1*4882a593Smuzhiyun /*
2*4882a593Smuzhiyun * JFFS2 -- Journalling Flash File System, Version 2.
3*4882a593Smuzhiyun *
4*4882a593Smuzhiyun * Copyright © 2001-2007 Red Hat, Inc.
5*4882a593Smuzhiyun * Copyright © 2004-2010 David Woodhouse <dwmw2@infradead.org>
6*4882a593Smuzhiyun *
7*4882a593Smuzhiyun * Created by David Woodhouse <dwmw2@infradead.org>
8*4882a593Smuzhiyun *
9*4882a593Smuzhiyun * For licensing information, see the file 'LICENCE' in this directory.
10*4882a593Smuzhiyun *
11*4882a593Smuzhiyun */
12*4882a593Smuzhiyun
13*4882a593Smuzhiyun #define pr_fmt(fmt) KBUILD_MODNAME ": " fmt
14*4882a593Smuzhiyun
15*4882a593Smuzhiyun #include <linux/kernel.h>
16*4882a593Smuzhiyun #include <linux/slab.h>
17*4882a593Smuzhiyun #include <linux/mtd/mtd.h>
18*4882a593Smuzhiyun #include <linux/compiler.h>
19*4882a593Smuzhiyun #include <linux/crc32.h>
20*4882a593Smuzhiyun #include <linux/sched.h>
21*4882a593Smuzhiyun #include <linux/pagemap.h>
22*4882a593Smuzhiyun #include "nodelist.h"
23*4882a593Smuzhiyun
24*4882a593Smuzhiyun static void jffs2_erase_failed(struct jffs2_sb_info *c, struct jffs2_eraseblock *jeb, uint32_t bad_offset);
25*4882a593Smuzhiyun static void jffs2_erase_succeeded(struct jffs2_sb_info *c, struct jffs2_eraseblock *jeb);
26*4882a593Smuzhiyun static void jffs2_mark_erased_block(struct jffs2_sb_info *c, struct jffs2_eraseblock *jeb);
27*4882a593Smuzhiyun
jffs2_erase_block(struct jffs2_sb_info * c,struct jffs2_eraseblock * jeb)28*4882a593Smuzhiyun static void jffs2_erase_block(struct jffs2_sb_info *c,
29*4882a593Smuzhiyun struct jffs2_eraseblock *jeb)
30*4882a593Smuzhiyun {
31*4882a593Smuzhiyun int ret;
32*4882a593Smuzhiyun uint32_t bad_offset;
33*4882a593Smuzhiyun #ifdef __ECOS
34*4882a593Smuzhiyun ret = jffs2_flash_erase(c, jeb);
35*4882a593Smuzhiyun if (!ret) {
36*4882a593Smuzhiyun jffs2_erase_succeeded(c, jeb);
37*4882a593Smuzhiyun return;
38*4882a593Smuzhiyun }
39*4882a593Smuzhiyun bad_offset = jeb->offset;
40*4882a593Smuzhiyun #else /* Linux */
41*4882a593Smuzhiyun struct erase_info *instr;
42*4882a593Smuzhiyun
43*4882a593Smuzhiyun jffs2_dbg(1, "%s(): erase block %#08x (range %#08x-%#08x)\n",
44*4882a593Smuzhiyun __func__,
45*4882a593Smuzhiyun jeb->offset, jeb->offset, jeb->offset + c->sector_size);
46*4882a593Smuzhiyun instr = kmalloc(sizeof(struct erase_info), GFP_KERNEL);
47*4882a593Smuzhiyun if (!instr) {
48*4882a593Smuzhiyun pr_warn("kmalloc for struct erase_info in jffs2_erase_block failed. Refiling block for later\n");
49*4882a593Smuzhiyun mutex_lock(&c->erase_free_sem);
50*4882a593Smuzhiyun spin_lock(&c->erase_completion_lock);
51*4882a593Smuzhiyun list_move(&jeb->list, &c->erase_pending_list);
52*4882a593Smuzhiyun c->erasing_size -= c->sector_size;
53*4882a593Smuzhiyun c->dirty_size += c->sector_size;
54*4882a593Smuzhiyun jeb->dirty_size = c->sector_size;
55*4882a593Smuzhiyun spin_unlock(&c->erase_completion_lock);
56*4882a593Smuzhiyun mutex_unlock(&c->erase_free_sem);
57*4882a593Smuzhiyun return;
58*4882a593Smuzhiyun }
59*4882a593Smuzhiyun
