2c6e0311357162600515b44ebec0ab12f326b140
[platform/kernel/linux-rpi.git] / drivers / nvme / host / tcp.c
1 // SPDX-License-Identifier: GPL-2.0
2 /*
3  * NVMe over Fabrics TCP host.
4  * Copyright (c) 2018 Lightbits Labs. All rights reserved.
5  */
6 #define pr_fmt(fmt) KBUILD_MODNAME ": " fmt
7 #include <linux/module.h>
8 #include <linux/init.h>
9 #include <linux/slab.h>
10 #include <linux/err.h>
11 #include <linux/nvme-tcp.h>
12 #include <net/sock.h>
13 #include <net/tcp.h>
14 #include <linux/blk-mq.h>
15 #include <crypto/hash.h>
16 #include <net/busy_poll.h>
17
18 #include "nvme.h"
19 #include "fabrics.h"
20
21 struct nvme_tcp_queue;
22
23 /* Define the socket priority to use for connections were it is desirable
24  * that the NIC consider performing optimized packet processing or filtering.
25  * A non-zero value being sufficient to indicate general consideration of any
26  * possible optimization.  Making it a module param allows for alternative
27  * values that may be unique for some NIC implementations.
28  */
29 static int so_priority;
30 module_param(so_priority, int, 0644);
31 MODULE_PARM_DESC(so_priority, "nvme tcp socket optimize priority");
32
33 #ifdef CONFIG_DEBUG_LOCK_ALLOC
34 /* lockdep can detect a circular dependency of the form
35  *   sk_lock -> mmap_lock (page fault) -> fs locks -> sk_lock
36  * because dependencies are tracked for both nvme-tcp and user contexts. Using
37  * a separate class prevents lockdep from conflating nvme-tcp socket use with
38  * user-space socket API use.
39  */
40 static struct lock_class_key nvme_tcp_sk_key[2];
41 static struct lock_class_key nvme_tcp_slock_key[2];
42
43 static void nvme_tcp_reclassify_socket(struct socket *sock)
44 {
45         struct sock *sk = sock->sk;
46
47         if (WARN_ON_ONCE(!sock_allow_reclassification(sk)))
48                 return;
49
50         switch (sk->sk_family) {
51         case AF_INET:
52                 sock_lock_init_class_and_name(sk, "slock-AF_INET-NVME",
53                                               &nvme_tcp_slock_key[0],
54                                               "sk_lock-AF_INET-NVME",
55                                               &nvme_tcp_sk_key[0]);
56                 break;
57         case AF_INET6:
58                 sock_lock_init_class_and_name(sk, "slock-AF_INET6-NVME",
59                                               &nvme_tcp_slock_key[1],
60                                               "sk_lock-AF_INET6-NVME",
61                                               &nvme_tcp_sk_key[1]);
62                 break;
63         default:
64                 WARN_ON_ONCE(1);
65         }
66 }
67 #else
68 static void nvme_tcp_reclassify_socket(struct socket *sock) { }
69 #endif
70
71 enum nvme_tcp_send_state {
72         NVME_TCP_SEND_CMD_PDU = 0,
73         NVME_TCP_SEND_H2C_PDU,
74         NVME_TCP_SEND_DATA,
75         NVME_TCP_SEND_DDGST,
76 };
77
78 struct nvme_tcp_request {
79         struct nvme_request     req;
80         void                    *pdu;
81         struct nvme_tcp_queue   *queue;
82         u32                     data_len;
83         u32                     pdu_len;
84         u32                     pdu_sent;
85         u16                     ttag;
86         __le16                  status;
87         struct list_head        entry;
88         struct llist_node       lentry;
89         __le32                  ddgst;
90
91         struct bio              *curr_bio;
92         struct iov_iter         iter;
93
94         /* send state */
95         size_t                  offset;
96         size_t                  data_sent;
97         enum nvme_tcp_send_state state;
98 };
99
100 enum nvme_tcp_queue_flags {
101         NVME_TCP_Q_ALLOCATED    = 0,
102         NVME_TCP_Q_LIVE         = 1,
103         NVME_TCP_Q_POLLING      = 2,
104 };
105
106 enum nvme_tcp_recv_state {
107         NVME_TCP_RECV_PDU = 0,
108         NVME_TCP_RECV_DATA,
109         NVME_TCP_RECV_DDGST,
110 };
111
112 struct nvme_tcp_ctrl;
113 struct nvme_tcp_queue {
114         struct socket           *sock;
115         struct work_struct      io_work;
116         int                     io_cpu;
117
118         struct mutex            queue_lock;
119         struct mutex            send_mutex;
120         struct llist_head       req_list;
121         struct list_head        send_list;
122         bool                    more_requests;
123
124         /* recv state */
125         void                    *pdu;
126         int                     pdu_remaining;
127         int                     pdu_offset;
128         size_t                  data_remaining;
129         size_t                  ddgst_remaining;
130         unsigned int            nr_cqe;
131
132         /* send state */
133         struct nvme_tcp_request *request;
134
135         int                     queue_size;
136         size_t                  cmnd_capsule_len;
137         struct nvme_tcp_ctrl    *ctrl;
138         unsigned long           flags;
139         bool                    rd_enabled;
140
141         bool                    hdr_digest;
142         bool                    data_digest;
143         struct ahash_request    *rcv_hash;
144         struct ahash_request    *snd_hash;
145         __le32                  exp_ddgst;
146         __le32                  recv_ddgst;
147
148         struct page_frag_cache  pf_cache;
149
150         void (*state_change)(struct sock *);
151         void (*data_ready)(struct sock *);
152         void (*write_space)(struct sock *);
153 };
154
155 struct nvme_tcp_ctrl {
156         /* read only in the hot path */
157         struct nvme_tcp_queue   *queues;
158         struct blk_mq_tag_set   tag_set;
159
160         /* other member variables */
161         struct list_head        list;
162         struct blk_mq_tag_set   admin_tag_set;
163         struct sockaddr_storage addr;
164         struct sockaddr_storage src_addr;
165         struct nvme_ctrl        ctrl;
166
167         struct work_struct      err_work;
168         struct delayed_work     connect_work;
169         struct nvme_tcp_request async_req;
170         u32                     io_queues[HCTX_MAX_TYPES];
171 };
172
173 static LIST_HEAD(nvme_tcp_ctrl_list);
174 static DEFINE_MUTEX(nvme_tcp_ctrl_mutex);
175 static struct workqueue_struct *nvme_tcp_wq;
176 static const struct blk_mq_ops nvme_tcp_mq_ops;
177 static const struct blk_mq_ops nvme_tcp_admin_mq_ops;
178 static int nvme_tcp_try_send(struct nvme_tcp_queue *queue);
179
180 static inline struct nvme_tcp_ctrl *to_tcp_ctrl(struct nvme_ctrl *ctrl)
181 {
182         return container_of(ctrl, struct nvme_tcp_ctrl, ctrl);
183 }
184
185 static inline int nvme_tcp_queue_id(struct nvme_tcp_queue *queue)
186 {
187         return queue - queue->ctrl->queues;
188 }
189
190 static inline struct blk_mq_tags *nvme_tcp_tagset(struct nvme_tcp_queue *queue)
191 {
192         u32 queue_idx = nvme_tcp_queue_id(queue);
193
194         if (queue_idx == 0)
195                 return queue->ctrl->admin_tag_set.tags[queue_idx];
196         return queue->ctrl->tag_set.tags[queue_idx - 1];
197 }
198
199 static inline u8 nvme_tcp_hdgst_len(struct nvme_tcp_queue *queue)
200 {
201         return queue->hdr_digest ? NVME_TCP_DIGEST_LENGTH : 0;
202 }
203
204 static inline u8 nvme_tcp_ddgst_len(struct nvme_tcp_queue *queue)
205 {
206         return queue->data_digest ? NVME_TCP_DIGEST_LENGTH : 0;
207 }
208
209 static inline size_t nvme_tcp_inline_data_size(struct nvme_tcp_queue *queue)
210 {
211         return queue->cmnd_capsule_len - sizeof(struct nvme_command);
212 }
213
214 static inline bool nvme_tcp_async_req(struct nvme_tcp_request *req)
215 {
216         return req == &req->queue->ctrl->async_req;
217 }
218
219 static inline bool nvme_tcp_has_inline_data(struct nvme_tcp_request *req)
220 {
221         struct request *rq;
222
223         if (unlikely(nvme_tcp_async_req(req)))
224                 return false; /* async events don't have a request */
225
226         rq = blk_mq_rq_from_pdu(req);
227
228         return rq_data_dir(rq) == WRITE && req->data_len &&
229                 req->data_len <= nvme_tcp_inline_data_size(req->queue);
230 }
231
232 static inline struct page *nvme_tcp_req_cur_page(struct nvme_tcp_request *req)
233 {
234         return req->iter.bvec->bv_page;
235 }
236
237 static inline size_t nvme_tcp_req_cur_offset(struct nvme_tcp_request *req)
238 {
239         return req->iter.bvec->bv_offset + req->iter.iov_offset;
240 }
241
242 static inline size_t nvme_tcp_req_cur_length(struct nvme_tcp_request *req)
243 {
244         return min_t(size_t, iov_iter_single_seg_count(&req->iter),
245                         req->pdu_len - req->pdu_sent);
246 }
247
248 static inline size_t nvme_tcp_pdu_data_left(struct nvme_tcp_request *req)
249 {
250         return rq_data_dir(blk_mq_rq_from_pdu(req)) == WRITE ?
251                         req->pdu_len - req->pdu_sent : 0;
252 }
253
254 static inline size_t nvme_tcp_pdu_last_send(struct nvme_tcp_request *req,
255                 int len)
256 {
257         return nvme_tcp_pdu_data_left(req) <= len;
258 }
259
260 static void nvme_tcp_init_iter(struct nvme_tcp_request *req,
261                 unsigned int dir)
262 {
263         struct request *rq = blk_mq_rq_from_pdu(req);
264         struct bio_vec *vec;
265         unsigned int size;
266         int nr_bvec;
267         size_t offset;
268
269         if (rq->rq_flags & RQF_SPECIAL_PAYLOAD) {
270                 vec = &rq->special_vec;
271                 nr_bvec = 1;
272                 size = blk_rq_payload_bytes(rq);
273                 offset = 0;
274         } else {
275                 struct bio *bio = req->curr_bio;
276                 struct bvec_iter bi;
277                 struct bio_vec bv;
278
279                 vec = __bvec_iter_bvec(bio->bi_io_vec, bio->bi_iter);
280                 nr_bvec = 0;
281                 bio_for_each_bvec(bv, bio, bi) {
282                         nr_bvec++;
283                 }
284                 size = bio->bi_iter.bi_size;
285                 offset = bio->bi_iter.bi_bvec_done;
286         }
287
288         iov_iter_bvec(&req->iter, dir, vec, nr_bvec, size);
289         req->iter.iov_offset = offset;
290 }
291
292 static inline void nvme_tcp_advance_req(struct nvme_tcp_request *req,
293                 int len)
294 {
295         req->data_sent += len;
296         req->pdu_sent += len;
297         iov_iter_advance(&req->iter, len);
298         if (!iov_iter_count(&req->iter) &&
299             req->data_sent < req->data_len) {
300                 req->curr_bio = req->curr_bio->bi_next;
301                 nvme_tcp_init_iter(req, WRITE);
302         }
303 }
304
305 static inline void nvme_tcp_send_all(struct nvme_tcp_queue *queue)
306 {
307         int ret;
308
309         /* drain the send queue as much as we can... */
310         do {
311                 ret = nvme_tcp_try_send(queue);
312         } while (ret > 0);
313 }
314
315 static inline bool nvme_tcp_queue_more(struct nvme_tcp_queue *queue)
316 {
317         return !list_empty(&queue->send_list) ||
318                 !llist_empty(&queue->req_list) || queue->more_requests;
319 }
320
321 static inline void nvme_tcp_queue_request(struct nvme_tcp_request *req,
322                 bool sync, bool last)
323 {
324         struct nvme_tcp_queue *queue = req->queue;
325         bool empty;
326
327         empty = llist_add(&req->lentry, &queue->req_list) &&
328                 list_empty(&queue->send_list) && !queue->request;
329
330         /*
331          * if we're the first on the send_list and we can try to send
332          * directly, otherwise queue io_work. Also, only do that if we
333          * are on the same cpu, so we don't introduce contention.
