esp_set_tc(s, esp_get_tc(s) - len);
642a6cad7cdSMark Cave-Ayland             break;
643a6cad7cdSMark Cave-Ayland 
644a6cad7cdSMark Cave-Ayland         case CMD_PAD | CMD_DMA:
645a6cad7cdSMark Cave-Ayland             /* Drop TC bytes from the incoming stream */
646a6cad7cdSMark Cave-Ayland             if (!s->dma_memory_write) {
647a6cad7cdSMark Cave-Ayland                 len = MIN(len, fifo8_num_free(&s->fifo));
648a6cad7cdSMark Cave-Ayland             }
649a6cad7cdSMark Cave-Ayland 
650a6cad7cdSMark Cave-Ayland             s->async_buf += len;
651a6cad7cdSMark Cave-Ayland             s->async_len -= len;
652a6cad7cdSMark Cave-Ayland             s->ti_size -= len;
653a6cad7cdSMark Cave-Ayland             esp_set_tc(s, esp_get_tc(s) - len);
654a6cad7cdSMark Cave-Ayland             break;
655a6cad7cdSMark Cave-Ayland         }
656e4e166c8SMark Cave-Ayland 
65702a3ce56SMark Cave-Ayland         if (s->async_len == 0 && s->ti_size == 0 && esp_get_tc(s)) {
65802a3ce56SMark Cave-Ayland             /* If the guest underflows TC then terminate SCSI request */
65902a3ce56SMark Cave-Ayland             scsi_req_continue(s->current_req);
66002a3ce56SMark Cave-Ayland             return;
66102a3ce56SMark Cave-Ayland         }
66202a3ce56SMark Cave-Ayland 
663e4e166c8SMark Cave-Ayland         if (s->async_len == 0 && fifo8_num_used(&s->fifo) < 2) {
664e4e166c8SMark Cave-Ayland             /* Defer until the scsi layer has completed */
665e4e166c8SMark Cave-Ayland             scsi_req_continue(s->current_req);
666e4e166c8SMark Cave-Ayland             return;
667e4e166c8SMark Cave-Ayland         }
668e4e166c8SMark Cave-Ayland 
669004826d0SMark Cave-Ayland         esp_dma_ti_check(s);
6701454dc76SMark Cave-Ayland         break;
6718baa1472SMark Cave-Ayland 
6728baa1472SMark Cave-Ayland     case STAT_ST:
6738baa1472SMark Cave-Ayland         switch (s->rregs[ESP_CMD]) {
6748baa1472SMark Cave-Ayland         case CMD_ICCS | CMD_DMA:
6758baa1472SMark Cave-Ayland             len = MIN(len, 1);
6768baa1472SMark Cave-Ayland 
6778baa1472SMark Cave-Ayland             if (len) {
6788baa1472SMark Cave-Ayland                 buf[0] = s->status;
6798baa1472SMark Cave-Ayland 
6808baa1472SMark Cave-Ayland                 if (s->dma_memory_write) {
6818baa1472SMark Cave-Ayland                     s->dma_memory_write(s->dma_opaque, buf, len);
6828baa1472SMark Cave-Ayland                 } else {
683266170f9SMark Cave-Ayland                     esp_fifo_push_buf(s, buf, len);
6848baa1472SMark Cave-Ayland                 }
6858baa1472SMark Cave-Ayland 
686421d1ca5SMark Cave-Ayland                 esp_set_tc(s, esp_get_tc(s) - len);
6878baa1472SMark Cave-Ayland                 esp_set_phase(s, STAT_MI);
6888baa1472SMark Cave-Ayland 
6898baa1472SMark Cave-Ayland                 if (esp_get_tc(s) > 0) {
6908baa1472SMark Cave-Ayland                     /* Process any message in phase data */
6918baa1472SMark Cave-Ayland                     esp_do_dma(s);
6928baa1472SMark Cave-Ayland                 }
6938baa1472SMark Cave-Ayland             }
6948baa1472SMark Cave-Ayland             break;
69502a3ce56SMark Cave-Ayland 
69602a3ce56SMark Cave-Ayland         default:
69702a3ce56SMark Cave-Ayland             /* Consume remaining data if the guest underflows TC */
69802a3ce56SMark Cave-Ayland             if (fifo8_num_used(&s->fifo) < 2) {
69902a3ce56SMark Cave-Ayland                 s->rregs[ESP_RINTR] |= INTR_BS;
70002a3ce56SMark Cave-Ayland                 esp_raise_irq(s);
70102a3ce56SMark Cave-Ayland             }
70202a3ce56SMark Cave-Ayland             break;
7038baa1472SMark Cave-Ayland         }
7048baa1472SMark Cave-Ayland         break;
7058baa1472SMark Cave-Ayland 
7068baa1472SMark Cave-Ayland     case STAT_MI:
7078baa1472SMark Cave-Ayland         switch (s->rregs[ESP_CMD]) {
7088baa1472SMark Cave-Ayland         case CMD_ICCS | CMD_DMA:
7098baa1472SMark Cave-Ayland             len = MIN(len, 1);
7108baa1472SMark Cave-Ayland 
7118baa1472SMark Cave-Ayland             if (len) {
7128baa1472SMark Cave-Ayland                 buf[0] = 0;
7138baa1472SMark Cave-Ayland 
7148baa1472SMark Cave-Ayland                 if (s->dma_memory_write) {
7158baa1472SMark Cave-Ayland                     s->dma_memory_write(s->dma_opaque, buf, len);
7168baa1472SMark Cave-Ayland                 } else {
717266170f9SMark Cave-Ayland                     esp_fifo_push_buf(s, buf, len);
7188baa1472SMark Cave-Ayland                 }
7198baa1472SMark Cave-Ayland 
720421d1ca5SMark Cave-Ayland                 esp_set_tc(s, esp_get_tc(s) - len);
721421d1ca5SMark Cave-Ayland 
7228baa1472SMark Cave-Ayland                 /* Raise end of command interrupt */
7230ee71db4SMark Cave-Ayland                 s->rregs[ESP_RINTR] |= INTR_FC;
7248baa1472SMark Cave-Ayland                 esp_raise_irq(s);
7258baa1472SMark Cave-Ayland             }
7268baa1472SMark Cave-Ayland             break;
7278baa1472SMark Cave-Ayland         }
7288baa1472SMark Cave-Ayland         break;
72974d71ea1SLaurent Vivier     }
730a917d384Spbrook }
731a917d384Spbrook 
732a1b8d389SMark Cave-Ayland static void esp_nodma_ti_dataout(ESPState *s)
733a1b8d389SMark Cave-Ayland {
734a1b8d389SMark Cave-Ayland     int len;
735a1b8d389SMark Cave-Ayland 
736a1b8d389SMark Cave-Ayland     if (!s->current_req) {
737a1b8d389SMark Cave-Ayland         return;
738a1b8d389SMark Cave-Ayland     }
739a1b8d389SMark Cave-Ayland     if (s->async_len == 0) {
740a1b8d389SMark Cave-Ayland         /* Defer until data is available.  */
741a1b8d389SMark Cave-Ayland         return;
742a1b8d389SMark Cave-Ayland     }
743a1b8d389SMark Cave-Ayland     len = MIN(s->async_len, ESP_FIFO_SZ);
744a1b8d389SMark Cave-Ayland     len = MIN(len, fifo8_num_used(&s->fifo));
745da838126SMark Cave-Ayland     esp_fifo_pop_buf(s, s->async_buf, len);
746a1b8d389SMark Cave-Ayland     s->async_buf += len;
747a1b8d389SMark Cave-Ayland     s->async_len -= len;
748a1b8d389SMark Cave-Ayland     s->ti_size += len;
749a1b8d389SMark Cave-Ayland 
750a1b8d389SMark Cave-Ayland     if (s->async_len == 0) {
751a1b8d389SMark Cave-Ayland         scsi_req_continue(s->current_req);
752a1b8d389SMark Cave-Ayland         return;
753a1b8d389SMark Cave-Ayland     }
754a1b8d389SMark Cave-Ayland 
755a1b8d389SMark Cave-Ayland     s->rregs[ESP_RINTR] |= INTR_BS;
756a1b8d389SMark Cave-Ayland     esp_raise_irq(s);
757a1b8d389SMark Cave-Ayland }
758a1b8d389SMark Cave-Ayland 
7591b9e48a5SMark Cave-Ayland static void esp_do_nodma(ESPState *s)
7601b9e48a5SMark Cave-Ayland {
7612572689bSMark Cave-Ayland     uint8_t buf[ESP_FIFO_SZ];
7627b320a8eSMark Cave-Ayland     uint32_t cmdlen;
7635a857339SMark Cave-Ayland     int len;
7641b9e48a5SMark Cave-Ayland 
76583e803deSMark Cave-Ayland     switch (esp_get_phase(s)) {
76683e803deSMark Cave-Ayland     case STAT_MO:
767215d2579SMark Cave-Ayland         switch (s->rregs[ESP_CMD]) {
768215d2579SMark Cave-Ayland         case CMD_SELATN:
7692572689bSMark Cave-Ayland             /* Copy FIFO into cmdfifo */
770da838126SMark Cave-Ayland             len = esp_fifo_pop_buf(s, buf, fifo8_num_used(&s->fifo));
7715a857339SMark Cave-Ayland             len = MIN(fifo8_num_free(&s->cmdfifo), len);
7725a857339SMark Cave-Ayland             fifo8_push_all(&s->cmdfifo, buf, len);
7732572689bSMark Cave-Ayland 
7745d02add4SMark Cave-Ayland             if (fifo8_num_used(&s->cmdfifo) >= 1) {
7755d02add4SMark Cave-Ayland                 /* First byte received, switch to command phase */
7765d02add4SMark Cave-Ayland                 esp_set_phase(s, STAT_CD);
7779b2cdca2SMark Cave-Ayland                 s->rregs[ESP_RSEQ] = SEQ_CD;
7785d02add4SMark Cave-Ayland                 s->cmdfifo_cdb_offset = 1;
7795d02add4SMark Cave-Ayland 
7805d02add4SMark Cave-Ayland                 if (fifo8_num_used(&s->cmdfifo) > 1) {
7815d02add4SMark Cave-Ayland                     /* Process any additional command phase data */
7825d02add4SMark Cave-Ayland                     esp_do_nodma(s);
7835d02add4SMark Cave-Ayland                 }
7845d02add4SMark Cave-Ayland             }
7855d02add4SMark Cave-Ayland             break;
7865d02add4SMark Cave-Ayland 
7875d02add4SMark Cave-Ayland         case CMD_SELATNS:
788215d2579SMark Cave-Ayland             /* Copy one byte from FIFO into cmdfifo */
7895a50644eSMark Cave-Ayland             len = esp_fifo_pop_buf(s, buf,
7905a50644eSMark Cave-Ayland                                    MIN(fifo8_num_used(&s->fifo), 1));
7915a857339SMark Cave-Ayland             len = MIN(fifo8_num_free(&s->cmdfifo), len);
7925a857339SMark Cave-Ayland             fifo8_push_all(&s->cmdfifo, buf, len);
793215d2579SMark Cave-Ayland 
794d39592ffSMark Cave-Ayland             if (fifo8_num_used(&s->cmdfifo) >= 1) {
7955d02add4SMark Cave-Ayland                 /* First byte received, stop in message out phase */
7969b2cdca2SMark Cave-Ayland                 s->rregs[ESP_RSEQ] = SEQ_MO;
7975d02add4SMark Cave-Ayland                 s->cmdfifo_cdb_offset = 1;
7985d02add4SMark Cave-Ayland 
7995d02add4SMark Cave-Ayland                 /* Raise command completion interrupt */
8005d02add4SMark Cave-Ayland                 s->rregs[ESP_RINTR] |= INTR_BS | INTR_FC;
8015d02add4SMark Cave-Ayland                 esp_raise_irq(s);
8025d02add4SMark Cave-Ayland             }
8035d02add4SMark Cave-Ayland             break;
8045d02add4SMark Cave-Ayland 
8055d02add4SMark Cave-Ayland         case CMD_TI:
806215d2579SMark Cave-Ayland             /* Copy FIFO into cmdfifo */
807da838126SMark Cave-Ayland             len = esp_fifo_pop_buf(s, buf, fifo8_num_used(&s->fifo));
8085a857339SMark Cave-Ayland             len = MIN(fifo8_num_free(&s->cmdfifo), len);
8095a857339SMark Cave-Ayland             fifo8_push_all(&s->cmdfifo, buf, len);
810215d2579SMark Cave-Ayland 
8115d02add4SMark Cave-Ayland             /* ATN remains asserted until FIFO empty */
8121b9e48a5SMark Cave-Ayland             s->cmdfifo_cdb_offset = fifo8_num_used(&s->cmdfifo);
813abc139cdSMark Cave-Ayland             esp_set_phase(s, STAT_CD);
814cb22ce50SMark Cave-Ayland             s->rregs[ESP_CMD] = 0;
8151b9e48a5SMark Cave-Ayland             s->rregs[ESP_RINTR] |= INTR_BS;
8161b9e48a5SMark Cave-Ayland             esp_raise_irq(s);
81779a6c7c6SMark Cave-Ayland             break;
8185d02add4SMark Cave-Ayland         }
8195d02add4SMark Cave-Ayland         break;
82079a6c7c6SMark Cave-Ayland 
82179a6c7c6SMark Cave-Ayland     case STAT_CD:
822acdee66dSMark Cave-Ayland         switch (s->rregs[ESP_CMD]) {
823acdee66dSMark Cave-Ayland         case CMD_TI:
82479a6c7c6SMark Cave-Ayland             /* Copy FIFO into cmdfifo */
825da838126SMark Cave-Ayland             len = esp_fifo_pop_buf(s, buf, fifo8_num_used(&s->fifo));
8265a857339SMark Cave-Ayland             len = MIN(fifo8_num_free(&s->cmdfifo), len);
8275a857339SMark Cave-Ayland             fifo8_push_all(&s->cmdfifo, buf, len);
82879a6c7c6SMark Cave-Ayland 
82979a6c7c6SMark Cave-Ayland             cmdlen = fifo8_num_used(&s->cmdfifo);
83079a6c7c6SMark Cave-Ayland             trace_esp_handle_ti_cmd(cmdlen);
83179a6c7c6SMark Cave-Ayland 
8325d02add4SMark Cave-Ayland             /* CDB may be transferred in one or more TI commands */
8335aa0df40SMark Cave-Ayland             if (esp_cdb_ready(s)) {
83479a6c7c6SMark Cave-Ayland                 /* Command has been received */
83579a6c7c6SMark Cave-Ayland                 do_cmd(s);
8365d02add4SMark Cave-Ayland             } else {
8375d02add4SMark Cave-Ayland                 /*
8385d02add4SMark Cave-Ayland                  * If data was transferred from the FIFO then raise bus
8395d02add4SMark Cave-Ayland                  * service interrupt to indicate transfer complete. Otherwise
8405d02add4SMark Cave-Ayland                  * defer until the next FIFO write.
8415d02add4SMark Cave-Ayland                  */
8425a857339SMark Cave-Ayland                 if (len) {
8435d02add4SMark Cave-Ayland                     /* Raise interrupt to indicate transfer complete */
8445d02add4SMark Cave-Ayland                     s->rregs[ESP_RINTR] |= INTR_BS;
8455d02add4SMark Cave-Ayland                     esp_raise_irq(s);
8465d02add4SMark Cave-Ayland                 }
8475d02add4SMark Cave-Ayland             }
8485d02add4SMark Cave-Ayland             break;
8495d02add4SMark Cave-Ayland 
8508ba32048SMark Cave-Ayland         case CMD_SEL | CMD_DMA:
8518ba32048SMark Cave-Ayland         case CMD_SELATN | CMD_DMA:
852acdee66dSMark Cave-Ayland             /* Copy FIFO into cmdfifo */
853da838126SMark Cave-Ayland             len = esp_fifo_pop_buf(s, buf, fifo8_num_used(&s->fifo));
8545a857339SMark Cave-Ayland             len = MIN(fifo8_num_free(&s->cmdfifo), len);
8555a857339SMark Cave-Ayland             fifo8_push_all(&s->cmdfifo, buf, len);
856acdee66dSMark Cave-Ayland 
8578ba32048SMark Cave-Ayland             /* Handle when DMA transfer is terminated by non-DMA FIFO write */
8585aa0df40SMark Cave-Ayland             if (esp_cdb_ready(s)) {
8598ba32048SMark Cave-Ayland                 /* Command has been received */
8608ba32048SMark Cave-Ayland                 do_cmd(s);
8618ba32048SMark Cave-Ayland             }
8628ba32048SMark Cave-Ayland             break;
8638ba32048SMark Cave-Ayland 
8645d02add4SMark Cave-Ayland         case CMD_SEL:
8655d02add4SMark Cave-Ayland         case CMD_SELATN:
866acdee66dSMark Cave-Ayland             /* FIFO already contain entire CDB: copy to cmdfifo and execute */
867da838126SMark Cave-Ayland             len = esp_fifo_pop_buf(s, buf, fifo8_num_used(&s->fifo));
8685a857339SMark Cave-Ayland             len = MIN(fifo8_num_free(&s->cmdfifo), len);
8695a857339SMark Cave-Ayland             fifo8_push_all(&s->cmdfifo, buf, len);
870acdee66dSMark Cave-Ayland 
8715d02add4SMark Cave-Ayland             do_cmd(s);
8725d02add4SMark Cave-Ayland             break;