60*4882a593Smuzhiyun memset(instr, 0, sizeof(*instr));
61*4882a593Smuzhiyun
62*4882a593Smuzhiyun instr->addr = jeb->offset;
63*4882a593Smuzhiyun instr->len = c->sector_size;
64*4882a593Smuzhiyun
65*4882a593Smuzhiyun ret = mtd_erase(c->mtd, instr);
66*4882a593Smuzhiyun if (!ret) {
67*4882a593Smuzhiyun jffs2_erase_succeeded(c, jeb);
68*4882a593Smuzhiyun kfree(instr);
69*4882a593Smuzhiyun return;
70*4882a593Smuzhiyun }
71*4882a593Smuzhiyun
72*4882a593Smuzhiyun bad_offset = instr->fail_addr;
73*4882a593Smuzhiyun kfree(instr);
74*4882a593Smuzhiyun #endif /* __ECOS */
75*4882a593Smuzhiyun
76*4882a593Smuzhiyun if (ret == -ENOMEM || ret == -EAGAIN) {
77*4882a593Smuzhiyun /* Erase failed immediately. Refile it on the list */
78*4882a593Smuzhiyun jffs2_dbg(1, "Erase at 0x%08x failed: %d. Refiling on erase_pending_list\n",
79*4882a593Smuzhiyun jeb->offset, ret);
80*4882a593Smuzhiyun mutex_lock(&c->erase_free_sem);
81*4882a593Smuzhiyun spin_lock(&c->erase_completion_lock);
82*4882a593Smuzhiyun list_move(&jeb->list, &c->erase_pending_list);
83*4882a593Smuzhiyun c->erasing_size -= c->sector_size;
84*4882a593Smuzhiyun c->dirty_size += c->sector_size;
85*4882a593Smuzhiyun jeb->dirty_size = c->sector_size;
86*4882a593Smuzhiyun spin_unlock(&c->erase_completion_lock);
87*4882a593Smuzhiyun mutex_unlock(&c->erase_free_sem);
88*4882a593Smuzhiyun return;
89*4882a593Smuzhiyun }
90*4882a593Smuzhiyun
91*4882a593Smuzhiyun if (ret == -EROFS)
92*4882a593Smuzhiyun pr_warn("Erase at 0x%08x failed immediately: -EROFS. Is the sector locked?\n",
93*4882a593Smuzhiyun jeb->offset);
94*4882a593Smuzhiyun else
95*4882a593Smuzhiyun pr_warn("Erase at 0x%08x failed immediately: errno %d\n",
96*4882a593Smuzhiyun jeb->offset, ret);
97*4882a593Smuzhiyun
98*4882a593Smuzhiyun jffs2_erase_failed(c, jeb, bad_offset);
99*4882a593Smuzhiyun }
100*4882a593Smuzhiyun
jffs2_erase_pending_blocks(struct jffs2_sb_info * c,int count)101*4882a593Smuzhiyun int jffs2_erase_pending_blocks(struct jffs2_sb_info *c, int count)
102*4882a593Smuzhiyun {
103*4882a593Smuzhiyun struct jffs2_eraseblock *jeb;
104*4882a593Smuzhiyun int work_done = 0;
105*4882a593Smuzhiyun
106*4882a593Smuzhiyun mutex_lock(&c->erase_free_sem);
107*4882a593Smuzhiyun
108*4882a593Smuzhiyun spin_lock(&c->erase_completion_lock);
109*4882a593Smuzhiyun
110*4882a593Smuzhiyun while (!list_empty(&c->erase_complete_list) ||
111*4882a593Smuzhiyun !list_empty(&c->erase_pending_list)) {
112*4882a593Smuzhiyun
113*4882a593Smuzhiyun if (!list_empty(&c->erase_complete_list)) {
114*4882a593Smuzhiyun jeb = list_entry(c->erase_complete_list.next, struct jffs2_eraseblock, list);
115*4882a593Smuzhiyun list_move(&jeb->list, &c->erase_checking_list);
116*4882a593Smuzhiyun spin_unlock(&c->erase_completion_lock);
117*4882a593Smuzhiyun mutex_unlock(&c->erase_free_sem);
118*4882a593Smuzhiyun jffs2_mark_erased_block(c, jeb);
119*4882a593Smuzhiyun
120*4882a593Smuzhiyun work_done++;
121*4882a593Smuzhiyun if (!--count) {
122*4882a593Smuzhiyun jffs2_dbg(1, "Count reached. jffs2_erase_pending_blocks leaving\n");