334          */
335         if (queue->io_cpu == raw_smp_processor_id() &&
336             sync && empty && mutex_trylock(&queue->send_mutex)) {
337                 queue->more_requests = !last;
338                 nvme_tcp_send_all(queue);
339                 queue->more_requests = false;
340                 mutex_unlock(&queue->send_mutex);
341         }
342
343         if (last && nvme_tcp_queue_more(queue))
344                 queue_work_on(queue->io_cpu, nvme_tcp_wq, &queue->io_work);
345 }
346
347 static void nvme_tcp_process_req_list(struct nvme_tcp_queue *queue)
348 {
349         struct nvme_tcp_request *req;
350         struct llist_node *node;
351
352         for (node = llist_del_all(&queue->req_list); node; node = node->next) {
353                 req = llist_entry(node, struct nvme_tcp_request, lentry);
354                 list_add(&req->entry, &queue->send_list);
355         }
356 }
357
358 static inline struct nvme_tcp_request *
359 nvme_tcp_fetch_request(struct nvme_tcp_queue *queue)
360 {
361         struct nvme_tcp_request *req;
362
363         req = list_first_entry_or_null(&queue->send_list,
364                         struct nvme_tcp_request, entry);
365         if (!req) {
366                 nvme_tcp_process_req_list(queue);
367                 req = list_first_entry_or_null(&queue->send_list,
368                                 struct nvme_tcp_request, entry);
369                 if (unlikely(!req))
370                         return NULL;
371         }
372
373         list_del(&req->entry);
374         return req;
375 }
376
377 static inline void nvme_tcp_ddgst_final(struct ahash_request *hash,
378                 __le32 *dgst)
379 {
380         ahash_request_set_crypt(hash, NULL, (u8 *)dgst, 0);
381         crypto_ahash_final(hash);
382 }
383
384 static inline void nvme_tcp_ddgst_update(struct ahash_request *hash,
385                 struct page *page, off_t off, size_t len)
386 {
387         struct scatterlist sg;
388
389         sg_init_marker(&sg, 1);
390         sg_set_page(&sg, page, len, off);
391         ahash_request_set_crypt(hash, &sg, NULL, len);
392         crypto_ahash_update(hash);
393 }
394
395 static inline void nvme_tcp_hdgst(struct ahash_request *hash,
396                 void *pdu, size_t len)
397 {
398         struct scatterlist sg;
399
400         sg_init_one(&sg, pdu, len);
401         ahash_request_set_crypt(hash, &sg, pdu + len, len);
402         crypto_ahash_digest(hash);
403 }
404
405 static int nvme_tcp_verify_hdgst(struct nvme_tcp_queue *queue,
406                 void *pdu, size_t pdu_len)
407 {
408         struct nvme_tcp_hdr *hdr = pdu;
409         __le32 recv_digest;
410         __le32 exp_digest;
411
412         if (unlikely(!(hdr->flags & NVME_TCP_F_HDGST))) {
413                 dev_err(queue->ctrl->ctrl.device,
414                         "queue %d: header digest flag is cleared\n",
415                         nvme_tcp_queue_id(queue));
416                 return -EPROTO;
417         }
418
419         recv_digest = *(__le32 *)(pdu + hdr->hlen);
420         nvme_tcp_hdgst(queue->rcv_hash, pdu, pdu_len);
421         exp_digest = *(__le32 *)(pdu + hdr->hlen);
422         if (recv_digest != exp_digest) {
423                 dev_err(queue->ctrl->ctrl.device,
424                         "header digest error: recv %#x expected %#x\n",
425                         le32_to_cpu(recv_digest), le32_to_cpu(exp_digest));
426                 return -EIO;
427         }
428
429         return 0;
430 }
431
432 static int nvme_tcp_check_ddgst(struct nvme_tcp_queue *queue, void *pdu)
433 {
434         struct nvme_tcp_hdr *hdr = pdu;
435         u8 digest_len = nvme_tcp_hdgst_len(queue);
436         u32 len;
437
438         len = le32_to_cpu(hdr->plen) - hdr->hlen -
439                 ((hdr->flags & NVME_TCP_F_HDGST) ? digest_len : 0);
440
441         if (unlikely(len && !(hdr->flags & NVME_TCP_F_DDGST))) {
442                 dev_err(queue->ctrl->ctrl.device,
443                         "queue %d: data digest flag is cleared\n",
444                 nvme_tcp_queue_id(queue));
445                 return -EPROTO;
446         }
447         crypto_ahash_init(queue->rcv_hash);
448
449         return 0;
450 }
451
452 static void nvme_tcp_exit_request(struct blk_mq_tag_set *set,
453                 struct request *rq, unsigned int hctx_idx)
454 {
455         struct nvme_tcp_request *req = blk_mq_rq_to_pdu(rq);
456
457         page_frag_free(req->pdu);
458 }
459
460 static int nvme_tcp_init_request(struct blk_mq_tag_set *set,
461                 struct request *rq, unsigned int hctx_idx,
462                 unsigned int numa_node)
463 {
464         struct nvme_tcp_ctrl *ctrl = set->driver_data;
465         struct nvme_tcp_request *req = blk_mq_rq_to_pdu(rq);
466         struct nvme_tcp_cmd_pdu *pdu;
467         int queue_idx = (set == &ctrl->tag_set) ? hctx_idx + 1 : 0;
468         struct nvme_tcp_queue *queue = &ctrl->queues[queue_idx];
469         u8 hdgst = nvme_tcp_hdgst_len(queue);
470
471         req->pdu = page_frag_alloc(&queue->pf_cache,
472                 sizeof(struct nvme_tcp_cmd_pdu) + hdgst,
473                 GFP_KERNEL | __GFP_ZERO);
474         if (!req->pdu)
475                 return -ENOMEM;
476
477         pdu = req->pdu;
478         req->queue = queue;
479         nvme_req(rq)->ctrl = &ctrl->ctrl;
480         nvme_req(rq)->cmd = &pdu->cmd;
481
482         return 0;
483 }
484
485 static int nvme_tcp_init_hctx(struct blk_mq_hw_ctx *hctx, void *data,
486                 unsigned int hctx_idx)
487 {
488         struct nvme_tcp_ctrl *ctrl = data;
489         struct nvme_tcp_queue *queue = &ctrl->queues[hctx_idx + 1];
490
491         hctx->driver_data = queue;
492         return 0;
493 }
494
495 static int nvme_tcp_init_admin_hctx(struct blk_mq_hw_ctx *hctx, void *data,
496                 unsigned int hctx_idx)
497 {
498         struct nvme_tcp_ctrl *ctrl = data;
499         struct nvme_tcp_queue *queue = &ctrl->queues[0];
500
501         hctx->driver_data = queue;
502         return 0;
503 }
504
505 static enum nvme_tcp_recv_state
506 nvme_tcp_recv_state(struct nvme_tcp_queue *queue)
507 {
508         return  (queue->pdu_remaining) ? NVME_TCP_RECV_PDU :
509                 (queue->ddgst_remaining) ? NVME_TCP_RECV_DDGST :
510                 NVME_TCP_RECV_DATA;
511 }
512
513 static void nvme_tcp_init_recv_ctx(struct nvme_tcp_queue *queue)
514 {
515         queue->pdu_remaining = sizeof(struct nvme_tcp_rsp_pdu) +
516                                 nvme_tcp_hdgst_len(queue);
517         queue->pdu_offset = 0;
518         queue->data_remaining = -1;
519         queue->ddgst_remaining = 0;
520 }
521
522 static void nvme_tcp_error_recovery(struct nvme_ctrl *ctrl)
523 {
524         if (!nvme_change_ctrl_state(ctrl, NVME_CTRL_RESETTING))
525                 return;
526
527         dev_warn(ctrl->device, "starting error recovery\n");
528         queue_work(nvme_reset_wq, &to_tcp_ctrl(ctrl)->err_work);
529 }
530
531 static int nvme_tcp_process_nvme_cqe(struct nvme_tcp_queue *queue,
532                 struct nvme_completion *cqe)
533 {
534         struct nvme_tcp_request *req;
535         struct request *rq;
536
537         rq = nvme_find_rq(nvme_tcp_tagset(queue), cqe->command_id);
538         if (!rq) {
539                 dev_err(queue->ctrl->ctrl.device,
540                         "got bad cqe.command_id %#x on queue %d\n",
541                         cqe->command_id, nvme_tcp_queue_id(queue));
542                 nvme_tcp_error_recovery(&queue->ctrl->ctrl);
543                 return -EINVAL;
544         }
545
546         req = blk_mq_rq_to_pdu(rq);
547         if (req->status == cpu_to_le16(NVME_SC_SUCCESS))
548                 req->status = cqe->status;
549
550         if (!nvme_try_complete_req(rq, req->status, cqe->result))
551                 nvme_complete_rq(rq);
552         queue->nr_cqe++;
553
554         return 0;
555 }
556
557 static int nvme_tcp_handle_c2h_data(struct nvme_tcp_queue *queue,
558                 struct nvme_tcp_data_pdu *pdu)
559 {
560         struct request *rq;
561
562         rq = nvme_find_rq(nvme_tcp_tagset(queue), pdu->command_id);
563         if (!rq) {
564                 dev_err(queue->ctrl->ctrl.device,
565                         "got bad c2hdata.command_id %#x on queue %d\n",
566                         pdu->command_id, nvme_tcp_queue_id(queue));
567                 return -ENOENT;
568         }
569
570         if (!blk_rq_payload_bytes(rq)) {
571                 dev_err(queue->ctrl->ctrl.device,
572                         "queue %d tag %#x unexpected data\n",
573                         nvme_tcp_queue_id(queue), rq->tag);
574                 return -EIO;
575         }
576
577         queue->data_remaining = le32_to_cpu(pdu->data_length);
578
579         if (pdu->hdr.flags & NVME_TCP_F_DATA_SUCCESS &&
580             unlikely(!(pdu->hdr.flags & NVME_TCP_F_DATA_LAST))) {
581                 dev_err(queue->ctrl->ctrl.device,
582                         "queue %d tag %#x SUCCESS set but not last PDU\n",
583                         nvme_tcp_queue_id(queue), rq->tag);
584                 nvme_tcp_error_recovery(&queue->ctrl->ctrl);
585                 return -EPROTO;
586         }
587
588         return 0;
589 }
590
591 static int nvme_tcp_handle_comp(struct nvme_tcp_queue *queue,
592                 struct nvme_tcp_rsp_pdu *pdu)
593 {
594         struct nvme_completion *cqe = &pdu->cqe;
595         int ret = 0;
596
597         /*
598          * AEN requests are special as they don't time out and can
599          * survive any kind of queue freeze and often don't respond to
600          * aborts.  We don't even bother to allocate a struct request
601          * for them but rather special case them here.
602          */
603         if (unlikely(nvme_is_aen_req(nvme_tcp_queue_id(queue),
604                                      cqe->command_id)))
605                 nvme_complete_async_event(&queue->ctrl->ctrl, cqe->status,
606                                 &cqe->result);
607         else
608                 ret = nvme_tcp_process_nvme_cqe(queue, cqe);
609
610         return ret;
611 }
612
613 static int nvme_tcp_setup_h2c_data_pdu(struct nvme_tcp_request *req,
614                 struct nvme_tcp_r2t_pdu *pdu)
615 {
616         struct nvme_tcp_data_pdu *data = req->pdu;
617         struct nvme_tcp_queue *queue = req->queue;
618         struct request *rq = blk_mq_rq_from_pdu(req);
619         u8 hdgst = nvme_tcp_hdgst_len(queue);
620         u8 ddgst = nvme_tcp_ddgst_len(queue);
621
622         req->pdu_len = le32_to_cpu(pdu->r2t_length);
623         req->pdu_sent = 0;
624
625         if (unlikely(!req->pdu_len)) {
626                 dev_err(queue->ctrl->ctrl.device,
627                         "req %d r2t len is %u, probably a bug...\n",
628                         rq->tag, req->pdu_len);
629                 return -EPROTO;
630         }
631
632         if (unlikely(req->data_sent + req->pdu_len > req->data_len)) {
633                 dev_err(queue->ctrl->ctrl.device,
634                         "req %d r2t len %u exceeded data len %u (%zu sent)\n",
635                         rq->tag, req->pdu_len, req->data_len,
636                         req->data_sent);
637                 return -EPROTO;
638         }
639
640         if (unlikely(le32_to_cpu(pdu->r2t_offset) < req->data_sent)) {
641                 dev_err(queue->ctrl->ctrl.device,
642                         "req %d unexpected r2t offset %u (expected %zu)\n",
643                         rq->tag, le32_to_cpu(pdu->r2t_offset),
644                         req->data_sent);
645                 return -EPROTO;
646         }
647
648         memset(data, 0, sizeof(*data));
649         data->hdr.type = nvme_tcp_h2c_data;
650         data->hdr.flags = NVME_TCP_F_DATA_LAST;
651         if (queue->hdr_digest)
652                 data->hdr.flags |= NVME_TCP_F_HDGST;
653         if (queue->data_digest)
654                 data->hdr.flags |= NVME_TCP_F_DDGST;
655         data->hdr.hlen = sizeof(*data);
656         data->hdr.pdo = data->hdr.hlen + hdgst;
657         data->hdr.plen =
658                 cpu_to_le32(data->hdr.hlen + hdgst + req->pdu_len + ddgst);
659         data->ttag = pdu->ttag;
660         data->command_id = nvme_cid(rq);
661         data->data_offset = pdu->r2t_offset;
662         data->data_length = cpu_to_le32(req->pdu_len);
663         return 0;
664 }
665
666 static int nvme_tcp_handle_r2t(struct nvme_tcp_queue *queue,
667                 struct nvme_tcp_r2t_pdu *pdu)
668 {
669         struct nvme_tcp_request *req;
670         struct request *rq;
671         int ret;
672
673         rq = nvme_find_rq(nvme_tcp_tagset(queue), pdu->command_id);
674         if (!rq) {
675                 dev_err(queue->ctrl->ctrl.device,
676                         "got bad r2t.command_id %#x on queue %d\n",
677                         pdu->command_id, nvme_tcp_queue_id(queue));
678                 return -ENOENT;
