1*4882a593Smuzhiyun /*
2*4882a593Smuzhiyun * Copyright IBM Corporation, 2015
3*4882a593Smuzhiyun * Author Aneesh Kumar K.V <aneesh.kumar@linux.ibm.com>
4*4882a593Smuzhiyun *
5*4882a593Smuzhiyun * This program is free software; you can redistribute it and/or modify it
6*4882a593Smuzhiyun * under the terms of version 2 of the GNU Lesser General Public License
7*4882a593Smuzhiyun * as published by the Free Software Foundation.
8*4882a593Smuzhiyun *
9*4882a593Smuzhiyun * This program is distributed in the hope that it would be useful, but
10*4882a593Smuzhiyun * WITHOUT ANY WARRANTY; without even the implied warranty of
11*4882a593Smuzhiyun * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.
12*4882a593Smuzhiyun *
13*4882a593Smuzhiyun */
14*4882a593Smuzhiyun
15*4882a593Smuzhiyun #include <linux/mm.h>
16*4882a593Smuzhiyun #include <asm/machdep.h>
17*4882a593Smuzhiyun #include <asm/mmu.h>
18*4882a593Smuzhiyun
19*4882a593Smuzhiyun /*
20*4882a593Smuzhiyun * Return true, if the entry has a slot value which
21*4882a593Smuzhiyun * the software considers as invalid.
22*4882a593Smuzhiyun */
hpte_soft_invalid(unsigned long hidx)23*4882a593Smuzhiyun static inline bool hpte_soft_invalid(unsigned long hidx)
24*4882a593Smuzhiyun {
25*4882a593Smuzhiyun return ((hidx & 0xfUL) == 0xfUL);
26*4882a593Smuzhiyun }
27*4882a593Smuzhiyun
28*4882a593Smuzhiyun /*
29*4882a593Smuzhiyun * index from 0 - 15
30*4882a593Smuzhiyun */
__rpte_sub_valid(real_pte_t rpte,unsigned long index)31*4882a593Smuzhiyun bool __rpte_sub_valid(real_pte_t rpte, unsigned long index)
32*4882a593Smuzhiyun {
33*4882a593Smuzhiyun return !(hpte_soft_invalid(__rpte_to_hidx(rpte, index)));
34*4882a593Smuzhiyun }
35*4882a593Smuzhiyun
__hash_page_4K(unsigned long ea,unsigned long access,unsigned long vsid,pte_t * ptep,unsigned long trap,unsigned long flags,int ssize,int subpg_prot)36*4882a593Smuzhiyun int __hash_page_4K(unsigned long ea, unsigned long access, unsigned long vsid,
37*4882a593Smuzhiyun pte_t *ptep, unsigned long trap, unsigned long flags,
38*4882a593Smuzhiyun int ssize, int subpg_prot)
39*4882a593Smuzhiyun {
40*4882a593Smuzhiyun real_pte_t rpte;
41*4882a593Smuzhiyun unsigned long hpte_group;
42*4882a593Smuzhiyun unsigned int subpg_index;
43*4882a593Smuzhiyun unsigned long rflags, pa;
44*4882a593Smuzhiyun unsigned long old_pte, new_pte, subpg_pte;
45*4882a593Smuzhiyun unsigned long vpn, hash, slot, gslot;
46*4882a593Smuzhiyun unsigned long shift = mmu_psize_defs[MMU_PAGE_4K].shift;
47*4882a593Smuzhiyun
48*4882a593Smuzhiyun /*
49*4882a593Smuzhiyun * atomically mark the linux large page PTE busy and dirty
50*4882a593Smuzhiyun */
51*4882a593Smuzhiyun do {
