1 #include <console/console.h>
2 #include <device/pci.h>
3 #include <device/pci_ids.h>
4 #include <device/pci_ops.h>
8 #include <cpu/amd/lxdef.h>
9 #include <cpu/amd/vr.h>
11 // andrei: use the /lib copy of nrv2b
12 #include "../lib/nrv2b.c"
14 #define VSA2_BUFFER 0x60000
15 #define VSA2_ENTRY_POINT 0x60020
17 /* vsmsetup.c derived from vgabios.c. Derived from: */
19 /*------------------------------------------------------------ -*- C -*-
20 * 2 Kernel Monte a.k.a. Linux loading Linux on x86
22 * Erik Arjan Hendriks <hendriks@lanl.gov>
24 * This version is a derivative of the original two kernel monte
25 * which is (C) 2000 Scyld.
27 * Copyright (C) 2000 Scyld Computing Corporation
29 * This program is free software; you can redistribute it and/or modify
30 * it under the terms of the GNU General Public License as published by
31 * the Free Software Foundation; either version 2 of the License, or
32 * (at your option) any later version.
34 * This program is distributed in the hope that it will be useful,
35 * but WITHOUT ANY WARRANTY; without even the implied warranty of
36 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
37 * GNU General Public License for more details.
39 * You should have received a copy of the GNU General Public License
40 * along with this program; if not, write to the Free Software
41 * Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA.
43 * Portions related to the alpha architecture are:
45 * Copyright(C) 2001 University of California. LA-CC Number 01-67.
46 * This software has been authored by an employee or employees of the
47 * University of California, operator of the Los Alamos National
48 * Laboratory under Contract No. W-7405-ENG-36 with the U.S.
49 * Department of Energy. The U.S. Government has rights to use,
50 * reproduce, and distribute this software. If the software is
51 * modified to produce derivative works, such modified software should
52 * be clearly marked, so as not to confuse it with the version
53 * available from LANL.
55 * This software may be used and distributed according to the terms
56 * of the GNU General Public License, incorporated herein by
57 * reference to http://www.gnu.org/licenses/gpl.html.
59 * This software is provided by the author(s) "as is" and any express
60 * or implied warranties, including, but not limited to, the implied
61 * warranties of merchantability and fitness for a particular purpose
62 * are disclaimed. In no event shall the author(s) be liable for any
63 * direct, indirect, incidental, special, exemplary, or consequential
64 * damages (including, but not limited to, procurement of substitute
65 * goods or services; loss of use, data, or profits; or business
66 * interruption) however caused and on any theory of liability,
67 * whether in contract, strict liability, or tort (including
68 * negligence or otherwise) arising in any way out of the use of this
69 * software, even if advised of the possibility of such damage.
71 * $Id: vsmsetup.c,v 1.8 2006/09/08 12:47:57 andrei Exp $
73 * Copyright (C) 2007 Advanced Micro Devices
75 *--------------------------------------------------------------------*/
77 /* Modified to be a self sufficient plug in so that it can be used
78 without reliance on other parts of core Linuxbios
79 (C) 2005 Nick.Barker9@btinternet.com
81 Used initially for epia-m where there are problems getting the bios
82 emulator to successfully run this bios.