679         }
680         req = blk_mq_rq_to_pdu(rq);
681
682         ret = nvme_tcp_setup_h2c_data_pdu(req, pdu);
683         if (unlikely(ret))
684                 return ret;
685
686         req->state = NVME_TCP_SEND_H2C_PDU;
687         req->offset = 0;
688
689         nvme_tcp_queue_request(req, false, true);
690
691         return 0;
692 }
693
694 static int nvme_tcp_recv_pdu(struct nvme_tcp_queue *queue, struct sk_buff *skb,
695                 unsigned int *offset, size_t *len)
696 {
697         struct nvme_tcp_hdr *hdr;
698         char *pdu = queue->pdu;
699         size_t rcv_len = min_t(size_t, *len, queue->pdu_remaining);
700         int ret;
701
702         ret = skb_copy_bits(skb, *offset,
703                 &pdu[queue->pdu_offset], rcv_len);
704         if (unlikely(ret))
705                 return ret;
706
707         queue->pdu_remaining -= rcv_len;
708         queue->pdu_offset += rcv_len;
709         *offset += rcv_len;
710         *len -= rcv_len;
711         if (queue->pdu_remaining)
712                 return 0;
713
714         hdr = queue->pdu;
715         if (queue->hdr_digest) {
716                 ret = nvme_tcp_verify_hdgst(queue, queue->pdu, hdr->hlen);
717                 if (unlikely(ret))
718                         return ret;
719         }
720
721
722         if (queue->data_digest) {
723                 ret = nvme_tcp_check_ddgst(queue, queue->pdu);
724                 if (unlikely(ret))
725                         return ret;
726         }
727
728         switch (hdr->type) {
729         case nvme_tcp_c2h_data:
730                 return nvme_tcp_handle_c2h_data(queue, (void *)queue->pdu);
731         case nvme_tcp_rsp:
732                 nvme_tcp_init_recv_ctx(queue);
733                 return nvme_tcp_handle_comp(queue, (void *)queue->pdu);
734         case nvme_tcp_r2t:
735                 nvme_tcp_init_recv_ctx(queue);
736                 return nvme_tcp_handle_r2t(queue, (void *)queue->pdu);
737         default:
738                 dev_err(queue->ctrl->ctrl.device,
739                         "unsupported pdu type (%d)\n", hdr->type);
740                 return -EINVAL;
741         }
742 }
743
744 static inline void nvme_tcp_end_request(struct request *rq, u16 status)
745 {
746         union nvme_result res = {};
747
748         if (!nvme_try_complete_req(rq, cpu_to_le16(status << 1), res))
749                 nvme_complete_rq(rq);
750 }
751
752 static int nvme_tcp_recv_data(struct nvme_tcp_queue *queue, struct sk_buff *skb,
753                               unsigned int *offset, size_t *len)
754 {
755         struct nvme_tcp_data_pdu *pdu = (void *)queue->pdu;
756         struct request *rq =
757                 nvme_cid_to_rq(nvme_tcp_tagset(queue), pdu->command_id);
758         struct nvme_tcp_request *req = blk_mq_rq_to_pdu(rq);
759
760         while (true) {
761                 int recv_len, ret;
762
763                 recv_len = min_t(size_t, *len, queue->data_remaining);
764                 if (!recv_len)
765                         break;
766
767                 if (!iov_iter_count(&req->iter)) {
768                         req->curr_bio = req->curr_bio->bi_next;
769
770                         /*
771                          * If we don`t have any bios it means that controller
772                          * sent more data than we requested, hence error
773                          */
774                         if (!req->curr_bio) {
775                                 dev_err(queue->ctrl->ctrl.device,
776                                         "queue %d no space in request %#x",
777                                         nvme_tcp_queue_id(queue), rq->tag);
778                                 nvme_tcp_init_recv_ctx(queue);
779                                 return -EIO;
780                         }
781                         nvme_tcp_init_iter(req, READ);
782                 }
783
784                 /* we can read only from what is left in this bio */
785                 recv_len = min_t(size_t, recv_len,
786                                 iov_iter_count(&req->iter));
787
788                 if (queue->data_digest)
789                         ret = skb_copy_and_hash_datagram_iter(skb, *offset,
790                                 &req->iter, recv_len, queue->rcv_hash);
791                 else
792                         ret = skb_copy_datagram_iter(skb, *offset,
793                                         &req->iter, recv_len);
794                 if (ret) {
795                         dev_err(queue->ctrl->ctrl.device,
796                                 "queue %d failed to copy request %#x data",
797                                 nvme_tcp_queue_id(queue), rq->tag);
798                         return ret;
799                 }
800
801                 *len -= recv_len;
802                 *offset += recv_len;
803                 queue->data_remaining -= recv_len;
804         }
805
806         if (!queue->data_remaining) {
807                 if (queue->data_digest) {
808                         nvme_tcp_ddgst_final(queue->rcv_hash, &queue->exp_ddgst);
809                         queue->ddgst_remaining = NVME_TCP_DIGEST_LENGTH;
810                 } else {
811                         if (pdu->hdr.flags & NVME_TCP_F_DATA_SUCCESS) {
812                                 nvme_tcp_end_request(rq,
813                                                 le16_to_cpu(req->status));
814                                 queue->nr_cqe++;
815                         }
816                         nvme_tcp_init_recv_ctx(queue);
817                 }
818         }
819
820         return 0;
821 }
822
823 static int nvme_tcp_recv_ddgst(struct nvme_tcp_queue *queue,
824                 struct sk_buff *skb, unsigned int *offset, size_t *len)
825 {
826         struct nvme_tcp_data_pdu *pdu = (void *)queue->pdu;
827         char *ddgst = (char *)&queue->recv_ddgst;
828         size_t recv_len = min_t(size_t, *len, queue->ddgst_remaining);
829         off_t off = NVME_TCP_DIGEST_LENGTH - queue->ddgst_remaining;
830         int ret;
831
832         ret = skb_copy_bits(skb, *offset, &ddgst[off], recv_len);
833         if (unlikely(ret))
834                 return ret;
835
836         queue->ddgst_remaining -= recv_len;
837         *offset += recv_len;
838         *len -= recv_len;
839         if (queue->ddgst_remaining)
840                 return 0;
841
842         if (queue->recv_ddgst != queue->exp_ddgst) {
843                 struct request *rq = nvme_cid_to_rq(nvme_tcp_tagset(queue),
844                                         pdu->command_id);
845                 struct nvme_tcp_request *req = blk_mq_rq_to_pdu(rq);
846
847                 req->status = cpu_to_le16(NVME_SC_DATA_XFER_ERROR);
848
849                 dev_err(queue->ctrl->ctrl.device,
850                         "data digest error: recv %#x expected %#x\n",
851                         le32_to_cpu(queue->recv_ddgst),
852                         le32_to_cpu(queue->exp_ddgst));
853         }
854
855         if (pdu->hdr.flags & NVME_TCP_F_DATA_SUCCESS) {
856                 struct request *rq = nvme_cid_to_rq(nvme_tcp_tagset(queue),
857                                         pdu->command_id);
858                 struct nvme_tcp_request *req = blk_mq_rq_to_pdu(rq);
859
860                 nvme_tcp_end_request(rq, le16_to_cpu(req->status));
861                 queue->nr_cqe++;
862         }
863
864         nvme_tcp_init_recv_ctx(queue);
865         return 0;
866 }
867
868 static int nvme_tcp_recv_skb(read_descriptor_t *desc, struct sk_buff *skb,
869                              unsigned int offset, size_t len)
870 {
871         struct nvme_tcp_queue *queue = desc->arg.data;
872         size_t consumed = len;
873         int result;
874
875         while (len) {
876                 switch (nvme_tcp_recv_state(queue)) {
877                 case NVME_TCP_RECV_PDU:
878                         result = nvme_tcp_recv_pdu(queue, skb, &offset, &len);
879                         break;
880                 case NVME_TCP_RECV_DATA:
881                         result = nvme_tcp_recv_data(queue, skb, &offset, &len);
882                         break;
883                 case NVME_TCP_RECV_DDGST:
884                         result = nvme_tcp_recv_ddgst(queue, skb, &offset, &len);
885                         break;
886                 default:
887                         result = -EFAULT;
888                 }
889                 if (result) {
890                         dev_err(queue->ctrl->ctrl.device,
891                                 "receive failed:  %d\n", result);
892                         queue->rd_enabled = false;
893                         nvme_tcp_error_recovery(&queue->ctrl->ctrl);
894                         return result;
895                 }
896         }
897
898         return consumed;
899 }
900
901 static void nvme_tcp_data_ready(struct sock *sk)
902 {
903         struct nvme_tcp_queue *queue;
904
905         read_lock_bh(&sk->sk_callback_lock);
906         queue = sk->sk_user_data;
907         if (likely(queue && queue->rd_enabled) &&
908             !test_bit(NVME_TCP_Q_POLLING, &queue->flags))
909                 queue_work_on(queue->io_cpu, nvme_tcp_wq, &queue->io_work);
910         read_unlock_bh(&sk->sk_callback_lock);
911 }
912
913 static void nvme_tcp_write_space(struct sock *sk)
914 {
915         struct nvme_tcp_queue *queue;
916
917         read_lock_bh(&sk->sk_callback_lock);
918         queue = sk->sk_user_data;
919         if (likely(queue && sk_stream_is_writeable(sk))) {
920                 clear_bit(SOCK_NOSPACE, &sk->sk_socket->flags);
921                 queue_work_on(queue->io_cpu, nvme_tcp_wq, &queue->io_work);
922         }
923         read_unlock_bh(&sk->sk_callback_lock);
924 }
925
926 static void nvme_tcp_state_change(struct sock *sk)
927 {
928         struct nvme_tcp_queue *queue;
929
930         read_lock_bh(&sk->sk_callback_lock);
931         queue = sk->sk_user_data;
932         if (!queue)
933                 goto done;
934
935         switch (sk->sk_state) {
936         case TCP_CLOSE:
937         case TCP_CLOSE_WAIT:
938         case TCP_LAST_ACK:
939         case TCP_FIN_WAIT1:
940         case TCP_FIN_WAIT2:
941                 nvme_tcp_error_recovery(&queue->ctrl->ctrl);
942                 break;
943         default:
944                 dev_info(queue->ctrl->ctrl.device,
945                         "queue %d socket state %d\n",
946                         nvme_tcp_queue_id(queue), sk->sk_state);
947         }
948
949         queue->state_change(sk);
950 done:
951         read_unlock_bh(&sk->sk_callback_lock);
952 }
953
954 static inline void nvme_tcp_done_send_req(struct nvme_tcp_queue *queue)
955 {
956         queue->request = NULL;
957 }
958
959 static void nvme_tcp_fail_request(struct nvme_tcp_request *req)
960 {
961         if (nvme_tcp_async_req(req)) {
962                 union nvme_result res = {};
963
964                 nvme_complete_async_event(&req->queue->ctrl->ctrl,
965                                 cpu_to_le16(NVME_SC_HOST_PATH_ERROR), &res);
966         } else {
967                 nvme_tcp_end_request(blk_mq_rq_from_pdu(req),
968                                 NVME_SC_HOST_PATH_ERROR);
969         }
970 }
971
972 static int nvme_tcp_try_send_data(struct nvme_tcp_request *req)
973 {
974         struct nvme_tcp_queue *queue = req->queue;
975         int req_data_len = req->data_len;
976
977         while (true) {
978                 struct page *page = nvme_tcp_req_cur_page(req);
979                 size_t offset = nvme_tcp_req_cur_offset(req);
980                 size_t len = nvme_tcp_req_cur_length(req);
981                 bool last = nvme_tcp_pdu_last_send(req, len);
982                 int req_data_sent = req->data_sent;
983                 int ret, flags = MSG_DONTWAIT;
984
985                 if (last && !queue->data_digest && !nvme_tcp_queue_more(queue))
986                         flags |= MSG_EOR;
987                 else
988                         flags |= MSG_MORE | MSG_SENDPAGE_NOTLAST;
989
990                 if (sendpage_ok(page)) {
991                         ret = kernel_sendpage(queue->sock, page, offset, len,
992                                         flags);
993                 } else {
994                         ret = sock_no_sendpage(queue->sock, page, offset, len,
995                                         flags);
996                 }
997                 if (ret <= 0)
998                         return ret;
999
1000                 if (queue->data_digest)
1001                         nvme_tcp_ddgst_update(queue->snd_hash, page,
1002                                         offset, ret);
1003
1004                 /*
1005                  * update the request iterator except for the last payload send
1006                  * in the request where we don't want to modify it as we may
1007                  * compete with the RX path completing the request.