8735d02add4SMark Cave-Ayland         }
87483e803deSMark Cave-Ayland         break;
8751b9e48a5SMark Cave-Ayland 
8769d1aa52bSMark Cave-Ayland     case STAT_DO:
8775d02add4SMark Cave-Ayland         /* Accumulate data in FIFO until non-DMA TI is executed */
8789d1aa52bSMark Cave-Ayland         break;
8799d1aa52bSMark Cave-Ayland 
8809d1aa52bSMark Cave-Ayland     case STAT_DI:
8819d1aa52bSMark Cave-Ayland         if (!s->current_req) {
8829d1aa52bSMark Cave-Ayland             return;
8839d1aa52bSMark Cave-Ayland         }
8849d1aa52bSMark Cave-Ayland         if (s->async_len == 0) {
8859d1aa52bSMark Cave-Ayland             /* Defer until data is available.  */
8869d1aa52bSMark Cave-Ayland             return;
8879d1aa52bSMark Cave-Ayland         }
8886ef2cabcSMark Cave-Ayland         if (fifo8_is_empty(&s->fifo)) {
8891f46d1c3SMark Cave-Ayland             esp_fifo_push(s, s->async_buf[0]);
8906ef2cabcSMark Cave-Ayland             s->async_buf++;
8916ef2cabcSMark Cave-Ayland             s->async_len--;
8926ef2cabcSMark Cave-Ayland             s->ti_size--;
8936ef2cabcSMark Cave-Ayland         }
8941b9e48a5SMark Cave-Ayland 
8951b9e48a5SMark Cave-Ayland         if (s->async_len == 0) {
8961b9e48a5SMark Cave-Ayland             scsi_req_continue(s->current_req);
8971b9e48a5SMark Cave-Ayland             return;
8981b9e48a5SMark Cave-Ayland         }
8991b9e48a5SMark Cave-Ayland 
9009655f72cSMark Cave-Ayland         /* If preloading the FIFO, defer until TI command issued */
9019655f72cSMark Cave-Ayland         if (s->rregs[ESP_CMD] != CMD_TI) {
9029655f72cSMark Cave-Ayland             return;
9039655f72cSMark Cave-Ayland         }
9049655f72cSMark Cave-Ayland 
9051b9e48a5SMark Cave-Ayland         s->rregs[ESP_RINTR] |= INTR_BS;
9061b9e48a5SMark Cave-Ayland         esp_raise_irq(s);
9079d1aa52bSMark Cave-Ayland         break;
90883428f7aSMark Cave-Ayland 
90983428f7aSMark Cave-Ayland     case STAT_ST:
91083428f7aSMark Cave-Ayland         switch (s->rregs[ESP_CMD]) {
91183428f7aSMark Cave-Ayland         case CMD_ICCS:
9121f46d1c3SMark Cave-Ayland             esp_fifo_push(s, s->status);
91383428f7aSMark Cave-Ayland             esp_set_phase(s, STAT_MI);
91483428f7aSMark Cave-Ayland 
91583428f7aSMark Cave-Ayland             /* Process any message in phase data */
91683428f7aSMark Cave-Ayland             esp_do_nodma(s);
91783428f7aSMark Cave-Ayland             break;
91883428f7aSMark Cave-Ayland         }
91983428f7aSMark Cave-Ayland         break;
92083428f7aSMark Cave-Ayland 
92183428f7aSMark Cave-Ayland     case STAT_MI:
92283428f7aSMark Cave-Ayland         switch (s->rregs[ESP_CMD]) {
92383428f7aSMark Cave-Ayland         case CMD_ICCS:
9241f46d1c3SMark Cave-Ayland             esp_fifo_push(s, 0);
92583428f7aSMark Cave-Ayland 
9260ee71db4SMark Cave-Ayland             /* Raise end of command interrupt */
9270ee71db4SMark Cave-Ayland             s->rregs[ESP_RINTR] |= INTR_FC;
92883428f7aSMark Cave-Ayland             esp_raise_irq(s);
92983428f7aSMark Cave-Ayland             break;
93083428f7aSMark Cave-Ayland         }
93183428f7aSMark Cave-Ayland         break;
9329d1aa52bSMark Cave-Ayland     }
9331b9e48a5SMark Cave-Ayland }
9341b9e48a5SMark Cave-Ayland 
9354aaa6ac3SMark Cave-Ayland void esp_command_complete(SCSIRequest *req, size_t resid)
936a917d384Spbrook {
9374aaa6ac3SMark Cave-Ayland     ESPState *s = req->hba_private;
9385a83e83eSMark Cave-Ayland     int to_device = (esp_get_phase(s) == STAT_DO);
9394aaa6ac3SMark Cave-Ayland 
940bf4b9889SBlue Swirl     trace_esp_command_complete();
9416ef2cabcSMark Cave-Ayland 
9426ef2cabcSMark Cave-Ayland     /*
9436ef2cabcSMark Cave-Ayland      * Non-DMA transfers from the target will leave the last byte in
9446ef2cabcSMark Cave-Ayland      * the FIFO so don't reset ti_size in this case
9456ef2cabcSMark Cave-Ayland      */
9466ef2cabcSMark Cave-Ayland     if (s->dma || to_device) {
947c6df7102SPaolo Bonzini         if (s->ti_size != 0) {
948bf4b9889SBlue Swirl             trace_esp_command_complete_unexpected();
949c6df7102SPaolo Bonzini         }
9506ef2cabcSMark Cave-Ayland     }
9516ef2cabcSMark Cave-Ayland 
952a917d384Spbrook     s->async_len = 0;
9534aaa6ac3SMark Cave-Ayland     if (req->status) {
954bf4b9889SBlue Swirl         trace_esp_command_complete_fail();
955c6df7102SPaolo Bonzini     }
9564aaa6ac3SMark Cave-Ayland     s->status = req->status;
9576ef2cabcSMark Cave-Ayland 
9586ef2cabcSMark Cave-Ayland     /*
959cb988199SMark Cave-Ayland      * Switch to status phase. For non-DMA transfers from the target the last
960cb988199SMark Cave-Ayland      * byte is still in the FIFO
9616ef2cabcSMark Cave-Ayland      */
9628bb22495SMark Cave-Ayland     s->ti_size = 0;
9638bb22495SMark Cave-Ayland 
9648bb22495SMark Cave-Ayland     switch (s->rregs[ESP_CMD]) {
9658bb22495SMark Cave-Ayland     case CMD_SEL | CMD_DMA:
9668bb22495SMark Cave-Ayland     case CMD_SEL:
9678bb22495SMark Cave-Ayland     case CMD_SELATN | CMD_DMA:
9688bb22495SMark Cave-Ayland     case CMD_SELATN:
969cb988199SMark Cave-Ayland         /*
9708bb22495SMark Cave-Ayland          * No data phase for sequencer command so raise deferred bus service
971c90b2792SMark Cave-Ayland          * and function complete interrupt
972cb988199SMark Cave-Ayland          */
973c90b2792SMark Cave-Ayland         s->rregs[ESP_RINTR] |= INTR_BS | INTR_FC;
9749b2cdca2SMark Cave-Ayland         s->rregs[ESP_RSEQ] = SEQ_CD;
9758bb22495SMark Cave-Ayland         break;
976cb22ce50SMark Cave-Ayland 
977cb22ce50SMark Cave-Ayland     case CMD_TI | CMD_DMA:
978cb22ce50SMark Cave-Ayland     case CMD_TI:
979cb22ce50SMark Cave-Ayland         s->rregs[ESP_CMD] = 0;
980cb22ce50SMark Cave-Ayland         break;
9816ef2cabcSMark Cave-Ayland     }
9826ef2cabcSMark Cave-Ayland 
9838bb22495SMark Cave-Ayland     /* Raise bus service interrupt to indicate change to STATUS phase */
9848bb22495SMark Cave-Ayland     esp_set_phase(s, STAT_ST);
9858bb22495SMark Cave-Ayland     s->rregs[ESP_RINTR] |= INTR_BS;
9868bb22495SMark Cave-Ayland     esp_raise_irq(s);
98702a3ce56SMark Cave-Ayland 
9885c6c0e51SHannes Reinecke     if (s->current_req) {
9895c6c0e51SHannes Reinecke         scsi_req_unref(s->current_req);
9905c6c0e51SHannes Reinecke         s->current_req = NULL;
991a917d384Spbrook         s->current_dev = NULL;
9925c6c0e51SHannes Reinecke     }
993c6df7102SPaolo Bonzini }
994c6df7102SPaolo Bonzini 
9959c7e23fcSHervé Poussineau void esp_transfer_data(SCSIRequest *req, uint32_t len)
996c6df7102SPaolo Bonzini {
997e6810db8SHervé Poussineau     ESPState *s = req->hba_private;
9986cc88d6bSMark Cave-Ayland     uint32_t dmalen = esp_get_tc(s);
999c6df7102SPaolo Bonzini 
10006cc88d6bSMark Cave-Ayland     trace_esp_transfer_data(dmalen, s->ti_size);
1001aba1f023SPaolo Bonzini     s->async_len = len;
10020c34459bSPaolo Bonzini     s->async_buf = scsi_req_get_buf(req);
10034e78f3bfSMark Cave-Ayland 
1004c90b2792SMark Cave-Ayland     if (!s->data_ready) {