85 /* Declare a temporary global descriptor table - necessary because the
86 Core part of the bios no longer sets up any 16 bit segments */
88 /* pointer to original gdt */
92 /* compute the table limit */
93 "__mygdt_limit = __mygdt_end - __mygdt - 1 \n"
95 " .word __mygdt_limit \n"
98 /* selgdt 0, unused */
99 " .word 0x0000, 0x0000 \n"
100 " .byte 0x00, 0x00, 0x00, 0x00 \n"
101 /* selgdt 8, unused */
102 " .word 0x0000, 0x0000 \n"
103 " .byte 0x00, 0x00, 0x00, 0x00 \n"
104 /* selgdt 0x10, flat code segment */
105 " .word 0xffff, 0x0000 \n"
106 " .byte 0x00, 0x9b, 0xcf, 0x00 \n"
107 /* selgdt 0x18, flat data segment */
108 " .word 0xffff, 0x0000 \n"
109 " .byte 0x00, 0x93, 0xcf, 0x00 \n"
110 /* selgdt 0x20, unused */
111 " .word 0x0000, 0x0000 \n"
112 " .byte 0x00, 0x00, 0x00, 0x00 \n"
113 /* selgdt 0x28 16-bit 64k code at 0x00000000 */
114 " .word 0xffff, 0x0000 \n"
115 " .byte 0, 0x9a, 0, 0 \n"
116 /* selgdt 0x30 16-bit 64k data at 0x00000000 */
117 " .word 0xffff, 0x0000 \n"
118 " .byte 0, 0x92, 0, 0 \n"
122 /* Declare a pointer to where our idt is going to be i.e. at mem zero */
132 /* The address arguments to this function are PHYSICAL ADDRESSES */
133 static void real_mode_switch_call_vsm(unsigned long smm, unsigned long sysm)
135 uint16_t entryHi = (VSA2_ENTRY_POINT & 0xffff0000) >> 4;
136 uint16_t entryLo = (VSA2_ENTRY_POINT & 0xffff);
138 __asm__ __volatile__(
139 // paranoia -- does ecx get saved? not sure. This is
140 // the easiest safe thing to do.
143 " mov %%esp, __stack \n"
145 "__stack: .long 0 \n"
147 /* get devfn into %%ecx */
148 " movl %%esp, %%ebp \n"
150 /* I'm not happy about that pushal followed by esp-relative
151 * references. Just do hard-codes for now
153 " movl 8(%%ebp), %%ecx \n"
154 " movl 12(%%ebp), %%edx \n"
159 " lgdt %%cs:__mygdtaddr \n"
160 /* This configures CS properly for real mode. */
161 " ljmp $0x28, $__rms_16bit\n"
164 /* 16 bit code from here on... */
165 /* Load the segment registers w/ properly configured segment
166 * descriptors. They will retain these configurations (limits,
167 * writability, etc.) once protected mode is turned off. */
168 " mov $0x30, %%ax \n"
174 /* Turn off protection (bit 0 in CR0) */
175 " movl %%cr0, %%eax \n"
176 " andl $0xFFFFFFFE, %%eax \n"
177 " movl %%eax, %%cr0 \n"
178 /* Now really going into real mode */
179 " ljmp $0, $__rms_real\n"
182 /* put the stack at the end of page zero.
183 * that way we can easily share it between real and protected,
184 * since the 16-bit ESP at segment 0 will work for any case.
190 " movl $0x1000, %%eax \n"
191 " movl %%eax, %%esp \n"
192 /* Load our 16 it idt */
196 /* Dump zeros in the other segregs */
198 /* FixMe: Big real mode for gs, fs? */
201 " mov $0x40, %%ax \n"
203 //" mov %%cx, %%ax \n"
206 /* call the VSA2 entry point address */
208 /* if we got here, just about done.
209 * Need to get back to protected mode */
210 " movl %%cr0, %%eax \n"
211 " orl $0x0000001, %%eax\n" /* PE = 1 */
212 " movl %%eax, %%cr0 \n"
213 /* Now that we are in protected mode jump to a 32 bit code segment. */
214 " data32 ljmp $0x10, $vsmrestart\n"
217 " movw $0x18, %%ax \n"
223 /* restore proper gdt and idt */
224 " lgdt %%cs:gdtarg \n"
228 " mov __stack, %%esp \n"
230 "g" (smm), "g"(sysm), "g"(entryHi), "g"(entryLo)
234 __asm__(".text\n" "real_mode_switch_end:\n");
235 extern char real_mode_switch_end[];
237 // andrei: some VSA virtual register helpers: raw read and MSR read
239 uint32_t VSA_vrRead(uint16_t classIndex)
241 unsigned eax, ebx, ecx, edx;
243 "movw $0x0AC1C, %%dx \n"
244 "orl $0x0FC530000, %%eax \n"
245 "outl %%eax, %%dx \n"
248 : "=a" (eax), "=b"(ebx), "=c"(ecx), "=d"(edx)
255 uint32_t VSA_msrRead(uint32_t msrAddr)
257 unsigned eax, ebx, ecx, edx;
259 "movw $0x0AC1C, %%dx \n"
260 "movl $0x0FC530007, %%eax \n"