123*4882a593Smuzhiyun goto done;
124*4882a593Smuzhiyun }
125*4882a593Smuzhiyun
126*4882a593Smuzhiyun } else if (!list_empty(&c->erase_pending_list)) {
127*4882a593Smuzhiyun jeb = list_entry(c->erase_pending_list.next, struct jffs2_eraseblock, list);
128*4882a593Smuzhiyun jffs2_dbg(1, "Starting erase of pending block 0x%08x\n",
129*4882a593Smuzhiyun jeb->offset);
130*4882a593Smuzhiyun list_del(&jeb->list);
131*4882a593Smuzhiyun c->erasing_size += c->sector_size;
132*4882a593Smuzhiyun c->wasted_size -= jeb->wasted_size;
133*4882a593Smuzhiyun c->free_size -= jeb->free_size;
134*4882a593Smuzhiyun c->used_size -= jeb->used_size;
135*4882a593Smuzhiyun c->dirty_size -= jeb->dirty_size;
136*4882a593Smuzhiyun jeb->wasted_size = jeb->used_size = jeb->dirty_size = jeb->free_size = 0;
137*4882a593Smuzhiyun jffs2_free_jeb_node_refs(c, jeb);
138*4882a593Smuzhiyun list_add(&jeb->list, &c->erasing_list);
139*4882a593Smuzhiyun spin_unlock(&c->erase_completion_lock);
140*4882a593Smuzhiyun mutex_unlock(&c->erase_free_sem);
141*4882a593Smuzhiyun
142*4882a593Smuzhiyun jffs2_erase_block(c, jeb);
143*4882a593Smuzhiyun
144*4882a593Smuzhiyun } else {
145*4882a593Smuzhiyun BUG();
146*4882a593Smuzhiyun }
147*4882a593Smuzhiyun
148*4882a593Smuzhiyun /* Be nice */
149*4882a593Smuzhiyun cond_resched();
150*4882a593Smuzhiyun mutex_lock(&c->erase_free_sem);
151*4882a593Smuzhiyun spin_lock(&c->erase_completion_lock);
152*4882a593Smuzhiyun }
153*4882a593Smuzhiyun
154*4882a593Smuzhiyun spin_unlock(&c->erase_completion_lock);
155*4882a593Smuzhiyun mutex_unlock(&c->erase_free_sem);
156*4882a593Smuzhiyun done:
157*4882a593Smuzhiyun jffs2_dbg(1, "jffs2_erase_pending_blocks completed\n");
158*4882a593Smuzhiyun return work_done;
159*4882a593Smuzhiyun }
160*4882a593Smuzhiyun
jffs2_erase_succeeded(struct jffs2_sb_info * c,struct jffs2_eraseblock * jeb)161*4882a593Smuzhiyun static void jffs2_erase_succeeded(struct jffs2_sb_info *c, struct jffs2_eraseblock *jeb)
162*4882a593Smuzhiyun {
163*4882a593Smuzhiyun jffs2_dbg(1, "Erase completed successfully at 0x%08x\n", jeb->offset);
164*4882a593Smuzhiyun mutex_lock(&c->erase_free_sem);
165*4882a593Smuzhiyun spin_lock(&c->erase_completion_lock);
166*4882a593Smuzhiyun list_move_tail(&jeb->list, &c->erase_complete_list);
167*4882a593Smuzhiyun /* Wake the GC thread to mark them clean */
168*4882a593Smuzhiyun jffs2_garbage_collect_trigger(c);
169*4882a593Smuzhiyun spin_unlock(&c->erase_completion_lock);
170*4882a593Smuzhiyun mutex_unlock(&c->erase_free_sem);
171*4882a593Smuzhiyun wake_up(&c->erase_wait);
172*4882a593Smuzhiyun }
173*4882a593Smuzhiyun
jffs2_erase_failed(struct jffs2_sb_info * c,struct jffs2_eraseblock * jeb,uint32_t bad_offset)174*4882a593Smuzhiyun static void jffs2_erase_failed(struct jffs2_sb_info *c, struct jffs2_eraseblock *jeb, uint32_t bad_offset)
175*4882a593Smuzhiyun {
176*4882a593Smuzhiyun /* For NAND, if the failure did not occur at the device level for a
177*4882a593Smuzhiyun specific physical page, don't bother updating the bad block table. */