1005a4608fa0SMark Cave-Ayland         s->data_ready = true;
1006a4608fa0SMark Cave-Ayland 
1007a4608fa0SMark Cave-Ayland         switch (s->rregs[ESP_CMD]) {
1008a4608fa0SMark Cave-Ayland         case CMD_SEL | CMD_DMA:
1009a4608fa0SMark Cave-Ayland         case CMD_SEL:
1010a4608fa0SMark Cave-Ayland         case CMD_SELATN | CMD_DMA:
1011a4608fa0SMark Cave-Ayland         case CMD_SELATN:
1012c90b2792SMark Cave-Ayland             /*
1013c90b2792SMark Cave-Ayland              * Initial incoming data xfer is complete for sequencer command
1014c90b2792SMark Cave-Ayland              * so raise deferred bus service and function complete interrupt
1015c90b2792SMark Cave-Ayland              */
1016c90b2792SMark Cave-Ayland              s->rregs[ESP_RINTR] |= INTR_BS | INTR_FC;
10179b2cdca2SMark Cave-Ayland              s->rregs[ESP_RSEQ] = SEQ_CD;
1018c90b2792SMark Cave-Ayland              break;
1019c90b2792SMark Cave-Ayland 
1020a4608fa0SMark Cave-Ayland         case CMD_SELATNS | CMD_DMA:
1021a4608fa0SMark Cave-Ayland         case CMD_SELATNS:
10224e78f3bfSMark Cave-Ayland             /*
10234e78f3bfSMark Cave-Ayland              * Initial incoming data xfer is complete so raise command
10244e78f3bfSMark Cave-Ayland              * completion interrupt
10254e78f3bfSMark Cave-Ayland              */
10264e78f3bfSMark Cave-Ayland              s->rregs[ESP_RINTR] |= INTR_BS;
10279b2cdca2SMark Cave-Ayland              s->rregs[ESP_RSEQ] = SEQ_MO;
1028a4608fa0SMark Cave-Ayland              break;
1029a4608fa0SMark Cave-Ayland 
1030a4608fa0SMark Cave-Ayland         case CMD_TI | CMD_DMA:
1031a4608fa0SMark Cave-Ayland         case CMD_TI:
1032a4608fa0SMark Cave-Ayland             /*
1033a4608fa0SMark Cave-Ayland              * Bus service interrupt raised because of initial change to
1034a4608fa0SMark Cave-Ayland              * DATA phase
1035a4608fa0SMark Cave-Ayland              */
1036cb22ce50SMark Cave-Ayland             s->rregs[ESP_CMD] = 0;
1037a4608fa0SMark Cave-Ayland             s->rregs[ESP_RINTR] |= INTR_BS;
1038a4608fa0SMark Cave-Ayland             break;
1039a4608fa0SMark Cave-Ayland         }
1040c90b2792SMark Cave-Ayland 
1041c90b2792SMark Cave-Ayland         esp_raise_irq(s);
10424e78f3bfSMark Cave-Ayland     }
10434e78f3bfSMark Cave-Ayland 
10441b9e48a5SMark Cave-Ayland     /*
10451b9e48a5SMark Cave-Ayland      * Always perform the initial transfer upon reception of the next TI
10461b9e48a5SMark Cave-Ayland      * command to ensure the DMA/non-DMA status of the command is correct.
10471b9e48a5SMark Cave-Ayland      * It is not possible to use s->dma directly in the section below as
10481b9e48a5SMark Cave-Ayland      * some OSs send non-DMA NOP commands after a DMA transfer. Hence if the
10491b9e48a5SMark Cave-Ayland      * async data transfer is delayed then s->dma is set incorrectly.
10501b9e48a5SMark Cave-Ayland      */
10511b9e48a5SMark Cave-Ayland 
105282003450SMark Cave-Ayland     if (s->rregs[ESP_CMD] == (CMD_TI | CMD_DMA)) {
1053a79e767aSMark Cave-Ayland         /* When the SCSI layer returns more data, raise deferred INTR_BS */
1054004826d0SMark Cave-Ayland         esp_dma_ti_check(s);
1055a79e767aSMark Cave-Ayland 
1056a79e767aSMark Cave-Ayland         esp_do_dma(s);
105782003450SMark Cave-Ayland     } else if (s->rregs[ESP_CMD] == CMD_TI) {
10581b9e48a5SMark Cave-Ayland         esp_do_nodma(s);
10591b9e48a5SMark Cave-Ayland     }
1060a917d384Spbrook }
10612e5d83bbSpbrook 
10622f275b8fSbellard static void handle_ti(ESPState *s)
10632f275b8fSbellard {
10641b9e48a5SMark Cave-Ayland     uint32_t dmalen;
10652f275b8fSbellard 
10667246e160SHervé Poussineau     if (s->dma && !s->dma_enabled) {
10677246e160SHervé Poussineau         s->dma_cb = handle_ti;
10687246e160SHervé Poussineau         return;
10697246e160SHervé Poussineau     }
10707246e160SHervé Poussineau 
10714f6200f0Sbellard     if (s->dma) {
10721b9e48a5SMark Cave-Ayland         dmalen = esp_get_tc(s);
1073b76624deSMark Cave-Ayland         trace_esp_handle_ti(dmalen);
10744d611c9aSpbrook         esp_do_dma(s);
1075799d90d8SMark Cave-Ayland     } else {
10761b9e48a5SMark Cave-Ayland         trace_esp_handle_ti(s->ti_size);
10771b9e48a5SMark Cave-Ayland         esp_do_nodma(s);
10785d02add4SMark Cave-Ayland 
10795d02add4SMark Cave-Ayland         if (esp_get_phase(s) == STAT_DO) {
10805d02add4SMark Cave-Ayland             esp_nodma_ti_dataout(s);
10815d02add4SMark Cave-Ayland         }
10824f6200f0Sbellard     }
10832f275b8fSbellard }
10842f275b8fSbellard 
10859c7e23fcSHervé Poussineau void esp_hard_reset(ESPState *s)
10866f7e9aecSbellard {
10875aca8c3bSblueswir1     memset(s->rregs, 0, ESP_REGS);
10885aca8c3bSblueswir1     memset(s->wregs, 0, ESP_REGS);
1089c9cf45c1SHannes Reinecke     s->tchi_written = 0;
10904e9aec74Spbrook     s->ti_size = 0;
10913f26c975SMark Cave-Ayland     s->async_len = 0;
1092042879fcSMark Cave-Ayland     fifo8_reset(&s->fifo);
1093023666daSMark Cave-Ayland     fifo8_reset(&s->cmdfifo);
10944e9aec74Spbrook     s->dma = 0;
109573d74342SBlue Swirl     s->dma_cb = NULL;
10968dea1dd4Sblueswir1 
10978dea1dd4Sblueswir1     s->rregs[ESP_CFG1] = 7;
10986f7e9aecSbellard }
10996f7e9aecSbellard 
1100a391fdbcSHervé Poussineau static void esp_soft_reset(ESPState *s)
110185948643SBlue Swirl {
110285948643SBlue Swirl     qemu_irq_lower(s->irq);
11036dec7c0dSMark Cave-Ayland     qemu_irq_lower(s->drq_irq);
1104a391fdbcSHervé Poussineau     esp_hard_reset(s);
110585948643SBlue Swirl }
110685948643SBlue Swirl 
1107c6e51f1bSJohn Millikin static void esp_bus_reset(ESPState *s)
1108c6e51f1bSJohn Millikin {
11094a5fc890SPeter Maydell     bus_cold_reset(BUS(&s->bus));
1110c6e51f1bSJohn Millikin }
1111c6e51f1bSJohn Millikin 
1112a391fdbcSHervé Poussineau static void parent_esp_reset(ESPState *s, int irq, int level)
11132d069babSblueswir1 {
111485948643SBlue Swirl     if (level) {
1115a391fdbcSHervé Poussineau         esp_soft_reset(s);
111685948643SBlue Swirl     }
11172d069babSblueswir1 }
11182d069babSblueswir1 
1119f21fe39dSMark Cave-Ayland static void esp_run_cmd(ESPState *s)
1120f21fe39dSMark Cave-Ayland {
1121f21fe39dSMark Cave-Ayland     uint8_t cmd = s->rregs[ESP_CMD];
1122f21fe39dSMark Cave-Ayland 
1123f21fe39dSMark Cave-Ayland     if (cmd & CMD_DMA) {
1124f21fe39dSMark Cave-Ayland         s->dma = 1;
1125f21fe39dSMark Cave-Ayland         /* Reload DMA counter.  */
1126f21fe39dSMark Cave-Ayland         if (esp_get_stc(s) == 0) {
1127f21fe39dSMark Cave-Ayland             esp_set_tc(s, 0x10000);
1128f21fe39dSMark Cave-Ayland         } else {
1129f21fe39dSMark Cave-Ayland             esp_set_tc(s, esp_get_stc(s));
1130f21fe39dSMark Cave-Ayland         }
1131f21fe39dSMark Cave-Ayland     } else {
1132f21fe39dSMark Cave-Ayland         s->dma = 0;
1133f21fe39dSMark Cave-Ayland     }
1134f21fe39dSMark Cave-Ayland     switch (cmd & CMD_CMD) {
1135f21fe39dSMark Cave-Ayland     case CMD_NOP:
1136f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_nop(cmd);
1137f21fe39dSMark Cave-Ayland         break;
1138f21fe39dSMark Cave-Ayland     case CMD_FLUSH:
1139f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_flush(cmd);
1140f21fe39dSMark Cave-Ayland         fifo8_reset(&s->fifo);
1141f21fe39dSMark Cave-Ayland         break;
1142f21fe39dSMark Cave-Ayland     case CMD_RESET:
1143f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_reset(cmd);
1144f21fe39dSMark Cave-Ayland         esp_soft_reset(s);
1145f21fe39dSMark Cave-Ayland         break;
1146f21fe39dSMark Cave-Ayland     case CMD_BUSRESET:
1147f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_bus_reset(cmd);
1148f21fe39dSMark Cave-Ayland         esp_bus_reset(s);
1149f21fe39dSMark Cave-Ayland         if (!(s->wregs[ESP_CFG1] & CFG1_RESREPT)) {
1150f21fe39dSMark Cave-Ayland             s->rregs[ESP_RINTR] |= INTR_RST;
1151f21fe39dSMark Cave-Ayland             esp_raise_irq(s);
1152f21fe39dSMark Cave-Ayland         }
1153f21fe39dSMark Cave-Ayland         break;
1154f21fe39dSMark Cave-Ayland     case CMD_TI:
1155f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_ti(cmd);
1156f21fe39dSMark Cave-Ayland         handle_ti(s);
1157f21fe39dSMark Cave-Ayland         break;
1158f21fe39dSMark Cave-Ayland     case CMD_ICCS:
1159f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_iccs(cmd);
1160f21fe39dSMark Cave-Ayland         write_response(s);
1161f21fe39dSMark Cave-Ayland         break;
1162f21fe39dSMark Cave-Ayland     case CMD_MSGACC:
1163f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_msgacc(cmd);
1164f21fe39dSMark Cave-Ayland         s->rregs[ESP_RINTR] |= INTR_DC;
1165f21fe39dSMark Cave-Ayland         s->rregs[ESP_RSEQ] = 0;
1166f21fe39dSMark Cave-Ayland         s->rregs[ESP_RFLAGS] = 0;
1167f21fe39dSMark Cave-Ayland         esp_raise_irq(s);
1168f21fe39dSMark Cave-Ayland         break;
1169f21fe39dSMark Cave-Ayland     case CMD_PAD:
1170f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_pad(cmd);
1171a6cad7cdSMark Cave-Ayland         handle_pad(s);
1172f21fe39dSMark Cave-Ayland         break;
1173f21fe39dSMark Cave-Ayland     case CMD_SATN:
1174f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_satn(cmd);
1175f21fe39dSMark Cave-Ayland         break;
1176f21fe39dSMark Cave-Ayland     case CMD_RSTATN:
1177f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_rstatn(cmd);
1178f21fe39dSMark Cave-Ayland         break;
1179f21fe39dSMark Cave-Ayland     case CMD_SEL:
1180f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_sel(cmd);
1181f21fe39dSMark Cave-Ayland         handle_s_without_atn(s);
1182f21fe39dSMark Cave-Ayland         break;
1183f21fe39dSMark Cave-Ayland     case CMD_SELATN:
1184f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_selatn(cmd);
1185f21fe39dSMark Cave-Ayland         handle_satn(s);
1186f21fe39dSMark Cave-Ayland         break;
1187f21fe39dSMark Cave-Ayland     case CMD_SELATNS:
1188f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_selatns(cmd);
1189f21fe39dSMark Cave-Ayland         handle_satn_stop(s);
1190f21fe39dSMark Cave-Ayland         break;
1191f21fe39dSMark Cave-Ayland     case CMD_ENSEL:
1192f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_ensel(cmd);
1193f21fe39dSMark Cave-Ayland         s->rregs[ESP_RINTR] = 0;
1194f21fe39dSMark Cave-Ayland         break;
1195f21fe39dSMark Cave-Ayland     case CMD_DISSEL:
1196f21fe39dSMark Cave-Ayland         trace_esp_mem_writeb_cmd_dissel(cmd);
1197f21fe39dSMark Cave-Ayland         s->rregs[ESP_RINTR] = 0;
1198f21fe39dSMark Cave-Ayland         esp_raise_irq(s);
1199f21fe39dSMark Cave-Ayland         break;
1200f21fe39dSMark Cave-Ayland     default:
1201f21fe39dSMark Cave-Ayland         trace_esp_error_unhandled_command(cmd);
1202f21fe39dSMark Cave-Ayland         break;
1203f21fe39dSMark Cave-Ayland     }
1204f21fe39dSMark Cave-Ayland }
1205f21fe39dSMark Cave-Ayland 
12069c7e23fcSHervé Poussineau uint64_t esp_reg_read(ESPState *s, uint32_t saddr)
120773d74342SBlue Swirl {
1208b630c075SMark Cave-Ayland     uint32_t val;
120973d74342SBlue Swirl 
12106f7e9aecSbellard     switch (saddr) {
12115ad6bb97Sblueswir1     case ESP_FIFO:
121261fa150dSMark Cave-Ayland         s->rregs[ESP_FIFO] = esp_fifo_pop(s);
1213b630c075SMark Cave-Ayland         val = s->rregs[ESP_FIFO];
12144f6200f0Sbellard         break;
12155ad6bb97Sblueswir1     case ESP_RINTR:
121694d5c79dSMark Cave-Ayland         /*
121794d5c79dSMark Cave-Ayland          * Clear sequence step, interrupt register and all status bits
121894d5c79dSMark Cave-Ayland          * except TC
121994d5c79dSMark Cave-Ayland          */
1220b630c075SMark Cave-Ayland         val = s->rregs[ESP_RINTR];
12212814df28SBlue Swirl         s->rregs[ESP_RINTR] = 0;
1222d294b77aSMark Cave-Ayland         esp_lower_irq(s);
1223d68212cdSMark Cave-Ayland         s->rregs[ESP_RSTAT] &= STAT_TC | 7;
1224af947a3dSMark Cave-Ayland         /*
1225af947a3dSMark Cave-Ayland          * According to the datasheet ESP_RSEQ should be cleared, but as the
1226af947a3dSMark Cave-Ayland          * emulation currently defers information transfers to the next TI
1227af947a3dSMark Cave-Ayland          * command leave it for now so that pedantic guests such as the old
1228af947a3dSMark Cave-Ayland          * Linux 2.6 driver see the correct flags before the next SCSI phase
1229af947a3dSMark Cave-Ayland          * transition.
1230af947a3dSMark Cave-Ayland          *
1231af947a3dSMark Cave-Ayland          * s->rregs[ESP_RSEQ] = SEQ_0;
1232af947a3dSMark Cave-Ayland          */
1233b630c075SMark Cave-Ayland         break;
1234c9cf45c1SHannes Reinecke     case ESP_TCHI:
1235c9cf45c1SHannes Reinecke         /* Return the unique id if the value has never been written */
1236c9cf45c1SHannes Reinecke         if (!s->tchi_written) {
1237b630c075SMark Cave-Ayland             val = s->chip_id;
1238b630c075SMark Cave-Ayland         } else {
1239b630c075SMark Cave-Ayland             val = s->rregs[saddr];
1240c9cf45c1SHannes Reinecke         }
1241b630c075SMark Cave-Ayland         break;
1242238ec4d7SMark Cave-Ayland      case ESP_RFLAGS:
1243238ec4d7SMark Cave-Ayland         /* Bottom 5 bits indicate number of bytes in FIFO */
1244238ec4d7SMark Cave-Ayland         val = fifo8_num_used(&s->fifo);
1245238ec4d7SMark Cave-Ayland         break;
12466f7e9aecSbellard     default:
1247b630c075SMark Cave-Ayland         val = s->rregs[saddr];
12486f7e9aecSbellard         break;
12496f7e9aecSbellard     }
1250b630c075SMark Cave-Ayland 
1251b630c075SMark Cave-Ayland     trace_esp_mem_readb(saddr, val);
1252b630c075SMark Cave-Ayland     return val;
12536f7e9aecSbellard }
12546f7e9aecSbellard 
12559c7e23fcSHervé Poussineau void esp_reg_write(ESPState *s, uint32_t saddr, uint64_t val)
12566f7e9aecSbellard {
1257bf4b9889SBlue Swirl     trace_esp_mem_writeb(saddr, s->wregs[saddr], val);
12586f7e9aecSbellard     switch (saddr) {