1008                  */
1009                 if (req_data_sent + ret < req_data_len)
1010                         nvme_tcp_advance_req(req, ret);
1011
1012                 /* fully successful last send in current PDU */
1013                 if (last && ret == len) {
1014                         if (queue->data_digest) {
1015                                 nvme_tcp_ddgst_final(queue->snd_hash,
1016                                         &req->ddgst);
1017                                 req->state = NVME_TCP_SEND_DDGST;
1018                                 req->offset = 0;
1019                         } else {
1020                                 nvme_tcp_done_send_req(queue);
1021                         }
1022                         return 1;
1023                 }
1024         }
1025         return -EAGAIN;
1026 }
1027
1028 static int nvme_tcp_try_send_cmd_pdu(struct nvme_tcp_request *req)
1029 {
1030         struct nvme_tcp_queue *queue = req->queue;
1031         struct nvme_tcp_cmd_pdu *pdu = req->pdu;
1032         bool inline_data = nvme_tcp_has_inline_data(req);
1033         u8 hdgst = nvme_tcp_hdgst_len(queue);
1034         int len = sizeof(*pdu) + hdgst - req->offset;
1035         int flags = MSG_DONTWAIT;
1036         int ret;
1037
1038         if (inline_data || nvme_tcp_queue_more(queue))
1039                 flags |= MSG_MORE | MSG_SENDPAGE_NOTLAST;
1040         else
1041                 flags |= MSG_EOR;
1042
1043         if (queue->hdr_digest && !req->offset)
1044                 nvme_tcp_hdgst(queue->snd_hash, pdu, sizeof(*pdu));
1045
1046         ret = kernel_sendpage(queue->sock, virt_to_page(pdu),
1047                         offset_in_page(pdu) + req->offset, len,  flags);
1048         if (unlikely(ret <= 0))
1049                 return ret;
1050
1051         len -= ret;
1052         if (!len) {
1053                 if (inline_data) {
1054                         req->state = NVME_TCP_SEND_DATA;
1055                         if (queue->data_digest)
1056                                 crypto_ahash_init(queue->snd_hash);
1057                 } else {
1058                         nvme_tcp_done_send_req(queue);
1059                 }
1060                 return 1;
1061         }
1062         req->offset += ret;
1063
1064         return -EAGAIN;
1065 }
1066
1067 static int nvme_tcp_try_send_data_pdu(struct nvme_tcp_request *req)
1068 {
1069         struct nvme_tcp_queue *queue = req->queue;
1070         struct nvme_tcp_data_pdu *pdu = req->pdu;
1071         u8 hdgst = nvme_tcp_hdgst_len(queue);
1072         int len = sizeof(*pdu) - req->offset + hdgst;
1073         int ret;
1074
1075         if (queue->hdr_digest && !req->offset)
1076                 nvme_tcp_hdgst(queue->snd_hash, pdu, sizeof(*pdu));
1077
1078         ret = kernel_sendpage(queue->sock, virt_to_page(pdu),
1079                         offset_in_page(pdu) + req->offset, len,
1080                         MSG_DONTWAIT | MSG_MORE | MSG_SENDPAGE_NOTLAST);
1081         if (unlikely(ret <= 0))
1082                 return ret;
1083
1084         len -= ret;
1085         if (!len) {
1086                 req->state = NVME_TCP_SEND_DATA;
1087                 if (queue->data_digest)
1088                         crypto_ahash_init(queue->snd_hash);
1089                 return 1;
1090         }
1091         req->offset += ret;
1092
1093         return -EAGAIN;
1094 }
1095
1096 static int nvme_tcp_try_send_ddgst(struct nvme_tcp_request *req)
1097 {
1098         struct nvme_tcp_queue *queue = req->queue;
1099         size_t offset = req->offset;
1100         int ret;
1101         struct msghdr msg = { .msg_flags = MSG_DONTWAIT };
1102         struct kvec iov = {
1103                 .iov_base = (u8 *)&req->ddgst + req->offset,
1104                 .iov_len = NVME_TCP_DIGEST_LENGTH - req->offset
1105         };
1106
1107         if (nvme_tcp_queue_more(queue))
1108                 msg.msg_flags |= MSG_MORE;
1109         else
1110                 msg.msg_flags |= MSG_EOR;
1111
1112         ret = kernel_sendmsg(queue->sock, &msg, &iov, 1, iov.iov_len);
1113         if (unlikely(ret <= 0))
1114                 return ret;
1115
1116         if (offset + ret == NVME_TCP_DIGEST_LENGTH) {
1117                 nvme_tcp_done_send_req(queue);
1118                 return 1;
1119         }
1120
1121         req->offset += ret;
1122         return -EAGAIN;
1123 }
1124
1125 static int nvme_tcp_try_send(struct nvme_tcp_queue *queue)
1126 {
1127         struct nvme_tcp_request *req;
1128         int ret = 1;
1129
1130         if (!queue->request) {
1131                 queue->request = nvme_tcp_fetch_request(queue);
1132                 if (!queue->request)
1133                         return 0;
1134         }
1135         req = queue->request;
1136
1137         if (req->state == NVME_TCP_SEND_CMD_PDU) {
1138                 ret = nvme_tcp_try_send_cmd_pdu(req);
1139                 if (ret <= 0)
1140                         goto done;
1141                 if (!nvme_tcp_has_inline_data(req))
1142                         return ret;
1143         }
1144
1145         if (req->state == NVME_TCP_SEND_H2C_PDU) {
1146                 ret = nvme_tcp_try_send_data_pdu(req);
1147                 if (ret <= 0)
1148                         goto done;
1149         }
1150
1151         if (req->state == NVME_TCP_SEND_DATA) {
1152                 ret = nvme_tcp_try_send_data(req);
1153                 if (ret <= 0)
1154                         goto done;
1155         }
1156
1157         if (req->state == NVME_TCP_SEND_DDGST)
1158                 ret = nvme_tcp_try_send_ddgst(req);
1159 done:
1160         if (ret == -EAGAIN) {
1161                 ret = 0;
1162         } else if (ret < 0) {
1163                 dev_err(queue->ctrl->ctrl.device,
1164                         "failed to send request %d\n", ret);
1165                 nvme_tcp_fail_request(queue->request);
1166                 nvme_tcp_done_send_req(queue);
1167         }
1168         return ret;
1169 }
1170
1171 static int nvme_tcp_try_recv(struct nvme_tcp_queue *queue)
1172 {
1173         struct socket *sock = queue->sock;
1174         struct sock *sk = sock->sk;
1175         read_descriptor_t rd_desc;
1176         int consumed;
1177
1178         rd_desc.arg.data = queue;
1179         rd_desc.count = 1;
1180         lock_sock(sk);
1181         queue->nr_cqe = 0;
1182         consumed = sock->ops->read_sock(sk, &rd_desc, nvme_tcp_recv_skb);
1183         release_sock(sk);
1184         return consumed;
1185 }
1186
1187 static void nvme_tcp_io_work(struct work_struct *w)
1188 {
1189         struct nvme_tcp_queue *queue =
1190                 container_of(w, struct nvme_tcp_queue, io_work);
1191         unsigned long deadline = jiffies + msecs_to_jiffies(1);
1192
1193         do {
1194                 bool pending = false;
1195                 int result;
1196
1197                 if (mutex_trylock(&queue->send_mutex)) {
1198                         result = nvme_tcp_try_send(queue);
1199                         mutex_unlock(&queue->send_mutex);
1200                         if (result > 0)
1201                                 pending = true;
1202                         else if (unlikely(result < 0))
1203                                 break;
1204                 }
1205
1206                 result = nvme_tcp_try_recv(queue);
1207                 if (result > 0)
1208                         pending = true;
1209                 else if (unlikely(result < 0))
1210                         return;
1211
1212                 if (!pending || !queue->rd_enabled)
1213                         return;
1214
1215         } while (!time_after(jiffies, deadline)); /* quota is exhausted */
1216
1217         queue_work_on(queue->io_cpu, nvme_tcp_wq, &queue->io_work);
1218 }
1219
1220 static void nvme_tcp_free_crypto(struct nvme_tcp_queue *queue)
1221 {
1222         struct crypto_ahash *tfm = crypto_ahash_reqtfm(queue->rcv_hash);
1223
1224         ahash_request_free(queue->rcv_hash);
1225         ahash_request_free(queue->snd_hash);
1226         crypto_free_ahash(tfm);
1227 }
1228
1229 static int nvme_tcp_alloc_crypto(struct nvme_tcp_queue *queue)
1230 {
1231         struct crypto_ahash *tfm;
1232
1233         tfm = crypto_alloc_ahash("crc32c", 0, CRYPTO_ALG_ASYNC);
1234         if (IS_ERR(tfm))
1235                 return PTR_ERR(tfm);
1236
1237         queue->snd_hash = ahash_request_alloc(tfm, GFP_KERNEL);
1238         if (!queue->snd_hash)
1239                 goto free_tfm;
1240         ahash_request_set_callback(queue->snd_hash, 0, NULL, NULL);
1241
1242         queue->rcv_hash = ahash_request_alloc(tfm, GFP_KERNEL);
1243         if (!queue->rcv_hash)
1244                 goto free_snd_hash;
1245         ahash_request_set_callback(queue->rcv_hash, 0, NULL, NULL);
1246
1247         return 0;
1248 free_snd_hash:
1249         ahash_request_free(queue->snd_hash);
1250 free_tfm:
1251         crypto_free_ahash(tfm);
1252         return -ENOMEM;
1253 }
1254
1255 static void nvme_tcp_free_async_req(struct nvme_tcp_ctrl *ctrl)
1256 {
1257         struct nvme_tcp_request *async = &ctrl->async_req;
1258
1259         page_frag_free(async->pdu);
1260 }
1261
1262 static int nvme_tcp_alloc_async_req(struct nvme_tcp_ctrl *ctrl)
1263 {
1264         struct nvme_tcp_queue *queue = &ctrl->queues[0];
1265         struct nvme_tcp_request *async = &ctrl->async_req;
1266         u8 hdgst = nvme_tcp_hdgst_len(queue);
1267
1268         async->pdu = page_frag_alloc(&queue->pf_cache,
1269                 sizeof(struct nvme_tcp_cmd_pdu) + hdgst,
1270                 GFP_KERNEL | __GFP_ZERO);
1271         if (!async->pdu)
1272                 return -ENOMEM;
1273
1274         async->queue = &ctrl->queues[0];
1275         return 0;
1276 }
1277
1278 static void nvme_tcp_free_queue(struct nvme_ctrl *nctrl, int qid)
1279 {
1280         struct nvme_tcp_ctrl *ctrl = to_tcp_ctrl(nctrl);
1281         struct nvme_tcp_queue *queue = &ctrl->queues[qid];
1282
1283         if (!test_and_clear_bit(NVME_TCP_Q_ALLOCATED, &queue->flags))
1284                 return;
1285
1286         if (queue->hdr_digest || queue->data_digest)
1287                 nvme_tcp_free_crypto(queue);
1288
1289         sock_release(queue->sock);
1290         kfree(queue->pdu);
1291         mutex_destroy(&queue->send_mutex);
1292         mutex_destroy(&queue->queue_lock);
1293 }
1294
1295 static int nvme_tcp_init_connection(struct nvme_tcp_queue *queue)
1296 {
1297         struct nvme_tcp_icreq_pdu *icreq;
1298         struct nvme_tcp_icresp_pdu *icresp;
1299         struct msghdr msg = {};
1300         struct kvec iov;
1301         bool ctrl_hdgst, ctrl_ddgst;
1302         int ret;
1303
1304         icreq = kzalloc(sizeof(*icreq), GFP_KERNEL);
1305         if (!icreq)
1306                 return -ENOMEM;
1307
1308         icresp = kzalloc(sizeof(*icresp), GFP_KERNEL);
1309         if (!icresp) {
1310                 ret = -ENOMEM;
1311                 goto free_icreq;
1312         }
1313
1314         icreq->hdr.type = nvme_tcp_icreq;
1315         icreq->hdr.hlen = sizeof(*icreq);
1316         icreq->hdr.pdo = 0;
1317         icreq->hdr.plen = cpu_to_le32(icreq->hdr.hlen);
1318         icreq->pfv = cpu_to_le16(NVME_TCP_PFV_1_0);
1319         icreq->maxr2t = 0; /* single inflight r2t supported */
1320         icreq->hpda = 0; /* no alignment constraint */
1321         if (queue->hdr_digest)
1322                 icreq->digest |= NVME_TCP_HDR_DIGEST_ENABLE;
1323         if (queue->data_digest)
1324                 icreq->digest |= NVME_TCP_DATA_DIGEST_ENABLE;
1325
1326         iov.iov_base = icreq;
1327         iov.iov_len = sizeof(*icreq);
1328         ret = kernel_sendmsg(queue->sock, &msg, &iov, 1, iov.iov_len);
1329         if (ret < 0)
1330                 goto free_icresp;
1331
1332         memset(&msg, 0, sizeof(msg));
1333         iov.iov_base = icresp;
1334         iov.iov_len = sizeof(*icresp);
1335         ret = kernel_recvmsg(queue->sock, &msg, &iov, 1,
1336                         iov.iov_len, msg.msg_flags);
1337         if (ret < 0)
1338                 goto free_icresp;
1339
1340         ret = -EINVAL;
1341         if (icresp->hdr.type != nvme_tcp_icresp) {
1342                 pr_err("queue %d: bad type returned %d\n",
1343                         nvme_tcp_queue_id(queue), icresp->hdr.type);
1344                 goto free_icresp;
1345         }
1346
1347         if (le32_to_cpu(icresp->hdr.plen) != sizeof(*icresp)) {
1348                 pr_err("queue %d: bad pdu length returned %d\n",
1349                         nvme_tcp_queue_id(queue), icresp->hdr.plen);
1350                 goto free_icresp;
1351         }
1352
1353         if (icresp->pfv != NVME_TCP_PFV_1_0) {
1354                 pr_err("queue %d: bad pfv returned %d\n",
1355                         nvme_tcp_queue_id(queue), icresp->pfv);
1356                 goto free_icresp;
1357         }
1358
1359         ctrl_ddgst = !!(icresp->digest & NVME_TCP_DATA_DIGEST_ENABLE);
1360         if ((queue->data_digest && !ctrl_ddgst) ||
1361             (!queue->data_digest && ctrl_ddgst)) {
1362                 pr_err("queue %d: data digest mismatch host: %s ctrl: %s\n",
1363                         nvme_tcp_queue_id(queue),
1364                         queue->data_digest ? "enabled" : "disabled",
1365                         ctrl_ddgst ? "enabled" : "disabled");
1366                 goto free_icresp;
1367         }
1368
1369         ctrl_hdgst = !!(icresp->digest & NVME_TCP_HDR_DIGEST_ENABLE);
1370         if ((queue->hdr_digest && !ctrl_hdgst) ||
1371             (!queue->hdr_digest && ctrl_hdgst)) {
1372                 pr_err("queue %d: header digest mismatch host: %s ctrl: %s\n",
1373                         nvme_tcp_queue_id(queue),
1374                         queue->hdr_digest ? "enabled" : "disabled",
1375                         ctrl_hdgst ? "enabled" : "disabled");
1376                 goto free_icresp;
1377         }
1378
1379         if (icresp->cpda != 0) {
1380                 pr_err("queue %d: unsupported cpda returned %d\n",
1381                         nvme_tcp_queue_id(queue), icresp->cpda);
1382                 goto free_icresp;
1383         }
1384
1385         ret = 0;
1386 free_icresp:
1387         kfree(icresp);
1388 free_icreq:
1389         kfree(icreq);
1390         return ret;
1391 }
1392
1393 static bool nvme_tcp_admin_queue(struct nvme_tcp_queue *queue)
1394 {
1395         return nvme_tcp_queue_id(queue) == 0;
1396 }
1397
1398 static bool nvme_tcp_default_queue(struct nvme_tcp_queue *queue)
1399 {
1400         struct nvme_tcp_ctrl *ctrl = queue->ctrl;
1401         int qid = nvme_tcp_queue_id(queue);
1402
1403         return !nvme_tcp_admin_queue(queue) &&
1404                 qid < 1 + ctrl->io_queues[HCTX_TYPE_DEFAULT];
1405 }
1406
1407 static bool nvme_tcp_read_queue(struct nvme_tcp_queue *queue)
1408 {
1409         struct nvme_tcp_ctrl *ctrl = queue->ctrl;
1410         int qid = nvme_tcp_queue_id(queue);
1411
1412         return !nvme_tcp_admin_queue(queue) &&
1413                 !nvme_tcp_default_queue(queue) &&
1414                 qid < 1 + ctrl->io_queues[HCTX_TYPE_DEFAULT] +
1415                           ctrl->io_queues[HCTX_TYPE_READ];
1416 }
1417
1418 static bool nvme_tcp_poll_queue(struct nvme_tcp_queue *queue)
1419 {
1420         struct nvme_tcp_ctrl *ctrl = queue->ctrl;
1421         int qid = nvme_tcp_queue_id(queue);
1422
1423         return !nvme_tcp_admin_queue(queue) &&
1424                 !nvme_tcp_default_queue(queue) &&
1425                 !nvme_tcp_read_queue(queue) &&
1426                 qid < 1 + ctrl->io_queues[HCTX_TYPE_DEFAULT] +
1427                           ctrl->io_queues[HCTX_TYPE_READ] +
1428                           ctrl->io_queues[HCTX_TYPE_POLL];
1429 }
1430
1431 static void nvme_tcp_set_queue_io_cpu(struct nvme_tcp_queue *queue)
1432 {
1433         struct nvme_tcp_ctrl *ctrl = queue->ctrl;
1434         int qid = nvme_tcp_queue_id(queue);
1435         int n = 0;
1436
1437         if (nvme_tcp_default_queue(queue))
1438                 n = qid - 1;
1439         else if (nvme_tcp_read_queue(queue))
1440                 n = qid - ctrl->io_queues[HCTX_TYPE_DEFAULT] - 1;
1441         else if (nvme_tcp_poll_queue(queue))
1442                 n = qid - ctrl->io_queues[HCTX_TYPE_DEFAULT] -
1443                                 ctrl->io_queues[HCTX_TYPE_READ] - 1;
1444         queue->io_cpu = cpumask_next_wrap(n - 1, cpu_online_mask, -1, false);
1445 }
1446
1447 static int nvme_tcp_alloc_queue(struct nvme_ctrl *nctrl,
1448                 int qid, size_t queue_size)
1449 {
1450         struct nvme_tcp_ctrl *ctrl = to_tcp_ctrl(nctrl);
1451         struct nvme_tcp_queue *queue = &ctrl->queues[qid];
1452         int ret, rcv_pdu_size;
1453
1454         mutex_init(&queue->queue_lock);
1455         queue->ctrl = ctrl;
1456         init_llist_head(&queue->req_list);
1457         INIT_LIST_HEAD(&queue->send_list);
1458         mutex_init(&queue->send_mutex);
1459         INIT_WORK(&queue->io_work, nvme_tcp_io_work);
1460         queue->queue_size = queue_size;
1461
1462         if (qid > 0)
1463                 queue->cmnd_capsule_len = nctrl->ioccsz * 16;
1464         else
1465                 queue->cmnd_capsule_len = sizeof(struct nvme_command) +
1466                                                 NVME_TCP_ADMIN_CCSZ;
1467
1468         ret = sock_create(ctrl->addr.ss_family, SOCK_STREAM,
1469                         IPPROTO_TCP, &queue->sock);
1470         if (ret) {
1471                 dev_err(nctrl->device,
1472                         "failed to create socket: %d\n", ret);
1473                 goto err_destroy_mutex;
1474         }
1475
1476         nvme_tcp_reclassify_socket(queue->sock);
1477
1478         /* Single syn retry */
1479         tcp_sock_set_syncnt(queue->sock->sk, 1);
1480
1481         /* Set TCP no delay */
1482         tcp_sock_set_nodelay(queue->sock->sk);
1483
1484         /*
1485          * Cleanup whatever is sitting in the TCP transmit queue on socket
1486          * close. This is done to prevent stale data from being sent should
1487          * the network connection be restored before TCP times out.