178*4882a593Smuzhiyun if (jffs2_cleanmarker_oob(c) && (bad_offset != (uint32_t)MTD_FAIL_ADDR_UNKNOWN)) {
179*4882a593Smuzhiyun /* We had a device-level failure to erase. Let's see if we've
180*4882a593Smuzhiyun failed too many times. */
181*4882a593Smuzhiyun if (!jffs2_write_nand_badblock(c, jeb, bad_offset)) {
182*4882a593Smuzhiyun /* We'd like to give this block another try. */
183*4882a593Smuzhiyun mutex_lock(&c->erase_free_sem);
184*4882a593Smuzhiyun spin_lock(&c->erase_completion_lock);
185*4882a593Smuzhiyun list_move(&jeb->list, &c->erase_pending_list);
186*4882a593Smuzhiyun c->erasing_size -= c->sector_size;
187*4882a593Smuzhiyun c->dirty_size += c->sector_size;
188*4882a593Smuzhiyun jeb->dirty_size = c->sector_size;
189*4882a593Smuzhiyun spin_unlock(&c->erase_completion_lock);
190*4882a593Smuzhiyun mutex_unlock(&c->erase_free_sem);
191*4882a593Smuzhiyun return;
192*4882a593Smuzhiyun }
193*4882a593Smuzhiyun }
194*4882a593Smuzhiyun
195*4882a593Smuzhiyun mutex_lock(&c->erase_free_sem);
196*4882a593Smuzhiyun spin_lock(&c->erase_completion_lock);
197*4882a593Smuzhiyun c->erasing_size -= c->sector_size;
198*4882a593Smuzhiyun c->bad_size += c->sector_size;
199*4882a593Smuzhiyun list_move(&jeb->list, &c->bad_list);
200*4882a593Smuzhiyun c->nr_erasing_blocks--;
201*4882a593Smuzhiyun spin_unlock(&c->erase_completion_lock);
202*4882a593Smuzhiyun mutex_unlock(&c->erase_free_sem);
203*4882a593Smuzhiyun wake_up(&c->erase_wait);
204*4882a593Smuzhiyun }
205*4882a593Smuzhiyun
206*4882a593Smuzhiyun /* Hmmm. Maybe we should accept the extra space it takes and make
207*4882a593Smuzhiyun this a standard doubly-linked list? */
jffs2_remove_node_refs_from_ino_list(struct jffs2_sb_info * c,struct jffs2_raw_node_ref * ref,struct jffs2_eraseblock * jeb)208*4882a593Smuzhiyun static inline void jffs2_remove_node_refs_from_ino_list(struct jffs2_sb_info *c,
209*4882a593Smuzhiyun struct jffs2_raw_node_ref *ref, struct jffs2_eraseblock *jeb)
210*4882a593Smuzhiyun {
211*4882a593Smuzhiyun struct jffs2_inode_cache *ic = NULL;
212*4882a593Smuzhiyun struct jffs2_raw_node_ref **prev;
213*4882a593Smuzhiyun
214*4882a593Smuzhiyun prev = &ref->next_in_ino;
215*4882a593Smuzhiyun
216*4882a593Smuzhiyun /* Walk the inode's list once, removing any nodes from this eraseblock */
217*4882a593Smuzhiyun while (1) {
218*4882a593Smuzhiyun if (!(*prev)->next_in_ino) {
219*4882a593Smuzhiyun /* We're looking at the jffs2_inode_cache, which is
220*4882a593Smuzhiyun at the end of the linked list. Stash it and continue
221*4882a593Smuzhiyun from the beginning of the list */
222*4882a593Smuzhiyun ic = (struct jffs2_inode_cache *)(*prev);
223*4882a593Smuzhiyun prev = &ic->nodes;
224*4882a593Smuzhiyun continue;
225*4882a593Smuzhiyun }
226*4882a593Smuzhiyun
227*4882a593Smuzhiyun if (SECTOR_ADDR((*prev)->flash_offset) == jeb->offset) {
228*4882a593Smuzhiyun /* It's in the block we're erasing */
229*4882a593Smuzhiyun struct jffs2_raw_node_ref *this;
230*4882a593Smuzhiyun