261 "outl %%eax, %%dx \n"
264 : "=a" (eax), "=b"(ebx), "=c"(ecx), "=d"(edx)
271 void do_vsmbios(void)
274 unsigned long busdevfn;
275 unsigned int rom = 0;
277 unsigned int size = SMM_SIZE * 1024;
279 unsigned long ilen, olen;
281 printk_err("do_vsmbios\n");
282 /* clear vsm bios data area */
283 for (i = 0x400; i < 0x500; i++) {
284 *(volatile unsigned char *)i = 0;
287 /* declare rom address here - keep any config data out of the way
288 * of core LXB stuff */
290 /* this is the base of rom on the LX at present. At some point, this has to be
291 * much better parameterized
293 /* the VSA starts at the base of rom - 64 */
294 //rom = ((unsigned long) 0) - (ROM_SIZE + 64*1024);
295 //VSA is cat onto the end after LB builds
296 rom = ((unsigned long)0) - (ROM_SIZE + 36 * 1024);
297 buf = (unsigned char *)VSA2_BUFFER;
298 olen = unrv2b((uint8_t *) rom, buf, &ilen);
299 printk_debug("buf ilen %d olen%d\n", ilen, olen);
300 printk_debug("buf %p *buf %d buf[256k] %d\n",
301 buf, buf[0], buf[SMM_SIZE * 1024]);
302 printk_debug("buf[0x20] signature is %x:%x:%x:%x\n",
303 buf[0x20], buf[0x21], buf[0x22], buf[0x23]);
304 /* check for post code at start of vsainit.bin. If you don't see it,
306 if ((buf[0x20] != 0xb0) || (buf[0x21] != 0x10) ||
307 (buf[0x22] != 0xe6) || (buf[0x23] != 0x80)) {
308 printk_err("do_vsmbios: no vsainit.bin signature, skipping!\n");
312 /* ecx gets smm, edx gets sysm */
313 printk_err("Call real_mode_switch_call_vsm\n");
314 real_mode_switch_call_vsm(MSR_GLIU0_SMM, MSR_GLIU0_SYSMEM);
316 /* restart timer 1 */
320 // check that VSA is running OK
321 if (VSA_vrRead(SIGNATURE) == VSA2_SIGNATURE)
322 printk_debug("do_vsmbios: VSA2 VR signature verified\n");
325 ("do_vsmbios: VSA2 VR signature not valid, install failed!\n");
328 // we had hoped to avoid this.
329 // this is a stub IDT only. It's main purpose is to ignore calls
331 // no longer. Dammit. We have to respond to these.
333 unsigned short offset, cs;
336 // from a handy writeup that andrey found.
339 // There are some assumptions we can make here.
340 // First, the Top Of Stack (TOS) is located on the top of page zero.
341 // we can share this stack between real and protected mode.
342 // that simplifies a lot of things ...
343 // we'll just push all the registers on the stack as longwords,
344 // and pop to protected mode.
345 // second, since this only ever runs as part of linuxbios,
346 // we know all the segment register values -- so we don't save any.
347 // keep the handler that calls things small. It can do a call to
348 // more complex code in linuxbios itself. This helps a lot as we don't
349 // have to do address fixup in this little stub, and calls are absolute
350 // so the handler is relocatable.
353 __asm__ __volatile__(
358 " ljmp $0, $callbiosint16\n"
364 void debughandler(void)
366 __asm__ __volatile__(
375 "end_debughandle: \n"
380 // Calling conventions. The first C function is called with this stuff
381 // on the stack. They look like value parameters, but note that if you
382 // modify them they will go back to the INTx function modified.
383 // the C function will call the biosint function with these as
384 // REFERENCE parameters. In this way, we can easily get
385 // returns back to the INTx caller (i.e. vgabios)
386 void callbiosint(void)
388 __asm__ __volatile__(
395 // clean up the int #. To save space we put it in the lower
396 // byte. But the top 24 bits are junk.
397 " andl $0xff, %eax\n"
398 // this push does two things:
399 // - put the INT # on the stack as a parameter
400 // - provides us with a temp for the %cr0 mods.
405 " orl $0x00000001, %eax\n" /* PE = 1 */
407 /* Now that we are in protected mode jump to a 32 bit code segment. */
408 " data32 ljmp $0x10, $biosprotect\n"
419 // back to real mode ...