1488          */
1489         sock_no_linger(queue->sock->sk);
1490
1491         if (so_priority > 0)
1492                 sock_set_priority(queue->sock->sk, so_priority);
1493
1494         /* Set socket type of service */
1495         if (nctrl->opts->tos >= 0)
1496                 ip_sock_set_tos(queue->sock->sk, nctrl->opts->tos);
1497
1498         /* Set 10 seconds timeout for icresp recvmsg */
1499         queue->sock->sk->sk_rcvtimeo = 10 * HZ;
1500
1501         queue->sock->sk->sk_allocation = GFP_ATOMIC;
1502         nvme_tcp_set_queue_io_cpu(queue);
1503         queue->request = NULL;
1504         queue->data_remaining = 0;
1505         queue->ddgst_remaining = 0;
1506         queue->pdu_remaining = 0;
1507         queue->pdu_offset = 0;
1508         sk_set_memalloc(queue->sock->sk);
1509
1510         if (nctrl->opts->mask & NVMF_OPT_HOST_TRADDR) {
1511                 ret = kernel_bind(queue->sock, (struct sockaddr *)&ctrl->src_addr,
1512                         sizeof(ctrl->src_addr));
1513                 if (ret) {
1514                         dev_err(nctrl->device,
1515                                 "failed to bind queue %d socket %d\n",
1516                                 qid, ret);
1517                         goto err_sock;
1518                 }
1519         }
1520
1521         if (nctrl->opts->mask & NVMF_OPT_HOST_IFACE) {
1522                 char *iface = nctrl->opts->host_iface;
1523                 sockptr_t optval = KERNEL_SOCKPTR(iface);
1524
1525                 ret = sock_setsockopt(queue->sock, SOL_SOCKET, SO_BINDTODEVICE,
1526                                       optval, strlen(iface));
1527                 if (ret) {
1528                         dev_err(nctrl->device,
1529                           "failed to bind to interface %s queue %d err %d\n",
1530                           iface, qid, ret);
1531                         goto err_sock;
1532                 }
1533         }
1534
1535         queue->hdr_digest = nctrl->opts->hdr_digest;
1536         queue->data_digest = nctrl->opts->data_digest;
1537         if (queue->hdr_digest || queue->data_digest) {
1538                 ret = nvme_tcp_alloc_crypto(queue);
1539                 if (ret) {
1540                         dev_err(nctrl->device,
1541                                 "failed to allocate queue %d crypto\n", qid);
1542                         goto err_sock;
1543                 }
1544         }
1545
1546         rcv_pdu_size = sizeof(struct nvme_tcp_rsp_pdu) +
1547                         nvme_tcp_hdgst_len(queue);
1548         queue->pdu = kmalloc(rcv_pdu_size, GFP_KERNEL);
1549         if (!queue->pdu) {
1550                 ret = -ENOMEM;
1551                 goto err_crypto;
1552         }
1553
1554         dev_dbg(nctrl->device, "connecting queue %d\n",
1555                         nvme_tcp_queue_id(queue));
1556
1557         ret = kernel_connect(queue->sock, (struct sockaddr *)&ctrl->addr,
1558                 sizeof(ctrl->addr), 0);
1559         if (ret) {
1560                 dev_err(nctrl->device,
1561                         "failed to connect socket: %d\n", ret);
1562                 goto err_rcv_pdu;
1563         }
1564
1565         ret = nvme_tcp_init_connection(queue);
1566         if (ret)
1567                 goto err_init_connect;
1568
1569         queue->rd_enabled = true;
1570         set_bit(NVME_TCP_Q_ALLOCATED, &queue->flags);
1571         nvme_tcp_init_recv_ctx(queue);
1572
1573         write_lock_bh(&queue->sock->sk->sk_callback_lock);
1574         queue->sock->sk->sk_user_data = queue;
1575         queue->state_change = queue->sock->sk->sk_state_change;
1576         queue->data_ready = queue->sock->sk->sk_data_ready;
1577         queue->write_space = queue->sock->sk->sk_write_space;
1578         queue->sock->sk->sk_data_ready = nvme_tcp_data_ready;
1579         queue->sock->sk->sk_state_change = nvme_tcp_state_change;
1580         queue->sock->sk->sk_write_space = nvme_tcp_write_space;
1581 #ifdef CONFIG_NET_RX_BUSY_POLL
1582         queue->sock->sk->sk_ll_usec = 1;
1583 #endif
1584         write_unlock_bh(&queue->sock->sk->sk_callback_lock);
1585
1586         return 0;
1587
1588 err_init_connect:
1589         kernel_sock_shutdown(queue->sock, SHUT_RDWR);
1590 err_rcv_pdu:
1591         kfree(queue->pdu);
1592 err_crypto:
1593         if (queue->hdr_digest || queue->data_digest)
1594                 nvme_tcp_free_crypto(queue);
1595 err_sock:
1596         sock_release(queue->sock);
1597         queue->sock = NULL;
1598 err_destroy_mutex:
1599         mutex_destroy(&queue->send_mutex);
1600         mutex_destroy(&queue->queue_lock);
1601         return ret;
1602 }
1603
1604 static void nvme_tcp_restore_sock_calls(struct nvme_tcp_queue *queue)
1605 {
1606         struct socket *sock = queue->sock;
1607
1608         write_lock_bh(&sock->sk->sk_callback_lock);
1609         sock->sk->sk_user_data  = NULL;
1610         sock->sk->sk_data_ready = queue->data_ready;
1611         sock->sk->sk_state_change = queue->state_change;
1612         sock->sk->sk_write_space  = queue->write_space;
1613         write_unlock_bh(&sock->sk->sk_callback_lock);
1614 }
1615
1616 static void __nvme_tcp_stop_queue(struct nvme_tcp_queue *queue)
1617 {
1618         kernel_sock_shutdown(queue->sock, SHUT_RDWR);
1619         nvme_tcp_restore_sock_calls(queue);
1620         cancel_work_sync(&queue->io_work);
1621 }
1622
1623 static void nvme_tcp_stop_queue(struct nvme_ctrl *nctrl, int qid)
1624 {
1625         struct nvme_tcp_ctrl *ctrl = to_tcp_ctrl(nctrl);
1626         struct nvme_tcp_queue *queue = &ctrl->queues[qid];
1627
1628         mutex_lock(&queue->queue_lock);
1629         if (test_and_clear_bit(NVME_TCP_Q_LIVE, &queue->flags))
1630                 __nvme_tcp_stop_queue(queue);
1631         mutex_unlock(&queue->queue_lock);
1632 }
1633
1634 static int nvme_tcp_start_queue(struct nvme_ctrl *nctrl, int idx)
1635 {
1636         struct nvme_tcp_ctrl *ctrl = to_tcp_ctrl(nctrl);
1637         int ret;
1638
1639         if (idx)
1640                 ret = nvmf_connect_io_queue(nctrl, idx);
1641         else
1642                 ret = nvmf_connect_admin_queue(nctrl);
1643
1644         if (!ret) {
1645                 set_bit(NVME_TCP_Q_LIVE, &ctrl->queues[idx].flags);
1646         } else {
1647                 if (test_bit(NVME_TCP_Q_ALLOCATED, &ctrl->queues[idx].flags))
1648                         __nvme_tcp_stop_queue(&ctrl->queues[idx]);
1649                 dev_err(nctrl->device,
1650                         "failed to connect queue: %d ret=%d\n", idx, ret);
1651         }
1652         return ret;
1653 }
1654
1655 static struct blk_mq_tag_set *nvme_tcp_alloc_tagset(struct nvme_ctrl *nctrl,
1656                 bool admin)
1657 {
1658         struct nvme_tcp_ctrl *ctrl = to_tcp_ctrl(nctrl);
1659         struct blk_mq_tag_set *set;
1660         int ret;
1661
1662         if (admin) {
1663                 set = &ctrl->admin_tag_set;
1664                 memset(set, 0, sizeof(*set));
1665                 set->ops = &nvme_tcp_admin_mq_ops;
1666                 set->queue_depth = NVME_AQ_MQ_TAG_DEPTH;
1667                 set->reserved_tags = NVMF_RESERVED_TAGS;
1668                 set->numa_node = nctrl->numa_node;
1669                 set->flags = BLK_MQ_F_BLOCKING;
1670                 set->cmd_size = sizeof(struct nvme_tcp_request);
1671                 set->driver_data = ctrl;
1672                 set->nr_hw_queues = 1;
1673                 set->timeout = NVME_ADMIN_TIMEOUT;
1674         } else {
1675                 set = &ctrl->tag_set;
1676                 memset(set, 0, sizeof(*set));
1677                 set->ops = &nvme_tcp_mq_ops;
1678                 set->queue_depth = nctrl->sqsize + 1;
1679                 set->reserved_tags = NVMF_RESERVED_TAGS;
1680                 set->numa_node = nctrl->numa_node;
1681                 set->flags = BLK_MQ_F_SHOULD_MERGE | BLK_MQ_F_BLOCKING;
1682                 set->cmd_size = sizeof(struct nvme_tcp_request);
1683                 set->driver_data = ctrl;
1684                 set->nr_hw_queues = nctrl->queue_count - 1;
1685                 set->timeout = NVME_IO_TIMEOUT;
1686                 set->nr_maps = nctrl->opts->nr_poll_queues ? HCTX_MAX_TYPES : 2;
1687         }
1688
1689         ret = blk_mq_alloc_tag_set(set);
1690         if (ret)
1691                 return ERR_PTR(ret);
1692
1693         return set;
1694 }
1695
1696 static void nvme_tcp_free_admin_queue(struct nvme_ctrl *ctrl)
1697 {
1698         if (to_tcp_ctrl(ctrl)->async_req.pdu) {
1699                 cancel_work_sync(&ctrl->async_event_work);
1700                 nvme_tcp_free_async_req(to_tcp_ctrl(ctrl));
1701                 to_tcp_ctrl(ctrl)->async_req.pdu = NULL;
1702         }
1703
1704         nvme_tcp_free_queue(ctrl, 0);
1705 }
1706
1707 static void nvme_tcp_free_io_queues(struct nvme_ctrl *ctrl)
1708 {
1709         int i;
1710
1711         for (i = 1; i < ctrl->queue_count; i++)
1712                 nvme_tcp_free_queue(ctrl, i);
1713 }
1714
1715 static void nvme_tcp_stop_io_queues(struct nvme_ctrl *ctrl)
1716 {
1717         int i;
1718
1719         for (i = 1; i < ctrl->queue_count; i++)
1720                 nvme_tcp_stop_queue(ctrl, i);
1721 }
1722
1723 static int nvme_tcp_start_io_queues(struct nvme_ctrl *ctrl)
1724 {
1725         int i, ret = 0;
1726
1727         for (i = 1; i < ctrl->queue_count; i++) {
1728                 ret = nvme_tcp_start_queue(ctrl, i);
1729                 if (ret)
1730                         goto out_stop_queues;
1731         }
1732
1733         return 0;
1734
1735 out_stop_queues:
1736         for (i--; i >= 1; i--)
1737                 nvme_tcp_stop_queue(ctrl, i);
1738         return ret;
1739 }
1740
1741 static int nvme_tcp_alloc_admin_queue(struct nvme_ctrl *ctrl)
1742 {
1743         int ret;
1744
1745         ret = nvme_tcp_alloc_queue(ctrl, 0, NVME_AQ_DEPTH);
1746         if (ret)
1747                 return ret;
1748
1749         ret = nvme_tcp_alloc_async_req(to_tcp_ctrl(ctrl));
1750         if (ret)
1751                 goto out_free_queue;
1752
1753         return 0;
1754
1755 out_free_queue:
1756         nvme_tcp_free_queue(ctrl, 0);
1757         return ret;
1758 }
1759
1760 static int __nvme_tcp_alloc_io_queues(struct nvme_ctrl *ctrl)
1761 {
1762         int i, ret;
1763
1764         for (i = 1; i < ctrl->queue_count; i++) {
1765                 ret = nvme_tcp_alloc_queue(ctrl, i,
1766                                 ctrl->sqsize + 1);
1767                 if (ret)
1768                         goto out_free_queues;
1769         }
1770
1771         return 0;
1772
1773 out_free_queues:
1774         for (i--; i >= 1; i--)
1775                 nvme_tcp_free_queue(ctrl, i);
1776
1777         return ret;
1778 }
1779
1780 static unsigned int nvme_tcp_nr_io_queues(struct nvme_ctrl *ctrl)
1781 {
1782         unsigned int nr_io_queues;
1783
1784         nr_io_queues = min(ctrl->opts->nr_io_queues, num_online_cpus());
1785         nr_io_queues += min(ctrl->opts->nr_write_queues, num_online_cpus());
1786         nr_io_queues += min(ctrl->opts->nr_poll_queues, num_online_cpus());
1787
1788         return nr_io_queues;
1789 }
1790
1791 static void nvme_tcp_set_io_queues(struct nvme_ctrl *nctrl,
1792                 unsigned int nr_io_queues)
1793 {
1794         struct nvme_tcp_ctrl *ctrl = to_tcp_ctrl(nctrl);
1795         struct nvmf_ctrl_options *opts = nctrl->opts;
1796
1797         if (opts->nr_write_queues && opts->nr_io_queues < nr_io_queues) {
1798                 /*
1799                  * separate read/write queues
1800                  * hand out dedicated default queues only after we have
1801                  * sufficient read queues.