231*4882a593Smuzhiyun this = *prev;
232*4882a593Smuzhiyun *prev = this->next_in_ino;
233*4882a593Smuzhiyun this->next_in_ino = NULL;
234*4882a593Smuzhiyun
235*4882a593Smuzhiyun if (this == ref)
236*4882a593Smuzhiyun break;
237*4882a593Smuzhiyun
238*4882a593Smuzhiyun continue;
239*4882a593Smuzhiyun }
240*4882a593Smuzhiyun /* Not to be deleted. Skip */
241*4882a593Smuzhiyun prev = &((*prev)->next_in_ino);
242*4882a593Smuzhiyun }
243*4882a593Smuzhiyun
244*4882a593Smuzhiyun /* PARANOIA */
245*4882a593Smuzhiyun if (!ic) {
246*4882a593Smuzhiyun JFFS2_WARNING("inode_cache/xattr_datum/xattr_ref"
247*4882a593Smuzhiyun " not found in remove_node_refs()!!\n");
248*4882a593Smuzhiyun return;
249*4882a593Smuzhiyun }
250*4882a593Smuzhiyun
251*4882a593Smuzhiyun jffs2_dbg(1, "Removed nodes in range 0x%08x-0x%08x from ino #%u\n",
252*4882a593Smuzhiyun jeb->offset, jeb->offset + c->sector_size, ic->ino);
253*4882a593Smuzhiyun
254*4882a593Smuzhiyun D2({
255*4882a593Smuzhiyun int i=0;
256*4882a593Smuzhiyun struct jffs2_raw_node_ref *this;
257*4882a593Smuzhiyun printk(KERN_DEBUG "After remove_node_refs_from_ino_list: \n");
258*4882a593Smuzhiyun
259*4882a593Smuzhiyun this = ic->nodes;
260*4882a593Smuzhiyun
261*4882a593Smuzhiyun printk(KERN_DEBUG);
262*4882a593Smuzhiyun while(this) {
263*4882a593Smuzhiyun pr_cont("0x%08x(%d)->",
264*4882a593Smuzhiyun ref_offset(this), ref_flags(this));
265*4882a593Smuzhiyun if (++i == 5) {
266*4882a593Smuzhiyun printk(KERN_DEBUG);
267*4882a593Smuzhiyun i=0;
268*4882a593Smuzhiyun }
269*4882a593Smuzhiyun this = this->next_in_ino;
270*4882a593Smuzhiyun }
271*4882a593Smuzhiyun pr_cont("\n");
272*4882a593Smuzhiyun });
273*4882a593Smuzhiyun
274*4882a593Smuzhiyun switch (ic->class) {
275*4882a593Smuzhiyun #ifdef CONFIG_JFFS2_FS_XATTR
276*4882a593Smuzhiyun case RAWNODE_CLASS_XATTR_DATUM:
277*4882a593Smuzhiyun jffs2_release_xattr_datum(c, (struct jffs2_xattr_datum *)ic);
278*4882a593Smuzhiyun break;
279*4882a593Smuzhiyun case RAWNODE_CLASS_XATTR_REF:
280*4882a593Smuzhiyun jffs2_release_xattr_ref(c, (struct jffs2_xattr_ref *)ic);
281*4882a593Smuzhiyun break;
282*4882a593Smuzhiyun #endif
283*4882a593Smuzhiyun default:
284*4882a593Smuzhiyun if (ic->nodes == (void *)ic && ic->pino_nlink == 0)
285*4882a593Smuzhiyun jffs2_del_ino_cache(c, ic);
286*4882a593Smuzhiyun }
287*4882a593Smuzhiyun }
288*4882a593Smuzhiyun
jffs2_free_jeb_node_refs(struct jffs2_sb_info * c,struct jffs2_eraseblock * jeb)289*4882a593Smuzhiyun void jffs2_free_jeb_node_refs(struct jffs2_sb_info *c, struct jffs2_eraseblock *jeb)
290*4882a593Smuzhiyun {
291*4882a593Smuzhiyun struct jffs2_raw_node_ref *block, *ref;
292*4882a593Smuzhiyun jffs2_dbg(1, "Freeing all node refs for eraseblock offset 0x%08x\n",
293*4882a593Smuzhiyun jeb->offset);
294*4882a593Smuzhiyun
295*4882a593Smuzhiyun block = ref = jeb->first_node;
296*4882a593Smuzhiyun
297*4882a593Smuzhiyun while (ref) {
298*4882a593Smuzhiyun if (ref->flash_offset == REF_LINK_NODE) {
299*4882a593Smuzhiyun ref = ref->next_in_ino;
300*4882a593Smuzhiyun jffs2_free_refblock(block);