52*4882a593Smuzhiyun pte_t pte = READ_ONCE(*ptep);
53*4882a593Smuzhiyun
54*4882a593Smuzhiyun old_pte = pte_val(pte);
55*4882a593Smuzhiyun /* If PTE busy, retry the access */
56*4882a593Smuzhiyun if (unlikely(old_pte & H_PAGE_BUSY))
57*4882a593Smuzhiyun return 0;
58*4882a593Smuzhiyun /* If PTE permissions don't match, take page fault */
59*4882a593Smuzhiyun if (unlikely(!check_pte_access(access, old_pte)))
60*4882a593Smuzhiyun return 1;
61*4882a593Smuzhiyun /*
62*4882a593Smuzhiyun * Try to lock the PTE, add ACCESSED and DIRTY if it was
63*4882a593Smuzhiyun * a write access. Since this is 4K insert of 64K page size
64*4882a593Smuzhiyun * also add H_PAGE_COMBO
65*4882a593Smuzhiyun */
66*4882a593Smuzhiyun new_pte = old_pte | H_PAGE_BUSY | _PAGE_ACCESSED | H_PAGE_COMBO;
67*4882a593Smuzhiyun if (access & _PAGE_WRITE)
68*4882a593Smuzhiyun new_pte |= _PAGE_DIRTY;
69*4882a593Smuzhiyun } while (!pte_xchg(ptep, __pte(old_pte), __pte(new_pte)));
70*4882a593Smuzhiyun
71*4882a593Smuzhiyun /*
72*4882a593Smuzhiyun * Handle the subpage protection bits
73*4882a593Smuzhiyun */
74*4882a593Smuzhiyun subpg_pte = new_pte & ~subpg_prot;
75*4882a593Smuzhiyun rflags = htab_convert_pte_flags(subpg_pte);
76*4882a593Smuzhiyun
77*4882a593Smuzhiyun if (cpu_has_feature(CPU_FTR_NOEXECUTE) &&
78*4882a593Smuzhiyun !cpu_has_feature(CPU_FTR_COHERENT_ICACHE)) {
79*4882a593Smuzhiyun
80*4882a593Smuzhiyun /*
81*4882a593Smuzhiyun * No CPU has hugepages but lacks no execute, so we
82*4882a593Smuzhiyun * don't need to worry about that case
83*4882a593Smuzhiyun */
84*4882a593Smuzhiyun rflags = hash_page_do_lazy_icache(rflags, __pte(old_pte), trap);
85*4882a593Smuzhiyun }
86*4882a593Smuzhiyun
87*4882a593Smuzhiyun subpg_index = (ea & (PAGE_SIZE - 1)) >> shift;
88*4882a593Smuzhiyun vpn = hpt_vpn(ea, vsid, ssize);
89*4882a593Smuzhiyun rpte = __real_pte(__pte(old_pte), ptep, PTRS_PER_PTE);
90*4882a593Smuzhiyun /*
91*4882a593Smuzhiyun *None of the sub 4k page is hashed
92*4882a593Smuzhiyun */
93*4882a593Smuzhiyun if (!(old_pte & H_PAGE_HASHPTE))
94*4882a593Smuzhiyun goto htab_insert_hpte;
95*4882a593Smuzhiyun /*
96*4882a593Smuzhiyun * Check if the pte was already inserted into the hash table
97*4882a593Smuzhiyun * as a 64k HW page, and invalidate the 64k HPTE if so.
98*4882a593Smuzhiyun */
99*4882a593Smuzhiyun if (!(old_pte & H_PAGE_COMBO)) {
100*4882a593Smuzhiyun flush_hash_page(vpn, rpte, MMU_PAGE_64K, ssize, flags);
101*4882a593Smuzhiyun /*
102*4882a593Smuzhiyun * clear the old slot details from the old and new pte.
103*4882a593Smuzhiyun * On hash insert failure we use old pte value and we don't
104*4882a593Smuzhiyun * want slot information there if we have a insert failure.