1802                  */
1803                 ctrl->io_queues[HCTX_TYPE_READ] = opts->nr_io_queues;
1804                 nr_io_queues -= ctrl->io_queues[HCTX_TYPE_READ];
1805                 ctrl->io_queues[HCTX_TYPE_DEFAULT] =
1806                         min(opts->nr_write_queues, nr_io_queues);
1807                 nr_io_queues -= ctrl->io_queues[HCTX_TYPE_DEFAULT];
1808         } else {
1809                 /*
1810                  * shared read/write queues
1811                  * either no write queues were requested, or we don't have
1812                  * sufficient queue count to have dedicated default queues.
1813                  */
1814                 ctrl->io_queues[HCTX_TYPE_DEFAULT] =
1815                         min(opts->nr_io_queues, nr_io_queues);
1816                 nr_io_queues -= ctrl->io_queues[HCTX_TYPE_DEFAULT];
1817         }
1818
1819         if (opts->nr_poll_queues && nr_io_queues) {
1820                 /* map dedicated poll queues only if we have queues left */
1821                 ctrl->io_queues[HCTX_TYPE_POLL] =
1822                         min(opts->nr_poll_queues, nr_io_queues);
1823         }
1824 }
1825
1826 static int nvme_tcp_alloc_io_queues(struct nvme_ctrl *ctrl)
1827 {
1828         unsigned int nr_io_queues;
1829         int ret;
1830
1831         nr_io_queues = nvme_tcp_nr_io_queues(ctrl);
1832         ret = nvme_set_queue_count(ctrl, &nr_io_queues);
1833         if (ret)
1834                 return ret;
1835
1836         if (nr_io_queues == 0) {
1837                 dev_err(ctrl->device,
1838                         "unable to set any I/O queues\n");
1839                 return -ENOMEM;
1840         }
1841
1842         ctrl->queue_count = nr_io_queues + 1;
1843         dev_info(ctrl->device,
1844                 "creating %d I/O queues.\n", nr_io_queues);
1845
1846         nvme_tcp_set_io_queues(ctrl, nr_io_queues);
1847
1848         return __nvme_tcp_alloc_io_queues(ctrl);
1849 }
1850
1851 static void nvme_tcp_destroy_io_queues(struct nvme_ctrl *ctrl, bool remove)
1852 {
1853         nvme_tcp_stop_io_queues(ctrl);
1854         if (remove) {
1855                 blk_cleanup_queue(ctrl->connect_q);
1856                 blk_mq_free_tag_set(ctrl->tagset);
1857         }
1858         nvme_tcp_free_io_queues(ctrl);
1859 }
1860
1861 static int nvme_tcp_configure_io_queues(struct nvme_ctrl *ctrl, bool new)
1862 {
1863         int ret;
1864
1865         ret = nvme_tcp_alloc_io_queues(ctrl);
1866         if (ret)
1867                 return ret;
1868
1869         if (new) {
1870                 ctrl->tagset = nvme_tcp_alloc_tagset(ctrl, false);
1871                 if (IS_ERR(ctrl->tagset)) {
1872                         ret = PTR_ERR(ctrl->tagset);
1873                         goto out_free_io_queues;
1874                 }
1875
1876                 ctrl->connect_q = blk_mq_init_queue(ctrl->tagset);
1877                 if (IS_ERR(ctrl->connect_q)) {
1878                         ret = PTR_ERR(ctrl->connect_q);
1879                         goto out_free_tag_set;
1880                 }
1881         }
1882
1883         ret = nvme_tcp_start_io_queues(ctrl);
1884         if (ret)
1885                 goto out_cleanup_connect_q;
1886
1887         if (!new) {
1888                 nvme_start_queues(ctrl);
1889                 if (!nvme_wait_freeze_timeout(ctrl, NVME_IO_TIMEOUT)) {
1890                         /*
1891                          * If we timed out waiting for freeze we are likely to
1892                          * be stuck.  Fail the controller initialization just
1893                          * to be safe.
1894                          */
1895                         ret = -ENODEV;
1896                         goto out_wait_freeze_timed_out;
1897                 }
1898                 blk_mq_update_nr_hw_queues(ctrl->tagset,
1899                         ctrl->queue_count - 1);
1900                 nvme_unfreeze(ctrl);
1901         }
1902
1903         return 0;
1904
1905 out_wait_freeze_timed_out:
1906         nvme_stop_queues(ctrl);
1907         nvme_sync_io_queues(ctrl);
1908         nvme_tcp_stop_io_queues(ctrl);
1909 out_cleanup_connect_q:
1910         nvme_cancel_tagset(ctrl);
1911         if (new)
1912                 blk_cleanup_queue(ctrl->connect_q);
1913 out_free_tag_set:
1914         if (new)
1915                 blk_mq_free_tag_set(ctrl->tagset);
1916 out_free_io_queues:
1917         nvme_tcp_free_io_queues(ctrl);
1918         return ret;
1919 }
1920
1921 static void nvme_tcp_destroy_admin_queue(struct nvme_ctrl *ctrl, bool remove)
1922 {
1923         nvme_tcp_stop_queue(ctrl, 0);
1924         if (remove) {
1925                 blk_cleanup_queue(ctrl->admin_q);
1926                 blk_cleanup_queue(ctrl->fabrics_q);
1927                 blk_mq_free_tag_set(ctrl->admin_tagset);
1928         }
1929         nvme_tcp_free_admin_queue(ctrl);
1930 }
1931
1932 static int nvme_tcp_configure_admin_queue(struct nvme_ctrl *ctrl, bool new)
1933 {
1934         int error;
1935
1936         error = nvme_tcp_alloc_admin_queue(ctrl);
1937         if (error)
1938                 return error;
1939
1940         if (new) {
1941                 ctrl->admin_tagset = nvme_tcp_alloc_tagset(ctrl, true);
1942                 if (IS_ERR(ctrl->admin_tagset)) {
1943                         error = PTR_ERR(ctrl->admin_tagset);
1944                         goto out_free_queue;
1945                 }
1946
1947                 ctrl->fabrics_q = blk_mq_init_queue(ctrl->admin_tagset);
1948                 if (IS_ERR(ctrl->fabrics_q)) {
1949                         error = PTR_ERR(ctrl->fabrics_q);
1950                         goto out_free_tagset;
1951                 }
1952
1953                 ctrl->admin_q = blk_mq_init_queue(ctrl->admin_tagset);
1954                 if (IS_ERR(ctrl->admin_q)) {
1955                         error = PTR_ERR(ctrl->admin_q);
1956                         goto out_cleanup_fabrics_q;
1957                 }
1958         }
1959
1960         error = nvme_tcp_start_queue(ctrl, 0);
1961         if (error)
1962                 goto out_cleanup_queue;
1963
1964         error = nvme_enable_ctrl(ctrl);
1965         if (error)
1966                 goto out_stop_queue;
1967
1968         blk_mq_unquiesce_queue(ctrl->admin_q);
1969
1970         error = nvme_init_ctrl_finish(ctrl);
1971         if (error)
1972                 goto out_quiesce_queue;
1973
1974         return 0;
1975
1976 out_quiesce_queue:
1977         blk_mq_quiesce_queue(ctrl->admin_q);
1978         blk_sync_queue(ctrl->admin_q);
1979 out_stop_queue:
1980         nvme_tcp_stop_queue(ctrl, 0);
1981         nvme_cancel_admin_tagset(ctrl);
1982 out_cleanup_queue:
1983         if (new)
1984                 blk_cleanup_queue(ctrl->admin_q);
1985 out_cleanup_fabrics_q:
1986         if (new)
1987                 blk_cleanup_queue(ctrl->fabrics_q);
1988 out_free_tagset:
1989         if (new)
1990                 blk_mq_free_tag_set(ctrl->admin_tagset);
1991 out_free_queue:
1992         nvme_tcp_free_admin_queue(ctrl);
1993         return error;
1994 }
1995
1996 static void nvme_tcp_teardown_admin_queue(struct nvme_ctrl *ctrl,
1997                 bool remove)
1998 {
1999         blk_mq_quiesce_queue(ctrl->admin_q);
2000         blk_sync_queue(ctrl->admin_q);
2001         nvme_tcp_stop_queue(ctrl, 0);
2002         nvme_cancel_admin_tagset(ctrl);
2003         if (remove)
2004                 blk_mq_unquiesce_queue(ctrl->admin_q);
2005         nvme_tcp_destroy_admin_queue(ctrl, remove);
2006 }
2007
2008 static void nvme_tcp_teardown_io_queues(struct nvme_ctrl *ctrl,
2009                 bool remove)
2010 {
2011         if (ctrl->queue_count <= 1)
2012                 return;
2013         blk_mq_quiesce_queue(ctrl->admin_q);
2014         nvme_start_freeze(ctrl);
2015         nvme_stop_queues(ctrl);
2016         nvme_sync_io_queues(ctrl);
2017         nvme_tcp_stop_io_queues(ctrl);
2018         nvme_cancel_tagset(ctrl);
2019         if (remove)
2020                 nvme_start_queues(ctrl);
2021         nvme_tcp_destroy_io_queues(ctrl, remove);
2022 }
2023
2024 static void nvme_tcp_reconnect_or_remove(struct nvme_ctrl *ctrl)
2025 {
2026         /* If we are resetting/deleting then do nothing */
2027         if (ctrl->state != NVME_CTRL_CONNECTING) {
2028                 WARN_ON_ONCE(ctrl->state == NVME_CTRL_NEW ||
2029                         ctrl->state == NVME_CTRL_LIVE);
2030                 return;
2031         }
2032
2033         if (nvmf_should_reconnect(ctrl)) {
2034                 dev_info(ctrl->device, "Reconnecting in %d seconds...\n",
2035                         ctrl->opts->reconnect_delay);
2036                 queue_delayed_work(nvme_wq, &to_tcp_ctrl(ctrl)->connect_work,
2037                                 ctrl->opts->reconnect_delay * HZ);
2038         } else {
2039                 dev_info(ctrl->device, "Removing controller...\n");
2040                 nvme_delete_ctrl(ctrl);
2041         }
2042 }
2043
2044 static int nvme_tcp_setup_ctrl(struct nvme_ctrl *ctrl, bool new)
2045 {
2046         struct nvmf_ctrl_options *opts = ctrl->opts;
2047         int ret;
2048
2049         ret = nvme_tcp_configure_admin_queue(ctrl, new);
2050         if (ret)
2051                 return ret;
2052
2053         if (ctrl->icdoff) {
2054                 ret = -EOPNOTSUPP;
2055                 dev_err(ctrl->device, "icdoff is not supported!\n");
2056                 goto destroy_admin;
2057         }
2058
2059         if (!nvme_ctrl_sgl_supported(ctrl)) {
2060                 ret = -EOPNOTSUPP;
2061                 dev_err(ctrl->device, "Mandatory sgls are not supported!\n");
2062                 goto destroy_admin;
2063         }
2064
2065         if (opts->queue_size > ctrl->sqsize + 1)
2066                 dev_warn(ctrl->device,
2067                         "queue_size %zu > ctrl sqsize %u, clamping down\n",
2068                         opts->queue_size, ctrl->sqsize + 1);
2069
2070         if (ctrl->sqsize + 1 > ctrl->maxcmd) {
2071                 dev_warn(ctrl->device,
2072                         "sqsize %u > ctrl maxcmd %u, clamping down\n",
2073                         ctrl->sqsize + 1, ctrl->maxcmd);
2074                 ctrl->sqsize = ctrl->maxcmd - 1;
2075         }
2076
2077         if (ctrl->queue_count > 1) {
2078                 ret = nvme_tcp_configure_io_queues(ctrl, new);
2079                 if (ret)
2080                         goto destroy_admin;
2081         }
2082
2083         if (!nvme_change_ctrl_state(ctrl, NVME_CTRL_LIVE)) {
2084                 /*
2085                  * state change failure is ok if we started ctrl delete,
2086                  * unless we're during creation of a new controller to
2087                  * avoid races with teardown flow.