1259c9cf45c1SHannes Reinecke     case ESP_TCHI:
1260c9cf45c1SHannes Reinecke         s->tchi_written = true;
1261c9cf45c1SHannes Reinecke         /* fall through */
12625ad6bb97Sblueswir1     case ESP_TCLO:
12635ad6bb97Sblueswir1     case ESP_TCMID:
12645ad6bb97Sblueswir1         s->rregs[ESP_RSTAT] &= ~STAT_TC;
12654f6200f0Sbellard         break;
12665ad6bb97Sblueswir1     case ESP_FIFO:
12672572689bSMark Cave-Ayland         if (!fifo8_is_full(&s->fifo)) {
12680e7dbe29SMark Cave-Ayland             esp_fifo_push(s, val);
12692572689bSMark Cave-Ayland         }
12705d02add4SMark Cave-Ayland         esp_do_nodma(s);
12714f6200f0Sbellard         break;
12725ad6bb97Sblueswir1     case ESP_CMD:
12734f6200f0Sbellard         s->rregs[saddr] = val;
1274f21fe39dSMark Cave-Ayland         esp_run_cmd(s);
12756f7e9aecSbellard         break;
12765ad6bb97Sblueswir1     case ESP_WBUSID ... ESP_WSYNO:
12774f6200f0Sbellard         break;
12785ad6bb97Sblueswir1     case ESP_CFG1:
12799ea73f8bSPaolo Bonzini     case ESP_CFG2: case ESP_CFG3:
12809ea73f8bSPaolo Bonzini     case ESP_RES3: case ESP_RES4:
12814f6200f0Sbellard         s->rregs[saddr] = val;
12824f6200f0Sbellard         break;
12835ad6bb97Sblueswir1     case ESP_WCCF ... ESP_WTEST:
12844f6200f0Sbellard         break;
12856f7e9aecSbellard     default:
12863af4e9aaSHervé Poussineau         trace_esp_error_invalid_write(val, saddr);
12878dea1dd4Sblueswir1         return;
12886f7e9aecSbellard     }
12892f275b8fSbellard     s->wregs[saddr] = val;
12906f7e9aecSbellard }
12916f7e9aecSbellard 
1292a8170e5eSAvi Kivity static bool esp_mem_accepts(void *opaque, hwaddr addr,
12938372d383SPeter Maydell                             unsigned size, bool is_write,
12948372d383SPeter Maydell                             MemTxAttrs attrs)
129567bb5314SAvi Kivity {
129667bb5314SAvi Kivity     return (size == 1) || (is_write && size == 4);
129767bb5314SAvi Kivity }
12986f7e9aecSbellard 
12996cc88d6bSMark Cave-Ayland static bool esp_is_before_version_5(void *opaque, int version_id)
13006cc88d6bSMark Cave-Ayland {
13016cc88d6bSMark Cave-Ayland     ESPState *s = ESP(opaque);
13026cc88d6bSMark Cave-Ayland 
13036cc88d6bSMark Cave-Ayland     version_id = MIN(version_id, s->mig_version_id);
13046cc88d6bSMark Cave-Ayland     return version_id < 5;
13056cc88d6bSMark Cave-Ayland }
13066cc88d6bSMark Cave-Ayland 
13074e78f3bfSMark Cave-Ayland static bool esp_is_version_5(void *opaque, int version_id)
13084e78f3bfSMark Cave-Ayland {
13094e78f3bfSMark Cave-Ayland     ESPState *s = ESP(opaque);
13104e78f3bfSMark Cave-Ayland 
13114e78f3bfSMark Cave-Ayland     version_id = MIN(version_id, s->mig_version_id);
13120bcd5a18SMark Cave-Ayland     return version_id >= 5;
13134e78f3bfSMark Cave-Ayland }
13144e78f3bfSMark Cave-Ayland 
13154eb86065SPaolo Bonzini static bool esp_is_version_6(void *opaque, int version_id)
13164eb86065SPaolo Bonzini {
13174eb86065SPaolo Bonzini     ESPState *s = ESP(opaque);
13184eb86065SPaolo Bonzini 
13194eb86065SPaolo Bonzini     version_id = MIN(version_id, s->mig_version_id);
13204eb86065SPaolo Bonzini     return version_id >= 6;
13214eb86065SPaolo Bonzini }
13224eb86065SPaolo Bonzini 
132382003450SMark Cave-Ayland static bool esp_is_between_version_5_and_6(void *opaque, int version_id)
132482003450SMark Cave-Ayland {
132582003450SMark Cave-Ayland     ESPState *s = ESP(opaque);
132682003450SMark Cave-Ayland 
132782003450SMark Cave-Ayland     version_id = MIN(version_id, s->mig_version_id);
132882003450SMark Cave-Ayland     return version_id >= 5 && version_id <= 6;
132982003450SMark Cave-Ayland }
133082003450SMark Cave-Ayland 
1331ff4a1dabSMark Cave-Ayland int esp_pre_save(void *opaque)
13320bd005beSMark Cave-Ayland {
1333ff4a1dabSMark Cave-Ayland     ESPState *s = ESP(object_resolve_path_component(
1334ff4a1dabSMark Cave-Ayland                       OBJECT(opaque), "esp"));
13350bd005beSMark Cave-Ayland 
13360bd005beSMark Cave-Ayland     s->mig_version_id = vmstate_esp.version_id;
13370bd005beSMark Cave-Ayland     return 0;
13380bd005beSMark Cave-Ayland }
13390bd005beSMark Cave-Ayland 
13400bd005beSMark Cave-Ayland static int esp_post_load(void *opaque, int version_id)
13410bd005beSMark Cave-Ayland {
13420bd005beSMark Cave-Ayland     ESPState *s = ESP(opaque);
1343042879fcSMark Cave-Ayland     int len, i;
13440bd005beSMark Cave-Ayland 
13456cc88d6bSMark Cave-Ayland     version_id = MIN(version_id, s->mig_version_id);
13466cc88d6bSMark Cave-Ayland 
13476cc88d6bSMark Cave-Ayland     if (version_id < 5) {
13486cc88d6bSMark Cave-Ayland         esp_set_tc(s, s->mig_dma_left);
1349042879fcSMark Cave-Ayland 
1350042879fcSMark Cave-Ayland         /* Migrate ti_buf to fifo */
1351042879fcSMark Cave-Ayland         len = s->mig_ti_wptr - s->mig_ti_rptr;
1352042879fcSMark Cave-Ayland         for (i = 0; i < len; i++) {
1353042879fcSMark Cave-Ayland             fifo8_push(&s->fifo, s->mig_ti_buf[i]);
1354042879fcSMark Cave-Ayland         }
1355023666daSMark Cave-Ayland 
1356023666daSMark Cave-Ayland         /* Migrate cmdbuf to cmdfifo */
1357023666daSMark Cave-Ayland         for (i = 0; i < s->mig_cmdlen; i++) {
1358023666daSMark Cave-Ayland             fifo8_push(&s->cmdfifo, s->mig_cmdbuf[i]);
1359023666daSMark Cave-Ayland         }
13606cc88d6bSMark Cave-Ayland     }
13616cc88d6bSMark Cave-Ayland 
13620bd005beSMark Cave-Ayland     s->mig_version_id = vmstate_esp.version_id;
13630bd005beSMark Cave-Ayland     return 0;
13640bd005beSMark Cave-Ayland }
13650bd005beSMark Cave-Ayland 
13669c7e23fcSHervé Poussineau const VMStateDescription vmstate_esp = {
1367cc9952f3SBlue Swirl     .name = "esp",
136882003450SMark Cave-Ayland     .version_id = 7,
1369cc9952f3SBlue Swirl     .minimum_version_id = 3,
13700bd005beSMark Cave-Ayland     .post_load = esp_post_load,
13712d7b39a6SRichard Henderson     .fields = (const VMStateField[]) {
1372cc9952f3SBlue Swirl         VMSTATE_BUFFER(rregs, ESPState),
1373cc9952f3SBlue Swirl         VMSTATE_BUFFER(wregs, ESPState),
1374cc9952f3SBlue Swirl         VMSTATE_INT32(ti_size, ESPState),
1375042879fcSMark Cave-Ayland         VMSTATE_UINT32_TEST(mig_ti_rptr, ESPState, esp_is_before_version_5),
1376042879fcSMark Cave-Ayland         VMSTATE_UINT32_TEST(mig_ti_wptr, ESPState, esp_is_before_version_5),
1377042879fcSMark Cave-Ayland         VMSTATE_BUFFER_TEST(mig_ti_buf, ESPState, esp_is_before_version_5),
13783944966dSPaolo Bonzini         VMSTATE_UINT32(status, ESPState),
13794aaa6ac3SMark Cave-Ayland         VMSTATE_UINT32_TEST(mig_deferred_status, ESPState,
13804aaa6ac3SMark Cave-Ayland                             esp_is_before_version_5),
13814aaa6ac3SMark Cave-Ayland         VMSTATE_BOOL_TEST(mig_deferred_complete, ESPState,
13824aaa6ac3SMark Cave-Ayland                           esp_is_before_version_5),
1383cc9952f3SBlue Swirl         VMSTATE_UINT32(dma, ESPState),
1384023666daSMark Cave-Ayland         VMSTATE_STATIC_BUFFER(mig_cmdbuf, ESPState, 0,