105*4882a593Smuzhiyun */
106*4882a593Smuzhiyun old_pte &= ~H_PAGE_HASHPTE;
107*4882a593Smuzhiyun new_pte &= ~H_PAGE_HASHPTE;
108*4882a593Smuzhiyun goto htab_insert_hpte;
109*4882a593Smuzhiyun }
110*4882a593Smuzhiyun /*
111*4882a593Smuzhiyun * Check for sub page valid and update
112*4882a593Smuzhiyun */
113*4882a593Smuzhiyun if (__rpte_sub_valid(rpte, subpg_index)) {
114*4882a593Smuzhiyun int ret;
115*4882a593Smuzhiyun
116*4882a593Smuzhiyun gslot = pte_get_hash_gslot(vpn, shift, ssize, rpte,
117*4882a593Smuzhiyun subpg_index);
118*4882a593Smuzhiyun ret = mmu_hash_ops.hpte_updatepp(gslot, rflags, vpn,
119*4882a593Smuzhiyun MMU_PAGE_4K, MMU_PAGE_4K,
120*4882a593Smuzhiyun ssize, flags);
121*4882a593Smuzhiyun
122*4882a593Smuzhiyun /*
123*4882a593Smuzhiyun * If we failed because typically the HPTE wasn't really here
124*4882a593Smuzhiyun * we try an insertion.
125*4882a593Smuzhiyun */
126*4882a593Smuzhiyun if (ret == -1)
127*4882a593Smuzhiyun goto htab_insert_hpte;
128*4882a593Smuzhiyun
129*4882a593Smuzhiyun *ptep = __pte(new_pte & ~H_PAGE_BUSY);
130*4882a593Smuzhiyun return 0;
131*4882a593Smuzhiyun }
132*4882a593Smuzhiyun
133*4882a593Smuzhiyun htab_insert_hpte:
134*4882a593Smuzhiyun
135*4882a593Smuzhiyun /*
136*4882a593Smuzhiyun * Initialize all hidx entries to invalid value, the first time
137*4882a593Smuzhiyun * the PTE is about to allocate a 4K HPTE.
138*4882a593Smuzhiyun */
139*4882a593Smuzhiyun if (!(old_pte & H_PAGE_COMBO))
140*4882a593Smuzhiyun rpte.hidx = INVALID_RPTE_HIDX;
141*4882a593Smuzhiyun
142*4882a593Smuzhiyun /*
143*4882a593Smuzhiyun * handle H_PAGE_4K_PFN case
144*4882a593Smuzhiyun */
145*4882a593Smuzhiyun if (old_pte & H_PAGE_4K_PFN) {
146*4882a593Smuzhiyun /*
147*4882a593Smuzhiyun * All the sub 4k page have the same
148*4882a593Smuzhiyun * physical address.
149*4882a593Smuzhiyun */
150*4882a593Smuzhiyun pa = pte_pfn(__pte(old_pte)) << HW_PAGE_SHIFT;
151*4882a593Smuzhiyun } else {
152*4882a593Smuzhiyun pa = pte_pfn(__pte(old_pte)) << PAGE_SHIFT;
153*4882a593Smuzhiyun pa += (subpg_index << shift);
154*4882a593Smuzhiyun }
155*4882a593Smuzhiyun hash = hpt_hash(vpn, shift, ssize);
156*4882a593Smuzhiyun repeat:
157*4882a593Smuzhiyun hpte_group = (hash & htab_hash_mask) * HPTES_PER_GROUP;
158*4882a593Smuzhiyun
159*4882a593Smuzhiyun /* Insert into the hash table, primary slot */
160*4882a593Smuzhiyun slot = mmu_hash_ops.hpte_insert(hpte_group, vpn, pa, rflags, 0,
161*4882a593Smuzhiyun MMU_PAGE_4K, MMU_PAGE_4K, ssize);
162*4882a593Smuzhiyun /*
163*4882a593Smuzhiyun * Primary is full, try the secondary
164*4882a593Smuzhiyun */
165*4882a593Smuzhiyun if (unlikely(slot == -1)) {
166*4882a593Smuzhiyun bool soft_invalid;
167*4882a593Smuzhiyun
168*4882a593Smuzhiyun hpte_group = (~hash & htab_hash_mask) * HPTES_PER_GROUP;
169*4882a593Smuzhiyun slot = mmu_hash_ops.hpte_insert(hpte_group, vpn, pa,
170*4882a593Smuzhiyun rflags, HPTE_V_SECONDARY,
171*4882a593Smuzhiyun MMU_PAGE_4K, MMU_PAGE_4K,
172*4882a593Smuzhiyun ssize);
173*4882a593Smuzhiyun
174*4882a593Smuzhiyun soft_invalid = hpte_soft_invalid(slot);
175*4882a593Smuzhiyun if (unlikely(soft_invalid)) {
176*4882a593Smuzhiyun /*
177*4882a593Smuzhiyun * We got a valid slot from a hardware point of view.