420 " ljmp $0x28, $__rms_16bit2\n"
423 /* 16 bit code from here on... */
424 /* Load the segment registers w/ properly configured segment
425 * descriptors. They will retain these configurations (limits,
426 * writability, etc.) once protected mode is turned off. */
433 /* Turn off protection (bit 0 in CR0) */
434 " movl %cr0, %eax \n"
435 " andl $0xFFFFFFFE, %eax \n"
436 " movl %eax, %cr0 \n"
437 /* Now really going into real mode */
438 " ljmp $0, $__rms_real2 \n"
441 * FixME: where is esp? */
442 /* no need for a fix here. The esp is shared from 32-bit and 16-bit mode.
443 * you have to hack on the ss, but the esp remains the same across
448 /* debugging for RGM */
450 " outb %al, $0x80 \n"
451 /* Load our 16 bit idt */
455 /* Dump zeros in the other segregs */
461 /* pop the INT # that you pushed earlier */
478 int pcibios(unsigned long *pedi, unsigned long *pesi, unsigned long *pebp,
479 unsigned long *pesp, unsigned long *pebx, unsigned long *pedx,
480 unsigned long *pecx, unsigned long *peax, unsigned long *pflags);
482 int handleint21(unsigned long *pedi, unsigned long *pesi, unsigned long *pebp,
483 unsigned long *pesp, unsigned long *pebx, unsigned long *pedx,
484 unsigned long *pecx, unsigned long *peax,
485 unsigned long *pflags);
487 int biosint(unsigned long intnumber,
488 unsigned long gsfs, unsigned long dses,
489 unsigned long edi, unsigned long esi,
490 unsigned long ebp, unsigned long esp,
491 unsigned long ebx, unsigned long edx,
492 unsigned long ecx, unsigned long eax,
493 unsigned long cs_ip, unsigned short stackflags)
504 printk_debug("biosint: INT# 0x%lx\n", intnumber);
505 printk_debug("biosint: eax 0x%lx ebx 0x%lx ecx 0x%lx edx 0x%lx\n",
507 printk_debug("biosint: ebp 0x%lx esp 0x%lx edi 0x%lx esi 0x%lx\n",
509 printk_debug("biosint: ip 0x%x cs 0x%x flags 0x%x\n",
511 printk_debug("biosint: gs 0x%x fs 0x%x ds 0x%x es 0x%x\n",
512 gsfs >> 16, gsfs & 0xffff, dses >> 16, dses & 0xffff);
514 // cases in a good compiler are just as good as your own tables.
517 // These are not BIOS service, but the CPU-generated exceptions
518 printk_info("biosint: Oops, exception %u\n", intnumber);
520 printk_debug("Stack contents: ");
521 while (esp < 0x1000) {
522 printk_debug("0x%04x ", *(unsigned short *)esp);
527 printk_debug("biosint: Bailing out ... not now\n");
533 ret = pcibios(&edi, &esi, &ebp, &esp,
534 &ebx, &edx, &ecx, &eax, &flags);
542 ret = handleint21(&edi, &esi, &ebp, &esp,
543 &ebx, &edx, &ecx, &eax, &flags);
546 printk_info("BIOSINT: Unsupport int #0x%x\n", intnumber);
550 flags |= 1; // carry flags
557 void setup_realmode_idt(void)
559 extern unsigned char idthandle, end_idthandle;
560 extern unsigned char debughandle, end_debughandle;
563 struct realidt *idts = (struct realidt *)0;
564 int codesize = &end_idthandle - &idthandle;
565 unsigned char *intbyte, *codeptr;
567 // for each int, we create a customized little handler
568 // that just pushes %ax, puts the int # in %al,
569 // then calls the common interrupt handler.
570 // this necessitated because intel didn't know much about
571 // architecture when they did the 8086 (it shows)
572 // (hmm do they know anymore even now :-)
573 // obviously you can see I don't really care about memory
574 // efficiency. If I did I would probe back through the stack
575 // and get it that way. But that's really disgusting.