301*4882a593Smuzhiyun block = ref;
302*4882a593Smuzhiyun continue;
303*4882a593Smuzhiyun }
304*4882a593Smuzhiyun if (ref->flash_offset != REF_EMPTY_NODE && ref->next_in_ino)
305*4882a593Smuzhiyun jffs2_remove_node_refs_from_ino_list(c, ref, jeb);
306*4882a593Smuzhiyun /* else it was a non-inode node or already removed, so don't bother */
307*4882a593Smuzhiyun
308*4882a593Smuzhiyun ref++;
309*4882a593Smuzhiyun }
310*4882a593Smuzhiyun jeb->first_node = jeb->last_node = NULL;
311*4882a593Smuzhiyun }
312*4882a593Smuzhiyun
jffs2_block_check_erase(struct jffs2_sb_info * c,struct jffs2_eraseblock * jeb,uint32_t * bad_offset)313*4882a593Smuzhiyun static int jffs2_block_check_erase(struct jffs2_sb_info *c, struct jffs2_eraseblock *jeb, uint32_t *bad_offset)
314*4882a593Smuzhiyun {
315*4882a593Smuzhiyun void *ebuf;
316*4882a593Smuzhiyun uint32_t ofs;
317*4882a593Smuzhiyun size_t retlen;
318*4882a593Smuzhiyun int ret;
319*4882a593Smuzhiyun unsigned long *wordebuf;
320*4882a593Smuzhiyun
321*4882a593Smuzhiyun ret = mtd_point(c->mtd, jeb->offset, c->sector_size, &retlen,
322*4882a593Smuzhiyun &ebuf, NULL);
323*4882a593Smuzhiyun if (ret != -EOPNOTSUPP) {
324*4882a593Smuzhiyun if (ret) {
325*4882a593Smuzhiyun jffs2_dbg(1, "MTD point failed %d\n", ret);
326*4882a593Smuzhiyun goto do_flash_read;
327*4882a593Smuzhiyun }
328*4882a593Smuzhiyun if (retlen < c->sector_size) {
329*4882a593Smuzhiyun /* Don't muck about if it won't let us point to the whole erase sector */
330*4882a593Smuzhiyun jffs2_dbg(1, "MTD point returned len too short: 0x%zx\n",
331*4882a593Smuzhiyun retlen);
332*4882a593Smuzhiyun mtd_unpoint(c->mtd, jeb->offset, retlen);
333*4882a593Smuzhiyun goto do_flash_read;
334*4882a593Smuzhiyun }
335*4882a593Smuzhiyun wordebuf = ebuf-sizeof(*wordebuf);
336*4882a593Smuzhiyun retlen /= sizeof(*wordebuf);
337*4882a593Smuzhiyun do {
338*4882a593Smuzhiyun if (*++wordebuf != ~0)
339*4882a593Smuzhiyun break;
340*4882a593Smuzhiyun } while(--retlen);
341*4882a593Smuzhiyun mtd_unpoint(c->mtd, jeb->offset, c->sector_size);
342*4882a593Smuzhiyun if (retlen) {
343*4882a593Smuzhiyun pr_warn("Newly-erased block contained word 0x%lx at offset 0x%08tx\n",
344*4882a593Smuzhiyun *wordebuf,
345*4882a593Smuzhiyun jeb->offset +
346*4882a593Smuzhiyun c->sector_size-retlen * sizeof(*wordebuf));
347*4882a593Smuzhiyun return -EIO;
348*4882a593Smuzhiyun }
349*4882a593Smuzhiyun return 0;
350*4882a593Smuzhiyun }
351*4882a593Smuzhiyun do_flash_read:
352*4882a593Smuzhiyun ebuf = kmalloc(PAGE_SIZE, GFP_KERNEL);
353*4882a593Smuzhiyun if (!ebuf) {
354*4882a593Smuzhiyun pr_warn("Failed to allocate page buffer for verifying erase at 0x%08x. Refiling\n",
355*4882a593Smuzhiyun jeb->offset);
356*4882a593Smuzhiyun return -EAGAIN;
357*4882a593Smuzhiyun }
358*4882a593Smuzhiyun
359*4882a593Smuzhiyun jffs2_dbg(1, "Verifying erase at 0x%08x\n", jeb->offset);
360*4882a593Smuzhiyun
361*4882a593Smuzhiyun for (ofs = jeb->offset; ofs < jeb->offset + c->sector_size; ) {