178*4882a593Smuzhiyun * but we cannot use it, because we use this special
179*4882a593Smuzhiyun * value; as defined by hpte_soft_invalid(), to track
180*4882a593Smuzhiyun * invalid slots. We cannot use it. So invalidate it.
181*4882a593Smuzhiyun */
182*4882a593Smuzhiyun gslot = slot & _PTEIDX_GROUP_IX;
183*4882a593Smuzhiyun mmu_hash_ops.hpte_invalidate(hpte_group + gslot, vpn,
184*4882a593Smuzhiyun MMU_PAGE_4K, MMU_PAGE_4K,
185*4882a593Smuzhiyun ssize, 0);
186*4882a593Smuzhiyun }
187*4882a593Smuzhiyun
188*4882a593Smuzhiyun if (unlikely(slot == -1 || soft_invalid)) {
189*4882a593Smuzhiyun /*
190*4882a593Smuzhiyun * For soft invalid slot, let's ensure that we release a
191*4882a593Smuzhiyun * slot from the primary, with the hope that we will
192*4882a593Smuzhiyun * acquire that slot next time we try. This will ensure
193*4882a593Smuzhiyun * that we do not get the same soft-invalid slot.
194*4882a593Smuzhiyun */
195*4882a593Smuzhiyun if (soft_invalid || (mftb() & 0x1))
196*4882a593Smuzhiyun hpte_group = (hash & htab_hash_mask) * HPTES_PER_GROUP;
197*4882a593Smuzhiyun
198*4882a593Smuzhiyun mmu_hash_ops.hpte_remove(hpte_group);
199*4882a593Smuzhiyun /*
200*4882a593Smuzhiyun * FIXME!! Should be try the group from which we removed ?
201*4882a593Smuzhiyun */
202*4882a593Smuzhiyun goto repeat;
203*4882a593Smuzhiyun }
204*4882a593Smuzhiyun }
205*4882a593Smuzhiyun /*
206*4882a593Smuzhiyun * Hypervisor failure. Restore old pte and return -1
207*4882a593Smuzhiyun * similar to __hash_page_*
208*4882a593Smuzhiyun */
209*4882a593Smuzhiyun if (unlikely(slot == -2)) {
210*4882a593Smuzhiyun *ptep = __pte(old_pte);
211*4882a593Smuzhiyun hash_failure_debug(ea, access, vsid, trap, ssize,
212*4882a593Smuzhiyun MMU_PAGE_4K, MMU_PAGE_4K, old_pte);
213*4882a593Smuzhiyun return -1;
214*4882a593Smuzhiyun }
215*4882a593Smuzhiyun
216*4882a593Smuzhiyun new_pte |= pte_set_hidx(ptep, rpte, subpg_index, slot, PTRS_PER_PTE);
217*4882a593Smuzhiyun new_pte |= H_PAGE_HASHPTE;
218*4882a593Smuzhiyun
219*4882a593Smuzhiyun *ptep = __pte(new_pte & ~H_PAGE_BUSY);
220*4882a593Smuzhiyun return 0;
221*4882a593Smuzhiyun }
222*4882a593Smuzhiyun
__hash_page_64K(unsigned long ea,unsigned long access,unsigned long vsid,pte_t * ptep,unsigned long trap,unsigned long flags,int ssize)223*4882a593Smuzhiyun int __hash_page_64K(unsigned long ea, unsigned long access,
224*4882a593Smuzhiyun unsigned long vsid, pte_t *ptep, unsigned long trap,
225*4882a593Smuzhiyun unsigned long flags, int ssize)
226*4882a593Smuzhiyun {