2088                  */
2089                 WARN_ON_ONCE(ctrl->state != NVME_CTRL_DELETING &&
2090                              ctrl->state != NVME_CTRL_DELETING_NOIO);
2091                 WARN_ON_ONCE(new);
2092                 ret = -EINVAL;
2093                 goto destroy_io;
2094         }
2095
2096         nvme_start_ctrl(ctrl);
2097         return 0;
2098
2099 destroy_io:
2100         if (ctrl->queue_count > 1) {
2101                 nvme_stop_queues(ctrl);
2102                 nvme_sync_io_queues(ctrl);
2103                 nvme_tcp_stop_io_queues(ctrl);
2104                 nvme_cancel_tagset(ctrl);
2105                 nvme_tcp_destroy_io_queues(ctrl, new);
2106         }
2107 destroy_admin:
2108         blk_mq_quiesce_queue(ctrl->admin_q);
2109         blk_sync_queue(ctrl->admin_q);
2110         nvme_tcp_stop_queue(ctrl, 0);
2111         nvme_cancel_admin_tagset(ctrl);
2112         nvme_tcp_destroy_admin_queue(ctrl, new);
2113         return ret;
2114 }
2115
2116 static void nvme_tcp_reconnect_ctrl_work(struct work_struct *work)
2117 {
2118         struct nvme_tcp_ctrl *tcp_ctrl = container_of(to_delayed_work(work),
2119                         struct nvme_tcp_ctrl, connect_work);
2120         struct nvme_ctrl *ctrl = &tcp_ctrl->ctrl;
2121
2122         ++ctrl->nr_reconnects;
2123
2124         if (nvme_tcp_setup_ctrl(ctrl, false))
2125                 goto requeue;
2126
2127         dev_info(ctrl->device, "Successfully reconnected (%d attempt)\n",
2128                         ctrl->nr_reconnects);
2129
2130         ctrl->nr_reconnects = 0;
2131
2132         return;
2133
2134 requeue:
2135         dev_info(ctrl->device, "Failed reconnect attempt %d\n",
2136                         ctrl->nr_reconnects);
2137         nvme_tcp_reconnect_or_remove(ctrl);
2138 }
2139
2140 static void nvme_tcp_error_recovery_work(struct work_struct *work)
2141 {
2142         struct nvme_tcp_ctrl *tcp_ctrl = container_of(work,
2143                                 struct nvme_tcp_ctrl, err_work);
2144         struct nvme_ctrl *ctrl = &tcp_ctrl->ctrl;
2145
2146         nvme_stop_keep_alive(ctrl);
2147         flush_work(&ctrl->async_event_work);
2148         nvme_tcp_teardown_io_queues(ctrl, false);
2149         /* unquiesce to fail fast pending requests */
2150         nvme_start_queues(ctrl);
2151         nvme_tcp_teardown_admin_queue(ctrl, false);
2152         blk_mq_unquiesce_queue(ctrl->admin_q);
2153
2154         if (!nvme_change_ctrl_state(ctrl, NVME_CTRL_CONNECTING)) {
2155                 /* state change failure is ok if we started ctrl delete */
2156                 WARN_ON_ONCE(ctrl->state != NVME_CTRL_DELETING &&
2157                              ctrl->state != NVME_CTRL_DELETING_NOIO);
2158                 return;
2159         }
2160
2161         nvme_tcp_reconnect_or_remove(ctrl);
2162 }
2163
2164 static void nvme_tcp_teardown_ctrl(struct nvme_ctrl *ctrl, bool shutdown)
2165 {
2166         nvme_tcp_teardown_io_queues(ctrl, shutdown);
2167         blk_mq_quiesce_queue(ctrl->admin_q);
2168         if (shutdown)
2169                 nvme_shutdown_ctrl(ctrl);
2170         else
2171                 nvme_disable_ctrl(ctrl);
2172         nvme_tcp_teardown_admin_queue(ctrl, shutdown);
2173 }
2174
2175 static void nvme_tcp_delete_ctrl(struct nvme_ctrl *ctrl)
2176 {
2177         nvme_tcp_teardown_ctrl(ctrl, true);
2178 }
2179
2180 static void nvme_reset_ctrl_work(struct work_struct *work)
2181 {
2182         struct nvme_ctrl *ctrl =
2183                 container_of(work, struct nvme_ctrl, reset_work);
2184
2185         nvme_stop_ctrl(ctrl);
2186         nvme_tcp_teardown_ctrl(ctrl, false);
2187
2188         if (!nvme_change_ctrl_state(ctrl, NVME_CTRL_CONNECTING)) {
2189                 /* state change failure is ok if we started ctrl delete */
2190                 WARN_ON_ONCE(ctrl->state != NVME_CTRL_DELETING &&
2191                              ctrl->state != NVME_CTRL_DELETING_NOIO);
2192                 return;
2193         }
2194
2195         if (nvme_tcp_setup_ctrl(ctrl, false))
2196                 goto out_fail;
2197
2198         return;
2199
2200 out_fail:
2201         ++ctrl->nr_reconnects;
2202         nvme_tcp_reconnect_or_remove(ctrl);
2203 }
2204
2205 static void nvme_tcp_stop_ctrl(struct nvme_ctrl *ctrl)
2206 {
2207         cancel_work_sync(&to_tcp_ctrl(ctrl)->err_work);
2208         cancel_delayed_work_sync(&to_tcp_ctrl(ctrl)->connect_work);
2209 }
2210
2211 static void nvme_tcp_free_ctrl(struct nvme_ctrl *nctrl)
2212 {
2213         struct nvme_tcp_ctrl *ctrl = to_tcp_ctrl(nctrl);
2214
2215         if (list_empty(&ctrl->list))
2216                 goto free_ctrl;
2217
2218         mutex_lock(&nvme_tcp_ctrl_mutex);
2219         list_del(&ctrl->list);
2220         mutex_unlock(&nvme_tcp_ctrl_mutex);
2221
2222         nvmf_free_options(nctrl->opts);
2223 free_ctrl:
2224         kfree(ctrl->queues);
2225         kfree(ctrl);
2226 }
2227
2228 static void nvme_tcp_set_sg_null(struct nvme_command *c)
2229 {
2230         struct nvme_sgl_desc *sg = &c->common.dptr.sgl;
2231
2232         sg->addr = 0;
2233         sg->length = 0;
2234         sg->type = (NVME_TRANSPORT_SGL_DATA_DESC << 4) |
2235                         NVME_SGL_FMT_TRANSPORT_A;
2236 }
2237
2238 static void nvme_tcp_set_sg_inline(struct nvme_tcp_queue *queue,
2239                 struct nvme_command *c, u32 data_len)
2240 {
2241         struct nvme_sgl_desc *sg = &c->common.dptr.sgl;
2242
2243         sg->addr = cpu_to_le64(queue->ctrl->ctrl.icdoff);
2244         sg->length = cpu_to_le32(data_len);
2245         sg->type = (NVME_SGL_FMT_DATA_DESC << 4) | NVME_SGL_FMT_OFFSET;
2246 }
2247
2248 static void nvme_tcp_set_sg_host_data(struct nvme_command *c,
2249                 u32 data_len)
2250 {
2251         struct nvme_sgl_desc *sg = &c->common.dptr.sgl;
2252
2253         sg->addr = 0;
2254         sg->length = cpu_to_le32(data_len);
2255         sg->type = (NVME_TRANSPORT_SGL_DATA_DESC << 4) |
2256                         NVME_SGL_FMT_TRANSPORT_A;
2257 }
2258
2259 static void nvme_tcp_submit_async_event(struct nvme_ctrl *arg)
2260 {
2261         struct nvme_tcp_ctrl *ctrl = to_tcp_ctrl(arg);
2262         struct nvme_tcp_queue *queue = &ctrl->queues[0];
2263         struct nvme_tcp_cmd_pdu *pdu = ctrl->async_req.pdu;
2264         struct nvme_command *cmd = &pdu->cmd;
2265         u8 hdgst = nvme_tcp_hdgst_len(queue);
2266
2267         memset(pdu, 0, sizeof(*pdu));
2268         pdu->hdr.type = nvme_tcp_cmd;
2269         if (queue->hdr_digest)
2270                 pdu->hdr.flags |= NVME_TCP_F_HDGST;
2271         pdu->hdr.hlen = sizeof(*pdu);
2272         pdu->hdr.plen = cpu_to_le32(pdu->hdr.hlen + hdgst);
2273
2274         cmd->common.opcode = nvme_admin_async_event;
2275         cmd->common.command_id = NVME_AQ_BLK_MQ_DEPTH;
2276         cmd->common.flags |= NVME_CMD_SGL_METABUF;
2277         nvme_tcp_set_sg_null(cmd);
2278
2279         ctrl->async_req.state = NVME_TCP_SEND_CMD_PDU;
2280         ctrl->async_req.offset = 0;
2281         ctrl->async_req.curr_bio = NULL;
2282         ctrl->async_req.data_len = 0;
2283
2284         nvme_tcp_queue_request(&ctrl->async_req, true, true);
2285 }
2286
2287 static void nvme_tcp_complete_timed_out(struct request *rq)
2288 {
2289         struct nvme_tcp_request *req = blk_mq_rq_to_pdu(rq);
2290         struct nvme_ctrl *ctrl = &req->queue->ctrl->ctrl;
2291
2292         nvme_tcp_stop_queue(ctrl, nvme_tcp_queue_id(req->queue));
2293         if (blk_mq_request_started(rq) && !blk_mq_request_completed(rq)) {
2294                 nvme_req(rq)->status = NVME_SC_HOST_ABORTED_CMD;
2295                 blk_mq_complete_request(rq);
2296         }
2297 }
2298
2299 static enum blk_eh_timer_return
2300 nvme_tcp_timeout(struct request *rq, bool reserved)
2301 {
2302         struct nvme_tcp_request *req = blk_mq_rq_to_pdu(rq);
2303         struct nvme_ctrl *ctrl = &req->queue->ctrl->ctrl;
2304         struct nvme_tcp_cmd_pdu *pdu = req->pdu;
2305
2306         dev_warn(ctrl->device,
2307                 "queue %d: timeout request %#x type %d\n",
2308                 nvme_tcp_queue_id(req->queue), rq->tag, pdu->hdr.type);
2309
2310         if (ctrl->state != NVME_CTRL_LIVE) {
2311                 /*
2312                  * If we are resetting, connecting or deleting we should
2313                  * complete immediately because we may block controller
2314                  * teardown or setup sequence
2315                  * - ctrl disable/shutdown fabrics requests
2316                  * - connect requests
2317                  * - initialization admin requests
2318                  * - I/O requests that entered after unquiescing and
2319                  *   the controller stopped responding
2320                  *
2321                  * All other requests should be cancelled by the error
2322                  * recovery work, so it's fine that we fail it here.
2323                  */
2324                 nvme_tcp_complete_timed_out(rq);
2325                 return BLK_EH_DONE;
2326         }
2327
2328         /*
2329          * LIVE state should trigger the normal error recovery which will
2330          * handle completing this request.
2331          */
2332         nvme_tcp_error_recovery(ctrl);
2333         return BLK_EH_RESET_TIMER;
2334 }
2335
2336 static blk_status_t nvme_tcp_map_data(struct nvme_tcp_queue *queue,
2337                         struct request *rq)
2338 {
2339         struct nvme_tcp_request *req = blk_mq_rq_to_pdu(rq);
2340         struct nvme_tcp_cmd_pdu *pdu = req->pdu;
2341         struct nvme_command *c = &pdu->cmd;
2342
2343         c->common.flags |= NVME_CMD_SGL_METABUF;
2344
2345         if (!blk_rq_nr_phys_segments(rq))
2346                 nvme_tcp_set_sg_null(c);
2347         else if (rq_data_dir(rq) == WRITE &&
2348             req->data_len <= nvme_tcp_inline_data_size(queue))
2349                 nvme_tcp_set_sg_inline(queue, c, req->data_len);
2350         else
2351                 nvme_tcp_set_sg_host_data(c, req->data_len);
2352
2353         return 0;
2354 }
2355
2356 static blk_status_t nvme_tcp_setup_cmd_pdu(struct nvme_ns *ns,
2357                 struct request *rq)
2358 {
2359         struct nvme_tcp_request *req = blk_mq_rq_to_pdu(rq);
2360         struct nvme_tcp_cmd_pdu *pdu = req->pdu;
2361         struct nvme_tcp_queue *queue = req->queue;
2362         u8 hdgst = nvme_tcp_hdgst_len(queue), ddgst = 0;
2363         blk_status_t ret;
2364
2365         ret = nvme_setup_cmd(ns, rq);
2366         if (ret)
2367                 return ret;
2368
2369         req->state = NVME_TCP_SEND_CMD_PDU;
2370         req->status = cpu_to_le16(NVME_SC_SUCCESS);
2371         req->offset = 0;
2372         req->data_sent = 0;
2373         req->pdu_len = 0;
2374         req->pdu_sent = 0;
2375         req->data_len = blk_rq_nr_phys_segments(rq) ?