362*4882a593Smuzhiyun uint32_t readlen = min((uint32_t)PAGE_SIZE, jeb->offset + c->sector_size - ofs);
363*4882a593Smuzhiyun int i;
364*4882a593Smuzhiyun
365*4882a593Smuzhiyun *bad_offset = ofs;
366*4882a593Smuzhiyun
367*4882a593Smuzhiyun ret = mtd_read(c->mtd, ofs, readlen, &retlen, ebuf);
368*4882a593Smuzhiyun if (ret) {
369*4882a593Smuzhiyun pr_warn("Read of newly-erased block at 0x%08x failed: %d. Putting on bad_list\n",
370*4882a593Smuzhiyun ofs, ret);
371*4882a593Smuzhiyun ret = -EIO;
372*4882a593Smuzhiyun goto fail;
373*4882a593Smuzhiyun }
374*4882a593Smuzhiyun if (retlen != readlen) {
375*4882a593Smuzhiyun pr_warn("Short read from newly-erased block at 0x%08x. Wanted %d, got %zd\n",
376*4882a593Smuzhiyun ofs, readlen, retlen);
377*4882a593Smuzhiyun ret = -EIO;
378*4882a593Smuzhiyun goto fail;
379*4882a593Smuzhiyun }
380*4882a593Smuzhiyun for (i=0; i<readlen; i += sizeof(unsigned long)) {
381*4882a593Smuzhiyun /* It's OK. We know it's properly aligned */
382*4882a593Smuzhiyun unsigned long *datum = ebuf + i;
383*4882a593Smuzhiyun if (*datum + 1) {
384*4882a593Smuzhiyun *bad_offset += i;
385*4882a593Smuzhiyun pr_warn("Newly-erased block contained word 0x%lx at offset 0x%08x\n",
386*4882a593Smuzhiyun *datum, *bad_offset);
387*4882a593Smuzhiyun ret = -EIO;
388*4882a593Smuzhiyun goto fail;
389*4882a593Smuzhiyun }
390*4882a593Smuzhiyun }
391*4882a593Smuzhiyun ofs += readlen;
392*4882a593Smuzhiyun cond_resched();
393*4882a593Smuzhiyun }
394*4882a593Smuzhiyun ret = 0;
395*4882a593Smuzhiyun fail:
396*4882a593Smuzhiyun kfree(ebuf);
397*4882a593Smuzhiyun return ret;
398*4882a593Smuzhiyun }
399*4882a593Smuzhiyun
jffs2_mark_erased_block(struct jffs2_sb_info * c,struct jffs2_eraseblock * jeb)400*4882a593Smuzhiyun static void jffs2_mark_erased_block(struct jffs2_sb_info *c, struct jffs2_eraseblock *jeb)
401*4882a593Smuzhiyun {
402*4882a593Smuzhiyun size_t retlen;
403*4882a593Smuzhiyun int ret;
404*4882a593Smuzhiyun uint32_t bad_offset;
405*4882a593Smuzhiyun
406*4882a593Smuzhiyun switch (jffs2_block_check_erase(c, jeb, &bad_offset)) {
407*4882a593Smuzhiyun case -EAGAIN: goto refile;
408*4882a593Smuzhiyun case -EIO: goto filebad;
409*4882a593Smuzhiyun }
410*4882a593Smuzhiyun
411*4882a593Smuzhiyun /* Write the erase complete marker */
412*4882a593Smuzhiyun jffs2_dbg(1, "Writing erased marker to block at 0x%08x\n", jeb->offset);
413*4882a593Smuzhiyun bad_offset = jeb->offset;
414*4882a593Smuzhiyun
415*4882a593Smuzhiyun /* Cleanmarker in oob area or no cleanmarker at all ? */
416*4882a593Smuzhiyun if (jffs2_cleanmarker_oob(c) || c->cleanmarker_size == 0) {
417*4882a593Smuzhiyun
418*4882a593Smuzhiyun if (jffs2_cleanmarker_oob(c)) {
419*4882a593Smuzhiyun if (jffs2_write_nand_cleanmarker(c, jeb))
420*4882a593Smuzhiyun goto filebad;
421*4882a593Smuzhiyun }
422*4882a593Smuzhiyun } else {
423*4882a593Smuzhiyun
424*4882a593Smuzhiyun struct kvec vecs[1];
425*4882a593Smuzhiyun struct jffs2_unknown_node marker = {
426*4882a593Smuzhiyun .magic = cpu_to_je16(JFFS2_MAGIC_BITMASK),
427*4882a593Smuzhiyun .nodetype = cpu_to_je16(JFFS2_NODETYPE_CLEANMARKER),