227*4882a593Smuzhiyun real_pte_t rpte;
228*4882a593Smuzhiyun unsigned long hpte_group;
229*4882a593Smuzhiyun unsigned long rflags, pa;
230*4882a593Smuzhiyun unsigned long old_pte, new_pte;
231*4882a593Smuzhiyun unsigned long vpn, hash, slot;
232*4882a593Smuzhiyun unsigned long shift = mmu_psize_defs[MMU_PAGE_64K].shift;
233*4882a593Smuzhiyun
234*4882a593Smuzhiyun /*
235*4882a593Smuzhiyun * atomically mark the linux large page PTE busy and dirty
236*4882a593Smuzhiyun */
237*4882a593Smuzhiyun do {
238*4882a593Smuzhiyun pte_t pte = READ_ONCE(*ptep);
239*4882a593Smuzhiyun
240*4882a593Smuzhiyun old_pte = pte_val(pte);
241*4882a593Smuzhiyun /* If PTE busy, retry the access */
242*4882a593Smuzhiyun if (unlikely(old_pte & H_PAGE_BUSY))
243*4882a593Smuzhiyun return 0;
244*4882a593Smuzhiyun /* If PTE permissions don't match, take page fault */
245*4882a593Smuzhiyun if (unlikely(!check_pte_access(access, old_pte)))
246*4882a593Smuzhiyun return 1;
247*4882a593Smuzhiyun /*
248*4882a593Smuzhiyun * Check if PTE has the cache-inhibit bit set
249*4882a593Smuzhiyun * If so, bail out and refault as a 4k page
250*4882a593Smuzhiyun */
251*4882a593Smuzhiyun if (!mmu_has_feature(MMU_FTR_CI_LARGE_PAGE) &&
252*4882a593Smuzhiyun unlikely(pte_ci(pte)))
253*4882a593Smuzhiyun return 0;
254*4882a593Smuzhiyun /*
255*4882a593Smuzhiyun * Try to lock the PTE, add ACCESSED and DIRTY if it was
256*4882a593Smuzhiyun * a write access.
257*4882a593Smuzhiyun */
258*4882a593Smuzhiyun new_pte = old_pte | H_PAGE_BUSY | _PAGE_ACCESSED;
259*4882a593Smuzhiyun if (access & _PAGE_WRITE)
260*4882a593Smuzhiyun new_pte |= _PAGE_DIRTY;
261*4882a593Smuzhiyun } while (!pte_xchg(ptep, __pte(old_pte), __pte(new_pte)));
262*4882a593Smuzhiyun
263*4882a593Smuzhiyun rflags = htab_convert_pte_flags(new_pte);
264*4882a593Smuzhiyun rpte = __real_pte(__pte(old_pte), ptep, PTRS_PER_PTE);
265*4882a593Smuzhiyun
266*4882a593Smuzhiyun if (cpu_has_feature(CPU_FTR_NOEXECUTE) &&
267*4882a593Smuzhiyun !cpu_has_feature(CPU_FTR_COHERENT_ICACHE))
268*4882a593Smuzhiyun rflags = hash_page_do_lazy_icache(rflags, __pte(old_pte), trap);
269*4882a593Smuzhiyun
270*4882a593Smuzhiyun vpn = hpt_vpn(ea, vsid, ssize);
271*4882a593Smuzhiyun if (unlikely(old_pte & H_PAGE_HASHPTE)) {
272*4882a593Smuzhiyun unsigned long gslot;
273*4882a593Smuzhiyun
274*4882a593Smuzhiyun /*
275*4882a593Smuzhiyun * There MIGHT be an HPTE for this pte
276*4882a593Smuzhiyun */
277*4882a593Smuzhiyun gslot = pte_get_hash_gslot(vpn, shift, ssize, rpte, 0);
278*4882a593Smuzhiyun if (mmu_hash_ops.hpte_updatepp(gslot, rflags, vpn, MMU_PAGE_64K,