1385023666daSMark Cave-Ayland                               esp_is_before_version_5, 0, 16),
1386023666daSMark Cave-Ayland         VMSTATE_STATIC_BUFFER(mig_cmdbuf, ESPState, 4,
1387023666daSMark Cave-Ayland                               esp_is_before_version_5, 16,
1388023666daSMark Cave-Ayland                               sizeof(typeof_field(ESPState, mig_cmdbuf))),
1389023666daSMark Cave-Ayland         VMSTATE_UINT32_TEST(mig_cmdlen, ESPState, esp_is_before_version_5),
1390cc9952f3SBlue Swirl         VMSTATE_UINT32(do_cmd, ESPState),
13916cc88d6bSMark Cave-Ayland         VMSTATE_UINT32_TEST(mig_dma_left, ESPState, esp_is_before_version_5),
13928dded6deSMark Cave-Ayland         VMSTATE_BOOL_TEST(data_ready, ESPState, esp_is_version_5),
1393023666daSMark Cave-Ayland         VMSTATE_UINT8_TEST(cmdfifo_cdb_offset, ESPState, esp_is_version_5),
1394042879fcSMark Cave-Ayland         VMSTATE_FIFO8_TEST(fifo, ESPState, esp_is_version_5),
1395023666daSMark Cave-Ayland         VMSTATE_FIFO8_TEST(cmdfifo, ESPState, esp_is_version_5),
139682003450SMark Cave-Ayland         VMSTATE_UINT8_TEST(mig_ti_cmd, ESPState,
139782003450SMark Cave-Ayland                            esp_is_between_version_5_and_6),
13984eb86065SPaolo Bonzini         VMSTATE_UINT8_TEST(lun, ESPState, esp_is_version_6),
1399442de89aSMark Cave-Ayland         VMSTATE_BOOL(drq_state, ESPState),
1400cc9952f3SBlue Swirl         VMSTATE_END_OF_LIST()
140174d71ea1SLaurent Vivier     },
1402cc9952f3SBlue Swirl };
14036f7e9aecSbellard 
1404a8170e5eSAvi Kivity static void sysbus_esp_mem_write(void *opaque, hwaddr addr,
1405a391fdbcSHervé Poussineau                                  uint64_t val, unsigned int size)
1406a391fdbcSHervé Poussineau {
1407a391fdbcSHervé Poussineau     SysBusESPState *sysbus = opaque;
1408eb169c76SMark Cave-Ayland     ESPState *s = ESP(&sysbus->esp);
1409a391fdbcSHervé Poussineau     uint32_t saddr;
1410a391fdbcSHervé Poussineau 
1411a391fdbcSHervé Poussineau     saddr = addr >> sysbus->it_shift;
1412eb169c76SMark Cave-Ayland     esp_reg_write(s, saddr, val);
1413a391fdbcSHervé Poussineau }
1414a391fdbcSHervé Poussineau 
1415a8170e5eSAvi Kivity static uint64_t sysbus_esp_mem_read(void *opaque, hwaddr addr,
1416a391fdbcSHervé Poussineau                                     unsigned int size)
1417a391fdbcSHervé Poussineau {
1418a391fdbcSHervé Poussineau     SysBusESPState *sysbus = opaque;
1419eb169c76SMark Cave-Ayland     ESPState *s = ESP(&sysbus->esp);
1420a391fdbcSHervé Poussineau     uint32_t saddr;
1421a391fdbcSHervé Poussineau 
1422a391fdbcSHervé Poussineau     saddr = addr >> sysbus->it_shift;
1423eb169c76SMark Cave-Ayland     return esp_reg_read(s, saddr);
1424a391fdbcSHervé Poussineau }
1425a391fdbcSHervé Poussineau 
1426a391fdbcSHervé Poussineau static const MemoryRegionOps sysbus_esp_mem_ops = {
1427a391fdbcSHervé Poussineau     .read = sysbus_esp_mem_read,
1428a391fdbcSHervé Poussineau     .write = sysbus_esp_mem_write,
1429a391fdbcSHervé Poussineau     .endianness = DEVICE_NATIVE_ENDIAN,
1430a391fdbcSHervé Poussineau     .valid.accepts = esp_mem_accepts,
1431a391fdbcSHervé Poussineau };
1432a391fdbcSHervé Poussineau 
143374d71ea1SLaurent Vivier static void sysbus_esp_pdma_write(void *opaque, hwaddr addr,
143474d71ea1SLaurent Vivier                                   uint64_t val, unsigned int size)
143574d71ea1SLaurent Vivier {
143674d71ea1SLaurent Vivier     SysBusESPState *sysbus = opaque;
1437eb169c76SMark Cave-Ayland     ESPState *s = ESP(&sysbus->esp);
143874d71ea1SLaurent Vivier 
1439960ebfd9SMark Cave-Ayland     trace_esp_pdma_write(size);
1440960ebfd9SMark Cave-Ayland 
144174d71ea1SLaurent Vivier     switch (size) {
144274d71ea1SLaurent Vivier     case 1:
1443761bef75SMark Cave-Ayland         esp_pdma_write(s, val);
144474d71ea1SLaurent Vivier         break;
144574d71ea1SLaurent Vivier     case 2:
1446761bef75SMark Cave-Ayland         esp_pdma_write(s, val >> 8);
1447761bef75SMark Cave-Ayland         esp_pdma_write(s, val);
144874d71ea1SLaurent Vivier         break;
144974d71ea1SLaurent Vivier     }
1450b46a43a2SMark Cave-Ayland     esp_do_dma(s);
145174d71ea1SLaurent Vivier }
145274d71ea1SLaurent Vivier 
145374d71ea1SLaurent Vivier static uint64_t sysbus_esp_pdma_read(void *opaque, hwaddr addr,
145474d71ea1SLaurent Vivier                                      unsigned int size)
145574d71ea1SLaurent Vivier {
145674d71ea1SLaurent Vivier     SysBusESPState *sysbus = opaque;
1457eb169c76SMark Cave-Ayland     ESPState *s = ESP(&sysbus->esp);
145874d71ea1SLaurent Vivier     uint64_t val = 0;
145974d71ea1SLaurent Vivier 
1460960ebfd9SMark Cave-Ayland     trace_esp_pdma_read(size);
1461960ebfd9SMark Cave-Ayland 
146274d71ea1SLaurent Vivier     switch (size) {
146374d71ea1SLaurent Vivier     case 1:
1464761bef75SMark Cave-Ayland         val = esp_pdma_read(s);
146574d71ea1SLaurent Vivier         break;
146674d71ea1SLaurent Vivier     case 2:
1467761bef75SMark Cave-Ayland         val = esp_pdma_read(s);
1468761bef75SMark Cave-Ayland         val = (val << 8) | esp_pdma_read(s);
146974d71ea1SLaurent Vivier         break;
147074d71ea1SLaurent Vivier     }
1471b46a43a2SMark Cave-Ayland     esp_do_dma(s);
147274d71ea1SLaurent Vivier     return val;
147374d71ea1SLaurent Vivier }
147474d71ea1SLaurent Vivier 
1475a7a22088SMark Cave-Ayland static void *esp_load_request(QEMUFile *f, SCSIRequest *req)
1476a7a22088SMark Cave-Ayland {
1477a7a22088SMark Cave-Ayland     ESPState *s = container_of(req->bus, ESPState, bus);
1478a7a22088SMark Cave-Ayland 
1479a7a22088SMark Cave-Ayland     scsi_req_ref(req);
1480a7a22088SMark Cave-Ayland     s->current_req = req;
1481a7a22088SMark Cave-Ayland     return s;
1482a7a22088SMark Cave-Ayland }
1483a7a22088SMark Cave-Ayland 
148474d71ea1SLaurent Vivier static const MemoryRegionOps sysbus_esp_pdma_ops = {
148574d71ea1SLaurent Vivier     .read = sysbus_esp_pdma_read,
148674d71ea1SLaurent Vivier     .write = sysbus_esp_pdma_write,
148774d71ea1SLaurent Vivier     .endianness = DEVICE_NATIVE_ENDIAN,
148874d71ea1SLaurent Vivier     .valid.min_access_size = 1,
1489cf1b8286SMark Cave-Ayland     .valid.max_access_size = 4,
1490cf1b8286SMark Cave-Ayland     .impl.min_access_size = 1,
1491cf1b8286SMark Cave-Ayland     .impl.max_access_size = 2,
149274d71ea1SLaurent Vivier };
149374d71ea1SLaurent Vivier 
1494afd4030cSPaolo Bonzini static const struct SCSIBusInfo esp_scsi_info = {
1495afd4030cSPaolo Bonzini     .tcq = false,
14967e0380b9SPaolo Bonzini     .max_target = ESP_MAX_DEVS,
14977e0380b9SPaolo Bonzini     .max_lun = 7,
1498afd4030cSPaolo Bonzini 
1499a7a22088SMark Cave-Ayland     .load_request = esp_load_request,
1500c6df7102SPaolo Bonzini     .transfer_data = esp_transfer_data,
150194d3f98aSPaolo Bonzini     .complete = esp_command_complete,
150294d3f98aSPaolo Bonzini     .cancel = esp_request_cancelled
1503cfdc1bb0SPaolo Bonzini };