428*4882a593Smuzhiyun .totlen = cpu_to_je32(c->cleanmarker_size)
429*4882a593Smuzhiyun };
430*4882a593Smuzhiyun
431*4882a593Smuzhiyun jffs2_prealloc_raw_node_refs(c, jeb, 1);
432*4882a593Smuzhiyun
433*4882a593Smuzhiyun marker.hdr_crc = cpu_to_je32(crc32(0, &marker, sizeof(struct jffs2_unknown_node)-4));
434*4882a593Smuzhiyun
435*4882a593Smuzhiyun vecs[0].iov_base = (unsigned char *) ▮
436*4882a593Smuzhiyun vecs[0].iov_len = sizeof(marker);
437*4882a593Smuzhiyun ret = jffs2_flash_direct_writev(c, vecs, 1, jeb->offset, &retlen);
438*4882a593Smuzhiyun
439*4882a593Smuzhiyun if (ret || retlen != sizeof(marker)) {
440*4882a593Smuzhiyun if (ret)
441*4882a593Smuzhiyun pr_warn("Write clean marker to block at 0x%08x failed: %d\n",
442*4882a593Smuzhiyun jeb->offset, ret);
443*4882a593Smuzhiyun else
444*4882a593Smuzhiyun pr_warn("Short write to newly-erased block at 0x%08x: Wanted %zd, got %zd\n",
445*4882a593Smuzhiyun jeb->offset, sizeof(marker), retlen);
446*4882a593Smuzhiyun
447*4882a593Smuzhiyun goto filebad;
448*4882a593Smuzhiyun }
449*4882a593Smuzhiyun }
450*4882a593Smuzhiyun /* Everything else got zeroed before the erase */
451*4882a593Smuzhiyun jeb->free_size = c->sector_size;
452*4882a593Smuzhiyun
453*4882a593Smuzhiyun mutex_lock(&c->erase_free_sem);
454*4882a593Smuzhiyun spin_lock(&c->erase_completion_lock);
455*4882a593Smuzhiyun
456*4882a593Smuzhiyun c->erasing_size -= c->sector_size;
457*4882a593Smuzhiyun c->free_size += c->sector_size;
458*4882a593Smuzhiyun
459*4882a593Smuzhiyun /* Account for cleanmarker now, if it's in-band */
460*4882a593Smuzhiyun if (c->cleanmarker_size && !jffs2_cleanmarker_oob(c))
461*4882a593Smuzhiyun jffs2_link_node_ref(c, jeb, jeb->offset | REF_NORMAL, c->cleanmarker_size, NULL);
462*4882a593Smuzhiyun
463*4882a593Smuzhiyun list_move_tail(&jeb->list, &c->free_list);
464*4882a593Smuzhiyun c->nr_erasing_blocks--;
465*4882a593Smuzhiyun c->nr_free_blocks++;
466*4882a593Smuzhiyun
467*4882a593Smuzhiyun jffs2_dbg_acct_sanity_check_nolock(c, jeb);
468*4882a593Smuzhiyun jffs2_dbg_acct_paranoia_check_nolock(c, jeb);
469*4882a593Smuzhiyun
470*4882a593Smuzhiyun spin_unlock(&c->erase_completion_lock);
471*4882a593Smuzhiyun mutex_unlock(&c->erase_free_sem);
472*4882a593Smuzhiyun wake_up(&c->erase_wait);
473*4882a593Smuzhiyun return;
474*4882a593Smuzhiyun
475*4882a593Smuzhiyun filebad:
476*4882a593Smuzhiyun jffs2_erase_failed(c, jeb, bad_offset);
477*4882a593Smuzhiyun return;
478*4882a593Smuzhiyun
479*4882a593Smuzhiyun refile:
480*4882a593Smuzhiyun /* Stick it back on the list from whence it came and come back later */
481*4882a593Smuzhiyun mutex_lock(&c->erase_free_sem);
482*4882a593Smuzhiyun spin_lock(&c->erase_completion_lock);
483*4882a593Smuzhiyun jffs2_garbage_collect_trigger(c);
484*4882a593Smuzhiyun list_move(&jeb->list, &c->erase_complete_list);
485*4882a593Smuzhiyun spin_unlock(&c->erase_completion_lock);
486*4882a593Smuzhiyun mutex_unlock(&c->erase_free_sem);
487*4882a593Smuzhiyun return;
488*4882a593Smuzhiyun }
489