2376                                 blk_rq_payload_bytes(rq) : 0;
2377         req->curr_bio = rq->bio;
2378         if (req->curr_bio && req->data_len)
2379                 nvme_tcp_init_iter(req, rq_data_dir(rq));
2380
2381         if (rq_data_dir(rq) == WRITE &&
2382             req->data_len <= nvme_tcp_inline_data_size(queue))
2383                 req->pdu_len = req->data_len;
2384
2385         pdu->hdr.type = nvme_tcp_cmd;
2386         pdu->hdr.flags = 0;
2387         if (queue->hdr_digest)
2388                 pdu->hdr.flags |= NVME_TCP_F_HDGST;
2389         if (queue->data_digest && req->pdu_len) {
2390                 pdu->hdr.flags |= NVME_TCP_F_DDGST;
2391                 ddgst = nvme_tcp_ddgst_len(queue);
2392         }
2393         pdu->hdr.hlen = sizeof(*pdu);
2394         pdu->hdr.pdo = req->pdu_len ? pdu->hdr.hlen + hdgst : 0;
2395         pdu->hdr.plen =
2396                 cpu_to_le32(pdu->hdr.hlen + hdgst + req->pdu_len + ddgst);
2397
2398         ret = nvme_tcp_map_data(queue, rq);
2399         if (unlikely(ret)) {
2400                 nvme_cleanup_cmd(rq);
2401                 dev_err(queue->ctrl->ctrl.device,
2402                         "Failed to map data (%d)\n", ret);
2403                 return ret;
2404         }
2405
2406         return 0;
2407 }
2408
2409 static void nvme_tcp_commit_rqs(struct blk_mq_hw_ctx *hctx)
2410 {
2411         struct nvme_tcp_queue *queue = hctx->driver_data;
2412
2413         if (!llist_empty(&queue->req_list))
2414                 queue_work_on(queue->io_cpu, nvme_tcp_wq, &queue->io_work);
2415 }
2416
2417 static blk_status_t nvme_tcp_queue_rq(struct blk_mq_hw_ctx *hctx,
2418                 const struct blk_mq_queue_data *bd)
2419 {
2420         struct nvme_ns *ns = hctx->queue->queuedata;
2421         struct nvme_tcp_queue *queue = hctx->driver_data;
2422         struct request *rq = bd->rq;
2423         struct nvme_tcp_request *req = blk_mq_rq_to_pdu(rq);
2424         bool queue_ready = test_bit(NVME_TCP_Q_LIVE, &queue->flags);
2425         blk_status_t ret;
2426
2427         if (!nvme_check_ready(&queue->ctrl->ctrl, rq, queue_ready))
2428                 return nvme_fail_nonready_command(&queue->ctrl->ctrl, rq);
2429
2430         ret = nvme_tcp_setup_cmd_pdu(ns, rq);
2431         if (unlikely(ret))
2432                 return ret;
2433
2434         blk_mq_start_request(rq);
2435
2436         nvme_tcp_queue_request(req, true, bd->last);
2437
2438         return BLK_STS_OK;
2439 }
2440
2441 static int nvme_tcp_map_queues(struct blk_mq_tag_set *set)
2442 {
2443         struct nvme_tcp_ctrl *ctrl = set->driver_data;
2444         struct nvmf_ctrl_options *opts = ctrl->ctrl.opts;
2445
2446         if (opts->nr_write_queues && ctrl->io_queues[HCTX_TYPE_READ]) {
2447                 /* separate read/write queues */
2448                 set->map[HCTX_TYPE_DEFAULT].nr_queues =
2449                         ctrl->io_queues[HCTX_TYPE_DEFAULT];
2450                 set->map[HCTX_TYPE_DEFAULT].queue_offset = 0;
2451                 set->map[HCTX_TYPE_READ].nr_queues =
2452                         ctrl->io_queues[HCTX_TYPE_READ];
2453                 set->map[HCTX_TYPE_READ].queue_offset =
2454                         ctrl->io_queues[HCTX_TYPE_DEFAULT];
2455         } else {
2456                 /* shared read/write queues */
2457                 set->map[HCTX_TYPE_DEFAULT].nr_queues =
2458                         ctrl->io_queues[HCTX_TYPE_DEFAULT];
2459                 set->map[HCTX_TYPE_DEFAULT].queue_offset = 0;
2460                 set->map[HCTX_TYPE_READ].nr_queues =
2461                         ctrl->io_queues[HCTX_TYPE_DEFAULT];
2462                 set->map[HCTX_TYPE_READ].queue_offset = 0;
2463         }
2464         blk_mq_map_queues(&set->map[HCTX_TYPE_DEFAULT]);
2465         blk_mq_map_queues(&set->map[HCTX_TYPE_READ]);
2466
2467         if (opts->nr_poll_queues && ctrl->io_queues[HCTX_TYPE_POLL]) {
2468                 /* map dedicated poll queues only if we have queues left */
2469                 set->map[HCTX_TYPE_POLL].nr_queues =
2470                                 ctrl->io_queues[HCTX_TYPE_POLL];
2471                 set->map[HCTX_TYPE_POLL].queue_offset =
2472                         ctrl->io_queues[HCTX_TYPE_DEFAULT] +
2473                         ctrl->io_queues[HCTX_TYPE_READ];
2474                 blk_mq_map_queues(&set->map[HCTX_TYPE_POLL]);
2475         }
2476
2477         dev_info(ctrl->ctrl.device,
2478                 "mapped %d/%d/%d default/read/poll queues.\n",
2479                 ctrl->io_queues[HCTX_TYPE_DEFAULT],
2480                 ctrl->io_queues[HCTX_TYPE_READ],
2481                 ctrl->io_queues[HCTX_TYPE_POLL]);
2482
2483         return 0;
2484 }
2485
2486 static int nvme_tcp_poll(struct blk_mq_hw_ctx *hctx)
2487 {
2488         struct nvme_tcp_queue *queue = hctx->driver_data;
2489         struct sock *sk = queue->sock->sk;
2490
2491         if (!test_bit(NVME_TCP_Q_LIVE, &queue->flags))
2492                 return 0;
2493
2494         set_bit(NVME_TCP_Q_POLLING, &queue->flags);
2495         if (sk_can_busy_loop(sk) && skb_queue_empty_lockless(&sk->sk_receive_queue))
2496                 sk_busy_loop(sk, true);
2497         nvme_tcp_try_recv(queue);
2498         clear_bit(NVME_TCP_Q_POLLING, &queue->flags);
2499         return queue->nr_cqe;
2500 }
2501
2502 static const struct blk_mq_ops nvme_tcp_mq_ops = {
2503         .queue_rq       = nvme_tcp_queue_rq,
2504         .commit_rqs     = nvme_tcp_commit_rqs,
2505         .complete       = nvme_complete_rq,
2506         .init_request   = nvme_tcp_init_request,
2507         .exit_request   = nvme_tcp_exit_request,
2508         .init_hctx      = nvme_tcp_init_hctx,
2509         .timeout        = nvme_tcp_timeout,
2510         .map_queues     = nvme_tcp_map_queues,
2511         .poll           = nvme_tcp_poll,
2512 };
2513
2514 static const struct blk_mq_ops nvme_tcp_admin_mq_ops = {
2515         .queue_rq       = nvme_tcp_queue_rq,
2516         .complete       = nvme_complete_rq,
2517         .init_request   = nvme_tcp_init_request,
2518         .exit_request   = nvme_tcp_exit_request,
2519         .init_hctx      = nvme_tcp_init_admin_hctx,
2520         .timeout        = nvme_tcp_timeout,
2521 };
2522
2523 static const struct nvme_ctrl_ops nvme_tcp_ctrl_ops = {
2524         .name                   = "tcp",
2525         .module                 = THIS_MODULE,
2526         .flags                  = NVME_F_FABRICS,
2527         .reg_read32             = nvmf_reg_read32,
2528         .reg_read64             = nvmf_reg_read64,
2529         .reg_write32            = nvmf_reg_write32,
2530         .free_ctrl              = nvme_tcp_free_ctrl,
2531         .submit_async_event     = nvme_tcp_submit_async_event,
2532         .delete_ctrl            = nvme_tcp_delete_ctrl,
2533         .get_address            = nvmf_get_address,
2534         .stop_ctrl              = nvme_tcp_stop_ctrl,
2535 };
2536
2537 static bool
2538 nvme_tcp_existing_controller(struct nvmf_ctrl_options *opts)
2539 {
2540         struct nvme_tcp_ctrl *ctrl;
2541         bool found = false;
2542
2543         mutex_lock(&nvme_tcp_ctrl_mutex);
2544         list_for_each_entry(ctrl, &nvme_tcp_ctrl_list, list) {
2545                 found = nvmf_ip_options_match(&ctrl->ctrl, opts);
2546                 if (found)
2547                         break;
2548         }
2549         mutex_unlock(&nvme_tcp_ctrl_mutex);
2550
2551         return found;
2552 }
2553
2554 static struct nvme_ctrl *nvme_tcp_create_ctrl(struct device *dev,
2555                 struct nvmf_ctrl_options *opts)
2556 {
2557         struct nvme_tcp_ctrl *ctrl;
2558         int ret;
2559
2560         ctrl = kzalloc(sizeof(*ctrl), GFP_KERNEL);
2561         if (!ctrl)
2562                 return ERR_PTR(-ENOMEM);
2563
2564         INIT_LIST_HEAD(&ctrl->list);
2565         ctrl->ctrl.opts = opts;
2566         ctrl->ctrl.queue_count = opts->nr_io_queues + opts->nr_write_queues +
2567                                 opts->nr_poll_queues + 1;
2568         ctrl->ctrl.sqsize = opts->queue_size - 1;
2569         ctrl->ctrl.kato = opts->kato;
2570
2571         INIT_DELAYED_WORK(&ctrl->connect_work,
2572                         nvme_tcp_reconnect_ctrl_work);
2573         INIT_WORK(&ctrl->err_work, nvme_tcp_error_recovery_work);
2574         INIT_WORK(&ctrl->ctrl.reset_work, nvme_reset_ctrl_work);
2575
2576         if (!(opts->mask & NVMF_OPT_TRSVCID)) {
2577                 opts->trsvcid =
2578                         kstrdup(__stringify(NVME_TCP_DISC_PORT), GFP_KERNEL);
2579                 if (!opts->trsvcid) {
2580                         ret = -ENOMEM;
2581                         goto out_free_ctrl;
2582                 }
2583                 opts->mask |= NVMF_OPT_TRSVCID;
2584         }
2585
2586         ret = inet_pton_with_scope(&init_net, AF_UNSPEC,
2587                         opts->traddr, opts->trsvcid, &ctrl->addr);
2588         if (ret) {
2589                 pr_err("malformed address passed: %s:%s\n",
2590                         opts->traddr, opts->trsvcid);
2591                 goto out_free_ctrl;
2592         }
2593
2594         if (opts->mask & NVMF_OPT_HOST_TRADDR) {
2595                 ret = inet_pton_with_scope(&init_net, AF_UNSPEC,
2596                         opts->host_traddr, NULL, &ctrl->src_addr);
2597                 if (ret) {
2598                         pr_err("malformed src address passed: %s\n",
2599                                opts->host_traddr);
2600                         goto out_free_ctrl;
2601                 }
2602         }
2603
2604         if (opts->mask & NVMF_OPT_HOST_IFACE) {
2605                 if (!__dev_get_by_name(&init_net, opts->host_iface)) {
2606                         pr_err("invalid interface passed: %s\n",
2607                                opts->host_iface);
2608                         ret = -ENODEV;
2609                         goto out_free_ctrl;
2610                 }
2611         }
2612
2613         if (!opts->duplicate_connect && nvme_tcp_existing_controller(opts)) {
2614                 ret = -EALREADY;
2615                 goto out_free_ctrl;
2616         }
2617
2618         ctrl->queues = kcalloc(ctrl->ctrl.queue_count, sizeof(*ctrl->queues),
2619                                 GFP_KERNEL);
2620         if (!ctrl->queues) {
2621                 ret = -ENOMEM;
2622                 goto out_free_ctrl;
2623         }
2624
2625         ret = nvme_init_ctrl(&ctrl->ctrl, dev, &nvme_tcp_ctrl_ops, 0);
2626         if (ret)
2627                 goto out_kfree_queues;
2628
2629         if (!nvme_change_ctrl_state(&ctrl->ctrl, NVME_CTRL_CONNECTING)) {
2630                 WARN_ON_ONCE(1);
2631                 ret = -EINTR;
2632                 goto out_uninit_ctrl;
2633         }
2634
2635         ret = nvme_tcp_setup_ctrl(&ctrl->ctrl, true);
2636         if (ret)
2637                 goto out_uninit_ctrl;
2638
2639         dev_info(ctrl->ctrl.device, "new ctrl: NQN \"%s\", addr %pISp\n",
2640                 ctrl->ctrl.opts->subsysnqn, &ctrl->addr);
2641
2642         mutex_lock(&nvme_tcp_ctrl_mutex);
2643         list_add_tail(&ctrl->list, &nvme_tcp_ctrl_list);
2644         mutex_unlock(&nvme_tcp_ctrl_mutex);
2645
2646         return &ctrl->ctrl;
2647
2648 out_uninit_ctrl:
2649         nvme_uninit_ctrl(&ctrl->ctrl);
2650         nvme_put_ctrl(&ctrl->ctrl);
2651         if (ret > 0)
2652                 ret = -EIO;
2653         return ERR_PTR(ret);
2654 out_kfree_queues:
2655         kfree(ctrl->queues);
2656 out_free_ctrl:
2657         kfree(ctrl);
2658         return ERR_PTR(ret);
2659 }
2660
2661 static struct nvmf_transport_ops nvme_tcp_transport = {
2662         .name           = "tcp",
2663         .module         = THIS_MODULE,
2664         .required_opts  = NVMF_OPT_TRADDR,
2665         .allowed_opts   = NVMF_OPT_TRSVCID | NVMF_OPT_RECONNECT_DELAY |
2666                           NVMF_OPT_HOST_TRADDR | NVMF_OPT_CTRL_LOSS_TMO |
2667                           NVMF_OPT_HDR_DIGEST | NVMF_OPT_DATA_DIGEST |
2668                           NVMF_OPT_NR_WRITE_QUEUES | NVMF_OPT_NR_POLL_QUEUES |
2669                           NVMF_OPT_TOS | NVMF_OPT_HOST_IFACE,
2670         .create_ctrl    = nvme_tcp_create_ctrl,
2671 };
2672
2673 static int __init nvme_tcp_init_module(void)
2674 {
2675         nvme_tcp_wq = alloc_workqueue("nvme_tcp_wq",
2676                         WQ_MEM_RECLAIM | WQ_HIGHPRI, 0);
2677         if (!nvme_tcp_wq)
2678                 return -ENOMEM;
2679
2680         nvmf_register_transport(&nvme_tcp_transport);
2681         return 0;
2682 }
2683
2684 static void __exit nvme_tcp_cleanup_module(void)
2685 {
2686         struct nvme_tcp_ctrl *ctrl;
2687
2688         nvmf_unregister_transport(&nvme_tcp_transport);
2689
2690         mutex_lock(&nvme_tcp_ctrl_mutex);
2691         list_for_each_entry(ctrl, &nvme_tcp_ctrl_list, list)
2692                 nvme_delete_ctrl(&ctrl->ctrl);
2693         mutex_unlock(&nvme_tcp_ctrl_mutex);
2694         flush_workqueue(nvme_delete_wq);
2695
2696         destroy_workqueue(nvme_tcp_wq);
2697 }
2698
2699 module_init(nvme_tcp_init_module);
2700 module_exit(nvme_tcp_cleanup_module);
2701
2702 MODULE_LICENSE("GPL v2");