1504cfdc1bb0SPaolo Bonzini 
1505a391fdbcSHervé Poussineau static void sysbus_esp_gpio_demux(void *opaque, int irq, int level)
1506cfb9de9cSPaul Brook {
150784fbefedSMark Cave-Ayland     SysBusESPState *sysbus = SYSBUS_ESP(opaque);
1508eb169c76SMark Cave-Ayland     ESPState *s = ESP(&sysbus->esp);
1509a391fdbcSHervé Poussineau 
1510a391fdbcSHervé Poussineau     switch (irq) {
1511a391fdbcSHervé Poussineau     case 0:
1512a391fdbcSHervé Poussineau         parent_esp_reset(s, irq, level);
1513a391fdbcSHervé Poussineau         break;
1514a391fdbcSHervé Poussineau     case 1:
1515b86dc5cbSMark Cave-Ayland         esp_dma_enable(s, irq, level);
1516a391fdbcSHervé Poussineau         break;
1517a391fdbcSHervé Poussineau     }
1518a391fdbcSHervé Poussineau }
1519a391fdbcSHervé Poussineau 
1520b09318caSHu Tao static void sysbus_esp_realize(DeviceState *dev, Error **errp)
1521a391fdbcSHervé Poussineau {
1522b09318caSHu Tao     SysBusDevice *sbd = SYS_BUS_DEVICE(dev);
152384fbefedSMark Cave-Ayland     SysBusESPState *sysbus = SYSBUS_ESP(dev);
1524eb169c76SMark Cave-Ayland     ESPState *s = ESP(&sysbus->esp);
1525eb169c76SMark Cave-Ayland 
1526eb169c76SMark Cave-Ayland     if (!qdev_realize(DEVICE(s), NULL, errp)) {
1527eb169c76SMark Cave-Ayland         return;
1528eb169c76SMark Cave-Ayland     }
15296f7e9aecSbellard 
1530b09318caSHu Tao     sysbus_init_irq(sbd, &s->irq);
15316dec7c0dSMark Cave-Ayland     sysbus_init_irq(sbd, &s->drq_irq);
1532a391fdbcSHervé Poussineau     assert(sysbus->it_shift != -1);
15336f7e9aecSbellard 
1534d32e4b3dSHervé Poussineau     s->chip_id = TCHI_FAS100A;
153529776739SPaolo Bonzini     memory_region_init_io(&sysbus->iomem, OBJECT(sysbus), &sysbus_esp_mem_ops,
153674d71ea1SLaurent Vivier                           sysbus, "esp-regs", ESP_REGS << sysbus->it_shift);
1537b09318caSHu Tao     sysbus_init_mmio(sbd, &sysbus->iomem);
153874d71ea1SLaurent Vivier     memory_region_init_io(&sysbus->pdma, OBJECT(sysbus), &sysbus_esp_pdma_ops,
1539cf1b8286SMark Cave-Ayland                           sysbus, "esp-pdma", 4);
154074d71ea1SLaurent Vivier     sysbus_init_mmio(sbd, &sysbus->pdma);
15416f7e9aecSbellard 
1542b09318caSHu Tao     qdev_init_gpio_in(dev, sysbus_esp_gpio_demux, 2);
15432d069babSblueswir1 
1544739e95f5SPeter Maydell     scsi_bus_init(&s->bus, sizeof(s->bus), dev, &esp_scsi_info);
154567e999beSbellard }
1546cfb9de9cSPaul Brook 
1547a391fdbcSHervé Poussineau static void sysbus_esp_hard_reset(DeviceState *dev)
1548a391fdbcSHervé Poussineau {
154984fbefedSMark Cave-Ayland     SysBusESPState *sysbus = SYSBUS_ESP(dev);
1550eb169c76SMark Cave-Ayland     ESPState *s = ESP(&sysbus->esp);
1551eb169c76SMark Cave-Ayland 
1552eb169c76SMark Cave-Ayland     esp_hard_reset(s);
1553eb169c76SMark Cave-Ayland }
1554eb169c76SMark Cave-Ayland 
1555eb169c76SMark Cave-Ayland static void sysbus_esp_init(Object *obj)
1556eb169c76SMark Cave-Ayland {
1557eb169c76SMark Cave-Ayland     SysBusESPState *sysbus = SYSBUS_ESP(obj);
1558eb169c76SMark Cave-Ayland 
1559eb169c76SMark Cave-Ayland     object_initialize_child(obj, "esp", &sysbus->esp, TYPE_ESP);
1560a391fdbcSHervé Poussineau }
1561a391fdbcSHervé Poussineau 
1562a391fdbcSHervé Poussineau static const VMStateDescription vmstate_sysbus_esp_scsi = {
1563a391fdbcSHervé Poussineau     .name = "sysbusespscsi",
15640bd005beSMark Cave-Ayland     .version_id = 2,
1565ea84a442SGuenter Roeck     .minimum_version_id = 1,
1566ff4a1dabSMark Cave-Ayland     .pre_save = esp_pre_save,
15672d7b39a6SRichard Henderson     .fields = (const VMStateField[]) {
15680bd005beSMark Cave-Ayland         VMSTATE_UINT8_V(esp.mig_version_id, SysBusESPState, 2),
1569a391fdbcSHervé Poussineau         VMSTATE_STRUCT(esp, SysBusESPState, 0, vmstate_esp, ESPState),
1570a391fdbcSHervé Poussineau         VMSTATE_END_OF_LIST()
1571a391fdbcSHervé Poussineau     }
1572999e12bbSAnthony Liguori };
1573999e12bbSAnthony Liguori 
1574a391fdbcSHervé Poussineau static void sysbus_esp_class_init(ObjectClass *klass, void *data)
1575999e12bbSAnthony Liguori {
157639bffca2SAnthony Liguori     DeviceClass *dc = DEVICE_CLASS(klass);
1577999e12bbSAnthony Liguori 
1578b09318caSHu Tao     dc->realize = sysbus_esp_realize;
1579*e3d08143SPeter Maydell     device_class_set_legacy_reset(dc, sysbus_esp_hard_reset);
1580a391fdbcSHervé Poussineau     dc->vmsd = &vmstate_sysbus_esp_scsi;
1581125ee0edSMarcel Apfelbaum     set_bit(DEVICE_CATEGORY_STORAGE, dc->categories);
158263235df8SBlue Swirl }
1583999e12bbSAnthony Liguori 
1584042879fcSMark Cave-Ayland static void esp_finalize(Object *obj)
1585042879fcSMark Cave-Ayland {
1586042879fcSMark Cave-Ayland     ESPState *s = ESP(obj);
1587042879fcSMark Cave-Ayland 
1588042879fcSMark Cave-Ayland     fifo8_destroy(&s->fifo);
1589023666daSMark Cave-Ayland     fifo8_destroy(&s->cmdfifo);
1590042879fcSMark Cave-Ayland }
1591042879fcSMark Cave-Ayland 
1592042879fcSMark Cave-Ayland static void esp_init(Object *obj)
1593042879fcSMark Cave-Ayland {
1594042879fcSMark Cave-Ayland     ESPState *s = ESP(obj);
1595042879fcSMark Cave-Ayland 
1596042879fcSMark Cave-Ayland     fifo8_create(&s->fifo, ESP_FIFO_SZ);
1597023666daSMark Cave-Ayland     fifo8_create(&s->cmdfifo, ESP_CMDFIFO_SZ);
1598042879fcSMark Cave-Ayland }
1599042879fcSMark Cave-Ayland 
1600eb169c76SMark Cave-Ayland static void esp_class_init(ObjectClass *klass, void *data)
1601eb169c76SMark Cave-Ayland {
1602eb169c76SMark Cave-Ayland     DeviceClass *dc = DEVICE_CLASS(klass);
1603eb169c76SMark Cave-Ayland 
1604eb169c76SMark Cave-Ayland     /* internal device for sysbusesp/pciespscsi, not user-creatable */
1605eb169c76SMark Cave-Ayland     dc->user_creatable = false;
1606eb169c76SMark Cave-Ayland     set_bit(DEVICE_CATEGORY_STORAGE, dc->categories);
1607eb169c76SMark Cave-Ayland }
1608eb169c76SMark Cave-Ayland 
1609499f4089SMark Cave-Ayland static const TypeInfo esp_info_types[] = {
1610499f4089SMark Cave-Ayland     {
1611499f4089SMark Cave-Ayland         .name          = TYPE_SYSBUS_ESP,
1612499f4089SMark Cave-Ayland         .parent        = TYPE_SYS_BUS_DEVICE,
1613499f4089SMark Cave-Ayland         .instance_init = sysbus_esp_init,
1614499f4089SMark Cave-Ayland         .instance_size = sizeof(SysBusESPState),
1615499f4089SMark Cave-Ayland         .class_init    = sysbus_esp_class_init,
1616499f4089SMark Cave-Ayland     },
1617499f4089SMark Cave-Ayland     {
1618eb169c76SMark Cave-Ayland         .name = TYPE_ESP,
1619eb169c76SMark Cave-Ayland         .parent = TYPE_DEVICE,
1620042879fcSMark Cave-Ayland         .instance_init = esp_init,
1621042879fcSMark Cave-Ayland         .instance_finalize = esp_finalize,
1622eb169c76SMark Cave-Ayland         .instance_size = sizeof(ESPState),
1623eb169c76SMark Cave-Ayland         .class_init = esp_class_init,
1624499f4089SMark Cave-Ayland     },
1625eb169c76SMark Cave-Ayland };
1626eb169c76SMark Cave-Ayland 
1627499f4089SMark Cave-Ayland DEFINE_TYPES(esp_info_types)
1628