279*4882a593Smuzhiyun MMU_PAGE_64K, ssize,
280*4882a593Smuzhiyun flags) == -1)
281*4882a593Smuzhiyun old_pte &= ~_PAGE_HPTEFLAGS;
282*4882a593Smuzhiyun }
283*4882a593Smuzhiyun
284*4882a593Smuzhiyun if (likely(!(old_pte & H_PAGE_HASHPTE))) {
285*4882a593Smuzhiyun
286*4882a593Smuzhiyun pa = pte_pfn(__pte(old_pte)) << PAGE_SHIFT;
287*4882a593Smuzhiyun hash = hpt_hash(vpn, shift, ssize);
288*4882a593Smuzhiyun
289*4882a593Smuzhiyun repeat:
290*4882a593Smuzhiyun hpte_group = (hash & htab_hash_mask) * HPTES_PER_GROUP;
291*4882a593Smuzhiyun
292*4882a593Smuzhiyun /* Insert into the hash table, primary slot */
293*4882a593Smuzhiyun slot = mmu_hash_ops.hpte_insert(hpte_group, vpn, pa, rflags, 0,
294*4882a593Smuzhiyun MMU_PAGE_64K, MMU_PAGE_64K,
295*4882a593Smuzhiyun ssize);
296*4882a593Smuzhiyun /*
297*4882a593Smuzhiyun * Primary is full, try the secondary
298*4882a593Smuzhiyun */
299*4882a593Smuzhiyun if (unlikely(slot == -1)) {
300*4882a593Smuzhiyun hpte_group = (~hash & htab_hash_mask) * HPTES_PER_GROUP;
301*4882a593Smuzhiyun slot = mmu_hash_ops.hpte_insert(hpte_group, vpn, pa,
302*4882a593Smuzhiyun rflags,
303*4882a593Smuzhiyun HPTE_V_SECONDARY,
304*4882a593Smuzhiyun MMU_PAGE_64K,
305*4882a593Smuzhiyun MMU_PAGE_64K, ssize);
306*4882a593Smuzhiyun if (slot == -1) {
307*4882a593Smuzhiyun if (mftb() & 0x1)
308*4882a593Smuzhiyun hpte_group = (hash & htab_hash_mask) *
309*4882a593Smuzhiyun HPTES_PER_GROUP;
310*4882a593Smuzhiyun mmu_hash_ops.hpte_remove(hpte_group);
311*4882a593Smuzhiyun /*
312*4882a593Smuzhiyun * FIXME!! Should be try the group from which we removed ?
313*4882a593Smuzhiyun */
314*4882a593Smuzhiyun goto repeat;
315*4882a593Smuzhiyun }
316*4882a593Smuzhiyun }
317*4882a593Smuzhiyun /*
318*4882a593Smuzhiyun * Hypervisor failure. Restore old pte and return -1
319*4882a593Smuzhiyun * similar to __hash_page_*
320*4882a593Smuzhiyun */
321*4882a593Smuzhiyun if (unlikely(slot == -2)) {
322*4882a593Smuzhiyun *ptep = __pte(old_pte);
323*4882a593Smuzhiyun hash_failure_debug(ea, access, vsid, trap, ssize,
324*4882a593Smuzhiyun MMU_PAGE_64K, MMU_PAGE_64K, old_pte);
325*4882a593Smuzhiyun return -1;
326*4882a593Smuzhiyun }
327*4882a593Smuzhiyun
328*4882a593Smuzhiyun new_pte = (new_pte & ~_PAGE_HPTEFLAGS) | H_PAGE_HASHPTE;
329*4882a593Smuzhiyun new_pte |= pte_set_hidx(ptep, rpte, 0, slot, PTRS_PER_PTE);
330*4882a593Smuzhiyun }
331*4882a593Smuzhiyun *ptep = __pte(new_pte & ~H_PAGE_BUSY);
332*4882a593Smuzhiyun return 0;
333*4882a593Smuzhiyun }
334