576 for (i = 0; i < 256; i++) {
578 codeptr = (unsigned char *)4096 + i * codesize;
579 idts[i].offset = (unsigned)codeptr;
580 memcpy(codeptr, &idthandle, codesize);
581 intbyte = codeptr + 3;
585 // fixed entry points
587 // VGA BIOSes tend to hardcode f000:f065 as the previous handler of
589 // calling convention here is the same as INTs, we can reuse
590 // the int entry code.
591 codeptr = (unsigned char *)0xff065;
592 memcpy(codeptr, &idthandle, codesize);
593 intbyte = codeptr + 3;
594 *intbyte = 0x42; /* int42 is the relocated int10 */
596 /* debug handler - useful to set a programmable delay between instructions if the
597 TF bit is set upon call to real mode */
599 idts[1].offset = 16384;
600 memcpy((void *)16384, &debughandle, &end_debughandle - &debughandle);
606 READCONFBYTE = 0xb108,
607 READCONFWORD = 0xb109,
608 READCONFDWORD = 0xb10a,
609 WRITECONFBYTE = 0xb10b,
610 WRITECONFWORD = 0xb10c,
611 WRITECONFDWORD = 0xb10d
614 // errors go in AH. Just set these up so that word assigns
617 PCIBIOS_NODEV = 0x8600,
618 PCIBIOS_BADREG = 0x8700
622 pcibios(unsigned long *pedi, unsigned long *pesi, unsigned long *pebp,
623 unsigned long *pesp, unsigned long *pebx, unsigned long *pedx,
624 unsigned long *pecx, unsigned long *peax, unsigned long *pflags)
626 unsigned long edi = *pedi;
627 unsigned long esi = *pesi;
628 unsigned long ebp = *pebp;
629 unsigned long esp = *pesp;
630 unsigned long ebx = *pebx;
631 unsigned long edx = *pedx;
632 unsigned long ecx = *pecx;
633 unsigned long eax = *peax;
634 unsigned long flags = *pflags;
635 unsigned short func = (unsigned short)eax;
637 unsigned short devid, vendorid, devfn;
638 short devindex; /* Use short to get rid of gabage in upper half of 32-bit register */
654 while ((dev = dev_find_device(vendorid, devid, dev))) {
660 unsigned short busdevfn;
662 // busnum is an unsigned char;
663 // devfn is an int, so we mask it off.
664 busdevfn = (dev->bus->secondary << 8)
665 | (dev->path.u.pci.devfn & 0xff);
666 printk_debug("0x%x: return 0x%x\n", func,
671 *peax = PCIBIOS_NODEV;
688 devfn = *pebx & 0xff;
691 dev = dev_find_slot(bus, devfn);
694 ("0x%x: BAD DEVICE bus %d devfn 0x%x\n",
696 // idiots. the pcibios guys assumed you'd never pass a bad bus/devfn!
697 *peax = PCIBIOS_BADREG;
702 byte = pci_read_config8(dev, reg);
706 word = pci_read_config16(dev, reg);
710 dword = pci_read_config32(dev, reg);
715 pci_write_config8(dev, reg, byte);
719 pci_write_config16(dev, reg, word);
723 pci_write_config32(dev, reg, dword);
728 retval = PCIBIOS_BADREG;
730 ("0x%x: bus %d devfn 0x%x reg 0x%x val 0x%lx\n",
731 func, bus, devfn, reg, *pecx);
737 printk_err("UNSUPPORTED PCIBIOS FUNCTION 0x%x\n", func);
744 int handleint21(unsigned long *edi, unsigned long *esi, unsigned long *ebp,
745 unsigned long *esp, unsigned long *ebx, unsigned long *edx,
746 unsigned long *ecx, unsigned long *eax, unsigned long *flags)
749 printk_debug("handleint21, eax 0x%x\n", *eax);
750 switch (*eax & 0xffff) {
755 *ebx = 0x545; // MCLK = 133, 32M frame buffer, 256 M main memory
764 *ecx = (*ecx & 0xffffff00) | 2; // panel type = 2 = 1024 * 768
769 *ebx = (*ebx & 0xffff0000) | 2;
770 *ecx = (*ecx & 0xffff0000) | 0x401; // PAL + crt only
771 *edx = (*edx & 0xffff0000) | 0; // TV Layout - default